This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

virus removal

52 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

1. Frequent blue screen 2. improper shut-downs 3. loss of sound in external websites and youtube 4. Firefox only able to open one application at the same time. 5. Malwarebytes detected and removed a few viruses but problems persisted 6. OTL scanning halted; error message: "list index out of bounds" - whatever that means I am not sure what to do next. I am directed to this forum from the software forum to see if any viruses are still in the system. Please advise what to do about OTL scan. I made sure that the copied text is correctly pasted into the OTL. Thanks
I checked that the pasted content was correct and repeated the scan. It gave the same results. It says: "list index out of bounds (406)" The scan goes on for a minute or so then it is marked as "Non-responsive" and after a couple of minutes it resumes the scan but stops at scanning Chrome. I do not know what means the error message. Prior to OTL downloadf McAfee flashed a couple of times with warning message which I dissmissed. Hopefully the problem is not caused by McAfee but if it transpires so I shall uninstall it for the duration of repairs. Please advise what to do. Thanks
Hello,
Welcome to WhatTheTech. My name is mowman, and I will be helping you fix your problems.

If you do not make a reply in 3 days, we will have to close your topic.

You may want to keep the link to this topic in your favorites. Alternatively, you can click the Options button at the top bar of this topic and Track this topic. The topics you are tracking can be found by clicking on My Topics at the top of any page.

Please take note of some guidelines for this fix:

•Refrain from making any changes to your computer including installing/uninstall programs, deleting files, modifying the registry, and running scanners or tools. Doing so could cause changes to the directions I have to give you and prolong the time required. Further more, you should not be taking any advice relating to this computer from any other source throughout the course of this fix.
•If you do not understand any step(s) provided, please do not hesitate to ask before continuing. I would much rather clarify instructions or explain them differently than have something important broken.
•Even if things appear to be better, it might not mean we are finished. Please continue to follow my instructions and reply back until I give you the "all clean". We do not want to clean you part-way, only to have the system re-infect itself.
•Please reply using the button in the lower right hand corner of your screen. Do not start a new topic. The logs that you post should be pasted directly into the reply.
Only attach them if requested or if they do not fit into the post





Please download TDSSKiller.zip
  • Extract it to your desktop
  • Double click TDSSKiller.exe
  • Press Start Scan
    • Only if Malicious objects are found then ensure Cure is selected
      If suspicious objects are found select skip
    • Then click Continue > Reboot now
  • Copy and paste the log in your next reply
    • A copy of the log will be saved automatically to the root of the drive (typically C:\)










Please download DDS by sUBs from one of the following links and save it to your desktop.
    • DDS.scr
    • DDS.pif
  • Disable any script blocking protection (How to Disable your Security Programs)
  • Double click DDS icon to run the tool (may take up to 3 minutes to run)
  • When done, DDS.txt will open.
  • After a few moments, attach.txt will open in a second window.
  • Save both reports to your desktop.
—————————————————
  • Post the contents of the DDS.txt report in your next reply
  • Attach the Attach.txt report to your post by scroling down to the Attachments area and then clicking Browse. Browse to where you saved the file, and click Open and then click UPLOAD.
This is the first report: 14:31:26.0213 5048 TDSS rootkit removing tool 2.7.34.0 May 2 2012 09:59:18 14:31:28.0217 5048 ============================================================ 14:31:28.0217 5048 Current date / time: 2012/05/03 14:31:28.0217 14:31:28.0217 5048 SystemInfo: 14:31:28.0217 5048 14:31:28.0217 5048 OS Version: 6.1.7601 ServicePack: 1.0 14:31:28.0217 5048 Product type: Workstation 14:31:28.0217 5048 ComputerName: CHRISTINA-TOSH 14:31:28.0218 5048 UserName: Christina 14:31:28.0218 5048 Windows directory: C:\Windows 14:31:28.0218 5048 System windows directory: C:\Windows 14:31:28.0218 5048 Running under WOW64 14:31:28.0218 5048 Processor architecture: Intel x64 14:31:28.0218 5048 Number of processors: 1 14:31:28.0218 5048 Page size: 0x1000 14:31:28.0218 5048 Boot type: Normal boot 14:31:28.0218 5048 ============================================================ 14:31:34.0460 5048 Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 14:31:34.0465 5048 ============================================================ 14:31:34.0465 5048 \Device\Harddisk0\DR0: 14:31:34.0465 5048 MBR partitions: 14:31:34.0466 5048 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0xC8800, BlocksNum 0xE86C000 14:31:34.0466 5048 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0xE934800, BlocksNum 0xE890800 14:31:34.0466 5048 ============================================================ 14:31:34.0537 5048 C: <-> \Device\Harddisk0\DR0\Partition0 14:31:34.0647 5048 D: <-> \Device\Harddisk0\DR0\Partition1 14:31:34.0726 5048 ============================================================ 14:31:34.0726 5048 Initialize success 14:31:34.0726 5048 ============================================================ 14:31:39.0080 2184 ============================================================ 14:31:39.0080 2184 Scan started 14:31:39.0080 2184 Mode: Manual; 14:31:39.0080 2184 ============================================================ 14:31:43.0050 2184 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys 14:31:43.0066 2184 1394ohci - ok 14:31:43.0167 2184 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys 14:31:43.0172 2184 ACPI - ok 14:31:43.0313 2184 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys 14:31:43.0315 2184 AcpiPmi - ok 14:31:44.0018 2184 AdobeARMservice (62b7936f9036dd6ed36e6a7efa805dc0) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 14:31:44.0064 2184 AdobeARMservice - ok 14:31:44.0493 2184 AdobeFlashPlayerUpdateSvc (459ac130c6ab892b1cd5d7544626efc5) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 14:31:44.0497 2184 AdobeFlashPlayerUpdateSvc - ok 14:31:44.0800 2184 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys 14:31:44.0920 2184 adp94xx - ok 14:31:45.0096 2184 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys 14:31:45.0164 2184 adpahci - ok 14:31:45.0318 2184 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys 14:31:45.0362 2184 adpu320 - ok 14:31:45.0465 2184 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\Windows\System32\aelupsvc.dll 14:31:45.0509 2184 AeLookupSvc - ok 14:31:45.0687 2184 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys 14:31:45.0885 2184 AFD - ok 14:31:46.0081 2184 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys 14:31:46.0084 2184 agp440 - ok 14:31:46.0159 2184 ALG (3290d6946b5e30e70414990574883ddb) C:\Windows\System32\alg.exe 14:31:46.0163 2184 ALG - ok 14:31:46.0237 2184 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys 14:31:46.0239 2184 aliide - ok 14:31:46.0280 2184 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys 14:31:46.0282 2184 amdide - ok 14:31:46.0388 2184 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys 14:31:46.0428 2184 AmdK8 - ok 14:31:46.0463 2184 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys 14:31:46.0467 2184 AmdPPM - ok 14:31:46.0528 2184 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys 14:31:46.0562 2184 amdsata - ok 14:31:46.0689 2184 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys 14:31:46.0693 2184 amdsbs - ok 14:31:46.0758 2184 amdxata (1142a21db581a84ea5597b03a26ebaa0) C:\Windows\system32\drivers\amdxata.sys 14:31:46.0839 2184 amdxata - ok 14:31:46.0947 2184 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys 14:31:46.0950 2184 AppID - ok 14:31:47.0067 2184 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\Windows\System32\appidsvc.dll 14:31:47.0072 2184 AppIDSvc - ok 14:31:47.0176 2184 Appinfo (3977d4a871ca0d4f2ed1e7db46829731) C:\Windows\System32\appinfo.dll 14:31:47.0179 2184 Appinfo - ok 14:31:47.0540 2184 Apple Mobile Device (d8e18021f91ad79ca8491cb5a5da22d4) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe 14:31:47.0588 2184 Apple Mobile Device - ok 14:31:47.0665 2184 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys 14:31:47.0670 2184 arc - ok 14:31:47.0857 2184 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys 14:31:47.0860 2184 arcsas - ok 14:31:48.0253 2184 aspnet_state (9217d874131ae6ff8f642f124f00a555) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe 14:31:48.0452 2184 aspnet_state - ok 14:31:48.0621 2184 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys 14:31:48.0622 2184 AsyncMac - ok 14:31:48.0746 2184 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys 14:31:48.0772 2184 atapi - ok 14:31:48.0941 2184 athr (d6cad7e5b05055bb8226bdcb1644da27) C:\Windows\system32\DRIVERS\athrx.sys 14:31:49.0009 2184 athr - ok 14:31:49.0610 2184 AudioEndpointBuilder (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll 14:31:49.0643 2184 AudioEndpointBuilder - ok 14:31:49.0658 2184 AudioSrv (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll 14:31:49.0664 2184 AudioSrv - ok 14:31:49.0808 2184 AxInstSV (a6bf31a71b409dfa8cac83159e1e2aff) C:\Windows\System32\AxInstSV.dll 14:31:49.0840 2184 AxInstSV - ok 14:31:49.0912 2184 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys 14:31:49.0936 2184 b06bdrv - ok 14:31:50.0001 2184 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys 14:31:50.0006 2184 b57nd60a - ok 14:31:50.0077 2184 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\Windows\System32\bdesvc.dll 14:31:50.0080 2184 BDESVC - ok 14:31:50.0124 2184 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys 14:31:50.0125 2184 Beep - ok 14:31:50.0231 2184 BFE (82974d6a2fd19445cc5171fc378668a4) C:\Windows\System32\bfe.dll 14:31:50.0240 2184 BFE - ok 14:31:50.0370 2184 BITS (1ea7969e3271cbc59e1730697dc74682) C:\Windows\System32\qmgr.dll 14:31:50.0474 2184 BITS - ok 14:31:50.0546 2184 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys 14:31:50.0548 2184 blbdrive - ok 14:31:50.0689 2184 Bonjour Service (ebbcd5dfbb1de70e8f4af8fa59e401fd) C:\Program Files\Bonjour\mDNSResponder.exe 14:31:50.0695 2184 Bonjour Service - ok 14:31:50.0744 2184 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys 14:31:50.0747 2184 bowser - ok 14:31:50.0779 2184 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys 14:31:50.0781 2184 BrFiltLo - ok 14:31:50.0816 2184 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys 14:31:50.0817 2184 BrFiltUp - ok 14:31:50.0868 2184 Browser (8ef0d5c41ec907751b8429162b1239ed) C:\Windows\System32\browser.dll 14:31:50.0870 2184 Browser - ok 14:31:50.0911 2184 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys 14:31:50.0915 2184 Brserid - ok 14:31:50.0960 2184 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys 14:31:50.0962 2184 BrSerWdm - ok 14:31:51.0009 2184 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys 14:31:51.0011 2184 BrUsbMdm - ok 14:31:51.0037 2184 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys 14:31:51.0050 2184 BrUsbSer - ok 14:31:51.0079 2184 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys 14:31:51.0081 2184 BTHMODEM - ok 14:31:51.0189 2184 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\Windows\system32\bthserv.dll 14:31:51.0278 2184 bthserv - ok 14:31:51.0328 2184 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys 14:31:51.0330 2184 cdfs - ok 14:31:51.0381 2184 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\DRIVERS\cdrom.sys 14:31:51.0407 2184 cdrom - ok 14:31:51.0472 2184 CertPropSvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll 14:31:51.0488 2184 CertPropSvc - ok 14:31:51.0622 2184 cfwids (ed0263b2eb24f0f4e3898036fa1d28a1) C:\Windows\system32\drivers\cfwids.sys 14:31:51.0721 2184 cfwids - ok 14:31:51.0855 2184 cfWiMAXService (41e7c4fa6491747402cfca77cc1c7aab) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe 14:31:51.0858 2184 cfWiMAXService - ok 14:31:51.0914 2184 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys 14:31:51.0917 2184 circlass - ok 14:31:52.0020 2184 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys 14:31:52.0194 2184 CLFS - ok 14:31:52.0680 2184 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 14:31:52.0936 2184 clr_optimization_v2.0.50727_32 - ok 14:31:53.0162 2184 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 14:31:53.0208 2184 clr_optimization_v2.0.50727_64 - ok 14:31:53.0697 2184 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 14:31:54.0585 2184 clr_optimization_v4.0.30319_32 - ok 14:31:54.0796 2184 clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe 14:31:55.0804 2184 clr_optimization_v4.0.30319_64 - ok 14:31:55.0983 2184 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys 14:31:55.0985 2184 CmBatt - ok 14:31:56.0147 2184 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys 14:31:56.0180 2184 cmdide - ok 14:31:56.0304 2184 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys 14:31:56.0312 2184 CNG - ok 14:31:56.0820 2184 CnxtHdAudService (66d12b53e117ef951d5e1ced03b4cc1b) C:\Windows\system32\drivers\CHDRT64.sys 14:31:56.0829 2184 CnxtHdAudService - ok 14:31:56.0938 2184 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys 14:31:56.0940 2184 Compbatt - ok 14:31:57.0108 2184 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\DRIVERS\CompositeBus.sys 14:31:57.0110 2184 CompositeBus - ok 14:31:57.0132 2184 COMSysApp - ok 14:31:57.0475 2184 ConfigFree Service (cab0eeaf5295fc96ddd3e19dce27e131) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe 14:31:57.0477 2184 ConfigFree Service - ok 14:31:57.0552 2184 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys 14:31:57.0553 2184 crcdisk - ok 14:31:57.0675 2184 CryptSvc (15597883fbe9b056f276ada3ad87d9af) C:\Windows\system32\cryptsvc.dll 14:31:57.0800 2184 CryptSvc - ok 14:31:57.0926 2184 DcomLaunch (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll 14:31:57.0988 2184 DcomLaunch - ok 14:31:58.0068 2184 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\Windows\System32\defragsvc.dll 14:31:58.0073 2184 defragsvc - ok 14:31:58.0220 2184 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys 14:31:58.0222 2184 DfsC - ok 14:31:58.0339 2184 Dhcp (43d808f5d9e1a18e5eeb5ebc83969e4e) C:\Windows\system32\dhcpcore.dll 14:31:58.0344 2184 Dhcp - ok 14:31:58.0380 2184 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys 14:31:58.0383 2184 discache - ok 14:31:58.0537 2184 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys 14:31:58.0574 2184 Disk - ok 14:31:58.0725 2184 Dnscache (16835866aaa693c7d7fceba8fff706e4) C:\Windows\System32\dnsrslvr.dll 14:31:58.0729 2184 Dnscache - ok 14:31:58.0776 2184 dot3svc (b1fb3ddca0fdf408750d5843591afbc6) C:\Windows\System32\dot3svc.dll 14:31:58.0780 2184 dot3svc - ok 14:31:58.0815 2184 DPS (b26f4f737e8f9df4f31af6cf31d05820) C:\Windows\system32\dps.dll 14:31:58.0820 2184 DPS - ok 14:31:58.0886 2184 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys 14:31:58.0888 2184 drmkaud - ok 14:31:59.0023 2184 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys 14:31:59.0053 2184 DXGKrnl - ok 14:31:59.0093 2184 EapHost (e2dda8726da9cb5b2c4000c9018a9633) C:\Windows\System32\eapsvc.dll 14:31:59.0096 2184 EapHost - ok 14:31:59.0481 2184 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys 14:31:59.0610 2184 ebdrv - ok 14:31:59.0961 2184 EFS (c118a82cd78818c29ab228366ebf81c3) C:\Windows\System32\lsass.exe 14:31:59.0963 2184 EFS - ok 14:32:00.0124 2184 ehRecvr (c4002b6b41975f057d98c439030cea07) C:\Windows\ehome\ehRecvr.exe 14:32:00.0275 2184 ehRecvr - ok 14:32:00.0303 2184 ehSched (4705e8ef9934482c5bb488ce28afc681) C:\Windows\ehome\ehsched.exe 14:32:00.0305 2184 ehSched - ok 14:32:00.0454 2184 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys 14:32:00.0472 2184 elxstor - ok 14:32:00.0537 2184 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys 14:32:00.0539 2184 ErrDev - ok 14:32:00.0648 2184 EventSystem (4166f82be4d24938977dd1746be9b8a0) C:\Windows\system32\es.dll 14:32:00.0653 2184 EventSystem - ok 14:32:01.0100 2184 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys 14:32:01.0121 2184 exfat - ok 14:32:01.0152 2184 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys 14:32:01.0156 2184 fastfat - ok 14:32:01.0261 2184 Fax (dbefd454f8318a0ef691fdd2eaab44eb) C:\Windows\system32\fxssvc.exe 14:32:01.0276 2184 Fax - ok 14:32:01.0308 2184 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys 14:32:01.0309 2184 fdc - ok 14:32:01.0408 2184 fdPHost (0438cab2e03f4fb61455a7956026fe86) C:\Windows\system32\fdPHost.dll 14:32:01.0410 2184 fdPHost - ok 14:32:01.0481 2184 FDResPub (802496cb59a30349f9a6dd22d6947644) C:\Windows\system32\fdrespub.dll 14:32:01.0483 2184 FDResPub - ok 14:32:01.0528 2184 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys 14:32:01.0532 2184 FileInfo - ok 14:32:01.0555 2184 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys 14:32:01.0557 2184 Filetrace - ok 14:32:01.0598 2184 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys 14:32:01.0600 2184 flpydisk - ok 14:32:01.0657 2184 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys 14:32:01.0672 2184 FltMgr - ok 14:32:01.0749 2184 FontCache (b4447f606bb19fd8ad0bafb59b90f5d9) C:\Windows\system32\FntCache.dll 14:32:01.0763 2184 FontCache - ok 14:32:01.0858 2184 FontCache3.0.0.0 (a8b7f3818ab65695e3a0bb3279f6dce6) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 14:32:01.0879 2184 FontCache3.0.0.0 - ok 14:32:01.0944 2184 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys 14:32:01.0947 2184 FsDepends - ok 14:32:01.0986 2184 Fs_Rec (6bd9295cc032dd3077c671fccf579a7b) C:\Windows\system32\drivers\Fs_Rec.sys 14:32:01.0988 2184 Fs_Rec - ok 14:32:02.0044 2184 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys 14:32:02.0048 2184 fvevol - ok 14:32:02.0158 2184 FwLnk (60acb128e64c35c2b4e4aab1b0a5c293) C:\Windows\system32\DRIVERS\FwLnk.sys 14:32:02.0160 2184 FwLnk - ok 14:32:02.0192 2184 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys 14:32:02.0194 2184 gagp30kx - ok 14:32:02.0274 2184 GEARAspiWDM (e403aacf8c7bb11375122d2464560311) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys 14:32:02.0275 2184 GEARAspiWDM - ok 14:32:02.0336 2184 gpsvc (277bbc7e1aa1ee957f573a10eca7ef3a) C:\Windows\System32\gpsvc.dll 14:32:02.0346 2184 gpsvc - ok 14:32:02.0509 2184 gupdate (f02a533f517eb38333cb12a9e8963773) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 14:32:02.0512 2184 gupdate - ok 14:32:02.0555 2184 gupdatem (f02a533f517eb38333cb12a9e8963773) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 14:32:02.0557 2184 gupdatem - ok 14:32:02.0618 2184 gusvc (cc839e8d766cc31a7710c9f38cf3e375) C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe 14:32:02.0623 2184 gusvc - ok 14:32:02.0654 2184 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys 14:32:02.0656 2184 hcw85cir - ok 14:32:02.0710 2184 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys 14:32:02.0742 2184 HdAudAddService - ok 14:32:02.0804 2184 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys 14:32:02.0808 2184 HDAudBus - ok 14:32:02.0851 2184 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys 14:32:02.0861 2184 HidBatt - ok 14:32:02.0893 2184 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys 14:32:02.0895 2184 HidBth - ok 14:32:02.0936 2184 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys 14:32:02.0940 2184 HidIr - ok 14:32:02.0973 2184 hidserv (bd9eb3958f213f96b97b1d897dee006d) C:\Windows\system32\hidserv.dll 14:32:02.0975 2184 hidserv - ok 14:32:03.0027 2184 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\drivers\hidusb.sys 14:32:03.0029 2184 HidUsb - ok 14:32:03.0101 2184 hkmsvc (387e72e739e15e3d37907a86d9ff98e2) C:\Windows\system32\kmsvc.dll 14:32:03.0104 2184 hkmsvc - ok 14:32:03.0197 2184 HomeGroupListener (efdfb3dd38a4376f93e7985173813abd) C:\Windows\system32\ListSvc.dll 14:32:03.0202 2184 HomeGroupListener - ok 14:32:03.0255 2184 HomeGroupProvider (908acb1f594274965a53926b10c81e89) C:\Windows\system32\provsvc.dll 14:32:03.0260 2184 HomeGroupProvider - ok 14:32:03.0650 2184 hpqcxs08 (1dae5c46d42b02a6d5862e1482efb390) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll 14:32:03.0695 2184 hpqcxs08 - ok 14:32:03.0803 2184 hpqddsvc (99e8eef42fe2f4af29b08c3355dd7685) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll 14:32:03.0835 2184 hpqddsvc - ok 14:32:03.0983 2184 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys 14:32:03.0995 2184 HpSAMD - ok 14:32:04.0274 2184 HPSLPSVC (f37882f128efacefe353e0bae2766909) C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL 14:32:04.0320 2184 HPSLPSVC - ok 14:32:04.0432 2184 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys 14:32:04.0512 2184 HTTP - ok 14:32:04.0564 2184 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys 14:32:04.0566 2184 hwpolicy - ok 14:32:04.0637 2184 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\DRIVERS\i8042prt.sys 14:32:04.0639 2184 i8042prt - ok 14:32:04.0733 2184 iaStor (bbb3b6df1abb0fe35802ede85cc1c011) C:\Windows\system32\DRIVERS\iaStor.sys 14:32:04.0737 2184 iaStor - ok 14:32:04.0837 2184 iaStorV (3df4395a7cf8b7a72a5f4606366b8c2d) C:\Windows\system32\drivers\iaStorV.sys 14:32:04.0855 2184 iaStorV - ok 14:32:05.0041 2184 IDriverT (6f95324909b502e2651442c1548ab12f) C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe 14:32:05.0073 2184 IDriverT - ok 14:32:05.0490 2184 idsvc (5988fc40f8db5b0739cd1e3a5d0d78bd) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 14:32:05.0574 2184 idsvc - ok 14:32:06.0633 2184 igfx (898ab5bfed7040d7ab07af01885eb944) C:\Windows\system32\DRIVERS\igdkmd64.sys 14:32:06.0880 2184 igfx - ok 14:32:07.0104 2184 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys 14:32:07.0163 2184 iirsp - ok 14:32:07.0317 2184 IKEEXT (fcd84c381e0140af901e58d48882d26b) C:\Windows\System32\ikeext.dll 14:32:07.0362 2184 IKEEXT - ok 14:32:07.0418 2184 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys 14:32:07.0420 2184 intelide - ok 14:32:07.0460 2184 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys 14:32:07.0462 2184 intelppm - ok 14:32:07.0502 2184 IPBusEnum (098a91c54546a3b878dad6a7e90a455b) C:\Windows\system32\ipbusenum.dll 14:32:07.0506 2184 IPBusEnum - ok 14:32:07.0554 2184 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys 14:32:07.0556 2184 IpFilterDriver - ok 14:32:07.0634 2184 iphlpsvc (a34a587fffd45fa649fba6d03784d257) C:\Windows\System32\iphlpsvc.dll 14:32:07.0646 2184 iphlpsvc - ok 14:32:07.0755 2184 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys 14:32:07.0757 2184 IPMIDRV - ok 14:32:07.0790 2184 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys 14:32:07.0819 2184 IPNAT - ok 14:32:08.0144 2184 iPod Service (3c0d4b3e80fc4854ca325dd123cc4ded) C:\Program Files\iPod\bin\iPodService.exe 14:32:08.0190 2184 iPod Service - ok 14:32:08.0252 2184 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys 14:32:08.0275 2184 IRENUM - ok 14:32:08.0303 2184 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys 14:32:08.0304 2184 isapnp - ok 14:32:08.0409 2184 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys 14:32:08.0454 2184 iScsiPrt - ok 14:32:08.0570 2184 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys 14:32:08.0573 2184 kbdclass - ok 14:32:08.0620 2184 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\drivers\kbdhid.sys 14:32:08.0622 2184 kbdhid - ok 14:32:08.0683 2184 KeyIso (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe 14:32:08.0685 2184 KeyIso - ok 14:32:08.0775 2184 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys 14:32:08.0798 2184 KSecDD - ok 14:32:08.0829 2184 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys 14:32:08.0855 2184 KSecPkg - ok 14:32:08.0935 2184 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys 14:32:08.0938 2184 ksthunk - ok 14:32:09.0000 2184 KtmRm (6ab66e16aa859232f64deb66887a8c9c) C:\Windows\system32\msdtckrm.dll 14:32:09.0007 2184 KtmRm - ok 14:32:09.0115 2184 L1C (0e154da6ca9105354a07d0c576804037) C:\Windows\system32\DRIVERS\L1C62x64.sys 14:32:09.0117 2184 L1C - ok 14:32:09.0201 2184 LanmanServer (d9f42719019740baa6d1c6d536cbdaa6) C:\Windows\system32\srvsvc.dll 14:32:09.0226 2184 LanmanServer - ok 14:32:09.0282 2184 LanmanWorkstation (851a1382eed3e3a7476db004f4ee3e1a) C:\Windows\System32\wkssvc.dll 14:32:09.0391 2184 LanmanWorkstation - ok 14:32:09.0511 2184 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys 14:32:09.0513 2184 lltdio - ok 14:32:09.0581 2184 lltdsvc (c1185803384ab3feed115f79f109427f) C:\Windows\System32\lltdsvc.dll 14:32:09.0586 2184 lltdsvc - ok 14:32:09.0672 2184 lmhosts (f993a32249b66c9d622ea5592a8b76b8) C:\Windows\System32\lmhsvc.dll 14:32:09.0675 2184 lmhosts - ok 14:32:09.0820 2184 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys 14:32:09.0842 2184 LSI_FC - ok 14:32:09.0860 2184 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\drivers\lsi_sas.sys 14:32:09.0863 2184 LSI_SAS - ok 14:32:09.0879 2184 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys 14:32:09.0881 2184 LSI_SAS2 - ok 14:32:09.0899 2184 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys 14:32:09.0920 2184 LSI_SCSI - ok 14:32:10.0019 2184 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys 14:32:10.0022 2184 luafv - ok 14:32:10.0151 2184 McAfee SiteAdvisor Service (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe 14:32:10.0154 2184 McAfee SiteAdvisor Service - ok 14:32:10.0206 2184 McMPFSvc (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe 14:32:10.0209 2184 McMPFSvc - ok 14:32:10.0244 2184 mcmscsvc (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe 14:32:10.0248 2184 mcmscsvc - ok 14:32:10.0278 2184 McNaiAnn (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe 14:32:10.0282 2184 McNaiAnn - ok 14:32:10.0314 2184 McNASvc (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe 14:32:10.0317 2184 McNASvc - ok 14:32:10.0453 2184 McODS (b3914a7c97a81acb1e9befe07e4c387f) C:\Program Files\McAfee\VirusScan\mcods.exe 14:32:10.0461 2184 McODS - ok 14:32:10.0524 2184 McProxy (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe 14:32:10.0527 2184 McProxy - ok 14:32:10.0608 2184 McPvDrv (a0c364079e7ae6c3127bee8e196f00e5) C:\Windows\system32\drivers\McPvDrv.sys 14:32:10.0611 2184 McPvDrv - ok 14:32:10.0696 2184 McShield (4a463d645b48bb487ca7df12ba5d1602) C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe 14:32:10.0701 2184 McShield - ok 14:32:10.0735 2184 Mcx2Svc (0be09cd858abf9df6ed259d57a1a1663) C:\Windows\system32\Mcx2Svc.dll 14:32:10.0738 2184 Mcx2Svc - ok 14:32:10.0768 2184 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys 14:32:10.0770 2184 megasas - ok 14:32:10.0804 2184 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys 14:32:10.0808 2184 MegaSR - ok 14:32:10.0974 2184 mfeapfk (ef3acfb7e3f82d5f7cde9ef5f0a4e2e2) C:\Windows\system32\drivers\mfeapfk.sys 14:32:10.0977 2184 mfeapfk - ok 14:32:11.0123 2184 mfeavfk (e7a60bdb4365b561d896019b82fb7dd0) C:\Windows\system32\drivers\mfeavfk.sys 14:32:11.0157 2184 mfeavfk - ok 14:32:11.0193 2184 mfeavfk01 - ok 14:32:11.0309 2184 mfefire (c53b7aba204d9f7e9568ec147a1485c5) C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe 14:32:11.0331 2184 mfefire - ok 14:32:11.0561 2184 mfefirek (670dffe55e2f9ab99d9169c428bcece9) C:\Windows\system32\drivers\mfefirek.sys 14:32:11.0592 2184 mfefirek - ok 14:32:11.0990 2184 mfehidk (1892616b7f9291fd77c3fa0a5811fe9f) C:\Windows\system32\drivers\mfehidk.sys 14:32:12.0049 2184 mfehidk - ok 14:32:12.0165 2184 mfenlfk (1721261c77f6e7a9e0cb51b7d9f31b60) C:\Windows\system32\DRIVERS\mfenlfk.sys 14:32:12.0192 2184 mfenlfk - ok 14:32:12.0282 2184 mferkdet (65776bd8029e409935b90de30bf99526) C:\Windows\system32\drivers\mferkdet.sys 14:32:12.0285 2184 mferkdet - ok 14:32:12.0331 2184 mfevtp (3ed58a36f7f7d60f0ef44d29810b0b80) C:\Windows\system32\mfevtps.exe 14:32:12.0333 2184 mfevtp - ok 14:32:12.0423 2184 mfewfpk (4f17d8b85b903d96ef7033bb6ef50516) C:\Windows\system32\drivers\mfewfpk.sys 14:32:12.0427 2184 mfewfpk - ok 14:32:12.0509 2184 MMCSS (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll 14:32:12.0516 2184 MMCSS - ok 14:32:12.0581 2184 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys 14:32:12.0583 2184 Modem - ok 14:32:12.0635 2184 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys 14:32:12.0637 2184 monitor - ok 14:32:12.0696 2184 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys 14:32:12.0698 2184 mouclass - ok 14:32:12.0748 2184 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys 14:32:12.0750 2184 mouhid - ok 14:32:12.0784 2184 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys 14:32:12.0787 2184 mountmgr - ok 14:32:12.0885 2184 MozillaMaintenance (96aa8ba23142cc8e2b30f3cae0c80254) C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 14:32:12.0888 2184 MozillaMaintenance - ok 14:32:12.0932 2184 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys 14:32:12.0935 2184 mpio - ok 14:32:12.0970 2184 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys 14:32:12.0972 2184 mpsdrv - ok 14:32:13.0103 2184 MpsSvc (54ffc9c8898113ace189d4aa7199d2c1) C:\Windows\system32\mpssvc.dll 14:32:13.0183 2184 MpsSvc - ok 14:32:13.0221 2184 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys 14:32:13.0224 2184 MRxDAV - ok 14:32:13.0266 2184 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys 14:32:13.0270 2184 mrxsmb - ok 14:32:13.0369 2184 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys 14:32:13.0420 2184 mrxsmb10 - ok 14:32:13.0437 2184 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys 14:32:13.0440 2184 mrxsmb20 - ok 14:32:13.0470 2184 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys 14:32:13.0472 2184 msahci - ok 14:32:13.0509 2184 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys 14:32:13.0516 2184 msdsm - ok 14:32:13.0587 2184 MSDTC (de0ece52236cfa3ed2dbfc03f28253a8) C:\Windows\System32\msdtc.exe 14:32:13.0591 2184 MSDTC - ok 14:32:13.0668 2184 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys 14:32:13.0670 2184 Msfs - ok 14:32:13.0782 2184 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys 14:32:13.0784 2184 mshidkmdf - ok 14:32:13.0945 2184 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys 14:32:13.0987 2184 msisadrv - ok 14:32:14.0102 2184 MSiSCSI (808e98ff49b155c522e6400953177b08) C:\Windows\system32\iscsiexe.dll 14:32:14.0106 2184 MSiSCSI - ok 14:32:14.0118 2184 msiserver - ok 14:32:14.0258 2184 MSK80Service (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe 14:32:14.0261 2184 MSK80Service - ok 14:32:14.0329 2184 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys 14:32:14.0330 2184 MSKSSRV - ok 14:32:14.0357 2184 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys 14:32:14.0358 2184 MSPCLOCK - ok 14:32:14.0417 2184 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys 14:32:14.0420 2184 MSPQM - ok 14:32:14.0487 2184 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys 14:32:14.0493 2184 MsRPC - ok 14:32:14.0523 2184 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\DRIVERS\mssmbios.sys 14:32:14.0525 2184 mssmbios - ok 14:32:14.0606 2184 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys 14:32:14.0608 2184 MSTEE - ok 14:32:14.0637 2184 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys 14:32:14.0639 2184 MTConfig - ok 14:32:14.0698 2184 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys 14:32:14.0700 2184 Mup - ok 14:32:14.0831 2184 napagent (582ac6d9873e31dfa28a4547270862dd) C:\Windows\system32\qagentRT.dll 14:32:14.0840 2184 napagent - ok 14:32:14.0901 2184 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys 14:32:14.0935 2184 NativeWifiP - ok 14:32:15.0183 2184 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys 14:32:15.0264 2184 NDIS - ok 14:32:15.0325 2184 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys 14:32:15.0327 2184 NdisCap - ok 14:32:15.0471 2184 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys 14:32:15.0473 2184 NdisTapi - ok 14:32:15.0531 2184 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys 14:32:15.0533 2184 Ndisuio - ok 14:32:15.0553 2184 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys 14:32:15.0556 2184 NdisWan - ok 14:32:15.0651 2184 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys 14:32:15.0653 2184 NDProxy - ok 14:32:16.0069 2184 Net Driver HPZ12 (2334dc48997ba203b794df3ee70521db) C:\Windows\system32\HPZinw12.dll 14:32:16.0072 2184 Net Driver HPZ12 - ok 14:32:16.0158 2184 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys 14:32:16.0161 2184 NetBIOS - ok 14:32:16.0204 2184 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys 14:32:16.0209 2184 NetBT - ok 14:32:16.0350 2184 Netlogon (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe 14:32:16.0353 2184 Netlogon - ok 14:32:16.0437 2184 Netman (847d3ae376c0817161a14a82c8922a9e) C:\Windows\System32\netman.dll 14:32:16.0444 2184 Netman - ok 14:32:16.0650 2184 NetMsmqActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:32:16.0737 2184 NetMsmqActivator - ok 14:32:16.0799 2184 NetPipeActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:32:16.0801 2184 NetPipeActivator - ok 14:32:16.0902 2184 netprofm (5f28111c648f1e24f7dbc87cdeb091b8) C:\Windows\System32\netprofm.dll 14:32:16.0909 2184 netprofm - ok 14:32:17.0045 2184 NetTcpActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:32:17.0047 2184 NetTcpActivator - ok 14:32:17.0221 2184 NetTcpPortSharing (3e5a36127e201ddf663176b66828fafe) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe 14:32:17.0226 2184 NetTcpPortSharing - ok 14:32:17.0375 2184 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys 14:32:17.0378 2184 nfrd960 - ok 14:32:17.0476 2184 NlaSvc (1ee99a89cc788ada662441d1e9830529) C:\Windows\System32\nlasvc.dll 14:32:17.0482 2184 NlaSvc - ok 14:32:17.0536 2184 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys 14:32:17.0538 2184 Npfs - ok 14:32:17.0617 2184 nsi (d54bfdf3e0c953f823b3d0bfe4732528) C:\Windows\system32\nsisvc.dll 14:32:17.0620 2184 nsi - ok 14:32:17.0678 2184 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys 14:32:17.0680 2184 nsiproxy - ok 14:32:17.0889 2184 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys 14:32:17.0935 2184 Ntfs - ok 14:32:18.0224 2184 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys 14:32:18.0233 2184 Null - ok 14:32:18.0275 2184 nvraid (5d9fd91f3d38dc9da01e3cb5fa89cd48) C:\Windows\system32\drivers\nvraid.sys 14:32:18.0278 2184 nvraid - ok 14:32:18.0312 2184 nvstor (f7cd50fe7139f07e77da8ac8033d1832) C:\Windows\system32\drivers\nvstor.sys 14:32:18.0315 2184 nvstor - ok 14:32:18.0451 2184 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys 14:32:18.0454 2184 nv_agp - ok 14:32:18.0512 2184 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys 14:32:18.0522 2184 ohci1394 - ok 14:32:18.0636 2184 ose (9d10f99a6712e28f8acd5641e3a7ea6b) C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 14:32:18.0643 2184 ose - ok 14:32:18.0783 2184 p2pimsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll 14:32:18.0788 2184 p2pimsvc - ok 14:32:18.0877 2184 p2psvc (927463ecb02179f88e4b9a17568c63c3) C:\Windows\system32\p2psvc.dll 14:32:18.0884 2184 p2psvc - ok 14:32:18.0963 2184 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys 14:32:18.0966 2184 Parport - ok 14:32:19.0014 2184 partmgr (871eadac56b0a4c6512bbe32753ccf79) C:\Windows\system32\drivers\partmgr.sys 14:32:19.0033 2184 partmgr - ok 14:32:19.0150 2184 PcaSvc (3aeaa8b561e63452c655dc0584922257) C:\Windows\System32\pcasvc.dll 14:32:19.0158 2184 PcaSvc - ok 14:32:19.0208 2184 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys 14:32:19.0211 2184 pci - ok 14:32:19.0237 2184 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys 14:32:19.0239 2184 pciide - ok 14:32:19.0285 2184 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys 14:32:19.0289 2184 pcmcia - ok 14:32:19.0338 2184 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys 14:32:19.0340 2184 pcw - ok 14:32:19.0488 2184 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys 14:32:19.0562 2184 PEAUTH - ok 14:32:19.0709 2184 PerfHost (e495e408c93141e8fc72dc0c6046ddfa) C:\Windows\SysWow64\perfhost.exe 14:32:19.0712 2184 PerfHost - ok 14:32:19.0925 2184 PGEffect (663962900e7fea522126ba287715bb4a) C:\Windows\system32\DRIVERS\pgeffect.sys 14:32:19.0927 2184 PGEffect - ok 14:32:20.0143 2184 pla (c7cf6a6e137463219e1259e3f0f0dd6c) C:\Windows\system32\pla.dll 14:32:20.0518 2184 pla - ok 14:32:20.0635 2184 PlugPlay (25fbdef06c4d92815b353f6e792c8129) C:\Windows\system32\umpnpmgr.dll 14:32:20.0717 2184 PlugPlay - ok 14:32:20.0905 2184 Pml Driver HPZ12 (ac78df349f0e4cfb8b667c0cfff83cce) C:\Windows\system32\HPZipm12.dll 14:32:20.0908 2184 Pml Driver HPZ12 - ok 14:32:20.0963 2184 PNRPAutoReg (7195581cec9bb7d12abe54036acc2e38) C:\Windows\system32\pnrpauto.dll 14:32:20.0966 2184 PNRPAutoReg - ok 14:32:21.0011 2184 PNRPsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll 14:32:21.0015 2184 PNRPsvc - ok 14:32:21.0092 2184 PolicyAgent (4f15d75adf6156bf56eced6d4a55c389) C:\Windows\System32\ipsecsvc.dll 14:32:21.0099 2184 PolicyAgent - ok 14:32:21.0236 2184 Power (6ba9d927dded70bd1a9caded45f8b184) C:\Windows\system32\umpo.dll 14:32:21.0266 2184 Power - ok 14:32:21.0444 2184 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys 14:32:21.0473 2184 PptpMiniport - ok 14:32:21.0552 2184 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys 14:32:21.0554 2184 Processor - ok 14:32:21.0631 2184 ProfSvc (5c78838b4d166d1a27db3a8a820c799a) C:\Windows\system32\profsvc.dll 14:32:21.0636 2184 ProfSvc - ok 14:32:21.0684 2184 ProtectedStorage (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe 14:32:21.0686 2184 ProtectedStorage - ok 14:32:21.0753 2184 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys 14:32:21.0756 2184 Psched - ok 14:32:21.0892 2184 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys 14:32:21.0947 2184 ql2300 - ok 14:32:22.0084 2184 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys 14:32:22.0087 2184 ql40xx - ok 14:32:22.0125 2184 QWAVE (906191634e99aea92c4816150bda3732) C:\Windows\system32\qwave.dll 14:32:22.0131 2184 QWAVE - ok 14:32:22.0164 2184 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys 14:32:22.0178 2184 QWAVEdrv - ok 14:32:22.0491 2184 RapportCerberus_32029 (68b15a9a2a35d7afa3bda1fb9edb84d0) C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\32029\RapportCerberus64_32029.sys 14:32:22.0626 2184 RapportCerberus_32029 - ok 14:32:22.0778 2184 RapportEI64 (8648b4268dfb90536e02dcb800991be8) C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys 14:32:22.0780 2184 RapportEI64 - ok 14:32:22.0898 2184 RapportKE64 (344373ad5b420b41daa74439f42a52e2) C:\Windows\system32\Drivers\RapportKE64.sys 14:32:22.0900 2184 RapportKE64 - ok 14:32:23.0134 2184 RapportMgmtService (af91ceb3a00f4b4d02c452e4c9e12f53) C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe 14:32:23.0173 2184 RapportMgmtService - ok 14:32:23.0292 2184 RapportPG64 (2ddc808aa69ec47465f4d13d16e4fe66) C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys 14:32:23.0294 2184 RapportPG64 - ok 14:32:23.0350 2184 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys 14:32:23.0352 2184 RasAcd - ok 14:32:23.0437 2184 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys 14:32:23.0439 2184 RasAgileVpn - ok 14:32:23.0766 2184 RasAuto (8f26510c5383b8dbe976de1cd00fc8c7) C:\Windows\System32\rasauto.dll 14:32:23.0771 2184 RasAuto - ok 14:32:23.0874 2184 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys 14:32:23.0877 2184 Rasl2tp - ok 14:32:24.0019 2184 RasMan (ee867a0870fc9e4972ba9eaad35651e2) C:\Windows\System32\rasmans.dll 14:32:24.0093 2184 RasMan - ok 14:32:24.0164 2184 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys 14:32:24.0167 2184 RasPppoe - ok 14:32:24.0251 2184 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys 14:32:24.0265 2184 RasSstp - ok 14:32:24.0347 2184 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys 14:32:24.0378 2184 rdbss - ok 14:32:24.0428 2184 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys 14:32:24.0429 2184 rdpbus - ok 14:32:24.0471 2184 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys 14:32:24.0473 2184 RDPCDD - ok 14:32:24.0604 2184 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys 14:32:24.0606 2184 RDPENCDD - ok 14:32:24.0628 2184 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys 14:32:24.0630 2184 RDPREFMP - ok 14:32:24.0743 2184 RDPWD (6d76e6433574b058adcb0c50df834492) C:\Windows\system32\drivers\RDPWD.sys 14:32:24.0747 2184 RDPWD - ok 14:32:24.0822 2184 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys 14:32:24.0827 2184 rdyboost - ok 14:32:24.0903 2184 RemoteAccess (254fb7a22d74e5511c73a3f6d802f192) C:\Windows\System32\mprdim.dll 14:32:24.0906 2184 RemoteAccess - ok 14:32:24.0987 2184 RemoteRegistry (e4d94f24081440b5fc5aa556c7c62702) C:\Windows\system32\regsvc.dll 14:32:24.0992 2184 RemoteRegistry - ok 14:32:25.0126 2184 RimUsb (71b48ddaf5e9c2b40e64de5c405f5aac) C:\Windows\system32\Drivers\RimUsb_AMD64.sys 14:32:25.0129 2184 RimUsb - ok 14:32:25.0298 2184 RimVSerPort (c903d49655b4aae46673f0aaa6be0f58) C:\Windows\system32\DRIVERS\RimSerial_AMD64.sys 14:32:25.0309 2184 RimVSerPort - ok 14:32:25.0379 2184 ROOTMODEM (388d3dd1a6457280f3badba9f3acd6b1) C:\Windows\system32\Drivers\RootMdm.sys 14:32:25.0381 2184 ROOTMODEM - ok 14:32:25.0437 2184 RpcEptMapper (e4dc58cf7b3ea515ae917ff0d402a7bb) C:\Windows\System32\RpcEpMap.dll 14:32:25.0440 2184 RpcEptMapper - ok 14:32:25.0474 2184 RpcLocator (d5ba242d4cf8e384db90e6a8ed850b8c) C:\Windows\system32\locator.exe 14:32:25.0476 2184 RpcLocator - ok 14:32:25.0573 2184 RpcSs (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll 14:32:25.0579 2184 RpcSs - ok 14:32:25.0618 2184 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys 14:32:25.0620 2184 rspndr - ok 14:32:25.0701 2184 RSUSBSTOR (907c4464381b5ebdfdc60f6c7d0dedfc) C:\Windows\system32\Drivers\RtsUStor.sys 14:32:25.0705 2184 RSUSBSTOR - ok 14:32:25.0739 2184 SamSs (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe 14:32:25.0741 2184 SamSs - ok 14:32:25.0788 2184 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys 14:32:25.0791 2184 sbp2port - ok 14:32:25.0842 2184 SCardSvr (9b7395789e3791a3b6d000fe6f8b131e) C:\Windows\System32\SCardSvr.dll 14:32:25.0852 2184 SCardSvr - ok 14:32:25.0894 2184 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys 14:32:25.0897 2184 scfilter - ok 14:32:25.0975 2184 Schedule (262f6592c3299c005fd6bec90fc4463a) C:\Windows\system32\schedsvc.dll 14:32:25.0989 2184 Schedule - ok 14:32:26.0028 2184 SCPolicySvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll 14:32:26.0029 2184 SCPolicySvc - ok 14:32:26.0072 2184 SDRSVC (6ea4234dc55346e0709560fe7c2c1972) C:\Windows\System32\SDRSVC.dll 14:32:26.0077 2184 SDRSVC - ok 14:32:26.0217 2184 SeaPort (331e7bde228914574fc9ae6cd520dafa) C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe 14:32:26.0220 2184 SeaPort - ok 14:32:26.0346 2184 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys 14:32:26.0348 2184 secdrv - ok 14:32:26.0410 2184 seclogon (bc617a4e1b4fa8df523a061739a0bd87) C:\Windows\system32\seclogon.dll 14:32:26.0413 2184 seclogon - ok 14:32:26.0448 2184 SENS (c32ab8fa018ef34c0f113bd501436d21) C:\Windows\System32\sens.dll 14:32:26.0452 2184 SENS - ok 14:32:26.0522 2184 SensrSvc (0336cffafaab87a11541f1cf1594b2b2) C:\Windows\system32\sensrsvc.dll 14:32:26.0525 2184 SensrSvc - ok 14:32:26.0693 2184 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys 14:32:26.0695 2184 Serenum - ok 14:32:26.0820 2184 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys 14:32:26.0823 2184 Serial - ok 14:32:26.0850 2184 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys 14:32:26.0854 2184 sermouse - ok 14:32:26.0920 2184 SessionEnv (0b6231bf38174a1628c4ac812cc75804) C:\Windows\system32\sessenv.dll 14:32:26.0971 2184 SessionEnv - ok 14:32:27.0015 2184 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys 14:32:27.0017 2184 sffdisk - ok 14:32:27.0067 2184 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys 14:32:27.0070 2184 sffp_mmc - ok 14:32:27.0106 2184 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys 14:32:27.0108 2184 sffp_sd - ok 14:32:27.0155 2184 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys 14:32:27.0157 2184 sfloppy - ok 14:32:27.0207 2184 SharedAccess (b95f6501a2f8b2e78c697fec401970ce) C:\Windows\System32\ipnathlp.dll 14:32:27.0213 2184 SharedAccess - ok 14:32:27.0301 2184 ShellHWDetection (aaf932b4011d14052955d4b212a4da8d) C:\Windows\System32\shsvcs.dll 14:32:27.0308 2184 ShellHWDetection - ok 14:32:27.0336 2184 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys 14:32:27.0376 2184 SiSRaid2 - ok 14:32:27.0484 2184 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys 14:32:27.0513 2184 SiSRaid4 - ok 14:32:27.0570 2184 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys 14:32:27.0574 2184 Smb - ok 14:32:27.0643 2184 SNMPTRAP (6313f223e817cc09aa41811daa7f541d) C:\Windows\System32\snmptrap.exe 14:32:27.0646 2184 SNMPTRAP - ok 14:32:27.0698 2184 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys 14:32:27.0700 2184 spldr - ok 14:32:27.0786 2184 Spooler (b96c17b5dc1424d56eea3a99e97428cd) C:\Windows\System32\spoolsv.exe 14:32:27.0792 2184 Spooler - ok 14:32:28.0128 2184 sppsvc (e17e0188bb90fae42d83e98707efa59c) C:\Windows\system32\sppsvc.exe 14:32:28.0306 2184 sppsvc - ok 14:32:28.0553 2184 sppuinotify (93d7d61317f3d4bc4f4e9f8a96a7de45) C:\Windows\system32\sppuinotify.dll 14:32:28.0574 2184 sppuinotify - ok 14:32:28.0751 2184 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys 14:32:28.0758 2184 srv - ok 14:32:28.0836 2184 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys 14:32:28.0846 2184 srv2 - ok 14:32:28.0886 2184 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys 14:32:28.0889 2184 srvnet - ok 14:32:28.0950 2184 SSDPSRV (51b52fbd583cde8aa9ba62b8b4298f33) C:\Windows\System32\ssdpsrv.dll 14:32:28.0954 2184 SSDPSRV - ok 14:32:28.0983 2184 SstpSvc (ab7aebf58dad8daab7a6c45e6a8885cb) C:\Windows\system32\sstpsvc.dll 14:32:28.0987 2184 SstpSvc - ok 14:32:29.0021 2184 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys 14:32:29.0024 2184 stexstor - ok 14:32:29.0119 2184 StillCam (decacb6921ded1a38642642685d77dac) C:\Windows\system32\DRIVERS\serscan.sys 14:32:29.0126 2184 StillCam - ok 14:32:29.0305 2184 stisvc (8dd52e8e6128f4b2da92ce27402871c1) C:\Windows\System32\wiaservc.dll 14:32:29.0360 2184 stisvc - ok 14:32:29.0399 2184 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\DRIVERS\swenum.sys 14:32:29.0402 2184 swenum - ok 14:32:29.0578 2184 swprv (e08e46fdd841b7184194011ca1955a0b) C:\Windows\System32\swprv.dll 14:32:29.0586 2184 swprv - ok 14:32:29.0726 2184 SynTP (470c47daba9ca3966f0ab3f835d7d135) C:\Windows\system32\DRIVERS\SynTP.sys 14:32:29.0730 2184 SynTP - ok 14:32:29.0984 2184 SysMain (bf9ccc0bf39b418c8d0ae8b05cf95b7d) C:\Windows\system32\sysmain.dll 14:32:30.0067 2184 SysMain - ok 14:32:30.0317 2184 TabletInputService (e3c61fd7b7c2557e1f1b0b4cec713585) C:\Windows\System32\TabSvc.dll 14:32:30.0321 2184 TabletInputService - ok 14:32:30.0388 2184 TapiSrv (40f0849f65d13ee87b9a9ae3c1dd6823) C:\Windows\System32\tapisrv.dll 14:32:30.0399 2184 TapiSrv - ok 14:32:30.0434 2184 TBS (1be03ac720f4d302ea01d40f588162f6) C:\Windows\System32\tbssvc.dll 14:32:30.0437 2184 TBS - ok 14:32:30.0575 2184 Tcpip (fc62769e7bff2896035aeed399108162) C:\Windows\system32\drivers\tcpip.sys 14:32:30.0642 2184 Tcpip - ok 14:32:31.0203 2184 TCPIP6 (fc62769e7bff2896035aeed399108162) C:\Windows\system32\DRIVERS\tcpip.sys 14:32:31.0235 2184 TCPIP6 - ok 14:32:31.0453 2184 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys 14:32:31.0455 2184 tcpipreg - ok 14:32:31.0530 2184 tdcmdpst (fd542b661bd22fa69ca789ad0ac58c29) C:\Windows\system32\DRIVERS\tdcmdpst.sys 14:32:31.0532 2184 tdcmdpst - ok 14:32:31.0623 2184 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys 14:32:31.0624 2184 TDPIPE - ok 14:32:31.0665 2184 TDTCP (51c5eceb1cdee2468a1748be550cfbc8) C:\Windows\system32\drivers\tdtcp.sys 14:32:31.0667 2184 TDTCP - ok 14:32:31.0720 2184 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys 14:32:31.0723 2184 tdx - ok 14:32:32.0120 2184 TeamViewer6 (8a9828975a857e477efef5a61ba45ac0) C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe 14:32:32.0138 2184 TeamViewer6 - ok 14:32:32.0311 2184 TemproMonitoringService (1b709733a04dcc41a63f9cd1f76a4ebe) C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe 14:32:32.0313 2184 TemproMonitoringService - ok 14:32:32.0922 2184 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\DRIVERS\termdd.sys 14:32:32.0924 2184 TermDD - ok 14:32:33.0061 2184 TermService (2e648163254233755035b46dd7b89123) C:\Windows\System32\termsrv.dll 14:32:33.0072 2184 TermService - ok 14:32:33.0116 2184 Themes (f0344071948d1a1fa732231785a0664c) C:\Windows\system32\themeservice.dll 14:32:33.0161 2184 Themes - ok 14:32:33.0220 2184 THREADORDER (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll 14:32:33.0224 2184 THREADORDER - ok 14:32:33.0388 2184 TMachInfo (28644b0523d64eff2fc7312a2ee74b0a) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe 14:32:33.0508 2184 TMachInfo - ok 14:32:33.0621 2184 TODDSrv (ed32035bdfeced1ad66d459fd9cc1140) C:\Windows\system32\TODDSrv.exe 14:32:33.0625 2184 TODDSrv - ok 14:32:33.0823 2184 TosCoSrv (98c864481d62f86ec8af65be3419a95b) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe 14:32:33.0828 2184 TosCoSrv - ok 14:32:34.0085 2184 TOSHIBA HDD SSD Alert Service (74c2fa8c3765ee71a9c22182ec108457) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe 14:32:34.0146 2184 TOSHIBA HDD SSD Alert Service - ok 14:32:34.0213 2184 TrkWks (7e7afd841694f6ac397e99d75cead49d) C:\Windows\System32\trkwks.dll 14:32:34.0217 2184 TrkWks - ok 14:32:34.0350 2184 TrustedInstaller (773212b2aaa24c1e31f10246b15b276c) C:\Windows\servicing\TrustedInstaller.exe 14:32:34.0355 2184 TrustedInstaller - ok 14:32:34.0474 2184 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys 14:32:34.0476 2184 tssecsrv - ok 14:32:34.0625 2184 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys 14:32:34.0647 2184 TsUsbFlt - ok 14:32:34.0842 2184 TsUsbGD (9cc2ccae8a84820eaecb886d477cbcb8) C:\Windows\system32\drivers\TsUsbGD.sys 14:32:34.0844 2184 TsUsbGD - ok 14:32:35.0353 2184 TuneUp.UtilitiesSvc (535a376629a37e03f993d769490e8eed) C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe 14:32:35.0430 2184 TuneUp.UtilitiesSvc - ok 14:32:35.0836 2184 TuneUpUtilitiesDrv (dcc94c51d27c7ec0dadeca8f64c94fcf) C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesDriver64.sys 14:32:35.0838 2184 TuneUpUtilitiesDrv - ok 14:32:36.0128 2184 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys 14:32:36.0131 2184 tunnel - ok 14:32:36.0182 2184 TVALZ (550b567f9364d8f7684c3fb3ea665a72) C:\Windows\system32\DRIVERS\TVALZ_O.SYS 14:32:36.0184 2184 TVALZ - ok 14:32:36.0221 2184 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys 14:32:36.0237 2184 uagp35 - ok 14:32:36.0305 2184 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys 14:32:36.0312 2184 udfs - ok 14:32:36.0422 2184 UI0Detect (3cbdec8d06b9968aba702eba076364a1) C:\Windows\system32\UI0Detect.exe 14:32:36.0425 2184 UI0Detect - ok 14:32:36.0537 2184 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys 14:32:36.0541 2184 uliagpkx - ok 14:32:36.0600 2184 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\DRIVERS\umbus.sys 14:32:36.0602 2184 umbus - ok 14:32:36.0655 2184 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys 14:32:36.0658 2184 UmPass - ok 14:32:36.0801 2184 upnphost (d47ec6a8e81633dd18d2436b19baf6de) C:\Windows\System32\upnphost.dll 14:32:36.0808 2184 upnphost - ok 14:32:36.0900 2184 USBAAPL64 (aa33fc47ed58c34e6e9261e4f850b7eb) C:\Windows\system32\Drivers\usbaapl64.sys 14:32:37.0067 2184 USBAAPL64 - ok 14:32:37.0241 2184 usbaudio (82e8f44688e6fac57b5b7c6fc7adbc2a) C:\Windows\system32\drivers\usbaudio.sys 14:32:37.0245 2184 usbaudio - ok 14:32:37.0298 2184 usbccgp (481dff26b4dca8f4cbac1f7dce1d6829) C:\Windows\system32\DRIVERS\usbccgp.sys 14:32:37.0301 2184 usbccgp - ok 14:32:37.0448 2184 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys 14:32:37.0485 2184 usbcir - ok 14:32:37.0935 2184 usbehci (74ee782b1d9c241efe425565854c661c) C:\Windows\system32\DRIVERS\usbehci.sys 14:32:37.0953 2184 usbehci - ok 14:32:38.0056 2184 usbhub (dc96bd9ccb8403251bcf25047573558e) C:\Windows\system32\DRIVERS\usbhub.sys 14:32:38.0117 2184 usbhub - ok 14:32:38.0159 2184 usbohci (58e546bbaf87664fc57e0f6081e4f609) C:\Windows\system32\drivers\usbohci.sys 14:32:38.0161 2184 usbohci - ok 14:32:38.0310 2184 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\drivers\usbprint.sys 14:32:38.0312 2184 usbprint - ok 14:32:38.0368 2184 USBSTOR (d76510cfa0fc09023077f22c2f979d86) C:\Windows\system32\drivers\USBSTOR.SYS 14:32:38.0371 2184 USBSTOR - ok 14:32:38.0531 2184 usbuhci (81fb2216d3a60d1284455d511797db3d) C:\Windows\system32\DRIVERS\usbuhci.sys 14:32:38.0553 2184 usbuhci - ok 14:32:38.0923 2184 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\System32\Drivers\usbvideo.sys 14:32:38.0927 2184 usbvideo - ok 14:32:38.0997 2184 UxSms (edbb23cbcf2cdf727d64ff9b51a6070e) C:\Windows\System32\uxsms.dll 14:32:39.0000 2184 UxSms - ok 14:32:39.0434 2184 UxTuneUp (6f10c7ff1f1e3f45d7e20dd6e398682e) C:\Windows\System32\uxtuneup.dll 14:32:39.0451 2184 UxTuneUp - ok 14:32:39.0617 2184 VaultSvc (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe 14:32:39.0619 2184 VaultSvc - ok 14:32:39.0760 2184 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys 14:32:39.0762 2184 vdrvroot - ok 14:32:39.0832 2184 vds (8d6b481601d01a456e75c3210f1830be) C:\Windows\System32\vds.exe 14:32:39.0845 2184 vds - ok 14:32:39.0930 2184 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys 14:32:39.0932 2184 vga - ok 14:32:39.0960 2184 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys 14:32:39.0962 2184 VgaSave - ok 14:32:40.0061 2184 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys 14:32:40.0114 2184 vhdmp - ok 14:32:40.0156 2184 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys 14:32:40.0157 2184 viaide - ok 14:32:40.0217 2184 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys 14:32:40.0220 2184 volmgr - ok 14:32:40.0278 2184 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys 14:32:40.0300 2184 volmgrx - ok 14:32:40.0382 2184 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys 14:32:40.0387 2184 volsnap - ok 14:32:40.0453 2184 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys 14:32:40.0456 2184 vsmraid - ok 14:32:40.0697 2184 VSS (b60ba0bc31b0cb414593e169f6f21cc2) C:\Windows\system32\vssvc.exe 14:32:40.0797 2184 VSS - ok 14:32:41.0080 2184 vToolbarUpdater (980e45498392e6659d2e7c44e7de2336) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\10.0.6\ToolbarUpdater.exe 14:32:41.0087 2184 vToolbarUpdater - ok 14:32:41.0823 2184 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\System32\drivers\vwifibus.sys 14:32:41.0825 2184 vwifibus - ok 14:32:41.0941 2184 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys 14:32:41.0943 2184 vwififlt - ok 14:32:42.0167 2184 vwifimp (6a638fc4bfddc4d9b186c28c91bd1a01) C:\Windows\system32\DRIVERS\vwifimp.sys 14:32:42.0169 2184 vwifimp - ok 14:32:42.0254 2184 W32Time (1c9d80cc3849b3788048078c26486e1a) C:\Windows\system32\w32time.dll 14:32:42.0281 2184 W32Time - ok 14:32:42.0321 2184 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys 14:32:42.0323 2184 WacomPen - ok 14:32:42.0464 2184 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys 14:32:42.0476 2184 WANARP - ok 14:32:42.0514 2184 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys 14:32:42.0516 2184 Wanarpv6 - ok 14:32:42.0717 2184 WatAdminSvc (3cec96de223e49eaae3651fcf8faea6c) C:\Windows\system32\Wat\WatAdminSvc.exe 14:32:42.0788 2184 WatAdminSvc - ok 14:32:43.0128 2184 wbengine (78f4e7f5c56cb9716238eb57da4b6a75) C:\Windows\system32\wbengine.exe 14:32:43.0222 2184 wbengine - ok 14:32:43.0458 2184 WbioSrvc (3aa101e8edab2db4131333f4325c76a3) C:\Windows\System32\wbiosrvc.dll 14:32:43.0464 2184 WbioSrvc - ok 14:32:43.0523 2184 wcncsvc (7368a2afd46e5a4481d1de9d14848edd) C:\Windows\System32\wcncsvc.dll 14:32:43.0539 2184 wcncsvc - ok 14:32:43.0582 2184 WcsPlugInService (20f7441334b18cee52027661df4a6129) C:\Windows\System32\WcsPlugInService.dll 14:32:43.0585 2184 WcsPlugInService - ok 14:32:43.0710 2184 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys 14:32:43.0712 2184 Wd - ok 14:32:43.0774 2184 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys 14:32:43.0782 2184 Wdf01000 - ok 14:32:43.0843 2184 WdiServiceHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll 14:32:43.0848 2184 WdiServiceHost - ok 14:32:43.0864 2184 WdiSystemHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll 14:32:43.0870 2184 WdiSystemHost - ok 14:32:43.0906 2184 WebClient (3db6d04e1c64272f8b14eb8bc4616280) C:\Windows\System32\webclnt.dll 14:32:43.0972 2184 WebClient - ok 14:32:44.0029 2184 Wecsvc (c749025a679c5103e575e3b48e092c43) C:\Windows\system32\wecsvc.dll 14:32:44.0041 2184 Wecsvc - ok 14:32:44.0174 2184 wercplsupport (7e591867422dc788b9e5bd337a669a08) C:\Windows\System32\wercplsupport.dll 14:32:44.0196 2184 wercplsupport - ok 14:32:44.0259 2184 WerSvc (6d137963730144698cbd10f202e9f251) C:\Windows\System32\WerSvc.dll 14:32:44.0262 2184 WerSvc - ok 14:32:44.0404 2184 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys 14:32:44.0406 2184 WfpLwf - ok 14:32:44.0441 2184 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys 14:32:44.0442 2184 WIMMount - ok 14:32:44.0610 2184 WinDefend - ok 14:32:44.0703 2184 WinHttpAutoProxySvc - ok 14:32:44.0840 2184 Winmgmt (19b07e7e8915d701225da41cb3877306) C:\Windows\system32\wbem\WMIsvc.dll 14:32:44.0844 2184 Winmgmt - ok 14:32:45.0309 2184 WinRM (bcb1310604aa415c4508708975b3931e) C:\Windows\system32\WsmSvc.dll 14:32:45.0462 2184 WinRM - ok 14:32:46.0077 2184 WinUsb (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUsb.sys 14:32:46.0079 2184 WinUsb - ok 14:32:46.0306 2184 Wlansvc (4fada86e62f18a1b2f42ba18ae24e6aa) C:\Windows\System32\wlansvc.dll 14:32:46.0341 2184 Wlansvc - ok 14:32:46.0412 2184 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys 14:32:46.0414 2184 WmiAcpi - ok 14:32:46.0524 2184 wmiApSrv (38b84c94c5a8af291adfea478ae54f93) C:\Windows\system32\wbem\WmiApSrv.exe 14:32:46.0529 2184 wmiApSrv - ok 14:32:46.0653 2184 WMPNetworkSvc - ok 14:32:46.0793 2184 WPCSvc (96c6e7100d724c69fcf9e7bf590d1dca) C:\Windows\System32\wpcsvc.dll 14:32:46.0798 2184 WPCSvc - ok 14:32:46.0890 2184 WPDBusEnum (93221146d4ebbf314c29b23cd6cc391d) C:\Windows\system32\wpdbusenum.dll 14:32:46.0913 2184 WPDBusEnum - ok 14:32:46.0964 2184 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys 14:32:46.0972 2184 ws2ifsl - ok 14:32:47.0048 2184 wscsvc (e8b1fe6669397d1772d8196df0e57a9e) C:\Windows\System32\wscsvc.dll 14:32:47.0058 2184 wscsvc - ok 14:32:47.0072 2184 WSearch - ok 14:32:47.0395 2184 wuauserv (9df12edbc698b0bc353b3ef84861e430) C:\Windows\system32\wuaueng.dll 14:32:47.0464 2184 wuauserv - ok 14:32:47.0849 2184 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys 14:32:47.0893 2184 WudfPf - ok 14:32:47.0997 2184 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys 14:32:48.0000 2184 WUDFRd - ok 14:32:48.0075 2184 wudfsvc (7a95c95b6c4cf292d689106bcae49543) C:\Windows\System32\WUDFSvc.dll 14:32:48.0079 2184 wudfsvc - ok 14:32:48.0148 2184 WwanSvc (9a3452b3c2a46c073166c5cf49fad1ae) C:\Windows\System32\wwansvc.dll 14:32:48.0164 2184 WwanSvc - ok 14:32:48.0504 2184 YahooAUService (dd0042f0c3b606a6a8b92d49afb18ad6) C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe 14:32:48.0509 2184 YahooAUService - ok 14:32:48.0662 2184 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0 14:32:48.0852 2184 \Device\Harddisk0\DR0 - ok 14:32:48.0878 2184 Boot (0x1200) (85b6861f757dbf9fa38f6ba107fa1223) \Device\Harddisk0\DR0\Partition0 14:32:48.0879 2184 \Device\Harddisk0\DR0\Partition0 - ok 14:32:48.0908 2184 Boot (0x1200) (24afb1aa207a177ae3deadd9aec9d6b1) \Device\Harddisk0\DR0\Partition1 14:32:48.0909 2184 \Device\Harddisk0\DR0\Partition1 - ok 14:32:48.0914 2184 ============================================================ 14:32:48.0914 2184 Scan finished 14:32:48.0914 2184 ============================================================ 14:32:48.0936 3464 Detected object count: 0 14:32:48.0936 3464 Actual detected object count: 0 14:34:45.0082 3956 ============================================================ 14:34:45.0082 3956 Scan started 14:34:45.0082 3956 Mode: Manual; 14:34:45.0082 3956 ============================================================ 14:34:45.0409 3956 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys 14:34:45.0414 3956 1394ohci - ok 14:34:45.0458 3956 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys 14:34:45.0462 3956 ACPI - ok 14:34:45.0516 3956 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys 14:34:45.0517 3956 AcpiPmi - ok 14:34:45.0669 3956 AdobeARMservice (62b7936f9036dd6ed36e6a7efa805dc0) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 14:34:45.0673 3956 AdobeARMservice - ok 14:34:45.0854 3956 AdobeFlashPlayerUpdateSvc (459ac130c6ab892b1cd5d7544626efc5) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 14:34:45.0857 3956 AdobeFlashPlayerUpdateSvc - ok 14:34:45.0958 3956 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys 14:34:45.0978 3956 adp94xx - ok 14:34:46.0052 3956 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys 14:34:46.0057 3956 adpahci - ok 14:34:46.0125 3956 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys 14:34:46.0128 3956 adpu320 - ok 14:34:46.0201 3956 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\Windows\System32\aelupsvc.dll 14:34:46.0203 3956 AeLookupSvc - ok 14:34:46.0260 3956 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys 14:34:46.0266 3956 AFD - ok 14:34:46.0317 3956 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys 14:34:46.0319 3956 agp440 - ok 14:34:46.0361 3956 ALG (3290d6946b5e30e70414990574883ddb) C:\Windows\System32\alg.exe 14:34:46.0363 3956 ALG - ok 14:34:46.0417 3956 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys 14:34:46.0419 3956 aliide - ok 14:34:46.0460 3956 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys 14:34:46.0461 3956 amdide - ok 14:34:46.0502 3956 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys 14:34:46.0504 3956 AmdK8 - ok 14:34:46.0528 3956 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys 14:34:46.0530 3956 AmdPPM - ok 14:34:46.0586 3956 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys 14:34:46.0588 3956 amdsata - ok 14:34:46.0623 3956 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys 14:34:46.0626 3956 amdsbs - ok 14:34:46.0673 3956 amdxata (1142a21db581a84ea5597b03a26ebaa0) C:\Windows\system32\drivers\amdxata.sys 14:34:46.0675 3956 amdxata - ok 14:34:46.0738 3956 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys 14:34:46.0740 3956 AppID - ok 14:34:46.0803 3956 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\Windows\System32\appidsvc.dll 14:34:46.0805 3956 AppIDSvc - ok 14:34:46.0856 3956 Appinfo (3977d4a871ca0d4f2ed1e7db46829731) C:\Windows\System32\appinfo.dll 14:34:46.0858 3956 Appinfo - ok 14:34:46.0974 3956 Apple Mobile Device (d8e18021f91ad79ca8491cb5a5da22d4) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe 14:34:46.0976 3956 Apple Mobile Device - ok 14:34:47.0022 3956 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys 14:34:47.0024 3956 arc - ok 14:34:47.0048 3956 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys 14:34:47.0050 3956 arcsas - ok 14:34:47.0288 3956 aspnet_state (9217d874131ae6ff8f642f124f00a555) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe 14:34:47.0290 3956 aspnet_state - ok 14:34:47.0346 3956 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys 14:34:47.0348 3956 AsyncMac - ok 14:34:47.0407 3956 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys 14:34:47.0409 3956 atapi - ok 14:34:47.0529 3956 athr (d6cad7e5b05055bb8226bdcb1644da27) C:\Windows\system32\DRIVERS\athrx.sys 14:34:47.0573 3956 athr - ok 14:34:47.0747 3956 AudioEndpointBuilder (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll 14:34:47.0755 3956 AudioEndpointBuilder - ok 14:34:47.0771 3956 AudioSrv (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll 14:34:47.0778 3956 AudioSrv - ok 14:34:47.0866 3956 AxInstSV (a6bf31a71b409dfa8cac83159e1e2aff) C:\Windows\System32\AxInstSV.dll 14:34:47.0869 3956 AxInstSV - ok 14:34:47.0957 3956 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys 14:34:47.0964 3956 b06bdrv - ok 14:34:48.0022 3956 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys 14:34:48.0027 3956 b57nd60a - ok 14:34:48.0080 3956 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\Windows\System32\bdesvc.dll 14:34:48.0083 3956 BDESVC - ok 14:34:48.0116 3956 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys 14:34:48.0117 3956 Beep - ok 14:34:48.0207 3956 BFE (82974d6a2fd19445cc5171fc378668a4) C:\Windows\System32\bfe.dll 14:34:48.0215 3956 BFE - ok 14:34:48.0288 3956 BITS (1ea7969e3271cbc59e1730697dc74682) C:\Windows\System32\qmgr.dll 14:34:48.0299 3956 BITS - ok 14:34:48.0372 3956 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys 14:34:48.0374 3956 blbdrive - ok 14:34:48.0508 3956 Bonjour Service (ebbcd5dfbb1de70e8f4af8fa59e401fd) C:\Program Files\Bonjour\mDNSResponder.exe 14:34:48.0515 3956 Bonjour Service - ok 14:34:48.0558 3956 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys 14:34:48.0561 3956 bowser - ok 14:34:48.0594 3956 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys 14:34:48.0595 3956 BrFiltLo - ok 14:34:48.0619 3956 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys 14:34:48.0621 3956 BrFiltUp - ok 14:34:48.0660 3956 Browser (8ef0d5c41ec907751b8429162b1239ed) C:\Windows\System32\browser.dll 14:34:48.0663 3956 Browser - ok 14:34:48.0714 3956 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys 14:34:48.0719 3956 Brserid - ok 14:34:48.0765 3956 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys 14:34:48.0767 3956 BrSerWdm - ok 14:34:48.0802 3956 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys 14:34:48.0803 3956 BrUsbMdm - ok 14:34:48.0841 3956 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys 14:34:48.0842 3956 BrUsbSer - ok 14:34:48.0882 3956 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys 14:34:48.0884 3956 BTHMODEM - ok 14:34:48.0926 3956 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\Windows\system32\bthserv.dll 14:34:48.0929 3956 bthserv - ok 14:34:48.0970 3956 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys 14:34:48.0973 3956 cdfs - ok 14:34:49.0017 3956 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\DRIVERS\cdrom.sys 14:34:49.0020 3956 cdrom - ok 14:34:49.0076 3956 CertPropSvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll 14:34:49.0078 3956 CertPropSvc - ok 14:34:49.0148 3956 cfwids (ed0263b2eb24f0f4e3898036fa1d28a1) C:\Windows\system32\drivers\cfwids.sys 14:34:49.0150 3956 cfwids - ok 14:34:49.0274 3956 cfWiMAXService (41e7c4fa6491747402cfca77cc1c7aab) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe 14:34:49.0278 3956 cfWiMAXService - ok 14:34:49.0329 3956 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys 14:34:49.0331 3956 circlass - ok 14:34:49.0422 3956 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys 14:34:49.0427 3956 CLFS - ok 14:34:49.0517 3956 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 14:34:49.0521 3956 clr_optimization_v2.0.50727_32 - ok 14:34:49.0586 3956 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 14:34:49.0589 3956 clr_optimization_v2.0.50727_64 - ok 14:34:49.0732 3956 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 14:34:49.0743 3956 clr_optimization_v4.0.30319_32 - ok 14:34:49.0787 3956 clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe 14:34:49.0790 3956 clr_optimization_v4.0.30319_64 - ok 14:34:49.0841 3956 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys 14:34:49.0843 3956 CmBatt - ok 14:34:49.0872 3956 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys 14:34:49.0873 3956 cmdide - ok 14:34:49.0926 3956 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys 14:34:49.0932 3956 CNG - ok 14:34:50.0017 3956 CnxtHdAudService (66d12b53e117ef951d5e1ced03b4cc1b) C:\Windows\system32\drivers\CHDRT64.sys 14:34:50.0027 3956 CnxtHdAudService - ok 14:34:50.0085 3956 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys 14:34:50.0086 3956 Compbatt - ok 14:34:50.0133 3956 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\DRIVERS\CompositeBus.sys 14:34:50.0135 3956 CompositeBus - ok 14:34:50.0168 3956 COMSysApp - ok 14:34:50.0256 3956 ConfigFree Service (cab0eeaf5295fc96ddd3e19dce27e131) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe 14:34:50.0257 3956 ConfigFree Service - ok 14:34:50.0299 3956 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys 14:34:50.0300 3956 crcdisk - ok 14:34:50.0371 3956 CryptSvc (15597883fbe9b056f276ada3ad87d9af) C:\Windows\system32\cryptsvc.dll 14:34:50.0376 3956 CryptSvc - ok 14:34:50.0442 3956 DcomLaunch (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll 14:34:50.0450 3956 DcomLaunch - ok 14:34:50.0513 3956 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\Windows\System32\defragsvc.dll 14:34:50.0517 3956 defragsvc - ok 14:34:50.0577 3956 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys 14:34:50.0580 3956 DfsC - ok 14:34:50.0617 3956 Dhcp (43d808f5d9e1a18e5eeb5ebc83969e4e) C:\Windows\system32\dhcpcore.dll 14:34:50.0622 3956 Dhcp - ok 14:34:50.0649 3956 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys 14:34:50.0651 3956 discache - ok 14:34:50.0717 3956 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys 14:34:50.0720 3956 Disk - ok 14:34:50.0794 3956 Dnscache (16835866aaa693c7d7fceba8fff706e4) C:\Windows\System32\dnsrslvr.dll 14:34:50.0798 3956 Dnscache - ok 14:34:50.0842 3956 dot3svc (b1fb3ddca0fdf408750d5843591afbc6) C:\Windows\System32\dot3svc.dll 14:34:50.0846 3956 dot3svc - ok 14:34:50.0896 3956 DPS (b26f4f737e8f9df4f31af6cf31d05820) C:\Windows\system32\dps.dll 14:34:50.0899 3956 DPS - ok 14:34:50.0967 3956 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys 14:34:50.0968 3956 drmkaud - ok 14:34:51.0043 3956 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys 14:34:51.0055 3956 DXGKrnl - ok 14:34:51.0140 3956 EapHost (e2dda8726da9cb5b2c4000c9018a9633) C:\Windows\System32\eapsvc.dll 14:34:51.0142 3956 EapHost - ok 14:34:51.0505 3956 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys 14:34:51.0570 3956 ebdrv - ok 14:34:51.0664 3956 EFS (c118a82cd78818c29ab228366ebf81c3) C:\Windows\System32\lsass.exe 14:34:51.0666 3956 EFS - ok 14:34:51.0778 3956 ehRecvr (c4002b6b41975f057d98c439030cea07) C:\Windows\ehome\ehRecvr.exe 14:34:51.0786 3956 ehRecvr - ok 14:34:51.0817 3956 ehSched (4705e8ef9934482c5bb488ce28afc681) C:\Windows\ehome\ehsched.exe 14:34:51.0819 3956 ehSched - ok 14:34:51.0916 3956 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys 14:34:51.0923 3956 elxstor - ok 14:34:51.0962 3956 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys 14:34:51.0963 3956 ErrDev - ok 14:34:52.0071 3956 EventSystem (4166f82be4d24938977dd1746be9b8a0) C:\Windows\system32\es.dll 14:34:52.0077 3956 EventSystem - ok 14:34:52.0122 3956 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys 14:34:52.0126 3956 exfat - ok 14:34:52.0164 3956 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys 14:34:52.0168 3956 fastfat - ok 14:34:52.0264 3956 Fax (dbefd454f8318a0ef691fdd2eaab44eb) C:\Windows\system32\fxssvc.exe 14:34:52.0292 3956 Fax - ok 14:34:52.0321 3956 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys 14:34:52.0323 3956 fdc - ok 14:34:52.0366 3956 fdPHost (0438cab2e03f4fb61455a7956026fe86) C:\Windows\system32\fdPHost.dll 14:34:52.0368 3956 fdPHost - ok 14:34:52.0395 3956 FDResPub (802496cb59a30349f9a6dd22d6947644) C:\Windows\system32\fdrespub.dll 14:34:52.0397 3956 FDResPub - ok 14:34:52.0442 3956 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys 14:34:52.0444 3956 FileInfo - ok 14:34:52.0469 3956 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys 14:34:52.0471 3956 Filetrace - ok 14:34:52.0502 3956 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys 14:34:52.0504 3956 flpydisk - ok 14:34:52.0552 3956 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys 14:34:52.0557 3956 FltMgr - ok 14:34:52.0621 3956 FontCache (b4447f606bb19fd8ad0bafb59b90f5d9) C:\Windows\system32\FntCache.dll 14:34:52.0633 3956 FontCache - ok 14:34:52.0706 3956 FontCache3.0.0.0 (a8b7f3818ab65695e3a0bb3279f6dce6) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 14:34:52.0708 3956 FontCache3.0.0.0 - ok 14:34:52.0770 3956 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys 14:34:52.0772 3956 FsDepends - ok 14:34:52.0834 3956 Fs_Rec (6bd9295cc032dd3077c671fccf579a7b) C:\Windows\system32\drivers\Fs_Rec.sys 14:34:52.0837 3956 Fs_Rec - ok 14:34:52.0870 3956 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys 14:34:52.0874 3956 fvevol - ok 14:34:52.0928 3956 FwLnk (60acb128e64c35c2b4e4aab1b0a5c293) C:\Windows\system32\DRIVERS\FwLnk.sys 14:34:52.0929 3956 FwLnk - ok 14:34:52.0962 3956 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys 14:34:52.0964 3956 gagp30kx - ok 14:34:53.0032 3956 GEARAspiWDM (e403aacf8c7bb11375122d2464560311) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys 14:34:53.0034 3956 GEARAspiWDM - ok 14:34:53.0093 3956 gpsvc (277bbc7e1aa1ee957f573a10eca7ef3a) C:\Windows\System32\gpsvc.dll 14:34:53.0103 3956 gpsvc - ok 14:34:53.0212 3956 gupdate (f02a533f517eb38333cb12a9e8963773) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 14:34:53.0215 3956 gupdate - ok 14:34:53.0256 3956 gupdatem (f02a533f517eb38333cb12a9e8963773) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 14:34:53.0258 3956 gupdatem - ok 14:34:53.0334 3956 gusvc (cc839e8d766cc31a7710c9f38cf3e375) C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe 14:34:53.0337 3956 gusvc - ok 14:34:53.0367 3956 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys 14:34:53.0369 3956 hcw85cir - ok 14:34:53.0436 3956 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys 14:34:53.0441 3956 HdAudAddService - ok 14:34:53.0495 3956 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys 14:34:53.0498 3956 HDAudBus - ok 14:34:53.0531 3956 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys 14:34:53.0533 3956 HidBatt - ok 14:34:53.0565 3956 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys 14:34:53.0567 3956 HidBth - ok 14:34:53.0628 3956 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys 14:34:53.0630 3956 HidIr - ok 14:34:53.0674 3956 hidserv (bd9eb3958f213f96b97b1d897dee006d) C:\Windows\system32\hidserv.dll 14:34:53.0677 3956 hidserv - ok 14:34:53.0730 3956 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\drivers\hidusb.sys 14:34:53.0732 3956 HidUsb - ok 14:34:53.0792 3956 hkmsvc (387e72e739e15e3d37907a86d9ff98e2) C:\Windows\system32\kmsvc.dll 14:34:53.0795 3956 hkmsvc - ok 14:34:53.0822 3956 HomeGroupListener (efdfb3dd38a4376f93e7985173813abd) C:\Windows\system32\ListSvc.dll 14:34:53.0828 3956 HomeGroupListener - ok 14:34:53.0868 3956 HomeGroupProvider (908acb1f594274965a53926b10c81e89) C:\Windows\system32\provsvc.dll 14:34:53.0871 3956 HomeGroupProvider - ok 14:34:53.0989 3956 hpqcxs08 (1dae5c46d42b02a6d5862e1482efb390) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll 14:34:53.0994 3956 hpqcxs08 - ok 14:34:54.0015 3956 hpqddsvc (99e8eef42fe2f4af29b08c3355dd7685) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll 14:34:54.0018 3956 hpqddsvc - ok 14:34:54.0065 3956 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys 14:34:54.0073 3956 HpSAMD - ok 14:34:54.0158 3956 HPSLPSVC (f37882f128efacefe353e0bae2766909) C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL 14:34:54.0171 3956 HPSLPSVC - ok 14:34:54.0278 3956 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys 14:34:54.0295 3956 HTTP - ok 14:34:54.0323 3956 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys 14:34:54.0325 3956 hwpolicy - ok 14:34:54.0363 3956 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\DRIVERS\i8042prt.sys 14:34:54.0365 3956 i8042prt - ok 14:34:54.0455 3956 iaStor (bbb3b6df1abb0fe35802ede85cc1c011) C:\Windows\system32\DRIVERS\iaStor.sys 14:34:54.0461 3956 iaStor - ok 14:34:54.0529 3956 iaStorV (3df4395a7cf8b7a72a5f4606366b8c2d) C:\Windows\system32\drivers\iaStorV.sys 14:34:54.0535 3956 iaStorV - ok 14:34:54.0622 3956 IDriverT (6f95324909b502e2651442c1548ab12f) C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe 14:34:54.0625 3956 IDriverT - ok 14:34:54.0743 3956 idsvc (5988fc40f8db5b0739cd1e3a5d0d78bd) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 14:34:54.0754 3956 idsvc - ok 14:34:55.0166 3956 igfx (898ab5bfed7040d7ab07af01885eb944) C:\Windows\system32\DRIVERS\igdkmd64.sys 14:34:55.0377 3956 igfx - ok 14:34:55.0507 3956 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys 14:34:55.0509 3956 iirsp - ok 14:34:55.0568 3956 IKEEXT (fcd84c381e0140af901e58d48882d26b) C:\Windows\System32\ikeext.dll 14:34:55.0578 3956 IKEEXT - ok 14:34:55.0621 3956 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys 14:34:55.0622 3956 intelide - ok 14:34:55.0675 3956 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys 14:34:55.0677 3956 intelppm - ok 14:34:55.0749 3956 IPBusEnum (098a91c54546a3b878dad6a7e90a455b) C:\Windows\system32\ipbusenum.dll 14:34:55.0752 3956 IPBusEnum - ok 14:34:55.0800 3956 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys 14:34:55.0803 3956 IpFilterDriver - ok 14:34:55.0870 3956 iphlpsvc (a34a587fffd45fa649fba6d03784d257) C:\Windows\System32\iphlpsvc.dll 14:34:55.0878 3956 iphlpsvc - ok 14:34:55.0924 3956 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys 14:34:55.0926 3956 IPMIDRV - ok 14:34:55.0982 3956 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys 14:34:55.0985 3956 IPNAT - ok 14:34:56.0124 3956 iPod Service (3c0d4b3e80fc4854ca325dd123cc4ded) C:\Program Files\iPod\bin\iPodService.exe 14:34:56.0144 3956 iPod Service - ok 14:34:56.0166 3956 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys 14:34:56.0167 3956 IRENUM - ok 14:34:56.0194 3956 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys 14:34:56.0201 3956 isapnp - ok 14:34:56.0250 3956 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys 14:34:56.0255 3956 iScsiPrt - ok 14:34:56.0316 3956 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys 14:34:56.0318 3956 kbdclass - ok 14:34:56.0356 3956 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\drivers\kbdhid.sys 14:34:56.0358 3956 kbdhid - ok 14:34:56.0397 3956 KeyIso (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe 14:34:56.0399 3956 KeyIso - ok 14:34:56.0435 3956 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys 14:34:56.0437 3956 KSecDD - ok 14:34:56.0464 3956 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys 14:34:56.0467 3956 KSecPkg - ok 14:34:56.0522 3956 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys 14:34:56.0524 3956 ksthunk - ok 14:34:56.0567 3956 KtmRm (6ab66e16aa859232f64deb66887a8c9c) C:\Windows\system32\msdtckrm.dll 14:34:56.0574 3956 KtmRm - ok 14:34:56.0617 3956 L1C (0e154da6ca9105354a07d0c576804037) C:\Windows\system32\DRIVERS\L1C62x64.sys 14:34:56.0619 3956 L1C - ok 14:34:56.0694 3956 LanmanServer (d9f42719019740baa6d1c6d536cbdaa6) C:\Windows\system32\srvsvc.dll 14:34:56.0698 3956 LanmanServer - ok 14:34:56.0739 3956 LanmanWorkstation (851a1382eed3e3a7476db004f4ee3e1a) C:\Windows\System32\wkssvc.dll 14:34:56.0744 3956 LanmanWorkstation - ok 14:34:56.0813 3956 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys 14:34:56.0815 3956 lltdio - ok 14:34:56.0860 3956 lltdsvc (c1185803384ab3feed115f79f109427f) C:\Windows\System32\lltdsvc.dll 14:34:56.0865 3956 lltdsvc - ok 14:34:56.0920 3956 lmhosts (f993a32249b66c9d622ea5592a8b76b8) C:\Windows\System32\lmhsvc.dll 14:34:56.0922 3956 lmhosts - ok 14:34:56.0990 3956 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys 14:34:56.0994 3956 LSI_FC - ok 14:34:57.0029 3956 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\drivers\lsi_sas.sys 14:34:57.0031 3956 LSI_SAS - ok 14:34:57.0057 3956 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys 14:34:57.0060 3956 LSI_SAS2 - ok 14:34:57.0385 3956 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys 14:34:57.0388 3956 LSI_SCSI - ok 14:34:57.0432 3956 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys 14:34:57.0435 3956 luafv - ok 14:34:57.0581 3956 McAfee SiteAdvisor Service (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe 14:34:57.0585 3956 McAfee SiteAdvisor Service - ok 14:34:57.0641 3956 McMPFSvc (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe 14:34:57.0643 3956 McMPFSvc - ok 14:34:57.0690 3956 mcmscsvc (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe 14:34:57.0693 3956 mcmscsvc - ok 14:34:57.0736 3956 McNaiAnn (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe 14:34:57.0738 3956 McNaiAnn - ok 14:34:57.0775 3956 McNASvc (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe 14:34:57.0777 3956 McNASvc - ok 14:34:57.0893 3956 McODS (b3914a7c97a81acb1e9befe07e4c387f) C:\Program Files\McAfee\VirusScan\mcods.exe 14:34:57.0900 3956 McODS - ok 14:34:57.0945 3956 McProxy (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe 14:34:57.0948 3956 McProxy - ok 14:34:58.0011 3956 McPvDrv (a0c364079e7ae6c3127bee8e196f00e5) C:\Windows\system32\drivers\McPvDrv.sys 14:34:58.0013 3956 McPvDrv - ok 14:34:58.0100 3956 McShield (4a463d645b48bb487ca7df12ba5d1602) C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe 14:34:58.0103 3956 McShield - ok 14:34:58.0159 3956 Mcx2Svc (0be09cd858abf9df6ed259d57a1a1663) C:\Windows\system32\Mcx2Svc.dll 14:34:58.0162 3956 Mcx2Svc - ok 14:34:58.0193 3956 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys 14:34:58.0194 3956 megasas - ok 14:34:58.0227 3956 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys 14:34:58.0233 3956 MegaSR - ok 14:34:58.0309 3956 mfeapfk (ef3acfb7e3f82d5f7cde9ef5f0a4e2e2) C:\Windows\system32\drivers\mfeapfk.sys 14:34:58.0312 3956 mfeapfk - ok 14:34:58.0417 3956 mfeavfk (e7a60bdb4365b561d896019b82fb7dd0) C:\Windows\system32\drivers\mfeavfk.sys 14:34:58.0421 3956 mfeavfk - ok 14:34:58.0461 3956 mfeavfk01 - ok 14:34:58.0519 3956 mfefire (c53b7aba204d9f7e9568ec147a1485c5) C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe 14:34:58.0522 3956 mfefire - ok 14:34:58.0612 3956 mfefirek (670dffe55e2f9ab99d9169c428bcece9) C:\Windows\system32\drivers\mfefirek.sys 14:34:58.0618 3956 mfefirek - ok 14:34:59.0052 3956 mfehidk (1892616b7f9291fd77c3fa0a5811fe9f) C:\Windows\system32\drivers\mfehidk.sys 14:34:59.0082 3956 mfehidk - ok 14:34:59.0157 3956 mfenlfk (1721261c77f6e7a9e0cb51b7d9f31b60) C:\Windows\system32\DRIVERS\mfenlfk.sys 14:34:59.0159 3956 mfenlfk - ok 14:34:59.0241 3956 mferkdet (65776bd8029e409935b90de30bf99526) C:\Windows\system32\drivers\mferkdet.sys 14:34:59.0244 3956 mferkdet - ok 14:34:59.0300 3956 mfevtp (3ed58a36f7f7d60f0ef44d29810b0b80) C:\Windows\system32\mfevtps.exe 14:34:59.0305 3956 mfevtp - ok 14:34:59.0436 3956 mfewfpk (4f17d8b85b903d96ef7033bb6ef50516) C:\Windows\system32\drivers\mfewfpk.sys 14:34:59.0440 3956 mfewfpk - ok 14:34:59.0500 3956 MMCSS (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll 14:34:59.0502 3956 MMCSS - ok 14:34:59.0542 3956 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys 14:34:59.0544 3956 Modem - ok 14:34:59.0593 3956 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys 14:34:59.0595 3956 monitor - ok 14:34:59.0643 3956 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys 14:34:59.0645 3956 mouclass - ok 14:34:59.0684 3956 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys 14:34:59.0686 3956 mouhid - ok 14:34:59.0742 3956 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys 14:34:59.0744 3956 mountmgr - ok 14:34:59.0842 3956 MozillaMaintenance (96aa8ba23142cc8e2b30f3cae0c80254) C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 14:34:59.0845 3956 MozillaMaintenance - ok 14:34:59.0888 3956 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys 14:34:59.0892 3956 mpio - ok 14:34:59.0939 3956 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys 14:34:59.0942 3956 mpsdrv - ok 14:35:00.0002 3956 MpsSvc (54ffc9c8898113ace189d4aa7199d2c1) C:\Windows\system32\mpssvc.dll 14:35:00.0012 3956 MpsSvc - ok 14:35:00.0057 3956 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys 14:35:00.0061 3956 MRxDAV - ok 14:35:00.0100 3956 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys 14:35:00.0103 3956 mrxsmb - ok 14:35:00.0138 3956 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys 14:35:00.0143 3956 mrxsmb10 - ok 14:35:00.0176 3956 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys 14:35:00.0180 3956 mrxsmb20 - ok 14:35:00.0205 3956 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys 14:35:00.0207 3956 msahci - ok 14:35:00.0245 3956 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys 14:35:00.0248 3956 msdsm - ok 14:35:00.0288 3956 MSDTC (de0ece52236cfa3ed2dbfc03f28253a8) C:\Windows\System32\msdtc.exe 14:35:00.0292 3956 MSDTC - ok 14:35:00.0336 3956 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys 14:35:00.0338 3956 Msfs - ok 14:35:00.0395 3956 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys 14:35:00.0397 3956 mshidkmdf - ok 14:35:00.0411 3956 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys 14:35:00.0413 3956 msisadrv - ok 14:35:00.0448 3956 MSiSCSI (808e98ff49b155c522e6400953177b08) C:\Windows\system32\iscsiexe.dll 14:35:00.0452 3956 MSiSCSI - ok 14:35:00.0467 3956 msiserver - ok 14:35:00.0586 3956 MSK80Service (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe 14:35:00.0588 3956 MSK80Service - ok 14:35:00.0653 3956 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys 14:35:00.0655 3956 MSKSSRV - ok 14:35:00.0992 3956 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys 14:35:00.0994 3956 MSPCLOCK - ok 14:35:01.0052 3956 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys 14:35:01.0054 3956 MSPQM - ok 14:35:01.0109 3956 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys 14:35:01.0116 3956 MsRPC - ok 14:35:01.0150 3956 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\DRIVERS\mssmbios.sys 14:35:01.0152 3956 mssmbios - ok 14:35:01.0208 3956 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys 14:35:01.0210 3956 MSTEE - ok 14:35:01.0238 3956 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys 14:35:01.0239 3956 MTConfig - ok 14:35:01.0269 3956 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys 14:35:01.0272 3956 Mup - ok 14:35:01.0333 3956 napagent (582ac6d9873e31dfa28a4547270862dd) C:\Windows\system32\qagentRT.dll 14:35:01.0340 3956 napagent - ok 14:35:01.0410 3956 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys 14:35:01.0415 3956 NativeWifiP - ok 14:35:01.0522 3956 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys 14:35:01.0533 3956 NDIS - ok 14:35:01.0579 3956 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys 14:35:01.0581 3956 NdisCap - ok 14:35:01.0629 3956 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys 14:35:01.0631 3956 NdisTapi - ok 14:35:01.0722 3956 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys 14:35:01.0724 3956 Ndisuio - ok 14:35:01.0741 3956 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys 14:35:01.0745 3956 NdisWan - ok 14:35:01.0775 3956 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys 14:35:01.0776 3956 NDProxy - ok 14:35:01.0848 3956 Net Driver HPZ12 (2334dc48997ba203b794df3ee70521db) C:\Windows\system32\HPZinw12.dll 14:35:01.0852 3956 Net Driver HPZ12 - ok 14:35:01.0904 3956 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys 14:35:01.0906 3956 NetBIOS - ok 14:35:01.0938 3956 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys 14:35:01.0942 3956 NetBT - ok 14:35:01.0975 3956 Netlogon (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe 14:35:01.0977 3956 Netlogon - ok 14:35:02.0038 3956 Netman (847d3ae376c0817161a14a82c8922a9e) C:\Windows\System32\netman.dll 14:35:02.0044 3956 Netman - ok 14:35:02.0140 3956 NetMsmqActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:35:02.0143 3956 NetMsmqActivator - ok 14:35:02.0179 3956 NetPipeActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:35:02.0181 3956 NetPipeActivator - ok 14:35:02.0234 3956 netprofm (5f28111c648f1e24f7dbc87cdeb091b8) C:\Windows\System32\netprofm.dll 14:35:02.0240 3956 netprofm - ok 14:35:02.0281 3956 NetTcpActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:35:02.0283 3956 NetTcpActivator - ok 14:35:02.0344 3956 NetTcpPortSharing (3e5a36127e201ddf663176b66828fafe) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe 14:35:02.0347 3956 NetTcpPortSharing - ok 14:35:02.0418 3956 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys 14:35:02.0419 3956 nfrd960 - ok 14:35:02.0467 3956 NlaSvc (1ee99a89cc788ada662441d1e9830529) C:\Windows\System32\nlasvc.dll 14:35:02.0474 3956 NlaSvc - ok 14:35:02.0494 3956 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys 14:35:02.0495 3956 Npfs - ok 14:35:02.0552 3956 nsi (d54bfdf3e0c953f823b3d0bfe4732528) C:\Windows\system32\nsisvc.dll 14:35:02.0555 3956 nsi - ok 14:35:02.0591 3956 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys 14:35:02.0593 3956 nsiproxy - ok 14:35:02.0946 3956 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys 14:35:02.0964 3956 Ntfs - ok 14:35:03.0104 3956 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys 14:35:03.0106 3956 Null - ok 14:35:03.0147 3956 nvraid (5d9fd91f3d38dc9da01e3cb5fa89cd48) C:\Windows\system32\drivers\nvraid.sys 14:35:03.0150 3956 nvraid - ok 14:35:03.0180 3956 nvstor (f7cd50fe7139f07e77da8ac8033d1832) C:\Windows\system32\drivers\nvstor.sys 14:35:03.0183 3956 nvstor - ok 14:35:03.0230 3956 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys 14:35:03.0233 3956 nv_agp - ok 14:35:03.0258 3956 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys 14:35:03.0261 3956 ohci1394 - ok 14:35:03.0355 3956 ose (9d10f99a6712e28f8acd5641e3a7ea6b) C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 14:35:03.0358 3956 ose - ok 14:35:03.0420 3956 p2pimsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll 14:35:03.0427 3956 p2pimsvc - ok 14:35:03.0466 3956 p2psvc (927463ecb02179f88e4b9a17568c63c3) C:\Windows\system32\p2psvc.dll 14:35:03.0473 3956 p2psvc - ok 14:35:03.0554 3956 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys 14:35:03.0556 3956 Parport - ok 14:35:03.0582 3956 partmgr (871eadac56b0a4c6512bbe32753ccf79) C:\Windows\system32\drivers\partmgr.sys 14:35:03.0584 3956 partmgr - ok 14:35:03.0628 3956 PcaSvc (3aeaa8b561e63452c655dc0584922257) C:\Windows\System32\pcasvc.dll 14:35:03.0633 3956 PcaSvc - ok 14:35:03.0665 3956 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys 14:35:03.0674 3956 pci - ok 14:35:03.0717 3956 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys 14:35:03.0719 3956 pciide - ok 14:35:03.0760 3956 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys 14:35:03.0765 3956 pcmcia - ok 14:35:03.0807 3956 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys 14:35:03.0809 3956 pcw - ok 14:35:03.0864 3956 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys 14:35:03.0872 3956 PEAUTH - ok 14:35:04.0045 3956 PerfHost (e495e408c93141e8fc72dc0c6046ddfa) C:\Windows\SysWow64\perfhost.exe 14:35:04.0047 3956 PerfHost - ok 14:35:04.0133 3956 PGEffect (663962900e7fea522126ba287715bb4a) C:\Windows\system32\DRIVERS\pgeffect.sys 14:35:04.0135 3956 PGEffect - ok 14:35:04.0307 3956 pla (c7cf6a6e137463219e1259e3f0f0dd6c) C:\Windows\system32\pla.dll 14:35:04.0354 3956 pla - ok 14:35:05.0066 3956 PlugPlay (25fbdef06c4d92815b353f6e792c8129) C:\Windows\system32\umpnpmgr.dll 14:35:05.0073 3956 PlugPlay - ok 14:35:05.0284 3956 Pml Driver HPZ12 (ac78df349f0e4cfb8b667c0cfff83cce) C:\Windows\system32\HPZipm12.dll 14:35:05.0286 3956 Pml Driver HPZ12 - ok 14:35:05.0344 3956 PNRPAutoReg (7195581cec9bb7d12abe54036acc2e38) C:\Windows\system32\pnrpauto.dll 14:35:05.0347 3956 PNRPAutoReg - ok 14:35:05.0391 3956 PNRPsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll 14:35:05.0395 3956 PNRPsvc - ok 14:35:05.0506 3956 PolicyAgent (4f15d75adf6156bf56eced6d4a55c389) C:\Windows\System32\ipsecsvc.dll 14:35:05.0512 3956 PolicyAgent - ok 14:35:05.0562 3956 Power (6ba9d927dded70bd1a9caded45f8b184) C:\Windows\system32\umpo.dll 14:35:05.0566 3956 Power - ok 14:35:05.0691 3956 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys 14:35:05.0701 3956 PptpMiniport - ok 14:35:05.0733 3956 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys 14:35:05.0735 3956 Processor - ok 14:35:05.0853 3956 ProfSvc (5c78838b4d166d1a27db3a8a820c799a) C:\Windows\system32\profsvc.dll 14:35:05.0864 3956 ProfSvc - ok 14:35:05.0931 3956 ProtectedStorage (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe 14:35:05.0933 3956 ProtectedStorage - ok 14:35:06.0011 3956 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys 14:35:06.0014 3956 Psched - ok 14:35:06.0123 3956 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys 14:35:06.0168 3956 ql2300 - ok 14:35:06.0297 3956 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys 14:35:06.0300 3956 ql40xx - ok 14:35:06.0339 3956 QWAVE (906191634e99aea92c4816150bda3732) C:\Windows\system32\qwave.dll 14:35:06.0347 3956 QWAVE - ok 14:35:06.0379 3956 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys 14:35:06.0380 3956 QWAVEdrv - ok 14:35:06.0531 3956 RapportCerberus_32029 (68b15a9a2a35d7afa3bda1fb9edb84d0) C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\32029\RapportCerberus64_32029.sys 14:35:06.0548 3956 RapportCerberus_32029 - ok 14:35:06.0647 3956 RapportEI64 (8648b4268dfb90536e02dcb800991be8) C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys 14:35:06.0649 3956 RapportEI64 - ok 14:35:06.0952 3956 RapportKE64 (344373ad5b420b41daa74439f42a52e2) C:\Windows\system32\Drivers\RapportKE64.sys 14:35:06.0954 3956 RapportKE64 - ok 14:35:07.0125 3956 RapportMgmtService (af91ceb3a00f4b4d02c452e4c9e12f53) C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe 14:35:07.0163 3956 RapportMgmtService - ok 14:35:07.0239 3956 RapportPG64 (2ddc808aa69ec47465f4d13d16e4fe66) C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys 14:35:07.0241 3956 RapportPG64 - ok 14:35:07.0275 3956 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys 14:35:07.0277 3956 RasAcd - ok 14:35:07.0351 3956 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys 14:35:07.0353 3956 RasAgileVpn - ok 14:35:07.0392 3956 RasAuto (8f26510c5383b8dbe976de1cd00fc8c7) C:\Windows\System32\rasauto.dll 14:35:07.0395 3956 RasAuto - ok 14:35:07.0454 3956 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys 14:35:07.0457 3956 Rasl2tp - ok 14:35:07.0513 3956 RasMan (ee867a0870fc9e4972ba9eaad35651e2) C:\Windows\System32\rasmans.dll 14:35:07.0519 3956 RasMan - ok 14:35:07.0568 3956 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys 14:35:07.0570 3956 RasPppoe - ok 14:35:07.0609 3956 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys 14:35:07.0611 3956 RasSstp - ok 14:35:07.0653 3956 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys 14:35:07.0658 3956 rdbss - ok 14:35:07.0708 3956 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys 14:35:07.0710 3956 rdpbus - ok 14:35:07.0752 3956 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys 14:35:07.0754 3956 RDPCDD - ok 14:35:07.0770 3956 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys 14:35:07.0772 3956 RDPENCDD - ok 14:35:07.0790 3956 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys 14:35:07.0791 3956 RDPREFMP - ok 14:35:07.0824 3956 RDPWD (6d76e6433574b058adcb0c50df834492) C:\Windows\system32\drivers\RDPWD.sys 14:35:07.0828 3956 RDPWD - ok 14:35:07.0891 3956 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys 14:35:07.0895 3956 rdyboost - ok 14:35:07.0927 3956 RemoteAccess (254fb7a22d74e5511c73a3f6d802f192) C:\Windows\System32\mprdim.dll 14:35:07.0931 3956 RemoteAccess - ok 14:35:07.0967 3956 RemoteRegistry (e4d94f24081440b5fc5aa556c7c62702) C:\Windows\system32\regsvc.dll 14:35:07.0972 3956 RemoteRegistry - ok 14:35:08.0040 3956 RimUsb (71b48ddaf5e9c2b40e64de5c405f5aac) C:\Windows\system32\Drivers\RimUsb_AMD64.sys 14:35:08.0042 3956 RimUsb - ok 14:35:08.0102 3956 RimVSerPort (c903d49655b4aae46673f0aaa6be0f58) C:\Windows\system32\DRIVERS\RimSerial_AMD64.sys 14:35:08.0103 3956 RimVSerPort - ok 14:35:08.0149 3956 ROOTMODEM (388d3dd1a6457280f3badba9f3acd6b1) C:\Windows\system32\Drivers\RootMdm.sys 14:35:08.0150 3956 ROOTMODEM - ok 14:35:08.0195 3956 RpcEptMapper (e4dc58cf7b3ea515ae917ff0d402a7bb) C:\Windows\System32\RpcEpMap.dll 14:35:08.0199 3956 RpcEptMapper - ok 14:35:08.0233 3956 RpcLocator (d5ba242d4cf8e384db90e6a8ed850b8c) C:\Windows\system32\locator.exe 14:35:08.0235 3956 RpcLocator - ok 14:35:08.0290 3956 RpcSs (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll 14:35:08.0295 3956 RpcSs - ok 14:35:08.0343 3956 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys 14:35:08.0346 3956 rspndr - ok 14:35:08.0403 3956 RSUSBSTOR (907c4464381b5ebdfdc60f6c7d0dedfc) C:\Windows\system32\Drivers\RtsUStor.sys 14:35:08.0408 3956 RSUSBSTOR - ok 14:35:08.0442 3956 SamSs (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe 14:35:08.0444 3956 SamSs - ok 14:35:08.0479 3956 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys 14:35:08.0482 3956 sbp2port - ok 14:35:08.0525 3956 SCardSvr (9b7395789e3791a3b6d000fe6f8b131e) C:\Windows\System32\SCardSvr.dll 14:35:08.0530 3956 SCardSvr - ok 14:35:08.0553 3956 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys 14:35:08.0554 3956 scfilter - ok 14:35:08.0604 3956 Schedule (262f6592c3299c005fd6bec90fc4463a) C:\Windows\system32\schedsvc.dll 14:35:08.0629 3956 Schedule - ok 14:35:08.0676 3956 SCPolicySvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll 14:35:08.0678 3956 SCPolicySvc - ok 14:35:08.0764 3956 SDRSVC (6ea4234dc55346e0709560fe7c2c1972) C:\Windows\System32\SDRSVC.dll 14:35:08.0773 3956 SDRSVC - ok 14:35:09.0254 3956 SeaPort (331e7bde228914574fc9ae6cd520dafa) C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe 14:35:09.0283 3956 SeaPort - ok 14:35:09.0449 3956 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys 14:35:09.0451 3956 secdrv - ok 14:35:09.0513 3956 seclogon (bc617a4e1b4fa8df523a061739a0bd87) C:\Windows\system32\seclogon.dll 14:35:09.0516 3956 seclogon - ok 14:35:09.0574 3956 SENS (c32ab8fa018ef34c0f113bd501436d21) C:\Windows\System32\sens.dll 14:35:09.0576 3956 SENS - ok 14:35:09.0714 3956 SensrSvc (0336cffafaab87a11541f1cf1594b2b2) C:\Windows\system32\sensrsvc.dll 14:35:09.0736 3956 SensrSvc - ok 14:35:09.0785 3956 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys 14:35:09.0791 3956 Serenum - ok 14:35:09.0901 3956 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys 14:35:09.0903 3956 Serial - ok 14:35:09.0965 3956 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys 14:35:09.0967 3956 sermouse - ok 14:35:10.0022 3956 SessionEnv (0b6231bf38174a1628c4ac812cc75804) C:\Windows\system32\sessenv.dll 14:35:10.0026 3956 SessionEnv - ok 14:35:10.0097 3956 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys 14:35:10.0098 3956 sffdisk - ok 14:35:10.0393 3956 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys 14:35:10.0395 3956 sffp_mmc - ok 14:35:10.0442 3956 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys 14:35:10.0444 3956 sffp_sd - ok 14:35:10.0469 3956 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys 14:35:10.0471 3956 sfloppy - ok 14:35:10.0537 3956 SharedAccess (b95f6501a2f8b2e78c697fec401970ce) C:\Windows\System32\ipnathlp.dll 14:35:10.0543 3956 SharedAccess - ok 14:35:10.0596 3956 ShellHWDetection (aaf932b4011d14052955d4b212a4da8d) C:\Windows\System32\shsvcs.dll 14:35:10.0603 3956 ShellHWDetection - ok 14:35:10.0651 3956 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys 14:35:10.0653 3956 SiSRaid2 - ok 14:35:10.0708 3956 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys 14:35:10.0710 3956 SiSRaid4 - ok 14:35:10.0740 3956 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys 14:35:10.0743 3956 Smb - ok 14:35:10.0823 3956 SNMPTRAP (6313f223e817cc09aa41811daa7f541d) C:\Windows\System32\snmptrap.exe 14:35:10.0826 3956 SNMPTRAP - ok 14:35:10.0855 3956 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys 14:35:10.0857 3956 spldr - ok 14:35:10.0898 3956 Spooler (b96c17b5dc1424d56eea3a99e97428cd) C:\Windows\System32\spoolsv.exe 14:35:10.0908 3956 Spooler - ok 14:35:11.0257 3956 sppsvc (e17e0188bb90fae42d83e98707efa59c) C:\Windows\system32\sppsvc.exe 14:35:11.0284 3956 sppsvc - ok 14:35:11.0444 3956 sppuinotify (93d7d61317f3d4bc4f4e9f8a96a7de45) C:\Windows\system32\sppuinotify.dll 14:35:11.0447 3956 sppuinotify - ok 14:35:11.0568 3956 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys 14:35:11.0578 3956 srv - ok 14:35:11.0631 3956 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys 14:35:11.0637 3956 srv2 - ok 14:35:11.0665 3956 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys 14:35:11.0670 3956 srvnet - ok 14:35:12.0019 3956 SSDPSRV (51b52fbd583cde8aa9ba62b8b4298f33) C:\Windows\System32\ssdpsrv.dll 14:35:12.0023 3956 SSDPSRV - ok 14:35:12.0051 3956 SstpSvc (ab7aebf58dad8daab7a6c45e6a8885cb) C:\Windows\system32\sstpsvc.dll 14:35:12.0055 3956 SstpSvc - ok 14:35:12.0090 3956 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys 14:35:12.0094 3956 stexstor - ok 14:35:12.0133 3956 StillCam (decacb6921ded1a38642642685d77dac) C:\Windows\system32\DRIVERS\serscan.sys 14:35:12.0135 3956 StillCam - ok 14:35:12.0211 3956 stisvc (8dd52e8e6128f4b2da92ce27402871c1) C:\Windows\System32\wiaservc.dll 14:35:12.0219 3956 stisvc - ok 14:35:12.0246 3956 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\DRIVERS\swenum.sys 14:35:12.0248 3956 swenum - ok 14:35:12.0314 3956 swprv (e08e46fdd841b7184194011ca1955a0b) C:\Windows\System32\swprv.dll 14:35:12.0321 3956 swprv - ok 14:35:12.0380 3956 SynTP (470c47daba9ca3966f0ab3f835d7d135) C:\Windows\system32\DRIVERS\SynTP.sys 14:35:12.0386 3956 SynTP - ok 14:35:12.0551 3956 SysMain (bf9ccc0bf39b418c8d0ae8b05cf95b7d) C:\Windows\system32\sysmain.dll 14:35:12.0607 3956 SysMain - ok 14:35:12.0764 3956 TabletInputService (e3c61fd7b7c2557e1f1b0b4cec713585) C:\Windows\System32\TabSvc.dll 14:35:12.0767 3956 TabletInputService - ok 14:35:12.0851 3956 TapiSrv (40f0849f65d13ee87b9a9ae3c1dd6823) C:\Windows\System32\tapisrv.dll 14:35:12.0856 3956 TapiSrv - ok 14:35:12.0892 3956 TBS (1be03ac720f4d302ea01d40f588162f6) C:\Windows\System32\tbssvc.dll 14:35:12.0895 3956 TBS - ok 14:35:13.0089 3956 Tcpip (fc62769e7bff2896035aeed399108162) C:\Windows\system32\drivers\tcpip.sys 14:35:13.0147 3956 Tcpip - ok 14:35:13.0728 3956 TCPIP6 (fc62769e7bff2896035aeed399108162) C:\Windows\system32\DRIVERS\tcpip.sys 14:35:13.0742 3956 TCPIP6 - ok 14:35:14.0033 3956 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys 14:35:14.0036 3956 tcpipreg - ok 14:35:14.0098 3956 tdcmdpst (fd542b661bd22fa69ca789ad0ac58c29) C:\Windows\system32\DRIVERS\tdcmdpst.sys 14:35:14.0100 3956 tdcmdpst - ok 14:35:14.0125 3956 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys 14:35:14.0127 3956 TDPIPE - ok 14:35:14.0178 3956 TDTCP (51c5eceb1cdee2468a1748be550cfbc8) C:\Windows\system32\drivers\tdtcp.sys 14:35:14.0180 3956 TDTCP - ok 14:35:14.0232 3956 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys 14:35:14.0235 3956 tdx - ok 14:35:14.0711 3956 TeamViewer6 (8a9828975a857e477efef5a61ba45ac0) C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe 14:35:15.0050 3956 TeamViewer6 - ok 14:35:15.0181 3956 TemproMonitoringService (1b709733a04dcc41a63f9cd1f76a4ebe) C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe 14:35:15.0183 3956 TemproMonitoringService - ok 14:35:15.0396 3956 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\DRIVERS\termdd.sys 14:35:15.0398 3956 TermDD - ok 14:35:15.0526 3956 TermService (2e648163254233755035b46dd7b89123) C:\Windows\System32\termsrv.dll 14:35:15.0554 3956 TermService - ok 14:35:15.0586 3956 Themes (f0344071948d1a1fa732231785a0664c) C:\Windows\system32\themeservice.dll 14:35:15.0589 3956 Themes - ok 14:35:15.0633 3956 THREADORDER (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll 14:35:15.0635 3956 THREADORDER - ok 14:35:15.0790 3956 TMachInfo (28644b0523d64eff2fc7312a2ee74b0a) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe 14:35:15.0800 3956 TMachInfo - ok 14:35:15.0871 3956 TODDSrv (ed32035bdfeced1ad66d459fd9cc1140) C:\Windows\system32\TODDSrv.exe 14:35:15.0874 3956 TODDSrv - ok 14:35:15.0993 3956 TosCoSrv (98c864481d62f86ec8af65be3419a95b) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe 14:35:15.0999 3956 TosCoSrv - ok 14:35:16.0342 3956 TOSHIBA HDD SSD Alert Service (74c2fa8c3765ee71a9c22182ec108457) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe 14:35:16.0345 3956 TOSHIBA HDD SSD Alert Service - ok 14:35:16.0403 3956 TrkWks (7e7afd841694f6ac397e99d75cead49d) C:\Windows\System32\trkwks.dll 14:35:16.0406 3956 TrkWks - ok 14:35:16.0507 3956 TrustedInstaller (773212b2aaa24c1e31f10246b15b276c) C:\Windows\servicing\TrustedInstaller.exe 14:35:16.0510 3956 TrustedInstaller - ok 14:35:16.0587 3956 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys 14:35:16.0589 3956 tssecsrv - ok 14:35:16.0638 3956 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys 14:35:16.0640 3956 TsUsbFlt - ok 14:35:16.0678 3956 TsUsbGD (9cc2ccae8a84820eaecb886d477cbcb8) C:\Windows\system32\drivers\TsUsbGD.sys 14:35:16.0680 3956 TsUsbGD - ok 14:35:16.0976 3956 TuneUp.UtilitiesSvc (535a376629a37e03f993d769490e8eed) C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe 14:35:17.0047 3956 TuneUp.UtilitiesSvc - ok 14:35:17.0193 3956 TuneUpUtilitiesDrv (dcc94c51d27c7ec0dadeca8f64c94fcf) C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesDriver64.sys 14:35:17.0194 3956 TuneUpUtilitiesDrv - ok 14:35:17.0330 3956 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys 14:35:17.0332 3956 tunnel - ok 14:35:17.0429 3956 TVALZ (550b567f9364d8f7684c3fb3ea665a72) C:\Windows\system32\DRIVERS\TVALZ_O.SYS 14:35:17.0431 3956 TVALZ - ok 14:35:17.0477 3956 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys 14:35:17.0479 3956 uagp35 - ok 14:35:17.0515 3956 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys 14:35:17.0521 3956 udfs - ok 14:35:17.0580 3956 UI0Detect (3cbdec8d06b9968aba702eba076364a1) C:\Windows\system32\UI0Detect.exe 14:35:17.0583 3956 UI0Detect - ok 14:35:17.0640 3956 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys 14:35:17.0642 3956 uliagpkx - ok 14:35:17.0674 3956 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\DRIVERS\umbus.sys 14:35:17.0676 3956 umbus - ok 14:35:17.0735 3956 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys 14:35:17.0736 3956 UmPass - ok 14:35:17.0791 3956 upnphost (d47ec6a8e81633dd18d2436b19baf6de) C:\Windows\System32\upnphost.dll 14:35:17.0797 3956 upnphost - ok 14:35:17.0846 3956 USBAAPL64 (aa33fc47ed58c34e6e9261e4f850b7eb) C:\Windows\system32\Drivers\usbaapl64.sys 14:35:17.0848 3956 USBAAPL64 - ok 14:35:17.0909 3956 usbaudio (82e8f44688e6fac57b5b7c6fc7adbc2a) C:\Windows\system32\drivers\usbaudio.sys 14:35:17.0913 3956 usbaudio - ok 14:35:17.0958 3956 usbccgp (481dff26b4dca8f4cbac1f7dce1d6829) C:\Windows\system32\DRIVERS\usbccgp.sys 14:35:17.0960 3956 usbccgp - ok 14:35:18.0027 3956 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys 14:35:18.0030 3956 usbcir - ok 14:35:18.0059 3956 usbehci (74ee782b1d9c241efe425565854c661c) C:\Windows\system32\DRIVERS\usbehci.sys 14:35:18.0062 3956 usbehci - ok 14:35:18.0122 3956 usbhub (dc96bd9ccb8403251bcf25047573558e) C:\Windows\system32\DRIVERS\usbhub.sys 14:35:18.0128 3956 usbhub - ok 14:35:18.0150 3956 usbohci (58e546bbaf87664fc57e0f6081e4f609) C:\Windows\system32\drivers\usbohci.sys 14:35:18.0152 3956 usbohci - ok 14:35:18.0191 3956 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\drivers\usbprint.sys 14:35:18.0193 3956 usbprint - ok 14:35:18.0235 3956 USBSTOR (d76510cfa0fc09023077f22c2f979d86) C:\Windows\system32\drivers\USBSTOR.SYS 14:35:18.0237 3956 USBSTOR - ok 14:35:18.0266 3956 usbuhci (81fb2216d3a60d1284455d511797db3d) C:\Windows\system32\DRIVERS\usbuhci.sys 14:35:18.0268 3956 usbuhci - ok 14:35:18.0324 3956 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\System32\Drivers\usbvideo.sys 14:35:18.0328 3956 usbvideo - ok 14:35:18.0377 3956 UxSms (edbb23cbcf2cdf727d64ff9b51a6070e) C:\Windows\System32\uxsms.dll 14:35:18.0380 3956 UxSms - ok 14:35:18.0437 3956 UxTuneUp (6f10c7ff1f1e3f45d7e20dd6e398682e) C:\Windows\System32\uxtuneup.dll 14:35:18.0440 3956 UxTuneUp - ok 14:35:18.0508 3956 VaultSvc (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe 14:35:18.0511 3956 VaultSvc - ok 14:35:18.0540 3956 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys 14:35:18.0542 3956 vdrvroot - ok 14:35:18.0615 3956 vds (8d6b481601d01a456e75c3210f1830be) C:\Windows\System32\vds.exe 14:35:18.0635 3956 vds - ok 14:35:18.0685 3956 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys 14:35:18.0687 3956 vga - ok 14:35:18.0729 3956 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys 14:35:18.0731 3956 VgaSave - ok 14:35:18.0765 3956 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys 14:35:18.0769 3956 vhdmp - ok 14:35:18.0791 3956 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys 14:35:18.0793 3956 viaide - ok 14:35:18.0819 3956 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys 14:35:18.0822 3956 volmgr - ok 14:35:18.0848 3956 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys 14:35:18.0853 3956 volmgrx - ok 14:35:18.0897 3956 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys 14:35:18.0902 3956 volsnap - ok 14:35:18.0942 3956 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys 14:35:18.0946 3956 vsmraid - ok 14:35:19.0089 3956 VSS (b60ba0bc31b0cb414593e169f6f21cc2) C:\Windows\system32\vssvc.exe 14:35:19.0120 3956 VSS - ok 14:35:19.0296 3956 vToolbarUpdater (980e45498392e6659d2e7c44e7de2336) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\10.0.6\ToolbarUpdater.exe 14:35:19.0303 3956 vToolbarUpdater - ok 14:35:19.0537 3956 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\System32\drivers\vwifibus.sys 14:35:19.0539 3956 vwifibus - ok 14:35:19.0567 3956 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys 14:35:19.0569 3956 vwififlt - ok 14:35:19.0604 3956 vwifimp (6a638fc4bfddc4d9b186c28c91bd1a01) C:\Windows\system32\DRIVERS\vwifimp.sys 14:35:19.0605 3956 vwifimp - ok 14:35:19.0657 3956 W32Time (1c9d80cc3849b3788048078c26486e1a) C:\Windows\system32\w32time.dll 14:35:19.0664 3956 W32Time - ok 14:35:19.0701 3956 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys 14:35:19.0703 3956 WacomPen - ok 14:35:19.0736 3956 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys 14:35:19.0738 3956 WANARP - ok 14:35:19.0752 3956 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys 14:35:19.0754 3956 Wanarpv6 - ok 14:35:19.0838 3956 WatAdminSvc (3cec96de223e49eaae3651fcf8faea6c) C:\Windows\system32\Wat\WatAdminSvc.exe 14:35:19.0853 3956 WatAdminSvc - ok 14:35:19.0930 3956 wbengine (78f4e7f5c56cb9716238eb57da4b6a75) C:\Windows\system32\wbengine.exe 14:35:19.0949 3956 wbengine - ok 14:35:20.0060 3956 WbioSrvc (3aa101e8edab2db4131333f4325c76a3) C:\Windows\System32\wbiosrvc.dll 14:35:20.0065 3956 WbioSrvc - ok 14:35:20.0105 3956 wcncsvc (7368a2afd46e5a4481d1de9d14848edd) C:\Windows\System32\wcncsvc.dll 14:35:20.0112 3956 wcncsvc - ok 14:35:20.0140 3956 WcsPlugInService (20f7441334b18cee52027661df4a6129) C:\Windows\System32\WcsPlugInService.dll 14:35:20.0143 3956 WcsPlugInService - ok 14:35:20.0235 3956 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys 14:35:20.0237 3956 Wd - ok 14:35:20.0294 3956 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys 14:35:20.0303 3956 Wdf01000 - ok 14:35:20.0346 3956 WdiServiceHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll 14:35:20.0349 3956 WdiServiceHost - ok 14:35:20.0363 3956 WdiSystemHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll 14:35:20.0366 3956 WdiSystemHost - ok 14:35:20.0407 3956 WebClient (3db6d04e1c64272f8b14eb8bc4616280) C:\Windows\System32\webclnt.dll 14:35:20.0413 3956 WebClient - ok 14:35:20.0456 3956 Wecsvc (c749025a679c5103e575e3b48e092c43) C:\Windows\system32\wecsvc.dll 14:35:20.0461 3956 Wecsvc - ok 14:35:20.0489 3956 wercplsupport (7e591867422dc788b9e5bd337a669a08) C:\Windows\System32\wercplsupport.dll 14:35:20.0493 3956 wercplsupport - ok 14:35:20.0516 3956 WerSvc (6d137963730144698cbd10f202e9f251) C:\Windows\System32\WerSvc.dll 14:35:20.0521 3956 WerSvc - ok 14:35:20.0585 3956 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys 14:35:20.0586 3956 WfpLwf - ok 14:35:20.0622 3956 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys 14:35:20.0624 3956 WIMMount - ok 14:35:20.0680 3956 WinDefend - ok 14:35:20.0710 3956 WinHttpAutoProxySvc - ok 14:35:20.0820 3956 Winmgmt (19b07e7e8915d701225da41cb3877306) C:\Windows\system32\wbem\WMIsvc.dll 14:35:20.0825 3956 Winmgmt - ok 14:35:20.0992 3956 WinRM (bcb1310604aa415c4508708975b3931e) C:\Windows\system32\WsmSvc.dll 14:35:21.0048 3956 WinRM - ok 14:35:21.0345 3956 WinUsb (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUsb.sys 14:35:21.0347 3956 WinUsb - ok 14:35:21.0423 3956 Wlansvc (4fada86e62f18a1b2f42ba18ae24e6aa) C:\Windows\System32\wlansvc.dll 14:35:21.0435 3956 Wlansvc - ok 14:35:21.0513 3956 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys 14:35:21.0515 3956 WmiAcpi - ok 14:35:21.0690 3956 wmiApSrv (38b84c94c5a8af291adfea478ae54f93) C:\Windows\system32\wbem\WmiApSrv.exe 14:35:21.0694 3956 wmiApSrv - ok 14:35:21.0755 3956 WMPNetworkSvc - ok 14:35:21.0929 3956 WPCSvc (96c6e7100d724c69fcf9e7bf590d1dca) C:\Windows\System32\wpcsvc.dll 14:35:21.0932 3956 WPCSvc - ok 14:35:21.0960 3956 WPDBusEnum (93221146d4ebbf314c29b23cd6cc391d) C:\Windows\system32\wpdbusenum.dll 14:35:21.0965 3956 WPDBusEnum - ok 14:35:21.0997 3956 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys 14:35:21.0999 3956 ws2ifsl - ok 14:35:22.0039 3956 wscsvc (e8b1fe6669397d1772d8196df0e57a9e) C:\Windows\System32\wscsvc.dll 14:35:22.0042 3956 wscsvc - ok 14:35:22.0058 3956 WSearch - ok 14:35:22.0168 3956 wuauserv (9df12edbc698b0bc353b3ef84861e430) C:\Windows\system32\wuaueng.dll 14:35:22.0226 3956 wuauserv - ok 14:35:22.0540 3956 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys 14:35:22.0543 3956 WudfPf - ok 14:35:22.0571 3956 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys 14:35:22.0575 3956 WUDFRd - ok 14:35:22.0622 3956 wudfsvc (7a95c95b6c4cf292d689106bcae49543) C:\Windows\System32\WUDFSvc.dll 14:35:22.0625 3956 wudfsvc - ok 14:35:22.0653 3956 WwanSvc (9a3452b3c2a46c073166c5cf49fad1ae) C:\Windows\System32\wwansvc.dll 14:35:22.0658 3956 WwanSvc - ok 14:35:22.0905 3956 YahooAUService (dd0042f0c3b606a6a8b92d49afb18ad6) C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe 14:35:22.0946 3956 YahooAUService - ok 14:35:22.0998 3956 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0 14:35:23.0080 3956 \Device\Harddisk0\DR0 - ok 14:35:23.0114 3956 Boot (0x1200) (85b6861f757dbf9fa38f6ba107fa1223) \Device\Harddisk0\DR0\Partition0 14:35:23.0115 3956 \Device\Harddisk0\DR0\Partition0 - ok 14:35:23.0144 3956 Boot (0x1200) (24afb1aa207a177ae3deadd9aec9d6b1) \Device\Harddisk0\DR0\Partition1 14:35:23.0145 3956 \Device\Harddisk0\DR0\Partition1 - ok 14:35:23.0150 3956 ============================================================ 14:35:23.0150 3956 Scan finished 14:35:23.0150 3956 ============================================================ 14:35:23.0171 1524 Detected object count: 0 14:35:23.0171 1524 Actual detected object count: 0
DDS Notepad: DDS (Ver_2011-08-26.01) - NTFSAMD64 Internet Explorer: 8.0.7601.17514 BrowserJavaVersion: 1.6.0_24 Run by [removed] at 14:53:50 on 2012-05-03 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.44.1033.18.956.127 [GMT 1:00] . AV: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {86355677-4064-3EA7-ABB3-1B136EB04637} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} SP: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {3D54B793-665E-3129-9103-206115370C8A} FW: McAfee Firewall *Enabled* {BE0ED752-0A0B-3FFF-80EC-B2269063014C} . ============== Running Processes =============== . C:\Windows\system32\wininit.exe C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Windows\SysWOW64\svchost.exe -k hpdevmgmt C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe C:\Windows\system32\mfevtps.exe C:\Windows\system32\rundll32.exe C:\Windows\system32\rundll32.exe C:\Windows\SysWOW64\rundll32.exe C:\Windows\System32\svchost.exe -k HPZ12 C:\Windows\System32\svchost.exe -k HPZ12 C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe C:\Windows\system32\svchost.exe -k imgsvc C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe C:\Windows\system32\TODDSrv.exe C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\10.0.6\ToolbarUpdater.exe C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe C:\Windows\system32\taskhost.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files (x86)\TeamViewer\Version6\TeamViewer.exe C:\Program Files\McAfee\MAT\McPvTray.exe C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesApp64.exe C:\Program Files\McAfee.com\Agent\mcagent.exe C:\Windows\system32\svchost.exe -k HPService C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\system32\SearchIndexer.exe C:\Windows\system32\taskeng.exe C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe C:\Program Files (x86)\TeamViewer\Version6\tv_w32.exe C:\Program Files (x86)\TeamViewer\Version6\tv_x64.exe C:\Program Files\Windows Media Player\wmpnetwk.exe C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe C:\Windows\System32\svchost.exe -k LocalServicePeerNet C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe c:\PROGRA~2\mcafee\SITEAD~1\saui.exe C:\PROGRA~1\McAfee\MSM\McSmtFwk.exe C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe C:\Windows\System32\svchost.exe -k secsvcs C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe C:\Windows\system32\SearchProtocolHost.exe C:\Windows\system32\SearchFilterHost.exe C:\Windows\system32\DllHost.exe C:\Windows\system32\DllHost.exe C:\Windows\SysWOW64\cmd.exe C:\Windows\system32\conhost.exe C:\Windows\SysWOW64\cscript.exe . ============== Pseudo HJT Report =============== . uStart Page = hxxp://google.com/ uWindow Title = Internet Explorer, optimized for Bing and MSN uInternet Settings,ProxyOverride = *.local uURLSearchHooks: YTNavAssist.YTNavAssistPlugin Class: {81017ea9-9aa8-4a6a-9734-7af40e7d593f} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\YTNavAssist.dll uURLSearchHooks: McAfee SiteAdvisor Toolbar: {0ebbbe48-bad4-4b4c-8e5a-516abecae064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll mURLSearchHooks: H - No File mWinlogon: Userinit=userinit.exe, BHO: &Yahoo;! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\yt.dll BHO: HP Print Enhancer: {0347c33e-8762-4905-bf09-768834316c61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll BHO: FastestTubeBHO Class: {3e532ce8-c6d9-4a10-8ace-4348c96e8b6a} - C:\Program Files (x86)\FastestTube\2.0.0\WombatBHO.dll BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll BHO: scriptproxy: {7db2d5a0-7241-4e79-b68d-6309f01c5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20120120133643.dll BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll BHO: ReImage Helper Verifier: {963b125b-8b21-49a2-a3a8-e37092276531} - C:\Program Files (x86)\ReImageCompanion\updatebhoWin32.dll BHO: ReImage Browser Helper: {a0e8bc7d-6959-40b6-8e05-204d9768ad6e} - C:\Program Files (x86)\ReImageCompanion\jsloader.dll BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll BHO: Skype add-on for Internet Explorer: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll BHO: McAfee SiteAdvisor BHO: {b164e929-a1b6-4a06-b104-2cd0e90a88ff} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll BHO: {cc59e0f9-7e43-44fa-9faa-8377850bf205} - FDMIECookiesBHO Class BHO: Bing Bar BHO: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2380.0\npwinext.dll BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll BHO: TOSHIBA Media Controller Plug-in: {f3c88694-effa-4d78-b409-54b7b2535b14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll BHO: SingleInstance Class: {fdad4da1-61a2-4fd8-9c17-86f7ac245081} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll BHO: HP Smart BHO Class: {ffffffff-cf4e-4f2b-bdc2-0e72e116a856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll TB: @C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2380.0\npwinext.dll,-100: {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2380.0\npwinext.dll TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\yt.dll TB: {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No File TB: {95B7759C-8C7F-4BF1-B163-73684A933233} - No File TB: McAfee SiteAdvisor Toolbar: {0ebbbe48-bad4-4b4c-8e5a-516abecae064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll {e7df6bff-55a5-4eb7-a673-4ed3e9456d39} EB: HP Smart Web Printing: {555d4d79-4bd2-4094-a395-cfc534424a05} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_bho.dll uRun: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" uRun: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background mRun: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey mRun: [] dRun: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe mPolicies-explorer: NoActiveDesktop = 1 (0x1) mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1) mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0) mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3) mPolicies-system: EnableUIADesktopToggle = 0 (0x0) mPolicies-system: PromptOnSecureDesktop = 0 (0x0) IE: Download all with Free Download Manager IE: Download selected with Free Download Manager IE: Download video with Free Download Manager IE: Download with Free Download Manager IE: E&xport; to Microsoft Excel - C:\PROGRA~2\MIF5BA~1\Office12\EXCEL.EXE/3000 IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\PROGRA~2\MIF5BA~1\OFFICE11\REFIEBAR.DLL IE: {DDE87865-83C5-48c4-8357-2F5B1AA84522} - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll Trusted Zone: internet Trusted Zone: mcafee.com DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} - hxxp://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework//microsoft/wrc32.ocx DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab TCP: DhcpNameServer = 192.168.0.1 TCP: Interfaces\{7BC6162B-8FA6-4F02-9D16-FCC1846E815F} : DhcpNameServer = 192.168.0.1 Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\MCAFEE\MSC\McSnIePl.dll Handler: base64 - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files (x86)\ReImageCompanion\tdataprotocol.dll Handler: chrome - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files (x86)\ReImageCompanion\tdataprotocol.dll Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\MCAFEE\SITEAD~1\McIEPlg.dll Handler: prox - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files (x86)\ReImageCompanion\tdataprotocol.dll Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\MCAFEE\SITEAD~1\McIEPlg.dll Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\10.0.6\ViProtocol.dll BHO-X64: &Yahoo;! Toolbar Helper: {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\yt.dll BHO-X64: 0x1 - No File BHO-X64: HP Print Enhancer: {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll BHO-X64: HP Print Enhancer - No File BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll BHO-X64: AcroIEHelperStub - No File BHO-X64: FastestTubeBHO Class: {3E532CE8-C6D9-4A10-8ACE-4348C96E8B6A} - C:\Program Files (x86)\FastestTube\2.0.0\WombatBHO.dll BHO-X64: FastestTube BHO - No File BHO-X64: Search Helper: {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll BHO-X64: Search Helper - No File BHO-X64: scriptproxy: {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20120120133643.dll BHO-X64: scriptproxy - No File BHO-X64: Windows Live Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll BHO-X64: ReImage Helper Verifier: {963B125B-8B21-49A2-A3A8-E37092276531} - C:\Program Files (x86)\ReImageCompanion\updatebhoWin32.dll BHO-X64: Update Timer - No File BHO-X64: ReImage Browser Helper: {a0e8bc7d-6959-40b6-8e05-204d9768ad6e} - C:\Program Files (x86)\ReImageCompanion\jsloader.dll BHO-X64: script helper for ie - No File BHO-X64: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll BHO-X64: Skype add-on for Internet Explorer: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll BHO-X64: SkypeIEPluginBHO - No File BHO-X64: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll BHO-X64: McAfee SiteAdvisor BHO: {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll BHO-X64: {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - FDMIECookiesBHO Class BHO-X64: Bing Bar BHO: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2380.0\npwinext.dll BHO-X64: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll BHO-X64: TOSHIBA Media Controller Plug-in: {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll BHO-X64: SingleInstance Class: {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll BHO-X64: HP Smart BHO Class: {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll BHO-X64: HP Smart BHO Class - No File TB-X64: @C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2380.0\npwinext.dll,-100: {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2380.0\npwinext.dll TB-X64: Yahoo! Toolbar: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\yt.dll TB-X64: {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No File TB-X64: {95B7759C-8C7F-4BF1-B163-73684A933233} - No File TB-X64: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll TB-X64: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll EB-X64: {555D4D79-4BD2-4094-A395-CFC534424A05} - No File mRun-x64: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey mRun-x64: [(Default)] . ================= FIREFOX =================== . FF - ProfilePath - C:\Users\Christina\AppData\Roaming\Mozilla\Firefox\Profiles\me606ewo.default\ FF - prefs.js: browser.startup.homepage - hxxp://www.google.co.uk/ FF - prefs.js: network.proxy.type - 0 FF - plugin: c:\progra~2\mcafee\msc\npMcSnFFPl.dll FF - plugin: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll FF - plugin: C:\Program Files (x86)\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll FF - plugin: C:\Program Files (x86)\McAfee\SiteAdvisor\NPMcFFPlg32.dll FF - plugin: C:\Program Files (x86)\McAfee\Supportability\MVT\NPMVTPlugin.dll FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrlui.dll FF - plugin: C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll FF - plugin: C:\Users\Christina\AppData\Local\Yahoo!\BrowserPlus\2.9.8\Plugins\npybrowserplus_2.9.8.dll FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_233.dll . ============= SERVICES / DRIVERS =============== . R0 McPvDrv;McPvDrv Driver;C:\Windows\system32\drivers\McPvDrv.sys –> C:\Windows\system32\drivers\McPvDrv.sys [?] R0 mfehidk;McAfee Inc. mfehidk;C:\Windows\system32\drivers\mfehidk.sys –> C:\Windows\system32\drivers\mfehidk.sys [?] R0 mfewfpk;McAfee Inc. mfewfpk;C:\Windows\system32\drivers\mfewfpk.sys –> C:\Windows\system32\drivers\mfewfpk.sys [?] R1 mfenlfk;McAfee NDIS Light Filter;C:\Windows\system32\DRIVERS\mfenlfk.sys –> C:\Windows\system32\DRIVERS\mfenlfk.sys [?] R1 RapportCerberus_32029;RapportCerberus_32029;C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\32029\RapportCerberus64_32029.sys [2011-10-18 396816] R1 RapportEI64;RapportEI64;C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys [2011-8-21 52496] R1 RapportPG64;RapportPG64;C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys [2011-8-21 61200] R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\system32\DRIVERS\vwififlt.sys –> C:\Windows\system32\DRIVERS\vwififlt.sys [?] R2 AdobeARMservice;Adobe Acrobat Update Service;C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-1-3 63928] R2 cfWiMAXService;ConfigFree WiMAX Service;C:\Program Files (x86)\Toshiba\ConfigFree\CFIWmxSvcs64.exe [2010-1-28 249200] R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576] R2 ConfigFree Service;ConfigFree Service;C:\Program Files (x86)\Toshiba\ConfigFree\CFSvcs.exe [2009-3-10 46448] R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-1-19 249936] R2 McMPFSvc;McAfee Personal Firewall Service;C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-1-19 249936] R2 McNaiAnn;McAfee VirusScan Announcer;C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-1-19 249936] R2 McProxy;McAfee Proxy Service;C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-1-19 249936] R2 McShield;McAfee McShield;C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe [2011-7-4 199272] R2 mfefire;McAfee Firewall Core Service;C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe [2011-7-4 208536] R2 mfevtp;McAfee Validation Trust Protection Service;"C:\Windows\system32\mfevtps.exe" –> C:\Windows\system32\mfevtps.exe [?] R2 RapportMgmtService;Rapport Management Service;C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe [2011-8-21 870200] R2 TeamViewer6;TeamViewer 6;C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe [2011-6-4 2337144] R2 TemproMonitoringService;Notebook Performance Tuning Service (TEMPRO);C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [2011-2-10 112080] R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe [2011-12-8 2028864] R2 vToolbarUpdater;vToolbarUpdater;C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\10.0.6\ToolbarUpdater.exe [2012-1-16 909152] R3 cfwids;McAfee Inc. cfwids;C:\Windows\system32\drivers\cfwids.sys –> C:\Windows\system32\drivers\cfwids.sys [?] R3 FwLnk;FwLnk Driver;C:\Windows\system32\DRIVERS\FwLnk.sys –> C:\Windows\system32\DRIVERS\FwLnk.sys [?] R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;C:\Windows\system32\DRIVERS\L1C62x64.sys –> C:\Windows\system32\DRIVERS\L1C62x64.sys [?] R3 mfeavfk;McAfee Inc. mfeavfk;C:\Windows\system32\drivers\mfeavfk.sys –> C:\Windows\system32\drivers\mfeavfk.sys [?] R3 mfefirek;McAfee Inc. mfefirek;C:\Windows\system32\drivers\mfefirek.sys –> C:\Windows\system32\drivers\mfefirek.sys [?] R3 PGEffect;Pangu effect driver;C:\Windows\system32\DRIVERS\pgeffect.sys –> C:\Windows\system32\DRIVERS\pgeffect.sys [?] R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesDriver64.sys [2010-11-29 11856] R3 vwifimp;Microsoft Virtual WiFi Miniport Service;C:\Windows\system32\DRIVERS\vwifimp.sys –> C:\Windows\system32\DRIVERS\vwifimp.sys [?] S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-4-18 136176] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-4-2 253088] S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-4-18 136176] S3 mferkdet;McAfee Inc. mferkdet;C:\Windows\system32\drivers\mferkdet.sys –> C:\Windows\system32\drivers\mferkdet.sys [?] S3 MozillaMaintenance;Mozilla Maintenance Service;C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-5-3 129976] S3 RapportKE64;RapportKE64;C:\Windows\system32\Drivers\RapportKE64.sys –> C:\Windows\system32\Drivers\RapportKE64.sys [?] S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\system32\Drivers\RtsUStor.sys –> C:\Windows\system32\Drivers\RtsUStor.sys [?] S3 TMachInfo;TMachInfo;C:\Program Files (x86)\Toshiba\TOSHIBA Service Station\TMachInfo.exe [2010-4-8 51512] S3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service;C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2010-2-5 137560] S3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsusbflt.sys –> C:\Windows\system32\drivers\tsusbflt.sys [?] S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\system32\drivers\TsUsbGD.sys –> C:\Windows\system32\drivers\TsUsbGD.sys [?] S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\system32\Drivers\usbaapl64.sys –> C:\Windows\system32\Drivers\usbaapl64.sys [?] S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe –> C:\Windows\system32\Wat\WatAdminSvc.exe [?] . =============== Created Last 30 ================ . 2012-05-03 11:25:11 69000 —-a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C97D03E6-9F85-4866-86D1-C918808DFC8D}\offreg.dll 2012-05-03 09:53:13 ——– d—–w- C:\Program Files (x86)\Mozilla Maintenance Service 2012-05-03 09:52:55 157352 —-a-w- C:\Program Files (x86)\Mozilla Firefox\maintenanceservice_installer.exe 2012-05-03 09:52:55 129976 —-a-w- C:\Program Files (x86)\Mozilla Firefox\maintenanceservice.exe 2012-05-01 19:42:06 8917360 —-a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C97D03E6-9F85-4866-86D1-C918808DFC8D}\mpengine.dll 2012-04-23 08:42:44 ——– d—–w- C:\Program Files (x86)\ReImageCompanion 2012-04-22 23:57:22 ——– d—–w- C:\ProgramData\blekko toolbars 2012-04-22 23:56:59 ——– d—–w- C:\Program Files (x86)\Un-Zip for Windows 2012-04-22 23:56:33 ——– d—–w- C:\Program Files (x86)\I Want This 2012-04-22 23:56:30 ——– d—–w- C:\Program Files (x86)\blekkotb_005 2012-04-22 23:56:22 ——– d—–w- C:\Users\Christina\AppData\Local\blekkotb_005 2012-04-22 23:56:16 ——– d—–w- C:\ProgramData\Anti-phishing Domain Advisor 2012-04-22 22:50:18 ——– d—–w- C:\Reg_Backup 2012-04-22 22:16:40 ——– d—–w- C:\Tweaking.com_Windows_Repair_Logs 2012-04-22 22:16:12 ——– d—–w- C:\Program Files (x86)\Tweaking.com 2012-04-22 21:58:30 ——– d—–w- C:\ProgramData\Uniblue 2012-04-18 13:38:11 ——– d—–w- C:\Users\Christina\AppData\Roaming\Malwarebytes 2012-04-18 13:37:28 ——– d—–w- C:\ProgramData\Malwarebytes 2012-04-18 13:37:20 ——– d—–w- C:\Program Files (x86)\Malwarebytes' Anti-Malware 2012-04-14 00:26:19 5559152 —-a-w- C:\Windows\System32\ntoskrnl.exe 2012-04-14 00:26:18 3968368 —-a-w- C:\Windows\SysWow64\ntkrnlpa.exe 2012-04-14 00:26:18 3913072 —-a-w- C:\Windows\SysWow64\ntoskrnl.exe 2012-04-14 00:17:19 81408 —-a-w- C:\Windows\System32\imagehlp.dll 2012-04-14 00:17:19 23408 —-a-w- C:\Windows\System32\drivers\fs_rec.sys 2012-04-14 00:17:19 159232 —-a-w- C:\Windows\SysWow64\imagehlp.dll 2012-04-14 00:17:16 5120 —-a-w- C:\Windows\SysWow64\wmi.dll 2012-04-14 00:17:16 5120 —-a-w- C:\Windows\System32\wmi.dll 2012-04-14 00:17:16 220672 —-a-w- C:\Windows\System32\wintrust.dll 2012-04-14 00:17:16 172544 —-a-w- C:\Windows\SysWow64\wintrust.dll 2012-04-04 05:53:56 182160 —-a-w- C:\Program Files (x86)\Internet Explorer\Plugins\nppdf32.dll . ==================== Find3M ==================== . 2012-04-23 09:04:04 9728 —-a-w- C:\Windows\System32\Native.exe 2012-04-15 14:58:53 70304 —-a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl 2012-04-15 14:58:53 418464 —-a-w- C:\Windows\SysWow64\FlashPlayerApp.exe 2012-04-15 14:58:28 8741536 —-a-w- C:\Windows\SysWow64\FlashPlayerInstaller.exe 2012-04-04 14:56:40 24904 —-a-w- C:\Windows\System32\drivers\mbam.sys 2012-02-28 06:39:37 1188864 —-a-w- C:\Windows\System32\wininet.dll 2012-02-28 05:38:52 981504 —-a-w- C:\Windows\SysWow64\wininet.dll 2012-02-28 04:31:38 1638912 —-a-w- C:\Windows\System32\mshtml.tlb 2012-02-28 03:52:27 1638912 —-a-w- C:\Windows\SysWow64\mshtml.tlb 2012-02-23 09:18:36 279656 ——w- C:\Windows\System32\MpSigStub.exe 2012-02-17 06:38:26 1031680 —-a-w- C:\Windows\System32\rdpcore.dll 2012-02-17 05:34:22 826880 —-a-w- C:\Windows\SysWow64\rdpcore.dll 2012-02-17 04:58:24 210944 —-a-w- C:\Windows\System32\drivers\rdpwd.sys 2012-02-17 04:57:32 23552 —-a-w- C:\Windows\System32\drivers\tdtcp.sys 2012-02-10 06:36:07 1544192 —-a-w- C:\Windows\System32\DWrite.dll 2012-02-10 05:38:43 1077248 —-a-w- C:\Windows\SysWow64\DWrite.dll . ============= FINISH: 14:56:56.73 =============== . UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG. IF REQUESTED, ZIP IT UP & ATTACH IT . DDS (Ver_2011-08-26.01) . Microsoft Windows 7 Home Premium Boot Device: \Device\HarddiskVolume1 Install Date: 08/04/2011 14:37:20 System Uptime: 03/05/2012 14:22:10 (0 hours ago) . Motherboard: TOSHIBA | | Portable PC Processor: Intel® Celeron® CPU 900 @ 2.20GHz | CPU | 2194/800mhz . ==== Disk Partitions ========================= . C: is FIXED (NTFS) - 116 GiB total, 58.812 GiB free. D: is FIXED (NTFS) - 116 GiB total, 108.864 GiB free. E: is CDROM () . ==== Disabled Device Manager Items ============= . Class GUID: {6bdd1fc6-810f-11d0-bec7-08002be2092f} Description: Photosmart C6100 series Device ID: ROOT\IMAGE\0001 Manufacturer: HP Name: Photosmart C6100 series PNP Device ID: ROOT\IMAGE\0001 Service: StillCam . Class GUID: Description: Photosmart C6100 series Device ID: ROOT\MULTIFUNCTION\0000 Manufacturer: Name: Photosmart C6100 series PNP Device ID: ROOT\MULTIFUNCTION\0000 Service: . Class GUID: {4d36e971-e325-11ce-bfc1-08002be10318} Description: Photosmart C6100 series Device ID: ROOT\MULTIFUNCTION\0001 Manufacturer: HP Name: Photosmart C6100 series PNP Device ID: ROOT\MULTIFUNCTION\0001 Service: . ==== System Restore Points =================== . RP444: 27/04/2012 11:46:31 - Windows Update RP445: 29/04/2012 22:23:42 - Windows Update RP446: 30/04/2012 16:49:45 - Windows Update RP447: 30/04/2012 22:13:31 - Windows Update RP448: 01/05/2012 14:46:07 - Windows Update RP449: 02/05/2012 00:48:51 - Windows Update RP450: 02/05/2012 23:39:50 - Windows Update . ==== Installed Programs ====================== . Adobe AIR Adobe Reader X (10.1.3) AIO_CDA_ProductContext AIO_CDA_Software AIO_Scan Amazon.co.uk Apple Application Support Apple Software Update Atheros Communications Inc.® AR81Family Gigabit/Fast Ethernet Driver Atheros Driver Installation Program Bing Bar Bing Bar Platform BlackBerry Desktop Software 6.1 BufferChm C6100 c6100_Help Camtasia Studio 7 Compatibility Pack for the 2007 Office system Copy Destinations DeviceDiscovery DocProc eBay FastestTube FastestTube-[removed] Fax ffdshow [rev 2527] [2008-12-19] FileZilla Client 3.4.0 FinePixViewer Ver.5.3 FYZip 1.00 Google Chrome Google Toolbar for Internet Explorer Google Update Helper GoToMeeting 4.5.0.457 GPBaseService2 HP Update HPPhotoGadget HPPhotoSmartDiscLabelContent1 HPPhotosmartEssential HPProductAssistant HPSSupply ImagXpress Intel® Graphics Media Accelerator Driver IrfanView (remove only) Java Auto Updater Java™ 6 Update 22 Java™ 6 Update 24 KompoZer 0.8b3 Malwarebytes Anti-Malware version 1.61.0.1400 MarketResearch McAfee Total Protection McAfee Virtual Technician Microsoft Choice Guard Microsoft Default Manager Microsoft Office Basic Edition 2003 Microsoft Office File Validation Add-In Microsoft Office Live Add-in 1.5 Microsoft Office Outlook Connector Microsoft Office PowerPoint Viewer 2007 (English) Microsoft Office Suite Activation Assistant Microsoft Search Enhancement Pack Microsoft Silverlight Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Works Mozilla Firefox 12.0 (x86 en-GB) Mozilla Maintenance Service MSVCRT MSXML 4.0 SP2 (KB954430) MSXML 4.0 SP2 (KB973688) neroxml OpenOffice.org 3.3 Photo Service - powered by myphotobook PSTViewer Pro QuickTime Rapport Realtek USB 2.0 Card Reader ReImageCompanion Scan Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870) Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078) Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870) Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351) Security Update for Microsoft .NET Framework 4 Extended (KB2487367) Skype Toolbars Skype™ 4.2 SmartWebPrinting SolutionCenter Status TeamViewer 6 Toolbox Toshiba Assist TOSHIBA Bulletin Board TOSHIBA ConfigFree TOSHIBA Face Recognition TOSHIBA Hardware Setup TOSHIBA HDD/SSD Alert Toshiba Manuals TOSHIBA Media Controller TOSHIBA Media Controller Plug-in TOSHIBA Online Product Information TOSHIBA Recovery Media Creator Reminder TOSHIBA ReelTime TOSHIBA Service Station TOSHIBA Supervisor Password TOSHIBA TEMPRO TOSHIBA Value Added Package TOSHIBA Web Camera Application TrayApp TRORMCLauncher TuneUp Utilities 2011 TuneUp Utilities Language Pack (en-US) UnloadSupport Update for Microsoft .NET Framework 4 Client Profile (KB2468871) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) Update for Microsoft .NET Framework 4 Extended (KB2468871) Update for Microsoft .NET Framework 4 Extended (KB2533523) Vivitar Experience Image Manager WebReg Windows Live Call Windows Live Communications Platform Windows Live Essentials Windows Live Mesh ActiveX Control for Remote Connections Windows Live Messenger Windows Live Sign-in Assistant Windows Live Sync Windows Live Upload Tool Yahoo! BrowserPlus 2.9.8 Yahoo! Messenger Yahoo! Software Update Yahoo! Toolbar . ==== Event Viewer Messages From Past Week ======== . 30/04/2012 21:01:29, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the McAfee SiteAdvisor Service service. 30/04/2012 21:00:07, Error: Server [2505] - The server could not bind to the transport \Device\NetBT_Tcpip_{7BC6162B-8FA6-4F02-9D16-FCC1846E815F} because another computer on the network has the same name. The server could not start. 27/04/2012 21:55:33, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the McNASvc service. 27/04/2012 21:49:44, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the HomeGroupListener service. 27/04/2012 20:28:56, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the McNaiAnn service. 27/04/2012 19:07:13, Error: Service Control Manager [7034] - The McAfee Scanner service terminated unexpectedly. It has done this 1 time(s). 27/04/2012 17:55:06, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the McODS service. 27/04/2012 13:25:30, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the ShellHWDetection service. 27/04/2012 12:44:32, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Definition Update for Windows Defender - KB915597 (Definition 1.125.655.0). 27/04/2012 12:38:12, Error: Service Control Manager [7022] - The McAfee VirusScan Announcer service hung on starting. 03/05/2012 14:24:24, Error: Service Control Manager [7023] - The Peer Name Resolution Protocol service terminated with the following error: %%-2140993535 03/05/2012 14:24:24, Error: Microsoft-Windows-PNRPSvc [102] - The Peer Name Resolution Protocol cloud did not start because the creation of the default identity failed with error code: 0x80630801. 03/05/2012 14:23:53, Error: Service Control Manager [7001] - The Peer Networking Grouping service depends on the Peer Name Resolution Protocol service which failed to start because of the following error: %%-2140993535 03/05/2012 14:22:33, Error: Service Control Manager [7000] - The TuneUp Theme Extension service failed to start due to the following error: The executable program that this service is configured to run in does not implement the service. 03/05/2012 10:31:32, Error: Service Control Manager [7022] - The Windows Defender service hung on starting. 03/05/2012 10:27:23, Error: Service Control Manager [7022] - The McAfee Network Agent service hung on starting. 03/05/2012 10:18:30, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000024 (0x00000000001904fb, 0xfffff880031235f8, 0xfffff88003122e50, 0xfffff8000303c8aa). A dump was saved in: C:\Windows\MEMORY.DMP. Report Id: 050312-23743-01. 02/05/2012 22:38:32, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the RapportMgmtService service. 02/05/2012 21:03:37, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Wlansvc service. 02/05/2012 21:03:37, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the fdPHost service. 02/05/2012 12:08:06, Error: Service Control Manager [7038] - The WdiServiceHost service was unable to log on as NT AUTHORITY\LocalService with the currently configured password due to the following error: The request is not supported. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC). 02/05/2012 12:08:06, Error: Service Control Manager [7038] - The netprofm service was unable to log on as NT AUTHORITY\LocalService with the currently configured password due to the following error: The request is not supported. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC). 02/05/2012 12:08:06, Error: Service Control Manager [7038] - The HPSLPSVC service was unable to log on as NT AUTHORITY\SYSTEM with the currently configured password due to the following error: The request is not supported. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC). 02/05/2012 12:08:06, Error: Service Control Manager [7000] - The Network List Service service failed to start due to the following error: The service did not start due to a logon failure. 02/05/2012 12:08:06, Error: Service Control Manager [7000] - The hpqcxs08 service failed to start due to the following error: A system shutdown is in progress. 02/05/2012 12:08:06, Error: Service Control Manager [7000] - The HP Network Devices Support service failed to start due to the following error: The service did not start due to a logon failure. 02/05/2012 12:08:06, Error: Service Control Manager [7000] - The Diagnostic Service Host service failed to start due to the following error: The service did not start due to a logon failure. 02/05/2012 12:07:59, Error: Service Control Manager [7023] - The Server service terminated with the following error: The data is invalid. 02/05/2012 12:07:51, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x0000003b (0x00000000c0000005, 0xfffff8000311e422, 0xfffff88005f69870, 0x0000000000000000). A dump was saved in: C:\Windows\MEMORY.DMP. Report Id: 050212-21793-01. 01/05/2012 20:35:33, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Definition Update for Windows Defender - KB915597 (Definition 1.125.886.0). 01/05/2012 20:31:27, Error: Service Control Manager [7022] - The Security Center service hung on starting. 01/05/2012 20:31:08, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the eventlog service. 01/05/2012 20:30:04, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the AudioSrv service. . ==== End Of File =========================== I am not sure if I did it correctly because the instructions do not exactly tally with what I found in the programs. The second attachment was meant to be sent in a zip but I could not see how. Please tell me if I should do it again. Thanks
Download Combofix from either of the links below, and save it to your desktop.

Link 1
Link 2



**Note: It is important that it is saved directly to your desktop**

——————————————————————–
IMPORTANT - Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools. If you have difficulty properly disabling your protective programs, refer to this link here
——————————————————————–

Double click on ComboFix.exe & follow the prompts.
  • When finished, it will produce a report for you.
  • Please post the C:\ComboFix.txt for further review.
Hi I had problems and come now from my netbook. I had difficulty of coming to the site because Firefox stopped work, explorer too. I could not proceed because of McAfee. Finally I managed to disable McAfee until reboot and did the scan on Combo. However I did not expect that the logs were only available after reboot. At the reboot McAfee blocked Combo's work. I disabled McAfee again for 60 min and tried to extract some logs from Combo but it remained frozen. I then closed it. After that I attempted to repeat the scan but every icon I touch gives me a message: "Illegal operation attempted on registry key that has been marked for deletion" I tried to system restore but I get the same message. Please advise.
Hi, Is this ok that Combo is preparing logs for more than 2 hours and nothing happens? I have this situation repeatedly. After scan Combo causes reboot and after reboot it shows a little blue screen with a message that it is preparings logs but it does not end, or maybe it needs to take several hours? I have uninstalled McAfee because Combo takes long time and McAfee manages to reopen itself. I had Combo scans on my other computer and never had such problem as now. Rebooting as per your advice did not cure the problem, finally I managed to system restore and do the scan by Combo again but as explained above no logs are received. I shall check now if another scan will work now that McAfee is uninstalled. Ch
Hi After another attempt with Combofix I had to leave it to produce the logs over night. This morning it was still not ready but after 30 min I received this log. It seems that earlier attempts have been recorded on the log. Please let me know if this is ok. :) ComboFix 12-05-03.02 - Christina 04/05/2012 0:47.2.1 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.44.1033.18.956.238 [GMT 1:00] Running from: c:\users\[removed]\Downloads\ComboFix.exe SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . ((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) . . —- Previous Run ——- . c:\program files (x86)\Mozilla Firefox\searchplugins\search.xml c:\users\Christina\AppData\Roaming\chrtmp c:\users\Christina\GoToAssistDownloadHelper.exe . . ((((((((((((((((((((((((( Files Created from 2012-04-04 to 2012-05-04 ))))))))))))))))))))))))))))))) . . 2012-05-04 00:03 . 2012-05-04 00:03 ——– d—–w- c:\users\Default\AppData\Local\temp 2012-05-03 23:33 . 2012-05-03 23:33 ——– d—–w- c:\users\Christina\AppData\Local\VS Revo Group 2012-05-03 23:32 . 2009-12-30 10:21 31800 —-a-w- c:\windows\system32\drivers\revoflt.sys 2012-05-03 23:32 . 2012-05-03 23:32 ——– d—–w- c:\program files\VS Revo Group 2012-05-03 23:14 . 2012-05-04 00:06 ——– d—–w- c:\program files (x86)\VS Revo Group 2012-05-03 09:53 . 2012-05-03 09:53 ——– d—–w- c:\program files (x86)\Mozilla Maintenance Service 2012-05-03 09:52 . 2012-05-03 09:52 157352 —-a-w- c:\program files (x86)\Mozilla Firefox\maintenanceservice_installer.exe 2012-05-03 09:52 . 2012-05-03 09:52 129976 —-a-w- c:\program files (x86)\Mozilla Firefox\maintenanceservice.exe 2012-04-23 08:42 . 2012-04-23 08:42 ——– d—–w- c:\program files (x86)\ReImageCompanion 2012-04-22 23:57 . 2012-04-22 23:57 ——– d—–w- c:\programdata\blekko toolbars 2012-04-22 23:56 . 2012-04-23 00:32 ——– d—–w- c:\program files (x86)\Un-Zip for Windows 2012-04-22 23:56 . 2012-04-23 00:32 ——– d—–w- c:\program files (x86)\I Want This 2012-04-22 23:56 . 2012-04-23 00:32 ——– d—–w- c:\program files (x86)\blekkotb_005 2012-04-22 23:56 . 2012-04-22 23:57 ——– d—–w- c:\users\Christina\AppData\Local\blekkotb_005 2012-04-22 23:56 . 2012-04-23 00:32 ——– d—–w- c:\programdata\Anti-phishing Domain Advisor 2012-04-22 22:50 . 2012-04-22 22:50 ——– d—–w- C:\Reg_Backup 2012-04-22 22:16 . 2012-04-22 22:54 ——– d—–w- C:\Tweaking.com_Windows_Repair_Logs 2012-04-22 22:16 . 2012-04-22 22:16 ——– d—–w- c:\program files (x86)\Tweaking.com 2012-04-22 22:04 . 2012-04-23 00:32 ——– d—–w- c:\program files (x86)\ERUNT 2012-04-22 21:58 . 2012-04-22 21:58 ——– d—–w- c:\programdata\Uniblue 2012-04-18 13:38 . 2012-04-18 13:38 ——– d—–w- c:\users\Christina\AppData\Roaming\Malwarebytes 2012-04-18 13:37 . 2012-04-18 13:37 ——– d—–w- c:\programdata\Malwarebytes 2012-04-18 13:37 . 2012-04-18 13:37 ——– d—–w- c:\program files (x86)\Malwarebytes' Anti-Malware 2012-04-14 00:26 . 2012-03-06 06:53 5559152 —-a-w- c:\windows\system32\ntoskrnl.exe 2012-04-14 00:26 . 2012-03-06 05:59 3968368 —-a-w- c:\windows\SysWow64\ntkrnlpa.exe 2012-04-14 00:26 . 2012-03-06 05:59 3913072 —-a-w- c:\windows\SysWow64\ntoskrnl.exe 2012-04-14 00:17 . 2012-03-01 06:46 23408 —-a-w- c:\windows\system32\drivers\fs_rec.sys 2012-04-14 00:17 . 2012-03-01 06:33 81408 —-a-w- c:\windows\system32\imagehlp.dll 2012-04-14 00:17 . 2012-03-01 05:33 159232 —-a-w- c:\windows\SysWow64\imagehlp.dll 2012-04-14 00:17 . 2012-03-01 06:38 220672 —-a-w- c:\windows\system32\wintrust.dll 2012-04-14 00:17 . 2012-03-01 06:28 5120 —-a-w- c:\windows\system32\wmi.dll 2012-04-14 00:17 . 2012-03-01 05:37 172544 —-a-w- c:\windows\SysWow64\wintrust.dll 2012-04-14 00:17 . 2012-03-01 05:29 5120 —-a-w- c:\windows\SysWow64\wmi.dll 2012-04-04 05:53 . 2012-04-04 05:53 182160 —-a-w- c:\program files (x86)\Internet Explorer\Plugins\nppdf32.dll . . . (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2012-05-03 20:16 . 2012-05-03 20:16 69000 —-a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{294A00A4-E71C-40BF-B20D-99AE2CA98D87}\offreg.dll 2012-04-23 09:04 . 2011-10-09 13:11 9728 —-a-w- c:\windows\system32\Native.exe 2012-04-18 02:03 . 2012-05-03 19:43 8917360 —-a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{294A00A4-E71C-40BF-B20D-99AE2CA98D87}\mpengine.dll 2012-04-15 14:58 . 2012-04-02 08:54 418464 —-a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2012-04-15 14:58 . 2011-09-27 17:52 70304 —-a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2012-04-15 14:58 . 2012-04-02 09:59 8741536 —-a-w- c:\windows\SysWow64\FlashPlayerInstaller.exe 2012-04-04 14:56 . 2011-07-19 12:51 24904 —-a-w- c:\windows\system32\drivers\mbam.sys 2012-02-23 09:18 . 2011-04-18 00:05 279656 ——w- c:\windows\system32\MpSigStub.exe 2012-02-17 06:38 . 2012-03-18 14:43 1031680 —-a-w- c:\windows\system32\rdpcore.dll 2012-02-17 05:34 . 2012-03-18 14:43 826880 —-a-w- c:\windows\SysWow64\rdpcore.dll 2012-02-17 04:58 . 2012-03-18 14:43 210944 —-a-w- c:\windows\system32\drivers\rdpwd.sys 2012-02-17 04:57 . 2012-03-18 14:43 23552 —-a-w- c:\windows\system32\drivers\tdtcp.sys 2012-02-10 06:36 . 2012-03-18 15:13 1544192 —-a-w- c:\windows\system32\DWrite.dll 2012-02-10 05:38 . 2012-03-18 15:13 1077248 —-a-w- c:\windows\SysWow64\DWrite.dll . . ((((((((((((((((((((((((((((( SnapShot@2012-05-03_20.17.45 ))))))))))))))))))))))))))))))))))))))))) . - 2009-07-14 04:54 . 2012-05-03 20:17 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat + 2009-07-14 04:54 . 2012-05-04 00:06 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat + 2009-07-14 04:54 . 2012-05-04 00:06 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat - 2009-07-14 04:54 . 2012-05-03 20:17 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat + 2009-07-14 04:54 . 2012-05-04 00:06 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat - 2009-07-14 04:54 . 2012-05-03 20:17 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat + 2009-07-14 05:10 . 2012-05-04 00:09 59366 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin + 2011-04-08 13:39 . 2012-05-04 00:09 67908 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-858472365-2024786048-241687184-1001_UserData.bin + 2009-07-14 05:30 . 2012-05-03 21:54 86016 c:\windows\system32\DriverStore\infpub.dat - 2009-07-14 05:30 . 2012-04-27 11:30 86016 c:\windows\system32\DriverStore\infpub.dat + 2011-04-08 13:05 . 2012-05-03 23:33 32768 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat - 2011-04-08 13:05 . 2012-05-03 19:17 32768 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat + 2011-04-08 13:05 . 2012-05-03 23:33 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat - 2011-04-08 13:05 . 2012-05-03 19:17 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat - 2009-07-14 04:54 . 2012-05-03 19:17 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat + 2009-07-14 04:54 . 2012-05-03 23:33 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat + 2011-04-17 23:31 . 2012-05-03 21:41 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat - 2011-04-17 23:31 . 2012-05-03 19:20 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat + 2009-07-14 04:46 . 2012-05-03 20:32 91888 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat + 2011-04-17 23:31 . 2012-05-03 21:41 32768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat - 2011-04-17 23:31 . 2012-05-03 19:20 32768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat - 2011-04-17 23:31 . 2012-05-03 19:20 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat + 2011-04-17 23:31 . 2012-05-03 21:41 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat + 2011-04-08 13:45 . 2012-05-04 00:09 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat - 2011-04-08 13:45 . 2012-05-03 20:03 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat + 2011-04-08 13:45 . 2012-05-04 00:09 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat - 2011-04-08 13:45 . 2012-05-03 20:03 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat + 2012-05-03 23:57 . 2012-05-03 23:57 86016 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Web.Applicat#\c5b08a1a9a7a97922af50f30b5e32268\System.Web.ApplicationServices.ni.dll + 2012-05-03 22:30 . 2012-05-03 22:30 47616 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Workflow.#\64fd2fd1812f2536afaec66752707952\Microsoft.Workflow.Compiler.ni.exe + 2012-05-03 22:30 . 2012-05-03 22:30 14336 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualC\a4e98103e5d36bf22ef19c64442543f2\Microsoft.VisualC.ni.dll + 2012-05-03 22:28 . 2012-05-03 22:28 10752 c:\windows\assembly\NativeImages_v4.0.30319_64\dfsvc\cbd21f19057f07ec2cb55b2bef91f344\dfsvc.ni.exe + 2012-05-03 22:28 . 2012-05-03 22:28 58368 c:\windows\assembly\NativeImages_v4.0.30319_64\Accessibility\52890eb2a4f8d822bff7e9cddc713fb5\Accessibility.ni.dll + 2012-05-03 22:27 . 2012-05-03 22:27 60416 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Windows.Pres#\265f654b8eed2ac1e42d225a30433c37\System.Windows.Presentation.ni.dll + 2012-05-03 22:27 . 2012-05-03 22:27 54784 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.DynamicD#\62889e05923a83fa32400e7f3b28f9c6\System.Web.DynamicData.Design.ni.dll + 2012-05-03 20:56 . 2012-05-03 20:56 90624 c:\windows\assembly\NativeImages_v2.0.50727_64\stdole\968c30c131b94a1b5e834fbc333b177b\stdole.ni.dll + 2012-05-03 21:13 . 2012-05-03 21:13 72192 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFontCac#\c1577aa4e5874f1debc9a63343e5a0d7\PresentationFontCache.ni.exe + 2012-05-03 21:12 . 2012-05-03 21:12 61952 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationCFFRast#\697c9c4ec947a0a5e21bc9e4c6471b74\PresentationCFFRasterizer.ni.dll + 2012-05-03 21:13 . 2012-05-03 21:13 33792 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.WSMan.Run#\2d80e48139b13bf06e85c0c1db06bc20\Microsoft.WSMan.Runtime.ni.dll + 2012-05-03 21:13 . 2012-05-03 21:13 45056 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\df5c0dac9e7db175acc8a9755942f87f\Microsoft.Windows.Diagnosis.Commands.UpdateDiagReport.ni.dll + 2012-05-03 21:13 . 2012-05-03 21:13 36864 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\8a9356f77bd1d1155202f59119ee57c9\Microsoft.Windows.Diagnosis.Commands.WriteDiagProgress.ni.dll + 2012-05-03 21:13 . 2012-05-03 21:13 59904 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\8260ae5a7d4a7e7cd907c958858da284\Microsoft.Windows.Diagnosis.SDHost.ni.dll + 2012-05-03 21:13 . 2012-05-03 21:13 40448 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\4e53199f22c13aa3e4bc6f063da0aee7\Microsoft.Windows.Diagnosis.Commands.UpdateDiagRootcause.ni.dll + 2012-05-03 21:13 . 2012-05-03 21:13 70144 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\371120a0816ba5ce909b8e1341da376f\Microsoft.Windows.Diagnosis.SDEngine.ni.dll + 2012-05-03 21:13 . 2012-05-03 21:13 43520 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\0f361440d7cbda4bf5b44bfbd4623812\Microsoft.Windows.Diagnosis.Commands.GetDiagInput.ni.dll + 2012-05-03 20:56 . 2012-05-03 20:56 65536 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\f8f0b08845fb76dfcf57e00d86fc13fc\Microsoft.MediaCenter.iTv.Hosting.ni.dll + 2012-05-03 20:57 . 2012-05-03 20:57 40960 c:\windows\assembly\NativeImages_v2.0.50727_64\LoadMxf\8cd347067dbe1ec5a79c9d261d2d75d9\LoadMxf.ni.exe + 2012-05-03 20:56 . 2012-05-03 20:56 49664 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiUPnP\50cda8ab4cd566b222342c3da14302d3\ehiUPnP.ni.dll + 2012-05-03 20:56 . 2012-05-03 20:56 93184 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiTVMSMusic\4089bf2cec6e1a1539076c5bd6d95ce7\ehiTVMSMusic.ni.dll + 2012-05-03 20:48 . 2012-05-03 20:48 28672 c:\windows\assembly\NativeImages_v2.0.50727_64\dfsvc\7de9a8137a33d06dad01c8405d960037\dfsvc.ni.exe + 2011-04-08 14:00 . 2012-05-03 21:38 6098 c:\windows\system32\wdi\ERCQueuedResolutions.dat - 2011-04-08 14:00 . 2012-05-03 20:15 6098 c:\windows\system32\wdi\ERCQueuedResolutions.dat - 2012-05-03 20:16 . 2012-05-03 20:16 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat + 2012-05-04 00:06 . 2012-05-04 00:06 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat + 2012-05-04 00:06 . 2012-05-04 00:06 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat - 2012-05-03 20:16 . 2012-05-03 20:16 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat + 2010-04-08 09:15 . 2012-05-04 00:00 234650 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S3.bin + 2009-07-14 05:30 . 2012-05-03 21:54 143360 c:\windows\system32\DriverStore\infstrng.dat - 2009-07-14 05:30 . 2012-04-27 11:30 143360 c:\windows\system32\DriverStore\infstrng.dat + 2009-07-14 05:30 . 2012-05-03 21:54 143360 c:\windows\system32\DriverStore\infstor.dat - 2009-07-14 05:30 . 2012-04-27 11:30 143360 c:\windows\system32\DriverStore\infstor.dat - 2009-07-14 05:12 . 2012-05-03 14:47 262144 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat + 2009-07-14 05:12 . 2012-05-03 22:06 262144 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat - 2009-07-14 05:01 . 2012-05-03 20:15 357212 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat + 2009-07-14 05:01 . 2012-05-04 00:05 357212 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat + 2012-05-03 22:30 . 2012-05-03 22:30 462336 c:\windows\assembly\NativeImages_v4.0.30319_64\WsatConfig\eac69863f449fe367f746d5f0a350679\WsatConfig.ni.exe + 2012-05-03 23:55 . 2012-05-03 23:55 528896 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Xml.Linq\910d557d55f4fc7bb51ace0546bd3c50\System.Xml.Linq.ni.dll + 2012-05-03 23:55 . 2012-05-03 23:55 903168 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Transactions\922f3f17f5112441e77f9d3d56d5b753\System.Transactions.ni.dll + 2012-05-03 22:29 . 2012-05-03 22:29 946688 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Security\878946615037b9d5f09916c598420dc1\System.Security.ni.dll + 2012-05-03 23:55 . 2012-05-03 23:55 995328 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Remo#\14ba62bd55917d0933a16970abfc146b\System.Runtime.Remoting.ni.dll + 2012-05-03 23:56 . 2012-05-03 23:56 311296 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Cach#\c64bdda4c5b1008a50130456a416e688\System.Runtime.Caching.ni.dll + 2012-05-03 22:30 . 2012-05-03 22:30 176640 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Numerics\8064e773b9addf027658899e27e94c7b\System.Numerics.ni.dll + 2012-05-03 23:55 . 2012-05-03 23:55 348672 c:\windows\assembly\NativeImages_v4.0.30319_64\System.EnterpriseSe#\7b06b84cb3b99a3ab22adb2a3f6376e6\System.EnterpriseServices.Wrapper.dll + 2012-05-03 22:30 . 2012-05-03 22:30 512000 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Dynamic\cbc3e5d028dd347a294096f068a053d4\System.Dynamic.ni.dll + 2012-05-03 22:30 . 2012-05-03 22:30 432128 c:\windows\assembly\NativeImages_v4.0.30319_64\SMSvcHost\30cf4fc2c247cf490879f5436c63017c\SMSvcHost.ni.exe + 2012-05-03 23:55 . 2012-05-03 23:55 185344 c:\windows\assembly\NativeImages_v4.0.30319_64\SMDiagnostics\b4f75962376771b6b6d39279d780abba\SMDiagnostics.ni.dll + 2012-05-03 23:53 . 2012-05-03 23:53 428032 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\eaca48940ac6976d39d5de4d5b42fed6\PresentationFramework.Royale.ni.dll + 2012-05-03 23:53 . 2012-05-03 23:53 802304 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\bdb41ce9ab6d561ddb8107255daaee30\PresentationFramework.Luna.ni.dll + 2012-05-03 23:53 . 2012-05-03 23:53 622592 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\78310f7eef84b5f9ca4bf32798bd77f9\PresentationFramework.Aero.ni.dll + 2012-05-03 23:53 . 2012-05-03 23:53 349184 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\64b86aebea22fd357f22384757caed3f\PresentationFramework.Classic.ni.dll + 2012-05-03 22:30 . 2012-05-03 22:30 364544 c:\windows\assembly\NativeImages_v4.0.30319_64\MSBuild\fe507be01e652c9d1577ed3c82bc0725\MSBuild.ni.exe + 2012-05-03 22:30 . 2012-05-03 22:30 421888 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\ce767aa46499d59a35631fdd7d13e856\Microsoft.VisualBasic.Compatibility.Data.ni.dll + 2012-05-03 22:30 . 2012-05-03 22:30 600064 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Transacti#\16bf3be602620d349b25e6c2d08199a3\Microsoft.Transactions.Bridge.Dtc.ni.dll + 2012-05-03 22:31 . 2012-05-03 22:31 851456 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Build.Uti#\ef49e94c2b9e293e658979ba193686c7\Microsoft.Build.Utilities.v4.0.ni.dll + 2012-05-03 22:29 . 2012-05-03 22:29 353792 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Build.Fra#\f03be672b1993e4a2dee05f0c99cf27a\Microsoft.Build.Framework.ni.dll + 2012-05-03 22:30 . 2012-05-03 22:30 279552 c:\windows\assembly\NativeImages_v4.0.30319_64\CustomMarshalers\f6b9abf9cd43524102ad9be82b7136d0\CustomMarshalers.ni.dll + 2012-05-03 22:28 . 2012-05-03 22:28 661504 c:\windows\assembly\NativeImages_v4.0.30319_64\ComSvcConfig\9f8ae9bae22cd93c5802fbcc6959d018\ComSvcConfig.ni.exe + 2012-05-03 22:28 . 2012-05-03 22:28 468992 c:\windows\assembly\NativeImages_v2.0.50727_64\WsatConfig\600f8ca5fcc54f10623903952fcc10ac\WsatConfig.ni.exe + 2012-05-03 22:28 . 2012-05-03 22:28 329216 c:\windows\assembly\NativeImages_v2.0.50727_64\WindowsFormsIntegra#\ddb96c334583dc79463edcb14ae16c99\WindowsFormsIntegration.ni.dll + 2012-05-03 21:11 . 2012-05-03 21:11 253952 c:\windows\assembly\NativeImages_v2.0.50727_64\UIAutomationTypes\344ac206baaadddc6f7c5fb8ae189b1a\UIAutomationTypes.ni.dll + 2012-05-03 21:11 . 2012-05-03 21:11 120832 c:\windows\assembly\NativeImages_v2.0.50727_64\UIAutomationProvider\7a61dc7e8c606d1ed2c703cbeae2f8ef\UIAutomationProvider.ni.dll + 2012-05-03 21:12 . 2012-05-03 21:12 653312 c:\windows\assembly\NativeImages_v2.0.50727_64\UIAutomationClient\152b577b846875cb3ac5e2097451daf0\UIAutomationClient.ni.dll + 2012-05-03 22:28 . 2012-05-03 22:28 304128 c:\windows\assembly\NativeImages_v2.0.50727_64\TaskScheduler\fb5fce5cf09733b71a796d1da399f07a\TaskScheduler.ni.dll + 2012-05-03 21:16 . 2012-05-03 21:16 529920 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Xml.Linq\bc3bbe78635aeacaeea3b310ea5ff002\System.Xml.Linq.ni.dll + 2012-05-03 21:17 . 2012-05-03 21:17 187392 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Routing\894b696a87ad47b5e18ac89954813a94\System.Web.Routing.ni.dll + 2012-05-03 22:27 . 2012-05-03 22:27 449024 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Entity\a6885ee42ea49eb80f1bd18a5252684d\System.Web.Entity.ni.dll + 2012-05-03 22:27 . 2012-05-03 22:27 398848 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Entity.D#\88ffeea88ac9ce23de0c5a27a95e773a\System.Web.Entity.Design.ni.dll + 2012-05-03 21:31 . 2012-05-03 21:31 753664 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.DynamicD#\7a311c3305dbbd5cfa2613997608a4ae\System.Web.DynamicData.ni.dll + 2012-05-03 21:16 . 2012-05-03 21:16 204800 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Abstract#\e5069f3c90b4413dd2f3dc226c80bc68\System.Web.Abstractions.ni.dll + 2012-05-03 21:17 . 2012-05-03 21:17 916480 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Net\e238ca4ca02f9309283c98e1a4235bbd\System.Net.ni.dll + 2012-05-03 20:47 . 2012-05-03 20:47 783360 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Messaging\9880905a6fde778e564adf54b2afbaa5\System.Messaging.ni.dll + 2012-05-03 21:17 . 2012-05-03 21:17 534016 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Management.I#\c340633057ed6b9ffcf2214cb348a1fa\System.Management.Instrumentation.ni.dll + 2012-05-03 21:17 . 2012-05-03 21:17 569856 c:\windows\assembly\NativeImages_v2.0.50727_64\System.IO.Log\c24a84d54ad05618cf6cab545c31b06b\System.IO.Log.ni.dll + 2012-05-03 20:47 . 2012-05-03 20:47 294400 c:\windows\assembly\NativeImages_v2.0.50727_64\System.IdentityMode#\2ba95581264a766410a6dbbe767c5ed8\System.IdentityModel.Selectors.ni.dll + 2012-05-03 21:16 . 2012-05-03 21:16 629760 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Service#\be6635364f1af379afff83dd877a4e03\System.Data.Services.Design.ni.dll + 2012-05-03 21:14 . 2012-05-03 21:14 194560 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.DataSet#\027959159200e828ccfddaef5f01b3a9\System.Data.DataSetExtensions.ni.dll + 2012-05-03 21:14 . 2012-05-03 21:14 132096 c:\windows\assembly\NativeImages_v2.0.50727_64\System.ComponentMod#\8c954be3f8d070b1364844741ff4b4b1\System.ComponentModel.DataAnnotations.ni.dll + 2012-05-03 21:14 . 2012-05-03 21:14 889344 c:\windows\assembly\NativeImages_v2.0.50727_64\System.AddIn\bd9159951d0caa9bf5c90c44fc96661b\System.AddIn.ni.dll + 2012-05-03 21:14 . 2012-05-03 21:14 156672 c:\windows\assembly\NativeImages_v2.0.50727_64\System.AddIn.Contra#\edf038eef2dc9f21b13da8bdc046a834\System.AddIn.Contract.ni.dll + 2012-05-03 21:17 . 2012-05-03 21:17 297984 c:\windows\assembly\NativeImages_v2.0.50727_64\sysglobl\0ba53d547dabd039b0cfc9ce52fa6c57\sysglobl.ni.dll + 2012-05-03 21:14 . 2012-05-03 21:14 525824 c:\windows\assembly\NativeImages_v2.0.50727_64\SMSvcHost\8bfc7a328911ae69686576bd24f4f771\SMSvcHost.ni.exe + 2012-05-03 20:46 . 2012-05-03 20:46 349184 c:\windows\assembly\NativeImages_v2.0.50727_64\SMDiagnostics\823bd996cb5aefd6c2b2fa7e19e0ef40\SMDiagnostics.ni.dll + 2012-05-03 21:14 . 2012-05-03 21:14 317440 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\cc864feeea3e918e3d9790b301bb2004\PresentationFramework.Royale.ni.dll + 2012-05-03 21:14 . 2012-05-03 21:14 620544 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\ab440c134c4d619f82ba6eab569c8fed\PresentationFramework.Luna.ni.dll + 2012-05-03 21:13 . 2012-05-03 21:13 463360 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\0e79d12dc8bede29dc337dba8d803bfa\PresentationFramework.Aero.ni.dll + 2012-05-03 21:14 . 2012-05-03 21:14 282624 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\0e6121dbd31ce6b51354b38075dc9007\PresentationFramework.Classic.ni.dll + 2012-05-03 21:13 . 2012-05-03 21:13 855040 c:\windows\assembly\NativeImages_v2.0.50727_64\napsnap\9c808282a0cfdc5bafcb43e1778d97d6\napsnap.ni.dll + 2012-05-03 21:13 . 2012-05-03 21:13 162816 c:\windows\assembly\NativeImages_v2.0.50727_64\napinit\616ce317134d4225fc7eec80f9351855\napinit.ni.dll + 2012-05-03 21:13 . 2012-05-03 21:13 175104 c:\windows\assembly\NativeImages_v2.0.50727_64\naphlpr\fd2464358cddfa04f46d55b9153249e3\naphlpr.ni.dll + 2012-05-03 21:13 . 2012-05-03 21:13 127488 c:\windows\assembly\NativeImages_v2.0.50727_64\napcrypt\717cc07bafa8f50a6f87be383fa9018b\napcrypt.ni.dll + 2012-05-03 21:13 . 2012-05-03 21:13 184320 c:\windows\assembly\NativeImages_v2.0.50727_64\MSBuild\a4b5d98bf175a3f10c47f223195c34b0\MSBuild.ni.exe + 2012-05-03 20:56 . 2012-05-03 20:56 417792 c:\windows\assembly\NativeImages_v2.0.50727_64\MMCFxCommon\b94e1c9115d8e37e734b27b48f54d236\MMCFxCommon.ni.dll + 2012-05-03 21:13 . 2012-05-03 21:13 681984 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.WSMan.Man#\04532b2b5174ca249e01a8b21d0ba6fd\Microsoft.WSMan.Management.ni.dll + 2012-05-03 21:13 . 2012-05-03 21:13 122368 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\5cd854d075caf8b50de3c803b4303e03\Microsoft.Windows.Diagnosis.TroubleshootingPack.ni.dll + 2012-05-03 21:08 . 2012-05-03 21:08 105984 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Vsa\cb1c199305d00b2424e707311eb9dcfd\Microsoft.Vsa.ni.dll + 2012-05-03 21:12 . 2012-05-03 21:12 584192 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Transacti#\b2438f632ab1dcbb1cb91c5a1226aaf1\Microsoft.Transactions.Bridge.Dtc.ni.dll + 2012-05-03 21:12 . 2012-05-03 21:12 999936 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\d7f5b39fba028d2f9e2b3a772845a2a6\Microsoft.PowerShell.GraphicalHost.ni.dll + 2012-05-03 21:08 . 2012-05-03 21:08 416768 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\99bb7896ddbe74236efaa97733c63cbc\Microsoft.PowerShell.Commands.Diagnostics.ni.dll + 2012-05-03 21:08 . 2012-05-03 21:08 713216 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\71542ecf96342dc1464fe471852be89a\Microsoft.PowerShell.ConsoleHost.ni.dll + 2012-05-03 21:12 . 2012-05-03 21:12 237056 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\0bafa5e2dc431bb12108395cf2e18773\Microsoft.PowerShell.Security.ni.dll + 2012-05-03 20:57 . 2012-05-03 20:57 522240 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\ddd2f252bea1cce14bb498257992635a\Microsoft.MediaCenter.Interop.ni.dll + 2012-05-03 21:00 . 2012-05-03 21:00 164864 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\cf9be66d53dddbf49b75cead76ef3cea\Microsoft.MediaCenter.Mheg.ni.dll + 2012-05-03 20:57 . 2012-05-03 20:57 152576 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\a743124afb874ab00d713ab50a7d850d\Microsoft.MediaCenter.ITVVM.ni.dll + 2012-05-03 20:59 . 2012-05-03 20:59 219648 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\7de5318ee2be8e2b8fcffde83c79ab7c\Microsoft.MediaCenter.iTv.Media.ni.dll + 2012-05-03 20:57 . 2012-05-03 20:57 370176 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\55172dec8f1353d1a8d9cdc4c0b9fac0\Microsoft.MediaCenter.Playback.ni.dll + 2012-05-03 20:57 . 2012-05-03 20:57 965632 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\5495e7eca3dac7eee473e30a3611f178\Microsoft.MediaCenter.Sports.ni.dll + 2012-05-03 20:59 . 2012-05-03 20:59 312320 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\35ce662c1368782ede0852134106ea43\Microsoft.MediaCenter.iTv.ni.dll + 2012-05-03 20:56 . 2012-05-03 20:56 798720 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Managemen#\505549b05e5c3ceccd26ad9c398381e8\Microsoft.ManagementConsole.ni.dll + 2012-05-03 21:00 . 2012-05-03 21:00 244736 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Uti#\f356844d3667b88d03bde2ae524659b6\Microsoft.Build.Utilities.v3.5.ni.dll + 2012-05-03 21:00 . 2012-05-03 21:00 198656 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Uti#\86f7fa65013864ae7da2fba058199dae\Microsoft.Build.Utilities.ni.dll + 2012-05-03 20:59 . 2012-05-03 20:59 142336 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Fra#\9f5bcff6a0b169efa6b607efd8789ea9\Microsoft.Build.Framework.ni.dll + 2012-05-03 20:59 . 2012-05-03 20:59 121344 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Fra#\0ef8fa5e835e9ae9fd9a20e5d5058460\Microsoft.Build.Framework.ni.dll + 2012-05-03 20:59 . 2012-05-03 20:59 294912 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Con#\c467a4d9eeda620e3e7602a9ecf9ae76\Microsoft.Build.Conversion.v3.5.ni.dll + 2012-05-03 20:59 . 2012-05-03 20:59 107520 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft-Windows-H#\348c58da6c217fb9a1a6f33b19bc1501\Microsoft-Windows-HomeGroupDiagnostic.NetListMgr.Interop.ni.dll + 2012-05-03 20:59 . 2012-05-03 20:59 380928 c:\windows\assembly\NativeImages_v2.0.50727_64\Mcx2Dvcs\304068df803748d7743a6a4dc344915f\Mcx2Dvcs.ni.dll + 2012-05-03 20:59 . 2012-05-03 20:59 547328 c:\windows\assembly\NativeImages_v2.0.50727_64\mcupdate\fb79aad0c745ff7b45151bc58b4dc8e9\mcupdate.ni.exe + 2012-05-03 20:56 . 2012-05-03 20:56 533504 c:\windows\assembly\NativeImages_v2.0.50727_64\mcstoredb\4a29229fecf805779bee25b756d78a0d\mcstoredb.ni.dll + 2012-05-03 20:59 . 2012-05-03 20:59 549376 c:\windows\assembly\NativeImages_v2.0.50727_64\mcplayerinterop\8affc4346a86b80727282966ce58662b\mcplayerinterop.ni.dll + 2012-05-03 20:59 . 2012-05-03 20:59 696320 c:\windows\assembly\NativeImages_v2.0.50727_64\mcGlidHostObj\756a74d6b322877662a0f6da4bc7d8e6\mcGlidHostObj.ni.dll + 2012-05-03 20:57 . 2012-05-03 20:57 156672 c:\windows\assembly\NativeImages_v2.0.50727_64\MCESidebarCtrl\2ce02776e0f2f1770f4bb77e1f6d7472\MCESidebarCtrl.ni.dll + 2012-05-03 20:56 . 2012-05-03 20:56 659456 c:\windows\assembly\NativeImages_v2.0.50727_64\EventViewer\956ca0e08e881df7f16f7d6d1381f71d\EventViewer.ni.dll + 2012-05-03 20:49 . 2012-05-03 20:49 969216 c:\windows\assembly\NativeImages_v2.0.50727_64\ehRecObj\307ca4b67db79b05b4781634ea8ec0d7\ehRecObj.ni.dll + 2012-05-03 20:56 . 2012-05-03 20:56 661504 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiWUapi\87f11d95ab10469f888fd76c45f9fceb\ehiWUapi.ni.dll + 2012-05-03 20:56 . 2012-05-03 20:56 933888 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiwmp\a24c79d19a6d2a3e8ca587ecddd3e735\ehiwmp.ni.dll + 2012-05-03 20:49 . 2012-05-03 20:49 145408 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiUserXp\0de7a02857c6041bc2c86c1db3ca8c23\ehiUserXp.ni.dll + 2012-05-03 20:56 . 2012-05-03 20:56 196096 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiiTv\421eb174f94249cf6a3b9e517baa82f8\ehiiTv.ni.dll + 2012-05-03 20:56 . 2012-05-03 20:56 397824 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiExtens\d5bf6f8e9e3d08d407ed68b714c268ae\ehiExtens.ni.dll + 2012-05-03 20:56 . 2012-05-03 20:56 110080 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiBmlDataCarousel\b55c3bb24dda0acda2bc332cc3016f75\ehiBmlDataCarousel.ni.dll + 2012-05-03 20:56 . 2012-05-03 20:56 126976 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiActivScp\cbebce3e616f8fa475427e94a5f607de\ehiActivScp.ni.dll + 2012-05-03 20:48 . 2012-05-03 20:48 389120 c:\windows\assembly\NativeImages_v2.0.50727_64\ehExtHost\5f53457f49927ecf00156d20466cc5a6\ehExtHost.ni.exe + 2012-05-03 20:48 . 2012-05-03 20:48 313856 c:\windows\assembly\NativeImages_v2.0.50727_64\ehCIR\b49168b11f5f60ddafed2ab1fdd4540f\ehCIR.ni.dll + 2012-05-03 20:48 . 2012-05-03 20:48 348672 c:\windows\assembly\NativeImages_v2.0.50727_64\CustomMarshalers\1e040217cf674c6cf528fbfe18c4c2f8\CustomMarshalers.ni.dll + 2012-05-03 22:31 . 2012-05-03 22:31 5237248 c:\windows\assembly\NativeImages_v4.0.30319_64\WindowsBase\02198c29552545c7d7e7a95ab39488e5\WindowsBase.ni.dll + 2012-05-03 22:29 . 2012-05-03 22:29 7037952 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Xml\ecdcf3d1d7bc90546464d70a4bee843d\System.Xml.ni.dll + 2012-05-03 22:29 . 2012-05-03 22:29 2449408 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Xaml\3a9670f473f8f9291ca256d9a15fc281\System.Xaml.ni.dll + 2012-05-03 23:57 . 2012-05-03 23:57 2287104 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Web.Services\a1663ec98464119a31a28721d7bb95d0\System.Web.Services.ni.dll + 2012-05-03 23:55 . 2012-05-03 23:55 3412992 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\1a361129f93a8190d8797b7c680baecc\System.Runtime.Serialization.ni.dll + 2012-05-03 23:55 . 2012-05-03 23:55 1348096 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Dura#\2c57eff357f1bc56d0367f04adcf6d76\System.Runtime.DurableInstancing.ni.dll + 2012-05-03 23:55 . 2012-05-03 23:55 1098752 c:\windows\assembly\NativeImages_v4.0.30319_64\System.EnterpriseSe#\7b06b84cb3b99a3ab22adb2a3f6376e6\System.EnterpriseServices.ni.dll + 2012-05-03 23:55 . 2012-05-03 23:55 2290176 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Drawing\5b5fe518d1a632afaae9f24dd18cee2f\System.Drawing.ni.dll + 2012-05-03 23:55 . 2012-05-03 23:55 1622528 c:\windows\assembly\NativeImages_v4.0.30319_64\System.DirectorySer#\5eaf17b571cf9fb6f159a0c92d6244ab\System.DirectoryServices.ni.dll + 2012-05-03 23:57 . 2012-05-03 23:57 8601600 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Data\ca4a0bde02b2eb73d2e9f22925719ecf\System.Data.ni.dll + 2012-05-03 22:29 . 2012-05-03 22:29 3390976 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Data.SqlXml\657b967b5fd7819f273f5704197ce97e\System.Data.SqlXml.ni.dll + 2012-05-03 22:29 . 2012-05-03 22:29 1257472 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Configuration\c24ce44b45c0e0c0961a9755f192eb3a\System.Configuration.ni.dll + 2012-05-03 23:54 . 2012-05-03 23:54 2056192 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationUI\68d02e44d8b1f23c21a116119fbb65d0\PresentationUI.ni.dll + 2012-05-03 22:31 . 2012-05-03 22:31 1891328 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationBuildTa#\2876e05f3ce0df4f38abe04c9bec2e8c\PresentationBuildTasks.ni.dll + 2012-05-03 22:30 . 2012-05-03 22:30 1829888 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\67d6bc248c3f7ce347abea48d3409d71\Microsoft.VisualBasic.Compatibility.ni.dll + 2012-05-03 22:30 . 2012-05-03 22:30 2317312 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\1903f5de0c7c33993c55319d4fc3062e\Microsoft.VisualBasic.ni.dll + 2012-05-03 22:30 . 2012-05-03 22:30 1623040 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\15b88fefd6d638f01856a68c14e2ab9b\Microsoft.VisualBasic.Activities.Compiler.ni.dll + 2012-05-03 22:30 . 2012-05-03 22:30 1526784 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Transacti#\2d92f0cffe052f601c1bca1f52425fef\Microsoft.Transactions.Bridge.ni.dll + 2012-05-03 22:30 . 2012-05-03 22:30 2009600 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.CSharp\83f53b455553f5ad67e756f6762dc3b4\Microsoft.CSharp.ni.dll + 2012-05-03 22:30 . 2012-05-03 22:30 6004736 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Build\5417f88ad5b4444a5f1e744fcd8ac9cc\Microsoft.Build.ni.dll + 2012-05-03 22:30 . 2012-05-03 22:30 2521088 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Build.Eng#\0220591dc78673b4efa66d7848de3f54\Microsoft.Build.Engine.ni.dll + 2012-05-03 22:28 . 2012-05-03 22:28 1007104 c:\windows\assembly\NativeImages_v4.0.30319_64\AspNetMMCExt\77e7c861aa32169dbe003c5a0b611f3f\AspNetMMCExt.ni.dll + 2012-05-03 21:09 . 2012-05-03 21:09 4962816 c:\windows\assembly\NativeImages_v2.0.50727_64\WindowsBase\a6d9b6658c7778345cc60fe0d9bb6e64\WindowsBase.ni.dll + 2012-05-03 22:28 . 2012-05-03 22:28 1459712 c:\windows\assembly\NativeImages_v2.0.50727_64\UIAutomationClients#\dac9f71ca1332da2a359e2d07589b7e9\UIAutomationClientsideProviders.ni.dll + 2012-05-03 22:28 . 2012-05-03 22:28 1818112 c:\windows\assembly\NativeImages_v2.0.50727_64\System.WorkflowServ#\5571a92171f93c8a4806b9f1805f1c56\System.WorkflowServices.ni.dll + 2012-05-03 22:28 . 2012-05-03 22:28 2711040 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Run#\3b2e60a9cfedffc4c850f1d0ef17e5e1\System.Workflow.Runtime.ni.dll + 2012-05-03 22:28 . 2012-05-03 22:28 5957632 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Com#\809f0c7c2d0233f086f83b75f6aa9560\System.Workflow.ComponentModel.ni.dll + 2012-05-03 22:27 . 2012-05-03 22:27 3895296 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Act#\f09110bd4c01129e8ef2e345e8b58920\System.Workflow.Activities.ni.dll + 2012-05-03 22:27 . 2012-05-03 22:27 3336704 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Mobile\2b012fd0a270bdac848843047bb93312\System.Web.Mobile.ni.dll + 2012-05-03 21:16 . 2012-05-03 21:16 3044352 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Extensio#\cf203792167bd243b057b8daf79e0d98\System.Web.Extensions.ni.dll + 2012-05-03 22:27 . 2012-05-03 22:27 1155072 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Extensio#\7f261dc1eaa3e4e0b93c44678888dd44\System.Web.Extensions.Design.ni.dll + 2012-05-03 21:17 . 2012-05-03 21:17 2727936 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Speech\a49bc70b640e21c9bcecbd8122203283\System.Speech.ni.dll + 2012-05-03 21:16 . 2012-05-03 21:16 2312704 c:\windows\assembly\NativeImages_v2.0.50727_64\System.ServiceModel#\8ef813ce3f85ea3b3f499d734ac8019e\System.ServiceModel.Web.ni.dll + 2012-05-03 20:46 . 2012-05-03 20:46 3073536 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\f99728bbb535157b904873158379dc67\System.Runtime.Serialization.ni.dll + 2012-05-03 21:12 . 2012-05-03 21:12 1463808 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Printing\1194371f7bf016fa5f5db6a6003af63e\System.Printing.ni.dll + 2012-05-03 21:07 . 2012-05-03 21:07 1472000 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Management\6860203a3f244d4c6b89ff38a9c9cadb\System.Management.ni.dll + 2012-05-03 20:47 . 2012-05-03 20:47 1444352 c:\windows\assembly\NativeImages_v2.0.50727_64\System.IdentityModel\3fae8a8515a716f1fae4a64a7f2a4b05\System.IdentityModel.ni.dll + 2012-05-03 21:17 . 2012-05-03 21:17 1230848 c:\windows\assembly\NativeImages_v2.0.50727_64\System.DirectorySer#\48a91957a4b86c3bcebec68eb1471def\System.DirectoryServices.AccountManagement.ni.dll + 2012-05-03 21:16 . 2012-05-03 21:16 2805760 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Services\2dd10ff57a987aa347518b0abfcaf8b3\System.Data.Services.ni.dll + 2012-05-03 21:16 . 2012-05-03 21:16 1868288 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Service#\0177f6ff2b3faf1805b3ba63e0e20ad0\System.Data.Services.Client.ni.dll + 2012-05-03 21:16 . 2012-05-03 21:16 3480576 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Linq\dd28d55dd94fb4d1e4dca6393e4b15a4\System.Data.Linq.ni.dll + 2012-05-03 21:15 . 2012-05-03 21:15 1080320 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Entity.#\caf124d5431e8d8aba046e54a8b7dea5\System.Data.Entity.Design.ni.dll + 2012-05-03 21:08 . 2012-05-03 21:08 3315200 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Core\9e59bc2c8cf98cd315468ca01f68663c\System.Core.ni.dll + 2012-05-03 21:12 . 2012-05-03 21:12 3116032 c:\windows\assembly\NativeImages_v2.0.50727_64\ReachFramework\c2b60ec84728f2a0b99f2113ed7eba37\ReachFramework.ni.dll + 2012-05-03 21:12 . 2012-05-03 21:12 2109952 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationUI\d5b793b7c0429d61e51fe917d1066df8\PresentationUI.ni.dll + 2012-05-03 21:13 . 2012-05-03 21:13 1884160 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationBuildTa#\0618574a66f03040f765c43693bf58f6\PresentationBuildTasks.ni.dll + 2012-05-03 21:13 . 2012-05-03 21:13 3601920 c:\windows\assembly\NativeImages_v2.0.50727_64\Narrator\24f9a2d494b01bcbc6919f60a278c715\Narrator.ni.exe + 2012-05-03 21:13 . 2012-05-03 21:13 2327552 c:\windows\assembly\NativeImages_v2.0.50727_64\MMCEx\8988116626390eae76ef9e492c0e2894\MMCEx.ni.dll + 2012-05-03 20:57 . 2012-05-03 20:57 7970304 c:\windows\assembly\NativeImages_v2.0.50727_64\MIGUIControls\77c418992d39a8c1ce569194f9b1ff1e\MIGUIControls.ni.dll + 2012-05-03 21:12 . 2012-05-03 21:12 2131968 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.VisualBas#\e05059a258a8b75d8981f29ecd9baf72\Microsoft.VisualBasic.ni.dll + 2012-05-03 20:48 . 2012-05-03 20:48 1598976 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Transacti#\11bd9381aca79215bc01b45a5e7bddce\Microsoft.Transactions.Bridge.ni.dll + 2012-05-03 21:09 . 2012-05-03 21:09 5350912 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\ecc930a57b339ba3d126b05b2d756a01\Microsoft.PowerShell.Editor.ni.dll + 2012-05-03 21:08 . 2012-05-03 21:08 2176512 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\8d5a4862d0e61fdd2e958fc989df3cca\Microsoft.PowerShell.Commands.Utility.ni.dll + 2012-05-03 21:12 . 2012-05-03 21:12 2105344 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\713f3cf6037ed7047485c738934f9054\Microsoft.PowerShell.GPowerShell.ni.dll + 2012-05-03 21:08 . 2012-05-03 21:08 1131008 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\09516cb547f50c165051c5512c0770d3\Microsoft.PowerShell.Commands.Management.ni.dll + 2012-05-03 20:48 . 2012-05-03 20:48 1516544 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\d7d03c116e282c198f398652dbddc074\Microsoft.MediaCenter.ni.dll + 2012-05-03 20:49 . 2012-05-03 20:49 8979456 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\bf5f76b58c88f17410effc17059685a8\Microsoft.MediaCenter.UI.ni.dll + 2012-05-03 20:57 . 2012-05-03 20:57 1142784 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\b54d398a06452904630482f2f83d21dd\Microsoft.MediaCenter.Shell.ni.dll + 2012-05-03 20:57 . 2012-05-03 20:57 1170432 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\5f69561da0086365718db46e1172d204\Microsoft.MediaCenter.TV.Tuners.Interop.ni.dll + 2012-05-03 21:00 . 2012-05-03 21:00 1508864 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\5e550f8b6414d82551174d1dd0f8f15c\Microsoft.MediaCenter.Bml.ni.dll + 2012-05-03 21:08 . 2012-05-03 21:08 3213312 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.JScript\551b383e39b9fedb84e25c9fc7d763ee\Microsoft.JScript.ni.dll + 2012-05-03 20:59 . 2012-05-03 20:59 2218496 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Tas#\4ccd2dddff73b52cd77ecaed30075b09\Microsoft.Build.Tasks.ni.dll + 2012-05-03 20:59 . 2012-05-03 20:59 2682880 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Tas#\35cee0a531b3136b21b2c7e2ff56b5eb\Microsoft.Build.Tasks.v3.5.ni.dll + 2012-05-03 20:59 . 2012-05-03 20:59 2544640 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Eng#\a22f83fa561173b77ee1215e0dfd7a76\Microsoft.Build.Engine.ni.dll + 2012-05-03 20:59 . 2012-05-03 20:59 1137152 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Eng#\5cd9b4020f38edbdc2718884fe3e68f0\Microsoft.Build.Engine.ni.dll + 2012-05-03 20:50 . 2012-05-03 20:50 2801664 c:\windows\assembly\NativeImages_v2.0.50727_64\mcstore\0217b5f9a72020bee3d0291bbae125ff\mcstore.ni.dll + 2012-05-03 20:50 . 2012-05-03 20:50 4088320 c:\windows\assembly\NativeImages_v2.0.50727_64\mcepg\905166e37a4a5f45a7d1672fb756d96e\mcepg.ni.dll + 2012-05-03 20:56 . 2012-05-03 20:56 2184192 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiVidCtl\f61f677c8d3ba5191da2d0809bb35fe1\ehiVidCtl.ni.dll + 2012-05-03 20:48 . 2012-05-03 20:48 1201664 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiProxy\17d0b71391bf67c5a663b140b9a7a936\ehiProxy.ni.dll + 2012-05-03 23:44 . 2012-05-03 23:44 11862016 c:\windows\ERDNT\Hiv-backup\schema.dat + 2012-05-03 23:56 . 2012-05-03 23:56 15744000 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Web\926c8ff2e21fe6662c234e2e67e6bcbc\System.Web.ni.dll + 2012-05-03 23:58 . 2012-05-03 23:58 13300736 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Design\9d61c4544736b70187f3784563b21098\System.Design.ni.dll + 2012-05-03 22:30 . 2012-05-03 22:30 10440704 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Core\e91a0d844afdda429e0fbd9814f41134\System.Core.ni.dll + 2012-05-03 23:52 . 2012-05-03 23:53 24406528 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\8a4ac50c706da226242a99b871c9f981\PresentationFramework.ni.dll + 2012-05-03 23:50 . 2012-05-03 23:50 15907328 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationCore\b0adff19c63ba3b4be1cae43567af15d\PresentationCore.ni.dll + 2012-05-03 21:07 . 2012-05-03 21:07 11900928 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Management.A#\e18dbed9e34d7d56cc7e2f683de12237\System.Management.Automation.ni.dll + 2012-05-03 21:15 . 2012-05-03 21:15 13760000 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Entity\00b730e56986ad4f378e420fa8606395\System.Data.Entity.ni.dll + 2012-05-03 21:11 . 2012-05-03 21:11 19195392 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\be975224912fc63f0398ad0c969ba144\PresentationFramework.ni.dll + 2012-05-03 21:10 . 2012-05-03 21:10 16540160 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationCore\0fa603af6ee814498c20f46e00e5f891\PresentationCore.ni.dll + 2012-05-03 20:59 . 2012-05-03 20:59 25470976 c:\windows\assembly\NativeImages_v2.0.50727_64\ehshell\089d0fee0e702f9b9a611f761cb3bd8a\ehshell.ni.dll . – Snapshot reset to current date – . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* empty entries & legit default entries are not shown REGEDIT4 . [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks] "{81017EA9-9AA8-4A6A-9734-7AF40E7D593F}"= "c:\program files (x86)\Yahoo!\Companion\Installs\cpn0\YTNavAssist.dll" [2011-03-16 214840] . [HKEY_CLASSES_ROOT\clsid\{81017ea9-9aa8-4a6a-9734-7af40e7d593f}] [HKEY_CLASSES_ROOT\YTNavAssist.YTNavAssistPlugin.1] [HKEY_CLASSES_ROOT\TypeLib\{A31F34A1-EBD2-45A2-BF6D-231C1B987CC8}] [HKEY_CLASSES_ROOT\YTNavAssist.YTNavAssistPlugin] . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "swg"="c:\program files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2011-04-18 39408] . [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "TOSHIBA Online Product Information"="c:\program files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe" [2010-03-03 4581280] . c:\users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ TRDCReminder.lnk - c:\program files (x86)\Toshiba\TRDCReminder\TRDCReminder.exe [2009-9-1 481184] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 0 (0x0) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) "PromptOnSecureDesktop"= 0 (0x0) . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager] BootExecute REG_MULTI_SZ autocheck autochk *\0native.exe . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS] @="" . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-] "HP Software Update"=c:\program files (x86)\HP\HP Software Update\HPWuSchd2.exe "iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" -atboottime "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" "Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" . R2 0222691336081942mcinstcleanup;McAfee Application Installer Cleanup (0222691336081942);c:\users\CHRIST~1\AppData\Local\Temp\022269~1.EXE [x] R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] R2 gupdate;Google Update Service (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-04-18 136176] R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-15 253088] R3 gupdatem;Google Update Service (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-04-18 136176] R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-05-03 129976] R3 RapportKE64;RapportKE64;c:\windows\system32\Drivers\RapportKE64.sys [x] R3 Revoflt;Revoflt;c:\windows\system32\DRIVERS\revoflt.sys [x] R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [x] R3 TMachInfo;TMachInfo;c:\program files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [2009-10-06 51512] R3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service;c:\program files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2010-02-05 137560] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x] R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [x] R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [x] R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [x] S1 RapportCerberus_32029;RapportCerberus_32029;c:\programdata\Trusteer\Rapport\store\exts\RapportCerberus\32029\RapportCerberus64_32029.sys [2011-10-18 396816] S1 RapportEI64;RapportEI64;c:\program files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys [2011-08-21 52496] S1 RapportPG64;RapportPG64;c:\program files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys [2011-08-21 61200] S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x] S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928] S2 cfWiMAXService;ConfigFree WiMAX Service;c:\program files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe [2010-01-28 249200] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576] S2 ConfigFree Service;ConfigFree Service;c:\program files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe [2009-03-10 46448] S2 RapportMgmtService;Rapport Management Service;c:\program files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe [2011-08-21 870200] S2 TeamViewer6;TeamViewer 6;c:\program files (x86)\TeamViewer\Version6\TeamViewer_Service.exe [2011-06-01 2337144] S2 TemproMonitoringService;Notebook Performance Tuning Service (TEMPRO);c:\program files (x86)\Toshiba TEMPRO\TemproSvc.exe [2011-02-10 112080] S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe [2011-12-08 2028864] S2 vToolbarUpdater;vToolbarUpdater;c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\10.0.6\ToolbarUpdater.exe [2012-01-16 909152] S3 FwLnk;FwLnk Driver;c:\windows\system32\DRIVERS\FwLnk.sys [x] S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys [x] S3 PGEffect;Pangu effect driver;c:\windows\system32\DRIVERS\pgeffect.sys [x] S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesDriver64.sys [2010-11-29 11856] S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [x] . . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost] hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc . Contents of the 'Scheduled Tasks' folder . 2012-05-04 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-02 14:58] . 2012-05-04 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-04-18 00:04] . 2012-05-03 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-04-18 00:04] . 2012-05-04 c:\windows\Tasks\Updater.job - c:\programdata\WombatUpdater\WombatUpdater.exe [2010-12-30 09:26] . . ——— x86-64 ———– . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "LoadAppInit_DLLs"=0x0 . ——- Supplementary Scan ——- . uLocal Page = c:\windows\system32\blank.htm uStart Page = hxxp://google.com/ uInternet Settings,ProxyOverride = *.local IE: Download all with Free Download Manager IE: Download selected with Free Download Manager IE: Download video with Free Download Manager IE: Download with Free Download Manager IE: E&xport; to Microsoft Excel - c:\progra~2\MIF5BA~1\Office12\EXCEL.EXE/3000 Trusted Zone: internet Trusted Zone: mcafee.com TCP: DhcpNameServer = 192.168.0.1 Handler: base64 - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - c:\program files (x86)\ReImageCompanion\tdataprotocol.dll Handler: chrome - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - c:\program files (x86)\ReImageCompanion\tdataprotocol.dll Handler: prox - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - c:\program files (x86)\ReImageCompanion\tdataprotocol.dll Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\10.0.6\ViProtocol.dll FF - ProfilePath - c:\users\Christina\AppData\Roaming\Mozilla\Firefox\Profiles\me606ewo.default\ FF - prefs.js: browser.startup.homepage - hxxp://www.google.co.uk/ FF - prefs.js: network.proxy.type - 0 . - - - - ORPHANS REMOVED - - - - . Toolbar-Locked - (no file) Toolbar-10 - (no file) Toolbar-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file) Toolbar-{95B7759C-8C7F-4BF1-B163-73684A933233} - (no file) Toolbar-Locked - (no file) Toolbar-10 - (no file) WebBrowser-{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - (no file) . . . ——————— LOCKED REGISTRY KEYS ——————— . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_2_202_233_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_2_202_233_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_233.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.11" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_233.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_233.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_233.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}] @Denied: (A 2) (Everyone) @="IFlashBroker4" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\McAfee] "SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\ . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ———————— Other Running Processes ———————— . c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe c:\program files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe c:\program files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe c:\program files (x86)\TeamViewer\Version6\TeamViewer.exe c:\program files (x86)\Trusteer\Rapport\bin\RapportService.exe c:\program files (x86)\TeamViewer\Version6\tv_w32.exe c:\program files (x86)\TOSHIBA\ConfigFree\NDSTray.exe c:\program files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe . ************************************************************************** . Completion time: 2012-05-04 09:37:02 - machine was rebooted ComboFix-quarantined-files.txt 2012-05-04 08:37 . Pre-Run: 62,523,658,240 bytes free Post-Run: 63,007,531,008 bytes free . - - End Of File - - D3F62B4E3B7D2E679B6A9ABC83653156
  • Please open your MalwareBytes AntiMalware Program
  • Click the Update Tab and search for updates
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select "Perform Quick Scan", then click Scan.
  • The scan may take some time to finish, so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected. <– very important
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. (See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy&Paste the entire report in your next reply.







Next

ESET Online Scanner
I'd like us to scan your machine with ESET Online Scan

Note: It is recommended to disable on-board anti-virus program and anti-spyware programs while performing scans so there are no conflicts and it will speed up scan time.
Please don't go surfing while your resident protection is disabled!
Once the scan is finished remember to re-enable your anti-virus along with your anti-spyware programs.



  • Hold down Control and click on the following link to open ESET OnlineScan in a new window.
    ESET OnlineScan
  • Click the [external image: Posted Image] button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
    • Click on [external image: Posted Image] to download the ESET Smart Installer. Save it to your desktop.
    • Double click on the [external image: Posted Image] icon on your desktop.
  • Check [external image: Posted Image]
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Check [external image: Posted Image]
  • Make sure that the option "Remove found threats" is checked
  • Push the Start button.
  • ESET will then download updates for itself, install itself, and begin
    scanning your computer. Please be patient as this can take some time.
  • When the scan completes, push [external image: Posted Image]
  • Push [external image: Posted Image], and save the file to your desktop using a unique name, such as
    ESETScan. Include the contents of this report in your next reply.
  • Push the Back button.
  • Push Finish
http://www.eset.com/onlinescan/





Also tell me how the computer is running now.
Hi, Malwarebytes discovered 2 malware. I had no opportunity to test yet because my McAfee is uninstalled so there is no other use of the computer other than this work. Will let you kow as soon as my McAfee is back. Malwarebytes Anti-Malware 1.61.0.1400 www.malwarebytes.org Database version: v2012.05.04.01 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 8.0.7601.17514 Christina :: CHRISTINA-TOSH [administrator] 04/05/2012 11:26:27 mbam-log-2012-05-04 (11-26-27).txt Scan type: Quick scan Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM Scan options disabled: P2P Objects scanned: 207078 Time elapsed: 5 minute(s), 15 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 2 C:\Users\Christina\Downloads\SoftonicDownloader_for_revo-uninstaller.exe (PUP.ToolbarDownloader) -> No action taken. C:\Users\Christina\Downloads\SoftonicDownloader_for_winzip.exe (PUP.OfferBundler.ST) -> No action taken. (end) ESETScan 4.5.12 C:\Users\Christina\Downloads\cnet2_revosetup_exe.exe a variant of Win32/InstallCore.D application cleaned by deleting - quarantined C:\Users\Christina\Downloads\fyzip-setup(1).exe Win32/DownloadAdmin.A.Gen application deleted - quarantined C:\Users\Christina\Downloads\registrybooster.exe Win32/RegistryBooster application deleted - quarantined C:\Users\Christina\Downloads\SoftonicDownloader_for_revo-uninstaller.exe Win32/SoftonicDownloader.D application cleaned by deleting - quarantined C:\Users\Christina\Downloads\SoftonicDownloader_for_winzip.exe a variant of Win32/SoftonicDownloader.A application cleaned by deleting - quarantined C:\Users\Christina\Downloads\vlcmediaplayer-setup(1).exe Win32/DownloadAdmin.A.Gen application deleted - quarantined C:\Users\Christina\Downloads\vlcmediaplayer-setup.exe Win32/DownloadAdmin.A.Gen application deleted - quarantined C:\Users\Christina\Downloads\WinMaximizer2011.exe a variant of Win32/SlowPCfighter application deleted - quarantined
Forgot to ask if you could help in reinstating sound to my external audio. I have done all I could by normal means, I even downloaded a relevant driver SATA ACHCI… whatever but as this had no.exe I did not know how to run it. I shall be very grateful for you help in this matter. Also please tell me if after getting virus clearance from you I should revert back to software forum for sorting out my registry OR can you do it all.? Christie
Did you remove the two items found by Malwarebytes? I only do malware removal so you will need to go back to the other forum to resolve the sound issue,not sure what you mean about sorting out the registry though. Looking back over your logs I see this driver installed R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe [2011-12-8 2028864] This driver has been known to cause blue screen issues which you have been experiencing,I would remove the program TuneUp Utilities 2011 as it is not needed.
I certainly give the command to remove the two viruses but I see on the log that apparently no action was taken. I can do that scan again. I shall remove Tuneup. I would also reinstall McAfee which incidentally is not really good if it allowed for infection. i used to have Avira before, then AVG. I wonder what would be the best. Is that all ? that was to be done under your care? If so I should like to thank you very much. :clap: :D :wavey:

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI