Virus?

Solved
By Sprinter
Nov 9, 2012
Topic Status:
Not open for further replies.
  1. When I click on the IE icon on my desktop it wont open. It simply creates a shortcut on my desktop. not sure what is going on. I'll post the logs in 1 min
  2. Sprinter

    Sprinter Newcomer, in training Topic Starter Posts: 59

    Malwarebytes Anti-Malware 1.65.1.1000
    www.malwarebytes.org

    Database version: v2012.11.09.07

    Windows XP Service Pack 2 x86 NTFS
    Internet Explorer 6.0.2900.2180
    atinker :: TINKER [administrator]

    11/9/2012 3:54:30 PM
    mbam-log-2012-11-09 (15-54-30).txt

    Scan type: Quick scan
    Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
    Scan options disabled: P2P
    Objects scanned: 246381
    Time elapsed: 10 minute(s), 3 second(s)

    Memory Processes Detected: 0
    (No malicious items detected)

    Memory Modules Detected: 0
    (No malicious items detected)

    Registry Keys Detected: 0
    (No malicious items detected)

    Registry Values Detected: 0
    (No malicious items detected)

    Registry Data Items Detected: 1
    HKCR\CLSID\{FBEB8A05-BEEE-4442-804E-409D6C4515E9}\InProcServer32| (Hijack.SHELL32) -> Bad: (fastprox.dll) Good: (shell32.dll) -> Quarantined and repaired successfully.

    Folders Detected: 0
    (No malicious items detected)

    Files Detected: 0
    (No malicious items detected)

    (end)
  3. Sprinter

    Sprinter Newcomer, in training Topic Starter Posts: 59

    Edit: scanned twice because I thought the first scan log didnt post






    Malwarebytes Anti-Malware 1.65.1.1000
    www.malwarebytes.org

    Database version: v2012.11.09.07

    Windows XP Service Pack 2 x86 NTFS
    Internet Explorer 6.0.2900.2180
    atinker :: TINKER [administrator]

    11/9/2012 4:13:05 PM
    mbam-log-2012-11-09 (16-13-05).txt

    Scan type: Quick scan
    Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
    Scan options disabled: P2P
    Objects scanned: 246379
    Time elapsed: 9 minute(s), 27 second(s)

    Memory Processes Detected: 0
    (No malicious items detected)

    Memory Modules Detected: 0
    (No malicious items detected)

    Registry Keys Detected: 0
    (No malicious items detected)

    Registry Values Detected: 0
    (No malicious items detected)

    Registry Data Items Detected: 0
    (No malicious items detected)

    Folders Detected: 0
    (No malicious items detected)

    Files Detected: 0
    (No malicious items detected)

    (end)
  4. Sprinter

    Sprinter Newcomer, in training Topic Starter Posts: 59

    GMER 1.0.15.15641 - http://www.gmer.net
    Rootkit quick scan 2012-11-09 16:35:16
    Windows 5.1.2600 Service Pack 2 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP1T0L0-e WDC_WD800JD-75MSA3 rev.10.01E04
    Running: 3p8tey0j.exe; Driver: C:\DOCUME~1\atinker\LOCALS~1\Temp\uftdipow.sys


    ---- System - GMER 1.0.15 ----

    Code mfehidk.sys (McAfee Link Driver/McAfee, Inc.) ZwOpenProcess [0xF74420A4]
    Code mfehidk.sys (McAfee Link Driver/McAfee, Inc.) ZwOpenThread [0xF74420B8]
    Code mfehidk.sys (McAfee Link Driver/McAfee, Inc.) NtOpenProcess
    Code mfehidk.sys (McAfee Link Driver/McAfee, Inc.) NtOpenThread

    ---- Devices - GMER 1.0.15 ----

    AttachedDevice \FileSystem\Ntfs \Ntfs mfehidk.sys (McAfee Link Driver/McAfee, Inc.)
    AttachedDevice \Driver\Tcpip \Device\Ip mfetdi2k.sys (Anti-Virus Mini-Firewall Driver/McAfee, Inc.)
    AttachedDevice \Driver\Tcpip \Device\Tcp mfetdi2k.sys (Anti-Virus Mini-Firewall Driver/McAfee, Inc.)
    AttachedDevice \Driver\Tcpip \Device\Udp mfetdi2k.sys (Anti-Virus Mini-Firewall Driver/McAfee, Inc.)
    AttachedDevice \Driver\Tcpip \Device\RawIp mfetdi2k.sys (Anti-Virus Mini-Firewall Driver/McAfee, Inc.)

    ---- EOF - GMER 1.0.15 ----
  5. Sprinter

    Sprinter Newcomer, in training Topic Starter Posts: 59

    .
    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT
    .
    DDS (Ver_2012-11-07.01)
    .
    Microsoft Windows XP Professional
    Boot Device: \Device\HarddiskVolume2
    Install Date: 10/31/2012 7:52:25 PM
    System Uptime: 11/9/2012 4:42:07 PM (0 hours ago)
    .
    Motherboard: Dell Inc. | | 0HJ054
    Processor: Intel(R) Pentium(R) D CPU 2.66GHz | Microprocessor | 2660/533mhz
    Processor: Intel(R) Pentium(R) D CPU 2.66GHz | Microprocessor | 2660/533mhz
    .
    ==== Disk Partitions =========================
    .
    C: is FIXED (NTFS) - 70 GiB total, 30.563 GiB free.
    D: is CDROM ()
    .
    ==== Disabled Device Manager Items =============
    .
    Class GUID: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA}
    Description: USB Receiver
    Device ID: USB\VID_046D&PID_C52B&MI_02\6&1F7C77E4&0&0002
    Manufacturer:
    Name: USB Receiver
    PNP Device ID: USB\VID_046D&PID_C52B&MI_02\6&1F7C77E4&0&0002
    Service:
    .
    ==== System Restore Points ===================
    .
    RP1: 10/31/2012 7:59:50 PM - System Checkpoint
    RP2: 11/1/2012 8:01:12 PM - System Checkpoint
    RP3: 11/2/2012 9:01:12 PM - System Checkpoint
    RP4: 11/3/2012 10:01:12 PM - System Checkpoint
    RP5: 11/4/2012 11:01:12 PM - System Checkpoint
    RP6: 11/6/2012 12:01:12 AM - System Checkpoint
    RP7: 11/7/2012 1:01:12 AM - System Checkpoint
    RP8: 11/8/2012 2:01:12 AM - System Checkpoint
    RP9: 11/9/2012 3:01:12 AM - System Checkpoint
    .
    ==== Installed Programs ======================
    .
    725plc32
    Adobe AIR
    Adobe Flash Player 10 ActiveX
    Adobe Flash Player 11 Plugin
    Adobe Reader 9.5.2
    Adobe Shockwave Player 11.5
    AIM 6
    AiO_Scan_CDA
    Andrea VoiceCenter
    AOL Coach Version 1.0(Build:20040229.1 en)
    AOL Connectivity Services
    AOL Uninstaller (Choose which Products to Remove)
    AOLIcon
    Apple Mobile Device Support
    Apple Software Update
    ATI Control Panel
    ATI Display Driver
    Bing Bar
    Bonjour
    Bonjour Core for Windows
    CDDRV_Installer
    Compatibility Pack for the 2007 Office system
    Conexant D850 56K V.9x DFVc Modem
    Corel Photo Album 6
    Creative Jukebox Driver
    Creative MediaSource
    Creative NOMAD Jukebox Zen Xtra
    Dell CinePlayer
    Dell Digital Jukebox Driver
    Dell Driver Reset Tool
    Dell System Restore
    DellSupport
    Digital Content Portal
    Digital Line Detect
    Documentation & Support Launcher
    EarthLink setup files
    EducateU
    ELIcon
    erLT
    ESET Online Scanner v3
    ESPNMotion
    Games, Music, & Photos Launcher
    GemMaster Mystic
    Get High Speed Internet!
    Google Toolbar for Internet Explorer
    Goombah Partner COM Server
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
    HP Photosmart, Officejet and Deskjet 7.0.A
    Intel(R) Graphics Media Accelerator Driver
    Intel(R) PRO Network Connections Drivers
    Intel(R) PROSet for Wired Connections
    Internet Service Offers Launcher
    iTunes
    Java Auto Updater
    Java(TM) 6 Update 22
    Java(TM) 7 Update 5
    JavaFX 2.1.1
    KhalInstallWrapper
    Learn2 Player (Uninstall Only)
    Logitech SetPoint
    Malwarebytes Anti-Malware version 1.65.1.1000
    McAfee Security Scan Plus
    McAfee SecurityCenter
    MCU
    Microsoft .NET Framework 1.1
    Microsoft .NET Framework 1.1 Security Update (KB2656353)
    Microsoft .NET Framework 1.1 Security Update (KB2656370)
    Microsoft .NET Framework 1.1 Security Update (KB979906)
    Microsoft .NET Framework 2.0 Service Pack 2
    Microsoft .NET Framework 3.0 Service Pack 2
    Microsoft .NET Framework 3.5 SP1
    Microsoft Baseline Security Analyzer 2.0
    Microsoft Default Manager
    Microsoft Office Basic Edition 2003
    Microsoft Plus! Digital Media Edition Installer
    Microsoft Plus! Photo Story 2 LE
    Microsoft Silverlight
    Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
    Microsoft Visual C++ 2005 Redistributable
    Modem Helper
    Move Media Player
    Mozilla Firefox 15.0 (x86 en-US)
    Mozilla Maintenance Service
    MSXML 4.0 SP2 (KB936181)
    MSXML 4.0 SP2 (KB954430)
    MSXML 4.0 SP2 (KB973688)
    Musicmatch for Windows Media Player
    Napster
    Napster Burn Engine
    NetWaiting
    NetZeroInstallers
    Otto
    PartyPokerNet
    PopCap Browser Plugin
    QFolder
    QuickTime
    RealPlayer Basic
    Roxio DLA
    Roxio MyDVD LE
    Roxio RecordNow Audio
    Roxio RecordNow Copy
    Roxio RecordNow Data
    Ruckus Player
    SAMSUNG Android USB Modem Software
    Scan
    Search Assist
    Secunia PSI
    Security Update for CAPICOM (KB931906)
    Security Update for Microsoft .NET Framework 3.5 SP1 (KB2604111)
    Security Update for Microsoft .NET Framework 3.5 SP1 (KB2657424)
    Skype Click to Call
    Skype™ 5.5
    Sonic Activation Module
    Sonic Advanced Decoder
    Sonic Encoders
    Sonic Update Manager
    Sound Blaster Audigy ADVANCED MB
    Sound Blaster Audigy ADVANCED MB Product Registration
    StarCraft II
    Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
    Update Rollup 2 for Windows XP Media Center Edition 2005
    URL Assistant
    Warcraft III
    WebFldrs XP
    WildTangent Web Driver
    Windows Genuine Advantage Notifications (KB905474)
    Windows Genuine Advantage Validation Tool (KB892130)
    Windows Live ID Sign-in Assistant
    Windows Live installer
    Windows Live Messenger
    Windows Media Connect
    Windows Media Format 11 runtime
    Windows Media Format Runtime
    Windows Media Player 10
    Windows Media Player 11
    Windows XP Media Center Edition 2005 KB908246
    WOT for Internet Explorer
    WOT Services
    .
    ==== Event Viewer Messages From Past Week ========
    .
    11/9/2012 4:22:40 PM, error: W32Time [17] - Time Provider NtpClient: An error occurred during DNS lookup of the manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15 minutes. The error was: A socket operation was attempted to an unreachable host. (0x80072751)
    11/9/2012 3:07:04 PM, error: Service Control Manager [7034] - The SeaPort service terminated unexpectedly. It has done this 1 time(s).
    11/9/2012 3:07:04 PM, error: Service Control Manager [7034] - The Pml Driver HPZ12 service terminated unexpectedly. It has done this 1 time(s).
    11/9/2012 3:07:04 PM, error: Service Control Manager [7034] - The Media Center Scheduler Service service terminated unexpectedly. It has done this 1 time(s).
    11/9/2012 3:07:04 PM, error: Service Control Manager [7034] - The McAfee Firewall Core Service service terminated unexpectedly. It has done this 1 time(s).
    11/9/2012 3:07:04 PM, error: Service Control Manager [7034] - The Machine Debug Manager service terminated unexpectedly. It has done this 1 time(s).
    11/9/2012 3:07:04 PM, error: Service Control Manager [7034] - The Java Quick Starter service terminated unexpectedly. It has done this 1 time(s).
    11/9/2012 3:07:04 PM, error: Service Control Manager [7034] - The Creative Service for CDROM Access service terminated unexpectedly. It has done this 1 time(s).
    11/9/2012 3:07:04 PM, error: Service Control Manager [7034] - The Creative Labs Licensing Service service terminated unexpectedly. It has done this 1 time(s).
    11/9/2012 3:07:04 PM, error: Service Control Manager [7034] - The Bonjour Service service terminated unexpectedly. It has done this 1 time(s).
    11/9/2012 3:07:04 PM, error: Service Control Manager [7034] - The AOL Connectivity Service service terminated unexpectedly. It has done this 1 time(s).
    11/9/2012 3:07:04 PM, error: Service Control Manager [7031] - The Windows Live ID Sign-in Assistant service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.
    11/9/2012 3:07:04 PM, error: Service Control Manager [7031] - The Media Center Receiver Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 5000 milliseconds: Restart the service.
    11/9/2012 3:07:04 PM, error: Service Control Manager [7031] - The Apple Mobile Device service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
    11/9/2012 3:06:53 PM, error: Service Control Manager [7034] - The Ati HotKey Poller service terminated unexpectedly. It has done this 1 time(s).
    11/9/2012 3:06:27 PM, error: Service Control Manager [7024] - The McShield service terminated with service-specific error 5046 (0x13B6).
    11/9/2012 3:05:45 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the Windows Media Player Network Sharing Service service to connect.
    11/9/2012 3:05:45 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the McAfee VirusScan Announcer service to connect.
    11/9/2012 3:05:45 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the McAfee Services service to connect.
    11/9/2012 3:05:45 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the McAfee Proxy Service service to connect.
    11/9/2012 3:05:45 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the McAfee Personal Firewall Service service to connect.
    11/9/2012 3:05:45 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the McAfee Network Agent service to connect.
    11/9/2012 3:05:45 PM, error: Service Control Manager [7000] - The Windows Media Player Network Sharing Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
    11/9/2012 3:05:45 PM, error: Service Control Manager [7000] - The McAfee VirusScan Announcer service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
    11/9/2012 3:05:45 PM, error: Service Control Manager [7000] - The McAfee Services service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
    11/9/2012 3:05:45 PM, error: Service Control Manager [7000] - The McAfee Proxy Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
    11/9/2012 3:05:45 PM, error: Service Control Manager [7000] - The McAfee Personal Firewall Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
    11/9/2012 3:05:45 PM, error: Service Control Manager [7000] - The McAfee Network Agent service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
    11/9/2012 3:05:07 PM, error: sr [1] - The System Restore filter encountered the unexpected error '0xC0000001' while processing the file '' on the volume 'HarddiskVolume2'. It has stopped monitoring the volume.
    11/9/2012 3:04:00 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
    11/9/2012 2:32:29 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: Fips intelppm
    .
    ==== End Of File ===========================
  6. Sprinter

    Sprinter Newcomer, in training Topic Starter Posts: 59

    DDS log


    DDS (Ver_2012-11-07.01) - NTFS_x86
    Internet Explorer: 6.0.2900.2180 BrowserJavaVersion: 10.5.1
    Run by atinker at 16:48:52 on 2012-11-09
    Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.1022.513 [GMT -5:00]
    .
    .
    ============== Running Processes ================
    .
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\WINDOWS\system32\CTsvcCDA.exe
    C:\WINDOWS\eHome\ehRecvr.exe
    C:\WINDOWS\eHome\ehSched.exe
    C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\WINDOWS\system32\mfevtps.exe
    C:\WINDOWS\system32\HPZipm12.exe
    C:\Program Files\Microsoft\BingBar\SeaPort.EXE
    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
    C:\WINDOWS\system32\MsPMSPSv.exe
    C:\WINDOWS\ehome\mcrdsvc.exe
    C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
    C:\WINDOWS\system32\dllhost.exe
    C:\WINDOWS\System32\alg.exe
    C:\WINDOWS\system32\wscntfy.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\ehome\ehtray.exe
    C:\Program Files\Dell\Media Experience\DMXLauncher.exe
    C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe
    C:\WINDOWS\system32\Rundll32.exe
    C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
    C:\WINDOWS\System32\DLA\DLACTRLW.EXE
    C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
    C:\DOCUME~1\atinker\LOCALS~1\Temp\clclean.0001
    C:\Program Files\Common Files\Java\Java Update\jusched.exe
    C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
    C:\WINDOWS\stsystra.exe
    C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe
    C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Digital Line Detect\DLG.exe
    C:\Program Files\Logitech\SetPoint\SetPoint.exe
    C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe
    C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
    C:\WINDOWS\system32\wbem\wmiprvse.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Program Files\Mozilla Firefox\plugin-container.exe
    C:\WINDOWS\system32\NOTEPAD.EXE
    C:\Program Files\Common Files\InstallShield\UpdateService\agent.exe
    C:\WINDOWS\system32\wbem\wmiprvse.exe
    C:\WINDOWS\System32\svchost.exe -k netsvcs
    C:\WINDOWS\system32\svchost.exe -k NetworkService
    C:\WINDOWS\system32\svchost.exe -k LocalService
    C:\WINDOWS\System32\svchost.exe -k HTTPFilter
    C:\WINDOWS\system32\svchost.exe -k imgsvc
    .
    ============== Pseudo HJT Report ===============
    .
    uStart Page = hxxp://www.google.com/
    uSearch Bar = hxxp://www.google.com/ie
    uSearch Page = hxxp://www.google.com
    uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
    mDefault_Search_URL = hxxp://www.google.com/ie
    uSearchAssistant = hxxp://www.google.com/ie
    uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
    mSearchAssistant = hxxp://www.google.com/ie
    BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
    BHO: DriveLetterAccess: {5CA3D70E-1895-11CF-8E15-001234567890} - c:\windows\system32\dla\DLASHX_W.DLL
    BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\oracle\javafx 2.1 runtime\bin\ssv.dll
    BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
    BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
    BHO: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
    BHO: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - c:\program files\google\googletoolbarnotifier\5.6.5612.1312\swg.dll
    BHO: WOT Helper: {C920E44A-7F78-4E64-BDD7-A57026E7FEB7} - c:\program files\wot\WOT.dll
    BHO: CBrowserHelperObject Object: {CA6319C0-31B7-401E-A518-A07C3DB8F777} - c:\program files\bae\BAE.dll
    BHO: Bing Bar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -
    BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\oracle\javafx 2.1 runtime\bin\jp2ssv.dll
    TB: &Google: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
    TB: WOT: {71576546-354D-41C9-AAE8-31F2EC22BF0D} - c:\program files\wot\WOT.dll
    TB: &Google: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
    TB: WOT: {71576546-354D-41c9-AAE8-31F2EC22BF0D} - c:\program files\wot\WOT.dll
    TB: Bing Bar: {8dcb7100-df86-4384-8842-8fa844297b3f} -
    uRun: [SetDefaultMIDI] MIDIDef.exe
    uRun: [swg] "c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe"
    uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
    mRun: [ehTray] c:\windows\ehome\ehtray.exe
    mRun: [ATIPTA] "c:\program files\ati technologies\ati control panel\atiptaxx.exe"
    mRun: [DMXLauncher] c:\program files\dell\media experience\DMXLauncher.exe
    mRun: [CTSysVol] c:\program files\creative\sbaudigy\surround mixer\CTSysVol.exe /r
    mRun: [MBMon] Rundll32 CTMBHA.DLL,MBMon
    mRun: [VoiceCenter] "c:\program files\creative\voicecenter\AndreaVC.exe" /tray
    mRun: [ISUSPM Startup] "c:\program files\common files\installshield\updateservice\isuspm.exe" -startup
    mRun: [ISUSScheduler] "c:\program files\common files\installshield\updateservice\issch.exe" -start
    mRun: [DLA] c:\windows\system32\dla\DLACTRLW.EXE
    mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
    mRun: [AOLDialer] c:\program files\common files\aol\acs\AOLDial.exe
    mRun: [mcagent_exe] "c:\program files\mcafee.com\agent\mcagent.exe" /runkey
    mRun: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
    mRun: [Microsoft Default Manager] "c:\program files\microsoft\search enhancement pack\default manager\DefMgr.exe" -resume
    mRun: [igfxtray] c:\windows\system32\igfxtray.exe
    mRun: [igfxhkcmd] c:\windows\system32\hkcmd.exe
    mRun: [igfxpers] c:\windows\system32\igfxpers.exe
    mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
    mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
    mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
    mRun: [SigmatelSysTrayApp] stsystra.exe
    dRunOnce: [tscuninstall] c:\windows\system32\tscupgrd.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\digita~1.lnk - c:\program files\digital line detect\DLG.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\logite~1.lnk - c:\program files\logitech\setpoint\SetPoint.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\mcafee~1.lnk - c:\program files\mcafee security scan\2.0.181\SSScheduler.exe
    uPolicies-Explorer: NoDriveTypeAutoRun = dword:323
    uPolicies-Explorer: NoDriveAutoRun = dword:67108863
    uPolicies-Explorer: NoDrives = dword:0
    mPolicies-Explorer: NoDriveAutoRun = dword:67108863
    mPolicies-Explorer: NoDriveTypeAutoRun = dword:323
    mPolicies-Explorer: NoDrives = dword:0
    mPolicies-Windows\System: Allow-LogonScript-NetbiosDisabled = dword:1
    mPolicies-Explorer: NoDriveTypeAutoRun = dword:145
    mPolicies-Explorer: NoDriveAutoRun = dword:67108863
    IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office11\EXCEL.EXE/3000
    IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
    IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
    IE: {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - {FE54FA40-D68C-11d2-98FA-00C0F0318AFE}
    IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
    IE: {F4430FE8-2638-42e5-B849-800749B94EED} - c:\program files\partygaming.net\partypokernet\RunPF.exe
    IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
    LSP: mswsock.dll
    DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
    DPF: {233C1507-6A77-46A4-9443-F871F945D258} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
    DPF: {5C6698D9-7BE4-4122-8EC5-291D84DBD4A0} - hxxp://upload.facebook.com/controls/FacebookPhotoUploader3.cab
    DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} - hxxp://upload.facebook.com/controls/FacebookPhotoUploader.cab
    DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab
    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
    DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
    TCP: NameServer = 192.168.1.1 192.168.1.1
    TCP: Interfaces\{1606AD12-2B57-4EA2-B8E1-4C06D804E959} : DHCPNameServer = 192.168.1.1 192.168.1.1
    Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
    Handler: wot - {C2A44D6B-CB9F-4663-88A6-DF2F26E4D952} - c:\program files\wot\WOT.dll
    Notify: igfxcui - igfxdev.dll
    Notify: LBTWlgn - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
    SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
    .
    ================= FIREFOX ===================
    .
    FF - ProfilePath - c:\documents and settings\atinker\application data\mozilla\firefox\profiles\at0tu0ks.default\
    FF - plugin: c:\documents and settings\atinker\application data\move networks\plugins\npqmp071503000010.dll
    FF - plugin: c:\documents and settings\atinker\application data\move networks\plugins\npqmp071701000002.dll
    FF - plugin: c:\program files\adobe\reader 9.0\reader\air\nppdf32.dll
    FF - plugin: c:\program files\microsoft silverlight\5.1.10411.0\npctrlui.dll
    FF - plugin: c:\program files\mozilla firefox\plugins\nppopcaploader.dll
    FF - plugin: c:\program files\oracle\javafx 2.1 runtime\bin\plugin2\npjp2.dll
    FF - plugin: c:\windows\system32\npDeployJava1.dll
    FF - plugin: c:\windows\system32\npptools.dll
    FF - ExtSQL: !HIDDEN! 2009-09-02 03:01; {20a82645-c095-46ed-80e3-08825760534b}; c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\DotNetAssistantExtension
    .
    ============= SERVICES / DRIVERS ===============
    .
    R0 mfehidk;McAfee Inc. mfehidk;c:\windows\system32\drivers\mfehidk.sys [2011-1-4 386840]
    R1 mfetdi2k;McAfee Inc. mfetdi2k;c:\windows\system32\drivers\mfetdi2k.sys [2011-1-4 84072]
    R2 LBeepKE;LBeepKE;c:\windows\system32\drivers\LBeepKE.sys [2010-1-20 10384]
    R2 McrdSvc;Media Center Extender Service;c:\windows\ehome\mcrdsvc.exe [2005-8-5 99328]
    R2 mfefire;McAfee Firewall Core Service;c:\program files\common files\mcafee\systemcore\mfefire.exe [2011-1-4 188136]
    R2 mfevtp;McAfee Validation Trust Protection Service;c:\windows\system32\mfevtps.exe [2011-1-4 141792]
    R3 BCMH43XX;N+ Wireless USB Adapter Driver;c:\windows\system32\drivers\bcmwlhigh5.sys [2012-7-29 642432]
    R3 mfeavfk;McAfee Inc. mfeavfk;c:\windows\system32\drivers\mfeavfk.sys [2011-1-4 152960]
    R3 mfefirek;McAfee Inc. mfefirek;c:\windows\system32\drivers\mfefirek.sys [2011-1-4 313288]
    R3 mfendiskmp;mfendiskmp;c:\windows\system32\drivers\mfendisk.sys [2011-1-4 88544]
    S1 A2DDA;A2 Direct Disk Access Support Driver;\??\c:\documents and settings\atinker\desktop\emsisoftemergencykit\run\a2ddax86.sys --> c:\documents and settings\atinker\desktop\emsisoftemergencykit\run\a2ddax86.sys [?]
    S2 McMPFSvc;McAfee Personal Firewall Service;c:\program files\common files\mcafee\mcsvchost\McSvHost.exe [2011-1-4 271480]
    S2 McNaiAnn;McAfee VirusScan Announcer;c:\program files\common files\mcafee\mcsvchost\McSvHost.exe [2011-1-4 271480]
    S2 McProxy;McAfee Proxy Service;c:\program files\common files\mcafee\mcsvchost\McSvHost.exe [2011-1-4 271480]
    S2 McShield;McShield;c:\program files\common files\mcafee\systemcore\mcshield.exe [2011-1-4 171168]
    S3 BBSvc;Bing Bar Update Service;c:\program files\microsoft\bingbar\BBSvc.EXE [2011-2-28 183560]
    S3 cfwids;McAfee Inc. cfwids;c:\windows\system32\drivers\cfwids.sys [2011-1-4 55840]
    S3 LEqdUsb;Logitech SetPoint Unifying KMDF USB Filter;c:\windows\system32\drivers\LEqdUsb.sys [2009-6-17 40720]
    S3 LHidEqd;Logitech SetPoint Unifying KMDF HID Filter;c:\windows\system32\drivers\LHidEqd.sys [2009-6-17 10384]
    S3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files\mcafee security scan\2.0.181\McCHSvc.exe [2010-1-15 227232]
    S3 mfebopk;McAfee Inc. mfebopk;c:\windows\system32\drivers\mfebopk.sys [2011-1-4 52104]
    S3 mfendisk;McAfee Core NDIS Intermediate Filter;c:\windows\system32\drivers\mfendisk.sys [2011-1-4 88544]
    S3 mferkdet;McAfee Inc. mferkdet;c:\windows\system32\drivers\mferkdet.sys [2011-1-4 84264]
    S3 PSI;PSI;c:\windows\system32\drivers\psi_mf.sys [2010-7-7 14904]
    .
    =============== Created Last 30 ================
    .
    2012-11-01 00:52:21 69632 -c--a-w- c:\windows\system32\dllcache\ehresko.dll
    2012-11-01 00:52:20 73728 -c--a-w- c:\windows\system32\dllcache\ehresja.dll
    2012-11-01 00:52:20 69632 -c--a-w- c:\windows\system32\dllcache\ehresfr.dll
    2012-11-01 00:52:19 69632 -c--a-w- c:\windows\system32\dllcache\ehresde.dll
    2012-11-01 00:52:08 61440 -c--a-w- c:\windows\system32\dllcache\ehreschs.dll
    2012-11-01 00:50:59 30208 -c--a-w- c:\windows\system32\dllcache\sm87w.dll
    2012-11-01 00:49:59 98304 -c--a-w- c:\windows\system32\dllcache\msir3jp.dll
    2012-11-01 00:48:58 39936 -c--a-w- c:\windows\system32\dllcache\hostmib.dll
    2012-11-01 00:47:58 19456 -c--a-w- c:\windows\system32\dllcache\agt0804.dll
    2012-11-01 00:43:23 16384 -c--a-w- c:\windows\system32\dllcache\isignup.exe
    2012-11-01 00:43:23 16384 ----a-w- c:\program files\internet explorer\connection wizard\isignup.exe
    2012-11-01 00:42:34 32768 -c--a-w- c:\windows\system32\dllcache\icwdl.dll
    2012-11-01 00:42:34 32768 ----a-w- c:\program files\internet explorer\connection wizard\icwdl.dll
    2012-11-01 00:42:33 20480 -c--a-w- c:\windows\system32\dllcache\inetwiz.exe
    2012-11-01 00:42:33 20480 ----a-w- c:\program files\internet explorer\connection wizard\inetwiz.exe
    2012-11-01 00:42:32 86016 -c--a-w- c:\windows\system32\dllcache\icwconn2.exe
    2012-11-01 00:42:32 86016 ----a-w- c:\program files\internet explorer\connection wizard\icwconn2.exe
    2012-11-01 00:42:32 214528 -c--a-w- c:\windows\system32\dllcache\icwconn1.exe
    2012-11-01 00:42:32 214528 ----a-w- c:\program files\internet explorer\connection wizard\icwconn1.exe
    2012-11-01 00:20:52 24661 -c--a-w- c:\windows\system32\dllcache\spxcoins.dll
    2012-11-01 00:20:52 24661 ----a-w- c:\windows\system32\spxcoins.dll
    2012-11-01 00:20:52 13312 -c--a-w- c:\windows\system32\dllcache\irclass.dll
    2012-11-01 00:20:52 13312 ----a-w- c:\windows\system32\irclass.dll
    2012-10-31 20:06:23 -------- d-----w- c:\windows\dell
    .
    ==================== Find3M ====================
    .
    2012-09-30 00:54:26 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
    .
    ============= FINISH: 16:50:17.65 ===============
  7. Jay Pfoutz

    Jay Pfoutz Malware Helper Posts: 4,286   +49

    Hello, and welcome to TechSpot.


    [​IMG] Please see here for the board rules and other FAQ.

    Please feel free to introduce yourself, after you follow the steps below to get started.

    Information
    • From this point on, please do not make any more changes to your computer; such as install/uninstall programs, use special fix tools, delete files, edit the registry, etc. - unless advised by a malware removal helper.
    • Please do not ask for help elsewhere (in this site or other sites). Doing so can result in system changes, which may not show up in the logs you post.
    • If you have already asked for help somewhere, please post the link to the topic you were helped.
    • We try our best to reply quickly, but for any reason we do not reply in two days, please reply to this topic with the word BUMP!
    • Lastly, keep in mind that we are volunteers, so you do not have to pay for malware removal. Persist in this topic until its close, and your computer is declared clean.


    ComboFix scan

    Please download ComboFix[​IMG] by sUBs
    From BleepingComputer.com

    Please save the file to your Desktop.

    Important information about ComboFix


    After the download:
    • Close any open browsers.
    • Very Important: Temporarily disable your anti-virus, script blocking and any anti-malware real-time protection before performing a scan. They can interfere with ComboFix or remove some of its embedded files which may cause "unpredictable results". Please visit here if you don't know how.
    • WARNING: Combofix will disconnect your machine from the Internet as soon as it starts
    • Please do not attempt to re-connect your machine back to the Internet until ComboFix has completely finished.
    • If there is no Internet connection after running ComboFix, then restart your computer to restore back your connection.
    Running ComboFix:
    • Double click on ComboFix.exe & follow the prompts.
    • When ComboFix finishes, it will produce a report for you.
    • Please post the report, which will launch or be found at "C:\Combo-Fix.txt" in your next reply.
    Troubleshooting ComboFix

    Safe Mode:

    If you still cannot get ComboFix to run, try booting into Safe Mode, and run it there.

    (To boot into Safe Mode, tap F8 after BIOS, and just before the Windows
    logo appears. A list of options will appear, select "Safe Mode.")

    Re-downloading:

    If this doesn't work either, try the same method (above method), but try to download it again, except name
    ComboFix.exe to iexplore.exe, explorer.exe, or winlogon.exe.

    Malware is known for blocking all "user" processes, except for its whitelist of system important processes such as iexplore.exe, explorer.exe, winlogon.exe.

    NOTE: If you encounter a message "illegal operation attempted on registry key that has been marked for deletion" and no programs will run - please just reboot and that will resolve that error.
  8. Sprinter

    Sprinter Newcomer, in training Topic Starter Posts: 59

    ComboFix 12-11-09.02 - atinker 11/10/2012 2:35.4.2 - x86
    Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.1022.679 [GMT -5:00]
    Running from: c:\documents and settings\atinker\My Documents\Downloads\ComboFix.exe
    .
    .
    ((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    c:\docume~1\atinker\LOCALS~1\Temp\clclean.0001.dir.0000\~df394b.tmp
    c:\documents and settings\All Users\Application Data\twabt.pad
    c:\documents and settings\atinker\Local Settings\temp\clclean.0001.dir.0000\~df394b.tmp
    .
    .
    ((((((((((((((((((((((((( Files Created from 2012-10-10 to 2012-11-10 )))))))))))))))))))))))))))))))
    .
    .
    2012-11-09 21:56 . 2012-11-09 21:56 -------- d--h--w- c:\windows\PIF
    2012-11-01 00:52 . 2004-08-10 08:13 69632 -c--a-w- c:\windows\system32\dllcache\ehresko.dll
    2012-11-01 00:52 . 2004-08-10 08:13 73728 -c--a-w- c:\windows\system32\dllcache\ehresja.dll
    2012-11-01 00:52 . 2004-08-10 08:13 69632 -c--a-w- c:\windows\system32\dllcache\ehresfr.dll
    2012-11-01 00:52 . 2004-08-10 08:13 69632 -c--a-w- c:\windows\system32\dllcache\ehresde.dll
    2012-11-01 00:52 . 2004-08-10 08:13 61440 -c--a-w- c:\windows\system32\dllcache\ehreschs.dll
    2012-11-01 00:50 . 2004-08-10 11:00 30208 -c--a-w- c:\windows\system32\dllcache\sm87w.dll
    2012-11-01 00:49 . 2004-08-10 11:00 98304 -c--a-w- c:\windows\system32\dllcache\msir3jp.dll
    2012-11-01 00:48 . 2004-08-10 11:00 39936 -c--a-w- c:\windows\system32\dllcache\hostmib.dll
    2012-11-01 00:47 . 2004-08-10 11:00 19456 -c--a-w- c:\windows\system32\dllcache\agt0804.dll
    2012-11-01 00:43 . 2004-08-10 11:00 16384 -c--a-w- c:\windows\system32\dllcache\isignup.exe
    2012-11-01 00:43 . 2004-08-10 11:00 16384 ----a-w- c:\program files\Internet Explorer\Connection Wizard\isignup.exe
    2012-11-01 00:42 . 2004-08-10 11:00 32768 -c--a-w- c:\windows\system32\dllcache\icwdl.dll
    2012-11-01 00:42 . 2004-08-10 11:00 32768 ----a-w- c:\program files\Internet Explorer\Connection Wizard\icwdl.dll
    2012-11-01 00:42 . 2004-08-10 11:00 20480 -c--a-w- c:\windows\system32\dllcache\inetwiz.exe
    2012-11-01 00:42 . 2004-08-10 11:00 20480 ----a-w- c:\program files\Internet Explorer\Connection Wizard\inetwiz.exe
    2012-11-01 00:42 . 2004-08-10 11:00 86016 -c--a-w- c:\windows\system32\dllcache\icwconn2.exe
    2012-11-01 00:42 . 2004-08-10 11:00 86016 ----a-w- c:\program files\Internet Explorer\Connection Wizard\icwconn2.exe
    2012-11-01 00:42 . 2004-08-10 11:00 214528 -c--a-w- c:\windows\system32\dllcache\icwconn1.exe
    2012-11-01 00:42 . 2004-08-10 11:00 214528 ----a-w- c:\program files\Internet Explorer\Connection Wizard\icwconn1.exe
    2012-11-01 00:20 . 2004-08-10 11:00 24661 -c--a-w- c:\windows\system32\dllcache\spxcoins.dll
    2012-11-01 00:20 . 2004-08-10 11:00 24661 ----a-w- c:\windows\system32\spxcoins.dll
    2012-11-01 00:20 . 2004-08-10 11:00 13312 -c--a-w- c:\windows\system32\dllcache\irclass.dll
    2012-11-01 00:20 . 2004-08-10 11:00 13312 ----a-w- c:\windows\system32\irclass.dll
    2012-10-31 20:06 . 2012-10-31 20:06 -------- d-----w- c:\windows\dell
    .
    .
    .
    (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2012-09-30 00:54 . 2010-10-30 00:14 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
    2012-09-07 03:22 . 2012-09-07 03:22 266720 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
    2010-10-14 03:28 . 2012-09-07 03:22 24376 ----a-w- c:\program files\mozilla firefox\components\Scriptff.dll
    .
    .
    ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Note* empty entries & legit default entries are not shown
    REGEDIT4
    .
    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "SetDefaultMIDI"="MIDIDef.exe" [2004-12-22 24576]
    "swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-07-25 68856]
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "ehTray"="c:\windows\ehome\ehtray.exe" [2004-08-10 59392]
    "ATIPTA"="c:\program files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2005-08-06 344064]
    "DMXLauncher"="c:\program files\Dell\Media Experience\DMXLauncher.exe" [2006-05-03 98304]
    "CTSysVol"="c:\program files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe" [2005-09-15 57344]
    "MBMon"="CTMBHA.DLL" [2005-05-19 1345520]
    "VoiceCenter"="c:\program files\Creative\VoiceCenter\AndreaVC.exe" [2005-09-19 1159168]
    "ISUSPM Startup"="c:\program files\Common Files\InstallShield\UpdateService\isuspm.exe" [2005-06-10 249856]
    "ISUSScheduler"="c:\program files\Common Files\InstallShield\UpdateService\issch.exe" [2005-06-10 81920]
    "DLA"="c:\windows\System32\DLA\DLACTRLW.EXE" [2005-09-08 122940]
    "QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2009-01-05 413696]
    "AOLDialer"="c:\program files\Common Files\AOL\ACS\AOLDial.exe" [2004-04-07 496752]
    "mcagent_exe"="c:\program files\McAfee.com\Agent\mcagent.exe" [2010-11-22 1193848]
    "Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [2009-06-17 55824]
    "Microsoft Default Manager"="c:\program files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" [2009-07-17 288080]
    "igfxtray"="c:\windows\system32\igfxtray.exe" [2005-10-15 94208]
    "igfxhkcmd"="c:\windows\system32\hkcmd.exe" [2005-10-15 77824]
    "igfxpers"="c:\windows\system32\igfxpers.exe" [2005-10-15 114688]
    "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-01-17 252296]
    "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2012-07-31 38872]
    "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-07-11 919008]
    "SigmatelSysTrayApp"="stsystra.exe" [2005-03-23 339968]
    .
    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
    "tscuninstall"="c:\windows\system32\tscupgrd.exe" [2004-08-10 44544]
    .
    c:\documents and settings\All Users\Start Menu\Programs\Startup\
    Digital Line Detect.lnk - c:\program files\Digital Line Detect\DLG.exe [2006-8-21 24576]
    Logitech SetPoint.lnk - c:\program files\Logitech\SetPoint\SetPoint.exe [2010-1-20 813584]
    McAfee Security Scan Plus.lnk - c:\program files\McAfee Security Scan\2.0.181\SSScheduler.exe [2010-1-15 255536]
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LBTWlgn]
    2009-07-20 17:28 72208 ----a-w- c:\program files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll
    .
    [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
    BootExecute REG_MULTI_SZ autocheck autochk *\0sprestrt\0sprestrt\0sprestrt
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
    @=""
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
    @=""
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]
    @=""
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
    2009-01-06 18:06 290088 ----a-w- c:\program files\iTunes\iTunesHelper.exe
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr]
    2007-10-18 15:34 5724184 ----a-w- c:\program files\Windows Live\Messenger\msnmsgr.exe
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NapsterShell]
    2006-06-29 18:17 319488 ----a-w- c:\program files\Napster\napster.exe
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeAntiVirus]
    "DisableMonitoring"=dword:00000001
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeFirewall]
    "DisableMonitoring"=dword:00000001
    .
    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
    "%windir%\\system32\\sessmgr.exe"=
    .
    R1 mfetdi2k;McAfee Inc. mfetdi2k;c:\windows\system32\drivers\mfetdi2k.sys [1/4/2011 2:28 PM 84072]
    R2 LBeepKE;LBeepKE;c:\windows\system32\drivers\LBeepKE.sys [1/20/2010 4:20 PM 10384]
    R2 mfefire;McAfee Firewall Core Service;c:\program files\Common Files\McAfee\SystemCore\mfefire.exe [1/4/2011 2:29 PM 188136]
    R2 mfevtp;McAfee Validation Trust Protection Service;c:\windows\system32\mfevtps.exe [1/4/2011 2:28 PM 141792]
    R3 BCMH43XX;N+ Wireless USB Adapter Driver;c:\windows\system32\drivers\bcmwlhigh5.sys [7/29/2012 8:26 PM 642432]
    R3 mfefirek;McAfee Inc. mfefirek;c:\windows\system32\drivers\mfefirek.sys [1/4/2011 2:28 PM 313288]
    R3 mfendiskmp;mfendiskmp;c:\windows\system32\drivers\mfendisk.sys [1/4/2011 2:28 PM 88544]
    S1 A2DDA;A2 Direct Disk Access Support Driver;\??\c:\documents and settings\atinker\Desktop\EmsisoftEmergencyKit\Run\a2ddax86.sys --> c:\documents and settings\atinker\Desktop\EmsisoftEmergencyKit\Run\a2ddax86.sys [?]
    S2 McMPFSvc;McAfee Personal Firewall Service;"c:\program files\Common Files\Mcafee\McSvcHost\McSvHost.exe" /McCoreSvc [1/4/2011 2:28 PM 271480]
    S2 McNaiAnn;McAfee VirusScan Announcer;"c:\program files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc [1/4/2011 2:28 PM 271480]
    S3 BBSvc;Bing Bar Update Service;c:\program files\Microsoft\BingBar\BBSvc.EXE [2/28/2011 5:44 PM 183560]
    S3 cfwids;McAfee Inc. cfwids;c:\windows\system32\drivers\cfwids.sys [1/4/2011 2:28 PM 55840]
    S3 LEqdUsb;Logitech SetPoint Unifying KMDF USB Filter;c:\windows\system32\drivers\LEqdUsb.sys [6/17/2009 11:55 AM 40720]
    S3 LHidEqd;Logitech SetPoint Unifying KMDF HID Filter;c:\windows\system32\drivers\LHidEqd.sys [6/17/2009 11:55 AM 10384]
    S3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files\McAfee Security Scan\2.0.181\McCHSvc.exe [1/15/2010 7:49 AM 227232]
    S3 mfendisk;McAfee Core NDIS Intermediate Filter;c:\windows\system32\drivers\mfendisk.sys [1/4/2011 2:28 PM 88544]
    S3 mferkdet;McAfee Inc. mferkdet;c:\windows\system32\drivers\mferkdet.sys [1/4/2011 2:28 PM 84264]
    S3 PSI;PSI;c:\windows\system32\drivers\psi_mf.sys [7/7/2010 9:05 AM 14904]
    .
    Contents of the 'Scheduled Tasks' folder
    .
    2012-11-05 c:\windows\Tasks\AppleSoftwareUpdate.job
    - c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 17:34]
    .
    .
    ------- Supplementary Scan -------
    .
    uStart Page = hxxp://www.google.com/
    uSearch Page = hxxp://www.google.com
    uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
    uSearch Bar = hxxp://www.google.com/ie
    uInternet Settings,ProxyOverride = *.local
    uSearchAssistant = hxxp://www.google.com/ie
    uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
    IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    TCP: DhcpNameServer = 192.168.1.1 192.168.1.1
    FF - ProfilePath - c:\documents and settings\atinker\Application Data\Mozilla\Firefox\Profiles\at0tu0ks.default\
    FF - ExtSQL: !HIDDEN! 2009-09-02 03:01; {20a82645-c095-46ed-80e3-08825760534b}; c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
    .
    .
    **************************************************************************
    .
    catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
    Rootkit scan 2012-11-10 02:47
    Windows 5.1.2600 Service Pack 2 NTFS
    .
    scanning hidden processes ...
    .
    scanning hidden autostart entries ...
    .
    scanning hidden files ...
    .
    scan completed successfully
    hidden files: 0
    .
    **************************************************************************
    .
    --------------------- DLLs Loaded Under Running Processes ---------------------
    .
    - - - - - - - > 'winlogon.exe'(1024)
    c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
    c:\program files\common files\logishrd\bluetooth\LBTServ.dll
    c:\windows\system32\igfxdev.dll
    .
    Completion time: 2012-11-10 02:51:09
    ComboFix-quarantined-files.txt 2012-11-10 07:51
    .
    Pre-Run: 32,612,196,352 bytes free
    Post-Run: 32,572,018,688 bytes free
    .
    - - End Of File - - F7F798CC4634245F13AA918E6E063503
  9. Jay Pfoutz

    Jay Pfoutz Malware Helper Posts: 4,286   +49

    Adware Cleaning

    Please download AdwCleaner by Xplode onto your Desktop.
    • Double click on AdwCleaner.exe to run the tool.
    • Click on Delete.
    • A logfile will automatically open after the scan has finished.
    • Please post the content of that logfile in your reply.
    • You can find the logfile at C:\AdwCleaner[Rn].txt as well - n is the order number.



    TDSSKiller Scan

    Please download and run TDSSKiller to your desktop as outlined below:

    Doubleclick on TDSSKiller.exe to run the application, then click on Change parameters.

    For Windows XP, double-click to start.
    For Vista or Windows 7, do a right-click on the program, select Run as Administrator to start, & when prompted Allow to run.

    [​IMG]

    -------------------------

    Check the boxes beside Verify Driver Digital Signature and Detect TDLFS file system, then click OK.

    [​IMG]

    ------------------------

    Click the Start Scan button.

    [​IMG]

    -----------------------

    If a suspicious object is detected, the default action will be Skip, click on Continue
    If you get the warning about a file UnsignedFile.Multi.Generic or LockedFile.Multi.Generic please choose
    Skip and click on Continue


    [​IMG]

    ----------------------

    If malicious objects are found, they will show in the Scan results and offer three (3) options.

    Ensure Cure is selected, then click Continue => Reboot now to finish the cleaning process.
    Note: If Cure is not available, please choose Skip instead, do not choose Delete unless instructed.


    [​IMG]


    --------------------

    A report will be created in your root directory, (usually C:\ folder) in the form of "TDSSKiller.[Version]_[Date]_[Time]_log.txt". Please copy and paste its contents on your next reply.
    Sometimes these logs can be very large, in that case please attach it or zip it up and attach it.

    -------------------

    Here's a summary of what to do if you would like to print it out:

    If a suspicious object is detected, the default action will be Skip, click on Continue
    If you get the warning about a file UnsignedFile.Multi.Generic or LockedFile.Multi.Generic please choose
    Skip and click on Continue

    If malicious objects are found, they will show in the Scan results and offer three (3) options.

    Ensure Cure is selected, then click Continue => Reboot now to finish the cleaning process.
    Note: If Cure is not available, please choose Skip instead, do not choose Delete unless instructed.
  10. Sprinter

    Sprinter Newcomer, in training Topic Starter Posts: 59

    # AdwCleaner v2.007 - Logfile created 11/14/2012 at 10:19:17
    # Updated 06/11/2012 by Xplode
    # Operating system : Microsoft Windows XP Service Pack 2 (32 bits)
    # User : atinker - TINKER
    # Boot Mode : Normal
    # Running from : C:\Documents and Settings\atinker\My Documents\Downloads\adwcleaner.exe
    # Option [Delete]


    ***** [Services] *****


    ***** [Files / Folders] *****


    ***** [Registry] *****

    Key Deleted : HKCU\Software\Viewpoint
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{CD95D125-2992-4858-B3EF-5F6FB52FBAD6}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{03F998B2-0E00-11D3-A498-00104B6EB52E}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}
    Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Viewpoint Manager
    Key Deleted : HKLM\Software\Viewpoint

    ***** [Internet Browsers] *****

    -\\ Internet Explorer v6.0.2900.2180

    [OK] Registry is clean.

    -\\ Mozilla Firefox v15.0 (en-US)

    Profile name : default
    File : C:\Documents and Settings\atinker\Application Data\Mozilla\Firefox\Profiles\at0tu0ks.default\prefs.js

    [OK] File is clean.

    *************************

    AdwCleaner[S1].txt - [1270 octets] - [14/11/2012 10:19:17]

    ########## EOF - C:\AdwCleaner[S1].txt - [1330 octets] ##########
  11. Sprinter

    Sprinter Newcomer, in training Topic Starter Posts: 59

    10:25:51.0453 0348 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35
    10:25:52.0015 0348 ============================================================
    10:25:52.0015 0348 Current date / time: 2012/11/14 10:25:52.0015
    10:25:52.0015 0348 SystemInfo:
    10:25:52.0015 0348
    10:25:52.0015 0348 OS Version: 5.1.2600 ServicePack: 2.0
    10:25:52.0015 0348 Product type: Workstation
    10:25:52.0015 0348 ComputerName: TINKER
    10:25:52.0015 0348 UserName: atinker
    10:25:52.0015 0348 Windows directory: C:\WINDOWS
    10:25:52.0015 0348 System windows directory: C:\WINDOWS
    10:25:52.0015 0348 Processor architecture: Intel x86
    10:25:52.0015 0348 Number of processors: 2
    10:25:52.0015 0348 Page size: 0x1000
    10:25:52.0015 0348 Boot type: Normal boot
    10:25:52.0015 0348 ============================================================
    10:25:53.0484 0348 Drive \Device\Harddisk0\DR0 - Size: 0x12A05F2000 (74.51 Gb), SectorSize: 0x200, Cylinders: 0x25FE, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
    10:25:53.0484 0348 ============================================================
    10:25:53.0484 0348 \Device\Harddisk0\DR0:
    10:25:53.0484 0348 MBR partitions:
    10:25:53.0484 0348 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1B747, BlocksNum 0x8B966D7
    10:25:53.0484 0348 ============================================================
    10:25:53.0531 0348 C: <-> \Device\Harddisk0\DR0\Partition1
    10:25:53.0531 0348 ============================================================
    10:25:53.0531 0348 Initialize success
    10:25:53.0531 0348 ============================================================
    10:26:12.0765 2968 ============================================================
    10:26:12.0765 2968 Scan started
    10:26:12.0765 2968 Mode: Manual; SigCheck; TDLFS;
    10:26:12.0765 2968 ============================================================
    10:26:13.0171 2968 ================ Scan system memory ========================
    10:26:13.0187 2968 System memory - ok
    10:26:13.0187 2968 ================ Scan services =============================
    10:26:13.0312 2968 A2DDA - ok
    10:26:13.0484 2968 Abiosdsk - ok
    10:26:13.0531 2968 [ 6ABB91494FE6C59089B9336452AB2EA3 ] abp480n5 C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS
    10:26:13.0843 2968 abp480n5 - ok
    10:26:13.0890 2968 [ A10C7534F7223F4A73A948967D00E69B ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
    10:26:14.0140 2968 ACPI - ok
    10:26:14.0187 2968 [ 9859C0F6936E723E4892D7141B1327D5 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
    10:26:14.0328 2968 ACPIEC - ok
    10:26:14.0375 2968 [ 9A11864873DA202C996558B2106B0BBC ] adpu160m C:\WINDOWS\system32\DRIVERS\adpu160m.sys
    10:26:14.0531 2968 adpu160m - ok
    10:26:14.0593 2968 [ 841F385C6CFAF66B58FBD898722BB4F0 ] aec C:\WINDOWS\system32\drivers\aec.sys
    10:26:14.0781 2968 aec - ok
    10:26:14.0828 2968 [ 5AC495F4CB807B2B98AD2AD591E6D92E ] AFD C:\WINDOWS\System32\drivers\afd.sys
    10:26:14.0968 2968 AFD - ok
    10:26:15.0015 2968 [ 2C428FA0C3E3A01ED93C9B2A27D8D4BB ] agp440 C:\WINDOWS\system32\DRIVERS\agp440.sys
    10:26:15.0156 2968 agp440 - ok
    10:26:15.0171 2968 [ 67288B07D6ABA6C1267B626E67BC56FD ] agpCPQ C:\WINDOWS\system32\DRIVERS\agpCPQ.sys
    10:26:15.0328 2968 agpCPQ - ok
    10:26:15.0343 2968 [ C23EA9B5F46C7F7910DB3EAB648FF013 ] Aha154x C:\WINDOWS\system32\DRIVERS\aha154x.sys
    10:26:15.0406 2968 Aha154x - ok
    10:26:15.0437 2968 [ 19DD0FB48B0C18892F70E2E7D61A1529 ] aic78u2 C:\WINDOWS\system32\DRIVERS\aic78u2.sys
    10:26:15.0593 2968 aic78u2 - ok
    10:26:15.0640 2968 [ B7FE594A7468AA0132DEB03FB8E34326 ] aic78xx C:\WINDOWS\system32\DRIVERS\aic78xx.sys
    10:26:15.0796 2968 aic78xx - ok
    10:26:15.0843 2968 [ C7AE0FD3867DB0D42B03B73C18F3D671 ] Alerter C:\WINDOWS\system32\alrsvc.dll
    10:26:15.0984 2968 Alerter - ok
    10:26:16.0031 2968 [ F1958FBF86D5C004CF19A5951A9514B7 ] ALG C:\WINDOWS\System32\alg.exe
    10:26:16.0109 2968 ALG - ok
    10:26:16.0125 2968 [ 1140AB9938809700B46BB88E46D72A96 ] AliIde C:\WINDOWS\system32\DRIVERS\aliide.sys
    10:26:16.0265 2968 AliIde - ok
    10:26:16.0312 2968 [ F312B7CEF21EFF52FA23056B9D815FAD ] alim1541 C:\WINDOWS\system32\DRIVERS\alim1541.sys
    10:26:16.0453 2968 alim1541 - ok
    10:26:16.0468 2968 [ 675C16A3C1F8482F85EE4A97FC0DDE3D ] amdagp C:\WINDOWS\system32\DRIVERS\amdagp.sys
    10:26:16.0625 2968 amdagp - ok
    10:26:16.0656 2968 [ 79F5ADD8D24BD6893F2903A3E2F3FAD6 ] amsint C:\WINDOWS\system32\DRIVERS\amsint.sys
    10:26:16.0734 2968 amsint - ok
    10:26:16.0875 2968 [ 8FA646F0E639D9A8C8B98E217D471DC0 ] AOL ACS C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    10:26:16.0953 2968 AOL ACS - ok
    10:26:17.0109 2968 [ A8AA9D47F971570A5162B862B80F87E8 ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    10:26:17.0125 2968 Apple Mobile Device - ok
    10:26:17.0187 2968 [ 9C3C12975C97119412802B181FBEEFFE ] AppMgmt C:\WINDOWS\System32\appmgmts.dll
    10:26:17.0265 2968 AppMgmt - ok
    10:26:17.0281 2968 [ 62D318E9A0C8FC9B780008E724283707 ] asc C:\WINDOWS\system32\DRIVERS\asc.sys
    10:26:17.0421 2968 asc - ok
    10:26:17.0437 2968 [ 69EB0CC7714B32896CCBFD5EDCBEA447 ] asc3350p C:\WINDOWS\system32\DRIVERS\asc3350p.sys
    10:26:17.0515 2968 asc3350p - ok
    10:26:17.0546 2968 [ 5D8DE112AA0254B907861E9E9C31D597 ] asc3550 C:\WINDOWS\system32\DRIVERS\asc3550.sys
    10:26:17.0703 2968 asc3550 - ok
    10:26:17.0734 2968 [ D880831279ED91F9A4190A2DB9539EA9 ] ASCTRM C:\WINDOWS\system32\drivers\ASCTRM.sys
    10:26:17.0750 2968 ASCTRM ( UnsignedFile.Multi.Generic ) - warning
    10:26:17.0750 2968 ASCTRM - detected UnsignedFile.Multi.Generic (1)
    10:26:17.0921 2968 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
    10:26:17.0937 2968 aspnet_state - ok
    10:26:17.0984 2968 [ 02000ABF34AF4C218C35D257024807D6 ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
    10:26:18.0171 2968 AsyncMac - ok
    10:26:18.0203 2968 [ CDFE4411A69C224BD1D11B2DA92DAC51 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
    10:26:18.0375 2968 atapi - ok
    10:26:18.0390 2968 Atdisk - ok
    10:26:18.0421 2968 [ ABC57A6F6070BAF9786C318F59F29F0B ] Ati HotKey Poller C:\WINDOWS\system32\Ati2evxx.exe
    10:26:18.0515 2968 Ati HotKey Poller - ok
    10:26:18.0593 2968 [ 03621F7F968FF63713943405DEB777F9 ] ati2mtag C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
    10:26:18.0656 2968 ati2mtag - ok
    10:26:18.0703 2968 [ EC88DA854AB7D7752EC8BE11A741BB7F ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
    10:26:18.0906 2968 Atmarpc - ok
    10:26:18.0953 2968 [ DB66DB626E4882EBEF55F136F12C1829 ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
    10:26:19.0125 2968 AudioSrv - ok
    10:26:19.0156 2968 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
    10:26:19.0296 2968 audstub - ok
    10:26:19.0421 2968 [ 825F81A6F7DD073509DB101F0BA6DC59 ] BBSvc C:\Program Files\Microsoft\BingBar\BBSvc.EXE
    10:26:19.0437 2968 BBSvc - ok
    10:26:19.0500 2968 [ B770039886598AAB7CF5EAEEC2409E31 ] BCMH43XX C:\WINDOWS\system32\DRIVERS\bcmwlhigh5.sys
    10:26:19.0609 2968 BCMH43XX - ok
    10:26:19.0703 2968 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
    10:26:19.0859 2968 Beep - ok
    10:26:19.0968 2968 [ 2C69EC7E5A311334D10DD95F338FCCEA ] BITS C:\WINDOWS\system32\qmgr.dll
    10:26:20.0140 2968 BITS - ok
    10:26:20.0203 2968 [ 3F56903E124E820AEECE6D471583C6C1 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
    10:26:20.0218 2968 Bonjour Service - ok
    10:26:20.0265 2968 [ E3CFCCDDA4EDD1D0DC9168B2E18F27B8 ] Browser C:\WINDOWS\System32\browser.dll
    10:26:20.0406 2968 Browser - ok
    10:26:20.0421 2968 bvrp_pci - ok
    10:26:20.0515 2968 catchme - ok
    10:26:20.0562 2968 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf C:\WINDOWS\system32\DRIVERS\cbidf2k.sys
    10:26:20.0703 2968 cbidf - ok
    10:26:20.0718 2968 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
    10:26:20.0859 2968 cbidf2k - ok
    10:26:20.0890 2968 [ F3EC03299634490E97BBCE94CD2954C7 ] cd20xrnt C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys
    10:26:20.0953 2968 cd20xrnt - ok
    10:26:21.0000 2968 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
    10:26:21.0171 2968 Cdaudio - ok
    10:26:21.0218 2968 [ CD7D5152DF32B47F4E36F710B35AAE02 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
    10:26:21.0375 2968 Cdfs - ok
    10:26:21.0437 2968 [ 814ACB9B8A55804D9878248B3C79F862 ] Cdr4_xp C:\WINDOWS\system32\drivers\Cdr4_xp.sys
    10:26:21.0453 2968 Cdr4_xp ( UnsignedFile.Multi.Generic ) - warning
    10:26:21.0453 2968 Cdr4_xp - detected UnsignedFile.Multi.Generic (1)
    10:26:21.0484 2968 [ BCE7213F8AA1BC9D5C08F81CB05E10A7 ] Cdralw2k C:\WINDOWS\system32\drivers\Cdralw2k.sys
    10:26:21.0515 2968 Cdralw2k ( UnsignedFile.Multi.Generic ) - warning
    10:26:21.0515 2968 Cdralw2k - detected UnsignedFile.Multi.Generic (1)
    10:26:21.0546 2968 [ AF9C19B3100FE010496B1A27181FBF72 ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
    10:26:21.0718 2968 Cdrom - ok
    10:26:21.0765 2968 [ 84853B3FD012251690570E9E7E43343F ] cercsr6 C:\WINDOWS\system32\drivers\cercsr6.sys
    10:26:21.0765 2968 cercsr6 ( UnsignedFile.Multi.Generic ) - warning
    10:26:21.0765 2968 cercsr6 - detected UnsignedFile.Multi.Generic (1)
    10:26:21.0828 2968 [ 7E6F7DA1C4DE5680820F964562548949 ] cfwids C:\WINDOWS\system32\drivers\cfwids.sys
    10:26:21.0875 2968 cfwids - ok
    10:26:21.0875 2968 Changer - ok
    10:26:21.0906 2968 [ 3192BD04D032A9C4A85A3278C268A13A ] CiSvc C:\WINDOWS\system32\cisvc.exe
    10:26:22.0046 2968 CiSvc - ok
    10:26:22.0078 2968 [ C8DEC22C4137D7A90F8BDF41CA4B82AE ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
    10:26:22.0218 2968 ClipSrv - ok
    10:26:22.0265 2968 [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
    10:26:22.0296 2968 clr_optimization_v2.0.50727_32 - ok
    10:26:22.0343 2968 [ E5DCB56C533014ECBC556A8357C929D5 ] CmdIde C:\WINDOWS\system32\DRIVERS\cmdide.sys
    10:26:22.0484 2968 CmdIde - ok
    10:26:22.0484 2968 COMSysApp - ok
    10:26:22.0515 2968 [ 3EE529119EED34CD212A215E8C40D4B6 ] Cpqarray C:\WINDOWS\system32\DRIVERS\cpqarray.sys
    10:26:22.0656 2968 Cpqarray - ok
    10:26:22.0703 2968 [ 7DB5E3F44D797BD38B8E336CCC2E49D5 ] Creative Labs Licensing Service C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe
    10:26:22.0718 2968 Creative Labs Licensing Service ( UnsignedFile.Multi.Generic ) - warning
    10:26:22.0718 2968 Creative Labs Licensing Service - detected UnsignedFile.Multi.Generic (1)
    10:26:22.0734 2968 [ 3C8B6609712F4FF78E521F6DCFC4032B ] Creative Service for CDROM Access C:\WINDOWS\system32\CTsvcCDA.exe
    10:26:22.0750 2968 Creative Service for CDROM Access ( UnsignedFile.Multi.Generic ) - warning
    10:26:22.0750 2968 Creative Service for CDROM Access - detected UnsignedFile.Multi.Generic (1)
    10:26:22.0765 2968 [ 10654F9DDCEA9C46CFB77554231BE73B ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
    10:26:22.0906 2968 CryptSvc - ok
    10:26:22.0937 2968 [ 8DB84DE3AAB34A8B4C2F644EFF41CD76 ] ctsfm2k C:\WINDOWS\system32\DRIVERS\ctsfm2k.sys
    10:26:22.0968 2968 ctsfm2k - ok
    10:26:23.0015 2968 [ 4EE8822ADB764EDD28CE44E808097995 ] CTUSFSYN C:\WINDOWS\system32\drivers\ctusfsyn.sys
    10:26:23.0062 2968 CTUSFSYN - ok
    10:26:23.0109 2968 [ E550E7418984B65A78299D248F0A7F36 ] dac2w2k C:\WINDOWS\system32\DRIVERS\dac2w2k.sys
    10:26:23.0250 2968 dac2w2k - ok
    10:26:23.0265 2968 [ 683789CAA3864EB46125AE86FF677D34 ] dac960nt C:\WINDOWS\system32\DRIVERS\dac960nt.sys
    10:26:23.0421 2968 dac960nt - ok
    10:26:23.0468 2968 [ 5C83A4408604F737717AB96371201680 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
    10:26:23.0671 2968 DcomLaunch - ok
    10:26:23.0718 2968 [ CB6CA3E5261D65F6F809EED23BF167AA ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
    10:26:23.0875 2968 Dhcp - ok
    10:26:23.0921 2968 [ 00CA44E4534865F8A3B64F7C0984BFF0 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
    10:26:24.0093 2968 Disk - ok
    10:26:24.0140 2968 [ E2D0DE31442390C35E3163C87CB6A9EB ] DLABOIOM C:\WINDOWS\system32\DLA\DLABOIOM.SYS
    10:26:24.0171 2968 DLABOIOM ( UnsignedFile.Multi.Generic ) - warning
    10:26:24.0171 2968 DLABOIOM - detected UnsignedFile.Multi.Generic (1)
    10:26:24.0171 2968 [ D979BEBCF7EDCC9C9EE1857D1A68C67B ] DLACDBHM C:\WINDOWS\system32\Drivers\DLACDBHM.SYS
    10:26:24.0187 2968 DLACDBHM ( UnsignedFile.Multi.Generic ) - warning
    10:26:24.0187 2968 DLACDBHM - detected UnsignedFile.Multi.Generic (1)
    10:26:24.0218 2968 [ 83545593E297F50A8E2524B4C071A153 ] DLADResN C:\WINDOWS\system32\DLA\DLADResN.SYS
    10:26:24.0218 2968 DLADResN ( UnsignedFile.Multi.Generic ) - warning
    10:26:24.0218 2968 DLADResN - detected UnsignedFile.Multi.Generic (1)
    10:26:24.0234 2968 [ 96E01D901CDC98C7817155CC057001BF ] DLAIFS_M C:\WINDOWS\system32\DLA\DLAIFS_M.SYS
    10:26:24.0265 2968 DLAIFS_M ( UnsignedFile.Multi.Generic ) - warning
    10:26:24.0265 2968 DLAIFS_M - detected UnsignedFile.Multi.Generic (1)
    10:26:24.0296 2968 [ 0A60A39CC5E767980A31CA5D7238DFA9 ] DLAOPIOM C:\WINDOWS\system32\DLA\DLAOPIOM.SYS
    10:26:24.0328 2968 DLAOPIOM ( UnsignedFile.Multi.Generic ) - warning
    10:26:24.0328 2968 DLAOPIOM - detected UnsignedFile.Multi.Generic (1)
    10:26:24.0328 2968 [ 9FE2B72558FC808357F427FD83314375 ] DLAPoolM C:\WINDOWS\system32\DLA\DLAPoolM.SYS
    10:26:24.0343 2968 DLAPoolM ( UnsignedFile.Multi.Generic ) - warning
    10:26:24.0343 2968 DLAPoolM - detected UnsignedFile.Multi.Generic (1)
    10:26:24.0359 2968 [ 7EE0852AE8907689DF25049DCD2342E8 ] DLARTL_N C:\WINDOWS\system32\Drivers\DLARTL_N.SYS
    10:26:24.0375 2968 DLARTL_N ( UnsignedFile.Multi.Generic ) - warning
    10:26:24.0375 2968 DLARTL_N - detected UnsignedFile.Multi.Generic (1)
    10:26:24.0375 2968 [ F08E1DAFAC457893399E03430A6A1397 ] DLAUDFAM C:\WINDOWS\system32\DLA\DLAUDFAM.SYS
    10:26:24.0390 2968 DLAUDFAM ( UnsignedFile.Multi.Generic ) - warning
    10:26:24.0390 2968 DLAUDFAM - detected UnsignedFile.Multi.Generic (1)
    10:26:24.0390 2968 [ E7D105ED1E694449D444A9933DF8E060 ] DLAUDF_M C:\WINDOWS\system32\DLA\DLAUDF_M.SYS
    10:26:24.0421 2968 DLAUDF_M ( UnsignedFile.Multi.Generic ) - warning
    10:26:24.0421 2968 DLAUDF_M - detected UnsignedFile.Multi.Generic (1)
    10:26:24.0421 2968 dmadmin - ok
    10:26:24.0500 2968 [ C0FBB516E06E243F0CF31F597E7EBF7D ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
    10:26:24.0687 2968 dmboot - ok
    10:26:24.0734 2968 [ F5E7B358A732D09F4BCF2824B88B9E28 ] dmio C:\WINDOWS\system32\DRIVERS\dmio.sys
    10:26:24.0890 2968 dmio - ok
    10:26:24.0937 2968 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
    10:26:25.0062 2968 dmload - ok
    10:26:25.0109 2968 [ 1639D9964C9E1B2ECCA95C8217D3E70D ] dmserver C:\WINDOWS\System32\dmserver.dll
    10:26:25.0281 2968 dmserver - ok
    10:26:25.0328 2968 [ A6F881284AC1150E37D9AE47FF601267 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
    10:26:25.0484 2968 DMusic - ok
    10:26:25.0515 2968 [ 7379DE06FD196E396A00AA97B990C00D ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
    10:26:25.0687 2968 Dnscache - ok
    10:26:25.0734 2968 [ 0F0F6E687E5E15579EF4DA8DD6945814 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
    10:26:25.0750 2968 Dot3svc ( UnsignedFile.Multi.Generic ) - warning
    10:26:25.0750 2968 Dot3svc - detected UnsignedFile.Multi.Generic (1)
    10:26:25.0765 2968 [ 40F3B93B4E5B0126F2F5C0A7A5E22660 ] dpti2o C:\WINDOWS\system32\DRIVERS\dpti2o.sys
    10:26:25.0906 2968 dpti2o - ok
    10:26:25.0953 2968 [ 1ED4DBBAE9F5D558DBBA4CC450E3EB2E ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
    10:26:26.0093 2968 drmkaud - ok
    10:26:26.0109 2968 [ FD0F95981FEF9073659D8EC58E40AA3C ] DRVMCDB C:\WINDOWS\system32\Drivers\DRVMCDB.SYS
    10:26:26.0109 2968 DRVMCDB ( UnsignedFile.Multi.Generic ) - warning
    10:26:26.0109 2968 DRVMCDB - detected UnsignedFile.Multi.Generic (1)
    10:26:26.0171 2968 [ B4869D320428CDC5EC4D7F5E808E99B5 ] DRVNDDM C:\WINDOWS\system32\Drivers\DRVNDDM.SYS
    10:26:26.0171 2968 DRVNDDM ( UnsignedFile.Multi.Generic ) - warning
    10:26:26.0171 2968 DRVNDDM - detected UnsignedFile.Multi.Generic (1)
    10:26:26.0281 2968 [ FE80901578E7E3DA70299A5AEB2B7FBD ] DSBrokerService C:\Program Files\DellSupport\brkrsvc.exe
    10:26:26.0296 2968 DSBrokerService - ok
    10:26:26.0328 2968 [ 413F2D5F9D802688242C23B38F767ECB ] DSproct C:\Program Files\DellSupport\GTAction\triggers\DSproct.sys
    10:26:26.0328 2968 DSproct ( UnsignedFile.Multi.Generic ) - warning
    10:26:26.0328 2968 DSproct - detected UnsignedFile.Multi.Generic (1)
    10:26:26.0359 2968 [ DFEABB7CFFFADEA4A912AB95BDC3177A ] dsunidrv C:\WINDOWS\system32\DRIVERS\dsunidrv.sys
    10:26:26.0406 2968 dsunidrv - ok
    10:26:26.0468 2968 [ D57A8FC800B501AC05B10D00F66D127A ] E100B C:\WINDOWS\system32\DRIVERS\e100b325.sys
    10:26:26.0515 2968 E100B - ok
    10:26:26.0562 2968 [ 2187855A7703ADEF0CEF9EE4285182CC ] EapHost C:\WINDOWS\System32\eapsvc.dll
    10:26:26.0578 2968 EapHost ( UnsignedFile.Multi.Generic ) - warning
    10:26:26.0578 2968 EapHost - detected UnsignedFile.Multi.Generic (1)
    10:26:26.0671 2968 [ 5D1347AA5AE6E2F77D7F4F8372D95AC9 ] ehRecvr C:\WINDOWS\eHome\ehRecvr.exe
    10:26:26.0796 2968 ehRecvr - ok
    10:26:26.0812 2968 [ A53243709439AC2A4C216B817F8D7411 ] ehSched C:\WINDOWS\eHome\ehSched.exe
    10:26:26.0921 2968 ehSched - ok
    10:26:26.0953 2968 [ 67DFF7BBBD0E80AAB7B3CF061448DB8A ] ERSvc C:\WINDOWS\System32\ersvc.dll
    10:26:27.0093 2968 ERSvc - ok
    10:26:27.0125 2968 [ C6CE6EEC82F187615D1002BB3BB50ED4 ] Eventlog C:\WINDOWS\system32\services.exe
    10:26:27.0281 2968 Eventlog - ok
    10:26:27.0312 2968 [ ACD36A2DD7D1E9D8A060AA651DC07E63 ] EventSystem C:\WINDOWS\system32\es.dll
    10:26:27.0484 2968 EventSystem - ok
    10:26:27.0562 2968 [ 3117F595E9615E04F05A54FC15A03B20 ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
    10:26:27.0703 2968 Fastfat - ok
    10:26:27.0765 2968 [ E7518DC542D3EBDCB80EDD98462C7821 ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
    10:26:27.0906 2968 FastUserSwitchingCompatibility - ok
    10:26:27.0953 2968 [ FCBD571FA0EE8DC238944AE5FAB74461 ] Fax C:\WINDOWS\system32\fxssvc.exe
    10:26:28.0125 2968 Fax - ok
    10:26:28.0171 2968 [ CED2E8396A8838E59D8FD529C680E02C ] Fdc C:\WINDOWS\system32\DRIVERS\fdc.sys
    10:26:28.0328 2968 Fdc - ok
    10:26:28.0375 2968 [ E153AB8A11DE5452BCF5AC7652DBF3ED ] Fips C:\WINDOWS\system32\drivers\Fips.sys
    10:26:28.0500 2968 Fips - ok
    10:26:28.0546 2968 [ 0DD1DE43115B93F4D85E889D7A86F548 ] Flpydisk C:\WINDOWS\system32\DRIVERS\flpydisk.sys
    10:26:28.0687 2968 Flpydisk - ok
    10:26:28.0750 2968 [ 157754F0DF355A9E0A6F54721914F9C6 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
    10:26:28.0906 2968 FltMgr - ok
    10:26:29.0000 2968 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
    10:26:29.0015 2968 FontCache3.0.0.0 - ok
    10:26:29.0046 2968 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
    10:26:29.0203 2968 Fs_Rec - ok
    10:26:29.0218 2968 [ 6AC26732762483366C3969C9E4D2259D ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
    10:26:29.0359 2968 Ftdisk - ok
    10:26:29.0406 2968 [ AB8A6A87D9D7255C3884D5B9541A6E80 ] GEARAspiWDM C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
    10:26:29.0421 2968 GEARAspiWDM - ok
    10:26:29.0437 2968 [ C0F1D4A21DE5A415DF8170616703DEBF ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
    10:26:29.0593 2968 Gpc - ok
    10:26:29.0671 2968 [ 751C1D2CA2ABF4A9F5A6B8D7D45B907C ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    10:26:29.0687 2968 gusvc - ok
    10:26:29.0750 2968 [ 573C7D0A32852B48F3058CFD8026F511 ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
    10:26:29.0781 2968 HDAudBus ( UnsignedFile.Multi.Generic ) - warning
    10:26:29.0781 2968 HDAudBus - detected UnsignedFile.Multi.Generic (1)
    10:26:29.0859 2968 [ 8827911A8C37E40C027CBFC88E69D967 ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
    10:26:30.0015 2968 helpsvc - ok
    10:26:30.0062 2968 [ 9376E6893E52B368ABC6255BF54F0B28 ] HidServ C:\WINDOWS\System32\hidserv.dll
    10:26:30.0187 2968 HidServ - ok
    10:26:30.0218 2968 [ 1DE6783B918F540149AA69943BDFEBA8 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys
    10:26:30.0359 2968 HidUsb - ok
    10:26:30.0406 2968 [ 8878BD685E490239777BFE51320B88E9 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
    10:26:30.0437 2968 hkmsvc ( UnsignedFile.Multi.Generic ) - warning
    10:26:30.0437 2968 hkmsvc - detected UnsignedFile.Multi.Generic (1)
    10:26:30.0515 2968 [ C5F00D15AA15CB7F55A027FF75E44BB7 ] HP Port Resolver C:\WINDOWS\system32\spool\drivers\w32x86\3\HPBPRO.EXE
    10:26:30.0656 2968 HP Port Resolver - ok
    10:26:30.0703 2968 [ B028377DEA0546A5FCFBA928A8AEFAE0 ] hpn C:\WINDOWS\system32\DRIVERS\hpn.sys
    10:26:30.0828 2968 hpn - ok
    10:26:30.0875 2968 [ 77E4FF0B73BC0AEAAF39BF0C8104231F ] HSFHWBS2 C:\WINDOWS\system32\DRIVERS\HSFHWBS2.sys
    10:26:30.0921 2968 HSFHWBS2 - ok
    10:26:30.0984 2968 [ 60E1604729A15EF4A3B05F298427B3B1 ] HSF_DP C:\WINDOWS\system32\DRIVERS\HSF_DP.sys
    10:26:31.0046 2968 HSF_DP - ok
    10:26:31.0140 2968 [ C19B522A9AE0BBC3293397F3055E80A1 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
    10:26:31.0296 2968 HTTP - ok
    10:26:31.0343 2968 [ 064D8581ADF77C25133E7D751D917D83 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
    10:26:31.0500 2968 HTTPFilter - ok
    10:26:31.0531 2968 [ 8F09F91B5C91363B77BCD15599570F2C ] i2omgmt C:\WINDOWS\system32\drivers\i2omgmt.sys
    10:26:31.0703 2968 i2omgmt - ok
    10:26:31.0734 2968 [ ED6BF9E441FDEA13292A6D30A64A24C3 ] i2omp C:\WINDOWS\system32\DRIVERS\i2omp.sys
    10:26:31.0875 2968 i2omp - ok
    10:26:31.0921 2968 [ 5502B58EEF7486EE6F93F3F164DCB808 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
    10:26:32.0062 2968 i8042prt - ok
    10:26:32.0140 2968 [ 5A8E05F1D5C36ABD58CFFA111EB325EA ] ialm C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
    10:26:32.0250 2968 ialm - ok
    10:26:32.0359 2968 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
    10:26:32.0406 2968 idsvc - ok
    10:26:32.0453 2968 [ F8AA320C6A0409C0380E5D8A99D76EC6 ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
    10:26:32.0609 2968 Imapi - ok
    10:26:32.0656 2968 [ FA788520BCAC0F5D9D5CDE5615C0D931 ] ImapiService C:\WINDOWS\system32\imapi.exe
    10:26:32.0828 2968 ImapiService - ok
    10:26:32.0859 2968 [ 4A40E045FAEE58631FD8D91AFC620719 ] ini910u C:\WINDOWS\system32\DRIVERS\ini910u.sys
    10:26:32.0984 2968 ini910u - ok
    10:26:33.0015 2968 [ 2D722B2B54AB55B2FA475EB58D7B2AAD ] IntelIde C:\WINDOWS\system32\DRIVERS\intelide.sys
    10:26:33.0156 2968 IntelIde - ok
    10:26:33.0203 2968 [ 279FB78702454DFF2BB445F238C048D2 ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
    10:26:33.0375 2968 intelppm - ok
    10:26:33.0390 2968 [ 4448006B6BC60E6C027932CFC38D6855 ] Ip6Fw C:\WINDOWS\system32\drivers\ip6fw.sys
    10:26:33.0531 2968 Ip6Fw - ok
    10:26:33.0546 2968 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
    10:26:33.0687 2968 IpFilterDriver - ok
    10:26:33.0703 2968 [ E1EC7F5DA720B640CD8FB8424F1B14BB ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
    10:26:33.0828 2968 IpInIp - ok
    10:26:33.0875 2968 [ B5A8E215AC29D24D60B4D1250EF05ACE ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
    10:26:34.0031 2968 IpNat - ok
    10:26:34.0078 2968 [ 62937A89470AF8FF172F0980CA8AEFC9 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
    10:26:34.0125 2968 iPod Service - ok
    10:26:34.0203 2968 [ 64537AA5C003A6AFEEE1DF819062D0D1 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
    10:26:34.0328 2968 IPSec - ok
    10:26:34.0359 2968 [ 50708DAA1B1CBB7D6AC1CF8F56A24410 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
    10:26:34.0453 2968 IRENUM - ok
    10:26:34.0500 2968 [ E504F706CCB699C2596E9A3DA1596E87 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
    10:26:34.0640 2968 isapnp - ok
    10:26:34.0718 2968 [ 4F2143570D2250CA4C4A4C98553C82CD ] JavaQuickStarterService C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe
    10:26:34.0750 2968 JavaQuickStarterService - ok
    10:26:34.0765 2968 [ EBDEE8A2EE5393890A1ACEE971C4C246 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
    10:26:34.0890 2968 Kbdclass - ok
    10:26:34.0906 2968 [ E182FA8E49E8EE41B4ADC53093F3C7E6 ] kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys
    10:26:35.0031 2968 kbdhid - ok
    10:26:35.0093 2968 [ D93CAD07C5683DB066B0B2D2D3790EAD ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
    10:26:35.0250 2968 kmixer - ok
    10:26:35.0265 2968 [ EB7FFE87FD367EA8FCA0506F74A87FBB ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
    10:26:35.0421 2968 KSecDD - ok
    10:26:35.0468 2968 [ 93D32468D34E000CB3407947D1D6E22A ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
    10:26:35.0609 2968 lanmanserver - ok
    10:26:35.0640 2968 [ 2C0A7B2AE9C26F2C163627679B42783C ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
    10:26:35.0796 2968 lanmanworkstation - ok
    10:26:35.0843 2968 [ 9FFD1CF2A782F2560E78EEC4B8B8689E ] LBeepKE C:\WINDOWS\system32\Drivers\LBeepKE.sys
    10:26:35.0859 2968 LBeepKE - ok
    10:26:35.0875 2968 lbrtfdc - ok
    10:26:35.0953 2968 [ 3AF6B73A3AD1FC37C5933441F66CEB91 ] LBTServ C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
    10:26:35.0984 2968 LBTServ - ok
    10:26:36.0031 2968 [ 70035567754BED4E6AD353CA3F175127 ] LEqdUsb C:\WINDOWS\system32\Drivers\LEqdUsb.Sys
    10:26:36.0046 2968 LEqdUsb - ok
    10:26:36.0078 2968 [ 32491B6BAE0AFAD1D7A62C0EF0AF4321 ] LHidEqd C:\WINDOWS\system32\Drivers\LHidEqd.Sys
    10:26:36.0078 2968 LHidEqd - ok
    10:26:36.0125 2968 [ 7F9C7B28CF1C859E1C42619EEA946DC8 ] LHidFilt C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys
    10:26:36.0140 2968 LHidFilt - ok
    10:26:36.0203 2968 [ B3EFF6D938C572E90A07B3D87A3C7657 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
    10:26:36.0359 2968 LmHosts - ok
    10:26:36.0375 2968 [ AB33792A87285344F43B5CE23421BAB0 ] LMouFilt C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys
    10:26:36.0390 2968 LMouFilt - ok
    10:26:36.0468 2968 [ F453D1E6D881E8F8717E20CCD4199E85 ] McComponentHostService C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe
    10:26:36.0484 2968 McComponentHostService - ok
    10:26:36.0578 2968 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] McMPFSvc C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
    10:26:36.0609 2968 McMPFSvc - ok
    10:26:36.0625 2968 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] mcmscsvc C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
    10:26:36.0640 2968 mcmscsvc - ok
    10:26:36.0656 2968 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] McNaiAnn C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
    10:26:36.0671 2968 McNaiAnn - ok
    10:26:36.0671 2968 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] McNASvc C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
    10:26:36.0703 2968 McNASvc - ok
    10:26:36.0843 2968 [ ADA83A989D5822DAA5E2F62FDF118AC6 ] McODS C:\Program Files\McAfee\VirusScan\mcods.exe
    10:26:36.0875 2968 McODS - ok
    10:26:36.0875 2968 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] McProxy C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
    10:26:36.0906 2968 McProxy - ok
    10:26:36.0937 2968 [ DF0A511F38F16016BF658FCA0090CB87 ] McrdSvc C:\WINDOWS\ehome\mcrdsvc.exe
    10:26:36.0968 2968 McrdSvc - ok
    10:26:37.0046 2968 [ 7394FCADC0DD68DDC5921884906F4AE9 ] McShield C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
    10:26:37.0062 2968 McShield - ok
    10:26:37.0140 2968 [ 11F714F85530A2BD134074DC30E99FCA ] MDM C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    10:26:37.0187 2968 MDM - ok
    10:26:37.0203 2968 [ EEAEA6514BA7C9D273B5E87C4E1AAB30 ] mdmxsdk C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys
    10:26:37.0234 2968 mdmxsdk - ok
    10:26:37.0281 2968 [ 95FD808E4AC22ABA025A7B3EAC0375D2 ] Messenger C:\WINDOWS\System32\msgsvc.dll
    10:26:37.0421 2968 Messenger - ok
    10:26:37.0468 2968 [ 84D59A3EDDFB9438FB94F7F80D37859D ] mfeapfk C:\WINDOWS\system32\drivers\mfeapfk.sys
    10:26:37.0484 2968 mfeapfk - ok
    10:26:37.0546 2968 [ 67E961988312B1A28D6F93357B0BF998 ] mfeavfk C:\WINDOWS\system32\drivers\mfeavfk.sys
    10:26:37.0562 2968 mfeavfk - ok
    10:26:37.0625 2968 [ 19161B1796CF74A6A326ABDE309062BA ] mfebopk C:\WINDOWS\system32\drivers\mfebopk.sys
    10:26:37.0640 2968 mfebopk - ok
    10:26:37.0703 2968 [ 3D8E909DA47E22E2B32056FD2AE66EDE ] mfefire C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
    10:26:37.0718 2968 mfefire - ok
    10:26:37.0781 2968 [ D5F89B4934960C70882924D992C6ABFC ] mfefirek C:\WINDOWS\system32\drivers\mfefirek.sys
    10:26:37.0796 2968 mfefirek - ok
    10:26:37.0859 2968 [ 0EFAB2B91B27543FE589DE700DE07136 ] mfehidk C:\WINDOWS\system32\drivers\mfehidk.sys
    10:26:37.0890 2968 mfehidk - ok
    10:26:37.0953 2968 [ 549DD4966BF0B1D1FC205CA0755A745B ] mfendisk C:\WINDOWS\system32\DRIVERS\mfendisk.sys
    10:26:37.0984 2968 mfendisk - ok
    10:26:37.0984 2968 [ 549DD4966BF0B1D1FC205CA0755A745B ] mfendiskmp C:\WINDOWS\system32\DRIVERS\mfendisk.sys
    10:26:38.0000 2968 mfendiskmp - ok
    10:26:38.0046 2968 [ C9EDA1EADA2AB6E34CD1A10C3A24AB25 ] mferkdet C:\WINDOWS\system32\drivers\mferkdet.sys
    10:26:38.0062 2968 mferkdet - ok
    10:26:38.0109 2968 [ E6C5F7AADE5A31C057D73201ACFE8ADF ] mfetdi2k C:\WINDOWS\system32\drivers\mfetdi2k.sys
    10:26:38.0125 2968 mfetdi2k - ok
    10:26:38.0171 2968 [ 5C1B2814EF2A6313936A111D3FD095AF ] mfevtp C:\WINDOWS\system32\mfevtps.exe
    10:26:38.0203 2968 mfevtp - ok
    10:26:38.0250 2968 [ B7521F69C0A9B29D356157229376FB21 ] MHN C:\WINDOWS\System32\mhn.dll
    10:26:38.0312 2968 MHN - ok
    10:26:38.0343 2968 [ 7F2F1D2815A6449D346FCCCBC569FBD6 ] MHNDRV C:\WINDOWS\system32\DRIVERS\mhndrv.sys
    10:26:38.0406 2968 MHNDRV - ok
    10:26:38.0453 2968 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
    10:26:38.0609 2968 mnmdd - ok
    10:26:38.0671 2968 [ F6415361201915B9FE3896B0E4E724FF ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe
    10:26:38.0828 2968 mnmsrvc - ok
    10:26:38.0875 2968 [ 6FC6F9D7ACC36DCA9B914565A3AEDA05 ] Modem C:\WINDOWS\system32\drivers\Modem.sys
    10:26:39.0015 2968 Modem - ok
    10:26:39.0046 2968 [ 1992E0D143B09653AB0F9C5E04B0FD65 ] MODEMCSA C:\WINDOWS\system32\drivers\MODEMCSA.sys
    10:26:39.0203 2968 MODEMCSA - ok
    10:26:39.0234 2968 [ 34E1F0031153E491910E12551400192C ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
    10:26:39.0375 2968 Mouclass - ok
    10:26:39.0421 2968 [ B1C303E17FB9D46E87A98E4BA6769685 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
    10:26:39.0562 2968 mouhid - ok
    10:26:39.0578 2968 [ 65653F3B4477F3C63E68A9659F85EE2E ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
    10:26:39.0734 2968 MountMgr - ok
    10:26:39.0796 2968 [ 8BE15F71DE6FF33FC56DCDE7B2B9EFE8 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
    10:26:39.0828 2968 MozillaMaintenance - ok
    10:26:39.0875 2968 [ 3F4BB95E5A44F3BE34824E8E7CAF0737 ] mraid35x C:\WINDOWS\system32\DRIVERS\mraid35x.sys
    10:26:40.0015 2968 mraid35x - ok
    10:26:40.0015 2968 [ 46EDCC8F2DB2F322C24F48785CB46366 ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
    10:26:40.0156 2968 MRxDAV - ok
    10:26:40.0218 2968 [ 1FD607FC67F7F7C633C3DA65BFC53D18 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
    10:26:40.0359 2968 MRxSmb - ok
    10:26:40.0406 2968 [ C7C3D89EB0A6F3DBA622EA737FA335B1 ] MSDTC C:\WINDOWS\system32\msdtc.exe
    10:26:40.0531 2968 MSDTC - ok
    10:26:40.0546 2968 [ 561B3A4333CA2DBDBA28B5B956822519 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
    10:26:40.0703 2968 Msfs - ok
    10:26:40.0703 2968 MSIServer - ok
    10:26:40.0750 2968 [ AE431A8DD3C1D0D0610CDBAC16057AD0 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
    10:26:40.0890 2968 MSKSSRV - ok
    10:26:40.0921 2968 [ 13E75FEF9DFEB08EEDED9D0246E1F448 ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
    10:26:41.0078 2968 MSPCLOCK - ok
    10:26:41.0125 2968 [ 1988A33FF19242576C3D0EF9CE785DA7 ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
    10:26:41.0265 2968 MSPQM - ok
    10:26:41.0312 2968 [ 469541F8BFD2B32659D5D463A6714BCE ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
    10:26:41.0453 2968 mssmbios - ok
    10:26:41.0515 2968 [ 82035E0F41C2DD05AE41D27FE6CF7DE1 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
    10:26:41.0640 2968 Mup - ok
    10:26:41.0734 2968 [ 0102140028FAD045756796E1C685D695 ] napagent C:\WINDOWS\System32\qagentrt.dll
    10:26:41.0750 2968 napagent ( UnsignedFile.Multi.Generic ) - warning
    10:26:41.0750 2968 napagent - detected UnsignedFile.Multi.Generic (1)
    10:26:41.0796 2968 [ 558635D3AF1C7546D26067D5D9B6959E ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
    10:26:41.0937 2968 NDIS - ok
    10:26:41.0953 2968 [ 08D43BBDACDF23F34D79E44ED35C1B4C ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
    10:26:42.0093 2968 NdisTapi - ok
    10:26:42.0140 2968 [ 34D6CD56409DA9A7ED573E1C90A308BF ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
    10:26:42.0296 2968 Ndisuio - ok
    10:26:42.0328 2968 [ 0B90E255A9490166AB368CD55A529893 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
    10:26:42.0468 2968 NdisWan - ok
    10:26:42.0500 2968 [ 59FC3FB44D2669BC144FD87826BB571F ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
    10:26:42.0625 2968 NDProxy - ok
    10:26:42.0640 2968 [ 3A2ACA8FC1D7786902CA434998D7CEB4 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
    10:26:42.0765 2968 NetBIOS - ok
    10:26:42.0812 2968 [ 0C80E410CD2F47134407EE7DD19CC86B ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
    10:26:42.0968 2968 NetBT - ok
    10:26:43.0015 2968 [ 05AFB5AD06462257BEA7495283C86D50 ] NetDDE C:\WINDOWS\system32\netdde.exe
    10:26:43.0171 2968 NetDDE - ok
    10:26:43.0187 2968 [ 05AFB5AD06462257BEA7495283C86D50 ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
    10:26:43.0312 2968 NetDDEdsdm - ok
    10:26:43.0359 2968 [ 84885F9B82F4D55C6146EBF6065D75D2 ] Netlogon C:\WINDOWS\system32\lsass.exe
    10:26:43.0484 2968 Netlogon - ok
    10:26:43.0531 2968 [ DAB9E6C7105D2EF49876FE92C524F565 ] Netman C:\WINDOWS\System32\netman.dll
    10:26:43.0703 2968 Netman - ok
    10:26:43.0812 2968 [ 9DA26B773BD04B867A8E9F427CD048FC ] NetSvc C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
    10:26:43.0828 2968 NetSvc ( UnsignedFile.Multi.Generic ) - warning
    10:26:43.0843 2968 NetSvc - detected UnsignedFile.Multi.Generic (1)
    10:26:43.0890 2968 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
    10:26:43.0906 2968 NetTcpPortSharing - ok
    10:26:43.0953 2968 [ 4E74AF063C3271FBEA20DD940CFD1184 ] Nla C:\WINDOWS\System32\mswsock.dll
    10:26:44.0093 2968 Nla - ok
    10:26:44.0093 2968 [ 4F601BCB8F64EA3AC0994F98FED03F8E ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
    10:26:44.0234 2968 Npfs - ok
    10:26:44.0281 2968 [ B78BE402C3F63DD55521F73876951CDD ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
    10:26:44.0468 2968 Ntfs - ok
    10:26:44.0468 2968 [ 84885F9B82F4D55C6146EBF6065D75D2 ] NtLmSsp C:\WINDOWS\system32\lsass.exe
    10:26:44.0593 2968 NtLmSsp - ok
    10:26:44.0671 2968 [ B62F29C00AC55A761B2E45877D85EA0F ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
    10:26:44.0843 2968 NtmsSvc - ok
    10:26:44.0890 2968 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
    10:26:45.0046 2968 Null - ok
    10:26:45.0109 2968 [ 2B298519EDBFCF451D43E0F1E8F1006D ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
    10:26:45.0328 2968 nv - ok
    10:26:45.0343 2968 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
    10:26:45.0484 2968 NwlnkFlt - ok
    10:26:45.0500 2968 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
    10:26:45.0625 2968 NwlnkFwd - ok
    10:26:45.0671 2968 [ 7A56CF3E3F12E8AF599963B16F50FB6A ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
    10:26:45.0687 2968 ose - ok
    10:26:45.0750 2968 [ 103A9B117A7D9903111955CDAFE65AC6 ] ossrv C:\WINDOWS\system32\DRIVERS\ctoss2k.sys
    10:26:45.0765 2968 ossrv - ok
    10:26:45.0843 2968 [ 29744EB4CE659DFE3B4122DEB45BC478 ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys
    10:26:45.0968 2968 Parport - ok
    10:26:45.0984 2968 [ 3334430C29DC338092F79C38EF7B4CD0 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
    10:26:46.0125 2968 PartMgr - ok
    10:26:46.0140 2968 [ 70E98B3FD8E963A6A46A2E6247E0BEA1 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
    10:26:46.0281 2968 ParVdm - ok
    10:26:46.0343 2968 [ 8086D9979234B603AD5BC2F5D890B234 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
    10:26:46.0500 2968 PCI - ok
    10:26:46.0500 2968 PCIDump - ok
    10:26:46.0515 2968 [ CCF5F451BB1A5A2A522A76E670000FF0 ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
    10:26:46.0656 2968 PCIIde - ok
    10:26:46.0734 2968 [ 82A087207DECEC8456FBE8537947D579 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
    10:26:46.0875 2968 Pcmcia - ok
    10:26:46.0890 2968 PDCOMP - ok
    10:26:46.0890 2968 PDFRAME - ok
    10:26:46.0906 2968 PDRELI - ok
    10:26:46.0906 2968 PDRFRAME - ok
    10:26:46.0937 2968 [ 6C14B9C19BA84F73D3A86DBA11133101 ] perc2 C:\WINDOWS\system32\DRIVERS\perc2.sys
    10:26:47.0062 2968 perc2 - ok
    10:26:47.0093 2968 [ F50F7C27F131AFE7BEBA13E14A3B9416 ] perc2hib C:\WINDOWS\system32\DRIVERS\perc2hib.sys
    10:26:47.0218 2968 perc2hib - ok
    10:26:47.0281 2968 [ C6CE6EEC82F187615D1002BB3BB50ED4 ] PlugPlay C:\WINDOWS\system32\services.exe
    10:26:47.0437 2968 PlugPlay - ok
    10:26:47.0484 2968 [ D31F88C5F19EEFA366A415D6BC5F2ABC ] Pml Driver HPZ12 C:\WINDOWS\system32\HPZipm12.exe
    10:26:47.0546 2968 Pml Driver HPZ12 - ok
    10:26:47.0593 2968 [ 84885F9B82F4D55C6146EBF6065D75D2 ] PolicyAgent C:\WINDOWS\system32\lsass.exe
    10:26:47.0718 2968 PolicyAgent - ok
    10:26:47.0765 2968 [ 1C5CC65AAC0783C344F16353E60B72AC ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
    10:26:47.0921 2968 PptpMiniport - ok
    10:26:47.0968 2968 [ 0D97D88720A4087EC93AF7DBB303B30A ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys
    10:26:48.0187 2968 Processor - ok
    10:26:48.0203 2968 [ 84885F9B82F4D55C6146EBF6065D75D2 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
    10:26:48.0328 2968 ProtectedStorage - ok
    10:26:48.0343 2968 [ 48671F327553DCF1D27F6197F622A668 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
    10:26:48.0468 2968 PSched - ok
    10:26:48.0515 2968 [ 1DF21F001F3A94EBA4A2950C70CC358F ] PSI C:\WINDOWS\system32\DRIVERS\psi_mf.sys
    10:26:48.0531 2968 PSI - ok
    10:26:48.0578 2968 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
    10:26:48.0718 2968 Ptilink - ok
    10:26:48.0750 2968 [ 40F2031BD9148D3194353EA7DEC97A07 ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys
    10:26:48.0781 2968 PxHelp20 - ok
    10:26:48.0828 2968 [ 0A63FB54039EB5662433CABA3B26DBA7 ] ql1080 C:\WINDOWS\system32\DRIVERS\ql1080.sys
    10:26:48.0968 2968 ql1080 - ok
    10:26:49.0015 2968 [ 6503449E1D43A0FF0201AD5CB1B8C706 ] Ql10wnt C:\WINDOWS\system32\DRIVERS\ql10wnt.sys
    10:26:49.0171 2968 Ql10wnt - ok
    10:26:49.0203 2968 [ 156ED0EF20C15114CA097A34A30D8A01 ] ql12160 C:\WINDOWS\system32\DRIVERS\ql12160.sys
    10:26:49.0328 2968 ql12160 - ok
    10:26:49.0359 2968 [ 70F016BEBDE6D29E864C1230A07CC5E6 ] ql1240 C:\WINDOWS\system32\DRIVERS\ql1240.sys
    10:26:49.0484 2968 ql1240 - ok
    10:26:49.0515 2968 [ 907F0AEEA6BC451011611E732BD31FCF ] ql1280 C:\WINDOWS\system32\DRIVERS\ql1280.sys
    10:26:49.0656 2968 ql1280 - ok
    10:26:49.0687 2968 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
    10:26:49.0812 2968 RasAcd - ok
    10:26:49.0875 2968 [ 44DB7A9BDD2FB58747D123FBF1D35ADB ] RasAuto C:\WINDOWS\System32\rasauto.dll
    10:26:50.0000 2968 RasAuto - ok
    10:26:50.0031 2968 [ 98FAEB4A4DCF812BA1C6FCA4AA3E115C ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
    10:26:50.0187 2968 Rasl2tp - ok
    10:26:50.0250 2968 [ 41A3C11E3517C962C9B44893BCEC3B34 ] RasMan C:\WINDOWS\System32\rasmans.dll
    10:26:50.0390 2968 RasMan - ok
    10:26:50.0421 2968 [ 7306EEED8895454CBED4669BE9F79FAA ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
    10:26:50.0578 2968 RasPppoe - ok
    10:26:50.0578 2968 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
    10:26:50.0718 2968 Raspti - ok
    10:26:50.0765 2968 [ 29D66245ADBA878FFF574CD66ABD2884 ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
    10:26:50.0890 2968 Rdbss - ok
    10:26:50.0906 2968 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
    10:26:51.0062 2968 RDPCDD - ok
    10:26:51.0125 2968 [ A2CAE2C60BC37E0751EF9DDA7CEAF4AD ] rdpdr C:\WINDOWS\system32\DRIVERS\rdpdr.sys
    10:26:51.0250 2968 rdpdr - ok
    10:26:51.0343 2968 [ D4F5643D7714EF499AE9527FDCD50894 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
    10:26:51.0484 2968 RDPWD - ok
    10:26:51.0562 2968 [ 729798E0933076B8FCFCD9934698F164 ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
    10:26:51.0687 2968 RDSessMgr - ok
    10:26:51.0734 2968 [ B31B4588E4086D8D84ADBF9845C2402B ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
    10:26:51.0875 2968 redbook - ok
    10:26:51.0921 2968 [ 3046DB917E3CFA040632799DD9B14865 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
    10:26:52.0062 2968 RemoteAccess - ok
    10:26:52.0093 2968 [ 3151427DB7D87107D1C5BE58FAC53960 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
    10:26:52.0250 2968 RemoteRegistry - ok
    10:26:52.0281 2968 [ 793F04A09B15E7C6C11DBDFFAF06C0AB ] RpcLocator C:\WINDOWS\system32\locator.exe
    10:26:52.0421 2968 RpcLocator - ok
    10:26:52.0468 2968 [ 5C83A4408604F737717AB96371201680 ] RpcSs C:\WINDOWS\System32\rpcss.dll
    10:26:52.0625 2968 RpcSs - ok
    10:26:52.0671 2968 [ 471B3F9741D762ABE75E9DEEA4787E47 ] RSVP C:\WINDOWS\system32\rsvp.exe
    10:26:52.0812 2968 RSVP - ok
    10:26:52.0843 2968 [ 84885F9B82F4D55C6146EBF6065D75D2 ] SamSs C:\WINDOWS\system32\lsass.exe
    10:26:52.0968 2968 SamSs - ok
    10:26:53.0031 2968 [ 25D8DE134DF108E3DBC8D7D23B1AA58E ] SCardDrv C:\WINDOWS\System32\SCardSvr.exe
    10:26:53.0187 2968 SCardDrv - ok
    10:26:53.0187 2968 [ 25D8DE134DF108E3DBC8D7D23B1AA58E ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
    10:26:53.0328 2968 SCardSvr - ok
    10:26:53.0375 2968 [ 92360854316611F6CC471612213C3D92 ] Schedule C:\WINDOWS\system32\schedsvc.dll
    10:26:53.0515 2968 Schedule - ok
    10:26:53.0625 2968 [ CC781378E7EDA615D2CDCA3B17829FA4 ] SeaPort C:\Program Files\Microsoft\BingBar\SeaPort.EXE
    10:26:53.0656 2968 SeaPort - ok
    10:26:53.0718 2968 [ D26E26EA516450AF9D072635C60387F4 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
    10:26:53.0796 2968 Secdrv - ok
    10:26:53.0843 2968 [ B1E0CE09895376871746F36DC5773B4F ] seclogon C:\WINDOWS\System32\seclogon.dll
    10:26:54.0000 2968 seclogon - ok
    10:26:54.0031 2968 [ DFD9870CF39C791D86C4C209DA9FA919 ] SENS C:\WINDOWS\system32\sens.dll
    10:26:54.0171 2968 SENS - ok
    10:26:54.0187 2968 [ A2D868AEEFF612E70E213C451A70CAFB ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys
    10:26:54.0312 2968 serenum - ok
    10:26:54.0375 2968 [ CD9404D115A00D249F70A371B46D5A26 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys
    10:26:54.0515 2968 Serial - ok
    10:26:54.0578 2968 [ 0D13B6DF6E9E101013A7AFB0CE629FE0 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
    10:26:54.0718 2968 Sfloppy - ok
    10:26:54.0781 2968 [ 36CC8C01B5E50163037BEF56CB96DEFF ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
    10:26:54.0953 2968 SharedAccess - ok
    10:26:54.0984 2968 [ E7518DC542D3EBDCB80EDD98462C7821 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
    10:26:55.0125 2968 ShellHWDetection - ok
    10:26:55.0218 2968 [ 6BD3976B881888AC9A0ED3EB94E7FD38 ] sigfilt C:\WINDOWS\system32\drivers\sigfilt.sys
    10:26:55.0312 2968 sigfilt - ok
    10:26:55.0312 2968 Simbad - ok
    10:26:55.0375 2968 [ 732D859B286DA692119F286B21A2A114 ] sisagp C:\WINDOWS\system32\DRIVERS\sisagp.sys
    10:26:55.0531 2968 sisagp - ok
    10:26:55.0562 2968 [ 83C0F71F86D3BDAF915685F3D568B20E ] Sparrow C:\WINDOWS\system32\DRIVERS\sparrow.sys
    10:26:55.0656 2968 Sparrow - ok
    10:26:55.0687 2968 [ 8E186B8F23295D1E42C573B82B80D548 ] splitter C:\WINDOWS\system32\drivers\splitter.sys
    10:26:55.0843 2968 splitter - ok
    10:26:55.0875 2968 [ 7435B108B935E42EA92CA94F59C8E717 ] Spooler C:\WINDOWS\system32\spoolsv.exe
    10:26:56.0046 2968 Spooler - ok
    10:26:56.0093 2968 [ E41B6D037D6CD08461470AF04500DC24 ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
    10:26:56.0171 2968 sr - ok
    10:26:56.0218 2968 [ 92BDF74F12D6CBEC43C94D4B7F804838 ] srservice C:\WINDOWS\system32\srsvc.dll
    10:26:56.0312 2968 srservice - ok
    10:26:56.0328 2968 [ 20B7E396720353E4117D64D9DCB926CA ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
    10:26:56.0484 2968 Srv - ok
    10:26:56.0500 2968 [ 4B8D61792F7175BED48859CC18CE4E38 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
    10:26:56.0593 2968 SSDPSRV - ok
    10:26:56.0625 2968 [ B95480C92C4C9C311BE47B8A1AD73770 ] STHDA C:\WINDOWS\system32\drivers\sthda.sys
    10:26:56.0671 2968 STHDA - ok
    10:26:56.0718 2968 [ A9573045BAA16EAB9B1085205B82F1ED ] StillCam C:\WINDOWS\system32\DRIVERS\serscan.sys
    10:26:56.0843 2968 StillCam - ok
    10:26:56.0859 2968 [ D9F6C4F6B1E188ADAFC42B561D9BC2E6 ] stisvc C:\WINDOWS\system32\wiaservc.dll
    10:26:57.0000 2968 stisvc - ok
    10:26:57.0031 2968 [ 03C1BAE4766E2450219D20B993D6E046 ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
    10:26:57.0187 2968 swenum - ok
    10:26:57.0234 2968 [ 94ABC808FC4B6D7D2BBF42B85E25BB4D ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
    10:26:57.0390 2968 swmidi - ok
    10:26:57.0390 2968 SwPrv - ok
     
