Solved Virus?

Status
Not open for further replies.

Sprinter

Posts: 57   +0
When I click on the IE icon on my desktop it wont open. It simply creates a shortcut on my desktop. not sure what is going on. I'll post the logs in 1 min
 
Malwarebytes Anti-Malware 1.65.1.1000
www.malwarebytes.org

Database version: v2012.11.09.07

Windows XP Service Pack 2 x86 NTFS
Internet Explorer 6.0.2900.2180
atinker :: TINKER [administrator]

11/9/2012 3:54:30 PM
mbam-log-2012-11-09 (15-54-30).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 246381
Time elapsed: 10 minute(s), 3 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 1
HKCR\CLSID\{FBEB8A05-BEEE-4442-804E-409D6C4515E9}\InProcServer32| (Hijack.SHELL32) -> Bad: (fastprox.dll) Good: (shell32.dll) -> Quarantined and repaired successfully.

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)
 
Edit: scanned twice because I thought the first scan log didnt post






Malwarebytes Anti-Malware 1.65.1.1000
www.malwarebytes.org

Database version: v2012.11.09.07

Windows XP Service Pack 2 x86 NTFS
Internet Explorer 6.0.2900.2180
atinker :: TINKER [administrator]

11/9/2012 4:13:05 PM
mbam-log-2012-11-09 (16-13-05).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 246379
Time elapsed: 9 minute(s), 27 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)
 
GMER 1.0.15.15641 - http://www.gmer.net
Rootkit quick scan 2012-11-09 16:35:16
Windows 5.1.2600 Service Pack 2 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP1T0L0-e WDC_WD800JD-75MSA3 rev.10.01E04
Running: 3p8tey0j.exe; Driver: C:\DOCUME~1\atinker\LOCALS~1\Temp\uftdipow.sys


---- System - GMER 1.0.15 ----

Code mfehidk.sys (McAfee Link Driver/McAfee, Inc.) ZwOpenProcess [0xF74420A4]
Code mfehidk.sys (McAfee Link Driver/McAfee, Inc.) ZwOpenThread [0xF74420B8]
Code mfehidk.sys (McAfee Link Driver/McAfee, Inc.) NtOpenProcess
Code mfehidk.sys (McAfee Link Driver/McAfee, Inc.) NtOpenThread

---- Devices - GMER 1.0.15 ----

AttachedDevice \FileSystem\Ntfs \Ntfs mfehidk.sys (McAfee Link Driver/McAfee, Inc.)
AttachedDevice \Driver\Tcpip \Device\Ip mfetdi2k.sys (Anti-Virus Mini-Firewall Driver/McAfee, Inc.)
AttachedDevice \Driver\Tcpip \Device\Tcp mfetdi2k.sys (Anti-Virus Mini-Firewall Driver/McAfee, Inc.)
AttachedDevice \Driver\Tcpip \Device\Udp mfetdi2k.sys (Anti-Virus Mini-Firewall Driver/McAfee, Inc.)
AttachedDevice \Driver\Tcpip \Device\RawIp mfetdi2k.sys (Anti-Virus Mini-Firewall Driver/McAfee, Inc.)

---- EOF - GMER 1.0.15 ----
 
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-07.01)
.
Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume2
Install Date: 10/31/2012 7:52:25 PM
System Uptime: 11/9/2012 4:42:07 PM (0 hours ago)
.
Motherboard: Dell Inc. | | 0HJ054
Processor: Intel(R) Pentium(R) D CPU 2.66GHz | Microprocessor | 2660/533mhz
Processor: Intel(R) Pentium(R) D CPU 2.66GHz | Microprocessor | 2660/533mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 70 GiB total, 30.563 GiB free.
D: is CDROM ()
.
==== Disabled Device Manager Items =============
.
Class GUID: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA}
Description: USB Receiver
Device ID: USB\VID_046D&PID_C52B&MI_02\6&1F7C77E4&0&0002
Manufacturer:
Name: USB Receiver
PNP Device ID: USB\VID_046D&PID_C52B&MI_02\6&1F7C77E4&0&0002
Service:
.
==== System Restore Points ===================
.
RP1: 10/31/2012 7:59:50 PM - System Checkpoint
RP2: 11/1/2012 8:01:12 PM - System Checkpoint
RP3: 11/2/2012 9:01:12 PM - System Checkpoint
RP4: 11/3/2012 10:01:12 PM - System Checkpoint
RP5: 11/4/2012 11:01:12 PM - System Checkpoint
RP6: 11/6/2012 12:01:12 AM - System Checkpoint
RP7: 11/7/2012 1:01:12 AM - System Checkpoint
RP8: 11/8/2012 2:01:12 AM - System Checkpoint
RP9: 11/9/2012 3:01:12 AM - System Checkpoint
.
==== Installed Programs ======================
.
725plc32
Adobe AIR
Adobe Flash Player 10 ActiveX
Adobe Flash Player 11 Plugin
Adobe Reader 9.5.2
Adobe Shockwave Player 11.5
AIM 6
AiO_Scan_CDA
Andrea VoiceCenter
AOL Coach Version 1.0(Build:20040229.1 en)
AOL Connectivity Services
AOL Uninstaller (Choose which Products to Remove)
AOLIcon
Apple Mobile Device Support
Apple Software Update
ATI Control Panel
ATI Display Driver
Bing Bar
Bonjour
Bonjour Core for Windows
CDDRV_Installer
Compatibility Pack for the 2007 Office system
Conexant D850 56K V.9x DFVc Modem
Corel Photo Album 6
Creative Jukebox Driver
Creative MediaSource
Creative NOMAD Jukebox Zen Xtra
Dell CinePlayer
Dell Digital Jukebox Driver
Dell Driver Reset Tool
Dell System Restore
DellSupport
Digital Content Portal
Digital Line Detect
Documentation & Support Launcher
EarthLink setup files
EducateU
ELIcon
erLT
ESET Online Scanner v3
ESPNMotion
Games, Music, & Photos Launcher
GemMaster Mystic
Get High Speed Internet!
Google Toolbar for Internet Explorer
Goombah Partner COM Server
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
HP Photosmart, Officejet and Deskjet 7.0.A
Intel(R) Graphics Media Accelerator Driver
Intel(R) PRO Network Connections Drivers
Intel(R) PROSet for Wired Connections
Internet Service Offers Launcher
iTunes
Java Auto Updater
Java(TM) 6 Update 22
Java(TM) 7 Update 5
JavaFX 2.1.1
KhalInstallWrapper
Learn2 Player (Uninstall Only)
Logitech SetPoint
Malwarebytes Anti-Malware version 1.65.1.1000
McAfee Security Scan Plus
McAfee SecurityCenter
MCU
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Security Update (KB2656353)
Microsoft .NET Framework 1.1 Security Update (KB2656370)
Microsoft .NET Framework 1.1 Security Update (KB979906)
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft Baseline Security Analyzer 2.0
Microsoft Default Manager
Microsoft Office Basic Edition 2003
Microsoft Plus! Digital Media Edition Installer
Microsoft Plus! Photo Story 2 LE
Microsoft Silverlight
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Modem Helper
Move Media Player
Mozilla Firefox 15.0 (x86 en-US)
Mozilla Maintenance Service
MSXML 4.0 SP2 (KB936181)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
Musicmatch for Windows Media Player
Napster
Napster Burn Engine
NetWaiting
NetZeroInstallers
Otto
PartyPokerNet
PopCap Browser Plugin
QFolder
QuickTime
RealPlayer Basic
Roxio DLA
Roxio MyDVD LE
Roxio RecordNow Audio
Roxio RecordNow Copy
Roxio RecordNow Data
Ruckus Player
SAMSUNG Android USB Modem Software
Scan
Search Assist
Secunia PSI
Security Update for CAPICOM (KB931906)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2604111)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2657424)
Skype Click to Call
Skype™ 5.5
Sonic Activation Module
Sonic Advanced Decoder
Sonic Encoders
Sonic Update Manager
Sound Blaster Audigy ADVANCED MB
Sound Blaster Audigy ADVANCED MB Product Registration
StarCraft II
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update Rollup 2 for Windows XP Media Center Edition 2005
URL Assistant
Warcraft III
WebFldrs XP
WildTangent Web Driver
Windows Genuine Advantage Notifications (KB905474)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Live ID Sign-in Assistant
Windows Live installer
Windows Live Messenger
Windows Media Connect
Windows Media Format 11 runtime
Windows Media Format Runtime
Windows Media Player 10
Windows Media Player 11
Windows XP Media Center Edition 2005 KB908246
WOT for Internet Explorer
WOT Services
.
==== Event Viewer Messages From Past Week ========
.
11/9/2012 4:22:40 PM, error: W32Time [17] - Time Provider NtpClient: An error occurred during DNS lookup of the manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15 minutes. The error was: A socket operation was attempted to an unreachable host. (0x80072751)
11/9/2012 3:07:04 PM, error: Service Control Manager [7034] - The SeaPort service terminated unexpectedly. It has done this 1 time(s).
11/9/2012 3:07:04 PM, error: Service Control Manager [7034] - The Pml Driver HPZ12 service terminated unexpectedly. It has done this 1 time(s).
11/9/2012 3:07:04 PM, error: Service Control Manager [7034] - The Media Center Scheduler Service service terminated unexpectedly. It has done this 1 time(s).
11/9/2012 3:07:04 PM, error: Service Control Manager [7034] - The McAfee Firewall Core Service service terminated unexpectedly. It has done this 1 time(s).
11/9/2012 3:07:04 PM, error: Service Control Manager [7034] - The Machine Debug Manager service terminated unexpectedly. It has done this 1 time(s).
11/9/2012 3:07:04 PM, error: Service Control Manager [7034] - The Java Quick Starter service terminated unexpectedly. It has done this 1 time(s).
11/9/2012 3:07:04 PM, error: Service Control Manager [7034] - The Creative Service for CDROM Access service terminated unexpectedly. It has done this 1 time(s).
11/9/2012 3:07:04 PM, error: Service Control Manager [7034] - The Creative Labs Licensing Service service terminated unexpectedly. It has done this 1 time(s).
11/9/2012 3:07:04 PM, error: Service Control Manager [7034] - The Bonjour Service service terminated unexpectedly. It has done this 1 time(s).
11/9/2012 3:07:04 PM, error: Service Control Manager [7034] - The AOL Connectivity Service service terminated unexpectedly. It has done this 1 time(s).
11/9/2012 3:07:04 PM, error: Service Control Manager [7031] - The Windows Live ID Sign-in Assistant service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.
11/9/2012 3:07:04 PM, error: Service Control Manager [7031] - The Media Center Receiver Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 5000 milliseconds: Restart the service.
11/9/2012 3:07:04 PM, error: Service Control Manager [7031] - The Apple Mobile Device service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
11/9/2012 3:06:53 PM, error: Service Control Manager [7034] - The Ati HotKey Poller service terminated unexpectedly. It has done this 1 time(s).
11/9/2012 3:06:27 PM, error: Service Control Manager [7024] - The McShield service terminated with service-specific error 5046 (0x13B6).
11/9/2012 3:05:45 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the Windows Media Player Network Sharing Service service to connect.
11/9/2012 3:05:45 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the McAfee VirusScan Announcer service to connect.
11/9/2012 3:05:45 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the McAfee Services service to connect.
11/9/2012 3:05:45 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the McAfee Proxy Service service to connect.
11/9/2012 3:05:45 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the McAfee Personal Firewall Service service to connect.
11/9/2012 3:05:45 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the McAfee Network Agent service to connect.
11/9/2012 3:05:45 PM, error: Service Control Manager [7000] - The Windows Media Player Network Sharing Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
11/9/2012 3:05:45 PM, error: Service Control Manager [7000] - The McAfee VirusScan Announcer service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
11/9/2012 3:05:45 PM, error: Service Control Manager [7000] - The McAfee Services service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
11/9/2012 3:05:45 PM, error: Service Control Manager [7000] - The McAfee Proxy Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
11/9/2012 3:05:45 PM, error: Service Control Manager [7000] - The McAfee Personal Firewall Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
11/9/2012 3:05:45 PM, error: Service Control Manager [7000] - The McAfee Network Agent service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
11/9/2012 3:05:07 PM, error: sr [1] - The System Restore filter encountered the unexpected error '0xC0000001' while processing the file '' on the volume 'HarddiskVolume2'. It has stopped monitoring the volume.
11/9/2012 3:04:00 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
11/9/2012 2:32:29 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: Fips intelppm
.
==== End Of File ===========================
 
DDS log


DDS (Ver_2012-11-07.01) - NTFS_x86
Internet Explorer: 6.0.2900.2180 BrowserJavaVersion: 10.5.1
Run by atinker at 16:48:52 on 2012-11-09
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.1022.513 [GMT -5:00]
.
.
============== Running Processes ================
.
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\mfevtps.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Microsoft\BingBar\SeaPort.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\WINDOWS\system32\MsPMSPSv.exe
C:\WINDOWS\ehome\mcrdsvc.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\Dell\Media Experience\DMXLauncher.exe
C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe
C:\WINDOWS\system32\Rundll32.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
C:\DOCUME~1\atinker\LOCALS~1\Temp\clclean.0001
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe
C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Common Files\InstallShield\UpdateService\agent.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\WINDOWS\system32\svchost.exe -k imgsvc
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.com/
uSearch Bar = hxxp://www.google.com/ie
uSearch Page = hxxp://www.google.com
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
mDefault_Search_URL = hxxp://www.google.com/ie
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
mSearchAssistant = hxxp://www.google.com/ie
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: DriveLetterAccess: {5CA3D70E-1895-11CF-8E15-001234567890} - c:\windows\system32\dla\DLASHX_W.DLL
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\oracle\javafx 2.1 runtime\bin\ssv.dll
BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
BHO: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
BHO: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - c:\program files\google\googletoolbarnotifier\5.6.5612.1312\swg.dll
BHO: WOT Helper: {C920E44A-7F78-4E64-BDD7-A57026E7FEB7} - c:\program files\wot\WOT.dll
BHO: CBrowserHelperObject Object: {CA6319C0-31B7-401E-A518-A07C3DB8F777} - c:\program files\bae\BAE.dll
BHO: Bing Bar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\oracle\javafx 2.1 runtime\bin\jp2ssv.dll
TB: &Google: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
TB: WOT: {71576546-354D-41C9-AAE8-31F2EC22BF0D} - c:\program files\wot\WOT.dll
TB: &Google: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
TB: WOT: {71576546-354D-41c9-AAE8-31F2EC22BF0D} - c:\program files\wot\WOT.dll
TB: Bing Bar: {8dcb7100-df86-4384-8842-8fa844297b3f} -
uRun: [SetDefaultMIDI] MIDIDef.exe
uRun: [swg] "c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe"
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [ehTray] c:\windows\ehome\ehtray.exe
mRun: [ATIPTA] "c:\program files\ati technologies\ati control panel\atiptaxx.exe"
mRun: [DMXLauncher] c:\program files\dell\media experience\DMXLauncher.exe
mRun: [CTSysVol] c:\program files\creative\sbaudigy\surround mixer\CTSysVol.exe /r
mRun: [MBMon] Rundll32 CTMBHA.DLL,MBMon
mRun: [VoiceCenter] "c:\program files\creative\voicecenter\AndreaVC.exe" /tray
mRun: [ISUSPM Startup] "c:\program files\common files\installshield\updateservice\isuspm.exe" -startup
mRun: [ISUSScheduler] "c:\program files\common files\installshield\updateservice\issch.exe" -start
mRun: [DLA] c:\windows\system32\dla\DLACTRLW.EXE
mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
mRun: [AOLDialer] c:\program files\common files\aol\acs\AOLDial.exe
mRun: [mcagent_exe] "c:\program files\mcafee.com\agent\mcagent.exe" /runkey
mRun: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
mRun: [Microsoft Default Manager] "c:\program files\microsoft\search enhancement pack\default manager\DefMgr.exe" -resume
mRun: [igfxtray] c:\windows\system32\igfxtray.exe
mRun: [igfxhkcmd] c:\windows\system32\hkcmd.exe
mRun: [igfxpers] c:\windows\system32\igfxpers.exe
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [SigmatelSysTrayApp] stsystra.exe
dRunOnce: [tscuninstall] c:\windows\system32\tscupgrd.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\digita~1.lnk - c:\program files\digital line detect\DLG.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\logite~1.lnk - c:\program files\logitech\setpoint\SetPoint.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\mcafee~1.lnk - c:\program files\mcafee security scan\2.0.181\SSScheduler.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:323
uPolicies-Explorer: NoDriveAutoRun = dword:67108863
uPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: NoDriveAutoRun = dword:67108863
mPolicies-Explorer: NoDriveTypeAutoRun = dword:323
mPolicies-Explorer: NoDrives = dword:0
mPolicies-Windows\System: Allow-LogonScript-NetbiosDisabled = dword:1
mPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Explorer: NoDriveAutoRun = dword:67108863
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office11\EXCEL.EXE/3000
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
IE: {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - {FE54FA40-D68C-11d2-98FA-00C0F0318AFE}
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {F4430FE8-2638-42e5-B849-800749B94EED} - c:\program files\partygaming.net\partypokernet\RunPF.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
LSP: mswsock.dll
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {233C1507-6A77-46A4-9443-F871F945D258} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {5C6698D9-7BE4-4122-8EC5-291D84DBD4A0} - hxxp://upload.facebook.com/controls/FacebookPhotoUploader3.cab
DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} - hxxp://upload.facebook.com/controls/FacebookPhotoUploader.cab
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
TCP: NameServer = 192.168.1.1 192.168.1.1
TCP: Interfaces\{1606AD12-2B57-4EA2-B8E1-4C06D804E959} : DHCPNameServer = 192.168.1.1 192.168.1.1
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
Handler: wot - {C2A44D6B-CB9F-4663-88A6-DF2F26E4D952} - c:\program files\wot\WOT.dll
Notify: igfxcui - igfxdev.dll
Notify: LBTWlgn - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\atinker\application data\mozilla\firefox\profiles\at0tu0ks.default\
FF - plugin: c:\documents and settings\atinker\application data\move networks\plugins\npqmp071503000010.dll
FF - plugin: c:\documents and settings\atinker\application data\move networks\plugins\npqmp071701000002.dll
FF - plugin: c:\program files\adobe\reader 9.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\microsoft silverlight\5.1.10411.0\npctrlui.dll
FF - plugin: c:\program files\mozilla firefox\plugins\nppopcaploader.dll
FF - plugin: c:\program files\oracle\javafx 2.1 runtime\bin\plugin2\npjp2.dll
FF - plugin: c:\windows\system32\npDeployJava1.dll
FF - plugin: c:\windows\system32\npptools.dll
FF - ExtSQL: !HIDDEN! 2009-09-02 03:01; {20a82645-c095-46ed-80e3-08825760534b}; c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\DotNetAssistantExtension
.
============= SERVICES / DRIVERS ===============
.
R0 mfehidk;McAfee Inc. mfehidk;c:\windows\system32\drivers\mfehidk.sys [2011-1-4 386840]
R1 mfetdi2k;McAfee Inc. mfetdi2k;c:\windows\system32\drivers\mfetdi2k.sys [2011-1-4 84072]
R2 LBeepKE;LBeepKE;c:\windows\system32\drivers\LBeepKE.sys [2010-1-20 10384]
R2 McrdSvc;Media Center Extender Service;c:\windows\ehome\mcrdsvc.exe [2005-8-5 99328]
R2 mfefire;McAfee Firewall Core Service;c:\program files\common files\mcafee\systemcore\mfefire.exe [2011-1-4 188136]
R2 mfevtp;McAfee Validation Trust Protection Service;c:\windows\system32\mfevtps.exe [2011-1-4 141792]
R3 BCMH43XX;N+ Wireless USB Adapter Driver;c:\windows\system32\drivers\bcmwlhigh5.sys [2012-7-29 642432]
R3 mfeavfk;McAfee Inc. mfeavfk;c:\windows\system32\drivers\mfeavfk.sys [2011-1-4 152960]
R3 mfefirek;McAfee Inc. mfefirek;c:\windows\system32\drivers\mfefirek.sys [2011-1-4 313288]
R3 mfendiskmp;mfendiskmp;c:\windows\system32\drivers\mfendisk.sys [2011-1-4 88544]
S1 A2DDA;A2 Direct Disk Access Support Driver;\??\c:\documents and settings\atinker\desktop\emsisoftemergencykit\run\a2ddax86.sys --> c:\documents and settings\atinker\desktop\emsisoftemergencykit\run\a2ddax86.sys [?]
S2 McMPFSvc;McAfee Personal Firewall Service;c:\program files\common files\mcafee\mcsvchost\McSvHost.exe [2011-1-4 271480]
S2 McNaiAnn;McAfee VirusScan Announcer;c:\program files\common files\mcafee\mcsvchost\McSvHost.exe [2011-1-4 271480]
S2 McProxy;McAfee Proxy Service;c:\program files\common files\mcafee\mcsvchost\McSvHost.exe [2011-1-4 271480]
S2 McShield;McShield;c:\program files\common files\mcafee\systemcore\mcshield.exe [2011-1-4 171168]
S3 BBSvc;Bing Bar Update Service;c:\program files\microsoft\bingbar\BBSvc.EXE [2011-2-28 183560]
S3 cfwids;McAfee Inc. cfwids;c:\windows\system32\drivers\cfwids.sys [2011-1-4 55840]
S3 LEqdUsb;Logitech SetPoint Unifying KMDF USB Filter;c:\windows\system32\drivers\LEqdUsb.sys [2009-6-17 40720]
S3 LHidEqd;Logitech SetPoint Unifying KMDF HID Filter;c:\windows\system32\drivers\LHidEqd.sys [2009-6-17 10384]
S3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files\mcafee security scan\2.0.181\McCHSvc.exe [2010-1-15 227232]
S3 mfebopk;McAfee Inc. mfebopk;c:\windows\system32\drivers\mfebopk.sys [2011-1-4 52104]
S3 mfendisk;McAfee Core NDIS Intermediate Filter;c:\windows\system32\drivers\mfendisk.sys [2011-1-4 88544]
S3 mferkdet;McAfee Inc. mferkdet;c:\windows\system32\drivers\mferkdet.sys [2011-1-4 84264]
S3 PSI;PSI;c:\windows\system32\drivers\psi_mf.sys [2010-7-7 14904]
.
=============== Created Last 30 ================
.
2012-11-01 00:52:21 69632 -c--a-w- c:\windows\system32\dllcache\ehresko.dll
2012-11-01 00:52:20 73728 -c--a-w- c:\windows\system32\dllcache\ehresja.dll
2012-11-01 00:52:20 69632 -c--a-w- c:\windows\system32\dllcache\ehresfr.dll
2012-11-01 00:52:19 69632 -c--a-w- c:\windows\system32\dllcache\ehresde.dll
2012-11-01 00:52:08 61440 -c--a-w- c:\windows\system32\dllcache\ehreschs.dll
2012-11-01 00:50:59 30208 -c--a-w- c:\windows\system32\dllcache\sm87w.dll
2012-11-01 00:49:59 98304 -c--a-w- c:\windows\system32\dllcache\msir3jp.dll
2012-11-01 00:48:58 39936 -c--a-w- c:\windows\system32\dllcache\hostmib.dll
2012-11-01 00:47:58 19456 -c--a-w- c:\windows\system32\dllcache\agt0804.dll
2012-11-01 00:43:23 16384 -c--a-w- c:\windows\system32\dllcache\isignup.exe
2012-11-01 00:43:23 16384 ----a-w- c:\program files\internet explorer\connection wizard\isignup.exe
2012-11-01 00:42:34 32768 -c--a-w- c:\windows\system32\dllcache\icwdl.dll
2012-11-01 00:42:34 32768 ----a-w- c:\program files\internet explorer\connection wizard\icwdl.dll
2012-11-01 00:42:33 20480 -c--a-w- c:\windows\system32\dllcache\inetwiz.exe
2012-11-01 00:42:33 20480 ----a-w- c:\program files\internet explorer\connection wizard\inetwiz.exe
2012-11-01 00:42:32 86016 -c--a-w- c:\windows\system32\dllcache\icwconn2.exe
2012-11-01 00:42:32 86016 ----a-w- c:\program files\internet explorer\connection wizard\icwconn2.exe
2012-11-01 00:42:32 214528 -c--a-w- c:\windows\system32\dllcache\icwconn1.exe
2012-11-01 00:42:32 214528 ----a-w- c:\program files\internet explorer\connection wizard\icwconn1.exe
2012-11-01 00:20:52 24661 -c--a-w- c:\windows\system32\dllcache\spxcoins.dll
2012-11-01 00:20:52 24661 ----a-w- c:\windows\system32\spxcoins.dll
2012-11-01 00:20:52 13312 -c--a-w- c:\windows\system32\dllcache\irclass.dll
2012-11-01 00:20:52 13312 ----a-w- c:\windows\system32\irclass.dll
2012-10-31 20:06:23 -------- d-----w- c:\windows\dell
.
==================== Find3M ====================
.
2012-09-30 00:54:26 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
.
============= FINISH: 16:50:17.65 ===============
 
Hello, and welcome to TechSpot.


rulesx.png
Please see here for the board rules and other FAQ.

Please feel free to introduce yourself, after you follow the steps below to get started.

Information
  • From this point on, please do not make any more changes to your computer; such as install/uninstall programs, use special fix tools, delete files, edit the registry, etc. - unless advised by a malware removal helper.
  • Please do not ask for help elsewhere (in this site or other sites). Doing so can result in system changes, which may not show up in the logs you post.
  • If you have already asked for help somewhere, please post the link to the topic you were helped.
  • We try our best to reply quickly, but for any reason we do not reply in two days, please reply to this topic with the word BUMP!
  • Lastly, keep in mind that we are volunteers, so you do not have to pay for malware removal. Persist in this topic until its close, and your computer is declared clean.


ComboFix scan

Please download ComboFix
combofix.gif
by sUBs
From BleepingComputer.com

Please save the file to your Desktop.

Important information about ComboFix


After the download:
  • Close any open browsers.
  • Very Important: Temporarily disable your anti-virus, script blocking and any anti-malware real-time protection before performing a scan. They can interfere with ComboFix or remove some of its embedded files which may cause "unpredictable results". Please visit here if you don't know how.
  • WARNING: Combofix will disconnect your machine from the Internet as soon as it starts
  • Please do not attempt to re-connect your machine back to the Internet until ComboFix has completely finished.
  • If there is no Internet connection after running ComboFix, then restart your computer to restore back your connection.
Running ComboFix:
  • Double click on ComboFix.exe & follow the prompts.
  • When ComboFix finishes, it will produce a report for you.
  • Please post the report, which will launch or be found at "C:\Combo-Fix.txt" in your next reply.
Troubleshooting ComboFix

Safe Mode:

If you still cannot get ComboFix to run, try booting into Safe Mode, and run it there.

(To boot into Safe Mode, tap F8 after BIOS, and just before the Windows
logo appears. A list of options will appear, select "Safe Mode.")

Re-downloading:

If this doesn't work either, try the same method (above method), but try to download it again, except name
ComboFix.exe to iexplore.exe, explorer.exe, or winlogon.exe.

Malware is known for blocking all "user" processes, except for its whitelist of system important processes such as iexplore.exe, explorer.exe, winlogon.exe.

NOTE: If you encounter a message "illegal operation attempted on registry key that has been marked for deletion" and no programs will run - please just reboot and that will resolve that error.
 
ComboFix 12-11-09.02 - atinker 11/10/2012 2:35.4.2 - x86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.1022.679 [GMT -5:00]
Running from: c:\documents and settings\atinker\My Documents\Downloads\ComboFix.exe
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\docume~1\atinker\LOCALS~1\Temp\clclean.0001.dir.0000\~df394b.tmp
c:\documents and settings\All Users\Application Data\twabt.pad
c:\documents and settings\atinker\Local Settings\temp\clclean.0001.dir.0000\~df394b.tmp
.
.
((((((((((((((((((((((((( Files Created from 2012-10-10 to 2012-11-10 )))))))))))))))))))))))))))))))
.
.
2012-11-09 21:56 . 2012-11-09 21:56 -------- d--h--w- c:\windows\PIF
2012-11-01 00:52 . 2004-08-10 08:13 69632 -c--a-w- c:\windows\system32\dllcache\ehresko.dll
2012-11-01 00:52 . 2004-08-10 08:13 73728 -c--a-w- c:\windows\system32\dllcache\ehresja.dll
2012-11-01 00:52 . 2004-08-10 08:13 69632 -c--a-w- c:\windows\system32\dllcache\ehresfr.dll
2012-11-01 00:52 . 2004-08-10 08:13 69632 -c--a-w- c:\windows\system32\dllcache\ehresde.dll
2012-11-01 00:52 . 2004-08-10 08:13 61440 -c--a-w- c:\windows\system32\dllcache\ehreschs.dll
2012-11-01 00:50 . 2004-08-10 11:00 30208 -c--a-w- c:\windows\system32\dllcache\sm87w.dll
2012-11-01 00:49 . 2004-08-10 11:00 98304 -c--a-w- c:\windows\system32\dllcache\msir3jp.dll
2012-11-01 00:48 . 2004-08-10 11:00 39936 -c--a-w- c:\windows\system32\dllcache\hostmib.dll
2012-11-01 00:47 . 2004-08-10 11:00 19456 -c--a-w- c:\windows\system32\dllcache\agt0804.dll
2012-11-01 00:43 . 2004-08-10 11:00 16384 -c--a-w- c:\windows\system32\dllcache\isignup.exe
2012-11-01 00:43 . 2004-08-10 11:00 16384 ----a-w- c:\program files\Internet Explorer\Connection Wizard\isignup.exe
2012-11-01 00:42 . 2004-08-10 11:00 32768 -c--a-w- c:\windows\system32\dllcache\icwdl.dll
2012-11-01 00:42 . 2004-08-10 11:00 32768 ----a-w- c:\program files\Internet Explorer\Connection Wizard\icwdl.dll
2012-11-01 00:42 . 2004-08-10 11:00 20480 -c--a-w- c:\windows\system32\dllcache\inetwiz.exe
2012-11-01 00:42 . 2004-08-10 11:00 20480 ----a-w- c:\program files\Internet Explorer\Connection Wizard\inetwiz.exe
2012-11-01 00:42 . 2004-08-10 11:00 86016 -c--a-w- c:\windows\system32\dllcache\icwconn2.exe
2012-11-01 00:42 . 2004-08-10 11:00 86016 ----a-w- c:\program files\Internet Explorer\Connection Wizard\icwconn2.exe
2012-11-01 00:42 . 2004-08-10 11:00 214528 -c--a-w- c:\windows\system32\dllcache\icwconn1.exe
2012-11-01 00:42 . 2004-08-10 11:00 214528 ----a-w- c:\program files\Internet Explorer\Connection Wizard\icwconn1.exe
2012-11-01 00:20 . 2004-08-10 11:00 24661 -c--a-w- c:\windows\system32\dllcache\spxcoins.dll
2012-11-01 00:20 . 2004-08-10 11:00 24661 ----a-w- c:\windows\system32\spxcoins.dll
2012-11-01 00:20 . 2004-08-10 11:00 13312 -c--a-w- c:\windows\system32\dllcache\irclass.dll
2012-11-01 00:20 . 2004-08-10 11:00 13312 ----a-w- c:\windows\system32\irclass.dll
2012-10-31 20:06 . 2012-10-31 20:06 -------- d-----w- c:\windows\dell
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-09-30 00:54 . 2010-10-30 00:14 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-09-07 03:22 . 2012-09-07 03:22 266720 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
2010-10-14 03:28 . 2012-09-07 03:22 24376 ----a-w- c:\program files\mozilla firefox\components\Scriptff.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SetDefaultMIDI"="MIDIDef.exe" [2004-12-22 24576]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-07-25 68856]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ehTray"="c:\windows\ehome\ehtray.exe" [2004-08-10 59392]
"ATIPTA"="c:\program files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2005-08-06 344064]
"DMXLauncher"="c:\program files\Dell\Media Experience\DMXLauncher.exe" [2006-05-03 98304]
"CTSysVol"="c:\program files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe" [2005-09-15 57344]
"MBMon"="CTMBHA.DLL" [2005-05-19 1345520]
"VoiceCenter"="c:\program files\Creative\VoiceCenter\AndreaVC.exe" [2005-09-19 1159168]
"ISUSPM Startup"="c:\program files\Common Files\InstallShield\UpdateService\isuspm.exe" [2005-06-10 249856]
"ISUSScheduler"="c:\program files\Common Files\InstallShield\UpdateService\issch.exe" [2005-06-10 81920]
"DLA"="c:\windows\System32\DLA\DLACTRLW.EXE" [2005-09-08 122940]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2009-01-05 413696]
"AOLDialer"="c:\program files\Common Files\AOL\ACS\AOLDial.exe" [2004-04-07 496752]
"mcagent_exe"="c:\program files\McAfee.com\Agent\mcagent.exe" [2010-11-22 1193848]
"Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [2009-06-17 55824]
"Microsoft Default Manager"="c:\program files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" [2009-07-17 288080]
"igfxtray"="c:\windows\system32\igfxtray.exe" [2005-10-15 94208]
"igfxhkcmd"="c:\windows\system32\hkcmd.exe" [2005-10-15 77824]
"igfxpers"="c:\windows\system32\igfxpers.exe" [2005-10-15 114688]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-01-17 252296]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2012-07-31 38872]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-07-11 919008]
"SigmatelSysTrayApp"="stsystra.exe" [2005-03-23 339968]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"tscuninstall"="c:\windows\system32\tscupgrd.exe" [2004-08-10 44544]
.
c:\documents and settings\All Users\Start Menu\Programs\Startup\
Digital Line Detect.lnk - c:\program files\Digital Line Detect\DLG.exe [2006-8-21 24576]
Logitech SetPoint.lnk - c:\program files\Logitech\SetPoint\SetPoint.exe [2010-1-20 813584]
McAfee Security Scan Plus.lnk - c:\program files\McAfee Security Scan\2.0.181\SSScheduler.exe [2010-1-15 255536]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LBTWlgn]
2009-07-20 17:28 72208 ----a-w- c:\program files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0sprestrt\0sprestrt\0sprestrt
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]
@=""
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2009-01-06 18:06 290088 ----a-w- c:\program files\iTunes\iTunesHelper.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr]
2007-10-18 15:34 5724184 ----a-w- c:\program files\Windows Live\Messenger\msnmsgr.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NapsterShell]
2006-06-29 18:17 319488 ----a-w- c:\program files\Napster\napster.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeFirewall]
"DisableMonitoring"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
.
R1 mfetdi2k;McAfee Inc. mfetdi2k;c:\windows\system32\drivers\mfetdi2k.sys [1/4/2011 2:28 PM 84072]
R2 LBeepKE;LBeepKE;c:\windows\system32\drivers\LBeepKE.sys [1/20/2010 4:20 PM 10384]
R2 mfefire;McAfee Firewall Core Service;c:\program files\Common Files\McAfee\SystemCore\mfefire.exe [1/4/2011 2:29 PM 188136]
R2 mfevtp;McAfee Validation Trust Protection Service;c:\windows\system32\mfevtps.exe [1/4/2011 2:28 PM 141792]
R3 BCMH43XX;N+ Wireless USB Adapter Driver;c:\windows\system32\drivers\bcmwlhigh5.sys [7/29/2012 8:26 PM 642432]
R3 mfefirek;McAfee Inc. mfefirek;c:\windows\system32\drivers\mfefirek.sys [1/4/2011 2:28 PM 313288]
R3 mfendiskmp;mfendiskmp;c:\windows\system32\drivers\mfendisk.sys [1/4/2011 2:28 PM 88544]
S1 A2DDA;A2 Direct Disk Access Support Driver;\??\c:\documents and settings\atinker\Desktop\EmsisoftEmergencyKit\Run\a2ddax86.sys --> c:\documents and settings\atinker\Desktop\EmsisoftEmergencyKit\Run\a2ddax86.sys [?]
S2 McMPFSvc;McAfee Personal Firewall Service;"c:\program files\Common Files\Mcafee\McSvcHost\McSvHost.exe" /McCoreSvc [1/4/2011 2:28 PM 271480]
S2 McNaiAnn;McAfee VirusScan Announcer;"c:\program files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc [1/4/2011 2:28 PM 271480]
S3 BBSvc;Bing Bar Update Service;c:\program files\Microsoft\BingBar\BBSvc.EXE [2/28/2011 5:44 PM 183560]
S3 cfwids;McAfee Inc. cfwids;c:\windows\system32\drivers\cfwids.sys [1/4/2011 2:28 PM 55840]
S3 LEqdUsb;Logitech SetPoint Unifying KMDF USB Filter;c:\windows\system32\drivers\LEqdUsb.sys [6/17/2009 11:55 AM 40720]
S3 LHidEqd;Logitech SetPoint Unifying KMDF HID Filter;c:\windows\system32\drivers\LHidEqd.sys [6/17/2009 11:55 AM 10384]
S3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files\McAfee Security Scan\2.0.181\McCHSvc.exe [1/15/2010 7:49 AM 227232]
S3 mfendisk;McAfee Core NDIS Intermediate Filter;c:\windows\system32\drivers\mfendisk.sys [1/4/2011 2:28 PM 88544]
S3 mferkdet;McAfee Inc. mferkdet;c:\windows\system32\drivers\mferkdet.sys [1/4/2011 2:28 PM 84264]
S3 PSI;PSI;c:\windows\system32\drivers\psi_mf.sys [7/7/2010 9:05 AM 14904]
.
Contents of the 'Scheduled Tasks' folder
.
2012-11-05 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 17:34]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.com/
uSearch Page = hxxp://www.google.com
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
uSearch Bar = hxxp://www.google.com/ie
uInternet Settings,ProxyOverride = *.local
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.1.1 192.168.1.1
FF - ProfilePath - c:\documents and settings\atinker\Application Data\Mozilla\Firefox\Profiles\at0tu0ks.default\
FF - ExtSQL: !HIDDEN! 2009-09-02 03:01; {20a82645-c095-46ed-80e3-08825760534b}; c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-11-10 02:47
Windows 5.1.2600 Service Pack 2 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'winlogon.exe'(1024)
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
c:\program files\common files\logishrd\bluetooth\LBTServ.dll
c:\windows\system32\igfxdev.dll
.
Completion time: 2012-11-10 02:51:09
ComboFix-quarantined-files.txt 2012-11-10 07:51
.
Pre-Run: 32,612,196,352 bytes free
Post-Run: 32,572,018,688 bytes free
.
- - End Of File - - F7F798CC4634245F13AA918E6E063503
 
Adware Cleaning

Please download AdwCleaner by Xplode onto your Desktop.
  • Double click on AdwCleaner.exe to run the tool.
  • Click on Delete.
  • A logfile will automatically open after the scan has finished.
  • Please post the content of that logfile in your reply.
  • You can find the logfile at C:\AdwCleaner[Rn].txt as well - n is the order number.



TDSSKiller Scan

Please download and run TDSSKiller to your desktop as outlined below:

Doubleclick on TDSSKiller.exe to run the application, then click on Change parameters.

For Windows XP, double-click to start.
For Vista or Windows 7, do a right-click on the program, select Run as Administrator to start, & when prompted Allow to run.

tdss_1.jpg


-------------------------

Check the boxes beside Verify Driver Digital Signature and Detect TDLFS file system, then click OK.

tdss_2.jpg


------------------------

Click the Start Scan button.

tdss_3.jpg


-----------------------

If a suspicious object is detected, the default action will be Skip, click on Continue
If you get the warning about a file UnsignedFile.Multi.Generic or LockedFile.Multi.Generic please choose
Skip and click on Continue


tdss_4.jpg


----------------------

If malicious objects are found, they will show in the Scan results and offer three (3) options.

Ensure Cure is selected, then click Continue => Reboot now to finish the cleaning process.
Note: If Cure is not available, please choose Skip instead, do not choose Delete unless instructed.


tdss_5.jpg



--------------------

A report will be created in your root directory, (usually C:\ folder) in the form of "TDSSKiller.[Version]_[Date]_[Time]_log.txt". Please copy and paste its contents on your next reply.
Sometimes these logs can be very large, in that case please attach it or zip it up and attach it.

-------------------

Here's a summary of what to do if you would like to print it out:

If a suspicious object is detected, the default action will be Skip, click on Continue
If you get the warning about a file UnsignedFile.Multi.Generic or LockedFile.Multi.Generic please choose
Skip and click on Continue

If malicious objects are found, they will show in the Scan results and offer three (3) options.

Ensure Cure is selected, then click Continue => Reboot now to finish the cleaning process.
Note: If Cure is not available, please choose Skip instead, do not choose Delete unless instructed.
 
# AdwCleaner v2.007 - Logfile created 11/14/2012 at 10:19:17
# Updated 06/11/2012 by Xplode
# Operating system : Microsoft Windows XP Service Pack 2 (32 bits)
# User : atinker - TINKER
# Boot Mode : Normal
# Running from : C:\Documents and Settings\atinker\My Documents\Downloads\adwcleaner.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****


***** [Registry] *****

Key Deleted : HKCU\Software\Viewpoint
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{CD95D125-2992-4858-B3EF-5F6FB52FBAD6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{03F998B2-0E00-11D3-A498-00104B6EB52E}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Viewpoint Manager
Key Deleted : HKLM\Software\Viewpoint

***** [Internet Browsers] *****

-\\ Internet Explorer v6.0.2900.2180

[OK] Registry is clean.

-\\ Mozilla Firefox v15.0 (en-US)

Profile name : default
File : C:\Documents and Settings\atinker\Application Data\Mozilla\Firefox\Profiles\at0tu0ks.default\prefs.js

[OK] File is clean.

*************************

AdwCleaner[S1].txt - [1270 octets] - [14/11/2012 10:19:17]

########## EOF - C:\AdwCleaner[S1].txt - [1330 octets] ##########
 
10:25:51.0453 0348 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35
10:25:52.0015 0348 ============================================================
10:25:52.0015 0348 Current date / time: 2012/11/14 10:25:52.0015
10:25:52.0015 0348 SystemInfo:
10:25:52.0015 0348
10:25:52.0015 0348 OS Version: 5.1.2600 ServicePack: 2.0
10:25:52.0015 0348 Product type: Workstation
10:25:52.0015 0348 ComputerName: TINKER
10:25:52.0015 0348 UserName: atinker
10:25:52.0015 0348 Windows directory: C:\WINDOWS
10:25:52.0015 0348 System windows directory: C:\WINDOWS
10:25:52.0015 0348 Processor architecture: Intel x86
10:25:52.0015 0348 Number of processors: 2
10:25:52.0015 0348 Page size: 0x1000
10:25:52.0015 0348 Boot type: Normal boot
10:25:52.0015 0348 ============================================================
10:25:53.0484 0348 Drive \Device\Harddisk0\DR0 - Size: 0x12A05F2000 (74.51 Gb), SectorSize: 0x200, Cylinders: 0x25FE, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
10:25:53.0484 0348 ============================================================
10:25:53.0484 0348 \Device\Harddisk0\DR0:
10:25:53.0484 0348 MBR partitions:
10:25:53.0484 0348 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1B747, BlocksNum 0x8B966D7
10:25:53.0484 0348 ============================================================
10:25:53.0531 0348 C: <-> \Device\Harddisk0\DR0\Partition1
10:25:53.0531 0348 ============================================================
10:25:53.0531 0348 Initialize success
10:25:53.0531 0348 ============================================================
10:26:12.0765 2968 ============================================================
10:26:12.0765 2968 Scan started
10:26:12.0765 2968 Mode: Manual; SigCheck; TDLFS;
10:26:12.0765 2968 ============================================================
10:26:13.0171 2968 ================ Scan system memory ========================
10:26:13.0187 2968 System memory - ok
10:26:13.0187 2968 ================ Scan services =============================
10:26:13.0312 2968 A2DDA - ok
10:26:13.0484 2968 Abiosdsk - ok
10:26:13.0531 2968 [ 6ABB91494FE6C59089B9336452AB2EA3 ] abp480n5 C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS
10:26:13.0843 2968 abp480n5 - ok
10:26:13.0890 2968 [ A10C7534F7223F4A73A948967D00E69B ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
10:26:14.0140 2968 ACPI - ok
10:26:14.0187 2968 [ 9859C0F6936E723E4892D7141B1327D5 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
10:26:14.0328 2968 ACPIEC - ok
10:26:14.0375 2968 [ 9A11864873DA202C996558B2106B0BBC ] adpu160m C:\WINDOWS\system32\DRIVERS\adpu160m.sys
10:26:14.0531 2968 adpu160m - ok
10:26:14.0593 2968 [ 841F385C6CFAF66B58FBD898722BB4F0 ] aec C:\WINDOWS\system32\drivers\aec.sys
10:26:14.0781 2968 aec - ok
10:26:14.0828 2968 [ 5AC495F4CB807B2B98AD2AD591E6D92E ] AFD C:\WINDOWS\System32\drivers\afd.sys
10:26:14.0968 2968 AFD - ok
10:26:15.0015 2968 [ 2C428FA0C3E3A01ED93C9B2A27D8D4BB ] agp440 C:\WINDOWS\system32\DRIVERS\agp440.sys
10:26:15.0156 2968 agp440 - ok
10:26:15.0171 2968 [ 67288B07D6ABA6C1267B626E67BC56FD ] agpCPQ C:\WINDOWS\system32\DRIVERS\agpCPQ.sys
10:26:15.0328 2968 agpCPQ - ok
10:26:15.0343 2968 [ C23EA9B5F46C7F7910DB3EAB648FF013 ] Aha154x C:\WINDOWS\system32\DRIVERS\aha154x.sys
10:26:15.0406 2968 Aha154x - ok
10:26:15.0437 2968 [ 19DD0FB48B0C18892F70E2E7D61A1529 ] aic78u2 C:\WINDOWS\system32\DRIVERS\aic78u2.sys
10:26:15.0593 2968 aic78u2 - ok
10:26:15.0640 2968 [ B7FE594A7468AA0132DEB03FB8E34326 ] aic78xx C:\WINDOWS\system32\DRIVERS\aic78xx.sys
10:26:15.0796 2968 aic78xx - ok
10:26:15.0843 2968 [ C7AE0FD3867DB0D42B03B73C18F3D671 ] Alerter C:\WINDOWS\system32\alrsvc.dll
10:26:15.0984 2968 Alerter - ok
10:26:16.0031 2968 [ F1958FBF86D5C004CF19A5951A9514B7 ] ALG C:\WINDOWS\System32\alg.exe
10:26:16.0109 2968 ALG - ok
10:26:16.0125 2968 [ 1140AB9938809700B46BB88E46D72A96 ] AliIde C:\WINDOWS\system32\DRIVERS\aliide.sys
10:26:16.0265 2968 AliIde - ok
10:26:16.0312 2968 [ F312B7CEF21EFF52FA23056B9D815FAD ] alim1541 C:\WINDOWS\system32\DRIVERS\alim1541.sys
10:26:16.0453 2968 alim1541 - ok
10:26:16.0468 2968 [ 675C16A3C1F8482F85EE4A97FC0DDE3D ] amdagp C:\WINDOWS\system32\DRIVERS\amdagp.sys
10:26:16.0625 2968 amdagp - ok
10:26:16.0656 2968 [ 79F5ADD8D24BD6893F2903A3E2F3FAD6 ] amsint C:\WINDOWS\system32\DRIVERS\amsint.sys
10:26:16.0734 2968 amsint - ok
10:26:16.0875 2968 [ 8FA646F0E639D9A8C8B98E217D471DC0 ] AOL ACS C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
10:26:16.0953 2968 AOL ACS - ok
10:26:17.0109 2968 [ A8AA9D47F971570A5162B862B80F87E8 ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
10:26:17.0125 2968 Apple Mobile Device - ok
10:26:17.0187 2968 [ 9C3C12975C97119412802B181FBEEFFE ] AppMgmt C:\WINDOWS\System32\appmgmts.dll
10:26:17.0265 2968 AppMgmt - ok
10:26:17.0281 2968 [ 62D318E9A0C8FC9B780008E724283707 ] asc C:\WINDOWS\system32\DRIVERS\asc.sys
10:26:17.0421 2968 asc - ok
10:26:17.0437 2968 [ 69EB0CC7714B32896CCBFD5EDCBEA447 ] asc3350p C:\WINDOWS\system32\DRIVERS\asc3350p.sys
10:26:17.0515 2968 asc3350p - ok
10:26:17.0546 2968 [ 5D8DE112AA0254B907861E9E9C31D597 ] asc3550 C:\WINDOWS\system32\DRIVERS\asc3550.sys
10:26:17.0703 2968 asc3550 - ok
10:26:17.0734 2968 [ D880831279ED91F9A4190A2DB9539EA9 ] ASCTRM C:\WINDOWS\system32\drivers\ASCTRM.sys
10:26:17.0750 2968 ASCTRM ( UnsignedFile.Multi.Generic ) - warning
10:26:17.0750 2968 ASCTRM - detected UnsignedFile.Multi.Generic (1)
10:26:17.0921 2968 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
10:26:17.0937 2968 aspnet_state - ok
10:26:17.0984 2968 [ 02000ABF34AF4C218C35D257024807D6 ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
10:26:18.0171 2968 AsyncMac - ok
10:26:18.0203 2968 [ CDFE4411A69C224BD1D11B2DA92DAC51 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
10:26:18.0375 2968 atapi - ok
10:26:18.0390 2968 Atdisk - ok
10:26:18.0421 2968 [ ABC57A6F6070BAF9786C318F59F29F0B ] Ati HotKey Poller C:\WINDOWS\system32\Ati2evxx.exe
10:26:18.0515 2968 Ati HotKey Poller - ok
10:26:18.0593 2968 [ 03621F7F968FF63713943405DEB777F9 ] ati2mtag C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
10:26:18.0656 2968 ati2mtag - ok
10:26:18.0703 2968 [ EC88DA854AB7D7752EC8BE11A741BB7F ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
10:26:18.0906 2968 Atmarpc - ok
10:26:18.0953 2968 [ DB66DB626E4882EBEF55F136F12C1829 ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
10:26:19.0125 2968 AudioSrv - ok
10:26:19.0156 2968 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
10:26:19.0296 2968 audstub - ok
10:26:19.0421 2968 [ 825F81A6F7DD073509DB101F0BA6DC59 ] BBSvc C:\Program Files\Microsoft\BingBar\BBSvc.EXE
10:26:19.0437 2968 BBSvc - ok
10:26:19.0500 2968 [ B770039886598AAB7CF5EAEEC2409E31 ] BCMH43XX C:\WINDOWS\system32\DRIVERS\bcmwlhigh5.sys
10:26:19.0609 2968 BCMH43XX - ok
10:26:19.0703 2968 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
10:26:19.0859 2968 Beep - ok
10:26:19.0968 2968 [ 2C69EC7E5A311334D10DD95F338FCCEA ] BITS C:\WINDOWS\system32\qmgr.dll
10:26:20.0140 2968 BITS - ok
10:26:20.0203 2968 [ 3F56903E124E820AEECE6D471583C6C1 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
10:26:20.0218 2968 Bonjour Service - ok
10:26:20.0265 2968 [ E3CFCCDDA4EDD1D0DC9168B2E18F27B8 ] Browser C:\WINDOWS\System32\browser.dll
10:26:20.0406 2968 Browser - ok
10:26:20.0421 2968 bvrp_pci - ok
10:26:20.0515 2968 catchme - ok
10:26:20.0562 2968 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf C:\WINDOWS\system32\DRIVERS\cbidf2k.sys
10:26:20.0703 2968 cbidf - ok
10:26:20.0718 2968 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
10:26:20.0859 2968 cbidf2k - ok
10:26:20.0890 2968 [ F3EC03299634490E97BBCE94CD2954C7 ] cd20xrnt C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys
10:26:20.0953 2968 cd20xrnt - ok
10:26:21.0000 2968 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
10:26:21.0171 2968 Cdaudio - ok
10:26:21.0218 2968 [ CD7D5152DF32B47F4E36F710B35AAE02 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
10:26:21.0375 2968 Cdfs - ok
10:26:21.0437 2968 [ 814ACB9B8A55804D9878248B3C79F862 ] Cdr4_xp C:\WINDOWS\system32\drivers\Cdr4_xp.sys
10:26:21.0453 2968 Cdr4_xp ( UnsignedFile.Multi.Generic ) - warning
10:26:21.0453 2968 Cdr4_xp - detected UnsignedFile.Multi.Generic (1)
10:26:21.0484 2968 [ BCE7213F8AA1BC9D5C08F81CB05E10A7 ] Cdralw2k C:\WINDOWS\system32\drivers\Cdralw2k.sys
10:26:21.0515 2968 Cdralw2k ( UnsignedFile.Multi.Generic ) - warning
10:26:21.0515 2968 Cdralw2k - detected UnsignedFile.Multi.Generic (1)
10:26:21.0546 2968 [ AF9C19B3100FE010496B1A27181FBF72 ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
10:26:21.0718 2968 Cdrom - ok
10:26:21.0765 2968 [ 84853B3FD012251690570E9E7E43343F ] cercsr6 C:\WINDOWS\system32\drivers\cercsr6.sys
10:26:21.0765 2968 cercsr6 ( UnsignedFile.Multi.Generic ) - warning
10:26:21.0765 2968 cercsr6 - detected UnsignedFile.Multi.Generic (1)
10:26:21.0828 2968 [ 7E6F7DA1C4DE5680820F964562548949 ] cfwids C:\WINDOWS\system32\drivers\cfwids.sys
10:26:21.0875 2968 cfwids - ok
10:26:21.0875 2968 Changer - ok
10:26:21.0906 2968 [ 3192BD04D032A9C4A85A3278C268A13A ] CiSvc C:\WINDOWS\system32\cisvc.exe
10:26:22.0046 2968 CiSvc - ok
10:26:22.0078 2968 [ C8DEC22C4137D7A90F8BDF41CA4B82AE ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
10:26:22.0218 2968 ClipSrv - ok
10:26:22.0265 2968 [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
10:26:22.0296 2968 clr_optimization_v2.0.50727_32 - ok
10:26:22.0343 2968 [ E5DCB56C533014ECBC556A8357C929D5 ] CmdIde C:\WINDOWS\system32\DRIVERS\cmdide.sys
10:26:22.0484 2968 CmdIde - ok
10:26:22.0484 2968 COMSysApp - ok
10:26:22.0515 2968 [ 3EE529119EED34CD212A215E8C40D4B6 ] Cpqarray C:\WINDOWS\system32\DRIVERS\cpqarray.sys
10:26:22.0656 2968 Cpqarray - ok
10:26:22.0703 2968 [ 7DB5E3F44D797BD38B8E336CCC2E49D5 ] Creative Labs Licensing Service C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe
10:26:22.0718 2968 Creative Labs Licensing Service ( UnsignedFile.Multi.Generic ) - warning
10:26:22.0718 2968 Creative Labs Licensing Service - detected UnsignedFile.Multi.Generic (1)
10:26:22.0734 2968 [ 3C8B6609712F4FF78E521F6DCFC4032B ] Creative Service for CDROM Access C:\WINDOWS\system32\CTsvcCDA.exe
10:26:22.0750 2968 Creative Service for CDROM Access ( UnsignedFile.Multi.Generic ) - warning
10:26:22.0750 2968 Creative Service for CDROM Access - detected UnsignedFile.Multi.Generic (1)
10:26:22.0765 2968 [ 10654F9DDCEA9C46CFB77554231BE73B ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
10:26:22.0906 2968 CryptSvc - ok
10:26:22.0937 2968 [ 8DB84DE3AAB34A8B4C2F644EFF41CD76 ] ctsfm2k C:\WINDOWS\system32\DRIVERS\ctsfm2k.sys
10:26:22.0968 2968 ctsfm2k - ok
10:26:23.0015 2968 [ 4EE8822ADB764EDD28CE44E808097995 ] CTUSFSYN C:\WINDOWS\system32\drivers\ctusfsyn.sys
10:26:23.0062 2968 CTUSFSYN - ok
10:26:23.0109 2968 [ E550E7418984B65A78299D248F0A7F36 ] dac2w2k C:\WINDOWS\system32\DRIVERS\dac2w2k.sys
10:26:23.0250 2968 dac2w2k - ok
10:26:23.0265 2968 [ 683789CAA3864EB46125AE86FF677D34 ] dac960nt C:\WINDOWS\system32\DRIVERS\dac960nt.sys
10:26:23.0421 2968 dac960nt - ok
10:26:23.0468 2968 [ 5C83A4408604F737717AB96371201680 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
10:26:23.0671 2968 DcomLaunch - ok
10:26:23.0718 2968 [ CB6CA3E5261D65F6F809EED23BF167AA ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
10:26:23.0875 2968 Dhcp - ok
10:26:23.0921 2968 [ 00CA44E4534865F8A3B64F7C0984BFF0 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
10:26:24.0093 2968 Disk - ok
10:26:24.0140 2968 [ E2D0DE31442390C35E3163C87CB6A9EB ] DLABOIOM C:\WINDOWS\system32\DLA\DLABOIOM.SYS
10:26:24.0171 2968 DLABOIOM ( UnsignedFile.Multi.Generic ) - warning
10:26:24.0171 2968 DLABOIOM - detected UnsignedFile.Multi.Generic (1)
10:26:24.0171 2968 [ D979BEBCF7EDCC9C9EE1857D1A68C67B ] DLACDBHM C:\WINDOWS\system32\Drivers\DLACDBHM.SYS
10:26:24.0187 2968 DLACDBHM ( UnsignedFile.Multi.Generic ) - warning
10:26:24.0187 2968 DLACDBHM - detected UnsignedFile.Multi.Generic (1)
10:26:24.0218 2968 [ 83545593E297F50A8E2524B4C071A153 ] DLADResN C:\WINDOWS\system32\DLA\DLADResN.SYS
10:26:24.0218 2968 DLADResN ( UnsignedFile.Multi.Generic ) - warning
10:26:24.0218 2968 DLADResN - detected UnsignedFile.Multi.Generic (1)
10:26:24.0234 2968 [ 96E01D901CDC98C7817155CC057001BF ] DLAIFS_M C:\WINDOWS\system32\DLA\DLAIFS_M.SYS
10:26:24.0265 2968 DLAIFS_M ( UnsignedFile.Multi.Generic ) - warning
10:26:24.0265 2968 DLAIFS_M - detected UnsignedFile.Multi.Generic (1)
10:26:24.0296 2968 [ 0A60A39CC5E767980A31CA5D7238DFA9 ] DLAOPIOM C:\WINDOWS\system32\DLA\DLAOPIOM.SYS
10:26:24.0328 2968 DLAOPIOM ( UnsignedFile.Multi.Generic ) - warning
10:26:24.0328 2968 DLAOPIOM - detected UnsignedFile.Multi.Generic (1)
10:26:24.0328 2968 [ 9FE2B72558FC808357F427FD83314375 ] DLAPoolM C:\WINDOWS\system32\DLA\DLAPoolM.SYS
10:26:24.0343 2968 DLAPoolM ( UnsignedFile.Multi.Generic ) - warning
10:26:24.0343 2968 DLAPoolM - detected UnsignedFile.Multi.Generic (1)
10:26:24.0359 2968 [ 7EE0852AE8907689DF25049DCD2342E8 ] DLARTL_N C:\WINDOWS\system32\Drivers\DLARTL_N.SYS
10:26:24.0375 2968 DLARTL_N ( UnsignedFile.Multi.Generic ) - warning
10:26:24.0375 2968 DLARTL_N - detected UnsignedFile.Multi.Generic (1)
10:26:24.0375 2968 [ F08E1DAFAC457893399E03430A6A1397 ] DLAUDFAM C:\WINDOWS\system32\DLA\DLAUDFAM.SYS
10:26:24.0390 2968 DLAUDFAM ( UnsignedFile.Multi.Generic ) - warning
10:26:24.0390 2968 DLAUDFAM - detected UnsignedFile.Multi.Generic (1)
10:26:24.0390 2968 [ E7D105ED1E694449D444A9933DF8E060 ] DLAUDF_M C:\WINDOWS\system32\DLA\DLAUDF_M.SYS
10:26:24.0421 2968 DLAUDF_M ( UnsignedFile.Multi.Generic ) - warning
10:26:24.0421 2968 DLAUDF_M - detected UnsignedFile.Multi.Generic (1)
10:26:24.0421 2968 dmadmin - ok
10:26:24.0500 2968 [ C0FBB516E06E243F0CF31F597E7EBF7D ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
10:26:24.0687 2968 dmboot - ok
10:26:24.0734 2968 [ F5E7B358A732D09F4BCF2824B88B9E28 ] dmio C:\WINDOWS\system32\DRIVERS\dmio.sys
10:26:24.0890 2968 dmio - ok
10:26:24.0937 2968 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
10:26:25.0062 2968 dmload - ok
10:26:25.0109 2968 [ 1639D9964C9E1B2ECCA95C8217D3E70D ] dmserver C:\WINDOWS\System32\dmserver.dll
10:26:25.0281 2968 dmserver - ok
10:26:25.0328 2968 [ A6F881284AC1150E37D9AE47FF601267 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
10:26:25.0484 2968 DMusic - ok
10:26:25.0515 2968 [ 7379DE06FD196E396A00AA97B990C00D ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
10:26:25.0687 2968 Dnscache - ok
10:26:25.0734 2968 [ 0F0F6E687E5E15579EF4DA8DD6945814 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
10:26:25.0750 2968 Dot3svc ( UnsignedFile.Multi.Generic ) - warning
10:26:25.0750 2968 Dot3svc - detected UnsignedFile.Multi.Generic (1)
10:26:25.0765 2968 [ 40F3B93B4E5B0126F2F5C0A7A5E22660 ] dpti2o C:\WINDOWS\system32\DRIVERS\dpti2o.sys
10:26:25.0906 2968 dpti2o - ok
10:26:25.0953 2968 [ 1ED4DBBAE9F5D558DBBA4CC450E3EB2E ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
10:26:26.0093 2968 drmkaud - ok
10:26:26.0109 2968 [ FD0F95981FEF9073659D8EC58E40AA3C ] DRVMCDB C:\WINDOWS\system32\Drivers\DRVMCDB.SYS
10:26:26.0109 2968 DRVMCDB ( UnsignedFile.Multi.Generic ) - warning
10:26:26.0109 2968 DRVMCDB - detected UnsignedFile.Multi.Generic (1)
10:26:26.0171 2968 [ B4869D320428CDC5EC4D7F5E808E99B5 ] DRVNDDM C:\WINDOWS\system32\Drivers\DRVNDDM.SYS
10:26:26.0171 2968 DRVNDDM ( UnsignedFile.Multi.Generic ) - warning
10:26:26.0171 2968 DRVNDDM - detected UnsignedFile.Multi.Generic (1)
10:26:26.0281 2968 [ FE80901578E7E3DA70299A5AEB2B7FBD ] DSBrokerService C:\Program Files\DellSupport\brkrsvc.exe
10:26:26.0296 2968 DSBrokerService - ok
10:26:26.0328 2968 [ 413F2D5F9D802688242C23B38F767ECB ] DSproct C:\Program Files\DellSupport\GTAction\triggers\DSproct.sys
10:26:26.0328 2968 DSproct ( UnsignedFile.Multi.Generic ) - warning
10:26:26.0328 2968 DSproct - detected UnsignedFile.Multi.Generic (1)
10:26:26.0359 2968 [ DFEABB7CFFFADEA4A912AB95BDC3177A ] dsunidrv C:\WINDOWS\system32\DRIVERS\dsunidrv.sys
10:26:26.0406 2968 dsunidrv - ok
10:26:26.0468 2968 [ D57A8FC800B501AC05B10D00F66D127A ] E100B C:\WINDOWS\system32\DRIVERS\e100b325.sys
10:26:26.0515 2968 E100B - ok
10:26:26.0562 2968 [ 2187855A7703ADEF0CEF9EE4285182CC ] EapHost C:\WINDOWS\System32\eapsvc.dll
10:26:26.0578 2968 EapHost ( UnsignedFile.Multi.Generic ) - warning
10:26:26.0578 2968 EapHost - detected UnsignedFile.Multi.Generic (1)
10:26:26.0671 2968 [ 5D1347AA5AE6E2F77D7F4F8372D95AC9 ] ehRecvr C:\WINDOWS\eHome\ehRecvr.exe
10:26:26.0796 2968 ehRecvr - ok
10:26:26.0812 2968 [ A53243709439AC2A4C216B817F8D7411 ] ehSched C:\WINDOWS\eHome\ehSched.exe
10:26:26.0921 2968 ehSched - ok
10:26:26.0953 2968 [ 67DFF7BBBD0E80AAB7B3CF061448DB8A ] ERSvc C:\WINDOWS\System32\ersvc.dll
10:26:27.0093 2968 ERSvc - ok
10:26:27.0125 2968 [ C6CE6EEC82F187615D1002BB3BB50ED4 ] Eventlog C:\WINDOWS\system32\services.exe
10:26:27.0281 2968 Eventlog - ok
10:26:27.0312 2968 [ ACD36A2DD7D1E9D8A060AA651DC07E63 ] EventSystem C:\WINDOWS\system32\es.dll
10:26:27.0484 2968 EventSystem - ok
10:26:27.0562 2968 [ 3117F595E9615E04F05A54FC15A03B20 ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
10:26:27.0703 2968 Fastfat - ok
10:26:27.0765 2968 [ E7518DC542D3EBDCB80EDD98462C7821 ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
10:26:27.0906 2968 FastUserSwitchingCompatibility - ok
10:26:27.0953 2968 [ FCBD571FA0EE8DC238944AE5FAB74461 ] Fax C:\WINDOWS\system32\fxssvc.exe
10:26:28.0125 2968 Fax - ok
10:26:28.0171 2968 [ CED2E8396A8838E59D8FD529C680E02C ] Fdc C:\WINDOWS\system32\DRIVERS\fdc.sys
10:26:28.0328 2968 Fdc - ok
10:26:28.0375 2968 [ E153AB8A11DE5452BCF5AC7652DBF3ED ] Fips C:\WINDOWS\system32\drivers\Fips.sys
10:26:28.0500 2968 Fips - ok
10:26:28.0546 2968 [ 0DD1DE43115B93F4D85E889D7A86F548 ] Flpydisk C:\WINDOWS\system32\DRIVERS\flpydisk.sys
10:26:28.0687 2968 Flpydisk - ok
10:26:28.0750 2968 [ 157754F0DF355A9E0A6F54721914F9C6 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
10:26:28.0906 2968 FltMgr - ok
10:26:29.0000 2968 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
10:26:29.0015 2968 FontCache3.0.0.0 - ok
10:26:29.0046 2968 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
10:26:29.0203 2968 Fs_Rec - ok
10:26:29.0218 2968 [ 6AC26732762483366C3969C9E4D2259D ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
10:26:29.0359 2968 Ftdisk - ok
10:26:29.0406 2968 [ AB8A6A87D9D7255C3884D5B9541A6E80 ] GEARAspiWDM C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
10:26:29.0421 2968 GEARAspiWDM - ok
10:26:29.0437 2968 [ C0F1D4A21DE5A415DF8170616703DEBF ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
10:26:29.0593 2968 Gpc - ok
10:26:29.0671 2968 [ 751C1D2CA2ABF4A9F5A6B8D7D45B907C ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
10:26:29.0687 2968 gusvc - ok
10:26:29.0750 2968 [ 573C7D0A32852B48F3058CFD8026F511 ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
10:26:29.0781 2968 HDAudBus ( UnsignedFile.Multi.Generic ) - warning
10:26:29.0781 2968 HDAudBus - detected UnsignedFile.Multi.Generic (1)
10:26:29.0859 2968 [ 8827911A8C37E40C027CBFC88E69D967 ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
10:26:30.0015 2968 helpsvc - ok
10:26:30.0062 2968 [ 9376E6893E52B368ABC6255BF54F0B28 ] HidServ C:\WINDOWS\System32\hidserv.dll
10:26:30.0187 2968 HidServ - ok
10:26:30.0218 2968 [ 1DE6783B918F540149AA69943BDFEBA8 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys
10:26:30.0359 2968 HidUsb - ok
10:26:30.0406 2968 [ 8878BD685E490239777BFE51320B88E9 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
10:26:30.0437 2968 hkmsvc ( UnsignedFile.Multi.Generic ) - warning
10:26:30.0437 2968 hkmsvc - detected UnsignedFile.Multi.Generic (1)
10:26:30.0515 2968 [ C5F00D15AA15CB7F55A027FF75E44BB7 ] HP Port Resolver C:\WINDOWS\system32\spool\drivers\w32x86\3\HPBPRO.EXE
10:26:30.0656 2968 HP Port Resolver - ok
10:26:30.0703 2968 [ B028377DEA0546A5FCFBA928A8AEFAE0 ] hpn C:\WINDOWS\system32\DRIVERS\hpn.sys
10:26:30.0828 2968 hpn - ok
10:26:30.0875 2968 [ 77E4FF0B73BC0AEAAF39BF0C8104231F ] HSFHWBS2 C:\WINDOWS\system32\DRIVERS\HSFHWBS2.sys
10:26:30.0921 2968 HSFHWBS2 - ok
10:26:30.0984 2968 [ 60E1604729A15EF4A3B05F298427B3B1 ] HSF_DP C:\WINDOWS\system32\DRIVERS\HSF_DP.sys
10:26:31.0046 2968 HSF_DP - ok
10:26:31.0140 2968 [ C19B522A9AE0BBC3293397F3055E80A1 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
10:26:31.0296 2968 HTTP - ok
10:26:31.0343 2968 [ 064D8581ADF77C25133E7D751D917D83 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
10:26:31.0500 2968 HTTPFilter - ok
10:26:31.0531 2968 [ 8F09F91B5C91363B77BCD15599570F2C ] i2omgmt C:\WINDOWS\system32\drivers\i2omgmt.sys
10:26:31.0703 2968 i2omgmt - ok
10:26:31.0734 2968 [ ED6BF9E441FDEA13292A6D30A64A24C3 ] i2omp C:\WINDOWS\system32\DRIVERS\i2omp.sys
10:26:31.0875 2968 i2omp - ok
10:26:31.0921 2968 [ 5502B58EEF7486EE6F93F3F164DCB808 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
10:26:32.0062 2968 i8042prt - ok
10:26:32.0140 2968 [ 5A8E05F1D5C36ABD58CFFA111EB325EA ] ialm C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
10:26:32.0250 2968 ialm - ok
10:26:32.0359 2968 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
10:26:32.0406 2968 idsvc - ok
10:26:32.0453 2968 [ F8AA320C6A0409C0380E5D8A99D76EC6 ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
10:26:32.0609 2968 Imapi - ok
10:26:32.0656 2968 [ FA788520BCAC0F5D9D5CDE5615C0D931 ] ImapiService C:\WINDOWS\system32\imapi.exe
10:26:32.0828 2968 ImapiService - ok
10:26:32.0859 2968 [ 4A40E045FAEE58631FD8D91AFC620719 ] ini910u C:\WINDOWS\system32\DRIVERS\ini910u.sys
10:26:32.0984 2968 ini910u - ok
10:26:33.0015 2968 [ 2D722B2B54AB55B2FA475EB58D7B2AAD ] IntelIde C:\WINDOWS\system32\DRIVERS\intelide.sys
10:26:33.0156 2968 IntelIde - ok
10:26:33.0203 2968 [ 279FB78702454DFF2BB445F238C048D2 ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
10:26:33.0375 2968 intelppm - ok
10:26:33.0390 2968 [ 4448006B6BC60E6C027932CFC38D6855 ] Ip6Fw C:\WINDOWS\system32\drivers\ip6fw.sys
10:26:33.0531 2968 Ip6Fw - ok
10:26:33.0546 2968 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
10:26:33.0687 2968 IpFilterDriver - ok
10:26:33.0703 2968 [ E1EC7F5DA720B640CD8FB8424F1B14BB ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
10:26:33.0828 2968 IpInIp - ok
10:26:33.0875 2968 [ B5A8E215AC29D24D60B4D1250EF05ACE ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
10:26:34.0031 2968 IpNat - ok
10:26:34.0078 2968 [ 62937A89470AF8FF172F0980CA8AEFC9 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
10:26:34.0125 2968 iPod Service - ok
10:26:34.0203 2968 [ 64537AA5C003A6AFEEE1DF819062D0D1 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
10:26:34.0328 2968 IPSec - ok
10:26:34.0359 2968 [ 50708DAA1B1CBB7D6AC1CF8F56A24410 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
10:26:34.0453 2968 IRENUM - ok
10:26:34.0500 2968 [ E504F706CCB699C2596E9A3DA1596E87 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
10:26:34.0640 2968 isapnp - ok
10:26:34.0718 2968 [ 4F2143570D2250CA4C4A4C98553C82CD ] JavaQuickStarterService C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe
10:26:34.0750 2968 JavaQuickStarterService - ok
10:26:34.0765 2968 [ EBDEE8A2EE5393890A1ACEE971C4C246 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
10:26:34.0890 2968 Kbdclass - ok
10:26:34.0906 2968 [ E182FA8E49E8EE41B4ADC53093F3C7E6 ] kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys
10:26:35.0031 2968 kbdhid - ok
10:26:35.0093 2968 [ D93CAD07C5683DB066B0B2D2D3790EAD ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
10:26:35.0250 2968 kmixer - ok
10:26:35.0265 2968 [ EB7FFE87FD367EA8FCA0506F74A87FBB ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
10:26:35.0421 2968 KSecDD - ok
10:26:35.0468 2968 [ 93D32468D34E000CB3407947D1D6E22A ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
10:26:35.0609 2968 lanmanserver - ok
10:26:35.0640 2968 [ 2C0A7B2AE9C26F2C163627679B42783C ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
10:26:35.0796 2968 lanmanworkstation - ok
10:26:35.0843 2968 [ 9FFD1CF2A782F2560E78EEC4B8B8689E ] LBeepKE C:\WINDOWS\system32\Drivers\LBeepKE.sys
10:26:35.0859 2968 LBeepKE - ok
10:26:35.0875 2968 lbrtfdc - ok
10:26:35.0953 2968 [ 3AF6B73A3AD1FC37C5933441F66CEB91 ] LBTServ C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
10:26:35.0984 2968 LBTServ - ok
10:26:36.0031 2968 [ 70035567754BED4E6AD353CA3F175127 ] LEqdUsb C:\WINDOWS\system32\Drivers\LEqdUsb.Sys
10:26:36.0046 2968 LEqdUsb - ok
10:26:36.0078 2968 [ 32491B6BAE0AFAD1D7A62C0EF0AF4321 ] LHidEqd C:\WINDOWS\system32\Drivers\LHidEqd.Sys
10:26:36.0078 2968 LHidEqd - ok
10:26:36.0125 2968 [ 7F9C7B28CF1C859E1C42619EEA946DC8 ] LHidFilt C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys
10:26:36.0140 2968 LHidFilt - ok
10:26:36.0203 2968 [ B3EFF6D938C572E90A07B3D87A3C7657 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
10:26:36.0359 2968 LmHosts - ok
10:26:36.0375 2968 [ AB33792A87285344F43B5CE23421BAB0 ] LMouFilt C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys
10:26:36.0390 2968 LMouFilt - ok
10:26:36.0468 2968 [ F453D1E6D881E8F8717E20CCD4199E85 ] McComponentHostService C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe
10:26:36.0484 2968 McComponentHostService - ok
10:26:36.0578 2968 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] McMPFSvc C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
10:26:36.0609 2968 McMPFSvc - ok
10:26:36.0625 2968 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] mcmscsvc C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
10:26:36.0640 2968 mcmscsvc - ok
10:26:36.0656 2968 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] McNaiAnn C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
10:26:36.0671 2968 McNaiAnn - ok
10:26:36.0671 2968 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] McNASvc C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
10:26:36.0703 2968 McNASvc - ok
10:26:36.0843 2968 [ ADA83A989D5822DAA5E2F62FDF118AC6 ] McODS C:\Program Files\McAfee\VirusScan\mcods.exe
10:26:36.0875 2968 McODS - ok
10:26:36.0875 2968 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] McProxy C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
10:26:36.0906 2968 McProxy - ok
10:26:36.0937 2968 [ DF0A511F38F16016BF658FCA0090CB87 ] McrdSvc C:\WINDOWS\ehome\mcrdsvc.exe
10:26:36.0968 2968 McrdSvc - ok
10:26:37.0046 2968 [ 7394FCADC0DD68DDC5921884906F4AE9 ] McShield C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
10:26:37.0062 2968 McShield - ok
10:26:37.0140 2968 [ 11F714F85530A2BD134074DC30E99FCA ] MDM C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
10:26:37.0187 2968 MDM - ok
10:26:37.0203 2968 [ EEAEA6514BA7C9D273B5E87C4E1AAB30 ] mdmxsdk C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys
10:26:37.0234 2968 mdmxsdk - ok
10:26:37.0281 2968 [ 95FD808E4AC22ABA025A7B3EAC0375D2 ] Messenger C:\WINDOWS\System32\msgsvc.dll
10:26:37.0421 2968 Messenger - ok
10:26:37.0468 2968 [ 84D59A3EDDFB9438FB94F7F80D37859D ] mfeapfk C:\WINDOWS\system32\drivers\mfeapfk.sys
10:26:37.0484 2968 mfeapfk - ok
10:26:37.0546 2968 [ 67E961988312B1A28D6F93357B0BF998 ] mfeavfk C:\WINDOWS\system32\drivers\mfeavfk.sys
10:26:37.0562 2968 mfeavfk - ok
10:26:37.0625 2968 [ 19161B1796CF74A6A326ABDE309062BA ] mfebopk C:\WINDOWS\system32\drivers\mfebopk.sys
10:26:37.0640 2968 mfebopk - ok
10:26:37.0703 2968 [ 3D8E909DA47E22E2B32056FD2AE66EDE ] mfefire C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
10:26:37.0718 2968 mfefire - ok
10:26:37.0781 2968 [ D5F89B4934960C70882924D992C6ABFC ] mfefirek C:\WINDOWS\system32\drivers\mfefirek.sys
10:26:37.0796 2968 mfefirek - ok
10:26:37.0859 2968 [ 0EFAB2B91B27543FE589DE700DE07136 ] mfehidk C:\WINDOWS\system32\drivers\mfehidk.sys
10:26:37.0890 2968 mfehidk - ok
10:26:37.0953 2968 [ 549DD4966BF0B1D1FC205CA0755A745B ] mfendisk C:\WINDOWS\system32\DRIVERS\mfendisk.sys
10:26:37.0984 2968 mfendisk - ok
10:26:37.0984 2968 [ 549DD4966BF0B1D1FC205CA0755A745B ] mfendiskmp C:\WINDOWS\system32\DRIVERS\mfendisk.sys
10:26:38.0000 2968 mfendiskmp - ok
10:26:38.0046 2968 [ C9EDA1EADA2AB6E34CD1A10C3A24AB25 ] mferkdet C:\WINDOWS\system32\drivers\mferkdet.sys
10:26:38.0062 2968 mferkdet - ok
10:26:38.0109 2968 [ E6C5F7AADE5A31C057D73201ACFE8ADF ] mfetdi2k C:\WINDOWS\system32\drivers\mfetdi2k.sys
10:26:38.0125 2968 mfetdi2k - ok
10:26:38.0171 2968 [ 5C1B2814EF2A6313936A111D3FD095AF ] mfevtp C:\WINDOWS\system32\mfevtps.exe
10:26:38.0203 2968 mfevtp - ok
10:26:38.0250 2968 [ B7521F69C0A9B29D356157229376FB21 ] MHN C:\WINDOWS\System32\mhn.dll
10:26:38.0312 2968 MHN - ok
10:26:38.0343 2968 [ 7F2F1D2815A6449D346FCCCBC569FBD6 ] MHNDRV C:\WINDOWS\system32\DRIVERS\mhndrv.sys
10:26:38.0406 2968 MHNDRV - ok
10:26:38.0453 2968 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
10:26:38.0609 2968 mnmdd - ok
10:26:38.0671 2968 [ F6415361201915B9FE3896B0E4E724FF ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe
10:26:38.0828 2968 mnmsrvc - ok
10:26:38.0875 2968 [ 6FC6F9D7ACC36DCA9B914565A3AEDA05 ] Modem C:\WINDOWS\system32\drivers\Modem.sys
10:26:39.0015 2968 Modem - ok
10:26:39.0046 2968 [ 1992E0D143B09653AB0F9C5E04B0FD65 ] MODEMCSA C:\WINDOWS\system32\drivers\MODEMCSA.sys
10:26:39.0203 2968 MODEMCSA - ok
10:26:39.0234 2968 [ 34E1F0031153E491910E12551400192C ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
10:26:39.0375 2968 Mouclass - ok
10:26:39.0421 2968 [ B1C303E17FB9D46E87A98E4BA6769685 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
10:26:39.0562 2968 mouhid - ok
10:26:39.0578 2968 [ 65653F3B4477F3C63E68A9659F85EE2E ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
10:26:39.0734 2968 MountMgr - ok
10:26:39.0796 2968 [ 8BE15F71DE6FF33FC56DCDE7B2B9EFE8 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
10:26:39.0828 2968 MozillaMaintenance - ok
10:26:39.0875 2968 [ 3F4BB95E5A44F3BE34824E8E7CAF0737 ] mraid35x C:\WINDOWS\system32\DRIVERS\mraid35x.sys
10:26:40.0015 2968 mraid35x - ok
10:26:40.0015 2968 [ 46EDCC8F2DB2F322C24F48785CB46366 ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
10:26:40.0156 2968 MRxDAV - ok
10:26:40.0218 2968 [ 1FD607FC67F7F7C633C3DA65BFC53D18 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
10:26:40.0359 2968 MRxSmb - ok
10:26:40.0406 2968 [ C7C3D89EB0A6F3DBA622EA737FA335B1 ] MSDTC C:\WINDOWS\system32\msdtc.exe
10:26:40.0531 2968 MSDTC - ok
10:26:40.0546 2968 [ 561B3A4333CA2DBDBA28B5B956822519 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
10:26:40.0703 2968 Msfs - ok
10:26:40.0703 2968 MSIServer - ok
10:26:40.0750 2968 [ AE431A8DD3C1D0D0610CDBAC16057AD0 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
10:26:40.0890 2968 MSKSSRV - ok
10:26:40.0921 2968 [ 13E75FEF9DFEB08EEDED9D0246E1F448 ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
10:26:41.0078 2968 MSPCLOCK - ok
10:26:41.0125 2968 [ 1988A33FF19242576C3D0EF9CE785DA7 ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
10:26:41.0265 2968 MSPQM - ok
10:26:41.0312 2968 [ 469541F8BFD2B32659D5D463A6714BCE ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
10:26:41.0453 2968 mssmbios - ok
10:26:41.0515 2968 [ 82035E0F41C2DD05AE41D27FE6CF7DE1 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
10:26:41.0640 2968 Mup - ok
10:26:41.0734 2968 [ 0102140028FAD045756796E1C685D695 ] napagent C:\WINDOWS\System32\qagentrt.dll
10:26:41.0750 2968 napagent ( UnsignedFile.Multi.Generic ) - warning
10:26:41.0750 2968 napagent - detected UnsignedFile.Multi.Generic (1)
10:26:41.0796 2968 [ 558635D3AF1C7546D26067D5D9B6959E ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
10:26:41.0937 2968 NDIS - ok
10:26:41.0953 2968 [ 08D43BBDACDF23F34D79E44ED35C1B4C ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
10:26:42.0093 2968 NdisTapi - ok
10:26:42.0140 2968 [ 34D6CD56409DA9A7ED573E1C90A308BF ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
10:26:42.0296 2968 Ndisuio - ok
10:26:42.0328 2968 [ 0B90E255A9490166AB368CD55A529893 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
10:26:42.0468 2968 NdisWan - ok
10:26:42.0500 2968 [ 59FC3FB44D2669BC144FD87826BB571F ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
10:26:42.0625 2968 NDProxy - ok
10:26:42.0640 2968 [ 3A2ACA8FC1D7786902CA434998D7CEB4 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
10:26:42.0765 2968 NetBIOS - ok
10:26:42.0812 2968 [ 0C80E410CD2F47134407EE7DD19CC86B ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
10:26:42.0968 2968 NetBT - ok
10:26:43.0015 2968 [ 05AFB5AD06462257BEA7495283C86D50 ] NetDDE C:\WINDOWS\system32\netdde.exe
10:26:43.0171 2968 NetDDE - ok
10:26:43.0187 2968 [ 05AFB5AD06462257BEA7495283C86D50 ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
10:26:43.0312 2968 NetDDEdsdm - ok
10:26:43.0359 2968 [ 84885F9B82F4D55C6146EBF6065D75D2 ] Netlogon C:\WINDOWS\system32\lsass.exe
10:26:43.0484 2968 Netlogon - ok
10:26:43.0531 2968 [ DAB9E6C7105D2EF49876FE92C524F565 ] Netman C:\WINDOWS\System32\netman.dll
10:26:43.0703 2968 Netman - ok
10:26:43.0812 2968 [ 9DA26B773BD04B867A8E9F427CD048FC ] NetSvc C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
10:26:43.0828 2968 NetSvc ( UnsignedFile.Multi.Generic ) - warning
10:26:43.0843 2968 NetSvc - detected UnsignedFile.Multi.Generic (1)
10:26:43.0890 2968 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
10:26:43.0906 2968 NetTcpPortSharing - ok
10:26:43.0953 2968 [ 4E74AF063C3271FBEA20DD940CFD1184 ] Nla C:\WINDOWS\System32\mswsock.dll
10:26:44.0093 2968 Nla - ok
10:26:44.0093 2968 [ 4F601BCB8F64EA3AC0994F98FED03F8E ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
10:26:44.0234 2968 Npfs - ok
10:26:44.0281 2968 [ B78BE402C3F63DD55521F73876951CDD ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
10:26:44.0468 2968 Ntfs - ok
10:26:44.0468 2968 [ 84885F9B82F4D55C6146EBF6065D75D2 ] NtLmSsp C:\WINDOWS\system32\lsass.exe
10:26:44.0593 2968 NtLmSsp - ok
10:26:44.0671 2968 [ B62F29C00AC55A761B2E45877D85EA0F ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
10:26:44.0843 2968 NtmsSvc - ok
10:26:44.0890 2968 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
10:26:45.0046 2968 Null - ok
10:26:45.0109 2968 [ 2B298519EDBFCF451D43E0F1E8F1006D ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
10:26:45.0328 2968 nv - ok
10:26:45.0343 2968 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
10:26:45.0484 2968 NwlnkFlt - ok
10:26:45.0500 2968 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
10:26:45.0625 2968 NwlnkFwd - ok
10:26:45.0671 2968 [ 7A56CF3E3F12E8AF599963B16F50FB6A ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
10:26:45.0687 2968 ose - ok
10:26:45.0750 2968 [ 103A9B117A7D9903111955CDAFE65AC6 ] ossrv C:\WINDOWS\system32\DRIVERS\ctoss2k.sys
10:26:45.0765 2968 ossrv - ok
10:26:45.0843 2968 [ 29744EB4CE659DFE3B4122DEB45BC478 ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys
10:26:45.0968 2968 Parport - ok
10:26:45.0984 2968 [ 3334430C29DC338092F79C38EF7B4CD0 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
10:26:46.0125 2968 PartMgr - ok
10:26:46.0140 2968 [ 70E98B3FD8E963A6A46A2E6247E0BEA1 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
10:26:46.0281 2968 ParVdm - ok
10:26:46.0343 2968 [ 8086D9979234B603AD5BC2F5D890B234 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
10:26:46.0500 2968 PCI - ok
10:26:46.0500 2968 PCIDump - ok
10:26:46.0515 2968 [ CCF5F451BB1A5A2A522A76E670000FF0 ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
10:26:46.0656 2968 PCIIde - ok
10:26:46.0734 2968 [ 82A087207DECEC8456FBE8537947D579 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
10:26:46.0875 2968 Pcmcia - ok
10:26:46.0890 2968 PDCOMP - ok
10:26:46.0890 2968 PDFRAME - ok
10:26:46.0906 2968 PDRELI - ok
10:26:46.0906 2968 PDRFRAME - ok
10:26:46.0937 2968 [ 6C14B9C19BA84F73D3A86DBA11133101 ] perc2 C:\WINDOWS\system32\DRIVERS\perc2.sys
10:26:47.0062 2968 perc2 - ok
10:26:47.0093 2968 [ F50F7C27F131AFE7BEBA13E14A3B9416 ] perc2hib C:\WINDOWS\system32\DRIVERS\perc2hib.sys
10:26:47.0218 2968 perc2hib - ok
10:26:47.0281 2968 [ C6CE6EEC82F187615D1002BB3BB50ED4 ] PlugPlay C:\WINDOWS\system32\services.exe
10:26:47.0437 2968 PlugPlay - ok
10:26:47.0484 2968 [ D31F88C5F19EEFA366A415D6BC5F2ABC ] Pml Driver HPZ12 C:\WINDOWS\system32\HPZipm12.exe
10:26:47.0546 2968 Pml Driver HPZ12 - ok
10:26:47.0593 2968 [ 84885F9B82F4D55C6146EBF6065D75D2 ] PolicyAgent C:\WINDOWS\system32\lsass.exe
10:26:47.0718 2968 PolicyAgent - ok
10:26:47.0765 2968 [ 1C5CC65AAC0783C344F16353E60B72AC ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
10:26:47.0921 2968 PptpMiniport - ok
10:26:47.0968 2968 [ 0D97D88720A4087EC93AF7DBB303B30A ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys
10:26:48.0187 2968 Processor - ok
10:26:48.0203 2968 [ 84885F9B82F4D55C6146EBF6065D75D2 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
10:26:48.0328 2968 ProtectedStorage - ok
10:26:48.0343 2968 [ 48671F327553DCF1D27F6197F622A668 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
10:26:48.0468 2968 PSched - ok
10:26:48.0515 2968 [ 1DF21F001F3A94EBA4A2950C70CC358F ] PSI C:\WINDOWS\system32\DRIVERS\psi_mf.sys
10:26:48.0531 2968 PSI - ok
10:26:48.0578 2968 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
10:26:48.0718 2968 Ptilink - ok
10:26:48.0750 2968 [ 40F2031BD9148D3194353EA7DEC97A07 ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys
10:26:48.0781 2968 PxHelp20 - ok
10:26:48.0828 2968 [ 0A63FB54039EB5662433CABA3B26DBA7 ] ql1080 C:\WINDOWS\system32\DRIVERS\ql1080.sys
10:26:48.0968 2968 ql1080 - ok
10:26:49.0015 2968 [ 6503449E1D43A0FF0201AD5CB1B8C706 ] Ql10wnt C:\WINDOWS\system32\DRIVERS\ql10wnt.sys
10:26:49.0171 2968 Ql10wnt - ok
10:26:49.0203 2968 [ 156ED0EF20C15114CA097A34A30D8A01 ] ql12160 C:\WINDOWS\system32\DRIVERS\ql12160.sys
10:26:49.0328 2968 ql12160 - ok
10:26:49.0359 2968 [ 70F016BEBDE6D29E864C1230A07CC5E6 ] ql1240 C:\WINDOWS\system32\DRIVERS\ql1240.sys
10:26:49.0484 2968 ql1240 - ok
10:26:49.0515 2968 [ 907F0AEEA6BC451011611E732BD31FCF ] ql1280 C:\WINDOWS\system32\DRIVERS\ql1280.sys
10:26:49.0656 2968 ql1280 - ok
10:26:49.0687 2968 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
10:26:49.0812 2968 RasAcd - ok
10:26:49.0875 2968 [ 44DB7A9BDD2FB58747D123FBF1D35ADB ] RasAuto C:\WINDOWS\System32\rasauto.dll
10:26:50.0000 2968 RasAuto - ok
10:26:50.0031 2968 [ 98FAEB4A4DCF812BA1C6FCA4AA3E115C ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
10:26:50.0187 2968 Rasl2tp - ok
10:26:50.0250 2968 [ 41A3C11E3517C962C9B44893BCEC3B34 ] RasMan C:\WINDOWS\System32\rasmans.dll
10:26:50.0390 2968 RasMan - ok
10:26:50.0421 2968 [ 7306EEED8895454CBED4669BE9F79FAA ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
10:26:50.0578 2968 RasPppoe - ok
10:26:50.0578 2968 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
10:26:50.0718 2968 Raspti - ok
10:26:50.0765 2968 [ 29D66245ADBA878FFF574CD66ABD2884 ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
10:26:50.0890 2968 Rdbss - ok
10:26:50.0906 2968 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
10:26:51.0062 2968 RDPCDD - ok
10:26:51.0125 2968 [ A2CAE2C60BC37E0751EF9DDA7CEAF4AD ] rdpdr C:\WINDOWS\system32\DRIVERS\rdpdr.sys
10:26:51.0250 2968 rdpdr - ok
10:26:51.0343 2968 [ D4F5643D7714EF499AE9527FDCD50894 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
10:26:51.0484 2968 RDPWD - ok
10:26:51.0562 2968 [ 729798E0933076B8FCFCD9934698F164 ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
10:26:51.0687 2968 RDSessMgr - ok
10:26:51.0734 2968 [ B31B4588E4086D8D84ADBF9845C2402B ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
10:26:51.0875 2968 redbook - ok
10:26:51.0921 2968 [ 3046DB917E3CFA040632799DD9B14865 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
10:26:52.0062 2968 RemoteAccess - ok
10:26:52.0093 2968 [ 3151427DB7D87107D1C5BE58FAC53960 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
10:26:52.0250 2968 RemoteRegistry - ok
10:26:52.0281 2968 [ 793F04A09B15E7C6C11DBDFFAF06C0AB ] RpcLocator C:\WINDOWS\system32\locator.exe
10:26:52.0421 2968 RpcLocator - ok
10:26:52.0468 2968 [ 5C83A4408604F737717AB96371201680 ] RpcSs C:\WINDOWS\System32\rpcss.dll
10:26:52.0625 2968 RpcSs - ok
10:26:52.0671 2968 [ 471B3F9741D762ABE75E9DEEA4787E47 ] RSVP C:\WINDOWS\system32\rsvp.exe
10:26:52.0812 2968 RSVP - ok
10:26:52.0843 2968 [ 84885F9B82F4D55C6146EBF6065D75D2 ] SamSs C:\WINDOWS\system32\lsass.exe
10:26:52.0968 2968 SamSs - ok
10:26:53.0031 2968 [ 25D8DE134DF108E3DBC8D7D23B1AA58E ] SCardDrv C:\WINDOWS\System32\SCardSvr.exe
10:26:53.0187 2968 SCardDrv - ok
10:26:53.0187 2968 [ 25D8DE134DF108E3DBC8D7D23B1AA58E ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
10:26:53.0328 2968 SCardSvr - ok
10:26:53.0375 2968 [ 92360854316611F6CC471612213C3D92 ] Schedule C:\WINDOWS\system32\schedsvc.dll
10:26:53.0515 2968 Schedule - ok
10:26:53.0625 2968 [ CC781378E7EDA615D2CDCA3B17829FA4 ] SeaPort C:\Program Files\Microsoft\BingBar\SeaPort.EXE
10:26:53.0656 2968 SeaPort - ok
10:26:53.0718 2968 [ D26E26EA516450AF9D072635C60387F4 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
10:26:53.0796 2968 Secdrv - ok
10:26:53.0843 2968 [ B1E0CE09895376871746F36DC5773B4F ] seclogon C:\WINDOWS\System32\seclogon.dll
10:26:54.0000 2968 seclogon - ok
10:26:54.0031 2968 [ DFD9870CF39C791D86C4C209DA9FA919 ] SENS C:\WINDOWS\system32\sens.dll
10:26:54.0171 2968 SENS - ok
10:26:54.0187 2968 [ A2D868AEEFF612E70E213C451A70CAFB ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys
10:26:54.0312 2968 serenum - ok
10:26:54.0375 2968 [ CD9404D115A00D249F70A371B46D5A26 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys
10:26:54.0515 2968 Serial - ok
10:26:54.0578 2968 [ 0D13B6DF6E9E101013A7AFB0CE629FE0 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
10:26:54.0718 2968 Sfloppy - ok
10:26:54.0781 2968 [ 36CC8C01B5E50163037BEF56CB96DEFF ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
10:26:54.0953 2968 SharedAccess - ok
10:26:54.0984 2968 [ E7518DC542D3EBDCB80EDD98462C7821 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
10:26:55.0125 2968 ShellHWDetection - ok
10:26:55.0218 2968 [ 6BD3976B881888AC9A0ED3EB94E7FD38 ] sigfilt C:\WINDOWS\system32\drivers\sigfilt.sys
10:26:55.0312 2968 sigfilt - ok
10:26:55.0312 2968 Simbad - ok
10:26:55.0375 2968 [ 732D859B286DA692119F286B21A2A114 ] sisagp C:\WINDOWS\system32\DRIVERS\sisagp.sys
10:26:55.0531 2968 sisagp - ok
10:26:55.0562 2968 [ 83C0F71F86D3BDAF915685F3D568B20E ] Sparrow C:\WINDOWS\system32\DRIVERS\sparrow.sys
10:26:55.0656 2968 Sparrow - ok
10:26:55.0687 2968 [ 8E186B8F23295D1E42C573B82B80D548 ] splitter C:\WINDOWS\system32\drivers\splitter.sys
10:26:55.0843 2968 splitter - ok
10:26:55.0875 2968 [ 7435B108B935E42EA92CA94F59C8E717 ] Spooler C:\WINDOWS\system32\spoolsv.exe
10:26:56.0046 2968 Spooler - ok
10:26:56.0093 2968 [ E41B6D037D6CD08461470AF04500DC24 ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
10:26:56.0171 2968 sr - ok
10:26:56.0218 2968 [ 92BDF74F12D6CBEC43C94D4B7F804838 ] srservice C:\WINDOWS\system32\srsvc.dll
10:26:56.0312 2968 srservice - ok
10:26:56.0328 2968 [ 20B7E396720353E4117D64D9DCB926CA ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
10:26:56.0484 2968 Srv - ok
10:26:56.0500 2968 [ 4B8D61792F7175BED48859CC18CE4E38 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
10:26:56.0593 2968 SSDPSRV - ok
10:26:56.0625 2968 [ B95480C92C4C9C311BE47B8A1AD73770 ] STHDA C:\WINDOWS\system32\drivers\sthda.sys
10:26:56.0671 2968 STHDA - ok
10:26:56.0718 2968 [ A9573045BAA16EAB9B1085205B82F1ED ] StillCam C:\WINDOWS\system32\DRIVERS\serscan.sys
10:26:56.0843 2968 StillCam - ok
10:26:56.0859 2968 [ D9F6C4F6B1E188ADAFC42B561D9BC2E6 ] stisvc C:\WINDOWS\system32\wiaservc.dll
10:26:57.0000 2968 stisvc - ok
10:26:57.0031 2968 [ 03C1BAE4766E2450219D20B993D6E046 ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
10:26:57.0187 2968 swenum - ok
10:26:57.0234 2968 [ 94ABC808FC4B6D7D2BBF42B85E25BB4D ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
10:26:57.0390 2968 swmidi - ok
10:26:57.0390 2968 SwPrv - ok
 
10:26:57.0421 2968 [ 1FF3217614018630D0A6758630FC698C ] symc810 C:\WINDOWS\system32\DRIVERS\symc810.sys
10:26:57.0562 2968 symc810 - ok
10:26:57.0625 2968 [ 070E001D95CF725186EF8B20335F933C ] symc8xx C:\WINDOWS\system32\DRIVERS\symc8xx.sys
10:26:57.0750 2968 symc8xx - ok
10:26:57.0781 2968 [ 80AC1C4ABBE2DF3B738BF15517A51F2C ] sym_hi C:\WINDOWS\system32\DRIVERS\sym_hi.sys
10:26:57.0921 2968 sym_hi - ok
10:26:57.0953 2968 [ BF4FAB949A382A8E105F46EBB4937058 ] sym_u3 C:\WINDOWS\system32\DRIVERS\sym_u3.sys
10:26:58.0093 2968 sym_u3 - ok
10:26:58.0125 2968 [ 650AD082D46BAC0E64C9C0E0928492FD ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
10:26:58.0281 2968 sysaudio - ok
10:26:58.0328 2968 [ 8B54AA346D1B1B113FFAA75501B8B1B2 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
10:26:58.0453 2968 SysmonLog - ok
10:26:58.0500 2968 [ EB4A4187D74A8EFDCBEA3EA2CB1BDFBD ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
10:26:58.0640 2968 TapiSrv - ok
10:26:58.0687 2968 [ 9F4B36614A0FC234525BA224957DE55C ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
10:26:58.0875 2968 Tcpip - ok
10:26:58.0890 2968 [ 38D437CF2D98965F239B0ABCD66DCB0F ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
10:26:59.0031 2968 TDPIPE - ok
10:26:59.0078 2968 [ ED0580AF02502D00AD8C4C066B156BE9 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
10:26:59.0265 2968 TDTCP - ok
10:26:59.0312 2968 [ A540A99C281D933F3D69D55E48727F47 ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
10:26:59.0468 2968 TermDD - ok
10:26:59.0531 2968 [ B60C877D16D9C880B952FDA04ADF16E6 ] TermService C:\WINDOWS\System32\termsrv.dll
10:26:59.0718 2968 TermService - ok
10:26:59.0750 2968 [ E7518DC542D3EBDCB80EDD98462C7821 ] Themes C:\WINDOWS\System32\shsvcs.dll
10:26:59.0906 2968 Themes - ok
10:26:59.0921 2968 [ 37DB0A7D097310E8B4DE803FC3119C78 ] TlntSvr C:\WINDOWS\system32\tlntsvr.exe
10:27:00.0015 2968 TlntSvr - ok
10:27:00.0031 2968 [ F2790F6AF01321B172AA62F8E1E187D9 ] TosIde C:\WINDOWS\system32\DRIVERS\toside.sys
10:27:00.0156 2968 TosIde - ok
10:27:00.0218 2968 [ 6D9AC544B30F96C57F8206566C1FB6A1 ] TrkWks C:\WINDOWS\system32\trkwks.dll
10:27:00.0359 2968 TrkWks - ok
10:27:00.0421 2968 [ 12F70256F140CD7D52C58C7048FDE657 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
10:27:00.0562 2968 Udfs - ok
10:27:00.0578 2968 [ 1B698A51CD528D8DA4FFAED66DFC51B9 ] ultra C:\WINDOWS\system32\DRIVERS\ultra.sys
10:27:00.0671 2968 ultra - ok
10:27:00.0703 2968 [ 6634C460C56EC7E48D6BE20B745DC03A ] UMWdf C:\WINDOWS\system32\wdfmgr.exe
10:27:00.0812 2968 UMWdf - ok
10:27:00.0859 2968 [ AFF2E5045961BBC0A602BB6F95EB1345 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
10:27:01.0000 2968 Update - ok
10:27:01.0031 2968 [ 0546477BDE979E33294FE97F6B3DE84A ] upnphost C:\WINDOWS\System32\upnphost.dll
10:27:01.0125 2968 upnphost - ok
10:27:01.0171 2968 [ 3F5DF65B0758675F95A2D43918A740A3 ] UPS C:\WINDOWS\System32\ups.exe
10:27:01.0296 2968 UPS - ok
10:27:01.0359 2968 [ C1CA131F4E3ED63D6BC89A35FFAD4CDA ] USBAAPL C:\WINDOWS\system32\Drivers\usbaapl.sys
10:27:01.0437 2968 USBAAPL - ok
10:27:01.0515 2968 [ BFFD9F120CC63BCBAA3D840F3EEF9F79 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
10:27:01.0671 2968 usbccgp - ok
10:27:01.0703 2968 [ 15E993BA2F6946B2BFBBFCD30398621E ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
10:27:01.0843 2968 usbehci - ok
10:27:01.0859 2968 [ C72F40947F92CEA56A8FB532EDF025F1 ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
10:27:02.0015 2968 usbhub - ok
10:27:02.0062 2968 [ A42369B7CD8886CD7C70F33DA6FCBCF5 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys
10:27:02.0203 2968 usbprint - ok
10:27:02.0234 2968 [ 6CD7B22193718F1D17A47A1CD6D37E75 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
10:27:02.0375 2968 USBSTOR - ok
10:27:02.0421 2968 [ F8FD1400092E23C8F2F31406EF06167B ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
10:27:02.0562 2968 usbuhci - ok
10:27:02.0562 2968 [ 8A60EDD72B4EA5AEA8202DAF0E427925 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
10:27:02.0703 2968 VgaSave - ok
10:27:02.0734 2968 [ D92E7C8A30CFD14D8E15B5F7F032151B ] viaagp C:\WINDOWS\system32\DRIVERS\viaagp.sys
10:27:02.0859 2968 viaagp - ok
10:27:02.0875 2968 [ 59CB1338AD3654417BEA49636457F65D ] ViaIde C:\WINDOWS\system32\DRIVERS\viaide.sys
10:27:03.0031 2968 ViaIde - ok
10:27:03.0062 2968 [ EE4660083DEBA849FF6C485D944B379B ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
10:27:03.0203 2968 VolSnap - ok
10:27:03.0281 2968 [ 3EE00364AE0FD8D604F46CBAF512838A ] VSS C:\WINDOWS\System32\vssvc.exe
10:27:03.0359 2968 VSS - ok
10:27:03.0421 2968 [ 2B281958F5D0CF99ED626E3EF39D5C8D ] w32time C:\WINDOWS\system32\w32time.dll
10:27:03.0546 2968 w32time - ok
10:27:03.0609 2968 [ 984EF0B9788ABF89974CFED4BFBAACBC ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
10:27:03.0750 2968 Wanarp - ok
10:27:03.0796 2968 [ 0A716C08CB13C3A8F4F51E882DBF7416 ] wanatw C:\WINDOWS\system32\DRIVERS\wanatw4.sys
10:27:03.0843 2968 wanatw - ok
10:27:03.0906 2968 [ FD47474BD21794508AF449D9D91AF6E6 ] Wdf01000 C:\WINDOWS\system32\DRIVERS\Wdf01000.sys
10:27:03.0937 2968 Wdf01000 - ok
10:27:03.0953 2968 WDICA - ok
10:27:04.0000 2968 [ 2797F33EBF50466020C430EE4F037933 ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
10:27:04.0156 2968 wdmaud - ok
10:27:04.0187 2968 [ 5D0A442864BFBF3B19DCCA4CD29F6E99 ] WebClient C:\WINDOWS\System32\webclnt.dll
10:27:04.0359 2968 WebClient - ok
10:27:04.0578 2968 [ F59ED5A43B988A18EF582BB07B2327A7 ] winachsf C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys
10:27:04.0796 2968 winachsf - ok
10:27:04.0906 2968 [ F399242A80C4066FD155EFA4CF96658E ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
10:27:05.0046 2968 winmgmt - ok
10:27:05.0203 2968 [ 5144AE67D60EC653F97DDF3FEED29E77 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
10:27:05.0296 2968 wlidsvc - ok
10:27:05.0375 2968 [ 94A85E956A065E23E0010A6A7826243B ] WLSetupSvc C:\Program Files\Windows Live\installer\WLSetupSvc.exe
10:27:05.0421 2968 WLSetupSvc ( UnsignedFile.Multi.Generic ) - warning
10:27:05.0421 2968 WLSetupSvc - detected UnsignedFile.Multi.Generic (1)
10:27:05.0484 2968 [ 581176F60885AEF8F78C6E38DCC3CDF9 ] WMDM PMSP Service C:\WINDOWS\system32\MsPMSPSv.exe
10:27:05.0484 2968 WMDM PMSP Service ( UnsignedFile.Multi.Generic ) - warning
10:27:05.0484 2968 WMDM PMSP Service - detected UnsignedFile.Multi.Generic (1)
10:27:05.0562 2968 [ B9715B9C18BC6C8F4B66733D208CC9F7 ] WmdmPmSN C:\WINDOWS\system32\mspmsnsv.dll
10:27:06.0187 2968 WmdmPmSN - ok
10:27:06.0234 2968 [ 1AFF244CA134956C54474F4E2433E4CE ] Wmi C:\WINDOWS\System32\advapi32.dll
10:27:06.0406 2968 Wmi - ok
10:27:06.0468 2968 [ BA8CECC3E813E1F7C441B20393D4F86C ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe
10:27:06.0609 2968 WmiApSrv - ok
10:27:06.0718 2968 [ F74E3D9A7FA9556C3BBB14D4E5E63D3B ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe
10:27:06.0796 2968 WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - warning
10:27:06.0796 2968 WMPNetworkSvc - detected UnsignedFile.Multi.Generic (1)
10:27:06.0875 2968 [ 0770ACCA345B35EF455AC0D96C8B39A0 ] WpdUsb C:\WINDOWS\system32\Drivers\wpdusb.sys
10:27:06.0921 2968 WpdUsb - ok
10:27:06.0968 2968 [ 6ABE6E225ADB5A751622A9CC3BC19CE8 ] WS2IFSL C:\WINDOWS\System32\drivers\ws2ifsl.sys
10:27:07.0109 2968 WS2IFSL - ok
10:27:07.0125 2968 [ 4D59DAA66C60858CDF4F67A900F42D4A ] wscsvc C:\WINDOWS\system32\wscsvc.dll
10:27:07.0296 2968 wscsvc - ok
10:27:07.0343 2968 [ 13D72740963CBA12D9FF76A7F218BCD8 ] wuauserv C:\WINDOWS\system32\wuauserv.dll
10:27:07.0500 2968 wuauserv - ok
10:27:07.0546 2968 [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
10:27:07.0609 2968 WudfPf - ok
10:27:07.0625 2968 [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
10:27:07.0656 2968 WudfRd - ok
10:27:07.0687 2968 [ 05231C04253C5BC30B26CBAAE680ED89 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
10:27:07.0734 2968 WudfSvc - ok
10:27:07.0781 2968 [ 5A91E6FEAB9F901302FA7FF768C0120F ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
10:27:07.0953 2968 WZCSVC - ok
10:27:08.0000 2968 [ EEF46DAB68229A14DA3D8E73C99E2959 ] xmlprov C:\WINDOWS\System32\xmlprov.dll
10:27:08.0140 2968 xmlprov - ok
10:27:08.0140 2968 ================ Scan global ===============================
10:27:08.0171 2968 [ 00EF9C3AF83EDBAF18CA7A2837750117 ] C:\WINDOWS\system32\basesrv.dll
10:27:08.0187 2968 [ 442D0EAD5534E4ADCF6D4469043C82C0 ] C:\WINDOWS\system32\winsrv.dll
10:27:08.0203 2968 [ 442D0EAD5534E4ADCF6D4469043C82C0 ] C:\WINDOWS\system32\winsrv.dll
10:27:08.0218 2968 [ C6CE6EEC82F187615D1002BB3BB50ED4 ] C:\WINDOWS\system32\services.exe
10:27:08.0234 2968 [Global] - ok
10:27:08.0234 2968 ================ Scan MBR ==================================
10:27:08.0265 2968 [ 5CB90281D1A59B251F6603134774EEC3 ] \Device\Harddisk0\DR0
10:27:08.0578 2968 \Device\Harddisk0\DR0 - ok
10:27:08.0578 2968 ================ Scan VBR ==================================
10:27:08.0578 2968 [ 2860AF43991D59E904A9CEA7DF8231F3 ] \Device\Harddisk0\DR0\Partition1
10:27:08.0578 2968 \Device\Harddisk0\DR0\Partition1 - ok
10:27:08.0578 2968 ============================================================
10:27:08.0578 2968 Scan finished
10:27:08.0578 2968 ============================================================
10:27:08.0703 2756 Detected object count: 27
10:27:08.0703 2756 Actual detected object count: 27
10:27:35.0234 2756 ASCTRM ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0234 2756 ASCTRM ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0234 2756 Cdr4_xp ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0234 2756 Cdr4_xp ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0234 2756 Cdralw2k ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0234 2756 Cdralw2k ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0250 2756 cercsr6 ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0250 2756 cercsr6 ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0250 2756 Creative Labs Licensing Service ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0250 2756 Creative Labs Licensing Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0250 2756 Creative Service for CDROM Access ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0250 2756 Creative Service for CDROM Access ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0250 2756 DLABOIOM ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0250 2756 DLABOIOM ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0250 2756 DLACDBHM ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0250 2756 DLACDBHM ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0265 2756 DLADResN ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0265 2756 DLADResN ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0265 2756 DLAIFS_M ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0265 2756 DLAIFS_M ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0265 2756 DLAOPIOM ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0265 2756 DLAOPIOM ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0265 2756 DLAPoolM ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0265 2756 DLAPoolM ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0265 2756 DLARTL_N ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0265 2756 DLARTL_N ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0281 2756 DLAUDFAM ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0281 2756 DLAUDFAM ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0281 2756 DLAUDF_M ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0281 2756 DLAUDF_M ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0281 2756 Dot3svc ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0281 2756 Dot3svc ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0281 2756 DRVMCDB ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0281 2756 DRVMCDB ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0281 2756 DRVNDDM ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0281 2756 DRVNDDM ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0281 2756 DSproct ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0281 2756 DSproct ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0296 2756 EapHost ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0296 2756 EapHost ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0296 2756 HDAudBus ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0296 2756 HDAudBus ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0296 2756 hkmsvc ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0296 2756 hkmsvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0296 2756 napagent ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0296 2756 napagent ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0296 2756 NetSvc ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0296 2756 NetSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0312 2756 WLSetupSvc ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0312 2756 WLSetupSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0312 2756 WMDM PMSP Service ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0312 2756 WMDM PMSP Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:27:35.0312 2756 WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - skipped by user
10:27:35.0312 2756 WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:28:20.0921 3648 ============================================================
10:28:20.0921 3648 Scan started
10:28:20.0921 3648 Mode: Manual; SigCheck; TDLFS;
10:28:20.0921 3648 ============================================================
10:28:21.0234 3648 ================ Scan system memory ========================
10:28:21.0234 3648 Scan interrupted by user!
10:28:21.0234 3648 ================ Scan services =============================
10:28:21.0234 3648 Scan interrupted by user!
10:28:21.0234 3648 ================ Scan global ===============================
10:28:21.0234 3648 Scan interrupted by user!
10:28:21.0234 3648 ================ Scan MBR ==================================
10:28:21.0234 3648 Scan interrupted by user!
10:28:21.0234 3648 ================ Scan VBR ==================================
10:28:21.0234 3648 Scan interrupted by user!
10:28:21.0234 3648 ============================================================
10:28:21.0234 3648 Scan finished
10:28:21.0234 3648 ============================================================
10:28:21.0234 3620 Detected object count: 0
10:28:21.0234 3620 Actual detected object count: 0
10:28:23.0765 3552 ============================================================
10:28:23.0765 3552 Scan started
10:28:23.0765 3552 Mode: Manual; SigCheck; TDLFS;
10:28:23.0765 3552 ============================================================
10:28:23.0937 3552 ================ Scan system memory ========================
10:28:23.0937 3552 System memory - ok
10:28:23.0937 3552 ================ Scan services =============================
10:28:24.0031 3552 A2DDA - ok
10:28:24.0187 3552 Abiosdsk - ok
10:28:24.0234 3552 [ 6ABB91494FE6C59089B9336452AB2EA3 ] abp480n5 C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS
10:28:24.0421 3552 abp480n5 - ok
10:28:24.0468 3552 [ A10C7534F7223F4A73A948967D00E69B ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
10:28:24.0640 3552 ACPI - ok
10:28:24.0671 3552 [ 9859C0F6936E723E4892D7141B1327D5 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
10:28:24.0812 3552 ACPIEC - ok
10:28:24.0859 3552 [ 9A11864873DA202C996558B2106B0BBC ] adpu160m C:\WINDOWS\system32\DRIVERS\adpu160m.sys
10:28:25.0015 3552 adpu160m - ok
10:28:25.0015 3552 Scan interrupted by user!
10:28:25.0015 3552 ================ Scan global ===============================
10:28:25.0015 3552 Scan interrupted by user!
10:28:25.0015 3552 ================ Scan MBR ==================================
10:28:25.0015 3552 Scan interrupted by user!
10:28:25.0015 3552 ================ Scan VBR ==================================
10:28:25.0015 3552 Scan interrupted by user!
10:28:25.0015 3552 ============================================================
10:28:25.0015 3552 Scan finished
10:28:25.0015 3552 ============================================================
10:28:25.0031 1976 Detected object count: 0
10:28:25.0031 1976 Actual detected object count: 0
10:28:27.0562 3276 ============================================================
10:28:27.0562 3276 Scan started
10:28:27.0562 3276 Mode: Manual; SigCheck; TDLFS;
10:28:27.0562 3276 ============================================================
10:28:27.0765 3276 ================ Scan system memory ========================
10:28:27.0781 3276 System memory - ok
10:28:27.0781 3276 ================ Scan services =============================
10:28:27.0812 3276 A2DDA - ok
10:28:27.0859 3276 Abiosdsk - ok
10:28:27.0859 3276 [ 6ABB91494FE6C59089B9336452AB2EA3 ] abp480n5 C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS
10:28:27.0937 3276 abp480n5 - ok
10:28:27.0953 3276 [ A10C7534F7223F4A73A948967D00E69B ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
10:28:28.0078 3276 ACPI - ok
10:28:28.0093 3276 [ 9859C0F6936E723E4892D7141B1327D5 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
10:28:28.0234 3276 ACPIEC - ok
10:28:28.0250 3276 [ 9A11864873DA202C996558B2106B0BBC ] adpu160m C:\WINDOWS\system32\DRIVERS\adpu160m.sys
10:28:28.0375 3276 adpu160m - ok
10:28:28.0437 3276 [ 841F385C6CFAF66B58FBD898722BB4F0 ] aec C:\WINDOWS\system32\drivers\aec.sys
10:28:28.0609 3276 aec - ok
10:28:28.0656 3276 [ 5AC495F4CB807B2B98AD2AD591E6D92E ] AFD C:\WINDOWS\System32\drivers\afd.sys
10:28:28.0796 3276 AFD - ok
10:28:28.0843 3276 [ 2C428FA0C3E3A01ED93C9B2A27D8D4BB ] agp440 C:\WINDOWS\system32\DRIVERS\agp440.sys
10:28:28.0968 3276 agp440 - ok
10:28:28.0984 3276 [ 67288B07D6ABA6C1267B626E67BC56FD ] agpCPQ C:\WINDOWS\system32\DRIVERS\agpCPQ.sys
10:28:29.0140 3276 agpCPQ - ok
10:28:29.0187 3276 [ C23EA9B5F46C7F7910DB3EAB648FF013 ] Aha154x C:\WINDOWS\system32\DRIVERS\aha154x.sys
10:28:29.0250 3276 Aha154x - ok
10:28:29.0281 3276 [ 19DD0FB48B0C18892F70E2E7D61A1529 ] aic78u2 C:\WINDOWS\system32\DRIVERS\aic78u2.sys
10:28:29.0421 3276 aic78u2 - ok
10:28:29.0468 3276 [ B7FE594A7468AA0132DEB03FB8E34326 ] aic78xx C:\WINDOWS\system32\DRIVERS\aic78xx.sys
10:28:29.0625 3276 aic78xx - ok
10:28:29.0671 3276 [ C7AE0FD3867DB0D42B03B73C18F3D671 ] Alerter C:\WINDOWS\system32\alrsvc.dll
10:28:29.0796 3276 Alerter - ok
10:28:29.0843 3276 [ F1958FBF86D5C004CF19A5951A9514B7 ] ALG C:\WINDOWS\System32\alg.exe
10:28:29.0906 3276 ALG - ok
10:28:29.0953 3276 [ 1140AB9938809700B46BB88E46D72A96 ] AliIde C:\WINDOWS\system32\DRIVERS\aliide.sys
10:28:30.0078 3276 AliIde - ok
10:28:30.0140 3276 [ F312B7CEF21EFF52FA23056B9D815FAD ] alim1541 C:\WINDOWS\system32\DRIVERS\alim1541.sys
10:28:30.0265 3276 alim1541 - ok
10:28:30.0281 3276 [ 675C16A3C1F8482F85EE4A97FC0DDE3D ] amdagp C:\WINDOWS\system32\DRIVERS\amdagp.sys
10:28:30.0437 3276 amdagp - ok
10:28:30.0453 3276 [ 79F5ADD8D24BD6893F2903A3E2F3FAD6 ] amsint C:\WINDOWS\system32\DRIVERS\amsint.sys
10:28:30.0531 3276 amsint - ok
10:28:30.0703 3276 [ 8FA646F0E639D9A8C8B98E217D471DC0 ] AOL ACS C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
10:28:30.0750 3276 AOL ACS - ok
10:28:30.0906 3276 [ A8AA9D47F971570A5162B862B80F87E8 ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
10:28:30.0921 3276 Apple Mobile Device - ok
10:28:30.0968 3276 [ 9C3C12975C97119412802B181FBEEFFE ] AppMgmt C:\WINDOWS\System32\appmgmts.dll
10:28:31.0031 3276 AppMgmt - ok
10:28:31.0062 3276 [ 62D318E9A0C8FC9B780008E724283707 ] asc C:\WINDOWS\system32\DRIVERS\asc.sys
10:28:31.0187 3276 asc - ok
10:28:31.0203 3276 [ 69EB0CC7714B32896CCBFD5EDCBEA447 ] asc3350p C:\WINDOWS\system32\DRIVERS\asc3350p.sys
10:28:31.0281 3276 asc3350p - ok
10:28:31.0312 3276 [ 5D8DE112AA0254B907861E9E9C31D597 ] asc3550 C:\WINDOWS\system32\DRIVERS\asc3550.sys
10:28:31.0453 3276 asc3550 - ok
10:28:31.0484 3276 [ D880831279ED91F9A4190A2DB9539EA9 ] ASCTRM C:\WINDOWS\system32\drivers\ASCTRM.sys
10:28:31.0515 3276 ASCTRM ( UnsignedFile.Multi.Generic ) - warning
10:28:31.0515 3276 ASCTRM - detected UnsignedFile.Multi.Generic (1)
10:28:31.0640 3276 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
10:28:31.0656 3276 aspnet_state - ok
10:28:31.0687 3276 [ 02000ABF34AF4C218C35D257024807D6 ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
10:28:31.0828 3276 AsyncMac - ok
10:28:31.0859 3276 [ CDFE4411A69C224BD1D11B2DA92DAC51 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
10:28:32.0015 3276 atapi - ok
10:28:32.0031 3276 Atdisk - ok
10:28:32.0078 3276 [ ABC57A6F6070BAF9786C318F59F29F0B ] Ati HotKey Poller C:\WINDOWS\system32\Ati2evxx.exe
10:28:32.0125 3276 Ati HotKey Poller - ok
10:28:32.0218 3276 [ 03621F7F968FF63713943405DEB777F9 ] ati2mtag C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
10:28:32.0281 3276 ati2mtag - ok
10:28:32.0328 3276 [ EC88DA854AB7D7752EC8BE11A741BB7F ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
10:28:32.0484 3276 Atmarpc - ok
10:28:32.0546 3276 [ DB66DB626E4882EBEF55F136F12C1829 ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
10:28:32.0703 3276 AudioSrv - ok
10:28:32.0750 3276 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
10:28:32.0875 3276 audstub - ok
10:28:33.0046 3276 [ 825F81A6F7DD073509DB101F0BA6DC59 ] BBSvc C:\Program Files\Microsoft\BingBar\BBSvc.EXE
10:28:33.0078 3276 BBSvc - ok
10:28:33.0156 3276 [ B770039886598AAB7CF5EAEEC2409E31 ] BCMH43XX C:\WINDOWS\system32\DRIVERS\bcmwlhigh5.sys
10:28:33.0187 3276 BCMH43XX - ok
10:28:33.0250 3276 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
10:28:33.0390 3276 Beep - ok
10:28:33.0500 3276 [ 2C69EC7E5A311334D10DD95F338FCCEA ] BITS C:\WINDOWS\system32\qmgr.dll
10:28:33.0640 3276 BITS - ok
10:28:33.0703 3276 [ 3F56903E124E820AEECE6D471583C6C1 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
10:28:33.0718 3276 Bonjour Service - ok
10:28:33.0750 3276 [ E3CFCCDDA4EDD1D0DC9168B2E18F27B8 ] Browser C:\WINDOWS\System32\browser.dll
10:28:33.0890 3276 Browser - ok
10:28:33.0890 3276 bvrp_pci - ok
10:28:33.0953 3276 catchme - ok
10:28:33.0984 3276 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf C:\WINDOWS\system32\DRIVERS\cbidf2k.sys
10:28:34.0125 3276 cbidf - ok
10:28:34.0140 3276 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
10:28:34.0265 3276 cbidf2k - ok
10:28:34.0296 3276 [ F3EC03299634490E97BBCE94CD2954C7 ] cd20xrnt C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys
10:28:34.0375 3276 cd20xrnt - ok
10:28:34.0421 3276 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
10:28:34.0578 3276 Cdaudio - ok
10:28:34.0625 3276 [ CD7D5152DF32B47F4E36F710B35AAE02 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
10:28:34.0781 3276 Cdfs - ok
10:28:34.0828 3276 [ 814ACB9B8A55804D9878248B3C79F862 ] Cdr4_xp C:\WINDOWS\system32\drivers\Cdr4_xp.sys
10:28:34.0875 3276 Cdr4_xp ( UnsignedFile.Multi.Generic ) - warning
10:28:34.0875 3276 Cdr4_xp - detected UnsignedFile.Multi.Generic (1)
10:28:34.0890 3276 [ BCE7213F8AA1BC9D5C08F81CB05E10A7 ] Cdralw2k C:\WINDOWS\system32\drivers\Cdralw2k.sys
10:28:34.0921 3276 Cdralw2k ( UnsignedFile.Multi.Generic ) - warning
10:28:34.0921 3276 Cdralw2k - detected UnsignedFile.Multi.Generic (1)
10:28:34.0953 3276 [ AF9C19B3100FE010496B1A27181FBF72 ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
10:28:35.0109 3276 Cdrom - ok
10:28:35.0140 3276 [ 84853B3FD012251690570E9E7E43343F ] cercsr6 C:\WINDOWS\system32\drivers\cercsr6.sys
10:28:35.0156 3276 cercsr6 ( UnsignedFile.Multi.Generic ) - warning
10:28:35.0156 3276 cercsr6 - detected UnsignedFile.Multi.Generic (1)
10:28:35.0203 3276 [ 7E6F7DA1C4DE5680820F964562548949 ] cfwids C:\WINDOWS\system32\drivers\cfwids.sys
10:28:35.0218 3276 cfwids - ok
10:28:35.0218 3276 Changer - ok
10:28:35.0265 3276 [ 3192BD04D032A9C4A85A3278C268A13A ] CiSvc C:\WINDOWS\system32\cisvc.exe
10:28:35.0390 3276 CiSvc - ok
10:28:35.0421 3276 [ C8DEC22C4137D7A90F8BDF41CA4B82AE ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
10:28:35.0562 3276 ClipSrv - ok
10:28:35.0593 3276 [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
10:28:35.0625 3276 clr_optimization_v2.0.50727_32 - ok
10:28:35.0656 3276 [ E5DCB56C533014ECBC556A8357C929D5 ] CmdIde C:\WINDOWS\system32\DRIVERS\cmdide.sys
10:28:35.0796 3276 CmdIde - ok
10:28:35.0796 3276 COMSysApp - ok
10:28:35.0828 3276 [ 3EE529119EED34CD212A215E8C40D4B6 ] Cpqarray C:\WINDOWS\system32\DRIVERS\cpqarray.sys
10:28:35.0953 3276 Cpqarray - ok
10:28:36.0000 3276 [ 7DB5E3F44D797BD38B8E336CCC2E49D5 ] Creative Labs Licensing Service C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe
10:28:36.0000 3276 Creative Labs Licensing Service ( UnsignedFile.Multi.Generic ) - warning
10:28:36.0000 3276 Creative Labs Licensing Service - detected UnsignedFile.Multi.Generic (1)
10:28:36.0031 3276 [ 3C8B6609712F4FF78E521F6DCFC4032B ] Creative Service for CDROM Access C:\WINDOWS\system32\CTsvcCDA.exe
10:28:36.0031 3276 Creative Service for CDROM Access ( UnsignedFile.Multi.Generic ) - warning
10:28:36.0031 3276 Creative Service for CDROM Access - detected UnsignedFile.Multi.Generic (1)
10:28:36.0046 3276 [ 10654F9DDCEA9C46CFB77554231BE73B ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
10:28:36.0171 3276 CryptSvc - ok
10:28:36.0203 3276 [ 8DB84DE3AAB34A8B4C2F644EFF41CD76 ] ctsfm2k C:\WINDOWS\system32\DRIVERS\ctsfm2k.sys
10:28:36.0218 3276 ctsfm2k - ok
10:28:36.0250 3276 [ 4EE8822ADB764EDD28CE44E808097995 ] CTUSFSYN C:\WINDOWS\system32\drivers\ctusfsyn.sys
10:28:36.0281 3276 CTUSFSYN - ok
10:28:36.0328 3276 [ E550E7418984B65A78299D248F0A7F36 ] dac2w2k C:\WINDOWS\system32\DRIVERS\dac2w2k.sys
10:28:36.0453 3276 dac2w2k - ok
10:28:36.0484 3276 [ 683789CAA3864EB46125AE86FF677D34 ] dac960nt C:\WINDOWS\system32\DRIVERS\dac960nt.sys
10:28:36.0609 3276 dac960nt - ok
10:28:36.0671 3276 [ 5C83A4408604F737717AB96371201680 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
10:28:36.0828 3276 DcomLaunch - ok
10:28:36.0875 3276 [ CB6CA3E5261D65F6F809EED23BF167AA ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
10:28:37.0031 3276 Dhcp - ok
10:28:37.0078 3276 [ 00CA44E4534865F8A3B64F7C0984BFF0 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
10:28:37.0203 3276 Disk - ok
10:28:37.0265 3276 [ E2D0DE31442390C35E3163C87CB6A9EB ] DLABOIOM C:\WINDOWS\system32\DLA\DLABOIOM.SYS
10:28:37.0296 3276 DLABOIOM ( UnsignedFile.Multi.Generic ) - warning
10:28:37.0296 3276 DLABOIOM - detected UnsignedFile.Multi.Generic (1)
10:28:37.0312 3276 [ D979BEBCF7EDCC9C9EE1857D1A68C67B ] DLACDBHM C:\WINDOWS\system32\Drivers\DLACDBHM.SYS
10:28:37.0328 3276 DLACDBHM ( UnsignedFile.Multi.Generic ) - warning
10:28:37.0328 3276 DLACDBHM - detected UnsignedFile.Multi.Generic (1)
10:28:37.0359 3276 [ 83545593E297F50A8E2524B4C071A153 ] DLADResN C:\WINDOWS\system32\DLA\DLADResN.SYS
10:28:37.0359 3276 DLADResN ( UnsignedFile.Multi.Generic ) - warning
10:28:37.0359 3276 DLADResN - detected UnsignedFile.Multi.Generic (1)
10:28:37.0375 3276 [ 96E01D901CDC98C7817155CC057001BF ] DLAIFS_M C:\WINDOWS\system32\DLA\DLAIFS_M.SYS
10:28:37.0406 3276 DLAIFS_M ( UnsignedFile.Multi.Generic ) - warning
10:28:37.0406 3276 DLAIFS_M - detected UnsignedFile.Multi.Generic (1)
10:28:37.0453 3276 [ 0A60A39CC5E767980A31CA5D7238DFA9 ] DLAOPIOM C:\WINDOWS\system32\DLA\DLAOPIOM.SYS
10:28:37.0484 3276 DLAOPIOM ( UnsignedFile.Multi.Generic ) - warning
10:28:37.0484 3276 DLAOPIOM - detected UnsignedFile.Multi.Generic (1)
10:28:37.0484 3276 [ 9FE2B72558FC808357F427FD83314375 ] DLAPoolM C:\WINDOWS\system32\DLA\DLAPoolM.SYS
10:28:37.0500 3276 DLAPoolM ( UnsignedFile.Multi.Generic ) - warning
10:28:37.0500 3276 DLAPoolM - detected UnsignedFile.Multi.Generic (1)
10:28:37.0500 3276 [ 7EE0852AE8907689DF25049DCD2342E8 ] DLARTL_N C:\WINDOWS\system32\Drivers\DLARTL_N.SYS
10:28:37.0515 3276 DLARTL_N ( UnsignedFile.Multi.Generic ) - warning
10:28:37.0515 3276 DLARTL_N - detected UnsignedFile.Multi.Generic (1)
10:28:37.0531 3276 [ F08E1DAFAC457893399E03430A6A1397 ] DLAUDFAM C:\WINDOWS\system32\DLA\DLAUDFAM.SYS
10:28:37.0531 3276 DLAUDFAM ( UnsignedFile.Multi.Generic ) - warning
10:28:37.0531 3276 DLAUDFAM - detected UnsignedFile.Multi.Generic (1)
10:28:37.0546 3276 [ E7D105ED1E694449D444A9933DF8E060 ] DLAUDF_M C:\WINDOWS\system32\DLA\DLAUDF_M.SYS
10:28:37.0562 3276 DLAUDF_M ( UnsignedFile.Multi.Generic ) - warning
10:28:37.0562 3276 DLAUDF_M - detected UnsignedFile.Multi.Generic (1)
10:28:37.0578 3276 dmadmin - ok
10:28:37.0640 3276 [ C0FBB516E06E243F0CF31F597E7EBF7D ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
10:28:37.0812 3276 dmboot - ok
10:28:37.0859 3276 [ F5E7B358A732D09F4BCF2824B88B9E28 ] dmio C:\WINDOWS\system32\DRIVERS\dmio.sys
10:28:38.0015 3276 dmio - ok
10:28:38.0031 3276 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
10:28:38.0171 3276 dmload - ok
10:28:38.0203 3276 [ 1639D9964C9E1B2ECCA95C8217D3E70D ] dmserver C:\WINDOWS\System32\dmserver.dll
10:28:38.0375 3276 dmserver - ok
10:28:38.0406 3276 [ A6F881284AC1150E37D9AE47FF601267 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
10:28:38.0562 3276 DMusic - ok
10:28:38.0593 3276 [ 7379DE06FD196E396A00AA97B990C00D ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
10:28:38.0750 3276 Dnscache - ok
10:28:38.0812 3276 [ 0F0F6E687E5E15579EF4DA8DD6945814 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
10:28:38.0812 3276 Dot3svc ( UnsignedFile.Multi.Generic ) - warning
10:28:38.0812 3276 Dot3svc - detected UnsignedFile.Multi.Generic (1)
10:28:38.0828 3276 [ 40F3B93B4E5B0126F2F5C0A7A5E22660 ] dpti2o C:\WINDOWS\system32\DRIVERS\dpti2o.sys
10:28:38.0968 3276 dpti2o - ok
10:28:39.0015 3276 [ 1ED4DBBAE9F5D558DBBA4CC450E3EB2E ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
10:28:39.0171 3276 drmkaud - ok
10:28:39.0187 3276 [ FD0F95981FEF9073659D8EC58E40AA3C ] DRVMCDB C:\WINDOWS\system32\Drivers\DRVMCDB.SYS
10:28:39.0203 3276 DRVMCDB ( UnsignedFile.Multi.Generic ) - warning
10:28:39.0203 3276 DRVMCDB - detected UnsignedFile.Multi.Generic (1)
10:28:39.0218 3276 [ B4869D320428CDC5EC4D7F5E808E99B5 ] DRVNDDM C:\WINDOWS\system32\Drivers\DRVNDDM.SYS
10:28:39.0234 3276 DRVNDDM ( UnsignedFile.Multi.Generic ) - warning
10:28:39.0234 3276 DRVNDDM - detected UnsignedFile.Multi.Generic (1)
10:28:39.0312 3276 [ FE80901578E7E3DA70299A5AEB2B7FBD ] DSBrokerService C:\Program Files\DellSupport\brkrsvc.exe
10:28:39.0328 3276 DSBrokerService - ok
10:28:39.0359 3276 [ 413F2D5F9D802688242C23B38F767ECB ] DSproct C:\Program Files\DellSupport\GTAction\triggers\DSproct.sys
10:28:39.0359 3276 DSproct ( UnsignedFile.Multi.Generic ) - warning
10:28:39.0359 3276 DSproct - detected UnsignedFile.Multi.Generic (1)
10:28:39.0390 3276 [ DFEABB7CFFFADEA4A912AB95BDC3177A ] dsunidrv C:\WINDOWS\system32\DRIVERS\dsunidrv.sys
10:28:39.0421 3276 dsunidrv - ok
10:28:39.0453 3276 [ D57A8FC800B501AC05B10D00F66D127A ] E100B C:\WINDOWS\system32\DRIVERS\e100b325.sys
10:28:39.0468 3276 E100B - ok
10:28:39.0515 3276 [ 2187855A7703ADEF0CEF9EE4285182CC ] EapHost C:\WINDOWS\System32\eapsvc.dll
10:28:39.0531 3276 EapHost ( UnsignedFile.Multi.Generic ) - warning
10:28:39.0531 3276 EapHost - detected UnsignedFile.Multi.Generic (1)
10:28:39.0625 3276 [ 5D1347AA5AE6E2F77D7F4F8372D95AC9 ] ehRecvr C:\WINDOWS\eHome\ehRecvr.exe
10:28:39.0671 3276 ehRecvr - ok
10:28:39.0703 3276 [ A53243709439AC2A4C216B817F8D7411 ] ehSched C:\WINDOWS\eHome\ehSched.exe
10:28:39.0734 3276 ehSched - ok
10:28:39.0750 3276 [ 67DFF7BBBD0E80AAB7B3CF061448DB8A ] ERSvc C:\WINDOWS\System32\ersvc.dll
10:28:39.0890 3276 ERSvc - ok
10:28:39.0921 3276 [ C6CE6EEC82F187615D1002BB3BB50ED4 ] Eventlog C:\WINDOWS\system32\services.exe
10:28:40.0078 3276 Eventlog - ok
10:28:40.0109 3276 [ ACD36A2DD7D1E9D8A060AA651DC07E63 ] EventSystem C:\WINDOWS\system32\es.dll
10:28:40.0281 3276 EventSystem - ok
10:28:40.0375 3276 [ 3117F595E9615E04F05A54FC15A03B20 ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
10:28:40.0500 3276 Fastfat - ok
10:28:40.0546 3276 [ E7518DC542D3EBDCB80EDD98462C7821 ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
10:28:40.0671 3276 FastUserSwitchingCompatibility - ok
10:28:40.0718 3276 [ FCBD571FA0EE8DC238944AE5FAB74461 ] Fax C:\WINDOWS\system32\fxssvc.exe
10:28:40.0875 3276 Fax - ok
10:28:40.0937 3276 [ CED2E8396A8838E59D8FD529C680E02C ] Fdc C:\WINDOWS\system32\DRIVERS\fdc.sys
10:28:41.0062 3276 Fdc - ok
10:28:41.0109 3276 [ E153AB8A11DE5452BCF5AC7652DBF3ED ] Fips C:\WINDOWS\system32\drivers\Fips.sys
10:28:41.0265 3276 Fips - ok
10:28:41.0296 3276 [ 0DD1DE43115B93F4D85E889D7A86F548 ] Flpydisk C:\WINDOWS\system32\DRIVERS\flpydisk.sys
10:28:41.0421 3276 Flpydisk - ok
10:28:41.0468 3276 [ 157754F0DF355A9E0A6F54721914F9C6 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
10:28:41.0625 3276 FltMgr - ok
10:28:41.0718 3276 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
10:28:41.0734 3276 FontCache3.0.0.0 - ok
10:28:41.0781 3276 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
10:28:41.0937 3276 Fs_Rec - ok
10:28:41.0937 3276 [ 6AC26732762483366C3969C9E4D2259D ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
10:28:42.0078 3276 Ftdisk - ok
10:28:42.0125 3276 [ AB8A6A87D9D7255C3884D5B9541A6E80 ] GEARAspiWDM C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
10:28:42.0140 3276 GEARAspiWDM - ok
10:28:42.0156 3276 [ C0F1D4A21DE5A415DF8170616703DEBF ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
10:28:42.0281 3276 Gpc - ok
10:28:42.0390 3276 [ 751C1D2CA2ABF4A9F5A6B8D7D45B907C ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
10:28:42.0406 3276 gusvc - ok
10:28:42.0468 3276 [ 573C7D0A32852B48F3058CFD8026F511 ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
10:28:42.0484 3276 HDAudBus ( UnsignedFile.Multi.Generic ) - warning
10:28:42.0484 3276 HDAudBus - detected UnsignedFile.Multi.Generic (1)
10:28:42.0578 3276 [ 8827911A8C37E40C027CBFC88E69D967 ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
10:28:42.0718 3276 helpsvc - ok
10:28:42.0765 3276 [ 9376E6893E52B368ABC6255BF54F0B28 ] HidServ C:\WINDOWS\System32\hidserv.dll
10:28:42.0890 3276 HidServ - ok
10:28:42.0937 3276 [ 1DE6783B918F540149AA69943BDFEBA8 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys
10:28:43.0062 3276 HidUsb - ok
10:28:43.0109 3276 [ 8878BD685E490239777BFE51320B88E9 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
10:28:43.0125 3276 hkmsvc ( UnsignedFile.Multi.Generic ) - warning
10:28:43.0125 3276 hkmsvc - detected UnsignedFile.Multi.Generic (1)
10:28:43.0218 3276 [ C5F00D15AA15CB7F55A027FF75E44BB7 ] HP Port Resolver C:\WINDOWS\system32\spool\drivers\w32x86\3\HPBPRO.EXE
10:28:43.0312 3276 HP Port Resolver - ok
10:28:43.0328 3276 [ B028377DEA0546A5FCFBA928A8AEFAE0 ] hpn C:\WINDOWS\system32\DRIVERS\hpn.sys
10:28:43.0468 3276 hpn - ok
10:28:43.0515 3276 [ 77E4FF0B73BC0AEAAF39BF0C8104231F ] HSFHWBS2 C:\WINDOWS\system32\DRIVERS\HSFHWBS2.sys
10:28:43.0531 3276 HSFHWBS2 - ok
10:28:43.0578 3276 [ 60E1604729A15EF4A3B05F298427B3B1 ] HSF_DP C:\WINDOWS\system32\DRIVERS\HSF_DP.sys
10:28:43.0609 3276 HSF_DP - ok
10:28:43.0687 3276 [ C19B522A9AE0BBC3293397F3055E80A1 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
10:28:43.0828 3276 HTTP - ok
10:28:43.0875 3276 [ 064D8581ADF77C25133E7D751D917D83 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
10:28:44.0015 3276 HTTPFilter - ok
10:28:44.0062 3276 [ 8F09F91B5C91363B77BCD15599570F2C ] i2omgmt C:\WINDOWS\system32\drivers\i2omgmt.sys
10:28:44.0218 3276 i2omgmt - ok
 
10:28:44.0250 3276 [ ED6BF9E441FDEA13292A6D30A64A24C3 ] i2omp C:\WINDOWS\system32\DRIVERS\i2omp.sys
10:28:44.0390 3276 i2omp - ok
10:28:44.0421 3276 [ 5502B58EEF7486EE6F93F3F164DCB808 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
10:28:44.0546 3276 i8042prt - ok
10:28:44.0640 3276 [ 5A8E05F1D5C36ABD58CFFA111EB325EA ] ialm C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
10:28:44.0703 3276 ialm - ok
10:28:44.0812 3276 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
10:28:44.0843 3276 idsvc - ok
10:28:44.0906 3276 [ F8AA320C6A0409C0380E5D8A99D76EC6 ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
10:28:45.0031 3276 Imapi - ok
10:28:45.0093 3276 [ FA788520BCAC0F5D9D5CDE5615C0D931 ] ImapiService C:\WINDOWS\system32\imapi.exe
10:28:45.0250 3276 ImapiService - ok
10:28:45.0265 3276 [ 4A40E045FAEE58631FD8D91AFC620719 ] ini910u C:\WINDOWS\system32\DRIVERS\ini910u.sys
10:28:45.0406 3276 ini910u - ok
10:28:45.0421 3276 [ 2D722B2B54AB55B2FA475EB58D7B2AAD ] IntelIde C:\WINDOWS\system32\DRIVERS\intelide.sys
10:28:45.0578 3276 IntelIde - ok
10:28:45.0625 3276 [ 279FB78702454DFF2BB445F238C048D2 ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
10:28:45.0781 3276 intelppm - ok
10:28:45.0796 3276 [ 4448006B6BC60E6C027932CFC38D6855 ] Ip6Fw C:\WINDOWS\system32\drivers\ip6fw.sys
10:28:45.0921 3276 Ip6Fw - ok
10:28:45.0953 3276 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
10:28:46.0078 3276 IpFilterDriver - ok
10:28:46.0093 3276 [ E1EC7F5DA720B640CD8FB8424F1B14BB ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
10:28:46.0218 3276 IpInIp - ok
10:28:46.0265 3276 [ B5A8E215AC29D24D60B4D1250EF05ACE ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
10:28:46.0390 3276 IpNat - ok
10:28:46.0437 3276 [ 62937A89470AF8FF172F0980CA8AEFC9 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
10:28:46.0468 3276 iPod Service - ok
10:28:46.0515 3276 [ 64537AA5C003A6AFEEE1DF819062D0D1 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
10:28:46.0656 3276 IPSec - ok
10:28:46.0671 3276 [ 50708DAA1B1CBB7D6AC1CF8F56A24410 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
10:28:46.0765 3276 IRENUM - ok
10:28:46.0812 3276 [ E504F706CCB699C2596E9A3DA1596E87 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
10:28:46.0937 3276 isapnp - ok
10:28:47.0031 3276 [ 4F2143570D2250CA4C4A4C98553C82CD ] JavaQuickStarterService C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe
10:28:47.0046 3276 JavaQuickStarterService - ok
10:28:47.0046 3276 [ EBDEE8A2EE5393890A1ACEE971C4C246 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
10:28:47.0187 3276 Kbdclass - ok
10:28:47.0187 3276 [ E182FA8E49E8EE41B4ADC53093F3C7E6 ] kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys
10:28:47.0328 3276 kbdhid - ok
10:28:47.0390 3276 [ D93CAD07C5683DB066B0B2D2D3790EAD ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
10:28:47.0546 3276 kmixer - ok
10:28:47.0578 3276 [ EB7FFE87FD367EA8FCA0506F74A87FBB ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
10:28:47.0734 3276 KSecDD - ok
10:28:47.0781 3276 [ 93D32468D34E000CB3407947D1D6E22A ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
10:28:47.0906 3276 lanmanserver - ok
10:28:47.0921 3276 [ 2C0A7B2AE9C26F2C163627679B42783C ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
10:28:48.0078 3276 lanmanworkstation - ok
10:28:48.0140 3276 [ 9FFD1CF2A782F2560E78EEC4B8B8689E ] LBeepKE C:\WINDOWS\system32\Drivers\LBeepKE.sys
10:28:48.0156 3276 LBeepKE - ok
10:28:48.0156 3276 lbrtfdc - ok
10:28:48.0234 3276 [ 3AF6B73A3AD1FC37C5933441F66CEB91 ] LBTServ C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
10:28:48.0250 3276 LBTServ - ok
10:28:48.0296 3276 [ 70035567754BED4E6AD353CA3F175127 ] LEqdUsb C:\WINDOWS\system32\Drivers\LEqdUsb.Sys
10:28:48.0312 3276 LEqdUsb - ok
10:28:48.0359 3276 [ 32491B6BAE0AFAD1D7A62C0EF0AF4321 ] LHidEqd C:\WINDOWS\system32\Drivers\LHidEqd.Sys
10:28:48.0375 3276 LHidEqd - ok
10:28:48.0406 3276 [ 7F9C7B28CF1C859E1C42619EEA946DC8 ] LHidFilt C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys
10:28:48.0421 3276 LHidFilt - ok
10:28:48.0484 3276 [ B3EFF6D938C572E90A07B3D87A3C7657 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
10:28:48.0640 3276 LmHosts - ok
10:28:48.0671 3276 [ AB33792A87285344F43B5CE23421BAB0 ] LMouFilt C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys
10:28:48.0687 3276 LMouFilt - ok
10:28:48.0750 3276 [ F453D1E6D881E8F8717E20CCD4199E85 ] McComponentHostService C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe
10:28:48.0765 3276 McComponentHostService - ok
10:28:48.0875 3276 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] McMPFSvc C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
10:28:48.0906 3276 McMPFSvc - ok
10:28:48.0921 3276 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] mcmscsvc C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
10:28:48.0937 3276 mcmscsvc - ok
10:28:48.0937 3276 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] McNaiAnn C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
10:28:48.0953 3276 McNaiAnn - ok
10:28:48.0968 3276 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] McNASvc C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
10:28:48.0984 3276 McNASvc - ok
10:28:49.0156 3276 [ ADA83A989D5822DAA5E2F62FDF118AC6 ] McODS C:\Program Files\McAfee\VirusScan\mcods.exe
10:28:49.0171 3276 McODS - ok
10:28:49.0187 3276 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] McProxy C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
10:28:49.0203 3276 McProxy - ok
10:28:49.0250 3276 [ DF0A511F38F16016BF658FCA0090CB87 ] McrdSvc C:\WINDOWS\ehome\mcrdsvc.exe
10:28:49.0281 3276 McrdSvc - ok
10:28:49.0328 3276 [ 7394FCADC0DD68DDC5921884906F4AE9 ] McShield C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
10:28:49.0343 3276 McShield - ok
10:28:49.0437 3276 [ 11F714F85530A2BD134074DC30E99FCA ] MDM C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
10:28:49.0453 3276 MDM - ok
10:28:49.0500 3276 [ EEAEA6514BA7C9D273B5E87C4E1AAB30 ] mdmxsdk C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys
10:28:49.0531 3276 mdmxsdk - ok
10:28:49.0593 3276 [ 95FD808E4AC22ABA025A7B3EAC0375D2 ] Messenger C:\WINDOWS\System32\msgsvc.dll
10:28:49.0718 3276 Messenger - ok
10:28:49.0781 3276 [ 84D59A3EDDFB9438FB94F7F80D37859D ] mfeapfk C:\WINDOWS\system32\drivers\mfeapfk.sys
10:28:49.0796 3276 mfeapfk - ok
10:28:49.0843 3276 [ 67E961988312B1A28D6F93357B0BF998 ] mfeavfk C:\WINDOWS\system32\drivers\mfeavfk.sys
10:28:49.0859 3276 mfeavfk - ok
10:28:49.0906 3276 [ 19161B1796CF74A6A326ABDE309062BA ] mfebopk C:\WINDOWS\system32\drivers\mfebopk.sys
10:28:49.0906 3276 mfebopk - ok
10:28:49.0953 3276 [ 3D8E909DA47E22E2B32056FD2AE66EDE ] mfefire C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
10:28:49.0984 3276 mfefire - ok
10:28:50.0000 3276 [ D5F89B4934960C70882924D992C6ABFC ] mfefirek C:\WINDOWS\system32\drivers\mfefirek.sys
10:28:50.0015 3276 mfefirek - ok
10:28:50.0062 3276 [ 0EFAB2B91B27543FE589DE700DE07136 ] mfehidk C:\WINDOWS\system32\drivers\mfehidk.sys
10:28:50.0093 3276 mfehidk - ok
10:28:50.0156 3276 [ 549DD4966BF0B1D1FC205CA0755A745B ] mfendisk C:\WINDOWS\system32\DRIVERS\mfendisk.sys
10:28:50.0171 3276 mfendisk - ok
10:28:50.0187 3276 [ 549DD4966BF0B1D1FC205CA0755A745B ] mfendiskmp C:\WINDOWS\system32\DRIVERS\mfendisk.sys
10:28:50.0203 3276 mfendiskmp - ok
10:28:50.0250 3276 [ C9EDA1EADA2AB6E34CD1A10C3A24AB25 ] mferkdet C:\WINDOWS\system32\drivers\mferkdet.sys
10:28:50.0265 3276 mferkdet - ok
10:28:50.0296 3276 [ E6C5F7AADE5A31C057D73201ACFE8ADF ] mfetdi2k C:\WINDOWS\system32\drivers\mfetdi2k.sys
10:28:50.0312 3276 mfetdi2k - ok
10:28:50.0375 3276 [ 5C1B2814EF2A6313936A111D3FD095AF ] mfevtp C:\WINDOWS\system32\mfevtps.exe
10:28:50.0390 3276 mfevtp - ok
10:28:50.0437 3276 [ B7521F69C0A9B29D356157229376FB21 ] MHN C:\WINDOWS\System32\mhn.dll
10:28:50.0500 3276 MHN - ok
10:28:50.0515 3276 [ 7F2F1D2815A6449D346FCCCBC569FBD6 ] MHNDRV C:\WINDOWS\system32\DRIVERS\mhndrv.sys
10:28:50.0593 3276 MHNDRV - ok
10:28:50.0640 3276 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
10:28:50.0796 3276 mnmdd - ok
10:28:50.0843 3276 [ F6415361201915B9FE3896B0E4E724FF ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe
10:28:50.0984 3276 mnmsrvc - ok
10:28:51.0031 3276 [ 6FC6F9D7ACC36DCA9B914565A3AEDA05 ] Modem C:\WINDOWS\system32\drivers\Modem.sys
10:28:51.0171 3276 Modem - ok
10:28:51.0203 3276 [ 1992E0D143B09653AB0F9C5E04B0FD65 ] MODEMCSA C:\WINDOWS\system32\drivers\MODEMCSA.sys
10:28:51.0328 3276 MODEMCSA - ok
10:28:51.0359 3276 [ 34E1F0031153E491910E12551400192C ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
10:28:51.0484 3276 Mouclass - ok
10:28:51.0531 3276 [ B1C303E17FB9D46E87A98E4BA6769685 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
10:28:51.0687 3276 mouhid - ok
10:28:51.0703 3276 [ 65653F3B4477F3C63E68A9659F85EE2E ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
10:28:51.0843 3276 MountMgr - ok
10:28:51.0906 3276 [ 8BE15F71DE6FF33FC56DCDE7B2B9EFE8 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
10:28:51.0937 3276 MozillaMaintenance - ok
10:28:51.0968 3276 [ 3F4BB95E5A44F3BE34824E8E7CAF0737 ] mraid35x C:\WINDOWS\system32\DRIVERS\mraid35x.sys
10:28:52.0093 3276 mraid35x - ok
10:28:52.0109 3276 [ 46EDCC8F2DB2F322C24F48785CB46366 ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
10:28:52.0250 3276 MRxDAV - ok
10:28:52.0312 3276 [ 1FD607FC67F7F7C633C3DA65BFC53D18 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
10:28:52.0437 3276 MRxSmb - ok
10:28:52.0484 3276 [ C7C3D89EB0A6F3DBA622EA737FA335B1 ] MSDTC C:\WINDOWS\system32\msdtc.exe
10:28:52.0609 3276 MSDTC - ok
10:28:52.0625 3276 [ 561B3A4333CA2DBDBA28B5B956822519 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
10:28:52.0781 3276 Msfs - ok
10:28:52.0781 3276 MSIServer - ok
10:28:52.0828 3276 [ AE431A8DD3C1D0D0610CDBAC16057AD0 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
10:28:52.0984 3276 MSKSSRV - ok
10:28:53.0046 3276 [ 13E75FEF9DFEB08EEDED9D0246E1F448 ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
10:28:53.0187 3276 MSPCLOCK - ok
10:28:53.0234 3276 [ 1988A33FF19242576C3D0EF9CE785DA7 ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
10:28:53.0406 3276 MSPQM - ok
10:28:53.0453 3276 [ 469541F8BFD2B32659D5D463A6714BCE ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
10:28:53.0593 3276 mssmbios - ok
10:28:53.0640 3276 [ 82035E0F41C2DD05AE41D27FE6CF7DE1 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
10:28:53.0765 3276 Mup - ok
10:28:53.0812 3276 [ 0102140028FAD045756796E1C685D695 ] napagent C:\WINDOWS\System32\qagentrt.dll
10:28:53.0828 3276 napagent ( UnsignedFile.Multi.Generic ) - warning
10:28:53.0828 3276 napagent - detected UnsignedFile.Multi.Generic (1)
10:28:53.0875 3276 [ 558635D3AF1C7546D26067D5D9B6959E ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
10:28:54.0015 3276 NDIS - ok
10:28:54.0015 3276 [ 08D43BBDACDF23F34D79E44ED35C1B4C ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
10:28:54.0171 3276 NdisTapi - ok
10:28:54.0234 3276 [ 34D6CD56409DA9A7ED573E1C90A308BF ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
10:28:54.0375 3276 Ndisuio - ok
10:28:54.0390 3276 [ 0B90E255A9490166AB368CD55A529893 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
10:28:54.0531 3276 NdisWan - ok
10:28:54.0531 3276 [ 59FC3FB44D2669BC144FD87826BB571F ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
10:28:54.0671 3276 NDProxy - ok
10:28:54.0671 3276 [ 3A2ACA8FC1D7786902CA434998D7CEB4 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
10:28:54.0812 3276 NetBIOS - ok
10:28:54.0875 3276 [ 0C80E410CD2F47134407EE7DD19CC86B ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
10:28:55.0015 3276 NetBT - ok
10:28:55.0078 3276 [ 05AFB5AD06462257BEA7495283C86D50 ] NetDDE C:\WINDOWS\system32\netdde.exe
10:28:55.0234 3276 NetDDE - ok
10:28:55.0250 3276 [ 05AFB5AD06462257BEA7495283C86D50 ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
10:28:55.0390 3276 NetDDEdsdm - ok
10:28:55.0437 3276 [ 84885F9B82F4D55C6146EBF6065D75D2 ] Netlogon C:\WINDOWS\system32\lsass.exe
10:28:55.0578 3276 Netlogon - ok
10:28:55.0625 3276 [ DAB9E6C7105D2EF49876FE92C524F565 ] Netman C:\WINDOWS\System32\netman.dll
10:28:55.0796 3276 Netman - ok
10:28:55.0906 3276 [ 9DA26B773BD04B867A8E9F427CD048FC ] NetSvc C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
10:28:55.0921 3276 NetSvc ( UnsignedFile.Multi.Generic ) - warning
10:28:55.0921 3276 NetSvc - detected UnsignedFile.Multi.Generic (1)
10:28:55.0984 3276 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
10:28:56.0000 3276 NetTcpPortSharing - ok
10:28:56.0062 3276 [ 4E74AF063C3271FBEA20DD940CFD1184 ] Nla C:\WINDOWS\System32\mswsock.dll
10:28:56.0234 3276 Nla - ok
10:28:56.0234 3276 [ 4F601BCB8F64EA3AC0994F98FED03F8E ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
10:28:56.0406 3276 Npfs - ok
10:28:56.0468 3276 [ B78BE402C3F63DD55521F73876951CDD ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
10:28:56.0625 3276 Ntfs - ok
10:28:56.0640 3276 [ 84885F9B82F4D55C6146EBF6065D75D2 ] NtLmSsp C:\WINDOWS\system32\lsass.exe
10:28:56.0781 3276 NtLmSsp - ok
10:28:56.0859 3276 [ B62F29C00AC55A761B2E45877D85EA0F ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
10:28:57.0000 3276 NtmsSvc - ok
10:28:57.0046 3276 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
10:28:57.0171 3276 Null - ok
10:28:57.0250 3276 [ 2B298519EDBFCF451D43E0F1E8F1006D ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
10:28:57.0437 3276 nv - ok
10:28:57.0468 3276 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
10:28:57.0593 3276 NwlnkFlt - ok
10:28:57.0609 3276 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
10:28:57.0750 3276 NwlnkFwd - ok
10:28:57.0796 3276 [ 7A56CF3E3F12E8AF599963B16F50FB6A ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
10:28:57.0812 3276 ose - ok
10:28:57.0859 3276 [ 103A9B117A7D9903111955CDAFE65AC6 ] ossrv C:\WINDOWS\system32\DRIVERS\ctoss2k.sys
10:28:57.0890 3276 ossrv - ok
10:28:57.0953 3276 [ 29744EB4CE659DFE3B4122DEB45BC478 ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys
10:28:58.0109 3276 Parport - ok
10:28:58.0109 3276 [ 3334430C29DC338092F79C38EF7B4CD0 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
10:28:58.0250 3276 PartMgr - ok
10:28:58.0265 3276 [ 70E98B3FD8E963A6A46A2E6247E0BEA1 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
10:28:58.0421 3276 ParVdm - ok
10:28:58.0437 3276 [ 8086D9979234B603AD5BC2F5D890B234 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
10:28:58.0578 3276 PCI - ok
10:28:58.0593 3276 PCIDump - ok
10:28:58.0609 3276 [ CCF5F451BB1A5A2A522A76E670000FF0 ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
10:28:58.0750 3276 PCIIde - ok
10:28:58.0812 3276 [ 82A087207DECEC8456FBE8537947D579 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
10:28:58.0968 3276 Pcmcia - ok
10:28:58.0968 3276 PDCOMP - ok
10:28:58.0968 3276 PDFRAME - ok
10:28:58.0984 3276 PDRELI - ok
10:28:58.0984 3276 PDRFRAME - ok
10:28:59.0015 3276 [ 6C14B9C19BA84F73D3A86DBA11133101 ] perc2 C:\WINDOWS\system32\DRIVERS\perc2.sys
10:28:59.0140 3276 perc2 - ok
10:28:59.0156 3276 [ F50F7C27F131AFE7BEBA13E14A3B9416 ] perc2hib C:\WINDOWS\system32\DRIVERS\perc2hib.sys
10:28:59.0281 3276 perc2hib - ok
10:28:59.0328 3276 [ C6CE6EEC82F187615D1002BB3BB50ED4 ] PlugPlay C:\WINDOWS\system32\services.exe
10:28:59.0484 3276 PlugPlay - ok
10:28:59.0515 3276 [ D31F88C5F19EEFA366A415D6BC5F2ABC ] Pml Driver HPZ12 C:\WINDOWS\system32\HPZipm12.exe
10:28:59.0578 3276 Pml Driver HPZ12 - ok
10:28:59.0593 3276 [ 84885F9B82F4D55C6146EBF6065D75D2 ] PolicyAgent C:\WINDOWS\system32\lsass.exe
10:28:59.0734 3276 PolicyAgent - ok
10:28:59.0796 3276 [ 1C5CC65AAC0783C344F16353E60B72AC ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
10:28:59.0921 3276 PptpMiniport - ok
10:28:59.0984 3276 [ 0D97D88720A4087EC93AF7DBB303B30A ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys
10:29:00.0140 3276 Processor - ok
10:29:00.0140 3276 [ 84885F9B82F4D55C6146EBF6065D75D2 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
10:29:00.0265 3276 ProtectedStorage - ok
10:29:00.0281 3276 [ 48671F327553DCF1D27F6197F622A668 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
10:29:00.0406 3276 PSched - ok
10:29:00.0468 3276 [ 1DF21F001F3A94EBA4A2950C70CC358F ] PSI C:\WINDOWS\system32\DRIVERS\psi_mf.sys
10:29:00.0484 3276 PSI - ok
10:29:00.0515 3276 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
10:29:00.0640 3276 Ptilink - ok
10:29:00.0687 3276 [ 40F2031BD9148D3194353EA7DEC97A07 ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys
10:29:00.0703 3276 PxHelp20 - ok
10:29:00.0765 3276 [ 0A63FB54039EB5662433CABA3B26DBA7 ] ql1080 C:\WINDOWS\system32\DRIVERS\ql1080.sys
10:29:00.0890 3276 ql1080 - ok
10:29:00.0953 3276 [ 6503449E1D43A0FF0201AD5CB1B8C706 ] Ql10wnt C:\WINDOWS\system32\DRIVERS\ql10wnt.sys
10:29:01.0078 3276 Ql10wnt - ok
10:29:01.0109 3276 [ 156ED0EF20C15114CA097A34A30D8A01 ] ql12160 C:\WINDOWS\system32\DRIVERS\ql12160.sys
10:29:01.0250 3276 ql12160 - ok
10:29:01.0281 3276 [ 70F016BEBDE6D29E864C1230A07CC5E6 ] ql1240 C:\WINDOWS\system32\DRIVERS\ql1240.sys
10:29:01.0406 3276 ql1240 - ok
10:29:01.0437 3276 [ 907F0AEEA6BC451011611E732BD31FCF ] ql1280 C:\WINDOWS\system32\DRIVERS\ql1280.sys
10:29:01.0562 3276 ql1280 - ok
10:29:01.0593 3276 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
10:29:01.0718 3276 RasAcd - ok
10:29:01.0781 3276 [ 44DB7A9BDD2FB58747D123FBF1D35ADB ] RasAuto C:\WINDOWS\System32\rasauto.dll
10:29:01.0906 3276 RasAuto - ok
10:29:01.0937 3276 [ 98FAEB4A4DCF812BA1C6FCA4AA3E115C ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
10:29:02.0093 3276 Rasl2tp - ok
10:29:02.0140 3276 [ 41A3C11E3517C962C9B44893BCEC3B34 ] RasMan C:\WINDOWS\System32\rasmans.dll
10:29:02.0265 3276 RasMan - ok
10:29:02.0343 3276 [ 7306EEED8895454CBED4669BE9F79FAA ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
10:29:02.0484 3276 RasPppoe - ok
10:29:02.0500 3276 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
10:29:02.0625 3276 Raspti - ok
10:29:02.0671 3276 [ 29D66245ADBA878FFF574CD66ABD2884 ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
10:29:02.0812 3276 Rdbss - ok
10:29:02.0828 3276 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
10:29:02.0953 3276 RDPCDD - ok
10:29:03.0000 3276 [ A2CAE2C60BC37E0751EF9DDA7CEAF4AD ] rdpdr C:\WINDOWS\system32\DRIVERS\rdpdr.sys
10:29:03.0140 3276 rdpdr - ok
10:29:03.0203 3276 [ D4F5643D7714EF499AE9527FDCD50894 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
10:29:03.0359 3276 RDPWD - ok
10:29:03.0421 3276 [ 729798E0933076B8FCFCD9934698F164 ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
10:29:03.0546 3276 RDSessMgr - ok
10:29:03.0593 3276 [ B31B4588E4086D8D84ADBF9845C2402B ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
10:29:03.0718 3276 redbook - ok
10:29:03.0781 3276 [ 3046DB917E3CFA040632799DD9B14865 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
10:29:03.0921 3276 RemoteAccess - ok
10:29:03.0953 3276 [ 3151427DB7D87107D1C5BE58FAC53960 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
10:29:04.0109 3276 RemoteRegistry - ok
10:29:04.0140 3276 [ 793F04A09B15E7C6C11DBDFFAF06C0AB ] RpcLocator C:\WINDOWS\system32\locator.exe
10:29:04.0281 3276 RpcLocator - ok
10:29:04.0328 3276 [ 5C83A4408604F737717AB96371201680 ] RpcSs C:\WINDOWS\System32\rpcss.dll
10:29:04.0921 3276 RpcSs - ok
10:29:04.0984 3276 [ 471B3F9741D762ABE75E9DEEA4787E47 ] RSVP C:\WINDOWS\system32\rsvp.exe
10:29:05.0125 3276 RSVP - ok
10:29:05.0156 3276 [ 84885F9B82F4D55C6146EBF6065D75D2 ] SamSs C:\WINDOWS\system32\lsass.exe
10:29:05.0296 3276 SamSs - ok
10:29:05.0359 3276 [ 25D8DE134DF108E3DBC8D7D23B1AA58E ] SCardDrv C:\WINDOWS\System32\SCardSvr.exe
10:29:05.0515 3276 SCardDrv - ok
10:29:05.0515 3276 [ 25D8DE134DF108E3DBC8D7D23B1AA58E ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
10:29:05.0656 3276 SCardSvr - ok
10:29:05.0718 3276 [ 92360854316611F6CC471612213C3D92 ] Schedule C:\WINDOWS\system32\schedsvc.dll
10:29:05.0843 3276 Schedule - ok
10:29:05.0968 3276 [ CC781378E7EDA615D2CDCA3B17829FA4 ] SeaPort C:\Program Files\Microsoft\BingBar\SeaPort.EXE
10:29:05.0984 3276 SeaPort - ok
10:29:06.0031 3276 [ D26E26EA516450AF9D072635C60387F4 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
10:29:06.0125 3276 Secdrv - ok
10:29:06.0171 3276 [ B1E0CE09895376871746F36DC5773B4F ] seclogon C:\WINDOWS\System32\seclogon.dll
10:29:06.0328 3276 seclogon - ok
10:29:06.0343 3276 [ DFD9870CF39C791D86C4C209DA9FA919 ] SENS C:\WINDOWS\system32\sens.dll
10:29:06.0484 3276 SENS - ok
10:29:06.0515 3276 [ A2D868AEEFF612E70E213C451A70CAFB ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys
10:29:06.0640 3276 serenum - ok
10:29:06.0703 3276 [ CD9404D115A00D249F70A371B46D5A26 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys
10:29:06.0859 3276 Serial - ok
10:29:06.0906 3276 [ 0D13B6DF6E9E101013A7AFB0CE629FE0 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
10:29:07.0031 3276 Sfloppy - ok
10:29:07.0109 3276 [ 36CC8C01B5E50163037BEF56CB96DEFF ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
10:29:07.0265 3276 SharedAccess - ok
10:29:07.0296 3276 [ E7518DC542D3EBDCB80EDD98462C7821 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
10:29:07.0437 3276 ShellHWDetection - ok
10:29:07.0500 3276 [ 6BD3976B881888AC9A0ED3EB94E7FD38 ] sigfilt C:\WINDOWS\system32\drivers\sigfilt.sys
10:29:07.0578 3276 sigfilt - ok
10:29:07.0578 3276 Simbad - ok
10:29:07.0640 3276 [ 732D859B286DA692119F286B21A2A114 ] sisagp C:\WINDOWS\system32\DRIVERS\sisagp.sys
10:29:07.0781 3276 sisagp - ok
10:29:07.0812 3276 [ 83C0F71F86D3BDAF915685F3D568B20E ] Sparrow C:\WINDOWS\system32\DRIVERS\sparrow.sys
10:29:07.0890 3276 Sparrow - ok
10:29:07.0937 3276 [ 8E186B8F23295D1E42C573B82B80D548 ] splitter C:\WINDOWS\system32\drivers\splitter.sys
10:29:08.0062 3276 splitter - ok
10:29:08.0109 3276 [ 7435B108B935E42EA92CA94F59C8E717 ] Spooler C:\WINDOWS\system32\spoolsv.exe
10:29:08.0250 3276 Spooler - ok
10:29:08.0296 3276 [ E41B6D037D6CD08461470AF04500DC24 ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
10:29:08.0375 3276 sr - ok
10:29:08.0421 3276 [ 92BDF74F12D6CBEC43C94D4B7F804838 ] srservice C:\WINDOWS\system32\srsvc.dll
10:29:08.0500 3276 srservice - ok
10:29:08.0515 3276 [ 20B7E396720353E4117D64D9DCB926CA ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
10:29:08.0656 3276 Srv - ok
10:29:08.0687 3276 [ 4B8D61792F7175BED48859CC18CE4E38 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
10:29:08.0750 3276 SSDPSRV - ok
10:29:08.0781 3276 [ B95480C92C4C9C311BE47B8A1AD73770 ] STHDA C:\WINDOWS\system32\drivers\sthda.sys
10:29:08.0796 3276 STHDA - ok
10:29:08.0843 3276 [ A9573045BAA16EAB9B1085205B82F1ED ] StillCam C:\WINDOWS\system32\DRIVERS\serscan.sys
10:29:08.0968 3276 StillCam - ok
10:29:08.0984 3276 [ D9F6C4F6B1E188ADAFC42B561D9BC2E6 ] stisvc C:\WINDOWS\system32\wiaservc.dll
10:29:09.0125 3276 stisvc - ok
10:29:09.0156 3276 [ 03C1BAE4766E2450219D20B993D6E046 ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
10:29:09.0312 3276 swenum - ok
10:29:09.0359 3276 [ 94ABC808FC4B6D7D2BBF42B85E25BB4D ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
10:29:09.0484 3276 swmidi - ok
10:29:09.0500 3276 SwPrv - ok
10:29:09.0515 3276 [ 1FF3217614018630D0A6758630FC698C ] symc810 C:\WINDOWS\system32\DRIVERS\symc810.sys
10:29:09.0640 3276 symc810 - ok
10:29:09.0687 3276 [ 070E001D95CF725186EF8B20335F933C ] symc8xx C:\WINDOWS\system32\DRIVERS\symc8xx.sys
10:29:09.0828 3276 symc8xx - ok
10:29:09.0843 3276 [ 80AC1C4ABBE2DF3B738BF15517A51F2C ] sym_hi C:\WINDOWS\system32\DRIVERS\sym_hi.sys
10:29:09.0984 3276 sym_hi - ok
10:29:10.0015 3276 [ BF4FAB949A382A8E105F46EBB4937058 ] sym_u3 C:\WINDOWS\system32\DRIVERS\sym_u3.sys
10:29:10.0140 3276 sym_u3 - ok
10:29:10.0187 3276 [ 650AD082D46BAC0E64C9C0E0928492FD ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
10:29:10.0312 3276 sysaudio - ok
10:29:10.0375 3276 [ 8B54AA346D1B1B113FFAA75501B8B1B2 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
10:29:10.0500 3276 SysmonLog - ok
10:29:10.0546 3276 [ EB4A4187D74A8EFDCBEA3EA2CB1BDFBD ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
10:29:10.0703 3276 TapiSrv - ok
10:29:10.0750 3276 [ 9F4B36614A0FC234525BA224957DE55C ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
10:29:10.0906 3276 Tcpip - ok
10:29:10.0921 3276 [ 38D437CF2D98965F239B0ABCD66DCB0F ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
10:29:11.0062 3276 TDPIPE - ok
10:29:11.0078 3276 [ ED0580AF02502D00AD8C4C066B156BE9 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
10:29:11.0218 3276 TDTCP - ok
10:29:11.0265 3276 [ A540A99C281D933F3D69D55E48727F47 ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
10:29:11.0437 3276 TermDD - ok
10:29:11.0500 3276 [ B60C877D16D9C880B952FDA04ADF16E6 ] TermService C:\WINDOWS\System32\termsrv.dll
10:29:11.0671 3276 TermService - ok
10:29:11.0703 3276 [ E7518DC542D3EBDCB80EDD98462C7821 ] Themes C:\WINDOWS\System32\shsvcs.dll
10:29:11.0843 3276 Themes - ok
10:29:11.0890 3276 [ 37DB0A7D097310E8B4DE803FC3119C78 ] TlntSvr C:\WINDOWS\system32\tlntsvr.exe
10:29:11.0968 3276 TlntSvr - ok
10:29:12.0000 3276 [ F2790F6AF01321B172AA62F8E1E187D9 ] TosIde C:\WINDOWS\system32\DRIVERS\toside.sys
10:29:12.0125 3276 TosIde - ok
10:29:12.0156 3276 [ 6D9AC544B30F96C57F8206566C1FB6A1 ] TrkWks C:\WINDOWS\system32\trkwks.dll
10:29:12.0281 3276 TrkWks - ok
10:29:12.0359 3276 [ 12F70256F140CD7D52C58C7048FDE657 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
10:29:12.0484 3276 Udfs - ok
10:29:12.0515 3276 [ 1B698A51CD528D8DA4FFAED66DFC51B9 ] ultra C:\WINDOWS\system32\DRIVERS\ultra.sys
10:29:12.0593 3276 ultra - ok
10:29:12.0640 3276 [ 6634C460C56EC7E48D6BE20B745DC03A ] UMWdf C:\WINDOWS\system32\wdfmgr.exe
10:29:12.0718 3276 UMWdf - ok
10:29:12.0765 3276 [ AFF2E5045961BBC0A602BB6F95EB1345 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
10:29:12.0890 3276 Update - ok
10:29:12.0937 3276 [ 0546477BDE979E33294FE97F6B3DE84A ] upnphost C:\WINDOWS\System32\upnphost.dll
10:29:13.0015 3276 upnphost - ok
10:29:13.0062 3276 [ 3F5DF65B0758675F95A2D43918A740A3 ] UPS C:\WINDOWS\System32\ups.exe
10:29:13.0187 3276 UPS - ok
10:29:13.0250 3276 [ C1CA131F4E3ED63D6BC89A35FFAD4CDA ] USBAAPL C:\WINDOWS\system32\Drivers\usbaapl.sys
10:29:13.0265 3276 USBAAPL - ok
10:29:13.0312 3276 [ BFFD9F120CC63BCBAA3D840F3EEF9F79 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
10:29:13.0468 3276 usbccgp - ok
10:29:13.0515 3276 [ 15E993BA2F6946B2BFBBFCD30398621E ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
10:29:13.0656 3276 usbehci - ok
10:29:13.0671 3276 [ C72F40947F92CEA56A8FB532EDF025F1 ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
10:29:13.0796 3276 usbhub - ok
10:29:13.0843 3276 [ A42369B7CD8886CD7C70F33DA6FCBCF5 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys
10:29:13.0984 3276 usbprint - ok
10:29:14.0015 3276 [ 6CD7B22193718F1D17A47A1CD6D37E75 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
10:29:14.0171 3276 USBSTOR - ok
10:29:14.0203 3276 [ F8FD1400092E23C8F2F31406EF06167B ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
10:29:14.0328 3276 usbuhci - ok
10:29:14.0343 3276 [ 8A60EDD72B4EA5AEA8202DAF0E427925 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
10:29:14.0484 3276 VgaSave - ok
10:29:14.0531 3276 [ D92E7C8A30CFD14D8E15B5F7F032151B ] viaagp C:\WINDOWS\system32\DRIVERS\viaagp.sys
10:29:14.0671 3276 viaagp - ok
10:29:14.0687 3276 [ 59CB1338AD3654417BEA49636457F65D ] ViaIde C:\WINDOWS\system32\DRIVERS\viaide.sys
10:29:14.0828 3276 ViaIde - ok
10:29:14.0875 3276 [ EE4660083DEBA849FF6C485D944B379B ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
10:29:15.0000 3276 VolSnap - ok
10:29:15.0078 3276 [ 3EE00364AE0FD8D604F46CBAF512838A ] VSS C:\WINDOWS\System32\vssvc.exe
10:29:15.0156 3276 VSS - ok
10:29:15.0218 3276 [ 2B281958F5D0CF99ED626E3EF39D5C8D ] w32time C:\WINDOWS\system32\w32time.dll
10:29:15.0343 3276 w32time - ok
10:29:15.0390 3276 [ 984EF0B9788ABF89974CFED4BFBAACBC ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
10:29:15.0531 3276 Wanarp - ok
10:29:15.0593 3276 [ 0A716C08CB13C3A8F4F51E882DBF7416 ] wanatw C:\WINDOWS\system32\DRIVERS\wanatw4.sys
10:29:15.0609 3276 wanatw - ok
10:29:15.0656 3276 [ FD47474BD21794508AF449D9D91AF6E6 ] Wdf01000 C:\WINDOWS\system32\DRIVERS\Wdf01000.sys
10:29:15.0687 3276 Wdf01000 - ok
10:29:15.0687 3276 WDICA - ok
10:29:15.0734 3276 [ 2797F33EBF50466020C430EE4F037933 ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
10:29:15.0890 3276 wdmaud - ok
10:29:15.0921 3276 [ 5D0A442864BFBF3B19DCCA4CD29F6E99 ] WebClient C:\WINDOWS\System32\webclnt.dll
10:29:16.0062 3276 WebClient - ok
10:29:16.0125 3276 [ F59ED5A43B988A18EF582BB07B2327A7 ] winachsf C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys
10:29:16.0156 3276 winachsf - ok
10:29:16.0250 3276 [ F399242A80C4066FD155EFA4CF96658E ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
10:29:16.0375 3276 winmgmt - ok
10:29:16.0531 3276 [ 5144AE67D60EC653F97DDF3FEED29E77 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
10:29:16.0578 3276 wlidsvc - ok
10:29:16.0656 3276 [ 94A85E956A065E23E0010A6A7826243B ] WLSetupSvc C:\Program Files\Windows Live\installer\WLSetupSvc.exe
10:29:16.0671 3276 WLSetupSvc ( UnsignedFile.Multi.Generic ) - warning
10:29:16.0671 3276 WLSetupSvc - detected UnsignedFile.Multi.Generic (1)
10:29:16.0718 3276 [ 581176F60885AEF8F78C6E38DCC3CDF9 ] WMDM PMSP Service C:\WINDOWS\system32\MsPMSPSv.exe
10:29:16.0734 3276 WMDM PMSP Service ( UnsignedFile.Multi.Generic ) - warning
10:29:16.0734 3276 WMDM PMSP Service - detected UnsignedFile.Multi.Generic (1)
10:29:16.0781 3276 [ B9715B9C18BC6C8F4B66733D208CC9F7 ] WmdmPmSN C:\WINDOWS\system32\mspmsnsv.dll
10:29:16.0796 3276 WmdmPmSN - ok
10:29:16.0859 3276 [ 1AFF244CA134956C54474F4E2433E4CE ] Wmi C:\WINDOWS\System32\advapi32.dll
10:29:17.0000 3276 Wmi - ok
10:29:17.0078 3276 [ BA8CECC3E813E1F7C441B20393D4F86C ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe
10:29:17.0203 3276 WmiApSrv - ok
10:29:17.0312 3276 [ F74E3D9A7FA9556C3BBB14D4E5E63D3B ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe
10:29:17.0359 3276 WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - warning
10:29:17.0359 3276 WMPNetworkSvc - detected UnsignedFile.Multi.Generic (1)
10:29:17.0406 3276 [ 0770ACCA345B35EF455AC0D96C8B39A0 ] WpdUsb C:\WINDOWS\system32\Drivers\wpdusb.sys
10:29:17.0453 3276 WpdUsb - ok
10:29:17.0515 3276 [ 6ABE6E225ADB5A751622A9CC3BC19CE8 ] WS2IFSL C:\WINDOWS\System32\drivers\ws2ifsl.sys
10:29:17.0640 3276 WS2IFSL - ok
10:29:17.0671 3276 [ 4D59DAA66C60858CDF4F67A900F42D4A ] wscsvc C:\WINDOWS\system32\wscsvc.dll
10:29:17.0812 3276 wscsvc - ok
10:29:17.0859 3276 [ 13D72740963CBA12D9FF76A7F218BCD8 ] wuauserv C:\WINDOWS\system32\wuauserv.dll
10:29:17.0984 3276 wuauserv - ok
10:29:18.0046 3276 [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
10:29:18.0078 3276 WudfPf - ok
10:29:18.0109 3276 [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
10:29:18.0125 3276 WudfRd - ok
10:29:18.0187 3276 [ 05231C04253C5BC30B26CBAAE680ED89 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
10:29:18.0218 3276 WudfSvc - ok
10:29:18.0265 3276 [ 5A91E6FEAB9F901302FA7FF768C0120F ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
10:29:18.0453 3276 WZCSVC - ok
10:29:18.0500 3276 [ EEF46DAB68229A14DA3D8E73C99E2959 ] xmlprov C:\WINDOWS\System32\xmlprov.dll
10:29:18.0640 3276 xmlprov - ok
10:29:18.0640 3276 ================ Scan global ===============================
10:29:18.0687 3276 [ 00EF9C3AF83EDBAF18CA7A2837750117 ] C:\WINDOWS\system32\basesrv.dll
10:29:18.0734 3276 [ 442D0EAD5534E4ADCF6D4469043C82C0 ] C:\WINDOWS\system32\winsrv.dll
10:29:18.0750 3276 [ 442D0EAD5534E4ADCF6D4469043C82C0 ] C:\WINDOWS\system32\winsrv.dll
10:29:18.0765 3276 [ C6CE6EEC82F187615D1002BB3BB50ED4 ] C:\WINDOWS\system32\services.exe
10:29:18.0765 3276 [Global] - ok
10:29:18.0765 3276 ================ Scan MBR ==================================
10:29:18.0796 3276 [ 5CB90281D1A59B251F6603134774EEC3 ] \Device\Harddisk0\DR0
10:29:19.0109 3276 \Device\Harddisk0\DR0 - ok
10:29:19.0109 3276 ================ Scan VBR ==================================
10:29:19.0125 3276 [ 2860AF43991D59E904A9CEA7DF8231F3 ] \Device\Harddisk0\DR0\Partition1
10:29:19.0125 3276 \Device\Harddisk0\DR0\Partition1 - ok
10:29:19.0125 3276 ============================================================
10:29:19.0125 3276 Scan finished
10:29:19.0125 3276 ============================================================
10:29:19.0140 3304 Detected object count: 27
10:29:19.0140 3304 Actual detected object count: 27
10:29:51.0734 3304 ASCTRM ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0734 3304 ASCTRM ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0734 3304 Cdr4_xp ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0734 3304 Cdr4_xp ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0734 3304 Cdralw2k ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0734 3304 Cdralw2k ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0734 3304 cercsr6 ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0734 3304 cercsr6 ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0734 3304 Creative Labs Licensing Service ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0734 3304 Creative Labs Licensing Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0734 3304 Creative Service for CDROM Access ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0734 3304 Creative Service for CDROM Access ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0750 3304 DLABOIOM ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0750 3304 DLABOIOM ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0750 3304 DLACDBHM ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0750 3304 DLACDBHM ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0750 3304 DLADResN ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0750 3304 DLADResN ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0750 3304 DLAIFS_M ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0750 3304 DLAIFS_M ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0750 3304 DLAOPIOM ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0750 3304 DLAOPIOM ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0765 3304 DLAPoolM ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0765 3304 DLAPoolM ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0765 3304 DLARTL_N ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0765 3304 DLARTL_N ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0765 3304 DLAUDFAM ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0765 3304 DLAUDFAM ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0765 3304 DLAUDF_M ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0765 3304 DLAUDF_M ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0765 3304 Dot3svc ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0765 3304 Dot3svc ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0781 3304 DRVMCDB ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0781 3304 DRVMCDB ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0781 3304 DRVNDDM ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0781 3304 DRVNDDM ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0781 3304 DSproct ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0781 3304 DSproct ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0781 3304 EapHost ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0781 3304 EapHost ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0781 3304 HDAudBus ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0781 3304 HDAudBus ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0796 3304 hkmsvc ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0796 3304 hkmsvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0796 3304 napagent ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0796 3304 napagent ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0796 3304 NetSvc ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0796 3304 NetSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0796 3304 WLSetupSvc ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0796 3304 WLSetupSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0796 3304 WMDM PMSP Service ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0796 3304 WMDM PMSP Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0796 3304 WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0796 3304 WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:55.0546 1784 Deinitialize success
 
10:28:44.0250 3276 [ ED6BF9E441FDEA13292A6D30A64A24C3 ] i2omp C:\WINDOWS\system32\DRIVERS\i2omp.sys
10:28:44.0390 3276 i2omp - ok
10:28:44.0421 3276 [ 5502B58EEF7486EE6F93F3F164DCB808 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
10:28:44.0546 3276 i8042prt - ok
10:28:44.0640 3276 [ 5A8E05F1D5C36ABD58CFFA111EB325EA ] ialm C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
10:28:44.0703 3276 ialm - ok
10:28:44.0812 3276 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
10:28:44.0843 3276 idsvc - ok
10:28:44.0906 3276 [ F8AA320C6A0409C0380E5D8A99D76EC6 ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
10:28:45.0031 3276 Imapi - ok
10:28:45.0093 3276 [ FA788520BCAC0F5D9D5CDE5615C0D931 ] ImapiService C:\WINDOWS\system32\imapi.exe
10:28:45.0250 3276 ImapiService - ok
10:28:45.0265 3276 [ 4A40E045FAEE58631FD8D91AFC620719 ] ini910u C:\WINDOWS\system32\DRIVERS\ini910u.sys
10:28:45.0406 3276 ini910u - ok
10:28:45.0421 3276 [ 2D722B2B54AB55B2FA475EB58D7B2AAD ] IntelIde C:\WINDOWS\system32\DRIVERS\intelide.sys
10:28:45.0578 3276 IntelIde - ok
10:28:45.0625 3276 [ 279FB78702454DFF2BB445F238C048D2 ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
10:28:45.0781 3276 intelppm - ok
10:28:45.0796 3276 [ 4448006B6BC60E6C027932CFC38D6855 ] Ip6Fw C:\WINDOWS\system32\drivers\ip6fw.sys
10:28:45.0921 3276 Ip6Fw - ok
10:28:45.0953 3276 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
10:28:46.0078 3276 IpFilterDriver - ok
10:28:46.0093 3276 [ E1EC7F5DA720B640CD8FB8424F1B14BB ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
10:28:46.0218 3276 IpInIp - ok
10:28:46.0265 3276 [ B5A8E215AC29D24D60B4D1250EF05ACE ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
10:28:46.0390 3276 IpNat - ok
10:28:46.0437 3276 [ 62937A89470AF8FF172F0980CA8AEFC9 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
10:28:46.0468 3276 iPod Service - ok
10:28:46.0515 3276 [ 64537AA5C003A6AFEEE1DF819062D0D1 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
10:28:46.0656 3276 IPSec - ok
10:28:46.0671 3276 [ 50708DAA1B1CBB7D6AC1CF8F56A24410 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
10:28:46.0765 3276 IRENUM - ok
10:28:46.0812 3276 [ E504F706CCB699C2596E9A3DA1596E87 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
10:28:46.0937 3276 isapnp - ok
10:28:47.0031 3276 [ 4F2143570D2250CA4C4A4C98553C82CD ] JavaQuickStarterService C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe
10:28:47.0046 3276 JavaQuickStarterService - ok
10:28:47.0046 3276 [ EBDEE8A2EE5393890A1ACEE971C4C246 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
10:28:47.0187 3276 Kbdclass - ok
10:28:47.0187 3276 [ E182FA8E49E8EE41B4ADC53093F3C7E6 ] kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys
10:28:47.0328 3276 kbdhid - ok
10:28:47.0390 3276 [ D93CAD07C5683DB066B0B2D2D3790EAD ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
10:28:47.0546 3276 kmixer - ok
10:28:47.0578 3276 [ EB7FFE87FD367EA8FCA0506F74A87FBB ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
10:28:47.0734 3276 KSecDD - ok
10:28:47.0781 3276 [ 93D32468D34E000CB3407947D1D6E22A ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
10:28:47.0906 3276 lanmanserver - ok
10:28:47.0921 3276 [ 2C0A7B2AE9C26F2C163627679B42783C ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
10:28:48.0078 3276 lanmanworkstation - ok
10:28:48.0140 3276 [ 9FFD1CF2A782F2560E78EEC4B8B8689E ] LBeepKE C:\WINDOWS\system32\Drivers\LBeepKE.sys
10:28:48.0156 3276 LBeepKE - ok
10:28:48.0156 3276 lbrtfdc - ok
10:28:48.0234 3276 [ 3AF6B73A3AD1FC37C5933441F66CEB91 ] LBTServ C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
10:28:48.0250 3276 LBTServ - ok
10:28:48.0296 3276 [ 70035567754BED4E6AD353CA3F175127 ] LEqdUsb C:\WINDOWS\system32\Drivers\LEqdUsb.Sys
10:28:48.0312 3276 LEqdUsb - ok
10:28:48.0359 3276 [ 32491B6BAE0AFAD1D7A62C0EF0AF4321 ] LHidEqd C:\WINDOWS\system32\Drivers\LHidEqd.Sys
10:28:48.0375 3276 LHidEqd - ok
10:28:48.0406 3276 [ 7F9C7B28CF1C859E1C42619EEA946DC8 ] LHidFilt C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys
10:28:48.0421 3276 LHidFilt - ok
10:28:48.0484 3276 [ B3EFF6D938C572E90A07B3D87A3C7657 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
10:28:48.0640 3276 LmHosts - ok
10:28:48.0671 3276 [ AB33792A87285344F43B5CE23421BAB0 ] LMouFilt C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys
10:28:48.0687 3276 LMouFilt - ok
10:28:48.0750 3276 [ F453D1E6D881E8F8717E20CCD4199E85 ] McComponentHostService C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe
10:28:48.0765 3276 McComponentHostService - ok
10:28:48.0875 3276 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] McMPFSvc C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
10:28:48.0906 3276 McMPFSvc - ok
10:28:48.0921 3276 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] mcmscsvc C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
10:28:48.0937 3276 mcmscsvc - ok
10:28:48.0937 3276 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] McNaiAnn C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
10:28:48.0953 3276 McNaiAnn - ok
10:28:48.0968 3276 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] McNASvc C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
10:28:48.0984 3276 McNASvc - ok
10:28:49.0156 3276 [ ADA83A989D5822DAA5E2F62FDF118AC6 ] McODS C:\Program Files\McAfee\VirusScan\mcods.exe
10:28:49.0171 3276 McODS - ok
10:28:49.0187 3276 [ B26A3EA976E6FD5C03C65F6E5824AD7C ] McProxy C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
10:28:49.0203 3276 McProxy - ok
10:28:49.0250 3276 [ DF0A511F38F16016BF658FCA0090CB87 ] McrdSvc C:\WINDOWS\ehome\mcrdsvc.exe
10:28:49.0281 3276 McrdSvc - ok
10:28:49.0328 3276 [ 7394FCADC0DD68DDC5921884906F4AE9 ] McShield C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
10:28:49.0343 3276 McShield - ok
10:28:49.0437 3276 [ 11F714F85530A2BD134074DC30E99FCA ] MDM C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
10:28:49.0453 3276 MDM - ok
10:28:49.0500 3276 [ EEAEA6514BA7C9D273B5E87C4E1AAB30 ] mdmxsdk C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys
10:28:49.0531 3276 mdmxsdk - ok
10:28:49.0593 3276 [ 95FD808E4AC22ABA025A7B3EAC0375D2 ] Messenger C:\WINDOWS\System32\msgsvc.dll
10:28:49.0718 3276 Messenger - ok
10:28:49.0781 3276 [ 84D59A3EDDFB9438FB94F7F80D37859D ] mfeapfk C:\WINDOWS\system32\drivers\mfeapfk.sys
10:28:49.0796 3276 mfeapfk - ok
10:28:49.0843 3276 [ 67E961988312B1A28D6F93357B0BF998 ] mfeavfk C:\WINDOWS\system32\drivers\mfeavfk.sys
10:28:49.0859 3276 mfeavfk - ok
10:28:49.0906 3276 [ 19161B1796CF74A6A326ABDE309062BA ] mfebopk C:\WINDOWS\system32\drivers\mfebopk.sys
10:28:49.0906 3276 mfebopk - ok
10:28:49.0953 3276 [ 3D8E909DA47E22E2B32056FD2AE66EDE ] mfefire C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
10:28:49.0984 3276 mfefire - ok
10:28:50.0000 3276 [ D5F89B4934960C70882924D992C6ABFC ] mfefirek C:\WINDOWS\system32\drivers\mfefirek.sys
10:28:50.0015 3276 mfefirek - ok
10:28:50.0062 3276 [ 0EFAB2B91B27543FE589DE700DE07136 ] mfehidk C:\WINDOWS\system32\drivers\mfehidk.sys
10:28:50.0093 3276 mfehidk - ok
10:28:50.0156 3276 [ 549DD4966BF0B1D1FC205CA0755A745B ] mfendisk C:\WINDOWS\system32\DRIVERS\mfendisk.sys
10:28:50.0171 3276 mfendisk - ok
10:28:50.0187 3276 [ 549DD4966BF0B1D1FC205CA0755A745B ] mfendiskmp C:\WINDOWS\system32\DRIVERS\mfendisk.sys
10:28:50.0203 3276 mfendiskmp - ok
10:28:50.0250 3276 [ C9EDA1EADA2AB6E34CD1A10C3A24AB25 ] mferkdet C:\WINDOWS\system32\drivers\mferkdet.sys
10:28:50.0265 3276 mferkdet - ok
10:28:50.0296 3276 [ E6C5F7AADE5A31C057D73201ACFE8ADF ] mfetdi2k C:\WINDOWS\system32\drivers\mfetdi2k.sys
10:28:50.0312 3276 mfetdi2k - ok
10:28:50.0375 3276 [ 5C1B2814EF2A6313936A111D3FD095AF ] mfevtp C:\WINDOWS\system32\mfevtps.exe
10:28:50.0390 3276 mfevtp - ok
10:28:50.0437 3276 [ B7521F69C0A9B29D356157229376FB21 ] MHN C:\WINDOWS\System32\mhn.dll
10:28:50.0500 3276 MHN - ok
10:28:50.0515 3276 [ 7F2F1D2815A6449D346FCCCBC569FBD6 ] MHNDRV C:\WINDOWS\system32\DRIVERS\mhndrv.sys
10:28:50.0593 3276 MHNDRV - ok
10:28:50.0640 3276 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
10:28:50.0796 3276 mnmdd - ok
10:28:50.0843 3276 [ F6415361201915B9FE3896B0E4E724FF ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe
10:28:50.0984 3276 mnmsrvc - ok
10:28:51.0031 3276 [ 6FC6F9D7ACC36DCA9B914565A3AEDA05 ] Modem C:\WINDOWS\system32\drivers\Modem.sys
10:28:51.0171 3276 Modem - ok
10:28:51.0203 3276 [ 1992E0D143B09653AB0F9C5E04B0FD65 ] MODEMCSA C:\WINDOWS\system32\drivers\MODEMCSA.sys
10:28:51.0328 3276 MODEMCSA - ok
10:28:51.0359 3276 [ 34E1F0031153E491910E12551400192C ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
10:28:51.0484 3276 Mouclass - ok
10:28:51.0531 3276 [ B1C303E17FB9D46E87A98E4BA6769685 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
10:28:51.0687 3276 mouhid - ok
10:28:51.0703 3276 [ 65653F3B4477F3C63E68A9659F85EE2E ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
10:28:51.0843 3276 MountMgr - ok
10:28:51.0906 3276 [ 8BE15F71DE6FF33FC56DCDE7B2B9EFE8 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
10:28:51.0937 3276 MozillaMaintenance - ok
10:28:51.0968 3276 [ 3F4BB95E5A44F3BE34824E8E7CAF0737 ] mraid35x C:\WINDOWS\system32\DRIVERS\mraid35x.sys
10:28:52.0093 3276 mraid35x - ok
10:28:52.0109 3276 [ 46EDCC8F2DB2F322C24F48785CB46366 ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
10:28:52.0250 3276 MRxDAV - ok
10:28:52.0312 3276 [ 1FD607FC67F7F7C633C3DA65BFC53D18 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
10:28:52.0437 3276 MRxSmb - ok
10:28:52.0484 3276 [ C7C3D89EB0A6F3DBA622EA737FA335B1 ] MSDTC C:\WINDOWS\system32\msdtc.exe
10:28:52.0609 3276 MSDTC - ok
10:28:52.0625 3276 [ 561B3A4333CA2DBDBA28B5B956822519 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
10:28:52.0781 3276 Msfs - ok
10:28:52.0781 3276 MSIServer - ok
10:28:52.0828 3276 [ AE431A8DD3C1D0D0610CDBAC16057AD0 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
10:28:52.0984 3276 MSKSSRV - ok
10:28:53.0046 3276 [ 13E75FEF9DFEB08EEDED9D0246E1F448 ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
10:28:53.0187 3276 MSPCLOCK - ok
10:28:53.0234 3276 [ 1988A33FF19242576C3D0EF9CE785DA7 ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
10:28:53.0406 3276 MSPQM - ok
10:28:53.0453 3276 [ 469541F8BFD2B32659D5D463A6714BCE ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
10:28:53.0593 3276 mssmbios - ok
10:28:53.0640 3276 [ 82035E0F41C2DD05AE41D27FE6CF7DE1 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
10:28:53.0765 3276 Mup - ok
10:28:53.0812 3276 [ 0102140028FAD045756796E1C685D695 ] napagent C:\WINDOWS\System32\qagentrt.dll
10:28:53.0828 3276 napagent ( UnsignedFile.Multi.Generic ) - warning
10:28:53.0828 3276 napagent - detected UnsignedFile.Multi.Generic (1)
10:28:53.0875 3276 [ 558635D3AF1C7546D26067D5D9B6959E ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
10:28:54.0015 3276 NDIS - ok
10:28:54.0015 3276 [ 08D43BBDACDF23F34D79E44ED35C1B4C ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
10:28:54.0171 3276 NdisTapi - ok
10:28:54.0234 3276 [ 34D6CD56409DA9A7ED573E1C90A308BF ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
10:28:54.0375 3276 Ndisuio - ok
10:28:54.0390 3276 [ 0B90E255A9490166AB368CD55A529893 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
10:28:54.0531 3276 NdisWan - ok
10:28:54.0531 3276 [ 59FC3FB44D2669BC144FD87826BB571F ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
10:28:54.0671 3276 NDProxy - ok
10:28:54.0671 3276 [ 3A2ACA8FC1D7786902CA434998D7CEB4 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
10:28:54.0812 3276 NetBIOS - ok
10:28:54.0875 3276 [ 0C80E410CD2F47134407EE7DD19CC86B ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
10:28:55.0015 3276 NetBT - ok
10:28:55.0078 3276 [ 05AFB5AD06462257BEA7495283C86D50 ] NetDDE C:\WINDOWS\system32\netdde.exe
10:28:55.0234 3276 NetDDE - ok
10:28:55.0250 3276 [ 05AFB5AD06462257BEA7495283C86D50 ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
10:28:55.0390 3276 NetDDEdsdm - ok
10:28:55.0437 3276 [ 84885F9B82F4D55C6146EBF6065D75D2 ] Netlogon C:\WINDOWS\system32\lsass.exe
10:28:55.0578 3276 Netlogon - ok
10:28:55.0625 3276 [ DAB9E6C7105D2EF49876FE92C524F565 ] Netman C:\WINDOWS\System32\netman.dll
10:28:55.0796 3276 Netman - ok
10:28:55.0906 3276 [ 9DA26B773BD04B867A8E9F427CD048FC ] NetSvc C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
10:28:55.0921 3276 NetSvc ( UnsignedFile.Multi.Generic ) - warning
10:28:55.0921 3276 NetSvc - detected UnsignedFile.Multi.Generic (1)
10:28:55.0984 3276 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
10:28:56.0000 3276 NetTcpPortSharing - ok
10:28:56.0062 3276 [ 4E74AF063C3271FBEA20DD940CFD1184 ] Nla C:\WINDOWS\System32\mswsock.dll
10:28:56.0234 3276 Nla - ok
10:28:56.0234 3276 [ 4F601BCB8F64EA3AC0994F98FED03F8E ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
10:28:56.0406 3276 Npfs - ok
10:28:56.0468 3276 [ B78BE402C3F63DD55521F73876951CDD ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
10:28:56.0625 3276 Ntfs - ok
10:28:56.0640 3276 [ 84885F9B82F4D55C6146EBF6065D75D2 ] NtLmSsp C:\WINDOWS\system32\lsass.exe
10:28:56.0781 3276 NtLmSsp - ok
10:28:56.0859 3276 [ B62F29C00AC55A761B2E45877D85EA0F ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
10:28:57.0000 3276 NtmsSvc - ok
10:28:57.0046 3276 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
10:28:57.0171 3276 Null - ok
10:28:57.0250 3276 [ 2B298519EDBFCF451D43E0F1E8F1006D ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
10:28:57.0437 3276 nv - ok
10:28:57.0468 3276 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
10:28:57.0593 3276 NwlnkFlt - ok
10:28:57.0609 3276 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
10:28:57.0750 3276 NwlnkFwd - ok
10:28:57.0796 3276 [ 7A56CF3E3F12E8AF599963B16F50FB6A ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
10:28:57.0812 3276 ose - ok
10:28:57.0859 3276 [ 103A9B117A7D9903111955CDAFE65AC6 ] ossrv C:\WINDOWS\system32\DRIVERS\ctoss2k.sys
10:28:57.0890 3276 ossrv - ok
10:28:57.0953 3276 [ 29744EB4CE659DFE3B4122DEB45BC478 ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys
10:28:58.0109 3276 Parport - ok
10:28:58.0109 3276 [ 3334430C29DC338092F79C38EF7B4CD0 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
10:28:58.0250 3276 PartMgr - ok
10:28:58.0265 3276 [ 70E98B3FD8E963A6A46A2E6247E0BEA1 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
10:28:58.0421 3276 ParVdm - ok
10:28:58.0437 3276 [ 8086D9979234B603AD5BC2F5D890B234 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
10:28:58.0578 3276 PCI - ok
10:28:58.0593 3276 PCIDump - ok
10:28:58.0609 3276 [ CCF5F451BB1A5A2A522A76E670000FF0 ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
10:28:58.0750 3276 PCIIde - ok
10:28:58.0812 3276 [ 82A087207DECEC8456FBE8537947D579 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
10:28:58.0968 3276 Pcmcia - ok
10:28:58.0968 3276 PDCOMP - ok
10:28:58.0968 3276 PDFRAME - ok
10:28:58.0984 3276 PDRELI - ok
10:28:58.0984 3276 PDRFRAME - ok
10:28:59.0015 3276 [ 6C14B9C19BA84F73D3A86DBA11133101 ] perc2 C:\WINDOWS\system32\DRIVERS\perc2.sys
10:28:59.0140 3276 perc2 - ok
10:28:59.0156 3276 [ F50F7C27F131AFE7BEBA13E14A3B9416 ] perc2hib C:\WINDOWS\system32\DRIVERS\perc2hib.sys
10:28:59.0281 3276 perc2hib - ok
10:28:59.0328 3276 [ C6CE6EEC82F187615D1002BB3BB50ED4 ] PlugPlay C:\WINDOWS\system32\services.exe
10:28:59.0484 3276 PlugPlay - ok
10:28:59.0515 3276 [ D31F88C5F19EEFA366A415D6BC5F2ABC ] Pml Driver HPZ12 C:\WINDOWS\system32\HPZipm12.exe
10:28:59.0578 3276 Pml Driver HPZ12 - ok
10:28:59.0593 3276 [ 84885F9B82F4D55C6146EBF6065D75D2 ] PolicyAgent C:\WINDOWS\system32\lsass.exe
10:28:59.0734 3276 PolicyAgent - ok
10:28:59.0796 3276 [ 1C5CC65AAC0783C344F16353E60B72AC ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
10:28:59.0921 3276 PptpMiniport - ok
10:28:59.0984 3276 [ 0D97D88720A4087EC93AF7DBB303B30A ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys
10:29:00.0140 3276 Processor - ok
10:29:00.0140 3276 [ 84885F9B82F4D55C6146EBF6065D75D2 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
10:29:00.0265 3276 ProtectedStorage - ok
10:29:00.0281 3276 [ 48671F327553DCF1D27F6197F622A668 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
10:29:00.0406 3276 PSched - ok
10:29:00.0468 3276 [ 1DF21F001F3A94EBA4A2950C70CC358F ] PSI C:\WINDOWS\system32\DRIVERS\psi_mf.sys
10:29:00.0484 3276 PSI - ok
10:29:00.0515 3276 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
10:29:00.0640 3276 Ptilink - ok
10:29:00.0687 3276 [ 40F2031BD9148D3194353EA7DEC97A07 ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys
10:29:00.0703 3276 PxHelp20 - ok
10:29:00.0765 3276 [ 0A63FB54039EB5662433CABA3B26DBA7 ] ql1080 C:\WINDOWS\system32\DRIVERS\ql1080.sys
10:29:00.0890 3276 ql1080 - ok
10:29:00.0953 3276 [ 6503449E1D43A0FF0201AD5CB1B8C706 ] Ql10wnt C:\WINDOWS\system32\DRIVERS\ql10wnt.sys
10:29:01.0078 3276 Ql10wnt - ok
10:29:01.0109 3276 [ 156ED0EF20C15114CA097A34A30D8A01 ] ql12160 C:\WINDOWS\system32\DRIVERS\ql12160.sys
10:29:01.0250 3276 ql12160 - ok
10:29:01.0281 3276 [ 70F016BEBDE6D29E864C1230A07CC5E6 ] ql1240 C:\WINDOWS\system32\DRIVERS\ql1240.sys
10:29:01.0406 3276 ql1240 - ok
10:29:01.0437 3276 [ 907F0AEEA6BC451011611E732BD31FCF ] ql1280 C:\WINDOWS\system32\DRIVERS\ql1280.sys
10:29:01.0562 3276 ql1280 - ok
10:29:01.0593 3276 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
10:29:01.0718 3276 RasAcd - ok
10:29:01.0781 3276 [ 44DB7A9BDD2FB58747D123FBF1D35ADB ] RasAuto C:\WINDOWS\System32\rasauto.dll
10:29:01.0906 3276 RasAuto - ok
10:29:01.0937 3276 [ 98FAEB4A4DCF812BA1C6FCA4AA3E115C ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
10:29:02.0093 3276 Rasl2tp - ok
10:29:02.0140 3276 [ 41A3C11E3517C962C9B44893BCEC3B34 ] RasMan C:\WINDOWS\System32\rasmans.dll
10:29:02.0265 3276 RasMan - ok
10:29:02.0343 3276 [ 7306EEED8895454CBED4669BE9F79FAA ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
10:29:02.0484 3276 RasPppoe - ok
10:29:02.0500 3276 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
10:29:02.0625 3276 Raspti - ok
10:29:02.0671 3276 [ 29D66245ADBA878FFF574CD66ABD2884 ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
10:29:02.0812 3276 Rdbss - ok
10:29:02.0828 3276 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
10:29:02.0953 3276 RDPCDD - ok
10:29:03.0000 3276 [ A2CAE2C60BC37E0751EF9DDA7CEAF4AD ] rdpdr C:\WINDOWS\system32\DRIVERS\rdpdr.sys
10:29:03.0140 3276 rdpdr - ok
10:29:03.0203 3276 [ D4F5643D7714EF499AE9527FDCD50894 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
10:29:03.0359 3276 RDPWD - ok
10:29:03.0421 3276 [ 729798E0933076B8FCFCD9934698F164 ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
10:29:03.0546 3276 RDSessMgr - ok
10:29:03.0593 3276 [ B31B4588E4086D8D84ADBF9845C2402B ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
10:29:03.0718 3276 redbook - ok
10:29:03.0781 3276 [ 3046DB917E3CFA040632799DD9B14865 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
10:29:03.0921 3276 RemoteAccess - ok
10:29:03.0953 3276 [ 3151427DB7D87107D1C5BE58FAC53960 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
10:29:04.0109 3276 RemoteRegistry - ok
10:29:04.0140 3276 [ 793F04A09B15E7C6C11DBDFFAF06C0AB ] RpcLocator C:\WINDOWS\system32\locator.exe
10:29:04.0281 3276 RpcLocator - ok
10:29:04.0328 3276 [ 5C83A4408604F737717AB96371201680 ] RpcSs C:\WINDOWS\System32\rpcss.dll
10:29:04.0921 3276 RpcSs - ok
10:29:04.0984 3276 [ 471B3F9741D762ABE75E9DEEA4787E47 ] RSVP C:\WINDOWS\system32\rsvp.exe
10:29:05.0125 3276 RSVP - ok
10:29:05.0156 3276 [ 84885F9B82F4D55C6146EBF6065D75D2 ] SamSs C:\WINDOWS\system32\lsass.exe
10:29:05.0296 3276 SamSs - ok
10:29:05.0359 3276 [ 25D8DE134DF108E3DBC8D7D23B1AA58E ] SCardDrv C:\WINDOWS\System32\SCardSvr.exe
10:29:05.0515 3276 SCardDrv - ok
10:29:05.0515 3276 [ 25D8DE134DF108E3DBC8D7D23B1AA58E ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
10:29:05.0656 3276 SCardSvr - ok
10:29:05.0718 3276 [ 92360854316611F6CC471612213C3D92 ] Schedule C:\WINDOWS\system32\schedsvc.dll
10:29:05.0843 3276 Schedule - ok
10:29:05.0968 3276 [ CC781378E7EDA615D2CDCA3B17829FA4 ] SeaPort C:\Program Files\Microsoft\BingBar\SeaPort.EXE
10:29:05.0984 3276 SeaPort - ok
10:29:06.0031 3276 [ D26E26EA516450AF9D072635C60387F4 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
10:29:06.0125 3276 Secdrv - ok
10:29:06.0171 3276 [ B1E0CE09895376871746F36DC5773B4F ] seclogon C:\WINDOWS\System32\seclogon.dll
10:29:06.0328 3276 seclogon - ok
10:29:06.0343 3276 [ DFD9870CF39C791D86C4C209DA9FA919 ] SENS C:\WINDOWS\system32\sens.dll
10:29:06.0484 3276 SENS - ok
10:29:06.0515 3276 [ A2D868AEEFF612E70E213C451A70CAFB ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys
10:29:06.0640 3276 serenum - ok
10:29:06.0703 3276 [ CD9404D115A00D249F70A371B46D5A26 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys
10:29:06.0859 3276 Serial - ok
10:29:06.0906 3276 [ 0D13B6DF6E9E101013A7AFB0CE629FE0 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
10:29:07.0031 3276 Sfloppy - ok
10:29:07.0109 3276 [ 36CC8C01B5E50163037BEF56CB96DEFF ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
10:29:07.0265 3276 SharedAccess - ok
10:29:07.0296 3276 [ E7518DC542D3EBDCB80EDD98462C7821 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
10:29:07.0437 3276 ShellHWDetection - ok
10:29:07.0500 3276 [ 6BD3976B881888AC9A0ED3EB94E7FD38 ] sigfilt C:\WINDOWS\system32\drivers\sigfilt.sys
10:29:07.0578 3276 sigfilt - ok
10:29:07.0578 3276 Simbad - ok
10:29:07.0640 3276 [ 732D859B286DA692119F286B21A2A114 ] sisagp C:\WINDOWS\system32\DRIVERS\sisagp.sys
10:29:07.0781 3276 sisagp - ok
10:29:07.0812 3276 [ 83C0F71F86D3BDAF915685F3D568B20E ] Sparrow C:\WINDOWS\system32\DRIVERS\sparrow.sys
10:29:07.0890 3276 Sparrow - ok
10:29:07.0937 3276 [ 8E186B8F23295D1E42C573B82B80D548 ] splitter C:\WINDOWS\system32\drivers\splitter.sys
10:29:08.0062 3276 splitter - ok
10:29:08.0109 3276 [ 7435B108B935E42EA92CA94F59C8E717 ] Spooler C:\WINDOWS\system32\spoolsv.exe
10:29:08.0250 3276 Spooler - ok
10:29:08.0296 3276 [ E41B6D037D6CD08461470AF04500DC24 ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
10:29:08.0375 3276 sr - ok
10:29:08.0421 3276 [ 92BDF74F12D6CBEC43C94D4B7F804838 ] srservice C:\WINDOWS\system32\srsvc.dll
10:29:08.0500 3276 srservice - ok
10:29:08.0515 3276 [ 20B7E396720353E4117D64D9DCB926CA ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
10:29:08.0656 3276 Srv - ok
10:29:08.0687 3276 [ 4B8D61792F7175BED48859CC18CE4E38 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
10:29:08.0750 3276 SSDPSRV - ok
10:29:08.0781 3276 [ B95480C92C4C9C311BE47B8A1AD73770 ] STHDA C:\WINDOWS\system32\drivers\sthda.sys
10:29:08.0796 3276 STHDA - ok
10:29:08.0843 3276 [ A9573045BAA16EAB9B1085205B82F1ED ] StillCam C:\WINDOWS\system32\DRIVERS\serscan.sys
10:29:08.0968 3276 StillCam - ok
10:29:08.0984 3276 [ D9F6C4F6B1E188ADAFC42B561D9BC2E6 ] stisvc C:\WINDOWS\system32\wiaservc.dll
10:29:09.0125 3276 stisvc - ok
10:29:09.0156 3276 [ 03C1BAE4766E2450219D20B993D6E046 ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
10:29:09.0312 3276 swenum - ok
10:29:09.0359 3276 [ 94ABC808FC4B6D7D2BBF42B85E25BB4D ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
10:29:09.0484 3276 swmidi - ok
10:29:09.0500 3276 SwPrv - ok
10:29:09.0515 3276 [ 1FF3217614018630D0A6758630FC698C ] symc810 C:\WINDOWS\system32\DRIVERS\symc810.sys
10:29:09.0640 3276 symc810 - ok
10:29:09.0687 3276 [ 070E001D95CF725186EF8B20335F933C ] symc8xx C:\WINDOWS\system32\DRIVERS\symc8xx.sys
10:29:09.0828 3276 symc8xx - ok
10:29:09.0843 3276 [ 80AC1C4ABBE2DF3B738BF15517A51F2C ] sym_hi C:\WINDOWS\system32\DRIVERS\sym_hi.sys
10:29:09.0984 3276 sym_hi - ok
10:29:10.0015 3276 [ BF4FAB949A382A8E105F46EBB4937058 ] sym_u3 C:\WINDOWS\system32\DRIVERS\sym_u3.sys
10:29:10.0140 3276 sym_u3 - ok
10:29:10.0187 3276 [ 650AD082D46BAC0E64C9C0E0928492FD ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
10:29:10.0312 3276 sysaudio - ok
10:29:10.0375 3276 [ 8B54AA346D1B1B113FFAA75501B8B1B2 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
10:29:10.0500 3276 SysmonLog - ok
10:29:10.0546 3276 [ EB4A4187D74A8EFDCBEA3EA2CB1BDFBD ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
10:29:10.0703 3276 TapiSrv - ok
10:29:10.0750 3276 [ 9F4B36614A0FC234525BA224957DE55C ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
10:29:10.0906 3276 Tcpip - ok
10:29:10.0921 3276 [ 38D437CF2D98965F239B0ABCD66DCB0F ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
10:29:11.0062 3276 TDPIPE - ok
10:29:11.0078 3276 [ ED0580AF02502D00AD8C4C066B156BE9 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
10:29:11.0218 3276 TDTCP - ok
10:29:11.0265 3276 [ A540A99C281D933F3D69D55E48727F47 ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
10:29:11.0437 3276 TermDD - ok
10:29:11.0500 3276 [ B60C877D16D9C880B952FDA04ADF16E6 ] TermService C:\WINDOWS\System32\termsrv.dll
10:29:11.0671 3276 TermService - ok
10:29:11.0703 3276 [ E7518DC542D3EBDCB80EDD98462C7821 ] Themes C:\WINDOWS\System32\shsvcs.dll
10:29:11.0843 3276 Themes - ok
10:29:11.0890 3276 [ 37DB0A7D097310E8B4DE803FC3119C78 ] TlntSvr C:\WINDOWS\system32\tlntsvr.exe
10:29:11.0968 3276 TlntSvr - ok
10:29:12.0000 3276 [ F2790F6AF01321B172AA62F8E1E187D9 ] TosIde C:\WINDOWS\system32\DRIVERS\toside.sys
10:29:12.0125 3276 TosIde - ok
10:29:12.0156 3276 [ 6D9AC544B30F96C57F8206566C1FB6A1 ] TrkWks C:\WINDOWS\system32\trkwks.dll
10:29:12.0281 3276 TrkWks - ok
10:29:12.0359 3276 [ 12F70256F140CD7D52C58C7048FDE657 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
10:29:12.0484 3276 Udfs - ok
10:29:12.0515 3276 [ 1B698A51CD528D8DA4FFAED66DFC51B9 ] ultra C:\WINDOWS\system32\DRIVERS\ultra.sys
10:29:12.0593 3276 ultra - ok
10:29:12.0640 3276 [ 6634C460C56EC7E48D6BE20B745DC03A ] UMWdf C:\WINDOWS\system32\wdfmgr.exe
10:29:12.0718 3276 UMWdf - ok
10:29:12.0765 3276 [ AFF2E5045961BBC0A602BB6F95EB1345 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
10:29:12.0890 3276 Update - ok
10:29:12.0937 3276 [ 0546477BDE979E33294FE97F6B3DE84A ] upnphost C:\WINDOWS\System32\upnphost.dll
10:29:13.0015 3276 upnphost - ok
10:29:13.0062 3276 [ 3F5DF65B0758675F95A2D43918A740A3 ] UPS C:\WINDOWS\System32\ups.exe
10:29:13.0187 3276 UPS - ok
10:29:13.0250 3276 [ C1CA131F4E3ED63D6BC89A35FFAD4CDA ] USBAAPL C:\WINDOWS\system32\Drivers\usbaapl.sys
10:29:13.0265 3276 USBAAPL - ok
10:29:13.0312 3276 [ BFFD9F120CC63BCBAA3D840F3EEF9F79 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
10:29:13.0468 3276 usbccgp - ok
10:29:13.0515 3276 [ 15E993BA2F6946B2BFBBFCD30398621E ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
10:29:13.0656 3276 usbehci - ok
10:29:13.0671 3276 [ C72F40947F92CEA56A8FB532EDF025F1 ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
10:29:13.0796 3276 usbhub - ok
10:29:13.0843 3276 [ A42369B7CD8886CD7C70F33DA6FCBCF5 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys
10:29:13.0984 3276 usbprint - ok
10:29:14.0015 3276 [ 6CD7B22193718F1D17A47A1CD6D37E75 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
10:29:14.0171 3276 USBSTOR - ok
10:29:14.0203 3276 [ F8FD1400092E23C8F2F31406EF06167B ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
10:29:14.0328 3276 usbuhci - ok
10:29:14.0343 3276 [ 8A60EDD72B4EA5AEA8202DAF0E427925 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
10:29:14.0484 3276 VgaSave - ok
10:29:14.0531 3276 [ D92E7C8A30CFD14D8E15B5F7F032151B ] viaagp C:\WINDOWS\system32\DRIVERS\viaagp.sys
10:29:14.0671 3276 viaagp - ok
10:29:14.0687 3276 [ 59CB1338AD3654417BEA49636457F65D ] ViaIde C:\WINDOWS\system32\DRIVERS\viaide.sys
10:29:14.0828 3276 ViaIde - ok
10:29:14.0875 3276 [ EE4660083DEBA849FF6C485D944B379B ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
10:29:15.0000 3276 VolSnap - ok
10:29:15.0078 3276 [ 3EE00364AE0FD8D604F46CBAF512838A ] VSS C:\WINDOWS\System32\vssvc.exe
10:29:15.0156 3276 VSS - ok
10:29:15.0218 3276 [ 2B281958F5D0CF99ED626E3EF39D5C8D ] w32time C:\WINDOWS\system32\w32time.dll
10:29:15.0343 3276 w32time - ok
10:29:15.0390 3276 [ 984EF0B9788ABF89974CFED4BFBAACBC ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
10:29:15.0531 3276 Wanarp - ok
10:29:15.0593 3276 [ 0A716C08CB13C3A8F4F51E882DBF7416 ] wanatw C:\WINDOWS\system32\DRIVERS\wanatw4.sys
10:29:15.0609 3276 wanatw - ok
10:29:15.0656 3276 [ FD47474BD21794508AF449D9D91AF6E6 ] Wdf01000 C:\WINDOWS\system32\DRIVERS\Wdf01000.sys
10:29:15.0687 3276 Wdf01000 - ok
10:29:15.0687 3276 WDICA - ok
10:29:15.0734 3276 [ 2797F33EBF50466020C430EE4F037933 ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
10:29:15.0890 3276 wdmaud - ok
10:29:15.0921 3276 [ 5D0A442864BFBF3B19DCCA4CD29F6E99 ] WebClient C:\WINDOWS\System32\webclnt.dll
10:29:16.0062 3276 WebClient - ok
10:29:16.0125 3276 [ F59ED5A43B988A18EF582BB07B2327A7 ] winachsf C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys
10:29:16.0156 3276 winachsf - ok
10:29:16.0250 3276 [ F399242A80C4066FD155EFA4CF96658E ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
10:29:16.0375 3276 winmgmt - ok
10:29:16.0531 3276 [ 5144AE67D60EC653F97DDF3FEED29E77 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
10:29:16.0578 3276 wlidsvc - ok
10:29:16.0656 3276 [ 94A85E956A065E23E0010A6A7826243B ] WLSetupSvc C:\Program Files\Windows Live\installer\WLSetupSvc.exe
10:29:16.0671 3276 WLSetupSvc ( UnsignedFile.Multi.Generic ) - warning
10:29:16.0671 3276 WLSetupSvc - detected UnsignedFile.Multi.Generic (1)
10:29:16.0718 3276 [ 581176F60885AEF8F78C6E38DCC3CDF9 ] WMDM PMSP Service C:\WINDOWS\system32\MsPMSPSv.exe
10:29:16.0734 3276 WMDM PMSP Service ( UnsignedFile.Multi.Generic ) - warning
10:29:16.0734 3276 WMDM PMSP Service - detected UnsignedFile.Multi.Generic (1)
10:29:16.0781 3276 [ B9715B9C18BC6C8F4B66733D208CC9F7 ] WmdmPmSN C:\WINDOWS\system32\mspmsnsv.dll
10:29:16.0796 3276 WmdmPmSN - ok
10:29:16.0859 3276 [ 1AFF244CA134956C54474F4E2433E4CE ] Wmi C:\WINDOWS\System32\advapi32.dll
10:29:17.0000 3276 Wmi - ok
10:29:17.0078 3276 [ BA8CECC3E813E1F7C441B20393D4F86C ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe
10:29:17.0203 3276 WmiApSrv - ok
10:29:17.0312 3276 [ F74E3D9A7FA9556C3BBB14D4E5E63D3B ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe
10:29:17.0359 3276 WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - warning
10:29:17.0359 3276 WMPNetworkSvc - detected UnsignedFile.Multi.Generic (1)
10:29:17.0406 3276 [ 0770ACCA345B35EF455AC0D96C8B39A0 ] WpdUsb C:\WINDOWS\system32\Drivers\wpdusb.sys
10:29:17.0453 3276 WpdUsb - ok
10:29:17.0515 3276 [ 6ABE6E225ADB5A751622A9CC3BC19CE8 ] WS2IFSL C:\WINDOWS\System32\drivers\ws2ifsl.sys
10:29:17.0640 3276 WS2IFSL - ok
10:29:17.0671 3276 [ 4D59DAA66C60858CDF4F67A900F42D4A ] wscsvc C:\WINDOWS\system32\wscsvc.dll
10:29:17.0812 3276 wscsvc - ok
10:29:17.0859 3276 [ 13D72740963CBA12D9FF76A7F218BCD8 ] wuauserv C:\WINDOWS\system32\wuauserv.dll
10:29:17.0984 3276 wuauserv - ok
10:29:18.0046 3276 [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
10:29:18.0078 3276 WudfPf - ok
10:29:18.0109 3276 [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
10:29:18.0125 3276 WudfRd - ok
10:29:18.0187 3276 [ 05231C04253C5BC30B26CBAAE680ED89 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
10:29:18.0218 3276 WudfSvc - ok
10:29:18.0265 3276 [ 5A91E6FEAB9F901302FA7FF768C0120F ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
10:29:18.0453 3276 WZCSVC - ok
10:29:18.0500 3276 [ EEF46DAB68229A14DA3D8E73C99E2959 ] xmlprov C:\WINDOWS\System32\xmlprov.dll
10:29:18.0640 3276 xmlprov - ok
10:29:18.0640 3276 ================ Scan global ===============================
10:29:18.0687 3276 [ 00EF9C3AF83EDBAF18CA7A2837750117 ] C:\WINDOWS\system32\basesrv.dll
10:29:18.0734 3276 [ 442D0EAD5534E4ADCF6D4469043C82C0 ] C:\WINDOWS\system32\winsrv.dll
10:29:18.0750 3276 [ 442D0EAD5534E4ADCF6D4469043C82C0 ] C:\WINDOWS\system32\winsrv.dll
10:29:18.0765 3276 [ C6CE6EEC82F187615D1002BB3BB50ED4 ] C:\WINDOWS\system32\services.exe
10:29:18.0765 3276 [Global] - ok
10:29:18.0765 3276 ================ Scan MBR ==================================
10:29:18.0796 3276 [ 5CB90281D1A59B251F6603134774EEC3 ] \Device\Harddisk0\DR0
10:29:19.0109 3276 \Device\Harddisk0\DR0 - ok
10:29:19.0109 3276 ================ Scan VBR ==================================
10:29:19.0125 3276 [ 2860AF43991D59E904A9CEA7DF8231F3 ] \Device\Harddisk0\DR0\Partition1
10:29:19.0125 3276 \Device\Harddisk0\DR0\Partition1 - ok
10:29:19.0125 3276 ============================================================
10:29:19.0125 3276 Scan finished
10:29:19.0125 3276 ============================================================
10:29:19.0140 3304 Detected object count: 27
10:29:19.0140 3304 Actual detected object count: 27
10:29:51.0734 3304 ASCTRM ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0734 3304 ASCTRM ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0734 3304 Cdr4_xp ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0734 3304 Cdr4_xp ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0734 3304 Cdralw2k ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0734 3304 Cdralw2k ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0734 3304 cercsr6 ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0734 3304 cercsr6 ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0734 3304 Creative Labs Licensing Service ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0734 3304 Creative Labs Licensing Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0734 3304 Creative Service for CDROM Access ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0734 3304 Creative Service for CDROM Access ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0750 3304 DLABOIOM ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0750 3304 DLABOIOM ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0750 3304 DLACDBHM ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0750 3304 DLACDBHM ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0750 3304 DLADResN ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0750 3304 DLADResN ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0750 3304 DLAIFS_M ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0750 3304 DLAIFS_M ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0750 3304 DLAOPIOM ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0750 3304 DLAOPIOM ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0765 3304 DLAPoolM ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0765 3304 DLAPoolM ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0765 3304 DLARTL_N ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0765 3304 DLARTL_N ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0765 3304 DLAUDFAM ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0765 3304 DLAUDFAM ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0765 3304 DLAUDF_M ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0765 3304 DLAUDF_M ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0765 3304 Dot3svc ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0765 3304 Dot3svc ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0781 3304 DRVMCDB ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0781 3304 DRVMCDB ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0781 3304 DRVNDDM ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0781 3304 DRVNDDM ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0781 3304 DSproct ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0781 3304 DSproct ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0781 3304 EapHost ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0781 3304 EapHost ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0781 3304 HDAudBus ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0781 3304 HDAudBus ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0796 3304 hkmsvc ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0796 3304 hkmsvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0796 3304 napagent ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0796 3304 napagent ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0796 3304 NetSvc ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0796 3304 NetSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0796 3304 WLSetupSvc ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0796 3304 WLSetupSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0796 3304 WMDM PMSP Service ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0796 3304 WMDM PMSP Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:51.0796 3304 WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - skipped by user
10:29:51.0796 3304 WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:29:55.0546 1784 Deinitialize success
 
I ran tdsskiller a second time because I did not think it worked. I believe it found a few more items the second time it scanned. do you want that log as well? also there was no option for "cure". there was simply "skip, delete, copy to quarantine" I believe.
 
Good work!

ESET Online Scan

Please run a free online scan with the ESET Online Scanner
  • Tick the box next to YES, I accept the Terms of Use
  • Click Start
  • When asked, allow the ActiveX control to install, or it will ask to download an installer. Please do so an install it.
  • Click Start or wait for the scanner to load.
  • Make sure that the options Remove found threats and the option Scan unwanted applications are checked.
  • Click Scan (This scan can take several hours, so please be patient)
  • Once the scan is completed, there are a couple of things to keep in mind:
  • 1. If NO threats were found, allow the scanner to Uninstall on close and then close the Window.
  • 2. If threats WERE detected, click on List of Threats Found, Export to Text File...save it as ESET-Scan-Log.txt. Click the back button/link, put a checkmark to Uninstall Application on Close and then close the window.
  • Open the logfile from wherever you saved it
  • Copy and paste the contents in your next reply.

Any more issues?

We need to know any other issues that are plaguing your computer. Kindly give a summary so we know how to continue from here.

Many of the things to note for us would be:

  • Slow computer
  • Error messages
  • Fake antivirus alerts or the icon in the system tray
  • svchost.exe running at 100%
  • System crashes or blue screen of death
 
Hi there. It all appears to be good, so we will finish up to make sure your computer is protected from malware in the future.

Clean up System Restore

Now, to get you off to a clean start, we will be creating a new Restore Point, then clearing the old ones to make sure you do not get reinfected, in case you need to "restore back."
  • Select Start > All Programs > Accessories > System tools > System Restore.
  • On the dialogue box that appears select Create a Restore Point
  • Click NEXT
  • Enter a name e.g. Clean
  • Click CREATE
You now have a clean restore point, to get rid of the bad ones:
  • Select Start > All Programs > Accessories > System tools > Disk Cleanup.
  • In the Drop down box that appears select your main drive e.g. C
  • Click OK
  • The System will do some calculation and the display a dialogue box with TABS
  • Select the More Options Tab.
  • At the bottom will be a system restore box with a CLEANUP button click this
  • Accept the Warning and select OK again, the program will close and you are done

Run OTC to remove our tools

To remove all of the tools we used and the files and folders they created, please do the following:
Please download OTC.exe by OldTimer:
  • Save it to your Desktop.
  • Double click OTC.exe.
  • Click the CleanUp! button.
  • If you are prompted to Reboot during the cleanup, select Yes.
  • The tool will delete itself once it finishes.
Note:If any tool, file or folder (belonging to the program we have used) hasn't been deleted, please delete it manually.

Purge old temporary files

NOTE: If you already have this installed, you don't have to reinstall it.

Please download CCleaner Slim and save it to your Desktop - Alternate download link

When the file has been saved, go to your Desktop and double-click on ccsetupxxx_slim.exe
Follow the prompts to install the program.

  • Double-click the CCleaner shortcut on the desktop to start the program.
  • A prompt will ask you if you want CCleaner to do a check to see what cookies it needs to keep. Allow that operation.
  • On the Cleaner tab, click on Run Cleaner on the bottom-right to run the program.
  • Important: Make sure that ALL browser windows are closed before selecting Run Cleaner, or it will ask if you want the program to close them for you (when you do this, all unsaved data may be lost in the browser).

Caution: Only use the Registry feature if you are very familiar with the registry.
Always back up your registry before making any changes. Exit CCleaner after it has completed it's process.

Security Check

Please download Security Check by screen317 from SpywareInfoforum.org or Changelog.fr.
  • Save it to your Desktop.
  • Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
  • A Notepad document should open automatically called checkup.txt; please post the contents of that document.
 
Status
Not open for further replies.
Back