Thank you
I have managed to run some extra programs and have succesfully stoped ping.exe from loading
What i have found is that I have these trojans popping up in Microsoft Security Essentials
trojan:win32/sirefef.AB
trojan:win64/sirefef.p
These are creating an installer in
C:/windows/assembly/gac_32/desktop.ini
C:/windows/assembly/gac_64/desktop.ini
C:/windows/installer/{46146aa2-bd24-d0de-ef95-74d607514c2e}/U/8000000.@
I have attached the OTL and TDSS files.
For some reason it did not create an EXTRA log.
22:58:36.0965 3604 TDSS rootkit removing tool 2.7.36.0 May 21 2012 16:40:16
22:58:38.0398 3604 ============================================================
22:58:38.0398 3604 Current date / time: 2012/06/09 22:58:38.0398
22:58:38.0398 3604 SystemInfo:
22:58:38.0398 3604
22:58:38.0398 3604 OS Version: 6.1.7601 ServicePack: 1.0
22:58:38.0398 3604 Product type: Workstation
22:58:38.0398 3604 ComputerName: JOHNLANI-PC
22:58:38.0398 3604 UserName: JohnLani
22:58:38.0398 3604 Windows directory: C:\Windows
22:58:38.0398 3604 System windows directory: C:\Windows
22:58:38.0398 3604 Running under WOW64
22:58:38.0398 3604 Processor architecture: Intel x64
22:58:38.0398 3604 Number of processors: 2
22:58:38.0398 3604 Page size: 0x1000
22:58:38.0398 3604 Boot type: Normal boot
22:58:38.0398 3604 ============================================================
22:58:43.0178 3604 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
22:58:43.0194 3604 ============================================================
22:58:43.0194 3604 \Device\Harddisk0\DR0:
22:58:43.0194 3604 MBR partitions:
22:58:43.0194 3604 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xC800000
22:58:43.0194 3604 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0xC800800, BlocksNum 0x25800000
22:58:43.0194 3604 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32000800, BlocksNum 0x8385000
22:58:43.0194 3604 ============================================================
22:58:43.0271 3604 C: <-> \Device\Harddisk0\DR0\Partition0
22:58:43.0324 3604 D: <-> \Device\Harddisk0\DR0\Partition1
22:58:43.0369 3604 E: <-> \Device\Harddisk0\DR0\Partition2
22:58:43.0369 3604 ============================================================
22:58:43.0369 3604 Initialize success
22:58:43.0369 3604 ============================================================
23:08:24.0705 3376 ============================================================
23:08:24.0706 3376 Scan started
23:08:24.0706 3376 Mode: Manual;
23:08:24.0706 3376 ============================================================
23:08:25.0251 3376 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
23:08:25.0253 3376 1394ohci - ok
23:08:25.0303 3376 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
23:08:25.0318 3376 ACPI - ok
23:08:25.0335 3376 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
23:08:25.0336 3376 AcpiPmi - ok
23:08:25.0383 3376 adfs (2f0683fd2df1d92e891caca14b45a8c1) C:\Windows\system32\drivers\adfs.sys
23:08:25.0385 3376 adfs - ok
23:08:25.0540 3376 AdobeFlashPlayerUpdateSvc (76d5a3d2a50402a0b9b6ed13c4371e79) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
23:08:25.0555 3376 AdobeFlashPlayerUpdateSvc - ok
23:08:25.0618 3376 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys
23:08:25.0628 3376 adp94xx - ok
23:08:25.0667 3376 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys
23:08:25.0681 3376 adpahci - ok
23:08:25.0706 3376 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys
23:08:25.0708 3376 adpu320 - ok
23:08:25.0729 3376 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\Windows\System32\aelupsvc.dll
23:08:25.0731 3376 AeLookupSvc - ok
23:08:25.0782 3376 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys
23:08:25.0792 3376 AFD - ok
23:08:25.0837 3376 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
23:08:25.0838 3376 agp440 - ok
23:08:25.0851 3376 ALG (3290d6946b5e30e70414990574883ddb) C:\Windows\System32\alg.exe
23:08:25.0853 3376 ALG - ok
23:08:25.0864 3376 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
23:08:25.0865 3376 aliide - ok
23:08:25.0877 3376 AMD External Events Utility - ok
23:08:25.0895 3376 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
23:08:25.0895 3376 amdide - ok
23:08:25.0922 3376 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys
23:08:25.0923 3376 AmdK8 - ok
23:08:25.0935 3376 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
23:08:25.0936 3376 AmdPPM - ok
23:08:25.0971 3376 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys
23:08:25.0973 3376 amdsata - ok
23:08:26.0008 3376 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys
23:08:26.0014 3376 amdsbs - ok
23:08:26.0032 3376 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys
23:08:26.0034 3376 amdxata - ok
23:08:26.0085 3376 AnyDVD (aa10a90af32ba0682820a51fbc4ace90) C:\Windows\system32\Drivers\AnyDVD.sys
23:08:26.0087 3376 AnyDVD - ok
23:08:26.0174 3376 AppHostSvc (59d01fa91962c9c1e9b4022b2d3b46db) C:\Windows\system32\inetsrv\apphostsvc.dll
23:08:26.0175 3376 AppHostSvc - ok
23:08:26.0224 3376 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
23:08:26.0225 3376 AppID - ok
23:08:26.0243 3376 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\Windows\System32\appidsvc.dll
23:08:26.0244 3376 AppIDSvc - ok
23:08:26.0272 3376 Appinfo (3977d4a871ca0d4f2ed1e7db46829731) C:\Windows\System32\appinfo.dll
23:08:26.0273 3376 Appinfo - ok
23:08:26.0404 3376 Apple Mobile Device (3debbecf665dcdde3a95d9b902010817) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
23:08:26.0406 3376 Apple Mobile Device - ok
23:08:26.0443 3376 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys
23:08:26.0444 3376 arc - ok
23:08:26.0462 3376 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys
23:08:26.0464 3376 arcsas - ok
23:08:26.0581 3376 aspnet_state (9217d874131ae6ff8f642f124f00a555) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
23:08:26.0582 3376 aspnet_state - ok
23:08:26.0603 3376 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
23:08:26.0604 3376 AsyncMac - ok
23:08:26.0624 3376 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
23:08:26.0625 3376 atapi - ok
23:08:26.0722 3376 atksgt (fc0e8778c000291caf60eb88c011e931) C:\Windows\system32\DRIVERS\atksgt.sys
23:08:26.0736 3376 atksgt - ok
23:08:26.0789 3376 AudioEndpointBuilder (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
23:08:26.0805 3376 AudioEndpointBuilder - ok
23:08:26.0810 3376 AudioSrv (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
23:08:26.0814 3376 AudioSrv - ok
23:08:26.0904 3376 AVP (2718dc27571bd1e37813f5759d2dc118) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe
23:08:26.0906 3376 AVP - ok
23:08:26.0958 3376 AxInstSV (a6bf31a71b409dfa8cac83159e1e2aff) C:\Windows\System32\AxInstSV.dll
23:08:26.0959 3376 AxInstSV - ok
23:08:27.0061 3376 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys
23:08:27.0072 3376 b06bdrv - ok
23:08:27.0115 3376 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
23:08:27.0129 3376 b57nd60a - ok
23:08:27.0175 3376 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\Windows\System32\bdesvc.dll
23:08:27.0177 3376 BDESVC - ok
23:08:27.0189 3376 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
23:08:27.0189 3376 Beep - ok
23:08:27.0251 3376 BITS (1ea7969e3271cbc59e1730697dc74682) C:\Windows\System32\qmgr.dll
23:08:27.0264 3376 BITS - ok
23:08:27.0290 3376 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
23:08:27.0291 3376 blbdrive - ok
23:08:27.0406 3376 Bonjour Service (ebbcd5dfbb1de70e8f4af8fa59e401fd) C:\Program Files\Bonjour\mDNSResponder.exe
23:08:27.0416 3376 Bonjour Service - ok
23:08:27.0434 3376 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
23:08:27.0435 3376 bowser - ok
23:08:27.0452 3376 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys
23:08:27.0453 3376 BrFiltLo - ok
23:08:27.0465 3376 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys
23:08:27.0466 3376 BrFiltUp - ok
23:08:27.0493 3376 BridgeMP (5c2f352a4e961d72518261257aae204b) C:\Windows\system32\DRIVERS\bridge.sys
23:08:27.0494 3376 BridgeMP - ok
23:08:27.0527 3376 Browser (8ef0d5c41ec907751b8429162b1239ed) C:\Windows\System32\browser.dll
23:08:27.0530 3376 Browser - ok
23:08:27.0552 3376 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
23:08:27.0568 3376 Brserid - ok
23:08:27.0584 3376 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
23:08:27.0585 3376 BrSerWdm - ok
23:08:27.0596 3376 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
23:08:27.0596 3376 BrUsbMdm - ok
23:08:27.0605 3376 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
23:08:27.0605 3376 BrUsbSer - ok
23:08:27.0619 3376 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
23:08:27.0621 3376 BTHMODEM - ok
23:08:27.0653 3376 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\Windows\system32\bthserv.dll
23:08:27.0655 3376 bthserv - ok
23:08:27.0678 3376 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
23:08:27.0679 3376 cdfs - ok
23:08:27.0726 3376 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\drivers\cdrom.sys
23:08:27.0728 3376 cdrom - ok
23:08:27.0778 3376 CertPropSvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
23:08:27.0779 3376 CertPropSvc - ok
23:08:27.0827 3376 chdrvr01 (8504f0aa0b81789da9a5cab08cbacd51) C:\Windows\system32\DRIVERS\chdrvr01.sys
23:08:27.0831 3376 chdrvr01 - ok
23:08:27.0854 3376 chdrvr02 (38b5c53eb02e8df28923d5917fbd9f1f) C:\Windows\system32\DRIVERS\chdrvr02.sys
23:08:27.0854 3376 chdrvr02 - ok
23:08:27.0882 3376 chdrvr03 (7b42079e66bfdf958fbd9fe67797d6d3) C:\Windows\system32\DRIVERS\chdrvr03.sys
23:08:27.0883 3376 chdrvr03 - ok
23:08:27.0911 3376 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
23:08:27.0912 3376 circlass - ok
23:08:27.0942 3376 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
23:08:27.0955 3376 CLFS - ok
23:08:28.0022 3376 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
23:08:28.0023 3376 clr_optimization_v2.0.50727_32 - ok
23:08:28.0075 3376 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
23:08:28.0077 3376 clr_optimization_v2.0.50727_64 - ok
23:08:28.0179 3376 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
23:08:28.0181 3376 clr_optimization_v4.0.30319_32 - ok
23:08:28.0213 3376 clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
23:08:28.0215 3376 clr_optimization_v4.0.30319_64 - ok
23:08:28.0248 3376 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
23:08:28.0248 3376 CmBatt - ok
23:08:28.0264 3376 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
23:08:28.0265 3376 cmdide - ok
23:08:28.0310 3376 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys
23:08:28.0321 3376 CNG - ok
23:08:28.0342 3376 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
23:08:28.0343 3376 Compbatt - ok
23:08:28.0379 3376 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys
23:08:28.0379 3376 CompositeBus - ok
23:08:28.0396 3376 COMSysApp - ok
23:08:28.0486 3376 cpudrv64 (3ca734ce373e5675fbc15ca2c45228e5) C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys
23:08:28.0487 3376 cpudrv64 - ok
23:08:28.0524 3376 cpuz134 (17719a7f571d4cd08223f0b30f71b8b8) C:\Windows\system32\drivers\cpuz134_x64.sys
23:08:28.0525 3376 cpuz134 - ok
23:08:28.0540 3376 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys
23:08:28.0541 3376 crcdisk - ok
23:08:28.0623 3376 Creative ALchemy AL6 Licensing Service (c8bd651e13895b93ed9ec5b4f1df42bc) C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe
23:08:28.0625 3376 Creative ALchemy AL6 Licensing Service - ok
23:08:28.0646 3376 Creative Audio Engine Licensing Service (c0ead9f8ab83d41ff07303c75589c2b8) C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
23:08:28.0647 3376 Creative Audio Engine Licensing Service - ok
23:08:28.0688 3376 CryptSvc (15597883fbe9b056f276ada3ad87d9af) C:\Windows\system32\cryptsvc.dll
23:08:28.0695 3376 CryptSvc - ok
23:08:28.0725 3376 CTAudSvcService (69cdba2b9c397e349a04fa70dd9170a2) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
23:08:28.0740 3376 CTAudSvcService - ok
23:08:28.0800 3376 DcomLaunch (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
23:08:28.0806 3376 DcomLaunch - ok
23:08:28.0848 3376 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\Windows\System32\defragsvc.dll
23:08:28.0863 3376 defragsvc - ok
23:08:28.0929 3376 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
23:08:28.0930 3376 DfsC - ok
23:08:28.0987 3376 Dhcp (43d808f5d9e1a18e5eeb5ebc83969e4e) C:\Windows\system32\dhcpcore.dll
23:08:29.0001 3376 Dhcp - ok
23:08:29.0008 3376 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
23:08:29.0009 3376 discache - ok
23:08:29.0044 3376 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys
23:08:29.0045 3376 Disk - ok
23:08:29.0083 3376 Dnscache (16835866aaa693c7d7fceba8fff706e4) C:\Windows\System32\dnsrslvr.dll
23:08:29.0085 3376 Dnscache - ok
23:08:29.0110 3376 dot3svc (b1fb3ddca0fdf408750d5843591afbc6) C:\Windows\System32\dot3svc.dll
23:08:29.0125 3376 dot3svc - ok
23:08:29.0170 3376 Dot4 (b42ed0320c6e41102fde0005154849bb) C:\Windows\system32\DRIVERS\Dot4.sys
23:08:29.0172 3376 Dot4 - ok
23:08:29.0212 3376 Dot4Print (e9f5969233c5d89f3c35e3a66a52a361) C:\Windows\system32\drivers\Dot4Prt.sys
23:08:29.0212 3376 Dot4Print - ok
23:08:29.0248 3376 dot4usb (fd05a02b0370bc3000f402e543ca5814) C:\Windows\system32\DRIVERS\dot4usb.sys
23:08:29.0249 3376 dot4usb - ok
23:08:29.0284 3376 DPS (b26f4f737e8f9df4f31af6cf31d05820) C:\Windows\system32\dps.dll
23:08:29.0286 3376 DPS - ok
23:08:29.0322 3376 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
23:08:29.0323 3376 drmkaud - ok
23:08:29.0395 3376 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
23:08:29.0415 3376 DXGKrnl - ok
23:08:29.0466 3376 e1express (416a2007878ed1d6fc5dddb9e1f6db3e) C:\Windows\system32\DRIVERS\e1e6032e.sys
23:08:29.0482 3376 e1express - ok
23:08:29.0519 3376 EapHost (e2dda8726da9cb5b2c4000c9018a9633) C:\Windows\System32\eapsvc.dll
23:08:29.0521 3376 EapHost - ok
23:08:29.0699 3376 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys
23:08:29.0750 3376 ebdrv - ok
23:08:29.0830 3376 EFS (c118a82cd78818c29ab228366ebf81c3) C:\Windows\System32\lsass.exe
23:08:29.0832 3376 EFS - ok
23:08:29.0922 3376 ehRecvr (c4002b6b41975f057d98c439030cea07) C:\Windows\ehome\ehRecvr.exe
23:08:29.0941 3376 ehRecvr - ok
23:08:29.0962 3376 ehSched (4705e8ef9934482c5bb488ce28afc681) C:\Windows\ehome\ehsched.exe
23:08:29.0964 3376 ehSched - ok
23:08:30.0045 3376 ElbyCDIO (4456e16591843c4506772d2c37834141) C:\Windows\system32\Drivers\ElbyCDIO.sys
23:08:30.0046 3376 ElbyCDIO - ok
23:08:30.0096 3376 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys
23:08:30.0105 3376 elxstor - ok
23:08:30.0134 3376 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
23:08:30.0135 3376 ErrDev - ok
23:08:30.0186 3376 EventSystem (4166f82be4d24938977dd1746be9b8a0) C:\Windows\system32\es.dll
23:08:30.0199 3376 EventSystem - ok
23:08:30.0216 3376 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
23:08:30.0222 3376 exfat - ok
23:08:30.0247 3376 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
23:08:30.0250 3376 fastfat - ok
23:08:30.0302 3376 Fax (dbefd454f8318a0ef691fdd2eaab44eb) C:\Windows\system32\fxssvc.exe
23:08:30.0321 3376 Fax - ok
23:08:30.0338 3376 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
23:08:30.0339 3376 fdc - ok
23:08:30.0357 3376 fdPHost (0438cab2e03f4fb61455a7956026fe86) C:\Windows\system32\fdPHost.dll
23:08:30.0358 3376 fdPHost - ok
23:08:30.0364 3376 FDResPub (802496cb59a30349f9a6dd22d6947644) C:\Windows\system32\fdrespub.dll
23:08:30.0366 3376 FDResPub - ok
23:08:30.0387 3376 feuorkjv - ok
23:08:30.0401 3376 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
23:08:30.0403 3376 FileInfo - ok
23:08:30.0519 3376 FileMonitor (060cc45cecae2feaff9c8c52d8fafaa8) C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys
23:08:30.0519 3376 FileMonitor - ok
23:08:30.0537 3376 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
23:08:30.0538 3376 Filetrace - ok
23:08:30.0638 3376 FLEXnet Licensing Service (73081cf28f0ae20a52ca4f67cee6e6b0) C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
23:08:30.0657 3376 FLEXnet Licensing Service - ok
23:08:30.0790 3376 FLEXnet Licensing Service 64 (1c3fb052a0bb72edaed90785c34d6eed) C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
23:08:30.0808 3376 FLEXnet Licensing Service 64 - ok
23:08:30.0909 3376 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
23:08:30.0910 3376 flpydisk - ok
23:08:30.0944 3376 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
23:08:30.0959 3376 FltMgr - ok
23:08:31.0024 3376 FontCache (5c4cb4086fb83115b153e47add961a0c) C:\Windows\system32\FntCache.dll
23:08:31.0040 3376 FontCache - ok
23:08:31.0148 3376 FontCache3.0.0.0 (a8b7f3818ab65695e3a0bb3279f6dce6) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
23:08:31.0150 3376 FontCache3.0.0.0 - ok
23:08:31.0169 3376 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
23:08:31.0170 3376 FsDepends - ok
23:08:31.0210 3376 fssfltr (6c06701bf1db05405804d7eb610991ce) C:\Windows\system32\DRIVERS\fssfltr.sys
23:08:31.0211 3376 fssfltr - ok
23:08:31.0396 3376 fsssvc (40cdfad174b3d5e80f95dda003c0b97f) C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe
23:08:31.0416 3376 fsssvc - ok
23:08:31.0512 3376 Fs_Rec (6bd9295cc032dd3077c671fccf579a7b) C:\Windows\system32\drivers\Fs_Rec.sys
23:08:31.0512 3376 Fs_Rec - ok
23:08:31.0569 3376 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
23:08:31.0575 3376 fvevol - ok
23:08:31.0595 3376 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys
23:08:31.0597 3376 gagp30kx - ok
23:08:31.0636 3376 GEARAspiWDM (e403aacf8c7bb11375122d2464560311) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
23:08:31.0637 3376 GEARAspiWDM - ok
23:08:31.0673 3376 gfvknt (a297a7b0060e10a4ce577a9f12680046) C:\Windows\system32\DRIVERS\gfvknt64.sys
23:08:31.0673 3376 gfvknt - ok
23:08:31.0738 3376 gpsvc (277bbc7e1aa1ee957f573a10eca7ef3a) C:\Windows\System32\gpsvc.dll
23:08:31.0752 3376 gpsvc - ok
23:08:31.0855 3376 gupdate (f02a533f517eb38333cb12a9e8963773) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
23:08:31.0856 3376 gupdate - ok
23:08:31.0884 3376 gupdatem (f02a533f517eb38333cb12a9e8963773) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
23:08:31.0885 3376 gupdatem - ok
23:08:31.0926 3376 gusvc (cc839e8d766cc31a7710c9f38cf3e375) C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
23:08:31.0929 3376 gusvc - ok
23:08:31.0941 3376 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
23:08:31.0942 3376 hcw85cir - ok
23:08:31.0992 3376 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys
23:08:32.0016 3376 HdAudAddService - ok
23:08:32.0059 3376 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys
23:08:32.0061 3376 HDAudBus - ok
23:08:32.0081 3376 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys
23:08:32.0082 3376 HidBatt - ok
23:08:32.0095 3376 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys
23:08:32.0096 3376 HidBth - ok
23:08:32.0106 3376 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys
23:08:32.0107 3376 HidIr - ok
23:08:32.0133 3376 hidserv (bd9eb3958f213f96b97b1d897dee006d) C:\Windows\System32\hidserv.dll
23:08:32.0134 3376 hidserv - ok
23:08:32.0174 3376 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys
23:08:32.0175 3376 HidUsb - ok
23:08:32.0195 3376 hkmsvc (387e72e739e15e3d37907a86d9ff98e2) C:\Windows\system32\kmsvc.dll
23:08:32.0197 3376 hkmsvc - ok
23:08:32.0232 3376 HomeGroupListener (efdfb3dd38a4376f93e7985173813abd) C:\Windows\system32\ListSvc.dll
23:08:32.0248 3376 HomeGroupListener - ok
23:08:32.0279 3376 HomeGroupProvider (908acb1f594274965a53926b10c81e89) C:\Windows\system32\provsvc.dll
23:08:32.0285 3376 HomeGroupProvider - ok
23:08:32.0447 3376 hpqcxs08 (1dae5c46d42b02a6d5862e1482efb390) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll
23:08:32.0451 3376 hpqcxs08 - ok
23:08:32.0484 3376 hpqddsvc (99e8eef42fe2f4af29b08c3355dd7685) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll
23:08:32.0486 3376 hpqddsvc - ok
23:08:32.0539 3376 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
23:08:32.0540 3376 HpSAMD - ok
23:08:32.0684 3376 HPSLPSVC - ok
23:08:32.0753 3376 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
23:08:32.0769 3376 HTTP - ok
23:08:32.0794 3376 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
23:08:32.0795 3376 hwpolicy - ok
23:08:32.0848 3376 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\drivers\i8042prt.sys
23:08:32.0849 3376 i8042prt - ok
23:08:32.0898 3376 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys
23:08:32.0911 3376 iaStorV - ok
23:08:32.0998 3376 IDriverT (1cf03c69b49acb70c722df92755c0c8c) C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
23:08:32.0999 3376 IDriverT - ok
23:08:33.0117 3376 idsvc (5988fc40f8db5b0739cd1e3a5d0d78bd) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
23:08:33.0130 3376 idsvc - ok
23:08:33.0227 3376 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys
23:08:33.0228 3376 iirsp - ok
23:08:33.0466 3376 IKEEXT (fcd84c381e0140af901e58d48882d26b) C:\Windows\System32\ikeext.dll
23:08:33.0475 3376 IKEEXT - ok
23:08:33.0595 3376 IMFservice (8ae99ebe30e8338907361018d9030835) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
23:08:33.0610 3376 IMFservice - ok
23:08:33.0695 3376 IntcAzAudAddService - ok
23:08:33.0714 3376 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
23:08:33.0715 3376 intelide - ok
23:08:33.0738 3376 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
23:08:33.0739 3376 intelppm - ok
23:08:33.0782 3376 iopkkbzj (37de5c89d49d8842c29504a7377c8bdc) C:\Windows\system32\drivers\iopkkbzj.sys
23:08:33.0783 3376 iopkkbzj - ok
23:08:33.0808 3376 IPBusEnum (098a91c54546a3b878dad6a7e90a455b) C:\Windows\system32\ipbusenum.dll
23:08:33.0810 3376 IPBusEnum - ok
23:08:33.0832 3376 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
23:08:33.0833 3376 IpFilterDriver - ok
23:08:33.0905 3376 iphlpsvc (a34a587fffd45fa649fba6d03784d257) C:\Windows\System32\iphlpsvc.dll
23:08:33.0914 3376 iphlpsvc - ok
23:08:33.0938 3376 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
23:08:33.0940 3376 IPMIDRV - ok
23:08:33.0967 3376 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
23:08:33.0969 3376 IPNAT - ok
23:08:34.0113 3376 iPod Service (ee4c2a137c7088911a8919effc9812e7) C:\Program Files\iPod\bin\iPodService.exe
23:08:34.0143 3376 iPod Service - ok
23:08:34.0167 3376 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
23:08:34.0168 3376 IRENUM - ok
23:08:34.0181 3376 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
23:08:34.0182 3376 isapnp - ok
23:08:34.0208 3376 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
23:08:34.0223 3376 iScsiPrt - ok
23:08:34.0252 3376 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys
23:08:34.0253 3376 kbdclass - ok
23:08:34.0291 3376 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\DRIVERS\kbdhid.sys
23:08:34.0291 3376 kbdhid - ok
23:08:34.0344 3376 KeyIso (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
23:08:34.0346 3376 KeyIso - ok
23:08:34.0382 3376 KL1 - ok
23:08:34.0406 3376 kl2 (d865dd8b0448e3f963d68c04c532858f) C:\Windows\system32\DRIVERS\kl2.sys
23:08:34.0406 3376 kl2 - ok
23:08:34.0466 3376 KLIF (c7d4f357c482dd37e2b05f34093b7b0c) C:\Windows\system32\DRIVERS\klif.sys
23:08:34.0485 3376 KLIF - ok
23:08:34.0507 3376 KLIM6 (89fb5a33d7171b6d84f5eb721d5055e1) C:\Windows\system32\DRIVERS\klim6.sys
23:08:34.0508 3376 KLIM6 - ok
23:08:34.0538 3376 klmouflt (9468d07e91ba136d82415f5dfc1fe168) C:\Windows\system32\DRIVERS\klmouflt.sys
23:08:34.0539 3376 klmouflt - ok
23:08:34.0563 3376 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys
23:08:34.0564 3376 KSecDD - ok
23:08:34.0593 3376 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys
23:08:34.0600 3376 KSecPkg - ok
23:08:34.0616 3376 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
23:08:34.0617 3376 ksthunk - ok
23:08:34.0678 3376 KtmRm (6ab66e16aa859232f64deb66887a8c9c) C:\Windows\system32\msdtckrm.dll
23:08:34.0689 3376 KtmRm - ok
23:08:34.0737 3376 LanmanServer (d9f42719019740baa6d1c6d536cbdaa6) C:\Windows\System32\srvsvc.dll
23:08:34.0752 3376 LanmanServer - ok
23:08:34.0782 3376 LanmanWorkstation (851a1382eed3e3a7476db004f4ee3e1a) C:\Windows\System32\wkssvc.dll
23:08:34.0790 3376 LanmanWorkstation - ok
23:08:35.0211 3376 LeapFrog Connect Device Service (3c879d04bb6466e2853c3155b635cc45) C:\Program Files (x86)\LeapFrog\LeapFrog Connect\CommandService.exe
23:08:35.0294 3376 LeapFrog Connect Device Service - ok
23:08:35.0500 3376 lirsgt (156ab2e56dc3ca0b582e3362e07cded7) C:\Windows\system32\DRIVERS\lirsgt.sys
23:08:35.0500 3376 lirsgt - ok
23:08:35.0627 3376 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
23:08:35.0628 3376 lltdio - ok
23:08:35.0682 3376 lltdsvc (c1185803384ab3feed115f79f109427f) C:\Windows\System32\lltdsvc.dll
23:08:35.0697 3376 lltdsvc - ok
23:08:35.0708 3376 lmhosts (f993a32249b66c9d622ea5592a8b76b8) C:\Windows\System32\lmhsvc.dll
23:08:35.0709 3376 lmhosts - ok
23:08:35.0721 3376 lmimirr - ok
23:08:35.0758 3376 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys
23:08:35.0759 3376 LSI_FC - ok
23:08:35.0776 3376 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys
23:08:35.0777 3376 LSI_SAS - ok
23:08:35.0789 3376 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys
23:08:35.0790 3376 LSI_SAS2 - ok
23:08:35.0809 3376 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys
23:08:35.0810 3376 LSI_SCSI - ok
23:08:35.0829 3376 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
23:08:35.0830 3376 luafv - ok
23:08:36.0059 3376 Matrox.Pdesk3.ServicesHost (c2f3bba0760ab9dd33bcc60a663a108c) C:\Program Files (x86)\Matrox Graphics\PowerDesk\Matrox.PDesk.Services.exe
23:08:36.0115 3376 Matrox.Pdesk3.ServicesHost - ok
23:08:36.0246 3376 MBAMProtector (dbc08862a71459e74f7538b432c114cc) C:\Windows\system32\drivers\mbam.sys
23:08:36.0247 3376 MBAMProtector - ok
23:08:36.0299 3376 MBAMService (ba400ed640bca1eae5c727ae17c10207) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
23:08:36.0317 3376 MBAMService - ok
23:08:36.0336 3376 Mcx2Svc (0be09cd858abf9df6ed259d57a1a1663) C:\Windows\system32\Mcx2Svc.dll
23:08:36.0338 3376 Mcx2Svc - ok
23:08:36.0367 3376 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys
23:08:36.0368 3376 megasas - ok
23:08:36.0390 3376 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys
23:08:36.0405 3376 MegaSR - ok
23:08:36.0473 3376 Microsoft Office Groove Audit Service (123271bd5237ab991dc5c21fdf8835eb) C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe
23:08:36.0475 3376 Microsoft Office Groove Audit Service - ok
23:08:36.0496 3376 MMCSS (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
23:08:36.0498 3376 MMCSS - ok
23:08:36.0509 3376 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
23:08:36.0510 3376 Modem - ok
23:08:36.0548 3376 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
23:08:36.0548 3376 monitor - ok
23:08:36.0593 3376 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys
23:08:36.0595 3376 mouclass - ok
23:08:36.0615 3376 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
23:08:36.0616 3376 mouhid - ok
23:08:36.0638 3376 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys
23:08:36.0640 3376 mountmgr - ok
23:08:36.0684 3376 MpFilter (94c66ededcdb6a126880472f9a704d8e) C:\Windows\system32\DRIVERS\MpFilter.sys
23:08:36.0691 3376 MpFilter - ok
23:08:36.0731 3376 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys
23:08:36.0733 3376 mpio - ok
23:08:36.0750 3376 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
23:08:36.0751 3376 mpsdrv - ok
23:08:36.0775 3376 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys
23:08:36.0777 3376 MRxDAV - ok
23:08:36.0800 3376 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys
23:08:36.0803 3376 mrxsmb - ok
23:08:36.0835 3376 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys
23:08:36.0846 3376 mrxsmb10 - ok
23:08:36.0866 3376 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
23:08:36.0868 3376 mrxsmb20 - ok
23:08:36.0899 3376 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys
23:08:36.0900 3376 msahci - ok
23:08:36.0928 3376 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys
23:08:36.0933 3376 msdsm - ok
23:08:36.0956 3376 MSDTC (de0ece52236cfa3ed2dbfc03f28253a8) C:\Windows\System32\msdtc.exe
23:08:36.0959 3376 MSDTC - ok
23:08:36.0989 3376 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
23:08:36.0990 3376 Msfs - ok
23:08:37.0012 3376 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
23:08:37.0013 3376 mshidkmdf - ok
23:08:37.0023 3376 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
23:08:37.0024 3376 msisadrv - ok
23:08:37.0052 3376 MSiSCSI (808e98ff49b155c522e6400953177b08) C:\Windows\system32\iscsiexe.dll
23:08:37.0060 3376 MSiSCSI - ok
23:08:37.0064 3376 msiserver - ok
23:08:37.0086 3376 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
23:08:37.0087 3376 MSKSSRV - ok
23:08:37.0191 3376 MsMpSvc (59faaf2c83c8169ea20f9e335e418907) C:\Program Files\Microsoft Security Client\MsMpEng.exe
23:08:37.0192 3376 MsMpSvc - ok
23:08:37.0207 3376 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
23:08:37.0207 3376 MSPCLOCK - ok
23:08:37.0222 3376 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
23:08:37.0223 3376 MSPQM - ok
23:08:37.0258 3376 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys
23:08:37.0275 3376 MsRPC - ok
23:08:37.0288 3376 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys
23:08:37.0289 3376 mssmbios - ok
23:08:37.0304 3376 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
23:08:37.0304 3376 MSTEE - ok
23:08:37.0307 3376 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys
23:08:37.0308 3376 MTConfig - ok
23:08:37.0335 3376 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
23:08:37.0336 3376 Mup - ok
23:08:37.0375 3376 napagent (582ac6d9873e31dfa28a4547270862dd) C:\Windows\system32\qagentRT.dll
23:08:37.0384 3376 napagent - ok
23:08:37.0425 3376 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
23:08:37.0438 3376 NativeWifiP - ok
23:08:37.0554 3376 NAUpdate (e4534bccdd1ea7a7a256bb9d6688a5fc) C:\Program Files (x86)\Nero\Update\NASvc.exe
23:08:37.0564 3376 NAUpdate - ok
23:08:37.0634 3376 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys
23:08:37.0652 3376 NDIS - ok
23:08:37.0685 3376 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
23:08:37.0686 3376 NdisCap - ok
23:08:37.0713 3376 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
23:08:37.0713 3376 NdisTapi - ok
23:08:37.0873 3376 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys
23:08:37.0874 3376 Ndisuio - ok
23:08:37.0907 3376 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys
23:08:37.0909 3376 NdisWan - ok
23:08:37.0935 3376 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys
23:08:37.0936 3376 NDProxy - ok
23:08:37.0969 3376 Net Driver HPZ12 (2334dc48997ba203b794df3ee70521db) C:\Windows\system32\HPZinw12.dll
23:08:37.0971 3376 Net Driver HPZ12 - ok
23:08:38.0018 3376 Netaapl (307bc83250fc8e3b2878d81e7d760299) C:\Windows\system32\DRIVERS\netaapl64.sys
23:08:38.0019 3376 Netaapl - ok
23:08:38.0044 3376 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
23:08:38.0046 3376 NetBIOS - ok
23:08:38.0081 3376 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys
23:08:38.0094 3376 NetBT - ok
23:08:38.0118 3376 Netlogon (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
23:08:38.0119 3376 Netlogon - ok
23:08:38.0186 3376 Netman (847d3ae376c0817161a14a82c8922a9e) C:\Windows\System32\netman.dll
23:08:38.0197 3376 Netman - ok
23:08:38.0283 3376 NetMsmqActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
23:08:38.0285 3376 NetMsmqActivator - ok
23:08:38.0298 3376 NetPipeActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
23:08:38.0299 3376 NetPipeActivator - ok
23:08:38.0329 3376 netprofm (5f28111c648f1e24f7dbc87cdeb091b8) C:\Windows\System32\netprofm.dll
23:08:38.0339 3376 netprofm - ok
23:08:38.0392 3376 NetTcpActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
23:08:38.0393 3376 NetTcpActivator - ok
23:08:38.0396 3376 NetTcpPortSharing (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
23:08:38.0397 3376 NetTcpPortSharing - ok
23:08:38.0462 3376 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys
23:08:38.0479 3376 nfrd960 - ok
23:08:38.0511 3376 NisDrv (91b4e0273d2f6c24ef845f2b41311289) C:\Windows\system32\DRIVERS\NisDrvWFP.sys
23:08:38.0512 3376 NisDrv - ok
23:08:38.0619 3376 NisSrv (10a43829a9e606af3eef25a1c1665923) C:\Program Files\Microsoft Security Client\NisSrv.exe
23:08:38.0633 3376 NisSrv - ok
23:08:38.0683 3376 NlaSvc (1ee99a89cc788ada662441d1e9830529) C:\Windows\System32\nlasvc.dll
23:08:38.0696 3376 NlaSvc - ok
23:08:38.0708 3376 nmwcdcx64 - ok
23:08:38.0721 3376 nmwcdx64 - ok
23:08:38.0734 3376 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
23:08:38.0735 3376 Npfs - ok
23:08:38.0763 3376 npusbio (95a2ab418251a3b2a2571cde880b80d0) C:\Windows\system32\Drivers\npusbio_x64.sys
23:08:38.0764 3376 npusbio - ok
23:08:38.0774 3376 nsi (d54bfdf3e0c953f823b3d0bfe4732528) C:\Windows\system32\nsisvc.dll
23:08:38.0776 3376 nsi - ok
23:08:38.0791 3376 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
23:08:38.0792 3376 nsiproxy - ok
23:08:38.0891 3376 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys
23:08:38.0916 3376 Ntfs - ok
23:08:39.0008 3376 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
23:08:39.0008 3376 Null - ok
23:09:01.0271 3376 nvlddmkm (9c1996dd3c0469bc8933321f15709f5a) C:\Windows\system32\DRIVERS\nvlddmkm.sys
23:09:01.0510 3376 nvlddmkm - ok
23:09:01.0640 3376 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys
23:09:01.0642 3376 nvraid - ok
23:09:01.0688 3376 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys
23:09:01.0690 3376 nvstor - ok
23:09:01.0795 3376 nvsvc (34e5498528bb3d5a951f889f8756ad26) C:\Windows\system32\nvvsvc.exe
23:09:01.0807 3376 nvsvc - ok
23:09:01.0830 3376 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
23:09:01.0832 3376 nv_agp - ok
23:09:01.0993 3376 O&O Defrag (6ff0f6c590e92ff1dc559b3b1b3b1b11) C:\Program Files\OO Software\Defrag\oodag.exe
23:09:02.0029 3376 O&O Defrag - ok
23:09:02.0148 3376 odserv (785f487a64950f3cb8e9f16253ba3b7b) C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
23:09:02.0159 3376 odserv - ok
23:09:02.0268 3376 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
23:09:02.0269 3376 ohci1394 - ok
23:09:02.0298 3376 ose (5a432a042dae460abe7199b758e8606c) C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
23:09:02.0300 3376 ose - ok
23:09:02.0326 3376 ozuuiixh - ok
23:09:02.0416 3376 P17 (634347adebc790b8f07654a3ea8034fd) C:\Windows\system32\drivers\P17.sys
23:09:02.0440 3376 P17 - ok
23:09:02.0477 3376 p2pimsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
23:09:02.0491 3376 p2pimsvc - ok
23:09:02.0515 3376 p2psvc (927463ecb02179f88e4b9a17568c63c3) C:\Windows\system32\p2psvc.dll
23:09:02.0537 3376 p2psvc - ok
23:09:02.0583 3376 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys
23:09:02.0583 3376 Parport - ok
23:09:02.0605 3376 partmgr (e9766131eeade40a27dc27d2d68fba9c) C:\Windows\system32\drivers\partmgr.sys
23:09:02.0607 3376 partmgr - ok
23:09:02.0623 3376 PcaSvc (3aeaa8b561e63452c655dc0584922257) C:\Windows\System32\pcasvc.dll
23:09:02.0629 3376 PcaSvc - ok
23:09:02.0663 3376 pccsmcfd - ok
23:09:02.0700 3376 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys
23:09:02.0706 3376 pci - ok
23:09:02.0724 3376 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
23:09:02.0725 3376 pciide - ok
23:09:02.0750 3376 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys
23:09:02.0756 3376 pcmcia - ok
23:09:02.0778 3376 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
23:09:02.0779 3376 pcw - ok
23:09:02.0811 3376 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
23:09:02.0829 3376 PEAUTH - ok
23:09:02.0894 3376 PerfHost (e495e408c93141e8fc72dc0c6046ddfa) C:\Windows\SysWow64\perfhost.exe
23:09:02.0896 3376 PerfHost - ok
23:09:03.0018 3376 pla (c7cf6a6e137463219e1259e3f0f0dd6c) C:\Windows\system32\pla.dll
23:09:03.0041 3376 pla - ok
23:09:03.0087 3376 PlugPlay (25fbdef06c4d92815b353f6e792c8129) C:\Windows\system32\umpnpmgr.dll
23:09:03.0098 3376 PlugPlay - ok
23:09:03.0160 3376 Pml Driver HPZ12 (ac78df349f0e4cfb8b667c0cfff83cce) C:\Windows\system32\HPZipm12.dll
23:09:03.0162 3376 Pml Driver HPZ12 - ok
23:09:03.0185 3376 PnkBstrA - ok
23:09:03.0205 3376 PNRPAutoReg (7195581cec9bb7d12abe54036acc2e38) C:\Windows\system32\pnrpauto.dll
23:09:03.0207 3376 PNRPAutoReg - ok
23:09:03.0231 3376 PNRPsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
23:09:03.0235 3376 PNRPsvc - ok
23:09:03.0285 3376 Point64 (4f0878fd62d5f7444c5f1c4c66d9d293) C:\Windows\system32\DRIVERS\point64.sys
23:09:03.0286 3376 Point64 - ok
23:09:03.0334 3376 PolicyAgent (4f15d75adf6156bf56eced6d4a55c389) C:\Windows\System32\ipsecsvc.dll
23:09:03.0344 3376 PolicyAgent - ok
23:09:03.0386 3376 Power (6ba9d927dded70bd1a9caded45f8b184) C:\Windows\system32\umpo.dll
23:09:03.0389 3376 Power - ok
23:09:03.0434 3376 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys
23:09:03.0436 3376 PptpMiniport - ok
23:09:03.0471 3376 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys
23:09:03.0473 3376 Processor - ok
23:09:03.0513 3376 ProfSvc (5c78838b4d166d1a27db3a8a820c799a) C:\Windows\system32\profsvc.dll
23:09:03.0518 3376 ProfSvc - ok
23:09:03.0545 3376 ProtectedStorage (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
23:09:03.0546 3376 ProtectedStorage - ok
23:09:03.0596 3376 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys
23:09:03.0598 3376 Psched - ok
23:09:03.0674 3376 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys
23:09:03.0704 3376 ql2300 - ok
23:09:03.0789 3376 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys
23:09:03.0791 3376 ql40xx - ok
23:09:03.0826 3376 QWAVE (906191634e99aea92c4816150bda3732) C:\Windows\system32\qwave.dll
23:09:03.0842 3376 QWAVE - ok
23:09:03.0858 3376 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
23:09:03.0859 3376 QWAVEdrv - ok
23:09:03.0873 3376 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
23:09:03.0874 3376 RasAcd - ok
23:09:03.0920 3376 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
23:09:03.0922 3376 RasAgileVpn - ok
23:09:03.0935 3376 RasAuto (8f26510c5383b8dbe976de1cd00fc8c7) C:\Windows\System32\rasauto.dll
23:09:03.0939 3376 RasAuto - ok
23:09:03.0965 3376 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys
23:09:03.0967 3376 Rasl2tp - ok
23:09:04.0011 3376 RasMan (ee867a0870fc9e4972ba9eaad35651e2) C:\Windows\System32\rasmans.dll
23:09:04.0025 3376 RasMan - ok
23:09:04.0048 3376 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
23:09:04.0050 3376 RasPppoe - ok
23:09:04.0071 3376 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
23:09:04.0073 3376 RasSstp - ok
23:09:04.0107 3376 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys
23:09:04.0121 3376 rdbss - ok
23:09:04.0131 3376 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys
23:09:04.0132 3376 rdpbus - ok
23:09:04.0141 3376 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
23:09:04.0142 3376 RDPCDD - ok
23:09:04.0180 3376 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
23:09:04.0181 3376 RDPENCDD - ok
23:09:04.0191 3376 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
23:09:04.0192 3376 RDPREFMP - ok
23:09:04.0219 3376 RDPWD (6d76e6433574b058adcb0c50df834492) C:\Windows\system32\drivers\RDPWD.sys
23:09:04.0235 3376 RDPWD - ok
23:09:04.0281 3376 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys
23:09:04.0297 3376 rdyboost - ok
23:09:04.0434 3376 RegFilter (c3b79061634fbc3ba3379f557ad952c7) C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys
23:09:04.0435 3376 RegFilter - ok
23:09:04.0486 3376 RemoteAccess (254fb7a22d74e5511c73a3f6d802f192) C:\Windows\System32\mprdim.dll
23:09:04.0488 3376 RemoteAccess - ok
23:09:04.0519 3376 RemoteRegistry (e4d94f24081440b5fc5aa556c7c62702) C:\Windows\system32\regsvc.dll
23:09:04.0526 3376 RemoteRegistry - ok
23:09:04.0597 3376 RichVideo (616f6e52cae254727a886ba8eda1beea) C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
23:09:04.0600 3376 RichVideo - ok
23:09:04.0619 3376 RpcEptMapper (e4dc58cf7b3ea515ae917ff0d402a7bb) C:\Windows\System32\RpcEpMap.dll
23:09:04.0621 3376 RpcEptMapper - ok
23:09:04.0643 3376 RpcLocator (d5ba242d4cf8e384db90e6a8ed850b8c) C:\Windows\system32\locator.exe
23:09:04.0645 3376 RpcLocator - ok
23:09:04.0724 3376 RpcSs (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
23:09:04.0728 3376 RpcSs - ok
23:09:04.0787 3376 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
23:09:04.0788 3376 rspndr - ok
23:09:04.0832 3376 rzudd (6dd4726d289a891012fe99a5ee1ffa99) C:\Windows\system32\DRIVERS\rzudd.sys
23:09:04.0833 3376 rzudd - ok
23:09:04.0867 3376 SamSs (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
23:09:04.0869 3376 SamSs - ok
23:09:04.0897 3376 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys
23:09:04.0898 3376 sbp2port - ok
23:09:04.0916 3376 SCardSvr (9b7395789e3791a3b6d000fe6f8b131e) C:\Windows\System32\SCardSvr.dll
23:09:04.0921 3376 SCardSvr - ok
23:09:04.0935 3376 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys
23:09:04.0936 3376 scfilter - ok
23:09:04.0994 3376 Schedule (262f6592c3299c005fd6bec90fc4463a) C:\Windows\system32\schedsvc.dll
23:09:05.0012 3376 Schedule - ok
23:09:05.0032 3376 SCPolicySvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
23:09:05.0034 3376 SCPolicySvc - ok
23:09:05.0145 3376 ScsiAccess (958e956e119eb7b9aba142afed1b5ff4) C:\Program Files (x86)\Photodex\ProShowProducer\ScsiAccess.exe
23:09:05.0152 3376 ScsiAccess - ok
23:09:05.0221 3376 SDRSVC (6ea4234dc55346e0709560fe7c2c1972) C:\Windows\System32\SDRSVC.dll
23:09:05.0225 3376 SDRSVC - ok
23:09:05.0283 3376 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
23:09:05.0284 3376 secdrv - ok
23:09:05.0302 3376 seclogon (bc617a4e1b4fa8df523a061739a0bd87) C:\Windows\system32\seclogon.dll
23:09:05.0304 3376 seclogon - ok
23:09:05.0318 3376 SENS (c32ab8fa018ef34c0f113bd501436d21) C:\Windows\System32\sens.dll
23:09:05.0321 3376 SENS - ok
23:09:05.0336 3376 SensrSvc (0336cffafaab87a11541f1cf1594b2b2) C:\Windows\system32\sensrsvc.dll
23:09:05.0339 3376 SensrSvc - ok
23:09:05.0354 3376 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys
23:09:05.0355 3376 Serenum - ok
23:09:05.0374 3376 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys
23:09:05.0375 3376 Serial - ok
23:09:05.0404 3376 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys
23:09:05.0404 3376 sermouse - ok
23:09:05.0439 3376 SessionEnv (0b6231bf38174a1628c4ac812cc75804) C:\Windows\system32\sessenv.dll
23:09:05.0442 3376 SessionEnv - ok
23:09:05.0469 3376 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
23:09:05.0470 3376 sffdisk - ok
23:09:05.0484 3376 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
23:09:05.0486 3376 sffp_mmc - ok
23:09:05.0500 3376 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys
23:09:05.0500 3376 sffp_sd - ok
23:09:05.0512 3376 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys
23:09:05.0513 3376 sfloppy - ok
23:09:05.0557 3376 ShellHWDetection (aaf932b4011d14052955d4b212a4da8d) C:\Windows\System32\shsvcs.dll
23:09:05.0569 3376 ShellHWDetection - ok
23:09:05.0601 3376 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys
23:09:05.0603 3376 SiSRaid2 - ok
23:09:05.0623 3376 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys
23:09:05.0624 3376 SiSRaid4 - ok
23:09:05.0651 3376 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
23:09:05.0653 3376 Smb - ok
23:09:05.0693 3376 SNMPTRAP (6313f223e817cc09aa41811daa7f541d) C:\Windows\System32\snmptrap.exe
23:09:05.0696 3376 SNMPTRAP - ok
23:09:05.0708 3376 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
23:09:05.0709 3376 spldr - ok
23:09:05.0754 3376 Spooler (b96c17b5dc1424d56eea3a99e97428cd) C:\Windows\System32\spoolsv.exe
23:09:05.0774 3376 Spooler - ok
23:09:05.0937 3376 sppsvc (e17e0188bb90fae42d83e98707efa59c) C:\Windows\system32\sppsvc.exe
23:09:05.0989 3376 sppsvc - ok
23:09:06.0061 3376 sppuinotify (93d7d61317f3d4bc4f4e9f8a96a7de45) C:\Windows\system32\sppuinotify.dll
23:09:06.0063 3376 sppuinotify - ok
23:09:06.0116 3376 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys
23:09:06.0126 3376 srv - ok
23:09:06.0158 3376 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys
23:09:06.0168 3376 srv2 - ok
23:09:06.0185 3376 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys
23:09:06.0188 3376 srvnet - ok
23:09:06.0221 3376 SSDPSRV (51b52fbd583cde8aa9ba62b8b4298f33) C:\Windows\System32\ssdpsrv.dll
23:09:06.0227 3376 SSDPSRV - ok
23:09:06.0236 3376 SstpSvc (ab7aebf58dad8daab7a6c45e6a8885cb) C:\Windows\system32\sstpsvc.dll
23:09:06.0240 3376 SstpSvc - ok
23:09:06.0364 3376 Stereo Service (8544a200c40447e465f06e58687428bb) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
23:09:06.0375 3376 Stereo Service - ok
23:09:06.0394 3376 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys
23:09:06.0395 3376 stexstor - ok
23:09:06.0451 3376 stisvc (8dd52e8e6128f4b2da92ce27402871c1) C:\Windows\System32\wiaservc.dll
23:09:06.0469 3376 stisvc - ok
23:09:06.0506 3376 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys
23:09:06.0506 3376 swenum - ok
23:09:06.0551 3376 swprv (e08e46fdd841b7184194011ca1955a0b) C:\Windows\System32\swprv.dll
23:09:06.0583 3376 swprv - ok
23:09:06.0721 3376 SysMain (bf9ccc0bf39b418c8d0ae8b05cf95b7d) C:\Windows\system32\sysmain.dll
23:09:06.0778 3376 SysMain - ok
23:09:06.0890 3376 SysTool (b07e6681d303a612680223c729b021e2) C:\Windows\system32\DRIVERS\SysTool64.sys
23:09:06.0891 3376 SysTool - ok
23:09:06.0916 3376 TabletInputService (e3c61fd7b7c2557e1f1b0b4cec713585) C:\Windows\System32\TabSvc.dll
23:09:06.0917 3376 TabletInputService - ok
23:09:06.0956 3376 TapiSrv (40f0849f65d13ee87b9a9ae3c1dd6823) C:\Windows\System32\tapisrv.dll
23:09:06.0970 3376 TapiSrv - ok
23:09:06.0987 3376 TBS (1be03ac720f4d302ea01d40f588162f6) C:\Windows\System32\tbssvc.dll
23:09:06.0990 3376 TBS - ok
23:09:07.0119 3376 Tcpip (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\drivers\tcpip.sys
23:09:07.0161 3376 Tcpip - ok
23:09:07.0276 3376 TCPIP6 (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\DRIVERS\tcpip.sys
23:09:07.0284 3376 TCPIP6 - ok
23:09:07.0357 3376 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys
23:09:07.0358 3376 tcpipreg - ok
23:09:07.0376 3376 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
23:09:07.0377 3376 TDPIPE - ok
23:09:07.0457 3376 TDTCP (51c5eceb1cdee2468a1748be550cfbc8) C:\Windows\system32\drivers\tdtcp.sys
23:09:07.0458 3376 TDTCP - ok
23:09:07.0483 3376 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys
23:09:07.0485 3376 tdx - ok
23:09:07.0504 3376 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys
23:09:07.0505 3376 TermDD - ok
23:09:07.0570 3376 TermService (2e648163254233755035b46dd7b89123) C:\Windows\System32\termsrv.dll
23:09:07.0588 3376 TermService - ok
23:09:07.0606 3376 Themes (f0344071948d1a1fa732231785a0664c) C:\Windows\system32\themeservice.dll
23:09:07.0608 3376 Themes - ok
23:09:07.0637 3376 THREADORDER (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
23:09:07.0638 3376 THREADORDER - ok
23:09:07.0645 3376 TrkWks (7e7afd841694f6ac397e99d75cead49d) C:\Windows\System32\trkwks.dll
23:09:07.0648 3376 TrkWks - ok
23:09:07.0715 3376 TrustedInstaller (773212b2aaa24c1e31f10246b15b276c) C:\Windows\servicing\TrustedInstaller.exe
23:09:07.0722 3376 TrustedInstaller - ok
23:09:07.0750 3376 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys
23:09:07.0751 3376 tssecsrv - ok
23:09:07.0793 3376 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
23:09:07.0794 3376 TsUsbFlt - ok
23:09:07.0841 3376 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys
23:09:07.0844 3376 tunnel - ok
23:09:07.0861 3376 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys
23:09:07.0863 3376 uagp35 - ok
23:09:07.0898 3376 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys
23:09:07.0912 3376 udfs - ok
23:09:07.0930 3376 UI0Detect (3cbdec8d06b9968aba702eba076364a1) C:\Windows\system32\UI0Detect.exe
23:09:07.0932 3376 UI0Detect - ok
23:09:07.0946 3376 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
23:09:07.0947 3376 uliagpkx - ok
23:09:07.0983 3376 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\drivers\umbus.sys
23:09:07.0984 3376 umbus - ok
23:09:07.0996 3376 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys
23:09:07.0996 3376 UmPass - ok
23:09:08.0025 3376 upnphost (d47ec6a8e81633dd18d2436b19baf6de) C:\Windows\System32\upnphost.dll
23:09:08.0038 3376 upnphost - ok
23:09:08.0050 3376 upperdev - ok
23:09:08.0200 3376 UrlFilter (401984715693b87fdf4f600fbbebd366) C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys
23:09:08.0201 3376 UrlFilter - ok
23:09:08.0238 3376 USBAAPL64 (aa33fc47ed58c34e6e9261e4f850b7eb) C:\Windows\system32\Drivers\usbaapl64.sys
23:09:08.0239 3376 USBAAPL64 - ok
23:09:08.0267 3376 usbaudio (82e8f44688e6fac57b5b7c6fc7adbc2a) C:\Windows\system32\drivers\usbaudio.sys
23:09:08.0270 3376 usbaudio - ok
23:09:08.0287 3376 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys
23:09:08.0289 3376 usbccgp - ok
23:09:08.0317 3376 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
23:09:08.0319 3376 usbcir - ok
23:09:08.0324 3376 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\DRIVERS\usbehci.sys
23:09:08.0326 3376 usbehci - ok
23:09:08.0358 3376 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys
23:09:08.0372 3376 usbhub - ok
23:09:08.0384 3376 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys
23:09:08.0385 3376 usbohci - ok
23:09:08.0410 3376 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys
23:09:08.0411 3376 usbprint - ok
23:09:08.0448 3376 usbscan (aaa2513c8aed8b54b189fd0c6b1634c0) C:\Windows\system32\DRIVERS\usbscan.sys
23:09:08.0449 3376 usbscan - ok
23:09:08.0484 3376 usbser (4acee387fa8fd39f83564fcd2fc234f2) C:\Windows\system32\drivers\usbser.sys
23:09:08.0485 3376 usbser - ok
23:09:08.0489 3376 UsbserFilt - ok
23:09:08.0527 3376 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\drivers\USBSTOR.SYS
23:09:08.0528 3376 USBSTOR - ok
23:09:08.0548 3376 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\DRIVERS\usbuhci.sys
23:09:08.0549 3376 usbuhci - ok
23:09:08.0573 3376 UxSms (edbb23cbcf2cdf727d64ff9b51a6070e) C:\Windows\System32\uxsms.dll
23:09:08.0575 3376 UxSms - ok
23:09:08.0604 3376 VaultSvc (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
23:09:08.0606 3376 VaultSvc - ok
23:09:08.0678 3376 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
23:09:08.0679 3376 vdrvroot - ok
23:09:08.0719 3376 vds (8d6b481601d01a456e75c3210f1830be) C:\Windows\System32\vds.exe
23:09:08.0727 3376 vds - ok
23:09:08.0749 3376 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
23:09:08.0750 3376 vga - ok
23:09:08.0754 3376 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
23:09:08.0755 3376 VgaSave - ok
23:09:08.0774 3376 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys
23:09:08.0779 3376 vhdmp - ok
23:09:08.0815 3376 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
23:09:08.0816 3376 viaide - ok
23:09:08.0833 3376 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys
23:09:08.0835 3376 volmgr - ok
23:09:08.0872 3376 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys
23:09:08.0883 3376 volmgrx - ok
23:09:08.0903 3376 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys
23:09:08.0916 3376 volsnap - ok
23:09:08.0957 3376 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys
23:09:08.0958 3376 vsmraid - ok
23:09:09.0052 3376 VSS (b60ba0bc31b0cb414593e169f6f21cc2) C:\Windows\system32\vssvc.exe
23:09:09.0082 3376 VSS - ok
23:09:09.0214 3376 vvftav302 (0186ccf2557f71f8b7b26bb43ea8846b) C:\Windows\system32\drivers\vvftav302.sys
23:09:09.0229 3376 vvftav302 - ok
23:09:09.0240 3376 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\System32\drivers\vwifibus.sys
23:09:09.0241 3376 vwifibus - ok
23:09:09.0278 3376 W32Time (1c9d80cc3849b3788048078c26486e1a) C:\Windows\system32\w32time.dll
23:09:09.0291 3376 W32Time - ok
23:09:09.0388 3376 W3SVC (b32009db1972e7f2c227499289c4384a) C:\Windows\system32\inetsrv\iisw3adm.dll
23:09:09.0398 3376 W3SVC - ok
23:09:09.0411 3376 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys
23:09:09.0412 3376 WacomPen - ok
23:09:09.0524 3376 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
23:09:09.0574 3376 WANARP - ok
23:09:09.0682 3376 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
23:09:09.0683 3376 Wanarpv6 - ok
23:09:09.0789 3376 WAS (b32009db1972e7f2c227499289c4384a) C:\Windows\system32\inetsrv\iisw3adm.dll
23:09:09.0791 3376 WAS - ok
23:09:09.0874 3376 WatAdminSvc (3cec96de223e49eaae3651fcf8faea6c) C:\Windows\system32\Wat\WatAdminSvc.exe
23:09:09.0897 3376 WatAdminSvc - ok
23:09:09.0986 3376 wbengine (78f4e7f5c56cb9716238eb57da4b6a75) C:\Windows\system32\wbengine.exe
23:09:10.0017 3376 wbengine - ok
23:09:10.0154 3376 WbioSrvc (3aa101e8edab2db4131333f4325c76a3) C:\Windows\System32\wbiosrvc.dll
23:09:10.0160 3376 WbioSrvc - ok
23:09:10.0203 3376 wcncsvc (7368a2afd46e5a4481d1de9d14848edd) C:\Windows\System32\wcncsvc.dll
23:09:10.0215 3376 wcncsvc - ok
23:09:10.0223 3376 WcsPlugInService (20f7441334b18cee52027661df4a6129) C:\Windows\System32\WcsPlugInService.dll
23:09:10.0225 3376 WcsPlugInService - ok
23:09:10.0291 3376 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys
23:09:10.0291 3376 Wd - ok
23:09:10.0332 3376 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
23:09:10.0349 3376 Wdf01000 - ok
23:09:10.0365 3376 WdiServiceHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
23:09:10.0368 3376 WdiServiceHost - ok
23:09:10.0372 3376 WdiSystemHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
23:09:10.0374 3376 WdiSystemHost - ok
23:09:10.0400 3376 WebClient (3db6d04e1c64272f8b14eb8bc4616280) C:\Windows\System32\webclnt.dll
23:09:10.0415 3376 WebClient - ok
23:09:10.0436 3376 Wecsvc (c749025a679c5103e575e3b48e092c43) C:\Windows\system32\wecsvc.dll
23:09:10.0453 3376 Wecsvc - ok
23:09:10.0468 3376 wercplsupport (7e591867422dc788b9e5bd337a669a08) C:\Windows\System32\wercplsupport.dll
23:09:10.0471 3376 wercplsupport - ok
23:09:10.0504 3376 WerSvc (6d137963730144698cbd10f202e9f251) C:\Windows\System32\WerSvc.dll
23:09:10.0507 3376 WerSvc - ok
23:09:10.0525 3376 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
23:09:10.0525 3376 WfpLwf - ok
23:09:10.0541 3376 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
23:09:10.0541 3376 WIMMount - ok
23:09:10.0609 3376 WinDefend - ok
23:09:10.0626 3376 WinHttpAutoProxySvc - ok
23:09:10.0690 3376 Winmgmt (19b07e7e8915d701225da41cb3877306) C:\Windows\system32\wbem\WMIsvc.dll
23:09:10.0706 3376 Winmgmt - ok
23:09:10.0818 3376 WinRM (bcb1310604aa415c4508708975b3931e) C:\Windows\system32\WsmSvc.dll
23:09:10.0869 3376 WinRM - ok
23:09:10.0978 3376 WinUsb (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUsb.sys
23:09:10.0979 3376 WinUsb - ok
23:09:11.0052 3376 Wlansvc (4fada86e62f18a1b2f42ba18ae24e6aa) C:\Windows\System32\wlansvc.dll
23:09:11.0065 3376 Wlansvc - ok
23:09:11.0177 3376 wlcrasvc (06c8fa1cf39de6a735b54d906ba791c6) C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
23:09:11.0179 3376 wlcrasvc - ok
23:09:11.0335 3376 wlidsvc (2bacd71123f42cea603f4e205e1ae337) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
23:09:11.0368 3376 wlidsvc - ok
23:09:11.0399 3376 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys
23:09:11.0400 3376 WmiAcpi - ok
23:09:11.0457 3376 wmiApSrv (38b84c94c5a8af291adfea478ae54f93) C:\Windows\system32\wbem\WmiApSrv.exe
23:09:11.0469 3376 wmiApSrv - ok
23:09:11.0521 3376 WMPNetworkSvc - ok
23:09:11.0535 3376 WPCSvc (96c6e7100d724c69fcf9e7bf590d1dca) C:\Windows\System32\wpcsvc.dll
23:09:11.0538 3376 WPCSvc - ok
23:09:11.0564 3376 WPDBusEnum (93221146d4ebbf314c29b23cd6cc391d) C:\Windows\system32\wpdbusenum.dll
23:09:11.0568 3376 WPDBusEnum - ok
23:09:11.0586 3376 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
23:09:11.0587 3376 ws2ifsl - ok
23:09:11.0632 3376 wscsvc (e8b1fe6669397d1772d8196df0e57a9e) C:\Windows\system32\wscsvc.dll
23:09:11.0635 3376 wscsvc - ok
23:09:11.0638 3376 WSearch - ok
23:09:11.0783 3376 wuauserv (9df12edbc698b0bc353b3ef84861e430) C:\Windows\system32\wuaueng.dll
23:09:11.0819 3376 wuauserv - ok
23:09:11.0877 3376 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys
23:09:11.0878 3376 WudfPf - ok
23:09:11.0924 3376 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys
23:09:11.0927 3376 WUDFRd - ok
23:09:11.0952 3376 wudfsvc (7a95c95b6c4cf292d689106bcae49543) C:\Windows\System32\WUDFSvc.dll
23:09:11.0955 3376 wudfsvc - ok
23:09:11.0988 3376 WwanSvc (9a3452b3c2a46c073166c5cf49fad1ae) C:\Windows\System32\wwansvc.dll
23:09:12.0003 3376 WwanSvc - ok
23:09:12.0090 3376 ZSMC301b (6e53d1058b900443949c69ec6215d98f) C:\Windows\system32\Drivers\usbVM302.sys
23:09:12.0123 3376 ZSMC301b - ok
23:09:12.0177 3376 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
23:09:12.0360 3376 \Device\Harddisk0\DR0 - ok
23:09:12.0368 3376 Boot (0x1200) (133d697514fd52e86d5430d6edc1185c) \Device\Harddisk0\DR0\Partition0
23:09:12.0369 3376 \Device\Harddisk0\DR0\Partition0 - ok
23:09:12.0379 3376 Boot (0x1200) (b1bab3a64d88ede6095c6ee108c7008b) \Device\Harddisk0\DR0\Partition1
23:09:12.0380 3376 \Device\Harddisk0\DR0\Partition1 - ok
23:09:12.0399 3376 Boot (0x1200) (ed4ea400ad7f212b02f68ffb1b589363) \Device\Harddisk0\DR0\Partition2
23:09:12.0400 3376 \Device\Harddisk0\DR0\Partition2 - ok
23:09:12.0400 3376 ============================================================
23:09:12.0400 3376 Scan finished
23:09:12.0400 3376 ============================================================
23:09:12.0408 0956 Detected object count: 0
23:09:12.0408 0956 Actual detected object count: 0
23:09:39.0778 5076 ============================================================
23:09:39.0778 5076 Scan started
23:09:39.0778 5076 Mode: Manual; SigCheck;
23:09:39.0778 5076 ============================================================
23:09:40.0348 5076 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
23:09:40.0445 5076 1394ohci - ok
23:09:40.0479 5076 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
23:09:40.0493 5076 ACPI - ok
23:09:40.0510 5076 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
23:09:40.0554 5076 AcpiPmi - ok
23:09:40.0581 5076 adfs (2f0683fd2df1d92e891caca14b45a8c1) C:\Windows\system32\drivers\adfs.sys
23:09:40.0625 5076 adfs - ok
23:09:40.0747 5076 AdobeFlashPlayerUpdateSvc (76d5a3d2a50402a0b9b6ed13c4371e79) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
23:09:40.0757 5076 AdobeFlashPlayerUpdateSvc - ok
23:09:40.0803 5076 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys
23:09:40.0819 5076 adp94xx - ok
23:09:40.0841 5076 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys
23:09:40.0855 5076 adpahci - ok
23:09:40.0879 5076 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys
23:09:40.0891 5076 adpu320 - ok
23:09:40.0916 5076 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\Windows\System32\aelupsvc.dll
23:09:40.0957 5076 AeLookupSvc - ok
23:09:41.0001 5076 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys
23:09:41.0036 5076 AFD - ok
23:09:41.0056 5076 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
23:09:41.0067 5076 agp440 - ok
23:09:41.0082 5076 ALG (3290d6946b5e30e70414990574883ddb) C:\Windows\System32\alg.exe
23:09:41.0121 5076 ALG - ok
23:09:41.0138 5076 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
23:09:41.0149 5076 aliide - ok
23:09:41.0154 5076 AMD External Events Utility - ok
23:09:41.0169 5076 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
23:09:41.0179 5076 amdide - ok
23:09:41.0197 5076 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys
23:09:41.0217 5076 AmdK8 - ok
23:09:41.0231 5076 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
23:09:41.0251 5076 AmdPPM - ok
23:09:41.0282 5076 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys
23:09:41.0293 5076 amdsata - ok
23:09:41.0316 5076 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys
23:09:41.0329 5076 amdsbs - ok
23:09:41.0339 5076 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys
23:09:41.0350 5076 amdxata - ok
23:09:41.0382 5076 AnyDVD (aa10a90af32ba0682820a51fbc4ace90) C:\Windows\system32\Drivers\AnyDVD.sys
23:09:41.0393 5076 AnyDVD - ok
23:09:41.0449 5076 AppHostSvc (59d01fa91962c9c1e9b4022b2d3b46db) C:\Windows\system32\inetsrv\apphostsvc.dll
23:09:41.0491 5076 AppHostSvc - ok
23:09:41.0521 5076 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
23:09:41.0562 5076 AppID - ok
23:09:41.0573 5076 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\Windows\System32\appidsvc.dll
23:09:41.0600 5076 AppIDSvc - ok
23:09:41.0624 5076 Appinfo (3977d4a871ca0d4f2ed1e7db46829731) C:\Windows\System32\appinfo.dll
23:09:41.0678 5076 Appinfo - ok
23:09:41.0779 5076 Apple Mobile Device (3debbecf665dcdde3a95d9b902010817) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
23:09:41.0788 5076 Apple Mobile Device - ok
23:09:41.0805 5076 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys
23:09:41.0817 5076 arc - ok
23:09:41.0836 5076 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys
23:09:41.0848 5076 arcsas - ok
23:09:41.0944 5076 aspnet_state (9217d874131ae6ff8f642f124f00a555) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
23:09:41.0953 5076 aspnet_state - ok
23:09:41.0966 5076 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
23:09:41.0994 5076 AsyncMac - ok
23:09:42.0020 5076 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
23:09:42.0031 5076 atapi - ok
23:09:42.0085 5076 atksgt (fc0e8778c000291caf60eb88c011e931) C:\Windows\system32\DRIVERS\atksgt.sys
23:09:42.0097 5076 atksgt - ok
23:09:42.0153 5076 AudioEndpointBuilder (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
23:09:42.0197 5076 AudioEndpointBuilder - ok
23:09:42.0202 5076 AudioSrv (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
23:09:42.0238 5076 AudioSrv - ok
23:09:42.0300 5076 AVP (2718dc27571bd1e37813f5759d2dc118) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe
23:09:42.0311 5076 AVP - ok
23:09:42.0343 5076 AxInstSV (a6bf31a71b409dfa8cac83159e1e2aff) C:\Windows\System32\AxInstSV.dll
23:09:42.0422 5076 AxInstSV - ok
23:09:42.0501 5076 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys
23:09:42.0537 5076 b06bdrv - ok
23:09:42.0566 5076 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
23:09:42.0580 5076 b57nd60a - ok
23:09:42.0647 5076 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\Windows\System32\bdesvc.dll
23:09:42.0683 5076 BDESVC - ok
23:09:42.0696 5076 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
23:09:42.0732 5076 Beep - ok
23:09:42.0803 5076 BITS (1ea7969e3271cbc59e1730697dc74682) C:\Windows\System32\qmgr.dll
23:09:42.0850 5076 BITS - ok
23:09:42.0864 5076 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
23:09:42.0887 5076 blbdrive - ok
23:09:42.0958 5076 Bonjour Service (ebbcd5dfbb1de70e8f4af8fa59e401fd) C:\Program Files\Bonjour\mDNSResponder.exe
23:09:42.0970 5076 Bonjour Service - ok
23:09:42.0986 5076 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
23:09:43.0013 5076 bowser - ok
23:09:43.0026 5076 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys
23:09:43.0086 5076 BrFiltLo - ok
23:09:43.0106 5076 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys
23:09:43.0119 5076 BrFiltUp - ok
23:09:43.0133 5076 BridgeMP (5c2f352a4e961d72518261257aae204b) C:\Windows\system32\DRIVERS\bridge.sys
23:09:43.0175 5076 BridgeMP - ok
23:09:43.0201 5076 Browser (8ef0d5c41ec907751b8429162b1239ed) C:\Windows\System32\browser.dll
23:09:43.0228 5076 Browser - ok
23:09:43.0248 5076 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
23:09:43.0287 5076 Brserid - ok
23:09:43.0302 5076 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
23:09:43.0315 5076 BrSerWdm - ok
23:09:43.0336 5076 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
23:09:43.0359 5076 BrUsbMdm - ok
23:09:43.0378 5076 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
23:09:43.0389 5076 BrUsbSer - ok
23:09:43.0404 5076 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
23:09:43.0423 5076 BTHMODEM - ok
23:09:43.0449 5076 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\Windows\system32\bthserv.dll
23:09:43.0485 5076 bthserv - ok
23:09:43.0506 5076 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
23:09:43.0550 5076 cdfs - ok
23:09:43.0578 5076 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\drivers\cdrom.sys
23:09:43.0596 5076 cdrom - ok
23:09:43.0618 5076 CertPropSvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
23:09:43.0657 5076 CertPropSvc - ok
23:09:43.0689 5076 chdrvr01 (8504f0aa0b81789da9a5cab08cbacd51) C:\Windows\system32\DRIVERS\chdrvr01.sys
23:09:43.0700 5076 chdrvr01 - ok
23:09:43.0716 5076 chdrvr02 (38b5c53eb02e8df28923d5917fbd9f1f) C:\Windows\system32\DRIVERS\chdrvr02.sys
23:09:43.0723 5076 chdrvr02 - ok
23:09:43.0745 5076 chdrvr03 (7b42079e66bfdf958fbd9fe67797d6d3) C:\Windows\system32\DRIVERS\chdrvr03.sys
23:09:43.0752 5076 chdrvr03 - ok
23:09:43.0773 5076 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
23:09:43.0786 5076 circlass - ok
23:09:43.0815 5076 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
23:09:43.0829 5076 CLFS - ok
23:09:43.0884 5076 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
23:09:43.0894 5076 clr_optimization_v2.0.50727_32 - ok
23:09:43.0949 5076 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
23:09:43.0958 5076 clr_optimization_v2.0.50727_64 - ok
23:09:44.0019 5076 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
23:09:44.0028 5076 clr_optimization_v4.0.30319_32 - ok
23:09:44.0054 5076 clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
23:09:44.0064 5076 clr_optimization_v4.0.30319_64 - ok
23:09:44.0085 5076 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
23:09:44.0103 5076 CmBatt - ok
23:09:44.0116 5076 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
23:09:44.0130 5076 cmdide - ok
23:09:44.0172 5076 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys
23:09:44.0204 5076 CNG - ok
23:09:44.0216 5076 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
23:09:44.0228 5076 Compbatt - ok
23:09:44.0252 5076 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys
23:09:44.0278 5076 CompositeBus - ok
23:09:44.0285 5076 COMSysApp - ok
23:09:44.0348 5076 cpudrv64 (3ca734ce373e5675fbc15ca2c45228e5) C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys
23:09:44.0358 5076 cpudrv64 - ok
23:09:44.0375 5076 cpuz134 (17719a7f571d4cd08223f0b30f71b8b8) C:\Windows\system32\drivers\cpuz134_x64.sys
23:09:44.0384 5076 cpuz134 - ok
23:09:44.0399 5076 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys
23:09:44.0410 5076 crcdisk - ok
23:09:44.0463 5076 Creative ALchemy AL6 Licensing Service (c8bd651e13895b93ed9ec5b4f1df42bc) C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe
23:09:44.0472 5076 Creative ALchemy AL6 Licensing Service ( UnsignedFile.Multi.Generic ) - warning
23:09:44.0472 5076 Creative ALchemy AL6 Licensing Service - detected UnsignedFile.Multi.Generic (1)
23:09:44.0496 5076 Creative Audio Engine Licensing Service (c0ead9f8ab83d41ff07303c75589c2b8) C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
23:09:44.0514 5076 Creative Audio Engine Licensing Service ( UnsignedFile.Multi.Generic ) - warning
23:09:44.0514 5076 Creative Audio Engine Licensing Service - detected UnsignedFile.Multi.Generic (1)
23:09:44.0541 5076 CryptSvc (15597883fbe9b056f276ada3ad87d9af) C:\Windows\system32\cryptsvc.dll
23:09:44.0582 5076 CryptSvc - ok
23:09:44.0609 5076 CTAudSvcService (69cdba2b9c397e349a04fa70dd9170a2) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
23:09:44.0625 5076 CTAudSvcService ( UnsignedFile.Multi.Generic ) - warning
23:09:44.0625 5076 CTAudSvcService - detected UnsignedFile.Multi.Generic (1)
23:09:44.0663 5076 DcomLaunch (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
23:09:44.0707 5076 DcomLaunch - ok
23:09:44.0733 5076 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\Windows\System32\defragsvc.dll
23:09:44.0773 5076 defragsvc - ok
23:09:44.0777 5076 Scan interrupted by user!
23:09:44.0777 5076 Scan interrupted by user!
23:09:44.0777 5076 Scan interrupted by user!
23:09:44.0777 5076 ============================================================
23:09:44.0777 5076 Scan finished
23:09:44.0777 5076 ============================================================
23:09:44.0784 4980 Detected object count: 3
23:09:44.0784 4980 Actual detected object count: 3
23:09:46.0814 4980 Creative ALchemy AL6 Licensing Service ( UnsignedFile.Multi.Generic ) - skipped by user
23:09:46.0814 4980 Creative ALchemy AL6 Licensing Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
23:09:46.0814 4980 Creative Audio Engine Licensing Service ( UnsignedFile.Multi.Generic ) - skipped by user
23:09:46.0814 4980 Creative Audio Engine Licensing Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
23:09:46.0815 4980 CTAudSvcService ( UnsignedFile.Multi.Generic ) - skipped by user
23:09:46.0815 4980 CTAudSvcService ( UnsignedFile.Multi.Generic ) - User select action: Skip
23:09:53.0269 3252 ============================================================
23:09:53.0269 3252 Scan started
23:09:53.0269 3252 Mode: Manual;
23:09:53.0269 3252 ============================================================
23:09:53.0663 3252 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
23:09:53.0665 3252 1394ohci - ok
23:09:53.0692 3252 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
23:09:53.0693 3252 ACPI - ok
23:09:53.0712 3252 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
23:09:53.0712 3252 AcpiPmi - ok
23:09:53.0750 3252 adfs (2f0683fd2df1d92e891caca14b45a8c1) C:\Windows\system32\drivers\adfs.sys
23:09:53.0750 3252 adfs - ok
23:09:53.0838 3252 AdobeFlashPlayerUpdateSvc (76d5a3d2a50402a0b9b6ed13c4371e79) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
23:09:53.0839 3252 AdobeFlashPlayerUpdateSvc - ok
23:09:53.0883 3252 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys
23:09:53.0885 3252 adp94xx - ok
23:09:53.0911 3252 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys
23:09:53.0912 3252 adpahci - ok
23:09:53.0938 3252 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys
23:09:53.0939 3252 adpu320 - ok
23:09:53.0961 3252 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\Windows\System32\aelupsvc.dll
23:09:53.0962 3252 AeLookupSvc - ok
23:09:54.0003 3252 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys
23:09:54.0005 3252 AFD - ok
23:09:54.0025 3252 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
23:09:54.0026 3252 agp440 - ok
23:09:54.0040 3252 ALG (3290d6946b5e30e70414990574883ddb) C:\Windows\System32\alg.exe
23:09:54.0041 3252 ALG - ok
23:09:54.0052 3252 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
23:09:54.0052 3252 aliide - ok
23:09:54.0058 3252 AMD External Events Utility - ok
23:09:54.0072 3252 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
23:09:54.0072 3252 amdide - ok
23:09:54.0088 3252 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys
23:09:54.0088 3252 AmdK8 - ok
23:09:54.0112 3252 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
23:09:54.0113 3252 AmdPPM - ok
23:09:54.0137 3252 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys
23:09:54.0138 3252 amdsata - ok
23:09:54.0170 3252 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys
23:09:54.0171 3252 amdsbs - ok
23:09:54.0187 3252 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys
23:09:54.0187 3252 amdxata - ok
23:09:54.0218 3252 AnyDVD (aa10a90af32ba0682820a51fbc4ace90) C:\Windows\system32\Drivers\AnyDVD.sys
23:09:54.0219 3252 AnyDVD - ok
23:09:54.0285 3252 AppHostSvc (59d01fa91962c9c1e9b4022b2d3b46db) C:\Windows\system32\inetsrv\apphostsvc.dll
23:09:54.0285 3252 AppHostSvc - ok
23:09:54.0312 3252 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
23:09:54.0313 3252 AppID - ok
23:09:54.0331 3252 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\Windows\System32\appidsvc.dll
23:09:54.0332 3252 AppIDSvc - ok
23:09:54.0360 3252 Appinfo (3977d4a871ca0d4f2ed1e7db46829731) C:\Windows\System32\appinfo.dll
23:09:54.0361 3252 Appinfo - ok
23:09:54.0459 3252 Apple Mobile Device (3debbecf665dcdde3a95d9b902010817) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
23:09:54.0459 3252 Apple Mobile Device - ok
23:09:54.0475 3252 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys
23:09:54.0476 3252 arc - ok
23:09:54.0496 3252 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys
23:09:54.0496 3252 arcsas - ok
23:09:54.0591 3252 aspnet_state (9217d874131ae6ff8f642f124f00a555) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
23:09:54.0591 3252 aspnet_state - ok
23:09:54.0602 3252 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
23:09:54.0603 3252 AsyncMac - ok
23:09:54.0634 3252 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
23:09:54.0635 3252 atapi - ok
23:09:54.0677 3252 atksgt (fc0e8778c000291caf60eb88c011e931) C:\Windows\system32\DRIVERS\atksgt.sys
23:09:54.0678 3252 atksgt - ok
23:09:54.0720 3252 AudioEndpointBuilder (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
23:09:54.0723 3252 AudioEndpointBuilder - ok
23:09:54.0731 3252 AudioSrv (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
23:09:54.0735 3252 AudioSrv - ok
23:09:54.0782 3252 AVP (2718dc27571bd1e37813f5759d2dc118) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe
23:09:54.0783 3252 AVP - ok
23:09:54.0813 3252 AxInstSV (a6bf31a71b409dfa8cac83159e1e2aff) C:\Windows\System32\AxInstSV.dll
23:09:54.0814 3252 AxInstSV - ok
23:09:54.0861 3252 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys
23:09:54.0863 3252 b06bdrv - ok
23:09:54.0880 3252 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
23:09:54.0882 3252 b57nd60a - ok
23:09:54.0909 3252 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\Windows\System32\bdesvc.dll
23:09:54.0910 3252 BDESVC - ok
23:09:54.0916 3252 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
23:09:54.0916 3252 Beep - ok
23:09:54.0984 3252 BITS (1ea7969e3271cbc59e1730697dc74682) C:\Windows\System32\qmgr.dll
23:09:54.0989 3252 BITS - ok
23:09:55.0000 3252 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
23:09:55.0001 3252 blbdrive - ok
23:09:55.0094 3252 Bonjour Service (ebbcd5dfbb1de70e8f4af8fa59e401fd) C:\Program Files\Bonjour\mDNSResponder.exe
23:09:55.0097 3252 Bonjour Service - ok
23:09:55.0123 3252 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
23:09:55.0124 3252 bowser - ok
23:09:55.0141 3252 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys
23:09:55.0141 3252 BrFiltLo - ok
23:09:55.0161 3252 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys
23:09:55.0161 3252 BrFiltUp - ok
23:09:55.0181 3252 BridgeMP (5c2f352a4e961d72518261257aae204b) C:\Windows\system32\DRIVERS\bridge.sys
23:09:55.0182 3252 BridgeMP - ok
23:09:55.0216 3252 Browser (8ef0d5c41ec907751b8429162b1239ed) C:\Windows\System32\browser.dll
23:09:55.0217 3252 Browser - ok
23:09:55.0241 3252 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
23:09:55.0243 3252 Brserid - ok
23:09:55.0262 3252 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
23:09:55.0262 3252 BrSerWdm - ok
23:09:55.0274 3252 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
23:09:55.0274 3252 BrUsbMdm - ok
23:09:55.0283 3252 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
23:09:55.0283 3252 BrUsbSer - ok
23:09:55.0296 3252 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
23:09:55.0297 3252 BTHMODEM - ok
23:09:55.0320 3252 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\Windows\system32\bthserv.dll
23:09:55.0321 3252 bthserv - ok
23:09:55.0344 3252 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
23:09:55.0345 3252 cdfs - ok
23:09:55.0371 3252 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\drivers\cdrom.sys
23:09:55.0372 3252 cdrom - ok
23:09:55.0400 3252 CertPropSvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
23:09:55.0401 3252 CertPropSvc - ok
23:09:55.0438 3252 chdrvr01 (8504f0aa0b81789da9a5cab08cbacd51) C:\Windows\system32\DRIVERS\chdrvr01.sys
23:09:55.0439 3252 chdrvr01 - ok
23:09:55.0454 3252 chdrvr02 (38b5c53eb02e8df28923d5917fbd9f1f) C:\Windows\system32\DRIVERS\chdrvr02.sys
23:09:55.0455 3252 chdrvr02 - ok
23:09:55.0482 3252 chdrvr03 (7b42079e66bfdf958fbd9fe67797d6d3) C:\Windows\system32\DRIVERS\chdrvr03.sys
23:09:55.0483 3252 chdrvr03 - ok
23:09:55.0500 3252 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
23:09:55.0500 3252 circlass - ok
23:09:55.0532 3252 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
23:09:55.0534 3252 CLFS - ok
23:09:55.0588 3252 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
23:09:55.0589 3252 clr_optimization_v2.0.50727_32 - ok
23:09:55.0642 3252 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
23:09:55.0643 3252 clr_optimization_v2.0.50727_64 - ok
23:09:55.0702 3252 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
23:09:55.0703 3252 clr_optimization_v4.0.30319_32 - ok
23:09:55.0736 3252 clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
23:09:55.0737 3252 clr_optimization_v4.0.30319_64 - ok
23:09:55.0746 3252 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
23:09:55.0746 3252 CmBatt - ok
23:09:55.0764 3252 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
23:09:55.0765 3252 cmdide - ok
23:09:55.0810 3252 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys
23:09:55.0812 3252 CNG - ok
23:09:55.0832 3252 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
23:09:55.0833 3252 Compbatt - ok
23:09:55.0857 3252 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys
23:09:55.0858 3252 CompositeBus - ok
23:09:55.0864 3252 COMSysApp - ok
23:09:55.0930 3252 cpudrv64 (3ca734ce373e5675fbc15ca2c45228e5) C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys
23:09:55.0931 3252 cpudrv64 - ok
23:09:55.0947 3252 cpuz134 (17719a7f571d4cd08223f0b30f71b8b8) C:\Windows\system32\drivers\cpuz134_x64.sys
23:09:55.0947 3252 cpuz134 - ok
23:09:55.0958 3252 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys
23:09:55.0959 3252 crcdisk - ok
23:09:56.0024 3252 Creative ALchemy AL6 Licensing Service (c8bd651e13895b93ed9ec5b4f1df42bc) C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe
23:09:56.0025 3252 Creative ALchemy AL6 Licensing Service - ok
23:09:56.0044 3252 Creative Audio Engine Licensing Service (c0ead9f8ab83d41ff07303c75589c2b8) C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
23:09:56.0045 3252 Creative Audio Engine Licensing Service - ok
23:09:56.0088 3252 CryptSvc (15597883fbe9b056f276ada3ad87d9af) C:\Windows\system32\cryptsvc.dll
23:09:56.0089 3252 CryptSvc - ok
23:09:56.0114 3252 CTAudSvcService (69cdba2b9c397e349a04fa70dd9170a2) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
23:09:56.0116 3252 CTAudSvcService - ok
23:09:56.0169 3252 DcomLaunch (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
23:09:56.0173 3252 DcomLaunch - ok
23:09:56.0215 3252 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\Windows\System32\defragsvc.dll
23:09:56.0217 3252 defragsvc - ok
23:09:56.0262 3252 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
23:09:56.0263 3252 DfsC - ok
23:09:56.0298 3252 Dhcp (43d808f5d9e1a18e5eeb5ebc83969e4e) C:\Windows\system32\dhcpcore.dll
23:09:56.0300 3252 Dhcp - ok
23:09:56.0320 3252 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
23:09:56.0321 3252 discache - ok
23:09:56.0333 3252 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys
23:09:56.0334 3252 Disk - ok
23:09:56.0372 3252 Dnscache (16835866aaa693c7d7fceba8fff706e4) C:\Windows\System32\dnsrslvr.dll
23:09:56.0374 3252 Dnscache - ok
23:09:56.0399 3252 dot3svc (b1fb3ddca0fdf408750d5843591afbc6) C:\Windows\System32\dot3svc.dll
23:09:56.0401 3252 dot3svc - ok
23:09:56.0427 3252 Dot4 (b42ed0320c6e41102fde0005154849bb) C:\Windows\system32\DRIVERS\Dot4.sys
23:09:56.0428 3252 Dot4 - ok
23:09:56.0458 3252 Dot4Print (e9f5969233c5d89f3c35e3a66a52a361) C:\Windows\system32\drivers\Dot4Prt.sys
23:09:56.0458 3252 Dot4Print - ok
23:09:56.0482 3252 dot4usb (fd05a02b0370bc3000f402e543ca5814) C:\Windows\system32\DRIVERS\dot4usb.sys
23:09:56.0483 3252 dot4usb - ok
23:09:56.0517 3252 DPS (b26f4f737e8f9df4f31af6cf31d05820) C:\Windows\system32\dps.dll
23:09:56.0519 3252 DPS - ok
23:09:56.0545 3252 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
23:09:56.0545 3252 drmkaud - ok
23:09:56.0617 3252 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
23:09:56.0621 3252 DXGKrnl - ok
23:09:56.0645 3252 e1express (416a2007878ed1d6fc5dddb9e1f6db3e) C:\Windows\system32\DRIVERS\e1e6032e.sys
23:09:56.0647 3252 e1express - ok
23:09:56.0664 3252 EapHost (e2dda8726da9cb5b2c4000c9018a9633) C:\Windows\System32\eapsvc.dll
23:09:56.0666 3252 EapHost - ok
23:09:56.0827 3252 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys
23:09:56.0841 3252 ebdrv - ok
23:09:56.0942 3252 EFS (c118a82cd78818c29ab228366ebf81c3) C:\Windows\System32\lsass.exe
23:09:56.0943 3252 EFS - ok
23:09:57.0001 3252 ehRecvr (c4002b6b41975f057d98c439030cea07) C:\Windows\ehome\ehRecvr.exe
23:09:57.0004 3252 ehRecvr - ok
23:09:57.0031 3252 ehSched (4705e8ef9934482c5bb488ce28afc681) C:\Windows\ehome\ehsched.exe
23:09:57.0031 3252 ehSched - ok
23:09:57.0080 3252 ElbyCDIO (4456e16591843c4506772d2c37834141) C:\Windows\system32\Drivers\ElbyCDIO.sys
23:09:57.0081 3252 ElbyCDIO - ok
23:09:57.0108 3252 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys
23:09:57.0110 3252 elxstor - ok
23:09:57.0135 3252 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
23:09:57.0136 3252 ErrDev - ok
23:09:57.0187 3252 EventSystem (4166f82be4d24938977dd1746be9b8a0) C:\Windows\system32\es.dll
23:09:57.0189 3252 EventSystem - ok
23:09:57.0217 3252 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
23:09:57.0218 3252 exfat - ok
23:09:57.0237 3252 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
23:09:57.0238 3252 fastfat - ok
23:09:57.0307 3252 Fax (dbefd454f8318a0ef691fdd2eaab44eb) C:\Windows\system32\fxssvc.exe
23:09:57.0311 3252 Fax - ok
23:09:57.0340 3252 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
23:09:57.0340 3252 fdc - ok
23:09:57.0358 3252 fdPHost (0438cab2e03f4fb61455a7956026fe86) C:\Windows\system32\fdPHost.dll
23:09:57.0359 3252 fdPHost - ok
23:09:57.0376 3252 FDResPub (802496cb59a30349f9a6dd22d6947644) C:\Windows\system32\fdrespub.dll
23:09:57.0377 3252 FDResPub - ok
23:09:57.0379 3252 feuorkjv - ok
23:09:57.0391 3252 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
23:09:57.0391 3252 FileInfo - ok
23:09:57.0487 3252 FileMonitor (060cc45cecae2feaff9c8c52d8fafaa8) C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys
23:09:57.0487 3252 FileMonitor - ok
23:09:57.0504 3252 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
23:09:57.0505 3252 Filetrace - ok
23:09:57.0605 3252 FLEXnet Licensing Service (73081cf28f0ae20a52ca4f67cee6e6b0) C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
23:09:57.0610 3252 FLEXnet Licensing Service - ok
23:09:57.0707 3252 FLEXnet Licensing Service 64 (1c3fb052a0bb72edaed90785c34d6eed) C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
23:09:57.0711 3252 FLEXnet Licensing Service 64 - ok
23:09:57.0810 3252 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
23:09:57.0811 3252 flpydisk - ok
23:09:57.0856 3252 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
23:09:57.0858 3252 FltMgr - ok
23:09:57.0946 3252 FontCache (5c4cb4086fb83115b153e47add961a0c) C:\Windows\system32\FntCache.dll
23:09:57.0952 3252 FontCache - ok
23:09:58.0028 3252 FontCache3.0.0.0 (a8b7f3818ab65695e3a0bb3279f6dce6) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
23:09:58.0028 3252 FontCache3.0.0.0 - ok
23:09:58.0047 3252 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
23:09:58.0048 3252 FsDepends - ok
23:09:58.0079 3252 fssfltr (6c06701bf1db05405804d7eb610991ce) C:\Windows\system32\DRIVERS\fssfltr.sys
23:09:58.0079 3252 fssfltr - ok
23:09:58.0219 3252 fsssvc (40cdfad174b3d5e80f95dda003c0b97f) C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe
23:09:58.0226 3252 fsssvc - ok
23:09:58.0313 3252 Fs_Rec (6bd9295cc032dd3077c671fccf579a7b) C:\Windows\system32\drivers\Fs_Rec.sys
23:09:58.0314 3252 Fs_Rec - ok
23:09:58.0348 3252 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
23:09:58.0349 3252 fvevol - ok
23:09:58.0364 3252 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys
23:09:58.0364 3252 gagp30kx - ok
23:09:58.0393 3252 GEARAspiWDM (e403aacf8c7bb11375122d2464560311) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
23:09:58.0394 3252 GEARAspiWDM - ok
23:09:58.0418 3252 gfvknt (a297a7b0060e10a4ce577a9f12680046) C:\Windows\system32\DRIVERS\gfvknt64.sys
23:09:58.0419 3252 gfvknt - ok
23:09:58.0484 3252 gpsvc (277bbc7e1aa1ee957f573a10eca7ef3a) C:\Windows\System32\gpsvc.dll
23:09:58.0488 3252 gpsvc - ok
23:09:58.0526 3252 gupdate (f02a533f517eb38333cb12a9e8963773) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
23:09:58.0526 3252 gupdate - ok
23:09:58.0529 3252 gupdatem (f02a533f517eb38333cb12a9e8963773) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
23:09:58.0529 3252 gupdatem - ok
23:09:58.0550 3252 gusvc (cc839e8d766cc31a7710c9f38cf3e375) C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
23:09:58.0551 3252 gusvc - ok
23:09:58.0565 3252 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
23:09:58.0566 3252 hcw85cir - ok
23:09:58.0593 3252 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys
23:09:58.0594 3252 HdAudAddService - ok
23:09:58.0617 3252 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys
23:09:58.0618 3252 HDAudBus - ok
23:09:58.0626 3252 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys
23:09:58.0626 3252 HidBatt - ok
23:09:58.0641 3252 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys
23:09:58.0642 3252 HidBth - ok
23:09:58.0663 3252 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys
23:09:58.0664 3252 HidIr - ok
23:09:58.0691 3252 hidserv (bd9eb3958f213f96b97b1d897dee006d) C:\Windows\System32\hidserv.dll
23:09:58.0692 3252 hidserv - ok
23:09:58.0698 3252 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys
23:09:58.0699 3252 HidUsb - ok
23:09:58.0718 3252 hkmsvc (387e72e739e15e3d37907a86d9ff98e2) C:\Windows\system32\kmsvc.dll
23:09:58.0720 3252 hkmsvc - ok
23:09:58.0755 3252 HomeGroupListener (efdfb3dd38a4376f93e7985173813abd) C:\Windows\system32\ListSvc.dll
23:09:58.0757 3252 HomeGroupListener - ok
23:09:58.0791 3252 HomeGroupProvider (908acb1f594274965a53926b10c81e89) C:\Windows\system32\provsvc.dll
23:09:58.0793 3252 HomeGroupProvider - ok
23:09:58.0904 3252 hpqcxs08 (1dae5c46d42b02a6d5862e1482efb390) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll
23:09:58.0906 3252 hpqcxs08 - ok
23:09:58.0918 3252 hpqddsvc (99e8eef42fe2f4af29b08c3355dd7685) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll
23:09:58.0919 3252 hpqddsvc - ok
23:09:58.0929 3252 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
23:09:58.0930 3252 HpSAMD - ok
23:09:59.0018 3252 HPSLPSVC - ok
23:09:59.0078 3252 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
23:09:59.0081 3252 HTTP - ok
23:09:59.0108 3252 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
23:09:59.0108 3252 hwpolicy - ok
23:09:59.0127 3252 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\drivers\i8042prt.sys
23:09:59.0128 3252 i8042prt - ok
23:09:59.0167 3252 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys
23:09:59.0169 3252 iaStorV - ok
23:09:59.0233 3252 IDriverT (1cf03c69b49acb70c722df92755c0c8c) C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
23:09:59.0234 3252 IDriverT - ok
23:09:59.0341 3252 idsvc (5988fc40f8db5b0739cd1e3a5d0d78bd) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
23:09:59.0345 3252 idsvc - ok
23:09:59.0418 3252 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys
23:09:59.0418 3252 iirsp - ok
23:09:59.0469 3252 IKEEXT (fcd84c381e0140af901e58d48882d26b) C:\Windows\System32\ikeext.dll
23:09:59.0473 3252 IKEEXT - ok
23:09:59.0553 3252 IMFservice (8ae99ebe30e8338907361018d9030835) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
23:09:59.0557 3252 IMFservice - ok
23:09:59.0607 3252 IntcAzAudAddService - ok
23:09:59.0628 3252 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
23:09:59.0628 3252 intelide - ok
23:09:59.0641 3252 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
23:09:59.0641 3252 intelppm - ok
23:09:59.0663 3252 iopkkbzj (37de5c89d49d8842c29504a7377c8bdc) C:\Windows\system32\drivers\iopkkbzj.sys
23:09:59.0663 3252 iopkkbzj - ok
23:09:59.0689 3252 IPBusEnum (098a91c54546a3b878dad6a7e90a455b) C:\Windows\system32\ipbusenum.dll
23:09:59.0690 3252 IPBusEnum - ok
23:09:59.0712 3252 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
23:09:59.0712 3252 IpFilterDriver - ok
23:09:59.0751 3252 iphlpsvc (a34a587fffd45fa649fba6d03784d257) C:\Windows\System32\iphlpsvc.dll
23:09:59.0755 3252 iphlpsvc - ok
23:09:59.0786 3252 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
23:09:59.0787 3252 IPMIDRV - ok
23:09:59.0803 3252 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
23:09:59.0804 3252 IPNAT - ok
23:09:59.0890 3252 iPod Service (ee4c2a137c7088911a8919effc9812e7) C:\Program Files\iPod\bin\iPodService.exe
23:09:59.0895 3252 iPod Service - ok
23:09:59.0904 3252 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
23:09:59.0905 3252 IRENUM - ok
23:09:59.0917 3252 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
23:09:59.0918 3252 isapnp - ok
23:09:59.0944 3252 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
23:09:59.0945 3252 iScsiPrt - ok
23:09:59.0956 3252 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys
23:09:59.0957 3252 kbdclass - ok
23:09:59.0982 3252 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\DRIVERS\kbdhid.sys
23:09:59.0983 3252 kbdhid - ok
23:10:00.0015 3252 KeyIso (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
23:10:00.0016 3252 KeyIso - ok
23:10:00.0019 3252 KL1 - ok
23:10:00.0041 3252 kl2 (d865dd8b0448e3f963d68c04c532858f) C:\Windows\system32\DRIVERS\kl2.sys
23:10:00.0042 3252 kl2 - ok
23:10:00.0091 3252 KLIF (c7d4f357c482dd37e2b05f34093b7b0c) C:\Windows\system32\DRIVERS\klif.sys
23:10:00.0094 3252 KLIF - ok
23:10:00.0111 3252 KLIM6 (89fb5a33d7171b6d84f5eb721d5055e1) C:\Windows\system32\DRIVERS\klim6.sys
23:10:00.0111 3252 KLIM6 - ok
23:10:00.0123 3252 klmouflt (9468d07e91ba136d82415f5dfc1fe168) C:\Windows\system32\DRIVERS\klmouflt.sys
23:10:00.0123 3252 klmouflt - ok
23:10:00.0146 3252 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys
23:10:00.0147 3252 KSecDD - ok
23:10:00.0172 3252 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys
23:10:00.0173 3252 KSecPkg - ok
23:10:00.0185 3252 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
23:10:00.0186 3252 ksthunk - ok
23:10:00.0223 3252 KtmRm (6ab66e16aa859232f64deb66887a8c9c) C:\Windows\system32\msdtckrm.dll
23:10:00.0226 3252 KtmRm - ok
23:10:00.0262 3252 LanmanServer (d9f42719019740baa6d1c6d536cbdaa6) C:\Windows\System32\srvsvc.dll
23:10:00.0264 3252 LanmanServer - ok
23:10:00.0295 3252 LanmanWorkstation (851a1382eed3e3a7476db004f4ee3e1a) C:\Windows\System32\wkssvc.dll
23:10:00.0297 3252 LanmanWorkstation - ok
23:10:00.0604 3252 LeapFrog Connect Device Service (3c879d04bb6466e2853c3155b635cc45) C:\Program Files (x86)\LeapFrog\LeapFrog Connect\CommandService.exe
23:10:00.0630 3252 LeapFrog Connect Device Service - ok
23:10:00.0732 3252 lirsgt (156ab2e56dc3ca0b582e3362e07cded7) C:\Windows\system32\DRIVERS\lirsgt.sys
23:10:00.0733 3252 lirsgt - ok
23:10:00.0757 3252 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
23:10:00.0758 3252 lltdio - ok
23:10:00.0786 3252 lltdsvc (c1185803384ab3feed115f79f109427f) C:\Windows\System32\lltdsvc.dll
23:10:00.0788 3252 lltdsvc - ok
23:10:00.0800 3252 lmhosts (f993a32249b66c9d622ea5592a8b76b8) C:\Windows\System32\lmhsvc.dll
23:10:00.0801 3252 lmhosts - ok
23:10:00.0804 3252 lmimirr - ok
23:10:00.0828 3252 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys
23:10:00.0828 3252 LSI_FC - ok
23:10:00.0846 3252 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys
23:10:00.0847 3252 LSI_SAS - ok
23:10:00.0858 3252 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys
23:10:00.0859 3252 LSI_SAS2 - ok
23:10:00.0878 3252 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys
23:10:00.0879 3252 LSI_SCSI - ok
23:10:00.0899 3252 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
23:10:00.0900 3252 luafv - ok
23:10:01.0118 3252 Matrox.Pdesk3.ServicesHost (c2f3bba0760ab9dd33bcc60a663a108c) C:\Program Files (x86)\Matrox Graphics\PowerDesk\Matrox.PDesk.Services.exe
23:10:01.0134 3252 Matrox.Pdesk3.ServicesHost - ok
23:10:01.0250 3252 MBAMProtector (dbc08862a71459e74f7538b432c114cc) C:\Windows\system32\drivers\mbam.sys
23:10:01.0250 3252 MBAMProtector - ok
23:10:01.0303 3252 MBAMService (ba400ed640bca1eae5c727ae17c10207) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
23:10:01.0305 3252 MBAMService - ok
23:10:01.0329 3252 Mcx2Svc (0be09cd858abf9df6ed259d57a1a1663) C:\Windows\system32\Mcx2Svc.dll
23:10:01.0331 3252 Mcx2Svc - ok
23:10:01.0348 3252 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys
23:10:01.0349 3252 megasas - ok
23:10:01.0372 3252 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys
23:10:01.0374 3252 MegaSR - ok
23:10:01.0431 3252 Microsoft Office Groove Audit Service (123271bd5237ab991dc5c21fdf8835eb) C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe
23:10:01.0431 3252 Microsoft Office Groove Audit Service - ok
23:10:01.0455 3252 MMCSS (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
23:10:01.0457 3252 MMCSS - ok
23:10:01.0469 3252 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
23:10:01.0470 3252 Modem - ok
23:10:01.0497 3252 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
23:10:01.0498 3252 monitor - ok
23:10:01.0531 3252 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys
23:10:01.0532 3252 mouclass - ok
23:10:01.0541 3252 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
23:10:01.0541 3252 mouhid - ok
23:10:01.0576 3252 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys
23:10:01.0577 3252 mountmgr - ok
23:10:01.0600 3252 MpFilter (94c66ededcdb6a126880472f9a704d8e) C:\Windows\system32\DRIVERS\MpFilter.sys
23:10:01.0601 3252 MpFilter - ok
23:10:01.0624 3252 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys
23:10:01.0625 3252 mpio - ok
23:10:01.0653 3252 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
23:10:01.0654 3252 mpsdrv - ok
23:10:01.0700 3252 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys
23:10:01.0702 3252 MRxDAV - ok
23:10:01.0727 3252 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys
23:10:01.0728 3252 mrxsmb - ok
23:10:01.0758 3252 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys
23:10:01.0759 3252 mrxsmb10 - ok
23:10:01.0770 3252 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
23:10:01.0771 3252 mrxsmb20 - ok
23:10:01.0781 3252 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys
23:10:01.0781 3252 msahci - ok
23:10:01.0807 3252 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys
23:10:01.0808 3252 msdsm - ok
23:10:01.0824 3252 MSDTC (de0ece52236cfa3ed2dbfc03f28253a8) C:\Windows\System32\msdtc.exe
23:10:01.0826 3252 MSDTC - ok
23:10:01.0837 3252 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
23:10:01.0838 3252 Msfs - ok
23:10:01.0841 3252 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
23:10:01.0841 3252 mshidkmdf - ok
23:10:01.0849 3252 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
23:10:01.0850 3252 msisadrv - ok
23:10:01.0877 3252 MSiSCSI (808e98ff49b155c522e6400953177b08) C:\Windows\system32\iscsiexe.dll
23:10:01.0879 3252 MSiSCSI - ok
23:10:01.0881 3252 msiserver - ok
23:10:01.0891 3252 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
23:10:01.0891 3252 MSKSSRV - ok
23:10:01.0962 3252 MsMpSvc (59faaf2c83c8169ea20f9e335e418907) C:\Program Files\Microsoft Security Client\MsMpEng.exe
23:10:01.0962 3252 MsMpSvc - ok
23:10:01.0965 3252 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
23:10:01.0965 3252 MSPCLOCK - ok
23:10:01.0982 3252 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
23:10:01.0983 3252 MSPQM - ok
23:10:02.0011 3252 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys
23:10:02.0013 3252 MsRPC - ok
23:10:02.0026 3252 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys
23:10:02.0027 3252 mssmbios - ok
23:10:02.0041 3252 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
23:10:02.0042 3252 MSTEE - ok
23:10:02.0045 3252 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys
23:10:02.0046 3252 MTConfig - ok
23:10:02.0062 3252 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
23:10:02.0062 3252 Mup - ok
23:10:02.0100 3252 napagent (582ac6d9873e31dfa28a4547270862dd) C:\Windows\system32\qagentRT.dll
23:10:02.0103 3252 napagent - ok
23:10:02.0129 3252 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
23:10:02.0130 3252 NativeWifiP - ok
23:10:02.0235 3252 NAUpdate (e4534bccdd1ea7a7a256bb9d6688a5fc) C:\Program Files (x86)\Nero\Update\NASvc.exe
23:10:02.0238 3252 NAUpdate - ok
23:10:02.0291 3252 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys
23:10:02.0294 3252 NDIS - ok
23:10:02.0312 3252 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
23:10:02.0312 3252 NdisCap - ok
23:10:02.0329 3252 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
23:10:02.0330 3252 NdisTapi - ok
23:10:02.0355 3252 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys
23:10:02.0356 3252 Ndisuio - ok
23:10:02.0389 3252 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys
23:10:02.0390 3252 NdisWan - ok
23:10:02.0417 3252 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys
23:10:02.0418 3252 NDProxy - ok
23:10:02.0441 3252 Net Driver HPZ12 (2334dc48997ba203b794df3ee70521db) C:\Windows\system32\HPZinw12.dll
23:10:02.0442 3252 Net Driver HPZ12 - ok
23:10:02.0467 3252 Netaapl (307bc83250fc8e3b2878d81e7d760299) C:\Windows\system32\DRIVERS\netaapl64.sys
23:10:02.0469 3252 Netaapl - ok
23:10:02.0483 3252 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
23:10:02.0483 3252 NetBIOS - ok
23:10:02.0517 3252 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys
23:10:02.0518 3252 NetBT - ok
23:10:02.0555 3252 Netlogon (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
23:10:02.0557 3252 Netlogon - ok
23:10:02.0599 3252 Netman (847d3ae376c0817161a14a82c8922a9e) C:\Windows\System32\netman.dll
23:10:02.0602 3252 Netman - ok
23:10:02.0688 3252 NetMsmqActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
23:10:02.0689 3252 NetMsmqActivator - ok
23:10:02.0692 3252 NetPipeActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
23:10:02.0692 3252 NetPipeActivator - ok
23:10:02.0722 3252 netprofm (5f28111c648f1e24f7dbc87cdeb091b8) C:\Windows\System32\netprofm.dll
23:10:02.0725 3252 netprofm - ok
23:10:02.0727 3252 NetTcpActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
23:10:02.0728 3252 NetTcpActivator - ok
23:10:02.0731 3252 NetTcpPortSharing (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
23:10:02.0732 3252 NetTcpPortSharing - ok
23:10:02.0807 3252 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys
23:10:02.0808 3252 nfrd960 - ok
23:10:02.0827 3252 NisDrv (91b4e0273d2f6c24ef845f2b41311289) C:\Windows\system32\DRIVERS\NisDrvWFP.sys
23:10:02.0828 3252 NisDrv - ok
23:10:02.0912 3252 NisSrv (10a43829a9e606af3eef25a1c1665923) C:\Program Files\Microsoft Security Client\NisSrv.exe
23:10:02.0913 3252 NisSrv - ok
23:10:02.0953 3252 NlaSvc (1ee99a89cc788ada662441d1e9830529) C:\Windows\System32\nlasvc.dll
23:10:02.0955 3252 NlaSvc - ok
23:10:02.0958 3252 nmwcdcx64 - ok
23:10:02.0961 3252 nmwcdx64 - ok
23:10:02.0966 3252 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
23:10:02.0967 3252 Npfs - ok
23:10:02.0991 3252 npusbio (95a2ab418251a3b2a2571cde880b80d0) C:\Windows\system32\Drivers\npusbio_x64.sys
23:10:02.0991 3252 npusbio - ok
23:10:03.0001 3252 nsi (d54bfdf3e0c953f823b3d0bfe4732528) C:\Windows\system32\nsisvc.dll
23:10:03.0003 3252 nsi - ok
23:10:03.0019 3252 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
23:10:03.0020 3252 nsiproxy - ok
23:10:03.0105 3252 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys
23:10:03.0113 3252 Ntfs - ok
23:10:03.0191 3252 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
23:10:03.0192 3252 Null - ok
23:10:03.0708 3252 nvlddmkm (9c1996dd3c0469bc8933321f15709f5a) C:\Windows\system32\DRIVERS\nvlddmkm.sys
23:10:03.0787 3252 nvlddmkm - ok
23:10:03.0889 3252 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys
23:10:03.0890 3252 nvraid - ok
23:10:03.0915 3252 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys
23:10:03.0916 3252 nvstor - ok
23:10:03.0989 3252 nvsvc (34e5498528bb3d5a951f889f8756ad26) C:\Windows\system32\nvvsvc.exe
23:10:03.0994 3252 nvsvc - ok
23:10:04.0024 3252 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
23:10:04.0025 3252 nv_agp - ok
23:10:04.0175 3252 O&O Defrag (6ff0f6c590e92ff1dc559b3b1b3b1b11) C:\Program Files\OO Software\Defrag\oodag.exe
23:10:04.0185 3252 O&O Defrag - ok
23:10:04.0297 3252 odserv (785f487a64950f3cb8e9f16253ba3b7b) C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
23:10:04.0299 3252 odserv - ok
23:10:04.0351 3252 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
23:10:04.0352 3252 ohci1394 - ok
23:10:04.0371 3252 ose (5a432a042dae460abe7199b758e8606c) C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
23:10:04.0372 3252 ose - ok
23:10:04.0375 3252 ozuuiixh - ok
23:10:04.0461 3252 P17 (634347adebc790b8f07654a3ea8034fd) C:\Windows\system32\drivers\P17.sys
23:10:04.0467 3252 P17 - ok
23:10:04.0515 3252 p2pimsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
23:10:04.0518 3252 p2pimsvc - ok
23:10:04.0541 3252 p2psvc (927463ecb02179f88e4b9a17568c63c3) C:\Windows\system32\p2psvc.dll
23:10:04.0543 3252 p2psvc - ok
23:10:04.0577 3252 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys
23:10:04.0578 3252 Parport - ok
23:10:04.0600 3252 partmgr (e9766131eeade40a27dc27d2d68fba9c) C:\Windows\system32\drivers\partmgr.sys
23:10:04.0600 3252 partmgr - ok
23:10:04.0618 3252 PcaSvc (3aeaa8b561e63452c655dc0584922257) C:\Windows\System32\pcasvc.dll
23:10:04.0620 3252 PcaSvc - ok
23:10:04.0622 3252 pccsmcfd - ok
23:10:04.0638 3252 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys
23:10:04.0639 3252 pci - ok
23:10:04.0652 3252 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
23:10:04.0653 3252 pciide - ok
23:10:04.0678 3252 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys
23:10:04.0680 3252 pcmcia - ok
23:10:04.0695 3252 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
23:10:04.0696 3252 pcw - ok
23:10:04.0726 3252 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
23:10:04.0730 3252 PEAUTH - ok
23:10:04.0790 3252 PerfHost (e495e408c93141e8fc72dc0c6046ddfa) C:\Windows\SysWow64\perfhost.exe
23:10:04.0791 3252 PerfHost - ok
23:10:04.0912 3252 pla (c7cf6a6e137463219e1259e3f0f0dd6c) C:\Windows\system32\pla.dll
23:10:04.0918 3252 pla - ok
23:10:04.0948 3252 PlugPlay (25fbdef06c4d92815b353f6e792c8129) C:\Windows\system32\umpnpmgr.dll
23:10:04.0951 3252 PlugPlay - ok
23:10:04.0976 3252 Pml Driver HPZ12 (ac78df349f0e4cfb8b667c0cfff83cce) C:\Windows\system32\HPZipm12.dll
23:10:04.0977 3252 Pml Driver HPZ12 - ok
23:10:04.0981 3252 PnkBstrA - ok
23:10:05.0000 3252 PNRPAutoReg (7195581cec9bb7d12abe54036acc2e38) C:\Windows\system32\pnrpauto.dll
23:10:05.0001 3252 PNRPAutoReg - ok
23:10:05.0026 3252 PNRPsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
23:10:05.0029 3252 PNRPsvc - ok
23:10:05.0057 3252 Point64 (4f0878fd62d5f7444c5f1c4c66d9d293) C:\Windows\system32\DRIVERS\point64.sys
23:10:05.0058 3252 Point64 - ok
23:10:05.0106 3252 PolicyAgent (4f15d75adf6156bf56eced6d4a55c389) C:\Windows\System32\ipsecsvc.dll
23:10:05.0109 3252 PolicyAgent - ok
23:10:05.0137 3252 Power (6ba9d927dded70bd1a9caded45f8b184) C:\Windows\system32\umpo.dll
23:10:05.0139 3252 Power - ok
23:10:05.0167 3252 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys
23:10:05.0168 3252 PptpMiniport - ok
23:10:05.0200 3252 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys
23:10:05.0201 3252 Processor - ok
23:10:05.0218 3252 ProfSvc (5c78838b4d166d1a27db3a8a820c799a) C:\Windows\system32\profsvc.dll
23:10:05.0220 3252 ProfSvc - ok
23:10:05.0251 3252 ProtectedStorage (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
23:10:05.0252 3252 ProtectedStorage - ok
23:10:05.0281 3252 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys
23:10:05.0282 3252 Psched - ok
23:10:05.0356 3252 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys
23:10:05.0363 3252 ql2300 - ok
23:10:05.0451 3252 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys
23:10:05.0452 3252 ql40xx - ok
23:10:05.0477 3252 QWAVE (906191634e99aea92c4816150bda3732) C:\Windows\system32\qwave.dll
23:10:05.0479 3252 QWAVE - ok
23:10:05.0509 3252 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
23:10:05.0509 3252 QWAVEdrv - ok
23:10:05.0523 3252 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
23:10:05.0524 3252 RasAcd - ok
23:10:05.0549 3252 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
23:10:05.0550 3252 RasAgileVpn - ok
23:10:05.0564 3252 RasAuto (8f26510c5383b8dbe976de1cd00fc8c7) C:\Windows\System32\rasauto.dll
23:10:05.0566 3252 RasAuto - ok
23:10:05.0603 3252 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys
23:10:05.0604 3252 Rasl2tp - ok
23:10:05.0639 3252 RasMan (ee867a0870fc9e4972ba9eaad35651e2) C:\Windows\System32\rasmans.dll
23:10:05.0642 3252 RasMan - ok
23:10:05.0654 3252 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
23:10:05.0655 3252 RasPppoe - ok
23:10:05.0663 3252 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
23:10:05.0663 3252 RasSstp - ok
23:10:05.0702 3252 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys
23:10:05.0703 3252 rdbss - ok
23:10:05.0715 3252 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys
23:10:05.0716 3252 rdpbus - ok
23:10:05.0725 3252 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
23:10:05.0726 3252 RDPCDD - ok
23:10:05.0742 3252 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
23:10:05.0742 3252 RDPENCDD - ok
23:10:05.0753 3252 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
23:10:05.0753 3252 RDPREFMP - ok
23:10:05.0780 3252 RDPWD (6d76e6433574b058adcb0c50df834492) C:\Windows\system32\drivers\RDPWD.sys
23:10:05.0781 3252 RDPWD - ok
23:10:05.0808 3252 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys
23:10:05.0809 3252 rdyboost - ok
23:10:05.0906 3252 RegFilter (c3b79061634fbc3ba3379f557ad952c7) C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys
23:10:05.0907 3252 RegFilter - ok
23:10:05.0937 3252 RemoteAccess (254fb7a22d74e5511c73a3f6d802f192) C:\Windows\System32\mprdim.dll
23:10:05.0938 3252 RemoteAccess - ok
23:10:05.0958 3252 RemoteRegistry (e4d94f24081440b5fc5aa556c7c62702) C:\Windows\system32\regsvc.dll
23:10:05.0960 3252 RemoteRegistry - ok
23:10:06.0014 3252 RichVideo (616f6e52cae254727a886ba8eda1beea) C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
23:10:06.0015 3252 RichVideo - ok
23:10:06.0025 3252 RpcEptMapper (e4dc58cf7b3ea515ae917ff0d402a7bb) C:\Windows\System32\RpcEpMap.dll
23:10:06.0027 3252 RpcEptMapper - ok
23:10:06.0049 3252 RpcLocator (d5ba242d4cf8e384db90e6a8ed850b8c) C:\Windows\system32\locator.exe
23:10:06.0051 3252 RpcLocator - ok
23:10:06.0096 3252 RpcSs (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
23:10:06.0100 3252 RpcSs - ok
23:10:06.0126 3252 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
23:10:06.0127 3252 rspndr - ok
23:10:06.0161 3252 rzudd (6dd4726d289a891012fe99a5ee1ffa99) C:\Windows\system32\DRIVERS\rzudd.sys
23:10:06.0162 3252 rzudd - ok
23:10:06.0195 3252 SamSs (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
23:10:06.0196 3252 SamSs - ok
23:10:06.0225 3252 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys
23:10:06.0226 3252 sbp2port - ok
23:10:06.0255 3252 SCardSvr (9b7395789e3791a3b6d000fe6f8b131e) C:\Windows\System32\SCardSvr.dll
23:10:06.0257 3252 SCardSvr - ok
23:10:06.0275 3252 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys
23:10:06.0276 3252 scfilter - ok
23:10:06.0344 3252 Schedule (262f6592c3299c005fd6bec90fc4463a) C:\Windows\system32\schedsvc.dll
23:10:06.0350 3252 Schedule - ok
23:10:06.0372 3252 SCPolicySvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
23:10:06.0373 3252 SCPolicySvc - ok
23:10:06.0429 3252 ScsiAccess (958e956e119eb7b9aba142afed1b5ff4) C:\Program Files (x86)\Photodex\ProShowProducer\ScsiAccess.exe
23:10:06.0430 3252 ScsiAccess - ok
23:10:06.0461 3252 SDRSVC (6ea4234dc55346e0709560fe7c2c1972) C:\Windows\System32\SDRSVC.dll
23:10:06.0464 3252 SDRSVC - ok
23:10:06.0490 3252 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
23:10:06.0491 3252 secdrv - ok
23:10:06.0509 3252 seclogon (bc617a4e1b4fa8df523a061739a0bd87) C:\Windows\system32\seclogon.dll
23:10:06.0512 3252 seclogon - ok
23:10:06.0524 3252 SENS (c32ab8fa018ef34c0f113bd501436d21) C:\Windows\System32\sens.dll
23:10:06.0526 3252 SENS - ok
23:10:06.0533 3252 SensrSvc (0336cffafaab87a11541f1cf1594b2b2) C:\Windows\system32\sensrsvc.dll
23:10:06.0534 3252 SensrSvc - ok
23:10:06.0549 3252 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys
23:10:06.0550 3252 Serenum - ok
23:10:06.0570 3252 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys
23:10:06.0571 3252 Serial - ok
23:10:06.0599 3252 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys
23:10:06.0600 3252 sermouse - ok
23:10:06.0634 3252 SessionEnv (0b6231bf38174a1628c4ac812cc75804) C:\Windows\system32\sessenv.dll
23:10:06.0636 3252 SessionEnv - ok
23:10:06.0653 3252 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
23:10:06.0654 3252 sffdisk - ok
23:10:06.0668 3252 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
23:10:06.0669 3252 sffp_mmc - ok
23:10:06.0684 3252 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys
23:10:06.0684 3252 sffp_sd - ok
23:10:06.0697 3252 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys
23:10:06.0698 3252 sfloppy - ok
23:10:06.0741 3252 ShellHWDetection (aaf932b4011d14052955d4b212a4da8d) C:\Windows\System32\shsvcs.dll
23:10:06.0744 3252 ShellHWDetection - ok
23:10:06.0763 3252 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys
23:10:06.0764 3252 SiSRaid2 - ok
23:10:06.0785 3252 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys
23:10:06.0786 3252 SiSRaid4 - ok
23:10:06.0802 3252 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
23:10:06.0802 3252 Smb - ok
23:10:06.0833 3252 SNMPTRAP (6313f223e817cc09aa41811daa7f541d) C:\Windows\System32\snmptrap.exe
23:10:06.0834 3252 SNMPTRAP - ok
23:10:06.0849 3252 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
23:10:06.0850 3252 spldr - ok
23:10:06.0893 3252 Spooler (b96c17b5dc1424d56eea3a99e97428cd) C:\Windows\System32\spoolsv.exe
23:10:06.0896 3252 Spooler - ok
23:10:07.0064 3252 sppsvc (e17e0188bb90fae42d83e98707efa59c) C:\Windows\system32\sppsvc.exe
23:10:07.0081 3252 sppsvc - ok
23:10:07.0168 3252 sppuinotify (93d7d61317f3d4bc4f4e9f8a96a7de45) C:\Windows\system32\sppuinotify.dll
23:10:07.0170 3252 sppuinotify - ok
23:10:07.0222 3252 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys
23:10:07.0224 3252 srv - ok
23:10:07.0252 3252 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys
23:10:07.0254 3252 srv2 - ok
23:10:07.0270 3252 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys
23:10:07.0271 3252 srvnet - ok
23:10:07.0294 3252 SSDPSRV (51b52fbd583cde8aa9ba62b8b4298f33) C:\Windows\System32\ssdpsrv.dll
23:10:07.0296 3252 SSDPSRV - ok
23:10:07.0321 3252 SstpSvc (ab7aebf58dad8daab7a6c45e6a8885cb) C:\Windows\system32\sstpsvc.dll
23:10:07.0323 3252 SstpSvc - ok
23:10:07.0436 3252 Stereo Service (8544a200c40447e465f06e58687428bb) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
23:10:07.0438 3252 Stereo Service - ok
23:10:07.0468 3252 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys
23:10:07.0468 3252 stexstor - ok
23:10:07.0512 3252 stisvc (8dd52e8e6128f4b2da92ce27402871c1) C:\Windows\System32\wiaservc.dll
23:10:07.0518 3252 stisvc - ok
23:10:07.0557 3252 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys
23:10:07.0557 3252 swenum - ok
23:10:07.0591 3252 swprv (e08e46fdd841b7184194011ca1955a0b) C:\Windows\System32\swprv.dll
23:10:07.0594 3252 swprv - ok
23:10:07.0692 3252 SysMain (bf9ccc0bf39b418c8d0ae8b05cf95b7d) C:\Windows\system32\sysmain.dll
23:10:07.0701 3252 SysMain - ok
23:10:07.0786 3252 SysTool (b07e6681d303a612680223c729b021e2) C:\Windows\system32\DRIVERS\SysTool64.sys
23:10:07.0787 3252 SysTool - ok
23:10:07.0812 3252 TabletInputService (e3c61fd7b7c2557e1f1b0b4cec713585) C:\Windows\System32\TabSvc.dll
23:10:07.0814 3252 TabletInputService - ok
23:10:07.0852 3252 TapiSrv (40f0849f65d13ee87b9a9ae3c1dd6823) C:\Windows\System32\tapisrv.dll
23:10:07.0855 3252 TapiSrv - ok
23:10:07.0883 3252 TBS (1be03ac720f4d302ea01d40f588162f6) C:\Windows\System32\tbssvc.dll
23:10:07.0885 3252 TBS - ok
23:10:07.0982 3252 Tcpip (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\drivers\tcpip.sys
23:10:07.0991 3252 Tcpip - ok
23:10:08.0095 3252 TCPIP6 (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\DRIVERS\tcpip.sys
23:10:08.0103 3252 TCPIP6 - ok
23:10:08.0154 3252 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys
23:10:08.0154 3252 tcpipreg - ok
23:10:08.0172 3252 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
23:10:08.0173 3252 TDPIPE - ok
23:10:08.0203 3252 TDTCP (51c5eceb1cdee2468a1748be550cfbc8) C:\Windows\system32\drivers\tdtcp.sys
23:10:08.0203 3252 TDTCP - ok
23:10:08.0235 3252 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys
23:10:08.0236 3252 tdx - ok
23:10:08.0256 3252 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys
23:10:08.0257 3252 TermDD - ok
23:10:08.0322 3252 TermService (2e648163254233755035b46dd7b89123) C:\Windows\System32\termsrv.dll
23:10:08.0326 3252 TermService - ok
23:10:08.0336 3252 Themes (f0344071948d1a1fa732231785a0664c) C:\Windows\system32\themeservice.dll
23:10:08.0338 3252 Themes - ok
23:10:08.0356 3252 THREADORDER (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
23:10:08.0357 3252 THREADORDER - ok
23:10:08.0365 3252 TrkWks (7e7afd841694f6ac397e99d75cead49d) C:\Windows\System32\trkwks.dll
23:10:08.0367 3252 TrkWks - ok
23:10:08.0423 3252 TrustedInstaller (773212b2aaa24c1e31f10246b15b276c) C:\Windows\servicing\TrustedInstaller.exe
23:10:08.0424 3252 TrustedInstaller - ok
23:10:08.0458 3252 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys
23:10:08.0458 3252 tssecsrv - ok
23:10:08.0478 3252 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
23:10:08.0479 3252 TsUsbFlt - ok
23:10:08.0504 3252 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys
23:10:08.0505 3252 tunnel - ok
23:10:08.0523 3252 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys
23:10:08.0524 3252 uagp35 - ok
23:10:08.0561 3252 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys
23:10:08.0562 3252 udfs - ok
23:10:08.0582 3252 UI0Detect (3cbdec8d06b9968aba702eba076364a1) C:\Windows\system32\UI0Detect.exe
23:10:08.0583 3252 UI0Detect - ok
23:10:08.0597 3252 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
23:10:08.0598 3252 uliagpkx - ok
23:10:08.0624 3252 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\drivers\umbus.sys
23:10:08.0625 3252 umbus - ok
23:10:08.0636 3252 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys
23:10:08.0636 3252 UmPass - ok
23:10:08.0666 3252 upnphost (d47ec6a8e81633dd18d2436b19baf6de) C:\Windows\System32\upnphost.dll
23:10:08.0668 3252 upnphost - ok
23:10:08.0672 3252 upperdev - ok
23:10:08.0775 3252 UrlFilter (401984715693b87fdf4f600fbbebd366) C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys
23:10:08.0775 3252 UrlFilter - ok
23:10:08.0801 3252 USBAAPL64 (aa33fc47ed58c34e6e9261e4f850b7eb) C:\Windows\system32\Drivers\usbaapl64.sys
23:10:08.0801 3252 USBAAPL64 - ok
23:10:08.0831 3252 usbaudio (82e8f44688e6fac57b5b7c6fc7adbc2a) C:\Windows\system32\drivers\usbaudio.sys
23:10:08.0831 3252 usbaudio - ok
23:10:08.0850 3252 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys
23:10:08.0851 3252 usbccgp - ok
23:10:08.0869 3252 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
23:10:08.0869 3252 usbcir - ok
23:10:08.0874 3252 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\DRIVERS\usbehci.sys
23:10:08.0875 3252 usbehci - ok
23:10:08.0899 3252 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys
23:10:08.0901 3252 usbhub - ok
23:10:08.0915 3252 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys
23:10:08.0916 3252 usbohci - ok
23:10:08.0928 3252 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys
23:10:08.0929 3252 usbprint - ok
23:10:08.0956 3252 usbscan (aaa2513c8aed8b54b189fd0c6b1634c0) C:\Windows\system32\DRIVERS\usbscan.sys
23:10:08.0956 3252 usbscan - ok
23:10:08.0970 3252 usbser (4acee387fa8fd39f83564fcd2fc234f2) C:\Windows\system32\drivers\usbser.sys
23:10:08.0970 3252 usbser - ok
23:10:08.0973 3252 UsbserFilt - ok
23:10:08.0990 3252 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\drivers\USBSTOR.SYS
23:10:08.0991 3252 USBSTOR - ok
23:10:09.0000 3252 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\DRIVERS\usbuhci.sys
23:10:09.0000 3252 usbuhci - ok
23:10:09.0012 3252 UxSms (edbb23cbcf2cdf727d64ff9b51a6070e) C:\Windows\System32\uxsms.dll
23:10:09.0014 3252 UxSms - ok
23:10:09.0045 3252 VaultSvc (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
23:10:09.0047 3252 VaultSvc - ok
23:10:09.0053 3252 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
23:10:09.0053 3252 vdrvroot - ok
23:10:09.0092 3252 vds (8d6b481601d01a456e75c3210f1830be) C:\Windows\System32\vds.exe
23:10:09.0096 3252 vds - ok
23:10:09.0112 3252 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
23:10:09.0113 3252 vga - ok
23:10:09.0117 3252 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
23:10:09.0117 3252 VgaSave - ok
23:10:09.0137 3252 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys
23:10:09.0138 3252 vhdmp - ok
23:10:09.0156 3252 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
23:10:09.0157 3252 viaide - ok
23:10:09.0174 3252 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys
23:10:09.0175 3252 volmgr - ok
23:10:09.0211 3252 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys
23:10:09.0214 3252 volmgrx - ok
23:10:09.0232 3252 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys
23:10:09.0234 3252 volsnap - ok
23:10:09.0265 3252 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys
23:10:09.0266 3252 vsmraid - ok
23:10:09.0359 3252 VSS (b60ba0bc31b0cb414593e169f6f21cc2) C:\Windows\system32\vssvc.exe
23:10:09.0368 3252 VSS - ok
23:10:09.0478 3252 vvftav302 (0186ccf2557f71f8b7b26bb43ea8846b) C:\Windows\system32\drivers\vvftav302.sys
23:10:09.0480 3252 vvftav302 - ok
23:10:09.0503 3252 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\System32\drivers\vwifibus.sys
23:10:09.0504 3252 vwifibus - ok
23:10:09.0541 3252 W32Time (1c9d80cc3849b3788048078c26486e1a) C:\Windows\system32\w32time.dll
23:10:09.0544 3252 W32Time - ok
23:10:09.0606 3252 W3SVC (b32009db1972e7f2c227499289c4384a) C:\Windows\system32\inetsrv\iisw3adm.dll
23:10:09.0608 3252 W3SVC - ok
23:10:09.0620 3252 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys
23:10:09.0620 3252 WacomPen - ok
23:10:09.0641 3252 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
23:10:09.0641 3252 WANARP - ok
23:10:09.0644 3252 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
23:10:09.0645 3252 Wanarpv6 - ok
23:10:09.0654 3252 WAS (b32009db1972e7f2c227499289c4384a) C:\Windows\system32\inetsrv\iisw3adm.dll
23:10:09.0656 3252 WAS - ok
23:10:09.0738 3252 WatAdminSvc (3cec96de223e49eaae3651fcf8faea6c) C:\Windows\system32\Wat\WatAdminSvc.exe
23:10:09.0746 3252 WatAdminSvc - ok
23:10:09.0837 3252 wbengine (78f4e7f5c56cb9716238eb57da4b6a75) C:\Windows\system32\wbengine.exe
23:10:09.0846 3252 wbengine - ok
23:10:09.0896 3252 WbioSrvc (3aa101e8edab2db4131333f4325c76a3) C:\Windows\System32\wbiosrvc.dll
23:10:09.0899 3252 WbioSrvc - ok
23:10:09.0933 3252 wcncsvc (7368a2afd46e5a4481d1de9d14848edd) C:\Windows\System32\wcncsvc.dll
23:10:09.0936 3252 wcncsvc - ok
23:10:09.0955 3252 WcsPlugInService (20f7441334b18cee52027661df4a6129) C:\Windows\System32\WcsPlugInService.dll
23:10:09.0956 3252 WcsPlugInService - ok
23:10:10.0000 3252 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys
23:10:10.0000 3252 Wd - ok
23:10:10.0040 3252 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
23:10:10.0042 3252 Wdf01000 - ok
23:10:10.0052 3252 WdiServiceHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
23:10:10.0054 3252 WdiServiceHost - ok
23:10:10.0057 3252 WdiSystemHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
23:10:10.0059 3252 WdiSystemHost - ok
23:10:10.0086 3252 WebClient (3db6d04e1c64272f8b14eb8bc4616280) C:\Windows\System32\webclnt.dll
23:10:10.0089 3252 WebClient - ok
23:10:10.0112 3252 Wecsvc (c749025a679c5103e575e3b48e092c43) C:\Windows\system32\wecsvc.dll
23:10:10.0114 3252 Wecsvc - ok
23:10:10.0132 3252 wercplsupport (7e591867422dc788b9e5bd337a669a08) C:\Windows\System32\wercplsupport.dll
23:10:10.0135 3252 wercplsupport - ok
23:10:10.0168 3252 WerSvc (6d137963730144698cbd10f202e9f251) C:\Windows\System32\WerSvc.dll
23:10:10.0170 3252 WerSvc - ok
23:10:10.0188 3252 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
23:10:10.0189 3252 WfpLwf - ok
23:10:10.0206 3252 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
23:10:10.0207 3252 WIMMount - ok
23:10:10.0251 3252 WinDefend - ok
23:10:10.0257 3252 WinHttpAutoProxySvc - ok
23:10:10.0310 3252 Winmgmt (19b07e7e8915d701225da41cb3877306) C:\Windows\system32\wbem\WMIsvc.dll
23:10:10.0311 3252 Winmgmt - ok
23:10:10.0413 3252 WinRM (bcb1310604aa415c4508708975b3931e) C:\Windows\system32\WsmSvc.dll
23:10:10.0423 3252 WinRM - ok
23:10:10.0499 3252 WinUsb (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUsb.sys
23:10:10.0500 3252 WinUsb - ok
23:10:10.0550 3252 Wlansvc (4fada86e62f18a1b2f42ba18ae24e6aa) C:\Windows\System32\wlansvc.dll
23:10:10.0556 3252 Wlansvc - ok
23:10:10.0631 3252 wlcrasvc (06c8fa1cf39de6a735b54d906ba791c6) C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
23:10:10.0632 3252 wlcrasvc - ok
23:10:10.0786 3252 wlidsvc (2bacd71123f42cea603f4e205e1ae337) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
23:10:10.0795 3252 wlidsvc - ok
23:10:10.0831 3252 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys
23:10:10.0832 3252 WmiAcpi - ok
23:10:10.0883 3252 wmiApSrv (38b84c94c5a8af291adfea478ae54f93) C:\Windows\system32\wbem\WmiApSrv.exe
23:10:10.0885 3252 wmiApSrv - ok
23:10:10.0930 3252 WMPNetworkSvc - ok
23:10:10.0944 3252 WPCSvc (96c6e7100d724c69fcf9e7bf590d1dca) C:\Windows\System32\wpcsvc.dll
23:10:10.0946 3252 WPCSvc - ok
23:10:10.0974 3252 WPDBusEnum (93221146d4ebbf314c29b23cd6cc391d) C:\Windows\system32\wpdbusenum.dll
23:10:10.0976 3252 WPDBusEnum - ok
23:10:10.0996 3252 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
23:10:10.0997 3252 ws2ifsl - ok
23:10:11.0009 3252 wscsvc (e8b1fe6669397d1772d8196df0e57a9e) C:\Windows\system32\wscsvc.dll
23:10:11.0011 3252 wscsvc - ok
23:10:11.0014 3252 WSearch - ok
23:10:11.0136 3252 wuauserv (9df12edbc698b0bc353b3ef84861e430) C:\Windows\system32\wuaueng.dll
23:10:11.0149 3252 wuauserv - ok
23:10:11.0208 3252 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys
23:10:11.0209 3252 WudfPf - ok
23:10:11.0233 3252 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys
23:10:11.0235 3252 WUDFRd - ok
23:10:11.0261 3252 wudfsvc (7a95c95b6c4cf292d689106bcae49543) C:\Windows\System32\WUDFSvc.dll
23:10:11.0263 3252 wudfsvc - ok
23:10:11.0297 3252 WwanSvc (9a3452b3c2a46c073166c5cf49fad1ae) C:\Windows\System32\wwansvc.dll
23:10:11.0300 3252 WwanSvc - ok
23:10:11.0401 3252 ZSMC301b (6e53d1058b900443949c69ec6215d98f) C:\Windows\system32\Drivers\usbVM302.sys
23:10:11.0408 3252 ZSMC301b - ok
23:10:11.0420 3252 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
23:10:11.0603 3252 \Device\Harddisk0\DR0 - ok
23:10:11.0622 3252 Boot (0x1200) (133d697514fd52e86d5430d6edc1185c) \Device\Harddisk0\DR0\Partition0
23:10:11.0623 3252 \Device\Harddisk0\DR0\Partition0 - ok
23:10:11.0634 3252 Boot (0x1200) (b1bab3a64d88ede6095c6ee108c7008b) \Device\Harddisk0\DR0\Partition1
23:10:11.0635 3252 \Device\Harddisk0\DR0\Partition1 - ok
23:10:11.0654 3252 Boot (0x1200) (ed4ea400ad7f212b02f68ffb1b589363) \Device\Harddisk0\DR0\Partition2
23:10:11.0655 3252 \Device\Harddisk0\DR0\Partition2 - ok
23:10:11.0658 3252 ============================================================
23:10:11.0658 3252 Scan finished
23:10:11.0658 3252 ============================================================
23:10:11.0664 4272 Detected object count: 0
23:10:11.0664 4272 Actual detected object count: 0
OTL logfile created on: 6/9/2012 10:58:13 PM - Run 2
OTL by OldTimer - Version 3.2.48.0 Folder = C:\Users\JohnLani\Documents\NSWFB
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: Australia | Language: ENA | Date Format: d/MM/yyyy
3.93 Gb Total Physical Memory | 1.74 Gb Available Physical Memory | 44.24% Memory free
7.87 Gb Paging File | 5.50 Gb Available in Paging File | 69.87% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 100.00 Gb Total Space | 21.27 Gb Free Space | 21.27% Space Free | Partition Type: NTFS
Drive D: | 300.00 Gb Total Space | 13.41 Gb Free Space | 4.47% Space Free | Partition Type: NTFS
Drive E: | 65.76 Gb Total Space | 24.65 Gb Free Space | 37.49% Space Free | Partition Type: NTFS
Computer Name: JOHNLANI-PC | User Name: JohnLani | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ========== PRC - [2012/06/09 22:58:03 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\JohnLani\My Documents\NSWFB\OTL.exe
PRC - [2012/05/29 18:21:44 | 000,313,768 | ---- | M] (Razer USA Ltd) -- C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
PRC - [2012/05/23 11:56:51 | 001,240,088 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2012/04/04 15:56:40 | 000,654,408 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2012/04/04 15:56:38 | 000,462,408 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2012/02/09 19:05:32 | 000,382,272 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
PRC - [2012/01/09 20:17:44 | 000,821,592 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
PRC - [2012/01/03 23:10:50 | 000,815,512 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe
PRC - [2011/11/12 11:04:12 | 000,268,640 | ---- | M] (LeapFrog Enterprises, Inc.) -- C:\Program Files (x86)\LeapFrog\LeapFrog Connect\Monitor.exe
PRC - [2011/11/12 10:21:58 | 006,141,792 | ---- | M] (LeapFrog Enterprises, Inc.) -- C:\Program Files (x86)\LeapFrog\LeapFrog Connect\CommandService.exe
PRC - [2011/05/11 14:32:08 | 007,535,112 | ---- | M] (Matrox Graphics Inc.) -- C:\Program Files (x86)\Matrox Graphics\PowerDesk\Matrox.PDesk.Core.exe
PRC - [2011/05/11 14:32:08 | 003,703,816 | ---- | M] (Matrox Graphics Inc) -- C:\Program Files (x86)\Matrox Graphics\PowerDesk\Matrox.PDesk.Services.exe
PRC - [2011/05/11 14:32:08 | 000,884,744 | ---- | M] (Matrox Graphics Inc.) -- C:\Program Files (x86)\Matrox Graphics\PowerDesk\Matrox.PDesk.Startup.exe
PRC - [2010/05/01 16:08:33 | 000,186,760 | ---- | M] () -- C:\Program Files (x86)\Photodex\ProShowProducer\scsiaccess.exe
PRC - [2010/03/25 14:39:22 | 000,490,280 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Nero\Update\NASvc.exe
PRC - [2008/11/18 12:15:30 | 000,307,200 | ---- | M] (Creative Technology Ltd) -- C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
PRC - [2007/03/27 09:24:06 | 000,049,152 | ---- | M] (Vimicro) -- C:\Windows\VM302Snap.exe
PRC - [2006/11/17 16:42:46 | 000,053,341 | ---- | M] (Creative Technology Ltd) -- C:\Program Files (x86)\Creative\Shared Files\CTSched.exe
PRC - [2006/07/04 06:16:32 | 000,049,152 | ---- | M] () -- C:\Windows\Domino.exe
========== Modules (No Company Name) ========== MOD - [2012/05/23 11:56:50 | 000,441,880 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\19.0.1084.52\ppgooglenaclpluginchrome.dll
MOD - [2012/05/23 11:56:49 | 003,922,456 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\19.0.1084.52\pdf.dll
MOD - [2012/05/23 11:55:35 | 000,553,496 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\19.0.1084.52\libglesv2.dll
MOD - [2012/05/23 11:55:33 | 000,117,784 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\19.0.1084.52\libegl.dll
MOD - [2012/05/23 11:55:24 | 000,134,696 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\19.0.1084.52\avutil-51.dll
MOD - [2012/05/23 11:55:23 | 000,250,408 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\19.0.1084.52\avformat-54.dll
MOD - [2012/05/23 11:55:21 | 002,375,720 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\19.0.1084.52\avcodec-54.dll
MOD - [2012/05/23 11:06:23 | 008,743,584 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\19.0.1084.52\gcswf32.dll
MOD - [2012/05/12 14:17:46 | 001,218,560 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Management\e72d56a0f58bcf95890614700f925609\System.Management.ni.dll
MOD - [2012/05/12 14:15:28 | 001,021,952 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Dura#\ac5d04fd61df57da0f9976440a8c6c58\System.Runtime.DurableInstancing.ni.dll
MOD - [2012/05/12 14:15:27 | 000,143,360 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\SMDiagnostics\4dd48e938a8834fe950cf0cd11603c71\SMDiagnostics.ni.dll
MOD - [2012/05/12 14:15:26 | 002,647,040 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\3fe3910474b3e2a08fca9b09330a74f7\System.Runtime.Serialization.ni.dll
MOD - [2012/05/12 14:15:24 | 000,393,216 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml.Linq\8f0cf05d2b1e46a772312143227cb6ed\System.Xml.Linq.ni.dll
MOD - [2012/05/12 14:14:58 | 001,782,272 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\a181199f8dec15116e1c2eb4a79ec22b\System.Xaml.ni.dll
MOD - [2012/05/11 23:07:09 | 018,000,896 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\142c428042c2dba4d5ac72495142f58c\PresentationFramework.ni.dll
MOD - [2012/05/11 23:06:53 | 011,451,904 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\5c18a8cca40f5abb3617826e529a4be9\PresentationCore.ni.dll
MOD - [2012/05/11 23:06:42 | 003,858,432 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\dac2093a24d7582eaee5ebd24ba1d06a\WindowsBase.ni.dll
MOD - [2012/05/11 23:06:42 | 000,595,968 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\3263fe38362543170c1682381eeac25a\PresentationFramework.Aero.ni.dll
MOD - [2012/05/11 23:03:33 | 013,197,312 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\71109720564155295fbaaff1202a33c0\System.Windows.Forms.ni.dll
MOD - [2012/05/11 23:03:27 | 001,665,536 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\5be779e4d55a04c3b86644505facbe9a\System.Drawing.ni.dll
MOD - [2012/05/11 23:03:23 | 007,069,184 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\3e4f9b3b78f0f13b7469a14e69d756ef\System.Core.ni.dll
MOD - [2012/05/11 23:03:22 | 000,982,528 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\6711765f90c0082ec393943b924ed277\System.Configuration.ni.dll
MOD - [2012/05/11 23:03:21 | 005,617,664 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\bd2433e160ce2f19acc8ebe10babae8d\System.Xml.ni.dll
MOD - [2012/05/11 23:03:18 | 009,091,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System\9cf67ed1b743fbc3dd6b78fbc0595236\System.ni.dll
MOD - [2012/05/11 23:03:12 | 014,413,824 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\1bdf7de454340e0ea9fc455aeaec49d9\mscorlib.ni.dll
MOD - [2011/11/01 22:26:32 | 000,087,912 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2011/11/01 22:26:12 | 001,242,472 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2011/09/14 08:19:06 | 008,500,224 | ---- | M] () -- C:\Program Files (x86)\LeapFrog\LeapFrog Connect\QtGui4.dll
MOD - [2011/09/14 08:19:06 | 002,348,544 | ---- | M] () -- C:\Program Files (x86)\LeapFrog\LeapFrog Connect\QtCore4.dll
MOD - [2010/11/20 22:19:56 | 000,232,448 | ---- | M] () -- \\.\globalroot\systemroot\syswow64\mswsock.dll
MOD - [2006/07/04 06:16:32 | 000,049,152 | ---- | M] () -- C:\Windows\Domino.exe
========== Win32 Services (SafeList) ========== SRV:
64bit: - [2012/03/26 18:49:56 | 000,291,696 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV:
64bit: - [2012/03/26 18:49:56 | 000,012,600 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV:
64bit: - [2010/09/22 17:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV:
64bit: - [2009/11/01 17:42:24 | 001,038,088 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe -- (FLEXnet Licensing Service 64)
SRV:
64bit: - [2009/09/12 00:40:22 | 002,287,360 | ---- | M] (O&O Software GmbH) [Auto | Running] -- C:\Program Files\OO Software\Defrag\oodag.exe -- (O&O Defrag)
SRV - [2012/05/05 18:03:07 | 000,257,696 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012/04/04 15:56:40 | 000,654,408 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2012/02/09 19:05:32 | 000,382,272 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2012/01/09 20:17:44 | 000,821,592 | ---- | M] (IObit) [Auto | Running] -- C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe -- (IMFservice)
SRV - [2011/11/12 10:21:58 | 006,141,792 | ---- | M] (LeapFrog Enterprises, Inc.) [Auto | Running] -- C:\Program Files (x86)\LeapFrog\LeapFrog Connect\CommandService.exe -- (LeapFrog Connect Device Service)
SRV - [2011/08/13 21:25:00 | 001,044,816 | ---- | M] (Flexera Software, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2011/05/11 14:32:08 | 003,703,816 | ---- | M] (Matrox Graphics Inc) [Auto | Running] -- C:\Program Files (x86)\Matrox Graphics\PowerDesk\Matrox.PDesk.Services.exe -- (Matrox.Pdesk3.ServicesHost)
SRV - [2011/04/24 23:15:02 | 000,202,296 | ---- | M] (Kaspersky Lab ZAO) [On_Demand | Stopped] -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe -- (AVP)
SRV - [2010/11/20 22:19:20 | 000,397,824 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll -- (WAS)
SRV - [2010/11/20 22:19:20 | 000,397,824 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll -- (W3SVC)
SRV - [2010/11/20 22:18:03 | 000,061,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\inetsrv\apphostsvc.dll -- (AppHostSvc)
SRV - [2010/05/01 16:08:33 | 000,186,760 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Photodex\ProShowProducer\scsiaccess.exe -- (ScsiAccess)
SRV - [2010/03/25 14:39:22 | 000,490,280 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files (x86)\Nero\Update\NASvc.exe -- (NAUpdate) @C:\Program Files (x86)
SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010/01/11 07:51:05 | 000,079,360 | ---- | M] (Creative Labs) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe -- (Creative ALchemy AL6 Licensing Service)
SRV - [2009/10/31 19:31:48 | 000,079,360 | ---- | M] (Creative Labs) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe -- (Creative Audio Engine Licensing Service)
SRV - [2009/06/11 07:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2008/11/18 12:15:30 | 000,307,200 | ---- | M] (Creative Technology Ltd) [Auto | Running] -- C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe -- (CTAudSvcService)
========== Driver Services (SafeList) ========== DRV:
64bit: - [2012/06/09 22:36:23 | 000,050,000 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\iopkkbzj.sys -- (iopkkbzj)
DRV:
64bit: - [2012/06/08 14:55:05 | 000,615,728 | ---- | M] (Kaspersky Lab) [File_System | System | Running] -- C:\Windows\SysNative\drivers\klif.sys -- (KLIF)
DRV:
64bit: - [2012/05/15 12:50:18 | 000,094,208 | ---- | M] (Razer USA Ltd) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rzudd.sys -- (rzudd)
DRV:
64bit: - [2012/04/04 15:56:40 | 000,024,904 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:
64bit: - [2012/03/20 20:44:12 | 000,098,688 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv)
DRV:
64bit: - [2012/03/01 16:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:
64bit: - [2011/08/01 15:59:06 | 000,045,416 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\point64.sys -- (Point64)
DRV:
64bit: - [2011/05/20 20:04:32 | 000,017,496 | ---- | M] (CH Products) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\chdrvr03.sys -- (chdrvr03)
DRV:
64bit: - [2011/05/20 20:04:30 | 000,013,016 | ---- | M] (CH Products) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\chdrvr02.sys -- (chdrvr02)
DRV:
64bit: - [2011/05/20 20:04:28 | 000,251,224 | ---- | M] (CH Products) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\chdrvr01.sys -- (chdrvr01)
DRV:
64bit: - [2011/05/10 08:06:08 | 000,051,712 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:
64bit: - [2011/03/11 16:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:
64bit: - [2011/03/11 16:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:
64bit: - [2011/03/10 18:36:24 | 000,029,488 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\klim6.sys -- (KLIM6)
DRV:
64bit: - [2011/03/04 13:23:28 | 000,011,864 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\kl2.sys -- (kl2)
DRV:
64bit: - [2010/11/20 23:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:
64bit: - [2010/11/20 21:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:
64bit: - [2010/11/20 20:43:57 | 000,032,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser)
DRV:
64bit: - [2010/09/22 23:36:48 | 000,048,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:
64bit: - [2010/09/16 22:09:50 | 000,038,056 | ---- | M] (Elaborate Bytes AG) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\ElbyCDIO.sys -- (ElbyCDIO)
DRV:
64bit: - [2010/09/14 23:16:15 | 000,125,888 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AnyDVD.sys -- (AnyDVD)
DRV:
64bit: - [2010/07/09 13:19:02 | 000,021,480 | ---- | M] (Windows ® Win 7 DDK provider) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\cpuz134_x64.sys -- (cpuz134)
DRV:
64bit: - [2010/04/19 19:29:18 | 000,022,528 | ---- | M] (Apple Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netaapl64.sys -- (Netaapl)
DRV:
64bit: - [2010/01/03 19:01:55 | 000,314,016 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\atksgt.sys -- (atksgt)
DRV:
64bit: - [2010/01/03 19:01:55 | 000,043,680 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\lirsgt.sys -- (lirsgt)
DRV:
64bit: - [2009/12/17 16:49:02 | 000,045,600 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\npusbio_x64.sys -- (npusbio)
DRV:
64bit: - [2009/11/02 20:27:10 | 000,022,544 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\klmouflt.sys -- (klmouflt)
DRV:
64bit: - [2009/08/03 10:12:00 | 001,289,216 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\P17.sys -- (P17)
DRV:
64bit: - [2009/07/14 11:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:
64bit: - [2009/07/14 11:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:
64bit: - [2009/07/14 11:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:
64bit: - [2009/06/11 06:35:20 | 000,278,016 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\e1e6032e.sys -- (e1express) Intel®
DRV:
64bit: - [2009/06/11 06:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:
64bit: - [2009/06/11 06:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:
64bit: - [2009/06/11 06:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:
64bit: - [2009/06/11 06:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:
64bit: - [2009/05/18 12:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:
64bit: - [2008/12/08 13:48:44 | 000,023,040 | ---- | M] (GoFlight, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\gfvknt64.sys -- (gfvknt)
DRV:
64bit: - [2008/06/27 06:51:10 | 000,088,632 | ---- | M] (Adobe Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\adfs.sys -- (adfs)
DRV:
64bit: - [2007/04/04 12:28:40 | 001,495,936 | ---- | M] (Vimicro Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbVM302.sys -- (ZSMC301b) Vimicro USB PC Camera (ZC0302)
DRV:
64bit: - [2007/03/18 08:43:28 | 000,301,824 | ---- | M] (Vimicro Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vvftav302.sys -- (vvftav302)
DRV:
64bit: - [2006/11/10 23:08:58 | 000,030,720 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SysTool64.sys -- (SysTool)
DRV - [2012/04/28 13:16:22 | 000,021,872 | ---- | M] (IObit.com) [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\UrlFilter.sys -- (UrlFilter)
DRV - [2012/04/28 13:16:20 | 000,033,184 | ---- | M] (IObit.com) [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\RegFilter.sys -- (RegFilter)
DRV - [2012/01/05 18:07:14 | 000,021,384 | ---- | M] (IObit) [File_System | On_Demand | Stopped] -- C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys -- (FileMonitor)
DRV - [2010/09/14 23:16:15 | 000,125,888 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\drivers\AnyDVD.sys -- (AnyDVD)
DRV - [2009/12/18 10:58:52 | 000,017,864 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys -- (cpudrv64)
DRV - [2009/07/14 11:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2008/08/14 06:57:42 | 000,074,720 | ---- | M] (Adobe Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysWow64\drivers\adfs.sys -- (adfs)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE:
64bit: - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE:
64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://www.bing.com/...ms}&FORM=IE8SRCIE:
64bit: - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" =
http://www.google.co...g}&sourceid=ie7IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://www.bing.com/...ms}&FORM=IE8SRCIE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" =
http://www.google.co...g}&sourceid=ie7 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default Download Directory = C:\Users\JohnLani\Documents\NSWFB
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.ninemsn.com.au/?ocid=OIE9HPIE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com.au/IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache =
http://ninemsn.com.au/?ocid=iehpIE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-au
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = D2 AB BC A3 00 5A CA 01 [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore =
http://www.google.com.au/IE - HKCU\..\URLSearchHook: {81017EA9-9AA8-4A6A-9734-7AF40E7D593F} - No CLSID value found
IE - HKCU\..\URLSearchHook: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - No CLSID value found
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://www.bing.com/...Box&FORM=IE8SRCIE - HKCU\..\SearchScopes\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}: "URL" =
http://www.daemon-se...q={searchTerms}IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ========== FF - prefs.js..browser.startup.homepage: "
http://www.google.com.au/"FF - prefs.js..extensions.enabledItems:
[email protected]:1.2
FF - prefs.js..network.proxy.no_proxies_on: "*.local"
FF - prefs.js..network.proxy.type: 0
FF:
64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:
64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@abr.gov.au/KeyMgmtPlugin: C:\Program Files (x86)\ABR\Plug-In\bin\npAUSkeyPlugin.dll (Commonwealth Government of Australia)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@csi.business.gov.au/CsiPlugin: C:\Program Files (x86)\Common-Use Signing Interface\bin\npCsiPlugin.dll (Commonwealth Government of Australia)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.5: C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@photodex.com/PhotodexPresenter: C:\Program Files (x86)\Photodex Presenter\npPxPlay.dll ( )
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Acrobat: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\
[email protected]: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2011/05/18 08:16:01 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\
[email protected]: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2012/02/02 15:51:34 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\
[email protected]: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\FFExt\
[email protected] [2012/06/08 15:10:45 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\
[email protected]: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\FFExt\
[email protected] [2012/06/08 15:10:44 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.28\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012/04/11 20:05:43 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.28\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2012/04/11 20:05:43 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\
[email protected]: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2011/05/18 08:16:01 | 000,000,000 | ---D | M]
[2011/03/21 09:07:43 | 000,000,000 | ---D | M] (No name found) -- C:\Users\JohnLani\AppData\Roaming\Mozilla\Extensions
[2010/08/02 14:01:19 | 000,000,000 | ---D | M] (No name found) -- C:\Users\JohnLani\AppData\Roaming\Mozilla\Extensions\
[email protected][2009/11/01 10:11:00 | 000,000,000 | ---D | M] (No name found) -- C:\Users\JohnLani\AppData\Roaming\Mozilla\Firefox\extensions
[2009/11/01 10:13:41 | 000,000,000 | ---D | M] ("Ask Toolbar for Firefox") -- C:\Users\JohnLani\AppData\Roaming\Mozilla\Firefox\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}
[2012/05/19 22:15:05 | 000,000,000 | ---D | M] (No name found) -- C:\Users\JohnLani\AppData\Roaming\Mozilla\Firefox\Profiles\q7fmh5uv.default\extensions
[2011/08/28 03:22:00 | 000,000,000 | ---D | M] (Yahoo! Toolbar) -- C:\Users\JohnLani\AppData\Roaming\Mozilla\Firefox\Profiles\q7fmh5uv.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
[2012/06/08 15:10:47 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2011/11/08 13:53:25 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2012/06/08 14:55:53 | 000,000,000 | ---D | M] (Kaspersky URL Advisor) -- C:\Program Files (x86)\Mozilla Firefox\extensions\
[email protected]_bak2
[2012/02/02 15:51:34 | 000,000,000 | ---D | M] (Adobe Acrobat - Create PDF) -- C:\PROGRAM FILES (X86)\ADOBE\ACROBAT 10.0\ACROBAT\BROWSER\WCFIREFOXEXTN
========== Chrome ========== CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\19.0.1084.52\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Disabled) = C:\Program Files (x86)\Google\Chrome\Application\19.0.1084.52\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\19.0.1084.52\gcswf32.dll
CHR - plugin: Shockwave Flash (Disabled) = C:\Users\JohnLani\AppData\Local\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\system32\Macromed\Flash\NPSWF32.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\nppdf32.dll
CHR - plugin: Java Deployment Toolkit 6.0.240.7 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java Platform SE 6 U24 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: 2007 Microsoft Office system (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\NPOFF12.DLL
CHR - plugin: Microsoft Office Live Plug-in for Firefox (Enabled) = C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin7.dll
CHR - plugin: ABR_AUSkey Mozilla Plugin (Enabled) = C:\Program Files (x86)\ABR\Plug-In\bin\npAUSkeyPlugin.dll
CHR - plugin: CSI Mozilla Plugin (Enabled) = C:\Program Files (x86)\Common-Use Signing Interface\bin\npCsiPlugin.dll
CHR - plugin: Google Earth Plugin (Enabled) = C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll
CHR - plugin: NVIDIA 3D Vision (Enabled) = C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
CHR - plugin: NVIDIA 3D VISION (Enabled) = C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
CHR - plugin: Photodex Presenter Plugin (Enabled) = C:\Program Files (x86)\Photodex Presenter\npPxPlay.dll
CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
CHR - Extension: Raindrops = C:\Users\JohnLani\AppData\Local\Google\Chrome\User Data\Default\Extensions\bcipapbfhdnmgihoimbjiadmhpcgcnil\1.0.0.2_0\
CHR - Extension: YouTube = C:\Users\JohnLani\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Google Search = C:\Users\JohnLani\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Kaspersky URL Advisor = C:\Users\JohnLani\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\12.0.0.477_0\
CHR - Extension: Virtual Keyboard = C:\Users\JohnLani\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\12.0.0.477_0\
CHR - Extension: Gmail = C:\Users\JohnLani\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
CHR - Extension: Anti-Banner = C:\Users\JohnLani\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\12.0.0.374_0\
O1 HOSTS File: ([2012/02/02 15:43:51 | 000,002,287 | R--- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 activate.adobe.com
O1 - Hosts: 127.0.0.1 practivate.adobe.com
O1 - Hosts: 127.0.0.1 ereg.adobe.com
O1 - Hosts: 127.0.0.1 activate.wip3.adobe.com
O1 - Hosts: 127.0.0.1 wip3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-3.adobe.com
O1 - Hosts: 127.0.0.1 ereg.wip3.adobe.com
O1 - Hosts: 127.0.0.1 activate-sea.adobe.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: 127.0.0.1 activate-sjc0.adobe.com
O1 - Hosts: 127.0.0.1 3dns.adobe.com 3dns-1.adobe.com 3dns-2.adobe.com 3dns-3.adobe.com 3dns-4.adobe.com activate.adobe.com activate-sea.adobe.com activate-sjc0.adobe.com activate.wip.adobe.com
O1 - Hosts: 127.0.0.1 activate.wip1.adobe.com activate.wip2.adobe.com activate.wip3.adobe.com activate.wip4.adobe.com adobe-dns.adobe.com adobe-dns-1.adobe.com adobe-dns-2.adobe.com adobe-dns-3.adobe.com adobe-dns-4.adobe.com
O1 - Hosts: 127.0.0.1 adobeereg.com practivate.adobe practivate.adobe.com practivate.adobe.newoa practivate.adobe.ntp practivate.adobe.ipp ereg.adobe.com ereg.wip.adobe.com ereg.wip1.adobe.com
O1 - Hosts: 127.0.0.1 ereg.wip2.adobe.com ereg.wip3.adobe.com ereg.wip4.adobe.com hl2rcv.adobe.com wip.adobe.com wip1.adobe.com wip2.adobe.com wip3.adobe.com wip4.adobe.com
O1 - Hosts: 127.0.0.1 www.adobeereg.com wwis-dubc1-vip60.adobe.com www.wip.adobe.com www.wip1.adobe.com
O1 - Hosts: 127.0.0.1 www.wip2.adobe.com www.wip3.adobe.com www.wip4.adobe.com wwis-dubc1-vip60.adobe.com crl.verisign.net CRL.VERISIGN.NET ood.opsource.net
O2:
64bit: - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\x64\ievkbd.dll (Kaspersky Lab ZAO)
O2:
64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O2:
64bit: - BHO: (Java Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll File not found
O2:
64bit: - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\x64\klwtbbho.dll (Kaspersky Lab ZAO)
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (no name) - {201f27d4-3704-41d6-89c1-aa35e39143ed} - No CLSID value found.
O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\ievkbd.dll (Kaspersky Lab ZAO)
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Java Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll File not found
O2 - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\klwtbbho.dll (Kaspersky Lab ZAO)
O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3:
64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3:
64bit: - HKLM\..\Toolbar: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - No CLSID value found.
