TechSpot

Am I clean?

By phiya
Sep 28, 2012
  1. Malwarebytes Anti-Malware 1.65.0.1400
    www.malwarebytes.org
    Database version: v2012.09.28.01
    Windows 7 x64 NTFS
    Internet Explorer 9.0.8112.16421
    Ricky :: RICKY-PC [administrator]
    9/27/2012 10:37:14 PM
    mbam-log-2012-09-27 (22-37-14).txt
    Scan type: Quick scan
    Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
    Scan options disabled: P2P
    Objects scanned: 205242
    Time elapsed: 2 minute(s), 5 second(s)
    Memory Processes Detected: 0
    (No malicious items detected)
    Memory Modules Detected: 0
    (No malicious items detected)
    Registry Keys Detected: 0
    (No malicious items detected)
    Registry Values Detected: 0
    (No malicious items detected)
    Registry Data Items Detected: 0
    (No malicious items detected)
    Folders Detected: 0
    (No malicious items detected)
    Files Detected: 1
    C:\Users\Ricky\Downloads\ca_setup.exe (PUP.PasswordTool) -> Quarantined and deleted successfully.
    (end)
    GMER 1.0.15.15641 - http://www.gmer.net
    Rootkit scan 2012-09-27 23:09:25
    Windows 6.1.7600
    Running: n6jy1c2u.exe
    ---- Files - GMER 1.0.15 ----
    File C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS00B42.log 1048576 bytes
    ---- EOF - GMER 1.0.15 ----
    .
    DDS (Ver_2011-08-26.01) - NTFSAMD64
    Internet Explorer: 9.0.8112.16421
    Run by Ricky at 23:10:23 on 2012-09-27
    Microsoft Windows 7 Professional 6.1.7600.0.1252.1.1033.18.8187.6018 [GMT -7:00]
    .
    SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    .
    ============== Running Processes ===============
    .
    C:\Windows\system32\wininit.exe
    C:\Windows\system32\lsm.exe
    C:\Windows\system32\svchost.exe -k DcomLaunch
    C:\Program Files (x86)\Common Files\Comodo\launcher_service.exe
    C:\Windows\system32\svchost.exe -k RPCSS
    C:\Windows\system32\atiesrxx.exe
    C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
    C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
    C:\Windows\system32\svchost.exe -k netsvcs
    C:\Windows\system32\svchost.exe -k LocalService
    C:\Windows\system32\atieclxx.exe
    C:\Windows\system32\WUDFHost.exe
    C:\Windows\system32\WUDFHost.exe
    C:\Windows\system32\svchost.exe -k NetworkService
    C:\Windows\System32\spoolsv.exe
    C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
    C:\Windows\system32\taskhost.exe
    C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Program Files (x86)\Dyyno\Dyyno Broadcaster\launcherd.exe
    C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
    C:\Windows\SysWOW64\svchost.exe -k hpdevmgmt
    C:\Program Files (x86)\Common Files\Motive\McciCMService.exe
    C:\Windows\System32\svchost.exe -k HPZ12
    C:\Windows\System32\svchost.exe -k HPZ12
    C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
    C:\Windows\system32\svchost.exe -k imgsvc
    C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
    C:\Program Files (x86)\Common Files\Comodo\tvnserver.exe
    C:\Windows\System32\svchost.exe -k secsvcs
    C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
    C:\Windows\system32\svchost.exe -k HPService
    C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
    C:\Program Files (x86)\Dyyno\Dyyno Broadcaster\dyyno_launcher.exe
    C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe
    C:\Users\Ricky\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
    C:\Program Files (x86)\McAfee Security Scan\2.1.121\SSScheduler.exe
    C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe
    C:\Windows\system32\conhost.exe
    C:\Users\Ricky\AppData\Roaming\Dropbox\bin\Dropbox.exe
    C:\Program Files (x86)\HP\HP Software Update\hpwuSchd2.exe
    C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
    C:\Program Files (x86)\iTunes\iTunesHelper.exe
    C:\Program Files (x86)\Common Files\Comodo\tvnserver.exe
    C:\Program Files (x86)\COMODO\GeekBuddy\unit_manager.exe
    C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Windows\system32\SearchIndexer.exe
    C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
    C:\Program Files (x86)\COMODO\GeekBuddy\unit.exe
    C:\Windows\system32\taskhost.exe
    C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe
    C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
    C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
    C:\Program Files\Windows Media Player\wmpnetwk.exe
    C:\Program Files (x86)\Windows Media Player\wmplayer.exe
    C:\Windows\System32\svchost.exe -k LocalServicePeerNet
    C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
    C:\Windows\system32\wuauclt.exe
    C:\Windows\system32\consent.exe
    C:\Users\Ricky\AppData\Local\Google\Chrome\Application\chrome.exe
    C:\Users\Ricky\AppData\Local\Google\Chrome\Application\chrome.exe
    C:\Users\Ricky\AppData\Local\Google\Chrome\Application\chrome.exe
    C:\Users\Ricky\AppData\Local\Google\Chrome\Application\chrome.exe
    C:\Users\Ricky\AppData\Local\Google\Chrome\Application\chrome.exe
    C:\Windows\system32\SearchProtocolHost.exe
    C:\Windows\system32\SearchFilterHost.exe
    C:\Windows\system32\DllHost.exe
    C:\Windows\system32\DllHost.exe
    C:\Windows\SysWOW64\cmd.exe
    C:\Windows\system32\conhost.exe
    C:\Windows\SysWOW64\cscript.exe
    C:\Windows\system32\wbem\wmiprvse.exe
    .
    ============== Pseudo HJT Report ===============
    .
    uInternet Settings,ProxyOverride = *.local
    BHO: {02478D38-C3F9-4efb-9B51-7695ECA05670} - No File
    BHO: HP Print Enhancer: {0347c33e-8762-4905-bf09-768834316c61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
    BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    BHO: PodcastBHO Class: {65134fdf-f8a5-4b3d-91d9-cdf273cfd578} - C:\Program Files (x86)\Common Files\doubleTwist\IEPodcastPlugin.dll
    BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
    BHO: Java(tm) Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
    BHO: Skype Browser Helper: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
    BHO: HP Smart BHO Class: {ffffffff-cf4e-4f2b-bdc2-0e72e116a856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
    EB: HP Smart Web Printing: {555d4d79-4bd2-4094-a395-cfc534424a05} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_bho.dll
    uRun: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
    uRun: [Dyyno Launcher] "C:\Program Files (x86)\Dyyno\Dyyno Broadcaster\dyyno_launcher.exe" 30100 30101 30102 30103 30104
    uRun: [MobileDocuments] C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe
    uRun: [Dxtory Update Checker 2.0] C:\Program Files (x86)\Dxtory Software\Dxtory2.0\UpdateChecker.exe
    uRun: [Spotify Web Helper] "C:\Users\Ricky\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
    uRun: [Google Update] "C:\Users\Ricky\AppData\Local\Google\Update\GoogleUpdate.exe" /c
    mRun: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
    mRun: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
    mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
    mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    mRun: [ATICustomerCare] "C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe"
    mRun: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
    mRun: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
    mRun: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
    mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
    mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
    mRun: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml
    mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
    mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
    mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
    mRun: [tvncontrol] "C:\Program Files (x86)\Common Files\Comodo\tvnserver.exe" -controlservice -slave
    StartupFolder: C:\Users\Ricky\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\Dropbox.lnk - C:\Users\Ricky\AppData\Roaming\Dropbox\bin\Dropbox.exe
    StartupFolder: C:\Users\Ricky\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\PDANET~1.LNK - C:\Program Files (x86)\PdaNet for Android\PdaNetPC.exe
    StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\HPDIGI~1.LNK - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
    StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\MCAFEE~1.LNK - C:\Program Files (x86)\McAfee Security Scan\2.1.121\SSScheduler.exe
    StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\STARTG~1.LNK - C:\Program Files (x86)\COMODO\GeekBuddy\launcher.exe
    mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
    mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
    mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
    IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
    IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
    IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
    IE: {DDE87865-83C5-48c4-8357-2F5B1AA84522} - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab
    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab
    TCP: DhcpNameServer = 192.168.1.1
    TCP: Interfaces\{191F44B1-EACC-48BD-84A8-0464D388DAEE} : NameServer = 204.101.251.1,205.151.222.251
    TCP: Interfaces\{C90CA946-240A-4440-949B-A3CEA0882530} : DhcpNameServer = 192.168.1.1
    Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
    Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
    SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
    BHO-X64: {02478D38-C3F9-4efb-9B51-7695ECA05670} - No File
    BHO-X64: 0x1 - No File
    BHO-X64: HP Print Enhancer: {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
    BHO-X64: HP Print Enhancer - No File
    BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    BHO-X64: AcroIEHelperStub - No File
    BHO-X64: PodcastBHO Class: {65134FDF-F8A5-4B3D-91D9-CDF273CFD578} - C:\Program Files (x86)\Common Files\doubleTwist\IEPodcastPlugin.dll
    BHO-X64: dTPodcastBHO - No File
    BHO-X64: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
    BHO-X64: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
    BHO-X64: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    BHO-X64: SkypeIEPluginBHO - No File
    BHO-X64: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
    BHO-X64: HP Smart BHO Class: {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
    BHO-X64: HP Smart BHO Class - No File
    EB-X64: {555D4D79-4BD2-4094-A395-CFC534424A05} - No File
    mRun-x64: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
    mRun-x64: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
    mRun-x64: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
    mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    mRun-x64: [ATICustomerCare] "C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe"
    mRun-x64: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
    mRun-x64: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
    mRun-x64: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
    mRun-x64: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
    mRun-x64: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
    mRun-x64: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml
    mRun-x64: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
    mRun-x64: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
    mRun-x64: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
    mRun-x64: [tvncontrol] "C:\Program Files (x86)\Common Files\Comodo\tvnserver.exe" -controlservice -slave
    IE-X64: {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Users\Ricky\Desktop\PartyPoker.lnk
    SEH-X64: Groove GFS Stub Execution Hook: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
    .
    ============= SERVICES / DRIVERS ===============
    .
    R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\system32\atiesrxx.exe --> C:\Windows\system32\atiesrxx.exe [?]
    R2 CLPSLauncher;COMODO LPS Launcher;C:\Program Files (x86)\Common Files\Comodo\launcher_service.exe [2012-8-23 70352]
    R2 Dyyno Launcher;Dyyno Service;C:\Program Files (x86)\Dyyno\Dyyno Broadcaster\launcherd.exe [2011-7-18 415072]
    R2 iPodDrv;iPodDrv;\??\C:\Windows\system32\drivers\iPodDrv.sys --> C:\Windows\system32\drivers\iPodDrv.sys [?]
    R2 SBSDWSCService;SBSD Security Center Service;C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [2012-7-12 1153368]
    R2 Skype C2C Service;Skype C2C Service;C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-8-13 3064000]
    R2 TeamViewer7;TeamViewer 7;C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe [2012-4-16 2666880]
    R2 tvnserver;TightVNC Server;C:\Program Files (x86)\Common Files\Comodo\tvnserver.exe [2012-1-27 828944]
    R3 amdkmdag;amdkmdag;C:\Windows\system32\DRIVERS\atikmdag.sys --> C:\Windows\system32\DRIVERS\atikmdag.sys [?]
    R3 amdkmdap;amdkmdap;C:\Windows\system32\DRIVERS\atikmpag.sys --> C:\Windows\system32\DRIVERS\atikmpag.sys [?]
    R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;C:\Windows\system32\drivers\AtihdW76.sys --> C:\Windows\system32\drivers\AtihdW76.sys [?]
    R3 LGBusEnum;Logitech GamePanel Virtual Bus Enumerator Driver;C:\Windows\system32\drivers\LGBusEnum.sys --> C:\Windows\system32\drivers\LGBusEnum.sys [?]
    R3 LGVirHid;Logitech Gamepanel Virtual HID Device Driver;C:\Windows\system32\drivers\LGVirHid.sys --> C:\Windows\system32\drivers\LGVirHid.sys [?]
    R3 LVUSBS64;Logitech USB Monitor Filter;C:\Windows\system32\drivers\LVUSBS64.sys --> C:\Windows\system32\drivers\LVUSBS64.sys [?]
    R3 pneteth;PdaNet Broadband;C:\Windows\system32\DRIVERS\pneteth.sys --> C:\Windows\system32\DRIVERS\pneteth.sys [?]
    R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\system32\DRIVERS\Rt64win7.sys --> C:\Windows\system32\DRIVERS\Rt64win7.sys [?]
    S1 CFRMD;CFRMD;C:\Windows\system32\DRIVERS\CFRMD.sys --> C:\Windows\system32\DRIVERS\CFRMD.sys [?]
    S2 CareMon;CareMon;"C:\Program Files (x86)\Wondershare\WinSuite 2012\PcCheck\CareMon.exe" --> C:\Program Files (x86)\Wondershare\WinSuite 2012\PcCheck\CareMon.exe [?]
    S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
    S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
    S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-7-3 160944]
    S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-6-14 250288]
    S3 ESEADriver2;ESEADriver2;C:\Users\Ricky\AppData\Local\Temp\ESEADriver2.sys [2012-9-18 91256]
    S3 Gun;Gun;\??\C:\Windows\system32\Gun64.sys --> C:\Windows\system32\Gun64.sys [?]
    S3 lvpepf64;Volume Adapter;C:\Windows\system32\DRIVERS\lv302a64.sys --> C:\Windows\system32\DRIVERS\lv302a64.sys [?]
    S3 LVRS64;Logitech RightSound Filter Driver;C:\Windows\system32\DRIVERS\lvrs64.sys --> C:\Windows\system32\DRIVERS\lvrs64.sys [?]
    S3 McComponentHostService;McAfee Security Scan Component Host Service;C:\Program Files (x86)\McAfee Security Scan\2.1.121\McCHSvc.exe [2010-9-2 227232]
    S3 MHIKEY10;MHIKEY10;C:\Windows\system32\Drivers\MHIKEY10x64.sys --> C:\Windows\system32\Drivers\MHIKEY10x64.sys [?]
    S3 StorSvc;Storage Service;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-13 20992]
    S3 SwitchBoard;Adobe SwitchBoard;C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-2-19 517096]
    S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\system32\Drivers\usbaapl64.sys --> C:\Windows\system32\Drivers\usbaapl64.sys [?]
    S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
    .
    =============== Created Last 30 ================
    .
    2012-09-28 05:32:59--------d-----w-C:\Program Files (x86)\COMODO
    2012-09-28 05:32:59--------d-----w-C:\Program Files (x86)\Common Files\Comodo
    2012-09-28 05:31:30--------d-----w-C:\ProgramData\CPA_VA
    2012-09-28 05:26:48--------d-----w-C:\Users\Ricky\AppData\Roaming\Malwarebytes
    2012-09-28 05:24:53--------d-----w-C:\ProgramData\Malwarebytes
    2012-09-28 05:24:5225928----a-w-C:\Windows\System32\drivers\mbam.sys
    2012-09-28 05:24:52--------d-----w-C:\Program Files (x86)\Malwarebytes' Anti-Malware
    2012-09-28 05:22:37--------d-----w-C:\ProgramData\Comodo
    2012-09-28 05:22:29--------d-----w-C:\Program Files\COMODO
    2012-09-28 05:22:261060864----a-w-C:\Windows\SysWow64\mfc71.dll
    2012-09-26 01:45:279308616----a-w-C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B6C4ECBA-50F5-4A88-BDDC-9E9A31858A71}\mpengine.dll
    2012-09-22 20:01:51--------d-----w-C:\Program Files (x86)\AMD APP
    2012-09-19 01:36:27--------d-----w-C:\Users\Ricky\AppData\Roaming\Mumble
    2012-09-19 01:36:07--------d-----w-C:\Program Files (x86)\Mumble
    2012-09-19 01:19:41--------d-----w-C:\Program Files\ESEA
    2012-09-19 00:57:00--------d-----w-C:\Users\Ricky\AppData\Roaming\Mozilla-Cache
    2012-09-19 00:56:49--------d-----w-C:\Users\Ricky\AppData\Roaming\Party
    2012-09-19 00:55:58--------d-----w-C:\Programs
    2012-09-15 15:41:31--------d-----w-C:\$RECYCLE.BIN
    2012-09-15 15:30:45518144----a-w-C:\Windows\SWREG.exe
    2012-09-15 15:30:45256000----a-w-C:\Windows\PEV.exe
    2012-09-15 15:30:45208896----a-w-C:\Windows\MBR.exe
    2012-09-15 15:30:4498816----a-w-C:\Windows\sed.exe
    2012-09-12 04:22:24574464----a-w-C:\Windows\System32\d3d10level9.dll
    2012-09-12 04:22:23490496----a-w-C:\Windows\SysWow64\d3d10level9.dll
    .
    ==================== Find3M ====================
    .
    2012-09-21 06:37:0973136----a-w-C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
    2012-09-21 06:37:09696240----a-w-C:\Windows\SysWow64\FlashPlayerApp.exe
    2012-08-24 10:31:322312704----a-w-C:\Windows\System32\jscript9.dll
    2012-08-24 10:21:181392128----a-w-C:\Windows\System32\wininet.dll
    2012-08-24 10:20:111494528----a-w-C:\Windows\System32\inetcpl.cpl
    2012-08-24 10:14:45173056----a-w-C:\Windows\System32\ieUnatt.exe
    2012-08-24 10:13:29599040----a-w-C:\Windows\System32\vbscript.dll
    2012-08-24 10:09:422382848----a-w-C:\Windows\System32\mshtml.tlb
    2012-08-24 06:59:171800704----a-w-C:\Windows\SysWow64\jscript9.dll
    2012-08-24 06:51:271129472----a-w-C:\Windows\SysWow64\wininet.dll
    2012-08-24 06:51:021427968----a-w-C:\Windows\SysWow64\inetcpl.cpl
    2012-08-24 06:47:26142848----a-w-C:\Windows\SysWow64\ieUnatt.exe
    2012-08-24 06:47:12420864----a-w-C:\Windows\SysWow64\vbscript.dll
    2012-08-24 06:43:582382848----a-w-C:\Windows\SysWow64\mshtml.tlb
    2012-08-03 17:23:2835064----a-w-C:\Windows\System32\drivers\CFRMD.sys
    2012-08-03 17:23:2835064----a-w-C:\Windows\inf\lps-ca\cfrmd.sys
    2012-07-28 05:47:40187392----a-w-C:\Windows\System32\clinfo.exe
    2012-07-28 05:47:2475776----a-w-C:\Windows\System32\OpenVideo64.dll
    2012-07-28 05:47:1665024----a-w-C:\Windows\SysWow64\OpenVideo.dll
    2012-07-28 05:47:1063488----a-w-C:\Windows\System32\OVDecode64.dll
    2012-07-28 05:47:0656320----a-w-C:\Windows\SysWow64\OVDecode.dll
    2012-07-28 05:46:5616464896----a-w-C:\Windows\System32\amdocl64.dll
    2012-07-28 05:46:0613013504----a-w-C:\Windows\SysWow64\amdocl.dll
    2012-07-28 04:09:205538984----a-w-C:\Windows\SysWow64\atiumdag.dll
    2012-07-28 04:07:4410278912----a-w-C:\Windows\System32\drivers\atikmdag.sys
    2012-07-28 03:43:1270144----a-w-C:\Windows\System32\coinst_8.982.dll
    2012-07-28 03:19:3424935424----a-w-C:\Windows\System32\atio6axx.dll
    2012-07-28 02:50:1020546560----a-w-C:\Windows\SysWow64\atioglxx.dll
    2012-07-28 02:15:50163840----a-w-C:\Windows\System32\atiapfxx.exe
    2012-07-28 02:15:42931328----a-w-C:\Windows\SysWow64\aticfx32.dll
    2012-07-28 02:13:561100288----a-w-C:\Windows\System32\aticfx64.dll
    2012-07-28 02:10:40442368----a-w-C:\Windows\System32\ATIDEMGX.dll
    2012-07-28 02:10:34534528----a-w-C:\Windows\System32\atieclxx.exe
    2012-07-28 02:09:44239616----a-w-C:\Windows\System32\atiesrxx.exe
    2012-07-28 02:08:20120320----a-w-C:\Windows\System32\atitmm64.dll
    2012-07-28 02:08:0421504----a-w-C:\Windows\System32\atimuixx.dll
    2012-07-28 02:07:5859392----a-w-C:\Windows\System32\atiedu64.dll
    2012-07-28 02:07:5243520----a-w-C:\Windows\SysWow64\ati2edxx.dll
    2012-07-28 02:07:106430208----a-w-C:\Windows\SysWow64\atidxx32.dll
    2012-07-28 01:51:127052288----a-w-C:\Windows\System32\atidxx64.dll
    2012-07-28 01:41:324266496----a-w-C:\Windows\System32\atiumd6a.dll
    2012-07-28 01:35:1051200----a-w-C:\Windows\System32\aticalrt64.dll
    2012-07-28 01:35:0846080----a-w-C:\Windows\SysWow64\aticalrt.dll
    2012-07-28 01:35:0244544----a-w-C:\Windows\System32\aticalcl64.dll
    2012-07-28 01:35:0044032----a-w-C:\Windows\SysWow64\aticalcl.dll
    2012-07-28 01:34:4816034304----a-w-C:\Windows\System32\aticaldd64.dll
    2012-07-28 01:32:324751872----a-w-C:\Windows\SysWow64\atiumdva.dll
    2012-07-28 01:30:1013605888----a-w-C:\Windows\SysWow64\aticaldd.dll
    2012-07-28 01:25:526676480----a-w-C:\Windows\System32\atiumd64.dll
    2012-07-28 01:15:32540160----a-w-C:\Windows\System32\atiadlxx.dll
    2012-07-28 01:15:22368640----a-w-C:\Windows\SysWow64\atiadlxy.dll
    2012-07-28 01:15:1217920----a-w-C:\Windows\System32\atig6pxx.dll
    2012-07-28 01:15:0814848----a-w-C:\Windows\SysWow64\atiglpxx.dll
    2012-07-28 01:15:0814848----a-w-C:\Windows\System32\atiglpxx.dll
    2012-07-28 01:15:0441984----a-w-C:\Windows\System32\atig6txx.dll
    2012-07-28 01:14:5633280----a-w-C:\Windows\SysWow64\atigktxx.dll
    2012-07-28 01:14:46368640----a-w-C:\Windows\System32\drivers\atikmpag.sys
    2012-07-28 01:13:54129536----a-w-C:\Windows\System32\atiuxp64.dll
    2012-07-28 01:13:48109568----a-w-C:\Windows\SysWow64\atiuxpag.dll
    2012-07-28 01:13:40103936----a-w-C:\Windows\System32\atiu9p64.dll
    2012-07-28 01:13:3283456----a-w-C:\Windows\SysWow64\atiu9pag.dll
    2012-07-28 01:12:5453248----a-w-C:\Windows\System32\drivers\ati2erec.dll
    2012-07-28 01:08:4256320----a-w-C:\Windows\System32\atimpc64.dll
    2012-07-28 01:08:4256320----a-w-C:\Windows\System32\amdpcom64.dll
    2012-07-28 01:08:3656832----a-w-C:\Windows\SysWow64\atimpc32.dll
    2012-07-28 01:08:3656832----a-w-C:\Windows\SysWow64\amdpcom32.dll
    2012-07-18 17:31:123146752----a-w-C:\Windows\System32\win32k.sys
    2012-07-04 22:01:3858880----a-w-C:\Windows\System32\browcli.dll
    2012-07-04 22:01:38136704----a-w-C:\Windows\System32\browser.dll
    2012-07-04 21:23:5541472----a-w-C:\Windows\SysWow64\browcli.dll
    .
    ============= FINISH: 23:10:37.98 ===============
     
  2. Jay Pfoutz

    Jay Pfoutz Malware Helper Posts: 4,282   +49

    Hello, and welcome back to TechSpot.


    [​IMG] Please see here for the board rules and other FAQ.

    Please feel free to introduce yourself, after you follow the steps below to get started.

    Information
    • From this point on, please do not make any more changes to your computer; such as install/uninstall programs, use special fix tools, delete files, edit the registry, etc. - unless advised by a malware removal helper.
    • Please do not ask for help elsewhere (in this site or other sites). Doing so can result in system changes, which may not show up in the logs you post.
    • If you have already asked for help somewhere, please post the link to the topic you were helped.
    • We try our best to reply quickly, but for any reason we do not reply in two days, please reply to this topic with the word BUMP!
    • Lastly, keep in mind that we are volunteers, so you do not have to pay for malware removal. Persist in this topic until its close, and your computer is declared clean.

    Also, include this scan:

    Download AdwCleaner by Xplode onto your Desktop.
    • Double click on AdwCleaner.exe to run the tool.
    • Click on Delete.
    • A logfile will automatically open after the scan has finished.
    • Please post the content of that logfile in your reply.
    • You can find the logfile at C:\AdwCleaner[Rn].txt as well - n is the order number.
     
  3. phiya

    phiya TS Rookie Topic Starter

    # AdwCleaner v2.003 - Logfile created 09/28/2012 at 22:34:40
    # Updated 23/09/2012 by Xplode
    # Operating system : Windows 7 Professional (64 bits)
    # User : Ricky - RICKY-PC
    # Boot Mode : Normal
    # Running from : C:\Users\Ricky\Downloads\adwcleaner.exe
    # Option [Search]


    ***** [Services] *****


    ***** [Files / Folders] *****

    Folder Found : C:\Program Files (x86)\Conduit
    Folder Found : C:\Program Files (x86)\Ilivid
    Folder Found : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ilivid
    Folder Found : C:\Users\Ricky\AppData\Local\Conduit
    Folder Found : C:\Users\Ricky\AppData\Local\Ilivid Player
    Folder Found : C:\Users\Ricky\AppData\LocalLow\Conduit

    ***** [Registry] *****

    Key Found : HKCU\Software\Conduit
    Key Found : HKCU\Software\ilivid
    Key Found : HKCU\Software\Softonic
    Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT2504091
    Key Found : HKLM\Software\Conduit
    Key Found : HKLM\Software\ilivid
    Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32
    Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCS
    Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ilivid

    ***** [Internet Browsers] *****

    -\\ Internet Explorer v9.0.8112.16421

    [OK] Registry is clean.

    -\\ Google Chrome v22.0.1229.79

    File : C:\Users\Ricky\AppData\Local\Google\Chrome\User Data\Default\Preferences

    [OK] File is clean.

    *************************

    AdwCleaner[R1].txt - [1451 octets] - [28/09/2012 22:34:40]

    ########## EOF - C:\AdwCleaner[R1].txt - [1511 octets] ##########
     
  4. phiya

    phiya TS Rookie Topic Starter

    # AdwCleaner v2.003 - Logfile created 09/28/2012 at 22:36:59
    # Updated 23/09/2012 by Xplode
    # Operating system : Windows 7 Professional (64 bits)
    # User : Ricky - RICKY-PC
    # Boot Mode : Normal
    # Running from : C:\Users\Ricky\Downloads\adwcleaner.exe
    # Option [Delete]


    ***** [Services] *****


    ***** [Files / Folders] *****

    Folder Deleted : C:\Program Files (x86)\Conduit
    Folder Deleted : C:\Program Files (x86)\Ilivid
    Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ilivid
    Folder Deleted : C:\Users\Ricky\AppData\Local\Conduit
    Folder Deleted : C:\Users\Ricky\AppData\Local\Ilivid Player
    Folder Deleted : C:\Users\Ricky\AppData\LocalLow\Conduit

    ***** [Registry] *****

    Key Deleted : HKCU\Software\Conduit
    Key Deleted : HKCU\Software\ilivid
    Key Deleted : HKCU\Software\Softonic
    Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2504091
    Key Deleted : HKLM\Software\Conduit
    Key Deleted : HKLM\Software\ilivid
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32
    Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCS
    Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ilivid

    ***** [Internet Browsers] *****

    -\\ Internet Explorer v9.0.8112.16421

    Restored : [HKCU\Software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes - DefaultScope]
    Restored : [HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes - DefaultScope]
    Restored : [HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes - DefaultScope]
    Restored : [HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes - DefaultScope]

    -\\ Google Chrome v22.0.1229.79

    File : C:\Users\Ricky\AppData\Local\Google\Chrome\User Data\Default\Preferences

    [OK] File is clean.

    *************************

    AdwCleaner[R1].txt - [1580 octets] - [28/09/2012 22:34:40]
    AdwCleaner[S1].txt - [1888 octets] - [28/09/2012 22:36:59]

    ########## EOF - C:\AdwCleaner[S1].txt - [1948 octets] ##########
     
  5. Jay Pfoutz

    Jay Pfoutz Malware Helper Posts: 4,282   +49

    Please download and run TDSSKiller to your desktop as outlined below:

    Doubleclick on TDSSKiller.exe to run the application, then click on Change parameters.

    For Windows XP, double-click to start.
    For Vista or Windows 7, do a right-click on the program, select Run as Administrator to start, & when prompted Allow to run.

    [​IMG]

    -------------------------

    Check the boxes beside Verify Driver Digital Signature and Detect TDLFS file system, then click OK.

    [​IMG]

    ------------------------

    Click the Start Scan button.

    [​IMG]

    -----------------------

    If a suspicious object is detected, the default action will be Skip, click on Continue
    If you get the warning about a file UnsignedFile.Multi.Generic or LockedFile.Multi.Generic please choose
    Skip and click on Continue


    [​IMG]

    ----------------------

    If malicious objects are found, they will show in the Scan results and offer three (3) options.

    Ensure Cure is selected, then click Continue => Reboot now to finish the cleaning process.
    Note: If Cure is not available, please choose Skip instead, do not choose Delete unless instructed.


    [​IMG]


    --------------------

    A report will be created in your root directory, (usually C:\ folder) in the form of "TDSSKiller.[Version]_[Date]_[Time]_log.txt". Please copy and paste its contents on your next reply.
    Sometimes these logs can be very large, in that case please attach it or zip it up and attach it.

    -------------------

    Here's a summary of what to do if you would like to print it out:

    If a suspicious object is detected, the default action will be Skip, click on Continue
    If you get the warning about a file UnsignedFile.Multi.Generic or LockedFile.Multi.Generic please choose
    Skip and click on Continue

    If malicious objects are found, they will show in the Scan results and offer three (3) options.

    Ensure Cure is selected, then click Continue => Reboot now to finish the cleaning process.
    Note: If Cure is not available, please choose Skip instead, do not choose Delete unless instructed.
     
  6. phiya

    phiya TS Rookie Topic Starter

    13:50:52.0404 7408 TDSS rootkit removing tool 2.8.10.0 Sep 17 2012 19:23:24
    13:50:52.0775 7408 ============================================================
    13:50:52.0775 7408 Current date / time: 2012/09/29 13:50:52.0775
    13:50:52.0775 7408 SystemInfo:
    13:50:52.0775 7408
    13:50:52.0775 7408 OS Version: 6.1.7600 ServicePack: 0.0
    13:50:52.0775 7408 Product type: Workstation
    13:50:52.0775 7408 ComputerName: RICKY-PC
    13:50:52.0776 7408 UserName: Ricky
    13:50:52.0776 7408 Windows directory: C:\Windows
    13:50:52.0776 7408 System windows directory: C:\Windows
    13:50:52.0776 7408 Running under WOW64
    13:50:52.0776 7408 Processor architecture: Intel x64
    13:50:52.0776 7408 Number of processors: 4
    13:50:52.0776 7408 Page size: 0x1000
    13:50:52.0776 7408 Boot type: Normal boot
    13:50:52.0776 7408 ============================================================
    13:50:53.0506 7408 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
    13:50:53.0520 7408 Drive \Device\Harddisk1\DR1 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xFC59, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xF0, Type 'K0', Flags 0x00000040
    13:50:53.0523 7408 ============================================================
    13:50:53.0523 7408 \Device\Harddisk0\DR0:
    13:50:53.0524 7408 MBR partitions:
    13:50:53.0524 7408 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F00, BlocksNum 0x4D9984A
    13:50:53.0524 7408 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x4D9D74A, BlocksNum 0xDC774B6
    13:50:53.0524 7408 \Device\Harddisk1\DR1:
    13:50:53.0524 7408 MBR partitions:
    13:50:53.0524 7408 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
    13:50:53.0524 7408 \Device\Harddisk1\DR1\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x3A353000
    13:50:53.0524 7408 ============================================================
    13:50:53.0534 7408 C: <-> \Device\Harddisk1\DR1\Partition2
    13:50:53.0536 7408 D: <-> \Device\Harddisk0\DR0\Partition2
    13:50:53.0536 7408 E: <-> \Device\Harddisk0\DR0\Partition1
    13:50:53.0536 7408 ============================================================
    13:50:53.0536 7408 Initialize success
    13:50:53.0536 7408 ============================================================
    13:50:54.0982 7520 ============================================================
    13:50:54.0982 7520 Scan started
    13:50:54.0982 7520 Mode: Manual;
    13:50:54.0982 7520 ============================================================
    13:50:55.0893 7520 ================ Scan system memory ========================
    13:50:55.0893 7520 System memory - ok
    13:50:55.0894 7520 ================ Scan services =============================
    13:50:55.0990 7520 [ 1B00662092F9F9568B995902F0CC40D5 ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys
    13:50:55.0992 7520 1394ohci - ok
    13:50:56.0003 7520 [ 6F11E88748CDEFD2F76AA215F97DDFE5 ] ACPI C:\Windows\system32\DRIVERS\ACPI.sys
    13:50:56.0006 7520 ACPI - ok
    13:50:56.0016 7520 [ 63B05A0420CE4BF0E4AF6DCC7CADA254 ] AcpiPmi C:\Windows\system32\DRIVERS\acpipmi.sys
    13:50:56.0016 7520 AcpiPmi - ok
    13:50:56.0144 7520 [ E12CFCF1DDBFC50948A75E6E38793225 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
    13:50:56.0146 7520 AdobeFlashPlayerUpdateSvc - ok
    13:50:56.0178 7520 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
    13:50:56.0183 7520 adp94xx - ok
    13:50:56.0194 7520 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
    13:50:56.0197 7520 adpahci - ok
    13:50:56.0209 7520 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
    13:50:56.0211 7520 adpu320 - ok
    13:50:56.0225 7520 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
    13:50:56.0226 7520 AeLookupSvc - ok
    13:50:56.0273 7520 [ DB9D6C6B2CD95A9CA414D045B627422E ] AFD C:\Windows\system32\drivers\afd.sys
    13:50:56.0278 7520 AFD - ok
    13:50:56.0290 7520 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\DRIVERS\agp440.sys
    13:50:56.0291 7520 agp440 - ok
    13:50:56.0304 7520 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
    13:50:56.0305 7520 ALG - ok
    13:50:56.0317 7520 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\DRIVERS\aliide.sys
    13:50:56.0318 7520 aliide - ok
    13:50:56.0351 7520 [ B3B263B419FC9E7B1D41E61FDAE45BD9 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
    13:50:56.0353 7520 AMD External Events Utility - ok
    13:50:56.0366 7520 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\DRIVERS\amdide.sys
    13:50:56.0367 7520 amdide - ok
    13:50:56.0377 7520 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
    13:50:56.0378 7520 AmdK8 - ok
    13:50:56.0582 7520 [ 9A6E9363F7A5E5A06629D9DDC76EE6B5 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
    13:50:56.0743 7520 amdkmdag - ok
    13:50:56.0759 7520 [ 957A4C13E1981B1701E600EF1E823C68 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
    13:50:56.0761 7520 amdkmdap - ok
    13:50:56.0772 7520 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
    13:50:56.0772 7520 AmdPPM - ok
    13:50:56.0798 7520 [ EC7EBAB00A4D8448BAB68D1E49B4BEB9 ] amdsata C:\Windows\system32\drivers\amdsata.sys
    13:50:56.0799 7520 amdsata - ok
    13:50:56.0815 7520 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
    13:50:56.0817 7520 amdsbs - ok
    13:50:56.0824 7520 [ DB27766102C7BF7E95140A2AA81D042E ] amdxata C:\Windows\system32\drivers\amdxata.sys
    13:50:56.0825 7520 amdxata - ok
    13:50:56.0837 7520 [ 42FD751B27FA0E9C69BB39F39E409594 ] AppID C:\Windows\system32\drivers\appid.sys
    13:50:56.0838 7520 AppID - ok
    13:50:56.0856 7520 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
    13:50:56.0857 7520 AppIDSvc - ok
    13:50:56.0861 7520 [ D065BE66822847B7F127D1F90158376E ] Appinfo C:\Windows\System32\appinfo.dll
    13:50:56.0862 7520 Appinfo - ok
    13:50:56.0966 7520 [ F401929EE0CC92BFE7F15161CA535383 ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    13:50:56.0966 7520 Apple Mobile Device - ok
    13:50:57.0001 7520 [ 4ABA3E75A76195A3E38ED2766C962899 ] AppMgmt C:\Windows\System32\appmgmts.dll
    13:50:57.0003 7520 AppMgmt - ok
    13:50:57.0016 7520 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys
    13:50:57.0017 7520 arc - ok
    13:50:57.0029 7520 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
    13:50:57.0059 7520 arcsas - ok
    13:50:57.0088 7520 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
    13:50:57.0089 7520 AsyncMac - ok
    13:50:57.0124 7520 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\DRIVERS\atapi.sys
    13:50:57.0124 7520 atapi - ok
    13:50:57.0230 7520 [ B0790FF0E25B7A2674296052F2162C1A ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW76.sys
    13:50:57.0231 7520 AtiHDAudioService - ok
    13:50:57.0380 7520 [ 9A6E9363F7A5E5A06629D9DDC76EE6B5 ] atikmdag C:\Windows\system32\DRIVERS\atikmdag.sys
    13:50:57.0422 7520 atikmdag - ok
    13:50:57.0442 7520 [ 07721A77180EDD4D39CCB865BF63C7FD ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
    13:50:57.0449 7520 AudioEndpointBuilder - ok
    13:50:57.0458 7520 [ 07721A77180EDD4D39CCB865BF63C7FD ] AudioSrv C:\Windows\System32\Audiosrv.dll
    13:50:57.0461 7520 AudioSrv - ok
    13:50:57.0470 7520 [ B20B5FA5CA050E9926E4D1DB81501B32 ] AxInstSV C:\Windows\System32\AxInstSV.dll
    13:50:57.0472 7520 AxInstSV - ok
    13:50:57.0493 7520 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys
    13:50:57.0497 7520 b06bdrv - ok
    13:50:57.0530 7520 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
    13:50:57.0533 7520 b57nd60a - ok
    13:50:57.0547 7520 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
    13:50:57.0548 7520 BDESVC - ok
    13:50:57.0559 7520 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
    13:50:57.0559 7520 Beep - ok
    13:50:57.0596 7520 [ 4992C609A6315671463E30F6512BC022 ] BFE C:\Windows\System32\bfe.dll
    13:50:57.0603 7520 BFE - ok
    13:50:57.0641 7520 [ 7F0C323FE3DA28AA4AA1BDA3F575707F ] BITS C:\Windows\system32\qmgr.dll
    13:50:57.0651 7520 BITS - ok
    13:50:57.0662 7520 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
    13:50:57.0663 7520 blbdrive - ok
    13:50:57.0732 7520 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
    13:50:57.0734 7520 Bonjour Service - ok
    13:50:57.0758 7520 [ 19D20159708E152267E53B66677A4995 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
    13:50:57.0759 7520 bowser - ok
    13:50:57.0767 7520 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
    13:50:57.0767 7520 BrFiltLo - ok
    13:50:57.0774 7520 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
    13:50:57.0774 7520 BrFiltUp - ok
    13:50:57.0785 7520 [ 5C2F352A4E961D72518261257AAE204B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
    13:50:57.0786 7520 BridgeMP - ok
    13:50:57.0815 7520 [ 6B054C67AAA87843504E8E3C09102009 ] Browser C:\Windows\System32\browser.dll
    13:50:57.0817 7520 Browser - ok
    13:50:57.0829 7520 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
    13:50:57.0832 7520 Brserid - ok
    13:50:57.0842 7520 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
    13:50:57.0842 7520 BrSerWdm - ok
    13:50:57.0850 7520 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
    13:50:57.0850 7520 BrUsbMdm - ok
    13:50:57.0857 7520 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
    13:50:57.0857 7520 BrUsbSer - ok
    13:50:57.0870 7520 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
    13:50:57.0871 7520 BTHMODEM - ok
    13:50:57.0883 7520 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
    13:50:57.0885 7520 bthserv - ok
    13:50:57.0913 7520 CareMon - ok
    13:50:57.0930 7520 catchme - ok
    13:50:57.0946 7520 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
    13:50:57.0946 7520 cdfs - ok
    13:50:57.0972 7520 [ 83D2D75E1EFB81B3450C18131443F7DB ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
    13:50:57.0973 7520 cdrom - ok
    13:50:57.0992 7520 [ 312E2F82AF11E79906898AC3E3D58A1F ] CertPropSvc C:\Windows\System32\certprop.dll
    13:50:57.0994 7520 CertPropSvc - ok
    13:50:58.0033 7520 [ 34B4DB818E86C2822C2AF43108D660F1 ] CFRMD C:\Windows\system32\DRIVERS\CFRMD.sys
    13:50:58.0034 7520 CFRMD - ok
    13:50:58.0048 7520 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys
    13:50:58.0048 7520 circlass - ok
    13:50:58.0062 7520 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
    13:50:58.0066 7520 CLFS - ok
    13:50:58.0113 7520 [ 9A5E6527E49415D6ED1572719AFE2EF0 ] CLPSLauncher C:\Program Files (x86)\Common Files\Comodo\launcher_service.exe
    13:50:58.0113 7520 CLPSLauncher - ok
    13:50:58.0164 7520 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
    13:50:58.0165 7520 clr_optimization_v2.0.50727_32 - ok
    13:50:58.0200 7520 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
    13:50:58.0201 7520 clr_optimization_v2.0.50727_64 - ok
    13:50:58.0248 7520 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
    13:50:58.0248 7520 clr_optimization_v4.0.30319_32 - ok
    13:50:58.0268 7520 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
    13:50:58.0269 7520 clr_optimization_v4.0.30319_64 - ok
    13:50:58.0278 7520 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
    13:50:58.0278 7520 CmBatt - ok
    13:50:58.0286 7520 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\DRIVERS\cmdide.sys
    13:50:58.0286 7520 cmdide - ok
    13:50:58.0325 7520 [ CA7720B73446FDDEC5C69519C1174C98 ] CNG C:\Windows\system32\Drivers\cng.sys
    13:50:58.0329 7520 CNG - ok
    13:50:58.0338 7520 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
    13:50:58.0339 7520 Compbatt - ok
    13:50:58.0358 7520 [ F26B3A86F6FA87CA360B879581AB4123 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
    13:50:58.0359 7520 CompositeBus - ok
    13:50:58.0361 7520 COMSysApp - ok
    13:50:58.0368 7520 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
    13:50:58.0369 7520 crcdisk - ok
    13:50:58.0401 7520 [ F02786B66375292E58C8777082D4396D ] CryptSvc C:\Windows\system32\cryptsvc.dll
    13:50:58.0403 7520 CryptSvc - ok
    13:50:58.0436 7520 [ 4A6173C2279B498CD8F57CAE504564CB ] CSC C:\Windows\system32\drivers\csc.sys
    13:50:58.0442 7520 CSC - ok
    13:50:58.0456 7520 [ 873FBF927C06E5CEE04DEC617502F8FD ] CscService C:\Windows\System32\cscsvc.dll
    13:50:58.0462 7520 CscService - ok
    13:50:58.0495 7520 [ 7266972E86890E2B30C0C322E906B027 ] DcomLaunch C:\Windows\system32\rpcss.dll
    13:50:58.0501 7520 DcomLaunch - ok
    13:50:58.0524 7520 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
    13:50:58.0528 7520 defragsvc - ok
    13:50:58.0554 7520 [ 9C253CE7311CA60FC11C774692A13208 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
    13:50:58.0555 7520 DfsC - ok
    13:50:58.0577 7520 [ CE3B9562D997F69B330D181A8875960F ] Dhcp C:\Windows\system32\dhcpcore.dll
    13:50:58.0580 7520 Dhcp - ok
    13:50:58.0586 7520 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
    13:50:58.0586 7520 discache - ok
    13:50:58.0606 7520 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys
    13:50:58.0606 7520 Disk - ok
    13:50:58.0634 7520 [ 85CF424C74A1D5EC33533E1DBFF9920A ] Dnscache C:\Windows\System32\dnsrslvr.dll
    13:50:58.0637 7520 Dnscache - ok
    13:50:58.0651 7520 [ 14452ACDB09B70964C8C21BF80A13ACB ] dot3svc C:\Windows\System32\dot3svc.dll
    13:50:58.0654 7520 dot3svc - ok
    13:50:58.0695 7520 [ B42ED0320C6E41102FDE0005154849BB ] Dot4 C:\Windows\system32\DRIVERS\Dot4.sys
    13:50:58.0697 7520 Dot4 - ok
    13:50:58.0719 7520 [ 85135AD27E79B689335C08167D917CDE ] Dot4Print C:\Windows\system32\DRIVERS\Dot4Prt.sys
    13:50:58.0720 7520 Dot4Print - ok
    13:50:58.0754 7520 [ FD05A02B0370BC3000F402E543CA5814 ] dot4usb C:\Windows\system32\DRIVERS\dot4usb.sys
    13:50:58.0755 7520 dot4usb - ok
    13:50:58.0781 7520 [ 8C2BA6BEA949EE6E68385F5692BAFB94 ] DPS C:\Windows\system32\dps.dll
    13:50:58.0799 7520 DPS - ok
    13:50:58.0825 7520 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
    13:50:58.0825 7520 drmkaud - ok
    13:50:58.0861 7520 [ 1633B9ABF52784A1331476397A48CBEF ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
    13:50:58.0865 7520 DXGKrnl - ok
    13:50:58.0937 7520 [ 69B09319CB4DFFABC3327349DD736560 ] Dyyno Launcher C:\Program Files (x86)\Dyyno\Dyyno Broadcaster\launcherd.exe
    13:50:58.0939 7520 Dyyno Launcher - ok
    13:50:58.0952 7520 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
    13:50:58.0953 7520 EapHost - ok
    13:50:59.0008 7520 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys
    13:50:59.0054 7520 ebdrv - ok
    13:50:59.0081 7520 [ 156F6159457D0AA7E59B62681B56EB90 ] EFS C:\Windows\System32\lsass.exe
    13:50:59.0082 7520 EFS - ok
    13:50:59.0140 7520 [ 47C071994C3F649F23D9CD075AC9304A ] ehRecvr C:\Windows\ehome\ehRecvr.exe
    13:50:59.0146 7520 ehRecvr - ok
    13:50:59.0168 7520 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
    13:50:59.0169 7520 ehSched - ok
    13:50:59.0193 7520 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
    13:50:59.0201 7520 elxstor - ok
    13:50:59.0215 7520 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\DRIVERS\errdev.sys
    13:50:59.0215 7520 ErrDev - ok
    13:50:59.0318 7520 [ 3A4C143CF035D324B55993070ECA9A31 ] ESEADriver2 C:\Users\Ricky\AppData\Local\Temp\ESEADriver2.sys
    13:50:59.0319 7520 ESEADriver2 - ok
    13:50:59.0349 7520 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
    13:50:59.0355 7520 EventSystem - ok
    13:50:59.0373 7520 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
    13:50:59.0378 7520 exfat - ok
    13:50:59.0396 7520 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
    13:50:59.0400 7520 fastfat - ok
    13:50:59.0433 7520 [ D607B2F1BEE3992AA6C2C92C0A2F0855 ] Fax C:\Windows\system32\fxssvc.exe
    13:50:59.0444 7520 Fax - ok
    13:50:59.0452 7520 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys
    13:50:59.0453 7520 fdc - ok
    13:50:59.0460 7520 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
    13:50:59.0461 7520 fdPHost - ok
    13:50:59.0472 7520 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
    13:50:59.0474 7520 FDResPub - ok
    13:50:59.0489 7520 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
    13:50:59.0490 7520 FileInfo - ok
    13:50:59.0508 7520 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
    13:50:59.0509 7520 Filetrace - ok
    13:50:59.0521 7520 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
    13:50:59.0522 7520 flpydisk - ok
    13:50:59.0548 7520 [ F7866AF72ABBAF84B1FA5AA195378C59 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
    13:50:59.0553 7520 FltMgr - ok
    13:50:59.0606 7520 [ CB5E4B9C319E3C6BB363EB7E58A4A051 ] FontCache C:\Windows\system32\FntCache.dll
    13:50:59.0624 7520 FontCache - ok
    13:50:59.0663 7520 [ 8D89E3131C27FDD6932189CB785E1B7A ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
    13:50:59.0664 7520 FontCache3.0.0.0 - ok
    13:50:59.0679 7520 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
    13:50:59.0680 7520 FsDepends - ok
    13:50:59.0711 7520 [ D3E3F93D67821A2DB2B3D9FAC2DC2064 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
    13:50:59.0711 7520 Fs_Rec - ok
    13:50:59.0730 7520 [ AE87BA80D0EC3B57126ED2CDC15B24ED ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
    13:50:59.0733 7520 fvevol - ok
    13:50:59.0749 7520 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
    13:50:59.0750 7520 gagp30kx - ok
    13:50:59.0791 7520 [ E403AACF8C7BB11375122D2464560311 ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
    13:50:59.0792 7520 GEARAspiWDM - ok
    13:50:59.0818 7520 [ FE5AB4525BC2EC68B9119A6E5D40128B ] gpsvc C:\Windows\System32\gpsvc.dll
    13:50:59.0831 7520 gpsvc - ok
    13:50:59.0879 7520 [ 4F7E0A173348A60E003D3C5F51C5808E ] Gun C:\Windows\system32\Gun64.sys
    13:50:59.0881 7520 Gun - ok
    13:50:59.0893 7520 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
    13:50:59.0894 7520 hcw85cir - ok
    13:50:59.0938 7520 [ 6410F6F415B2A5A9037224C41DA8BF12 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
    13:50:59.0944 7520 HdAudAddService - ok
    13:50:59.0957 7520 [ 0A49913402747A0B67DE940FB42CBDBB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
    13:50:59.0959 7520 HDAudBus - ok
    13:50:59.0974 7520 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
    13:50:59.0975 7520 HidBatt - ok
    13:50:59.0986 7520 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
    13:50:59.0988 7520 HidBth - ok
    13:51:00.0005 7520 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
    13:51:00.0006 7520 HidIr - ok
    13:51:00.0027 7520 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\System32\hidserv.dll
    13:51:00.0029 7520 hidserv - ok
    13:51:00.0058 7520 [ B3BF6B5B50006DEF50B66306D99FCF6F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
    13:51:00.0059 7520 HidUsb - ok
    13:51:00.0082 7520 [ EFA58EDE58DD74388FFD04CB32681518 ] hkmsvc C:\Windows\system32\kmsvc.dll
    13:51:00.0085 7520 hkmsvc - ok
    13:51:00.0098 7520 [ 046B2673767CA626E2CFB7FDF735E9E8 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
    13:51:00.0102 7520 HomeGroupListener - ok
    13:51:00.0135 7520 [ 06A7422224D9865A5613710A089987DF ] HomeGroupProvider C:\Windows\system32\provsvc.dll
    13:51:00.0139 7520 HomeGroupProvider - ok
    13:51:00.0219 7520 [ 0A3C6AA4A9FC38C20BA4EAC2C3351C05 ] hpqcxs08 C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll
    13:51:00.0222 7520 hpqcxs08 - ok
    13:51:00.0253 7520 [ F3F72A2A86C22610BCA5439FA789DD52 ] hpqddsvc C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll
    13:51:00.0255 7520 hpqddsvc - ok
    13:51:00.0264 7520 [ 0886D440058F203EBA0E1825E4355914 ] HpSAMD C:\Windows\system32\DRIVERS\HpSAMD.sys
    13:51:00.0266 7520 HpSAMD - ok
    13:51:00.0294 7520 [ D972F48D0CE396759B788693CD665926 ] HPSLPSVC C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL
    13:51:00.0308 7520 HPSLPSVC - ok
    13:51:00.0336 7520 [ CEE049CAC4EFA7F4E1E4AD014414A5D4 ] HTTP C:\Windows\system32\drivers\HTTP.sys
    13:51:00.0348 7520 HTTP - ok
    13:51:00.0362 7520 [ F17766A19145F111856378DF337A5D79 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
    13:51:00.0362 7520 hwpolicy - ok
    13:51:00.0388 7520 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
    13:51:00.0390 7520 i8042prt - ok
    13:51:00.0405 7520 [ B75E45C564E944A2657167D197AB29DA ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
    13:51:00.0411 7520 iaStorV - ok
    13:51:00.0460 7520 [ 2F2BE70D3E02B6FA877921AB9516D43C ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
    13:51:00.0467 7520 idsvc - ok
    13:51:00.0493 7520 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
    13:51:00.0494 7520 iirsp - ok
    13:51:00.0533 7520 [ C5B4683680DF085B57BC53E5EF34861F ] IKEEXT C:\Windows\System32\ikeext.dll
    13:51:00.0546 7520 IKEEXT - ok
    13:51:00.0558 7520 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\DRIVERS\intelide.sys
    13:51:00.0558 7520 intelide - ok
    13:51:00.0588 7520 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
    13:51:00.0589 7520 intelppm - ok
    13:51:00.0603 7520 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
    13:51:00.0606 7520 IPBusEnum - ok
    13:51:00.0623 7520 [ 722DD294DF62483CECAAE6E094B4D695 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
    13:51:00.0624 7520 IpFilterDriver - ok
    13:51:00.0650 7520 [ F8E058D17363EC580E4B7232778B6CB5 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
    13:51:00.0659 7520 iphlpsvc - ok
    13:51:00.0672 7520 [ E2B4A4494DB7CB9B89B55CA268C337C5 ] IPMIDRV C:\Windows\system32\DRIVERS\IPMIDrv.sys
    13:51:00.0673 7520 IPMIDRV - ok
    13:51:00.0695 7520 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
    13:51:00.0698 7520 IPNAT - ok
    13:51:00.0763 7520 [ A9AB99EE7D39725EAFEC82732D2B3271 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
    13:51:00.0772 7520 iPod Service - ok
    13:51:00.0818 7520 [ 02DEF37AB75E0032C50724646F708DE8 ] iPodDrv C:\Windows\system32\drivers\iPodDrv.sys
    13:51:00.0819 7520 iPodDrv - ok
    13:51:00.0832 7520 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
    13:51:00.0833 7520 IRENUM - ok
    13:51:00.0845 7520 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\DRIVERS\isapnp.sys
    13:51:00.0845 7520 isapnp - ok
    13:51:00.0863 7520 [ FA4D2557DE56D45B0A346F93564BE6E1 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
    13:51:00.0867 7520 iScsiPrt - ok
    13:51:00.0886 7520 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
    13:51:00.0887 7520 kbdclass - ok
    13:51:00.0896 7520 [ 6DEF98F8541E1B5DCEB2C822A11F7323 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
    13:51:00.0897 7520 kbdhid - ok
    13:51:00.0906 7520 [ 156F6159457D0AA7E59B62681B56EB90 ] KeyIso C:\Windows\system32\lsass.exe
    13:51:00.0908 7520 KeyIso - ok
    13:51:00.0938 7520 [ 4F4B5FDE429416877DE7143044582EB5 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
    13:51:00.0940 7520 KSecDD - ok
    13:51:00.0951 7520 [ 6F40465A44ECDC1731BEFAFEC5BDD03C ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
    13:51:00.0953 7520 KSecPkg - ok
    13:51:00.0966 7520 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
    13:51:00.0967 7520 ksthunk - ok
    13:51:00.0989 7520 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
    13:51:00.0997 7520 KtmRm - ok
    13:51:01.0022 7520 [ 81F1D04D4D0E433099365127375FD501 ] LanmanServer C:\Windows\System32\srvsvc.dll
    13:51:01.0028 7520 LanmanServer - ok
    13:51:01.0056 7520 [ 27026EAC8818E8A6C00A1CAD2F11D29A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
    13:51:01.0060 7520 LanmanWorkstation - ok
    13:51:01.0098 7520 [ FA529FB35694C24BF98A9EF67C1CD9D0 ] LGBusEnum C:\Windows\system32\drivers\LGBusEnum.sys
    13:51:01.0098 7520 LGBusEnum - ok
    13:51:01.0112 7520 [ 94B29CE153765E768F004FB3440BE2B0 ] LGVirHid C:\Windows\system32\drivers\LGVirHid.sys
    13:51:01.0112 7520 LGVirHid - ok
    13:51:01.0138 7520 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
    13:51:01.0139 7520 lltdio - ok
    13:51:01.0161 7520 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
    13:51:01.0166 7520 lltdsvc - ok
    13:51:01.0171 7520 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
    13:51:01.0173 7520 lmhosts - ok
    13:51:01.0192 7520 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
    13:51:01.0194 7520 LSI_FC - ok
    13:51:01.0202 7520 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
    13:51:01.0204 7520 LSI_SAS - ok
    13:51:01.0213 7520 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
    13:51:01.0214 7520 LSI_SAS2 - ok
    13:51:01.0230 7520 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
    13:51:01.0232 7520 LSI_SCSI - ok
    13:51:01.0253 7520 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
    13:51:01.0255 7520 luafv - ok
    13:51:01.0290 7520 [ 07389F6925E490D2DB7882110E99921C ] lvpepf64 C:\Windows\system32\DRIVERS\lv302a64.sys
    13:51:01.0291 7520 lvpepf64 - ok
    13:51:01.0318 7520 [ 7F0BA3A6E8996F15693C6B7D81DA049E ] LVRS64 C:\Windows\system32\DRIVERS\lvrs64.sys
    13:51:01.0330 7520 LVRS64 - ok
    13:51:01.0374 7520 [ 5C3FF68267A5D242EE79EE01B993D6CE ] LVUSBS64 C:\Windows\system32\drivers\LVUSBS64.sys
    13:51:01.0375 7520 LVUSBS64 - ok
    13:51:01.0427 7520 [ F8B823414A22DBF3BEC10DCAA5F93CD8 ] McciCMService C:\Program Files (x86)\Common Files\Motive\McciCMService.exe
    13:51:01.0431 7520 McciCMService - ok
    13:51:01.0463 7520 [ F84C8F1000BC11E3B7B23CBD3BAFF111 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
    13:51:01.0466 7520 Mcx2Svc - ok
    13:51:01.0482 7520 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
    13:51:01.0483 7520 megasas - ok
    13:51:01.0502 7520 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
    13:51:01.0506 7520 MegaSR - ok
    13:51:01.0550 7520 [ BA7E071E855D4C502916164A31B05D4D ] MHIKEY10 C:\Windows\system32\Drivers\MHIKEY10x64.sys
    13:51:01.0551 7520 MHIKEY10 - ok
    13:51:01.0614 7520 [ 123271BD5237AB991DC5C21FDF8835EB ] Microsoft Office Groove Audit Service C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe
    13:51:01.0615 7520 Microsoft Office Groove Audit Service - ok
    13:51:01.0644 7520 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
    13:51:01.0646 7520 MMCSS - ok
    13:51:01.0669 7520 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
    13:51:01.0670 7520 Modem - ok
    13:51:01.0686 7520 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
    13:51:01.0687 7520 monitor - ok
    13:51:01.0701 7520 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
    13:51:01.0702 7520 mouclass - ok
    13:51:01.0725 7520 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
    13:51:01.0726 7520 mouhid - ok
    13:51:01.0742 7520 [ 791AF66C4D0E7C90A3646066386FB571 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
    13:51:01.0744 7520 mountmgr - ok
    13:51:01.0758 7520 [ 609D1D87649ECC19796F4D76D4C15CEA ] mpio C:\Windows\system32\DRIVERS\mpio.sys
    13:51:01.0760 7520 mpio - ok
    13:51:01.0776 7520 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
    13:51:01.0777 7520 mpsdrv - ok
    13:51:01.0800 7520 [ AECAB449567D1846DAD63ECE49E893E3 ] MpsSvc C:\Windows\system32\mpssvc.dll
    13:51:01.0814 7520 MpsSvc - ok
    13:51:01.0828 7520 [ 9BD4DCB5412921864A7AACDEDFBD1923 ] MREMP50 C:\PROGRA~2\COMMON~1\Motive\MREMP50.SYS
    13:51:01.0828 7520 MREMP50 - ok
    13:51:01.0840 7520 MREMP50a64 - ok
    13:51:01.0843 7520 MREMPR5 - ok
    13:51:01.0849 7520 MRENDIS5 - ok
    13:51:01.0863 7520 [ 07C02C892E8E1A72D6BF35004F0E9C5E ] MRESP50 C:\PROGRA~2\COMMON~1\Motive\MRESP50.SYS
    13:51:01.0864 7520 MRESP50 - ok
    13:51:01.0867 7520 MRESP50a64 - ok
    13:51:01.0888 7520 [ 30524261BB51D96D6FCBAC20C810183C ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
    13:51:01.0890 7520 MRxDAV - ok
    13:51:01.0924 7520 [ 040D62A9D8AD28922632137ACDD984F2 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
    13:51:01.0926 7520 mrxsmb - ok
    13:51:01.0962 7520 [ F0067552F8F9B33D7C59403AB808A3CB ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
    13:51:01.0966 7520 mrxsmb10 - ok
    13:51:01.0979 7520 [ 3C142D31DE9F2F193218A53FE2632051 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
    13:51:01.0981 7520 mrxsmb20 - ok
    13:51:01.0993 7520 [ 5C37497276E3B3A5488B23A326A754B7 ] msahci C:\Windows\system32\DRIVERS\msahci.sys
    13:51:01.0994 7520 msahci - ok
    13:51:02.0004 7520 [ 8D27B597229AED79430FB9DB3BCBFBD0 ] msdsm C:\Windows\system32\DRIVERS\msdsm.sys
    13:51:02.0007 7520 msdsm - ok
    13:51:02.0021 7520 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
    13:51:02.0024 7520 MSDTC - ok
    13:51:02.0044 7520 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
    13:51:02.0045 7520 Msfs - ok
    13:51:02.0054 7520 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
    13:51:02.0055 7520 mshidkmdf - ok
    13:51:02.0066 7520 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\DRIVERS\msisadrv.sys
    13:51:02.0067 7520 msisadrv - ok
    13:51:02.0089 7520 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
    13:51:02.0092 7520 MSiSCSI - ok
    13:51:02.0096 7520 msiserver - ok
    13:51:02.0110 7520 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
    13:51:02.0110 7520 MSKSSRV - ok
    13:51:02.0129 7520 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
    13:51:02.0130 7520 MSPCLOCK - ok
    13:51:02.0138 7520 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
    13:51:02.0138 7520 MSPQM - ok
    13:51:02.0156 7520 [ 89CB141AA8616D8C6A4610FA26C60964 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
    13:51:02.0161 7520 MsRPC - ok
    13:51:02.0176 7520 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
    13:51:02.0176 7520 mssmbios - ok
    13:51:02.0180 7520 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
    13:51:02.0181 7520 MSTEE - ok
    13:51:02.0191 7520 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
    13:51:02.0192 7520 MTConfig - ok
    13:51:02.0207 7520 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
    13:51:02.0208 7520 Mup - ok
    13:51:02.0300 7520 [ 4987E079A4530FA737A128BE54B63B12 ] napagent C:\Windows\system32\qagentRT.dll
    13:51:02.0309 7520 napagent - ok
    13:51:02.0364 7520 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
    13:51:02.0398 7520 NativeWifiP - ok
    13:51:02.0563 7520 [ CAD515DBD07D082BB317D9928CE8962C ] NDIS C:\Windows\system32\drivers\ndis.sys
    13:51:02.0577 7520 NDIS - ok
    13:51:02.0596 7520 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
    13:51:02.0598 7520 NdisCap - ok
    13:51:02.0618 7520 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
    13:51:02.0619 7520 NdisTapi - ok
    13:51:02.0635 7520 [ F105BA1E22BF1F2EE8F005D4305E4BEC ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
    13:51:02.0636 7520 Ndisuio - ok
    13:51:02.0650 7520 [ 557DFAB9CA1FCB036AC77564C010DAD3 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
     
  7. phiya

    phiya TS Rookie Topic Starter

    13:51:02.0653 7520 NdisWan - ok
    13:51:02.0666 7520 [ 659B74FB74B86228D6338D643CD3E3CF ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
    13:51:02.0668 7520 NDProxy - ok
    13:51:02.0708 7520 [ D5AC41AE382738483FAFFBD7E373D49A ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
    13:51:02.0710 7520 Net Driver HPZ12 - ok
    13:51:02.0720 7520 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
    13:51:02.0720 7520 NetBIOS - ok
    13:51:02.0736 7520 [ 9162B273A44AB9DCE5B44362731D062A ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
    13:51:02.0740 7520 NetBT - ok
    13:51:02.0748 7520 [ 156F6159457D0AA7E59B62681B56EB90 ] Netlogon C:\Windows\system32\lsass.exe
    13:51:02.0750 7520 Netlogon - ok
    13:51:02.0781 7520 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
    13:51:02.0789 7520 Netman - ok
    13:51:02.0800 7520 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
    13:51:02.0809 7520 netprofm - ok
    13:51:02.0836 7520 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
    13:51:02.0837 7520 NetTcpPortSharing - ok
    13:51:02.0859 7520 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
    13:51:02.0861 7520 nfrd960 - ok
    13:51:02.0875 7520 [ D9A0CE66046D6EFA0C61BAA885CBA0A8 ] NlaSvc C:\Windows\System32\nlasvc.dll
    13:51:02.0882 7520 NlaSvc - ok
    13:51:02.0929 7520 [ 351533ACC2A069B94E80BBFC177E8FDF ] NPF C:\Windows\system32\drivers\npf.sys
    13:51:02.0929 7520 NPF - ok
    13:51:02.0940 7520 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
    13:51:02.0941 7520 Npfs - ok
    13:51:02.0956 7520 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
    13:51:02.0958 7520 nsi - ok
    13:51:02.0969 7520 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
    13:51:02.0970 7520 nsiproxy - ok
    13:51:03.0035 7520 [ 378E0E0DFEA67D98AE6EA53ADBBD76BC ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
    13:51:03.0066 7520 Ntfs - ok
    13:51:03.0090 7520 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
    13:51:03.0091 7520 Null - ok
    13:51:03.0132 7520 [ A4D9C9A608A97F59307C2F2600EDC6A4 ] nvraid C:\Windows\system32\drivers\nvraid.sys
    13:51:03.0135 7520 nvraid - ok
    13:51:03.0147 7520 [ 6C1D5F70E7A6A3FD1C90D840EDC048B9 ] nvstor C:\Windows\system32\drivers\nvstor.sys
    13:51:03.0150 7520 nvstor - ok
    13:51:03.0165 7520 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\DRIVERS\nv_agp.sys
    13:51:03.0167 7520 nv_agp - ok
    13:51:03.0234 7520 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
    13:51:03.0238 7520 odserv - ok
    13:51:03.0254 7520 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys
    13:51:03.0256 7520 ohci1394 - ok
    13:51:03.0281 7520 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
    13:51:03.0283 7520 ose - ok
    13:51:03.0300 7520 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
    13:51:03.0307 7520 p2pimsvc - ok
    13:51:03.0329 7520 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
    13:51:03.0337 7520 p2psvc - ok
    13:51:03.0360 7520 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys
    13:51:03.0362 7520 Parport - ok
    13:51:03.0383 7520 [ 90061B1ACFE8CCAA5345750FFE08D8B8 ] partmgr C:\Windows\system32\drivers\partmgr.sys
    13:51:03.0385 7520 partmgr - ok
    13:51:03.0394 7520 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
    13:51:03.0469 7520 PcaSvc - ok
    13:51:03.0514 7520 [ F36F6504009F2FB0DFD1B17A116AD74B ] pci C:\Windows\system32\DRIVERS\pci.sys
    13:51:03.0529 7520 pci - ok
    13:51:03.0535 7520 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\DRIVERS\pciide.sys
    13:51:03.0536 7520 pciide - ok
    13:51:03.0551 7520 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
    13:51:03.0554 7520 pcmcia - ok
    13:51:03.0569 7520 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
    13:51:03.0570 7520 pcw - ok
    13:51:03.0588 7520 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
    13:51:03.0599 7520 PEAUTH - ok
    13:51:03.0639 7520 [ B9B0A4299DD2D76A4243F75FD54DC680 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
    13:51:03.0654 7520 PeerDistSvc - ok
    13:51:03.0721 7520 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
    13:51:03.0723 7520 PerfHost - ok
    13:51:03.0813 7520 [ 087A343DFC337F37723DD7912DE6B6CD ] PID_PEPI C:\Windows\system32\DRIVERS\LV302V64.SYS
    13:51:03.0871 7520 PID_PEPI - ok
    13:51:03.0906 7520 [ 557E9A86F65F0DE18C9B6751DFE9D3F1 ] pla C:\Windows\system32\pla.dll
    13:51:03.0922 7520 pla - ok
    13:51:03.0959 7520 [ 98B1721B8718164293B9701B98C52D77 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
    13:51:03.0965 7520 PlugPlay - ok
    13:51:04.0007 7520 [ 37F6046CDC630442D7DC087501FF6FC6 ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
    13:51:04.0009 7520 Pml Driver HPZ12 - ok
    13:51:04.0050 7520 [ A010F13D27C1033A8BE09D5FA9BF348B ] pneteth C:\Windows\system32\DRIVERS\pneteth.sys
    13:51:04.0051 7520 pneteth - ok
    13:51:04.0064 7520 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
    13:51:04.0066 7520 PNRPAutoReg - ok
    13:51:04.0083 7520 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
    13:51:04.0087 7520 PNRPsvc - ok
    13:51:04.0110 7520 [ 166EB40D1F5B47E615DE3D0FFFE5F243 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
    13:51:04.0118 7520 PolicyAgent - ok
    13:51:04.0137 7520 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
    13:51:04.0141 7520 Power - ok
    13:51:04.0172 7520 [ 27CC19E81BA5E3403C48302127BDA717 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
    13:51:04.0174 7520 PptpMiniport - ok
    13:51:04.0188 7520 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys
    13:51:04.0189 7520 Processor - ok
    13:51:04.0227 7520 [ 97293447431311C06703368AD0F6C4BE ] ProfSvc C:\Windows\system32\profsvc.dll
    13:51:04.0232 7520 ProfSvc - ok
    13:51:04.0240 7520 [ 156F6159457D0AA7E59B62681B56EB90 ] ProtectedStorage C:\Windows\system32\lsass.exe
    13:51:04.0241 7520 ProtectedStorage - ok
    13:51:04.0250 7520 [ EE992183BD8EAEFD9973F352E587A299 ] Psched C:\Windows\system32\DRIVERS\pacer.sys
    13:51:04.0252 7520 Psched - ok
    13:51:04.0289 7520 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
    13:51:04.0320 7520 ql2300 - ok
    13:51:04.0337 7520 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
    13:51:04.0339 7520 ql40xx - ok
    13:51:04.0356 7520 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
    13:51:04.0361 7520 QWAVE - ok
    13:51:04.0369 7520 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
    13:51:04.0370 7520 QWAVEdrv - ok
    13:51:04.0378 7520 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
    13:51:04.0379 7520 RasAcd - ok
    13:51:04.0399 7520 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
    13:51:04.0400 7520 RasAgileVpn - ok
    13:51:04.0410 7520 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
    13:51:04.0413 7520 RasAuto - ok
    13:51:04.0424 7520 [ 87A6E852A22991580D6D39ADC4790463 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
    13:51:04.0426 7520 Rasl2tp - ok
    13:51:04.0443 7520 [ 47394ED3D16D053F5906EFE5AB51CC83 ] RasMan C:\Windows\System32\rasmans.dll
    13:51:04.0449 7520 RasMan - ok
    13:51:04.0461 7520 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
    13:51:04.0462 7520 RasPppoe - ok
    13:51:04.0472 7520 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
    13:51:04.0473 7520 RasSstp - ok
    13:51:04.0489 7520 [ 3BAC8142102C15D59A87757C1D41DCE5 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
    13:51:04.0494 7520 rdbss - ok
    13:51:04.0511 7520 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
    13:51:04.0512 7520 rdpbus - ok
    13:51:04.0525 7520 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
    13:51:04.0526 7520 RDPCDD - ok
    13:51:04.0550 7520 [ 9706B84DBABFC4B4CA46C5A82B14DFA3 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
    13:51:04.0553 7520 RDPDR - ok
    13:51:04.0560 7520 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
    13:51:04.0561 7520 RDPENCDD - ok
    13:51:04.0581 7520 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
    13:51:04.0581 7520 RDPREFMP - ok
    13:51:04.0607 7520 [ 447DE7E3DEA39D422C1504F245B668B1 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
    13:51:04.0611 7520 RDPWD - ok
    13:51:04.0619 7520 [ 634B9A2181D98F15941236886164EC8B ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
    13:51:04.0622 7520 rdyboost - ok
    13:51:04.0645 7520 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
    13:51:04.0648 7520 RemoteAccess - ok
    13:51:04.0659 7520 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
    13:51:04.0664 7520 RemoteRegistry - ok
    13:51:04.0711 7520 [ B60F58F175DE20A6739194E85B035178 ] rpcapd C:\Program Files (x86)\WinPcap\rpcapd.exe
    13:51:04.0713 7520 rpcapd - ok
    13:51:04.0730 7520 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
    13:51:04.0734 7520 RpcEptMapper - ok
    13:51:04.0746 7520 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
    13:51:04.0748 7520 RpcLocator - ok
    13:51:04.0772 7520 [ 7266972E86890E2B30C0C322E906B027 ] RpcSs C:\Windows\system32\rpcss.dll
    13:51:04.0777 7520 RpcSs - ok
    13:51:04.0791 7520 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
    13:51:04.0793 7520 rspndr - ok
    13:51:04.0837 7520 [ BAEFEE35D27A5440D35092CE10267BEC ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
    13:51:04.0840 7520 RTL8167 - ok
    13:51:04.0857 7520 [ 88AF6E02AB19DF7FD07ECDF9C91E9AF6 ] s3cap C:\Windows\system32\DRIVERS\vms3cap.sys
    13:51:04.0858 7520 s3cap - ok
    13:51:04.0873 7520 [ 156F6159457D0AA7E59B62681B56EB90 ] SamSs C:\Windows\system32\lsass.exe
    13:51:04.0875 7520 SamSs - ok
    13:51:04.0890 7520 [ E3BBB89983DAF5622C1D50CF49F28227 ] sbp2port C:\Windows\system32\DRIVERS\sbp2port.sys
    13:51:04.0892 7520 sbp2port - ok
    13:51:05.0035 7520 [ 794D4B48DFB6E999537C7C3947863463 ] SBSDWSCService C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
    13:51:05.0045 7520 SBSDWSCService - ok
    13:51:05.0059 7520 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
    13:51:05.0063 7520 SCardSvr - ok
    13:51:05.0099 7520 [ 46942B6980B35FFDA6AFA40A8328938C ] SCDEmu C:\Windows\system32\drivers\SCDEmu.sys
    13:51:05.0099 7520 SCDEmu - ok
    13:51:05.0106 7520 [ C94DA20C7E3BA1DCA269BC8460D98387 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
    13:51:05.0107 7520 scfilter - ok
    13:51:05.0151 7520 [ 624D0F5FF99428BB90A5B8A4123E918E ] Schedule C:\Windows\system32\schedsvc.dll
    13:51:05.0170 7520 Schedule - ok
    13:51:05.0184 7520 [ 312E2F82AF11E79906898AC3E3D58A1F ] SCPolicySvc C:\Windows\System32\certprop.dll
    13:51:05.0184 7520 SCPolicySvc - ok
    13:51:05.0194 7520 [ 765A27C3279CE11D14CB9E4F5869FCA5 ] SDRSVC C:\Windows\System32\SDRSVC.dll
    13:51:05.0197 7520 SDRSVC - ok
    13:51:05.0210 7520 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
    13:51:05.0210 7520 secdrv - ok
    13:51:05.0227 7520 [ 463B386EBC70F98DA5DFF85F7E654346 ] seclogon C:\Windows\system32\seclogon.dll
    13:51:05.0229 7520 seclogon - ok
    13:51:05.0239 7520 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\system32\sens.dll
    13:51:05.0241 7520 SENS - ok
    13:51:05.0248 7520 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
    13:51:05.0250 7520 SensrSvc - ok
    13:51:05.0260 7520 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
    13:51:05.0261 7520 Serenum - ok
    13:51:05.0289 7520 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
    13:51:05.0290 7520 Serial - ok
    13:51:05.0302 7520 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
    13:51:05.0303 7520 sermouse - ok
    13:51:05.0317 7520 [ C3BC61CE47FF6F4E88AB8A3B429A36AF ] SessionEnv C:\Windows\system32\sessenv.dll
    13:51:05.0319 7520 SessionEnv - ok
    13:51:05.0331 7520 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\DRIVERS\sffdisk.sys
    13:51:05.0331 7520 sffdisk - ok
    13:51:05.0341 7520 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\DRIVERS\sffp_mmc.sys
    13:51:05.0341 7520 sffp_mmc - ok
    13:51:05.0348 7520 [ 5588B8C6193EB1522490C122EB94DFFA ] sffp_sd C:\Windows\system32\DRIVERS\sffp_sd.sys
    13:51:05.0349 7520 sffp_sd - ok
    13:51:05.0356 7520 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
    13:51:05.0356 7520 sfloppy - ok
    13:51:05.0396 7520 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
    13:51:05.0404 7520 SharedAccess - ok
    13:51:05.0420 7520 [ 0298AC45D0EFFFB2DB4BAA7DD186E7BF ] ShellHWDetection C:\Windows\System32\shsvcs.dll
    13:51:05.0427 7520 ShellHWDetection - ok
    13:51:05.0442 7520 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
    13:51:05.0443 7520 SiSRaid2 - ok
    13:51:05.0451 7520 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
    13:51:05.0453 7520 SiSRaid4 - ok
    13:51:05.0585 7520 [ 753D254205E0A62100A050BD8B458D06 ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
    13:51:05.0602 7520 Skype C2C Service - ok
    13:51:05.0663 7520 [ EA396139541706B4B433641D62EA53CE ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
    13:51:05.0665 7520 SkypeUpdate - ok
    13:51:05.0679 7520 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
    13:51:05.0681 7520 Smb - ok
    13:51:05.0697 7520 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
    13:51:05.0700 7520 SNMPTRAP - ok
    13:51:05.0704 7520 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
    13:51:05.0704 7520 spldr - ok
    13:51:05.0738 7520 [ 567977DC43CC13C4C35ED7084C0B84D5 ] Spooler C:\Windows\System32\spoolsv.exe
    13:51:05.0748 7520 Spooler - ok
    13:51:05.0819 7520 [ 913D843498553A1BC8F8DBAD6358E49F ] sppsvc C:\Windows\system32\sppsvc.exe
    13:51:05.0890 7520 sppsvc - ok
    13:51:05.0901 7520 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
    13:51:05.0903 7520 sppuinotify - ok
    13:51:05.0940 7520 [ 2408C0366D96BCDF63E8F1C78E4A29C5 ] srv C:\Windows\system32\DRIVERS\srv.sys
    13:51:05.0947 7520 srv - ok
    13:51:05.0961 7520 [ 76548F7B818881B47D8D1AE1BE9C11F8 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
    13:51:05.0966 7520 srv2 - ok
    13:51:05.0994 7520 [ 0AF6E19D39C70844C5CAA8FB0183C36E ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
    13:51:05.0996 7520 srvnet - ok
    13:51:06.0009 7520 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
    13:51:06.0013 7520 SSDPSRV - ok
    13:51:06.0025 7520 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
    13:51:06.0027 7520 SstpSvc - ok
    13:51:06.0038 7520 Steam Client Service - ok
    13:51:06.0053 7520 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
    13:51:06.0054 7520 stexstor - ok
    13:51:06.0082 7520 [ DECACB6921DED1A38642642685D77DAC ] StillCam C:\Windows\system32\DRIVERS\serscan.sys
    13:51:06.0083 7520 StillCam - ok
    13:51:06.0118 7520 [ 52D0E33B681BD0F33FDC08812FEE4F7D ] stisvc C:\Windows\System32\wiaservc.dll
    13:51:06.0129 7520 stisvc - ok
    13:51:06.0158 7520 [ FFD7A6F15B14234B5B0E5D49E7961895 ] storflt C:\Windows\system32\DRIVERS\vmstorfl.sys
    13:51:06.0159 7520 storflt - ok
    13:51:06.0181 7520 [ C40841817EF57D491F22EB103DA587CC ] StorSvc C:\Windows\system32\storsvc.dll
    13:51:06.0184 7520 StorSvc - ok
    13:51:06.0198 7520 [ 8FCCBEFC5C440B3C23454656E551B09A ] storvsc C:\Windows\system32\DRIVERS\storvsc.sys
    13:51:06.0199 7520 storvsc - ok
    13:51:06.0243 7520 supersafer64 - ok
    13:51:06.0249 7520 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
    13:51:06.0250 7520 swenum - ok
    13:51:06.0306 7520 [ F577910A133A592234EBAAD3F3AFA258 ] SwitchBoard C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
    13:51:06.0311 7520 SwitchBoard - ok
    13:51:06.0332 7520 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
    13:51:06.0341 7520 swprv - ok
    13:51:06.0388 7520 [ 3C1284516A62078FB68F768DE4F1A7BE ] SysMain C:\Windows\system32\sysmain.dll
    13:51:06.0439 7520 SysMain - ok
    13:51:06.0454 7520 [ 238935C3CF2854886DC7CBB2A0E2CC66 ] TabletInputService C:\Windows\System32\TabSvc.dll
    13:51:06.0458 7520 TabletInputService - ok
    13:51:06.0474 7520 [ 884264AC597B690C5707C89723BB8E7B ] TapiSrv C:\Windows\System32\tapisrv.dll
    13:51:06.0480 7520 TapiSrv - ok
    13:51:06.0494 7520 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
    13:51:06.0496 7520 TBS - ok
    13:51:06.0620 7520 [ 624C5B3AA4C99B3184BB922D9ECE3FF0 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
    13:51:06.0714 7520 Tcpip - ok
    13:51:06.0763 7520 [ 624C5B3AA4C99B3184BB922D9ECE3FF0 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
    13:51:06.0779 7520 TCPIP6 - ok
    13:51:06.0796 7520 [ 76D078AF6F587B162D50210F761EB9ED ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
    13:51:06.0797 7520 tcpipreg - ok
    13:51:06.0812 7520 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
    13:51:06.0813 7520 TDPIPE - ok
    13:51:06.0839 7520 [ 7518F7BCFD4B308ABC9192BACAF6C970 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
    13:51:06.0840 7520 TDTCP - ok
    13:51:06.0862 7520 [ 079125C4B17B01FCAEEBCE0BCB290C0F ] tdx C:\Windows\system32\DRIVERS\tdx.sys
    13:51:06.0864 7520 tdx - ok
    13:51:06.0986 7520 [ A4D2CE94B028EF1E437CF4AC3D8FF26C ] TeamViewer7 C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
    13:51:07.0006 7520 TeamViewer7 - ok
    13:51:07.0014 7520 [ C448651339196C0E869A355171875522 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
    13:51:07.0014 7520 TermDD - ok
    13:51:07.0034 7520 [ 0F05EC2887BFE197AD82A13287D2F404 ] TermService C:\Windows\System32\termsrv.dll
    13:51:07.0037 7520 TermService - ok
    13:51:07.0049 7520 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
    13:51:07.0050 7520 Themes - ok
    13:51:07.0069 7520 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
    13:51:07.0070 7520 THREADORDER - ok
    13:51:07.0080 7520 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
    13:51:07.0083 7520 TrkWks - ok
    13:51:07.0124 7520 [ 840F7FB849F5887A49BA18C13B2DA920 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
    13:51:07.0126 7520 TrustedInstaller - ok
    13:51:07.0137 7520 [ 61B96C26131E37B24E93327A0BD1FB95 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
    13:51:07.0138 7520 tssecsrv - ok
    13:51:07.0151 7520 [ 3836171A2CDF3AF8EF10856DB9835A70 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
    13:51:07.0153 7520 tunnel - ok
    13:51:07.0222 7520 [ AAF458CC200326BEF602B5339400BF86 ] tvnserver C:\Program Files (x86)\Common Files\Comodo\tvnserver.exe
    13:51:07.0229 7520 tvnserver - ok
    13:51:07.0244 7520 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
    13:51:07.0246 7520 uagp35 - ok
    13:51:07.0267 7520 [ D47BAEAD86C65D4F4069D7CE0A4EDCEB ] udfs C:\Windows\system32\DRIVERS\udfs.sys
    13:51:07.0273 7520 udfs - ok
    13:51:07.0288 7520 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
    13:51:07.0292 7520 UI0Detect - ok
    13:51:07.0306 7520 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\DRIVERS\uliagpkx.sys
    13:51:07.0307 7520 uliagpkx - ok
    13:51:07.0329 7520 [ EAB6C35E62B1B0DB0D1B48B671D3A117 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
    13:51:07.0330 7520 umbus - ok
    13:51:07.0340 7520 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
    13:51:07.0340 7520 UmPass - ok
    13:51:07.0370 7520 [ AF0AC98EE5077EB844413EB54287FDE3 ] UmRdpService C:\Windows\System32\umrdp.dll
    13:51:07.0376 7520 UmRdpService - ok
    13:51:07.0389 7520 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
    13:51:07.0397 7520 upnphost - ok
    13:51:07.0429 7520 [ FB251567F41BC61988B26731DEC19E4B ] USBAAPL64 C:\Windows\system32\Drivers\usbaapl64.sys
    13:51:07.0431 7520 USBAAPL64 - ok
    13:51:07.0457 7520 [ 77B01BC848298223A95D4EC23E1785A1 ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
    13:51:07.0459 7520 usbaudio - ok
    13:51:07.0489 7520 [ 7B6A127C93EE590E4D79A5F2A76FE46F ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
    13:51:07.0491 7520 usbccgp - ok
    13:51:07.0504 7520 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\DRIVERS\usbcir.sys
    13:51:07.0506 7520 usbcir - ok
    13:51:07.0530 7520 [ 92969BA5AC44E229C55A332864F79677 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
    13:51:07.0531 7520 usbehci - ok
    13:51:07.0575 7520 [ E7DF1CFD28CA86B35EF5ADD0735CEEF3 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
    13:51:07.0582 7520 usbhub - ok
    13:51:07.0612 7520 [ F1BB1E55F1E7A65C5839CCC7B36D773E ] usbohci C:\Windows\system32\drivers\usbohci.sys
    13:51:07.0613 7520 usbohci - ok
    13:51:07.0628 7520 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
    13:51:07.0629 7520 usbprint - ok
    13:51:07.0660 7520 [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
    13:51:07.0661 7520 usbscan - ok
    13:51:07.0689 7520 [ F39983647BC1F3E6100778DDFE9DCE29 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
    13:51:07.0691 7520 USBSTOR - ok
    13:51:07.0760 7520 [ BC3070350A491D84B518D7CCA9ABD36F ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
    13:51:07.0782 7520 usbuhci - ok
    13:51:07.0810 7520 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
    13:51:07.0827 7520 UxSms - ok
    13:51:07.0882 7520 [ 156F6159457D0AA7E59B62681B56EB90 ] VaultSvc C:\Windows\system32\lsass.exe
    13:51:07.0884 7520 VaultSvc - ok
    13:51:07.0903 7520 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\DRIVERS\vdrvroot.sys
    13:51:07.0904 7520 vdrvroot - ok
    13:51:07.0926 7520 [ 44D73E0BBC1D3C8981304BA15135C2F2 ] vds C:\Windows\System32\vds.exe
    13:51:07.0936 7520 vds - ok
    13:51:07.0953 7520 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
    13:51:07.0954 7520 vga - ok
    13:51:07.0968 7520 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
    13:51:07.0969 7520 VgaSave - ok
    13:51:07.0989 7520 [ C82E748660F62A242B2DFAC1442F22A4 ] vhdmp C:\Windows\system32\DRIVERS\vhdmp.sys
    13:51:07.0993 7520 vhdmp - ok
    13:51:08.0000 7520 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\DRIVERS\viaide.sys
    13:51:08.0001 7520 viaide - ok
    13:51:08.0021 7520 [ 1501699D7EDA984ABC4155A7DA5738D1 ] vmbus C:\Windows\system32\DRIVERS\vmbus.sys
    13:51:08.0025 7520 vmbus - ok
    13:51:08.0038 7520 [ AE10C35761889E65A6F7176937C5592C ] VMBusHID C:\Windows\system32\DRIVERS\VMBusHID.sys
    13:51:08.0039 7520 VMBusHID - ok
    13:51:08.0055 7520 [ 2B1A3DAE2B4E70DBBA822B7A03FBD4A3 ] volmgr C:\Windows\system32\DRIVERS\volmgr.sys
    13:51:08.0056 7520 volmgr - ok
    13:51:08.0071 7520 [ 99B0CBB569CA79ACAED8C91461D765FB ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
    13:51:08.0076 7520 volmgrx - ok
    13:51:08.0089 7520 [ 58F82EED8CA24B461441F9C3E4F0BF5C ] volsnap C:\Windows\system32\DRIVERS\volsnap.sys
    13:51:08.0092 7520 volsnap - ok
    13:51:08.0111 7520 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
    13:51:08.0114 7520 vsmraid - ok
    13:51:08.0153 7520 [ 787898BF9FB6D7BD87A36E2D95C899BA ] VSS C:\Windows\system32\vssvc.exe
    13:51:08.0184 7520 VSS - ok
    13:51:08.0193 7520 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
    13:51:08.0194 7520 vwifibus - ok
    13:51:08.0213 7520 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
    13:51:08.0221 7520 W32Time - ok
    13:51:08.0236 7520 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
    13:51:08.0237 7520 WacomPen - ok
    13:51:08.0268 7520 [ 47CA49400643EFFD3F1C9A27E1D69324 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
    13:51:08.0270 7520 WANARP - ok
    13:51:08.0274 7520 [ 47CA49400643EFFD3F1C9A27E1D69324 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
    13:51:08.0276 7520 Wanarpv6 - ok
    13:51:08.0335 7520 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
    13:51:08.0353 7520 WatAdminSvc - ok
    13:51:08.0399 7520 [ 5AB1BB85BD8B5089CC5D64200DEDAE68 ] wbengine C:\Windows\system32\wbengine.exe
    13:51:08.0431 7520 wbengine - ok
    13:51:08.0447 7520 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
    13:51:08.0452 7520 WbioSrvc - ok
    13:51:08.0489 7520 [ DD1BAE8EBFC653824D29CCF8C9054D68 ] wcncsvc C:\Windows\System32\wcncsvc.dll
    13:51:08.0497 7520 wcncsvc - ok
    13:51:08.0508 7520 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
    13:51:08.0511 7520 WcsPlugInService - ok
    13:51:08.0523 7520 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys
    13:51:08.0524 7520 Wd - ok
    13:51:08.0545 7520 [ 441BD2D7B4F98134C3A4F9FA570FD250 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
    13:51:08.0554 7520 Wdf01000 - ok
    13:51:08.0563 7520 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
    13:51:08.0567 7520 WdiServiceHost - ok
    13:51:08.0572 7520 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
    13:51:08.0575 7520 WdiSystemHost - ok
    13:51:08.0604 7520 [ 733006127F235BE7C35354EBEE7B9A7B ] WebClient C:\Windows\System32\webclnt.dll
    13:51:08.0610 7520 WebClient - ok
    13:51:08.0622 7520 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
    13:51:08.0627 7520 Wecsvc - ok
    13:51:08.0638 7520 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
    13:51:08.0642 7520 wercplsupport - ok
    13:51:08.0671 7520 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
    13:51:08.0674 7520 WerSvc - ok
    13:51:08.0681 7520 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
    13:51:08.0682 7520 WfpLwf - ok
    13:51:08.0693 7520 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
    13:51:08.0694 7520 WIMMount - ok
    13:51:08.0704 7520 WinDefend - ok
    13:51:08.0707 7520 WinHttpAutoProxySvc - ok
    13:51:08.0738 7520 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
    13:51:08.0741 7520 Winmgmt - ok
    13:51:08.0785 7520 [ 41FBB751936B387F9179E7F03A74FE29 ] WinRM C:\Windows\system32\WsmSvc.dll
    13:51:08.0825 7520 WinRM - ok
    13:51:08.0871 7520 [ 817EAFF5D38674EDD7713B9DFB8E9791 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
    13:51:08.0873 7520 WinUsb - ok
    13:51:08.0902 7520 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
    13:51:08.0917 7520 Wlansvc - ok
    13:51:08.0933 7520 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
    13:51:08.0934 7520 WmiAcpi - ok
    13:51:08.0946 7520 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
    13:51:08.0950 7520 wmiApSrv - ok
    13:51:08.0967 7520 WMPNetworkSvc - ok
    13:51:08.0976 7520 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
    13:51:08.0979 7520 WPCSvc - ok
    13:51:08.0991 7520 [ 2E57DDF2880A7E52E76F41C7E96D327B ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
    13:51:08.0996 7520 WPDBusEnum - ok
    13:51:09.0004 7520 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
    13:51:09.0005 7520 ws2ifsl - ok
    13:51:09.0034 7520 [ 8F9F3969933C02DA96EB0F84576DB43E ] wscsvc C:\Windows\system32\wscsvc.dll
    13:51:09.0038 7520 wscsvc - ok
    13:51:09.0041 7520 WSearch - ok
    13:51:09.0115 7520 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
    13:51:09.0164 7520 wuauserv - ok
    13:51:09.0181 7520 [ 7CADC74271DD6461C452C271B30BD378 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
    13:51:09.0183 7520 WudfPf - ok
    13:51:09.0214 7520 [ 3B197AF0FFF08AA66B6B2241CA538D64 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
    13:51:09.0217 7520 WUDFRd - ok
    13:51:09.0231 7520 [ B551D6637AA0E132C18AC6E504F7B79B ] wudfsvc C:\Windows\System32\WUDFSvc.dll
    13:51:09.0235 7520 wudfsvc - ok
    13:51:09.0247 7520 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\Windows\System32\wwansvc.dll
    13:51:09.0253 7520 WwanSvc - ok
    13:51:09.0269 7520 ================ Scan global ===============================
    13:51:09.0290 7520 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
    13:51:09.0321 7520 [ 0CB6EBF4B461A6043353C570BD72A1E1 ] C:\Windows\system32\winsrv.dll
    13:51:09.0332 7520 [ 0CB6EBF4B461A6043353C570BD72A1E1 ] C:\Windows\system32\winsrv.dll
    13:51:09.0352 7520 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
    13:51:09.0375 7520 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
    13:51:09.0379 7520 [Global] - ok
    13:51:09.0380 7520 ================ Scan MBR ==================================
    13:51:09.0389 7520 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk0\DR0
    13:51:09.0455 7520 \Device\Harddisk0\DR0 - ok
    13:51:09.0462 7520 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
    13:51:09.0647 7520 \Device\Harddisk1\DR1 - ok
    13:51:09.0647 7520 ================ Scan VBR ==================================
    13:51:09.0650 7520 [ 14951C02E2A8EBD633FB4B3ABECBD813 ] \Device\Harddisk0\DR0\Partition1
    13:51:09.0652 7520 \Device\Harddisk0\DR0\Partition1 - ok
    13:51:09.0655 7520 [ F200AB2878329645F0EBF6E0F0511C0F ] \Device\Harddisk0\DR0\Partition2
    13:51:09.0657 7520 \Device\Harddisk0\DR0\Partition2 - ok
    13:51:09.0660 7520 [ B904E8B5FB2AD94F51423E5B2A12D43D ] \Device\Harddisk1\DR1\Partition1
    13:51:09.0662 7520 \Device\Harddisk1\DR1\Partition1 - ok
    13:51:09.0669 7520 [ D8D6C5FBE23B1CA15007024AD2420083 ] \Device\Harddisk1\DR1\Partition2
    13:51:09.0671 7520 \Device\Harddisk1\DR1\Partition2 - ok
    13:51:09.0672 7520 ============================================================
    13:51:09.0672 7520 Scan finished
    13:51:09.0672 7520 ============================================================
    13:51:09.0684 3632 Detected object count: 0
    13:51:09.0684 3632 Actual detected object count: 0
    13:51:44.0401 7680 ============================================================
    13:51:44.0401 7680 Scan started
    13:51:44.0401 7680 Mode: Manual; SigCheck; TDLFS;
    13:51:44.0401 7680 ============================================================
    13:51:44.0632 7680 ================ Scan system memory ========================
    13:51:44.0632 7680 System memory - ok
    13:51:44.0633 7680 ================ Scan services =============================
    13:51:44.0724 7680 [ 1B00662092F9F9568B995902F0CC40D5 ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys
    13:51:44.0789 7680 1394ohci - ok
    13:51:44.0803 7680 [ 6F11E88748CDEFD2F76AA215F97DDFE5 ] ACPI C:\Windows\system32\DRIVERS\ACPI.sys
    13:51:44.0817 7680 ACPI - ok
    13:51:44.0824 7680 [ 63B05A0420CE4BF0E4AF6DCC7CADA254 ] AcpiPmi C:\Windows\system32\DRIVERS\acpipmi.sys
    13:51:44.0863 7680 AcpiPmi - ok
    13:51:44.0963 7680 [ E12CFCF1DDBFC50948A75E6E38793225 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
    13:51:44.0981 7680 AdobeFlashPlayerUpdateSvc - ok
    13:51:45.0003 7680 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
    13:51:45.0017 7680 adp94xx - ok
    13:51:45.0027 7680 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
    13:51:45.0039 7680 adpahci - ok
    13:51:45.0051 7680 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
    13:51:45.0061 7680 adpu320 - ok
    13:51:45.0075 7680 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
    13:51:45.0199 7680 AeLookupSvc - ok
    13:51:45.0240 7680 [ DB9D6C6B2CD95A9CA414D045B627422E ] AFD C:\Windows\system32\drivers\afd.sys
    13:51:45.0280 7680 AFD - ok
    13:51:45.0299 7680 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\DRIVERS\agp440.sys
    13:51:45.0309 7680 agp440 - ok
    13:51:45.0321 7680 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
    13:51:45.0365 7680 ALG - ok
    13:51:45.0376 7680 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\DRIVERS\aliide.sys
    13:51:45.0390 7680 aliide - ok
    13:51:45.0419 7680 [ B3B263B419FC9E7B1D41E61FDAE45BD9 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
    13:51:45.0471 7680 AMD External Events Utility - ok
    13:51:45.0483 7680 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\DRIVERS\amdide.sys
    13:51:45.0496 7680 amdide - ok
    13:51:45.0503 7680 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
    13:51:45.0521 7680 AmdK8 - ok
    13:51:45.0718 7680 [ 9A6E9363F7A5E5A06629D9DDC76EE6B5 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
    13:51:45.0821 7680 amdkmdag - ok
    13:51:45.0835 7680 [ 957A4C13E1981B1701E600EF1E823C68 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
    13:51:45.0856 7680 amdkmdap - ok
    13:51:45.0864 7680 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
    13:51:45.0881 7680 AmdPPM - ok
    13:51:45.0907 7680 [ EC7EBAB00A4D8448BAB68D1E49B4BEB9 ] amdsata C:\Windows\system32\drivers\amdsata.sys
    13:51:45.0915 7680 amdsata - ok
    13:51:45.0924 7680 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
    13:51:45.0933 7680 amdsbs - ok
    13:51:45.0941 7680 [ DB27766102C7BF7E95140A2AA81D042E ] amdxata C:\Windows\system32\drivers\amdxata.sys
    13:51:45.0949 7680 amdxata - ok
    13:51:45.0962 7680 [ 42FD751B27FA0E9C69BB39F39E409594 ] AppID C:\Windows\system32\drivers\appid.sys
    13:51:46.0035 7680 AppID - ok
    13:51:46.0048 7680 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
    13:51:46.0091 7680 AppIDSvc - ok
    13:51:46.0103 7680 [ D065BE66822847B7F127D1F90158376E ] Appinfo C:\Windows\System32\appinfo.dll
    13:51:46.0141 7680 Appinfo - ok
    13:51:46.0291 7680 [ F401929EE0CC92BFE7F15161CA535383 ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    13:51:46.0306 7680 Apple Mobile Device - ok
    13:51:46.0327 7680 [ 4ABA3E75A76195A3E38ED2766C962899 ] AppMgmt C:\Windows\System32\appmgmts.dll
    13:51:46.0357 7680 AppMgmt - ok
    13:51:46.0375 7680 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys
    13:51:46.0393 7680 arc - ok
    13:51:46.0405 7680 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
    13:51:46.0416 7680 arcsas - ok
    13:51:46.0430 7680 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
    13:51:46.0475 7680 AsyncMac - ok
    13:51:46.0507 7680 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\DRIVERS\atapi.sys
    13:51:46.0515 7680 atapi - ok
    13:51:46.0573 7680 [ B0790FF0E25B7A2674296052F2162C1A ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW76.sys
    13:51:46.0592 7680 AtiHDAudioService - ok
    13:51:46.0773 7680 [ 9A6E9363F7A5E5A06629D9DDC76EE6B5 ] atikmdag C:\Windows\system32\DRIVERS\atikmdag.sys
    13:51:46.0859 7680 atikmdag - ok
    13:51:46.0876 7680 [ 07721A77180EDD4D39CCB865BF63C7FD ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
    13:51:46.0912 7680 AudioEndpointBuilder - ok
    13:51:46.0921 7680 [ 07721A77180EDD4D39CCB865BF63C7FD ] AudioSrv C:\Windows\System32\Audiosrv.dll
    13:51:46.0950 7680 AudioSrv - ok
    13:51:46.0962 7680 [ B20B5FA5CA050E9926E4D1DB81501B32 ] AxInstSV C:\Windows\System32\AxInstSV.dll
    13:51:46.0991 7680 AxInstSV - ok
    13:51:47.0010 7680 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys
    13:51:47.0040 7680 b06bdrv - ok
    13:51:47.0055 7680 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
    13:51:47.0075 7680 b57nd60a - ok
    13:51:47.0089 7680 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
    13:51:47.0112 7680 BDESVC - ok
    13:51:47.0118 7680 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
    13:51:47.0160 7680 Beep - ok
    13:51:47.0179 7680 [ 4992C609A6315671463E30F6512BC022 ] BFE C:\Windows\System32\bfe.dll
    13:51:47.0209 7680 BFE - ok
    13:51:47.0233 7680 [ 7F0C323FE3DA28AA4AA1BDA3F575707F ] BITS C:\Windows\system32\qmgr.dll
    13:51:47.0275 7680 BITS - ok
    13:51:47.0287 7680 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
    13:51:47.0306 7680 blbdrive - ok
    13:51:47.0360 7680 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
    13:51:47.0381 7680 Bonjour Service - ok
    13:51:47.0417 7680 [ 19D20159708E152267E53B66677A4995 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
    13:51:47.0446 7680 bowser - ok
    13:51:47.0459 7680 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
    13:51:47.0488 7680 BrFiltLo - ok
    13:51:47.0500 7680 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
    13:51:47.0513 7680 BrFiltUp - ok
    13:51:47.0527 7680 [ 5C2F352A4E961D72518261257AAE204B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
    13:51:47.0560 7680 BridgeMP - ok
    13:51:47.0590 7680 [ 6B054C67AAA87843504E8E3C09102009 ] Browser C:\Windows\System32\browser.dll
    13:51:47.0633 7680 Browser - ok
    13:51:47.0647 7680 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
    13:51:47.0672 7680 Brserid - ok
    13:51:47.0684 7680 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
    13:51:47.0703 7680 BrSerWdm - ok
    13:51:47.0717 7680 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
    13:51:47.0765 7680 BrUsbMdm - ok
    13:51:47.0774 7680 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
    13:51:47.0790 7680 BrUsbSer - ok
    13:51:47.0804 7680 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
    13:51:47.0826 7680 BTHMODEM - ok
    13:51:47.0850 7680 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
    13:51:47.0910 7680 bthserv - ok
    13:51:47.0921 7680 CareMon - ok
    13:51:47.0923 7680 catchme - ok
    13:51:47.0938 7680 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
    13:51:47.0985 7680 cdfs - ok
    13:51:47.0997 7680 [ 83D2D75E1EFB81B3450C18131443F7DB ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
    13:51:48.0020 7680 cdrom - ok
    13:51:48.0043 7680 [ 312E2F82AF11E79906898AC3E3D58A1F ] CertPropSvc C:\Windows\System32\certprop.dll
    13:51:48.0078 7680 CertPropSvc - ok
    13:51:48.0109 7680 [ 34B4DB818E86C2822C2AF43108D660F1 ] CFRMD C:\Windows\system32\DRIVERS\CFRMD.sys
    13:51:48.0124 7680 CFRMD - ok
    13:51:48.0140 7680 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys
    13:51:48.0173 7680 circlass - ok
    13:51:48.0197 7680 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
    13:51:48.0220 7680 CLFS - ok
    13:51:48.0272 7680 [ 9A5E6527E49415D6ED1572719AFE2EF0 ] CLPSLauncher C:\Program Files (x86)\Common Files\Comodo\launcher_service.exe
    13:51:48.0289 7680 CLPSLauncher - ok
    13:51:48.0331 7680 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
    13:51:48.0345 7680 clr_optimization_v2.0.50727_32 - ok
    13:51:48.0384 7680 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
    13:51:48.0397 7680 clr_optimization_v2.0.50727_64 - ok
    13:51:48.0557 7680 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
    13:51:48.0573 7680 clr_optimization_v4.0.30319_32 - ok
    13:51:48.0694 7680 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
    13:51:48.0709 7680 clr_optimization_v4.0.30319_64 - ok
    13:51:48.0720 7680 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
    13:51:48.0760 7680 CmBatt - ok
    13:51:48.0769 7680 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\DRIVERS\cmdide.sys
    13:51:48.0779 7680 cmdide - ok
    13:51:48.0817 7680 [ CA7720B73446FDDEC5C69519C1174C98 ] CNG C:\Windows\system32\Drivers\cng.sys
    13:51:48.0839 7680 CNG - ok
    13:51:48.0847 7680 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
    13:51:48.0856 7680 Compbatt - ok
    13:51:48.0867 7680 [ F26B3A86F6FA87CA360B879581AB4123 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
    13:51:48.0883 7680 CompositeBus - ok
    13:51:48.0885 7680 COMSysApp - ok
    13:51:48.0894 7680 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
    13:51:48.0901 7680 crcdisk - ok
    13:51:48.0926 7680 [ F02786B66375292E58C8777082D4396D ] CryptSvc C:\Windows\system32\cryptsvc.dll
    13:51:48.0970 7680 CryptSvc - ok
    13:51:49.0004 7680 [ 4A6173C2279B498CD8F57CAE504564CB ] CSC C:\Windows\system32\drivers\csc.sys
    13:51:49.0028 7680 CSC - ok
    13:51:49.0048 7680 [ 873FBF927C06E5CEE04DEC617502F8FD ] CscService C:\Windows\System32\cscsvc.dll
    13:51:49.0062 7680 CscService - ok
    13:51:49.0096 7680 [ 7266972E86890E2B30C0C322E906B027 ] DcomLaunch C:\Windows\system32\rpcss.dll
    13:51:49.0138 7680 DcomLaunch - ok
    13:51:49.0166 7680 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
    13:51:49.0196 7680 defragsvc - ok
    13:51:49.0221 7680 [ 9C253CE7311CA60FC11C774692A13208 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
    13:51:49.0240 7680 DfsC - ok
    13:51:49.0252 7680 [ CE3B9562D997F69B330D181A8875960F ] Dhcp C:\Windows\system32\dhcpcore.dll
    13:51:49.0304 7680 Dhcp - ok
    13:51:49.0320 7680 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
    13:51:49.0374 7680 discache - ok
    13:51:49.0389 7680 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys
    13:51:49.0397 7680 Disk - ok
    13:51:49.0427 7680 [ 85CF424C74A1D5EC33533E1DBFF9920A ] Dnscache C:\Windows\System32\dnsrslvr.dll
    13:51:49.0450 7680 Dnscache - ok
    13:51:49.0468 7680 [ 14452ACDB09B70964C8C21BF80A13ACB ] dot3svc C:\Windows\System32\dot3svc.dll
    13:51:49.0514 7680 dot3svc - ok
    13:51:49.0537 7680 [ B42ED0320C6E41102FDE0005154849BB ] Dot4 C:\Windows\system32\DRIVERS\Dot4.sys
    13:51:49.0569 7680 Dot4 - ok
    13:51:49.0586 7680 [ 85135AD27E79B689335C08167D917CDE ] Dot4Print C:\Windows\system32\DRIVERS\Dot4Prt.sys
    13:51:49.0598 7680 Dot4Print - ok
    13:51:49.0613 7680 [ FD05A02B0370BC3000F402E543CA5814 ] dot4usb C:\Windows\system32\DRIVERS\dot4usb.sys
    13:51:49.0633 7680 dot4usb - ok
    13:51:49.0648 7680 [ 8C2BA6BEA949EE6E68385F5692BAFB94 ] DPS C:\Windows\system32\dps.dll
    13:51:49.0683 7680 DPS - ok
    13:51:49.0700 7680 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
    13:51:49.0718 7680 drmkaud - ok
    13:51:49.0753 7680 [ 1633B9ABF52784A1331476397A48CBEF ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
    13:51:49.0787 7680 DXGKrnl - ok
    13:51:49.0837 7680 [ 69B09319CB4DFFABC3327349DD736560 ] Dyyno Launcher C:\Program Files (x86)\Dyyno\Dyyno Broadcaster\launcherd.exe
    13:51:49.0849 7680 Dyyno Launcher - ok
    13:51:49.0860 7680 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
    13:51:49.0903 7680 EapHost - ok
    13:51:49.0972 7680 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys
    13:51:50.0029 7680 ebdrv - ok
    13:51:50.0057 7680 [ 156F6159457D0AA7E59B62681B56EB90 ] EFS C:\Windows\System32\lsass.exe
    13:51:50.0091 7680 EFS - ok
    13:51:50.0148 7680 [ 47C071994C3F649F23D9CD075AC9304A ] ehRecvr C:\Windows\ehome\ehRecvr.exe
    13:51:50.0178 7680 ehRecvr - ok
    13:51:50.0193 7680 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
    13:51:50.0207 7680 ehSched - ok
    13:51:50.0225 7680 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
    13:51:50.0239 7680 elxstor - ok
    13:51:50.0248 7680 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\DRIVERS\errdev.sys
    13:51:50.0257 7680 ErrDev - ok
    13:51:50.0343 7680 [ 3A4C143CF035D324B55993070ECA9A31 ] ESEADriver2 C:\Users\Ricky\AppData\Local\Temp\ESEADriver2.sys
     
  8. phiya

    phiya TS Rookie Topic Starter

    13:51:50.0360 7680 ESEADriver2 - ok
    13:51:50.0390 7680 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
    13:51:50.0429 7680 EventSystem - ok
    13:51:50.0440 7680 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
    13:51:50.0471 7680 exfat - ok
    13:51:50.0487 7680 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
    13:51:50.0543 7680 fastfat - ok
    13:51:50.0563 7680 [ D607B2F1BEE3992AA6C2C92C0A2F0855 ] Fax C:\Windows\system32\fxssvc.exe
    13:51:50.0588 7680 Fax - ok
    13:51:50.0594 7680 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys
    13:51:50.0613 7680 fdc - ok
    13:51:50.0627 7680 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
    13:51:50.0651 7680 fdPHost - ok
    13:51:50.0664 7680 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
    13:51:50.0703 7680 FDResPub - ok
    13:51:50.0722 7680 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
    13:51:50.0730 7680 FileInfo - ok
    13:51:50.0750 7680 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
    13:51:50.0813 7680 Filetrace - ok
    13:51:50.0829 7680 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
    13:51:50.0845 7680 flpydisk - ok
    13:51:50.0864 7680 [ F7866AF72ABBAF84B1FA5AA195378C59 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
    13:51:50.0874 7680 FltMgr - ok
    13:51:50.0919 7680 [ CB5E4B9C319E3C6BB363EB7E58A4A051 ] FontCache C:\Windows\system32\FntCache.dll
    13:51:50.0953 7680 FontCache - ok
    13:51:50.0996 7680 [ 8D89E3131C27FDD6932189CB785E1B7A ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
    13:51:51.0009 7680 FontCache3.0.0.0 - ok
    13:51:51.0020 7680 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
    13:51:51.0036 7680 FsDepends - ok
    13:51:51.0061 7680 [ D3E3F93D67821A2DB2B3D9FAC2DC2064 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
    13:51:51.0069 7680 Fs_Rec - ok
    13:51:51.0088 7680 [ AE87BA80D0EC3B57126ED2CDC15B24ED ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
    13:51:51.0106 7680 fvevol - ok
    13:51:51.0115 7680 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
    13:51:51.0127 7680 gagp30kx - ok
    13:51:51.0158 7680 [ E403AACF8C7BB11375122D2464560311 ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
    13:51:51.0167 7680 GEARAspiWDM - ok
    13:51:51.0193 7680 [ FE5AB4525BC2EC68B9119A6E5D40128B ] gpsvc C:\Windows\System32\gpsvc.dll
    13:51:51.0232 7680 gpsvc - ok
    13:51:51.0263 7680 [ 4F7E0A173348A60E003D3C5F51C5808E ] Gun C:\Windows\system32\Gun64.sys
    13:51:51.0275 7680 Gun - ok
    13:51:51.0285 7680 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
    13:51:51.0317 7680 hcw85cir - ok
    13:51:51.0355 7680 [ 6410F6F415B2A5A9037224C41DA8BF12 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
    13:51:51.0391 7680 HdAudAddService - ok
    13:51:51.0407 7680 [ 0A49913402747A0B67DE940FB42CBDBB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
    13:51:51.0429 7680 HDAudBus - ok
    13:51:51.0441 7680 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
    13:51:51.0463 7680 HidBatt - ok
    13:51:51.0478 7680 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
    13:51:51.0514 7680 HidBth - ok
    13:51:51.0530 7680 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
    13:51:51.0540 7680 HidIr - ok
    13:51:51.0552 7680 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\System32\hidserv.dll
    13:51:51.0589 7680 hidserv - ok
    13:51:51.0600 7680 [ B3BF6B5B50006DEF50B66306D99FCF6F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
    13:51:51.0609 7680 HidUsb - ok
    13:51:51.0632 7680 [ EFA58EDE58DD74388FFD04CB32681518 ] hkmsvc C:\Windows\system32\kmsvc.dll
    13:51:51.0683 7680 hkmsvc - ok
    13:51:51.0697 7680 [ 046B2673767CA626E2CFB7FDF735E9E8 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
    13:51:51.0713 7680 HomeGroupListener - ok
    13:51:51.0742 7680 [ 06A7422224D9865A5613710A089987DF ] HomeGroupProvider C:\Windows\system32\provsvc.dll
    13:51:51.0751 7680 HomeGroupProvider - ok
    13:51:51.0827 7680 [ 0A3C6AA4A9FC38C20BA4EAC2C3351C05 ] hpqcxs08 C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll
    13:51:51.0836 7680 hpqcxs08 ( UnsignedFile.Multi.Generic ) - warning
    13:51:51.0836 7680 hpqcxs08 - detected UnsignedFile.Multi.Generic (1)
    13:51:51.0870 7680 [ F3F72A2A86C22610BCA5439FA789DD52 ] hpqddsvc C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll
    13:51:51.0882 7680 hpqddsvc ( UnsignedFile.Multi.Generic ) - warning
    13:51:51.0882 7680 hpqddsvc - detected UnsignedFile.Multi.Generic (1)
    13:51:51.0898 7680 [ 0886D440058F203EBA0E1825E4355914 ] HpSAMD C:\Windows\system32\DRIVERS\HpSAMD.sys
    13:51:51.0916 7680 HpSAMD - ok
    13:51:51.0944 7680 [ D972F48D0CE396759B788693CD665926 ] HPSLPSVC C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL
    13:51:51.0964 7680 HPSLPSVC ( UnsignedFile.Multi.Generic ) - warning
    13:51:51.0964 7680 HPSLPSVC - detected UnsignedFile.Multi.Generic (1)
    13:51:51.0983 7680 [ CEE049CAC4EFA7F4E1E4AD014414A5D4 ] HTTP C:\Windows\system32\drivers\HTTP.sys
    13:51:52.0014 7680 HTTP - ok
    13:51:52.0020 7680 [ F17766A19145F111856378DF337A5D79 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
    13:51:52.0028 7680 hwpolicy - ok
    13:51:52.0037 7680 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
    13:51:52.0046 7680 i8042prt - ok
    13:51:52.0062 7680 [ B75E45C564E944A2657167D197AB29DA ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
    13:51:52.0074 7680 iaStorV - ok
    13:51:52.0115 7680 [ 2F2BE70D3E02B6FA877921AB9516D43C ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
    13:51:52.0129 7680 idsvc - ok
    13:51:52.0143 7680 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
    13:51:52.0151 7680 iirsp - ok
    13:51:52.0191 7680 [ C5B4683680DF085B57BC53E5EF34861F ] IKEEXT C:\Windows\System32\ikeext.dll
    13:51:52.0234 7680 IKEEXT - ok
    13:51:52.0241 7680 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\DRIVERS\intelide.sys
    13:51:52.0249 7680 intelide - ok
    13:51:52.0263 7680 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
    13:51:52.0277 7680 intelppm - ok
    13:51:52.0286 7680 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
    13:51:52.0341 7680 IPBusEnum - ok
    13:51:52.0356 7680 [ 722DD294DF62483CECAAE6E094B4D695 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
    13:51:52.0386 7680 IpFilterDriver - ok
    13:51:52.0406 7680 [ F8E058D17363EC580E4B7232778B6CB5 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
    13:51:52.0451 7680 iphlpsvc - ok
    13:51:52.0472 7680 [ E2B4A4494DB7CB9B89B55CA268C337C5 ] IPMIDRV C:\Windows\system32\DRIVERS\IPMIDrv.sys
    13:51:52.0485 7680 IPMIDRV - ok
    13:51:52.0495 7680 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
    13:51:52.0550 7680 IPNAT - ok
    13:51:52.0655 7680 [ A9AB99EE7D39725EAFEC82732D2B3271 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
    13:51:52.0685 7680 iPod Service - ok
    13:51:52.0710 7680 [ 02DEF37AB75E0032C50724646F708DE8 ] iPodDrv C:\Windows\system32\drivers\iPodDrv.sys
    13:51:52.0719 7680 iPodDrv - ok
    13:51:52.0724 7680 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
    13:51:52.0736 7680 IRENUM - ok
    13:51:52.0745 7680 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\DRIVERS\isapnp.sys
    13:51:52.0754 7680 isapnp - ok
    13:51:52.0771 7680 [ FA4D2557DE56D45B0A346F93564BE6E1 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
    13:51:52.0782 7680 iScsiPrt - ok
    13:51:52.0794 7680 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
    13:51:52.0803 7680 kbdclass - ok
    13:51:52.0813 7680 [ 6DEF98F8541E1B5DCEB2C822A11F7323 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
    13:51:52.0839 7680 kbdhid - ok
    13:51:52.0856 7680 [ 156F6159457D0AA7E59B62681B56EB90 ] KeyIso C:\Windows\system32\lsass.exe
    13:51:52.0865 7680 KeyIso - ok
    13:51:52.0888 7680 [ 4F4B5FDE429416877DE7143044582EB5 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
    13:51:52.0898 7680 KSecDD - ok
    13:51:52.0909 7680 [ 6F40465A44ECDC1731BEFAFEC5BDD03C ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
    13:51:52.0919 7680 KSecPkg - ok
    13:51:52.0925 7680 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
    13:51:52.0963 7680 ksthunk - ok
    13:51:52.0980 7680 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
    13:51:53.0024 7680 KtmRm - ok
    13:51:53.0047 7680 [ 81F1D04D4D0E433099365127375FD501 ] LanmanServer C:\Windows\System32\srvsvc.dll
    13:51:53.0086 7680 LanmanServer - ok
    13:51:53.0114 7680 [ 27026EAC8818E8A6C00A1CAD2F11D29A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
    13:51:53.0165 7680 LanmanWorkstation - ok
    13:51:53.0190 7680 [ FA529FB35694C24BF98A9EF67C1CD9D0 ] LGBusEnum C:\Windows\system32\drivers\LGBusEnum.sys
    13:51:53.0197 7680 LGBusEnum - ok
    13:51:53.0212 7680 [ 94B29CE153765E768F004FB3440BE2B0 ] LGVirHid C:\Windows\system32\drivers\LGVirHid.sys
    13:51:53.0219 7680 LGVirHid - ok
    13:51:53.0230 7680 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
    13:51:53.0271 7680 lltdio - ok
    13:51:53.0293 7680 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
    13:51:53.0336 7680 lltdsvc - ok
    13:51:53.0345 7680 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
    13:51:53.0371 7680 lmhosts - ok
    13:51:53.0383 7680 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
    13:51:53.0392 7680 LSI_FC - ok
    13:51:53.0402 7680 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
    13:51:53.0410 7680 LSI_SAS - ok
    13:51:53.0421 7680 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
    13:51:53.0429 7680 LSI_SAS2 - ok
    13:51:53.0438 7680 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
    13:51:53.0446 7680 LSI_SCSI - ok
    13:51:53.0461 7680 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
    13:51:53.0494 7680 luafv - ok
    13:51:53.0523 7680 [ 07389F6925E490D2DB7882110E99921C ] lvpepf64 C:\Windows\system32\DRIVERS\lv302a64.sys
    13:51:53.0529 7680 lvpepf64 - ok
    13:51:53.0549 7680 [ 7F0BA3A6E8996F15693C6B7D81DA049E ] LVRS64 C:\Windows\system32\DRIVERS\lvrs64.sys
    13:51:53.0562 7680 LVRS64 - ok
    13:51:53.0591 7680 [ 5C3FF68267A5D242EE79EE01B993D6CE ] LVUSBS64 C:\Windows\system32\drivers\LVUSBS64.sys
    13:51:53.0600 7680 LVUSBS64 - ok
    13:51:53.0644 7680 [ F8B823414A22DBF3BEC10DCAA5F93CD8 ] McciCMService C:\Program Files (x86)\Common Files\Motive\McciCMService.exe
    13:51:53.0660 7680 McciCMService ( UnsignedFile.Multi.Generic ) - warning
    13:51:53.0660 7680 McciCMService - detected UnsignedFile.Multi.Generic (1)
    13:51:53.0688 7680 [ F84C8F1000BC11E3B7B23CBD3BAFF111 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
    13:51:53.0708 7680 Mcx2Svc - ok
    13:51:53.0724 7680 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
    13:51:53.0741 7680 megasas - ok
    13:51:53.0752 7680 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
    13:51:53.0767 7680 MegaSR - ok
    13:51:53.0800 7680 [ BA7E071E855D4C502916164A31B05D4D ] MHIKEY10 C:\Windows\system32\Drivers\MHIKEY10x64.sys
    13:51:53.0818 7680 MHIKEY10 - ok
    13:51:53.0864 7680 [ 123271BD5237AB991DC5C21FDF8835EB ] Microsoft Office Groove Audit Service C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe
    13:51:53.0877 7680 Microsoft Office Groove Audit Service - ok
    13:51:53.0902 7680 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
    13:51:53.0966 7680 MMCSS - ok
    13:51:53.0977 7680 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
    13:51:54.0009 7680 Modem - ok
    13:51:54.0019 7680 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
    13:51:54.0038 7680 monitor - ok
    13:51:54.0051 7680 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
    13:51:54.0059 7680 mouclass - ok
    13:51:54.0067 7680 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
    13:51:54.0086 7680 mouhid - ok
    13:51:54.0089 7680 [ 791AF66C4D0E7C90A3646066386FB571 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
    13:51:54.0097 7680 mountmgr - ok
    13:51:54.0107 7680 [ 609D1D87649ECC19796F4D76D4C15CEA ] mpio C:\Windows\system32\DRIVERS\mpio.sys
    13:51:54.0116 7680 mpio - ok
    13:51:54.0126 7680 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
    13:51:54.0150 7680 mpsdrv - ok
    13:51:54.0172 7680 [ AECAB449567D1846DAD63ECE49E893E3 ] MpsSvc C:\Windows\system32\mpssvc.dll
    13:51:54.0210 7680 MpsSvc - ok
    13:51:54.0219 7680 [ 9BD4DCB5412921864A7AACDEDFBD1923 ] MREMP50 C:\PROGRA~2\COMMON~1\Motive\MREMP50.SYS
    13:51:54.0235 7680 MREMP50 ( UnsignedFile.Multi.Generic ) - warning
    13:51:54.0235 7680 MREMP50 - detected UnsignedFile.Multi.Generic (1)
    13:51:54.0248 7680 MREMP50a64 - ok
    13:51:54.0250 7680 MREMPR5 - ok
    13:51:54.0252 7680 MRENDIS5 - ok
    13:51:54.0263 7680 [ 07C02C892E8E1A72D6BF35004F0E9C5E ] MRESP50 C:\PROGRA~2\COMMON~1\Motive\MRESP50.SYS
    13:51:54.0265 7680 MRESP50 ( UnsignedFile.Multi.Generic ) - warning
    13:51:54.0265 7680 MRESP50 - detected UnsignedFile.Multi.Generic (1)
    13:51:54.0267 7680 MRESP50a64 - ok
    13:51:54.0279 7680 [ 30524261BB51D96D6FCBAC20C810183C ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
    13:51:54.0302 7680 MRxDAV - ok
    13:51:54.0331 7680 [ 040D62A9D8AD28922632137ACDD984F2 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
    13:51:54.0356 7680 mrxsmb - ok
    13:51:54.0386 7680 [ F0067552F8F9B33D7C59403AB808A3CB ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
    13:51:54.0412 7680 mrxsmb10 - ok
    13:51:54.0429 7680 [ 3C142D31DE9F2F193218A53FE2632051 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
    13:51:54.0453 7680 mrxsmb20 - ok
    13:51:54.0468 7680 [ 5C37497276E3B3A5488B23A326A754B7 ] msahci C:\Windows\system32\DRIVERS\msahci.sys
    13:51:54.0479 7680 msahci - ok
    13:51:54.0488 7680 [ 8D27B597229AED79430FB9DB3BCBFBD0 ] msdsm C:\Windows\system32\DRIVERS\msdsm.sys
    13:51:54.0498 7680 msdsm - ok
    13:51:54.0512 7680 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
    13:51:54.0527 7680 MSDTC - ok
    13:51:54.0544 7680 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
    13:51:54.0568 7680 Msfs - ok
    13:51:54.0579 7680 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
    13:51:54.0618 7680 mshidkmdf - ok
    13:51:54.0633 7680 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\DRIVERS\msisadrv.sys
    13:51:54.0641 7680 msisadrv - ok
    13:51:54.0655 7680 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
    13:51:54.0680 7680 MSiSCSI - ok
    13:51:54.0683 7680 msiserver - ok
    13:51:54.0693 7680 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
    13:51:54.0717 7680 MSKSSRV - ok
    13:51:54.0729 7680 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
    13:51:54.0764 7680 MSPCLOCK - ok
    13:51:54.0767 7680 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
    13:51:54.0801 7680 MSPQM - ok
    13:51:54.0813 7680 [ 89CB141AA8616D8C6A4610FA26C60964 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
    13:51:54.0824 7680 MsRPC - ok
    13:51:54.0834 7680 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
    13:51:54.0842 7680 mssmbios - ok
    13:51:54.0844 7680 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
    13:51:54.0872 7680 MSTEE - ok
    13:51:54.0883 7680 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
    13:51:54.0891 7680 MTConfig - ok
    13:51:54.0899 7680 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
    13:51:54.0907 7680 Mup - ok
    13:51:54.0940 7680 [ 4987E079A4530FA737A128BE54B63B12 ] napagent C:\Windows\system32\qagentRT.dll
    13:51:54.0985 7680 napagent - ok
    13:51:55.0005 7680 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
    13:51:55.0023 7680 NativeWifiP - ok
    13:51:55.0043 7680 [ CAD515DBD07D082BB317D9928CE8962C ] NDIS C:\Windows\system32\drivers\ndis.sys
    13:51:55.0060 7680 NDIS - ok
    13:51:55.0071 7680 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
    13:51:55.0096 7680 NdisCap - ok
    13:51:55.0110 7680 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
    13:51:55.0134 7680 NdisTapi - ok
    13:51:55.0143 7680 [ F105BA1E22BF1F2EE8F005D4305E4BEC ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
    13:51:55.0177 7680 Ndisuio - ok
    13:51:55.0191 7680 [ 557DFAB9CA1FCB036AC77564C010DAD3 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
    13:51:55.0216 7680 NdisWan - ok
    13:51:55.0224 7680 [ 659B74FB74B86228D6338D643CD3E3CF ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
    13:51:55.0256 7680 NDProxy - ok
    13:51:55.0283 7680 [ D5AC41AE382738483FAFFBD7E373D49A ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
    13:51:55.0295 7680 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
    13:51:55.0295 7680 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
    13:51:55.0303 7680 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
    13:51:55.0337 7680 NetBIOS - ok
    13:51:55.0352 7680 [ 9162B273A44AB9DCE5B44362731D062A ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
    13:51:55.0387 7680 NetBT - ok
    13:51:55.0398 7680 [ 156F6159457D0AA7E59B62681B56EB90 ] Netlogon C:\Windows\system32\lsass.exe
    13:51:55.0406 7680 Netlogon - ok
    13:51:55.0422 7680 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
    13:51:55.0459 7680 Netman - ok
    13:51:55.0466 7680 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
    13:51:55.0501 7680 netprofm - ok
    13:51:55.0527 7680 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
    13:51:55.0533 7680 NetTcpPortSharing - ok
    13:51:55.0543 7680 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
    13:51:55.0550 7680 nfrd960 - ok
    13:51:55.0556 7680 [ D9A0CE66046D6EFA0C61BAA885CBA0A8 ] NlaSvc C:\Windows\System32\nlasvc.dll
    13:51:55.0593 7680 NlaSvc - ok
    13:51:55.0620 7680 [ 351533ACC2A069B94E80BBFC177E8FDF ] NPF C:\Windows\system32\drivers\npf.sys
    13:51:55.0626 7680 NPF - ok
    13:51:55.0631 7680 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
    13:51:55.0663 7680 Npfs - ok
    13:51:55.0673 7680 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
    13:51:55.0710 7680 nsi - ok
    13:51:55.0719 7680 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
    13:51:55.0749 7680 nsiproxy - ok
    13:51:55.0810 7680 [ 378E0E0DFEA67D98AE6EA53ADBBD76BC ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
    13:51:55.0849 7680 Ntfs - ok
    13:51:55.0857 7680 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
    13:51:55.0894 7680 Null - ok
    13:51:55.0915 7680 [ A4D9C9A608A97F59307C2F2600EDC6A4 ] nvraid C:\Windows\system32\drivers\nvraid.sys
    13:51:55.0924 7680 nvraid - ok
    13:51:55.0938 7680 [ 6C1D5F70E7A6A3FD1C90D840EDC048B9 ] nvstor C:\Windows\system32\drivers\nvstor.sys
    13:51:55.0947 7680 nvstor - ok
    13:51:55.0956 7680 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\DRIVERS\nv_agp.sys
    13:51:55.0964 7680 nv_agp - ok
    13:51:56.0034 7680 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
    13:51:56.0055 7680 odserv - ok
    13:51:56.0071 7680 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys
    13:51:56.0081 7680 ohci1394 - ok
    13:51:56.0106 7680 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
    13:51:56.0115 7680 ose - ok
    13:51:56.0132 7680 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
    13:51:56.0167 7680 p2pimsvc - ok
    13:51:56.0186 7680 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
    13:51:56.0199 7680 p2psvc - ok
    13:51:56.0210 7680 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys
    13:51:56.0220 7680 Parport - ok
    13:51:56.0241 7680 [ 90061B1ACFE8CCAA5345750FFE08D8B8 ] partmgr C:\Windows\system32\drivers\partmgr.sys
    13:51:56.0251 7680 partmgr - ok
    13:51:56.0260 7680 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
    13:51:56.0286 7680 PcaSvc - ok
    13:51:56.0302 7680 [ F36F6504009F2FB0DFD1B17A116AD74B ] pci C:\Windows\system32\DRIVERS\pci.sys
    13:51:56.0313 7680 pci - ok
    13:51:56.0319 7680 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\DRIVERS\pciide.sys
    13:51:56.0328 7680 pciide - ok
    13:51:56.0342 7680 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
    13:51:56.0353 7680 pcmcia - ok
    13:51:56.0361 7680 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
    13:51:56.0370 7680 pcw - ok
    13:51:56.0386 7680 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
    13:51:56.0429 7680 PEAUTH - ok
    13:51:56.0472 7680 [ B9B0A4299DD2D76A4243F75FD54DC680 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
    13:51:56.0505 7680 PeerDistSvc - ok
    13:51:56.0579 7680 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
    13:51:56.0592 7680 PerfHost - ok
    13:51:56.0662 7680 [ 087A343DFC337F37723DD7912DE6B6CD ] PID_PEPI C:\Windows\system32\DRIVERS\LV302V64.SYS
    13:51:56.0705 7680 PID_PEPI - ok
    13:51:56.0738 7680 [ 557E9A86F65F0DE18C9B6751DFE9D3F1 ] pla C:\Windows\system32\pla.dll
    13:51:56.0776 7680 pla - ok
    13:51:56.0811 7680 [ 98B1721B8718164293B9701B98C52D77 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
    13:51:56.0858 7680 PlugPlay - ok
    13:51:56.0882 7680 [ 37F6046CDC630442D7DC087501FF6FC6 ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
    13:51:56.0897 7680 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
    13:51:56.0897 7680 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
    13:51:56.0917 7680 [ A010F13D27C1033A8BE09D5FA9BF348B ] pneteth C:\Windows\system32\DRIVERS\pneteth.sys
    13:51:56.0958 7680 pneteth - ok
    13:51:56.0964 7680 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
    13:51:56.0981 7680 PNRPAutoReg - ok
    13:51:57.0000 7680 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
    13:51:57.0022 7680 PNRPsvc - ok
    13:51:57.0044 7680 [ 166EB40D1F5B47E615DE3D0FFFE5F243 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
    13:51:57.0088 7680 PolicyAgent - ok
    13:51:57.0103 7680 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
    13:51:57.0134 7680 Power - ok
    13:51:57.0155 7680 [ 27CC19E81BA5E3403C48302127BDA717 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
    13:51:57.0203 7680 PptpMiniport - ok
    13:51:57.0213 7680 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys
    13:51:57.0228 7680 Processor - ok
    13:51:57.0260 7680 [ 97293447431311C06703368AD0F6C4BE ] ProfSvc C:\Windows\system32\profsvc.dll
    13:51:57.0292 7680 ProfSvc - ok
    13:51:57.0298 7680 [ 156F6159457D0AA7E59B62681B56EB90 ] ProtectedStorage C:\Windows\system32\lsass.exe
    13:51:57.0310 7680 ProtectedStorage - ok
    13:51:57.0324 7680 [ EE992183BD8EAEFD9973F352E587A299 ] Psched C:\Windows\system32\DRIVERS\pacer.sys
    13:51:57.0349 7680 Psched - ok
    13:51:57.0384 7680 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
    13:51:57.0407 7680 ql2300 - ok
    13:51:57.0420 7680 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
    13:51:57.0429 7680 ql40xx - ok
    13:51:57.0455 7680 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
    13:51:57.0484 7680 QWAVE - ok
    13:51:57.0494 7680 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
    13:51:57.0518 7680 QWAVEdrv - ok
    13:51:57.0536 7680 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
    13:51:57.0560 7680 RasAcd - ok
    13:51:57.0582 7680 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
    13:51:57.0606 7680 RasAgileVpn - ok
    13:51:57.0635 7680 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
    13:51:57.0661 7680 RasAuto - ok
    13:51:57.0691 7680 [ 87A6E852A22991580D6D39ADC4790463 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
    13:51:57.0715 7680 Rasl2tp - ok
    13:51:57.0750 7680 [ 47394ED3D16D053F5906EFE5AB51CC83 ] RasMan C:\Windows\System32\rasmans.dll
    13:51:57.0786 7680 RasMan - ok
    13:51:57.0802 7680 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
    13:51:57.0832 7680 RasPppoe - ok
    13:51:57.0846 7680 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
    13:51:57.0878 7680 RasSstp - ok
    13:51:57.0889 7680 [ 3BAC8142102C15D59A87757C1D41DCE5 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
    13:51:57.0932 7680 rdbss - ok
    13:51:57.0946 7680 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
    13:51:57.0963 7680 rdpbus - ok
    13:51:57.0976 7680 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
    13:51:57.0999 7680 RDPCDD - ok
    13:51:58.0017 7680 [ 9706B84DBABFC4B4CA46C5A82B14DFA3 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
    13:51:58.0045 7680 RDPDR - ok
    13:51:58.0050 7680 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
    13:51:58.0101 7680 RDPENCDD - ok
    13:51:58.0115 7680 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
    13:51:58.0147 7680 RDPREFMP - ok
    13:51:58.0174 7680 [ 447DE7E3DEA39D422C1504F245B668B1 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
    13:51:58.0209 7680 RDPWD - ok
    13:51:58.0224 7680 [ 634B9A2181D98F15941236886164EC8B ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
    13:51:58.0237 7680 rdyboost - ok
    13:51:58.0254 7680 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
    13:51:58.0312 7680 RemoteAccess - ok
    13:51:58.0327 7680 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
    13:51:58.0358 7680 RemoteRegistry - ok
    13:51:58.0387 7680 [ B60F58F175DE20A6739194E85B035178 ] rpcapd C:\Program Files (x86)\WinPcap\rpcapd.exe
    13:51:58.0393 7680 rpcapd - ok
    13:51:58.0406 7680 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
    13:51:58.0452 7680 RpcEptMapper - ok
    13:51:58.0468 7680 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
    13:51:58.0500 7680 RpcLocator - ok
    13:51:58.0531 7680 [ 7266972E86890E2B30C0C322E906B027 ] RpcSs C:\Windows\system32\rpcss.dll
    13:51:58.0581 7680 RpcSs - ok
    13:51:58.0592 7680 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
    13:51:58.0629 7680 rspndr - ok
    13:51:58.0662 7680 [ BAEFEE35D27A5440D35092CE10267BEC ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
    13:51:58.0680 7680 RTL8167 - ok
    13:51:58.0692 7680 [ 88AF6E02AB19DF7FD07ECDF9C91E9AF6 ] s3cap C:\Windows\system32\DRIVERS\vms3cap.sys
    13:51:58.0718 7680 s3cap - ok
    13:51:58.0757 7680 [ 156F6159457D0AA7E59B62681B56EB90 ] SamSs C:\Windows\system32\lsass.exe
    13:51:58.0775 7680 SamSs - ok
    13:51:58.0800 7680 [ E3BBB89983DAF5622C1D50CF49F28227 ] sbp2port C:\Windows\system32\DRIVERS\sbp2port.sys
    13:51:58.0817 7680 sbp2port - ok
    13:51:58.0995 7680 [ 794D4B48DFB6E999537C7C3947863463 ] SBSDWSCService C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
    13:51:59.0028 7680 SBSDWSCService - ok
    13:51:59.0035 7680 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
    13:51:59.0061 7680 SCardSvr - ok
    13:51:59.0083 7680 [ 46942B6980B35FFDA6AFA40A8328938C ] SCDEmu C:\Windows\system32\drivers\SCDEmu.sys
    13:51:59.0090 7680 SCDEmu - ok
    13:51:59.0099 7680 [ C94DA20C7E3BA1DCA269BC8460D98387 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
    13:51:59.0131 7680 scfilter - ok
    13:51:59.0172 7680 [ 624D0F5FF99428BB90A5B8A4123E918E ] Schedule C:\Windows\system32\schedsvc.dll
    13:51:59.0196 7680 Schedule - ok
    13:51:59.0210 7680 [ 312E2F82AF11E79906898AC3E3D58A1F ] SCPolicySvc C:\Windows\System32\certprop.dll
    13:51:59.0234 7680 SCPolicySvc - ok
    13:51:59.0245 7680 [ 765A27C3279CE11D14CB9E4F5869FCA5 ] SDRSVC C:\Windows\System32\SDRSVC.dll
    13:51:59.0278 7680 SDRSVC - ok
    13:51:59.0285 7680 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
    13:51:59.0349 7680 secdrv - ok
    13:51:59.0361 7680 [ 463B386EBC70F98DA5DFF85F7E654346 ] seclogon C:\Windows\system32\seclogon.dll
    13:51:59.0393 7680 seclogon - ok
    13:51:59.0407 7680 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\system32\sens.dll
    13:51:59.0444 7680 SENS - ok
    13:51:59.0458 7680 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
    13:51:59.0498 7680 SensrSvc - ok
    13:51:59.0511 7680 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
    13:51:59.0532 7680 Serenum - ok
    13:51:59.0548 7680 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
    13:51:59.0562 7680 Serial - ok
    13:51:59.0570 7680 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
    13:51:59.0583 7680 sermouse - ok
    13:51:59.0601 7680 [ C3BC61CE47FF6F4E88AB8A3B429A36AF ] SessionEnv C:\Windows\system32\sessenv.dll
    13:51:59.0636 7680 SessionEnv - ok
    13:51:59.0649 7680 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\DRIVERS\sffdisk.sys
    13:51:59.0666 7680 sffdisk - ok
    13:51:59.0675 7680 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\DRIVERS\sffp_mmc.sys
    13:51:59.0692 7680 sffp_mmc - ok
    13:51:59.0699 7680 [ 5588B8C6193EB1522490C122EB94DFFA ] sffp_sd C:\Windows\system32\DRIVERS\sffp_sd.sys
    13:51:59.0709 7680 sffp_sd - ok
    13:51:59.0711 7680 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
    13:51:59.0719 7680 sfloppy - ok
    13:51:59.0754 7680 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
    13:51:59.0811 7680 SharedAccess - ok
    13:51:59.0828 7680 [ 0298AC45D0EFFFB2DB4BAA7DD186E7BF ] ShellHWDetection C:\Windows\System32\shsvcs.dll
    13:51:59.0847 7680 ShellHWDetection - ok
    13:51:59.0859 7680 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
    13:51:59.0867 7680 SiSRaid2 - ok
    13:51:59.0876 7680 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
    13:51:59.0884 7680 SiSRaid4 - ok
    13:52:00.0002 7680 [ 753D254205E0A62100A050BD8B458D06 ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
    13:52:00.0043 7680 Skype C2C Service - ok
    13:52:00.0088 7680 [ EA396139541706B4B433641D62EA53CE ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
    13:52:00.0102 7680 SkypeUpdate - ok
    13:52:00.0112 7680 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
    13:52:00.0168 7680 Smb - ok
    13:52:00.0180 7680 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
    13:52:00.0195 7680 SNMPTRAP - ok
    13:52:00.0197 7680 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
    13:52:00.0205 7680 spldr - ok
    13:52:00.0238 7680 [ 567977DC43CC13C4C35ED7084C0B84D5 ] Spooler C:\Windows\System32\spoolsv.exe
    13:52:00.0261 7680 Spooler - ok
    13:52:00.0338 7680 [ 913D843498553A1BC8F8DBAD6358E49F ] sppsvc C:\Windows\system32\sppsvc.exe
    13:52:00.0385 7680 sppsvc - ok
    13:52:00.0393 7680 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
    13:52:00.0429 7680 sppuinotify - ok
    13:52:00.0463 7680 [ 2408C0366D96BCDF63E8F1C78E4A29C5 ] srv C:\Windows\system32\DRIVERS\srv.sys
    13:52:00.0497 7680 srv - ok
    13:52:00.0520 7680 [ 76548F7B818881B47D8D1AE1BE9C11F8 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
    13:52:00.0546 7680 srv2 - ok
    13:52:00.0569 7680 [ 0AF6E19D39C70844C5CAA8FB0183C36E ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
    13:52:00.0583 7680 srvnet - ok
    13:52:00.0592 7680 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
    13:52:00.0636 7680 SSDPSRV - ok
    13:52:00.0658 7680 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
    13:52:00.0690 7680 SstpSvc - ok
    13:52:00.0705 7680 Steam Client Service - ok
    13:52:00.0720 7680 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
    13:52:00.0730 7680 stexstor - ok
    13:52:00.0757 7680 [ DECACB6921DED1A38642642685D77DAC ] StillCam C:\Windows\system32\DRIVERS\serscan.sys
    13:52:00.0787 7680 StillCam - ok
    13:52:00.0818 7680 [ 52D0E33B681BD0F33FDC08812FEE4F7D ] stisvc C:\Windows\System32\wiaservc.dll
    13:52:00.0849 7680 stisvc - ok
    13:52:00.0875 7680 [ FFD7A6F15B14234B5B0E5D49E7961895 ] storflt C:\Windows\system32\DRIVERS\vmstorfl.sys
    13:52:00.0887 7680 storflt - ok
    13:52:00.0914 7680 [ C40841817EF57D491F22EB103DA587CC ] StorSvc C:\Windows\system32\storsvc.dll
    13:52:00.0949 7680 StorSvc - ok
    13:52:00.0957 7680 [ 8FCCBEFC5C440B3C23454656E551B09A ] storvsc C:\Windows\system32\DRIVERS\storvsc.sys
    13:52:00.0969 7680 storvsc - ok
    13:52:00.0993 7680 supersafer64 - ok
    13:52:00.0999 7680 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
    13:52:01.0007 7680 swenum - ok
    13:52:01.0065 7680 [ F577910A133A592234EBAAD3F3AFA258 ] SwitchBoard C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
    13:52:01.0085 7680 SwitchBoard ( UnsignedFile.Multi.Generic ) - warning
    13:52:01.0085 7680 SwitchBoard - detected UnsignedFile.Multi.Generic (1)
    13:52:01.0105 7680 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
    13:52:01.0138 7680 swprv - ok
    13:52:01.0172 7680 [ 3C1284516A62078FB68F768DE4F1A7BE ] SysMain C:\Windows\system32\sysmain.dll
    13:52:01.0204 7680 SysMain - ok
    13:52:01.0212 7680 [ 238935C3CF2854886DC7CBB2A0E2CC66 ] TabletInputService C:\Windows\System32\TabSvc.dll
    13:52:01.0224 7680 TabletInputService - ok
    13:52:01.0239 7680 [ 884264AC597B690C5707C89723BB8E7B ] TapiSrv C:\Windows\System32\tapisrv.dll
    13:52:01.0288 7680 TapiSrv - ok
    13:52:01.0310 7680 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
    13:52:01.0335 7680 TBS - ok
    13:52:01.0387 7680 [ 624C5B3AA4C99B3184BB922D9ECE3FF0 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
    13:52:01.0417 7680 Tcpip - ok
    13:52:01.0454 7680 [ 624C5B3AA4C99B3184BB922D9ECE3FF0 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
    13:52:01.0480 7680 TCPIP6 - ok
    13:52:01.0487 7680 [ 76D078AF6F587B162D50210F761EB9ED ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
    13:52:01.0524 7680 tcpipreg - ok
    13:52:01.0537 7680 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
    13:52:01.0560 7680 TDPIPE - ok
    13:52:01.0589 7680 [ 7518F7BCFD4B308ABC9192BACAF6C970 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
    13:52:01.0631 7680 TDTCP - ok
    13:52:01.0646 7680 [ 079125C4B17B01FCAEEBCE0BCB290C0F ] tdx C:\Windows\system32\DRIVERS\tdx.sys
    13:52:01.0696 7680 tdx - ok
    13:52:01.0802 7680 [ A4D2CE94B028EF1E437CF4AC3D8FF26C ] TeamViewer7 C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
    13:52:01.0841 7680 TeamViewer7 - ok
    13:52:01.0855 7680 [ C448651339196C0E869A355171875522 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
    13:52:01.0863 7680 TermDD - ok
    13:52:01.0887 7680 [ 0F05EC2887BFE197AD82A13287D2F404 ] TermService C:\Windows\System32\termsrv.dll
    13:52:01.0936 7680 TermService - ok
    13:52:01.0949 7680 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
    13:52:01.0966 7680 Themes - ok
    13:52:01.0986 7680 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
    13:52:02.0011 7680 THREADORDER - ok
    13:52:02.0022 7680 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
    13:52:02.0060 7680 TrkWks - ok
    13:52:02.0098 7680 [ 840F7FB849F5887A49BA18C13B2DA920 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
    13:52:02.0107 7680 TrustedInstaller - ok
    13:52:02.0111 7680 [ 61B96C26131E37B24E93327A0BD1FB95 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
    13:52:02.0135 7680 tssecsrv - ok
    13:52:02.0142 7680 [ 3836171A2CDF3AF8EF10856DB9835A70 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
    13:52:02.0183 7680 tunnel - ok
    13:52:02.0247 7680 [ AAF458CC200326BEF602B5339400BF86 ] tvnserver C:\Program Files (x86)\Common Files\Comodo\tvnserver.exe
    13:52:02.0273 7680 tvnserver - ok
    13:52:02.0286 7680 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
    13:52:02.0297 7680 uagp35 - ok
    13:52:02.0316 7680 [ D47BAEAD86C65D4F4069D7CE0A4EDCEB ] udfs C:\Windows\system32\DRIVERS\udfs.sys
    13:52:02.0352 7680 udfs - ok
    13:52:02.0363 7680 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
    13:52:02.0372 7680 UI0Detect - ok
    13:52:02.0380 7680 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\DRIVERS\uliagpkx.sys
    13:52:02.0388 7680 uliagpkx - ok
    13:52:02.0395 7680 [ EAB6C35E62B1B0DB0D1B48B671D3A117 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
    13:52:02.0409 7680 umbus - ok
    13:52:02.0415 7680 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
    13:52:02.0430 7680 UmPass - ok
    13:52:02.0453 7680 [ AF0AC98EE5077EB844413EB54287FDE3 ] UmRdpService C:\Windows\System32\umrdp.dll
    13:52:02.0466 7680 UmRdpService - ok
    13:52:02.0479 7680 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
    13:52:02.0507 7680 upnphost - ok
    13:52:02.0529 7680 [ FB251567F41BC61988B26731DEC19E4B ] USBAAPL64 C:\Windows\system32\Drivers\usbaapl64.sys
    13:52:02.0555 7680 USBAAPL64 - ok
    13:52:02.0574 7680 [ 77B01BC848298223A95D4EC23E1785A1 ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
    13:52:02.0595 7680 usbaudio - ok
    13:52:02.0622 7680 [ 7B6A127C93EE590E4D79A5F2A76FE46F ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
    13:52:02.0657 7680 usbccgp - ok
    13:52:02.0671 7680 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\DRIVERS\usbcir.sys
    13:52:02.0699 7680 usbcir - ok
    13:52:02.0714 7680 [ 92969BA5AC44E229C55A332864F79677 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
    13:52:02.0728 7680 usbehci - ok
    13:52:02.0760 7680 [ E7DF1CFD28CA86B35EF5ADD0735CEEF3 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
    13:52:02.0792 7680 usbhub - ok
    13:52:02.0812 7680 [ F1BB1E55F1E7A65C5839CCC7B36D773E ] usbohci C:\Windows\system32\drivers\usbohci.sys
    13:52:02.0841 7680 usbohci - ok
    13:52:02.0861 7680 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
    13:52:02.0881 7680 usbprint - ok
    13:52:02.0910 7680 [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
    13:52:02.0942 7680 usbscan - ok
    13:52:03.0014 7680 [ F39983647BC1F3E6100778DDFE9DCE29 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
    13:52:03.0042 7680 USBSTOR - ok
    13:52:03.0051 7680 [ BC3070350A491D84B518D7CCA9ABD36F ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
    13:52:03.0075 7680 usbuhci - ok
    13:52:03.0093 7680 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
    13:52:03.0145 7680 UxSms - ok
    13:52:03.0157 7680 [ 156F6159457D0AA7E59B62681B56EB90 ] VaultSvc C:\Windows\system32\lsass.exe
    13:52:03.0165 7680 VaultSvc - ok
    13:52:03.0168 7680 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\DRIVERS\vdrvroot.sys
    13:52:03.0176 7680 vdrvroot - ok
    13:52:03.0190 7680 [ 44D73E0BBC1D3C8981304BA15135C2F2 ] vds C:\Windows\System32\vds.exe
    13:52:03.0208 7680 vds - ok
    13:52:03.0219 7680 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
    13:52:03.0229 7680 vga - ok
    13:52:03.0243 7680 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
    13:52:03.0278 7680 VgaSave - ok
    13:52:03.0288 7680 [ C82E748660F62A242B2DFAC1442F22A4 ] vhdmp C:\Windows\system32\DRIVERS\vhdmp.sys
    13:52:03.0298 7680 vhdmp - ok
    13:52:03.0309 7680 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\DRIVERS\viaide.sys
     
  9. phiya

    phiya TS Rookie Topic Starter

    13:52:03.0316 7680 viaide - ok
    13:52:03.0337 7680 [ 1501699D7EDA984ABC4155A7DA5738D1 ] vmbus C:\Windows\system32\DRIVERS\vmbus.sys
    13:52:03.0347 7680 vmbus - ok
    13:52:03.0355 7680 [ AE10C35761889E65A6F7176937C5592C ] VMBusHID C:\Windows\system32\DRIVERS\VMBusHID.sys
    13:52:03.0366 7680 VMBusHID - ok
    13:52:03.0380 7680 [ 2B1A3DAE2B4E70DBBA822B7A03FBD4A3 ] volmgr C:\Windows\system32\DRIVERS\volmgr.sys
    13:52:03.0388 7680 volmgr - ok
    13:52:03.0403 7680 [ 99B0CBB569CA79ACAED8C91461D765FB ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
    13:52:03.0415 7680 volmgrx - ok
    13:52:03.0446 7680 [ 58F82EED8CA24B461441F9C3E4F0BF5C ] volsnap C:\Windows\system32\DRIVERS\volsnap.sys
    13:52:03.0457 7680 volsnap - ok
    13:52:03.0486 7680 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
    13:52:03.0495 7680 vsmraid - ok
    13:52:03.0561 7680 [ 787898BF9FB6D7BD87A36E2D95C899BA ] VSS C:\Windows\system32\vssvc.exe
    13:52:03.0594 7680 VSS - ok
    13:52:03.0601 7680 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
    13:52:03.0615 7680 vwifibus - ok
    13:52:03.0628 7680 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
    13:52:03.0655 7680 W32Time - ok
    13:52:03.0670 7680 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
    13:52:03.0683 7680 WacomPen - ok
    13:52:03.0692 7680 [ 47CA49400643EFFD3F1C9A27E1D69324 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
    13:52:03.0717 7680 WANARP - ok
    13:52:03.0719 7680 [ 47CA49400643EFFD3F1C9A27E1D69324 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
    13:52:03.0744 7680 Wanarpv6 - ok
    13:52:03.0779 7680 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
    13:52:03.0800 7680 WatAdminSvc - ok
    13:52:03.0834 7680 [ 5AB1BB85BD8B5089CC5D64200DEDAE68 ] wbengine C:\Windows\system32\wbengine.exe
    13:52:03.0870 7680 wbengine - ok
    13:52:03.0879 7680 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
    13:52:03.0892 7680 WbioSrvc - ok
    13:52:03.0930 7680 [ DD1BAE8EBFC653824D29CCF8C9054D68 ] wcncsvc C:\Windows\System32\wcncsvc.dll
    13:52:03.0948 7680 wcncsvc - ok
    13:52:03.0958 7680 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
    13:52:03.0979 7680 WcsPlugInService - ok
    13:52:03.0990 7680 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys
    13:52:03.0997 7680 Wd - ok
    13:52:04.0026 7680 [ 441BD2D7B4F98134C3A4F9FA570FD250 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
    13:52:04.0040 7680 Wdf01000 - ok
    13:52:04.0046 7680 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
    13:52:04.0065 7680 WdiServiceHost - ok
    13:52:04.0067 7680 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
    13:52:04.0080 7680 WdiSystemHost - ok
    13:52:04.0111 7680 [ 733006127F235BE7C35354EBEE7B9A7B ] WebClient C:\Windows\System32\webclnt.dll
    13:52:04.0152 7680 WebClient - ok
    13:52:04.0163 7680 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
    13:52:04.0202 7680 Wecsvc - ok
    13:52:04.0213 7680 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
    13:52:04.0238 7680 wercplsupport - ok
    13:52:04.0246 7680 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
    13:52:04.0282 7680 WerSvc - ok
    13:52:04.0298 7680 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
    13:52:04.0322 7680 WfpLwf - ok
    13:52:04.0334 7680 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
    13:52:04.0342 7680 WIMMount - ok
    13:52:04.0354 7680 WinDefend - ok
    13:52:04.0357 7680 WinHttpAutoProxySvc - ok
    13:52:04.0379 7680 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
    13:52:04.0405 7680 Winmgmt - ok
    13:52:04.0445 7680 [ 41FBB751936B387F9179E7F03A74FE29 ] WinRM C:\Windows\system32\WsmSvc.dll
    13:52:04.0501 7680 WinRM - ok
    13:52:04.0529 7680 [ 817EAFF5D38674EDD7713B9DFB8E9791 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
    13:52:04.0544 7680 WinUsb - ok
    13:52:04.0573 7680 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
    13:52:04.0613 7680 Wlansvc - ok
    13:52:04.0625 7680 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
    13:52:04.0635 7680 WmiAcpi - ok
    13:52:04.0646 7680 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
    13:52:04.0666 7680 wmiApSrv - ok
    13:52:04.0675 7680 WMPNetworkSvc - ok
    13:52:04.0685 7680 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
    13:52:04.0703 7680 WPCSvc - ok
    13:52:04.0716 7680 [ 2E57DDF2880A7E52E76F41C7E96D327B ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
    13:52:04.0734 7680 WPDBusEnum - ok
    13:52:04.0745 7680 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
    13:52:04.0779 7680 ws2ifsl - ok
    13:52:04.0809 7680 [ 8F9F3969933C02DA96EB0F84576DB43E ] wscsvc C:\Windows\system32\wscsvc.dll
    13:52:04.0847 7680 wscsvc - ok
    13:52:04.0850 7680 WSearch - ok
    13:52:04.0925 7680 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
    13:52:04.0969 7680 wuauserv - ok
    13:52:04.0981 7680 [ 7CADC74271DD6461C452C271B30BD378 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
    13:52:05.0012 7680 WudfPf - ok
    13:52:05.0030 7680 [ 3B197AF0FFF08AA66B6B2241CA538D64 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
    13:52:05.0055 7680 WUDFRd - ok
    13:52:05.0064 7680 [ B551D6637AA0E132C18AC6E504F7B79B ] wudfsvc C:\Windows\System32\WUDFSvc.dll
    13:52:05.0096 7680 wudfsvc - ok
    13:52:05.0113 7680 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\Windows\System32\wwansvc.dll
    13:52:05.0136 7680 WwanSvc - ok
    13:52:05.0142 7680 ================ Scan global ===============================
    13:52:05.0165 7680 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
    13:52:05.0196 7680 [ 0CB6EBF4B461A6043353C570BD72A1E1 ] C:\Windows\system32\winsrv.dll
    13:52:05.0205 7680 [ 0CB6EBF4B461A6043353C570BD72A1E1 ] C:\Windows\system32\winsrv.dll
    13:52:05.0219 7680 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
    13:52:05.0240 7680 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
    13:52:05.0243 7680 [Global] - ok
    13:52:05.0244 7680 ================ Scan MBR ==================================
    13:52:05.0246 7680 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk0\DR0
    13:52:05.0343 7680 \Device\Harddisk0\DR0 - ok
    13:52:05.0354 7680 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
    13:52:05.0555 7680 \Device\Harddisk1\DR1 ( TDSS File System ) - warning
    13:52:05.0555 7680 \Device\Harddisk1\DR1 - detected TDSS File System (1)
    13:52:05.0556 7680 ================ Scan VBR ==================================
    13:52:05.0559 7680 [ 14951C02E2A8EBD633FB4B3ABECBD813 ] \Device\Harddisk0\DR0\Partition1
    13:52:05.0560 7680 \Device\Harddisk0\DR0\Partition1 - ok
    13:52:05.0564 7680 [ F200AB2878329645F0EBF6E0F0511C0F ] \Device\Harddisk0\DR0\Partition2
    13:52:05.0565 7680 \Device\Harddisk0\DR0\Partition2 - ok
    13:52:05.0569 7680 [ B904E8B5FB2AD94F51423E5B2A12D43D ] \Device\Harddisk1\DR1\Partition1
    13:52:05.0571 7680 \Device\Harddisk1\DR1\Partition1 - ok
    13:52:05.0594 7680 [ D8D6C5FBE23B1CA15007024AD2420083 ] \Device\Harddisk1\DR1\Partition2
    13:52:05.0596 7680 \Device\Harddisk1\DR1\Partition2 - ok
    13:52:05.0597 7680 ============================================================
    13:52:05.0597 7680 Scan finished
    13:52:05.0597 7680 ============================================================
    13:52:05.0607 7796 Detected object count: 10
    13:52:05.0608 7796 Actual detected object count: 10
    13:52:29.0445 7796 hpqcxs08 ( UnsignedFile.Multi.Generic ) - skipped by user
    13:52:29.0445 7796 hpqcxs08 ( UnsignedFile.Multi.Generic ) - User select action: Skip
    13:52:29.0446 7796 hpqddsvc ( UnsignedFile.Multi.Generic ) - skipped by user
    13:52:29.0446 7796 hpqddsvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
    13:52:29.0448 7796 HPSLPSVC ( UnsignedFile.Multi.Generic ) - skipped by user
    13:52:29.0448 7796 HPSLPSVC ( UnsignedFile.Multi.Generic ) - User select action: Skip
    13:52:29.0450 7796 McciCMService ( UnsignedFile.Multi.Generic ) - skipped by user
    13:52:29.0450 7796 McciCMService ( UnsignedFile.Multi.Generic ) - User select action: Skip
    13:52:29.0451 7796 MREMP50 ( UnsignedFile.Multi.Generic ) - skipped by user
    13:52:29.0451 7796 MREMP50 ( UnsignedFile.Multi.Generic ) - User select action: Skip
    13:52:29.0453 7796 MRESP50 ( UnsignedFile.Multi.Generic ) - skipped by user
    13:52:29.0453 7796 MRESP50 ( UnsignedFile.Multi.Generic ) - User select action: Skip
    13:52:29.0455 7796 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
    13:52:29.0455 7796 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
    13:52:29.0456 7796 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
    13:52:29.0456 7796 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
    13:52:29.0458 7796 SwitchBoard ( UnsignedFile.Multi.Generic ) - skipped by user
    13:52:29.0458 7796 SwitchBoard ( UnsignedFile.Multi.Generic ) - User select action: Skip
    13:52:29.0460 7796 \Device\Harddisk1\DR1 ( TDSS File System ) - skipped by user
    13:52:29.0460 7796 \Device\Harddisk1\DR1 ( TDSS File System ) - User select action: Skip
     
  10. Jay Pfoutz

    Jay Pfoutz Malware Helper Posts: 4,282   +49

    Please download Farbar Service Scanner (FSS) and run it on the computer with the issue.
    • Make sure the following options are checked:
      • Internet Services
      • Windows Firewall
      • System Restore
      • Security Center
      • Windows Update
      • Windows Defender
    • Press "Scan".
    • It will create a log (FSS.txt) in the same directory the tool is run.
    • Please copy and paste the log to your reply.


    ====================================


    avast! aswMBR

    Please download aswMBR from here
    • Save aswMBR.exe to your Desktop
    • Double click aswMBR.exe to run it
    • Click the Scan button to start the scan as illustrated below
    [​IMG]
    Note: Do not take action against any **Rootkit** entries until I have reviewed the log. Often there are false positives
    • Once the scan finishes click Save log to save the log to your Desktop
      [​IMG]
    • Copy and paste the contents of aswMBR.txt back here for review
    • Please also find MBR.dat on your Desktop, and rename it to MBR.txt. Upload that as well. Do not copy and paste MBR.dat/txt, it needs to be uploaded.
     
  11. phiya

    phiya TS Rookie Topic Starter

    Farbar Service Scanner Version: 19-09-2012
    Ran by Ricky (administrator) on 30-09-2012 at 14:52:06
    Running from "C:\Users\Ricky\Downloads"
    Microsoft Windows 7 Professional (X64)
    Boot Mode: Normal
    ****************************************************************

    Internet Services:
    ============

    Connection Status:
    ==============
    Localhost is accessible.
    LAN connected.
    Google IP is accessible.
    Google.com is accessible.
    Attempt to access Yahoo IP returned error: Other errors
    Yahoo.com is accessible.


    Windows Firewall:
    =============

    Firewall Disabled Policy:
    ==================


    System Restore:
    ============

    System Restore Disabled Policy:
    ========================


    Action Center:
    ============

    Windows Update:
    ============

    Windows Autoupdate Disabled Policy:
    ============================


    Windows Defender:
    ==============

    Other Services:
    ==============


    File Check:
    ========
    C:\Windows\System32\nsisvc.dll => MD5 is legit
    C:\Windows\System32\drivers\nsiproxy.sys => MD5 is legit
    C:\Windows\System32\dhcpcore.dll => MD5 is legit
    C:\Windows\System32\drivers\afd.sys
    [2012-02-16 20:08] - [2011-12-27 20:59] - 0499200 ____A (Microsoft Corporation) DB9D6C6B2CD95A9CA414D045B627422E

    C:\Windows\System32\drivers\tdx.sys => MD5 is legit
    C:\Windows\System32\Drivers\tcpip.sys
    [2012-05-09 19:39] - [2012-03-30 04:09] - 1895280 ____A (Microsoft Corporation) 624C5B3AA4C99B3184BB922D9ECE3FF0

    C:\Windows\System32\dnsrslvr.dll => MD5 is legit
    C:\Windows\System32\mpssvc.dll
    [2009-07-13 17:09] - [2009-07-13 18:41] - 0824832 ____A (Microsoft Corporation) AECAB449567D1846DAD63ECE49E893E3

    C:\Windows\System32\bfe.dll => MD5 is legit
    C:\Windows\System32\drivers\mpsdrv.sys => MD5 is legit
    C:\Windows\System32\SDRSVC.dll
    [2009-07-13 16:36] - [2009-07-13 18:41] - 0170496 ____A (Microsoft Corporation) 765A27C3279CE11D14CB9E4F5869FCA5

    C:\Windows\System32\vssvc.exe => MD5 is legit
    C:\Windows\System32\wscsvc.dll => MD5 is legit
    C:\Windows\System32\wbem\WMIsvc.dll => MD5 is legit
    C:\Windows\System32\wuaueng.dll => MD5 is legit
    C:\Windows\System32\qmgr.dll => MD5 is legit
    C:\Windows\System32\es.dll => MD5 is legit
    C:\Windows\System32\cryptsvc.dll
    [2012-06-13 18:25] - [2012-04-23 22:59] - 0182272 ____A (Microsoft Corporation) F02786B66375292E58C8777082D4396D

    C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit
    C:\Windows\System32\svchost.exe => MD5 is legit
    C:\Windows\System32\rpcss.dll => MD5 is legit


    **** End of log ****


    aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
    Run date: 2012-09-30 14:53:19
    -----------------------------
    14:53:19.976 OS Version: Windows x64 6.1.7600
    14:53:19.976 Number of processors: 4 586 0x1E05
    14:53:19.976 ComputerName: RICKY-PC UserName: Ricky
    14:53:21.322 Initialize success
    15:01:02.306 AVAST engine defs: 12093001
    15:22:08.363 Disk 0 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP2T0L0-2
    15:22:08.366 Disk 0 Vendor: WDC_WD1600AAJS-08WAA0 58.01D58 Size: 152627MB BusType: 3
    15:22:08.369 Disk 1 (boot) \Device\Harddisk1\DR1 -> \Device\Ide\IdeDeviceP3T0L0-3
    15:22:08.373 Disk 1 Vendor: WDC_WD5001AALS-00L3B2 01.03B01 Size: 476940MB BusType: 3
    15:22:08.387 Disk 1 MBR read successfully
    15:22:08.391 Disk 1 MBR scan
    15:22:08.397 Disk 1 Windows 7 default MBR code
    15:22:08.402 Disk 1 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
    15:22:08.419 Disk 1 Partition 2 00 07 HPFS/NTFS NTFS 476838 MB offset 206848
    15:22:08.435 Disk 1 scanning C:\Windows\system32\drivers
    15:22:15.138 Service scanning
    15:22:30.563 Modules scanning
    15:22:30.575 Disk 1 trace - called modules:
    15:22:30.919 ntoskrnl.exe CLASSPNP.SYS disk.sys ataport.SYS pciide.sys PCIIDEX.SYS hal.dll atapi.sys
    15:22:30.926 1 nt!IofCallDriver -> \Device\Harddisk1\DR1[0xfffffa800780f060]
    15:22:30.934 3 CLASSPNP.SYS[fffff8800190843f] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP3T0L0-3[0xfffffa8007558060]
    15:22:32.393 AVAST engine scan C:\Windows
    15:22:34.807 AVAST engine scan C:\Windows\system32
    15:24:35.299 AVAST engine scan C:\Windows\system32\drivers
    15:24:43.764 AVAST engine scan C:\Users\Ricky
    15:32:34.511 AVAST engine scan C:\ProgramData
    15:38:16.310 Scan finished successfully
    15:51:08.538 Disk 1 MBR has been saved successfully to "C:\Users\Ricky\Desktop\MBR.dat"
    15:51:08.544 The log file has been saved successfully to "C:\Users\Ricky\Desktop\aswMBR.txt"


     

    Attached Files:

    • MBR.txt
      File size:
      512 bytes
      Views:
      0
  12. Jay Pfoutz

    Jay Pfoutz Malware Helper Posts: 4,282   +49

    ComboFix

    Please download ComboFix[​IMG] by sUBs
    From BleepingComputer.com

    Please save the file to your Desktop, but rename it first to svchost.exe

    Important information about ComboFix

    Before the download:
    • Please copy and paste these instructions to Notepad and save to your Desktop, or print them - for easier access.
    • It is important to rename ComboFix before the download.
    • Please do not rename ComboFix to other names, but only the one indicated.
    After the download:
    • Close any open browsers.
    • Very Important: Temporarily disable your anti-virus, script blocking and any anti-malware real-time protection before performing a scan. They can interfere with ComboFix or remove some of its embedded files which may cause "unpredictable results". Please visit here if you don't know how.
    • WARNING: Combofix will disconnect your machine from the Internet as soon as it starts
    • Please do not attempt to re-connect your machine back to the Internet until ComboFix has completely finished.
    • If there is no Internet connection after running ComboFix, then restart your computer to restore back your connection.
    Running ComboFix:
    • Double click on svchost.exe & follow the prompts.
    • It will attempt to install the Recovery Console:
    • When ComboFix finishes, it will produce a report for you.
    • Please post the "C:\Combo-Fix.txt" in your next reply.
    Troubleshooting ComboFix

    Safe Mode:

    If you still cannot get ComboFix to run, try booting into Safe Mode, and run it there.

    (To boot into Safe Mode, tap F8 after BIOS, and just before the Windows
    logo appears. A list of options will appear, select "Safe Mode.")

    Re-downloading:

    If this doesn't work either, try the same method (above method), but try to download it again, except name
    ComboFix.exe to iexplore.exe, explorer.exe, or winlogon.exe.

    Malware is known for blocking all "user" processes, except for its whitelist of system important processes such as iexplore.exe, explorer.exe, winlogon.exe.

    NOTE: If you encounter a message "illegal operation attempted on registry key that has been marked for deletion" and no programs will run - please just reboot and that will resolve that error.
     
  13. Jay Pfoutz

    Jay Pfoutz Malware Helper Posts: 4,282   +49

    Hello. Are you still with us?

    This topic is marked inactive because you have not replied for several days. Please indicate you want to continue.
     

Similar Topics

Add New Comment

You need to be a member to leave a comment. Join thousands of tech enthusiasts and participate.
TechSpot Account You may also...