Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

HELP! Ultradefragger and trojan.Gen.2 removal [Closed]


  • This topic is locked This topic is locked

#106
rdbadger

rdbadger

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 107 posts
...how is it looking?
  • 0

Advertisements


#107
Render

Render

    Trusted Helper

  • Malware Removal
  • 4,195 posts
aswMBR log is looking very good. Good job so far.

For Firewall let's try this first:

  • Click Start, click Run, type cmd, and then click OK.
  • At the command prompt, copy and paste the following command line, and then press ENTER:
    Rundll32 setupapi,InstallHinfSection Ndi-Steelhead 132 %windir%\inf\netrass.inf
  • Restart Windows,
  • Click Start, click Run, type cmd, and then click OK.
  • At the command prompt, copy and paste the following command, and then press ENTER:
    Netsh firewall reset
  • Click Start, click Run, type firewall.cpl, and then press ENTER. In the Windows Firewall dialog box, click On (recommended), and then click OK.

  • 0

#108
rdbadger

rdbadger

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 107 posts
grrr NMIndexStoreSvr.exe popping up again! boo!!
  • 0

#109
rdbadger

rdbadger

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 107 posts
ok....have firewall on now - but realised does this actually conflict with Symantec? ...and do you know why symantec comes up with that strange yellow pop up saying computer anti-virus is disabled, when the icon in the tool bar is on!?
ta
  • 0

#110
Render

Render

    Trusted Helper

  • Malware Removal
  • 4,195 posts
Launch Nero Scout by click Start > All Programs > Nero 7 (or 8) Ultra Edition > Tools > Nero Scout.

Un-check the box next to Enable Nero Scout. Click OK.

Posted Image

You may have to reboot your computer to completely turn this off.
  • 0

#111
Render

Render

    Trusted Helper

  • Malware Removal
  • 4,195 posts

ok....have firewall on now - but realised does this actually conflict with Symantec? ...and do you know why symantec comes up with that strange yellow pop up saying computer anti-virus is disabled, when the icon in the tool bar is on!?
ta

Please make a screenshot of of your desktop and post it here.
  • 0

#112
rdbadger

rdbadger

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 107 posts
Launch Nero Scout by click Start > All Programs > Nero 7 (or 8) Ultra Edition > Tools > Nero Scout.

Un-check the box next to Enable Nero Scout. Click OK.

...I did this last week!
  • 0

#113
rdbadger

rdbadger

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 107 posts
1....something is still not right :( I plugged in internet for the first time - symantec launched an update (last update was now 10th of May) it downloaded but it is hanging - going from responding to not responding at 99% downloaded
2 upside the firewall reset was successful, and at least I can access the ability to change on/off
  • 0

#114
Render

Render

    Trusted Helper

  • Malware Removal
  • 4,195 posts
Well... If you don't need Nero uninstall it. If you need it uninstall it and then reinstall without this Scout thingy.
  • 0

#115
rdbadger

rdbadger

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 107 posts
...so outside of the nero how we going with everything else?
  • 0

Advertisements


#116
Render

Render

    Trusted Helper

  • Malware Removal
  • 4,195 posts
Hi,

Let's run also TDSSKiller now:

Download the latest version of TDSSKiller from here and save it to your Desktop.

  • Doubleclick on TDSSKiller.exe to run the application, then click on Change parameters.

    Posted Image
  • Check the boxes beside Verify Driver Digital Signature and Detect TDLFS file system, then click OK button.

    Posted Image
  • Click the Start Scan button.

    Posted Image
  • If a suspicious object is detected, the default action will be Skip, click on Continue.

    Posted Image
  • If malicious objects are found, they will show in the Scan results and offer three (3) options.
  • Ensure Cure is selected, then click Continue => Reboot now to finish the cleaning process.

    Posted Image
  • Note: If Cure is not available, please choose Skip instead, do not choose Delete unless instructed.

A report will be created in your root directory, (usually C:\ folder) in the form of "TDSSKiller.[Version]_[Date]_[Time]_log.txt".
Please copy and paste its contents on your next reply.
  • 0

