Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Slow Computer on internet. Lots of reloading and freezing.


  • Please log in to reply

#16
RKinner

RKinner

    Malware Expert

  • Expert
  • 19,800 posts
  • MVP
That didn't work for some reason. Try it again and this time save the log and copy and paste it into a reply.

See if you can click on the down arrow to the left of the Firefox search box and Manage Search Engines. Click on any Yahoo entries and Remove. If you don't have anything but Yahoo you will need to get another one before you can delete all of the Yahoos.
  • 0

Advertisements


#17
Jennifer2

Jennifer2

    Member

  • Topic Starter
  • Member
  • PipPip
  • 37 posts
From my Son: I went into the Manage Search Engines and deleted Yahoo! from the list. Is there anything else you want me to do?
  • 0

#18
RKinner

RKinner

    Malware Expert

  • Expert
  • 19,800 posts
  • MVP
Run OTL (Vista or Win 7 => right click and Run As Administrator)

select the All option in the Extra Registry group then Run Scan.

You should get two logs. Please copy and paste both of them.
  • 0

#19
Jennifer2

Jennifer2

    Member

  • Topic Starter
  • Member
  • PipPip
  • 37 posts
From my Son: I'll make sure to do that in a moment.
  • 0

#20
Jennifer2

Jennifer2

    Member

  • Topic Starter
  • Member
  • PipPip
  • 37 posts
OTL.txt:

OTL logfile created on: 12/28/2011 5:29:05 PM - Run 3
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\Gabriel\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.75 Gb Total Physical Memory | 2.41 Gb Available Physical Memory | 64.18% Memory free
7.50 Gb Paging File | 4.56 Gb Available in Paging File | 60.89% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 452.85 Gb Total Space | 126.56 Gb Free Space | 27.95% Space Free | Partition Type: NTFS

Computer Name: GABRIEL-PC | User Name: Gabriel | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011/12/28 09:58:35 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\Gabriel\Desktop\OTL.exe
PRC - [2011/12/13 19:55:48 | 000,002,560 | ---- | M] () -- C:\Windows\Runservice.exe
PRC - [2011/11/12 16:21:39 | 000,459,600 | ---- | M] () -- C:\Program Files (x86)\InstallBrainService\InstallBrainService.exe
PRC - [2011/11/11 11:00:03 | 000,189,248 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrB.exe
PRC - [2011/11/11 10:59:52 | 000,075,064 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
PRC - [2011/11/08 21:08:55 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2011/10/28 22:33:08 | 003,292,248 | ---- | M] () -- C:\Users\Gabriel\AppData\Local\Akamai\netsession_win.exe
PRC - [2011/09/09 09:44:52 | 000,048,128 | ---- | M] (FS) -- C:\Program Files (x86)\FS\Spyro Portal\FlashPortal.exe
PRC - [2011/09/06 11:29:20 | 004,259,648 | ---- | M] (SoftThinks - Dell) -- C:\Program Files (x86)\Dell DataSafe Local Backup\Toaster.exe
PRC - [2011/08/31 16:00:48 | 000,366,152 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2011/08/19 09:26:50 | 000,450,848 | ---- | M] (Logitech Inc.) -- C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
PRC - [2011/08/18 09:05:54 | 002,751,808 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\STService.exe
PRC - [2011/08/18 09:05:46 | 001,692,480 | ---- | M] (SoftThinks SAS) -- C:\Program Files (x86)\Dell DataSafe Local Backup\SftService.exe
PRC - [2011/08/01 11:56:48 | 000,460,096 | ---- | M] (SoftThinks - Dell) -- C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpd.exe
PRC - [2011/07/28 16:50:28 | 000,049,664 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MMLoadDrv.exe
PRC - [2011/06/06 11:55:28 | 000,064,952 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2011/01/13 15:14:04 | 000,094,040 | ---- | M] (TechSmith Corporation) -- C:\Program Files (x86)\TechSmith\Camtasia Studio 7\TscHelp.exe
PRC - [2011/01/13 15:13:38 | 009,888,088 | ---- | M] (TechSmith Corporation) -- C:\Program Files (x86)\TechSmith\Camtasia Studio 7\CamtasiaStudio.exe
PRC - [2010/10/29 14:06:08 | 005,915,480 | ---- | M] (Logitech Inc.) -- C:\Program Files (x86)\Logitech\Vid HD\Vid.exe
PRC - [2010/09/14 04:45:56 | 000,219,496 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
PRC - [2010/09/14 04:45:44 | 000,508,264 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
PRC - [2010/06/30 16:46:32 | 000,121,456 | ---- | M] () -- C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DTSRVC.exe
PRC - [2010/06/30 16:46:30 | 001,264,240 | ---- | M] (Portrait Displays, Inc) -- C:\Program Files (x86)\Acer Display\eDisplay Management\dthtml.exe
PRC - [2010/05/13 16:34:48 | 000,711,792 | ---- | M] () -- C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\Floater.exe
PRC - [2010/05/13 16:34:42 | 000,674,928 | ---- | M] () -- C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\wpCtrl.exe
PRC - [2010/05/07 18:47:32 | 000,114,008 | ---- | M] (Logitech Inc.) -- C:\Program Files (x86)\Common Files\logishrd\LVMVFM\LVPrS64H.exe
PRC - [2010/05/07 18:35:22 | 000,165,208 | ---- | M] (Logitech Inc.) -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe
PRC - [2010/04/16 15:34:34 | 000,109,168 | ---- | M] (Portrait Displays, Inc.) -- C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
PRC - [2009/06/09 08:11:14 | 000,155,648 | ---- | M] (Stardock Corporation) -- C:\Program Files\Dell\DellDock\DockLogin.exe


========== Modules (No Company Name) ==========

MOD - [2011/11/22 09:22:31 | 008,527,008 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
MOD - [2011/11/08 21:08:55 | 001,989,592 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2011/10/28 22:33:08 | 003,292,248 | ---- | M] () -- C:\Users\Gabriel\AppData\Local\Akamai\netsession_win.exe
MOD - [2011/10/13 09:38:09 | 002,297,856 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Core\dd56ffc9d534de278c79420dcce058a4\System.Core.ni.dll
MOD - [2011/10/13 08:33:43 | 000,368,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\07cdef1a740151932dcf161f3306bd9c\PresentationFramework.Aero.ni.dll
MOD - [2011/10/13 08:33:19 | 014,339,072 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\70e2ca33ffa52c743285dc5b4910a229\PresentationFramework.ni.dll
MOD - [2011/10/13 08:33:07 | 012,433,408 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\6e592e424a204aafeadbe22b6b31b9db\System.Windows.Forms.ni.dll
MOD - [2011/10/13 08:33:01 | 001,587,200 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\3b2cfd85528a27eb71dc41d8067359a1\System.Drawing.ni.dll
MOD - [2011/10/13 08:32:59 | 012,234,752 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\7c94a121334aeca7553c7f01290740f0\PresentationCore.ni.dll
MOD - [2011/10/13 08:32:50 | 003,347,968 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\d7a64c28cf0c90e6c48af4f7d6f9ed41\WindowsBase.ni.dll
MOD - [2011/10/13 08:32:45 | 005,453,312 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\130ad4d9719e566ca933ac7158a04203\System.Xml.ni.dll
MOD - [2011/10/13 08:32:42 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\2d5bcbeb9475ef62189f605bcca1cec6\System.Configuration.ni.dll
MOD - [2011/10/13 08:32:41 | 007,963,648 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\abab08afa60a6f06bdde0fcc9649c379\System.ni.dll
MOD - [2011/10/13 08:32:37 | 011,490,304 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\a1a82db68b3badc7c27ea1f6579d22c5\mscorlib.ni.dll
MOD - [2011/08/18 09:05:54 | 002,751,808 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\STService.exe
MOD - [2011/01/13 15:13:38 | 003,805,528 | ---- | M] () -- C:\Program Files (x86)\TechSmith\Camtasia Studio 7\CSMetricsAPI.dll
MOD - [2010/11/17 12:16:56 | 000,067,872 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2010/11/09 20:45:18 | 000,181,592 | ---- | M] () -- C:\Program Files (x86)\Common Files\logishrd\SharedBin\LvApi11.dll
MOD - [2010/10/29 14:02:38 | 000,751,616 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\vpxmd.dll
MOD - [2010/10/29 14:01:30 | 000,027,472 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\SDL.dll
MOD - [2010/06/30 16:46:26 | 000,084,592 | ---- | M] () -- C:\Program Files (x86)\Common Files\Portrait Displays\Plugins\CC\gui.dll
MOD - [2010/06/30 16:37:38 | 000,172,032 | ---- | M] () -- C:\Program Files (x86)\Common Files\Portrait Displays\Shared\PresetsCOM.dll
MOD - [2010/05/13 16:34:48 | 000,711,792 | ---- | M] () -- C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\Floater.exe
MOD - [2010/05/13 16:34:42 | 000,674,928 | ---- | M] () -- C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\wpCtrl.exe
MOD - [2010/05/07 18:37:40 | 000,126,808 | ---- | M] () -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\ImageFormats\QJpeg4.dll
MOD - [2010/05/07 18:37:40 | 000,027,480 | ---- | M] () -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\ImageFormats\QGif4.dll
MOD - [2010/05/07 18:36:54 | 000,340,824 | ---- | M] () -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\QTXml4.dll
MOD - [2010/05/07 18:36:20 | 000,921,944 | ---- | M] () -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtNetwork4.dll
MOD - [2010/05/07 18:35:56 | 007,954,776 | ---- | M] () -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\QTGui4.dll
MOD - [2010/05/07 18:35:44 | 002,143,576 | ---- | M] () -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\QTCore4.dll
MOD - [2009/04/22 15:53:56 | 000,969,040 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\QtNetwork4.dll
MOD - [2009/04/09 17:04:56 | 002,141,008 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\QtCore4.dll
MOD - [2009/03/03 16:18:08 | 000,138,064 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\plugins\imageformats\qjpeg4.dll
MOD - [2009/03/03 16:18:06 | 000,035,152 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\plugins\imageformats\qico4.dll
MOD - [2009/03/03 16:18:06 | 000,029,008 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\plugins\imageformats\qgif4.dll
MOD - [2009/03/03 16:17:46 | 011,311,952 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\QtWebKit4.dll
MOD - [2009/03/03 16:17:46 | 000,363,856 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\QtXml4.dll
MOD - [2009/03/03 16:17:44 | 000,200,016 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\QtSql4.dll
MOD - [2009/03/03 16:17:40 | 000,475,472 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\QtOpenGL4.dll
MOD - [2009/03/03 16:17:38 | 007,704,400 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\QtGui4.dll
MOD - [2009/03/03 16:17:32 | 000,291,664 | ---- | M] () -- C:\Program Files (x86)\Logitech\Vid HD\phonon4.dll
MOD - [2008/08/25 17:43:52 | 001,960,960 | ---- | M] () -- C:\Program Files (x86)\TechSmith\Camtasia Studio 7\QtCore4.dll
MOD - [2008/07/29 05:49:20 | 000,021,504 | ---- | M] () -- C:\Program Files (x86)\TechSmith\Camtasia Studio 7\Media\Theater\plugins\imageformats\qgif4.dll
MOD - [2008/07/29 05:49:16 | 000,119,296 | ---- | M] () -- C:\Program Files (x86)\TechSmith\Camtasia Studio 7\Media\Theater\plugins\imageformats\qjpeg4.dll
MOD - [2008/07/29 05:01:38 | 007,073,792 | ---- | M] () -- C:\Program Files (x86)\TechSmith\Camtasia Studio 7\QtGui4.dll


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2011/10/18 14:32:28 | 000,161,168 | ---- | M] (McAfee, Inc.) [Unknown | Running] -- C:\Program Files\Common Files\mcafee\systemcore\mfevtps.exe -- (mfevtp)
SRV:64bit: - [2011/10/18 14:23:24 | 000,208,536 | ---- | M] () [Unknown | Running] -- C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe -- (mfefire)
SRV:64bit: - [2011/10/18 14:23:06 | 000,199,272 | ---- | M] () [Unknown | Running] -- C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe -- (McShield)
SRV:64bit: - [2011/10/02 07:51:47 | 000,204,288 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2011/07/28 16:43:58 | 000,361,984 | ---- | M] (Advanced Micro Devices, Inc.) [Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe -- (AMD FUEL Service)
SRV:64bit: - [2011/06/23 14:23:52 | 000,501,768 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\mcafee\VirusScan\mcods.exe -- (McODS)
SRV:64bit: - [2011/01/27 17:28:20 | 000,249,936 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe -- (McProxy)
SRV:64bit: - [2011/01/27 17:28:20 | 000,249,936 | ---- | M] (McAfee, Inc.) [Disabled | Stopped] -- C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe -- (McOobeSv)
SRV:64bit: - [2011/01/27 17:28:20 | 000,249,936 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe -- (McNASvc)
SRV:64bit: - [2011/01/27 17:28:20 | 000,249,936 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe -- (McNaiAnn)
SRV:64bit: - [2011/01/27 17:28:20 | 000,249,936 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe -- (mcmscsvc)
SRV:64bit: - [2011/01/27 17:28:20 | 000,249,936 | ---- | M] (McAfee, Inc.) [Unknown | Running] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (McMPFSvc)
SRV:64bit: - [2010/09/22 17:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV:64bit: - [2010/05/07 18:45:16 | 000,197,976 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\Program Files\Common Files\Logishrd\LVMVFM\LVPrcSrv.exe -- (LVPrcS64)
SRV:64bit: - [2009/07/13 19:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009/06/09 08:11:14 | 000,155,648 | ---- | M] (Stardock Corporation) [Auto | Running] -- C:\Program Files\Dell\DellDock\DockLogin.exe -- (DockLoginService)
SRV - [2011/12/13 19:55:48 | 000,002,560 | ---- | M] () [Auto | Running] -- C:\Windows\Runservice.exe -- (LicCtrlService)
SRV - [2011/12/13 15:48:50 | 003,316,000 | ---- | M] () [Auto | Running] -- c:\program files (x86)\common files\akamai/netsession_win_b427739.dll -- (Akamai)
SRV - [2011/12/08 16:18:39 | 000,419,624 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2011/12/01 21:38:50 | 000,014,216 | ---- | M] (Hi-Rez Studios) [Auto | Running] -- C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe -- (HiPatchService)
SRV - [2011/11/12 16:21:39 | 000,459,600 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\InstallBrainService\InstallBrainService.exe -- (InstallBrainService)
SRV - [2011/11/11 11:00:03 | 000,189,248 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrB.exe -- (PnkBstrB)
SRV - [2011/11/11 10:59:52 | 000,075,064 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2011/09/09 09:44:52 | 000,048,128 | ---- | M] (FS) [Auto | Running] -- C:\Program Files (x86)\FS\Spyro Portal\FlashPortal.exe -- (SpyroService)
SRV - [2011/08/31 16:00:48 | 000,366,152 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2011/08/19 09:26:50 | 000,450,848 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe -- (UMVPFSrv)
SRV - [2011/08/18 09:05:46 | 001,692,480 | ---- | M] (SoftThinks SAS) [Auto | Running] -- C:\Program Files (x86)\Dell DataSafe Local Backup\sftservice.EXE -- (SftService)
SRV - [2011/08/15 16:18:12 | 002,329,480 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc)
SRV - [2011/08/07 15:40:00 | 003,804,120 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\Windows\SysWow64\GameMon.des -- (npggsvc)
SRV - [2011/06/06 11:55:28 | 000,064,952 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2011/06/01 13:55:37 | 000,016,680 | ---- | M] (Citrix Online, a division of Citrix Systems, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Citrix\GoToAssist\514\g2aservice.exe -- (GoToAssist)
SRV - [2010/10/12 11:59:12 | 000,206,072 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe -- (GamesAppService)
SRV - [2010/09/14 04:45:56 | 000,219,496 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe -- (sftvsa)
SRV - [2010/09/14 04:45:44 | 000,508,264 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe -- (sftlist)
SRV - [2010/08/25 19:28:54 | 002,823,000 | ---- | M] (Dell, Inc.) [Auto | Running] -- C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe -- (NOBU)
SRV - [2010/06/30 16:46:32 | 000,121,456 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DTSRVC.exe -- (DTSRVC)
SRV - [2010/04/16 15:34:34 | 000,109,168 | ---- | M] (Portrait Displays, Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe -- (PdiService)
SRV - [2010/03/18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/06/10 15:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2011/12/13 19:19:10 | 000,025,072 | ---- | M] (PC-Doctor, Inc.) [Kernel | On_Demand | Running] -- c:\Program Files\Dell Support Center\pcdsrvc_x64.pkms -- (PCDSRVC{1E208CE0-FB7451FF-06020101}_0)
DRV:64bit: - [2011/10/29 11:20:28 | 000,270,912 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:64bit: - [2011/10/15 13:16:16 | 000,647,080 | ---- | M] (McAfee, Inc.) [Kernel | Unknown | Running] -- C:\Windows\SysNative\drivers\mfehidk.sys -- (mfehidk)
DRV:64bit: - [2011/10/15 13:16:16 | 000,481,768 | ---- | M] (McAfee, Inc.) [Kernel | Unknown | Running] -- C:\Windows\SysNative\drivers\mfefirek.sys -- (mfefirek)
DRV:64bit: - [2011/10/15 13:16:16 | 000,284,648 | ---- | M] (McAfee, Inc.) [Kernel | Unknown | Running] -- C:\Windows\SysNative\drivers\mfewfpk.sys -- (mfewfpk)
DRV:64bit: - [2011/10/15 13:16:16 | 000,229,528 | ---- | M] (McAfee, Inc.) [Kernel | Unknown | Running] -- C:\Windows\SysNative\drivers\mfeavfk.sys -- (mfeavfk)
DRV:64bit: - [2011/10/15 13:16:16 | 000,160,280 | ---- | M] (McAfee, Inc.) [Kernel | Unknown | Running] -- C:\Windows\SysNative\drivers\mfeapfk.sys -- (mfeapfk)
DRV:64bit: - [2011/10/15 13:16:16 | 000,100,912 | ---- | M] (McAfee, Inc.) [Kernel | Unknown | Stopped] -- C:\Windows\SysNative\drivers\mferkdet.sys -- (mferkdet)
DRV:64bit: - [2011/10/15 13:16:16 | 000,075,808 | ---- | M] (McAfee, Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\mfenlfk.sys -- (mfenlfk)
DRV:64bit: - [2011/10/15 13:16:16 | 000,065,264 | ---- | M] (McAfee, Inc.) [Kernel | Unknown | Running] -- C:\Windows\SysNative\drivers\cfwids.sys -- (cfwids)
DRV:64bit: - [2011/10/02 08:02:14 | 009,980,416 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (atikmdag)
DRV:64bit: - [2011/10/02 08:02:14 | 009,980,416 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2011/10/02 07:51:49 | 000,309,248 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2011/08/31 16:00:50 | 000,025,416 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:64bit: - [2011/07/15 16:30:44 | 000,144,688 | ---- | M] (Oracle Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VBoxNetAdp.sys -- (VBoxNetAdp)
DRV:64bit: - [2011/07/06 17:12:50 | 000,367,976 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RtHDMIVX.sys -- (RTHDMIAzAudService)
DRV:64bit: - [2011/06/24 05:31:02 | 000,055,424 | ---- | M] (Advanced Micro Devices) [Kernel | Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys -- (AODDriver4.01)
DRV:64bit: - [2011/06/02 21:06:22 | 000,294,232 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\VMM.sys -- (vmm)
DRV:64bit: - [2011/03/11 00:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/11 00:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010/11/20 07:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/11/20 05:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010/11/09 20:45:54 | 004,162,784 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\lvuvc64.sys -- (LVUVC64) Logitech HD Webcam C310(UVC)
DRV:64bit: - [2010/11/09 20:44:24 | 000,341,856 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\lvrs64.sys -- (LVRS64)
DRV:64bit: - [2010/09/14 04:45:52 | 000,022,376 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftvollh.sys -- (Sftvol)
DRV:64bit: - [2010/09/14 04:45:50 | 000,025,960 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftredirlh.sys -- (Sftredir)
DRV:64bit: - [2010/09/14 04:45:48 | 000,268,648 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftplaylh.sys -- (Sftplay)
DRV:64bit: - [2010/09/14 04:45:44 | 000,760,168 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftfslh.sys -- (Sftfs)
DRV:64bit: - [2010/05/07 18:43:30 | 000,030,304 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LVPr2M64.sys -- (LVPr2Mon)
DRV:64bit: - [2010/05/07 18:43:30 | 000,030,304 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LVPr2M64.sys -- (LVPr2M64)
DRV:64bit: - [2010/04/16 15:34:06 | 000,020,592 | ---- | M] (Portrait Displays, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PdiPorts.sys -- (PdiPorts)
DRV:64bit: - [2010/02/18 08:18:24 | 000,046,136 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\amdiox64.sys -- (amdiox64)
DRV:64bit: - [2009/10/01 00:34:30 | 000,121,872 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV:64bit: - [2009/08/06 06:43:58 | 000,320,040 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\k57nd60a.sys -- (k57nd60a) Broadcom NetLink ™
DRV:64bit: - [2009/07/13 19:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 19:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 19:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/10 14:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 14:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 14:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 14:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/05/18 12:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2009/05/05 12:00:28 | 000,016,440 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AtiPcie.sys -- (AtiPcie) AMD PCI Express (3GIO)
DRV:64bit: - [2009/03/18 16:35:42 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV:64bit: - [2007/01/29 05:20:34 | 000,079,760 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VMNetSrv.sys -- (VPCNetS2)
DRV:64bit: - [2006/11/01 11:51:00 | 000,151,656 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WimFltr.sys -- (WimFltr)
DRV - [2009/07/13 19:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2005/01/02 15:43:08 | 000,004,682 | ---- | M] (INCA Internet Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\npptNT2.sys -- (NPPTNT2)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/USCON/1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://g.msn.com/USCON/1
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo....type=937811&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811"

FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_1_102.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF:64bit: - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL ()
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: c:\progra~2\mcafee\msc\npmcsn~1.dll ()
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0: C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@nsroblox.roblox.com/launcher: C:\Users\Gabriel\AppData\Local\Roblox\Versions\version-fb3436d54f9e4598\\NPRobloxProxy.dll ()
FF - HKCU\Software\MozillaPlugins\@onlive.com/OnLiveGameClientDetector,version=1.0.0: C:\Program Files (x86)\OnLive\Plugin\npolgdet.dll (OnLive)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\Gabriel\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{D19CA586-DD6C-4a0a-96F8-14644F340D60}: C:\Program Files (x86)\Common Files\McAfee\SystemCore [2011/12/26 09:20:21 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011/11/08 21:08:56 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins

[2011/08/04 10:52:14 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Gabriel\AppData\Roaming\Mozilla\Extensions
[2011/08/04 10:12:57 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Gabriel\AppData\Roaming\Mozilla\Firefox\Profiles\53ld4iob.default\extensions
[2011/11/02 14:58:38 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Gabriel\AppData\Roaming\Mozilla\Firefox\Profiles\62wa9o38.default\extensions
[2011/10/05 07:47:25 | 000,000,000 | ---D | M] (Battlefield Heroes Updater) -- C:\Users\Gabriel\AppData\Roaming\Mozilla\Firefox\Profiles\62wa9o38.default\extensions\[email protected]
[2011/11/02 14:58:38 | 000,000,000 | ---D | M] (Battlefield Play4Free) -- C:\Users\Gabriel\AppData\Roaming\Mozilla\Firefox\Profiles\62wa9o38.default\extensions\[email protected]
[2011/11/08 21:08:58 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2011/10/21 21:03:32 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}
[2011/11/08 21:08:56 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2011/04/14 13:01:38 | 000,024,376 | ---- | M] (McAfee, Inc.) -- C:\Program Files (x86)\mozilla firefox\components\Scriptff.dll
[2011/10/09 08:07:04 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2011/11/08 21:08:56 | 000,002,040 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\twitter.xml

O1 HOSTS File: ([2011/10/12 20:30:54 | 000,001,794 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 activate.adobe.com
O1 - Hosts: 127.0.0.1 practivate.adobe.com
O1 - Hosts: 127.0.0.1 ereg.adobe.com
O1 - Hosts: 127.0.0.1 activate.wip3.adobe.com
O1 - Hosts: 127.0.0.1 wip3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-3.adobe.com
O1 - Hosts: 127.0.0.1 ereg.wip3.adobe.com
O1 - Hosts: 127.0.0.1 activate-sea.adobe.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: 127.0.0.1 activate-sjc0.adobe.com
O1 - Hosts: 127.0.0.1 adobe.activate.com
O1 - Hosts: 127.0.0.1 adobeereg.com
O1 - Hosts: 127.0.0.1 www.adobeereg.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: 127.0.0.1 125.252.224.90
O1 - Hosts: 127.0.0.1 125.252.224.91
O1 - Hosts: 127.0.0.1 hl2rcv.adobe.com
O2:64bit: - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\mcafee\systemcore\ScriptSn.20111225203657.dll (McAfee, Inc.)
O2 - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\mcafee\SystemCore\ScriptSn.20111225203657.dll (McAfee, Inc.)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (IeMonitorBho Class) - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files (x86)\Megaupload\Mega Manager\MegaIEMn.dll (Megaupload Limited)
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [amd_dc_opt] C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe (AMD)
O4 - HKLM..\Run: [Dell DataSafe Online] C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuClient.exe (Dell, Inc.)
O4 - HKLM..\Run: [DT ACR] C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DT_startup.exe ()
O4 - HKLM..\Run: [LogMeIn Hamachi Ui] C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn Inc.)
O4 - HKLM..\Run: [LWS] C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe (Logitech Inc.)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [mcui_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.)
O4 - HKLM..\Run: [PivotSoftware] C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\Pivot_startup.exe ()
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKCU..\Run: [Akamai NetSession Interface] C:\Users\Gabriel\AppData\Local\Akamai\netsession_win.exe ()
O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKCU..\Run: [Logitech Vid] C:\Program Files (x86)\Logitech\Vid HD\Vid.exe (Logitech Inc.)
O4 - HKCU..\Run: [Spotify] C:\Users\Gabriel\AppData\Roaming\Spotify\spotify.exe (Spotify Ltd)
O4 - HKCU..\Run: [Steam] C:\Program Files (x86)\Steam\steam.exe (Valve Corporation)
O4 - HKLM..\RunOnce: ["C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpdate.exe"] C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpdate.exe (Dell)
O4 - Startup: C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Logitech . Product Registration.lnk = C:\Program Files (x86)\Logitech\Ereg\eReg.exe (Leader Technologies/Logitech)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: freerealms.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: soe.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: sony.com ([]* in Trusted sites)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_29)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E4523E5C-2F3C-4952-A9A4-5109E7877AC0}: DhcpNameServer = 192.168.0.1
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18:64bit: - Protocol\Filter\application/x-mfe-ipt {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll (McAfee, Inc.)
O18 - Protocol\Filter\application/x-mfe-ipt {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll (McAfee, Inc.)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) -C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) -C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:64bit: - Winlogon\Notify\GoToAssist: DllName - (C:\Program Files (x86)\Citrix\GoToAssist\514\G2AWinLogon_x64.dll) - File not found
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011/12/28 11:19:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
[2011/12/28 11:11:53 | 000,000,000 | ---D | C] -- C:\_OTL
[2011/12/28 09:58:34 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Users\Gabriel\Desktop\OTL.exe
[2011/12/27 11:32:04 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\AppData\Local\{7E6DEA37-B0C4-428B-B858-27FD3070807F}
[2011/12/27 10:31:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FS
[2011/12/27 10:29:58 | 000,000,000 | ---D | C] -- C:\Program Files\FS
[2011/12/26 22:04:44 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft CAPICOM 2.1.0.2
[2011/12/26 14:43:45 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\AppData\Local\{887235F1-991D-4B2B-AEF3-A38CBB599CEC}
[2011/12/26 14:43:10 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\AppData\Local\{9F1814D5-D08E-4F53-92AB-FB4DBA9E09E6}
[2011/12/26 14:38:39 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\AppData\Local\{4D5C263C-3F41-41EB-B870-58A16E72902B}
[2011/12/26 14:38:03 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\AppData\Local\{410112B2-197C-4CA3-BA05-98351EB49F3B}
[2011/12/25 11:54:51 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\Documents\Disney Interactive Studios
[2011/12/25 11:33:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Disney Interactive Studios
[2011/12/25 09:20:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\THQ
[2011/12/25 09:16:14 | 000,000,000 | ---D | C] -- C:\ProgramData\LogiShrd
[2011/12/25 09:14:21 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\Documents\SightSpeed Recordings
[2011/12/25 09:14:18 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\AppData\Local\LogiShrd
[2011/12/25 09:10:28 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\logishrd
[2011/12/25 09:10:28 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\logishrd
[2011/12/25 09:10:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Logitech
[2011/12/25 09:10:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\LWS
[2011/12/25 09:09:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
[2011/12/25 09:09:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Logitech
[2011/12/25 09:08:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\logishrd
[2011/12/25 09:08:35 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\logishrd
[2011/12/24 21:47:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Digital Praise
[2011/12/24 21:47:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Digital Praise
[2011/12/24 19:32:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Digital Praise
[2011/12/24 16:05:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MumboJumbo
[2011/12/24 16:05:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MumboJumbo
[2011/12/24 15:55:11 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\AppData\Roaming\Leadertech
[2011/12/24 15:55:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Atari
[2011/12/24 15:48:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Atari
[2011/12/21 20:20:36 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\AppData\Local\2DBoy
[2011/12/21 20:20:36 | 000,000,000 | ---D | C] -- C:\ProgramData\2DBoy
[2011/12/21 11:18:26 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\AppData\Roaming\digipen
[2011/12/21 11:18:26 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\AppData\Local\digipen
[2011/12/21 10:38:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Bungie
[2011/12/20 22:04:45 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\Documents\AlephOne
[2011/12/20 22:04:45 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\AppData\Local\AlephOne
[2011/12/20 20:56:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Digipen
[2011/12/20 20:54:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Digipen
[2011/12/20 13:31:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dynamix
[2011/12/20 13:29:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Sierra On-Line
[2011/12/20 12:18:34 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\AppData\Local\Chromium
[2011/12/20 11:22:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios
[2011/12/20 11:22:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Hi-Rez Studios
[2011/12/20 11:22:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Hi-Rez Studios
[2011/12/18 14:41:28 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\AppData\Roaming\LEGO Company
[2011/12/18 14:29:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LEGO Company
[2011/12/18 14:29:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\LEGO Company
[2011/12/17 12:07:04 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell Support Center
[2011/12/16 17:52:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Deus Ex - Invisible War Demo
[2011/12/16 17:49:06 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\Documents\LEGO Creations
[2011/12/16 17:48:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LEGO MINDSTORMS NXT 2.0
[2011/12/16 17:46:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\LEGO Software
[2011/12/16 17:46:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\National Instruments
[2011/12/16 17:46:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\IVI Foundation
[2011/12/16 17:45:12 | 000,000,000 | ---D | C] -- C:\ProgramData\National Instruments
[2011/12/16 11:46:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Deus Ex Demo
[2011/12/16 11:44:43 | 000,000,000 | ---D | C] -- C:\DeusExDemo
[2011/12/14 22:05:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSXML 4.0
[2011/12/14 22:05:21 | 000,096,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2011/12/14 22:05:21 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2011/12/14 22:05:20 | 000,248,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2011/12/14 22:05:20 | 000,237,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2011/12/14 22:05:20 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2011/12/14 22:05:20 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2011/12/14 22:05:19 | 002,309,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2011/12/14 22:05:19 | 001,493,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2011/12/14 22:05:19 | 001,427,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2011/12/14 22:05:19 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2011/12/14 22:05:18 | 000,818,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2011/12/14 15:21:29 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\csrsrv.dll
[2011/12/14 15:21:25 | 000,723,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\EncDec.dll
[2011/12/14 15:21:25 | 000,534,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\EncDec.dll
[2011/12/13 21:50:03 | 000,000,000 | ---D | C] -- C:\ProgramData\InstallShield
[2011/12/13 19:39:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Games
[2011/12/13 19:35:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefront - Empires of Steel Demo
[2011/12/12 17:19:59 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\Documents\ArmA 2
[2011/12/12 17:19:58 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\AppData\Local\ArmA 2 Free
[2011/12/12 17:19:52 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bohemia Interactive
[2011/12/12 17:19:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bohemia Interactive
[2011/12/10 20:25:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Starcraft
[2011/12/10 15:55:12 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\Documents\Gaslamp Games
[2011/12/10 13:37:25 | 000,239,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_7.dll
[2011/12/10 13:37:25 | 000,176,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_7.dll
[2011/12/10 13:37:22 | 001,907,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dcsx_43.dll
[2011/12/10 13:37:22 | 001,868,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dcsx_43.dll
[2011/12/09 21:08:49 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\Documents\FormatFactory
[2011/12/09 20:57:15 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\Documents\FFOutput
[2011/12/09 14:48:00 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory
[2011/12/09 14:47:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FreeTime
[2011/12/05 22:04:34 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\AppData\Local\Diagnostics
[2011/12/05 20:23:55 | 000,306,688 | ---- | C] (InstallShield Software Corporation) -- C:\Windows\IsUninst.exe
[2011/12/05 19:50:29 | 000,505,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msxml.dll
[2011/12/05 19:50:29 | 000,115,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSINET.OCX
[2011/12/05 19:50:27 | 000,089,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\VB5DB.DLL
[2011/12/05 19:50:27 | 000,028,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msxmlr.dll
[2011/12/05 19:50:27 | 000,026,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xmlinst.exe
[2011/12/05 19:50:27 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msxml3a.dll
[2011/12/05 19:50:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Ubi Soft
[2011/12/05 19:24:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Media Center Programs
[2011/12/05 17:53:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft
[2011/12/05 17:52:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Ubisoft
[2011/12/05 17:21:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Red Storm Entertainment
[2011/12/05 17:12:35 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\Documents\StarCraft II Demo
[2011/12/05 17:12:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StarCraft II Demo
[2011/12/05 17:12:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\StarCraft II Demo
[2011/12/05 16:21:27 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\Documents\Battlefield 2142 Demo
[2011/12/05 16:19:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Electronic Arts
[2011/12/04 20:58:02 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\AppData\Local\Microsoft Games
[2011/12/04 15:40:34 | 000,518,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_7.dll
[2011/12/04 15:40:34 | 000,077,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_5.dll
[2011/12/04 15:40:32 | 002,526,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_43.dll
[2011/12/04 15:40:32 | 002,106,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_43.dll
[2011/12/04 15:40:31 | 000,276,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx11_43.dll
[2011/12/04 15:40:31 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx11_43.dll
[2011/12/04 15:40:28 | 000,511,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_43.dll
[2011/12/04 15:40:28 | 000,470,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_43.dll
[2011/12/04 15:40:26 | 002,401,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_43.dll
[2011/12/04 15:40:26 | 001,998,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_43.dll
[2011/12/03 17:14:36 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\Documents\Battlefield 2
[2011/12/03 17:02:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES
[2011/12/03 15:34:41 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\AppData\Local\{75B6965B-D14F-45C3-ACB6-D6FD3CF341E7}
[2011/12/03 15:34:29 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\AppData\Local\{D2E1883A-7F85-499B-ABF9-B87E6FD55F96}
[2011/12/02 13:39:18 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\AppData\Local\Spotify
[2011/12/02 13:39:00 | 000,000,000 | ---D | C] -- C:\Users\Gabriel\AppData\Roaming\Spotify
[6 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[2 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011/12/28 17:27:17 | 000,026,112 | ---- | M] () -- C:\Users\Gabriel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/12/28 16:48:49 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/12/28 14:00:02 | 000,000,506 | ---- | M] () -- C:\Windows\tasks\SystemToolsDailyTest.job
[2011/12/28 12:00:08 | 000,000,564 | ---- | M] () -- C:\Windows\tasks\PCDoctorBackgroundMonitorTask.job
[2011/12/28 11:22:09 | 000,014,240 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011/12/28 11:22:09 | 000,014,240 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011/12/28 11:19:30 | 000,001,830 | ---- | M] () -- C:\Users\Public\Desktop\McAfee Security Center.lnk
[2011/12/28 11:13:38 | 000,001,057 | -HS- | M] () -- C:\Windows\SysWow64\mmf.sys
[2011/12/28 11:13:19 | 3019,091,968 | -HS- | M] () -- C:\hiberfil.sys
[2011/12/28 09:58:35 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\Gabriel\Desktop\OTL.exe
[2011/12/27 10:30:45 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_WinUsb_01009.Wdf
[2011/12/27 09:48:34 | 000,001,110 | ---- | M] () -- C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Logitech . Product Registration.lnk
[2011/12/26 09:25:35 | 000,000,149 | ---- | M] () -- C:\Windows\Sierra.ini
[2011/12/25 11:49:31 | 000,002,284 | ---- | M] () -- C:\Users\Gabriel\Desktop\Tron Evolution.lnk
[2011/12/25 09:53:46 | 000,002,598 | ---- | M] () -- C:\Users\Public\Desktop\Supreme Commander Forged Alliance.lnk
[2011/12/25 09:32:51 | 000,002,450 | ---- | M] () -- C:\Users\Public\Desktop\Supreme Commander.lnk
[2011/12/25 09:13:07 | 000,002,007 | ---- | M] () -- C:\Users\Public\Desktop\Logitech Vid HD.lnk
[2011/12/25 09:09:18 | 000,001,626 | ---- | M] () -- C:\Users\Public\Desktop\Logitech Webcam Software .lnk
[2011/12/24 19:33:38 | 000,004,096 | ---- | M] () -- C:\Windows\d3dx.dat
[2011/12/24 19:30:46 | 000,001,971 | ---- | M] () -- C:\Users\Gabriel\Desktop\Guitar Praise.lnk
[2011/12/24 16:05:41 | 000,001,250 | ---- | M] () -- C:\Users\Public\Desktop\Super Collapse! 3.lnk
[2011/12/24 15:55:16 | 000,002,131 | ---- | M] () -- C:\Users\Public\Desktop\RollerCoaster Tycoon 3.lnk
[2011/12/24 12:55:27 | 000,000,198 | ---- | M] () -- C:\Users\Gabriel\Desktop\Rise of Immortals.url
[2011/12/23 11:21:20 | 000,000,221 | ---- | M] () -- C:\Users\Gabriel\Desktop\LIMBO Demo.url
[2011/12/23 09:59:49 | 000,000,220 | ---- | M] () -- C:\Users\Gabriel\Desktop\EVE Online Demo.url
[2011/12/21 18:46:50 | 000,000,221 | ---- | M] () -- C:\Users\Gabriel\Desktop\World of Goo.url
[2011/12/21 10:40:34 | 000,001,755 | ---- | M] () -- C:\Users\Gabriel\Desktop\Marathon Infinity.lnk
[2011/12/21 10:40:27 | 000,001,619 | ---- | M] () -- C:\Users\Gabriel\Desktop\Marathon 2.lnk
[2011/12/21 10:40:20 | 000,001,634 | ---- | M] () -- C:\Users\Gabriel\Desktop\Marathon.lnk
[2011/12/21 10:02:40 | 004,848,624 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2011/12/20 20:56:22 | 000,001,186 | ---- | M] () -- C:\Users\Public\Desktop\Nitronic Rush.lnk
[2011/12/20 20:56:22 | 000,000,068 | ---- | M] () -- C:\Users\Public\Desktop\Nitronic Rush Feedback.url
[2011/12/20 15:34:12 | 000,001,958 | ---- | M] () -- C:\Users\Public\Desktop\Tribes Ascend.lnk
[2011/12/20 11:22:46 | 000,002,032 | ---- | M] () -- C:\Users\Public\Desktop\Hi-Command.lnk
[2011/12/18 14:29:58 | 000,002,172 | ---- | M] () -- C:\Users\Gabriel\Application Data\Microsoft\Internet Explorer\Quick Launch\LEGO Digital Designer.lnk
[2011/12/18 14:29:58 | 000,002,148 | ---- | M] () -- C:\Users\Public\Desktop\LEGO Digital Designer.lnk
[2011/12/16 17:48:01 | 000,001,091 | ---- | M] () -- C:\Users\Public\Desktop\LEGO MINDSTORMS NXT 2.0.lnk
[2011/12/16 11:49:11 | 000,000,685 | ---- | M] () -- C:\Users\Gabriel\Desktop\Deus Ex Demo.lnk
[2011/12/14 20:19:30 | 000,000,222 | ---- | M] () -- C:\Users\Gabriel\Desktop\PoxNora.url
[2011/12/13 20:42:28 | 000,001,419 | ---- | M] () -- C:\Users\Public\Desktop\CNC3 DEMO.lnk
[2011/12/13 19:55:50 | 000,126,976 | ---- | M] () -- C:\Windows\lcmmfu.cpl
[2011/12/13 19:55:48 | 000,048,640 | ---- | M] () -- C:\Windows\mmfs.dll
[2011/12/13 19:55:48 | 000,002,560 | ---- | M] () -- C:\Windows\Runservice.exe
[2011/12/11 08:51:51 | 000,001,553 | ---- | M] () -- C:\Users\Gabriel\Desktop\Virtual Box.lnk
[2011/12/10 11:03:53 | 000,000,221 | ---- | M] () -- C:\Users\Gabriel\Desktop\Dungeons of Dredmor.url
[2011/12/10 11:02:43 | 000,000,220 | ---- | M] () -- C:\Users\Gabriel\Desktop\Uplink.url
[2011/12/10 11:02:43 | 000,000,220 | ---- | M] () -- C:\Users\Gabriel\Desktop\Multiwinia.url
[2011/12/10 11:02:43 | 000,000,220 | ---- | M] () -- C:\Users\Gabriel\Desktop\DEFCON.url
[2011/12/10 11:02:43 | 000,000,220 | ---- | M] () -- C:\Users\Gabriel\Desktop\Darwinia.url
[2011/12/09 14:48:00 | 000,001,200 | ---- | M] () -- C:\Users\Gabriel\Desktop\Format Factory.lnk
[2011/12/08 11:30:44 | 000,000,222 | ---- | M] () -- C:\Users\Gabriel\Desktop\EverQuest II.url
[2011/12/06 20:17:33 | 000,000,001 | ---- | M] () -- C:\Windows\SysWow64\SI.bin
[2011/12/05 20:19:47 | 000,000,000 | ---- | M] () -- C:\Windows\PowerReg.dat
[2011/12/05 17:44:32 | 000,001,284 | ---- | M] () -- C:\Users\Gabriel\Desktop\Play Roblox.lnk
[2011/12/05 17:14:57 | 000,001,130 | ---- | M] () -- C:\Users\Gabriel\Desktop\StarCraft II Wings of Liberty Demo.lnk
[2011/12/05 16:21:32 | 000,002,244 | ---- | M] () -- C:\Users\Gabriel\Desktop\Battlefield 2142 Demo.lnk
[2011/12/05 16:03:52 | 000,002,317 | ---- | M] () -- C:\Users\Gabriel\Desktop\Battlefield 1942 Singleplayer Demo.lnk
[2011/12/04 18:26:52 | 000,000,221 | ---- | M] () -- C:\Users\Gabriel\Desktop\Chantelise - Demo.url
[2011/12/03 17:15:07 | 000,002,169 | ---- | M] () -- C:\Users\Gabriel\Desktop\Battlefield 2 Online.lnk
[2011/12/03 17:15:07 | 000,002,147 | ---- | M] () -- C:\Users\Gabriel\Desktop\Battlefield 2.lnk
[2011/12/02 13:39:17 | 000,000,927 | ---- | M] () -- C:\Users\Gabriel\Desktop\Spotify.lnk
[6 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[2 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011/12/27 10:30:45 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_WinUsb_01009.Wdf
[2011/12/27 09:48:33 | 000,001,110 | ---- | C] () -- C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Logitech . Product Registration.lnk
[2011/12/26 09:26:03 | 000,001,830 | ---- | C] () -- C:\Users\Public\Desktop\McAfee Security Center.lnk
[2011/12/25 11:49:31 | 000,002,284 | ---- | C] () -- C:\Users\Gabriel\Desktop\Tron Evolution.lnk
[2011/12/25 09:53:46 | 000,002,598 | ---- | C] () -- C:\Users\Public\Desktop\Supreme Commander Forged Alliance.lnk
[2011/12/25 09:32:51 | 000,002,450 | ---- | C] () -- C:\Users\Public\Desktop\Supreme Commander.lnk
[2011/12/25 09:13:07 | 000,002,007 | ---- | C] () -- C:\Users\Public\Desktop\Logitech Vid HD.lnk
[2011/12/25 09:09:18 | 000,001,626 | ---- | C] () -- C:\Users\Public\Desktop\Logitech Webcam Software .lnk
[2011/12/24 19:33:38 | 000,004,096 | ---- | C] () -- C:\Windows\d3dx.dat
[2011/12/24 19:30:46 | 000,001,971 | ---- | C] () -- C:\Users\Gabriel\Desktop\Guitar Praise.lnk
[2011/12/24 16:05:41 | 000,001,250 | ---- | C] () -- C:\Users\Public\Desktop\Super Collapse! 3.lnk
[2011/12/24 15:55:16 | 000,002,131 | ---- | C] () -- C:\Users\Public\Desktop\RollerCoaster Tycoon 3.lnk
[2011/12/24 12:55:27 | 000,000,198 | ---- | C] () -- C:\Users\Gabriel\Desktop\Rise of Immortals.url
[2011/12/23 11:21:20 | 000,000,221 | ---- | C] () -- C:\Users\Gabriel\Desktop\LIMBO Demo.url
[2011/12/23 09:59:49 | 000,000,220 | ---- | C] () -- C:\Users\Gabriel\Desktop\EVE Online Demo.url
[2011/12/21 18:46:50 | 000,000,221 | ---- | C] () -- C:\Users\Gabriel\Desktop\World of Goo.url
[2011/12/21 10:40:34 | 000,001,755 | ---- | C] () -- C:\Users\Gabriel\Desktop\Marathon Infinity.lnk
[2011/12/21 10:40:27 | 000,001,619 | ---- | C] () -- C:\Users\Gabriel\Desktop\Marathon 2.lnk
[2011/12/21 10:40:20 | 000,001,634 | ---- | C] () -- C:\Users\Gabriel\Desktop\Marathon.lnk
[2011/12/20 20:56:22 | 000,001,186 | ---- | C] () -- C:\Users\Public\Desktop\Nitronic Rush.lnk
[2011/12/20 20:56:22 | 000,000,068 | ---- | C] () -- C:\Users\Public\Desktop\Nitronic Rush Feedback.url
[2011/12/20 13:22:48 | 000,000,149 | ---- | C] () -- C:\Windows\Sierra.ini
[2011/12/20 11:25:57 | 000,001,958 | ---- | C] () -- C:\Users\Public\Desktop\Tribes Ascend.lnk
[2011/12/20 11:22:46 | 000,002,032 | ---- | C] () -- C:\Users\Public\Desktop\Hi-Command.lnk
[2011/12/18 14:29:58 | 000,002,172 | ---- | C] () -- C:\Users\Gabriel\Application Data\Microsoft\Internet Explorer\Quick Launch\LEGO Digital Designer.lnk
[2011/12/18 14:29:58 | 000,002,148 | ---- | C] () -- C:\Users\Public\Desktop\LEGO Digital Designer.lnk
[2011/12/17 12:07:09 | 000,000,564 | ---- | C] () -- C:\Windows\tasks\PCDoctorBackgroundMonitorTask.job
[2011/12/17 12:07:08 | 000,000,506 | ---- | C] () -- C:\Windows\tasks\SystemToolsDailyTest.job
[2011/12/16 17:48:01 | 000,001,091 | ---- | C] () -- C:\Users\Public\Desktop\LEGO MINDSTORMS NXT 2.0.lnk
[2011/12/16 11:49:11 | 000,000,685 | ---- | C] () -- C:\Users\Gabriel\Desktop\Deus Ex Demo.lnk
[2011/12/14 20:19:29 | 000,000,222 | ---- | C] () -- C:\Users\Gabriel\Desktop\PoxNora.url
[2011/12/13 20:42:28 | 000,001,419 | ---- | C] () -- C:\Users\Public\Desktop\CNC3 DEMO.lnk
[2011/12/13 19:55:50 | 000,126,976 | ---- | C] () -- C:\Windows\lcmmfu.cpl
[2011/12/13 19:55:49 | 000,001,057 | -HS- | C] () -- C:\Windows\SysWow64\mmf.sys
[2011/12/13 19:55:48 | 000,048,640 | ---- | C] () -- C:\Windows\mmfs.dll
[2011/12/13 19:55:48 | 000,002,560 | ---- | C] () -- C:\Windows\Runservice.exe
[2011/12/11 08:51:51 | 000,001,553 | ---- | C] () -- C:\Users\Gabriel\Desktop\Virtual Box.lnk
[2011/12/10 11:03:53 | 000,000,221 | ---- | C] () -- C:\Users\Gabriel\Desktop\Dungeons of Dredmor.url
[2011/12/10 11:02:43 | 000,000,220 | ---- | C] () -- C:\Users\Gabriel\Desktop\Uplink.url
[2011/12/10 11:02:43 | 000,000,220 | ---- | C] () -- C:\Users\Gabriel\Desktop\Multiwinia.url
[2011/12/10 11:02:43 | 000,000,220 | ---- | C] () -- C:\Users\Gabriel\Desktop\DEFCON.url
[2011/12/10 11:02:43 | 000,000,220 | ---- | C] () -- C:\Users\Gabriel\Desktop\Darwinia.url
[2011/12/09 14:48:00 | 000,001,200 | ---- | C] () -- C:\Users\Gabriel\Desktop\Format Factory.lnk
[2011/12/08 11:30:44 | 000,000,222 | ---- | C] () -- C:\Users\Gabriel\Desktop\EverQuest II.url
[2011/12/06 20:17:33 | 000,000,001 | ---- | C] () -- C:\Windows\SysWow64\SI.bin
[2011/12/05 20:19:47 | 000,000,000 | ---- | C] () -- C:\Windows\PowerReg.dat
[2011/12/05 19:50:27 | 000,069,632 | ---- | C] () -- C:\Windows\SysWow64\xmltok.dll
[2011/12/05 19:50:27 | 000,036,864 | ---- | C] () -- C:\Windows\SysWow64\xmlparse.dll
[2011/12/05 19:50:27 | 000,035,840 | ---- | C] () -- C:\Windows\SysWow64\comdlg32.oca
[2011/12/05 19:50:27 | 000,029,184 | ---- | C] () -- C:\Windows\SysWow64\MSINET.oca
[2011/12/05 17:12:35 | 000,001,130 | ---- | C] () -- C:\Users\Gabriel\Desktop\StarCraft II Wings of Liberty Demo.lnk
[2011/12/05 16:21:32 | 000,002,244 | ---- | C] () -- C:\Users\Gabriel\Desktop\Battlefield 2142 Demo.lnk
[2011/12/05 16:03:52 | 000,002,317 | ---- | C] () -- C:\Users\Gabriel\Desktop\Battlefield 1942 Singleplayer Demo.lnk
[2011/12/04 18:26:52 | 000,000,221 | ---- | C] () -- C:\Users\Gabriel\Desktop\Chantelise - Demo.url
[2011/12/03 17:15:07 | 000,002,169 | ---- | C] () -- C:\Users\Gabriel\Desktop\Battlefield 2 Online.lnk
[2011/12/03 17:15:07 | 000,002,147 | ---- | C] () -- C:\Users\Gabriel\Desktop\Battlefield 2.lnk
[2011/12/02 13:39:17 | 000,000,927 | ---- | C] () -- C:\Users\Gabriel\Desktop\Spotify.lnk
[2011/12/02 13:39:17 | 000,000,913 | ---- | C] () -- C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
[2011/11/18 13:27:00 | 000,007,432 | ---- | C] () -- C:\Windows\SysWow64\Machnm32.sys
[2011/11/13 16:03:46 | 000,000,632 | ---- | C] () -- C:\Windows\CoDUO.INI
[2011/11/11 10:59:53 | 000,189,248 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2011/11/11 10:59:52 | 000,075,064 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2011/11/11 10:49:30 | 003,360,624 | ---- | C] () -- C:\Windows\SysWow64\pbsvc.exe
[2011/10/27 06:58:36 | 000,000,534 | ---- | C] () -- C:\Windows\eReg.dat
[2011/09/28 17:44:14 | 000,179,271 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
[2011/09/13 20:57:43 | 000,000,565 | ---- | C] () -- C:\Users\Gabriel\AppData\Roaming\myMPQ.ini
[2011/09/08 18:51:59 | 000,040,960 | ---- | C] () -- C:\Windows\CleanDev.exe
[2011/07/31 19:36:10 | 000,051,222 | ---- | C] () -- C:\Users\Gabriel\AppData\Roaming\room_v3.dat
[2011/07/26 21:10:48 | 000,230,752 | ---- | C] () -- C:\Windows\patchw32.dll
[2011/07/26 21:10:48 | 000,118,176 | ---- | C] () -- C:\Windows\patchw.dll
[2011/07/17 22:54:02 | 000,059,904 | ---- | C] () -- C:\Windows\SysWow64\OVDecode.dll
[2011/06/24 11:19:46 | 000,000,032 | R--- | C] () -- C:\ProgramData\hash.dat
[2011/06/09 08:09:33 | 000,027,648 | ---- | C] () -- C:\Windows\SysWow64\AVSredirect.dll
[2011/06/05 13:11:19 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2011/06/04 08:02:48 | 000,003,929 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2011/06/02 20:43:04 | 000,776,440 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2011/06/02 11:02:34 | 000,026,112 | ---- | C] () -- C:\Users\Gabriel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/06/02 08:16:17 | 000,175,616 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2011/06/02 08:16:17 | 000,000,038 | ---- | C] () -- C:\Windows\avisplitter.ini
[2011/06/02 08:16:16 | 000,631,808 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2011/06/02 08:16:16 | 000,243,200 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2011/06/02 08:16:16 | 000,080,896 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll
[2011/06/01 17:31:47 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2010/12/21 02:48:24 | 002,968,064 | ---- | C] () -- C:\Windows\es.exe
[2010/11/09 20:45:32 | 000,102,744 | ---- | C] () -- C:\Windows\SysWow64\LogiDPPApp.exe
[2010/11/09 20:45:30 | 010,871,128 | ---- | C] () -- C:\Windows\SysWow64\LogiDPP.dll
[2010/11/09 20:45:20 | 000,316,248 | ---- | C] () -- C:\Windows\SysWow64\DevManagerCore.dll
[2009/07/13 23:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009/07/13 20:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009/07/13 20:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009/07/13 18:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009/07/13 17:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009/07/13 15:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009/06/10 15:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2004/02/20 14:36:34 | 000,416,256 | ---- | C] () -- C:\Windows\exchndl.dll

< End of report >

Extras.txt:

OTL Extras logfile created on: 12/28/2011 5:29:05 PM - Run 3
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\Gabriel\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.75 Gb Total Physical Memory | 2.41 Gb Available Physical Memory | 64.18% Memory free
7.50 Gb Paging File | 4.56 Gb Available in Paging File | 60.89% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 452.85 Gb Total Space | 126.56 Gb Free Space | 27.95% Space Free | Partition Type: NTFS

Computer Name: GABRIEL-PC | User Name: Gabriel | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (All) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.chm[@ = chm.file] -- C:\Windows\hh.exe (Microsoft Corporation)
.cpl[@ = cplfile] -- C:\Windows\SysNative\control.exe (Microsoft Corporation)
.hlp[@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.hta[@ = htafile] -- C:\Windows\SysWOW64\mshta.exe (Microsoft Corporation)
.html[@ = htmlfile] -- C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation)
.inf[@ = inffile] -- C:\Windows\SysNative\NOTEPAD.EXE (Microsoft Corporation)
.ini[@ = inifile] -- C:\Windows\SysNative\NOTEPAD.EXE (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
.js[@ = JSFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation)
.jse[@ = JSEFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation)
.reg[@ = regfile] -- C:\Windows\regedit.exe (Microsoft Corporation)
.txt[@ = txtfile] -- C:\Windows\SysNative\NOTEPAD.EXE (Microsoft Corporation)
.vbe[@ = VBEFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation)
.vbs[@ = VBSFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation)
.wsf[@ = WSFFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation)
.wsh[@ = WSHFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.bat [@ = batfile] -- "%1" %*
.chm [@ = chm.file] -- C:\Windows\hh.exe (Microsoft Corporation)
.cmd [@ = cmdfile] -- "%1" %*
.com [@ = comfile] -- "%1" %*
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.exe [@ = exefile] -- "%1" %*
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.hta [@ = htafile] -- C:\Windows\SysWOW64\mshta.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation)
.inf [@ = inffile] -- C:\Windows\SysWow64\NOTEPAD.EXE (Microsoft Corporation)
.ini [@ = inifile] -- C:\Windows\SysWow64\NOTEPAD.EXE (Microsoft Corporation)
.url [@ = InternetShortcut] -- C:\Windows\SysWow64\rundll32.exe (Microsoft Corporation)
.js [@ = JSFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation)
.jse [@ = JSEFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation)
.pif [@ = piffile] -- "%1" %*
.reg [@ = regfile] -- C:\Windows\SysWow64\regedit.exe (Microsoft Corporation)
.scr [@ = scrfile] -- "%1" /S
.txt [@ = txtfile] -- C:\Windows\SysWow64\NOTEPAD.EXE (Microsoft Corporation)
.vbe [@ = VBEFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation)
.vbs [@ = VBSFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation)
.wsf [@ = WSFFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation)
.wsh [@ = WSHFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation)

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
batfile [open] -- "%1" %*
batfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
chm.file [open] -- "%SystemRoot%\hh.exe" %1 (Microsoft Corporation)
cmdfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
cmdfile [open] -- "%1" %*
cmdfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htafile [open] -- C:\Windows\SysWOW64\mshta.exe "%1" %* (Microsoft Corporation)
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
inffile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
inffile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
inifile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
inifile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
jsfile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)
jsfile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation)
jsfile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)
jsefile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)
jsefile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation)
jsefile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [edit] -- %SystemRoot%\system32\notepad.exe "%1" (Microsoft Corporation)
regfile [open] -- regedit.exe "%1" (Microsoft Corporation)
regfile [merge] -- Reg Error: Key error.
regfile [print] -- %SystemRoot%\system32\notepad.exe /p "%1" (Microsoft Corporation)
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
txtfile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
txtfile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
txtfile [printto] -- %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" (Microsoft Corporation)
vbefile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
vbefile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
vbefile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
vbsfile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
vbsfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
vbsfile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
wsffile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
wsffile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
wsffile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
wshfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
batfile [open] -- "%1" %*
batfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
chm.file [open] -- "%SystemRoot%\hh.exe" %1 (Microsoft Corporation)
cmdfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
cmdfile [open] -- "%1" %*
cmdfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htafile [open] -- C:\Windows\SysWOW64\mshta.exe "%1" %* (Microsoft Corporation)
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
inffile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
inffile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
inifile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
inifile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
jsfile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)
jsfile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation)
jsfile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)
jsefile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)
jsefile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation)
jsefile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [edit] -- %SystemRoot%\system32\notepad.exe "%1" (Microsoft Corporation)
regfile [open] -- regedit.exe "%1" (Microsoft Corporation)
regfile [merge] -- Reg Error: Key error.
regfile [print] -- %SystemRoot%\system32\notepad.exe /p "%1" (Microsoft Corporation)
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
txtfile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
txtfile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
txtfile [printto] -- %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" (Microsoft Corporation)
vbefile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
vbefile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
vbefile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
vbsfile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
vbsfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
vbsfile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
wsffile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
wsffile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
wsffile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
wshfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe" (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0090A87C-3E0E-43D4-AA71-A71B06563A4A}" = Dell Support Center
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{138A4072-9E64-46BD-B5F9-DB2BB395391F}" = LWS VideoEffects
"{1B8ABA62-74F0-47ED-B18C-A43128E591B8}" = Windows Live ID Sign-in Assistant
"{1E9FC118-651D-4934-97BE-E53CAE5C7D45}" = Microsoft_VC80_MFCLOC_x86_x64
"{23170F69-40C1-2702-0920-000001000000}" = 7-Zip 9.20 (x64 edition)
"{26A24AE4-039D-4CA4-87B4-2F86416024FF}" = Java™ 6 Update 24 (64-bit)
"{2AF2EABE-CF18-CACB-E57C-A4902A3C36C8}" = AMD Media Foundation Decoders
"{3C9B2770-E66E-D289-56A0-95CFADA8EB26}" = AMD Catalyst Install Manager
"{439760BC-7737-4386-9B1D-A90A3E8A22EA}" = Apple Mobile Device Support
"{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}" = Microsoft_VC80_CRT_x86_x64
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime
"{5DA7A265-A5E3-4DB5-81C1-588238139A24}" = Oracle VM VirtualBox 4.0.12
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{656DEEDE-F6AC-47CA-A568-A1B4E34B5760}" = Windows Live Remote Service Resources
"{6A7F7056-14E1-D8E4-0B87-BC3F18EAC8AC}" = ATI AVIVO64 Codecs
"{74E85F31-573F-45BF-8939-4D2BCDCC2083}" = LEGO MINDSTORMS NXT Driver for x64
"{847B0532-55E3-4AAF-8D7B-E3A1A7CD17E5}" = Windows Live Remote Client Resources
"{8557397C-A42D-486F-97B3-A2CBC2372593}" = Microsoft_VC90_ATL_x86_x64
"{8A7CAA24-7B23-410B-A7C3-F994B0944160}" = Microsoft Virtual PC 2007
"{8C95F41B-70D9-7EF8-BC80-B1C896B5B747}" = AMD Fuel
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{8EBA8727-ADC2-477B-9D9A-1A1836BE4E05}" = Dell Edoc Viewer
"{90140000-006D-0409-1000-0000000FF1CE}" = Microsoft Office Click-to-Run 2010
"{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64
"{94D70749-4281-39AC-AD90-B56A0E0A402E}" = Microsoft Visual C++ 2010 x64 Runtime - 10.0.30319
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}" = Microsoft_VC90_MFC_x86_x64
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B2913230-094D-4F41-9EEF-CE9571C450D8}" = SpyroPortalDriver
"{B613A9BB-2B34-4824-A4BE-2427653D59D6}" = iTunes
"{BCA26999-EC22-3007-BB79-638913079C9A}" = Microsoft Visual Studio 2010 Express Prerequisites x64 - ENU
"{C73A3942-84C8-4597-9F9B-EE227DCBA758}" = Dell Dock
"{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}" = Microsoft_VC80_MFC_x86_x64
"{D07A61E5-A59C-433C-BCBD-22025FA2287B}" = Windows Live Language Selector
"{D4AD39AD-091E-4D33-BB2B-59F6FCB8ADC3}" = Microsoft SQL Server Compact 3.5 SP2 x64 ENU
"{D79C2CD4-7BCC-60AC-76C9-834CEEF1CDBE}" = ccc-utility64
"{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter
"{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319
"{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client
"{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service
"{E06357A3-5F44-B1AE-F4BA-9DAC26A209C9}" = ccc-utility64
"{E33AC780-456C-6295-E0F3-10A8D39A09FB}" = AMD Drag and Drop Transcoding
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"{FCADA26A-5672-31DD-BF0E-BA76ECF9B02D}" = Microsoft Help Viewer 1.0
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin 64-bit
"camcodec" = CamStudio Lossless Codec
"CCleaner" = CCleaner
"Dell Support Center" = Dell Support Center
"KLiteCodecPack64_is1" = K-Lite Codec Pack (64-bit) v4.6.0
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft Help Viewer 1.0" = Microsoft Help Viewer 1.0
"WinRAR archiver" = WinRAR 4.01 (64-bit)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0217E1D1-BCEF-4A61-AF6D-F7740F65A066}" = Pivot Pro Plugin
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}" = Battlefield 2™
"{055EE59D-217B-43A7-ABFF-507B966405D8}" = ATI Catalyst Control Center
"{07D20D73-A857-47D0-8804-CA5771903DA4}" = IconDeveloper
"{08610298-29AE-445B-B37D-EFBE05802967}" = LWS Pictures And Video
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0D29B7E9-CDFF-807D-1D4E-FFB77D809836}" = CCC Help Italian
"{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}" = Adobe Community Help
"{0DEA342C-15CB-4F52-97B6-06A9C4B9C06F}" = SDK
"{0ED7EE95-6A97-47AA-AD73-152C08A15B04}" = Dell DataSafe Local Backup
"{112C23F2-C036-4D40-BED4-0CB47BF5555C}" = Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 ENU
"{144D9816-818D-C36E-33A0-889A19C5EDA6}" = CCC Help Portuguese
"{14DD7530-CCD2-3798-B37D-3839ED6A441C}" = Microsoft Visual Studio 2010 ADO.NET Entity Framework Tools
"{15634701-BACE-4449-8B25-1567DA8C9FD3}" = CameraHelperMsi
"{1651216E-E7AD-4250-92A1-FB8ED61391C9}" = LWS Help_main
"{173F2B02-2AAA-414F-A2D8-44870BB98F7A}" = Shaun White Skateboarding
"{174A3B31-4C43-43DD-866F-73C9DB887B48}" = LWS Twitter
"{18B48555-8E30-46D0-B8EB-D93FA409F15E}" = TeenCoder - Windows Programming
"{18BED011-2EEF-1148-E90C-D6556565B2EC}" = CCC Help Polish
"{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
"{19A492A0-888F-44A0-9B21-D91700763F62}" = Catalyst Control Center - Branding
"{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker
"{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}" = Microsoft XNA Framework Redistributable 3.1
"{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}" = YouTube Downloader 3.4
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{1F77C418-2C90-459C-BD33-B56A4182B9FA}" = System Requirements Lab CYRI
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{20A4352A-237B-41DD-A6C0-3CD2F8E8D35C}" = VGA USB Camera
"{20C2435C-5B06-2E12-5087-116D8EF658B8}" = CCC Help Korean
"{21DF0294-6B9D-4741-AB6F-B2ABFBD2387E}" = LWS YouTube Plugin
"{25A1E6A4-2DBD-4AC0-8650-8EA9A45B183D}" = Supreme Commander
"{26791563-0BDF-1FBE-CC21-994A09559CCE}" = Catalyst Control Center Graphics Previews Common
"{26A24AE4-039D-4CA4-87B4-2F83216024FF}" = Java™ 6 Update 29
"{2902F983-B4C1-44BA-B85D-5C6D52E2C441}" = Windows Live Mesh ActiveX Control for Remote Connections
"{299C0434-4F4E-341F-A916-4E07AEB35E79}" = Microsoft Visual Studio Tools for Applications 2.0 Runtime
"{2A2F3AE8-246A-4252-BB26-1BEB45627074}" = Microsoft SQL Server System CLR Types
"{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}" = Microsoft XNA Framework Redistributable 4.0
"{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App" = Update Installer for WildTangent Games App
"{31D95937-B237-405D-920C-A3EF4E482395}" = Supreme Commander - Forged Alliance
"{330D5210-3C4F-E632-2714-BE23C7C10B9F}" = Catalyst Control Center Graphics Previews Common
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery
"{373B1718-8CC5-4567-8EE2-9033AD08A680}" = Roblox
"{39F7653F-3E82-4FED-9EE5-6B9253EA57E3}" = Command & Conquer 3 Tiberium Wars™ Demo
"{3A25676C-038C-504A-FA32-F971B36BF7EE}" = Catalyst Control Center Graphics Previews Vista
"{3A9FC03D-C685-4831-94CF-4EDFD3749497}" = Microsoft SQL Server Compact 3.5 SP2 ENU
"{3B6E3FC6-274C-4B6C-BC85-5C3B15DE18E2}" = Mega Manager
"{3B8FF075-F41B-89DD-41F7-B90A6A01B8F8}" = Catalyst Control Center Graphics Full New
"{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}" = Hi-Command
"{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = erLT
"{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}" = NVIDIA PhysX
"{40AE01BE-A290-4FFB-8DAB-C624C17DC87E}" = Vegas Movie Studio HD Platinum 10.0
"{415807D5-45E8-4635-A5A9-C81000008400}" = BLAZBLUE -CALAMITY TRIGGER-
"{43544FB5-BC1D-939A-7FDA-F7F3E5AEC35B}" = AMD VISION Engine Control Center
"{44453D07-5BDB-45F8-E3DF-20A7F76407D0}" = CCC Help Czech
"{466E1C7A-AEAF-2F55-26E2-A727B761AAB0}" = CCC Help Dutch
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace
"{4E968D9C-21A7-4915-B698-F7AEB913541D}" = Microsoft SQL Server 2008 R2 Management Objects
"{50ED6ABB-078C-8B17-1181-DC6DDB4E52DC}" = Catalyst Control Center InstallProxy
"{5449FB4F-1802-4D5B-A6D8-087DB1142147}" = Realtek HDMI Audio Driver for ATI
"{56E55229-CBE7-211E-0CD1-AB3712AF177A}" = CCC Help Danish
"{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime
"{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack
"{59F24743-2EA1-3A45-B8C2-6E0E1E078FA8}" = Microsoft Visual C# 2010 Express - ENU
"{5B7EDCF8-E6AD-4E99-972C-34BF1F07B349}" = LEGO MINDSTORMS NXT Software v2.0
"{5CE2D957-59C2-4489-481E-2E38EAE59762}" = CCC Help Spanish
"{5DEB2BA0-0E1F-D5CB-A0C4-F738590BE973}" = Catalyst Control Center Core Implementation
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{6530FDAA-5B1F-4830-95BB-650E9804D239}" = UE3Redist
"{6675371D-22CD-F426-DC4C-9DDF594D0BBE}" = CCC Help Chinese Traditional
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6839108F-BC82-30BC-776F-D635EDA2B3D4}" = CCC Help Russian
"{6B1ADEE1-1595-82C4-6FB9-97B65F68E9EE}" = CCC Help Swedish
"{6B206787-2964-D9D8-A1F6-7D98B6BCD7F9}" = CCC Help Hungarian
"{6C1D47CC-682C-4673-8CA8-DEE659628599}" = LEGO MINDSTORMS NXT Migration Package
"{6F76EC3C-34B1-436E-97FB-48C58D7BEDCD}" = LWS Gallery
"{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-dell" = WildTangent Games App (Dell Games)
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{71E66D3F-A009-44AB-8784-75E2819BA4BA}" = LWS Motion Detection
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{73EFFD76-009E-A554-AA1F-106DBE475525}" = CCC Help French
"{775FCAEB-C804-02B9-135F-D9A189A1CCDC}" = CCC Help English
"{77D41B26-31DE-4EBA-F974-26D67B728FDB}" = CCC Help Turkish
"{78D2854E-5DBF-11E7-B41F-47D203C8ED66}" = CCC Help English
"{7DB9F1E5-9ACB-410D-A7DC-7A3D023CE045}" = Dell Getting Started Guide
"{7EC66A95-AC2D-4127-940B-0445A526AB2F}" = Dell DataSafe Online
"{800218C2-2E07-461C-85D6-8FDB4F9161D9}" = FPS Creator Free
"{80956555-A512-4190-9CAD-B000C36D6B6B}" = Windows Live Messenger
"{820B6609-4C97-3A2B-B644-573B06A0F0CC}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}" = Microsoft Games for Windows - LIVE Redistributable
"{833FE2B0-DCD7-8995-6374-F69F1A84055F}" = CCC Help German
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{83C8FA3C-F4EA-46C4-8392-D3CE353738D6}" = LWS Launcher
"{8937D274-C281-42E4-8CDB-A0B2DF979189}" = LWS Webcam Software
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8BBB5E4C-3F5E-4C07-BFBE-33B34600783A}" = LogMeIn Hamachi
"{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime
"{8D0BED50-BD2B-5EBA-7F04-5513F1B9EC74}" = CCC Help Thai
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{90140011-0066-0409-0000-0000000FF1CE}" = Microsoft Office Starter 2010 - English
"{907B4640-266B-4A21-92FB-CD1A86CD0F63}" = RollerCoaster Tycoon 3
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{98C7AEBC-350A-52D6-6886-76FB98C6A503}" = Catalyst Control Center Graphics Full Existing
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9B55759D-424F-4CB1-B84E-AAE83CC1D20A}_is1" = Nitronic Rush (2011-12-12) version 20111212.0
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9CCB3527-C033-415C-88B6-27173B5E3592}" = Tron: Evolution
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{9DAEA76B-E50F-4272-A595-0124E826553D}" = LWS WLM Plugin
"{9DF0196F-B6B8-4C3A-8790-DE42AA530101}" = SPORE™
"{9FD6F1A8-5550-46AF-8509-271DF0E768B5}" = Dual-Core Optimizer
"{A0C91188-C88F-4E86-93E6-CD7C9A266649}" = Windows Live Mesh
"{a0fe116e-9a8a-466f-aee0-625cb7c207e3}" = Microsoft Visual C++ 2005 Redistributable - KB2467175
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A586DC50-B18D-48FB-B7CC-A598200457C2}" = Acer eDisplay Management
"{A69D7B32-2BE9-42BF-B576-69B5E0FF7394}" = Catalyst Control Center - Branding
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A9668246-FB70-4103-A1E3-66C9BC2EFB49}" = Dell DataSafe Local Backup - Support Software
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AA31EA7B-7917-4000-949B-38E91F848A25}" = Internet Explorer
"{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}" = Microsoft Visual Studio Tools for Applications 2.0 - ENU
"{AA59DDE4-B672-4621-A016-4C248204957A}" = Skype™ 5.5
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AAF4238F-7C29-451D-9925-C753271A5728}" = Microsoft Visual C++ Run Time Lib Setup
"{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer
"{ABD3F7BD-02E6-9150-2D34-F9F3109FA466}" = Catalyst Control Center InstallProxy
"{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.1)
"{B1AFB194-4577-4A33-9815-49845F8F42E9}" = Playstation 2 Emulator 1.00.48
"{B3575D00-27EF-49C2-B9E0-14B3D954E992}" = Apple Application Support
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Toolbars
"{B6D7A630-9136-490E-B190-D0E71813BCAE}" = Battlefield 1942 Singleplayer Demo
"{B77128D1-6826-437A-BD8E-8828809A2A95}" = SpyroDriver
"{B93DCF58-AA57-41EC-8D69-B05C66C6312D}_is1" = SUPER © v2011.build.48 (April 23, 2011) version v2011.build.48
"{BE6F906F-9F86-5CED-E122-8C6A162295B8}" = Skins
"{C07F8D75-7A8D-400E-A8F9-A3F396B49BB1}" = SPORE™ Creepy & Cute Parts Pack
"{C0E8FE43-C35B-451D-B35F-D4BD056D70E7}" = Camtasia Studio 7
"{C194D333-B84A-4BB7-B35E-060732D98DC4}" = GPGNet
"{C53F001E-5912-4E76-AC49-9AC20B36B1A2}" = MSM2MSI_gstudio
"{C6579A65-9CAE-4B31-8B6B-3306E0630A66}" = Apple Software Update
"{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail
"{CD6163D8-60AB-4681-A79E-B677C2D98BA5}" = Mega Manager
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}" = Microsoft .NET Framework 4 Multi-Targeting Pack
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D1E89604-DFBE-2DF8-BE82-A0076107AA32}" = CCC Help Finnish
"{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1" = Rapture3D 2.3.26 Game
"{D40EB009-0499-459c-A8AF-C9C110766215}" = Logitech Webcam Software
"{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D70FB770-BE91-4A1C-942B-F2F7C3BFB2C7}" = LEGO MINDSTORMS NXT - English Language Pack
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources
"{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}" = Adobe Media Player
"{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E50D9AC2-EB3C-3161-FF97-4E800D106D0E}" = CCC Help Norwegian
"{E655DDFC-24DB-4FC3-8474-271E911309B4}_is1" = Elsword version 1.15
"{E65DADC9-D6B1-6706-41DE-FA19149869E5}" = Catalyst Control Center Graphics Light
"{E8627DF4-F0B2-E7C1-0E66-2779E4F0AAC8}" = HydraVision
"{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger
"{EBF60699-3D2E-6677-D504-5B4846171C8E}" = ccc-core-static
"{EED027B7-0DB6-404B-8F45-6DFEE34A0441}" = LWS Video Mask Maker
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F4044E58-9707-2918-1DA9-D3E400F0B699}" = CCC Help Japanese
"{F47C37A4-7189-430A-B81D-739FF8A7A554}" = Consumer In-Home Service Agreement
"{F5F5364A-7B98-4E86-9B5B-9C916F9C8439}" = Guitar Praise
"{F70ACEA1-05C5-6D98-9C0C-F3AD818E1E33}" = CCC Help Chinese Standard
"{F835D378-5073-8C86-70EF-9A3B739F9897}" = CCC Help Greek
"{FD347316-609E-4149-983C-84B40338D38A}" = Battlefield 2142 Demo
"{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
"{FF167195-9EE4-46C0-8CD7-FBA3457E88AB}" = LWS Facebook
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"{FFD3A1EB-F550-3309-7AFE-17E4BB778423}" = Catalyst Control Center Localization All
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Akamai" = Akamai NetSession Interface Service
"Audacity 1.3 Beta (Unicode)_is1" = Audacity 1.3.13 (Unicode)
"AviSynth" = AviSynth 2.5
"BattlEye A2 Free" = BattlEye (A2Free) Uninstall
"CamStudio" = CamStudio
"Chatango" = Chatango Message Catcher
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"DAEMON Tools Lite" = DAEMON Tools Lite
"Dell Dock" = Dell Dock
"Deus Ex Demo" = Deus Ex Demo
"EdenEternal" = EdenEternal
"Electric Sheep" = Electric Sheep 2.7b29
"FormatFactory" = FormatFactory 2.70
"Fraps" = Fraps (remove only)
"Game Booster_is1" = Game Booster 3
"Game Maker 7.0" = Game Maker 7.0
"GFWL_{415807D5-45E8-4635-A5A9-C81000008400}" = BLAZBLUE -CALAMITY TRIGGER-
"GoToAssist" = GoToAssist 8.0.0.514
"Grand Chase" = Grand Chase
"Half-Life 2 Awakening 1.1" = Half-Life 2 Awakening 1.1
"IconDeveloper" = IconDeveloper
"InstallBrain Updater Service" = InstallBrain Updater Service
"Jailbreak: Source_is1" = Jailbreak: Source 0.6
"KLiteCodecPack_is1" = K-Lite Mega Codec Pack 7.1.0
"LAME for Audacity_is1" = LAME v3.98.3 for Audacity
"Logitech Vid" = Logitech Vid HD
"LogMeIn Hamachi" = LogMeIn Hamachi
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware version 1.51.2.1300
"Microsoft Visual C# 2010 Express - ENU" = Microsoft Visual C# 2010 Express - ENU
"Mozilla Firefox 8.0 (x86 en-US)" = Mozilla Firefox 8.0 (x86 en-US)
"MSC" = McAfee SecurityCenter
"New LEGO Digital Designer" = LEGO Digital Designer
"Notepad++" = Notepad++
"Office14.Click2Run" = Microsoft Office Click-to-Run 2010
"OnLive" = OnLive
"OpenAL" = OpenAL
"PunkBusterSvc" = PunkBuster Services
"SFFixed" = SourceForts 1.9.4.1 Fixed
"StarCraft II Demo" = StarCraft II Demo
"Steam App 13140" = America's Army 3
"Steam App 1500" = Darwinia
"Steam App 1510" = Uplink
"Steam App 1520" = DEFCON
"Steam App 1530" = Multiwinia
"Steam App 17020" = Global Agenda
"Steam App 17500" = Zombie Panic Source
"Steam App 17700" = Insurgency
"Steam App 18500" = Defense Grid: The Awakening
"Steam App 201210" = PoxNora
"Steam App 201230" = EverQuest II
"Steam App 215" = Source SDK Base 2006
"Steam App 22000" = World of Goo
"Steam App 22650" = Alien Breed 2: Assault
"Steam App 320" = Half-Life 2: Deathmatch
"Steam App 340" = Half-Life 2: Lost Coast
"Steam App 36630" = Rusty Hearts
"Steam App 400" = Portal
"Steam App 420" = Half-Life 2: Episode Two
"Steam App 42910" = Magicka
"Steam App 440" = Team Fortress 2
"Steam App 45000" = Sol Survivor
"Steam App 48010" = LIMBO Demo
"Steam App 56400" = Warhammer® 40,000®: Dawn of War® II – Retribution™
"Steam App 620" = Portal 2
"Steam App 630" = Alien Swarm
"Steam App 6580" = Lost Planet: Extreme Condition Trial
"Steam App 70430" = Chantelise - Demo
"Steam App 8510" = EVE Online Demo
"Steam App 90530" = Rise of Immortals
"Steam App 91200" = Anomaly Warzone Earth
"Steam App 91600" = Sanctum
"Steam App 91900" = Post Apocalyptic Mayhem
"Steam App 93200" = Revenge of the Titans
"Steam App 98800" = Dungeons of Dredmor
"Steam App 99900" = Spiral Knights
"Super Collapse! 3" = Super Collapse! 3
"Tetris Worlds" = Tetris Worlds
"Unity" = Unity
"uTorrent" = µTorrent
"WildTangent dell Master Uninstall" = WildTangent Games
"WinLiveSuite" = Windows Live Essentials
"WT089409" = Bejeweled 2 Deluxe
"WT089410" = Blackhawk Striker 2
"WT089411" = Build-a-lot 2
"WT089412" = Cake Mania
"WT089413" = Chuzzle Deluxe
"WT089414" = Diner Dash 2 Restaurant Rescue
"WT089415" = Dora's World Adventure
"WT089418" = FATE
"WT089420" = Jewel Quest
"WT089422" = Jewel Quest Solitaire 2
"WT089426" = Poker Superstars III
"WT089430" = Virtual Villagers 4 - The Tree of Life
"WT089433" = Polar Golfer
"WT089434" = Escape Whisper Valley ™
"WT089440" = Namco All-Stars PAC-MAN
"WT089443" = Bounce Symphony
"WT089444" = Final Drive Nitro
"WT089445" = Penguins!
"WT089446" = Wedding Dash - Ready, Aim, Love!
"WT089448" = Zuma Deluxe
"WT089450" = Farm Frenzy
"WT089452" = Plants vs. Zombies - Game of the Year
"WT089499" = Final Drive Fury
"WT089503" = Samantha Swift
"WT089507" = Luxor
"WT089508" = Polar Bowler
"YTdetect" = Yahoo! Detect

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{373B1718-8CC5-4567-8EE2-9033AD08A680}" = Roblox for Gabriel
"Akamai" = Akamai NetSession Interface
"InstallShield_{6530FDAA-5B1F-4830-95BB-650E9804D239}" = UE3Redist
"QUICKMEDIACONVERTER" = Quick Media Converter
"Spotify" = Spotify
"UnityWebPlayer" = Unity Web Player

========== Last 10 Event Log Errors ==========

Error reading Event Logs: The Event Service is not operating properly or the Event Logs are corrupt!

< End of report >
  • 0

#21
RKinner

RKinner

    Malware Expert

  • Expert
  • 19,800 posts
  • MVP
1. Double-click My Computer, and then right-click the hard disk that you want to check. C:
2. Click Properties, and then click Tools.
3. Under Error-checking, click Check Now. A dialog box that shows the Check disk options is displayed,
4. Check both boxes and then click Start.
You will receive the following message:
The disk check could not be performed because the disk check utility needs exclusive access to some Windows files on the disk. These files can be accessed by restarting Windows. Do you want to schedule the disk check to occur the next time you restart the computer?
Click Yes to schedule the disk check, but don't restart yet.

Right click on (My) Computer and select Manage (Continue) Then the Event Viewer. Next select Windows Logs. Right click on System and Clear Log, Clear. Repeat for Application. Reboot. The disk check will run and will probably take an hour or more to finish.


Start, All Programs, Accessories then right click on Command Prompt and Run as Administrator. Then type (with an Enter after each line).

sfc /scannow

(SPACE after sfc. This will check your critical system files. If it asks for a CD and you don't have one or it doesn't like your CD just tell it to SKIP.)

sigverif

Press Start in the new window. This will check your drivers. If you just get a few when it finishes tell me what they are. If you get a lot just look for those with newish dates (since about the time the problem started.)


1. Please download the Event Viewer Tool by Vino Rosso
http://images.malwar...om/vino/VEW.exe
and save it to your Desktop:
2. Right-click VEW.exe and Run AS Administrator
3. Under 'Select log to query', select:

* System
4. Under 'Select type to list', select:
* Error
* Warning


Then use the 'Number of events' as follows:


1. Click the radio button for 'Number of events'
Type 20 in the 1 to 20 box
Then click the Run button.
Notepad will open with the output log.


Please post the Output log in your next reply then repeat but select Application.


Have you proven that this is the computer that is causing the problem or did changing out the router fix the problem on the other computer?

The multiple yahoo thing is something I haven't seen before. Could be a problem with the hard drive which is why I had you run a check disk. Next step would be to export your firefox profile then uninstall firefox. download the latest version and reinstall. Check it to see if it has multiple yahoos then import your old profile.
http://kb.mozillazin...ofile_-_Firefox

The following programs need to be uninstalled and replaced with the latest versions:

Java™ 6 Update 24 (64-bit) Get the latest from java.com but you must use the 64 bit IE or you will just get the 32 bit version (which you also need)
Java™ 6 Update 29
Adobe Flash Player 10 ActiveX Uninstall then use IE to get the latest version from adobe.com
Adobe Flash Player 10 Plugin Uninstall then use Firefox to get the latest version from adobe.com

If you think this computer might be infected or you just want to make sure it is not then:


ComboFix

:!: It must be saved to your desktop, do not run it from your browser:!:

:!: Disable your Antivirus software when downloading or running Combofix. If it has Script Blocking features, please disable these as well. See: http://www.bleepingc...opic114351.html


Download and Save this file -- to your Desktop -- from either of these two sources:
http://download.blee...Bs/ComboFix.exe
http://subs.geekstogo.com/ComboFix.exe

Rightclick on ComboFix and select Run As Administrator to start the program.



* :!: Important: Have no other programs running. Your Task Bar should be clear of any program entries including your Browser.


* A window may open with a series of Disclaimers. Accept the Disclaimers to start the fix.

A caution - Do not run Combofix more than once. Do not touch your mouse/keyboard until the scan has completed, as this may cause the process to stall or your computer to lock. The scan will temporarily disable your desktop, and if interrupted may leave your desktop disabled. If this occurs, please reboot to restore the desktop. Even when ComboFix appears to be doing nothing, look at your Drive light. If it is flashing, Combofix is still at work.

A file will be created at => C:\Combofix.txt. I'll need to see that in your reply.


Download TDSSKiller:
http://support.kaspe.../tdsskiller.exe
Save it to your desktop then right click and Run as Administrator

If TDSSKiller alerts you that the system needs to reboot, please consent.
When done, a log file should be created on your C: drive named "TDSSKiller.txt" please copy and paste the contents in your next reply.


Download aswMBR.exe ( 511KB ) to your desktop.
Right click aswMBR.exe and Run as Administrator

change the a-v scan to None.
uncheck trace disk IO calls
Click the "Scan" button to start scan
On completion of the scan (Note if the Fix button is enabled (not the FixMBR button) and tell me) click save log, save it to your desktop and post in your next reply


Malwarebytes' Anti-Malware
:!: If you have a previous version of MalwareBytes', remove it via Add or Remove Programs and download a fresh copy. :!:

http://www.malwarebytes.org/mbam.php

SAVE Malwarebytes' Anti-Malware to your desktop.

* Double-click mbam-setup.exe and follow the prompts to install the program.
* At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
* If an update is found, it will download and install the latest version.
* Once the program has loaded, select Perform quick scan, then click Scan.
* When the scan is complete, click OK, then Show Results to view the results.

* Be sure that everything is checked, and click Remove Selected.

* When completed, a log will open in Notepad. Please save it to a convenient location.
* The log can also be found here:
C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-date (time).txt
* Post that log back here.



Ron
  • 0

#22
Jennifer2

Jennifer2

    Member

  • Topic Starter
  • Member
  • PipPip
  • 37 posts
At this point everything seems to be working good. I've done all the fixes to my daughters computer and this computer hasn't been slow so it may have been the router. But if you don't mind I'd like to do the things you suggested to check with this computer in one of your early posts, the ComboFix and others. If all seems well there then I'd say we are done. Thank you again. I love that you are able to help people like me. =)

Jennifer
  • 0

#23
Jennifer2

Jennifer2

    Member

  • Topic Starter
  • Member
  • PipPip
  • 37 posts
Here is the ComboFix log from the original computer. I'll send the TDSSKiller when I finish it.

Jennifer

ComboFix 11-12-29.04 - HP_Owner 12/29/2011 11:17:20.1.2 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.3327.2768 [GMT -6:00]
Running from: c:\documents and settings\HP_Owner\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\All Users\Application Data\Tarma Installer
c:\documents and settings\All Users\Application Data\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\_Setup.dll
c:\documents and settings\All Users\Application Data\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\_Setupx.dll
c:\documents and settings\All Users\Application Data\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\20081218170928.log
c:\documents and settings\All Users\Application Data\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\Setup.dat
c:\documents and settings\All Users\Application Data\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\Setup.exe
c:\documents and settings\All Users\Application Data\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\Setup.ico
c:\documents and settings\All Users\Application Data\TEMP
c:\documents and settings\All Users\Application Data\TEMP\DFC5A2B2.TMP
c:\documents and settings\Default User\WINDOWS
c:\documents and settings\HP_Owner\Local Settings\Application Data\assembly\tmp
c:\documents and settings\HP_Owner\WINDOWS
c:\documents and settings\UpdatusUser\WINDOWS
c:\program files\SelectRebates
c:\program files\SelectRebates\SelectRebatesDownload.exe
c:\program files\TotalRecipeSearch_14
c:\program files\TotalRecipeSearch_14\bar\Message\COMMON\8_step1.gif
c:\program files\TotalRecipeSearch_14\bar\Message\COMMON\index.htm
c:\program files\TotalRecipeSearch_14\bar\Message\COMMON\rebut4b.htm
c:\program files\TotalRecipeSearch_14\bar\Message\COMMON\shield.png
c:\program files\TotalRecipeSearch_14EI
c:\windows\Downloaded Program Files\f3initialsetup1.0.1.1.inf
c:\windows\system32\config\systemprofile\WINDOWS
c:\windows\system32\ps2.bat
c:\windows\system32\SET45.tmp
c:\windows\system32\SET47.tmp
c:\windows\system32\SET4B.tmp
c:\windows\system32\SET4C.tmp
c:\windows\system32\SET53.tmp
c:\windows\system32\SET55.tmp
D:\Autorun.inf
.
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_MYWEBSEARCHSERVICE
.
.
((((((((((((((((((((((((( Files Created from 2011-11-28 to 2011-12-29 )))))))))))))))))))))))))))))))
.
.
2011-12-27 21:56 . 2011-12-27 21:56 -------- d-----w- c:\documents and settings\HP_Owner\Local Settings\Application Data\D-Link Toolbar
2011-12-27 21:56 . 2011-12-27 21:56 -------- d-----w- c:\program files\D-Link Toolbar
2011-12-27 21:56 . 2011-12-27 21:56 -------- d-----w- c:\documents and settings\All Users\Application Data\D-Link Toolbar
2011-12-27 21:55 . 2011-12-27 21:55 -------- d-----w- c:\program files\Common Files\Software Update Utility
2011-12-27 21:15 . 2011-12-27 21:15 -------- d-----w- c:\documents and settings\HP_Owner\Application Data\VirtualStore
2011-12-19 19:56 . 2011-11-28 17:53 314456 ----a-w- c:\windows\system32\drivers\aswSP.sys
2011-12-19 19:56 . 2011-11-28 17:51 20568 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2011-12-19 19:56 . 2011-11-28 17:52 34392 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2011-12-19 19:56 . 2011-11-28 17:53 435032 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2011-12-19 19:56 . 2011-11-28 17:52 52952 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2011-12-19 19:56 . 2011-11-28 17:52 111320 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2011-12-19 19:56 . 2011-11-28 17:51 105176 ----a-w- c:\windows\system32\drivers\aswmon.sys
2011-12-19 19:56 . 2011-11-28 17:48 30808 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2011-12-19 19:56 . 2011-11-28 18:01 41184 ----a-w- c:\windows\avastSS.scr
2011-12-19 19:56 . 2011-11-28 18:01 199816 ----a-w- c:\windows\system32\aswBoot.exe
2011-12-19 19:56 . 2011-12-19 19:56 -------- d-----w- c:\program files\AVAST Software
2011-12-19 19:56 . 2011-12-19 19:56 -------- d-----w- c:\documents and settings\All Users\Application Data\AVAST Software
2011-12-14 12:11 . 2011-12-14 12:11 525526 ----a-w- c:\windows\system32\PerfStringBackup.TMP
2011-12-12 03:48 . 2011-12-12 03:58 -------- d-----w- c:\documents and settings\All Users\Application Data\ErrorEND
2011-12-12 03:47 . 2011-12-12 03:47 -------- d-----w- c:\program files\ErrorEND
2011-12-05 04:29 . 2011-12-05 04:29 -------- d-----w- c:\documents and settings\HP_Owner\Application Data\PC Tools
2011-12-05 04:16 . 2011-12-05 04:16 -------- d-----w- c:\documents and settings\HP_Owner\Application Data\TestApp
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-11-27 19:34 . 2011-06-29 01:14 414368 -c--a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-11-27 01:39 . 2011-11-27 01:39 81920 ----a-w- c:\windows\ALCFDRTM.EXE
2011-11-27 01:39 . 2007-11-16 13:54 81920 -c--a-w- c:\windows\ALCFDRTM.VER
2011-11-23 13:25 . 2004-08-07 18:47 1859584 ----a-w- c:\windows\system32\win32k.sys
2011-11-04 19:20 . 2004-08-07 18:47 916992 ----a-w- c:\windows\system32\wininet.dll
2011-11-04 19:20 . 2004-08-07 18:46 43520 ----a-w- c:\windows\system32\licmgr10.dll
2011-11-04 19:20 . 2004-08-07 18:46 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2011-11-04 11:23 . 2004-08-07 18:46 385024 ----a-w- c:\windows\system32\html.iec
2011-11-01 16:07 . 2004-08-07 18:47 1288704 ----a-w- c:\windows\system32\ole32.dll
2011-10-28 05:31 . 2004-08-07 18:46 33280 ----a-w- c:\windows\system32\csrsrv.dll
2011-10-25 13:37 . 2004-08-07 18:47 2148864 ----a-w- c:\windows\system32\ntoskrnl.exe
2011-10-25 12:52 . 2004-08-04 05:59 2027008 ----a-w- c:\windows\system32\ntkrnlpa.exe
2011-10-18 11:13 . 2004-08-07 18:46 186880 ----a-w- c:\windows\system32\encdec.dll
2011-10-17 15:58 . 2004-08-07 20:14 69632 -c--a-w- c:\windows\agrsmdel.exe
2011-10-17 15:58 . 2004-08-07 20:14 1149888 -c--a-w- c:\windows\system32\drivers\AGRSM.sys
2011-10-17 15:56 . 2011-10-17 15:56 73728 -c--a-w- c:\windows\system32\RtNicProp32.dll
2011-10-17 15:56 . 2011-10-17 15:56 130432 -c--a-w- c:\windows\system32\drivers\Rtnicxp.sys
2011-10-10 14:22 . 2004-08-07 19:01 692736 -c--a-w- c:\windows\system32\inetcomm.dll
2011-08-24 21:00 . 2011-08-24 23:39 161736 -c--a-w- c:\program files\14res.dll
2011-08-21 18:37 . 2011-07-06 21:11 134104 -c--a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2011-05-17 1490312]
.
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2011-05-17 1490312]
.
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2011-11-28 18:01 122512 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WxPub"="c:\progra~1\AWS\PWSPub\PWSPub.exe" [2005-12-02 622592]
"Search Protection"="c:\program files\Yahoo!\Search Protection\SearchProtection.exe" [2009-02-23 111856]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-12-14 39408]
"Weather"="c:\program files\AWS\WeatherBug\Weather.exe" [2010-10-29 1652736]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ApnUpdater"="c:\program files\Ask.com\Updater\Updater.exe" [2011-05-17 395144]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2011-05-21 13895272]
"nwiz"="c:\program files\NVIDIA Corporation\nView\nwiz.exe" [2011-05-05 1632360]
"AlcWzrd"="ALCWZRD.EXE" [2010-11-03 2815592]
"googletalk"="c:\program files\Google\Google Talk\googletalk.exe" [2007-01-01 3739648]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2011-11-28 3744552]
.
c:\documents and settings\All Users\Start Menu\Programs\Startup\
APC UPS Status.lnk - c:\program files\APC\APC PowerChute Personal Edition\Display.exe [2008-11-7 221247]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableLinkedConnections"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
2011-05-21 11:01 111208 -c--a-w- c:\windows\system32\nvmctray.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Road Runner PhotoShow Media Manager]
2007-06-22 21:08 357616 ----a-w- c:\progra~1\ROADRU~1\PHOTOS~1\data\Xtras\mssysmgr.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
2010-11-03 23:15 84584 ----a-w- c:\windows\SOUNDMAN.EXE
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqpse.exe"=
"c:\\Program Files\\Common Files\\HP\\Digital Imaging\\Bin\\hpqPhotoCrm.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqsudi.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqpsapp.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\NVIDIA Corporation\\NVIDIA Updatus\\daemonu.exe"=
"c:\\Program Files\\Google\\Google Talk\\googletalk.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009
.
R0 tdrpman273;Acronis Try&Decide and Restore Points filter (build 273);c:\windows\system32\drivers\tdrpm273.sys [6/11/2011 8:35 AM 752128]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [12/19/2011 1:56 PM 435032]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [12/19/2011 1:56 PM 314456]
R2 afcdpsrv;Acronis Nonstop Backup Service;c:\program files\Common Files\Acronis\CDP\afcdpsrv.exe [6/11/2011 8:35 AM 3246040]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [12/19/2011 1:56 PM 20568]
R2 cpuz134;cpuz134;c:\windows\system32\drivers\cpuz134_x32.sys [12/4/2010 1:46 PM 20328]
R2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [10/17/2011 9:45 AM 2214504]
R3 afcdp;afcdp;c:\windows\system32\drivers\afcdp.sys [6/11/2011 8:35 AM 167968]
R3 usbvm328;HP Camera;c:\windows\system32\drivers\usbvm326.sys [1/24/2008 7:42 PM 219648]
R3 vmfilter323;VC0326 filter service for Serome;c:\windows\system32\drivers\vmfilter323.sys [1/24/2008 7:42 PM 475264]
S0 TfFsMon;TfFsMon;c:\windows\system32\drivers\TfFsMon.sys --> c:\windows\system32\drivers\TfFsMon.sys [?]
S0 TFSysMon;TfSysMon;c:\windows\system32\drivers\TfSysMon.sys --> c:\windows\system32\drivers\TfSysMon.sys [?]
S2 gupdate1cc08b836b4b45e;Google Update Service (gupdate1cc08b836b4b45e);c:\program files\Google\Update\GoogleUpdate.exe [2/2/2010 10:09 PM 135664]
S3 dump_wmimmc;dump_wmimmc; [x]
S3 gupdatem;Google Update Service (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [2/2/2010 10:09 PM 135664]
S3 npggsvc;nProtect GameGuard Service;c:\windows\system32\GameMon.des -service --> c:\windows\system32\GameMon.des -service [?]
S3 TfNetMon;TfNetMon; [x]
.
Contents of the 'Scheduled Tasks' folder
.
2011-12-12 c:\windows\Tasks\ErrorEND.job
- c:\program files\ErrorEND\ErrorEND.exe [2011-03-09 12:23]
.
2011-12-29 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-03 04:09]
.
2011-12-29 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-03 04:09]
.
2011-12-29 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-749141082-900969977-621589620-1009Core.job
- c:\documents and settings\HP_Owner\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2011-06-28 01:06]
.
2011-12-29 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-749141082-900969977-621589620-1009UA.job
- c:\documents and settings\HP_Owner\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2011-06-28 01:06]
.
2011-12-29 c:\windows\Tasks\Scheduled Update for Ask Toolbar.job
- c:\program files\Ask.com\UpdateTask.exe [2011-05-17 18:29]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.foxnews.com/
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = hxxp://us.rd.yahoo.com/customize/ie/defaults/su/msgr9/*http://www.yahoo.com
Trusted Zone: intuit.com\ttlc
TCP: DhcpNameServer = 192.168.0.1
FF - ProfilePath - c:\documents and settings\HP_Owner\Application Data\Mozilla\Firefox\Profiles\9xwzzl3d.default\
FF - prefs.js: browser.search.selectedEngine - Ask.com
FF - prefs.js: browser.startup.homepage - hxxp://www.facebook.com/|http://www.blogger.com/home|http://pinterest.com/popular/|http://twitter.com/#!/|https://plus.google.com/
FF - prefs.js: keyword.URL - hxxp://websearch.ask.com/redirect?client=ff&src=kw&tb=WBV5&o=14540&locale=en_US&apn_uid=E7065ABC-7E40-4966-BAF2-84197A7AB6C3&apn_ptnrs=WK&apn_sauid=F3727F7B-57D4-470B-8CA7-E7EE6841303F&apn_dtid=YYYYYYYYUS&q=
FF - prefs.js: network.proxy.type - 0
FF - user.js: network.protocol-handler.warn-external.dnupdate - false
.
- - - - ORPHANS REMOVED - - - -
.
Toolbar-8EAB99C9-F9EC-4b64-A4BA-D9BCAE8779C2 - (no file)
Toolbar-Locked - (no file)
WebBrowser-{FD2FD708-1F6F-4B68-B141-C5778F0C19BB} - (no file)
AddRemove-{889DF117-14D1-44EE-9F31-C5FB5D47F68B} - c:\docume~1\ALLUSE~1\APPLIC~1\TARMAI~1\{889DF~1\Setup.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-12-29 11:45
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
.
C:\## aswSnx private storage
.
scan completed successfully
hidden files: 1
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\npggsvc]
"ImagePath"="c:\windows\system32\GameMon.des -service"
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'explorer.exe'(3980)
c:\windows\system32\WININET.dll
c:\program files\Google\GoogleToolbarNotifier\5.7.7018.1622\gth.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Other Running Processes ------------------------
.
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files\Common Files\Acronis\Schedule2\schedul2.exe
c:\program files\APC\APC PowerChute Personal Edition\mainserv.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\Common Files\Intuit\Update Service\IntuitUpdateService.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\program files\Yahoo!\SoftwareUpdate\YahooAUService.exe
c:\program files\Canon\CAL\CALMAIN.exe
c:\windows\ALCWZRD.EXE
c:\program files\APC\APC PowerChute Personal Edition\apcsystray.exe
c:\windows\system32\wscntfy.exe
.
**************************************************************************
.
Completion time: 2011-12-29 11:52:20 - machine was rebooted
ComboFix-quarantined-files.txt 2011-12-29 17:52
.
Pre-Run: 153,693,663,232 bytes free
Post-Run: 153,847,136,256 bytes free
.
- - End Of File - - B87CBF045E4B22DF06675D3AD067A06B
  • 0

#24
RKinner

RKinner

    Malware Expert

  • Expert
  • 19,800 posts
  • MVP
Uninstall

Ask Toolbar
(Yahoo) Search Protection


Copy the text between the lines of stars by highlighting and Ctrl + c.

******************************************

Killall::

DirLook::
C:\Program Files\Common
%user%\library

Driver::
TfFsMon
TFSysMon
dump_wmimmc
npggsvc
TfNetMon

******************************************

Now open notepad (Start, Run, notepad, OK) and Ctrl + V to paste the text into Notepad. Make sure you got it all then File, SAVE AS, (to your Desktop), CFScript , OK. Close notepad. (Overwrite the old one if it's still there.) You should see a file CFScript.txt on your desktop.

Pause your anti-virus.

Drag CFScript.txt over to Combofix and let go Combofix should start on its own.

Post the new log.
  • 0

#25
Jennifer2

Jennifer2

    Member

  • Topic Starter
  • Member
  • PipPip
  • 37 posts
Here is the ComboFix log. I'll start the TDSSKiller now. Sorry for the delays. We've been out enjoying this beautiful Texas weather.

Jennifer

ComboFix 11-12-29.04 - HP_Owner 12/29/2011 14:32:19.2.2 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.3327.2712 [GMT -6:00]
Running from: c:\documents and settings\HP_Owner\Desktop\ComboFix.exe
Command switches used :: c:\documents and settings\HP_Owner\Desktop\CFScript.txt
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_DUMP_WMIMMC
-------\Legacy_TFFSMON
-------\Legacy_TFNETMON
-------\Legacy_TFSYSMON
-------\Service_dump_wmimmc
-------\Service_npggsvc
-------\Service_TfFsMon
-------\Service_TfNetMon
-------\Service_TFSysMon
.
.
((((((((((((((((((((((((( Files Created from 2011-11-28 to 2011-12-29 )))))))))))))))))))))))))))))))
.
.
2011-12-29 20:25 . 2011-12-29 20:29 -------- d-----w- c:\documents and settings\HP_Owner\Local Settings\Application Data\AskToolbar
2011-12-27 21:56 . 2011-12-27 21:56 -------- d-----w- c:\documents and settings\HP_Owner\Local Settings\Application Data\D-Link Toolbar
2011-12-27 21:56 . 2011-12-27 21:56 -------- d-----w- c:\program files\D-Link Toolbar
2011-12-27 21:56 . 2011-12-27 21:56 -------- d-----w- c:\documents and settings\All Users\Application Data\D-Link Toolbar
2011-12-27 21:55 . 2011-12-27 21:55 -------- d-----w- c:\program files\Common Files\Software Update Utility
2011-12-27 21:15 . 2011-12-27 21:15 -------- d-----w- c:\documents and settings\HP_Owner\Application Data\VirtualStore
2011-12-19 19:56 . 2011-11-28 17:53 314456 ----a-w- c:\windows\system32\drivers\aswSP.sys
2011-12-19 19:56 . 2011-11-28 17:51 20568 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2011-12-19 19:56 . 2011-11-28 17:52 34392 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2011-12-19 19:56 . 2011-11-28 17:53 435032 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2011-12-19 19:56 . 2011-11-28 17:52 52952 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2011-12-19 19:56 . 2011-11-28 17:52 111320 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2011-12-19 19:56 . 2011-11-28 17:51 105176 ----a-w- c:\windows\system32\drivers\aswmon.sys
2011-12-19 19:56 . 2011-11-28 17:48 30808 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2011-12-19 19:56 . 2011-11-28 18:01 41184 ----a-w- c:\windows\avastSS.scr
2011-12-19 19:56 . 2011-11-28 18:01 199816 ----a-w- c:\windows\system32\aswBoot.exe
2011-12-19 19:56 . 2011-12-19 19:56 -------- d-----w- c:\program files\AVAST Software
2011-12-19 19:56 . 2011-12-19 19:56 -------- d-----w- c:\documents and settings\All Users\Application Data\AVAST Software
2011-12-14 12:11 . 2011-12-14 12:11 525526 ----a-w- c:\windows\system32\PerfStringBackup.TMP
2011-12-12 03:48 . 2011-12-12 03:58 -------- d-----w- c:\documents and settings\All Users\Application Data\ErrorEND
2011-12-12 03:47 . 2011-12-12 03:47 -------- d-----w- c:\program files\ErrorEND
2011-12-05 04:29 . 2011-12-05 04:29 -------- d-----w- c:\documents and settings\HP_Owner\Application Data\PC Tools
2011-12-05 04:16 . 2011-12-05 04:16 -------- d-----w- c:\documents and settings\HP_Owner\Application Data\TestApp
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-11-27 19:34 . 2011-06-29 01:14 414368 -c--a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-11-27 01:39 . 2011-11-27 01:39 81920 ----a-w- c:\windows\ALCFDRTM.EXE
2011-11-27 01:39 . 2007-11-16 13:54 81920 -c--a-w- c:\windows\ALCFDRTM.VER
2011-11-23 13:25 . 2004-08-07 18:47 1859584 ----a-w- c:\windows\system32\win32k.sys
2011-11-04 19:20 . 2004-08-07 18:47 916992 ----a-w- c:\windows\system32\wininet.dll
2011-11-04 19:20 . 2004-08-07 18:46 43520 ----a-w- c:\windows\system32\licmgr10.dll
2011-11-04 19:20 . 2004-08-07 18:46 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2011-11-04 11:23 . 2004-08-07 18:46 385024 ----a-w- c:\windows\system32\html.iec
2011-11-01 16:07 . 2004-08-07 18:47 1288704 ----a-w- c:\windows\system32\ole32.dll
2011-10-28 05:31 . 2004-08-07 18:46 33280 ----a-w- c:\windows\system32\csrsrv.dll
2011-10-25 13:37 . 2004-08-07 18:47 2148864 ----a-w- c:\windows\system32\ntoskrnl.exe
2011-10-25 12:52 . 2004-08-04 05:59 2027008 ----a-w- c:\windows\system32\ntkrnlpa.exe
2011-10-18 11:13 . 2004-08-07 18:46 186880 ----a-w- c:\windows\system32\encdec.dll
2011-10-17 15:58 . 2004-08-07 20:14 69632 -c--a-w- c:\windows\agrsmdel.exe
2011-10-17 15:58 . 2004-08-07 20:14 1149888 -c--a-w- c:\windows\system32\drivers\AGRSM.sys
2011-10-17 15:56 . 2011-10-17 15:56 73728 -c--a-w- c:\windows\system32\RtNicProp32.dll
2011-10-17 15:56 . 2011-10-17 15:56 130432 -c--a-w- c:\windows\system32\drivers\Rtnicxp.sys
2011-10-10 14:22 . 2004-08-07 19:01 692736 -c--a-w- c:\windows\system32\inetcomm.dll
2011-08-24 21:00 . 2011-08-24 23:39 161736 -c--a-w- c:\program files\14res.dll
2011-08-21 18:37 . 2011-07-06 21:11 134104 -c--a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((((((((((((( Look )))))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
---- Directory of %user%\library ----
.
.
---- Directory of c:\program files\Common ----
.
.
.
((((((((((((((((((((((((((((( [email protected]_17.45.39 )))))))))))))))))))))))))))))))))))))))))
.
+ 2011-12-29 20:54 . 2011-12-29 20:54 16384 c:\windows\Temp\Perflib_Perfdata_6e0.dat
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2011-05-17 1490312]
.
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2011-05-17 1490312]
.
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2011-11-28 18:01 122512 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WxPub"="c:\progra~1\AWS\PWSPub\PWSPub.exe" [2005-12-02 622592]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-12-14 39408]
"Weather"="c:\program files\AWS\WeatherBug\Weather.exe" [2010-10-29 1652736]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ApnUpdater"="c:\program files\Ask.com\Updater\Updater.exe" [2011-05-17 395144]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2011-05-21 13895272]
"nwiz"="c:\program files\NVIDIA Corporation\nView\nwiz.exe" [2011-05-05 1632360]
"AlcWzrd"="ALCWZRD.EXE" [2010-11-03 2815592]
"googletalk"="c:\program files\Google\Google Talk\googletalk.exe" [2007-01-01 3739648]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2011-11-28 3744552]
.
c:\documents and settings\All Users\Start Menu\Programs\Startup\
APC UPS Status.lnk - c:\program files\APC\APC PowerChute Personal Edition\Display.exe [2008-11-7 221247]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableLinkedConnections"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
2011-05-21 11:01 111208 -c--a-w- c:\windows\system32\nvmctray.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Road Runner PhotoShow Media Manager]
2007-06-22 21:08 357616 ----a-w- c:\progra~1\ROADRU~1\PHOTOS~1\data\Xtras\mssysmgr.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
2010-11-03 23:15 84584 ----a-w- c:\windows\SOUNDMAN.EXE
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqpse.exe"=
"c:\\Program Files\\Common Files\\HP\\Digital Imaging\\Bin\\hpqPhotoCrm.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqsudi.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqpsapp.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\NVIDIA Corporation\\NVIDIA Updatus\\daemonu.exe"=
"c:\\Program Files\\Google\\Google Talk\\googletalk.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009
.
R0 tdrpman273;Acronis Try&Decide and Restore Points filter (build 273);c:\windows\system32\drivers\tdrpm273.sys [6/11/2011 8:35 AM 752128]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [12/19/2011 1:56 PM 435032]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [12/19/2011 1:56 PM 314456]
R2 afcdpsrv;Acronis Nonstop Backup Service;c:\program files\Common Files\Acronis\CDP\afcdpsrv.exe [6/11/2011 8:35 AM 3246040]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [12/19/2011 1:56 PM 20568]
R2 cpuz134;cpuz134;c:\windows\system32\drivers\cpuz134_x32.sys [12/4/2010 1:46 PM 20328]
R2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [10/17/2011 9:45 AM 2214504]
R3 afcdp;afcdp;c:\windows\system32\drivers\afcdp.sys [6/11/2011 8:35 AM 167968]
R3 usbvm328;HP Camera;c:\windows\system32\drivers\usbvm326.sys [1/24/2008 7:42 PM 219648]
R3 vmfilter323;VC0326 filter service for Serome;c:\windows\system32\drivers\vmfilter323.sys [1/24/2008 7:42 PM 475264]
S2 gupdate1cc08b836b4b45e;Google Update Service (gupdate1cc08b836b4b45e);c:\program files\Google\Update\GoogleUpdate.exe [2/2/2010 10:09 PM 135664]
S3 gupdatem;Google Update Service (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [2/2/2010 10:09 PM 135664]
.
Contents of the 'Scheduled Tasks' folder
.
2011-12-12 c:\windows\Tasks\ErrorEND.job
- c:\program files\ErrorEND\ErrorEND.exe [2011-03-09 12:23]
.
2011-12-29 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-03 04:09]
.
2011-12-29 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-03 04:09]
.
2011-12-29 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-749141082-900969977-621589620-1009Core.job
- c:\documents and settings\HP_Owner\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2011-06-28 01:06]
.
2011-12-29 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-749141082-900969977-621589620-1009UA.job
- c:\documents and settings\HP_Owner\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2011-06-28 01:06]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.foxnews.com/
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = hxxp://us.rd.yahoo.com/customize/ie/defaults/su/msgr9/*http://www.yahoo.com
Trusted Zone: intuit.com\ttlc
TCP: DhcpNameServer = 192.168.0.1
FF - ProfilePath - c:\documents and settings\HP_Owner\Application Data\Mozilla\Firefox\Profiles\9xwzzl3d.default\
FF - prefs.js: browser.search.selectedEngine - Ask.com
FF - prefs.js: browser.startup.homepage - hxxp://www.facebook.com/|http://www.blogger.com/home|http://pinterest.com/popular/|http://twitter.com/#!/|https://plus.google.com/
FF - prefs.js: network.proxy.type - 0
FF - user.js: network.protocol-handler.warn-external.dnupdate - false
.
- - - - ORPHANS REMOVED - - - -
.
HKCU-Run-Search Protection - c:\program files\Yahoo!\Search Protection\SearchProtection.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-12-29 14:55
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'explorer.exe'(1532)
c:\windows\system32\WININET.dll
c:\program files\Google\GoogleToolbarNotifier\5.7.7018.1622\gth.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Other Running Processes ------------------------
.
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files\Common Files\Acronis\Schedule2\schedul2.exe
c:\program files\APC\APC PowerChute Personal Edition\mainserv.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\Common Files\Intuit\Update Service\IntuitUpdateService.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\program files\Yahoo!\SoftwareUpdate\YahooAUService.exe
c:\program files\Canon\CAL\CALMAIN.exe
c:\windows\system32\wscntfy.exe
c:\windows\ALCWZRD.EXE
c:\program files\APC\APC PowerChute Personal Edition\apcsystray.exe
.
**************************************************************************
.
Completion time: 2011-12-29 15:01:01 - machine was rebooted
ComboFix-quarantined-files.txt 2011-12-29 21:00
ComboFix2.txt 2011-12-29 17:52
.
Pre-Run: 153,777,033,216 bytes free
Post-Run: 153,806,991,360 bytes free
.
- - End Of File - - A55F219747EDCC4C3D87E24700100B36
  • 0

Advertisements


#26
Jennifer2

Jennifer2

    Member

  • Topic Starter
  • Member
  • PipPip
  • 37 posts
Here is the first TDSSKiller log.

17:15:40.0656 2480 TDSS rootkit removing tool 2.6.25.0 Dec 23 2011 14:51:16
17:15:41.0234 2480 ============================================================
17:15:41.0234 2480 Current date / time: 2011/12/29 17:15:41.0234
17:15:41.0234 2480 SystemInfo:
17:15:41.0234 2480
17:15:41.0234 2480 OS Version: 5.1.2600 ServicePack: 3.0
17:15:41.0234 2480 Product type: Workstation
17:15:41.0234 2480 ComputerName: MCILROY-001
17:15:41.0234 2480 UserName: HP_Owner
17:15:41.0234 2480 Windows directory: C:\WINDOWS
17:15:41.0234 2480 System windows directory: C:\WINDOWS
17:15:41.0234 2480 Processor architecture: Intel x86
17:15:41.0234 2480 Number of processors: 2
17:15:41.0234 2480 Page size: 0x1000
17:15:41.0234 2480 Boot type: Normal boot
17:15:41.0234 2480 ============================================================
17:15:42.0406 2480 Initialize success
17:15:47.0515 3736 ============================================================
17:15:47.0515 3736 Scan started
17:15:47.0515 3736 Mode: Manual;
17:15:47.0515 3736 ============================================================
17:15:48.0593 3736 Aavmker4 (b6de0336f9f4b687b4ff57939f7b657a) C:\WINDOWS\system32\drivers\Aavmker4.sys
17:15:48.0593 3736 Aavmker4 - ok
17:15:48.0625 3736 Abiosdsk - ok
17:15:48.0656 3736 abp480n5 - ok
17:15:48.0718 3736 ACPI (8fd99680a539792a30e97944fdaecf17) C:\WINDOWS\system32\DRIVERS\ACPI.sys
17:15:48.0718 3736 ACPI - ok
17:15:48.0796 3736 ACPIEC (9859c0f6936e723e4892d7141b1327d5) C:\WINDOWS\system32\drivers\ACPIEC.sys
17:15:48.0796 3736 ACPIEC - ok
17:15:48.0812 3736 adpu160m - ok
17:15:48.0843 3736 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
17:15:48.0843 3736 aec - ok
17:15:48.0875 3736 Afc (a7b8a3a79d35215d798a300df49ed23f) C:\WINDOWS\system32\drivers\Afc.sys
17:15:48.0875 3736 Afc - ok
17:15:48.0921 3736 afcdp (53696ad8ffc5fac51949a525ff65a689) C:\WINDOWS\system32\DRIVERS\afcdp.sys
17:15:48.0921 3736 afcdp - ok
17:15:48.0984 3736 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
17:15:48.0984 3736 AFD - ok
17:15:49.0062 3736 AgereSoftModem (994a42d273c35b43ee9d1e8a5d8bc639) C:\WINDOWS\system32\DRIVERS\AGRSM.sys
17:15:49.0109 3736 AgereSoftModem - ok
17:15:49.0125 3736 Aha154x - ok
17:15:49.0140 3736 aic78u2 - ok
17:15:49.0156 3736 aic78xx - ok
17:15:49.0171 3736 AliIde - ok
17:15:49.0218 3736 AmdK7 (8fce268cdbdd83b23419d1f35f42c7b1) C:\WINDOWS\system32\DRIVERS\amdk7.sys
17:15:49.0218 3736 AmdK7 - ok
17:15:49.0281 3736 amsint - ok
17:15:49.0343 3736 Arp1394 (b5b8a80875c1dededa8b02765642c32f) C:\WINDOWS\system32\DRIVERS\arp1394.sys
17:15:49.0343 3736 Arp1394 - ok
17:15:49.0359 3736 asc - ok
17:15:49.0375 3736 asc3350p - ok
17:15:49.0406 3736 asc3550 - ok
17:15:49.0484 3736 aswFsBlk (054df24c92b55427e0757cfff160e4f2) C:\WINDOWS\system32\drivers\aswFsBlk.sys
17:15:49.0484 3736 aswFsBlk - ok
17:15:49.0531 3736 aswMon2 (ef0e9ad83380724bd6fbbb51d2d0f5b8) C:\WINDOWS\system32\drivers\aswMon2.sys
17:15:49.0531 3736 aswMon2 - ok
17:15:49.0578 3736 aswRdr (352d5a48ebab35a7693b048679304831) C:\WINDOWS\system32\drivers\aswRdr.sys
17:15:49.0578 3736 aswRdr - ok
17:15:49.0609 3736 aswSnx (8d34d2b24297e27d93e847319abfdec4) C:\WINDOWS\system32\drivers\aswSnx.sys
17:15:49.0625 3736 aswSnx - ok
17:15:49.0671 3736 aswSP (010012597333da1f46c3243f33f8409e) C:\WINDOWS\system32\drivers\aswSP.sys
17:15:49.0671 3736 aswSP - ok
17:15:49.0703 3736 aswTdi (f9f84364416658e9786235904d448d37) C:\WINDOWS\system32\drivers\aswTdi.sys
17:15:49.0718 3736 aswTdi - ok
17:15:49.0734 3736 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
17:15:49.0734 3736 AsyncMac - ok
17:15:49.0765 3736 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
17:15:49.0765 3736 atapi - ok
17:15:49.0812 3736 Atdisk - ok
17:15:49.0875 3736 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
17:15:49.0875 3736 Atmarpc - ok
17:15:49.0937 3736 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
17:15:49.0953 3736 audstub - ok
17:15:50.0015 3736 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
17:15:50.0015 3736 Beep - ok
17:15:50.0031 3736 catchme - ok
17:15:50.0046 3736 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
17:15:50.0046 3736 cbidf2k - ok
17:15:50.0093 3736 CCDECODE (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
17:15:50.0093 3736 CCDECODE - ok
17:15:50.0125 3736 cd20xrnt - ok
17:15:50.0156 3736 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
17:15:50.0156 3736 Cdaudio - ok
17:15:50.0171 3736 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
17:15:50.0171 3736 Cdfs - ok
17:15:50.0203 3736 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
17:15:50.0203 3736 Cdrom - ok
17:15:50.0218 3736 Changer - ok
17:15:50.0265 3736 CmdIde - ok
17:15:50.0281 3736 Compbatt (6e4c9f21f0fae8940661144f41b13203) C:\WINDOWS\system32\DRIVERS\compbatt.sys
17:15:50.0281 3736 Compbatt - ok
17:15:50.0328 3736 Cpqarray - ok
17:15:50.0390 3736 cpuz134 (75fa19142531cbf490770c2988a7db64) C:\WINDOWS\system32\drivers\cpuz134_x32.sys
17:15:50.0390 3736 cpuz134 - ok
17:15:50.0437 3736 dac2w2k - ok
17:15:50.0468 3736 dac960nt - ok
17:15:50.0515 3736 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
17:15:50.0515 3736 Disk - ok
17:15:50.0562 3736 dmboot (d992fe1274bde0f84ad826acae022a41) C:\WINDOWS\system32\drivers\dmboot.sys
17:15:50.0578 3736 dmboot - ok
17:15:50.0625 3736 dmio (7c824cf7bbde77d95c08005717a95f6f) C:\WINDOWS\system32\drivers\dmio.sys
17:15:50.0625 3736 dmio - ok
17:15:50.0687 3736 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
17:15:50.0687 3736 dmload - ok
17:15:50.0750 3736 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
17:15:50.0750 3736 DMusic - ok
17:15:50.0796 3736 dpti2o - ok
17:15:50.0890 3736 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
17:15:50.0890 3736 drmkaud - ok
17:15:50.0968 3736 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
17:15:50.0968 3736 Fastfat - ok
17:15:50.0984 3736 fasttx2k (1e580770bdece924494b368ac980749e) C:\WINDOWS\system32\DRIVERS\fasttx2k.sys
17:15:50.0984 3736 fasttx2k - ok
17:15:51.0015 3736 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
17:15:51.0031 3736 Fdc - ok
17:15:51.0062 3736 Fips (d45926117eb9fa946a6af572fbe1caa3) C:\WINDOWS\system32\drivers\Fips.sys
17:15:51.0062 3736 Fips - ok
17:15:51.0093 3736 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
17:15:51.0093 3736 Flpydisk - ok
17:15:51.0109 3736 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
17:15:51.0125 3736 FltMgr - ok
17:15:51.0156 3736 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
17:15:51.0156 3736 Fs_Rec - ok
17:15:51.0171 3736 Ftdisk (6ac26732762483366c3969c9e4d2259d) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
17:15:51.0171 3736 Ftdisk - ok
17:15:51.0218 3736 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
17:15:51.0218 3736 GEARAspiWDM - ok
17:15:51.0234 3736 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
17:15:51.0234 3736 Gpc - ok
17:15:51.0265 3736 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
17:15:51.0281 3736 HDAudBus - ok
17:15:51.0312 3736 HidBatt (748031ff4fe45ccc47546294905feab8) C:\WINDOWS\system32\DRIVERS\HidBatt.sys
17:15:51.0312 3736 HidBatt - ok
17:15:51.0343 3736 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
17:15:51.0343 3736 HidUsb - ok
17:15:51.0359 3736 hpn - ok
17:15:51.0437 3736 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
17:15:51.0437 3736 HTTP - ok
17:15:51.0484 3736 i2omgmt - ok
17:15:51.0531 3736 i2omp - ok
17:15:51.0578 3736 i8042prt (4a0b06aa8943c1e332520f7440c0aa30) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
17:15:51.0578 3736 i8042prt - ok
17:15:51.0656 3736 ialm (53fdf10a5baf4f0a345bc5e941392186) C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
17:15:51.0671 3736 ialm - ok
17:15:51.0734 3736 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
17:15:51.0734 3736 Imapi - ok
17:15:51.0796 3736 ini910u - ok
17:15:51.0984 3736 IntcAzAudAddService (85ab23f3e4ba6696fae8beb9d434edd6) C:\WINDOWS\system32\drivers\RtkHDAud.sys
17:15:52.0031 3736 IntcAzAudAddService - ok
17:15:52.0109 3736 IntelIde (b5466a9250342a7aa0cd1fba13420678) C:\WINDOWS\system32\DRIVERS\intelide.sys
17:15:52.0109 3736 IntelIde - ok
17:15:52.0140 3736 intelppm (8c953733d8f36eb2133f5bb58808b66b) C:\WINDOWS\system32\DRIVERS\intelppm.sys
17:15:52.0140 3736 intelppm - ok
17:15:52.0171 3736 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
17:15:52.0171 3736 Ip6Fw - ok
17:15:52.0250 3736 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
17:15:52.0250 3736 IpFilterDriver - ok
17:15:52.0296 3736 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
17:15:52.0296 3736 IpInIp - ok
17:15:52.0359 3736 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
17:15:52.0359 3736 IpNat - ok
17:15:52.0421 3736 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
17:15:52.0421 3736 IPSec - ok
17:15:52.0484 3736 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
17:15:52.0484 3736 IRENUM - ok
17:15:52.0531 3736 isapnp (05a299ec56e52649b1cf2fc52d20f2d7) C:\WINDOWS\system32\DRIVERS\isapnp.sys
17:15:52.0531 3736 isapnp - ok
17:15:52.0609 3736 Iviaspi (f59c3569a2f2c464bb78cb1bdcdca55e) C:\WINDOWS\system32\drivers\iviaspi.sys
17:15:52.0609 3736 Iviaspi - ok
17:15:52.0640 3736 Kbdclass (463c1ec80cd17420a542b7f36a36f128) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
17:15:52.0640 3736 Kbdclass - ok
17:15:52.0687 3736 kbdhid (9ef487a186dea361aa06913a75b3fa99) C:\WINDOWS\system32\DRIVERS\kbdhid.sys
17:15:52.0687 3736 kbdhid - ok
17:15:52.0718 3736 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
17:15:52.0718 3736 kmixer - ok
17:15:52.0765 3736 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
17:15:52.0765 3736 KSecDD - ok
17:15:52.0812 3736 lbrtfdc - ok
17:15:52.0875 3736 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
17:15:52.0875 3736 mnmdd - ok
17:15:52.0921 3736 Modem (dfcbad3cec1c5f964962ae10e0bcc8e1) C:\WINDOWS\system32\drivers\Modem.sys
17:15:52.0921 3736 Modem - ok
17:15:52.0984 3736 Mouclass (35c9e97194c8cfb8430125f8dbc34d04) C:\WINDOWS\system32\DRIVERS\mouclass.sys
17:15:52.0984 3736 Mouclass - ok
17:15:53.0031 3736 mouhid (b1c303e17fb9d46e87a98e4ba6769685) C:\WINDOWS\system32\DRIVERS\mouhid.sys
17:15:53.0031 3736 mouhid - ok
17:15:53.0062 3736 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
17:15:53.0062 3736 MountMgr - ok
17:15:53.0093 3736 mraid35x - ok
17:15:53.0156 3736 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
17:15:53.0156 3736 MRxDAV - ok
17:15:53.0234 3736 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
17:15:53.0250 3736 MRxSmb - ok
17:15:53.0265 3736 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
17:15:53.0281 3736 Msfs - ok
17:15:53.0296 3736 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
17:15:53.0296 3736 MSKSSRV - ok
17:15:53.0343 3736 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
17:15:53.0343 3736 MSPCLOCK - ok
17:15:53.0390 3736 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
17:15:53.0390 3736 MSPQM - ok
17:15:53.0437 3736 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
17:15:53.0437 3736 mssmbios - ok
17:15:53.0468 3736 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys
17:15:53.0468 3736 MSTEE - ok
17:15:53.0515 3736 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
17:15:53.0515 3736 Mup - ok
17:15:53.0546 3736 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
17:15:53.0546 3736 NABTSFEC - ok
17:15:53.0593 3736 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
17:15:53.0593 3736 NDIS - ok
17:15:53.0609 3736 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
17:15:53.0625 3736 NdisIP - ok
17:15:53.0656 3736 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
17:15:53.0656 3736 NdisTapi - ok
17:15:53.0703 3736 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
17:15:53.0703 3736 Ndisuio - ok
17:15:53.0750 3736 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
17:15:53.0750 3736 NdisWan - ok
17:15:53.0796 3736 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
17:15:53.0796 3736 NDProxy - ok
17:15:53.0812 3736 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
17:15:53.0828 3736 NetBIOS - ok
17:15:53.0875 3736 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
17:15:53.0875 3736 NetBT - ok
17:15:53.0937 3736 NIC1394 (e9e47cfb2d461fa0fc75b7a74c6383ea) C:\WINDOWS\system32\DRIVERS\nic1394.sys
17:15:53.0953 3736 NIC1394 - ok
17:15:54.0015 3736 nmwcd (e380bbcad640304737650367ddfa2366) C:\WINDOWS\system32\drivers\nmwcd.sys
17:15:54.0031 3736 nmwcd - ok
17:15:54.0078 3736 nmwcdc (3c4650af9712ae0cb405064b6278ccad) C:\WINDOWS\system32\drivers\nmwcdc.sys
17:15:54.0078 3736 nmwcdc - ok
17:15:54.0109 3736 nmwcdcj (9c9ff3ec04021234d6f440acbd3b70c1) C:\WINDOWS\system32\drivers\nmwcdcj.sys
17:15:54.0109 3736 nmwcdcj - ok
17:15:54.0156 3736 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
17:15:54.0156 3736 Npfs - ok
17:15:54.0218 3736 NPPTNT2 (9131fe60adfab595c8da53ad6a06aa31) C:\WINDOWS\system32\npptNT2.sys
17:15:54.0234 3736 NPPTNT2 - ok
17:15:54.0281 3736 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
17:15:54.0281 3736 Ntfs - ok
17:15:54.0343 3736 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
17:15:54.0343 3736 Null - ok
17:15:54.0671 3736 nv (8b2c874897ea498da012284e12f9db2b) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
17:15:54.0953 3736 nv - ok
17:15:55.0031 3736 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
17:15:55.0031 3736 NwlnkFlt - ok
17:15:55.0078 3736 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
17:15:55.0093 3736 NwlnkFwd - ok
17:15:55.0140 3736 NwlnkIpx (8b8b1be2dba4025da6786c645f77f123) C:\WINDOWS\system32\DRIVERS\nwlnkipx.sys
17:15:55.0140 3736 NwlnkIpx - ok
17:15:55.0187 3736 NwlnkNb (56d34a67c05e94e16377c60609741ff8) C:\WINDOWS\system32\DRIVERS\nwlnknb.sys
17:15:55.0187 3736 NwlnkNb - ok
17:15:55.0203 3736 NwlnkSpx (c0bb7d1615e1acbdc99757f6ceaf8cf0) C:\WINDOWS\system32\DRIVERS\nwlnkspx.sys
17:15:55.0203 3736 NwlnkSpx - ok
17:15:55.0234 3736 ohci1394 (ca33832df41afb202ee7aeb05145922f) C:\WINDOWS\system32\DRIVERS\ohci1394.sys
17:15:55.0234 3736 ohci1394 - ok
17:15:55.0281 3736 ovt519 (4cdadec3dc1300ee1d313ea5494e6472) C:\WINDOWS\system32\Drivers\ov519vid.sys
17:15:55.0281 3736 ovt519 - ok
17:15:55.0312 3736 Parport (5575faf8f97ce5e713d108c2a58d7c7c) C:\WINDOWS\system32\DRIVERS\parport.sys
17:15:55.0312 3736 Parport - ok
17:15:55.0328 3736 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
17:15:55.0328 3736 PartMgr - ok
17:15:55.0343 3736 ParVdm (70e98b3fd8e963a6a46a2e6247e0bea1) C:\WINDOWS\system32\drivers\ParVdm.sys
17:15:55.0359 3736 ParVdm - ok
17:15:55.0390 3736 PCI (a219903ccf74233761d92bef471a07b1) C:\WINDOWS\system32\DRIVERS\pci.sys
17:15:55.0390 3736 PCI - ok
17:15:55.0406 3736 PCIDump - ok
17:15:55.0421 3736 PCIIde (ccf5f451bb1a5a2a522a76e670000ff0) C:\WINDOWS\system32\DRIVERS\pciide.sys
17:15:55.0421 3736 PCIIde - ok
17:15:55.0453 3736 Pcmcia (9e89ef60e9ee05e3f2eef2da7397f1c1) C:\WINDOWS\system32\drivers\Pcmcia.sys
17:15:55.0453 3736 Pcmcia - ok
17:15:55.0468 3736 PDCOMP - ok
17:15:55.0484 3736 PDFRAME - ok
17:15:55.0531 3736 PDRELI - ok
17:15:55.0578 3736 PDRFRAME - ok
17:15:55.0625 3736 perc2 - ok
17:15:55.0671 3736 perc2hib - ok
17:15:55.0781 3736 Pfc (444f122e68db44c0589227781f3c8b3f) C:\WINDOWS\system32\drivers\pfc.sys
17:15:55.0781 3736 Pfc - ok
17:15:55.0828 3736 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
17:15:55.0828 3736 PptpMiniport - ok
17:15:55.0859 3736 Processor (a32bebaf723557681bfc6bd93e98bd26) C:\WINDOWS\system32\DRIVERS\processr.sys
17:15:55.0859 3736 Processor - ok
17:15:55.0921 3736 Ps2 (bffdb363485501a38f0bca83aec810db) C:\WINDOWS\system32\DRIVERS\PS2.sys
17:15:55.0921 3736 Ps2 - ok
17:15:55.0937 3736 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
17:15:55.0937 3736 PSched - ok
17:15:55.0968 3736 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
17:15:55.0968 3736 Ptilink - ok
17:15:56.0015 3736 PxHelp20 (d86b4a68565e444d76457f14172c875a) C:\WINDOWS\system32\Drivers\PxHelp20.sys
17:15:56.0015 3736 PxHelp20 - ok
17:15:56.0031 3736 ql1080 - ok
17:15:56.0046 3736 Ql10wnt - ok
17:15:56.0078 3736 ql12160 - ok
17:15:56.0109 3736 ql1240 - ok
17:15:56.0125 3736 ql1280 - ok
17:15:56.0156 3736 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
17:15:56.0171 3736 RasAcd - ok
17:15:56.0187 3736 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
17:15:56.0187 3736 Rasl2tp - ok
17:15:56.0218 3736 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
17:15:56.0218 3736 RasPppoe - ok
17:15:56.0234 3736 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
17:15:56.0234 3736 Raspti - ok
17:15:56.0250 3736 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
17:15:56.0265 3736 Rdbss - ok
17:15:56.0281 3736 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
17:15:56.0281 3736 RDPCDD - ok
17:15:56.0328 3736 RDPWD (fc105dd312ed64eb66bff111e8ec6eac) C:\WINDOWS\system32\drivers\RDPWD.sys
17:15:56.0343 3736 RDPWD - ok
17:15:56.0375 3736 redbook (f828dd7e1419b6653894a8f97a0094c5) C:\WINDOWS\system32\DRIVERS\redbook.sys
17:15:56.0390 3736 redbook - ok
17:15:56.0437 3736 RTL8023xp (cf84b1f0e8b14d4120aaf9cf35cbb265) C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys
17:15:56.0437 3736 RTL8023xp - ok
17:15:56.0468 3736 rtl8139 (2ef9c0dc26b30b2318b1fc3faa1f0ae7) C:\WINDOWS\system32\DRIVERS\R8139n51.SYS
17:15:56.0468 3736 rtl8139 - ok
17:15:56.0546 3736 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
17:15:56.0546 3736 Secdrv - ok
17:15:56.0609 3736 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
17:15:56.0625 3736 serenum - ok
17:15:56.0656 3736 Serial (cca207a8896d4c6a0c9ce29a4ae411a7) C:\WINDOWS\system32\DRIVERS\serial.sys
17:15:56.0671 3736 Serial - ok
17:15:56.0703 3736 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
17:15:56.0718 3736 Sfloppy - ok
17:15:56.0734 3736 Simbad - ok
17:15:56.0781 3736 SiS315 (7467e510c81b19a6b590a3868f499b23) C:\WINDOWS\system32\DRIVERS\sisgrp.sys
17:15:56.0796 3736 SiS315 - ok
17:15:56.0859 3736 SISAGP (61ca562def09a782d26b3e7edec5369a) C:\WINDOWS\system32\DRIVERS\SISAGPX.sys
17:15:56.0859 3736 SISAGP - ok
17:15:56.0906 3736 SiSkp (14ed728e44b0e7a169217127d8510ca9) C:\WINDOWS\system32\DRIVERS\srvkp.sys
17:15:56.0906 3736 SiSkp - ok
17:15:56.0968 3736 slabbus (444186c720885429a2354095c1938143) C:\WINDOWS\system32\DRIVERS\slabbus.sys
17:15:56.0968 3736 slabbus - ok
17:15:57.0000 3736 slabser (ed71f8c82ef11c0da1c57be021a2fdc9) C:\WINDOWS\system32\DRIVERS\slabser.sys
17:15:57.0000 3736 slabser - ok
17:15:57.0046 3736 SLIP (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys
17:15:57.0046 3736 SLIP - ok
17:15:57.0125 3736 snapman (eb49860e776ce860dc3cfb9edb1ba517) C:\WINDOWS\system32\DRIVERS\snapman.sys
17:15:57.0140 3736 snapman - ok
17:15:57.0171 3736 Sparrow - ok
17:15:57.0203 3736 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
17:15:57.0203 3736 splitter - ok
17:15:57.0265 3736 sr (76bb022c2fb6902fd5bdd4f78fc13a5d) C:\WINDOWS\system32\DRIVERS\sr.sys
17:15:57.0265 3736 sr - ok
17:15:57.0312 3736 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
17:15:57.0312 3736 Srv - ok
17:15:57.0359 3736 StillCam (a9573045baa16eab9b1085205b82f1ed) C:\WINDOWS\system32\DRIVERS\serscan.sys
17:15:57.0375 3736 StillCam - ok
17:15:57.0421 3736 streamip (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
17:15:57.0421 3736 streamip - ok
17:15:57.0437 3736 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
17:15:57.0437 3736 swenum - ok
17:15:57.0500 3736 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
17:15:57.0500 3736 swmidi - ok
17:15:57.0531 3736 symc810 - ok
17:15:57.0562 3736 symc8xx - ok
17:15:57.0578 3736 sym_hi - ok
17:15:57.0609 3736 sym_u3 - ok
17:15:57.0671 3736 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
17:15:57.0671 3736 sysaudio - ok
17:15:57.0718 3736 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
17:15:57.0734 3736 Tcpip - ok
17:15:57.0750 3736 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
17:15:57.0750 3736 TDPIPE - ok
17:15:57.0828 3736 tdrpman273 (431801fcc97034e04a6eff81136578d7) C:\WINDOWS\system32\DRIVERS\tdrpm273.sys
17:15:57.0843 3736 tdrpman273 - ok
17:15:57.0875 3736 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
17:15:57.0875 3736 TDTCP - ok
17:15:57.0906 3736 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
17:15:57.0921 3736 TermDD - ok
17:15:57.0984 3736 timounter (a34d7024bb7140ec785c86bc065d4f60) C:\WINDOWS\system32\DRIVERS\timntr.sys
17:15:58.0015 3736 timounter - ok
17:15:58.0031 3736 TosIde - ok
17:15:58.0078 3736 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
17:15:58.0093 3736 Udfs - ok
17:15:58.0125 3736 ultra - ok
17:15:58.0187 3736 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
17:15:58.0203 3736 Update - ok
17:15:58.0250 3736 usbaudio (e919708db44ed8543a7c017953148330) C:\WINDOWS\system32\drivers\usbaudio.sys
17:15:58.0250 3736 usbaudio - ok
17:15:58.0296 3736 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
17:15:58.0296 3736 usbccgp - ok
17:15:58.0343 3736 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
17:15:58.0343 3736 usbehci - ok
17:15:58.0390 3736 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
17:15:58.0390 3736 usbhub - ok
17:15:58.0437 3736 usbohci (0daecce65366ea32b162f85f07c6753b) C:\WINDOWS\system32\DRIVERS\usbohci.sys
17:15:58.0437 3736 usbohci - ok
17:15:58.0484 3736 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
17:15:58.0484 3736 usbprint - ok
17:15:58.0515 3736 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
17:15:58.0515 3736 usbscan - ok
17:15:58.0546 3736 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
17:15:58.0546 3736 USBSTOR - ok
17:15:58.0578 3736 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
17:15:58.0593 3736 usbuhci - ok
17:15:58.0656 3736 usbvm328 (6dc94d0d4f2472056d14e987f729eccb) C:\WINDOWS\system32\Drivers\usbvm326.sys
17:15:58.0656 3736 usbvm328 - ok
17:15:58.0687 3736 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
17:15:58.0703 3736 VgaSave - ok
17:15:58.0718 3736 viaagp1 (4b039bbd037b01f5db5a144c837f283a) C:\WINDOWS\system32\DRIVERS\viaagp1.sys
17:15:58.0718 3736 viaagp1 - ok
17:15:58.0750 3736 viagfx (19bba101cb87d18ff04e7f24e1792ab0) C:\WINDOWS\system32\DRIVERS\vtmini.sys
17:15:58.0750 3736 viagfx - ok
17:15:58.0812 3736 ViaIde (3b3efcda263b8ac14fdf9cbdd0791b2e) C:\WINDOWS\system32\DRIVERS\viaide.sys
17:15:58.0812 3736 ViaIde - ok
17:15:58.0843 3736 vmfilter323 (6c21422d47ed3d8f65ed667bfd1cc759) C:\WINDOWS\system32\drivers\vmfilter323.sys
17:15:58.0859 3736 vmfilter323 - ok
17:15:58.0906 3736 VolSnap (4c8fcb5cc53aab716d810740fe59d025) C:\WINDOWS\system32\drivers\VolSnap.sys
17:15:58.0906 3736 VolSnap - ok
17:15:58.0953 3736 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
17:15:58.0953 3736 Wanarp - ok
17:15:58.0984 3736 WDICA - ok
17:15:59.0031 3736 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
17:15:59.0031 3736 wdmaud - ok
17:15:59.0078 3736 WinDriver6 (94e4312d546048bf31604a8b2ad13fc0) C:\WINDOWS\system32\drivers\windrvr6.sys
17:15:59.0093 3736 WinDriver6 - ok
17:15:59.0203 3736 WpdUsb (cf4def1bf66f06964dc0d91844239104) C:\WINDOWS\system32\DRIVERS\wpdusb.sys
17:15:59.0203 3736 WpdUsb - ok
17:15:59.0265 3736 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
17:15:59.0265 3736 WS2IFSL - ok
17:15:59.0312 3736 WSTCODEC (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
17:15:59.0328 3736 WSTCODEC - ok
17:15:59.0375 3736 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
17:15:59.0375 3736 WudfPf - ok
17:15:59.0406 3736 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
17:15:59.0406 3736 WudfRd - ok
17:15:59.0453 3736 MBR (0x1B8) (bad0263fbe81b49f5f07b32dc9d198b3) \Device\Harddisk0\DR0
17:15:59.0484 3736 \Device\Harddisk0\DR0 - ok
17:15:59.0500 3736 MBR (0x1B8) (bad0263fbe81b49f5f07b32dc9d198b3) \Device\Harddisk1\DR1
17:15:59.0500 3736 \Device\Harddisk1\DR1 - ok
17:15:59.0500 3736 Boot (0x1200) (80f49539896b4db3e0baed6734b1ec5d) \Device\Harddisk0\DR0\Partition0
17:15:59.0500 3736 \Device\Harddisk0\DR0\Partition0 - ok
17:15:59.0515 3736 Boot (0x1200) (c42a6d2b74b41a6810494f9b143c9aac) \Device\Harddisk0\DR0\Partition1
17:15:59.0531 3736 \Device\Harddisk0\DR0\Partition1 - ok
17:15:59.0531 3736 Boot (0x1200) (dff8e4ba1665523350f55da44a78e6ee) \Device\Harddisk1\DR1\Partition0
17:15:59.0531 3736 \Device\Harddisk1\DR1\Partition0 - ok
17:15:59.0531 3736 ============================================================
17:15:59.0531 3736 Scan finished
17:15:59.0531 3736 ============================================================
17:15:59.0546 1584 Detected object count: 0
17:15:59.0546 1584 Actual detected object count: 0
17:16:14.0562 0824 ============================================================
17:16:14.0562 0824 Scan started
17:16:14.0562 0824 Mode: Manual;
17:16:14.0562 0824 ============================================================
17:16:14.0875 0824 Aavmker4 (b6de0336f9f4b687b4ff57939f7b657a) C:\WINDOWS\system32\drivers\Aavmker4.sys
17:16:14.0875 0824 Aavmker4 - ok
17:16:14.0890 0824 Abiosdsk - ok
17:16:14.0921 0824 abp480n5 - ok
17:16:14.0968 0824 ACPI (8fd99680a539792a30e97944fdaecf17) C:\WINDOWS\system32\DRIVERS\ACPI.sys
17:16:14.0968 0824 ACPI - ok
17:16:15.0015 0824 ACPIEC (9859c0f6936e723e4892d7141b1327d5) C:\WINDOWS\system32\drivers\ACPIEC.sys
17:16:15.0015 0824 ACPIEC - ok
17:16:15.0062 0824 adpu160m - ok
17:16:15.0140 0824 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
17:16:15.0140 0824 aec - ok
17:16:15.0187 0824 Afc (a7b8a3a79d35215d798a300df49ed23f) C:\WINDOWS\system32\drivers\Afc.sys
17:16:15.0187 0824 Afc - ok
17:16:15.0234 0824 afcdp (53696ad8ffc5fac51949a525ff65a689) C:\WINDOWS\system32\DRIVERS\afcdp.sys
17:16:15.0234 0824 afcdp - ok
17:16:15.0265 0824 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
17:16:15.0265 0824 AFD - ok
17:16:15.0343 0824 AgereSoftModem (994a42d273c35b43ee9d1e8a5d8bc639) C:\WINDOWS\system32\DRIVERS\AGRSM.sys
17:16:15.0343 0824 AgereSoftModem - ok
17:16:15.0359 0824 Aha154x - ok
17:16:15.0375 0824 aic78u2 - ok
17:16:15.0421 0824 aic78xx - ok
17:16:15.0468 0824 AliIde - ok
17:16:15.0515 0824 AmdK7 (8fce268cdbdd83b23419d1f35f42c7b1) C:\WINDOWS\system32\DRIVERS\amdk7.sys
17:16:15.0515 0824 AmdK7 - ok
17:16:15.0562 0824 amsint - ok
17:16:15.0625 0824 Arp1394 (b5b8a80875c1dededa8b02765642c32f) C:\WINDOWS\system32\DRIVERS\arp1394.sys
17:16:15.0625 0824 Arp1394 - ok
17:16:15.0671 0824 asc - ok
17:16:15.0687 0824 asc3350p - ok
17:16:15.0703 0824 asc3550 - ok
17:16:15.0765 0824 aswFsBlk (054df24c92b55427e0757cfff160e4f2) C:\WINDOWS\system32\drivers\aswFsBlk.sys
17:16:15.0765 0824 aswFsBlk - ok
17:16:15.0796 0824 aswMon2 (ef0e9ad83380724bd6fbbb51d2d0f5b8) C:\WINDOWS\system32\drivers\aswMon2.sys
17:16:15.0796 0824 aswMon2 - ok
17:16:15.0843 0824 aswRdr (352d5a48ebab35a7693b048679304831) C:\WINDOWS\system32\drivers\aswRdr.sys
17:16:15.0843 0824 aswRdr - ok
17:16:15.0875 0824 aswSnx (8d34d2b24297e27d93e847319abfdec4) C:\WINDOWS\system32\drivers\aswSnx.sys
17:16:15.0875 0824 aswSnx - ok
17:16:15.0921 0824 aswSP (010012597333da1f46c3243f33f8409e) C:\WINDOWS\system32\drivers\aswSP.sys
17:16:15.0921 0824 aswSP - ok
17:16:15.0937 0824 aswTdi (f9f84364416658e9786235904d448d37) C:\WINDOWS\system32\drivers\aswTdi.sys
17:16:15.0937 0824 aswTdi - ok
17:16:15.0968 0824 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
17:16:15.0968 0824 AsyncMac - ok
17:16:16.0000 0824 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
17:16:16.0000 0824 atapi - ok
17:16:16.0031 0824 Atdisk - ok
17:16:16.0093 0824 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
17:16:16.0093 0824 Atmarpc - ok
17:16:16.0156 0824 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
17:16:16.0156 0824 audstub - ok
17:16:16.0234 0824 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
17:16:16.0234 0824 Beep - ok
17:16:16.0250 0824 catchme - ok
17:16:16.0312 0824 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
17:16:16.0312 0824 cbidf2k - ok
17:16:16.0375 0824 CCDECODE (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
17:16:16.0375 0824 CCDECODE - ok
17:16:16.0406 0824 cd20xrnt - ok
17:16:16.0437 0824 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
17:16:16.0453 0824 Cdaudio - ok
17:16:16.0468 0824 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
17:16:16.0468 0824 Cdfs - ok
17:16:16.0484 0824 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
17:16:16.0484 0824 Cdrom - ok
17:16:16.0500 0824 Changer - ok
17:16:16.0531 0824 CmdIde - ok
17:16:16.0562 0824 Compbatt (6e4c9f21f0fae8940661144f41b13203) C:\WINDOWS\system32\DRIVERS\compbatt.sys
17:16:16.0562 0824 Compbatt - ok
17:16:16.0593 0824 Cpqarray - ok
17:16:16.0671 0824 cpuz134 (75fa19142531cbf490770c2988a7db64) C:\WINDOWS\system32\drivers\cpuz134_x32.sys
17:16:16.0671 0824 cpuz134 - ok
17:16:16.0687 0824 dac2w2k - ok
17:16:16.0703 0824 dac960nt - ok
17:16:16.0718 0824 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
17:16:16.0718 0824 Disk - ok
17:16:16.0765 0824 dmboot (d992fe1274bde0f84ad826acae022a41) C:\WINDOWS\system32\drivers\dmboot.sys
17:16:16.0765 0824 dmboot - ok
17:16:16.0828 0824 dmio (7c824cf7bbde77d95c08005717a95f6f) C:\WINDOWS\system32\drivers\dmio.sys
17:16:16.0828 0824 dmio - ok
17:16:16.0875 0824 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
17:16:16.0875 0824 dmload - ok
17:16:16.0937 0824 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
17:16:16.0937 0824 DMusic - ok
17:16:16.0968 0824 dpti2o - ok
17:16:17.0015 0824 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
17:16:17.0015 0824 drmkaud - ok
17:16:17.0062 0824 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
17:16:17.0062 0824 Fastfat - ok
17:16:17.0078 0824 fasttx2k (1e580770bdece924494b368ac980749e) C:\WINDOWS\system32\DRIVERS\fasttx2k.sys
17:16:17.0078 0824 fasttx2k - ok
17:16:17.0140 0824 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
17:16:17.0140 0824 Fdc - ok
17:16:17.0187 0824 Fips (d45926117eb9fa946a6af572fbe1caa3) C:\WINDOWS\system32\drivers\Fips.sys
17:16:17.0187 0824 Fips - ok
17:16:17.0203 0824 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
17:16:17.0218 0824 Flpydisk - ok
17:16:17.0234 0824 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
17:16:17.0234 0824 FltMgr - ok
17:16:17.0265 0824 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
17:16:17.0265 0824 Fs_Rec - ok
17:16:17.0296 0824 Ftdisk (6ac26732762483366c3969c9e4d2259d) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
17:16:17.0296 0824 Ftdisk - ok
17:16:17.0328 0824 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
17:16:17.0343 0824 GEARAspiWDM - ok
17:16:17.0375 0824 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
17:16:17.0375 0824 Gpc - ok
17:16:17.0421 0824 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
17:16:17.0421 0824 HDAudBus - ok
17:16:17.0453 0824 HidBatt (748031ff4fe45ccc47546294905feab8) C:\WINDOWS\system32\DRIVERS\HidBatt.sys
17:16:17.0453 0824 HidBatt - ok
17:16:17.0515 0824 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
17:16:17.0515 0824 HidUsb - ok
17:16:17.0546 0824 hpn - ok
17:16:17.0625 0824 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
17:16:17.0625 0824 HTTP - ok
17:16:17.0656 0824 i2omgmt - ok
17:16:17.0671 0824 i2omp - ok
17:16:17.0718 0824 i8042prt (4a0b06aa8943c1e332520f7440c0aa30) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
17:16:17.0718 0824 i8042prt - ok
17:16:17.0781 0824 ialm (53fdf10a5baf4f0a345bc5e941392186) C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
17:16:17.0781 0824 ialm - ok
17:16:17.0812 0824 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
17:16:17.0812 0824 Imapi - ok
17:16:17.0828 0824 ini910u - ok
17:16:18.0031 0824 IntcAzAudAddService (85ab23f3e4ba6696fae8beb9d434edd6) C:\WINDOWS\system32\drivers\RtkHDAud.sys
17:16:18.0078 0824 IntcAzAudAddService - ok
17:16:18.0140 0824 IntelIde (b5466a9250342a7aa0cd1fba13420678) C:\WINDOWS\system32\DRIVERS\intelide.sys
17:16:18.0156 0824 IntelIde - ok
17:16:18.0187 0824 intelppm (8c953733d8f36eb2133f5bb58808b66b) C:\WINDOWS\system32\DRIVERS\intelppm.sys
17:16:18.0187 0824 intelppm - ok
17:16:18.0234 0824 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
17:16:18.0234 0824 Ip6Fw - ok
17:16:18.0281 0824 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
17:16:18.0281 0824 IpFilterDriver - ok
17:16:18.0343 0824 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
17:16:18.0343 0824 IpInIp - ok
17:16:18.0406 0824 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
17:16:18.0406 0824 IpNat - ok
17:16:18.0453 0824 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
17:16:18.0453 0824 IPSec - ok
17:16:18.0515 0824 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
17:16:18.0515 0824 IRENUM - ok
17:16:18.0593 0824 isapnp (05a299ec56e52649b1cf2fc52d20f2d7) C:\WINDOWS\system32\DRIVERS\isapnp.sys
17:16:18.0593 0824 isapnp - ok
17:16:18.0656 0824 Iviaspi (f59c3569a2f2c464bb78cb1bdcdca55e) C:\WINDOWS\system32\drivers\iviaspi.sys
17:16:18.0656 0824 Iviaspi - ok
17:16:18.0703 0824 Kbdclass (463c1ec80cd17420a542b7f36a36f128) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
17:16:18.0703 0824 Kbdclass - ok
17:16:18.0734 0824 kbdhid (9ef487a186dea361aa06913a75b3fa99) C:\WINDOWS\system32\DRIVERS\kbdhid.sys
17:16:18.0750 0824 kbdhid - ok
17:16:18.0781 0824 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
17:16:18.0796 0824 kmixer - ok
17:16:18.0812 0824 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
17:16:18.0812 0824 KSecDD - ok
17:16:18.0859 0824 lbrtfdc - ok
17:16:18.0921 0824 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
17:16:18.0921 0824 mnmdd - ok
17:16:18.0937 0824 Modem (dfcbad3cec1c5f964962ae10e0bcc8e1) C:\WINDOWS\system32\drivers\Modem.sys
17:16:18.0937 0824 Modem - ok
17:16:18.0968 0824 Mouclass (35c9e97194c8cfb8430125f8dbc34d04) C:\WINDOWS\system32\DRIVERS\mouclass.sys
17:16:18.0968 0824 Mouclass - ok
17:16:19.0015 0824 mouhid (b1c303e17fb9d46e87a98e4ba6769685) C:\WINDOWS\system32\DRIVERS\mouhid.sys
17:16:19.0015 0824 mouhid - ok
17:16:19.0062 0824 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
17:16:19.0062 0824 MountMgr - ok
17:16:19.0093 0824 mraid35x - ok
17:16:19.0125 0824 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
17:16:19.0125 0824 MRxDAV - ok
17:16:19.0203 0824 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
17:16:19.0218 0824 MRxSmb - ok
17:16:19.0265 0824 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
17:16:19.0281 0824 Msfs - ok
17:16:19.0312 0824 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
17:16:19.0312 0824 MSKSSRV - ok
17:16:19.0343 0824 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
17:16:19.0343 0824 MSPCLOCK - ok
17:16:19.0375 0824 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
17:16:19.0375 0824 MSPQM - ok
17:16:19.0406 0824 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
17:16:19.0406 0824 mssmbios - ok
17:16:19.0437 0824 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys
17:16:19.0437 0824 MSTEE - ok
17:16:19.0484 0824 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
17:16:19.0484 0824 Mup - ok
17:16:19.0546 0824 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
17:16:19.0546 0824 NABTSFEC - ok
17:16:19.0609 0824 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
17:16:19.0609 0824 NDIS - ok
17:16:19.0687 0824 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
17:16:19.0687 0824 NdisIP - ok
17:16:19.0718 0824 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
17:16:19.0734 0824 NdisTapi - ok
17:16:19.0765 0824 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
17:16:19.0765 0824 Ndisuio - ok
17:16:19.0781 0824 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
17:16:19.0781 0824 NdisWan - ok
17:16:19.0812 0824 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
17:16:19.0812 0824 NDProxy - ok
17:16:19.0828 0824 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
17:16:19.0828 0824 NetBIOS - ok
17:16:19.0859 0824 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
17:16:19.0859 0824 NetBT - ok
17:16:19.0906 0824 NIC1394 (e9e47cfb2d461fa0fc75b7a74c6383ea) C:\WINDOWS\system32\DRIVERS\nic1394.sys
17:16:19.0906 0824 NIC1394 - ok
17:16:19.0953 0824 nmwcd (e380bbcad640304737650367ddfa2366) C:\WINDOWS\system32\drivers\nmwcd.sys
17:16:19.0968 0824 nmwcd - ok
17:16:20.0015 0824 nmwcdc (3c4650af9712ae0cb405064b6278ccad) C:\WINDOWS\system32\drivers\nmwcdc.sys
17:16:20.0015 0824 nmwcdc - ok
17:16:20.0062 0824 nmwcdcj (9c9ff3ec04021234d6f440acbd3b70c1) C:\WINDOWS\system32\drivers\nmwcdcj.sys
17:16:20.0078 0824 nmwcdcj - ok
17:16:20.0093 0824 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
17:16:20.0093 0824 Npfs - ok
17:16:20.0140 0824 NPPTNT2 (9131fe60adfab595c8da53ad6a06aa31) C:\WINDOWS\system32\npptNT2.sys
17:16:20.0140 0824 NPPTNT2 - ok
17:16:20.0187 0824 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
17:16:20.0203 0824 Ntfs - ok
17:16:20.0265 0824 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
17:16:20.0265 0824 Null - ok
17:16:20.0593 0824 nv (8b2c874897ea498da012284e12f9db2b) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
17:16:20.0671 0824 nv - ok
17:16:20.0984 0824 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
17:16:20.0984 0824 NwlnkFlt - ok
17:16:21.0015 0824 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
17:16:21.0031 0824 NwlnkFwd - ok
17:16:21.0062 0824 NwlnkIpx (8b8b1be2dba4025da6786c645f77f123) C:\WINDOWS\system32\DRIVERS\nwlnkipx.sys
17:16:21.0062 0824 NwlnkIpx - ok
17:16:21.0093 0824 NwlnkNb (56d34a67c05e94e16377c60609741ff8) C:\WINDOWS\system32\DRIVERS\nwlnknb.sys
17:16:21.0093 0824 NwlnkNb - ok
17:16:21.0140 0824 NwlnkSpx (c0bb7d1615e1acbdc99757f6ceaf8cf0) C:\WINDOWS\system32\DRIVERS\nwlnkspx.sys
17:16:21.0140 0824 NwlnkSpx - ok
17:16:21.0218 0824 ohci1394 (ca33832df41afb202ee7aeb05145922f) C:\WINDOWS\system32\DRIVERS\ohci1394.sys
17:16:21.0218 0824 ohci1394 - ok
17:16:21.0281 0824 ovt519 (4cdadec3dc1300ee1d313ea5494e6472) C:\WINDOWS\system32\Drivers\ov519vid.sys
17:16:21.0281 0824 ovt519 - ok
17:16:21.0343 0824 Parport (5575faf8f97ce5e713d108c2a58d7c7c) C:\WINDOWS\system32\DRIVERS\parport.sys
17:16:21.0343 0824 Parport - ok
17:16:21.0359 0824 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
17:16:21.0375 0824 PartMgr - ok
17:16:21.0390 0824 ParVdm (70e98b3fd8e963a6a46a2e6247e0bea1) C:\WINDOWS\system32\drivers\ParVdm.sys
17:16:21.0406 0824 ParVdm - ok
17:16:21.0437 0824 PCI (a219903ccf74233761d92bef471a07b1) C:\WINDOWS\system32\DRIVERS\pci.sys
17:16:21.0437 0824 PCI - ok
17:16:21.0468 0824 PCIDump - ok
17:16:21.0500 0824 PCIIde (ccf5f451bb1a5a2a522a76e670000ff0) C:\WINDOWS\system32\DRIVERS\pciide.sys
17:16:21.0500 0824 PCIIde - ok
17:16:21.0546 0824 Pcmcia (9e89ef60e9ee05e3f2eef2da7397f1c1) C:\WINDOWS\system32\drivers\Pcmcia.sys
17:16:21.0546 0824 Pcmcia - ok
17:16:21.0593 0824 PDCOMP - ok
17:16:21.0609 0824 PDFRAME - ok
17:16:21.0640 0824 PDRELI - ok
17:16:21.0656 0824 PDRFRAME - ok
17:16:21.0687 0824 perc2 - ok
17:16:21.0718 0824 perc2hib - ok
17:16:21.0796 0824 Pfc (444f122e68db44c0589227781f3c8b3f) C:\WINDOWS\system32\drivers\pfc.sys
17:16:21.0796 0824 Pfc - ok
17:16:21.0828 0824 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
17:16:21.0828 0824 PptpMiniport - ok
17:16:21.0890 0824 Processor (a32bebaf723557681bfc6bd93e98bd26) C:\WINDOWS\system32\DRIVERS\processr.sys
17:16:21.0890 0824 Processor - ok
17:16:21.0968 0824 Ps2 (bffdb363485501a38f0bca83aec810db) C:\WINDOWS\system32\DRIVERS\PS2.sys
17:16:21.0968 0824 Ps2 - ok
17:16:21.0984 0824 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
17:16:22.0000 0824 PSched - ok
17:16:22.0031 0824 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
17:16:22.0031 0824 Ptilink - ok
17:16:22.0093 0824 PxHelp20 (d86b4a68565e444d76457f14172c875a) C:\WINDOWS\system32\Drivers\PxHelp20.sys
17:16:22.0093 0824 PxHelp20 - ok
17:16:22.0140 0824 ql1080 - ok
17:16:22.0218 0824 Ql10wnt - ok
17:16:22.0250 0824 ql12160 - ok
17:16:22.0281 0824 ql1240 - ok
17:16:22.0296 0824 ql1280 - ok
17:16:22.0328 0824 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
17:16:22.0343 0824 RasAcd - ok
17:16:22.0375 0824 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
17:16:22.0375 0824 Rasl2tp - ok
17:16:22.0406 0824 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
17:16:22.0406 0824 RasPppoe - ok
17:16:22.0453 0824 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
17:16:22.0453 0824 Raspti - ok
17:16:22.0500 0824 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
17:16:22.0500 0824 Rdbss - ok
17:16:22.0515 0824 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
17:16:22.0515 0824 RDPCDD - ok
17:16:22.0578 0824 RDPWD (fc105dd312ed64eb66bff111e8ec6eac) C:\WINDOWS\system32\drivers\RDPWD.sys
17:16:22.0578 0824 RDPWD - ok
17:16:22.0609 0824 redbook (f828dd7e1419b6653894a8f97a0094c5) C:\WINDOWS\system32\DRIVERS\redbook.sys
17:16:22.0609 0824 redbook - ok
17:16:22.0671 0824 RTL8023xp (cf84b1f0e8b14d4120aaf9cf35cbb265) C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys
17:16:22.0671 0824 RTL8023xp - ok
17:16:22.0687 0824 rtl8139 (2ef9c0dc26b30b2318b1fc3faa1f0ae7) C:\WINDOWS\system32\DRIVERS\R8139n51.SYS
17:16:22.0703 0824 rtl8139 - ok
17:16:22.0765 0824 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
17:16:22.0765 0824 Secdrv - ok
17:16:22.0812 0824 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
17:16:22.0828 0824 serenum - ok
17:16:22.0875 0824 Serial (cca207a8896d4c6a0c9ce29a4ae411a7) C:\WINDOWS\system32\DRIVERS\serial.sys
17:16:22.0875 0824 Serial - ok
17:16:22.0921 0824 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
17:16:22.0921 0824 Sfloppy - ok
17:16:22.0937 0824 Simbad - ok
17:16:22.0984 0824 SiS315 (7467e510c81b19a6b590a3868f499b23) C:\WINDOWS\system32\DRIVERS\sisgrp.sys
17:16:22.0984 0824 SiS315 - ok
17:16:23.0000 0824 SISAGP (61ca562def09a782d26b3e7edec5369a) C:\WINDOWS\system32\DRIVERS\SISAGPX.sys
17:16:23.0000 0824 SISAGP - ok
17:16:23.0046 0824 SiSkp (14ed728e44b0e7a169217127d8510ca9) C:\WINDOWS\system32\DRIVERS\srvkp.sys
17:16:23.0046 0824 SiSkp - ok
17:16:23.0125 0824 slabbus (444186c720885429a2354095c1938143) C:\WINDOWS\system32\DRIVERS\slabbus.sys
17:16:23.0140 0824 slabbus - ok
17:16:23.0171 0824 slabser (ed71f8c82ef11c0da1c57be021a2fdc9) C:\WINDOWS\system32\DRIVERS\slabser.sys
17:16:23.0171 0824 slabser - ok
17:16:23.0234 0824 SLIP (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys
17:16:23.0234 0824 SLIP - ok
17:16:23.0312 0824 snapman (eb49860e776ce860dc3cfb9edb1ba517) C:\WINDOWS\system32\DRIVERS\snapman.sys
17:16:23.0328 0824 snapman - ok
17:16:23.0343 0824 Sparrow - ok
17:16:23.0375 0824 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
17:16:23.0375 0824 splitter - ok
17:16:23.0406 0824 sr (76bb022c2fb6902fd5bdd4f78fc13a5d) C:\WINDOWS\system32\DRIVERS\sr.sys
17:16:23.0406 0824 sr - ok
17:16:23.0453 0824 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
17:16:23.0468 0824 Srv - ok
17:16:23.0500 0824 StillCam (a9573045baa16eab9b1085205b82f1ed) C:\WINDOWS\system32\DRIVERS\serscan.sys
17:16:23.0500 0824 StillCam - ok
17:16:23.0546 0824 streamip (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
17:16:23.0562 0824 streamip - ok
17:16:23.0593 0824 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
17:16:23.0593 0824 swenum - ok
17:16:23.0609 0824 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
17:16:23.0625 0824 swmidi - ok
17:16:23.0656 0824 symc810 - ok
17:16:23.0671 0824 symc8xx - ok
17:16:23.0703 0824 sym_hi - ok
17:16:23.0765 0824 sym_u3 - ok
17:16:23.0828 0824 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
17:16:23.0828 0824 sysaudio - ok
17:16:23.0921 0824 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
17:16:23.0921 0824 Tcpip - ok
17:16:23.0984 0824 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
17:16:23.0984 0824 TDPIPE - ok
17:16:24.0093 0824 tdrpman273 (431801fcc97034e04a6eff81136578d7) C:\WINDOWS\system32\DRIVERS\tdrpm273.sys
17:16:24.0093 0824 tdrpman273 - ok
17:16:24.0171 0824 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
17:16:24.0171 0824 TDTCP - ok
17:16:24.0234 0824 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
17:16:24.0234 0824 TermDD - ok
17:16:24.0312 0824 timounter (a34d7024bb7140ec785c86bc065d4f60) C:\WINDOWS\system32\DRIVERS\timntr.sys
17:16:24.0328 0824 timounter - ok
17:16:24.0359 0824 TosIde - ok
17:16:24.0406 0824 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
17:16:24.0421 0824 Udfs - ok
17:16:24.0437 0824 ultra - ok
17:16:24.0468 0824 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
17:16:24.0468 0824 Update - ok
17:16:24.0500 0824 usbaudio (e919708db44ed8543a7c017953148330) C:\WINDOWS\system32\drivers\usbaudio.sys
17:16:24.0515 0824 usbaudio - ok
17:16:24.0531 0824 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
17:16:24.0546 0824 usbccgp - ok
17:16:24.0562 0824 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
17:16:24.0562 0824 usbehci - ok
17:16:24.0609 0824 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
17:16:24.0609 0824 usbhub - ok
17:16:24.0671 0824 usbohci (0daecce65366ea32b162f85f07c6753b) C:\WINDOWS\system32\DRIVERS\usbohci.sys
17:16:24.0671 0824 usbohci - ok
17:16:24.0750 0824 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
17:16:24.0750 0824 usbprint - ok
17:16:24.0781 0824 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
17:16:24.0796 0824 usbscan - ok
17:16:24.0843 0824 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
17:16:24.0843 0824 USBSTOR - ok
17:16:24.0875 0824 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
17:16:24.0890 0824 usbuhci - ok
17:16:24.0953 0824 usbvm328 (6dc94d0d4f2472056d14e987f729eccb) C:\WINDOWS\system32\Drivers\usbvm326.sys
17:16:24.0953 0824 usbvm328 - ok
17:16:25.0015 0824 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
17:16:25.0015 0824 VgaSave - ok
17:16:25.0093 0824 viaagp1 (4b039bbd037b01f5db5a144c837f283a) C:\WINDOWS\system32\DRIVERS\viaagp1.sys
17:16:25.0093 0824 viaagp1 - ok
17:16:25.0156 0824 viagfx (19bba101cb87d18ff04e7f24e1792ab0) C:\WINDOWS\system32\DRIVERS\vtmini.sys
17:16:25.0156 0824 viagfx - ok
17:16:25.0218 0824 ViaIde (3b3efcda263b8ac14fdf9cbdd0791b2e) C:\WINDOWS\system32\DRIVERS\viaide.sys
17:16:25.0218 0824 ViaIde - ok
17:16:25.0265 0824 vmfilter323 (6c21422d47ed3d8f65ed667bfd1cc759) C:\WINDOWS\system32\drivers\vmfilter323.sys
17:16:25.0265 0824 vmfilter323 - ok
17:16:25.0312 0824 VolSnap (4c8fcb5cc53aab716d810740fe59d025) C:\WINDOWS\system32\drivers\VolSnap.sys
17:16:25.0312 0824 VolSnap - ok
17:16:25.0359 0824 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
17:16:25.0359 0824 Wanarp - ok
17:16:25.0390 0824 WDICA - ok
17:16:25.0406 0824 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
17:16:25.0406 0824 wdmaud - ok
17:16:25.0468 0824 WinDriver6 (94e4312d546048bf31604a8b2ad13fc0) C:\WINDOWS\system32\drivers\windrvr6.sys
17:16:25.0484 0824 WinDriver6 - ok
17:16:25.0593 0824 WpdUsb (cf4def1bf66f06964dc0d91844239104) C:\WINDOWS\system32\DRIVERS\wpdusb.sys
17:16:25.0593 0824 WpdUsb - ok
17:16:25.0671 0824 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
17:16:25.0671 0824 WS2IFSL - ok
17:16:25.0718 0824 WSTCODEC (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
17:16:25.0734 0824 WSTCODEC - ok
17:16:25.0812 0824 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
17:16:25.0812 0824 WudfPf - ok
17:16:25.0875 0824 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
17:16:25.0875 0824 WudfRd - ok
17:16:25.0921 0824 MBR (0x1B8) (bad0263fbe81b49f5f07b32dc9d198b3) \Device\Harddisk0\DR0
17:16:25.0953 0824 \Device\Harddisk0\DR0 - ok
17:16:25.0968 0824 MBR (0x1B8) (bad0263fbe81b49f5f07b32dc9d198b3) \Device\Harddisk1\DR1
17:16:25.0968 0824 \Device\Harddisk1\DR1 - ok
17:16:25.0968 0824 Boot (0x1200) (80f49539896b4db3e0baed6734b1ec5d) \Device\Harddisk0\DR0\Partition0
17:16:25.0968 0824 \Device\Harddisk0\DR0\Partition0 - ok
17:16:26.0000 0824 Boot (0x1200) (c42a6d2b74b41a6810494f9b143c9aac) \Device\Harddisk0\DR0\Partition1
17:16:26.0000 0824 \Device\Harddisk0\DR0\Partition1 - ok
17:16:26.0015 0824 Boot (0x1200) (dff8e4ba1665523350f55da44a78e6ee) \Device\Harddisk1\DR1\Partition0
17:16:26.0015 0824 \Device\Harddisk1\DR1\Partition0 - ok
17:16:26.0015 0824 ============================================================
17:16:26.0015 0824 Scan finished
17:16:26.0015 0824 ============================================================
17:16:26.0031 3724 Detected object count: 0
17:16:26.0031 3724 Actual detected object count: 0
  • 0

#27
Jennifer2

Jennifer2

    Member

  • Topic Starter
  • Member
  • PipPip
  • 37 posts
Here is the second. Should I continue with downloading aswMBR.exe ?

17:15:40.0656 2480 TDSS rootkit removing tool 2.6.25.0 Dec 23 2011 14:51:16
17:15:41.0234 2480 ============================================================
17:15:41.0234 2480 Current date / time: 2011/12/29 17:15:41.0234
17:15:41.0234 2480 SystemInfo:
17:15:41.0234 2480
17:15:41.0234 2480 OS Version: 5.1.2600 ServicePack: 3.0
17:15:41.0234 2480 Product type: Workstation
17:15:41.0234 2480 ComputerName: MCILROY-001
17:15:41.0234 2480 UserName: HP_Owner
17:15:41.0234 2480 Windows directory: C:\WINDOWS
17:15:41.0234 2480 System windows directory: C:\WINDOWS
17:15:41.0234 2480 Processor architecture: Intel x86
17:15:41.0234 2480 Number of processors: 2
17:15:41.0234 2480 Page size: 0x1000
17:15:41.0234 2480 Boot type: Normal boot
17:15:41.0234 2480 ============================================================
17:15:42.0406 2480 Initialize success
17:15:47.0515 3736 ============================================================
17:15:47.0515 3736 Scan started
17:15:47.0515 3736 Mode: Manual;
17:15:47.0515 3736 ============================================================
17:15:48.0593 3736 Aavmker4 (b6de0336f9f4b687b4ff57939f7b657a) C:\WINDOWS\system32\drivers\Aavmker4.sys
17:15:48.0593 3736 Aavmker4 - ok
17:15:48.0625 3736 Abiosdsk - ok
17:15:48.0656 3736 abp480n5 - ok
17:15:48.0718 3736 ACPI (8fd99680a539792a30e97944fdaecf17) C:\WINDOWS\system32\DRIVERS\ACPI.sys
17:15:48.0718 3736 ACPI - ok
17:15:48.0796 3736 ACPIEC (9859c0f6936e723e4892d7141b1327d5) C:\WINDOWS\system32\drivers\ACPIEC.sys
17:15:48.0796 3736 ACPIEC - ok
17:15:48.0812 3736 adpu160m - ok
17:15:48.0843 3736 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
17:15:48.0843 3736 aec - ok
17:15:48.0875 3736 Afc (a7b8a3a79d35215d798a300df49ed23f) C:\WINDOWS\system32\drivers\Afc.sys
17:15:48.0875 3736 Afc - ok
17:15:48.0921 3736 afcdp (53696ad8ffc5fac51949a525ff65a689) C:\WINDOWS\system32\DRIVERS\afcdp.sys
17:15:48.0921 3736 afcdp - ok
17:15:48.0984 3736 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
17:15:48.0984 3736 AFD - ok
17:15:49.0062 3736 AgereSoftModem (994a42d273c35b43ee9d1e8a5d8bc639) C:\WINDOWS\system32\DRIVERS\AGRSM.sys
17:15:49.0109 3736 AgereSoftModem - ok
17:15:49.0125 3736 Aha154x - ok
17:15:49.0140 3736 aic78u2 - ok
17:15:49.0156 3736 aic78xx - ok
17:15:49.0171 3736 AliIde - ok
17:15:49.0218 3736 AmdK7 (8fce268cdbdd83b23419d1f35f42c7b1) C:\WINDOWS\system32\DRIVERS\amdk7.sys
17:15:49.0218 3736 AmdK7 - ok
17:15:49.0281 3736 amsint - ok
17:15:49.0343 3736 Arp1394 (b5b8a80875c1dededa8b02765642c32f) C:\WINDOWS\system32\DRIVERS\arp1394.sys
17:15:49.0343 3736 Arp1394 - ok
17:15:49.0359 3736 asc - ok
17:15:49.0375 3736 asc3350p - ok
17:15:49.0406 3736 asc3550 - ok
17:15:49.0484 3736 aswFsBlk (054df24c92b55427e0757cfff160e4f2) C:\WINDOWS\system32\drivers\aswFsBlk.sys
17:15:49.0484 3736 aswFsBlk - ok
17:15:49.0531 3736 aswMon2 (ef0e9ad83380724bd6fbbb51d2d0f5b8) C:\WINDOWS\system32\drivers\aswMon2.sys
17:15:49.0531 3736 aswMon2 - ok
17:15:49.0578 3736 aswRdr (352d5a48ebab35a7693b048679304831) C:\WINDOWS\system32\drivers\aswRdr.sys
17:15:49.0578 3736 aswRdr - ok
17:15:49.0609 3736 aswSnx (8d34d2b24297e27d93e847319abfdec4) C:\WINDOWS\system32\drivers\aswSnx.sys
17:15:49.0625 3736 aswSnx - ok
17:15:49.0671 3736 aswSP (010012597333da1f46c3243f33f8409e) C:\WINDOWS\system32\drivers\aswSP.sys
17:15:49.0671 3736 aswSP - ok
17:15:49.0703 3736 aswTdi (f9f84364416658e9786235904d448d37) C:\WINDOWS\system32\drivers\aswTdi.sys
17:15:49.0718 3736 aswTdi - ok
17:15:49.0734 3736 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
17:15:49.0734 3736 AsyncMac - ok
17:15:49.0765 3736 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
17:15:49.0765 3736 atapi - ok
17:15:49.0812 3736 Atdisk - ok
17:15:49.0875 3736 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
17:15:49.0875 3736 Atmarpc - ok
17:15:49.0937 3736 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
17:15:49.0953 3736 audstub - ok
17:15:50.0015 3736 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
17:15:50.0015 3736 Beep - ok
17:15:50.0031 3736 catchme - ok
17:15:50.0046 3736 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
17:15:50.0046 3736 cbidf2k - ok
17:15:50.0093 3736 CCDECODE (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
17:15:50.0093 3736 CCDECODE - ok
17:15:50.0125 3736 cd20xrnt - ok
17:15:50.0156 3736 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
17:15:50.0156 3736 Cdaudio - ok
17:15:50.0171 3736 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
17:15:50.0171 3736 Cdfs - ok
17:15:50.0203 3736 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
17:15:50.0203 3736 Cdrom - ok
17:15:50.0218 3736 Changer - ok
17:15:50.0265 3736 CmdIde - ok
17:15:50.0281 3736 Compbatt (6e4c9f21f0fae8940661144f41b13203) C:\WINDOWS\system32\DRIVERS\compbatt.sys
17:15:50.0281 3736 Compbatt - ok
17:15:50.0328 3736 Cpqarray - ok
17:15:50.0390 3736 cpuz134 (75fa19142531cbf490770c2988a7db64) C:\WINDOWS\system32\drivers\cpuz134_x32.sys
17:15:50.0390 3736 cpuz134 - ok
17:15:50.0437 3736 dac2w2k - ok
17:15:50.0468 3736 dac960nt - ok
17:15:50.0515 3736 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
17:15:50.0515 3736 Disk - ok
17:15:50.0562 3736 dmboot (d992fe1274bde0f84ad826acae022a41) C:\WINDOWS\system32\drivers\dmboot.sys
17:15:50.0578 3736 dmboot - ok
17:15:50.0625 3736 dmio (7c824cf7bbde77d95c08005717a95f6f) C:\WINDOWS\system32\drivers\dmio.sys
17:15:50.0625 3736 dmio - ok
17:15:50.0687 3736 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
17:15:50.0687 3736 dmload - ok
17:15:50.0750 3736 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
17:15:50.0750 3736 DMusic - ok
17:15:50.0796 3736 dpti2o - ok
17:15:50.0890 3736 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
17:15:50.0890 3736 drmkaud - ok
17:15:50.0968 3736 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
17:15:50.0968 3736 Fastfat - ok
17:15:50.0984 3736 fasttx2k (1e580770bdece924494b368ac980749e) C:\WINDOWS\system32\DRIVERS\fasttx2k.sys
17:15:50.0984 3736 fasttx2k - ok
17:15:51.0015 3736 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
17:15:51.0031 3736 Fdc - ok
17:15:51.0062 3736 Fips (d45926117eb9fa946a6af572fbe1caa3) C:\WINDOWS\system32\drivers\Fips.sys
17:15:51.0062 3736 Fips - ok
17:15:51.0093 3736 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
17:15:51.0093 3736 Flpydisk - ok
17:15:51.0109 3736 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
17:15:51.0125 3736 FltMgr - ok
17:15:51.0156 3736 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
17:15:51.0156 3736 Fs_Rec - ok
17:15:51.0171 3736 Ftdisk (6ac26732762483366c3969c9e4d2259d) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
17:15:51.0171 3736 Ftdisk - ok
17:15:51.0218 3736 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
17:15:51.0218 3736 GEARAspiWDM - ok
17:15:51.0234 3736 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
17:15:51.0234 3736 Gpc - ok
17:15:51.0265 3736 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
17:15:51.0281 3736 HDAudBus - ok
17:15:51.0312 3736 HidBatt (748031ff4fe45ccc47546294905feab8) C:\WINDOWS\system32\DRIVERS\HidBatt.sys
17:15:51.0312 3736 HidBatt - ok
17:15:51.0343 3736 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
17:15:51.0343 3736 HidUsb - ok
17:15:51.0359 3736 hpn - ok
17:15:51.0437 3736 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
17:15:51.0437 3736 HTTP - ok
17:15:51.0484 3736 i2omgmt - ok
17:15:51.0531 3736 i2omp - ok
17:15:51.0578 3736 i8042prt (4a0b06aa8943c1e332520f7440c0aa30) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
17:15:51.0578 3736 i8042prt - ok
17:15:51.0656 3736 ialm (53fdf10a5baf4f0a345bc5e941392186) C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
17:15:51.0671 3736 ialm - ok
17:15:51.0734 3736 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
17:15:51.0734 3736 Imapi - ok
17:15:51.0796 3736 ini910u - ok
17:15:51.0984 3736 IntcAzAudAddService (85ab23f3e4ba6696fae8beb9d434edd6) C:\WINDOWS\system32\drivers\RtkHDAud.sys
17:15:52.0031 3736 IntcAzAudAddService - ok
17:15:52.0109 3736 IntelIde (b5466a9250342a7aa0cd1fba13420678) C:\WINDOWS\system32\DRIVERS\intelide.sys
17:15:52.0109 3736 IntelIde - ok
17:15:52.0140 3736 intelppm (8c953733d8f36eb2133f5bb58808b66b) C:\WINDOWS\system32\DRIVERS\intelppm.sys
17:15:52.0140 3736 intelppm - ok
17:15:52.0171 3736 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
17:15:52.0171 3736 Ip6Fw - ok
17:15:52.0250 3736 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
17:15:52.0250 3736 IpFilterDriver - ok
17:15:52.0296 3736 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
17:15:52.0296 3736 IpInIp - ok
17:15:52.0359 3736 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
17:15:52.0359 3736 IpNat - ok
17:15:52.0421 3736 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
17:15:52.0421 3736 IPSec - ok
17:15:52.0484 3736 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
17:15:52.0484 3736 IRENUM - ok
17:15:52.0531 3736 isapnp (05a299ec56e52649b1cf2fc52d20f2d7) C:\WINDOWS\system32\DRIVERS\isapnp.sys
17:15:52.0531 3736 isapnp - ok
17:15:52.0609 3736 Iviaspi (f59c3569a2f2c464bb78cb1bdcdca55e) C:\WINDOWS\system32\drivers\iviaspi.sys
17:15:52.0609 3736 Iviaspi - ok
17:15:52.0640 3736 Kbdclass (463c1ec80cd17420a542b7f36a36f128) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
17:15:52.0640 3736 Kbdclass - ok
17:15:52.0687 3736 kbdhid (9ef487a186dea361aa06913a75b3fa99) C:\WINDOWS\system32\DRIVERS\kbdhid.sys
17:15:52.0687 3736 kbdhid - ok
17:15:52.0718 3736 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
17:15:52.0718 3736 kmixer - ok
17:15:52.0765 3736 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
17:15:52.0765 3736 KSecDD - ok
17:15:52.0812 3736 lbrtfdc - ok
17:15:52.0875 3736 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
17:15:52.0875 3736 mnmdd - ok
17:15:52.0921 3736 Modem (dfcbad3cec1c5f964962ae10e0bcc8e1) C:\WINDOWS\system32\drivers\Modem.sys
17:15:52.0921 3736 Modem - ok
17:15:52.0984 3736 Mouclass (35c9e97194c8cfb8430125f8dbc34d04) C:\WINDOWS\system32\DRIVERS\mouclass.sys
17:15:52.0984 3736 Mouclass - ok
17:15:53.0031 3736 mouhid (b1c303e17fb9d46e87a98e4ba6769685) C:\WINDOWS\system32\DRIVERS\mouhid.sys
17:15:53.0031 3736 mouhid - ok
17:15:53.0062 3736 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
17:15:53.0062 3736 MountMgr - ok
17:15:53.0093 3736 mraid35x - ok
17:15:53.0156 3736 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
17:15:53.0156 3736 MRxDAV - ok
17:15:53.0234 3736 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
17:15:53.0250 3736 MRxSmb - ok
17:15:53.0265 3736 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
17:15:53.0281 3736 Msfs - ok
17:15:53.0296 3736 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
17:15:53.0296 3736 MSKSSRV - ok
17:15:53.0343 3736 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
17:15:53.0343 3736 MSPCLOCK - ok
17:15:53.0390 3736 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
17:15:53.0390 3736 MSPQM - ok
17:15:53.0437 3736 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
17:15:53.0437 3736 mssmbios - ok
17:15:53.0468 3736 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys
17:15:53.0468 3736 MSTEE - ok
17:15:53.0515 3736 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
17:15:53.0515 3736 Mup - ok
17:15:53.0546 3736 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
17:15:53.0546 3736 NABTSFEC - ok
17:15:53.0593 3736 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
17:15:53.0593 3736 NDIS - ok
17:15:53.0609 3736 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
17:15:53.0625 3736 NdisIP - ok
17:15:53.0656 3736 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
17:15:53.0656 3736 NdisTapi - ok
17:15:53.0703 3736 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
17:15:53.0703 3736 Ndisuio - ok
17:15:53.0750 3736 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
17:15:53.0750 3736 NdisWan - ok
17:15:53.0796 3736 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
17:15:53.0796 3736 NDProxy - ok
17:15:53.0812 3736 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
17:15:53.0828 3736 NetBIOS - ok
17:15:53.0875 3736 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
17:15:53.0875 3736 NetBT - ok
17:15:53.0937 3736 NIC1394 (e9e47cfb2d461fa0fc75b7a74c6383ea) C:\WINDOWS\system32\DRIVERS\nic1394.sys
17:15:53.0953 3736 NIC1394 - ok
17:15:54.0015 3736 nmwcd (e380bbcad640304737650367ddfa2366) C:\WINDOWS\system32\drivers\nmwcd.sys
17:15:54.0031 3736 nmwcd - ok
17:15:54.0078 3736 nmwcdc (3c4650af9712ae0cb405064b6278ccad) C:\WINDOWS\system32\drivers\nmwcdc.sys
17:15:54.0078 3736 nmwcdc - ok
17:15:54.0109 3736 nmwcdcj (9c9ff3ec04021234d6f440acbd3b70c1) C:\WINDOWS\system32\drivers\nmwcdcj.sys
17:15:54.0109 3736 nmwcdcj - ok
17:15:54.0156 3736 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
17:15:54.0156 3736 Npfs - ok
17:15:54.0218 3736 NPPTNT2 (9131fe60adfab595c8da53ad6a06aa31) C:\WINDOWS\system32\npptNT2.sys
17:15:54.0234 3736 NPPTNT2 - ok
17:15:54.0281 3736 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
17:15:54.0281 3736 Ntfs - ok
17:15:54.0343 3736 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
17:15:54.0343 3736 Null - ok
17:15:54.0671 3736 nv (8b2c874897ea498da012284e12f9db2b) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
17:15:54.0953 3736 nv - ok
17:15:55.0031 3736 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
17:15:55.0031 3736 NwlnkFlt - ok
17:15:55.0078 3736 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
17:15:55.0093 3736 NwlnkFwd - ok
17:15:55.0140 3736 NwlnkIpx (8b8b1be2dba4025da6786c645f77f123) C:\WINDOWS\system32\DRIVERS\nwlnkipx.sys
17:15:55.0140 3736 NwlnkIpx - ok
17:15:55.0187 3736 NwlnkNb (56d34a67c05e94e16377c60609741ff8) C:\WINDOWS\system32\DRIVERS\nwlnknb.sys
17:15:55.0187 3736 NwlnkNb - ok
17:15:55.0203 3736 NwlnkSpx (c0bb7d1615e1acbdc99757f6ceaf8cf0) C:\WINDOWS\system32\DRIVERS\nwlnkspx.sys
17:15:55.0203 3736 NwlnkSpx - ok
17:15:55.0234 3736 ohci1394 (ca33832df41afb202ee7aeb05145922f) C:\WINDOWS\system32\DRIVERS\ohci1394.sys
17:15:55.0234 3736 ohci1394 - ok
17:15:55.0281 3736 ovt519 (4cdadec3dc1300ee1d313ea5494e6472) C:\WINDOWS\system32\Drivers\ov519vid.sys
17:15:55.0281 3736 ovt519 - ok
17:15:55.0312 3736 Parport (5575faf8f97ce5e713d108c2a58d7c7c) C:\WINDOWS\system32\DRIVERS\parport.sys
17:15:55.0312 3736 Parport - ok
17:15:55.0328 3736 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
17:15:55.0328 3736 PartMgr - ok
17:15:55.0343 3736 ParVdm (70e98b3fd8e963a6a46a2e6247e0bea1) C:\WINDOWS\system32\drivers\ParVdm.sys
17:15:55.0359 3736 ParVdm - ok
17:15:55.0390 3736 PCI (a219903ccf74233761d92bef471a07b1) C:\WINDOWS\system32\DRIVERS\pci.sys
17:15:55.0390 3736 PCI - ok
17:15:55.0406 3736 PCIDump - ok
17:15:55.0421 3736 PCIIde (ccf5f451bb1a5a2a522a76e670000ff0) C:\WINDOWS\system32\DRIVERS\pciide.sys
17:15:55.0421 3736 PCIIde - ok
17:15:55.0453 3736 Pcmcia (9e89ef60e9ee05e3f2eef2da7397f1c1) C:\WINDOWS\system32\drivers\Pcmcia.sys
17:15:55.0453 3736 Pcmcia - ok
17:15:55.0468 3736 PDCOMP - ok
17:15:55.0484 3736 PDFRAME - ok
17:15:55.0531 3736 PDRELI - ok
17:15:55.0578 3736 PDRFRAME - ok
17:15:55.0625 3736 perc2 - ok
17:15:55.0671 3736 perc2hib - ok
17:15:55.0781 3736 Pfc (444f122e68db44c0589227781f3c8b3f) C:\WINDOWS\system32\drivers\pfc.sys
17:15:55.0781 3736 Pfc - ok
17:15:55.0828 3736 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
17:15:55.0828 3736 PptpMiniport - ok
17:15:55.0859 3736 Processor (a32bebaf723557681bfc6bd93e98bd26) C:\WINDOWS\system32\DRIVERS\processr.sys
17:15:55.0859 3736 Processor - ok
17:15:55.0921 3736 Ps2 (bffdb363485501a38f0bca83aec810db) C:\WINDOWS\system32\DRIVERS\PS2.sys
17:15:55.0921 3736 Ps2 - ok
17:15:55.0937 3736 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
17:15:55.0937 3736 PSched - ok
17:15:55.0968 3736 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
17:15:55.0968 3736 Ptilink - ok
17:15:56.0015 3736 PxHelp20 (d86b4a68565e444d76457f14172c875a) C:\WINDOWS\system32\Drivers\PxHelp20.sys
17:15:56.0015 3736 PxHelp20 - ok
17:15:56.0031 3736 ql1080 - ok
17:15:56.0046 3736 Ql10wnt - ok
17:15:56.0078 3736 ql12160 - ok
17:15:56.0109 3736 ql1240 - ok
17:15:56.0125 3736 ql1280 - ok
17:15:56.0156 3736 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
17:15:56.0171 3736 RasAcd - ok
17:15:56.0187 3736 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
17:15:56.0187 3736 Rasl2tp - ok
17:15:56.0218 3736 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
17:15:56.0218 3736 RasPppoe - ok
17:15:56.0234 3736 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
17:15:56.0234 3736 Raspti - ok
17:15:56.0250 3736 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
17:15:56.0265 3736 Rdbss - ok
17:15:56.0281 3736 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
17:15:56.0281 3736 RDPCDD - ok
17:15:56.0328 3736 RDPWD (fc105dd312ed64eb66bff111e8ec6eac) C:\WINDOWS\system32\drivers\RDPWD.sys
17:15:56.0343 3736 RDPWD - ok
17:15:56.0375 3736 redbook (f828dd7e1419b6653894a8f97a0094c5) C:\WINDOWS\system32\DRIVERS\redbook.sys
17:15:56.0390 3736 redbook - ok
17:15:56.0437 3736 RTL8023xp (cf84b1f0e8b14d4120aaf9cf35cbb265) C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys
17:15:56.0437 3736 RTL8023xp - ok
17:15:56.0468 3736 rtl8139 (2ef9c0dc26b30b2318b1fc3faa1f0ae7) C:\WINDOWS\system32\DRIVERS\R8139n51.SYS
17:15:56.0468 3736 rtl8139 - ok
17:15:56.0546 3736 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
17:15:56.0546 3736 Secdrv - ok
17:15:56.0609 3736 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
17:15:56.0625 3736 serenum - ok
17:15:56.0656 3736 Serial (cca207a8896d4c6a0c9ce29a4ae411a7) C:\WINDOWS\system32\DRIVERS\serial.sys
17:15:56.0671 3736 Serial - ok
17:15:56.0703 3736 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
17:15:56.0718 3736 Sfloppy - ok
17:15:56.0734 3736 Simbad - ok
17:15:56.0781 3736 SiS315 (7467e510c81b19a6b590a3868f499b23) C:\WINDOWS\system32\DRIVERS\sisgrp.sys
17:15:56.0796 3736 SiS315 - ok
17:15:56.0859 3736 SISAGP (61ca562def09a782d26b3e7edec5369a) C:\WINDOWS\system32\DRIVERS\SISAGPX.sys
17:15:56.0859 3736 SISAGP - ok
17:15:56.0906 3736 SiSkp (14ed728e44b0e7a169217127d8510ca9) C:\WINDOWS\system32\DRIVERS\srvkp.sys
17:15:56.0906 3736 SiSkp - ok
17:15:56.0968 3736 slabbus (444186c720885429a2354095c1938143) C:\WINDOWS\system32\DRIVERS\slabbus.sys
17:15:56.0968 3736 slabbus - ok
17:15:57.0000 3736 slabser (ed71f8c82ef11c0da1c57be021a2fdc9) C:\WINDOWS\system32\DRIVERS\slabser.sys
17:15:57.0000 3736 slabser - ok
17:15:57.0046 3736 SLIP (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys
17:15:57.0046 3736 SLIP - ok
17:15:57.0125 3736 snapman (eb49860e776ce860dc3cfb9edb1ba517) C:\WINDOWS\system32\DRIVERS\snapman.sys
17:15:57.0140 3736 snapman - ok
17:15:57.0171 3736 Sparrow - ok
17:15:57.0203 3736 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
17:15:57.0203 3736 splitter - ok
17:15:57.0265 3736 sr (76bb022c2fb6902fd5bdd4f78fc13a5d) C:\WINDOWS\system32\DRIVERS\sr.sys
17:15:57.0265 3736 sr - ok
17:15:57.0312 3736 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
17:15:57.0312 3736 Srv - ok
17:15:57.0359 3736 StillCam (a9573045baa16eab9b1085205b82f1ed) C:\WINDOWS\system32\DRIVERS\serscan.sys
17:15:57.0375 3736 StillCam - ok
17:15:57.0421 3736 streamip (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
17:15:57.0421 3736 streamip - ok
17:15:57.0437 3736 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
17:15:57.0437 3736 swenum - ok
17:15:57.0500 3736 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
17:15:57.0500 3736 swmidi - ok
17:15:57.0531 3736 symc810 - ok
17:15:57.0562 3736 symc8xx - ok
17:15:57.0578 3736 sym_hi - ok
17:15:57.0609 3736 sym_u3 - ok
17:15:57.0671 3736 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
17:15:57.0671 3736 sysaudio - ok
17:15:57.0718 3736 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
17:15:57.0734 3736 Tcpip - ok
17:15:57.0750 3736 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
17:15:57.0750 3736 TDPIPE - ok
17:15:57.0828 3736 tdrpman273 (431801fcc97034e04a6eff81136578d7) C:\WINDOWS\system32\DRIVERS\tdrpm273.sys
17:15:57.0843 3736 tdrpman273 - ok
17:15:57.0875 3736 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
17:15:57.0875 3736 TDTCP - ok
17:15:57.0906 3736 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
17:15:57.0921 3736 TermDD - ok
17:15:57.0984 3736 timounter (a34d7024bb7140ec785c86bc065d4f60) C:\WINDOWS\system32\DRIVERS\timntr.sys
17:15:58.0015 3736 timounter - ok
17:15:58.0031 3736 TosIde - ok
17:15:58.0078 3736 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
17:15:58.0093 3736 Udfs - ok
17:15:58.0125 3736 ultra - ok
17:15:58.0187 3736 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
17:15:58.0203 3736 Update - ok
17:15:58.0250 3736 usbaudio (e919708db44ed8543a7c017953148330) C:\WINDOWS\system32\drivers\usbaudio.sys
17:15:58.0250 3736 usbaudio - ok
17:15:58.0296 3736 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
17:15:58.0296 3736 usbccgp - ok
17:15:58.0343 3736 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
17:15:58.0343 3736 usbehci - ok
17:15:58.0390 3736 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
17:15:58.0390 3736 usbhub - ok
17:15:58.0437 3736 usbohci (0daecce65366ea32b162f85f07c6753b) C:\WINDOWS\system32\DRIVERS\usbohci.sys
17:15:58.0437 3736 usbohci - ok
17:15:58.0484 3736 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
17:15:58.0484 3736 usbprint - ok
17:15:58.0515 3736 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
17:15:58.0515 3736 usbscan - ok
17:15:58.0546 3736 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
17:15:58.0546 3736 USBSTOR - ok
17:15:58.0578 3736 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
17:15:58.0593 3736 usbuhci - ok
17:15:58.0656 3736 usbvm328 (6dc94d0d4f2472056d14e987f729eccb) C:\WINDOWS\system32\Drivers\usbvm326.sys
17:15:58.0656 3736 usbvm328 - ok
17:15:58.0687 3736 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
17:15:58.0703 3736 VgaSave - ok
17:15:58.0718 3736 viaagp1 (4b039bbd037b01f5db5a144c837f283a) C:\WINDOWS\system32\DRIVERS\viaagp1.sys
17:15:58.0718 3736 viaagp1 - ok
17:15:58.0750 3736 viagfx (19bba101cb87d18ff04e7f24e1792ab0) C:\WINDOWS\system32\DRIVERS\vtmini.sys
17:15:58.0750 3736 viagfx - ok
17:15:58.0812 3736 ViaIde (3b3efcda263b8ac14fdf9cbdd0791b2e) C:\WINDOWS\system32\DRIVERS\viaide.sys
17:15:58.0812 3736 ViaIde - ok
17:15:58.0843 3736 vmfilter323 (6c21422d47ed3d8f65ed667bfd1cc759) C:\WINDOWS\system32\drivers\vmfilter323.sys
17:15:58.0859 3736 vmfilter323 - ok
17:15:58.0906 3736 VolSnap (4c8fcb5cc53aab716d810740fe59d025) C:\WINDOWS\system32\drivers\VolSnap.sys
17:15:58.0906 3736 VolSnap - ok
17:15:58.0953 3736 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
17:15:58.0953 3736 Wanarp - ok
17:15:58.0984 3736 WDICA - ok
17:15:59.0031 3736 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
17:15:59.0031 3736 wdmaud - ok
17:15:59.0078 3736 WinDriver6 (94e4312d546048bf31604a8b2ad13fc0) C:\WINDOWS\system32\drivers\windrvr6.sys
17:15:59.0093 3736 WinDriver6 - ok
17:15:59.0203 3736 WpdUsb (cf4def1bf66f06964dc0d91844239104) C:\WINDOWS\system32\DRIVERS\wpdusb.sys
17:15:59.0203 3736 WpdUsb - ok
17:15:59.0265 3736 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
17:15:59.0265 3736 WS2IFSL - ok
17:15:59.0312 3736 WSTCODEC (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
17:15:59.0328 3736 WSTCODEC - ok
17:15:59.0375 3736 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
17:15:59.0375 3736 WudfPf - ok
17:15:59.0406 3736 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
17:15:59.0406 3736 WudfRd - ok
17:15:59.0453 3736 MBR (0x1B8) (bad0263fbe81b49f5f07b32dc9d198b3) \Device\Harddisk0\DR0
17:15:59.0484 3736 \Device\Harddisk0\DR0 - ok
17:15:59.0500 3736 MBR (0x1B8) (bad0263fbe81b49f5f07b32dc9d198b3) \Device\Harddisk1\DR1
17:15:59.0500 3736 \Device\Harddisk1\DR1 - ok
17:15:59.0500 3736 Boot (0x1200) (80f49539896b4db3e0baed6734b1ec5d) \Device\Harddisk0\DR0\Partition0
17:15:59.0500 3736 \Device\Harddisk0\DR0\Partition0 - ok
17:15:59.0515 3736 Boot (0x1200) (c42a6d2b74b41a6810494f9b143c9aac) \Device\Harddisk0\DR0\Partition1
17:15:59.0531 3736 \Device\Harddisk0\DR0\Partition1 - ok
17:15:59.0531 3736 Boot (0x1200) (dff8e4ba1665523350f55da44a78e6ee) \Device\Harddisk1\DR1\Partition0
17:15:59.0531 3736 \Device\Harddisk1\DR1\Partition0 - ok
17:15:59.0531 3736 ============================================================
17:15:59.0531 3736 Scan finished
17:15:59.0531 3736 ============================================================
17:15:59.0546 1584 Detected object count: 0
17:15:59.0546 1584 Actual detected object count: 0
17:16:14.0562 0824 ============================================================
17:16:14.0562 0824 Scan started
17:16:14.0562 0824 Mode: Manual;
17:16:14.0562 0824 ============================================================
17:16:14.0875 0824 Aavmker4 (b6de0336f9f4b687b4ff57939f7b657a) C:\WINDOWS\system32\drivers\Aavmker4.sys
17:16:14.0875 0824 Aavmker4 - ok
17:16:14.0890 0824 Abiosdsk - ok
17:16:14.0921 0824 abp480n5 - ok
17:16:14.0968 0824 ACPI (8fd99680a539792a30e97944fdaecf17) C:\WINDOWS\system32\DRIVERS\ACPI.sys
17:16:14.0968 0824 ACPI - ok
17:16:15.0015 0824 ACPIEC (9859c0f6936e723e4892d7141b1327d5) C:\WINDOWS\system32\drivers\ACPIEC.sys
17:16:15.0015 0824 ACPIEC - ok
17:16:15.0062 0824 adpu160m - ok
17:16:15.0140 0824 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
17:16:15.0140 0824 aec - ok
17:16:15.0187 0824 Afc (a7b8a3a79d35215d798a300df49ed23f) C:\WINDOWS\system32\drivers\Afc.sys
17:16:15.0187 0824 Afc - ok
17:16:15.0234 0824 afcdp (53696ad8ffc5fac51949a525ff65a689) C:\WINDOWS\system32\DRIVERS\afcdp.sys
17:16:15.0234 0824 afcdp - ok
17:16:15.0265 0824 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
17:16:15.0265 0824 AFD - ok
17:16:15.0343 0824 AgereSoftModem (994a42d273c35b43ee9d1e8a5d8bc639) C:\WINDOWS\system32\DRIVERS\AGRSM.sys
17:16:15.0343 0824 AgereSoftModem - ok
17:16:15.0359 0824 Aha154x - ok
17:16:15.0375 0824 aic78u2 - ok
17:16:15.0421 0824 aic78xx - ok
17:16:15.0468 0824 AliIde - ok
17:16:15.0515 0824 AmdK7 (8fce268cdbdd83b23419d1f35f42c7b1) C:\WINDOWS\system32\DRIVERS\amdk7.sys
17:16:15.0515 0824 AmdK7 - ok
17:16:15.0562 0824 amsint - ok
17:16:15.0625 0824 Arp1394 (b5b8a80875c1dededa8b02765642c32f) C:\WINDOWS\system32\DRIVERS\arp1394.sys
17:16:15.0625 0824 Arp1394 - ok
17:16:15.0671 0824 asc - ok
17:16:15.0687 0824 asc3350p - ok
17:16:15.0703 0824 asc3550 - ok
17:16:15.0765 0824 aswFsBlk (054df24c92b55427e0757cfff160e4f2) C:\WINDOWS\system32\drivers\aswFsBlk.sys
17:16:15.0765 0824 aswFsBlk - ok
17:16:15.0796 0824 aswMon2 (ef0e9ad83380724bd6fbbb51d2d0f5b8) C:\WINDOWS\system32\drivers\aswMon2.sys
17:16:15.0796 0824 aswMon2 - ok
17:16:15.0843 0824 aswRdr (352d5a48ebab35a7693b048679304831) C:\WINDOWS\system32\drivers\aswRdr.sys
17:16:15.0843 0824 aswRdr - ok
17:16:15.0875 0824 aswSnx (8d34d2b24297e27d93e847319abfdec4) C:\WINDOWS\system32\drivers\aswSnx.sys
17:16:15.0875 0824 aswSnx - ok
17:16:15.0921 0824 aswSP (010012597333da1f46c3243f33f8409e) C:\WINDOWS\system32\drivers\aswSP.sys
17:16:15.0921 0824 aswSP - ok
17:16:15.0937 0824 aswTdi (f9f84364416658e9786235904d448d37) C:\WINDOWS\system32\drivers\aswTdi.sys
17:16:15.0937 0824 aswTdi - ok
17:16:15.0968 0824 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
17:16:15.0968 0824 AsyncMac - ok
17:16:16.0000 0824 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
17:16:16.0000 0824 atapi - ok
17:16:16.0031 0824 Atdisk - ok
17:16:16.0093 0824 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
17:16:16.0093 0824 Atmarpc - ok
17:16:16.0156 0824 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
17:16:16.0156 0824 audstub - ok
17:16:16.0234 0824 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
17:16:16.0234 0824 Beep - ok
17:16:16.0250 0824 catchme - ok
17:16:16.0312 0824 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
17:16:16.0312 0824 cbidf2k - ok
17:16:16.0375 0824 CCDECODE (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
17:16:16.0375 0824 CCDECODE - ok
17:16:16.0406 0824 cd20xrnt - ok
17:16:16.0437 0824 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
17:16:16.0453 0824 Cdaudio - ok
17:16:16.0468 0824 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
17:16:16.0468 0824 Cdfs - ok
17:16:16.0484 0824 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
17:16:16.0484 0824 Cdrom - ok
17:16:16.0500 0824 Changer - ok
17:16:16.0531 0824 CmdIde - ok
17:16:16.0562 0824 Compbatt (6e4c9f21f0fae8940661144f41b13203) C:\WINDOWS\system32\DRIVERS\compbatt.sys
17:16:16.0562 0824 Compbatt - ok
17:16:16.0593 0824 Cpqarray - ok
17:16:16.0671 0824 cpuz134 (75fa19142531cbf490770c2988a7db64) C:\WINDOWS\system32\drivers\cpuz134_x32.sys
17:16:16.0671 0824 cpuz134 - ok
17:16:16.0687 0824 dac2w2k - ok
17:16:16.0703 0824 dac960nt - ok
17:16:16.0718 0824 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
17:16:16.0718 0824 Disk - ok
17:16:16.0765 0824 dmboot (d992fe1274bde0f84ad826acae022a41) C:\WINDOWS\system32\drivers\dmboot.sys
17:16:16.0765 0824 dmboot - ok
17:16:16.0828 0824 dmio (7c824cf7bbde77d95c08005717a95f6f) C:\WINDOWS\system32\drivers\dmio.sys
17:16:16.0828 0824 dmio - ok
17:16:16.0875 0824 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
17:16:16.0875 0824 dmload - ok
17:16:16.0937 0824 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
17:16:16.0937 0824 DMusic - ok
17:16:16.0968 0824 dpti2o - ok
17:16:17.0015 0824 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
17:16:17.0015 0824 drmkaud - ok
17:16:17.0062 0824 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
17:16:17.0062 0824 Fastfat - ok
17:16:17.0078 0824 fasttx2k (1e580770bdece924494b368ac980749e) C:\WINDOWS\system32\DRIVERS\fasttx2k.sys
17:16:17.0078 0824 fasttx2k - ok
17:16:17.0140 0824 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
17:16:17.0140 0824 Fdc - ok
17:16:17.0187 0824 Fips (d45926117eb9fa946a6af572fbe1caa3) C:\WINDOWS\system32\drivers\Fips.sys
17:16:17.0187 0824 Fips - ok
17:16:17.0203 0824 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
17:16:17.0218 0824 Flpydisk - ok
17:16:17.0234 0824 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
17:16:17.0234 0824 FltMgr - ok
17:16:17.0265 0824 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
17:16:17.0265 0824 Fs_Rec - ok
17:16:17.0296 0824 Ftdisk (6ac26732762483366c3969c9e4d2259d) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
17:16:17.0296 0824 Ftdisk - ok
17:16:17.0328 0824 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
17:16:17.0343 0824 GEARAspiWDM - ok
17:16:17.0375 0824 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
17:16:17.0375 0824 Gpc - ok
17:16:17.0421 0824 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
17:16:17.0421 0824 HDAudBus - ok
17:16:17.0453 0824 HidBatt (748031ff4fe45ccc47546294905feab8) C:\WINDOWS\system32\DRIVERS\HidBatt.sys
17:16:17.0453 0824 HidBatt - ok
17:16:17.0515 0824 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
17:16:17.0515 0824 HidUsb - ok
17:16:17.0546 0824 hpn - ok
17:16:17.0625 0824 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
17:16:17.0625 0824 HTTP - ok
17:16:17.0656 0824 i2omgmt - ok
17:16:17.0671 0824 i2omp - ok
17:16:17.0718 0824 i8042prt (4a0b06aa8943c1e332520f7440c0aa30) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
17:16:17.0718 0824 i8042prt - ok
17:16:17.0781 0824 ialm (53fdf10a5baf4f0a345bc5e941392186) C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
17:16:17.0781 0824 ialm - ok
17:16:17.0812 0824 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
17:16:17.0812 0824 Imapi - ok
17:16:17.0828 0824 ini910u - ok
17:16:18.0031 0824 IntcAzAudAddService (85ab23f3e4ba6696fae8beb9d434edd6) C:\WINDOWS\system32\drivers\RtkHDAud.sys
17:16:18.0078 0824 IntcAzAudAddService - ok
17:16:18.0140 0824 IntelIde (b5466a9250342a7aa0cd1fba13420678) C:\WINDOWS\system32\DRIVERS\intelide.sys
17:16:18.0156 0824 IntelIde - ok
17:16:18.0187 0824 intelppm (8c953733d8f36eb2133f5bb58808b66b) C:\WINDOWS\system32\DRIVERS\intelppm.sys
17:16:18.0187 0824 intelppm - ok
17:16:18.0234 0824 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
17:16:18.0234 0824 Ip6Fw - ok
17:16:18.0281 0824 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
17:16:18.0281 0824 IpFilterDriver - ok
17:16:18.0343 0824 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
17:16:18.0343 0824 IpInIp - ok
17:16:18.0406 0824 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
17:16:18.0406 0824 IpNat - ok
17:16:18.0453 0824 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
17:16:18.0453 0824 IPSec - ok
17:16:18.0515 0824 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
17:16:18.0515 0824 IRENUM - ok
17:16:18.0593 0824 isapnp (05a299ec56e52649b1cf2fc52d20f2d7) C:\WINDOWS\system32\DRIVERS\isapnp.sys
17:16:18.0593 0824 isapnp - ok
17:16:18.0656 0824 Iviaspi (f59c3569a2f2c464bb78cb1bdcdca55e) C:\WINDOWS\system32\drivers\iviaspi.sys
17:16:18.0656 0824 Iviaspi - ok
17:16:18.0703 0824 Kbdclass (463c1ec80cd17420a542b7f36a36f128) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
17:16:18.0703 0824 Kbdclass - ok
17:16:18.0734 0824 kbdhid (9ef487a186dea361aa06913a75b3fa99) C:\WINDOWS\system32\DRIVERS\kbdhid.sys
17:16:18.0750 0824 kbdhid - ok
17:16:18.0781 0824 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
17:16:18.0796 0824 kmixer - ok
17:16:18.0812 0824 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
17:16:18.0812 0824 KSecDD - ok
17:16:18.0859 0824 lbrtfdc - ok
17:16:18.0921 0824 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
17:16:18.0921 0824 mnmdd - ok
17:16:18.0937 0824 Modem (dfcbad3cec1c5f964962ae10e0bcc8e1) C:\WINDOWS\system32\drivers\Modem.sys
17:16:18.0937 0824 Modem - ok
17:16:18.0968 0824 Mouclass (35c9e97194c8cfb8430125f8dbc34d04) C:\WINDOWS\system32\DRIVERS\mouclass.sys
17:16:18.0968 0824 Mouclass - ok
17:16:19.0015 0824 mouhid (b1c303e17fb9d46e87a98e4ba6769685) C:\WINDOWS\system32\DRIVERS\mouhid.sys
17:16:19.0015 0824 mouhid - ok
17:16:19.0062 0824 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
17:16:19.0062 0824 MountMgr - ok
17:16:19.0093 0824 mraid35x - ok
17:16:19.0125 0824 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
17:16:19.0125 0824 MRxDAV - ok
17:16:19.0203 0824 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
17:16:19.0218 0824 MRxSmb - ok
17:16:19.0265 0824 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
17:16:19.0281 0824 Msfs - ok
17:16:19.0312 0824 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
17:16:19.0312 0824 MSKSSRV - ok
17:16:19.0343 0824 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
17:16:19.0343 0824 MSPCLOCK - ok
17:16:19.0375 0824 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
17:16:19.0375 0824 MSPQM - ok
17:16:19.0406 0824 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
17:16:19.0406 0824 mssmbios - ok
17:16:19.0437 0824 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys
17:16:19.0437 0824 MSTEE - ok
17:16:19.0484 0824 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
17:16:19.0484 0824 Mup - ok
17:16:19.0546 0824 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
17:16:19.0546 0824 NABTSFEC - ok
17:16:19.0609 0824 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
17:16:19.0609 0824 NDIS - ok
17:16:19.0687 0824 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
17:16:19.0687 0824 NdisIP - ok
17:16:19.0718 0824 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
17:16:19.0734 0824 NdisTapi - ok
17:16:19.0765 0824 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
17:16:19.0765 0824 Ndisuio - ok
17:16:19.0781 0824 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
17:16:19.0781 0824 NdisWan - ok
17:16:19.0812 0824 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
17:16:19.0812 0824 NDProxy - ok
17:16:19.0828 0824 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
17:16:19.0828 0824 NetBIOS - ok
17:16:19.0859 0824 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
17:16:19.0859 0824 NetBT - ok
17:16:19.0906 0824 NIC1394 (e9e47cfb2d461fa0fc75b7a74c6383ea) C:\WINDOWS\system32\DRIVERS\nic1394.sys
17:16:19.0906 0824 NIC1394 - ok
17:16:19.0953 0824 nmwcd (e380bbcad640304737650367ddfa2366) C:\WINDOWS\system32\drivers\nmwcd.sys
17:16:19.0968 0824 nmwcd - ok
17:16:20.0015 0824 nmwcdc (3c4650af9712ae0cb405064b6278ccad) C:\WINDOWS\system32\drivers\nmwcdc.sys
17:16:20.0015 0824 nmwcdc - ok
17:16:20.0062 0824 nmwcdcj (9c9ff3ec04021234d6f440acbd3b70c1) C:\WINDOWS\system32\drivers\nmwcdcj.sys
17:16:20.0078 0824 nmwcdcj - ok
17:16:20.0093 0824 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
17:16:20.0093 0824 Npfs - ok
17:16:20.0140 0824 NPPTNT2 (9131fe60adfab595c8da53ad6a06aa31) C:\WINDOWS\system32\npptNT2.sys
17:16:20.0140 0824 NPPTNT2 - ok
17:16:20.0187 0824 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
17:16:20.0203 0824 Ntfs - ok
17:16:20.0265 0824 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
17:16:20.0265 0824 Null - ok
17:16:20.0593 0824 nv (8b2c874897ea498da012284e12f9db2b) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
17:16:20.0671 0824 nv - ok
17:16:20.0984 0824 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
17:16:20.0984 0824 NwlnkFlt - ok
17:16:21.0015 0824 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
17:16:21.0031 0824 NwlnkFwd - ok
17:16:21.0062 0824 NwlnkIpx (8b8b1be2dba4025da6786c645f77f123) C:\WINDOWS\system32\DRIVERS\nwlnkipx.sys
17:16:21.0062 0824 NwlnkIpx - ok
17:16:21.0093 0824 NwlnkNb (56d34a67c05e94e16377c60609741ff8) C:\WINDOWS\system32\DRIVERS\nwlnknb.sys
17:16:21.0093 0824 NwlnkNb - ok
17:16:21.0140 0824 NwlnkSpx (c0bb7d1615e1acbdc99757f6ceaf8cf0) C:\WINDOWS\system32\DRIVERS\nwlnkspx.sys
17:16:21.0140 0824 NwlnkSpx - ok
17:16:21.0218 0824 ohci1394 (ca33832df41afb202ee7aeb05145922f) C:\WINDOWS\system32\DRIVERS\ohci1394.sys
17:16:21.0218 0824 ohci1394 - ok
17:16:21.0281 0824 ovt519 (4cdadec3dc1300ee1d313ea5494e6472) C:\WINDOWS\system32\Drivers\ov519vid.sys
17:16:21.0281 0824 ovt519 - ok
17:16:21.0343 0824 Parport (5575faf8f97ce5e713d108c2a58d7c7c) C:\WINDOWS\system32\DRIVERS\parport.sys
17:16:21.0343 0824 Parport - ok
17:16:21.0359 0824 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
17:16:21.0375 0824 PartMgr - ok
17:16:21.0390 0824 ParVdm (70e98b3fd8e963a6a46a2e6247e0bea1) C:\WINDOWS\system32\drivers\ParVdm.sys
17:16:21.0406 0824 ParVdm - ok
17:16:21.0437 0824 PCI (a219903ccf74233761d92bef471a07b1) C:\WINDOWS\system32\DRIVERS\pci.sys
17:16:21.0437 0824 PCI - ok
17:16:21.0468 0824 PCIDump - ok
17:16:21.0500 0824 PCIIde (ccf5f451bb1a5a2a522a76e670000ff0) C:\WINDOWS\system32\DRIVERS\pciide.sys
17:16:21.0500 0824 PCIIde - ok
17:16:21.0546 0824 Pcmcia (9e89ef60e9ee05e3f2eef2da7397f1c1) C:\WINDOWS\system32\drivers\Pcmcia.sys
17:16:21.0546 0824 Pcmcia - ok
17:16:21.0593 0824 PDCOMP - ok
17:16:21.0609 0824 PDFRAME - ok
17:16:21.0640 0824 PDRELI - ok
17:16:21.0656 0824 PDRFRAME - ok
17:16:21.0687 0824 perc2 - ok
17:16:21.0718 0824 perc2hib - ok
17:16:21.0796 0824 Pfc (444f122e68db44c0589227781f3c8b3f) C:\WINDOWS\system32\drivers\pfc.sys
17:16:21.0796 0824 Pfc - ok
17:16:21.0828 0824 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
17:16:21.0828 0824 PptpMiniport - ok
17:16:21.0890 0824 Processor (a32bebaf723557681bfc6bd93e98bd26) C:\WINDOWS\system32\DRIVERS\processr.sys
17:16:21.0890 0824 Processor - ok
17:16:21.0968 0824 Ps2 (bffdb363485501a38f0bca83aec810db) C:\WINDOWS\system32\DRIVERS\PS2.sys
17:16:21.0968 0824 Ps2 - ok
17:16:21.0984 0824 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
17:16:22.0000 0824 PSched - ok
17:16:22.0031 0824 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
17:16:22.0031 0824 Ptilink - ok
17:16:22.0093 0824 PxHelp20 (d86b4a68565e444d76457f14172c875a) C:\WINDOWS\system32\Drivers\PxHelp20.sys
17:16:22.0093 0824 PxHelp20 - ok
17:16:22.0140 0824 ql1080 - ok
17:16:22.0218 0824 Ql10wnt - ok
17:16:22.0250 0824 ql12160 - ok
17:16:22.0281 0824 ql1240 - ok
17:16:22.0296 0824 ql1280 - ok
17:16:22.0328 0824 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
17:16:22.0343 0824 RasAcd - ok
17:16:22.0375 0824 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
17:16:22.0375 0824 Rasl2tp - ok
17:16:22.0406 0824 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
17:16:22.0406 0824 RasPppoe - ok
17:16:22.0453 0824 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
17:16:22.0453 0824 Raspti - ok
17:16:22.0500 0824 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
17:16:22.0500 0824 Rdbss - ok
17:16:22.0515 0824 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
17:16:22.0515 0824 RDPCDD - ok
17:16:22.0578 0824 RDPWD (fc105dd312ed64eb66bff111e8ec6eac) C:\WINDOWS\system32\drivers\RDPWD.sys
17:16:22.0578 0824 RDPWD - ok
17:16:22.0609 0824 redbook (f828dd7e1419b6653894a8f97a0094c5) C:\WINDOWS\system32\DRIVERS\redbook.sys
17:16:22.0609 0824 redbook - ok
17:16:22.0671 0824 RTL8023xp (cf84b1f0e8b14d4120aaf9cf35cbb265) C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys
17:16:22.0671 0824 RTL8023xp - ok
17:16:22.0687 0824 rtl8139 (2ef9c0dc26b30b2318b1fc3faa1f0ae7) C:\WINDOWS\system32\DRIVERS\R8139n51.SYS
17:16:22.0703 0824 rtl8139 - ok
17:16:22.0765 0824 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
17:16:22.0765 0824 Secdrv - ok
17:16:22.0812 0824 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
17:16:22.0828 0824 serenum - ok
17:16:22.0875 0824 Serial (cca207a8896d4c6a0c9ce29a4ae411a7) C:\WINDOWS\system32\DRIVERS\serial.sys
17:16:22.0875 0824 Serial - ok
17:16:22.0921 0824 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
17:16:22.0921 0824 Sfloppy - ok
17:16:22.0937 0824 Simbad - ok
17:16:22.0984 0824 SiS315 (7467e510c81b19a6b590a3868f499b23) C:\WINDOWS\system32\DRIVERS\sisgrp.sys
17:16:22.0984 0824 SiS315 - ok
17:16:23.0000 0824 SISAGP (61ca562def09a782d26b3e7edec5369a) C:\WINDOWS\system32\DRIVERS\SISAGPX.sys
17:16:23.0000 0824 SISAGP - ok
17:16:23.0046 0824 SiSkp (14ed728e44b0e7a169217127d8510ca9) C:\WINDOWS\system32\DRIVERS\srvkp.sys
17:16:23.0046 0824 SiSkp - ok
17:16:23.0125 0824 slabbus (444186c720885429a2354095c1938143) C:\WINDOWS\system32\DRIVERS\slabbus.sys
17:16:23.0140 0824 slabbus - ok
17:16:23.0171 0824 slabser (ed71f8c82ef11c0da1c57be021a2fdc9) C:\WINDOWS\system32\DRIVERS\slabser.sys
17:16:23.0171 0824 slabser - ok
17:16:23.0234 0824 SLIP (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys
17:16:23.0234 0824 SLIP - ok
17:16:23.0312 0824 snapman (eb49860e776ce860dc3cfb9edb1ba517) C:\WINDOWS\system32\DRIVERS\snapman.sys
17:16:23.0328 0824 snapman - ok
17:16:23.0343 0824 Sparrow - ok
17:16:23.0375 0824 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
17:16:23.0375 0824 splitter - ok
17:16:23.0406 0824 sr (76bb022c2fb6902fd5bdd4f78fc13a5d) C:\WINDOWS\system32\DRIVERS\sr.sys
17:16:23.0406 0824 sr - ok
17:16:23.0453 0824 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
17:16:23.0468 0824 Srv - ok
17:16:23.0500 0824 StillCam (a9573045baa16eab9b1085205b82f1ed) C:\WINDOWS\system32\DRIVERS\serscan.sys
17:16:23.0500 0824 StillCam - ok
17:16:23.0546 0824 streamip (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
17:16:23.0562 0824 streamip - ok
17:16:23.0593 0824 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
17:16:23.0593 0824 swenum - ok
17:16:23.0609 0824 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
17:16:23.0625 0824 swmidi - ok
17:16:23.0656 0824 symc810 - ok
17:16:23.0671 0824 symc8xx - ok
17:16:23.0703 0824 sym_hi - ok
17:16:23.0765 0824 sym_u3 - ok
17:16:23.0828 0824 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
17:16:23.0828 0824 sysaudio - ok
17:16:23.0921 0824 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
17:16:23.0921 0824 Tcpip - ok
17:16:23.0984 0824 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
17:16:23.0984 0824 TDPIPE - ok
17:16:24.0093 0824 tdrpman273 (431801fcc97034e04a6eff81136578d7) C:\WINDOWS\system32\DRIVERS\tdrpm273.sys
17:16:24.0093 0824 tdrpman273 - ok
17:16:24.0171 0824 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
17:16:24.0171 0824 TDTCP - ok
17:16:24.0234 0824 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
17:16:24.0234 0824 TermDD - ok
17:16:24.0312 0824 timounter (a34d7024bb7140ec785c86bc065d4f60) C:\WINDOWS\system32\DRIVERS\timntr.sys
17:16:24.0328 0824 timounter - ok
17:16:24.0359 0824 TosIde - ok
17:16:24.0406 0824 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
17:16:24.0421 0824 Udfs - ok
17:16:24.0437 0824 ultra - ok
17:16:24.0468 0824 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
17:16:24.0468 0824 Update - ok
17:16:24.0500 0824 usbaudio (e919708db44ed8543a7c017953148330) C:\WINDOWS\system32\drivers\usbaudio.sys
17:16:24.0515 0824 usbaudio - ok
17:16:24.0531 0824 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
17:16:24.0546 0824 usbccgp - ok
17:16:24.0562 0824 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
17:16:24.0562 0824 usbehci - ok
17:16:24.0609 0824 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
17:16:24.0609 0824 usbhub - ok
17:16:24.0671 0824 usbohci (0daecce65366ea32b162f85f07c6753b) C:\WINDOWS\system32\DRIVERS\usbohci.sys
17:16:24.0671 0824 usbohci - ok
17:16:24.0750 0824 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
17:16:24.0750 0824 usbprint - ok
17:16:24.0781 0824 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
17:16:24.0796 0824 usbscan - ok
17:16:24.0843 0824 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
17:16:24.0843 0824 USBSTOR - ok
17:16:24.0875 0824 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
17:16:24.0890 0824 usbuhci - ok
17:16:24.0953 0824 usbvm328 (6dc94d0d4f2472056d14e987f729eccb) C:\WINDOWS\system32\Drivers\usbvm326.sys
17:16:24.0953 0824 usbvm328 - ok
17:16:25.0015 0824 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
17:16:25.0015 0824 VgaSave - ok
17:16:25.0093 0824 viaagp1 (4b039bbd037b01f5db5a144c837f283a) C:\WINDOWS\system32\DRIVERS\viaagp1.sys
17:16:25.0093 0824 viaagp1 - ok
17:16:25.0156 0824 viagfx (19bba101cb87d18ff04e7f24e1792ab0) C:\WINDOWS\system32\DRIVERS\vtmini.sys
17:16:25.0156 0824 viagfx - ok
17:16:25.0218 0824 ViaIde (3b3efcda263b8ac14fdf9cbdd0791b2e) C:\WINDOWS\system32\DRIVERS\viaide.sys
17:16:25.0218 0824 ViaIde - ok
17:16:25.0265 0824 vmfilter323 (6c21422d47ed3d8f65ed667bfd1cc759) C:\WINDOWS\system32\drivers\vmfilter323.sys
17:16:25.0265 0824 vmfilter323 - ok
17:16:25.0312 0824 VolSnap (4c8fcb5cc53aab716d810740fe59d025) C:\WINDOWS\system32\drivers\VolSnap.sys
17:16:25.0312 0824 VolSnap - ok
17:16:25.0359 0824 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
17:16:25.0359 0824 Wanarp - ok
17:16:25.0390 0824 WDICA - ok
17:16:25.0406 0824 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
17:16:25.0406 0824 wdmaud - ok
17:16:25.0468 0824 WinDriver6 (94e4312d546048bf31604a8b2ad13fc0) C:\WINDOWS\system32\drivers\windrvr6.sys
17:16:25.0484 0824 WinDriver6 - ok
17:16:25.0593 0824 WpdUsb (cf4def1bf66f06964dc0d91844239104) C:\WINDOWS\system32\DRIVERS\wpdusb.sys
17:16:25.0593 0824 WpdUsb - ok
17:16:25.0671 0824 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
17:16:25.0671 0824 WS2IFSL - ok
17:16:25.0718 0824 WSTCODEC (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
17:16:25.0734 0824 WSTCODEC - ok
17:16:25.0812 0824 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
17:16:25.0812 0824 WudfPf - ok
17:16:25.0875 0824 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
17:16:25.0875 0824 WudfRd - ok
17:16:25.0921 0824 MBR (0x1B8) (bad0263fbe81b49f5f07b32dc9d198b3) \Device\Harddisk0\DR0
17:16:25.0953 0824 \Device\Harddisk0\DR0 - ok
17:16:25.0968 0824 MBR (0x1B8) (bad0263fbe81b49f5f07b32dc9d198b3) \Device\Harddisk1\DR1
17:16:25.0968 0824 \Device\Harddisk1\DR1 - ok
17:16:25.0968 0824 Boot (0x1200) (80f49539896b4db3e0baed6734b1ec5d) \Device\Harddisk0\DR0\Partition0
17:16:25.0968 0824 \Device\Harddisk0\DR0\Partition0 - ok
17:16:26.0000 0824 Boot (0x1200) (c42a6d2b74b41a6810494f9b143c9aac) \Device\Harddisk0\DR0\Partition1
17:16:26.0000 0824 \Device\Harddisk0\DR0\Partition1 - ok
17:16:26.0015 0824 Boot (0x1200) (dff8e4ba1665523350f55da44a78e6ee) \Device\Harddisk1\DR1\Partition0
17:16:26.0015 0824 \Device\Harddisk1\DR1\Partition0 - ok
17:16:26.0015 0824 ============================================================
17:16:26.0015 0824 Scan finished
17:16:26.0015 0824 ============================================================
17:16:26.0031 3724 Detected object count: 0
17:16:26.0031 3724 Actual detected object count: 0
17:19:01.0125 3728 ============================================================
17:19:01.0125 3728 Scan started
17:19:01.0125 3728 Mode: Manual; SigCheck; TDLFS;
17:19:01.0125 3728 ============================================================
17:19:01.0640 3728 Aavmker4 (b6de0336f9f4b687b4ff57939f7b657a) C:\WINDOWS\system32\drivers\Aavmker4.sys
17:19:01.0828 3728 Aavmker4 - ok
17:19:01.0875 3728 Abiosdsk - ok
17:19:01.0890 3728 abp480n5 - ok
17:19:01.0968 3728 ACPI (8fd99680a539792a30e97944fdaecf17) C:\WINDOWS\system32\DRIVERS\ACPI.sys
17:19:02.0609 3728 ACPI - ok
17:19:02.0687 3728 ACPIEC (9859c0f6936e723e4892d7141b1327d5) C:\WINDOWS\system32\drivers\ACPIEC.sys
17:19:02.0828 3728 ACPIEC - ok
17:19:02.0875 3728 adpu160m - ok
17:19:02.0921 3728 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
17:19:03.0078 3728 aec - ok
17:19:03.0109 3728 Afc (a7b8a3a79d35215d798a300df49ed23f) C:\WINDOWS\system32\drivers\Afc.sys
17:19:03.0109 3728 Afc ( UnsignedFile.Multi.Generic ) - warning
17:19:03.0109 3728 Afc - detected UnsignedFile.Multi.Generic (1)
17:19:03.0171 3728 afcdp (53696ad8ffc5fac51949a525ff65a689) C:\WINDOWS\system32\DRIVERS\afcdp.sys
17:19:03.0187 3728 afcdp - ok
17:19:03.0218 3728 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
17:19:03.0234 3728 AFD - ok
17:19:03.0296 3728 AgereSoftModem (994a42d273c35b43ee9d1e8a5d8bc639) C:\WINDOWS\system32\DRIVERS\AGRSM.sys
17:19:03.0359 3728 AgereSoftModem - ok
17:19:03.0375 3728 Aha154x - ok
17:19:03.0375 3728 aic78u2 - ok
17:19:03.0390 3728 aic78xx - ok
17:19:03.0421 3728 AliIde - ok
17:19:03.0453 3728 AmdK7 (8fce268cdbdd83b23419d1f35f42c7b1) C:\WINDOWS\system32\DRIVERS\amdk7.sys
17:19:03.0609 3728 AmdK7 - ok
17:19:03.0671 3728 amsint - ok
17:19:03.0750 3728 Arp1394 (b5b8a80875c1dededa8b02765642c32f) C:\WINDOWS\system32\DRIVERS\arp1394.sys
17:19:03.0890 3728 Arp1394 - ok
17:19:03.0937 3728 asc - ok
17:19:03.0968 3728 asc3350p - ok
17:19:03.0984 3728 asc3550 - ok
17:19:04.0046 3728 aswFsBlk (054df24c92b55427e0757cfff160e4f2) C:\WINDOWS\system32\drivers\aswFsBlk.sys
17:19:04.0062 3728 aswFsBlk - ok
17:19:04.0109 3728 aswMon2 (ef0e9ad83380724bd6fbbb51d2d0f5b8) C:\WINDOWS\system32\drivers\aswMon2.sys
17:19:04.0125 3728 aswMon2 - ok
17:19:04.0140 3728 aswRdr (352d5a48ebab35a7693b048679304831) C:\WINDOWS\system32\drivers\aswRdr.sys
17:19:04.0156 3728 aswRdr - ok
17:19:04.0187 3728 aswSnx (8d34d2b24297e27d93e847319abfdec4) C:\WINDOWS\system32\drivers\aswSnx.sys
17:19:04.0203 3728 aswSnx - ok
17:19:04.0218 3728 aswSP (010012597333da1f46c3243f33f8409e) C:\WINDOWS\system32\drivers\aswSP.sys
17:19:04.0234 3728 aswSP - ok
17:19:04.0265 3728 aswTdi (f9f84364416658e9786235904d448d37) C:\WINDOWS\system32\drivers\aswTdi.sys
17:19:04.0281 3728 aswTdi - ok
17:19:04.0312 3728 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
17:19:04.0484 3728 AsyncMac - ok
17:19:04.0562 3728 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
17:19:04.0718 3728 atapi - ok
17:19:04.0765 3728 Atdisk - ok
17:19:04.0828 3728 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
17:19:04.0984 3728 Atmarpc - ok
17:19:05.0062 3728 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
17:19:05.0203 3728 audstub - ok
17:19:05.0265 3728 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
17:19:05.0421 3728 Beep - ok
17:19:05.0437 3728 catchme - ok
17:19:05.0453 3728 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
17:19:05.0625 3728 cbidf2k - ok
17:19:05.0671 3728 CCDECODE (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
17:19:05.0828 3728 CCDECODE - ok
17:19:05.0875 3728 cd20xrnt - ok
17:19:05.0937 3728 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
17:19:06.0093 3728 Cdaudio - ok
17:19:06.0171 3728 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
17:19:06.0328 3728 Cdfs - ok
17:19:06.0375 3728 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
17:19:06.0515 3728 Cdrom - ok
17:19:06.0578 3728 Changer - ok
17:19:06.0625 3728 CmdIde - ok
17:19:06.0671 3728 Compbatt (6e4c9f21f0fae8940661144f41b13203) C:\WINDOWS\system32\DRIVERS\compbatt.sys
17:19:06.0828 3728 Compbatt - ok
17:19:06.0875 3728 Cpqarray - ok
17:19:06.0937 3728 cpuz134 (75fa19142531cbf490770c2988a7db64) C:\WINDOWS\system32\drivers\cpuz134_x32.sys
17:19:06.0953 3728 cpuz134 - ok
17:19:06.0968 3728 dac2w2k - ok
17:19:07.0000 3728 dac960nt - ok
17:19:07.0078 3728 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
17:19:07.0234 3728 Disk - ok
17:19:07.0312 3728 dmboot (d992fe1274bde0f84ad826acae022a41) C:\WINDOWS\system32\drivers\dmboot.sys
17:19:07.0484 3728 dmboot - ok
17:19:07.0562 3728 dmio (7c824cf7bbde77d95c08005717a95f6f) C:\WINDOWS\system32\drivers\dmio.sys
17:19:07.0718 3728 dmio - ok
17:19:07.0796 3728 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
17:19:07.0953 3728 dmload - ok
17:19:08.0015 3728 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
17:19:08.0156 3728 DMusic - ok
17:19:08.0218 3728 dpti2o - ok
17:19:08.0265 3728 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
17:19:08.0406 3728 drmkaud - ok
17:19:08.0484 3728 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
17:19:08.0640 3728 Fastfat - ok
17:19:08.0703 3728 fasttx2k (1e580770bdece924494b368ac980749e) C:\WINDOWS\system32\DRIVERS\fasttx2k.sys
17:19:08.0718 3728 fasttx2k - ok
17:19:08.0765 3728 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
17:19:08.0921 3728 Fdc - ok
17:19:08.0968 3728 Fips (d45926117eb9fa946a6af572fbe1caa3) C:\WINDOWS\system32\drivers\Fips.sys
17:19:09.0125 3728 Fips - ok
17:19:09.0187 3728 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
17:19:09.0328 3728 Flpydisk - ok
17:19:09.0406 3728 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
17:19:09.0562 3728 FltMgr - ok
17:19:09.0640 3728 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
17:19:09.0796 3728 Fs_Rec - ok
17:19:09.0875 3728 Ftdisk (6ac26732762483366c3969c9e4d2259d) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
17:19:10.0031 3728 Ftdisk - ok
17:19:10.0125 3728 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
17:19:10.0140 3728 GEARAspiWDM - ok
17:19:10.0171 3728 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
17:19:10.0328 3728 Gpc - ok
17:19:10.0390 3728 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
17:19:10.0546 3728 HDAudBus - ok
17:19:10.0609 3728 HidBatt (748031ff4fe45ccc47546294905feab8) C:\WINDOWS\system32\DRIVERS\HidBatt.sys
17:19:10.0750 3728 HidBatt - ok
17:19:10.0812 3728 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
17:19:10.0953 3728 HidUsb - ok
17:19:11.0015 3728 hpn - ok
17:19:11.0093 3728 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
17:19:11.0140 3728 HTTP - ok
17:19:11.0187 3728 i2omgmt - ok
17:19:11.0218 3728 i2omp - ok
17:19:11.0265 3728 i8042prt (4a0b06aa8943c1e332520f7440c0aa30) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
17:19:11.0421 3728 i8042prt - ok
17:19:11.0515 3728 ialm (53fdf10a5baf4f0a345bc5e941392186) C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
17:19:11.0546 3728 ialm - ok
17:19:11.0593 3728 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
17:19:11.0734 3728 Imapi - ok
17:19:11.0796 3728 ini910u - ok
17:19:12.0015 3728 IntcAzAudAddService (85ab23f3e4ba6696fae8beb9d434edd6) C:\WINDOWS\system32\drivers\RtkHDAud.sys
17:19:12.0203 3728 IntcAzAudAddService - ok
17:19:12.0265 3728 IntelIde (b5466a9250342a7aa0cd1fba13420678) C:\WINDOWS\system32\DRIVERS\intelide.sys
17:19:12.0421 3728 IntelIde - ok
17:19:12.0500 3728 intelppm (8c953733d8f36eb2133f5bb58808b66b) C:\WINDOWS\system32\DRIVERS\intelppm.sys
17:19:12.0640 3728 intelppm - ok
17:19:12.0703 3728 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
17:19:12.0843 3728 Ip6Fw - ok
17:19:12.0921 3728 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
17:19:13.0093 3728 IpFilterDriver - ok
17:19:13.0171 3728 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
17:19:13.0296 3728 IpInIp - ok
17:19:13.0375 3728 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
17:19:13.0531 3728 IpNat - ok
17:19:13.0609 3728 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
17:19:13.0750 3728 IPSec - ok
17:19:13.0828 3728 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
17:19:13.0968 3728 IRENUM - ok
17:19:14.0031 3728 isapnp (05a299ec56e52649b1cf2fc52d20f2d7) C:\WINDOWS\system32\DRIVERS\isapnp.sys
17:19:14.0187 3728 isapnp - ok
17:19:14.0265 3728 Iviaspi (f59c3569a2f2c464bb78cb1bdcdca55e) C:\WINDOWS\system32\drivers\iviaspi.sys
17:19:14.0296 3728 Iviaspi ( UnsignedFile.Multi.Generic ) - warning
17:19:14.0296 3728 Iviaspi - detected UnsignedFile.Multi.Generic (1)
17:19:14.0328 3728 Kbdclass (463c1ec80cd17420a542b7f36a36f128) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
17:19:14.0468 3728 Kbdclass - ok
17:19:14.0531 3728 kbdhid (9ef487a186dea361aa06913a75b3fa99) C:\WINDOWS\system32\DRIVERS\kbdhid.sys
17:19:14.0671 3728 kbdhid - ok
17:19:14.0718 3728 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
17:19:14.0890 3728 kmixer - ok
17:19:14.0968 3728 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
17:19:15.0000 3728 KSecDD - ok
17:19:15.0031 3728 lbrtfdc - ok
17:19:15.0109 3728 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
17:19:15.0250 3728 mnmdd - ok
17:19:15.0312 3728 Modem (dfcbad3cec1c5f964962ae10e0bcc8e1) C:\WINDOWS\system32\drivers\Modem.sys
17:19:15.0453 3728 Modem - ok
17:19:15.0515 3728 Mouclass (35c9e97194c8cfb8430125f8dbc34d04) C:\WINDOWS\system32\DRIVERS\mouclass.sys
17:19:15.0671 3728 Mouclass - ok
17:19:15.0750 3728 mouhid (b1c303e17fb9d46e87a98e4ba6769685) C:\WINDOWS\system32\DRIVERS\mouhid.sys
17:19:15.0890 3728 mouhid - ok
17:19:15.0953 3728 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
17:19:16.0093 3728 MountMgr - ok
17:19:16.0156 3728 mraid35x - ok
17:19:16.0203 3728 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
17:19:16.0359 3728 MRxDAV - ok
17:19:16.0437 3728 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
17:19:16.0468 3728 MRxSmb - ok
17:19:16.0515 3728 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
17:19:16.0640 3728 Msfs - ok
17:19:16.0718 3728 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
17:19:16.0859 3728 MSKSSRV - ok
17:19:16.0937 3728 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
17:19:17.0062 3728 MSPCLOCK - ok
17:19:17.0140 3728 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
17:19:17.0281 3728 MSPQM - ok
17:19:17.0359 3728 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
17:19:17.0515 3728 mssmbios - ok
17:19:17.0593 3728 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys
17:19:17.0734 3728 MSTEE - ok
17:19:17.0812 3728 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
17:19:17.0843 3728 Mup - ok
17:19:17.0875 3728 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
17:19:18.0046 3728 NABTSFEC - ok
17:19:18.0109 3728 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
17:19:18.0265 3728 NDIS - ok
17:19:18.0343 3728 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
17:19:18.0500 3728 NdisIP - ok
17:19:18.0578 3728 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
17:19:18.0593 3728 NdisTapi - ok
17:19:18.0640 3728 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
17:19:18.0781 3728 Ndisuio - ok
17:19:18.0796 3728 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
17:19:18.0984 3728 NdisWan - ok
17:19:19.0031 3728 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
17:19:19.0046 3728 NDProxy - ok
17:19:19.0078 3728 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
17:19:19.0203 3728 NetBIOS - ok
17:19:19.0281 3728 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
17:19:19.0437 3728 NetBT - ok
17:19:19.0500 3728 NIC1394 (e9e47cfb2d461fa0fc75b7a74c6383ea) C:\WINDOWS\system32\DRIVERS\nic1394.sys
17:19:19.0640 3728 NIC1394 - ok
17:19:19.0734 3728 nmwcd (e380bbcad640304737650367ddfa2366) C:\WINDOWS\system32\drivers\nmwcd.sys
17:19:19.0765 3728 nmwcd - ok
17:19:19.0859 3728 nmwcdc (3c4650af9712ae0cb405064b6278ccad) C:\WINDOWS\system32\drivers\nmwcdc.sys
17:19:19.0890 3728 nmwcdc - ok
17:19:19.0953 3728 nmwcdcj (9c9ff3ec04021234d6f440acbd3b70c1) C:\WINDOWS\system32\drivers\nmwcdcj.sys
17:19:20.0000 3728 nmwcdcj - ok
17:19:20.0062 3728 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
17:19:20.0203 3728 Npfs - ok
17:19:20.0281 3728 NPPTNT2 (9131fe60adfab595c8da53ad6a06aa31) C:\WINDOWS\system32\npptNT2.sys
17:19:20.0312 3728 NPPTNT2 ( UnsignedFile.Multi.Generic ) - warning
17:19:20.0312 3728 NPPTNT2 - detected UnsignedFile.Multi.Generic (1)
17:19:20.0375 3728 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
17:19:20.0515 3728 Ntfs - ok
17:19:20.0609 3728 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
17:19:20.0781 3728 Null - ok
17:19:21.0140 3728 nv (8b2c874897ea498da012284e12f9db2b) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
17:19:21.0453 3728 nv - ok
17:19:21.0500 3728 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
17:19:21.0656 3728 NwlnkFlt - ok
17:19:21.0671 3728 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
17:19:21.0843 3728 NwlnkFwd - ok
17:19:21.0921 3728 NwlnkIpx (8b8b1be2dba4025da6786c645f77f123) C:\WINDOWS\system32\DRIVERS\nwlnkipx.sys
17:19:22.0062 3728 NwlnkIpx - ok
17:19:22.0140 3728 NwlnkNb (56d34a67c05e94e16377c60609741ff8) C:\WINDOWS\system32\DRIVERS\nwlnknb.sys
17:19:22.0312 3728 NwlnkNb - ok
17:19:22.0359 3728 NwlnkSpx (c0bb7d1615e1acbdc99757f6ceaf8cf0) C:\WINDOWS\system32\DRIVERS\nwlnkspx.sys
17:19:22.0515 3728 NwlnkSpx - ok
17:19:22.0578 3728 ohci1394 (ca33832df41afb202ee7aeb05145922f) C:\WINDOWS\system32\DRIVERS\ohci1394.sys
17:19:22.0718 3728 ohci1394 - ok
17:19:22.0796 3728 ovt519 (4cdadec3dc1300ee1d313ea5494e6472) C:\WINDOWS\system32\Drivers\ov519vid.sys
17:19:22.0812 3728 ovt519 - ok
17:19:22.0859 3728 Parport (5575faf8f97ce5e713d108c2a58d7c7c) C:\WINDOWS\system32\DRIVERS\parport.sys
17:19:23.0000 3728 Parport - ok
17:19:23.0062 3728 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
17:19:23.0203 3728 PartMgr - ok
17:19:23.0281 3728 ParVdm (70e98b3fd8e963a6a46a2e6247e0bea1) C:\WINDOWS\system32\drivers\ParVdm.sys
17:19:23.0437 3728 ParVdm - ok
17:19:23.0500 3728 PCI (a219903ccf74233761d92bef471a07b1) C:\WINDOWS\system32\DRIVERS\pci.sys
17:19:23.0656 3728 PCI - ok
17:19:23.0703 3728 PCIDump - ok
17:19:23.0750 3728 PCIIde (ccf5f451bb1a5a2a522a76e670000ff0) C:\WINDOWS\system32\DRIVERS\pciide.sys
17:19:23.0921 3728 PCIIde - ok
17:19:23.0984 3728 Pcmcia (9e89ef60e9ee05e3f2eef2da7397f1c1) C:\WINDOWS\system32\drivers\Pcmcia.sys
17:19:24.0125 3728 Pcmcia - ok
17:19:24.0187 3728 PDCOMP - ok
17:19:24.0203 3728 PDFRAME - ok
17:19:24.0250 3728 PDRELI - ok
17:19:24.0265 3728 PDRFRAME - ok
17:19:24.0328 3728 perc2 - ok
17:19:24.0343 3728 perc2hib - ok
17:19:24.0437 3728 Pfc (444f122e68db44c0589227781f3c8b3f) C:\WINDOWS\system32\drivers\pfc.sys
17:19:24.0453 3728 Pfc ( UnsignedFile.Multi.Generic ) - warning
17:19:24.0453 3728 Pfc - detected UnsignedFile.Multi.Generic (1)
17:19:24.0515 3728 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
17:19:24.0671 3728 PptpMiniport - ok
17:19:24.0734 3728 Processor (a32bebaf723557681bfc6bd93e98bd26) C:\WINDOWS\system32\DRIVERS\processr.sys
17:19:24.0875 3728 Processor - ok
17:19:24.0968 3728 Ps2 (bffdb363485501a38f0bca83aec810db) C:\WINDOWS\system32\DRIVERS\PS2.sys
17:19:25.0046 3728 Ps2 - ok
17:19:25.0109 3728 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
17:19:25.0265 3728 PSched - ok
17:19:25.0343 3728 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
17:19:25.0515 3728 Ptilink - ok
17:19:25.0609 3728 PxHelp20 (d86b4a68565e444d76457f14172c875a) C:\WINDOWS\system32\Drivers\PxHelp20.sys
17:19:25.0625 3728 PxHelp20 - ok
17:19:25.0656 3728 ql1080 - ok
17:19:25.0687 3728 Ql10wnt - ok
17:19:25.0687 3728 ql12160 - ok
17:19:25.0750 3728 ql1240 - ok
17:19:25.0781 3728 ql1280 - ok
17:19:25.0843 3728 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
17:19:26.0031 3728 RasAcd - ok
17:19:26.0109 3728 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
17:19:26.0250 3728 Rasl2tp - ok
17:19:26.0312 3728 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
17:19:26.0453 3728 RasPppoe - ok
17:19:26.0515 3728 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
17:19:26.0656 3728 Raspti - ok
17:19:26.0734 3728 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
17:19:26.0875 3728 Rdbss - ok
17:19:26.0937 3728 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
17:19:27.0093 3728 RDPCDD - ok
17:19:27.0187 3728 RDPWD (fc105dd312ed64eb66bff111e8ec6eac) C:\WINDOWS\system32\drivers\RDPWD.sys
17:19:27.0203 3728 RDPWD - ok
17:19:27.0250 3728 redbook (f828dd7e1419b6653894a8f97a0094c5) C:\WINDOWS\system32\DRIVERS\redbook.sys
17:19:27.0390 3728 redbook - ok
17:19:27.0468 3728 RTL8023xp (cf84b1f0e8b14d4120aaf9cf35cbb265) C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys
17:19:27.0531 3728 RTL8023xp - ok
17:19:27.0625 3728 rtl8139 (2ef9c0dc26b30b2318b1fc3faa1f0ae7) C:\WINDOWS\system32\DRIVERS\R8139n51.SYS
17:19:27.0640 3728 rtl8139 - ok
17:19:27.0734 3728 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
17:19:27.0875 3728 Secdrv - ok
17:19:27.0968 3728 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
17:19:28.0125 3728 serenum - ok
17:19:28.0171 3728 Serial (cca207a8896d4c6a0c9ce29a4ae411a7) C:\WINDOWS\system32\DRIVERS\serial.sys
17:19:28.0312 3728 Serial - ok
17:19:28.0390 3728 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
17:19:28.0515 3728 Sfloppy - ok
17:19:28.0562 3728 Simbad - ok
17:19:28.0609 3728 SiS315 (7467e510c81b19a6b590a3868f499b23) C:\WINDOWS\system32\DRIVERS\sisgrp.sys
17:19:28.0625 3728 SiS315 - ok
17:19:28.0687 3728 SISAGP (61ca562def09a782d26b3e7edec5369a) C:\WINDOWS\system32\DRIVERS\SISAGPX.sys
17:19:28.0718 3728 SISAGP - ok
17:19:28.0781 3728 SiSkp (14ed728e44b0e7a169217127d8510ca9) C:\WINDOWS\system32\DRIVERS\srvkp.sys
17:19:28.0812 3728 SiSkp - ok
17:19:28.0906 3728 slabbus (444186c720885429a2354095c1938143) C:\WINDOWS\system32\DRIVERS\slabbus.sys
17:19:28.0937 3728 slabbus - ok
17:19:28.0984 3728 slabser (ed71f8c82ef11c0da1c57be021a2fdc9) C:\WINDOWS\system32\DRIVERS\slabser.sys
17:19:29.0015 3728 slabser - ok
17:19:29.0062 3728 SLIP (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys
17:19:29.0218 3728 SLIP - ok
17:19:29.0312 3728 snapman (eb49860e776ce860dc3cfb9edb1ba517) C:\WINDOWS\system32\DRIVERS\snapman.sys
17:19:29.0328 3728 snapman - ok
17:19:29.0375 3728 Sparrow - ok
17:19:29.0406 3728 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
17:19:29.0562 3728 splitter - ok
17:19:29.0609 3728 sr (76bb022c2fb6902fd5bdd4f78fc13a5d) C:\WINDOWS\system32\DRIVERS\sr.sys
17:19:29.0750 3728 sr - ok
17:19:29.0843 3728 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
17:19:29.0859 3728 Srv - ok
17:19:29.0921 3728 StillCam (a9573045baa16eab9b1085205b82f1ed) C:\WINDOWS\system32\DRIVERS\serscan.sys
17:19:30.0093 3728 StillCam - ok
17:19:30.0140 3728 streamip (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
17:19:30.0296 3728 streamip - ok
17:19:30.0359 3728 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
17:19:30.0515 3728 swenum - ok
17:19:30.0828 3728 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
17:19:30.0968 3728 swmidi - ok
17:19:31.0031 3728 symc810 - ok
17:19:31.0046 3728 symc8xx - ok
17:19:31.0093 3728 sym_hi - ok
17:19:31.0109 3728 sym_u3 - ok
17:19:31.0171 3728 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
17:19:31.0328 3728 sysaudio - ok
17:19:31.0421 3728 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
17:19:31.0453 3728 Tcpip - ok
17:19:31.0531 3728 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
17:19:31.0671 3728 TDPIPE - ok
17:19:31.0781 3728 tdrpman273 (431801fcc97034e04a6eff81136578d7) C:\WINDOWS\system32\DRIVERS\tdrpm273.sys
17:19:31.0812 3728 tdrpman273 - ok
17:19:31.0890 3728 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
17:19:32.0031 3728 TDTCP - ok
17:19:32.0078 3728 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
17:19:32.0234 3728 TermDD - ok
17:19:32.0328 3728 timounter (a34d7024bb7140ec785c86bc065d4f60) C:\WINDOWS\system32\DRIVERS\timntr.sys
17:19:32.0359 3728 timounter - ok
17:19:32.0390 3728 TosIde - ok
17:19:32.0484 3728 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
17:19:32.0640 3728 Udfs - ok
17:19:32.0671 3728 ultra - ok
17:19:32.0750 3728 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
17:19:32.0906 3728 Update - ok
17:19:32.0968 3728 usbaudio (e919708db44ed8543a7c017953148330) C:\WINDOWS\system32\drivers\usbaudio.sys
17:19:33.0109 3728 usbaudio - ok
17:19:33.0171 3728 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
17:19:33.0312 3728 usbccgp - ok
17:19:33.0390 3728 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
17:19:33.0531 3728 usbehci - ok
17:19:33.0593 3728 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
17:19:33.0734 3728 usbhub - ok
17:19:33.0828 3728 usbohci (0daecce65366ea32b162f85f07c6753b) C:\WINDOWS\system32\DRIVERS\usbohci.sys
17:19:33.0968 3728 usbohci - ok
17:19:34.0031 3728 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
17:19:34.0187 3728 usbprint - ok
17:19:34.0250 3728 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
17:19:34.0390 3728 usbscan - ok
17:19:34.0453 3728 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
17:19:34.0593 3728 USBSTOR - ok
17:19:34.0656 3728 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
17:19:34.0796 3728 usbuhci - ok
17:19:34.0890 3728 usbvm328 (6dc94d0d4f2472056d14e987f729eccb) C:\WINDOWS\system32\Drivers\usbvm326.sys
17:19:34.0937 3728 usbvm328 - ok
17:19:35.0000 3728 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
17:19:35.0140 3728 VgaSave - ok
17:19:35.0187 3728 viaagp1 (4b039bbd037b01f5db5a144c837f283a) C:\WINDOWS\system32\DRIVERS\viaagp1.sys
17:19:35.0218 3728 viaagp1 - ok
17:19:35.0265 3728 viagfx (19bba101cb87d18ff04e7f24e1792ab0) C:\WINDOWS\system32\DRIVERS\vtmini.sys
17:19:35.0281 3728 viagfx - ok
17:19:35.0296 3728 ViaIde (3b3efcda263b8ac14fdf9cbdd0791b2e) C:\WINDOWS\system32\DRIVERS\viaide.sys
17:19:35.0437 3728 ViaIde - ok
17:19:35.0531 3728 vmfilter323 (6c21422d47ed3d8f65ed667bfd1cc759) C:\WINDOWS\system32\drivers\vmfilter323.sys
17:19:35.0578 3728 vmfilter323 - ok
17:19:35.0656 3728 VolSnap (4c8fcb5cc53aab716d810740fe59d025) C:\WINDOWS\system32\drivers\VolSnap.sys
17:19:35.0796 3728 VolSnap - ok
17:19:35.0890 3728 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
17:19:36.0031 3728 Wanarp - ok
17:19:36.0078 3728 WDICA - ok
17:19:36.0140 3728 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
17:19:36.0296 3728 wdmaud - ok
17:19:36.0390 3728 WinDriver6 (94e4312d546048bf31604a8b2ad13fc0) C:\WINDOWS\system32\drivers\windrvr6.sys
17:19:36.0406 3728 WinDriver6 ( UnsignedFile.Multi.Generic ) - warning
17:19:36.0406 3728 WinDriver6 - detected UnsignedFile.Multi.Generic (1)
17:19:36.0500 3728 WpdUsb (cf4def1bf66f06964dc0d91844239104) C:\WINDOWS\system32\DRIVERS\wpdusb.sys
17:19:36.0531 3728 WpdUsb - ok
17:19:36.0593 3728 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
17:19:36.0765 3728 WS2IFSL - ok
17:19:36.0843 3728 WSTCODEC (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
17:19:36.0984 3728 WSTCODEC - ok
17:19:37.0078 3728 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
17:19:37.0109 3728 WudfPf - ok
17:19:37.0156 3728 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
17:19:37.0203 3728 WudfRd - ok
17:19:37.0234 3728 MBR (0x1B8) (bad0263fbe81b49f5f07b32dc9d198b3) \Device\Harddisk0\DR0
17:19:37.0328 3728 \Device\Harddisk0\DR0 - ok
17:19:37.0343 3728 MBR (0x1B8) (bad0263fbe81b49f5f07b32dc9d198b3) \Device\Harddisk1\DR1
17:19:37.0453 3728 \Device\Harddisk1\DR1 - ok
17:19:37.0453 3728 Boot (0x1200) (80f49539896b4db3e0baed6734b1ec5d) \Device\Harddisk0\DR0\Partition0
17:19:37.0453 3728 \Device\Harddisk0\DR0\Partition0 - ok
17:19:37.0468 3728 Boot (0x1200) (c42a6d2b74b41a6810494f9b143c9aac) \Device\Harddisk0\DR0\Partition1
17:19:37.0484 3728 \Device\Harddisk0\DR0\Partition1 - ok
17:19:37.0500 3728 Boot (0x1200) (dff8e4ba1665523350f55da44a78e6ee) \Device\Harddisk1\DR1\Partition0
17:19:37.0500 3728 \Device\Harddisk1\DR1\Partition0 - ok
17:19:37.0500 3728 ============================================================
17:19:37.0500 3728 Scan finished
17:19:37.0500 3728 ============================================================
17:19:37.0609 3936 Detected object count: 5
17:19:37.0609 3936 Actual detected object count: 5
17:21:23.0140 3936 Afc ( UnsignedFile.Multi.Generic ) - skipped by user
17:21:23.0140 3936 Afc ( UnsignedFile.Multi.Generic ) - User select action: Skip
17:21:23.0140 3936 Iviaspi ( UnsignedFile.Multi.Generic ) - skipped by user
17:21:23.0140 3936 Iviaspi ( UnsignedFile.Multi.Generic ) - User select action: Skip
17:21:23.0140 3936 NPPTNT2 ( UnsignedFile.Multi.Generic ) - skipped by user
17:21:23.0140 3936 NPPTNT2 ( UnsignedFile.Multi.Generic ) - User select action: Skip
17:21:23.0140 3936 Pfc ( UnsignedFile.Multi.Generic ) - skipped by user
17:21:23.0140 3936 Pfc ( UnsignedFile.Multi.Generic ) - User select action: Skip
17:21:23.0140 3936 WinDriver6 ( UnsignedFile.Multi.Generic ) - skipped by user
17:21:23.0140 3936 WinDriver6 ( UnsignedFile.Multi.Generic ) - User select action: Skip
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP