This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

Infected Again [Solved]

36 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

It will not run the scan in OTL whilst in safe mode and it is still failing to load properly so I cannot do it any other way. I am able to download the programs as I am using safe mode with networking. I am able to load OTL and set it up but once I hit quick scan it stalls.
Sometimes it does not load the desktop (no icons). Sometimes it loads the desktop with a couple of error messages to do with daemon lite and ATI graphics - but the keyboard or trackpad do not work - and it always freezes and does not load the other programs. Hopes this makes sense.
Hi,

Please do the following: (run in safe mode with networking if you need to)

Please download Malwarebytes' Anti-Malware
  • Double Click mbam-setup.exe to install the application.
  • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select "Perform Quick Scan", then click Scan.
  • The scan may take some time to finish, so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected. <– very important
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. (See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy&Paste the entire report in your next reply.

Extra Note:If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts, click OK to either and let MBAM proceed with the disinfection process, if asked to restart the computer, please do so immediately.



NEXT


Go here to run an online scanner from ESET.
  • Turn off the real time scanner of any existing antivirus program while performing the online scan
  • Tick the box next to YES, I accept the Terms of Use.
  • Click Start
  • When asked, allow the activeX control to install
  • Click Start
  • Make sure that the option Remove found threats is unticked and the Scan Archives option is ticked.
  • Click on Advanced Settings, ensure the options Scan for potentially unwanted applications, Scan for potentially unsafe applications, and Enable Anti-Stealth Technology are ticked.
  • Click Scan
  • Wait for the scan to finish
  • When the scan completes, press the LIST OF THREATS FOUND button
  • Press EXPORT TO TEXT FILE , name the file ESETSCAN and save it to your desktop
  • Include the contents of this report in your next reply.
  • Press the BACK button.
  • Press Finish
MBAM found no threats. However Eset found the following: C:\Documents and Settings\Application Data\Sun\Java\Deployment\cache\6.0\12\1a1b5d4c-5ce2cdb9 Java/TrojanDownloader.Agent.NCJ trojan
please update Java and clear the Java cache to remove that detection


go to Start > Control Panel > Programs and Features > scroll down to the Java installation and Remove it, now download the latest Java version 7 update 5 and install it: http://java.com/en/download/index.jsp

Click Start > Control Panel.
Double-click the Java icon in the control panel.
The Java Control Panel appears.
Click Settings under Temporary Internet Files.
The Temporary Files Settings dialog box appears.

There are three options on this window to clear the cache.

  • Delete Files
  • View Applications
  • View Applets


Click OK on Delete Temporary Files window.
Note: This deletes all the Downloaded Applications and Applets from the cache.
Click OK on Temporary Files Settings window.


Are you able to start the computer normally now?

please run the following:

  • Click Start > Run… then type in CMD and click on OK.
  • At the Command Prompt C:\ > type the following: chkdsk c: /r and hit the Enter/Return key.
    Note: chkdsk c: /r presumes that the disk upon which you wish to run Error Checking is your C: Drive (most often)
  • When prompted with:

CHKDSK cannot run because the volume is in use by another process
Would you like to schedule this volume to be checked next time the system
restarts (Y/N)

  • Hit the Y key then at the Command Prompt C:\ >
  • Type in EXIT and and hit the Enter/Return key.
  • Now Reboot(Restart) your computer.
Note: Upon Reboot(Restart), CHKDSK will start and carry out the repairs required.
Hello again. It seems nothing is straight forward with this laptop. I still cannot boot up normally so have to continue to work in safe mode. However, it will not allow me to remove java because I am in safe mode! I deleted the folder in programs hoping this would help (and emptied the recycle bin). I also deleted temporary files and emptied the cache. I also disabled Java within Services. Restarted the laptop each time I did one of these but sadly the laptop still will not boot up properly - it loads the desktop but that's it and you cannot do anything else. Any more suggestions?? Thank you again.
try running the following in safe mode

Please download TDSSKiller.zip
  • Extract it to your desktop
  • Double click TDSSKiller.exe
  • when the window opens, click on Change Parameters
  • under ”Additional options”, put a check mark in the box next to “Detect TDLFS File System”
  • click OK
  • Press Start Scan
    • If Malicious objects are found then ensure Cure is selected
    • If TDLFS File System/TDSS File system is found then ensure Cure is selected
      Note: If "cure" is not an option, then choose "skip"
    • Then click Continue > Reboot now
  • Copy and paste the log in your next reply
    • A copy of the log will be saved automatically to the root of the drive (typically C:\)
It found no threats but here is the log anyway: 20:29:18.0156 0276 TDSS rootkit removing tool [removed] Jul 16 2012 22:10:11 20:29:19.0031 0276 ============================================================ 20:29:19.0031 0276 Current date / time: 2012/07/21 20:29:19.0031 20:29:19.0031 0276 SystemInfo: 20:29:19.0031 0276 20:29:19.0031 0276 OS Version: 5.1.2600 ServicePack: 3.0 20:29:19.0031 0276 Product type: Workstation 20:29:19.0031 0276 ComputerName: ACER-LAPTOP 20:29:19.0031 0276 UserName: Administrator 20:29:19.0031 0276 Windows directory: C:\WINDOWS 20:29:19.0031 0276 System windows directory: C:\WINDOWS 20:29:19.0031 0276 Processor architecture: Intel x86 20:29:19.0031 0276 Number of processors: 2 20:29:19.0031 0276 Page size: 0x1000 20:29:19.0031 0276 Boot type: Safe boot with network 20:29:19.0031 0276 ============================================================ 20:29:21.0531 0276 Drive \Device\Harddisk0\DR0 - Size: 0x1BF2976000 (111.79 Gb), SectorSize: 0x200, Cylinders: 0x3901, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054 20:29:21.0531 0276 ============================================================ 20:29:21.0531 0276 \Device\Harddisk0\DR0: 20:29:21.0531 0276 MBR partitions: 20:29:21.0531 0276 \Device\Harddisk0\DR0\Partition0: MBR, Type 0xC, StartLBA 0x7CC5BD, BlocksNum 0x6B660E2 20:29:21.0531 0276 \Device\Harddisk0\DR0\Partition1: MBR, Type 0xC, StartLBA 0x733269F, BlocksNum 0x6C61122 20:29:21.0531 0276 ============================================================ 20:29:21.0593 0276 C: <-> \Device\Harddisk0\DR0\Partition0 20:29:21.0609 0276 D: <-> \Device\Harddisk0\DR0\Partition1 20:29:21.0718 0276 ============================================================ 20:29:21.0718 0276 Initialize success 20:29:21.0718 0276 ============================================================ 20:30:42.0078 1828 ============================================================ 20:30:42.0078 1828 Scan started 20:30:42.0078 1828 Mode: Manual; TDLFS; 20:30:42.0078 1828 ============================================================ 20:30:43.0453 1828 61883 (914a9709fc3bf419ad2f85547f2a4832) C:\WINDOWS\system32\DRIVERS\61883.sys 20:30:43.0453 1828 61883 - ok 20:30:43.0500 1828 6to4 (c07d5197410aab28d0d93f943f59656d) C:\WINDOWS\System32\6to4svc.dll 20:30:43.0500 1828 6to4 - ok 20:30:43.0546 1828 Aavmker4 (0b27ae82c113d3687024d18459440426) C:\WINDOWS\system32\drivers\Aavmker4.sys 20:30:43.0546 1828 Aavmker4 - ok 20:30:43.0578 1828 Abiosdsk - ok 20:30:43.0640 1828 abp480n5 (6abb91494fe6c59089b9336452ab2ea3) C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS 20:30:43.0640 1828 abp480n5 - ok 20:30:43.0671 1828 ACPI (8fd99680a539792a30e97944fdaecf17) C:\WINDOWS\system32\DRIVERS\ACPI.sys 20:30:43.0687 1828 ACPI - ok 20:30:43.0703 1828 ACPIEC (9859c0f6936e723e4892d7141b1327d5) C:\WINDOWS\system32\DRIVERS\ACPIEC.sys 20:30:43.0703 1828 ACPIEC - ok 20:30:43.0843 1828 Adobe LM Service (c1eb9968ec89fba5f3a264e2e57923ab) C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe 20:30:43.0843 1828 Adobe LM Service - ok 20:30:43.0906 1828 AdobeFlashPlayerUpdateSvc (5e1a953c6472e7bb644892a4d0df5e72) C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe 20:30:43.0937 1828 AdobeFlashPlayerUpdateSvc - ok 20:30:43.0968 1828 adpu160m (9a11864873da202c996558b2106b0bbc) C:\WINDOWS\system32\DRIVERS\adpu160m.sys 20:30:43.0984 1828 adpu160m - ok 20:30:44.0031 1828 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys 20:30:44.0046 1828 aec - ok 20:30:44.0093 1828 AegisP (12dafd934641dcf61e446313bc261ec2) C:\WINDOWS\system32\DRIVERS\AegisP.sys 20:30:44.0093 1828 AegisP - ok 20:30:44.0156 1828 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys 20:30:44.0171 1828 AFD - ok 20:30:44.0203 1828 agp440 (08fd04aa961bdc77fb983f328334e3d7) C:\WINDOWS\system32\DRIVERS\agp440.sys 20:30:44.0218 1828 agp440 - ok 20:30:44.0234 1828 agpCPQ (03a7e0922acfe1b07d5db2eeb0773063) C:\WINDOWS\system32\DRIVERS\agpCPQ.sys 20:30:44.0234 1828 agpCPQ - ok 20:30:44.0296 1828 Aha154x (c23ea9b5f46c7f7910db3eab648ff013) C:\WINDOWS\system32\DRIVERS\aha154x.sys 20:30:44.0296 1828 Aha154x - ok 20:30:44.0343 1828 aic78u2 (19dd0fb48b0c18892f70e2e7d61a1529) C:\WINDOWS\system32\DRIVERS\aic78u2.sys 20:30:44.0343 1828 aic78u2 - ok 20:30:44.0375 1828 aic78xx (b7fe594a7468aa0132deb03fb8e34326) C:\WINDOWS\system32\DRIVERS\aic78xx.sys 20:30:44.0375 1828 aic78xx - ok 20:30:44.0421 1828 Alerter (a9a3daa780ca6c9671a19d52456705b4) C:\WINDOWS\system32\alrsvc.dll 20:30:44.0421 1828 Alerter - ok 20:30:44.0437 1828 ALG (8c515081584a38aa007909cd02020b3d) C:\WINDOWS\System32\alg.exe 20:30:44.0437 1828 ALG - ok 20:30:44.0500 1828 AliIde (1140ab9938809700b46bb88e46d72a96) C:\WINDOWS\system32\DRIVERS\aliide.sys 20:30:44.0500 1828 AliIde - ok 20:30:44.0546 1828 alim1541 (cb08aed0de2dd889a8a820cd8082d83c) C:\WINDOWS\system32\DRIVERS\alim1541.sys 20:30:44.0546 1828 alim1541 - ok 20:30:44.0578 1828 amdagp (95b4fb835e28aa1336ceeb07fd5b9398) C:\WINDOWS\system32\DRIVERS\amdagp.sys 20:30:44.0578 1828 amdagp - ok 20:30:44.0609 1828 amsint (79f5add8d24bd6893f2903a3e2f3fad6) C:\WINDOWS\system32\DRIVERS\amsint.sys 20:30:44.0609 1828 amsint - ok 20:30:44.0703 1828 Apple Mobile Device (018857ead9a077a56aedfc0e5ef7a24a) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe 20:30:44.0703 1828 Apple Mobile Device - ok 20:30:44.0812 1828 AppMgmt - ok 20:30:44.0859 1828 Arp1394 (b5b8a80875c1dededa8b02765642c32f) C:\WINDOWS\system32\DRIVERS\arp1394.sys 20:30:44.0859 1828 Arp1394 - ok 20:30:44.0906 1828 asc (62d318e9a0c8fc9b780008e724283707) C:\WINDOWS\system32\DRIVERS\asc.sys 20:30:44.0921 1828 asc - ok 20:30:44.0937 1828 asc3350p (69eb0cc7714b32896ccbfd5edcbea447) C:\WINDOWS\system32\DRIVERS\asc3350p.sys 20:30:44.0937 1828 asc3350p - ok 20:30:44.0968 1828 asc3550 (5d8de112aa0254b907861e9e9c31d597) C:\WINDOWS\system32\DRIVERS\asc3550.sys 20:30:44.0968 1828 asc3550 - ok 20:30:45.0109 1828 aspnet_state (776acefa0ca9df0faa51a5fb2f435705) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe 20:30:45.0109 1828 aspnet_state - ok 20:30:45.0171 1828 aswFsBlk (1c1f3d6dddc046c920c493a779649f66) C:\WINDOWS\system32\drivers\aswFsBlk.sys 20:30:45.0171 1828 aswFsBlk - ok 20:30:45.0203 1828 aswMon2 (9e912fe7b41650701ef2b227aca440f3) C:\WINDOWS\system32\drivers\aswMon2.sys 20:30:45.0203 1828 aswMon2 - ok 20:30:45.0265 1828 aswRdr (982e275d1c5801042fe94209fb0160fb) C:\WINDOWS\system32\drivers\aswRdr.sys 20:30:45.0265 1828 aswRdr - ok 20:30:45.0328 1828 aswSnx (73dbcf808e00580f2a47f93dd9b03876) C:\WINDOWS\system32\drivers\aswSnx.sys 20:30:45.0343 1828 aswSnx - ok 20:30:45.0390 1828 aswSP (6cbd7d3a33f498d09c831cdd732da2e0) C:\WINDOWS\system32\drivers\aswSP.sys 20:30:45.0421 1828 aswSP - ok 20:30:45.0468 1828 aswTdi (7109a9aa551f37cd168c02368465957e) C:\WINDOWS\system32\drivers\aswTdi.sys 20:30:45.0468 1828 aswTdi - ok 20:30:45.0515 1828 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys 20:30:45.0515 1828 AsyncMac - ok 20:30:45.0546 1828 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys 20:30:45.0546 1828 atapi - ok 20:30:45.0562 1828 Atdisk - ok 20:30:45.0656 1828 Ati HotKey Poller (ed8d753788232b81a7e8ef5d59ec3417) C:\WINDOWS\system32\Ati2evxx.exe 20:30:45.0671 1828 Ati HotKey Poller - ok 20:30:45.0750 1828 ati2mtag (d81980c64543ba5c39dd2a92dc1d2daf) C:\WINDOWS\system32\DRIVERS\ati2mtag.sys 20:30:45.0812 1828 ati2mtag - ok 20:30:45.0843 1828 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys 20:30:45.0843 1828 Atmarpc - ok 20:30:45.0968 1828 AudioSrv (def7a7882bec100fe0b2ce2549188f9d) C:\WINDOWS\System32\audiosrv.dll 20:30:45.0968 1828 AudioSrv - ok 20:30:46.0000 1828 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys 20:30:46.0000 1828 audstub - ok 20:30:46.0078 1828 avast! Antivirus (2f7c0f3e39c45e0127fb78b2f18a41f3) C:\Program Files\AVAST Software\Avast\AvastSvc.exe 20:30:46.0093 1828 avast! Antivirus - ok 20:30:46.0140 1828 Avc (f8e6956a614f15a0860474c5e2a7de6b) C:\WINDOWS\system32\DRIVERS\avc.sys 20:30:46.0140 1828 Avc - ok 20:30:46.0218 1828 AVerM115 (118804bbfddf42c45db3c3d410f6a256) C:\WINDOWS\system32\DRIVERS\AVerM115.sys 20:30:46.0250 1828 AVerM115 - ok 20:30:46.0265 1828 AWService - ok 20:30:46.0312 1828 b57w2k (48bf91cffbcdd12a710207f2a08fec4d) C:\WINDOWS\system32\DRIVERS\b57xp32.sys 20:30:46.0328 1828 b57w2k - ok 20:30:46.0406 1828 BackupStack (db449226fe120651661cf047f32e60c1) C:\Program Files\MyPC Backup\BackupStack.exe 20:30:46.0406 1828 BackupStack - ok 20:30:46.0468 1828 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys 20:30:46.0468 1828 Beep - ok 20:30:46.0500 1828 BGRaSvc - ok 20:30:46.0578 1828 BITS (574738f61fca2935f5265dc4e5691314) C:\WINDOWS\system32\qmgr.dll 20:30:46.0593 1828 BITS - ok 20:30:46.0687 1828 Bonjour Service (f832f1505ad8b83474bd9a5b1b985e01) C:\Program Files\Bonjour\mDNSResponder.exe 20:30:46.0718 1828 Bonjour Service - ok 20:30:46.0843 1828 Browser (a06ce3399d16db864f55faeb1f1927a9) C:\WINDOWS\System32\browser.dll 20:30:46.0859 1828 Browser - ok 20:30:46.0906 1828 btaudio (0c7b763abda79b53e2016af1af8b9706) C:\WINDOWS\system32\drivers\btaudio.sys 20:30:46.0937 1828 btaudio - ok 20:30:46.0984 1828 BTDriver (1b24333d2bcb4dc1c5c3b15bedace5b4) C:\WINDOWS\system32\DRIVERS\btport.sys 20:30:46.0984 1828 BTDriver - ok 20:30:47.0031 1828 BthEnum (b279426e3c0c344893ed78a613a73bde) C:\WINDOWS\system32\DRIVERS\BthEnum.sys 20:30:47.0031 1828 BthEnum - ok 20:30:47.0062 1828 BthPan (80602b8746d3738f5886ce3d67ef06b6) C:\WINDOWS\system32\DRIVERS\bthpan.sys 20:30:47.0062 1828 BthPan - ok 20:30:47.0125 1828 BTHPORT (662bfd909447dd9cc15b1a1c366583b4) C:\WINDOWS\system32\Drivers\BTHport.sys 20:30:47.0140 1828 BTHPORT - ok 20:30:47.0187 1828 BthServ (f4c43c66471b87996d95db7a3a664a37) C:\WINDOWS\System32\bthserv.dll 20:30:47.0187 1828 BthServ - ok 20:30:47.0234 1828 BTHUSB (61364cd71ef63b0f038b7e9df00f1efa) C:\WINDOWS\system32\Drivers\BTHUSB.sys 20:30:47.0234 1828 BTHUSB - ok 20:30:47.0296 1828 BTKRNL (54e368a1768c627f2adb8ab5624d0bc4) C:\WINDOWS\system32\DRIVERS\btkrnl.sys 20:30:47.0328 1828 BTKRNL - ok 20:30:47.0343 1828 BTSERIAL (8aeca4330654da58423e7fe03a704513) C:\WINDOWS\system32\drivers\btserial.sys 20:30:47.0343 1828 BTSERIAL - ok 20:30:47.0437 1828 btwdins (6d3ea768af4587289b2934b891c77920) c:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe 20:30:47.0453 1828 btwdins - ok 20:30:47.0500 1828 BTWDNDIS (bde1502aabe76f71d32178e5c6a58e89) C:\WINDOWS\system32\DRIVERS\btwdndis.sys 20:30:47.0500 1828 BTWDNDIS - ok 20:30:47.0531 1828 BTWUSB (fca94255e0a0e65c7c93530bdf10adca) C:\WINDOWS\system32\Drivers\btwusb.sys 20:30:47.0531 1828 BTWUSB - ok 20:30:47.0625 1828 catchme - ok 20:30:47.0687 1828 cbidf (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\DRIVERS\cbidf2k.sys 20:30:47.0687 1828 cbidf - ok 20:30:47.0703 1828 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys 20:30:47.0703 1828 cbidf2k - ok 20:30:47.0796 1828 CCALib8 (5753532c476b83119d85aa43b1b10ab3) C:\Program Files\Canon\CAL\CALMAIN.exe 20:30:47.0812 1828 CCALib8 - ok 20:30:47.0859 1828 CCDECODE (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys 20:30:47.0859 1828 CCDECODE - ok 20:30:47.0875 1828 cd20xrnt (f3ec03299634490e97bbce94cd2954c7) C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys 20:30:47.0875 1828 cd20xrnt - ok 20:30:47.0921 1828 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys 20:30:47.0921 1828 Cdaudio - ok 20:30:47.0953 1828 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys 20:30:47.0953 1828 Cdfs - ok 20:30:47.0984 1828 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys 20:30:47.0984 1828 Cdrom - ok 20:30:48.0015 1828 Changer - ok 20:30:48.0171 1828 CiSvc (1cfe720eb8d93a7158a4ebc3ab178bde) C:\WINDOWS\system32\cisvc.exe 20:30:48.0171 1828 CiSvc - ok 20:30:48.0250 1828 ClipSrv (34cbe729f38138217f9c80212a2a0c82) C:\WINDOWS\system32\clipsrv.exe 20:30:48.0250 1828 ClipSrv - ok 20:30:48.0359 1828 clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 20:30:48.0359 1828 clr_optimization_v2.0.50727_32 - ok 20:30:48.0421 1828 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 20:30:48.0437 1828 clr_optimization_v4.0.30319_32 - ok 20:30:48.0453 1828 CmBatt (0f6c187d38d98f8df904589a5f94d411) C:\WINDOWS\system32\DRIVERS\CmBatt.sys 20:30:48.0453 1828 CmBatt - ok 20:30:48.0500 1828 CmdIde (e5dcb56c533014ecbc556a8357c929d5) C:\WINDOWS\system32\DRIVERS\cmdide.sys 20:30:48.0500 1828 CmdIde - ok 20:30:48.0546 1828 Compbatt (6e4c9f21f0fae8940661144f41b13203) C:\WINDOWS\system32\DRIVERS\compbatt.sys 20:30:48.0546 1828 Compbatt - ok 20:30:48.0593 1828 COMSysApp - ok 20:30:48.0656 1828 Cpqarray (3ee529119eed34cd212a215e8c40d4b6) C:\WINDOWS\system32\DRIVERS\cpqarray.sys 20:30:48.0656 1828 Cpqarray - ok 20:30:48.0734 1828 CryptSvc (3d4e199942e29207970e04315d02ad3b) C:\WINDOWS\System32\cryptsvc.dll 20:30:48.0734 1828 CryptSvc - ok 20:30:48.0796 1828 dac2w2k (e550e7418984b65a78299d248f0a7f36) C:\WINDOWS\system32\DRIVERS\dac2w2k.sys 20:30:48.0796 1828 dac2w2k - ok 20:30:48.0812 1828 dac960nt (683789caa3864eb46125ae86ff677d34) C:\WINDOWS\system32\DRIVERS\dac960nt.sys 20:30:48.0812 1828 dac960nt - ok 20:30:48.0906 1828 DcomLaunch (6b27a5c03dfb94b4245739065431322c) C:\WINDOWS\system32\rpcss.dll 20:30:48.0921 1828 DcomLaunch - ok 20:30:48.0937 1828 DgiVecp - ok 20:30:49.0000 1828 Dhcp (5e38d7684a49cacfb752b046357e0589) C:\WINDOWS\System32\dhcpcsvc.dll 20:30:49.0015 1828 Dhcp - ok 20:30:49.0046 1828 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys 20:30:49.0046 1828 Disk - ok 20:30:49.0093 1828 DKbFltr (08d30af92c270f2e76787c81589dbad6) C:\WINDOWS\system32\DRIVERS\DKbFltr.sys 20:30:49.0093 1828 DKbFltr - ok 20:30:49.0250 1828 DLPWD (ea5cfd9067c88295b2ba2b21e09c2cb2) C:\Program Files\Dell Printers\Additional Color Laser Software\Status Monitor\DLPWDNT.EXE 20:30:49.0265 1828 DLPWD - ok 20:30:49.0296 1828 DLSDB (357e0fd10ccb6d4d89618c83561cb8d6) C:\Program Files\Dell Printers\Additional Color Laser Software\Status Monitor\DLSDBNT.EXE 20:30:49.0312 1828 DLSDB - ok 20:30:49.0359 1828 dmadmin - ok 20:30:49.0453 1828 dmboot (d992fe1274bde0f84ad826acae022a41) C:\WINDOWS\system32\drivers\dmboot.sys 20:30:49.0468 1828 dmboot - ok 20:30:49.0531 1828 dmio (7c824cf7bbde77d95c08005717a95f6f) C:\WINDOWS\system32\drivers\dmio.sys 20:30:49.0546 1828 dmio - ok 20:30:49.0593 1828 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys 20:30:49.0593 1828 dmload - ok 20:30:49.0656 1828 dmserver (57edec2e5f59f0335e92f35184bc8631) C:\WINDOWS\System32\dmserver.dll 20:30:49.0656 1828 dmserver - ok 20:30:49.0718 1828 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys 20:30:49.0718 1828 DMusic - ok 20:30:49.0765 1828 Dnscache (5f7e24fa9eab896051ffb87f840730d2) C:\WINDOWS\System32\dnsrslvr.dll 20:30:49.0765 1828 Dnscache - ok 20:30:49.0859 1828 Dot3svc (0f0f6e687e5e15579ef4da8dd6945814) C:\WINDOWS\System32\dot3svc.dll 20:30:49.0859 1828 Dot3svc - ok 20:30:49.0890 1828 dpti2o (40f3b93b4e5b0126f2f5c0a7a5e22660) C:\WINDOWS\system32\DRIVERS\dpti2o.sys 20:30:49.0890 1828 dpti2o - ok 20:30:49.0937 1828 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys 20:30:49.0937 1828 drmkaud - ok 20:30:49.0984 1828 EapHost (2187855a7703adef0cef9ee4285182cc) C:\WINDOWS\System32\eapsvc.dll 20:30:49.0984 1828 EapHost - ok 20:30:50.0015 1828 EpmPsd (d68564fcfbdfc04280cdbbb37cf7ef7f) C:\WINDOWS\system32\drivers\epm-psd.sys 20:30:50.0015 1828 EpmPsd - ok 20:30:50.0046 1828 EpmShd (50425cbd80468bf53ba90f0d7cc61805) C:\WINDOWS\system32\drivers\epm-shd.sys 20:30:50.0046 1828 EpmShd - ok 20:30:50.0140 1828 ERSvc (bc93b4a066477954555966d77fec9ecb) C:\WINDOWS\System32\ersvc.dll 20:30:50.0140 1828 ERSvc - ok 20:30:50.0187 1828 Eventlog (65df52f5b8b6e9bbd183505225c37315) C:\WINDOWS\system32\services.exe 20:30:50.0187 1828 Eventlog - ok 20:30:50.0250 1828 EventSystem (d4991d98f2db73c60d042f1aef79efae) C:\WINDOWS\system32\es.dll 20:30:50.0265 1828 EventSystem - ok 20:30:50.0359 1828 EvtEng (56ded3ade453272e6a0ad582d945d1a4) C:\Program Files\Intel\Wireless\Bin\EvtEng.exe 20:30:50.0375 1828 EvtEng - ok 20:30:50.0406 1828 ewusbnet - ok 20:30:50.0453 1828 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys 20:30:50.0468 1828 Fastfat - ok 20:30:50.0500 1828 FastUserSwitchingCompatibility (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll 20:30:50.0515 1828 FastUserSwitchingCompatibility - ok 20:30:50.0593 1828 Fax (e97d6a8684466df94ff3bc24fb787a07) C:\WINDOWS\system32\fxssvc.exe 20:30:50.0609 1828 Fax - ok 20:30:50.0640 1828 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\drivers\Fdc.sys 20:30:50.0640 1828 Fdc - ok 20:30:50.0671 1828 Fips (d45926117eb9fa946a6af572fbe1caa3) C:\WINDOWS\system32\drivers\Fips.sys 20:30:50.0671 1828 Fips - ok 20:30:50.0687 1828 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\drivers\Flpydisk.sys 20:30:50.0687 1828 Flpydisk - ok 20:30:50.0734 1828 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys 20:30:50.0750 1828 FltMgr - ok 20:30:50.0875 1828 FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe 20:30:50.0875 1828 FontCache3.0.0.0 - ok 20:30:50.0906 1828 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys 20:30:50.0906 1828 Fs_Rec - ok 20:30:50.0953 1828 Ftdisk (6ac26732762483366c3969c9e4d2259d) C:\WINDOWS\system32\DRIVERS\ftdisk.sys 20:30:50.0953 1828 Ftdisk - ok 20:30:51.0000 1828 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys 20:30:51.0000 1828 GEARAspiWDM - ok 20:30:51.0031 1828 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys 20:30:51.0031 1828 Gpc - ok 20:30:51.0125 1828 gupdate (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe 20:30:51.0140 1828 gupdate - ok 20:30:51.0156 1828 gupdatem (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe 20:30:51.0156 1828 gupdatem - ok 20:30:51.0203 1828 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys 20:30:51.0203 1828 HDAudBus - ok 20:30:51.0281 1828 helpsvc (4fcca060dfe0c51a09dd5c3843888bcd) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll 20:30:51.0281 1828 helpsvc - ok 20:30:51.0359 1828 HidServ (deb04da35cc871b6d309b77e1443c796) C:\WINDOWS\System32\hidserv.dll 20:30:51.0359 1828 HidServ - ok 20:30:51.0390 1828 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys 20:30:51.0390 1828 HidUsb - ok 20:30:51.0453 1828 hkmsvc (8878bd685e490239777bfe51320b88e9) C:\WINDOWS\System32\kmsvc.dll 20:30:51.0468 1828 hkmsvc - ok 20:30:51.0515 1828 hpn (b028377dea0546a5fcfba928a8aefae0) C:\WINDOWS\system32\DRIVERS\hpn.sys 20:30:51.0515 1828 hpn - ok 20:30:51.0656 1828 hpqcxs08 (5da42d24712e00728cea2342a65009b2) C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll 20:30:51.0687 1828 hpqcxs08 - ok 20:30:51.0734 1828 hpqddsvc (d86a39bf100069444d026d22d9a6e555) C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll 20:30:51.0750 1828 hpqddsvc - ok 20:30:51.0812 1828 HPSLPSVC (9d23402d305869844bc6004a05cc74ba) C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL 20:30:51.0843 1828 HPSLPSVC - ok 20:30:51.0875 1828 HPZid412 (d03d10f7ded688fecf50f8fbf1ea9b8a) C:\WINDOWS\system32\DRIVERS\HPZid412.sys 20:30:51.0875 1828 HPZid412 - ok 20:30:51.0921 1828 HPZipr12 (89f41658929393487b6b7d13c8528ce3) C:\WINDOWS\system32\DRIVERS\HPZipr12.sys 20:30:51.0921 1828 HPZipr12 - ok 20:30:51.0968 1828 HPZius12 (abcb05ccdbf03000354b9553820e39f8) C:\WINDOWS\system32\DRIVERS\HPZius12.sys 20:30:51.0968 1828 HPZius12 - ok 20:30:52.0015 1828 HSFHWAZL (a30d7011c1b80a0bc16602d99218d522) C:\WINDOWS\system32\DRIVERS\HSFHWAZL.sys 20:30:52.0031 1828 HSFHWAZL - ok 20:30:52.0093 1828 HSF_DPV (5a5a7721d9c62d77fc0faba9b2cf5be9) C:\WINDOWS\system32\DRIVERS\HSF_DPV.sys 20:30:52.0125 1828 HSF_DPV - ok 20:30:52.0187 1828 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys 20:30:52.0203 1828 HTTP - ok 20:30:52.0281 1828 HTTPFilter (6100a808600f44d999cebdef8841c7a3) C:\WINDOWS\System32\w3ssl.dll 20:30:52.0281 1828 HTTPFilter - ok 20:30:52.0328 1828 hwdatacard - ok 20:30:52.0375 1828 hwusbdev - ok 20:30:52.0421 1828 i2omgmt (9368670bd426ebea5e8b18a62416ec28) C:\WINDOWS\system32\drivers\i2omgmt.sys 20:30:52.0421 1828 i2omgmt - ok 20:30:52.0484 1828 i2omp (f10863bf1ccc290babd1a09188ae49e0) C:\WINDOWS\system32\DRIVERS\i2omp.sys 20:30:52.0484 1828 i2omp - ok 20:30:52.0531 1828 i8042prt (4a0b06aa8943c1e332520f7440c0aa30) C:\WINDOWS\system32\DRIVERS\i8042prt.sys 20:30:52.0531 1828 i8042prt - ok 20:30:52.0656 1828 IDriverT (daf66902f08796f9c694901660e5a64a) C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe 20:30:52.0656 1828 IDriverT - ok 20:30:52.0812 1828 idsvc (c01ac32dc5c03076cfb852cb5da5229c) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe 20:30:52.0843 1828 idsvc - ok 20:30:52.0906 1828 imagedrv (25edd75e23c5ef6b33d0fbcce125a601) C:\WINDOWS\system32\Drivers\imagedrv.sys 20:30:52.0906 1828 imagedrv - ok 20:30:52.0921 1828 imagesrv (9c4bbacf4e9b9543c3ce23f1fe556941) C:\WINDOWS\system32\DRIVERS\imagesrv.sys 20:30:52.0921 1828 imagesrv - ok 20:30:52.0953 1828 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys 20:30:52.0968 1828 Imapi - ok 20:30:53.0093 1828 ImapiService (30deaf54a9755bb8546168cfe8a6b5e1) C:\WINDOWS\system32\imapi.exe 20:30:53.0109 1828 ImapiService - ok 20:30:53.0171 1828 ini910u (4a40e045faee58631fd8d91afc620719) C:\WINDOWS\system32\DRIVERS\ini910u.sys 20:30:53.0171 1828 ini910u - ok 20:30:53.0218 1828 int15.sys - ok 20:30:53.0453 1828 IntcAzAudAddService (4078d4795e394bf2adbed6fcc9827f78) C:\WINDOWS\system32\drivers\RtkHDAud.sys 20:30:53.0593 1828 IntcAzAudAddService - ok 20:30:53.0656 1828 IntelIde (b5466a9250342a7aa0cd1fba13420678) C:\WINDOWS\system32\DRIVERS\intelide.sys 20:30:53.0656 1828 IntelIde - ok 20:30:53.0703 1828 intelppm (8c953733d8f36eb2133f5bb58808b66b) C:\WINDOWS\system32\DRIVERS\intelppm.sys 20:30:53.0703 1828 intelppm - ok 20:30:53.0718 1828 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys 20:30:53.0734 1828 Ip6Fw - ok 20:30:53.0781 1828 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 20:30:53.0781 1828 IpFilterDriver - ok 20:30:53.0796 1828 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys 20:30:53.0796 1828 IpInIp - ok 20:30:53.0843 1828 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys 20:30:53.0859 1828 IpNat - ok 20:30:54.0000 1828 iPod Service (6e27978a4755f4789f912f5f49392f7c) C:\Program Files\iPod\bin\iPodService.exe 20:30:54.0046 1828 iPod Service - ok 20:30:54.0078 1828 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys 20:30:54.0078 1828 IPSec - ok 20:30:54.0125 1828 irda (aca5e7b54409f9cb5eed97ed0c81120e) C:\WINDOWS\system32\DRIVERS\irda.sys 20:30:54.0140 1828 irda - ok 20:30:54.0171 1828 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys 20:30:54.0171 1828 IRENUM - ok 20:30:54.0296 1828 Irmon (49cc4533ce897cb2e93c1e84a818fde5) C:\WINDOWS\System32\irmon.dll 20:30:54.0296 1828 Irmon - ok 20:30:54.0343 1828 isapnp (05a299ec56e52649b1cf2fc52d20f2d7) C:\WINDOWS\system32\DRIVERS\isapnp.sys 20:30:54.0359 1828 isapnp - ok 20:30:54.0375 1828 JavaQuickStarterService - ok 20:30:54.0421 1828 Kbdclass (463c1ec80cd17420a542b7f36a36f128) C:\WINDOWS\system32\DRIVERS\kbdclass.sys 20:30:54.0421 1828 Kbdclass - ok 20:30:54.0453 1828 kbdhid (9ef487a186dea361aa06913a75b3fa99) C:\WINDOWS\system32\DRIVERS\kbdhid.sys 20:30:54.0453 1828 kbdhid - ok 20:30:54.0500 1828 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys 20:30:54.0515 1828 kmixer - ok 20:30:54.0546 1828 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys 20:30:54.0546 1828 KSecDD - ok 20:30:54.0609 1828 lanmanserver (3a7c3cbe5d96b8ae96ce81f0b22fb527) C:\WINDOWS\System32\srvsvc.dll 20:30:54.0609 1828 lanmanserver - ok 20:30:54.0640 1828 lanmanworkstation (a8888a5327621856c0cec4e385f69309) C:\WINDOWS\System32\wkssvc.dll 20:30:54.0656 1828 lanmanworkstation - ok 20:30:54.0671 1828 lbrtfdc - ok 20:30:54.0750 1828 LHidKe (04540f5b4c0760bf6d78311b04439afa) C:\WINDOWS\system32\DRIVERS\LHidKE.Sys 20:30:54.0750 1828 LHidKe - ok 20:30:54.0781 1828 LHidUsbK (1c9414f926e5a8546a58b0e8e1bc5ddc) C:\WINDOWS\system32\Drivers\LHidUsbK.Sys 20:30:54.0781 1828 LHidUsbK - ok 20:30:54.0843 1828 LmHosts (a7db739ae99a796d91580147e919cc59) C:\WINDOWS\System32\lmhsvc.dll 20:30:54.0843 1828 LmHosts - ok 20:30:54.0859 1828 LMouKE (d98216e171e82524d0b9d8f13f7c96ea) C:\WINDOWS\system32\DRIVERS\LMouKE.Sys 20:30:54.0859 1828 LMouKE - ok 20:30:54.0937 1828 lv321av (b65359729bd5221f1dfe535199501f77) C:\WINDOWS\system32\Drivers\lv321av.sys 20:30:54.0984 1828 lv321av - ok 20:30:55.0078 1828 lvmvdrv (9dbbaed68a822747f7d5ffdf53633b63) C:\WINDOWS\system32\DRIVERS\LVMVDrv.sys 20:30:55.0156 1828 lvmvdrv - ok 20:30:55.0250 1828 LVPrcMon (d8cf31431aa398c1d79931203a75332f) C:\WINDOWS\system32\drivers\LVPrcMon.sys 20:30:55.0250 1828 LVPrcMon - ok 20:30:55.0328 1828 LVPrcSrv (aa3dc7cbbf0c5d97003d06bae094370f) c:\program files\common files\logitech\lvmvfm\LVPrcSrv.exe 20:30:55.0343 1828 LVPrcSrv - ok 20:30:55.0390 1828 LVSrvLauncher (5abf78307b24d0bd7f70e2f000926906) C:\Program Files\Common Files\Logitech\SrvLnch\SrvLnch.exe 20:30:55.0390 1828 LVSrvLauncher - ok 20:30:55.0421 1828 LVUSBSta (2a3a8361192de05de7d51d1f04f58b28) C:\WINDOWS\system32\drivers\lvusbsta.sys 20:30:55.0421 1828 LVUSBSta - ok 20:30:55.0484 1828 MDM (11f714f85530a2bd134074dc30e99fca) C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe 20:30:55.0500 1828 MDM - ok 20:30:55.0546 1828 mdmxsdk (e246a32c445056996074a397da56e815) C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys 20:30:55.0546 1828 mdmxsdk - ok 20:30:55.0609 1828 Messenger (986b1ff5814366d71e0ac5755c88f2d3) C:\WINDOWS\System32\msgsvc.dll 20:30:55.0609 1828 Messenger - ok 20:30:55.0640 1828 mfepxe - ok 20:30:55.0687 1828 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys 20:30:55.0687 1828 mnmdd - ok 20:30:55.0812 1828 mnmsrvc (d18f1f0c101d06a1c1adf26eed16fcdd) C:\WINDOWS\system32\mnmsrvc.exe 20:30:55.0812 1828 mnmsrvc - ok 20:30:55.0843 1828 Modem (dfcbad3cec1c5f964962ae10e0bcc8e1) C:\WINDOWS\system32\drivers\Modem.sys 20:30:55.0843 1828 Modem - ok 20:30:55.0875 1828 motmodem (37e5a8c7f9a3b38f113b71ec7ce34f92) C:\WINDOWS\system32\DRIVERS\motmodem.sys 20:30:55.0875 1828 motmodem - ok 20:30:55.0921 1828 Mouclass (35c9e97194c8cfb8430125f8dbc34d04) C:\WINDOWS\system32\DRIVERS\mouclass.sys 20:30:55.0921 1828 Mouclass - ok 20:30:55.0953 1828 mouhid (b1c303e17fb9d46e87a98e4ba6769685) C:\WINDOWS\system32\DRIVERS\mouhid.sys 20:30:55.0953 1828 mouhid - ok 20:30:55.0984 1828 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys 20:30:55.0984 1828 MountMgr - ok 20:30:56.0031 1828 MozillaMaintenance (96aa8ba23142cc8e2b30f3cae0c80254) C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe 20:30:56.0031 1828 MozillaMaintenance - ok 20:30:56.0093 1828 MPE (c0f8e0c2c3c0437cf37c6781896dc3ec) C:\WINDOWS\system32\DRIVERS\MPE.sys 20:30:56.0093 1828 MPE - ok 20:30:56.0140 1828 mraid35x (3f4bb95e5a44f3be34824e8e7caf0737) C:\WINDOWS\system32\DRIVERS\mraid35x.sys 20:30:56.0140 1828 mraid35x - ok 20:30:56.0187 1828 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys 20:30:56.0203 1828 MRxDAV - ok 20:30:56.0250 1828 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 20:30:56.0265 1828 MRxSmb - ok 20:30:56.0343 1828 MSDTC (a137f1470499a205abbb9aafb3b6f2b1) C:\WINDOWS\system32\msdtc.exe 20:30:56.0343 1828 MSDTC - ok 20:30:56.0421 1828 MSDV (1477849772712bac69c144dcf2c9ce81) C:\WINDOWS\system32\DRIVERS\msdv.sys 20:30:56.0421 1828 MSDV - ok 20:30:56.0437 1828 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys 20:30:56.0437 1828 Msfs - ok 20:30:56.0515 1828 MSIServer - ok 20:30:56.0578 1828 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys 20:30:56.0578 1828 MSKSSRV - ok 20:30:56.0609 1828 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys 20:30:56.0609 1828 MSPCLOCK - ok 20:30:56.0656 1828 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys 20:30:56.0656 1828 MSPQM - ok 20:30:56.0671 1828 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys 20:30:56.0671 1828 mssmbios - ok 20:30:56.0718 1828 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys 20:30:56.0718 1828 MSTEE - ok 20:30:56.0765 1828 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys 20:30:56.0765 1828 Mup - ok 20:30:56.0812 1828 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys 20:30:56.0828 1828 NABTSFEC - ok 20:30:56.0906 1828 napagent (0102140028fad045756796e1c685d695) C:\WINDOWS\System32\qagentrt.dll 20:30:56.0921 1828 napagent - ok 20:30:56.0953 1828 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys 20:30:56.0968 1828 NDIS - ok 20:30:56.0984 1828 NdisFilt (1f76996253071cbae0a5ab5d8551ef88) C:\WINDOWS\system32\Drivers\NdisFilt.sys 20:30:56.0984 1828 NdisFilt - ok 20:30:57.0031 1828 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) C:\WINDOWS\system32\DRIVERS\NdisIP.sys 20:30:57.0031 1828 NdisIP - ok 20:30:57.0078 1828 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys 20:30:57.0078 1828 NdisTapi - ok 20:30:57.0109 1828 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys 20:30:57.0109 1828 Ndisuio - ok 20:30:57.0140 1828 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys 20:30:57.0140 1828 NdisWan - ok 20:30:57.0187 1828 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys 20:30:57.0187 1828 NDProxy - ok 20:30:57.0281 1828 Net Driver HPZ12 (a081cb6fb9a12668f233eb5414be3a0e) C:\WINDOWS\system32\HPZinw12.dll 20:30:57.0281 1828 Net Driver HPZ12 - ok 20:30:57.0312 1828 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys 20:30:57.0312 1828 NetBIOS - ok 20:30:57.0375 1828 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys 20:30:57.0390 1828 NetBT - ok 20:30:57.0468 1828 NetDDE (b857ba82860d7ff85ae29b095645563b) C:\WINDOWS\system32\netdde.exe 20:30:57.0468 1828 NetDDE - ok 20:30:57.0484 1828 NetDDEdsdm (b857ba82860d7ff85ae29b095645563b) C:\WINDOWS\system32\netdde.exe 20:30:57.0500 1828 NetDDEdsdm - ok 20:30:57.0578 1828 Netlogon (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe 20:30:57.0578 1828 Netlogon - ok 20:30:57.0656 1828 Netman (13e67b55b3abd7bf3fe7aae5a0f9a9de) C:\WINDOWS\System32\netman.dll 20:30:57.0671 1828 Netman - ok 20:30:57.0718 1828 NETMNT (6a25f27202f3122a44a6b74ee46e7a76) C:\WINDOWS\system32\DRIVERS\NETMNT.sys 20:30:57.0718 1828 NETMNT - ok 20:30:57.0828 1828 NetTcpPortSharing (d34612c5d02d026535b3095d620626ae) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe 20:30:57.0843 1828 NetTcpPortSharing - ok 20:30:57.0890 1828 NIC1394 (e9e47cfb2d461fa0fc75b7a74c6383ea) C:\WINDOWS\system32\DRIVERS\nic1394.sys 20:30:57.0890 1828 NIC1394 - ok 20:30:57.0953 1828 Nla (943337d786a56729263071623bbb9de5) C:\WINDOWS\System32\mswsock.dll 20:30:57.0968 1828 Nla - ok 20:30:58.0015 1828 Nokia USB Generic (5abb6b2461c4eb0afdf1bf7f03963d59) C:\WINDOWS\system32\drivers\nmwcdc.sys 20:30:58.0015 1828 Nokia USB Generic - ok 20:30:58.0046 1828 Nokia USB Modem (353c16d21eec1f11306270040b3713c1) C:\WINDOWS\system32\drivers\nmwcdcm.sys 20:30:58.0046 1828 Nokia USB Modem - ok 20:30:58.0109 1828 Nokia USB Phone Parent (f5b1200c75b160c81e7e48cc0489aa5e) C:\WINDOWS\system32\drivers\nmwcd.sys 20:30:58.0125 1828 Nokia USB Phone Parent - ok 20:30:58.0156 1828 Nokia USB Port (353c16d21eec1f11306270040b3713c1) C:\WINDOWS\system32\drivers\nmwcdcj.sys 20:30:58.0156 1828 Nokia USB Port - ok 20:30:58.0203 1828 npf (6623e51595c0076755c29c00846c4eb2) C:\WINDOWS\system32\drivers\npf.sys 20:30:58.0203 1828 npf - ok 20:30:58.0234 1828 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys 20:30:58.0234 1828 Npfs - ok 20:30:58.0312 1828 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys 20:30:58.0328 1828 Ntfs - ok 20:30:58.0375 1828 NTIDrvr (7f1c1f78d709c4a54cbb46ede7e0b48d) C:\WINDOWS\system32\DRIVERS\NTIDrvr.sys 20:30:58.0375 1828 NTIDrvr - ok 20:30:58.0421 1828 NtLmSsp (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe 20:30:58.0437 1828 NtLmSsp - ok 20:30:58.0531 1828 NtmsSvc (156f64a3345bd23c600655fb4d10bc08) C:\WINDOWS\system32\ntmssvc.dll 20:30:58.0562 1828 NtmsSvc - ok 20:30:58.0609 1828 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys 20:30:58.0609 1828 Null - ok 20:30:58.0656 1828 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys 20:30:58.0656 1828 NwlnkFlt - ok 20:30:58.0687 1828 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys 20:30:58.0687 1828 NwlnkFwd - ok 20:30:58.0796 1828 odserv (785f487a64950f3cb8e9f16253ba3b7b) C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE 20:30:58.0828 1828 odserv - ok 20:30:58.0859 1828 ohci1394 (ca33832df41afb202ee7aeb05145922f) C:\WINDOWS\system32\DRIVERS\ohci1394.sys 20:30:58.0859 1828 ohci1394 - ok 20:30:58.0890 1828 OsaFsLoc (26c4a4b64d1dd8e6fdfb2f4897be029c) C:\WINDOWS\system32\drivers\OsaFsLoc.sys 20:30:58.0906 1828 OsaFsLoc - ok 20:30:58.0937 1828 osaio (9d1177c2a8de936b33d85ff75e8cbf1a) C:\WINDOWS\system32\drivers\osaio.sys 20:30:58.0937 1828 osaio - ok 20:30:59.0000 1828 osanbm (3245bee5176697faf0744a2e1288dc77) C:\WINDOWS\system32\drivers\osanbm.sys 20:30:59.0000 1828 osanbm - ok 20:30:59.0062 1828 ose (5a432a042dae460abe7199b758e8606c) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE 20:30:59.0078 1828 ose - ok 20:30:59.0140 1828 p2pgasvc (937a02981f11b2ce96b1d493c95aed2b) C:\WINDOWS\system32\p2pgasvc.dll 20:30:59.0156 1828 p2pgasvc - ok 20:30:59.0234 1828 p2pimsvc (4a1035cb8f0d57be41873b5183d96cf4) C:\WINDOWS\system32\p2psvc.dll 20:30:59.0265 1828 p2pimsvc - ok 20:30:59.0281 1828 p2psvc (4a1035cb8f0d57be41873b5183d96cf4) C:\WINDOWS\system32\p2psvc.dll 20:30:59.0296 1828 p2psvc - ok 20:30:59.0359 1828 Parport (5575faf8f97ce5e713d108c2a58d7c7c) C:\WINDOWS\system32\drivers\Parport.sys 20:30:59.0359 1828 Parport - ok 20:30:59.0390 1828 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys 20:30:59.0390 1828 PartMgr - ok 20:30:59.0437 1828 ParVdm (70e98b3fd8e963a6a46a2e6247e0bea1) C:\WINDOWS\system32\drivers\ParVdm.sys 20:30:59.0437 1828 ParVdm - ok 20:30:59.0453 1828 PCI (a219903ccf74233761d92bef471a07b1) C:\WINDOWS\system32\DRIVERS\pci.sys 20:30:59.0468 1828 PCI - ok 20:30:59.0484 1828 PCIDump - ok 20:30:59.0515 1828 PCIIde (ccf5f451bb1a5a2a522a76e670000ff0) C:\WINDOWS\system32\DRIVERS\pciide.sys 20:30:59.0531 1828 PCIIde - ok 20:30:59.0562 1828 Pcmcia (9e89ef60e9ee05e3f2eef2da7397f1c1) C:\WINDOWS\system32\DRIVERS\pcmcia.sys 20:30:59.0562 1828 Pcmcia - ok 20:30:59.0593 1828 PDCOMP - ok 20:30:59.0625 1828 PDFRAME - ok 20:30:59.0656 1828 PDRELI - ok 20:30:59.0687 1828 PDRFRAME - ok 20:30:59.0765 1828 perc2 (6c14b9c19ba84f73d3a86dba11133101) C:\WINDOWS\system32\DRIVERS\perc2.sys 20:30:59.0765 1828 perc2 - ok 20:30:59.0781 1828 perc2hib (f50f7c27f131afe7beba13e14a3b9416) C:\WINDOWS\system32\DRIVERS\perc2hib.sys 20:30:59.0781 1828 perc2hib - ok 20:30:59.0906 1828 PlugPlay (65df52f5b8b6e9bbd183505225c37315) C:\WINDOWS\system32\services.exe 20:30:59.0906 1828 PlugPlay - ok 20:31:00.0000 1828 Pml Driver HPZ12 (65bc271f337637731d3c71455ae1f476) C:\WINDOWS\system32\HPZipm12.dll 20:31:00.0000 1828 Pml Driver HPZ12 - ok 20:31:00.0031 1828 PNRPSvc (4a1035cb8f0d57be41873b5183d96cf4) C:\WINDOWS\system32\p2psvc.dll 20:31:00.0031 1828 PNRPSvc - ok 20:31:00.0140 1828 PolicyAgent (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe 20:31:00.0140 1828 PolicyAgent - ok 20:31:00.0203 1828 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys 20:31:00.0203 1828 PptpMiniport - ok 20:31:00.0250 1828 ProtectedStorage (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe 20:31:00.0250 1828 ProtectedStorage - ok 20:31:00.0281 1828 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys 20:31:00.0296 1828 PSched - ok 20:31:00.0328 1828 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys 20:31:00.0328 1828 Ptilink - ok 20:31:00.0375 1828 PxHelp20 (49452bfcec22f36a7a9b9c2181bc3042) C:\WINDOWS\system32\Drivers\PxHelp20.sys 20:31:00.0375 1828 PxHelp20 - ok 20:31:00.0406 1828 ql1080 (0a63fb54039eb5662433caba3b26dba7) C:\WINDOWS\system32\DRIVERS\ql1080.sys 20:31:00.0406 1828 ql1080 - ok 20:31:00.0453 1828 Ql10wnt (6503449e1d43a0ff0201ad5cb1b8c706) C:\WINDOWS\system32\DRIVERS\ql10wnt.sys 20:31:00.0453 1828 Ql10wnt - ok 20:31:00.0468 1828 ql12160 (156ed0ef20c15114ca097a34a30d8a01) C:\WINDOWS\system32\DRIVERS\ql12160.sys 20:31:00.0484 1828 ql12160 - ok 20:31:00.0515 1828 ql1240 (70f016bebde6d29e864c1230a07cc5e6) C:\WINDOWS\system32\DRIVERS\ql1240.sys 20:31:00.0515 1828 ql1240 - ok 20:31:00.0546 1828 ql1280 (907f0aeea6bc451011611e732bd31fcf) C:\WINDOWS\system32\DRIVERS\ql1280.sys 20:31:00.0546 1828 ql1280 - ok 20:31:00.0593 1828 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys 20:31:00.0609 1828 RasAcd - ok 20:31:00.0656 1828 RasAuto (ad188be7bdf94e8df4ca0a55c00a5073) C:\WINDOWS\System32\rasauto.dll 20:31:00.0671 1828 RasAuto - ok 20:31:00.0703 1828 Rasirda (0207d26ddf796a193ccd9f83047bb5fc) C:\WINDOWS\system32\DRIVERS\rasirda.sys 20:31:00.0703 1828 Rasirda - ok 20:31:00.0718 1828 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys 20:31:00.0718 1828 Rasl2tp - ok 20:31:00.0796 1828 RasMan (76a9a3cbeadd68cc57cda5e1d7448235) C:\WINDOWS\System32\rasmans.dll 20:31:00.0796 1828 RasMan - ok 20:31:00.0828 1828 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys 20:31:00.0828 1828 RasPppoe - ok 20:31:00.0859 1828 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys 20:31:00.0859 1828 Raspti - ok 20:31:00.0906 1828 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys 20:31:00.0921 1828 Rdbss - ok 20:31:00.0937 1828 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys 20:31:00.0937 1828 RDPCDD - ok 20:31:01.0015 1828 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys 20:31:01.0031 1828 rdpdr - ok 20:31:01.0093 1828 RDPWD (6589db6e5969f8eee594cf71171c5028) C:\WINDOWS\system32\drivers\RDPWD.sys 20:31:01.0109 1828 RDPWD - ok 20:31:01.0171 1828 RDSessMgr (3c37bf86641bda977c3bf8a840f3b7fa) C:\WINDOWS\system32\sessmgr.exe 20:31:01.0171 1828 RDSessMgr - ok 20:31:01.0218 1828 redbook (f828dd7e1419b6653894a8f97a0094c5) C:\WINDOWS\system32\DRIVERS\redbook.sys 20:31:01.0218 1828 redbook - ok 20:31:01.0312 1828 RegSrvc (1b2857ef12d79a9f9adba14b0637cbf8) C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe 20:31:01.0328 1828 RegSrvc - ok 20:31:01.0453 1828 RemoteAccess (7e699ff5f59b5d9de5390e3c34c67cf5) C:\WINDOWS\System32\mprdim.dll 20:31:01.0453 1828 RemoteAccess - ok 20:31:01.0515 1828 RFCOMM (851c30df2807fcfa21e4c681a7d6440e) C:\WINDOWS\system32\DRIVERS\rfcomm.sys 20:31:01.0515 1828 RFCOMM - ok 20:31:01.0578 1828 RichVideo (a76cddb6d1f25797843e2557a2118e2e) C:\Program Files\CyberLink\Shared Files\RichVideo.exe 20:31:01.0593 1828 RichVideo - ok 20:31:01.0640 1828 RimUsb (616eac1b0e48b236a5a9b8ae07fdb81c) C:\WINDOWS\system32\Drivers\RimUsb.sys 20:31:01.0640 1828 RimUsb - ok 20:31:01.0687 1828 RimVSerPort (2c4fb2e9f039287767c384e46ee91030) C:\WINDOWS\system32\DRIVERS\RimSerial.sys 20:31:01.0687 1828 RimVSerPort - ok 20:31:01.0718 1828 ROOTMODEM (d8b0b4ade32574b2d9c5cc34dc0dbbe7) C:\WINDOWS\system32\Drivers\RootMdm.sys 20:31:01.0718 1828 ROOTMODEM - ok 20:31:01.0812 1828 Roxio UPnP Renderer 10 (85b5159d86ac06ad744ee9d3c288aeee) D:\Program Files\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe 20:31:01.0828 1828 Roxio UPnP Renderer 10 - ok 20:31:01.0875 1828 Roxio Upnp Server 10 (0db43caf2d77b809a86e9d7e1bcc6d76) D:\Program Files\Roxio\Digital Home 10\RoxioUpnpService10.exe 20:31:01.0906 1828 Roxio Upnp Server 10 - ok 20:31:02.0031 1828 RoxLiveShare10 (7958affc64e4f284068eb6575cc64dcf) C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxLiveShare10.exe 20:31:02.0046 1828 RoxLiveShare10 - ok 20:31:02.0078 1828 RoxLiveShare9 - ok 20:31:02.0187 1828 RoxMediaDB10 (ed69cd4ab4be607abf768a60e4ac79da) C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe 20:31:02.0234 1828 RoxMediaDB10 - ok 20:31:02.0265 1828 RoxWatch10 (0da14ee2c0e274fea5a6545181851c16) C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatch10.exe 20:31:02.0265 1828 RoxWatch10 - ok 20:31:02.0328 1828 rpcapd (e51a8d02b4bd33eba1f7a5b76c3766ed) C:\Program Files\WinPcap\rpcapd.exe 20:31:02.0343 1828 rpcapd - ok 20:31:02.0421 1828 RpcLocator (aaed593f84afa419bbae8572af87cf6a) C:\WINDOWS\system32\locator.exe 20:31:02.0421 1828 RpcLocator - ok 20:31:02.0484 1828 RpcSs (6b27a5c03dfb94b4245739065431322c) C:\WINDOWS\System32\rpcss.dll 20:31:02.0484 1828 RpcSs - ok 20:31:02.0531 1828 RSVP (471b3f9741d762abe75e9deea4787e47) C:\WINDOWS\system32\rsvp.exe 20:31:02.0546 1828 RSVP - ok 20:31:02.0609 1828 RxFilter (80cae340f37b52d1cb75ff74e6a087cd) C:\WINDOWS\system32\DRIVERS\RxFilter.sys 20:31:02.0609 1828 RxFilter - ok 20:31:02.0656 1828 s116bus (815445f4676cc96bc9aeec303c727e19) C:\WINDOWS\system32\DRIVERS\s116bus.sys 20:31:02.0671 1828 s116bus - ok 20:31:02.0734 1828 s116mdfl (333d1e0743e6de1779c3c418ac601c3a) C:\WINDOWS\system32\DRIVERS\s116mdfl.sys 20:31:02.0734 1828 s116mdfl - ok 20:31:02.0781 1828 s116mdm (50d6e5b021e9ec7553ab8a3553cc1b6b) C:\WINDOWS\system32\DRIVERS\s116mdm.sys 20:31:02.0796 1828 s116mdm - ok 20:31:02.0828 1828 s116mgmt (1589aa53e43f8d193a7d4d580d3ffa95) C:\WINDOWS\system32\DRIVERS\s116mgmt.sys 20:31:02.0828 1828 s116mgmt - ok 20:31:02.0859 1828 s116nd5 (306f85733671fe507470f0273025e768) C:\WINDOWS\system32\DRIVERS\s116nd5.sys 20:31:02.0875 1828 s116nd5 - ok 20:31:02.0921 1828 s116obex (ec32601f04a5a5de89315d0f55e73d66) C:\WINDOWS\system32\DRIVERS\s116obex.sys 20:31:02.0937 1828 s116obex - ok 20:31:02.0968 1828 s116unic (32e3ecb4b2b5887426eaf241a8149cde) C:\WINDOWS\system32\DRIVERS\s116unic.sys 20:31:02.0984 1828 s116unic - ok 20:31:03.0078 1828 S24EventMonitor (6c5155cc0e805c7be6028bff7ac14524) C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe 20:31:03.0109 1828 S24EventMonitor - ok 20:31:03.0156 1828 s24trans (1cc074e0d48383d4e9bffc6a26c2a58a) C:\WINDOWS\system32\DRIVERS\s24trans.sys 20:31:03.0156 1828 s24trans - ok 20:31:03.0234 1828 Sage SData Service (daf4d47e625670f3952687210100d2cb) C:\Program Files\Common Files\Sage SData\Sage.SData.Service.exe 20:31:03.0234 1828 Sage SData Service - ok 20:31:03.0343 1828 SamSs (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe 20:31:03.0359 1828 SamSs - ok 20:31:03.0421 1828 SCardSvr (86d007e7a654b9a71d1d7d856b104353) C:\WINDOWS\System32\SCardSvr.exe 20:31:03.0437 1828 SCardSvr - ok 20:31:03.0500 1828 SCDEmu (65b47e763ed55f35f787a7918272d155) C:\WINDOWS\system32\drivers\SCDEmu.sys 20:31:03.0500 1828 SCDEmu - ok 20:31:03.0562 1828 Schedule (0a9a7365a1ca4319aa7c1d6cd8e4eafa) C:\WINDOWS\system32\schedsvc.dll 20:31:03.0562 1828 Schedule - ok 20:31:03.0640 1828 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys 20:31:03.0640 1828 Secdrv - ok 20:31:03.0718 1828 seclogon (cbe612e2bb6a10e3563336191eda1250) C:\WINDOWS\System32\seclogon.dll 20:31:03.0718 1828 seclogon - ok 20:31:03.0796 1828 SENS (7fdd5d0684eca8c1f68b4d99d124dcd0) C:\WINDOWS\system32\sens.dll 20:31:03.0812 1828 SENS - ok 20:31:03.0859 1828 Serial (cca207a8896d4c6a0c9ce29a4ae411a7) C:\WINDOWS\system32\drivers\Serial.sys 20:31:03.0859 1828 Serial - ok 20:31:03.0937 1828 ServiceLayer (4c0a4fefd62519552c0e5171f418c4bc) C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe 20:31:03.0953 1828 ServiceLayer - ok 20:31:04.0140 1828 SessionLauncher - ok 20:31:04.0171 1828 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys 20:31:04.0171 1828 Sfloppy - ok 20:31:04.0265 1828 SharedAccess (83f41d0d89645d7235c051ab1d9523ac) C:\WINDOWS\System32\ipnathlp.dll 20:31:04.0296 1828 SharedAccess - ok 20:31:04.0343 1828 ShellHWDetection (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll 20:31:04.0343 1828 ShellHWDetection - ok 20:31:04.0359 1828 Simbad - ok 20:31:04.0421 1828 sisagp (6b33d0ebd30db32e27d1d78fe946a754) C:\WINDOWS\system32\DRIVERS\sisagp.sys 20:31:04.0421 1828 sisagp - ok 20:31:04.0468 1828 SkypeUpdate (579ba0a911ff5ea70cb604cd3b744b0a) C:\Program Files\Skype\Updater\Updater.exe 20:31:04.0484 1828 SkypeUpdate - ok 20:31:04.0531 1828 SLIP (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys 20:31:04.0531 1828 SLIP - ok 20:31:04.0562 1828 SMCB000 (56642f0391ca5176f8cc1432e559ad00) C:\WINDOWS\system32\DRIVERS\hidsmsc.sys 20:31:04.0562 1828 SMCB000 - ok 20:31:04.0593 1828 SMCIRDA (62556d170f22c43a544481e4ee16d2e2) C:\WINDOWS\system32\DRIVERS\smcirda.sys 20:31:04.0593 1828 SMCIRDA - ok 20:31:04.0671 1828 Sparrow (83c0f71f86d3bdaf915685f3d568b20e) C:\WINDOWS\system32\DRIVERS\sparrow.sys 20:31:04.0687 1828 Sparrow - ok 20:31:04.0718 1828 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys 20:31:04.0718 1828 splitter - ok 20:31:04.0781 1828 Spooler (60784f891563fb1b767f70117fc2428f) C:\WINDOWS\system32\spoolsv.exe 20:31:04.0781 1828 Spooler - ok 20:31:04.0843 1828 sptd (d15da1ba189770d93eea2d7e18f95af9) C:\WINDOWS\System32\Drivers\sptd.sys 20:31:04.0875 1828 sptd - ok 20:31:04.0906 1828 sr (76bb022c2fb6902fd5bdd4f78fc13a5d) C:\WINDOWS\system32\DRIVERS\sr.sys 20:31:04.0906 1828 sr - ok 20:31:04.0968 1828 srservice (3805df0ac4296a34ba4bf93b346cc378) C:\WINDOWS\system32\srsvc.dll 20:31:04.0984 1828 srservice - ok 20:31:05.0015 1828 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys 20:31:05.0015 1828 Srv - ok 20:31:05.0046 1828 SSDPSRV (0a5679b3714edab99e357057ee88fca6) C:\WINDOWS\System32\ssdpsrv.dll 20:31:05.0046 1828 SSDPSRV - ok 20:31:05.0109 1828 ssm_bus (df5c19f053eff7f8ba25d73aea899656) C:\WINDOWS\system32\DRIVERS\ssm_bus.sys 20:31:05.0125 1828 ssm_bus - ok 20:31:05.0171 1828 ssm_mdfl (5347169fa449eabc4d0728ae39fab926) C:\WINDOWS\system32\DRIVERS\ssm_mdfl.sys 20:31:05.0171 1828 ssm_mdfl - ok 20:31:05.0203 1828 ssm_mdm (7aae23dd105eed15c4f45fc269fa42a9) C:\WINDOWS\system32\DRIVERS\ssm_mdm.sys 20:31:05.0218 1828 ssm_mdm - ok 20:31:05.0250 1828 SSPORT - ok 20:31:05.0312 1828 StarOpen (306521935042fc0a6988d528643619b3) C:\WINDOWS\system32\drivers\StarOpen.sys 20:31:05.0312 1828 StarOpen - ok 20:31:05.0359 1828 StillCam (a9573045baa16eab9b1085205b82f1ed) C:\WINDOWS\system32\DRIVERS\serscan.sys 20:31:05.0359 1828 StillCam - ok 20:31:05.0421 1828 stisvc (8bad69cbac032d4bbacfce0306174c30) C:\WINDOWS\system32\wiaservc.dll 20:31:05.0437 1828 stisvc - ok 20:31:05.0500 1828 streamip (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys 20:31:05.0500 1828 streamip - ok 20:31:05.0531 1828 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys 20:31:05.0531 1828 swenum - ok 20:31:05.0593 1828 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys 20:31:05.0593 1828 swmidi - ok 20:31:05.0687 1828 SwPrv - ok 20:31:05.0765 1828 symc810 (1ff3217614018630d0a6758630fc698c) C:\WINDOWS\system32\DRIVERS\symc810.sys 20:31:05.0765 1828 symc810 - ok 20:31:05.0781 1828 symc8xx (070e001d95cf725186ef8b20335f933c) C:\WINDOWS\system32\DRIVERS\symc8xx.sys 20:31:05.0781 1828 symc8xx - ok 20:31:05.0812 1828 sym_hi (80ac1c4abbe2df3b738bf15517a51f2c) C:\WINDOWS\system32\DRIVERS\sym_hi.sys 20:31:05.0812 1828 sym_hi - ok 20:31:05.0843 1828 sym_u3 (bf4fab949a382a8e105f46ebb4937058) C:\WINDOWS\system32\DRIVERS\sym_u3.sys 20:31:05.0843 1828 sym_u3 - ok 20:31:05.0906 1828 SynTP (a63401d180863a2cefce51798542ae5f) C:\WINDOWS\system32\DRIVERS\SynTP.sys 20:31:05.0906 1828 SynTP - ok 20:31:05.0937 1828 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys 20:31:05.0953 1828 sysaudio - ok 20:31:06.0015 1828 SysmonLog (c7abbc59b43274b1109df6b24d617051) C:\WINDOWS\system32\smlogsvc.exe 20:31:06.0031 1828 SysmonLog - ok 20:31:06.0296 1828 TabletServicePen (099aee120cac4a43ce307a828998392f) C:\WINDOWS\system32\Pen_Tablet.exe 20:31:06.0453 1828 TabletServicePen - ok 20:31:06.0578 1828 TapiSrv (3cb78c17bb664637787c9a1c98f79c38) C:\WINDOWS\System32\tapisrv.dll 20:31:06.0593 1828 TapiSrv - ok 20:31:06.0656 1828 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys 20:31:06.0671 1828 Tcpip - ok 20:31:06.0703 1828 Tcpip6 (4e53bbcc4be37d7a4bd6ef1098c89ff7) C:\WINDOWS\system32\DRIVERS\tcpip6.sys 20:31:06.0703 1828 Tcpip6 - ok 20:31:06.0765 1828 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys 20:31:06.0765 1828 TDPIPE - ok 20:31:06.0796 1828 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys 20:31:06.0796 1828 TDTCP - ok 20:31:06.0828 1828 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys 20:31:06.0828 1828 TermDD - ok 20:31:06.0968 1828 TermService (ff3477c03be7201c294c35f684b3479f) C:\WINDOWS\System32\termsrv.dll 20:31:07.0000 1828 TermService - ok 20:31:07.0031 1828 Themes (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll 20:31:07.0031 1828 Themes - ok 20:31:07.0109 1828 tifm21 (0edc3cf7b38f4260eb006c38e4a44de4) C:\WINDOWS\system32\drivers\tifm21.sys 20:31:07.0109 1828 tifm21 - ok 20:31:07.0171 1828 TosIde (f2790f6af01321b172aa62f8e1e187d9) C:\WINDOWS\system32\DRIVERS\toside.sys 20:31:07.0171 1828 TosIde - ok 20:31:07.0250 1828 TrkWks (55bca12f7f523d35ca3cb833c725f54e) C:\WINDOWS\system32\trkwks.dll 20:31:07.0250 1828 TrkWks - ok 20:31:07.0343 1828 TuneUp.Defrag (6a29cd69d1128bdf49a705befc614a5b) C:\WINDOWS\System32\TuneUpDefragService.exe 20:31:07.0359 1828 TuneUp.Defrag - ok 20:31:07.0421 1828 TuneUp.ProgramStatisticsSvc (51ee2913ed525de18fda96dccbc5386a) C:\WINDOWS\System32\TUProgSt.exe 20:31:07.0453 1828 TuneUp.ProgramStatisticsSvc - ok 20:31:07.0500 1828 tunmp (8f861eda21c05857eb8197300a92501c) C:\WINDOWS\system32\DRIVERS\tunmp.sys 20:31:07.0500 1828 tunmp - ok 20:31:07.0546 1828 UBHelper (e0c67be430c6de490d6ccaecfa071f9e) C:\WINDOWS\system32\drivers\UBHelper.sys 20:31:07.0546 1828 UBHelper - ok 20:31:07.0609 1828 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys 20:31:07.0609 1828 Udfs - ok 20:31:07.0656 1828 ultra (1b698a51cd528d8da4ffaed66dfc51b9) C:\WINDOWS\system32\DRIVERS\ultra.sys 20:31:07.0656 1828 ultra - ok 20:31:07.0703 1828 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys 20:31:07.0718 1828 Update - ok 20:31:07.0828 1828 upnphost (1ebafeb9a3fbdc41b8d9c7f0f687ad91) C:\WINDOWS\System32\upnphost.dll 20:31:07.0843 1828 upnphost - ok 20:31:07.0921 1828 UPS (05365fb38fca1e98f7a566aaaf5d1815) C:\WINDOWS\System32\ups.exe 20:31:07.0921 1828 UPS - ok 20:31:07.0984 1828 USBAAPL (5c2bdc152bbab34f36473deaf7713f22) C:\WINDOWS\system32\Drivers\usbaapl.sys 20:31:07.0984 1828 USBAAPL - ok 20:31:08.0046 1828 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys 20:31:08.0046 1828 usbccgp - ok 20:31:08.0078 1828 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys 20:31:08.0078 1828 usbehci - ok 20:31:08.0125 1828 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys 20:31:08.0125 1828 usbhub - ok 20:31:08.0171 1828 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys 20:31:08.0171 1828 usbprint - ok 20:31:08.0187 1828 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys 20:31:08.0187 1828 usbscan - ok 20:31:08.0265 1828 usbser (1c888b000c2f9492f4b15b5b6b84873e) C:\WINDOWS\system32\DRIVERS\usbser.sys 20:31:08.0265 1828 usbser - ok 20:31:08.0281 1828 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS 20:31:08.0281 1828 USBSTOR - ok 20:31:08.0343 1828 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys 20:31:08.0343 1828 usbuhci - ok 20:31:08.0390 1828 UxTuneUp (2e2e93041c8058bc7de6f0d743c4a0c6) C:\WINDOWS\System32\uxtuneup.dll 20:31:08.0390 1828 UxTuneUp - ok 20:31:08.0421 1828 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys 20:31:08.0437 1828 VgaSave - ok 20:31:08.0468 1828 viaagp (754292ce5848b3738281b4f3607eaef4) C:\WINDOWS\system32\DRIVERS\viaagp.sys 20:31:08.0468 1828 viaagp - ok 20:31:08.0484 1828 ViaIde (3b3efcda263b8ac14fdf9cbdd0791b2e) C:\WINDOWS\system32\DRIVERS\viaide.sys 20:31:08.0484 1828 ViaIde - ok 20:31:08.0531 1828 VolSnap (4c8fcb5cc53aab716d810740fe59d025) C:\WINDOWS\system32\drivers\VolSnap.sys 20:31:08.0531 1828 VolSnap - ok 20:31:08.0609 1828 VSS (7a9db3a67c333bf0bd42e42b8596854b) C:\WINDOWS\System32\vssvc.exe 20:31:08.0640 1828 VSS - ok 20:31:08.0687 1828 W32Time (54af4b1d5459500ef0937f6d33b1914f) C:\WINDOWS\system32\w32time.dll 20:31:08.0703 1828 W32Time - ok 20:31:08.0781 1828 w39n51 (b1f126e7e28877106d60e6ff3998d033) C:\WINDOWS\system32\DRIVERS\w39n51.sys 20:31:08.0843 1828 w39n51 - ok 20:31:08.0906 1828 wacmoumonitor (8724531219ae3f9e3729012b61dce527) C:\WINDOWS\system32\DRIVERS\wacmoumonitor.sys 20:31:08.0906 1828 wacmoumonitor - ok 20:31:08.0953 1828 wacommousefilter (427a8bc96f16c40df81c2d2f4edd32dd) C:\WINDOWS\system32\DRIVERS\wacommousefilter.sys 20:31:08.0953 1828 wacommousefilter - ok 20:31:09.0000 1828 wacomvhid (51d580f30d1a1f2ea4965af6abc2bcb2) C:\WINDOWS\system32\DRIVERS\wacomvhid.sys 20:31:09.0000 1828 wacomvhid - ok 20:31:09.0046 1828 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys 20:31:09.0046 1828 Wanarp - ok 20:31:09.0109 1828 Wdf01000 (d918617b46457b9ac28027722e30f647) C:\WINDOWS\system32\DRIVERS\Wdf01000.sys 20:31:09.0125 1828 Wdf01000 - ok 20:31:09.0140 1828 WDICA - ok 20:31:09.0203 1828 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys 20:31:09.0218 1828 wdmaud - ok 20:31:09.0296 1828 WebClient (77a354e28153ad2d5e120a5a8687bc06) C:\WINDOWS\System32\webclnt.dll 20:31:09.0312 1828 WebClient - ok 20:31:09.0359 1828 winachsf (e0a00b06ea067c84e124b407dffa1af1) C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys 20:31:09.0390 1828 winachsf - ok 20:31:09.0453 1828 WinDriver6 (94e4312d546048bf31604a8b2ad13fc0) C:\WINDOWS\system32\drivers\windrvr6.sys 20:31:09.0468 1828 WinDriver6 - ok 20:31:09.0515 1828 winmgmt (2d0e4ed081963804ccc196a0929275b5) C:\WINDOWS\system32\wbem\WMIsvc.dll 20:31:09.0531 1828 winmgmt - ok 20:31:09.0640 1828 WmdmPmSN (c51b4a5c05a5475708e3c81c7765b71d) C:\WINDOWS\system32\MsPMSNSv.dll 20:31:09.0640 1828 WmdmPmSN - ok 20:31:09.0687 1828 WmiAcpi (c42584fd66ce9e17403aebca199f7bdb) C:\WINDOWS\system32\DRIVERS\wmiacpi.sys 20:31:09.0687 1828 WmiAcpi - ok 20:31:09.0750 1828 WmiApSrv (e0673f1106e62a68d2257e376079f821) C:\WINDOWS\system32\wbem\wmiapsrv.exe 20:31:09.0765 1828 WmiApSrv - ok 20:31:09.0906 1828 WMPNetworkSvc (f74e3d9a7fa9556c3bbb14d4e5e63d3b) C:\Program Files\Windows Media Player\WMPNetwk.exe 20:31:09.0937 1828 WMPNetworkSvc - ok 20:31:10.0093 1828 WPFFontCache_v0400 (dcf3e3edf5109ee8bc02fe6e1f045795) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe 20:31:10.0125 1828 WPFFontCache_v0400 - ok 20:31:10.0187 1828 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys 20:31:10.0187 1828 WS2IFSL - ok 20:31:10.0234 1828 wscsvc (7c278e6408d1dce642230c0585a854d5) C:\WINDOWS\system32\wscsvc.dll 20:31:10.0234 1828 wscsvc - ok 20:31:10.0296 1828 WSTCODEC (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS 20:31:10.0296 1828 WSTCODEC - ok 20:31:10.0359 1828 WTouchService (77a3988cf9b5848bcbc9fb6a79508a56) C:\Program Files\WTouch\WTouchService.exe 20:31:10.0375 1828 WTouchService - ok 20:31:10.0421 1828 wuauserv (35321fb577cdc98ce3eb3a3eb9e4610a) C:\WINDOWS\system32\wuauserv.dll 20:31:10.0421 1828 wuauserv - ok 20:31:10.0468 1828 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys 20:31:10.0468 1828 WudfPf - ok 20:31:10.0500 1828 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys 20:31:10.0515 1828 WudfRd - ok 20:31:10.0625 1828 WudfSvc (05231c04253c5bc30b26cbaae680ed89) C:\WINDOWS\System32\WUDFSvc.dll 20:31:10.0625 1828 WudfSvc - ok 20:31:10.0687 1828 WZCSVC (81dc3f549f44b1c1fff022dec9ecf30b) C:\WINDOWS\System32\wzcsvc.dll 20:31:10.0703 1828 WZCSVC - ok 20:31:10.0765 1828 xmlprov (295d21f14c335b53cb8154e5b1f892b9) C:\WINDOWS\System32\xmlprov.dll 20:31:10.0765 1828 xmlprov - ok 20:31:10.0921 1828 MBR (0x1B8) (99852d5c3a78447c3d6d82b6155fe848) \Device\Harddisk0\DR0 20:31:14.0640 1828 \Device\Harddisk0\DR0 - ok 20:31:14.0656 1828 Boot (0x1200) (a1993caab0e34d5aa296d7d6192b13ce) \Device\Harddisk0\DR0\Partition0 20:31:14.0656 1828 \Device\Harddisk0\DR0\Partition0 - ok 20:31:14.0703 1828 Boot (0x1200) (80549d3724edff4401e62c3e7b0d60bb) \Device\Harddisk0\DR0\Partition1 20:31:14.0703 1828 \Device\Harddisk0\DR0\Partition1 - ok 20:31:14.0703 1828 ============================================================ 20:31:14.0703 1828 Scan finished 20:31:14.0703 1828 ============================================================ 20:31:14.0750 0332 Detected object count: 0 20:31:14.0750 0332 Actual detected object count: 0 20:31:49.0281 1128 Deinitialize success
please run the following:


Click here to download HJTInstall.exe
Please follow the prompts to ensure it is installed in the proper folder and
a shortcut is created.
  • Save HJTInstall.exe to your desktop.
  • Doubleclick on the HJTInstall.exe icon on your desktop.
  • By default it will install to C:\Program Files\Trend Micro\HijackThis.
  • Continue to click Next in the setup dialogue boxes until you get to the Select Addition Tasks dialogue.
  • Put a check by Create a desktop icon then click Next again.
  • Continue to follow the rest of the prompts from there.
  • At the final dialogue box click Finish and it will launch Hijack This.
  • Click on the Do a system scan and save a logfile button. It will scan and the log should open in notepad.
  • Click on "Edit > Select All" then click on "Edit > Copy" to copy the entire contents of the log.
  • Come back here to this thread and Paste the log in your next reply.

  • DO NOT have Hijack This fix anything yet. Most of what it finds will be harmless or even required.
Here's the Hijack log:

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:57:34, on 21/07/2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Safe mode with network support

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\Administrator\Desktop\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://global.acer.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (file missing)
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (file missing)
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O4 - HKLM\..\Run: [LaunchApp] Alaunch
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [ePower_DMC] C:\Acer\Empowering Technology\ePower\ePower_DMC.exe
O4 - HKLM\..\Run: [Acer ePower Management] C:\Acer\Empowering Technology\ePower\Acer ePower Management.exe boot
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE
O4 - HKLM\..\Run: [eRecoveryService] C:\Acer\Empowering Technology\eRecovery\Monitor.exe
O4 - HKLM\..\Run: [ADMTray.exe] "C:\Acer\Empowering Technology\admtray.exe"
O4 - HKLM\..\Run: [Samsung LBP SM] "C:\WINDOWS\Samsung\LaserSMMgr\ssmmgr.exe" /autorun
O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
O4 - HKLM\..\Run: [MFP1815_S2P] C:\PROGRAM FILES\DELL\DELL LASER MFP 1815\PSU\Scan2Pc.exe
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files\DELL\Dell Laser MFP 1815\PaperPort\pptd40nt.exe"
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files\DELL\Dell Laser MFP 1815\PaperPort\IndexSearch.exe"
O4 - HKLM\..\Run: [NSLauncher] C:\Program Files\Nokia\Nokia Software Launcher\NSLauncher.exe /startup
O4 - HKLM\..\Run: [ALDI Photo Service] "C:\Program Files\ALDI Photo Service\ALDI_Photo_Service\FotoSuite.exe" /autorun
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatchTray10.exe"
O4 - HKLM\..\Run: [DMXLauncher] "D:\Program Files\Roxio\CinePlayer\DMXLauncher.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"
O4 - HKLM\..\Run: [RIMBBLaunchAgent.exe] C:\Program Files\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [DLPSP] "C:\Program Files\Dell Printers\Additional Color Laser Software\Status Monitor\DLPSP.EXE"
O4 - HKLM\..\Run: [DLUPDR] "C:\Program Files\Dell Printers\Additional Color Laser Software\Updater\DLUPDR.EXE"
O4 - HKLM\..\Run: [DLQLU] "C:\Program Files\Dell Printers\Additional Color Laser Software\Launcher\DLQLU.EXE" /S
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [AcerOrbicamRibbon] "C:\Program Files\Acer\OrbiCam10\OrbiCam.exe" /hide
O4 - HKLM\..\Run: [LVCOMSX] "C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe"
O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_11_3_300_262_Plugin.exe -update plugin
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O4 - Global Startup: Personal Coach.lnk = ?
O4 - Global Startup: Audible Download Manager.lnk = C:\Program Files\Audible\Bin\AudibleDownloadHelper.exe
O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: Show or hide HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat…b?1165880133343
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) - http://download.eset.com/special/eos/OnlineScanner.cab
O16 - DPF: {A1F35586-A5A8-4D37-947A-81875350B11F} (Bonusprint Image Uploader Version 4.5 Control) - http://webalbum.bonusprint.com/ukipc01/dow…geUploader4.cab
O16 - DPF: {A9CF3378-D60E-40A8-927D-7EA0D5B0AA98} (Bonusprint Image Uploader Version 6.x Control) - http://webalbum.bonusprint.com/ukipc01/dow…geUploader6.cab
O16 - DPF: {BF6BBE9A-0656-4598-A0CD-32DAC03959B5} (Image Uploader 3.0 Control) - http://www.bootsphoto.com/wpp/boots/app/opcuploader.cab
O16 - DPF: {D821DC4A-0814-435E-9820-661C543A4679} (CRLDownloadWrapper Class) - http://drmlicense.one.microsoft.com/crlupdate/en/crlocx.ocx
O16 - DPF: {EDFCB7CB-942C-4822-AF14-F0B687409848} (Image Uploader Control) - http://www.mypix.com/uk/uk/importer/ImageUploader4.cab
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AdminWorks Agent X6 (AWService) - Avocent Inc. - C:\Acer\Empowering Technology\admServ.exe
O23 - Service: Computer Backup (MyPC Backup) (BackupStack) - Just Develop It - C:\Program Files\MyPC Backup\BackupStack.exe
O23 - Service: BGRaSvc - Unknown owner - C:\Program Files\BullGuard Software\BullGuard\support\bgrasvc.exe (file missing)
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - c:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Dell Printer Status Watcher (DLPWD) - Dell Inc. - C:\Program Files\Dell Printers\Additional Color Laser Software\Status Monitor\DLPWDNT.EXE
O23 - Service: Dell Printer Status Database (DLSDB) - Dell Inc. - C:\Program Files\Dell Printers\Additional Color Laser Software\Status Monitor\DLSDBNT.EXE
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Logitech Process Monitor (LVPrcSrv) - Logitech - c:\program files\common files\logitech\lvmvfm\LVPrcSrv.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\Logitech\SrvLnch\SrvLnch.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: Roxio UPnP Renderer 10 - Sonic Solutions - D:\Program Files\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe
O23 - Service: Roxio Upnp Server 10 - Sonic Solutions - D:\Program Files\Roxio\Digital Home 10\RoxioUpnpService10.exe
O23 - Service: LiveShare P2P Server 10 (RoxLiveShare10) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxLiveShare10.exe
O23 - Service: LiveShare P2P Server 9 (RoxLiveShare9) - Unknown owner - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe (file missing)
O23 - Service: RoxMediaDB10 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe
O23 - Service: Roxio Hard Drive Watcher 10 (RoxWatch10) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatch10.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: Intel® PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Sage SData Service - Sage (UK) Limited - C:\Program Files\Common Files\Sage SData\Sage.SData.Service.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
O23 - Service: SessionLauncher - Unknown owner - C:\DOCUME~1\GABRIE~1\LOCALS~1\Temp\DX9\SessionLauncher.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: TabletServicePen - Wacom Technology, Corp. - C:\WINDOWS\system32\Pen_Tablet.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software - C:\WINDOWS\System32\TuneUpDefragService.exe
O23 - Service: TuneUp Program Statistics Service (TuneUp.ProgramStatisticsSvc) - TuneUp Software - C:\WINDOWS\System32\TUProgSt.exe
O23 - Service: WTouch Service (WTouchService) - Wacom Technology, Corp. - C:\Program Files\WTouch\WTouchService.exe

–
End of file - 15498 bytes
there's no sign of that ALOT toolbar that was causing issues earlier, there's no indication of any malware left, but HJT doesn't show us everything anymore, but it's still good for errant toolbars. When you boot normally, and your desktop loads, are all the icons present? Are all the programs listed in your start menu? What happens when you try to run a program in normal mode?
All the icons are present, but when I click on anything, nothing happens. Plus the programs which should normally load on bootup and appear on the taskbar are not present, only the clock. It's like it has frozen but I can still move the mouse around the screen - however I've had to use a mouse as the trackpad and the keyboard do not work when it boots up normally. I hope that helps.
do you get any error messages at all?


please make sure you follow these directions exactly


  • Please download Junction.zip and save it to your desktop.
  • Unzip it and put junction.exe in the Windows directory (C:\WINDOWS).
  • Now go to Start > Run to open a run box > Copy and paste the following command in the open run box and click OK:

    cmd /c junction -s c:\ >log.txt&log.txt& del log.txt

  • A command window will open and the system will be scanned.
  • Wait until a log file opens.
  • Copy and paste or attach the content of it in your next reply

also try this

Download Inherit and save it to your desk top
Drag each of the exe files that you are unable to run into Inherit.exe (must be the exe - not the shortcut)
Then wait for it to say "OK"

(the exes will be in your Program Files folder, so copy inherit.exe to the Program Files folder)

see if you can get any programs to run in Normal Mode - try OTL
In relation to error messages the following appear: 1. DAEMON TOOLS LITE: this program requires at least Windows 2000 with SPTD 1.51 or higher. Kernel debugger must be deactivated. 2. ATI GRAPHICS: You do not have permission to change CATALYST Control Centre Settings. Please contact your administrator for further help. Note: The egg timer is also continually on. Here's the junction log file which was run in safe mode: Junction v1.06 - Windows junction creator and reparse point viewer Copyright © 2000-2010 Mark Russinovich Sysinternals - www.sysinternals.com Failed to open \\?\c:\\pagefile.sys: Access is denied. … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … … .No reparse points found. As to the last instruction, even when the program opens in normal mode, the keyboard and trackpad do not work so am unable to enter any data or the window freezes shortly after opening.

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI