16:30:41.0232 4816 TDSS rootkit removing tool 2.7.26.0 Apr 4 2012 19:52:02
16:30:41.0700 4816 ============================================================
16:30:41.0700 4816 Current date / time: 2012/04/08 16:30:41.0700
16:30:41.0700 4816 SystemInfo:
16:30:41.0700 4816
16:30:41.0700 4816 OS Version: 6.1.7601 ServicePack: 1.0
16:30:41.0700 4816 Product type: Workstation
16:30:41.0700 4816 ComputerName: ADAM-HP
16:30:41.0700 4816 UserName: Adam
16:30:41.0700 4816 Windows directory: C:\Windows
16:30:41.0700 4816 System windows directory: C:\Windows
16:30:41.0700 4816 Running under WOW64
16:30:41.0700 4816 Processor architecture: Intel x64
16:30:41.0700 4816 Number of processors: 2
16:30:41.0700 4816 Page size: 0x1000
16:30:41.0700 4816 Boot type: Normal boot
16:30:41.0700 4816 ============================================================
16:30:42.0870 4816 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
16:30:42.0870 4816 \Device\Harddisk0\DR0:
16:30:42.0870 4816 MBR used
16:30:42.0870 4816 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
16:30:42.0870 4816 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x387C3000
16:30:42.0870 4816 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x387F5800, BlocksNum 0x1B90000
16:30:42.0950 4816 Initialize success
16:30:42.0950 4816 ============================================================
16:30:44.0327 4964 ============================================================
16:30:44.0327 4964 Scan started
16:30:44.0327 4964 Mode: Manual;
16:30:44.0327 4964 ============================================================
16:30:46.0230 4964 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
16:30:46.0246 4964 1394ohci - ok
16:30:46.0277 4964 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
16:30:46.0277 4964 ACPI - ok
16:30:46.0308 4964 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
16:30:46.0308 4964 AcpiPmi - ok
16:30:46.0355 4964 ACPIService (de7e8d852a806be6091983838bf9697f) C:\Windows\system32\DRIVERS\OSDACPI.SYS
16:30:46.0355 4964 ACPIService - ok
16:30:46.0433 4964 adiusbaw (5f22132c9153639762708909f156b33d) C:\Windows\system32\kraidsvc.dll
16:30:46.0433 4964 adiusbaw ( Backdoor.Multi.ZAccess.gen ) - infected
16:30:46.0433 4964 adiusbaw - detected Backdoor.Multi.ZAccess.gen (0)
16:30:46.0480 4964 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys
16:30:46.0480 4964 adp94xx - ok
16:30:46.0511 4964 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys
16:30:46.0511 4964 adpahci - ok
16:30:46.0526 4964 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys
16:30:46.0526 4964 adpu320 - ok
16:30:46.0558 4964 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\Windows\System32\aelupsvc.dll
16:30:46.0558 4964 AeLookupSvc - ok
16:30:46.0636 4964 AERTFilters (d1e343bc00136ce03c4d403194d06a80) C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE
16:30:46.0636 4964 AERTFilters - ok
16:30:46.0698 4964 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys
16:30:46.0698 4964 AFD - ok
16:30:46.0729 4964 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
16:30:46.0729 4964 agp440 - ok
16:30:46.0760 4964 ALG (3290d6946b5e30e70414990574883ddb) C:\Windows\System32\alg.exe
16:30:46.0760 4964 ALG - ok
16:30:46.0776 4964 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
16:30:46.0776 4964 aliide - ok
16:30:46.0807 4964 AMD External Events Utility (ca0d6c1390f4b3baf2a0a69d1a7f8332) C:\Windows\system32\atiesrxx.exe
16:30:46.0807 4964 AMD External Events Utility - ok
16:30:46.0823 4964 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
16:30:46.0823 4964 amdide - ok
16:30:46.0838 4964 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys
16:30:46.0838 4964 AmdK8 - ok
16:30:46.0979 4964 amdkmdag (75e4baca583ae02c11e9ac8747e2abe0) C:\Windows\system32\DRIVERS\atikmdag.sys
16:30:47.0088 4964 amdkmdag - ok
16:30:47.0135 4964 amdkmdap (b765cf4b32f347be747b21ae22641025) C:\Windows\system32\DRIVERS\atikmpag.sys
16:30:47.0135 4964 amdkmdap - ok
16:30:47.0197 4964 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
16:30:47.0197 4964 AmdPPM - ok
16:30:47.0213 4964 amdsata (f747497a0ee5498f79b207f215b3d2d8) C:\Windows\system32\DRIVERS\amdsata.sys
16:30:47.0213 4964 amdsata - ok
16:30:47.0244 4964 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys
16:30:47.0244 4964 amdsbs - ok
16:30:47.0266 4964 amdxata (2946d695e158615baaa16248e63c7adb) C:\Windows\system32\DRIVERS\amdxata.sys
16:30:47.0266 4964 amdxata - ok
16:30:47.0297 4964 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
16:30:47.0297 4964 AppID - ok
16:30:47.0312 4964 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\Windows\System32\appidsvc.dll
16:30:47.0328 4964 AppIDSvc - ok
16:30:47.0390 4964 Appinfo (3977d4a871ca0d4f2ed1e7db46829731) C:\Windows\System32\appinfo.dll
16:30:47.0406 4964 Appinfo - ok
16:30:47.0734 4964 Apple Mobile Device (3debbecf665dcdde3a95d9b902010817) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
16:30:47.0734 4964 Apple Mobile Device - ok
16:30:47.0874 4964 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys
16:30:47.0874 4964 arc - ok
16:30:47.0890 4964 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys
16:30:47.0890 4964 arcsas - ok
16:30:47.0983 4964 aspnet_state (9217d874131ae6ff8f642f124f00a555) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
16:30:47.0999 4964 aspnet_state - ok
16:30:48.0030 4964 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
16:30:48.0030 4964 AsyncMac - ok
16:30:48.0092 4964 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
16:30:48.0092 4964 atapi - ok
16:30:48.0139 4964 AtiPcie (e82e61f46d1336447f4deff8c074f13e) C:\Windows\system32\DRIVERS\AtiPcie64.sys
16:30:48.0139 4964 AtiPcie - ok
16:30:48.0217 4964 AudioEndpointBuilder (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
16:30:48.0217 4964 AudioEndpointBuilder - ok
16:30:48.0233 4964 AudioSrv (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
16:30:48.0233 4964 AudioSrv - ok
16:30:48.0264 4964 AxInstSV (a6bf31a71b409dfa8cac83159e1e2aff) C:\Windows\System32\AxInstSV.dll
16:30:48.0264 4964 AxInstSV - ok
16:30:48.0295 4964 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys
16:30:48.0295 4964 b06bdrv - ok
16:30:48.0326 4964 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
16:30:48.0326 4964 b57nd60a - ok
16:30:48.0342 4964 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\Windows\System32\bdesvc.dll
16:30:48.0358 4964 BDESVC - ok
16:30:48.0373 4964 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
16:30:48.0373 4964 Beep - ok
16:30:48.0436 4964 BFE (82974d6a2fd19445cc5171fc378668a4) C:\Windows\System32\bfe.dll
16:30:48.0451 4964 BFE - ok
16:30:48.0482 4964 BITS (1ea7969e3271cbc59e1730697dc74682) C:\Windows\system32\qmgr.dll
16:30:48.0482 4964 BITS - ok
16:30:48.0498 4964 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
16:30:48.0498 4964 blbdrive - ok
16:30:48.0592 4964 Bonjour Service (ebbcd5dfbb1de70e8f4af8fa59e401fd) C:\Program Files\Bonjour\mDNSResponder.exe
16:30:48.0592 4964 Bonjour Service - ok
16:30:48.0638 4964 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
16:30:48.0638 4964 bowser - ok
16:30:48.0654 4964 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys
16:30:48.0654 4964 BrFiltLo - ok
16:30:48.0670 4964 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys
16:30:48.0670 4964 BrFiltUp - ok
16:30:48.0716 4964 BridgeMP (5c2f352a4e961d72518261257aae204b) C:\Windows\system32\DRIVERS\bridge.sys
16:30:48.0732 4964 BridgeMP - ok
16:30:48.0763 4964 Browser (8ef0d5c41ec907751b8429162b1239ed) C:\Windows\System32\browser.dll
16:30:48.0763 4964 Browser - ok
16:30:48.0779 4964 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
16:30:48.0779 4964 Brserid - ok
16:30:48.0794 4964 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
16:30:48.0810 4964 BrSerWdm - ok
16:30:48.0810 4964 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
16:30:48.0826 4964 BrUsbMdm - ok
16:30:48.0826 4964 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
16:30:48.0826 4964 BrUsbSer - ok
16:30:48.0841 4964 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
16:30:48.0841 4964 BTHMODEM - ok
16:30:48.0904 4964 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\Windows\system32\bthserv.dll
16:30:48.0904 4964 bthserv - ok
16:30:48.0950 4964 catchme - ok
16:30:48.0966 4964 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
16:30:48.0966 4964 cdfs - ok
16:30:49.0013 4964 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\DRIVERS\cdrom.sys
16:30:49.0028 4964 cdrom - ok
16:30:49.0075 4964 CertPropSvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
16:30:49.0075 4964 CertPropSvc - ok
16:30:49.0122 4964 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
16:30:49.0122 4964 circlass - ok
16:30:49.0138 4964 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
16:30:49.0153 4964 CLFS - ok
16:30:49.0184 4964 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
16:30:49.0184 4964 clr_optimization_v2.0.50727_32 - ok
16:30:49.0231 4964 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
16:30:49.0231 4964 clr_optimization_v2.0.50727_64 - ok
16:30:49.0309 4964 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
16:30:49.0309 4964 clr_optimization_v4.0.30319_32 - ok
16:30:49.0340 4964 clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
16:30:49.0340 4964 clr_optimization_v4.0.30319_64 - ok
16:30:49.0403 4964 clwvd (d68d9f4d53010b7e84d4e80a2e485554) C:\Windows\system32\DRIVERS\clwvd.sys
16:30:49.0403 4964 clwvd - ok
16:30:49.0434 4964 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
16:30:49.0450 4964 CmBatt - ok
16:30:49.0465 4964 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
16:30:49.0465 4964 cmdide - ok
16:30:49.0496 4964 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys
16:30:49.0496 4964 CNG - ok
16:30:49.0512 4964 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
16:30:49.0528 4964 Compbatt - ok
16:30:49.0574 4964 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys
16:30:49.0574 4964 CompositeBus - ok
16:30:49.0606 4964 COMSysApp - ok
16:30:49.0652 4964 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys
16:30:49.0652 4964 crcdisk - ok
16:30:49.0715 4964 CryptSvc (15597883fbe9b056f276ada3ad87d9af) C:\Windows\system32\cryptsvc.dll
16:30:49.0715 4964 CryptSvc - ok
16:30:49.0777 4964 DcomLaunch (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
16:30:49.0793 4964 DcomLaunch - ok
16:30:49.0824 4964 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\Windows\System32\defragsvc.dll
16:30:49.0840 4964 defragsvc - ok
16:30:49.0886 4964 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
16:30:49.0886 4964 DfsC - ok
16:30:49.0918 4964 Dhcp (43d808f5d9e1a18e5eeb5ebc83969e4e) C:\Windows\system32\dhcpcore.dll
16:30:49.0918 4964 Dhcp - ok
16:30:49.0933 4964 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
16:30:49.0933 4964 discache - ok
16:30:49.0996 4964 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys
16:30:49.0996 4964 Disk - ok
16:30:50.0011 4964 Dnscache (16835866aaa693c7d7fceba8fff706e4) C:\Windows\System32\dnsrslvr.dll
16:30:50.0027 4964 Dnscache - ok
16:30:50.0058 4964 dot3svc (b1fb3ddca0fdf408750d5843591afbc6) C:\Windows\System32\dot3svc.dll
16:30:50.0058 4964 dot3svc - ok
16:30:50.0120 4964 Dot4 (b42ed0320c6e41102fde0005154849bb) C:\Windows\system32\DRIVERS\Dot4.sys
16:30:50.0120 4964 Dot4 - ok
16:30:50.0183 4964 Dot4Print (e9f5969233c5d89f3c35e3a66a52a361) C:\Windows\system32\drivers\Dot4Prt.sys
16:30:50.0183 4964 Dot4Print - ok
16:30:50.0198 4964 dot4usb (fd05a02b0370bc3000f402e543ca5814) C:\Windows\system32\DRIVERS\dot4usb.sys
16:30:50.0198 4964 dot4usb - ok
16:30:50.0230 4964 DPS (b26f4f737e8f9df4f31af6cf31d05820) C:\Windows\system32\dps.dll
16:30:50.0245 4964 DPS - ok
16:30:50.0276 4964 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
16:30:50.0276 4964 drmkaud - ok
16:30:50.0354 4964 DTSRVC (b1b7de1ea520c84ab689be8c964fb850) C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DTSRVC.exe
16:30:50.0354 4964 DTSRVC - ok
16:30:50.0401 4964 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
16:30:50.0417 4964 DXGKrnl - ok
16:30:50.0479 4964 EapHost (e2dda8726da9cb5b2c4000c9018a9633) C:\Windows\System32\eapsvc.dll
16:30:50.0479 4964 EapHost - ok
16:30:50.0573 4964 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys
16:30:50.0635 4964 ebdrv - ok
16:30:50.0651 4964 EFS (c118a82cd78818c29ab228366ebf81c3) C:\Windows\System32\lsass.exe
16:30:50.0651 4964 EFS - ok
16:30:50.0698 4964 ehRecvr (c4002b6b41975f057d98c439030cea07) C:\Windows\ehome\ehRecvr.exe
16:30:50.0698 4964 ehRecvr - ok
16:30:50.0729 4964 ehSched (4705e8ef9934482c5bb488ce28afc681) C:\Windows\ehome\ehsched.exe
16:30:50.0729 4964 ehSched - ok
16:30:50.0791 4964 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys
16:30:50.0791 4964 elxstor - ok
16:30:50.0838 4964 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
16:30:50.0838 4964 ErrDev - ok
16:30:50.0900 4964 EventSystem (4166f82be4d24938977dd1746be9b8a0) C:\Windows\system32\es.dll
16:30:50.0916 4964 EventSystem - ok
16:30:50.0932 4964 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
16:30:50.0932 4964 exfat - ok
16:30:50.0963 4964 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
16:30:50.0963 4964 fastfat - ok
16:30:51.0025 4964 Fax (dbefd454f8318a0ef691fdd2eaab44eb) C:\Windows\system32\fxssvc.exe
16:30:51.0041 4964 Fax - ok
16:30:51.0056 4964 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
16:30:51.0056 4964 fdc - ok
16:30:51.0103 4964 fdPHost (0438cab2e03f4fb61455a7956026fe86) C:\Windows\system32\fdPHost.dll
16:30:51.0103 4964 fdPHost - ok
16:30:51.0119 4964 FDResPub (802496cb59a30349f9a6dd22d6947644) C:\Windows\system32\fdrespub.dll
16:30:51.0119 4964 FDResPub - ok
16:30:51.0166 4964 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
16:30:51.0166 4964 FileInfo - ok
16:30:51.0181 4964 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
16:30:51.0181 4964 Filetrace - ok
16:30:51.0197 4964 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
16:30:51.0197 4964 flpydisk - ok
16:30:51.0244 4964 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
16:30:51.0244 4964 FltMgr - ok
16:30:51.0306 4964 FontCache (5c4cb4086fb83115b153e47add961a0c) C:\Windows\system32\FntCache.dll
16:30:51.0337 4964 FontCache - ok
16:30:51.0400 4964 FontCache3.0.0.0 (a8b7f3818ab65695e3a0bb3279f6dce6) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
16:30:51.0400 4964 FontCache3.0.0.0 - ok
16:30:51.0431 4964 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
16:30:51.0431 4964 FsDepends - ok
16:30:51.0446 4964 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys
16:30:51.0446 4964 Fs_Rec - ok
16:30:51.0509 4964 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
16:30:51.0509 4964 fvevol - ok
16:30:51.0556 4964 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys
16:30:51.0571 4964 gagp30kx - ok
16:30:51.0634 4964 GEARAspiWDM (e403aacf8c7bb11375122d2464560311) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
16:30:51.0634 4964 GEARAspiWDM - ok
16:30:51.0665 4964 gpsvc (277bbc7e1aa1ee957f573a10eca7ef3a) C:\Windows\System32\gpsvc.dll
16:30:51.0680 4964 gpsvc - ok
16:30:51.0712 4964 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
16:30:51.0712 4964 hcw85cir - ok
16:30:51.0774 4964 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys
16:30:51.0790 4964 HdAudAddService - ok
16:30:51.0836 4964 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys
16:30:51.0836 4964 HDAudBus - ok
16:30:51.0852 4964 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys
16:30:51.0852 4964 HidBatt - ok
16:30:51.0883 4964 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys
16:30:51.0883 4964 HidBth - ok
16:30:51.0914 4964 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys
16:30:51.0914 4964 HidIr - ok
16:30:51.0930 4964 hidserv (bd9eb3958f213f96b97b1d897dee006d) C:\Windows\System32\hidserv.dll
16:30:51.0946 4964 hidserv - ok
16:30:51.0961 4964 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys
16:30:51.0961 4964 HidUsb - ok
16:30:51.0992 4964 hkmsvc (387e72e739e15e3d37907a86d9ff98e2) C:\Windows\system32\kmsvc.dll
16:30:51.0992 4964 hkmsvc - ok
16:30:52.0024 4964 HomeGroupListener (efdfb3dd38a4376f93e7985173813abd) C:\Windows\system32\ListSvc.dll
16:30:52.0024 4964 HomeGroupListener - ok
16:30:52.0070 4964 HomeGroupProvider (908acb1f594274965a53926b10c81e89) C:\Windows\system32\provsvc.dll
16:30:52.0070 4964 HomeGroupProvider - ok
16:30:52.0180 4964 HP Support Assistant Service (13bb1114451c63bfb41ba7daa4d70a29) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
16:30:52.0180 4964 HP Support Assistant Service - ok
16:30:52.0226 4964 HPClientSvc (3dc11a802353401332d49c3cbfbbe5fc) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
16:30:52.0226 4964 HPClientSvc - ok
16:30:52.0242 4964 HPDrvMntSvc.exe (bcc4a8b2e2e902f52e7f2e7d8e125765) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
16:30:52.0242 4964 HPDrvMntSvc.exe - ok
16:30:52.0273 4964 hpqwmiex (ec9739a46f1f83c6e52a7a4697f44a65) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
16:30:52.0273 4964 hpqwmiex - ok
16:30:52.0382 4964 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
16:30:52.0382 4964 HpSAMD - ok
16:30:52.0460 4964 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
16:30:52.0476 4964 HTTP - ok
16:30:52.0538 4964 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
16:30:52.0538 4964 hwpolicy - ok
16:30:52.0585 4964 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\drivers\i8042prt.sys
16:30:52.0585 4964 i8042prt - ok
16:30:52.0663 4964 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys
16:30:52.0663 4964 iaStorV - ok
16:30:52.0757 4964 idsvc (5988fc40f8db5b0739cd1e3a5d0d78bd) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
16:30:52.0772 4964 idsvc - ok
16:30:52.0804 4964 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys
16:30:52.0804 4964 iirsp - ok
16:30:52.0913 4964 IKEEXT (fcd84c381e0140af901e58d48882d26b) C:\Windows\System32\ikeext.dll
16:30:52.0944 4964 IKEEXT - ok
16:30:53.0162 4964 IntcAzAudAddService (cb5fd9b681ad43b560490b5283ddc1c1) C:\Windows\system32\drivers\RTKVHD64.sys
16:30:53.0178 4964 IntcAzAudAddService - ok
16:30:53.0194 4964 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
16:30:53.0194 4964 intelide - ok
16:30:53.0240 4964 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
16:30:53.0256 4964 intelppm - ok
16:30:53.0272 4964 IPBusEnum (098a91c54546a3b878dad6a7e90a455b) C:\Windows\system32\ipbusenum.dll
16:30:53.0287 4964 IPBusEnum - ok
16:30:53.0318 4964 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
16:30:53.0318 4964 IpFilterDriver - ok
16:30:53.0412 4964 iphlpsvc (a34a587fffd45fa649fba6d03784d257) C:\Windows\System32\iphlpsvc.dll
16:30:53.0428 4964 iphlpsvc - ok
16:30:53.0459 4964 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
16:30:53.0459 4964 IPMIDRV - ok
16:30:53.0474 4964 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
16:30:53.0474 4964 IPNAT - ok
16:30:53.0552 4964 iPod Service (ee4c2a137c7088911a8919effc9812e7) C:\Program Files\iPod\bin\iPodService.exe
16:30:53.0552 4964 iPod Service - ok
16:30:53.0615 4964 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
16:30:53.0615 4964 IRENUM - ok
16:30:53.0630 4964 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
16:30:53.0630 4964 isapnp - ok
16:30:53.0646 4964 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
16:30:53.0646 4964 iScsiPrt - ok
16:30:53.0677 4964 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys
16:30:53.0677 4964 kbdclass - ok
16:30:53.0708 4964 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\DRIVERS\kbdhid.sys
16:30:53.0708 4964 kbdhid - ok
16:30:53.0740 4964 KeyIso (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
16:30:53.0740 4964 KeyIso - ok
16:30:53.0755 4964 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys
16:30:53.0755 4964 KSecDD - ok
16:30:53.0771 4964 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys
16:30:53.0771 4964 KSecPkg - ok
16:30:53.0786 4964 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
16:30:53.0786 4964 ksthunk - ok
16:30:53.0833 4964 KtmRm (6ab66e16aa859232f64deb66887a8c9c) C:\Windows\system32\msdtckrm.dll
16:30:53.0849 4964 KtmRm - ok
16:30:53.0927 4964 LanmanServer (d9f42719019740baa6d1c6d536cbdaa6) C:\Windows\System32\srvsvc.dll
16:30:53.0927 4964 LanmanServer - ok
16:30:53.0974 4964 LanmanWorkstation (851a1382eed3e3a7476db004f4ee3e1a) C:\Windows\System32\wkssvc.dll
16:30:53.0974 4964 LanmanWorkstation - ok
16:30:54.0130 4964 Lavasoft Ad-Aware Service (ea38136981c61c571d52c380daad46ef) C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe
16:30:54.0145 4964 Lavasoft Ad-Aware Service - ok
16:30:54.0208 4964 Lbd (c8b3131857931ae76798a741cc52b021) C:\Windows\system32\DRIVERS\Lbd.sys
16:30:54.0208 4964 Lbd - ok
16:30:54.0286 4964 LightScribeService (b1e1c8bb1392537e4d415fcdcb93b1d3) c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
16:30:54.0286 4964 LightScribeService - ok
16:30:54.0348 4964 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
16:30:54.0348 4964 lltdio - ok
16:30:54.0410 4964 lltdsvc (c1185803384ab3feed115f79f109427f) C:\Windows\System32\lltdsvc.dll
16:30:54.0410 4964 lltdsvc - ok
16:30:54.0442 4964 lmhosts (f993a32249b66c9d622ea5592a8b76b8) C:\Windows\System32\lmhsvc.dll
16:30:54.0442 4964 lmhosts - ok
16:30:54.0473 4964 lmzkntba (37de5c89d49d8842c29504a7377c8bdc) C:\Windows\system32\drivers\lmzkntba.sys
16:30:54.0473 4964 lmzkntba - ok
16:30:54.0520 4964 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys
16:30:54.0520 4964 LSI_FC - ok
16:30:54.0535 4964 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys
16:30:54.0551 4964 LSI_SAS - ok
16:30:54.0566 4964 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys
16:30:54.0566 4964 LSI_SAS2 - ok
16:30:54.0566 4964 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys
16:30:54.0582 4964 LSI_SCSI - ok
16:30:54.0598 4964 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
16:30:54.0598 4964 luafv - ok
16:30:54.0644 4964 Mcx2Svc (0be09cd858abf9df6ed259d57a1a1663) C:\Windows\system32\Mcx2Svc.dll
16:30:54.0644 4964 Mcx2Svc - ok
16:30:54.0676 4964 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys
16:30:54.0676 4964 megasas - ok