TDSSKiller log14:20:24.0961 6732 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
14:20:26.0381 6732 ============================================================
14:20:26.0381 6732 Current date / time: 2013/04/27 14:20:26.0381
14:20:26.0381 6732 SystemInfo:
14:20:26.0381 6732
14:20:26.0381 6732 OS Version: 6.1.7601 ServicePack: 1.0
14:20:26.0381 6732 Product type: Workstation
14:20:26.0381 6732 ComputerName: GTECH-PC
14:20:26.0381 6732 UserName: GTech
14:20:26.0381 6732 Windows directory: C:\Windows
14:20:26.0381 6732 System windows directory: C:\Windows
14:20:26.0381 6732 Running under WOW64
14:20:26.0381 6732 Processor architecture: Intel x64
14:20:26.0381 6732 Number of processors: 4
14:20:26.0381 6732 Page size: 0x1000
14:20:26.0381 6732 Boot type: Normal boot
14:20:26.0381 6732 ============================================================
14:20:27.0481 6732 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1F8B1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xF0, Type 'K0', Flags 0x00000040
14:20:27.0481 6732 ============================================================
14:20:27.0481 6732 \Device\Harddisk0\DR0:
14:20:27.0481 6732 MBR partitions:
14:20:27.0481 6732 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
14:20:27.0481 6732 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x746D3800
14:20:27.0481 6732 ============================================================
14:20:27.0491 6732 C: <-> \Device\Harddisk0\DR0\Partition2
14:20:27.0491 6732 ============================================================
14:20:27.0491 6732 Initialize success
14:20:27.0491 6732 ============================================================
14:21:43.0480 6236 Deinitialize success
14:24:00.0522 3972 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
14:24:01.0052 3972 ============================================================
14:24:01.0052 3972 Current date / time: 2013/04/27 14:24:01.0052
14:24:01.0052 3972 SystemInfo:
14:24:01.0052 3972
14:24:01.0052 3972 OS Version: 6.1.7601 ServicePack: 1.0
14:24:01.0052 3972 Product type: Workstation
14:24:01.0052 3972 ComputerName: GTECH-PC
14:24:01.0052 3972 UserName: GTech
14:24:01.0052 3972 Windows directory: C:\Windows
14:24:01.0052 3972 System windows directory: C:\Windows
14:24:01.0052 3972 Running under WOW64
14:24:01.0052 3972 Processor architecture: Intel x64
14:24:01.0052 3972 Number of processors: 4
14:24:01.0052 3972 Page size: 0x1000
14:24:01.0052 3972 Boot type: Normal boot
14:24:01.0052 3972 ============================================================
14:24:01.0926 3972 BG loaded
14:24:04.0640 3972 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1F8B1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xF0, Type 'K0', Flags 0x00000040
14:24:04.0640 3972 ============================================================
14:24:04.0640 3972 \Device\Harddisk0\DR0:
14:24:04.0640 3972 MBR partitions:
14:24:04.0640 3972 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
14:24:04.0640 3972 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x746D3800
14:24:04.0640 3972 ============================================================
14:24:04.0671 3972 C: <-> \Device\Harddisk0\DR0\Partition2
14:24:04.0671 3972 ============================================================
14:24:04.0671 3972 Initialize success
14:24:04.0671 3972 ============================================================
14:26:35.0236 4524 ============================================================
14:26:35.0236 4524 Scan started
14:26:35.0236 4524 Mode: Manual; SigCheck; TDLFS;
14:26:35.0236 4524 ============================================================
14:26:36.0811 4524 ================ Scan system memory ========================
14:26:36.0811 4524 System memory - ok
14:26:36.0811 4524 ================ Scan services =============================
14:26:36.0952 4524 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
14:26:37.0139 4524 1394ohci - ok
14:26:37.0154 4524 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
14:26:37.0186 4524 ACPI - ok
14:26:37.0217 4524 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
14:26:37.0326 4524 AcpiPmi - ok
14:26:37.0435 4524 [ 3927397AC60D943DAF8808AFFED582B7 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
14:26:37.0466 4524 AdobeARMservice - ok
14:26:37.0576 4524 [ EA856F4A46320389D1899B2CAA7BF40F ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
14:26:37.0638 4524 AdobeFlashPlayerUpdateSvc - ok
14:26:37.0685 4524 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
14:26:37.0716 4524 adp94xx - ok
14:26:37.0747 4524 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
14:26:37.0763 4524 adpahci - ok
14:26:37.0778 4524 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
14:26:37.0794 4524 adpu320 - ok
14:26:37.0825 4524 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
14:26:37.0981 4524 AeLookupSvc - ok
14:26:38.0012 4524 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys
14:26:38.0122 4524 AFD - ok
14:26:38.0168 4524 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
14:26:38.0215 4524 agp440 - ok
14:26:38.0231 4524 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
14:26:38.0309 4524 ALG - ok
14:26:38.0340 4524 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
14:26:38.0356 4524 aliide - ok
14:26:38.0402 4524 [ 245E5CB043D4E45B4D0513F0B3B03BFC ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
14:26:38.0480 4524 AMD External Events Utility - ok
14:26:38.0527 4524 AMD FUEL Service - ok
14:26:38.0558 4524 [ DD27F6C3DE9BFE50635C721E09EDC5DD ] AMD Reservation Manager C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe
14:26:38.0605 4524 AMD Reservation Manager - ok
14:26:38.0605 4524 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
14:26:38.0636 4524 amdide - ok
14:26:38.0652 4524 [ 6A2EEB0C4133B20773BB3DD0B7B377B4 ] amdiox64 C:\Windows\system32\DRIVERS\amdiox64.sys
14:26:38.0683 4524 amdiox64 - ok
14:26:38.0699 4524 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
14:26:38.0792 4524 AmdK8 - ok
14:26:38.0948 4524 [ 0E882C155315FF446602D48000441AE4 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
14:26:39.0058 4524 amdkmdag - ok
14:26:39.0089 4524 [ 9B918FD1A17385A22BE43AD9EE299BD3 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
14:26:39.0167 4524 amdkmdap - ok
14:26:39.0182 4524 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
14:26:39.0260 4524 AmdPPM - ok
14:26:39.0323 4524 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
14:26:39.0385 4524 amdsata - ok
14:26:39.0385 4524 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
14:26:39.0416 4524 amdsbs - ok
14:26:39.0432 4524 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
14:26:39.0448 4524 amdxata - ok
14:26:39.0494 4524 [ 4DE0D5D747A73797C95A97DCCE5018B5 ] androidusb C:\Windows\system32\Drivers\ssadadb.sys
14:26:39.0588 4524 androidusb - ok
14:26:39.0635 4524 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
14:26:39.0822 4524 AppID - ok
14:26:39.0838 4524 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
14:26:39.0947 4524 AppIDSvc - ok
14:26:39.0978 4524 [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo C:\Windows\System32\appinfo.dll
14:26:40.0040 4524 Appinfo - ok
14:26:40.0118 4524 [ 3DEBBECF665DCDDE3A95D9B902010817 ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
14:26:40.0165 4524 Apple Mobile Device - ok
14:26:40.0196 4524 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys
14:26:40.0228 4524 arc - ok
14:26:40.0243 4524 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
14:26:40.0274 4524 arcsas - ok
14:26:40.0306 4524 [ FEC1F5DA49C4D693CCD1B922B7F3B22F ] arusb_lhx C:\Windows\system32\DRIVERS\arusb_lhx.sys
14:26:40.0415 4524 arusb_lhx - ok
14:26:40.0430 4524 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
14:26:40.0540 4524 AsyncMac - ok
14:26:40.0571 4524 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
14:26:40.0618 4524 atapi - ok
14:26:40.0664 4524 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
14:26:40.0742 4524 AudioEndpointBuilder - ok
14:26:40.0774 4524 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
14:26:40.0805 4524 AudioSrv - ok
14:26:40.0945 4524 [ 231B6AD3DB2866BC3FDB9979E6B2B61E ] AVGIDSAgent C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe
14:26:41.0008 4524 AVGIDSAgent - ok
14:26:41.0070 4524 [ 633360E94804E7BAFE642017817C9413 ] AVGIDSDriver C:\Windows\system32\DRIVERS\avgidsdrivera.sys
14:26:41.0101 4524 AVGIDSDriver - ok
14:26:41.0117 4524 [ 0F293406F64B48D5D2F0D3A1117F3A83 ] AVGIDSFilter C:\Windows\system32\DRIVERS\avgidsfiltera.sys
14:26:41.0132 4524 AVGIDSFilter - ok
14:26:41.0164 4524 [ CFFC3A4A638F462E0561CB368B9A7A3A ] AVGIDSHA C:\Windows\system32\DRIVERS\avgidsha.sys
14:26:41.0179 4524 AVGIDSHA - ok
14:26:41.0195 4524 [ BE8BC5D10ABA05D7F6E79D8296906C86 ] Avgldx64 C:\Windows\system32\DRIVERS\avgldx64.sys
14:26:41.0226 4524 Avgldx64 - ok
14:26:41.0257 4524 [ A6AEC362AAE5E2DDA7445E7690CB0F33 ] Avgmfx64 C:\Windows\system32\DRIVERS\avgmfx64.sys
14:26:41.0320 4524 Avgmfx64 - ok
14:26:41.0366 4524 [ 645C7F0A0E39758A0024A9B1748273C0 ] Avgrkx64 C:\Windows\system32\DRIVERS\avgrkx64.sys
14:26:41.0413 4524 Avgrkx64 - ok
14:26:41.0460 4524 [ A441A655D6D9DDDDBA11994530F84981 ] Avgtdia C:\Windows\system32\DRIVERS\avgtdia.sys
14:26:41.0507 4524 Avgtdia - ok
14:26:41.0616 4524 [ 4C05242DC361A217223E9B8EC2B3A76B ] avgtp C:\Windows\system32\drivers\avgtpx64.sys
14:26:41.0663 4524 avgtp - ok
14:26:41.0678 4524 [ EA1145DEBCD508FD25BD1E95C4346929 ] avgwd C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe
14:26:41.0694 4524 avgwd - ok
14:26:41.0725 4524 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
14:26:41.0897 4524 AxInstSV - ok
14:26:41.0928 4524 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys
14:26:42.0006 4524 b06bdrv - ok
14:26:42.0037 4524 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
14:26:42.0115 4524 b57nd60a - ok
14:26:42.0146 4524 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
14:26:42.0209 4524 BDESVC - ok
14:26:42.0209 4524 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
14:26:42.0334 4524 Beep - ok
14:26:42.0365 4524 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
14:26:42.0443 4524 blbdrive - ok
14:26:42.0536 4524 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
14:26:42.0568 4524 Bonjour Service - ok
14:26:42.0614 4524 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
14:26:42.0677 4524 bowser - ok
14:26:42.0708 4524 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
14:26:42.0770 4524 BrFiltLo - ok
14:26:42.0786 4524 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
14:26:42.0802 4524 BrFiltUp - ok
14:26:42.0833 4524 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
14:26:42.0911 4524 Browser - ok
14:26:43.0051 4524 [ D9C8DC2D7EC28E3FF25C99EF17C8631A ] BrowserProtect C:\ProgramData\BrowserProtect\2.6.1249.132\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe
14:26:43.0098 4524 BrowserProtect - ok
14:26:43.0114 4524 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
14:26:43.0207 4524 Brserid - ok
14:26:43.0223 4524 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
14:26:43.0270 4524 BrSerWdm - ok
14:26:43.0285 4524 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
14:26:43.0363 4524 BrUsbMdm - ok
14:26:43.0394 4524 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
14:26:43.0426 4524 BrUsbSer - ok
14:26:43.0457 4524 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
14:26:43.0488 4524 BTHMODEM - ok
14:26:43.0535 4524 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
14:26:43.0582 4524 bthserv - ok
14:26:43.0613 4524 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
14:26:43.0675 4524 cdfs - ok
14:26:43.0738 4524 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\drivers\cdrom.sys
14:26:43.0800 4524 cdrom - ok
14:26:43.0862 4524 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
14:26:43.0956 4524 CertPropSvc - ok
14:26:43.0987 4524 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys
14:26:44.0018 4524 circlass - ok
14:26:44.0050 4524 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
14:26:44.0050 4524 CLFS - ok
14:26:44.0143 4524 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
14:26:44.0159 4524 clr_optimization_v2.0.50727_32 - ok
14:26:44.0284 4524 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
14:26:44.0330 4524 clr_optimization_v2.0.50727_64 - ok
14:26:44.0752 4524 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
14:26:44.0830 4524 clr_optimization_v4.0.30319_32 - ok
14:26:44.0876 4524 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
14:26:44.0892 4524 clr_optimization_v4.0.30319_64 - ok
14:26:44.0923 4524 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
14:26:44.0970 4524 CmBatt - ok
14:26:44.0986 4524 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
14:26:45.0001 4524 cmdide - ok
14:26:45.0095 4524 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\Windows\system32\Drivers\cng.sys
14:26:45.0142 4524 CNG - ok
14:26:45.0173 4524 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
14:26:45.0235 4524 Compbatt - ok
14:26:45.0282 4524 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
14:26:45.0376 4524 CompositeBus - ok
14:26:45.0376 4524 COMSysApp - ok
14:26:45.0407 4524 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
14:26:45.0422 4524 crcdisk - ok
14:26:45.0516 4524 [ 9C01375BE382E834CC26D1B7EAF2C4FE ] CryptSvc C:\Windows\system32\cryptsvc.dll
14:26:45.0906 4524 CryptSvc - ok
14:26:46.0499 4524 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
14:26:46.0592 4524 DcomLaunch - ok
14:26:47.0341 4524 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
14:26:48.0948 4524 defragsvc - ok
14:26:49.0026 4524 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
14:26:49.0073 4524 DfsC - ok
14:26:49.0151 4524 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
14:26:49.0307 4524 Dhcp - ok
14:26:49.0322 4524 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
14:26:49.0416 4524 discache - ok
14:26:49.0447 4524 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys
14:26:49.0463 4524 Disk - ok
14:26:49.0494 4524 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
14:26:49.0572 4524 Dnscache - ok
14:26:49.0619 4524 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
14:26:49.0712 4524 dot3svc - ok
14:26:49.0759 4524 [ B42ED0320C6E41102FDE0005154849BB ] Dot4 C:\Windows\system32\DRIVERS\Dot4.sys
14:26:49.0853 4524 Dot4 - ok
14:26:49.0884 4524 [ E9F5969233C5D89F3C35E3A66A52A361 ] Dot4Print C:\Windows\system32\drivers\Dot4Prt.sys
14:26:49.0962 4524 Dot4Print - ok
14:26:49.0978 4524 [ FD05A02B0370BC3000F402E543CA5814 ] dot4usb C:\Windows\system32\DRIVERS\dot4usb.sys
14:26:50.0056 4524 dot4usb - ok
14:26:50.0087 4524 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
14:26:50.0149 4524 DPS - ok
14:26:50.0180 4524 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
14:26:50.0196 4524 drmkaud - ok
14:26:50.0243 4524 [ 821BF177A24172F5F0EE9B322F58516C ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
14:26:50.0290 4524 dtsoftbus01 - ok
14:26:50.0368 4524 [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
14:26:50.0414 4524 DXGKrnl - ok
14:26:50.0461 4524 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
14:26:50.0524 4524 EapHost - ok
14:26:50.0804 4524 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys
14:26:50.0898 4524 ebdrv - ok
14:26:50.0945 4524 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
14:26:51.0038 4524 EFS - ok
14:26:51.0101 4524 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
14:26:51.0257 4524 ehRecvr - ok
14:26:51.0272 4524 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
14:26:51.0366 4524 ehSched - ok
14:26:51.0444 4524 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
14:26:51.0491 4524 elxstor - ok
14:26:51.0522 4524 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
14:26:51.0584 4524 ErrDev - ok
14:26:51.0631 4524 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
14:26:51.0694 4524 EventSystem - ok
14:26:51.0740 4524 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
14:26:51.0881 4524 exfat - ok
14:26:51.0896 4524 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
14:26:51.0959 4524 fastfat - ok
14:26:52.0021 4524 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
14:26:52.0115 4524 Fax - ok
14:26:52.0146 4524 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys
14:26:52.0208 4524 fdc - ok
14:26:52.0240 4524 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
14:26:52.0286 4524 fdPHost - ok
14:26:52.0286 4524 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
14:26:52.0349 4524 FDResPub - ok
14:26:52.0364 4524 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
14:26:52.0380 4524 FileInfo - ok
14:26:52.0396 4524 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
14:26:52.0505 4524 Filetrace - ok
14:26:52.0520 4524 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
14:26:52.0536 4524 flpydisk - ok
14:26:52.0598 4524 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
14:26:52.0645 4524 FltMgr - ok
14:26:52.0676 4524 [ 5C4CB4086FB83115B153E47ADD961A0C ] FontCache C:\Windows\system32\FntCache.dll
14:26:52.0754 4524 FontCache - ok
14:26:52.0801 4524 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
14:26:52.0817 4524 FontCache3.0.0.0 - ok
14:26:52.0832 4524 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
14:26:52.0864 4524 FsDepends - ok
14:26:52.0895 4524 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
14:26:52.0910 4524 Fs_Rec - ok
14:26:52.0957 4524 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
14:26:52.0973 4524 fvevol - ok
14:26:52.0988 4524 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
14:26:53.0004 4524 gagp30kx - ok
14:26:53.0020 4524 gdrv - ok
14:26:53.0098 4524 [ E403AACF8C7BB11375122D2464560311 ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
14:26:53.0129 4524 GEARAspiWDM - ok
14:26:53.0207 4524 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
14:26:53.0285 4524 gpsvc - ok
14:26:53.0300 4524 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
14:26:53.0394 4524 hcw85cir - ok
14:26:53.0441 4524 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
14:26:53.0472 4524 HdAudAddService - ok
14:26:53.0519 4524 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
14:26:53.0581 4524 HDAudBus - ok
14:26:53.0597 4524 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
14:26:53.0628 4524 HidBatt - ok
14:26:53.0644 4524 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
14:26:53.0690 4524 HidBth - ok
14:26:53.0706 4524 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
14:26:53.0737 4524 HidIr - ok
14:26:53.0768 4524 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll
14:26:53.0862 4524 hidserv - ok
14:26:53.0971 4524 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\drivers\hidusb.sys
14:26:54.0018 4524 HidUsb - ok
14:26:54.0049 4524 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
14:26:54.0112 4524 hkmsvc - ok
14:26:54.0174 4524 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
14:26:54.0268 4524 HomeGroupListener - ok
14:26:54.0299 4524 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
14:26:54.0346 4524 HomeGroupProvider - ok
14:26:54.0408 4524 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
14:26:54.0439 4524 HpSAMD - ok
14:26:54.0533 4524 [ D4F91CF4DE215D6F14A06087D46725E4 ] HPSLPSVC C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL
14:26:54.0829 4524 HPSLPSVC - ok
14:26:54.0970 4524 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
14:26:55.0016 4524 HTTP - ok
14:26:55.0063 4524 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
14:26:55.0079 4524 hwpolicy - ok
14:26:55.0126 4524 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
14:26:55.0188 4524 i8042prt - ok
14:26:55.0313 4524 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
14:26:55.0375 4524 iaStorV - ok
14:26:55.0438 4524 [ 1CF03C69B49ACB70C722DF92755C0C8C ] IDriverT C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
14:26:55.0484 4524 IDriverT ( UnsignedFile.Multi.Generic ) - warning
14:26:55.0484 4524 IDriverT - detected UnsignedFile.Multi.Generic (1)
14:26:55.0625 4524 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
14:26:55.0672 4524 idsvc - ok
14:26:55.0718 4524 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
14:26:55.0765 4524 iirsp - ok
14:26:55.0937 4524 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
14:26:56.0015 4524 IKEEXT - ok
14:26:56.0249 4524 [ 9297BC7FB61F58670EE176DD18F4DD92 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
14:26:56.0296 4524 IntcAzAudAddService - ok
14:26:56.0327 4524 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
14:26:56.0342 4524 intelide - ok
14:26:56.0420 4524 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
14:26:56.0514 4524 intelppm - ok
14:26:56.0639 4524 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
14:26:56.0748 4524 IPBusEnum - ok
14:26:56.0874 4524 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
14:26:57.0034 4524 IpFilterDriver - ok
14:26:57.0084 4524 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
14:26:57.0134 4524 IPMIDRV - ok
14:26:57.0224 4524 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
14:26:57.0284 4524 IPNAT - ok
14:26:57.0354 4524 [ 4472C8825B5E41D8697D5962F47AB1C9 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
14:26:57.0374 4524 iPod Service - ok
14:26:57.0394 4524 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
14:26:57.0584 4524 IRENUM - ok
14:26:57.0634 4524 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
14:26:57.0684 4524 isapnp - ok
14:26:57.0744 4524 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
14:26:57.0774 4524 iScsiPrt - ok
14:26:57.0804 4524 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\drivers\kbdclass.sys
14:26:57.0824 4524 kbdclass - ok
14:26:57.0884 4524 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
14:26:57.0946 4524 kbdhid - ok
14:26:57.0946 4524 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
14:26:57.0962 4524 KeyIso - ok
14:26:58.0024 4524 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
14:26:58.0071 4524 KSecDD - ok
14:26:58.0086 4524 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
14:26:58.0102 4524 KSecPkg - ok
14:26:58.0133 4524 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
14:26:58.0180 4524 ksthunk - ok
14:26:58.0211 4524 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
14:26:58.0274 4524 KtmRm - ok
14:26:58.0336 4524 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll
14:26:58.0383 4524 LanmanServer - ok
14:26:58.0445 4524 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
14:26:58.0476 4524 LanmanWorkstation - ok
14:26:58.0523 4524 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
14:26:58.0570 4524 lltdio - ok
14:26:58.0601 4524 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
14:26:58.0695 4524 lltdsvc - ok
14:26:58.0695 4524 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
14:26:58.0726 4524 lmhosts - ok
14:26:58.0757 4524 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
14:26:58.0773 4524 LSI_FC - ok
14:26:58.0788 4524 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
14:26:58.0804 4524 LSI_SAS - ok
14:26:58.0820 4524 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
14:26:58.0835 4524 LSI_SAS2 - ok
14:26:58.0835 4524 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
14:26:58.0866 4524 LSI_SCSI - ok
14:26:58.0882 4524 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
14:26:58.0960 4524 luafv - ok
14:26:58.0991 4524 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
14:26:59.0022 4524 Mcx2Svc - ok
14:26:59.0054 4524 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
14:26:59.0069 4524 megasas - ok
14:26:59.0085 4524 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
14:26:59.0178 4524 MegaSR - ok
14:26:59.0194 4524 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
14:26:59.0319 4524 MMCSS - ok
14:26:59.0350 4524 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
14:26:59.0428 4524 Modem - ok
14:26:59.0459 4524 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
14:26:59.0490 4524 monitor - ok
14:26:59.0553 4524 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\drivers\mouclass.sys
14:26:59.0600 4524 mouclass - ok
14:26:59.0646 4524 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
14:26:59.0693 4524 mouhid - ok
14:26:59.0724 4524 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
14:26:59.0756 4524 mountmgr - ok
14:26:59.0818 4524 [ 7EDBBB9351A38C6BB0FE98CFD44DB430 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
14:26:59.0880 4524 MozillaMaintenance - ok
14:26:59.0912 4524 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
14:26:59.0927 4524 mpio - ok
14:26:59.0943 4524 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
14:26:59.0990 4524 mpsdrv - ok
14:27:00.0021 4524 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
14:27:00.0052 4524 MRxDAV - ok
14:27:00.0083 4524 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
14:27:00.0146 4524 mrxsmb - ok
14:27:00.0177 4524 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
14:27:00.0239 4524 mrxsmb10 - ok
14:27:00.0270 4524 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
14:27:00.0286 4524 mrxsmb20 - ok
14:27:00.0286 4524 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
14:27:00.0317 4524 msahci - ok
14:27:00.0364 4524 [ A592A054D78750B4D73ABAA4C94DECDF ] MSCamSvc C:\Program Files\Microsoft LifeCam\MSCamS64.exe
14:27:00.0380 4524 MSCamSvc - ok
14:27:00.0395 4524 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
14:27:00.0426 4524 msdsm - ok
14:27:00.0458 4524 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
14:27:00.0504 4524 MSDTC - ok
14:27:00.0536 4524 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
14:27:00.0582 4524 Msfs - ok
14:27:00.0582 4524 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
14:27:00.0614 4524 mshidkmdf - ok
14:27:00.0645 4524 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
14:27:00.0707 4524 msisadrv - ok
14:27:00.0723 4524 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
14:27:00.0801 4524 MSiSCSI - ok
14:27:00.0801 4524 msiserver - ok
14:27:00.0832 4524 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
14:27:00.0863 4524 MSKSSRV - ok
14:27:00.0879 4524 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
14:27:00.0957 4524 MSPCLOCK - ok
14:27:00.0957 4524 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
14:27:00.0988 4524 MSPQM - ok
14:27:01.0035 4524 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
14:27:01.0097 4524 MsRPC - ok
14:27:01.0113 4524 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
14:27:01.0128 4524 mssmbios - ok
14:27:01.0128 4524 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
14:27:01.0191 4524 MSTEE - ok
14:27:01.0206 4524 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
14:27:01.0222 4524 MTConfig - ok
14:27:01.0253 4524 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
14:27:01.0269 4524 Mup - ok
14:27:01.0300 4524 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
14:27:01.0425 4524 napagent - ok
14:27:01.0456 4524 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
14:27:01.0518 4524 NativeWifiP - ok
14:27:01.0628 4524 [ 934BB0D23A25C8C136570800A5A149B6 ] NAUpdate C:\Program Files (x86)\Nero\Update\NASvc.exe
14:27:01.0643 4524 NAUpdate - ok
14:27:01.0706 4524 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys
14:27:01.0768 4524 NDIS - ok
14:27:01.0799 4524 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
14:27:01.0846 4524 NdisCap - ok
14:27:01.0862 4524 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
14:27:01.0908 4524 NdisTapi - ok
14:27:01.0955 4524 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
14:27:02.0018 4524 Ndisuio - ok
14:27:02.0049 4524 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
14:27:02.0142 4524 NdisWan - ok
14:27:02.0174 4524 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
14:27:02.0220 4524 NDProxy - ok
14:27:02.0267 4524 [ D4F51E88C71BF8F06EA1BE320B0BB75B ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
14:27:02.0267 4524 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
14:27:02.0267 4524 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
14:27:02.0283 4524 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
14:27:02.0361 4524 NetBIOS - ok
14:27:02.0408 4524 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
14:27:02.0501 4524 NetBT - ok
14:27:02.0532 4524 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
14:27:02.0532 4524 Netlogon - ok
14:27:02.0564 4524 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
14:27:02.0610 4524 Netman - ok
14:27:02.0642 4524 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
14:27:02.0688 4524 netprofm - ok
14:27:02.0720 4524 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
14:27:02.0907 4524 NetTcpPortSharing - ok
14:27:02.0922 4524 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
14:27:02.0938 4524 nfrd960 - ok
14:27:02.0985 4524 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll
14:27:03.0016 4524 NlaSvc - ok
14:27:03.0032 4524 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
14:27:03.0078 4524 Npfs - ok
14:27:03.0078 4524 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
14:27:03.0125 4524 nsi - ok
14:27:03.0156 4524 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
14:27:03.0188 4524 nsiproxy - ok
14:27:03.0266 4524 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
14:27:03.0328 4524 Ntfs - ok
14:27:03.0328 4524 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
14:27:03.0375 4524 Null - ok
14:27:03.0406 4524 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
14:27:03.0422 4524 nvraid - ok
14:27:03.0468 4524 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
14:27:03.0515 4524 nvstor - ok
14:27:03.0546 4524 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
14:27:03.0562 4524 nv_agp - ok
14:27:03.0593 4524 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
14:27:03.0609 4524 ohci1394 - ok
14:27:03.0671 4524 [ 4965B005492CBA7719E82B71E3245495 ] ose64 C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
14:27:03.0718 4524 ose64 - ok
14:27:03.0858 4524 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
14:27:04.0061 4524 osppsvc - ok
14:27:04.0092 4524 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
14:27:04.0170 4524 p2pimsvc - ok
14:27:04.0202 4524 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
14:27:04.0311 4524 p2psvc - ok
14:27:04.0342 4524 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys
14:27:04.0358 4524 Parport - ok
14:27:04.0373 4524 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
14:27:04.0404 4524 partmgr - ok
14:27:04.0404 4524 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
14:27:04.0451 4524 PcaSvc - ok
14:27:04.0498 4524 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
14:27:04.0529 4524 pci - ok
14:27:04.0560 4524 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
14:27:04.0576 4524 pciide - ok
14:27:04.0592 4524 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
14:27:04.0607 4524 pcmcia - ok
14:27:04.0607 4524 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
14:27:04.0623 4524 pcw - ok
14:27:04.0654 4524 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
14:27:04.0701 4524 PEAUTH - ok
14:27:04.0826 4524 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
14:27:04.0872 4524 PerfHost - ok
14:27:04.0935 4524 [ 0015113A604B94769AB5159E8DCFC6E6 ] PinnacleUpdateSvc C:\Program Files (x86)\PowerUp Software\Pinnacle Game Profiler\pinnacle_updater.exe
14:27:04.0966 4524 PinnacleUpdateSvc ( UnsignedFile.Multi.Generic ) - warning
14:27:04.0966 4524 PinnacleUpdateSvc - detected UnsignedFile.Multi.Generic (1)
14:27:05.0044 4524 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
14:27:05.0122 4524 pla - ok
14:27:05.0169 4524 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
14:27:05.0216 4524 PlugPlay - ok
14:27:05.0247 4524 [ 9A80707D8B6C1806531BFD7399B3CC76 ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
14:27:05.0262 4524 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
14:27:05.0262 4524 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
14:27:05.0294 4524 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
14:27:05.0356 4524 PNRPAutoReg - ok
14:27:05.0356 4524 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
14:27:05.0387 4524 PNRPsvc - ok
14:27:05.0418 4524 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
14:27:05.0528 4524 PolicyAgent - ok
14:27:05.0574 4524 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
14:27:05.0684 4524 Power - ok
14:27:05.0699 4524 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
14:27:05.0730 4524 PptpMiniport - ok
14:27:05.0746 4524 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys
14:27:05.0777 4524 Processor - ok
14:27:05.0824 4524 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
14:27:05.0871 4524 ProfSvc - ok
14:27:05.0902 4524 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
14:27:05.0933 4524 ProtectedStorage - ok
14:27:05.0964 4524 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
14:27:06.0074 4524 Psched - ok
14:27:06.0245 4524 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
14:27:06.0292 4524 ql2300 - ok
14:27:06.0308 4524 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
14:27:06.0339 4524 ql40xx - ok
14:27:06.0370 4524 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
14:27:06.0448 4524 QWAVE - ok
14:27:06.0464 4524 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
14:27:06.0526 4524 QWAVEdrv - ok
14:27:06.0526 4524 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
14:27:06.0588 4524 RasAcd - ok
14:27:06.0620 4524 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
14:27:06.0651 4524 RasAgileVpn - ok
14:27:06.0666 4524 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
14:27:06.0729 4524 RasAuto - ok
14:27:06.0760 4524 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
14:27:06.0854 4524 Rasl2tp - ok
14:27:06.0900 4524 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
14:27:06.0978 4524 RasMan - ok
14:27:06.0978 4524 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
14:27:07.0010 4524 RasPppoe - ok
14:27:07.0041 4524 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
14:27:07.0103 4524 RasSstp - ok
14:27:07.0144 4524 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
14:27:07.0244 4524 rdbss - ok
14:27:07.0264 4524 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
14:27:07.0284 4524 rdpbus - ok
14:27:07.0294 4524 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
14:27:07.0344 4524 RDPCDD - ok
14:27:07.0374 4524 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
14:27:07.0414 4524 RDPENCDD - ok
14:27:07.0444 4524 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
14:27:07.0474 4524 RDPREFMP - ok
14:27:07.0504 4524 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
14:27:07.0564 4524 RDPWD - ok
14:27:07.0604 4524 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
14:27:07.0624 4524 rdyboost - ok
14:27:07.0654 4524 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
14:27:07.0704 4524 RemoteAccess - ok
14:27:07.0734 4524 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
14:27:07.0784 4524 RemoteRegistry - ok
14:27:07.0834 4524 [ 5790BCA445CC40DF8B38C2C48608AAC2 ] RimUsb C:\Windows\system32\Drivers\RimUsb_AMD64.sys
14:27:07.0914 4524 RimUsb - ok
14:27:07.0934 4524 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
14:27:08.0014 4524 RpcEptMapper - ok
14:27:08.0034 4524 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
14:27:08.0044 4524 RpcLocator - ok
14:27:08.0084 4524 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
14:27:08.0164 4524 RpcSs - ok
14:27:08.0194 4524 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
14:27:08.0214 4524 rspndr - ok
14:27:08.0244 4524 [ C618475866F6A7129F64A55961C1BB8B ] RTHDMIAzAudService C:\Windows\system32\drivers\RtHDMIVX.sys
14:27:08.0264 4524 RTHDMIAzAudService - ok
14:27:08.0294 4524 [ 6D3C7E7D82D3DC92DC2A8B0DF9F20F8A ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
14:27:08.0314 4524 RTL8167 - ok
14:27:08.0334 4524 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
14:27:08.0344 4524 SamSs - ok
14:27:08.0374 4524 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
14:27:08.0414 4524 sbp2port - ok
14:27:08.0434 4524 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
14:27:08.0504 4524 SCardSvr - ok
14:27:08.0554 4524 [ DF2360004C5C837B52547B4B24E98870 ] SCDEmu C:\Windows\system32\drivers\SCDEmu.sys
14:27:08.0574 4524 SCDEmu - ok
14:27:08.0584 4524 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
14:27:08.0634 4524 scfilter - ok
14:27:08.0704 4524 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
14:27:08.0774 4524 Schedule - ok
14:27:08.0814 4524 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
14:27:08.0844 4524 SCPolicySvc - ok
14:27:08.0884 4524 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
14:27:08.0974 4524 SDRSVC - ok
14:27:09.0004 4524 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
14:27:09.0024 4524 secdrv - ok
14:27:09.0054 4524 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
14:27:09.0104 4524 seclogon - ok
14:27:09.0134 4524 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
14:27:09.0164 4524 SENS - ok
14:27:09.0174 4524 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
14:27:09.0194 4524 SensrSvc - ok
14:27:09.0204 4524 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
14:27:09.0244 4524 Serenum - ok
14:27:09.0264 4524 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
14:27:09.0284 4524 Serial - ok
14:27:09.0314 4524 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
14:27:09.0384 4524 sermouse - ok
14:27:09.0434 4524 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
14:27:09.0504 4524 SessionEnv - ok
14:27:09.0544 4524 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
14:27:09.0604 4524 sffdisk - ok
14:27:09.0624 4524 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
14:27:09.0654 4524 sffp_mmc - ok
14:27:09.0664 4524 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
14:27:09.0704 4524 sffp_sd - ok
14:27:09.0724 4524 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
14:27:09.0744 4524 sfloppy - ok
14:27:09.0784 4524 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
14:27:09.0824 4524 ShellHWDetection - ok
14:27:09.0844 4524 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
14:27:09.0854 4524 SiSRaid2 - ok
14:27:09.0864 4524 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
14:27:09.0884 4524 SiSRaid4 - ok
14:27:09.0944 4524 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
14:27:09.0974 4524 SkypeUpdate - ok
14:27:09.0994 4524 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
14:27:10.0044 4524 Smb - ok
14:27:10.0074 4524 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
14:27:10.0124 4524 SNMPTRAP - ok
14:27:10.0144 4524 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
14:27:10.0164 4524 spldr - ok
14:27:10.0204 4524 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
14:27:10.0224 4524 Spooler - ok
14:27:10.0334 4524 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
14:27:10.0554 4524 sppsvc - ok
14:27:10.0584 4524 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
14:27:10.0654 4524 sppuinotify - ok
14:27:10.0684 4524 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
14:27:10.0734 4524 srv - ok
14:27:10.0774 4524 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
14:27:10.0834 4524 srv2 - ok
14:27:10.0874 4524 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
14:27:10.0934 4524 srvnet - ok
14:27:11.0004 4524 [ 8F8324ED1DE63FFC7B1A02CD2D963C72 ] ssadbus C:\Windows\system32\DRIVERS\ssadbus.sys
14:27:11.0074 4524 ssadbus - ok
14:27:11.0084 4524 [ 58221EFCB74167B73667F0024C661CE0 ] ssadmdfl C:\Windows\system32\DRIVERS\ssadmdfl.sys
14:27:11.0164 4524 ssadmdfl - ok
14:27:11.0184 4524 [ 4DA7C71BFAC5AD71255B7E4CAB980163 ] ssadmdm C:\Windows\system32\DRIVERS\ssadmdm.sys
14:27:11.0214 4524 ssadmdm - ok
14:27:11.0264 4524 [ D33D1BD3EC0E766211A234F56A12726D ] ssadserd C:\Windows\system32\DRIVERS\ssadserd.sys
14:27:11.0324 4524 ssadserd - ok
14:27:11.0344 4524 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
14:27:11.0384 4524 SSDPSRV - ok
14:27:11.0394 4524 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
14:27:11.0424 4524 SstpSvc - ok
14:27:11.0444 4524 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
14:27:11.0464 4524 stexstor - ok
14:27:11.0504 4524 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
14:27:11.0564 4524 stisvc - ok
14:27:11.0594 4524 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\drivers\swenum.sys
14:27:11.0634 4524 swenum - ok
14:27:11.0744 4524 [ F577910A133A592234EBAAD3F3AFA258 ] SwitchBoard C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
14:27:11.0804 4524 SwitchBoard ( UnsignedFile.Multi.Generic ) - warning
14:27:11.0804 4524 SwitchBoard - detected UnsignedFile.Multi.Generic (1)
14:27:11.0854 4524 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
14:27:11.0924 4524 swprv - ok
14:27:12.0034 4524 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
14:27:12.0094 4524 SysMain - ok
14:27:12.0134 4524 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
14:27:12.0224 4524 TabletInputService - ok
14:27:12.0274 4524 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
14:27:12.0464 4524 TapiSrv - ok
14:27:12.0474 4524 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
14:27:12.0504 4524 TBS - ok
14:27:12.0574 4524 [ B62A953F2BF3922C8764A29C34A22899 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
14:27:12.0614 4524 Tcpip - ok
14:27:12.0694 4524 [ B62A953F2BF3922C8764A29C34A22899 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
14:27:12.0734 4524 TCPIP6 - ok
14:27:12.0764 4524 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
14:27:12.0814 4524 tcpipreg - ok
14:27:12.0854 4524 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
14:27:12.0914 4524 TDPIPE - ok
14:27:12.0944 4524 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
14:27:12.0994 4524 TDTCP - ok
14:27:13.0024 4524 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
14:27:13.0064 4524 tdx - ok
14:27:13.0074 4524 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\drivers\termdd.sys
14:27:13.0094 4524 TermDD - ok
14:27:13.0134 4524 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
14:27:13.0234 4524 TermService - ok
14:27:13.0264 4524 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
14:27:13.0274 4524 Themes - ok
14:27:13.0304 4524 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
14:27:13.0334 4524 THREADORDER - ok
14:27:13.0334 4524 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
14:27:13.0364 4524 TrkWks - ok
14:27:13.0424 4524 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
14:27:13.0484 4524 TrustedInstaller - ok
14:27:13.0514 4524 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
14:27:13.0564 4524 tssecsrv - ok
14:27:13.0614 4524 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
14:27:13.0704 4524 TsUsbFlt - ok
14:27:13.0754 4524 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
14:27:13.0854 4524 tunnel - ok
14:27:13.0884 4524 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
14:27:13.0894 4524 uagp35 - ok
14:27:13.0934 4524 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
14:27:14.0014 4524 udfs - ok
14:27:14.0034 4524 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
14:27:14.0054 4524 UI0Detect - ok
14:27:14.0064 4524 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
14:27:14.0084 4524 uliagpkx - ok
14:27:14.0124 4524 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\drivers\umbus.sys
14:27:14.0164 4524 umbus - ok
14:27:14.0164 4524 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
14:27:14.0184 4524 UmPass - ok
14:27:14.0214 4524 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
14:27:14.0264 4524 upnphost - ok
14:27:14.0284 4524 [ AA33FC47ED58C34E6E9261E4F850B7EB ] USBAAPL64 C:\Windows\system32\Drivers\usbaapl64.sys
14:27:14.0354 4524 USBAAPL64 - ok
14:27:14.0394 4524 [ 82E8F44688E6FAC57B5B7C6FC7ADBC2A ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
14:27:14.0444 4524 usbaudio - ok
14:27:14.0464 4524 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
14:27:14.0564 4524 usbccgp - ok
14:27:14.0614 4524 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys
14:27:14.0664 4524 usbcir - ok
14:27:14.0674 4524 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
14:27:14.0694 4524 usbehci - ok
14:27:14.0714 4524 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
14:27:14.0734 4524 usbhub - ok
14:27:14.0744 4524 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
14:27:14.0774 4524 usbohci - ok
14:27:14.0794 4524 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
14:27:14.0824 4524 usbprint - ok
14:27:14.0874 4524 [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
14:27:14.0954 4524 usbscan - ok
14:27:14.0974 4524 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
14:27:15.0004 4524 USBSTOR - ok
14:27:15.0014 4524 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
14:27:15.0054 4524 usbuhci - ok
14:27:15.0114 4524 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
14:27:15.0214 4524 UxSms - ok
14:27:15.0224 4524 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe
14:27:15.0234 4524 VaultSvc - ok
14:27:15.0274 4524 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
14:27:15.0314 4524 vdrvroot - ok
14:27:15.0404 4524 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
14:27:15.0464 4524 vds - ok
14:27:15.0524 4524 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
14:27:15.0584 4524 vga - ok
14:27:15.0594 4524 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
14:27:15.0654 4524 VgaSave - ok
14:27:15.0684 4524 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
14:27:15.0724 4524 vhdmp - ok
14:27:15.0764 4524 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
14:27:15.0804 4524 viaide - ok
14:27:15.0824 4524 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
14:27:15.0834 4524 volmgr - ok
14:27:15.0874 4524 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
14:27:15.0914 4524 volmgrx - ok
14:27:15.0934 4524 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
14:27:15.0964 4524 volsnap - ok
14:27:15.0984 4524 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
14:27:16.0004 4524 vsmraid - ok
14:27:16.0104 4524 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
14:27:16.0194 4524 VSS - ok
14:27:16.0414 4524 [ 3AD1E72748978D8B0B3B674741E4C3E2 ] vToolbarUpdater14.2.0 C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\14.2.0\ToolbarUpdater.exe
14:27:16.0464 4524 vToolbarUpdater14.2.0 - ok
14:27:16.0484 4524 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
14:27:16.0524 4524 vwifibus - ok
14:27:16.0624 4524 [ C366AE91D2CC2C1C25380061D235C36B ] VX3000 C:\Windows\system32\DRIVERS\VX3000.sys
14:27:16.0694 4524 VX3000 - ok
14:27:16.0724 4524 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
14:27:16.0865 4524 W32Time - ok
14:27:16.0885 4524 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
14:27:16.0915 4524 WacomPen - ok
14:27:16.0995 4524 [ 4AA2CC5979AFF984227364F2C23B04F3 ] WajamUpdater C:\Program Files (x86)\Wajam\Updater\WajamUpdater.exe
14:27:17.0025 4524 WajamUpdater ( UnsignedFile.Multi.Generic ) - warning
14:27:17.0025 4524 WajamUpdater - detected UnsignedFile.Multi.Generic (1)
14:27:17.0085 4524 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
14:27:17.0215 4524 WANARP - ok
14:27:17.0235 4524 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
14:27:17.0265 4524 Wanarpv6 - ok
14:27:17.0325 4524 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
14:27:17.0455 4524 WatAdminSvc - ok
14:27:17.0505 4524 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
14:27:17.0585 4524 wbengine - ok
14:27:17.0605 4524 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
14:27:17.0625 4524 WbioSrvc - ok
14:27:17.0665 4524 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
14:27:17.0715 4524 wcncsvc - ok
14:27:17.0735 4524 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
14:27:17.0765 4524 WcsPlugInService - ok
14:27:17.0785 4524 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys
14:27:17.0805 4524 Wd - ok
14:27:17.0845 4524 [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
14:27:17.0875 4524 Wdf01000 - ok
14:27:17.0875 4524 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
14:27:17.0945 4524 WdiServiceHost - ok
14:27:17.0955 4524 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
14:27:17.0965 4524 WdiSystemHost - ok
14:27:18.0005 4524 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll
14:27:18.0045 4524 WebClient - ok
14:27:18.0065 4524 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
14:27:18.0115 4524 Wecsvc - ok
14:27:18.0125 4524 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
14:27:18.0165 4524 wercplsupport - ok
14:27:18.0175 4524 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
14:27:18.0205 4524 WerSvc - ok
14:27:18.0225 4524 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
14:27:18.0255 4524 WfpLwf - ok
14:27:18.0275 4524 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
14:27:18.0295 4524 WIMMount - ok
14:27:18.0295 4524 WinHttpAutoProxySvc - ok
14:27:18.0345 4524 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
14:27:18.0415 4524 Winmgmt - ok
14:27:18.0495 4524 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
14:27:18.0685 4524 WinRM - ok
14:27:18.0735 4524 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
14:27:18.0795 4524 WinUsb - ok
14:27:18.0835 4524 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
14:27:18.0885 4524 Wlansvc - ok
14:27:18.0935 4524 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
14:27:18.0975 4524 WmiAcpi - ok
14:27:18.0985 4524 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
14:27:19.0035 4524 wmiApSrv - ok
14:27:19.0065 4524 WMPNetworkSvc - ok
14:27:19.0065 4524 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
14:27:19.0095 4524 WPCSvc - ok
14:27:19.0125 4524 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
14:27:19.0145 4524 WPDBusEnum - ok
14:27:19.0225 4524 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
14:27:19.0295 4524 ws2ifsl - ok
14:27:19.0305 4524 WSearch - ok
14:27:19.0335 4524 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
14:27:19.0365 4524 WudfPf - ok
14:27:19.0375 4524 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
14:27:19.0415 4524 WUDFRd - ok
14:27:19.0445 4524 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
14:27:19.0505 4524 wudfsvc - ok
14:27:19.0515 4524 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\Windows\System32\wwansvc.dll
14:27:19.0555 4524 WwanSvc - ok
14:27:19.0605 4524 [ 2C6BC21B2D5B58D8B1D638C1704CB494 ] xusb21 C:\Windows\system32\DRIVERS\xusb21.sys
14:27:19.0665 4524 xusb21 - ok
14:27:19.0695 4524 [ 24FB8DB6D1D55E2C5D0A53DFE48E6AF8 ] Yontoo Desktop Updater C:\Program Files (x86)\Yontoo\Y2Desktop.Updater.exe
14:27:19.0725 4524 Yontoo Desktop Updater ( UnsignedFile.Multi.Generic ) - warning
14:27:19.0725 4524 Yontoo Desktop Updater - detected UnsignedFile.Multi.Generic (1)
14:27:19.0765 4524 ================ Scan global ===============================
14:27:19.0785 4524 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
14:27:19.0815 4524 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
14:27:19.0835 4524 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
14:27:19.0855 4524 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
14:27:19.0915 4524 [ 50BEA589F7D7958BDD2528A8F69D05CC ] C:\Windows\system32\services.exe
14:27:19.0955 4524 C:\Windows\system32\services.exe ( Virus.Win64.ZAccess.a ) - infected
14:27:19.0955 4524 C:\Windows\system32\services.exe - detected Virus.Win64.ZAccess.a (0)
14:27:19.0955 4524 ================ Scan MBR ==================================
14:27:19.0965 4524 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
14:27:20.0235 4524 \Device\Harddisk0\DR0 - ok
14:27:20.0235 4524 ================ Scan VBR ==================================
14:27:20.0235 4524 [ F4C3EFFCDC1B7D6AED8E6A0B95AED2A2 ] \Device\Harddisk0\DR0\Partition1
14:27:20.0245 4524 \Device\Harddisk0\DR0\Partition1 - ok
14:27:20.0265 4524 [ 6F7C4FDA25D02CB32C29F554F6DD2873 ] \Device\Harddisk0\DR0\Partition2
14:27:20.0265 4524 \Device\Harddisk0\DR0\Partition2 - ok
14:27:20.0265 4524 ================ Scan active images ========================
14:27:20.0275 4524 [ 3E588B60EC061686BA05D33574A344C6 ] C:\Windows\System32\drivers\crashdmp.sys
14:27:20.0275 4524 C:\Windows\System32\drivers\crashdmp.sys - ok
14:27:20.0275 4524 [ 839B5FE3D48E9F35B22C21A3D5103F6C ] C:\Windows\System32\drivers\Dumpata.sys
14:27:20.0275 4524 C:\Windows\System32\drivers\Dumpata.sys - ok
14:27:20.0285 4524 [ 02062C0B390B7729EDC9E69C680A6F3C ] C:\Windows\System32\drivers\atapi.sys
14:27:20.0285 4524 C:\Windows\System32\drivers\atapi.sys - ok
14:27:20.0285 4524 [ 814DB88F2641691575A455CF25354098 ] C:\Windows\System32\drivers\dumpfve.sys
14:27:20.0285 4524 C:\Windows\System32\drivers\dumpfve.sys - ok
14:27:20.0285 4524 [ 821BF177A24172F5F0EE9B322F58516C ] C:\Windows\System32\drivers\dtsoftbus01.sys
14:27:20.0285 4524 C:\Windows\System32\drivers\dtsoftbus01.sys - ok
14:27:20.0295 4524 [ F036CE71586E93D94DAB220D7BDF4416 ] C:\Windows\System32\drivers\cdrom.sys
14:27:20.0295 4524 C:\Windows\System32\drivers\cdrom.sys - ok
14:27:20.0295 4524 [ A6AEC362AAE5E2DDA7445E7690CB0F33 ] C:\Windows\System32\drivers\avgmfx64.sys
14:27:20.0295 4524 C:\Windows\System32\drivers\avgmfx64.sys - ok
14:27:20.0295 4524 [ 9899284589F75FA8724FF3D16AED75C1 ] C:\Windows\System32\drivers\null.sys
14:27:20.0295 4524 C:\Windows\System32\drivers\null.sys - ok
14:27:20.0305 4524 [ 16A47CE2DECC9B099349A5F840654746 ] C:\Windows\System32\drivers\beep.sys
14:27:20.0305 4524 C:\Windows\System32\drivers\beep.sys - ok
14:27:20.0305 4524 [ 4C05242DC361A217223E9B8EC2B3A76B ] C:\Windows\System32\drivers\avgtpx64.sys
14:27:20.0305 4524 C:\Windows\System32\drivers\avgtpx64.sys - ok
14:27:20.0305 4524 [ 53E92A310193CB3C03BEA963DE7D9CFC ] C:\Windows\System32\drivers\vga.sys
14:27:20.0305 4524 C:\Windows\System32\drivers\vga.sys - ok
14:27:20.0315 4524 [ E7353D59C9842BC7299FAEB7E7E09340 ] C:\Windows\System32\drivers\videoprt.sys
14:27:20.0315 4524 C:\Windows\System32\drivers\videoprt.sys - ok
14:27:20.0315 4524 [ FC438D1430B28618E2D0C7C332A710AD ] C:\Windows\System32\drivers\watchdog.sys
14:27:20.0315 4524 C:\Windows\System32\drivers\watchdog.sys - ok
14:27:20.0315 4524 [ CEA6CC257FC9B7715F1C2B4849286D24 ] C:\Windows\System32\drivers\RDPCDD.sys
14:27:20.0315 4524 C:\Windows\System32\drivers\RDPCDD.sys - ok
14:27:20.0315 4524 [ BB5971A4F00659529A5C44831AF22365 ] C:\Windows\System32\drivers\RDPENCDD.sys
14:27:20.0315 4524 C:\Windows\System32\drivers\RDPENCDD.sys - ok
14:27:20.0325 4524 [ 216F3FA57533D98E1F74DED70113177A ] C:\Windows\System32\drivers\RDPREFMP.sys
14:27:20.0325 4524 C:\Windows\System32\drivers\RDPREFMP.sys - ok
14:27:20.0325 4524 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] C:\Windows\System32\drivers\msfs.sys
14:27:20.0325 4524 C:\Windows\System32\drivers\msfs.sys - ok
14:27:20.0325 4524 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] C:\Windows\System32\drivers\npfs.sys
14:27:20.0325 4524 C:\Windows\System32\drivers\npfs.sys - ok
14:27:20.0335 4524 [ 6F020A220388ECA0AB6062DC27BD16B6 ] C:\Windows\System32\drivers\tdi.sys
14:27:20.0335 4524 C:\Windows\System32\drivers\tdi.sys - ok
14:27:20.0335 4524 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] C:\Windows\System32\drivers\tdx.sys
14:27:20.0335 4524 C:\Windows\System32\drivers\tdx.sys - ok
14:27:20.0335 4524 [ A441A655D6D9DDDDBA11994530F84981 ] C:\Windows\System32\drivers\avgtdia.sys
14:27:20.0335 4524 C:\Windows\System32\drivers\avgtdia.sys - ok
14:27:20.0345 4524 [ 09594D1089C523423B32A4229263F068 ] C:\Windows\System32\drivers\netbt.sys
14:27:20.0345 4524 C:\Windows\System32\drivers\netbt.sys - ok
14:27:20.0345 4524 [ 1C7857B62DE5994A75B054A9FD4C3825 ] C:\Windows\System32\drivers\afd.sys
14:27:20.0345 4524 C:\Windows\System32\drivers\afd.sys - ok
14:27:20.0345 4524 [ 611B23304BF067451A9FDEE01FBDD725 ] C:\Windows\System32\drivers\wfplwf.sys
14:27:20.0345 4524 C:\Windows\System32\drivers\wfplwf.sys - ok
14:27:20.0355 4524 [ 0557CF5A2556BD58E26384169D72438D ] C:\Windows\System32\drivers\pacer.sys
14:27:20.0355 4524 C:\Windows\System32\drivers\pacer.sys - ok
14:27:20.0355 4524 [ 86743D9F5D2B1048062B14B1D84501C4 ] C:\Windows\System32\drivers\netbios.sys
14:27:20.0355 4524 C:\Windows\System32\drivers\netbios.sys - ok
14:27:20.0355 4524 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] C:\Windows\System32\drivers\serial.sys
14:27:20.0355 4524 C:\Windows\System32\drivers\serial.sys - ok
14:27:20.0365 4524 [ 356AFD78A6ED4457169241AC3965230C ] C:\Windows\System32\drivers\wanarp.sys
14:27:20.0365 4524 C:\Windows\System32\drivers\wanarp.sys - ok
14:27:20.0365 4524 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] C:\Windows\System32\drivers\termdd.sys
14:27:20.0365 4524 C:\Windows\System32\drivers\termdd.sys - ok
14:27:20.0365 4524 [ DF2360004C5C837B52547B4B24E98870 ] C:\Windows\System32\drivers\scdemu.sys
14:27:20.0365 4524 C:\Windows\System32\drivers\scdemu.sys - ok
14:27:20.0365 4524 [ 77F665941019A1594D887A74F301FA2F ] C:\Windows\System32\drivers\rdbss.sys
14:27:20.0365 4524 C:\Windows\System32\drivers\rdbss.sys - ok
14:27:20.0375 4524 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] C:\Windows\System32\drivers\mssmbios.sys
14:27:20.0375 4524 C:\Windows\System32\drivers\mssmbios.sys - ok
14:27:20.0375 4524 [ E7F5AE18AF4168178A642A9247C63001 ] C:\Windows\System32\drivers\nsiproxy.sys
14:27:20.0375 4524 C:\Windows\System32\drivers\nsiproxy.sys - ok
14:27:20.0375 4524 [ 13096B05847EC78F0977F2C0F79E9AB3 ] C:\Windows\System32\drivers\discache.sys
14:27:20.0375 4524 C:\Windows\System32\drivers\discache.sys - ok
14:27:20.0385 4524 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] C:\Windows\System32\drivers\dfsc.sys
14:27:20.0385 4524 C:\Windows\System32\drivers\dfsc.sys - ok
14:27:20.0385 4524 [ 61583EE3C3A17003C4ACD0475646B4D3 ] C:\Windows\System32\drivers\blbdrive.sys
14:27:20.0385 4524 C:\Windows\System32\drivers\blbdrive.sys - ok
14:27:20.0385 4524 [ BE8BC5D10ABA05D7F6E79D8296906C86 ] C:\Windows\System32\drivers\avgldx64.sys
14:27:20.0385 4524 C:\Windows\System32\drivers\avgldx64.sys - ok
14:27:20.0395 4524 [ 3566A8DAAFA27AF944F5D705EAA64894 ] C:\Windows\System32\drivers\tunnel.sys
14:27:20.0395 4524 C:\Windows\System32\drivers\tunnel.sys - ok
14:27:20.0395 4524 [ 1E56388B3FE0D031C44144EB8C4D6217 ] C:\Windows\System32\drivers\amdppm.sys
14:27:20.0395 4524 C:\Windows\System32\drivers\amdppm.sys - ok
14:27:20.0395 4524 [ CF95B85FF8D128385ABD411C8CA74DED ] C:\Windows\System32\ntdll.dll
14:27:20.0395 4524 C:\Windows\System32\ntdll.dll - ok
14:27:20.0405 4524 [ F0371DE302FFFF8F086661611BE60848 ] C:\Windows\System32\smss.exe
14:27:20.0405 4524 C:\Windows\System32\smss.exe - ok
14:27:20.0405 4524 [ F6FF8944478594D0E414D3F048F0D778 ] C:\Windows\System32\drivers\wmiacpi.sys
14:27:20.0405 4524 C:\Windows\System32\drivers\wmiacpi.sys - ok
14:27:20.0405 4524 [ 9B918FD1A17385A22BE43AD9EE299BD3 ] C:\Windows\System32\drivers\atikmpag.sys
14:27:20.0405 4524 C:\Windows\System32\drivers\atikmpag.sys - ok
14:27:20.0415 4524 [ 0E882C155315FF446602D48000441AE4 ] C:\Windows\System32\drivers\atikmdag.sys
14:27:20.0415 4524 C:\Windows\System32\drivers\atikmdag.sys - ok
14:27:20.0415 4524 [ F5BEE30450E18E6B83A5012C100616FD ] C:\Windows\System32\drivers\dxgkrnl.sys
14:27:20.0415 4524 C:\Windows\System32\drivers\dxgkrnl.sys - ok
14:27:20.0415 4524 [ 9CD68BDDF322535C02ADC8331013D13D ] C:\Windows\System32\drivers\dxgmms1.sys
14:27:20.0415 4524 C:\Windows\System32\drivers\dxgmms1.sys - ok
14:27:20.0415 4524 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] C:\Windows\System32\drivers\hdaudbus.sys
14:27:20.0415 4524 C:\Windows\System32\drivers\hdaudbus.sys - ok
14:27:20.0425 4524 [ 6D3C7E7D82D3DC92DC2A8B0DF9F20F8A ] C:\Windows\System32\drivers\Rt64win7.sys
14:27:20.0425 4524 C:\Windows\System32\drivers\Rt64win7.sys - ok
14:27:20.0425 4524 [ E403AACF8C7BB11375122D2464560311 ] C:\Windows\System32\drivers\GEARAspiWDM.sys
14:27:20.0425 4524 C:\Windows\System32\drivers\GEARAspiWDM.sys - ok
14:27:20.0425 4524 [ AE259C75F9A0B057B6BF9E9695632B09 ] C:\Windows\System32\drivers\usbport.sys
14:27:20.0425 4524 C:\Windows\System32\drivers\usbport.sys - ok
14:27:20.0435 4524 [ C025055FE7B87701EB042095DF1A2D7B ] C:\Windows\System32\drivers\usbehci.sys
14:27:20.0435 4524 C:\Windows\System32\drivers\usbehci.sys - ok
14:27:20.0435 4524 [ 9840FC418B4CBD632D3D0A667A725C31 ] C:\Windows\System32\drivers\usbohci.sys
14:27:20.0435 4524 C:\Windows\System32\drivers\usbohci.sys - ok
14:27:20.0435 4524 [ A87D604AEA360176311474C87A63BB88 ] C:\Windows\System32\drivers\1394ohci.sys
14:27:20.0435 4524 C:\Windows\System32\drivers\1394ohci.sys - ok
14:27:20.0445 4524 [ CB624C0035412AF0DEBEC78C41F5CA1B ] C:\Windows\System32\drivers\serenum.sys
14:27:20.0445 4524 C:\Windows\System32\drivers\serenum.sys - ok
14:27:20.0445 4524 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] C:\Windows\System32\drivers\i8042prt.sys
14:27:20.0445 4524 C:\Windows\System32\drivers\i8042prt.sys - ok
14:27:20.0445 4524 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] C:\Windows\System32\drivers\kbdclass.sys
14:27:20.0445 4524 C:\Windows\System32\drivers\kbdclass.sys - ok
14:27:20.0455 4524 [ 7ECFF9B22276B73F43A99A15A6094E90 ] C:\Windows\System32\drivers\agilevpn.sys
14:27:20.0455 4524 C:\Windows\System32\drivers\agilevpn.sys - ok
14:27:20.0455 4524 [ 03EDB043586CCEBA243D689BDDA370A8 ] C:\Windows\System32\drivers\CompositeBus.sys
14:27:20.0455 4524 C:\Windows\System32\drivers\CompositeBus.sys - ok
14:27:20.0455 4524 [ 30639C932D9FEF22B31268FE25A1B6E5 ] C:\Windows\System32\drivers\ndistapi.sys
14:27:20.0455 4524 C:\Windows\System32\drivers\ndistapi.sys - ok
14:27:20.0465 4524 [ 471815800AE33E6F1C32FB1B97C490CA ] C:\Windows\System32\drivers\rasl2tp.sys
14:27:20.0465 4524 C:\Windows\System32\drivers\rasl2tp.sys - ok
14:27:20.0465 4524 [ 53F7305169863F0A2BDDC49E116C2E11 ] C:\Windows\System32\drivers\ndiswan.sys
14:27:20.0465 4524 C:\Windows\System32\drivers\ndiswan.sys - ok
14:27:20.0465 4524 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] C:\Windows\System32\drivers\raspppoe.sys
14:27:20.0465 4524 C:\Windows\System32\drivers\raspppoe.sys - ok
14:27:20.0475 4524 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] C:\Windows\System32\drivers\raspptp.sys
14:27:20.0475 4524 C:\Windows\System32\drivers\raspptp.sys - ok
14:27:20.0475 4524 [ E8B1E447B008D07FF47D016C2B0EEECB ] C:\Windows\System32\drivers\rassstp.sys
14:27:20.0475 4524 C:\Windows\System32\drivers\rassstp.sys - ok
14:27:20.0475 4524 [ 7D27EA49F3C1F687D357E77A470AEA99 ] C:\Windows\System32\drivers\mouclass.sys
14:27:20.0475 4524 C:\Windows\System32\drivers\mouclass.sys - ok
14:27:20.0475 4524 [ 24FBF5CC5C04150073C315A7C83521EE ] C:\Windows\System32\drivers\ks.sys
14:27:20.0475 4524 C:\Windows\System32\drivers\ks.sys - ok
14:27:20.0485 4524 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] C:\Windows\System32\drivers\swenum.sys
14:27:20.0485 4524 C:\Windows\System32\drivers\swenum.sys - ok
14:27:20.0485 4524 [ 6A2EEB0C4133B20773BB3DD0B7B377B4 ] C:\Windows\System32\drivers\amdiox64.sys
14:27:20.0485 4524 C:\Windows\System32\drivers\amdiox64.sys - ok
14:27:20.0485 4524 [ DC54A574663A895C8763AF0FA1FF7561 ] C:\Windows\System32\drivers\umbus.sys
14:27:20.0485 4524 C:\Windows\System32\drivers\umbus.sys - ok
14:27:20.0495 4524 [ 287C6C9410B111B68B52CA298F7B8C24 ] C:\Windows\System32\drivers\usbhub.sys
14:27:20.0495 4524 C:\Windows\System32\drivers\usbhub.sys - ok
14:27:20.0495 4524 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] C:\Windows\System32\drivers\ndproxy.sys
14:27:20.0495 4524 C:\Windows\System32\drivers\ndproxy.sys - ok
14:27:20.0495 4524 [ 21D26064AEDB4988F785BB4A3A2C051E ] C:\Windows\System32\drivers\drmk.sys
14:27:20.0495 4524 C:\Windows\System32\drivers\drmk.sys - ok
14:27:20.0505 4524 [ 32E11315B5126921FFD9074840EF13D3 ] C:\Windows\System32\drivers\portcls.sys
14:27:20.0505 4524 C:\Windows\System32\drivers\portcls.sys - ok
14:27:20.0505 4524 [ 6869281E78CB31A43E969F06B57347C4 ] C:\Windows\System32\drivers\ksthunk.sys
14:27:20.0505 4524 C:\Windows\System32\drivers\ksthunk.sys - ok
14:27:20.0505 4524 [ C618475866F6A7129F64A55961C1BB8B ] C:\Windows\System32\drivers\RtHDMIVX.sys
14:27:20.0505 4524 C:\Windows\System32\drivers\RtHDMIVX.sys - ok
14:27:20.0515 4524 [ 9297BC7FB61F58670EE176DD18F4DD92 ] C:\Windows\System32\drivers\RTKVHD64.sys
14:27:20.0515 4524 C:\Windows\System32\drivers\RTKVHD64.sys - ok
14:27:20.0515 4524 [ 3B536A8BEC3B4F23FFDFD78B11A2AB93 ] C:\Windows\System32\autochk.exe
14:27:20.0515 4524 C:\Windows\System32\autochk.exe - ok
14:27:20.0515 4524 [ C6316A424C10A25B580D86C098BB0634 ] C:\PROGRA~2\AVG\AVG2012\avgrsa.exe
14:27:20.0515 4524 C:\PROGRA~2\AVG\AVG2012\avgrsa.exe - ok
14:27:20.0525 4524 [ F108BD69365EFC749C7E5F8BBEB51E3B ] C:\Program Files (x86)\AVG\AVG2012\avgsysa.dll
14:27:20.0525 4524 C:\Program Files (x86)\AVG\AVG2012\avgsysa.dll - ok
14:27:20.0525 4524 [ 863D56F63D254EBE27589893688CA8B3 ] C:\Program Files (x86)\AVG\AVG2012\avgntopenssla.dll
14:27:20.0525 4524 C:\Program Files (x86)\AVG\AVG2012\avgntopenssla.dll - ok
14:27:20.0525 4524 [ 67165D5818A872A7F01047771AA81FC9 ] C:\Program Files (x86)\AVG\AVG2012\avgloga.dll
14:27:20.0525 4524 C:\Program Files (x86)\AVG\AVG2012\avgloga.dll - ok
14:27:20.0535 4524 [ 8B0E40E7E8BBF5ACF390465609D89FF1 ] C:\Windows\System32\drivers\hidclass.sys
14:27:20.0535 4524 C:\Windows\System32\drivers\hidclass.sys - ok
14:27:20.0535 4524 [ 49EE2E52E6CD03947DAD72F65367BE06 ] C:\Windows\System32\drivers\hidparse.sys
14:27:20.0535 4524 C:\Windows\System32\drivers\hidparse.sys - ok
14:27:20.0535 4524 [ CCA2AB1752A61F29C3C941CD79D78CEA ] C:\Windows\System32\drivers\usbd.sys
14:27:20.0535 4524 C:\Windows\System32\drivers\usbd.sys - ok
14:27:20.0535 4524 [ 9592090A7E2B61CD582B612B6DF70536 ] C:\Windows\System32\drivers\hidusb.sys
14:27:20.0535 4524 C:\Windows\System32\drivers\hidusb.sys - ok
14:27:20.0545 4524 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] C:\Windows\System32\drivers\mouhid.sys
14:27:20.0545 4524 C:\Windows\System32\drivers\mouhid.sys - ok
14:27:20.0545 4524 [ FEC1F5DA49C4D693CCD1B922B7F3B22F ] C:\Windows\System32\drivers\arusb_lhx.sys
14:27:20.0545 4524 C:\Windows\System32\drivers\arusb_lhx.sys - ok
14:27:20.0545 4524 [ 0C9456994D087498B4B12DB6DE02779C ] C:\PROGRA~2\AVG\AVG2012\avgchjwa.dll
14:27:20.0545 4524 C:\PROGRA~2\AVG\AVG2012\avgchjwa.dll - ok
14:27:20.0555 4524 [ 171975CD6BDE8CB4085D999F2EBDECFB ] C:\PROGRA~2\AVG\AVG2012\avgclita.dll
14:27:20.0555 4524 C:\PROGRA~2\AVG\AVG2012\avgclita.dll - ok
14:27:20.0555 4524 [ 80DDC9151BFDF260AC4441A2F3943A04 ] C:\PROGRA~2\AVG\AVG2012\avgcclia.dll
14:27:20.0555 4524 C:\PROGRA~2\AVG\AVG2012\avgcclia.dll - ok
14:27:20.0555 4524 [ B96E3E543675039FC93D14EDF627231A ] C:\Program Files (x86)\AVG\AVG2012\avgcsrva.exe
14:27:20.0555 4524 C:\Program Files (x86)\AVG\AVG2012\avgcsrva.exe - ok
14:27:20.0565 4524 [ 6A8C7D19FC7AC8A0CFA6C020BEF67A0A ] C:\Program Files (x86)\AVG\AVG2012\avgcorea.dll
14:27:20.0565 4524 C:\Program Files (x86)\AVG\AVG2012\avgcorea.dll - ok
14:27:20.0565 4524 [ 747601D47721AD1DE22CFFB4F912203D ] C:\Program Files (x86)\AVG\AVG2012\avgcerta.dll
14:27:20.0565 4524 C:\Program Files (x86)\AVG\AVG2012\avgcerta.dll - ok
14:27:20.0565 4524 [ D64B112ECC7230808829A7BE86DCE8E3 ] C:\Program Files (x86)\AVG\AVG2012\avgchcla.dll
14:27:20.0565 4524 C:\Program Files (x86)\AVG\AVG2012\avgchcla.dll - ok
14:27:20.0575 4524 [ 6DF46D2BD74E3DA1B45F08F10D172732 ] C:\Windows\System32\advapi32.dll
14:27:20.0575 4524 C:\Windows\System32\advapi32.dll - ok
14:27:20.0575 4524 [ 1084AA52CCC324EA54C7121FA24C2221 ] C:\Windows\System32\gdi32.dll
14:27:20.0575 4524 C:\Windows\System32\gdi32.dll - ok
14:27:20.0575 4524 [ 28C0B5024F5C5A438E78B188CFC81B7F ] C:\Windows\System32\normaliz.dll
14:27:20.0575 4524 C:\Windows\System32\normaliz.dll - ok
14:27:20.0585 4524 [ 5D8E6C95156ED1F79A63D1EADE6F9ED5 ] C:\Windows\System32\setupapi.dll
14:27:20.0585 4524 C:\Windows\System32\setupapi.dll - ok
14:27:20.0585 4524 [ C6689007B3A749C49A5438DCF36E0CE4 ] C:\Windows\System32\shell32.dll
14:27:20.0585 4524 C:\Windows\System32\shell32.dll - ok
14:27:20.0585 4524 [ D202223587518B13D72D68937B7E3F70 ] C:\Windows\System32\lpk.dll
14:27:20.0585 4524 C:\Windows\System32\lpk.dll - ok
14:27:20.0585 4524 [ D87E1E59C73C1F98D5DED5B3850C40F5 ] C:\Windows\System32\psapi.dll
14:27:20.0585 4524 C:\Windows\System32\psapi.dll - ok
14:27:20.0595 4524 [ 9835E63E09F824D22B689D2BB789BAB9 ] C:\Windows\System32\comdlg32.dll
14:27:20.0595 4524 C:\Windows\System32\comdlg32.dll - ok
14:27:20.0595 4524 [ FE70103391A64039A921DBFFF9C7AB1B ] C:\Windows\System32\user32.dll
14:27:20.0595 4524 C:\Windows\System32\user32.dll - ok
14:27:20.0595 4524 [ A4F6142CABA82FB7293ECE5FF864B440 ] C:\Windows\System32\wininet.dll
14:27:20.0595 4524 C:\Windows\System32\wininet.dll - ok
14:27:20.0605 4524 [ 25983DE69B57142039AC8D95E71CD9C9 ] C:\Windows\System32\clbcatq.dll
14:27:20.0605 4524 C:\Windows\System32\clbcatq.dll - ok
14:27:20.0605 4524 [ 0611473C1AD9E2D991CD9482068417F7 ] C:\Windows\System32\rpcrt4.dll
14:27:20.0605 4524 C:\Windows\System32\rpcrt4.dll - ok
14:27:20.0605 4524 [ C06B32165E23A72A898B7A89679AD754 ] C:\Windows\System32\oleaut32.dll
14:27:20.0605 4524 C:\Windows\System32\oleaut32.dll - ok
14:27:20.0615 4524 [ AA2C08CE85653B1A0D2E4AB407FA176C ] C:\Windows\System32\imm32.dll
14:27:20.0615 4524 C:\Windows\System32\imm32.dll - ok
14:27:20.0615 4524 [ C431EAF5CAA1C82CAC2534A2EAB348A3 ] C:\Windows\System32\msctf.dll
14:27:20.0615 4524 C:\Windows\System32\msctf.dll - ok
14:27:20.0615 4524 [ D3A6792AED4841B4D055C7C80C815BB7 ] C:\Windows\System32\urlmon.dll
14:27:20.0615 4524 C:\Windows\System32\urlmon.dll - ok
14:27:20.0615 4524 [ 8D4DEA45FCDF9FCFD9E31232A07E6EF9 ] C:\Windows\System32\iertutil.dll
14:27:20.0615 4524 C:\Windows\System32\iertutil.dll - ok
14:27:20.0625 4524 [ 6C60B5ACA7442EFB794082CDACFC001C ] C:\Windows\System32\ole32.dll
14:27:20.0625 4524 C:\Windows\System32\ole32.dll - ok
14:27:20.0625 4524 [ C391FC68282A000CDF953F8B6B55D2EF ] C:\Windows\System32\msvcrt.dll
14:27:20.0625 4524 C:\Windows\System32\msvcrt.dll - ok
14:27:20.0625 4524 [ 044FE45FFD6AD40E3BBBE60B7F41BABE ] C:\Windows\System32\nsi.dll
14:27:20.0625 4524 C:\Windows\System32\nsi.dll - ok
14:27:20.0635 4524 [ A1BE6A720D02E37F72E9CD89AE9CB3CF ] C:\Windows\System32\imagehlp.dll
14:27:20.0635 4524 C:\Windows\System32\imagehlp.dll - ok
14:27:20.0635 4524 [ 65C113214F7B05820F6D8A65B1485196 ] C:\Windows\System32\kernel32.dll
14:27:20.0635 4524 C:\Windows\System32\kernel32.dll - ok
14:27:20.0635 4524 [ 83404DCBCE4925B6A5A77C5170F46D86 ] C:\Windows\System32\sechost.dll
14:27:20.0635 4524 C:\Windows\System32\sechost.dll - ok
14:27:20.0645 4524 [ EAF32CB8C1F810E4715B4DFBE785C7FF ] C:\Windows\System32\shlwapi.dll
14:27:20.0645 4524 C:\Windows\System32\shlwapi.dll - ok
14:27:20.0645 4524 [ DBF99FD9CAF75CA66D042BD8D050FF71 ] C:\Windows\System32\usp10.dll
14:27:20.0645 4524 C:\Windows\System32\usp10.dll - ok
14:27:20.0645 4524 [ 4E4FFB09D895AA000DD56D1404F69A7E ] C:\Windows\System32\Wldap32.dll
14:27:20.0645 4524 C:\Windows\System32\Wldap32.dll - ok
14:27:20.0655 4524 [ F7CE0C81C545364020ED8203CF0A633E ] C:\Windows\System32\difxapi.dll
14:27:20.0655 4524 C:\Windows\System32\difxapi.dll - ok
14:27:20.0655 4524 [ 4BBFA57F594F7E8A8EDC8F377184C3F0 ] C:\Windows\System32\ws2_32.dll
14:27:20.0655 4524 C:\Windows\System32\ws2_32.dll - ok
14:27:20.0655 4524 [ 06FEC9E8117103BB1141A560E98077DA ] C:\Windows\System32\devobj.dll
14:27:20.0655 4524 C:\Windows\System32\devobj.dll - ok
14:27:20.0665 4524 [ 2477A28081BDAEE622CF045ACF8EE124 ] C:\Windows\System32\cfgmgr32.dll
14:27:20.0665 4524 C:\Windows\System32\cfgmgr32.dll - ok
14:27:20.0665 4524 [ AA06902362B1422D7A7DA7061E07C624 ] C:\Windows\System32\wintrust.dll
14:27:20.0665 4524 C:\Windows\System32\wintrust.dll - ok
14:27:20.0665 4524 [ 14DFDEAF4E589ED3F1FF187A86B9408C ] C:\Windows\System32\comctl32.dll
14:27:20.0665 4524 C:\Windows\System32\comctl32.dll - ok
14:27:20.0665 4524 [ 12EE6FE9268CEE6D90FDCCBF89236C65 ] C:\Windows\System32\crypt32.dll
14:27:20.0665 4524 C:\Windows\System32\crypt32.dll - ok
14:27:20.0675 4524 [ 1F56F209585F350A5666E3CC7931FD67 ] C:\Windows\System32\KernelBase.dll
14:27:20.0675 4524 C:\Windows\System32\KernelBase.dll - ok
14:27:20.0675 4524 [ 884415BD4269C02EAF8E2613BF85500D ] C:\Windows\System32\msasn1.dll
14:27:20.0675 4524 C:\Windows\System32\msasn1.dll - ok
14:27:20.0675 4524 [ 9C278785347BCC991F8EA2999D90F58D ] C:\Windows\SysWOW64\normaliz.dll
14:27:20.0675 4524 C:\Windows\SysWOW64\normaliz.dll - ok
14:27:20.0685 4524 [ BF24D6F2ED97FE830BFD52B246F98E67 ] C:\Windows\System32\drivers\dxapi.sys
14:27:20.0685 4524 C:\Windows\System32\drivers\dxapi.sys - ok
14:27:20.0685 4524 [ 86F96630D28523F1C402C783F046DEF1 ] C:\Windows\System32\win32k.sys
14:27:20.0685 4524 C:\Windows\System32\win32k.sys - ok
14:27:20.0685 4524 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\System32\basesrv.dll
14:27:20.0685 4524 C:\Windows\System32\basesrv.dll - ok
14:27:20.0695 4524 [ CEC1EDF4022DC4DCA40384DCEC672B0E ] C:\Windows\System32\csrsrv.dll
14:27:20.0695 4524 C:\Windows\System32\csrsrv.dll - ok
14:27:20.0695 4524 [ 60C2862B4BF0FD9F582EF344C2B1EC72 ] C:\Windows\System32\csrss.exe
14:27:20.0695 4524 C:\Windows\System32\csrss.exe - ok
14:27:20.0695 4524 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\System32\winsrv.dll
14:27:20.0695 4524 C:\Windows\System32\winsrv.dll - ok
14:27:20.0705 4524 [ B03D591DC7DA45ECE20B3B467E6AADAA ] C:\Windows\System32\drivers\monitor.sys
14:27:20.0705 4524 C:\Windows\System32\drivers\monitor.sys - ok
14:27:20.0705 4524 [ F29FE765E1448EF371CFE05BFAC74ADB ] C:\Windows\System32\tsddd.dll
14:27:20.0705 4524 C:\Windows\System32\tsddd.dll - ok
14:27:20.0705 4524 [ 2C942733A5983DD4502219FF37C7EBC7 ] C:\Windows\System32\profapi.dll
14:27:20.0705 4524 C:\Windows\System32\profapi.dll - ok
14:27:20.0705 4524 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\System32\sxssrv.dll
14:27:20.0705 4524 C:\Windows\System32\sxssrv.dll - ok
14:27:20.0715 4524 [ 94355C28C1970635A31B3FE52EB7CEBA ] C:\Windows\System32\wininit.exe
14:27:20.0715 4524 C:\Windows\System32\wininit.exe - ok
14:27:20.0715 4524 [ C2A8CB1275ECB85D246A9ECC02A728E3 ] C:\Windows\System32\RpcRtRemote.dll
14:27:20.0715 4524 C:\Windows\System32\RpcRtRemote.dll - ok
14:27:20.0715 4524 [ 05569A79BF4693670B709144382D02D4 ] C:\Windows\System32\cdd.dll
14:27:20.0715 4524 C:\Windows\System32\cdd.dll - ok
14:27:20.0725 4524 [ 0F5CD07A098D6A5989019CC377722989 ] C:\Windows\System32\KBDCA.DLL
14:27:20.0725 4524 C:\Windows\System32\KBDCA.DLL - ok
14:27:20.0725 4524 [ 1151B1BAA6F350B1DB6598E0FEA7C457 ] C:\Windows\System32\winlogon.exe
14:27:20.0725 4524 C:\Windows\System32\winlogon.exe - ok
14:27:20.0725 4524 [ 0D9764D58C5EFD672B7184854B152E5E ] C:\Windows\System32\winsta.dll
14:27:20.0725 4524 C:\Windows\System32\winsta.dll - ok
14:27:20.0735 4524 [ 78523A26F5604C0568FE9D1CE86E36F4 ] C:\Windows\System32\KBDUS.DLL
14:27:20.0735 4524 C:\Windows\System32\KBDUS.DLL - ok
14:27:20.0735 4524 [ 283C64A094A763C2F3DE2C926AEAE8CD ] C:\Windows\System32\KBDCAN.DLL
14:27:20.0735 4524 C:\Windows\System32\KBDCAN.DLL - ok
14:27:20.0735 4524 [ B26B1801356760841C3BC69F9F91537F ] C:\Windows\System32\WlS0WndH.dll
14:27:20.0735 4524 C:\Windows\System32\WlS0WndH.dll - ok
14:27:20.0745 4524 [ 9CEAD32E79A62150FE9F8557E58E008B ] C:\Windows\System32\sxs.dll
14:27:20.0745 4524 C:\Windows\System32\sxs.dll - ok
14:27:20.0745 4524 [ 784FA3DF338E2E8F5F0389D6FAC428AF ] C:\Windows\System32\cryptbase.dll
14:27:20.0745 4524 C:\Windows\System32\cryptbase.dll - ok
14:27:20.0745 4524 [ 90499F3163A9F815CF196A205EA3CD5D ] C:\Windows\System32\apphelp.dll
14:27:20.0745 4524 C:\Windows\System32\apphelp.dll - ok
14:27:20.0745 4524 [ C118A82CD78818C29AB228366EBF81C3 ] C:\Windows\System32\lsass.exe
14:27:20.0745 4524 C:\Windows\System32\lsass.exe - ok
14:27:20.0755 4524 [ 9662EE182644511439F1C53745DC1C88 ] C:\Windows\System32\lsm.exe
14:27:20.0755 4524 C:\Windows\System32\lsm.exe - ok
14:27:20.0755 4524 [ 50BEA589F7D7958BDD2528A8F69D05CC ] C:\Windows\System32\services.exe
14:27:20.0755 4524 C:\Windows\System32\services.exe - ok
14:27:20.0755 4524 [ 3A0CE5FE781708CD6ABD55313607EC8B ] C:\Windows\System32\sspisrv.dll
14:27:20.0755 4524 C:\Windows\System32\sspisrv.dll - ok
14:27:20.0765 4524 [ 66A6063D0BAAD3F7B2B9868859E0743B ] C:\Windows\System32\lsasrv.dll
14:27:20.0765 4524 C:\Windows\System32\lsasrv.dll - ok
14:27:20.0765 4524 [ B66BC8B20B7F33975865B1DF99783FD8 ] C:\Windows\System32\sspicli.dll
14:27:20.0765 4524 C:\Windows\System32\sspicli.dll - ok
14:27:20.0765 4524 [ 68083118797CAF30FB2EA3E71494D67E ] C:\Windows\System32\sysntfy.dll
14:27:20.0765 4524 C:\Windows\System32\sysntfy.dll - ok
14:27:20.0765 4524 [ DEE7267C5D232A3B816866872CE199E6 ] C:\Windows\System32\wmsgapi.dll
14:27:20.0765 4524 C:\Windows\System32\wmsgapi.dll - ok
14:27:20.0775 4524 [ 3A061472B38233BAFF9CFEFF2E49C46B ] C:\Windows\System32\cryptdll.dll
14:27:20.0775 4524 C:\Windows\System32\cryptdll.dll - ok
14:27:20.0775 4524 [ 1D5185A4C7E6695431AE4B55C3D7D333 ] C:\Windows\System32\mswsock.dll
14:27:20.0775 4524 C:\Windows\System32\mswsock.dll - ok
14:27:20.0775 4524 [ A744BA6E04C8AA4592818178DBF89521 ] C:\Windows\System32\samsrv.dll
14:27:20.0775 4524 C:\Windows\System32\samsrv.dll - ok
14:27:20.0785 4524 [ 3C073B0C596A0AF84933E7406766B040 ] C:\Windows\System32\wevtapi.dll
14:27:20.0785 4524 C:\Windows\System32\wevtapi.dll - ok
14:27:20.0785 4524 [ E914A50A151DFFE63D3935226DB5E2C1 ] C:\Windows\System32\scext.dll
14:27:20.0785 4524 C:\Windows\System32\scext.dll - ok
14:27:20.0785 4524 [ 7FBEBD2229EA5FD48D41B199EC2D541C ] C:\Windows\System32\authz.dll
14:27:20.0785 4524 C:\Windows\System32\authz.dll - ok
14:27:20.0795 4524 [ 86FE1B1F8FD42CD0DB641AB1CDB13093 ] C:\Windows\System32\cngaudit.dll
14:27:20.0795 4524 C:\Windows\System32\cngaudit.dll - ok
14:27:20.0795 4524 [ BBCDF350817BA86416C0F06B6981BE8D ] C:\Windows\System32\scesrv.dll
14:27:20.0795 4524 C:\Windows\System32\scesrv.dll - ok
14:27:20.0795 4524 [ 0144D8D75A0B12938AEEE859E3310A46 ] C:\Windows\System32\secur32.dll
14:27:20.0795 4524 C:\Windows\System32\secur32.dll - ok
14:27:20.0805 4524 [ 3A9C9BAF610B0DD4967086040B3B62A9 ] C:\Windows\System32\srvcli.dll
14:27:20.0805 4524 C:\Windows\System32\srvcli.dll - ok
14:27:20.0805 4524 [ 5F3307352216618221A17CFEF273EEE2 ] C:\Windows\System32\ncrypt.dll
14:27:20.0805 4524 C:\Windows\System32\ncrypt.dll - ok
14:27:20.0805 4524 [ B9A95365E52F421A20E1501935FADDA5 ] C:\Windows\System32\bcrypt.dll
14:27:20.0805 4524 C:\Windows\System32\bcrypt.dll - ok
14:27:20.0805 4524 [ D0C2FBB6D97416B0166478FC7AE2B212 ] C:\Windows\System32\cryptsp.dll
14:27:20.0805 4524 C:\Windows\System32\cryptsp.dll - ok
14:27:20.0815 4524 [ 5D8874A8C11DDDDE29E12DE0E2013493 ] C:\Windows\System32\rsaenh.dll
14:27:20.0815 4524 C:\Windows\System32\rsaenh.dll - ok
14:27:20.0815 4524 [ 02B64609F865A39365FF88580DF11738 ] C:\Windows\System32\msprivs.dll
14:27:20.0815 4524 C:\Windows\System32\msprivs.dll - ok
14:27:20.0815 4524 [ 50532FCD7ECF02DD169CE5C485F02534 ] C:\Windows\System32\negoexts.dll
14:27:20.0815 4524 C:\Windows\System32\negoexts.dll - ok
14:27:20.0825 4524 [ C6505DE3561537BA1004D638C2F93F2F ] C:\Windows\System32\netjoin.dll
14:27:20.0825 4524 C:\Windows\System32\netjoin.dll - ok
14:27:20.0825 4524 [ 44E1A196DFCB53B01FE4B855C3B56A15 ] C:\Windows\System32\kerberos.dll
14:27:20.0825 4524 C:\Windows\System32\kerberos.dll - ok
14:27:20.0825 4524 [ EC42457ADE8C59C6479B44F8A6636F6F ] C:\Windows\Installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\U\80000064.@
14:27:20.0825 4524 C:\Windows\Installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\U\80000064.@ - ok
14:27:20.0835 4524 [ A843370A7F1676DEE720A2782FB3F258 ] C:\Windows\Installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\U\80000000.@
14:27:20.0835 4524 C:\Windows\Installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\U\80000000.@ - ok
14:27:20.0835 4524 [ EC7CBFF96B05ECF3D366355B3C64ADCF ] C:\Windows\System32\wship6.dll
14:27:20.0835 4524 C:\Windows\System32\wship6.dll - ok
14:27:20.0835 4524 [ EF12B8385AA2849999008A977918F96B ] C:\Windows\System32\msv1_0.dll
14:27:20.0835 4524 C:\Windows\System32\msv1_0.dll - ok
14:27:20.0845 4524 [ 492D07D79E7024CA310867B526D9636D ] C:\Windows\System32\dnsapi.dll
14:27:20.0845 4524 C:\Windows\System32\dnsapi.dll - ok
14:27:20.0845 4524 [ AA339DD8BB128EF66660DFBBB59043D3 ] C:\Windows\System32\netlogon.dll
14:27:20.0845 4524 C:\Windows\System32\netlogon.dll - ok
14:27:20.0845 4524 [ 8FFE297B8449386E7B6851458B6E474E ] C:\Windows\System32\logoncli.dll
14:27:20.0845 4524 C:\Windows\System32\logoncli.dll - ok
14:27:20.0855 4524 [ 1573C45E65DE32B1BC3572634F8F1E8E ] C:\Windows\System32\schannel.dll
14:27:20.0855 4524 C:\Windows\System32\schannel.dll - ok
14:27:20.0855 4524 [ 95FB6CA4374E343DDD653FCC43F9D26B ] C:\Windows\System32\wdigest.dll
14:27:20.0855 4524 C:\Windows\System32\wdigest.dll - ok
14:27:20.0855 4524 [ 8A25506B6948EFBD5A7F37E53CCD36D9 ] C:\Windows\System32\TSpkg.dll
14:27:20.0855 4524 C:\Windows\System32\TSpkg.dll - ok
14:27:20.0855 4524 [ E08088A97F95345E181C3DFCE2C615EF ] C:\Windows\System32\pku2u.dll
14:27:20.0855 4524 C:\Windows\System32\pku2u.dll - ok
14:27:20.0865 4524 [ D6C7780A364C6BBACFA796BAB9F1B374 ] C:\Windows\System32\bcryptprimitives.dll
14:27:20.0865 4524 C:\Windows\System32\bcryptprimitives.dll - ok
14:27:20.0865 4524 [ 52D3D5E3586988D4D9E34ACAAC33105C ] C:\Windows\System32\credssp.dll
14:27:20.0865 4524 C:\Windows\System32\credssp.dll - ok
14:27:20.0865 4524 [ 90BDEFC5DF334E5100EAA781D798DE1A ] C:\Windows\System32\efslsaext.dll
14:27:20.0865 4524 C:\Windows\System32\efslsaext.dll - ok
14:27:20.0875 4524 [ ED78427259134C63ED69804D2132B86C ] C:\Windows\System32\scecli.dll
14:27:20.0875 4524 C:\Windows\System32\scecli.dll - ok
14:27:20.0875 4524 [ CB2ABB2DA1E9C977302A78D86D4AE3B0 ] C:\Windows\System32\atmfd.dll
14:27:20.0875 4524 C:\Windows\System32\atmfd.dll - ok
14:27:20.0875 4524 [ 1B9B865BE9020F591A273CB37BC0EE3D ] C:\Windows\Installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\U\000000cb.@
14:27:20.0875 4524 C:\Windows\Installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\U\000000cb.@ - ok
14:27:20.0885 4524 [ 7CC7DF5B654DA579613F811D8C637E29 ] C:\Windows\System32\ubpm.dll
14:27:20.0885 4524 C:\Windows\System32\ubpm.dll - ok
14:27:20.0885 4524 [ 05F08E6A19AE6F441D74262BC841A6FD ] C:\Windows\Installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\U\00000004.@
14:27:20.0885 4524 C:\Windows\Installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\U\00000004.@ - ok
14:27:20.0885 4524 [ 31559F3244C6BC00A52030CAA83B6B91 ] C:\Windows\System32\WSHTCPIP.DLL
14:27:20.0885 4524 C:\Windows\System32\WSHTCPIP.DLL - ok
14:27:20.0895 4524 [ 1F4492FE41767CDB8B89D17655847CDD ] C:\Windows\System32\ntmarta.dll
14:27:20.0895 4524 C:\Windows\System32\ntmarta.dll - ok
14:27:20.0895 4524 [ E6EB44ABAAF1F330119F854856C53EBE ] C:\Windows\System32\SPInf.dll
14:27:20.0895 4524 C:\Windows\System32\SPInf.dll - ok
14:27:20.0895 4524 [ C78655BC80301D76ED4FEF1C1EA40A7D ] C:\Windows\System32\svchost.exe
14:27:20.0895 4524 C:\Windows\System32\svchost.exe - ok
14:27:20.0905 4524 [ 25FBDEF06C4D92815B353F6E792C8129 ] C:\Windows\System32\umpnpmgr.dll
14:27:20.0905 4524 C:\Windows\System32\umpnpmgr.dll - ok
14:27:20.0905 4524 [ CD1B5AD07E5F7FEF30E055DCC9E96180 ] C:\Windows\System32\devrtl.dll
14:27:20.0905 4524 C:\Windows\System32\devrtl.dll - ok
14:27:20.0905 4524 [ 9C9307C95671AC962F3D6EB3A4A89BAE ] C:\Windows\System32\gpapi.dll
14:27:20.0905 4524 C:\Windows\System32\gpapi.dll - ok
14:27:20.0905 4524 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] C:\Windows\System32\umpo.dll
14:27:20.0905 4524 C:\Windows\System32\umpo.dll - ok
14:27:20.0915 4524 [ 7A17485DC7D8A7AC81321A42CD034519 ] C:\Windows\System32\userenv.dll
14:27:20.0915 4524 C:\Windows\System32\userenv.dll - ok
14:27:20.0915 4524 [ F6C011B46FAEEF33536B2E80F48B5CBE ] C:\Windows\System32\pcwum.dll
14:27:20.0915 4524 C:\Windows\System32\pcwum.dll - ok
14:27:20.0915 4524 [ 716175021BDA290504CE434273F666BC ] C:\Windows\System32\powrprof.dll
14:27:20.0915 4524 C:\Windows\System32\powrprof.dll - ok
14:27:20.0925 4524 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] C:\Windows\System32\drivers\luafv.sys
14:27:20.0925 4524 C:\Windows\System32\drivers\luafv.sys - ok
14:27:20.0925 4524 [ 5C627D1B1138676C0A7AB2C2C190D123 ] C:\Windows\System32\rpcss.dll
14:27:20.0925 4524 C:\Windows\System32\rpcss.dll - ok
14:27:20.0925 4524 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] C:\Windows\System32\RpcEpMap.dll
14:27:20.0925 4524 C:\Windows\System32\RpcEpMap.dll - ok
14:27:20.0935 4524 [ 16E964ABF6D1E0F0CC7822FCA9BA754D ] C:\Windows\System32\wshqos.dll
14:27:20.0935 4524 C:\Windows\System32\wshqos.dll - ok
14:27:20.0935 4524 [ 9AD9E06F8656F296D91FAE8EE5B95A27 ] C:\Windows\System32\FirewallAPI.dll
14:27:20.0935 4524 C:\Windows\System32\FirewallAPI.dll - ok
14:27:20.0935 4524 [ 94E026870A55AAEAFF7853C1754091E9 ] C:\Windows\System32\version.dll
14:27:20.0935 4524 C:\Windows\System32\version.dll - ok
14:27:20.0935 4524 [ 245E5CB043D4E45B4D0513F0B3B03BFC ] C:\Windows\System32\atiesrxx.exe
14:27:20.0935 4524 C:\Windows\System32\atiesrxx.exe - ok
14:27:20.0945 4524 [ 715F03B4C7223349768013EA95D9E5B7 ] C:\Windows\System32\LogonUI.exe
14:27:20.0945 4524 C:\Windows\System32\LogonUI.exe - ok
14:27:20.0945 4524 [ BD3674BE7FC9D8D3732C83E8499576ED ] C:\Windows\System32\wtsapi32.dll
14:27:20.0945 4524 C:\Windows\System32\wtsapi32.dll - ok
14:27:20.0945 4524 [ 0BEE002C68E28CE6DA161DCF1376D7D7 ] C:\Windows\System32\authui.dll
14:27:20.0945 4524 C:\Windows\System32\authui.dll - ok
14:27:20.0955 4524 [ B3BFBD758506ECB50C5804AAA76318F9 ] C:\Windows\System32\cryptui.dll
14:27:20.0955 4524 C:\Windows\System32\cryptui.dll - ok
14:27:20.0955 4524 [ 7FA8FDC2C2A27817FD0F624E78D3B50C ] C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac\comctl32.dll
14:27:20.0955 4524 C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac\comctl32.dll - ok
14:27:20.0955 4524 [ 5B3EBFC3DA142324B388DDCC4465E1FF ] C:\Windows\System32\samlib.dll
14:27:20.0955 4524 C:\Windows\System32\samlib.dll - ok
14:27:20.0965 4524 [ 4E9C2DB10F7E6AE91BF761139D4B745B ] C:\Windows\System32\shacct.dll
14:27:20.0965 4524 C:\Windows\System32\shacct.dll - ok
14:27:20.0965 4524 [ F06BB4E336EA57511FDBAFAFCC47DE62 ] C:\Windows\System32\propsys.dll
14:27:20.0965 4524 C:\Windows\System32\propsys.dll - ok
14:27:20.0965 4524 [ D29E998E8277666982B4F0303BF4E7AF ] C:\Windows\System32\uxtheme.dll
14:27:20.0965 4524 C:\Windows\System32\uxtheme.dll - ok
14:27:20.0975 4524 [ 179E8401224D557ECFF3695F2016EA5B ] C:\Windows\winsxs\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_2b253c8271ec7765\GdiPlus.dll
14:27:20.0975 4524 C:\Windows\winsxs\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_2b253c8271ec7765\GdiPlus.dll - ok
14:27:20.0975 4524 [ 3CB6A7286422C72C34DAB54A5DFF1A34 ] C:\Windows\System32\dui70.dll
14:27:20.0975 4524 C:\Windows\System32\dui70.dll - ok
14:27:20.0975 4524 [ 8CCDE014A4CDF84564E03ACE064CA753 ] C:\Windows\System32\duser.dll
14:27:20.0975 4524 C:\Windows\System32\duser.dll - ok
14:27:20.0985 4524 [ D7F1EF374A90709B31591823B002F918 ] C:\Windows\System32\SndVolSSO.dll
14:27:20.0985 4524 C:\Windows\System32\SndVolSSO.dll - ok
14:27:20.0985 4524 [ DA1B7075260F3872585BFCDD668C648B ] C:\Windows\System32\dwmapi.dll
14:27:20.0985 4524 C:\Windows\System32\dwmapi.dll - ok
14:27:20.0985 4524 [ 896F15A6434D93EDB42519D5E18E6B50 ] C:\Windows\System32\hid.dll
14:27:20.0985 4524 C:\Windows\System32\hid.dll - ok
14:27:20.0985 4524 [ 227E2C382A1E02F8D4965E664D3BBE43 ] C:\Windows\System32\MMDevAPI.dll
14:27:20.0985 4524 C:\Windows\System32\MMDevAPI.dll - ok
14:27:20.0995 4524 [ 6011714C8C5C55CBFFAD24D61E879FBD ] C:\Windows\System32\wevtsvc.dll
14:27:20.0995 4524 C:\Windows\System32\wevtsvc.dll - ok
14:27:20.0995 4524 [ 6F8B48F3D343E4B186AB6A9E302B7E16 ] C:\Windows\System32\xmllite.dll
14:27:20.0995 4524 C:\Windows\System32\xmllite.dll - ok
14:27:20.0995 4524 [ F23FEF6D569FCE88671949894A8BECF1 ] C:\Windows\System32\audiosrv.dll
14:27:20.0995 4524 C:\Windows\System32\audiosrv.dll - ok
14:27:21.0005 4524 [ 78A1E65207484B7F8D3217507745F47C ] C:\Windows\System32\avrt.dll
14:27:21.0005 4524 C:\Windows\System32\avrt.dll - ok
14:27:21.0005 4524 [ E40E80D0304A73E8D269F7141D77250B ] C:\Windows\System32\mmcss.dll
14:27:21.0005 4524 C:\Windows\System32\mmcss.dll - ok
14:27:21.0005 4524 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] C:\Windows\System32\wlansvc.dll
14:27:21.0005 4524 C:\Windows\System32\wlansvc.dll - ok
14:27:21.0005 4524 [ 26B73A85855681500BCC25C7CD9FF5B1 ] C:\Windows\System32\WindowsCodecs.dll
14:27:21.0005 4524 C:\Windows\System32\WindowsCodecs.dll - ok
14:27:21.0015 4524 [ 588CD0C78A7FAAE4186B5EEA0AF3ED67 ] C:\Windows\System32\adtschema.dll
14:27:21.0015 4524 C:\Windows\System32\adtschema.dll - ok
14:27:21.0015 4524 [ 50544D04AD845C43130B70212EC05CCD ] C:\Windows\System32\microsoft-windows-kernel-power-events.dll
14:27:21.0015 4524 C:\Windows\System32\microsoft-windows-kernel-power-events.dll - ok
14:27:21.0015 4524 [ D5CCA1453B98A5801E6D5FF0FF89DC6C ] C:\Windows\System32\audiodg.exe
14:27:21.0015 4524 C:\Windows\System32\audiodg.exe - ok
14:27:21.0025 4524 [ 9F2BACD5E1776A4BB7CC0EC3C3A4F96D ] C:\Windows\System32\winbrand.dll
14:27:21.0025 4524 C:\Windows\System32\winbrand.dll - ok
14:27:21.0025 4524 [ CA2985996BB49924B677113DF95CFEA7 ] C:\Windows\System32\SmartcardCredentialProvider.dll
14:27:21.0025 4524 C:\Windows\System32\SmartcardCredentialProvider.dll - ok
14:27:21.0025 4524 [ C2762A57DF0EE85E63CE4893C5215313 ] C:\Windows\System32\VaultCredProvider.dll
14:27:21.0025 4524 C:\Windows\System32\VaultCredProvider.dll - ok
14:27:21.0035 4524 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] C:\Windows\System32\netprofm.dll
14:27:21.0035 4524 C:\Windows\System32\netprofm.dll - ok
14:27:21.0035 4524 [ BF352E73615F5461AA6884472435A544 ] C:\Windows\System32\BioCredProv.dll
14:27:21.0035 4524 C:\Windows\System32\BioCredProv.dll - ok
14:27:21.0035 4524 [ 796B8123A7859AFD3A4AE10514DBAEB5 ] C:\Windows\System32\winbio.dll
14:27:21.0035 4524 C:\Windows\System32\winbio.dll - ok
14:27:21.0045 4524 [ CC0AB40F02D2C2A12209715A3C1B07B8 ] C:\Windows\System32\credui.dll
14:27:21.0045 4524 C:\Windows\System32\credui.dll - ok
14:27:21.0045 4524 [ 44B9C66177651F3F53C87B665D58D17A ] C:\Windows\System32\vaultcli.dll
14:27:21.0045 4524 C:\Windows\System32\vaultcli.dll - ok
14:27:21.0045 4524 [ DA6B67270FD9DB3697B20FCE94950741 ] C:\Windows\System32\drivers\fltMgr.sys
14:27:21.0045 4524 C:\Windows\System32\drivers\fltMgr.sys - ok
14:27:21.0055 4524 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] C:\Windows\System32\gpsvc.dll
14:27:21.0055 4524 C:\Windows\System32\gpsvc.dll - ok
14:27:21.0055 4524 [ EEEA40F0EDB0A6E5359E539E15D0BC77 ] C:\Windows\System32\netapi32.dll
14:27:21.0055 4524 C:\Windows\System32\netapi32.dll - ok
14:27:21.0055 4524 [ 6CECA4C6A489C9B2E6073AFDAAE3F607 ] C:\Windows\System32\netutils.dll
14:27:21.0055 4524 C:\Windows\System32\netutils.dll - ok
14:27:21.0055 4524 [ 46BB91A169B9B31FF44EB04C48EC1D41 ] C:\Windows\System32\nlaapi.dll
14:27:21.0055 4524 C:\Windows\System32\nlaapi.dll - ok
14:27:21.0065 4524 [ FC51229C7D4AFA0D6F186133728B95AB ] C:\Windows\System32\samcli.dll
14:27:21.0065 4524 C:\Windows\System32\samcli.dll - ok
14:27:21.0065 4524 [ F0344071948D1A1FA732231785A0664C ] C:\Windows\System32\themeservice.dll
14:27:21.0065 4524 C:\Windows\System32\themeservice.dll - ok
14:27:21.0065 4524 [ 3C91392D448F6E5D525A85B7550D8BA9 ] C:\Windows\System32\wkscli.dll
14:27:21.0065 4524 C:\Windows\System32\wkscli.dll - ok
14:27:21.0075 4524 [ 58775492FFD419248B08325E583C527F ] C:\Windows\System32\atl.dll
14:27:21.0075 4524 C:\Windows\System32\atl.dll - ok
14:27:21.0075 4524 [ 972C3301DB3DA91AE06A95F6B4160B1B ] C:\Windows\System32\certCredProvider.dll
14:27:21.0075 4524 C:\Windows\System32\certCredProvider.dll - ok
14:27:21.0075 4524 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] C:\Windows\System32\profsvc.dll
14:27:21.0075 4524 C:\Windows\System32\profsvc.dll - ok
14:27:21.0085 4524 [ EF2AE43BCD46ABB13FC3E5B2B1935C73 ] C:\Windows\System32\winmm.dll
14:27:21.0085 4524 C:\Windows\System32\winmm.dll - ok
14:27:21.0085 4524 [ A77BE7CB3222B4FB0AC6C71D1C2698D4 ] C:\Windows\System32\dsrole.dll
14:27:21.0085 4524 C:\Windows\System32\dsrole.dll - ok
14:27:21.0085 4524 [ A3DB3C17EE6CAE65D53602B4E80BCCBC ] C:\Windows\System32\PSHED.DLL
14:27:21.0085 4524 C:\Windows\System32\PSHED.DLL - ok
14:27:21.0085 4524 [ 87FA0C48C3B2E9FEE518818FE26B15B5 ] C:\Windows\System32\rasplap.dll
14:27:21.0085 4524 C:\Windows\System32\rasplap.dll - ok
14:27:21.0095 4524 [ BE097F5BB10F9079FCEB2DC4E7E20F02 ] C:\Windows\System32\slc.dll
14:27:21.0095 4524 C:\Windows\System32\slc.dll - ok
14:27:21.0095 4524 [ 4166F82BE4D24938977DD1746BE9B8A0 ] C:\Windows\System32\es.dll
14:27:21.0095 4524 C:\Windows\System32\es.dll - ok
14:27:21.0095 4524 [ 019CD868461B646E09BDF04474C19341 ] C:\Windows\System32\rasapi32.dll
14:27:21.0095 4524 C:\Windows\System32\rasapi32.dll - ok
14:27:21.0105 4524 [ B28DEEC597C8DEB70C744C7CF9210E3E ] C:\Windows\System32\rasman.dll
14:27:21.0105 4524 C:\Windows\System32\rasman.dll - ok
14:27:21.0105 4524 [ B53C4B69B695EDA1B7E41D35CA4244E2 ] C:\Windows\System32\rtutils.dll
14:27:21.0105 4524 C:\Windows\System32\rtutils.dll - ok
14:27:21.0105 4524 [ 1A47D52E303B7543E4E6026595B95422 ] C:\Windows\System32\comres.dll
14:27:21.0105 4524 C:\Windows\System32\comres.dll - ok
14:27:21.0115 4524 [ C32AB8FA018EF34C0F113BD501436D21 ] C:\Windows\System32\Sens.dll
14:27:21.0115 4524 C:\Windows\System32\Sens.dll - ok
14:27:21.0115 4524 [ 1538831CF8AD2979A04C423779465827 ] C:\Windows\System32\drivers\lltdio.sys
14:27:21.0115 4524 C:\Windows\System32\drivers\lltdio.sys - ok
14:27:21.0115 4524 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] C:\Windows\System32\uxsms.dll
14:27:21.0115 4524 C:\Windows\System32\uxsms.dll - ok
14:27:21.0115 4524 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] C:\Windows\System32\drivers\nwifi.sys
14:27:21.0115 4524 C:\Windows\System32\drivers\nwifi.sys - ok
14:27:21.0125 4524 [ 1473768973453DE50DC738C2955FC4DD ] C:\Windows\System32\wdmaud.drv
14:27:21.0125 4524 C:\Windows\System32\wdmaud.drv - ok
14:27:21.0125 4524 [ 8560FFFC8EB3A806DCD4F82252CFC8C6 ] C:\Windows\System32\ksuser.dll
14:27:21.0125 4524 C:\Windows\System32\ksuser.dll - ok
14:27:21.0125 4524 [ B0945E538CF906BBDDC5A11C8EE868CC ] C:\Windows\System32\microsoft-windows-kernel-processor-power-events.dll
14:27:21.0125 4524 C:\Windows\System32\microsoft-windows-kernel-processor-power-events.dll - ok
14:27:21.0135 4524 [ 136185F9FB2CC61E573E676AA5402356 ] C:\Windows\System32\drivers\ndisuio.sys
14:27:21.0135 4524 C:\Windows\System32\drivers\ndisuio.sys - ok
14:27:21.0135 4524 [ DDC86E4F8E7456261E637E3552E804FF ] C:\Windows\System32\drivers\rspndr.sys
14:27:21.0135 4524 C:\Windows\System32\drivers\rspndr.sys - ok
14:27:21.0135 4524 [ F993A32249B66C9D622EA5592A8B76B8 ] C:\Windows\System32\lmhsvc.dll
14:27:21.0135 4524 C:\Windows\System32\lmhsvc.dll - ok
14:27:21.0145 4524 [ D54BFDF3E0C953F823B3D0BFE4732528 ] C:\Windows\System32\nsisvc.dll
14:27:21.0145 4524 C:\Windows\System32\nsisvc.dll - ok
14:27:21.0145 4524 [ 53B6BD8517EA017F6EAD877127C2CFAB ] C:\Windows\System32\atieclxx.exe
14:27:21.0145 4524 C:\Windows\System32\atieclxx.exe - ok
14:27:21.0145 4524 [ 9BC8610C32C96A2983A65DC21CAFA921 ] C:\Windows\System32\UXInit.dll
14:27:21.0145 4524 C:\Windows\System32\UXInit.dll - ok
14:27:21.0155 4524 [ 2B81776DA02017A37FE26C662827470E ] C:\Windows\System32\IPHLPAPI.DLL
14:27:21.0155 4524 C:\Windows\System32\IPHLPAPI.DLL - ok
14:27:21.0155 4524 [ B73A6E4B319AFFE64582AC5C1801BB3F ] C:\Windows\System32\nrpsrv.dll
14:27:21.0155 4524 C:\Windows\System32\nrpsrv.dll - ok
14:27:21.0155 4524 [ 4C9210E8F4E052F6A4EB87716DA0C24C ] C:\Windows\System32\winnsi.dll
14:27:21.0155 4524 C:\Windows\System32\winnsi.dll - ok
14:27:21.0155 4524 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] C:\Windows\System32\dhcpcore.dll
14:27:21.0155 4524 C:\Windows\System32\dhcpcore.dll - ok
14:27:21.0165 4524 [ 3CC16A849E6092E43909F48EF0E60306 ] C:\Windows\System32\dhcpcore6.dll
14:27:21.0165 4524 C:\Windows\System32\dhcpcore6.dll - ok
14:27:21.0165 4524 [ C2924049858CBB1067CBCD97D5B45B19 ] C:\Windows\System32\atiadlxx.dll
14:27:21.0165 4524 C:\Windows\System32\atiadlxx.dll - ok
14:27:21.0165 4524 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] C:\Windows\System32\dnsrslvr.dll
14:27:21.0165 4524 C:\Windows\System32\dnsrslvr.dll - ok
14:27:21.0175 4524 [ F9EC845C5EECF20E9A67F9F805F2EF1F ] C:\Windows\System32\keyiso.dll
14:27:21.0175 4524 C:\Windows\System32\keyiso.dll - ok
14:27:21.0175 4524 [ 87356377F31DA5F20A833811CD59499C ] C:\Windows\System32\eapphost.dll
14:27:21.0175 4524 C:\Windows\System32\eapphost.dll - ok
14:27:21.0175 4524 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] C:\Windows\System32\eapsvc.dll
14:27:21.0175 4524 C:\Windows\System32\eapsvc.dll - ok
14:27:21.0185 4524 [ 0040C486584A8E582C861CFB57AB5387 ] C:\Windows\System32\FWPUCLNT.DLL
14:27:21.0185 4524 C:\Windows\System32\FWPUCLNT.DLL - ok
14:27:21.0185 4524 [ 885D0942E0F28DB90919BE3129ECF279 ] C:\Windows\System32\dnsext.dll
14:27:21.0185 4524 C:\Windows\System32\dnsext.dll - ok
14:27:21.0185 4524 [ 9FCA3A84338ADEF2AFF67CDA46EF8539 ] C:\Windows\System32\umb.dll
14:27:21.0185 4524 C:\Windows\System32\umb.dll - ok
14:27:21.0195 4524 [ DC220AE6F64819099F7EBD6F137E32E7 ] C:\Windows\System32\AudioSes.dll
14:27:21.0195 4524 C:\Windows\System32\AudioSes.dll - ok
14:27:21.0195 4524 [ F568F7C08458D69E4FCD8675BBB107E4 ] C:\Windows\System32\dhcpcsvc.dll
14:27:21.0195 4524 C:\Windows\System32\dhcpcsvc.dll - ok
14:27:21.0195 4524 [ A648C4A06DE367065B24056D067B4460 ] C:\Windows\System32\wlanmsm.dll
14:27:21.0195 4524 C:\Windows\System32\wlanmsm.dll - ok
14:27:21.0195 4524 [ 06A1386B6E3A0CBC368665C1840906F4 ] C:\Windows\System32\wlansec.dll
14:27:21.0195 4524 C:\Windows\System32\wlansec.dll - ok
14:27:21.0205 4524 [ 3C06D5A929B798D0B13F6481242A0FD2 ] C:\Windows\System32\dhcpcsvc6.dll
14:27:21.0205 4524 C:\Windows\System32\dhcpcsvc6.dll - ok
14:27:21.0205 4524 [ 65522E77A1360DBC8D199DA3BF5EFFE4 ] C:\Windows\System32\eappprxy.dll
14:27:21.0205 4524 C:\Windows\System32\eappprxy.dll - ok
14:27:21.0205 4524 [ 10AC5CE9F78DC281A1BBD9B8CC587B8A ] C:\Windows\System32\msacm32.dll
14:27:21.0205 4524 C:\Windows\System32\msacm32.dll - ok
14:27:21.0215 4524 [ 1B7C3A37362C7B2890168C5FC61C8D9B ] C:\Windows\System32\msacm32.drv
14:27:21.0215 4524 C:\Windows\System32\msacm32.drv - ok
14:27:21.0215 4524 [ 73FCB7919DEE80EE556F2E498594EBAE ] C:\Windows\System32\onex.dll
14:27:21.0215 4524 C:\Windows\System32\onex.dll - ok
14:27:21.0215 4524 [ 0D753307D274F3688BD21C377B616700 ] C:\Windows\System32\eappcfg.dll
14:27:21.0215 4524 C:\Windows\System32\eappcfg.dll - ok
14:27:21.0225 4524 [ 97E43F324BE1503CB2FFB058534688DA ] C:\Windows\System32\l2gpstore.dll
14:27:21.0225 4524 C:\Windows\System32\l2gpstore.dll - ok
14:27:21.0225 4524 [ CA2A0750ED830678997695FF61B04C30 ] C:\Windows\System32\midimap.dll
14:27:21.0225 4524 C:\Windows\System32\midimap.dll - ok
14:27:21.0225 4524 [ 730BF204A595D5B6D7DC57A247CC741C ] C:\Windows\System32\wlgpclnt.dll
14:27:21.0225 4524 C:\Windows\System32\wlgpclnt.dll - ok
14:27:21.0235 4524 [ 5EDBB34736DD7AC1A73CF8792A835E10 ] C:\Windows\System32\AudioEng.dll
14:27:21.0235 4524 C:\Windows\System32\AudioEng.dll - ok
14:27:21.0235 4524 [ 7D5645EE0EA77D539828433D9B95F5EB ] C:\Windows\System32\WinSCard.dll
14:27:21.0235 4524 C:\Windows\System32\WinSCard.dll - ok
14:27:21.0235 4524 [ 7F1B4C6FF3B85F9ADF74055187B8A22C ] C:\Windows\System32\wlanutil.dll
14:27:21.0235 4524 C:\Windows\System32\wlanutil.dll - ok
14:27:21.0235 4524 [ C1395286B822E306B4FE1568A8A77813 ] C:\Windows\System32\AUDIOKSE.dll
14:27:21.0235 4524 C:\Windows\System32\AUDIOKSE.dll - ok
14:27:21.0245 4524 [ 99B91C5D2FCEF218CAD3600ECB62A799 ] C:\Windows\System32\msxml6.dll
14:27:21.0245 4524 C:\Windows\System32\msxml6.dll - ok
14:27:21.0245 4524 [ 7E6CA0FBCFDD2B6E2D99EDD8B673A192 ] C:\Windows\System32\MBWrp64.dll
14:27:21.0245 4524 C:\Windows\System32\MBWrp64.dll - ok
14:27:21.0245 4524 [ CF636C92B762B26F0B39B38E92380A09 ] C:\Windows\System32\oleacc.dll
14:27:21.0245 4524 C:\Windows\System32\oleacc.dll - ok
14:27:21.0255 4524 [ 17B2B3271157BC6B5E0FE946E403E9CC ] C:\Windows\System32\RtkAPO64.dll
14:27:21.0255 4524 C:\Windows\System32\RtkAPO64.dll - ok
14:27:21.0255 4524 [ 019BDD35DE269CB98B22DE8923C2AA3B ] C:\Windows\System32\UIAutomationCore.dll
14:27:21.0255 4524 C:\Windows\System32\UIAutomationCore.dll - ok
14:27:21.0255 4524 [ 6F3C559B82F2912354BE5B098744CC8C ] C:\Windows\System32\WMALFXGFXDSP.dll
14:27:21.0255 4524 C:\Windows\System32\WMALFXGFXDSP.dll - ok
14:27:21.0255 4524 [ 54B5DCD55B223BC5DF50B82E1E9E86B1 ] C:\Windows\System32\mfplat.dll
14:27:21.0265 4524 C:\Windows\System32\mfplat.dll - ok
14:27:21.0265 4524 [ E424B3EF666B184CEE0B6871AAA8C9F6 ] C:\Windows\System32\msimg32.dll
14:27:21.0265 4524 C:\Windows\System32\msimg32.dll - ok
14:27:21.0265 4524 [ AAF932B4011D14052955D4B212A4DA8D ] C:\Windows\System32\shsvcs.dll
14:27:21.0265 4524 C:\Windows\System32\shsvcs.dll - ok
14:27:21.0265 4524 [ 262F6592C3299C005FD6BEC90FC4463A ] C:\Windows\System32\schedsvc.dll
14:27:21.0265 4524 C:\Windows\System32\schedsvc.dll - ok
14:27:21.0275 4524 [ BC414631876B2F28B8DAB08E849C12C5 ] C:\Windows\System32\ktmw32.dll
14:27:21.0275 4524 C:\Windows\System32\ktmw32.dll - ok
14:27:21.0275 4524 [ 945E54F23C72D37B8CD1987AF0DB63BF ] C:\Windows\System32\fveapi.dll
14:27:21.0275 4524 C:\Windows\System32\fveapi.dll - ok
14:27:21.0275 4524 [ 5AA945234E9D4CCE4F715276B9AA712C ] C:\Windows\System32\imageres.dll
14:27:21.0275 4524 C:\Windows\System32\imageres.dll - ok
14:27:21.0285 4524 [ 694865362F0965779F92BCFE97712323 ] C:\Windows\System32\tbs.dll
14:27:21.0285 4524 C:\Windows\System32\tbs.dll - ok
14:27:21.0285 4524 [ 891ECFD08E2C538B7948CBC45106D697 ] C:\Windows\System32\fvecerts.dll
14:27:21.0285 4524 C:\Windows\System32\fvecerts.dll - ok
14:27:21.0285 4524 [ 8269210DAF3B12BC8300631B28A2A442 ] C:\Windows\System32\wiarpc.dll
14:27:21.0285 4524 C:\Windows\System32\wiarpc.dll - ok
14:27:21.0295 4524 [ 6DC4A7242F565C9E9C9CCC7BB0FA75C7 ] C:\Windows\System32\taskcomp.dll
14:27:21.0295 4524 C:\Windows\System32\taskcomp.dll - ok
14:27:21.0295 4524 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] C:\Windows\System32\drivers\http.sys
14:27:21.0295 4524 C:\Windows\System32\drivers\http.sys - ok
14:27:21.0295 4524 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] C:\Windows\System32\spoolsv.exe
14:27:21.0295 4524 C:\Windows\System32\spoolsv.exe - ok
14:27:21.0305 4524 [ 03706015DB44368375AEBE6339490E66 ] C:\Windows\System32\netcfgx.dll
14:27:21.0305 4524 C:\Windows\System32\netcfgx.dll - ok
14:27:21.0305 4524 [ 6C02A83164F5CC0A262F4199F0871CF5 ] C:\Windows\System32\drivers\bowser.sys
14:27:21.0305 4524 C:\Windows\System32\drivers\bowser.sys - ok
14:27:21.0305 4524 [ A5D9106A73DC88564C825D317CAC68AC ] C:\Windows\System32\drivers\mrxsmb.sys
14:27:21.0305 4524 C:\Windows\System32\drivers\mrxsmb.sys - ok
14:27:21.0305 4524 [ D711B3C1D5F42C0C2415687BE09FC163 ] C:\Windows\System32\drivers\mrxsmb10.sys
14:27:21.0305 4524 C:\Windows\System32\drivers\mrxsmb10.sys - ok
14:27:21.0315 4524 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] C:\Windows\System32\drivers\mrxsmb20.sys
14:27:21.0315 4524 C:\Windows\System32\drivers\mrxsmb20.sys - ok
14:27:21.0315 4524 [ 851A1382EED3E3A7476DB004F4EE3E1A ] C:\Windows\System32\wkssvc.dll
14:27:21.0315 4524 C:\Windows\System32\wkssvc.dll - ok
14:27:21.0315 4524 [ 3927397AC60D943DAF8808AFFED582B7 ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
14:27:21.0315 4524 C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe - ok
14:27:21.0325 4524 [ E73B0F1819602CB6EF176FB78D76A47B ] C:\Windows\SysWOW64\ntdll.dll
14:27:21.0325 4524 C:\Windows\SysWOW64\ntdll.dll - ok
14:27:21.0325 4524 [ 259EB5F7D95A29842B476C5B3EB6E186 ] C:\Windows\System32\wow64.dll
14:27:21.0325 4524 C:\Windows\System32\wow64.dll - ok
14:27:21.0325 4524 [ 5674E21E82CFBEA36DDAD5DB285D6DBC ] C:\Windows\System32\wow64win.dll
14:27:21.0325 4524 C:\Windows\System32\wow64win.dll - ok
14:27:21.0335 4524 [ 3EE3AA76D8AB6D5644C4C8F34471CEB3 ] C:\Windows\System32\wow64cpu.dll
14:27:21.0335 4524 C:\Windows\System32\wow64cpu.dll - ok
14:27:21.0335 4524 [ AC0B6F41882FC6ED186962D770EBF1D2 ] C:\Windows\SysWOW64\kernel32.dll
14:27:21.0335 4524 C:\Windows\SysWOW64\kernel32.dll - ok
14:27:21.0335 4524 [ E954A79D6A754A5475582CACED1565E6 ] C:\Windows\SysWOW64\KernelBase.dll
14:27:21.0335 4524 C:\Windows\SysWOW64\KernelBase.dll - ok
14:27:21.0345 4524 [ 95E2376B3323F062EB562B8586D0F14A ] C:\Windows\SysWOW64\advapi32.dll
14:27:21.0345 4524 C:\Windows\SysWOW64\advapi32.dll - ok
14:27:21.0345 4524 [ D6D3AD7BF1D6F6CE9547613ED5E170A2 ] C:\Windows\SysWOW64\gdi32.dll
14:27:21.0345 4524 C:\Windows\SysWOW64\gdi32.dll - ok
14:27:21.0345 4524 [ 384721EF4024890092625E20CADFAF85 ] C:\Windows\SysWOW64\lpk.dll
14:27:21.0345 4524 C:\Windows\SysWOW64\lpk.dll - ok
14:27:21.0355 4524 [ 9DC80A8AAAAAC397BDAB3C67165A824E ] C:\Windows\SysWOW64\msvcrt.dll
14:27:21.0355 4524 C:\Windows\SysWOW64\msvcrt.dll - ok
14:27:21.0355 4524 [ 5E0DB2D8B2750543CD2EBB9EA8E6CDD3 ] C:\Windows\SysWOW64\user32.dll
14:27:21.0355 4524 C:\Windows\SysWOW64\user32.dll - ok
14:27:21.0355 4524 [ B7230010D97787AF3D25E4C82F2B06B9 ] C:\Windows\SysWOW64\usp10.dll
14:27:21.0355 4524 C:\Windows\SysWOW64\usp10.dll - ok
14:27:21.0355 4524 [ F08F6FCD09F9BE94C37ACC1B344685FF ] C:\Windows\SysWOW64\cryptbase.dll
14:27:21.0355 4524 C:\Windows\SysWOW64\cryptbase.dll - ok
14:27:21.0365 4524 [ C5AD8083CF94201F1F8084ECC696A8B7 ] C:\Windows\SysWOW64\rpcrt4.dll
14:27:21.0365 4524 C:\Windows\SysWOW64\rpcrt4.dll - ok
14:27:21.0365 4524 [ CFC97F07904067A1E5FAE195D534DA3A ] C:\Windows\SysWOW64\sechost.dll
14:27:21.0365 4524 C:\Windows\SysWOW64\sechost.dll - ok
14:27:21.0365 4524 [ 29E9794708DF51DB5DC89FB2E903A0F6 ] C:\Windows\SysWOW64\shell32.dll
14:27:21.0365 4524 C:\Windows\SysWOW64\shell32.dll - ok
14:27:21.0375 4524 [ EDA7AD21DF8945528F01F0A86D69E524 ] C:\Windows\SysWOW64\sspicli.dll
14:27:21.0375 4524 C:\Windows\SysWOW64\sspicli.dll - ok
14:27:21.0375 4524 [ 8CC3C111D653E96F3EA1590891491D71 ] C:\Windows\SysWOW64\shlwapi.dll
14:27:21.0375 4524 C:\Windows\SysWOW64\shlwapi.dll - ok
14:27:21.0375 4524 [ 60D21799A4AF4EDCE65FB98830E4B0C8 ] C:\Windows\SysWOW64\crypt32.dll
14:27:21.0375 4524 C:\Windows\SysWOW64\crypt32.dll - ok
14:27:21.0385 4524 [ 938F39B50BAFE13D6F58C7790682C010 ] C:\Windows\SysWOW64\msasn1.dll
14:27:21.0385 4524 C:\Windows\SysWOW64\msasn1.dll - ok
14:27:21.0385 4524 [ 928CF7268086631F54C3D8E17238C6DD ] C:\Windows\SysWOW64\ole32.dll
14:27:21.0385 4524 C:\Windows\SysWOW64\ole32.dll - ok
14:27:21.0385 4524 [ 6C765E82B57F2E66CE9C54AC238471D9 ] C:\Windows\SysWOW64\oleaut32.dll
14:27:21.0385 4524 C:\Windows\SysWOW64\oleaut32.dll - ok
14:27:21.0395 4524 [ 17448AF0BBA9E7AB5EC955AF93F271BD ] C:\Windows\SysWOW64\wintrust.dll
14:27:21.0395 4524 C:\Windows\SysWOW64\wintrust.dll - ok
14:27:21.0395 4524 [ A6F09E5669D9A19035F6D942CAA15882 ] C:\Windows\SysWOW64\imm32.dll
14:27:21.0395 4524 C:\Windows\SysWOW64\imm32.dll - ok
14:27:21.0395 4524 [ C9618BC9B2B0FD7C1138D8774795A79B ] C:\Windows\SysWOW64\msctf.dll
14:27:21.0395 4524 C:\Windows\SysWOW64\msctf.dll - ok
14:27:21.0405 4524 [ CDBE9690CF2B8409FACAD94FAC9479C9 ] C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcr90.dll
14:27:21.0405 4524 C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcr90.dll - ok
14:27:21.0405 4524 [ 6A9AE9E58036D951F54F6803D1732AC3 ] C:\PROGRA~3\BROWSE~1\261249~1.132\{C16C1~1\BROWSE~1.DLL
14:27:21.0405 4524 C:\PROGRA~3\BROWSE~1\261249~1.132\{C16C1~1\BROWSE~1.DLL - ok
14:27:21.0405 4524 [ B2DB6ABA2E292235749B80A9C3DFA867 ] C:\Windows\SysWOW64\imagehlp.dll
14:27:21.0405 4524 C:\Windows\SysWOW64\imagehlp.dll - ok
14:27:21.0415 4524 [ A543AC1F7138376D778D630A35FCBC4C ] C:\Windows\SysWOW64\psapi.dll
14:27:21.0415 4524 C:\Windows\SysWOW64\psapi.dll - ok
14:27:21.0415 4524 [ 702254574E7E52052DE39408457B7149 ] C:\Windows\SysWOW64\version.dll
14:27:21.0415 4524 C:\Windows\SysWOW64\version.dll - ok
14:27:21.0415 4524 [ FB19FC5951A88F3C523E35C2C98D23C0 ] C:\Windows\SysWOW64\webio.dll
14:27:21.0415 4524 C:\Windows\SysWOW64\webio.dll - ok
14:27:21.0425 4524 [ CA9F7888B524D8100B977C81F44C3234 ] C:\Windows\SysWOW64\winhttp.dll
14:27:21.0425 4524 C:\Windows\SysWOW64\winhttp.dll - ok
14:27:21.0425 4524 [ DD27F6C3DE9BFE50635C721E09EDC5DD ] C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe
14:27:21.0425 4524 C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe - ok
14:27:21.0425 4524 [ 530566B97C73813FFDDE8EC0C7C044EA ] C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\XML_RPC_DLL.dll
14:27:21.0425 4524 C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\XML_RPC_DLL.dll - ok
14:27:21.0435 4524 [ 0D7BE936A44E6B70F822D272A5CEBC22 ] C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4940_none_08e4299fa83d7e3c\msvcr90.dll
14:27:21.0435 4524 C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4940_none_08e4299fa83d7e3c\msvcr90.dll - ok
14:27:21.0435 4524 [ BE165318E0052A91F7EA36F515B5F2B1 ] C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4940_none_08e4299fa83d7e3c\msvcp90.dll
14:27:21.0435 4524 C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4940_none_08e4299fa83d7e3c\msvcp90.dll - ok
14:27:21.0435 4524 [ 3DEBBECF665DCDDE3A95D9B902010817 ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
14:27:21.0435 4524 C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe - ok
14:27:21.0445 4524 [ 0B3595A4FF0B36D68E5FC67FD7D70FDC ] C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcp80.dll
14:27:21.0445 4524 C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcp80.dll - ok
14:27:21.0445 4524 [ C9564CF4976E7E96B4052737AA2492B4 ] C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcr80.dll
14:27:21.0445 4524 C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcr80.dll - ok
14:27:21.0445 4524 [ 92DA9EDE07390B4352B29DD82079E398 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\AppleVersions.dll
14:27:21.0445 4524 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\AppleVersions.dll - ok
14:27:21.0455 4524 [ 8B22CF51B907E3A221267CF1E502993A ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\YSCrashDump.dll
14:27:21.0455 4524 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\YSCrashDump.dll - ok
14:27:21.0455 4524 [ 054B87C872292A960B9B8A834B34DFA7 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\CoreFoundation.dll
14:27:21.0455 4524 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\CoreFoundation.dll - ok
14:27:21.0465 4524 [ 6377051C63D5552A311935C67E9FDFDC ] C:\Windows\SysWOW64\nsi.dll
14:27:21.0465 4524 C:\Windows\SysWOW64\nsi.dll - ok
14:27:21.0465 4524 [ 7FF15A4F092CD4A96055BA69F903E3E9 ] C:\Windows\SysWOW64\ws2_32.dll
14:27:21.0465 4524 C:\Windows\SysWOW64\ws2_32.dll - ok
14:27:21.0465 4524 [ 638C7596B493F5F77DB9EF6BAD8FE46C ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\pthreadVC2.dll
14:27:21.0465 4524 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\pthreadVC2.dll - ok
14:27:21.0475 4524 [ 794950DB77AA590C2964ECA0A5874A09 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\objc.dll
14:27:21.0475 4524 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\objc.dll - ok
14:27:21.0475 4524 [ DF13A51A5C591887D2EC6AE64CEED0FA ] C:\Windows\SysWOW64\wsock32.dll
14:27:21.0475 4524 C:\Windows\SysWOW64\wsock32.dll - ok
14:27:21.0475 4524 [ 250BF888DDBE88D61EB19A9D4957C794 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libdispatch.dll
14:27:21.0475 4524 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libdispatch.dll - ok
14:27:21.0485 4524 [ D5AEFAD57C08349A4393D987DF7C715D ] C:\Windows\SysWOW64\winmm.dll
14:27:21.0485 4524 C:\Windows\SysWOW64\winmm.dll - ok
14:27:21.0485 4524 [ 5A963C340DE1A01BA6E24945CE05D16A ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libicuin.dll
14:27:21.0485 4524 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libicuin.dll - ok
14:27:21.0485 4524 [ F4BC62990E7E5C29799A895B80FC3177 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libicuuc.dll
14:27:21.0485 4524 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libicuuc.dll - ok
14:27:21.0495 4524 [ 149D74E1128A86DC9CFB2851FBEA11EB ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\icudt46.dll
14:27:21.0495 4524 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\icudt46.dll - ok
14:27:21.0495 4524 [ 37CF2461CB5E40C4CFAB82C8FC79A2BC ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\ASL.dll
14:27:21.0495 4524 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\ASL.dll - ok
14:27:21.0495 4524 [ C733D233B623B7FFCE5031E4B756EE26 ] C:\Windows\SysWOW64\profapi.dll
14:27:21.0495 4524 C:\Windows\SysWOW64\profapi.dll - ok
14:27:21.0495 4524 [ 1224BC6DE919F8CD8C1C945280E63852 ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService_main.dll
14:27:21.0495 4524 C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService_main.dll - ok
14:27:21.0505 4524 [ A90DC9ABD65DB1A8902F361103029952 ] C:\Windows\SysWOW64\IPHLPAPI.DLL
14:27:21.0505 4524 C:\Windows\SysWOW64\IPHLPAPI.DLL - ok
14:27:21.0505 4524 [ 10FB16B50AFFDA6D44588F3C445DC273 ] C:\Windows\SysWOW64\setupapi.dll
14:27:21.0505 4524 C:\Windows\SysWOW64\setupapi.dll - ok
14:27:21.0505 4524 [ CFF35B879D1618D42C86644C717BA947 ] C:\Windows\SysWOW64\winnsi.dll
14:27:21.0505 4524 C:\Windows\SysWOW64\winnsi.dll - ok
14:27:21.0515 4524 [ F436E847FA799ECD75AD8C313673F450 ] C:\Windows\SysWOW64\cfgmgr32.dll
14:27:21.0515 4524 C:\Windows\SysWOW64\cfgmgr32.dll - ok
14:27:21.0515 4524 [ 2EEFF4502F5E13B1BED4A04CCAD64C08 ] C:\Windows\SysWOW64\devobj.dll
14:27:21.0515 4524 C:\Windows\SysWOW64\devobj.dll - ok
14:27:21.0515 4524 [ D15618A0FF8DBC2C5BF3726BACC75A0B ] C:\Windows\SysWOW64\userenv.dll
14:27:21.0515 4524 C:\Windows\SysWOW64\userenv.dll - ok
14:27:21.0525 4524 [ 6A6B2EE4565A178035BE2A4FF6F2C968 ] C:\Windows\SysWOW64\wtsapi32.dll
14:27:21.0525 4524 C:\Windows\SysWOW64\wtsapi32.dll - ok
14:27:21.0525 4524 [ 062373995EAE5F0EAC9EAA9192136BFB ] C:\Windows\SysWOW64\dnssd.dll
14:27:21.0525 4524 C:\Windows\SysWOW64\dnssd.dll - ok
14:27:21.0525 4524 [ 3FD15B4611D9BDA3F8013548C0ECAECA ] C:\Windows\SysWOW64\ntmarta.dll
14:27:21.0525 4524 C:\Windows\SysWOW64\ntmarta.dll - ok
14:27:21.0535 4524 [ A8BB45F9ECAD993461E0FEF8E2A99152 ] C:\Windows\SysWOW64\Wldap32.dll
14:27:21.0535 4524 C:\Windows\SysWOW64\Wldap32.dll - ok
14:27:21.0535 4524 [ 0C3D0BF1EBA67F7BC674698E5F5063D2 ] C:\Windows\Installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\U\80000032.@
14:27:21.0535 4524 C:\Windows\Installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\U\80000032.@ - ok
14:27:21.0535 4524 [ 8999B8631C7FD9F7F9EC3CAFD953BA24 ] C:\Windows\SysWOW64\mswsock.dll
14:27:21.0535 4524 C:\Windows\SysWOW64\mswsock.dll - ok
14:27:21.0545 4524 [ 4E7F83E1F6AEFA38E270EA7353D6911E ] C:\Windows\SysWOW64\urlmon.dll
14:27:21.0545 4524 C:\Windows\SysWOW64\urlmon.dll - ok
14:27:21.0545 4524 [ 9BDDA34DC4890169DE5BA21134B33EFB ] C:\Windows\SysWOW64\iertutil.dll
14:27:21.0545 4524 C:\Windows\SysWOW64\iertutil.dll - ok
14:27:21.0545 4524 [ C5B6468422DB1C8AA36C32CBB0197E5E ] C:\Windows\SysWOW64\wininet.dll
14:27:21.0545 4524 C:\Windows\SysWOW64\wininet.dll - ok
14:27:21.0545 4524 [ F93674263F6B07C77956E966953242D9 ] C:\Windows\SysWOW64\secur32.dll
14:27:21.0545 4524 C:\Windows\SysWOW64\secur32.dll - ok
14:27:21.0555 4524 [ 0F293406F64B48D5D2F0D3A1117F3A83 ] C:\Windows\System32\drivers\avgidsfiltera.sys
14:27:21.0555 4524 C:\Windows\System32\drivers\avgidsfiltera.sys - ok
14:27:21.0555 4524 [ EE5C8E27C37B79CB54A2FCEEED2DC262 ] C:\Windows\SysWOW64\WSHTCPIP.DLL
14:27:21.0555 4524 C:\Windows\SysWOW64\WSHTCPIP.DLL - ok
14:27:21.0555 4524 [ 905B5BF5BE0A86E8412801BF20357195 ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\MobileDevice.dll
14:27:21.0555 4524 C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\MobileDevice.dll - ok
14:27:21.0565 4524 [ EA1145DEBCD508FD25BD1E95C4346929 ] C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe
14:27:21.0565 4524 C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe - ok
14:27:21.0565 4524 [ 2E14406E05789F91C9282AE7CFCA3A07 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
14:27:21.0565 4524 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll - ok
14:27:21.0565 4524 [ FC33CBBB9CADCEC307DA010FE763D04C ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\CFNetwork.dll
14:27:21.0565 4524 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\CFNetwork.dll - ok
14:27:21.0575 4524 [ 93312F83FD4D5C38CEE8AA1265C061EE ] C:\Program Files (x86)\AVG\AVG2012\avgsysx.dll
14:27:21.0575 4524 C:\Program Files (x86)\AVG\AVG2012\avgsysx.dll - ok
14:27:21.0575 4524 [ 8BA9851E671E8B5E49E303748FFD530C ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\SQLite3.dll
14:27:21.0575 4524 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\SQLite3.dll - ok
14:27:21.0575 4524 [ 73862FF693168369A90F046E7F227B83 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
14:27:21.0575 4524 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll - ok
14:27:21.0585 4524 [ 91DC97F9DA3E2B59049D410870935C78 ] C:\Program Files (x86)\AVG\AVG2012\avgntopensslx.dll
14:27:21.0585 4524 C:\Program Files (x86)\AVG\AVG2012\avgntopensslx.dll - ok
14:27:21.0585 4524 [ 25CD97F030AE70AF458FF6AB0B7E9B2E ] C:\Program Files (x86)\AVG\AVG2012\avglogx.dll
14:27:21.0585 4524 C:\Program Files (x86)\AVG\AVG2012\avglogx.dll - ok
14:27:21.0585 4524 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] C:\Program Files\Bonjour\mDNSResponder.exe
14:27:21.0585 4524 C:\Program Files\Bonjour\mDNSResponder.exe - ok
14:27:21.0595 4524 [ D9C8DC2D7EC28E3FF25C99EF17C8631A ] C:\ProgramData\BrowserProtect\2.6.1249.132\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe
14:27:21.0595 4524 C:\ProgramData\BrowserProtect\2.6.1249.132\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe - ok
14:27:21.0595 4524 [ 43964FA89CCF97BA6BE34D69455AC65F ] C:\Windows\SysWOW64\uxtheme.dll
14:27:21.0595 4524 C:\Windows\SysWOW64\uxtheme.dll - ok
14:27:21.0595 4524 [ 9C01375BE382E834CC26D1B7EAF2C4FE ] C:\Windows\System32\cryptsvc.dll
14:27:21.0595 4524 C:\Windows\System32\cryptsvc.dll - ok
14:27:21.0605 4524 [ 8792BAB371B4B1589E015B6FD1ED3B15 ] C:\Windows\System32\cryptnet.dll
14:27:21.0605 4524 C:\Windows\System32\cryptnet.dll - ok
14:27:21.0605 4524 [ 863F793D15B4026B1A5FDECA873D4D84 ] C:\Windows\SysWOW64\apphelp.dll
14:27:21.0605 4524 C:\Windows\SysWOW64\apphelp.dll - ok
14:27:21.0605 4524 [ 2003E9B15E1C502B146DAD2E383AC1E3 ] C:\Windows\SysWOW64\schtasks.exe
14:27:21.0605 4524 C:\Windows\SysWOW64\schtasks.exe - ok
14:27:21.0615 4524 [ 0E2F58F6E698EDCB9E58FAD0CBCD0567 ] C:\Windows\System32\vssapi.dll
14:27:21.0615 4524 C:\Windows\System32\vssapi.dll - ok
14:27:21.0615 4524 [ A592A054D78750B4D73ABAA4C94DECDF ] C:\Program Files\Microsoft LifeCam\MSCamS64.exe
14:27:21.0615 4524 C:\Program Files\Microsoft LifeCam\MSCamS64.exe - ok
14:27:21.0615 4524 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] C:\Windows\System32\dps.dll
14:27:21.0615 4524 C:\Windows\System32\dps.dll - ok
14:27:21.0625 4524 [ BAAFAF9CEAEC0B73C2A3550A01F6CECB ] C:\Windows\System32\taskschd.dll
14:27:21.0625 4524 C:\Windows\System32\taskschd.dll - ok
14:27:21.0625 4524 [ 287923557447D7E4BDD7E65B1F0F5428 ] C:\Windows\System32\vsstrace.dll
14:27:21.0625 4524 C:\Windows\System32\vsstrace.dll - ok
14:27:21.0625 4524 [ 74F7559C028245A9CC1645F1EC687FC9 ] C:\Program Files\Microsoft LifeCam\CAL264.dll
14:27:21.0625 4524 C:\Program Files\Microsoft LifeCam\CAL264.dll - ok
14:27:21.0635 4524 [ D4F51E88C71BF8F06EA1BE320B0BB75B ] C:\Windows\System32\HPZinw12.dll
14:27:21.0635 4524 C:\Windows\System32\HPZinw12.dll - ok
14:27:21.0635 4524 [ 8AD77806D336673F270DB31645267293 ] C:\Windows\System32\nlasvc.dll
14:27:21.0635 4524 C:\Windows\System32\nlasvc.dll - ok
14:27:21.0635 4524 [ 3AEAA8B561E63452C655DC0584922257 ] C:\Windows\System32\pcasvc.dll
14:27:21.0635 4524 C:\Windows\System32\pcasvc.dll - ok
14:27:21.0635 4524 [ 1727B2A2F379A32B864C096FA794AADC ] C:\Windows\System32\aepic.dll
14:27:21.0635 4524 C:\Windows\System32\aepic.dll - ok
14:27:21.0645 4524 [ D4FAC263861BAE06971C7F7D0A8EBF15 ] C:\Windows\System32\ncsi.dll
14:27:21.0645 4524 C:\Windows\System32\ncsi.dll - ok
14:27:21.0645 4524 [ 58F4493BF748A3A89689997B7BD00E95 ] C:\Windows\System32\winhttp.dll
14:27:21.0645 4524 C:\Windows\System32\winhttp.dll - ok
14:27:21.0645 4524 [ E36112A8A6C7F840169A7E92C12F4203 ] C:\Windows\System32\wsock32.dll
14:27:21.0645 4524 C:\Windows\System32\wsock32.dll - ok
14:27:21.0655 4524 [ 68769C3356B3BE5D1C732C97B9A80D6E ] C:\Windows\System32\drivers\PEAuth.sys
14:27:21.0655 4524 C:\Windows\System32\drivers\PEAuth.sys - ok
14:27:21.0655 4524 [ C6DCD1D11ED6827F05C00773C3E7053C ] C:\Windows\System32\sfc.dll
14:27:21.0655 4524 C:\Windows\System32\sfc.dll - ok
14:27:21.0655 4524 [ 895C9AB0A855547445C4181195230757 ] C:\Windows\System32\sfc_os.dll
14:27:21.0655 4524 C:\Windows\System32\sfc_os.dll - ok
14:27:21.0665 4524 [ 603EBD34E216C5654A2D774EAC98D278 ] C:\Windows\System32\webio.dll
14:27:21.0665 4524 C:\Windows\System32\webio.dll - ok
14:27:21.0665 4524 [ 46767946E7B559D981C1DC04EC0AB36F ] C:\Windows\System32\devenum.dll
14:27:21.0665 4524 C:\Windows\System32\devenum.dll - ok
14:27:21.0665 4524 [ 2BBF3FDB70B8965DFA0258CBAB41ECCE ] C:\Windows\System32\ssdpapi.dll
14:27:21.0665 4524 C:\Windows\System32\ssdpapi.dll - ok
14:27:21.0675 4524 [ 558C42D165DB5799B4072DC0A9C27C0B ] C:\Windows\System32\msdmo.dll
14:27:21.0675 4524 C:\Windows\System32\msdmo.dll - ok
14:27:21.0675 4524 [ 0015113A604B94769AB5159E8DCFC6E6 ] C:\Program Files (x86)\PowerUp Software\Pinnacle Game Profiler\pinnacle_updater.exe
14:27:21.0675 4524 C:\Program Files (x86)\PowerUp Software\Pinnacle Game Profiler\pinnacle_updater.exe - ok
14:27:21.0675 4524 [ 5343A19C618BC515CEB1695586C6C137 ] C:\Windows\SysWOW64\msvbvm60.dll
14:27:21.0675 4524 C:\Windows\SysWOW64\msvbvm60.dll - ok
14:27:21.0685 4524 [ 418E881201583A3039D81F43E39E6C78 ] C:\Windows\SysWOW64\winsta.dll
14:27:21.0685 4524 C:\Windows\SysWOW64\winsta.dll - ok
14:27:21.0685 4524 [ B5B2896034D8ADEBD79E0C281B52508F ] C:\Windows\AppPatch\AcGenral.dll
14:27:21.0685 4524 C:\Windows\AppPatch\AcGenral.dll - ok
14:27:21.0685 4524 [ 1BCDB508143B517F21BBDAC10F5777BF ] C:\Windows\System32\conhost.exe
14:27:21.0685 4524 C:\Windows\System32\conhost.exe - ok
14:27:21.0695 4524 [ 85683DF1F917E4D7F6BE1A04986BF1C8 ] C:\Windows\SysWOW64\msacm32.dll
14:27:21.0695 4524 C:\Windows\SysWOW64\msacm32.dll - ok
14:27:21.0695 4524 [ 68ECCA523ED760AAFC03C5D587569859 ] C:\Windows\SysWOW64\samcli.dll
14:27:21.0695 4524 C:\Windows\SysWOW64\samcli.dll - ok
14:27:21.0695 4524 [ 40CAEEE0EAF1B8569F7C8DF6420F2CB9 ] C:\Windows\SysWOW64\sfc.dll
14:27:21.0695 4524 C:\Windows\SysWOW64\sfc.dll - ok
14:27:21.0705 4524 [ 84799328D87B3091A3BDD251E1AD31F9 ] C:\Windows\SysWOW64\sfc_os.dll
14:27:21.0705 4524 C:\Windows\SysWOW64\sfc_os.dll - ok
14:27:21.0705 4524 [ 39C5F32747B3414D1BB216FDB1DEFC58 ] C:\Windows\SysWOW64\dwmapi.dll
14:27:21.0705 4524 C:\Windows\SysWOW64\dwmapi.dll - ok
14:27:21.0705 4524 [ B9A8CBCFCD3EC9D2EA4740AF347BF108 ] C:\Windows\SysWOW64\mpr.dll
14:27:21.0705 4524 C:\Windows\SysWOW64\mpr.dll - ok
14:27:21.0705 4524 [ 97E0EC3D6D99E8CC2B17EF2D3760E8FC ] C:\Windows\System32\schtasks.exe
14:27:21.0705 4524 C:\Windows\System32\schtasks.exe - ok
14:27:21.0715 4524 [ 919001D2BB17DF06CA3F8AC16AD039F6 ] C:\Windows\SysWOW64\sxs.dll
14:27:21.0715 4524 C:\Windows\SysWOW64\sxs.dll - ok
14:27:21.0715 4524 [ 7321F18D1F820612ED0E9F2D4B578A7E ] C:\Windows\SysWOW64\cryptsp.dll
14:27:21.0715 4524 C:\Windows\SysWOW64\cryptsp.dll - ok
14:27:21.0715 4524 [ 38B13C0DF479DBA23ECFA815159BA86E ] C:\Windows\SysWOW64\ktmw32.dll
14:27:21.0715 4524 C:\Windows\SysWOW64\ktmw32.dll - ok
14:27:21.0725 4524 [ FF5688D309347F2720911D8796912834 ] C:\Windows\SysWOW64\clbcatq.dll
14:27:21.0725 4524 C:\Windows\SysWOW64\clbcatq.dll - ok
14:27:21.0725 4524 [ 544EFF88AC6C85DF5A4D6F18DFE08CFC ] C:\Windows\SysWOW64\taskschd.dll
14:27:21.0725 4524 C:\Windows\SysWOW64\taskschd.dll - ok
14:27:21.0725 4524 [ ED8EC63F7522DF4852147C84EC62C36A ] C:\Windows\SysWOW64\rsaenh.dll
14:27:21.0725 4524 C:\Windows\SysWOW64\rsaenh.dll - ok
14:27:21.0735 4524 [ EDF2A5E96BEC469DA3F64E9BDD386111 ] C:\Windows\SysWOW64\xmllite.dll
14:27:21.0735 4524 C:\Windows\SysWOW64\xmllite.dll - ok
14:27:21.0735 4524 [ EB5F811C1F78005B3C147599A0CCCF51 ] C:\Windows\SysWOW64\COMCTL32.OCX
14:27:21.0735 4524 C:\Windows\SysWOW64\COMCTL32.OCX - ok
14:27:21.0735 4524 [ D1DE1EAFDE97BE41CF6585027FF3E732 ] C:\Windows\SysWOW64\comdlg32.dll
14:27:21.0735 4524 C:\Windows\SysWOW64\comdlg32.dll - ok
14:27:21.0745 4524 [ BDAC1AA64495D0F7E1FF810EBBF1F018 ] C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_ec83dffa859149af\comctl32.dll
14:27:21.0745 4524 C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_ec83dffa859149af\comctl32.dll - ok
14:27:21.0745 4524 [ 210FCACAF902B2CD47CF9FD17D846146 ] C:\Windows\System32\aeevts.dll
14:27:21.0745 4524 C:\Windows\System32\aeevts.dll - ok
14:27:21.0745 4524 [ DC6612A9EE015A36BA2A27BC9CC12537 ] C:\Windows\SysWOW64\mfc42.dll
14:27:21.0745 4524 C:\Windows\SysWOW64\mfc42.dll - ok
14:27:21.0745 4524 [ 9DF2C14E284286C806BE342F039335CC ] C:\Windows\SysWOW64\NTSVC.ocx
14:27:21.0745 4524 C:\Windows\SysWOW64\NTSVC.ocx - ok
14:27:21.0755 4524 [ 7D34AF98A706230CC2DEDFE0CABF87AB ] C:\Windows\SysWOW64\odbc32.dll
14:27:21.0755 4524 C:\Windows\SysWOW64\odbc32.dll - ok
14:27:21.0755 4524 [ ABA457BFC7EC0B5E130B2F1E0F549DFF ] C:\Windows\SysWOW64\odbcint.dll
14:27:21.0755 4524 C:\Windows\SysWOW64\odbcint.dll - ok
14:27:21.0755 4524 [ 539C49CEBB3C50957AC8A09D95ECD880 ] C:\Windows\SysWOW64\shfolder.dll
14:27:21.0755 4524 C:\Windows\SysWOW64\shfolder.dll - ok
14:27:21.0765 4524 [ 64FD8E9BD93F465A04FB0C6169130826 ] C:\Program Files (x86)\AVG\AVG2012\avgwd.dll
14:27:21.0765 4524 C:\Program Files (x86)\AVG\AVG2012\avgwd.dll - ok
14:27:21.0765 4524 [ 3EA8A16169C26AFBEB544E0E48421186 ] C:\Windows\System32\drivers\secdrv.sys
14:27:21.0765 4524 C:\Windows\System32\drivers\secdrv.sys - ok
14:27:21.0765 4524 [ 9A80707D8B6C1806531BFD7399B3CC76 ] C:\Windows\System32\HPZipm12.dll
14:27:21.0765 4524 C:\Windows\System32\HPZipm12.dll - ok
14:27:21.0775 4524 [ 7D80167166C46B370E3A0F90B650A5E3 ] C:\Windows\SysWOW64\dsofile.dll
14:27:21.0775 4524 C:\Windows\SysWOW64\dsofile.dll - ok
14:27:21.0775 4524 [ F07AF60B152221472FBDB2FECEC4896D ] C:\Program Files (x86)\Skype\Updater\Updater.exe
14:27:21.0775 4524 C:\Program Files (x86)\Skype\Updater\Updater.exe - ok
14:27:21.0775 4524 [ 27E461F0BE5BFF5FC737328F749538C3 ] C:\Windows\System32\drivers\srvnet.sys
14:27:21.0775 4524 C:\Windows\System32\drivers\srvnet.sys - ok
14:27:21.0775 4524 [ 5997D769CDB108390DCFAEBF442BF816 ] C:\Windows\SysWOW64\RpcRtRemote.dll
14:27:21.0775 4524 C:\Windows\SysWOW64\RpcRtRemote.dll - ok
14:27:21.0785 4524 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] C:\Windows\System32\drivers\tcpipreg.sys
14:27:21.0785 4524 C:\Windows\System32\drivers\tcpipreg.sys - ok
14:27:21.0785 4524 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] C:\Windows\System32\sysmain.dll
14:27:21.0785 4524 C:\Windows\System32\sysmain.dll - ok
14:27:21.0785 4524 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] C:\Windows\System32\wiaservc.dll
14:27:21.0785 4524 C:\Windows\System32\wiaservc.dll - ok
14:27:21.0795 4524 [ 0364256B4A2A93A8C8CDA6B3B5A0EFF5 ] C:\Windows\System32\wiatrace.dll
14:27:21.0795 4524 C:\Windows\System32\wiatrace.dll - ok
14:27:21.0795 4524 [ 7E7AFD841694F6AC397E99D75CEAD49D ] C:\Windows\System32\trkwks.dll
14:27:21.0795 4524 C:\Windows\System32\trkwks.dll - ok
14:27:21.0795 4524 [ C6311800DDC987F3788548E0470CF447 ] C:\Program Files (x86)\AVG\AVG2012\avgcfgx.dll
14:27:21.0795 4524 C:\Program Files (x86)\AVG\AVG2012\avgcfgx.dll - ok
14:27:21.0805 4524 [ 3AD1E72748978D8B0B3B674741E4C3E2 ] C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\14.2.0\ToolbarUpdater.exe
14:27:21.0805 4524 C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\14.2.0\ToolbarUpdater.exe - ok
14:27:21.0805 4524 [ A8EDB86FC2A4D6D1285E4C70384AC35A ] C:\Windows\System32\dllhost.exe
14:27:21.0805 4524 C:\Windows\System32\dllhost.exe - ok
14:27:21.0805 4524 [ 4AA2CC5979AFF984227364F2C23B04F3 ] C:\Program Files (x86)\Wajam\Updater\WajamUpdater.exe
14:27:21.0805 4524 C:\Program Files (x86)\Wajam\Updater\WajamUpdater.exe - ok
14:27:21.0815 4524 [ 14DFDEAF4E589ED3F1FF187A86B9408C ] C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_a4d6a923711520a9\comctl32.dll
14:27:21.0815 4524 C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_a4d6a923711520a9\comctl32.dll - ok
14:27:21.0815 4524 [ A0A2C1D812C231C9BFE119FDC68E341B ] C:\Windows\System32\IDStore.dll
14:27:21.0815 4524 C:\Windows\System32\IDStore.dll - ok
14:27:21.0815 4524 [ 639774C9ACD063F028F6084ABF5593AD ] C:\Windows\System32\taskhost.exe
14:27:21.0815 4524 C:\Windows\System32\taskhost.exe - ok
14:27:21.0825 4524 [ 6CEF7856A3EFAC59470F6208F0F585CE ] C:\Windows\System32\mpr.dll
14:27:21.0825 4524 C:\Windows\System32\mpr.dll - ok
14:27:21.0825 4524 [ 19B07E7E8915D701225DA41CB3877306 ] C:\Windows\System32\wbem\WMIsvc.dll
14:27:21.0825 4524 C:\Windows\System32\wbem\WMIsvc.dll - ok
14:27:21.0825 4524 [ F9D908DE6B166DAC9B89BF62FA291CE8 ] C:\Program Files\Bonjour\mdnsNSP.dll
14:27:21.0825 4524 C:\Program Files\Bonjour\mdnsNSP.dll - ok
14:27:21.0835 4524 [ BAFE84E637BF7388C96EF48D4D3FDD53 ] C:\Windows\System32\userinit.exe
14:27:21.0835 4524 C:\Windows\System32\userinit.exe - ok
14:27:21.0835 4524 [ 24FB8DB6D1D55E2C5D0A53DFE48E6AF8 ] C:\Program Files (x86)\Yontoo\Y2Desktop.Updater.exe
14:27:21.0835 4524 C:\Program Files (x86)\Yontoo\Y2Desktop.Updater.exe - ok
14:27:21.0835 4524 [ 88351B29B622B30962D2FEB6CA8D860B ] C:\Windows\System32\rasadhlp.dll
14:27:21.0835 4524 C:\Windows\System32\rasadhlp.dll - ok
14:27:21.0845 4524 [ 45CFBFA8EDC3DF4E2B7FB0D0260FE051 ] C:\Windows\System32\localspl.dll
14:27:21.0845 4524 C:\Windows\System32\localspl.dll - ok
14:27:21.0845 4524 [ D83947A58613E9091B4C9CC0F1546A8D ] C:\Windows\SysWOW64\mscoree.dll
14:27:21.0845 4524 C:\Windows\SysWOW64\mscoree.dll - ok
14:27:21.0845 4524 [ 7DB5AA22A8A8E5C2D335F44853C1F6DE ] C:\Windows\System32\wbemcomn.dll
14:27:21.0845 4524 C:\Windows\System32\wbemcomn.dll - ok
14:27:21.0845 4524 [ F162D5F5E845B9DC352DD1BAD8CEF1BC ] C:\Windows\System32\dwm.exe
14:27:21.0845 4524 C:\Windows\System32\dwm.exe - ok
14:27:21.0855 4524 [ 94EEAC26F57811BD1AEFC164412F7FCE ] C:\Windows\System32\PlaySndSrv.dll
14:27:21.0855 4524 C:\Windows\System32\PlaySndSrv.dll - ok
14:27:21.0855 4524 [ 65EA57712340C09B1B0C427B4848AE05 ] C:\Windows\System32\taskeng.exe
14:27:21.0855 4524 C:\Windows\System32\taskeng.exe - ok
14:27:21.0855 4524 [ 1F1CA9E99DD5BF918BE0BF30B5A42FDA ] C:\Windows\System32\MsCtfMonitor.dll
14:27:21.0855 4524 C:\Windows\System32\MsCtfMonitor.dll - ok
14:27:21.0865 4524 [ 0255C22D99602534F15CBB8D9B6F152F ] C:\Windows\System32\wbem\WinMgmtR.dll
14:27:21.0865 4524 C:\Windows\System32\wbem\WinMgmtR.dll - ok
14:27:21.0865 4524 [ F09A9A1AD21FE618C4C8B0A0D830C886 ] C:\Windows\System32\msutb.dll
14:27:21.0865 4524 C:\Windows\System32\msutb.dll - ok
14:27:21.0865 4524 [ 6868006E4560838285235546EDED2A8B ] C:\Program Files (x86)\AVG\AVG2012\avgclitx.dll
14:27:21.0865 4524 C:\Program Files (x86)\AVG\AVG2012\avgclitx.dll - ok
14:27:21.0875 4524 [ 0C52762C606BCF6A377D5E4688191A6B ] C:\Windows\System32\wbem\WmiDcPrv.dll
14:27:21.0875 4524 C:\Windows\System32\wbem\WmiDcPrv.dll - ok
14:27:21.0875 4524 [ 9BB99503D6A4DD62569EDE9E5E2672A5 ] C:\Windows\System32\HotStartUserAgent.dll
14:27:21.0875 4524 C:\Windows\System32\HotStartUserAgent.dll - ok
14:27:21.0875 4524 [ F5DF6846F30E9F54EA60CCAEB3FB2055 ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll
14:27:21.0875 4524 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll - ok
14:27:21.0885 4524 [ 3285481F5C12305CA104A6C493CA5A0B ] C:\Windows\System32\spoolss.dll
14:27:21.0885 4524 C:\Windows\System32\spoolss.dll - ok
14:27:21.0885 4524 [ A3F5E8EC1316C3E2562B82694A251C9E ] C:\Windows\System32\wbem\fastprox.dll
14:27:21.0885 4524 C:\Windows\System32\wbem\fastprox.dll - ok
14:27:21.0885 4524 [ FCFCD1101C5DA23B4B95F93D02B2C169 ] C:\Windows\System32\dwmredir.dll
14:27:21.0885 4524 C:\Windows\System32\dwmredir.dll - ok
14:27:21.0885 4524 [ 0015ACFBBDD164A8A730009908868CA7 ] C:\Windows\System32\winspool.drv
14:27:21.0885 4524 C:\Windows\System32\winspool.drv - ok
14:27:21.0895 4524 [ 805A52C5AE26C28E88FDD9BCCFE6F312 ] C:\Windows\System32\TSChannel.dll
14:27:21.0895 4524 C:\Windows\System32\TSChannel.dll - ok
14:27:21.0895 4524 [ C5AC93CF3BA30D367FB49148A2B673B9 ] C:\Windows\System32\PrintIsolationProxy.dll
14:27:21.0895 4524 C:\Windows\System32\PrintIsolationProxy.dll - ok
14:27:21.0895 4524 [ 332FEAB1435662FC6C672E25BEB37BE3 ] C:\Windows\explorer.exe
14:27:21.0895 4524 C:\Windows\explorer.exe - ok
14:27:21.0905 4524 [ 5B8D71AC2074550D78BC188A8888054F ] C:\Program Files (x86)\AVG\AVG2012\avgidpsdkx.dll
14:27:21.0905 4524 C:\Program Files (x86)\AVG\AVG2012\avgidpsdkx.dll - ok
14:27:21.0905 4524 [ 4E5FE39C1076D115EC8BFCFE14D75B80 ] C:\Windows\SysWOW64\credssp.dll
14:27:21.0905 4524 C:\Windows\SysWOW64\credssp.dll - ok
14:27:21.0905 4524 [ 73E8667A19FEEDD856DF2695E9E511D4 ] C:\Windows\SysWOW64\wship6.dll
14:27:21.0905 4524 C:\Windows\SysWOW64\wship6.dll - ok
14:27:21.0915 4524 [ 9A85ABCE0FDD1AF8E79E731EB0B679F3 ] C:\Windows\SysWOW64\dhcpcsvc.dll
14:27:21.0915 4524 C:\Windows\SysWOW64\dhcpcsvc.dll - ok
14:27:21.0915 4524 [ 058592F982B2FF22A7BE1733C1915699 ] C:\Windows\System32\HPTcpMon.dll
14:27:21.0915 4524 C:\Windows\System32\HPTcpMon.dll - ok
14:27:21.0915 4524 [ 4BA77A5EF71C14C764B0ED4701683E3E ] C:\Windows\System32\dwmcore.dll
14:27:21.0915 4524 C:\Windows\System32\dwmcore.dll - ok
14:27:21.0925 4524 [ EE26D130808D16C0E417BBBED0451B34 ] C:\Windows\System32\ntdsapi.dll
14:27:21.0925 4524 C:\Windows\System32\ntdsapi.dll - ok
14:27:21.0925 4524 [ 81F6C1AE23B1C493D9E996C3103915D7 ] C:\Windows\SysWOW64\dhcpcsvc6.dll
14:27:21.0925 4524 C:\Windows\SysWOW64\dhcpcsvc6.dll - ok
14:27:21.0925 4524 [ 666A60F6F5E719856FF6254E0966EFF7 ] C:\Windows\System32\wbem\wbemprox.dll
14:27:21.0925 4524 C:\Windows\System32\wbem\wbemprox.dll - ok
14:27:21.0925 4524 [ B40420876B9288E0A1C8CCA8A84E5DC9 ] C:\Windows\SysWOW64\dnsapi.dll
14:27:21.0925 4524 C:\Windows\SysWOW64\dnsapi.dll - ok
14:27:21.0935 4524 [ A8F7A64BF6A714A21FB73E5827AF5AA2 ] C:\Windows\System32\HPTcpMUI.dll
14:27:21.0935 4524 C:\Windows\System32\HPTcpMUI.dll - ok
14:27:21.0935 4524 [ 40947436A70E0034E41123DF5A0A7702 ] C:\Program Files (x86)\Bonjour\mdnsNSP.dll
14:27:21.0935 4524 C:\Program Files (x86)\Bonjour\mdnsNSP.dll - ok
14:27:21.0935 4524 [ 4C39358EBDD2FFCD9132A30E1EC31E16 ] C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcp90.dll
14:27:21.0935 4524 C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcp90.dll - ok
14:27:21.0945 4524 [ EAE1BC3F0A324751E87A3FE32BCF4A08 ] C:\Windows\System32\hpzjrd01.dll
14:27:21.0945 4524 C:\Windows\System32\hpzjrd01.dll - ok
14:27:21.0945 4524 [ 5EB55F661DEBF156E126160BCD4D89F8 ] C:\Windows\System32\wbem\wbemcore.dll
14:27:21.0945 4524 C:\Windows\System32\wbem\wbemcore.dll - ok
14:27:21.0945 4524 [ ED6EE83D61EBC683C2CD8E899EA6FEBE ] C:\Windows\SysWOW64\rasadhlp.dll
14:27:21.0945 4524 C:\Windows\SysWOW64\rasadhlp.dll - ok
14:27:21.0955 4524 [ 8B92BED5B8D4A8480E7AA631F35A6F35 ] C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
14:27:21.0955 4524 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll - ok
14:27:21.0955 4524 [ CDA5E19B214C8578752D2853B206A114 ] C:\Windows\System32\HpTcpMib.dll
14:27:21.0955 4524 C:\Windows\System32\HpTcpMib.dll - ok
14:27:21.0955 4524 [ EFEC3847B47CC9357D5C33BBAB59B7EB ] C:\Windows\System32\mgmtapi.dll
14:27:21.0955 4524 C:\Windows\System32\mgmtapi.dll - ok
14:27:21.0965 4524 [ 93518C6EDE0B61BCBD02BDB02BD05FEE ] C:\Windows\System32\snmpapi.dll
14:27:21.0965 4524 C:\Windows\System32\snmpapi.dll - ok
14:27:21.0965 4524 [ 03A03A453F1AAAE0C73AAAF895321C7A ] C:\Windows\SysWOW64\FWPUCLNT.DLL
14:27:21.0965 4524 C:\Windows\SysWOW64\FWPUCLNT.DLL - ok
14:27:21.0965 4524 [ FFF9D00CF16397C64317F213484F94BD ] C:\Windows\System32\wsnmp32.dll
14:27:21.0965 4524 C:\Windows\System32\wsnmp32.dll - ok
14:27:21.0975 4524 [ E1374D37477322D4956604711008C69D ] C:\Windows\System32\d3d10_1.dll
14:27:21.0975 4524 C:\Windows\System32\d3d10_1.dll - ok
14:27:21.0975 4524 [ 9EC06CA9F3D6ED3B1D0AB2F2BAC338D3 ] C:\Program Files (x86)\AVG\AVG2012\avgwdwsc.dll
14:27:21.0975 4524 C:\Program Files (x86)\AVG\AVG2012\avgwdwsc.dll - ok
14:27:21.0975 4524 [ 426BA4E737A7988FD1202AF2F2B2F4A6 ] C:\Windows\System32\d3d10_1core.dll
14:27:21.0975 4524 C:\Windows\System32\d3d10_1core.dll - ok
14:27:21.0985 4524 [ 67FC2C86490CB84F4AD74B6F5AF3A89C ] C:\Windows\System32\hpbprtmon.dll
14:27:21.0985 4524 C:\Windows\System32\hpbprtmon.dll - ok
14:27:21.0985 4524 [ A8CDF3768604FF95B54669E20053D569 ] C:\Windows\SysWOW64\wscapi.dll
14:27:21.0985 4524 C:\Windows\SysWOW64\wscapi.dll - ok
14:27:21.0985 4524 [ F404E59DB6A0F122AB26BF4F3E2FD0FA ] C:\Windows\System32\dxgi.dll
14:27:21.0985 4524 C:\Windows\System32\dxgi.dll - ok
14:27:21.0985 4524 [ 087D8668C71634A3A3761135ABF16EEE ] C:\Windows\System32\wbem\esscli.dll
14:27:21.0985 4524 C:\Windows\System32\wbem\esscli.dll - ok
14:27:21.0995 4524 [ A7A8CA53D9C9FD90C07AB0EB38E5316B ] C:\Windows\System32\dbghelp.dll
14:27:21.0995 4524 C:\Windows\System32\dbghelp.dll - ok
14:27:21.0995 4524 [ C5B0324DB461559ADD070E632A6919FA ] C:\Windows\SysWOW64\wbem\wbemprox.dll
14:27:21.0995 4524 C:\Windows\SysWOW64\wbem\wbemprox.dll - ok
14:27:21.0995 4524 [ EED05D42D91835064703E2318552ED25 ] C:\Windows\System32\ExplorerFrame.dll
14:27:21.0995 4524 C:\Windows\System32\ExplorerFrame.dll - ok
14:27:22.0005 4524 [ 718B6F51AB7F6FE2988A36868F9AD3AB ] C:\Windows\System32\wbem\wbemsvc.dll
14:27:22.0005 4524 C:\Windows\System32\wbem\wbemsvc.dll - ok
14:27:22.0005 4524 [ 704314FD398C81D5F342CAA5DF7B7F21 ] C:\Windows\SysWOW64\wbemcomn.dll
14:27:22.0005 4524 C:\Windows\SysWOW64\wbemcomn.dll - ok
14:27:22.0005 4524 [ 21D3A18769EC2C4E56756D04E989A221 ] C:\Windows\SysWOW64\msxml3.dll
14:27:22.0005 4524 C:\Windows\SysWOW64\msxml3.dll - ok
14:27:22.0015 4524 [ 0143DB80DACFB7C2B5B7009ED9063353 ] C:\Windows\System32\wbem\wmiutils.dll
14:27:22.0015 4524 C:\Windows\System32\wbem\wmiutils.dll - ok
14:27:22.0015 4524 [ 3AAD0907DDB53226F101AEEBE04EA992 ] C:\Windows\System32\aticfx64.dll
14:27:22.0015 4524 C:\Windows\System32\aticfx64.dll - ok
14:27:22.0015 4524 [ 0AB34456654C283DAA13B8D2BA21439B ] C:\Windows\System32\wbem\repdrvfs.dll
14:27:22.0015 4524 C:\Windows\System32\wbem\repdrvfs.dll - ok
14:27:22.0015 4524 [ 0C06CEC71BB7FF53490FD50FEE51AD5A ] C:\Windows\System32\atiuxp64.dll
14:27:22.0015 4524 C:\Windows\System32\atiuxp64.dll - ok
14:27:22.0025 4524 [ 06F13BD51FB6A9B199B73C1605238BBF ] C:\Windows\System32\hpbrprtmon.dll
14:27:22.0025 4524 C:\Windows\System32\hpbrprtmon.dll - ok
14:27:22.0025 4524 [ 72BC5B1F4AEC15A44381178CAE623A4B ] C:\Windows\System32\hpf3l101.dll
14:27:22.0025 4524 C:\Windows\System32\hpf3l101.dll - ok
14:27:22.0025 4524 [ AB2442103461F5ECE09F7018AD5D4B37 ] C:\Windows\System32\atidxx64.dll
14:27:22.0025 4524 C:\Windows\System32\atidxx64.dll - ok
14:27:22.0035 4524 [ 19E41CCCEE697CC9465396B370929792 ] C:\Windows\System32\FXSMON.dll
14:27:22.0035 4524 C:\Windows\System32\FXSMON.dll - ok
14:27:22.0035 4524 [ 32A3C8600AF124CBAAD845F13CFAE3CB ] C:\Windows\System32\tcpmon.dll
14:27:22.0035 4524 C:\Windows\System32\tcpmon.dll - ok
14:27:22.0035 4524 [ C9F44E08EF18BE1139386095360B0E39 ] C:\Program Files (x86)\AVG\AVG2012\avgcorex.dll
14:27:22.0035 4524 C:\Program Files (x86)\AVG\AVG2012\avgcorex.dll - ok
14:27:22.0045 4524 [ 024352FEEC9042260BB4CFB4D79A206B ] C:\Windows\System32\EhStorShell.dll
14:27:22.0045 4524 C:\Windows\System32\EhStorShell.dll - ok
14:27:22.0045 4524 [ DF72A9936D0C3F517083119648814B09 ] C:\Windows\System32\usbmon.dll
14:27:22.0045 4524 C:\Windows\System32\usbmon.dll - ok
14:27:22.0045 4524 [ DDD0357A92FA843EFF8915ED17253D6C ] C:\Windows\System32\wbem\WmiPrvSD.dll
14:27:22.0045 4524 C:\Windows\System32\wbem\WmiPrvSD.dll - ok
14:27:22.0055 4524 [ A1D7E3ADCDB07DDB6F423862DCB1A52B ] C:\Windows\System32\WSDMon.dll
14:27:22.0055 4524 C:\Windows\System32\WSDMon.dll - ok
14:27:22.0055 4524 [ 037A719DAD50603202C978CD802623E4 ] C:\Windows\System32\ntshrui.dll
14:27:22.0055 4524 C:\Windows\System32\ntshrui.dll - ok
14:27:22.0055 4524 [ F1B205F932F62F94506A5F332C895DAF ] C:\Windows\System32\WSDApi.dll
14:27:22.0055 4524 C:\Windows\System32\WSDApi.dll - ok
14:27:22.0055 4524 [ 1BF0CB861A48FEB1638228760750F3CB ] C:\Windows\System32\cscapi.dll
14:27:22.0055 4524 C:\Windows\System32\cscapi.dll - ok
14:27:22.0065 4524 [ 1D63F4366288B8A7595397E27010FD44 ] C:\Windows\System32\IconCodecService.dll
14:27:22.0065 4524 C:\Windows\System32\IconCodecService.dll - ok
14:27:22.0065 4524 [ D41FEBD098234F02485A4EA98D4730A4 ] C:\Windows\System32\ncobjapi.dll
14:27:22.0065 4524 C:\Windows\System32\ncobjapi.dll - ok
14:27:22.0065 4524 [ 025E7DBDB98866ED3CB2D4DDA70B364D ] C:\Windows\System32\runonce.exe
14:27:22.0065 4524 C:\Windows\System32\runonce.exe - ok
14:27:22.0075 4524 [ C55516D98DD5D8F0153C2A9B4227DA86 ] C:\Windows\System32\webservices.dll
14:27:22.0075 4524 C:\Windows\System32\webservices.dll - ok
14:27:22.0075 4524 [ 6F40D6FB05E0C1E5402812B426971AF0 ] C:\Windows\System32\wbem\wbemess.dll
14:27:22.0075 4524 C:\Windows\System32\wbem\wbemess.dll - ok
14:27:22.0075 4524 [ D44741F65A1D71F65814A12CF6E2400A ] C:\Windows\SysWOW64\runonce.exe
14:27:22.0075 4524 C:\Windows\SysWOW64\runonce.exe - ok
14:27:22.0085 4524 [ B5055B51BAA0FD0A736A88653DA3C1C0 ] C:\Windows\System32\fundisc.dll
14:27:22.0085 4524 C:\Windows\System32\fundisc.dll - ok
14:27:22.0085 4524 [ 4581716B4BF76ACFD8E167EB0B26D82A ] C:\Windows\System32\fdPnp.dll
14:27:22.0085 4524 C:\Windows\System32\fdPnp.dll - ok
14:27:22.0085 4524 [ 1D626FE2E13C1CE49CA0136CFF214E93 ] C:\Windows\System32\spool\prtprocs\x64\winprint.dll
14:27:22.0085 4524 C:\Windows\System32\spool\prtprocs\x64\winprint.dll - ok
14:27:22.0095 4524 [ 42B82145FD3FFDA86A62E61154B0AEBE ] C:\Windows\System32\spool\prtprocs\x64\hpfpp101.dll
14:27:22.0095 4524 C:\Windows\System32\spool\prtprocs\x64\hpfpp101.dll - ok
14:27:22.0095 4524 [ 0353B239C28B0E9EBC7FA3D1F6181661 ] C:\Windows\System32\win32spl.dll
14:27:22.0095 4524 C:\Windows\System32\win32spl.dll - ok
14:27:22.0095 4524 [ 49E5753D923F1AC63B22D3DCB0B47E00 ] C:\Windows\System32\uDWM.dll
14:27:22.0095 4524 C:\Windows\System32\uDWM.dll - ok
14:27:22.0105 4524 [ 507D5567A0A4EE86C4B0CE2CE1777025 ] C:\Windows\System32\inetpp.dll
14:27:22.0105 4524 C:\Windows\System32\inetpp.dll - ok
14:27:22.0105 4524 [ C3E39FB1398EEE8E612C2FE53A9192EF ] C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\7150b9136fad5b79e88f6c7f9d3d2c39\mscorlib.ni.dll
14:27:22.0105 4524 C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\7150b9136fad5b79e88f6c7f9d3d2c39\mscorlib.ni.dll - ok
14:27:22.0105 4524 [ 352B3DC62A0D259A82A052238425C872 ] C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
14:27:22.0105 4524 C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll - ok
14:27:22.0115 4524 [ 2D7F84ABE95B6AECEF89C0FBB5C9DD96 ] C:\Program Files (x86)\AVG\AVG2012\avgnsa.exe
14:27:22.0115 4524 C:\Program Files (x86)\AVG\AVG2012\avgnsa.exe - ok
14:27:22.0115 4524 [ 1263AABC78A04C45C093EBA201937724 ] C:\Windows\System32\spool\drivers\x64\3\hpbxjobsvr1202.dll
14:27:22.0115 4524 C:\Windows\System32\spool\drivers\x64\3\hpbxjobsvr1202.dll - ok
14:27:22.0115 4524 [ 938928B014F2ABA4C1293EA4D8714020 ] C:\Program Files (x86)\AVG\AVG2012\avgemca.exe
14:27:22.0115 4524 C:\Program Files (x86)\AVG\AVG2012\avgemca.exe - ok
14:27:22.0125 4524 [ B698A49CA095FB8DBAA5DDF6538311DE ] C:\Program Files (x86)\AVG\AVG2012\avgxpl.dll
14:27:22.0125 4524 C:\Program Files (x86)\AVG\AVG2012\avgxpl.dll - ok
14:27:22.0125 4524 [ 12C45E3CB6D65F73209549E2D02ECA7A ] C:\Windows\SysWOW64\propsys.dll
14:27:22.0125 4524 C:\Windows\SysWOW64\propsys.dll - ok
14:27:22.0125 4524 [ AFF2E23E4E867140F07ABADC9E29ACDC ] C:\Program Files (x86)\AVG\AVG2012\avgopensslx.dll
14:27:22.0125 4524 C:\Program Files (x86)\AVG\AVG2012\avgopensslx.dll - ok
14:27:22.0125 4524 [ A5675206B80C4127BC687DCCA9A57212 ] C:\Program Files (x86)\AVG\AVG2012\avgntsqlitex.dll
14:27:22.0125 4524 C:\Program Files (x86)\AVG\AVG2012\avgntsqlitex.dll - ok
14:27:22.0135 4524 [ 09B4AE489AE41A4B1CB8460AE9F32FBE ] C:\Program Files (x86)\AVG\AVG2012\avgcfga.dll
14:27:22.0135 4524 C:\Program Files (x86)\AVG\AVG2012\avgcfga.dll - ok
14:27:22.0135 4524 [ 776AE0564F8B1C282E331FD95A1BDC5F ] C:\Windows\SysWOW64\wbem\wbemsvc.dll
14:27:22.0135 4524 C:\Windows\SysWOW64\wbem\wbemsvc.dll - ok
14:27:22.0145 4524 [ EE9E286E203D1B87F0696332B6B42B8D ] C:\Program Files (x86)\AVG\AVG2012\avgsched.dll
14:27:22.0145 4524 C:\Program Files (x86)\AVG\AVG2012\avgsched.dll - ok
14:27:22.0145 4524 [ A9CA9A6300046BE423AF13D5718284F5 ] C:\Program Files (x86)\Gigabyte\UpdManager\PreRun.exe
14:27:22.0145 4524 C:\Program Files (x86)\Gigabyte\UpdManager\PreRun.exe - ok
14:27:22.0145 4524 [ CFC7D8289D2B5F3CF8D16E2DB7F93D4A ] C:\Windows\SysWOW64\wbem\fastprox.dll
14:27:22.0145 4524 C:\Windows\SysWOW64\wbem\fastprox.dll - ok
14:27:22.0155 4524 [ 9E4B0E7472B4CEBA9E17F440B8CB0AB8 ] C:\Windows\SysWOW64\winspool.drv
14:27:22.0155 4524 C:\Windows\SysWOW64\winspool.drv - ok
14:27:22.0155 4524 [ E3E811471DE781900FF21C1FD84E941E ] C:\Windows\SysWOW64\ntdsapi.dll
14:27:22.0155 4524 C:\Windows\SysWOW64\ntdsapi.dll - ok
14:27:22.0155 4524 [ 936F728E04ACCF3F38801CFFCF1E3F40 ] C:\Windows\SysWOW64\oledlg.dll
14:27:22.0155 4524 C:\Windows\SysWOW64\oledlg.dll - ok
14:27:22.0155 4524 [ 43425FD0BD73B0930E77AE2E35ED8F7A ] C:\Program Files (x86)\AVG\AVG2012\avgamx.dll
14:27:22.0155 4524 C:\Program Files (x86)\AVG\AVG2012\avgamx.dll - ok
14:27:22.0165 4524 [ ACA2FA3D5C61131C7D4AAB77A9B80956 ] C:\Program Files (x86)\Gigabyte\UpdManager\RunUpd.exe
14:27:22.0165 4524 C:\Program Files (x86)\Gigabyte\UpdManager\RunUpd.exe - ok
14:27:22.0165 4524 [ 6F8E3B7B70E1BBA871212940C1FBDF60 ] C:\Windows\SysWOW64\SensApi.dll
14:27:22.0165 4524 C:\Windows\SysWOW64\SensApi.dll - ok
14:27:22.0165 4524 [ 8B9D6D070113CFD8E20793768AFA26FC ] C:\Program Files (x86)\AVG\AVG2012\avglngx.dll
14:27:22.0165 4524 C:\Program Files (x86)\AVG\AVG2012\avglngx.dll - ok
14:27:22.0175 4524 [ DCB679EA4BA802DBA775A7E32BA88302 ] C:\Program Files (x86)\AVG\AVG2012\avgameh.dll
14:27:22.0175 4524 C:\Program Files (x86)\AVG\AVG2012\avgameh.dll - ok
14:27:22.0175 4524 [ 839F96DBAAFD3353E0B248A5E0BD2A51 ] C:\Windows\SysWOW64\rasapi32.dll
14:27:22.0175 4524 C:\Windows\SysWOW64\rasapi32.dll - ok
14:27:22.0175 4524 [ FFA7172354B9256DBB2CDD75F16F33FE ] C:\Windows\SysWOW64\rasman.dll
14:27:22.0175 4524 C:\Windows\SysWOW64\rasman.dll - ok
14:27:22.0185 4524 [ 0915C4DB6DBC3BB9E11B7ECBBE4B7159 ] C:\Windows\SysWOW64\rtutils.dll
14:27:22.0185 4524 C:\Windows\SysWOW64\rtutils.dll - ok
14:27:22.0185 4524 [ FCF1A9C3FB29786946302B4470952D85 ] C:\Program Files (x86)\AVG\AVG2012\avgcslx.dll
14:27:22.0185 4524 C:\Program Files (x86)\AVG\AVG2012\avgcslx.dll - ok
14:27:22.0185 4524 [ 08B098B89C5F5968BDA67EC58855B309 ] C:\Program Files (x86)\AVG\AVG2012\avgamnot.dll
14:27:22.0185 4524 C:\Program Files (x86)\AVG\AVG2012\avgamnot.dll - ok
14:27:22.0195 4524 [ 09A116FB06C5E362EF8938D29CDAB27B ] C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
14:27:22.0195 4524 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll - ok
14:27:22.0195 4524 [ 24E48B4BB6565B089B1F467BDF586CF7 ] C:\Program Files (x86)\AVG\AVG2012\avgxpla.dll
14:27:22.0195 4524 C:\Program Files (x86)\AVG\AVG2012\avgxpla.dll - ok
14:27:22.0195 4524 [ 3518CB4E2D896CAB53D5386F15AC0566 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System\369f8bdca364e2b4936d18dea582912c\System.ni.dll
14:27:22.0195 4524 C:\Windows\assembly\NativeImages_v2.0.50727_32\System\369f8bdca364e2b4936d18dea582912c\System.ni.dll - ok
14:27:22.0205 4524 [ 6F83C67F5339C2235996174BFB05041E ] C:\Program Files (x86)\AVG\AVG2012\avgopenssla.dll
14:27:22.0205 4524 C:\Program Files (x86)\AVG\AVG2012\avgopenssla.dll - ok
14:27:22.0205 4524 [ 7765680E25E329708CB034B180CF9FCD ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\7ff638de44686eab4afaa8b3c8a9cfca\System.ServiceProcess.ni.dll
14:27:22.0205 4524 C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\7ff638de44686eab4afaa8b3c8a9cfca\System.ServiceProcess.ni.dll - ok
14:27:22.0205 4524 [ 2AF6612AA56241F2D6E4056B5469BD3D ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
14:27:22.0205 4524 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe - ok
14:27:22.0215 4524 [ 3D319A5F9B6A672E6BC3FE44E68A4570 ] C:\Windows\System32\msvcp100.dll
14:27:22.0215 4524 C:\Windows\System32\msvcp100.dll - ok
14:27:22.0215 4524 [ 23DDD075AC31D22F94CA2FD0D1C207B5 ] C:\Windows\System32\msvcr100.dll
14:27:22.0215 4524 C:\Windows\System32\msvcr100.dll - ok
14:27:22.0215 4524 [ 292DF1EFA5AAFBE67ECFEBB420159930 ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.AFCM.dll
14:27:22.0215 4524 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.AFCM.dll - ok
14:27:22.0225 4524 [ 633360E94804E7BAFE642017817C9413 ] C:\Windows\System32\drivers\avgidsdrivera.sys
14:27:22.0225 4524 C:\Windows\System32\drivers\avgidsdrivera.sys - ok
14:27:22.0225 4524 [ 167A39A44D711178004BDBA56158A006 ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\RM_Client_Module.dll
14:27:22.0225 4524 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\RM_Client_Module.dll - ok
14:27:22.0225 4524 [ 530566B97C73813FFDDE8EC0C7C044EA ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\XML_RPC_DLL.dll
14:27:22.0225 4524 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\XML_RPC_DLL.dll - ok
14:27:22.0235 4524 [ 58A0CDABEA255616827B1C22C9994466 ] C:\Windows\System32\NapiNSP.dll
14:27:22.0235 4524 C:\Windows\System32\NapiNSP.dll - ok
14:27:22.0235 4524 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] C:\Windows\System32\drivers\srv2.sys
14:27:22.0235 4524 C:\Windows\System32\drivers\srv2.sys - ok
14:27:22.0235 4524 [ 613C8CE10A5FDE582BA5FA64C4D56AAA ] C:\Windows\System32\pnrpnsp.dll
14:27:22.0235 4524 C:\Windows\System32\pnrpnsp.dll - ok
14:27:22.0245 4524 [ 2E2072EB48238FCA8FBB7A9F5FABAC45 ] C:\Windows\System32\winrnr.dll
14:27:22.0245 4524 C:\Windows\System32\winrnr.dll - ok
14:27:22.0245 4524 [ D20BD508C58D978E8D860BDDBFBD26F7 ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Services.dll
14:27:22.0245 4524 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Services.dll - ok
14:27:22.0245 4524 [ 504D945FDEA99D795C2D106CA7FF3CD6 ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
14:27:22.0245 4524 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll - ok
14:27:22.0255 4524 [ 357BE883C5236BFC7341CB9E82308908 ] C:\Windows\System32\wlanapi.dll
14:27:22.0255 4524 C:\Windows\System32\wlanapi.dll - ok
14:27:22.0255 4524 [ 231B6AD3DB2866BC3FDB9979E6B2B61E ] C:\Program Files (x86)\AVG\AVG2012\avgidsagent.exe
14:27:22.0255 4524 C:\Program Files (x86)\AVG\AVG2012\avgidsagent.exe - ok
14:27:22.0255 4524 [ A08C010D859F8EB42BDD7E1D55B8CA27 ] C:\Windows\System32\mscoree.dll
14:27:22.0255 4524 C:\Windows\System32\mscoree.dll - ok
14:27:22.0265 4524 [ B068D2E854445A7310322DB95EB97509 ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
14:27:22.0265 4524 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll - ok
14:27:22.0265 4524 [ 583D2AB70DA4BDC7DCB5EC5C7B87A57C ] C:\Program Files (x86)\AVG\AVG2012\avgcertx.dll
14:27:22.0265 4524 C:\Program Files (x86)\AVG\AVG2012\avgcertx.dll - ok
14:27:22.0265 4524 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] C:\Windows\System32\drivers\srv.sys
14:27:22.0265 4524 C:\Windows\System32\drivers\srv.sys - ok
14:27:22.0275 4524 [ 3466855DE825F86C484A3454AD090967 ] C:\Program Files (x86)\AVG\AVG2012\avgchclx.dll
14:27:22.0275 4524 C:\Program Files (x86)\AVG\AVG2012\avgchclx.dll - ok
14:27:22.0275 4524 [ D9F42719019740BAA6D1C6D536CBDAA6 ] C:\Windows\System32\srvsvc.dll
14:27:22.0275 4524 C:\Windows\System32\srvsvc.dll - ok
14:27:22.0275 4524 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] C:\Windows\System32\browser.dll
14:27:22.0275 4524 C:\Windows\System32\browser.dll - ok
14:27:22.0275 4524 [ CFEFA40DDE34659BE5211966EAD86437 ] C:\Windows\System32\netmsg.dll
14:27:22.0275 4524 C:\Windows\System32\netmsg.dll - ok
14:27:22.0285 4524 [ FF80CAD87555E8E4D2CFD7B9058343F8 ] C:\Windows\System32\sscore.dll
14:27:22.0285 4524 C:\Windows\System32\sscore.dll - ok
14:27:22.0285 4524 [ 81749E073AC5857B044A686B406E5244 ] C:\Windows\System32\clusapi.dll
14:27:22.0285 4524 C:\Windows\System32\clusapi.dll - ok
14:27:22.0285 4524 [ 344FCC9850C3A8A3B4D3C65151AF8E4C ] C:\Windows\System32\resutils.dll
14:27:22.0285 4524 C:\Windows\System32\resutils.dll - ok
14:27:22.0295 4524 [ BF1FC3F79B863C914687A737C2F3D681 ] C:\Windows\System32\wdi.dll
14:27:22.0295 4524 C:\Windows\System32\wdi.dll - ok
14:27:22.0295 4524 [ 93221146D4EBBF314C29B23CD6CC391D ] C:\Windows\System32\wpdbusenum.dll
14:27:22.0295 4524 C:\Windows\System32\wpdbusenum.dll - ok
14:27:22.0295 4524 [ E1B22739C933BE33F53DB58C5393ADD3 ] C:\Windows\System32\Apphlpdm.dll
14:27:22.0295 4524 C:\Windows\System32\Apphlpdm.dll - ok
14:27:22.0305 4524 [ 4449D23E8F197862F1B16F1E6C89C36C ] C:\Windows\System32\diagperf.dll
14:27:22.0305 4524 C:\Windows\System32\diagperf.dll - ok
14:27:22.0305 4524 [ 9689A9C7F7C2A1A423CDA2C3B43FFF65 ] C:\Windows\System32\wer.dll
14:27:22.0305 4524 C:\Windows\System32\wer.dll - ok
14:27:22.0305 4524 [ BF4AC709BE5BF64F331F5D67773A0C82 ] C:\Windows\System32\perftrack.dll
14:27:22.0305 4524 C:\Windows\System32\perftrack.dll - ok
14:27:22.0305 4524 [ E64D9EC8018C55873B40FDEE9DBEF5B3 ] C:\Windows\System32\PortableDeviceApi.dll
14:27:22.0305 4524 C:\Windows\System32\PortableDeviceApi.dll - ok
14:27:22.0315 4524 [ 9719E3D834F5C8C43F56A93DFA497023 ] C:\Windows\System32\pnpts.dll
14:27:22.0315 4524 C:\Windows\System32\pnpts.dll - ok
14:27:22.0315 4524 [ E811F8510B133E70CF6E509FB809824F ] C:\Windows\System32\wdiasqmmodule.dll
14:27:22.0315 4524 C:\Windows\System32\wdiasqmmodule.dll - ok
14:27:22.0315 4524 [ AFA79C343F9D1555F7E5D5FA70BB2A14 ] C:\Windows\System32\PortableDeviceConnectApi.dll
14:27:22.0315 4524 C:\Windows\System32\PortableDeviceConnectApi.dll - ok
14:27:22.0325 4524 [ 46863C4CC5B68EB09EA2D5EEF0F1193A ] C:\Windows\System32\radardt.dll
14:27:22.0325 4524 C:\Windows\System32\radardt.dll - ok
14:27:22.0325 4524 [ 4B78B431F225FD8624C5655CB1DE7B61 ] C:\Windows\System32\aelupsvc.dll
14:27:22.0325 4524 C:\Windows\System32\aelupsvc.dll - ok
14:27:22.0325 4524 [ E629F1A051C82795DDFFD3E8D4855811 ] C:\Windows\System32\dimsjob.dll
14:27:22.0325 4524 C:\Windows\System32\dimsjob.dll - ok
14:27:22.0325 4524 [ F7073C962C4FB7C415565DDE109DE49F ] C:\Windows\System32\npmproxy.dll
14:27:22.0325 4524 C:\Windows\System32\npmproxy.dll - ok
14:27:22.0335 4524 [ 321DCE66CB620D1B4B767C49B39B6E5C ] C:\Program Files (x86)\Gigabyte\UpdManager\GBTUpd.exe
14:27:22.0335 4524 C:\Program Files (x86)\Gigabyte\UpdManager\GBTUpd.exe - ok
14:27:22.0335 4524 [ 7717F84F483002815490033BF069DABD ] C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\GdiPlus.dll
14:27:22.0335 4524 C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\GdiPlus.dll - ok
14:27:22.0345 4524 [ AD7B9C14083B52BC532FBA5948342B98 ] C:\Windows\SysWOW64\cmd.exe
14:27:22.0345 4524 C:\Windows\SysWOW64\cmd.exe - ok
14:27:22.0345 4524 [ 326C7F76A29897A892AA7726E91C1C67 ] C:\Windows\SysWOW64\winbrand.dll
14:27:22.0345 4524 C:\Windows\SysWOW64\winbrand.dll - ok
14:27:22.0345 4524 [ DFE118C95C6571B87D1923DAB3FA0A77 ] C:\Windows\SysWOW64\ieframe.dll
14:27:22.0345 4524 C:\Windows\SysWOW64\ieframe.dll - ok
14:27:22.0345 4524 [ 8E01332CC4B68BC6B5B7EFFE374442AA ] C:\Windows\SysWOW64\oleacc.dll
14:27:22.0345 4524 C:\Windows\SysWOW64\oleacc.dll - ok
14:27:22.0355 4524 [ BE247AE996A9FDE007A27B51413A6C79 ] C:\Windows\SysWOW64\shdocvw.dll
14:27:22.0355 4524 C:\Windows\SysWOW64\shdocvw.dll - ok
14:27:22.0355 4524 [ 178A34E5554DCE485E1262DDF027960C ] C:\Users\GTech\AppData\Local\Temp\1499B5BE-C59E-48A5-AE6A-8CF6A634D6E1.exe
14:27:22.0355 4524 C:\Users\GTech\AppData\Local\Temp\1499B5BE-C59E-48A5-AE6A-8CF6A634D6E1.exe - ok
14:27:22.0355 4524 [ BF6D6ED5FADCEEE885BD0144ECF1BA27 ] C:\Windows\SysWOW64\ncrypt.dll
14:27:22.0355 4524 C:\Windows\SysWOW64\ncrypt.dll - ok
14:27:22.0365 4524 [ CE71B9119A258EDD0A05B37D7B0F92E3 ] C:\Windows\SysWOW64\bcrypt.dll
14:27:22.0365 4524 C:\Windows\SysWOW64\bcrypt.dll - ok
14:27:22.0365 4524 [ E8449FE262D7406BCB2AC2A45C53EC5F ] C:\Windows\SysWOW64\bcryptprimitives.dll
14:27:22.0365 4524 C:\Windows\SysWOW64\bcryptprimitives.dll - ok
14:27:22.0365 4524 [ 1097F3035BAF46CED8B332B3564C5108 ] C:\Windows\SysWOW64\gpapi.dll
14:27:22.0365 4524 C:\Windows\SysWOW64\gpapi.dll - ok
14:27:22.0365 4524 [ CA79539D3D4C0BA66F0F051A5EE5E923 ] C:\Windows\SysWOW64\cryptnet.dll
14:27:22.0365 4524 C:\Windows\SysWOW64\cryptnet.dll - ok
14:27:22.0375 4524 [ 1DB71A41DAEE6B3F8CD0DDA8209FA2D5 ] C:\Windows\SysWOW64\WindowsCodecs.dll
14:27:22.0375 4524 C:\Windows\SysWOW64\WindowsCodecs.dll - ok
14:27:22.0375 4524 [ 846D0E4DB261CFAF363902E41498E961 ] C:\Windows\SysWOW64\EhStorShell.dll
14:27:22.0375 4524 C:\Windows\SysWOW64\EhStorShell.dll - ok
14:27:22.0375 4524 [ 03F3B770DFBED6131653CEDA8CA780F0 ] C:\Windows\SysWOW64\ntshrui.dll
14:27:22.0375 4524 C:\Windows\SysWOW64\ntshrui.dll - ok
14:27:22.0375 4524 [ 5CCDCD40E732D54E0F7451AC66AC1C87 ] C:\Windows\SysWOW64\srvcli.dll
14:27:22.0375 4524 C:\Windows\SysWOW64\srvcli.dll - ok
14:27:22.0385 4524 [ 465BEA35F7ED4A4A57686DEA7EA10F47 ] C:\Windows\SysWOW64\cscapi.dll
14:27:22.0385 4524 C:\Windows\SysWOW64\cscapi.dll - ok
14:27:22.0385 4524 [ 8B74CEC6980D4816B0037AE9A27E538F ] C:\Windows\SysWOW64\slc.dll
14:27:22.0385 4524 C:\Windows\SysWOW64\slc.dll - ok
14:27:22.0385 4524 [ 827CB0D6C3F8057EA037FF271F8E9795 ] C:\Windows\SysWOW64\imageres.dll
14:27:22.0385 4524 C:\Windows\SysWOW64\imageres.dll - ok
14:27:22.0385 4524 [ 4EBBC2B0AD7F9075AE9D6835D2A62B6E ] C:\Windows\System32\sc.exe
14:27:22.0385 4524 C:\Windows\System32\sc.exe - ok
14:27:22.0385 4524 [ 162D247E995EAEBF3EF4289069E1111C ] C:\Windows\SysWOW64\devrtl.dll
14:27:22.0385 4524 C:\Windows\SysWOW64\devrtl.dll - ok
14:27:22.0395 4524 [ 20B3934DB73EABA2B49B7177873CB81F ] C:\Windows\SysWOW64\netutils.dll
14:27:22.0395 4524 C:\Windows\SysWOW64\netutils.dll - ok
14:27:22.0395 4524 [ B519848DFA30AE2B306576B51321D102 ] C:\Windows\System32\ie4uinit.exe
14:27:22.0395 4524 C:\Windows\System32\ie4uinit.exe - ok
14:27:22.0395 4524 [ C3E98C42EDF7EF237A4BAB91FEAC7426 ] C:\Windows\System32\iedkcs32.dll
14:27:22.0395 4524 C:\Windows\System32\iedkcs32.dll - ok
14:27:22.0405 4524 [ FB10715E4099AF9FA389C71873245226 ] C:\Windows\System32\timedate.cpl
14:27:22.0405 4524 C:\Windows\System32\timedate.cpl - ok
14:27:22.0405 4524 [ E6F0F82788E8BD0F7A616350EFA0761C ] C:\Windows\System32\actxprxy.dll
14:27:22.0405 4524 C:\Windows\System32\actxprxy.dll - ok
14:27:22.0405 4524 [ C4F40F6CACD796A8E16671D0E9A2F319 ] C:\Windows\System32\shdocvw.dll
14:27:22.0405 4524 C:\Windows\System32\shdocvw.dll - ok
14:27:22.0415 4524 [ A0A65D306A5490D2EB8E7DE66898ECFD ] C:\Windows\System32\linkinfo.dll
14:27:22.0415 4524 C:\Windows\System32\linkinfo.dll - ok
14:27:22.0415 4524 [ 1EAC1A8CA6874BF5B15E2EFB9A9A7B86 ] C:\Windows\System32\msftedit.dll
14:27:22.0415 4524 C:\Windows\System32\msftedit.dll - ok
14:27:22.0415 4524 [ 7FCAB194F01E3403C300EB034E480B36 ] C:\Windows\System32\msls31.dll
14:27:22.0415 4524 C:\Windows\System32\msls31.dll - ok
14:27:22.0415 4524 [ 2BCBA6052374959A30BD7948444DBB79 ] C:\Windows\System32\gameux.dll
14:27:22.0415 4524 C:\Windows\System32\gameux.dll - ok
14:27:22.0425 4524 [ F146E2BA475893DD77B2370DC1211FC6 ] C:\Windows\System32\drivers\68147548.sys
14:27:22.0425 4524 C:\Windows\System32\drivers\68147548.sys - ok
14:27:22.0425 4524 [ 7DBA84667DC18877AEF693E3543DFAD7 ] C:\Program Files\Common Files\Microsoft Shared\ink\tiptsf.dll
14:27:22.0425 4524 C:\Program Files\Common Files\Microsoft Shared\ink\tiptsf.dll - ok
14:27:22.0425 4524 [ 69754747274B76E7FAF287239333D7E6 ] C:\Windows\System32\msiltcfg.dll
14:27:22.0425 4524 C:\Windows\System32\msiltcfg.dll - ok
14:27:22.0435 4524 [ 4C2C4640BF23AAFCF90519E0F34436CE ] C:\Windows\System32\DeviceCenter.dll
14:27:22.0435 4524 C:\Windows\System32\DeviceCenter.dll - ok
14:27:22.0435 4524 [ 5EB6E9C8BE1ACC5830780E0F9A846255 ] C:\Windows\System32\msi.dll
14:27:22.0435 4524 C:\Windows\System32\msi.dll - ok
14:27:22.0435 4524 [ BFC46E17C6C818C5E62D32D8B700144D ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
14:27:22.0435 4524 C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe - ok
14:27:22.0445 4524 [ 69764A6475A4C54732E6A07CE6EF8BE2 ] C:\Windows\vVX3000.exe
14:27:22.0445 4524 C:\Windows\vVX3000.exe - ok
14:27:22.0445 4524 [ 24F4B480F335A6C724AF352253C5D98B ] C:\Windows\System32\thumbcache.dll
14:27:22.0445 4524 C:\Windows\System32\thumbcache.dll - ok
14:27:22.0445 4524 [ 1FAD6ACA65366E1AFF10EC6B02F47A84 ] C:\Program Files\Microsoft Office\Office14\BCSSync.exe
14:27:22.0445 4524 C:\Program Files\Microsoft Office\Office14\BCSSync.exe - ok
14:27:22.0455 4524 [ A6C29DB53ECA94FA8591C5388D604B82 ] C:\Windows\SysWOW64\msi.dll
14:27:22.0455 4524 C:\Windows\SysWOW64\msi.dll - ok
14:27:22.0455 4524 [ B22CB67919EBAD88B0E8BB9CDA446010 ] C:\Windows\System32\StikyNot.exe
14:27:22.0455 4524 C:\Windows\System32\StikyNot.exe - ok
14:27:22.0455 4524 [ AA794B099F776B37ACCDEAD00E0FBFC9 ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscoreei.dll
14:27:22.0455 4524 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscoreei.dll - ok
14:27:22.0465 4524 [ 371948BC5911ABA06168FAC91ED25F06 ] C:\Windows\System32\msxml3.dll
14:27:22.0465 4524 C:\Windows\System32\msxml3.dll - ok
14:27:22.0465 4524 [ 405F4D32D2185F1F1BD753D8EEAFFB3A ] C:\Windows\System32\networkexplorer.dll
14:27:22.0465 4524 C:\Windows\System32\networkexplorer.dll - ok
14:27:22.0465 4524 [ AFAFD74780A0BB4EBE76CDE10C9CCE43 ] C:\Program Files\Common Files\Microsoft Shared\ink\InkObj.dll
14:27:22.0465 4524 C:\Program Files\Common Files\Microsoft Shared\ink\InkObj.dll - ok
14:27:22.0475 4524 [ 102CF6879887BBE846A00C459E6D4ABC ] C:\Windows\SysWOW64\riched20.dll
14:27:22.0475 4524 C:\Windows\SysWOW64\riched20.dll - ok
14:27:22.0475 4524 [ C4D86DCFAB07EA80EAD9CE45850FB357 ] C:\Program Files (x86)\DAEMON Tools Pro\DTShl64.dll
14:27:22.0475 4524 C:\Program Files (x86)\DAEMON Tools Pro\DTShl64.dll - ok
14:27:22.0475 4524 [ E2A17BCC08D92F42E08AF6BA2F93ABA7 ] C:\Windows\SysWOW64\ExplorerFrame.dll
14:27:22.0475 4524 C:\Windows\SysWOW64\ExplorerFrame.dll - ok
14:27:22.0485 4524 [ BCE1D8C2BFB38D9F26EFC5464A033533 ] C:\Program Files (x86)\uTorrent\uTorrent.exe
14:27:22.0485 4524 C:\Program Files (x86)\uTorrent\uTorrent.exe - ok
14:27:22.0485 4524 [ F02A533F517EB38333CB12A9E8963773 ] C:\Users\GTech\AppData\Local\Google\Update\GoogleUpdate.exe
14:27:22.0485 4524 C:\Users\GTech\AppData\Local\Google\Update\GoogleUpdate.exe - ok
14:27:22.0485 4524 [ 3819AD4329303EAC88480CA16A650735 ] C:\Windows\System32\UIAnimation.dll
14:27:22.0485 4524 C:\Windows\System32\UIAnimation.dll - ok
14:27:22.0495 4524 [ E0B340996A41C9A75DFA3B99BBA9C500 ] C:\Windows\System32\SearchIndexer.exe
14:27:22.0495 4524 C:\Windows\System32\SearchIndexer.exe - ok
14:27:22.0495 4524 [ 2A6C01BAC0F8AA9143D61AE1E28E263A ] C:\Users\GTech\AppData\Roaming\Yontoo\YontooDesktop.exe
14:27:22.0495 4524 C:\Users\GTech\AppData\Roaming\Yontoo\YontooDesktop.exe - ok
14:27:22.0495 4524 [ 6E1F8165C365D35C8E3C045AF0CDD481 ] C:\Windows\SysWOW64\duser.dll
14:27:22.0495 4524 C:\Windows\SysWOW64\duser.dll - ok
14:27:22.0495 4524 [ EE06B85BC69F18826302348A2AD089E0 ] C:\Windows\SysWOW64\dui70.dll
14:27:22.0495 4524 C:\Windows\SysWOW64\dui70.dll - ok
14:27:22.0505 4524 [ 589DF683A6C81424A6CECE52ABF98A50 ] C:\Windows\System32\tquery.dll
14:27:22.0505 4524 C:\Windows\System32\tquery.dll - ok
14:27:22.0505 4524 [ 18AB2E5A40064ED5F7791AC5946A90F3 ] C:\Windows\SysWOW64\msimg32.dll
14:27:22.0505 4524 C:\Windows\SysWOW64\msimg32.dll - ok
14:27:22.0505 4524 [ F5143A7CA66EB913B5463BED3D3DD8D2 ] C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe
14:27:22.0505 4524 C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe - ok
14:27:22.0515 4524 [ 3F50200237961034FACE602373838980 ] C:\Windows\SysWOW64\FirewallAPI.dll
14:27:22.0515 4524 C:\Windows\SysWOW64\FirewallAPI.dll - ok
14:27:22.0515 4524 [ 8F1D745F4F9EF2C6F12E016E909BEAD3 ] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
14:27:22.0515 4524 C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe - ok
14:27:22.0515 4524 [ F7DD2D785280DB73DC9060F80361BEFB ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
14:27:22.0515 4524 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe - ok
14:27:22.0525 4524 [ 9110FFAD124283F37D38771BB60556AF ] C:\Windows\System32\dsound.dll
14:27:22.0525 4524 C:\Windows\System32\dsound.dll - ok
14:27:22.0525 4524 [ C3761661C17C2248A9379A8FB89E3DE1 ] C:\Windows\System32\stobject.dll
14:27:22.0525 4524 C:\Windows\System32\stobject.dll - ok
14:27:22.0525 4524 [ 2E5672EEA419A4DC9DACD714632E1DC3 ] C:\Users\GTech\AppData\Local\Google\Update\1.3.21.135\goopdate.dll
14:27:22.0525 4524 C:\Users\GTech\AppData\Local\Google\Update\1.3.21.135\goopdate.dll - ok
14:27:22.0535 4524 [ F832EEEA97CDDA1AF577E721F652A0D1 ] C:\Windows\System32\batmeter.dll
14:27:22.0535 4524 C:\Windows\System32\batmeter.dll - ok
14:27:22.0535 4524 [ 6E9E439517D89EDC9A6CB1E94489620A ] C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsec.dll
14:27:22.0535 4524 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsec.dll - ok
14:27:22.0535 4524 [ 127D94F298A34DD004EE08C59B808496 ] C:\Windows\SysWOW64\atiadlxy.dll
14:27:22.0535 4524 C:\Windows\SysWOW64\atiadlxy.dll - ok
14:27:22.0545 4524 [ ED12110CD5BFE686F645E145A7DD28C5 ] C:\Windows\SysWOW64\comsvcs.dll
14:27:22.0545 4524 C:\Windows\SysWOW64\comsvcs.dll - ok
14:27:22.0545 4524 [ 2FCA0D2C59A855C54BAFA22AA329DF0F ] C:\Windows\SysWOW64\netapi32.dll
14:27:22.0545 4524 C:\Windows\SysWOW64\netapi32.dll - ok
14:27:22.0545 4524 [ F4D0446BA874917354801F210E66F545 ] C:\Program Files (x86)\iTunes\iTunesHelper.exe
14:27:22.0545 4524 C:\Program Files (x86)\iTunes\iTunesHelper.exe - ok
14:27:22.0555 4524 [ E5A4A1326A02F8E7B59E6C3270CE7202 ] C:\Windows\SysWOW64\wkscli.dll
14:27:22.0555 4524 C:\Windows\SysWOW64\wkscli.dll - ok
14:27:22.0555 4524 [ 585FED4CDB8034B8B58AEB8008255817 ] C:\Windows\System32\opengl32.dll
14:27:22.0555 4524 C:\Windows\System32\opengl32.dll - ok
14:27:22.0555 4524 [ E75963624A3F55C90AC8A7C2E65072FF ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon_main.dll
14:27:22.0555 4524 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon_main.dll - ok
14:27:22.0565 4524 [ 53223B673A3FA2F9A4D1C31C8D3F6CD8 ] C:\Windows\SysWOW64\dbghelp.dll
14:27:22.0565 4524 C:\Windows\SysWOW64\dbghelp.dll - ok
14:27:22.0565 4524 [ 4EA7BB1AC8FEA8A1A794B12464B27488 ] C:\Program Files (x86)\iTunes\iTunesHelper.dll
14:27:22.0565 4524 C:\Program Files (x86)\iTunes\iTunesHelper.dll - ok
14:27:22.0565 4524 [ C861851A0BBD9903E324487011AA3705 ] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
14:27:22.0565 4524 C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe - ok
14:27:22.0565 4524 [ 27E79A455EF80647F4F57FA3C2B09C94 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\eead6629e384a5b69f9ae35284b7eeed\System.Drawing.ni.dll
14:27:22.0565 4524 C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\eead6629e384a5b69f9ae35284b7eeed\System.Drawing.ni.dll - ok
14:27:22.0575 4524 [ 221B9E05B7D5F22B27F5281E80C7118E ] C:\Program Files (x86)\iTunes\iTunesHelper.Resources\iTunesHelper.dll
14:27:22.0575 4524 C:\Program Files (x86)\iTunes\iTunesHelper.Resources\iTunesHelper.dll - ok
14:27:22.0575 4524 [ 378137A1872CF45448C1F665635929EF ] C:\Program Files (x86)\iTunes\iTunesHelper.Resources\en.lproj\iTunesHelperLocalized.dll
14:27:22.0575 4524 C:\Program Files (x86)\iTunes\iTunesHelper.Resources\en.lproj\iTunesHelperLocalized.dll - ok
14:27:22.0575 4524 [ F10E5311E5093FA3C00FF88C54C32FCA ] C:\Windows\SysWOW64\atl.dll
14:27:22.0575 4524 C:\Windows\SysWOW64\atl.dll - ok
14:27:22.0585 4524 [ A63DC5C2EA944E6657203E0C8EDEAF61 ] C:\Windows\SysWOW64\dllhost.exe
14:27:22.0585 4524 C:\Windows\SysWOW64\dllhost.exe - ok
14:27:22.0585 4524 [ 371BA71B566260932DCCCF843BF6C7E7 ] C:\Program Files (x86)\AVG\AVG2012\avgtray.exe
14:27:22.0585 4524 C:\Program Files (x86)\AVG\AVG2012\avgtray.exe - ok
14:27:22.0585 4524 [ 42A9CB6906D9A8BEDC83B57163E62924 ] C:\Windows\System32\DXP.dll
14:27:22.0585 4524 C:\Windows\System32\DXP.dll - ok
14:27:22.0595 4524 [ F2967C0A97C0EA67D79D7F557213950D ] C:\Windows\System32\glu32.dll
14:27:22.0595 4524 C:\Windows\System32\glu32.dll - ok
14:27:22.0595 4524 [ 2D2A6EC8EAD30EC3ACE2FD6FB1B3E122 ] C:\Windows\System32\prnfldr.dll
14:27:22.0595 4524 C:\Windows\System32\prnfldr.dll - ok
14:27:22.0595 4524 [ 2BC7C9FD0A9F2C9AFC373F3AD1EE3891 ] C:\Windows\System32\Syncreg.dll
14:27:22.0595 4524 C:\Windows\System32\Syncreg.dll - ok
14:27:22.0605 4524 [ F34EB5D4F145ED5FE50033CA3A41ED24 ] C:\Program Files (x86)\QuickTime\QTTask.exe
14:27:22.0605 4524 C:\Program Files (x86)\QuickTime\QTTask.exe - ok
14:27:22.0605 4524 [ A6C09924C6730DE8DEED9890A12AA691 ] C:\Windows\System32\ddraw.dll
14:27:22.0605 4524 C:\Windows\System32\ddraw.dll - ok
14:27:22.0605 4524 [ 6383C60EC0133B14F5705F96369421B2 ] C:\Windows\SysWOW64\hnetcfg.dll
14:27:22.0605 4524 C:\Windows\SysWOW64\hnetcfg.dll - ok
14:27:22.0605 4524 [ C836175870E00ACC546066632E15BD10 ] C:\Windows\ehome\ehSSO.dll
14:27:22.0605 4524 C:\Windows\ehome\ehSSO.dll - ok
14:27:22.0615 4524 [ 7568CC720ACE4D03B84AF97817E745EF ] C:\Windows\System32\mssrch.dll
14:27:22.0615 4524 C:\Windows\System32\mssrch.dll - ok
14:27:22.0615 4524 [ 15E298B5EC5B89C5994A59863969D9FF ] C:\Windows\SysWOW64\npmproxy.dll
14:27:22.0615 4524 C:\Windows\SysWOW64\npmproxy.dll - ok
14:27:22.0615 4524 [ BECDDA0990DEBD72A30096533521AD73 ] C:\Users\GTech\AppData\Local\Google\Update\1.3.21.135\GoogleCrashHandler.exe
14:27:22.0615 4524 C:\Users\GTech\AppData\Local\Google\Update\1.3.21.135\GoogleCrashHandler.exe - ok
14:27:22.0625 4524 [ 29C22748937F45C26590909E9F8E7137 ] C:\Windows\System32\dciman32.dll
14:27:22.0625 4524 C:\Windows\System32\dciman32.dll - ok
14:27:22.0625 4524 [ 02CD5B2C3B017122CAC00BDB520CD7AC ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorwks.dll
14:27:22.0625 4524 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorwks.dll - ok
14:27:22.0625 4524 [ 263E9A047D17CD50BAA9D3C02910D18D ] C:\Windows\System32\oledlg.dll
14:27:22.0625 4524 C:\Windows\System32\oledlg.dll - ok
14:27:22.0635 4524 [ B676429E44F2F8ACC3BAE7C89F46B212 ] C:\Users\GTech\AppData\Local\Google\Update\1.3.21.135\GoogleCrashHandler64.exe
14:27:22.0635 4524 C:\Users\GTech\AppData\Local\Google\Update\1.3.21.135\GoogleCrashHandler64.exe - ok
14:27:22.0635 4524 [ 0805289E121F3E3C458C970B08314EB2 ] C:\Windows\System32\RtkCfg64.dll
14:27:22.0635 4524 C:\Windows\System32\RtkCfg64.dll - ok
14:27:22.0635 4524 [ C7EB0013347B89145754D7576B9FC8C8 ] C:\Program Files (x86)\DAEMON Tools Pro\DTCommonRes.dll
14:27:22.0635 4524 C:\Program Files (x86)\DAEMON Tools Pro\DTCommonRes.dll - ok
14:27:22.0645 4524 [ C5A99A4C0DC9F0F5A95BA0C83D30A549 ] C:\Windows\SysWOW64\mstask.dll
14:27:22.0645 4524 C:\Windows\SysWOW64\mstask.dll - ok
14:27:22.0645 4524 [ E1636F57581CAB5D995FD54D2991EF57 ] C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe
14:27:22.0645 4524 C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe - ok
14:27:22.0645 4524 [ 8B1590C627138166C015A5680ABF6BB2 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\cb562e2e4f74ae607f1186f6ec50cec7\System.Windows.Forms.ni.dll
14:27:22.0645 4524 C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\cb562e2e4f74ae607f1186f6ec50cec7\System.Windows.Forms.ni.dll - ok
14:27:22.0655 4524 [ F577910A133A592234EBAAD3F3AFA258 ] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
14:27:22.0655 4524 C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe - ok
14:27:22.0655 4524 [ 2276747451B9E0436BA3E158AB2F627E ] C:\Windows\System32\RtkHDM64.dll
14:27:22.0655 4524 C:\Windows\System32\RtkHDM64.dll - ok
14:27:22.0655 4524 [ 114E5342884A174F0E261526F07B63A1 ] C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\libcurl.dll
14:27:22.0655 4524 C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\libcurl.dll - ok
14:27:22.0665 4524 [ 6307849B9BE3C206DB46A62316BF191F ] C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\libeay32.dll
14:27:22.0665 4524 C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\libeay32.dll - ok
14:27:22.0665 4524 [ 5BB89B62C340AEFD5967E57FC07DA5EF ] C:\Program Files (x86)\AVG Secure Search\vprot.exe
14:27:22.0665 4524 C:\Program Files (x86)\AVG Secure Search\vprot.exe - ok
14:27:22.0665 4524 [ 522B0466ED967A0762E9AF5B37D8F40A ] C:\Windows\System32\esent.dll
14:27:22.0665 4524 C:\Windows\System32\esent.dll - ok
14:27:22.0675 4524 [ A42F2C1EB3B66C54FB3C7B79D30C1A6D ] C:\Windows\System32\netshell.dll
14:27:22.0675 4524 C:\Windows\System32\netshell.dll - ok
14:27:22.0675 4524 [ 0133E5265FDD7063F87856C9BD5156C9 ] C:\Program Files (x86)\Microsoft LifeCam\LifeExp.exe
14:27:22.0675 4524 C:\Program Files (x86)\Microsoft LifeCam\LifeExp.exe - ok
14:27:22.0675 4524 [ 06A4250C9E3606CAE3F68DA45702F342 ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\iTunesMobileDevice.dll
14:27:22.0675 4524 C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\iTunesMobileDevice.dll - ok
14:27:22.0685 4524 [ AAA55B127EC38BDEBD2A3891A2E5FD54 ] C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\ssleay32.dll
14:27:22.0685 4524 C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\ssleay32.dll - ok
14:27:22.0685 4524 [ C8FDF0FA9E97E2FAAF3F814716AAA881 ] C:\Windows\System32\WPDShServiceObj.dll
14:27:22.0685 4524 C:\Windows\System32\WPDShServiceObj.dll - ok
14:27:22.0685 4524 [ 907B50DE97ED835EFE151F203818216D ] C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\zlib1.dll
14:27:22.0685 4524 C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\zlib1.dll - ok
14:27:22.0695 4524 [ 4F3CD1C59EA71401E155C432BCECE180 ] C:\Windows\System32\PortableDeviceTypes.dll
14:27:22.0695 4524 C:\Windows\System32\PortableDeviceTypes.dll - ok
14:27:22.0695 4524 [ CA6ADE4F7761BB15B3325356DC3B82BB ] C:\Windows\winsxs\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_4bf7e3e2bf9ada4c\mfc90u.dll
14:27:22.0695 4524 C:\Windows\winsxs\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_4bf7e3e2bf9ada4c\mfc90u.dll - ok
14:27:22.0695 4524 [ 3CB07566302BCEEB898DE270A0BEC175 ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
14:27:22.0695 4524 C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe - ok
14:27:22.0705 4524 [ 8569E35D00F45972E506502EEE622BA4 ] C:\Windows\System32\srchadmin.dll
14:27:22.0705 4524 C:\Windows\System32\srchadmin.dll - ok
14:27:22.0705 4524 [ 81E7E920312D372CF57A817049AC7C76 ] C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL
14:27:22.0705 4524 C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL - ok
14:27:22.0705 4524 [ D63797E8E7781EE1500A810CB6194FA6 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
14:27:22.0705 4524 C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe - ok
14:27:22.0715 4524 [ E7368F0A8D19445EAF5C5D0DBB8B8DAB ] C:\Windows\System32\AltTab.dll
14:27:22.0715 4524 C:\Windows\System32\AltTab.dll - ok
14:27:22.0715 4524 [ 3121A79D13A61562BE9CC902CD46B542 ] C:\Windows\System32\msidle.dll
14:27:22.0715 4524 C:\Windows\System32\msidle.dll - ok
14:27:22.0715 4524 [ ACE1BB07E0377E37A2C514CD2EC119B1 ] C:\Windows\System32\mssprxy.dll
14:27:22.0715 4524 C:\Windows\System32\mssprxy.dll - ok
14:27:22.0725 4524 [ 355A719E6B7531B1EC0BDBC5F68AEFDD ] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
14:27:22.0725 4524 C:\Program Files (x86)\PowerISO\PWRISOVM.EXE - ok
14:27:22.0725 4524 [ 4472C8825B5E41D8697D5962F47AB1C9 ] C:\Program Files\iPod\bin\iPodService.exe
14:27:22.0725 4524 C:\Program Files\iPod\bin\iPodService.exe - ok
14:27:22.0725 4524 [ C9FB9038B15036CA28CF0B4BE2BED9BD ] C:\Windows\System32\en-US\tquery.dll.mui
14:27:22.0725 4524 C:\Windows\System32\en-US\tquery.dll.mui - ok
14:27:22.0735 4524 [ FB820F642C16CD3342E97BEDC577EC47 ] C:\Program Files\iPod\bin\iPodService.Resources\iPodService.dll
14:27:22.0735 4524 C:\Program Files\iPod\bin\iPodService.Resources\iPodService.dll - ok
14:27:22.0735 4524 [ 358DD70B30166F0C2CF52F0C144BD8A2 ] C:\Program Files\iPod\bin\iPodService.Resources\en.lproj\iPodServiceLocalized.dll
14:27:22.0735 4524 C:\Program Files\iPod\bin\iPodService.Resources\en.lproj\iPodServiceLocalized.dll - ok
14:27:22.0735 4524 [ C335EC1182AC10B188705554E0BC1186 ] C:\Windows\SysWOW64\msvfw32.dll
14:27:22.0735 4524 C:\Windows\SysWOW64\msvfw32.dll - ok
14:27:22.0745 4524 [ B96F045D571747F8700CB43E8C458FF0 ] C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AcroRd32.exe
14:27:22.0745 4524 C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AcroRd32.exe - ok
14:27:22.0745 4524 [ 81ADBC4E31A721AEF23251A952049BA2 ] C:\Program Files (x86)\Adobe\Reader 10.0\Reader\reader_sl.exe
14:27:22.0745 4524 C:\Program Files (x86)\Adobe\Reader 10.0\Reader\reader_sl.exe - ok
14:27:22.0745 4524 [ FBFCA1A574D47EE575448B719CBBF2E4 ] C:\Windows\winsxs\x86_microsoft.vc90.mfcloc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_49768ef57548175e\MFC90ENU.DLL
14:27:22.0745 4524 C:\Windows\winsxs\x86_microsoft.vc90.mfcloc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_49768ef57548175e\MFC90ENU.DLL - ok
14:27:22.0745 4524 [ 10F815BE90A66AAFC6C713D1BD626064 ] C:\Windows\System32\pnidui.dll
14:27:22.0745 4524 C:\Windows\System32\pnidui.dll - ok
14:27:22.0755 4524 [ B9F0A4020AA98B7A20287BF7FE99A1FD ] C:\Windows\System32\QUTIL.DLL
14:27:22.0755 4524 C:\Windows\System32\QUTIL.DLL - ok
14:27:22.0755 4524 [ 06A754FE28A06F780A099703CFCAAA22 ] C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_88df89932faf0bf6\msvcr80.dll
14:27:22.0755 4524 C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_88df89932faf0bf6\msvcr80.dll - ok
14:27:22.0755 4524 [ C746F3BF98E92FB137B5BD2B8B5925BD ] C:\Windows\System32\FXSST.dll
14:27:22.0755 4524 C:\Windows\System32\FXSST.dll - ok
14:27:22.0765 4524 [ 7240EA3FA768ED1E6E52741AE47EA08A ] C:\Program Files (x86)\AVG\AVG2012\avgabout.dll
14:27:22.0765 4524 C:\Program Files (x86)\AVG\AVG2012\avgabout.dll - ok
14:27:22.0765 4524 [ 650CAEA856943E29F25A25D31E004B18 ] C:\Windows\System32\FXSAPI.dll
14:27:22.0765 4524 C:\Windows\System32\FXSAPI.dll - ok
14:27:22.0765 4524 [ 25D9F29E3A5C6B07166193701C40952C ] C:\Program Files (x86)\DAEMON Tools Pro\Engine.dll
14:27:22.0765 4524 C:\Program Files (x86)\DAEMON Tools Pro\Engine.dll - ok
14:27:22.0775 4524 [ 2C1BB3AD51826AA96C9802CBC123814F ] C:\Windows\assembly\NativeImages_v2.0.50727_64\mscorlib\51a23687fdafc32b697f5a719e364651\mscorlib.ni.dll
14:27:22.0775 4524 C:\Windows\assembly\NativeImages_v2.0.50727_64\mscorlib\51a23687fdafc32b697f5a719e364651\mscorlib.ni.dll - ok
14:27:22.0775 4524 [ 6F20729E802D5CC643A73A7F0339032B ] C:\Program Files (x86)\AVG\AVG2012\avguires.dll
14:27:22.0775 4524 C:\Program Files (x86)\AVG\AVG2012\avguires.dll - ok
14:27:22.0775 4524 [ BE210318FA6DA2A862BD41EA87E8CBE6 ] C:\Windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
14:27:22.0775 4524 C:\Windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll - ok
14:27:22.0785 4524 [ C8E8B8239FCF17BEA10E751BE5854631 ] C:\Windows\System32\FXSRESM.dll
14:27:22.0785 4524 C:\Windows\System32\FXSRESM.dll - ok
14:27:22.0785 4524 [ 6F5386A655598F71BAAB2D6B63A69D6A ] C:\Program Files (x86)\Mozilla Firefox\firefox.exe
14:27:22.0785 4524 C:\Program Files (x86)\Mozilla Firefox\firefox.exe - ok
14:27:22.0785 4524 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] C:\Windows\System32\FXSSVC.exe
14:27:22.0785 4524 C:\Windows\System32\FXSSVC.exe - ok
14:27:22.0795 4524 [ 21E110FF1C0E948860458BD7B692DE13 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\195a77fcc6206f8bb35d419ff2cf0d72\System.Configuration.ni.dll
14:27:22.0795 4524 C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\195a77fcc6206f8bb35d419ff2cf0d72\System.Configuration.ni.dll - ok
14:27:22.0795 4524 [ 32732CEDE2A1106B736EF3D84054EE04 ] C:\Program Files (x86)\Internet Explorer\iexplore.exe
14:27:22.0795 4524 C:\Program Files (x86)\Internet Explorer\iexplore.exe - ok
14:27:22.0795 4524 [ F7A256EC899C72B4ECDD2C02CB592EFD ] C:\Windows\System32\bthprops.cpl
14:27:22.0795 4524 C:\Windows\System32\bthprops.cpl - ok
14:27:22.0805 4524 [ 5046E55184021406C27E8D48A1B2C9D2 ] C:\Windows\System32\l3codeca.acm
14:27:22.0805 4524 C:\Windows\System32\l3codeca.acm - ok
14:27:22.0805 4524 [ 7CC7440BAF323AF4826EDD99CC9A3B4A ] C:\Program Files\Microsoft Office\Office14\MSOHEVI.DLL
14:27:22.0805 4524 C:\Program Files\Microsoft Office\Office14\MSOHEVI.DLL - ok
14:27:22.0805 4524 [ B2E9DB5E5F4091FCDA0C9249C1E3F974 ] C:\Program Files (x86)\AVG\AVG2012\avgidpmx.dll
14:27:22.0805 4524 C:\Program Files (x86)\AVG\AVG2012\avgidpmx.dll - ok
14:27:22.0815 4524 [ 871F7F32E3441580138E61A4AA072DF6 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\f687c43e9fdec031988b33ae722c4613\System.Xml.ni.dll
14:27:22.0815 4524 C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\f687c43e9fdec031988b33ae722c4613\System.Xml.ni.dll - ok
14:27:22.0815 4524 [ D6CD851869A9A3FBEB2254D3766A9ABA ] C:\Program Files (x86)\DAEMON Tools Pro\imgengine.dll
14:27:22.0815 4524 C:\Program Files (x86)\DAEMON Tools Pro\imgengine.dll - ok
14:27:22.0815 4524 [ 66C87DB880052104808507D6FA84D68E ] C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
14:27:22.0815 4524 C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL - ok
14:27:22.0825 4524 [ 1B1431D9520C7578AD5633ED2A70625F ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorjit.dll
14:27:22.0825 4524 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorjit.dll - ok
14:27:22.0825 4524 [ 458F4590F80563EB2A0A72709BFC2BD9 ] C:\Windows\System32\mspaint.exe
14:27:22.0825 4524 C:\Windows\System32\mspaint.exe - ok
14:27:22.0825 4524 [ 67EC459E42D3081DD8FD34356F7CAFC1 ] C:\Program Files (x86)\Mozilla Firefox\msvcr100.dll
14:27:22.0825 4524 C:\Program Files (x86)\Mozilla Firefox\msvcr100.dll - ok
14:27:22.0835 4524 [ E0FD85DADD7EF3E892ECBB0DC4D68E0A ] C:\Program Files (x86)\Mozilla Firefox\mozglue.dll
14:27:22.0835 4524 C:\Program Files (x86)\Mozilla Firefox\mozglue.dll - ok
14:27:22.0835 4524 [ 03E9314004F504A14A61C3D364B62F66 ] C:\Program Files (x86)\Mozilla Firefox\msvcp100.dll
14:27:22.0835 4524 C:\Program Files (x86)\Mozilla Firefox\msvcp100.dll - ok
14:27:22.0835 4524 [ 4F94DC9D7156DF622FB1AEFEC85B0F85 ] C:\Program Files (x86)\Mozilla Firefox\nspr4.dll
14:27:22.0835 4524 C:\Program Files (x86)\Mozilla Firefox\nspr4.dll - ok
14:27:22.0845 4524 [ 5957AA52E13272E041E009F9176CF702 ] C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
14:27:22.0845 4524 C:\Program Files (x86)\Mozilla Firefox\mozjs.dll - ok
14:27:22.0845 4524 [ AC1782CDBAF09F3AE2845BCAE25863C0 ] C:\Program Files (x86)\Mozilla Firefox\plc4.dll
14:27:22.0845 4524 C:\Program Files (x86)\Mozilla Firefox\plc4.dll - ok
14:27:22.0845 4524 [ 9FAB315A6F54DDAFF67C45C6B0E8180A ] C:\Program Files (x86)\Mozilla Firefox\plds4.dll
14:27:22.0845 4524 C:\Program Files (x86)\Mozilla Firefox\plds4.dll - ok
14:27:22.0855 4524 [ 37CF212AE1AE34852C08950868C99451 ] C:\Program Files (x86)\Mozilla Firefox\nss3.dll
14:27:22.0855 4524 C:\Program Files (x86)\Mozilla Firefox\nss3.dll - ok
14:27:22.0855 4524 [ E64EF4732DC96115AFD6902739FEDEA9 ] C:\Program Files (x86)\Mozilla Firefox\nssutil3.dll
14:27:22.0855 4524 C:\Program Files (x86)\Mozilla Firefox\nssutil3.dll - ok
14:27:22.0855 4524 [ 6B030923B2ED4341FA0FC2439EBA6937 ] C:\Program Files (x86)\Mozilla Firefox\smime3.dll
14:27:22.0855 4524 C:\Program Files (x86)\Mozilla Firefox\smime3.dll - ok
14:27:22.0855 4524 [ 71CD356DD1CB8D414906797912093AB7 ] C:\Program Files (x86)\Mozilla Firefox\ssl3.dll
14:27:22.0855 4524 C:\Program Files (x86)\Mozilla Firefox\ssl3.dll - ok
14:27:22.0865 4524 [ 30F13CC50B40AC23A25861BDB8FDEDE9 ] C:\Program Files (x86)\Mozilla Firefox\mozalloc.dll
14:27:22.0865 4524 C:\Program Files (x86)\Mozilla Firefox\mozalloc.dll - ok
14:27:22.0865 4524 [ EB03052F8D4343CFA74BDAA0FC9781B1 ] C:\Program Files (x86)\Mozilla Firefox\mozsqlite3.dll
14:27:22.0865 4524 C:\Program Files (x86)\Mozilla Firefox\mozsqlite3.dll - ok
14:27:22.0865 4524 [ 03C0475B64A49A531A1FCA445EFAF714 ] C:\Program Files (x86)\Mozilla Firefox\gkmedias.dll
14:27:22.0865 4524 C:\Program Files (x86)\Mozilla Firefox\gkmedias.dll - ok
14:27:22.0875 4524 [ 4F6E72B34ED3DC53DCC5E8708E60B61F ] C:\Windows\SysWOW64\security.dll
14:27:22.0875 4524 C:\Windows\SysWOW64\security.dll - ok
14:27:22.0875 4524 [ ED24A2D1D94A90E188FFCA4A21453E39 ] C:\Program Files (x86)\Mozilla Firefox\xul.dll
14:27:22.0875 4524 C:\Program Files (x86)\Mozilla Firefox\xul.dll - ok
14:27:22.0875 4524 [ 7069AAB8536F29ED7323140973A2894B ] C:\Windows\SysWOW64\msdmo.dll
14:27:22.0875 4524 C:\Windows\SysWOW64\msdmo.dll - ok
14:27:22.0885 4524 [ 0D1A879E307914CA59724450690DABBA ] C:\Program Files (x86)\Mozilla Firefox\xpcom.dll
14:27:22.0885 4524 C:\Program Files (x86)\Mozilla Firefox\xpcom.dll - ok
14:27:22.0885 4524 [ 3D3CBD1847F980FB03343A63671E7886 ] C:\Windows\SysWOW64\schannel.dll
14:27:22.0885 4524 C:\Windows\SysWOW64\schannel.dll - ok
14:27:22.0885 4524 [ F11A57E91FDAECFB41A5CB21EB1EBC8E ] C:\Windows\System32\dssenh.dll
14:27:22.0885 4524 C:\Windows\System32\dssenh.dll - ok
14:27:22.0895 4524 [ A29D734F650F958424743BE3BAA052C8 ] C:\Windows\SysWOW64\DWrite.dll
14:27:22.0895 4524 C:\Windows\SysWOW64\DWrite.dll - ok
14:27:22.0895 4524 [ 9682D5B9D9309377C1A7E08C3E6B7B3D ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System\6be6efa1e2ffc9d46e99839edac5c5a8\System.ni.dll
14:27:22.0895 4524 C:\Windows\assembly\NativeImages_v2.0.50727_64\System\6be6efa1e2ffc9d46e99839edac5c5a8\System.ni.dll - ok
14:27:22.0895 4524 [ 652B60C9C4D5391FF0970B9086702E8F ] C:\Windows\System32\ieframe.dll
14:27:22.0895 4524 C:\Windows\System32\ieframe.dll - ok
14:27:22.0905 4524 [ 51FA7CB7C76E56D478768F64A1AEF24B ] C:\Program Files (x86)\Mozilla Firefox\components\browsercomps.dll
14:27:22.0905 4524 C:\Program Files (x86)\Mozilla Firefox\components\browsercomps.dll - ok
14:27:22.0905 4524 [ 220159496484D34009DE71CA1A68E0D4 ] C:\Windows\System32\wbem\NCProv.dll
14:27:22.0905 4524 C:\Windows\System32\wbem\NCProv.dll - ok
14:27:22.0905 4524 [ 81F08948A0F1475894C99D4D19A158A8 ] C:\Windows\SysWOW64\wshqos.dll
14:27:22.0905 4524 C:\Windows\SysWOW64\wshqos.dll - ok
14:27:22.0915 4524 [ 20F53F9DA0336C73616D124E48CC3387 ] C:\Windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
14:27:22.0915 4524 C:\Windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll - ok
14:27:22.0915 4524 [ 5C4CB4086FB83115B153E47ADD961A0C ] C:\Windows\System32\FntCache.dll
14:27:22.0915 4524 C:\Windows\System32\FntCache.dll - ok
14:27:22.0915 4524 [ 243974EC02F7AE49E4179C54624143AB ] C:\Windows\SysWOW64\MMDevAPI.dll
14:27:22.0915 4524 C:\Windows\SysWOW64\MMDevAPI.dll - ok
14:27:22.0925 4524 [ C940F2F5C60B3727C5F18840735B229C ] C:\Windows\SysWOW64\AudioSes.dll
14:27:22.0925 4524 C:\Windows\SysWOW64\AudioSes.dll - ok
14:27:22.0925 4524 [ 2DE90400A63818FA38C4C5C9ADB166BF ] C:\Windows\SysWOW64\d3d10_1.dll
14:27:22.0925 4524 C:\Windows\SysWOW64\d3d10_1.dll - ok
14:27:22.0925 4524 [ 9C36A3CA80F9B204C670336D344F5DF8 ] C:\Windows\SysWOW64\d3d10_1core.dll
14:27:22.0925 4524 C:\Windows\SysWOW64\d3d10_1core.dll - ok
14:27:22.0925 4524 [ 0411B7958C524BB2E91EE1B3035FE321 ] C:\Windows\SysWOW64\dxgi.dll
14:27:22.0925 4524 C:\Windows\SysWOW64\dxgi.dll - ok
14:27:22.0935 4524 [ 5A7A33F7F9DFC0C0A8B8E000F4D9D898 ] C:\Windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
14:27:22.0935 4524 C:\Windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll - ok
14:27:22.0935 4524 [ A2631C4465BBCE72B7E371DFB924A9D3 ] C:\Windows\SysWOW64\feclient.dll
14:27:22.0935 4524 C:\Windows\SysWOW64\feclient.dll - ok
14:27:22.0935 4524 [ 612A05F057928A73276029A6C2DDC414 ] C:\Program Files (x86)\AVG Secure Search\14.2.0.1\AVG Secure Search_toolbar.dll
14:27:22.0935 4524 C:\Program Files (x86)\AVG Secure Search\14.2.0.1\AVG Secure Search_toolbar.dll - ok
14:27:22.0945 4524 [ ECCE4054FDED3A965C92B015B26A6EEE ] C:\Windows\SysWOW64\aticfx32.dll
14:27:22.0945 4524 C:\Windows\SysWOW64\aticfx32.dll - ok
14:27:22.0945 4524 [ 7DA8A53B56F02E1748D0F2F77AA6B942 ] C:\Windows\SysWOW64\atiuxpag.dll
14:27:22.0945 4524 C:\Windows\SysWOW64\atiuxpag.dll - ok
14:27:22.0945 4524 [ E19AD0D49BFF5938B3E374873AC174DE ] C:\Windows\System32\wmploc.DLL
14:27:22.0945 4524 C:\Windows\System32\wmploc.DLL - ok
14:27:22.0955 4524 [ 28638660E651578C354BF43CD646EF6D ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Drawing\672fc9526d8954656bcb46e42082e09c\System.Drawing.ni.dll
14:27:22.0955 4524 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Drawing\672fc9526d8954656bcb46e42082e09c\System.Drawing.ni.dll - ok
14:27:22.0955 4524 [ 4C09DF1BE7C9A307875D5F003CA0E325 ] C:\Windows\SysWOW64\atidxx32.dll
14:27:22.0955 4524 C:\Windows\SysWOW64\atidxx32.dll - ok
14:27:22.0955 4524 [ 5B3FA17E1CD6FBBDF41AC34DAEECC256 ] C:\Windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
14:27:22.0955 4524 C:\Windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll - ok
14:27:22.0965 4524 [ A0617B5753E31126AD29C03154F4F329 ] C:\Windows\Microsoft.NET\Framework\v2.0.50727\Culture.dll
14:27:22.0965 4524 C:\Windows\Microsoft.NET\Framework\v2.0.50727\Culture.dll - ok
14:27:22.0965 4524 [ A8AEE27D6FE22EA0FCBBD836149F76BD ] C:\Users\GTech\AppData\Roaming\Yontoo\dat\Desktop.OS.Plugin.dll
14:27:22.0965 4524 C:\Users\GTech\AppData\Roaming\Yontoo\dat\Desktop.OS.Plugin.dll - ok
14:27:22.0965 4524 [ 35CEDE6439FF0D8903223A0817FFE46C ] C:\Windows\SysWOW64\d2d1.dll
14:27:22.0965 4524 C:\Windows\SysWOW64\d2d1.dll - ok
14:27:22.0975 4524 [ 2572E1F0254E2267E97DE1B15D099EC4 ] C:\Windows\SysWOW64\d3d10.dll
14:27:22.0975 4524 C:\Windows\SysWOW64\d3d10.dll - ok
14:27:22.0975 4524 [ 547F78746F20901C770E8653B242217C ] C:\Windows\SysWOW64\d3d10core.dll
14:27:22.0975 4524 C:\Windows\SysWOW64\d3d10core.dll - ok
14:27:22.0975 4524 [ 8130391F82D52D36C0441F714136957F ] C:\Windows\System32\imapi2.dll
14:27:22.0975 4524 C:\Windows\System32\imapi2.dll - ok
14:27:22.0985 4524 [ D7CEAEDD5F75D2C8A2E80887D7C114CE ] C:\Windows\System32\webcheck.dll
14:27:22.0985 4524 C:\Windows\System32\webcheck.dll - ok
14:27:22.0985 4524 [ 0B7E85364CB878E2AD531DB7B601A9E5 ] C:\Windows\SysWOW64\NapiNSP.dll
14:27:22.0985 4524 C:\Windows\SysWOW64\NapiNSP.dll - ok
14:27:22.0985 4524 [ 5CF640EDDB1E40A5AB1BB743BCDEC610 ] C:\Windows\SysWOW64\pnrpnsp.dll
14:27:22.0985 4524 C:\Windows\SysWOW64\pnrpnsp.dll - ok
14:27:22.0985 4524 [ 5DF5D8CFD9B9573FA3B2C89D9061A240 ] C:\Windows\SysWOW64\winrnr.dll
14:27:22.0985 4524 C:\Windows\SysWOW64\winrnr.dll - ok
14:27:22.0995 4524 [ 8494E126F0B10180F3293AF861CE1F7A ] C:\Windows\System32\mlang.dll
14:27:22.0995 4524 C:\Windows\System32\mlang.dll - ok
14:27:22.0995 4524 [ 7F8678C59F188528D60104E697C2361E ] C:\Windows\SysWOW64\mscms.dll
14:27:22.0995 4524 C:\Windows\SysWOW64\mscms.dll - ok
14:27:22.0995 4524 [ 60D0E0CE4FB3395543A9C9923AC6B33F ] C:\Windows\Installer\{90140000-001B-0000-1000-0000000FF1CE}\wordicon.exe
14:27:22.0995 4524 C:\Windows\Installer\{90140000-001B-0000-1000-0000000FF1CE}\wordicon.exe - ok
14:27:23.0005 4524 [ 0028FFB55B16A31CA25F87007A87CCEF ] C:\Program Files (x86)\Mozilla Firefox\softokn3.dll
14:27:23.0005 4524 C:\Program Files (x86)\Mozilla Firefox\softokn3.dll - ok
14:27:23.0005 4524 [ E714F5AB9D7C81E56AE3D99B61267D9A ] C:\Program Files (x86)\Mozilla Firefox\nssdbm3.dll
14:27:23.0005 4524 C:\Program Files (x86)\Mozilla Firefox\nssdbm3.dll - ok
14:27:23.0005 4524 [ 81C39B4B7FC14493958860AC06057AD9 ] C:\Program Files (x86)\Mozilla Firefox\freebl3.dll
14:27:23.0005 4524 C:\Program Files (x86)\Mozilla Firefox\freebl3.dll - ok
14:27:23.0015 4524 [ DDE3A1D8D9A0AE1999CAD3EC6F0ED1F3 ] C:\Program Files (x86)\Mozilla Firefox\nssckbi.dll
14:27:23.0015 4524 C:\Program Files (x86)\Mozilla Firefox\nssckbi.dll - ok
14:27:23.0015 4524 [ 101797BA603D227946B4B5109867EB19 ] C:\Windows\System32\SyncCenter.dll
14:27:23.0015 4524 C:\Windows\System32\SyncCenter.dll - ok
14:27:23.0015 4524 [ 847D3AE376C0817161A14A82C8922A9E ] C:\Windows\System32\netman.dll
14:27:23.0015 4524 C:\Windows\System32\netman.dll - ok
14:27:23.0025 4524 [ 6A5C1A8AC0B572679361026D0E900420 ] C:\Windows\System32\hgcpl.dll
14:27:23.0025 4524 C:\Windows\System32\hgcpl.dll - ok
14:27:23.0025 4524 [ 908ACB1F594274965A53926B10C81E89 ] C:\Windows\System32\provsvc.dll
14:27:23.0025 4524 C:\Windows\System32\provsvc.dll - ok
14:27:23.0025 4524 [ B837D1528CE2E3CB79F09496BC08DDC6 ] C:\Windows\System32\SensApi.dll
14:27:23.0025 4524 C:\Windows\System32\SensApi.dll - ok
14:27:23.0035 4524 [ 421839190D58EF5A37A3E770C91E8F20 ] C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\14.2.0\SiteSafety.dll
14:27:23.0035 4524 C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\14.2.0\SiteSafety.dll - ok
14:27:23.0035 4524 [ 0438CAB2E03F4FB61455A7956026FE86 ] C:\Windows\System32\fdPHost.dll
14:27:23.0035 4524 C:\Windows\System32\fdPHost.dll - ok
14:27:23.0035 4524 [ 802496CB59A30349F9A6DD22D6947644 ] C:\Windows\System32\FDResPub.dll
14:27:23.0035 4524 C:\Windows\System32\FDResPub.dll - ok
14:27:23.0035 4524 [ 171D7DB433314A868507C4326E8209DC ] C:\Windows\System32\fdWSD.dll
14:27:23.0035 4524 C:\Windows\System32\fdWSD.dll - ok
14:27:23.0045 4524 [ A2E5B2D20954210DCE1A75A1FC8CC36D ] C:\Windows\System32\fdSSDP.dll
14:27:23.0045 4524 C:\Windows\System32\fdSSDP.dll - ok
14:27:23.0045 4524 [ D2155709E336C3BC15729EB87FEC6064 ] C:\Windows\System32\rasdlg.dll
14:27:23.0045 4524 C:\Windows\System32\rasdlg.dll - ok
14:27:23.0045 4524 [ 59C5A91F4A27B81CB0AE7BF5D0543FBA ] C:\Program Files (x86)\Common Files\AVG Secure Search\DNTInstaller\14.2.0\avgdttbx.dll
14:27:23.0045 4524 C:\Program Files (x86)\Common Files\AVG Secure Search\DNTInstaller\14.2.0\avgdttbx.dll - ok
14:27:23.0055 4524 [ 2DF29664ED261F0FC448E58F338F0671 ] C:\Windows\System32\mprapi.dll
14:27:23.0055 4524 C:\Windows\System32\mprapi.dll - ok
14:27:23.0055 4524 [ F9AFD12BB4B1CFA5FCC0A5B37C604FD2 ] C:\Windows\System32\dot3api.dll
14:27:23.0055 4524 C:\Windows\System32\dot3api.dll - ok
14:27:23.0055 4524 [ E4FCA0F99A41E460C84016DEFD31E6EF ] C:\Windows\System32\wlanhlp.dll
14:27:23.0055 4524 C:\Windows\System32\wlanhlp.dll - ok
14:27:23.0065 4524 [ 8965A4CAA8E006F5F32D084CABD3679E ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Remo#\ad25afb3a0820b92f311d6897df82e5f\System.Runtime.Remoting.ni.dll
14:27:23.0065 4524 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Remo#\ad25afb3a0820b92f311d6897df82e5f\System.Runtime.Remoting.ni.dll - ok
14:27:23.0065 4524 [ B496B116F621223357DEFE4508B0987E ] C:\Program Files (x86)\AVG\AVG2012\avgsrmx.dll
14:27:23.0065 4524 C:\Program Files (x86)\AVG\AVG2012\avgsrmx.dll - ok
14:27:23.0065 4524 [ 3B367397320C26DBA890B260F80D1B1B ] C:\Windows\System32\hnetcfg.dll
14:27:23.0065 4524 C:\Windows\System32\hnetcfg.dll - ok
14:27:23.0075 4524 [ CDAD3376DFF3D9AC7FDCBE2B94B0D3C8 ] C:\Windows\System32\shfolder.dll
14:27:23.0075 4524 C:\Windows\System32\shfolder.dll - ok
14:27:23.0075 4524 [ 6699A112A3BDC9B52338512894EBA9D6 ] C:\Program Files\Windows Media Player\wmpnscfg.exe
14:27:23.0075 4524 C:\Program Files\Windows Media Player\wmpnscfg.exe - ok
14:27:23.0075 4524 [ 7204405E420A653C536606FFFF68808B ] C:\Program Files (x86)\AVG\AVG2012\avgvvx.dll
14:27:23.0075 4524 C:\Program Files (x86)\AVG\AVG2012\avgvvx.dll - ok
14:27:23.0075 4524 [ 5DA219F57A9076FB6FBD3C9C3713A672 ] C:\Windows\System32\WWanAPI.dll
14:27:23.0075 4524 C:\Windows\System32\WWanAPI.dll - ok
14:27:23.0085 4524 [ D28C5A1411BB0B47E05E0D6AAF896690 ] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
14:27:23.0085 4524 C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe - ok
14:27:23.0085 4524 [ 63960EF68D878D006D24603C5D4F176A ] C:\Program Files (x86)\AVG\AVG2012\avgscanx.dll
14:27:23.0085 4524 C:\Program Files (x86)\AVG\AVG2012\avgscanx.dll - ok
14:27:23.0085 4524 [ 62C7AACC746C9723468A8F2169ED3E85 ] C:\Windows\System32\wwapi.dll
14:27:23.0085 4524 C:\Windows\System32\wwapi.dll - ok
14:27:23.0095 4524 [ C7494C67A6BF6FE914808E42F8265FEF ] C:\Program Files\Windows Media Player\wmpnssci.dll
14:27:23.0095 4524 C:\Program Files\Windows Media Player\wmpnssci.dll - ok
14:27:23.0095 4524 [ 6B851E682A36453E1B1EE297FFB6E2AB ] C:\Windows\System32\QAGENT.DLL
14:27:23.0095 4524 C:\Windows\System32\QAGENT.DLL - ok
14:27:23.0095 4524 [ 56ADE3A81878DC51443465DC00391124 ] C:\Program Files (x86)\AVG\AVG2012\avgmvflx.dll
14:27:23.0095 4524 C:\Program Files (x86)\AVG\AVG2012\avgmvflx.dll - ok
14:27:23.0105 4524 [ D205C24A9D069049FE2DF2A1B38726A7 ] C:\Windows\SysWOW64\wdmaud.drv
14:27:23.0105 4524 C:\Windows\SysWOW64\wdmaud.drv - ok
14:27:23.0105 4524 [ 9C67F6BBDA3881CFD02095160CF91576 ] C:\Windows\SysWOW64\ksuser.dll
14:27:23.0105 4524 C:\Windows\SysWOW64\ksuser.dll - ok
14:27:23.0105 4524 [ 139D3AB6AA920C34C50CBFFB9EB7D222 ] C:\Windows\SysWOW64\avrt.dll
14:27:23.0105 4524 C:\Windows\SysWOW64\avrt.dll - ok
14:27:23.0105 4524 [ 07393A09C46083588E751B63B03C8301 ] C:\Windows\SysWOW64\msacm32.drv
14:27:23.0105 4524 C:\Windows\SysWOW64\msacm32.drv - ok
14:27:23.0115 4524 [ A9F3BFC9345F49614D5859EC95B9E994 ] C:\Program Files\Windows Media Player\wmpnetwk.exe
14:27:23.0115 4524 C:\Program Files\Windows Media Player\wmpnetwk.exe - ok
14:27:23.0115 4524 [ 5A12C364AD1D4FCC0AD0E56DBBC34462 ] C:\Windows\SysWOW64\midimap.dll
14:27:23.0115 4524 C:\Windows\SysWOW64\midimap.dll - ok
14:27:23.0115 4524 [ 423982DD851406A52B6399DDB196C606 ] C:\Windows\System32\wmdrmdev.dll
14:27:23.0115 4524 C:\Windows\System32\wmdrmdev.dll - ok
14:27:23.0125 4524 [ 2C1055E2C6D42753241FB2A129136994 ] C:\Windows\System32\drmv2clt.dll
14:27:23.0125 4524 C:\Windows\System32\drmv2clt.dll - ok
14:27:23.0125 4524 [ B78E390C802B8F0D2BAF4F8B181318A0 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Windows.Forms\e644aa1f8f3898d38876168757db0d9b\System.Windows.Forms.ni.dll
14:27:23.0125 4524 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Windows.Forms\e644aa1f8f3898d38876168757db0d9b\System.Windows.Forms.ni.dll - ok
14:27:23.0125 4524 [ 1EB82516F21F27EED1833B4F9FD9614E ] C:\Windows\System32\wmp.dll
14:27:23.0125 4524 C:\Windows\System32\wmp.dll - ok
14:27:23.0135 4524 [ 4987F39779F95174F94D95116F2F30A4 ] C:\Windows\Installer\{6CFB1B20-ECAE-488F-9FFB-6AD420882E71}\iTunesIco.exe
14:27:23.0135 4524 C:\Windows\Installer\{6CFB1B20-ECAE-488F-9FFB-6AD420882E71}\iTunesIco.exe - ok
14:27:23.0135 4524 [ 050E000D89D4FB750B124380020674E9 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web\09a751d0d4d6e7af82c1d2844eefd34a\System.Web.ni.dll
14:27:23.0135 4524 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web\09a751d0d4d6e7af82c1d2844eefd34a\System.Web.ni.dll - ok
14:27:23.0135 4524 [ 10E4A1D2132CCB5C6759F038CDB6F3C9 ] C:\Windows\System32\calc.exe
14:27:23.0135 4524 C:\Windows\System32\calc.exe - ok
14:27:23.0145 4524 [ D291620D4C51C5F5FFA62CCDC52C5C13 ] C:\Windows\System32\msinfo32.exe
14:27:23.0145 4524 C:\Windows\System32\msinfo32.exe - ok
14:27:23.0145 4524 [ F2E221E4FC90D2843A770A101AEEB7B1 ] C:\Program Files\Adobe\Adobe After Effects CS5.5\Support Files\AfterFX.exe
14:27:23.0145 4524 C:\Program Files\Adobe\Adobe After Effects CS5.5\Support Files\AfterFX.exe - ok
14:27:23.0145 4524 [ 5CCD5B62076D4432D4728BB6CB3DEBFD ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Xml\7a560781987776298120763de1df8f77\System.Xml.ni.dll
14:27:23.0145 4524 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Xml\7a560781987776298120763de1df8f77\System.Xml.ni.dll - ok
14:27:23.0155 4524 [ 4E69B7471BDFA10D63BD5012B00A208D ] C:\Program Files (x86)\QuickTime\QuickTimePlayer.exe
14:27:23.0155 4524 C:\Program Files (x86)\QuickTime\QuickTimePlayer.exe - ok
14:27:23.0155 4524 [ 8323B32A6FC3FCD7E5C8BA94B36CE162 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Configuration\3762e80651ff8d0bbcdb0ccebfb3b3f7\System.Configuration.ni.dll
14:27:23.0155 4524 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Configuration\3762e80651ff8d0bbcdb0ccebfb3b3f7\System.Configuration.ni.dll - ok
14:27:23.0155 4524 [ C7893D2115C3646FAB7E096F62D120C2 ] C:\Windows\System32\atipdl64.dll
14:27:23.0155 4524 C:\Windows\System32\atipdl64.dll - ok
14:27:23.0165 4524 [ 89344657836F91640F3DDB235D0E7F73 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\WindowsBase\5f684be17ae6b826f6f9eaa170b41b05\WindowsBase.ni.dll
14:27:23.0165 4524 C:\Windows\assembly\NativeImages_v2.0.50727_64\WindowsBase\5f684be17ae6b826f6f9eaa170b41b05\WindowsBase.ni.dll - ok
14:27:23.0165 4524 [ A80C173AC5C75706BB74AE4D78F2A53D ] C:\Program Files (x86)\Windows Media Player\wmplayer.exe
14:27:23.0165 4524 C:\Program Files (x86)\Windows Media Player\wmplayer.exe - ok
14:27:23.0165 4524 [ 6D137963730144698CBD10F202E9F251 ] C:\Windows\System32\wersvc.dll
14:27:23.0165 4524 C:\Windows\System32\wersvc.dll - ok
14:27:23.0165 4524 [ 1447E490F8589AC2F8F4BE8EF768A727 ] C:\Program Files\Common Files\ATI Technologies\Multimedia\atixcode64.dll
14:27:23.0165 4524 C:\Program Files\Common Files\ATI Technologies\Multimedia\atixcode64.dll - ok
14:27:23.0175 4524 [ 7AE92C896AF9ABFBDB18C1D055B6EBA7 ] C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_88df89932faf0bf6\msvcp80.dll
14:27:23.0175 4524 C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_88df89932faf0bf6\msvcp80.dll - ok
14:27:23.0175 4524 [ 70BB5AE4899EE90C8CC4C48808C9E48E ] C:\Program Files\Common Files\ATI Technologies\Multimedia\atimpenc64.dll
14:27:23.0175 4524 C:\Program Files\Common Files\ATI Technologies\Multimedia\atimpenc64.dll - ok
14:27:23.0185 4524 [ 4C3DAEE652B005B483F16B8E9131C99D ] C:\Windows\System32\d3d9.dll
14:27:23.0185 4524 C:\Windows\System32\d3d9.dll - ok
14:27:23.0185 4524 [ 3044D07ABDF4BBEA27E2EE7B1E0C0C65 ] C:\Windows\System32\d3d8thk.dll
14:27:23.0185 4524 C:\Windows\System32\d3d8thk.dll - ok
14:27:23.0185 4524 [ D64D99EC088B54FFE8EE67A480386C20 ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Culture.dll
14:27:23.0185 4524 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Culture.dll - ok
14:27:23.0185 4524 [ EE7A0533E041119DDE137BFE1E415E9F ] C:\ProgramData\Microsoft\Windows\DRM\Cache\Indiv_SID_S-1-5-20\Indiv01_64.key
14:27:23.0185 4524 C:\ProgramData\Microsoft\Windows\DRM\Cache\Indiv_SID_S-1-5-20\Indiv01_64.key - ok
14:27:23.0195 4524 [ 96DB78C9C50CEED9DA5050EFFEE272A2 ] C:\Windows\System32\upnp.dll
14:27:23.0195 4524 C:\Windows\System32\upnp.dll - ok
14:27:23.0195 4524 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] C:\Windows\System32\ssdpsrv.dll
14:27:23.0195 4524 C:\Windows\System32\ssdpsrv.dll - ok
14:27:23.0195 4524 [ 712D9EB4CD8D64AC78FBB3C9AE6A6DAC ] C:\Program Files\Internet Explorer\ieproxy.dll
14:27:23.0195 4524 C:\Program Files\Internet Explorer\ieproxy.dll - ok
14:27:23.0205 4524 [ 355A138ABDFD43FBABCAE3A1B06AB93D ] C:\Windows\System32\wmpps.dll
14:27:23.0205 4524 C:\Windows\System32\wmpps.dll - ok
14:27:23.0205 4524 [ 7BB710183AAD6C420A8FAF7C4ABC6384 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationCore\68f908f70841f6159b1124f89029ef77\PresentationCore.ni.dll
14:27:23.0205 4524 C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationCore\68f908f70841f6159b1124f89029ef77\PresentationCore.ni.dll - ok
14:27:23.0205 4524 [ 1D5A06280E3E6C07950FAAA4D153269B ] C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\f30de4ac82d4a89c959a7f525ba05aed\PresentationFramework.ni.dll
14:27:23.0205 4524 C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\f30de4ac82d4a89c959a7f525ba05aed\PresentationFramework.ni.dll - ok
14:27:23.0215 4524 [ C264145F107437CBD3B30303733AEE4F ] C:\Windows\assembly\GAC_64\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll
14:27:23.0215 4524 C:\Windows\assembly\GAC_64\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll - ok
14:27:23.0215 4524 [ C8541AECCCA9260DE93C85F214110FA8 ] C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\wpfgfx_v0300.dll
14:27:23.0215 4524 C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\wpfgfx_v0300.dll - ok
14:27:23.0215 4524 [ C5A75EB48E2344ABDC162BDA79E16841 ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
14:27:23.0215 4524 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe - ok
14:27:23.0225 4524 [ E5F7C30EDF0892667933BE879F067D67 ] C:\Windows\SysWOW64\msvcr100_clr0400.dll
14:27:23.0225 4524 C:\Windows\SysWOW64\msvcr100_clr0400.dll - ok
14:27:23.0225 4524 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
14:27:23.0225 4524 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe - ok
14:27:23.0225 4524 [ 927D0557B4C40376C18CA43E750ABF2A ] C:\Windows\System32\atiu9p64.dll
14:27:23.0225 4524 C:\Windows\System32\atiu9p64.dll - ok
14:27:23.0235 4524 [ E57244954669C0AA210D46E235D3796B ] C:\Windows\System32\atiumd64.dll
14:27:23.0235 4524 C:\Windows\System32\atiumd64.dll - ok
14:27:23.0235 4524 [ CB21CD39637AC13F3455454B2F648257 ] C:\Windows\System32\msvcr100_clr0400.dll
14:27:23.0235 4524 C:\Windows\System32\msvcr100_clr0400.dll - ok
14:27:23.0235 4524 [ D23BE7F1A65054090D95E66A704FFE30 ] C:\Windows\System32\atiumd6a.dll
14:27:23.0235 4524 C:\Windows\System32\atiumd6a.dll - ok
14:27:23.0245 4524 [ D4F91CF4DE215D6F14A06087D46725E4 ] C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL
14:27:23.0245 4524 C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL - ok
14:27:23.0245 4524 [ E5840A20CAB43276A2F58CA6F541D5DF ] C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\a50f3d1b7985318568ecec58ba24e409\PresentationFramework.Aero.ni.dll
14:27:23.0245 4524 C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\a50f3d1b7985318568ecec58ba24e409\PresentationFramework.Aero.ni.dll - ok
14:27:23.0245 4524 [ C68A9ED2B7269F91A75BCE10894186EB ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Core\7e75cd0b412dd2ac432f0ffbfaa7e55e\System.Core.ni.dll
14:27:23.0245 4524 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Core\7e75cd0b412dd2ac432f0ffbfaa7e55e\System.Core.ni.dll - ok
14:27:23.0245 4524 [ 68E1D09FC5F2214F712FBB0340998A34 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\WindowsFormsIntegra#\d965d516c924bc92b801f2b316444ffd\WindowsFormsIntegration.ni.dll
14:27:23.0245 4524 C:\Windows\assembly\NativeImages_v2.0.50727_64\WindowsFormsIntegra#\d965d516c924bc92b801f2b316444ffd\WindowsFormsIntegration.ni.dll - ok
14:27:23.0255 4524 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
14:27:23.0255 4524 C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe - ok
14:27:23.0255 4524 [ D36AE1B392FAA88FBEF39DE1142DF051 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.ServiceProce#\f5ec8051a7f0dc49a56aa2563039702e\System.ServiceProcess.ni.dll
14:27:23.0255 4524 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.ServiceProce#\f5ec8051a7f0dc49a56aa2563039702e\System.ServiceProcess.ni.dll - ok
14:27:23.0255 4524 [ 0017163E0D5985168792BEE5CF70D5DF ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\diasymreader.dll
14:27:23.0255 4524 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\diasymreader.dll - ok
14:27:23.0265 4524 [ 934BB0D23A25C8C136570800A5A149B6 ] C:\Program Files (x86)\Nero\Update\NASvc.exe
14:27:23.0265 4524 C:\Program Files (x86)\Nero\Update\NASvc.exe - ok
14:27:23.0265 4524 [ 1128637CAD49A8E3C8B5FA5D0A061525 ] C:\Windows\SysWOW64\cryptdll.dll
14:27:23.0265 4524 C:\Windows\SysWOW64\cryptdll.dll - ok
14:27:23.0265 4524 [ F1278B3514EA6FA9BC39B20D26139AAC ] C:\Windows\SysWOW64\msiltcfg.dll
14:27:23.0265 4524 C:\Windows\SysWOW64\msiltcfg.dll - ok
14:27:23.0275 4524 [ B29280AA00BC34FEECDC0426B11B9DAC ] C:\Windows\SysWOW64\RstrtMgr.dll
14:27:23.0275 4524 C:\Windows\SysWOW64\RstrtMgr.dll - ok
14:27:23.0275 4524 [ 824BDFBE3D8F41B2F61D0299526C8908 ] C:\Program Files (x86)\Nero\Update\NASvcPS.dll
14:27:23.0275 4524 C:\Program Files (x86)\Nero\Update\NASvcPS.dll - ok
14:27:23.0275 4524 [ CCD0214A064CA26B6663E8AAA14EBF93 ] C:\Windows\System32\PresentationNative_v0300.dll
14:27:23.0275 4524 C:\Windows\System32\PresentationNative_v0300.dll - ok
14:27:23.0275 4524 [ 2EFE164449F1C62CEA167B10850CD9F1 ] C:\Windows\System32\msctfui.dll
14:27:23.0275 4524 C:\Windows\System32\msctfui.dll - ok
14:27:23.0285 4524 [ DDBE67056D715668EBFE1949451BBA4D ] C:\Windows\assembly\NativeImages_v2.0.50727_64\UIAutomationProvider\95330dba19ee6b0916e186da885c4667\UIAutomationProvider.ni.dll
14:27:23.0285 4524 C:\Windows\assembly\NativeImages_v2.0.50727_64\UIAutomationProvider\95330dba19ee6b0916e186da885c4667\UIAutomationProvider.ni.dll - ok
14:27:23.0285 4524 ============================================================
14:27:23.0285 4524 Scan finished
14:27:23.0285 4524 ============================================================
14:27:23.0285 1460 Detected object count: 8
14:27:23.0285 1460 Actual detected object count: 8
14:27:53.0648 1460 IDriverT ( UnsignedFile.Multi.Generic ) - skipped by user
14:27:53.0648 1460 IDriverT ( UnsignedFile.Multi.Generic ) - User select action: Skip
14:27:53.0648 1460 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
14:27:53.0648 1460 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
14:27:53.0648 1460 PinnacleUpdateSvc ( UnsignedFile.Multi.Generic ) - skipped by user
14:27:53.0648 1460 PinnacleUpdateSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
14:27:53.0658 1460 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
14:27:53.0658 1460 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
14:27:53.0658 1460 SwitchBoard ( UnsignedFile.Multi.Generic ) - skipped by user
14:27:53.0658 1460 SwitchBoard ( UnsignedFile.Multi.Generic ) - User select action: Skip
14:27:53.0658 1460 WajamUpdater ( UnsignedFile.Multi.Generic ) - skipped by user
14:27:53.0658 1460 WajamUpdater ( UnsignedFile.Multi.Generic ) - User select action: Skip
14:27:53.0658 1460 Yontoo Desktop Updater ( UnsignedFile.Multi.Generic ) - skipped by user
14:27:53.0658 1460 Yontoo Desktop Updater ( UnsignedFile.Multi.Generic ) - User select action: Skip
14:27:53.0768 1460 C:\Windows\system32\services.exe - copied to quarantine
14:27:55.0289 1460 C:\Windows\installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\@ - copied to quarantine
14:27:55.0289 1460 C:\Windows\installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\L\00000004.@ - copied to quarantine
14:27:55.0289 1460 C:\Windows\installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\L\201d3dde - copied to quarantine
14:27:55.0299 1460 C:\Windows\installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\U\00000004.@ - copied to quarantine
14:27:55.0299 1460 C:\Windows\installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\U\00000008.@ - copied to quarantine
14:27:55.0299 1460 C:\Windows\installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\U\000000cb.@ - copied to quarantine
14:27:55.0309 1460 C:\Windows\installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\U\80000000.@ - copied to quarantine
14:27:55.0309 1460 C:\Windows\installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\U\80000032.@ - copied to quarantine
14:27:55.0309 1460 C:\Windows\installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\U\80000064.@ - copied to quarantine
14:29:51.0258 1460 Backup copy not found, trying to cure infected file..
14:29:51.0259 1460 Cure success, using it..
14:29:51.0303 1460 C:\Windows\installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\@ - will be deleted on reboot
14:29:51.0304 1460 C:\Windows\installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\U\00000004.@ - will be deleted on reboot
14:29:51.0304 1460 C:\Windows\installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\U\00000008.@ - will be deleted on reboot
14:29:51.0305 1460 C:\Windows\installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\U\000000cb.@ - will be deleted on reboot
14:29:51.0305 1460 C:\Windows\installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\U\80000000.@ - will be deleted on reboot
14:29:51.0305 1460 C:\Windows\installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\U\80000032.@ - will be deleted on reboot
14:29:51.0305 1460 C:\Windows\installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\U\80000064.@ - will be deleted on reboot
14:29:51.0306 1460 C:\Windows\system32\services.exe - will be cured on reboot
14:29:51.0306 1460 C:\Windows\system32\services.exe ( Virus.Win64.ZAccess.a ) - User select action: Cure
14:33:24.0413 3920 Deinitialize success
14:37:04.0744 3696 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
14:37:05.0228 3696 ============================================================
14:37:05.0228 3696 Current date / time: 2013/04/27 14:37:05.0228
14:37:05.0228 3696 SystemInfo:
14:37:05.0228 3696
14:37:05.0228 3696 OS Version: 6.1.7601 ServicePack: 1.0
14:37:05.0228 3696 Product type: Workstation
14:37:05.0228 3696 ComputerName: GTECH-PC
14:37:05.0228 3696 UserName: GTech
14:37:05.0228 3696 Windows directory: C:\Windows
14:37:05.0228 3696 System windows directory: C:\Windows
14:37:05.0228 3696 Running under WOW64
14:37:05.0228 3696 Processor architecture: Intel x64
14:37:05.0228 3696 Number of processors: 4
14:37:05.0228 3696 Page size: 0x1000
14:37:05.0228 3696 Boot type: Normal boot
14:37:05.0228 3696 ============================================================
14:37:21.0920 3696 BG loaded
14:37:22.0528 3696 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1F8B1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xF0, Type 'K0', Flags 0x00000040
14:37:22.0559 3696 ============================================================
14:37:22.0559 3696 \Device\Harddisk0\DR0:
14:37:22.0747 3696 MBR partitions:
14:37:22.0747 3696 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
14:37:22.0747 3696 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x746D3800
14:37:22.0747 3696 ============================================================
14:37:22.0825 3696 C: <-> \Device\Harddisk0\DR0\Partition2
14:37:22.0825 3696 ============================================================
14:37:22.0825 3696 Initialize success
14:37:22.0825 3696 ============================================================
14:39:57.0229 1228 Deinitialize success
AdwCleaner log# AdwCleaner v2.202 - Logfile created 04/27/2013 at 15:26:22
# Updated 23/04/2013 by Xplode
# Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)
# User : GTech - GTECH-PC
# Boot Mode : Normal
# Running from : C:\Users\GTech\Downloads\adwcleaner.exe
# Option [Delete]
***** [Services] *****
***** [Files / Folders] *****
Deleted on reboot : C:\Program Files (x86)\Common Files\AVG Secure Search
File Deleted : C:\Program Files (x86)\Mozilla Firefox\searchplugins\babylon.xml
File Deleted : C:\Users\GTech\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.conduit.com_0.localstorage
File Deleted : C:\Users\GTech\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.conduit.com_0.localstorage-journal
Folder Deleted : C:\Program Files (x86)\AVG Secure Search
Folder Deleted : C:\Program Files (x86)\Conduit
Folder Deleted : C:\ProgramData\AVG Secure Search
Folder Deleted : C:\ProgramData\Babylon
Folder Deleted : C:\ProgramData\InstallMate
Folder Deleted : C:\ProgramData\Premium
Folder Deleted : C:\ProgramData\Tarma Installer
Folder Deleted : C:\Users\GTech\AppData\Local\AVG Secure Search
Folder Deleted : C:\Users\GTech\AppData\Local\Conduit
Folder Deleted : C:\Users\GTech\AppData\Local\PackageAware
Folder Deleted : C:\Users\GTech\AppData\LocalLow\AVG Secure Search
Folder Deleted : C:\Users\GTech\AppData\LocalLow\BabylonToolbar
Folder Deleted : C:\Users\GTech\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\GTech\AppData\LocalLow\Delta
Folder Deleted : C:\Users\GTech\AppData\Roaming\Babylon
***** [Registry] *****
Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKCU\Software\AVG Secure Search
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\DataMngr
Key Deleted : HKCU\Software\DataMngr_Toolbar
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1631550F-191D-4826-B069-D9439253D926}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{82E1477C-B154-48D3-9891-33D83C26BCD3}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49DD-99D7-DC866BE87DBC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1631550F-191D-4826-B069-D9439253D926}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{82E1477C-B154-48D3-9891-33D83C26BCD3}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{98889811-442D-49DD-99D7-DC866BE87DBC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\Software\AVG Secure Search
Key Deleted : HKLM\Software\AVG Security Toolbar
Key Deleted : HKLM\Software\Babylon
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
Key Deleted : HKLM\SOFTWARE\Classes\Applications\ilividsetupv1.exe
Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI
Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI.1
Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj
Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj.1
Key Deleted : HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr
Key Deleted : HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr.1
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\viprotocol
Key Deleted : HKLM\SOFTWARE\Classes\S
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3241284
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\DataMngr
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\wajam_install_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\wajam_install_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\WajamUpdater_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\WajamUpdater_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
Key Deleted : HKLM\SOFTWARE\Wow6432Node\5d55dadeb43bee41
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CC5AD34C-6F10-4CB3-B74A-C2DD4D5060A3}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E46C8196-B634-44A1-AF6E-957C64278AB1}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\AVG Secure Search
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Deleted : HKLM\SOFTWARE\Tarma Installer
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}]
Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar]
Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}]
***** [Internet Browsers] *****
-\\ Internet Explorer v9.0.8112.16476
Replaced : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://www2.delta-search.com/?affID=119294&tt=250413_noprf&babsrc=HP_ss&mntrId=6C4700222D295A08 --> hxxp://www.google.com
-\\ Mozilla Firefox v20.0.1 (en-US)
File : C:\Users\GTech\AppData\Roaming\Mozilla\Firefox\Profiles\f00msbqa.default-1366935512666\prefs.js
[OK] File is clean.
File : C:\Users\GTech\AppData\Roaming\Mozilla\Firefox\Profiles\mp7hovmx.default\prefs.js
Deleted : user_pref("browser.newtab.url", "hxxp://www2.delta-search.com/?affID=119294&tt=250413_noprf&babsrc=N[...]
Deleted : user_pref("browser.search.order.1", "Delta Search");
Deleted : user_pref("browser.search.selectedEngine", "Delta Search");
Deleted : user_pref("extensions.delta.admin", false);
Deleted : user_pref("extensions.delta.aflt", "babsst");
Deleted : user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}");
Deleted : user_pref("extensions.delta.autoRvrt", "false");
Deleted : user_pref("extensions.delta.dfltLng", "en");
Deleted : user_pref("extensions.delta.excTlbr", false);
Deleted : user_pref("extensions.delta.ffxUnstlRst", true);
Deleted : user_pref("extensions.delta.id", "6c47072000000000000000222d295a08");
Deleted : user_pref("extensions.delta.instlDay", "15820");
Deleted : user_pref("extensions.delta.instlRef", "sst");
Deleted : user_pref("extensions.delta.newTab", false);
Deleted : user_pref("extensions.delta.prdct", "delta");
Deleted : user_pref("extensions.delta.prtnrId", "delta");
Deleted : user_pref("extensions.delta.rvrt", "false");
Deleted : user_pref("extensions.delta.smplGrp", "none");
Deleted : user_pref("extensions.delta.tlbrId", "base");
Deleted : user_pref("extensions.delta.tlbrSrchUrl", "");
Deleted : user_pref("extensions.delta.vrsn", "1.8.16.16");
Deleted : user_pref("extensions.delta.vrsni", "1.8.16.16");
Deleted : user_pref("extensions.delta.vrsnTs", "1.8.16.1612:35:58");
-\\ Google Chrome v26.0.1410.64
File : C:\Users\GTech\AppData\Local\Google\Chrome\User Data\Default\Preferences
Deleted [l.3062] : urls_to_restore_on_startup = [ "hxxp://www2.delta-search.com/?affID=119294&tt=250413_noprf&ba[...]
*************************
AdwCleaner[S1].txt - [12383 octets] - [27/04/2013 15:26:22]
########## EOF - C:\AdwCleaner[S1].txt - [12444 octets] ##########
OTL logExtrasOTL Extras logfile created on: 29/04/2013 12:28:42 PM - Run 4
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\GTech\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00001009 | Country: Canada | Language: ENC | Date Format: dd/MM/yyyy
8.00 Gb Total Physical Memory | 6.06 Gb Available Physical Memory | 75.78% Memory free
15.99 Gb Paging File | 13.84 Gb Available in Paging File | 86.54% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 931.41 Gb Total Space | 711.14 Gb Free Space | 76.35% Space Free | Partition Type: NTFS
Computer Name: GTECH-PC | User Name: GTech | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ========== ========== File Associations ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5.1\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5.1\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
========== Firewall Settings ========== ========== Authorized Applications List ========== ========== Vista Active Open Ports Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
========== Vista Active Application Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
========== HKEY_LOCAL_MACHINE Uninstall List ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0C9EB3D8-9981-9C61-0D99-0AD65349A0B2}" = ccc-utility64
"{197985EE-73F2-B182-6AEB-21926621ED5D}" = ATI AVIVO64 Codecs
"{1E9FC118-651D-4934-97BE-E53CAE5C7D45}" = Microsoft_VC80_MFCLOC_x86_x64
"{356001A6-3033-7737-1E18-B396F721BCE3}" = WMV9/VC-1 Video Playback
"{41410F2F-118B-4641-BDA9-47C3CEDE8A6A}" = AVG 2012
"{445E399B-444F-4DE3-9ACA-061B1FC95190}" = AVG 2012
"{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}" = Microsoft_VC80_CRT_x86_x64
"{48C0866E-57EB-444C-8371-8E4321066BC3}" = Network64
"{4E484899-4F93-4086-88BA-56BDDF47A776}" = HP Photosmart Prem C310 All-In-One Driver 14.0 Rel. 7
"{4EEBF851-6F1B-918C-3BAD-1E9FC655474B}" = AMD Fuel
"{6965A8D2-465D-4F98-9FAA-0E9E2348F329}" = Microsoft LifeCam
"{6CFB1B20-ECAE-488F-9FFB-6AD420882E71}" = iTunes
"{6E14E6D6-3175-4E1A-B934-CAB5A86367CD}" = HP Postscript Converter
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{75104836-CAC7-444E-A39E-3F54151942F5}" = Apple Mobile Device Support
"{7A536085-9D02-A10F-10A8-2B26393645C3}" = AMD Drag and Drop Transcoding
"{8340EE6D-7646-A566-495D-95D9681C02C3}" = ATI Catalyst Install Manager
"{8557397C-A42D-486F-97B3-A2CBC2372593}" = Microsoft_VC90_ATL_x86_x64
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90140000-001B-0000-1000-0000000FF1CE}" = Microsoft Office Word 2010
"{90140000-001B-0409-1000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2010
"{90140000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proof (English) 2010
"{90140000-001F-040C-1000-0000000FF1CE}" = Microsoft Office Proof (French) 2010
"{90140000-001F-0C0A-1000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2010
"{90140000-002C-0409-1000-0000000FF1CE}" = Microsoft Office Proofing (English) 2010
"{90140000-0043-0000-1000-0000000FF1CE}" = Microsoft Office Office 32-bit Components 2010
"{90140000-0043-0409-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (English) 2010
"{90140000-006E-0409-1000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2010
"{90140000-0115-0409-1000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2010
"{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64
"{9C5A08BF-BB99-4998-81BD-F6CC32483B34}" = Microsoft Corporation
"{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}" = Microsoft_VC90_MFC_x86_x64
"{C788B026-20BD-4E96-B698-533F1D6C5013}" = 64 Bit HP CIO Components Installer
"{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}" = Microsoft_VC80_MFC_x86_x64
"{D9C50188-12D5-4D3E-8F00-682346C2AA5F}" = Microsoft Xbox 360 Accessories 1.2
"{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319
"{F4D304D9-7647-4253-957E-44286B8631F4}" = HP Unified IO
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"{FAE188FD-A941-49E9-A5E9-F6D88517EC40}" = Smart Recovery B10.0324.1 (x64)
"AVG" = AVG 2012
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Office14.WORD" = Microsoft Word 2010
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01E9B2FF-DAF4-4529-9CC9-2101625517C7}" = nero.prerequisites.msi
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{06A1D88C-E102-4527-AF70-29FFD7AF215A}" = Scan
"{08CA9554-B5FE-4313-938F-D4A417B81175}" = QuickTime
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{1246FF64-3035-4A92-8FE6-A968275495EB}" = Sony Vegas Pro 8.0
"{14CF9AF8-10A6-4FA7-9E57-D22DBD644C77}" = HP Unified IO
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{20F71B17-008C-43B4-8097-58FB62EA7AB8}" = Nero Kwik Media
"{26A24AE4-039D-4CA4-87B4-2F83217021FF}" = Java 7 Update 21
"{2794875B-6CCF-48B8-84A5-5B10DB98BEE6}" = HP ePrint
"{2913C8E7-612B-47DA-B18D-A23E1A1B16E3}" = Update Manager B10.0728.1
"{292F0F52-B62D-4E71-921B-89A682402201}" = Toolbox
"{3521BDBD-D453-5D9F-AA55-44B75D214629}" = Adobe Community Help
"{388E9AC8-B70C-F9B4-5D31-15B19CEEB6B0}" = Catalyst Control Center InstallProxy
"{3A345E76-F752-4E19-FE85-1643499B6741}" = Catalyst Control Center Graphics Previews Common
"{47FA2C44-D148-4DBC-AF60-B91934AA4842}" = Adobe AIR
"{49BF48CC-ABB6-4795-9B35-B5DE005D8612}" = Pinnacle Game Profiler
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4F40142E-06F1-28E2-F2BB-F374054DD96D}" = CCC Help English
"{5016F479-6206-D56E-6FE5-938ADA06069C}" = ccc-core-static
"{5449FB4F-1802-4D5B-A6D8-087DB1142147}" = Realtek HDMI Audio Driver for ATI
"{582BA1F1-FAB4-41AD-A5E3-4A9535343461}" = PS_AIO_07_C310_SW_Min
"{5A212B2D-140D-46F4-B625-2D1CA5A00594}" = Nero 11 Kwik Themes Basic
"{5FD89EA1-99C2-40EE-BBF5-20F8991ED756}" = Catalyst Control Center - Branding
"{631BECF0-9716-1342-4DDA-CBC740E36496}" = Catalyst Control Center Localization All
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}" = Nero Update
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{9193490D-5229-4FC4-9BB9-A6D63C09574A}" = High-Definition Video Playback
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{969E11AA-8F3A-F162-1A5A-0965E216B6CE}" = Adobe Download Assistant
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A7A0BF2E-31CC-49E3-9913-52C503EB969D}" = Nero Audio Pack 1
"{A83279FD-CA4B-4206-9535-90974DE76654}" = Apple Application Support
"{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.6)
"{B3BC9DB1-0B0A-48B0-B86B-EA77CAA7F800}" = Microsoft Corporation
"{B6D38690-755E-4F40-A35A-23F8BC2B86AC}" = Microsoft_VC90_MFCLOC_x86
"{B9B1BA7F-7E07-49DD-A713-5B397A5BB66B}" = Nero Kwik Media Help (CHM)
"{BE814218-3919-4EA3-868A-2F60BC135CB4}" = Nero Kwik Media
"{BEBEE34D-84A2-4EDD-8BEA-96CC54371263}" = Nero Core Components 11
"{C28DD992-5B7B-D195-6841-4EC57DF512BD}" = Adobe Story
"{CB04D8E1-7B9C-4F35-B2E2-E87CBE520805}" = Adobe After Effects CS5.5
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}" = Microsoft Primary Interoperability Assemblies 2005
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{D960A153-9447-4003-8ED0-C86858C11BCC}" = SMCWUSB-N2 Wireless Utility
"{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.10
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F6130A03-30EE-D4AD-63C8-E90F422C76C5}" = HydraVision
"{FCDBEA60-79F0-4FAE-BBA8-55A26C609A49}" = Visual Studio 2008 x64 Redistributables
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Any Video Converter Professional_is1" = Any Video Converter Professional 3.4.1
"AutoUpdater_is1" = Auto Updater 1.2.0.3
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"Clip Extractor_is1" = Clip Extractor 4.6
"com.adobe.AdobeStory.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Story
"com.adobe.downloadassistant.AdobeDownloadAssistant" = Adobe Download Assistant
"Combined Community Codec Pack_is1" = Combined Community Codec Pack 2011-11-11
"DAEMON Tools Pro" = DAEMON Tools Pro
"ffdshow_is1" = ffdshow v1.1.4096 [2011-11-29]
"FLV Player2.0.25" = FLV Player
"Flvto Youtube Downloader" = Flvto Youtube Downloader
"InstallShield_{FAE188FD-A941-49E9-A5E9-F6D88517EC40}" = Smart Recovery B10.0324.1 (x64)
"Mozilla Firefox 20.0.1 (x86 en-US)" = Mozilla Firefox 20.0.1 (x86 en-US)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"NewBlue 3D Explosions for Vegas" = NewBlue 3D Explosions for Vegas
"NewBlue Art Effects" = NewBlue Art Effects
"NewBlue Motion Blends" = NewBlue Motion Blends
"NewBlue Motion Effects" = NewBlue Motion Effects
"PowerISO" = PowerISO
"uTorrent" = µTorrent
"WinRAR archiver" = WinRAR 4.01 (32-bit)
========== HKEY_CURRENT_USER Uninstall List ========== [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome
========== Last 20 Event Log Errors ========== [ Application Events ]
Error - 18/03/2013 11:55:57 AM | Computer Name = GTech-PC | Source = Winlogon | ID = 4103
Description = Windows license activation failed. Error 0x80070005.
Error - 18/03/2013 12:25:20 PM | Computer Name = GTech-PC | Source = VSS | ID = 8194
Description =
Error - 18/03/2013 5:08:43 PM | Computer Name = GTech-PC | Source = Winlogon | ID = 4103
Description = Windows license activation failed. Error 0x80070005.
Error - 18/03/2013 5:37:41 PM | Computer Name = GTech-PC | Source = VSS | ID = 8194
Description =
Error - 19/03/2013 10:34:03 AM | Computer Name = GTech-PC | Source = Winlogon | ID = 4103
Description = Windows license activation failed. Error 0x80070005.
Error - 19/03/2013 11:03:46 AM | Computer Name = GTech-PC | Source = VSS | ID = 8194
Description =
Error - 19/03/2013 7:27:51 PM | Computer Name = GTech-PC | Source = Winlogon | ID = 4103
Description = Windows license activation failed. Error 0x80070005.
Error - 19/03/2013 7:55:57 PM | Computer Name = GTech-PC | Source = VSS | ID = 8194
Description =
Error - 20/03/2013 7:17:14 PM | Computer Name = GTech-PC | Source = Winlogon | ID = 4103
Description = Windows license activation failed. Error 0x80070005.
Error - 20/03/2013 7:47:08 PM | Computer Name = GTech-PC | Source = VSS | ID = 8194
Description =
Error - 21/03/2013 8:14:02 PM | Computer Name = GTech-PC | Source = Winlogon | ID = 4103
Description = Windows license activation failed. Error 0x80070005.
Error - 21/03/2013 8:43:44 PM | Computer Name = GTech-PC | Source = VSS | ID = 8194
Description =
[ System Events ]
Error - 27/04/2013 3:24:18 PM | Computer Name = GTech-PC | Source = Service Control Manager | ID = 7001
Description = The HomeGroup Provider service depends on the Function Discovery Resource
Publication service which failed to start because of the following error: %%-2147024891
Error - 27/04/2013 3:29:32 PM | Computer Name = GTech-PC | Source = Service Control Manager | ID = 7034
Description = The PinnacleUpdate Service service terminated unexpectedly. It has
done this 1 time(s).
Error - 27/04/2013 3:30:06 PM | Computer Name = GTech-PC | Source = Service Control Manager | ID = 7023
Description = The Function Discovery Resource Publication service terminated with
the following error: %%-2147024891
Error - 27/04/2013 3:30:06 PM | Computer Name = GTech-PC | Source = Service Control Manager | ID = 7001
Description = The HomeGroup Provider service depends on the Function Discovery Resource
Publication service which failed to start because of the following error: %%-2147024891
Error - 28/04/2013 12:52:26 PM | Computer Name = GTech-PC | Source = Service Control Manager | ID = 7034
Description = The PinnacleUpdate Service service terminated unexpectedly. It has
done this 1 time(s).
Error - 28/04/2013 12:53:03 PM | Computer Name = GTech-PC | Source = Service Control Manager | ID = 7023
Description = The Function Discovery Resource Publication service terminated with
the following error: %%-2147024891
Error - 28/04/2013 12:53:03 PM | Computer Name = GTech-PC | Source = Service Control Manager | ID = 7001
Description = The HomeGroup Provider service depends on the Function Discovery Resource
Publication service which failed to start because of the following error: %%-2147024891
Error - 29/04/2013 12:15:10 PM | Computer Name = GTech-PC | Source = Service Control Manager | ID = 7034
Description = The PinnacleUpdate Service service terminated unexpectedly. It has
done this 1 time(s).
Error - 29/04/2013 12:16:23 PM | Computer Name = GTech-PC | Source = Service Control Manager | ID = 7023
Description = The Function Discovery Resource Publication service terminated with
the following error: %%-2147024891
Error - 29/04/2013 12:16:23 PM | Computer Name = GTech-PC | Source = Service Control Manager | ID = 7001
Description = The HomeGroup Provider service depends on the Function Discovery Resource
Publication service which failed to start because of the following error: %%-2147024891
< End of report >
OTLOTL logfile created on: 29/04/2013 12:28:42 PM - Run 4
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\GTech\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00001009 | Country: Canada | Language: ENC | Date Format: dd/MM/yyyy
8.00 Gb Total Physical Memory | 6.06 Gb Available Physical Memory | 75.78% Memory free
15.99 Gb Paging File | 13.84 Gb Available in Paging File | 86.54% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 931.41 Gb Total Space | 711.14 Gb Free Space | 76.35% Space Free | Partition Type: NTFS
Computer Name: GTECH-PC | User Name: GTech | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ========== PRC - [2013/04/26 16:31:50 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\GTech\Downloads\OTL.exe
PRC - [2013/04/15 05:50:34 | 000,337,432 | ---- | M] (Power Software Ltd) -- C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
PRC - [2013/04/10 02:58:15 | 000,920,472 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2013/02/18 14:11:57 | 000,968,880 | ---- | M] () -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\14.2.0\ToolbarUpdater.exe
PRC - [2012/12/18 10:28:08 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2012/11/19 18:25:32 | 002,598,520 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2012\avgtray.exe
PRC - [2012/11/02 04:51:18 | 005,174,392 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2012\avgidsagent.exe
PRC - [2012/02/14 04:53:38 | 000,193,288 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe
PRC - [2011/11/25 16:32:36 | 000,687,400 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Nero\Update\NASvc.exe
PRC - [2011/10/21 23:32:02 | 000,641,400 | ---- | M] (BitTorrent, Inc.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe
PRC - [2011/08/17 03:28:14 | 003,120,448 | ---- | M] (DT Soft Ltd) -- C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe
PRC - [2010/05/20 15:26:30 | 000,762,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\vVX3000.exe
========== Modules (No Company Name) ========== MOD - [2013/04/10 02:58:18 | 003,133,336 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2011/09/27 07:23:00 | 000,087,912 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2011/09/27 07:22:40 | 001,242,472 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
========== Services (SafeList) ========== SRV:
64bit: - [2011/01/12 22:56:56 | 000,203,776 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:
64bit: - [2011/01/12 22:03:12 | 000,354,304 | ---- | M] (Advanced Micro Devices, Inc.) [Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe -- (AMD FUEL Service)
SRV:
64bit: - [2010/06/17 05:23:36 | 000,194,496 | ---- | M] (Advanced Micro Devices) [Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe -- (AMD Reservation Manager)
SRV:
64bit: - [2010/05/20 15:26:28 | 000,199,536 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft LifeCam\MSCamS64.exe -- (MSCamSvc)
SRV - [2013/04/10 02:58:17 | 000,115,608 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013/03/12 20:05:29 | 000,253,656 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013/02/18 14:11:57 | 000,968,880 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\14.2.0\ToolbarUpdater.exe -- (vToolbarUpdater14.2.0)
SRV - [2012/12/18 10:28:08 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2012/11/02 04:51:18 | 005,174,392 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG2012\avgidsagent.exe -- (AVGIDSAgent)
SRV - [2012/07/13 13:28:36 | 000,160,944 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012/02/14 04:53:38 | 000,193,288 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe -- (avgwd)
SRV - [2011/11/25 16:32:36 | 000,687,400 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files (x86)\Nero\Update\NASvc.exe -- (NAUpdate)
SRV - [2011/05/09 13:01:06 | 000,430,080 | ---- | M] (PowerUp Software, LLC) [Auto | Stopped] -- C:\Program Files (x86)\PowerUp Software\Pinnacle Game Profiler\pinnacle_updater.exe -- (PinnacleUpdateSvc)
SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010/02/19 13:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2010/01/30 01:40:16 | 001,043,584 | ---- | M] (Hewlett-Packard Co.) [Auto | Running] -- C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL -- (HPSLPSVC)
SRV - [2009/06/10 17:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
========== Driver Services (SafeList) ========== DRV:
64bit: - [2013/04/18 04:51:02 | 000,127,384 | ---- | M] (Power Software Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\scdemu.sys -- (SCDEmu)
DRV:
64bit: - [2013/04/11 03:18:40 | 000,384,800 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgtdia.sys -- (Avgtdia)
DRV:
64bit: - [2013/02/18 14:11:57 | 000,039,768 | ---- | M] (AVG Technologies) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgtpx64.sys -- (avgtp)
DRV:
64bit: - [2012/12/10 04:28:34 | 000,127,328 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\avgidsdrivera.sys -- (AVGIDSDriver)
DRV:
64bit: - [2012/11/08 04:49:24 | 000,307,040 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgldx64.sys -- (Avgldx64)
DRV:
64bit: - [2012/04/19 04:50:26 | 000,028,480 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\avgidsha.sys -- (AVGIDSHA)
DRV:
64bit: - [2012/03/01 02:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:
64bit: - [2012/01/31 04:46:48 | 000,036,944 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgrkx64.sys -- (Avgrkx64)
DRV:
64bit: - [2011/12/23 13:32:14 | 000,047,696 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\avgmfx64.sys -- (Avgmfx64)
DRV:
64bit: - [2011/12/23 13:32:04 | 000,029,776 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\avgidsfiltera.sys -- (AVGIDSFilter)
DRV:
64bit: - [2011/12/06 16:24:27 | 000,271,424 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:
64bit: - [2011/08/02 17:38:56 | 000,051,712 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:
64bit: - [2011/05/13 03:21:04 | 000,177,640 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssadmdm.sys -- (ssadmdm)
DRV:
64bit: - [2011/05/13 03:21:04 | 000,146,920 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssadserd.sys -- (ssadserd)
DRV:
64bit: - [2011/05/13 03:21:02 | 000,157,672 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssadbus.sys -- (ssadbus)
DRV:
64bit: - [2011/05/13 03:21:02 | 000,036,328 | ---- | M] (Google Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssadadb.sys -- (androidusb)
DRV:
64bit: - [2011/05/13 03:21:02 | 000,016,872 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssadmdfl.sys -- (ssadmdfl)
DRV:
64bit: - [2011/03/11 02:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:
64bit: - [2011/03/11 02:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:
64bit: - [2011/01/13 07:58:30 | 000,413,800 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:
64bit: - [2011/01/12 23:39:32 | 009,085,952 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:
64bit: - [2011/01/12 22:15:22 | 000,299,008 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:
64bit: - [2010/11/23 06:33:00 | 000,300,648 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RtHDMIVX.sys -- (RTHDMIAzAudService)
DRV:
64bit: - [2010/11/20 09:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:
64bit: - [2010/11/20 07:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:
64bit: - [2010/05/20 15:26:30 | 002,060,144 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VX3000.sys -- (VX3000)
DRV:
64bit: - [2010/02/18 09:18:24 | 000,046,136 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\amdiox64.sys -- (amdiox64)
DRV:
64bit: - [2009/08/21 02:52:10 | 000,079,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xusb21.sys -- (xusb21)
DRV:
64bit: - [2009/07/13 21:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:
64bit: - [2009/07/13 21:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:
64bit: - [2009/07/13 21:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:
64bit: - [2009/06/10 16:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:
64bit: - [2009/06/10 16:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:
64bit: - [2009/06/10 16:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:
64bit: - [2009/06/10 16:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:
64bit: - [2009/05/18 13:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:
64bit: - [2008/07/24 08:18:00 | 000,539,136 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\arusb_lhx.sys -- (arusb_lhx)
DRV:
64bit: - [2008/04/16 15:49:34 | 000,028,416 | ---- | M] (Research In Motion Limited) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RimUsb_AMD64.sys -- (RimUsb)
DRV - [2009/07/13 21:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE:
64bit: - HKLM\..\SearchScopes,DefaultScope =
IE:
64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://www.bing.com/...ms}&FORM=IE8SRCIE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://www.bing.com/...ms}&FORM=IE8SRC IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,bProtector Start Page =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache =
http://ca.msn.com/?ocid=iehpIE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-CA
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 78 B6 50 EF C8 1A CE 01 [binary data]
IE - HKCU\..\SearchScopes,DefaultScope =
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://www.bing.com/...Box&FORM=IE8SRCIE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ========== FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:20.0.1
FF - user.js - File not found
FF:
64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_6_602_180.dll File not found
FF:
64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:
64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF:
64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_180.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.21.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Nero.com/KM: C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\GTech\AppData\Local\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\GTech\AppData\Local\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: C:\Program Files (x86)\AVG\AVG2012\Firefox4\ [2013/04/16 19:57:54 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 20.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/04/22 14:46:35 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 20.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
[2013/04/22 14:47:25 | 000,000,000 | ---D | M] (No name found) -- C:\Users\GTech\AppData\Roaming\mozilla\Extensions
[2013/04/27 14:58:59 | 000,000,000 | ---D | M] (No name found) -- C:\Users\GTech\AppData\Roaming\mozilla\firefox\Profiles\f00msbqa.default-1366935512666\Extensions
[2013/04/27 14:58:59 | 000,000,000 | ---D | M] (No name found) -- C:\Users\GTech\AppData\Roaming\mozilla\firefox\Profiles\mp7hovmx.default\extensions
[2013/04/22 14:46:35 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2013/04/10 02:58:33 | 000,263,064 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2013/04/10 02:57:54 | 000,002,465 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2013/04/10 02:57:54 | 000,002,086 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\twitter.xml
========== Chrome ========== CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter}
CHR - Extension: Search Spin = C:\Users\GTech\AppData\Local\Google\Chrome\User Data\Default\Extensions\cgpimkfhjdaobobdomcikioipaenlhke\10.14.370.24_0\
O1 HOSTS File: ([2009/06/10 17:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:
64bit: - BHO: (AVG Do Not Track) - {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} - C:\Program Files (x86)\AVG\AVG2012\avgdtiea.dll (AVG Technologies CZ, s.r.o.)
O2:
64bit: - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG2012\avgssiea.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG2012\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (Java Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Java Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O4:
64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:
64bit: - HKLM..\Run: [VX3000] C:\Windows\vVX3000.exe (Microsoft Corporation)
O4 - HKLM..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin File not found
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files (x86)\AVG\AVG2012\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [LifeCam] C:\Program Files (x86)\Microsoft LifeCam\LifeExp.exe (Microsoft Corporation)
O4 - HKLM..\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE (Power Software Ltd)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [vProt] "C:\Program Files (x86)\AVG Secure Search\vprot.exe" File not found
O4 - HKCU..\Run: [AdobeBridge] File not found
O4 - HKCU..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe File not found
O4 - HKCU..\Run: [uTorrent] C:\Program Files (x86)\uTorrent\uTorrent.exe (BitTorrent, Inc.)
O4 - HKLM..\RunOnce: [GBTUpd] C:\Program Files (x86)\Gigabyte\UpdManager\PreRun.exe (PreRun)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8:
64bit: - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~3\Office14\EXCEL.EXE/3000 File not found
O8:
64bit: - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~3\Office14\ONBttnIE.dll/105 File not found
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~3\Office14\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~3\Office14\ONBttnIE.dll/105 File not found
O9:
64bit: - Extra Button: AVG Do Not Track - {68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} - C:\Program Files (x86)\AVG\AVG2012\avgdtiea.dll (AVG Technologies CZ, s.r.o.)
O9 - Extra Button: Make ringtone with Clip Extractor - {0c00b393-e669-4cb2-8f65-8833356cd962} - C:\Program Files (x86)\Clip Extractor\Ringtone.lnk ()
O9 - Extra Button: Download with Clip Extractor - {aae24073-cf39-4df1-9de1-1a5a1aeea8f9} - C:\Program Files (x86)\Clip Extractor\ClipExtractor.exe ()
O10:
64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000005 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - mmswsock.dll File not found
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - mmswsock.dll File not found
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - mmswsock.dll File not found
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - mmswsock.dll File not found
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000005 - mmswsock.dll File not found
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000006 - mmswsock.dll File not found
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000007 - mmswsock.dll File not found
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000008 - mmswsock.dll File not found
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000009 - mmswsock.dll File not found
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000010 - mmswsock.dll File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - %SystemRoot%\System32\winrnr.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - %SystemRoot%\System32\winrnr.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - %SystemRoot%\System32\winrnr.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - %SystemRoot%\System32\winrnr.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - %SystemRoot%\System32\winrnr.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - %SystemRoot%\System32\winrnr.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - %SystemRoot%\System32\winrnr.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - %SystemRoot%\System32\winrnr.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - %SystemRoot%\System32\winrnr.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - %SystemRoot%\System32\winrnr.dll File not found
O13
64bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload2.m...ash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{687A485B-A39E-4A81-A7BC-AF0A393653F3}: DhcpNameServer = 192.168.0.1
O18:
64bit: - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgppa.dll (AVG Technologies CZ, s.r.o.)
O18:
64bit: - Protocol\Handler\skype4com - No CLSID value found
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - Protocol\Handler\ms-help - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20:
64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:
64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{71724c78-202b-11e1-b6df-50e5495a450b}\Shell - "" = AutoRun
O33 - MountPoints2\{71724c78-202b-11e1-b6df-50e5495a450b}\Shell\AutoRun\command - "" = E:\SETUP.EXE
O33 - MountPoints2\{71724c78-202b-11e1-b6df-50e5495a450b}\Shell\configure\command - "" = E:\SETUP.EXE
O33 - MountPoints2\{71724c78-202b-11e1-b6df-50e5495a450b}\Shell\install\command - "" = E:\SETUP.EXE
O33 - MountPoints2\F\Shell - "" = AutoRun
O33 - MountPoints2\F\Shell\AutoRun\command - "" = F:\SETUP.EXE
O33 - MountPoints2\F\Shell\configure\command - "" = F:\SETUP.EXE
O33 - MountPoints2\F\Shell\install\command - "" = F:\SETUP.EXE
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (C:\PROGRA~2\AVG\AVG2012\avgrsa.exe /sync /restart)
O35:
64bit: - HKLM\..comfile [open] -- "%1" %*
O35:
64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:
64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:
64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ========== [2013/04/27 15:32:50 | 000,000,000 | ---D | C] -- C:\_OTL
[2013/04/27 15:21:19 | 000,000,000 | --SD | C] -- C:\Windows\SysWow64\Microsoft
[2013/04/27 14:27:53 | 000,000,000 | ---D | C] -- C:\TDSSKiller_Quarantine
[2013/04/26 17:48:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
[2013/04/26 17:47:55 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Synchronization Services
[2013/04/26 17:47:52 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER
[2013/04/26 17:47:24 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2013/04/26 17:47:24 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server Compact Edition
[2013/04/26 17:45:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Office
[2013/04/26 17:44:59 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2013/04/26 17:21:45 | 000,000,000 | ---D | C] -- C:\Users\GTech\AppData\Roaming\PowerISO
[2013/04/26 17:20:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO
[2013/04/26 17:20:49 | 000,127,384 | ---- | C] (Power Software Ltd) -- C:\Windows\SysNative\drivers\scdemu.sys
[2013/04/26 17:20:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PowerISO
[2013/04/26 15:33:43 | 000,000,000 | ---D | C] -- C:\Users\GTech\AppData\Roaming\Download Manager
[2013/04/26 14:53:43 | 000,000,000 | ---D | C] -- C:\Users\GTech\AppData\Local\CrashRpt
[2013/04/26 14:51:02 | 000,000,000 | ---D | C] -- C:\Users\GTech\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Allmyapps
[2013/04/25 21:26:43 | 000,000,000 | ---D | C] -- C:\Users\GTech\AppData\Roaming\TuneUp Software
[2013/04/25 13:04:55 | 000,000,000 | ---D | C] -- C:\Users\GTech\Documents\Any Video Converter Professional
[2013/04/25 13:04:25 | 000,000,000 | ---D | C] -- C:\Users\GTech\AppData\Roaming\AnvSoft
[2013/04/25 13:04:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AnvSoft
[2013/04/25 13:04:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AnvSoft
[2013/04/25 12:35:34 | 000,000,000 | ---D | C] -- C:\Users\GTech\AppData\Roaming\GoforFiles
[2013/04/25 12:35:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\GoforFiles
[2013/04/25 12:22:58 | 000,000,000 | -HSD | C] -- C:\Windows\SysWow64\%APPDATA%
[2013/04/25 12:00:21 | 000,000,000 | ---D | C] -- C:\Users\GTech\Documents\Log Files
[2013/04/24 20:12:17 | 000,000,000 | ---D | C] -- C:\Users\GTech\Desktop\Crack for Premiere Pro dll
[2013/04/24 19:57:07 | 000,000,000 | ---D | C] -- C:\Users\GTech\Documents\iOrgSoft
[2013/04/24 19:55:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iOrgSoft
[2013/04/24 19:55:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iOrgSoft
[2013/04/24 18:30:27 | 000,000,000 | ---D | C] -- C:\Users\GTech\Desktop\Footage
[2013/04/22 14:47:50 | 000,000,000 | ---D | C] -- C:\Users\GTech\AppData\Local\Macromedia
[2013/04/22 14:47:18 | 000,000,000 | ---D | C] -- C:\Users\GTech\AppData\Local\Mozilla
[2013/04/22 14:46:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service
[2013/04/22 14:46:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla
[2013/04/22 14:46:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2013/04/22 14:38:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2013/04/22 14:37:44 | 000,263,584 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaws.exe
[2013/04/22 14:37:37 | 000,174,496 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe
[2013/04/22 14:37:37 | 000,174,496 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe
[2013/04/22 14:37:37 | 000,095,648 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
[2013/04/22 14:37:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Java
[2013/04/20 20:22:01 | 000,000,000 | ---D | C] -- C:\Users\GTech\Desktop\Man Of The House
[2013/04/20 20:22:01 | 000,000,000 | ---D | C] -- C:\Users\GTech\Desktop\__MACOSX
[2013/04/16 19:57:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
[2013/04/11 03:18:40 | 000,384,800 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgtdia.sys
[2013/04/10 14:34:50 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2013/04/10 14:34:50 | 000,096,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2013/04/10 14:34:50 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2013/04/10 14:34:49 | 002,312,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2013/04/10 14:34:49 | 001,494,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2013/04/10 14:34:49 | 001,427,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2013/04/10 14:34:49 | 000,729,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2013/04/10 14:34:49 | 000,248,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2013/04/10 14:34:49 | 000,237,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2013/04/10 14:34:49 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2013/04/10 14:34:49 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2013/04/10 14:34:49 | 000,142,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2013/04/10 14:34:48 | 000,816,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2013/04/10 14:34:48 | 000,717,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2013/04/10 14:34:48 | 000,599,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2013/04/10 10:22:01 | 003,717,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstscax.dll
[2013/04/10 10:22:01 | 003,217,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll
[2013/04/10 10:22:00 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aaclient.dll
[2013/04/10 10:22:00 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\aaclient.dll
[2013/04/10 10:22:00 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsgqec.dll
[2013/04/10 10:22:00 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsgqec.dll
[2013/04/10 10:21:50 | 005,550,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2013/04/10 10:21:50 | 003,968,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2013/04/10 10:21:50 | 003,913,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2013/04/10 10:21:49 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\smss.exe
[2013/04/10 10:21:49 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\csrsrv.dll
[2013/04/10 10:21:49 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\apisetschema.dll
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files - Modified Within 30 Days ========== [2013/04/29 12:19:21 | 000,726,270 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013/04/29 12:19:21 | 000,628,414 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013/04/29 12:19:21 | 000,110,598 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013/04/29 12:18:34 | 118,648,442 | ---- | M] () -- C:\Windows\SysNative\drivers\AVG\incavi.avm
[2013/04/29 12:15:04 | 000,119,296 | ---- | M] () -- C:\Windows\SysWow64\zlib.dll
[2013/04/29 12:15:02 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013/04/29 12:15:00 | 2145,411,071 | -HS- | M] () -- C:\hiberfil.sys
[2013/04/28 18:02:13 | 000,014,320 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013/04/28 18:02:13 | 000,014,320 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013/04/28 17:50:00 | 000,000,908 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1673298358-3336942171-3937336255-1000UA.job
[2013/04/28 17:05:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013/04/28 13:50:53 | 003,881,637 | ---- | M] () -- C:\Users\GTech\Desktop\JAY - Z - OPEN LETTER INSTRUMENTAL - NEW 2013.mp3
[2013/04/27 18:50:00 | 000,000,856 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1673298358-3336942171-3937336255-1000Core.job
[2013/04/27 14:34:11 | 000,328,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\services.exe
[2013/04/26 17:51:39 | 005,003,368 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013/04/26 17:48:16 | 000,003,021 | ---- | M] () -- C:\Users\GTech\Desktop\Microsoft Word 2010.lnk
[2013/04/26 17:20:50 | 000,001,011 | ---- | M] () -- C:\Users\Public\Desktop\PowerISO.lnk
[2013/04/26 16:22:50 | 806,676,480 | ---- | M] () -- C:\Users\GTech\Documents\OfficeProfessionalPlus_x64_en-us.img.dlm
[2013/04/25 15:05:55 | 008,261,529 | ---- | M] () -- C:\Users\GTech\Desktop\Sample 2.wmv
[2013/04/25 14:57:49 | 032,717,715 | ---- | M] () -- C:\Users\GTech\Desktop\Sample.wmv
[2013/04/25 13:04:10 | 000,001,321 | ---- | M] () -- C:\Users\GTech\Desktop\Any Video Converter Professional.lnk
[2013/04/24 19:55:42 | 000,001,343 | ---- | M] () -- C:\Users\Public\Desktop\iOrgSoft AVCHD Video Converter.lnk
[2013/04/23 10:50:04 | 000,009,216 | ---- | M] () -- C:\Users\GTech\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2013/04/22 14:46:42 | 000,001,151 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2013/04/22 14:37:24 | 000,095,648 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
[2013/04/22 14:37:23 | 000,866,720 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\npDeployJava1.dll
[2013/04/22 14:37:23 | 000,788,896 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\deployJava1.dll
[2013/04/22 14:37:23 | 000,263,584 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\javaws.exe
[2013/04/22 14:37:23 | 000,174,496 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe
[2013/04/22 14:37:23 | 000,174,496 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe
[2013/04/21 00:14:01 | 012,145,928 | ---- | M] () -- C:\Users\GTech\Desktop\Kendrick Lamar- [bleep] Don't Kill My Vibe (Instrumental W Hook).mp3
[2013/04/20 22:01:24 | 000,002,138 | ---- | M] () -- C:\Users\GTech\Desktop\Flvto Youtube Downloader.lnk
[2013/04/18 04:51:02 | 000,127,384 | ---- | M] (Power Software Ltd) -- C:\Windows\SysNative\drivers\scdemu.sys
[2013/04/17 23:24:47 | 005,777,500 | ---- | M] () -- C:\Users\GTech\Desktop\Meek Mill Type Instrumental (Download Link)-[www_flvto_com].mp3
[2013/04/16 19:57:54 | 000,000,965 | ---- | M] () -- C:\Users\Public\Desktop\AVG 2012.lnk
[2013/04/14 20:37:06 | 000,450,883 | ---- | M] () -- C:\Windows\SysNative\drivers\AVG\iavichjg.avm
[2013/04/13 09:51:16 | 007,011,351 | ---- | M] () -- C:\Users\GTech\Desktop\Eyon - Mentality (Sample).mp3
[2013/04/11 15:09:55 | 000,296,669 | ---- | M] () -- C:\Users\GTech\Desktop\tumblr_milve6utyC1qzabkfo1_400.png
[2013/04/11 03:18:40 | 000,384,800 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgtdia.sys
[2013/04/10 21:03:00 | 000,000,119 | ---- | M] () -- C:\Users\GTech\webct_upload_applet.properties
[2013/04/10 10:50:39 | 000,002,330 | ---- | M] () -- C:\Users\GTech\Desktop\Google Chrome.lnk
[2013/04/09 14:11:42 | 009,683,094 | ---- | M] () -- C:\Users\GTech\Desktop\Bad Remix.mp3
[2013/04/05 17:46:57 | 006,197,548 | ---- | M] () -- C:\Users\GTech\Desktop\Wale ft. Tiara Thomas - Bad (instrumental Whook).mp3
[2013/04/03 11:53:26 | 010,380,050 | ---- | M] () -- C:\Users\GTech\Desktop\Kendrick Lamar- Poetic Justice (Instrumental w Hook).mp3
[2013/04/02 12:19:12 | 000,054,070 | ---- | M] () -- C:\Users\GTech\Desktop\Dispute_Notification_Form_E.pdf
[2013/03/31 21:14:38 | 007,467,911 | ---- | M] () -- C:\Users\GTech\Desktop\Wicked Games Remix.mp3
[2013/03/31 19:31:06 | 010,538,866 | ---- | M] () -- C:\Users\GTech\Desktop\Can I Holla At Ya Remix.mp3
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files Created - No Company Name ========== [2013/04/28 13:50:48 | 003,881,637 | ---- | C] () -- C:\Users\GTech\Desktop\JAY - Z - OPEN LETTER INSTRUMENTAL - NEW 2013.mp3
[2013/04/26 17:48:16 | 000,003,021 | ---- | C] () -- C:\Users\GTech\Desktop\Microsoft Word 2010.lnk
[2013/04/26 17:20:50 | 000,001,011 | ---- | C] () -- C:\Users\Public\Desktop\PowerISO.lnk
[2013/04/26 15:33:54 | 806,676,480 | ---- | C] () -- C:\Users\GTech\Documents\OfficeProfessionalPlus_x64_en-us.img.dlm
[2013/04/25 15:05:12 | 008,261,529 | ---- | C] () -- C:\Users\GTech\Desktop\Sample 2.wmv
[2013/04/25 14:54:20 | 032,717,715 | ---- | C] () -- C:\Users\GTech\Desktop\Sample.wmv
[2013/04/25 13:04:10 | 000,001,321 | ---- | C] () -- C:\Users\GTech\Desktop\Any Video Converter Professional.lnk
[2013/04/24 19:55:42 | 000,001,343 | ---- | C] () -- C:\Users\Public\Desktop\iOrgSoft AVCHD Video Converter.lnk
[2013/04/22 14:46:42 | 000,001,151 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2013/04/22 14:46:41 | 000,001,163 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2013/04/21 00:13:52 | 012,145,928 | ---- | C] () -- C:\Users\GTech\Desktop\Kendrick Lamar- [bleep] Don't Kill My Vibe (Instrumental W Hook).mp3
[2013/04/17 23:23:45 | 005,777,500 | ---- | C] () -- C:\Users\GTech\Desktop\Meek Mill Type Instrumental (Download Link)-[www_flvto_com].mp3
[2013/04/13 12:55:57 | 007,011,351 | ---- | C] () -- C:\Users\GTech\Desktop\Eyon - Mentality (Sample).mp3
[2013/04/11 15:09:55 | 000,296,669 | ---- | C] () -- C:\Users\GTech\Desktop\tumblr_milve6utyC1qzabkfo1_400.png
[2013/04/09 14:18:01 | 009,683,094 | ---- | C] () -- C:\Users\GTech\Desktop\Bad Remix.mp3
[2013/04/05 17:46:49 | 006,197,548 | ---- | C] () -- C:\Users\GTech\Desktop\Wale ft. Tiara Thomas - Bad (instrumental Whook).mp3
[2013/04/03 11:53:18 | 010,380,050 | ---- | C] () -- C:\Users\GTech\Desktop\Kendrick Lamar- Poetic Justice (Instrumental w Hook).mp3
[2013/04/02 15:19:28 | 000,054,070 | ---- | C] () -- C:\Users\GTech\Desktop\Dispute_Notification_Form_E.pdf
[2013/03/31 21:18:18 | 007,467,911 | ---- | C] () -- C:\Users\GTech\Desktop\Wicked Games Remix.mp3
[2013/03/31 19:33:44 | 010,538,866 | ---- | C] () -- C:\Users\GTech\Desktop\Can I Holla At Ya Remix.mp3
[2013/02/21 03:08:26 | 000,000,119 | ---- | C] () -- C:\Users\GTech\webct_upload_applet.properties
[2013/01/22 14:43:15 | 000,171,881 | ---- | C] () -- C:\Windows\hpoins49.dat.temp
[2013/01/22 14:43:15 | 000,001,241 | ---- | C] () -- C:\Windows\hpomdl49.dat.temp
[2012/12/06 21:46:09 | 000,171,254 | ---- | C] () -- C:\Windows\hpoins49.dat
[2012/12/06 21:46:09 | 000,001,241 | ---- | C] () -- C:\Windows\hpomdl49.dat
[2012/10/29 21:29:39 | 000,000,593 | ---- | C] () -- C:\Users\GTech\AppData\Roaming\ClipExtractor-YouTube-Clip-ExtractorFlvConverterDefaultSettings.xml
[2012/10/25 11:56:28 | 000,009,216 | ---- | C] () -- C:\Users\GTech\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012/04/04 18:41:31 | 000,079,872 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll
[2011/12/07 15:24:50 | 000,119,296 | ---- | C] () -- C:\Windows\SysWow64\zlib.dll
[2011/12/07 15:24:50 | 000,057,344 | ---- | C] () -- C:\Windows\SysWow64\ADsSecurity.dll
[2011/12/07 15:24:50 | 000,036,864 | ---- | C] () -- C:\Windows\SysWow64\dxinputdll.dll
[2011/10/11 02:38:17 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2011/10/11 02:36:43 | 000,003,113 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2011/10/11 02:27:43 | 000,000,010 | ---- | C] () -- C:\Windows\GSetup.ini
[2006/06/17 10:19:12 | 000,060,634 | -H-- | C] () -- C:\Users\GTech\AppData\Roaming\GTechlog.dat
========== ZeroAccess Check ========== [2013/04/25 12:37:47 | 000,000,000 | ---D | M] -- C:\Windows\Installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\L
[2013/04/27 14:34:11 | 000,000,000 | ---D | M] -- C:\Windows\Installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\U
[2013/04/27 14:22:59 | 000,000,804 | ---- | M] () -- C:\Windows\Installer\{d631d24f-4705-e2c6-4961-19c3ff31037e}\L\00000004.@
[2009/07/14 00:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[2013/04/27 14:22:58 | 000,004,608 | -HS- | M] () -- C:\Windows\assembly\GAC_32\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2012/06/09 01:43:10 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012/06/09 00:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 21:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 08:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 21:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== Custom Scans ========== ========== Base Services ==========SRV:
64bit: - [2009/07/13 21:40:01 | 000,072,192 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\aelupsvc.dll -- (AeLookupSvc)
SRV:
64bit: - [2010/11/20 09:25:40 | 000,070,656 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appinfo.dll -- (Appinfo)
SRV:
64bit: - [2009/07/13 21:38:55 | 000,079,360 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\alg.exe -- (ALG)
No service found with a name of BITS
No service found with a name of BFE
SRV:
64bit: - [2011/11/17 02:33:55 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\lsass.exe -- (KeyIso)
SRV:
64bit: - [2009/07/13 21:40:50 | 000,402,944 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\es.dll -- (EventSystem)
SRV - [2009/07/13 21:15:19 | 000,271,360 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\es.dll -- (EventSystem)
SRV:
64bit: - [2012/07/04 18:13:27 | 000,136,704 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\browser.dll -- (Browser)
SRV:
64bit: - [2012/06/02 01:41:28 | 000,184,320 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\cryptsvc.dll -- (CryptSvc)
SRV - [2012/06/02 00:36:29 | 000,140,288 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\cryptsvc.dll -- (CryptSvc)
SRV:
64bit: - [2010/11/20 09:27:24 | 000,512,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (DcomLaunch)
SRV:
64bit: - [2010/11/20 09:26:04 | 000,317,952 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dhcpcore.dll -- (Dhcp)
SRV - [2010/11/20 08:18:30 | 000,254,464 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\dhcpcore.dll -- (Dhcp)
SRV:
64bit: - [2011/03/03 02:24:16 | 000,183,296 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dnsrslvr.dll -- (Dnscache)
SRV:
64bit: - [2009/07/13 21:40:35 | 000,111,104 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\eapsvc.dll -- (EapHost)
SRV:
64bit: - [2009/07/13 21:41:00 | 000,038,912 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\hidserv.dll -- (hidserv)
SRV - [2009/07/13 21:15:24 | 000,049,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\hidserv.dll -- (hidserv)
No service found with a name of SharedAccess
SRV:
64bit: - [2010/11/20 09:26:39 | 000,501,248 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IPSECSVC.DLL -- (PolicyAgent)
No service found with a name of MsMpSvc
No service found with a name of NisSrv
SRV:
64bit: - [2009/07/13 21:41:54 | 000,524,288 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\swprv.dll -- (swprv)
SRV:
64bit: - [2009/07/13 21:41:26 | 000,067,584 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\mmcss.dll -- (MMCSS)
SRV:
64bit: - [2009/07/13 21:41:52 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netman.dll -- (Netman)
SRV:
64bit: - [2009/07/13 21:41:52 | 000,459,776 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofm.dll -- (netprofm)
SRV - [2009/07/13 21:16:03 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\netprofm.dll -- (netprofm)
SRV:
64bit: - [2012/10/03 13:44:21 | 000,303,104 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nlasvc.dll -- (NlaSvc)
SRV:
64bit: - [2009/07/13 21:41:53 | 000,025,600 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nsisvc.dll -- (nsi)
SRV:
64bit: - [2011/05/24 07:42:55 | 000,404,480 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\umpnpmgr.dll -- (PlugPlay)
SRV:
64bit: - [2012/02/11 02:36:02 | 000,559,104 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\spoolsv.exe -- (Spooler)
SRV:
64bit: - [2011/11/17 02:33:55 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\lsass.exe -- (ProtectedStorage)
No service found with a name of EMDMgmt
SRV:
64bit: - [2009/07/13 21:41:53 | 000,099,328 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasauto.dll -- (RasAuto)
SRV:
64bit: - [2010/11/20 09:27:24 | 000,344,064 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasmans.dll -- (RasMan)
SRV:
64bit: - [2010/11/20 09:27:24 | 000,512,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (RpcSs)
SRV:
64bit: - [2010/11/20 09:27:25 | 000,030,720 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\seclogon.dll -- (seclogon)
SRV:
64bit: - [2011/11/17 02:33:55 | 000,031,232 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsass.exe -- (SamSs)
No service found with a name of wscsvc
SRV:
64bit: - [2010/11/20 09:27:26 | 000,236,032 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\srvsvc.dll -- (LanmanServer)
SRV:
64bit: - [2010/11/20 09:27:25 | 000,370,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\shsvcs.dll -- (ShellHWDetection)
SRV - [2010/11/20 08:21:19 | 000,328,192 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\shsvcs.dll -- (ShellHWDetection)
No service found with a name of slsvc
SRV:
64bit: - [2010/11/20 09:27:25 | 001,110,016 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\schedsvc.dll -- (Schedule)
SRV:
64bit: - [2010/11/20 09:27:26 | 000,316,928 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\tapisrv.dll -- (TapiSrv)
SRV - [2010/11/20 08:21:28 | 000,242,176 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\tapisrv.dll -- (TapiSrv)
SRV:
64bit: - [2009/07/13 21:41:55 | 000,044,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\themeservice.dll -- (Themes)
SRV:
64bit: - [2012/05/01 01:40:20 | 000,209,920 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\profsvc.dll -- (ProfSvc)
SRV:
64bit: - [2010/11/20 09:25:27 | 001,600,512 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\VSSVC.exe -- (VSS)
SRV:
64bit: - [2010/11/20 09:25:42 | 000,679,424 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\audiosrv.dll -- (AudioSrv)
SRV:
64bit: - [2010/11/20 09:25:42 | 000,679,424 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\audiosrv.dll -- (AudioEndpointBuilder)
SRV:
64bit: - [2010/11/20 09:27:25 | 000,170,496 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\sdrsvc.dll -- (SDRSVC)
No service found with a name of WinDefend
SRV:
64bit: - [2010/11/20 09:27:28 | 001,646,080 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wevtsvc.dll -- (eventlog)
No service found with a name of MpsSvc
SRV:
64bit: - [2010/11/20 09:27:28 | 000,580,096 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wiaservc.dll -- (stisvc)
SRV:
64bit: - [2010/11/20 09:24:58 | 000,128,000 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\msiexec.exe -- (msiserver)
SRV - [2010/11/20 08:17:22 | 000,073,216 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWow64\msiexec.exe -- (msiserver)
SRV:
64bit: - [2009/07/13 21:41:56 | 000,242,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wbem\WMIsvc.dll -- (Winmgmt)
No service found with a name of wuauserv
SRV:
64bit: - [2010/11/20 09:26:07 | 000,252,416 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\dot3svc.dll -- (dot3svc)
SRV:
64bit: - [2009/07/13 21:41:56 | 000,886,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wlansvc.dll -- (Wlansvc)
SRV:
64bit: - [2010/11/20 09:27:28 | 000,118,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wkssvc.dll -- (LanmanWorkstation)
========== Alternate Data Streams ========== @Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:8CE646EE
@Alternate Data Stream - 128 bytes -> C:\Windows\SysWow64\zlib.dll:SummaryInformation
@Alternate Data Stream - 128 bytes -> C:\Windows\SysWow64\zlib.dll:DocumentSummaryInformation
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:661DFA1C
@Alternate Data Stream - 110 bytes -> C:\ProgramData\TEMP:888AFB86
< End of report >