TechSpot

Services unexpectantly shutting down

By Nate41785
Apr 7, 2012
  1. I'm getting multiple errors in my system logs as you will see below. Just want to know if this is something to worry about or not. Thanks, I just happened to come across this site, good stuff.

    Malwarebytes Anti-Malware (Trial) 1.60.1.1000
    www.malwarebytes.org

    Database version: v2012.04.07.07

    Windows 7 Service Pack 1 x64 NTFS
    Internet Explorer 9.0.8112.16421
    ASUSROG :: ASUSROG-PC [administrator]

    Protection: Enabled

    4/7/2012 10:58:01 PM
    mbam-log-2012-04-07 (22-58-01).txt

    Scan type: Quick scan
    Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
    Scan options disabled: P2P
    Objects scanned: 192797
    Time elapsed: 1 minute(s), 2 second(s)

    Memory Processes Detected: 0
    (No malicious items detected)

    Memory Modules Detected: 0
    (No malicious items detected)

    Registry Keys Detected: 0
    (No malicious items detected)

    Registry Values Detected: 0
    (No malicious items detected)

    Registry Data Items Detected: 0
    (No malicious items detected)

    Folders Detected: 0
    (No malicious items detected)

    Files Detected: 0
    (No malicious items detected)

    (end)

    GMER 1.0.15.15641 - http://www.gmer.net
    Rootkit scan 2012-04-07 23:06:45
    Windows 6.1.7601 Service Pack 1
    Running: wuerj0pb.exe


    ---- Registry - GMER 1.0.15 ----

    Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\74f06dd0e49b
    Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\74f06dd0e49b (not active ControlSet)

    ---- EOF - GMER 1.0.15 ----

    .
    DDS (Ver_2011-08-26.01) - NTFSAMD64
    Internet Explorer: 9.0.8112.16421
    Run by ASUSROG at 23:16:12 on 2012-04-07
    Microsoft Windows 7 Ultimate 6.1.7601.1.1252.1.1033.18.16361.14039 [GMT 4.5:30]
    .
    AV: AVG Premium Security 2012 *Enabled/Updated* {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}
    SP: AVG Premium Security 2012 *Enabled/Updated* {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}
    SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    FW: AVG Firewall *Enabled* {621CC794-9486-F902-D092-0484E8EA828B}
    .
    ============== Running Processes ===============
    .
    C:\Windows\system32\wininit.exe
    C:\Windows\system32\lsm.exe
    C:\Windows\system32\svchost.exe -k DcomLaunch
    C:\Windows\system32\nvvsvc.exe
    C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
    C:\Windows\system32\svchost.exe -k RPCSS
    C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
    C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
    C:\Windows\system32\svchost.exe -k netsvcs
    C:\Windows\system32\svchost.exe -k LocalService
    C:\Windows\system32\svchost.exe -k NetworkService
    C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
    C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
    C:\Windows\System32\spoolsv.exe
    C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
    C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe
    C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
    C:\Program Files (x86)\Seagate\Seagate Dashboard\SeagateDashboardService.exe
    C:\Program Files\Intel\TurboBoost\TurboBoost.exe
    C:\Windows\system32\svchost.exe -k bthsvcs
    C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
    C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
    C:\Windows\system32\nvvsvc.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
    C:\Program Files\P4G\BatteryLife.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\system32\taskhost.exe
    C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
    C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
    C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe
    C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    C:\Windows\System32\rundll32.exe
    C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
    C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
    C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
    C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
    C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
    C:\Windows\AsScrPro.exe
    C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
    C:\Program Files (x86)\AVG\AVG2012\avgtray.exe
    C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
    C:\Program Files (x86)\Seagate\Seagate Dashboard\MemeoDashboard.exe
    C:\Windows\system32\wbem\wmiprvse.exe
    C:\Windows\system32\wbem\wmiprvse.exe
    C:\Program Files (x86)\Seagate\Seagate Dashboard\HipServAgent\HipServAgent.exe
    C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
    C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
    C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
    C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
    C:\Windows\SysWOW64\ACEngSvr.exe
    C:\Windows\system32\SearchIndexer.exe
    C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
    C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
    C:\Windows\system32\sppsvc.exe
    C:\Windows\system32\AUDIODG.EXE
    C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
    C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
    C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe
    C:\Program Files (x86)\AVG\AVG2012\avgfws.exe
    C:\Program Files (x86)\AVG\AVG2012\avgnsa.exe
    C:\Program Files (x86)\AVG\AVG2012\avgrsa.exe
    C:\Program Files (x86)\AVG\AVG2012\avgcsrva.exe
    C:\Program Files (x86)\AVG\AVG2012\avgcsrva.exe
    C:\Windows\system32\vssvc.exe
    C:\Windows\System32\svchost.exe -k swprv
    C:\Windows\system32\DllHost.exe
    C:\Windows\system32\DllHost.exe
    C:\Windows\system32\DllHost.exe
    C:\Windows\SysWOW64\cmd.exe
    C:\Windows\system32\conhost.exe
    C:\Windows\SysWOW64\cscript.exe
    .
    ============== Pseudo HJT Report ===============
    .
    mWinlogon: Userinit=userinit.exe
    BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - C:\Program Files (x86)\AVG\AVG2012\avgssie.dll
    BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
    BHO: Office Document Cache Handler: {b4f3a835-0e21-4959-ba22-42b3008e02ff} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
    uRun: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
    uRun: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
    uRun: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
    mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
    mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    mRun: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
    mRun: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
    mRun: [Wireless Console 3] C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
    mRun: [ASUS Screen Saver Protector] C:\Windows\AsScrPro.exe
    mRun: [THX TruStudio NB Settings] "C:\Program Files (x86)\Creative\THX TruStudio\THXNBSet\THXAudNB.exe" /r
    mRun: [UpdReg] C:\Windows\UpdReg.EXE
    mRun: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
    mRun: [AVG_TRAY] "C:\Program Files (x86)\AVG\AVG2012\avgtray.exe"
    mRun: [Seagate Dashboard] C:\Program Files (x86)\Seagate\Seagate Dashboard\MemeoLauncher.exe --silent --no_ui
    mRun: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
    mRunOnce: [Malwarebytes Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
    StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\BLUETO~1.LNK - C:\Program Files (x86)\WIDCOMM\Bluetooth Software\BTTray.exe
    mPolicies-explorer: NoActiveDesktop = 1 (0x1)
    mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
    mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
    mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
    mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
    IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
    IE: Se&nd to OneNote - C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
    IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
    IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
    TCP: DhcpNameServer = 10.154.0.1 208.67.222.222 208.67.220.220
    TCP: Interfaces\{6000BBD3-9109-4AA4-8644-EBEF2433134B} : DhcpNameServer = 10.154.0.1 208.67.222.222 208.67.220.220
    TCP: Interfaces\{6000BBD3-9109-4AA4-8644-EBEF2433134B}\35E6960756278696C6C6D275966496D245E445D23443 : DhcpNameServer = 10.154.0.1 208.67.222.222 208.67.220.220
    TCP: Interfaces\{6000BBD3-9109-4AA4-8644-EBEF2433134B}\35E6960756278696C6C6D275966496D245E445D253 : DhcpNameServer = 10.151.0.1 208.67.222.222 208.67.220.220
    Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL
    Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgpp.dll
    Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
    SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
    BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    BHO-X64: AcroIEHelperStub - No File
    BHO-X64: AVG Safe Search: {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG2012\avgssie.dll
    BHO-X64: WormRadar.com IESiteBlocker.NavFilter - No File
    BHO-X64: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
    BHO-X64: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
    BHO-X64: URLRedirectionBHO - No File
    mRun-x64: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
    mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    mRun-x64: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
    mRun-x64: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
    mRun-x64: [Wireless Console 3] C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
    mRun-x64: [ASUS Screen Saver Protector] C:\Windows\AsScrPro.exe
    mRun-x64: [THX TruStudio NB Settings] "C:\Program Files (x86)\Creative\THX TruStudio\THXNBSet\THXAudNB.exe" /r
    mRun-x64: [UpdReg] C:\Windows\UpdReg.EXE
    mRun-x64: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
    mRun-x64: [AVG_TRAY] "C:\Program Files (x86)\AVG\AVG2012\avgtray.exe"
    mRun-x64: [Seagate Dashboard] C:\Program Files (x86)\Seagate\Seagate Dashboard\MemeoLauncher.exe --silent --no_ui
    mRun-x64: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
    mRunOnce-x64: [Malwarebytes Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
    SEH-X64: Groove GFS Stub Execution Hook: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
    .
    ================= FIREFOX ===================
    .
    FF - ProfilePath - C:\Users\ASUSROG\AppData\Roaming\Mozilla\Firefox\Profiles\itxmtqmv.default\
    FF - prefs.js: network.proxy.type - 0
    FF - plugin: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
    FF - plugin: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
    FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
    FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
    .
    ============= SERVICES / DRIVERS ===============
    .
    R0 AVGIDSEH;AVGIDSEH;C:\Windows\system32\DRIVERS\AVGIDSEH.Sys --> C:\Windows\system32\DRIVERS\AVGIDSEH.Sys [?]
    R0 Avgrkx64;AVG Anti-Rootkit Driver;C:\Windows\system32\DRIVERS\avgrkx64.sys --> C:\Windows\system32\DRIVERS\avgrkx64.sys [?]
    R1 ATKWMIACPIIO;ATKWMIACPI Driver;C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2010-7-26 17024]
    R1 Avgfwfd;AVG network filter service;C:\Windows\system32\DRIVERS\avgfwd6a.sys --> C:\Windows\system32\DRIVERS\avgfwd6a.sys [?]
    R1 Avgldx64;AVG AVI Loader Driver;C:\Windows\system32\DRIVERS\avgldx64.sys --> C:\Windows\system32\DRIVERS\avgldx64.sys [?]
    R1 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;C:\Windows\system32\DRIVERS\avgmfx64.sys --> C:\Windows\system32\DRIVERS\avgmfx64.sys [?]
    R1 Avgtdia;AVG TDI Driver;C:\Windows\system32\DRIVERS\avgtdia.sys --> C:\Windows\system32\DRIVERS\avgtdia.sys [?]
    R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;C:\Windows\system32\DRIVERS\dtsoftbus01.sys --> C:\Windows\system32\DRIVERS\dtsoftbus01.sys [?]
    R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\system32\DRIVERS\vwififlt.sys --> C:\Windows\system32\DRIVERS\vwififlt.sys [?]
    R2 ASMMAP64;ASMMAP64;C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-7-2 15416]
    R2 avgfws;AVG Firewall;C:\Program Files (x86)\AVG\AVG2012\avgfws.exe [2011-11-23 2391832]
    R2 AVGIDSAgent;AVGIDSAgent;C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe [2011-10-12 4433248]
    R2 avgwd;AVG WatchDog;C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe [2011-8-2 192776]
    R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-4-7 652360]
    R2 SeagateDashboardService;Seagate Dashboard Service;C:\Program Files (x86)\Seagate\Seagate Dashboard\SeagateDashboardService.exe [2011-6-2 14088]
    R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-11-7 381248]
    R2 TurboB;Turbo Boost UI Monitor driver;C:\Windows\system32\DRIVERS\TurboB.sys --> C:\Windows\system32\DRIVERS\TurboB.sys [?]
    R2 TurboBoost;Intel(R) Turbo Boost Technology Monitor;C:\Program Files\Intel\TurboBoost\TurboBoost.exe [2010-4-16 134928]
    R2 UNS;Intel(R) Management and Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-4-3 2655768]
    R3 AVGIDSDriver;AVGIDSDriver;C:\Windows\system32\DRIVERS\AVGIDSDriver.Sys --> C:\Windows\system32\DRIVERS\AVGIDSDriver.Sys [?]
    R3 AVGIDSFilter;AVGIDSFilter;C:\Windows\system32\DRIVERS\AVGIDSFilter.Sys --> C:\Windows\system32\DRIVERS\AVGIDSFilter.Sys [?]
    R3 FLxHCIc;Fresco Logic xHCI (USB3) Device Driver;C:\Windows\system32\DRIVERS\FLxHCIc.sys --> C:\Windows\system32\DRIVERS\FLxHCIc.sys [?]
    R3 FLxHCIh;Fresco Logic xHCI (USB3) Hub Device Driver;C:\Windows\system32\DRIVERS\FLxHCIh.sys --> C:\Windows\system32\DRIVERS\FLxHCIh.sys [?]
    R3 MBAMProtector;MBAMProtector;\??\C:\Windows\system32\drivers\mbam.sys --> C:\Windows\system32\drivers\mbam.sys [?]
    R3 MBfilt;MBfilt;C:\Windows\system32\drivers\MBfilt64.sys --> C:\Windows\system32\drivers\MBfilt64.sys [?]
    R3 MEIx64;Intel(R) Management Engine Interface;C:\Windows\system32\DRIVERS\HECIx64.sys --> C:\Windows\system32\DRIVERS\HECIx64.sys [?]
    R3 NVHDA;Service for NVIDIA High Definition Audio Driver;C:\Windows\system32\drivers\nvhda64v.sys --> C:\Windows\system32\drivers\nvhda64v.sys [?]
    R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\system32\DRIVERS\Rt64win7.sys --> C:\Windows\system32\DRIVERS\Rt64win7.sys [?]
    S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
    S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
    S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-2-29 158856]
    S3 btusbflt;Bluetooth USB Filter;C:\Windows\system32\drivers\btusbflt.sys --> C:\Windows\system32\drivers\btusbflt.sys [?]
    S3 btwl2cap;Bluetooth L2CAP Service;C:\Windows\system32\DRIVERS\btwl2cap.sys --> C:\Windows\system32\DRIVERS\btwl2cap.sys [?]
    S3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service;C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2012-4-3 79360]
    S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2012-4-3 79360]
    S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-1-21 30963576]
    S3 osppsvc;Office Software Protection Platform;C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-1-9 4925184]
    S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\system32\drivers\rdpvideominiport.sys --> C:\Windows\system32\drivers\rdpvideominiport.sys [?]
    S3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader;C:\Windows\system32\Drivers\RtsUVStor.sys --> C:\Windows\system32\Drivers\RtsUVStor.sys [?]
    S3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsusbflt.sys --> C:\Windows\system32\drivers\tsusbflt.sys [?]
    S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
    .
    =============== Created Last 30 ================
    .
    2012-04-07 18:16:40 -------- d-----w- C:\Users\ASUSROG\AppData\Roaming\Malwarebytes
    2012-04-07 18:16:38 -------- d-----w- C:\ProgramData\Malwarebytes
    2012-04-07 18:16:37 23152 ----a-w- C:\Windows\System32\drivers\mbam.sys
    2012-04-07 18:16:37 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
    2012-04-07 04:22:59 -------- d-----w- C:\Users\ASUSROG\AppData\Local\Mozilla
    2012-04-05 16:52:16 -------- d-----w- C:\Users\ASUSROG\AppData\Roaming\Rescue
    2012-04-04 22:36:57 94208 ----a-w- C:\Program Files (x86)\Common Files\System\Ole DB\msdaosp.dll
    2012-04-04 22:35:37 514560 ----a-w- C:\Windows\SysWow64\qdvd.dll
    2012-04-04 22:35:37 366592 ----a-w- C:\Windows\System32\qdvd.dll
    2012-04-04 22:35:37 1572864 ----a-w- C:\Windows\System32\quartz.dll
    2012-04-04 22:35:37 1328128 ----a-w- C:\Windows\SysWow64\quartz.dll
    2012-04-04 22:35:13 509952 ----a-w- C:\Windows\System32\ntshrui.dll
    2012-04-04 22:35:13 442880 ----a-w- C:\Windows\SysWow64\ntshrui.dll
    2012-04-04 22:30:37 43520 ----a-w- C:\Windows\System32\csrsrv.dll
    2012-04-04 22:29:09 476160 ----a-w- C:\Windows\System32\XpsGdiConverter.dll
    2012-04-04 22:29:09 288256 ----a-w- C:\Windows\SysWow64\XpsGdiConverter.dll
    2012-04-04 22:28:56 1544192 ----a-w- C:\Windows\System32\DWrite.dll
    2012-04-04 22:28:56 1077248 ----a-w- C:\Windows\SysWow64\DWrite.dll
    2012-04-04 22:28:21 1923952 ----a-w- C:\Windows\System32\drivers\tcpip.sys
    2012-04-04 22:27:57 870912 ----a-w- C:\Windows\SysWow64\XpsPrint.dll
    2012-04-04 22:27:57 1465344 ----a-w- C:\Windows\System32\XpsPrint.dll
    2012-04-04 22:27:46 1395712 ----a-w- C:\Windows\System32\mfc42.dll
    2012-04-04 22:27:45 1359872 ----a-w- C:\Windows\System32\mfc42u.dll
    2012-04-04 22:27:45 1164288 ----a-w- C:\Windows\SysWow64\mfc42u.dll
    2012-04-04 22:27:45 1137664 ----a-w- C:\Windows\SysWow64\mfc42.dll
    2012-04-04 22:25:46 5559152 ----a-w- C:\Windows\System32\ntoskrnl.exe
    2012-04-04 22:25:46 3968368 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
    2012-04-04 22:25:45 3913584 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
    2012-04-04 22:24:29 70656 ----a-w- C:\Windows\SysWow64\fontsub.dll
    2012-04-04 22:24:29 46080 ----a-w- C:\Windows\System32\atmlib.dll
    2012-04-04 22:24:29 367616 ----a-w- C:\Windows\System32\atmfd.dll
    2012-04-04 22:24:29 34304 ----a-w- C:\Windows\SysWow64\atmlib.dll
    2012-04-04 22:24:29 294912 ----a-w- C:\Windows\SysWow64\atmfd.dll
    2012-04-04 22:24:29 100864 ----a-w- C:\Windows\System32\fontsub.dll
    2012-04-04 22:24:20 27520 ----a-w- C:\Windows\System32\drivers\Diskdump.sys
    2012-04-04 22:23:58 197120 ----a-w- C:\Windows\System32\d3d10_1.dll
    2012-04-04 22:23:58 161792 ----a-w- C:\Windows\SysWow64\d3d10_1.dll
    2012-04-04 22:23:47 467456 ----a-w- C:\Windows\System32\drivers\srv.sys
    2012-04-04 22:23:47 410112 ----a-w- C:\Windows\System32\drivers\srv2.sys
    2012-04-04 22:23:47 168448 ----a-w- C:\Windows\System32\drivers\srvnet.sys
    2012-04-04 22:16:19 31232 ----a-w- C:\Windows\SysWow64\prevhost.exe
    2012-04-04 22:16:19 31232 ----a-w- C:\Windows\System32\prevhost.exe
    2012-04-04 22:16:10 267776 ----a-w- C:\Windows\System32\FXSCOVER.exe
    2012-04-04 22:15:52 690688 ----a-w- C:\Windows\SysWow64\msvcrt.dll
    2012-04-04 22:15:52 634880 ----a-w- C:\Windows\System32\msvcrt.dll
    2012-04-04 22:14:40 861696 ----a-w- C:\Windows\System32\oleaut32.dll
    2012-04-04 22:14:40 571904 ----a-w- C:\Windows\SysWow64\oleaut32.dll
    2012-04-04 22:14:40 331776 ----a-w- C:\Windows\System32\oleacc.dll
    2012-04-04 22:14:40 233472 ----a-w- C:\Windows\SysWow64\oleacc.dll
    2012-04-04 22:14:33 723456 ----a-w- C:\Windows\System32\EncDec.dll
    2012-04-04 22:14:33 534528 ----a-w- C:\Windows\SysWow64\EncDec.dll
    2012-04-04 22:14:14 2048 ----a-w- C:\Windows\SysWow64\tzres.dll
    2012-04-04 22:14:14 2048 ----a-w- C:\Windows\System32\tzres.dll
    2012-04-04 22:14:05 1731920 ----a-w- C:\Windows\System32\ntdll.dll
    2012-04-04 22:14:05 1292080 ----a-w- C:\Windows\SysWow64\ntdll.dll
    2012-04-04 22:13:20 77312 ----a-w- C:\Windows\System32\packager.dll
    2012-04-04 22:13:20 67072 ----a-w- C:\Windows\SysWow64\packager.dll
    2012-04-04 21:15:58 961024 ----a-w- C:\Windows\System32\CPFilters.dll
    2012-04-04 21:15:58 642048 ----a-w- C:\Windows\SysWow64\CPFilters.dll
    2012-04-04 21:15:58 259072 ----a-w- C:\Windows\System32\mpg2splt.ax
    2012-04-04 21:15:58 142336 ----a-w- C:\Windows\System32\poqexec.exe
    2012-04-04 21:15:58 123904 ----a-w- C:\Windows\SysWow64\poqexec.exe
    2012-04-04 21:15:58 1118720 ----a-w- C:\Windows\System32\sbe.dll
    2012-04-04 21:15:57 850944 ----a-w- C:\Windows\SysWow64\sbe.dll
    2012-04-04 21:15:57 199680 ----a-w- C:\Windows\SysWow64\mpg2splt.ax
    2012-04-04 17:24:14 976896 ----a-w- C:\Windows\System32\inetcomm.dll
    2012-04-04 17:24:14 741376 ----a-w- C:\Windows\SysWow64\inetcomm.dll
    2012-04-04 17:23:52 715776 ----a-w- C:\Windows\System32\kerberos.dll
    2012-04-04 17:23:52 542208 ----a-w- C:\Windows\SysWow64\kerberos.dll
    2012-04-04 17:23:34 75776 ----a-w- C:\Windows\SysWow64\psisrndr.ax
    2012-04-04 17:23:34 613888 ----a-w- C:\Windows\System32\psisdecd.dll
    2012-04-04 17:23:34 465408 ----a-w- C:\Windows\SysWow64\psisdecd.dll
    2012-04-04 17:23:34 108032 ----a-w- C:\Windows\System32\psisrndr.ax
    2012-04-04 17:23:28 498688 ----a-w- C:\Windows\System32\drivers\afd.sys
    2012-04-04 17:23:28 3145728 ----a-w- C:\Windows\System32\win32k.sys
    2012-04-04 17:23:15 515584 ----a-w- C:\Windows\System32\timedate.cpl
    2012-04-04 17:23:15 478720 ----a-w- C:\Windows\SysWow64\timedate.cpl
    2012-04-04 17:23:13 90624 ----a-w- C:\Windows\System32\drivers\bowser.sys
    2012-04-04 17:22:58 30208 ----a-w- C:\Windows\System32\dnscacheugc.exe
    2012-04-04 17:22:58 28672 ----a-w- C:\Windows\SysWow64\dnscacheugc.exe
    2012-04-04 17:22:58 183296 ----a-w- C:\Windows\System32\dnsrslvr.dll
    2012-04-04 17:22:13 64512 ----a-w- C:\Windows\SysWow64\devobj.dll
    2012-04-04 17:22:13 44544 ----a-w- C:\Windows\SysWow64\devrtl.dll
    2012-04-04 17:22:13 404480 ----a-w- C:\Windows\System32\umpnpmgr.dll
    2012-04-04 17:22:13 252928 ----a-w- C:\Windows\SysWow64\drvinst.exe
    2012-04-04 17:22:13 145920 ----a-w- C:\Windows\SysWow64\cfgmgr32.dll
    2012-04-04 17:10:19 826880 ----a-w- C:\Windows\SysWow64\rdpcore.dll
    2012-04-04 17:10:19 23552 ----a-w- C:\Windows\System32\drivers\tdtcp.sys
    2012-04-04 17:10:19 210944 ----a-w- C:\Windows\System32\drivers\rdpwd.sys
    2012-04-04 17:10:19 1112064 ----a-w- C:\Windows\System32\rdpcorets.dll
    2012-04-04 17:10:19 1031680 ----a-w- C:\Windows\System32\rdpcore.dll
    2012-04-04 17:10:15 9216 ----a-w- C:\Windows\System32\rdrmemptylst.exe
    2012-04-04 17:10:15 77312 ----a-w- C:\Windows\System32\rdpwsx.dll
    2012-04-04 17:10:15 149504 ----a-w- C:\Windows\System32\rdpcorekmts.dll
    2012-04-04 00:48:37 -------- d-----w- C:\Users\ASUSROG\AppData\Roaming\Seagate
    2012-04-04 00:48:11 -------- d-----w- C:\Program Files (x86)\Seagate
    2012-04-04 00:05:53 -------- d-----w- C:\Users\ASUSROG\AppData\Local\Adobe
    2012-04-03 20:06:26 -------- d-----w- C:\Windows\Panther
    2012-04-03 14:06:43 -------- d-----w- C:\Users\ASUSROG\AppData\Roaming\NVIDIA
    2012-04-03 14:04:45 -------- d-----w- C:\Windows\SysWow64\xlive
    2012-04-03 14:04:45 -------- d-----w- C:\Program Files (x86)\Microsoft Games for Windows - LIVE
    2012-04-03 14:01:18 -------- d-----w- C:\Windows\6833245EDD86479A882A8360D62C8194.TMP
    2012-04-03 14:01:12 -------- d-----w- C:\Program Files (x86)\Common Files\Wise Installation Wizard
    2012-04-03 13:57:29 -------- d-----w- C:\Program Files (x86)\Eidos
    2012-04-03 13:49:36 -------- d-----w- C:\Call of Duty- Modern Warfare 3
    2012-04-03 13:37:53 -------- d-----w- C:\Users\ASUSROG\AppData\Local\Skyrim
    2012-04-03 13:33:49 -------- d-----w- C:\Windows\7F6D7FD9648D4DD9BB6E3990C675ECA4.TMP
    2012-04-03 13:33:41 837952 ----a-w- C:\Windows\System32\easyupdatusapiu64.dll
    2012-04-03 13:31:16 -------- d-----w- C:\NVIDIA
    2012-04-03 13:27:21 -------- d-----w- C:\Program Files (x86)\The Elder Scrolls V Skyrim
    2012-04-03 13:14:37 -------- d-----w- C:\Users\ASUSROG\AppData\Roaming\AVG2012
    2012-04-03 13:14:35 -------- d--h--w- C:\ProgramData\Common Files
    2012-04-03 13:14:33 -------- d-----w- C:\Windows\SysWow64\drivers\AVG
    2012-04-03 13:14:21 -------- d-----w- C:\Windows\System32\drivers\AVG
    2012-04-03 13:14:21 -------- d-----w- C:\ProgramData\AVG2012
    2012-04-03 13:14:12 -------- d-----w- C:\Program Files (x86)\AVG
    2012-04-03 13:13:30 -------- d-----w- C:\ProgramData\MFAData
    2012-04-03 13:12:27 -------- d-----w- C:\Windows\SysWow64\Wat
    2012-04-03 13:12:27 -------- d-----w- C:\Windows\System32\Wat
    2012-04-03 13:00:09 45056 ----a-w- C:\Windows\System32\acovcnt.exe
    2012-04-03 12:58:29 -------- d-----w- C:\Windows\System32\SPReview
    2012-04-03 12:53:33 6144 ----a-w- C:\Windows\System32\drivers\en-US\rdvgkmd.sys.mui
    2012-04-03 12:53:33 2560 ----a-w- C:\Windows\System32\drivers\en-US\rdpwd.sys.mui
    2012-04-03 12:53:31 4096 ----a-w- C:\Windows\System32\drivers\en-US\tsusbhub.sys.mui
    2012-04-03 12:53:31 3072 ----a-w- C:\Windows\System32\drivers\en-US\tsusbflt.sys.mui
    2012-04-03 12:53:28 6144 ----a-w- C:\Windows\System32\drivers\en-US\IPMIDrv.sys.mui
    2012-04-03 12:53:28 4608 ----a-w- C:\Windows\System32\drivers\en-US\kbdclass.sys.mui
    2012-04-03 12:48:45 -------- d-----w- C:\Windows\System32\EventProviders
    2012-04-03 12:43:41 -------- d-----w- C:\Program Files (x86)\Microsoft Synchronization Services
    2012-04-03 12:43:30 -------- d-----w- C:\Windows\PCHEALTH
    2012-04-03 12:43:30 -------- d-----w- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
    2012-04-03 12:43:03 -------- d-----w- C:\Program Files (x86)\Microsoft Visual Studio 8
    2012-04-03 12:42:55 -------- d-----w- C:\Program Files (x86)\Microsoft Analysis Services
    2012-04-03 12:42:51 -------- d-----w- C:\Users\ASUSROG\AppData\Local\Microsoft Help
    2012-04-03 12:40:58 -------- d-----w- C:\Program Files (x86)\Creative
    2012-04-03 12:40:48 266240 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iscript.dll
    2012-04-03 12:40:48 192512 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iuser.dll
    2012-04-03 12:40:47 729088 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iKernel.dll
    2012-04-03 12:40:47 69715 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\ctor.dll
    2012-04-03 12:40:47 5632 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\DotNetInstaller.exe
    2012-04-03 12:40:47 188548 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\iGdi.dll
    2012-04-03 12:40:46 311428 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\setup.dll
    2012-04-03 12:40:45 80512 ----a-w- C:\Windows\Asus_G73_Screensaver Uninstaller.exe
    2012-04-03 12:40:45 30683418 ------w- C:\Windows\System32\Asus_G73_Screensaver.scr
    2012-04-03 12:40:44 3058304 ----a-w- C:\Windows\AsScrPro.exe
    2012-04-03 12:39:43 183296 ----a-w- C:\Windows\SysWow64\ACEngSvr.exe
    2012-04-03 12:39:36 196224 ----a-w- C:\Program Files\Windows Sidebar\Shared Gadgets\P4GUpdate.Gadget\P4GUpdate.dll
    2012-04-03 12:39:36 -------- d-----w- C:\ProgramData\P4G
    2012-04-03 12:39:36 -------- d-----w- C:\Program Files\P4G
    2012-04-03 12:39:18 -------- d-----w- C:\Program Files (x86)\ASUS
    2012-04-03 12:39:12 -------- d-----w- C:\Users\ASUSROG\AppData\Local\Broadcom
    2012-04-03 12:38:49 98344 ----a-w- C:\Windows\System32\drivers\btwaudio.sys
    2012-04-03 12:38:49 35104 ----a-w- C:\Windows\System32\drivers\btwl2cap.sys
    2012-04-03 12:38:49 21288 ----a-w- C:\Windows\System32\drivers\btwrchid.sys
    2012-04-03 12:38:49 132648 ----a-w- C:\Windows\System32\drivers\btwavdt.sys
    2012-04-03 12:38:44 -------- d-----w- C:\Program Files\WIDCOMM
    2012-04-03 12:38:30 -------- d-----w- C:\Program Files\Synaptics
    2012-04-03 12:37:50 -------- d-----w- C:\Program Files\Fresco Logic Inc
    2012-04-03 12:37:41 7367200 ----a-w- C:\Windows\SysWow64\RtsUVStoricon.dll
    2012-04-03 12:37:41 290920 ----a-w- C:\Windows\System32\drivers\rtsuvstor.sys
    2012-04-03 12:37:41 15464 ----a-w- C:\Windows\System32\drivers\diskperf64.sys
    2012-04-03 12:37:12 74272 ----a-w- C:\Windows\System32\RtNicProp64.dll
    2012-04-03 12:37:12 333928 ----a-w- C:\Windows\System32\drivers\Rt64win7.sys
    2012-04-03 12:37:12 107552 ----a-w- C:\Windows\System32\RTNUninst64.dll
    2012-04-03 12:35:36 -------- d-----w- C:\Program Files (x86)\NVIDIA Corporation
    2012-04-03 12:35:09 -------- d-----w- C:\ProgramData\NVIDIA Corporation
    2012-04-03 12:34:53 -------- d-----w- C:\Program Files\NVIDIA Corporation
    2012-04-03 12:33:32 8192 ----a-w- C:\Windows\SysWow64\drivers\IntelMEFWVer.dll
    2012-04-03 12:33:32 8192 ----a-w- C:\Windows\System32\drivers\IntelMEFWVer.dll
    2012-04-03 12:33:29 -------- d-----w- C:\Program Files (x86)\Common Files\postureAgent
    2012-04-03 12:33:26 56344 ----a-w- C:\Windows\System32\drivers\HECIx64.sys
    2012-04-03 12:32:20 53248 ----a-w- C:\Windows\SysWow64\CSVer.dll
    2012-04-03 12:32:18 -------- d-----w- C:\Intel
    2012-04-03 12:31:22 1594368 ----a-w- C:\Windows\System32\drivers\athrx.sys
    2012-04-03 12:30:01 400168 ----a-w- C:\Windows\System32\SynCOM.dll
    2012-04-03 12:30:01 273704 ----a-w- C:\Windows\System32\SynCtrl.dll
    2012-04-03 12:30:01 221480 ----a-w- C:\Windows\System32\SynTPAPI.dll
    2012-04-03 12:30:01 218408 ----a-w- C:\Windows\SysWow64\SynCtrl.dll
    2012-04-03 12:30:01 173352 ----a-w- C:\Windows\SysWow64\SynCOM.dll
    2012-04-03 12:30:01 148264 ----a-w- C:\Windows\System32\SynTPCo4.dll
    2012-04-03 12:30:01 1395248 ----a-w- C:\Windows\System32\drivers\SynTP.sys
    2012-04-03 12:30:01 107816 ----a-w- C:\Windows\SysWow64\SynTPCOM.dll
    2012-04-03 12:28:50 53800 ----a-w- C:\Windows\System32\drivers\btusbflt.sys
    2012-04-03 12:28:30 -------- d-----w- C:\eSupport
    2012-04-03 12:27:13 -------- d-----w- C:\Program Files\Microsoft Xbox 360 Accessories
    2012-04-03 12:26:39 -------- d-----r- C:\Program Files (x86)\Skype
    2012-04-03 12:26:04 -------- d-----w- C:\Program Files (x86)\VideoLAN
    2012-04-03 12:25:28 525544 ----a-w- C:\Windows\System32\deployJava1.dll
    2012-04-03 12:24:29 270912 ----a-w- C:\Windows\System32\drivers\dtsoftbus01.sys
    2012-04-03 12:24:26 -------- d-----w- C:\Program Files (x86)\DAEMON Tools Lite
    2012-04-03 12:24:05 -------- d-----w- C:\Users\ASUSROG\AppData\Roaming\DAEMON Tools Lite
    2012-04-03 12:24:04 -------- d-----w- C:\ProgramData\DAEMON Tools Lite
    2012-04-03 12:22:38 404640 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
    2012-04-03 12:22:12 -------- d-sh--w- C:\Windows\Installer
    .
    ==================== Find3M ====================
    .
    2012-04-03 13:12:28 419840 ----a-w- C:\Windows\System32\systemcpl.dll
    2012-04-03 13:12:28 14848 ----a-w- C:\Windows\System32\slwga.dll
    2012-04-03 13:12:28 13824 ----a-w- C:\Windows\SysWow64\slwga.dll
    2012-04-03 13:12:27 833024 ----a-w- C:\Windows\SysWow64\user32.dll
    2012-04-03 13:12:27 1008640 ----a-w- C:\Windows\System32\user32.dll
    2012-04-03 12:57:16 175616 ----a-w- C:\Windows\System32\msclmd.dll
    2012-04-03 12:57:16 152576 ----a-w- C:\Windows\SysWow64\msclmd.dll
    2012-04-03 12:41:06 466520 ----a-w- C:\Windows\System32\wrap_oal.dll
    2012-04-03 12:41:06 445016 ----a-w- C:\Windows\SysWow64\wrap_oal.dll
    2012-04-03 12:41:06 123480 ----a-w- C:\Windows\System32\OpenAL32.dll
    2012-04-03 12:41:06 109144 ----a-w- C:\Windows\SysWow64\OpenAL32.dll
    .
    ============= FINISH: 23:16:27.95 ===============

    .
    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT
    .
    DDS (Ver_2011-08-26.01)
    .
    Microsoft Windows 7 Ultimate
    Boot Device: \Device\HarddiskVolume1
    Install Date: 4/3/2012 4:30:36 PM
    System Uptime: 4/7/2012 3:16:38 AM (20 hours ago)
    .
    Motherboard: ASUSTeK Computer Inc. | | G73Sw
    Processor: Intel(R) Core(TM) i7-2630QM CPU @ 2.00GHz | CPU 1 | 2001/100mhz
    .
    ==== Disk Partitions =========================
    .
    C: is FIXED (NTFS) - 223 GiB total, 110.563 GiB free.
    D: is CDROM (UDF)
    E: is CDROM ()
    .
    ==== Disabled Device Manager Items =============
    .
    ==== System Restore Points ===================
    .
    RP26: 4/6/2012 12:07:08 AM - Windows Update
    RP27: 4/7/2012 3:00:10 AM - Windows Update
    .
    ==== Installed Programs ======================
    .
    Adobe Flash Player 10 ActiveX
    Adobe Reader X (10.0.1)
    Adobe Shockwave Player 11.5
    ASUS AI Recovery
    ASUS SmartLogon
    ASUS Splendid Video Enhancement Technology
    ASUS Virtual Camera
    Asus_G73_Screensaver
    ATK Package
    Batman: Arkham Asylum
    DAEMON Tools Lite
    Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition
    Intel(R) Control Center
    Intel(R) Management Engine Components
    Malwarebytes Anti-Malware version 1.60.1.1000
    Microsoft Games for Windows - LIVE
    Microsoft Games for Windows - LIVE Redistributable
    Microsoft Office Access MUI (English) 2010
    Microsoft Office Access Setup Metadata MUI (English) 2010
    Microsoft Office Excel MUI (English) 2010
    Microsoft Office Groove MUI (English) 2010
    Microsoft Office InfoPath MUI (English) 2010
    Microsoft Office OneNote MUI (English) 2010
    Microsoft Office Outlook MUI (English) 2010
    Microsoft Office PowerPoint MUI (English) 2010
    Microsoft Office Professional Plus 2010
    Microsoft Office Proof (English) 2010
    Microsoft Office Proof (French) 2010
    Microsoft Office Proof (Spanish) 2010
    Microsoft Office Proofing (English) 2010
    Microsoft Office Publisher MUI (English) 2010
    Microsoft Office Shared MUI (English) 2010
    Microsoft Office Shared Setup Metadata MUI (English) 2010
    Microsoft Office Word MUI (English) 2010
    Microsoft Visual C++ 2005 Redistributable
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
    Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
    Mozilla Firefox 11.0 (x86 en-US)
    NVIDIA PhysX
    NVIDIA Stereoscopic 3D Driver
    Realtek Ethernet Controller Driver For Windows 7
    Realtek High Definition Audio Driver
    Realtek USB 2.0 Reader Driver
    Seagate Dashboard
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
    Security Update for Microsoft .NET Framework 4 Extended (KB2487367)
    Security Update for Microsoft .NET Framework 4 Extended (KB2656351)
    Skype™ 5.8
    THX TruStudio
    Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
    Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
    Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
    Update for Microsoft .NET Framework 4 Extended (KB2468871)
    Update for Microsoft .NET Framework 4 Extended (KB2533523)
    Update for Microsoft .NET Framework 4 Extended (KB2600217)
    Update for Microsoft Office 2010 (KB2494150)
    Update for Microsoft Office 2010 (KB2553092)
    Visual Studio 2008 x64 Redistributables
    VLC media player 1.1.9
    WinFlash
    Wireless Console 3
    .
    ==== Event Viewer Messages From Past Week ========
    .
    4/7/2012 11:02:23 PM, Error: Microsoft-Windows-DistributedCOM [10001] - Unable to start a DCOM Server: {F87B28F1-DA9A-4F35-8EC0-800EFCF26B83} as /. The error: "5" Happened while starting this command: C:\Windows\System32\slui.exe -Embedding
    4/6/2012 12:17:01 AM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x0000000a (0x0000000000000040, 0x0000000000000002, 0x0000000000000001, 0xfffff8000309b2a8). A dump was saved in: C:\Windows\MEMORY.DMP. Report Id: 040612-10077-01.
    4/6/2012 12:15:45 AM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000019 (0x0000000000000003, 0xfffffa800d307510, 0xfffffa800d30750f, 0xfffffa800d307510). A dump was saved in: C:\Windows\MEMORY.DMP. Report Id: 040612-11247-01.
    4/5/2012 9:25:34 PM, Error: volsnap [36] - The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit.
    4/5/2012 8:50:38 AM, Error: Service Control Manager [7023] -
    4/5/2012 8:49:36 AM, Error: Service Control Manager [7000] - The Intel(R) Management and Security Application Local Management Service service failed to start due to the following error: The pipe has been ended.
    4/5/2012 8:49:26 AM, Error: Service Control Manager [7034] - The Seagate Dashboard Service service terminated unexpectedly. It has done this 1 time(s).
    4/5/2012 8:49:26 AM, Error: Service Control Manager [7034] - The Intel(R) Management and Security Application User Notification Service service terminated unexpectedly. It has done this 1 time(s).
    4/5/2012 8:49:26 AM, Error: Service Control Manager [7031] - The Intel(R) Management and Security Application Local Management Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.
    4/5/2012 8:49:24 AM, Error: Service Control Manager [7034] - The NVIDIA Stereoscopic 3D Driver Service service terminated unexpectedly. It has done this 1 time(s).
    4/5/2012 8:49:24 AM, Error: Service Control Manager [7034] - The ATKGFNEX Service service terminated unexpectedly. It has done this 1 time(s).
    4/5/2012 8:49:24 AM, Error: Service Control Manager [7034] - The ASLDR Service service terminated unexpectedly. It has done this 1 time(s).
    4/4/2012 6:46:38 PM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the avgfws service.
    4/3/2012 5:29:14 PM, Error: Service Control Manager [7031] - The Microsoft .NET Framework NGEN v4.0.30319_X86 service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 120000 milliseconds: Restart the service.
    4/3/2012 5:10:36 PM, Error: RTL8167 [5008] - Realtek PCIe GBE Family Controller : Has encountered an invalid network address.
    4/3/2012 5:02:59 PM, Error: Microsoft-Windows-Directory-Services-SAM [12291] - SAM failed to start the TCP/IP or SPX/IPX listening thread
    4/3/2012 4:41:55 PM, Error: VDS Basic Provider [1] - Unexpected failure. Error code: D@01010004
    4/3/2012 10:01:01 PM, Error: Service Control Manager [7023] - The Superfetch service terminated with the following error: The service has not been started.
    .
    ==== End Of File ===========================
     
  2. Broni

    Broni Malware Annihilator Posts: 52,898   +344

    Welcome aboard [​IMG]

    Please, observe following rules:
    • Read all of my instructions very carefully. Your mistakes during cleaning process may have very serious consequences, like unbootable computer.
    • If you're stuck, or you're not sure about certain step, always ask before doing anything else.
    • Please refrain from running tools or applying updates other than those I suggest.
    • Never run more than one scan at a time.
    • Keep updating me regarding your computer behavior, good, or bad.
    • The cleaning process, once started, has to be completed. Even if your computer appears to act better, it may still be infected. Once the computer is totally clean, I'll certainly let you know.
    • If you leave the topic without explanation in the middle of a cleaning process, you may not be eligible to receive any more help in malware removal forum.
    • I close my topics if you have not replied in 5 days. If you need more time, simply let me know. If I closed your topic and you need it to be reopened, simply PM me.

    =============================================================

    Download aswMBR to your desktop.
    Double click the aswMBR.exe to run it.
    If you see this question: Would you like to download latest Avast! virus definitions?" say "Yes".
    Click the "Scan" button to start scan.
    On completion of the scan click "Save log", save it to your desktop and post in your next reply.

    NOTE. aswMBR will create MBR.dat file on your desktop. This is a copy of your MBR. Do NOT delete it.

    ===============================================================

    Download Bootkit Remover to your desktop.

    • Unzip downloaded file to your Desktop.
    • Double-click on boot_cleaner.exe to run the program (Vista/7 users,right click on boot_cleaner.exe and click Run As Administrator).
    • It will show a Black screen with some data on it.
    • Right click on the screen and click Select All.
    • Press CTRL+C
    • Open a Notepad and press CTRL+V
    • Post the output back here.
     
  3. Nate41785

    Nate41785 TS Rookie Topic Starter

    Thanks for your reply.


    aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
    Run date: 2012-04-09 00:40:00
    -----------------------------
    00:40:00.519 OS Version: Windows x64 6.1.7601 Service Pack 1
    00:40:00.519 Number of processors: 8 586 0x2A07
    00:40:00.519 ComputerName: ASUSROG-PC UserName: ASUSROG
    00:40:01.393 Initialize success
    01:24:22.073 AVAST engine defs: 12040801
    01:25:52.912 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
    01:25:52.928 Disk 0 Vendor: Patriot_ 332A Size: 228936MB BusType: 3
    01:25:52.928 Disk 1 \Device\Harddisk1\DR1 -> \Device\Ide\IAAStorageDevice-2
    01:25:52.928 Disk 1 Vendor: M4-CT128 0309 Size: 122104MB BusType: 3
    01:25:52.928 Disk 0 MBR read successfully
    01:25:52.928 Disk 0 MBR scan
    01:25:52.928 Disk 0 Windows 7 default MBR code
    01:25:52.928 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
    01:25:52.943 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 228834 MB offset 206848
    01:25:52.943 Disk 0 scanning C:\Windows\system32\drivers
    01:25:55.970 Service scanning
    01:26:04.019 Modules scanning
    01:26:04.019 Disk 0 trace - called modules:
    01:26:04.019 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys iaStor.sys hal.dll
    01:26:04.019 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa800d05f790]
    01:26:04.035 3 CLASSPNP.SYS[fffff8800180143f] -> nt!IofCallDriver -> [0xfffffa800cac4670]
    01:26:04.035 5 ACPI.sys[fffff88000f0c7a1] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa800cac7050]
    01:26:04.362 AVAST engine scan C:\Windows
    01:26:05.111 AVAST engine scan C:\Windows\system32
    01:27:20.865 AVAST engine scan C:\Windows\system32\drivers
    01:27:26.138 AVAST engine scan C:\Users\ASUSROG
    01:28:07.731 AVAST engine scan C:\ProgramData
    01:28:11.412 Scan finished successfully
    01:28:53.564 Disk 0 MBR has been saved successfully to "C:\Users\ASUSROG\Desktop\MBR.dat"
    01:28:53.564 The log file has been saved successfully to "C:\Users\ASUSROG\Desktop\aswMBR.txt"

    ------------------------------------------------------------------------------------------------------

    Bootkit Remover
    (c) 2009 Esage Lab
    www.esagelab.com

    Program version: 1.2.0.1
    OS Version: Microsoft Windows 7 Ultimate Edition Service Pack 1 (build 7601), 64
    -bit

    System volume is \\.\C:
    \\.\C: -> \\.\PhysicalDrive0 at offset 0x00000000`06500000

    Size Device Name MBR Status
    --------------------------------------------
    223 GB \\.\PhysicalDrive0 Controlled by rootkit!

    Boot code on some of your physical disks is hidden by a rootkit.
    To disinfect the master boot sector, use the following command:
    remover.exe fix <device_name>
    To inspect the boot code manually, dump the master boot sector:
    remover.exe dump <device_name> [output_file]


    Done;
    Press any key to quit...


    I'm guessing this isn't good???
     
  4. Broni

    Broni Malware Annihilator Posts: 52,898   +344

    Download TDSSKiller and save it to your desktop.
    • Extract (unzip) its contents to your desktop.
    • Open the TDSSKiller folder and doubleclick on TDSSKiller.exe to run the application, then on Start Scan.
    • If an infected file is detected, the default action will be Cure, click on Continue.
    • If a suspicious file is detected, the default action will be Skip, click on Continue.
    • It may ask you to reboot the computer to complete the process. Click on Reboot Now.
    • If no reboot is require, click on Report. A log file should appear. Please copy and paste the contents of that file here.
    • If a reboot is required, the report can also be found in your root directory (usually C:\ folder) in the form of TDSSKiller_xxxx_log.txt. Please copy and paste the contents of that file here.
     
  5. Nate41785

    Nate41785 TS Rookie Topic Starter

    03:00:10.0260 3596 TDSS rootkit removing tool 2.7.26.0 Apr 4 2012 19:52:02
    03:00:12.0288 3596 ============================================================
    03:00:12.0288 3596 Current date / time: 2012/04/09 03:00:12.0288
    03:00:12.0288 3596 SystemInfo:
    03:00:12.0288 3596
    03:00:12.0288 3596 OS Version: 6.1.7601 ServicePack: 1.0
    03:00:12.0288 3596 Product type: Workstation
    03:00:12.0288 3596 ComputerName: ASUSROG-PC
    03:00:12.0288 3596 UserName: ASUSROG
    03:00:12.0288 3596 Windows directory: C:\Windows
    03:00:12.0288 3596 System windows directory: C:\Windows
    03:00:12.0288 3596 Running under WOW64
    03:00:12.0288 3596 Processor architecture: Intel x64
    03:00:12.0288 3596 Number of processors: 8
    03:00:12.0288 3596 Page size: 0x1000
    03:00:12.0288 3596 Boot type: Normal boot
    03:00:12.0288 3596 ============================================================
    03:00:12.0475 3596 Drive \Device\Harddisk0\DR0 - Size: 0x37E4896000 (223.57 Gb), SectorSize: 0x200, Cylinders: 0x7201, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
    03:00:12.0475 3596 Drive \Device\Harddisk1\DR1 - Size: 0x1DCF856000 (119.24 Gb), SectorSize: 0x200, Cylinders: 0x3CCE, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
    03:00:12.0475 3596 Drive \Device\Harddisk2\DR3 - Size: 0x15D50F65800 (1397.27 Gb), SectorSize: 0x200, Cylinders: 0x2C881, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
    03:00:23.0910 3596 \Device\Harddisk0\DR0:
    03:00:23.0910 3596 MBR used
    03:00:23.0910 3596 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
    03:00:23.0910 3596 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x1BEF1000
    03:00:23.0910 3596 \Device\Harddisk1\DR1:
    03:00:23.0910 3596 MBR used
    03:00:23.0910 3596 \Device\Harddisk1\DR1\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
    03:00:23.0910 3596 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0xEE49000
    03:00:23.0910 3596 \Device\Harddisk2\DR3:
    03:00:23.0910 3596 MBR used
    03:00:23.0910 3596 \Device\Harddisk2\DR3\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0xAEA86741
    03:00:23.0941 3596 Initialize success
    03:00:23.0941 3596 ============================================================
    03:00:29.0713 4608 ============================================================
    03:00:29.0713 4608 Scan started
    03:00:29.0713 4608 Mode: Manual;
    03:00:29.0713 4608 ============================================================
    03:00:30.0010 4608 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
    03:00:30.0010 4608 1394ohci - ok
    03:00:30.0025 4608 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
    03:00:30.0025 4608 ACPI - ok
    03:00:30.0025 4608 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
    03:00:30.0025 4608 AcpiPmi - ok
    03:00:30.0041 4608 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys
    03:00:30.0041 4608 adp94xx - ok
    03:00:30.0057 4608 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys
    03:00:30.0057 4608 adpahci - ok
    03:00:30.0057 4608 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys
    03:00:30.0072 4608 adpu320 - ok
    03:00:30.0072 4608 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\Windows\System32\aelupsvc.dll
    03:00:30.0072 4608 AeLookupSvc - ok
    03:00:30.0088 4608 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys
    03:00:30.0088 4608 AFD - ok
    03:00:30.0088 4608 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
    03:00:30.0088 4608 agp440 - ok
    03:00:30.0103 4608 ALG (3290d6946b5e30e70414990574883ddb) C:\Windows\System32\alg.exe
    03:00:30.0103 4608 ALG - ok
    03:00:30.0103 4608 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
    03:00:30.0103 4608 aliide - ok
    03:00:30.0119 4608 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
    03:00:30.0119 4608 amdide - ok
    03:00:30.0119 4608 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys
    03:00:30.0119 4608 AmdK8 - ok
    03:00:30.0135 4608 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
    03:00:30.0135 4608 AmdPPM - ok
    03:00:30.0135 4608 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys
    03:00:30.0135 4608 amdsata - ok
    03:00:30.0150 4608 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys
    03:00:30.0150 4608 amdsbs - ok
    03:00:30.0150 4608 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys
    03:00:30.0150 4608 amdxata - ok
    03:00:30.0166 4608 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
    03:00:30.0166 4608 AppID - ok
    03:00:30.0166 4608 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\Windows\System32\appidsvc.dll
    03:00:30.0166 4608 AppIDSvc - ok
    03:00:30.0181 4608 Appinfo (3977d4a871ca0d4f2ed1e7db46829731) C:\Windows\System32\appinfo.dll
    03:00:30.0181 4608 Appinfo - ok
    03:00:30.0181 4608 AppMgmt (4aba3e75a76195a3e38ed2766c962899) C:\Windows\System32\appmgmts.dll
    03:00:30.0197 4608 AppMgmt - ok
    03:00:30.0197 4608 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys
    03:00:30.0197 4608 arc - ok
    03:00:30.0213 4608 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys
    03:00:30.0213 4608 arcsas - ok
    03:00:30.0213 4608 ASLDRService (18e5c2f937f9deb8c282df66a3761925) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
    03:00:30.0213 4608 ASLDRService - ok
    03:00:30.0213 4608 ASMMAP64 (4c016fd76ed5c05e84ca8cab77993961) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys
    03:00:30.0213 4608 ASMMAP64 - ok
    03:00:30.0228 4608 aspnet_state (9217d874131ae6ff8f642f124f00a555) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
    03:00:30.0228 4608 aspnet_state - ok
    03:00:30.0228 4608 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
    03:00:30.0228 4608 AsyncMac - ok
    03:00:30.0244 4608 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
    03:00:30.0244 4608 atapi - ok
    03:00:30.0259 4608 athr (f8633cdd09647a64ee8db550630427ff) C:\Windows\system32\DRIVERS\athrx.sys
    03:00:30.0275 4608 athr - ok
    03:00:30.0275 4608 ATKGFNEXSrv (7910158929571214a959d5a6d16dd9c0) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
    03:00:30.0275 4608 ATKGFNEXSrv - ok
    03:00:30.0275 4608 ATKWMIACPIIO (1f7238a37389ed92e9d8eee975cabd54) C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys
    03:00:30.0275 4608 ATKWMIACPIIO - ok
    03:00:30.0291 4608 AudioEndpointBuilder (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
    03:00:30.0291 4608 AudioEndpointBuilder - ok
    03:00:30.0306 4608 AudioSrv (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
    03:00:30.0306 4608 AudioSrv - ok
    03:00:30.0322 4608 Avgfwfd (96b4456f1dca4eda506ed31c7d2d6b05) C:\Windows\system32\DRIVERS\avgfwd6a.sys
    03:00:30.0322 4608 Avgfwfd - ok
    03:00:30.0337 4608 avgfws (5cd22eb540f82c70e33e530003f3903b) C:\Program Files (x86)\AVG\AVG2012\avgfws.exe
    03:00:30.0353 4608 avgfws - ok
    03:00:30.0400 4608 AVGIDSAgent (6d440ff3f44ca72edfd6176c6d6a89c0) C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe
    03:00:30.0431 4608 AVGIDSAgent - ok
    03:00:30.0431 4608 AVGIDSDriver (e29ea1a0ec7ab9fa2dc7e75a03f12a4f) C:\Windows\system32\DRIVERS\AVGIDSDriver.Sys
    03:00:30.0431 4608 AVGIDSDriver - ok
    03:00:30.0447 4608 AVGIDSEH (f823d184b8e8ffb8da3ead45dbf5bd6a) C:\Windows\system32\DRIVERS\AVGIDSEH.Sys
    03:00:30.0447 4608 AVGIDSEH - ok
    03:00:30.0447 4608 AVGIDSFilter (ed2b25bd7fe35d1944211968842d30da) C:\Windows\system32\DRIVERS\AVGIDSFilter.Sys
    03:00:30.0447 4608 AVGIDSFilter - ok
    03:00:30.0462 4608 Avgldx64 (979cf8912449a10b987218bff80a1fa3) C:\Windows\system32\DRIVERS\avgldx64.sys
    03:00:30.0462 4608 Avgldx64 - ok
    03:00:30.0462 4608 Avgmfx64 (36b1a5843695766eac714daffc5b84d1) C:\Windows\system32\DRIVERS\avgmfx64.sys
    03:00:30.0462 4608 Avgmfx64 - ok
    03:00:30.0478 4608 Avgrkx64 (1102239fb724527f1febbbbccf6bf313) C:\Windows\system32\DRIVERS\avgrkx64.sys
    03:00:30.0478 4608 Avgrkx64 - ok
    03:00:30.0478 4608 Avgtdia (11f36d3ea82d9db9aa05a476a210551b) C:\Windows\system32\DRIVERS\avgtdia.sys
    03:00:30.0493 4608 Avgtdia - ok
    03:00:30.0493 4608 avgwd (6699ece24fe4b3f752a66c66a602ee86) C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe
    03:00:30.0493 4608 avgwd - ok
    03:00:30.0509 4608 AxInstSV (a6bf31a71b409dfa8cac83159e1e2aff) C:\Windows\System32\AxInstSV.dll
    03:00:30.0509 4608 AxInstSV - ok
    03:00:30.0509 4608 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys
    03:00:30.0525 4608 b06bdrv - ok
    03:00:30.0525 4608 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
    03:00:30.0525 4608 b57nd60a - ok
    03:00:30.0540 4608 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\Windows\System32\bdesvc.dll
    03:00:30.0540 4608 BDESVC - ok
    03:00:30.0540 4608 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
    03:00:30.0540 4608 Beep - ok
    03:00:30.0556 4608 BFE (82974d6a2fd19445cc5171fc378668a4) C:\Windows\System32\bfe.dll
    03:00:30.0556 4608 BFE - ok
    03:00:30.0571 4608 BITS (1ea7969e3271cbc59e1730697dc74682) C:\Windows\System32\qmgr.dll
    03:00:30.0587 4608 BITS - ok
    03:00:30.0587 4608 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
    03:00:30.0587 4608 blbdrive - ok
    03:00:30.0603 4608 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
    03:00:30.0603 4608 bowser - ok
    03:00:30.0603 4608 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys
    03:00:30.0603 4608 BrFiltLo - ok
    03:00:30.0603 4608 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys
    03:00:30.0603 4608 BrFiltUp - ok
    03:00:30.0618 4608 Browser (8ef0d5c41ec907751b8429162b1239ed) C:\Windows\System32\browser.dll
    03:00:30.0618 4608 Browser - ok
    03:00:30.0634 4608 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
    03:00:30.0634 4608 Brserid - ok
    03:00:30.0634 4608 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
    03:00:30.0634 4608 BrSerWdm - ok
    03:00:30.0649 4608 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
    03:00:30.0649 4608 BrUsbMdm - ok
    03:00:30.0649 4608 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
    03:00:30.0649 4608 BrUsbSer - ok
    03:00:30.0665 4608 BthEnum (cf98190a94f62e405c8cb255018b2315) C:\Windows\system32\drivers\BthEnum.sys
    03:00:30.0665 4608 BthEnum - ok
    03:00:30.0665 4608 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
    03:00:30.0665 4608 BTHMODEM - ok
    03:00:30.0681 4608 BthPan (02dd601b708dd0667e1331fa8518e9ff) C:\Windows\system32\DRIVERS\bthpan.sys
    03:00:30.0681 4608 BthPan - ok
    03:00:30.0681 4608 BTHPORT (64c198198501f7560ee41d8d1efa7952) C:\Windows\System32\Drivers\BTHport.sys
    03:00:30.0696 4608 BTHPORT - ok
    03:00:30.0696 4608 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\Windows\system32\bthserv.dll
    03:00:30.0696 4608 bthserv - ok
    03:00:30.0696 4608 BTHUSB (f188b7394d81010767b6df3178519a37) C:\Windows\System32\Drivers\BTHUSB.sys
    03:00:30.0712 4608 BTHUSB - ok
    03:00:30.0727 4608 btusbflt (d3466f77c2c49c6e393ba5fba963a33e) C:\Windows\system32\drivers\btusbflt.sys
    03:00:30.0727 4608 btusbflt - ok
    03:00:30.0727 4608 btwaudio (a72a9101f9730db7332714e566614e4d) C:\Windows\system32\drivers\btwaudio.sys
    03:00:30.0743 4608 btwaudio - ok
    03:00:30.0743 4608 btwavdt (5ceec634b617525f2b6ad29f871033f7) C:\Windows\system32\DRIVERS\btwavdt.sys
    03:00:30.0743 4608 btwavdt - ok
    03:00:30.0759 4608 btwdins (4e63c48e7328a11ed0e9075c18fce782) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
    03:00:30.0759 4608 btwdins - ok
    03:00:30.0774 4608 btwl2cap (6149301dc3f81d6f9667a3fbac410975) C:\Windows\system32\DRIVERS\btwl2cap.sys
    03:00:30.0774 4608 btwl2cap - ok
    03:00:30.0774 4608 btwrchid (2af5604d28bef77b7cf4b9d232fe7cd3) C:\Windows\system32\DRIVERS\btwrchid.sys
    03:00:30.0774 4608 btwrchid - ok
    03:00:30.0790 4608 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
    03:00:30.0790 4608 cdfs - ok
    03:00:30.0790 4608 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\DRIVERS\cdrom.sys
    03:00:30.0790 4608 cdrom - ok
    03:00:30.0805 4608 CertPropSvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
    03:00:30.0805 4608 CertPropSvc - ok
    03:00:30.0805 4608 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
    03:00:30.0805 4608 circlass - ok
    03:00:30.0821 4608 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
    03:00:30.0821 4608 CLFS - ok
    03:00:30.0821 4608 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
    03:00:30.0821 4608 clr_optimization_v2.0.50727_32 - ok
    03:00:30.0837 4608 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
    03:00:30.0837 4608 clr_optimization_v2.0.50727_64 - ok
    03:00:30.0837 4608 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
    03:00:30.0837 4608 clr_optimization_v4.0.30319_32 - ok
    03:00:30.0852 4608 clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
    03:00:30.0852 4608 clr_optimization_v4.0.30319_64 - ok
    03:00:30.0852 4608 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
    03:00:30.0852 4608 CmBatt - ok
    03:00:30.0868 4608 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
    03:00:30.0868 4608 cmdide - ok
    03:00:30.0868 4608 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys
    03:00:30.0883 4608 CNG - ok
    03:00:30.0883 4608 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
    03:00:30.0883 4608 Compbatt - ok
    03:00:30.0883 4608 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys
    03:00:30.0899 4608 CompositeBus - ok
    03:00:30.0899 4608 COMSysApp - ok
    03:00:30.0899 4608 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys
    03:00:30.0899 4608 crcdisk - ok
    03:00:30.0915 4608 Creative ALchemy AL6 Licensing Service (c8bd651e13895b93ed9ec5b4f1df42bc) C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe
    03:00:30.0930 4608 Creative ALchemy AL6 Licensing Service - ok
    03:00:30.0930 4608 Creative Audio Engine Licensing Service (c0ead9f8ab83d41ff07303c75589c2b8) C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
    03:00:30.0930 4608 Creative Audio Engine Licensing Service - ok
    03:00:30.0946 4608 CryptSvc (15597883fbe9b056f276ada3ad87d9af) C:\Windows\system32\cryptsvc.dll
    03:00:30.0946 4608 CryptSvc - ok
    03:00:30.0961 4608 CSC (54da3dfd29ed9f1619b6f53f3ce55e49) C:\Windows\system32\drivers\csc.sys
    03:00:30.0961 4608 CSC - ok
    03:00:30.0977 4608 CscService (3ab183ab4d2c79dcf459cd2c1266b043) C:\Windows\System32\cscsvc.dll
    03:00:30.0977 4608 CscService - ok
    03:00:30.0993 4608 DcomLaunch (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
    03:00:30.0993 4608 DcomLaunch - ok
    03:00:30.0993 4608 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\Windows\System32\defragsvc.dll
    03:00:31.0008 4608 defragsvc - ok
    03:00:31.0008 4608 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
    03:00:31.0008 4608 DfsC - ok
    03:00:31.0024 4608 Dhcp (43d808f5d9e1a18e5eeb5ebc83969e4e) C:\Windows\system32\dhcpcore.dll
    03:00:31.0024 4608 Dhcp - ok
    03:00:31.0024 4608 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
    03:00:31.0024 4608 discache - ok
    03:00:31.0039 4608 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys
    03:00:31.0039 4608 Disk - ok
    03:00:31.0039 4608 Dnscache (16835866aaa693c7d7fceba8fff706e4) C:\Windows\System32\dnsrslvr.dll
    03:00:31.0039 4608 Dnscache - ok
    03:00:31.0055 4608 dot3svc (b1fb3ddca0fdf408750d5843591afbc6) C:\Windows\System32\dot3svc.dll
    03:00:31.0055 4608 dot3svc - ok
    03:00:31.0071 4608 DPS (b26f4f737e8f9df4f31af6cf31d05820) C:\Windows\system32\dps.dll
    03:00:31.0071 4608 DPS - ok
    03:00:31.0071 4608 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
    03:00:31.0071 4608 drmkaud - ok
    03:00:31.0086 4608 dtsoftbus01 (d3d64cf7b2bceaa34a270f45a3fffb36) C:\Windows\system32\DRIVERS\dtsoftbus01.sys
    03:00:31.0086 4608 dtsoftbus01 - ok
    03:00:31.0102 4608 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
    03:00:31.0102 4608 DXGKrnl - ok
    03:00:31.0117 4608 EapHost (e2dda8726da9cb5b2c4000c9018a9633) C:\Windows\System32\eapsvc.dll
    03:00:31.0117 4608 EapHost - ok
    03:00:31.0149 4608 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys
    03:00:31.0164 4608 ebdrv - ok
    03:00:31.0180 4608 EFS (c118a82cd78818c29ab228366ebf81c3) C:\Windows\System32\lsass.exe
    03:00:31.0180 4608 EFS - ok
    03:00:31.0180 4608 ehRecvr (c4002b6b41975f057d98c439030cea07) C:\Windows\ehome\ehRecvr.exe
    03:00:31.0195 4608 ehRecvr - ok
    03:00:31.0195 4608 ehSched (4705e8ef9934482c5bb488ce28afc681) C:\Windows\ehome\ehsched.exe
    03:00:31.0195 4608 ehSched - ok
    03:00:31.0211 4608 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys
    03:00:31.0211 4608 elxstor - ok
    03:00:31.0211 4608 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
    03:00:31.0211 4608 ErrDev - ok
    03:00:31.0227 4608 EventSystem (4166f82be4d24938977dd1746be9b8a0) C:\Windows\system32\es.dll
    03:00:31.0227 4608 EventSystem - ok
    03:00:31.0242 4608 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
    03:00:31.0242 4608 exfat - ok
    03:00:31.0242 4608 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
    03:00:31.0258 4608 fastfat - ok
    03:00:31.0258 4608 Fax (dbefd454f8318a0ef691fdd2eaab44eb) C:\Windows\system32\fxssvc.exe
    03:00:31.0273 4608 Fax - ok
    03:00:31.0273 4608 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
    03:00:31.0273 4608 fdc - ok
    03:00:31.0273 4608 fdPHost (0438cab2e03f4fb61455a7956026fe86) C:\Windows\system32\fdPHost.dll
    03:00:31.0289 4608 fdPHost - ok
    03:00:31.0289 4608 FDResPub (802496cb59a30349f9a6dd22d6947644) C:\Windows\system32\fdrespub.dll
    03:00:31.0289 4608 FDResPub - ok
    03:00:31.0289 4608 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
    03:00:31.0305 4608 FileInfo - ok
    03:00:31.0305 4608 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
    03:00:31.0305 4608 Filetrace - ok
    03:00:31.0305 4608 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
    03:00:31.0305 4608 flpydisk - ok
    03:00:31.0320 4608 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
    03:00:31.0320 4608 FltMgr - ok
    03:00:31.0336 4608 FLxHCIc (1e7d0cbe3c0a4de771c9e7eab2a08dde) C:\Windows\system32\DRIVERS\FLxHCIc.sys
    03:00:31.0336 4608 FLxHCIc - ok
    03:00:31.0336 4608 FLxHCIh (75db3989c799b9721fa828da76621933) C:\Windows\system32\DRIVERS\FLxHCIh.sys
    03:00:31.0336 4608 FLxHCIh - ok
    03:00:31.0351 4608 FontCache (b4447f606bb19fd8ad0bafb59b90f5d9) C:\Windows\system32\FntCache.dll
    03:00:31.0367 4608 FontCache - ok
    03:00:31.0367 4608 FontCache3.0.0.0 (a8b7f3818ab65695e3a0bb3279f6dce6) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
    03:00:31.0367 4608 FontCache3.0.0.0 - ok
    03:00:31.0383 4608 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
    03:00:31.0383 4608 FsDepends - ok
    03:00:31.0383 4608 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys
    03:00:31.0383 4608 Fs_Rec - ok
    03:00:31.0398 4608 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
    03:00:31.0398 4608 fvevol - ok
    03:00:31.0398 4608 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys
    03:00:31.0398 4608 gagp30kx - ok
    03:00:31.0414 4608 gpsvc (277bbc7e1aa1ee957f573a10eca7ef3a) C:\Windows\System32\gpsvc.dll
    03:00:31.0414 4608 gpsvc - ok
    03:00:31.0429 4608 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
    03:00:31.0429 4608 hcw85cir - ok
    03:00:31.0445 4608 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys
    03:00:31.0445 4608 HdAudAddService - ok
    03:00:31.0445 4608 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys
    03:00:31.0445 4608 HDAudBus - ok
    03:00:31.0461 4608 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys
    03:00:31.0461 4608 HidBatt - ok
    03:00:31.0461 4608 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys
    03:00:31.0461 4608 HidBth - ok
    03:00:31.0476 4608 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys
    03:00:31.0476 4608 HidIr - ok
    03:00:31.0476 4608 hidserv (bd9eb3958f213f96b97b1d897dee006d) C:\Windows\system32\hidserv.dll
    03:00:31.0476 4608 hidserv - ok
    03:00:31.0492 4608 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys
    03:00:31.0492 4608 HidUsb - ok
    03:00:31.0492 4608 hkmsvc (387e72e739e15e3d37907a86d9ff98e2) C:\Windows\system32\kmsvc.dll
    03:00:31.0492 4608 hkmsvc - ok
    03:00:31.0507 4608 HomeGroupListener (efdfb3dd38a4376f93e7985173813abd) C:\Windows\system32\ListSvc.dll
    03:00:31.0507 4608 HomeGroupListener - ok
    03:00:31.0507 4608 HomeGroupProvider (908acb1f594274965a53926b10c81e89) C:\Windows\system32\provsvc.dll
    03:00:31.0507 4608 HomeGroupProvider - ok
    03:00:31.0523 4608 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
    03:00:31.0523 4608 HpSAMD - ok
    03:00:31.0539 4608 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
    03:00:31.0539 4608 HTTP - ok
    03:00:31.0554 4608 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
    03:00:31.0554 4608 hwpolicy - ok
    03:00:31.0554 4608 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\drivers\i8042prt.sys
    03:00:31.0554 4608 i8042prt - ok
    03:00:31.0570 4608 iaStor (f7ce9be72edac499b713eca6dae5d26f) C:\Windows\system32\DRIVERS\iaStor.sys
    03:00:31.0570 4608 iaStor - ok
    03:00:31.0585 4608 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys
    03:00:31.0585 4608 iaStorV - ok
    03:00:31.0601 4608 idsvc (5988fc40f8db5b0739cd1e3a5d0d78bd) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
    03:00:31.0601 4608 idsvc - ok
    03:00:31.0601 4608 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys
    03:00:31.0601 4608 iirsp - ok
    03:00:31.0617 4608 IKEEXT (fcd84c381e0140af901e58d48882d26b) C:\Windows\System32\ikeext.dll
    03:00:31.0632 4608 IKEEXT - ok
    03:00:31.0663 4608 IntcAzAudAddService (bd9d02f706fcaf28d89f5435f18a4a04) C:\Windows\system32\drivers\RTKVHD64.sys
    03:00:31.0679 4608 IntcAzAudAddService - ok
    03:00:31.0679 4608 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
    03:00:31.0679 4608 intelide - ok
    03:00:31.0695 4608 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
    03:00:31.0695 4608 intelppm - ok
    03:00:31.0695 4608 IPBusEnum (098a91c54546a3b878dad6a7e90a455b) C:\Windows\system32\ipbusenum.dll
    03:00:31.0695 4608 IPBusEnum - ok
    03:00:31.0710 4608 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
    03:00:31.0710 4608 IpFilterDriver - ok
    03:00:31.0710 4608 iphlpsvc (a34a587fffd45fa649fba6d03784d257) C:\Windows\System32\iphlpsvc.dll
    03:00:31.0726 4608 iphlpsvc - ok
    03:00:31.0726 4608 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
    03:00:31.0726 4608 IPMIDRV - ok
    03:00:31.0741 4608 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
    03:00:31.0741 4608 IPNAT - ok
    03:00:31.0741 4608 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
    03:00:31.0741 4608 IRENUM - ok
    03:00:31.0757 4608 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
    03:00:31.0757 4608 isapnp - ok
    03:00:31.0757 4608 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
    03:00:31.0757 4608 iScsiPrt - ok
    03:00:31.0773 4608 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys
    03:00:31.0773 4608 kbdclass - ok
    03:00:31.0773 4608 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\DRIVERS\kbdhid.sys
    03:00:31.0773 4608 kbdhid - ok
    03:00:31.0788 4608 kbfiltr (e63ef8c3271d014f14e2469ce75fecb4) C:\Windows\system32\DRIVERS\kbfiltr.sys
    03:00:31.0788 4608 kbfiltr - ok
    03:00:31.0788 4608 KeyIso (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
    03:00:31.0788 4608 KeyIso - ok
    03:00:31.0804 4608 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys
    03:00:31.0804 4608 KSecDD - ok
    03:00:31.0804 4608 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys
    03:00:31.0804 4608 KSecPkg - ok
    03:00:31.0819 4608 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
    03:00:31.0819 4608 ksthunk - ok
    03:00:31.0819 4608 KtmRm (6ab66e16aa859232f64deb66887a8c9c) C:\Windows\system32\msdtckrm.dll
    03:00:31.0819 4608 KtmRm - ok
    03:00:31.0835 4608 LanmanServer (d9f42719019740baa6d1c6d536cbdaa6) C:\Windows\system32\srvsvc.dll
    03:00:31.0835 4608 LanmanServer - ok
    03:00:31.0851 4608 LanmanWorkstation (851a1382eed3e3a7476db004f4ee3e1a) C:\Windows\System32\wkssvc.dll
    03:00:31.0851 4608 LanmanWorkstation - ok
    03:00:31.0851 4608 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
    03:00:31.0851 4608 lltdio - ok
    03:00:31.0866 4608 lltdsvc (c1185803384ab3feed115f79f109427f) C:\Windows\System32\lltdsvc.dll
    03:00:31.0866 4608 lltdsvc - ok
    03:00:31.0866 4608 lmhosts (f993a32249b66c9d622ea5592a8b76b8) C:\Windows\System32\lmhsvc.dll
    03:00:31.0882 4608 lmhosts - ok
    03:00:31.0882 4608 LMS (0803906d607a9b83184447b75b60ecc2) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
    03:00:31.0882 4608 LMS - ok
    03:00:31.0897 4608 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys
    03:00:31.0897 4608 LSI_FC - ok
    03:00:31.0897 4608 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys
    03:00:31.0897 4608 LSI_SAS - ok
    03:00:31.0913 4608 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys
    03:00:31.0913 4608 LSI_SAS2 - ok
    03:00:31.0913 4608 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys
    03:00:31.0913 4608 LSI_SCSI - ok
    03:00:31.0929 4608 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
    03:00:31.0929 4608 luafv - ok
    03:00:31.0929 4608 MBAMProtector (79da94b35371b9e7104460c7693dcb2c) C:\Windows\system32\drivers\mbam.sys
    03:00:31.0929 4608 MBAMProtector - ok
    03:00:31.0944 4608 MBAMService (056b19651bd7b7ce5f89a3ac46dbdc08) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
    03:00:31.0944 4608 MBAMService - ok
    03:00:31.0960 4608 MBfilt (8ff2d95cba49b405c5de27039ff0bf35) C:\Windows\system32\drivers\MBfilt64.sys
    03:00:31.0960 4608 MBfilt - ok
    03:00:31.0960 4608 Mcx2Svc (0be09cd858abf9df6ed259d57a1a1663) C:\Windows\system32\Mcx2Svc.dll
    03:00:31.0960 4608 Mcx2Svc - ok
    03:00:31.0960 4608 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys
    03:00:31.0975 4608 megasas - ok
    03:00:31.0975 4608 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys
    03:00:31.0975 4608 MegaSR - ok
    03:00:31.0991 4608 MEIx64 (1c6e73fc46b509eff9d0086aa37132df) C:\Windows\system32\DRIVERS\HECIx64.sys
    03:00:31.0991 4608 MEIx64 - ok
    03:00:31.0991 4608 Microsoft SharePoint Workspace Audit Service - ok
    03:00:31.0991 4608 MMCSS (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
    03:00:32.0007 4608 MMCSS - ok
    03:00:32.0007 4608 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
    03:00:32.0007 4608 Modem - ok
    03:00:32.0007 4608 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
    03:00:32.0007 4608 monitor - ok
    03:00:32.0022 4608 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys
    03:00:32.0022 4608 mouclass - ok
    03:00:32.0022 4608 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
    03:00:32.0022 4608 mouhid - ok
    03:00:32.0038 4608 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys
    03:00:32.0038 4608 mountmgr - ok
    03:00:32.0038 4608 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys
    03:00:32.0053 4608 mpio - ok
    03:00:32.0053 4608 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
    03:00:32.0053 4608 mpsdrv - ok
    03:00:32.0069 4608 MpsSvc (54ffc9c8898113ace189d4aa7199d2c1) C:\Windows\system32\mpssvc.dll
    03:00:32.0069 4608 MpsSvc - ok
    03:00:32.0085 4608 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys
    03:00:32.0085 4608 MRxDAV - ok
    03:00:32.0085 4608 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys
    03:00:32.0085 4608 mrxsmb - ok
    03:00:32.0100 4608 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys
    03:00:32.0100 4608 mrxsmb10 - ok
    03:00:32.0116 4608 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
    03:00:32.0116 4608 mrxsmb20 - ok
    03:00:32.0116 4608 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys
    03:00:32.0116 4608 msahci - ok
    03:00:32.0131 4608 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys
    03:00:32.0131 4608 msdsm - ok
    03:00:32.0131 4608 MSDTC (de0ece52236cfa3ed2dbfc03f28253a8) C:\Windows\System32\msdtc.exe
    03:00:32.0131 4608 MSDTC - ok
    03:00:32.0147 4608 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
    03:00:32.0147 4608 Msfs - ok
    03:00:32.0147 4608 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
    03:00:32.0147 4608 mshidkmdf - ok
    03:00:32.0163 4608 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
    03:00:32.0163 4608 msisadrv - ok
    03:00:32.0163 4608 MSiSCSI (808e98ff49b155c522e6400953177b08) C:\Windows\system32\iscsiexe.dll
    03:00:32.0163 4608 MSiSCSI - ok
    03:00:32.0178 4608 msiserver - ok
    03:00:32.0178 4608 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
    03:00:32.0178 4608 MSKSSRV - ok
    03:00:32.0194 4608 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
    03:00:32.0194 4608 MSPCLOCK - ok
    03:00:32.0194 4608 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
    03:00:32.0194 4608 MSPQM - ok
    03:00:32.0209 4608 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys
    03:00:32.0209 4608 MsRPC - ok
    03:00:32.0225 4608 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys
    03:00:32.0225 4608 mssmbios - ok
    03:00:32.0225 4608 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
    03:00:32.0225 4608 MSTEE - ok
    03:00:32.0225 4608 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys
    03:00:32.0225 4608 MTConfig - ok
    03:00:32.0241 4608 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
    03:00:32.0241 4608 Mup - ok
    03:00:32.0256 4608 napagent (582ac6d9873e31dfa28a4547270862dd) C:\Windows\system32\qagentRT.dll
    03:00:32.0256 4608 napagent - ok
    03:00:32.0272 4608 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
    03:00:32.0272 4608 NativeWifiP - ok
    03:00:32.0287 4608 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys
    03:00:32.0287 4608 NDIS - ok
    03:00:32.0303 4608 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
    03:00:32.0303 4608 NdisCap - ok
    03:00:32.0303 4608 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
    03:00:32.0303 4608 NdisTapi - ok
    03:00:32.0319 4608 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys
    03:00:32.0319 4608 Ndisuio - ok
    03:00:32.0319 4608 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys
    03:00:32.0319 4608 NdisWan - ok
    03:00:32.0334 4608 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys
    03:00:32.0334 4608 NDProxy - ok
    03:00:32.0334 4608 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
    03:00:32.0334 4608 NetBIOS - ok
    03:00:32.0350 4608 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys
    03:00:32.0350 4608 NetBT - ok
    03:00:32.0350 4608 Netlogon (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
    03:00:32.0365 4608 Netlogon - ok
    03:00:32.0365 4608 Netman (847d3ae376c0817161a14a82c8922a9e) C:\Windows\System32\netman.dll
    03:00:32.0365 4608 Netman - ok
    03:00:32.0381 4608 NetMsmqActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
    03:00:32.0381 4608 NetMsmqActivator - ok
    03:00:32.0381 4608 NetPipeActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
    03:00:32.0381 4608 NetPipeActivator - ok
    03:00:32.0397 4608 netprofm (5f28111c648f1e24f7dbc87cdeb091b8) C:\Windows\System32\netprofm.dll
    03:00:32.0397 4608 netprofm - ok
    03:00:32.0397 4608 NetTcpActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
    03:00:32.0397 4608 NetTcpActivator - ok
    03:00:32.0412 4608 NetTcpPortSharing (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
    03:00:32.0412 4608 NetTcpPortSharing - ok
    03:00:32.0412 4608 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys
    03:00:32.0412 4608 nfrd960 - ok
    03:00:32.0428 4608 NlaSvc (1ee99a89cc788ada662441d1e9830529) C:\Windows\System32\nlasvc.dll
    03:00:32.0428 4608 NlaSvc - ok
    03:00:32.0428 4608 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
    03:00:32.0428 4608 Npfs - ok
    03:00:32.0443 4608 nsi (d54bfdf3e0c953f823b3d0bfe4732528) C:\Windows\system32\nsisvc.dll
    03:00:32.0443 4608 nsi - ok
    03:00:32.0443 4608 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
    03:00:32.0443 4608 nsiproxy - ok
    03:00:32.0459 4608 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys
    03:00:32.0475 4608 Ntfs - ok
    03:00:32.0490 4608 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
    03:00:32.0490 4608 Null - ok
    03:00:32.0490 4608 NVHDA (10204955027011e08a9dc27737a48a54) C:\Windows\system32\drivers\nvhda64v.sys
    03:00:32.0490 4608 NVHDA - ok
    03:00:32.0599 4608 nvlddmkm (cbf698abe989d60ec0d0b6b81ad82930) C:\Windows\system32\DRIVERS\nvlddmkm.sys
    03:00:32.0693 4608 nvlddmkm - ok
    03:00:32.0693 4608 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys
    03:00:32.0693 4608 nvraid - ok
    03:00:32.0709 4608 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys
    03:00:32.0709 4608 nvstor - ok
    03:00:32.0724 4608 nvsvc (cce27b95d1ae8128a7e0cee0fc9ae535) C:\Windows\system32\nvvsvc.exe
    03:00:32.0740 4608 nvsvc - ok
    03:00:32.0740 4608 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
    03:00:32.0740 4608 nv_agp - ok
    03:00:32.0755 4608 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
    03:00:32.0755 4608 ohci1394 - ok
    03:00:32.0755 4608 ose (9d10f99a6712e28f8acd5641e3a7ea6b) C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
    03:00:32.0755 4608 ose - ok
    03:00:32.0802 4608 osppsvc (61bffb5f57ad12f83ab64b7181829b34) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
    03:00:32.0833 4608 osppsvc - ok
    03:00:32.0849 4608 p2pimsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
    03:00:32.0849 4608 p2pimsvc - ok
    03:00:32.0865 4608 p2psvc (927463ecb02179f88e4b9a17568c63c3) C:\Windows\system32\p2psvc.dll
    03:00:32.0865 4608 p2psvc - ok
    03:00:32.0865 4608 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys
    03:00:32.0880 4608 Parport - ok
    03:00:32.0880 4608 partmgr (871eadac56b0a4c6512bbe32753ccf79) C:\Windows\system32\drivers\partmgr.sys
    03:00:32.0880 4608 partmgr - ok
    03:00:32.0880 4608 PcaSvc (3aeaa8b561e63452c655dc0584922257) C:\Windows\System32\pcasvc.dll
    03:00:32.0896 4608 PcaSvc - ok
    03:00:32.0896 4608 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys
    03:00:32.0896 4608 pci - ok
    03:00:32.0911 4608 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
    03:00:32.0911 4608 pciide - ok
    03:00:32.0911 4608 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys
    03:00:32.0911 4608 pcmcia - ok
    03:00:32.0927 4608 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
    03:00:32.0927 4608 pcw - ok
    03:00:32.0927 4608 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
    03:00:32.0943 4608 PEAUTH - ok
    03:00:32.0958 4608 PeerDistSvc (b9b0a4299dd2d76a4243f75fd54dc680) C:\Windows\system32\peerdistsvc.dll
    03:00:32.0974 4608 PeerDistSvc - ok
    03:00:32.0974 4608 PerfHost (e495e408c93141e8fc72dc0c6046ddfa) C:\Windows\SysWow64\perfhost.exe
    03:00:32.0974 4608 PerfHost - ok
    03:00:32.0989 4608 pla (c7cf6a6e137463219e1259e3f0f0dd6c) C:\Windows\system32\pla.dll
    03:00:33.0005 4608 pla - ok
    03:00:33.0021 4608 PlugPlay (25fbdef06c4d92815b353f6e792c8129) C:\Windows\system32\umpnpmgr.dll
    03:00:33.0021 4608 PlugPlay - ok
    03:00:33.0036 4608 PNRPAutoReg (7195581cec9bb7d12abe54036acc2e38) C:\Windows\system32\pnrpauto.dll
    03:00:33.0036 4608 PNRPAutoReg - ok
    03:00:33.0036 4608 PNRPsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
    03:00:33.0036 4608 PNRPsvc - ok
    03:00:33.0052 4608 PolicyAgent (4f15d75adf6156bf56eced6d4a55c389) C:\Windows\System32\ipsecsvc.dll
    03:00:33.0052 4608 PolicyAgent - ok
    03:00:33.0067 4608 Power (6ba9d927dded70bd1a9caded45f8b184) C:\Windows\system32\umpo.dll
    03:00:33.0067 4608 Power - ok
    03:00:33.0083 4608 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys
    03:00:33.0083 4608 PptpMiniport - ok
    03:00:33.0083 4608 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys
    03:00:33.0083 4608 Processor - ok
    03:00:33.0099 4608 ProfSvc (5c78838b4d166d1a27db3a8a820c799a) C:\Windows\system32\profsvc.dll
    03:00:33.0099 4608 ProfSvc - ok
    03:00:33.0099 4608 ProtectedStorage (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
    03:00:33.0099 4608 ProtectedStorage - ok
    03:00:33.0114 4608 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys
    03:00:33.0114 4608 Psched - ok
    03:00:33.0130 4608 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys
    03:00:33.0145 4608 ql2300 - ok
    03:00:33.0145 4608 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys
    03:00:33.0145 4608 ql40xx - ok
    03:00:33.0161 4608 QWAVE (906191634e99aea92c4816150bda3732) C:\Windows\system32\qwave.dll
    03:00:33.0161 4608 QWAVE - ok
    03:00:33.0177 4608 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
    03:00:33.0177 4608 QWAVEdrv - ok
    03:00:33.0177 4608 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
    03:00:33.0177 4608 RasAcd - ok
    03:00:33.0192 4608 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
    03:00:33.0192 4608 RasAgileVpn - ok
    03:00:33.0192 4608 RasAuto (8f26510c5383b8dbe976de1cd00fc8c7) C:\Windows\System32\rasauto.dll
    03:00:33.0192 4608 RasAuto - ok
    03:00:33.0208 4608 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys
    03:00:33.0208 4608 Rasl2tp - ok
    03:00:33.0208 4608 RasMan (ee867a0870fc9e4972ba9eaad35651e2) C:\Windows\System32\rasmans.dll
    03:00:33.0223 4608 RasMan - ok
    03:00:33.0223 4608 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
    03:00:33.0223 4608 RasPppoe - ok
    03:00:33.0239 4608 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
    03:00:33.0239 4608 RasSstp - ok
    03:00:33.0239 4608 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys
    03:00:33.0239 4608 rdbss - ok
    03:00:33.0255 4608 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys
    03:00:33.0255 4608 rdpbus - ok
    03:00:33.0255 4608 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
    03:00:33.0255 4608 RDPCDD - ok
    03:00:33.0270 4608 RDPDR (1b6163c503398b23ff8b939c67747683) C:\Windows\system32\drivers\rdpdr.sys
    03:00:33.0270 4608 RDPDR - ok
    03:00:33.0270 4608 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
    03:00:33.0286 4608 RDPENCDD - ok
    03:00:33.0286 4608 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
    03:00:33.0286 4608 RDPREFMP - ok
    03:00:33.0301 4608 RdpVideoMiniport (70cba1a0c98600a2aa1863479b35cb90) C:\Windows\system32\drivers\rdpvideominiport.sys
    03:00:33.0301 4608 RdpVideoMiniport - ok
    03:00:33.0301 4608 RDPWD (6d76e6433574b058adcb0c50df834492) C:\Windows\system32\drivers\RDPWD.sys
    03:00:33.0301 4608 RDPWD - ok
    03:00:33.0317 4608 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys
    03:00:33.0317 4608 rdyboost - ok
    03:00:33.0317 4608 RemoteAccess (254fb7a22d74e5511c73a3f6d802f192) C:\Windows\System32\mprdim.dll
    03:00:33.0333 4608 RemoteAccess - ok
    03:00:33.0333 4608 RemoteRegistry (e4d94f24081440b5fc5aa556c7c62702) C:\Windows\system32\regsvc.dll
    03:00:33.0333 4608 RemoteRegistry - ok
    03:00:33.0348 4608 RFCOMM (3dd798846e2c28102b922c56e71b7932) C:\Windows\system32\DRIVERS\rfcomm.sys
    03:00:33.0348 4608 RFCOMM - ok
    03:00:33.0348 4608 RpcEptMapper (e4dc58cf7b3ea515ae917ff0d402a7bb) C:\Windows\System32\RpcEpMap.dll
    03:00:33.0348 4608 RpcEptMapper - ok
    03:00:33.0364 4608 RpcLocator (d5ba242d4cf8e384db90e6a8ed850b8c) C:\Windows\system32\locator.exe
    03:00:33.0364 4608 RpcLocator - ok
    03:00:33.0364 4608 RpcSs (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
    03:00:33.0379 4608 RpcSs - ok
    03:00:33.0379 4608 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
    03:00:33.0379 4608 rspndr - ok
    03:00:33.0395 4608 RSUSBVSTOR (e57fac2cdb73f06586ed2ed310b80932) C:\Windows\system32\Drivers\RtsUVStor.sys
    03:00:33.0395 4608 RSUSBVSTOR - ok
    03:00:33.0411 4608 RTL8167 (20a466b9ea2bd828c0ec723f99b8cfe7) C:\Windows\system32\DRIVERS\Rt64win7.sys
    03:00:33.0411 4608 RTL8167 - ok
    03:00:33.0411 4608 s3cap (e60c0a09f997826c7627b244195ab581) C:\Windows\system32\drivers\vms3cap.sys
    03:00:33.0411 4608 s3cap - ok
    03:00:33.0426 4608 SamSs (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
    03:00:33.0426 4608 SamSs - ok
    03:00:33.0426 4608 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys
    03:00:33.0426 4608 sbp2port - ok
    03:00:33.0442 4608 SCardSvr (9b7395789e3791a3b6d000fe6f8b131e) C:\Windows\System32\SCardSvr.dll
    03:00:33.0442 4608 SCardSvr - ok
    03:00:33.0442 4608 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys
    03:00:33.0442 4608 scfilter - ok
    03:00:33.0457 4608 Schedule (262f6592c3299c005fd6bec90fc4463a) C:\Windows\system32\schedsvc.dll
    03:00:33.0473 4608 Schedule - ok
    03:00:33.0473 4608 SCPolicySvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
    03:00:33.0473 4608 SCPolicySvc - ok
    03:00:33.0489 4608 SDRSVC (6ea4234dc55346e0709560fe7c2c1972) C:\Windows\System32\SDRSVC.dll
    03:00:33.0489 4608 SDRSVC - ok
    03:00:33.0489 4608 SeagateDashboardService (2c542fb84b26459d437b22a9bc63c14d) C:\Program Files (x86)\Seagate\Seagate Dashboard\SeagateDashboardService.exe
    03:00:33.0489 4608 SeagateDashboardService - ok
    03:00:33.0504 4608 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
    03:00:33.0504 4608 secdrv - ok
    03:00:33.0504 4608 seclogon (bc617a4e1b4fa8df523a061739a0bd87) C:\Windows\system32\seclogon.dll
    03:00:33.0504 4608 seclogon - ok
    03:00:33.0520 4608 SENS (c32ab8fa018ef34c0f113bd501436d21) C:\Windows\System32\sens.dll
    03:00:33.0520 4608 SENS - ok
    03:00:33.0520 4608 SensrSvc (0336cffafaab87a11541f1cf1594b2b2) C:\Windows\system32\sensrsvc.dll
    03:00:33.0520 4608 SensrSvc - ok
    03:00:33.0535 4608 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys
    03:00:33.0535 4608 Serenum - ok
    03:00:33.0535 4608 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys
    03:00:33.0535 4608 Serial - ok
    03:00:33.0551 4608 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys
    03:00:33.0551 4608 sermouse - ok
    03:00:33.0567 4608 SessionEnv (0b6231bf38174a1628c4ac812cc75804) C:\Windows\system32\sessenv.dll
    03:00:33.0567 4608 SessionEnv - ok
    03:00:33.0567 4608 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
    03:00:33.0567 4608 sffdisk - ok
    03:00:33.0582 4608 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
    03:00:33.0582 4608 sffp_mmc - ok
    03:00:33.0582 4608 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys
    03:00:33.0582 4608 sffp_sd - ok
    03:00:33.0598 4608 sfloppy (a9d601643a1647211a1ee2ec4e433ff4)
     
  6. Nate41785

    Nate41785 TS Rookie Topic Starter

    03:00:33.0598 4608 sfloppy - ok
    03:00:33.0598 4608 SharedAccess (b95f6501a2f8b2e78c697fec401970ce) C:\Windows\System32\ipnathlp.dll
    03:00:33.0598 4608 SharedAccess - ok
    03:00:33.0613 4608 ShellHWDetection (aaf932b4011d14052955d4b212a4da8d) C:\Windows\System32\shsvcs.dll
    03:00:33.0613 4608 ShellHWDetection - ok
    03:00:33.0629 4608 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys
    03:00:33.0629 4608 SiSRaid2 - ok
    03:00:33.0629 4608 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys
    03:00:33.0629 4608 SiSRaid4 - ok
    03:00:33.0645 4608 SkypeUpdate (6128e98eaaed364ed1a32708d2fd22cb) C:\Program Files (x86)\Skype\Updater\Updater.exe
    03:00:33.0645 4608 SkypeUpdate - ok
    03:00:33.0645 4608 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
    03:00:33.0645 4608 Smb - ok
    03:00:33.0660 4608 SNMPTRAP (6313f223e817cc09aa41811daa7f541d) C:\Windows\System32\snmptrap.exe
    03:00:33.0660 4608 SNMPTRAP - ok
    03:00:33.0676 4608 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
    03:00:33.0676 4608 spldr - ok
    03:00:33.0676 4608 Spooler (b96c17b5dc1424d56eea3a99e97428cd) C:\Windows\System32\spoolsv.exe
    03:00:33.0691 4608 Spooler - ok
    03:00:33.0723 4608 sppsvc (e17e0188bb90fae42d83e98707efa59c) C:\Windows\system32\sppsvc.exe
    03:00:33.0738 4608 sppsvc - ok
    03:00:33.0754 4608 sppuinotify (93d7d61317f3d4bc4f4e9f8a96a7de45) C:\Windows\system32\sppuinotify.dll
    03:00:33.0754 4608 sppuinotify - ok
    03:00:33.0769 4608 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys
    03:00:33.0769 4608 srv - ok
    03:00:33.0769 4608 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys
    03:00:33.0785 4608 srv2 - ok
    03:00:33.0785 4608 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys
    03:00:33.0785 4608 srvnet - ok
    03:00:33.0801 4608 SSDPSRV (51b52fbd583cde8aa9ba62b8b4298f33) C:\Windows\System32\ssdpsrv.dll
    03:00:33.0801 4608 SSDPSRV - ok
    03:00:33.0801 4608 SstpSvc (ab7aebf58dad8daab7a6c45e6a8885cb) C:\Windows\system32\sstpsvc.dll
    03:00:33.0801 4608 SstpSvc - ok
    03:00:33.0816 4608 Stereo Service (2a3a44dfa9bb1ba65057a99966edfe56) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
    03:00:33.0816 4608 Stereo Service - ok
    03:00:33.0832 4608 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys
    03:00:33.0832 4608 stexstor - ok
    03:00:33.0832 4608 stisvc (8dd52e8e6128f4b2da92ce27402871c1) C:\Windows\System32\wiaservc.dll
    03:00:33.0847 4608 stisvc - ok
    03:00:33.0847 4608 storflt (7785dc213270d2fc066538daf94087e7) C:\Windows\system32\drivers\vmstorfl.sys
    03:00:33.0847 4608 storflt - ok
    03:00:33.0863 4608 storvsc (d34e4943d5ac096c8edeebfd80d76e23) C:\Windows\system32\drivers\storvsc.sys
    03:00:33.0863 4608 storvsc - ok
    03:00:33.0863 4608 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys
    03:00:33.0863 4608 swenum - ok
    03:00:33.0879 4608 swprv (e08e46fdd841b7184194011ca1955a0b) C:\Windows\System32\swprv.dll
    03:00:33.0879 4608 swprv - ok
    03:00:33.0894 4608 Synth3dVsc - ok
    03:00:33.0910 4608 SynTP (bc642d540aedf9a253c74d10c848ebd2) C:\Windows\system32\DRIVERS\SynTP.sys
    03:00:33.0910 4608 SynTP - ok
    03:00:33.0941 4608 SysMain (bf9ccc0bf39b418c8d0ae8b05cf95b7d) C:\Windows\system32\sysmain.dll
    03:00:33.0941 4608 SysMain - ok
    03:00:33.0957 4608 TabletInputService (e3c61fd7b7c2557e1f1b0b4cec713585) C:\Windows\System32\TabSvc.dll
    03:00:33.0957 4608 TabletInputService - ok
    03:00:33.0972 4608 TapiSrv (40f0849f65d13ee87b9a9ae3c1dd6823) C:\Windows\System32\tapisrv.dll
    03:00:33.0972 4608 TapiSrv - ok
    03:00:33.0972 4608 TBS (1be03ac720f4d302ea01d40f588162f6) C:\Windows\System32\tbssvc.dll
    03:00:33.0988 4608 TBS - ok
    03:00:34.0003 4608 Tcpip (fc62769e7bff2896035aeed399108162) C:\Windows\system32\drivers\tcpip.sys
    03:00:34.0019 4608 Tcpip - ok
    03:00:34.0035 4608 TCPIP6 (fc62769e7bff2896035aeed399108162) C:\Windows\system32\DRIVERS\tcpip.sys
    03:00:34.0050 4608 TCPIP6 - ok
    03:00:34.0066 4608 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys
    03:00:34.0066 4608 tcpipreg - ok
    03:00:34.0066 4608 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
    03:00:34.0066 4608 TDPIPE - ok
    03:00:34.0081 4608 TDTCP (51c5eceb1cdee2468a1748be550cfbc8) C:\Windows\system32\drivers\tdtcp.sys
    03:00:34.0081 4608 TDTCP - ok
    03:00:34.0081 4608 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys
    03:00:34.0081 4608 tdx - ok
    03:00:34.0097 4608 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys
    03:00:34.0097 4608 TermDD - ok
    03:00:34.0113 4608 TermService (2e648163254233755035b46dd7b89123) C:\Windows\System32\termsrv.dll
    03:00:34.0113 4608 TermService - ok
    03:00:34.0113 4608 Themes (f0344071948d1a1fa732231785a0664c) C:\Windows\system32\themeservice.dll
    03:00:34.0113 4608 Themes - ok
    03:00:34.0128 4608 THREADORDER (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
    03:00:34.0128 4608 THREADORDER - ok
    03:00:34.0128 4608 TrkWks (7e7afd841694f6ac397e99d75cead49d) C:\Windows\System32\trkwks.dll
    03:00:34.0144 4608 TrkWks - ok
    03:00:34.0144 4608 TrustedInstaller (773212b2aaa24c1e31f10246b15b276c) C:\Windows\servicing\TrustedInstaller.exe
    03:00:34.0144 4608 TrustedInstaller - ok
    03:00:34.0159 4608 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys
    03:00:34.0159 4608 tssecsrv - ok
    03:00:34.0159 4608 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
    03:00:34.0159 4608 TsUsbFlt - ok
    03:00:34.0159 4608 tsusbhub - ok
    03:00:34.0175 4608 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys
    03:00:34.0175 4608 tunnel - ok
    03:00:34.0191 4608 TurboB (b355581a9da34c92e2dbafa410d2f829) C:\Windows\system32\DRIVERS\TurboB.sys
    03:00:34.0191 4608 TurboB - ok
    03:00:34.0191 4608 TurboBoost (6564e84b1522c12ea1c3a181ed03276f) C:\Program Files\Intel\TurboBoost\TurboBoost.exe
    03:00:34.0191 4608 TurboBoost - ok
    03:00:34.0206 4608 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys
    03:00:34.0206 4608 uagp35 - ok
    03:00:34.0206 4608 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys
    03:00:34.0206 4608 udfs - ok
    03:00:34.0222 4608 UI0Detect (3cbdec8d06b9968aba702eba076364a1) C:\Windows\system32\UI0Detect.exe
    03:00:34.0222 4608 UI0Detect - ok
    03:00:34.0222 4608 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
    03:00:34.0237 4608 uliagpkx - ok
    03:00:34.0237 4608 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\drivers\umbus.sys
    03:00:34.0237 4608 umbus - ok
    03:00:34.0253 4608 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys
    03:00:34.0253 4608 UmPass - ok
    03:00:34.0253 4608 UmRdpService (a293dcd756d04d8492a750d03b9a297c) C:\Windows\System32\umrdp.dll
    03:00:34.0253 4608 UmRdpService - ok
    03:00:34.0284 4608 UNS (eb79c6c91a99930015ef29ae7fa802d1) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
    03:00:34.0300 4608 UNS - ok
    03:00:34.0315 4608 upnphost (d47ec6a8e81633dd18d2436b19baf6de) C:\Windows\System32\upnphost.dll
    03:00:34.0315 4608 upnphost - ok
    03:00:34.0331 4608 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys
    03:00:34.0331 4608 usbccgp - ok
    03:00:34.0331 4608 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
    03:00:34.0331 4608 usbcir - ok
    03:00:34.0347 4608 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\drivers\usbehci.sys
    03:00:34.0347 4608 usbehci - ok
    03:00:34.0347 4608 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys
    03:00:34.0347 4608 usbhub - ok
    03:00:34.0362 4608 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys
    03:00:34.0362 4608 usbohci - ok
    03:00:34.0362 4608 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys
    03:00:34.0362 4608 usbprint - ok
    03:00:34.0378 4608 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\drivers\USBSTOR.SYS
    03:00:34.0378 4608 USBSTOR - ok
    03:00:34.0378 4608 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\drivers\usbuhci.sys
    03:00:34.0378 4608 usbuhci - ok
    03:00:34.0393 4608 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\System32\Drivers\usbvideo.sys
    03:00:34.0393 4608 usbvideo - ok
    03:00:34.0409 4608 UxSms (edbb23cbcf2cdf727d64ff9b51a6070e) C:\Windows\System32\uxsms.dll
    03:00:34.0409 4608 UxSms - ok
    03:00:34.0409 4608 VaultSvc (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
    03:00:34.0409 4608 VaultSvc - ok
    03:00:34.0425 4608 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
    03:00:34.0425 4608 vdrvroot - ok
    03:00:34.0425 4608 vds (8d6b481601d01a456e75c3210f1830be) C:\Windows\System32\vds.exe
    03:00:34.0440 4608 vds - ok
    03:00:34.0440 4608 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
    03:00:34.0440 4608 vga - ok
    03:00:34.0456 4608 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
    03:00:34.0456 4608 VgaSave - ok
    03:00:34.0456 4608 VGPU - ok
    03:00:34.0471 4608 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys
    03:00:34.0471 4608 vhdmp - ok
    03:00:34.0471 4608 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
    03:00:34.0471 4608 viaide - ok
    03:00:34.0487 4608 vmbus (86ea3e79ae350fea5331a1303054005f) C:\Windows\system32\drivers\vmbus.sys
    03:00:34.0487 4608 vmbus - ok
    03:00:34.0487 4608 VMBusHID (7de90b48f210d29649380545db45a187) C:\Windows\system32\drivers\VMBusHID.sys
    03:00:34.0487 4608 VMBusHID - ok
    03:00:34.0503 4608 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys
    03:00:34.0503 4608 volmgr - ok
    03:00:34.0518 4608 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys
    03:00:34.0518 4608 volmgrx - ok
    03:00:34.0518 4608 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys
    03:00:34.0534 4608 volsnap - ok
    03:00:34.0534 4608 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys
    03:00:34.0534 4608 vsmraid - ok
    03:00:34.0549 4608 VSS (b60ba0bc31b0cb414593e169f6f21cc2) C:\Windows\system32\vssvc.exe
    03:00:34.0565 4608 VSS - ok
    03:00:34.0581 4608 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\system32\DRIVERS\vwifibus.sys
    03:00:34.0581 4608 vwifibus - ok
    03:00:34.0581 4608 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys
    03:00:34.0581 4608 vwififlt - ok
    03:00:34.0596 4608 W32Time (1c9d80cc3849b3788048078c26486e1a) C:\Windows\system32\w32time.dll
    03:00:34.0596 4608 W32Time - ok
    03:00:34.0612 4608 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys
    03:00:34.0612 4608 WacomPen - ok
    03:00:34.0612 4608 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
    03:00:34.0612 4608 WANARP - ok
    03:00:34.0612 4608 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
    03:00:34.0612 4608 Wanarpv6 - ok
    03:00:34.0643 4608 WatAdminSvc (3cec96de223e49eaae3651fcf8faea6c) C:\Windows\system32\Wat\WatAdminSvc.exe
    03:00:34.0643 4608 WatAdminSvc - ok
    03:00:34.0659 4608 wbengine (78f4e7f5c56cb9716238eb57da4b6a75) C:\Windows\system32\wbengine.exe
    03:00:34.0674 4608 wbengine - ok
    03:00:34.0690 4608 WbioSrvc (3aa101e8edab2db4131333f4325c76a3) C:\Windows\System32\wbiosrvc.dll
    03:00:34.0690 4608 WbioSrvc - ok
    03:00:34.0690 4608 wcncsvc (7368a2afd46e5a4481d1de9d14848edd) C:\Windows\System32\wcncsvc.dll
    03:00:34.0705 4608 wcncsvc - ok
    03:00:34.0705 4608 WcsPlugInService (20f7441334b18cee52027661df4a6129) C:\Windows\System32\WcsPlugInService.dll
    03:00:34.0705 4608 WcsPlugInService - ok
    03:00:34.0721 4608 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys
    03:00:34.0721 4608 Wd - ok
    03:00:34.0721 4608 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
    03:00:34.0737 4608 Wdf01000 - ok
    03:00:34.0737 4608 WdiServiceHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
    03:00:34.0737 4608 WdiServiceHost - ok
    03:00:34.0737 4608 WdiSystemHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
    03:00:34.0752 4608 WdiSystemHost - ok
    03:00:34.0752 4608 WebClient (3db6d04e1c64272f8b14eb8bc4616280) C:\Windows\System32\webclnt.dll
    03:00:34.0752 4608 WebClient - ok
    03:00:34.0768 4608 Wecsvc (c749025a679c5103e575e3b48e092c43) C:\Windows\system32\wecsvc.dll
    03:00:34.0768 4608 Wecsvc - ok
    03:00:34.0768 4608 wercplsupport (7e591867422dc788b9e5bd337a669a08) C:\Windows\System32\wercplsupport.dll
    03:00:34.0768 4608 wercplsupport - ok
    03:00:34.0783 4608 WerSvc (6d137963730144698cbd10f202e9f251) C:\Windows\System32\WerSvc.dll
    03:00:34.0783 4608 WerSvc - ok
    03:00:34.0799 4608 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
    03:00:34.0799 4608 WfpLwf - ok
    03:00:34.0799 4608 WimFltr (52ded146e4797e6ccf94799e8e22bb2a) C:\Windows\system32\DRIVERS\wimfltr.sys
    03:00:34.0799 4608 WimFltr - ok
    03:00:34.0815 4608 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
    03:00:34.0815 4608 WIMMount - ok
    03:00:34.0815 4608 WinDefend - ok
    03:00:34.0815 4608 WinHttpAutoProxySvc - ok
    03:00:34.0830 4608 Winmgmt (19b07e7e8915d701225da41cb3877306) C:\Windows\system32\wbem\WMIsvc.dll
    03:00:34.0830 4608 Winmgmt - ok
    03:00:34.0846 4608 WinRM (bcb1310604aa415c4508708975b3931e) C:\Windows\system32\WsmSvc.dll
    03:00:34.0861 4608 WinRM - ok
    03:00:34.0893 4608 Wlansvc (4fada86e62f18a1b2f42ba18ae24e6aa) C:\Windows\System32\wlansvc.dll
    03:00:34.0893 4608 Wlansvc - ok
    03:00:34.0893 4608 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys
    03:00:34.0908 4608 WmiAcpi - ok
    03:00:34.0908 4608 wmiApSrv (38b84c94c5a8af291adfea478ae54f93) C:\Windows\system32\wbem\WmiApSrv.exe
    03:00:34.0908 4608 wmiApSrv - ok
    03:00:34.0908 4608 WMPNetworkSvc - ok
    03:00:34.0924 4608 WPCSvc (96c6e7100d724c69fcf9e7bf590d1dca) C:\Windows\System32\wpcsvc.dll
    03:00:34.0924 4608 WPCSvc - ok
    03:00:34.0939 4608 WPDBusEnum (93221146d4ebbf314c29b23cd6cc391d) C:\Windows\system32\wpdbusenum.dll
    03:00:34.0939 4608 WPDBusEnum - ok
    03:00:34.0939 4608 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
    03:00:34.0939 4608 ws2ifsl - ok
    03:00:34.0955 4608 wscsvc (e8b1fe6669397d1772d8196df0e57a9e) C:\Windows\System32\wscsvc.dll
    03:00:34.0955 4608 wscsvc - ok
    03:00:34.0955 4608 WSearch - ok
    03:00:34.0986 4608 wuauserv (9df12edbc698b0bc353b3ef84861e430) C:\Windows\system32\wuaueng.dll
    03:00:35.0002 4608 wuauserv - ok
    03:00:35.0017 4608 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys
    03:00:35.0017 4608 WudfPf - ok
    03:00:35.0017 4608 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys
    03:00:35.0017 4608 WUDFRd - ok
    03:00:35.0033 4608 wudfsvc (7a95c95b6c4cf292d689106bcae49543) C:\Windows\System32\WUDFSvc.dll
    03:00:35.0033 4608 wudfsvc - ok
    03:00:35.0049 4608 WwanSvc (9a3452b3c2a46c073166c5cf49fad1ae) C:\Windows\System32\wwansvc.dll
    03:00:35.0049 4608 WwanSvc - ok
    03:00:35.0049 4608 xusb21 (2c6bc21b2d5b58d8b1d638c1704cb494) C:\Windows\system32\DRIVERS\xusb21.sys
    03:00:35.0049 4608 xusb21 - ok
    03:00:35.0064 4608 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
    03:00:35.0064 4608 \Device\Harddisk0\DR0 - ok
    03:00:35.0064 4608 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk1\DR1
    03:00:35.0064 4608 \Device\Harddisk1\DR1 - ok
    03:00:35.0080 4608 MBR (0x1B8) (5fb38429d5d77768867c76dcbdb35194) \Device\Harddisk2\DR3
    03:00:35.0080 4608 \Device\Harddisk2\DR3 - ok
    03:00:35.0080 4608 Boot (0x1200) (c12b7e47b6ce85a9ce67eab408ce3dad) \Device\Harddisk0\DR0\Partition0
    03:00:35.0080 4608 \Device\Harddisk0\DR0\Partition0 - ok
    03:00:35.0080 4608 Boot (0x1200) (74e06f183f644610e205472578ae54d9) \Device\Harddisk0\DR0\Partition1
    03:00:35.0080 4608 \Device\Harddisk0\DR0\Partition1 - ok
    03:00:35.0080 4608 Boot (0x1200) (8b52c527dada81761a4bc91a2ed059bb) \Device\Harddisk1\DR1\Partition0
    03:00:35.0080 4608 \Device\Harddisk1\DR1\Partition0 - ok
    03:00:35.0080 4608 Boot (0x1200) (36e53258c212d5b19372dc3e61e9984b) \Device\Harddisk1\DR1\Partition1
    03:00:35.0080 4608 \Device\Harddisk1\DR1\Partition1 - ok
    03:00:35.0080 4608 Boot (0x1200) (b7bb935d9780179fbb910697132cdcc8) \Device\Harddisk2\DR3\Partition0
    03:00:35.0095 4608 \Device\Harddisk2\DR3\Partition0 - ok
    03:00:35.0095 4608 ============================================================
    03:00:35.0095 4608 Scan finished
    03:00:35.0095 4608 ============================================================
    03:00:35.0095 5332 Detected object count: 0
    03:00:35.0095 5332 Actual detected object count: 0
    03:00:49.0385 4676 ============================================================
    03:00:49.0385 4676 Scan started
    03:00:49.0385 4676 Mode: Manual;
    03:00:49.0385 4676 ============================================================
    03:00:49.0666 4676 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
    03:00:49.0666 4676 1394ohci - ok
    03:00:49.0666 4676 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
    03:00:49.0666 4676 ACPI - ok
    03:00:49.0681 4676 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
    03:00:49.0681 4676 AcpiPmi - ok
    03:00:49.0681 4676 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys
    03:00:49.0697 4676 adp94xx - ok
    03:00:49.0697 4676 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys
    03:00:49.0697 4676 adpahci - ok
    03:00:49.0713 4676 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys
    03:00:49.0713 4676 adpu320 - ok
    03:00:49.0713 4676 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\Windows\System32\aelupsvc.dll
    03:00:49.0713 4676 AeLookupSvc - ok
    03:00:49.0728 4676 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys
    03:00:49.0728 4676 AFD - ok
    03:00:49.0744 4676 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
    03:00:49.0744 4676 agp440 - ok
    03:00:49.0744 4676 ALG (3290d6946b5e30e70414990574883ddb) C:\Windows\System32\alg.exe
    03:00:49.0744 4676 ALG - ok
    03:00:49.0744 4676 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
    03:00:49.0744 4676 aliide - ok
    03:00:49.0759 4676 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
    03:00:49.0759 4676 amdide - ok
    03:00:49.0759 4676 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys
    03:00:49.0759 4676 AmdK8 - ok
    03:00:49.0775 4676 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
    03:00:49.0775 4676 AmdPPM - ok
    03:00:49.0775 4676 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys
    03:00:49.0775 4676 amdsata - ok
    03:00:49.0791 4676 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys
    03:00:49.0791 4676 amdsbs - ok
    03:00:49.0791 4676 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys
    03:00:49.0791 4676 amdxata - ok
    03:00:49.0806 4676 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
    03:00:49.0806 4676 AppID - ok
    03:00:49.0806 4676 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\Windows\System32\appidsvc.dll
    03:00:49.0806 4676 AppIDSvc - ok
    03:00:49.0806 4676 Appinfo (3977d4a871ca0d4f2ed1e7db46829731) C:\Windows\System32\appinfo.dll
    03:00:49.0822 4676 Appinfo - ok
    03:00:49.0822 4676 AppMgmt (4aba3e75a76195a3e38ed2766c962899) C:\Windows\System32\appmgmts.dll
    03:00:49.0822 4676 AppMgmt - ok
    03:00:49.0822 4676 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys
    03:00:49.0837 4676 arc - ok
    03:00:49.0837 4676 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys
    03:00:49.0837 4676 arcsas - ok
    03:00:49.0837 4676 ASLDRService (18e5c2f937f9deb8c282df66a3761925) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
    03:00:49.0837 4676 ASLDRService - ok
    03:00:49.0853 4676 ASMMAP64 (4c016fd76ed5c05e84ca8cab77993961) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys
    03:00:49.0853 4676 ASMMAP64 - ok
    03:00:49.0853 4676 aspnet_state (9217d874131ae6ff8f642f124f00a555) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
    03:00:49.0853 4676 aspnet_state - ok
    03:00:49.0853 4676 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
    03:00:49.0853 4676 AsyncMac - ok
    03:00:49.0869 4676 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
    03:00:49.0869 4676 atapi - ok
    03:00:49.0884 4676 athr (f8633cdd09647a64ee8db550630427ff) C:\Windows\system32\DRIVERS\athrx.sys
    03:00:49.0900 4676 athr - ok
    03:00:49.0900 4676 ATKGFNEXSrv (7910158929571214a959d5a6d16dd9c0) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
    03:00:49.0900 4676 ATKGFNEXSrv - ok
    03:00:49.0900 4676 ATKWMIACPIIO (1f7238a37389ed92e9d8eee975cabd54) C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys
    03:00:49.0900 4676 ATKWMIACPIIO - ok
    03:00:49.0915 4676 AudioEndpointBuilder (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
    03:00:49.0915 4676 AudioEndpointBuilder - ok
    03:00:49.0931 4676 AudioSrv (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
    03:00:49.0931 4676 AudioSrv - ok
    03:00:49.0931 4676 Avgfwfd (96b4456f1dca4eda506ed31c7d2d6b05) C:\Windows\system32\DRIVERS\avgfwd6a.sys
    03:00:49.0931 4676 Avgfwfd - ok
    03:00:49.0962 4676 avgfws (5cd22eb540f82c70e33e530003f3903b) C:\Program Files (x86)\AVG\AVG2012\avgfws.exe
    03:00:49.0978 4676 avgfws - ok
    03:00:50.0009 4676 AVGIDSAgent (6d440ff3f44ca72edfd6176c6d6a89c0) C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe
    03:00:50.0025 4676 AVGIDSAgent - ok
    03:00:50.0040 4676 AVGIDSDriver (e29ea1a0ec7ab9fa2dc7e75a03f12a4f) C:\Windows\system32\DRIVERS\AVGIDSDriver.Sys
    03:00:50.0040 4676 AVGIDSDriver - ok
    03:00:50.0040 4676 AVGIDSEH (f823d184b8e8ffb8da3ead45dbf5bd6a) C:\Windows\system32\DRIVERS\AVGIDSEH.Sys
    03:00:50.0040 4676 AVGIDSEH - ok
    03:00:50.0056 4676 AVGIDSFilter (ed2b25bd7fe35d1944211968842d30da) C:\Windows\system32\DRIVERS\AVGIDSFilter.Sys
    03:00:50.0056 4676 AVGIDSFilter - ok
    03:00:50.0056 4676 Avgldx64 (979cf8912449a10b987218bff80a1fa3) C:\Windows\system32\DRIVERS\avgldx64.sys
    03:00:50.0056 4676 Avgldx64 - ok
    03:00:50.0071 4676 Avgmfx64 (36b1a5843695766eac714daffc5b84d1) C:\Windows\system32\DRIVERS\avgmfx64.sys
    03:00:50.0071 4676 Avgmfx64 - ok
    03:00:50.0071 4676 Avgrkx64 (1102239fb724527f1febbbbccf6bf313) C:\Windows\system32\DRIVERS\avgrkx64.sys
    03:00:50.0071 4676 Avgrkx64 - ok
    03:00:50.0087 4676 Avgtdia (11f36d3ea82d9db9aa05a476a210551b) C:\Windows\system32\DRIVERS\avgtdia.sys
    03:00:50.0087 4676 Avgtdia - ok
    03:00:50.0087 4676 avgwd (6699ece24fe4b3f752a66c66a602ee86) C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe
    03:00:50.0087 4676 avgwd - ok
    03:00:50.0103 4676 AxInstSV (a6bf31a71b409dfa8cac83159e1e2aff) C:\Windows\System32\AxInstSV.dll
    03:00:50.0103 4676 AxInstSV - ok
    03:00:50.0103 4676 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys
    03:00:50.0118 4676 b06bdrv - ok
    03:00:50.0118 4676 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
    03:00:50.0118 4676 b57nd60a - ok
    03:00:50.0134 4676 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\Windows\System32\bdesvc.dll
    03:00:50.0134 4676 BDESVC - ok
    03:00:50.0134 4676 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
    03:00:50.0134 4676 Beep - ok
    03:00:50.0149 4676 BFE (82974d6a2fd19445cc5171fc378668a4) C:\Windows\System32\bfe.dll
    03:00:50.0149 4676 BFE - ok
    03:00:50.0165 4676 BITS (1ea7969e3271cbc59e1730697dc74682) C:\Windows\System32\qmgr.dll
    03:00:50.0165 4676 BITS - ok
    03:00:50.0181 4676 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
    03:00:50.0181 4676 blbdrive - ok
    03:00:50.0181 4676 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
    03:00:50.0181 4676 bowser - ok
    03:00:50.0196 4676 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys
    03:00:50.0196 4676 BrFiltLo - ok
    03:00:50.0196 4676 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys
    03:00:50.0196 4676 BrFiltUp - ok
    03:00:50.0212 4676 Browser (8ef0d5c41ec907751b8429162b1239ed) C:\Windows\System32\browser.dll
    03:00:50.0212 4676 Browser - ok
    03:00:50.0212 4676 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
    03:00:50.0212 4676 Brserid - ok
    03:00:50.0227 4676 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
    03:00:50.0227 4676 BrSerWdm - ok
    03:00:50.0227 4676 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
    03:00:50.0227 4676 BrUsbMdm - ok
    03:00:50.0243 4676 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
    03:00:50.0243 4676 BrUsbSer - ok
    03:00:50.0243 4676 BthEnum (cf98190a94f62e405c8cb255018b2315) C:\Windows\system32\drivers\BthEnum.sys
    03:00:50.0243 4676 BthEnum - ok
    03:00:50.0259 4676 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
    03:00:50.0259 4676 BTHMODEM - ok
    03:00:50.0259 4676 BthPan (02dd601b708dd0667e1331fa8518e9ff) C:\Windows\system32\DRIVERS\bthpan.sys
    03:00:50.0259 4676 BthPan - ok
    03:00:50.0274 4676 BTHPORT (64c198198501f7560ee41d8d1efa7952) C:\Windows\System32\Drivers\BTHport.sys
    03:00:50.0274 4676 BTHPORT - ok
    03:00:50.0274 4676 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\Windows\system32\bthserv.dll
    03:00:50.0274 4676 bthserv - ok
    03:00:50.0290 4676 BTHUSB (f188b7394d81010767b6df3178519a37) C:\Windows\System32\Drivers\BTHUSB.sys
    03:00:50.0290 4676 BTHUSB - ok
    03:00:50.0290 4676 btusbflt (d3466f77c2c49c6e393ba5fba963a33e) C:\Windows\system32\drivers\btusbflt.sys
    03:00:50.0290 4676 btusbflt - ok
    03:00:50.0305 4676 btwaudio (a72a9101f9730db7332714e566614e4d) C:\Windows\system32\drivers\btwaudio.sys
    03:00:50.0305 4676 btwaudio - ok
    03:00:50.0305 4676 btwavdt (5ceec634b617525f2b6ad29f871033f7) C:\Windows\system32\DRIVERS\btwavdt.sys
    03:00:50.0305 4676 btwavdt - ok
    03:00:50.0321 4676 btwdins (4e63c48e7328a11ed0e9075c18fce782) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
    03:00:50.0321 4676 btwdins - ok
    03:00:50.0337 4676 btwl2cap (6149301dc3f81d6f9667a3fbac410975) C:\Windows\system32\DRIVERS\btwl2cap.sys
    03:00:50.0337 4676 btwl2cap - ok
    03:00:50.0337 4676 btwrchid (2af5604d28bef77b7cf4b9d232fe7cd3) C:\Windows\system32\DRIVERS\btwrchid.sys
    03:00:50.0337 4676 btwrchid - ok
    03:00:50.0352 4676 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
    03:00:50.0352 4676 cdfs - ok
    03:00:50.0352 4676 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\DRIVERS\cdrom.sys
    03:00:50.0352 4676 cdrom - ok
    03:00:50.0368 4676 CertPropSvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
    03:00:50.0368 4676 CertPropSvc - ok
    03:00:50.0368 4676 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
    03:00:50.0368 4676 circlass - ok
    03:00:50.0383 4676 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
    03:00:50.0383 4676 CLFS - ok
    03:00:50.0383 4676 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
    03:00:50.0383 4676 clr_optimization_v2.0.50727_32 - ok
    03:00:50.0383 4676 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
    03:00:50.0399 4676 clr_optimization_v2.0.50727_64 - ok
    03:00:50.0399 4676 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
    03:00:50.0399 4676 clr_optimization_v4.0.30319_32 - ok
    03:00:50.0399 4676 clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
    03:00:50.0399 4676 clr_optimization_v4.0.30319_64 - ok
    03:00:50.0415 4676 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
    03:00:50.0415 4676 CmBatt - ok
    03:00:50.0415 4676 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
    03:00:50.0415 4676 cmdide - ok
    03:00:50.0430 4676 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys
    03:00:50.0430 4676 CNG - ok
    03:00:50.0430 4676 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
    03:00:50.0430 4676 Compbatt - ok
    03:00:50.0446 4676 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys
    03:00:50.0446 4676 CompositeBus - ok
    03:00:50.0446 4676 COMSysApp - ok
    03:00:50.0461 4676 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys
    03:00:50.0461 4676 crcdisk - ok
    03:00:50.0461 4676 Creative ALchemy AL6 Licensing Service (c8bd651e13895b93ed9ec5b4f1df42bc) C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe
    03:00:50.0461 4676 Creative ALchemy AL6 Licensing Service - ok
    03:00:50.0461 4676 Creative Audio Engine Licensing Service (c0ead9f8ab83d41ff07303c75589c2b8) C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
    03:00:50.0461 4676 Creative Audio Engine Licensing Service - ok
    03:00:50.0477 4676 CryptSvc (15597883fbe9b056f276ada3ad87d9af) C:\Windows\system32\cryptsvc.dll
    03:00:50.0477 4676 CryptSvc - ok
    03:00:50.0493 4676 CSC (54da3dfd29ed9f1619b6f53f3ce55e49) C:\Windows\system32\drivers\csc.sys
    03:00:50.0493 4676 CSC - ok
    03:00:50.0493 4676 CscService (3ab183ab4d2c79dcf459cd2c1266b043) C:\Windows\System32\cscsvc.dll
    03:00:50.0508 4676 CscService - ok
    03:00:50.0508 4676 DcomLaunch (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
    03:00:50.0524 4676 DcomLaunch - ok
    03:00:50.0524 4676 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\Windows\System32\defragsvc.dll
    03:00:50.0524 4676 defragsvc - ok
    03:00:50.0539 4676 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
    03:00:50.0539 4676 DfsC - ok
    03:00:50.0539 4676 Dhcp (43d808f5d9e1a18e5eeb5ebc83969e4e) C:\Windows\system32\dhcpcore.dll
    03:00:50.0539 4676 Dhcp - ok
    03:00:50.0555 4676 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
    03:00:50.0555 4676 discache - ok
    03:00:50.0555 4676 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys
    03:00:50.0555 4676 Disk - ok
    03:00:50.0571 4676 Dnscache (16835866aaa693c7d7fceba8fff706e4) C:\Windows\System32\dnsrslvr.dll
    03:00:50.0571 4676 Dnscache - ok
    03:00:50.0571 4676 dot3svc (b1fb3ddca0fdf408750d5843591afbc6) C:\Windows\System32\dot3svc.dll
    03:00:50.0571 4676 dot3svc - ok
    03:00:50.0586 4676 DPS (b26f4f737e8f9df4f31af6cf31d05820) C:\Windows\system32\dps.dll
    03:00:50.0586 4676 DPS - ok
    03:00:50.0586 4676 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
    03:00:50.0586 4676 drmkaud - ok
    03:00:50.0602 4676 dtsoftbus01 (d3d64cf7b2bceaa34a270f45a3fffb36) C:\Windows\system32\DRIVERS\dtsoftbus01.sys
    03:00:50.0602 4676 dtsoftbus01 - ok
    03:00:50.0617 4676 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
    03:00:50.0617 4676 DXGKrnl - ok
    03:00:50.0633 4676 EapHost (e2dda8726da9cb5b2c4000c9018a9633) C:\Windows\System32\eapsvc.dll
    03:00:50.0633 4676 EapHost - ok
    03:00:50.0664 4676 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys
    03:00:50.0680 4676 ebdrv - ok
    03:00:50.0680 4676 EFS (c118a82cd78818c29ab228366ebf81c3) C:\Windows\System32\lsass.exe
    03:00:50.0680 4676 EFS - ok
    03:00:50.0695 4676 ehRecvr (c4002b6b41975f057d98c439030cea07) C:\Windows\ehome\ehRecvr.exe
    03:00:50.0695 4676 ehRecvr - ok
    03:00:50.0695 4676 ehSched (4705e8ef9934482c5bb488ce28afc681) C:\Windows\ehome\ehsched.exe
    03:00:50.0695 4676 ehSched - ok
    03:00:50.0711 4676 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys
    03:00:50.0711 4676 elxstor - ok
    03:00:50.0727 4676 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
    03:00:50.0727 4676 ErrDev - ok
    03:00:50.0727 4676 EventSystem (4166f82be4d24938977dd1746be9b8a0) C:\Windows\system32\es.dll
    03:00:50.0742 4676 EventSystem - ok
    03:00:50.0742 4676 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
    03:00:50.0742 4676 exfat - ok
    03:00:50.0758 4676 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
    03:00:50.0758 4676 fastfat - ok
    03:00:50.0773 4676 Fax (dbefd454f8318a0ef691fdd2eaab44eb) C:\Windows\system32\fxssvc.exe
    03:00:50.0773 4676 Fax - ok
    03:00:50.0773 4676 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
    03:00:50.0773 4676 fdc - ok
    03:00:50.0789 4676 fdPHost (0438cab2e03f4fb61455a7956026fe86) C:\Windows\system32\fdPHost.dll
    03:00:50.0789 4676 fdPHost - ok
    03:00:50.0789 4676 FDResPub (802496cb59a30349f9a6dd22d6947644) C:\Windows\system32\fdrespub.dll
    03:00:50.0789 4676 FDResPub - ok
    03:00:50.0805 4676 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
    03:00:50.0805 4676 FileInfo - ok
    03:00:50.0805 4676 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
    03:00:50.0805 4676 Filetrace - ok
    03:00:50.0820 4676 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
    03:00:50.0820 4676 flpydisk - ok
    03:00:50.0820 4676 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
    03:00:50.0820 4676 FltMgr - ok
    03:00:50.0836 4676 FLxHCIc (1e7d0cbe3c0a4de771c9e7eab2a08dde) C:\Windows\system32\DRIVERS\FLxHCIc.sys
    03:00:50.0836 4676 FLxHCIc - ok
    03:00:50.0836 4676 FLxHCIh (75db3989c799b9721fa828da76621933) C:\Windows\system32\DRIVERS\FLxHCIh.sys
    03:00:50.0836 4676 FLxHCIh - ok
    03:00:50.0851 4676 FontCache (b4447f606bb19fd8ad0bafb59b90f5d9) C:\Windows\system32\FntCache.dll
    03:00:50.0867 4676 FontCache - ok
    03:00:50.0867 4676 FontCache3.0.0.0 (a8b7f3818ab65695e3a0bb3279f6dce6) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
    03:00:50.0867 4676 FontCache3.0.0.0 - ok
     
  7. Nate41785

    Nate41785 TS Rookie Topic Starter

    03:00:50.0867 4676 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
    03:00:50.0867 4676 FsDepends - ok
    03:00:50.0883 4676 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys
    03:00:50.0883 4676 Fs_Rec - ok
    03:00:50.0883 4676 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
    03:00:50.0883 4676 fvevol - ok
    03:00:50.0898 4676 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys
    03:00:50.0898 4676 gagp30kx - ok
    03:00:50.0914 4676 gpsvc (277bbc7e1aa1ee957f573a10eca7ef3a) C:\Windows\System32\gpsvc.dll
    03:00:50.0914 4676 gpsvc - ok
    03:00:50.0914 4676 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
    03:00:50.0914 4676 hcw85cir - ok
    03:00:50.0929 4676 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys
    03:00:50.0929 4676 HdAudAddService - ok
    03:00:50.0945 4676 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys
    03:00:50.0945 4676 HDAudBus - ok
    03:00:50.0945 4676 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys
    03:00:50.0945 4676 HidBatt - ok
    03:00:50.0945 4676 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys
    03:00:50.0961 4676 HidBth - ok
    03:00:50.0961 4676 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys
    03:00:50.0961 4676 HidIr - ok
    03:00:50.0961 4676 hidserv (bd9eb3958f213f96b97b1d897dee006d) C:\Windows\system32\hidserv.dll
    03:00:50.0961 4676 hidserv - ok
    03:00:50.0976 4676 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys
    03:00:50.0976 4676 HidUsb - ok
    03:00:50.0976 4676 hkmsvc (387e72e739e15e3d37907a86d9ff98e2) C:\Windows\system32\kmsvc.dll
    03:00:50.0976 4676 hkmsvc - ok
    03:00:50.0992 4676 HomeGroupListener (efdfb3dd38a4376f93e7985173813abd) C:\Windows\system32\ListSvc.dll
    03:00:50.0992 4676 HomeGroupListener - ok
    03:00:50.0992 4676 HomeGroupProvider (908acb1f594274965a53926b10c81e89) C:\Windows\system32\provsvc.dll
    03:00:51.0007 4676 HomeGroupProvider - ok
    03:00:51.0007 4676 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
    03:00:51.0007 4676 HpSAMD - ok
    03:00:51.0023 4676 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
    03:00:51.0023 4676 HTTP - ok
    03:00:51.0039 4676 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
    03:00:51.0039 4676 hwpolicy - ok
    03:00:51.0039 4676 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\drivers\i8042prt.sys
    03:00:51.0039 4676 i8042prt - ok
    03:00:51.0054 4676 iaStor (f7ce9be72edac499b713eca6dae5d26f) C:\Windows\system32\DRIVERS\iaStor.sys
    03:00:51.0054 4676 iaStor - ok
    03:00:51.0070 4676 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys
    03:00:51.0070 4676 iaStorV - ok
    03:00:51.0070 4676 idsvc (5988fc40f8db5b0739cd1e3a5d0d78bd) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
    03:00:51.0085 4676 idsvc - ok
    03:00:51.0085 4676 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys
    03:00:51.0085 4676 iirsp - ok
    03:00:51.0101 4676 IKEEXT (fcd84c381e0140af901e58d48882d26b) C:\Windows\System32\ikeext.dll
    03:00:51.0101 4676 IKEEXT - ok
    03:00:51.0132 4676 IntcAzAudAddService (bd9d02f706fcaf28d89f5435f18a4a04) C:\Windows\system32\drivers\RTKVHD64.sys
    03:00:51.0148 4676 IntcAzAudAddService - ok
    03:00:51.0148 4676 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
    03:00:51.0148 4676 intelide - ok
    03:00:51.0163 4676 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
    03:00:51.0163 4676 intelppm - ok
    03:00:51.0163 4676 IPBusEnum (098a91c54546a3b878dad6a7e90a455b) C:\Windows\system32\ipbusenum.dll
    03:00:51.0163 4676 IPBusEnum - ok
    03:00:51.0179 4676 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
    03:00:51.0179 4676 IpFilterDriver - ok
    03:00:51.0179 4676 iphlpsvc (a34a587fffd45fa649fba6d03784d257) C:\Windows\System32\iphlpsvc.dll
    03:00:51.0195 4676 iphlpsvc - ok
    03:00:51.0195 4676 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
    03:00:51.0195 4676 IPMIDRV - ok
    03:00:51.0210 4676 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
    03:00:51.0210 4676 IPNAT - ok
    03:00:51.0210 4676 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
    03:00:51.0210 4676 IRENUM - ok
    03:00:51.0210 4676 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
    03:00:51.0226 4676 isapnp - ok
    03:00:51.0226 4676 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
    03:00:51.0226 4676 iScsiPrt - ok
    03:00:51.0241 4676 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys
    03:00:51.0241 4676 kbdclass - ok
    03:00:51.0241 4676 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\DRIVERS\kbdhid.sys
    03:00:51.0241 4676 kbdhid - ok
    03:00:51.0257 4676 kbfiltr (e63ef8c3271d014f14e2469ce75fecb4) C:\Windows\system32\DRIVERS\kbfiltr.sys
    03:00:51.0257 4676 kbfiltr - ok
    03:00:51.0257 4676 KeyIso (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
    03:00:51.0257 4676 KeyIso - ok
    03:00:51.0273 4676 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys
    03:00:51.0273 4676 KSecDD - ok
    03:00:51.0273 4676 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys
    03:00:51.0273 4676 KSecPkg - ok
    03:00:51.0288 4676 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
    03:00:51.0288 4676 ksthunk - ok
    03:00:51.0288 4676 KtmRm (6ab66e16aa859232f64deb66887a8c9c) C:\Windows\system32\msdtckrm.dll
    03:00:51.0288 4676 KtmRm - ok
    03:00:51.0304 4676 LanmanServer (d9f42719019740baa6d1c6d536cbdaa6) C:\Windows\system32\srvsvc.dll
    03:00:51.0304 4676 LanmanServer - ok
    03:00:51.0304 4676 LanmanWorkstation (851a1382eed3e3a7476db004f4ee3e1a) C:\Windows\System32\wkssvc.dll
    03:00:51.0319 4676 LanmanWorkstation - ok
    03:00:51.0319 4676 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
    03:00:51.0319 4676 lltdio - ok
    03:00:51.0335 4676 lltdsvc (c1185803384ab3feed115f79f109427f) C:\Windows\System32\lltdsvc.dll
    03:00:51.0335 4676 lltdsvc - ok
    03:00:51.0335 4676 lmhosts (f993a32249b66c9d622ea5592a8b76b8) C:\Windows\System32\lmhsvc.dll
    03:00:51.0335 4676 lmhosts - ok
    03:00:51.0351 4676 LMS (0803906d607a9b83184447b75b60ecc2) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
    03:00:51.0351 4676 LMS - ok
    03:00:51.0351 4676 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys
    03:00:51.0351 4676 LSI_FC - ok
    03:00:51.0366 4676 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys
    03:00:51.0366 4676 LSI_SAS - ok
    03:00:51.0366 4676 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys
    03:00:51.0366 4676 LSI_SAS2 - ok
    03:00:51.0382 4676 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys
    03:00:51.0382 4676 LSI_SCSI - ok
    03:00:51.0382 4676 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
    03:00:51.0382 4676 luafv - ok
    03:00:51.0397 4676 MBAMProtector (79da94b35371b9e7104460c7693dcb2c) C:\Windows\system32\drivers\mbam.sys
    03:00:51.0397 4676 MBAMProtector - ok
    03:00:51.0413 4676 MBAMService (056b19651bd7b7ce5f89a3ac46dbdc08) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
    03:00:51.0413 4676 MBAMService - ok
    03:00:51.0413 4676 MBfilt (8ff2d95cba49b405c5de27039ff0bf35) C:\Windows\system32\drivers\MBfilt64.sys
    03:00:51.0413 4676 MBfilt - ok
    03:00:51.0429 4676 Mcx2Svc (0be09cd858abf9df6ed259d57a1a1663) C:\Windows\system32\Mcx2Svc.dll
    03:00:51.0429 4676 Mcx2Svc - ok
    03:00:51.0429 4676 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys
    03:00:51.0429 4676 megasas - ok
    03:00:51.0444 4676 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys
    03:00:51.0444 4676 MegaSR - ok
    03:00:51.0444 4676 MEIx64 (1c6e73fc46b509eff9d0086aa37132df) C:\Windows\system32\DRIVERS\HECIx64.sys
    03:00:51.0444 4676 MEIx64 - ok
    03:00:51.0460 4676 Microsoft SharePoint Workspace Audit Service - ok
    03:00:51.0460 4676 MMCSS (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
    03:00:51.0460 4676 MMCSS - ok
    03:00:51.0475 4676 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
    03:00:51.0475 4676 Modem - ok
    03:00:51.0475 4676 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
    03:00:51.0475 4676 monitor - ok
    03:00:51.0491 4676 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys
    03:00:51.0491 4676 mouclass - ok
    03:00:51.0491 4676 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
    03:00:51.0491 4676 mouhid - ok
    03:00:51.0507 4676 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys
    03:00:51.0507 4676 mountmgr - ok
    03:00:51.0507 4676 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys
    03:00:51.0507 4676 mpio - ok
    03:00:51.0522 4676 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
    03:00:51.0522 4676 mpsdrv - ok
    03:00:51.0522 4676 MpsSvc (54ffc9c8898113ace189d4aa7199d2c1) C:\Windows\system32\mpssvc.dll
    03:00:51.0538 4676 MpsSvc - ok
    03:00:51.0538 4676 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys
    03:00:51.0538 4676 MRxDAV - ok
    03:00:51.0553 4676 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys
    03:00:51.0553 4676 mrxsmb - ok
    03:00:51.0553 4676 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys
    03:00:51.0569 4676 mrxsmb10 - ok
    03:00:51.0569 4676 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
    03:00:51.0569 4676 mrxsmb20 - ok
    03:00:51.0585 4676 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys
    03:00:51.0585 4676 msahci - ok
    03:00:51.0585 4676 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys
    03:00:51.0585 4676 msdsm - ok
    03:00:51.0600 4676 MSDTC (de0ece52236cfa3ed2dbfc03f28253a8) C:\Windows\System32\msdtc.exe
    03:00:51.0600 4676 MSDTC - ok
    03:00:51.0600 4676 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
    03:00:51.0600 4676 Msfs - ok
    03:00:51.0616 4676 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
    03:00:51.0616 4676 mshidkmdf - ok
    03:00:51.0616 4676 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
    03:00:51.0616 4676 msisadrv - ok
    03:00:51.0631 4676 MSiSCSI (808e98ff49b155c522e6400953177b08) C:\Windows\system32\iscsiexe.dll
    03:00:51.0631 4676 MSiSCSI - ok
    03:00:51.0631 4676 msiserver - ok
    03:00:51.0647 4676 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
    03:00:51.0647 4676 MSKSSRV - ok
    03:00:51.0647 4676 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
    03:00:51.0647 4676 MSPCLOCK - ok
    03:00:51.0663 4676 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
    03:00:51.0663 4676 MSPQM - ok
    03:00:51.0663 4676 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys
    03:00:51.0663 4676 MsRPC - ok
    03:00:51.0678 4676 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys
    03:00:51.0678 4676 mssmbios - ok
    03:00:51.0678 4676 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
    03:00:51.0678 4676 MSTEE - ok
    03:00:51.0694 4676 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys
    03:00:51.0694 4676 MTConfig - ok
    03:00:51.0694 4676 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
    03:00:51.0694 4676 Mup - ok
    03:00:51.0709 4676 napagent (582ac6d9873e31dfa28a4547270862dd) C:\Windows\system32\qagentRT.dll
    03:00:51.0709 4676 napagent - ok
    03:00:51.0725 4676 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
    03:00:51.0725 4676 NativeWifiP - ok
    03:00:51.0741 4676 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys
    03:00:51.0741 4676 NDIS - ok
    03:00:51.0741 4676 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
    03:00:51.0741 4676 NdisCap - ok
    03:00:51.0756 4676 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
    03:00:51.0756 4676 NdisTapi - ok
    03:00:51.0756 4676 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys
    03:00:51.0756 4676 Ndisuio - ok
    03:00:51.0772 4676 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys
    03:00:51.0772 4676 NdisWan - ok
    03:00:51.0772 4676 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys
    03:00:51.0772 4676 NDProxy - ok
    03:00:51.0787 4676 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
    03:00:51.0787 4676 NetBIOS - ok
    03:00:51.0787 4676 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys
    03:00:51.0803 4676 NetBT - ok
    03:00:51.0803 4676 Netlogon (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
    03:00:51.0803 4676 Netlogon - ok
    03:00:51.0819 4676 Netman (847d3ae376c0817161a14a82c8922a9e) C:\Windows\System32\netman.dll
    03:00:51.0819 4676 Netman - ok
    03:00:51.0819 4676 NetMsmqActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
    03:00:51.0819 4676 NetMsmqActivator - ok
    03:00:51.0819 4676 NetPipeActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
    03:00:51.0819 4676 NetPipeActivator - ok
    03:00:51.0834 4676 netprofm (5f28111c648f1e24f7dbc87cdeb091b8) C:\Windows\System32\netprofm.dll
    03:00:51.0834 4676 netprofm - ok
    03:00:51.0834 4676 NetTcpActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
    03:00:51.0850 4676 NetTcpActivator - ok
    03:00:51.0850 4676 NetTcpPortSharing (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
    03:00:51.0850 4676 NetTcpPortSharing - ok
    03:00:51.0850 4676 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys
    03:00:51.0850 4676 nfrd960 - ok
    03:00:51.0865 4676 NlaSvc (1ee99a89cc788ada662441d1e9830529) C:\Windows\System32\nlasvc.dll
    03:00:51.0865 4676 NlaSvc - ok
    03:00:51.0865 4676 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
    03:00:51.0865 4676 Npfs - ok
    03:00:51.0881 4676 nsi (d54bfdf3e0c953f823b3d0bfe4732528) C:\Windows\system32\nsisvc.dll
    03:00:51.0881 4676 nsi - ok
    03:00:51.0881 4676 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
    03:00:51.0881 4676 nsiproxy - ok
    03:00:51.0912 4676 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys
    03:00:51.0912 4676 Ntfs - ok
    03:00:51.0928 4676 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
    03:00:51.0928 4676 Null - ok
    03:00:51.0928 4676 NVHDA (10204955027011e08a9dc27737a48a54) C:\Windows\system32\drivers\nvhda64v.sys
    03:00:51.0928 4676 NVHDA - ok
    03:00:52.0037 4676 nvlddmkm (cbf698abe989d60ec0d0b6b81ad82930) C:\Windows\system32\DRIVERS\nvlddmkm.sys
    03:00:52.0099 4676 nvlddmkm - ok
    03:00:52.0115 4676 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys
    03:00:52.0115 4676 nvraid - ok
    03:00:52.0115 4676 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys
    03:00:52.0115 4676 nvstor - ok
    03:00:52.0146 4676 nvsvc (cce27b95d1ae8128a7e0cee0fc9ae535) C:\Windows\system32\nvvsvc.exe
    03:00:52.0146 4676 nvsvc - ok
    03:00:52.0162 4676 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
    03:00:52.0162 4676 nv_agp - ok
    03:00:52.0162 4676 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
    03:00:52.0162 4676 ohci1394 - ok
    03:00:52.0177 4676 ose (9d10f99a6712e28f8acd5641e3a7ea6b) C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
    03:00:52.0177 4676 ose - ok
    03:00:52.0209 4676 osppsvc (61bffb5f57ad12f83ab64b7181829b34) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
    03:00:52.0240 4676 osppsvc - ok
    03:00:52.0255 4676 p2pimsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
    03:00:52.0255 4676 p2pimsvc - ok
    03:00:52.0255 4676 p2psvc (927463ecb02179f88e4b9a17568c63c3) C:\Windows\system32\p2psvc.dll
    03:00:52.0271 4676 p2psvc - ok
    03:00:52.0271 4676 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys
    03:00:52.0271 4676 Parport - ok
    03:00:52.0287 4676 partmgr (871eadac56b0a4c6512bbe32753ccf79) C:\Windows\system32\drivers\partmgr.sys
    03:00:52.0287 4676 partmgr - ok
    03:00:52.0287 4676 PcaSvc (3aeaa8b561e63452c655dc0584922257) C:\Windows\System32\pcasvc.dll
    03:00:52.0287 4676 PcaSvc - ok
    03:00:52.0302 4676 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys
    03:00:52.0302 4676 pci - ok
    03:00:52.0302 4676 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
    03:00:52.0302 4676 pciide - ok
    03:00:52.0318 4676 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys
    03:00:52.0318 4676 pcmcia - ok
    03:00:52.0318 4676 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
    03:00:52.0318 4676 pcw - ok
    03:00:52.0333 4676 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
    03:00:52.0333 4676 PEAUTH - ok
    03:00:52.0349 4676 PeerDistSvc (b9b0a4299dd2d76a4243f75fd54dc680) C:\Windows\system32\peerdistsvc.dll
    03:00:52.0365 4676 PeerDistSvc - ok
    03:00:52.0365 4676 PerfHost (e495e408c93141e8fc72dc0c6046ddfa) C:\Windows\SysWow64\perfhost.exe
    03:00:52.0365 4676 PerfHost - ok
    03:00:52.0396 4676 pla (c7cf6a6e137463219e1259e3f0f0dd6c) C:\Windows\system32\pla.dll
    03:00:52.0396 4676 pla - ok
    03:00:52.0411 4676 PlugPlay (25fbdef06c4d92815b353f6e792c8129) C:\Windows\system32\umpnpmgr.dll
    03:00:52.0411 4676 PlugPlay - ok
    03:00:52.0411 4676 PNRPAutoReg (7195581cec9bb7d12abe54036acc2e38) C:\Windows\system32\pnrpauto.dll
    03:00:52.0427 4676 PNRPAutoReg - ok
    03:00:52.0427 4676 PNRPsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
    03:00:52.0427 4676 PNRPsvc - ok
    03:00:52.0443 4676 PolicyAgent (4f15d75adf6156bf56eced6d4a55c389) C:\Windows\System32\ipsecsvc.dll
    03:00:52.0443 4676 PolicyAgent - ok
    03:00:52.0458 4676 Power (6ba9d927dded70bd1a9caded45f8b184) C:\Windows\system32\umpo.dll
    03:00:52.0458 4676 Power - ok
    03:00:52.0458 4676 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys
    03:00:52.0458 4676 PptpMiniport - ok
    03:00:52.0474 4676 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys
    03:00:52.0474 4676 Processor - ok
    03:00:52.0474 4676 ProfSvc (5c78838b4d166d1a27db3a8a820c799a) C:\Windows\system32\profsvc.dll
    03:00:52.0489 4676 ProfSvc - ok
    03:00:52.0489 4676 ProtectedStorage (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
    03:00:52.0489 4676 ProtectedStorage - ok
    03:00:52.0489 4676 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys
    03:00:52.0505 4676 Psched - ok
    03:00:52.0521 4676 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys
    03:00:52.0521 4676 ql2300 - ok
    03:00:52.0536 4676 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys
    03:00:52.0536 4676 ql40xx - ok
    03:00:52.0536 4676 QWAVE (906191634e99aea92c4816150bda3732) C:\Windows\system32\qwave.dll
    03:00:52.0536 4676 QWAVE - ok
    03:00:52.0552 4676 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
    03:00:52.0552 4676 QWAVEdrv - ok
    03:00:52.0552 4676 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
    03:00:52.0552 4676 RasAcd - ok
    03:00:52.0567 4676 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
    03:00:52.0567 4676 RasAgileVpn - ok
    03:00:52.0567 4676 RasAuto (8f26510c5383b8dbe976de1cd00fc8c7) C:\Windows\System32\rasauto.dll
    03:00:52.0567 4676 RasAuto - ok
    03:00:52.0583 4676 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys
    03:00:52.0583 4676 Rasl2tp - ok
    03:00:52.0583 4676 RasMan (ee867a0870fc9e4972ba9eaad35651e2) C:\Windows\System32\rasmans.dll
    03:00:52.0599 4676 RasMan - ok
    03:00:52.0599 4676 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
    03:00:52.0599 4676 RasPppoe - ok
    03:00:52.0614 4676 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
    03:00:52.0614 4676 RasSstp - ok
    03:00:52.0614 4676 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys
    03:00:52.0614 4676 rdbss - ok
    03:00:52.0630 4676 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys
    03:00:52.0630 4676 rdpbus - ok
    03:00:52.0630 4676 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
    03:00:52.0630 4676 RDPCDD - ok
    03:00:52.0645 4676 RDPDR (1b6163c503398b23ff8b939c67747683) C:\Windows\system32\drivers\rdpdr.sys
    03:00:52.0645 4676 RDPDR - ok
    03:00:52.0645 4676 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
    03:00:52.0645 4676 RDPENCDD - ok
    03:00:52.0661 4676 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
    03:00:52.0661 4676 RDPREFMP - ok
    03:00:52.0661 4676 RdpVideoMiniport (70cba1a0c98600a2aa1863479b35cb90) C:\Windows\system32\drivers\rdpvideominiport.sys
    03:00:52.0661 4676 RdpVideoMiniport - ok
    03:00:52.0677 4676 RDPWD (6d76e6433574b058adcb0c50df834492) C:\Windows\system32\drivers\RDPWD.sys
    03:00:52.0677 4676 RDPWD - ok
    03:00:52.0692 4676 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys
    03:00:52.0692 4676 rdyboost - ok
    03:00:52.0692 4676 RemoteAccess (254fb7a22d74e5511c73a3f6d802f192) C:\Windows\System32\mprdim.dll
    03:00:52.0692 4676 RemoteAccess - ok
    03:00:52.0708 4676 RemoteRegistry (e4d94f24081440b5fc5aa556c7c62702) C:\Windows\system32\regsvc.dll
    03:00:52.0708 4676 RemoteRegistry - ok
    03:00:52.0708 4676 RFCOMM (3dd798846e2c28102b922c56e71b7932) C:\Windows\system32\DRIVERS\rfcomm.sys
    03:00:52.0708 4676 RFCOMM - ok
    03:00:52.0723 4676 RpcEptMapper (e4dc58cf7b3ea515ae917ff0d402a7bb) C:\Windows\System32\RpcEpMap.dll
    03:00:52.0723 4676 RpcEptMapper - ok
    03:00:52.0723 4676 RpcLocator (d5ba242d4cf8e384db90e6a8ed850b8c) C:\Windows\system32\locator.exe
    03:00:52.0723 4676 RpcLocator - ok
    03:00:52.0739 4676 RpcSs (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
    03:00:52.0739 4676 RpcSs - ok
    03:00:52.0755 4676 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
    03:00:52.0755 4676 rspndr - ok
    03:00:52.0755 4676 RSUSBVSTOR (e57fac2cdb73f06586ed2ed310b80932) C:\Windows\system32\Drivers\RtsUVStor.sys
    03:00:52.0755 4676 RSUSBVSTOR - ok
    03:00:52.0770 4676 RTL8167 (20a466b9ea2bd828c0ec723f99b8cfe7) C:\Windows\system32\DRIVERS\Rt64win7.sys
    03:00:52.0770 4676 RTL8167 - ok
    03:00:52.0770 4676 s3cap (e60c0a09f997826c7627b244195ab581) C:\Windows\system32\drivers\vms3cap.sys
    03:00:52.0786 4676 s3cap - ok
    03:00:52.0786 4676 SamSs (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
    03:00:52.0786 4676 SamSs - ok
    03:00:52.0801 4676 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys
    03:00:52.0801 4676 sbp2port - ok
    03:00:52.0801 4676 SCardSvr (9b7395789e3791a3b6d000fe6f8b131e) C:\Windows\System32\SCardSvr.dll
    03:00:52.0801 4676 SCardSvr - ok
    03:00:52.0817 4676 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys
    03:00:52.0817 4676 scfilter - ok
    03:00:52.0833 4676 Schedule (262f6592c3299c005fd6bec90fc4463a) C:\Windows\system32\schedsvc.dll
    03:00:52.0833 4676 Schedule - ok
    03:00:52.0833 4676 SCPolicySvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
    03:00:52.0848 4676 SCPolicySvc - ok
    03:00:52.0848 4676 SDRSVC (6ea4234dc55346e0709560fe7c2c1972) C:\Windows\System32\SDRSVC.dll
    03:00:52.0848 4676 SDRSVC - ok
    03:00:52.0848 4676 SeagateDashboardService (2c542fb84b26459d437b22a9bc63c14d) C:\Program Files (x86)\Seagate\Seagate Dashboard\SeagateDashboardService.exe
    03:00:52.0848 4676 SeagateDashboardService - ok
    03:00:52.0864 4676 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
    03:00:52.0864 4676 secdrv - ok
    03:00:52.0864 4676 seclogon (bc617a4e1b4fa8df523a061739a0bd87) C:\Windows\system32\seclogon.dll
    03:00:52.0864 4676 seclogon - ok
    03:00:52.0879 4676 SENS (c32ab8fa018ef34c0f113bd501436d21) C:\Windows\System32\sens.dll
    03:00:52.0879 4676 SENS - ok
    03:00:52.0879 4676 SensrSvc (0336cffafaab87a11541f1cf1594b2b2) C:\Windows\system32\sensrsvc.dll
    03:00:52.0879 4676 SensrSvc - ok
    03:00:52.0895 4676 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys
    03:00:52.0895 4676 Serenum - ok
    03:00:52.0895 4676 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys
    03:00:52.0895 4676 Serial - ok
    03:00:52.0911 4676 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys
    03:00:52.0911 4676 sermouse - ok
    03:00:52.0911 4676 SessionEnv (0b6231bf38174a1628c4ac812cc75804) C:\Windows\system32\sessenv.dll
    03:00:52.0911 4676 SessionEnv - ok
    03:00:52.0926 4676 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
    03:00:52.0926 4676 sffdisk - ok
    03:00:52.0926 4676 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
    03:00:52.0926 4676 sffp_mmc - ok
    03:00:52.0942 4676 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys
    03:00:52.0942 4676 sffp_sd - ok
    03:00:52.0942 4676 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys
    03:00:52.0942 4676 sfloppy - ok
    03:00:52.0957 4676 SharedAccess (b95f6501a2f8b2e78c697fec401970ce) C:\Windows\System32\ipnathlp.dll
    03:00:52.0957 4676 SharedAccess - ok
    03:00:52.0973 4676 ShellHWDetection (aaf932b4011d14052955d4b212a4da8d) C:\Windows\System32\shsvcs.dll
    03:00:52.0973 4676 ShellHWDetection - ok
    03:00:52.0973 4676 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys
    03:00:52.0973 4676 SiSRaid2 - ok
    03:00:52.0989 4676 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys
    03:00:52.0989 4676 SiSRaid4 - ok
    03:00:52.0989 4676 SkypeUpdate (6128e98eaaed364ed1a32708d2fd22cb) C:\Program Files (x86)\Skype\Updater\Updater.exe
    03:00:52.0989 4676 SkypeUpdate - ok
    03:00:53.0004 4676 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
    03:00:53.0004 4676 Smb - ok
    03:00:53.0004 4676 SNMPTRAP (6313f223e817cc09aa41811daa7f541d) C:\Windows\System32\snmptrap.exe
    03:00:53.0004 4676 SNMPTRAP - ok
    03:00:53.0020 4676 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
    03:00:53.0020 4676 spldr - ok
    03:00:53.0020 4676 Spooler (b96c17b5dc1424d56eea3a99e97428cd) C:\Windows\System32\spoolsv.exe
    03:00:53.0035 4676 Spooler - ok
    03:00:53.0067 4676 sppsvc (e17e0188bb90fae42d83e98707efa59c) C:\Windows\system32\sppsvc.exe
    03:00:53.0082 4676 sppsvc - ok
    03:00:53.0082 4676 sppuinotify (93d7d61317f3d4bc4f4e9f8a96a7de45) C:\Windows\system32\sppuinotify.dll
    03:00:53.0082 4676 sppuinotify - ok
    03:00:53.0098 4676 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys
    03:00:53.0098 4676 srv - ok
    03:00:53.0113 4676 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys
    03:00:53.0113 4676 srv2 - ok
    03:00:53.0129 4676 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys
    03:00:53.0129 4676 srvnet - ok
    03:00:53.0129 4676 SSDPSRV (51b52fbd583cde8aa9ba62b8b4298f33) C:\Windows\System32\ssdpsrv.dll
    03:00:53.0129 4676 SSDPSRV - ok
    03:00:53.0145 4676 SstpSvc (ab7aebf58dad8daab7a6c45e6a8885cb) C:\Windows\system32\sstpsvc.dll
    03:00:53.0145 4676 SstpSvc - ok
    03:00:53.0145 4676 Stereo Service (2a3a44dfa9bb1ba65057a99966edfe56) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
    03:00:53.0145 4676 Stereo Service - ok
    03:00:53.0160 4676 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys
    03:00:53.0160 4676 stexstor - ok
    03:00:53.0176 4676 stisvc (8dd52e8e6128f4b2da92ce27402871c1) C:\Windows\System32\wiaservc.dll
    03:00:53.0176 4676 stisvc - ok
    03:00:53.0176 4676 storflt (7785dc213270d2fc066538daf94087e7) C:\Windows\system32\drivers\vmstorfl.sys
    03:00:53.0176 4676 storflt - ok
    03:00:53.0191 4676 storvsc (d34e4943d5ac096c8edeebfd80d76e23) C:\Windows\system32\drivers\storvsc.sys
    03:00:53.0191 4676 storvsc - ok
    03:00:53.0191 4676 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys
    03:00:53.0191 4676 swenum - ok
    03:00:53.0207 4676 swprv (e08e46fdd841b7184194011ca1955a0b) C:\Windows\System32\swprv.dll
    03:00:53.0207 4676 swprv - ok
    03:00:53.0223 4676 Synth3dVsc - ok
    03:00:53.0238 4676 SynTP (bc642d540aedf9a253c74d10c848ebd2) C:\Windows\system32\DRIVERS\SynTP.sys
    03:00:53.0238 4676 SynTP - ok
    03:00:53.0269 4676 SysMain (bf9ccc0bf39b418c8d0ae8b05cf95b7d) C:\Windows\system32\sysmain.dll
    03:00:53.0269 4676 SysMain - ok
    03:00:53.0285 4676 TabletInputService (e3c61fd7b7c2557e1f1b0b4cec713585) C:\Windows\System32\TabSvc.dll
    03:00:53.0285 4676 TabletInputService - ok
    03:00:53.0285 4676 TapiSrv (40f0849f65d13ee87b9a9ae3c1dd6823) C:\Windows\System32\tapisrv.dll
    03:00:53.0285 4676 TapiSrv - ok
    03:00:53.0301 4676 TBS (1be03ac720f4d302ea01d40f588162f6) C:\Windows\System32\tbssvc.dll
    03:00:53.0301 4676 TBS - ok
    03:00:53.0316 4676 Tcpip (fc62769e7bff2896035aeed399108162) C:\Windows\system32\drivers\tcpip.sys
    03:00:53.0332 4676 Tcpip - ok
    03:00:53.0363 4676 TCPIP6 (fc62769e7bff2896035aeed399108162) C:\Windows\system32\DRIVERS\tcpip.sys
    03:00:53.0363 4676 TCPIP6 - ok
    03:00:53.0379 4676 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys
    03:00:53.0379 4676 tcpipreg - ok
    03:00:53.0379 4676 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
    03:00:53.0379 4676 TDPIPE - ok
    03:00:53.0394 4676 TDTCP (51c5eceb1cdee2468a1748be550cfbc8) C:\Windows\system32\drivers\tdtcp.sys
    03:00:53.0394 4676 TDTCP - ok
    03:00:53.0394 4676 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys
    03:00:53.0394 4676 tdx - ok
    03:00:53.0410 4676 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys
    03:00:53.0410 4676 TermDD - ok
    03:00:53.0425 4676 TermService (2e648163254233755035b46dd7b89123) C:\Windows\System32\termsrv.dll
    03:00:53.0425 4676 TermService - ok
    03:00:53.0425 4676 Themes (f0344071948d1a1fa732231785a0664c) C:\Windows\system32\themeservice.dll
    03:00:53.0441 4676 Themes - ok
    03:00:53.0441 4676 THREADORDER (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
    03:00:53.0441 4676 THREADORDER - ok
    03:00:53.0457 4676 TrkWks (7e7afd841694f6ac397e99d75cead49d) C:\Windows\System32\trkwks.dll
    03:00:53.0457 4676 TrkWks - ok
    03:00:53.0457 4676 TrustedInstaller (773212b2aaa24c1e31f10246b15b276c) C:\Windows\servicing\TrustedInstaller.exe
    03:00:53.0457 4676 TrustedInstaller - ok
    03:00:53.0472 4676 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys
    03:00:53.0472 4676 tssecsrv - ok
    03:00:53.0472 4676 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
    03:00:53.0472 4676 TsUsbFlt - ok
    03:00:53.0472 4676 tsusbhub - ok
    03:00:53.0488 4676 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys
    03:00:53.0488 4676 tunnel - ok
    03:00:53.0503 4676 TurboB (b355581a9da34c92e2dbafa410d2f829) C:\Windows\system32\DRIVERS\TurboB.sys
    03:00:53.0503 4676 TurboB - ok
    03:00:53.0503 4676 TurboBoost (6564e84b1522c12ea1c3a181ed03276f) C:\Program Files\Intel\TurboBoost\TurboBoost.exe
    03:00:53.0503 4676 TurboBoost - ok
    03:00:53.0503 4676 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys
    03:00:53.0503 4676 uagp35 - ok
    03:00:53.0519 4676 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys
    03:00:53.0519 4676 udfs - ok
    03:00:53.0535 4676 UI0Detect (3cbdec8d06b9968aba702eba076364a1) C:\Windows\system32\UI0Detect.exe
    03:00:53.0535 4676 UI0Detect - ok
    03:00:53.0535 4676 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
    03:00:53.0535 4676 uliagpkx - ok
    03:00:53.0550 4676 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\drivers\umbus.sys
    03:00:53.0550 4676 umbus - ok
    03:00:53.0550 4676 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys
    03:00:53.0550 4676 UmPass - ok
    03:00:53.0566 4676 UmRdpService (a293dcd756d04d8492a750d03b9a297c) C:\Windows\System32\umrdp.dll
    03:00:53.0566 4676 UmRdpService - ok
    03:00:53.0581 4676 UNS (eb79c6c91a99930015ef29ae7fa802d1) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
    03:00:53.0597 4676 UNS - ok
    03:00:53.0613 4676 upnphost (d47ec6a8e81633dd18d2436b19baf6de) C:\Windows\System32\upnphost.dll
    03:00:53.0613 4676 upnphost - ok
    03:00:53.0628 4676 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys
    03:00:53.0628 4676 usbccgp - ok
    03:00:53.0628 4676 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
    03:00:53.0628 4676 usbcir - ok
    03:00:53.0644 4676 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\drivers\usbehci.sys
    03:00:53.0644 4676 usbehci - ok
    03:00:53.0644 4676 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys
    03:00:53.0644 4676 usbhub - ok
    03:00:53.0659 4676 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys
    03:00:53.0659 4676 usbohci - ok
    03:00:53.0659 4676 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys
    03:00:53.0659 4676 usbprint - ok
    03:00:53.0675 4676 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\drivers\USBSTOR.SYS
    03:00:53.0675 4676 USBSTOR - ok
    03:00:53.0675 4676 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\drivers\usbuhci.sys
    03:00:53.0675 4676 usbuhci - ok
    03:00:53.0691 4676 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\System32\Drivers\usbvideo.sys
    03:00:53.0691 4676 usbvideo - ok
    03:00:53.0706 4676 UxSms (edbb23cbcf2cdf727d64ff9b51a6070e) C:\Windows\System32\uxsms.dll
    03:00:53.0706 4676 UxSms - ok
    03:00:53.0706 4676 VaultSvc (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
    03:00:53.0706 4676 VaultSvc - ok
    03:00:53.0722 4676 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
    03:00:53.0722 4676 vdrvroot - ok
    03:00:53.0722 4676 vds (8d6b481601d01a456e75c3210f1830be) C:\Windows\System32\vds.exe
    03:00:53.0737 4676 vds - ok
    03:00:53.0737 4676 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
    03:00:53.0737 4676 vga - ok
    03:00:53.0737 4676 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
    03:00:53.0737 4676 VgaSave - ok
    03:00:53.0753 4676 VGPU - ok
    03:00:53.0753 4676 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys
    03:00:53.0769 4676 vhdmp - ok
    03:00:53.0769 4676 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
    03:00:53.0769 4676 viaide - ok
    03:00:53.0784 4676 vmbus (86ea3e79ae350fea5331a1303054005f) C:\Windows\system32\drivers\vmbus.sys
    03:00:53.0784 4676 vmbus - ok
    03:00:53.0784 4676 VMBusHID (7de90b48f210d29649380545db45a187) C:\Windows\system32\drivers\VMBusHID.sys
    03:00:53.0784 4676 VMBusHID - ok
    03:00:53.0800 4676 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys
    03:00:53.0800 4676 volmgr - ok
    03:00:53.0800 4676 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys
    03:00:53.0800 4676 volmgrx - ok
    03:00:53.0815 4676 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys
    03:00:53.0815 4676 volsnap - ok
    03:00:53.0831 4676 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys
    03:00:53.0831 4676 vsmraid - ok
    03:00:53.0847 4676 VSS (b60ba0bc31b0cb414593e169f6f21cc2) C:\Windows\system32\vssvc.exe
    03:00:53.0862 4676 VSS - ok
    03:00:53.0862 4676 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\system32\DRIVERS\vwifibus.sys
    03:00:53.0862 4676 vwifibus - ok
    03:00:53.0878 4676 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys
    03:00:53.0878 4676 vwififlt - ok
    03:00:53.0878 4676 W32Time (1c9d80cc3849b3788048078c26486e1a) C:\Windows\system32\w32time.dll
    03:00:53.0878 4676 W32Time - ok
    03:00:53.0893 4676 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys
    03:00:53.0893 4676 WacomPen - ok
    03:00:53.0909 4676 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
    03:00:53.0909 4676 WANARP - ok
    03:00:53.0909 4676 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
    03:00:53.0909 4676 Wanarpv6 - ok
    03:00:53.0925 4676 WatAdminSvc (3cec96de223e49eaae3651fcf8faea6c) C:\Windows\system32\Wat\WatAdminSvc.exe
    03:00:53.0925 4676 WatAdminSvc - ok
    03:00:53.0956 4676 wbengine (78f4e7f5c56cb9716238eb57da4b6a75) C:\Windows\system32\wbengine.exe
    03:00:53.0956 4676 wbengine - ok
    03:00:53.0971 4676 WbioSrvc (3aa101e8edab2db4131333f4325c76a3) C:\Windows\System32\wbiosrvc.dll
    03:00:53.0971 4676 WbioSrvc - ok
    03:00:53.0971 4676 wcncsvc (7368a2afd46e5a4481d1de9d14848edd) C:\Windows\System32\wcncsvc.dll
    03:00:53.0987 4676 wcncsvc - ok
    03:00:53.0987 4676 WcsPlugInService (20f7441334b18cee52027661df4a6129) C:\Windows\System32\WcsPlugInService.dll
    03:00:53.0987 4676 WcsPlugInService - ok
    03:00:54.0003 4676 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys
    03:00:54.0003 4676 Wd - ok
    03:00:54.0003 4676 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
    03:00:54.0018 4676 Wdf01000 - ok
    03:00:54.0018 4676 WdiServiceHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
    03:00:54.0018 4676 WdiServiceHost - ok
    03:00:54.0018 4676 WdiSystemHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
    03:00:54.0018 4676 WdiSystemHost - ok
    03:00:54.0034 4676 WebClient (3db6d04e1c64272f8b14eb8bc4616280) C:\Windows\System32\webclnt.dll
    03:00:54.0034 4676 WebClient - ok
    03:00:54.0049 4676 Wecsvc (c749025a679c5103e575e3b48e092c43) C:\Windows\system32\wecsvc.dll
    03:00:54.0049 4676 Wecsvc - ok
    03:00:54.0049 4676 wercplsupport (7e591867422dc788b9e5bd337a669a08) C:\Windows\System32\wercplsupport.dll
    03:00:54.0049 4676 wercplsupport - ok
    03:00:54.0065 4676 WerSvc (6d137963730144698cbd10f202e9f251) C:\Windows\System32\WerSvc.dll
    03:00:54.0065 4676 WerSvc - ok
    03:00:54.0065 4676 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
    03:00:54.0081 4676 WfpLwf - ok
    03:00:54.0081 4676 WimFltr (52ded146e4797e6ccf94799e8e22bb2a) C:\Windows\system32\DRIVERS\wimfltr.sys
    03:00:54.0081 4676 WimFltr - ok
    03:00:54.0096 4676 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
    03:00:54.0096 4676 WIMMount - ok
    03:00:54.0096 4676 WinDefend - ok
    03:00:54.0096 4676 WinHttpAutoProxySvc - ok
    03:00:54.0112 4676 Winmgmt (19b07e7e8915d701225da41cb3877306) C:\Windows\system32\wbem\WMIsvc.dll
    03:00:54.0112 4676 Winmgmt - ok
    03:00:54.0127 4676 WinRM (bcb1310604aa415c4508708975b3931e) C:\Windows\system32\WsmSvc.dll
    03:00:54.0143 4676 WinRM - ok
    03:00:54.0159 4676 Wlansvc (4fada86e62f18a1b2f42ba18ae24e6aa) C:\Windows\System32\wlansvc.dll
    03:00:54.0159 4676 Wlansvc - ok
    03:00:54.0174 4676 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys
    03:00:54.0174 4676 WmiAcpi - ok
    03:00:54.0190 4676 wmiApSrv (38b84c94c5a8af291adfea478ae54f93) C:\Windows\system32\wbem\WmiApSrv.exe
    03:00:54.0190 4676 wmiApSrv - ok
    03:00:54.0190 4676 WMPNetworkSvc - ok
    03:00:54.0190 4676 WPCSvc (96c6e7100d724c69fcf9e7bf590d1dca) C:\Windows\System32\wpcsvc.dll
    03:00:54.0205 4676 WPCSvc - ok
    03:00:54.0205 4676 WPDBusEnum (93221146d4ebbf314c29b23cd6cc391d) C:\Windows\system32\wpdbusenum.dll
    03:00:54.0205 4676 WPDBusEnum - ok
    03:00:54.0221 4676 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
    03:00:54.0221 4676 ws2ifsl - ok
    03:00:54.0221 4676 wscsvc (e8b1fe6669397d1772d8196df0e57a9e) C:\Windows\System32\wscsvc.dll
    03:00:54.0221 4676 wscsvc - ok
    03:00:54.0237 4676 WSearch - ok
    03:00:54.0252 4676 wuauserv (9df12edbc698b0bc353b3ef84861e430) C:\Windows\system32\wuaueng.dll
    03:00:54.0268 4676 wuauserv - ok
    03:00:54.0283 4676 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys
    03:00:54.0283 4676 WudfPf - ok
    03:00:54.0283 4676 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys
    03:00:54.0283 4676 WUDFRd - ok
    03:00:54.0299 4676 wudfsvc (7a95c95b6c4cf292d689106bcae49543) C:\Windows\System32\WUDFSvc.dll
    03:00:54.0299 4676 wudfsvc - ok
    03:00:54.0299 4676 WwanSvc (9a3452b3c2a46c073166c5cf49fad1ae) C:\Windows\System32\wwansvc.dll
    03:00:54.0315 4676 WwanSvc - ok
    03:00:54.0315 4676 xusb21 (2c6bc21b2d5b58d8b1d638c1704cb494) C:\Windows\system32\DRIVERS\xusb21.sys
    03:00:54.0315 4676 xusb21 - ok
    03:00:54.0330 4676 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
    03:00:54.0330 4676 \Device\Harddisk0\DR0 - ok
    03:00:54.0330 4676 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk1\DR1
    03:00:54.0330 4676 \Device\Harddisk1\DR1 - ok
    03:00:54.0330 4676 MBR (0x1B8) (5fb38429d5d77768867c76dcbdb35194) \Device\Harddisk2\DR3
    03:00:54.0330 4676 \Device\Harddisk2\DR3 - ok
    03:00:54.0330 4676 Boot (0x1200) (c12b7e47b6ce85a9ce67eab408ce3dad) \Device\Harddisk0\DR0\Partition0
    03:00:54.0330 4676 \Device\Harddisk0\DR0\Partition0 - ok
    03:00:54.0346 4676 Boot (0x1200) (74e06f183f644610e205472578ae54d9) \Device\Harddisk0\DR0\Partition1
    03:00:54.0346 4676 \Device\Harddisk0\DR0\Partition1 - ok
    03:00:54.0346 4676 Boot (0x1200) (8b52c527dada81761a4bc91a2ed059bb) \Device\Harddisk1\DR1\Partition0
    03:00:54.0346 4676 \Device\Harddisk1\DR1\Partition0 - ok
    03:00:54.0346 4676 Boot (0x1200) (36e53258c212d5b19372dc3e61e9984b) \Device\Harddisk1\DR1\Partition1
    03:00:54.0346 4676 \Device\Harddisk1\DR1\Partition1 - ok
    03:00:54.0346 4676 Boot (0x1200) (b7bb935d9780179fbb910697132cdcc8) \Device\Harddisk2\DR3\Partition0
    03:00:54.0346 4676 \Device\Harddisk2\DR3\Partition0 - ok
    03:00:54.0346 4676 ============================================================
    03:00:54.0346 4676 Scan finished
    03:00:54.0346 4676 ============================================================
    03:00:54.0346 2060 Detected object count: 0
    03:00:54.0346 2060 Actual detected object count: 0
    03:00:56.0077 5952 Deinitialize success
     
  8. Broni

    Broni Malware Annihilator Posts: 52,898   +344

    Download the FixTDSS.exe

    Save the file to your Windows desktop.
    Close all running programs.
    If you are running Windows XP, turn off System Restore. How to turn off or turn on Windows XP System Restore
    Double-click the FixTDSS.exe file to start the removal tool.
    Click Start to begin the process, and then allow the tool to run.
    OK any security prompts.
    Restart the computer when prompted by the tool.
    After the computer has started, the tool will inform you of the state of infection (make sure to let me know what it said)
    If you are running Windows XP, re-enable System Restore.
     
  9. Nate41785

    Nate41785 TS Rookie Topic Starter

    Ok, so I ran it and this is what I got:

    suspicious use of kernel callback but MBR appears intact. Repair not done. No infections were found.

    What are your thoughts so far? I'm thinking of buying this laptop from a coworker. He threw a cracked copy of windows on here so that I could check out the laptop and get a warm and fuzzy before paying him. If this is a rootkit and I completely formatted the drive and reinstalled windows would that remove it? I've read somewhere that some rootkits can actually damage hardware permanently, is this true in your experience? And lastly, could this be caused by any hardware failures? Thanks again for all your help.
     
  10. Broni

    Broni Malware Annihilator Posts: 52,898   +344

    Not true.

    However it this is used computer you want to buy and it has cracked Windows copy on it I wouldn't even think twice but I'd format and install legit Windows.
     

Similar Topics

Add New Comment

You need to be a member to leave a comment. Join thousands of tech enthusiasts and participate.
TechSpot Account You may also...