  12. Sprinter

    Sprinter Newcomer, in training Topic Starter Posts: 59

    10:26:57.0421 2968 [ 1FF3217614018630D0A6758630FC698C ] symc810 C:\WINDOWS\system32\DRIVERS\symc810.sys
    10:26:57.0562 2968 symc810 - ok
    10:26:57.0625 2968 [ 070E001D95CF725186EF8B20335F933C ] symc8xx C:\WINDOWS\system32\DRIVERS\symc8xx.sys
    10:26:57.0750 2968 symc8xx - ok
    10:26:57.0781 2968 [ 80AC1C4ABBE2DF3B738BF15517A51F2C ] sym_hi C:\WINDOWS\system32\DRIVERS\sym_hi.sys
    10:26:57.0921 2968 sym_hi - ok
    10:26:57.0953 2968 [ BF4FAB949A382A8E105F46EBB4937058 ] sym_u3 C:\WINDOWS\system32\DRIVERS\sym_u3.sys
    10:26:58.0093 2968 sym_u3 - ok
    10:26:58.0125 2968 [ 650AD082D46BAC0E64C9C0E0928492FD ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
    10:26:58.0281 2968 sysaudio - ok
    10:26:58.0328 2968 [ 8B54AA346D1B1B113FFAA75501B8B1B2 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
    10:26:58.0453 2968 SysmonLog - ok
    10:26:58.0500 2968 [ EB4A4187D74A8EFDCBEA3EA2CB1BDFBD ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
    10:26:58.0640 2968 TapiSrv - ok
    10:26:58.0687 2968 [ 9F4B36614A0FC234525BA224957DE55C ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
    10:26:58.0875 2968 Tcpip - ok
    10:26:58.0890 2968 [ 38D437CF2D98965F239B0ABCD66DCB0F ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
    10:26:59.0031 2968 TDPIPE - ok
    10:26:59.0078 2968 [ ED0580AF02502D00AD8C4C066B156BE9 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
    10:26:59.0265 2968 TDTCP - ok
    10:26:59.0312 2968 [ A540A99C281D933F3D69D55E48727F47 ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
    10:26:59.0468 2968 TermDD - ok
    10:26:59.0531 2968 [ B60C877D16D9C880B952FDA04ADF16E6 ] TermService C:\WINDOWS\System32\termsrv.dll
    10:26:59.0718 2968 TermService - ok
    10:26:59.0750 2968 [ E7518DC542D3EBDCB80EDD98462C7821 ] Themes C:\WINDOWS\System32\shsvcs.dll
    10:26:59.0906 2968 Themes - ok
    10:26:59.0921 2968 [ 37DB0A7D097310E8B4DE803FC3119C78 ] TlntSvr C:\WINDOWS\system32\tlntsvr.exe
    10:27:00.0015 2968 TlntSvr - ok
    10:27:00.0031 2968 [ F2790F6AF01321B172AA62F8E1E187D9 ] TosIde C:\WINDOWS\system32\DRIVERS\toside.sys
    10:27:00.0156 2968 TosIde - ok
    10:27:00.0218 2968 [ 6D9AC544B30F96C57F8206566C1FB6A1 ] TrkWks C:\WINDOWS\system32\trkwks.dll
    10:27:00.0359 2968 TrkWks - ok
    10:27:00.0421 2968 [ 12F70256F140CD7D52C58C7048FDE657 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
    10:27:00.0562 2968 Udfs - ok
    10:27:00.0578 2968 [ 1B698A51CD528D8DA4FFAED66DFC51B9 ] ultra C:\WINDOWS\system32\DRIVERS\ultra.sys
    10:27:00.0671 2968 ultra - ok
    10:27:00.0703 2968 [ 6634C460C56EC7E48D6BE20B745DC03A ] UMWdf C:\WINDOWS\system32\wdfmgr.exe
    10:27:00.0812 2968 UMWdf - ok
    10:27:00.0859 2968 [ AFF2E5045961BBC0A602BB6F95EB1345 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
    10:27:01.0000 2968 Update - ok
    10:27:01.0031 2968 [ 0546477BDE979E33294FE97F6B3DE84A ] upnphost C:\WINDOWS\System32\upnphost.dll
    10:27:01.0125 2968 upnphost - ok
    10:27:01.0171 2968 [ 3F5DF65B0758675F95A2D43918A740A3 ] UPS C:\WINDOWS\System32\ups.exe
    10:27:01.0296 2968 UPS - ok
    10:27:01.0359 2968 [ C1CA131F4E3ED63D6BC89A35FFAD4CDA ] USBAAPL C:\WINDOWS\system32\Drivers\usbaapl.sys
    10:27:01.0437 2968 USBAAPL - ok
    10:27:01.0515 2968 [ BFFD9F120CC63BCBAA3D840F3EEF9F79 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
    10:27:01.0671 2968 usbccgp - ok
    10:27:01.0703 2968 [ 15E993BA2F6946B2BFBBFCD30398621E ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
    10:27:01.0843 2968 usbehci - ok
    10:27:01.0859 2968 [ C72F40947F92CEA56A8FB532EDF025F1 ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
    10:27:02.0015 2968 usbhub - ok
    10:27:02.0062 2968 [ A42369B7CD8886CD7C70F33DA6FCBCF5 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys
    10:27:02.0203 2968 usbprint - ok
    10:27:02.0234 2968 [ 6CD7B22193718F1D17A47A1CD6D37E75 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
    10:27:02.0375 2968 USBSTOR - ok
    10:27:02.0421 2968 [ F8FD1400092E23C8F2F31406EF06167B ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
    10:27:02.0562 2968 usbuhci - ok
    10:27:02.0562 2968 [ 8A60EDD72B4EA5AEA8202DAF0E427925 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
    10:27:02.0703 2968 VgaSave - ok
    10:27:02.0734 2968 [ D92E7C8A30CFD14D8E15B5F7F032151B ] viaagp C:\WINDOWS\system32\DRIVERS\viaagp.sys
    10:27:02.0859 2968 viaagp - ok
    10:27:02.0875 2968 [ 59CB1338AD3654417BEA49636457F65D ] ViaIde C:\WINDOWS\system32\DRIVERS\viaide.sys
    10:27:03.0031 2968 ViaIde - ok
    10:27:03.0062 2968 [ EE4660083DEBA849FF6C485D944B379B ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
    10:27:03.0203 2968 VolSnap - ok
    10:27:03.0281 2968 [ 3EE00364AE0FD8D604F46CBAF512838A ] VSS C:\WINDOWS\System32\vssvc.exe
    10:27:03.0359 2968 VSS - ok
    10:27:03.0421 2968 [ 2B281958F5D0CF99ED626E3EF39D5C8D ] w32time C:\WINDOWS\system32\w32time.dll
    10:27:03.0546 2968 w32time - ok
    10:27:03.0609 2968 [ 984EF0B9788ABF89974CFED4BFBAACBC ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
    10:27:03.0750 2968 Wanarp - ok
    10:27:03.0796 2968 [ 0A716C08CB13C3A8F4F51E882DBF7416 ] wanatw C:\WINDOWS\system32\DRIVERS\wanatw4.sys
    10:27:03.0843 2968 wanatw - ok
    10:27:03.0906 2968 [ FD47474BD21794508AF449D9D91AF6E6 ] Wdf01000 C:\WINDOWS\system32\DRIVERS\Wdf01000.sys
    10:27:03.0937 2968 Wdf01000 - ok
    10:27:03.0953 2968 WDICA - ok
    10:27:04.0000 2968 [ 2797F33EBF50466020C430EE4F037933 ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
    10:27:04.0156 2968 wdmaud - ok
    10:27:04.0187 2968 [ 5D0A442864BFBF3B19DCCA4CD29F6E99 ] WebClient C:\WINDOWS\System32\webclnt.dll
    10:27:04.0359 2968 WebClient - ok
    10:27:04.0578 2968 [ F59ED5A43B988A18EF582BB07B2327A7 ] winachsf C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys
    10:27:04.0796 2968 winachsf - ok
    10:27:04.0906 2968 [ F399242A80C4066FD155EFA4CF96658E ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
    10:27:05.0046 2968 winmgmt - ok
    10:27:05.0203 2968 [ 5144AE67D60EC653F97DDF3FEED29E77 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
    10:27:05.0296 2968 wlidsvc - ok
    10:27:05.0375 2968 [ 94A85E956A065E23E0010A6A7826243B ] WLSetupSvc C:\Program Files\Windows Live\installer\WLSetupSvc.exe
    10:27:05.0421 2968 WLSetupSvc ( UnsignedFile.Multi.Generic ) - warning
    10:27:05.0421 2968 WLSetupSvc - detected UnsignedFile.Multi.Generic (1)
    10:27:05.0484 2968 [ 581176F60885AEF8F78C6E38DCC3CDF9 ] WMDM PMSP Service C:\WINDOWS\system32\MsPMSPSv.exe
    10:27:05.0484 2968 WMDM PMSP Service ( UnsignedFile.Multi.Generic ) - warning
    10:27:05.0484 2968 WMDM PMSP Service - detected UnsignedFile.Multi.Generic (1)
    10:27:05.0562 2968 [ B9715B9C18BC6C8F4B66733D208CC9F7 ] WmdmPmSN C:\WINDOWS\system32\mspmsnsv.dll
    10:27:06.0187 2968 WmdmPmSN - ok
    10:27:06.0234 2968 [ 1AFF244CA134956C54474F4E2433E4CE ] Wmi C:\WINDOWS\System32\advapi32.dll
    10:27:06.0406 2968 Wmi - ok
    10:27:06.0468 2968 [ BA8CECC3E813E1F7C441B20393D4F86C ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe
    10:27:06.0609 2968 WmiApSrv - ok
    10:27:06.0718 2968 [ F74E3D9A7FA9556C3BBB14D4E5E63D3B ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe
    10:27:06.0796 2968 WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - warning
    10:27:06.0796 2968 WMPNetworkSvc - detected UnsignedFile.Multi.Generic (1)
    10:27:06.0875 2968 [ 0770ACCA345B35EF455AC0D96C8B39A0 ] WpdUsb C:\WINDOWS\system32\Drivers\wpdusb.sys
    10:27:06.0921 2968 WpdUsb - ok
    10:27:06.0968 2968 [ 6ABE6E225ADB5A751622A9CC3BC19CE8 ] WS2IFSL C:\WINDOWS\System32\drivers\ws2ifsl.sys
    10:27:07.0109 2968 WS2IFSL - ok
    10:27:07.0125 2968 [ 4D59DAA66C60858CDF4F67A900F42D4A ] wscsvc C:\WINDOWS\system32\wscsvc.dll
    10:27:07.0296 2968 wscsvc - ok
    10:27:07.0343 2968 [ 13D72740963CBA12D9FF76A7F218BCD8 ] wuauserv C:\WINDOWS\system32\wuauserv.dll
    10:27:07.0500 2968 wuauserv - ok
    10:27:07.0546 2968 [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
    10:27:07.0609 2968 WudfPf - ok
    10:27:07.0625 2968 [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
    10:27:07.0656 2968 WudfRd - ok
    10:27:07.0687 2968 [ 05231C04253C5BC30B26CBAAE680ED89 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
    10:27:07.0734 2968 WudfSvc - ok
    10:27:07.0781 2968 [ 5A91E6FEAB9F901302FA7FF768C0120F ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
    10:27:07.0953 2968 WZCSVC - ok
    10:27:08.0000 2968 [ EEF46DAB68229A14DA3D8E73C99E2959 ] xmlprov C:\WINDOWS\System32\xmlprov.dll
    10:27:08.0140 2968 xmlprov - ok
    10:27:08.0140 2968 ================ Scan global ===============================
    10:27:08.0171 2968 [ 00EF9C3AF83EDBAF18CA7A2837750117 ] C:\WINDOWS\system32\basesrv.dll
    10:27:08.0187 2968 [ 442D0EAD5534E4ADCF6D4469043C82C0 ] C:\WINDOWS\system32\winsrv.dll
    10:27:08.0203 2968 [ 442D0EAD5534E4ADCF6D4469043C82C0 ] C:\WINDOWS\system32\winsrv.dll
    10:27:08.0218 2968 [ C6CE6EEC82F187615D1002BB3BB50ED4 ] C:\WINDOWS\system32\services.exe
    10:27:08.0234 2968 [Global] - ok
    10:27:08.0234 2968 ================ Scan MBR ==================================
    10:27:08.0265 2968 [ 5CB90281D1A59B251F6603134774EEC3 ] \Device\Harddisk0\DR0
    10:27:08.0578 2968 \Device\Harddisk0\DR0 - ok
    10:27:08.0578 2968 ================ Scan VBR ==================================
    10:27:08.0578 2968 [ 2860AF43991D59E904A9CEA7DF8231F3 ] \Device\Harddisk0\DR0\Partition1
    10:27:08.0578 2968 \Device\Harddisk0\DR0\Partition1 - ok
    10:27:08.0578 2968 ============================================================
    10:27:08.0578 2968 Scan finished
    10:27:08.0578 2968 ============================================================
    10:27:08.0703 2756 Detected object count: 27
    10:27:08.0703 2756 Actual detected object count: 27
    10:27:35.0234 2756 ASCTRM ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0234 2756 ASCTRM ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0234 2756 Cdr4_xp ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0234 2756 Cdr4_xp ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0234 2756 Cdralw2k ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0234 2756 Cdralw2k ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0250 2756 cercsr6 ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0250 2756 cercsr6 ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0250 2756 Creative Labs Licensing Service ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0250 2756 Creative Labs Licensing Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0250 2756 Creative Service for CDROM Access ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0250 2756 Creative Service for CDROM Access ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0250 2756 DLABOIOM ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0250 2756 DLABOIOM ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0250 2756 DLACDBHM ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0250 2756 DLACDBHM ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0265 2756 DLADResN ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0265 2756 DLADResN ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0265 2756 DLAIFS_M ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0265 2756 DLAIFS_M ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0265 2756 DLAOPIOM ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0265 2756 DLAOPIOM ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0265 2756 DLAPoolM ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0265 2756 DLAPoolM ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0265 2756 DLARTL_N ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0265 2756 DLARTL_N ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0281 2756 DLAUDFAM ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0281 2756 DLAUDFAM ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0281 2756 DLAUDF_M ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0281 2756 DLAUDF_M ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0281 2756 Dot3svc ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0281 2756 Dot3svc ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0281 2756 DRVMCDB ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0281 2756 DRVMCDB ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0281 2756 DRVNDDM ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0281 2756 DRVNDDM ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0281 2756 DSproct ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0281 2756 DSproct ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0296 2756 EapHost ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0296 2756 EapHost ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0296 2756 HDAudBus ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0296 2756 HDAudBus ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0296 2756 hkmsvc ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0296 2756 hkmsvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0296 2756 napagent ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0296 2756 napagent ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0296 2756 NetSvc ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0296 2756 NetSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0312 2756 WLSetupSvc ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0312 2756 WLSetupSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0312 2756 WMDM PMSP Service ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0312 2756 WMDM PMSP Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:27:35.0312 2756 WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - skipped by user
    10:27:35.0312 2756 WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:28:20.0921 3648 ============================================================
    10:28:20.0921 3648 Scan started
    10:28:20.0921 3648 Mode: Manual; SigCheck; TDLFS;
    10:28:20.0921 3648 ============================================================
    10:28:21.0234 3648 ================ Scan system memory ========================
    10:28:21.0234 3648 Scan interrupted by user!
    10:28:21.0234 3648 ================ Scan services =============================
    10:28:21.0234 3648 Scan interrupted by user!
    10:28:21.0234 3648 ================ Scan global ===============================
    10:28:21.0234 3648 Scan interrupted by user!
    10:28:21.0234 3648 ================ Scan MBR ==================================
    10:28:21.0234 3648 Scan interrupted by user!
    10:28:21.0234 3648 ================ Scan VBR ==================================
    10:28:21.0234 3648 Scan interrupted by user!
    10:28:21.0234 3648 ============================================================
    10:28:21.0234 3648 Scan finished
    10:28:21.0234 3648 ============================================================
    10:28:21.0234 3620 Detected object count: 0
    10:28:21.0234 3620 Actual detected object count: 0
    10:28:23.0765 3552 ============================================================
    10:28:23.0765 3552 Scan started
    10:28:23.0765 3552 Mode: Manual; SigCheck; TDLFS;
    10:28:23.0765 3552 ============================================================
    10:28:23.0937 3552 ================ Scan system memory ========================
    10:28:23.0937 3552 System memory - ok
    10:28:23.0937 3552 ================ Scan services =============================
    10:28:24.0031 3552 A2DDA - ok
    10:28:24.0187 3552 Abiosdsk - ok
    10:28:24.0234 3552 [ 6ABB91494FE6C59089B9336452AB2EA3 ] abp480n5 C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS
    10:28:24.0421 3552 abp480n5 - ok
    10:28:24.0468 3552 [ A10C7534F7223F4A73A948967D00E69B ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
    10:28:24.0640 3552 ACPI - ok
    10:28:24.0671 3552 [ 9859C0F6936E723E4892D7141B1327D5 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
    10:28:24.0812 3552 ACPIEC - ok
    10:28:24.0859 3552 [ 9A11864873DA202C996558B2106B0BBC ] adpu160m C:\WINDOWS\system32\DRIVERS\adpu160m.sys
    10:28:25.0015 3552 adpu160m - ok
    10:28:25.0015 3552 Scan interrupted by user!
    10:28:25.0015 3552 ================ Scan global ===============================
    10:28:25.0015 3552 Scan interrupted by user!
    10:28:25.0015 3552 ================ Scan MBR ==================================
    10:28:25.0015 3552 Scan interrupted by user!
    10:28:25.0015 3552 ================ Scan VBR ==================================
    10:28:25.0015 3552 Scan interrupted by user!
    10:28:25.0015 3552 ============================================================
    10:28:25.0015 3552 Scan finished
    10:28:25.0015 3552 ============================================================
    10:28:25.0031 1976 Detected object count: 0
    10:28:25.0031 1976 Actual detected object count: 0
    10:28:27.0562 3276 ============================================================
    10:28:27.0562 3276 Scan started
    10:28:27.0562 3276 Mode: Manual; SigCheck; TDLFS;
    10:28:27.0562 3276 ============================================================
    10:28:27.0765 3276 ================ Scan system memory ========================
    10:28:27.0781 3276 System memory - ok
    10:28:27.0781 3276 ================ Scan services =============================
    10:28:27.0812 3276 A2DDA - ok
    10:28:27.0859 3276 Abiosdsk - ok
    10:28:27.0859 3276 [ 6ABB91494FE6C59089B9336452AB2EA3 ] abp480n5 C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS
    10:28:27.0937 3276 abp480n5 - ok
    10:28:27.0953 3276 [ A10C7534F7223F4A73A948967D00E69B ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
    10:28:28.0078 3276 ACPI - ok
    10:28:28.0093 3276 [ 9859C0F6936E723E4892D7141B1327D5 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
    10:28:28.0234 3276 ACPIEC - ok
    10:28:28.0250 3276 [ 9A11864873DA202C996558B2106B0BBC ] adpu160m C:\WINDOWS\system32\DRIVERS\adpu160m.sys
    10:28:28.0375 3276 adpu160m - ok
    10:28:28.0437 3276 [ 841F385C6CFAF66B58FBD898722BB4F0 ] aec C:\WINDOWS\system32\drivers\aec.sys
    10:28:28.0609 3276 aec - ok
    10:28:28.0656 3276 [ 5AC495F4CB807B2B98AD2AD591E6D92E ] AFD C:\WINDOWS\System32\drivers\afd.sys
    10:28:28.0796 3276 AFD - ok
    10:28:28.0843 3276 [ 2C428FA0C3E3A01ED93C9B2A27D8D4BB ] agp440 C:\WINDOWS\system32\DRIVERS\agp440.sys
    10:28:28.0968 3276 agp440 - ok
    10:28:28.0984 3276 [ 67288B07D6ABA6C1267B626E67BC56FD ] agpCPQ C:\WINDOWS\system32\DRIVERS\agpCPQ.sys
    10:28:29.0140 3276 agpCPQ - ok
    10:28:29.0187 3276 [ C23EA9B5F46C7F7910DB3EAB648FF013 ] Aha154x C:\WINDOWS\system32\DRIVERS\aha154x.sys
    10:28:29.0250 3276 Aha154x - ok
    10:28:29.0281 3276 [ 19DD0FB48B0C18892F70E2E7D61A1529 ] aic78u2 C:\WINDOWS\system32\DRIVERS\aic78u2.sys
    10:28:29.0421 3276 aic78u2 - ok
    10:28:29.0468 3276 [ B7FE594A7468AA0132DEB03FB8E34326 ] aic78xx C:\WINDOWS\system32\DRIVERS\aic78xx.sys
    10:28:29.0625 3276 aic78xx - ok
    10:28:29.0671 3276 [ C7AE0FD3867DB0D42B03B73C18F3D671 ] Alerter C:\WINDOWS\system32\alrsvc.dll
    10:28:29.0796 3276 Alerter - ok
    10:28:29.0843 3276 [ F1958FBF86D5C004CF19A5951A9514B7 ] ALG C:\WINDOWS\System32\alg.exe
    10:28:29.0906 3276 ALG - ok
    10:28:29.0953 3276 [ 1140AB9938809700B46BB88E46D72A96 ] AliIde C:\WINDOWS\system32\DRIVERS\aliide.sys
    10:28:30.0078 3276 AliIde - ok
    10:28:30.0140 3276 [ F312B7CEF21EFF52FA23056B9D815FAD ] alim1541 C:\WINDOWS\system32\DRIVERS\alim1541.sys
    10:28:30.0265 3276 alim1541 - ok
    10:28:30.0281 3276 [ 675C16A3C1F8482F85EE4A97FC0DDE3D ] amdagp C:\WINDOWS\system32\DRIVERS\amdagp.sys
    10:28:30.0437 3276 amdagp - ok
    10:28:30.0453 3276 [ 79F5ADD8D24BD6893F2903A3E2F3FAD6 ] amsint C:\WINDOWS\system32\DRIVERS\amsint.sys
    10:28:30.0531 3276 amsint - ok
    10:28:30.0703 3276 [ 8FA646F0E639D9A8C8B98E217D471DC0 ] AOL ACS C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    10:28:30.0750 3276 AOL ACS - ok
    10:28:30.0906 3276 [ A8AA9D47F971570A5162B862B80F87E8 ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    10:28:30.0921 3276 Apple Mobile Device - ok
    10:28:30.0968 3276 [ 9C3C12975C97119412802B181FBEEFFE ] AppMgmt C:\WINDOWS\System32\appmgmts.dll
    10:28:31.0031 3276 AppMgmt - ok
    10:28:31.0062 3276 [ 62D318E9A0C8FC9B780008E724283707 ] asc C:\WINDOWS\system32\DRIVERS\asc.sys
    10:28:31.0187 3276 asc - ok
    10:28:31.0203 3276 [ 69EB0CC7714B32896CCBFD5EDCBEA447 ] asc3350p C:\WINDOWS\system32\DRIVERS\asc3350p.sys
    10:28:31.0281 3276 asc3350p - ok
    10:28:31.0312 3276 [ 5D8DE112AA0254B907861E9E9C31D597 ] asc3550 C:\WINDOWS\system32\DRIVERS\asc3550.sys
    10:28:31.0453 3276 asc3550 - ok
    10:28:31.0484 3276 [ D880831279ED91F9A4190A2DB9539EA9 ] ASCTRM C:\WINDOWS\system32\drivers\ASCTRM.sys
    10:28:31.0515 3276 ASCTRM ( UnsignedFile.Multi.Generic ) - warning
    10:28:31.0515 3276 ASCTRM - detected UnsignedFile.Multi.Generic (1)
    10:28:31.0640 3276 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
    10:28:31.0656 3276 aspnet_state - ok
    10:28:31.0687 3276 [ 02000ABF34AF4C218C35D257024807D6 ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
    10:28:31.0828 3276 AsyncMac - ok
    10:28:31.0859 3276 [ CDFE4411A69C224BD1D11B2DA92DAC51 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
    10:28:32.0015 3276 atapi - ok
    10:28:32.0031 3276 Atdisk - ok
    10:28:32.0078 3276 [ ABC57A6F6070BAF9786C318F59F29F0B ] Ati HotKey Poller C:\WINDOWS\system32\Ati2evxx.exe
    10:28:32.0125 3276 Ati HotKey Poller - ok
    10:28:32.0218 3276 [ 03621F7F968FF63713943405DEB777F9 ] ati2mtag C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
    10:28:32.0281 3276 ati2mtag - ok
    10:28:32.0328 3276 [ EC88DA854AB7D7752EC8BE11A741BB7F ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
    10:28:32.0484 3276 Atmarpc - ok
    10:28:32.0546 3276 [ DB66DB626E4882EBEF55F136F12C1829 ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
    10:28:32.0703 3276 AudioSrv - ok
    10:28:32.0750 3276 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
    10:28:32.0875 3276 audstub - ok
    10:28:33.0046 3276 [ 825F81A6F7DD073509DB101F0BA6DC59 ] BBSvc C:\Program Files\Microsoft\BingBar\BBSvc.EXE
    10:28:33.0078 3276 BBSvc - ok
    10:28:33.0156 3276 [ B770039886598AAB7CF5EAEEC2409E31 ] BCMH43XX C:\WINDOWS\system32\DRIVERS\bcmwlhigh5.sys
    10:28:33.0187 3276 BCMH43XX - ok
    10:28:33.0250 3276 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
    10:28:33.0390 3276 Beep - ok
    10:28:33.0500 3276 [ 2C69EC7E5A311334D10DD95F338FCCEA ] BITS C:\WINDOWS\system32\qmgr.dll
    10:28:33.0640 3276 BITS - ok
    10:28:33.0703 3276 [ 3F56903E124E820AEECE6D471583C6C1 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
    10:28:33.0718 3276 Bonjour Service - ok
    10:28:33.0750 3276 [ E3CFCCDDA4EDD1D0DC9168B2E18F27B8 ] Browser C:\WINDOWS\System32\browser.dll
    10:28:33.0890 3276 Browser - ok
    10:28:33.0890 3276 bvrp_pci - ok
    10:28:33.0953 3276 catchme - ok
    10:28:33.0984 3276 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf C:\WINDOWS\system32\DRIVERS\cbidf2k.sys
    10:28:34.0125 3276 cbidf - ok
    10:28:34.0140 3276 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
    10:28:34.0265 3276 cbidf2k - ok
    10:28:34.0296 3276 [ F3EC03299634490E97BBCE94CD2954C7 ] cd20xrnt C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys
    10:28:34.0375 3276 cd20xrnt - ok
    10:28:34.0421 3276 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
    10:28:34.0578 3276 Cdaudio - ok
    10:28:34.0625 3276 [ CD7D5152DF32B47F4E36F710B35AAE02 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
    10:28:34.0781 3276 Cdfs - ok
    10:28:34.0828 3276 [ 814ACB9B8A55804D9878248B3C79F862 ] Cdr4_xp C:\WINDOWS\system32\drivers\Cdr4_xp.sys
    10:28:34.0875 3276 Cdr4_xp ( UnsignedFile.Multi.Generic ) - warning
    10:28:34.0875 3276 Cdr4_xp - detected UnsignedFile.Multi.Generic (1)
    10:28:34.0890 3276 [ BCE7213F8AA1BC9D5C08F81CB05E10A7 ] Cdralw2k C:\WINDOWS\system32\drivers\Cdralw2k.sys
    10:28:34.0921 3276 Cdralw2k ( UnsignedFile.Multi.Generic ) - warning
    10:28:34.0921 3276 Cdralw2k - detected UnsignedFile.Multi.Generic (1)
    10:28:34.0953 3276 [ AF9C19B3100FE010496B1A27181FBF72 ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
    10:28:35.0109 3276 Cdrom - ok
    10:28:35.0140 3276 [ 84853B3FD012251690570E9E7E43343F ] cercsr6 C:\WINDOWS\system32\drivers\cercsr6.sys
    10:28:35.0156 3276 cercsr6 ( UnsignedFile.Multi.Generic ) - warning
    10:28:35.0156 3276 cercsr6 - detected UnsignedFile.Multi.Generic (1)
    10:28:35.0203 3276 [ 7E6F7DA1C4DE5680820F964562548949 ] cfwids C:\WINDOWS\system32\drivers\cfwids.sys
    10:28:35.0218 3276 cfwids - ok
    10:28:35.0218 3276 Changer - ok
    10:28:35.0265 3276 [ 3192BD04D032A9C4A85A3278C268A13A ] CiSvc C:\WINDOWS\system32\cisvc.exe
    10:28:35.0390 3276 CiSvc - ok
    10:28:35.0421 3276 [ C8DEC22C4137D7A90F8BDF41CA4B82AE ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
    10:28:35.0562 3276 ClipSrv - ok
    10:28:35.0593 3276 [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
    10:28:35.0625 3276 clr_optimization_v2.0.50727_32 - ok
    10:28:35.0656 3276 [ E5DCB56C533014ECBC556A8357C929D5 ] CmdIde C:\WINDOWS\system32\DRIVERS\cmdide.sys
    10:28:35.0796 3276 CmdIde - ok
    10:28:35.0796 3276 COMSysApp - ok
    10:28:35.0828 3276 [ 3EE529119EED34CD212A215E8C40D4B6 ] Cpqarray C:\WINDOWS\system32\DRIVERS\cpqarray.sys
    10:28:35.0953 3276 Cpqarray - ok
    10:28:36.0000 3276 [ 7DB5E3F44D797BD38B8E336CCC2E49D5 ] Creative Labs Licensing Service C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe
    10:28:36.0000 3276 Creative Labs Licensing Service ( UnsignedFile.Multi.Generic ) - warning
    10:28:36.0000 3276 Creative Labs Licensing Service - detected UnsignedFile.Multi.Generic (1)
    10:28:36.0031 3276 [ 3C8B6609712F4FF78E521F6DCFC4032B ] Creative Service for CDROM Access C:\WINDOWS\system32\CTsvcCDA.exe
    10:28:36.0031 3276 Creative Service for CDROM Access ( UnsignedFile.Multi.Generic ) - warning
    10:28:36.0031 3276 Creative Service for CDROM Access - detected UnsignedFile.Multi.Generic (1)
    10:28:36.0046 3276 [ 10654F9DDCEA9C46CFB77554231BE73B ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
    10:28:36.0171 3276 CryptSvc - ok
    10:28:36.0203 3276 [ 8DB84DE3AAB34A8B4C2F644EFF41CD76 ] ctsfm2k C:\WINDOWS\system32\DRIVERS\ctsfm2k.sys
    10:28:36.0218 3276 ctsfm2k - ok
    10:28:36.0250 3276 [ 4EE8822ADB764EDD28CE44E808097995 ] CTUSFSYN C:\WINDOWS\system32\drivers\ctusfsyn.sys
    10:28:36.0281 3276 CTUSFSYN - ok
    10:28:36.0328 3276 [ E550E7418984B65A78299D248F0A7F36 ] dac2w2k C:\WINDOWS\system32\DRIVERS\dac2w2k.sys
    10:28:36.0453 3276 dac2w2k - ok
    10:28:36.0484 3276 [ 683789CAA3864EB46125AE86FF677D34 ] dac960nt C:\WINDOWS\system32\DRIVERS\dac960nt.sys
    10:28:36.0609 3276 dac960nt - ok
    10:28:36.0671 3276 [ 5C83A4408604F737717AB96371201680 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
    10:28:36.0828 3276 DcomLaunch - ok
    10:28:36.0875 3276 [ CB6CA3E5261D65F6F809EED23BF167AA ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
    10:28:37.0031 3276 Dhcp - ok
    10:28:37.0078 3276 [ 00CA44E4534865F8A3B64F7C0984BFF0 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
    10:28:37.0203 3276 Disk - ok
    10:28:37.0265 3276 [ E2D0DE31442390C35E3163C87CB6A9EB ] DLABOIOM C:\WINDOWS\system32\DLA\DLABOIOM.SYS
    10:28:37.0296 3276 DLABOIOM ( UnsignedFile.Multi.Generic ) - warning
    10:28:37.0296 3276 DLABOIOM - detected UnsignedFile.Multi.Generic (1)
    10:28:37.0312 3276 [ D979BEBCF7EDCC9C9EE1857D1A68C67B ] DLACDBHM C:\WINDOWS\system32\Drivers\DLACDBHM.SYS
    10:28:37.0328 3276 DLACDBHM ( UnsignedFile.Multi.Generic ) - warning
    10:28:37.0328 3276 DLACDBHM - detected UnsignedFile.Multi.Generic (1)
    10:28:37.0359 3276 [ 83545593E297F50A8E2524B4C071A153 ] DLADResN C:\WINDOWS\system32\DLA\DLADResN.SYS
    10:28:37.0359 3276 DLADResN ( UnsignedFile.Multi.Generic ) - warning
    10:28:37.0359 3276 DLADResN - detected UnsignedFile.Multi.Generic (1)
    10:28:37.0375 3276 [ 96E01D901CDC98C7817155CC057001BF ] DLAIFS_M C:\WINDOWS\system32\DLA\DLAIFS_M.SYS
    10:28:37.0406 3276 DLAIFS_M ( UnsignedFile.Multi.Generic ) - warning
    10:28:37.0406 3276 DLAIFS_M - detected UnsignedFile.Multi.Generic (1)
    10:28:37.0453 3276 [ 0A60A39CC5E767980A31CA5D7238DFA9 ] DLAOPIOM C:\WINDOWS\system32\DLA\DLAOPIOM.SYS
    10:28:37.0484 3276 DLAOPIOM ( UnsignedFile.Multi.Generic ) - warning
    10:28:37.0484 3276 DLAOPIOM - detected UnsignedFile.Multi.Generic (1)
    10:28:37.0484 3276 [ 9FE2B72558FC808357F427FD83314375 ] DLAPoolM C:\WINDOWS\system32\DLA\DLAPoolM.SYS
    10:28:37.0500 3276 DLAPoolM ( UnsignedFile.Multi.Generic ) - warning
    10:28:37.0500 3276 DLAPoolM - detected UnsignedFile.Multi.Generic (1)
    10:28:37.0500 3276 [ 7EE0852AE8907689DF25049DCD2342E8 ] DLARTL_N C:\WINDOWS\system32\Drivers\DLARTL_N.SYS
    10:28:37.0515 3276 DLARTL_N ( UnsignedFile.Multi.Generic ) - warning
    10:28:37.0515 3276 DLARTL_N - detected UnsignedFile.Multi.Generic (1)
    10:28:37.0531 3276 [ F08E1DAFAC457893399E03430A6A1397 ] DLAUDFAM C:\WINDOWS\system32\DLA\DLAUDFAM.SYS
    10:28:37.0531 3276 DLAUDFAM ( UnsignedFile.Multi.Generic ) - warning
    10:28:37.0531 3276 DLAUDFAM - detected UnsignedFile.Multi.Generic (1)
    10:28:37.0546 3276 [ E7D105ED1E694449D444A9933DF8E060 ] DLAUDF_M C:\WINDOWS\system32\DLA\DLAUDF_M.SYS
    10:28:37.0562 3276 DLAUDF_M ( UnsignedFile.Multi.Generic ) - warning
    10:28:37.0562 3276 DLAUDF_M - detected UnsignedFile.Multi.Generic (1)
    10:28:37.0578 3276 dmadmin - ok
    10:28:37.0640 3276 [ C0FBB516E06E243F0CF31F597E7EBF7D ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
    10:28:37.0812 3276 dmboot - ok
    10:28:37.0859 3276 [ F5E7B358A732D09F4BCF2824B88B9E28 ] dmio C:\WINDOWS\system32\DRIVERS\dmio.sys
    10:28:38.0015 3276 dmio - ok
    10:28:38.0031 3276 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
    10:28:38.0171 3276 dmload - ok
    10:28:38.0203 3276 [ 1639D9964C9E1B2ECCA95C8217D3E70D ] dmserver C:\WINDOWS\System32\dmserver.dll
    10:28:38.0375 3276 dmserver - ok
    10:28:38.0406 3276 [ A6F881284AC1150E37D9AE47FF601267 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
    10:28:38.0562 3276 DMusic - ok
    10:28:38.0593 3276 [ 7379DE06FD196E396A00AA97B990C00D ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
    10:28:38.0750 3276 Dnscache - ok
    10:28:38.0812 3276 [ 0F0F6E687E5E15579EF4DA8DD6945814 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
    10:28:38.0812 3276 Dot3svc ( UnsignedFile.Multi.Generic ) - warning
    10:28:38.0812 3276 Dot3svc - detected UnsignedFile.Multi.Generic (1)
    10:28:38.0828 3276 [ 40F3B93B4E5B0126F2F5C0A7A5E22660 ] dpti2o C:\WINDOWS\system32\DRIVERS\dpti2o.sys
    10:28:38.0968 3276 dpti2o - ok
    10:28:39.0015 3276 [ 1ED4DBBAE9F5D558DBBA4CC450E3EB2E ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
    10:28:39.0171 3276 drmkaud - ok
    10:28:39.0187 3276 [ FD0F95981FEF9073659D8EC58E40AA3C ] DRVMCDB C:\WINDOWS\system32\Drivers\DRVMCDB.SYS
    10:28:39.0203 3276 DRVMCDB ( UnsignedFile.Multi.Generic ) - warning
    10:28:39.0203 3276 DRVMCDB - detected UnsignedFile.Multi.Generic (1)
    10:28:39.0218 3276 [ B4869D320428CDC5EC4D7F5E808E99B5 ] DRVNDDM C:\WINDOWS\system32\Drivers\DRVNDDM.SYS
    10:28:39.0234 3276 DRVNDDM ( UnsignedFile.Multi.Generic ) - warning
    10:28:39.0234 3276 DRVNDDM - detected UnsignedFile.Multi.Generic (1)
    10:28:39.0312 3276 [ FE80901578E7E3DA70299A5AEB2B7FBD ] DSBrokerService C:\Program Files\DellSupport\brkrsvc.exe
    10:28:39.0328 3276 DSBrokerService - ok
    10:28:39.0359 3276 [ 413F2D5F9D802688242C23B38F767ECB ] DSproct C:\Program Files\DellSupport\GTAction\triggers\DSproct.sys
    10:28:39.0359 3276 DSproct ( UnsignedFile.Multi.Generic ) - warning
    10:28:39.0359 3276 DSproct - detected UnsignedFile.Multi.Generic (1)
    10:28:39.0390 3276 [ DFEABB7CFFFADEA4A912AB95BDC3177A ] dsunidrv C:\WINDOWS\system32\DRIVERS\dsunidrv.sys
    10:28:39.0421 3276 dsunidrv - ok
    10:28:39.0453 3276 [ D57A8FC800B501AC05B10D00F66D127A ] E100B C:\WINDOWS\system32\DRIVERS\e100b325.sys
    10:28:39.0468 3276 E100B - ok
    10:28:39.0515 3276 [ 2187855A7703ADEF0CEF9EE4285182CC ] EapHost C:\WINDOWS\System32\eapsvc.dll
    10:28:39.0531 3276 EapHost ( UnsignedFile.Multi.Generic ) - warning
    10:28:39.0531 3276 EapHost - detected UnsignedFile.Multi.Generic (1)
    10:28:39.0625 3276 [ 5D1347AA5AE6E2F77D7F4F8372D95AC9 ] ehRecvr C:\WINDOWS\eHome\ehRecvr.exe
    10:28:39.0671 3276 ehRecvr - ok
    10:28:39.0703 3276 [ A53243709439AC2A4C216B817F8D7411 ] ehSched C:\WINDOWS\eHome\ehSched.exe
    10:28:39.0734 3276 ehSched - ok
    10:28:39.0750 3276 [ 67DFF7BBBD0E80AAB7B3CF061448DB8A ] ERSvc C:\WINDOWS\System32\ersvc.dll
    10:28:39.0890 3276 ERSvc - ok
    10:28:39.0921 3276 [ C6CE6EEC82F187615D1002BB3BB50ED4 ] Eventlog C:\WINDOWS\system32\services.exe
    10:28:40.0078 3276 Eventlog - ok
    10:28:40.0109 3276 [ ACD36A2DD7D1E9D8A060AA651DC07E63 ] EventSystem C:\WINDOWS\system32\es.dll
    10:28:40.0281 3276 EventSystem - ok
    10:28:40.0375 3276 [ 3117F595E9615E04F05A54FC15A03B20 ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
    10:28:40.0500 3276 Fastfat - ok
    10:28:40.0546 3276 [ E7518DC542D3EBDCB80EDD98462C7821 ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
    10:28:40.0671 3276 FastUserSwitchingCompatibility - ok
    10:28:40.0718 3276 [ FCBD571FA0EE8DC238944AE5FAB74461 ] Fax C:\WINDOWS\system32\fxssvc.exe
    10:28:40.0875 3276 Fax - ok
    10:28:40.0937 3276 [ CED2E8396A8838E59D8FD529C680E02C ] Fdc C:\WINDOWS\system32\DRIVERS\fdc.sys
    10:28:41.0062 3276 Fdc - ok
    10:28:41.0109 3276 [ E153AB8A11DE5452BCF5AC7652DBF3ED ] Fips C:\WINDOWS\system32\drivers\Fips.sys
    10:28:41.0265 3276 Fips - ok
    10:28:41.0296 3276 [ 0DD1DE43115B93F4D85E889D7A86F548 ] Flpydisk C:\WINDOWS\system32\DRIVERS\flpydisk.sys
    10:28:41.0421 3276 Flpydisk - ok
    10:28:41.0468 3276 [ 157754F0DF355A9E0A6F54721914F9C6 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
    10:28:41.0625 3276 FltMgr - ok
    10:28:41.0718 3276 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
    10:28:41.0734 3276 FontCache3.0.0.0 - ok
    10:28:41.0781 3276 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
    10:28:41.0937 3276 Fs_Rec - ok
    10:28:41.0937 3276 [ 6AC26732762483366C3969C9E4D2259D ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
    10:28:42.0078 3276 Ftdisk - ok
    10:28:42.0125 3276 [ AB8A6A87D9D7255C3884D5B9541A6E80 ] GEARAspiWDM C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
    10:28:42.0140 3276 GEARAspiWDM - ok
    10:28:42.0156 3276 [ C0F1D4A21DE5A415DF8170616703DEBF ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
    10:28:42.0281 3276 Gpc - ok
    10:28:42.0390 3276 [ 751C1D2CA2ABF4A9F5A6B8D7D45B907C ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    10:28:42.0406 3276 gusvc - ok
    10:28:42.0468 3276 [ 573C7D0A32852B48F3058CFD8026F511 ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
    10:28:42.0484 3276 HDAudBus ( UnsignedFile.Multi.Generic ) - warning
    10:28:42.0484 3276 HDAudBus - detected UnsignedFile.Multi.Generic (1)
    10:28:42.0578 3276 [ 8827911A8C37E40C027CBFC88E69D967 ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
    10:28:42.0718 3276 helpsvc - ok
    10:28:42.0765 3276 [ 9376E6893E52B368ABC6255BF54F0B28 ] HidServ C:\WINDOWS\System32\hidserv.dll
    10:28:42.0890 3276 HidServ - ok
    10:28:42.0937 3276 [ 1DE6783B918F540149AA69943BDFEBA8 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys
    10:28:43.0062 3276 HidUsb - ok
    10:28:43.0109 3276 [ 8878BD685E490239777BFE51320B88E9 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
    10:28:43.0125 3276 hkmsvc ( UnsignedFile.Multi.Generic ) - warning
    10:28:43.0125 3276 hkmsvc - detected UnsignedFile.Multi.Generic (1)
    10:28:43.0218 3276 [ C5F00D15AA15CB7F55A027FF75E44BB7 ] HP Port Resolver C:\WINDOWS\system32\spool\drivers\w32x86\3\HPBPRO.EXE
    10:28:43.0312 3276 HP Port Resolver - ok
    10:28:43.0328 3276 [ B028377DEA0546A5FCFBA928A8AEFAE0 ] hpn C:\WINDOWS\system32\DRIVERS\hpn.sys
    10:28:43.0468 3276 hpn - ok
    10:28:43.0515 3276 [ 77E4FF0B73BC0AEAAF39BF0C8104231F ] HSFHWBS2 C:\WINDOWS\system32\DRIVERS\HSFHWBS2.sys
    10:28:43.0531 3276 HSFHWBS2 - ok
    10:28:43.0578 3276 [ 60E1604729A15EF4A3B05F298427B3B1 ] HSF_DP C:\WINDOWS\system32\DRIVERS\HSF_DP.sys
    10:28:43.0609 3276 HSF_DP - ok
    10:28:43.0687 3276 [ C19B522A9AE0BBC3293397F3055E80A1 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
    10:28:43.0828 3276 HTTP - ok
    10:28:43.0875 3276 [ 064D8581ADF77C25133E7D751D917D83 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
    10:28:44.0015 3276 HTTPFilter - ok
    10:28:44.0062 3276 [ 8F09F91B5C91363B77BCD15599570F2C ] i2omgmt C:\WINDOWS\system32\drivers\i2omgmt.sys
    10:28:44.0218 3276 i2omgmt - ok
  13. Sprinter

    Sprinter Newcomer, in training Topic Starter Posts: 59

    10:28:44.0250 3276 [ ED6BF9E441FDEA13292A6D30A64A24C3 ] i2omp C:\WINDOWS\system32\DRIVERS\i2omp.sys
    10:28:44.0390 3276 i2omp - ok
    10:28:44.0421 3276 [ 5502B58EEF7486EE6F93F3F164DCB808 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
    10:28:44.0546 3276 i8042prt - ok
    10:28:44.0640 3276 [ 5A8E05F1D5C36ABD58CFFA111EB325EA ] ialm C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
    10:28:44.0703 3276 ialm - ok
    10:28:44.0812 3276 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
    10:28:44.0843 3276 idsvc - ok
    10:28:44.0906 3276 [ F8AA320C6A0409C0380E5D8A99D76EC6 ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
    10:28:45.0031 3276 Imapi - ok
    10:28:45.0093 3276 [ FA788520BCAC0F5D9D5CDE5615C0D931 ] ImapiService C:\WINDOWS\system32\imapi.exe
    10:28:45.0250 3276 ImapiService - ok
    10:28:45.0265 3276 [ 4A40E045FAEE58631FD8D91AFC620719 ] ini910u C:\WINDOWS\system32\DRIVERS\ini910u.sys
    10:28:45.0406 3276 ini910u - ok
    10:28:45.0421 3276 [ 2D722B2B54AB55B2FA475EB58D7B2AAD ] IntelIde C:\WINDOWS\system32\DRIVERS\intelide.sys
    10:28:45.0578 3276 IntelIde - ok
    10:28:45.0625 3276 [ 279FB78702454DFF2BB445F238C048D2 ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
    10:28:45.0781 3276 intelppm - ok
    10:28:45.0796 3276 [ 4448006B6BC60E6C027932CFC38D6855 ] Ip6Fw C:\WINDOWS\system32\drivers\ip6fw.sys
    10:28:45.0921 3276 Ip6Fw - ok
    10:28:45.0953 3276 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
    10:28:46.0078 3276 IpFilterDriver - ok
    10:28:46.0093 3276 [ E1EC7F5DA720B640CD8FB8424F1B14BB ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
    10:28:46.0218 3276 IpInIp - ok
    10:28:46.0265 3276 [ B5A8E215AC29D24D60B4D1250EF05ACE ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
    10:28:46.0390 3276 IpNat - ok
    10:28:46.0437 3276 [ 62937A89470AF8FF172F0980CA8AEFC9 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
    10:28:46.0468 3276 iPod Service - ok
    10:28:46.0515 3276 [ 64537AA5C003A6AFEEE1DF819062D0D1 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
    10:28:46.0656 3276 IPSec - ok
    10:28:46.0671 3276 [ 50708DAA1B1CBB7D6AC1CF8F56A24410 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
    10:28:46.0765 3276 IRENUM - ok
    10:28:46.0812 3276 [ E504F706CCB699C2596E9A3DA1596E87 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
    10:28:46.0937 3276 isapnp - ok
    10:28:47.0031 3276 [ 4F2143570D2250CA4C4A4C98553C82CD ] JavaQuickStarterService C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe
    10:28:47.0046 3276 JavaQuickStarterService - ok
    10:28:47.0046 3276 [ EBDEE8A2EE5393890A1ACEE971C4C246 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
    10:28:47.0187 3276 Kbdclass - ok
    10:28:47.0187 3276 [ E182FA8E49E8EE41B4ADC53093F3C7E6 ] kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys
    10:28:47.0328 3276 kbdhid - ok
    10:28:47.0390 3276 [ D93CAD07C5683DB066B0B2D2D3790EAD ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
    10:28:47.0546 3276 kmixer - ok
    10:28:47.0578 3276 [ EB7FFE87FD367EA8FCA0506F74A87FBB ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
    10:28:47.0734 3276 KSecDD - ok
    10:28:47.0781 3276 [ 93D32468D34E000CB3407947D1D6E22A ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
    10:28:47.0906 3276 lanmanserver - ok
    10:28:47.0921 3276 [ 2C0A7B2AE9C26F2C163627679B42783C ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
    10:28:48.0078 3276 lanmanworkstation - ok
    10:28:48.0140 3276 [ 9FFD1CF2A782F2560E78EEC4B8B8689E ] LBeepKE C:\WINDOWS\system32\Drivers\LBeepKE.sys
    10:28:48.0156 3276 LBeepKE - ok
    10:28:48.0156 3276 lbrtfdc - ok
    10:28:48.0234 3276 [ 3AF6B73A3AD1FC37C5933441F66CEB91 ] LBTServ C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
    10:28:48.0250 3276 LBTServ - ok
    10:28:48.0296 3276 [ 70035567754BED4E6AD353CA3F175127 ] LEqdUsb C:\WINDOWS\system32\Drivers\LEqdUsb.Sys
    10:28:48.0312 3276 LEqdUsb - ok
    10:28:48.0359 3276 [ 32491B6BAE0AFAD1D7A62C0EF0AF4321 ] LHidEqd C:\WINDOWS\system32\Drivers\LHidEqd.Sys
    10:28:48.0375 3276 LHidEqd - ok
    10:28:48.0406 3276 [ 7F9C7B28CF1C859E1C42619EEA946DC8 ] LHidFilt C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys
    10:28:48.0421 3276 LHidFilt - ok
    10:28:48.0484 3276 [ B3EFF6D938C572E90A07B3D87A3C7657 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
    10:28:48.0640 3276 LmHosts - ok
    10:28:48.0671 3276 [ AB33792A87285344F43B5CE23421BAB0 ] LMouFilt C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys
    10:28:48.0687 3276 LMouFilt - ok
    10:28:48.0750 3276 [ F453D1E6D881E8F8717E20CCD4199E85 ] McComponentHostService C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe
    10:28:48.0765 3276 McComponentHostService - ok
    10:28:48.0875 3276 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] McMPFSvc C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
    10:28:48.0906 3276 McMPFSvc - ok
    10:28:48.0921 3276 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] mcmscsvc C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
    10:28:48.0937 3276 mcmscsvc - ok
    10:28:48.0937 3276 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] McNaiAnn C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
    10:28:48.0953 3276 McNaiAnn - ok
    10:28:48.0968 3276 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] McNASvc C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
    10:28:48.0984 3276 McNASvc - ok
    10:28:49.0156 3276 [ ADA83A989D5822DAA5E2F62FDF118AC6 ] McODS C:\Program Files\McAfee\VirusScan\mcods.exe
    10:28:49.0171 3276 McODS - ok
    10:28:49.0187 3276 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] McProxy C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
    10:28:49.0203 3276 McProxy - ok
    10:28:49.0250 3276 [ DF0A511F38F16016BF658FCA0090CB87 ] McrdSvc C:\WINDOWS\ehome\mcrdsvc.exe
    10:28:49.0281 3276 McrdSvc - ok
    10:28:49.0328 3276 [ 7394FCADC0DD68DDC5921884906F4AE9 ] McShield C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
    10:28:49.0343 3276 McShield - ok
    10:28:49.0437 3276 [ 11F714F85530A2BD134074DC30E99FCA ] MDM C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    10:28:49.0453 3276 MDM - ok
    10:28:49.0500 3276 [ EEAEA6514BA7C9D273B5E87C4E1AAB30 ] mdmxsdk C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys
    10:28:49.0531 3276 mdmxsdk - ok
    10:28:49.0593 3276 [ 95FD808E4AC22ABA025A7B3EAC0375D2 ] Messenger C:\WINDOWS\System32\msgsvc.dll
    10:28:49.0718 3276 Messenger - ok
    10:28:49.0781 3276 [ 84D59A3EDDFB9438FB94F7F80D37859D ] mfeapfk C:\WINDOWS\system32\drivers\mfeapfk.sys
    10:28:49.0796 3276 mfeapfk - ok
    10:28:49.0843 3276 [ 67E961988312B1A28D6F93357B0BF998 ] mfeavfk C:\WINDOWS\system32\drivers\mfeavfk.sys
    10:28:49.0859 3276 mfeavfk - ok
    10:28:49.0906 3276 [ 19161B1796CF74A6A326ABDE309062BA ] mfebopk C:\WINDOWS\system32\drivers\mfebopk.sys
    10:28:49.0906 3276 mfebopk - ok
    10:28:49.0953 3276 [ 3D8E909DA47E22E2B32056FD2AE66EDE ] mfefire C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
    10:28:49.0984 3276 mfefire - ok
    10:28:50.0000 3276 [ D5F89B4934960C70882924D992C6ABFC ] mfefirek C:\WINDOWS\system32\drivers\mfefirek.sys
    10:28:50.0015 3276 mfefirek - ok
    10:28:50.0062 3276 [ 0EFAB2B91B27543FE589DE700DE07136 ] mfehidk C:\WINDOWS\system32\drivers\mfehidk.sys
    10:28:50.0093 3276 mfehidk - ok
    10:28:50.0156 3276 [ 549DD4966BF0B1D1FC205CA0755A745B ] mfendisk C:\WINDOWS\system32\DRIVERS\mfendisk.sys
    10:28:50.0171 3276 mfendisk - ok
    10:28:50.0187 3276 [ 549DD4966BF0B1D1FC205CA0755A745B ] mfendiskmp C:\WINDOWS\system32\DRIVERS\mfendisk.sys
    10:28:50.0203 3276 mfendiskmp - ok
    10:28:50.0250 3276 [ C9EDA1EADA2AB6E34CD1A10C3A24AB25 ] mferkdet C:\WINDOWS\system32\drivers\mferkdet.sys
    10:28:50.0265 3276 mferkdet - ok
    10:28:50.0296 3276 [ E6C5F7AADE5A31C057D73201ACFE8ADF ] mfetdi2k C:\WINDOWS\system32\drivers\mfetdi2k.sys
    10:28:50.0312 3276 mfetdi2k - ok
    10:28:50.0375 3276 [ 5C1B2814EF2A6313936A111D3FD095AF ] mfevtp C:\WINDOWS\system32\mfevtps.exe
    10:28:50.0390 3276 mfevtp - ok
    10:28:50.0437 3276 [ B7521F69C0A9B29D356157229376FB21 ] MHN C:\WINDOWS\System32\mhn.dll
    10:28:50.0500 3276 MHN - ok
    10:28:50.0515 3276 [ 7F2F1D2815A6449D346FCCCBC569FBD6 ] MHNDRV C:\WINDOWS\system32\DRIVERS\mhndrv.sys
    10:28:50.0593 3276 MHNDRV - ok
    10:28:50.0640 3276 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
    10:28:50.0796 3276 mnmdd - ok
    10:28:50.0843 3276 [ F6415361201915B9FE3896B0E4E724FF ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe
    10:28:50.0984 3276 mnmsrvc - ok
    10:28:51.0031 3276 [ 6FC6F9D7ACC36DCA9B914565A3AEDA05 ] Modem C:\WINDOWS\system32\drivers\Modem.sys
    10:28:51.0171 3276 Modem - ok
    10:28:51.0203 3276 [ 1992E0D143B09653AB0F9C5E04B0FD65 ] MODEMCSA C:\WINDOWS\system32\drivers\MODEMCSA.sys
    10:28:51.0328 3276 MODEMCSA - ok
    10:28:51.0359 3276 [ 34E1F0031153E491910E12551400192C ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
    10:28:51.0484 3276 Mouclass - ok
    10:28:51.0531 3276 [ B1C303E17FB9D46E87A98E4BA6769685 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
    10:28:51.0687 3276 mouhid - ok
    10:28:51.0703 3276 [ 65653F3B4477F3C63E68A9659F85EE2E ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
    10:28:51.0843 3276 MountMgr - ok
    10:28:51.0906 3276 [ 8BE15F71DE6FF33FC56DCDE7B2B9EFE8 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
    10:28:51.0937 3276 MozillaMaintenance - ok
    10:28:51.0968 3276 [ 3F4BB95E5A44F3BE34824E8E7CAF0737 ] mraid35x C:\WINDOWS\system32\DRIVERS\mraid35x.sys
    10:28:52.0093 3276 mraid35x - ok
    10:28:52.0109 3276 [ 46EDCC8F2DB2F322C24F48785CB46366 ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
    10:28:52.0250 3276 MRxDAV - ok
    10:28:52.0312 3276 [ 1FD607FC67F7F7C633C3DA65BFC53D18 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
    10:28:52.0437 3276 MRxSmb - ok
    10:28:52.0484 3276 [ C7C3D89EB0A6F3DBA622EA737FA335B1 ] MSDTC C:\WINDOWS\system32\msdtc.exe
    10:28:52.0609 3276 MSDTC - ok
    10:28:52.0625 3276 [ 561B3A4333CA2DBDBA28B5B956822519 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
    10:28:52.0781 3276 Msfs - ok
    10:28:52.0781 3276 MSIServer - ok
    10:28:52.0828 3276 [ AE431A8DD3C1D0D0610CDBAC16057AD0 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
    10:28:52.0984 3276 MSKSSRV - ok
    10:28:53.0046 3276 [ 13E75FEF9DFEB08EEDED9D0246E1F448 ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
    10:28:53.0187 3276 MSPCLOCK - ok
    10:28:53.0234 3276 [ 1988A33FF19242576C3D0EF9CE785DA7 ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
    10:28:53.0406 3276 MSPQM - ok
    10:28:53.0453 3276 [ 469541F8BFD2B32659D5D463A6714BCE ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
    10:28:53.0593 3276 mssmbios - ok
    10:28:53.0640 3276 [ 82035E0F41C2DD05AE41D27FE6CF7DE1 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
    10:28:53.0765 3276 Mup - ok
    10:28:53.0812 3276 [ 0102140028FAD045756796E1C685D695 ] napagent C:\WINDOWS\System32\qagentrt.dll
    10:28:53.0828 3276 napagent ( UnsignedFile.Multi.Generic ) - warning
    10:28:53.0828 3276 napagent - detected UnsignedFile.Multi.Generic (1)
    10:28:53.0875 3276 [ 558635D3AF1C7546D26067D5D9B6959E ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
    10:28:54.0015 3276 NDIS - ok
    10:28:54.0015 3276 [ 08D43BBDACDF23F34D79E44ED35C1B4C ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
    10:28:54.0171 3276 NdisTapi - ok
    10:28:54.0234 3276 [ 34D6CD56409DA9A7ED573E1C90A308BF ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
    10:28:54.0375 3276 Ndisuio - ok
    10:28:54.0390 3276 [ 0B90E255A9490166AB368CD55A529893 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
    10:28:54.0531 3276 NdisWan - ok
    10:28:54.0531 3276 [ 59FC3FB44D2669BC144FD87826BB571F ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
    10:28:54.0671 3276 NDProxy - ok
    10:28:54.0671 3276 [ 3A2ACA8FC1D7786902CA434998D7CEB4 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
    10:28:54.0812 3276 NetBIOS - ok
    10:28:54.0875 3276 [ 0C80E410CD2F47134407EE7DD19CC86B ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
    10:28:55.0015 3276 NetBT - ok
    10:28:55.0078 3276 [ 05AFB5AD06462257BEA7495283C86D50 ] NetDDE C:\WINDOWS\system32\netdde.exe
    10:28:55.0234 3276 NetDDE - ok
    10:28:55.0250 3276 [ 05AFB5AD06462257BEA7495283C86D50 ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
    10:28:55.0390 3276 NetDDEdsdm - ok
    10:28:55.0437 3276 [ 84885F9B82F4D55C6146EBF6065D75D2 ] Netlogon C:\WINDOWS\system32\lsass.exe
    10:28:55.0578 3276 Netlogon - ok
    10:28:55.0625 3276 [ DAB9E6C7105D2EF49876FE92C524F565 ] Netman C:\WINDOWS\System32\netman.dll
    10:28:55.0796 3276 Netman - ok
    10:28:55.0906 3276 [ 9DA26B773BD04B867A8E9F427CD048FC ] NetSvc C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
    10:28:55.0921 3276 NetSvc ( UnsignedFile.Multi.Generic ) - warning
    10:28:55.0921 3276 NetSvc - detected UnsignedFile.Multi.Generic (1)
    10:28:55.0984 3276 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
    10:28:56.0000 3276 NetTcpPortSharing - ok
    10:28:56.0062 3276 [ 4E74AF063C3271FBEA20DD940CFD1184 ] Nla C:\WINDOWS\System32\mswsock.dll
    10:28:56.0234 3276 Nla - ok
    10:28:56.0234 3276 [ 4F601BCB8F64EA3AC0994F98FED03F8E ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
    10:28:56.0406 3276 Npfs - ok
    10:28:56.0468 3276 [ B78BE402C3F63DD55521F73876951CDD ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
    10:28:56.0625 3276 Ntfs - ok
    10:28:56.0640 3276 [ 84885F9B82F4D55C6146EBF6065D75D2 ] NtLmSsp C:\WINDOWS\system32\lsass.exe
    10:28:56.0781 3276 NtLmSsp - ok
    10:28:56.0859 3276 [ B62F29C00AC55A761B2E45877D85EA0F ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
    10:28:57.0000 3276 NtmsSvc - ok
    10:28:57.0046 3276 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
    10:28:57.0171 3276 Null - ok
    10:28:57.0250 3276 [ 2B298519EDBFCF451D43E0F1E8F1006D ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
    10:28:57.0437 3276 nv - ok
    10:28:57.0468 3276 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
    10:28:57.0593 3276 NwlnkFlt - ok
    10:28:57.0609 3276 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
    10:28:57.0750 3276 NwlnkFwd - ok
    10:28:57.0796 3276 [ 7A56CF3E3F12E8AF599963B16F50FB6A ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
    10:28:57.0812 3276 ose - ok
    10:28:57.0859 3276 [ 103A9B117A7D9903111955CDAFE65AC6 ] ossrv C:\WINDOWS\system32\DRIVERS\ctoss2k.sys
    10:28:57.0890 3276 ossrv - ok
    10:28:57.0953 3276 [ 29744EB4CE659DFE3B4122DEB45BC478 ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys
    10:28:58.0109 3276 Parport - ok
    10:28:58.0109 3276 [ 3334430C29DC338092F79C38EF7B4CD0 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
    10:28:58.0250 3276 PartMgr - ok
    10:28:58.0265 3276 [ 70E98B3FD8E963A6A46A2E6247E0BEA1 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
    10:28:58.0421 3276 ParVdm - ok
    10:28:58.0437 3276 [ 8086D9979234B603AD5BC2F5D890B234 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
    10:28:58.0578 3276 PCI - ok
    10:28:58.0593 3276 PCIDump - ok
    10:28:58.0609 3276 [ CCF5F451BB1A5A2A522A76E670000FF0 ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
    10:28:58.0750 3276 PCIIde - ok
    10:28:58.0812 3276 [ 82A087207DECEC8456FBE8537947D579 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
    10:28:58.0968 3276 Pcmcia - ok
    10:28:58.0968 3276 PDCOMP - ok
    10:28:58.0968 3276 PDFRAME - ok
    10:28:58.0984 3276 PDRELI - ok
    10:28:58.0984 3276 PDRFRAME - ok
    10:28:59.0015 3276 [ 6C14B9C19BA84F73D3A86DBA11133101 ] perc2 C:\WINDOWS\system32\DRIVERS\perc2.sys
    10:28:59.0140 3276 perc2 - ok
    10:28:59.0156 3276 [ F50F7C27F131AFE7BEBA13E14A3B9416 ] perc2hib C:\WINDOWS\system32\DRIVERS\perc2hib.sys
    10:28:59.0281 3276 perc2hib - ok
    10:28:59.0328 3276 [ C6CE6EEC82F187615D1002BB3BB50ED4 ] PlugPlay C:\WINDOWS\system32\services.exe
    10:28:59.0484 3276 PlugPlay - ok
    10:28:59.0515 3276 [ D31F88C5F19EEFA366A415D6BC5F2ABC ] Pml Driver HPZ12 C:\WINDOWS\system32\HPZipm12.exe
    10:28:59.0578 3276 Pml Driver HPZ12 - ok
    10:28:59.0593 3276 [ 84885F9B82F4D55C6146EBF6065D75D2 ] PolicyAgent C:\WINDOWS\system32\lsass.exe
    10:28:59.0734 3276 PolicyAgent - ok
    10:28:59.0796 3276 [ 1C5CC65AAC0783C344F16353E60B72AC ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
    10:28:59.0921 3276 PptpMiniport - ok
    10:28:59.0984 3276 [ 0D97D88720A4087EC93AF7DBB303B30A ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys
    10:29:00.0140 3276 Processor - ok
    10:29:00.0140 3276 [ 84885F9B82F4D55C6146EBF6065D75D2 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
    10:29:00.0265 3276 ProtectedStorage - ok
    10:29:00.0281 3276 [ 48671F327553DCF1D27F6197F622A668 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
    10:29:00.0406 3276 PSched - ok
    10:29:00.0468 3276 [ 1DF21F001F3A94EBA4A2950C70CC358F ] PSI C:\WINDOWS\system32\DRIVERS\psi_mf.sys
    10:29:00.0484 3276 PSI - ok
    10:29:00.0515 3276 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
    10:29:00.0640 3276 Ptilink - ok
    10:29:00.0687 3276 [ 40F2031BD9148D3194353EA7DEC97A07 ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys
    10:29:00.0703 3276 PxHelp20 - ok
    10:29:00.0765 3276 [ 0A63FB54039EB5662433CABA3B26DBA7 ] ql1080 C:\WINDOWS\system32\DRIVERS\ql1080.sys
    10:29:00.0890 3276 ql1080 - ok
    10:29:00.0953 3276 [ 6503449E1D43A0FF0201AD5CB1B8C706 ] Ql10wnt C:\WINDOWS\system32\DRIVERS\ql10wnt.sys
    10:29:01.0078 3276 Ql10wnt - ok
    10:29:01.0109 3276 [ 156ED0EF20C15114CA097A34A30D8A01 ] ql12160 C:\WINDOWS\system32\DRIVERS\ql12160.sys
    10:29:01.0250 3276 ql12160 - ok
    10:29:01.0281 3276 [ 70F016BEBDE6D29E864C1230A07CC5E6 ] ql1240 C:\WINDOWS\system32\DRIVERS\ql1240.sys
    10:29:01.0406 3276 ql1240 - ok
    10:29:01.0437 3276 [ 907F0AEEA6BC451011611E732BD31FCF ] ql1280 C:\WINDOWS\system32\DRIVERS\ql1280.sys
    10:29:01.0562 3276 ql1280 - ok
    10:29:01.0593 3276 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
    10:29:01.0718 3276 RasAcd - ok
    10:29:01.0781 3276 [ 44DB7A9BDD2FB58747D123FBF1D35ADB ] RasAuto C:\WINDOWS\System32\rasauto.dll
    10:29:01.0906 3276 RasAuto - ok
    10:29:01.0937 3276 [ 98FAEB4A4DCF812BA1C6FCA4AA3E115C ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
    10:29:02.0093 3276 Rasl2tp - ok
    10:29:02.0140 3276 [ 41A3C11E3517C962C9B44893BCEC3B34 ] RasMan C:\WINDOWS\System32\rasmans.dll
    10:29:02.0265 3276 RasMan - ok
    10:29:02.0343 3276 [ 7306EEED8895454CBED4669BE9F79FAA ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
    10:29:02.0484 3276 RasPppoe - ok
    10:29:02.0500 3276 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
    10:29:02.0625 3276 Raspti - ok
    10:29:02.0671 3276 [ 29D66245ADBA878FFF574CD66ABD2884 ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
    10:29:02.0812 3276 Rdbss - ok
    10:29:02.0828 3276 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
    10:29:02.0953 3276 RDPCDD - ok
    10:29:03.0000 3276 [ A2CAE2C60BC37E0751EF9DDA7CEAF4AD ] rdpdr C:\WINDOWS\system32\DRIVERS\rdpdr.sys
    10:29:03.0140 3276 rdpdr - ok
    10:29:03.0203 3276 [ D4F5643D7714EF499AE9527FDCD50894 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
    10:29:03.0359 3276 RDPWD - ok
    10:29:03.0421 3276 [ 729798E0933076B8FCFCD9934698F164 ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
    10:29:03.0546 3276 RDSessMgr - ok
    10:29:03.0593 3276 [ B31B4588E4086D8D84ADBF9845C2402B ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
    10:29:03.0718 3276 redbook - ok
    10:29:03.0781 3276 [ 3046DB917E3CFA040632799DD9B14865 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
    10:29:03.0921 3276 RemoteAccess - ok
    10:29:03.0953 3276 [ 3151427DB7D87107D1C5BE58FAC53960 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
    10:29:04.0109 3276 RemoteRegistry - ok
    10:29:04.0140 3276 [ 793F04A09B15E7C6C11DBDFFAF06C0AB ] RpcLocator C:\WINDOWS\system32\locator.exe
    10:29:04.0281 3276 RpcLocator - ok
    10:29:04.0328 3276 [ 5C83A4408604F737717AB96371201680 ] RpcSs C:\WINDOWS\System32\rpcss.dll
    10:29:04.0921 3276 RpcSs - ok
    10:29:04.0984 3276 [ 471B3F9741D762ABE75E9DEEA4787E47 ] RSVP C:\WINDOWS\system32\rsvp.exe
    10:29:05.0125 3276 RSVP - ok
    10:29:05.0156 3276 [ 84885F9B82F4D55C6146EBF6065D75D2 ] SamSs C:\WINDOWS\system32\lsass.exe
    10:29:05.0296 3276 SamSs - ok
    10:29:05.0359 3276 [ 25D8DE134DF108E3DBC8D7D23B1AA58E ] SCardDrv C:\WINDOWS\System32\SCardSvr.exe
    10:29:05.0515 3276 SCardDrv - ok
    10:29:05.0515 3276 [ 25D8DE134DF108E3DBC8D7D23B1AA58E ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
    10:29:05.0656 3276 SCardSvr - ok
    10:29:05.0718 3276 [ 92360854316611F6CC471612213C3D92 ] Schedule C:\WINDOWS\system32\schedsvc.dll
    10:29:05.0843 3276 Schedule - ok
    10:29:05.0968 3276 [ CC781378E7EDA615D2CDCA3B17829FA4 ] SeaPort C:\Program Files\Microsoft\BingBar\SeaPort.EXE
    10:29:05.0984 3276 SeaPort - ok
    10:29:06.0031 3276 [ D26E26EA516450AF9D072635C60387F4 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
    10:29:06.0125 3276 Secdrv - ok
    10:29:06.0171 3276 [ B1E0CE09895376871746F36DC5773B4F ] seclogon C:\WINDOWS\System32\seclogon.dll
    10:29:06.0328 3276 seclogon - ok
    10:29:06.0343 3276 [ DFD9870CF39C791D86C4C209DA9FA919 ] SENS C:\WINDOWS\system32\sens.dll
    10:29:06.0484 3276 SENS - ok
    10:29:06.0515 3276 [ A2D868AEEFF612E70E213C451A70CAFB ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys
    10:29:06.0640 3276 serenum - ok
    10:29:06.0703 3276 [ CD9404D115A00D249F70A371B46D5A26 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys
    10:29:06.0859 3276 Serial - ok
    10:29:06.0906 3276 [ 0D13B6DF6E9E101013A7AFB0CE629FE0 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
    10:29:07.0031 3276 Sfloppy - ok
    10:29:07.0109 3276 [ 36CC8C01B5E50163037BEF56CB96DEFF ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
    10:29:07.0265 3276 SharedAccess - ok
    10:29:07.0296 3276 [ E7518DC542D3EBDCB80EDD98462C7821 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
    10:29:07.0437 3276 ShellHWDetection - ok
    10:29:07.0500 3276 [ 6BD3976B881888AC9A0ED3EB94E7FD38 ] sigfilt C:\WINDOWS\system32\drivers\sigfilt.sys
    10:29:07.0578 3276 sigfilt - ok
    10:29:07.0578 3276 Simbad - ok
    10:29:07.0640 3276 [ 732D859B286DA692119F286B21A2A114 ] sisagp C:\WINDOWS\system32\DRIVERS\sisagp.sys
    10:29:07.0781 3276 sisagp - ok
    10:29:07.0812 3276 [ 83C0F71F86D3BDAF915685F3D568B20E ] Sparrow C:\WINDOWS\system32\DRIVERS\sparrow.sys
    10:29:07.0890 3276 Sparrow - ok
    10:29:07.0937 3276 [ 8E186B8F23295D1E42C573B82B80D548 ] splitter C:\WINDOWS\system32\drivers\splitter.sys
    10:29:08.0062 3276 splitter - ok
    10:29:08.0109 3276 [ 7435B108B935E42EA92CA94F59C8E717 ] Spooler C:\WINDOWS\system32\spoolsv.exe
    10:29:08.0250 3276 Spooler - ok
    10:29:08.0296 3276 [ E41B6D037D6CD08461470AF04500DC24 ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
    10:29:08.0375 3276 sr - ok
    10:29:08.0421 3276 [ 92BDF74F12D6CBEC43C94D4B7F804838 ] srservice C:\WINDOWS\system32\srsvc.dll
    10:29:08.0500 3276 srservice - ok
    10:29:08.0515 3276 [ 20B7E396720353E4117D64D9DCB926CA ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
    10:29:08.0656 3276 Srv - ok
    10:29:08.0687 3276 [ 4B8D61792F7175BED48859CC18CE4E38 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
    10:29:08.0750 3276 SSDPSRV - ok
    10:29:08.0781 3276 [ B95480C92C4C9C311BE47B8A1AD73770 ] STHDA C:\WINDOWS\system32\drivers\sthda.sys
    10:29:08.0796 3276 STHDA - ok
    10:29:08.0843 3276 [ A9573045BAA16EAB9B1085205B82F1ED ] StillCam C:\WINDOWS\system32\DRIVERS\serscan.sys
    10:29:08.0968 3276 StillCam - ok
    10:29:08.0984 3276 [ D9F6C4F6B1E188ADAFC42B561D9BC2E6 ] stisvc C:\WINDOWS\system32\wiaservc.dll
    10:29:09.0125 3276 stisvc - ok
    10:29:09.0156 3276 [ 03C1BAE4766E2450219D20B993D6E046 ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
    10:29:09.0312 3276 swenum - ok
    10:29:09.0359 3276 [ 94ABC808FC4B6D7D2BBF42B85E25BB4D ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
    10:29:09.0484 3276 swmidi - ok
    10:29:09.0500 3276 SwPrv - ok
    10:29:09.0515 3276 [ 1FF3217614018630D0A6758630FC698C ] symc810 C:\WINDOWS\system32\DRIVERS\symc810.sys
    10:29:09.0640 3276 symc810 - ok
    10:29:09.0687 3276 [ 070E001D95CF725186EF8B20335F933C ] symc8xx C:\WINDOWS\system32\DRIVERS\symc8xx.sys
    10:29:09.0828 3276 symc8xx - ok
    10:29:09.0843 3276 [ 80AC1C4ABBE2DF3B738BF15517A51F2C ] sym_hi C:\WINDOWS\system32\DRIVERS\sym_hi.sys
    10:29:09.0984 3276 sym_hi - ok
    10:29:10.0015 3276 [ BF4FAB949A382A8E105F46EBB4937058 ] sym_u3 C:\WINDOWS\system32\DRIVERS\sym_u3.sys
    10:29:10.0140 3276 sym_u3 - ok
    10:29:10.0187 3276 [ 650AD082D46BAC0E64C9C0E0928492FD ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
    10:29:10.0312 3276 sysaudio - ok
    10:29:10.0375 3276 [ 8B54AA346D1B1B113FFAA75501B8B1B2 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
    10:29:10.0500 3276 SysmonLog - ok
    10:29:10.0546 3276 [ EB4A4187D74A8EFDCBEA3EA2CB1BDFBD ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
    10:29:10.0703 3276 TapiSrv - ok
    10:29:10.0750 3276 [ 9F4B36614A0FC234525BA224957DE55C ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
    10:29:10.0906 3276 Tcpip - ok
    10:29:10.0921 3276 [ 38D437CF2D98965F239B0ABCD66DCB0F ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
    10:29:11.0062 3276 TDPIPE - ok
    10:29:11.0078 3276 [ ED0580AF02502D00AD8C4C066B156BE9 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
    10:29:11.0218 3276 TDTCP - ok
    10:29:11.0265 3276 [ A540A99C281D933F3D69D55E48727F47 ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
    10:29:11.0437 3276 TermDD - ok
    10:29:11.0500 3276 [ B60C877D16D9C880B952FDA04ADF16E6 ] TermService C:\WINDOWS\System32\termsrv.dll
    10:29:11.0671 3276 TermService - ok
    10:29:11.0703 3276 [ E7518DC542D3EBDCB80EDD98462C7821 ] Themes C:\WINDOWS\System32\shsvcs.dll
    10:29:11.0843 3276 Themes - ok
    10:29:11.0890 3276 [ 37DB0A7D097310E8B4DE803FC3119C78 ] TlntSvr C:\WINDOWS\system32\tlntsvr.exe
    10:29:11.0968 3276 TlntSvr - ok
    10:29:12.0000 3276 [ F2790F6AF01321B172AA62F8E1E187D9 ] TosIde C:\WINDOWS\system32\DRIVERS\toside.sys
    10:29:12.0125 3276 TosIde - ok
    10:29:12.0156 3276 [ 6D9AC544B30F96C57F8206566C1FB6A1 ] TrkWks C:\WINDOWS\system32\trkwks.dll
    10:29:12.0281 3276 TrkWks - ok
    10:29:12.0359 3276 [ 12F70256F140CD7D52C58C7048FDE657 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
    10:29:12.0484 3276 Udfs - ok
    10:29:12.0515 3276 [ 1B698A51CD528D8DA4FFAED66DFC51B9 ] ultra C:\WINDOWS\system32\DRIVERS\ultra.sys
    10:29:12.0593 3276 ultra - ok
    10:29:12.0640 3276 [ 6634C460C56EC7E48D6BE20B745DC03A ] UMWdf C:\WINDOWS\system32\wdfmgr.exe
    10:29:12.0718 3276 UMWdf - ok
    10:29:12.0765 3276 [ AFF2E5045961BBC0A602BB6F95EB1345 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
    10:29:12.0890 3276 Update - ok
    10:29:12.0937 3276 [ 0546477BDE979E33294FE97F6B3DE84A ] upnphost C:\WINDOWS\System32\upnphost.dll
    10:29:13.0015 3276 upnphost - ok
    10:29:13.0062 3276 [ 3F5DF65B0758675F95A2D43918A740A3 ] UPS C:\WINDOWS\System32\ups.exe
    10:29:13.0187 3276 UPS - ok
    10:29:13.0250 3276 [ C1CA131F4E3ED63D6BC89A35FFAD4CDA ] USBAAPL C:\WINDOWS\system32\Drivers\usbaapl.sys
    10:29:13.0265 3276 USBAAPL - ok
    10:29:13.0312 3276 [ BFFD9F120CC63BCBAA3D840F3EEF9F79 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
    10:29:13.0468 3276 usbccgp - ok
    10:29:13.0515 3276 [ 15E993BA2F6946B2BFBBFCD30398621E ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
    10:29:13.0656 3276 usbehci - ok
    10:29:13.0671 3276 [ C72F40947F92CEA56A8FB532EDF025F1 ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
    10:29:13.0796 3276 usbhub - ok
    10:29:13.0843 3276 [ A42369B7CD8886CD7C70F33DA6FCBCF5 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys
    10:29:13.0984 3276 usbprint - ok
    10:29:14.0015 3276 [ 6CD7B22193718F1D17A47A1CD6D37E75 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
    10:29:14.0171 3276 USBSTOR - ok
    10:29:14.0203 3276 [ F8FD1400092E23C8F2F31406EF06167B ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
    10:29:14.0328 3276 usbuhci - ok
    10:29:14.0343 3276 [ 8A60EDD72B4EA5AEA8202DAF0E427925 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
    10:29:14.0484 3276 VgaSave - ok
    10:29:14.0531 3276 [ D92E7C8A30CFD14D8E15B5F7F032151B ] viaagp C:\WINDOWS\system32\DRIVERS\viaagp.sys
    10:29:14.0671 3276 viaagp - ok
    10:29:14.0687 3276 [ 59CB1338AD3654417BEA49636457F65D ] ViaIde C:\WINDOWS\system32\DRIVERS\viaide.sys
    10:29:14.0828 3276 ViaIde - ok
    10:29:14.0875 3276 [ EE4660083DEBA849FF6C485D944B379B ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
    10:29:15.0000 3276 VolSnap - ok
    10:29:15.0078 3276 [ 3EE00364AE0FD8D604F46CBAF512838A ] VSS C:\WINDOWS\System32\vssvc.exe
    10:29:15.0156 3276 VSS - ok
    10:29:15.0218 3276 [ 2B281958F5D0CF99ED626E3EF39D5C8D ] w32time C:\WINDOWS\system32\w32time.dll
    10:29:15.0343 3276 w32time - ok
    10:29:15.0390 3276 [ 984EF0B9788ABF89974CFED4BFBAACBC ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
    10:29:15.0531 3276 Wanarp - ok
    10:29:15.0593 3276 [ 0A716C08CB13C3A8F4F51E882DBF7416 ] wanatw C:\WINDOWS\system32\DRIVERS\wanatw4.sys
    10:29:15.0609 3276 wanatw - ok
    10:29:15.0656 3276 [ FD47474BD21794508AF449D9D91AF6E6 ] Wdf01000 C:\WINDOWS\system32\DRIVERS\Wdf01000.sys
    10:29:15.0687 3276 Wdf01000 - ok
    10:29:15.0687 3276 WDICA - ok
    10:29:15.0734 3276 [ 2797F33EBF50466020C430EE4F037933 ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
    10:29:15.0890 3276 wdmaud - ok
    10:29:15.0921 3276 [ 5D0A442864BFBF3B19DCCA4CD29F6E99 ] WebClient C:\WINDOWS\System32\webclnt.dll
    10:29:16.0062 3276 WebClient - ok
    10:29:16.0125 3276 [ F59ED5A43B988A18EF582BB07B2327A7 ] winachsf C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys
    10:29:16.0156 3276 winachsf - ok
    10:29:16.0250 3276 [ F399242A80C4066FD155EFA4CF96658E ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
    10:29:16.0375 3276 winmgmt - ok
    10:29:16.0531 3276 [ 5144AE67D60EC653F97DDF3FEED29E77 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
    10:29:16.0578 3276 wlidsvc - ok
    10:29:16.0656 3276 [ 94A85E956A065E23E0010A6A7826243B ] WLSetupSvc C:\Program Files\Windows Live\installer\WLSetupSvc.exe
    10:29:16.0671 3276 WLSetupSvc ( UnsignedFile.Multi.Generic ) - warning
    10:29:16.0671 3276 WLSetupSvc - detected UnsignedFile.Multi.Generic (1)
    10:29:16.0718 3276 [ 581176F60885AEF8F78C6E38DCC3CDF9 ] WMDM PMSP Service C:\WINDOWS\system32\MsPMSPSv.exe
    10:29:16.0734 3276 WMDM PMSP Service ( UnsignedFile.Multi.Generic ) - warning
    10:29:16.0734 3276 WMDM PMSP Service - detected UnsignedFile.Multi.Generic (1)
    10:29:16.0781 3276 [ B9715B9C18BC6C8F4B66733D208CC9F7 ] WmdmPmSN C:\WINDOWS\system32\mspmsnsv.dll
    10:29:16.0796 3276 WmdmPmSN - ok
    10:29:16.0859 3276 [ 1AFF244CA134956C54474F4E2433E4CE ] Wmi C:\WINDOWS\System32\advapi32.dll
    10:29:17.0000 3276 Wmi - ok
    10:29:17.0078 3276 [ BA8CECC3E813E1F7C441B20393D4F86C ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe
    10:29:17.0203 3276 WmiApSrv - ok
    10:29:17.0312 3276 [ F74E3D9A7FA9556C3BBB14D4E5E63D3B ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe
    10:29:17.0359 3276 WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - warning
    10:29:17.0359 3276 WMPNetworkSvc - detected UnsignedFile.Multi.Generic (1)
    10:29:17.0406 3276 [ 0770ACCA345B35EF455AC0D96C8B39A0 ] WpdUsb C:\WINDOWS\system32\Drivers\wpdusb.sys
    10:29:17.0453 3276 WpdUsb - ok
    10:29:17.0515 3276 [ 6ABE6E225ADB5A751622A9CC3BC19CE8 ] WS2IFSL C:\WINDOWS\System32\drivers\ws2ifsl.sys
    10:29:17.0640 3276 WS2IFSL - ok
    10:29:17.0671 3276 [ 4D59DAA66C60858CDF4F67A900F42D4A ] wscsvc C:\WINDOWS\system32\wscsvc.dll
    10:29:17.0812 3276 wscsvc - ok
    10:29:17.0859 3276 [ 13D72740963CBA12D9FF76A7F218BCD8 ] wuauserv C:\WINDOWS\system32\wuauserv.dll
    10:29:17.0984 3276 wuauserv - ok
    10:29:18.0046 3276 [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
    10:29:18.0078 3276 WudfPf - ok
    10:29:18.0109 3276 [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
    10:29:18.0125 3276 WudfRd - ok
    10:29:18.0187 3276 [ 05231C04253C5BC30B26CBAAE680ED89 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
    10:29:18.0218 3276 WudfSvc - ok
    10:29:18.0265 3276 [ 5A91E6FEAB9F901302FA7FF768C0120F ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
    10:29:18.0453 3276 WZCSVC - ok
    10:29:18.0500 3276 [ EEF46DAB68229A14DA3D8E73C99E2959 ] xmlprov C:\WINDOWS\System32\xmlprov.dll
    10:29:18.0640 3276 xmlprov - ok
    10:29:18.0640 3276 ================ Scan global ===============================
    10:29:18.0687 3276 [ 00EF9C3AF83EDBAF18CA7A2837750117 ] C:\WINDOWS\system32\basesrv.dll
    10:29:18.0734 3276 [ 442D0EAD5534E4ADCF6D4469043C82C0 ] C:\WINDOWS\system32\winsrv.dll
    10:29:18.0750 3276 [ 442D0EAD5534E4ADCF6D4469043C82C0 ] C:\WINDOWS\system32\winsrv.dll
    10:29:18.0765 3276 [ C6CE6EEC82F187615D1002BB3BB50ED4 ] C:\WINDOWS\system32\services.exe
    10:29:18.0765 3276 [Global] - ok
    10:29:18.0765 3276 ================ Scan MBR ==================================
    10:29:18.0796 3276 [ 5CB90281D1A59B251F6603134774EEC3 ] \Device\Harddisk0\DR0
    10:29:19.0109 3276 \Device\Harddisk0\DR0 - ok
    10:29:19.0109 3276 ================ Scan VBR ==================================
    10:29:19.0125 3276 [ 2860AF43991D59E904A9CEA7DF8231F3 ] \Device\Harddisk0\DR0\Partition1
    10:29:19.0125 3276 \Device\Harddisk0\DR0\Partition1 - ok
    10:29:19.0125 3276 ============================================================
    10:29:19.0125 3276 Scan finished
    10:29:19.0125 3276 ============================================================
    10:29:19.0140 3304 Detected object count: 27
    10:29:19.0140 3304 Actual detected object count: 27
    10:29:51.0734 3304 ASCTRM ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0734 3304 ASCTRM ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0734 3304 Cdr4_xp ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0734 3304 Cdr4_xp ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0734 3304 Cdralw2k ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0734 3304 Cdralw2k ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0734 3304 cercsr6 ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0734 3304 cercsr6 ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0734 3304 Creative Labs Licensing Service ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0734 3304 Creative Labs Licensing Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0734 3304 Creative Service for CDROM Access ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0734 3304 Creative Service for CDROM Access ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0750 3304 DLABOIOM ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0750 3304 DLABOIOM ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0750 3304 DLACDBHM ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0750 3304 DLACDBHM ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0750 3304 DLADResN ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0750 3304 DLADResN ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0750 3304 DLAIFS_M ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0750 3304 DLAIFS_M ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0750 3304 DLAOPIOM ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0750 3304 DLAOPIOM ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0765 3304 DLAPoolM ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0765 3304 DLAPoolM ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0765 3304 DLARTL_N ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0765 3304 DLARTL_N ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0765 3304 DLAUDFAM ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0765 3304 DLAUDFAM ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0765 3304 DLAUDF_M ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0765 3304 DLAUDF_M ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0765 3304 Dot3svc ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0765 3304 Dot3svc ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0781 3304 DRVMCDB ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0781 3304 DRVMCDB ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0781 3304 DRVNDDM ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0781 3304 DRVNDDM ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0781 3304 DSproct ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0781 3304 DSproct ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0781 3304 EapHost ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0781 3304 EapHost ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0781 3304 HDAudBus ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0781 3304 HDAudBus ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0796 3304 hkmsvc ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0796 3304 hkmsvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0796 3304 napagent ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0796 3304 napagent ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0796 3304 NetSvc ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0796 3304 NetSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0796 3304 WLSetupSvc ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0796 3304 WLSetupSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0796 3304 WMDM PMSP Service ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0796 3304 WMDM PMSP Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0796 3304 WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0796 3304 WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:55.0546 1784 Deinitialize success
  14. Sprinter

    Sprinter Newcomer, in training Topic Starter Posts: 59

    10:28:44.0250 3276 [ ED6BF9E441FDEA13292A6D30A64A24C3 ] i2omp C:\WINDOWS\system32\DRIVERS\i2omp.sys
    10:28:44.0390 3276 i2omp - ok
    10:28:44.0421 3276 [ 5502B58EEF7486EE6F93F3F164DCB808 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
    10:28:44.0546 3276 i8042prt - ok
    10:28:44.0640 3276 [ 5A8E05F1D5C36ABD58CFFA111EB325EA ] ialm C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
    10:28:44.0703 3276 ialm - ok
    10:28:44.0812 3276 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
    10:28:44.0843 3276 idsvc - ok
    10:28:44.0906 3276 [ F8AA320C6A0409C0380E5D8A99D76EC6 ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
    10:28:45.0031 3276 Imapi - ok
    10:28:45.0093 3276 [ FA788520BCAC0F5D9D5CDE5615C0D931 ] ImapiService C:\WINDOWS\system32\imapi.exe
    10:28:45.0250 3276 ImapiService - ok
    10:28:45.0265 3276 [ 4A40E045FAEE58631FD8D91AFC620719 ] ini910u C:\WINDOWS\system32\DRIVERS\ini910u.sys
    10:28:45.0406 3276 ini910u - ok
    10:28:45.0421 3276 [ 2D722B2B54AB55B2FA475EB58D7B2AAD ] IntelIde C:\WINDOWS\system32\DRIVERS\intelide.sys
    10:28:45.0578 3276 IntelIde - ok
    10:28:45.0625 3276 [ 279FB78702454DFF2BB445F238C048D2 ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
    10:28:45.0781 3276 intelppm - ok
    10:28:45.0796 3276 [ 4448006B6BC60E6C027932CFC38D6855 ] Ip6Fw C:\WINDOWS\system32\drivers\ip6fw.sys
    10:28:45.0921 3276 Ip6Fw - ok
    10:28:45.0953 3276 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
    10:28:46.0078 3276 IpFilterDriver - ok
    10:28:46.0093 3276 [ E1EC7F5DA720B640CD8FB8424F1B14BB ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
    10:28:46.0218 3276 IpInIp - ok
    10:28:46.0265 3276 [ B5A8E215AC29D24D60B4D1250EF05ACE ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
    10:28:46.0390 3276 IpNat - ok
    10:28:46.0437 3276 [ 62937A89470AF8FF172F0980CA8AEFC9 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
    10:28:46.0468 3276 iPod Service - ok
    10:28:46.0515 3276 [ 64537AA5C003A6AFEEE1DF819062D0D1 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
    10:28:46.0656 3276 IPSec - ok
    10:28:46.0671 3276 [ 50708DAA1B1CBB7D6AC1CF8F56A24410 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
    10:28:46.0765 3276 IRENUM - ok
    10:28:46.0812 3276 [ E504F706CCB699C2596E9A3DA1596E87 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
    10:28:46.0937 3276 isapnp - ok
    10:28:47.0031 3276 [ 4F2143570D2250CA4C4A4C98553C82CD ] JavaQuickStarterService C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe
    10:28:47.0046 3276 JavaQuickStarterService - ok
    10:28:47.0046 3276 [ EBDEE8A2EE5393890A1ACEE971C4C246 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
    10:28:47.0187 3276 Kbdclass - ok
    10:28:47.0187 3276 [ E182FA8E49E8EE41B4ADC53093F3C7E6 ] kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys
    10:28:47.0328 3276 kbdhid - ok
    10:28:47.0390 3276 [ D93CAD07C5683DB066B0B2D2D3790EAD ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
    10:28:47.0546 3276 kmixer - ok
    10:28:47.0578 3276 [ EB7FFE87FD367EA8FCA0506F74A87FBB ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
    10:28:47.0734 3276 KSecDD - ok
    10:28:47.0781 3276 [ 93D32468D34E000CB3407947D1D6E22A ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
    10:28:47.0906 3276 lanmanserver - ok
    10:28:47.0921 3276 [ 2C0A7B2AE9C26F2C163627679B42783C ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
    10:28:48.0078 3276 lanmanworkstation - ok
    10:28:48.0140 3276 [ 9FFD1CF2A782F2560E78EEC4B8B8689E ] LBeepKE C:\WINDOWS\system32\Drivers\LBeepKE.sys
    10:28:48.0156 3276 LBeepKE - ok
    10:28:48.0156 3276 lbrtfdc - ok
    10:28:48.0234 3276 [ 3AF6B73A3AD1FC37C5933441F66CEB91 ] LBTServ C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
    10:28:48.0250 3276 LBTServ - ok
    10:28:48.0296 3276 [ 70035567754BED4E6AD353CA3F175127 ] LEqdUsb C:\WINDOWS\system32\Drivers\LEqdUsb.Sys
    10:28:48.0312 3276 LEqdUsb - ok
    10:28:48.0359 3276 [ 32491B6BAE0AFAD1D7A62C0EF0AF4321 ] LHidEqd C:\WINDOWS\system32\Drivers\LHidEqd.Sys
    10:28:48.0375 3276 LHidEqd - ok
    10:28:48.0406 3276 [ 7F9C7B28CF1C859E1C42619EEA946DC8 ] LHidFilt C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys
    10:28:48.0421 3276 LHidFilt - ok
    10:28:48.0484 3276 [ B3EFF6D938C572E90A07B3D87A3C7657 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
    10:28:48.0640 3276 LmHosts - ok
    10:28:48.0671 3276 [ AB33792A87285344F43B5CE23421BAB0 ] LMouFilt C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys
    10:28:48.0687 3276 LMouFilt - ok
    10:28:48.0750 3276 [ F453D1E6D881E8F8717E20CCD4199E85 ] McComponentHostService C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe
    10:28:48.0765 3276 McComponentHostService - ok
    10:28:48.0875 3276 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] McMPFSvc C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
    10:28:48.0906 3276 McMPFSvc - ok
    10:28:48.0921 3276 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] mcmscsvc C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
    10:28:48.0937 3276 mcmscsvc - ok
    10:28:48.0937 3276 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] McNaiAnn C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
    10:28:48.0953 3276 McNaiAnn - ok
    10:28:48.0968 3276 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] McNASvc C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
    10:28:48.0984 3276 McNASvc - ok
    10:28:49.0156 3276 [ ADA83A989D5822DAA5E2F62FDF118AC6 ] McODS C:\Program Files\McAfee\VirusScan\mcods.exe
    10:28:49.0171 3276 McODS - ok
    10:28:49.0187 3276 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] McProxy C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
    10:28:49.0203 3276 McProxy - ok
    10:28:49.0250 3276 [ DF0A511F38F16016BF658FCA0090CB87 ] McrdSvc C:\WINDOWS\ehome\mcrdsvc.exe
    10:28:49.0281 3276 McrdSvc - ok
    10:28:49.0328 3276 [ 7394FCADC0DD68DDC5921884906F4AE9 ] McShield C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
    10:28:49.0343 3276 McShield - ok
    10:28:49.0437 3276 [ 11F714F85530A2BD134074DC30E99FCA ] MDM C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    10:28:49.0453 3276 MDM - ok
    10:28:49.0500 3276 [ EEAEA6514BA7C9D273B5E87C4E1AAB30 ] mdmxsdk C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys
    10:28:49.0531 3276 mdmxsdk - ok
    10:28:49.0593 3276 [ 95FD808E4AC22ABA025A7B3EAC0375D2 ] Messenger C:\WINDOWS\System32\msgsvc.dll
    10:28:49.0718 3276 Messenger - ok
    10:28:49.0781 3276 [ 84D59A3EDDFB9438FB94F7F80D37859D ] mfeapfk C:\WINDOWS\system32\drivers\mfeapfk.sys
    10:28:49.0796 3276 mfeapfk - ok
    10:28:49.0843 3276 [ 67E961988312B1A28D6F93357B0BF998 ] mfeavfk C:\WINDOWS\system32\drivers\mfeavfk.sys
    10:28:49.0859 3276 mfeavfk - ok
    10:28:49.0906 3276 [ 19161B1796CF74A6A326ABDE309062BA ] mfebopk C:\WINDOWS\system32\drivers\mfebopk.sys
    10:28:49.0906 3276 mfebopk - ok
    10:28:49.0953 3276 [ 3D8E909DA47E22E2B32056FD2AE66EDE ] mfefire C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
    10:28:49.0984 3276 mfefire - ok
    10:28:50.0000 3276 [ D5F89B4934960C70882924D992C6ABFC ] mfefirek C:\WINDOWS\system32\drivers\mfefirek.sys
    10:28:50.0015 3276 mfefirek - ok
    10:28:50.0062 3276 [ 0EFAB2B91B27543FE589DE700DE07136 ] mfehidk C:\WINDOWS\system32\drivers\mfehidk.sys
    10:28:50.0093 3276 mfehidk - ok
    10:28:50.0156 3276 [ 549DD4966BF0B1D1FC205CA0755A745B ] mfendisk C:\WINDOWS\system32\DRIVERS\mfendisk.sys
    10:28:50.0171 3276 mfendisk - ok
    10:28:50.0187 3276 [ 549DD4966BF0B1D1FC205CA0755A745B ] mfendiskmp C:\WINDOWS\system32\DRIVERS\mfendisk.sys
    10:28:50.0203 3276 mfendiskmp - ok
    10:28:50.0250 3276 [ C9EDA1EADA2AB6E34CD1A10C3A24AB25 ] mferkdet C:\WINDOWS\system32\drivers\mferkdet.sys
    10:28:50.0265 3276 mferkdet - ok
    10:28:50.0296 3276 [ E6C5F7AADE5A31C057D73201ACFE8ADF ] mfetdi2k C:\WINDOWS\system32\drivers\mfetdi2k.sys
    10:28:50.0312 3276 mfetdi2k - ok
    10:28:50.0375 3276 [ 5C1B2814EF2A6313936A111D3FD095AF ] mfevtp C:\WINDOWS\system32\mfevtps.exe
    10:28:50.0390 3276 mfevtp - ok
    10:28:50.0437 3276 [ B7521F69C0A9B29D356157229376FB21 ] MHN C:\WINDOWS\System32\mhn.dll
    10:28:50.0500 3276 MHN - ok
    10:28:50.0515 3276 [ 7F2F1D2815A6449D346FCCCBC569FBD6 ] MHNDRV C:\WINDOWS\system32\DRIVERS\mhndrv.sys
    10:28:50.0593 3276 MHNDRV - ok
    10:28:50.0640 3276 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
    10:28:50.0796 3276 mnmdd - ok
    10:28:50.0843 3276 [ F6415361201915B9FE3896B0E4E724FF ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe
    10:28:50.0984 3276 mnmsrvc - ok
    10:28:51.0031 3276 [ 6FC6F9D7ACC36DCA9B914565A3AEDA05 ] Modem C:\WINDOWS\system32\drivers\Modem.sys
    10:28:51.0171 3276 Modem - ok
    10:28:51.0203 3276 [ 1992E0D143B09653AB0F9C5E04B0FD65 ] MODEMCSA C:\WINDOWS\system32\drivers\MODEMCSA.sys
    10:28:51.0328 3276 MODEMCSA - ok
    10:28:51.0359 3276 [ 34E1F0031153E491910E12551400192C ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
    10:28:51.0484 3276 Mouclass - ok
    10:28:51.0531 3276 [ B1C303E17FB9D46E87A98E4BA6769685 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
    10:28:51.0687 3276 mouhid - ok
    10:28:51.0703 3276 [ 65653F3B4477F3C63E68A9659F85EE2E ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
    10:28:51.0843 3276 MountMgr - ok
    10:28:51.0906 3276 [ 8BE15F71DE6FF33FC56DCDE7B2B9EFE8 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
    10:28:51.0937 3276 MozillaMaintenance - ok
    10:28:51.0968 3276 [ 3F4BB95E5A44F3BE34824E8E7CAF0737 ] mraid35x C:\WINDOWS\system32\DRIVERS\mraid35x.sys
    10:28:52.0093 3276 mraid35x - ok
    10:28:52.0109 3276 [ 46EDCC8F2DB2F322C24F48785CB46366 ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
    10:28:52.0250 3276 MRxDAV - ok
    10:28:52.0312 3276 [ 1FD607FC67F7F7C633C3DA65BFC53D18 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
    10:28:52.0437 3276 MRxSmb - ok
    10:28:52.0484 3276 [ C7C3D89EB0A6F3DBA622EA737FA335B1 ] MSDTC C:\WINDOWS\system32\msdtc.exe
    10:28:52.0609 3276 MSDTC - ok
    10:28:52.0625 3276 [ 561B3A4333CA2DBDBA28B5B956822519 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
    10:28:52.0781 3276 Msfs - ok
    10:28:52.0781 3276 MSIServer - ok
    10:28:52.0828 3276 [ AE431A8DD3C1D0D0610CDBAC16057AD0 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
    10:28:52.0984 3276 MSKSSRV - ok
    10:28:53.0046 3276 [ 13E75FEF9DFEB08EEDED9D0246E1F448 ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
    10:28:53.0187 3276 MSPCLOCK - ok
    10:28:53.0234 3276 [ 1988A33FF19242576C3D0EF9CE785DA7 ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
    10:28:53.0406 3276 MSPQM - ok
    10:28:53.0453 3276 [ 469541F8BFD2B32659D5D463A6714BCE ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
    10:28:53.0593 3276 mssmbios - ok
    10:28:53.0640 3276 [ 82035E0F41C2DD05AE41D27FE6CF7DE1 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
    10:28:53.0765 3276 Mup - ok
    10:28:53.0812 3276 [ 0102140028FAD045756796E1C685D695 ] napagent C:\WINDOWS\System32\qagentrt.dll
    10:28:53.0828 3276 napagent ( UnsignedFile.Multi.Generic ) - warning
    10:28:53.0828 3276 napagent - detected UnsignedFile.Multi.Generic (1)
    10:28:53.0875 3276 [ 558635D3AF1C7546D26067D5D9B6959E ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
    10:28:54.0015 3276 NDIS - ok
    10:28:54.0015 3276 [ 08D43BBDACDF23F34D79E44ED35C1B4C ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
    10:28:54.0171 3276 NdisTapi - ok
    10:28:54.0234 3276 [ 34D6CD56409DA9A7ED573E1C90A308BF ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
    10:28:54.0375 3276 Ndisuio - ok
    10:28:54.0390 3276 [ 0B90E255A9490166AB368CD55A529893 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
    10:28:54.0531 3276 NdisWan - ok
    10:28:54.0531 3276 [ 59FC3FB44D2669BC144FD87826BB571F ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
    10:28:54.0671 3276 NDProxy - ok
    10:28:54.0671 3276 [ 3A2ACA8FC1D7786902CA434998D7CEB4 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
    10:28:54.0812 3276 NetBIOS - ok
    10:28:54.0875 3276 [ 0C80E410CD2F47134407EE7DD19CC86B ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
    10:28:55.0015 3276 NetBT - ok
    10:28:55.0078 3276 [ 05AFB5AD06462257BEA7495283C86D50 ] NetDDE C:\WINDOWS\system32\netdde.exe
    10:28:55.0234 3276 NetDDE - ok
    10:28:55.0250 3276 [ 05AFB5AD06462257BEA7495283C86D50 ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
    10:28:55.0390 3276 NetDDEdsdm - ok
    10:28:55.0437 3276 [ 84885F9B82F4D55C6146EBF6065D75D2 ] Netlogon C:\WINDOWS\system32\lsass.exe
    10:28:55.0578 3276 Netlogon - ok
    10:28:55.0625 3276 [ DAB9E6C7105D2EF49876FE92C524F565 ] Netman C:\WINDOWS\System32\netman.dll
    10:28:55.0796 3276 Netman - ok
    10:28:55.0906 3276 [ 9DA26B773BD04B867A8E9F427CD048FC ] NetSvc C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
    10:28:55.0921 3276 NetSvc ( UnsignedFile.Multi.Generic ) - warning
    10:28:55.0921 3276 NetSvc - detected UnsignedFile.Multi.Generic (1)
    10:28:55.0984 3276 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
    10:28:56.0000 3276 NetTcpPortSharing - ok
    10:28:56.0062 3276 [ 4E74AF063C3271FBEA20DD940CFD1184 ] Nla C:\WINDOWS\System32\mswsock.dll
    10:28:56.0234 3276 Nla - ok
    10:28:56.0234 3276 [ 4F601BCB8F64EA3AC0994F98FED03F8E ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
    10:28:56.0406 3276 Npfs - ok
    10:28:56.0468 3276 [ B78BE402C3F63DD55521F73876951CDD ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
    10:28:56.0625 3276 Ntfs - ok
    10:28:56.0640 3276 [ 84885F9B82F4D55C6146EBF6065D75D2 ] NtLmSsp C:\WINDOWS\system32\lsass.exe
    10:28:56.0781 3276 NtLmSsp - ok
    10:28:56.0859 3276 [ B62F29C00AC55A761B2E45877D85EA0F ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
    10:28:57.0000 3276 NtmsSvc - ok
    10:28:57.0046 3276 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
    10:28:57.0171 3276 Null - ok
    10:28:57.0250 3276 [ 2B298519EDBFCF451D43E0F1E8F1006D ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
    10:28:57.0437 3276 nv - ok
    10:28:57.0468 3276 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
    10:28:57.0593 3276 NwlnkFlt - ok
    10:28:57.0609 3276 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
    10:28:57.0750 3276 NwlnkFwd - ok
    10:28:57.0796 3276 [ 7A56CF3E3F12E8AF599963B16F50FB6A ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
    10:28:57.0812 3276 ose - ok
    10:28:57.0859 3276 [ 103A9B117A7D9903111955CDAFE65AC6 ] ossrv C:\WINDOWS\system32\DRIVERS\ctoss2k.sys
    10:28:57.0890 3276 ossrv - ok
    10:28:57.0953 3276 [ 29744EB4CE659DFE3B4122DEB45BC478 ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys
    10:28:58.0109 3276 Parport - ok
    10:28:58.0109 3276 [ 3334430C29DC338092F79C38EF7B4CD0 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
    10:28:58.0250 3276 PartMgr - ok
    10:28:58.0265 3276 [ 70E98B3FD8E963A6A46A2E6247E0BEA1 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
    10:28:58.0421 3276 ParVdm - ok
    10:28:58.0437 3276 [ 8086D9979234B603AD5BC2F5D890B234 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
    10:28:58.0578 3276 PCI - ok
    10:28:58.0593 3276 PCIDump - ok
    10:28:58.0609 3276 [ CCF5F451BB1A5A2A522A76E670000FF0 ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
    10:28:58.0750 3276 PCIIde - ok
    10:28:58.0812 3276 [ 82A087207DECEC8456FBE8537947D579 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
    10:28:58.0968 3276 Pcmcia - ok
    10:28:58.0968 3276 PDCOMP - ok
    10:28:58.0968 3276 PDFRAME - ok
    10:28:58.0984 3276 PDRELI - ok
    10:28:58.0984 3276 PDRFRAME - ok
    10:28:59.0015 3276 [ 6C14B9C19BA84F73D3A86DBA11133101 ] perc2 C:\WINDOWS\system32\DRIVERS\perc2.sys
    10:28:59.0140 3276 perc2 - ok
    10:28:59.0156 3276 [ F50F7C27F131AFE7BEBA13E14A3B9416 ] perc2hib C:\WINDOWS\system32\DRIVERS\perc2hib.sys
    10:28:59.0281 3276 perc2hib - ok
    10:28:59.0328 3276 [ C6CE6EEC82F187615D1002BB3BB50ED4 ] PlugPlay C:\WINDOWS\system32\services.exe
    10:28:59.0484 3276 PlugPlay - ok
    10:28:59.0515 3276 [ D31F88C5F19EEFA366A415D6BC5F2ABC ] Pml Driver HPZ12 C:\WINDOWS\system32\HPZipm12.exe
    10:28:59.0578 3276 Pml Driver HPZ12 - ok
    10:28:59.0593 3276 [ 84885F9B82F4D55C6146EBF6065D75D2 ] PolicyAgent C:\WINDOWS\system32\lsass.exe
    10:28:59.0734 3276 PolicyAgent - ok
    10:28:59.0796 3276 [ 1C5CC65AAC0783C344F16353E60B72AC ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
    10:28:59.0921 3276 PptpMiniport - ok
    10:28:59.0984 3276 [ 0D97D88720A4087EC93AF7DBB303B30A ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys
    10:29:00.0140 3276 Processor - ok
    10:29:00.0140 3276 [ 84885F9B82F4D55C6146EBF6065D75D2 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
    10:29:00.0265 3276 ProtectedStorage - ok
    10:29:00.0281 3276 [ 48671F327553DCF1D27F6197F622A668 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
    10:29:00.0406 3276 PSched - ok
    10:29:00.0468 3276 [ 1DF21F001F3A94EBA4A2950C70CC358F ] PSI C:\WINDOWS\system32\DRIVERS\psi_mf.sys
    10:29:00.0484 3276 PSI - ok
    10:29:00.0515 3276 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
    10:29:00.0640 3276 Ptilink - ok
    10:29:00.0687 3276 [ 40F2031BD9148D3194353EA7DEC97A07 ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys
    10:29:00.0703 3276 PxHelp20 - ok
    10:29:00.0765 3276 [ 0A63FB54039EB5662433CABA3B26DBA7 ] ql1080 C:\WINDOWS\system32\DRIVERS\ql1080.sys
    10:29:00.0890 3276 ql1080 - ok
    10:29:00.0953 3276 [ 6503449E1D43A0FF0201AD5CB1B8C706 ] Ql10wnt C:\WINDOWS\system32\DRIVERS\ql10wnt.sys
    10:29:01.0078 3276 Ql10wnt - ok
    10:29:01.0109 3276 [ 156ED0EF20C15114CA097A34A30D8A01 ] ql12160 C:\WINDOWS\system32\DRIVERS\ql12160.sys
    10:29:01.0250 3276 ql12160 - ok
    10:29:01.0281 3276 [ 70F016BEBDE6D29E864C1230A07CC5E6 ] ql1240 C:\WINDOWS\system32\DRIVERS\ql1240.sys
    10:29:01.0406 3276 ql1240 - ok
    10:29:01.0437 3276 [ 907F0AEEA6BC451011611E732BD31FCF ] ql1280 C:\WINDOWS\system32\DRIVERS\ql1280.sys
    10:29:01.0562 3276 ql1280 - ok
    10:29:01.0593 3276 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
    10:29:01.0718 3276 RasAcd - ok
    10:29:01.0781 3276 [ 44DB7A9BDD2FB58747D123FBF1D35ADB ] RasAuto C:\WINDOWS\System32\rasauto.dll
    10:29:01.0906 3276 RasAuto - ok
    10:29:01.0937 3276 [ 98FAEB4A4DCF812BA1C6FCA4AA3E115C ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
    10:29:02.0093 3276 Rasl2tp - ok
    10:29:02.0140 3276 [ 41A3C11E3517C962C9B44893BCEC3B34 ] RasMan C:\WINDOWS\System32\rasmans.dll
    10:29:02.0265 3276 RasMan - ok
    10:29:02.0343 3276 [ 7306EEED8895454CBED4669BE9F79FAA ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
    10:29:02.0484 3276 RasPppoe - ok
    10:29:02.0500 3276 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
    10:29:02.0625 3276 Raspti - ok
    10:29:02.0671 3276 [ 29D66245ADBA878FFF574CD66ABD2884 ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
    10:29:02.0812 3276 Rdbss - ok
    10:29:02.0828 3276 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
    10:29:02.0953 3276 RDPCDD - ok
    10:29:03.0000 3276 [ A2CAE2C60BC37E0751EF9DDA7CEAF4AD ] rdpdr C:\WINDOWS\system32\DRIVERS\rdpdr.sys
    10:29:03.0140 3276 rdpdr - ok
    10:29:03.0203 3276 [ D4F5643D7714EF499AE9527FDCD50894 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
    10:29:03.0359 3276 RDPWD - ok
    10:29:03.0421 3276 [ 729798E0933076B8FCFCD9934698F164 ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
    10:29:03.0546 3276 RDSessMgr - ok
    10:29:03.0593 3276 [ B31B4588E4086D8D84ADBF9845C2402B ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
    10:29:03.0718 3276 redbook - ok
    10:29:03.0781 3276 [ 3046DB917E3CFA040632799DD9B14865 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
    10:29:03.0921 3276 RemoteAccess - ok
    10:29:03.0953 3276 [ 3151427DB7D87107D1C5BE58FAC53960 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
    10:29:04.0109 3276 RemoteRegistry - ok
    10:29:04.0140 3276 [ 793F04A09B15E7C6C11DBDFFAF06C0AB ] RpcLocator C:\WINDOWS\system32\locator.exe
    10:29:04.0281 3276 RpcLocator - ok
    10:29:04.0328 3276 [ 5C83A4408604F737717AB96371201680 ] RpcSs C:\WINDOWS\System32\rpcss.dll
    10:29:04.0921 3276 RpcSs - ok
    10:29:04.0984 3276 [ 471B3F9741D762ABE75E9DEEA4787E47 ] RSVP C:\WINDOWS\system32\rsvp.exe
    10:29:05.0125 3276 RSVP - ok
    10:29:05.0156 3276 [ 84885F9B82F4D55C6146EBF6065D75D2 ] SamSs C:\WINDOWS\system32\lsass.exe
    10:29:05.0296 3276 SamSs - ok
    10:29:05.0359 3276 [ 25D8DE134DF108E3DBC8D7D23B1AA58E ] SCardDrv C:\WINDOWS\System32\SCardSvr.exe
    10:29:05.0515 3276 SCardDrv - ok
    10:29:05.0515 3276 [ 25D8DE134DF108E3DBC8D7D23B1AA58E ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
    10:29:05.0656 3276 SCardSvr - ok
    10:29:05.0718 3276 [ 92360854316611F6CC471612213C3D92 ] Schedule C:\WINDOWS\system32\schedsvc.dll
    10:29:05.0843 3276 Schedule - ok
    10:29:05.0968 3276 [ CC781378E7EDA615D2CDCA3B17829FA4 ] SeaPort C:\Program Files\Microsoft\BingBar\SeaPort.EXE
    10:29:05.0984 3276 SeaPort - ok
    10:29:06.0031 3276 [ D26E26EA516450AF9D072635C60387F4 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
    10:29:06.0125 3276 Secdrv - ok
    10:29:06.0171 3276 [ B1E0CE09895376871746F36DC5773B4F ] seclogon C:\WINDOWS\System32\seclogon.dll
    10:29:06.0328 3276 seclogon - ok
    10:29:06.0343 3276 [ DFD9870CF39C791D86C4C209DA9FA919 ] SENS C:\WINDOWS\system32\sens.dll
    10:29:06.0484 3276 SENS - ok
    10:29:06.0515 3276 [ A2D868AEEFF612E70E213C451A70CAFB ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys
    10:29:06.0640 3276 serenum - ok
    10:29:06.0703 3276 [ CD9404D115A00D249F70A371B46D5A26 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys
    10:29:06.0859 3276 Serial - ok
    10:29:06.0906 3276 [ 0D13B6DF6E9E101013A7AFB0CE629FE0 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
    10:29:07.0031 3276 Sfloppy - ok
    10:29:07.0109 3276 [ 36CC8C01B5E50163037BEF56CB96DEFF ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
    10:29:07.0265 3276 SharedAccess - ok
    10:29:07.0296 3276 [ E7518DC542D3EBDCB80EDD98462C7821 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
    10:29:07.0437 3276 ShellHWDetection - ok
    10:29:07.0500 3276 [ 6BD3976B881888AC9A0ED3EB94E7FD38 ] sigfilt C:\WINDOWS\system32\drivers\sigfilt.sys
    10:29:07.0578 3276 sigfilt - ok
    10:29:07.0578 3276 Simbad - ok
    10:29:07.0640 3276 [ 732D859B286DA692119F286B21A2A114 ] sisagp C:\WINDOWS\system32\DRIVERS\sisagp.sys
    10:29:07.0781 3276 sisagp - ok
    10:29:07.0812 3276 [ 83C0F71F86D3BDAF915685F3D568B20E ] Sparrow C:\WINDOWS\system32\DRIVERS\sparrow.sys
    10:29:07.0890 3276 Sparrow - ok
    10:29:07.0937 3276 [ 8E186B8F23295D1E42C573B82B80D548 ] splitter C:\WINDOWS\system32\drivers\splitter.sys
    10:29:08.0062 3276 splitter - ok
    10:29:08.0109 3276 [ 7435B108B935E42EA92CA94F59C8E717 ] Spooler C:\WINDOWS\system32\spoolsv.exe
    10:29:08.0250 3276 Spooler - ok
    10:29:08.0296 3276 [ E41B6D037D6CD08461470AF04500DC24 ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
    10:29:08.0375 3276 sr - ok
    10:29:08.0421 3276 [ 92BDF74F12D6CBEC43C94D4B7F804838 ] srservice C:\WINDOWS\system32\srsvc.dll
    10:29:08.0500 3276 srservice - ok
    10:29:08.0515 3276 [ 20B7E396720353E4117D64D9DCB926CA ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
    10:29:08.0656 3276 Srv - ok
    10:29:08.0687 3276 [ 4B8D61792F7175BED48859CC18CE4E38 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
    10:29:08.0750 3276 SSDPSRV - ok
    10:29:08.0781 3276 [ B95480C92C4C9C311BE47B8A1AD73770 ] STHDA C:\WINDOWS\system32\drivers\sthda.sys
    10:29:08.0796 3276 STHDA - ok
    10:29:08.0843 3276 [ A9573045BAA16EAB9B1085205B82F1ED ] StillCam C:\WINDOWS\system32\DRIVERS\serscan.sys
    10:29:08.0968 3276 StillCam - ok
    10:29:08.0984 3276 [ D9F6C4F6B1E188ADAFC42B561D9BC2E6 ] stisvc C:\WINDOWS\system32\wiaservc.dll
    10:29:09.0125 3276 stisvc - ok
    10:29:09.0156 3276 [ 03C1BAE4766E2450219D20B993D6E046 ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
    10:29:09.0312 3276 swenum - ok
    10:29:09.0359 3276 [ 94ABC808FC4B6D7D2BBF42B85E25BB4D ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
    10:29:09.0484 3276 swmidi - ok
    10:29:09.0500 3276 SwPrv - ok
    10:29:09.0515 3276 [ 1FF3217614018630D0A6758630FC698C ] symc810 C:\WINDOWS\system32\DRIVERS\symc810.sys
    10:29:09.0640 3276 symc810 - ok
    10:29:09.0687 3276 [ 070E001D95CF725186EF8B20335F933C ] symc8xx C:\WINDOWS\system32\DRIVERS\symc8xx.sys
    10:29:09.0828 3276 symc8xx - ok
    10:29:09.0843 3276 [ 80AC1C4ABBE2DF3B738BF15517A51F2C ] sym_hi C:\WINDOWS\system32\DRIVERS\sym_hi.sys
    10:29:09.0984 3276 sym_hi - ok
    10:29:10.0015 3276 [ BF4FAB949A382A8E105F46EBB4937058 ] sym_u3 C:\WINDOWS\system32\DRIVERS\sym_u3.sys
    10:29:10.0140 3276 sym_u3 - ok
    10:29:10.0187 3276 [ 650AD082D46BAC0E64C9C0E0928492FD ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
    10:29:10.0312 3276 sysaudio - ok
    10:29:10.0375 3276 [ 8B54AA346D1B1B113FFAA75501B8B1B2 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
    10:29:10.0500 3276 SysmonLog - ok
    10:29:10.0546 3276 [ EB4A4187D74A8EFDCBEA3EA2CB1BDFBD ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
    10:29:10.0703 3276 TapiSrv - ok
    10:29:10.0750 3276 [ 9F4B36614A0FC234525BA224957DE55C ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
    10:29:10.0906 3276 Tcpip - ok
    10:29:10.0921 3276 [ 38D437CF2D98965F239B0ABCD66DCB0F ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
    10:29:11.0062 3276 TDPIPE - ok
    10:29:11.0078 3276 [ ED0580AF02502D00AD8C4C066B156BE9 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
    10:29:11.0218 3276 TDTCP - ok
    10:29:11.0265 3276 [ A540A99C281D933F3D69D55E48727F47 ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
    10:29:11.0437 3276 TermDD - ok
    10:29:11.0500 3276 [ B60C877D16D9C880B952FDA04ADF16E6 ] TermService C:\WINDOWS\System32\termsrv.dll
    10:29:11.0671 3276 TermService - ok
    10:29:11.0703 3276 [ E7518DC542D3EBDCB80EDD98462C7821 ] Themes C:\WINDOWS\System32\shsvcs.dll
    10:29:11.0843 3276 Themes - ok
    10:29:11.0890 3276 [ 37DB0A7D097310E8B4DE803FC3119C78 ] TlntSvr C:\WINDOWS\system32\tlntsvr.exe
    10:29:11.0968 3276 TlntSvr - ok
    10:29:12.0000 3276 [ F2790F6AF01321B172AA62F8E1E187D9 ] TosIde C:\WINDOWS\system32\DRIVERS\toside.sys
    10:29:12.0125 3276 TosIde - ok
    10:29:12.0156 3276 [ 6D9AC544B30F96C57F8206566C1FB6A1 ] TrkWks C:\WINDOWS\system32\trkwks.dll
    10:29:12.0281 3276 TrkWks - ok
    10:29:12.0359 3276 [ 12F70256F140CD7D52C58C7048FDE657 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
    10:29:12.0484 3276 Udfs - ok
    10:29:12.0515 3276 [ 1B698A51CD528D8DA4FFAED66DFC51B9 ] ultra C:\WINDOWS\system32\DRIVERS\ultra.sys
    10:29:12.0593 3276 ultra - ok
    10:29:12.0640 3276 [ 6634C460C56EC7E48D6BE20B745DC03A ] UMWdf C:\WINDOWS\system32\wdfmgr.exe
    10:29:12.0718 3276 UMWdf - ok
    10:29:12.0765 3276 [ AFF2E5045961BBC0A602BB6F95EB1345 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
    10:29:12.0890 3276 Update - ok
    10:29:12.0937 3276 [ 0546477BDE979E33294FE97F6B3DE84A ] upnphost C:\WINDOWS\System32\upnphost.dll
    10:29:13.0015 3276 upnphost - ok
    10:29:13.0062 3276 [ 3F5DF65B0758675F95A2D43918A740A3 ] UPS C:\WINDOWS\System32\ups.exe
    10:29:13.0187 3276 UPS - ok
    10:29:13.0250 3276 [ C1CA131F4E3ED63D6BC89A35FFAD4CDA ] USBAAPL C:\WINDOWS\system32\Drivers\usbaapl.sys
    10:29:13.0265 3276 USBAAPL - ok
    10:29:13.0312 3276 [ BFFD9F120CC63BCBAA3D840F3EEF9F79 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
    10:29:13.0468 3276 usbccgp - ok
    10:29:13.0515 3276 [ 15E993BA2F6946B2BFBBFCD30398621E ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
    10:29:13.0656 3276 usbehci - ok
    10:29:13.0671 3276 [ C72F40947F92CEA56A8FB532EDF025F1 ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
    10:29:13.0796 3276 usbhub - ok
    10:29:13.0843 3276 [ A42369B7CD8886CD7C70F33DA6FCBCF5 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys
    10:29:13.0984 3276 usbprint - ok
    10:29:14.0015 3276 [ 6CD7B22193718F1D17A47A1CD6D37E75 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
    10:29:14.0171 3276 USBSTOR - ok
    10:29:14.0203 3276 [ F8FD1400092E23C8F2F31406EF06167B ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
    10:29:14.0328 3276 usbuhci - ok
    10:29:14.0343 3276 [ 8A60EDD72B4EA5AEA8202DAF0E427925 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
    10:29:14.0484 3276 VgaSave - ok
    10:29:14.0531 3276 [ D92E7C8A30CFD14D8E15B5F7F032151B ] viaagp C:\WINDOWS\system32\DRIVERS\viaagp.sys
    10:29:14.0671 3276 viaagp - ok
    10:29:14.0687 3276 [ 59CB1338AD3654417BEA49636457F65D ] ViaIde C:\WINDOWS\system32\DRIVERS\viaide.sys
    10:29:14.0828 3276 ViaIde - ok
    10:29:14.0875 3276 [ EE4660083DEBA849FF6C485D944B379B ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
    10:29:15.0000 3276 VolSnap - ok
    10:29:15.0078 3276 [ 3EE00364AE0FD8D604F46CBAF512838A ] VSS C:\WINDOWS\System32\vssvc.exe
    10:29:15.0156 3276 VSS - ok
    10:29:15.0218 3276 [ 2B281958F5D0CF99ED626E3EF39D5C8D ] w32time C:\WINDOWS\system32\w32time.dll
    10:29:15.0343 3276 w32time - ok
    10:29:15.0390 3276 [ 984EF0B9788ABF89974CFED4BFBAACBC ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
    10:29:15.0531 3276 Wanarp - ok
    10:29:15.0593 3276 [ 0A716C08CB13C3A8F4F51E882DBF7416 ] wanatw C:\WINDOWS\system32\DRIVERS\wanatw4.sys
    10:29:15.0609 3276 wanatw - ok
    10:29:15.0656 3276 [ FD47474BD21794508AF449D9D91AF6E6 ] Wdf01000 C:\WINDOWS\system32\DRIVERS\Wdf01000.sys
    10:29:15.0687 3276 Wdf01000 - ok
    10:29:15.0687 3276 WDICA - ok
    10:29:15.0734 3276 [ 2797F33EBF50466020C430EE4F037933 ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
    10:29:15.0890 3276 wdmaud - ok
    10:29:15.0921 3276 [ 5D0A442864BFBF3B19DCCA4CD29F6E99 ] WebClient C:\WINDOWS\System32\webclnt.dll
    10:29:16.0062 3276 WebClient - ok
    10:29:16.0125 3276 [ F59ED5A43B988A18EF582BB07B2327A7 ] winachsf C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys
    10:29:16.0156 3276 winachsf - ok
    10:29:16.0250 3276 [ F399242A80C4066FD155EFA4CF96658E ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
    10:29:16.0375 3276 winmgmt - ok
    10:29:16.0531 3276 [ 5144AE67D60EC653F97DDF3FEED29E77 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
    10:29:16.0578 3276 wlidsvc - ok
    10:29:16.0656 3276 [ 94A85E956A065E23E0010A6A7826243B ] WLSetupSvc C:\Program Files\Windows Live\installer\WLSetupSvc.exe
    10:29:16.0671 3276 WLSetupSvc ( UnsignedFile.Multi.Generic ) - warning
    10:29:16.0671 3276 WLSetupSvc - detected UnsignedFile.Multi.Generic (1)
    10:29:16.0718 3276 [ 581176F60885AEF8F78C6E38DCC3CDF9 ] WMDM PMSP Service C:\WINDOWS\system32\MsPMSPSv.exe
    10:29:16.0734 3276 WMDM PMSP Service ( UnsignedFile.Multi.Generic ) - warning
    10:29:16.0734 3276 WMDM PMSP Service - detected UnsignedFile.Multi.Generic (1)
    10:29:16.0781 3276 [ B9715B9C18BC6C8F4B66733D208CC9F7 ] WmdmPmSN C:\WINDOWS\system32\mspmsnsv.dll
    10:29:16.0796 3276 WmdmPmSN - ok
    10:29:16.0859 3276 [ 1AFF244CA134956C54474F4E2433E4CE ] Wmi C:\WINDOWS\System32\advapi32.dll
    10:29:17.0000 3276 Wmi - ok
    10:29:17.0078 3276 [ BA8CECC3E813E1F7C441B20393D4F86C ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe
    10:29:17.0203 3276 WmiApSrv - ok
    10:29:17.0312 3276 [ F74E3D9A7FA9556C3BBB14D4E5E63D3B ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe
    10:29:17.0359 3276 WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - warning
    10:29:17.0359 3276 WMPNetworkSvc - detected UnsignedFile.Multi.Generic (1)
    10:29:17.0406 3276 [ 0770ACCA345B35EF455AC0D96C8B39A0 ] WpdUsb C:\WINDOWS\system32\Drivers\wpdusb.sys
    10:29:17.0453 3276 WpdUsb - ok
    10:29:17.0515 3276 [ 6ABE6E225ADB5A751622A9CC3BC19CE8 ] WS2IFSL C:\WINDOWS\System32\drivers\ws2ifsl.sys
    10:29:17.0640 3276 WS2IFSL - ok
    10:29:17.0671 3276 [ 4D59DAA66C60858CDF4F67A900F42D4A ] wscsvc C:\WINDOWS\system32\wscsvc.dll
    10:29:17.0812 3276 wscsvc - ok
    10:29:17.0859 3276 [ 13D72740963CBA12D9FF76A7F218BCD8 ] wuauserv C:\WINDOWS\system32\wuauserv.dll
    10:29:17.0984 3276 wuauserv - ok
    10:29:18.0046 3276 [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
    10:29:18.0078 3276 WudfPf - ok
    10:29:18.0109 3276 [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
    10:29:18.0125 3276 WudfRd - ok
    10:29:18.0187 3276 [ 05231C04253C5BC30B26CBAAE680ED89 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
    10:29:18.0218 3276 WudfSvc - ok
    10:29:18.0265 3276 [ 5A91E6FEAB9F901302FA7FF768C0120F ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
    10:29:18.0453 3276 WZCSVC - ok
    10:29:18.0500 3276 [ EEF46DAB68229A14DA3D8E73C99E2959 ] xmlprov C:\WINDOWS\System32\xmlprov.dll
    10:29:18.0640 3276 xmlprov - ok
    10:29:18.0640 3276 ================ Scan global ===============================
    10:29:18.0687 3276 [ 00EF9C3AF83EDBAF18CA7A2837750117 ] C:\WINDOWS\system32\basesrv.dll
    10:29:18.0734 3276 [ 442D0EAD5534E4ADCF6D4469043C82C0 ] C:\WINDOWS\system32\winsrv.dll
    10:29:18.0750 3276 [ 442D0EAD5534E4ADCF6D4469043C82C0 ] C:\WINDOWS\system32\winsrv.dll
    10:29:18.0765 3276 [ C6CE6EEC82F187615D1002BB3BB50ED4 ] C:\WINDOWS\system32\services.exe
    10:29:18.0765 3276 [Global] - ok
    10:29:18.0765 3276 ================ Scan MBR ==================================
    10:29:18.0796 3276 [ 5CB90281D1A59B251F6603134774EEC3 ] \Device\Harddisk0\DR0
    10:29:19.0109 3276 \Device\Harddisk0\DR0 - ok
    10:29:19.0109 3276 ================ Scan VBR ==================================
    10:29:19.0125 3276 [ 2860AF43991D59E904A9CEA7DF8231F3 ] \Device\Harddisk0\DR0\Partition1
    10:29:19.0125 3276 \Device\Harddisk0\DR0\Partition1 - ok
    10:29:19.0125 3276 ============================================================
    10:29:19.0125 3276 Scan finished
    10:29:19.0125 3276 ============================================================
    10:29:19.0140 3304 Detected object count: 27
    10:29:19.0140 3304 Actual detected object count: 27
    10:29:51.0734 3304 ASCTRM ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0734 3304 ASCTRM ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0734 3304 Cdr4_xp ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0734 3304 Cdr4_xp ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0734 3304 Cdralw2k ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0734 3304 Cdralw2k ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0734 3304 cercsr6 ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0734 3304 cercsr6 ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0734 3304 Creative Labs Licensing Service ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0734 3304 Creative Labs Licensing Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0734 3304 Creative Service for CDROM Access ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0734 3304 Creative Service for CDROM Access ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0750 3304 DLABOIOM ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0750 3304 DLABOIOM ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0750 3304 DLACDBHM ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0750 3304 DLACDBHM ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0750 3304 DLADResN ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0750 3304 DLADResN ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0750 3304 DLAIFS_M ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0750 3304 DLAIFS_M ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0750 3304 DLAOPIOM ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0750 3304 DLAOPIOM ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0765 3304 DLAPoolM ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0765 3304 DLAPoolM ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0765 3304 DLARTL_N ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0765 3304 DLARTL_N ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0765 3304 DLAUDFAM ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0765 3304 DLAUDFAM ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0765 3304 DLAUDF_M ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0765 3304 DLAUDF_M ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0765 3304 Dot3svc ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0765 3304 Dot3svc ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0781 3304 DRVMCDB ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0781 3304 DRVMCDB ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0781 3304 DRVNDDM ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0781 3304 DRVNDDM ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0781 3304 DSproct ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0781 3304 DSproct ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0781 3304 EapHost ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0781 3304 EapHost ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0781 3304 HDAudBus ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0781 3304 HDAudBus ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0796 3304 hkmsvc ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0796 3304 hkmsvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0796 3304 napagent ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0796 3304 napagent ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0796 3304 NetSvc ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0796 3304 NetSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0796 3304 WLSetupSvc ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0796 3304 WLSetupSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0796 3304 WMDM PMSP Service ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0796 3304 WMDM PMSP Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:51.0796 3304 WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - skipped by user
    10:29:51.0796 3304 WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
    10:29:55.0546 1784 Deinitialize success
  15. Sprinter

    Sprinter Newcomer, in training Topic Starter Posts: 59

    I ran tdsskiller a second time because I did not think it worked. I believe it found a few more items the second time it scanned. do you want that log as well? also there was no option for "cure". there was simply "skip, delete, copy to quarantine" I believe.
  16. Jay Pfoutz

    Jay Pfoutz Malware Helper Posts: 4,286   +49

    Good work!

    ESET Online Scan

    Please run a free online scan with the ESET Online Scanner
    • Tick the box next to YES, I accept the Terms of Use
    • Click Start
    • When asked, allow the ActiveX control to install, or it will ask to download an installer. Please do so an install it.
    • Click Start or wait for the scanner to load.
    • Make sure that the options Remove found threats and the option Scan unwanted applications are checked.
    • Click Scan (This scan can take several hours, so please be patient)
    • Once the scan is completed, there are a couple of things to keep in mind:
    • 1. If NO threats were found, allow the scanner to Uninstall on close and then close the Window.
    • 2. If threats WERE detected, click on List of Threats Found, Export to Text File...save it as ESET-Scan-Log.txt. Click the back button/link, put a checkmark to Uninstall Application on Close and then close the window.
    • Open the logfile from wherever you saved it
    • Copy and paste the contents in your next reply.

    Any more issues?

    We need to know any other issues that are plaguing your computer. Kindly give a summary so we know how to continue from here.

    Many of the things to note for us would be:

    • Slow computer
    • Error messages
    • Fake antivirus alerts or the icon in the system tray
    • svchost.exe running at 100%
    • System crashes or blue screen of death
  17. Sprinter

    Sprinter Newcomer, in training Topic Starter Posts: 59

    It found nothing. does that mean im clean?
  18. Jay Pfoutz

    Jay Pfoutz Malware Helper Posts: 4,286   +49

    Hi there. It all appears to be good, so we will finish up to make sure your computer is protected from malware in the future.

    Clean up System Restore

    Now, to get you off to a clean start, we will be creating a new Restore Point, then clearing the old ones to make sure you do not get reinfected, in case you need to "restore back."
    • Select Start > All Programs > Accessories > System tools > System Restore.
    • On the dialogue box that appears select Create a Restore Point
    • Click NEXT
    • Enter a name e.g. Clean
    • Click CREATE
    You now have a clean restore point, to get rid of the bad ones:
    • Select Start > All Programs > Accessories > System tools > Disk Cleanup.
    • In the Drop down box that appears select your main drive e.g. C
    • Click OK
    • The System will do some calculation and the display a dialogue box with TABS
    • Select the More Options Tab.
    • At the bottom will be a system restore box with a CLEANUP button click this
    • Accept the Warning and select OK again, the program will close and you are done

    Run OTC to remove our tools

    To remove all of the tools we used and the files and folders they created, please do the following:
    Please download OTC.exe by OldTimer:
    • Save it to your Desktop.
    • Double click OTC.exe.
    • Click the CleanUp! button.
    • If you are prompted to Reboot during the cleanup, select Yes.
    • The tool will delete itself once it finishes.
    Note:If any tool, file or folder (belonging to the program we have used) hasn't been deleted, please delete it manually.

    Purge old temporary files

    NOTE: If you already have this installed, you don't have to reinstall it.

    Please download CCleaner Slim and save it to your Desktop - Alternate download link

    When the file has been saved, go to your Desktop and double-click on ccsetupxxx_slim.exe
    Follow the prompts to install the program.

    • Double-click the CCleaner shortcut on the desktop to start the program.
    • A prompt will ask you if you want CCleaner to do a check to see what cookies it needs to keep. Allow that operation.
    • On the Cleaner tab, click on Run Cleaner on the bottom-right to run the program.
    • Important: Make sure that ALL browser windows are closed before selecting Run Cleaner, or it will ask if you want the program to close them for you (when you do this, all unsaved data may be lost in the browser).

    Caution: Only use the Registry feature if you are very familiar with the registry.
    Always back up your registry before making any changes. Exit CCleaner after it has completed it's process.

    Security Check

    Please download Security Check by screen317 from SpywareInfoforum.org or Changelog.fr.
    • Save it to your Desktop.
    • Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
    • A Notepad document should open automatically called checkup.txt; please post the contents of that document.
  19. Jay Pfoutz

    Jay Pfoutz Malware Helper Posts: 4,286   +49

    Topic marked solved. :)
Topic Status:
Not open for further replies.


Add New Comment

TechSpot Members
Login or sign up for free,
it takes about 30 seconds.
You may also...


Get complete access to the TechSpot community. Join thousands of technology enthusiasts that contribute and share knowledge in our forum. Get a private inbox, upload your own photo gallery and more.