#117
rdbadger

rdbadger

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 107 posts
20:41:11.0390 1028 TDSS rootkit removing tool 2.7.36.0 May 21 2012 16:40:16
20:41:11.0453 1028 ============================================================
20:41:11.0453 1028 Current date / time: 2012/06/06 20:41:11.0453
20:41:11.0453 1028 SystemInfo:
20:41:11.0453 1028
20:41:11.0453 1028 OS Version: 5.1.2600 ServicePack: 3.0
20:41:11.0453 1028 Product type: Workstation
20:41:11.0453 1028 ComputerName: ROANNA-36A94C04
20:41:11.0453 1028 UserName: Roanna
20:41:11.0453 1028 Windows directory: C:\WINDOWS
20:41:11.0453 1028 System windows directory: C:\WINDOWS
20:41:11.0453 1028 Processor architecture: Intel x86
20:41:11.0453 1028 Number of processors: 2
20:41:11.0453 1028 Page size: 0x1000
20:41:11.0453 1028 Boot type: Normal boot
20:41:11.0453 1028 ============================================================
20:41:13.0734 1028 Drive \Device\Harddisk0\DR0 - Size: 0x12A1F16000 (74.53 Gb), SectorSize: 0x200, Cylinders: 0x2601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
20:41:13.0734 1028 Drive \Device\Harddisk1\DR2 - Size: 0x1CD538000 (7.21 Gb), SectorSize: 0x200, Cylinders: 0x3AC, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
20:41:13.0734 1028 ============================================================
20:41:13.0734 1028 \Device\Harddisk0\DR0:
20:41:13.0734 1028 MBR partitions:
20:41:13.0734 1028 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x950A5C1
20:41:13.0734 1028 \Device\Harddisk1\DR2:
20:41:13.0734 1028 MBR partitions:
20:41:13.0734 1028 \Device\Harddisk1\DR2\Partition0: MBR, Type 0xC, StartLBA 0x1F80, BlocksNum 0xE68A40
20:41:13.0734 1028 ============================================================
20:41:13.0843 1028 C: <-> \Device\Harddisk0\DR0\Partition0
20:41:13.0843 1028 ============================================================
20:41:13.0843 1028 Initialize success
20:41:13.0843 1028 ============================================================
20:42:49.0140 2248 ============================================================
20:42:49.0140 2248 Scan started
20:42:49.0140 2248 Mode: Manual; SigCheck; TDLFS;
20:42:49.0140 2248 ============================================================
20:42:49.0328 2248 Abiosdsk - ok
20:42:49.0343 2248 abp480n5 - ok
20:42:49.0421 2248 ACPI (8fd99680a539792a30e97944fdaecf17) C:\WINDOWS\system32\DRIVERS\ACPI.sys
20:42:52.0078 2248 ACPI - ok
20:42:52.0125 2248 ACPIEC (9859c0f6936e723e4892d7141b1327d5) C:\WINDOWS\system32\drivers\ACPIEC.sys
20:42:52.0343 2248 ACPIEC - ok
20:42:52.0437 2248 AdobeFlashPlayerUpdateSvc (459ac130c6ab892b1cd5d7544626efc5) C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
20:42:52.0609 2248 AdobeFlashPlayerUpdateSvc - ok
20:42:52.0625 2248 adpu160m - ok
20:42:52.0656 2248 aeaudio (11c04b17ed2abbb4833694bcd644ac90) C:\WINDOWS\system32\drivers\aeaudio.sys
20:42:52.0812 2248 aeaudio - ok
20:42:52.0859 2248 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
20:42:53.0062 2248 aec - ok
20:42:53.0093 2248 Afc (a7b8a3a79d35215d798a300df49ed23f) C:\WINDOWS\system32\drivers\Afc.sys
20:42:53.0156 2248 Afc ( UnsignedFile.Multi.Generic ) - warning
20:42:53.0156 2248 Afc - detected UnsignedFile.Multi.Generic (1)
20:42:53.0218 2248 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
20:42:53.0421 2248 AFD - ok
20:42:53.0421 2248 Aha154x - ok
20:42:53.0437 2248 aic78u2 - ok
20:42:53.0453 2248 aic78xx - ok
20:42:53.0500 2248 Alerter (a9a3daa780ca6c9671a19d52456705b4) C:\WINDOWS\system32\alrsvc.dll
20:42:53.0703 2248 Alerter - ok
20:42:53.0734 2248 ALG (8c515081584a38aa007909cd02020b3d) C:\WINDOWS\System32\alg.exe
20:42:54.0000 2248 ALG - ok
20:42:54.0015 2248 AliIde - ok
20:42:54.0031 2248 amsint - ok
20:42:54.0062 2248 androidusb (dd8d9c597af7cd2f6b70a3d6a4a1acea) C:\WINDOWS\system32\Drivers\ssadadb.sys
20:42:54.0750 2248 androidusb - ok
20:42:54.0781 2248 AppMgmt (d8849f77c0b66226335a59d26cb4edc6) C:\WINDOWS\System32\appmgmts.dll
20:42:55.0000 2248 AppMgmt - ok
20:42:55.0015 2248 asc - ok
20:42:55.0031 2248 asc3350p - ok
20:42:55.0031 2248 asc3550 - ok
20:42:55.0125 2248 aspnet_state (0e5e4957549056e2bf2c49f4f6b601ad) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
20:42:55.0234 2248 aspnet_state - ok
20:42:55.0265 2248 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
20:42:55.0468 2248 AsyncMac - ok
20:42:55.0500 2248 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
20:42:55.0703 2248 atapi - ok
20:42:55.0703 2248 Atdisk - ok
20:42:55.0765 2248 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
20:42:55.0984 2248 Atmarpc - ok
20:42:56.0031 2248 AudioSrv (def7a7882bec100fe0b2ce2549188f9d) C:\WINDOWS\System32\audiosrv.dll
20:42:56.0234 2248 AudioSrv - ok
20:42:56.0265 2248 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
20:42:56.0500 2248 audstub - ok
20:42:56.0546 2248 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
20:42:56.0781 2248 Beep - ok
20:42:56.0859 2248 BITS (574738f61fca2935f5265dc4e5691314) C:\WINDOWS\system32\qmgr.dll
20:42:57.0187 2248 BITS - ok
20:42:57.0296 2248 Bonjour Service (db5bea73edaf19ac68b2c0fad0f92b1a) C:\Program Files\Bonjour\mDNSResponder.exe
20:42:57.0453 2248 Bonjour Service - ok
20:42:57.0500 2248 Browser (a06ce3399d16db864f55faeb1f1927a9) C:\WINDOWS\System32\browser.dll
20:42:57.0750 2248 Browser - ok
20:42:57.0906 2248 catchme - ok
20:42:57.0953 2248 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
20:42:58.0187 2248 cbidf2k - ok
20:42:58.0281 2248 ccEvtMgr (e403a2d0f451500ff12638c19cffc87c) C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
20:42:58.0312 2248 ccEvtMgr - ok
20:42:58.0343 2248 ccSetMgr (64ca18128973124df92d516d50c03aef) C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
20:42:58.0375 2248 ccSetMgr - ok
20:42:58.0390 2248 cd20xrnt - ok
20:42:58.0437 2248 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
20:42:58.0656 2248 Cdaudio - ok
20:42:58.0703 2248 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
20:42:58.0906 2248 Cdfs - ok
20:42:58.0953 2248 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
20:42:59.0265 2248 Cdrom - ok
20:42:59.0281 2248 Changer - ok
20:42:59.0296 2248 CiSvc (1cfe720eb8d93a7158a4ebc3ab178bde) C:\WINDOWS\system32\cisvc.exe
20:42:59.0500 2248 CiSvc - ok
20:42:59.0546 2248 ClipSrv (34cbe729f38138217f9c80212a2a0c82) C:\WINDOWS\system32\clipsrv.exe
20:42:59.0734 2248 ClipSrv - ok
20:42:59.0812 2248 clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
20:42:59.0921 2248 clr_optimization_v2.0.50727_32 - ok
20:42:59.0921 2248 CmdIde - ok
20:42:59.0937 2248 COMSysApp - ok
20:42:59.0968 2248 Cpqarray - ok
20:43:00.0000 2248 CryptSvc (3d4e199942e29207970e04315d02ad3b) C:\WINDOWS\System32\cryptsvc.dll
20:43:00.0187 2248 CryptSvc - ok
20:43:00.0203 2248 dac2w2k - ok
20:43:00.0218 2248 dac960nt - ok
20:43:00.0281 2248 DcomLaunch (6b27a5c03dfb94b4245739065431322c) C:\WINDOWS\system32\rpcss.dll
20:43:00.0421 2248 DcomLaunch - ok
20:43:00.0484 2248 DefWatch (213153e1ee098feef56098536b2a6dd7) C:\Program Files\Symantec AntiVirus\DefWatch.exe
20:43:00.0546 2248 DefWatch - ok
20:43:00.0593 2248 Dhcp (5e38d7684a49cacfb752b046357e0589) C:\WINDOWS\System32\dhcpcsvc.dll
20:43:00.0812 2248 Dhcp - ok
20:43:00.0843 2248 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
20:43:01.0031 2248 Disk - ok
20:43:01.0046 2248 dmadmin - ok
20:43:01.0125 2248 dmboot (d992fe1274bde0f84ad826acae022a41) C:\WINDOWS\system32\drivers\dmboot.sys
20:43:01.0406 2248 dmboot - ok
20:43:01.0437 2248 dmio (7c824cf7bbde77d95c08005717a95f6f) C:\WINDOWS\system32\drivers\dmio.sys
20:43:01.0640 2248 dmio - ok
20:43:01.0687 2248 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
20:43:01.0906 2248 dmload - ok
20:43:01.0953 2248 dmserver (57edec2e5f59f0335e92f35184bc8631) C:\WINDOWS\System32\dmserver.dll
20:43:02.0171 2248 dmserver - ok
20:43:02.0203 2248 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
20:43:02.0375 2248 DMusic - ok
20:43:02.0437 2248 Dnscache (5f7e24fa9eab896051ffb87f840730d2) C:\WINDOWS\System32\dnsrslvr.dll
20:43:02.0625 2248 Dnscache - ok
20:43:02.0687 2248 Dot3svc (0f0f6e687e5e15579ef4da8dd6945814) C:\WINDOWS\System32\dot3svc.dll
20:43:02.0890 2248 Dot3svc - ok
20:43:02.0906 2248 dpti2o - ok
20:43:02.0937 2248 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
20:43:03.0125 2248 drmkaud - ok
20:43:03.0171 2248 E1000 (de5d0ccce14b774d4de68e44c0d6d980) C:\WINDOWS\system32\DRIVERS\e1000325.sys
20:43:03.0312 2248 E1000 - ok
20:43:03.0328 2248 EapHost (2187855a7703adef0cef9ee4285182cc) C:\WINDOWS\System32\eapsvc.dll
20:43:03.0531 2248 EapHost - ok
20:43:03.0625 2248 eeCtrl (fce87ba643d5e9a8b6e0378508d1b22d) C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys
20:43:03.0796 2248 eeCtrl - ok
20:43:03.0828 2248 EraserUtilRebootDrv (115dc729465a8c386615207f28875255) C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
20:43:03.0906 2248 EraserUtilRebootDrv - ok
20:43:03.0953 2248 ERSvc (bc93b4a066477954555966d77fec9ecb) C:\WINDOWS\System32\ersvc.dll
20:43:04.0140 2248 ERSvc - ok
20:43:04.0187 2248 Eventlog (65df52f5b8b6e9bbd183505225c37315) C:\WINDOWS\system32\services.exe
20:43:04.0281 2248 Eventlog - ok
20:43:04.0328 2248 EventSystem (d4991d98f2db73c60d042f1aef79efae) C:\WINDOWS\system32\es.dll
20:43:04.0453 2248 EventSystem - ok
20:43:04.0484 2248 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
20:43:04.0671 2248 Fastfat - ok
20:43:04.0718 2248 FastUserSwitchingCompatibility (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll
20:43:04.0890 2248 FastUserSwitchingCompatibility - ok
20:43:04.0937 2248 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
20:43:05.0125 2248 Fdc - ok
20:43:05.0156 2248 Fips (d45926117eb9fa946a6af572fbe1caa3) C:\WINDOWS\system32\drivers\Fips.sys
20:43:05.0328 2248 Fips - ok
20:43:05.0359 2248 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
20:43:05.0531 2248 Flpydisk - ok
20:43:05.0578 2248 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
20:43:05.0796 2248 FltMgr - ok
20:43:05.0890 2248 FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
20:43:05.0906 2248 FontCache3.0.0.0 - ok
20:43:05.0937 2248 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
20:43:06.0156 2248 Fs_Rec - ok
20:43:06.0203 2248 Ftdisk (6ac26732762483366c3969c9e4d2259d) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
20:43:06.0453 2248 Ftdisk - ok
20:43:06.0500 2248 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
20:43:06.0703 2248 Gpc - ok
20:43:06.0796 2248 helpsvc (4fcca060dfe0c51a09dd5c3843888bcd) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
20:43:06.0968 2248 helpsvc - ok
20:43:06.0984 2248 HidServ - ok
20:43:07.0031 2248 hidusb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
20:43:07.0203 2248 hidusb - ok
20:43:07.0250 2248 hkmsvc (8878bd685e490239777bfe51320b88e9) C:\WINDOWS\System32\kmsvc.dll
20:43:07.0453 2248 hkmsvc - ok
20:43:07.0468 2248 hpn - ok
20:43:07.0515 2248 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
20:43:07.0640 2248 HTTP - ok
20:43:07.0671 2248 HTTPFilter (6100a808600f44d999cebdef8841c7a3) C:\WINDOWS\System32\w3ssl.dll
20:43:07.0859 2248 HTTPFilter - ok
20:43:07.0859 2248 i2omgmt - ok
20:43:07.0875 2248 i2omp - ok
20:43:07.0906 2248 i8042prt (4a0b06aa8943c1e332520f7440c0aa30) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
20:43:08.0156 2248 i8042prt - ok
20:43:08.0265 2248 ialm (240d0f5d7caafd87bd8d801a97bbe041) C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
20:43:08.0515 2248 ialm - ok
20:43:08.0671 2248 idsvc (c01ac32dc5c03076cfb852cb5da5229c) c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
20:43:08.0968 2248 idsvc - ok
20:43:09.0062 2248 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
20:43:09.0281 2248 Imapi - ok
20:43:09.0312 2248 ImapiService (30deaf54a9755bb8546168cfe8a6b5e1) C:\WINDOWS\system32\imapi.exe
20:43:09.0500 2248 ImapiService - ok
20:43:09.0515 2248 ini910u - ok
20:43:09.0578 2248 IntelIde (b5466a9250342a7aa0cd1fba13420678) C:\WINDOWS\system32\DRIVERS\intelide.sys
20:43:09.0765 2248 IntelIde - ok
20:43:09.0812 2248 intelppm (8c953733d8f36eb2133f5bb58808b66b) C:\WINDOWS\system32\DRIVERS\intelppm.sys
20:43:10.0000 2248 intelppm - ok
20:43:10.0046 2248 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
20:43:10.0218 2248 Ip6Fw - ok
20:43:10.0281 2248 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
20:43:10.0515 2248 IpFilterDriver - ok
20:43:10.0531 2248 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
20:43:10.0703 2248 IpInIp - ok
20:43:10.0734 2248 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
20:43:10.0921 2248 IpNat - ok
20:43:10.0953 2248 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
20:43:11.0156 2248 IPSec - ok
20:43:11.0187 2248 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
20:43:11.0375 2248 IRENUM - ok
20:43:11.0406 2248 isapnp (05a299ec56e52649b1cf2fc52d20f2d7) C:\WINDOWS\system32\DRIVERS\isapnp.sys
20:43:11.0625 2248 isapnp - ok
20:43:11.0656 2248 Kbdclass (463c1ec80cd17420a542b7f36a36f128) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
20:43:11.0843 2248 Kbdclass - ok
20:43:11.0875 2248 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
20:43:12.0046 2248 kmixer - ok
20:43:12.0109 2248 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
20:43:12.0312 2248 KSecDD - ok
20:43:12.0375 2248 lanmanserver (3a7c3cbe5d96b8ae96ce81f0b22fb527) C:\WINDOWS\System32\srvsvc.dll
20:43:12.0515 2248 lanmanserver - ok
20:43:12.0546 2248 lanmanworkstation (a8888a5327621856c0cec4e385f69309) C:\WINDOWS\System32\wkssvc.dll
20:43:12.0656 2248 lanmanworkstation - ok
20:43:12.0671 2248 lbrtfdc - ok
20:43:12.0890 2248 LiveUpdate (010fd2b41e75a98e3a4d23f44405f5c9) C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
20:43:13.0296 2248 LiveUpdate - ok
20:43:13.0421 2248 LmHosts (a7db739ae99a796d91580147e919cc59) C:\WINDOWS\System32\lmhsvc.dll
20:43:13.0593 2248 LmHosts - ok
20:43:13.0640 2248 Messenger (986b1ff5814366d71e0ac5755c88f2d3) C:\WINDOWS\System32\msgsvc.dll
20:43:13.0828 2248 Messenger - ok
20:43:13.0953 2248 Microsoft Office Groove Audit Service (123271bd5237ab991dc5c21fdf8835eb) C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
20:43:14.0078 2248 Microsoft Office Groove Audit Service - ok
20:43:14.0125 2248 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
20:43:14.0328 2248 mnmdd - ok
20:43:14.0359 2248 mnmsrvc (d18f1f0c101d06a1c1adf26eed16fcdd) C:\WINDOWS\system32\mnmsrvc.exe
20:43:14.0546 2248 mnmsrvc - ok
20:43:14.0593 2248 Modem (dfcbad3cec1c5f964962ae10e0bcc8e1) C:\WINDOWS\system32\drivers\Modem.sys
20:43:14.0843 2248 Modem - ok
20:43:14.0890 2248 Mouclass (35c9e97194c8cfb8430125f8dbc34d04) C:\WINDOWS\system32\DRIVERS\mouclass.sys
20:43:15.0062 2248 Mouclass - ok
20:43:15.0109 2248 mouhid (b1c303e17fb9d46e87a98e4ba6769685) C:\WINDOWS\system32\DRIVERS\mouhid.sys
20:43:15.0296 2248 mouhid - ok
20:43:15.0328 2248 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
20:43:15.0500 2248 MountMgr - ok
20:43:15.0515 2248 mraid35x - ok
20:43:15.0546 2248 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
20:43:15.0765 2248 MRxDAV - ok
20:43:15.0828 2248 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
20:43:16.0031 2248 MRxSmb - ok
20:43:16.0046 2248 MSDTC (a137f1470499a205abbb9aafb3b6f2b1) C:\WINDOWS\system32\msdtc.exe
20:43:16.0265 2248 MSDTC - ok
20:43:16.0328 2248 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
20:43:16.0531 2248 Msfs - ok
20:43:16.0531 2248 MSIServer - ok
20:43:16.0562 2248 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
20:43:16.0734 2248 MSKSSRV - ok
20:43:16.0750 2248 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
20:43:16.0921 2248 MSPCLOCK - ok
20:43:16.0968 2248 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
20:43:17.0140 2248 MSPQM - ok
20:43:17.0187 2248 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
20:43:17.0343 2248 mssmbios - ok
20:43:17.0406 2248 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
20:43:17.0500 2248 Mup - ok
20:43:17.0546 2248 napagent (0102140028fad045756796e1c685d695) C:\WINDOWS\System32\qagentrt.dll
20:43:17.0781 2248 napagent - ok
20:43:17.0906 2248 NAVENG (f11033730b38260b6892e837c457fb4b) C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20120604.002\naveng.sys
20:43:17.0984 2248 NAVENG - ok
20:43:18.0093 2248 NAVEX15 (4e4e7c0259d3bb97de24a636c0e06aba) C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20120604.002\navex15.sys
20:43:18.0265 2248 NAVEX15 - ok
20:43:18.0421 2248 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
20:43:18.0671 2248 NDIS - ok
20:43:18.0718 2248 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
20:43:18.0812 2248 NdisTapi - ok
20:43:18.0843 2248 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
20:43:19.0031 2248 Ndisuio - ok
20:43:19.0062 2248 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
20:43:19.0281 2248 NdisWan - ok
20:43:19.0328 2248 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
20:43:19.0437 2248 NDProxy - ok
20:43:19.0593 2248 Nero BackItUp Scheduler 3 (6d4028d458eaaa1782099750790dc8c9) C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
20:43:19.0781 2248 Nero BackItUp Scheduler 3 - ok
20:43:19.0812 2248 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
20:43:20.0015 2248 NetBIOS - ok
20:43:20.0046 2248 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
20:43:20.0312 2248 NetBT - ok
20:43:20.0359 2248 NetDDE (b857ba82860d7ff85ae29b095645563b) C:\WINDOWS\system32\netdde.exe
20:43:20.0593 2248 NetDDE - ok
20:43:20.0609 2248 NetDDEdsdm (b857ba82860d7ff85ae29b095645563b) C:\WINDOWS\system32\netdde.exe
20:43:20.0750 2248 NetDDEdsdm - ok
20:43:20.0796 2248 Netlogon (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
20:43:20.0984 2248 Netlogon - ok
20:43:21.0031 2248 Netman (13e67b55b3abd7bf3fe7aae5a0f9a9de) C:\WINDOWS\System32\netman.dll
20:43:21.0234 2248 Netman - ok
20:43:21.0375 2248 NetTcpPortSharing (d34612c5d02d026535b3095d620626ae) c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
20:43:21.0531 2248 NetTcpPortSharing - ok
20:43:21.0578 2248 Nla (943337d786a56729263071623bbb9de5) C:\WINDOWS\System32\mswsock.dll
20:43:21.0625 2248 Nla - ok
20:43:21.0750 2248 NMIndexingService (ff4d73b16ea3a32d34ceb3a7bc3c3773) C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
20:43:21.0781 2248 NMIndexingService - ok
20:43:21.0828 2248 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
20:43:22.0015 2248 Npfs - ok
20:43:22.0078 2248 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
20:43:22.0328 2248 Ntfs - ok
20:43:22.0359 2248 NtLmSsp (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
20:43:22.0515 2248 NtLmSsp - ok
20:43:22.0578 2248 NtmsSvc (156f64a3345bd23c600655fb4d10bc08) C:\WINDOWS\system32\ntmssvc.dll
20:43:22.0828 2248 NtmsSvc - ok
20:43:22.0875 2248 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
20:43:23.0078 2248 Null - ok
20:43:23.0125 2248 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
20:43:23.0343 2248 NwlnkFlt - ok
20:43:23.0375 2248 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
20:43:23.0593 2248 NwlnkFwd - ok
20:43:23.0750 2248 odserv (785f487a64950f3cb8e9f16253ba3b7b) C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
20:43:24.0000 2248 odserv - ok
20:43:24.0046 2248 ose (5a432a042dae460abe7199b758e8606c) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
20:43:24.0203 2248 ose - ok
20:43:24.0265 2248 Parport (5575faf8f97ce5e713d108c2a58d7c7c) C:\WINDOWS\system32\DRIVERS\parport.sys
20:43:24.0484 2248 Parport - ok
20:43:24.0515 2248 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
20:43:24.0687 2248 PartMgr - ok
20:43:24.0734 2248 ParVdm (70e98b3fd8e963a6a46a2e6247e0bea1) C:\WINDOWS\system32\drivers\ParVdm.sys
20:43:24.0968 2248 ParVdm - ok
20:43:24.0984 2248 PCI (a219903ccf74233761d92bef471a07b1) C:\WINDOWS\system32\DRIVERS\pci.sys
20:43:25.0171 2248 PCI - ok
20:43:25.0187 2248 PCIDump - ok
20:43:25.0234 2248 PCIIde (ccf5f451bb1a5a2a522a76e670000ff0) C:\WINDOWS\system32\drivers\PCIIde.sys
20:43:25.0453 2248 PCIIde - ok
20:43:25.0500 2248 Pcmcia (9e89ef60e9ee05e3f2eef2da7397f1c1) C:\WINDOWS\system32\drivers\Pcmcia.sys
20:43:25.0687 2248 Pcmcia - ok
20:43:25.0703 2248 PDCOMP - ok
20:43:25.0718 2248 PDFRAME - ok
20:43:25.0734 2248 PDRELI - ok
20:43:25.0734 2248 PDRFRAME - ok
20:43:25.0750 2248 perc2 - ok
20:43:25.0765 2248 perc2hib - ok
20:43:25.0843 2248 PlugPlay (65df52f5b8b6e9bbd183505225c37315) C:\WINDOWS\system32\services.exe
20:43:25.0890 2248 PlugPlay - ok
20:43:25.0937 2248 PolicyAgent (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
20:43:26.0093 2248 PolicyAgent - ok
20:43:26.0125 2248 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
20:43:26.0343 2248 PptpMiniport - ok
20:43:26.0359 2248 ProtectedStorage (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
20:43:26.0515 2248 ProtectedStorage - ok
20:43:26.0546 2248 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
20:43:26.0734 2248 PSched - ok
20:43:26.0781 2248 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
20:43:27.0000 2248 Ptilink - ok
20:43:27.0031 2248 PxHelp20 (e42e3433dbb4cffe8fdd91eab29aea8e) C:\WINDOWS\system32\Drivers\PxHelp20.sys
20:43:27.0140 2248 PxHelp20 - ok
20:43:27.0156 2248 ql1080 - ok
20:43:27.0171 2248 Ql10wnt - ok
20:43:27.0187 2248 ql12160 - ok
20:43:27.0203 2248 ql1240 - ok
20:43:27.0203 2248 ql1280 - ok
20:43:27.0250 2248 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
20:43:27.0453 2248 RasAcd - ok
20:43:27.0500 2248 RasAuto (ad188be7bdf94e8df4ca0a55c00a5073) C:\WINDOWS\System32\rasauto.dll
20:43:27.0687 2248 RasAuto - ok
20:43:27.0718 2248 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
20:43:27.0937 2248 Rasl2tp - ok
20:43:27.0984 2248 RasMan (76a9a3cbeadd68cc57cda5e1d7448235) C:\WINDOWS\System32\rasmans.dll
20:43:28.0187 2248 RasMan - ok
20:43:28.0218 2248 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
20:43:28.0437 2248 RasPppoe - ok
20:43:28.0468 2248 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
20:43:28.0703 2248 Raspti - ok
20:43:28.0765 2248 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
20:43:28.0984 2248 Rdbss - ok
20:43:29.0000 2248 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
20:43:29.0218 2248 RDPCDD - ok
20:43:29.0265 2248 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
20:43:29.0500 2248 rdpdr - ok
20:43:29.0546 2248 RDPWD (5b3055daa788bd688594d2f5981f2a83) C:\WINDOWS\system32\drivers\RDPWD.sys
20:43:29.0656 2248 RDPWD - ok
20:43:29.0687 2248 RDSessMgr (3c37bf86641bda977c3bf8a840f3b7fa) C:\WINDOWS\system32\sessmgr.exe
20:43:29.0984 2248 RDSessMgr - ok
20:43:30.0015 2248 redbook (f828dd7e1419b6653894a8f97a0094c5) C:\WINDOWS\system32\DRIVERS\redbook.sys
20:43:30.0203 2248 redbook - ok
20:43:30.0265 2248 RemoteAccess (7e699ff5f59b5d9de5390e3c34c67cf5) C:\WINDOWS\System32\mprdim.dll
20:43:30.0453 2248 RemoteAccess - ok
20:43:30.0500 2248 RemoteRegistry (5b19b557b0c188210a56a6b699d90b8f) C:\WINDOWS\system32\regsvc.dll
20:43:30.0671 2248 RemoteRegistry - ok
20:43:30.0718 2248 RpcLocator (aaed593f84afa419bbae8572af87cf6a) C:\WINDOWS\system32\locator.exe
20:43:30.0906 2248 RpcLocator - ok
20:43:30.0968 2248 RpcSs (6b27a5c03dfb94b4245739065431322c) C:\WINDOWS\system32\rpcss.dll
20:43:31.0031 2248 RpcSs - ok
20:43:31.0078 2248 RSVP (471b3f9741d762abe75e9deea4787e47) C:\WINDOWS\system32\rsvp.exe
20:43:31.0343 2248 RSVP - ok
20:43:31.0390 2248 SamSs (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
20:43:31.0531 2248 SamSs - ok
20:43:31.0656 2248 SavRoam (735debf79a6da44d56542e12edf51b75) C:\Program Files\Symantec AntiVirus\SavRoam.exe
20:43:31.0781 2248 SavRoam - ok
20:43:31.0843 2248 SAVRT (e768eff5753906272e375282d7a511e0) C:\Program Files\Symantec AntiVirus\savrt.sys
20:43:31.0937 2248 SAVRT - ok
20:43:31.0968 2248 SAVRTPEL (d9d45ad65063e8966acafb1f574c8617) C:\Program Files\Symantec AntiVirus\Savrtpel.sys
20:43:32.0046 2248 SAVRTPEL - ok
20:43:32.0078 2248 SCardSvr (86d007e7a654b9a71d1d7d856b104353) C:\WINDOWS\System32\SCardSvr.exe
20:43:32.0359 2248 SCardSvr - ok
20:43:32.0406 2248 Schedule (0a9a7365a1ca4319aa7c1d6cd8e4eafa) C:\WINDOWS\system32\schedsvc.dll
20:43:32.0640 2248 Schedule - ok
20:43:32.0718 2248 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
20:43:32.0890 2248 Secdrv - ok
20:43:32.0953 2248 seclogon (cbe612e2bb6a10e3563336191eda1250) C:\WINDOWS\System32\seclogon.dll
20:43:33.0109 2248 seclogon - ok
20:43:33.0156 2248 SENS (7fdd5d0684eca8c1f68b4d99d124dcd0) C:\WINDOWS\system32\sens.dll
20:43:33.0312 2248 SENS - ok
20:43:33.0343 2248 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
20:43:33.0531 2248 serenum - ok
20:43:33.0578 2248 Serial (cca207a8896d4c6a0c9ce29a4ae411a7) C:\WINDOWS\system32\DRIVERS\serial.sys
20:43:33.0750 2248 Serial - ok
20:43:33.0796 2248 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
20:43:33.0968 2248 Sfloppy - ok
20:43:34.0046 2248 SharedAccess (83f41d0d89645d7235c051ab1d9523ac) C:\WINDOWS\System32\ipnathlp.dll
20:43:34.0281 2248 SharedAccess - ok
20:43:34.0312 2248 ShellHWDetection (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll
20:43:34.0359 2248 ShellHWDetection - ok
20:43:34.0375 2248 Simbad - ok
20:43:34.0453 2248 smwdm (fa3368a7039f5abaa4b933703ac34763) C:\WINDOWS\system32\drivers\smwdm.sys
20:43:34.0515 2248 smwdm - ok
20:43:34.0593 2248 SNDSrvc (092eac5e31bc10a7ab47196ea2a2a809) C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
20:43:34.0687 2248 SNDSrvc - ok
20:43:34.0687 2248 Sparrow - ok
20:43:34.0750 2248 SPBBCDrv (60053e9c1fc4f6887c296c19cb825244) C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCDrv.sys
20:43:34.0812 2248 SPBBCDrv - ok
20:43:34.0921 2248 SPBBCSvc (8a09ab7a1fd856acc469bd0cd4e98351) C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
20:43:35.0125 2248 SPBBCSvc - ok
20:43:35.0234 2248 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
20:43:35.0406 2248 splitter - ok
20:43:35.0453 2248 Spooler (60784f891563fb1b767f70117fc2428f) C:\WINDOWS\system32\spoolsv.exe
20:43:35.0531 2248 Spooler - ok
20:43:35.0593 2248 sr (76bb022c2fb6902fd5bdd4f78fc13a5d) C:\WINDOWS\system32\DRIVERS\sr.sys
20:43:35.0765 2248 sr - ok
20:43:35.0812 2248 srservice (3805df0ac4296a34ba4bf93b346cc378) C:\WINDOWS\system32\srsvc.dll
20:43:36.0000 2248 srservice - ok
20:43:36.0062 2248 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
20:43:36.0218 2248 Srv - ok
20:43:36.0281 2248 ssadbus (64e44acd8c238fcbbb78f0ba4bdc4b05) C:\WINDOWS\system32\DRIVERS\ssadbus.sys
20:43:36.0453 2248 ssadbus - ok
20:43:36.0500 2248 ssadmdfl (bb2c84a15c765da89fd832b0e73f26ce) C:\WINDOWS\system32\DRIVERS\ssadmdfl.sys
20:43:36.0640 2248 ssadmdfl - ok
20:43:36.0687 2248 ssadmdm (6d0d132ddc6f43eda00dced6d8b1ca31) C:\WINDOWS\system32\DRIVERS\ssadmdm.sys
20:43:36.0765 2248 ssadmdm - ok
20:43:36.0812 2248 ssadserd (1a5a397bc459f346ab56492b61ef79f6) C:\WINDOWS\system32\DRIVERS\ssadserd.sys
20:43:36.0890 2248 ssadserd - ok
20:43:36.0953 2248 SSDPSRV (0a5679b3714edab99e357057ee88fca6) C:\WINDOWS\System32\ssdpsrv.dll
20:43:37.0109 2248 SSDPSRV - ok
20:43:37.0171 2248 stisvc (8bad69cbac032d4bbacfce0306174c30) C:\WINDOWS\system32\wiaservc.dll
20:43:37.0437 2248 stisvc - ok
20:43:37.0484 2248 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
20:43:37.0671 2248 swenum - ok
20:43:37.0703 2248 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
20:43:37.0875 2248 swmidi - ok
20:43:37.0890 2248 SwPrv - ok
20:43:38.0093 2248 Symantec AntiVirus (26b3e57f33d3f6fe7e88beac82aeb12a) C:\Program Files\Symantec AntiVirus\Rtvscan.exe
20:43:38.0390 2248 Symantec AntiVirus - ok
20:43:38.0500 2248 symc810 - ok
20:43:38.0515 2248 symc8xx - ok
20:43:38.0578 2248 SymEvent (c5eafb6a8c73fb26b73ee613c1a5aef6) C:\WINDOWS\system32\Drivers\SYMEVENT.SYS
20:43:38.0640 2248 SymEvent - ok
20:43:38.0671 2248 SYMREDRV (4ed314756eb2811a9d4226ed4385d35c) C:\WINDOWS\System32\Drivers\SYMREDRV.SYS
20:43:38.0687 2248 SYMREDRV - ok
20:43:38.0734 2248 SYMTDI (4aed788390802b1500e6b05127af3a2e) C:\WINDOWS\System32\Drivers\SYMTDI.SYS
20:43:38.0812 2248 SYMTDI - ok
20:43:38.0828 2248 sym_hi - ok
20:43:38.0843 2248 sym_u3 - ok
20:43:38.0890 2248 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
20:43:39.0062 2248 sysaudio - ok
20:43:39.0109 2248 SysmonLog (c7abbc59b43274b1109df6b24d617051) C:\WINDOWS\system32\smlogsvc.exe
20:43:39.0312 2248 SysmonLog - ok
20:43:39.0375 2248 TapiSrv (3cb78c17bb664637787c9a1c98f79c38) C:\WINDOWS\System32\tapisrv.dll
20:43:39.0546 2248 TapiSrv - ok
20:43:39.0625 2248 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
20:43:39.0750 2248 Tcpip - ok
20:43:39.0796 2248 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
20:43:39.0984 2248 TDPIPE - ok
20:43:40.0031 2248 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
20:43:40.0203 2248 TDTCP - ok
20:43:40.0265 2248 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
20:43:40.0468 2248 TermDD - ok
20:43:40.0531 2248 TermService (ff3477c03be7201c294c35f684b3479f) C:\WINDOWS\System32\termsrv.dll
20:43:40.0765 2248 TermService - ok
20:43:40.0828 2248 Themes (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll
20:43:40.0859 2248 Themes - ok
20:43:40.0890 2248 TlntSvr (db7205804759ff62c34e3efd8a4cc76a) C:\WINDOWS\system32\tlntsvr.exe
20:43:41.0125 2248 TlntSvr - ok
20:43:41.0140 2248 TosIde - ok
20:43:41.0187 2248 TrkWks (55bca12f7f523d35ca3cb833c725f54e) C:\WINDOWS\system32\trkwks.dll
20:43:41.0390 2248 TrkWks - ok
20:43:41.0421 2248 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
20:43:41.0625 2248 Udfs - ok
20:43:41.0640 2248 ultra - ok
20:43:41.0703 2248 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
20:43:41.0953 2248 Update - ok
20:43:42.0000 2248 upnphost (1ebafeb9a3fbdc41b8d9c7f0f687ad91) C:\WINDOWS\System32\upnphost.dll
20:43:42.0187 2248 upnphost - ok
20:43:42.0218 2248 UPS (05365fb38fca1e98f7a566aaaf5d1815) C:\WINDOWS\System32\ups.exe
20:43:42.0406 2248 UPS - ok
20:43:42.0406 2248 USBAAPL - ok
20:43:42.0468 2248 usbaudio (e919708db44ed8543a7c017953148330) C:\WINDOWS\system32\drivers\usbaudio.sys
20:43:42.0656 2248 usbaudio - ok
20:43:42.0703 2248 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
20:43:42.0875 2248 usbccgp - ok
20:43:42.0921 2248 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
20:43:43.0093 2248 usbehci - ok
20:43:43.0156 2248 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
20:43:43.0406 2248 usbhub - ok
20:43:43.0453 2248 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
20:43:43.0609 2248 usbprint - ok
20:43:43.0656 2248 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
20:43:43.0843 2248 usbscan - ok
20:43:43.0890 2248 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
20:43:44.0046 2248 USBSTOR - ok
20:43:44.0093 2248 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
20:43:44.0265 2248 usbuhci - ok
20:43:44.0296 2248 usb_rndisx (b6cc50279d6cd28e090a5d33244adc9a) C:\WINDOWS\system32\DRIVERS\usb8023x.sys
20:43:44.0468 2248 usb_rndisx - ok
20:43:44.0515 2248 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
20:43:44.0687 2248 VgaSave - ok
20:43:44.0703 2248 ViaIde - ok
20:43:44.0765 2248 VolSnap (4c8fcb5cc53aab716d810740fe59d025) C:\WINDOWS\system32\drivers\VolSnap.sys
20:43:44.0968 2248 VolSnap - ok
20:43:45.0031 2248 VSS (7a9db3a67c333bf0bd42e42b8596854b) C:\WINDOWS\System32\vssvc.exe
20:43:45.0250 2248 VSS - ok
20:43:45.0281 2248 W32Time (54af4b1d5459500ef0937f6d33b1914f) C:\WINDOWS\system32\w32time.dll
20:43:45.0484 2248 W32Time - ok
20:43:45.0546 2248 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
20:43:45.0718 2248 Wanarp - ok
20:43:45.0781 2248 wceusbsh (46a247f6617526afe38b6f12f5512120) C:\WINDOWS\system32\DRIVERS\wceusbsh.sys
20:43:45.0875 2248 wceusbsh - ok
20:43:45.0937 2248 Wdf01000 (fd47474bd21794508af449d9d91af6e6) C:\WINDOWS\system32\DRIVERS\Wdf01000.sys
20:43:46.0093 2248 Wdf01000 - ok
20:43:46.0093 2248 WDICA - ok
20:43:46.0156 2248 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
20:43:46.0312 2248 wdmaud - ok
20:43:46.0359 2248 WebClient (77a354e28153ad2d5e120a5a8687bc06) C:\WINDOWS\System32\webclnt.dll
20:43:46.0546 2248 WebClient - ok
20:43:46.0656 2248 winmgmt (2d0e4ed081963804ccc196a0929275b5) C:\WINDOWS\system32\wbem\WMIsvc.dll
20:43:46.0890 2248 winmgmt - ok
20:43:47.0031 2248 WLSetupSvc (94a85e956a065e23e0010a6a7826243b) C:\Program Files\Windows Live\installer\WLSetupSvc.exe
20:43:47.0312 2248 WLSetupSvc - ok
20:43:47.0343 2248 WmdmPmSN (c51b4a5c05a5475708e3c81c7765b71d) C:\WINDOWS\system32\MsPMSNSv.dll
20:43:47.0437 2248 WmdmPmSN - ok
20:43:47.0515 2248 Wmi (e76f8807070ed04e7408a86d6d3a6137) C:\WINDOWS\System32\advapi32.dll
20:43:47.0593 2248 Wmi - ok
20:43:47.0640 2248 WmiApSrv (e0673f1106e62a68d2257e376079f821) C:\WINDOWS\system32\wbem\wmiapsrv.exe
20:43:47.0875 2248 WmiApSrv - ok
20:43:47.0984 2248 WMPNetworkSvc (f74e3d9a7fa9556c3bbb14d4e5e63d3b) C:\Program Files\Windows Media Player\WMPNetwk.exe
20:43:48.0171 2248 WMPNetworkSvc - ok
20:43:48.0234 2248 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
20:43:48.0468 2248 WS2IFSL - ok
20:43:48.0515 2248 wscsvc (7c278e6408d1dce642230c0585a854d5) C:\WINDOWS\system32\wscsvc.dll
20:43:48.0703 2248 wscsvc - ok
20:43:48.0750 2248 wuauserv (35321fb577cdc98ce3eb3a3eb9e4610a) C:\WINDOWS\system32\wuauserv.dll
20:43:48.0937 2248 wuauserv - ok
20:43:49.0000 2248 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
20:43:49.0140 2248 WudfPf - ok
20:43:49.0203 2248 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
20:43:49.0281 2248 WudfRd - ok
20:43:49.0328 2248 WudfSvc (05231c04253c5bc30b26cbaae680ed89) C:\WINDOWS\System32\WUDFSvc.dll
20:43:49.0421 2248 WudfSvc - ok
20:43:49.0484 2248 WZCSVC (81dc3f549f44b1c1fff022dec9ecf30b) C:\WINDOWS\System32\wzcsvc.dll
20:43:49.0750 2248 WZCSVC - ok
20:43:49.0765 2248 xmlprov (295d21f14c335b53cb8154e5b1f892b9) C:\WINDOWS\System32\xmlprov.dll
20:43:49.0968 2248 xmlprov - ok
20:43:50.0015 2248 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk0\DR0
20:43:50.0531 2248 \Device\Harddisk0\DR0 - ok
20:43:50.0531 2248 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk1\DR2
20:43:50.0656 2248 \Device\Harddisk1\DR2 - ok
20:43:50.0687 2248 Boot (0x1200) (b0f789357f064f80917319c0d544f4a9) \Device\Harddisk0\DR0\Partition0
20:43:50.0687 2248 \Device\Harddisk0\DR0\Partition0 - ok
20:43:50.0703 2248 Boot (0x1200) (a65e9430c7d7762f269550c3b37d3ce1) \Device\Harddisk1\DR2\Partition0
20:43:50.0703 2248 \Device\Harddisk1\DR2\Partition0 - ok
20:43:50.0703 2248 ============================================================
20:43:50.0703 2248 Scan finished
20:43:50.0703 2248 ============================================================
20:43:50.0828 2320 Detected object count: 1
20:43:50.0828 2320 Actual detected object count: 1
20:44:27.0843 2320 Afc ( UnsignedFile.Multi.Generic ) - skipped by user
20:44:27.0843 2320 Afc ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:44:46.0328 2472 ============================================================
20:44:46.0328 2472 Scan started
20:44:46.0328 2472 Mode: Manual; SigCheck; TDLFS;
20:44:46.0328 2472 ============================================================
20:44:46.0421 2472 Abiosdsk - ok
20:44:46.0437 2472 abp480n5 - ok
20:44:46.0500 2472 ACPI (8fd99680a539792a30e97944fdaecf17) C:\WINDOWS\system32\DRIVERS\ACPI.sys
20:44:46.0687 2472 ACPI - ok
20:44:46.0734 2472 ACPIEC (9859c0f6936e723e4892d7141b1327d5) C:\WINDOWS\system32\drivers\ACPIEC.sys
20:44:46.0968 2472 ACPIEC - ok
20:44:47.0062 2472 AdobeFlashPlayerUpdateSvc (459ac130c6ab892b1cd5d7544626efc5) C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
20:44:47.0078 2472 AdobeFlashPlayerUpdateSvc - ok
20:44:47.0093 2472 adpu160m - ok
20:44:47.0140 2472 aeaudio (11c04b17ed2abbb4833694bcd644ac90) C:\WINDOWS\system32\drivers\aeaudio.sys
20:44:47.0171 2472 aeaudio - ok
20:44:47.0203 2472 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
20:44:47.0375 2472 aec - ok
20:44:47.0406 2472 Afc (a7b8a3a79d35215d798a300df49ed23f) C:\WINDOWS\system32\drivers\Afc.sys
20:44:47.0437 2472 Afc ( UnsignedFile.Multi.Generic ) - warning
20:44:47.0437 2472 Afc - detected UnsignedFile.Multi.Generic (1)
20:44:47.0484 2472 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
20:44:47.0531 2472 AFD - ok
20:44:47.0531 2472 Aha154x - ok
20:44:47.0546 2472 aic78u2 - ok
20:44:47.0562 2472 aic78xx - ok
20:44:47.0609 2472 Alerter (a9a3daa780ca6c9671a19d52456705b4) C:\WINDOWS\system32\alrsvc.dll
20:44:47.0781 2472 Alerter - ok
20:44:47.0812 2472 ALG (8c515081584a38aa007909cd02020b3d) C:\WINDOWS\System32\alg.exe
20:44:48.0000 2472 ALG - ok
20:44:48.0015 2472 AliIde - ok
20:44:48.0015 2472 amsint - ok
20:44:48.0062 2472 androidusb (dd8d9c597af7cd2f6b70a3d6a4a1acea) C:\WINDOWS\system32\Drivers\ssadadb.sys
20:44:48.0125 2472 androidusb - ok
20:44:48.0187 2472 AppMgmt (d8849f77c0b66226335a59d26cb4edc6) C:\WINDOWS\System32\appmgmts.dll
20:44:48.0343 2472 AppMgmt - ok
20:44:48.0343 2472 asc - ok
20:44:48.0359 2472 asc3350p - ok
20:44:48.0375 2472 asc3550 - ok
20:44:48.0468 2472 aspnet_state (0e5e4957549056e2bf2c49f4f6b601ad) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
20:44:48.0484 2472 aspnet_state - ok
20:44:48.0515 2472 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
20:44:48.0687 2472 AsyncMac - ok
20:44:48.0718 2472 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
20:44:48.0890 2472 atapi - ok
20:44:48.0906 2472 Atdisk - ok
20:44:48.0968 2472 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
20:44:49.0140 2472 Atmarpc - ok
20:44:49.0187 2472 AudioSrv (def7a7882bec100fe0b2ce2549188f9d) C:\WINDOWS\System32\audiosrv.dll
20:44:49.0359 2472 AudioSrv - ok
20:44:49.0406 2472 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
20:44:49.0593 2472 audstub - ok
20:44:49.0656 2472 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
20:44:49.0859 2472 Beep - ok
20:44:49.0937 2472 BITS (574738f61fca2935f5265dc4e5691314) C:\WINDOWS\system32\qmgr.dll
20:44:50.0109 2472 BITS - ok
20:44:50.0203 2472 Bonjour Service (db5bea73edaf19ac68b2c0fad0f92b1a) C:\Program Files\Bonjour\mDNSResponder.exe
20:44:50.0234 2472 Bonjour Service - ok
20:44:50.0265 2472 Browser (a06ce3399d16db864f55faeb1f1927a9) C:\WINDOWS\System32\browser.dll
20:44:50.0453 2472 Browser - ok
20:44:50.0593 2472 catchme - ok
20:44:50.0640 2472 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
20:44:50.0859 2472 cbidf2k - ok
20:44:50.0953 2472 ccEvtMgr (e403a2d0f451500ff12638c19cffc87c) C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
20:44:50.0984 2472 ccEvtMgr - ok
20:44:51.0015 2472 ccSetMgr (64ca18128973124df92d516d50c03aef) C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
20:44:51.0031 2472 ccSetMgr - ok
20:44:51.0046 2472 cd20xrnt - ok
20:44:51.0093 2472 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
20:44:51.0281 2472 Cdaudio - ok
20:44:51.0328 2472 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
20:44:51.0484 2472 Cdfs - ok
20:44:51.0531 2472 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
20:44:51.0687 2472 Cdrom - ok
20:44:51.0703 2472 Changer - ok
20:44:51.0750 2472 CiSvc (1cfe720eb8d93a7158a4ebc3ab178bde) C:\WINDOWS\system32\cisvc.exe
20:44:51.0921 2472 CiSvc - ok
20:44:51.0984 2472 ClipSrv (34cbe729f38138217f9c80212a2a0c82) C:\WINDOWS\system32\clipsrv.exe
20:44:52.0140 2472 ClipSrv - ok
20:44:52.0218 2472 clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
20:44:52.0234 2472 clr_optimization_v2.0.50727_32 - ok
20:44:52.0234 2472 CmdIde - ok
20:44:52.0250 2472 COMSysApp - ok
20:44:52.0281 2472 Cpqarray - ok
20:44:52.0312 2472 CryptSvc (3d4e199942e29207970e04315d02ad3b) C:\WINDOWS\System32\cryptsvc.dll
20:44:52.0484 2472 CryptSvc - ok
20:44:52.0484 2472 dac2w2k - ok
20:44:52.0500 2472 dac960nt - ok
20:44:52.0562 2472 DcomLaunch (6b27a5c03dfb94b4245739065431322c) C:\WINDOWS\system32\rpcss.dll
20:44:52.0656 2472 DcomLaunch - ok
20:44:52.0734 2472 DefWatch (213153e1ee098feef56098536b2a6dd7) C:\Program Files\Symantec AntiVirus\DefWatch.exe
20:44:52.0750 2472 DefWatch - ok
20:44:52.0781 2472 Dhcp (5e38d7684a49cacfb752b046357e0589) C:\WINDOWS\System32\dhcpcsvc.dll
20:44:52.0953 2472 Dhcp - ok
20:44:52.0984 2472 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
20:44:53.0156 2472 Disk - ok
20:44:53.0156 2472 dmadmin - ok
20:44:53.0250 2472 dmboot (d992fe1274bde0f84ad826acae022a41) C:\WINDOWS\system32\drivers\dmboot.sys
20:44:53.0453 2472 dmboot - ok
20:44:53.0484 2472 dmio (7c824cf7bbde77d95c08005717a95f6f) C:\WINDOWS\system32\drivers\dmio.sys
20:44:53.0640 2472 dmio - ok
20:44:53.0687 2472 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
20:44:53.0906 2472 dmload - ok
20:44:53.0953 2472 dmserver (57edec2e5f59f0335e92f35184bc8631) C:\WINDOWS\System32\dmserver.dll
20:44:54.0125 2472 dmserver - ok
20:44:54.0156 2472 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
20:44:54.0312 2472 DMusic - ok
20:44:54.0343 2472 Dnscache (5f7e24fa9eab896051ffb87f840730d2) C:\WINDOWS\System32\dnsrslvr.dll
20:44:54.0390 2472 Dnscache - ok
20:44:54.0437 2472 Dot3svc (0f0f6e687e5e15579ef4da8dd6945814) C:\WINDOWS\System32\dot3svc.dll
20:44:54.0609 2472 Dot3svc - ok
20:44:54.0609 2472 dpti2o - ok
20:44:54.0656 2472 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
20:44:54.0828 2472 drmkaud - ok
20:44:54.0875 2472 E1000 (de5d0ccce14b774d4de68e44c0d6d980) C:\WINDOWS\system32\DRIVERS\e1000325.sys
20:44:54.0921 2472 E1000 - ok
20:44:54.0953 2472 EapHost (2187855a7703adef0cef9ee4285182cc) C:\WINDOWS\System32\eapsvc.dll
20:44:55.0140 2472 EapHost - ok
20:44:55.0234 2472 eeCtrl (fce87ba643d5e9a8b6e0378508d1b22d) C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys
20:44:55.0265 2472 eeCtrl - ok
20:44:55.0281 2472 EraserUtilRebootDrv (115dc729465a8c386615207f28875255) C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
20:44:55.0296 2472 EraserUtilRebootDrv - ok
20:44:55.0343 2472 ERSvc (bc93b4a066477954555966d77fec9ecb) C:\WINDOWS\System32\ersvc.dll
20:44:55.0484 2472 ERSvc - ok
20:44:55.0531 2472 Eventlog (65df52f5b8b6e9bbd183505225c37315) C:\WINDOWS\system32\services.exe
20:44:55.0578 2472 Eventlog - ok
20:44:55.0640 2472 EventSystem (d4991d98f2db73c60d042f1aef79efae) C:\WINDOWS\system32\es.dll
20:44:55.0671 2472 EventSystem - ok
20:44:55.0703 2472 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
20:44:55.0875 2472 Fastfat - ok
20:44:55.0921 2472 FastUserSwitchingCompatibility (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll
20:44:55.0953 2472 FastUserSwitchingCompatibility - ok
20:44:56.0000 2472 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
20:44:56.0156 2472 Fdc - ok
20:44:56.0187 2472 Fips (d45926117eb9fa946a6af572fbe1caa3) C:\WINDOWS\system32\drivers\Fips.sys
20:44:56.0328 2472 Fips - ok
20:44:56.0359 2472 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
20:44:56.0515 2472 Flpydisk - ok
20:44:56.0562 2472 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
20:44:56.0718 2472 FltMgr - ok
20:44:56.0828 2472 FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
20:44:56.0843 2472 FontCache3.0.0.0 - ok
20:44:56.0890 2472 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
20:44:57.0093 2472 Fs_Rec - ok
20:44:57.0140 2472 Ftdisk (6ac26732762483366c3969c9e4d2259d) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
20:44:57.0343 2472 Ftdisk - ok
20:44:57.0375 2472 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
20:44:57.0531 2472 Gpc - ok
20:44:57.0609 2472 helpsvc (4fcca060dfe0c51a09dd5c3843888bcd) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
20:44:57.0765 2472 helpsvc - ok
20:44:57.0781 2472 HidServ - ok
20:44:57.0828 2472 hidusb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
20:44:57.0984 2472 hidusb - ok
