1. Frequent blue screen
2. improper shut-downs
3. loss of sound in external websites and youtube
4. Firefox only able to open one application at the same time.
5. Malwarebytes detected and removed a few viruses but problems persisted
6. OTL scanning halted; error message: "list index out of bounds" - whatever that means
I am not sure what to do next.
I am directed to this forum from the software forum to see if any viruses are still in the system. Please advise what to do about OTL scan. I made sure that the copied text is correctly pasted into the OTL. Thanks
I checked that the pasted content was correct and repeated the scan. It gave the same results. It says: "list index out of bounds (406)"
The scan goes on for a minute or so then it is marked as "Non-responsive" and after a couple of minutes it resumes the scan but stops at scanning Chrome. I do not know what means the error message. Prior to OTL downloadf McAfee flashed a couple of times with warning message which I dissmissed. Hopefully the problem is not caused by McAfee but if it transpires so I shall uninstall it for the duration of repairs.
Please advise what to do. Thanks
Hello,
Welcome to
WhatTheTech . My name is
mowman , and I will be helping you fix your problems.
If you do not make a reply in 3 days, we will have to close your topic.
You may want to keep the link to this topic in your favorites. Alternatively, you can click the
Options button at the top bar of this topic and
Track this topic. The topics you are tracking can be found by clicking on
My Topics at the top of any page.
Please take note of some guidelines for this fix:
•Refrain from making any changes to your computer including installing/uninstall programs, deleting files, modifying the registry, and running scanners or tools. Doing so could cause changes to the directions I have to give you and prolong the time required. Further more, you should not be taking any advice relating to this computer from any other source throughout the course of this fix.
•If you do not understand any step(s) provided, please do not hesitate to ask before continuing. I would much rather clarify instructions or explain them differently than have something important broken.
•Even if things appear to be better, it might not mean we are finished. Please continue to follow my instructions and reply back until I give you the "all clean". We do not want to clean you part-way, only to have the system re-infect itself.
•Please reply using the button in the lower right hand corner of your screen. Do not start a new topic.
The logs that you post should be pasted directly into the reply .
Only attach them if requested or if they do not fit into the post
Please download
TDSSKiller.zip Extract it to your desktop Double click TDSSKiller.exe Press Start Scan
Only if Malicious objects are found then ensure Cure is selected
If suspicious objects are found select skip Then click Continue > Reboot now Copy and paste the log in your next reply
A copy of the log will be saved automatically to the root of the drive (typically C:\)
Please download DDS by sUBs from one of the following links and save it to your desktop.
Disable any script blocking protection (How to Disable your Security Programs ) Double click DDS icon to run the tool (may take up to 3 minutes to run) When done, DDS.txt will open. After a few moments, attach.txt will open in a second window. Save both reports to your desktop. —————————————————
Post the contents of the DDS.txt report in your next replyAttach the Attach.txt report to your post by scroling down to the Attachments area and then clicking Browse . Browse to where you saved the file, and click Open and then click UPLOAD .
This is the first report:
14:31:26.0213 5048 TDSS rootkit removing tool 2.7.34.0 May 2 2012 09:59:18
14:31:28.0217 5048 ============================================================
14:31:28.0217 5048 Current date / time: 2012/05/03 14:31:28.0217
14:31:28.0217 5048 SystemInfo:
14:31:28.0217 5048
14:31:28.0217 5048 OS Version: 6.1.7601 ServicePack: 1.0
14:31:28.0217 5048 Product type: Workstation
14:31:28.0217 5048 ComputerName: CHRISTINA-TOSH
14:31:28.0218 5048 UserName: Christina
14:31:28.0218 5048 Windows directory: C:\Windows
14:31:28.0218 5048 System windows directory: C:\Windows
14:31:28.0218 5048 Running under WOW64
14:31:28.0218 5048 Processor architecture: Intel x64
14:31:28.0218 5048 Number of processors: 1
14:31:28.0218 5048 Page size: 0x1000
14:31:28.0218 5048 Boot type: Normal boot
14:31:28.0218 5048 ============================================================
14:31:34.0460 5048 Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
14:31:34.0465 5048 ============================================================
14:31:34.0465 5048 \Device\Harddisk0\DR0:
14:31:34.0465 5048 MBR partitions:
14:31:34.0466 5048 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0xC8800, BlocksNum 0xE86C000
14:31:34.0466 5048 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0xE934800, BlocksNum 0xE890800
14:31:34.0466 5048 ============================================================
14:31:34.0537 5048 C: <-> \Device\Harddisk0\DR0\Partition0
14:31:34.0647 5048 D: <-> \Device\Harddisk0\DR0\Partition1
14:31:34.0726 5048 ============================================================
14:31:34.0726 5048 Initialize success
14:31:34.0726 5048 ============================================================
14:31:39.0080 2184 ============================================================
14:31:39.0080 2184 Scan started
14:31:39.0080 2184 Mode: Manual;
14:31:39.0080 2184 ============================================================
14:31:43.0050 2184 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
14:31:43.0066 2184 1394ohci - ok
14:31:43.0167 2184 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
14:31:43.0172 2184 ACPI - ok
14:31:43.0313 2184 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
14:31:43.0315 2184 AcpiPmi - ok
14:31:44.0018 2184 AdobeARMservice (62b7936f9036dd6ed36e6a7efa805dc0) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
14:31:44.0064 2184 AdobeARMservice - ok
14:31:44.0493 2184 AdobeFlashPlayerUpdateSvc (459ac130c6ab892b1cd5d7544626efc5) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
14:31:44.0497 2184 AdobeFlashPlayerUpdateSvc - ok
14:31:44.0800 2184 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys
14:31:44.0920 2184 adp94xx - ok
14:31:45.0096 2184 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys
14:31:45.0164 2184 adpahci - ok
14:31:45.0318 2184 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys
14:31:45.0362 2184 adpu320 - ok
14:31:45.0465 2184 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\Windows\System32\aelupsvc.dll
14:31:45.0509 2184 AeLookupSvc - ok
14:31:45.0687 2184 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys
14:31:45.0885 2184 AFD - ok
14:31:46.0081 2184 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
14:31:46.0084 2184 agp440 - ok
14:31:46.0159 2184 ALG (3290d6946b5e30e70414990574883ddb) C:\Windows\System32\alg.exe
14:31:46.0163 2184 ALG - ok
14:31:46.0237 2184 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
14:31:46.0239 2184 aliide - ok
14:31:46.0280 2184 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
14:31:46.0282 2184 amdide - ok
14:31:46.0388 2184 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys
14:31:46.0428 2184 AmdK8 - ok
14:31:46.0463 2184 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
14:31:46.0467 2184 AmdPPM - ok
14:31:46.0528 2184 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys
14:31:46.0562 2184 amdsata - ok
14:31:46.0689 2184 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys
14:31:46.0693 2184 amdsbs - ok
14:31:46.0758 2184 amdxata (1142a21db581a84ea5597b03a26ebaa0) C:\Windows\system32\drivers\amdxata.sys
14:31:46.0839 2184 amdxata - ok
14:31:46.0947 2184 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
14:31:46.0950 2184 AppID - ok
14:31:47.0067 2184 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\Windows\System32\appidsvc.dll
14:31:47.0072 2184 AppIDSvc - ok
14:31:47.0176 2184 Appinfo (3977d4a871ca0d4f2ed1e7db46829731) C:\Windows\System32\appinfo.dll
14:31:47.0179 2184 Appinfo - ok
14:31:47.0540 2184 Apple Mobile Device (d8e18021f91ad79ca8491cb5a5da22d4) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
14:31:47.0588 2184 Apple Mobile Device - ok
14:31:47.0665 2184 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys
14:31:47.0670 2184 arc - ok
14:31:47.0857 2184 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys
14:31:47.0860 2184 arcsas - ok
14:31:48.0253 2184 aspnet_state (9217d874131ae6ff8f642f124f00a555) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
14:31:48.0452 2184 aspnet_state - ok
14:31:48.0621 2184 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
14:31:48.0622 2184 AsyncMac - ok
14:31:48.0746 2184 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
14:31:48.0772 2184 atapi - ok
14:31:48.0941 2184 athr (d6cad7e5b05055bb8226bdcb1644da27) C:\Windows\system32\DRIVERS\athrx.sys
14:31:49.0009 2184 athr - ok
14:31:49.0610 2184 AudioEndpointBuilder (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
14:31:49.0643 2184 AudioEndpointBuilder - ok
14:31:49.0658 2184 AudioSrv (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
14:31:49.0664 2184 AudioSrv - ok
14:31:49.0808 2184 AxInstSV (a6bf31a71b409dfa8cac83159e1e2aff) C:\Windows\System32\AxInstSV.dll
14:31:49.0840 2184 AxInstSV - ok
14:31:49.0912 2184 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys
14:31:49.0936 2184 b06bdrv - ok
14:31:50.0001 2184 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
14:31:50.0006 2184 b57nd60a - ok
14:31:50.0077 2184 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\Windows\System32\bdesvc.dll
14:31:50.0080 2184 BDESVC - ok
14:31:50.0124 2184 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
14:31:50.0125 2184 Beep - ok
14:31:50.0231 2184 BFE (82974d6a2fd19445cc5171fc378668a4) C:\Windows\System32\bfe.dll
14:31:50.0240 2184 BFE - ok
14:31:50.0370 2184 BITS (1ea7969e3271cbc59e1730697dc74682) C:\Windows\System32\qmgr.dll
14:31:50.0474 2184 BITS - ok
14:31:50.0546 2184 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
14:31:50.0548 2184 blbdrive - ok
14:31:50.0689 2184 Bonjour Service (ebbcd5dfbb1de70e8f4af8fa59e401fd) C:\Program Files\Bonjour\mDNSResponder.exe
14:31:50.0695 2184 Bonjour Service - ok
14:31:50.0744 2184 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
14:31:50.0747 2184 bowser - ok
14:31:50.0779 2184 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys
14:31:50.0781 2184 BrFiltLo - ok
14:31:50.0816 2184 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys
14:31:50.0817 2184 BrFiltUp - ok
14:31:50.0868 2184 Browser (8ef0d5c41ec907751b8429162b1239ed) C:\Windows\System32\browser.dll
14:31:50.0870 2184 Browser - ok
14:31:50.0911 2184 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
14:31:50.0915 2184 Brserid - ok
14:31:50.0960 2184 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
14:31:50.0962 2184 BrSerWdm - ok
14:31:51.0009 2184 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
14:31:51.0011 2184 BrUsbMdm - ok
14:31:51.0037 2184 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
14:31:51.0050 2184 BrUsbSer - ok
14:31:51.0079 2184 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
14:31:51.0081 2184 BTHMODEM - ok
14:31:51.0189 2184 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\Windows\system32\bthserv.dll
14:31:51.0278 2184 bthserv - ok
14:31:51.0328 2184 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
14:31:51.0330 2184 cdfs - ok
14:31:51.0381 2184 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\DRIVERS\cdrom.sys
14:31:51.0407 2184 cdrom - ok
14:31:51.0472 2184 CertPropSvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
14:31:51.0488 2184 CertPropSvc - ok
14:31:51.0622 2184 cfwids (ed0263b2eb24f0f4e3898036fa1d28a1) C:\Windows\system32\drivers\cfwids.sys
14:31:51.0721 2184 cfwids - ok
14:31:51.0855 2184 cfWiMAXService (41e7c4fa6491747402cfca77cc1c7aab) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
14:31:51.0858 2184 cfWiMAXService - ok
14:31:51.0914 2184 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
14:31:51.0917 2184 circlass - ok
14:31:52.0020 2184 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
14:31:52.0194 2184 CLFS - ok
14:31:52.0680 2184 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
14:31:52.0936 2184 clr_optimization_v2.0.50727_32 - ok
14:31:53.0162 2184 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
14:31:53.0208 2184 clr_optimization_v2.0.50727_64 - ok
14:31:53.0697 2184 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
14:31:54.0585 2184 clr_optimization_v4.0.30319_32 - ok
14:31:54.0796 2184 clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
14:31:55.0804 2184 clr_optimization_v4.0.30319_64 - ok
14:31:55.0983 2184 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
14:31:55.0985 2184 CmBatt - ok
14:31:56.0147 2184 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
14:31:56.0180 2184 cmdide - ok
14:31:56.0304 2184 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys
14:31:56.0312 2184 CNG - ok
14:31:56.0820 2184 CnxtHdAudService (66d12b53e117ef951d5e1ced03b4cc1b) C:\Windows\system32\drivers\CHDRT64.sys
14:31:56.0829 2184 CnxtHdAudService - ok
14:31:56.0938 2184 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
14:31:56.0940 2184 Compbatt - ok
14:31:57.0108 2184 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\DRIVERS\CompositeBus.sys
14:31:57.0110 2184 CompositeBus - ok
14:31:57.0132 2184 COMSysApp - ok
14:31:57.0475 2184 ConfigFree Service (cab0eeaf5295fc96ddd3e19dce27e131) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
14:31:57.0477 2184 ConfigFree Service - ok
14:31:57.0552 2184 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys
14:31:57.0553 2184 crcdisk - ok
14:31:57.0675 2184 CryptSvc (15597883fbe9b056f276ada3ad87d9af) C:\Windows\system32\cryptsvc.dll
14:31:57.0800 2184 CryptSvc - ok
14:31:57.0926 2184 DcomLaunch (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
14:31:57.0988 2184 DcomLaunch - ok
14:31:58.0068 2184 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\Windows\System32\defragsvc.dll
14:31:58.0073 2184 defragsvc - ok
14:31:58.0220 2184 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
14:31:58.0222 2184 DfsC - ok
14:31:58.0339 2184 Dhcp (43d808f5d9e1a18e5eeb5ebc83969e4e) C:\Windows\system32\dhcpcore.dll
14:31:58.0344 2184 Dhcp - ok
14:31:58.0380 2184 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
14:31:58.0383 2184 discache - ok
14:31:58.0537 2184 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys
14:31:58.0574 2184 Disk - ok
14:31:58.0725 2184 Dnscache (16835866aaa693c7d7fceba8fff706e4) C:\Windows\System32\dnsrslvr.dll
14:31:58.0729 2184 Dnscache - ok
14:31:58.0776 2184 dot3svc (b1fb3ddca0fdf408750d5843591afbc6) C:\Windows\System32\dot3svc.dll
14:31:58.0780 2184 dot3svc - ok
14:31:58.0815 2184 DPS (b26f4f737e8f9df4f31af6cf31d05820) C:\Windows\system32\dps.dll
14:31:58.0820 2184 DPS - ok
14:31:58.0886 2184 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
14:31:58.0888 2184 drmkaud - ok
14:31:59.0023 2184 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
14:31:59.0053 2184 DXGKrnl - ok
14:31:59.0093 2184 EapHost (e2dda8726da9cb5b2c4000c9018a9633) C:\Windows\System32\eapsvc.dll
14:31:59.0096 2184 EapHost - ok
14:31:59.0481 2184 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys
14:31:59.0610 2184 ebdrv - ok
14:31:59.0961 2184 EFS (c118a82cd78818c29ab228366ebf81c3) C:\Windows\System32\lsass.exe
14:31:59.0963 2184 EFS - ok
14:32:00.0124 2184 ehRecvr (c4002b6b41975f057d98c439030cea07) C:\Windows\ehome\ehRecvr.exe
14:32:00.0275 2184 ehRecvr - ok
14:32:00.0303 2184 ehSched (4705e8ef9934482c5bb488ce28afc681) C:\Windows\ehome\ehsched.exe
14:32:00.0305 2184 ehSched - ok
14:32:00.0454 2184 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys
14:32:00.0472 2184 elxstor - ok
14:32:00.0537 2184 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
14:32:00.0539 2184 ErrDev - ok
14:32:00.0648 2184 EventSystem (4166f82be4d24938977dd1746be9b8a0) C:\Windows\system32\es.dll
14:32:00.0653 2184 EventSystem - ok
14:32:01.0100 2184 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
14:32:01.0121 2184 exfat - ok
14:32:01.0152 2184 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
14:32:01.0156 2184 fastfat - ok
14:32:01.0261 2184 Fax (dbefd454f8318a0ef691fdd2eaab44eb) C:\Windows\system32\fxssvc.exe
14:32:01.0276 2184 Fax - ok
14:32:01.0308 2184 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
14:32:01.0309 2184 fdc - ok
14:32:01.0408 2184 fdPHost (0438cab2e03f4fb61455a7956026fe86) C:\Windows\system32\fdPHost.dll
14:32:01.0410 2184 fdPHost - ok
14:32:01.0481 2184 FDResPub (802496cb59a30349f9a6dd22d6947644) C:\Windows\system32\fdrespub.dll
14:32:01.0483 2184 FDResPub - ok
14:32:01.0528 2184 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
14:32:01.0532 2184 FileInfo - ok
14:32:01.0555 2184 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
14:32:01.0557 2184 Filetrace - ok
14:32:01.0598 2184 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
14:32:01.0600 2184 flpydisk - ok
14:32:01.0657 2184 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
14:32:01.0672 2184 FltMgr - ok
14:32:01.0749 2184 FontCache (b4447f606bb19fd8ad0bafb59b90f5d9) C:\Windows\system32\FntCache.dll
14:32:01.0763 2184 FontCache - ok
14:32:01.0858 2184 FontCache3.0.0.0 (a8b7f3818ab65695e3a0bb3279f6dce6) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
14:32:01.0879 2184 FontCache3.0.0.0 - ok
14:32:01.0944 2184 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
14:32:01.0947 2184 FsDepends - ok
14:32:01.0986 2184 Fs_Rec (6bd9295cc032dd3077c671fccf579a7b) C:\Windows\system32\drivers\Fs_Rec.sys
14:32:01.0988 2184 Fs_Rec - ok
14:32:02.0044 2184 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
14:32:02.0048 2184 fvevol - ok
14:32:02.0158 2184 FwLnk (60acb128e64c35c2b4e4aab1b0a5c293) C:\Windows\system32\DRIVERS\FwLnk.sys
14:32:02.0160 2184 FwLnk - ok
14:32:02.0192 2184 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys
14:32:02.0194 2184 gagp30kx - ok
14:32:02.0274 2184 GEARAspiWDM (e403aacf8c7bb11375122d2464560311) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
14:32:02.0275 2184 GEARAspiWDM - ok
14:32:02.0336 2184 gpsvc (277bbc7e1aa1ee957f573a10eca7ef3a) C:\Windows\System32\gpsvc.dll
14:32:02.0346 2184 gpsvc - ok
14:32:02.0509 2184 gupdate (f02a533f517eb38333cb12a9e8963773) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
14:32:02.0512 2184 gupdate - ok
14:32:02.0555 2184 gupdatem (f02a533f517eb38333cb12a9e8963773) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
14:32:02.0557 2184 gupdatem - ok
14:32:02.0618 2184 gusvc (cc839e8d766cc31a7710c9f38cf3e375) C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
14:32:02.0623 2184 gusvc - ok
14:32:02.0654 2184 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
14:32:02.0656 2184 hcw85cir - ok
14:32:02.0710 2184 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys
14:32:02.0742 2184 HdAudAddService - ok
14:32:02.0804 2184 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys
14:32:02.0808 2184 HDAudBus - ok
14:32:02.0851 2184 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys
14:32:02.0861 2184 HidBatt - ok
14:32:02.0893 2184 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys
14:32:02.0895 2184 HidBth - ok
14:32:02.0936 2184 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys
14:32:02.0940 2184 HidIr - ok
14:32:02.0973 2184 hidserv (bd9eb3958f213f96b97b1d897dee006d) C:\Windows\system32\hidserv.dll
14:32:02.0975 2184 hidserv - ok
14:32:03.0027 2184 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\drivers\hidusb.sys
14:32:03.0029 2184 HidUsb - ok
14:32:03.0101 2184 hkmsvc (387e72e739e15e3d37907a86d9ff98e2) C:\Windows\system32\kmsvc.dll
14:32:03.0104 2184 hkmsvc - ok
14:32:03.0197 2184 HomeGroupListener (efdfb3dd38a4376f93e7985173813abd) C:\Windows\system32\ListSvc.dll
14:32:03.0202 2184 HomeGroupListener - ok
14:32:03.0255 2184 HomeGroupProvider (908acb1f594274965a53926b10c81e89) C:\Windows\system32\provsvc.dll
14:32:03.0260 2184 HomeGroupProvider - ok
14:32:03.0650 2184 hpqcxs08 (1dae5c46d42b02a6d5862e1482efb390) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll
14:32:03.0695 2184 hpqcxs08 - ok
14:32:03.0803 2184 hpqddsvc (99e8eef42fe2f4af29b08c3355dd7685) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll
14:32:03.0835 2184 hpqddsvc - ok
14:32:03.0983 2184 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
14:32:03.0995 2184 HpSAMD - ok
14:32:04.0274 2184 HPSLPSVC (f37882f128efacefe353e0bae2766909) C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL
14:32:04.0320 2184 HPSLPSVC - ok
14:32:04.0432 2184 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
14:32:04.0512 2184 HTTP - ok
14:32:04.0564 2184 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
14:32:04.0566 2184 hwpolicy - ok
14:32:04.0637 2184 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\DRIVERS\i8042prt.sys
14:32:04.0639 2184 i8042prt - ok
14:32:04.0733 2184 iaStor (bbb3b6df1abb0fe35802ede85cc1c011) C:\Windows\system32\DRIVERS\iaStor.sys
14:32:04.0737 2184 iaStor - ok
14:32:04.0837 2184 iaStorV (3df4395a7cf8b7a72a5f4606366b8c2d) C:\Windows\system32\drivers\iaStorV.sys
14:32:04.0855 2184 iaStorV - ok
14:32:05.0041 2184 IDriverT (6f95324909b502e2651442c1548ab12f) C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
14:32:05.0073 2184 IDriverT - ok
14:32:05.0490 2184 idsvc (5988fc40f8db5b0739cd1e3a5d0d78bd) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
14:32:05.0574 2184 idsvc - ok
14:32:06.0633 2184 igfx (898ab5bfed7040d7ab07af01885eb944) C:\Windows\system32\DRIVERS\igdkmd64.sys
14:32:06.0880 2184 igfx - ok
14:32:07.0104 2184 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys
14:32:07.0163 2184 iirsp - ok
14:32:07.0317 2184 IKEEXT (fcd84c381e0140af901e58d48882d26b) C:\Windows\System32\ikeext.dll
14:32:07.0362 2184 IKEEXT - ok
14:32:07.0418 2184 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
14:32:07.0420 2184 intelide - ok
14:32:07.0460 2184 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
14:32:07.0462 2184 intelppm - ok
14:32:07.0502 2184 IPBusEnum (098a91c54546a3b878dad6a7e90a455b) C:\Windows\system32\ipbusenum.dll
14:32:07.0506 2184 IPBusEnum - ok
14:32:07.0554 2184 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
14:32:07.0556 2184 IpFilterDriver - ok
14:32:07.0634 2184 iphlpsvc (a34a587fffd45fa649fba6d03784d257) C:\Windows\System32\iphlpsvc.dll
14:32:07.0646 2184 iphlpsvc - ok
14:32:07.0755 2184 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
14:32:07.0757 2184 IPMIDRV - ok
14:32:07.0790 2184 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
14:32:07.0819 2184 IPNAT - ok
14:32:08.0144 2184 iPod Service (3c0d4b3e80fc4854ca325dd123cc4ded) C:\Program Files\iPod\bin\iPodService.exe
14:32:08.0190 2184 iPod Service - ok
14:32:08.0252 2184 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
14:32:08.0275 2184 IRENUM - ok
14:32:08.0303 2184 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
14:32:08.0304 2184 isapnp - ok
14:32:08.0409 2184 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
14:32:08.0454 2184 iScsiPrt - ok
14:32:08.0570 2184 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys
14:32:08.0573 2184 kbdclass - ok
14:32:08.0620 2184 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\drivers\kbdhid.sys
14:32:08.0622 2184 kbdhid - ok
14:32:08.0683 2184 KeyIso (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
14:32:08.0685 2184 KeyIso - ok
14:32:08.0775 2184 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys
14:32:08.0798 2184 KSecDD - ok
14:32:08.0829 2184 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys
14:32:08.0855 2184 KSecPkg - ok
14:32:08.0935 2184 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
14:32:08.0938 2184 ksthunk - ok
14:32:09.0000 2184 KtmRm (6ab66e16aa859232f64deb66887a8c9c) C:\Windows\system32\msdtckrm.dll
14:32:09.0007 2184 KtmRm - ok
14:32:09.0115 2184 L1C (0e154da6ca9105354a07d0c576804037) C:\Windows\system32\DRIVERS\L1C62x64.sys
14:32:09.0117 2184 L1C - ok
14:32:09.0201 2184 LanmanServer (d9f42719019740baa6d1c6d536cbdaa6) C:\Windows\system32\srvsvc.dll
14:32:09.0226 2184 LanmanServer - ok
14:32:09.0282 2184 LanmanWorkstation (851a1382eed3e3a7476db004f4ee3e1a) C:\Windows\System32\wkssvc.dll
14:32:09.0391 2184 LanmanWorkstation - ok
14:32:09.0511 2184 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
14:32:09.0513 2184 lltdio - ok
14:32:09.0581 2184 lltdsvc (c1185803384ab3feed115f79f109427f) C:\Windows\System32\lltdsvc.dll
14:32:09.0586 2184 lltdsvc - ok
14:32:09.0672 2184 lmhosts (f993a32249b66c9d622ea5592a8b76b8) C:\Windows\System32\lmhsvc.dll
14:32:09.0675 2184 lmhosts - ok
14:32:09.0820 2184 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys
14:32:09.0842 2184 LSI_FC - ok
14:32:09.0860 2184 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\drivers\lsi_sas.sys
14:32:09.0863 2184 LSI_SAS - ok
14:32:09.0879 2184 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys
14:32:09.0881 2184 LSI_SAS2 - ok
14:32:09.0899 2184 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys
14:32:09.0920 2184 LSI_SCSI - ok
14:32:10.0019 2184 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
14:32:10.0022 2184 luafv - ok
14:32:10.0151 2184 McAfee SiteAdvisor Service (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
14:32:10.0154 2184 McAfee SiteAdvisor Service - ok
14:32:10.0206 2184 McMPFSvc (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
14:32:10.0209 2184 McMPFSvc - ok
14:32:10.0244 2184 mcmscsvc (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
14:32:10.0248 2184 mcmscsvc - ok
14:32:10.0278 2184 McNaiAnn (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
14:32:10.0282 2184 McNaiAnn - ok
14:32:10.0314 2184 McNASvc (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
14:32:10.0317 2184 McNASvc - ok
14:32:10.0453 2184 McODS (b3914a7c97a81acb1e9befe07e4c387f) C:\Program Files\McAfee\VirusScan\mcods.exe
14:32:10.0461 2184 McODS - ok
14:32:10.0524 2184 McProxy (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
14:32:10.0527 2184 McProxy - ok
14:32:10.0608 2184 McPvDrv (a0c364079e7ae6c3127bee8e196f00e5) C:\Windows\system32\drivers\McPvDrv.sys
14:32:10.0611 2184 McPvDrv - ok
14:32:10.0696 2184 McShield (4a463d645b48bb487ca7df12ba5d1602) C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
14:32:10.0701 2184 McShield - ok
14:32:10.0735 2184 Mcx2Svc (0be09cd858abf9df6ed259d57a1a1663) C:\Windows\system32\Mcx2Svc.dll
14:32:10.0738 2184 Mcx2Svc - ok
14:32:10.0768 2184 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys
14:32:10.0770 2184 megasas - ok
14:32:10.0804 2184 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys
14:32:10.0808 2184 MegaSR - ok
14:32:10.0974 2184 mfeapfk (ef3acfb7e3f82d5f7cde9ef5f0a4e2e2) C:\Windows\system32\drivers\mfeapfk.sys
14:32:10.0977 2184 mfeapfk - ok
14:32:11.0123 2184 mfeavfk (e7a60bdb4365b561d896019b82fb7dd0) C:\Windows\system32\drivers\mfeavfk.sys
14:32:11.0157 2184 mfeavfk - ok
14:32:11.0193 2184 mfeavfk01 - ok
14:32:11.0309 2184 mfefire (c53b7aba204d9f7e9568ec147a1485c5) C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
14:32:11.0331 2184 mfefire - ok
14:32:11.0561 2184 mfefirek (670dffe55e2f9ab99d9169c428bcece9) C:\Windows\system32\drivers\mfefirek.sys
14:32:11.0592 2184 mfefirek - ok
14:32:11.0990 2184 mfehidk (1892616b7f9291fd77c3fa0a5811fe9f) C:\Windows\system32\drivers\mfehidk.sys
14:32:12.0049 2184 mfehidk - ok
14:32:12.0165 2184 mfenlfk (1721261c77f6e7a9e0cb51b7d9f31b60) C:\Windows\system32\DRIVERS\mfenlfk.sys
14:32:12.0192 2184 mfenlfk - ok
14:32:12.0282 2184 mferkdet (65776bd8029e409935b90de30bf99526) C:\Windows\system32\drivers\mferkdet.sys
14:32:12.0285 2184 mferkdet - ok
14:32:12.0331 2184 mfevtp (3ed58a36f7f7d60f0ef44d29810b0b80) C:\Windows\system32\mfevtps.exe
14:32:12.0333 2184 mfevtp - ok
14:32:12.0423 2184 mfewfpk (4f17d8b85b903d96ef7033bb6ef50516) C:\Windows\system32\drivers\mfewfpk.sys
14:32:12.0427 2184 mfewfpk - ok
14:32:12.0509 2184 MMCSS (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
14:32:12.0516 2184 MMCSS - ok
14:32:12.0581 2184 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
14:32:12.0583 2184 Modem - ok
14:32:12.0635 2184 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
14:32:12.0637 2184 monitor - ok
14:32:12.0696 2184 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys
14:32:12.0698 2184 mouclass - ok
14:32:12.0748 2184 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
14:32:12.0750 2184 mouhid - ok
14:32:12.0784 2184 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys
14:32:12.0787 2184 mountmgr - ok
14:32:12.0885 2184 MozillaMaintenance (96aa8ba23142cc8e2b30f3cae0c80254) C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
14:32:12.0888 2184 MozillaMaintenance - ok
14:32:12.0932 2184 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys
14:32:12.0935 2184 mpio - ok
14:32:12.0970 2184 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
14:32:12.0972 2184 mpsdrv - ok
14:32:13.0103 2184 MpsSvc (54ffc9c8898113ace189d4aa7199d2c1) C:\Windows\system32\mpssvc.dll
14:32:13.0183 2184 MpsSvc - ok
14:32:13.0221 2184 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys
14:32:13.0224 2184 MRxDAV - ok
14:32:13.0266 2184 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys
14:32:13.0270 2184 mrxsmb - ok
14:32:13.0369 2184 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys
14:32:13.0420 2184 mrxsmb10 - ok
14:32:13.0437 2184 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
14:32:13.0440 2184 mrxsmb20 - ok
14:32:13.0470 2184 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys
14:32:13.0472 2184 msahci - ok
14:32:13.0509 2184 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys
14:32:13.0516 2184 msdsm - ok
14:32:13.0587 2184 MSDTC (de0ece52236cfa3ed2dbfc03f28253a8) C:\Windows\System32\msdtc.exe
14:32:13.0591 2184 MSDTC - ok
14:32:13.0668 2184 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
14:32:13.0670 2184 Msfs - ok
14:32:13.0782 2184 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
14:32:13.0784 2184 mshidkmdf - ok
14:32:13.0945 2184 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
14:32:13.0987 2184 msisadrv - ok
14:32:14.0102 2184 MSiSCSI (808e98ff49b155c522e6400953177b08) C:\Windows\system32\iscsiexe.dll
14:32:14.0106 2184 MSiSCSI - ok
14:32:14.0118 2184 msiserver - ok
14:32:14.0258 2184 MSK80Service (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
14:32:14.0261 2184 MSK80Service - ok
14:32:14.0329 2184 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
14:32:14.0330 2184 MSKSSRV - ok
14:32:14.0357 2184 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
14:32:14.0358 2184 MSPCLOCK - ok
14:32:14.0417 2184 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
14:32:14.0420 2184 MSPQM - ok
14:32:14.0487 2184 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys
14:32:14.0493 2184 MsRPC - ok
14:32:14.0523 2184 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\DRIVERS\mssmbios.sys
14:32:14.0525 2184 mssmbios - ok
14:32:14.0606 2184 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
14:32:14.0608 2184 MSTEE - ok
14:32:14.0637 2184 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys
14:32:14.0639 2184 MTConfig - ok
14:32:14.0698 2184 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
14:32:14.0700 2184 Mup - ok
14:32:14.0831 2184 napagent (582ac6d9873e31dfa28a4547270862dd) C:\Windows\system32\qagentRT.dll
14:32:14.0840 2184 napagent - ok
14:32:14.0901 2184 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
14:32:14.0935 2184 NativeWifiP - ok
14:32:15.0183 2184 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys
14:32:15.0264 2184 NDIS - ok
14:32:15.0325 2184 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
14:32:15.0327 2184 NdisCap - ok
14:32:15.0471 2184 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
14:32:15.0473 2184 NdisTapi - ok
14:32:15.0531 2184 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys
14:32:15.0533 2184 Ndisuio - ok
14:32:15.0553 2184 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys
14:32:15.0556 2184 NdisWan - ok
14:32:15.0651 2184 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys
14:32:15.0653 2184 NDProxy - ok
14:32:16.0069 2184 Net Driver HPZ12 (2334dc48997ba203b794df3ee70521db) C:\Windows\system32\HPZinw12.dll
14:32:16.0072 2184 Net Driver HPZ12 - ok
14:32:16.0158 2184 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
14:32:16.0161 2184 NetBIOS - ok
14:32:16.0204 2184 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys
14:32:16.0209 2184 NetBT - ok
14:32:16.0350 2184 Netlogon (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
14:32:16.0353 2184 Netlogon - ok
14:32:16.0437 2184 Netman (847d3ae376c0817161a14a82c8922a9e) C:\Windows\System32\netman.dll
14:32:16.0444 2184 Netman - ok
14:32:16.0650 2184 NetMsmqActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
14:32:16.0737 2184 NetMsmqActivator - ok
14:32:16.0799 2184 NetPipeActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
14:32:16.0801 2184 NetPipeActivator - ok
14:32:16.0902 2184 netprofm (5f28111c648f1e24f7dbc87cdeb091b8) C:\Windows\System32\netprofm.dll
14:32:16.0909 2184 netprofm - ok
14:32:17.0045 2184 NetTcpActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
14:32:17.0047 2184 NetTcpActivator - ok
14:32:17.0221 2184 NetTcpPortSharing (3e5a36127e201ddf663176b66828fafe) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
14:32:17.0226 2184 NetTcpPortSharing - ok
14:32:17.0375 2184 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys
14:32:17.0378 2184 nfrd960 - ok
14:32:17.0476 2184 NlaSvc (1ee99a89cc788ada662441d1e9830529) C:\Windows\System32\nlasvc.dll
14:32:17.0482 2184 NlaSvc - ok
14:32:17.0536 2184 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
14:32:17.0538 2184 Npfs - ok
14:32:17.0617 2184 nsi (d54bfdf3e0c953f823b3d0bfe4732528) C:\Windows\system32\nsisvc.dll
14:32:17.0620 2184 nsi - ok
14:32:17.0678 2184 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
14:32:17.0680 2184 nsiproxy - ok
14:32:17.0889 2184 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys
14:32:17.0935 2184 Ntfs - ok
14:32:18.0224 2184 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
14:32:18.0233 2184 Null - ok
14:32:18.0275 2184 nvraid (5d9fd91f3d38dc9da01e3cb5fa89cd48) C:\Windows\system32\drivers\nvraid.sys
14:32:18.0278 2184 nvraid - ok
14:32:18.0312 2184 nvstor (f7cd50fe7139f07e77da8ac8033d1832) C:\Windows\system32\drivers\nvstor.sys
14:32:18.0315 2184 nvstor - ok
14:32:18.0451 2184 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
14:32:18.0454 2184 nv_agp - ok
14:32:18.0512 2184 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
14:32:18.0522 2184 ohci1394 - ok
14:32:18.0636 2184 ose (9d10f99a6712e28f8acd5641e3a7ea6b) C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
14:32:18.0643 2184 ose - ok
14:32:18.0783 2184 p2pimsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
14:32:18.0788 2184 p2pimsvc - ok
14:32:18.0877 2184 p2psvc (927463ecb02179f88e4b9a17568c63c3) C:\Windows\system32\p2psvc.dll
14:32:18.0884 2184 p2psvc - ok
14:32:18.0963 2184 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys
14:32:18.0966 2184 Parport - ok
14:32:19.0014 2184 partmgr (871eadac56b0a4c6512bbe32753ccf79) C:\Windows\system32\drivers\partmgr.sys
14:32:19.0033 2184 partmgr - ok
14:32:19.0150 2184 PcaSvc (3aeaa8b561e63452c655dc0584922257) C:\Windows\System32\pcasvc.dll
14:32:19.0158 2184 PcaSvc - ok
14:32:19.0208 2184 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys
14:32:19.0211 2184 pci - ok
14:32:19.0237 2184 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
14:32:19.0239 2184 pciide - ok
14:32:19.0285 2184 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys
14:32:19.0289 2184 pcmcia - ok
14:32:19.0338 2184 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
14:32:19.0340 2184 pcw - ok
14:32:19.0488 2184 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
14:32:19.0562 2184 PEAUTH - ok
14:32:19.0709 2184 PerfHost (e495e408c93141e8fc72dc0c6046ddfa) C:\Windows\SysWow64\perfhost.exe
14:32:19.0712 2184 PerfHost - ok
14:32:19.0925 2184 PGEffect (663962900e7fea522126ba287715bb4a) C:\Windows\system32\DRIVERS\pgeffect.sys
14:32:19.0927 2184 PGEffect - ok
14:32:20.0143 2184 pla (c7cf6a6e137463219e1259e3f0f0dd6c) C:\Windows\system32\pla.dll
14:32:20.0518 2184 pla - ok
14:32:20.0635 2184 PlugPlay (25fbdef06c4d92815b353f6e792c8129) C:\Windows\system32\umpnpmgr.dll
14:32:20.0717 2184 PlugPlay - ok
14:32:20.0905 2184 Pml Driver HPZ12 (ac78df349f0e4cfb8b667c0cfff83cce) C:\Windows\system32\HPZipm12.dll
14:32:20.0908 2184 Pml Driver HPZ12 - ok
14:32:20.0963 2184 PNRPAutoReg (7195581cec9bb7d12abe54036acc2e38) C:\Windows\system32\pnrpauto.dll
14:32:20.0966 2184 PNRPAutoReg - ok
14:32:21.0011 2184 PNRPsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
14:32:21.0015 2184 PNRPsvc - ok
14:32:21.0092 2184 PolicyAgent (4f15d75adf6156bf56eced6d4a55c389) C:\Windows\System32\ipsecsvc.dll
14:32:21.0099 2184 PolicyAgent - ok
14:32:21.0236 2184 Power (6ba9d927dded70bd1a9caded45f8b184) C:\Windows\system32\umpo.dll
14:32:21.0266 2184 Power - ok
14:32:21.0444 2184 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys
14:32:21.0473 2184 PptpMiniport - ok
14:32:21.0552 2184 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys
14:32:21.0554 2184 Processor - ok
14:32:21.0631 2184 ProfSvc (5c78838b4d166d1a27db3a8a820c799a) C:\Windows\system32\profsvc.dll
14:32:21.0636 2184 ProfSvc - ok
14:32:21.0684 2184 ProtectedStorage (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
14:32:21.0686 2184 ProtectedStorage - ok
14:32:21.0753 2184 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys
14:32:21.0756 2184 Psched - ok
14:32:21.0892 2184 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys
14:32:21.0947 2184 ql2300 - ok
14:32:22.0084 2184 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys
14:32:22.0087 2184 ql40xx - ok
14:32:22.0125 2184 QWAVE (906191634e99aea92c4816150bda3732) C:\Windows\system32\qwave.dll
14:32:22.0131 2184 QWAVE - ok
14:32:22.0164 2184 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
14:32:22.0178 2184 QWAVEdrv - ok
14:32:22.0491 2184 RapportCerberus_32029 (68b15a9a2a35d7afa3bda1fb9edb84d0) C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\32029\RapportCerberus64_32029.sys
14:32:22.0626 2184 RapportCerberus_32029 - ok
14:32:22.0778 2184 RapportEI64 (8648b4268dfb90536e02dcb800991be8) C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys
14:32:22.0780 2184 RapportEI64 - ok
14:32:22.0898 2184 RapportKE64 (344373ad5b420b41daa74439f42a52e2) C:\Windows\system32\Drivers\RapportKE64.sys
14:32:22.0900 2184 RapportKE64 - ok
14:32:23.0134 2184 RapportMgmtService (af91ceb3a00f4b4d02c452e4c9e12f53) C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe
14:32:23.0173 2184 RapportMgmtService - ok
14:32:23.0292 2184 RapportPG64 (2ddc808aa69ec47465f4d13d16e4fe66) C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys
14:32:23.0294 2184 RapportPG64 - ok
14:32:23.0350 2184 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
14:32:23.0352 2184 RasAcd - ok
14:32:23.0437 2184 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
14:32:23.0439 2184 RasAgileVpn - ok
14:32:23.0766 2184 RasAuto (8f26510c5383b8dbe976de1cd00fc8c7) C:\Windows\System32\rasauto.dll
14:32:23.0771 2184 RasAuto - ok
14:32:23.0874 2184 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys
14:32:23.0877 2184 Rasl2tp - ok
14:32:24.0019 2184 RasMan (ee867a0870fc9e4972ba9eaad35651e2) C:\Windows\System32\rasmans.dll
14:32:24.0093 2184 RasMan - ok
14:32:24.0164 2184 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
14:32:24.0167 2184 RasPppoe - ok
14:32:24.0251 2184 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
14:32:24.0265 2184 RasSstp - ok
14:32:24.0347 2184 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys
14:32:24.0378 2184 rdbss - ok
14:32:24.0428 2184 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys
14:32:24.0429 2184 rdpbus - ok
14:32:24.0471 2184 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
14:32:24.0473 2184 RDPCDD - ok
14:32:24.0604 2184 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
14:32:24.0606 2184 RDPENCDD - ok
14:32:24.0628 2184 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
14:32:24.0630 2184 RDPREFMP - ok
14:32:24.0743 2184 RDPWD (6d76e6433574b058adcb0c50df834492) C:\Windows\system32\drivers\RDPWD.sys
14:32:24.0747 2184 RDPWD - ok
14:32:24.0822 2184 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys
14:32:24.0827 2184 rdyboost - ok
14:32:24.0903 2184 RemoteAccess (254fb7a22d74e5511c73a3f6d802f192) C:\Windows\System32\mprdim.dll
14:32:24.0906 2184 RemoteAccess - ok
14:32:24.0987 2184 RemoteRegistry (e4d94f24081440b5fc5aa556c7c62702) C:\Windows\system32\regsvc.dll
14:32:24.0992 2184 RemoteRegistry - ok
14:32:25.0126 2184 RimUsb (71b48ddaf5e9c2b40e64de5c405f5aac) C:\Windows\system32\Drivers\RimUsb_AMD64.sys
14:32:25.0129 2184 RimUsb - ok
14:32:25.0298 2184 RimVSerPort (c903d49655b4aae46673f0aaa6be0f58) C:\Windows\system32\DRIVERS\RimSerial_AMD64.sys
14:32:25.0309 2184 RimVSerPort - ok
14:32:25.0379 2184 ROOTMODEM (388d3dd1a6457280f3badba9f3acd6b1) C:\Windows\system32\Drivers\RootMdm.sys
14:32:25.0381 2184 ROOTMODEM - ok
14:32:25.0437 2184 RpcEptMapper (e4dc58cf7b3ea515ae917ff0d402a7bb) C:\Windows\System32\RpcEpMap.dll
14:32:25.0440 2184 RpcEptMapper - ok
14:32:25.0474 2184 RpcLocator (d5ba242d4cf8e384db90e6a8ed850b8c) C:\Windows\system32\locator.exe
14:32:25.0476 2184 RpcLocator - ok
14:32:25.0573 2184 RpcSs (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
14:32:25.0579 2184 RpcSs - ok
14:32:25.0618 2184 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
14:32:25.0620 2184 rspndr - ok
14:32:25.0701 2184 RSUSBSTOR (907c4464381b5ebdfdc60f6c7d0dedfc) C:\Windows\system32\Drivers\RtsUStor.sys
14:32:25.0705 2184 RSUSBSTOR - ok
14:32:25.0739 2184 SamSs (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
14:32:25.0741 2184 SamSs - ok
14:32:25.0788 2184 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys
14:32:25.0791 2184 sbp2port - ok
14:32:25.0842 2184 SCardSvr (9b7395789e3791a3b6d000fe6f8b131e) C:\Windows\System32\SCardSvr.dll
14:32:25.0852 2184 SCardSvr - ok
14:32:25.0894 2184 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys
14:32:25.0897 2184 scfilter - ok
14:32:25.0975 2184 Schedule (262f6592c3299c005fd6bec90fc4463a) C:\Windows\system32\schedsvc.dll
14:32:25.0989 2184 Schedule - ok
14:32:26.0028 2184 SCPolicySvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
14:32:26.0029 2184 SCPolicySvc - ok
14:32:26.0072 2184 SDRSVC (6ea4234dc55346e0709560fe7c2c1972) C:\Windows\System32\SDRSVC.dll
14:32:26.0077 2184 SDRSVC - ok
14:32:26.0217 2184 SeaPort (331e7bde228914574fc9ae6cd520dafa) C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
14:32:26.0220 2184 SeaPort - ok
14:32:26.0346 2184 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
14:32:26.0348 2184 secdrv - ok
14:32:26.0410 2184 seclogon (bc617a4e1b4fa8df523a061739a0bd87) C:\Windows\system32\seclogon.dll
14:32:26.0413 2184 seclogon - ok
14:32:26.0448 2184 SENS (c32ab8fa018ef34c0f113bd501436d21) C:\Windows\System32\sens.dll
14:32:26.0452 2184 SENS - ok
14:32:26.0522 2184 SensrSvc (0336cffafaab87a11541f1cf1594b2b2) C:\Windows\system32\sensrsvc.dll
14:32:26.0525 2184 SensrSvc - ok
14:32:26.0693 2184 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys
14:32:26.0695 2184 Serenum - ok
14:32:26.0820 2184 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys
14:32:26.0823 2184 Serial - ok
14:32:26.0850 2184 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys
14:32:26.0854 2184 sermouse - ok
14:32:26.0920 2184 SessionEnv (0b6231bf38174a1628c4ac812cc75804) C:\Windows\system32\sessenv.dll
14:32:26.0971 2184 SessionEnv - ok
14:32:27.0015 2184 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
14:32:27.0017 2184 sffdisk - ok
14:32:27.0067 2184 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
14:32:27.0070 2184 sffp_mmc - ok
14:32:27.0106 2184 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys
14:32:27.0108 2184 sffp_sd - ok
14:32:27.0155 2184 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys
14:32:27.0157 2184 sfloppy - ok
14:32:27.0207 2184 SharedAccess (b95f6501a2f8b2e78c697fec401970ce) C:\Windows\System32\ipnathlp.dll
14:32:27.0213 2184 SharedAccess - ok
14:32:27.0301 2184 ShellHWDetection (aaf932b4011d14052955d4b212a4da8d) C:\Windows\System32\shsvcs.dll
14:32:27.0308 2184 ShellHWDetection - ok
14:32:27.0336 2184 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys
14:32:27.0376 2184 SiSRaid2 - ok
14:32:27.0484 2184 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys
14:32:27.0513 2184 SiSRaid4 - ok
14:32:27.0570 2184 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
14:32:27.0574 2184 Smb - ok
14:32:27.0643 2184 SNMPTRAP (6313f223e817cc09aa41811daa7f541d) C:\Windows\System32\snmptrap.exe
14:32:27.0646 2184 SNMPTRAP - ok
14:32:27.0698 2184 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
14:32:27.0700 2184 spldr - ok
14:32:27.0786 2184 Spooler (b96c17b5dc1424d56eea3a99e97428cd) C:\Windows\System32\spoolsv.exe
14:32:27.0792 2184 Spooler - ok
14:32:28.0128 2184 sppsvc (e17e0188bb90fae42d83e98707efa59c) C:\Windows\system32\sppsvc.exe
14:32:28.0306 2184 sppsvc - ok
14:32:28.0553 2184 sppuinotify (93d7d61317f3d4bc4f4e9f8a96a7de45) C:\Windows\system32\sppuinotify.dll
14:32:28.0574 2184 sppuinotify - ok
14:32:28.0751 2184 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys
14:32:28.0758 2184 srv - ok
14:32:28.0836 2184 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys
14:32:28.0846 2184 srv2 - ok
14:32:28.0886 2184 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys
14:32:28.0889 2184 srvnet - ok
14:32:28.0950 2184 SSDPSRV (51b52fbd583cde8aa9ba62b8b4298f33) C:\Windows\System32\ssdpsrv.dll
14:32:28.0954 2184 SSDPSRV - ok
14:32:28.0983 2184 SstpSvc (ab7aebf58dad8daab7a6c45e6a8885cb) C:\Windows\system32\sstpsvc.dll
14:32:28.0987 2184 SstpSvc - ok
14:32:29.0021 2184 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys
14:32:29.0024 2184 stexstor - ok
14:32:29.0119 2184 StillCam (decacb6921ded1a38642642685d77dac) C:\Windows\system32\DRIVERS\serscan.sys
14:32:29.0126 2184 StillCam - ok
14:32:29.0305 2184 stisvc (8dd52e8e6128f4b2da92ce27402871c1) C:\Windows\System32\wiaservc.dll
14:32:29.0360 2184 stisvc - ok
14:32:29.0399 2184 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\DRIVERS\swenum.sys
14:32:29.0402 2184 swenum - ok
14:32:29.0578 2184 swprv (e08e46fdd841b7184194011ca1955a0b) C:\Windows\System32\swprv.dll
14:32:29.0586 2184 swprv - ok
14:32:29.0726 2184 SynTP (470c47daba9ca3966f0ab3f835d7d135) C:\Windows\system32\DRIVERS\SynTP.sys
14:32:29.0730 2184 SynTP - ok
14:32:29.0984 2184 SysMain (bf9ccc0bf39b418c8d0ae8b05cf95b7d) C:\Windows\system32\sysmain.dll
14:32:30.0067 2184 SysMain - ok
14:32:30.0317 2184 TabletInputService (e3c61fd7b7c2557e1f1b0b4cec713585) C:\Windows\System32\TabSvc.dll
14:32:30.0321 2184 TabletInputService - ok
14:32:30.0388 2184 TapiSrv (40f0849f65d13ee87b9a9ae3c1dd6823) C:\Windows\System32\tapisrv.dll
14:32:30.0399 2184 TapiSrv - ok
14:32:30.0434 2184 TBS (1be03ac720f4d302ea01d40f588162f6) C:\Windows\System32\tbssvc.dll
14:32:30.0437 2184 TBS - ok
14:32:30.0575 2184 Tcpip (fc62769e7bff2896035aeed399108162) C:\Windows\system32\drivers\tcpip.sys
14:32:30.0642 2184 Tcpip - ok
14:32:31.0203 2184 TCPIP6 (fc62769e7bff2896035aeed399108162) C:\Windows\system32\DRIVERS\tcpip.sys
14:32:31.0235 2184 TCPIP6 - ok
14:32:31.0453 2184 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys
14:32:31.0455 2184 tcpipreg - ok
14:32:31.0530 2184 tdcmdpst (fd542b661bd22fa69ca789ad0ac58c29) C:\Windows\system32\DRIVERS\tdcmdpst.sys
14:32:31.0532 2184 tdcmdpst - ok
14:32:31.0623 2184 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
14:32:31.0624 2184 TDPIPE - ok
14:32:31.0665 2184 TDTCP (51c5eceb1cdee2468a1748be550cfbc8) C:\Windows\system32\drivers\tdtcp.sys
14:32:31.0667 2184 TDTCP - ok
14:32:31.0720 2184 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys
14:32:31.0723 2184 tdx - ok
14:32:32.0120 2184 TeamViewer6 (8a9828975a857e477efef5a61ba45ac0) C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe
14:32:32.0138 2184 TeamViewer6 - ok
14:32:32.0311 2184 TemproMonitoringService (1b709733a04dcc41a63f9cd1f76a4ebe) C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe
14:32:32.0313 2184 TemproMonitoringService - ok
14:32:32.0922 2184 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\DRIVERS\termdd.sys
14:32:32.0924 2184 TermDD - ok
14:32:33.0061 2184 TermService (2e648163254233755035b46dd7b89123) C:\Windows\System32\termsrv.dll
14:32:33.0072 2184 TermService - ok
14:32:33.0116 2184 Themes (f0344071948d1a1fa732231785a0664c) C:\Windows\system32\themeservice.dll
14:32:33.0161 2184 Themes - ok
14:32:33.0220 2184 THREADORDER (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
14:32:33.0224 2184 THREADORDER - ok
14:32:33.0388 2184 TMachInfo (28644b0523d64eff2fc7312a2ee74b0a) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
14:32:33.0508 2184 TMachInfo - ok
14:32:33.0621 2184 TODDSrv (ed32035bdfeced1ad66d459fd9cc1140) C:\Windows\system32\TODDSrv.exe
14:32:33.0625 2184 TODDSrv - ok
14:32:33.0823 2184 TosCoSrv (98c864481d62f86ec8af65be3419a95b) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
14:32:33.0828 2184 TosCoSrv - ok
14:32:34.0085 2184 TOSHIBA HDD SSD Alert Service (74c2fa8c3765ee71a9c22182ec108457) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
14:32:34.0146 2184 TOSHIBA HDD SSD Alert Service - ok
14:32:34.0213 2184 TrkWks (7e7afd841694f6ac397e99d75cead49d) C:\Windows\System32\trkwks.dll
14:32:34.0217 2184 TrkWks - ok
14:32:34.0350 2184 TrustedInstaller (773212b2aaa24c1e31f10246b15b276c) C:\Windows\servicing\TrustedInstaller.exe
14:32:34.0355 2184 TrustedInstaller - ok
14:32:34.0474 2184 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys
14:32:34.0476 2184 tssecsrv - ok
14:32:34.0625 2184 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
14:32:34.0647 2184 TsUsbFlt - ok
14:32:34.0842 2184 TsUsbGD (9cc2ccae8a84820eaecb886d477cbcb8) C:\Windows\system32\drivers\TsUsbGD.sys
14:32:34.0844 2184 TsUsbGD - ok
14:32:35.0353 2184 TuneUp.UtilitiesSvc (535a376629a37e03f993d769490e8eed) C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe
14:32:35.0430 2184 TuneUp.UtilitiesSvc - ok
14:32:35.0836 2184 TuneUpUtilitiesDrv (dcc94c51d27c7ec0dadeca8f64c94fcf) C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesDriver64.sys
14:32:35.0838 2184 TuneUpUtilitiesDrv - ok
14:32:36.0128 2184 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys
14:32:36.0131 2184 tunnel - ok
14:32:36.0182 2184 TVALZ (550b567f9364d8f7684c3fb3ea665a72) C:\Windows\system32\DRIVERS\TVALZ_O.SYS
14:32:36.0184 2184 TVALZ - ok
14:32:36.0221 2184 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys
14:32:36.0237 2184 uagp35 - ok
14:32:36.0305 2184 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys
14:32:36.0312 2184 udfs - ok
14:32:36.0422 2184 UI0Detect (3cbdec8d06b9968aba702eba076364a1) C:\Windows\system32\UI0Detect.exe
14:32:36.0425 2184 UI0Detect - ok
14:32:36.0537 2184 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
14:32:36.0541 2184 uliagpkx - ok
14:32:36.0600 2184 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\DRIVERS\umbus.sys
14:32:36.0602 2184 umbus - ok
14:32:36.0655 2184 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys
14:32:36.0658 2184 UmPass - ok
14:32:36.0801 2184 upnphost (d47ec6a8e81633dd18d2436b19baf6de) C:\Windows\System32\upnphost.dll
14:32:36.0808 2184 upnphost - ok
14:32:36.0900 2184 USBAAPL64 (aa33fc47ed58c34e6e9261e4f850b7eb) C:\Windows\system32\Drivers\usbaapl64.sys
14:32:37.0067 2184 USBAAPL64 - ok
14:32:37.0241 2184 usbaudio (82e8f44688e6fac57b5b7c6fc7adbc2a) C:\Windows\system32\drivers\usbaudio.sys
14:32:37.0245 2184 usbaudio - ok
14:32:37.0298 2184 usbccgp (481dff26b4dca8f4cbac1f7dce1d6829) C:\Windows\system32\DRIVERS\usbccgp.sys
14:32:37.0301 2184 usbccgp - ok
14:32:37.0448 2184 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
14:32:37.0485 2184 usbcir - ok
14:32:37.0935 2184 usbehci (74ee782b1d9c241efe425565854c661c) C:\Windows\system32\DRIVERS\usbehci.sys
14:32:37.0953 2184 usbehci - ok
14:32:38.0056 2184 usbhub (dc96bd9ccb8403251bcf25047573558e) C:\Windows\system32\DRIVERS\usbhub.sys
14:32:38.0117 2184 usbhub - ok
14:32:38.0159 2184 usbohci (58e546bbaf87664fc57e0f6081e4f609) C:\Windows\system32\drivers\usbohci.sys
14:32:38.0161 2184 usbohci - ok
14:32:38.0310 2184 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\drivers\usbprint.sys
14:32:38.0312 2184 usbprint - ok
14:32:38.0368 2184 USBSTOR (d76510cfa0fc09023077f22c2f979d86) C:\Windows\system32\drivers\USBSTOR.SYS
14:32:38.0371 2184 USBSTOR - ok
14:32:38.0531 2184 usbuhci (81fb2216d3a60d1284455d511797db3d) C:\Windows\system32\DRIVERS\usbuhci.sys
14:32:38.0553 2184 usbuhci - ok
14:32:38.0923 2184 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\System32\Drivers\usbvideo.sys
14:32:38.0927 2184 usbvideo - ok
14:32:38.0997 2184 UxSms (edbb23cbcf2cdf727d64ff9b51a6070e) C:\Windows\System32\uxsms.dll
14:32:39.0000 2184 UxSms - ok
14:32:39.0434 2184 UxTuneUp (6f10c7ff1f1e3f45d7e20dd6e398682e) C:\Windows\System32\uxtuneup.dll
14:32:39.0451 2184 UxTuneUp - ok
14:32:39.0617 2184 VaultSvc (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
14:32:39.0619 2184 VaultSvc - ok
14:32:39.0760 2184 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
14:32:39.0762 2184 vdrvroot - ok
14:32:39.0832 2184 vds (8d6b481601d01a456e75c3210f1830be) C:\Windows\System32\vds.exe
14:32:39.0845 2184 vds - ok
14:32:39.0930 2184 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
14:32:39.0932 2184 vga - ok
14:32:39.0960 2184 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
14:32:39.0962 2184 VgaSave - ok
14:32:40.0061 2184 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys
14:32:40.0114 2184 vhdmp - ok
14:32:40.0156 2184 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
14:32:40.0157 2184 viaide - ok
14:32:40.0217 2184 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys
14:32:40.0220 2184 volmgr - ok
14:32:40.0278 2184 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys
14:32:40.0300 2184 volmgrx - ok
14:32:40.0382 2184 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys
14:32:40.0387 2184 volsnap - ok
14:32:40.0453 2184 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys
14:32:40.0456 2184 vsmraid - ok
14:32:40.0697 2184 VSS (b60ba0bc31b0cb414593e169f6f21cc2) C:\Windows\system32\vssvc.exe
14:32:40.0797 2184 VSS - ok
14:32:41.0080 2184 vToolbarUpdater (980e45498392e6659d2e7c44e7de2336) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\10.0.6\ToolbarUpdater.exe
14:32:41.0087 2184 vToolbarUpdater - ok
14:32:41.0823 2184 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\System32\drivers\vwifibus.sys
14:32:41.0825 2184 vwifibus - ok
14:32:41.0941 2184 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys
14:32:41.0943 2184 vwififlt - ok
14:32:42.0167 2184 vwifimp (6a638fc4bfddc4d9b186c28c91bd1a01) C:\Windows\system32\DRIVERS\vwifimp.sys
14:32:42.0169 2184 vwifimp - ok
14:32:42.0254 2184 W32Time (1c9d80cc3849b3788048078c26486e1a) C:\Windows\system32\w32time.dll
14:32:42.0281 2184 W32Time - ok
14:32:42.0321 2184 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys
14:32:42.0323 2184 WacomPen - ok
14:32:42.0464 2184 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
14:32:42.0476 2184 WANARP - ok
14:32:42.0514 2184 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
14:32:42.0516 2184 Wanarpv6 - ok
14:32:42.0717 2184 WatAdminSvc (3cec96de223e49eaae3651fcf8faea6c) C:\Windows\system32\Wat\WatAdminSvc.exe
14:32:42.0788 2184 WatAdminSvc - ok
14:32:43.0128 2184 wbengine (78f4e7f5c56cb9716238eb57da4b6a75) C:\Windows\system32\wbengine.exe
14:32:43.0222 2184 wbengine - ok
14:32:43.0458 2184 WbioSrvc (3aa101e8edab2db4131333f4325c76a3) C:\Windows\System32\wbiosrvc.dll
14:32:43.0464 2184 WbioSrvc - ok
14:32:43.0523 2184 wcncsvc (7368a2afd46e5a4481d1de9d14848edd) C:\Windows\System32\wcncsvc.dll
14:32:43.0539 2184 wcncsvc - ok
14:32:43.0582 2184 WcsPlugInService (20f7441334b18cee52027661df4a6129) C:\Windows\System32\WcsPlugInService.dll
14:32:43.0585 2184 WcsPlugInService - ok
14:32:43.0710 2184 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys
14:32:43.0712 2184 Wd - ok
14:32:43.0774 2184 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
14:32:43.0782 2184 Wdf01000 - ok
14:32:43.0843 2184 WdiServiceHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
14:32:43.0848 2184 WdiServiceHost - ok
14:32:43.0864 2184 WdiSystemHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
14:32:43.0870 2184 WdiSystemHost - ok
14:32:43.0906 2184 WebClient (3db6d04e1c64272f8b14eb8bc4616280) C:\Windows\System32\webclnt.dll
14:32:43.0972 2184 WebClient - ok
14:32:44.0029 2184 Wecsvc (c749025a679c5103e575e3b48e092c43) C:\Windows\system32\wecsvc.dll
14:32:44.0041 2184 Wecsvc - ok
14:32:44.0174 2184 wercplsupport (7e591867422dc788b9e5bd337a669a08) C:\Windows\System32\wercplsupport.dll
14:32:44.0196 2184 wercplsupport - ok
14:32:44.0259 2184 WerSvc (6d137963730144698cbd10f202e9f251) C:\Windows\System32\WerSvc.dll
14:32:44.0262 2184 WerSvc - ok
14:32:44.0404 2184 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
14:32:44.0406 2184 WfpLwf - ok
14:32:44.0441 2184 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
14:32:44.0442 2184 WIMMount - ok
14:32:44.0610 2184 WinDefend - ok
14:32:44.0703 2184 WinHttpAutoProxySvc - ok
14:32:44.0840 2184 Winmgmt (19b07e7e8915d701225da41cb3877306) C:\Windows\system32\wbem\WMIsvc.dll
14:32:44.0844 2184 Winmgmt - ok
14:32:45.0309 2184 WinRM (bcb1310604aa415c4508708975b3931e) C:\Windows\system32\WsmSvc.dll
14:32:45.0462 2184 WinRM - ok
14:32:46.0077 2184 WinUsb (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUsb.sys
14:32:46.0079 2184 WinUsb - ok
14:32:46.0306 2184 Wlansvc (4fada86e62f18a1b2f42ba18ae24e6aa) C:\Windows\System32\wlansvc.dll
14:32:46.0341 2184 Wlansvc - ok
14:32:46.0412 2184 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys
14:32:46.0414 2184 WmiAcpi - ok
14:32:46.0524 2184 wmiApSrv (38b84c94c5a8af291adfea478ae54f93) C:\Windows\system32\wbem\WmiApSrv.exe
14:32:46.0529 2184 wmiApSrv - ok
14:32:46.0653 2184 WMPNetworkSvc - ok
14:32:46.0793 2184 WPCSvc (96c6e7100d724c69fcf9e7bf590d1dca) C:\Windows\System32\wpcsvc.dll
14:32:46.0798 2184 WPCSvc - ok
14:32:46.0890 2184 WPDBusEnum (93221146d4ebbf314c29b23cd6cc391d) C:\Windows\system32\wpdbusenum.dll
14:32:46.0913 2184 WPDBusEnum - ok
14:32:46.0964 2184 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
14:32:46.0972 2184 ws2ifsl - ok
14:32:47.0048 2184 wscsvc (e8b1fe6669397d1772d8196df0e57a9e) C:\Windows\System32\wscsvc.dll
14:32:47.0058 2184 wscsvc - ok
14:32:47.0072 2184 WSearch - ok
14:32:47.0395 2184 wuauserv (9df12edbc698b0bc353b3ef84861e430) C:\Windows\system32\wuaueng.dll
14:32:47.0464 2184 wuauserv - ok
14:32:47.0849 2184 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys
14:32:47.0893 2184 WudfPf - ok
14:32:47.0997 2184 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys
14:32:48.0000 2184 WUDFRd - ok
14:32:48.0075 2184 wudfsvc (7a95c95b6c4cf292d689106bcae49543) C:\Windows\System32\WUDFSvc.dll
14:32:48.0079 2184 wudfsvc - ok
14:32:48.0148 2184 WwanSvc (9a3452b3c2a46c073166c5cf49fad1ae) C:\Windows\System32\wwansvc.dll
14:32:48.0164 2184 WwanSvc - ok
14:32:48.0504 2184 YahooAUService (dd0042f0c3b606a6a8b92d49afb18ad6) C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
14:32:48.0509 2184 YahooAUService - ok
14:32:48.0662 2184 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
14:32:48.0852 2184 \Device\Harddisk0\DR0 - ok
14:32:48.0878 2184 Boot (0x1200) (85b6861f757dbf9fa38f6ba107fa1223) \Device\Harddisk0\DR0\Partition0
14:32:48.0879 2184 \Device\Harddisk0\DR0\Partition0 - ok
14:32:48.0908 2184 Boot (0x1200) (24afb1aa207a177ae3deadd9aec9d6b1) \Device\Harddisk0\DR0\Partition1
14:32:48.0909 2184 \Device\Harddisk0\DR0\Partition1 - ok
14:32:48.0914 2184 ============================================================
14:32:48.0914 2184 Scan finished
14:32:48.0914 2184 ============================================================
14:32:48.0936 3464 Detected object count: 0
14:32:48.0936 3464 Actual detected object count: 0
14:34:45.0082 3956 ============================================================
14:34:45.0082 3956 Scan started
14:34:45.0082 3956 Mode: Manual;
14:34:45.0082 3956 ============================================================
14:34:45.0409 3956 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
14:34:45.0414 3956 1394ohci - ok
14:34:45.0458 3956 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
14:34:45.0462 3956 ACPI - ok
14:34:45.0516 3956 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
14:34:45.0517 3956 AcpiPmi - ok
14:34:45.0669 3956 AdobeARMservice (62b7936f9036dd6ed36e6a7efa805dc0) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
14:34:45.0673 3956 AdobeARMservice - ok
14:34:45.0854 3956 AdobeFlashPlayerUpdateSvc (459ac130c6ab892b1cd5d7544626efc5) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
14:34:45.0857 3956 AdobeFlashPlayerUpdateSvc - ok
14:34:45.0958 3956 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys
14:34:45.0978 3956 adp94xx - ok
14:34:46.0052 3956 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys
14:34:46.0057 3956 adpahci - ok
14:34:46.0125 3956 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys
14:34:46.0128 3956 adpu320 - ok
14:34:46.0201 3956 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\Windows\System32\aelupsvc.dll
14:34:46.0203 3956 AeLookupSvc - ok
14:34:46.0260 3956 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys
14:34:46.0266 3956 AFD - ok
14:34:46.0317 3956 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
14:34:46.0319 3956 agp440 - ok
14:34:46.0361 3956 ALG (3290d6946b5e30e70414990574883ddb) C:\Windows\System32\alg.exe
14:34:46.0363 3956 ALG - ok
14:34:46.0417 3956 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
14:34:46.0419 3956 aliide - ok
14:34:46.0460 3956 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
14:34:46.0461 3956 amdide - ok
14:34:46.0502 3956 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys
14:34:46.0504 3956 AmdK8 - ok
14:34:46.0528 3956 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
14:34:46.0530 3956 AmdPPM - ok
14:34:46.0586 3956 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys
14:34:46.0588 3956 amdsata - ok
14:34:46.0623 3956 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys
14:34:46.0626 3956 amdsbs - ok
14:34:46.0673 3956 amdxata (1142a21db581a84ea5597b03a26ebaa0) C:\Windows\system32\drivers\amdxata.sys
14:34:46.0675 3956 amdxata - ok
14:34:46.0738 3956 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
14:34:46.0740 3956 AppID - ok
14:34:46.0803 3956 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\Windows\System32\appidsvc.dll
14:34:46.0805 3956 AppIDSvc - ok
14:34:46.0856 3956 Appinfo (3977d4a871ca0d4f2ed1e7db46829731) C:\Windows\System32\appinfo.dll
14:34:46.0858 3956 Appinfo - ok
14:34:46.0974 3956 Apple Mobile Device (d8e18021f91ad79ca8491cb5a5da22d4) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
14:34:46.0976 3956 Apple Mobile Device - ok
14:34:47.0022 3956 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys
14:34:47.0024 3956 arc - ok
14:34:47.0048 3956 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys
14:34:47.0050 3956 arcsas - ok
14:34:47.0288 3956 aspnet_state (9217d874131ae6ff8f642f124f00a555) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
14:34:47.0290 3956 aspnet_state - ok
14:34:47.0346 3956 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
14:34:47.0348 3956 AsyncMac - ok
14:34:47.0407 3956 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
14:34:47.0409 3956 atapi - ok
14:34:47.0529 3956 athr (d6cad7e5b05055bb8226bdcb1644da27) C:\Windows\system32\DRIVERS\athrx.sys
14:34:47.0573 3956 athr - ok
14:34:47.0747 3956 AudioEndpointBuilder (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
14:34:47.0755 3956 AudioEndpointBuilder - ok
14:34:47.0771 3956 AudioSrv (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
14:34:47.0778 3956 AudioSrv - ok
14:34:47.0866 3956 AxInstSV (a6bf31a71b409dfa8cac83159e1e2aff) C:\Windows\System32\AxInstSV.dll
14:34:47.0869 3956 AxInstSV - ok
14:34:47.0957 3956 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys
14:34:47.0964 3956 b06bdrv - ok
14:34:48.0022 3956 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
14:34:48.0027 3956 b57nd60a - ok
14:34:48.0080 3956 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\Windows\System32\bdesvc.dll
14:34:48.0083 3956 BDESVC - ok
14:34:48.0116 3956 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
14:34:48.0117 3956 Beep - ok
14:34:48.0207 3956 BFE (82974d6a2fd19445cc5171fc378668a4) C:\Windows\System32\bfe.dll
14:34:48.0215 3956 BFE - ok
14:34:48.0288 3956 BITS (1ea7969e3271cbc59e1730697dc74682) C:\Windows\System32\qmgr.dll
14:34:48.0299 3956 BITS - ok
14:34:48.0372 3956 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
14:34:48.0374 3956 blbdrive - ok
14:34:48.0508 3956 Bonjour Service (ebbcd5dfbb1de70e8f4af8fa59e401fd) C:\Program Files\Bonjour\mDNSResponder.exe
14:34:48.0515 3956 Bonjour Service - ok
14:34:48.0558 3956 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
14:34:48.0561 3956 bowser - ok
14:34:48.0594 3956 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys
14:34:48.0595 3956 BrFiltLo - ok
14:34:48.0619 3956 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys
14:34:48.0621 3956 BrFiltUp - ok
14:34:48.0660 3956 Browser (8ef0d5c41ec907751b8429162b1239ed) C:\Windows\System32\browser.dll
14:34:48.0663 3956 Browser - ok
14:34:48.0714 3956 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
14:34:48.0719 3956 Brserid - ok
14:34:48.0765 3956 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
14:34:48.0767 3956 BrSerWdm - ok
14:34:48.0802 3956 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
14:34:48.0803 3956 BrUsbMdm - ok
14:34:48.0841 3956 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
14:34:48.0842 3956 BrUsbSer - ok
14:34:48.0882 3956 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
14:34:48.0884 3956 BTHMODEM - ok
14:34:48.0926 3956 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\Windows\system32\bthserv.dll
14:34:48.0929 3956 bthserv - ok
14:34:48.0970 3956 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
14:34:48.0973 3956 cdfs - ok
14:34:49.0017 3956 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\DRIVERS\cdrom.sys
14:34:49.0020 3956 cdrom - ok
14:34:49.0076 3956 CertPropSvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
14:34:49.0078 3956 CertPropSvc - ok
14:34:49.0148 3956 cfwids (ed0263b2eb24f0f4e3898036fa1d28a1) C:\Windows\system32\drivers\cfwids.sys
14:34:49.0150 3956 cfwids - ok
14:34:49.0274 3956 cfWiMAXService (41e7c4fa6491747402cfca77cc1c7aab) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
14:34:49.0278 3956 cfWiMAXService - ok
14:34:49.0329 3956 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
14:34:49.0331 3956 circlass - ok
14:34:49.0422 3956 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
14:34:49.0427 3956 CLFS - ok
14:34:49.0517 3956 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
14:34:49.0521 3956 clr_optimization_v2.0.50727_32 - ok
14:34:49.0586 3956 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
14:34:49.0589 3956 clr_optimization_v2.0.50727_64 - ok
14:34:49.0732 3956 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
14:34:49.0743 3956 clr_optimization_v4.0.30319_32 - ok
14:34:49.0787 3956 clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
14:34:49.0790 3956 clr_optimization_v4.0.30319_64 - ok
14:34:49.0841 3956 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
14:34:49.0843 3956 CmBatt - ok
14:34:49.0872 3956 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
14:34:49.0873 3956 cmdide - ok
14:34:49.0926 3956 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys
14:34:49.0932 3956 CNG - ok
14:34:50.0017 3956 CnxtHdAudService (66d12b53e117ef951d5e1ced03b4cc1b) C:\Windows\system32\drivers\CHDRT64.sys
14:34:50.0027 3956 CnxtHdAudService - ok
14:34:50.0085 3956 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
14:34:50.0086 3956 Compbatt - ok
14:34:50.0133 3956 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\DRIVERS\CompositeBus.sys
14:34:50.0135 3956 CompositeBus - ok
14:34:50.0168 3956 COMSysApp - ok
14:34:50.0256 3956 ConfigFree Service (cab0eeaf5295fc96ddd3e19dce27e131) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
14:34:50.0257 3956 ConfigFree Service - ok
14:34:50.0299 3956 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys
14:34:50.0300 3956 crcdisk - ok
14:34:50.0371 3956 CryptSvc (15597883fbe9b056f276ada3ad87d9af) C:\Windows\system32\cryptsvc.dll
14:34:50.0376 3956 CryptSvc - ok
14:34:50.0442 3956 DcomLaunch (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
14:34:50.0450 3956 DcomLaunch - ok
14:34:50.0513 3956 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\Windows\System32\defragsvc.dll
14:34:50.0517 3956 defragsvc - ok
14:34:50.0577 3956 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
14:34:50.0580 3956 DfsC - ok
14:34:50.0617 3956 Dhcp (43d808f5d9e1a18e5eeb5ebc83969e4e) C:\Windows\system32\dhcpcore.dll
14:34:50.0622 3956 Dhcp - ok
14:34:50.0649 3956 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
14:34:50.0651 3956 discache - ok
14:34:50.0717 3956 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys
14:34:50.0720 3956 Disk - ok
14:34:50.0794 3956 Dnscache (16835866aaa693c7d7fceba8fff706e4) C:\Windows\System32\dnsrslvr.dll
14:34:50.0798 3956 Dnscache - ok
14:34:50.0842 3956 dot3svc (b1fb3ddca0fdf408750d5843591afbc6) C:\Windows\System32\dot3svc.dll
14:34:50.0846 3956 dot3svc - ok
14:34:50.0896 3956 DPS (b26f4f737e8f9df4f31af6cf31d05820) C:\Windows\system32\dps.dll
14:34:50.0899 3956 DPS - ok
14:34:50.0967 3956 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
14:34:50.0968 3956 drmkaud - ok
14:34:51.0043 3956 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
14:34:51.0055 3956 DXGKrnl - ok
14:34:51.0140 3956 EapHost (e2dda8726da9cb5b2c4000c9018a9633) C:\Windows\System32\eapsvc.dll
14:34:51.0142 3956 EapHost - ok
14:34:51.0505 3956 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys
14:34:51.0570 3956 ebdrv - ok
14:34:51.0664 3956 EFS (c118a82cd78818c29ab228366ebf81c3) C:\Windows\System32\lsass.exe
14:34:51.0666 3956 EFS - ok
14:34:51.0778 3956 ehRecvr (c4002b6b41975f057d98c439030cea07) C:\Windows\ehome\ehRecvr.exe
14:34:51.0786 3956 ehRecvr - ok
14:34:51.0817 3956 ehSched (4705e8ef9934482c5bb488ce28afc681) C:\Windows\ehome\ehsched.exe
14:34:51.0819 3956 ehSched - ok
14:34:51.0916 3956 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys
14:34:51.0923 3956 elxstor - ok
14:34:51.0962 3956 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
14:34:51.0963 3956 ErrDev - ok
14:34:52.0071 3956 EventSystem (4166f82be4d24938977dd1746be9b8a0) C:\Windows\system32\es.dll
14:34:52.0077 3956 EventSystem - ok
14:34:52.0122 3956 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
14:34:52.0126 3956 exfat - ok
14:34:52.0164 3956 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
14:34:52.0168 3956 fastfat - ok
14:34:52.0264 3956 Fax (dbefd454f8318a0ef691fdd2eaab44eb) C:\Windows\system32\fxssvc.exe
14:34:52.0292 3956 Fax - ok
14:34:52.0321 3956 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
14:34:52.0323 3956 fdc - ok
14:34:52.0366 3956 fdPHost (0438cab2e03f4fb61455a7956026fe86) C:\Windows\system32\fdPHost.dll
14:34:52.0368 3956 fdPHost - ok
14:34:52.0395 3956 FDResPub (802496cb59a30349f9a6dd22d6947644) C:\Windows\system32\fdrespub.dll
14:34:52.0397 3956 FDResPub - ok
14:34:52.0442 3956 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
14:34:52.0444 3956 FileInfo - ok
14:34:52.0469 3956 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
14:34:52.0471 3956 Filetrace - ok
14:34:52.0502 3956 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
14:34:52.0504 3956 flpydisk - ok
14:34:52.0552 3956 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
14:34:52.0557 3956 FltMgr - ok
14:34:52.0621 3956 FontCache (b4447f606bb19fd8ad0bafb59b90f5d9) C:\Windows\system32\FntCache.dll
14:34:52.0633 3956 FontCache - ok
14:34:52.0706 3956 FontCache3.0.0.0 (a8b7f3818ab65695e3a0bb3279f6dce6) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
14:34:52.0708 3956 FontCache3.0.0.0 - ok
14:34:52.0770 3956 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
14:34:52.0772 3956 FsDepends - ok
14:34:52.0834 3956 Fs_Rec (6bd9295cc032dd3077c671fccf579a7b) C:\Windows\system32\drivers\Fs_Rec.sys
14:34:52.0837 3956 Fs_Rec - ok
14:34:52.0870 3956 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
14:34:52.0874 3956 fvevol - ok
14:34:52.0928 3956 FwLnk (60acb128e64c35c2b4e4aab1b0a5c293) C:\Windows\system32\DRIVERS\FwLnk.sys
14:34:52.0929 3956 FwLnk - ok
14:34:52.0962 3956 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys
14:34:52.0964 3956 gagp30kx - ok
14:34:53.0032 3956 GEARAspiWDM (e403aacf8c7bb11375122d2464560311) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
14:34:53.0034 3956 GEARAspiWDM - ok
14:34:53.0093 3956 gpsvc (277bbc7e1aa1ee957f573a10eca7ef3a) C:\Windows\System32\gpsvc.dll
14:34:53.0103 3956 gpsvc - ok
14:34:53.0212 3956 gupdate (f02a533f517eb38333cb12a9e8963773) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
14:34:53.0215 3956 gupdate - ok
14:34:53.0256 3956 gupdatem (f02a533f517eb38333cb12a9e8963773) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
14:34:53.0258 3956 gupdatem - ok
14:34:53.0334 3956 gusvc (cc839e8d766cc31a7710c9f38cf3e375) C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
14:34:53.0337 3956 gusvc - ok
14:34:53.0367 3956 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
14:34:53.0369 3956 hcw85cir - ok
14:34:53.0436 3956 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys
14:34:53.0441 3956 HdAudAddService - ok
14:34:53.0495 3956 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys
14:34:53.0498 3956 HDAudBus - ok
14:34:53.0531 3956 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys
14:34:53.0533 3956 HidBatt - ok
14:34:53.0565 3956 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys
14:34:53.0567 3956 HidBth - ok
14:34:53.0628 3956 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys
14:34:53.0630 3956 HidIr - ok
14:34:53.0674 3956 hidserv (bd9eb3958f213f96b97b1d897dee006d) C:\Windows\system32\hidserv.dll
14:34:53.0677 3956 hidserv - ok
14:34:53.0730 3956 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\drivers\hidusb.sys
14:34:53.0732 3956 HidUsb - ok
14:34:53.0792 3956 hkmsvc (387e72e739e15e3d37907a86d9ff98e2) C:\Windows\system32\kmsvc.dll
14:34:53.0795 3956 hkmsvc - ok
14:34:53.0822 3956 HomeGroupListener (efdfb3dd38a4376f93e7985173813abd) C:\Windows\system32\ListSvc.dll
14:34:53.0828 3956 HomeGroupListener - ok
14:34:53.0868 3956 HomeGroupProvider (908acb1f594274965a53926b10c81e89) C:\Windows\system32\provsvc.dll
14:34:53.0871 3956 HomeGroupProvider - ok
14:34:53.0989 3956 hpqcxs08 (1dae5c46d42b02a6d5862e1482efb390) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll
14:34:53.0994 3956 hpqcxs08 - ok
14:34:54.0015 3956 hpqddsvc (99e8eef42fe2f4af29b08c3355dd7685) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll
14:34:54.0018 3956 hpqddsvc - ok
14:34:54.0065 3956 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
14:34:54.0073 3956 HpSAMD - ok
14:34:54.0158 3956 HPSLPSVC (f37882f128efacefe353e0bae2766909) C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL
14:34:54.0171 3956 HPSLPSVC - ok
14:34:54.0278 3956 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
14:34:54.0295 3956 HTTP - ok
14:34:54.0323 3956 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
14:34:54.0325 3956 hwpolicy - ok
14:34:54.0363 3956 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\DRIVERS\i8042prt.sys
14:34:54.0365 3956 i8042prt - ok
14:34:54.0455 3956 iaStor (bbb3b6df1abb0fe35802ede85cc1c011) C:\Windows\system32\DRIVERS\iaStor.sys
14:34:54.0461 3956 iaStor - ok
14:34:54.0529 3956 iaStorV (3df4395a7cf8b7a72a5f4606366b8c2d) C:\Windows\system32\drivers\iaStorV.sys
14:34:54.0535 3956 iaStorV - ok
14:34:54.0622 3956 IDriverT (6f95324909b502e2651442c1548ab12f) C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
14:34:54.0625 3956 IDriverT - ok
14:34:54.0743 3956 idsvc (5988fc40f8db5b0739cd1e3a5d0d78bd) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
14:34:54.0754 3956 idsvc - ok
14:34:55.0166 3956 igfx (898ab5bfed7040d7ab07af01885eb944) C:\Windows\system32\DRIVERS\igdkmd64.sys
14:34:55.0377 3956 igfx - ok
14:34:55.0507 3956 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys
14:34:55.0509 3956 iirsp - ok
14:34:55.0568 3956 IKEEXT (fcd84c381e0140af901e58d48882d26b) C:\Windows\System32\ikeext.dll
14:34:55.0578 3956 IKEEXT - ok
14:34:55.0621 3956 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
14:34:55.0622 3956 intelide - ok
14:34:55.0675 3956 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
14:34:55.0677 3956 intelppm - ok
14:34:55.0749 3956 IPBusEnum (098a91c54546a3b878dad6a7e90a455b) C:\Windows\system32\ipbusenum.dll
14:34:55.0752 3956 IPBusEnum - ok
14:34:55.0800 3956 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
14:34:55.0803 3956 IpFilterDriver - ok
14:34:55.0870 3956 iphlpsvc (a34a587fffd45fa649fba6d03784d257) C:\Windows\System32\iphlpsvc.dll
14:34:55.0878 3956 iphlpsvc - ok
14:34:55.0924 3956 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
14:34:55.0926 3956 IPMIDRV - ok
14:34:55.0982 3956 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
14:34:55.0985 3956 IPNAT - ok
14:34:56.0124 3956 iPod Service (3c0d4b3e80fc4854ca325dd123cc4ded) C:\Program Files\iPod\bin\iPodService.exe
14:34:56.0144 3956 iPod Service - ok
14:34:56.0166 3956 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
14:34:56.0167 3956 IRENUM - ok
14:34:56.0194 3956 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
14:34:56.0201 3956 isapnp - ok
14:34:56.0250 3956 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
14:34:56.0255 3956 iScsiPrt - ok
14:34:56.0316 3956 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys
14:34:56.0318 3956 kbdclass - ok
14:34:56.0356 3956 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\drivers\kbdhid.sys
14:34:56.0358 3956 kbdhid - ok
14:34:56.0397 3956 KeyIso (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
14:34:56.0399 3956 KeyIso - ok
14:34:56.0435 3956 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys
14:34:56.0437 3956 KSecDD - ok
14:34:56.0464 3956 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys
14:34:56.0467 3956 KSecPkg - ok
14:34:56.0522 3956 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
14:34:56.0524 3956 ksthunk - ok
14:34:56.0567 3956 KtmRm (6ab66e16aa859232f64deb66887a8c9c) C:\Windows\system32\msdtckrm.dll
14:34:56.0574 3956 KtmRm - ok
14:34:56.0617 3956 L1C (0e154da6ca9105354a07d0c576804037) C:\Windows\system32\DRIVERS\L1C62x64.sys
14:34:56.0619 3956 L1C - ok
14:34:56.0694 3956 LanmanServer (d9f42719019740baa6d1c6d536cbdaa6) C:\Windows\system32\srvsvc.dll
14:34:56.0698 3956 LanmanServer - ok
14:34:56.0739 3956 LanmanWorkstation (851a1382eed3e3a7476db004f4ee3e1a) C:\Windows\System32\wkssvc.dll
14:34:56.0744 3956 LanmanWorkstation - ok
14:34:56.0813 3956 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
14:34:56.0815 3956 lltdio - ok
14:34:56.0860 3956 lltdsvc (c1185803384ab3feed115f79f109427f) C:\Windows\System32\lltdsvc.dll
14:34:56.0865 3956 lltdsvc - ok
14:34:56.0920 3956 lmhosts (f993a32249b66c9d622ea5592a8b76b8) C:\Windows\System32\lmhsvc.dll
14:34:56.0922 3956 lmhosts - ok
14:34:56.0990 3956 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys
14:34:56.0994 3956 LSI_FC - ok
14:34:57.0029 3956 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\drivers\lsi_sas.sys
14:34:57.0031 3956 LSI_SAS - ok
14:34:57.0057 3956 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys
14:34:57.0060 3956 LSI_SAS2 - ok
14:34:57.0385 3956 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys
14:34:57.0388 3956 LSI_SCSI - ok
14:34:57.0432 3956 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
14:34:57.0435 3956 luafv - ok
14:34:57.0581 3956 McAfee SiteAdvisor Service (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
14:34:57.0585 3956 McAfee SiteAdvisor Service - ok
14:34:57.0641 3956 McMPFSvc (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
14:34:57.0643 3956 McMPFSvc - ok
14:34:57.0690 3956 mcmscsvc (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
14:34:57.0693 3956 mcmscsvc - ok
14:34:57.0736 3956 McNaiAnn (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
14:34:57.0738 3956 McNaiAnn - ok
14:34:57.0775 3956 McNASvc (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
14:34:57.0777 3956 McNASvc - ok
14:34:57.0893 3956 McODS (b3914a7c97a81acb1e9befe07e4c387f) C:\Program Files\McAfee\VirusScan\mcods.exe
14:34:57.0900 3956 McODS - ok
14:34:57.0945 3956 McProxy (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
14:34:57.0948 3956 McProxy - ok
14:34:58.0011 3956 McPvDrv (a0c364079e7ae6c3127bee8e196f00e5) C:\Windows\system32\drivers\McPvDrv.sys
14:34:58.0013 3956 McPvDrv - ok
14:34:58.0100 3956 McShield (4a463d645b48bb487ca7df12ba5d1602) C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
14:34:58.0103 3956 McShield - ok
14:34:58.0159 3956 Mcx2Svc (0be09cd858abf9df6ed259d57a1a1663) C:\Windows\system32\Mcx2Svc.dll
14:34:58.0162 3956 Mcx2Svc - ok
14:34:58.0193 3956 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys
14:34:58.0194 3956 megasas - ok
14:34:58.0227 3956 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys
14:34:58.0233 3956 MegaSR - ok
14:34:58.0309 3956 mfeapfk (ef3acfb7e3f82d5f7cde9ef5f0a4e2e2) C:\Windows\system32\drivers\mfeapfk.sys
14:34:58.0312 3956 mfeapfk - ok
14:34:58.0417 3956 mfeavfk (e7a60bdb4365b561d896019b82fb7dd0) C:\Windows\system32\drivers\mfeavfk.sys
14:34:58.0421 3956 mfeavfk - ok
14:34:58.0461 3956 mfeavfk01 - ok
14:34:58.0519 3956 mfefire (c53b7aba204d9f7e9568ec147a1485c5) C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
14:34:58.0522 3956 mfefire - ok
14:34:58.0612 3956 mfefirek (670dffe55e2f9ab99d9169c428bcece9) C:\Windows\system32\drivers\mfefirek.sys
14:34:58.0618 3956 mfefirek - ok
14:34:59.0052 3956 mfehidk (1892616b7f9291fd77c3fa0a5811fe9f) C:\Windows\system32\drivers\mfehidk.sys
14:34:59.0082 3956 mfehidk - ok
14:34:59.0157 3956 mfenlfk (1721261c77f6e7a9e0cb51b7d9f31b60) C:\Windows\system32\DRIVERS\mfenlfk.sys
14:34:59.0159 3956 mfenlfk - ok
14:34:59.0241 3956 mferkdet (65776bd8029e409935b90de30bf99526) C:\Windows\system32\drivers\mferkdet.sys
14:34:59.0244 3956 mferkdet - ok
14:34:59.0300 3956 mfevtp (3ed58a36f7f7d60f0ef44d29810b0b80) C:\Windows\system32\mfevtps.exe
14:34:59.0305 3956 mfevtp - ok
14:34:59.0436 3956 mfewfpk (4f17d8b85b903d96ef7033bb6ef50516) C:\Windows\system32\drivers\mfewfpk.sys
14:34:59.0440 3956 mfewfpk - ok
14:34:59.0500 3956 MMCSS (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
14:34:59.0502 3956 MMCSS - ok
14:34:59.0542 3956 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
14:34:59.0544 3956 Modem - ok
14:34:59.0593 3956 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
14:34:59.0595 3956 monitor - ok
14:34:59.0643 3956 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys
14:34:59.0645 3956 mouclass - ok
14:34:59.0684 3956 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
14:34:59.0686 3956 mouhid - ok
14:34:59.0742 3956 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys
14:34:59.0744 3956 mountmgr - ok
14:34:59.0842 3956 MozillaMaintenance (96aa8ba23142cc8e2b30f3cae0c80254) C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
14:34:59.0845 3956 MozillaMaintenance - ok
14:34:59.0888 3956 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys
14:34:59.0892 3956 mpio - ok
14:34:59.0939 3956 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
14:34:59.0942 3956 mpsdrv - ok
14:35:00.0002 3956 MpsSvc (54ffc9c8898113ace189d4aa7199d2c1) C:\Windows\system32\mpssvc.dll
14:35:00.0012 3956 MpsSvc - ok
14:35:00.0057 3956 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys
14:35:00.0061 3956 MRxDAV - ok
14:35:00.0100 3956 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys
14:35:00.0103 3956 mrxsmb - ok
14:35:00.0138 3956 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys
14:35:00.0143 3956 mrxsmb10 - ok
14:35:00.0176 3956 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
14:35:00.0180 3956 mrxsmb20 - ok
14:35:00.0205 3956 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys
14:35:00.0207 3956 msahci - ok
14:35:00.0245 3956 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys
14:35:00.0248 3956 msdsm - ok
14:35:00.0288 3956 MSDTC (de0ece52236cfa3ed2dbfc03f28253a8) C:\Windows\System32\msdtc.exe
14:35:00.0292 3956 MSDTC - ok
14:35:00.0336 3956 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
14:35:00.0338 3956 Msfs - ok
14:35:00.0395 3956 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
14:35:00.0397 3956 mshidkmdf - ok
14:35:00.0411 3956 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
14:35:00.0413 3956 msisadrv - ok
14:35:00.0448 3956 MSiSCSI (808e98ff49b155c522e6400953177b08) C:\Windows\system32\iscsiexe.dll
14:35:00.0452 3956 MSiSCSI - ok
14:35:00.0467 3956 msiserver - ok
14:35:00.0586 3956 MSK80Service (acb01bf1a905356ab7f978c7fe852209) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
14:35:00.0588 3956 MSK80Service - ok
14:35:00.0653 3956 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
14:35:00.0655 3956 MSKSSRV - ok
14:35:00.0992 3956 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
14:35:00.0994 3956 MSPCLOCK - ok
14:35:01.0052 3956 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
14:35:01.0054 3956 MSPQM - ok
14:35:01.0109 3956 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys
14:35:01.0116 3956 MsRPC - ok
14:35:01.0150 3956 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\DRIVERS\mssmbios.sys
14:35:01.0152 3956 mssmbios - ok
14:35:01.0208 3956 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
14:35:01.0210 3956 MSTEE - ok
14:35:01.0238 3956 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys
14:35:01.0239 3956 MTConfig - ok
14:35:01.0269 3956 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
14:35:01.0272 3956 Mup - ok
14:35:01.0333 3956 napagent (582ac6d9873e31dfa28a4547270862dd) C:\Windows\system32\qagentRT.dll
14:35:01.0340 3956 napagent - ok
14:35:01.0410 3956 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
14:35:01.0415 3956 NativeWifiP - ok
14:35:01.0522 3956 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys
14:35:01.0533 3956 NDIS - ok
14:35:01.0579 3956 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
14:35:01.0581 3956 NdisCap - ok
14:35:01.0629 3956 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
14:35:01.0631 3956 NdisTapi - ok
14:35:01.0722 3956 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys
14:35:01.0724 3956 Ndisuio - ok
14:35:01.0741 3956 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys
14:35:01.0745 3956 NdisWan - ok
14:35:01.0775 3956 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys
14:35:01.0776 3956 NDProxy - ok
14:35:01.0848 3956 Net Driver HPZ12 (2334dc48997ba203b794df3ee70521db) C:\Windows\system32\HPZinw12.dll
14:35:01.0852 3956 Net Driver HPZ12 - ok
14:35:01.0904 3956 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
14:35:01.0906 3956 NetBIOS - ok
14:35:01.0938 3956 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys
14:35:01.0942 3956 NetBT - ok
14:35:01.0975 3956 Netlogon (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
14:35:01.0977 3956 Netlogon - ok
14:35:02.0038 3956 Netman (847d3ae376c0817161a14a82c8922a9e) C:\Windows\System32\netman.dll
14:35:02.0044 3956 Netman - ok
14:35:02.0140 3956 NetMsmqActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
14:35:02.0143 3956 NetMsmqActivator - ok
14:35:02.0179 3956 NetPipeActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
14:35:02.0181 3956 NetPipeActivator - ok
14:35:02.0234 3956 netprofm (5f28111c648f1e24f7dbc87cdeb091b8) C:\Windows\System32\netprofm.dll
14:35:02.0240 3956 netprofm - ok
14:35:02.0281 3956 NetTcpActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
14:35:02.0283 3956 NetTcpActivator - ok
14:35:02.0344 3956 NetTcpPortSharing (3e5a36127e201ddf663176b66828fafe) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
14:35:02.0347 3956 NetTcpPortSharing - ok
14:35:02.0418 3956 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys
14:35:02.0419 3956 nfrd960 - ok
14:35:02.0467 3956 NlaSvc (1ee99a89cc788ada662441d1e9830529) C:\Windows\System32\nlasvc.dll
14:35:02.0474 3956 NlaSvc - ok
14:35:02.0494 3956 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
14:35:02.0495 3956 Npfs - ok
14:35:02.0552 3956 nsi (d54bfdf3e0c953f823b3d0bfe4732528) C:\Windows\system32\nsisvc.dll
14:35:02.0555 3956 nsi - ok
14:35:02.0591 3956 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
14:35:02.0593 3956 nsiproxy - ok
14:35:02.0946 3956 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys
14:35:02.0964 3956 Ntfs - ok
14:35:03.0104 3956 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
14:35:03.0106 3956 Null - ok
14:35:03.0147 3956 nvraid (5d9fd91f3d38dc9da01e3cb5fa89cd48) C:\Windows\system32\drivers\nvraid.sys
14:35:03.0150 3956 nvraid - ok
14:35:03.0180 3956 nvstor (f7cd50fe7139f07e77da8ac8033d1832) C:\Windows\system32\drivers\nvstor.sys
14:35:03.0183 3956 nvstor - ok
14:35:03.0230 3956 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
14:35:03.0233 3956 nv_agp - ok
14:35:03.0258 3956 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
14:35:03.0261 3956 ohci1394 - ok
14:35:03.0355 3956 ose (9d10f99a6712e28f8acd5641e3a7ea6b) C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
14:35:03.0358 3956 ose - ok
14:35:03.0420 3956 p2pimsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
14:35:03.0427 3956 p2pimsvc - ok
14:35:03.0466 3956 p2psvc (927463ecb02179f88e4b9a17568c63c3) C:\Windows\system32\p2psvc.dll
14:35:03.0473 3956 p2psvc - ok
14:35:03.0554 3956 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys
14:35:03.0556 3956 Parport - ok
14:35:03.0582 3956 partmgr (871eadac56b0a4c6512bbe32753ccf79) C:\Windows\system32\drivers\partmgr.sys
14:35:03.0584 3956 partmgr - ok
14:35:03.0628 3956 PcaSvc (3aeaa8b561e63452c655dc0584922257) C:\Windows\System32\pcasvc.dll
14:35:03.0633 3956 PcaSvc - ok
14:35:03.0665 3956 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys
14:35:03.0674 3956 pci - ok
14:35:03.0717 3956 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
14:35:03.0719 3956 pciide - ok
14:35:03.0760 3956 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys
14:35:03.0765 3956 pcmcia - ok
14:35:03.0807 3956 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
14:35:03.0809 3956 pcw - ok
14:35:03.0864 3956 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
14:35:03.0872 3956 PEAUTH - ok
14:35:04.0045 3956 PerfHost (e495e408c93141e8fc72dc0c6046ddfa) C:\Windows\SysWow64\perfhost.exe
14:35:04.0047 3956 PerfHost - ok
14:35:04.0133 3956 PGEffect (663962900e7fea522126ba287715bb4a) C:\Windows\system32\DRIVERS\pgeffect.sys
14:35:04.0135 3956 PGEffect - ok
14:35:04.0307 3956 pla (c7cf6a6e137463219e1259e3f0f0dd6c) C:\Windows\system32\pla.dll
14:35:04.0354 3956 pla - ok
14:35:05.0066 3956 PlugPlay (25fbdef06c4d92815b353f6e792c8129) C:\Windows\system32\umpnpmgr.dll
14:35:05.0073 3956 PlugPlay - ok
14:35:05.0284 3956 Pml Driver HPZ12 (ac78df349f0e4cfb8b667c0cfff83cce) C:\Windows\system32\HPZipm12.dll
14:35:05.0286 3956 Pml Driver HPZ12 - ok
14:35:05.0344 3956 PNRPAutoReg (7195581cec9bb7d12abe54036acc2e38) C:\Windows\system32\pnrpauto.dll
14:35:05.0347 3956 PNRPAutoReg - ok
14:35:05.0391 3956 PNRPsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
14:35:05.0395 3956 PNRPsvc - ok
14:35:05.0506 3956 PolicyAgent (4f15d75adf6156bf56eced6d4a55c389) C:\Windows\System32\ipsecsvc.dll
14:35:05.0512 3956 PolicyAgent - ok
14:35:05.0562 3956 Power (6ba9d927dded70bd1a9caded45f8b184) C:\Windows\system32\umpo.dll
14:35:05.0566 3956 Power - ok
14:35:05.0691 3956 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys
14:35:05.0701 3956 PptpMiniport - ok
14:35:05.0733 3956 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys
14:35:05.0735 3956 Processor - ok
14:35:05.0853 3956 ProfSvc (5c78838b4d166d1a27db3a8a820c799a) C:\Windows\system32\profsvc.dll
14:35:05.0864 3956 ProfSvc - ok
14:35:05.0931 3956 ProtectedStorage (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
14:35:05.0933 3956 ProtectedStorage - ok
14:35:06.0011 3956 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys
14:35:06.0014 3956 Psched - ok
14:35:06.0123 3956 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys
14:35:06.0168 3956 ql2300 - ok
14:35:06.0297 3956 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys
14:35:06.0300 3956 ql40xx - ok
14:35:06.0339 3956 QWAVE (906191634e99aea92c4816150bda3732) C:\Windows\system32\qwave.dll
14:35:06.0347 3956 QWAVE - ok
14:35:06.0379 3956 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
14:35:06.0380 3956 QWAVEdrv - ok
14:35:06.0531 3956 RapportCerberus_32029 (68b15a9a2a35d7afa3bda1fb9edb84d0) C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\32029\RapportCerberus64_32029.sys
14:35:06.0548 3956 RapportCerberus_32029 - ok
14:35:06.0647 3956 RapportEI64 (8648b4268dfb90536e02dcb800991be8) C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys
14:35:06.0649 3956 RapportEI64 - ok
14:35:06.0952 3956 RapportKE64 (344373ad5b420b41daa74439f42a52e2) C:\Windows\system32\Drivers\RapportKE64.sys
14:35:06.0954 3956 RapportKE64 - ok
14:35:07.0125 3956 RapportMgmtService (af91ceb3a00f4b4d02c452e4c9e12f53) C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe
14:35:07.0163 3956 RapportMgmtService - ok
14:35:07.0239 3956 RapportPG64 (2ddc808aa69ec47465f4d13d16e4fe66) C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys
14:35:07.0241 3956 RapportPG64 - ok
14:35:07.0275 3956 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
14:35:07.0277 3956 RasAcd - ok
14:35:07.0351 3956 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
14:35:07.0353 3956 RasAgileVpn - ok
14:35:07.0392 3956 RasAuto (8f26510c5383b8dbe976de1cd00fc8c7) C:\Windows\System32\rasauto.dll
14:35:07.0395 3956 RasAuto - ok
14:35:07.0454 3956 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys
14:35:07.0457 3956 Rasl2tp - ok
14:35:07.0513 3956 RasMan (ee867a0870fc9e4972ba9eaad35651e2) C:\Windows\System32\rasmans.dll
14:35:07.0519 3956 RasMan - ok
14:35:07.0568 3956 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
14:35:07.0570 3956 RasPppoe - ok
14:35:07.0609 3956 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
14:35:07.0611 3956 RasSstp - ok
14:35:07.0653 3956 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys
14:35:07.0658 3956 rdbss - ok
14:35:07.0708 3956 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys
14:35:07.0710 3956 rdpbus - ok
14:35:07.0752 3956 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
14:35:07.0754 3956 RDPCDD - ok
14:35:07.0770 3956 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
14:35:07.0772 3956 RDPENCDD - ok
14:35:07.0790 3956 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
14:35:07.0791 3956 RDPREFMP - ok
14:35:07.0824 3956 RDPWD (6d76e6433574b058adcb0c50df834492) C:\Windows\system32\drivers\RDPWD.sys
14:35:07.0828 3956 RDPWD - ok
14:35:07.0891 3956 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys
14:35:07.0895 3956 rdyboost - ok
14:35:07.0927 3956 RemoteAccess (254fb7a22d74e5511c73a3f6d802f192) C:\Windows\System32\mprdim.dll
14:35:07.0931 3956 RemoteAccess - ok
14:35:07.0967 3956 RemoteRegistry (e4d94f24081440b5fc5aa556c7c62702) C:\Windows\system32\regsvc.dll
14:35:07.0972 3956 RemoteRegistry - ok
14:35:08.0040 3956 RimUsb (71b48ddaf5e9c2b40e64de5c405f5aac) C:\Windows\system32\Drivers\RimUsb_AMD64.sys
14:35:08.0042 3956 RimUsb - ok
14:35:08.0102 3956 RimVSerPort (c903d49655b4aae46673f0aaa6be0f58) C:\Windows\system32\DRIVERS\RimSerial_AMD64.sys
14:35:08.0103 3956 RimVSerPort - ok
14:35:08.0149 3956 ROOTMODEM (388d3dd1a6457280f3badba9f3acd6b1) C:\Windows\system32\Drivers\RootMdm.sys
14:35:08.0150 3956 ROOTMODEM - ok
14:35:08.0195 3956 RpcEptMapper (e4dc58cf7b3ea515ae917ff0d402a7bb) C:\Windows\System32\RpcEpMap.dll
14:35:08.0199 3956 RpcEptMapper - ok
14:35:08.0233 3956 RpcLocator (d5ba242d4cf8e384db90e6a8ed850b8c) C:\Windows\system32\locator.exe
14:35:08.0235 3956 RpcLocator - ok
14:35:08.0290 3956 RpcSs (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
14:35:08.0295 3956 RpcSs - ok
14:35:08.0343 3956 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
14:35:08.0346 3956 rspndr - ok
14:35:08.0403 3956 RSUSBSTOR (907c4464381b5ebdfdc60f6c7d0dedfc) C:\Windows\system32\Drivers\RtsUStor.sys
14:35:08.0408 3956 RSUSBSTOR - ok
14:35:08.0442 3956 SamSs (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
14:35:08.0444 3956 SamSs - ok
14:35:08.0479 3956 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys
14:35:08.0482 3956 sbp2port - ok
14:35:08.0525 3956 SCardSvr (9b7395789e3791a3b6d000fe6f8b131e) C:\Windows\System32\SCardSvr.dll
14:35:08.0530 3956 SCardSvr - ok
14:35:08.0553 3956 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys
14:35:08.0554 3956 scfilter - ok
14:35:08.0604 3956 Schedule (262f6592c3299c005fd6bec90fc4463a) C:\Windows\system32\schedsvc.dll
14:35:08.0629 3956 Schedule - ok
14:35:08.0676 3956 SCPolicySvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
14:35:08.0678 3956 SCPolicySvc - ok
14:35:08.0764 3956 SDRSVC (6ea4234dc55346e0709560fe7c2c1972) C:\Windows\System32\SDRSVC.dll
14:35:08.0773 3956 SDRSVC - ok
14:35:09.0254 3956 SeaPort (331e7bde228914574fc9ae6cd520dafa) C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
14:35:09.0283 3956 SeaPort - ok
14:35:09.0449 3956 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
14:35:09.0451 3956 secdrv - ok
14:35:09.0513 3956 seclogon (bc617a4e1b4fa8df523a061739a0bd87) C:\Windows\system32\seclogon.dll
14:35:09.0516 3956 seclogon - ok
14:35:09.0574 3956 SENS (c32ab8fa018ef34c0f113bd501436d21) C:\Windows\System32\sens.dll
14:35:09.0576 3956 SENS - ok
14:35:09.0714 3956 SensrSvc (0336cffafaab87a11541f1cf1594b2b2) C:\Windows\system32\sensrsvc.dll
14:35:09.0736 3956 SensrSvc - ok
14:35:09.0785 3956 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys
14:35:09.0791 3956 Serenum - ok
14:35:09.0901 3956 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys
14:35:09.0903 3956 Serial - ok
14:35:09.0965 3956 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys
14:35:09.0967 3956 sermouse - ok
14:35:10.0022 3956 SessionEnv (0b6231bf38174a1628c4ac812cc75804) C:\Windows\system32\sessenv.dll
14:35:10.0026 3956 SessionEnv - ok
14:35:10.0097 3956 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
14:35:10.0098 3956 sffdisk - ok
14:35:10.0393 3956 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
14:35:10.0395 3956 sffp_mmc - ok
14:35:10.0442 3956 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys
14:35:10.0444 3956 sffp_sd - ok
14:35:10.0469 3956 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys
14:35:10.0471 3956 sfloppy - ok
14:35:10.0537 3956 SharedAccess (b95f6501a2f8b2e78c697fec401970ce) C:\Windows\System32\ipnathlp.dll
14:35:10.0543 3956 SharedAccess - ok
14:35:10.0596 3956 ShellHWDetection (aaf932b4011d14052955d4b212a4da8d) C:\Windows\System32\shsvcs.dll
14:35:10.0603 3956 ShellHWDetection - ok
14:35:10.0651 3956 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys
14:35:10.0653 3956 SiSRaid2 - ok
14:35:10.0708 3956 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys
14:35:10.0710 3956 SiSRaid4 - ok
14:35:10.0740 3956 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
14:35:10.0743 3956 Smb - ok
14:35:10.0823 3956 SNMPTRAP (6313f223e817cc09aa41811daa7f541d) C:\Windows\System32\snmptrap.exe
14:35:10.0826 3956 SNMPTRAP - ok
14:35:10.0855 3956 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
14:35:10.0857 3956 spldr - ok
14:35:10.0898 3956 Spooler (b96c17b5dc1424d56eea3a99e97428cd) C:\Windows\System32\spoolsv.exe
14:35:10.0908 3956 Spooler - ok
14:35:11.0257 3956 sppsvc (e17e0188bb90fae42d83e98707efa59c) C:\Windows\system32\sppsvc.exe
14:35:11.0284 3956 sppsvc - ok
14:35:11.0444 3956 sppuinotify (93d7d61317f3d4bc4f4e9f8a96a7de45) C:\Windows\system32\sppuinotify.dll
14:35:11.0447 3956 sppuinotify - ok
14:35:11.0568 3956 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys
14:35:11.0578 3956 srv - ok
14:35:11.0631 3956 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys
14:35:11.0637 3956 srv2 - ok
14:35:11.0665 3956 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys
14:35:11.0670 3956 srvnet - ok
14:35:12.0019 3956 SSDPSRV (51b52fbd583cde8aa9ba62b8b4298f33) C:\Windows\System32\ssdpsrv.dll
14:35:12.0023 3956 SSDPSRV - ok
14:35:12.0051 3956 SstpSvc (ab7aebf58dad8daab7a6c45e6a8885cb) C:\Windows\system32\sstpsvc.dll
14:35:12.0055 3956 SstpSvc - ok
14:35:12.0090 3956 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys
14:35:12.0094 3956 stexstor - ok
14:35:12.0133 3956 StillCam (decacb6921ded1a38642642685d77dac) C:\Windows\system32\DRIVERS\serscan.sys
14:35:12.0135 3956 StillCam - ok
14:35:12.0211 3956 stisvc (8dd52e8e6128f4b2da92ce27402871c1) C:\Windows\System32\wiaservc.dll
14:35:12.0219 3956 stisvc - ok
14:35:12.0246 3956 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\DRIVERS\swenum.sys
14:35:12.0248 3956 swenum - ok
14:35:12.0314 3956 swprv (e08e46fdd841b7184194011ca1955a0b) C:\Windows\System32\swprv.dll
14:35:12.0321 3956 swprv - ok
14:35:12.0380 3956 SynTP (470c47daba9ca3966f0ab3f835d7d135) C:\Windows\system32\DRIVERS\SynTP.sys
14:35:12.0386 3956 SynTP - ok
14:35:12.0551 3956 SysMain (bf9ccc0bf39b418c8d0ae8b05cf95b7d) C:\Windows\system32\sysmain.dll
14:35:12.0607 3956 SysMain - ok
14:35:12.0764 3956 TabletInputService (e3c61fd7b7c2557e1f1b0b4cec713585) C:\Windows\System32\TabSvc.dll
14:35:12.0767 3956 TabletInputService - ok
14:35:12.0851 3956 TapiSrv (40f0849f65d13ee87b9a9ae3c1dd6823) C:\Windows\System32\tapisrv.dll
14:35:12.0856 3956 TapiSrv - ok
14:35:12.0892 3956 TBS (1be03ac720f4d302ea01d40f588162f6) C:\Windows\System32\tbssvc.dll
14:35:12.0895 3956 TBS - ok
14:35:13.0089 3956 Tcpip (fc62769e7bff2896035aeed399108162) C:\Windows\system32\drivers\tcpip.sys
14:35:13.0147 3956 Tcpip - ok
14:35:13.0728 3956 TCPIP6 (fc62769e7bff2896035aeed399108162) C:\Windows\system32\DRIVERS\tcpip.sys
14:35:13.0742 3956 TCPIP6 - ok
14:35:14.0033 3956 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys
14:35:14.0036 3956 tcpipreg - ok
14:35:14.0098 3956 tdcmdpst (fd542b661bd22fa69ca789ad0ac58c29) C:\Windows\system32\DRIVERS\tdcmdpst.sys
14:35:14.0100 3956 tdcmdpst - ok
14:35:14.0125 3956 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
14:35:14.0127 3956 TDPIPE - ok
14:35:14.0178 3956 TDTCP (51c5eceb1cdee2468a1748be550cfbc8) C:\Windows\system32\drivers\tdtcp.sys
14:35:14.0180 3956 TDTCP - ok
14:35:14.0232 3956 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys
14:35:14.0235 3956 tdx - ok
14:35:14.0711 3956 TeamViewer6 (8a9828975a857e477efef5a61ba45ac0) C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe
14:35:15.0050 3956 TeamViewer6 - ok
14:35:15.0181 3956 TemproMonitoringService (1b709733a04dcc41a63f9cd1f76a4ebe) C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe
14:35:15.0183 3956 TemproMonitoringService - ok
14:35:15.0396 3956 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\DRIVERS\termdd.sys
14:35:15.0398 3956 TermDD - ok
14:35:15.0526 3956 TermService (2e648163254233755035b46dd7b89123) C:\Windows\System32\termsrv.dll
14:35:15.0554 3956 TermService - ok
14:35:15.0586 3956 Themes (f0344071948d1a1fa732231785a0664c) C:\Windows\system32\themeservice.dll
14:35:15.0589 3956 Themes - ok
14:35:15.0633 3956 THREADORDER (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
14:35:15.0635 3956 THREADORDER - ok
14:35:15.0790 3956 TMachInfo (28644b0523d64eff2fc7312a2ee74b0a) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
14:35:15.0800 3956 TMachInfo - ok
14:35:15.0871 3956 TODDSrv (ed32035bdfeced1ad66d459fd9cc1140) C:\Windows\system32\TODDSrv.exe
14:35:15.0874 3956 TODDSrv - ok
14:35:15.0993 3956 TosCoSrv (98c864481d62f86ec8af65be3419a95b) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
14:35:15.0999 3956 TosCoSrv - ok
14:35:16.0342 3956 TOSHIBA HDD SSD Alert Service (74c2fa8c3765ee71a9c22182ec108457) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
14:35:16.0345 3956 TOSHIBA HDD SSD Alert Service - ok
14:35:16.0403 3956 TrkWks (7e7afd841694f6ac397e99d75cead49d) C:\Windows\System32\trkwks.dll
14:35:16.0406 3956 TrkWks - ok
14:35:16.0507 3956 TrustedInstaller (773212b2aaa24c1e31f10246b15b276c) C:\Windows\servicing\TrustedInstaller.exe
14:35:16.0510 3956 TrustedInstaller - ok
14:35:16.0587 3956 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys
14:35:16.0589 3956 tssecsrv - ok
14:35:16.0638 3956 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
14:35:16.0640 3956 TsUsbFlt - ok
14:35:16.0678 3956 TsUsbGD (9cc2ccae8a84820eaecb886d477cbcb8) C:\Windows\system32\drivers\TsUsbGD.sys
14:35:16.0680 3956 TsUsbGD - ok
14:35:16.0976 3956 TuneUp.UtilitiesSvc (535a376629a37e03f993d769490e8eed) C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe
14:35:17.0047 3956 TuneUp.UtilitiesSvc - ok
14:35:17.0193 3956 TuneUpUtilitiesDrv (dcc94c51d27c7ec0dadeca8f64c94fcf) C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesDriver64.sys
14:35:17.0194 3956 TuneUpUtilitiesDrv - ok
14:35:17.0330 3956 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys
14:35:17.0332 3956 tunnel - ok
14:35:17.0429 3956 TVALZ (550b567f9364d8f7684c3fb3ea665a72) C:\Windows\system32\DRIVERS\TVALZ_O.SYS
14:35:17.0431 3956 TVALZ - ok
14:35:17.0477 3956 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys
14:35:17.0479 3956 uagp35 - ok
14:35:17.0515 3956 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys
14:35:17.0521 3956 udfs - ok
14:35:17.0580 3956 UI0Detect (3cbdec8d06b9968aba702eba076364a1) C:\Windows\system32\UI0Detect.exe
14:35:17.0583 3956 UI0Detect - ok
14:35:17.0640 3956 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
14:35:17.0642 3956 uliagpkx - ok
14:35:17.0674 3956 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\DRIVERS\umbus.sys
14:35:17.0676 3956 umbus - ok
14:35:17.0735 3956 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys
14:35:17.0736 3956 UmPass - ok
14:35:17.0791 3956 upnphost (d47ec6a8e81633dd18d2436b19baf6de) C:\Windows\System32\upnphost.dll
14:35:17.0797 3956 upnphost - ok
14:35:17.0846 3956 USBAAPL64 (aa33fc47ed58c34e6e9261e4f850b7eb) C:\Windows\system32\Drivers\usbaapl64.sys
14:35:17.0848 3956 USBAAPL64 - ok
14:35:17.0909 3956 usbaudio (82e8f44688e6fac57b5b7c6fc7adbc2a) C:\Windows\system32\drivers\usbaudio.sys
14:35:17.0913 3956 usbaudio - ok
14:35:17.0958 3956 usbccgp (481dff26b4dca8f4cbac1f7dce1d6829) C:\Windows\system32\DRIVERS\usbccgp.sys
14:35:17.0960 3956 usbccgp - ok
14:35:18.0027 3956 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
14:35:18.0030 3956 usbcir - ok
14:35:18.0059 3956 usbehci (74ee782b1d9c241efe425565854c661c) C:\Windows\system32\DRIVERS\usbehci.sys
14:35:18.0062 3956 usbehci - ok
14:35:18.0122 3956 usbhub (dc96bd9ccb8403251bcf25047573558e) C:\Windows\system32\DRIVERS\usbhub.sys
14:35:18.0128 3956 usbhub - ok
14:35:18.0150 3956 usbohci (58e546bbaf87664fc57e0f6081e4f609) C:\Windows\system32\drivers\usbohci.sys
14:35:18.0152 3956 usbohci - ok
14:35:18.0191 3956 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\drivers\usbprint.sys
14:35:18.0193 3956 usbprint - ok
14:35:18.0235 3956 USBSTOR (d76510cfa0fc09023077f22c2f979d86) C:\Windows\system32\drivers\USBSTOR.SYS
14:35:18.0237 3956 USBSTOR - ok
14:35:18.0266 3956 usbuhci (81fb2216d3a60d1284455d511797db3d) C:\Windows\system32\DRIVERS\usbuhci.sys
14:35:18.0268 3956 usbuhci - ok
14:35:18.0324 3956 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\System32\Drivers\usbvideo.sys
14:35:18.0328 3956 usbvideo - ok
14:35:18.0377 3956 UxSms (edbb23cbcf2cdf727d64ff9b51a6070e) C:\Windows\System32\uxsms.dll
14:35:18.0380 3956 UxSms - ok
14:35:18.0437 3956 UxTuneUp (6f10c7ff1f1e3f45d7e20dd6e398682e) C:\Windows\System32\uxtuneup.dll
14:35:18.0440 3956 UxTuneUp - ok
14:35:18.0508 3956 VaultSvc (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
14:35:18.0511 3956 VaultSvc - ok
14:35:18.0540 3956 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
14:35:18.0542 3956 vdrvroot - ok
14:35:18.0615 3956 vds (8d6b481601d01a456e75c3210f1830be) C:\Windows\System32\vds.exe
14:35:18.0635 3956 vds - ok
14:35:18.0685 3956 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
14:35:18.0687 3956 vga - ok
14:35:18.0729 3956 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
14:35:18.0731 3956 VgaSave - ok
14:35:18.0765 3956 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys
14:35:18.0769 3956 vhdmp - ok
14:35:18.0791 3956 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
14:35:18.0793 3956 viaide - ok
14:35:18.0819 3956 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys
14:35:18.0822 3956 volmgr - ok
14:35:18.0848 3956 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys
14:35:18.0853 3956 volmgrx - ok
14:35:18.0897 3956 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys
14:35:18.0902 3956 volsnap - ok
14:35:18.0942 3956 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys
14:35:18.0946 3956 vsmraid - ok
14:35:19.0089 3956 VSS (b60ba0bc31b0cb414593e169f6f21cc2) C:\Windows\system32\vssvc.exe
14:35:19.0120 3956 VSS - ok
14:35:19.0296 3956 vToolbarUpdater (980e45498392e6659d2e7c44e7de2336) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\10.0.6\ToolbarUpdater.exe
14:35:19.0303 3956 vToolbarUpdater - ok
14:35:19.0537 3956 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\System32\drivers\vwifibus.sys
14:35:19.0539 3956 vwifibus - ok
14:35:19.0567 3956 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys
14:35:19.0569 3956 vwififlt - ok
14:35:19.0604 3956 vwifimp (6a638fc4bfddc4d9b186c28c91bd1a01) C:\Windows\system32\DRIVERS\vwifimp.sys
14:35:19.0605 3956 vwifimp - ok
14:35:19.0657 3956 W32Time (1c9d80cc3849b3788048078c26486e1a) C:\Windows\system32\w32time.dll
14:35:19.0664 3956 W32Time - ok
14:35:19.0701 3956 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys
14:35:19.0703 3956 WacomPen - ok
14:35:19.0736 3956 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
14:35:19.0738 3956 WANARP - ok
14:35:19.0752 3956 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
14:35:19.0754 3956 Wanarpv6 - ok
14:35:19.0838 3956 WatAdminSvc (3cec96de223e49eaae3651fcf8faea6c) C:\Windows\system32\Wat\WatAdminSvc.exe
14:35:19.0853 3956 WatAdminSvc - ok
14:35:19.0930 3956 wbengine (78f4e7f5c56cb9716238eb57da4b6a75) C:\Windows\system32\wbengine.exe
14:35:19.0949 3956 wbengine - ok
14:35:20.0060 3956 WbioSrvc (3aa101e8edab2db4131333f4325c76a3) C:\Windows\System32\wbiosrvc.dll
14:35:20.0065 3956 WbioSrvc - ok
14:35:20.0105 3956 wcncsvc (7368a2afd46e5a4481d1de9d14848edd) C:\Windows\System32\wcncsvc.dll
14:35:20.0112 3956 wcncsvc - ok
14:35:20.0140 3956 WcsPlugInService (20f7441334b18cee52027661df4a6129) C:\Windows\System32\WcsPlugInService.dll
14:35:20.0143 3956 WcsPlugInService - ok
14:35:20.0235 3956 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys
14:35:20.0237 3956 Wd - ok
14:35:20.0294 3956 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
14:35:20.0303 3956 Wdf01000 - ok
14:35:20.0346 3956 WdiServiceHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
14:35:20.0349 3956 WdiServiceHost - ok
14:35:20.0363 3956 WdiSystemHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
14:35:20.0366 3956 WdiSystemHost - ok
14:35:20.0407 3956 WebClient (3db6d04e1c64272f8b14eb8bc4616280) C:\Windows\System32\webclnt.dll
14:35:20.0413 3956 WebClient - ok
14:35:20.0456 3956 Wecsvc (c749025a679c5103e575e3b48e092c43) C:\Windows\system32\wecsvc.dll
14:35:20.0461 3956 Wecsvc - ok
14:35:20.0489 3956 wercplsupport (7e591867422dc788b9e5bd337a669a08) C:\Windows\System32\wercplsupport.dll
14:35:20.0493 3956 wercplsupport - ok
14:35:20.0516 3956 WerSvc (6d137963730144698cbd10f202e9f251) C:\Windows\System32\WerSvc.dll
14:35:20.0521 3956 WerSvc - ok
14:35:20.0585 3956 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
14:35:20.0586 3956 WfpLwf - ok
14:35:20.0622 3956 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
14:35:20.0624 3956 WIMMount - ok
14:35:20.0680 3956 WinDefend - ok
14:35:20.0710 3956 WinHttpAutoProxySvc - ok
14:35:20.0820 3956 Winmgmt (19b07e7e8915d701225da41cb3877306) C:\Windows\system32\wbem\WMIsvc.dll
14:35:20.0825 3956 Winmgmt - ok
14:35:20.0992 3956 WinRM (bcb1310604aa415c4508708975b3931e) C:\Windows\system32\WsmSvc.dll
14:35:21.0048 3956 WinRM - ok
14:35:21.0345 3956 WinUsb (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUsb.sys
14:35:21.0347 3956 WinUsb - ok
14:35:21.0423 3956 Wlansvc (4fada86e62f18a1b2f42ba18ae24e6aa) C:\Windows\System32\wlansvc.dll
14:35:21.0435 3956 Wlansvc - ok
14:35:21.0513 3956 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys
14:35:21.0515 3956 WmiAcpi - ok
14:35:21.0690 3956 wmiApSrv (38b84c94c5a8af291adfea478ae54f93) C:\Windows\system32\wbem\WmiApSrv.exe
14:35:21.0694 3956 wmiApSrv - ok
14:35:21.0755 3956 WMPNetworkSvc - ok
14:35:21.0929 3956 WPCSvc (96c6e7100d724c69fcf9e7bf590d1dca) C:\Windows\System32\wpcsvc.dll
14:35:21.0932 3956 WPCSvc - ok
14:35:21.0960 3956 WPDBusEnum (93221146d4ebbf314c29b23cd6cc391d) C:\Windows\system32\wpdbusenum.dll
14:35:21.0965 3956 WPDBusEnum - ok
14:35:21.0997 3956 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
14:35:21.0999 3956 ws2ifsl - ok
14:35:22.0039 3956 wscsvc (e8b1fe6669397d1772d8196df0e57a9e) C:\Windows\System32\wscsvc.dll
14:35:22.0042 3956 wscsvc - ok
14:35:22.0058 3956 WSearch - ok
14:35:22.0168 3956 wuauserv (9df12edbc698b0bc353b3ef84861e430) C:\Windows\system32\wuaueng.dll
14:35:22.0226 3956 wuauserv - ok
14:35:22.0540 3956 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys
14:35:22.0543 3956 WudfPf - ok
14:35:22.0571 3956 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys
14:35:22.0575 3956 WUDFRd - ok
14:35:22.0622 3956 wudfsvc (7a95c95b6c4cf292d689106bcae49543) C:\Windows\System32\WUDFSvc.dll
14:35:22.0625 3956 wudfsvc - ok
14:35:22.0653 3956 WwanSvc (9a3452b3c2a46c073166c5cf49fad1ae) C:\Windows\System32\wwansvc.dll
14:35:22.0658 3956 WwanSvc - ok
14:35:22.0905 3956 YahooAUService (dd0042f0c3b606a6a8b92d49afb18ad6) C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
14:35:22.0946 3956 YahooAUService - ok
14:35:22.0998 3956 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
14:35:23.0080 3956 \Device\Harddisk0\DR0 - ok
14:35:23.0114 3956 Boot (0x1200) (85b6861f757dbf9fa38f6ba107fa1223) \Device\Harddisk0\DR0\Partition0
14:35:23.0115 3956 \Device\Harddisk0\DR0\Partition0 - ok
14:35:23.0144 3956 Boot (0x1200) (24afb1aa207a177ae3deadd9aec9d6b1) \Device\Harddisk0\DR0\Partition1
14:35:23.0145 3956 \Device\Harddisk0\DR0\Partition1 - ok
14:35:23.0150 3956 ============================================================
14:35:23.0150 3956 Scan finished
14:35:23.0150 3956 ============================================================
14:35:23.0171 1524 Detected object count: 0
14:35:23.0171 1524 Actual detected object count: 0
DDS Notepad:
DDS (Ver_2011-08-26.01) - NTFSAMD64
Internet Explorer: 8.0.7601.17514 BrowserJavaVersion: 1.6.0_24
Run by [removed] at 14:53:50 on 2012-05-03
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.44.1033.18.956.127 [GMT 1:00]
.
AV: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {86355677-4064-3EA7-ABB3-1B136EB04637}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {3D54B793-665E-3129-9103-206115370C8A}
FW: McAfee Firewall *Enabled* {BE0ED752-0A0B-3FFF-80EC-B2269063014C}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\SysWOW64\svchost.exe -k hpdevmgmt
C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
C:\Windows\system32\mfevtps.exe
C:\Windows\system32\rundll32.exe
C:\Windows\system32\rundll32.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\System32\svchost.exe -k HPZ12
C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe
C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe
C:\Windows\system32\TODDSrv.exe
C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe
C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\10.0.6\ToolbarUpdater.exe
C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files (x86)\TeamViewer\Version6\TeamViewer.exe
C:\Program Files\McAfee\MAT\McPvTray.exe
C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesApp64.exe
C:\Program Files\McAfee.com\Agent\mcagent.exe
C:\Windows\system32\svchost.exe -k HPService
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\taskeng.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files (x86)\TeamViewer\Version6\tv_w32.exe
C:\Program Files (x86)\TeamViewer\Version6\tv_x64.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe
C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
c:\PROGRA~2\mcafee\SITEAD~1\saui.exe
C:\PROGRA~1\McAfee\MSM\McSmtFwk.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\SysWOW64\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://google.com/
uWindow Title = Internet Explorer, optimized for Bing and MSN
uInternet Settings,ProxyOverride = *.local
uURLSearchHooks: YTNavAssist.YTNavAssistPlugin Class: {81017ea9-9aa8-4a6a-9734-7af40e7d593f} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\YTNavAssist.dll
uURLSearchHooks: McAfee SiteAdvisor Toolbar: {0ebbbe48-bad4-4b4c-8e5a-516abecae064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
mURLSearchHooks: H - No File
mWinlogon: Userinit=userinit.exe,
BHO: &Yahoo;! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\yt.dll
BHO: HP Print Enhancer: {0347c33e-8762-4905-bf09-768834316c61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: FastestTubeBHO Class: {3e532ce8-c6d9-4a10-8ace-4348c96e8b6a} - C:\Program Files (x86)\FastestTube\2.0.0\WombatBHO.dll
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
BHO: scriptproxy: {7db2d5a0-7241-4e79-b68d-6309f01c5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20120120133643.dll
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: ReImage Helper Verifier: {963b125b-8b21-49a2-a3a8-e37092276531} - C:\Program Files (x86)\ReImageCompanion\updatebhoWin32.dll
BHO: ReImage Browser Helper: {a0e8bc7d-6959-40b6-8e05-204d9768ad6e} - C:\Program Files (x86)\ReImageCompanion\jsloader.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
BHO: Skype add-on for Internet Explorer: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll
BHO: McAfee SiteAdvisor BHO: {b164e929-a1b6-4a06-b104-2cd0e90a88ff} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
BHO: {cc59e0f9-7e43-44fa-9faa-8377850bf205} - FDMIECookiesBHO Class
BHO: Bing Bar BHO: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2380.0\npwinext.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
BHO: TOSHIBA Media Controller Plug-in: {f3c88694-effa-4d78-b409-54b7b2535b14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll
BHO: SingleInstance Class: {fdad4da1-61a2-4fd8-9c17-86f7ac245081} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll
BHO: HP Smart BHO Class: {ffffffff-cf4e-4f2b-bdc2-0e72e116a856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
TB: @C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2380.0\npwinext.dll,-100: {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2380.0\npwinext.dll
TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\yt.dll
TB: {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No File
TB: {95B7759C-8C7F-4BF1-B163-73684A933233} - No File
TB: McAfee SiteAdvisor Toolbar: {0ebbbe48-bad4-4b4c-8e5a-516abecae064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
{e7df6bff-55a5-4eb7-a673-4ed3e9456d39}
EB: HP Smart Web Printing: {555d4d79-4bd2-4094-a395-cfc534424a05} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_bho.dll
uRun: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
uRun: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
mRun: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
mRun: []
dRun: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
mPolicies-system: PromptOnSecureDesktop = 0 (0x0)
IE: Download all with Free Download Manager
IE: Download selected with Free Download Manager
IE: Download video with Free Download Manager
IE: Download with Free Download Manager
IE: E&xport; to Microsoft Excel - C:\PROGRA~2\MIF5BA~1\Office12\EXCEL.EXE/3000
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\PROGRA~2\MIF5BA~1\OFFICE11\REFIEBAR.DLL
IE: {DDE87865-83C5-48c4-8357-2F5B1AA84522} - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
Trusted Zone: internet
Trusted Zone: mcafee.com
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} - hxxp://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework//microsoft/wrc32.ocx
DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: DhcpNameServer = 192.168.0.1
TCP: Interfaces\{7BC6162B-8FA6-4F02-9D16-FCC1846E815F} : DhcpNameServer = 192.168.0.1
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\MCAFEE\MSC\McSnIePl.dll
Handler: base64 - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files (x86)\ReImageCompanion\tdataprotocol.dll
Handler: chrome - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files (x86)\ReImageCompanion\tdataprotocol.dll
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\MCAFEE\SITEAD~1\McIEPlg.dll
Handler: prox - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files (x86)\ReImageCompanion\tdataprotocol.dll
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\MCAFEE\SITEAD~1\McIEPlg.dll
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\10.0.6\ViProtocol.dll
BHO-X64: &Yahoo;! Toolbar Helper: {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\yt.dll
BHO-X64: 0x1 - No File
BHO-X64: HP Print Enhancer: {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
BHO-X64: HP Print Enhancer - No File
BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO-X64: AcroIEHelperStub - No File
BHO-X64: FastestTubeBHO Class: {3E532CE8-C6D9-4A10-8ACE-4348C96E8B6A} - C:\Program Files (x86)\FastestTube\2.0.0\WombatBHO.dll
BHO-X64: FastestTube BHO - No File
BHO-X64: Search Helper: {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
BHO-X64: Search Helper - No File
BHO-X64: scriptproxy: {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20120120133643.dll
BHO-X64: scriptproxy - No File
BHO-X64: Windows Live Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO-X64: ReImage Helper Verifier: {963B125B-8B21-49A2-A3A8-E37092276531} - C:\Program Files (x86)\ReImageCompanion\updatebhoWin32.dll
BHO-X64: Update Timer - No File
BHO-X64: ReImage Browser Helper: {a0e8bc7d-6959-40b6-8e05-204d9768ad6e} - C:\Program Files (x86)\ReImageCompanion\jsloader.dll
BHO-X64: script helper for ie - No File
BHO-X64: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
BHO-X64: Skype add-on for Internet Explorer: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO-X64: SkypeIEPluginBHO - No File
BHO-X64: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll
BHO-X64: McAfee SiteAdvisor BHO: {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
BHO-X64: {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - FDMIECookiesBHO Class
BHO-X64: Bing Bar BHO: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2380.0\npwinext.dll
BHO-X64: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
BHO-X64: TOSHIBA Media Controller Plug-in: {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll
BHO-X64: SingleInstance Class: {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll
BHO-X64: HP Smart BHO Class: {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
BHO-X64: HP Smart BHO Class - No File
TB-X64: @C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2380.0\npwinext.dll,-100: {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2380.0\npwinext.dll
TB-X64: Yahoo! Toolbar: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\yt.dll
TB-X64: {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No File
TB-X64: {95B7759C-8C7F-4BF1-B163-73684A933233} - No File
TB-X64: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
TB-X64: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
EB-X64: {555D4D79-4BD2-4094-A395-CFC534424A05} - No File
mRun-x64: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
mRun-x64: [(Default)]
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Christina\AppData\Roaming\Mozilla\Firefox\Profiles\me606ewo.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.co.uk/
FF - prefs.js: network.proxy.type - 0
FF - plugin: c:\progra~2\mcafee\msc\npMcSnFFPl.dll
FF - plugin: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\McAfee\SiteAdvisor\NPMcFFPlg32.dll
FF - plugin: C:\Program Files (x86)\McAfee\Supportability\MVT\NPMVTPlugin.dll
FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll
FF - plugin: C:\Users\Christina\AppData\Local\Yahoo!\BrowserPlus\2.9.8\Plugins\npybrowserplus_2.9.8.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_233.dll
.
============= SERVICES / DRIVERS ===============
.
R0 McPvDrv;McPvDrv Driver;C:\Windows\system32\drivers\McPvDrv.sys –> C:\Windows\system32\drivers\McPvDrv.sys [?]
R0 mfehidk;McAfee Inc. mfehidk;C:\Windows\system32\drivers\mfehidk.sys –> C:\Windows\system32\drivers\mfehidk.sys [?]
R0 mfewfpk;McAfee Inc. mfewfpk;C:\Windows\system32\drivers\mfewfpk.sys –> C:\Windows\system32\drivers\mfewfpk.sys [?]
R1 mfenlfk;McAfee NDIS Light Filter;C:\Windows\system32\DRIVERS\mfenlfk.sys –> C:\Windows\system32\DRIVERS\mfenlfk.sys [?]
R1 RapportCerberus_32029;RapportCerberus_32029;C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\32029\RapportCerberus64_32029.sys [2011-10-18 396816]
R1 RapportEI64;RapportEI64;C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys [2011-8-21 52496]
R1 RapportPG64;RapportPG64;C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys [2011-8-21 61200]
R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\system32\DRIVERS\vwififlt.sys –> C:\Windows\system32\DRIVERS\vwififlt.sys [?]
R2 AdobeARMservice;Adobe Acrobat Update Service;C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-1-3 63928]
R2 cfWiMAXService;ConfigFree WiMAX Service;C:\Program Files (x86)\Toshiba\ConfigFree\CFIWmxSvcs64.exe [2010-1-28 249200]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
R2 ConfigFree Service;ConfigFree Service;C:\Program Files (x86)\Toshiba\ConfigFree\CFSvcs.exe [2009-3-10 46448]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-1-19 249936]
R2 McMPFSvc;McAfee Personal Firewall Service;C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-1-19 249936]
R2 McNaiAnn;McAfee VirusScan Announcer;C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-1-19 249936]
R2 McProxy;McAfee Proxy Service;C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-1-19 249936]
R2 McShield;McAfee McShield;C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe [2011-7-4 199272]
R2 mfefire;McAfee Firewall Core Service;C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe [2011-7-4 208536]
R2 mfevtp;McAfee Validation Trust Protection Service;"C:\Windows\system32\mfevtps.exe" –> C:\Windows\system32\mfevtps.exe [?]
R2 RapportMgmtService;Rapport Management Service;C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe [2011-8-21 870200]
R2 TeamViewer6;TeamViewer 6;C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe [2011-6-4 2337144]
R2 TemproMonitoringService;Notebook Performance Tuning Service (TEMPRO);C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [2011-2-10 112080]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe [2011-12-8 2028864]
R2 vToolbarUpdater;vToolbarUpdater;C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\10.0.6\ToolbarUpdater.exe [2012-1-16 909152]
R3 cfwids;McAfee Inc. cfwids;C:\Windows\system32\drivers\cfwids.sys –> C:\Windows\system32\drivers\cfwids.sys [?]
R3 FwLnk;FwLnk Driver;C:\Windows\system32\DRIVERS\FwLnk.sys –> C:\Windows\system32\DRIVERS\FwLnk.sys [?]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;C:\Windows\system32\DRIVERS\L1C62x64.sys –> C:\Windows\system32\DRIVERS\L1C62x64.sys [?]
R3 mfeavfk;McAfee Inc. mfeavfk;C:\Windows\system32\drivers\mfeavfk.sys –> C:\Windows\system32\drivers\mfeavfk.sys [?]
R3 mfefirek;McAfee Inc. mfefirek;C:\Windows\system32\drivers\mfefirek.sys –> C:\Windows\system32\drivers\mfefirek.sys [?]
R3 PGEffect;Pangu effect driver;C:\Windows\system32\DRIVERS\pgeffect.sys –> C:\Windows\system32\DRIVERS\pgeffect.sys [?]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesDriver64.sys [2010-11-29 11856]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service;C:\Windows\system32\DRIVERS\vwifimp.sys –> C:\Windows\system32\DRIVERS\vwifimp.sys [?]
S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-4-18 136176]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-4-2 253088]
S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-4-18 136176]
S3 mferkdet;McAfee Inc. mferkdet;C:\Windows\system32\drivers\mferkdet.sys –> C:\Windows\system32\drivers\mferkdet.sys [?]
S3 MozillaMaintenance;Mozilla Maintenance Service;C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-5-3 129976]
S3 RapportKE64;RapportKE64;C:\Windows\system32\Drivers\RapportKE64.sys –> C:\Windows\system32\Drivers\RapportKE64.sys [?]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\system32\Drivers\RtsUStor.sys –> C:\Windows\system32\Drivers\RtsUStor.sys [?]
S3 TMachInfo;TMachInfo;C:\Program Files (x86)\Toshiba\TOSHIBA Service Station\TMachInfo.exe [2010-4-8 51512]
S3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service;C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2010-2-5 137560]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsusbflt.sys –> C:\Windows\system32\drivers\tsusbflt.sys [?]
S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\system32\drivers\TsUsbGD.sys –> C:\Windows\system32\drivers\TsUsbGD.sys [?]
S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\system32\Drivers\usbaapl64.sys –> C:\Windows\system32\Drivers\usbaapl64.sys [?]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe –> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
.
=============== Created Last 30 ================
.
2012-05-03 11:25:11 69000 —-a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C97D03E6-9F85-4866-86D1-C918808DFC8D}\offreg.dll
2012-05-03 09:53:13 ——– d—–w- C:\Program Files (x86)\Mozilla Maintenance Service
2012-05-03 09:52:55 157352 —-a-w- C:\Program Files (x86)\Mozilla Firefox\maintenanceservice_installer.exe
2012-05-03 09:52:55 129976 —-a-w- C:\Program Files (x86)\Mozilla Firefox\maintenanceservice.exe
2012-05-01 19:42:06 8917360 —-a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C97D03E6-9F85-4866-86D1-C918808DFC8D}\mpengine.dll
2012-04-23 08:42:44 ——– d—–w- C:\Program Files (x86)\ReImageCompanion
2012-04-22 23:57:22 ——– d—–w- C:\ProgramData\blekko toolbars
2012-04-22 23:56:59 ——– d—–w- C:\Program Files (x86)\Un-Zip for Windows
2012-04-22 23:56:33 ——– d—–w- C:\Program Files (x86)\I Want This
2012-04-22 23:56:30 ——– d—–w- C:\Program Files (x86)\blekkotb_005
2012-04-22 23:56:22 ——– d—–w- C:\Users\Christina\AppData\Local\blekkotb_005
2012-04-22 23:56:16 ——– d—–w- C:\ProgramData\Anti-phishing Domain Advisor
2012-04-22 22:50:18 ——– d—–w- C:\Reg_Backup
2012-04-22 22:16:40 ——– d—–w- C:\Tweaking.com_Windows_Repair_Logs
2012-04-22 22:16:12 ——– d—–w- C:\Program Files (x86)\Tweaking.com
2012-04-22 21:58:30 ——– d—–w- C:\ProgramData\Uniblue
2012-04-18 13:38:11 ——– d—–w- C:\Users\Christina\AppData\Roaming\Malwarebytes
2012-04-18 13:37:28 ——– d—–w- C:\ProgramData\Malwarebytes
2012-04-18 13:37:20 ——– d—–w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2012-04-14 00:26:19 5559152 —-a-w- C:\Windows\System32\ntoskrnl.exe
2012-04-14 00:26:18 3968368 —-a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2012-04-14 00:26:18 3913072 —-a-w- C:\Windows\SysWow64\ntoskrnl.exe
2012-04-14 00:17:19 81408 —-a-w- C:\Windows\System32\imagehlp.dll
2012-04-14 00:17:19 23408 —-a-w- C:\Windows\System32\drivers\fs_rec.sys
2012-04-14 00:17:19 159232 —-a-w- C:\Windows\SysWow64\imagehlp.dll
2012-04-14 00:17:16 5120 —-a-w- C:\Windows\SysWow64\wmi.dll
2012-04-14 00:17:16 5120 —-a-w- C:\Windows\System32\wmi.dll
2012-04-14 00:17:16 220672 —-a-w- C:\Windows\System32\wintrust.dll
2012-04-14 00:17:16 172544 —-a-w- C:\Windows\SysWow64\wintrust.dll
2012-04-04 05:53:56 182160 —-a-w- C:\Program Files (x86)\Internet Explorer\Plugins\nppdf32.dll
.
==================== Find3M ====================
.
2012-04-23 09:04:04 9728 —-a-w- C:\Windows\System32\Native.exe
2012-04-15 14:58:53 70304 —-a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2012-04-15 14:58:53 418464 —-a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2012-04-15 14:58:28 8741536 —-a-w- C:\Windows\SysWow64\FlashPlayerInstaller.exe
2012-04-04 14:56:40 24904 —-a-w- C:\Windows\System32\drivers\mbam.sys
2012-02-28 06:39:37 1188864 —-a-w- C:\Windows\System32\wininet.dll
2012-02-28 05:38:52 981504 —-a-w- C:\Windows\SysWow64\wininet.dll
2012-02-28 04:31:38 1638912 —-a-w- C:\Windows\System32\mshtml.tlb
2012-02-28 03:52:27 1638912 —-a-w- C:\Windows\SysWow64\mshtml.tlb
2012-02-23 09:18:36 279656 ——w- C:\Windows\System32\MpSigStub.exe
2012-02-17 06:38:26 1031680 —-a-w- C:\Windows\System32\rdpcore.dll
2012-02-17 05:34:22 826880 —-a-w- C:\Windows\SysWow64\rdpcore.dll
2012-02-17 04:58:24 210944 —-a-w- C:\Windows\System32\drivers\rdpwd.sys
2012-02-17 04:57:32 23552 —-a-w- C:\Windows\System32\drivers\tdtcp.sys
2012-02-10 06:36:07 1544192 —-a-w- C:\Windows\System32\DWrite.dll
2012-02-10 05:38:43 1077248 —-a-w- C:\Windows\SysWow64\DWrite.dll
.
============= FINISH: 14:56:56.73 ===============
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2011-08-26.01)
.
Microsoft Windows 7 Home Premium
Boot Device: \Device\HarddiskVolume1
Install Date: 08/04/2011 14:37:20
System Uptime: 03/05/2012 14:22:10 (0 hours ago)
.
Motherboard: TOSHIBA | | Portable PC
Processor: Intel® Celeron® CPU 900 @ 2.20GHz | CPU | 2194/800mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 116 GiB total, 58.812 GiB free.
D: is FIXED (NTFS) - 116 GiB total, 108.864 GiB free.
E: is CDROM ()
.
==== Disabled Device Manager Items =============
.
Class GUID: {6bdd1fc6-810f-11d0-bec7-08002be2092f}
Description: Photosmart C6100 series
Device ID: ROOT\IMAGE\0001
Manufacturer: HP
Name: Photosmart C6100 series
PNP Device ID: ROOT\IMAGE\0001
Service: StillCam
.
Class GUID:
Description: Photosmart C6100 series
Device ID: ROOT\MULTIFUNCTION\0000
Manufacturer:
Name: Photosmart C6100 series
PNP Device ID: ROOT\MULTIFUNCTION\0000
Service:
.
Class GUID: {4d36e971-e325-11ce-bfc1-08002be10318}
Description: Photosmart C6100 series
Device ID: ROOT\MULTIFUNCTION\0001
Manufacturer: HP
Name: Photosmart C6100 series
PNP Device ID: ROOT\MULTIFUNCTION\0001
Service:
.
==== System Restore Points ===================
.
RP444: 27/04/2012 11:46:31 - Windows Update
RP445: 29/04/2012 22:23:42 - Windows Update
RP446: 30/04/2012 16:49:45 - Windows Update
RP447: 30/04/2012 22:13:31 - Windows Update
RP448: 01/05/2012 14:46:07 - Windows Update
RP449: 02/05/2012 00:48:51 - Windows Update
RP450: 02/05/2012 23:39:50 - Windows Update
.
==== Installed Programs ======================
.
Adobe AIR
Adobe Reader X (10.1.3)
AIO_CDA_ProductContext
AIO_CDA_Software
AIO_Scan
Amazon.co.uk
Apple Application Support
Apple Software Update
Atheros Communications Inc.® AR81Family Gigabit/Fast Ethernet Driver
Atheros Driver Installation Program
Bing Bar
Bing Bar Platform
BlackBerry Desktop Software 6.1
BufferChm
C6100
c6100_Help
Camtasia Studio 7
Compatibility Pack for the 2007 Office system
Copy
Destinations
DeviceDiscovery
DocProc
eBay
FastestTube
FastestTube-[removed]
Fax
ffdshow [rev 2527] [2008-12-19]
FileZilla Client 3.4.0
FinePixViewer Ver.5.3
FYZip 1.00
Google Chrome
Google Toolbar for Internet Explorer
Google Update Helper
GoToMeeting 4.5.0.457
GPBaseService2
HP Update
HPPhotoGadget
HPPhotoSmartDiscLabelContent1
HPPhotosmartEssential
HPProductAssistant
HPSSupply
ImagXpress
Intel® Graphics Media Accelerator Driver
IrfanView (remove only)
Java Auto Updater
Java™ 6 Update 22
Java™ 6 Update 24
KompoZer 0.8b3
Malwarebytes Anti-Malware version 1.61.0.1400
MarketResearch
McAfee Total Protection
McAfee Virtual Technician
Microsoft Choice Guard
Microsoft Default Manager
Microsoft Office Basic Edition 2003
Microsoft Office File Validation Add-In
Microsoft Office Live Add-in 1.5
Microsoft Office Outlook Connector
Microsoft Office PowerPoint Viewer 2007 (English)
Microsoft Office Suite Activation Assistant
Microsoft Search Enhancement Pack
Microsoft Silverlight
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Works
Mozilla Firefox 12.0 (x86 en-GB)
Mozilla Maintenance Service
MSVCRT
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
neroxml
OpenOffice.org 3.3
Photo Service - powered by myphotobook
PSTViewer Pro
QuickTime
Rapport
Realtek USB 2.0 Card Reader
ReImageCompanion
Scan
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Extended (KB2487367)
Skype Toolbars
Skype™ 4.2
SmartWebPrinting
SolutionCenter
Status
TeamViewer 6
Toolbox
Toshiba Assist
TOSHIBA Bulletin Board
TOSHIBA ConfigFree
TOSHIBA Face Recognition
TOSHIBA Hardware Setup
TOSHIBA HDD/SSD Alert
Toshiba Manuals
TOSHIBA Media Controller
TOSHIBA Media Controller Plug-in
TOSHIBA Online Product Information
TOSHIBA Recovery Media Creator Reminder
TOSHIBA ReelTime
TOSHIBA Service Station
TOSHIBA Supervisor Password
TOSHIBA TEMPRO
TOSHIBA Value Added Package
TOSHIBA Web Camera Application
TrayApp
TRORMCLauncher
TuneUp Utilities 2011
TuneUp Utilities Language Pack (en-US)
UnloadSupport
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
Update for Microsoft .NET Framework 4 Extended (KB2468871)
Update for Microsoft .NET Framework 4 Extended (KB2533523)
Vivitar Experience Image Manager
WebReg
Windows Live Call
Windows Live Communications Platform
Windows Live Essentials
Windows Live Mesh ActiveX Control for Remote Connections
Windows Live Messenger
Windows Live Sign-in Assistant
Windows Live Sync
Windows Live Upload Tool
Yahoo! BrowserPlus 2.9.8
Yahoo! Messenger
Yahoo! Software Update
Yahoo! Toolbar
.
==== Event Viewer Messages From Past Week ========
.
30/04/2012 21:01:29, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the McAfee SiteAdvisor Service service.
30/04/2012 21:00:07, Error: Server [2505] - The server could not bind to the transport \Device\NetBT_Tcpip_{7BC6162B-8FA6-4F02-9D16-FCC1846E815F} because another computer on the network has the same name. The server could not start.
27/04/2012 21:55:33, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the McNASvc service.
27/04/2012 21:49:44, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the HomeGroupListener service.
27/04/2012 20:28:56, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the McNaiAnn service.
27/04/2012 19:07:13, Error: Service Control Manager [7034] - The McAfee Scanner service terminated unexpectedly. It has done this 1 time(s).
27/04/2012 17:55:06, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the McODS service.
27/04/2012 13:25:30, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the ShellHWDetection service.
27/04/2012 12:44:32, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Definition Update for Windows Defender - KB915597 (Definition 1.125.655.0).
27/04/2012 12:38:12, Error: Service Control Manager [7022] - The McAfee VirusScan Announcer service hung on starting.
03/05/2012 14:24:24, Error: Service Control Manager [7023] - The Peer Name Resolution Protocol service terminated with the following error: %%-2140993535
03/05/2012 14:24:24, Error: Microsoft-Windows-PNRPSvc [102] - The Peer Name Resolution Protocol cloud did not start because the creation of the default identity failed with error code: 0x80630801.
03/05/2012 14:23:53, Error: Service Control Manager [7001] - The Peer Networking Grouping service depends on the Peer Name Resolution Protocol service which failed to start because of the following error: %%-2140993535
03/05/2012 14:22:33, Error: Service Control Manager [7000] - The TuneUp Theme Extension service failed to start due to the following error: The executable program that this service is configured to run in does not implement the service.
03/05/2012 10:31:32, Error: Service Control Manager [7022] - The Windows Defender service hung on starting.
03/05/2012 10:27:23, Error: Service Control Manager [7022] - The McAfee Network Agent service hung on starting.
03/05/2012 10:18:30, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000024 (0x00000000001904fb, 0xfffff880031235f8, 0xfffff88003122e50, 0xfffff8000303c8aa). A dump was saved in: C:\Windows\MEMORY.DMP. Report Id: 050312-23743-01.
02/05/2012 22:38:32, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the RapportMgmtService service.
02/05/2012 21:03:37, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Wlansvc service.
02/05/2012 21:03:37, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the fdPHost service.
02/05/2012 12:08:06, Error: Service Control Manager [7038] - The WdiServiceHost service was unable to log on as NT AUTHORITY\LocalService with the currently configured password due to the following error: The request is not supported. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
02/05/2012 12:08:06, Error: Service Control Manager [7038] - The netprofm service was unable to log on as NT AUTHORITY\LocalService with the currently configured password due to the following error: The request is not supported. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
02/05/2012 12:08:06, Error: Service Control Manager [7038] - The HPSLPSVC service was unable to log on as NT AUTHORITY\SYSTEM with the currently configured password due to the following error: The request is not supported. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
02/05/2012 12:08:06, Error: Service Control Manager [7000] - The Network List Service service failed to start due to the following error: The service did not start due to a logon failure.
02/05/2012 12:08:06, Error: Service Control Manager [7000] - The hpqcxs08 service failed to start due to the following error: A system shutdown is in progress.
02/05/2012 12:08:06, Error: Service Control Manager [7000] - The HP Network Devices Support service failed to start due to the following error: The service did not start due to a logon failure.
02/05/2012 12:08:06, Error: Service Control Manager [7000] - The Diagnostic Service Host service failed to start due to the following error: The service did not start due to a logon failure.
02/05/2012 12:07:59, Error: Service Control Manager [7023] - The Server service terminated with the following error: The data is invalid.
02/05/2012 12:07:51, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x0000003b (0x00000000c0000005, 0xfffff8000311e422, 0xfffff88005f69870, 0x0000000000000000). A dump was saved in: C:\Windows\MEMORY.DMP. Report Id: 050212-21793-01.
01/05/2012 20:35:33, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Definition Update for Windows Defender - KB915597 (Definition 1.125.886.0).
01/05/2012 20:31:27, Error: Service Control Manager [7022] - The Security Center service hung on starting.
01/05/2012 20:31:08, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the eventlog service.
01/05/2012 20:30:04, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the AudioSrv service.
.
==== End Of File ===========================
I am not sure if I did it correctly because the instructions do not exactly tally with what I found in the programs. The second attachment was meant to be sent in a zip but I could not see how.
Please tell me if I should do it again.
Thanks
Download
Combofix from either of the links below, and save it to your desktop.
Link 1
Link 2
**Note: It is important that it is saved directly to your desktop**
——————————————————————–
IMPORTANT -
Disable your AntiVirus and AntiSpyware applications , usually via a right click on the System Tray icon. They may otherwise interfere with our tools. If you have difficulty properly disabling your protective programs, refer to this link
here
——————————————————————–
Double click on
ComboFix.exe & follow the prompts.
When finished, it will produce a report for you. Please post the C:\ComboFix.txt for further review.
Hi
I had problems and come now from my netbook. I had difficulty of coming to the site because Firefox stopped work, explorer too. I could not proceed because of McAfee. Finally I managed to disable McAfee until reboot and did the scan on Combo. However I did not expect that the logs were only available after reboot. At the reboot McAfee blocked Combo's work. I disabled McAfee again for 60 min and tried to extract some logs from Combo but it remained frozen. I then closed it. After that I attempted to repeat the scan but every icon I touch gives me a message: "Illegal operation attempted on registry key that has been marked for deletion"
I tried to system restore but I get the same message.
Please advise.
Reboot the computer,that message will go away and you will be able to post the log.
Hi,
Is this ok that Combo is preparing logs for more than 2 hours and nothing happens? I have this situation repeatedly. After scan Combo causes reboot and after reboot it shows a little blue screen with a message that it is preparings logs but it does not end, or maybe it needs to take several hours?
I have uninstalled McAfee because Combo takes long time and McAfee manages to reopen itself.
I had Combo scans on my other computer and never had such problem as now.
Rebooting as per your advice did not cure the problem, finally I managed to system restore and do the scan by Combo again but as explained above no logs are received. I shall check now if another scan will work now that McAfee is uninstalled.
Ch
Hi
After another attempt with Combofix I had to leave it to produce the logs over night. This morning it was still not ready but after 30 min I received this log. It seems that earlier attempts have been recorded on the log. Please let me know if this is ok.
ComboFix 12-05-03.02 - Christina 04/05/2012 0:47.2.1 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.44.1033.18.956.238 [GMT 1:00]
Running from: c:\users\[removed]\Downloads\ComboFix.exe
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
—- Previous Run ——-
.
c:\program files (x86)\Mozilla Firefox\searchplugins\search.xml
c:\users\Christina\AppData\Roaming\chrtmp
c:\users\Christina\GoToAssistDownloadHelper.exe
.
.
((((((((((((((((((((((((( Files Created from 2012-04-04 to 2012-05-04 )))))))))))))))))))))))))))))))
.
.
2012-05-04 00:03 . 2012-05-04 00:03 ——– d—–w- c:\users\Default\AppData\Local\temp
2012-05-03 23:33 . 2012-05-03 23:33 ——– d—–w- c:\users\Christina\AppData\Local\VS Revo Group
2012-05-03 23:32 . 2009-12-30 10:21 31800 —-a-w- c:\windows\system32\drivers\revoflt.sys
2012-05-03 23:32 . 2012-05-03 23:32 ——– d—–w- c:\program files\VS Revo Group
2012-05-03 23:14 . 2012-05-04 00:06 ——– d—–w- c:\program files (x86)\VS Revo Group
2012-05-03 09:53 . 2012-05-03 09:53 ——– d—–w- c:\program files (x86)\Mozilla Maintenance Service
2012-05-03 09:52 . 2012-05-03 09:52 157352 —-a-w- c:\program files (x86)\Mozilla Firefox\maintenanceservice_installer.exe
2012-05-03 09:52 . 2012-05-03 09:52 129976 —-a-w- c:\program files (x86)\Mozilla Firefox\maintenanceservice.exe
2012-04-23 08:42 . 2012-04-23 08:42 ——– d—–w- c:\program files (x86)\ReImageCompanion
2012-04-22 23:57 . 2012-04-22 23:57 ——– d—–w- c:\programdata\blekko toolbars
2012-04-22 23:56 . 2012-04-23 00:32 ——– d—–w- c:\program files (x86)\Un-Zip for Windows
2012-04-22 23:56 . 2012-04-23 00:32 ——– d—–w- c:\program files (x86)\I Want This
2012-04-22 23:56 . 2012-04-23 00:32 ——– d—–w- c:\program files (x86)\blekkotb_005
2012-04-22 23:56 . 2012-04-22 23:57 ——– d—–w- c:\users\Christina\AppData\Local\blekkotb_005
2012-04-22 23:56 . 2012-04-23 00:32 ——– d—–w- c:\programdata\Anti-phishing Domain Advisor
2012-04-22 22:50 . 2012-04-22 22:50 ——– d—–w- C:\Reg_Backup
2012-04-22 22:16 . 2012-04-22 22:54 ——– d—–w- C:\Tweaking.com_Windows_Repair_Logs
2012-04-22 22:16 . 2012-04-22 22:16 ——– d—–w- c:\program files (x86)\Tweaking.com
2012-04-22 22:04 . 2012-04-23 00:32 ——– d—–w- c:\program files (x86)\ERUNT
2012-04-22 21:58 . 2012-04-22 21:58 ——– d—–w- c:\programdata\Uniblue
2012-04-18 13:38 . 2012-04-18 13:38 ——– d—–w- c:\users\Christina\AppData\Roaming\Malwarebytes
2012-04-18 13:37 . 2012-04-18 13:37 ——– d—–w- c:\programdata\Malwarebytes
2012-04-18 13:37 . 2012-04-18 13:37 ——– d—–w- c:\program files (x86)\Malwarebytes' Anti-Malware
2012-04-14 00:26 . 2012-03-06 06:53 5559152 —-a-w- c:\windows\system32\ntoskrnl.exe
2012-04-14 00:26 . 2012-03-06 05:59 3968368 —-a-w- c:\windows\SysWow64\ntkrnlpa.exe
2012-04-14 00:26 . 2012-03-06 05:59 3913072 —-a-w- c:\windows\SysWow64\ntoskrnl.exe
2012-04-14 00:17 . 2012-03-01 06:46 23408 —-a-w- c:\windows\system32\drivers\fs_rec.sys
2012-04-14 00:17 . 2012-03-01 06:33 81408 —-a-w- c:\windows\system32\imagehlp.dll
2012-04-14 00:17 . 2012-03-01 05:33 159232 —-a-w- c:\windows\SysWow64\imagehlp.dll
2012-04-14 00:17 . 2012-03-01 06:38 220672 —-a-w- c:\windows\system32\wintrust.dll
2012-04-14 00:17 . 2012-03-01 06:28 5120 —-a-w- c:\windows\system32\wmi.dll
2012-04-14 00:17 . 2012-03-01 05:37 172544 —-a-w- c:\windows\SysWow64\wintrust.dll
2012-04-14 00:17 . 2012-03-01 05:29 5120 —-a-w- c:\windows\SysWow64\wmi.dll
2012-04-04 05:53 . 2012-04-04 05:53 182160 —-a-w- c:\program files (x86)\Internet Explorer\Plugins\nppdf32.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-05-03 20:16 . 2012-05-03 20:16 69000 —-a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{294A00A4-E71C-40BF-B20D-99AE2CA98D87}\offreg.dll
2012-04-23 09:04 . 2011-10-09 13:11 9728 —-a-w- c:\windows\system32\Native.exe
2012-04-18 02:03 . 2012-05-03 19:43 8917360 —-a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{294A00A4-E71C-40BF-B20D-99AE2CA98D87}\mpengine.dll
2012-04-15 14:58 . 2012-04-02 08:54 418464 —-a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2012-04-15 14:58 . 2011-09-27 17:52 70304 —-a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-04-15 14:58 . 2012-04-02 09:59 8741536 —-a-w- c:\windows\SysWow64\FlashPlayerInstaller.exe
2012-04-04 14:56 . 2011-07-19 12:51 24904 —-a-w- c:\windows\system32\drivers\mbam.sys
2012-02-23 09:18 . 2011-04-18 00:05 279656 ——w- c:\windows\system32\MpSigStub.exe
2012-02-17 06:38 . 2012-03-18 14:43 1031680 —-a-w- c:\windows\system32\rdpcore.dll
2012-02-17 05:34 . 2012-03-18 14:43 826880 —-a-w- c:\windows\SysWow64\rdpcore.dll
2012-02-17 04:58 . 2012-03-18 14:43 210944 —-a-w- c:\windows\system32\drivers\rdpwd.sys
2012-02-17 04:57 . 2012-03-18 14:43 23552 —-a-w- c:\windows\system32\drivers\tdtcp.sys
2012-02-10 06:36 . 2012-03-18 15:13 1544192 —-a-w- c:\windows\system32\DWrite.dll
2012-02-10 05:38 . 2012-03-18 15:13 1077248 —-a-w- c:\windows\SysWow64\DWrite.dll
.
.
((((((((((((((((((((((((((((( SnapShot@2012-05-03_20.17.45 )))))))))))))))))))))))))))))))))))))))))
.
- 2009-07-14 04:54 . 2012-05-03 20:17 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:54 . 2012-05-04 00:06 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:54 . 2012-05-04 00:06 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-07-14 04:54 . 2012-05-03 20:17 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2012-05-04 00:06 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-07-14 04:54 . 2012-05-03 20:17 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-07-14 05:10 . 2012-05-04 00:09 59366 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2011-04-08 13:39 . 2012-05-04 00:09 67908 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-858472365-2024786048-241687184-1001_UserData.bin
+ 2009-07-14 05:30 . 2012-05-03 21:54 86016 c:\windows\system32\DriverStore\infpub.dat
- 2009-07-14 05:30 . 2012-04-27 11:30 86016 c:\windows\system32\DriverStore\infpub.dat
+ 2011-04-08 13:05 . 2012-05-03 23:33 32768 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2011-04-08 13:05 . 2012-05-03 19:17 32768 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2011-04-08 13:05 . 2012-05-03 23:33 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2011-04-08 13:05 . 2012-05-03 19:17 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-07-14 04:54 . 2012-05-03 19:17 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-07-14 04:54 . 2012-05-03 23:33 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2011-04-17 23:31 . 2012-05-03 21:41 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2011-04-17 23:31 . 2012-05-03 19:20 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:46 . 2012-05-03 20:32 91888 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat
+ 2011-04-17 23:31 . 2012-05-03 21:41 32768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2011-04-17 23:31 . 2012-05-03 19:20 32768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2011-04-17 23:31 . 2012-05-03 19:20 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2011-04-17 23:31 . 2012-05-03 21:41 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2011-04-08 13:45 . 2012-05-04 00:09 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2011-04-08 13:45 . 2012-05-03 20:03 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2011-04-08 13:45 . 2012-05-04 00:09 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2011-04-08 13:45 . 2012-05-03 20:03 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2012-05-03 23:57 . 2012-05-03 23:57 86016 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Web.Applicat#\c5b08a1a9a7a97922af50f30b5e32268\System.Web.ApplicationServices.ni.dll
+ 2012-05-03 22:30 . 2012-05-03 22:30 47616 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Workflow.#\64fd2fd1812f2536afaec66752707952\Microsoft.Workflow.Compiler.ni.exe
+ 2012-05-03 22:30 . 2012-05-03 22:30 14336 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualC\a4e98103e5d36bf22ef19c64442543f2\Microsoft.VisualC.ni.dll
+ 2012-05-03 22:28 . 2012-05-03 22:28 10752 c:\windows\assembly\NativeImages_v4.0.30319_64\dfsvc\cbd21f19057f07ec2cb55b2bef91f344\dfsvc.ni.exe
+ 2012-05-03 22:28 . 2012-05-03 22:28 58368 c:\windows\assembly\NativeImages_v4.0.30319_64\Accessibility\52890eb2a4f8d822bff7e9cddc713fb5\Accessibility.ni.dll
+ 2012-05-03 22:27 . 2012-05-03 22:27 60416 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Windows.Pres#\265f654b8eed2ac1e42d225a30433c37\System.Windows.Presentation.ni.dll
+ 2012-05-03 22:27 . 2012-05-03 22:27 54784 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.DynamicD#\62889e05923a83fa32400e7f3b28f9c6\System.Web.DynamicData.Design.ni.dll
+ 2012-05-03 20:56 . 2012-05-03 20:56 90624 c:\windows\assembly\NativeImages_v2.0.50727_64\stdole\968c30c131b94a1b5e834fbc333b177b\stdole.ni.dll
+ 2012-05-03 21:13 . 2012-05-03 21:13 72192 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFontCac#\c1577aa4e5874f1debc9a63343e5a0d7\PresentationFontCache.ni.exe
+ 2012-05-03 21:12 . 2012-05-03 21:12 61952 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationCFFRast#\697c9c4ec947a0a5e21bc9e4c6471b74\PresentationCFFRasterizer.ni.dll
+ 2012-05-03 21:13 . 2012-05-03 21:13 33792 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.WSMan.Run#\2d80e48139b13bf06e85c0c1db06bc20\Microsoft.WSMan.Runtime.ni.dll
+ 2012-05-03 21:13 . 2012-05-03 21:13 45056 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\df5c0dac9e7db175acc8a9755942f87f\Microsoft.Windows.Diagnosis.Commands.UpdateDiagReport.ni.dll
+ 2012-05-03 21:13 . 2012-05-03 21:13 36864 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\8a9356f77bd1d1155202f59119ee57c9\Microsoft.Windows.Diagnosis.Commands.WriteDiagProgress.ni.dll
+ 2012-05-03 21:13 . 2012-05-03 21:13 59904 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\8260ae5a7d4a7e7cd907c958858da284\Microsoft.Windows.Diagnosis.SDHost.ni.dll
+ 2012-05-03 21:13 . 2012-05-03 21:13 40448 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\4e53199f22c13aa3e4bc6f063da0aee7\Microsoft.Windows.Diagnosis.Commands.UpdateDiagRootcause.ni.dll
+ 2012-05-03 21:13 . 2012-05-03 21:13 70144 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\371120a0816ba5ce909b8e1341da376f\Microsoft.Windows.Diagnosis.SDEngine.ni.dll
+ 2012-05-03 21:13 . 2012-05-03 21:13 43520 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\0f361440d7cbda4bf5b44bfbd4623812\Microsoft.Windows.Diagnosis.Commands.GetDiagInput.ni.dll
+ 2012-05-03 20:56 . 2012-05-03 20:56 65536 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\f8f0b08845fb76dfcf57e00d86fc13fc\Microsoft.MediaCenter.iTv.Hosting.ni.dll
+ 2012-05-03 20:57 . 2012-05-03 20:57 40960 c:\windows\assembly\NativeImages_v2.0.50727_64\LoadMxf\8cd347067dbe1ec5a79c9d261d2d75d9\LoadMxf.ni.exe
+ 2012-05-03 20:56 . 2012-05-03 20:56 49664 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiUPnP\50cda8ab4cd566b222342c3da14302d3\ehiUPnP.ni.dll
+ 2012-05-03 20:56 . 2012-05-03 20:56 93184 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiTVMSMusic\4089bf2cec6e1a1539076c5bd6d95ce7\ehiTVMSMusic.ni.dll
+ 2012-05-03 20:48 . 2012-05-03 20:48 28672 c:\windows\assembly\NativeImages_v2.0.50727_64\dfsvc\7de9a8137a33d06dad01c8405d960037\dfsvc.ni.exe
+ 2011-04-08 14:00 . 2012-05-03 21:38 6098 c:\windows\system32\wdi\ERCQueuedResolutions.dat
- 2011-04-08 14:00 . 2012-05-03 20:15 6098 c:\windows\system32\wdi\ERCQueuedResolutions.dat
- 2012-05-03 20:16 . 2012-05-03 20:16 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2012-05-04 00:06 . 2012-05-04 00:06 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2012-05-04 00:06 . 2012-05-04 00:06 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2012-05-03 20:16 . 2012-05-03 20:16 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2010-04-08 09:15 . 2012-05-04 00:00 234650 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S3.bin
+ 2009-07-14 05:30 . 2012-05-03 21:54 143360 c:\windows\system32\DriverStore\infstrng.dat
- 2009-07-14 05:30 . 2012-04-27 11:30 143360 c:\windows\system32\DriverStore\infstrng.dat
+ 2009-07-14 05:30 . 2012-05-03 21:54 143360 c:\windows\system32\DriverStore\infstor.dat
- 2009-07-14 05:30 . 2012-04-27 11:30 143360 c:\windows\system32\DriverStore\infstor.dat
- 2009-07-14 05:12 . 2012-05-03 14:47 262144 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat
+ 2009-07-14 05:12 . 2012-05-03 22:06 262144 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat
- 2009-07-14 05:01 . 2012-05-03 20:15 357212 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2009-07-14 05:01 . 2012-05-04 00:05 357212 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2012-05-03 22:30 . 2012-05-03 22:30 462336 c:\windows\assembly\NativeImages_v4.0.30319_64\WsatConfig\eac69863f449fe367f746d5f0a350679\WsatConfig.ni.exe
+ 2012-05-03 23:55 . 2012-05-03 23:55 528896 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Xml.Linq\910d557d55f4fc7bb51ace0546bd3c50\System.Xml.Linq.ni.dll
+ 2012-05-03 23:55 . 2012-05-03 23:55 903168 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Transactions\922f3f17f5112441e77f9d3d56d5b753\System.Transactions.ni.dll
+ 2012-05-03 22:29 . 2012-05-03 22:29 946688 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Security\878946615037b9d5f09916c598420dc1\System.Security.ni.dll
+ 2012-05-03 23:55 . 2012-05-03 23:55 995328 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Remo#\14ba62bd55917d0933a16970abfc146b\System.Runtime.Remoting.ni.dll
+ 2012-05-03 23:56 . 2012-05-03 23:56 311296 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Cach#\c64bdda4c5b1008a50130456a416e688\System.Runtime.Caching.ni.dll
+ 2012-05-03 22:30 . 2012-05-03 22:30 176640 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Numerics\8064e773b9addf027658899e27e94c7b\System.Numerics.ni.dll
+ 2012-05-03 23:55 . 2012-05-03 23:55 348672 c:\windows\assembly\NativeImages_v4.0.30319_64\System.EnterpriseSe#\7b06b84cb3b99a3ab22adb2a3f6376e6\System.EnterpriseServices.Wrapper.dll
+ 2012-05-03 22:30 . 2012-05-03 22:30 512000 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Dynamic\cbc3e5d028dd347a294096f068a053d4\System.Dynamic.ni.dll
+ 2012-05-03 22:30 . 2012-05-03 22:30 432128 c:\windows\assembly\NativeImages_v4.0.30319_64\SMSvcHost\30cf4fc2c247cf490879f5436c63017c\SMSvcHost.ni.exe
+ 2012-05-03 23:55 . 2012-05-03 23:55 185344 c:\windows\assembly\NativeImages_v4.0.30319_64\SMDiagnostics\b4f75962376771b6b6d39279d780abba\SMDiagnostics.ni.dll
+ 2012-05-03 23:53 . 2012-05-03 23:53 428032 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\eaca48940ac6976d39d5de4d5b42fed6\PresentationFramework.Royale.ni.dll
+ 2012-05-03 23:53 . 2012-05-03 23:53 802304 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\bdb41ce9ab6d561ddb8107255daaee30\PresentationFramework.Luna.ni.dll
+ 2012-05-03 23:53 . 2012-05-03 23:53 622592 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\78310f7eef84b5f9ca4bf32798bd77f9\PresentationFramework.Aero.ni.dll
+ 2012-05-03 23:53 . 2012-05-03 23:53 349184 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\64b86aebea22fd357f22384757caed3f\PresentationFramework.Classic.ni.dll
+ 2012-05-03 22:30 . 2012-05-03 22:30 364544 c:\windows\assembly\NativeImages_v4.0.30319_64\MSBuild\fe507be01e652c9d1577ed3c82bc0725\MSBuild.ni.exe
+ 2012-05-03 22:30 . 2012-05-03 22:30 421888 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\ce767aa46499d59a35631fdd7d13e856\Microsoft.VisualBasic.Compatibility.Data.ni.dll
+ 2012-05-03 22:30 . 2012-05-03 22:30 600064 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Transacti#\16bf3be602620d349b25e6c2d08199a3\Microsoft.Transactions.Bridge.Dtc.ni.dll
+ 2012-05-03 22:31 . 2012-05-03 22:31 851456 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Build.Uti#\ef49e94c2b9e293e658979ba193686c7\Microsoft.Build.Utilities.v4.0.ni.dll
+ 2012-05-03 22:29 . 2012-05-03 22:29 353792 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Build.Fra#\f03be672b1993e4a2dee05f0c99cf27a\Microsoft.Build.Framework.ni.dll
+ 2012-05-03 22:30 . 2012-05-03 22:30 279552 c:\windows\assembly\NativeImages_v4.0.30319_64\CustomMarshalers\f6b9abf9cd43524102ad9be82b7136d0\CustomMarshalers.ni.dll
+ 2012-05-03 22:28 . 2012-05-03 22:28 661504 c:\windows\assembly\NativeImages_v4.0.30319_64\ComSvcConfig\9f8ae9bae22cd93c5802fbcc6959d018\ComSvcConfig.ni.exe
+ 2012-05-03 22:28 . 2012-05-03 22:28 468992 c:\windows\assembly\NativeImages_v2.0.50727_64\WsatConfig\600f8ca5fcc54f10623903952fcc10ac\WsatConfig.ni.exe
+ 2012-05-03 22:28 . 2012-05-03 22:28 329216 c:\windows\assembly\NativeImages_v2.0.50727_64\WindowsFormsIntegra#\ddb96c334583dc79463edcb14ae16c99\WindowsFormsIntegration.ni.dll
+ 2012-05-03 21:11 . 2012-05-03 21:11 253952 c:\windows\assembly\NativeImages_v2.0.50727_64\UIAutomationTypes\344ac206baaadddc6f7c5fb8ae189b1a\UIAutomationTypes.ni.dll
+ 2012-05-03 21:11 . 2012-05-03 21:11 120832 c:\windows\assembly\NativeImages_v2.0.50727_64\UIAutomationProvider\7a61dc7e8c606d1ed2c703cbeae2f8ef\UIAutomationProvider.ni.dll
+ 2012-05-03 21:12 . 2012-05-03 21:12 653312 c:\windows\assembly\NativeImages_v2.0.50727_64\UIAutomationClient\152b577b846875cb3ac5e2097451daf0\UIAutomationClient.ni.dll
+ 2012-05-03 22:28 . 2012-05-03 22:28 304128 c:\windows\assembly\NativeImages_v2.0.50727_64\TaskScheduler\fb5fce5cf09733b71a796d1da399f07a\TaskScheduler.ni.dll
+ 2012-05-03 21:16 . 2012-05-03 21:16 529920 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Xml.Linq\bc3bbe78635aeacaeea3b310ea5ff002\System.Xml.Linq.ni.dll
+ 2012-05-03 21:17 . 2012-05-03 21:17 187392 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Routing\894b696a87ad47b5e18ac89954813a94\System.Web.Routing.ni.dll
+ 2012-05-03 22:27 . 2012-05-03 22:27 449024 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Entity\a6885ee42ea49eb80f1bd18a5252684d\System.Web.Entity.ni.dll
+ 2012-05-03 22:27 . 2012-05-03 22:27 398848 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Entity.D#\88ffeea88ac9ce23de0c5a27a95e773a\System.Web.Entity.Design.ni.dll
+ 2012-05-03 21:31 . 2012-05-03 21:31 753664 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.DynamicD#\7a311c3305dbbd5cfa2613997608a4ae\System.Web.DynamicData.ni.dll
+ 2012-05-03 21:16 . 2012-05-03 21:16 204800 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Abstract#\e5069f3c90b4413dd2f3dc226c80bc68\System.Web.Abstractions.ni.dll
+ 2012-05-03 21:17 . 2012-05-03 21:17 916480 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Net\e238ca4ca02f9309283c98e1a4235bbd\System.Net.ni.dll
+ 2012-05-03 20:47 . 2012-05-03 20:47 783360 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Messaging\9880905a6fde778e564adf54b2afbaa5\System.Messaging.ni.dll
+ 2012-05-03 21:17 . 2012-05-03 21:17 534016 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Management.I#\c340633057ed6b9ffcf2214cb348a1fa\System.Management.Instrumentation.ni.dll
+ 2012-05-03 21:17 . 2012-05-03 21:17 569856 c:\windows\assembly\NativeImages_v2.0.50727_64\System.IO.Log\c24a84d54ad05618cf6cab545c31b06b\System.IO.Log.ni.dll
+ 2012-05-03 20:47 . 2012-05-03 20:47 294400 c:\windows\assembly\NativeImages_v2.0.50727_64\System.IdentityMode#\2ba95581264a766410a6dbbe767c5ed8\System.IdentityModel.Selectors.ni.dll
+ 2012-05-03 21:16 . 2012-05-03 21:16 629760 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Service#\be6635364f1af379afff83dd877a4e03\System.Data.Services.Design.ni.dll
+ 2012-05-03 21:14 . 2012-05-03 21:14 194560 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.DataSet#\027959159200e828ccfddaef5f01b3a9\System.Data.DataSetExtensions.ni.dll
+ 2012-05-03 21:14 . 2012-05-03 21:14 132096 c:\windows\assembly\NativeImages_v2.0.50727_64\System.ComponentMod#\8c954be3f8d070b1364844741ff4b4b1\System.ComponentModel.DataAnnotations.ni.dll
+ 2012-05-03 21:14 . 2012-05-03 21:14 889344 c:\windows\assembly\NativeImages_v2.0.50727_64\System.AddIn\bd9159951d0caa9bf5c90c44fc96661b\System.AddIn.ni.dll
+ 2012-05-03 21:14 . 2012-05-03 21:14 156672 c:\windows\assembly\NativeImages_v2.0.50727_64\System.AddIn.Contra#\edf038eef2dc9f21b13da8bdc046a834\System.AddIn.Contract.ni.dll
+ 2012-05-03 21:17 . 2012-05-03 21:17 297984 c:\windows\assembly\NativeImages_v2.0.50727_64\sysglobl\0ba53d547dabd039b0cfc9ce52fa6c57\sysglobl.ni.dll
+ 2012-05-03 21:14 . 2012-05-03 21:14 525824 c:\windows\assembly\NativeImages_v2.0.50727_64\SMSvcHost\8bfc7a328911ae69686576bd24f4f771\SMSvcHost.ni.exe
+ 2012-05-03 20:46 . 2012-05-03 20:46 349184 c:\windows\assembly\NativeImages_v2.0.50727_64\SMDiagnostics\823bd996cb5aefd6c2b2fa7e19e0ef40\SMDiagnostics.ni.dll
+ 2012-05-03 21:14 . 2012-05-03 21:14 317440 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\cc864feeea3e918e3d9790b301bb2004\PresentationFramework.Royale.ni.dll
+ 2012-05-03 21:14 . 2012-05-03 21:14 620544 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\ab440c134c4d619f82ba6eab569c8fed\PresentationFramework.Luna.ni.dll
+ 2012-05-03 21:13 . 2012-05-03 21:13 463360 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\0e79d12dc8bede29dc337dba8d803bfa\PresentationFramework.Aero.ni.dll
+ 2012-05-03 21:14 . 2012-05-03 21:14 282624 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\0e6121dbd31ce6b51354b38075dc9007\PresentationFramework.Classic.ni.dll
+ 2012-05-03 21:13 . 2012-05-03 21:13 855040 c:\windows\assembly\NativeImages_v2.0.50727_64\napsnap\9c808282a0cfdc5bafcb43e1778d97d6\napsnap.ni.dll
+ 2012-05-03 21:13 . 2012-05-03 21:13 162816 c:\windows\assembly\NativeImages_v2.0.50727_64\napinit\616ce317134d4225fc7eec80f9351855\napinit.ni.dll
+ 2012-05-03 21:13 . 2012-05-03 21:13 175104 c:\windows\assembly\NativeImages_v2.0.50727_64\naphlpr\fd2464358cddfa04f46d55b9153249e3\naphlpr.ni.dll
+ 2012-05-03 21:13 . 2012-05-03 21:13 127488 c:\windows\assembly\NativeImages_v2.0.50727_64\napcrypt\717cc07bafa8f50a6f87be383fa9018b\napcrypt.ni.dll
+ 2012-05-03 21:13 . 2012-05-03 21:13 184320 c:\windows\assembly\NativeImages_v2.0.50727_64\MSBuild\a4b5d98bf175a3f10c47f223195c34b0\MSBuild.ni.exe
+ 2012-05-03 20:56 . 2012-05-03 20:56 417792 c:\windows\assembly\NativeImages_v2.0.50727_64\MMCFxCommon\b94e1c9115d8e37e734b27b48f54d236\MMCFxCommon.ni.dll
+ 2012-05-03 21:13 . 2012-05-03 21:13 681984 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.WSMan.Man#\04532b2b5174ca249e01a8b21d0ba6fd\Microsoft.WSMan.Management.ni.dll
+ 2012-05-03 21:13 . 2012-05-03 21:13 122368 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\5cd854d075caf8b50de3c803b4303e03\Microsoft.Windows.Diagnosis.TroubleshootingPack.ni.dll
+ 2012-05-03 21:08 . 2012-05-03 21:08 105984 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Vsa\cb1c199305d00b2424e707311eb9dcfd\Microsoft.Vsa.ni.dll
+ 2012-05-03 21:12 . 2012-05-03 21:12 584192 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Transacti#\b2438f632ab1dcbb1cb91c5a1226aaf1\Microsoft.Transactions.Bridge.Dtc.ni.dll
+ 2012-05-03 21:12 . 2012-05-03 21:12 999936 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\d7f5b39fba028d2f9e2b3a772845a2a6\Microsoft.PowerShell.GraphicalHost.ni.dll
+ 2012-05-03 21:08 . 2012-05-03 21:08 416768 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\99bb7896ddbe74236efaa97733c63cbc\Microsoft.PowerShell.Commands.Diagnostics.ni.dll
+ 2012-05-03 21:08 . 2012-05-03 21:08 713216 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\71542ecf96342dc1464fe471852be89a\Microsoft.PowerShell.ConsoleHost.ni.dll
+ 2012-05-03 21:12 . 2012-05-03 21:12 237056 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\0bafa5e2dc431bb12108395cf2e18773\Microsoft.PowerShell.Security.ni.dll
+ 2012-05-03 20:57 . 2012-05-03 20:57 522240 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\ddd2f252bea1cce14bb498257992635a\Microsoft.MediaCenter.Interop.ni.dll
+ 2012-05-03 21:00 . 2012-05-03 21:00 164864 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\cf9be66d53dddbf49b75cead76ef3cea\Microsoft.MediaCenter.Mheg.ni.dll
+ 2012-05-03 20:57 . 2012-05-03 20:57 152576 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\a743124afb874ab00d713ab50a7d850d\Microsoft.MediaCenter.ITVVM.ni.dll
+ 2012-05-03 20:59 . 2012-05-03 20:59 219648 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\7de5318ee2be8e2b8fcffde83c79ab7c\Microsoft.MediaCenter.iTv.Media.ni.dll
+ 2012-05-03 20:57 . 2012-05-03 20:57 370176 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\55172dec8f1353d1a8d9cdc4c0b9fac0\Microsoft.MediaCenter.Playback.ni.dll
+ 2012-05-03 20:57 . 2012-05-03 20:57 965632 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\5495e7eca3dac7eee473e30a3611f178\Microsoft.MediaCenter.Sports.ni.dll
+ 2012-05-03 20:59 . 2012-05-03 20:59 312320 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\35ce662c1368782ede0852134106ea43\Microsoft.MediaCenter.iTv.ni.dll
+ 2012-05-03 20:56 . 2012-05-03 20:56 798720 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Managemen#\505549b05e5c3ceccd26ad9c398381e8\Microsoft.ManagementConsole.ni.dll
+ 2012-05-03 21:00 . 2012-05-03 21:00 244736 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Uti#\f356844d3667b88d03bde2ae524659b6\Microsoft.Build.Utilities.v3.5.ni.dll
+ 2012-05-03 21:00 . 2012-05-03 21:00 198656 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Uti#\86f7fa65013864ae7da2fba058199dae\Microsoft.Build.Utilities.ni.dll
+ 2012-05-03 20:59 . 2012-05-03 20:59 142336 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Fra#\9f5bcff6a0b169efa6b607efd8789ea9\Microsoft.Build.Framework.ni.dll
+ 2012-05-03 20:59 . 2012-05-03 20:59 121344 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Fra#\0ef8fa5e835e9ae9fd9a20e5d5058460\Microsoft.Build.Framework.ni.dll
+ 2012-05-03 20:59 . 2012-05-03 20:59 294912 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Con#\c467a4d9eeda620e3e7602a9ecf9ae76\Microsoft.Build.Conversion.v3.5.ni.dll
+ 2012-05-03 20:59 . 2012-05-03 20:59 107520 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft-Windows-H#\348c58da6c217fb9a1a6f33b19bc1501\Microsoft-Windows-HomeGroupDiagnostic.NetListMgr.Interop.ni.dll
+ 2012-05-03 20:59 . 2012-05-03 20:59 380928 c:\windows\assembly\NativeImages_v2.0.50727_64\Mcx2Dvcs\304068df803748d7743a6a4dc344915f\Mcx2Dvcs.ni.dll
+ 2012-05-03 20:59 . 2012-05-03 20:59 547328 c:\windows\assembly\NativeImages_v2.0.50727_64\mcupdate\fb79aad0c745ff7b45151bc58b4dc8e9\mcupdate.ni.exe
+ 2012-05-03 20:56 . 2012-05-03 20:56 533504 c:\windows\assembly\NativeImages_v2.0.50727_64\mcstoredb\4a29229fecf805779bee25b756d78a0d\mcstoredb.ni.dll
+ 2012-05-03 20:59 . 2012-05-03 20:59 549376 c:\windows\assembly\NativeImages_v2.0.50727_64\mcplayerinterop\8affc4346a86b80727282966ce58662b\mcplayerinterop.ni.dll
+ 2012-05-03 20:59 . 2012-05-03 20:59 696320 c:\windows\assembly\NativeImages_v2.0.50727_64\mcGlidHostObj\756a74d6b322877662a0f6da4bc7d8e6\mcGlidHostObj.ni.dll
+ 2012-05-03 20:57 . 2012-05-03 20:57 156672 c:\windows\assembly\NativeImages_v2.0.50727_64\MCESidebarCtrl\2ce02776e0f2f1770f4bb77e1f6d7472\MCESidebarCtrl.ni.dll
+ 2012-05-03 20:56 . 2012-05-03 20:56 659456 c:\windows\assembly\NativeImages_v2.0.50727_64\EventViewer\956ca0e08e881df7f16f7d6d1381f71d\EventViewer.ni.dll
+ 2012-05-03 20:49 . 2012-05-03 20:49 969216 c:\windows\assembly\NativeImages_v2.0.50727_64\ehRecObj\307ca4b67db79b05b4781634ea8ec0d7\ehRecObj.ni.dll
+ 2012-05-03 20:56 . 2012-05-03 20:56 661504 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiWUapi\87f11d95ab10469f888fd76c45f9fceb\ehiWUapi.ni.dll
+ 2012-05-03 20:56 . 2012-05-03 20:56 933888 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiwmp\a24c79d19a6d2a3e8ca587ecddd3e735\ehiwmp.ni.dll
+ 2012-05-03 20:49 . 2012-05-03 20:49 145408 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiUserXp\0de7a02857c6041bc2c86c1db3ca8c23\ehiUserXp.ni.dll
+ 2012-05-03 20:56 . 2012-05-03 20:56 196096 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiiTv\421eb174f94249cf6a3b9e517baa82f8\ehiiTv.ni.dll
+ 2012-05-03 20:56 . 2012-05-03 20:56 397824 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiExtens\d5bf6f8e9e3d08d407ed68b714c268ae\ehiExtens.ni.dll
+ 2012-05-03 20:56 . 2012-05-03 20:56 110080 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiBmlDataCarousel\b55c3bb24dda0acda2bc332cc3016f75\ehiBmlDataCarousel.ni.dll
+ 2012-05-03 20:56 . 2012-05-03 20:56 126976 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiActivScp\cbebce3e616f8fa475427e94a5f607de\ehiActivScp.ni.dll
+ 2012-05-03 20:48 . 2012-05-03 20:48 389120 c:\windows\assembly\NativeImages_v2.0.50727_64\ehExtHost\5f53457f49927ecf00156d20466cc5a6\ehExtHost.ni.exe
+ 2012-05-03 20:48 . 2012-05-03 20:48 313856 c:\windows\assembly\NativeImages_v2.0.50727_64\ehCIR\b49168b11f5f60ddafed2ab1fdd4540f\ehCIR.ni.dll
+ 2012-05-03 20:48 . 2012-05-03 20:48 348672 c:\windows\assembly\NativeImages_v2.0.50727_64\CustomMarshalers\1e040217cf674c6cf528fbfe18c4c2f8\CustomMarshalers.ni.dll
+ 2012-05-03 22:31 . 2012-05-03 22:31 5237248 c:\windows\assembly\NativeImages_v4.0.30319_64\WindowsBase\02198c29552545c7d7e7a95ab39488e5\WindowsBase.ni.dll
+ 2012-05-03 22:29 . 2012-05-03 22:29 7037952 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Xml\ecdcf3d1d7bc90546464d70a4bee843d\System.Xml.ni.dll
+ 2012-05-03 22:29 . 2012-05-03 22:29 2449408 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Xaml\3a9670f473f8f9291ca256d9a15fc281\System.Xaml.ni.dll
+ 2012-05-03 23:57 . 2012-05-03 23:57 2287104 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Web.Services\a1663ec98464119a31a28721d7bb95d0\System.Web.Services.ni.dll
+ 2012-05-03 23:55 . 2012-05-03 23:55 3412992 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\1a361129f93a8190d8797b7c680baecc\System.Runtime.Serialization.ni.dll
+ 2012-05-03 23:55 . 2012-05-03 23:55 1348096 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Dura#\2c57eff357f1bc56d0367f04adcf6d76\System.Runtime.DurableInstancing.ni.dll
+ 2012-05-03 23:55 . 2012-05-03 23:55 1098752 c:\windows\assembly\NativeImages_v4.0.30319_64\System.EnterpriseSe#\7b06b84cb3b99a3ab22adb2a3f6376e6\System.EnterpriseServices.ni.dll
+ 2012-05-03 23:55 . 2012-05-03 23:55 2290176 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Drawing\5b5fe518d1a632afaae9f24dd18cee2f\System.Drawing.ni.dll
+ 2012-05-03 23:55 . 2012-05-03 23:55 1622528 c:\windows\assembly\NativeImages_v4.0.30319_64\System.DirectorySer#\5eaf17b571cf9fb6f159a0c92d6244ab\System.DirectoryServices.ni.dll
+ 2012-05-03 23:57 . 2012-05-03 23:57 8601600 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Data\ca4a0bde02b2eb73d2e9f22925719ecf\System.Data.ni.dll
+ 2012-05-03 22:29 . 2012-05-03 22:29 3390976 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Data.SqlXml\657b967b5fd7819f273f5704197ce97e\System.Data.SqlXml.ni.dll
+ 2012-05-03 22:29 . 2012-05-03 22:29 1257472 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Configuration\c24ce44b45c0e0c0961a9755f192eb3a\System.Configuration.ni.dll
+ 2012-05-03 23:54 . 2012-05-03 23:54 2056192 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationUI\68d02e44d8b1f23c21a116119fbb65d0\PresentationUI.ni.dll
+ 2012-05-03 22:31 . 2012-05-03 22:31 1891328 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationBuildTa#\2876e05f3ce0df4f38abe04c9bec2e8c\PresentationBuildTasks.ni.dll
+ 2012-05-03 22:30 . 2012-05-03 22:30 1829888 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\67d6bc248c3f7ce347abea48d3409d71\Microsoft.VisualBasic.Compatibility.ni.dll
+ 2012-05-03 22:30 . 2012-05-03 22:30 2317312 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\1903f5de0c7c33993c55319d4fc3062e\Microsoft.VisualBasic.ni.dll
+ 2012-05-03 22:30 . 2012-05-03 22:30 1623040 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\15b88fefd6d638f01856a68c14e2ab9b\Microsoft.VisualBasic.Activities.Compiler.ni.dll
+ 2012-05-03 22:30 . 2012-05-03 22:30 1526784 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Transacti#\2d92f0cffe052f601c1bca1f52425fef\Microsoft.Transactions.Bridge.ni.dll
+ 2012-05-03 22:30 . 2012-05-03 22:30 2009600 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.CSharp\83f53b455553f5ad67e756f6762dc3b4\Microsoft.CSharp.ni.dll
+ 2012-05-03 22:30 . 2012-05-03 22:30 6004736 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Build\5417f88ad5b4444a5f1e744fcd8ac9cc\Microsoft.Build.ni.dll
+ 2012-05-03 22:30 . 2012-05-03 22:30 2521088 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Build.Eng#\0220591dc78673b4efa66d7848de3f54\Microsoft.Build.Engine.ni.dll
+ 2012-05-03 22:28 . 2012-05-03 22:28 1007104 c:\windows\assembly\NativeImages_v4.0.30319_64\AspNetMMCExt\77e7c861aa32169dbe003c5a0b611f3f\AspNetMMCExt.ni.dll
+ 2012-05-03 21:09 . 2012-05-03 21:09 4962816 c:\windows\assembly\NativeImages_v2.0.50727_64\WindowsBase\a6d9b6658c7778345cc60fe0d9bb6e64\WindowsBase.ni.dll
+ 2012-05-03 22:28 . 2012-05-03 22:28 1459712 c:\windows\assembly\NativeImages_v2.0.50727_64\UIAutomationClients#\dac9f71ca1332da2a359e2d07589b7e9\UIAutomationClientsideProviders.ni.dll
+ 2012-05-03 22:28 . 2012-05-03 22:28 1818112 c:\windows\assembly\NativeImages_v2.0.50727_64\System.WorkflowServ#\5571a92171f93c8a4806b9f1805f1c56\System.WorkflowServices.ni.dll
+ 2012-05-03 22:28 . 2012-05-03 22:28 2711040 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Run#\3b2e60a9cfedffc4c850f1d0ef17e5e1\System.Workflow.Runtime.ni.dll
+ 2012-05-03 22:28 . 2012-05-03 22:28 5957632 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Com#\809f0c7c2d0233f086f83b75f6aa9560\System.Workflow.ComponentModel.ni.dll
+ 2012-05-03 22:27 . 2012-05-03 22:27 3895296 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Act#\f09110bd4c01129e8ef2e345e8b58920\System.Workflow.Activities.ni.dll
+ 2012-05-03 22:27 . 2012-05-03 22:27 3336704 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Mobile\2b012fd0a270bdac848843047bb93312\System.Web.Mobile.ni.dll
+ 2012-05-03 21:16 . 2012-05-03 21:16 3044352 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Extensio#\cf203792167bd243b057b8daf79e0d98\System.Web.Extensions.ni.dll
+ 2012-05-03 22:27 . 2012-05-03 22:27 1155072 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Extensio#\7f261dc1eaa3e4e0b93c44678888dd44\System.Web.Extensions.Design.ni.dll
+ 2012-05-03 21:17 . 2012-05-03 21:17 2727936 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Speech\a49bc70b640e21c9bcecbd8122203283\System.Speech.ni.dll
+ 2012-05-03 21:16 . 2012-05-03 21:16 2312704 c:\windows\assembly\NativeImages_v2.0.50727_64\System.ServiceModel#\8ef813ce3f85ea3b3f499d734ac8019e\System.ServiceModel.Web.ni.dll
+ 2012-05-03 20:46 . 2012-05-03 20:46 3073536 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\f99728bbb535157b904873158379dc67\System.Runtime.Serialization.ni.dll
+ 2012-05-03 21:12 . 2012-05-03 21:12 1463808 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Printing\1194371f7bf016fa5f5db6a6003af63e\System.Printing.ni.dll
+ 2012-05-03 21:07 . 2012-05-03 21:07 1472000 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Management\6860203a3f244d4c6b89ff38a9c9cadb\System.Management.ni.dll
+ 2012-05-03 20:47 . 2012-05-03 20:47 1444352 c:\windows\assembly\NativeImages_v2.0.50727_64\System.IdentityModel\3fae8a8515a716f1fae4a64a7f2a4b05\System.IdentityModel.ni.dll
+ 2012-05-03 21:17 . 2012-05-03 21:17 1230848 c:\windows\assembly\NativeImages_v2.0.50727_64\System.DirectorySer#\48a91957a4b86c3bcebec68eb1471def\System.DirectoryServices.AccountManagement.ni.dll
+ 2012-05-03 21:16 . 2012-05-03 21:16 2805760 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Services\2dd10ff57a987aa347518b0abfcaf8b3\System.Data.Services.ni.dll
+ 2012-05-03 21:16 . 2012-05-03 21:16 1868288 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Service#\0177f6ff2b3faf1805b3ba63e0e20ad0\System.Data.Services.Client.ni.dll
+ 2012-05-03 21:16 . 2012-05-03 21:16 3480576 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Linq\dd28d55dd94fb4d1e4dca6393e4b15a4\System.Data.Linq.ni.dll
+ 2012-05-03 21:15 . 2012-05-03 21:15 1080320 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Entity.#\caf124d5431e8d8aba046e54a8b7dea5\System.Data.Entity.Design.ni.dll
+ 2012-05-03 21:08 . 2012-05-03 21:08 3315200 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Core\9e59bc2c8cf98cd315468ca01f68663c\System.Core.ni.dll
+ 2012-05-03 21:12 . 2012-05-03 21:12 3116032 c:\windows\assembly\NativeImages_v2.0.50727_64\ReachFramework\c2b60ec84728f2a0b99f2113ed7eba37\ReachFramework.ni.dll
+ 2012-05-03 21:12 . 2012-05-03 21:12 2109952 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationUI\d5b793b7c0429d61e51fe917d1066df8\PresentationUI.ni.dll
+ 2012-05-03 21:13 . 2012-05-03 21:13 1884160 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationBuildTa#\0618574a66f03040f765c43693bf58f6\PresentationBuildTasks.ni.dll
+ 2012-05-03 21:13 . 2012-05-03 21:13 3601920 c:\windows\assembly\NativeImages_v2.0.50727_64\Narrator\24f9a2d494b01bcbc6919f60a278c715\Narrator.ni.exe
+ 2012-05-03 21:13 . 2012-05-03 21:13 2327552 c:\windows\assembly\NativeImages_v2.0.50727_64\MMCEx\8988116626390eae76ef9e492c0e2894\MMCEx.ni.dll
+ 2012-05-03 20:57 . 2012-05-03 20:57 7970304 c:\windows\assembly\NativeImages_v2.0.50727_64\MIGUIControls\77c418992d39a8c1ce569194f9b1ff1e\MIGUIControls.ni.dll
+ 2012-05-03 21:12 . 2012-05-03 21:12 2131968 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.VisualBas#\e05059a258a8b75d8981f29ecd9baf72\Microsoft.VisualBasic.ni.dll
+ 2012-05-03 20:48 . 2012-05-03 20:48 1598976 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Transacti#\11bd9381aca79215bc01b45a5e7bddce\Microsoft.Transactions.Bridge.ni.dll
+ 2012-05-03 21:09 . 2012-05-03 21:09 5350912 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\ecc930a57b339ba3d126b05b2d756a01\Microsoft.PowerShell.Editor.ni.dll
+ 2012-05-03 21:08 . 2012-05-03 21:08 2176512 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\8d5a4862d0e61fdd2e958fc989df3cca\Microsoft.PowerShell.Commands.Utility.ni.dll
+ 2012-05-03 21:12 . 2012-05-03 21:12 2105344 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\713f3cf6037ed7047485c738934f9054\Microsoft.PowerShell.GPowerShell.ni.dll
+ 2012-05-03 21:08 . 2012-05-03 21:08 1131008 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\09516cb547f50c165051c5512c0770d3\Microsoft.PowerShell.Commands.Management.ni.dll
+ 2012-05-03 20:48 . 2012-05-03 20:48 1516544 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\d7d03c116e282c198f398652dbddc074\Microsoft.MediaCenter.ni.dll
+ 2012-05-03 20:49 . 2012-05-03 20:49 8979456 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\bf5f76b58c88f17410effc17059685a8\Microsoft.MediaCenter.UI.ni.dll
+ 2012-05-03 20:57 . 2012-05-03 20:57 1142784 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\b54d398a06452904630482f2f83d21dd\Microsoft.MediaCenter.Shell.ni.dll
+ 2012-05-03 20:57 . 2012-05-03 20:57 1170432 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\5f69561da0086365718db46e1172d204\Microsoft.MediaCenter.TV.Tuners.Interop.ni.dll
+ 2012-05-03 21:00 . 2012-05-03 21:00 1508864 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\5e550f8b6414d82551174d1dd0f8f15c\Microsoft.MediaCenter.Bml.ni.dll
+ 2012-05-03 21:08 . 2012-05-03 21:08 3213312 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.JScript\551b383e39b9fedb84e25c9fc7d763ee\Microsoft.JScript.ni.dll
+ 2012-05-03 20:59 . 2012-05-03 20:59 2218496 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Tas#\4ccd2dddff73b52cd77ecaed30075b09\Microsoft.Build.Tasks.ni.dll
+ 2012-05-03 20:59 . 2012-05-03 20:59 2682880 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Tas#\35cee0a531b3136b21b2c7e2ff56b5eb\Microsoft.Build.Tasks.v3.5.ni.dll
+ 2012-05-03 20:59 . 2012-05-03 20:59 2544640 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Eng#\a22f83fa561173b77ee1215e0dfd7a76\Microsoft.Build.Engine.ni.dll
+ 2012-05-03 20:59 . 2012-05-03 20:59 1137152 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Eng#\5cd9b4020f38edbdc2718884fe3e68f0\Microsoft.Build.Engine.ni.dll
+ 2012-05-03 20:50 . 2012-05-03 20:50 2801664 c:\windows\assembly\NativeImages_v2.0.50727_64\mcstore\0217b5f9a72020bee3d0291bbae125ff\mcstore.ni.dll
+ 2012-05-03 20:50 . 2012-05-03 20:50 4088320 c:\windows\assembly\NativeImages_v2.0.50727_64\mcepg\905166e37a4a5f45a7d1672fb756d96e\mcepg.ni.dll
+ 2012-05-03 20:56 . 2012-05-03 20:56 2184192 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiVidCtl\f61f677c8d3ba5191da2d0809bb35fe1\ehiVidCtl.ni.dll
+ 2012-05-03 20:48 . 2012-05-03 20:48 1201664 c:\windows\assembly\NativeImages_v2.0.50727_64\ehiProxy\17d0b71391bf67c5a663b140b9a7a936\ehiProxy.ni.dll
+ 2012-05-03 23:44 . 2012-05-03 23:44 11862016 c:\windows\ERDNT\Hiv-backup\schema.dat
+ 2012-05-03 23:56 . 2012-05-03 23:56 15744000 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Web\926c8ff2e21fe6662c234e2e67e6bcbc\System.Web.ni.dll
+ 2012-05-03 23:58 . 2012-05-03 23:58 13300736 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Design\9d61c4544736b70187f3784563b21098\System.Design.ni.dll
+ 2012-05-03 22:30 . 2012-05-03 22:30 10440704 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Core\e91a0d844afdda429e0fbd9814f41134\System.Core.ni.dll
+ 2012-05-03 23:52 . 2012-05-03 23:53 24406528 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\8a4ac50c706da226242a99b871c9f981\PresentationFramework.ni.dll
+ 2012-05-03 23:50 . 2012-05-03 23:50 15907328 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationCore\b0adff19c63ba3b4be1cae43567af15d\PresentationCore.ni.dll
+ 2012-05-03 21:07 . 2012-05-03 21:07 11900928 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Management.A#\e18dbed9e34d7d56cc7e2f683de12237\System.Management.Automation.ni.dll
+ 2012-05-03 21:15 . 2012-05-03 21:15 13760000 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Entity\00b730e56986ad4f378e420fa8606395\System.Data.Entity.ni.dll
+ 2012-05-03 21:11 . 2012-05-03 21:11 19195392 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\be975224912fc63f0398ad0c969ba144\PresentationFramework.ni.dll
+ 2012-05-03 21:10 . 2012-05-03 21:10 16540160 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationCore\0fa603af6ee814498c20f46e00e5f891\PresentationCore.ni.dll
+ 2012-05-03 20:59 . 2012-05-03 20:59 25470976 c:\windows\assembly\NativeImages_v2.0.50727_64\ehshell\089d0fee0e702f9b9a611f761cb3bd8a\ehshell.ni.dll
.
– Snapshot reset to current date –
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{81017EA9-9AA8-4A6A-9734-7AF40E7D593F}"= "c:\program files (x86)\Yahoo!\Companion\Installs\cpn0\YTNavAssist.dll" [2011-03-16 214840]
.
[HKEY_CLASSES_ROOT\clsid\{81017ea9-9aa8-4a6a-9734-7af40e7d593f}]
[HKEY_CLASSES_ROOT\YTNavAssist.YTNavAssistPlugin.1]
[HKEY_CLASSES_ROOT\TypeLib\{A31F34A1-EBD2-45A2-BF6D-231C1B987CC8}]
[HKEY_CLASSES_ROOT\YTNavAssist.YTNavAssistPlugin]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2011-04-18 39408]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"TOSHIBA Online Product Information"="c:\program files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe" [2010-03-03 4581280]
.
c:\users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
TRDCReminder.lnk - c:\program files (x86)\Toshiba\TRDCReminder\TRDCReminder.exe [2009-9-1 481184]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0native.exe
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-]
"HP Software Update"=c:\program files (x86)\HP\HP Software Update\HPWuSchd2.exe
"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe"
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" -atboottime
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe"
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
.
R2 0222691336081942mcinstcleanup;McAfee Application Installer Cleanup (0222691336081942);c:\users\CHRIST~1\AppData\Local\Temp\022269~1.EXE [x]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 gupdate;Google Update Service (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-04-18 136176]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-15 253088]
R3 gupdatem;Google Update Service (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-04-18 136176]
R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-05-03 129976]
R3 RapportKE64;RapportKE64;c:\windows\system32\Drivers\RapportKE64.sys [x]
R3 Revoflt;Revoflt;c:\windows\system32\DRIVERS\revoflt.sys [x]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [x]
R3 TMachInfo;TMachInfo;c:\program files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [2009-10-06 51512]
R3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service;c:\program files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2010-02-05 137560]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [x]
R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [x]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S1 RapportCerberus_32029;RapportCerberus_32029;c:\programdata\Trusteer\Rapport\store\exts\RapportCerberus\32029\RapportCerberus64_32029.sys [2011-10-18 396816]
S1 RapportEI64;RapportEI64;c:\program files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys [2011-08-21 52496]
S1 RapportPG64;RapportPG64;c:\program files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys [2011-08-21 61200]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
S2 cfWiMAXService;ConfigFree WiMAX Service;c:\program files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe [2010-01-28 249200]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 ConfigFree Service;ConfigFree Service;c:\program files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe [2009-03-10 46448]
S2 RapportMgmtService;Rapport Management Service;c:\program files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe [2011-08-21 870200]
S2 TeamViewer6;TeamViewer 6;c:\program files (x86)\TeamViewer\Version6\TeamViewer_Service.exe [2011-06-01 2337144]
S2 TemproMonitoringService;Notebook Performance Tuning Service (TEMPRO);c:\program files (x86)\Toshiba TEMPRO\TemproSvc.exe [2011-02-10 112080]
S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe [2011-12-08 2028864]
S2 vToolbarUpdater;vToolbarUpdater;c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\10.0.6\ToolbarUpdater.exe [2012-01-16 909152]
S3 FwLnk;FwLnk Driver;c:\windows\system32\DRIVERS\FwLnk.sys [x]
S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys [x]
S3 PGEffect;Pangu effect driver;c:\windows\system32\DRIVERS\pgeffect.sys [x]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesDriver64.sys [2010-11-29 11856]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
.
Contents of the 'Scheduled Tasks' folder
.
2012-05-04 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-02 14:58]
.
2012-05-04 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-04-18 00:04]
.
2012-05-03 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-04-18 00:04]
.
2012-05-04 c:\windows\Tasks\Updater.job
- c:\programdata\WombatUpdater\WombatUpdater.exe [2010-12-30 09:26]
.
.
——— x86-64 ———–
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x0
.
——- Supplementary Scan ——-
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://google.com/
uInternet Settings,ProxyOverride = *.local
IE: Download all with Free Download Manager
IE: Download selected with Free Download Manager
IE: Download video with Free Download Manager
IE: Download with Free Download Manager
IE: E&xport; to Microsoft Excel - c:\progra~2\MIF5BA~1\Office12\EXCEL.EXE/3000
Trusted Zone: internet
Trusted Zone: mcafee.com
TCP: DhcpNameServer = 192.168.0.1
Handler: base64 - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - c:\program files (x86)\ReImageCompanion\tdataprotocol.dll
Handler: chrome - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - c:\program files (x86)\ReImageCompanion\tdataprotocol.dll
Handler: prox - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - c:\program files (x86)\ReImageCompanion\tdataprotocol.dll
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\10.0.6\ViProtocol.dll
FF - ProfilePath - c:\users\Christina\AppData\Roaming\Mozilla\Firefox\Profiles\me606ewo.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.co.uk/
FF - prefs.js: network.proxy.type - 0
.
- - - - ORPHANS REMOVED - - - -
.
Toolbar-Locked - (no file)
Toolbar-10 - (no file)
Toolbar-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
Toolbar-{95B7759C-8C7F-4BF1-B163-73684A933233} - (no file)
Toolbar-Locked - (no file)
Toolbar-10 - (no file)
WebBrowser-{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - (no file)
.
.
.
——————— LOCKED REGISTRY KEYS ———————
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_2_202_233_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_2_202_233_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_233.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.11"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_233.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_233.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_233.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\McAfee]
"SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
———————— Other Running Processes ————————
.
c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
c:\program files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
c:\program files (x86)\TeamViewer\Version6\TeamViewer.exe
c:\program files (x86)\Trusteer\Rapport\bin\RapportService.exe
c:\program files (x86)\TeamViewer\Version6\tv_w32.exe
c:\program files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
c:\program files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
.
**************************************************************************
.
Completion time: 2012-05-04 09:37:02 - machine was rebooted
ComboFix-quarantined-files.txt 2012-05-04 08:37
.
Pre-Run: 62,523,658,240 bytes free
Post-Run: 63,007,531,008 bytes free
.
- - End Of File - - D3F62B4E3B7D2E679B6A9ABC83653156
Please open your MalwareBytes AntiMalware Program Click the Update Tab and search for updates If an update is found, it will download and install the latest version. Once the program has loaded, select "Perform Quick Scan" , then click Scan. The scan may take some time to finish, so please be patient. When the scan is complete, click OK , then Show Results to view the results. Make sure that everything is checked, and click Remove Selected . <– very important When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. (See Extra Note) The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM. Copy&Paste the entire report in your next reply.
Next
ESET Online Scanner
I'd like us to scan your machine with ESET Online Scan
Note: It is recommended to disable on-board anti-virus program and anti-spyware programs while performing scans so there are no conflicts and it will speed up scan time.
Please don't go surfing while your resident protection is disabled!
Once the scan is finished remember to re-enable your anti-virus along with your anti-spyware programs.
Hold down Control and click on the following link to open ESET OnlineScan in a new window.
ESET OnlineScan Click the [external image: Posted Image] button. For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)Click on [external image: Posted Image] to download the ESET Smart Installer. Save it to your desktop. Double click on the [external image: Posted Image] icon on your desktop. Check [external image: Posted Image] Click the Start button. Accept any security warnings from your browser. Check [external image: Posted Image] Make sure that the option "Remove found threats" is checked Push the Start button. ESET will then download updates for itself, install itself, and begin
scanning your computer. Please be patient as this can take some time. When the scan completes, push [external image: Posted Image] Push [external image: Posted Image] , and save the file to your desktop using a unique name, such as
ESETScan. Include the contents of this report in your next reply. Push the Back button. Push Finish
http://www.eset.com/onlinescan/
Also tell me how the computer is running now.
Hi,
Malwarebytes discovered 2 malware. I had no opportunity to test yet because my McAfee is uninstalled so there is no other use of the computer other than this work. Will let you kow as soon as my McAfee is back.
Malwarebytes Anti-Malware 1.61.0.1400
www.malwarebytes.org
Database version: v2012.05.04.01
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 8.0.7601.17514
Christina :: CHRISTINA-TOSH [administrator]
04/05/2012 11:26:27
mbam-log-2012-05-04 (11-26-27).txt
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 207078
Time elapsed: 5 minute(s), 15 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 2
C:\Users\Christina\Downloads\SoftonicDownloader_for_revo-uninstaller.exe (PUP.ToolbarDownloader) -> No action taken.
C:\Users\Christina\Downloads\SoftonicDownloader_for_winzip.exe (PUP.OfferBundler.ST) -> No action taken.
(end)
ESETScan
4.5.12
C:\Users\Christina\Downloads\cnet2_revosetup_exe.exe a variant of Win32/InstallCore.D application cleaned by deleting - quarantined
C:\Users\Christina\Downloads\fyzip-setup(1).exe Win32/DownloadAdmin.A.Gen application deleted - quarantined
C:\Users\Christina\Downloads\registrybooster.exe Win32/RegistryBooster application deleted - quarantined
C:\Users\Christina\Downloads\SoftonicDownloader_for_revo-uninstaller.exe Win32/SoftonicDownloader.D application cleaned by deleting - quarantined
C:\Users\Christina\Downloads\SoftonicDownloader_for_winzip.exe a variant of Win32/SoftonicDownloader.A application cleaned by deleting - quarantined
C:\Users\Christina\Downloads\vlcmediaplayer-setup(1).exe Win32/DownloadAdmin.A.Gen application deleted - quarantined
C:\Users\Christina\Downloads\vlcmediaplayer-setup.exe Win32/DownloadAdmin.A.Gen application deleted - quarantined
C:\Users\Christina\Downloads\WinMaximizer2011.exe a variant of Win32/SlowPCfighter application deleted - quarantined
Forgot to ask if you could help in reinstating sound to my external audio. I have done all I could by normal means, I even downloaded a relevant driver SATA ACHCI… whatever but as this had no.exe I did not know how to run it. I shall be very grateful for you help in this matter. Also please tell me if after getting virus clearance from you I should revert back to software forum for sorting out my registry OR can you do it all.?
Christie
Did you remove the two items found by Malwarebytes?
I only do malware removal so you will need to go back to the other forum to resolve the sound issue,not sure what you mean about sorting out the registry though.
Looking back over your logs I see this driver installed
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe [2011-12-8 2028864]
This driver has been known to cause blue screen issues which you have been experiencing,I would remove the program TuneUp Utilities 2011 as it is not needed.