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3:
64bit: - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O4:
64bit: - HKLM..\Run: [IntelliPoint] C:\Program Files\Microsoft IntelliPoint\ipoint.exe (Microsoft Corporation)
O4:
64bit: - HKLM..\Run: [MSC] C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
O4 - HKLM..\Run: [Adobe Acrobat Speed Launcher] C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeCS4ServiceManager] C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [BigDogPath] C:\Windows\VM302Snap.exe (Vimicro)
O4 - HKLM..\Run: [Domino] C:\Windows\Domino.exe ()
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [Matrox PowerDesk] C:\Program Files (x86)\Matrox Graphics\PowerDesk\Matrox.PDesk.Startup.exe (Matrox Graphics Inc.)
O4 - HKLM..\Run: [Monitor] C:\Program Files (x86)\LeapFrog\LeapFrog Connect\Monitor.exe (LeapFrog Enterprises, Inc.)
O4 - HKLM..\Run: [NBAgent] C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe (Nero AG)
O4 - HKLM..\Run: [Razer Synapse] C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe (Razer USA Ltd)
O4 - HKLM..\Run: [UpdatePDRShortCut] C:\Program Files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKCU..\Run: [Creative Software Update] C:\Program Files (x86)\Creative\Shared Files\Software Update\AutoUpdate.exe (Creative Technology Ltd)
O4 - HKCU..\Run: [CreativeTaskScheduler] C:\Program Files (x86)\Creative\Shared Files\CTSched.exe (Creative Technology Ltd)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 28
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O8:
64bit: - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:
64bit: - Extra context menu item: Append to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:
64bit: - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:
64bit: - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:
64bit: - Extra context menu item: Download with ImTOO iPhone Transfer Platinum - C:\Program Files (x86)\ImTOO\iPhone Transfer Platinum\upod_link.HTM File not found
O8:
64bit: - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html File not found
O8 - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Append to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Download with ImTOO iPhone Transfer Platinum - C:\Program Files (x86)\ImTOO\iPhone Transfer Platinum\upod_link.HTM File not found
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html File not found
O9:
64bit: - Extra Button: &Virtual Keyboard - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\x64\ievkbd.dll (Kaspersky Lab ZAO)
O9:
64bit: - Extra Button: URLs c&heck - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\x64\klwtbbho.dll (Kaspersky Lab ZAO)
O9 - Extra Button: &Virtual Keyboard - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\ievkbd.dll (Kaspersky Lab ZAO)
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: URLs c&heck - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\klwtbbho.dll (Kaspersky Lab ZAO)
O10:
64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - mmswsock.dll File not found
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - mmswsock.dll File not found
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - mmswsock.dll File not found
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - mmswsock.dll File not found
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000005 - mmswsock.dll File not found
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000006 - mmswsock.dll File not found
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000007 - mmswsock.dll File not found
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000008 - mmswsock.dll File not found
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000009 - mmswsock.dll File not found
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000010 - mmswsock.dll File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files (x86)\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files (x86)\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files (x86)\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files (x86)\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Program Files (x86)\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Program Files (x86)\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Program Files (x86)\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Program Files (x86)\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Program Files (x86)\Bonjour\mdnsNSP.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Program Files (x86)\Bonjour\mdnsNSP.dll File not found
O13
64bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: abr.gov.au ([www] https in Trusted sites)
O15 - HKCU\..Trusted Domains: ato.gov.au ([www] https in Trusted sites)
O15 - HKCU\..Trusted Domains: bussiness.gov.au ([www] https in Trusted sites)
O16 - DPF: {140E4DF8-9E14-4A34-9577-C77561ED7883}
http://content.syste...ent_4.3.1.0.cab (SysInfo Class)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700}
http://download.micr...heckControl.cab (Windows Genuine Advantage Validation Tool)
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F}
http://www.nvidia.co...sreqlab_nvd.cab (System Requirements Lab Class)
O16 - DPF: {B8A48F42-30E1-48f8-AE87-7BD7C75DB8AA}
http://www.systemreq...reqlab_test.cab (System Requirements Lab Class)
O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F}
http://content.syste...el_4.1.66.0.cab (SysInfo Class)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload2.m...ash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {D4B68B83-8710-488B-A692-D74B50BA558E}
http://ccfiles.creat...13/CTPIDPDE.cab (Creative Software AutoUpdate Support Package 2)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29}
http://ccfiles.creat...15116/CTPID.cab (Creative Software AutoUpdate Support Package 1)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.138
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{5F6A85D9-39A3-425A-9D6F-C812C3F19B3A}: DhcpNameServer = 139.130.4.4 203.50.2.71
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{63C57A69-2348-4299-8E70-76FED20EB0D0}: DhcpNameServer = 10.0.0.138
O18:
64bit: - Protocol\Handler\grooveLocalGWS - No CLSID value found
O18:
64bit: - Protocol\Handler\livecall - No CLSID value found
O18:
64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:
64bit: - Protocol\Handler\msnim - No CLSID value found
O18:
64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
O18:
64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:
64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:
64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: UserInit - (C:\Users\JohnLani\AppData\Roaming\Fxnu8RiZ6Zl.exe) - File not found
O20:
64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:
64bit: - Winlogon\Notify\klogon: DllName - (%SystemRoot%\System32\klogon.dll) - C:\Windows\SysNative\klogon.dll (Kaspersky Lab ZAO)
O21:
64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{2ae4007b-c6b7-11de-a285-001cc0372afd}\Shell - "" = AutoRun
O33 - MountPoints2\{2ae4007b-c6b7-11de-a285-001cc0372afd}\Shell\AutoRun\command - "" = G:\setup.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (OODBS)
O35:
64bit: - HKLM\..comfile [open] -- "%1" %*
O35:
64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:
64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:
64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ========== [2012/06/09 10:00:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2012/06/09 10:00:12 | 000,024,904 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2012/06/09 10:00:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2012/06/09 09:48:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Security Client
[2012/06/08 20:02:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Trend Micro
[2012/06/08 20:02:46 | 000,000,000 | ---D | C] -- C:\Users\JohnLani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis
[2012/06/08 19:27:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Malware Fighter
[2012/06/08 19:27:00 | 000,000,000 | ---D | C] -- C:\Users\JohnLani\AppData\Roaming\IObit
[2012/06/08 19:21:58 | 000,000,000 | ---D | C] -- C:\TDSSKiller_Quarantine
[2012/06/08 14:55:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Anti-Virus 2012
[2012/06/08 14:55:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Kaspersky Lab
[2012/06/08 14:55:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Kaspersky Lab
[2012/06/08 14:55:05 | 000,615,728 | ---- | C] (Kaspersky Lab) -- C:\Windows\SysNative\drivers\klif.sys
[2012/06/08 14:26:45 | 000,000,000 | --SD | C] -- C:\32788R22FWJFW
[2012/06/08 14:26:17 | 004,539,477 | R--- | C] (Swearware) -- C:\Users\JohnLani\Desktop\ComboFix.exe
[2012/06/08 14:13:03 | 000,000,000 | ---D | C] -- C:\Users\JohnLani\AppData\Roaming\Malwarebytes
[2012/06/08 14:13:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2012/06/06 14:21:51 | 000,000,000 | -HSD | C] -- C:\Windows\SysWow64\%APPDATA%
[2012/06/03 18:43:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wings of POWER II
[2012/06/03 18:43:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Wings of POWER II
[2012/06/01 19:39:20 | 000,000,000 | ---D | C] -- C:\Users\JohnLani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CLS A330_A340
[2012/05/28 13:22:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Navigraph
[2012/05/28 13:22:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Navigraph
[2012/05/27 22:20:10 | 000,000,000 | ---D | C] -- C:\Users\JohnLani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PollyPot Software
[2012/05/21 16:40:50 | 002,127,960 | ---- | C] (Kaspersky Lab ZAO) -- C:\Users\JohnLani\Desktop\TDSSKiller.exe
[2012/05/15 12:50:18 | 000,094,208 | ---- | C] (Razer USA Ltd) -- C:\Windows\SysNative\drivers\rzudd.sys
[2012/05/15 12:36:12 | 000,142,848 | ---- | C] (Razer USA Ltd) -- C:\Windows\SysWow64\rztouchdll.dll
[2012/05/15 12:36:02 | 000,354,816 | ---- | C] (Razer USA Ltd) -- C:\Windows\SysWow64\rzdevicedll.dll
[2012/05/15 12:36:00 | 000,165,888 | ---- | C] (Razer USA Ltd) -- C:\Windows\SysWow64\rzaudiodll.dll
[2012/05/13 22:38:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
[2012/05/13 22:37:20 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight
[2012/05/13 22:37:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Silverlight
[2012/05/12 12:55:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer
[2012/05/12 12:55:14 | 000,000,000 | ---D | C] -- C:\Users\JohnLani\AppData\Local\Razer
[2012/05/12 12:55:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Razer
[2012/05/12 12:55:14 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Razer
[2012/05/11 09:00:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Hewlett-Packard
[8 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[6 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
========== Files - Modified Within 30 Days ========== [2012/06/09 23:02:01 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012/06/09 22:56:23 | 000,000,902 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012/06/09 22:42:59 | 000,013,456 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012/06/09 22:42:59 | 000,013,456 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012/06/09 22:34:23 | 000,000,898 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012/06/09 22:34:21 | 000,000,486 | ---- | M] () -- C:\Windows\tasks\SDMsgUpdate (TE).job
[2012/06/09 22:34:03 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012/06/09 22:33:59 | 3168,862,208 | -HS- | M] () -- C:\hiberfil.sys
[2012/06/09 22:33:59 | 001,084,812 | ---- | M] () -- C:\Windows\SysNative\oodbs.lor
[2012/06/09 10:02:15 | 000,001,155 | ---- | M] () -- C:\Users\JohnLani\Application Data\Microsoft\Internet Explorer\Quick Launch\Malwarebytes Anti-Malware.lnk
[2012/06/09 10:02:15 | 000,001,131 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012/06/09 09:48:51 | 000,001,945 | ---- | M] () -- C:\Windows\epplauncher.mif
[2012/06/09 09:48:35 | 000,827,546 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2012/06/09 09:48:35 | 000,680,250 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2012/06/09 09:48:35 | 000,135,102 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2012/06/08 22:57:33 | 003,077,304 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2012/06/08 20:02:46 | 000,003,023 | ---- | M] () -- C:\Users\JohnLani\Desktop\HiJackThis.lnk
[2012/06/08 19:27:17 | 000,001,189 | ---- | M] () -- C:\Users\Public\Desktop\IObit Malware Fighter.lnk
[2012/06/08 15:12:45 | 000,002,521 | ---- | M] () -- C:\Users\Public\Desktop\Safari.lnk
[2012/06/08 15:10:33 | 000,152,233 | ---- | M] () -- C:\Windows\SysNative\drivers\klin.dat
[2012/06/08 15:10:27 | 000,107,177 | ---- | M] () -- C:\Windows\SysNative\drivers\klick.dat
[2012/06/08 14:56:20 | 000,017,408 | ---- | M] () -- C:\Users\JohnLani\AppData\Local\WebpageIcons.db
[2012/06/08 14:55:05 | 000,615,728 | ---- | M] (Kaspersky Lab) -- C:\Windows\SysNative\drivers\klif.sys
[2012/06/08 14:26:41 | 004,539,477 | R--- | M] (Swearware) -- C:\Users\JohnLani\Desktop\ComboFix.exe
[2012/06/07 19:04:20 | 000,000,181 | ---- | M] () -- C:\Windows\MYOBP.INI
[2012/06/07 19:03:54 | 000,000,041 | ---- | M] () -- C:\Windows\MYOB.INI
[2012/06/06 16:54:09 | 000,000,581 | ---- | M] () -- C:\Users\JohnLani\Desktop\Traffic - Shortcut.lnk
[2012/06/03 21:07:15 | 000,000,786 | ---- | M] () -- C:\Windows\axisConfig.cfg
[2012/06/03 19:55:44 | 000,000,938 | ---- | M] () -- C:\Users\Public\Desktop\A2A Message Boards.lnk
[2012/05/31 19:42:02 | 000,001,730 | ---- | M] () -- C:\Users\Public\Desktop\REX Essential.lnk
[2012/05/28 13:22:37 | 000,002,773 | ---- | M] () -- C:\Users\Public\Desktop\Navigraph nDAC 3.lnk
[2012/05/27 22:20:10 | 000,003,085 | ---- | M] () -- C:\Users\JohnLani\Desktop\GoFlight PMDG Interface.lnk
[2012/05/25 20:22:03 | 000,002,346 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2012/05/21 16:40:50 | 002,127,960 | ---- | M] (Kaspersky Lab ZAO) -- C:\Users\JohnLani\Desktop\TDSSKiller.exe
[2012/05/19 22:11:19 | 000,001,024 | ---- | M] () -- C:\.rnd
[2012/05/15 12:50:18 | 000,094,208 | ---- | M] (Razer USA Ltd) -- C:\Windows\SysNative\drivers\rzudd.sys
[2012/05/15 12:36:12 | 000,142,848 | ---- | M] (Razer USA Ltd) -- C:\Windows\SysWow64\rztouchdll.dll
[2012/05/15 12:36:02 | 000,354,816 | ---- | M] (Razer USA Ltd) -- C:\Windows\SysWow64\rzdevicedll.dll
[2012/05/15 12:36:00 | 000,165,888 | ---- | M] (Razer USA Ltd) -- C:\Windows\SysWow64\rzaudiodll.dll
[2012/05/13 12:37:42 | 000,007,598 | ---- | M] () -- C:\Users\JohnLani\AppData\Local\Resmon.ResmonCfg
[2012/05/12 13:15:19 | 000,002,011 | ---- | M] () -- C:\Users\JohnLani\Desktop\Razer Synapse 2.0.lnk
[2012/05/12 13:01:57 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_rzudd_01009.Wdf
[2012/05/11 23:05:46 | 000,827,766 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[8 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[6 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
========== Files Created - No Company Name ========== [2012/06/09 22:20:41 | 000,232,960 | ---- | C] () -- C:\Windows\Installer\{46146aa2-bd24-d0de-ef95-74d607514c2e}\U\00000008.@
[2012/06/09 15:12:34 | 000,001,584 | ---- | C] () -- C:\Windows\Installer\{46146aa2-bd24-d0de-ef95-74d607514c2e}\U\000000cb.@
[2012/06/09 15:12:34 | 000,001,536 | ---- | C] () -- C:\Windows\Installer\{46146aa2-bd24-d0de-ef95-74d607514c2e}\U\00000004.@
[2012/06/09 10:00:23 | 000,001,155 | ---- | C] () -- C:\Users\JohnLani\Application Data\Microsoft\Internet Explorer\Quick Launch\Malwarebytes Anti-Malware.lnk
[2012/06/09 10:00:23 | 000,001,131 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012/06/09 09:48:46 | 000,001,931 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
[2012/06/08 20:02:46 | 000,003,023 | ---- | C] () -- C:\Users\JohnLani\Desktop\HiJackThis.lnk
[2012/06/08 19:27:17 | 000,001,189 | ---- | C] () -- C:\Users\Public\Desktop\IObit Malware Fighter.lnk
[2012/06/08 14:56:19 | 000,017,408 | ---- | C] () -- C:\Users\JohnLani\AppData\Local\WebpageIcons.db
[2012/06/08 14:55:57 | 000,152,233 | ---- | C] () -- C:\Windows\SysNative\drivers\klin.dat
[2012/06/08 14:55:57 | 000,107,177 | ---- | C] () -- C:\Windows\SysNative\drivers\klick.dat
[2012/06/06 16:54:09 | 000,000,581 | ---- | C] () -- C:\Users\JohnLani\Desktop\Traffic - Shortcut.lnk
[2012/06/06 14:10:36 | 000,000,740 | ---- | C] () -- C:\Windows\Installer\{46146aa2-bd24-d0de-ef95-74d607514c2e}\L\00000004.@
[2012/06/03 20:30:15 | 000,000,786 | ---- | C] () -- C:\Windows\axisConfig.cfg
[2012/06/03 19:55:44 | 000,000,938 | ---- | C] () -- C:\Users\Public\Desktop\A2A Message Boards.lnk
[2012/06/03 19:54:53 | 000,153,088 | ---- | C] () -- C:\Windows\UNWISE.EXE
[2012/05/31 19:42:02 | 000,001,730 | ---- | C] () -- C:\Users\Public\Desktop\REX Essential.lnk
[2012/05/28 13:22:37 | 000,002,773 | ---- | C] () -- C:\Users\Public\Desktop\Navigraph nDAC 3.lnk
[2012/05/27 22:20:10 | 000,003,085 | ---- | C] () -- C:\Users\JohnLani\Desktop\GoFlight PMDG Interface.lnk
[2012/05/19 22:11:19 | 000,001,024 | ---- | C] () -- C:\.rnd
[2012/05/12 13:15:19 | 000,002,011 | ---- | C] () -- C:\Users\JohnLani\Desktop\Razer Synapse 2.0.lnk
[2012/05/12 13:01:57 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_rzudd_01009.Wdf
[2012/03/14 19:28:03 | 000,204,800 | ---- | C] () -- C:\Windows\SysWow64\DBCDBF32.DLL
[2012/03/14 19:28:03 | 000,184,320 | ---- | C] () -- C:\Windows\SysWow64\dbcmdb32.dll
[2012/03/14 19:28:03 | 000,141,824 | ---- | C] () -- C:\Windows\SysWow64\dbcjpg32.dll
[2012/03/14 19:28:03 | 000,135,168 | ---- | C] () -- C:\Windows\SysWow64\DBCMEM32.DLL
[2012/03/14 19:28:03 | 000,073,728 | ---- | C] () -- C:\Windows\SysWow64\dbcgeo32.dll
[2012/02/09 19:05:44 | 000,416,064 | ---- | C] () -- C:\Windows\SysWow64\nvStreaming.exe
[2012/01/12 15:59:40 | 000,002,048 | -HS- | C] () -- C:\Windows\Installer\{46146aa2-bd24-d0de-ef95-74d607514c2e}\@
[2011/12/01 21:58:24 | 000,000,080 | ---- | C] () -- C:\Users\JohnLani\AppData\Local\X-Plane Installer.prf
[2011/09/28 16:44:14 | 000,179,271 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
[2011/05/18 08:14:19 | 000,164,600 | ---- | C] () -- C:\Windows\hpoins27.dat.temp
[2011/05/18 08:14:19 | 000,000,442 | ---- | C] () -- C:\Windows\hpomdl27.dat.temp
[2011/05/11 10:26:48 | 003,751,424 | ---- | C] () -- C:\Windows\SysWow64\MtxApi.dll
[2011/04/08 15:44:10 | 000,552,960 | ---- | C] () -- C:\Windows\SysWow64\FS2AUDIO.dll
[2011/03/21 09:07:35 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2011/03/10 18:01:07 | 000,001,447 | ---- | C] () -- C:\Windows\aeroSystems.ini
[2011/01/22 07:58:59 | 000,212,776 | -H-- | C] () -- C:\Windows\SysWow64\mlfcache.dat
[2010/11/08 13:51:05 | 000,000,040 | -HS- | C] () -- C:\ProgramData\.zreglib
[2010/09/17 17:20:55 | 000,782,056 | ---- | C] () -- C:\Windows\SysWow64\unins000.exe
[2010/09/17 17:20:55 | 000,031,779 | ---- | C] () -- C:\Windows\SysWow64\unins000.dat
[2010/08/30 11:32:00 | 000,000,056 | -H-- | C] () -- C:\Windows\SysWow64\ezsidmv.dat
[2010/07/31 22:26:15 | 000,054,404 | ---- | C] () -- C:\Windows\SysWow64\sndspeed.dll
[2010/07/17 08:58:56 | 000,007,598 | ---- | C] () -- C:\Users\JohnLani\AppData\Local\Resmon.ResmonCfg
[2010/06/11 07:51:51 | 000,000,000 | ---- | C] () -- C:\Users\JohnLani\AppData\Roaming\chrtmp
========== LOP Check ========== [2011/10/26 15:54:45 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\.BitTornado
[2011/01/04 16:33:41 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\Alternative Software Ltd
[2012/01/03 16:05:07 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\AUSkey
[2011/10/08 20:31:36 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\CleanMyPC Software
[2011/01/15 22:07:44 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\com.bigfatsimulations.airportmadness3.3A85083A650345D1ADAB4572C5816AD2DC9802A3.1
[2009/11/01 17:24:04 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\DAEMON Tools Lite
[2011/03/20 09:11:34 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\DiskAid
[2012/04/12 22:58:20 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\EZCA
[2011/12/31 16:13:03 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\FlyingWSimulation
[2012/04/13 18:08:21 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\FS2Crew2010
[2010/09/17 17:20:55 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\FSWidgets
[2011/07/23 17:31:42 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\gtk-2.0
[2012/02/25 17:45:15 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\HiFi
[2011/03/20 09:26:39 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\ImTOO
[2010/08/15 18:56:37 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\InfraRecorder
[2010/02/07 11:07:56 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\Internal Workings
[2012/06/08 19:27:00 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\IObit
[2012/01/04 21:05:54 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\Jürgen Treml
[2011/08/22 14:33:53 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\Kalypso Media
[2010/07/07 09:52:59 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\Leadertech
[2011/05/04 09:03:28 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\LogMate
[2011/03/20 09:10:17 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\MobileSyncBrowser
[2010/03/27 12:45:14 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\Multi Crew Experience
[2011/12/31 21:52:16 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\MyTraffic
[2010/05/01 16:08:36 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\Netscape
[2010/09/21 17:25:23 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\nHancer
[2009/11/22 14:57:04 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\Nokia
[2009/11/01 11:03:17 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\Participatory Culture Foundation
[2009/10/31 19:32:48 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\PC Suite
[2012/01/27 19:32:42 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\PCF-VLC
[2010/05/01 16:08:16 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\Photodex
[2012/06/07 19:10:43 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\PrimoPDF
[2011/06/27 10:27:56 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\Publish Providers
[2010/09/17 07:56:03 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\Roaming
[2010/01/03 09:00:53 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\SIGMA
[2011/05/09 16:20:28 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\SmartDraw
[2011/06/27 10:27:54 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\Sony
[2011/07/08 17:28:44 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\The Creative Assembly
[2011/12/05 09:10:04 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\Ubisoft
[2011/07/25 19:24:11 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\Unity
[2012/06/09 10:13:50 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\uTorrent
[2012/02/26 16:03:39 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\Virtuali
[2010/08/30 16:51:50 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\WinBatch
[2010/10/30 09:10:04 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\Windows Live Writer
[2010/08/09 16:34:32 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\Windows NT
[2010/08/02 17:14:21 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\Windows SideBar
[2012/03/12 12:40:59 | 000,000,000 | ---D | M] -- C:\Users\JohnLani\AppData\Roaming\Z-Software
[2011/12/25 01:33:00 | 000,000,366 | ---- | M] () -- C:\Windows\Tasks\Driver Fetch.job
[2012/06/09 10:46:20 | 000,032,608 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2012/06/09 22:34:21 | 000,000,486 | ---- | M] () -- C:\Windows\Tasks\SDMsgUpdate (TE).job
========== Purity Check ========== ========== Hard Links - Junction Points - Mount Points - Symbolic Links ==========[C:\Windows\system64] -> \systemroot\system32 -> Mount Point
========== Alternate Data Streams ========== @Alternate Data Stream - 176 bytes -> C:\ProgramData\TEMP:ECF54A0E
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:A31FAD21
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:CE2C623F
@Alternate Data Stream - 1252 bytes -> C:\ProgramData\Microsoft:mn8diT51cfJ14E7H2VX
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:74603393
@Alternate Data Stream - 1141 bytes -> C:\ProgramData\Microsoft:Ot0N5vFRKfsSQqh370Z3
< End of report >