20:44:58.0015 2472 hkmsvc (8878bd685e490239777bfe51320b88e9) C:\WINDOWS\System32\kmsvc.dll
20:44:58.0187 2472 hkmsvc - ok
20:44:58.0187 2472 hpn - ok
20:44:58.0250 2472 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
20:44:58.0312 2472 HTTP - ok
20:44:58.0343 2472 HTTPFilter (6100a808600f44d999cebdef8841c7a3) C:\WINDOWS\System32\w3ssl.dll
20:44:58.0515 2472 HTTPFilter - ok
20:44:58.0531 2472 i2omgmt - ok
20:44:58.0546 2472 i2omp - ok
20:44:58.0578 2472 i8042prt (4a0b06aa8943c1e332520f7440c0aa30) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
20:44:58.0734 2472 i8042prt - ok
20:44:58.0828 2472 ialm (240d0f5d7caafd87bd8d801a97bbe041) C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
20:44:58.0906 2472 ialm - ok
20:44:59.0046 2472 idsvc (c01ac32dc5c03076cfb852cb5da5229c) c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
20:44:59.0109 2472 idsvc - ok
20:44:59.0187 2472 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
20:44:59.0359 2472 Imapi - ok
20:44:59.0406 2472 ImapiService (30deaf54a9755bb8546168cfe8a6b5e1) C:\WINDOWS\system32\imapi.exe
20:44:59.0562 2472 ImapiService - ok
20:44:59.0578 2472 ini910u - ok
20:44:59.0640 2472 IntelIde (b5466a9250342a7aa0cd1fba13420678) C:\WINDOWS\system32\DRIVERS\intelide.sys
20:44:59.0796 2472 IntelIde - ok
20:44:59.0843 2472 intelppm (8c953733d8f36eb2133f5bb58808b66b) C:\WINDOWS\system32\DRIVERS\intelppm.sys
20:45:00.0000 2472 intelppm - ok
20:45:00.0031 2472 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
20:45:00.0203 2472 Ip6Fw - ok
20:45:00.0265 2472 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
20:45:00.0453 2472 IpFilterDriver - ok
20:45:00.0484 2472 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
20:45:00.0625 2472 IpInIp - ok
20:45:00.0656 2472 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
20:45:00.0828 2472 IpNat - ok
20:45:00.0859 2472 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
20:45:01.0015 2472 IPSec - ok
20:45:01.0062 2472 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
20:45:01.0218 2472 IRENUM - ok
20:45:01.0250 2472 isapnp (05a299ec56e52649b1cf2fc52d20f2d7) C:\WINDOWS\system32\DRIVERS\isapnp.sys
20:45:01.0453 2472 isapnp - ok
20:45:01.0484 2472 Kbdclass (463c1ec80cd17420a542b7f36a36f128) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
20:45:01.0640 2472 Kbdclass - ok
20:45:01.0671 2472 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
20:45:01.0843 2472 kmixer - ok
20:45:01.0906 2472 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
20:45:01.0953 2472 KSecDD - ok
20:45:02.0000 2472 lanmanserver (3a7c3cbe5d96b8ae96ce81f0b22fb527) C:\WINDOWS\System32\srvsvc.dll
20:45:02.0046 2472 lanmanserver - ok
20:45:02.0093 2472 lanmanworkstation (a8888a5327621856c0cec4e385f69309) C:\WINDOWS\System32\wkssvc.dll
20:45:02.0140 2472 lanmanworkstation - ok
20:45:02.0140 2472 lbrtfdc - ok
20:45:02.0390 2472 LiveUpdate (010fd2b41e75a98e3a4d23f44405f5c9) C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
20:45:02.0531 2472 LiveUpdate - ok
20:45:02.0640 2472 LmHosts (a7db739ae99a796d91580147e919cc59) C:\WINDOWS\System32\lmhsvc.dll
20:45:02.0812 2472 LmHosts - ok
20:45:02.0843 2472 Messenger (986b1ff5814366d71e0ac5755c88f2d3) C:\WINDOWS\System32\msgsvc.dll
20:45:03.0015 2472 Messenger - ok
20:45:03.0125 2472 Microsoft Office Groove Audit Service (123271bd5237ab991dc5c21fdf8835eb) C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
20:45:03.0140 2472 Microsoft Office Groove Audit Service - ok
20:45:03.0187 2472 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
20:45:03.0390 2472 mnmdd - ok
20:45:03.0437 2472 mnmsrvc (d18f1f0c101d06a1c1adf26eed16fcdd) C:\WINDOWS\system32\mnmsrvc.exe
20:45:03.0609 2472 mnmsrvc - ok
20:45:03.0656 2472 Modem (dfcbad3cec1c5f964962ae10e0bcc8e1) C:\WINDOWS\system32\drivers\Modem.sys
20:45:03.0812 2472 Modem - ok
20:45:03.0859 2472 Mouclass (35c9e97194c8cfb8430125f8dbc34d04) C:\WINDOWS\system32\DRIVERS\mouclass.sys
20:45:04.0031 2472 Mouclass - ok
20:45:04.0078 2472 mouhid (b1c303e17fb9d46e87a98e4ba6769685) C:\WINDOWS\system32\DRIVERS\mouhid.sys
20:45:04.0281 2472 mouhid - ok
20:45:04.0312 2472 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
20:45:04.0468 2472 MountMgr - ok
20:45:04.0468 2472 mraid35x - ok
20:45:04.0515 2472 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
20:45:04.0671 2472 MRxDAV - ok
20:45:04.0734 2472 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
20:45:04.0781 2472 MRxSmb - ok
20:45:04.0812 2472 MSDTC (a137f1470499a205abbb9aafb3b6f2b1) C:\WINDOWS\system32\msdtc.exe
20:45:04.0968 2472 MSDTC - ok
20:45:05.0031 2472 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
20:45:05.0187 2472 Msfs - ok
20:45:05.0203 2472 MSIServer - ok
20:45:05.0218 2472 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
20:45:05.0375 2472 MSKSSRV - ok
20:45:05.0390 2472 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
20:45:05.0546 2472 MSPCLOCK - ok
20:45:05.0593 2472 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
20:45:05.0750 2472 MSPQM - ok
20:45:05.0796 2472 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
20:45:05.0953 2472 mssmbios - ok
20:45:06.0000 2472 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
20:45:06.0046 2472 Mup - ok
20:45:06.0093 2472 napagent (0102140028fad045756796e1c685d695) C:\WINDOWS\System32\qagentrt.dll
20:45:06.0265 2472 napagent - ok
20:45:06.0375 2472 NAVENG (f11033730b38260b6892e837c457fb4b) C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20120604.002\naveng.sys
20:45:06.0390 2472 NAVENG - ok
20:45:06.0468 2472 NAVEX15 (4e4e7c0259d3bb97de24a636c0e06aba) C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20120604.002\navex15.sys
20:45:06.0562 2472 NAVEX15 - ok
20:45:06.0703 2472 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
20:45:06.0875 2472 NDIS - ok
20:45:06.0921 2472 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
20:45:06.0953 2472 NdisTapi - ok
20:45:07.0000 2472 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
20:45:07.0171 2472 Ndisuio - ok
20:45:07.0203 2472 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
20:45:07.0359 2472 NdisWan - ok
20:45:07.0406 2472 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
20:45:07.0437 2472 NDProxy - ok
20:45:07.0593 2472 Nero BackItUp Scheduler 3 (6d4028d458eaaa1782099750790dc8c9) C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
20:45:07.0656 2472 Nero BackItUp Scheduler 3 - ok
20:45:07.0703 2472 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
20:45:07.0859 2472 NetBIOS - ok
20:45:07.0890 2472 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
20:45:08.0062 2472 NetBT - ok
20:45:08.0125 2472 NetDDE (b857ba82860d7ff85ae29b095645563b) C:\WINDOWS\system32\netdde.exe
20:45:08.0281 2472 NetDDE - ok
20:45:08.0281 2472 NetDDEdsdm (b857ba82860d7ff85ae29b095645563b) C:\WINDOWS\system32\netdde.exe
20:45:08.0437 2472 NetDDEdsdm - ok
20:45:08.0453 2472 Netlogon (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
20:45:08.0609 2472 Netlogon - ok
20:45:08.0640 2472 Netman (13e67b55b3abd7bf3fe7aae5a0f9a9de) C:\WINDOWS\System32\netman.dll
20:45:08.0812 2472 Netman - ok
20:45:08.0937 2472 NetTcpPortSharing (d34612c5d02d026535b3095d620626ae) c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
20:45:08.0953 2472 NetTcpPortSharing - ok
20:45:09.0015 2472 Nla (943337d786a56729263071623bbb9de5) C:\WINDOWS\System32\mswsock.dll
20:45:09.0046 2472 Nla - ok
20:45:09.0171 2472 NMIndexingService (ff4d73b16ea3a32d34ceb3a7bc3c3773) C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
20:45:09.0203 2472 NMIndexingService - ok
20:45:09.0250 2472 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
20:45:09.0421 2472 Npfs - ok
20:45:09.0468 2472 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
20:45:09.0640 2472 Ntfs - ok
20:45:09.0687 2472 NtLmSsp (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
20:45:09.0843 2472 NtLmSsp - ok
20:45:09.0906 2472 NtmsSvc (156f64a3345bd23c600655fb4d10bc08) C:\WINDOWS\system32\ntmssvc.dll
20:45:10.0093 2472 NtmsSvc - ok
20:45:10.0140 2472 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
20:45:10.0343 2472 Null - ok
20:45:10.0375 2472 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
20:45:10.0562 2472 NwlnkFlt - ok
20:45:10.0578 2472 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
20:45:10.0750 2472 NwlnkFwd - ok
20:45:10.0906 2472 odserv (785f487a64950f3cb8e9f16253ba3b7b) C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
20:45:10.0937 2472 odserv - ok
20:45:11.0000 2472 ose (5a432a042dae460abe7199b758e8606c) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
20:45:11.0015 2472 ose - ok
20:45:11.0062 2472 Parport (5575faf8f97ce5e713d108c2a58d7c7c) C:\WINDOWS\system32\DRIVERS\parport.sys
20:45:11.0234 2472 Parport - ok
20:45:11.0265 2472 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
20:45:11.0421 2472 PartMgr - ok
20:45:11.0453 2472 ParVdm (70e98b3fd8e963a6a46a2e6247e0bea1) C:\WINDOWS\system32\drivers\ParVdm.sys
20:45:11.0640 2472 ParVdm - ok
20:45:11.0671 2472 PCI (a219903ccf74233761d92bef471a07b1) C:\WINDOWS\system32\DRIVERS\pci.sys
20:45:11.0843 2472 PCI - ok
20:45:11.0843 2472 PCIDump - ok
20:45:11.0890 2472 PCIIde (ccf5f451bb1a5a2a522a76e670000ff0) C:\WINDOWS\system32\drivers\PCIIde.sys
20:45:12.0078 2472 PCIIde - ok
20:45:12.0125 2472 Pcmcia (9e89ef60e9ee05e3f2eef2da7397f1c1) C:\WINDOWS\system32\drivers\Pcmcia.sys
20:45:12.0281 2472 Pcmcia - ok
20:45:12.0296 2472 PDCOMP - ok
20:45:12.0312 2472 PDFRAME - ok
20:45:12.0328 2472 PDRELI - ok
20:45:12.0343 2472 PDRFRAME - ok
20:45:12.0343 2472 perc2 - ok
20:45:12.0359 2472 perc2hib - ok
20:45:12.0421 2472 PlugPlay (65df52f5b8b6e9bbd183505225c37315) C:\WINDOWS\system32\services.exe
20:45:12.0437 2472 PlugPlay - ok
20:45:12.0484 2472 PolicyAgent (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
20:45:12.0625 2472 PolicyAgent - ok
20:45:12.0671 2472 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
20:45:12.0828 2472 PptpMiniport - ok
20:45:12.0843 2472 ProtectedStorage (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
20:45:12.0984 2472 ProtectedStorage - ok
20:45:13.0000 2472 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
20:45:13.0171 2472 PSched - ok
20:45:13.0218 2472 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
20:45:13.0453 2472 Ptilink - ok
20:45:13.0500 2472 PxHelp20 (e42e3433dbb4cffe8fdd91eab29aea8e) C:\WINDOWS\system32\Drivers\PxHelp20.sys
20:45:13.0515 2472 PxHelp20 - ok
20:45:13.0531 2472 ql1080 - ok
20:45:13.0546 2472 Ql10wnt - ok
20:45:13.0562 2472 ql12160 - ok
20:45:13.0562 2472 ql1240 - ok
20:45:13.0578 2472 ql1280 - ok
20:45:13.0625 2472 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
20:45:13.0812 2472 RasAcd - ok
20:45:13.0859 2472 RasAuto (ad188be7bdf94e8df4ca0a55c00a5073) C:\WINDOWS\System32\rasauto.dll
20:45:14.0015 2472 RasAuto - ok
20:45:14.0046 2472 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
20:45:14.0203 2472 Rasl2tp - ok
20:45:14.0281 2472 RasMan (76a9a3cbeadd68cc57cda5e1d7448235) C:\WINDOWS\System32\rasmans.dll
20:45:14.0453 2472 RasMan - ok
20:45:14.0484 2472 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
20:45:14.0640 2472 RasPppoe - ok
20:45:14.0671 2472 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
20:45:14.0875 2472 Raspti - ok
20:45:14.0937 2472 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
20:45:15.0093 2472 Rdbss - ok
20:45:15.0125 2472 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
20:45:15.0328 2472 RDPCDD - ok
20:45:15.0375 2472 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
20:45:15.0531 2472 rdpdr - ok
20:45:15.0593 2472 RDPWD (5b3055daa788bd688594d2f5981f2a83) C:\WINDOWS\system32\drivers\RDPWD.sys
20:45:15.0625 2472 RDPWD - ok
20:45:15.0671 2472 RDSessMgr (3c37bf86641bda977c3bf8a840f3b7fa) C:\WINDOWS\system32\sessmgr.exe
20:45:15.0843 2472 RDSessMgr - ok
20:45:15.0875 2472 redbook (f828dd7e1419b6653894a8f97a0094c5) C:\WINDOWS\system32\DRIVERS\redbook.sys
20:45:16.0031 2472 redbook - ok
20:45:16.0078 2472 RemoteAccess (7e699ff5f59b5d9de5390e3c34c67cf5) C:\WINDOWS\System32\mprdim.dll
20:45:16.0250 2472 RemoteAccess - ok
20:45:16.0328 2472 RemoteRegistry (5b19b557b0c188210a56a6b699d90b8f) C:\WINDOWS\system32\regsvc.dll
20:45:16.0500 2472 RemoteRegistry - ok
20:45:16.0546 2472 RpcLocator (aaed593f84afa419bbae8572af87cf6a) C:\WINDOWS\system32\locator.exe
20:45:16.0703 2472 RpcLocator - ok
20:45:16.0750 2472 RpcSs (6b27a5c03dfb94b4245739065431322c) C:\WINDOWS\system32\rpcss.dll
20:45:16.0781 2472 RpcSs - ok
20:45:16.0812 2472 RSVP (471b3f9741d762abe75e9deea4787e47) C:\WINDOWS\system32\rsvp.exe
20:45:16.0984 2472 RSVP - ok
20:45:17.0015 2472 SamSs (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
20:45:17.0171 2472 SamSs - ok
20:45:17.0265 2472 SavRoam (735debf79a6da44d56542e12edf51b75) C:\Program Files\Symantec AntiVirus\SavRoam.exe
20:45:17.0281 2472 SavRoam - ok
20:45:17.0343 2472 SAVRT (e768eff5753906272e375282d7a511e0) C:\Program Files\Symantec AntiVirus\savrt.sys
20:45:17.0375 2472 SAVRT - ok
20:45:17.0390 2472 SAVRTPEL (d9d45ad65063e8966acafb1f574c8617) C:\Program Files\Symantec AntiVirus\Savrtpel.sys
20:45:17.0406 2472 SAVRTPEL - ok
20:45:17.0437 2472 SCardSvr (86d007e7a654b9a71d1d7d856b104353) C:\WINDOWS\System32\SCardSvr.exe
20:45:17.0609 2472 SCardSvr - ok
20:45:17.0656 2472 Schedule (0a9a7365a1ca4319aa7c1d6cd8e4eafa) C:\WINDOWS\system32\schedsvc.dll
20:45:17.0828 2472 Schedule - ok
20:45:17.0890 2472 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
20:45:18.0046 2472 Secdrv - ok
20:45:18.0109 2472 seclogon (cbe612e2bb6a10e3563336191eda1250) C:\WINDOWS\System32\seclogon.dll
20:45:18.0265 2472 seclogon - ok
20:45:18.0312 2472 SENS (7fdd5d0684eca8c1f68b4d99d124dcd0) C:\WINDOWS\system32\sens.dll
20:45:18.0500 2472 SENS - ok
20:45:18.0531 2472 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
20:45:18.0703 2472 serenum - ok
20:45:18.0734 2472 Serial (cca207a8896d4c6a0c9ce29a4ae411a7) C:\WINDOWS\system32\DRIVERS\serial.sys
20:45:18.0890 2472 Serial - ok
20:45:18.0937 2472 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
20:45:19.0093 2472 Sfloppy - ok
20:45:19.0171 2472 SharedAccess (83f41d0d89645d7235c051ab1d9523ac) C:\WINDOWS\System32\ipnathlp.dll
20:45:19.0328 2472 SharedAccess - ok
20:45:19.0390 2472 ShellHWDetection (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll
20:45:19.0406 2472 ShellHWDetection - ok
20:45:19.0421 2472 Simbad - ok
20:45:19.0484 2472 smwdm (fa3368a7039f5abaa4b933703ac34763) C:\WINDOWS\system32\drivers\smwdm.sys
20:45:19.0546 2472 smwdm - ok
20:45:19.0625 2472 SNDSrvc (092eac5e31bc10a7ab47196ea2a2a809) C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
20:45:19.0640 2472 SNDSrvc - ok
20:45:19.0656 2472 Sparrow - ok
20:45:19.0703 2472 SPBBCDrv (60053e9c1fc4f6887c296c19cb825244) C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCDrv.sys
20:45:19.0718 2472 SPBBCDrv - ok
20:45:19.0828 2472 SPBBCSvc (8a09ab7a1fd856acc469bd0cd4e98351) C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
20:45:19.0890 2472 SPBBCSvc - ok
20:45:20.0000 2472 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
20:45:20.0171 2472 splitter - ok
20:45:20.0218 2472 Spooler (60784f891563fb1b767f70117fc2428f) C:\WINDOWS\system32\spoolsv.exe
20:45:20.0234 2472 Spooler - ok
20:45:20.0281 2472 sr (76bb022c2fb6902fd5bdd4f78fc13a5d) C:\WINDOWS\system32\DRIVERS\sr.sys
20:45:20.0437 2472 sr - ok
20:45:20.0484 2472 srservice (3805df0ac4296a34ba4bf93b346cc378) C:\WINDOWS\system32\srsvc.dll
20:45:20.0640 2472 srservice - ok
20:45:20.0687 2472 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
20:45:20.0734 2472 Srv - ok
20:45:20.0796 2472 ssadbus (64e44acd8c238fcbbb78f0ba4bdc4b05) C:\WINDOWS\system32\DRIVERS\ssadbus.sys
20:45:20.0843 2472 ssadbus - ok
20:45:20.0875 2472 ssadmdfl (bb2c84a15c765da89fd832b0e73f26ce) C:\WINDOWS\system32\DRIVERS\ssadmdfl.sys
20:45:20.0921 2472 ssadmdfl - ok
20:45:20.0953 2472 ssadmdm (6d0d132ddc6f43eda00dced6d8b1ca31) C:\WINDOWS\system32\DRIVERS\ssadmdm.sys
20:45:21.0000 2472 ssadmdm - ok
20:45:21.0015 2472 ssadserd (1a5a397bc459f346ab56492b61ef79f6) C:\WINDOWS\system32\DRIVERS\ssadserd.sys
20:45:21.0062 2472 ssadserd - ok
20:45:21.0109 2472 SSDPSRV (0a5679b3714edab99e357057ee88fca6) C:\WINDOWS\System32\ssdpsrv.dll
20:45:21.0265 2472 SSDPSRV - ok
20:45:21.0312 2472 stisvc (8bad69cbac032d4bbacfce0306174c30) C:\WINDOWS\system32\wiaservc.dll
20:45:21.0500 2472 stisvc - ok
20:45:21.0546 2472 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
20:45:21.0703 2472 swenum - ok
20:45:21.0750 2472 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
20:45:21.0921 2472 swmidi - ok
20:45:21.0937 2472 SwPrv - ok
20:45:22.0140 2472 Symantec AntiVirus (26b3e57f33d3f6fe7e88beac82aeb12a) C:\Program Files\Symantec AntiVirus\Rtvscan.exe
20:45:22.0218 2472 Symantec AntiVirus - ok
20:45:22.0328 2472 symc810 - ok
20:45:22.0343 2472 symc8xx - ok
20:45:22.0390 2472 SymEvent (c5eafb6a8c73fb26b73ee613c1a5aef6) C:\WINDOWS\system32\Drivers\SYMEVENT.SYS
20:45:22.0406 2472 SymEvent - ok
20:45:22.0437 2472 SYMREDRV (4ed314756eb2811a9d4226ed4385d35c) C:\WINDOWS\System32\Drivers\SYMREDRV.SYS
20:45:22.0453 2472 SYMREDRV - ok
20:45:22.0500 2472 SYMTDI (4aed788390802b1500e6b05127af3a2e) C:\WINDOWS\System32\Drivers\SYMTDI.SYS
20:45:22.0515 2472 SYMTDI - ok
20:45:22.0531 2472 sym_hi - ok
20:45:22.0531 2472 sym_u3 - ok
20:45:22.0593 2472 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
20:45:22.0750 2472 sysaudio - ok
20:45:22.0781 2472 SysmonLog (c7abbc59b43274b1109df6b24d617051) C:\WINDOWS\system32\smlogsvc.exe
20:45:22.0953 2472 SysmonLog - ok
20:45:23.0015 2472 TapiSrv (3cb78c17bb664637787c9a1c98f79c38) C:\WINDOWS\System32\tapisrv.dll
20:45:23.0187 2472 TapiSrv - ok
20:45:23.0265 2472 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
20:45:23.0328 2472 Tcpip - ok
20:45:23.0390 2472 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
20:45:23.0531 2472 TDPIPE - ok
20:45:23.0593 2472 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
20:45:23.0734 2472 TDTCP - ok
20:45:23.0765 2472 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
20:45:23.0921 2472 TermDD - ok
20:45:23.0984 2472 TermService (ff3477c03be7201c294c35f684b3479f) C:\WINDOWS\System32\termsrv.dll
20:45:24.0156 2472 TermService - ok
20:45:24.0203 2472 Themes (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll
20:45:24.0234 2472 Themes - ok
20:45:24.0265 2472 TlntSvr (db7205804759ff62c34e3efd8a4cc76a) C:\WINDOWS\system32\tlntsvr.exe
20:45:24.0437 2472 TlntSvr - ok
20:45:24.0437 2472 TosIde - ok
20:45:24.0500 2472 TrkWks (55bca12f7f523d35ca3cb833c725f54e) C:\WINDOWS\system32\trkwks.dll
20:45:24.0656 2472 TrkWks - ok
20:45:24.0703 2472 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
20:45:24.0859 2472 Udfs - ok
20:45:24.0875 2472 ultra - ok
20:45:24.0937 2472 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
20:45:25.0125 2472 Update - ok
20:45:25.0171 2472 upnphost (1ebafeb9a3fbdc41b8d9c7f0f687ad91) C:\WINDOWS\System32\upnphost.dll
20:45:25.0328 2472 upnphost - ok
20:45:25.0359 2472 UPS (05365fb38fca1e98f7a566aaaf5d1815) C:\WINDOWS\System32\ups.exe
20:45:25.0531 2472 UPS - ok
20:45:25.0531 2472 USBAAPL - ok
20:45:25.0578 2472 usbaudio (e919708db44ed8543a7c017953148330) C:\WINDOWS\system32\drivers\usbaudio.sys
20:45:25.0750 2472 usbaudio - ok
20:45:25.0796 2472 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
20:45:25.0953 2472 usbccgp - ok
20:45:26.0000 2472 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
20:45:26.0171 2472 usbehci - ok
20:45:26.0218 2472 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
20:45:26.0390 2472 usbhub - ok
20:45:26.0437 2472 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
20:45:26.0593 2472 usbprint - ok
20:45:26.0640 2472 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
20:45:26.0812 2472 usbscan - ok
20:45:26.0859 2472 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
20:45:27.0015 2472 USBSTOR - ok
20:45:27.0062 2472 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
20:45:27.0234 2472 usbuhci - ok
20:45:27.0265 2472 usb_rndisx (b6cc50279d6cd28e090a5d33244adc9a) C:\WINDOWS\system32\DRIVERS\usb8023x.sys
20:45:27.0421 2472 usb_rndisx - ok
20:45:27.0468 2472 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
20:45:27.0640 2472 VgaSave - ok
20:45:27.0656 2472 ViaIde - ok
20:45:27.0703 2472 VolSnap (4c8fcb5cc53aab716d810740fe59d025) C:\WINDOWS\system32\drivers\VolSnap.sys
20:45:27.0875 2472 VolSnap - ok
20:45:27.0921 2472 VSS (7a9db3a67c333bf0bd42e42b8596854b) C:\WINDOWS\System32\vssvc.exe
20:45:28.0093 2472 VSS - ok
20:45:28.0125 2472 W32Time (54af4b1d5459500ef0937f6d33b1914f) C:\WINDOWS\system32\w32time.dll
20:45:28.0296 2472 W32Time - ok
20:45:28.0343 2472 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
20:45:28.0500 2472 Wanarp - ok
20:45:28.0562 2472 wceusbsh (46a247f6617526afe38b6f12f5512120) C:\WINDOWS\system32\DRIVERS\wceusbsh.sys
20:45:28.0593 2472 wceusbsh - ok
20:45:28.0671 2472 Wdf01000 (fd47474bd21794508af449d9d91af6e6) C:\WINDOWS\system32\DRIVERS\Wdf01000.sys
20:45:28.0703 2472 Wdf01000 - ok
20:45:28.0718 2472 WDICA - ok
20:45:28.0765 2472 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
20:45:28.0921 2472 wdmaud - ok
20:45:28.0984 2472 WebClient (77a354e28153ad2d5e120a5a8687bc06) C:\WINDOWS\System32\webclnt.dll
20:45:29.0156 2472 WebClient - ok
20:45:29.0250 2472 winmgmt (2d0e4ed081963804ccc196a0929275b5) C:\WINDOWS\system32\wbem\WMIsvc.dll
20:45:29.0390 2472 winmgmt - ok
20:45:29.0531 2472 WLSetupSvc (94a85e956a065e23e0010a6a7826243b) C:\Program Files\Windows Live\installer\WLSetupSvc.exe
20:45:29.0593 2472 WLSetupSvc - ok
20:45:29.0625 2472 WmdmPmSN (c51b4a5c05a5475708e3c81c7765b71d) C:\WINDOWS\system32\MsPMSNSv.dll
20:45:29.0671 2472 WmdmPmSN - ok
20:45:29.0750 2472 Wmi (e76f8807070ed04e7408a86d6d3a6137) C:\WINDOWS\System32\advapi32.dll
20:45:29.0828 2472 Wmi - ok
20:45:29.0890 2472 WmiApSrv (e0673f1106e62a68d2257e376079f821) C:\WINDOWS\system32\wbem\wmiapsrv.exe
20:45:30.0046 2472 WmiApSrv - ok
20:45:30.0156 2472 WMPNetworkSvc (f74e3d9a7fa9556c3bbb14d4e5e63d3b) C:\Program Files\Windows Media Player\WMPNetwk.exe
20:45:30.0250 2472 WMPNetworkSvc - ok
20:45:30.0312 2472 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
20:45:30.0531 2472 WS2IFSL - ok
20:45:30.0578 2472 wscsvc (7c278e6408d1dce642230c0585a854d5) C:\WINDOWS\system32\wscsvc.dll
20:45:30.0750 2472 wscsvc - ok
20:45:30.0781 2472 wuauserv (35321fb577cdc98ce3eb3a3eb9e4610a) C:\WINDOWS\system32\wuauserv.dll
20:45:30.0953 2472 wuauserv - ok
20:45:31.0015 2472 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
20:45:31.0046 2472 WudfPf - ok
20:45:31.0109 2472 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
20:45:31.0125 2472 WudfRd - ok
20:45:31.0187 2472 WudfSvc (05231c04253c5bc30b26cbaae680ed89) C:\WINDOWS\System32\WUDFSvc.dll
20:45:31.0218 2472 WudfSvc - ok
20:45:31.0296 2472 WZCSVC (81dc3f549f44b1c1fff022dec9ecf30b) C:\WINDOWS\System32\wzcsvc.dll
20:45:31.0484 2472 WZCSVC - ok
20:45:31.0500 2472 xmlprov (295d21f14c335b53cb8154e5b1f892b9) C:\WINDOWS\System32\xmlprov.dll
20:45:31.0656 2472 xmlprov - ok
20:45:31.0703 2472 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk0\DR0
20:45:32.0234 2472 \Device\Harddisk0\DR0 - ok
20:45:32.0250 2472 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk1\DR2
20:45:32.0375 2472 \Device\Harddisk1\DR2 - ok
20:45:32.0406 2472 Boot (0x1200) (b0f789357f064f80917319c0d544f4a9) \Device\Harddisk0\DR0\Partition0
20:45:32.0406 2472 \Device\Harddisk0\DR0\Partition0 - ok
20:45:32.0406 2472 Boot (0x1200) (a65e9430c7d7762f269550c3b37d3ce1) \Device\Harddisk1\DR2\Partition0
20:45:32.0421 2472 \Device\Harddisk1\DR2\Partition0 - ok
20:45:32.0421 2472 ============================================================
20:45:32.0421 2472 Scan finished
20:45:32.0421 2472 ============================================================
20:45:32.0437 2452 Detected object count: 1
20:45:32.0437 2452 Actual detected object count: 1
20:45:43.0734 2452 Afc ( UnsignedFile.Multi.Generic ) - skipped by user
20:45:43.0734 2452 Afc ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:46:23.0984 2500 ============================================================
20:46:23.0984 2500 Scan started
20:46:23.0984 2500 Mode: Manual; SigCheck; TDLFS;
20:46:23.0984 2500 ============================================================
20:46:24.0078 2500 Abiosdsk - ok
20:46:24.0093 2500 abp480n5 - ok
20:46:24.0156 2500 ACPI (8fd99680a539792a30e97944fdaecf17) C:\WINDOWS\system32\DRIVERS\ACPI.sys
20:46:24.0328 2500 ACPI - ok
20:46:24.0359 2500 ACPIEC (9859c0f6936e723e4892d7141b1327d5) C:\WINDOWS\system32\drivers\ACPIEC.sys
20:46:24.0562 2500 ACPIEC - ok
20:46:24.0656 2500 AdobeFlashPlayerUpdateSvc (459ac130c6ab892b1cd5d7544626efc5) C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
20:46:24.0671 2500 AdobeFlashPlayerUpdateSvc - ok
20:46:24.0687 2500 adpu160m - ok
20:46:24.0718 2500 aeaudio (11c04b17ed2abbb4833694bcd644ac90) C:\WINDOWS\system32\drivers\aeaudio.sys
20:46:24.0765 2500 aeaudio - ok
20:46:24.0796 2500 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
20:46:24.0953 2500 aec - ok
20:46:25.0015 2500 Afc (a7b8a3a79d35215d798a300df49ed23f) C:\WINDOWS\system32\drivers\Afc.sys
20:46:25.0031 2500 Afc ( UnsignedFile.Multi.Generic ) - warning
20:46:25.0031 2500 Afc - detected UnsignedFile.Multi.Generic (1)
20:46:25.0093 2500 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
20:46:25.0125 2500 AFD - ok
20:46:25.0140 2500 Aha154x - ok
20:46:25.0156 2500 aic78u2 - ok
20:46:25.0171 2500 aic78xx - ok
20:46:25.0218 2500 Alerter (a9a3daa780ca6c9671a19d52456705b4) C:\WINDOWS\system32\alrsvc.dll
20:46:25.0375 2500 Alerter - ok
20:46:25.0406 2500 ALG (8c515081584a38aa007909cd02020b3d) C:\WINDOWS\System32\alg.exe
20:46:25.0562 2500 ALG - ok
20:46:25.0578 2500 AliIde - ok
20:46:25.0593 2500 amsint - ok
20:46:25.0640 2500 androidusb (dd8d9c597af7cd2f6b70a3d6a4a1acea) C:\WINDOWS\system32\Drivers\ssadadb.sys
20:46:25.0687 2500 androidusb - ok
20:46:25.0734 2500 AppMgmt (d8849f77c0b66226335a59d26cb4edc6) C:\WINDOWS\System32\appmgmts.dll
20:46:25.0890 2500 AppMgmt - ok
20:46:25.0906 2500 asc - ok
20:46:25.0921 2500 asc3350p - ok
20:46:25.0937 2500 asc3550 - ok
20:46:26.0015 2500 aspnet_state (0e5e4957549056e2bf2c49f4f6b601ad) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
20:46:26.0031 2500 aspnet_state - ok
20:46:26.0062 2500 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
20:46:26.0234 2500 AsyncMac - ok
20:46:26.0281 2500 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
20:46:26.0421 2500 atapi - ok
20:46:26.0437 2500 Atdisk - ok
20:46:26.0484 2500 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
20:46:26.0640 2500 Atmarpc - ok
20:46:26.0687 2500 AudioSrv (def7a7882bec100fe0b2ce2549188f9d) C:\WINDOWS\System32\audiosrv.dll
20:46:26.0859 2500 AudioSrv - ok
20:46:26.0906 2500 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
20:46:27.0140 2500 audstub - ok
20:46:27.0187 2500 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
20:46:27.0390 2500 Beep - ok
20:46:27.0453 2500 BITS (574738f61fca2935f5265dc4e5691314) C:\WINDOWS\system32\qmgr.dll
20:46:27.0625 2500 BITS - ok
20:46:27.0718 2500 Bonjour Service (db5bea73edaf19ac68b2c0fad0f92b1a) C:\Program Files\Bonjour\mDNSResponder.exe
20:46:27.0750 2500 Bonjour Service - ok
20:46:27.0796 2500 Browser (a06ce3399d16db864f55faeb1f1927a9) C:\WINDOWS\System32\browser.dll
20:46:27.0953 2500 Browser - ok
20:46:28.0093 2500 catchme - ok
20:46:28.0140 2500 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
20:46:28.0359 2500 cbidf2k - ok
20:46:28.0437 2500 ccEvtMgr (e403a2d0f451500ff12638c19cffc87c) C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
20:46:28.0453 2500 ccEvtMgr - ok
20:46:28.0484 2500 ccSetMgr (64ca18128973124df92d516d50c03aef) C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
20:46:28.0500 2500 ccSetMgr - ok
20:46:28.0515 2500 cd20xrnt - ok
20:46:28.0562 2500 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
20:46:28.0750 2500 Cdaudio - ok
20:46:28.0796 2500 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
20:46:28.0953 2500 Cdfs - ok
20:46:29.0000 2500 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
20:46:29.0171 2500 Cdrom - ok
20:46:29.0187 2500 Changer - ok
20:46:29.0218 2500 CiSvc (1cfe720eb8d93a7158a4ebc3ab178bde) C:\WINDOWS\system32\cisvc.exe
20:46:29.0406 2500 CiSvc - ok
20:46:29.0453 2500 ClipSrv (34cbe729f38138217f9c80212a2a0c82) C:\WINDOWS\system32\clipsrv.exe
20:46:29.0609 2500 ClipSrv - ok
20:46:29.0687 2500 clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
20:46:29.0703 2500 clr_optimization_v2.0.50727_32 - ok
20:46:29.0718 2500 CmdIde - ok
20:46:29.0734 2500 COMSysApp - ok
20:46:29.0750 2500 Cpqarray - ok
20:46:29.0781 2500 CryptSvc (3d4e199942e29207970e04315d02ad3b) C:\WINDOWS\System32\cryptsvc.dll
20:46:29.0953 2500 CryptSvc - ok
20:46:29.0968 2500 dac2w2k - ok
20:46:29.0968 2500 dac960nt - ok
20:46:30.0046 2500 DcomLaunch (6b27a5c03dfb94b4245739065431322c) C:\WINDOWS\system32\rpcss.dll
20:46:30.0078 2500 DcomLaunch - ok
20:46:30.0140 2500 DefWatch (213153e1ee098feef56098536b2a6dd7) C:\Program Files\Symantec AntiVirus\DefWatch.exe
20:46:30.0156 2500 DefWatch - ok
20:46:30.0203 2500 Dhcp (5e38d7684a49cacfb752b046357e0589) C:\WINDOWS\System32\dhcpcsvc.dll
20:46:30.0359 2500 Dhcp - ok
20:46:30.0390 2500 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
20:46:30.0546 2500 Disk - ok
20:46:30.0562 2500 dmadmin - ok
20:46:30.0640 2500 dmboot (d992fe1274bde0f84ad826acae022a41) C:\WINDOWS\system32\drivers\dmboot.sys
20:46:30.0812 2500 dmboot - ok
20:46:30.0828 2500 dmio (7c824cf7bbde77d95c08005717a95f6f) C:\WINDOWS\system32\drivers\dmio.sys
20:46:31.0000 2500 dmio - ok
20:46:31.0031 2500 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
20:46:31.0234 2500 dmload - ok
20:46:31.0281 2500 dmserver (57edec2e5f59f0335e92f35184bc8631) C:\WINDOWS\System32\dmserver.dll
20:46:31.0453 2500 dmserver - ok
20:46:31.0484 2500 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
20:46:31.0640 2500 DMusic - ok
20:46:31.0703 2500 Dnscache (5f7e24fa9eab896051ffb87f840730d2) C:\WINDOWS\System32\dnsrslvr.dll
20:46:31.0734 2500 Dnscache - ok
20:46:31.0796 2500 Dot3svc (0f0f6e687e5e15579ef4da8dd6945814) C:\WINDOWS\System32\dot3svc.dll
20:46:31.0937 2500 Dot3svc - ok
20:46:31.0937 2500 dpti2o - ok
20:46:31.0984 2500 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
20:46:32.0156 2500 drmkaud - ok
20:46:32.0218 2500 E1000 (de5d0ccce14b774d4de68e44c0d6d980) C:\WINDOWS\system32\DRIVERS\e1000325.sys
20:46:32.0265 2500 E1000 - ok
20:46:32.0312 2500 EapHost (2187855a7703adef0cef9ee4285182cc) C:\WINDOWS\System32\eapsvc.dll
20:46:32.0468 2500 EapHost - ok
20:46:32.0546 2500 eeCtrl (fce87ba643d5e9a8b6e0378508d1b22d) C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys
20:46:32.0578 2500 eeCtrl - ok
20:46:32.0609 2500 EraserUtilRebootDrv (115dc729465a8c386615207f28875255) C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
20:46:32.0625 2500 EraserUtilRebootDrv - ok
20:46:32.0656 2500 ERSvc (bc93b4a066477954555966d77fec9ecb) C:\WINDOWS\System32\ersvc.dll
20:46:32.0812 2500 ERSvc - ok
20:46:32.0875 2500 Eventlog (65df52f5b8b6e9bbd183505225c37315) C:\WINDOWS\system32\services.exe
20:46:32.0890 2500 Eventlog - ok
20:46:32.0953 2500 EventSystem (d4991d98f2db73c60d042f1aef79efae) C:\WINDOWS\system32\es.dll
20:46:32.0984 2500 EventSystem - ok
20:46:33.0015 2500 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
20:46:33.0171 2500 Fastfat - ok
20:46:33.0234 2500 FastUserSwitchingCompatibility (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll
20:46:33.0250 2500 FastUserSwitchingCompatibility - ok
20:46:33.0296 2500 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
20:46:33.0453 2500 Fdc - ok
20:46:33.0484 2500 Fips (d45926117eb9fa946a6af572fbe1caa3) C:\WINDOWS\system32\drivers\Fips.sys
20:46:33.0625 2500 Fips - ok
20:46:33.0640 2500 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
20:46:33.0796 2500 Flpydisk - ok
20:46:33.0859 2500 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
20:46:34.0031 2500 FltMgr - ok
20:46:34.0125 2500 FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
20:46:34.0140 2500 FontCache3.0.0.0 - ok
20:46:34.0171 2500 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
20:46:34.0390 2500 Fs_Rec - ok
20:46:34.0421 2500 Ftdisk (6ac26732762483366c3969c9e4d2259d) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
20:46:34.0609 2500 Ftdisk - ok
20:46:34.0656 2500 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
20:46:34.0812 2500 Gpc - ok
20:46:34.0890 2500 helpsvc (4fcca060dfe0c51a09dd5c3843888bcd) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
20:46:35.0046 2500 helpsvc - ok
20:46:35.0062 2500 HidServ - ok
20:46:35.0109 2500 hidusb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
20:46:35.0265 2500 hidusb - ok
20:46:35.0296 2500 hkmsvc (8878bd685e490239777bfe51320b88e9) C:\WINDOWS\System32\kmsvc.dll
20:46:35.0453 2500 hkmsvc - ok
20:46:35.0468 2500 hpn - ok
20:46:35.0515 2500 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
20:46:35.0562 2500 HTTP - ok
20:46:35.0609 2500 HTTPFilter (6100a808600f44d999cebdef8841c7a3) C:\WINDOWS\System32\w3ssl.dll
20:46:35.0765 2500 HTTPFilter - ok
20:46:35.0765 2500 i2omgmt - ok
20:46:35.0781 2500 i2omp - ok
20:46:35.0828 2500 i8042prt (4a0b06aa8943c1e332520f7440c0aa30) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
20:46:35.0984 2500 i8042prt - ok
20:46:36.0062 2500 ialm (240d0f5d7caafd87bd8d801a97bbe041) C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
20:46:36.0140 2500 ialm - ok
20:46:36.0296 2500 idsvc (c01ac32dc5c03076cfb852cb5da5229c) c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
20:46:36.0343 2500 idsvc - ok
20:46:36.0421 2500 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
20:46:36.0593 2500 Imapi - ok
20:46:36.0640 2500 ImapiService (30deaf54a9755bb8546168cfe8a6b5e1) C:\WINDOWS\system32\imapi.exe
20:46:36.0812 2500 ImapiService - ok
20:46:36.0828 2500 ini910u - ok
20:46:36.0875 2500 IntelIde (b5466a9250342a7aa0cd1fba13420678) C:\WINDOWS\system32\DRIVERS\intelide.sys
20:46:37.0046 2500 IntelIde - ok
20:46:37.0093 2500 intelppm (8c953733d8f36eb2133f5bb58808b66b) C:\WINDOWS\system32\DRIVERS\intelppm.sys
20:46:37.0234 2500 intelppm - ok
20:46:37.0265 2500 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
20:46:37.0437 2500 Ip6Fw - ok
20:46:37.0500 2500 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
20:46:37.0671 2500 IpFilterDriver - ok
20:46:37.0687 2500 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
20:46:37.0843 2500 IpInIp - ok
20:46:37.0875 2500 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
20:46:38.0031 2500 IpNat - ok
20:46:38.0062 2500 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
20:46:38.0218 2500 IPSec - ok
20:46:38.0265 2500 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
20:46:38.0421 2500 IRENUM - ok
20:46:38.0468 2500 isapnp (05a299ec56e52649b1cf2fc52d20f2d7) C:\WINDOWS\system32\DRIVERS\isapnp.sys
20:46:38.0625 2500 isapnp - ok
20:46:38.0656 2500 Kbdclass (463c1ec80cd17420a542b7f36a36f128) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
20:46:38.0812 2500 Kbdclass - ok
20:46:38.0843 2500 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
20:46:39.0015 2500 kmixer - ok
20:46:39.0031 2500 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
20:46:39.0078 2500 KSecDD - ok
20:46:39.0125 2500 lanmanserver (3a7c3cbe5d96b8ae96ce81f0b22fb527) C:\WINDOWS\System32\srvsvc.dll
20:46:39.0156 2500 lanmanserver - ok
20:46:39.0218 2500 lanmanworkstation (a8888a5327621856c0cec4e385f69309) C:\WINDOWS\System32\wkssvc.dll
20:46:39.0265 2500 lanmanworkstation - ok
20:46:39.0265 2500 lbrtfdc - ok
20:46:39.0500 2500 LiveUpdate (010fd2b41e75a98e3a4d23f44405f5c9) C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
20:46:39.0640 2500 LiveUpdate - ok
20:46:39.0765 2500 LmHosts (a7db739ae99a796d91580147e919cc59) C:\WINDOWS\System32\lmhsvc.dll
20:46:39.0921 2500 LmHosts - ok
20:46:39.0968 2500 Messenger (986b1ff5814366d71e0ac5755c88f2d3) C:\WINDOWS\System32\msgsvc.dll
20:46:40.0109 2500 Messenger - ok
20:46:40.0218 2500 Microsoft Office Groove Audit Service (123271bd5237ab991dc5c21fdf8835eb) C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
20:46:40.0234 2500 Microsoft Office Groove Audit Service - ok
20:46:40.0281 2500 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
20:46:40.0484 2500 mnmdd - ok
20:46:40.0531 2500 mnmsrvc (d18f1f0c101d06a1c1adf26eed16fcdd) C:\WINDOWS\system32\mnmsrvc.exe
20:46:40.0671 2500 mnmsrvc - ok
20:46:40.0703 2500 Modem (dfcbad3cec1c5f964962ae10e0bcc8e1) C:\WINDOWS\system32\drivers\Modem.sys
20:46:40.0859 2500 Modem - ok
20:46:40.0921 2500 Mouclass (35c9e97194c8cfb8430125f8dbc34d04) C:\WINDOWS\system32\DRIVERS\mouclass.sys
20:46:41.0078 2500 Mouclass - ok
20:46:41.0125 2500 mouhid (b1c303e17fb9d46e87a98e4ba6769685) C:\WINDOWS\system32\DRIVERS\mouhid.sys
20:46:41.0328 2500 mouhid - ok
20:46:41.0359 2500 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
20:46:41.0515 2500 MountMgr - ok
20:46:41.0531 2500 mraid35x - ok
20:46:41.0562 2500 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
20:46:41.0718 2500 MRxDAV - ok
20:46:41.0781 2500 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
20:46:41.0828 2500 MRxSmb - ok
20:46:41.0859 2500 MSDTC (a137f1470499a205abbb9aafb3b6f2b1) C:\WINDOWS\system32\msdtc.exe
20:46:42.0015 2500 MSDTC - ok
20:46:42.0078 2500 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
20:46:42.0250 2500 Msfs - ok
20:46:42.0250 2500 MSIServer - ok
20:46:42.0281 2500 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
20:46:42.0437 2500 MSKSSRV - ok
20:46:42.0468 2500 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
20:46:42.0609 2500 MSPCLOCK - ok
20:46:42.0671 2500 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
20:46:42.0828 2500 MSPQM - ok
20:46:42.0875 2500 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
20:46:43.0031 2500 mssmbios - ok
20:46:43.0078 2500 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
20:46:43.0093 2500 Mup - ok
20:46:43.0140 2500 napagent (0102140028fad045756796e1c685d695) C:\WINDOWS\System32\qagentrt.dll
20:46:43.0312 2500 napagent - ok
20:46:43.0421 2500 NAVENG (f11033730b38260b6892e837c457fb4b) C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20120604.002\naveng.sys
20:46:43.0437 2500 NAVENG - ok
20:46:43.0531 2500 NAVEX15 (4e4e7c0259d3bb97de24a636c0e06aba) C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20120604.002\navex15.sys
20:46:43.0625 2500 NAVEX15 - ok
20:46:43.0765 2500 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
20:46:43.0921 2500 NDIS - ok
20:46:43.0953 2500 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
20:46:44.0000 2500 NdisTapi - ok
20:46:44.0046 2500 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
20:46:44.0218 2500 Ndisuio - ok
20:46:44.0250 2500 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
20:46:44.0437 2500 NdisWan - ok
20:46:44.0484 2500 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
20:46:44.0515 2500 NDProxy - ok
20:46:44.0687 2500 Nero BackItUp Scheduler 3 (6d4028d458eaaa1782099750790dc8c9) C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
20:46:44.0734 2500 Nero BackItUp Scheduler 3 - ok
20:46:44.0781 2500 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
20:46:44.0937 2500 NetBIOS - ok
20:46:44.0968 2500 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
20:46:45.0125 2500 NetBT - ok
20:46:45.0187 2500 NetDDE (b857ba82860d7ff85ae29b095645563b) C:\WINDOWS\system32\netdde.exe
20:46:45.0328 2500 NetDDE - ok
20:46:45.0343 2500 NetDDEdsdm (b857ba82860d7ff85ae29b095645563b) C:\WINDOWS\system32\netdde.exe
20:46:45.0500 2500 NetDDEdsdm - ok
20:46:45.0515 2500 Netlogon (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
20:46:45.0656 2500 Netlogon - ok
20:46:45.0687 2500 Netman (13e67b55b3abd7bf3fe7aae5a0f9a9de) C:\WINDOWS\System32\netman.dll
20:46:45.0859 2500 Netman - ok
20:46:46.0000 2500 NetTcpPortSharing (d34612c5d02d026535b3095d620626ae) c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
20:46:46.0015 2500 NetTcpPortSharing - ok
20:46:46.0062 2500 Nla (943337d786a56729263071623bbb9de5) C:\WINDOWS\System32\mswsock.dll
20:46:46.0109 2500 Nla - ok
20:46:46.0234 2500 NMIndexingService (ff4d73b16ea3a32d34ceb3a7bc3c3773) C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
20:46:46.0265 2500 NMIndexingService - ok
20:46:46.0296 2500 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
20:46:46.0468 2500 Npfs - ok
20:46:46.0515 2500 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
20:46:46.0687 2500 Ntfs - ok
20:46:46.0718 2500 NtLmSsp (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
20:46:46.0875 2500 NtLmSsp - ok
20:46:46.0937 2500 NtmsSvc (156f64a3345bd23c600655fb4d10bc08) C:\WINDOWS\system32\ntmssvc.dll
20:46:47.0093 2500 NtmsSvc - ok
20:46:47.0156 2500 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
20:46:47.0359 2500 Null - ok
20:46:47.0406 2500 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
20:46:47.0609 2500 NwlnkFlt - ok
20:46:47.0625 2500 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
20:46:47.0796 2500 NwlnkFwd - ok
20:46:47.0968 2500 odserv (785f487a64950f3cb8e9f16253ba3b7b) C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
20:46:48.0000 2500 odserv - ok
20:46:48.0046 2500 ose (5a432a042dae460abe7199b758e8606c) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
20:46:48.0062 2500 ose - ok
20:46:48.0125 2500 Parport (5575faf8f97ce5e713d108c2a58d7c7c) C:\WINDOWS\system32\DRIVERS\parport.sys
20:46:48.0265 2500 Parport - ok
20:46:48.0281 2500 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
20:46:48.0437 2500 PartMgr - ok
20:46:48.0468 2500 ParVdm (70e98b3fd8e963a6a46a2e6247e0bea1) C:\WINDOWS\system32\drivers\ParVdm.sys
20:46:48.0656 2500 ParVdm - ok
20:46:48.0687 2500 PCI (a219903ccf74233761d92bef471a07b1) C:\WINDOWS\system32\DRIVERS\pci.sys
20:46:48.0843 2500 PCI - ok
20:46:48.0859 2500 PCIDump - ok
20:46:48.0906 2500 PCIIde (ccf5f451bb1a5a2a522a76e670000ff0) C:\WINDOWS\system32\drivers\PCIIde.sys
20:46:49.0109 2500 PCIIde - ok
20:46:49.0125 2500 Pcmcia (9e89ef60e9ee05e3f2eef2da7397f1c1) C:\WINDOWS\system32\drivers\Pcmcia.sys
20:46:49.0296 2500 Pcmcia - ok
20:46:49.0296 2500 PDCOMP - ok
20:46:49.0312 2500 PDFRAME - ok
20:46:49.0328 2500 PDRELI - ok
20:46:49.0343 2500 PDRFRAME - ok
20:46:49.0359 2500 perc2 - ok
20:46:49.0375 2500 perc2hib - ok
20:46:49.0453 2500 PlugPlay (65df52f5b8b6e9bbd183505225c37315) C:\WINDOWS\system32\services.exe
20:46:49.0468 2500 PlugPlay - ok
20:46:49.0515 2500 PolicyAgent (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
20:46:49.0656 2500 PolicyAgent - ok
20:46:49.0703 2500 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
20:46:49.0859 2500 PptpMiniport - ok
20:46:49.0859 2500 ProtectedStorage (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
20:46:50.0015 2500 ProtectedStorage - ok
20:46:50.0031 2500 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
20:46:50.0187 2500 PSched - ok
20:46:50.0234 2500 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
20:46:50.0453 2500 Ptilink - ok
20:46:50.0500 2500 PxHelp20 (e42e3433dbb4cffe8fdd91eab29aea8e) C:\WINDOWS\system32\Drivers\PxHelp20.sys
20:46:50.0515 2500 PxHelp20 - ok
20:46:50.0515 2500 ql1080 - ok
20:46:50.0531 2500 Ql10wnt - ok
20:46:50.0546 2500 ql12160 - ok
20:46:50.0562 2500 ql1240 - ok
20:46:50.0578 2500 ql1280 - ok
20:46:50.0625 2500 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
20:46:50.0796 2500 RasAcd - ok
20:46:50.0843 2500 RasAuto (ad188be7bdf94e8df4ca0a55c00a5073) C:\WINDOWS\System32\rasauto.dll
20:46:51.0000 2500 RasAuto - ok
20:46:51.0031 2500 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
20:46:51.0187 2500 Rasl2tp - ok
20:46:51.0250 2500 RasMan (76a9a3cbeadd68cc57cda5e1d7448235) C:\WINDOWS\System32\rasmans.dll
20:46:51.0406 2500 RasMan - ok
20:46:51.0437 2500 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
20:46:51.0593 2500 RasPppoe - ok
20:46:51.0625 2500 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
20:46:51.0828 2500 Raspti - ok
20:46:51.0890 2500 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
20:46:52.0046 2500 Rdbss - ok
20:46:52.0078 2500 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
20:46:52.0265 2500 RDPCDD - ok
20:46:52.0312 2500 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
20:46:52.0484 2500 rdpdr - ok
20:46:52.0531 2500 RDPWD (5b3055daa788bd688594d2f5981f2a83) C:\WINDOWS\system32\drivers\RDPWD.sys
20:46:52.0578 2500 RDPWD - ok
20:46:52.0625 2500 RDSessMgr (3c37bf86641bda977c3bf8a840f3b7fa) C:\WINDOWS\system32\sessmgr.exe
20:46:52.0796 2500 RDSessMgr - ok
20:46:52.0828 2500 redbook (f828dd7e1419b6653894a8f97a0094c5) C:\WINDOWS\system32\DRIVERS\redbook.sys
20:46:52.0984 2500 redbook - ok
20:46:53.0031 2500 RemoteAccess (7e699ff5f59b5d9de5390e3c34c67cf5) C:\WINDOWS\System32\mprdim.dll
20:46:53.0187 2500 RemoteAccess - ok
20:46:53.0250 2500 RemoteRegistry (5b19b557b0c188210a56a6b699d90b8f) C:\WINDOWS\system32\regsvc.dll
20:46:53.0390 2500 RemoteRegistry - ok
20:46:53.0437 2500 RpcLocator (aaed593f84afa419bbae8572af87cf6a) C:\WINDOWS\system32\locator.exe
20:46:53.0593 2500 RpcLocator - ok
20:46:53.0640 2500 RpcSs (6b27a5c03dfb94b4245739065431322c) C:\WINDOWS\system32\rpcss.dll
20:46:53.0671 2500 RpcSs - ok
20:46:53.0703 2500 RSVP (471b3f9741d762abe75e9deea4787e47) C:\WINDOWS\system32\rsvp.exe
20:46:53.0890 2500 RSVP - ok
20:46:53.0937 2500 SamSs (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
20:46:54.0078 2500 SamSs - ok
20:46:54.0171 2500 SavRoam (735debf79a6da44d56542e12edf51b75) C:\Program Files\Symantec AntiVirus\SavRoam.exe
20:46:54.0187 2500 SavRoam - ok
20:46:54.0250 2500 SAVRT (e768eff5753906272e375282d7a511e0) C:\Program Files\Symantec AntiVirus\savrt.sys
20:46:54.0265 2500 SAVRT - ok
20:46:54.0281 2500 SAVRTPEL (d9d45ad65063e8966acafb1f574c8617) C:\Program Files\Symantec AntiVirus\Savrtpel.sys
20:46:54.0296 2500 SAVRTPEL - ok
20:46:54.0328 2500 SCardSvr (86d007e7a654b9a71d1d7d856b104353) C:\WINDOWS\System32\SCardSvr.exe
20:46:54.0515 2500 SCardSvr - ok
20:46:54.0562 2500 Schedule (0a9a7365a1ca4319aa7c1d6cd8e4eafa) C:\WINDOWS\system32\schedsvc.dll
20:46:54.0718 2500 Schedule - ok
20:46:54.0796 2500 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
20:46:54.0937 2500 Secdrv - ok
20:46:55.0000 2500 seclogon (cbe612e2bb6a10e3563336191eda1250) C:\WINDOWS\System32\seclogon.dll
20:46:55.0140 2500 seclogon - ok
20:46:55.0203 2500 SENS (7fdd5d0684eca8c1f68b4d99d124dcd0) C:\WINDOWS\system32\sens.dll
20:46:55.0359 2500 SENS - ok
20:46:55.0406 2500 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
20:46:55.0578 2500 serenum - ok
20:46:55.0609 2500 Serial (cca207a8896d4c6a0c9ce29a4ae411a7) C:\WINDOWS\system32\DRIVERS\serial.sys
20:46:55.0781 2500 Serial - ok
20:46:55.0828 2500 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
20:46:55.0984 2500 Sfloppy - ok
20:46:56.0062 2500 SharedAccess (83f41d0d89645d7235c051ab1d9523ac) C:\WINDOWS\System32\ipnathlp.dll
20:46:56.0218 2500 SharedAccess - ok
20:46:56.0265 2500 ShellHWDetection (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll
20:46:56.0281 2500 ShellHWDetection - ok
20:46:56.0296 2500 Simbad - ok
20:46:56.0359 2500 smwdm (fa3368a7039f5abaa4b933703ac34763) C:\WINDOWS\system32\drivers\smwdm.sys
20:46:56.0421 2500 smwdm - ok
20:46:56.0500 2500 SNDSrvc (092eac5e31bc10a7ab47196ea2a2a809) C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
20:46:56.0515 2500 SNDSrvc - ok
20:46:56.0531 2500 Sparrow - ok
20:46:56.0578 2500 SPBBCDrv (60053e9c1fc4f6887c296c19cb825244) C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCDrv.sys
20:46:56.0593 2500 SPBBCDrv - ok
20:46:56.0703 2500 SPBBCSvc (8a09ab7a1fd856acc469bd0cd4e98351) C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
20:46:56.0765 2500 SPBBCSvc - ok
20:46:56.0875 2500 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
20:46:57.0031 2500 splitter - ok
20:46:57.0078 2500 Spooler (60784f891563fb1b767f70117fc2428f) C:\WINDOWS\system32\spoolsv.exe
20:46:57.0093 2500 Spooler - ok
20:46:57.0140 2500 sr (76bb022c2fb6902fd5bdd4f78fc13a5d) C:\WINDOWS\system32\DRIVERS\sr.sys
20:46:57.0296 2500 sr - ok
20:46:57.0328 2500 srservice (3805df0ac4296a34ba4bf93b346cc378) C:\WINDOWS\system32\srsvc.dll
20:46:57.0484 2500 srservice - ok
20:46:57.0546 2500 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
20:46:57.0578 2500 Srv - ok
20:46:57.0656 2500 ssadbus (64e44acd8c238fcbbb78f0ba4bdc4b05) C:\WINDOWS\system32\DRIVERS\ssadbus.sys
20:46:57.0687 2500 ssadbus - ok
20:46:57.0734 2500 ssadmdfl (bb2c84a15c765da89fd832b0e73f26ce) C:\WINDOWS\system32\DRIVERS\ssadmdfl.sys
20:46:57.0765 2500 ssadmdfl - ok
20:46:57.0812 2500 ssadmdm (6d0d132ddc6f43eda00dced6d8b1ca31) C:\WINDOWS\system32\DRIVERS\ssadmdm.sys
20:46:57.0843 2500 ssadmdm - ok
20:46:57.0875 2500 ssadserd (1a5a397bc459f346ab56492b61ef79f6) C:\WINDOWS\system32\DRIVERS\ssadserd.sys
20:46:57.0906 2500 ssadserd - ok
20:46:57.0968 2500 SSDPSRV (0a5679b3714edab99e357057ee88fca6) C:\WINDOWS\System32\ssdpsrv.dll
20:46:58.0125 2500 SSDPSRV - ok
20:46:58.0187 2500 stisvc (8bad69cbac032d4bbacfce0306174c30) C:\WINDOWS\system32\wiaservc.dll
20:46:58.0359 2500 stisvc - ok
20:46:58.0406 2500 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
20:46:58.0562 2500 swenum - ok
20:46:58.0609 2500 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
20:46:58.0781 2500 swmidi - ok
20:46:58.0781 2500 SwPrv - ok
20:46:58.0984 2500 Symantec AntiVirus (26b3e57f33d3f6fe7e88beac82aeb12a) C:\Program Files\Symantec AntiVirus\Rtvscan.exe
20:46:59.0093 2500 Symantec AntiVirus - ok
20:46:59.0203 2500 symc810 - ok
20:46:59.0203 2500 symc8xx - ok
20:46:59.0265 2500 SymEvent (c5eafb6a8c73fb26b73ee613c1a5aef6) C:\WINDOWS\system32\Drivers\SYMEVENT.SYS
20:46:59.0281 2500 SymEvent - ok
20:46:59.0328 2500 SYMREDRV (4ed314756eb2811a9d4226ed4385d35c) C:\WINDOWS\System32\Drivers\SYMREDRV.SYS
20:46:59.0328 2500 SYMREDRV - ok
20:46:59.0375 2500 SYMTDI (4aed788390802b1500e6b05127af3a2e) C:\WINDOWS\System32\Drivers\SYMTDI.SYS
20:46:59.0390 2500 SYMTDI - ok
20:46:59.0406 2500 sym_hi - ok
20:46:59.0406 2500 sym_u3 - ok
20:46:59.0468 2500 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
20:46:59.0625 2500 sysaudio - ok
20:46:59.0671 2500 SysmonLog (c7abbc59b43274b1109df6b24d617051) C:\WINDOWS\system32\smlogsvc.exe
20:46:59.0843 2500 SysmonLog - ok
20:46:59.0890 2500 TapiSrv (3cb78c17bb664637787c9a1c98f79c38) C:\WINDOWS\System32\tapisrv.dll
20:47:00.0078 2500 TapiSrv - ok
20:47:00.0140 2500 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
20:47:00.0187 2500 Tcpip - ok
20:47:00.0250 2500 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
20:47:00.0390 2500 TDPIPE - ok
20:47:00.0437 2500 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
20:47:00.0593 2500 TDTCP - ok
20:47:00.0625 2500 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
20:47:00.0781 2500 TermDD - ok
20:47:00.0843 2500 TermService (ff3477c03be7201c294c35f684b3479f) C:\WINDOWS\System32\termsrv.dll
20:47:01.0015 2500 TermService - ok
20:47:01.0062 2500 Themes (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll
20:47:01.0093 2500 Themes - ok
20:47:01.0125 2500 TlntSvr (db7205804759ff62c34e3efd8a4cc76a) C:\WINDOWS\system32\tlntsvr.exe
20:47:01.0296 2500 TlntSvr - ok
20:47:01.0296 2500 TosIde - ok
20:47:01.0515 2500 TrkWks (55bca12f7f523d35ca3cb833c725f54e) C:\WINDOWS\system32\trkwks.dll
20:47:01.0671 2500 TrkWks - ok
20:47:01.0718 2500 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
20:47:01.0875 2500 Udfs - ok
20:47:01.0890 2500 ultra - ok
20:47:01.0953 2500 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
20:47:02.0109 2500 Update - ok
20:47:02.0156 2500 upnphost (1ebafeb9a3fbdc41b8d9c7f0f687ad91) C:\WINDOWS\System32\upnphost.dll
20:47:02.0328 2500 upnphost - ok
20:47:02.0359 2500 UPS (05365fb38fca1e98f7a566aaaf5d1815) C:\WINDOWS\System32\ups.exe
20:47:02.0531 2500 UPS - ok
20:47:02.0546 2500 USBAAPL - ok
20:47:02.0593 2500 usbaudio (e919708db44ed8543a7c017953148330) C:\WINDOWS\system32\drivers\usbaudio.sys
20:47:02.0750 2500 usbaudio - ok
20:47:02.0812 2500 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
20:47:02.0968 2500 usbccgp - ok
20:47:03.0000 2500 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
20:47:03.0171 2500 usbehci - ok
20:47:03.0218 2500 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
20:47:03.0390 2500 usbhub - ok
20:47:03.0437 2500 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
20:47:03.0609 2500 usbprint - ok
20:47:03.0656 2500 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
20:47:03.0812 2500 usbscan - ok
20:47:03.0859 2500 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
20:47:04.0031 2500 USBSTOR - ok
20:47:04.0062 2500 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
20:47:04.0218 2500 usbuhci - ok
20:47:04.0250 2500 usb_rndisx (b6cc50279d6cd28e090a5d33244adc9a) C:\WINDOWS\system32\DRIVERS\usb8023x.sys
20:47:04.0421 2500 usb_rndisx - ok
20:47:04.0484 2500 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
20:47:04.0640 2500 VgaSave - ok
20:47:04.0640 2500 ViaIde - ok
20:47:04.0703 2500 VolSnap (4c8fcb5cc53aab716d810740fe59d025) C:\WINDOWS\system32\drivers\VolSnap.sys
20:47:04.0859 2500 VolSnap - ok
20:47:04.0921 2500 VSS (7a9db3a67c333bf0bd42e42b8596854b) C:\WINDOWS\System32\vssvc.exe
20:47:05.0078 2500 VSS - ok
20:47:05.0125 2500 W32Time (54af4b1d5459500ef0937f6d33b1914f) C:\WINDOWS\system32\w32time.dll
20:47:05.0296 2500 W32Time - ok
20:47:05.0328 2500 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
20:47:05.0484 2500 Wanarp - ok
20:47:05.0546 2500 wceusbsh (46a247f6617526afe38b6f12f5512120) C:\WINDOWS\system32\DRIVERS\wceusbsh.sys
20:47:05.0578 2500 wceusbsh - ok
20:47:05.0656 2500 Wdf01000 (fd47474bd21794508af449d9d91af6e6) C:\WINDOWS\system32\DRIVERS\Wdf01000.sys
20:47:05.0687 2500 Wdf01000 - ok
20:47:05.0703 2500 WDICA - ok
20:47:05.0734 2500 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
20:47:05.0890 2500 wdmaud - ok
20:47:05.0953 2500 WebClient (77a354e28153ad2d5e120a5a8687bc06) C:\WINDOWS\System32\webclnt.dll
20:47:06.0109 2500 WebClient - ok
20:47:06.0218 2500 winmgmt (2d0e4ed081963804ccc196a0929275b5) C:\WINDOWS\system32\wbem\WMIsvc.dll
20:47:06.0359 2500 winmgmt - ok
20:47:06.0500 2500 WLSetupSvc (94a85e956a065e23e0010a6a7826243b) C:\Program Files\Windows Live\installer\WLSetupSvc.exe
20:47:06.0546 2500 WLSetupSvc - ok
20:47:06.0593 2500 WmdmPmSN (c51b4a5c05a5475708e3c81c7765b71d) C:\WINDOWS\system32\MsPMSNSv.dll
20:47:06.0640 2500 WmdmPmSN - ok
20:47:06.0703 2500 Wmi (e76f8807070ed04e7408a86d6d3a6137) C:\WINDOWS\System32\advapi32.dll
20:47:06.0796 2500 Wmi - ok
20:47:06.0843 2500 WmiApSrv (e0673f1106e62a68d2257e376079f821) C:\WINDOWS\system32\wbem\wmiapsrv.exe
20:47:07.0000 2500 WmiApSrv - ok
20:47:07.0093 2500 WMPNetworkSvc (f74e3d9a7fa9556c3bbb14d4e5e63d3b) C:\Program Files\Windows Media Player\WMPNetwk.exe
20:47:07.0203 2500 WMPNetworkSvc - ok
20:47:07.0281 2500 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
20:47:07.0468 2500 WS2IFSL - ok
20:47:07.0531 2500 wscsvc (7c278e6408d1dce642230c0585a854d5) C:\WINDOWS\system32\wscsvc.dll
20:47:07.0687 2500 wscsvc - ok
20:47:07.0734 2500 wuauserv (35321fb577cdc98ce3eb3a3eb9e4610a) C:\WINDOWS\system32\wuauserv.dll
20:47:07.0890 2500 wuauserv - ok
20:47:07.0953 2500 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
20:47:07.0984 2500 WudfPf - ok
20:47:08.0046 2500 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
20:47:08.0078 2500 WudfRd - ok
20:47:08.0140 2500 WudfSvc (05231c04253c5bc30b26cbaae680ed89) C:\WINDOWS\System32\WUDFSvc.dll
20:47:08.0171 2500 WudfSvc - ok
20:47:08.0218 2500 WZCSVC (81dc3f549f44b1c1fff022dec9ecf30b) C:\WINDOWS\System32\wzcsvc.dll
20:47:08.0406 2500 WZCSVC - ok
20:47:08.0437 2500 xmlprov (295d21f14c335b53cb8154e5b1f892b9) C:\WINDOWS\System32\xmlprov.dll
20:47:08.0578 2500 xmlprov - ok
20:47:08.0625 2500 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk0\DR0
20:47:09.0156 2500 \Device\Harddisk0\DR0 - ok
20:47:09.0156 2500 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk1\DR2
20:47:09.0281 2500 \Device\Harddisk1\DR2 - ok
20:47:09.0296 2500 Boot (0x1200) (b0f789357f064f80917319c0d544f4a9) \Device\Harddisk0\DR0\Partition0
20:47:09.0296 2500 \Device\Harddisk0\DR0\Partition0 - ok
20:47:09.0312 2500 Boot (0x1200) (a65e9430c7d7762f269550c3b37d3ce1) \Device\Harddisk1\DR2\Partition0
20:47:09.0312 2500 \Device\Harddisk1\DR2\Partition0 - ok
20:47:09.0312 2500 ============================================================
20:47:09.0312 2500 Scan finished
20:47:09.0312 2500 ============================================================
20:47:09.0328 2652 Detected object count: 1
20:47:09.0328 2652 Actual detected object count: 1
20:47:55.0328 2652 Afc ( UnsignedFile.Multi.Generic ) - skipped by user
20:47:55.0328 2652 Afc ( UnsignedFile.Multi.Generic ) - User select action: Skip
  • 0

#118
rdbadger

rdbadger

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 107 posts
some strange afc file!
  • 0

#119
Render

Render

    Trusted Helper

  • Malware Removal
  • 4,195 posts
This file is legit.

Do the following now:

  • Disable your antivirus and antyspyware software.
  • Go to the Eset Online Scanner website using Internet Explorer.
  • Do the scan according the image:
    Posted Image
  • At the end, check the box "Delete Quarantined files" and click in [FINISH]
  • It will be generated a log in C:\Program Files\EsetOnlineScanner\Log.txt
    Note: If you didn't find the log.txt file in \EsetOnlineScanner\, look on \Program Files\Eset\EsetOnlineScanner\log.txt
  • Post that log.

  • 0

#120
rdbadger

rdbadger

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 107 posts
Ok did as instructed however there was no run options on ly install, then when trying to install another dodgy pop up about payment came up, so aborted, especially when antivrius was off - then ran into a thrid problem -told in screen shots below! BTW this is one of the first times I have replied directly from infected computer!

Attached Thumbnails

  • eest 1.jpg
  • eest 2.jpg
  • eest 3.jpg

  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP