Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Unable to download anything from Internet, Get error each time.


  • Please log in to reply

#1
edge1334

edge1334

    Member

  • Member
  • PipPip
  • 30 posts
I am unable to download anything from Internet. I get the following error 'This program contained a virus and was deleted.'
I have attached the OTL log below. I also attempted to look in the registry under LOCAL SOFTWARE/Microsoft/Windows/Current Version/RUN and I get another error 'Cannot display Google update: Error reading the values contents.'

Please let me know what else you may need. Thanks for your help.

Dan

OTL logfile created on: 8/25/2013 6:15:44 PM - Run 2
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Dan\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16660)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.80 Gb Total Physical Memory | 2.12 Gb Available Physical Memory | 55.78% Memory free
7.60 Gb Paging File | 5.68 Gb Available in Paging File | 74.64% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 447.34 Gb Total Space | 347.47 Gb Free Space | 77.68% Space Free | Partition Type: NTFS
Drive D: | 18.13 Gb Total Space | 2.63 Gb Free Space | 14.49% Space Free | Partition Type: NTFS
Drive E: | 177.57 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Drive F: | 99.02 Mb Total Space | 93.22 Mb Free Space | 94.14% Space Free | Partition Type: FAT32

Computer Name: DAN-HP | User Name: Dan | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2013/05/11 06:37:26 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013/02/26 19:07:50 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Dan\Desktop\OTL.exe
PRC - [2012/04/11 10:43:09 | 000,232,472 | ---- | M] (Sophos Plc) -- C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe
PRC - [2012/02/21 07:48:21 | 001,543,704 | ---- | M] (Sophos Plc) -- C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe
PRC - [2010/11/24 16:33:26 | 000,921,600 | ---- | M] () -- C:\ProgramData\TVersity\Media Server\MediaServer.exe
PRC - [2010/11/09 18:16:22 | 000,154,816 | ---- | M] (Zecter Inc.) -- C:\Program Files (x86)\Hewlett-Packard\HP CloudDrive\zumodrive.exe
PRC - [2010/11/09 16:20:36 | 000,586,296 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
PRC - [2010/11/09 16:20:34 | 000,026,680 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
PRC - [2010/10/08 11:15:13 | 000,163,056 | ---- | M] (Sophos Plc) -- C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe
PRC - [2010/09/29 03:55:32 | 000,136,488 | ---- | M] (CyberLink) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
PRC - [2010/09/21 12:16:17 | 000,439,536 | ---- | M] (Sophos Plc) -- C:\Program Files (x86)\Sophos\AutoUpdate\ALMon.exe
PRC - [2010/09/11 05:02:22 | 000,399,344 | ---- | M] (Roxio) -- C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe
PRC - [2010/06/04 07:23:16 | 000,097,520 | ---- | M] (Sophos Plc) -- C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe
PRC - [2010/04/27 17:31:19 | 000,128,240 | ---- | M] (Sophos Plc) -- C:\Program Files (x86)\Sophos\Sophos Client Firewall\SCFManager.exe
PRC - [2010/04/27 17:31:19 | 000,032,496 | ---- | M] (Sophos Plc) -- C:\Program Files (x86)\Sophos\Sophos Client Firewall\SCFService.exe
PRC - [2009/10/01 00:01:32 | 002,320,920 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
PRC - [2009/10/01 00:01:30 | 000,268,824 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
PRC - [2009/04/07 13:53:32 | 000,030,440 | ---- | M] () -- C:\Program Files (x86)\dcmsvc\dcmsvc.exe
PRC - [2009/02/23 19:43:12 | 000,576,000 | ---- | M] (MagicISO, Inc.) -- C:\Program Files (x86)\MagicDisc\MagicDisc.exe


========== Modules (No Company Name) ==========

MOD - [2013/08/25 18:00:28 | 000,379,904 | ---- | M] () -- C:\Users\Dan\AppData\Local\Temp\libsqlitejdbc-4869875330946897606.lib
MOD - [2013/08/25 17:59:55 | 000,199,168 | ---- | M] () -- C:\Users\Dan\AppData\Local\Temp\WindowsAPI.dll6549195993909068039.lib
MOD - [2011/09/27 08:23:00 | 000,087,912 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2011/09/27 08:22:40 | 001,242,472 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2009/04/07 13:53:32 | 000,030,440 | ---- | M] () -- C:\Program Files (x86)\dcmsvc\dcmsvc.exe


========== Services (SafeList) ==========

SRV:64bit: - [2011/09/27 15:04:08 | 000,359,192 | ---- | M] (Logitech, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe -- (LBTServ)
SRV:64bit: - [2010/08/05 22:51:08 | 000,291,896 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe -- (HPClientSvc)
SRV:64bit: - [2010/07/21 17:33:00 | 000,103,992 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe -- (HP Wireless Assistant Service)
SRV:64bit: - [2010/06/24 19:24:12 | 000,315,392 | ---- | M] (Realtek Semiconductor Corp.) [Auto | Running] -- C:\Program Files\Realtek\RtVOsd\RtVOsdService.exe -- (RtVOsdService)
SRV:64bit: - [2009/11/17 22:14:26 | 000,098,208 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe -- (AERTFilters)
SRV - [2013/06/21 09:53:36 | 000,162,408 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013/05/11 06:37:26 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2012/09/27 11:55:16 | 000,086,528 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe -- (HP Support Assistant Service)
SRV - [2012/04/11 10:43:09 | 000,232,472 | ---- | M] (Sophos Plc) [Auto | Running] -- C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe -- (Sophos AutoUpdate Service)
SRV - [2012/02/21 07:48:21 | 001,543,704 | ---- | M] (Sophos Plc) [Auto | Running] -- C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe -- (swi_service)
SRV - [2010/11/24 16:33:26 | 000,921,600 | ---- | M] () [Auto | Running] -- C:\ProgramData\TVersity\Media Server\MediaServer.exe -- (TVersityMediaServer)
SRV - [2010/11/09 16:20:34 | 000,026,680 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe -- (HPWMISVC)
SRV - [2010/10/08 11:15:13 | 000,163,056 | ---- | M] (Sophos Plc) [Auto | Running] -- C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe -- (SAVAdminService)
SRV - [2010/09/11 05:02:22 | 000,399,344 | ---- | M] (Roxio) [Auto | Running] -- C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe -- (RoxioNow Service)
SRV - [2010/06/18 21:59:12 | 000,246,520 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe -- (GameConsoleService)
SRV - [2010/06/04 07:23:16 | 000,097,520 | ---- | M] (Sophos Plc) [Auto | Running] -- C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe -- (SAVService)
SRV - [2010/04/27 17:31:19 | 000,128,240 | ---- | M] (Sophos Plc) [Auto | Running] -- C:\Program Files (x86)\Sophos\Sophos Client Firewall\SCFManager.exe -- (Sophos Client Firewall Manager)
SRV - [2010/04/27 17:31:19 | 000,032,496 | ---- | M] (Sophos Plc) [Auto | Running] -- C:\Program Files (x86)\Sophos\Sophos Client Firewall\SCFService.exe -- (Sophos Client Firewall)
SRV - [2010/03/18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/10/01 00:01:32 | 002,320,920 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2009/10/01 00:01:30 | 000,268,824 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2009/06/10 17:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2012/09/28 11:32:56 | 000,053,760 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2012/09/12 15:20:04 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:64bit: - [2012/08/21 14:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2012/03/01 02:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011/09/02 02:30:36 | 000,060,696 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LMouFilt.Sys -- (LMouFilt)
DRV:64bit: - [2011/09/02 02:30:24 | 000,066,840 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LHidFilt.Sys -- (LHidFilt)
DRV:64bit: - [2011/03/11 02:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/11 02:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011/01/06 09:25:16 | 000,158,976 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Impcd.sys -- (Impcd)
DRV:64bit: - [2010/11/20 09:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/11/20 07:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010/11/20 05:37:42 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:64bit: - [2010/11/11 01:11:52 | 000,141,384 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sscdserd.sys -- (sscdserd)
DRV:64bit: - [2010/11/11 01:11:50 | 000,172,104 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sscdmdm.sys -- (sscdmdm)
DRV:64bit: - [2010/11/11 01:11:50 | 000,136,264 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sscdbus.sys -- (sscdbus)
DRV:64bit: - [2010/11/11 01:11:50 | 000,019,016 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sscdmdfl.sys -- (sscdmdfl)
DRV:64bit: - [2010/11/04 21:57:54 | 001,041,760 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\netr28x.sys -- (netr28x)
DRV:64bit: - [2010/10/23 01:24:40 | 000,032,768 | ---- | M] (Juniper Networks) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dsNcAdpt.sys -- (dsNcAdpt)
DRV:64bit: - [2010/10/08 11:15:06 | 000,142,328 | ---- | M] (Sophos Plc) [File_System | System | Running] -- C:\Windows\SysNative\drivers\savonaccess.sys -- (SAVOnAccess)
DRV:64bit: - [2010/09/29 03:55:54 | 000,031,088 | ---- | M] (CyberLink Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\clwvd.sys -- (clwvd)
DRV:64bit: - [2010/09/13 14:00:08 | 001,390,640 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2010/08/25 20:36:04 | 010,611,552 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2010/05/07 15:19:58 | 000,245,792 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV:64bit: - [2010/04/13 13:44:22 | 000,540,696 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2010/03/31 12:32:25 | 000,099,832 | ---- | M] (Sophos Plc) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\scfdriver.sys -- (scfdriver)
DRV:64bit: - [2010/03/31 12:32:25 | 000,049,656 | ---- | M] (Sophos Plc) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\scflwf.sys -- (scflwf)
DRV:64bit: - [2010/03/22 21:57:20 | 000,347,680 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2010/03/05 15:57:18 | 000,271,872 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
DRV:64bit: - [2009/09/17 16:54:54 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (HECIx64)
DRV:64bit: - [2009/07/24 09:55:10 | 000,011,264 | ---- | M] (Primax Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NMgamingms.sys -- (NMgamingmsFltr)
DRV:64bit: - [2009/07/13 21:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 21:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 21:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/10 17:01:11 | 001,485,312 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTDPV6.SYS -- (SrvHsfV92)
DRV:64bit: - [2009/06/10 17:01:11 | 000,740,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTCNXT6.SYS -- (SrvHsfWinac)
DRV:64bit: - [2009/06/10 17:01:11 | 000,292,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTAZL6.SYS -- (SrvHsfHDA)
DRV:64bit: - [2009/06/10 16:35:33 | 000,389,120 | ---- | M] (Marvell) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\yk62x64.sys -- (yukonw7)
DRV:64bit: - [2009/06/10 16:35:28 | 005,434,368 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netw5v64.sys -- (netw5v64)
DRV:64bit: - [2009/06/10 16:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 16:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 16:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 16:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/02/24 18:35:44 | 000,255,552 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mcdbus.sys -- (mcdbus)
DRV:64bit: - [2009/02/09 06:06:31 | 000,025,608 | ---- | M] (Sophos Plc) [Kernel | Disabled | Stopped] -- C:\Windows\SysNative\drivers\SophosBootDriver.sys -- (SophosBootDriver)
DRV - [2009/07/13 21:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2009/02/24 18:35:44 | 000,255,552 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\drivers\mcdbus.sys -- (mcdbus)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {ec29edf6-ad3c-4e1c-a087-d6cb81400c43}
IE:64bit: - HKLM\..\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}: "URL" = http://search.ask.co...&l=dis&o=HPNTDF
IE:64bit: - HKLM\..\SearchScopes\{b7fca997-d0fb-4fe0-8afd-255e89cf9671}: "URL" = http://search.yahoo....psg&type=HPNTDF
IE:64bit: - HKLM\..\SearchScopes\{d43b3890-80c7-4010-a95d-1e77b5924dc3}: "URL" = http://en.wikipedia....h={searchTerms}
IE:64bit: - HKLM\..\SearchScopes\{d944bb61-2e34-4dbf-a683-47e505c587dc}: "URL" = http://rover.ebay.co...}&mfe=Notebooks
IE:64bit: - HKLM\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {8A96AF9E-4074-43b7-BEA3-87217BDA7406}
IE - HKLM\..\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}: "URL" = http://search.ask.co...&l=dis&o=HPNTDF
IE - HKLM\..\SearchScopes\{8A96AF9E-4074-43b7-BEA3-87217BDA7406}: "URL" = http://www.searchqu....q={searchTerms}
IE - HKLM\..\SearchScopes\{b7fca997-d0fb-4fe0-8afd-255e89cf9671}: "URL" = http://search.yahoo....psg&type=HPNTDF
IE - HKLM\..\SearchScopes\{d43b3890-80c7-4010-a95d-1e77b5924dc3}: "URL" = http://en.wikipedia....h={searchTerms}
IE - HKLM\..\SearchScopes\{d944bb61-2e34-4dbf-a683-47e505c587dc}: "URL" = http://rover.ebay.co...}&mfe=Notebooks
IE - HKLM\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}: "URL" = http://www.bing.com/...rc=IE-SearchBox

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/HPNOT/1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = Preserve
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://g.msn.com/HPNOT/1
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local


========== FireFox ==========

FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@esn.me/esnsonar,version=0.70.3: C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.3\npesnsonar.dll (ESN Social Software AB)
FF - HKLM\Software\MozillaPlugins\@esn/esnlaunch,version=1.96.0: C:\Program Files (x86)\Battlelog Web Plugins\1.96.0\npesnlaunch.dll (ESN Social Software AB)
FF - HKLM\Software\MozillaPlugins\@garmin.com/GpsControl: C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll (GARMIN Corp.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.9.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre7\bin\new_plugin\npjp2.dll File not found
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3505.0912: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@photoproduct.rocketlife.com/RocketLife App Viewer;version=0.8: File not found
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\Dan\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{3252b9ae-c69a-4eaf-9502-dc9c1f6c009e}: C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DMExtension\ [2010/12/20 04:58:56 | 000,000,000 | ---D | M]

[2012/08/05 15:43:55 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions

========== Chrome ==========


O1 HOSTS File: ([2012/09/05 16:44:02 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (Sophos Web Content Scanner) - {39EA7695-B3F2-4C44-A4BC-297ADA8FD235} - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SophosBHOX64.dll (Sophos Plc)
O2:64bit: - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Sophos Web Content Scanner) - {39EA7695-B3F2-4C44-A4BC-297ADA8FD235} - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SophosBHO.dll (Sophos Plc)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
O3:64bit: - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {043C5167-00BB-4324-AF7E-62013FAEDACF} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No CLSID value found.
O4:64bit: - HKLM..\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [HPWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe ()
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [dcmsvc] C:\Program Files (x86)\dcmsvc\dcmsvc.exe ()
O4 - HKLM..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Hewlett-Packard Development Company, L.P.)
O4 - HKLM..\Run: [Sophos AutoUpdate Monitor] C:\Program Files (x86)\Sophos\AutoUpdate\ALMon.exe (Sophos Plc)
O4 - HKLM..\Run: [ZumoDrive] C:\Program Files (x86)\Hewlett-Packard\HP CloudDrive\ZumoLauncher.lnk ()
O4 - HKCU..\Run: [Google Update] Reg Error: Value error. File not found
O4 - HKCU..\Run: [ZumoDrive] C:\Program Files (x86)\Hewlett-Packard\HP CloudDrive\ZumoLauncher.lnk ()
O4 - Startup: C:\Users\Dan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MagicDisc.lnk = C:\Program Files (x86)\MagicDisc\MagicDisc.exe (MagicISO, Inc.)
O4 - Startup: C:\Users\Dan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Warner Bros.lnk = File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O9:64bit: - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: rjf.com ([secureaccess] https in Trusted sites)
O16:64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_21)
O16:64bit: - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_21)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {88F3DCEE-3BE9-45A5-A70F-5E42ED61ACDB} https://rja-secureac...SL RJUpdWeb.CAB (RJUpdWeb.RJUpdLoader)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.9.2)
O16 - DPF: {C8BC46C7-921C-4102-B67D-F1F7E65FB0BE} https://battlefield....er_1.0.27.2.cab (Battlefield Play4Free Updater)
O16 - DPF: {CAFEEFAC-0017-0000-0009-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.7.0_09)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.7.0_09)
O16 - DPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} https://rja-secureac...SetupClient.cab (JuniperSetupClientControl Class)
O16 - DPF: Garmin Communicator Plug-In https://static.garmi...inAxControl.CAB (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 65.32.5.111 65.32.5.112 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{6B571739-D0D6-4DC9-9F64-5AEA03FEC3E7}: DhcpNameServer = 65.32.5.111 65.32.5.112 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B5244800-ED64-43A4-B572-B89B52EF9156}: DhcpNameServer = 65.32.5.111 65.32.5.112 192.168.1.1
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll File not found
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll File not found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\WI3C8A~1\Datamngr\x64\datamngr.dll) - File not found
O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\WI3C8A~1\Datamngr\x64\IEBHO.dll) - File not found
O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\Sophos\SOPHOS~1\SOPHOS~2.DLL) - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\sophos_detoured_x64.dll (Sophos Plc)
O20 - AppInit_DLLs: (C:\PROGRA~2\Sophos\SOPHOS~1\SOPHOS~1.DLL) - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\sophos_detoured.dll (Sophos Plc)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O20:64bit: - Winlogon\Notify\LBTWlgn: DllName - (c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll) - c:\Program Files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [1999/05/29 04:08:54 | 000,000,061 | R--- | M] () - E:\AUTORUN.INF -- [ CDFS ]
O33 - MountPoints2\{3e5a33f2-e42d-11e2-b517-78acc047b38e}\Shell - "" = AutoRun
O33 - MountPoints2\{3e5a33f2-e42d-11e2-b517-78acc047b38e}\Shell\AutoRun\command - "" = G:\VZW_Software_upgrade_assistant_installer.exe
O33 - MountPoints2\{70751545-076a-11e0-b2c4-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{70751545-076a-11e0-b2c4-806e6f6e6963}\Shell\AutoRun\command - "" = E:\SETUP.EXE -- [1999/05/29 04:08:54 | 000,082,432 | R--- | M] ()
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2013/08/19 19:02:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2013/08/19 19:01:57 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2013/08/19 19:01:56 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2013/08/19 19:01:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iTunes
[2013/08/19 19:01:56 | 000,000,000 | ---D | C] -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
[2013/08/16 19:53:48 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\MRT
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\Dan\Documents\*.tmp files -> C:\Users\Dan\Documents\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2013/08/25 18:06:33 | 000,023,248 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013/08/25 18:06:33 | 000,023,248 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013/08/25 17:58:54 | 000,000,142 | ---- | M] () -- C:\Windows\ODBC.INI
[2013/08/25 17:58:21 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013/08/25 17:58:13 | 3062,255,616 | -HS- | M] () -- C:\hiberfil.sys
[2013/08/23 17:29:08 | 000,000,324 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForDan.job
[2013/08/19 19:02:50 | 000,001,783 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk
[2013/08/18 14:09:17 | 000,000,724 | ---- | M] () -- C:\Users\Dan\Desktop\Draft Dominator.lnk
[2013/08/16 20:52:08 | 000,000,338 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForDAN-HP$.job
[2013/08/16 20:00:34 | 000,793,676 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013/08/16 20:00:34 | 000,660,546 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013/08/16 20:00:34 | 000,121,442 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\Dan\Documents\*.tmp files -> C:\Users\Dan\Documents\*.tmp -> ]

========== Files Created - No Company Name ==========

[2013/08/19 19:02:50 | 000,001,783 | ---- | C] () -- C:\Users\Public\Desktop\iTunes.lnk
[2013/03/13 11:04:05 | 000,000,004 | ---- | C] () -- C:\Users\Dan\AppData\Roaming\skype.ini
[2013/02/26 19:40:36 | 000,007,597 | ---- | C] () -- C:\Users\Dan\AppData\Local\Resmon.ResmonCfg
[2013/02/26 18:31:40 | 000,000,153 | ---- | C] () -- C:\ProgramData\3165958.reg
[2013/02/26 18:31:40 | 000,000,058 | ---- | C] () -- C:\ProgramData\3165958.bat
[2013/02/26 18:31:39 | 095,023,320 | ---- | C] () -- C:\ProgramData\3165958.pad
[2013/01/26 14:27:42 | 000,773,522 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2012/07/24 15:39:04 | 000,000,016 | ---- | C] () -- C:\Users\Dan\.javafx_ping_sent
[2012/07/24 15:39:03 | 000,000,000 | ---- | C] () -- C:\Users\Dan\.javafx_eula_accepted
[2011/12/28 22:29:50 | 000,000,263 | ---- | C] () -- C:\Windows\PowerReg.dat
[2011/12/28 22:29:46 | 000,045,568 | ---- | C] () -- C:\Windows\UniFish3.exe
[2011/04/01 10:08:12 | 000,001,854 | ---- | C] () -- C:\Users\Dan\AppData\Roaming\GhostObjGAFix.xml

========== ZeroAccess Check ==========

[2009/07/14 00:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013/02/27 01:52:56 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/02/27 00:55:05 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 21:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 08:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 21:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2012/09/02 23:36:06 | 000,000,000 | ---D | M] -- C:\Users\Dan\AppData\Roaming\.minecraft
[2010/12/19 11:23:04 | 000,000,000 | ---D | M] -- C:\Users\Dan\AppData\Roaming\com.nyt.timesreader.78C54164786ADE80CB31E1C5D95607D0938C987A.1
[2011/04/15 22:21:31 | 000,000,000 | ---D | M] -- C:\Users\Dan\AppData\Roaming\com.warnerbros.DigitalCopyManager.449F66ACC381FDC604DC2AA255FEECEEBBBEE1E5.1
[2012/08/05 15:50:04 | 000,000,000 | ---D | M] -- C:\Users\Dan\AppData\Roaming\Electronic Arts
[2010/12/25 23:13:22 | 000,000,000 | ---D | M] -- C:\Users\Dan\AppData\Roaming\GARMIN
[2011/12/27 17:42:15 | 000,000,000 | ---D | M] -- C:\Users\Dan\AppData\Roaming\Lazy 8 Studios
[2012/10/30 16:26:01 | 000,000,000 | ---D | M] -- C:\Users\Dan\AppData\Roaming\LDTempRC
[2011/12/15 18:16:44 | 000,000,000 | ---D | M] -- C:\Users\Dan\AppData\Roaming\Leadertech
[2010/12/13 14:36:04 | 000,000,000 | ---D | M] -- C:\Users\Dan\AppData\Roaming\PictureMover
[2010/12/15 21:28:07 | 000,000,000 | ---D | M] -- C:\Users\Dan\AppData\Roaming\Windows Live Writer
[2013/08/25 18:00:33 | 000,000,000 | ---D | M] -- C:\Users\Dan\AppData\Roaming\ZumoDrive

========== Purity Check ==========



< End of report >
  • 0

Advertisements


#2
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,007 posts
  • MVP
Since it appears you have Firefox try:

Type in where you normally put the URL:

about:config

and hit Enter
then scroll down until you find

browser.download.manager.scanWhenDone

then right click on it and Toggle. Close and reopen Firefox and try to download something in Firefox.

If that works then

Download : ADWCleaner to your desktop.

NOTE: If using Internet Explorer and get an alert that stops the program downloading, click on the warning and allow the download to complete.

Close all programs and click on the AdwCleaner icon.

Posted Image

Click on Scan and follow the prompts. Let it run unhindered. When done, click on the Clean button, and follow the prompts. Allow the system to reboot. You will then be presented with the report. Copy & Paste this report on your next reply.

The report will be saved in the C:\AdwCleaner folder.



Junkware-Removal-Tool

Please download Junkware Removal Tool to your desktop.
  • Pause your anti-virus. Close all browsers.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.

Download aswMBR.exe to your desktop.
Right click aswMBR.exe and Run as Administrator
uncheck trace disk IO calls
Click the "Scan" button to start scan (Accept the Avast Engine)
On completion of the scan if the Fix button is enabled (not the FixMBR button) press it and then run a new scan and click save log, save it to your desktop and post in your next reply
If the Fix button is not enabled then just click save log, save it to your desktop and post in your next reply

ComboFix

:!: It must be saved to your desktop, do not run it from your browser:!:

:!: Disable your Antivirus software when downloading or running Combofix. If it has Script Blocking features, please disable these as well. See: http://www.bleepingc...opic114351.html


Download and Save this file -- to your Desktop -- from either of these two sources:
http://download.blee...Bs/ComboFix.exe
http://subs.geekstogo.com/ComboFix.exe

Rightclick on ComboFix and select Run As Administrator to start the program.



* :!: Important: Have no other programs running. Your Task Bar should be clear of any program entries including your Browser.


* A window may open with a series of Disclaimers. Accept the Disclaimers to start the fix.

A caution - Do not run Combofix more than once. Do not touch your mouse/keyboard until the scan has completed, as this may cause the process to stall or your computer to lock. The scan will temporarily disable your desktop, and if interrupted may leave your desktop disabled. If this occurs, please reboot to restore the desktop. Even when ComboFix appears to be doing nothing, look at your Drive light. If it is flashing, Combofix is still at work.

A file will be created at => C:\Combofix.txt. I'll need to see that in your reply.


Download TDSSKiller:
http://support.kaspe.../tdsskiller.exe
Save it to your desktop then run it by right clicking and Run As Admin.


If TDSSKiller alerts you that the system needs to reboot, please consent.

Run TDSSKiller again but this time:
before you hit the Scan hit Change Parameters and check the two items under Additional Options. OK then Scan.
In this mode it is prone to false positives so do not change the SKIP option to DELETE unless it says TDSS.
When done, a log file should be created on your C: drive named "TDSSKiller.txt" please copy and paste the contents in your next reply.

IF if doesn't work then have a friend download the above files to a CD or USB drive and get them on your PC that way.


Could you attach the files:

C:\ProgramData\3165958.reg
C:\ProgramData\3165958.bat

DO NOT OPEN THE FILES. If you can't Attach them then right click and Edit then copy and paste the text from notepad.

Ron
  • 0

#3
edge1334

edge1334

    Member

  • Topic Starter
  • Member
  • PipPip
  • 30 posts
Hi Ron,
I attempted to download firefox, but it will not allow me to install. I attempted to install AdwCleaner.exe with the same issue. IE no longer allows me to click the warning and go ahead with download it just specifies 'This program contained a virus and was deleted.' I have attached a screenshot of the error. I will download the AdwCleaner on my other pc and move it over to the laptop with the issue using a thumb drive.

Thanks,
Dan

Attached Thumbnails

  • IE_Error.JPG

  • 0

#4
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,007 posts
  • MVP
OK. But get the others tools at the same time. Might as well also get Firefox too and move it to the sick PC and install it.

I thought you had already had Firefox based on what OTL said. Sorry about that. Is IE the only browser you have?

For IE you can:

Copy the lines between the stars (but not the stars):

****************
Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Attachments]
"ScanWithAntiVirus"=dword:00000001


****************

Open notepad and paste the above into it. Verify that you have it all then File, Save As, (to your desktop) "NoScan.reg" OK (Make sure you includes the quotes around the file name)

Close notepad. Right click on NoScan.reg and select Merge. Allow it to merge. (If you don't see the Merge option you probably left off the quotes and notepad tacked on .txt)

Sometimes this will fix all of your other browsers but not IE. Uninstalling IE 10 (or 9) usually makes it revert back to IE8 which then for some miracle can actually download files.

I have also seen reports that renaming the folder Windows Defender (in C:\Program Files or C:\Program Files (X86) will sometimes fix the problem)
  • 0

#5
edge1334

edge1334

    Member

  • Topic Starter
  • Member
  • PipPip
  • 30 posts
Hi Ron, Sorry for the delayed response, I have been out of town on business and did not have the infected laptop with me. Here are the logs you requested.
Thanks Dan
  • AdwCleaner
    # AdwCleaner v3.001 - Report created 30/08/2013 at 21:09:42
    # Updated 24/08/2013 by Xplode
    # Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
    # Username : Dan - DAN-HP
    # Running from : C:\Users\Dan\Desktop\AdwCleaner.exe
    # Option : Clean

    ***** [ Services ] *****


    ***** [ Files / Folders ] *****

    Folder Deleted : C:\ProgramData\Babylon
    Folder Deleted : C:\Program Files (x86)\Ilivid
    Folder Deleted : C:\Users\Dan\AppData\Local\Ilivid Player
    Folder Deleted : C:\Users\Dan\AppData\Local\PackageAware
    Folder Deleted : C:\Users\Dan\AppData\LocalLow\searchquband
    File Deleted : C:\Users\Public\Desktop\eBay.lnk
    File Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eBay.lnk
    File Deleted : C:\Program Files (x86)\Mozilla Firefox\user.js

    ***** [ Shortcuts ] *****


    ***** [ Registry ] *****

    Key Deleted : HKLM\SOFTWARE\Classes\Applications\ilividsetupv1.exe
    Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASAPI32
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASMANCS
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Searchqu Toolbar uninstall_RASAPI32
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Searchqu Toolbar uninstall_RASMANCS
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASAPI32
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASMANCS
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCS
    Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
    Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
    Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3B7599DF-3D5D-4EF5-BF51-9C2EDA788E83}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
    Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{D43B3890-80C7-4010-A95D-1E77B5924DC3}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{8A96AF9E-4074-43B7-BEA3-87217BDA7406}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D43B3890-80C7-4010-A95D-1E77B5924DC3}
    Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{043C5167-00BB-4324-AF7E-62013FAEDACF}]
    Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
    Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
    Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
    Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
    Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
    Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D43B3890-80C7-4010-A95D-1E77B5924DC3}
    Key Deleted : HKCU\Software\YahooPartnerToolbar
    Key Deleted : HKCU\Software\Zugo
    Key Deleted : HKCU\Software\AppDataLow\Software\searchqutoolbar
    Key Deleted : HKLM\Software\Babylon
    Data Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\WI3C8A~1\Datamngr\x64\datamngr.dll
    Data Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\WI3C8A~1\Datamngr\x64\IEBHO.dll

    ***** [ Browsers ] *****

    -\\ Internet Explorer v9.0.8112.16502


    -\\ Google Chrome v

    [ File : C:\Users\Dan\AppData\Local\Google\Chrome\User Data\Default\preferences ]


    *************************

    AdwCleaner[R0].txt - [4891 octets] - [30/08/2013 21:07:56]
    AdwCleaner[S0].txt - [4680 octets] - [30/08/2013 21:09:42]

    ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [4740 octets] ##########

  • JRT.txt
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Junkware Removal Tool (JRT) by Thisisu
    Version: 5.5.5 (08.28.2013:1)
    OS: Windows 7 Home Premium x64
    Ran by Dan on Fri 08/30/2013 at 22:42:43.08
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




    ~~~ Services



    ~~~ Registry Values



    ~~~ Registry Keys

    Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339}



    ~~~ Files



    ~~~ Folders

    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0000DE8A-34BD-4D9F-AAB1-17F490C2533E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{00B60C8A-3AA0-4606-B602-07B0605DEFA6}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{012CB52F-66A4-4047-9956-79B2D1C011C5}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0134A3DE-D6AA-4455-A1AA-C99339AEA61B}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0187D032-0351-48B8-B6EF-A95C6C3CC19D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{01BEFC8E-151D-4897-861A-04DEFD75FB00}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{01D5D06D-AAFB-4C86-A87B-D273982EA3BE}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{01FAF7CB-8C14-4F73-8F9A-4F030BEDD387}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{02037B90-DCED-4D9F-9A48-84F2E7911217}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{02BA3F31-3EAC-4BDA-A483-8666224069E2}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{02C1AD36-9590-4F64-8468-7F857488EDE2}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{02DE921F-B6D3-4BB4-B91A-C8586F44970D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{036B9730-AFBA-4BAB-B322-82EC897A6374}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{03A64541-ED7C-4825-A610-F14A7B118A5C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{03D80968-7EF5-4B1B-9869-E20FE3EEDED8}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0420C8C2-3A01-4F21-AEE5-C90869C875D1}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0460C4A6-03E2-4E0B-8B5B-E4B7014DCCF7}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{04CFAF0D-5C31-4D9B-AD14-902318BF54A6}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0545ACD9-220F-4EA6-AA8C-0B6368A09004}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{068E425C-7764-4F90-9DCC-C84E7949108B}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{07359FBB-F50D-4A28-9953-93FE7D0D0055}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{079D545C-1458-4AB5-9042-8AC019460A03}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{07A8E47E-AD84-4541-8B99-963B25F6BF77}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{07E8136A-980D-4E3F-949E-2BAB2086C20A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{086AD40A-354A-41E4-8EC0-459A13F9FC72}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{086FDBF8-B5EB-46F3-B70A-E82E465ABCF8}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{088DBA3D-44DC-4416-8332-23BB7A268154}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{094C1C57-0EFA-4069-9334-DB32F544317C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{09565137-27A2-4B4D-BB2F-90436D7CD65E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{096D5182-2ED4-49E2-BD17-C432C688D9F7}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0971980D-2FDC-4EC0-82C2-781914C1D169}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0A565515-02FB-44DB-8950-AB49DB9098A3}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0A6D09BA-F3CB-4C53-87B6-DF9EFB0F4377}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0A744509-9D36-40E6-857B-3E85E9176958}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0ABF8F6F-3259-494A-B25D-26C179D051D5}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0AC7135A-822B-4EC1-B258-344FBACA6A23}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0B9DAABA-74B6-4448-A3C1-E12C0D69A414}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0BC38F19-73D1-4B4A-BDFF-EF6CE020F64E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0BE4EB7C-84F8-4C55-A135-812FD0D5DA8B}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0C35FA1D-74F0-4066-ACCC-77A6E6F61C51}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0C5B7421-EBC6-49D1-AB72-00726E16782B}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0D2073C6-E3DD-4FB7-BD12-BA4BD455B3B9}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0D56F3BD-3161-4D58-A394-C0F7897F1F48}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0DAD7EEF-0477-4B77-84FA-49425228964C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0DDF7348-FED2-4F14-BA81-2D766FF5B154}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0E52157D-FBFB-4A34-86B0-ABE6287B60A8}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0E59604C-3D58-4408-A1FC-AD5A5FCCDC71}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0EE51989-5E80-4A71-9605-434FE8CAD508}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0EFDA603-28F2-452E-B226-9B82EC11EF22}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0F067BCF-1B09-47EA-BFA8-DC31C28A1BD3}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0F19FB22-1816-4C8B-8DF3-37A5AFE1221E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{0FAC7E43-ADA2-4068-90EC-BC7E3100FDF6}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{1017AA07-83F2-496E-9BBD-B4965560E69E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{101E4491-0EBB-4F34-93DE-B95AFDA26B9D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{102D4621-896E-4D89-987F-501A6F66EB54}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{10D83CE6-DDEF-433D-8636-5FE5A267DB00}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{11403E64-FD6A-458A-888A-5695C59171FE}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{11B313A3-6DDB-494E-A41B-300ECF4C6C19}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{11DCA57E-4A1C-45E3-B17F-8384C1F834CC}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{124FD9D8-7717-4642-97EF-F090FA4F4B01}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{1266A1F3-9268-4E94-9ECB-B43DB3C41AC7}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{1327B76C-C4BF-45E0-96F5-5A7F550A2640}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{1334CB4D-4CF5-4A44-931E-E5E375062147}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{133C4F62-8840-4E81-96A9-679B03B5BBB1}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{13983BD8-4B46-4148-8D8C-496651148A51}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{13B02472-97D3-4096-A3FD-8CB8956DC37C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{13D2504A-9F91-4B48-8E22-22935E0A661C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{1444078C-09E0-460E-82D0-F2AF6FFEFDF3}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{14698AD5-CBE8-41D0-886F-E33A690954FA}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{147898F5-AF92-48E6-BBA4-B236A6BB0EA7}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{14E725BF-7C97-4EB1-9DEF-B8A37213C7FB}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{151603F9-9013-42FF-A0AD-DAE9C965A433}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{157FA5BD-0423-4FE4-91BE-E4BFE576CB3C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{15A772E2-959C-408E-BAB2-C874168D82A5}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{15AAD122-C571-4FC9-98C3-80DD1620A125}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{1631DFE1-06EB-43D3-9D45-9E3FAA381770}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{16349CF5-878E-4F00-9D9D-99C80C2707F7}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{16B710EC-1064-4CC7-AFD4-C37857258A78}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{17042307-930D-4013-8F9A-87DB17AA9CC1}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{17141C41-E0C7-4B51-9A33-55959490973F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{1784C2CA-2891-4AF6-874D-E3B3954ECC65}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{17E0B403-454F-4242-B4FD-B30AA139753A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{181B131E-5BF6-4F14-AF43-36055D5EAD8D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{18217A59-9187-47F9-BF28-4DBF53032F21}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{18791E8A-3A20-4CBC-B495-13BDEC3BBB77}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{1970A27C-BF6A-4601-97AF-1C0547672B07}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{19744AFA-1B37-4E3B-98C0-A7F8EC87CDA2}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{1ACA5C8A-28C6-4273-AC67-711AA4AEC3E9}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{1B0E6ED0-8539-4F2E-AA48-A745A90823F9}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{1B291A45-95E1-4619-8D22-78C461AA712B}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{1BE0F1BE-BB99-44AC-BB5A-AD508D712FEE}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{1D47EDAF-8533-4322-9F0B-BA7B4C3E2B34}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{1E83F275-25B1-44AC-8F0E-17B0676A5097}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{1E85B844-EB0A-416B-A504-A7B423E33D35}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{1EABB3AA-6CCA-4AA5-86F1-AB08FA5F9EBC}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{1F816A9A-EF1A-4D14-B300-ED16C4EFDF21}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{1FB2C3FB-1365-4A29-85BF-21D2E935AB4C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{1FBE82C4-728D-45B7-9A58-D50D2382AF49}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{1FD413C3-7BA6-4FEB-8750-508FA6CFC7E8}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{1FD7903D-AAD3-434B-9340-6312BCE5214E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2006F521-5911-47D6-962B-350EEAEFC844}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{205CD7B0-1548-4352-ACCD-1901B3031F6D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2116A9BC-3A27-4C52-AA99-149C9C9E7844}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{21B466FC-E93D-40B7-BD84-BDB8E6B549C0}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{21DB1BF1-A59B-49F6-AF0B-C496214C37D4}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2206BAE8-ACCE-4D8A-831D-7ED1F14AECB9}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{221FEA26-714E-4BBA-9C13-667B1F7D30E5}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{22B11C6B-8AA4-4B8A-A6DC-39708A68D221}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{22C12C08-F79B-4B07-A25D-99F95D529594}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{24A3F7B3-17FA-406C-A6E5-FE5F281DAE17}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{24B3EB89-9DB7-41B3-B31B-CAC1781433FE}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{24BDCC56-5157-4C5A-A554-3BF429B624F7}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{24D25553-A726-49C1-9163-6FE463742B65}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{25FC0617-188F-4E07-ACDD-05D12B65D5E3}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2647A4AA-88AD-47EF-A4A8-315E304F00D9}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2657BFCC-D4DF-4F07-A6EE-C2503A42A4A9}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{266905BC-A8F0-405E-B467-FEFD8C1BF482}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{26977996-5407-4422-8F6B-DDD8EA69E0A6}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{26EBFDB1-578C-4D22-844F-6798AA102AB7}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{273A8BA7-0419-4490-9038-D2F43CE1A0CE}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2771D06D-A1D7-44D7-93B0-D85BDD71FF8F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{28C29D48-4597-455A-8A82-63380920ADDC}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{29017015-76A7-4FDD-B0F2-BDEEFC0A2151}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{299122D6-1664-45C6-9D3F-640E286CD045}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{299A9FF5-B691-448F-AF95-B6AA627FE5BC}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{29E1268A-5BBA-461B-BDBE-3DCC8D5FBE52}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2A121DDD-1D8A-4C5F-809A-3D460DC2709B}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2A47F783-02A0-4382-8E18-DFA450261BE2}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2A4E8321-5991-44BF-BD46-F582C6F4D368}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2A55E97E-6EDF-4108-8E26-FDEB43AFE3C3}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2A792B75-BF1E-4F57-9849-E1F28040CEE6}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2A7FA8C5-D361-40F8-A51F-5BD45CE46C78}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2AA7D6E3-9550-47B3-9902-006F3E099AE1}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2B1991AE-27B6-4111-9CA2-D3623525EAC4}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2BD72FD3-7867-492B-818F-D7BDBE4BED80}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2CA30F23-518A-44BE-8D3C-E256A72638B5}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2CA8D0D0-F27A-4E72-9062-59DDA12E7F23}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2D93025B-1242-4C20-8D7D-28F01AA37EC1}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2D9820CF-FA9D-41F2-9AA9-E44025F0D5F7}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2E5029F9-97DD-4F4F-B61C-0DA980F2CAB8}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2EC8CB42-2299-46A0-A820-0CB74D793F4E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2ECC1F25-81AD-44C6-ADEE-E00345E6404C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2ED5E8F6-D6AF-47A2-B4E6-0DDBE31DE694}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2EE2C910-EC15-4BE0-A220-B3B099235642}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2F2CB321-601A-4C4F-A36F-D37DB755BBC7}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2F3740E2-F98E-44B7-9D66-98BD8D808D12}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2F642154-ECF4-4392-9ED2-44F2D8FC6EFC}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2F7B33CD-D22B-44A8-B0FF-8A01C9CE02B1}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2F8DA0CD-8290-46D7-91C7-6A78217B553D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{2FEBB001-4B52-459E-80FE-4FF9957C4CE8}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{308AB018-5672-47B3-8867-DAB95EB274F5}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{30DE840B-05F0-49DC-AAA0-A012AA9065EE}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{30FA1253-EB5F-4E95-880F-4B73244BE5B5}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{313989D7-DFFA-4817-B399-E97F9E5A8FAB}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{319ABE35-8940-49FD-97C7-0DFA4FF2E886}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{31B0314D-54F1-4367-94AE-B4ECB028DB57}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{322F2A9F-CE55-43EF-9D3B-A368E8D0D9E4}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{329CCBE0-BA75-4A33-906F-9B077E8A306C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{32BD7411-E05E-410E-B2F6-0A864A5B3A79}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{32C72C8C-27C3-4420-865F-55C0F55AE1D5}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{32FB6E96-588E-4A47-8FC9-B60FFF08F06B}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{3380890C-0286-4528-967A-FB8201D6C7BF}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{33EAD754-BE58-4F2F-8F55-10C08AA90B95}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{33FA8B19-FFDD-4FD3-8B09-5C78A3B6612F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{34861A4A-ACBA-4442-8238-60F8BA58F14A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{35DF357A-6198-48B5-B58B-0D4406A9FB7F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{35FFA334-27C5-4222-ADE4-BF2B25E6264E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{377693C9-B045-4846-A2C2-274F091875C8}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{37AA6411-C8A5-4A83-BF1B-1AC6E67146B5}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{37C52C15-419A-436A-8796-3D2F34E5ABA7}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{38327366-17DC-4B57-A6BC-4F5EB973FF62}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{38DA3CCB-5C92-49A4-9868-4E5C0DC32E5A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{38DC4B33-130A-47FC-B74B-4B8D1CA64CD2}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{39110D3A-4FE0-4A65-B942-097D1033C6FF}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{39922945-890E-4C95-BF39-9F47F4909DF3}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{39AE3B68-10B4-43AA-A470-F7BB94FEEBFB}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{3A383F93-EF81-4866-95F3-7D0616FAFF93}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{3A9C642E-82B9-40FE-95B0-6EE72AE8009D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{3B36BB9C-4664-4D03-9995-213A1A5CDB16}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{3B4A2F8C-3017-478A-BD4B-12D18128E9B8}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{3B9960DF-FBAC-4BD1-8299-B3B93D2CBA18}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{3CA9B2B7-F14F-4825-AD44-8AF570799FC6}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{3CAA786A-0319-4208-95D1-66B8E3883320}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{3CF29DFE-788E-4FD1-B82F-C31A58D9AFDB}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{3D6BCDA0-DE34-4823-BEAF-69D6961F9039}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{3D8F1249-A9BE-486C-ABE1-6562BF9EFACF}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{3DDE832D-F3B7-4051-A0E6-0C9C1EF98640}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{3E3FCB25-24C0-432E-A033-E757832231B4}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{3EFEA73D-689F-4CA4-AE54-18B4DEFA504E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{3F795F08-4D17-4ED9-A784-6BC2975C1D13}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{3F834F47-AB60-4094-8EC6-36261260FEBF}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{3FF83719-F282-490C-8E8B-D6341E50163F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{40B5D582-48E9-4D58-85CC-8E3BC4F80944}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{41389523-0AD9-405E-8797-BD18403539FF}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{418B1B53-D944-4BBB-B595-320A8C74281F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{420525EB-889A-493E-9B24-89BB77CA6794}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{42824ABD-55D7-4CF0-A453-FA93A38513C0}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{428818C1-0E68-4738-97F2-013BF24F2450}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{42D09CA8-B3B4-44AC-8EE5-2A1F6B0F7901}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{42FED425-19FD-4BF1-B350-13DC49B2D298}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{435F7B3F-6F11-4020-AF95-2CC50FF39F4C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{43E8C1BB-ED1E-452A-9178-00EF55222817}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{440D5487-9652-4220-AF89-8156AE5A58D6}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{443E8E6C-EA63-4ABF-BFB2-D2B1C00E3C25}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{4497019A-34BF-48DF-80D2-C7BDA33AE5BF}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{449864C8-0334-430E-86AE-E7564973C74B}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{44BA2123-8863-4E62-B98C-AAFCDF76F1A3}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{450C5705-D2D3-4CA0-B432-C80B63A3D65F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{452AA7BA-3BFF-49FC-874F-9BC172E04754}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{458A7333-CD8C-43E3-B5FA-B409C1B2F6C6}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{47599BE5-B069-4334-9F32-61B46E63F54D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{4760B02E-2BA4-45BC-93A0-5B2CB102B303}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{476CFCB1-ECB0-4163-AD12-F563CD31D784}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{4798AB1D-9F3D-4990-9F0D-A8E73F047DEB}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{47A363C0-E067-47C2-840D-780C2C3F964F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{47BD1425-F62D-4A58-A3D9-4A1CAAA0BF29}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{48069589-B410-4F71-A531-18E4332489D4}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{4829D337-9F45-499C-B5CB-B4164D6CBD76}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{482A89B1-8FB7-46D2-8124-6BE64D141657}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{482F5E2D-2CCB-4EBB-8773-FC250C5478D5}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{486EA9F8-71A7-42B5-B27B-ED94F80A40A0}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{49F8E892-101F-4FCB-B7B8-2E71CC811FA2}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{4A4C168E-B429-463A-AEA6-620B864AA1F8}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{4A6FC473-6028-48F4-830A-20DD63B4EE49}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{4B331305-FF8C-437A-A0B7-7F34FA932273}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{4B91ED74-0CC9-4057-9508-45009F336534}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{4DB61C14-2EE1-4883-A032-266180324FDE}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{4DF641A7-B12E-4035-837C-50227A1F86E9}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{4ECADC99-FE70-4B5F-A5EE-66B61DAB3FAF}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{4F844D80-A872-4648-8BA3-858395F63B4D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{4F885BB9-EC5B-4CF3-8E94-E14589BAFBD8}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{4F8B07D6-99EC-4186-9F51-D18130842D30}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{4FA58773-91BF-4E0B-B3BB-0DEFD2E7CDBE}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{5060AA54-80D4-4B9F-B235-0BF9D1107DEA}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{507CBCEA-B207-4CA7-B883-95060755890E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{509937CA-4B05-408D-B206-FAE0D8755738}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{51903874-DA06-4566-BF9D-C7EF2BD709D1}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{51DCB776-1FF5-4FB3-A67C-B53D7D35581C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{51E11AC4-85A7-463A-A3F7-41B520BB5BA5}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{51E29635-606B-4818-A40D-674AC67B6849}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{51E7BEF4-428C-44F4-80A3-AA7D923BE2F3}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{51F5B282-5F14-4E6D-80E3-64349FA3C273}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{52758A16-1AF8-4A9D-A461-02E2DF3ABE5C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{529B43C0-2283-4D37-BDC9-A67128474F9A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{529E1E4F-ED92-4247-A588-D599E1CEF733}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{532A127F-B182-49A0-B9F8-067241470031}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{532E92D9-43B6-4FEB-9FAD-3DD6A5C418A2}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{53359A51-4921-4F3E-8684-CC399E1063C0}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{53554614-F674-4338-8569-4378AE939454}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{543C5C52-7E96-42EC-B7AC-82D82D455182}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{54D41EED-8B02-4132-9FD4-38B86885E041}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{551DA416-9F2B-4CCF-B2D2-F90A17C054F1}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{5562EFBF-F941-41F8-87A4-E7C4BE1AAFE4}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{55C13F25-DFE4-4515-B965-2F72CBD35814}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{55CCEE21-BFFF-42A9-8D1E-468E422D1DF8}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{55D46532-59AD-4ACA-A2F1-AB9FA34C19A4}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{56C2AA53-2665-4981-B0FD-18EA79C77492}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{57115FE1-3B05-437B-9EA4-3D3771BA340F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{5866BE6F-3506-4055-956B-642223F4EE2C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{5884BB36-D53F-4977-B469-1EFE3B63DB51}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{591BF904-BBA1-4BA3-89CE-9DF64630A25A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{598ABFF8-3966-4159-8AC8-4E41B31EC9E7}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{59C4D583-AACD-4CAA-A8E7-20F85DBD1DC1}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{5A58D2D7-E2C6-42CF-97A2-42CCD76C44DD}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{5AED5CD2-4CC0-436D-B1E0-B9745181BAE3}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{5B0476B8-D1B8-4D86-9CCA-0437F5E3CEA1}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{5CD6890B-CDCB-4894-B681-7D7E6D6CDAC3}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{5D384850-1D88-4674-BC9D-CEA2F0A1C842}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{5DFEAA32-B040-47C6-AD1D-2B3E61083D84}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{5E47E862-51A7-4695-9AFB-45CF69F147D6}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{5E4919D7-5979-4819-AF95-4E2461CC516F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{5E782D1A-AA65-4CAC-BBBF-219C07445485}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{5EB8F6AB-368A-47F6-9B28-C17A81CBFACE}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{5EC70CBC-5601-4E7D-B526-283475D0868D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{5ED78137-055C-4D03-86B6-78EC24CD5F68}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{5EEF4C0F-7A2F-46C9-B21D-C9196FD9CAF6}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{5F09C06A-6F2E-4079-AC60-AD730D78F8CA}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{5F363B9C-A9B0-44F1-8821-4F56580B29A0}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{5F577F8E-43FC-43DF-A05D-328C39EEA3A2}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{5F934A30-9012-4A39-B920-C0D82015EEEA}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{601A0F86-6750-495A-94C4-314A1F70CADF}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{60C7B060-DE41-4A53-86BD-8D7EE4E4C0B5}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{60F03596-1C5E-4930-BE89-96FD335EA6F9}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{610C2080-227B-478E-A8B0-DFAD4B5958FC}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{612A6ABE-E185-4F8D-93CB-B8DC9D314DDE}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{61309195-E683-49A2-8D34-50B3FAFA15B7}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{614394D7-2535-4D46-9803-A792F0845D99}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{6162B44F-0F8E-45E9-82A5-0EA5884F144F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{624C70B1-81FC-433E-B008-674F5B3697F5}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{63024737-CCBE-4FFE-83C3-14E79280A1FC}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{63775615-A6D2-4959-BFCC-F2A82C02BEE2}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{63EC7323-FBF2-42B9-BC59-67C225B9521E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{6471535D-8082-44A4-BCFE-DBCC2598759B}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{648DBE39-BA3B-4576-B68A-56397DC7143E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{64E444A9-F14F-4FED-9FEA-107A55BDE354}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{650B24D8-3074-4C08-8734-2D1D672A807A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{65CEE55A-9F73-40C4-9967-B13159046899}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{68D5994C-ADD7-4DA7-BE27-882B32ADA0BD}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{68F5C0CD-D48C-4F42-9B40-13CAEA36687B}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{6927297E-DB42-40E7-97DE-4D1F6BFF17C5}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{699DBF49-45D0-4F51-B2D6-43D9A8D6A687}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{69F4D6BB-4652-4896-9453-92D71C9F3AD4}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{6A940A5C-E60F-44C3-8529-DD1A79D786CB}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{6AE564DD-6338-4308-A050-065A8ED97288}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{6B237E50-837F-4F20-98BE-7741FF71B3D5}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{6C1CDFAD-1FAA-46F1-A9F3-FDE8DC7B8889}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{6C2F12B5-9FDE-45AB-87EA-39C03AFE921A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{6CBC9551-FDFA-44B0-A44C-40592A995894}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{6D2CA84D-768D-4044-BAF7-D8581B2CF6CF}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{6D4F419F-B3FB-424E-A2B0-0E43B0C592E1}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{6D4FE8CE-457B-4BE2-B1AA-F3384D118982}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{6D828B63-A1C8-49DE-B196-14B3391A2B2A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{6DEE6CA1-9ECB-49ED-8549-41E98105EEEF}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{6E99968F-0937-4BD1-9A82-76F700FC96A1}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{6F3948B3-7211-4B95-A421-2750771F0701}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{6F47EF84-A446-46F0-AAB7-FEB45956566C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{6F5BD3CE-61B0-46EE-9A93-8E05EBE849AD}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{70710A1E-A104-4477-8B30-7BB97E64B666}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{71874620-02B6-42AD-98DA-3C5E25386D25}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{71EC5909-29BA-4751-995A-E0AA6D7644CC}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{7261AE23-4FA5-467C-88E9-52D5AD8A639D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{72A1C37A-12F1-405A-B026-0F137AD10696}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{72A7C353-0201-40A2-81BB-23D351470111}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{72ADAAF6-F2E3-4807-A40E-8F044210EDF6}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{72B2B038-CE35-4C91-90AF-08DD6D1BA97E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{73E37262-D810-4310-B74B-AA43740B3DCF}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{7429448C-E6B8-4D6C-AF80-CAF504461AAF}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{74360906-C088-4FF3-ACDF-FBBD419B4AC2}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{74528570-87CF-443A-8EC8-BAE6A5F81815}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{7463B34F-7B32-40E2-9F92-0B89552F7110}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{74DB8D0C-778E-4279-A0A7-83D3A36ADFB5}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{74E12361-8D56-401F-8694-41D8976CF6B9}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{75B0683C-0979-4E17-B331-EA5E272E8DCD}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{763EDE1B-A4F6-46A2-9EE2-D7AC5E3240C4}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{7797663E-45EC-465E-8C7B-3063463776AF}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{780A9C9D-C3A2-419F-887A-03393D60B69B}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{78252163-41C1-4291-B05E-10FFF12AD691}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{78DD43A1-0D65-46EA-A2B7-9BB998F5485A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{78F671A5-313C-41F4-A7CF-F612C4090020}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{792375FB-11B1-4528-B3F3-D5294CDBF49A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{79A16190-E673-4CC5-A416-46612578B738}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{79C30442-D143-48FA-BBAD-BDDA4EC2B03A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{7A078C5B-4970-4F46-B5FE-2BF154504CDD}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{7A96D432-A012-4808-AA22-2041BCAFA6EC}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{7AF815EA-FEF4-49D2-9EDE-16BC5673FA8E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{7B3C031C-DA60-4B59-A02D-5BFDA4A88A48}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{7B7A4FB4-038D-4634-8343-04EC8ED4E5EE}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{7C14EA4B-DF3F-4B88-893A-9E9A38C47D94}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{7C54CD72-E12E-4245-B1CF-4BDEB7AE4A84}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{7CB42F8A-2B6D-47ED-8D02-F40596FD57DF}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{7D1B0598-0A22-4C70-816B-1FBC18279B52}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{7E90A89F-593D-4686-911E-E40EF5EFF674}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{7EC71D26-149F-429F-8FFB-3BF99864A572}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{7FA3B7A0-81AB-4333-B4F0-4030AAB5E1D9}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{7FD02EC1-985B-43CD-8CEB-215E83FEE885}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{7FE57E97-4F89-4C2A-94CC-2AE6A6D11A18}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{801FA9EA-270D-4DB8-87A4-DDC9A7D0478D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{8075C442-94CB-4AED-B42D-911F73E7C3EF}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{80BBBB58-97F1-4471-A6FE-ACAB6D08B4C2}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{80C51526-EE2C-4E82-8B72-239D57F16F15}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{80F839A1-D3C8-483B-8773-D2230F65A07C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{81B9237D-CFDB-404C-9A4B-07989402FD37}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{81FB765D-EFED-4740-8D73-A74ADCC05190}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{82462972-1350-4A63-8EED-DF8EA2287222}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{8252186F-BADD-4632-8FE6-4DD045AFC399}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{826FFB36-1981-438B-B60B-5077262378C4}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{82AA5FC6-A45B-48A1-9B55-04CA2D1C7550}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{82E69823-37D1-4758-AE56-541CA0432863}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{83539384-C521-4882-81CA-63E817A41958}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{838EF568-E979-4247-B245-8CBCB49E4AA8}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{83993EB4-BA10-41FA-ACE0-0932E4BD3A4A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{83ED0EEA-189E-44F4-8024-DC91998C4537}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{84909C78-FE44-4F81-A08D-3FC1F3BC800D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{85870DD8-8990-4FDD-BB91-3CBF9367D91A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{85B416A0-6214-4438-82B3-DAD2E1F104E8}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{85E73777-CF07-45BA-AC7E-6183CF4B56B6}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{85FB3D93-724A-4916-8313-4B726EA7728D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{85FB44D4-5E6B-4DB7-912A-80D84556955F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{86796F27-25F0-4F51-8577-B78159F7CA2D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{86DD5114-BE65-4569-9E3D-348021432DCA}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{870402D3-3882-4243-98EA-3431383E04BA}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{8735D36B-6190-4610-8296-BCED1F21C6F9}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{879EA5B5-D592-4471-9A07-D3153DCEE973}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{88694B9B-1E69-43C7-AD3D-919204BBE0BD}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{890FCBED-17EB-44FC-9498-C76612958859}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{89824AED-6166-417E-BC75-CCC15DEA6FAA}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{8A54FCD6-0D45-4729-A778-2CED6405875F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{8A80236F-5DDA-4B7E-921B-C153A40C72E1}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{8A80758F-52B1-4091-A5C3-C3731764EC63}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{8AABE50B-8022-44DB-A660-9B9B3708AC0D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{8AC6198B-600E-40B3-8C03-1FE05CFD97D1}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{8AF7A93E-AC5F-4FD3-A658-1DC6572B7D42}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{8B9B667E-B7E0-4552-8664-74089C89A1A2}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{8BFAB3B0-F79C-486C-90BB-0168B4492C4F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{8BFC10F2-9C0A-438D-921F-22235DE44FCC}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{8C103029-3630-4972-91E4-912AE36A71BA}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{8C3BD91F-4F71-4C10-8B44-10820032316E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{8CA77C53-62B4-4297-9ACD-CF48CC2FF0C2}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{8CD7AC07-C96D-458A-B5B9-CE0060BD0D89}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{8CE67AB9-AC2A-43F2-B93D-23912F97236A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{8E9A1FDE-DBD7-4377-922B-6BB526F1D63C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{8EBC1013-AFE6-4BC7-98B5-AFFD825C1750}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{8ED35DF7-D48A-4C2E-A7E0-0A7D9041A606}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{8F84DFAC-4055-4B9D-803B-418009A19451}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{8FD2E5B9-FA66-4525-A8E8-11437910C0B7}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{8FDBA0B5-A682-4799-AF12-4AEF591A74BB}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{9008699A-24C0-45D7-9A4F-A0BBA624CE6E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{9008F314-02DC-442D-92CF-66A3578C7E03}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{92D29287-E998-4BFD-9666-0C2B5958398F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{92FE04AF-062A-4570-8147-378ACDCA4264}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{9340237D-E518-4142-A666-4638B27E15D8}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{934EDF05-9C6B-4F3D-8D9A-74DB40BEDF36}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{937C7E8D-211E-4BB7-90F8-9E54CF61803B}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{93958A93-11EF-4B29-9F34-4D3EFE7E2D29}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{944F9EAE-3FB1-4878-92A0-C0186C00F43D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{94CAF2A1-3F0E-4ECE-B8FD-28D54A7CC4E5}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{94EBFE41-14BF-4B5A-92E0-D713BDBD54C3}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{9556B528-C898-4E97-8F6F-4EDA54BDDADA}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{95666E50-7A66-4691-8488-A1CC9BC96592}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{965372AF-CF8B-47BD-8E2F-BF697D127036}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{968B38C8-81CA-464B-8159-CA4064E0587C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{96B0FD4F-9422-4EE4-BA1A-CFF8BE4FF7F1}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{96FA4380-DE4A-4BAC-95C3-95F2F7B0D4CE}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{9773BB28-EEDF-4356-AE33-BCBC5D2EB07F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{980CEF07-B645-40A7-BC41-46EA8808CDAF}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{98D2E59A-4FD3-4F33-B594-E8B17FD1E106}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{9A24C3F6-7D5E-43BD-83D7-CF6F6675650D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{9A3BE634-3654-4B69-A8D7-BC641F687334}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{9A5A0813-1C70-4061-99BE-336E96343942}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{9A744F14-31ED-4C82-AD80-317E042D6C87}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{9A836CE3-AE99-4AFF-9155-1B24C1F44F27}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{9A8780E3-290C-42A9-9D09-B2BFA19778F5}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{9AC5406B-B7A1-4AFE-9260-84D47E2ECC07}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{9B44FDFC-D994-4B52-8C08-F802CBD24138}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{9B45874A-AB93-494B-810D-BE34EEE62584}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{9BD164BE-EDC9-4CC0-87CE-BA7553C26216}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{9CF95158-54B6-4F13-B2FB-3371D68023F0}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{9D79D495-A82A-4EA6-8FE4-1FCBE29A69CF}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{9D8B6F35-886A-45BC-BE53-65C4ECCF9A0C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{9D973C93-BE49-4AF9-A821-44B5594CEE07}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{9E89E9CE-8314-445D-9E9A-08AF918DF57F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{9EE28D37-08E9-4DA2-A6FC-DE88627B5474}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A065F3E8-3BA4-449B-9FAD-6C958D6B4C2A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A08272BB-A26B-455D-B044-B6AAD810DFAE}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A0D28586-2613-4522-B979-D837DC42E1B0}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A109CF99-2C00-4218-A9C2-416B92E9BFAE}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A16EC351-2164-466E-8930-5D91E6439106}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A1861891-B5CA-4B5C-AD5F-A5E829231C04}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A1C16E60-AC6F-460C-8D8D-70853DF5FF17}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A2167A2C-794D-448E-A156-D5D3BCCDC46B}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A23DFDD4-20DD-4CFA-9048-B015D69AAFB3}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A24A0572-90DA-402A-8F60-E8C758DF4D54}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A298D586-386C-43AD-A6B0-868F134B8140}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A2FD8E1B-0631-471E-B389-6DA8DEBFDDCD}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A3FE7B6B-FD54-42CA-9F13-C1438C417390}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A41B9131-D083-49C0-8CAD-DDFA35E9CB34}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A42DFA3F-AA09-4923-9876-9EBB0FEDCE20}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A464950C-2ED0-4B7B-90E6-7038CB429398}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A4676B92-793F-4BC1-A684-8E276D938051}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A4FE3D4B-4416-45FC-9FF4-8E322B2B2FE2}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A50DC746-40F4-4B2C-B36F-63C4AB7E4107}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A515241A-CEC6-4776-9C2D-638B76FE9C89}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A53B5636-ACA9-462E-8A70-5EAA0162661D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A57152D4-DF60-4444-AF8E-7C31602A9DF5}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A5AA9C8F-C2E1-4D95-837C-CE9CE0B5CE06}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A5C78857-F9FF-49AF-B8C7-5DB706C42D04}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A6699C37-F5C6-4EEE-98F3-D72711060F17}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A6FD6C21-7A04-455E-9700-8AB847565D7F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A798344F-B5CC-46BE-B83D-070C81D57172}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A7E0D123-5EEB-41BC-9AAB-1AE45B56C06C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A82E7663-D082-4D30-AD17-B42F2ECCFB76}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A8F734E4-61C6-44D9-A053-C93BB00198BF}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A96FD9A2-F5EF-44D0-BEE5-B68E465E3770}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{A9782A42-C120-4953-AE87-6D32491E1A89}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{AA558D5C-1679-49E4-AB57-DD24D3B97ADC}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{AAB42030-48CD-41DE-9831-7913F8076BF3}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{ABC355D2-8B37-437C-AAB0-63061E144CEC}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{ABC585E5-936E-4188-82F8-894C34CE522F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{ABFCA1B5-80C9-482E-8AE8-EFA666005F0A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{AC5B8415-93DE-4D0E-AA25-80FDCB57325C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{AC775F7A-27B3-4445-B888-6C29AB21AB21}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{ACA0E4C4-CB05-451F-B124-790C4B1B098C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{ADAC52A2-A63A-4CF9-BCEC-FB2F8A4F73C3}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{AE45F485-2B5F-4FCC-ACB3-1A4E515698CC}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{AE5CF843-3D21-49E8-BA53-A33DFC665A7E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{AE6E4E86-C3B8-49FF-A63A-EBBDDF57F3A9}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{AECE332F-21F2-4317-9C8D-D61615F0F196}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{AF0B6F4C-A205-4F07-97D5-CDF00600B7AE}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{AF37D16D-B532-41AE-B8FF-1990769029F8}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{AF860F4B-9A46-41FA-8E05-3094E9DAF612}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{AFD17878-8E2C-4ADD-BC85-6C73E97DBB21}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B0BD5937-5886-49A2-8082-3363C03BB8EC}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B0D78AD4-396C-408B-AD15-E15B1C42B013}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B129F06F-EC15-4ED2-9517-D9200AF54B6D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B148581C-6AD9-48F0-9A69-5A1D78095E32}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B14E481A-9603-4D1E-A99B-1E3559308DB1}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B1B3904E-667E-4753-B8DA-1ED8FE3EFA6B}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B24A17F1-3750-4A63-9FD2-3CDCA42CFCF7}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B257E623-C74B-4088-B5E9-04894475BB22}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B27CFF9A-3821-4EB4-ADC8-44F1C9F31C81}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B2CFCB75-67FA-43F4-A2ED-5528C0AD51D4}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B2FB8B64-F9F8-45A7-8B76-1ED91D12E931}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B475EAF6-7A3D-4FAE-8917-22721669FDD2}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B4A6A115-63F6-40A3-A935-13E2DFB61342}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B4ABB8CC-AAAD-4F70-8E9F-CE707B188B89}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B4BEC8F2-9613-4EC1-AEEA-8210B4D3E2CD}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B50361BF-8FD3-4AE8-8FBE-8AE788673E77}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B56B8D50-A053-4A8C-8DF3-9526883C8C2A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B6CAA359-30F5-445C-9E9C-D6210D1AA486}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B6FE6F89-633C-49F4-B651-977AE4CA1BBB}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B7725CE6-636C-4F63-839E-244243061E28}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B7B93A9E-AA76-494F-A721-0B4B0BB3640C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B7CF06BB-D8A9-4401-9BFA-EC0FC5C6AA2E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B7F6BFE5-E01F-4DF4-B978-058D2F578114}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B8278DB7-06D6-401D-90AB-ABF9774ABDB6}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B85ADDE8-9967-463B-9702-9C6187B97744}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B9165F17-6DF1-491C-B1EF-933DB9F09E2B}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B97C7880-14BC-445F-A498-9C1A90C24C3D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B9858BB0-EE6F-4004-B75E-9F1D6726D66B}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B9BFFCC1-D3FE-4EEA-8855-4F091F9FC0A0}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B9D29F42-079F-4A07-A557-2CE8B22F5B06}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{B9EACD50-B279-466A-A3F8-6A206A2F9FD7}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{BA2C7A7C-9576-43AC-9665-248EBE927F8E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{BA2FC31B-E686-4376-81FC-C8159E4D6AD6}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{BA9D10F4-8B32-41F8-9B0B-375942023A7B}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{BABCD575-2BBF-43E5-B519-D8489B79CC85}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{BAC41E36-A8A8-4685-9AE4-F2C68C05AB87}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{BAE12D6A-3C27-4FC1-B507-590DB9560D9E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{BB21692F-5E1F-456C-A382-19403D26DF31}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{BBFD0A68-F751-455A-86AF-D776025AB575}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{BBFD9396-5AEC-471E-B2FC-9AE7C753070D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{BCB749A7-5616-46A3-A04A-26B609BD9D08}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{BCF2A5C9-5F48-4431-BD78-E4BDA81448E2}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{BD0C9967-A042-479E-B3DA-BAA1B07980BA}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{BDE9A263-0857-4C20-AA67-BE1F5E0E4ED4}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{BE044FBC-597B-488B-9975-1827096B8498}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{BE3D52EC-EA97-4EC1-B3C1-A31B9886D212}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{BE7FAABF-03D7-43D6-9267-82D30CD22C46}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{BF33922A-8657-4355-A952-213E23E45880}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{BF869A43-CAD0-4AAC-84D5-C09DB809EA58}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C08D986E-AE92-472B-ADAF-B914F7454AB2}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C0CFC8A9-AC1B-43FD-B6FA-DF5DAC936A8A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C0D2E583-D239-4F37-97CF-EFE8C64F1BC0}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C0E51AF2-7C45-4FC3-AE6A-84DC4403A9C4}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C16FE7D3-A582-49B7-ACEC-3B734A340FB0}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C1D28EF9-6FC3-4CF7-85B5-E9E9D8BEC795}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C2078C7C-178B-468D-B3CA-6C97447601C7}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C29473F5-22F6-4FA8-B51F-8A8CBA166C33}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C2A28069-7266-47DE-A8BB-279E743670EB}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C3A3549C-D7D7-46F5-A4A8-DDCBB8E3D0FA}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C3ABEAC7-F222-436E-BFE7-EAAA5D9BFF6D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C421D127-0EDF-41B7-BCF4-49FC9822A627}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C4C5729D-7500-489A-A3DC-0F72DF1B2230}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C4FD7DEE-D033-49E5-97CA-63646F880164}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C51478F3-1B3A-454D-AC12-C5EE79D08C2C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C542D632-F0BF-431E-BAC5-02F55DFB0C13}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C5CFBE74-5442-489D-9308-461C44CE2988}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C63B6D38-3A56-4EDE-B8E4-6385496B8E72}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C6460A36-A133-4F75-B0C4-803C3A214971}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C6676B44-E8B0-45DC-9C62-DCD2F6B58504}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C668C1CE-73D7-42DD-A4F1-46679A9848E9}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C6869253-E0D1-431A-BECE-1684EE4880B9}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C6A6AC62-3405-4CD5-84A0-938FB2237D08}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C731732C-F469-40AA-BE25-AD3BD36FFC83}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C786C344-3244-4EBD-AD35-C60EAA57BE41}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C8A5A855-D1F1-43B9-9DF3-CBCBEAD2AFFA}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C8A7BFF8-2859-4FA9-BC3D-46898EE4CEE1}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C8E6D095-4B1C-4FA8-80B7-100EDD3548FE}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C95F988A-D072-4674-B07F-E16F35B31322}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C985350E-4FD8-43B4-81A8-C64034508008}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{C9B381FB-8B60-41B8-875B-8FA3D2A7ED84}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{CA86FDB2-F894-40A0-85CF-8F11E570B938}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{CAB719B2-BB40-4F8F-B26C-90CA9002F4F1}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{CAFE2F48-557D-47BA-A04B-E68B83B594E5}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{CB69897C-830B-4293-9C8B-BFAB44F4FA75}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{CB7A76C2-5E55-4225-9396-374E12F5D405}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{CB8A4D45-F312-4A80-98CE-A820DF63BEBF}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{CC2DA7DF-DD39-4C65-83FE-6B8B1DB0CA21}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{CCC07BE2-0CB9-4211-9CEC-27CC8E9BF295}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{CCDD6161-D3B7-4A5C-825F-B31F1AAFE091}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{CD1C0AD7-1923-47EA-9BF5-1A1071743C9B}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{CD6F5736-4452-4DAC-BAFB-E225EB1A2B43}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{CD8D77F7-5F51-47FD-A020-F3853970F6DF}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{CDAB461F-B53B-4BC7-9D97-5AF7C8003E59}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{CF2EC7B4-C47A-4CD5-B843-E8653DC1B2D2}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{CFD18BD9-65A0-4ACB-8DEA-9B4C12A3E91C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D0087B82-F435-4BFB-9277-365161A46367}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D0D00124-D257-4DED-82E6-976424BA2939}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D0D63D2F-D8BE-452C-BBBA-C5E87D06CA5C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D0EAE918-A305-46B1-87C0-D9FD22BB357A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D108956B-DF57-4C9F-8733-AB1A2D7CF95D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D1105963-70AD-49C0-A8F4-62D6E34F7239}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D11DC501-7544-4271-87F2-13966D08E8F2}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D1469529-BF95-4492-A607-AF430AB88AB1}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D1B8A78D-B08C-488C-B8BB-506FE3FA261B}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D220370D-2F8C-4CCF-A634-8035EA4041E0}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D24200A6-3E61-444F-BBF0-B8B6780C70C8}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D26FE2A8-0EAF-44F5-9CED-B5B18DF5217A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D292F497-F43F-4A61-A43D-E458FBDD15F5}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D2B3FB11-1432-413A-8CE8-9023C049AF64}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D2D766B5-4901-4D9B-8DF9-BCF50C288746}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D30A87E8-1736-455F-AC70-6EB9E60E5682}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D36303BD-FFA6-4A9F-B398-E82569CFFEB5}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D36FEBA0-5BA8-4686-8725-C1852A401F18}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D3E63536-C572-4054-89FC-CA61FE12D23D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D47BA2B9-2103-4BC5-9E96-EAACB5AADF68}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D4D6B0FA-3F59-4B47-A77C-F53C5C6A7540}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D4DDA86B-65C2-405B-A8C8-01582C209C26}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D5801272-1E44-41CC-9389-A099E94FA431}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D5EE661C-A1FA-48F4-AF76-0367CE722D75}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D64746A2-973A-48F5-8D0D-4090A42C97A7}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D64A3550-12B9-476E-9A72-13048D08C472}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D748F17D-86F7-49A2-BCDF-BF15743CD8F2}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D7534F85-4C23-475E-A509-5D1C16CA1D70}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D778EC10-DB68-4ABB-95AA-C4B06947F988}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D79CD99B-F1E8-4303-A21D-61843944A3D4}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D93D93FE-C8B1-4B01-968A-92E8E743D3AE}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D9D198B9-8A9B-4D0A-87A8-EF9D1730A742}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{D9D9C7B0-4F3C-4EFC-9C69-5DC25099E5A2}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{DA13164A-8F19-46D4-A9C5-06941E51FFE6}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{DA4D6798-ABBF-4D4D-9208-B6CBFCBEA45C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{DA843DAA-0509-4FB8-BC2F-FA82B18373AF}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{DAAD4225-3660-4E3E-8A1D-FA69550AEB48}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{DB1BE274-7504-410E-A521-669D276C15FF}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{DBF00AAA-CD2E-4C9D-BC7A-1708E67A6667}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{DC0D826D-A942-44EE-9192-C37FB4C82E80}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{DC2AD347-25D0-447D-BE39-B140F00BF82E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{DCE2FF54-3CBB-4416-B0D0-C80A201E5457}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{DDA2B5B3-A07E-4C36-A3A7-620D9350A9F9}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{DEF08FAF-AC21-431B-A7E6-B107F199B8F1}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{DF48C534-33EF-4DA1-B718-BB29BFB0A2A0}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{DFBAF0AF-F8BA-4D30-90F8-027D45129C2F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{DFC3E2B9-ADC8-450F-9712-B88946C1D88B}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{DFCEA302-A1DE-4BFB-8693-ACDF43845265}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E01EA09F-39F6-49E3-B6D4-A778CE96EECB}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E0A08080-8D83-4A78-8092-F6416430ACC2}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E0C69FAD-F710-4446-A1B0-67E23DCC7187}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E0C72F53-B75B-42C7-B0D7-683213D6E6F3}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E0F46222-020B-4F9F-8A47-918CE315E5A0}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E22E2676-81AA-41F4-94AF-AEDF46EC9CC7}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E24F9BD2-90A7-48D4-9F73-BA9953BB799D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E303DE01-5116-457A-BBFB-DBF2E9207ED8}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E3475D77-9B0C-4E9E-AE0B-61C1D914C701}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E489E39E-FE06-4252-A9BB-FC4F2ADE9255}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E510BF01-8141-4AB8-B641-D5A02E97C0B3}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E5150FE8-2223-47E1-9316-0479EB49157E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E53B8340-3CCA-47CE-B355-25A1B58198AE}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E541981F-9450-4898-8351-A62F63E08011}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E5704688-0AF0-46D3-B92E-CB95B4CA8401}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E624A49A-1B41-4C9A-A2BB-87A04EB9B73F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E63109C9-255A-451F-9568-CFD9E2522B70}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E63FF9DF-C944-40B4-9F30-1C468C0A62BA}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E6C92127-D9A6-453C-9231-81A0F0012581}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E75CD060-EC56-4AE7-BE74-CF5615436865}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E8199FD9-2242-49BF-86A6-6D27DC964BEA}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E862A89A-6B2B-4E4D-9656-9A5A908D938A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E89C63B1-0803-4BF2-80C7-EFB6AD4BDF46}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E9055214-0C69-455B-A442-3838C3D93C97}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E912246B-85E9-4547-9EDF-B162F445C0D4}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E924EE47-1269-465D-9B39-F9C9C4612C72}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E944A6F6-24D7-4FE3-A400-5125B6BCF008}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{E9705425-04F3-4D60-9CC1-F36BA6A09B6F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{EA1FE968-752C-41C1-A0D0-B86F449475D4}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{EA38B11F-2F01-4AAB-87CC-434A678A2F8A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{EA45D6F9-CDE0-44D1-9327-354568EF6A44}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{EA5A37D7-9AE6-4465-B877-7D616E0B29F0}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{EA89CD89-BA5D-4932-AB32-82EB0DD0D50C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{EAA92E22-EC9D-4FB8-8C77-381009DB302C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{EAE915A3-C0A3-42A6-BAE5-10120FC2FA8A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{EC272C2B-D87B-4544-BBBB-6F8698804FBE}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{ED134902-A0B5-4177-BD98-895698E25B76}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{ED3DBE83-FD8A-4B51-BBCA-1B719884FCB0}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{EDAB6A9F-CDA5-4FFF-BCEE-3506FEC8D04F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{EDE01604-E020-48D3-8C4B-AE8AE6EABB3E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{EE324F17-304E-4D3E-BB44-F46780D50593}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{EE3BFFDC-8DD1-4C6D-80E0-780BB6ECDB5E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{EE3DC039-13FF-431C-92C4-239813237AF6}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{EE748600-DF1D-4A12-8F0A-A9BA2C9E316C}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{EE7EE9B7-B40D-4F29-8211-7AE3C8AB6267}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{EE800627-BB1C-46BB-932B-EE4A86217B95}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{EEFF8C99-6AE4-4DA1-A252-E089094626EC}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{EF77A829-E734-4A39-B83B-49C300264FF7}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F0032A56-C2A8-4B63-8B9C-D920F15885DD}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F00AE60A-4E13-4B4F-9A34-EC3E4CC6BF65}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F02E72CF-9308-476F-A43C-ED5777F6CE7F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F06D0C03-23F4-4B9C-8EE2-4081497F999D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F07B0FBF-650F-445C-A67A-01AAC93EA7AF}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F0C16349-B75A-4FA7-AFBE-F5DCBDBAF380}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F0D5502B-DECD-4AE5-AD3C-D4986CFAA81A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F1BE7460-7725-4A92-8C37-6C9A11F66F63}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F1C9AB57-533F-4642-86B2-3D7EED0991C9}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F2CB9380-1D79-40F7-896F-1DA4E6AFF344}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F2DA58BB-F7B4-49B1-9AFD-86B6D08FFF59}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F389D196-E741-4DB1-8FB9-0C40C428EF77}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F3BA2D3A-3508-4E09-9688-A2267795B59E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F42ECF36-1BE3-4B30-A46F-FED281AA2736}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F4AFB0CB-B250-4F3E-BDB3-8DD55AF6161F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F4CFDD42-33E6-4976-8E60-456EAC487B10}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F4DAFC62-465E-4B04-909C-AF0783ADF240}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F532BCC4-0C38-4025-A0E4-54B9E9A005F0}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F6352601-F5A5-4980-A21D-A1BEA4A28897}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F64B4811-4095-46E7-BF23-0935017B4DC8}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F73F3E13-7B20-468D-9C9F-B2E0B787FA4B}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F74B0677-D30A-49B3-95DB-845C699EE333}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F7A14C53-BFA2-466A-9EB0-EF6DBFE7CD6D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F7FEADB8-F786-4E0C-A625-2B3EDA7F233F}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F806A5AE-BB82-4FF4-A37C-6D117B77BEB0}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F80A6E6B-22B3-4421-AED7-D8A587A235DC}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F8222501-23DF-43EF-AE41-8AAEC7EB5530}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F8A13EA4-9C50-4359-A665-3C6E51F9AB03}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F92A4357-AB5A-4B21-B95B-6A6C337B9913}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F9B59EF9-D939-4A68-BAF2-AE032CCFE885}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F9B7537B-D970-4C53-A47C-4A710CCDEF7E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F9E6588F-6AEB-4B17-B30D-07677B30EA73}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{F9F110DD-5A94-4E55-9DBD-E38606246B95}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{FA070AC3-E8D5-4586-8929-5D99B1B5EAD1}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{FA7A5A59-8D53-4117-B243-A07F2383A79E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{FB0AA1AD-5C77-42B4-9FD0-4A2ABDD245B3}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{FB4539D2-AD96-48FF-9DA0-178105609C20}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{FB6CEA3A-3479-41E4-955C-BABA1B99A568}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{FB7D3A04-0DB2-464B-91C0-7C0A4ABC6EAD}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{FBB06A94-8BCC-4BD8-AC49-02D7661C21A6}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{FBF60106-57A5-417E-AC1D-B8B7078A7B07}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{FC085B77-E9FE-4DE1-BE72-12149FA360C4}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{FC7CB4F4-28B2-463C-B375-C913C5FDCDA3}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{FCEFF94B-B83A-4176-949F-2BCB9545A228}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{FDFCA17A-2DC2-4E4E-BE60-AEDD91520065}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{FE1FA4C6-489F-4BB2-97A4-FF80EF71E82A}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{FEBD74E7-E881-41B0-88CB-6E5337EC590D}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{FF36FCB8-6084-4D27-AC55-7D4DEDF1E79E}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{FF49AFD2-AE64-4642-90B7-7306071C9313}
    Successfully deleted: [Empty Folder] C:\Users\Dan\appdata\local\{FF9E652F-9C77-4EC6-A131-DB422499428A}



    ~~~ Event Viewer Logs were cleared





    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Scan was completed on Fri 08/30/2013 at 22:48:41.26
    End of JRT log
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

  • aswMBR.exe
    aswMBR version 0.9.9.1771 Copyright© 2011 AVAST Software
    Run date: 2013-09-02 20:23:46
    -----------------------------
    20:23:46.758 OS Version: Windows x64 6.1.7601 Service Pack 1
    20:23:46.758 Number of processors: 4 586 0x2505
    20:23:46.758 ComputerName: DAN-HP UserName: Dan
    20:23:48.287 Initialize success
    20:24:30.579 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
    20:24:30.579 Disk 0 Vendor: Hitachi_ PB4O Size: 476940MB BusType: 3
    20:24:30.735 Disk 0 MBR read successfully
    20:24:30.735 Disk 0 MBR scan
    20:24:30.735 Disk 0 unknown MBR code
    20:24:30.750 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 199 MB offset 2048
    20:24:30.766 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 458072 MB offset 409600
    20:24:30.781 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 18564 MB offset 938541056
    20:24:30.813 Disk 0 Partition 4 00 0C FAT32 LBA MSDOS5.0 103 MB offset 976560128
    20:24:30.937 Disk 0 scanning C:\Windows\system32\drivers
    20:24:39.580 Service scanning
    20:25:02.808 Modules scanning
    20:25:02.824 Scan finished successfully
    21:00:25.617 Disk 0 MBR has been saved successfully to "C:\Users\Dan\Desktop\MBR.dat"
    21:00:25.632 The log file has been saved successfully to "C:\Users\Dan\Desktop\aswMBR1.txt"


  • Combofix.txt
    ComboFix 13-08-30.02 - Dan 09/02/2013 12:07:43.1.4 - x64
    Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.3894.2388 [GMT -4:00]
    Running from: c:\users\Dan\Desktop\ComboFix.exe
    AV: Sophos Anti-Virus *Enabled/Updated* {479CCF92-4960-B3E0-7373-BF453B467D2C}
    FW: Sophos Client Firewall *Enabled* {7FA74EB7-030F-B2B8-582C-1670C5953A57}
    SP: Sophos Anti-Virus *Enabled/Updated* {FCFD2E76-6F5A-BC6E-49C3-843740C13791}
    SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    .
    .
    ((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    c:\programdata\3165958.bat
    c:\programdata\3165958.pad
    c:\programdata\3165958.reg
    c:\users\Dan\AppData\Local\Temp\libsqlitejdbc-7435010718013990958.lib
    c:\users\Dan\AppData\Local\Temp\swt-gdip-win32-3448.dll
    c:\users\Dan\AppData\Local\Temp\swt-win32-3448.dll
    c:\users\Dan\AppData\Local\Temp\WindowsAPI.dll3591807457842554505.lib
    c:\users\Dan\AppData\Roaming\skype.ini
    c:\users\Dan\Documents\~WRL0441.tmp
    c:\users\Public\invokesi.exe
    c:\windows\PFRO.log
    .
    .
    ((((((((((((((((((((((((( Files Created from 2013-08-02 to 2013-09-02 )))))))))))))))))))))))))))))))
    .
    .
    2013-09-02 16:17 . 2013-09-02 16:17 -------- d-----w- c:\users\Default\AppData\Local\temp
    2013-08-31 02:42 . 2013-08-31 02:42 -------- d-----w- c:\windows\ERUNT
    2013-08-31 01:07 . 2013-08-31 01:09 -------- d-----w- C:\AdwCleaner
    2013-08-28 09:54 . 2013-07-25 03:31 1346560 ----a-w- c:\windows\system32\urlmon.dll
    2013-08-27 01:24 . 2013-08-27 01:24 -------- d-----w- c:\program files\Footballguys
    2013-08-20 18:54 . 2013-07-02 08:34 9460976 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{411DBA3C-2A98-44B4-9D5F-8CED0D69368F}\mpengine.dll
    2013-08-19 23:01 . 2013-08-19 23:01 -------- d-----w- c:\program files\iPod
    2013-08-19 23:01 . 2013-08-19 23:02 -------- d-----w- c:\programdata\34BE82C4-E596-4e99-A191-52C6199EBF69
    2013-08-19 23:01 . 2013-08-19 23:02 -------- d-----w- c:\program files\iTunes
    2013-08-19 23:01 . 2013-08-19 23:02 -------- d-----w- c:\program files (x86)\iTunes
    2013-08-16 23:53 . 2013-08-16 23:56 -------- d-----w- c:\windows\system32\MRT
    2013-08-15 20:40 . 2013-07-19 01:58 2048 ----a-w- c:\windows\system32\tzres.dll
    2013-08-15 20:40 . 2013-07-19 01:41 2048 ----a-w- c:\windows\SysWow64\tzres.dll
    .
    .
    .
    (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2013-08-16 23:53 . 2010-12-30 14:36 78161360 ----a-w- c:\windows\system32\MRT.exe
    2013-06-05 03:34 . 2013-07-11 23:50 3153920 ----a-w- c:\windows\system32\win32k.sys
    .
    .
    ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Note* empty entries & legit default entries are not shown
    REGEDIT4
    .
    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1]
    @="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
    [HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
    2012-10-11 22:57 220632 ----a-w- c:\users\Dan\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll
    .
    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2]
    @="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
    [HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
    2012-10-11 22:57 220632 ----a-w- c:\users\Dan\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll
    .
    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3]
    @="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
    [HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
    2012-10-11 22:57 220632 ----a-w- c:\users\Dan\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll
    .
    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "ZumoDrive"="c:\program files (x86)\Hewlett-Packard\HP CloudDrive\ZumoLauncher.lnk" [2011-01-20 2080]
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
    "Microsoft Default Manager"="c:\program files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" [2010-05-10 439568]
    "Sophos AutoUpdate Monitor"="c:\program files (x86)\Sophos\AutoUpdate\almon.exe" [2010-09-21 439536]
    "ZumoDrive"="c:\program files (x86)\Hewlett-Packard\HP CloudDrive\ZumoLauncher.lnk" [2011-01-20 2080]
    "HP Quick Launch"="c:\program files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe" [2010-11-09 586296]
    "dcmsvc"="c:\program files (x86)\dcmsvc\dcmsvc.exe" [2009-04-07 30440]
    "APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2013-04-22 59720]
    "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576]
    "QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2013-05-01 421888]
    "iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2013-08-16 152392]
    .
    c:\users\Dan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
    MagicDisc.lnk - c:\program files (x86)\MagicDisc\MagicDisc.exe [2012-5-20 576000]
    .
    c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
    Snapfish PictureMover.lnk - c:\program files (x86)\PictureMover\Bin\PictureMover.exe -det [2010-9-28 1040952]
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
    "ConsentPromptBehaviorAdmin"= 5 (0x5)
    "ConsentPromptBehaviorUser"= 3 (0x3)
    "EnableUIADesktopToggle"= 0 (0x0)
    .
    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
    "LoadAppInit_DLLs"=1 (0x1)
    "AppInit_DLLs"=c:\progra~2\Sophos\SOPHOS~1\sophos_detoured.dll
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SophosAntiVirus]
    "DisableMonitoring"=dword:00000001
    .
    R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
    R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
    R3 netw5v64;Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;c:\windows\system32\DRIVERS\netw5v64.sys;c:\windows\SYSNATIVE\DRIVERS\netw5v64.sys [x]
    R3 NMgamingmsFltr;USB Optical Mouse;c:\windows\system32\drivers\NMgamingms.sys;c:\windows\SYSNATIVE\drivers\NMgamingms.sys [x]
    R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys;c:\windows\SYSNATIVE\Drivers\RtsUStor.sys [x]
    R3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL6.SYS;c:\windows\SYSNATIVE\DRIVERS\VSTAZL6.SYS [x]
    R3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV6.SYS;c:\windows\SYSNATIVE\DRIVERS\VSTDPV6.SYS [x]
    R3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT6.SYS;c:\windows\SYSNATIVE\DRIVERS\VSTCNXT6.SYS [x]
    R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
    R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys;c:\windows\SYSNATIVE\Drivers\usbaapl64.sys [x]
    R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
    R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys;c:\windows\SYSNATIVE\DRIVERS\yk62x64.sys [x]
    R4 SophosBootDriver;SophosBootDriver;c:\windows\system32\DRIVERS\SophosBootDriver.sys;c:\windows\SYSNATIVE\DRIVERS\SophosBootDriver.sys [x]
    S1 SAVOnAccess;SAVOnAccess;c:\windows\system32\DRIVERS\savonaccess.sys;c:\windows\SYSNATIVE\DRIVERS\savonaccess.sys [x]
    S1 scfdriver;SCF Kernel Driver;c:\windows\system32\Drivers\scfdriver.sys;c:\windows\SYSNATIVE\Drivers\scfdriver.sys [x]
    S1 scflwf;Sophos Client Firewall packet filter;c:\windows\system32\DRIVERS\scflwf.sys;c:\windows\SYSNATIVE\DRIVERS\scflwf.sys [x]
    S2 AERTFilters;Andrea RT Filters Service;c:\program files\Realtek\Audio\HDA\AERTSr64.exe;c:\program files\Realtek\Audio\HDA\AERTSr64.exe [x]
    S2 HP Support Assistant Service;HP Support Assistant Service;c:\program files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe;c:\program files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [x]
    S2 HP Wireless Assistant Service;HP Wireless Assistant Service;c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe;c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [x]
    S2 HPClientSvc;HP Client Services;c:\program files\Hewlett-Packard\HP Client Services\HPClientServices.exe;c:\program files\Hewlett-Packard\HP Client Services\HPClientServices.exe [x]
    S2 HPWMISVC;HPWMISVC;c:\program files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe;c:\program files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [x]
    S2 RoxioNow Service;RoxioNow Service;c:\program files (x86)\Roxio\RoxioNow Player\RNowSvc.exe;c:\program files (x86)\Roxio\RoxioNow Player\RNowSvc.exe [x]
    S2 RtVOsdService;RtVOsdService Installer;c:\program files\Realtek\RtVOsd\RtVOsdService.exe;c:\program files\Realtek\RtVOsd\RtVOsdService.exe [x]
    S2 SAVAdminService;Sophos Anti-Virus status reporter;c:\program files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe;c:\program files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe [x]
    S2 SAVService;Sophos Anti-Virus;c:\program files (x86)\Sophos\Sophos Anti-Virus\SavService.exe;c:\program files (x86)\Sophos\Sophos Anti-Virus\SavService.exe [x]
    S2 Sophos Client Firewall Manager;Sophos Client Firewall Manager;c:\program files (x86)\Sophos\Sophos Client Firewall\SCFManager.exe;c:\program files (x86)\Sophos\Sophos Client Firewall\SCFManager.exe [x]
    S2 Sophos Client Firewall;Sophos Client Firewall;c:\program files (x86)\Sophos\Sophos Client Firewall\SCFService.exe;c:\program files (x86)\Sophos\Sophos Client Firewall\SCFService.exe [x]
    S2 swi_service;Sophos Web Intelligence Service;c:\program files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe;c:\program files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe [x]
    S2 UNS;Intel® Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [x]
    S3 clwvd;CyberLink WebCam Virtual Driver;c:\windows\system32\DRIVERS\clwvd.sys;c:\windows\SYSNATIVE\DRIVERS\clwvd.sys [x]
    S3 HECIx64;Intel® Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys;c:\windows\SYSNATIVE\DRIVERS\HECIx64.sys [x]
    S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys;c:\windows\SYSNATIVE\DRIVERS\Impcd.sys [x]
    S3 IntcDAud;Intel® Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
    S3 netr28x;Ralink 802.11n Extensible Wireless Driver;c:\windows\system32\DRIVERS\netr28x.sys;c:\windows\SYSNATIVE\DRIVERS\netr28x.sys [x]
    S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
    .
    .
    --- Other Services/Drivers In Memory ---
    .
    *NewlyCreated* - WS2IFSL
    .
    Contents of the 'Scheduled Tasks' folder
    .
    2013-08-17 c:\windows\Tasks\HPCeeScheduleForDAN-HP$.job
    - c:\program files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-14 05:15]
    .
    2013-08-31 c:\windows\Tasks\HPCeeScheduleForDan.job
    - c:\program files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-14 05:15]
    .
    .
    --------- X64 Entries -----------
    .
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1]
    @="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
    [HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
    2012-10-11 22:57 244696 ----a-w- c:\users\Dan\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2]
    @="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
    [HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
    2012-10-11 22:57 244696 ----a-w- c:\users\Dan\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3]
    @="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
    [HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
    2012-10-11 22:57 244696 ----a-w- c:\users\Dan\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00Zecter]
    @="{D25B32FE-CB96-491A-98FF-AD59DA382D69}"
    [HKEY_CLASSES_ROOT\CLSID\{D25B32FE-CB96-491A-98FF-AD59DA382D69}]
    2010-09-23 04:53 2210304 ----a-w- c:\program files (x86)\Hewlett-Packard\HP CloudDrive\ShellExt64.dll
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\01Zecter]
    @="{EB24CA6D-F315-4A81-AC1A-C79CFD77F3F5}"
    [HKEY_CLASSES_ROOT\CLSID\{EB24CA6D-F315-4A81-AC1A-C79CFD77F3F5}]
    2010-09-23 04:53 2210304 ----a-w- c:\program files (x86)\Hewlett-Packard\HP CloudDrive\ShellExt64.dll
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\02Zecter]
    @="{B3C78E40-6B64-47C3-AE34-60B770881EB8}"
    [HKEY_CLASSES_ROOT\CLSID\{B3C78E40-6B64-47C3-AE34-60B770881EB8}]
    2010-09-23 04:53 2210304 ----a-w- c:\program files (x86)\Hewlett-Packard\HP CloudDrive\ShellExt64.dll
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\03Zecter]
    @="{622AFE52-33F6-4D9F-9966-E0BC52D7D69D}"
    [HKEY_CLASSES_ROOT\CLSID\{622AFE52-33F6-4D9F-9966-E0BC52D7D69D}]
    2010-09-23 04:53 2210304 ----a-w- c:\program files (x86)\Hewlett-Packard\HP CloudDrive\ShellExt64.dll
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\04Zecter]
    @="{855156F0-2A0F-11DE-8C30-0800200C9A66}"
    [HKEY_CLASSES_ROOT\CLSID\{855156F0-2A0F-11DE-8C30-0800200C9A66}]
    2010-09-23 04:53 2210304 ----a-w- c:\program files (x86)\Hewlett-Packard\HP CloudDrive\ShellExt64.dll
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2010-09-22 6489704]
    "HPWirelessAssistant"="c:\program files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe" [2010-07-21 8192]
    "IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-08-26 161304]
    "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-08-26 386584]
    "Persistence"="c:\windows\system32\igfxpers.exe" [2010-08-26 415256]
    "EvtMgr6"="c:\program files\Logitech\SetPointP\SetPoint.exe" [2011-10-07 1744152]
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
    "AppInit_DLLs"=c:\progra~2\Sophos\SOPHOS~1\sophos_detoured_x64.dll
    .
    ------- Supplementary Scan -------
    .
    uLocal Page = c:\windows\system32\blank.htm
    mLocal Page = c:\windows\SysWOW64\blank.htm
    uInternet Settings,ProxyOverride = *.local
    Trusted Zone: rjf.com\secureaccess
    TCP: DhcpNameServer = 65.32.5.111 65.32.5.112 192.168.1.1
    DPF: Garmin Communicator Plug-In - hxxps://static.garmincdn.com/gcp/ie/3.0.1.0/GarminAxControl.CAB
    DPF: {88F3DCEE-3BE9-45A5-A70F-5E42ED61ACDB} - hxxps://rja-secureaccess.rjf.com/Controls/,DanaInfo=.agbpg2ExqnImzy,SSL+RJUpdWeb.CAB
    .
    - - - - ORPHANS REMOVED - - - -
    .
    Toolbar-10 - (no file)
    c:\users\Dan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Warner Bros.lnk - c:\program files (x86)\Warner Bros. Digital Copy Manager\Warner Bros. Digital Copy Manager.exe
    HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
    Toolbar-10 - (no file)
    HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
    AddRemove-{EE202411-2C26-49E8-9784-1BC1DBF7DE96} - c:\program files (x86)\InstallShield Installation Information\{EE202411-2C26-49E8-9784-1BC1DBF7DE96}\setup.exe
    .
    .
    .
    --------------------- LOCKED REGISTRY KEYS ---------------------
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
    @Denied: (A 2) (Everyone)
    @="FlashBroker"
    "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_6_602_180_ActiveX.exe,-101"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
    "Enabled"=dword:00000001
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
    @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_6_602_180_ActiveX.exe"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
    @Denied: (A 2) (Everyone)
    @="IFlashBroker5"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
    @="{00020424-0000-0000-C000-000000000046}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    "Version"="1.0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
    @Denied: (A 2) (Everyone)
    @="FlashBroker"
    "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_6_602_180_ActiveX.exe,-101"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
    "Enabled"=dword:00000001
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_6_602_180_ActiveX.exe"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
    @Denied: (A 2) (Everyone)
    @="Shockwave Flash Object"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_6_602_180.ocx"
    "ThreadingModel"="Apartment"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
    @="0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
    @="ShockwaveFlash.ShockwaveFlash.11"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_6_602_180.ocx, 1"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
    @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
    @="1.0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
    @="ShockwaveFlash.ShockwaveFlash"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
    @Denied: (A 2) (Everyone)
    @="Macromedia Flash Factory Object"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_6_602_180.ocx"
    "ThreadingModel"="Apartment"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
    @="FlashFactory.FlashFactory.1"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_6_602_180.ocx, 1"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
    @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
    @="1.0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
    @="FlashFactory.FlashFactory"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
    @Denied: (A 2) (Everyone)
    @="IFlashBroker5"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
    @="{00020424-0000-0000-C000-000000000046}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    "Version"="1.0"
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
    @Denied: (A) (Users)
    @Denied: (A) (Everyone)
    @Allowed: (B 1 2 3 4 5) (S-1-5-20)
    "BlindDial"=dword:00000000
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
    @Denied: (Full) (Everyone)
    .
    ------------------------ Other Running Processes ------------------------
    .
    c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
    c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    c:\program files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
    c:\program files (x86)\Sophos\AutoUpdate\ALsvc.exe
    c:\programdata\TVersity\Media Server\MediaServer.exe
    c:\program files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
    .
    **************************************************************************
    .
    Completion time: 2013-09-02 13:35:01 - machine was rebooted
    ComboFix-quarantined-files.txt 2013-09-02 17:35
    .
    Pre-Run: 375,102,435,328 bytes free
    Post-Run: 377,548,853,248 bytes free
    .
    - - End Of File - - C87F84A344BC33964A01BA89FAD52779

  • TDSSKiller.txt
    18:36:32.0973 3092 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
    18:36:35.0001 3092 ============================================================
    18:36:35.0001 3092 Current date / time: 2013/09/02 18:36:35.0001
    18:36:35.0001 3092 SystemInfo:
    18:36:35.0001 3092
    18:36:35.0001 3092 OS Version: 6.1.7601 ServicePack: 1.0
    18:36:35.0001 3092 Product type: Workstation
    18:36:35.0001 3092 ComputerName: DAN-HP
    18:36:35.0001 3092 UserName: Dan
    18:36:35.0001 3092 Windows directory: C:\Windows
    18:36:35.0001 3092 System windows directory: C:\Windows
    18:36:35.0001 3092 Running under WOW64
    18:36:35.0001 3092 Processor architecture: Intel x64
    18:36:35.0001 3092 Number of processors: 4
    18:36:35.0001 3092 Page size: 0x1000
    18:36:35.0001 3092 Boot type: Normal boot
    18:36:35.0001 3092 ============================================================
    18:36:35.0937 3092 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
    18:36:35.0937 3092 ============================================================
    18:36:35.0937 3092 \Device\Harddisk0\DR0:
    18:36:35.0937 3092 MBR partitions:
    18:36:35.0937 3092 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x63800
    18:36:35.0937 3092 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x64000, BlocksNum 0x37EAC000
    18:36:35.0937 3092 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x37F10000, BlocksNum 0x2442000
    18:36:35.0937 3092 \Device\Harddisk0\DR0\Partition4: MBR, Type 0xC, StartLBA 0x3A352000, BlocksNum 0x33830
    18:36:35.0937 3092 ============================================================
    18:36:35.0952 3092 C: <-> \Device\Harddisk0\DR0\Partition2
    18:36:35.0999 3092 D: <-> \Device\Harddisk0\DR0\Partition3
    18:36:36.0015 3092 F: <-> \Device\Harddisk0\DR0\Partition4
    18:36:36.0015 3092 ============================================================
    18:36:36.0015 3092 Initialize success
    18:36:36.0015 3092 ============================================================
    18:37:29.0710 4644 ============================================================
    18:37:29.0710 4644 Scan started
    18:37:29.0710 4644 Mode: Manual;
    18:37:29.0710 4644 ============================================================
    18:37:31.0988 4644 ================ Scan system memory ========================
    18:37:31.0988 4644 System memory - ok
    18:37:31.0988 4644 ================ Scan services =============================
    18:37:32.0175 4644 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
    18:37:32.0222 4644 1394ohci - ok
    18:37:32.0237 4644 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
    18:37:32.0253 4644 ACPI - ok
    18:37:32.0268 4644 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
    18:37:32.0284 4644 AcpiPmi - ok
    18:37:32.0378 4644 [ ADDA5E1951B90D3D23C56D3CF0622ADC ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
    18:37:32.0424 4644 AdobeARMservice - ok
    18:37:32.0487 4644 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
    18:37:32.0518 4644 adp94xx - ok
    18:37:32.0534 4644 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
    18:37:32.0549 4644 adpahci - ok
    18:37:32.0612 4644 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
    18:37:32.0643 4644 adpu320 - ok
    18:37:32.0690 4644 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
    18:37:32.0690 4644 AeLookupSvc - ok
    18:37:32.0752 4644 [ D1E343BC00136CE03C4D403194D06A80 ] AERTFilters C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
    18:37:32.0783 4644 AERTFilters - ok
    18:37:32.0830 4644 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys
    18:37:32.0846 4644 AFD - ok
    18:37:32.0892 4644 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
    18:37:32.0908 4644 agp440 - ok
    18:37:32.0939 4644 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
    18:37:32.0970 4644 ALG - ok
    18:37:32.0986 4644 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
    18:37:33.0002 4644 aliide - ok
    18:37:33.0002 4644 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
    18:37:33.0017 4644 amdide - ok
    18:37:33.0048 4644 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
    18:37:33.0064 4644 AmdK8 - ok
    18:37:33.0080 4644 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
    18:37:33.0095 4644 AmdPPM - ok
    18:37:33.0126 4644 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
    18:37:33.0142 4644 amdsata - ok
    18:37:33.0173 4644 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
    18:37:33.0189 4644 amdsbs - ok
    18:37:33.0204 4644 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
    18:37:33.0220 4644 amdxata - ok
    18:37:33.0251 4644 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
    18:37:33.0267 4644 AppID - ok
    18:37:33.0329 4644 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
    18:37:33.0360 4644 AppIDSvc - ok
    18:37:33.0423 4644 [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo C:\Windows\System32\appinfo.dll
    18:37:33.0438 4644 Appinfo - ok
    18:37:33.0516 4644 [ 4FE5C6D40664AE07BE5105874357D2ED ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    18:37:33.0548 4644 Apple Mobile Device - ok
    18:37:33.0579 4644 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys
    18:37:33.0594 4644 arc - ok
    18:37:33.0626 4644 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
    18:37:33.0641 4644 arcsas - ok
    18:37:33.0735 4644 [ 9217D874131AE6FF8F642F124F00A555 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
    18:37:33.0766 4644 aspnet_state - ok
    18:37:33.0782 4644 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
    18:37:33.0782 4644 AsyncMac - ok
    18:37:33.0813 4644 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
    18:37:33.0828 4644 atapi - ok
    18:37:33.0906 4644 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
    18:37:33.0984 4644 AudioEndpointBuilder - ok
    18:37:33.0984 4644 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
    18:37:34.0000 4644 AudioSrv - ok
    18:37:34.0031 4644 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
    18:37:34.0047 4644 AxInstSV - ok
    18:37:34.0078 4644 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys
    18:37:34.0109 4644 b06bdrv - ok
    18:37:34.0125 4644 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
    18:37:34.0140 4644 b57nd60a - ok
    18:37:34.0203 4644 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
    18:37:34.0218 4644 BDESVC - ok
    18:37:34.0234 4644 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
    18:37:34.0250 4644 Beep - ok
    18:37:34.0296 4644 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
    18:37:34.0328 4644 BFE - ok
    18:37:34.0359 4644 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\system32\qmgr.dll
    18:37:34.0406 4644 BITS - ok
    18:37:34.0452 4644 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
    18:37:34.0468 4644 blbdrive - ok
    18:37:34.0515 4644 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
    18:37:34.0577 4644 Bonjour Service - ok
    18:37:34.0608 4644 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
    18:37:34.0624 4644 bowser - ok
    18:37:34.0640 4644 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
    18:37:34.0655 4644 BrFiltLo - ok
    18:37:34.0671 4644 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
    18:37:34.0686 4644 BrFiltUp - ok
    18:37:34.0702 4644 [ 5C2F352A4E961D72518261257AAE204B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
    18:37:34.0718 4644 BridgeMP - ok
    18:37:34.0780 4644 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
    18:37:34.0796 4644 Browser - ok
    18:37:34.0827 4644 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
    18:37:34.0842 4644 Brserid - ok
    18:37:34.0858 4644 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
    18:37:34.0874 4644 BrSerWdm - ok
    18:37:34.0874 4644 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
    18:37:34.0889 4644 BrUsbMdm - ok
    18:37:34.0920 4644 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
    18:37:34.0936 4644 BrUsbSer - ok
    18:37:34.0952 4644 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
    18:37:34.0967 4644 BTHMODEM - ok
    18:37:35.0045 4644 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
    18:37:35.0076 4644 bthserv - ok
    18:37:35.0092 4644 catchme - ok
    18:37:35.0108 4644 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
    18:37:35.0123 4644 cdfs - ok
    18:37:35.0154 4644 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
    18:37:35.0170 4644 cdrom - ok
    18:37:35.0232 4644 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
    18:37:35.0264 4644 CertPropSvc - ok
    18:37:35.0279 4644 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys
    18:37:35.0295 4644 circlass - ok
    18:37:35.0326 4644 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
    18:37:35.0342 4644 CLFS - ok
    18:37:35.0404 4644 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
    18:37:35.0466 4644 clr_optimization_v2.0.50727_32 - ok
    18:37:35.0513 4644 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
    18:37:35.0544 4644 clr_optimization_v2.0.50727_64 - ok
    18:37:35.0622 4644 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
    18:37:35.0747 4644 clr_optimization_v4.0.30319_32 - ok
    18:37:35.0747 4644 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
    18:37:35.0763 4644 clr_optimization_v4.0.30319_64 - ok
    18:37:35.0794 4644 [ 50F92C943F18B070F166D019DFAB3D9A ] clwvd C:\Windows\system32\DRIVERS\clwvd.sys
    18:37:35.0810 4644 clwvd - ok
    18:37:35.0825 4644 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
    18:37:35.0841 4644 CmBatt - ok
    18:37:35.0888 4644 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
    18:37:35.0919 4644 cmdide - ok
    18:37:35.0966 4644 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\Windows\system32\Drivers\cng.sys
    18:37:35.0981 4644 CNG - ok
    18:37:36.0012 4644 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
    18:37:36.0028 4644 Compbatt - ok
    18:37:36.0059 4644 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
    18:37:36.0075 4644 CompositeBus - ok
    18:37:36.0090 4644 COMSysApp - ok
    18:37:36.0122 4644 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
    18:37:36.0137 4644 crcdisk - ok
    18:37:36.0184 4644 [ 6B400F211BEE880A37A1ED0368776BF4 ] CryptSvc C:\Windows\system32\cryptsvc.dll
    18:37:36.0200 4644 CryptSvc - ok
    18:37:36.0246 4644 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
    18:37:36.0262 4644 DcomLaunch - ok
    18:37:36.0293 4644 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
    18:37:36.0324 4644 defragsvc - ok
    18:37:36.0356 4644 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
    18:37:36.0371 4644 DfsC - ok
    18:37:36.0434 4644 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
    18:37:36.0465 4644 Dhcp - ok
    18:37:36.0496 4644 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
    18:37:36.0527 4644 discache - ok
    18:37:36.0543 4644 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys
    18:37:36.0574 4644 Disk - ok
    18:37:36.0621 4644 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
    18:37:36.0636 4644 Dnscache - ok
    18:37:36.0683 4644 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
    18:37:36.0714 4644 dot3svc - ok
    18:37:36.0746 4644 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
    18:37:36.0777 4644 DPS - ok
    18:37:36.0777 4644 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
    18:37:36.0792 4644 drmkaud - ok
    18:37:36.0824 4644 [ 3EEF0B3489EDBF725564E17C77CABAFD ] dsNcAdpt C:\Windows\system32\DRIVERS\dsNcAdpt.sys
    18:37:36.0839 4644 dsNcAdpt - ok
    18:37:36.0886 4644 [ AF2E16242AA723F68F461B6EAE2EAD3D ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
    18:37:36.0917 4644 DXGKrnl - ok
    18:37:36.0980 4644 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
    18:37:36.0995 4644 EapHost - ok
    18:37:37.0104 4644 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys
    18:37:37.0167 4644 ebdrv - ok
    18:37:37.0198 4644 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
    18:37:37.0214 4644 EFS - ok
    18:37:37.0292 4644 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
    18:37:37.0338 4644 ehRecvr - ok
    18:37:37.0354 4644 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
    18:37:37.0370 4644 ehSched - ok
    18:37:37.0401 4644 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
    18:37:37.0432 4644 elxstor - ok
    18:37:37.0432 4644 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
    18:37:37.0448 4644 ErrDev - ok
    18:37:37.0526 4644 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
    18:37:37.0526 4644 EventSystem - ok
    18:37:37.0557 4644 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
    18:37:37.0588 4644 exfat - ok
    18:37:37.0604 4644 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
    18:37:37.0619 4644 fastfat - ok
    18:37:37.0682 4644 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
    18:37:37.0697 4644 Fax - ok
    18:37:37.0760 4644 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys
    18:37:37.0760 4644 fdc - ok
    18:37:37.0791 4644 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
    18:37:37.0791 4644 fdPHost - ok
    18:37:37.0806 4644 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
    18:37:37.0822 4644 FDResPub - ok
    18:37:37.0838 4644 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
    18:37:37.0838 4644 FileInfo - ok
    18:37:37.0853 4644 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
    18:37:37.0869 4644 Filetrace - ok
    18:37:37.0884 4644 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
    18:37:37.0884 4644 flpydisk - ok
    18:37:37.0931 4644 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
    18:37:37.0962 4644 FltMgr - ok
    18:37:38.0025 4644 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\Windows\system32\FntCache.dll
    18:37:38.0072 4644 FontCache - ok
    18:37:38.0150 4644 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
    18:37:38.0228 4644 FontCache3.0.0.0 - ok
    18:37:38.0243 4644 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
    18:37:38.0259 4644 FsDepends - ok
    18:37:38.0306 4644 [ B16B626996C74B564005BA855C5DEE90 ] fssfltr C:\Windows\system32\DRIVERS\fssfltr.sys
    18:37:38.0321 4644 fssfltr - ok
    18:37:38.0430 4644 [ 812E1BA5C52A78F13EA6AA10DF708B1D ] fsssvc C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe
    18:37:38.0508 4644 fsssvc - ok
    18:37:38.0540 4644 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
    18:37:38.0555 4644 Fs_Rec - ok
    18:37:38.0602 4644 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
    18:37:38.0618 4644 fvevol - ok
    18:37:38.0633 4644 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
    18:37:38.0649 4644 gagp30kx - ok
    18:37:38.0711 4644 [ D154305DE6090E6E84E525F84BB08A06 ] GameConsoleService C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe
    18:37:38.0758 4644 GameConsoleService - ok
    18:37:38.0789 4644 [ 8E98D21EE06192492A5671A6144D092F ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
    18:37:38.0805 4644 GEARAspiWDM - ok
    18:37:38.0867 4644 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
    18:37:38.0898 4644 gpsvc - ok
    18:37:38.0930 4644 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
    18:37:38.0930 4644 hcw85cir - ok
    18:37:38.0976 4644 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
    18:37:39.0008 4644 HdAudAddService - ok
    18:37:39.0039 4644 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
    18:37:39.0054 4644 HDAudBus - ok
    18:37:39.0070 4644 [ B6AC71AAA2B10848F57FC49D55A651AF ] HECIx64 C:\Windows\system32\DRIVERS\HECIx64.sys
    18:37:39.0086 4644 HECIx64 - ok
    18:37:39.0101 4644 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
    18:37:39.0117 4644 HidBatt - ok
    18:37:39.0148 4644 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
    18:37:39.0164 4644 HidBth - ok
    18:37:39.0179 4644 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
    18:37:39.0195 4644 HidIr - ok
    18:37:39.0226 4644 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\System32\hidserv.dll
    18:37:39.0226 4644 hidserv - ok
    18:37:39.0273 4644 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
    18:37:39.0288 4644 HidUsb - ok
    18:37:39.0335 4644 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
    18:37:39.0382 4644 hkmsvc - ok
    18:37:39.0444 4644 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
    18:37:39.0491 4644 HomeGroupListener - ok
    18:37:39.0538 4644 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
    18:37:39.0554 4644 HomeGroupProvider - ok
    18:37:39.0647 4644 [ BB1FC298BE53AAB1E110F6E786BD8AC5 ] HP Support Assistant Service C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
    18:37:39.0678 4644 HP Support Assistant Service - ok
    18:37:39.0725 4644 [ C930128C8F8FF03D8F8C42B570920D56 ] HP Wireless Assistant Service C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
    18:37:39.0834 4644 HP Wireless Assistant Service - ok
    18:37:39.0866 4644 [ 3DC11A802353401332D49C3CBFBBE5FC ] HPClientSvc C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
    18:37:39.0881 4644 HPClientSvc - ok
    18:37:39.0959 4644 [ 9B7EDD3FE7C211C36E921D34D18A3A0A ] hpqwmiex C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
    18:37:40.0006 4644 hpqwmiex - ok
    18:37:40.0037 4644 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
    18:37:40.0053 4644 HpSAMD - ok
    18:37:40.0100 4644 [ F630DD7564EBB7248A13B1CC774D9EA6 ] HPWMISVC C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
    18:37:40.0115 4644 HPWMISVC - ok
    18:37:40.0162 4644 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
    18:37:40.0209 4644 HTTP - ok
    18:37:40.0240 4644 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
    18:37:40.0256 4644 hwpolicy - ok
    18:37:40.0287 4644 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
    18:37:40.0302 4644 i8042prt - ok
    18:37:40.0334 4644 [ 1384872112E8E7FD5786ECEB8BDDF4C9 ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys
    18:37:40.0334 4644 iaStor - ok
    18:37:40.0365 4644 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
    18:37:40.0396 4644 iaStorV - ok
    18:37:40.0458 4644 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
    18:37:40.0583 4644 idsvc - ok
    18:37:40.0817 4644 [ 677AA5991026A65ADA128C4B59CF2BAD ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys
    18:37:41.0020 4644 igfx - ok
    18:37:41.0051 4644 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
    18:37:41.0051 4644 iirsp - ok
    18:37:41.0145 4644 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
    18:37:41.0176 4644 IKEEXT - ok
    18:37:41.0207 4644 [ DD587A55390ED2295BCE6D36AD567DA9 ] Impcd C:\Windows\system32\DRIVERS\Impcd.sys
    18:37:41.0223 4644 Impcd - ok
    18:37:41.0316 4644 [ D311E2DD59A34079D89C249B2A4D9FDB ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
    18:37:41.0363 4644 IntcAzAudAddService - ok
    18:37:41.0394 4644 [ 58CF58DEE26C909BD6F977B61D246295 ] IntcDAud C:\Windows\system32\DRIVERS\IntcDAud.sys
    18:37:41.0410 4644 IntcDAud - ok
    18:37:41.0426 4644 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
    18:37:41.0441 4644 intelide - ok
    18:37:41.0472 4644 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
    18:37:41.0488 4644 intelppm - ok
    18:37:41.0504 4644 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
    18:37:41.0519 4644 IPBusEnum - ok
    18:37:41.0550 4644 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
    18:37:41.0566 4644 IpFilterDriver - ok
    18:37:41.0644 4644 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
    18:37:41.0660 4644 iphlpsvc - ok
    18:37:41.0722 4644 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
    18:37:41.0738 4644 IPMIDRV - ok
    18:37:41.0753 4644 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
    18:37:41.0784 4644 IPNAT - ok
    18:37:41.0831 4644 [ 78486992AC657AE5065C4A2135838570 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
    18:37:41.0878 4644 iPod Service - ok
    18:37:41.0894 4644 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
    18:37:41.0909 4644 IRENUM - ok
    18:37:41.0940 4644 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
    18:37:41.0956 4644 isapnp - ok
    18:37:42.0003 4644 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
    18:37:42.0050 4644 iScsiPrt - ok
    18:37:42.0065 4644 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
    18:37:42.0081 4644 kbdclass - ok
    18:37:42.0096 4644 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
    18:37:42.0112 4644 kbdhid - ok
    18:37:42.0128 4644 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
    18:37:42.0128 4644 KeyIso - ok
    18:37:42.0174 4644 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
    18:37:42.0190 4644 KSecDD - ok
    18:37:42.0221 4644 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
    18:37:42.0237 4644 KSecPkg - ok
    18:37:42.0268 4644 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
    18:37:42.0268 4644 ksthunk - ok
    18:37:42.0299 4644 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
    18:37:42.0315 4644 KtmRm - ok
    18:37:42.0362 4644 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\System32\srvsvc.dll
    18:37:42.0393 4644 LanmanServer - ok
    18:37:42.0424 4644 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
    18:37:42.0440 4644 LanmanWorkstation - ok
    18:37:42.0533 4644 [ 7772DFAB22611050B79504E671B06E6E ] LBTServ C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
    18:37:42.0580 4644 LBTServ - ok
    18:37:42.0627 4644 [ 241F2648ADF090E2A10095BD6D6F5DCB ] LHidFilt C:\Windows\system32\DRIVERS\LHidFilt.Sys
    18:37:42.0658 4644 LHidFilt - ok
    18:37:42.0658 4644 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
    18:37:42.0689 4644 lltdio - ok
    18:37:42.0720 4644 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
    18:37:42.0767 4644 lltdsvc - ok
    18:37:42.0798 4644 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
    18:37:42.0798 4644 lmhosts - ok
    18:37:42.0830 4644 [ 342ED5A4B3326014438F36D22D803737 ] LMouFilt C:\Windows\system32\DRIVERS\LMouFilt.Sys
    18:37:42.0845 4644 LMouFilt - ok
    18:37:42.0908 4644 [ 7485FBCEF9136F530953575E2977859D ] LMS C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
    18:37:43.0017 4644 LMS - ok
    18:37:43.0064 4644 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
    18:37:43.0079 4644 LSI_FC - ok
    18:37:43.0079 4644 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
    18:37:43.0095 4644 LSI_SAS - ok
    18:37:43.0142 4644 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
    18:37:43.0157 4644 LSI_SAS2 - ok
    18:37:43.0173 4644 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
    18:37:43.0188 4644 LSI_SCSI - ok
    18:37:43.0204 4644 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
    18:37:43.0220 4644 luafv - ok
    18:37:43.0266 4644 [ 79D51E7F5926E8CE1B3EBECEBAE28CFF ] mcdbus C:\Windows\system32\DRIVERS\mcdbus.sys
    18:37:43.0298 4644 mcdbus - ok
    18:37:43.0376 4644 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
    18:37:43.0438 4644 Mcx2Svc - ok
    18:37:43.0485 4644 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
    18:37:43.0485 4644 megasas - ok
    18:37:43.0516 4644 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
    18:37:43.0532 4644 MegaSR - ok
    18:37:43.0563 4644 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
    18:37:43.0578 4644 MMCSS - ok
    18:37:43.0594 4644 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
    18:37:43.0610 4644 Modem - ok
    18:37:43.0625 4644 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
    18:37:43.0625 4644 monitor - ok
    18:37:43.0672 4644 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
    18:37:43.0688 4644 mouclass - ok
    18:37:43.0703 4644 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
    18:37:43.0719 4644 mouhid - ok
    18:37:43.0766 4644 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
    18:37:43.0781 4644 mountmgr - ok
    18:37:43.0828 4644 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
    18:37:43.0859 4644 mpio - ok
    18:37:43.0875 4644 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
    18:37:43.0890 4644 mpsdrv - ok
    18:37:43.0984 4644 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
    18:37:44.0000 4644 MpsSvc - ok
    18:37:44.0031 4644 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
    18:37:44.0046 4644 MRxDAV - ok
    18:37:44.0093 4644 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
    18:37:44.0109 4644 mrxsmb - ok
    18:37:44.0156 4644 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
    18:37:44.0187 4644 mrxsmb10 - ok
    18:37:44.0202 4644 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
    18:37:44.0218 4644 mrxsmb20 - ok
    18:37:44.0265 4644 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
    18:37:44.0280 4644 msahci - ok
    18:37:44.0296 4644 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
    18:37:44.0312 4644 msdsm - ok
    18:37:44.0343 4644 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
    18:37:44.0358 4644 MSDTC - ok
    18:37:44.0421 4644 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
    18:37:44.0436 4644 Msfs - ok
    18:37:44.0452 4644 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
    18:37:44.0468 4644 mshidkmdf - ok
    18:37:44.0483 4644 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
    18:37:44.0483 4644 msisadrv - ok
    18:37:44.0514 4644 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
    18:37:44.0577 4644 MSiSCSI - ok
    18:37:44.0577 4644 msiserver - ok
    18:37:44.0592 4644 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
    18:37:44.0608 4644 MSKSSRV - ok
    18:37:44.0624 4644 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
    18:37:44.0624 4644 MSPCLOCK - ok
    18:37:44.0639 4644 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
    18:37:44.0655 4644 MSPQM - ok
    18:37:44.0702 4644 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
    18:37:44.0733 4644 MsRPC - ok
    18:37:44.0764 4644 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
    18:37:44.0780 4644 mssmbios - ok
    18:37:44.0811 4644 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
    18:37:44.0826 4644 MSTEE - ok
    18:37:44.0826 4644 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
    18:37:44.0842 4644 MTConfig - ok
    18:37:44.0858 4644 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
    18:37:44.0873 4644 Mup - ok
    18:37:44.0889 4644 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
    18:37:44.0889 4644 napagent - ok
    18:37:44.0904 4644 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
    18:37:44.0920 4644 NativeWifiP - ok
    18:37:44.0967 4644 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys
    18:37:45.0014 4644 NDIS - ok
    18:37:45.0029 4644 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
    18:37:45.0045 4644 NdisCap - ok
    18:37:45.0076 4644 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
    18:37:45.0076 4644 NdisTapi - ok
    18:37:45.0123 4644 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
    18:37:45.0138 4644 Ndisuio - ok
    18:37:45.0170 4644 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
    18:37:45.0201 4644 NdisWan - ok
    18:37:45.0248 4644 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
    18:37:45.0263 4644 NDProxy - ok
    18:37:45.0310 4644 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
    18:37:45.0326 4644 NetBIOS - ok
    18:37:45.0372 4644 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
    18:37:45.0388 4644 NetBT - ok
    18:37:45.0435 4644 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
    18:37:45.0435 4644 Netlogon - ok
    18:37:45.0497 4644 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
    18:37:45.0513 4644 Netman - ok
    18:37:45.0560 4644 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
    18:37:45.0700 4644 NetMsmqActivator - ok
    18:37:45.0700 4644 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
    18:37:45.0700 4644 NetPipeActivator - ok
    18:37:45.0716 4644 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
    18:37:45.0716 4644 netprofm - ok
    18:37:45.0762 4644 [ 24CF1304D899124336F67F88F3C15E21 ] netr28x C:\Windows\system32\DRIVERS\netr28x.sys
    18:37:45.0794 4644 netr28x - ok
    18:37:45.0809 4644 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
    18:37:45.0809 4644 NetTcpActivator - ok
    18:37:45.0856 4644 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
    18:37:45.0856 4644 NetTcpPortSharing - ok
    18:37:45.0996 4644 [ 64428DFDAF6E88366CB51F45A79C5F69 ] netw5v64 C:\Windows\system32\DRIVERS\netw5v64.sys
    18:37:46.0137 4644 netw5v64 - ok
    18:37:46.0168 4644 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
    18:37:46.0184 4644 nfrd960 - ok
    18:37:46.0230 4644 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll
    18:37:46.0262 4644 NlaSvc - ok
    18:37:46.0293 4644 [ FBCA3FD51604147770EB4FB53D6144A8 ] NMgamingmsFltr C:\Windows\system32\drivers\NMgamingms.sys
    18:37:46.0308 4644 NMgamingmsFltr - ok
    18:37:46.0324 4644 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
    18:37:46.0340 4644 Npfs - ok
    18:37:46.0371 4644 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
    18:37:46.0386 4644 nsi - ok
    18:37:46.0386 4644 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
    18:37:46.0402 4644 nsiproxy - ok
    18:37:46.0480 4644 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
    18:37:46.0527 4644 Ntfs - ok
    18:37:46.0558 4644 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
    18:37:46.0558 4644 Null - ok
    18:37:46.0605 4644 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
    18:37:46.0620 4644 nvraid - ok
    18:37:46.0636 4644 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
    18:37:46.0652 4644 nvstor - ok
    18:37:46.0683 4644 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
    18:37:46.0698 4644 nv_agp - ok
    18:37:46.0808 4644 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
    18:37:46.0854 4644 odserv - ok
    18:37:46.0901 4644 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
    18:37:46.0917 4644 ohci1394 - ok
    18:37:46.0948 4644 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
    18:37:46.0979 4644 ose - ok
    18:37:47.0010 4644 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
    18:37:47.0010 4644 p2pimsvc - ok
    18:37:47.0073 4644 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
    18:37:47.0104 4644 p2psvc - ok
    18:37:47.0135 4644 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys
    18:37:47.0151 4644 Parport - ok
    18:37:47.0198 4644 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
    18:37:47.0213 4644 partmgr - ok
    18:37:47.0260 4644 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
    18:37:47.0276 4644 pci - ok
    18:37:47.0307 4644 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
    18:37:47.0322 4644 pciide - ok
    18:37:47.0369 4644 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
    18:37:47.0385 4644 pcmcia - ok
    18:37:47.0432 4644 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
    18:37:47.0447 4644 pcw - ok
    18:37:47.0478 4644 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
    18:37:47.0494 4644 PEAUTH - ok
    18:37:47.0588 4644 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
    18:37:47.0619 4644 PerfHost - ok
    18:37:47.0712 4644 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
    18:37:47.0759 4644 pla - ok
    18:37:47.0822 4644 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
    18:37:47.0853 4644 PlugPlay - ok
    18:37:47.0915 4644 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
    18:37:47.0931 4644 PNRPAutoReg - ok
    18:37:47.0946 4644 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
    18:37:47.0946 4644 PNRPsvc - ok
    18:37:47.0978 4644 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
    18:37:47.0993 4644 Power - ok
    18:37:48.0040 4644 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
    18:37:48.0056 4644 PptpMiniport - ok
    18:37:48.0087 4644 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys
    18:37:48.0087 4644 Processor - ok
    18:37:48.0134 4644 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
    18:37:48.0149 4644 ProfSvc - ok
    18:37:48.0165 4644 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
    18:37:48.0165 4644 ProtectedStorage - ok
    18:37:48.0196 4644 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
    18:37:48.0227 4644 Psched - ok
    18:37:48.0274 4644 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
    18:37:48.0321 4644 ql2300 - ok
    18:37:48.0336 4644 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
    18:37:48.0352 4644 ql40xx - ok
    18:37:48.0399 4644 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
    18:37:48.0414 4644 QWAVE - ok
    18:37:48.0446 4644 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
    18:37:48.0461 4644 QWAVEdrv - ok
    18:37:48.0477 4644 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
    18:37:48.0492 4644 RasAcd - ok
    18:37:48.0508 4644 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
    18:37:48.0508 4644 RasAgileVpn - ok
    18:37:48.0524 4644 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
    18:37:48.0586 4644 RasAuto - ok
    18:37:48.0633 4644 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
    18:37:48.0648 4644 Rasl2tp - ok
    18:37:48.0711 4644 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
    18:37:48.0742 4644 RasMan - ok
    18:37:48.0758 4644 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
    18:37:48.0773 4644 RasPppoe - ok
    18:37:48.0804 4644 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
    18:37:48.0820 4644 RasSstp - ok
    18:37:48.0836 4644 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
    18:37:48.0882 4644 rdbss - ok
    18:37:48.0898 4644 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
    18:37:48.0914 4644 rdpbus - ok
    18:37:48.0929 4644 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
    18:37:48.0929 4644 RDPCDD - ok
    18:37:48.0945 4644 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
    18:37:48.0960 4644 RDPENCDD - ok
    18:37:48.0960 4644 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
    18:37:48.0976 4644 RDPREFMP - ok
    18:37:49.0023 4644 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
    18:37:49.0054 4644 RDPWD - ok
    18:37:49.0085 4644 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
    18:37:49.0101 4644 rdyboost - ok
    18:37:49.0163 4644 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
    18:37:49.0179 4644 RemoteRegistry - ok
    18:37:49.0226 4644 [ C1568E17039B2EC2B73A4F880DDD51E5 ] RoxioNow Service C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe
    18:37:49.0366 4644 RoxioNow Service - ok
    18:37:49.0460 4644 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
    18:37:49.0491 4644 RpcEptMapper - ok
    18:37:49.0553 4644 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
    18:37:49.0569 4644 RpcLocator - ok
    18:37:49.0647 4644 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\System32\rpcss.dll
    18:37:49.0662 4644 RpcSs - ok
    18:37:49.0694 4644 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
    18:37:49.0709 4644 rspndr - ok
    18:37:49.0740 4644 [ 22D6B47D004A6568C500680BE2972854 ] RSUSBSTOR C:\Windows\system32\Drivers\RtsUStor.sys
    18:37:49.0756 4644 RSUSBSTOR - ok
    18:37:49.0787 4644 [ 4FBDA07EF0A3097CE14C5CABF723B278 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
    18:37:49.0803 4644 RTL8167 - ok
    18:37:49.0834 4644 [ 4EA7E5DF0CB237156176FA0349E6E87F ] RtVOsdService C:\Program Files\Realtek\RtVOsd\RtVOsdService.exe
    18:37:50.0006 4644 RtVOsdService - ok
    18:37:50.0068 4644 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
    18:37:50.0068 4644 SamSs - ok
    18:37:50.0208 4644 [ BD57B12FA4C21B1CE7DA3570410BF12D ] SAVAdminService C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe
    18:37:50.0208 4644 SAVAdminService - ok
    18:37:50.0286 4644 [ D9057E8CA97628E275979A09EA66B34B ] SAVOnAccess C:\Windows\system32\DRIVERS\savonaccess.sys
    18:37:50.0302 4644 SAVOnAccess - ok
    18:37:50.0333 4644 [ 836AEC603665F6DB83965EE57B3DCF57 ] SAVService C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe
    18:37:50.0333 4644 SAVService - ok
    18:37:50.0396 4644 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
    18:37:50.0427 4644 sbp2port - ok
    18:37:50.0458 4644 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
    18:37:50.0489 4644 SCardSvr - ok
    18:37:50.0505 4644 [ 318CF32B1E89FC8B14695C1179ED1482 ] scfdriver C:\Windows\system32\Drivers\scfdriver.sys
    18:37:50.0520 4644 scfdriver - ok
    18:37:50.0567 4644 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
    18:37:50.0583 4644 scfilter - ok
    18:37:50.0598 4644 [ 9EE12C975F9968ACE96760BD28077F26 ] scflwf C:\Windows\system32\DRIVERS\scflwf.sys
    18:37:50.0614 4644 scflwf - ok
    18:37:50.0661 4644 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
    18:37:50.0676 4644 Schedule - ok
    18:37:50.0708 4644 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
    18:37:50.0708 4644 SCPolicySvc - ok
    18:37:50.0739 4644 [ 111E0EBC0AD79CB0FA014B907B231CF0 ] sdbus C:\Windows\system32\drivers\sdbus.sys
    18:37:50.0754 4644 sdbus - ok
    18:37:50.0801 4644 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
    18:37:50.0817 4644 SDRSVC - ok
    18:37:50.0832 4644 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
    18:37:50.0832 4644 secdrv - ok
    18:37:50.0879 4644 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
    18:37:50.0895 4644 seclogon - ok
    18:37:50.0910 4644 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\system32\sens.dll
    18:37:50.0926 4644 SENS - ok
    18:37:50.0942 4644 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
    18:37:50.0942 4644 SensrSvc - ok
    18:37:50.0957 4644 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
    18:37:50.0973 4644 Serenum - ok
    18:37:50.0988 4644 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
    18:37:51.0004 4644 Serial - ok
    18:37:51.0051 4644 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
    18:37:51.0066 4644 sermouse - ok
    18:37:51.0129 4644 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
    18:37:51.0144 4644 SessionEnv - ok
    18:37:51.0176 4644 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
    18:37:51.0191 4644 sffdisk - ok
    18:37:51.0207 4644 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
    18:37:51.0207 4644 sffp_mmc - ok
    18:37:51.0222 4644 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
    18:37:51.0238 4644 sffp_sd - ok
    18:37:51.0254 4644 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
    18:37:51.0269 4644 sfloppy - ok
    18:37:51.0332 4644 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
    18:37:51.0690 4644 SharedAccess - ok
    18:37:51.0784 4644 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
    18:37:51.0831 4644 ShellHWDetection - ok
    18:37:51.0862 4644 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
    18:37:51.0878 4644 SiSRaid2 - ok
    18:37:51.0893 4644 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
    18:37:51.0909 4644 SiSRaid4 - ok
    18:37:51.0956 4644 [ 3E587DBBDFF938DDE5D4CE4047BE9041 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
    18:37:52.0221 4644 SkypeUpdate - ok
    18:37:52.0268 4644 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
    18:37:52.0299 4644 Smb - ok
    18:37:52.0330 4644 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
    18:37:52.0346 4644 SNMPTRAP - ok
    18:37:52.0408 4644 [ B5774835A13B5ED31378AABD07746262 ] Sophos AutoUpdate Service C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe
    18:37:52.0455 4644 Sophos AutoUpdate Service - ok
    18:37:52.0486 4644 [ 76FC1A16C0A2EA7E8DDA595155CDDFD9 ] Sophos Client Firewall C:\Program Files (x86)\Sophos\Sophos Client Firewall\SCFService.exe
    18:37:52.0486 4644 Sophos Client Firewall - ok
    18:37:52.0502 4644 [ AFFFB4F19EF1BFAAE31238B3C8E92252 ] Sophos Client Firewall Manager C:\Program Files (x86)\Sophos\Sophos Client Firewall\SCFManager.exe
    18:37:52.0502 4644 Sophos Client Firewall Manager - ok
    18:37:52.0517 4644 [ 69FBE35A8165ADBC313AA7F64B868CA1 ] SophosBootDriver C:\Windows\system32\DRIVERS\SophosBootDriver.sys
    18:37:52.0533 4644 SophosBootDriver - ok
    18:37:52.0548 4644 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
    18:37:52.0564 4644 spldr - ok
    18:37:52.0626 4644 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
    18:37:52.0642 4644 Spooler - ok
    18:37:52.0767 4644 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
    18:37:52.0923 4644 sppsvc - ok
    18:37:52.0970 4644 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
    18:37:52.0985 4644 sppuinotify - ok
    18:37:53.0016 4644 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
    18:37:53.0048 4644 srv - ok
    18:37:53.0063 4644 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
    18:37:53.0079 4644 srv2 - ok
    18:37:53.0110 4644 [ 0C4540311E11664B245A263E1154CEF8 ] SrvHsfHDA C:\Windows\system32\DRIVERS\VSTAZL6.SYS
    18:37:53.0126 4644 SrvHsfHDA - ok
    18:37:53.0172 4644 [ 02071D207A9858FBE3A48CBFD59C4A04 ] SrvHsfV92 C:\Windows\system32\DRIVERS\VSTDPV6.SYS
    18:37:53.0204 4644 SrvHsfV92 - ok
    18:37:53.0219 4644 [ 18E40C245DBFAF36FD0134A7EF2DF396 ] SrvHsfWinac C:\Windows\system32\DRIVERS\VSTCNXT6.SYS
    18:37:53.0235 4644 SrvHsfWinac - ok
    18:37:53.0282 4644 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
    18:37:53.0313 4644 srvnet - ok
    18:37:53.0344 4644 [ ED161B91FDF7EAA39469D72D463D5F4E ] sscdbus C:\Windows\system32\DRIVERS\sscdbus.sys
    18:37:53.0360 4644 sscdbus - ok
    18:37:53.0375 4644 [ 4CB09E77593DBD8D7AF33B37375CA715 ] sscdmdfl C:\Windows\system32\DRIVERS\sscdmdfl.sys
    18:37:53.0391 4644 sscdmdfl - ok
    18:37:53.0406 4644 [ C7B4CF53497A6E5363F3439427663882 ] sscdmdm C:\Windows\system32\DRIVERS\sscdmdm.sys
    18:37:53.0422 4644 sscdmdm - ok
    18:37:53.0438 4644 [ 05FFA552F578E27AB2D41B6828DB477F ] sscdserd C:\Windows\system32\DRIVERS\sscdserd.sys
    18:37:53.0453 4644 sscdserd - ok
    18:37:53.0484 4644 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
    18:37:53.0500 4644 SSDPSRV - ok
    18:37:53.0516 4644 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
    18:37:53.0531 4644 SstpSvc - ok
    18:37:53.0562 4644 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
    18:37:53.0578 4644 stexstor - ok
    18:37:53.0625 4644 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
    18:37:53.0640 4644 stisvc - ok
    18:37:53.0672 4644 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\drivers\swenum.sys
    18:37:53.0687 4644 swenum - ok
    18:37:53.0750 4644 [ AA5CA4A5F87C1576FF550A0372B3ED84 ] swi_service C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe
    18:37:53.0952 4644 swi_service - ok
    18:37:53.0984 4644 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
    18:37:53.0999 4644 swprv - ok
    18:37:54.0062 4644 [ 961CFAC2A5318E212F459D651F28E0A4 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
    18:37:54.0108 4644 SynTP - ok
    18:37:54.0186 4644 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
    18:37:54.0296 4644 SysMain - ok
    18:37:54.0327 4644 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
    18:37:54.0342 4644 TabletInputService - ok
    18:37:54.0374 4644 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
    18:37:54.0389 4644 TapiSrv - ok
    18:37:54.0405 4644 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
    18:37:54.0420 4644 TBS - ok
    18:37:54.0498 4644 [ DB74544B75566C974815E79A62433F29 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
    18:37:54.0545 4644 Tcpip - ok
    18:37:54.0561 4644 [ DB74544B75566C974815E79A62433F29 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
    18:37:54.0576 4644 TCPIP6 - ok
    18:37:54.0608 4644 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
    18:37:54.0639 4644 tcpipreg - ok
    18:37:54.0670 4644 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
    18:37:54.0686 4644 TDPIPE - ok
    18:37:54.0701 4644 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
    18:37:54.0717 4644 TDTCP - ok
    18:37:54.0764 4644 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
    18:37:54.0764 4644 tdx - ok
    18:37:54.0810 4644 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\drivers\termdd.sys
    18:37:54.0842 4644 TermDD - ok
    18:37:54.0873 4644 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
    18:37:54.0904 4644 TermService - ok
    18:37:54.0935 4644 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
    18:37:54.0935 4644 Themes - ok
    18:37:54.0966 4644 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
    18:37:54.0966 4644 THREADORDER - ok
    18:37:54.0982 4644 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
    18:37:54.0998 4644 TrkWks - ok
    18:37:55.0044 4644 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
    18:37:55.0076 4644 TrustedInstaller - ok
    18:37:55.0122 4644 [ 4CE278FC9671BA81A138D70823FCAA09 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
    18:37:55.0138 4644 tssecsrv - ok
    18:37:55.0169 4644 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
    18:37:55.0200 4644 TsUsbFlt - ok
    18:37:55.0263 4644 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
    18:37:55.0278 4644 tunnel - ok
    18:37:55.0388 4644 [ E0A9B5B92097211A57FD16D27F2B3750 ] TVersityMediaServer C:\ProgramData\TVersity\Media Server\MediaServer.exe
    18:37:55.0512 4644 TVersityMediaServer - ok
    18:37:55.0559 4644 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
    18:37:55.0575 4644 uagp35 - ok
    18:37:55.0653 4644 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
    18:37:55.0684 4644 udfs - ok
    18:37:55.0731 4644 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
    18:37:55.0746 4644 UI0Detect - ok
    18:37:55.0762 4644 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
    18:37:55.0778 4644 uliagpkx - ok
    18:37:55.0824 4644 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\drivers\umbus.sys
    18:37:55.0840 4644 umbus - ok
    18:37:55.0871 4644 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
    18:37:55.0887 4644 UmPass - ok
    18:37:55.0996 4644 [ 765F2DD351BA064F657751D8D75E58C0 ] UNS C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
    18:37:56.0308 4644 UNS - ok
    18:37:56.0355 4644 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
    18:37:56.0417 4644 upnphost - ok
    18:37:56.0448 4644 [ 43228F8EDD1B0BCDD3145AD246E63D39 ] USBAAPL64 C:\Windows\system32\Drivers\usbaapl64.sys
    18:37:56.0464 4644 USBAAPL64 - ok
    18:37:56.0495 4644 [ 82E8F44688E6FAC57B5B7C6FC7ADBC2A ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
    18:37:56.0511 4644 usbaudio - ok
    18:37:56.0558 4644 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
    18:37:56.0573 4644 usbccgp - ok
    18:37:56.0604 4644 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys
    18:37:56.0620 4644 usbcir - ok
    18:37:56.0667 4644 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\Windows\system32\drivers\usbehci.sys
    18:37:56.0682 4644 usbehci - ok
    18:37:56.0729 4644 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
    18:37:56.0760 4644 usbhub - ok
    18:37:56.0776 4644 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\Windows\system32\drivers\usbohci.sys
    18:37:56.0792 4644 usbohci - ok
    18:37:56.0823 4644 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
    18:37:56.0838 4644 usbprint - ok
    18:37:56.0870 4644 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
    18:37:56.0885 4644 USBSTOR - ok
    18:37:56.0916 4644 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
    18:37:56.0932 4644 usbuhci - ok
    18:37:56.0948 4644 [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
    18:37:56.0963 4644 usbvideo - ok
    18:37:56.0979 4644 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
    18:37:56.0994 4644 UxSms - ok
    18:37:57.0010 4644 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe
    18:37:57.0010 4644 VaultSvc - ok
    18:37:57.0026 4644 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
    18:37:57.0041 4644 vdrvroot - ok
    18:37:57.0104 4644 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
    18:37:57.0150 4644 vds - ok
    18:37:57.0166 4644 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
    18:37:57.0182 4644 vga - ok
    18:37:57.0197 4644 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
    18:37:57.0197 4644 VgaSave - ok
    18:37:57.0244 4644 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
    18:37:57.0275 4644 vhdmp - ok
    18:37:57.0338 4644 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
    18:37:57.0353 4644 viaide - ok
    18:37:57.0369 4644 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
    18:37:57.0384 4644 volmgr - ok
    18:37:57.0416 4644 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
    18:37:57.0431 4644 volmgrx - ok
    18:37:57.0447 4644 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
    18:37:57.0478 4644 volsnap - ok
    18:37:57.0509 4644 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
    18:37:57.0525 4644 vsmraid - ok
    18:37:57.0603 4644 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
    18:37:57.0650 4644 VSS - ok
    18:37:57.0681 4644 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
    18:37:57.0712 4644 vwifibus - ok
    18:37:57.0728 4644 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
    18:37:57.0728 4644 vwififlt - ok
    18:37:57.0790 4644 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
    18:37:57.0821 4644 W32Time - ok
    18:37:57.0837 4644 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
    18:37:57.0852 4644 WacomPen - ok
    18:37:57.0884 4644 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
    18:37:57.0915 4644 WANARP - ok
    18:37:57.0930 4644 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
    18:37:57.0930 4644 Wanarpv6 - ok
    18:37:57.0977 4644 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
    18:37:58.0180 4644 WatAdminSvc - ok
    18:37:58.0305 4644 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
    18:37:58.0367 4644 wbengine - ok
    18:37:58.0398 4644 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
    18:37:58.0414 4644 WbioSrvc - ok
    18:37:58.0476 4644 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
    18:37:58.0508 4644 wcncsvc - ok
    18:37:58.0508 4644 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
    18:37:58.0523 4644 WcsPlugInService - ok
    18:37:58.0554 4644 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys
    18:37:58.0570 4644 Wd - ok
    18:37:58.0617 4644 [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
    18:37:58.0648 4644 Wdf01000 - ok
    18:37:58.0695 4644 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
    18:37:58.0710 4644 WdiServiceHost - ok
    18:37:58.0710 4644 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
    18:37:58.0710 4644 WdiSystemHost - ok
    18:37:58.0773 4644 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll
    18:37:58.0788 4644 WebClient - ok
    18:37:58.0820 4644 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
    18:37:58.0835 4644 Wecsvc - ok
    18:37:58.0851 4644 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
    18:37:58.0882 4644 wercplsupport - ok
    18:37:58.0898 4644 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
    18:37:58.0898 4644 WerSvc - ok
    18:37:58.0929 4644 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
    18:37:58.0929 4644 WfpLwf - ok
    18:37:58.0944 4644 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
    18:37:58.0960 4644 WIMMount - ok
    18:37:58.0991 4644 WinDefend - ok
    18:37:59.0022 4644 WinHttpAutoProxySvc - ok
    18:37:59.0100 4644 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
    18:37:59.0132 4644 Winmgmt - ok
    18:37:59.0210 4644 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
    18:37:59.0256 4644 WinRM - ok
    18:37:59.0334 4644 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
    18:37:59.0350 4644 WinUsb - ok
    18:37:59.0412 4644 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
    18:37:59.0428 4644 Wlansvc - ok
    18:37:59.0568 4644 [ 357CABBF155AFD1D3926E62539D2A3A7 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
    18:37:59.0646 4644 wlidsvc - ok
    18:37:59.0709 4644 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
    18:37:59.0724 4644 WmiAcpi - ok
    18:37:59.0756 4644 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
    18:37:59.0771 4644 wmiApSrv - ok
    18:37:59.0787 4644 WMPNetworkSvc - ok
    18:37:59.0818 4644 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
    18:37:59.0834 4644 WPCSvc - ok
    18:37:59.0865 4644 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
    18:37:59.0880 4644 WPDBusEnum - ok
    18:37:59.0912 4644 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
    18:37:59.0912 4644 ws2ifsl - ok
    18:37:59.0958 4644 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\system32\wscsvc.dll
    18:37:59.0974 4644 wscsvc - ok
    18:37:59.0974 4644 WSearch - ok
    18:38:00.0114 4644 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
    18:38:00.0177 4644 wuauserv - ok
    18:38:00.0208 4644 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
    18:38:00.0224 4644 WudfPf - ok
    18:38:00.0239 4644 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
    18:38:00.0255 4644 WUDFRd - ok
    18:38:00.0286 4644 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
    18:38:00.0302 4644 wudfsvc - ok
    18:38:00.0333 4644 [ FE90B750AB808FB9DD8FBB428B5FF83B ] WwanSvc C:\Windows\System32\wwansvc.dll
    18:38:00.0348 4644 WwanSvc - ok
    18:38:00.0395 4644 [ B3EEACF62445E24FBB2CD4B0FB4DB026 ] yukonw7 C:\Windows\system32\DRIVERS\yk62x64.sys
    18:38:00.0411 4644 yukonw7 - ok
    18:38:00.0411 4644 ================ Scan global ===============================
    18:38:00.0473 4644 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
    18:38:00.0536 4644 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
    18:38:00.0567 4644 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
    18:38:00.0582 4644 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
    18:38:00.0629 4644 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
    18:38:00.0645 4644 [Global] - ok
    18:38:00.0645 4644 ================ Scan MBR ==================================
    18:38:00.0660 4644 [ 9A7B058D9E264CB98DAA7E79767B78B2 ] \Device\Harddisk0\DR0
    18:38:00.0894 4644 \Device\Harddisk0\DR0 - ok
    18:38:00.0894 4644 ================ Scan VBR ==================================
    18:38:00.0910 4644 [ 81FCF81DD3C505B6551D767E4A040DE5 ] \Device\Harddisk0\DR0\Partition1
    18:38:00.0910 4644 \Device\Harddisk0\DR0\Partition1 - ok
    18:38:00.0910 4644 [ E77C4A39F96CD48ABC17FC0B4C262282 ] \Device\Harddisk0\DR0\Partition2
    18:38:00.0926 4644 \Device\Harddisk0\DR0\Partition2 - ok
    18:38:00.0941 4644 [ 55C02B10354C16807D230095948937D7 ] \Device\Harddisk0\DR0\Partition3
    18:38:00.0957 4644 \Device\Harddisk0\DR0\Partition3 - ok
    18:38:00.0972 4644 [ A6C19230C9AED34175CD287B50D22AD6 ] \Device\Harddisk0\DR0\Partition4
    18:38:00.0972 4644 \Device\Harddisk0\DR0\Partition4 - ok
    18:38:00.0972 4644 ============================================================
    18:38:00.0972 4644 Scan finished
    18:38:00.0972 4644 ============================================================
    18:38:00.0988 3924 Detected object count: 0
    18:38:00.0988 3924 Actual detected object count: 0
    18:42:46.0769 2180 ============================================================
    18:42:46.0769 2180 Scan started
    18:42:46.0769 2180 Mode: Manual; SigCheck; TDLFS;
    18:42:46.0769 2180 ============================================================
    18:42:46.0988 2180 ================ Scan system memory ========================
    18:42:46.0988 2180 System memory - ok
    18:42:46.0988 2180 ================ Scan services =============================
    18:42:47.0175 2180 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
    18:42:47.0269 2180 1394ohci - ok
    18:42:47.0284 2180 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
    18:42:47.0315 2180 ACPI - ok
    18:42:47.0315 2180 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
    18:42:47.0425 2180 AcpiPmi - ok
    18:42:47.0518 2180 [ ADDA5E1951B90D3D23C56D3CF0622ADC ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
    18:42:47.0549 2180 AdobeARMservice - ok
    18:42:47.0581 2180 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
    18:42:47.0596 2180 adp94xx - ok
    18:42:47.0612 2180 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
    18:42:47.0643 2180 adpahci - ok
    18:42:47.0674 2180 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
    18:42:47.0674 2180 adpu320 - ok
    18:42:47.0705 2180 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
    18:42:47.0799 2180 AeLookupSvc - ok
    18:42:47.0861 2180 [ D1E343BC00136CE03C4D403194D06A80 ] AERTFilters C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
    18:42:47.0877 2180 AERTFilters - ok
    18:42:47.0924 2180 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys
    18:42:47.0986 2180 AFD - ok
    18:42:48.0033 2180 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
    18:42:48.0049 2180 agp440 - ok
    18:42:48.0080 2180 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
    18:42:48.0127 2180 ALG - ok
    18:42:48.0142 2180 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
    18:42:48.0158 2180 aliide - ok
    18:42:48.0173 2180 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
    18:42:48.0173 2180 amdide - ok
    18:42:48.0205 2180 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
    18:42:48.0267 2180 AmdK8 - ok
    18:42:48.0283 2180 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
    18:42:48.0298 2180 AmdPPM - ok
    18:42:48.0345 2180 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
    18:42:48.0345 2180 amdsata - ok
    18:42:48.0392 2180 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
    18:42:48.0392 2180 amdsbs - ok
    18:42:48.0423 2180 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
    18:42:48.0439 2180 amdxata - ok
    18:42:48.0485 2180 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
    18:42:48.0610 2180 AppID - ok
    18:42:48.0641 2180 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
    18:42:48.0735 2180 AppIDSvc - ok
    18:42:48.0766 2180 [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo C:\Windows\System32\appinfo.dll
    18:42:48.0813 2180 Appinfo - ok
    18:42:48.0891 2180 [ 4FE5C6D40664AE07BE5105874357D2ED ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    18:42:48.0907 2180 Apple Mobile Device - ok
    18:42:48.0938 2180 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys
    18:42:48.0953 2180 arc - ok
    18:42:48.0985 2180 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
    18:42:49.0000 2180 arcsas - ok
    18:42:49.0094 2180 [ 9217D874131AE6FF8F642F124F00A555 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
    18:42:49.0125 2180 aspnet_state - ok
    18:42:49.0141 2180 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
    18:42:49.0187 2180 AsyncMac - ok
    18:42:49.0219 2180 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
    18:42:49.0219 2180 atapi - ok
    18:42:49.0281 2180 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
    18:42:49.0375 2180 AudioEndpointBuilder - ok
    18:42:49.0390 2180 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
    18:42:49.0437 2180 AudioSrv - ok
    18:42:49.0468 2180 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
    18:42:49.0593 2180 AxInstSV - ok
    18:42:49.0640 2180 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys
    18:42:49.0718 2180 b06bdrv - ok
    18:42:49.0733 2180 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
    18:42:49.0780 2180 b57nd60a - ok
    18:42:49.0811 2180 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
    18:42:49.0889 2180 BDESVC - ok
    18:42:49.0921 2180 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
    18:42:49.0967 2180 Beep - ok
    18:42:50.0030 2180 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
    18:42:50.0123 2180 BFE - ok
    18:42:50.0155 2180 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\system32\qmgr.dll
    18:42:50.0217 2180 BITS - ok
    18:42:50.0248 2180 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
    18:42:50.0279 2180 blbdrive - ok
    18:42:50.0342 2180 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
    18:42:50.0373 2180 Bonjour Service - ok
    18:42:50.0404 2180 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
    18:42:50.0482 2180 bowser - ok
    18:42:50.0513 2180 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
    18:42:50.0591 2180 BrFiltLo - ok
    18:42:50.0607 2180 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
    18:42:50.0623 2180 BrFiltUp - ok
    18:42:50.0638 2180 [ 5C2F352A4E961D72518261257AAE204B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
    18:42:50.0685 2180 BridgeMP - ok
    18:42:50.0716 2180 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
    18:42:50.0732 2180 Browser - ok
    18:42:50.0763 2180 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
    18:42:50.0841 2180 Brserid - ok
    18:42:50.0872 2180 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
    18:42:50.0935 2180 BrSerWdm - ok
    18:42:50.0950 2180 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
    18:42:50.0997 2180 BrUsbMdm - ok
    18:42:51.0013 2180 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
    18:42:51.0044 2180 BrUsbSer - ok
    18:42:51.0044 2180 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
    18:42:51.0091 2180 BTHMODEM - ok
    18:42:51.0122 2180 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
    18:42:51.0200 2180 bthserv - ok
    18:42:51.0215 2180 catchme - ok
    18:42:51.0247 2180 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
    18:42:51.0293 2180 cdfs - ok
    18:42:51.0325 2180 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
    18:42:51.0371 2180 cdrom - ok
    18:42:51.0403 2180 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
    18:42:51.0481 2180 CertPropSvc - ok
    18:42:51.0527 2180 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys
    18:42:51.0543 2180 circlass - ok
    18:42:51.0574 2180 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
    18:42:51.0590 2180 CLFS - ok
    18:42:51.0637 2180 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
    18:42:51.0652 2180 clr_optimization_v2.0.50727_32 - ok
    18:42:51.0699 2180 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
    18:42:51.0715 2180 clr_optimization_v2.0.50727_64 - ok
    18:42:51.0793 2180 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
    18:42:51.0808 2180 clr_optimization_v4.0.30319_32 - ok
    18:42:51.0824 2180 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
    18:42:51.0839 2180 clr_optimization_v4.0.30319_64 - ok
    18:42:51.0871 2180 [ 50F92C943F18B070F166D019DFAB3D9A ] clwvd C:\Windows\system32\DRIVERS\clwvd.sys
    18:42:51.0886 2180 clwvd - ok
    18:42:51.0902 2180 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
    18:42:51.0949 2180 CmBatt - ok
    18:42:51.0995 2180 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
    18:42:52.0027 2180 cmdide - ok
    18:42:52.0058 2180 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\Windows\system32\Drivers\cng.sys
    18:42:52.0089 2180 CNG - ok
    18:42:52.0120 2180 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
    18:42:52.0120 2180 Compbatt - ok
    18:42:52.0167 2180 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
    18:42:52.0229 2180 CompositeBus - ok
    18:42:52.0229 2180 COMSysApp - ok
    18:42:52.0261 2180 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
    18:42:52.0276 2180 crcdisk - ok
    18:42:52.0323 2180 [ 6B400F211BEE880A37A1ED0368776BF4 ] CryptSvc C:\Windows\system32\cryptsvc.dll
    18:42:52.0339 2180 CryptSvc - ok
    18:42:52.0401 2180 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
    18:42:52.0448 2180 DcomLaunch - ok
    18:42:52.0479 2180 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
    18:42:52.0557 2180 defragsvc - ok
    18:42:52.0588 2180 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
    18:42:52.0666 2180 DfsC - ok
    18:42:52.0697 2180 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
    18:42:52.0760 2180 Dhcp - ok
    18:42:52.0791 2180 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
    18:42:52.0869 2180 discache - ok
    18:42:52.0900 2180 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys
    18:42:52.0931 2180 Disk - ok
    18:42:52.0978 2180 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
    18:42:53.0056 2180 Dnscache - ok
    18:42:53.0103 2180 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
    18:42:53.0181 2180 dot3svc - ok
    18:42:53.0197 2180 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
    18:42:53.0290 2180 DPS - ok
    18:42:53.0321 2180 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
    18:42:53.0353 2180 drmkaud - ok
    18:42:53.0399 2180 [ 3EEF0B3489EDBF725564E17C77CABAFD ] dsNcAdpt C:\Windows\system32\DRIVERS\dsNcAdpt.sys
    18:42:53.0415 2180 dsNcAdpt ( UnsignedFile.Multi.Generic ) - warning
    18:42:53.0415 2180 dsNcAdpt - detected UnsignedFile.Multi.Generic (1)
    18:42:53.0477 2180 [ AF2E16242AA723F68F461B6EAE2EAD3D ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
    18:42:53.0509 2180 DXGKrnl - ok
    18:42:53.0540 2180 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
    18:42:53.0602 2180 EapHost - ok
    18:42:53.0711 2180 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys
    18:42:53.0758 2180 ebdrv - ok
    18:42:53.0805 2180 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
    18:42:53.0805 2180 EFS - ok
    18:42:53.0899 2180 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
    18:42:53.0992 2180 ehRecvr - ok
    18:42:54.0023 2180 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
    18:42:54.0086 2180 ehSched - ok
    18:42:54.0101 2180 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
    18:42:54.0133 2180 elxstor - ok
    18:42:54.0148 2180 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
    18:42:54.0195 2180 ErrDev - ok
    18:42:54.0242 2180 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
    18:42:54.0320 2180 EventSystem - ok
    18:42:54.0335 2180 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
    18:42:54.0398 2180 exfat - ok
    18:42:54.0413 2180 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
    18:42:54.0460 2180 fastfat - ok
    18:42:54.0523 2180 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
    18:42:54.0569 2180 Fax - ok
    18:42:54.0585 2180 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys
    18:42:54.0647 2180 fdc - ok
    18:42:54.0679 2180 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
    18:42:54.0725 2180 fdPHost - ok
    18:42:54.0741 2180 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
    18:42:54.0772 2180 FDResPub - ok
    18:42:54.0788 2180 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
    18:42:54.0803 2180 FileInfo - ok
    18:42:54.0819 2180 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
    18:42:54.0866 2180 Filetrace - ok
    18:42:54.0897 2180 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
    18:42:54.0913 2180 flpydisk - ok
    18:42:54.0944 2180 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
    18:42:54.0975 2180 FltMgr - ok
    18:42:55.0037 2180 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\Windows\system32\FntCache.dll
    18:42:55.0084 2180 FontCache - ok
    18:42:55.0147 2180 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
    18:42:55.0162 2180 FontCache3.0.0.0 - ok
    18:42:55.0193 2180 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
    18:42:55.0209 2180 FsDepends - ok
    18:42:55.0240 2180 [ B16B626996C74B564005BA855C5DEE90 ] fssfltr C:\Windows\system32\DRIVERS\fssfltr.sys
    18:42:55.0256 2180 fssfltr - ok
    18:42:55.0349 2180 [ 812E1BA5C52A78F13EA6AA10DF708B1D ] fsssvc C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe
    18:42:55.0396 2180 fsssvc - ok
    18:42:55.0427 2180 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
    18:42:55.0443 2180 Fs_Rec - ok
    18:42:55.0474 2180 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
    18:42:55.0490 2180 fvevol - ok
    18:42:55.0505 2180 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
    18:42:55.0521 2180 gagp30kx - ok
    18:42:55.0583 2180 [ D154305DE6090E6E84E525F84BB08A06 ] GameConsoleService C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe
    18:42:55.0599 2180 GameConsoleService - ok
    18:42:55.0630 2180 [ 8E98D21EE06192492A5671A6144D092F ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
    18:42:55.0646 2180 GEARAspiWDM - ok
    18:42:55.0693 2180 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
    18:42:55.0771 2180 gpsvc - ok
    18:42:55.0802 2180 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
    18:42:55.0817 2180 hcw85cir - ok
    18:42:55.0864 2180 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
    18:42:55.0895 2180 HdAudAddService - ok
    18:42:55.0911 2180 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
    18:42:55.0927 2180 HDAudBus - ok
    18:42:55.0958 2180 [ B6AC71AAA2B10848F57FC49D55A651AF ] HECIx64 C:\Windows\system32\DRIVERS\HECIx64.sys
    18:42:55.0973 2180 HECIx64 - ok
    18:42:55.0989 2180 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
    18:42:56.0005 2180 HidBatt - ok
    18:42:56.0020 2180 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
    18:42:56.0067 2180 HidBth - ok
    18:42:56.0083 2180 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
    18:42:56.0129 2180 HidIr - ok
    18:42:56.0176 2180 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\System32\hidserv.dll
    18:42:56.0254 2180 hidserv - ok
    18:42:56.0285 2180 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
    18:42:56.0301 2180 HidUsb - ok
    18:42:56.0348 2180 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
    18:42:56.0441 2180 hkmsvc - ok
    18:42:56.0473 2180 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
    18:42:56.0551 2180 HomeGroupListener - ok
    18:42:56.0582 2180 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
    18:42:56.0629 2180 HomeGroupProvider - ok
    18:42:56.0707 2180 [ BB1FC298BE53AAB1E110F6E786BD8AC5 ] HP Support Assistant Service C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
    18:42:56.0722 2180 HP Support Assistant Service ( UnsignedFile.Multi.Generic ) - warning
    18:42:56.0722 2180 HP Support Assistant Service - detected UnsignedFile.Multi.Generic (1)
    18:42:56.0769 2180 [ C930128C8F8FF03D8F8C42B570920D56 ] HP Wireless Assistant Service C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
    18:42:56.0785 2180 HP Wireless Assistant Service - ok
    18:42:56.0816 2180 [ 3DC11A802353401332D49C3CBFBBE5FC ] HPClientSvc C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
    18:42:56.0831 2180 HPClientSvc - ok
    18:42:56.0909 2180 [ 9B7EDD3FE7C211C36E921D34D18A3A0A ] hpqwmiex C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
    18:42:56.0972 2180 hpqwmiex - ok
    18:42:57.0003 2180 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
    18:42:57.0019 2180 HpSAMD - ok
    18:42:57.0050 2180 [ F630DD7564EBB7248A13B1CC774D9EA6 ] HPWMISVC C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
    18:42:57.0065 2180 HPWMISVC - ok
    18:42:57.0128 2180 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
    18:42:57.0206 2180 HTTP - ok
    18:42:57.0237 2180 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
    18:42:57.0253 2180 hwpolicy - ok
    18:42:57.0299 2180 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
    18:42:57.0331 2180 i8042prt - ok
    18:42:57.0362 2180 [ 1384872112E8E7FD5786ECEB8BDDF4C9 ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys
    18:42:57.0377 2180 iaStor - ok
    18:42:57.0409 2180 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
    18:42:57.0440 2180 iaStorV - ok
    18:42:57.0502 2180 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
    18:42:57.0533 2180 idsvc - ok
    18:42:57.0767 2180 [ 677AA5991026A65ADA128C4B59CF2BAD ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys
    18:42:57.0986 2180 igfx - ok
    18:42:58.0001 2180 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
    18:42:58.0017 2180 iirsp - ok
    18:42:58.0079 2180 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
    18:42:58.0157 2180 IKEEXT - ok
    18:42:58.0189 2180 [ DD587A55390ED2295BCE6D36AD567DA9 ] Impcd C:\Windows\system32\DRIVERS\Impcd.sys
    18:42:58.0251 2180 Impcd - ok
    18:42:58.0376 2180 [ D311E2DD59A34079D89C249B2A4D9FDB ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
    18:42:58.0423 2180 IntcAzAudAddService - ok
    18:42:58.0454 2180 [ 58CF58DEE26C909BD6F977B61D246295 ] IntcDAud C:\Windows\system32\DRIVERS\IntcDAud.sys
    18:42:58.0516 2180 IntcDAud - ok
    18:42:58.0532 2180 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
    18:42:58.0547 2180 intelide - ok
    18:42:58.0594 2180 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
    18:42:58.0625 2180 intelppm - ok
    18:42:58.0657 2180 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
    18:42:58.0735 2180 IPBusEnum - ok
    18:42:58.0766 2180 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
    18:42:58.0859 2180 IpFilterDriver - ok
    18:42:58.0891 2180 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
    18:42:58.0937 2180 iphlpsvc - ok
    18:42:58.0969 2180 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
    18:42:59.0015 2180 IPMIDRV - ok
    18:42:59.0031 2180 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
    18:42:59.0109 2180 IPNAT - ok
    18:42:59.0156 2180 [ 78486992AC657AE5065C4A2135838570 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
    18:42:59.0203 2180 iPod Service - ok
    18:42:59.0218 2180 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
    18:42:59.0327 2180 IRENUM - ok
    18:42:59.0359 2180 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
    18:42:59.0374 2180 isapnp - ok
    18:42:59.0421 2180 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
    18:42:59.0437 2180 iScsiPrt - ok
    18:42:59.0452 2180 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
    18:42:59.0468 2180 kbdclass - ok
    18:42:59.0483 2180 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
    18:42:59.0499 2180 kbdhid - ok
    18:42:59.0515 2180 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
    18:42:59.0530 2180 KeyIso - ok
    18:42:59.0577 2180 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
    18:42:59.0593 2180 KSecDD - ok
    18:42:59.0624 2180 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
    18:42:59.0639 2180 KSecPkg - ok
    18:42:59.0671 2180 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
    18:42:59.0717 2180 ksthunk - ok
    18:42:59.0749 2180 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
    18:42:59.0795 2180 KtmRm - ok
    18:42:59.0842 2180 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\System32\srvsvc.dll
    18:42:59.0920 2180 LanmanServer - ok
    18:42:59.0951 2180 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
    18:43:00.0045 2180 LanmanWorkstation - ok
    18:43:00.0139 2180 [ 7772DFAB22611050B79504E671B06E6E ] LBTServ C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
    18:43:00.0185 2180 LBTServ - ok
    18:43:00.0232 2180 [ 241F2648ADF090E2A10095BD6D6F5DCB ] LHidFilt C:\Windows\system32\DRIVERS\LHidFilt.Sys
    18:43:00.0248 2180 LHidFilt - ok
    18:43:00.0263 2180 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
    18:43:00.0310 2180 lltdio - ok
    18:43:00.0388 2180 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
    18:43:00.0482 2180 lltdsvc - ok
    18:43:00.0513 2180 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
    18:43:00.0544 2180 lmhosts - ok
    18:43:00.0560 2180 [ 342ED5A4B3326014438F36D22D803737 ] LMouFilt C:\Windows\system32\DRIVERS\LMouFilt.Sys
    18:43:00.0575 2180 LMouFilt - ok
    18:43:00.0638 2180 [ 7485FBCEF9136F530953575E2977859D ] LMS C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
    18:43:00.0653 2180 LMS - ok
    18:43:00.0700 2180 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
    18:43:00.0716 2180 LSI_FC - ok
    18:43:00.0731 2180 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
    18:43:00.0747 2180 LSI_SAS - ok
    18:43:00.0778 2180 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
    18:43:00.0794 2180 LSI_SAS2 - ok
    18:43:00.0809 2180 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
    18:43:00.0825 2180 LSI_SCSI - ok
    18:43:00.0856 2180 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
    18:43:00.0919 2180 luafv - ok
    18:43:00.0950 2180 [ 79D51E7F5926E8CE1B3EBECEBAE28CFF ] mcdbus C:\Windows\system32\DRIVERS\mcdbus.sys
    18:43:00.0997 2180 mcdbus - ok
    18:43:01.0028 2180 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
    18:43:01.0090 2180 Mcx2Svc - ok
    18:43:01.0121 2180 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
    18:43:01.0137 2180 megasas - ok
    18:43:01.0168 2180 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
    18:43:01.0184 2180 MegaSR - ok
    18:43:01.0199 2180 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
    18:43:01.0246 2180 MMCSS - ok
    18:43:01.0277 2180 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
    18:43:01.0340 2180 Modem - ok
    18:43:01.0371 2180 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
    18:43:01.0402 2180 monitor - ok
    18:43:01.0433 2180 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
    18:43:01.0449 2180 mouclass - ok
    18:43:01.0465 2180 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
    18:43:01.0480 2180 mouhid - ok
    18:43:01.0511 2180 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
    18:43:01.0527 2180 mountmgr - ok
    18:43:01.0558 2180 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
    18:43:01.0558 2180 mpio - ok
    18:43:01.0574 2180 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
    18:43:01.0621 2180 mpsdrv - ok
    18:43:01.0667 2180 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
    18:43:01.0730 2180 MpsSvc - ok
    18:43:01.0777 2180 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
    18:43:01.0823 2180 MRxDAV - ok
    18:43:01.0855 2180 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
    18:43:01.0917 2180 mrxsmb - ok
    18:43:01.0964 2180 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
    18:43:01.0995 2180 mrxsmb10 - ok
    18:43:02.0026 2180 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
    18:43:02.0042 2180 mrxsmb20 - ok
    18:43:02.0089 2180 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
    18:43:02.0104 2180 msahci - ok
    18:43:02.0120 2180 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
    18:43:02.0135 2180 msdsm - ok
    18:43:02.0167 2180 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
    18:43:02.0198 2180 MSDTC - ok
    18:43:02.0245 2180 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
    18:43:02.0291 2180 Msfs - ok
    18:43:02.0307 2180 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
    18:43:02.0354 2180 mshidkmdf - ok
    18:43:02.0385 2180 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
    18:43:02.0385 2180 msisadrv - ok
    18:43:02.0416 2180 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
    18:43:02.0479 2180 MSiSCSI - ok
    18:43:02.0479 2180 msiserver - ok
    18:43:02.0510 2180 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
    18:43:02.0572 2180 MSKSSRV - ok
    18:43:02.0588 2180 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
    18:43:02.0635 2180 MSPCLOCK - ok
    18:43:02.0635 2180 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
    18:43:02.0697 2180 MSPQM - ok
    18:43:02.0744 2180 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
    18:43:02.0759 2180 MsRPC - ok
    18:43:02.0806 2180 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
    18:43:02.0822 2180 mssmbios - ok
    18:43:02.0837 2180 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
    18:43:02.0915 2180 MSTEE - ok
    18:43:02.0931 2180 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
    18:43:02.0962 2180 MTConfig - ok
    18:43:02.0993 2180 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
    18:43:03.0009 2180 Mup - ok
    18:43:03.0025 2180 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
    18:43:03.0103 2180 napagent - ok
    18:43:03.0134 2180 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
    18:43:03.0165 2180 NativeWifiP - ok
    18:43:03.0227 2180 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys
    18:43:03.0259 2180 NDIS - ok
    18:43:03.0290 2180 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
    18:43:03.0321 2180 NdisCap - ok
    18:43:03.0352 2180 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
    18:43:03.0399 2180 NdisTapi - ok
    18:43:03.0430 2180 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
    18:43:03.0524 2180 Ndisuio - ok
    18:43:03.0571 2180 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
    18:43:03.0649 2180 NdisWan - ok
    18:43:03.0695 2180 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
    18:43:03.0758 2180 NDProxy - ok
    18:43:03.0773 2180 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
    18:43:03.0820 2180 NetBIOS - ok
    18:43:03.0867 2180 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
    18:43:03.0961 2180 NetBT - ok
    18:43:03.0976 2180 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
    18:43:03.0992 2180 Netlogon - ok
    18:43:04.0023 2180 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
    18:43:04.0070 2180 Netman - ok
    18:43:04.0101 2180 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
    18:43:04.0117 2180 NetMsmqActivator - ok
    18:43:04.0117 2180 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
    18:43:04.0132 2180 NetPipeActivator - ok
    18:43:04.0163 2180 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
    18:43:04.0226 2180 netprofm - ok
    18:43:04.0288 2180 [ 24CF1304D899124336F67F88F3C15E21 ] netr28x C:\Windows\system32\DRIVERS\netr28x.sys
    18:43:04.0304 2180 netr28x - ok
    18:43:04.0319 2180 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
    18:43:04.0335 2180 NetTcpActivator - ok
    18:43:04.0335 2180 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
    18:43:04.0351 2180 NetTcpPortSharing - ok
    18:43:04.0507 2180 [ 64428DFDAF6E88366CB51F45A79C5F69 ] netw5v64 C:\Windows\system32\DRIVERS\netw5v64.sys
    18:43:04.0585 2180 netw5v64 - ok
    18:43:04.0616 2180 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
    18:43:04.0631 2180 nfrd960 - ok
    18:43:04.0663 2180 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll
    18:43:04.0678 2180 NlaSvc - ok
    18:43:04.0709 2180 [ FBCA3FD51604147770EB4FB53D6144A8 ] NMgamingmsFltr C:\Windows\system32\drivers\NMgamingms.sys
    18:43:04.0772 2180 NMgamingmsFltr - ok
    18:43:04.0787 2180 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
    18:43:04.0834 2180 Npfs - ok
    18:43:04.0865 2180 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
    18:43:04.0928 2180 nsi - ok
    18:43:04.0959 2180 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
    18:43:05.0053 2180 nsiproxy - ok
    18:43:05.0131 2180 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
    18:43:05.0177 2180 Ntfs - ok
    18:43:05.0193 2180 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
    18:43:05.0240 2180 Null - ok
    18:43:05.0271 2180 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
    18:43:05.0302 2180 nvraid - ok
    18:43:05.0318 2180 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
    18:43:05.0333 2180 nvstor - ok
    18:43:05.0349 2180 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
    18:43:05.0365 2180 nv_agp - ok
    18:43:05.0458 2180 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
    18:43:05.0489 2180 odserv - ok
    18:43:05.0521 2180 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
    18:43:05.0552 2180 ohci1394 - ok
    18:43:05.0567 2180 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
    18:43:05.0583 2180 ose - ok
    18:43:05.0614 2180 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
    18:43:05.0692 2180 p2pimsvc - ok
    18:43:05.0708 2180 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
    18:43:05.0723 2180 p2psvc - ok
    18:43:05.0755 2180 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys
    18:43:05.0755 2180 Parport - ok
    18:43:05.0801 2180 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
    18:43:05.0833 2180 partmgr - ok
    18:43:05.0864 2180 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
    18:43:05.0895 2180 pci - ok
    18:43:05.0911 2180 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
    18:43:05.0911 2180 pciide - ok
    18:43:05.0957 2180 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
    18:43:05.0973 2180 pcmcia - ok
    18:43:05.0989 2180 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
    18:43:06.0004 2180 pcw - ok
    18:43:06.0035 2180 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
    18:43:06.0113 2180 PEAUTH - ok
    18:43:06.0238 2180 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
    18:43:06.0285 2180 PerfHost - ok
    18:43:06.0363 2180 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
    18:43:06.0457 2180 pla - ok
    18:43:06.0503 2180 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
    18:43:06.0566 2180 PlugPlay - ok
    18:43:06.0581 2180 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
    18:43:06.0597 2180 PNRPAutoReg - ok
    18:43:06.0613 2180 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
    18:43:06.0644 2180 PNRPsvc - ok
    18:43:06.0659 2180 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
    18:43:06.0737 2180 Power - ok
    18:43:06.0769 2180 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
    18:43:06.0862 2180 PptpMiniport - ok
    18:43:06.0893 2180 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys
    18:43:06.0940 2180 Processor - ok
    18:43:06.0987 2180 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
    18:43:07.0034 2180 ProfSvc - ok
    18:43:07.0049 2180 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
    18:43:07.0065 2180 ProtectedStorage - ok
    18:43:07.0096 2180 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
    18:43:07.0159 2180 Psched - ok
    18:43:07.0221 2180 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
    18:43:07.0268 2180 ql2300 - ok
    18:43:07.0283 2180 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
    18:43:07.0299 2180 ql40xx - ok
    18:43:07.0330 2180 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
    18:43:07.0393 2180 QWAVE - ok
    18:43:07.0439 2180 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
    18:43:07.0486 2180 QWAVEdrv - ok
    18:43:07.0502 2180 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
    18:43:07.0564 2180 RasAcd - ok
    18:43:07.0595 2180 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
    18:43:07.0642 2180 RasAgileVpn - ok
    18:43:07.0673 2180 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
    18:43:07.0736 2180 RasAuto - ok
    18:43:07.0767 2180 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
    18:43:07.0845 2180 Rasl2tp - ok
    18:43:07.0892 2180 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
    18:43:07.0970 2180 RasMan - ok
    18:43:07.0985 2180 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
    18:43:08.0032 2180 RasPppoe - ok
    18:43:08.0048 2180 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
    18:43:08.0095 2180 RasSstp - ok
    18:43:08.0110 2180 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
    18:43:08.0157 2180 rdbss - ok
    18:43:08.0173 2180 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
    18:43:08.0204 2180 rdpbus - ok
    18:43:08.0219 2180 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
    18:43:08.0297 2180 RDPCDD - ok
    18:43:08.0313 2180 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
    18:43:08.0391 2180 RDPENCDD - ok
    18:43:08.0422 2180 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
    18:43:08.0453 2180 RDPREFMP - ok
    18:43:08.0500 2180 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
    18:43:08.0563 2180 RDPWD - ok
    18:43:08.0594 2180 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
    18:43:08.0625 2180 rdyboost - ok
    18:43:08.0656 2180 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
    18:43:08.0703 2180 RemoteRegistry - ok
    18:43:08.0750 2180 [ C1568E17039B2EC2B73A4F880DDD51E5 ] RoxioNow Service C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe
    18:43:08.0765 2180 RoxioNow Service - ok
    18:43:08.0765 2180 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
    18:43:08.0828 2180 RpcEptMapper - ok
    18:43:08.0859 2180 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
    18:43:08.0875 2180 RpcLocator - ok
    18:43:08.0921 2180 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\System32\rpcss.dll
    18:43:08.0968 2180 RpcSs - ok
    18:43:08.0999 2180 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
    18:43:09.0077 2180 rspndr - ok
    18:43:09.0109 2180 [ 22D6B47D004A6568C500680BE2972854 ] RSUSBSTOR C:\Windows\system32\Drivers\RtsUStor.sys
    18:43:09.0124 2180 RSUSBSTOR - ok
    18:43:09.0140 2180 [ 4FBDA07EF0A3097CE14C5CABF723B278 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
    18:43:09.0155 2180 RTL8167 - ok
    18:43:09.0187 2180 [ 4EA7E5DF0CB237156176FA0349E6E87F ] RtVOsdService C:\Program Files\Realtek\RtVOsd\RtVOsdService.exe
    18:43:09.0202 2180 RtVOsdService ( UnsignedFile.Multi.Generic ) - warning
    18:43:09.0202 2180 RtVOsdService - detected UnsignedFile.Multi.Generic (1)
    18:43:09.0218 2180 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
    18:43:09.0218 2180 SamSs - ok
    18:43:09.0374 2180 [ BD57B12FA4C21B1CE7DA3570410BF12D ] SAVAdminService C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe
    18:43:09.0389 2180 SAVAdminService - ok
    18:43:09.0405 2180 [ D9057E8CA97628E275979A09EA66B34B ] SAVOnAccess C:\Windows\system32\DRIVERS\savonaccess.sys
    18:43:09.0421 2180 SAVOnAccess - ok
    18:43:09.0452 2180 [ 836AEC603665F6DB83965EE57B3DCF57 ] SAVService C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe
    18:43:09.0467 2180 SAVService - ok
    18:43:09.0499 2180 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
    18:43:09.0530 2180 sbp2port - ok
    18:43:09.0561 2180 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
    18:43:09.0608 2180 SCardSvr - ok
    18:43:09.0639 2180 [ 318CF32B1E89FC8B14695C1179ED1482 ] scfdriver C:\Windows\system32\Drivers\scfdriver.sys
    18:43:09.0639 2180 scfdriver - ok
    18:43:09.0686 2180 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
    18:43:09.0733 2180 scfilter - ok
    18:43:09.0748 2180 [ 9EE12C975F9968ACE96760BD28077F26 ] scflwf C:\Windows\system32\DRIVERS\scflwf.sys
    18:43:09.0748 2180 scflwf - ok
    18:43:09.0811 2180 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
    18:43:09.0873 2180 Schedule - ok
    18:43:09.0904 2180 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
    18:43:09.0951 2180 SCPolicySvc - ok
    18:43:09.0982 2180 [ 111E0EBC0AD79CB0FA014B907B231CF0 ] sdbus C:\Windows\system32\drivers\sdbus.sys
    18:43:10.0045 2180 sdbus - ok
    18:43:10.0091 2180 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
    18:43:10.0154 2180 SDRSVC - ok
    18:43:10.0169 2180 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
    18:43:10.0232 2180 secdrv - ok
    18:43:10.0263 2180 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
    18:43:10.0310 2180 seclogon - ok
    18:43:10.0341 2180 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\system32\sens.dll
    18:43:10.0419 2180 SENS - ok
    18:43:10.0435 2180 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
    18:43:10.0497 2180 SensrSvc - ok
    18:43:10.0513 2180 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
    18:43:10.0544 2180 Serenum - ok
    18:43:10.0575 2180 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
    18:43:10.0591 2180 Serial - ok
    18:43:10.0637 2180 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
    18:43:10.0669 2180 sermouse - ok
    18:43:10.0715 2180 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
    18:43:10.0793 2180 SessionEnv - ok
    18:43:10.0825 2180 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
    18:43:10.0887 2180 sffdisk - ok
    18:43:10.0903 2180 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
    18:43:10.0934 2180 sffp_mmc - ok
    18:43:10.0965 2180 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
    18:43:10.0981 2180 sffp_sd - ok
    18:43:11.0027 2180 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
    18:43:11.0059 2180 sfloppy - ok
    18:43:11.0090 2180 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
    18:43:11.0168 2180 SharedAccess - ok
    18:43:11.0215 2180 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
    18:43:11.0293 2180 ShellHWDetection - ok
    18:43:11.0308 2180 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
    18:43:11.0324 2180 SiSRaid2 - ok
    18:43:11.0339 2180 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
    18:43:11.0355 2180 SiSRaid4 - ok
    18:43:11.0402 2180 [ 3E587DBBDFF938DDE5D4CE4047BE9041 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
    18:43:11.0433 2180 SkypeUpdate - ok
    18:43:11.0464 2180 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
    18:43:11.0527 2180 Smb - ok
    18:43:11.0542 2180 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
    18:43:11.0589 2180 SNMPTRAP - ok
    18:43:11.0667 2180 [ B5774835A13B5ED31378AABD07746262 ] Sophos AutoUpdate Service C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe
    18:43:11.0698 2180 Sophos AutoUpdate Service - ok
    18:43:11.0729 2180 [ 76FC1A16C0A2EA7E8DDA595155CDDFD9 ] Sophos Client Firewall C:\Program Files (x86)\Sophos\Sophos Client Firewall\SCFService.exe
    18:43:11.0729 2180 Sophos Client Firewall - ok
    18:43:11.0745 2180 [ AFFFB4F19EF1BFAAE31238B3C8E92252 ] Sophos Client Firewall Manager C:\Program Files (x86)\Sophos\Sophos Client Firewall\SCFManager.exe
    18:43:11.0761 2180 Sophos Client Firewall Manager - ok
    18:43:11.0761 2180 [ 69FBE35A8165ADBC313AA7F64B868CA1 ] SophosBootDriver C:\Windows\system32\DRIVERS\SophosBootDriver.sys
    18:43:11.0776 2180 SophosBootDriver - ok
    18:43:11.0807 2180 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
    18:43:11.0807 2180 spldr - ok
    18:43:11.0870 2180 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
    18:43:11.0885 2180 Spooler - ok
    18:43:11.0995 2180 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
    18:43:12.0104 2180 sppsvc - ok
    18:43:12.0119 2180 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
    18:43:12.0197 2180 sppuinotify - ok
    18:43:12.0244 2180 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
    18:43:12.0275 2180 srv - ok
    18:43:12.0291 2180 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
    18:43:12.0338 2180 srv2 - ok
    18:43:12.0385 2180 [ 0C4540311E11664B245A263E1154CEF8 ] SrvHsfHDA C:\Windows\system32\DRIVERS\VSTAZL6.SYS
    18:43:12.0431 2180 SrvHsfHDA - ok
    18:43:12.0494 2180 [ 02071D207A9858FBE3A48CBFD59C4A04 ] SrvHsfV92 C:\Windows\system32\DRIVERS\VSTDPV6.SYS
    18:43:12.0572 2180 SrvHsfV92 - ok
    18:43:12.0603 2180 [ 18E40C245DBFAF36FD0134A7EF2DF396 ] SrvHsfWinac C:\Windows\system32\DRIVERS\VSTCNXT6.SYS
    18:43:12.0634 2180 SrvHsfWinac - ok
    18:43:12.0665 2180 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
    18:43:12.0697 2180 srvnet - ok
    18:43:12.0743 2180 [ ED161B91FDF7EAA39469D72D463D5F4E ] sscdbus C:\Windows\system32\DRIVERS\sscdbus.sys
    18:43:12.0743 2180 sscdbus - ok
    18:43:12.0759 2180 [ 4CB09E77593DBD8D7AF33B37375CA715 ] sscdmdfl C:\Windows\system32\DRIVERS\sscdmdfl.sys
    18:43:12.0775 2180 sscdmdfl - ok
    18:43:12.0790 2180 [ C7B4CF53497A6E5363F3439427663882 ] sscdmdm C:\Windows\system32\DRIVERS\sscdmdm.sys
    18:43:12.0806 2180 sscdmdm - ok
    18:43:12.0821 2180 [ 05FFA552F578E27AB2D41B6828DB477F ] sscdserd C:\Windows\system32\DRIVERS\sscdserd.sys
    18:43:12.0821 2180 sscdserd - ok
    18:43:12.0853 2180 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
    18:43:12.0899 2180 SSDPSRV - ok
    18:43:12.0915 2180 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
    18:43:12.0946 2180 SstpSvc - ok
    18:43:12.0993 2180 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
    18:43:13.0009 2180 stexstor - ok
    18:43:13.0055 2180 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
    18:43:13.0102 2180 stisvc - ok
    18:43:13.0133 2180 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\drivers\swenum.sys
    18:43:13.0149 2180 swenum - ok
    18:43:13.0211 2180 [ AA5CA4A5F87C1576FF550A0372B3ED84 ] swi_service C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe
    18:43:13.0289 2180 swi_service - ok
    18:43:13.0305 2180 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
    18:43:13.0383 2180 swprv - ok
    18:43:13.0430 2180 [ 961CFAC2A5318E212F459D651F28E0A4 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
    18:43:13.0477 2180 SynTP - ok
    18:43:13.0586 2180 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
    18:43:13.0664 2180 SysMain - ok
    18:43:13.0695 2180 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
    18:43:13.0742 2180 TabletInputService - ok
    18:43:13.0757 2180 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
    18:43:13.0804 2180 TapiSrv - ok
    18:43:13.0867 2180 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
    18:43:13.0913 2180 TBS - ok
    18:43:13.0991 2180 [ DB74544B75566C974815E79A62433F29 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
    18:43:14.0038 2180 Tcpip - ok
    18:43:14.0054 2180 [ DB74544B75566C974815E79A62433F29 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
    18:43:14.0101 2180 TCPIP6 - ok
    18:43:14.0132 2180 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
    18:43:14.0179 2180 tcpipreg - ok
    18:43:14.0225 2180 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
    18:43:14.0288 2180 TDPIPE - ok
    18:43:14.0335 2180 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
    18:43:14.0381 2180 TDTCP - ok
    18:43:14.0413 2180 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
    18:43:14.0475 2180 tdx - ok
    18:43:14.0506 2180 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\drivers\termdd.sys
    18:43:14.0522 2180 TermDD - ok
    18:43:14.0537 2180 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
    18:43:14.0600 2180 TermService - ok
    18:43:14.0615 2180 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
    18:43:14.0647 2180 Themes - ok
    18:43:14.0678 2180 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
    18:43:14.0725 2180 THREADORDER - ok
    18:43:14.0740 2180 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
    18:43:14.0803 2180 TrkWks - ok
    18:43:14.0865 2180 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
    18:43:14.0927 2180 TrustedInstaller - ok
    18:43:14.0974 2180 [ 4CE278FC9671BA81A138D70823FCAA09 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
    18:43:15.0037 2180 tssecsrv - ok
    18:43:15.0068 2180 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
    18:43:15.0130 2180 TsUsbFlt - ok
    18:43:15.0177 2180 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
    18:43:15.0239 2180 tunnel - ok
    18:43:15.0349 2180 [ E0A9B5B92097211A57FD16D27F2B3750 ] TVersityMediaServer C:\ProgramData\TVersity\Media Server\MediaServer.exe
    18:43:15.0364 2180 TVersityMediaServer ( UnsignedFile.Multi.Generic ) - warning
    18:43:15.0364 2180 TVersityMediaServer - detected UnsignedFile.Multi.Generic (1)
    18:43:15.0395 2180 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
    18:43:15.0411 2180 uagp35 - ok
    18:43:15.0458 2180 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
    18:43:15.0536 2180 udfs - ok
    18:43:15.0583 2180 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
    18:43:15.0598 2180 UI0Detect - ok
    18:43:15.0614 2180 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
    18:43:15.0629 2180 uliagpkx - ok
    18:43:15.0676 2180 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\drivers\umbus.sys
    18:43:15.0707 2180 umbus - ok
    18:43:15.0739 2180 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
    18:43:15.0785 2180 UmPass - ok
    18:43:15.0926 2180 [ 765F2DD351BA064F657751D8D75E58C0 ] UNS C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
    18:43:15.0973 2180 UNS - ok
    18:43:16.0004 2180 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
    18:43:16.0066 2180 upnphost - ok
    18:43:16.0097 2180 [ 43228F8EDD1B0BCDD3145AD246E63D39 ] USBAAPL64 C:\Windows\system32\Drivers\usbaapl64.sys
    18:43:16.0129 2180 USBAAPL64 ( UnsignedFile.Multi.Generic ) - warning
    18:43:16.0129 2180 USBAAPL64 - detected UnsignedFile.Multi.Generic (1)
    18:43:16.0175 2180 [ 82E8F44688E6FAC57B5B7C6FC7ADBC2A ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
    18:43:16.0207 2180 usbaudio - ok
    18:43:16.0238 2180 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
    18:43:16.0300 2180 usbccgp - ok
    18:43:16.0347 2180 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys
    18:43:16.0378 2180 usbcir - ok
    18:43:16.0394 2180 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\Windows\system32\drivers\usbehci.sys
    18:43:16.0441 2180 usbehci - ok
    18:43:16.0472 2180 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
    18:43:16.0519 2180 usbhub - ok
    18:43:16.0534 2180 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\Windows\system32\drivers\usbohci.sys
    18:43:16.0550 2180 usbohci - ok
    18:43:16.0581 2180 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
    18:43:16.0628 2180 usbprint - ok
    18:43:16.0675 2180 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
    18:43:16.0737 2180 USBSTOR - ok
    18:43:16.0768 2180 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
    18:43:16.0815 2180 usbuhci - ok
    18:43:16.0846 2180 [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
    18:43:16.0877 2180 usbvideo - ok
    18:43:16.0893 2180 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
    18:43:16.0987 2180 UxSms - ok
    18:43:17.0002 2180 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe
    18:43:17.0018 2180 VaultSvc - ok
    18:43:17.0049 2180 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
    18:43:17.0065 2180 vdrvroot - ok
    18:43:17.0096 2180 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
    18:43:17.0174 2180 vds - ok
    18:43:17.0205 2180 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
    18:43:17.0221 2180 vga - ok
    18:43:17.0236 2180 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
    18:43:17.0299 2180 VgaSave - ok
    18:43:17.0345 2180 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
    18:43:17.0377 2180 vhdmp - ok
    18:43:17.0408 2180 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
    18:43:17.0423 2180 viaide - ok
    18:43:17.0439 2180 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
    18:43:17.0455 2180 volmgr - ok
    18:43:17.0486 2180 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
    18:43:17.0501 2180 volmgrx - ok
    18:43:17.0517 2180 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
    18:43:17.0533 2180 volsnap - ok
    18:43:17.0564 2180 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
    18:43:17.0579 2180 vsmraid - ok
    18:43:17.0657 2180 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
    18:43:17.0735 2180 VSS - ok
    18:43:17.0767 2180 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
    18:43:17.0782 2180 vwifibus - ok
    18:43:17.0798 2180 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
    18:43:17.0845 2180 vwififlt - ok
    18:43:17.0876 2180 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
    18:43:17.0938 2180 W32Time - ok
    18:43:17.0969 2180 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
    18:43:17.0985 2180 WacomPen - ok
    18:43:18.0032 2180 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
    18:43:18.0110 2180 WANARP - ok
    18:43:18.0110 2180 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
    18:43:18.0141 2180 Wanarpv6 - ok
    18:43:18.0219 2180 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
    18:43:18.0266 2180 WatAdminSvc - ok
    18:43:18.0344 2180 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
    18:43:18.0437 2180 wbengine - ok
    18:43:18.0469 2180 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
    18:43:18.0484 2180 WbioSrvc - ok
    18:43:18.0531 2180 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
    18:43:18.0593 2180 wcncsvc - ok
    18:43:18.0625 2180 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
    18:43:18.0687 2180 WcsPlugInService - ok
    18:43:18.0703 2180 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys
    18:43:18.0718 2180 Wd - ok
    18:43:18.0765 2180 [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
    18:43:18.0796 2180 Wdf01000 - ok
    18:43:18.0812 2180 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
    18:43:18.0874 2180 WdiServiceHost - ok
    18:43:18.0890 2180 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
    18:43:18.0905 2180 WdiSystemHost - ok
    18:43:18.0937 2180 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll
    18:43:18.0999 2180 WebClient - ok
    18:43:19.0046 2180 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
    18:43:19.0139 2180 Wecsvc - ok
    18:43:19.0155 2180 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
    18:43:19.0217 2180 wercplsupport - ok
    18:43:19.0233 2180 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
    18:43:19.0280 2180 WerSvc - ok
    18:43:19.0295 2180 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
    18:43:19.0342 2180 WfpLwf - ok
    18:43:19.0358 2180 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
    18:43:19.0358 2180 WIMMount - ok
    18:43:19.0389 2180 WinDefend - ok
    18:43:19.0405 2180 WinHttpAutoProxySvc - ok
    18:43:19.0451 2180 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
    18:43:19.0514 2180 Winmgmt - ok
    18:43:19.0592 2180 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
    18:43:19.0685 2180 WinRM - ok
    18:43:19.0732 2180 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
    18:43:19.0779 2180 WinUsb - ok
    18:43:19.0826 2180 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
    18:43:19.0888 2180 Wlansvc - ok
    18:43:20.0029 2180 [ 357CABBF155AFD1D3926E62539D2A3A7 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
    18:43:20.0091 2180 wlidsvc - ok
    18:43:20.0122 2180 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
    18:43:20.0169 2180 WmiAcpi - ok
    18:43:20.0216 2180 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
    18:43:20.0247 2180 wmiApSrv - ok
    18:43:20.0294 2180 WMPNetworkSvc - ok
    18:43:20.0309 2180 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
    18:43:20.0372 2180 WPCSvc - ok
    18:43:20.0434 2180 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
    18:43:20.0465 2180 WPDBusEnum - ok
    18:43:20.0497 2180 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
    18:43:20.0559 2180 ws2ifsl - ok
    18:43:20.0575 2180 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\system32\wscsvc.dll
    18:43:20.0637 2180 wscsvc - ok
    18:43:20.0637 2180 WSearch - ok
    18:43:20.0746 2180 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
    18:43:20.0793 2180 wuauserv - ok
    18:43:20.0824 2180 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
    18:43:20.0887 2180 WudfPf - ok
    18:43:20.0902 2180 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
    18:43:20.0949 2180 WUDFRd - ok
    18:43:20.0980 2180 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
    18:43:21.0027 2180 wudfsvc - ok
    18:43:21.0058 2180 [ FE90B750AB808FB9DD8FBB428B5FF83B ] WwanSvc C:\Windows\System32\wwansvc.dll
    18:43:21.0105 2180 WwanSvc - ok
    18:43:21.0152 2180 [ B3EEACF62445E24FBB2CD4B0FB4DB026 ] yukonw7 C:\Windows\system32\DRIVERS\yk62x64.sys
    18:43:21.0167 2180 yukonw7 - ok
    18:43:21.0167 2180 ================ Scan global ===============================
    18:43:21.0199 2180 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
    18:43:21.0245 2180 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
    18:43:21.0261 2180 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
    18:43:21.0277 2180 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
    18:43:21.0292 2180 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
    18:43:21.0308 2180 [Global] - ok
    18:43:21.0308 2180 ================ Scan MBR ==================================
    18:43:21.0323 2180 [ 9A7B058D9E264CB98DAA7E79767B78B2 ] \Device\Harddisk0\DR0
    18:43:21.0635 2180 \Device\Harddisk0\DR0 - ok
    18:43:21.0635 2180 ================ Scan VBR ==================================
    18:43:21.0635 2180 [ 81FCF81DD3C505B6551D767E4A040DE5 ] \Device\Harddisk0\DR0\Partition1
    18:43:21.0635 2180 \Device\Harddisk0\DR0\Partition1 - ok
    18:43:21.0667 2180 [ E77C4A39F96CD48ABC17FC0B4C262282 ] \Device\Harddisk0\DR0\Partition2
    18:43:21.0667 2180 \Device\Harddisk0\DR0\Partition2 - ok
    18:43:21.0698 2180 [ 55C02B10354C16807D230095948937D7 ] \Device\Harddisk0\DR0\Partition3
    18:43:21.0698 2180 \Device\Harddisk0\DR0\Partition3 - ok
    18:43:21.0713 2180 [ A6C19230C9AED34175CD287B50D22AD6 ] \Device\Harddisk0\DR0\Partition4
    18:43:21.0713 2180 \Device\Harddisk0\DR0\Partition4 - ok
    18:43:21.0713 2180 ============================================================
    18:43:21.0713 2180 Scan finished
    18:43:21.0713 2180 ============================================================
    18:43:21.0729 4156 Detected object count: 5
    18:43:21.0729 4156 Actual detected object count: 5
    18:43:57.0233 4156 dsNcAdpt ( UnsignedFile.Multi.Generic ) - skipped by user
    18:43:57.0233 4156 dsNcAdpt ( UnsignedFile.Multi.Generic ) - User select action: Skip
    18:43:57.0233 4156 HP Support Assistant Service ( UnsignedFile.Multi.Generic ) - skipped by user
    18:43:57.0233 4156 HP Support Assistant Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
    18:43:57.0233 4156 RtVOsdService ( UnsignedFile.Multi.Generic ) - skipped by user
    18:43:57.0233 4156 RtVOsdService ( UnsignedFile.Multi.Generic ) - User select action: Skip
    18:43:57.0249 4156 TVersityMediaServer ( UnsignedFile.Multi.Generic ) - skipped by user
    18:43:57.0249 4156 TVersityMediaServer ( UnsignedFile.Multi.Generic ) - User select action: Skip
    18:43:57.0249 4156 USBAAPL64 ( UnsignedFile.Multi.Generic ) - skipped by user
    18:43:57.0249 4156 USBAAPL64 ( UnsignedFile.Multi.Generic ) - User select action: Skip
    18:50:06.0380 4556 Deinitialize success

I did not find the following:
C:\ProgramData\3165958.reg
C:\ProgramData\3165958.bat
  • 0

#6
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,007 posts
  • MVP
Combofix took out the three malware files:

c:\programdata\3165958.bat
c:\programdata\3165958.pad
c:\programdata\3165958.reg

Were you able to install Firefox?

Are you still not able to download?
  • 0

#7
edge1334

edge1334

    Member

  • Topic Starter
  • Member
  • PipPip
  • 30 posts
Ron,
I am now able to download firefox and other files. Thanks for your help with this issue.

Dan
  • 0

#8
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,007 posts
  • MVP
Unless you see other problems I think we are done and can clean up

Copy the following:

:Commands
[CLEARALLRESTOREPOINTS]
[Reboot]

Right click on OTL and Run As Administrator. In the Custom Scans/Fixes box at the bottom, paste in the copied text (Ctrl + v) and then hit Run Fix.

That will get the last of the malware off the system.



You can uninstall or delete any tools we had you download and their logs.

To uninstall combofix, copy the next line:

"%userprofile%\Desktop\combofix.exe" /Uninstall

Pause your anti-virus.

Start, All Programs, Accessories then right click on Command Prompt and Run As Administrator.
then right click, Paste, then hit Enter.

OTL has a cleanup tab but DO NOT USE IT!. There are reports that it leaves the PC unbootable. Instead just delete OTL.exe and the folder c:\_OTL.

To hide hidden files again:

Vista or Win7

# Open the Control Panel menu and click Folder Options.
# After the new window appears select the View tab.
# Remove the check in the checkbox labeled Display the contents of system folders.
# Under the Hidden files and folders section select the radio button labeled Do not Show hidden files and folders.
# Check the checkbox labeled Hide protected operating system files.
# Press the Apply button and then the OK button and exit My Computer.

Also make sure you have the latest versions of any adobe.com products you use like Shockwave, Flash or Acrobat.

Whether you use adobe reader, acrobat or fox-it to read pdf files you need to disable Javascript in the program. There is an exploit out there now that can use it to get on your PC. For Adobe Reader: Start, All Programs, Adobe Reader, Edit, Preferences, Click on Javascript in the left column and uncheck Enable Acrobat Javascript. OK Close program. It's the same for Foxit reader except you uncheck Enable Javascript Actions.

To help keep your programs up-to-date you should download and run the UpdateChecker:
http://www.filehippo.../updatechecker/
(You don't need to download Betas and if there is a program you don't use you can just uninstall it rather than update it. Exception is MSN messenger which appears to be part of Windows.)
If you get a blocked program notice after installing updatechecker then change it to not run at start then manually run it once a week.
Seems to work best if Firefox is the default browser. Windows always hides its icon so you need to unhide it. Click on the up arrow to the left of the clock. Then click on Customize. Maximize the window so you can see all of the options. Scroll Down and find the File Hippo UpdateChecker and change its Behaviors to Show Icon and Notifications. OK. When you reboot you should see the icon. It will take it a minute to finish checking then it will put up a bubble if you need to update something. Click on the bubble and it should open in your browser. (Seems to work best if it uses Firefox. If you do not use Firefox as your default browser then right click on the icon and click on Settings. Then on Results. Change the Open Results in Default Browser to Custom Browser and then select the line that has Firefox.exe in it. While there, also check Hide Beta Versions. OK. ) You will see a list of programs that have updates with green down arrows next to them. You do not need to download any Beta Versions. There is an option Settings to Hide Beta Versions. I do not advise updating Windows Messenger unless you really use it so I right click on the Icon and Customize Results then find Microsoft Messenger and change Show All Releases to Hide All Releases. OK.

You can also try Secunia PSI http://secunia.com/v...l/download_psi/ Same kind of info. You don't need both.
If you use Firefox then get the AdBlock Plus Add-on. WOT (Web of Trust) is another you might want to try.
The equivalent to AdBlock Plus for IE is called Simple Adblock and you should install it too: http://simple-adblock.com/
The free version only blocks 200 ads a day so another reason to use Firefox or Chrome.

If Firefox is slow loading make sure it only has the current Java add-on. Then download and run Speedy Fox.
http://www.crystalidea.com/speedyfox . You can run it any time that Firefox seems slow.

Be warned: If you use Limewire, utorrent or any of the other P2P programs you will almost certain be coming back to the Malware Removal forum. If you must use P2P then submit any files you get to http://virustotal.com before you open them.


If you have a router, log on to it today and change the default password! If using a Wireless router you really should be using encryption on the link. Use the strongest (newest) encryption method that your router and PC wireless adapter support especially if you own a business. See http://www.king5.com...-120637284.html and http://www.seattlepi...ted-1344185.php for why encryption is important. If you don't know how, visit the router maker's website. They all have detailed step by step instructions or a wizard you can download.

Special note on Java. Old Java versions should be removed after first clearing the Java Cache by following the instructions in:
http://www.java.com/...lugin_cache.xml
Then remove the old versions by going to Control Panel, Programs and Features and Uninstall all Java programs which are not Java Version 7 update 25 or better. These may call themselves: Java Runtime, Runtime Environment, Runtime, JRE, Java Virtual Machine, Virtual Machine, Java VM, JVM, VM, J2RE, J2SE. Get the latest version from Java.com. They will usually attempt to foist some garbage like the Ask toolbar, Yahoo toolbar or McAfee Security Scan on you as part of the download. Just uncheck the garbage before the download (or install) starts. If you use a 64-bit browser and want the 64-bit version of Java you need to use it to visit java.com.
Due to multiple security problems with Java we are now recommending that it not be installed unless you absolutely know you need it. IF that is the case then go to Control Panel, Java, Security and slide it up to the highest level. OK.

Make sure Windows Updates is turned and that it works. Go to Control panel, Windows Updates and see if it works.

If you are feeling especially paranoid you can install the free firewall called Online Armor:
http://www.online-armor.com/


My help is free but if you wish to show your appreciation, please donate to Kwiaht instead of me. It's a local environmental organization that I volunteer with: http://www.kwiaht.org/donate.htm
(The name means something like "clean place" in one of the local native-American dialects)

Ron
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP