This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

Slow Internet [Solved]

69 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

OK then we are going to go ahead and clean up tools and move on. If you have any further problems with it we can come back to it after we address the other machines. If we find anything along the way on the other machines that would require coming back to this machine then we will. Deal?

I will post a second reply in a moment to give you instructions for logs for machine #2.

——————————

The following will implement some cleanup procedures as well as reset System Restore points:
  • Click the Windows Key + R to open the Run box.
  • Now type Combofix /uninstall in the runbox and click OK. Note the space between the X and the U, it needs to be there.
  • [external image: Posted Image]

If there are any remaining tools or logs on your desktop you can right-click and delete them.


———————————

Please follow these simple steps in order to keep your computer malware free and secure:

Use and Update your AntiVirus Software
It is very important that your computer has an anti-virus software running on your machine. This alone can save you a lot of trouble with malware in the future. It is imperitive that you update your Antivirus software at least once a week (Even more if you wish). If you do not update your antivirus software then it will not be able to catch any of the new variants that may come out.

Use a Firewall
I can not stress how important it is that you use a Firewall on your computer. Without a firewall your computer is succeptible to being hacked and taken over. I am very serious about this. Simply using a Firewall in its default configuration can lower your risk greatly.

Use only one antivirus and one firewall on your machine
Having more than one anti-virus program and one firewall on your machine, even if only one is running, can cause conflicts and slowdowns in the performance of the machine.

If you need more information on free anti-virus or firewall options please let me know and I will give you some recommendations.

Make your Internet Explorer more secure
This can be done by following these simple instructions:
1. From within Internet Explorer click on the Tools menu and then click on Options.
2. Click once on the Security tab
3. Click once on the Internet icon so it becomes highlighted.
4. Click once on the Custom Level button.
5. Change the Download signed ActiveX controls to Prompt
6. Change the Download unsigned ActiveX controls to Disable
7. Change the Initialize and script ActiveX controls not marked as safe to Disable
8. Change the Installation of desktop items to Prompt
9. Change the Launching programs and files in an IFRAME to Prompt
10. Change the Navigate sub-frames across different domains to Prompt
11. When all these settings have been made, click on the OK button.
12. If it prompts you as to whether or not you want to save the settings, press the Yes button.
13. Next press the Apply button and then the OK to exit the Internet Properties page.

Keep your Java, Adobe Reader and Adobe Flash Up to Date
Older versions of these programs can contain security vulnerabilities. It is very important to keep them updated.

Update and Run Malwarebytes Anti-Malware
Scan your computer with this program on a regular basis just as you would an antivirus software making sure you update definitions each time you scan.

To simplify making sure you have the latest version of many of your security programs and applications, you may want to consider:
Secunia's Personal Software Inspector (PSI). It is a free utility that scans your computer for installed applications and checks to see if they have the latest security patches and updates. If it finds any applications with possible security issues, links and/or instructions are provided for the necessariy updates.

Filehippo's Update Checker. It is free utilitiy that scan your computer for installed software, checks the versions and then sends this information to see if there are any newer releases. Available software updates are displayed and you can decide which ones to download and install. Among many other types of programs, they includes a number of the Anti-Spyware, Firewall/Security and Anti-Virus programs that have been recommended (though not all of them). Note: Definition files should be updated from within the programs themselves. The Update Checker look for newer versions of the software program, not definition files.

I would suggest you read:
Tony Klein's excellent article: How I got Infected in the First Place
PC Safety and Security–What Do I Need?
How to Prevent Malware
OK, on to machine #2! :) DDS logs are a lot more condensed and are easier for me to interpret than OTL logs and in most cases contain all the information I'll need. If we need an OTL log (which has a lot more info in it but is also a lot lengthier and takes a lot longer to research and rarely yields much more than a DDS log), I'll get that from you along the way. This will speed up the process a little for us today and hopefully we can have machine #2 cleared up for you this weekend and be on to machine #3 with any luck.


Download and Run DDS by sUBs

We need to see some information about what is happening in your machine. Please perform the following scan:
  • Download DDS by sUBs from one of the following links. Save it to your desktop.
    • DDS.com
    • DDS.pif
  • Double click on the DDS icon, allow it to run.
  • A small box will open, with an explaination about the tool. No input is needed, the scan is running.
  • Notepad will open with the results.
  • Follow the instructions that pop up for posting the results.
  • Close the program window, and delete the program from your desktop.
Please note: You may have to disable any script protection running if the scan fails to run. After downloading the tool, disconnect from the internet and disable all antivirus protection. Run the scan, enable your A/V and reconnect to the internet.

Information on A/V control HERE



Please read carefully and follow these steps. There is a difference between what you see in one of the images below and what I need you to do.
We are only creating a log - I do NOT want you to "cure" or try to fix anything in this step. It is very important that you don't choose Cure when presented with that option.

  • Download TDSSKiller and save it to your Desktop.
  • Extract its contents to your desktop.
  • Once extracted, open the TDSSKiller folder and doubleclick on TDSSKiller.exe to run the application, then on Start Scan.


    🖼Click to load external image (Posted Image)

  • If an infected file is detected, the default action will be Cure but I want you to choose SKIP instead , click on Continue.


    🖼Click to load external image (Posted Image)

  • If a suspicious file is detected, the default action will be Skip, click on Continue.


    🖼Click to load external image (Posted Image)

  • It may ask you to reboot the computer to complete the process. Click on Reboot Now.


    🖼Click to load external image (Posted Image)

  • If no reboot is require, click on Report. A log file should appear. Please copy and paste the contents of that file here.
  • If a reboot is required, the report can also be found in your root directory, (usually C:\ folder) in the form of "TDSSKiller.[Version]_[Date]_[Time]_log.txt". Please copy and paste the contents of that file here.
Thanks for all the help with Computer #1. Here are the logs for Computer #2: DDS (Ver_2012-11-20.01) - NTFS_AMD64 Internet Explorer: 8.0.7601.17514 Run by [removed] at 14:34:27 on 2013-01-05 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.2.1033.18.3955.1170 [GMT -5:00] . AV: AVG Anti-Virus Free Edition 2013 *Disabled/Updated* {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9} AV: Norton Internet Security *Disabled/Updated* {88C95A36-8C3B-2F2C-1B8B-30FCCFDC4855} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} SP: AVG Anti-Virus Free Edition 2013 *Disabled/Updated* {B5F5C120-2089-702E-0001-553BB0D5A664} SP: Norton Internet Security *Disabled/Updated* {33A8BBD2-AA01-20A2-213B-0B8EB45B02E8} FW: Norton Internet Security *Disabled* {B0F2DB13-C654-2E74-30D4-99C9310F0F2E} . ============== Running Processes =============== . C:\windows\system32\lsm.exe C:\windows\system32\svchost.exe -k DcomLaunch C:\windows\system32\svchost.exe -k RPCSS C:\windows\system32\atiesrxx.exe C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\windows\system32\svchost.exe -k netsvcs C:\windows\system32\svchost.exe -k LocalService C:\windows\system32\atieclxx.exe C:\Program Files (x86)\Cisco\Cisco AnyConnect VPN Client\vpnagent.exe C:\windows\system32\svchost.exe -k NetworkService C:\windows\system32\Dwm.exe C:\windows\System32\spoolsv.exe C:\windows\system32\svchost.exe -k LocalServiceNoNetwork C:\windows\Explorer.EXE C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\windows\system32\taskhost.exe C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe C:\Program Files (x86)\Norton Internet Security\Engine\17.5.0.127\ccSvcHst.exe C:\windows\system32\svchost.exe -k imgsvc C:\windows\system32\TODDSrv.exe C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe C:\Program Files\TOSHIBA\TECO\TecoService.exe C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe C:\windows\system32\SearchIndexer.exe C:\Program Files (x86)\NortonInstaller\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS\A5E82D02\17.5.0.127\InstStub.exe C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Program Files\TOSHIBA\TECO\Teco.exe C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\Program Files\Windows Media Player\wmpnetwk.exe C:\Program Files (x86)\uTorrent\uTorrent.exe C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe C:\Program Files\Synaptics\SynTP\SynTPHelper.exe C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Program Files (x86)\AVG\AVG2013\avgui.exe C:\Program Files (x86)\iTunes\iTunesHelper.exe C:\Program Files\iPod\bin\iPodService.exe C:\windows\System32\svchost.exe -k LocalServicePeerNet C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Skype\Phone\Skype.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\AVG\AVG2013\avgcfgex.exe C:\windows\system32\wbem\wmiprvse.exe C:\windows\System32\cscript.exe . ============== Pseudo HJT Report =============== . uStart Page = hxxp://www.toshiba.ca/welcome uWindow Title = Presented by TOSHIBA Leading Innovation >>> uDefault_Page_URL = hxxp://www.toshiba.ca/welcome mStart Page = hxxp://www.google.com/ig/redirectdomain?brand=TSCA&bmod=TSCA mDefault_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=TSCA&bmod=TSCA uURLSearchHooks: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - mWinlogon: Userinit = userinit.exe BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll BHO: AVG Do Not Track: {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} - BHO: AVG Safe Search: {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - BHO: Spybot-S&D IE Protection: {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - BHO: Symantec NCO BHO: {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\17.5.0.127\CoIEPlg.dll BHO: Symantec Intrusion Prevention: {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\17.5.0.127\IPSBHO.dll BHO: Java™ Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll BHO: Partner BHO Class: {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} - C:\ProgramData\Partner\Partner.dll BHO: Windows Live Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll BHO: Skype add-on for Internet Explorer: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll BHO: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.7529.1424\swg.dll BHO: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll BHO: TOSHIBA Media Controller Plug-in: {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll TB: Google Toolbar: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll TB: Norton Toolbar: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\17.5.0.127\CoIEPlg.dll TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll uRun: [Google Update] "C:\Users\Karri Toshiba Laptop\AppData\Local\Google\Update\GoogleUpdate.exe" /c uRun: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" uRun: [Steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent uRun: [Xvid] C:\Program Files (x86)\Xvid\CheckUpdate.exe uRun: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED uRun: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun mRun: [SVPWUTIL] C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe SVPwUTIL mRun: [KeNotify] C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe mRun: [HWSetup] C:\Program Files\TOSHIBA\Utilities\HWSetup.exe hwSetUP mRun: [TWebCamera] "C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe" autorun mRun: [ToshibaServiceStation] "C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60 mRun: [AVG_TRAY] "C:\Program Files (x86)\AVG\AVG2012\avgtray.exe" mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" mRun: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2013\avgui.exe" /TRAYONLY mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" mPolicies-Explorer: NoActiveDesktop = dword:1 mPolicies-Explorer: NoActiveDesktopChanges = dword:1 mPolicies-System: ConsentPromptBehaviorAdmin = dword:5 mPolicies-System: ConsentPromptBehaviorUser = dword:3 mPolicies-System: EnableUIADesktopToggle = dword:0 IE: Add to Google Photos Screensa&ver - C:\windows\System32\GPhotos.scr/200 IE: E&xport to Microsoft Excel - C:\PROGRA~2\MIF5BA~1\Office12\EXCEL.EXE/3000 IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll IE: {68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} - {68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} - IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll . INFO: HKCU has more than 50 listed domains. If you wish to scan all of them, select the 'Force scan all domains' option. . . INFO: HKLM has more than 50 listed domains. If you wish to scan all of them, select the 'Force scan all domains' option. . DPF: {55963676-2F5E-4BAF-AC28-CF26AA587566} - hxxps://vpn.labx.com/CACHE/stc/1/binaries/vpnweb.cab DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_37-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_37-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_37-windows-i586.cab TCP: NameServer = 192.168.0.1 TCP: Interfaces\{94CD4A1B-14B7-4414-8E90-5F7690A5852D} : DHCPNameServer = 192.168.0.1 TCP: Interfaces\{94CD4A1B-14B7-4414-8E90-5F7690A5852D}\46C696E6B6 : DHCPNameServer = 192.168.0.1 TCP: Interfaces\{94CD4A1B-14B7-4414-8E90-5F7690A5852D}\46F677E647F677E6 : DHCPNameServer = 192.168.1.2 TCP: Interfaces\{94CD4A1B-14B7-4414-8E90-5F7690A5852D}\84F6D656661627D654 : DHCPNameServer = 192.168.0.1 TCP: Interfaces\{94CD4A1B-14B7-4414-8E90-5F7690A5852D}\C696E6B6379737 : DHCPNameServer = [removed] [removed] TCP: Interfaces\{94CD4A1B-14B7-4414-8E90-5F7690A5852D}\D61696E60296E6E60236F6D607C65687 : DHCPNameServer = 192.168.0.1 Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll SSODL: WebCheck - x64-mStart Page = hxxp://www.toshiba.ca/welcome x64-mDefault_Page_URL = hxxp://www.toshiba.ca/welcome x64-BHO: AVG Do Not Track: {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} - x64-BHO: AVG Safe Search: {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - x64-BHO: Partner BHO Class: {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} - C:\ProgramData\Partner\Partner64.dll x64-BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll x64-BHO: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.7529.1424\swg64.dll x64-TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll x64-Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s x64-Run: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE3 x64-Run: [TPwrMain] C:\Program Files (x86)\TOSHIBA\Power Saver\TPwrMain.EXE x64-Run: [HSON] C:\Program Files (x86)\TOSHIBA\TBS\HSON.exe x64-Run: [SmoothView] C:\Program Files (x86)\Toshiba\SmoothView\SmoothView.exe x64-Run: [00TCrdMain] C:\Program Files (x86)\TOSHIBA\FlashCards\TCrdMain.exe x64-Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe x64-Run: [SmartFaceVWatcher] C:\Program Files (x86)\Toshiba\SmartFaceV\SmartFaceVWatcher.exe x64-Run: [TosSENotify] C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe x64-Run: [Teco] "C:\Program Files (x86)\TOSHIBA\TECO\Teco.exe" /r x64-Run: [TosWaitSrv] C:\Program Files (x86)\TOSHIBA\TPHM\TosWaitSrv.exe x64-Run: [TosVolRegulator] C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe x64-Run: [TosNC] C:\Program Files (x86)\Toshiba\BulletinBoard\TosNcCore.exe x64-Run: [TosReelTimeMonitor] C:\Program Files (x86)\TOSHIBA\ReelTime\TosReelTimeMonitor.exe x64-IE: {68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} - {68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} - . INFO: x64-HKLM has more than 50 listed domains. If you wish to scan all of them, select the 'Force scan all domains' option. . x64-Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - x64-Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - x64-SSODL: WebCheck - Hosts: 127.0.0.1 www.spywareinfo.com . ============= SERVICES / DRIVERS =============== . R0 AVGIDSHA;AVGIDSHA;C:\windows\System32\drivers\avgidsha.sys [2012-10-15 63328] R0 Avgloga;AVG Logging Driver;C:\windows\System32\drivers\avgloga.sys [2012-9-21 225120] R0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;C:\windows\System32\drivers\avgmfx64.sys [2012-10-5 111456] R0 Avgrkx64;AVG Anti-Rootkit Driver;C:\windows\System32\drivers\avgrkx64.sys [2012-9-14 40800] R1 AVGIDSDriver;AVGIDSDriver;C:\windows\System32\drivers\avgidsdrivera.sys [2012-10-22 154464] R1 Avgldx64;AVG AVI Loader Driver;C:\windows\System32\drivers\avgldx64.sys [2012-10-2 185696] R1 Avgtdia;AVG TDI Driver;C:\windows\System32\drivers\avgtdia.sys [2012-9-21 200032] R2 AMD External Events Utility;AMD External Events Utility;C:\windows\System32\atiesrxx.exe [2011-7-30 202752] R2 avgwd;AVG WatchDog;C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe [2012-10-22 196664] R2 cfWiMAXService;ConfigFree WiMAX Service;C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe [2010-1-28 249200] R2 ConfigFree Service;ConfigFree Service;C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe [2009-3-10 46448] R2 NIS;Norton Internet Security;C:\Program Files (x86)\Norton Internet Security\Engine\17.5.0.127\ccSvcHst.exe [2011-7-30 126392] R2 SBSDWSCService;SBSD Security Center Service;C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [2012-7-8 1153368] R2 TOSHIBA eco Utility Service;TOSHIBA eco Utility Service;C:\Program Files\TOSHIBA\TECO\TecoService.exe [2010-4-6 258928] R2 TVALZFL;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Filter Driver;C:\windows\System32\drivers\TVALZFL.sys [2009-6-19 14472] R2 UNS;Intel® Management & Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2011-7-30 2320920] R2 vpnagent;Cisco AnyConnect VPN Agent;C:\Program Files (x86)\Cisco\Cisco AnyConnect VPN Client\vpnagent.exe [2011-1-10 603896] R3 HECIx64;Intel® Management Engine Interface;C:\windows\System32\drivers\HECIx64.sys [2011-7-30 56344] R3 Impcd;Impcd;C:\windows\System32\drivers\Impcd.sys [2010-2-10 158720] R3 LVUSBS64;Logitech USB Monitor Filter;C:\windows\System32\drivers\LVUSBS64.sys [2008-7-26 50072] R3 PGEffect;Pangu effect driver;C:\windows\System32\drivers\PGEffect.sys [2011-7-30 35008] R3 RTL8167;Realtek 8167 NT Driver;C:\windows\System32\drivers\Rt64win7.sys [2011-7-30 325152] R3 TMachInfo;TMachInfo;C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [2011-7-30 51512] R3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service;C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2010-2-5 137560] R3 TPCHSrv;TPCH Service;C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe [2010-2-23 835952] S2 AVGIDSAgent;AVGIDSAgent;C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe [2012-11-6 5814392] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576] S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-11-9 160944] S3 lvpepf64;Volume Adapter;C:\windows\System32\drivers\lv302a64.sys [2008-7-26 15768] S3 LVRS64;Logitech RightSound Filter Driver;C:\windows\System32\drivers\lvrs64.sys [2008-7-26 790424] S3 Partner Service;Partner Service;C:\ProgramData\Partner\Partner.exe [2011-7-30 332272] S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\windows\System32\drivers\RtsUStor.sys [2011-7-30 232992] S3 rtl8192se;Realtek Wireless LAN 802.11n PCI-E NIC NT Driver;C:\windows\System32\drivers\rtl8192se.sys [2011-7-30 1103904] S3 TsUsbFlt;TsUsbFlt;C:\windows\System32\drivers\TsUsbFlt.sys [2011-8-1 59392] S3 UsbGps;LGE CDMA USB GPS NMEA Port;C:\windows\System32\drivers\lgx64gps.sys [2012-9-24 27136] S3 WatAdminSvc;Windows Activation Technologies Service;C:\windows\System32\Wat\WatAdminSvc.exe [2011-8-1 1255736] . =============== Created Last 30 ================ . 2012-12-30 01:54:44 ——– d—–w- C:\Users\Karri Toshiba Laptop\AppData\Local\Apple Computer 2012-12-30 01:54:30 33240 —-a-w- C:\windows\System32\drivers\GEARAspiWDM.sys 2012-12-30 01:53:42 ——– d—–w- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2012-12-30 01:53:42 ——– d—–w- C:\Program Files\iPod 2012-12-30 01:53:42 ——– d—–w- C:\Program Files (x86)\iTunes 2012-12-30 01:53:41 ——– d—–w- C:\Program Files\iTunes 2012-12-30 01:52:59 ——– d—–w- C:\Users\Karri Toshiba Laptop\AppData\Local\Apple 2012-12-30 01:52:20 ——– d—–w- C:\Program Files\Bonjour 2012-12-30 01:52:20 ——– d—–w- C:\Program Files (x86)\Bonjour 2012-12-21 08:00:40 46080 —-a-w- C:\windows\System32\atmlib.dll 2012-12-21 08:00:40 34304 —-a-w- C:\windows\SysWow64\atmlib.dll 2012-12-21 08:00:39 367616 —-a-w- C:\windows\System32\atmfd.dll 2012-12-21 08:00:39 295424 —-a-w- C:\windows\SysWow64\atmfd.dll 2012-12-14 00:37:03 ——– d—–w- C:\Users\Karri Toshiba Laptop\AppData\Roaming\AVG2013 2012-12-13 22:37:46 ——– d—–w- C:\Users\Karri Toshiba Laptop\AppData\Roaming\TuneUp Software 2012-12-13 22:35:38 ——– d—–w- C:\ProgramData\AVG2013 2012-12-12 09:40:15 2048 —-a-w- C:\windows\SysWow64\tzres.dll 2012-12-12 09:40:15 2048 —-a-w- C:\windows\System32\tzres.dll 2012-12-12 09:40:10 3149824 —-a-w- C:\windows\System32\win32k.sys 2012-12-12 00:22:12 ——– d—–w- C:\Users\Karri Toshiba Laptop\AppData\Local\MFAData 2012-12-12 00:22:12 ——– d—–w- C:\Users\Karri Toshiba Laptop\AppData\Local\Avg2013 . ==================== Find3M ==================== . 2012-12-11 23:25:08 73656 —-a-w- C:\windows\SysWow64\FlashPlayerCPLApp.cpl 2012-12-11 23:25:08 697272 —-a-w- C:\windows\SysWow64\FlashPlayerApp.exe 2012-11-12 12:28:37 1638912 —-a-w- C:\windows\System32\mshtml.tlb 2012-11-12 11:52:18 1638912 —-a-w- C:\windows\SysWow64\mshtml.tlb 2012-11-02 05:59:11 478208 —-a-w- C:\windows\System32\dpnet.dll 2012-11-02 05:11:31 376832 —-a-w- C:\windows\SysWow64\dpnet.dll 2012-10-27 06:26:55 981504 —-a-w- C:\windows\SysWow64\wininet.dll 2012-10-27 05:51:21 1188864 —-a-w- C:\windows\System32\wininet.dll 2012-10-22 18:02:44 154464 —-a-w- C:\windows\System32\drivers\avgidsdrivera.sys 2012-10-16 08:38:37 135168 —-a-w- C:\windows\apppatch\AppPatch64\AcXtrnal.dll 2012-10-16 08:38:34 350208 —-a-w- C:\windows\apppatch\AppPatch64\AcLayers.dll 2012-10-16 07:39:52 561664 —-a-w- C:\windows\apppatch\AcLayers.dll 2012-10-15 08:48:50 63328 —-a-w- C:\windows\System32\drivers\avgidsha.sys 2012-10-09 18:17:13 55296 —-a-w- C:\windows\System32\dhcpcsvc6.dll 2012-10-09 18:17:13 226816 —-a-w- C:\windows\System32\dhcpcore6.dll 2012-10-09 17:40:31 44032 —-a-w- C:\windows\SysWow64\dhcpcsvc6.dll 2012-10-09 17:40:31 193536 —-a-w- C:\windows\SysWow64\dhcpcore6.dll . ============= FINISH: 14:35:19.40 =============== 14:39:34.0306 8040 TDSS rootkit removing tool [removed] Oct 31 2012 21:47:35 14:39:34.0717 8040 ============================================================ 14:39:34.0717 8040 Current date / time: 2013/01/05 14:39:34.0717 14:39:34.0717 8040 SystemInfo: 14:39:34.0717 8040 14:39:34.0718 8040 OS Version: 6.1.7601 ServicePack: 1.0 14:39:34.0718 8040 Product type: Workstation 14:39:34.0718 8040 ComputerName: KARRITOSHIBALAP 14:39:34.0718 8040 UserName: Karri Toshiba Laptop 14:39:34.0718 8040 Windows directory: C:\windows 14:39:34.0718 8040 System windows directory: C:\windows 14:39:34.0718 8040 Running under WOW64 14:39:34.0718 8040 Processor architecture: Intel x64 14:39:34.0718 8040 Number of processors: 4 14:39:34.0718 8040 Page size: 0x1000 14:39:34.0718 8040 Boot type: Normal boot 14:39:34.0718 8040 ============================================================ 14:39:35.0248 8040 Drive \Device\Harddisk0\DR0 - Size: 0x950B056000 (596.17 Gb), SectorSize: 0x200, Cylinders: 0x13001, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 14:39:35.0253 8040 ============================================================ 14:39:35.0253 8040 \Device\Harddisk0\DR0: 14:39:35.0253 8040 MBR partitions: 14:39:35.0253 8040 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x2EE800, BlocksNum 0x48DF2000 14:39:35.0253 8040 ============================================================ 14:39:35.0282 8040 C: <-> \Device\Harddisk0\DR0\Partition1 14:39:35.0282 8040 ============================================================ 14:39:35.0282 8040 Initialize success 14:39:35.0282 8040 ============================================================ 14:39:38.0049 8076 ============================================================ 14:39:38.0049 8076 Scan started 14:39:38.0049 8076 Mode: Manual; 14:39:38.0049 8076 ============================================================ 14:39:40.0064 8076 ================ Scan system memory ======================== 14:39:40.0064 8076 System memory - ok 14:39:40.0065 8076 ================ Scan services ============================= 14:39:40.0342 8076 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\windows\system32\drivers\1394ohci.sys 14:39:40.0347 8076 1394ohci - ok 14:39:40.0396 8076 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\windows\system32\drivers\ACPI.sys 14:39:40.0401 8076 ACPI - ok 14:39:40.0456 8076 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\windows\system32\drivers\acpipmi.sys 14:39:40.0457 8076 AcpiPmi - ok 14:39:40.0601 8076 [ 95CE557D16A75606CCC2D7F3B0B0BCCB ] AdobeFlashPlayerUpdateSvc C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 14:39:40.0606 8076 AdobeFlashPlayerUpdateSvc - ok 14:39:40.0645 8076 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\windows\system32\DRIVERS\adp94xx.sys 14:39:40.0653 8076 adp94xx - ok 14:39:40.0707 8076 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\windows\system32\DRIVERS\adpahci.sys 14:39:40.0713 8076 adpahci - ok 14:39:40.0746 8076 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\windows\system32\DRIVERS\adpu320.sys 14:39:40.0751 8076 adpu320 - ok 14:39:40.0786 8076 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\windows\System32\aelupsvc.dll 14:39:40.0788 8076 AeLookupSvc - ok 14:39:40.0843 8076 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\windows\system32\drivers\afd.sys 14:39:40.0863 8076 AFD - ok 14:39:40.0921 8076 [ 98022774D9930ECBB292E70DB7601DF6 ] AgereSoftModem C:\windows\system32\DRIVERS\agrsm64.sys 14:39:40.0937 8076 AgereSoftModem - ok 14:39:40.0981 8076 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\windows\system32\drivers\agp440.sys 14:39:40.0984 8076 agp440 - ok 14:39:41.0017 8076 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\windows\System32\alg.exe 14:39:41.0020 8076 ALG - ok 14:39:41.0073 8076 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\windows\system32\drivers\aliide.sys 14:39:41.0075 8076 aliide - ok 14:39:41.0118 8076 [ 57B773D82E8CC3C6D7E02CC8A6632043 ] AMD External Events Utility C:\windows\system32\atiesrxx.exe 14:39:41.0122 8076 AMD External Events Utility - ok 14:39:41.0177 8076 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\windows\system32\drivers\amdide.sys 14:39:41.0179 8076 amdide - ok 14:39:41.0221 8076 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\windows\system32\DRIVERS\amdk8.sys 14:39:41.0224 8076 AmdK8 - ok 14:39:41.0415 8076 [ AEFAF27F1B7E52C705DF4FB6C96732F6 ] amdkmdag C:\windows\system32\DRIVERS\atipmdag.sys 14:39:41.0540 8076 amdkmdag - ok 14:39:41.0571 8076 [ 8149DB73BE27950EC72767A1193153A6 ] amdkmdap C:\windows\system32\DRIVERS\atikmpag.sys 14:39:41.0574 8076 amdkmdap - ok 14:39:41.0611 8076 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\windows\system32\DRIVERS\amdppm.sys 14:39:41.0622 8076 AmdPPM - ok 14:39:41.0669 8076 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\windows\system32\drivers\amdsata.sys 14:39:41.0672 8076 amdsata - ok 14:39:41.0716 8076 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\windows\system32\DRIVERS\amdsbs.sys 14:39:41.0720 8076 amdsbs - ok 14:39:41.0775 8076 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\windows\system32\drivers\amdxata.sys 14:39:41.0775 8076 amdxata - ok 14:39:41.0829 8076 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\windows\system32\drivers\appid.sys 14:39:41.0831 8076 AppID - ok 14:39:41.0860 8076 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\windows\System32\appidsvc.dll 14:39:41.0863 8076 AppIDSvc - ok 14:39:41.0903 8076 [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo C:\windows\System32\appinfo.dll 14:39:41.0905 8076 Appinfo - ok 14:39:42.0004 8076 [ A5299D04ED225D64CF07A568A3E1BF8C ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe 14:39:42.0007 8076 Apple Mobile Device - ok 14:39:42.0056 8076 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\windows\system32\DRIVERS\arc.sys 14:39:42.0058 8076 arc - ok 14:39:42.0090 8076 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\windows\system32\DRIVERS\arcsas.sys 14:39:42.0093 8076 arcsas - ok 14:39:42.0258 8076 [ 9217D874131AE6FF8F642F124F00A555 ] aspnet_state C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe 14:39:42.0260 8076 aspnet_state - ok 14:39:42.0288 8076 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\windows\system32\DRIVERS\asyncmac.sys 14:39:42.0290 8076 AsyncMac - ok 14:39:42.0343 8076 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\windows\system32\drivers\atapi.sys 14:39:42.0343 8076 atapi - ok 14:39:42.0412 8076 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\windows\System32\Audiosrv.dll 14:39:42.0423 8076 AudioEndpointBuilder - ok 14:39:42.0438 8076 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\windows\System32\Audiosrv.dll 14:39:42.0443 8076 AudioSrv - ok 14:39:42.0666 8076 [ 56C73C5BC1656656CAC38A23B4310466 ] AVGIDSAgent C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe 14:39:42.0791 8076 AVGIDSAgent - ok 14:39:42.0835 8076 [ 388056EBD5FE6718FE669078DBE37897 ] AVGIDSDriver C:\windows\system32\DRIVERS\avgidsdrivera.sys 14:39:42.0837 8076 AVGIDSDriver - ok 14:39:42.0882 8076 [ 550E981747D6A6C55078C77346FFC2C6 ] AVGIDSHA C:\windows\system32\DRIVERS\avgidsha.sys 14:39:42.0884 8076 AVGIDSHA - ok 14:39:42.0922 8076 [ 5989592A91A17587799792A81E1541D4 ] Avgldx64 C:\windows\system32\DRIVERS\avgldx64.sys 14:39:42.0926 8076 Avgldx64 - ok 14:39:42.0971 8076 [ 3FC43AA02545FCDDC22817829114DEC8 ] Avgloga C:\windows\system32\DRIVERS\avgloga.sys 14:39:42.0974 8076 Avgloga - ok 14:39:43.0008 8076 [ 767B4A485FB22AA0FC0BF5EEF00572B9 ] Avgmfx64 C:\windows\system32\DRIVERS\avgmfx64.sys 14:39:43.0009 8076 Avgmfx64 - ok 14:39:43.0032 8076 [ FE4F444DBE4BBBDFD8FECF49398DEFC7 ] Avgrkx64 C:\windows\system32\DRIVERS\avgrkx64.sys 14:39:43.0033 8076 Avgrkx64 - ok 14:39:43.0053 8076 [ 6E634525613D48A1D1657FB21F21F3B2 ] Avgtdia C:\windows\system32\DRIVERS\avgtdia.sys 14:39:43.0055 8076 Avgtdia - ok 14:39:43.0086 8076 [ 6B72E1E329C4E98C6B6FDD2D265E3BA3 ] avgwd C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe 14:39:43.0089 8076 avgwd - ok 14:39:43.0143 8076 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\windows\System32\AxInstSV.dll 14:39:43.0146 8076 AxInstSV - ok 14:39:43.0201 8076 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\windows\system32\DRIVERS\bxvbda.sys 14:39:43.0209 8076 b06bdrv - ok 14:39:43.0254 8076 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\windows\system32\DRIVERS\b57nd60a.sys 14:39:43.0259 8076 b57nd60a - ok 14:39:43.0294 8076 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\windows\System32\bdesvc.dll 14:39:43.0297 8076 BDESVC - ok 14:39:43.0318 8076 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\windows\system32\drivers\Beep.sys 14:39:43.0320 8076 Beep - ok 14:39:43.0381 8076 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\windows\System32\bfe.dll 14:39:43.0391 8076 BFE - ok 14:39:43.0452 8076 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\windows\System32\qmgr.dll 14:39:43.0464 8076 BITS - ok 14:39:43.0492 8076 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\windows\system32\DRIVERS\blbdrive.sys 14:39:43.0494 8076 blbdrive - ok 14:39:43.0595 8076 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe 14:39:43.0602 8076 Bonjour Service - ok 14:39:43.0659 8076 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\windows\system32\DRIVERS\bowser.sys 14:39:43.0661 8076 bowser - ok 14:39:43.0690 8076 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\windows\system32\DRIVERS\BrFiltLo.sys 14:39:43.0692 8076 BrFiltLo - ok 14:39:43.0708 8076 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\windows\system32\DRIVERS\BrFiltUp.sys 14:39:43.0710 8076 BrFiltUp - ok 14:39:43.0748 8076 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\windows\System32\browser.dll 14:39:43.0777 8076 Browser - ok 14:39:43.0816 8076 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\windows\System32\Drivers\Brserid.sys 14:39:43.0822 8076 Brserid - ok 14:39:43.0854 8076 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\windows\System32\Drivers\BrSerWdm.sys 14:39:43.0856 8076 BrSerWdm - ok 14:39:43.0867 8076 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\windows\System32\Drivers\BrUsbMdm.sys 14:39:43.0869 8076 BrUsbMdm - ok 14:39:43.0896 8076 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\windows\System32\Drivers\BrUsbSer.sys 14:39:43.0898 8076 BrUsbSer - ok 14:39:43.0913 8076 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\windows\system32\DRIVERS\bthmodem.sys 14:39:43.0915 8076 BTHMODEM - ok 14:39:43.0957 8076 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\windows\system32\bthserv.dll 14:39:43.0960 8076 bthserv - ok 14:39:43.0991 8076 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\windows\system32\DRIVERS\cdfs.sys 14:39:43.0993 8076 cdfs - ok 14:39:44.0030 8076 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\windows\system32\drivers\cdrom.sys 14:39:44.0034 8076 cdrom - ok 14:39:44.0073 8076 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\windows\System32\certprop.dll 14:39:44.0076 8076 CertPropSvc - ok 14:39:44.0142 8076 [ 41E7C4FA6491747402CFCA77CC1C7AAB ] cfWiMAXService C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe 14:39:44.0146 8076 cfWiMAXService - ok 14:39:44.0172 8076 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\windows\system32\DRIVERS\circlass.sys 14:39:44.0174 8076 circlass - ok 14:39:44.0207 8076 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\windows\system32\CLFS.sys 14:39:44.0213 8076 CLFS - ok 14:39:44.0279 8076 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 14:39:44.0281 8076 clr_optimization_v2.0.50727_32 - ok 14:39:44.0325 8076 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 14:39:44.0328 8076 clr_optimization_v2.0.50727_64 - ok 14:39:44.0389 8076 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 14:39:44.0393 8076 clr_optimization_v4.0.30319_32 - ok 14:39:44.0420 8076 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe 14:39:44.0424 8076 clr_optimization_v4.0.30319_64 - ok 14:39:44.0455 8076 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\windows\system32\DRIVERS\CmBatt.sys 14:39:44.0457 8076 CmBatt - ok 14:39:44.0477 8076 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\windows\system32\drivers\cmdide.sys 14:39:44.0479 8076 cmdide - ok 14:39:44.0513 8076 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\windows\system32\Drivers\cng.sys 14:39:44.0520 8076 CNG - ok 14:39:44.0542 8076 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\windows\system32\DRIVERS\compbatt.sys 14:39:44.0544 8076 Compbatt - ok 14:39:44.0582 8076 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\windows\system32\drivers\CompositeBus.sys 14:39:44.0584 8076 CompositeBus - ok 14:39:44.0598 8076 COMSysApp - ok 14:39:44.0622 8076 [ CAB0EEAF5295FC96DDD3E19DCE27E131 ] ConfigFree Service C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe 14:39:44.0624 8076 ConfigFree Service - ok 14:39:44.0651 8076 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\windows\system32\DRIVERS\crcdisk.sys 14:39:44.0653 8076 crcdisk - ok 14:39:44.0712 8076 [ 9C01375BE382E834CC26D1B7EAF2C4FE ] CryptSvc C:\windows\system32\cryptsvc.dll 14:39:44.0717 8076 CryptSvc - ok 14:39:44.0762 8076 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\windows\system32\rpcss.dll 14:39:44.0770 8076 DcomLaunch - ok 14:39:44.0804 8076 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\windows\System32\defragsvc.dll 14:39:44.0810 8076 defragsvc - ok 14:39:44.0854 8076 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\windows\system32\Drivers\dfsc.sys 14:39:44.0856 8076 DfsC - ok 14:39:44.0909 8076 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\windows\system32\dhcpcore.dll 14:39:44.0913 8076 Dhcp - ok 14:39:44.0944 8076 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\windows\system32\drivers\discache.sys 14:39:44.0945 8076 discache - ok 14:39:44.0974 8076 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\windows\system32\DRIVERS\disk.sys 14:39:44.0976 8076 Disk - ok 14:39:45.0009 8076 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\windows\System32\dnsrslvr.dll 14:39:45.0012 8076 Dnscache - ok 14:39:45.0051 8076 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\windows\System32\dot3svc.dll 14:39:45.0055 8076 dot3svc - ok 14:39:45.0071 8076 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\windows\system32\dps.dll 14:39:45.0074 8076 DPS - ok 14:39:45.0106 8076 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\windows\system32\drivers\drmkaud.sys 14:39:45.0108 8076 drmkaud - ok 14:39:45.0152 8076 [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl C:\windows\System32\drivers\dxgkrnl.sys 14:39:45.0162 8076 DXGKrnl - ok 14:39:45.0176 8076 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\windows\System32\eapsvc.dll 14:39:45.0178 8076 EapHost - ok 14:39:45.0272 8076 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\windows\system32\DRIVERS\evbda.sys 14:39:45.0332 8076 ebdrv - ok 14:39:45.0378 8076 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\windows\System32\lsass.exe 14:39:45.0397 8076 EFS - ok 14:39:45.0470 8076 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\windows\ehome\ehRecvr.exe 14:39:45.0478 8076 ehRecvr - ok 14:39:45.0503 8076 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\windows\ehome\ehsched.exe 14:39:45.0506 8076 ehSched - ok 14:39:45.0539 8076 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\windows\system32\DRIVERS\elxstor.sys 14:39:45.0545 8076 elxstor - ok 14:39:45.0576 8076 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\windows\system32\drivers\errdev.sys 14:39:45.0577 8076 ErrDev - ok 14:39:45.0622 8076 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\windows\system32\es.dll 14:39:45.0626 8076 EventSystem - ok 14:39:45.0656 8076 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\windows\system32\drivers\exfat.sys 14:39:45.0659 8076 exfat - ok 14:39:45.0675 8076 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\windows\system32\drivers\fastfat.sys 14:39:45.0678 8076 fastfat - ok 14:39:45.0731 8076 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\windows\system32\fxssvc.exe 14:39:45.0743 8076 Fax - ok 14:39:45.0774 8076 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\windows\system32\DRIVERS\fdc.sys 14:39:45.0775 8076 fdc - ok 14:39:45.0825 8076 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\windows\system32\fdPHost.dll 14:39:45.0827 8076 fdPHost - ok 14:39:45.0846 8076 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\windows\system32\fdrespub.dll 14:39:45.0848 8076 FDResPub - ok 14:39:45.0859 8076 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\windows\system32\drivers\fileinfo.sys 14:39:45.0862 8076 FileInfo - ok 14:39:45.0873 8076 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\windows\system32\drivers\filetrace.sys 14:39:45.0874 8076 Filetrace - ok 14:39:45.0892 8076 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\windows\system32\DRIVERS\flpydisk.sys 14:39:45.0894 8076 flpydisk - ok 14:39:45.0925 8076 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\windows\system32\drivers\fltmgr.sys 14:39:45.0929 8076 FltMgr - ok 14:39:45.0961 8076 [ 5C4CB4086FB83115B153E47ADD961A0C ] FontCache C:\windows\system32\FntCache.dll 14:39:45.0985 8076 FontCache - ok 14:39:46.0031 8076 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 14:39:46.0033 8076 FontCache3.0.0.0 - ok 14:39:46.0061 8076 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\windows\system32\drivers\FsDepends.sys 14:39:46.0063 8076 FsDepends - ok 14:39:46.0097 8076 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\windows\system32\drivers\Fs_Rec.sys 14:39:46.0099 8076 Fs_Rec - ok 14:39:46.0138 8076 [ 1F7B25B858FA27015169FE95E54108ED ] fvevol C:\windows\system32\DRIVERS\fvevol.sys 14:39:46.0141 8076 fvevol - ok 14:39:46.0186 8076 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\windows\system32\DRIVERS\gagp30kx.sys 14:39:46.0188 8076 gagp30kx - ok 14:39:46.0252 8076 [ 1A0B9D84BEB3306F728BC3009D432F5C ] GameConsoleService C:\Program Files (x86)\TOSHIBA Games\TOSHIBA Game Console\GameConsoleService.exe 14:39:46.0257 8076 GameConsoleService - ok 14:39:46.0309 8076 [ 8E98D21EE06192492A5671A6144D092F ] GEARAspiWDM C:\windows\system32\DRIVERS\GEARAspiWDM.sys 14:39:46.0311 8076 GEARAspiWDM - ok 14:39:46.0374 8076 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\windows\System32\gpsvc.dll 14:39:46.0386 8076 gpsvc - ok 14:39:46.0453 8076 [ 8F0DE4FEF8201E306F9938B0905AC96A ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 14:39:46.0456 8076 gupdate - ok 14:39:46.0469 8076 [ 8F0DE4FEF8201E306F9938B0905AC96A ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 14:39:46.0471 8076 gupdatem - ok 14:39:46.0517 8076 [ 5D4BC124FAAE6730AC002CDB67BF1A1C ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe 14:39:46.0519 8076 gusvc - ok 14:39:46.0539 8076 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\windows\system32\drivers\hcw85cir.sys 14:39:46.0540 8076 hcw85cir - ok 14:39:46.0590 8076 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\windows\system32\drivers\HdAudio.sys 14:39:46.0595 8076 HdAudAddService - ok 14:39:46.0620 8076 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\windows\system32\drivers\HDAudBus.sys 14:39:46.0622 8076 HDAudBus - ok 14:39:46.0653 8076 [ B6AC71AAA2B10848F57FC49D55A651AF ] HECIx64 C:\windows\system32\DRIVERS\HECIx64.sys 14:39:46.0655 8076 HECIx64 - ok 14:39:46.0676 8076 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\windows\system32\DRIVERS\HidBatt.sys 14:39:46.0678 8076 HidBatt - ok 14:39:46.0693 8076 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\windows\system32\DRIVERS\hidbth.sys 14:39:46.0695 8076 HidBth - ok 14:39:46.0709 8076 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\windows\system32\DRIVERS\hidir.sys 14:39:46.0711 8076 HidIr - ok 14:39:46.0735 8076 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\windows\system32\hidserv.dll 14:39:46.0737 8076 hidserv - ok 14:39:46.0791 8076 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\windows\system32\DRIVERS\hidusb.sys 14:39:46.0793 8076 HidUsb - ok 14:39:46.0841 8076 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\windows\system32\kmsvc.dll 14:39:46.0844 8076 hkmsvc - ok 14:39:46.0876 8076 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\windows\system32\ListSvc.dll 14:39:46.0880 8076 HomeGroupListener - ok 14:39:46.0916 8076 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\windows\system32\provsvc.dll 14:39:46.0920 8076 HomeGroupProvider - ok 14:39:46.0960 8076 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\windows\system32\drivers\HpSAMD.sys 14:39:46.0963 8076 HpSAMD - ok 14:39:47.0008 8076 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\windows\system32\drivers\HTTP.sys 14:39:47.0016 8076 HTTP - ok 14:39:47.0059 8076 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\windows\system32\drivers\hwpolicy.sys 14:39:47.0060 8076 hwpolicy - ok 14:39:47.0094 8076 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\windows\system32\drivers\i8042prt.sys 14:39:47.0097 8076 i8042prt - ok 14:39:47.0139 8076 [ 85977CD13FC16069CE0AF7943A811775 ] iaStor C:\windows\system32\DRIVERS\iaStor.sys 14:39:47.0145 8076 iaStor - ok 14:39:47.0176 8076 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\windows\system32\drivers\iaStorV.sys 14:39:47.0181 8076 iaStorV - ok 14:39:47.0239 8076 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 14:39:47.0251 8076 idsvc - ok 14:39:47.0285 8076 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\windows\system32\DRIVERS\iirsp.sys 14:39:47.0287 8076 iirsp - ok 14:39:47.0340 8076 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\windows\System32\ikeext.dll 14:39:47.0351 8076 IKEEXT - ok 14:39:47.0395 8076 [ 4B6363CD4610BB848531BB260B15DFCC ] Impcd C:\windows\system32\DRIVERS\Impcd.sys 14:39:47.0397 8076 Impcd - ok 14:39:47.0472 8076 [ 490947A9AFF7CA31EF2E08F5776105EB ] IntcAzAudAddService C:\windows\system32\drivers\RTKVHD64.sys 14:39:47.0506 8076 IntcAzAudAddService - ok 14:39:47.0529 8076 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\windows\system32\drivers\intelide.sys 14:39:47.0531 8076 intelide - ok 14:39:47.0561 8076 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\windows\system32\DRIVERS\intelppm.sys 14:39:47.0562 8076 intelppm - ok 14:39:47.0599 8076 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\windows\system32\ipbusenum.dll 14:39:47.0602 8076 IPBusEnum - ok 14:39:47.0638 8076 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\windows\system32\DRIVERS\ipfltdrv.sys 14:39:47.0640 8076 IpFilterDriver - ok 14:39:47.0670 8076 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\windows\System32\iphlpsvc.dll 14:39:47.0677 8076 iphlpsvc - ok 14:39:47.0715 8076 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\windows\system32\drivers\IPMIDrv.sys 14:39:47.0717 8076 IPMIDRV - ok 14:39:47.0758 8076 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\windows\system32\drivers\ipnat.sys 14:39:47.0761 8076 IPNAT - ok 14:39:47.0801 8076 [ 0F261EC4F514926177C70C1832374231 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe 14:39:47.0810 8076 iPod Service - ok 14:39:47.0847 8076 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\windows\system32\drivers\irenum.sys 14:39:47.0849 8076 IRENUM - ok 14:39:47.0877 8076 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\windows\system32\drivers\isapnp.sys 14:39:47.0878 8076 isapnp - ok 14:39:47.0896 8076 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\windows\system32\drivers\msiscsi.sys 14:39:47.0900 8076 iScsiPrt - ok 14:39:47.0943 8076 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\windows\system32\drivers\kbdclass.sys 14:39:47.0945 8076 kbdclass - ok 14:39:47.0980 8076 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\windows\system32\drivers\kbdhid.sys 14:39:47.0982 8076 kbdhid - ok 14:39:48.0001 8076 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\windows\system32\lsass.exe 14:39:48.0002 8076 KeyIso - ok 14:39:48.0030 8076 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\windows\system32\Drivers\ksecdd.sys 14:39:48.0033 8076 KSecDD - ok 14:39:48.0069 8076 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\windows\system32\Drivers\ksecpkg.sys 14:39:48.0072 8076 KSecPkg - ok 14:39:48.0106 8076 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\windows\system32\drivers\ksthunk.sys 14:39:48.0109 8076 ksthunk - ok 14:39:48.0158 8076 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\windows\system32\msdtckrm.dll 14:39:48.0165 8076 KtmRm - ok 14:39:48.0217 8076 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\windows\system32\srvsvc.dll 14:39:48.0222 8076 LanmanServer - ok 14:39:48.0259 8076 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\windows\System32\wkssvc.dll 14:39:48.0262 8076 LanmanWorkstation - ok 14:39:48.0303 8076 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\windows\system32\DRIVERS\lltdio.sys 14:39:48.0305 8076 lltdio - ok 14:39:48.0344 8076 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\windows\System32\lltdsvc.dll 14:39:48.0348 8076 lltdsvc - ok 14:39:48.0368 8076 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\windows\System32\lmhsvc.dll 14:39:48.0369 8076 lmhosts - ok 14:39:48.0438 8076 [ 23DE5B62B0445A6F874BE633C95B483E ] LMS C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe 14:39:48.0444 8076 LMS - ok 14:39:48.0492 8076 [ 41E122F6D1448C94CC05196BC41D6BFB ] LPCFilter C:\windows\system32\DRIVERS\LPCFilter.sys 14:39:48.0494 8076 LPCFilter - ok 14:39:48.0534 8076 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\windows\system32\DRIVERS\lsi_fc.sys 14:39:48.0537 8076 LSI_FC - ok 14:39:48.0556 8076 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\windows\system32\DRIVERS\lsi_sas.sys 14:39:48.0559 8076 LSI_SAS - ok 14:39:48.0584 8076 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\windows\system32\DRIVERS\lsi_sas2.sys 14:39:48.0586 8076 LSI_SAS2 - ok 14:39:48.0600 8076 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\windows\system32\DRIVERS\lsi_scsi.sys 14:39:48.0603 8076 LSI_SCSI - ok 14:39:48.0618 8076 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\windows\system32\drivers\luafv.sys 14:39:48.0621 8076 luafv - ok 14:39:48.0665 8076 [ 07389F6925E490D2DB7882110E99921C ] lvpepf64 C:\windows\system32\DRIVERS\lv302a64.sys 14:39:48.0666 8076 lvpepf64 - ok 14:39:48.0694 8076 [ 7F0BA3A6E8996F15693C6B7D81DA049E ] LVRS64 C:\windows\system32\DRIVERS\lvrs64.sys 14:39:48.0705 8076 LVRS64 - ok 14:39:48.0754 8076 [ 5C3FF68267A5D242EE79EE01B993D6CE ] LVUSBS64 C:\windows\system32\drivers\LVUSBS64.sys 14:39:48.0756 8076 LVUSBS64 - ok 14:39:48.0785 8076 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\windows\system32\Mcx2Svc.dll 14:39:48.0789 8076 Mcx2Svc - ok 14:39:48.0806 8076 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\windows\system32\DRIVERS\megasas.sys 14:39:48.0808 8076 megasas - ok 14:39:48.0838 8076 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\windows\system32\DRIVERS\MegaSR.sys 14:39:48.0843 8076 MegaSR - ok 14:39:48.0869 8076 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\windows\system32\mmcss.dll 14:39:48.0871 8076 MMCSS - ok 14:39:48.0885 8076 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\windows\system32\drivers\modem.sys 14:39:48.0887 8076 Modem - ok 14:39:48.0910 8076 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\windows\system32\DRIVERS\monitor.sys 14:39:48.0911 8076 monitor - ok 14:39:48.0938 8076 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\windows\system32\DRIVERS\mouclass.sys 14:39:48.0940 8076 mouclass - ok 14:39:48.0978 8076 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\windows\system32\DRIVERS\mouhid.sys 14:39:48.0980 8076 mouhid - ok 14:39:49.0016 8076 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\windows\system32\drivers\mountmgr.sys 14:39:49.0018 8076 mountmgr - ok 14:39:49.0056 8076 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\windows\system32\drivers\mpio.sys 14:39:49.0060 8076 mpio - ok 14:39:49.0089 8076 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\windows\system32\drivers\mpsdrv.sys 14:39:49.0092 8076 mpsdrv - ok 14:39:49.0134 8076 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\windows\system32\mpssvc.dll 14:39:49.0146 8076 MpsSvc - ok 14:39:49.0178 8076 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\windows\system32\drivers\mrxdav.sys 14:39:49.0182 8076 MRxDAV - ok 14:39:49.0206 8076 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\windows\system32\DRIVERS\mrxsmb.sys 14:39:49.0209 8076 mrxsmb - ok 14:39:49.0240 8076 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\windows\system32\DRIVERS\mrxsmb10.sys 14:39:49.0245 8076 mrxsmb10 - ok 14:39:49.0264 8076 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\windows\system32\DRIVERS\mrxsmb20.sys 14:39:49.0266 8076 mrxsmb20 - ok 14:39:49.0273 8076 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\windows\system32\drivers\msahci.sys 14:39:49.0274 8076 msahci - ok 14:39:49.0295 8076 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\windows\system32\drivers\msdsm.sys 14:39:49.0298 8076 msdsm - ok 14:39:49.0312 8076 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\windows\System32\msdtc.exe 14:39:49.0315 8076 MSDTC - ok 14:39:49.0340 8076 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\windows\system32\drivers\Msfs.sys 14:39:49.0342 8076 Msfs - ok 14:39:49.0365 8076 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\windows\System32\drivers\mshidkmdf.sys 14:39:49.0366 8076 mshidkmdf - ok 14:39:49.0402 8076 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\windows\system32\drivers\msisadrv.sys 14:39:49.0403 8076 msisadrv - ok 14:39:49.0442 8076 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\windows\system32\iscsiexe.dll 14:39:49.0444 8076 MSiSCSI - ok 14:39:49.0448 8076 msiserver - ok 14:39:49.0490 8076 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\windows\system32\drivers\MSKSSRV.sys 14:39:49.0492 8076 MSKSSRV - ok 14:39:49.0507 8076 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\windows\system32\drivers\MSPCLOCK.sys 14:39:49.0508 8076 MSPCLOCK - ok 14:39:49.0518 8076 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\windows\system32\drivers\MSPQM.sys 14:39:49.0519 8076 MSPQM - ok 14:39:49.0552 8076 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\windows\system32\drivers\MsRPC.sys 14:39:49.0557 8076 MsRPC - ok 14:39:49.0584 8076 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\windows\system32\drivers\mssmbios.sys 14:39:49.0585 8076 mssmbios - ok 14:39:49.0622 8076 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\windows\system32\drivers\MSTEE.sys 14:39:49.0623 8076 MSTEE - ok 14:39:49.0634 8076 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\windows\system32\DRIVERS\MTConfig.sys 14:39:49.0637 8076 MTConfig - ok 14:39:49.0661 8076 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\windows\system32\Drivers\mup.sys 14:39:49.0663 8076 Mup - ok 14:39:49.0711 8076 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\windows\system32\qagentRT.dll 14:39:49.0719 8076 napagent - ok 14:39:49.0768 8076 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\windows\system32\DRIVERS\nwifi.sys 14:39:49.0774 8076 NativeWifiP - ok 14:39:49.0865 8076 NAVENG - ok 14:39:49.0869 8076 NAVEX15 - ok 14:39:49.0941 8076 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\windows\system32\drivers\ndis.sys 14:39:49.0953 8076 NDIS - ok 14:39:49.0987 8076 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\windows\system32\DRIVERS\ndiscap.sys 14:39:49.0989 8076 NdisCap - ok 14:39:50.0013 8076 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\windows\system32\DRIVERS\ndistapi.sys 14:39:50.0015 8076 NdisTapi - ok 14:39:50.0056 8076 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\windows\system32\DRIVERS\ndisuio.sys 14:39:50.0058 8076 Ndisuio - ok 14:39:50.0095 8076 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\windows\system32\DRIVERS\ndiswan.sys 14:39:50.0099 8076 NdisWan - ok 14:39:50.0126 8076 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\windows\system32\drivers\NDProxy.sys 14:39:50.0129 8076 NDProxy - ok 14:39:50.0163 8076 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\windows\system32\DRIVERS\netbios.sys 14:39:50.0165 8076 NetBIOS - ok 14:39:50.0197 8076 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\windows\system32\DRIVERS\netbt.sys 14:39:50.0199 8076 NetBT - ok 14:39:50.0212 8076 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\windows\system32\lsass.exe 14:39:50.0213 8076 Netlogon - ok 14:39:50.0265 8076 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\windows\System32\netman.dll 14:39:50.0272 8076 Netman - ok 14:39:50.0308 8076 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:39:50.0311 8076 NetMsmqActivator - ok 14:39:50.0315 8076 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:39:50.0317 8076 NetPipeActivator - ok 14:39:50.0344 8076 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\windows\System32\netprofm.dll 14:39:50.0349 8076 netprofm - ok 14:39:50.0354 8076 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:39:50.0355 8076 NetTcpActivator - ok 14:39:50.0360 8076 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:39:50.0361 8076 NetTcpPortSharing - ok 14:39:50.0385 8076 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\windows\system32\DRIVERS\nfrd960.sys 14:39:50.0387 8076 nfrd960 - ok 14:39:50.0428 8076 [ 43CF5D42FE4475E8E1E74BE484B7E33A ] NIS C:\Program Files (x86)\Norton Internet Security\Engine\17.5.0.127\ccSvcHst.exe 14:39:50.0431 8076 NIS - ok 14:39:50.0478 8076 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\windows\System32\nlasvc.dll 14:39:50.0484 8076 NlaSvc - ok 14:39:50.0499 8076 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\windows\system32\drivers\Npfs.sys 14:39:50.0501 8076 Npfs - ok 14:39:50.0524 8076 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\windows\system32\nsisvc.dll 14:39:50.0527 8076 nsi - ok 14:39:50.0549 8076 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\windows\system32\drivers\nsiproxy.sys 14:39:50.0550 8076 nsiproxy - ok 14:39:50.0610 8076 [ E453ACF4E7D44E5530B5D5F2B9CA8563 ] Ntfs C:\windows\system32\drivers\Ntfs.sys 14:39:50.0630 8076 Ntfs - ok 14:39:50.0652 8076 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\windows\system32\drivers\Null.sys 14:39:50.0654 8076 Null - ok 14:39:50.0705 8076 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\windows\system32\drivers\nvraid.sys 14:39:50.0709 8076 nvraid - ok 14:39:50.0724 8076 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\windows\system32\drivers\nvstor.sys 14:39:50.0728 8076 nvstor - ok 14:39:50.0766 8076 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\windows\system32\drivers\nv_agp.sys 14:39:50.0770 8076 nv_agp - ok 14:39:50.0866 8076 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE 14:39:50.0873 8076 odserv - ok 14:39:50.0910 8076 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\windows\system32\drivers\ohci1394.sys 14:39:50.0913 8076 ohci1394 - ok 14:39:50.0939 8076 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 14:39:50.0955 8076 ose - ok 14:39:50.0985 8076 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\windows\system32\pnrpsvc.dll 14:39:50.0991 8076 p2pimsvc - ok 14:39:51.0015 8076 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\windows\system32\p2psvc.dll 14:39:51.0023 8076 p2psvc - ok 14:39:51.0046 8076 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\windows\system32\DRIVERS\parport.sys 14:39:51.0049 8076 Parport - ok 14:39:51.0075 8076 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\windows\system32\drivers\partmgr.sys 14:39:51.0078 8076 partmgr - ok 14:39:51.0127 8076 [ 9665402B7FA59302D520AD845DDFC026 ] Partner Service C:\ProgramData\Partner\Partner.exe 14:39:51.0133 8076 Partner Service - ok 14:39:51.0156 8076 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\windows\System32\pcasvc.dll 14:39:51.0161 8076 PcaSvc - ok 14:39:51.0172 8076 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\windows\system32\drivers\pci.sys 14:39:51.0175 8076 pci - ok 14:39:51.0212 8076 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\windows\system32\drivers\pciide.sys 14:39:51.0213 8076 pciide - ok 14:39:51.0248 8076 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\windows\system32\DRIVERS\pcmcia.sys 14:39:51.0252 8076 pcmcia - ok 14:39:51.0266 8076 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\windows\system32\drivers\pcw.sys 14:39:51.0268 8076 pcw - ok 14:39:51.0290 8076 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\windows\system32\drivers\peauth.sys 14:39:51.0297 8076 PEAUTH - ok 14:39:51.0392 8076 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\windows\SysWow64\perfhost.exe 14:39:51.0396 8076 PerfHost - ok 14:39:51.0444 8076 [ 663962900E7FEA522126BA287715BB4A ] PGEffect C:\windows\system32\DRIVERS\pgeffect.sys 14:39:51.0446 8076 PGEffect - ok 14:39:51.0546 8076 [ 087A343DFC337F37723DD7912DE6B6CD ] PID_PEPI C:\windows\system32\DRIVERS\LV302V64.SYS 14:39:51.0604 8076 PID_PEPI - ok 14:39:51.0654 8076 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\windows\system32\pla.dll 14:39:51.0670 8076 pla - ok 14:39:51.0714 8076 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\windows\system32\umpnpmgr.dll 14:39:51.0721 8076 PlugPlay - ok 14:39:51.0730 8076 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\windows\system32\pnrpauto.dll 14:39:51.0733 8076 PNRPAutoReg - ok 14:39:51.0752 8076 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\windows\system32\pnrpsvc.dll 14:39:51.0755 8076 PNRPsvc - ok 14:39:51.0783 8076 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\windows\System32\ipsecsvc.dll 14:39:51.0790 8076 PolicyAgent - ok 14:39:51.0827 8076 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\windows\system32\umpo.dll 14:39:51.0830 8076 Power - ok 14:39:51.0880 8076 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\windows\system32\DRIVERS\raspptp.sys 14:39:51.0882 8076 PptpMiniport - ok 14:39:51.0907 8076 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\windows\system32\DRIVERS\processr.sys 14:39:51.0909 8076 Processor - ok 14:39:51.0945 8076 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\windows\system32\profsvc.dll 14:39:51.0949 8076 ProfSvc - ok 14:39:51.0956 8076 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\windows\system32\lsass.exe 14:39:51.0958 8076 ProtectedStorage - ok 14:39:52.0009 8076 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\windows\system32\DRIVERS\pacer.sys 14:39:52.0011 8076 Psched - ok 14:39:52.0070 8076 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\windows\system32\DRIVERS\ql2300.sys 14:39:52.0088 8076 ql2300 - ok 14:39:52.0109 8076 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\windows\system32\DRIVERS\ql40xx.sys 14:39:52.0112 8076 ql40xx - ok 14:39:52.0144 8076 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\windows\system32\qwave.dll 14:39:52.0149 8076 QWAVE - ok 14:39:52.0177 8076 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\windows\system32\drivers\qwavedrv.sys 14:39:52.0180 8076 QWAVEdrv - ok 14:39:52.0193 8076 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\windows\system32\DRIVERS\rasacd.sys 14:39:52.0195 8076 RasAcd - ok 14:39:52.0235 8076 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\windows\system32\DRIVERS\AgileVpn.sys 14:39:52.0238 8076 RasAgileVpn - ok 14:39:52.0258 8076 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\windows\System32\rasauto.dll 14:39:52.0262 8076 RasAuto - ok 14:39:52.0303 8076 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\windows\system32\DRIVERS\rasl2tp.sys 14:39:52.0306 8076 Rasl2tp - ok 14:39:52.0361 8076 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\windows\System32\rasmans.dll 14:39:52.0366 8076 RasMan - ok 14:39:52.0404 8076 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\windows\system32\DRIVERS\raspppoe.sys 14:39:52.0406 8076 RasPppoe - ok 14:39:52.0423 8076 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\windows\system32\DRIVERS\rassstp.sys 14:39:52.0425 8076 RasSstp - ok 14:39:52.0459 8076 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\windows\system32\DRIVERS\rdbss.sys 14:39:52.0463 8076 rdbss - ok 14:39:52.0490 8076 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\windows\system32\DRIVERS\rdpbus.sys 14:39:52.0492 8076 rdpbus - ok 14:39:52.0505 8076 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\windows\system32\DRIVERS\RDPCDD.sys 14:39:52.0506 8076 RDPCDD - ok 14:39:52.0534 8076 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\windows\system32\drivers\rdpencdd.sys 14:39:52.0535 8076 RDPENCDD - ok 14:39:52.0566 8076 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\windows\system32\drivers\rdprefmp.sys 14:39:52.0567 8076 RDPREFMP - ok 14:39:52.0598 8076 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\windows\system32\drivers\RDPWD.sys 14:39:52.0613 8076 RDPWD - ok 14:39:52.0659 8076 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\windows\system32\drivers\rdyboost.sys 14:39:52.0663 8076 rdyboost - ok 14:39:52.0695 8076 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\windows\System32\mprdim.dll 14:39:52.0698 8076 RemoteAccess - ok 14:39:52.0726 8076 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\windows\system32\regsvc.dll 14:39:52.0731 8076 RemoteRegistry - ok 14:39:52.0742 8076 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\windows\System32\RpcEpMap.dll 14:39:52.0745 8076 RpcEptMapper - ok 14:39:52.0772 8076 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\windows\system32\locator.exe 14:39:52.0775 8076 RpcLocator - ok 14:39:52.0819 8076 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\windows\system32\rpcss.dll 14:39:52.0825 8076 RpcSs - ok 14:39:52.0854 8076 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\windows\system32\DRIVERS\rspndr.sys 14:39:52.0857 8076 rspndr - ok 14:39:52.0886 8076 [ 907C4464381B5EBDFDC60F6C7D0DEDFC ] RSUSBSTOR C:\windows\system32\Drivers\RtsUStor.sys 14:39:52.0904 8076 RSUSBSTOR - ok 14:39:52.0946 8076 [ 4E821C740A675F6D040BE41D59A62B1D ] RTHDMIAzAudService C:\windows\system32\drivers\RtHDMIVX.sys 14:39:52.0964 8076 RTHDMIAzAudService - ok 14:39:53.0002 8076 [ FD978B2BF8A9B2390DCBEF435E9C1F9F ] RTL8167 C:\windows\system32\DRIVERS\Rt64win7.sys 14:39:53.0019 8076 RTL8167 - ok 14:39:53.0081 8076 [ 7475548B0BA58EBA4D12414FC9E9DFE6 ] rtl8192se C:\windows\system32\DRIVERS\rtl8192se.sys 14:39:53.0095 8076 rtl8192se - ok 14:39:53.0113 8076 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\windows\system32\lsass.exe 14:39:53.0114 8076 SamSs - ok 14:39:53.0139 8076 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\windows\system32\drivers\sbp2port.sys 14:39:53.0141 8076 sbp2port - ok 14:39:53.0233 8076 [ 794D4B48DFB6E999537C7C3947863463 ] SBSDWSCService C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe 14:39:53.0251 8076 SBSDWSCService - ok 14:39:53.0270 8076 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\windows\System32\SCardSvr.dll 14:39:53.0274 8076 SCardSvr - ok 14:39:53.0298 8076 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\windows\system32\DRIVERS\scfilter.sys 14:39:53.0300 8076 scfilter - ok 14:39:53.0360 8076 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\windows\system32\schedsvc.dll 14:39:53.0374 8076 Schedule - ok 14:39:53.0408 8076 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\windows\System32\certprop.dll 14:39:53.0409 8076 SCPolicySvc - ok 14:39:53.0423 8076 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\windows\System32\SDRSVC.dll 14:39:53.0427 8076 SDRSVC - ok 14:39:53.0456 8076 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\windows\system32\drivers\secdrv.sys 14:39:53.0457 8076 secdrv - ok 14:39:53.0489 8076 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\windows\system32\seclogon.dll 14:39:53.0491 8076 seclogon - ok 14:39:53.0523 8076 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\windows\System32\sens.dll 14:39:53.0526 8076 SENS - ok 14:39:53.0541 8076 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\windows\system32\sensrsvc.dll 14:39:53.0545 8076 SensrSvc - ok 14:39:53.0566 8076 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\windows\system32\DRIVERS\serenum.sys 14:39:53.0568 8076 Serenum - ok 14:39:53.0606 8076 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\windows\system32\DRIVERS\serial.sys 14:39:53.0609 8076 Serial - ok 14:39:53.0660 8076 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\windows\system32\DRIVERS\sermouse.sys 14:39:53.0662 8076 sermouse - ok 14:39:53.0710 8076 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\windows\system32\sessenv.dll 14:39:53.0714 8076 SessionEnv - ok 14:39:53.0740 8076 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\windows\system32\drivers\sffdisk.sys 14:39:53.0742 8076 sffdisk - ok 14:39:53.0762 8076 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\windows\system32\drivers\sffp_mmc.sys 14:39:53.0763 8076 sffp_mmc - ok 14:39:53.0781 8076 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\windows\system32\drivers\sffp_sd.sys 14:39:53.0783 8076 sffp_sd - ok 14:39:53.0811 8076 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\windows\system32\DRIVERS\sfloppy.sys 14:39:53.0813 8076 sfloppy - ok 14:39:53.0854 8076 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\windows\System32\ipnathlp.dll 14:39:53.0860 8076 SharedAccess - ok 14:39:53.0895 8076 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\windows\System32\shsvcs.dll 14:39:53.0902 8076 ShellHWDetection - ok 14:39:53.0949 8076 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\windows\system32\DRIVERS\SiSRaid2.sys 14:39:53.0951 8076 SiSRaid2 - ok 14:39:53.0967 8076 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\windows\system32\DRIVERS\sisraid4.sys 14:39:53.0969 8076 SiSRaid4 - ok 14:39:54.0040 8076 [ A4FAB5F7818A69DA6E740943CB8F7CA9 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe 14:39:54.0044 8076 SkypeUpdate - ok 14:39:54.0083 8076 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\windows\system32\DRIVERS\smb.sys 14:39:54.0086 8076 Smb - ok 14:39:54.0126 8076 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\windows\System32\snmptrap.exe 14:39:54.0129 8076 SNMPTRAP - ok 14:39:54.0136 8076 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\windows\system32\drivers\spldr.sys 14:39:54.0138 8076 spldr - ok 14:39:54.0177 8076 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\windows\System32\spoolsv.exe 14:39:54.0199 8076 Spooler - ok 14:39:54.0341 8076 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\windows\system32\sppsvc.exe 14:39:54.0406 8076 sppsvc - ok 14:39:54.0429 8076 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\windows\system32\sppuinotify.dll 14:39:54.0432 8076 sppuinotify - ok 14:39:54.0480 8076 [ 6820B710C7225D489223D4A6E1AC3E16 ] SRTSP C:\windows\system32\drivers\NISx64\1105000.07F\SRTSP64.SYS 14:39:54.0488 8076 SRTSP - ok 14:39:54.0499 8076 [ 7159E3DEA683FD88C10DA6CF9997162F ] SRTSPX C:\windows\system32\drivers\NISx64\1105000.07F\SRTSPX64.SYS 14:39:54.0501 8076 SRTSPX - ok 14:39:54.0529 8076 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\windows\system32\DRIVERS\srv.sys 14:39:54.0535 8076 srv - ok 14:39:54.0559 8076 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\windows\system32\DRIVERS\srv2.sys 14:39:54.0564 8076 srv2 - ok 14:39:54.0591 8076 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\windows\system32\DRIVERS\srvnet.sys 14:39:54.0594 8076 srvnet - ok 14:39:54.0635 8076 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\windows\System32\ssdpsrv.dll 14:39:54.0641 8076 SSDPSRV - ok 14:39:54.0654 8076 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\windows\system32\sstpsvc.dll 14:39:54.0658 8076 SstpSvc - ok 14:39:54.0687 8076 Steam Client Service - ok 14:39:54.0708 8076 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\windows\system32\DRIVERS\stexstor.sys 14:39:54.0709 8076 stexstor - ok 14:39:54.0758 8076 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\windows\System32\wiaservc.dll 14:39:54.0769 8076 stisvc - ok 14:39:54.0805 8076 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\windows\system32\drivers\swenum.sys 14:39:54.0806 8076 swenum - ok 14:39:54.0837 8076 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\windows\System32\swprv.dll 14:39:54.0845 8076 swprv - ok 14:39:54.0895 8076 [ 470C47DABA9CA3966F0AB3F835D7D135 ] SynTP C:\windows\system32\DRIVERS\SynTP.sys 14:39:54.0899 8076 SynTP - ok 14:39:54.0954 8076 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\windows\system32\sysmain.dll 14:39:54.0980 8076 SysMain - ok 14:39:55.0014 8076 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\windows\System32\TabSvc.dll 14:39:55.0016 8076 TabletInputService - ok 14:39:55.0037 8076 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\windows\System32\tapisrv.dll 14:39:55.0042 8076 TapiSrv - ok 14:39:55.0066 8076 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\windows\System32\tbssvc.dll 14:39:55.0068 8076 TBS - ok 14:39:55.0131 8076 [ 37608401DFDB388CAF66917F6B2D6FB0 ] Tcpip C:\windows\system32\drivers\tcpip.sys 14:39:55.0151 8076 Tcpip - ok 14:39:55.0208 8076 [ 37608401DFDB388CAF66917F6B2D6FB0 ] TCPIP6 C:\windows\system32\DRIVERS\tcpip.sys 14:39:55.0220 8076 TCPIP6 - ok 14:39:55.0263 8076 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\windows\system32\drivers\tcpipreg.sys 14:39:55.0265 8076 tcpipreg - ok 14:39:55.0314 8076 [ FD542B661BD22FA69CA789AD0AC58C29 ] tdcmdpst C:\windows\system32\DRIVERS\tdcmdpst.sys 14:39:55.0332 8076 tdcmdpst - ok 14:39:55.0360 8076 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\windows\system32\drivers\tdpipe.sys 14:39:55.0362 8076 TDPIPE - ok 14:39:55.0390 8076 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\windows\system32\drivers\tdtcp.sys 14:39:55.0406 8076 TDTCP - ok 14:39:55.0437 8076 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\windows\system32\DRIVERS\tdx.sys 14:39:55.0439 8076 tdx - ok 14:39:55.0467 8076 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\windows\system32\drivers\termdd.sys 14:39:55.0469 8076 TermDD - ok 14:39:55.0499 8076 [ 2E648163254233755035B46DD7B89123 ] TermService C:\windows\System32\termsrv.dll 14:39:55.0506 8076 TermService - ok 14:39:55.0533 8076 [ F0344071948D1A1FA732231785A0664C ] Themes C:\windows\system32\themeservice.dll 14:39:55.0535 8076 Themes - ok 14:39:55.0570 8076 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\windows\system32\mmcss.dll 14:39:55.0571 8076 THREADORDER - ok 14:39:55.0636 8076 [ 28644B0523D64EFF2FC7312A2EE74B0A ] TMachInfo C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe 14:39:55.0654 8076 TMachInfo - ok 14:39:55.0690 8076 [ ED32035BDFECED1AD66D459FD9CC1140 ] TODDSrv C:\windows\system32\TODDSrv.exe 14:39:55.0694 8076 TODDSrv - ok 14:39:55.0800 8076 [ 98C864481D62F86EC8AF65BE3419A95B ] TosCoSrv C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe 14:39:55.0808 8076 TosCoSrv - ok 14:39:55.0854 8076 [ 2AB7A4697462EDB0C9DFAFC529746BA9 ] TOSHIBA eco Utility Service C:\Program Files\TOSHIBA\TECO\TecoService.exe 14:39:55.0859 8076 TOSHIBA eco Utility Service - ok 14:39:55.0898 8076 [ 74C2FA8C3765EE71A9C22182EC108457 ] TOSHIBA HDD SSD Alert Service C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe 14:39:55.0901 8076 TOSHIBA HDD SSD Alert Service - ok 14:39:55.0954 8076 [ 97687D094AA597DA366E1194B218CC6C ] TPCHSrv C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe 14:39:55.0966 8076 TPCHSrv - ok 14:39:55.0991 8076 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\windows\System32\trkwks.dll 14:39:55.0995 8076 TrkWks - ok 14:39:56.0060 8076 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\windows\servicing\TrustedInstaller.exe 14:39:56.0064 8076 TrustedInstaller - ok 14:39:56.0096 8076 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\windows\system32\DRIVERS\tssecsrv.sys 14:39:56.0098 8076 tssecsrv - ok 14:39:56.0131 8076 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\windows\system32\drivers\tsusbflt.sys 14:39:56.0134 8076 TsUsbFlt - ok 14:39:56.0180 8076 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\windows\system32\DRIVERS\tunnel.sys 14:39:56.0182 8076 tunnel - ok 14:39:56.0218 8076 [ 550B567F9364D8F7684C3FB3EA665A72 ] TVALZ C:\windows\system32\DRIVERS\TVALZ_O.SYS 14:39:56.0220 8076 TVALZ - ok 14:39:56.0242 8076 [ 9C7191F4B2E49BFF47A6C1144B5923FA ] TVALZFL C:\windows\system32\DRIVERS\TVALZFL.sys 14:39:56.0244 8076 TVALZFL - ok 14:39:56.0280 8076 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\windows\system32\DRIVERS\uagp35.sys 14:39:56.0283 8076 uagp35 - ok 14:39:56.0320 8076 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\windows\system32\DRIVERS\udfs.sys 14:39:56.0326 8076 udfs - ok 14:39:56.0356 8076 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\windows\system32\UI0Detect.exe 14:39:56.0358 8076 UI0Detect - ok 14:39:56.0377 8076 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\windows\system32\drivers\uliagpkx.sys 14:39:56.0379 8076 uliagpkx - ok 14:39:56.0425 8076 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\windows\system32\drivers\umbus.sys 14:39:56.0427 8076 umbus - ok 14:39:56.0461 8076 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\windows\system32\DRIVERS\umpass.sys 14:39:56.0463 8076 UmPass - ok 14:39:56.0588 8076 [ CC3775100ABA633984F73DFAE1F55CAE ] UNS C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe 14:39:56.0618 8076 UNS - ok 14:39:56.0649 8076 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\windows\System32\upnphost.dll 14:39:56.0654 8076 upnphost - ok 14:39:56.0681 8076 [ 82E8F44688E6FAC57B5B7C6FC7ADBC2A ] usbaudio C:\windows\system32\drivers\usbaudio.sys 14:39:56.0683 8076 usbaudio - ok 14:39:56.0729 8076 [ 5FCC71487888589A9244AF54CFEFAB29 ] usbbus C:\windows\system32\DRIVERS\lgx64bus.sys 14:39:56.0732 8076 usbbus - ok 14:39:56.0769 8076 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\windows\system32\DRIVERS\usbccgp.sys 14:39:56.0772 8076 usbccgp - ok 14:39:56.0797 8076 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\windows\system32\drivers\usbcir.sys 14:39:56.0800 8076 usbcir - ok 14:39:56.0852 8076 [ 3FB6E423F7567C92C32EA786F5FD0C69 ] UsbDiag C:\windows\system32\DRIVERS\lgx64diag.sys 14:39:56.0854 8076 UsbDiag - ok 14:39:56.0889 8076 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\windows\system32\drivers\usbehci.sys 14:39:56.0892 8076 usbehci - ok 14:39:56.0940 8076 [ 8E36E68C0B7FA174012A61A290351E49 ] UsbGps C:\windows\system32\DRIVERS\lgx64gps.sys 14:39:56.0942 8076 UsbGps - ok 14:39:56.0988 8076 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\windows\system32\DRIVERS\usbhub.sys 14:39:56.0994 8076 usbhub - ok 14:39:57.0030 8076 [ 78D551F5B93488B4666F5FC8DD4815F3 ] USBModem C:\windows\system32\DRIVERS\lgx64modem.sys 14:39:57.0032 8076 USBModem - ok 14:39:57.0061 8076 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\windows\system32\drivers\usbohci.sys 14:39:57.0063 8076 usbohci - ok 14:39:57.0087 8076 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\windows\system32\DRIVERS\usbprint.sys 14:39:57.0089 8076 usbprint - ok 14:39:57.0106 8076 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\windows\system32\DRIVERS\USBSTOR.SYS 14:39:57.0109 8076 USBSTOR - ok 14:39:57.0122 8076 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\windows\system32\drivers\usbuhci.sys 14:39:57.0125 8076 usbuhci - ok 14:39:57.0177 8076 [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo C:\windows\System32\Drivers\usbvideo.sys 14:39:57.0180 8076 usbvideo - ok 14:39:57.0208 8076 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\windows\System32\uxsms.dll 14:39:57.0211 8076 UxSms - ok 14:39:57.0218 8076 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\windows\system32\lsass.exe 14:39:57.0220 8076 VaultSvc - ok 14:39:57.0245 8076 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\windows\system32\drivers\vdrvroot.sys 14:39:57.0247 8076 vdrvroot - ok 14:39:57.0286 8076 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\windows\System32\vds.exe 14:39:57.0296 8076 vds - ok 14:39:57.0324 8076 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\windows\system32\DRIVERS\vgapnp.sys 14:39:57.0326 8076 vga - ok 14:39:57.0340 8076 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\windows\System32\drivers\vga.sys 14:39:57.0343 8076 VgaSave - ok 14:39:57.0379 8076 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\windows\system32\drivers\vhdmp.sys 14:39:57.0384 8076 vhdmp - ok 14:39:57.0401 8076 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\windows\system32\drivers\viaide.sys 14:39:57.0403 8076 viaide - ok 14:39:57.0422 8076 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\windows\system32\drivers\volmgr.sys 14:39:57.0423 8076 volmgr - ok 14:39:57.0460 8076 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\windows\system32\drivers\volmgrx.sys 14:39:57.0463 8076 volmgrx - ok 14:39:57.0485 8076 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\windows\system32\drivers\volsnap.sys 14:39:57.0489 8076 volsnap - ok 14:39:57.0554 8076 [ 47DDA85BA4C927C9BA679D96B607C213 ] vpnagent C:\Program Files (x86)\Cisco\Cisco AnyConnect VPN Client\vpnagent.exe 14:39:57.0563 8076 vpnagent - ok 14:39:57.0576 8076 [ E526A69D932538AE8BC96B3F4A5A90B1 ] vpnva C:\windows\system32\DRIVERS\vpnva64.sys 14:39:57.0578 8076 vpnva - ok 14:39:57.0619 8076 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\windows\system32\DRIVERS\vsmraid.sys 14:39:57.0622 8076 vsmraid - ok 14:39:57.0691 8076 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\windows\system32\vssvc.exe 14:39:57.0715 8076 VSS - ok 14:39:57.0729 8076 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\windows\system32\DRIVERS\vwifibus.sys 14:39:57.0730 8076 vwifibus - ok 14:39:57.0769 8076 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\windows\system32\DRIVERS\vwififlt.sys 14:39:57.0772 8076 vwififlt - ok 14:39:57.0802 8076 [ 6A638FC4BFDDC4D9B186C28C91BD1A01 ] vwifimp C:\windows\system32\DRIVERS\vwifimp.sys 14:39:57.0803 8076 vwifimp - ok 14:39:57.0840 8076 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\windows\system32\w32time.dll 14:39:57.0847 8076 W32Time - ok 14:39:57.0865 8076 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\windows\system32\DRIVERS\wacompen.sys 14:39:57.0867 8076 WacomPen - ok 14:39:57.0914 8076 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\windows\system32\DRIVERS\wanarp.sys 14:39:57.0917 8076 WANARP - ok 14:39:57.0922 8076 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\windows\system32\DRIVERS\wanarp.sys 14:39:57.0924 8076 Wanarpv6 - ok 14:39:57.0996 8076 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\windows\system32\Wat\WatAdminSvc.exe 14:39:58.0012 8076 WatAdminSvc - ok 14:39:58.0071 8076 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\windows\system32\wbengine.exe 14:39:58.0093 8076 wbengine - ok 14:39:58.0128 8076 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\windows\System32\wbiosrvc.dll 14:39:58.0132 8076 WbioSrvc - ok 14:39:58.0169 8076 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\windows\System32\wcncsvc.dll 14:39:58.0175 8076 wcncsvc - ok 14:39:58.0200 8076 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\windows\System32\WcsPlugInService.dll 14:39:58.0203 8076 WcsPlugInService - ok 14:39:58.0235 8076 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\windows\system32\DRIVERS\wd.sys 14:39:58.0236 8076 Wd - ok 14:39:58.0280 8076 [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000 C:\windows\system32\drivers\Wdf01000.sys 14:39:58.0288 8076 Wdf01000 - ok 14:39:58.0306 8076 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\windows\system32\wdi.dll 14:39:58.0308 8076 WdiServiceHost - ok 14:39:58.0312 8076 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\windows\system32\wdi.dll 14:39:58.0314 8076 WdiSystemHost - ok 14:39:58.0358 8076 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\windows\System32\webclnt.dll 14:39:58.0364 8076 WebClient - ok 14:39:58.0391 8076 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\windows\system32\wecsvc.dll 14:39:58.0397 8076 Wecsvc - ok 14:39:58.0433 8076 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\windows\System32\wercplsupport.dll 14:39:58.0437 8076 wercplsupport - ok 14:39:58.0463 8076 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\windows\System32\WerSvc.dll 14:39:58.0468 8076 WerSvc - ok 14:39:58.0507 8076 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\windows\system32\DRIVERS\wfplwf.sys 14:39:58.0509 8076 WfpLwf - ok 14:39:58.0534 8076 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\windows\system32\drivers\wimmount.sys 14:39:58.0536 8076 WIMMount - ok 14:39:58.0560 8076 WinDefend - ok 14:39:58.0567 8076 WinHttpAutoProxySvc - ok 14:39:58.0626 8076 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\windows\system32\wbem\WMIsvc.dll 14:39:58.0629 8076 Winmgmt - ok 14:39:58.0695 8076 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\windows\system32\WsmSvc.dll 14:39:58.0720 8076 WinRM - ok 14:39:58.0775 8076 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\windows\system32\DRIVERS\WinUsb.sys 14:39:58.0777 8076 WinUsb - ok 14:39:58.0811 8076 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\windows\System32\wlansvc.dll 14:39:58.0823 8076 Wlansvc - ok 14:39:58.0856 8076 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\windows\system32\drivers\wmiacpi.sys 14:39:58.0858 8076 WmiAcpi - ok 14:39:58.0885 8076 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\windows\system32\wbem\WmiApSrv.exe 14:39:58.0889 8076 wmiApSrv - ok 14:39:58.0919 8076 WMPNetworkSvc - ok 14:39:58.0942 8076 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\windows\System32\wpcsvc.dll 14:39:58.0945 8076 WPCSvc - ok 14:39:58.0977 8076 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\windows\system32\wpdbusenum.dll 14:39:58.0981 8076 WPDBusEnum - ok 14:39:59.0011 8076 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\windows\system32\drivers\ws2ifsl.sys 14:39:59.0013 8076 ws2ifsl - ok 14:39:59.0038 8076 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\windows\System32\wscsvc.dll 14:39:59.0042 8076 wscsvc - ok 14:39:59.0047 8076 WSearch - ok 14:39:59.0126 8076 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\windows\system32\wuaueng.dll 14:39:59.0152 8076 wuauserv - ok 14:39:59.0186 8076 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\windows\system32\drivers\WudfPf.sys 14:39:59.0188 8076 WudfPf - ok 14:39:59.0224 8076 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\windows\system32\DRIVERS\WUDFRd.sys 14:39:59.0229 8076 WUDFRd - ok 14:39:59.0267 8076 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\windows\System32\WUDFSvc.dll 14:39:59.0271 8076 wudfsvc - ok 14:39:59.0295 8076 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\windows\System32\wwansvc.dll 14:39:59.0301 8076 WwanSvc - ok 14:39:59.0329 8076 ================ Scan global =============================== 14:39:59.0356 8076 [ BA0CD8C393E8C9F83354106093832C7B ] C:\windows\system32\basesrv.dll 14:39:59.0391 8076 [ 72CC564BBC70DE268784BCE91EB8A28F ] C:\windows\system32\winsrv.dll 14:39:59.0419 8076 [ 72CC564BBC70DE268784BCE91EB8A28F ] C:\windows\system32\winsrv.dll 14:39:59.0452 8076 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\windows\system32\sxssrv.dll 14:39:59.0476 8076 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\windows\system32\services.exe 14:39:59.0482 8076 [Global] - ok 14:39:59.0483 8076 ================ Scan MBR ================================== 14:39:59.0495 8076 [ 5B5E648D12FCADC244C1EC30318E1EB9 ] \Device\Harddisk0\DR0 14:39:59.0723 8076 \Device\Harddisk0\DR0 - ok 14:39:59.0724 8076 ================ Scan VBR ================================== 14:39:59.0737 8076 [ 1700A4A01C4D20C3223021D0123E303A ] \Device\Harddisk0\DR0\Partition1 14:39:59.0739 8076 \Device\Harddisk0\DR0\Partition1 - ok 14:39:59.0740 8076 ============================================================ 14:39:59.0740 8076 Scan finished 14:39:59.0740 8076 ============================================================ 14:39:59.0753 8068 Detected object count: 0 14:39:59.0753 8068 Actual detected object count: 0
First, recent security flaws have been found in Internet Explorer 8 which can leave your computer vulnerable to attack, I would suggest upgrading to IE9 as soon as you have the time as it does not contain the flaws.


It would appear that you have more than one anti-virus solution on your machine. I can see both AVG Anti-Virus Free Edition 2013 and Norton Internet Security installed.
Having more than one anti-virus program on your machine, even if only one is running, can cause conflicts and slowdowns in the performance of the machine.
Before continuing on, please completely uninstall one of the programs. The easiest way to do this is to visit one of these pages and use one of the removal tools listed below:

AVG Removal Tool
Norton Removal Tool

You may want to consider that Norton is also your Firewall, however, eventually you have to pay for Norton to keep it up to date. If you want to remove Norton and want an additional firewall other than Windows firewall (which I find sufficient most of the time) I can recommend some free ones for you. So don't feel tied to Norton if you want to use free products.



P2P - I see you have P2P software ( uTorrent ) installed on your machine. We are not here to pass judgment on file-sharing as a concept. However, we will warn you that engaging in this activity and having this kind of software installed on your machine will always make you more susceptible to re-infections. It likely contributed to your current situation. This page will give you further information.
Please note: Even if you are using a "safe" P2P program, it is only the program that is safe. You will be sharing files from uncertified sources, and these are often infected. The bad guys use P2P filesharing as a major conduit to spread their wares.
Please see this topic for more information:
Perils of P2P File Sharing.
I would strongly recommend that you uninstall these now. You can do so via Control Panel >> Programs and Features.

If you choose to leave them on the machine, please refrain from using them while we are cleaning the machine to prevent further infection.


I suspect the 2 antivirus programs on this machine is what is causing most of your issues on this machine. I don't see anything terribly alarming in your logs. Let's run a couple other scans (and we'll try ESET) after you upgrade to IE9 to see if there is anything that might be there that isn't showing in the DDS logs.

Please download Malwarebytes' Anti-Malware to your desktop.

  • Double-click mbam-setup.exe and follow the prompts to install the program.
  • At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select Perform quick scan, then click Scan.
    [external image: Posted Image]
  • When the scan is complete, click OK, then Show Results to view the results.
  • Be sure that everything is checked, and click Remove Selected .
  • When completed, a log will open in Notepad. Please save it to a convenient location and post the results.
  • Note: If you receive a notice that some of the items couldn't be removed, that they have been added to the delete on reboot list, please reboot.




This scan make take awhile depending on how many items are on the computer. You may want to run it at a time you won't be needing the machine. It should be run from IE and I'd recommend not doing anything else while it's running.


Go here to run an online scannner from ESET.
  • Note: For browsers other than Internet Explorer, you will need to download and install esetsmartinstaller_enu.exe. Click on it and save the file to a convenient location. Double click on it to install and a new window will open.
  • Turn off the real time scanner of any existing antivirus program while performing the online scan
  • Tick the box next to YES, I accept the Terms of Use.
  • Click Start
  • When asked, allow the activex control to install
  • Click Start
  • Make sure that the option Remove found threats is unticked and the Scan Archives option is ticked.
  • Click on Advanced Settings, ensure the options Scan for potentially unwanted applications, Scan for potentially unsafe applications, and Enable Anti-Stealth Technology are ticked.
  • Click Scan
  • Wait for the scan to finish
  • Use notepad to open the logfile located at C:\Program Files\Eset\Eset Online Scanner\log.txt
  • Copy and paste that log as a reply to this topic and also let me know how things are now.

If it doesn't find anything there will be no log to post.


If ESET won't run we'll try a totally different online scanner because since we aren't running any other removal tools (as they don't appear to be necessary at this point) I want to be sure we get an online scan.

Can you tell me other than slowness what symptoms this machine has?
Hi Doris, I updated IE and removed Norton. The main issues are internet latency and dropped connection to the internet. My ISP says that there is no issue on their end and so I recently replaced my router to see if that would help and it did not. They also suggested that maybe I had a virus that was causing these issues. The problem is weird as I can be connected to Skype via the internet yet unable to use the internet via any browsers which indicate that I do not have an internet connection when I know that I do because I am connected to Skype. It is very odd. Malwarebytes Anti-Malware 1.70.0.1100 www.malwarebytes.org Database version: v2013.01.05.09 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 8.0.7601.17514 Karri Toshiba Laptop :: KARRITOSHIBALAP [administrator] 05/01/2013 5:55:18 PM mbam-log-2013-01-05 (17-55-18).txt Scan type: Quick scan Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM Scan options disabled: P2P Objects scanned: 211259 Time elapsed: 3 minute(s), 28 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 1 C:\Users\Karri Toshiba Laptop\Downloads\ffdshow_Setup.exe (PUP.Bundle.Installer.OI) -> Quarantined and deleted successfully. (end) This is what came up for ESET but it said that it found 2 threats but this is the log? ESETSmartInstaller@High as CAB hook log: OnlineScanner64.ocx - registred OK OnlineScanner.ocx - registred OK
Well, that is the ESET log but it isn't showing any threats. I wouldn't worry too much about it.

Let's make sure your IE settings (which also affect other browsers) are set correctly:
Go to Start > Control Panel > Internet Options > Connections > Click on the LAN Settings Button
Ensure that the checkbox for Automatically Detect Settings is Checked.
Please make sure the box for Use a Proxy is Unchecked.
Then click OK, OK and close your Control Panel


Let's also flush your DNS settings. I wouldn't expect Skpe to work if this were the issue but it certainly isn't going to hurt anything.
Copy and paste these lines in Notepad.

@Echo on
pushd\windows\system32\drivers\etc
attrib -h -s -r hosts
echo 127.0.0.1 localhost>HOSTS
attrib +r +h +s hosts
popd
ipconfig /release
ipconfig /renew
ipconfig /flushdns
netsh winsock reset all
netsh int ip reset all
shutdown -r -t 1
del %0


Save as flush.bat to your desktop. Right-click and choose Run as Administrator on the file.
The computer will reboot itself.


Since this problem isn't appearing on Machine #1 right now, I don't think it's a router issue but if we can't resolve it we may want to reset the router if we don't find any other cause.

Does this happen on all browsers or just certain ones?
Hello, I have done everything. When it happens, it gives me a DNS error on *all* browsers, none will work. I have reset both the modem and router and that has not helped. Anything else for me to do on this computer? Thanks,
How often does this happen? I'm thinking the flush of DNS we did should be sufficient on this one, but you won't know until you've had time to play with it. If you want to give it some time and give it a good workout while we continue on that would be fine. Other than that is the machine running ok now? If not - please post back and let me know what's going on BEFORE we move to machine #3. If so - same all clean applies. You can remove DDS and TSDDKiller with a right-click and delete and we can move to machine #3. We can do a final summary at the end for any remaining problems on any of the machines if there are any :). Please provide DDS and TDSSKiller w/skip (same instructions as before) for machine #3.
Computer #3 DDS (Ver_2012-11-20.01) - NTFS_x86 Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 10.9.2 Run by [removed] at 16:13:37 on 2013-01-06 Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.3069.1750 [GMT -5:00] . AV: AVG Anti-Virus Free Edition 2012 *Enabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF} . ============== Running Processes ================ . \??\C:\PROGRA~1\AVG\AVG2012\avgrsx.exe \??\C:\Program Files\AVG\AVG2012\avgcsrvx.exe C:\WINDOWS\system32\spoolsv.exe c:\program files\common files\logishrd\lvmvfm\LVPrcSrv.exe C:\WINDOWS\system32\acs.exe C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\Program Files\AVG\AVG2012\avgwdsvc.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\Java\jre7\bin\jqs.exe C:\WINDOWS\system32\nvsvc32.exe C:\Program Files\AVG\AVG2012\avgnsx.exe C:\Program Files\AVG\AVG2012\avgemcx.exe C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe C:\Program Files\Ralink\Common\RaRegistry.exe C:\Program Files\NETGEAR\WNA1100\WifiSvc.exe C:\Program Files\AVG\AVG2012\avgidsagent.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\wbem\wmiprvse.exe C:\WINDOWS\RTHDCPL.EXE C:\Program Files\AVG\AVG2012\avgtray.exe C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe C:\Program Files\Logitech\QuickCam10\QuickCam10.exe C:\WINDOWS\System32\alg.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Program Files\Common Files\LogiShrd\LComMgr\LVComSX.exe C:\WINDOWS\system32\RunDLL32.exe C:\Program Files\iTunes\iTunesHelper.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Steam\Steam.exe C:\Program Files\NETGEAR\WNA1100\WNA1100.exe C:\Program Files\Ralink\Common\RaUI.exe C:\Program Files\WinZip\WZQKPICK.EXE C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe C:\Program Files\iPod\bin\iPodService.exe C:\Documents and Settings\Pat\Local Settings\Application Data\Google\Chrome\Application\chrome.exe C:\Documents and Settings\Pat\Local Settings\Application Data\Google\Chrome\Application\chrome.exe C:\Documents and Settings\Pat\Local Settings\Application Data\Google\Chrome\Application\chrome.exe C:\Documents and Settings\Pat\Local Settings\Application Data\Google\Chrome\Application\chrome.exe C:\Documents and Settings\Pat\Local Settings\Application Data\Google\Chrome\Application\chrome.exe C:\Documents and Settings\Pat\Local Settings\Application Data\Google\Chrome\Application\chrome.exe C:\Strat-O-Matic Baseball\SomBB.exe C:\Documents and Settings\Pat\Local Settings\Application Data\Google\Chrome\Application\chrome.exe C:\Documents and Settings\Pat\Local Settings\Application Data\Google\Chrome\Application\chrome.exe C:\Program Files\uTorrent\uTorrent.exe C:\Documents and Settings\Pat\Local Settings\Application Data\Google\Chrome\Application\chrome.exe C:\Documents and Settings\Pat\Local Settings\Application Data\Google\Chrome\Application\chrome.exe C:\WINDOWS\system32\wbem\wmiprvse.exe C:\WINDOWS\System32\svchost.exe -k netsvcs C:\WINDOWS\system32\svchost.exe -k NetworkService C:\WINDOWS\system32\svchost.exe -k LocalService C:\WINDOWS\system32\svchost.exe -k LocalService C:\WINDOWS\system32\svchost.exe -k imgsvc . ============== Pseudo HJT Report =============== . BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll BHO: AVG Do Not Track: {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} - c:\program files\avg\avg2012\avgdtiex.dll BHO: Java™ Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll BHO: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe uRun: [Google Update] "c:\documents and settings\pat\local settings\application data\google\update\GoogleUpdate.exe" /c uRun: [Steam] "c:\program files\steam\Steam.exe" -silent mRun: [RTHDCPL] RTHDCPL.EXE mRun: [jswtrayutil] "c:\program files\netgear\wna1100\jswtrayutil.exe" mRun: [AVG_TRAY] "c:\program files\avg\avg2012\avgtray.exe" mRun: [LogitechCommunicationsManager] "c:\program files\common files\logishrd\lcommgr\Communications_Helper.exe" mRun: [LogitechQuickCamRibbon] "c:\program files\logitech\quickcam10\QuickCam10.exe" /hide mRun: [APSDaemon] "c:\program files\common files\apple\apple application support\APSDaemon.exe" mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe" mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe" mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup mRun: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login mRun: [nwiz] c:\program files\nvidia corporation\nview\nwiz.exe /installquiet mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe" StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\netgea~1.lnk - c:\program files\netgear\wna1100\WNA1100.exe StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\ralink~1.lnk - c:\program files\ralink\common\RaUI.exe StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\winzip~1.lnk - c:\program files\winzip\WZQKPICK.EXE uPolicies-Explorer: NoDriveTypeAutoRun = dword:145 mPolicies-Explorer: NoDriveTypeAutoRun = dword:145 IE: {68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} - {68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} - c:\program files\avg\avg2012\avgdtiex.dll IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe TCP: NameServer = 192.168.0.1 TCP: Interfaces\{B90FD862-29A5-4218-BC05-946CA05B0C4A} : DHCPNameServer = 192.168.0.1 Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg2012\avgpp.dll Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll Notify: AtiExtEvent - Ati2evxx.dll SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll . ============= SERVICES / DRIVERS =============== . R0 AVGIDSHX;AVGIDSHX;c:\windows\system32\drivers\avgidshx.sys [2012-4-19 24896] R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [2012-1-31 31952] R1 AppleCharger;AppleCharger;c:\windows\system32\drivers\AppleCharger.sys [2012-7-3 19056] R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [2012-2-22 237408] R1 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\drivers\avgmfx86.sys [2011-12-23 41040] R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [2012-3-19 301920] R2 AVGIDSAgent;AVGIDSAgent;c:\program files\avg\avg2012\avgidsagent.exe [2012-8-13 5167736] R2 avgwd;AVG WatchDog;c:\program files\avg\avg2012\avgwdsvc.exe [2012-2-14 193288] R2 RalinkRegistryWriter;Ralink Registry Writer;c:\program files\ralink\common\RaRegistry.exe [2012-11-6 185632] R2 Scutum50;Scutum50 NDIS Protocol Driver;c:\windows\system32\drivers\Scutum50.sys [2012-11-6 19072] R2 WSWNA1100;WSWNA1100;c:\program files\netgear\wna1100\WifiSvc.exe [2012-7-3 297440] R3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\avgidsdriverx.sys [2011-12-23 139856] R3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\drivers\avgidsfilterx.sys [2011-12-23 24144] R3 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\avgidsshimx.sys [2011-12-23 17232] R3 JSWSCIMD;jswscimd Service;c:\windows\system32\drivers\jswscimd.sys [2012-7-3 57440] R3 rt2870;Ralink 802.11n USB Wireless LAN Card Driver;c:\windows\system32\drivers\rt2870.sys [2012-11-6 779136] R3 usbfilter;AMD USB Filter Driver;c:\windows\system32\drivers\usbfilter.sys [2012-7-3 36096] S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2012-11-9 160944] S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [2012-7-3 1691480] S3 AODDriver;AODDriver;c:\program files\gigabyte\et6\i386\AODDriver.sys [2010-3-12 36864] S3 AppleChargerSrv;AppleChargerSrv;system32\AppleChargerSrv.exe –> system32\AppleChargerSrv.exe [?] S3 AR9271;Atheros AR9271 Wireless Network Adapter Service;c:\windows\system32\drivers\athuw.sys [2012-7-3 1759584] S3 etdrv;etdrv;c:\windows\etdrv.sys [2012-7-3 17488] S3 GVTDrv;GVTDrv;c:\windows\system32\drivers\GVTDrv.sys [2012-7-3 24944] S3 jswpsapi;JumpStart Wi-Fi Protected Setup;c:\program files\netgear\wna1100\jswpsapi.exe [2012-7-3 360529] . =============== Created Last 30 ================ . 2012-12-30 19:13:15 ——– d—–w- c:\program files\iPod 2012-12-30 19:13:12 ——– d—–w- c:\program files\iTunes 2012-12-30 19:13:12 ——– d—–w- c:\documents and settings\all users\application data\188F1432-103A-4ffb-80F1-36B633C5C9E1 2012-12-30 19:08:44 159744 —-a-w- c:\program files\internet explorer\plugins\npqtplugin7.dll 2012-12-30 19:08:44 159744 —-a-w- c:\program files\internet explorer\plugins\npqtplugin6.dll 2012-12-30 19:08:44 159744 —-a-w- c:\program files\internet explorer\plugins\npqtplugin5.dll 2012-12-30 19:08:44 159744 —-a-w- c:\program files\internet explorer\plugins\npqtplugin4.dll 2012-12-30 19:08:44 159744 —-a-w- c:\program files\internet explorer\plugins\npqtplugin3.dll 2012-12-30 19:08:44 159744 —-a-w- c:\program files\internet explorer\plugins\npqtplugin2.dll 2012-12-30 19:08:44 159744 —-a-w- c:\program files\internet explorer\plugins\npqtplugin.dll 2012-12-14 15:30:54 ——– d—–r- c:\program files\Skype . ==================== Find3M ==================== . 2012-12-16 12:23:59 290560 —-a-w- c:\windows\system32\atmfd.dll 2012-12-13 01:16:43 73656 —-a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2012-12-13 01:16:43 697272 —-a-w- c:\windows\system32\FlashPlayerApp.exe 2012-11-13 01:25:12 1866368 —-a-w- c:\windows\system32\win32k.sys 2012-11-02 02:02:42 375296 —-a-w- c:\windows\system32\dpnet.dll 2012-11-01 12:17:54 916992 —-a-w- c:\windows\system32\wininet.dll 2012-11-01 12:17:54 43520 ——w- c:\windows\system32\licmgr10.dll 2012-11-01 12:17:54 1469440 ——w- c:\windows\system32\inetcpl.cpl 2012-11-01 00:35:34 385024 ——w- c:\windows\system32\html.iec 2012-10-25 08:12:26 94208 —-a-w- c:\windows\system32\QuickTimeVR.qtx 2012-10-25 08:12:26 69632 —-a-w- c:\windows\system32\QuickTime.qts 2012-10-10 20:16:42 1101436 —-a-w- c:\windows\system32\nvdrsdb1.bin 2012-10-10 20:16:42 1 —-a-w- c:\windows\system32\nvdrssel.bin 2012-10-10 20:16:38 1101436 —-a-w- c:\windows\system32\nvdrsdb0.bin . ============= FINISH: 16:14:06.67 =============== 16:15:20.0843 5684 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35 16:15:21.0171 5684 ============================================================ 16:15:21.0171 5684 Current date / time: 2013/01/06 16:15:21.0171 16:15:21.0171 5684 SystemInfo: 16:15:21.0171 5684 16:15:21.0171 5684 OS Version: 5.1.2600 ServicePack: 3.0 16:15:21.0171 5684 Product type: Workstation 16:15:21.0171 5684 ComputerName: PAT 16:15:21.0171 5684 UserName: Pat 16:15:21.0171 5684 Windows directory: C:\WINDOWS 16:15:21.0171 5684 System windows directory: C:\WINDOWS 16:15:21.0171 5684 Processor architecture: Intel x86 16:15:21.0171 5684 Number of processors: 2 16:15:21.0171 5684 Page size: 0x1000 16:15:21.0171 5684 Boot type: Normal boot 16:15:21.0171 5684 ============================================================ 16:15:22.0328 5684 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054 16:15:22.0328 5684 ============================================================ 16:15:22.0328 5684 \Device\Harddisk0\DR0: 16:15:22.0328 5684 MBR partitions: 16:15:22.0328 5684 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x3A380D41 16:15:22.0328 5684 ============================================================ 16:15:22.0359 5684 C: <-> \Device\Harddisk0\DR0\Partition1 16:15:22.0359 5684 ============================================================ 16:15:22.0359 5684 Initialize success 16:15:22.0359 5684 ============================================================ 16:15:25.0250 4348 ============================================================ 16:15:25.0250 4348 Scan started 16:15:25.0250 4348 Mode: Manual; 16:15:25.0250 4348 ============================================================ 16:15:26.0125 4348 ================ Scan system memory ======================== 16:15:26.0125 4348 System memory - ok 16:15:26.0125 4348 ================ Scan services ============================= 16:15:26.0203 4348 Abiosdsk - ok 16:15:26.0203 4348 abp480n5 - ok 16:15:26.0250 4348 [ 8FD99680A539792A30E97944FDAECF17 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys 16:15:26.0250 4348 ACPI - ok 16:15:26.0281 4348 [ 9859C0F6936E723E4892D7141B1327D5 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys 16:15:26.0296 4348 ACPIEC - ok 16:15:26.0328 4348 [ 4ACF9052A6355D1530CF782E0919C5B4 ] ACS C:\WINDOWS\system32\acs.exe 16:15:26.0328 4348 ACS - ok 16:15:26.0421 4348 [ 95CE557D16A75606CCC2D7F3B0B0BCCB ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe 16:15:26.0421 4348 AdobeFlashPlayerUpdateSvc - ok 16:15:26.0421 4348 adpu160m - ok 16:15:26.0468 4348 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys 16:15:26.0468 4348 aec - ok 16:15:26.0515 4348 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys 16:15:26.0515 4348 AFD - ok 16:15:26.0531 4348 Aha154x - ok 16:15:26.0531 4348 aic78u2 - ok 16:15:26.0531 4348 aic78xx - ok 16:15:26.0562 4348 [ A9A3DAA780CA6C9671A19D52456705B4 ] Alerter C:\WINDOWS\system32\alrsvc.dll 16:15:26.0562 4348 Alerter - ok 16:15:26.0578 4348 [ 8C515081584A38AA007909CD02020B3D ] ALG C:\WINDOWS\System32\alg.exe 16:15:26.0578 4348 ALG - ok 16:15:26.0593 4348 AliIde - ok 16:15:26.0671 4348 [ 267FC636801EDC5AB28E14036349E3BE ] Ambfilt C:\WINDOWS\system32\drivers\Ambfilt.sys 16:15:26.0703 4348 Ambfilt - ok 16:15:26.0734 4348 [ B39F8C63F6E0655B6CF99899BE039250 ] amdide C:\WINDOWS\system32\DRIVERS\amdide.sys 16:15:26.0734 4348 amdide - ok 16:15:26.0734 4348 amsint - ok 16:15:26.0796 4348 [ 5BD30B502168013C9EA03A5C2F1C9776 ] AODDriver C:\Program Files\GIGABYTE\ET6\i386\AODDriver.sys 16:15:26.0796 4348 AODDriver - ok 16:15:26.0875 4348 [ A5299D04ED225D64CF07A568A3E1BF8C ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe 16:15:26.0875 4348 Apple Mobile Device - ok 16:15:26.0890 4348 [ F5F0F78286A849BC0E45E0E99065B04F ] AppleCharger C:\WINDOWS\system32\DRIVERS\AppleCharger.sys 16:15:26.0890 4348 AppleCharger - ok 16:15:26.0921 4348 [ 95EF7247C50C7241FDAE39A9B3AFF4AE ] AppleChargerSrv C:\WINDOWS\system32\AppleChargerSrv.exe 16:15:26.0921 4348 AppleChargerSrv - ok 16:15:26.0937 4348 [ D8849F77C0B66226335A59D26CB4EDC6 ] AppMgmt C:\WINDOWS\System32\appmgmts.dll 16:15:26.0953 4348 AppMgmt - ok 16:15:27.0000 4348 [ 3BC98A53C0ABE3FEB3B2B9B3BD9E7AA5 ] AR9271 C:\WINDOWS\system32\DRIVERS\athuw.sys 16:15:27.0031 4348 AR9271 - ok 16:15:27.0031 4348 asc - ok 16:15:27.0031 4348 asc3350p - ok 16:15:27.0046 4348 asc3550 - ok 16:15:27.0203 4348 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe 16:15:27.0218 4348 aspnet_state - ok 16:15:27.0250 4348 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys 16:15:27.0281 4348 AsyncMac - ok 16:15:27.0359 4348 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys 16:15:27.0359 4348 atapi - ok 16:15:27.0359 4348 Atdisk - ok 16:15:27.0421 4348 [ 288E9F9CB529B4F7C6B58FC53940FB46 ] Ati HotKey Poller C:\WINDOWS\system32\Ati2evxx.exe 16:15:27.0421 4348 Ati HotKey Poller - ok 16:15:27.0546 4348 [ 913DA327AD22C6FA44C41D36FD8CC570 ] ati2mtag C:\WINDOWS\system32\DRIVERS\ati2mtag.sys 16:15:27.0640 4348 ati2mtag - ok 16:15:27.0671 4348 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys 16:15:27.0671 4348 Atmarpc - ok 16:15:27.0703 4348 [ DEF7A7882BEC100FE0B2CE2549188F9D ] AudioSrv C:\WINDOWS\System32\audiosrv.dll 16:15:27.0703 4348 AudioSrv - ok 16:15:27.0750 4348 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys 16:15:27.0750 4348 audstub - ok 16:15:27.0906 4348 [ F6A528DE535396C2FB1A4E3C6F00CEC4 ] AVGIDSAgent C:\Program Files\AVG\AVG2012\avgidsagent.exe 16:15:27.0984 4348 AVGIDSAgent - ok 16:15:28.0015 4348 [ 1074F787080068C71303B61FAE7E7CA4 ] AVGIDSDriver C:\WINDOWS\system32\DRIVERS\avgidsdriverx.sys 16:15:28.0031 4348 AVGIDSDriver - ok 16:15:28.0062 4348 [ 61A7E0B02F82CFF3DB2445BBE50B3589 ] AVGIDSFilter C:\WINDOWS\system32\DRIVERS\avgidsfilterx.sys 16:15:28.0062 4348 AVGIDSFilter - ok 16:15:28.0109 4348 [ D63D83659EEDF60B3A3E620281A888E5 ] AVGIDSHX C:\WINDOWS\system32\DRIVERS\avgidshx.sys 16:15:28.0109 4348 AVGIDSHX - ok 16:15:28.0156 4348 [ BAF975B72062F53D327788E99D64197E ] AVGIDSShim C:\WINDOWS\system32\DRIVERS\avgidsshimx.sys 16:15:28.0156 4348 AVGIDSShim - ok 16:15:28.0171 4348 [ DCB09125C8B4766A88C86914B65487C1 ] Avgldx86 C:\WINDOWS\system32\DRIVERS\avgldx86.sys 16:15:28.0171 4348 Avgldx86 - ok 16:15:28.0203 4348 [ CCDD61545AAEA265977E4B1EFDC74E8C ] Avgmfx86 C:\WINDOWS\system32\DRIVERS\avgmfx86.sys 16:15:28.0203 4348 Avgmfx86 - ok 16:15:28.0218 4348 [ 1FD90B28D2C3100BF4500199C8AD6358 ] Avgrkx86 C:\WINDOWS\system32\DRIVERS\avgrkx86.sys 16:15:28.0218 4348 Avgrkx86 - ok 16:15:28.0281 4348 [ C0BC3B2E3FD625E7F55E1FF863E94592 ] Avgtdix C:\WINDOWS\system32\DRIVERS\avgtdix.sys 16:15:28.0281 4348 Avgtdix - ok 16:15:28.0328 4348 [ EA1145DEBCD508FD25BD1E95C4346929 ] avgwd C:\Program Files\AVG\AVG2012\avgwdsvc.exe 16:15:28.0328 4348 avgwd - ok 16:15:28.0375 4348 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys 16:15:28.0375 4348 Beep - ok 16:15:28.0421 4348 [ 574738F61FCA2935F5265DC4E5691314 ] BITS C:\WINDOWS\system32\qmgr.dll 16:15:28.0421 4348 BITS - ok 16:15:28.0484 4348 [ DB5BEA73EDAF19AC68B2C0FAD0F92B1A ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe 16:15:28.0484 4348 Bonjour Service - ok 16:15:28.0531 4348 [ CFD4E51402DA9838B5A04AE680AF54A0 ] Browser C:\WINDOWS\System32\browser.dll 16:15:28.0531 4348 Browser - ok 16:15:28.0562 4348 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys 16:15:28.0562 4348 cbidf2k - ok 16:15:28.0578 4348 [ 0BE5AEF125BE881C4F854C554F2B025C ] CCDECODE C:\WINDOWS\system32\DRIVERS\CCDECODE.sys 16:15:28.0578 4348 CCDECODE - ok 16:15:28.0578 4348 cd20xrnt - ok 16:15:28.0625 4348 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys 16:15:28.0625 4348 Cdaudio - ok 16:15:28.0656 4348 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys 16:15:28.0656 4348 Cdfs - ok 16:15:28.0703 4348 [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys 16:15:28.0703 4348 Cdrom - ok 16:15:28.0703 4348 Changer - ok 16:15:28.0734 4348 [ 1CFE720EB8D93A7158A4EBC3AB178BDE ] CiSvc C:\WINDOWS\system32\cisvc.exe 16:15:28.0734 4348 CiSvc - ok 16:15:28.0734 4348 [ 34CBE729F38138217F9C80212A2A0C82 ] ClipSrv C:\WINDOWS\system32\clipsrv.exe 16:15:28.0734 4348 ClipSrv - ok 16:15:28.0765 4348 [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 16:15:28.0781 4348 clr_optimization_v2.0.50727_32 - ok 16:15:28.0781 4348 CmdIde - ok 16:15:28.0781 4348 COMSysApp - ok 16:15:28.0796 4348 Cpqarray - ok 16:15:28.0843 4348 [ 3D4E199942E29207970E04315D02AD3B ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll 16:15:28.0843 4348 CryptSvc - ok 16:15:28.0843 4348 dac2w2k - ok 16:15:28.0843 4348 dac960nt - ok 16:15:28.0890 4348 [ 6B27A5C03DFB94B4245739065431322C ] DcomLaunch C:\WINDOWS\system32\rpcss.dll 16:15:28.0906 4348 DcomLaunch - ok 16:15:28.0937 4348 [ 5E38D7684A49CACFB752B046357E0589 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll 16:15:28.0953 4348 Dhcp - ok 16:15:28.0968 4348 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys 16:15:28.0968 4348 Disk - ok 16:15:28.0968 4348 dmadmin - ok 16:15:29.0015 4348 [ D992FE1274BDE0F84AD826ACAE022A41 ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys 16:15:29.0015 4348 dmboot - ok 16:15:29.0031 4348 [ 7C824CF7BBDE77D95C08005717A95F6F ] dmio C:\WINDOWS\system32\drivers\dmio.sys 16:15:29.0031 4348 dmio - ok 16:15:29.0031 4348 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys 16:15:29.0031 4348 dmload - ok 16:15:29.0031 4348 [ 57EDEC2E5F59F0335E92F35184BC8631 ] dmserver C:\WINDOWS\System32\dmserver.dll 16:15:29.0046 4348 dmserver - ok 16:15:29.0046 4348 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys 16:15:29.0046 4348 DMusic - ok 16:15:29.0093 4348 [ 5F7E24FA9EAB896051FFB87F840730D2 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll 16:15:29.0093 4348 Dnscache - ok 16:15:29.0125 4348 [ 0F0F6E687E5E15579EF4DA8DD6945814 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll 16:15:29.0125 4348 Dot3svc - ok 16:15:29.0125 4348 dpti2o - ok 16:15:29.0125 4348 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys 16:15:29.0125 4348 drmkaud - ok 16:15:29.0156 4348 [ 2187855A7703ADEF0CEF9EE4285182CC ] EapHost C:\WINDOWS\System32\eapsvc.dll 16:15:29.0156 4348 EapHost - ok 16:15:29.0156 4348 [ BC93B4A066477954555966D77FEC9ECB ] ERSvc C:\WINDOWS\System32\ersvc.dll 16:15:29.0156 4348 ERSvc - ok 16:15:29.0187 4348 [ 3AF0AE042AFE486B22644CD3FBEBF2E2 ] etdrv C:\WINDOWS\etdrv.sys 16:15:29.0187 4348 etdrv - ok 16:15:29.0203 4348 [ 65DF52F5B8B6E9BBD183505225C37315 ] Eventlog C:\WINDOWS\system32\services.exe 16:15:29.0218 4348 Eventlog - ok 16:15:29.0250 4348 [ D4991D98F2DB73C60D042F1AEF79EFAE ] EventSystem C:\WINDOWS\system32\es.dll 16:15:29.0265 4348 EventSystem - ok 16:15:29.0296 4348 [ 38D332A6D56AF32635675F132548343E ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys 16:15:29.0296 4348 Fastfat - ok 16:15:29.0343 4348 [ 99BC0B50F511924348BE19C7C7313BBF ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll 16:15:29.0343 4348 FastUserSwitchingCompatibility - ok 16:15:29.0390 4348 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc C:\WINDOWS\system32\drivers\Fdc.sys 16:15:29.0390 4348 Fdc - ok 16:15:29.0406 4348 [ D45926117EB9FA946A6AF572FBE1CAA3 ] Fips C:\WINDOWS\system32\drivers\Fips.sys 16:15:29.0406 4348 Fips - ok 16:15:29.0421 4348 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys 16:15:29.0421 4348 Flpydisk - ok 16:15:29.0453 4348 [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr C:\WINDOWS\system32\DRIVERS\fltMgr.sys 16:15:29.0453 4348 FltMgr - ok 16:15:29.0500 4348 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe 16:15:29.0500 4348 FontCache3.0.0.0 - ok 16:15:29.0500 4348 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys 16:15:29.0500 4348 Fs_Rec - ok 16:15:29.0515 4348 [ 6AC26732762483366C3969C9E4D2259D ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys 16:15:29.0515 4348 Ftdisk - ok 16:15:29.0546 4348 [ D556CB79967E92B5CC69686D16C1D846 ] gdrv C:\WINDOWS\gdrv.sys 16:15:29.0546 4348 gdrv - ok 16:15:29.0578 4348 [ 185ADA973B5020655CEE342059A86CBB ] GEARAspiWDM C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys 16:15:29.0578 4348 GEARAspiWDM - ok 16:15:29.0593 4348 [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys 16:15:29.0593 4348 Gpc - ok 16:15:29.0609 4348 [ 689A8EEF2A2D62B28A0A578A6196531C ] GVTDrv C:\WINDOWS\system32\Drivers\GVTDrv.sys 16:15:29.0609 4348 GVTDrv - ok 16:15:29.0656 4348 [ 573C7D0A32852B48F3058CFD8026F511 ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys 16:15:29.0656 4348 HDAudBus - ok 16:15:29.0703 4348 [ 4FCCA060DFE0C51A09DD5C3843888BCD ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll 16:15:29.0703 4348 helpsvc - ok 16:15:29.0750 4348 [ DEB04DA35CC871B6D309B77E1443C796 ] HidServ C:\WINDOWS\System32\hidserv.dll 16:15:29.0750 4348 HidServ - ok 16:15:29.0796 4348 [ CCF82C5EC8A7326C3066DE870C06DAF1 ] hidusb C:\WINDOWS\system32\DRIVERS\hidusb.sys 16:15:29.0796 4348 hidusb - ok 16:15:29.0828 4348 [ 8878BD685E490239777BFE51320B88E9 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll 16:15:29.0828 4348 hkmsvc - ok 16:15:29.0828 4348 hpn - ok 16:15:29.0859 4348 [ F80A415EF82CD06FFAF0D971528EAD38 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys 16:15:29.0859 4348 HTTP - ok 16:15:29.0875 4348 [ 6100A808600F44D999CEBDEF8841C7A3 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll 16:15:29.0875 4348 HTTPFilter - ok 16:15:29.0890 4348 i2omgmt - ok 16:15:29.0890 4348 i2omp - ok 16:15:29.0890 4348 [ 4A0B06AA8943C1E332520F7440C0AA30 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys 16:15:29.0890 4348 i8042prt - ok 16:15:29.0953 4348 [ 1CF03C69B49ACB70C722DF92755C0C8C ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe 16:15:29.0953 4348 IDriverT - ok 16:15:30.0000 4348 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe 16:15:30.0015 4348 idsvc - ok 16:15:30.0046 4348 [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys 16:15:30.0046 4348 Imapi - ok 16:15:30.0093 4348 [ 30DEAF54A9755BB8546168CFE8A6B5E1 ] ImapiService C:\WINDOWS\system32\imapi.exe 16:15:30.0093 4348 ImapiService - ok 16:15:30.0093 4348 ini910u - ok 16:15:30.0218 4348 [ 58DABDEF7A35F9E3AB1FABD2CBAF3D13 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RtkHDAud.sys 16:15:30.0343 4348 IntcAzAudAddService - ok 16:15:30.0359 4348 IntelIde - ok 16:15:30.0375 4348 [ 3BB22519A194418D5FEC05D800A19AD0 ] Ip6Fw C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys 16:15:30.0375 4348 Ip6Fw - ok 16:15:30.0390 4348 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 16:15:30.0406 4348 IpFilterDriver - ok 16:15:30.0406 4348 [ B87AB476DCF76E72010632B5550955F5 ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys 16:15:30.0406 4348 IpInIp - ok 16:15:30.0406 4348 [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys 16:15:30.0406 4348 IpNat - ok 16:15:30.0421 4348 [ E8A39D41474BE42FD8830CED32932D6C ] iPod Service C:\Program Files\iPod\bin\iPodService.exe 16:15:30.0437 4348 iPod Service - ok 16:15:30.0453 4348 [ 23C74D75E36E7158768DD63D92789A91 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys 16:15:30.0453 4348 IPSec - ok 16:15:30.0468 4348 [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys 16:15:30.0468 4348 IRENUM - ok 16:15:30.0500 4348 [ 05A299EC56E52649B1CF2FC52D20F2D7 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys 16:15:30.0500 4348 isapnp - ok 16:15:30.0578 4348 [ B591E761161D1EF547D76EF236EAA6A5 ] JavaQuickStarterService C:\Program Files\Java\jre7\bin\jqs.exe 16:15:30.0578 4348 JavaQuickStarterService - ok 16:15:30.0671 4348 [ AD7C73C72480EECB7675C90EB565E7CB ] jswpsapi C:\Program Files\NETGEAR\WNA1100\jswpsapi.exe 16:15:30.0671 4348 jswpsapi - ok 16:15:30.0718 4348 [ AD67795900AA8C05CC4570F5349E0639 ] JSWSCIMD C:\WINDOWS\system32\DRIVERS\jswscimd.sys 16:15:30.0718 4348 JSWSCIMD - ok 16:15:30.0765 4348 [ 463C1EC80CD17420A542B7F36A36F128 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys 16:15:30.0765 4348 Kbdclass - ok 16:15:30.0796 4348 [ 692BCF44383D056AED41B045A323D378 ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys 16:15:30.0812 4348 kmixer - ok 16:15:30.0828 4348 [ B467646C54CC746128904E1654C750C1 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys 16:15:30.0828 4348 KSecDD - ok 16:15:30.0859 4348 [ 3A7C3CBE5D96B8AE96CE81F0B22FB527 ] LanmanServer C:\WINDOWS\System32\srvsvc.dll 16:15:30.0859 4348 LanmanServer - ok 16:15:30.0906 4348 [ A8888A5327621856C0CEC4E385F69309 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll 16:15:30.0906 4348 lanmanworkstation - ok 16:15:30.0906 4348 lbrtfdc - ok 16:15:30.0953 4348 [ A7DB739AE99A796D91580147E919CC59 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll 16:15:30.0968 4348 LmHosts - ok 16:15:31.0031 4348 [ 9A3D4FC6B86E7E36473079AB76AC703D ] LVcKap C:\WINDOWS\system32\DRIVERS\LVcKap.sys 16:15:31.0046 4348 LVcKap - ok 16:15:31.0093 4348 [ 0ACBC11F19320AF6C19F2E20013D9095 ] LVMVDrv C:\WINDOWS\system32\DRIVERS\LVMVDrv.sys 16:15:31.0125 4348 LVMVDrv - ok 16:15:31.0156 4348 [ 12866641284EBB41E627BB53C04DA959 ] LVPr2Mon C:\WINDOWS\system32\DRIVERS\LVPr2Mon.sys 16:15:31.0171 4348 LVPr2Mon - ok 16:15:31.0203 4348 [ 995D0B52870C7A5CAF3EA165FD674A35 ] LVPrcSrv c:\program files\common files\logishrd\lvmvfm\LVPrcSrv.exe 16:15:31.0203 4348 LVPrcSrv - ok 16:15:31.0203 4348 [ A005CEE9BE199C5E375FAA559CA9A7A9 ] LVSrvLauncher C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe 16:15:31.0218 4348 LVSrvLauncher - ok 16:15:31.0265 4348 [ 64BC29C3A0388BFC580BB8B1346F7659 ] LVUSBSta C:\WINDOWS\system32\drivers\LVUSBSta.sys 16:15:31.0265 4348 LVUSBSta - ok 16:15:31.0296 4348 [ 986B1FF5814366D71E0AC5755C88F2D3 ] Messenger C:\WINDOWS\System32\msgsvc.dll 16:15:31.0296 4348 Messenger - ok 16:15:31.0328 4348 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys 16:15:31.0328 4348 mnmdd - ok 16:15:31.0375 4348 [ D18F1F0C101D06A1C1ADF26EED16FCDD ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe 16:15:31.0375 4348 mnmsrvc - ok 16:15:31.0375 4348 [ DFCBAD3CEC1C5F964962AE10E0BCC8E1 ] Modem C:\WINDOWS\system32\drivers\Modem.sys 16:15:31.0375 4348 Modem - ok 16:15:31.0406 4348 [ C7D9F9717916B34C1B00DD4834AF485C ] Monfilt C:\WINDOWS\system32\drivers\Monfilt.sys 16:15:31.0484 4348 Monfilt - ok 16:15:31.0500 4348 [ 35C9E97194C8CFB8430125F8DBC34D04 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys 16:15:31.0500 4348 Mouclass - ok 16:15:31.0515 4348 [ B1C303E17FB9D46E87A98E4BA6769685 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys 16:15:31.0515 4348 mouhid - ok 16:15:31.0546 4348 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys 16:15:31.0562 4348 MountMgr - ok 16:15:31.0562 4348 mraid35x - ok 16:15:31.0562 4348 [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys 16:15:31.0562 4348 MRxDAV - ok 16:15:31.0593 4348 [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 16:15:31.0609 4348 MRxSmb - ok 16:15:31.0625 4348 [ A137F1470499A205ABBB9AAFB3B6F2B1 ] MSDTC C:\WINDOWS\system32\msdtc.exe 16:15:31.0625 4348 MSDTC - ok 16:15:31.0625 4348 [ C941EA2454BA8350021D774DAF0F1027 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys 16:15:31.0625 4348 Msfs - ok 16:15:31.0640 4348 MSIServer - ok 16:15:31.0671 4348 [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys 16:15:31.0671 4348 MSKSSRV - ok 16:15:31.0671 4348 [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys 16:15:31.0671 4348 MSPCLOCK - ok 16:15:31.0671 4348 [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys 16:15:31.0671 4348 MSPQM - ok 16:15:31.0703 4348 [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys 16:15:31.0703 4348 mssmbios - ok 16:15:31.0718 4348 [ E53736A9E30C45FA9E7B5EAC55056D1D ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys 16:15:31.0718 4348 MSTEE - ok 16:15:31.0734 4348 [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup C:\WINDOWS\system32\drivers\Mup.sys 16:15:31.0734 4348 Mup - ok 16:15:31.0750 4348 [ 5B50F1B2A2ED47D560577B221DA734DB ] NABTSFEC C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys 16:15:31.0765 4348 NABTSFEC - ok 16:15:31.0781 4348 [ 0102140028FAD045756796E1C685D695 ] napagent C:\WINDOWS\System32\qagentrt.dll 16:15:31.0781 4348 napagent - ok 16:15:31.0796 4348 [ 1DF7F42665C94B825322FAE71721130D ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys 16:15:31.0796 4348 NDIS - ok 16:15:31.0812 4348 [ 7FF1F1FD8609C149AA432F95A8163D97 ] NdisIP C:\WINDOWS\system32\DRIVERS\NdisIP.sys 16:15:31.0812 4348 NdisIP - ok 16:15:31.0859 4348 [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys 16:15:31.0859 4348 NdisTapi - ok 16:15:31.0890 4348 [ F927A4434C5028758A842943EF1A3849 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys 16:15:31.0906 4348 Ndisuio - ok 16:15:31.0921 4348 [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys 16:15:31.0921 4348 NdisWan - ok 16:15:31.0937 4348 [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys 16:15:31.0937 4348 NDProxy - ok 16:15:31.0953 4348 [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys 16:15:31.0953 4348 NetBIOS - ok 16:15:31.0968 4348 [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys 16:15:31.0984 4348 NetBT - ok 16:15:32.0000 4348 [ B857BA82860D7FF85AE29B095645563B ] NetDDE C:\WINDOWS\system32\netdde.exe 16:15:32.0000 4348 NetDDE - ok 16:15:32.0015 4348 [ B857BA82860D7FF85AE29B095645563B ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe 16:15:32.0015 4348 NetDDEdsdm - ok 16:15:32.0031 4348 [ BF2466B3E18E970D8A976FB95FC1CA85 ] Netlogon C:\WINDOWS\system32\lsass.exe 16:15:32.0031 4348 Netlogon - ok 16:15:32.0046 4348 [ 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE ] Netman C:\WINDOWS\System32\netman.dll 16:15:32.0046 4348 Netman - ok 16:15:32.0078 4348 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe 16:15:32.0093 4348 NetTcpPortSharing - ok 16:15:32.0109 4348 [ 943337D786A56729263071623BBB9DE5 ] Nla C:\WINDOWS\System32\mswsock.dll 16:15:32.0109 4348 Nla - ok 16:15:32.0125 4348 [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys 16:15:32.0125 4348 Npfs - ok 16:15:32.0171 4348 [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys 16:15:32.0187 4348 Ntfs - ok 16:15:32.0187 4348 [ BF2466B3E18E970D8A976FB95FC1CA85 ] NtLmSsp C:\WINDOWS\system32\lsass.exe 16:15:32.0187 4348 NtLmSsp - ok 16:15:32.0218 4348 [ 156F64A3345BD23C600655FB4D10BC08 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll 16:15:32.0218 4348 NtmsSvc - ok 16:15:32.0250 4348 [ CF7E041663119E09D2E118521ADA9300 ] NuidFltr C:\WINDOWS\system32\DRIVERS\NuidFltr.sys 16:15:32.0250 4348 NuidFltr - ok 16:15:32.0265 4348 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys 16:15:32.0265 4348 Null - ok 16:15:32.0500 4348 [ 68B8C35782FFD20973524F748234B5A9 ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys 16:15:32.0890 4348 nv - ok 16:15:32.0937 4348 [ A211AB524324E84C2C805B52DFCDD544 ] NVHDA C:\WINDOWS\system32\drivers\nvhda32.sys 16:15:32.0937 4348 NVHDA - ok 16:15:32.0984 4348 [ FFD30DAAF62D605069F6EB42D2E807C3 ] NVSvc C:\WINDOWS\system32\nvsvc32.exe 16:15:32.0984 4348 NVSvc - ok 16:15:33.0109 4348 [ 210EE09CB9C2655E55BD48D851369DC1 ] nvUpdatusService C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe 16:15:33.0125 4348 nvUpdatusService - ok 16:15:33.0156 4348 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys 16:15:33.0156 4348 NwlnkFlt - ok 16:15:33.0156 4348 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys 16:15:33.0156 4348 NwlnkFwd - ok 16:15:33.0187 4348 [ 5575FAF8F97CE5E713D108C2A58D7C7C ] Parport C:\WINDOWS\system32\drivers\Parport.sys 16:15:33.0187 4348 Parport - ok 16:15:33.0187 4348 [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys 16:15:33.0203 4348 PartMgr - ok 16:15:33.0234 4348 [ 70E98B3FD8E963A6A46A2E6247E0BEA1 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys 16:15:33.0234 4348 ParVdm - ok 16:15:33.0234 4348 [ A219903CCF74233761D92BEF471A07B1 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys 16:15:33.0234 4348 PCI - ok 16:15:33.0234 4348 PCIDump - ok 16:15:33.0234 4348 [ CCF5F451BB1A5A2A522A76E670000FF0 ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys 16:15:33.0250 4348 PCIIde - ok 16:15:33.0265 4348 [ 9E89EF60E9EE05E3F2EEF2DA7397F1C1 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys 16:15:33.0265 4348 Pcmcia - ok 16:15:33.0265 4348 PDCOMP - ok 16:15:33.0265 4348 PDFRAME - ok 16:15:33.0281 4348 PDRELI - ok 16:15:33.0281 4348 PDRFRAME - ok 16:15:33.0312 4348 [ EA99A71316519D755F50A2AE2F828D9F ] pepifilter C:\WINDOWS\system32\DRIVERS\lv302af.sys 16:15:33.0312 4348 pepifilter - ok 16:15:33.0312 4348 perc2 - ok 16:15:33.0312 4348 perc2hib - ok 16:15:33.0375 4348 [ 84B9084692FE00DF09F20E516D831C57 ] PID_PEPI C:\WINDOWS\system32\DRIVERS\LV302V32.SYS 16:15:33.0390 4348 PID_PEPI - ok 16:15:33.0406 4348 [ 65DF52F5B8B6E9BBD183505225C37315 ] PlugPlay C:\WINDOWS\system32\services.exe 16:15:33.0406 4348 PlugPlay - ok 16:15:33.0421 4348 [ BF2466B3E18E970D8A976FB95FC1CA85 ] PolicyAgent C:\WINDOWS\system32\lsass.exe 16:15:33.0421 4348 PolicyAgent - ok 16:15:33.0421 4348 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys 16:15:33.0421 4348 PptpMiniport - ok 16:15:33.0468 4348 [ A32BEBAF723557681BFC6BD93E98BD26 ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys 16:15:33.0468 4348 Processor - ok 16:15:33.0468 4348 [ BF2466B3E18E970D8A976FB95FC1CA85 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe 16:15:33.0468 4348 ProtectedStorage - ok 16:15:33.0484 4348 [ 09298EC810B07E5D582CB3A3F9255424 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys 16:15:33.0484 4348 PSched - ok 16:15:33.0484 4348 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys 16:15:33.0484 4348 Ptilink - ok 16:15:33.0484 4348 ql1080 - ok 16:15:33.0500 4348 Ql10wnt - ok 16:15:33.0500 4348 ql12160 - ok 16:15:33.0500 4348 ql1240 - ok 16:15:33.0515 4348 ql1280 - ok 16:15:33.0609 4348 [ 2EE6D9CAB03900646D1D3D9077167BD6 ] RalinkRegistryWriter C:\Program Files\Ralink\Common\RaRegistry.exe 16:15:33.0609 4348 RalinkRegistryWriter - ok 16:15:33.0609 4348 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys 16:15:33.0609 4348 RasAcd - ok 16:15:33.0640 4348 [ AD188BE7BDF94E8DF4CA0A55C00A5073 ] RasAuto C:\WINDOWS\System32\rasauto.dll 16:15:33.0656 4348 RasAuto - ok 16:15:33.0671 4348 [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys 16:15:33.0671 4348 Rasl2tp - ok 16:15:33.0703 4348 [ 76A9A3CBEADD68CC57CDA5E1D7448235 ] RasMan C:\WINDOWS\System32\rasmans.dll 16:15:33.0703 4348 RasMan - ok 16:15:33.0703 4348 [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys 16:15:33.0703 4348 RasPppoe - ok 16:15:33.0718 4348 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys 16:15:33.0718 4348 Raspti - ok 16:15:33.0734 4348 [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys 16:15:33.0734 4348 Rdbss - ok 16:15:33.0750 4348 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys 16:15:33.0750 4348 RDPCDD - ok 16:15:33.0765 4348 [ 15CABD0F7C00C47C70124907916AF3F1 ] rdpdr C:\WINDOWS\system32\DRIVERS\rdpdr.sys 16:15:33.0765 4348 rdpdr - ok 16:15:33.0812 4348 [ 43AF5212BD8FB5BA6EED9754358BD8F7 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys 16:15:33.0812 4348 RDPWD - ok 16:15:33.0828 4348 [ 3C37BF86641BDA977C3BF8A840F3B7FA ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe 16:15:33.0828 4348 RDSessMgr - ok 16:15:33.0875 4348 [ F828DD7E1419B6653894A8F97A0094C5 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys 16:15:33.0875 4348 redbook - ok 16:15:33.0906 4348 [ 7E699FF5F59B5D9DE5390E3C34C67CF5 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll 16:15:33.0906 4348 RemoteAccess - ok 16:15:33.0921 4348 [ 5B19B557B0C188210A56A6B699D90B8F ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll 16:15:33.0937 4348 RemoteRegistry - ok 16:15:33.0968 4348 [ AAED593F84AFA419BBAE8572AF87CF6A ] RpcLocator C:\WINDOWS\system32\locator.exe 16:15:33.0968 4348 RpcLocator - ok 16:15:34.0000 4348 [ 6B27A5C03DFB94B4245739065431322C ] RpcSs C:\WINDOWS\system32\rpcss.dll 16:15:34.0000 4348 RpcSs - ok 16:15:34.0046 4348 [ 471B3F9741D762ABE75E9DEEA4787E47 ] RSVP C:\WINDOWS\system32\rsvp.exe 16:15:34.0046 4348 RSVP - ok 16:15:34.0093 4348 [ AD0BAD5D585AFC1CB1CD5EAFCAE50ED4 ] rt2870 C:\WINDOWS\system32\DRIVERS\rt2870.sys 16:15:34.0109 4348 rt2870 - ok 16:15:34.0156 4348 [ 71439E5BF872A91DB450641BE445F51C ] RTLE8023xp C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys 16:15:34.0156 4348 RTLE8023xp - ok 16:15:34.0171 4348 [ BF2466B3E18E970D8A976FB95FC1CA85 ] SamSs C:\WINDOWS\system32\lsass.exe 16:15:34.0171 4348 SamSs - ok 16:15:34.0187 4348 [ 86D007E7A654B9A71D1D7D856B104353 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe 16:15:34.0187 4348 SCardSvr - ok 16:15:34.0234 4348 [ 0A9A7365A1CA4319AA7C1D6CD8E4EAFA ] Schedule C:\WINDOWS\system32\schedsvc.dll 16:15:34.0234 4348 Schedule - ok 16:15:34.0265 4348 [ F34C06D1C706A6D9433570B087A18B02 ] Scutum50 C:\WINDOWS\system32\Drivers\Scutum50.sys 16:15:34.0281 4348 Scutum50 - ok 16:15:34.0296 4348 [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys 16:15:34.0296 4348 Secdrv - ok 16:15:34.0312 4348 [ CBE612E2BB6A10E3563336191EDA1250 ] seclogon C:\WINDOWS\System32\seclogon.dll 16:15:34.0312 4348 seclogon - ok 16:15:34.0343 4348 [ 7FDD5D0684ECA8C1F68B4D99D124DCD0 ] SENS C:\WINDOWS\system32\sens.dll 16:15:34.0343 4348 SENS - ok 16:15:34.0343 4348 [ 0F29512CCD6BEAD730039FB4BD2C85CE ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys 16:15:34.0343 4348 serenum - ok 16:15:34.0343 4348 [ CCA207A8896D4C6A0C9CE29A4AE411A7 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys 16:15:34.0359 4348 Serial - ok 16:15:34.0375 4348 [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys 16:15:34.0375 4348 Sfloppy - ok 16:15:34.0390 4348 [ 83F41D0D89645D7235C051AB1D9523AC ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll 16:15:34.0390 4348 SharedAccess - ok 16:15:34.0406 4348 [ 99BC0B50F511924348BE19C7C7313BBF ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll 16:15:34.0406 4348 ShellHWDetection - ok 16:15:34.0406 4348 Simbad - ok 16:15:34.0453 4348 [ A4FAB5F7818A69DA6E740943CB8F7CA9 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe 16:15:34.0453 4348 SkypeUpdate - ok 16:15:34.0484 4348 [ 866D538EBE33709A5C9F5C62B73B7D14 ] SLIP C:\WINDOWS\system32\DRIVERS\SLIP.sys 16:15:34.0484 4348 SLIP - ok 16:15:34.0484 4348 Sparrow - ok 16:15:34.0531 4348 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter C:\WINDOWS\system32\drivers\splitter.sys 16:15:34.0531 4348 splitter - ok 16:15:34.0562 4348 [ 60784F891563FB1B767F70117FC2428F ] Spooler C:\WINDOWS\system32\spoolsv.exe 16:15:34.0562 4348 Spooler - ok 16:15:34.0609 4348 [ 76BB022C2FB6902FD5BDD4F78FC13A5D ] sr C:\WINDOWS\system32\DRIVERS\sr.sys 16:15:34.0609 4348 sr - ok 16:15:34.0625 4348 [ 3805DF0AC4296A34BA4BF93B346CC378 ] srservice C:\WINDOWS\system32\srsvc.dll 16:15:34.0625 4348 srservice - ok 16:15:34.0656 4348 [ 47DDFC2F003F7F9F0592C6874962A2E7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys 16:15:34.0656 4348 Srv - ok 16:15:34.0687 4348 [ 0A5679B3714EDAB99E357057EE88FCA6 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll 16:15:34.0687 4348 SSDPSRV - ok 16:15:34.0718 4348 Steam Client Service - ok 16:15:34.0750 4348 [ 8BAD69CBAC032D4BBACFCE0306174C30 ] stisvc C:\WINDOWS\system32\wiaservc.dll 16:15:34.0750 4348 stisvc - ok 16:15:34.0765 4348 [ 77813007BA6265C4B6098187E6ED79D2 ] streamip C:\WINDOWS\system32\DRIVERS\StreamIP.sys 16:15:34.0765 4348 streamip - ok 16:15:34.0781 4348 [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys 16:15:34.0781 4348 swenum - ok 16:15:34.0781 4348 [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys 16:15:34.0781 4348 swmidi - ok 16:15:34.0796 4348 SwPrv - ok 16:15:34.0796 4348 symc810 - ok 16:15:34.0796 4348 symc8xx - ok 16:15:34.0796 4348 sym_hi - ok 16:15:34.0812 4348 sym_u3 - ok 16:15:34.0843 4348 [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys 16:15:34.0843 4348 sysaudio - ok 16:15:34.0875 4348 [ C7ABBC59B43274B1109DF6B24D617051 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe 16:15:34.0875 4348 SysmonLog - ok 16:15:34.0890 4348 [ 3CB78C17BB664637787C9A1C98F79C38 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll 16:15:34.0890 4348 TapiSrv - ok 16:15:34.0937 4348 [ 9AEFA14BD6B182D61E3119FA5F436D3D ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys 16:15:34.0937 4348 Tcpip - ok 16:15:34.0968 4348 [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys 16:15:34.0968 4348 TDPIPE - ok 16:15:34.0984 4348 [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys 16:15:34.0984 4348 TDTCP - ok 16:15:35.0000 4348 [ 88155247177638048422893737429D9E ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys 16:15:35.0000 4348 TermDD - ok 16:15:35.0062 4348 [ FF3477C03BE7201C294C35F684B3479F ] TermService C:\WINDOWS\System32\termsrv.dll 16:15:35.0062 4348 TermService - ok 16:15:35.0078 4348 [ 99BC0B50F511924348BE19C7C7313BBF ] Themes C:\WINDOWS\System32\shsvcs.dll 16:15:35.0078 4348 Themes - ok 16:15:35.0109 4348 [ DB7205804759FF62C34E3EFD8A4CC76A ] TlntSvr C:\WINDOWS\system32\tlntsvr.exe 16:15:35.0109 4348 TlntSvr - ok 16:15:35.0109 4348 TosIde - ok 16:15:35.0125 4348 [ 55BCA12F7F523D35CA3CB833C725F54E ] TrkWks C:\WINDOWS\system32\trkwks.dll 16:15:35.0140 4348 TrkWks - ok 16:15:35.0156 4348 [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys 16:15:35.0171 4348 Udfs - ok 16:15:35.0171 4348 ultra - ok 16:15:35.0203 4348 [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update C:\WINDOWS\system32\DRIVERS\update.sys 16:15:35.0203 4348 Update - ok 16:15:35.0218 4348 [ 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 ] upnphost C:\WINDOWS\System32\upnphost.dll 16:15:35.0218 4348 upnphost - ok 16:15:35.0250 4348 [ 05365FB38FCA1E98F7A566AAAF5D1815 ] UPS C:\WINDOWS\System32\ups.exe 16:15:35.0250 4348 UPS - ok 16:15:35.0281 4348 [ E919708DB44ED8543A7C017953148330 ] usbaudio C:\WINDOWS\system32\drivers\usbaudio.sys 16:15:35.0281 4348 usbaudio - ok 16:15:35.0296 4348 [ 173F317CE0DB8E21322E71B7E60A27E8 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys 16:15:35.0296 4348 usbccgp - ok 16:15:35.0312 4348 [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys 16:15:35.0312 4348 usbehci - ok 16:15:35.0328 4348 [ 933EFB453A2C54CE4B2631B318D41959 ] usbfilter C:\WINDOWS\system32\DRIVERS\usbfilter.sys 16:15:35.0328 4348 usbfilter - ok 16:15:35.0328 4348 [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys 16:15:35.0343 4348 usbhub - ok 16:15:35.0375 4348 [ 0DAECCE65366EA32B162F85F07C6753B ] usbohci C:\WINDOWS\system32\DRIVERS\usbohci.sys 16:15:35.0375 4348 usbohci - ok 16:15:35.0390 4348 [ A32426D9B14A089EAA1D922E0C5801A9 ] usbstor C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS 16:15:35.0390 4348 usbstor - ok 16:15:35.0406 4348 [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys 16:15:35.0406 4348 VgaSave - ok 16:15:35.0406 4348 ViaIde - ok 16:15:35.0453 4348 [ 4C8FCB5CC53AAB716D810740FE59D025 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys 16:15:35.0453 4348 VolSnap - ok 16:15:35.0484 4348 [ 7A9DB3A67C333BF0BD42E42B8596854B ] VSS C:\WINDOWS\System32\vssvc.exe 16:15:35.0484 4348 VSS - ok 16:15:35.0531 4348 [ 54AF4B1D5459500EF0937F6D33B1914F ] W32Time C:\WINDOWS\system32\w32time.dll 16:15:35.0531 4348 W32Time - ok 16:15:35.0531 4348 [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys 16:15:35.0531 4348 Wanarp - ok 16:15:35.0593 4348 [ FD47474BD21794508AF449D9D91AF6E6 ] Wdf01000 C:\WINDOWS\system32\DRIVERS\Wdf01000.sys 16:15:35.0593 4348 Wdf01000 - ok 16:15:35.0593 4348 WDICA - ok 16:15:35.0640 4348 [ 6768ACF64B18196494413695F0C3A00F ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys 16:15:35.0640 4348 wdmaud - ok 16:15:35.0656 4348 [ 77A354E28153AD2D5E120A5A8687BC06 ] WebClient C:\WINDOWS\System32\webclnt.dll 16:15:35.0656 4348 WebClient - ok 16:15:35.0734 4348 [ 2D0E4ED081963804CCC196A0929275B5 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll 16:15:35.0734 4348 winmgmt - ok 16:15:35.0750 4348 [ C51B4A5C05A5475708E3C81C7765B71D ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll 16:15:35.0750 4348 WmdmPmSN - ok 16:15:35.0781 4348 [ E76F8807070ED04E7408A86D6D3A6137 ] Wmi C:\WINDOWS\System32\advapi32.dll 16:15:35.0796 4348 Wmi - ok 16:15:35.0843 4348 [ E0673F1106E62A68D2257E376079F821 ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe 16:15:35.0843 4348 WmiApSrv - ok 16:15:35.0906 4348 [ F74E3D9A7FA9556C3BBB14D4E5E63D3B ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe 16:15:35.0921 4348 WMPNetworkSvc - ok 16:15:35.0953 4348 [ 7C278E6408D1DCE642230C0585A854D5 ] wscsvc C:\WINDOWS\system32\wscsvc.dll 16:15:35.0953 4348 wscsvc - ok 16:15:35.0984 4348 [ 7A36F3083E28405D6C5ECDB942513C3B ] WSIMD C:\WINDOWS\system32\DRIVERS\wsimd.sys 16:15:35.0984 4348 WSIMD - ok 16:15:36.0000 4348 [ C98B39829C2BBD34E454150633C62C78 ] WSTCODEC C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS 16:15:36.0000 4348 WSTCODEC - ok 16:15:36.0046 4348 [ 0001DC46B513A37B1E8151335CA6F28E ] WSWNA1100 C:\Program Files\NETGEAR\WNA1100\WifiSvc.exe 16:15:36.0046 4348 WSWNA1100 - ok 16:15:36.0046 4348 [ 35321FB577CDC98CE3EB3A3EB9E4610A ] wuauserv C:\WINDOWS\system32\wuauserv.dll 16:15:36.0062 4348 wuauserv - ok 16:15:36.0093 4348 [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys 16:15:36.0093 4348 WudfPf - ok 16:15:36.0109 4348 [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys 16:15:36.0109 4348 WudfRd - ok 16:15:36.0109 4348 [ 05231C04253C5BC30B26CBAAE680ED89 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll 16:15:36.0109 4348 WudfSvc - ok 16:15:36.0171 4348 [ 81DC3F549F44B1C1FFF022DEC9ECF30B ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll 16:15:36.0171 4348 WZCSVC - ok 16:15:36.0203 4348 [ 295D21F14C335B53CB8154E5B1F892B9 ] xmlprov C:\WINDOWS\System32\xmlprov.dll 16:15:36.0203 4348 xmlprov - ok 16:15:36.0218 4348 ================ Scan global =============================== 16:15:36.0250 4348 [ 42F1F4C0AFB08410E5F02D4B13EBB623 ] C:\WINDOWS\system32\basesrv.dll 16:15:36.0296 4348 [ 8C7DCA4B158BF16894120786A7A5F366 ] C:\WINDOWS\system32\winsrv.dll 16:15:36.0312 4348 [ 8C7DCA4B158BF16894120786A7A5F366 ] C:\WINDOWS\system32\winsrv.dll 16:15:36.0312 4348 [ 65DF52F5B8B6E9BBD183505225C37315 ] C:\WINDOWS\system32\services.exe 16:15:36.0312 4348 [Global] - ok 16:15:36.0328 4348 ================ Scan MBR ================================== 16:15:36.0343 4348 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk0\DR0 16:15:36.0578 4348 \Device\Harddisk0\DR0 - ok 16:15:36.0578 4348 ================ Scan VBR ================================== 16:15:36.0578 4348 [ E0AF9B815814CD629DFAD4809A8D6B36 ] \Device\Harddisk0\DR0\Partition1 16:15:36.0578 4348 \Device\Harddisk0\DR0\Partition1 - ok 16:15:36.0578 4348 ============================================================ 16:15:36.0578 4348 Scan finished 16:15:36.0578 4348 ============================================================ 16:15:36.0593 0920 Detected object count: 0 16:15:36.0593 0920 Actual detected object count: 0
We need to get additional information about a file. Some versions of the file are perfectly safe while others can carry a virus.

Please go to the following site:
http://www.virustotal.com/
Click on Choose File, and then upload the following file for analysis:

C:\Strat-O-Matic Baseball\SomBB.exe

Then click Send File and allow the file to be scanned.

Please ensure the scan is complete and the results saved before submitting the next.
If a pop-up appears saying the file has been scanned already, please select the ReScan button.


Please copy and paste the links to each of the results here for me.


Can you please tell me what symptoms this computer has been exhibiting?
That file is my husband's baseball game so I don't need to scan it. haha. He'll kill me if anything happens to it!! :D Also, this computer has been the best of the bunch but since I've been having internet issues, I thought it best to check them all, in case 1 computer is causing issues for another computer.
Please download Malwarebytes' Anti-Malware to your desktop.

  • Double-click mbam-setup.exe and follow the prompts to install the program.
  • At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select Perform quick scan, then click Scan.
    [external image: Posted Image]
  • When the scan is complete, click OK, then Show Results to view the results.
  • Be sure that everything is checked, and click Remove Selected .
  • When completed, a log will open in Notepad. Please save it to a convenient location and post the results.
  • Note: If you receive a notice that some of the items couldn't be removed, that they have been added to the delete on reboot list, please reboot.





This scan make take awhile depending on how many items are on the computer. You may want to run it at a time you won't be needing the machine. It should be run from IE and I'd recommend not doing anything else while it's running.


Go here to run an online scannner from ESET.
  • Note: For browsers other than Internet Explorer, you will need to download and install esetsmartinstaller_enu.exe. Click on it and save the file to a convenient location. Double click on it to install and a new window will open.
  • Turn off the real time scanner of any existing antivirus program while performing the online scan
  • Tick the box next to YES, I accept the Terms of Use.
  • Click Start
  • When asked, allow the activex control to install
  • Click Start
  • Make sure that the option Remove found threats is unticked and the Scan Archives option is ticked.
  • Click on Advanced Settings, ensure the options Scan for potentially unwanted applications, Scan for potentially unsafe applications, and Enable Anti-Stealth Technology are ticked.
  • Click Scan
  • Wait for the scan to finish
  • Use notepad to open the logfile located at C:\Program Files\Eset\Eset Online Scanner\log.txt
  • Copy and paste that log as a reply to this topic and also let me know how things are now.

If it doesn't find anything there will be no log to post.
Malwarebytes Anti-Malware 1.70.0.1100 www.malwarebytes.org Database version: v2013.01.09.10 Windows XP Service Pack 3 x86 NTFS Internet Explorer 8.0.6001.18702 Pat :: PAT [administrator] 1/9/2013 7:44:32 PM mbam-log-2013-01-09 (19-44-32).txt Scan type: Quick scan Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM Scan options disabled: P2P Objects scanned: 240927 Time elapsed: 7 minute(s), 42 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 0 (No malicious items detected) (end) ESET ran the scan. Found 1 threat but there was no log. Sorry for the delay in posting. I really appreciate all the help.
I am so sosorry, I could have sworn I posted back a reply but I must have closed the screen too fast before it posted. Please forgive me for not checking back in sooner. You are looking fine on everything. Are there any lingering issues with any of the computers?

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI