This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

Getting Redirected to Ad Sites [Solved]

91 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

Hello. My computer seems to be running ok, but when I click on a link from a google search it redirects me to some random site that Trend Micro blocks. I can click back and then click on the link again and it will bring me to where I wanted to go. So this doesn't happen every time i click on a link, I would say 1 out of 3. I really appreciate any help that anyone could offer.

Here is my OTL log

OTL logfile created on: 2/16/2013 8:52:40 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Jim\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.80 Gb Total Physical Memory | 2.18 Gb Available Physical Memory | 57.32% Memory free
7.61 Gb Paging File | 5.42 Gb Available in Paging File | 71.29% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 452.34 Gb Total Space | 252.39 Gb Free Space | 55.80% Space Free | Partition Type: NTFS
Drive D: | 13.13 Gb Total Space | 2.19 Gb Free Space | 16.65% Space Free | Partition Type: NTFS

Computer Name: JIM-PC | User Name: Jim | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2013/02/16 20:52:01 | 000,602,112 | —- | M] (OldTimer Tools) – C:\Users\Jim\Desktop\OTL.exe
PRC - [2013/02/05 19:56:02 | 000,917,400 | —- | M] (Mozilla Corporation) – C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2013/01/20 14:29:18 | 028,539,272 | —- | M] (Dropbox, Inc.) – C:\Users\Jim\AppData\Roaming\Dropbox\bin\Dropbox.exe
PRC - [2012/12/22 17:43:08 | 001,807,800 | —- | M] (Adobe Systems, Inc.) – C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_5_502_135.exe
PRC - [2012/10/09 09:53:36 | 004,441,920 | —- | M] (Akamai Technologies, Inc.) – C:\Users\Jim\AppData\Local\Akamai\netsession_win.exe
PRC - [2012/09/23 20:43:34 | 000,065,192 | —- | M] (Adobe Systems Incorporated) – C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2011/10/28 10:37:08 | 000,108,704 | —- | M] (SEIKO EPSON CORPORATION) – C:\Program Files\EPSON Projector\Easy Interactive Tools Ver.2\EIN_BMM.exe
PRC - [2010/07/15 16:48:48 | 001,662,352 | —- | M] (SMART Technologies ULC) – C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTSNMPAgent.exe
PRC - [2010/07/15 16:47:42 | 005,350,288 | —- | M] (SMART Technologies) – C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTBoardService.exe
PRC - [2009/10/06 02:08:42 | 000,210,216 | —- | M] (CyberLink) – c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
PRC - [2009/09/30 23:01:32 | 002,320,920 | —- | M] (Intel Corporation) – C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
PRC - [2009/09/30 23:01:30 | 000,268,824 | —- | M] (Intel Corporation) – C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe


========== Modules (No Company Name) ==========

MOD - [2013/02/05 19:56:02 | 003,023,256 | —- | M] () – C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2012/12/22 17:43:07 | 014,586,296 | —- | M] () – C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_135.dll
MOD - [2012/02/20 20:29:04 | 000,087,912 | —- | M] () – C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2012/02/20 20:28:42 | 001,242,472 | —- | M] () – C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2010/06/15 14:43:24 | 000,565,248 | —- | M] () – C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\ZipArchive.dll
MOD - [2010/01/06 08:22:10 | 002,011,648 | —- | M] () – C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\QtCore4.dll
MOD - [2009/10/06 02:08:38 | 000,931,112 | —- | M] () – c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMediaLibrary.dll
MOD - [2009/09/29 05:43:02 | 007,462,912 | —- | M] () – C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\QtGui4.dll
MOD - [2009/09/29 05:32:20 | 000,877,056 | —- | M] () – C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\QtNetwork4.dll
MOD - [2009/08/20 15:35:48 | 007,745,536 | —- | M] () – C:\Program Files (x86)\Common Files\LightScribe\QtGui4.dll
MOD - [2009/08/20 15:35:46 | 002,121,728 | —- | M] () – C:\Program Files (x86)\Common Files\LightScribe\QtCore4.dll
MOD - [2009/08/20 15:35:46 | 000,135,168 | —- | M] () – C:\Program Files (x86)\Common Files\LightScribe\plugins\imageformats\qjpeg4.dll


========== Services (SafeList) ==========

SRV:64bit: - File not found [Auto | Running] – C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe coreFrameworkHost.exe – (Amsp)
SRV:64bit: - [2012/07/11 13:54:58 | 000,140,672 | —- | M] (SUPERAntiSpyware.com) [Auto | Running] – C:\Program Files\SUPERAntiSpyware\SASCore64.exe – (!SASCORE)
SRV:64bit: - [2011/10/28 10:37:08 | 000,108,704 | —- | M] (SEIKO EPSON CORPORATION) [Auto | Running] – C:\Program Files\EPSON Projector\Easy Interactive Tools Ver.2\EIN_BMM.exe – (EIN_BMM)
SRV:64bit: - [2010/09/22 18:10:10 | 000,057,184 | —- | M] (Microsoft Corporation) [Disabled | Stopped] – C:\Program Files\Windows Live\Mesh\wlcrasvc.exe – (wlcrasvc)
SRV:64bit: - [2009/10/21 02:35:26 | 000,240,640 | —- | M] (IDT, Inc.) [Auto | Running] – C:\Windows\SysNative\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_d15ed671de43d681\stacsv64.exe – (STacSV)
SRV:64bit: - [2009/07/08 16:49:02 | 000,030,520 | —- | M] (Hewlett-Packard) [Auto | Running] – C:\Windows\SysNative\hpservice.exe – (hpsrv)
SRV:64bit: - [2009/03/03 05:42:58 | 000,089,600 | —- | M] (Andrea Electronics Corporation) [Auto | Running] – C:\Windows\SysNative\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_d15ed671de43d681\AESTSr64.exe – (AESTFilters)
SRV - [2013/02/05 19:56:02 | 000,115,608 | —- | M] (Mozilla Foundation) [On_Demand | Stopped] – C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe – (MozillaMaintenance)
SRV - [2012/09/23 20:43:34 | 000,065,192 | —- | M] (Adobe Systems Incorporated) [Auto | Running] – C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe – (AdobeARMservice)
SRV - [2011/12/17 12:50:19 | 000,301,056 | —- | M] () [On_Demand | Stopped] – C:\Program Files (x86)\dopewars-1.5.12\dopewars.exe – (dopewars-server)
SRV - [2009/10/21 02:35:26 | 000,240,640 | —- | M] (IDT, Inc.) [Auto | Running] – C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_d15ed671de43d681\STacSV64.exe – (STacSV)
SRV - [2009/09/30 23:01:32 | 002,320,920 | —- | M] (Intel Corporation) [Auto | Running] – C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe – (UNS)
SRV - [2009/09/30 23:01:30 | 000,268,824 | —- | M] (Intel Corporation) [Auto | Running] – C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe – (LMS)
SRV - [2009/06/10 16:23:09 | 000,066,384 | —- | M] (Microsoft Corporation) [On_Demand | Stopped] – C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe – (clr_optimization_v2.0.50727_32)
SRV - [2009/06/05 19:07:28 | 000,250,616 | —- | M] (WildTangent, Inc.) [On_Demand | Stopped] – C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe – (GameConsoleService)
SRV - [2009/03/03 05:42:58 | 000,089,600 | —- | M] (Andrea Electronics Corporation) [Auto | Running] – C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_d15ed671de43d681\AESTSr64.exe – (AESTFilters)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2012/03/01 01:46:16 | 000,023,408 | —- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] – C:\Windows\SysNative\drivers\fs_rec.sys – (Fs_Rec)
DRV:64bit: - [2012/02/15 10:01:50 | 000,052,736 | —- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\usbaapl64.sys – (USBAAPL64)
DRV:64bit: - [2011/07/22 11:26:56 | 000,014,928 | —- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] – C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys – (SASDIFSV)
DRV:64bit: - [2011/07/12 16:55:18 | 000,012,368 | —- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] – C:\Program Files\SUPERAntiSpyware\saskutil64.sys – (SASKUTIL)
DRV:64bit: - [2010/11/20 08:33:35 | 000,078,720 | —- | M] (Hewlett-Packard Company) [Kernel | Boot | Running] – C:\Windows\SysNative\drivers\HpSAMD.sys – (HpSAMD)
DRV:64bit: - [2010/11/20 08:32:47 | 000,027,008 | —- | M] (Advanced Micro Devices) [Kernel | Boot | Running] – C:\Windows\SysNative\drivers\amdxata.sys – (amdxata)
DRV:64bit: - [2010/11/20 08:32:46 | 000,107,904 | —- | M] (Advanced Micro Devices) [Kernel | Boot | Running] – C:\Windows\SysNative\drivers\amdsata.sys – (amdsata)
DRV:64bit: - [2010/11/20 06:07:05 | 000,059,392 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\TsUsbFlt.sys – (TsUsbFlt)
DRV:64bit: - [2010/11/20 04:37:42 | 000,109,056 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\sdbus.sys – (sdbus)
DRV:64bit: - [2010/09/21 15:30:25 | 000,144,464 | —- | M] (Trend Micro Inc.) [Kernel | Auto | Running] – C:\Windows\SysNative\drivers\tmcomm.sys – (tmcomm)
DRV:64bit: - [2010/09/21 15:30:25 | 000,105,552 | —- | M] (Trend Micro Inc.) [Kernel | System | Running] – C:\Windows\SysNative\drivers\tmtdi.sys – (tmtdi)
DRV:64bit: - [2010/09/21 15:30:25 | 000,090,704 | —- | M] (Trend Micro Inc.) [Kernel | Auto | Running] – C:\Windows\SysNative\drivers\tmactmon.sys – (tmactmon)
DRV:64bit: - [2010/09/21 15:30:25 | 000,067,664 | —- | M] (Trend Micro Inc.) [Kernel | Auto | Running] – C:\Windows\SysNative\drivers\tmevtmgr.sys – (tmevtmgr)
DRV:64bit: - [2010/09/17 21:41:12 | 000,013,056 | —- | M] (SEIKO EPSON CORPORATION) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\ep_eivirtab.sys – (EPVTPen)
DRV:64bit: - [2010/09/17 21:41:12 | 000,012,800 | —- | M] (SEIKO EPSON CORPORATION) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\ep_eiserial.sys – (ep_eiserial)
DRV:64bit: - [2010/06/15 15:25:24 | 000,015,784 | —- | M] (SMART Technologies ULC) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\SMARTVHidMiniVistaAmd64.sys – (SMARTVHidMiniVistaAmd64)
DRV:64bit: - [2010/06/15 15:25:08 | 000,012,584 | —- | M] (SMART Technologies ULC) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\SMARTMouseFilterx64.sys – (SMARTMouseFilterx64)
DRV:64bit: - [2010/06/15 15:25:06 | 000,018,432 | —- | M] (SMART Technologies ULC) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\SMARTVTabletPCx64.sys – (SMARTVTabletPCx64)
DRV:64bit: - [2010/01/13 15:37:18 | 007,675,392 | —- | M] (Intel Corporation) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\NETw5s64.sys – (NETw5s64)
DRV:64bit: - [2009/10/21 02:35:26 | 000,501,760 | —- | M] (IDT, Inc.) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\stwrt64.sys – (STHDA)
DRV:64bit: - [2009/10/08 11:37:50 | 007,749,408 | —- | M] (Intel Corporation) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\igdkmd64.sys – (igfx)
DRV:64bit: - [2009/09/26 10:42:58 | 000,233,984 | —- | M] (Intel® Corporation) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\IntcDAud.sys – (IntcDAud)
DRV:64bit: - [2009/09/17 15:54:54 | 000,056,344 | —- | M] (Intel Corporation) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\HECIx64.sys – (HECIx64)
DRV:64bit: - [2009/09/02 12:58:08 | 000,225,280 | —- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\RtsUStor.sys – (RSUSBSTOR)
DRV:64bit: - [2009/08/15 01:54:54 | 000,286,768 | —- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\SynTP.sys – (SynTP)
DRV:64bit: - [2009/08/07 23:24:14 | 000,408,600 | —- | M] (Intel Corporation) [Kernel | Boot | Running] – C:\Windows\SysNative\drivers\iaStor.sys – (iaStor)
DRV:64bit: - [2009/07/30 22:58:42 | 000,236,544 | —- | M] (Realtek ) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\Rt64win7.sys – (RTL8167)
DRV:64bit: - [2009/07/13 20:52:20 | 000,194,128 | —- | M] (AMD Technologies Inc.) [Kernel | Boot | Running] – C:\Windows\SysNative\drivers\amdsbs.sys – (amdsbs)
DRV:64bit: - [2009/07/13 20:48:04 | 000,065,600 | —- | M] (LSI Corporation) [Kernel | Boot | Running] – C:\Windows\SysNative\drivers\lsi_sas2.sys – (LSI_SAS2)
DRV:64bit: - [2009/07/13 20:45:55 | 000,024,656 | —- | M] (Promise Technology) [Kernel | Boot | Running] – C:\Windows\SysNative\drivers\stexstor.sys – (stexstor)
DRV:64bit: - [2009/07/08 16:49:08 | 000,030,008 | —- | M] (Hewlett-Packard) [Kernel | Boot | Running] – C:\Windows\SysNative\drivers\hpdskflt.sys – (hpdskflt)
DRV:64bit: - [2009/07/08 16:48:50 | 000,041,272 | —- | M] (Hewlett-Packard) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\Accelerometer.sys – (Accelerometer)
DRV:64bit: - [2009/06/29 13:17:00 | 000,070,656 | —- | M] (ENE TECHNOLOGY INC.) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\enecir.sys – (enecir)
DRV:64bit: - [2009/06/10 16:01:11 | 001,485,312 | —- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\VSTDPV6.SYS – (SrvHsfV92)
DRV:64bit: - [2009/06/10 16:01:11 | 000,740,864 | —- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\VSTCNXT6.SYS – (SrvHsfWinac)
DRV:64bit: - [2009/06/10 16:01:11 | 000,292,864 | —- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\VSTAZL6.SYS – (SrvHsfHDA)
DRV:64bit: - [2009/06/10 15:35:33 | 000,389,120 | —- | M] (Marvell) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\yk62x64.sys – (yukonw7)
DRV:64bit: - [2009/06/10 15:35:28 | 005,434,368 | —- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\netw5v64.sys – (netw5v64)
DRV:64bit: - [2009/06/10 15:34:38 | 001,311,232 | —- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\BCMWL664.SYS – (BCM43XX)
DRV:64bit: - [2009/06/10 15:34:33 | 003,286,016 | —- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\evbda.sys – (ebdrv)
DRV:64bit: - [2009/06/10 15:34:28 | 000,468,480 | —- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\bxvbda.sys – (b06bdrv)
DRV:64bit: - [2009/06/10 15:34:23 | 000,270,848 | —- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\b57nd60a.sys – (b57nd60a)
DRV:64bit: - [2009/06/10 15:31:59 | 000,031,232 | —- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] – C:\Windows\SysNative\drivers\hcw85cir.sys – (hcw85cir)
DRV:64bit: - [2009/05/18 12:17:08 | 000,034,152 | —- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\GEARAspiWDM.sys – (GEARAspiWDM)
DRV:64bit: - [2009/04/29 11:48:32 | 000,018,432 | —- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\HpqKbFiltr.sys – (HpqKbFiltr)
DRV:64bit: - [2008/03/13 02:46:00 | 000,027,136 | —- | M] (ManyCam LLC.) [Kernel | On_Demand | Running] – C:\Windows\SysNative\drivers\ManyCam_x64.sys – (ManyCam)
DRV - [2009/09/02 12:58:08 | 000,225,280 | —- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] – C:\Windows\SysWOW64\drivers\RtsUStor.sys – (RSUSBSTOR)
DRV - [2009/07/13 20:19:10 | 000,019,008 | —- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] – C:\Windows\SysWOW64\drivers\wimmount.sys – (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://g.msn.com/HPNOT/1
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {CB025CB2-D02E-465C-8D11-C95FCEAB5612}
IE:64bit: - HKLM\..\SearchScopes\{7CC6A69B-6D32-4E3F-8745-B893C30C9FF1}: "URL" = http://www.ask.com/web?q={searchterms}&l=dis&o=ushpl
IE:64bit: - HKLM\..\SearchScopes\{CB025CB2-D02E-465C-8D11-C95FCEAB5612}: "URL" = http://www.bing.com/search?q={searchTerms}…rc=IE-SearchBox
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://g.msn.com/HPNOT/1
IE - HKLM\..\SearchScopes,DefaultScope = {AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
IE - HKLM\..\SearchScopes\{7CC6A69B-6D32-4E3F-8745-B893C30C9FF1}: "URL" = http://www.ask.com/web?q={searchterms}&l=dis&o=ushpl
IE - HKLM\..\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}: "URL" = http://search.conduit.com/ResultsExt.aspx?…;ctid=CT2117678
IE - HKLM\..\SearchScopes\{CB025CB2-D02E-465C-8D11-C95FCEAB5612}: "URL" = http://www.bing.com/search?q={searchTerms}…rc=IE-SearchBox

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
IE - HKCU\..\SearchScopes,DefaultScope = {CB025CB2-D02E-465C-8D11-C95FCEAB5612}
IE - HKCU\..\SearchScopes\{7CC6A69B-6D32-4E3F-8745-B893C30C9FF1}: "URL" = http://www.ask.com/web?q={searchterms}&l=dis&o=ushpl
IE - HKCU\..\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}: "URL" = http://search.conduit.com/ResultsExt.aspx?…;ctid=CT2117678
IE - HKCU\..\SearchScopes\{CB025CB2-D02E-465C-8D11-C95FCEAB5612}: "URL" = http://www.bing.com/search?q={searchTerms}…rc=IE-SearchBox
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local;

========== FireFox ==========

FF - prefs.js..browser.search.defaultthis.engineName: "NCH Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2117678&SearchSource=3&q={searchTerms}"
FF - prefs.js..browser.search.selectedEngine: "NCH Customized Web Search"
FF - prefs.js..browser.startup.homepage: "http://www.yahoo.com/"
FF - prefs.js..extensions.enabledAddons: wzrmfsbwio%40wzrmfsbwio.org:2.5
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:18.0.2
FF - prefs.js..extensions.enabledItems: [removed]:4.51
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: {D6D05E6F-D5C1-4e03-8E33-73F92B05E262}:10.2
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}:6.0.26
FF - prefs.js..extensions.enabledItems: {22C7F6C6-8D67-4534-92B5-529A0EC09405}:6.8.0.1073
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}:6.0.29
FF - user.js - File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_5_502_135.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.10.2: C:\Windows\system32\npDeployJava1.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.10.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_135.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@hulu.com/Hulu Desktop: C:\Windows\..\Users\Default\AppData\Local\HuluDesktop\instances\0.9.7.1\npHDPlg.dll ()

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[removed]: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010/01/09 20:16:24 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{22C7F6C6-8D67-4534-92B5-529A0EC09405}: C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1505\6.6.1088\firefoxextension\ [2012/03/20 05:50:16 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 18.0.2\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/02/05 19:56:02 | 000,000,000 | —D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 18.0.2\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/02/05 19:55:58 | 000,000,000 | —D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 18.0.2\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/02/05 19:56:02 | 000,000,000 | —D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 18.0.2\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/02/05 19:55:58 | 000,000,000 | —D | M]

[2011/01/29 17:32:45 | 000,000,000 | —D | M] (No name found) – C:\Users\Jim\AppData\Roaming\Mozilla\Extensions
[2011/01/29 17:32:45 | 000,000,000 | —D | M] (No name found) – C:\Users\Jim\AppData\Roaming\Mozilla\Extensions\[removed]
[2013/02/13 08:03:09 | 000,000,000 | —D | M] (No name found) – C:\Users\Jim\AppData\Roaming\Mozilla\Firefox\Profiles\qbgsk9sh.default\extensions
[1614/05/14 15:47:56 | 000,004,815 | —- | M] () (No name found) – C:\Users\Jim\AppData\Roaming\Mozilla\Firefox\Profiles\qbgsk9sh.default\extensions\[removed]
[2011/07/18 16:16:06 | 000,000,909 | —- | M] () – C:\Users\Jim\AppData\Roaming\Mozilla\Firefox\Profiles\qbgsk9sh.default\searchplugins\conduit.xml
[2013/02/05 19:55:56 | 000,000,000 | —D | M] (No name found) – C:\Program Files (x86)\Mozilla Firefox\extensions
[2013/02/05 19:55:56 | 000,000,000 | —D | M] (SMART Notebook Extension) – C:\Program Files (x86)\Mozilla Firefox\extensions\{D6D05E6F-D5C1-4e03-8E33-73F92B05E262}
[2013/02/05 19:56:02 | 000,262,552 | —- | M] (Mozilla Foundation) – C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2011/10/03 04:06:04 | 000,476,904 | —- | M] (Sun Microsystems, Inc.) – C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll
[2012/08/30 12:53:24 | 000,002,465 | —- | M] () – C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2012/10/12 07:19:40 | 000,002,058 | —- | M] () – C:\Program Files (x86)\mozilla firefox\searchplugins\twitter.xml

O1 HOSTS File: ([2012/06/12 17:48:33 | 000,000,027 | —- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:64bit: - BHO: (TmIEPlugInBHO Class) - {1CA1377B-DC1D-4A52-9585-6E06050FAC53} - C:\Program Files\Trend Micro\AMSP\module\20004\1.5.1505\6.6.1088\TmIEPlg.dll (Trend Micro Inc.)
O2:64bit: - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2:64bit: - BHO: (TmBpIeBHO Class) - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - C:\Program Files\Trend Micro\AMSP\module\20002\6.6.1010\6.6.1010\TmBpIe64.dll (Trend Micro Inc.)
O2:64bit: - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (TmIEPlugInBHO Class) - {1CA1377B-DC1D-4A52-9585-6E06050FAC53} - C:\Program Files\Trend Micro\AMSP\module\20004\1.5.1505\6.6.1088\TmIEPlg32.dll (Trend Micro Inc.)
O2 - BHO: (TmBpIeBHO Class) - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - C:\Program Files\Trend Micro\AMSP\module\20002\6.6.1010\6.6.1010\TmBpIe32.dll (Trend Micro Inc.)
O2 - BHO: (IeMonitorBho Class) - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files (x86)\Megaupload\Mega Manager\MegaIEMn.dll (Megaupload Limited)
O2 - BHO: (Microsoft Live Search Toolbar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\Program Files (x86)\MSN\Toolbar\3.0.0566.0\msneshellx.dll (Microsoft Corp.)
O3 - HKLM\..\Toolbar: (Microsoft Live Search Toolbar) - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - c:\Program Files (x86)\MSN\Toolbar\3.0.0566.0\msneshellx.dll (Microsoft Corp.)
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [SmartMenu] C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe ()
O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4:64bit: - HKLM..\Run: [Trend Micro Client Framework] C:\Program Files\Trend Micro\UniClient\UiFrmWrk\UIWatchDog.exe (Trend Micro Inc.)
O4:64bit: - HKLM..\Run: [Trend Micro Titanium] C:\Program Files\Trend Micro\Titanium\UIFramework\uiWinMgr.exe (Trend Micro Inc.)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [HPCam_Menu] c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [NortonOnlineBackupReminder] C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe (Symantec Corporation)
O4 - HKLM..\Run: [SMART Board Service] C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTBoardService.exe (SMART Technologies)
O4 - HKLM..\Run: [SMART SNMP Agent] C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTSNMPAgent.exe (SMART Technologies ULC)
O4 - HKCU..\Run: [Akamai NetSession Interface] C:\Users\Jim\AppData\Local\Akamai\netsession_win.exe (Akamai Technologies, Inc.)
O4 - HKCU..\Run: [Microsoft Help] C:\Users\Jim\AppData\Local\{6A47761F-18DF-48FC-9A53-BD5BCF5721EA}\Microsoft Help\riygj.dll (Microsoft Corporation)
O4 - HKCU..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware.com)
O4 - Startup: C:\Users\Jim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\Jim\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:64bit: - Extra context menu item: Download Link Using Mega Manager… - C:\Program Files (x86)\Megaupload\Mega Manager\mm_file.htm ()
O8 - Extra context menu item: Download Link Using Mega Manager… - C:\Program Files (x86)\Megaupload\Mega Manager\mm_file.htm ()
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O16:64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Reg Error: Value error.)
O16:64bit: - DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_15)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 10.10.2)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_29)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 75.75.75.75 75.75.76.76
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2C795CB8-0265-4008-B8CB-B1A90ED582AA}: DhcpNameServer = 75.75.75.75 75.75.76.76
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\tmbp {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\Trend Micro\AMSP\module\20002\6.6.1010\6.6.1010\TmBpIe64.dll (Trend Micro Inc.)
O18:64bit: - Protocol\Handler\tmpx {0E526CB5-7446-41D1-A403-19BFE95E8C23} - C:\Program Files\Trend Micro\AMSP\module\20004\1.5.1505\6.6.1088\TmIEPlg.dll (Trend Micro Inc.)
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\tmbp {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\Trend Micro\AMSP\module\20002\6.6.1010\6.6.1010\TmBpIe32.dll (Trend Micro Inc.)
O18 - Protocol\Handler\tmpx {0E526CB5-7446-41D1-A403-19BFE95E8C23} - C:\Program Files\Trend Micro\AMSP\module\20004\1.5.1505\6.6.1088\TmIEPlg32.dll (Trend Micro Inc.)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] – "%1" %*
O35:64bit: - HKLM\..exefile [open] – "%1" %*
O35 - HKLM\..comfile [open] – "%1" %*
O35 - HKLM\..exefile [open] – "%1" %*
O37:64bit: - HKLM\…com [@ = comfile] – "%1" %*
O37:64bit: - HKLM\…exe [@ = exefile] – "%1" %*
O37 - HKLM\…com [@ = comfile] – "%1" %*
O37 - HKLM\…exe [@ = exefile] – "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2013/02/16 20:52:01 | 000,602,112 | —- | C] (OldTimer Tools) – C:\Users\Jim\Desktop\OTL.exe
[2013/02/16 11:38:44 | 000,000,000 | —D | C] – C:\Users\Jim\AppData\Roaming\SUPERAntiSpyware.com
[2013/02/16 11:38:25 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
[2013/02/16 11:38:22 | 000,000,000 | —D | C] – C:\ProgramData\SUPERAntiSpyware.com
[2013/02/16 11:38:22 | 000,000,000 | —D | C] – C:\Program Files\SUPERAntiSpyware
[2013/02/15 07:43:37 | 000,000,000 | —D | C] – C:\Users\Jim\AppData\Local\Programs
[2013/02/05 19:55:55 | 000,000,000 | —D | C] – C:\Program Files (x86)\Mozilla Firefox
[2010/04/05 07:09:32 | 000,161,344 | —- | C] (Altiris) – C:\Program Files (x86)\UNWISE.EXE

========== Files - Modified Within 30 Days ==========

[2013/02/16 20:52:01 | 000,602,112 | —- | M] (OldTimer Tools) – C:\Users\Jim\Desktop\OTL.exe
[2013/02/16 20:18:59 | 000,000,888 | —- | M] () – C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2013/02/16 20:18:41 | 000,067,584 | –S- | M] () – C:\Windows\bootstat.dat
[2013/02/16 20:03:00 | 000,000,892 | —- | M] () – C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2013/02/16 19:41:26 | 000,023,248 | -H– | M] () – C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013/02/16 19:41:26 | 000,023,248 | -H– | M] () – C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013/02/16 19:34:08 | 3063,046,144 | -HS- | M] () – C:\hiberfil.sys
[2013/02/16 11:38:25 | 000,001,808 | —- | M] () – C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
[2013/02/15 07:44:48 | 000,001,109 | —- | M] () – C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2013/02/13 18:24:02 | 000,368,304 | —- | M] () – C:\Windows\SysNative\FNTCACHE.DAT
[2013/02/06 18:28:25 | 000,002,044 | —- | M] () – C:\Users\Jim\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2013/01/25 19:53:44 | 000,001,045 | —- | M] () – C:\Users\Jim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
[2013/01/25 19:53:36 | 000,001,009 | —- | M] () – C:\Users\Jim\Desktop\Dropbox.lnk

========== Files Created - No Company Name ==========

[2013/02/16 11:38:25 | 000,001,808 | —- | C] () – C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
[2012/07/03 16:55:19 | 001,628,146 | —- | C] () – C:\Users\Jim\Shocked.gif
[2012/07/03 16:52:33 | 000,349,552 | —- | C] () – C:\Users\Jim\troll_approval.gif
[2012/06/18 19:13:57 | 280,240,133 | —- | C] () – C:\Users\Jim\Corinda - 13 Steps To Mentalism (Complete).pdf
[2012/06/10 13:36:19 | 000,129,024 | —- | C] () – C:\Windows\RegBootClean64.exe
[2012/04/06 17:24:51 | 000,220,357 | —- | C] () – C:\Users\Jim\venus.jpg
[2012/04/06 17:23:41 | 000,981,379 | —- | C] () – C:\Users\Jim\tumblr_lyhjldG1eO1qjvsoxo2_500.gif
[2012/03/21 07:00:15 | 001,867,851 | —- | C] () – C:\Users\Jim\Oh-hello.gif
[2012/02/22 08:19:30 | 000,305,316 | —- | C] () – C:\Users\Jim\tumblr_lf8s4yws6h1qa6ql2o1_500.gif
[2011/12/17 12:50:18 | 000,020,992 | —- | C] () – C:\Windows\bw-uninstall.exe
[2011/09/10 14:00:00 | 005,882,045 | —- | C] () – C:\Users\Jim\cricketstare.gif
[2011/09/07 09:17:55 | 000,256,190 | —- | C] () – C:\Users\Jim\rrt7h22u.gif
[2011/09/03 07:54:42 | 001,281,555 | —- | C] () – C:\Users\Jim\sta.jpg
[2011/09/03 07:54:07 | 001,281,555 | —- | C] () – C:\Users\Jim\rrt7hu.jpg
[2011/08/19 17:32:03 | 002,553,942 | —- | C] () – C:\Users\Jim\Crazy+Charles+Manson_ccca3a_256172.gif
[2011/08/14 07:20:08 | 000,149,927 | —- | C] () – C:\Users\Jim\150000.gif
[2011/08/13 22:26:47 | 000,149,116 | —- | C] () – C:\Users\Jim\3333333333333.gif
[2011/08/13 22:21:02 | 001,281,555 | —- | C] () – C:\Users\Jim\rrt7hu.gif
[2011/08/11 20:11:23 | 003,203,251 | —- | C] () – C:\Users\Jim\2222222222.gif
[2011/08/07 07:18:05 | 027,534,650 | —- | C] () – C:\Users\Jim\MVI_2323.AVI
[2011/08/07 07:18:05 | 010,331,602 | —- | C] () – C:\Users\Jim\MVI_2322.AVI
[2011/08/07 07:18:01 | 061,918,264 | —- | C] () – C:\Users\Jim\MVI_2313.AVI
[2011/08/07 07:17:57 | 064,883,658 | —- | C] () – C:\Users\Jim\MVI_2311.AVI
[2011/08/07 07:17:56 | 035,780,780 | —- | C] () – C:\Users\Jim\MVI_2310.AVI
[2011/07/18 05:50:04 | 001,114,659 | —- | C] () – C:\Users\Jim\1267370831031.gif
[2011/06/26 13:18:52 | 000,007,606 | —- | C] () – C:\Users\Jim\AppData\Local\Resmon.ResmonCfg
[2011/06/20 19:32:53 | 000,308,673 | —- | C] () – C:\Users\Jim\NHL_Boston_Bruins_tab.png
[2011/06/20 19:06:05 | 000,805,957 | —- | C] () – C:\Users\Jim\127965728490.gif
[2011/03/05 20:27:41 | 000,356,671 | —- | C] () – C:\Users\Jim\tumblr_lhdlz6Jkv11qe0eclo1_r6_500.gif
[2010/10/17 18:59:57 | 003,203,251 | —- | C] () – C:\Users\Jim\168cv0m.gif
[2010/10/01 11:24:13 | 013,302,065 | —- | C] () – C:\Users\Jim\2a9trbd.gif
[2010/09/17 17:12:07 | 008,633,608 | —- | C] () – C:\Users\Jim\18595633f43e96316349.gif
[2010/09/12 17:49:37 | 000,959,938 | —- | C] () – C:\Users\Jim\uo1o6.gif
[2010/09/12 16:44:52 | 004,191,078 | —- | C] () – C:\Users\Jim\1zppkdfjpg.gif
[2010/09/12 10:27:59 | 000,102,127 | —- | C] () – C:\Users\Jim\5aGPw.jpg
[2010/09/11 11:01:20 | 002,084,198 | —- | C] () – C:\Users\Jim\18417b9d13c3a9af.gif
[2010/09/09 20:41:01 | 001,900,180 | —- | C] () – C:\Users\Jim\ani1.gif
[2010/09/09 20:25:54 | 002,095,311 | —- | C] () – C:\Users\Jim\Soccer_sportscaster_incoming.gif

========== ZeroAccess Check ==========

[2011/11/17 01:41:18 | 000,000,000 | —D | M] – C:\Windows\Installer\{a8f77fd5-30ce-bc82-186c-db75047d5c2a}\L
[2012/06/12 17:22:07 | 000,000,000 | —D | M] – C:\Windows\Installer\{a8f77fd5-30ce-bc82-186c-db75047d5c2a}\U
[2011/11/17 01:41:18 | 000,000,000 | -HSD | M] – C:\Windows\SysWOW64\config\systemprofile\AppData\Local\{a8f77fd5-30ce-bc82-186c-db75047d5c2a}\L
[2011/11/17 01:41:18 | 000,000,000 | -HSD | M] – C:\Windows\SysWOW64\config\systemprofile\AppData\Local\{a8f77fd5-30ce-bc82-186c-db75047d5c2a}\U
[2009/07/13 23:55:00 | 000,000,227 | RHS- | M] () – C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll – [2012/06/09 00:43:10 | 014,172,672 | —- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll – [2012/06/08 23:41:00 | 012,873,728 | —- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll – [2009/07/13 20:40:51 | 000,909,312 | —- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll – [2010/11/20 07:19:02 | 000,606,208 | —- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll – [2009/07/13 20:41:56 | 000,505,856 | —- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2012/12/24 13:25:09 | 000,000,000 | —D | M] – C:\Users\Jim\AppData\Roaming\Azureus
[2013/02/16 20:19:15 | 000,000,000 | —D | M] – C:\Users\Jim\AppData\Roaming\Dropbox
[2011/08/11 19:58:33 | 000,000,000 | —D | M] – C:\Users\Jim\AppData\Roaming\IrfanView
[2011/10/31 16:23:25 | 000,000,000 | —D | M] – C:\Users\Jim\AppData\Roaming\iWin
[2011/07/17 17:16:37 | 000,000,000 | —D | M] – C:\Users\Jim\AppData\Roaming\ManyCam
[2010/06/15 06:42:58 | 000,000,000 | —D | M] – C:\Users\Jim\AppData\Roaming\Megaupload
[2010/09/18 11:19:17 | 000,000,000 | —D | M] – C:\Users\Jim\AppData\Roaming\Moyea
[2011/02/05 10:09:28 | 000,000,000 | —D | M] – C:\Users\Jim\AppData\Roaming\SMART Technologies
[2011/02/05 10:05:28 | 000,000,000 | —D | M] – C:\Users\Jim\AppData\Roaming\SMART Technologies Inc
[2011/01/29 17:32:44 | 000,000,000 | —D | M] – C:\Users\Jim\AppData\Roaming\TomTom
[2010/04/05 07:12:11 | 000,000,000 | —D | M] – C:\Users\Jim\AppData\Roaming\TPDesign4
[2011/10/30 09:47:27 | 000,000,000 | —D | M] – C:\Users\Jim\AppData\Roaming\WildTangent
[2012/03/08 19:27:01 | 000,000,000 | —D | M] – C:\Users\Jim\AppData\Roaming\Windows Live Writer

========== Purity Check ==========



< End of report >
Welcome to the forum.

Download DDS from one of the links below and save it to your desktop:
http://download.bleepingcomputer.com/sUBs/dds.scr
http://download.bleepingcomputer.com/sUBs/dds.com

Temporarily disable any script blocker if your Anti-Virus/Anti-Malware has it.
Once downloaded you can disconnect from the Internet and disable your Ant-Virus temporarily if needed.
Then double click dds.scr or dds.com to run the tool, on Vista or Win 7 or Win 8 right click and select Run as administrator
Click the Run button if prompted with an Open File - Security Warning dialog box.
A black DOS console should open and run for a moment.
When done, DDS will open two (2) logs: DDS.txt and Attach.txt
Save both reports to your desktop
Please Copy & Paste the contents of the following logs in your next reply
You can ignore the note about zipping the Attach.txt file

Then………

Please remove any usb or external drives from the computer before you run this scan!

Please download and run RogueKiller to your desktop.

http://tigzy.geekstogo.com/Tools/RogueKillerX64.exe <—use this one for 64 bit systems

Quit all running programs.

For Windows XP, double-click to start.
For Vista or Windows 7-8, do a right-click on the program, select Run as Administrator to start, & when prompted Allow to run.


Click Scan to scan the system.
When the scan completes > Close out the program > Don't Fix anything!

Don't run any other options, they're not all bad!!!!!!!

Post back the report which should be located on your desktop.

MrC
. UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG. IF REQUESTED, ZIP IT UP & ATTACH IT . DDS (Ver_2012-11-20.01) . Microsoft Windows 7 Home Premium Boot Device: \Device\HarddiskVolume1 Install Date: 2/24/2010 5:38:22 PM System Uptime: 2/17/2013 8:43:21 AM (8 hours ago) . Motherboard: Hewlett-Packard | | 3658 Processor: Intel® Core™ i3 CPU M 330 @ 2.13GHz | CPU | 2133/1066mhz . ==== Disk Partitions ========================= . C: is FIXED (NTFS) - 452 GiB total, 252.327 GiB free. D: is FIXED (NTFS) - 13 GiB total, 2.186 GiB free. F: is CDROM () . ==== Disabled Device Manager Items ============= . ==== System Restore Points =================== . RP216: 12/30/2012 9:46:06 PM - Scheduled Checkpoint RP217: 1/8/2013 7:28:04 PM - Scheduled Checkpoint RP218: 1/9/2013 8:20:58 AM - Windows Update RP219: 1/18/2013 9:18:59 PM - Scheduled Checkpoint RP220: 1/26/2013 11:36:53 AM - Scheduled Checkpoint RP221: 2/3/2013 8:44:57 PM - Scheduled Checkpoint RP222: 2/13/2013 8:32:50 AM - Windows Update . ==== Installed Programs ====================== . Update for Microsoft Office 2007 (KB2508958) 7-Zip 9.20 Acrobat.com ActiveCheck component for HP Active Support Library Adobe AIR Adobe Flash Player 10 ActiveX Adobe Flash Player 11 Plugin Adobe Reader XI Adobe Shockwave Player Akamai NetSession Interface Apple Application Support Apple Mobile Device Support Apple Software Update Bonjour Compatibility Pack for the 2007 Office system CutePDF Writer 2.8 D3DX10 DIP Switch 2.0 dopewars-1.5.12 DraftDominator Version 13.0c Dropbox DVD Menu Pack for HP MediaSmart Video Easy Interactive Driver Ver.1.10 Easy Interactive Tools Ver.2.00 Easy Interactive Virtual Tablet Driver Easy WiFi Radar 1.0.5 ENE CIR Receiver Driver ESU for Microsoft Windows 7 FileTransfer 2 G4 PanelBuilder G4 Support Files 2.11.11 GIF File Size Reduce Software Google Earth Google Update Helper HP 3D DriveGuard HP Customer Experience Enhancements HP Games HP MediaSmart DVD HP MediaSmart Internet TV HP MediaSmart Live TV HP MediaSmart Music/Photo/Video HP MediaSmart SlingPlayer HP MediaSmart SmartMenu HP MediaSmart Software Notebook Demo HP MediaSmart Webcam HP MediaSmart/TouchSmart Netflix HP Quick Launch Buttons HP Setup HP Smart Web Printing HP Support Assistant HP Update HP User Guides 0154 HP Wireless Assistant HPAsset component for HP Active Support Library Hulu Desktop IDT Audio Intel® Graphics Media Accelerator Driver Intel® Management Engine Components Intel® Matrix Storage Manager IrfanView (remove only) iTunes Java 7 Update 10 (64-bit) Java Auto Updater Java™ 6 Update 15 (64-bit) Java™ 6 Update 29 Java™ SE Development Kit 6 Update 15 (64-bit) Junk Mail filter update KeypadBuilder LabelPrint LightScribe System Software Malwarebytes Anti-Malware version 1.70.0.1100 ManyCam 2.6.55 (remove only) Mega Manager Mesh Runtime MFL Import Version 3.0a Microsoft Application Error Reporting Microsoft Live Search Toolbar Microsoft Office 2007 Service Pack 3 (SP3) Microsoft Office Excel MUI (English) 2007 Microsoft Office File Validation Add-In Microsoft Office Home and Student 2007 Microsoft Office Office 64-bit Components 2007 Microsoft Office OneNote MUI (English) 2007 Microsoft Office PowerPoint MUI (English) 2007 Microsoft Office PowerPoint Viewer 2007 (English) Microsoft Office Proof (English) 2007 Microsoft Office Proof (French) 2007 Microsoft Office Proof (Spanish) 2007 Microsoft Office Proofing (English) 2007 Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) Microsoft Office Shared 64-bit MUI (English) 2007 Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007 Microsoft Office Shared MUI (English) 2007 Microsoft Office Shared Setup Metadata MUI (English) 2007 Microsoft Office Suite Activation Assistant Microsoft Office Word MUI (English) 2007 Microsoft Silverlight Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 Microsoft Visual C++ 2005 Redistributable Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Works MobileMe Control Panel Movie Theme Pack for HP MediaSmart Video Moyea FLV Player version: 2.0.2.96 Mozilla Firefox 18.0.2 (x86 en-US) Mozilla Maintenance Service MSVCRT MSVCRT_amd64 MSXML 4.0 SP2 (KB954430) MSXML 4.0 SP2 (KB973688) NetLinx Diagnostics 1.0 NetLinx Studio Norton Online Backup PhotoStage Slideshow Producer Power2Go PowerDirector Prism Video File Converter Projections Dominator Version 7.0f QLBCASL Questionmark Secure Browser QuickTime Realtek Ethernet Controller Driver Realtek USB 2.0 Card Reader Recovery Manager Security Update for Microsoft Office 2007 suites (KB2596615) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596672) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596785) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2687311) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2687441) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2687499) 32-Bit Edition Security Update for Microsoft Office 2007 suites (KB2760416) 32-Bit Edition Security Update for Microsoft Office Excel 2007 (KB2687307) 32-Bit Edition Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition Security Update for Microsoft Office Word 2007 (KB2760421) 32-Bit Edition SMART Notebook SMART Product Drivers SUPERAntiSpyware Synaptics Pointing Device Driver Teamboard DrawSA 9.1.0 TomTom HOME Visual Studio Merge Modules TPDesign4 TradeDominator version 8.0a Trend Micro Titanium Internet Security Trend Micro™ Titanium™ Internet Security Ulead GIF Animator 5 TBYB Update for 2007 Microsoft Office System (KB967642) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition Vuze WebUpdate Windows Live Communications Platform Windows Live Essentials Windows Live ID Sign-in Assistant Windows Live Installer Windows Live Language Selector Windows Live Mail Windows Live Mesh Windows Live Mesh ActiveX Control for Remote Connections Windows Live Messenger Windows Live MIME IFilter Windows Live Movie Maker Windows Live Photo Common Windows Live Photo Gallery Windows Live PIMT Platform Windows Live Remote Client Windows Live Remote Client Resources Windows Live Remote Service Windows Live Remote Service Resources Windows Live SOXE Windows Live SOXE Definitions Windows Live Sync Windows Live UX Platform Windows Live UX Platform Language Pack Windows Live Writer Windows Live Writer Resources Windows Media Player Firefox Plugin WinZip 14.5 Yahoo! Detect . ==== Event Viewer Messages From Past Week ======== . 2/16/2013 6:30:16 PM, Error: Service Control Manager [7001] - The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: The dependency service or group failed to start. 2/16/2013 5:33:30 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030} 2/16/2013 5:33:30 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39} 2/16/2013 5:33:30 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1068" attempting to start the service netprofm with arguments "" in order to run the server: {A47979D2-C419-11D9-A5B4-001185AD2B89} 2/16/2013 5:33:30 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1068" attempting to start the service netman with arguments "" in order to run the server: {BA126AD1-2166-11D1-B1D0-00805FC1270E} 2/16/2013 5:33:29 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF} 2/16/2013 5:33:23 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC} 2/16/2013 5:33:17 PM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: AFD DfsC discache NetBIOS NetBT nsiproxy Psched rdbss SASDIFSV SASKUTIL spldr tdx tmtdi vwififlt Wanarpv6 WfpLwf ws2ifsl 2/16/2013 5:33:16 PM, Error: Service Control Manager [7001] - The Workstation service depends on the Network Store Interface Service service which failed to start because of the following error: The dependency service or group failed to start. 2/16/2013 5:33:16 PM, Error: Service Control Manager [7001] - The TCP/IP NetBIOS Helper service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error: A device attached to the system is not functioning. 2/16/2013 5:33:16 PM, Error: Service Control Manager [7001] - The SMB MiniRedirector Wrapper and Engine service depends on the Redirected Buffering Sub Sysytem service which failed to start because of the following error: A device attached to the system is not functioning. 2/16/2013 5:33:16 PM, Error: Service Control Manager [7001] - The SMB 2.0 MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error: The dependency service or group failed to start. 2/16/2013 5:33:16 PM, Error: Service Control Manager [7001] - The SMB 1.x MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error: The dependency service or group failed to start. 2/16/2013 5:33:16 PM, Error: Service Control Manager [7001] - The Network Store Interface Service service depends on the NSI proxy service driver. service which failed to start because of the following error: A device attached to the system is not functioning. 2/16/2013 5:33:16 PM, Error: Service Control Manager [7001] - The Network Location Awareness service depends on the Network Store Interface Service service which failed to start because of the following error: The dependency service or group failed to start. 2/16/2013 5:33:16 PM, Error: Service Control Manager [7001] - The Network Connections service depends on the Network Store Interface Service service which failed to start because of the following error: The dependency service or group failed to start. 2/16/2013 5:33:16 PM, Error: Service Control Manager [7001] - The IP Helper service depends on the Network Store Interface Service service which failed to start because of the following error: The dependency service or group failed to start. 2/16/2013 5:33:16 PM, Error: Service Control Manager [7001] - The DNS Client service depends on the NetIO Legacy TDI Support Driver service which failed to start because of the following error: A device attached to the system is not functioning. 2/16/2013 5:33:16 PM, Error: Service Control Manager [7001] - The DHCP Client service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error: A device attached to the system is not functioning. 2/16/2013 5:33:16 PM, Error: Service Control Manager [7001] - The Computer Browser service depends on the Server service which failed to start because of the following error: The dependency service or group failed to start. 2/16/2013 1:45:38 PM, Error: Service Control Manager [7001] - The HomeGroup Provider service depends on the Function Discovery Provider Host service which failed to start because of the following error: The dependency service or group failed to start. 2/16/2013 1:27:22 PM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: discache SASDIFSV SASKUTIL spldr tmtdi Wanarpv6 . ==== End Of File =========================== DDS (Ver_2012-11-20.01) - NTFS_AMD64 Internet Explorer: 9.0.8112.16464 BrowserJavaVersion: 1.6.0_29 Run by [removed] at 16:13:28 on 2013-02-17 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.3895.1375 [GMT -5:00] . AV: Trend Micro Titanium Internet Security *Enabled/Updated* {68F968AC-2AA0-091D-848C-803E83E35902} SP: Trend Micro Titanium Internet Security *Enabled/Updated* {D3988948-0C9A-0693-BE3C-BB4CF86413BF} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . ============== Running Processes =============== . C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_d15ed671de43d681\STacSV64.exe C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\Hpservice.exe C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Windows\SYSTEM32\WISPTIS.EXE C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe C:\Program Files\Trend Micro\UniClient\UiFrmWrk\uiWatchDog.exe C:\Program Files\Trend Micro\AMSP\coreFrameworkHost.exe C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_d15ed671de43d681\AESTSr64.exe C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\EPSON Projector\Easy Interactive Tools Ver.2\EIN_BMM.exe C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe C:\Program Files\Windows Media Player\wmpnetwk.exe C:\Windows\system32\SearchIndexer.exe C:\Windows\SYSTEM32\WISPTIS.EXE C:\Windows\system32\taskhost.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\System32\igfxtray.exe C:\Windows\System32\hkcmd.exe C:\Windows\System32\igfxpers.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Windows\system32\igfxsrvc.exe C:\Program Files\IDT\WDM\sttray64.exe C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Program Files\Trend Micro\UniClient\UiFrmWrk\uiSeAgnt.exe C:\Program Files\Synaptics\SynTP\SynTPHelper.exe C:\Users\Jim\AppData\Local\Akamai\netsession_win.exe C:\Windows\System32\rundll32.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe C:\Windows\SysWOW64\rundll32.exe C:\Users\Jim\AppData\Local\Akamai\netsession_win.exe C:\Users\Jim\AppData\Roaming\Dropbox\bin\Dropbox.exe C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTBoardService.exe C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTSNMPAgent.exe C:\Program Files (x86)\iTunes\iTunesHelper.exe C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Program Files\iPod\bin\iPodService.exe C:\Windows\System32\svchost.exe -k LocalServicePeerNet C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe C:\Windows\system32\taskeng.exe c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe C:\Windows\notepad.exe C:\Windows\notepad.exe C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_5_502_135.exe C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_5_502_135.exe C:\Windows\system32\taskeng.exe C:\Windows\system32\SearchProtocolHost.exe C:\Windows\system32\SearchFilterHost.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\System32\cscript.exe . ============== Pseudo HJT Report =============== . uStart Page = hxxp://www.yahoo.com/ BHO: HP Print Enhancer: {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll BHO: TmIEPlugInBHO Class: {1CA1377B-DC1D-4A52-9585-6E06050FAC53} - C:\Program Files\Trend Micro\AMSP\module\20004\1.5.1505\6.6.1088\TmIEPlg32.dll BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll BHO: TmBpIeBHO Class: {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - C:\Program Files\Trend Micro\AMSP\module\20002\6.6.1010\6.6.1010\TmBpIe32.dll BHO: IeMonitorBho Class: {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files (x86)\Megaupload\Mega Manager\MegaIEMn.dll BHO: Microsoft Live Search Toolbar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\Program Files (x86)\MSN\Toolbar\3.0.0566.0\msneshellx.dll BHO: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll BHO: HP Smart BHO Class: {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll TB: Microsoft Live Search Toolbar: {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - c:\Program Files (x86)\MSN\Toolbar\3.0.0566.0\msneshellx.dll uRun: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden uRun: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun uRun: [Akamai NetSession Interface] "C:\Users\Jim\AppData\Local\Akamai\netsession_win.exe" uRun: [Microsoft Help] rundll32 "C:\Users\Jim\AppData\Local\{6A47761F-18DF-48FC-9A53-BD5BCF5721EA}\Microsoft Help\riygj.dll",NVDisplayCoInstallW uRun: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe mRun: [HPCam_Menu] "c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe" "c:\Program Files (x86)\Hewlett-Packard\Media\Webcam" UpdateWithCreateOnce "Software\Hewlett-Packard\Media\Webcam" mRun: [QlbCtrl.exe] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start mRun: [NortonOnlineBackupReminder] "C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe" UNATTENDED mRun: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe mRun: [WirelessAssistant] C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe mRun: [SMART Board Service] C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTBoardService.exe mRun: [SMART SNMP Agent] C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTSNMPAgent.exe -e mRun: [AppleSyncNotifier] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" StartupFolder: C:\Users\Jim\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\Dropbox.lnk - C:\Users\Jim\AppData\Roaming\Dropbox\bin\Dropbox.exe uPolicies-Explorer: NoDrives = dword:0 mPolicies-Explorer: NoDrives = dword:0 mPolicies-System: ConsentPromptBehaviorAdmin = dword:5 mPolicies-System: ConsentPromptBehaviorUser = dword:3 mPolicies-System: EnableUIADesktopToggle = dword:0 IE: Download Link Using Mega Manager… - C:\Program Files (x86)\Megaupload\Mega Manager\mm_file.htm IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~4\Office12\EXCEL.EXE/3000 IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} IE: {DDE87865-83C5-48c4-8357-2F5B1AA84522} - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab TCP: Interfaces\{2C795CB8-0265-4008-B8CB-B1A90ED582AA} : DHCPNameServer = 75.75.75.75 75.75.76.76 TCP: Interfaces\{2C795CB8-0265-4008-B8CB-B1A90ED582AA}\343435 : DHCPNameServer = 10.1.1.2 TCP: Interfaces\{2C795CB8-0265-4008-B8CB-B1A90ED582AA}\354756078602236393D27657563747 : DHCPNameServer = 75.75.75.75 75.75.76.76 TCP: Interfaces\{2C795CB8-0265-4008-B8CB-B1A90ED582AA}\35D616C6C6350727573656 : DHCPNameServer = 75.75.75.75 75.75.76.76 TCP: Interfaces\{2C795CB8-0265-4008-B8CB-B1A90ED582AA}\8497164747F5B4569775563747 : DHCPNameServer = 4.2.2.1 TCP: Interfaces\{2C795CB8-0265-4008-B8CB-B1A90ED582AA}\84F6C6964616970294E6E60205561626F64697 : DHCPNameServer = [removed] [removed] TCP: Interfaces\{2C795CB8-0265-4008-B8CB-B1A90ED582AA}\A6566666 : DHCPNameServer = 192.168.1.1 Handler: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\Trend Micro\AMSP\module\20002\6.6.1010\6.6.1010\TmBpIe32.dll Handler: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} - C:\Program Files\Trend Micro\AMSP\module\20004\1.5.1505\6.6.1088\TmIEPlg32.dll Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll mASetup: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "C:\Program Files (x86)\Common Files\LightScribe\LSRunOnce.exe" x64-BHO: TmIEPlugInBHO Class: {1CA1377B-DC1D-4A52-9585-6E06050FAC53} - C:\Program Files\Trend Micro\AMSP\module\20004\1.5.1505\6.6.1088\TmIEPlg.dll x64-BHO: Java™ Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll x64-BHO: TmBpIeBHO Class: {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - C:\Program Files\Trend Micro\AMSP\module\20002\6.6.1010\6.6.1010\TmBpIe64.dll x64-BHO: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll x64-Run: [IgfxTray] C:\Windows\System32\igfxtray.exe x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe x64-Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe x64-Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe x64-Run: [SmartMenu] C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe /background x64-Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" x64-Run: [Trend Micro Titanium] "C:\Program Files\Trend Micro\Titanium\UIFramework\uiWinMgr.exe" -set Silent "1" SplashURL "" x64-Run: [Trend Micro Client Framework] "C:\Program Files\Trend Micro\UniClient\UiFrmWrk\UIWatchDog.exe" x64-DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab x64-DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab x64-DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab x64-Handler: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\Trend Micro\AMSP\module\20002\6.6.1010\6.6.1010\TmBpIe64.dll x64-Handler: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} - C:\Program Files\Trend Micro\AMSP\module\20004\1.5.1505\6.6.1088\TmIEPlg.dll x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - x64-Notify: igfxcui - igfxdev.dll . ================= FIREFOX =================== . FF - ProfilePath - C:\Users\Jim\AppData\Roaming\Mozilla\Firefox\Profiles\qbgsk9sh.default\ FF - prefs.js: browser.search.selectedEngine - NCH Customized Web Search FF - prefs.js: browser.startup.homepage - hxxp://www.yahoo.com/ FF - plugin: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrlui.dll FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll FF - plugin: C:\Users\Default\AppData\Local\HuluDesktop\instances\0.9.7.1\nphdplg.dll FF - plugin: C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_135.dll . ============= SERVICES / DRIVERS =============== . R1 SASDIFSV;SASDIFSV;C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys [2011-7-22 14928] R1 SASKUTIL;SASKUTIL;C:\Program Files\SUPERAntiSpyware\saskutil64.sys [2011-7-12 12368] R2 !SASCORE;SAS Core Service;C:\Program Files\SUPERAntiSpyware\SASCore64.exe [2012-7-11 140672] R2 AESTFilters;Andrea ST Filters Service;C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_d15ed671de43d681\AESTSr64.exe [2010-2-6 89600] R2 Amsp;Trend Micro Solution Platform;C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe [2010-9-21 256336] R2 EIN_BMM;EIN_BMM;C:\Program Files\EPSON Projector\Easy Interactive Tools Ver.2\EIN_BMM.exe [2012-3-7 108704] R2 hpsrv;HP Service;C:\Windows\System32\hpservice.exe [2009-7-8 30520] R2 tmevtmgr;tmevtmgr;C:\Windows\System32\drivers\tmevtmgr.sys [2010-9-21 67664] R2 UNS;Intel® Management & Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2010-2-6 2320920] R3 Com4QLBEx;Com4QLBEx;C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2010-1-9 228408] R3 enecir;ENE CIR Receiver;C:\Windows\System32\drivers\enecir.sys [2009-6-29 70656] R3 ep_eiserial;Easy Interactive Virtual Serial Driver;C:\Windows\System32\drivers\ep_eiserial.sys [2012-3-7 12800] R3 EPVTPen;Easy Interactive Virtual HID Driver;C:\Windows\System32\drivers\ep_eivirtab.sys [2012-3-7 13056] R3 HECIx64;Intel® Management Engine Interface;C:\Windows\System32\drivers\HECIx64.sys [2009-9-17 56344] R3 IntcDAud;Intel® Display Audio;C:\Windows\System32\drivers\IntcDAud.sys [2009-9-26 233984] R3 ManyCam;ManyCam Virtual Webcam, WDM Video Capture Driver;C:\Windows\System32\drivers\ManyCam_x64.sys [2008-3-13 27136] R3 NETw5s64;Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit;C:\Windows\System32\drivers\NETw5s64.sys [2010-1-13 7675392] R3 SMARTMouseFilterx64;HID-compliant mouse;C:\Windows\System32\drivers\SMARTMouseFilterx64.sys [2010-6-15 12584] R3 SMARTVHidMiniVistaAmd64;SMART HID Device;C:\Windows\System32\drivers\SMARTVHidMiniVistaAmd64.sys [2010-6-15 15784] R3 SMARTVTabletPCx64;SMART Virtual TabletPC;C:\Windows\System32\drivers\SMARTVTabletPCx64.sys [2010-6-15 18432] S3 dopewars-server;dopewars server;C:\Program Files (x86)\dopewars-1.5.12\dopewars.exe -N –> C:\Program Files (x86)\dopewars-1.5.12\dopewars.exe -N [?] S3 netw5v64;Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;C:\Windows\System32\drivers\netw5v64.sys [2009-6-10 5434368] S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\System32\drivers\RtsUStor.sys [2010-2-6 225280] S3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2010-2-6 236544] S3 SrvHsfHDA;SrvHsfHDA;C:\Windows\System32\drivers\VSTAZL6.SYS [2009-7-13 292864] S3 SrvHsfV92;SrvHsfV92;C:\Windows\System32\drivers\VSTDPV6.SYS [2009-7-13 1485312] S3 SrvHsfWinac;SrvHsfWinac;C:\Windows\System32\drivers\VSTCNXT6.SYS [2009-7-13 740864] S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2011-7-1 59392] S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\drivers\usbaapl64.sys [2012-2-15 52736] S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2010-4-5 1255736] S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;C:\Windows\System32\drivers\yk62x64.sys [2009-6-10 389120] S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-22 57184] . =============== Created Last 30 ================ . 2013-02-16 16:38:44 ——– d—–w- C:\Users\Jim\AppData\Roaming\SUPERAntiSpyware.com 2013-02-16 16:38:22 ——– d—–w- C:\ProgramData\SUPERAntiSpyware.com 2013-02-16 16:38:22 ——– d—–w- C:\Program Files\SUPERAntiSpyware 2013-02-15 12:43:37 ——– d—–w- C:\Users\Jim\AppData\Local\Programs 2013-02-13 13:35:17 996352 —-a-w- C:\Program Files\Common Files\Microsoft Shared\VGX\VGX.dll 2013-02-13 13:35:17 768000 —-a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VGX\VGX.dll 2013-02-13 12:20:17 5553512 —-a-w- C:\Windows\System32\ntoskrnl.exe 2013-02-13 12:20:16 3967848 —-a-w- C:\Windows\SysWow64\ntkrnlpa.exe 2013-02-13 12:20:14 3913064 —-a-w- C:\Windows\SysWow64\ntoskrnl.exe 2013-02-13 12:19:58 3153408 —-a-w- C:\Windows\System32\win32k.sys 2013-02-13 12:19:56 215040 —-a-w- C:\Windows\System32\winsrv.dll 2013-02-13 12:19:55 7680 —-a-w- C:\Windows\SysWow64\instnm.exe 2013-02-13 12:19:55 25600 —-a-w- C:\Windows\SysWow64\setup16.exe 2013-02-13 12:19:55 14336 —-a-w- C:\Windows\SysWow64\ntvdm64.dll 2013-02-13 12:19:54 5120 —-a-w- C:\Windows\SysWow64\wow32.dll 2013-02-13 12:19:53 2048 —-a-w- C:\Windows\SysWow64\user.exe 2013-02-13 12:19:47 1913192 —-a-w- C:\Windows\System32\drivers\tcpip.sys 2013-02-13 12:19:46 288088 —-a-w- C:\Windows\System32\drivers\FWPKCLNT.SYS . ==================== Find3M ==================== . 2013-01-09 01:19:09 2312704 —-a-w- C:\Windows\System32\jscript9.dll 2013-01-09 01:12:03 1392128 —-a-w- C:\Windows\System32\wininet.dll 2013-01-09 01:11:06 1494528 —-a-w- C:\Windows\System32\inetcpl.cpl 2013-01-09 01:07:51 173056 —-a-w- C:\Windows\System32\ieUnatt.exe 2013-01-09 01:07:47 599040 —-a-w- C:\Windows\System32\vbscript.dll 2013-01-09 01:04:42 2382848 —-a-w- C:\Windows\System32\mshtml.tlb 2013-01-08 22:11:21 1800704 —-a-w- C:\Windows\SysWow64\jscript9.dll 2013-01-08 22:03:20 1129472 —-a-w- C:\Windows\SysWow64\wininet.dll 2013-01-08 22:03:12 1427968 —-a-w- C:\Windows\SysWow64\inetcpl.cpl 2013-01-08 21:59:02 142848 —-a-w- C:\Windows\SysWow64\ieUnatt.exe 2013-01-08 21:58:29 420864 —-a-w- C:\Windows\SysWow64\vbscript.dll 2013-01-08 21:56:23 2382848 —-a-w- C:\Windows\SysWow64\mshtml.tlb 2013-01-04 04:43:21 44032 —-a-w- C:\Windows\apppatch\acwow64.dll 2012-12-22 22:47:42 108008 —-a-w- C:\Windows\System32\WindowsAccessBridge-64.dll 2012-12-22 22:47:40 959976 —-a-w- C:\Windows\System32\deployJava1.dll 2012-12-22 22:47:40 1081320 —-a-w- C:\Windows\System32\npDeployJava1.dll 2012-12-22 22:43:08 73656 —-a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl 2012-12-22 22:43:08 697272 —-a-w- C:\Windows\SysWow64\FlashPlayerApp.exe 2012-12-16 17:11:22 46080 —-a-w- C:\Windows\System32\atmlib.dll 2012-12-16 14:45:03 367616 —-a-w- C:\Windows\System32\atmfd.dll 2012-12-16 14:13:28 295424 —-a-w- C:\Windows\SysWow64\atmfd.dll 2012-12-16 14:13:20 34304 —-a-w- C:\Windows\SysWow64\atmlib.dll 2012-12-14 21:49:28 24176 —-a-w- C:\Windows\System32\drivers\mbam.sys 2012-11-23 03:13:57 68608 —-a-w- C:\Windows\System32\taskhost.exe 2012-11-20 05:48:49 307200 —-a-w- C:\Windows\System32\ncrypt.dll 2012-11-20 04:51:09 220160 —-a-w- C:\Windows\SysWow64\ncrypt.dll 2007-11-21 08:38:04 161344 —-a-w- C:\Program Files (x86)\UNWISE.EXE . ============= FINISH: 16:14:15.00 ===============
RogueKiller V8.5.1 [Feb 12 2013] by Tigzy
mail : tigzyRKgmailcom
Feedback : http://www.geekstogo.com/forum/files/file/413-roguekiller/
Website : http://tigzy.geekstogo.com/roguekiller.php
Blog : http://tigzyrk.blogspot.com/

Operating System : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Started in : Normal mode
User : Jim [Admin rights]
Mode : Scan – Date : 02/18/2013 06:53:42
| ARK || FAK || MBR |

¤¤¤ Bad processes : 2 ¤¤¤
[DLL] rundll32.exe – C:\Windows\System32\rundll32.exe : C:\Users\Jim\AppData\Local\{6A47761F-18DF-48FC-9A53-BD5BCF5721EA}\Microsoft Help\riygj.dll [x] -> KILLED [TermProc]
[DLL] rundll32.exe – C:\Windows\SysWOW64\rundll32.exe : C:\Users\Jim\AppData\Local\{6A47761F-18DF-48FC-9A53-BD5BCF5721EA}\Microsoft Help\riygj.dll [x] -> KILLED [TermProc]

¤¤¤ Registry Entries : 7 ¤¤¤
[RUN][SUSP PATH] HKCU\[…]\Run : Microsoft Help (rundll32 "C:\Users\Jim\AppData\Local\{6A47761F-18DF-48FC-9A53-BD5BCF5721EA}\Microsoft Help\riygj.dll",NVDisplayCoInstallW) [-] -> FOUND
[RUN][SUSP PATH] HKUS\S-1-5-21-510024845-1952235138-4060687309-1001[…]\Run : Microsoft Help (rundll32 "C:\Users\Jim\AppData\Local\{6A47761F-18DF-48FC-9A53-BD5BCF5721EA}\Microsoft Help\riygj.dll",NVDisplayCoInstallW) [-] -> FOUND
[HJPOL] HKCU\[…]\System : disableregistrytools (0) -> FOUND
[HJPOL] HKLM\[…]\System : DisableRegistryTools (0) -> FOUND
[HJPOL] HKLM\[…]\Wow6432Node\System : DisableRegistryTools (0) -> FOUND
[HJ DESK] HKLM\[…]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> FOUND
[HJ DESK] HKLM\[…]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND

¤¤¤ Particular Files / Folders: ¤¤¤
[ZeroAccess][FOLDER] U : C:\Windows\Installer\{a8f77fd5-30ce-bc82-186c-db75047d5c2a}\U –> FOUND
[ZeroAccess][FOLDER] U : C:\Windows\syswow64\config\systemprofile\AppData\Local\{a8f77fd5-30ce-bc82-186c-db75047d5c2a}\U –> FOUND
[ZeroAccess][FOLDER] L : C:\Windows\Installer\{a8f77fd5-30ce-bc82-186c-db75047d5c2a}\L –> FOUND
[ZeroAccess][FOLDER] L : C:\Windows\syswow64\config\systemprofile\AppData\Local\{a8f77fd5-30ce-bc82-186c-db75047d5c2a}\L –> FOUND

¤¤¤ Driver : [NOT LOADED] ¤¤¤

¤¤¤ Infection : ZeroAccess ¤¤¤

¤¤¤ HOSTS File: ¤¤¤
–> C:\Windows\system32\drivers\etc\hosts

127.0.0.1 localhost


¤¤¤ MBR Check: ¤¤¤

+++++ PhysicalDrive0: TOSHIBA MK5056GSY +++++
— User —
[MBR] f4655667da750e983338edbf368e176d
[BSP] 8e6cda14bc33908e8d1d679fa4b2300c : Windows Vista/7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 199 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 409600 | Size: 463193 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 949028864 | Size: 13443 Mo
User = LL1 … OK!
User = LL2 … OK!

Finished : << RKreport[1]_S_02182013_02d0653.txt >>
RKreport[1]_S_02182013_02d0653.txt
Please read the following information first.

You're infected with Rootkit.ZeroAccess, a BackDoor Trojan.

BACKDOOR WARNING

——————————

One or more of the identified infections is known to use a backdoor.

This allows hackers to remotely control your computer, steal critical system information and download and execute files.

I would advice you to disconnect this PC from the Internet immediately. If you do any banking or other financial transactions on the PC or if it should contain any other sensitive information, please get to a known clean computer and change all passwords where applicable, and it would be wise to contact those same financial institutions to apprise them of your situation.

Though the infection has been identified and because of it's backdoor functionality, your PC is very likely compromised and there is no way to be sure your computer can ever again be trusted. Many experts in the security community believe that once infected with this type of trojan, the best course of action would be a reformat and reinstall of the OS. Please read these for more information:

How Do I Handle Possible Identify Theft, Internet Fraud and CC Fraud?
http://www.dslreports.com/faq/10451

When Should I Format, How Should I Reinstall
http://www.dslreports.com/faq/10063

I will try my best to clean this machine but I can't guarantee that it will be 100% secure afterwards.

Let me know what you decide to do. If you decide to go through with the cleanup, please proceed with the following steps.


—————————————–

Run RogueKiller again and click Scan
When the scan completes > click on the Registry tab
Put a check next to all of these and uncheck the rest: (if found)

[RUN][SUSP PATH] HKCU\[…]\Run : Microsoft Help (rundll32 "C:\Users\Jim\AppData\Local\{6A47761F-18DF-48FC-9A53-BD5BCF5721EA}\Microsoft Help\riygj.dll",NVDisplayCoInstallW) [-] -> FOUND
[RUN][SUSP PATH] HKUS\S-1-5-21-510024845-1952235138-4060687309-1001[…]\Run : Microsoft Help (rundll32 "C:\Users\Jim\AppData\Local\{6A47761F-18DF-48FC-9A53-BD5BCF5721EA}\Microsoft Help\riygj.dll",NVDisplayCoInstallW) [-] -> FOUND


Now click Delete on the right hand column under Options
————-
Next click on the Files tab and put a check next to these and uncheck the rest. (if found)

[ZeroAccess][FOLDER] U : C:\Windows\Installer\{a8f77fd5-30ce-bc82-186c-db75047d5c2a}\U –> FOUND
[ZeroAccess][FOLDER] U : C:\Windows\syswow64\config\systemprofile\AppData\Local\{a8f77fd5-30ce-bc82-186c-db75047d5c2a}\U –> FOUND
[ZeroAccess][FOLDER] L : C:\Windows\Installer\{a8f77fd5-30ce-bc82-186c-db75047d5c2a}\L –> FOUND
[ZeroAccess][FOLDER] L : C:\Windows\syswow64\config\systemprofile\AppData\Local\{a8f77fd5-30ce-bc82-186c-db75047d5c2a}\L –> FOUND


Now click Delete on the right hand column under Options
————-
Next click on the Processes tab and put a check next to these and uncheck the rest. (if found)

[DLL] rundll32.exe – C:\Windows\System32\rundll32.exe : C:\Users\Jim\AppData\Local\{6A47761F-18DF-48FC-9A53-BD5BCF5721EA}\Microsoft Help\riygj.dll [x] -> KILLED [TermProc]
[DLL] rundll32.exe – C:\Windows\SysWOW64\rundll32.exe : C:\Users\Jim\AppData\Local\{6A47761F-18DF-48FC-9A53-BD5BCF5721EA}\Microsoft Help\riygj.dll [x] -> KILLED [TermProc]


Now click Delete on the right hand column under Options

————-

Next…………

Please read the directions carefully so you don't end up deleting something that is good!!

If in doubt about an entry….please ask or choose Skip!!!!

Don't Delete anything unless instructed to!

If you get the warning about a file UnsignedFile.Multi.Generic or LockedFile.Multi.Generic please choose
Skip and click on Continue

If a suspicious object is detected, the default action will be Skip, click on Continue

Please note that TDSSKiller can be run in safe mode if needed.

Here's a video that explains how to run it if needed:
How To Run TDSSKiller

Please download the latest version of TDSSKiller from here and save it to your Desktop.
  • Doubleclick on TDSSKiller.exe to run the application, then click on Change parameters.

    [external image: Posted Image]
  • Put a checkmark beside loaded modules.

    [external image: Posted Image]
  • A reboot will be needed to apply the changes. Do it.
  • TDSSKiller will launch automatically after the reboot. Also your computer may seem very slow and unusable. This is normal. Give it enough time to load your background programs.
  • Then click on Change parameters in TDSSKiller.
  • Check all boxes then click OK.

    [external image: Posted Image]
  • Click the Start Scan button.

    [external image: Posted Image]
  • The scan should take no longer than 2 minutes.
  • If a suspicious object is detected, the default action will be Skip, click on Continue.

    [external image: Posted Image]

    Any entries like this: \Device\Harddisk0\DR0 ( TDSS File System ) - please choose Skip.

    If in doubt about an entry….please ask or choose Skip
  • If malicious objects are found, they will show in the Scan results - Select action for found objects and offer three options.
    Ensure Cure (default) is selected, then click Continue > Reboot now to finish the cleaning process.

    [external image: Posted Image]

    Note: If Cure is not available, please choose Skip instead, do not choose Delete unless instructed.
  • A report will be created in your root directory, (usually C:\ folder) in the form of "TDSSKiller.[Version]_[Date]_[Time]_log.txt". Please copy and paste the contents of that file here. There may be 3 logs > so post or attach all of them.
  • Sometimes these logs can be very large, in that case please attach it or zip it up and attach it.

Here's a summary of what to do if you would like to print it out:


If in doubt about an entry….please ask or choose Skip

Don't Delete anything unless instructed to!

If a suspicious object is detected, the default action will be Skip, click on Continue

If you get the warning about a file UnsignedFile.Multi.Generic or LockedFile.Multi.Generic please choose
Skip and click on Continue

Any entries like this: \Device\Harddisk0\DR0 ( TDSS File System ) - please choose Skip.

If malicious objects are found, they will show in the Scan results and offer three (3) options.

Ensure Cure is selected, then click Continue => Reboot now to finish the cleaning process.
Note: If Cure is not available, please choose Skip instead, do not choose Delete unless instructed.

MrC
I was just researching this a little more and I disabled/removed the add on "printing helper 2.5" from Firefox. I tried roughly 20 search links and all were fine. Do you think I am still infected and should do the above?

I was just researching this a little more and I disabled/removed the add on "printing helper 2.5" from Firefox. I tried roughly 20 search links and all were fine. Do you think I am still infected and should do the above?


Are you serious?? Did you read what I posted about this infection???

If you want help…please do as instructed…if there's no boxes to check in RogueKiller, just skip and continue.

MrC
18:15:31.0936 5760 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42 18:15:32.0420 5760 ============================================================ 18:15:32.0420 5760 Current date / time: 2013/02/18 18:15:32.0420 18:15:32.0420 5760 SystemInfo: 18:15:32.0420 5760 18:15:32.0420 5760 OS Version: 6.1.7601 ServicePack: 1.0 18:15:32.0420 5760 Product type: Workstation 18:15:32.0420 5760 ComputerName: JIM-PC 18:15:32.0420 5760 UserName: Jim 18:15:32.0420 5760 Windows directory: C:\Windows 18:15:32.0420 5760 System windows directory: C:\Windows 18:15:32.0420 5760 Running under WOW64 18:15:32.0420 5760 Processor architecture: Intel x64 18:15:32.0420 5760 Number of processors: 4 18:15:32.0420 5760 Page size: 0x1000 18:15:32.0420 5760 Boot type: Normal boot 18:15:32.0420 5760 ============================================================ 18:15:33.0013 5760 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 18:15:33.0028 5760 ============================================================ 18:15:33.0028 5760 \Device\Harddisk0\DR0: 18:15:33.0028 5760 MBR partitions: 18:15:33.0028 5760 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x63800 18:15:33.0028 5760 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x64000, BlocksNum 0x388AC800 18:15:33.0028 5760 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x38910800, BlocksNum 0x1A41800 18:15:33.0028 5760 ============================================================ 18:15:33.0044 5760 C: <-> \Device\Harddisk0\DR0\Partition2 18:15:33.0075 5760 D: <-> \Device\Harddisk0\DR0\Partition3 18:15:33.0075 5760 ============================================================ 18:15:33.0075 5760 Initialize success 18:15:33.0075 5760 ============================================================ 18:16:05.0508 5752 Deinitialize success
18:18:06.0541 3400 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42 18:18:06.0977 3400 ============================================================ 18:18:06.0977 3400 Current date / time: 2013/02/18 18:18:06.0977 18:18:06.0977 3400 SystemInfo: 18:18:06.0977 3400 18:18:06.0977 3400 OS Version: 6.1.7601 ServicePack: 1.0 18:18:06.0977 3400 Product type: Workstation 18:18:06.0977 3400 ComputerName: JIM-PC 18:18:06.0977 3400 UserName: Jim 18:18:06.0977 3400 Windows directory: C:\Windows 18:18:06.0977 3400 System windows directory: C:\Windows 18:18:06.0977 3400 Running under WOW64 18:18:06.0977 3400 Processor architecture: Intel x64 18:18:06.0977 3400 Number of processors: 4 18:18:06.0977 3400 Page size: 0x1000 18:18:06.0977 3400 Boot type: Normal boot 18:18:06.0977 3400 ============================================================ 18:18:15.0837 3400 BG loaded 18:18:19.0659 3400 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 18:18:19.0659 3400 ============================================================ 18:18:19.0659 3400 \Device\Harddisk0\DR0: 18:18:19.0659 3400 MBR partitions: 18:18:19.0659 3400 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x63800 18:18:19.0659 3400 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x64000, BlocksNum 0x388AC800 18:18:19.0659 3400 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x38910800, BlocksNum 0x1A41800 18:18:19.0659 3400 ============================================================ 18:18:19.0706 3400 C: <-> \Device\Harddisk0\DR0\Partition2 18:18:23.0700 3400 D: <-> \Device\Harddisk0\DR0\Partition3 18:18:23.0700 3400 ============================================================ 18:18:23.0700 3400 Initialize success 18:18:23.0700 3400 ============================================================ 18:20:04.0211 5896 ============================================================ 18:20:04.0211 5896 Scan started 18:20:04.0211 5896 Mode: Manual; SigCheck; TDLFS; 18:20:04.0211 5896 ============================================================ 18:20:10.0825 5896 ================ Scan system memory ======================== 18:20:10.0825 5896 System memory - ok 18:20:10.0825 5896 ================ Scan services ============================= 18:20:11.0075 5896 [ 581D88B25C4D4121824FED2CA38E562F ] !SASCORE C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE 18:20:35.0941 5896 !SASCORE - ok 18:20:36.0659 5896 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys 18:20:46.0097 5896 1394ohci - ok 18:20:46.0175 5896 [ 1CFFE9C06E66A57DAE1452E449A58240 ] Accelerometer C:\Windows\system32\DRIVERS\Accelerometer.sys 18:20:51.0183 5896 Accelerometer - ok 18:20:51.0386 5896 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys 18:20:56.0393 5896 ACPI - ok 18:20:56.0471 5896 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys 18:21:31.0899 5896 AcpiPmi - ok 18:21:31.0992 5896 [ B1EA9681502EE57F87DB71D726288A5B ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 18:21:36.0922 5896 AdobeARMservice - ok 18:21:37.0016 5896 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys 18:21:51.0977 5896 adp94xx - ok 18:21:52.0180 5896 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys 18:21:52.0258 5896 adpahci - ok 18:21:52.0336 5896 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys 18:22:02.0352 5896 adpu320 - ok 18:22:02.0399 5896 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 18:22:27.0702 5896 AeLookupSvc - ok 18:22:27.0967 5896 [ A6FB9DB8F1A86861D955FD6975977AE0 ] AESTFilters C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_d15ed671de43d681\AESTSr64.exe 18:22:28.0076 5896 AESTFilters - ok 18:22:28.0388 5896 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys 18:22:38.0653 5896 AFD - ok 18:22:39.0700 5896 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys 18:22:39.0731 5896 agp440 - ok 18:22:39.0856 5896 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe 18:23:00.0074 5896 ALG - ok 18:23:00.0215 5896 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys 18:23:05.0207 5896 aliide - ok 18:23:05.0285 5896 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys 18:23:05.0316 5896 amdide - ok 18:23:05.0378 5896 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys 18:23:16.0205 5896 AmdK8 - ok 18:23:16.0251 5896 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys 18:23:16.0298 5896 AmdPPM - ok 18:23:16.0407 5896 [ 6EC6D772EAE38DC17C14AED9B178D24B ] amdsata C:\Windows\system32\drivers\amdsata.sys 18:23:16.0470 5896 amdsata - ok 18:23:16.0501 5896 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys 18:23:16.0532 5896 amdsbs - ok 18:23:16.0563 5896 [ 1142A21DB581A84EA5597B03A26EBAA0 ] amdxata C:\Windows\system32\drivers\amdxata.sys 18:23:16.0595 5896 amdxata - ok 18:23:16.0719 5896 [ 18F64623E76FF58009D6F9CB9DEA5D0A ] Amsp C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe 18:23:16.0735 5896 Amsp - ok 18:23:16.0875 5896 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys 18:23:17.0016 5896 AppID - ok 18:23:17.0031 5896 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll 18:23:17.0156 5896 AppIDSvc - ok 18:23:17.0250 5896 [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo C:\Windows\System32\appinfo.dll 18:23:17.0328 5896 Appinfo - ok 18:23:17.0499 5896 [ 7EF47644B74EBE721CC32211D3C35E76 ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe 18:23:17.0515 5896 Apple Mobile Device - ok 18:23:17.0624 5896 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys 18:23:17.0671 5896 arc - ok 18:23:17.0671 5896 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys 18:23:17.0702 5896 arcsas - ok 18:23:17.0749 5896 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 18:23:17.0858 5896 AsyncMac - ok 18:23:17.0921 5896 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys 18:23:17.0952 5896 atapi - ok 18:23:18.0045 5896 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 18:23:23.0115 5896 AudioEndpointBuilder - ok 18:23:23.0147 5896 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll 18:23:43.0193 5896 AudioSrv - ok 18:23:43.0224 5896 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll 18:23:48.0247 5896 AxInstSV - ok 18:23:48.0294 5896 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys 18:24:08.0418 5896 b06bdrv - ok 18:24:08.0496 5896 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys 18:24:08.0589 5896 b57nd60a - ok 18:24:08.0870 5896 [ 9E84A931DBEE0292E38ED672F6293A99 ] BCM43XX C:\Windows\system32\DRIVERS\bcmwl664.sys 18:24:38.0869 5896 BCM43XX - ok 18:24:38.0916 5896 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll 18:24:38.0994 5896 BDESVC - ok 18:24:39.0025 5896 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys 18:24:39.0134 5896 Beep - ok 18:24:39.0306 5896 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll 18:24:54.0438 5896 BFE - ok 18:24:54.0672 5896 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\system32\qmgr.dll 18:24:54.0766 5896 BITS - ok 18:24:54.0797 5896 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys 18:24:54.0922 5896 blbdrive - ok 18:24:55.0093 5896 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe 18:24:55.0124 5896 Bonjour Service - ok 18:24:55.0202 5896 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys 18:24:55.0343 5896 bowser - ok 18:24:55.0390 5896 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys 18:24:55.0468 5896 BrFiltLo - ok 18:24:55.0483 5896 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys 18:24:55.0514 5896 BrFiltUp - ok 18:24:55.0561 5896 [ 5C2F352A4E961D72518261257AAE204B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys 18:24:55.0670 5896 BridgeMP - ok 18:24:55.0717 5896 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll 18:24:55.0780 5896 Browser - ok 18:24:55.0811 5896 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys 18:24:55.0858 5896 Brserid - ok 18:24:55.0873 5896 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 18:24:55.0936 5896 BrSerWdm - ok 18:24:55.0967 5896 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 18:24:56.0029 5896 BrUsbMdm - ok 18:24:56.0045 5896 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 18:24:56.0107 5896 BrUsbSer - ok 18:24:56.0123 5896 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys 18:24:56.0201 5896 BTHMODEM - ok 18:24:56.0232 5896 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll 18:24:56.0294 5896 bthserv - ok 18:24:56.0341 5896 catchme - ok 18:24:56.0372 5896 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 18:24:56.0450 5896 cdfs - ok 18:24:56.0528 5896 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\drivers\cdrom.sys 18:24:56.0622 5896 cdrom - ok 18:24:56.0684 5896 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll 18:24:56.0762 5896 CertPropSvc - ok 18:24:56.0809 5896 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys 18:24:56.0856 5896 circlass - ok 18:24:56.0887 5896 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys 18:24:56.0918 5896 CLFS - ok 18:24:56.0981 5896 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 18:24:57.0012 5896 clr_optimization_v2.0.50727_32 - ok 18:24:57.0059 5896 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 18:24:57.0090 5896 clr_optimization_v2.0.50727_64 - ok 18:24:57.0121 5896 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys 18:24:57.0168 5896 CmBatt - ok 18:24:57.0199 5896 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys 18:24:57.0230 5896 cmdide - ok 18:24:57.0277 5896 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\Windows\system32\Drivers\cng.sys 18:24:57.0340 5896 CNG - ok 18:24:57.0402 5896 [ F9A79C5B27037821112C50A9C8FB367A ] Com4QLBEx C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe 18:24:57.0449 5896 Com4QLBEx - ok 18:24:57.0480 5896 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys 18:24:57.0511 5896 Compbatt - ok 18:24:57.0574 5896 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys 18:24:57.0636 5896 CompositeBus - ok 18:24:57.0652 5896 COMSysApp - ok 18:24:57.0667 5896 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys 18:24:57.0698 5896 crcdisk - ok 18:24:57.0730 5896 [ 9C01375BE382E834CC26D1B7EAF2C4FE ] CryptSvc C:\Windows\system32\cryptsvc.dll 18:24:57.0808 5896 CryptSvc - ok 18:24:57.0854 5896 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll 18:24:57.0964 5896 DcomLaunch - ok 18:24:58.0026 5896 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll 18:24:58.0151 5896 defragsvc - ok 18:24:58.0198 5896 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys 18:24:58.0291 5896 DfsC - ok 18:24:58.0354 5896 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll 18:24:58.0416 5896 Dhcp - ok 18:24:58.0447 5896 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys 18:24:58.0525 5896 discache - ok 18:24:58.0572 5896 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys 18:24:58.0619 5896 Disk - ok 18:24:58.0666 5896 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll 18:24:58.0775 5896 Dnscache - ok 18:24:58.0837 5896 dopewars-server - ok 18:24:58.0900 5896 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll 18:24:59.0009 5896 dot3svc - ok 18:24:59.0056 5896 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll 18:24:59.0134 5896 DPS - ok 18:24:59.0196 5896 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 18:24:59.0290 5896 drmkaud - ok 18:24:59.0368 5896 [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 18:24:59.0430 5896 DXGKrnl - ok 18:24:59.0477 5896 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll 18:24:59.0570 5896 EapHost - ok 18:24:59.0664 5896 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys 18:24:59.0789 5896 ebdrv - ok 18:24:59.0851 5896 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe 18:24:59.0914 5896 EFS - ok 18:25:00.0007 5896 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe 18:25:00.0116 5896 ehRecvr - ok 18:25:00.0132 5896 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe 18:25:00.0194 5896 ehSched - ok 18:25:00.0304 5896 [ 744012D3EA82B11FB2838A09F1838592 ] EIN_BMM C:\Program Files\EPSON Projector\Easy Interactive Tools Ver.2\EIN_BMM.exe 18:25:00.0366 5896 EIN_BMM - ok 18:25:00.0413 5896 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys 18:25:00.0491 5896 elxstor - ok 18:25:00.0522 5896 [ 524C79054636D2E5751169005006460B ] enecir C:\Windows\system32\DRIVERS\enecir.sys 18:25:00.0569 5896 enecir - ok 18:25:00.0616 5896 [ 9D4A9B6562541F92C3ECC07D360623D3 ] EPVTPen C:\Windows\system32\DRIVERS\ep_eivirtab.sys 18:25:00.0694 5896 EPVTPen - ok 18:25:00.0725 5896 [ 222754C2104620DAA23DF7D21B7AEAAC ] ep_eiserial C:\Windows\system32\DRIVERS\ep_eiserial.sys 18:25:00.0803 5896 ep_eiserial - ok 18:25:00.0834 5896 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys 18:25:00.0896 5896 ErrDev - ok 18:25:00.0928 5896 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll 18:25:01.0021 5896 EventSystem - ok 18:25:01.0068 5896 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys 18:25:01.0162 5896 exfat - ok 18:25:01.0193 5896 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys 18:25:01.0286 5896 fastfat - ok 18:25:01.0349 5896 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe 18:25:01.0458 5896 Fax - ok 18:25:01.0489 5896 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys 18:25:01.0520 5896 fdc - ok 18:25:01.0552 5896 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll 18:25:01.0630 5896 fdPHost - ok 18:25:01.0645 5896 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll 18:25:01.0723 5896 FDResPub - ok 18:25:01.0754 5896 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 18:25:01.0801 5896 FileInfo - ok 18:25:01.0817 5896 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys 18:25:01.0957 5896 Filetrace - ok 18:25:02.0035 5896 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys 18:25:02.0098 5896 flpydisk - ok 18:25:02.0144 5896 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 18:25:02.0191 5896 FltMgr - ok 18:25:02.0425 5896 [ B4447F606BB19FD8AD0BAFB59B90F5D9 ] FontCache C:\Windows\system32\FntCache.dll 18:25:02.0550 5896 FontCache - ok 18:25:02.0644 5896 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 18:25:02.0659 5896 FontCache3.0.0.0 - ok 18:25:02.0690 5896 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 18:25:02.0722 5896 FsDepends - ok 18:25:02.0800 5896 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 18:25:02.0831 5896 Fs_Rec - ok 18:25:02.0893 5896 [ 1F7B25B858FA27015169FE95E54108ED ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 18:25:02.0956 5896 fvevol - ok 18:25:02.0987 5896 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys 18:25:03.0018 5896 gagp30kx - ok 18:25:03.0080 5896 [ C1BBCE4B30B45410178EE674C818D10C ] GameConsoleService C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe 18:25:03.0112 5896 GameConsoleService - ok 18:25:03.0158 5896 [ E403AACF8C7BB11375122D2464560311 ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys 18:25:03.0174 5896 GEARAspiWDM - ok 18:25:03.0205 5896 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll 18:25:03.0299 5896 gpsvc - ok 18:25:03.0392 5896 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 18:25:03.0408 5896 gupdate - ok 18:25:03.0439 5896 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 18:25:03.0455 5896 gupdatem - ok 18:25:03.0470 5896 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 18:25:03.0564 5896 hcw85cir - ok 18:25:03.0611 5896 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 18:25:03.0689 5896 HdAudAddService - ok 18:25:03.0736 5896 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys 18:25:03.0798 5896 HDAudBus - ok 18:25:03.0829 5896 [ B6AC71AAA2B10848F57FC49D55A651AF ] HECIx64 C:\Windows\system32\DRIVERS\HECIx64.sys 18:25:03.0876 5896 HECIx64 - ok 18:25:03.0892 5896 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys 18:25:03.0938 5896 HidBatt - ok 18:25:03.0970 5896 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys 18:25:04.0048 5896 HidBth - ok 18:25:04.0079 5896 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys 18:25:04.0141 5896 HidIr - ok 18:25:04.0172 5896 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\System32\hidserv.dll 18:25:04.0297 5896 hidserv - ok 18:25:04.0360 5896 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\drivers\hidusb.sys 18:25:04.0438 5896 HidUsb - ok 18:25:04.0484 5896 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll 18:25:04.0562 5896 hkmsvc - ok 18:25:04.0625 5896 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll 18:25:04.0718 5896 HomeGroupListener - ok 18:25:04.0828 5896 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 18:25:04.0906 5896 HomeGroupProvider - ok 18:25:04.0984 5896 [ C84BCC03858DAEAC4DB1E95EFCCE1934 ] HP Health Check Service C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe 18:25:05.0015 5896 HP Health Check Service ( UnsignedFile.Multi.Generic ) - warning 18:25:05.0015 5896 HP Health Check Service - detected UnsignedFile.Multi.Generic (1) 18:25:05.0062 5896 [ 05712FDDBD45A5864EB326FAABC6A4E3 ] hpdskflt C:\Windows\system32\DRIVERS\hpdskflt.sys 18:25:05.0093 5896 hpdskflt - ok 18:25:05.0124 5896 [ 9AF482D058BE59CC28BCE52E7C4B747C ] HpqKbFiltr C:\Windows\system32\DRIVERS\HpqKbFiltr.sys 18:25:05.0186 5896 HpqKbFiltr - ok 18:25:05.0218 5896 [ FDF273A845F1FFCCEADF363AAF47582F ] hpqwmiex C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe 18:25:05.0264 5896 hpqwmiex - ok 18:25:05.0327 5896 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys 18:25:05.0374 5896 HpSAMD - ok 18:25:05.0389 5896 [ AA036CC5F5221D9B915F4D4DCE74BA9A ] hpsrv C:\Windows\system32\Hpservice.exe 18:25:05.0420 5896 hpsrv - ok 18:25:05.0514 5896 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys 18:25:05.0592 5896 HTTP - ok 18:25:05.0639 5896 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 18:25:05.0701 5896 hwpolicy - ok 18:25:05.0795 5896 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys 18:25:05.0842 5896 i8042prt - ok 18:25:05.0888 5896 [ BBB3B6DF1ABB0FE35802EDE85CC1C011 ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys 18:25:05.0966 5896 iaStor - ok 18:25:06.0029 5896 [ 3DF4395A7CF8B7A72A5F4606366B8C2D ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 18:25:06.0076 5896 iaStorV - ok 18:25:06.0216 5896 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 18:25:06.0247 5896 idsvc - ok 18:25:06.0559 5896 [ 404548917ACAAA314165C2882B045C94 ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys 18:25:06.0746 5896 igfx - ok 18:25:06.0778 5896 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys 18:25:06.0824 5896 iirsp - ok 18:25:06.0887 5896 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll 18:25:07.0012 5896 IKEEXT - ok 18:25:07.0074 5896 [ 49072EDBC5C2F964917D1B585C90ED0A ] IntcDAud C:\Windows\system32\DRIVERS\IntcDAud.sys 18:25:07.0168 5896 IntcDAud - ok 18:25:07.0183 5896 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys 18:25:07.0214 5896 intelide - ok 18:25:07.0261 5896 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys 18:25:07.0339 5896 intelppm - ok 18:25:07.0402 5896 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll 18:25:07.0511 5896 IPBusEnum - ok 18:25:07.0558 5896 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 18:25:07.0667 5896 IpFilterDriver - ok 18:25:07.0745 5896 [ A34A587FFFD45FA649FBA6D03784D257 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 18:25:07.0838 5896 iphlpsvc - ok 18:25:07.0901 5896 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys 18:25:07.0963 5896 IPMIDRV - ok 18:25:07.0994 5896 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys 18:25:08.0104 5896 IPNAT - ok 18:25:08.0166 5896 [ 50D6CCC6FF5561F9F56946B3E6164FB8 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe 18:25:08.0213 5896 iPod Service - ok 18:25:08.0228 5896 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys 18:25:08.0353 5896 IRENUM - ok 18:25:08.0369 5896 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys 18:25:08.0400 5896 isapnp - ok 18:25:08.0431 5896 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys 18:25:08.0494 5896 iScsiPrt - ok 18:25:08.0509 5896 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\drivers\kbdclass.sys 18:25:08.0556 5896 kbdclass - ok 18:25:08.0587 5896 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys 18:25:08.0618 5896 kbdhid - ok 18:25:08.0634 5896 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe 18:25:08.0665 5896 KeyIso - ok 18:25:08.0728 5896 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 18:25:08.0774 5896 KSecDD - ok 18:25:08.0821 5896 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 18:25:08.0852 5896 KSecPkg - ok 18:25:08.0884 5896 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys 18:25:08.0962 5896 ksthunk - ok 18:25:09.0024 5896 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll 18:25:09.0133 5896 KtmRm - ok 18:25:09.0180 5896 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\System32\srvsvc.dll 18:25:09.0305 5896 LanmanServer - ok 18:25:09.0383 5896 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 18:25:09.0461 5896 LanmanWorkstation - ok 18:25:09.0523 5896 [ 2238B91AC1A12CC6CC4C4FED41258B2A ] LightScribeService C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe 18:25:09.0554 5896 LightScribeService ( UnsignedFile.Multi.Generic ) - warning 18:25:09.0554 5896 LightScribeService - detected UnsignedFile.Multi.Generic (1) 18:25:09.0586 5896 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 18:25:09.0679 5896 lltdio - ok 18:25:09.0710 5896 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll 18:25:09.0804 5896 lltdsvc - ok 18:25:09.0835 5896 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll 18:25:10.0022 5896 lmhosts - ok 18:25:10.0100 5896 [ 7485FBCEF9136F530953575E2977859D ] LMS C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe 18:25:10.0132 5896 LMS - ok 18:25:10.0178 5896 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys 18:25:10.0194 5896 LSI_FC - ok 18:25:10.0225 5896 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys 18:25:10.0241 5896 LSI_SAS - ok 18:25:10.0256 5896 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys 18:25:10.0288 5896 LSI_SAS2 - ok 18:25:10.0303 5896 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys 18:25:10.0412 5896 LSI_SCSI - ok 18:25:10.0459 5896 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys 18:25:10.0568 5896 luafv - ok 18:25:10.0646 5896 [ D33E2B74CF8B3A652BF0A9FBD068E87A ] ManyCam C:\Windows\system32\DRIVERS\ManyCam_x64.sys 18:25:10.0709 5896 ManyCam - ok 18:25:10.0771 5896 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 18:25:10.0802 5896 Mcx2Svc - ok 18:25:10.0834 5896 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys 18:25:10.0865 5896 megasas - ok 18:25:10.0896 5896 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys 18:25:10.0927 5896 MegaSR - ok 18:25:11.0005 5896 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll 18:25:11.0130 5896 MMCSS - ok 18:25:11.0146 5896 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys 18:25:11.0239 5896 Modem - ok 18:25:11.0286 5896 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys 18:25:11.0348 5896 monitor - ok 18:25:11.0364 5896 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\drivers\mouclass.sys 18:25:11.0395 5896 mouclass - ok 18:25:11.0411 5896 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 18:25:11.0458 5896 mouhid - ok 18:25:11.0504 5896 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 18:25:11.0536 5896 mountmgr - ok 18:25:11.0598 5896 [ 51A84B690DF519DCF656F780243D953E ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 18:25:11.0629 5896 MozillaMaintenance - ok 18:25:11.0660 5896 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys 18:25:11.0692 5896 mpio - ok 18:25:11.0723 5896 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 18:25:11.0801 5896 mpsdrv - ok 18:25:11.0863 5896 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll 18:25:11.0972 5896 MpsSvc - ok 18:25:12.0019 5896 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 18:25:12.0082 5896 MRxDAV - ok 18:25:12.0128 5896 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 18:25:12.0191 5896 mrxsmb - ok 18:25:12.0238 5896 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 18:25:12.0316 5896 mrxsmb10 - ok 18:25:12.0347 5896 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 18:25:12.0425 5896 mrxsmb20 - ok 18:25:12.0456 5896 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys 18:25:12.0518 5896 msahci - ok 18:25:12.0581 5896 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys 18:25:12.0628 5896 msdsm - ok 18:25:12.0643 5896 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe 18:25:12.0706 5896 MSDTC - ok 18:25:12.0737 5896 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys 18:25:12.0846 5896 Msfs - ok 18:25:12.0877 5896 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 18:25:12.0955 5896 mshidkmdf - ok 18:25:12.0986 5896 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 18:25:13.0002 5896 msisadrv - ok 18:25:13.0033 5896 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 18:25:13.0158 5896 MSiSCSI - ok 18:25:13.0158 5896 msiserver - ok 18:25:13.0205 5896 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 18:25:13.0283 5896 MSKSSRV - ok 18:25:13.0298 5896 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 18:25:13.0376 5896 MSPCLOCK - ok 18:25:13.0408 5896 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 18:25:13.0470 5896 MSPQM - ok 18:25:13.0517 5896 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 18:25:13.0564 5896 MsRPC - ok 18:25:13.0610 5896 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys 18:25:13.0657 5896 mssmbios - ok 18:25:13.0704 5896 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 18:25:13.0813 5896 MSTEE - ok 18:25:13.0844 5896 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys 18:25:13.0922 5896 MTConfig - ok 18:25:13.0954 5896 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys 18:25:14.0000 5896 Mup - ok 18:25:14.0047 5896 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll 18:25:14.0156 5896 napagent - ok 18:25:14.0219 5896 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 18:25:14.0281 5896 NativeWifiP - ok 18:25:14.0344 5896 [ 79B47FD40D9A817E932F9D26FAC0A81C ] NDIS C:\Windows\system32\drivers\ndis.sys 18:25:14.0406 5896 NDIS - ok 18:25:14.0453 5896 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 18:25:14.0562 5896 NdisCap - ok 18:25:14.0578 5896 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 18:25:14.0640 5896 NdisTapi - ok 18:25:14.0687 5896 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 18:25:14.0812 5896 Ndisuio - ok 18:25:14.0858 5896 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 18:25:14.0983 5896 NdisWan - ok 18:25:15.0014 5896 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 18:25:15.0124 5896 NDProxy - ok 18:25:15.0186 5896 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 18:25:15.0295 5896 NetBIOS - ok 18:25:15.0373 5896 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 18:25:15.0482 5896 NetBT - ok 18:25:15.0482 5896 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe 18:25:15.0529 5896 Netlogon - ok 18:25:15.0560 5896 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll 18:25:15.0685 5896 Netman - ok 18:25:15.0732 5896 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll 18:25:15.0872 5896 netprofm - ok 18:25:15.0904 5896 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe 18:25:15.0950 5896 NetTcpPortSharing - ok 18:25:16.0122 5896 [ 39EDE676D17F37AF4573C2B33EC28ACA ] NETw5s64 C:\Windows\system32\DRIVERS\NETw5s64.sys 18:25:16.0340 5896 NETw5s64 - ok 18:25:16.0793 5896 [ 64428DFDAF6E88366CB51F45A79C5F69 ] netw5v64 C:\Windows\system32\DRIVERS\netw5v64.sys 18:25:17.0074 5896 netw5v64 - ok 18:25:17.0136 5896 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys 18:25:17.0152 5896 nfrd960 - ok 18:25:17.0198 5896 [ 1EE99A89CC788ADA662441D1E9830529 ] NlaSvc C:\Windows\System32\nlasvc.dll 18:25:17.0323 5896 NlaSvc - ok 18:25:17.0354 5896 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys 18:25:17.0479 5896 Npfs - ok 18:25:17.0526 5896 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll 18:25:17.0666 5896 nsi - ok 18:25:17.0682 5896 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 18:25:17.0776 5896 nsiproxy - ok 18:25:18.0041 5896 [ 05D78AA5CB5F3F5C31160BDB955D0B7C ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 18:25:18.0119 5896 Ntfs - ok 18:25:18.0150 5896 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys 18:25:18.0244 5896 Null - ok 18:25:18.0290 5896 [ 5D9FD91F3D38DC9DA01E3CB5FA89CD48 ] nvraid C:\Windows\system32\drivers\nvraid.sys 18:25:18.0337 5896 nvraid - ok 18:25:18.0353 5896 [ F7CD50FE7139F07E77DA8AC8033D1832 ] nvstor C:\Windows\system32\drivers\nvstor.sys 18:25:18.0384 5896 nvstor - ok 18:25:18.0415 5896 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 18:25:18.0462 5896 nv_agp - ok 18:25:18.0540 5896 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE 18:25:18.0587 5896 odserv - ok 18:25:18.0618 5896 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys 18:25:18.0665 5896 ohci1394 - ok 18:25:18.0696 5896 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 18:25:18.0712 5896 ose - ok 18:25:18.0743 5896 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 18:25:18.0836 5896 p2pimsvc - ok 18:25:18.0852 5896 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll 18:25:18.0883 5896 p2psvc - ok 18:25:18.0914 5896 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys 18:25:18.0961 5896 Parport - ok 18:25:18.0992 5896 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys 18:25:19.0024 5896 partmgr - ok 18:25:19.0039 5896 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll 18:25:19.0102 5896 PcaSvc - ok 18:25:19.0148 5896 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys 18:25:19.0195 5896 pci - ok 18:25:19.0226 5896 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys 18:25:19.0258 5896 pciide - ok 18:25:19.0273 5896 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys 18:25:19.0320 5896 pcmcia - ok 18:25:19.0367 5896 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys 18:25:19.0398 5896 pcw - ok 18:25:19.0429 5896 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys 18:25:19.0538 5896 PEAUTH - ok 18:25:19.0632 5896 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe 18:25:19.0679 5896 PerfHost - ok 18:25:19.0804 5896 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll 18:25:19.0913 5896 pla - ok 18:25:19.0991 5896 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll 18:25:20.0100 5896 PlugPlay - ok 18:25:20.0131 5896 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 18:25:20.0178 5896 PNRPAutoReg - ok 18:25:20.0194 5896 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 18:25:20.0209 5896 PNRPsvc - ok 18:25:20.0412 5896 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 18:25:20.0490 5896 PolicyAgent - ok 18:25:20.0537 5896 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll 18:25:20.0630 5896 Power - ok 18:25:20.0693 5896 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 18:25:20.0771 5896 PptpMiniport - ok 18:25:20.0786 5896 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys 18:25:20.0864 5896 Processor - ok 18:25:20.0911 5896 [ 5C78838B4D166D1A27DB3A8A820C799A ] ProfSvc C:\Windows\system32\profsvc.dll 18:25:21.0005 5896 ProfSvc - ok 18:25:21.0052 5896 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe 18:25:21.0083 5896 ProtectedStorage - ok 18:25:21.0145 5896 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys 18:25:21.0254 5896 Psched - ok 18:25:21.0286 5896 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys 18:25:21.0379 5896 ql2300 - ok 18:25:21.0410 5896 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys 18:25:21.0426 5896 ql40xx - ok 18:25:21.0457 5896 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll 18:25:21.0520 5896 QWAVE - ok 18:25:21.0566 5896 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 18:25:21.0629 5896 QWAVEdrv - ok 18:25:21.0660 5896 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 18:25:21.0738 5896 RasAcd - ok 18:25:21.0785 5896 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 18:25:21.0847 5896 RasAgileVpn - ok 18:25:21.0863 5896 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll 18:25:21.0941 5896 RasAuto - ok 18:25:21.0988 5896 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 18:25:22.0081 5896 Rasl2tp - ok 18:25:22.0112 5896 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll 18:25:22.0206 5896 RasMan - ok 18:25:22.0253 5896 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 18:25:22.0424 5896 RasPppoe - ok 18:25:22.0440 5896 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 18:25:22.0549 5896 RasSstp - ok 18:25:22.0612 5896 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 18:25:22.0705 5896 rdbss - ok 18:25:22.0721 5896 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys 18:25:22.0768 5896 rdpbus - ok 18:25:22.0799 5896 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 18:25:22.0877 5896 RDPCDD - ok 18:25:22.0908 5896 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 18:25:22.0955 5896 RDPENCDD - ok 18:25:22.0986 5896 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 18:25:23.0048 5896 RDPREFMP - ok 18:25:23.0095 5896 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 18:25:23.0189 5896 RDPWD - ok 18:25:23.0282 5896 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 18:25:23.0329 5896 rdyboost - ok 18:25:23.0360 5896 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll 18:25:23.0438 5896 RemoteAccess - ok 18:25:23.0470 5896 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll 18:25:23.0548 5896 RemoteRegistry - ok 18:25:23.0657 5896 [ 498EB62A160674E793FA40FD65390625 ] RichVideo C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe 18:25:23.0688 5896 RichVideo - ok 18:25:23.0719 5896 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 18:25:23.0782 5896 RpcEptMapper - ok 18:25:23.0797 5896 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe 18:25:23.0828 5896 RpcLocator - ok 18:25:23.0875 5896 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll 18:25:23.0953 5896 RpcSs - ok 18:25:24.0000 5896 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 18:25:24.0062 5896 rspndr - ok 18:25:24.0125 5896 [ DB30AA4DAA0D492FA5D7717D8181FFA1 ] RSUSBSTOR C:\Windows\system32\Drivers\RtsUStor.sys 18:25:24.0187 5896 RSUSBSTOR - ok 18:25:24.0218 5896 [ F65F171165FBB613F7AA3CC78E8CAB42 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys 18:25:24.0281 5896 RTL8167 - ok 18:25:24.0296 5896 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe 18:25:24.0328 5896 SamSs - ok 18:25:24.0452 5896 [ 3289766038DB2CB14D07DC84392138D5 ] SASDIFSV C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS 18:25:24.0499 5896 SASDIFSV - ok 18:25:24.0546 5896 [ 58A38E75F3316A83C23DF6173D41F2B5 ] SASKUTIL C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS 18:25:24.0562 5896 SASKUTIL - ok 18:25:24.0608 5896 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 18:25:24.0640 5896 sbp2port - ok 18:25:24.0671 5896 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll 18:25:24.0796 5896 SCardSvr - ok 18:25:24.0874 5896 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 18:25:24.0983 5896 scfilter - ok 18:25:25.0045 5896 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll 18:25:25.0123 5896 Schedule - ok 18:25:25.0186 5896 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll 18:25:25.0248 5896 SCPolicySvc - ok 18:25:25.0310 5896 [ 111E0EBC0AD79CB0FA014B907B231CF0 ] sdbus C:\Windows\system32\drivers\sdbus.sys 18:25:25.0388 5896 sdbus - ok 18:25:25.0466 5896 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll 18:25:25.0560 5896 SDRSVC - ok 18:25:25.0607 5896 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys 18:25:25.0747 5896 secdrv - ok 18:25:25.0778 5896 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll 18:25:25.0841 5896 seclogon - ok 18:25:25.0872 5896 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\system32\sens.dll 18:25:25.0981 5896 SENS - ok 18:25:25.0997 5896 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll 18:25:26.0059 5896 SensrSvc - ok 18:25:26.0106 5896 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys 18:25:26.0153 5896 Serenum - ok 18:25:26.0168 5896 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys 18:25:26.0231 5896 Serial - ok 18:25:26.0246 5896 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys 18:25:26.0309 5896 sermouse - ok 18:25:26.0387 5896 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll 18:25:26.0480 5896 SessionEnv - ok 18:25:26.0496 5896 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 18:25:26.0543 5896 sffdisk - ok 18:25:26.0574 5896 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 18:25:26.0621 5896 sffp_mmc - ok 18:25:26.0636 5896 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 18:25:26.0683 5896 sffp_sd - ok 18:25:26.0714 5896 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys 18:25:26.0761 5896 sfloppy - ok 18:25:26.0824 5896 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll 18:25:26.0902 5896 SharedAccess - ok 18:25:26.0948 5896 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll 18:25:27.0011 5896 ShellHWDetection - ok 18:25:27.0026 5896 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys 18:25:27.0058 5896 SiSRaid2 - ok 18:25:27.0073 5896 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys 18:25:27.0104 5896 SiSRaid4 - ok 18:25:27.0151 5896 [ 323DDCD15DB2A7FED09DF1F835CAFCFB ] SMARTMouseFilterx64 C:\Windows\system32\DRIVERS\SMARTMouseFilterx64.sys 18:25:27.0198 5896 SMARTMouseFilterx64 - ok 18:25:27.0214 5896 [ 6C691320C71CA8E8C38F52B2CE652C64 ] SMARTVHidMiniVistaAmd64 C:\Windows\system32\DRIVERS\SMARTVHidMiniVistaAmd64.sys 18:25:27.0245 5896 SMARTVHidMiniVistaAmd64 - ok 18:25:27.0245 5896 [ 20563F6830BADD675407AF0F5BCA76BA ] SMARTVTabletPCx64 C:\Windows\system32\DRIVERS\SMARTVTabletPCx64.sys 18:25:27.0292 5896 SMARTVTabletPCx64 - ok 18:25:27.0323 5896 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys 18:25:27.0448 5896 Smb - ok 18:25:27.0494 5896 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe 18:25:27.0541 5896 SNMPTRAP - ok 18:25:27.0572 5896 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys 18:25:27.0588 5896 spldr - ok 18:25:27.0635 5896 [ B96C17B5DC1424D56EEA3A99E97428CD ] Spooler C:\Windows\System32\spoolsv.exe 18:25:27.0775 5896 Spooler - ok 18:25:28.0150 5896 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe 18:25:28.0321 5896 sppsvc - ok 18:25:28.0352 5896 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll 18:25:28.0446 5896 sppuinotify - ok 18:25:28.0493 5896 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys 18:25:28.0618 5896 srv - ok 18:25:28.0696 5896 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 18:25:28.0820 5896 srv2 - ok 18:25:28.0867 5896 [ 0C4540311E11664B245A263E1154CEF8 ] SrvHsfHDA C:\Windows\system32\DRIVERS\VSTAZL6.SYS 18:25:28.0914 5896 SrvHsfHDA - ok 18:25:28.0976 5896 [ 02071D207A9858FBE3A48CBFD59C4A04 ] SrvHsfV92 C:\Windows\system32\DRIVERS\VSTDPV6.SYS 18:25:29.0086 5896 SrvHsfV92 - ok 18:25:29.0117 5896 [ 18E40C245DBFAF36FD0134A7EF2DF396 ] SrvHsfWinac C:\Windows\system32\DRIVERS\VSTCNXT6.SYS 18:25:29.0179 5896 SrvHsfWinac - ok 18:25:29.0226 5896 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 18:25:29.0273 5896 srvnet - ok 18:25:29.0320 5896 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 18:25:29.0382 5896 SSDPSRV - ok 18:25:29.0460 5896 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll 18:25:29.0538 5896 SstpSvc - ok 18:25:29.0647 5896 [ 57BEB4500716DD30B65DFA85A35CC3D7 ] STacSV C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_d15ed671de43d681\STacSV64.exe 18:25:29.0710 5896 STacSV - ok 18:25:29.0741 5896 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys 18:25:29.0788 5896 stexstor - ok 18:25:29.0834 5896 [ 1FEDF8D130CE221521B9BAD6703B92DE ] STHDA C:\Windows\system32\DRIVERS\stwrt64.sys 18:25:29.0866 5896 STHDA - ok 18:25:30.0006 5896 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll 18:25:30.0115 5896 stisvc - ok 18:25:30.0162 5896 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\drivers\swenum.sys 18:25:30.0209 5896 swenum - ok 18:25:30.0256 5896 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll 18:25:30.0334 5896 swprv - ok 18:25:30.0396 5896 [ 924D711941956F7420A4925592BE8253 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys 18:25:30.0443 5896 SynTP - ok 18:25:30.0614 5896 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll 18:25:30.0724 5896 SysMain - ok 18:25:30.0770 5896 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll 18:25:30.0911 5896 TabletInputService - ok 18:25:30.0926 5896 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll 18:25:31.0020 5896 TapiSrv - ok 18:25:31.0036 5896 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll 18:25:31.0114 5896 TBS - ok 18:25:31.0488 5896 [ B62A953F2BF3922C8764A29C34A22899 ] Tcpip C:\Windows\system32\drivers\tcpip.sys 18:25:31.0644 5896 Tcpip - ok 18:25:31.0706 5896 [ B62A953F2BF3922C8764A29C34A22899 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 18:25:31.0753 5896 TCPIP6 - ok 18:25:31.0800 5896 [ DF687E3D8836BFB04FCC0615BF15A519 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 18:25:31.0878 5896 tcpipreg - ok 18:25:31.0909 5896 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 18:25:31.0956 5896 TDPIPE - ok 18:25:31.0987 5896 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 18:25:32.0018 5896 TDTCP - ok 18:25:32.0065 5896 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys 18:25:32.0159 5896 tdx - ok 18:25:32.0206 5896 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\drivers\termdd.sys 18:25:32.0221 5896 TermDD - ok 18:25:32.0284 5896 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll 18:25:32.0408 5896 TermService - ok 18:25:32.0440 5896 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll 18:25:32.0533 5896 Themes - ok 18:25:32.0564 5896 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll 18:25:32.0611 5896 THREADORDER - ok 18:25:32.0689 5896 [ 73AAFFDD2AC3C8814B26C440E5DD9DD4 ] tmactmon C:\Windows\system32\DRIVERS\tmactmon.sys 18:25:32.0720 5896 tmactmon - ok 18:25:32.0767 5896 [ 360E61217D4E1E333583D0C721057F70 ] tmcomm C:\Windows\system32\DRIVERS\tmcomm.sys 18:25:32.0814 5896 tmcomm - ok 18:25:32.0845 5896 [ 699D34EB7C670139CA23A65372BD5743 ] tmevtmgr C:\Windows\system32\DRIVERS\tmevtmgr.sys 18:25:32.0876 5896 tmevtmgr - ok 18:25:32.0923 5896 [ 5922B1F5741BBDBAF7F7B4CBD2B7C4A5 ] tmlwf C:\Windows\system32\DRIVERS\tmlwf.sys 18:25:32.0970 5896 tmlwf - ok 18:25:33.0017 5896 [ 262198EFB734012BFCD17E7479AE4A09 ] tmtdi C:\Windows\system32\DRIVERS\tmtdi.sys 18:25:33.0048 5896 tmtdi - ok 18:25:33.0095 5896 [ 0A2E3899CC72AD4CC85EA3D50A5331CC ] tmwfp C:\Windows\system32\DRIVERS\tmwfp.sys 18:25:33.0126 5896 tmwfp - ok 18:25:33.0173 5896 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll 18:25:33.0376 5896 TrkWks - ok 18:25:33.0688 5896 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 18:25:33.0797 5896 TrustedInstaller - ok 18:25:33.0828 5896 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 18:25:33.0906 5896 tssecsrv - ok 18:25:33.0968 5896 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys 18:25:34.0046 5896 TsUsbFlt - ok 18:25:34.0093 5896 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 18:25:34.0156 5896 tunnel - ok 18:25:34.0187 5896 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys 18:25:34.0218 5896 uagp35 - ok 18:25:34.0280 5896 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys 18:25:34.0374 5896 udfs - ok 18:25:34.0405 5896 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe 18:25:34.0452 5896 UI0Detect - ok 18:25:34.0483 5896 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 18:25:34.0530 5896 uliagpkx - ok 18:25:34.0577 5896 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\drivers\umbus.sys 18:25:34.0624 5896 umbus - ok 18:25:34.0655 5896 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys 18:25:34.0733 5896 UmPass - ok 18:25:34.0842 5896 [ 765F2DD351BA064F657751D8D75E58C0 ] UNS C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe 18:25:34.0904 5896 UNS - ok 18:25:34.0967 5896 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll 18:25:35.0060 5896 upnphost - ok 18:25:35.0123 5896 [ FB251567F41BC61988B26731DEC19E4B ] USBAAPL64 C:\Windows\system32\Drivers\usbaapl64.sys 18:25:35.0201 5896 USBAAPL64 - ok 18:25:35.0232 5896 [ 481DFF26B4DCA8F4CBAC1F7DCE1D6829 ] usbccgp C:\Windows\system32\drivers\usbccgp.sys 18:25:35.0294 5896 usbccgp - ok 18:25:35.0310 5896 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys 18:25:35.0372 5896 usbcir - ok 18:25:35.0388 5896 [ 74EE782B1D9C241EFE425565854C661C ] usbehci C:\Windows\system32\drivers\usbehci.sys 18:25:35.0435 5896 usbehci - ok 18:25:35.0466 5896 [ DC96BD9CCB8403251BCF25047573558E ] usbhub C:\Windows\system32\drivers\usbhub.sys 18:25:35.0528 5896 usbhub - ok 18:25:35.0544 5896 [ 58E546BBAF87664FC57E0F6081E4F609 ] usbohci C:\Windows\system32\drivers\usbohci.sys 18:25:35.0591 5896 usbohci - ok 18:25:35.0622 5896 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys 18:25:35.0700 5896 usbprint - ok 18:25:35.0747 5896 [ D76510CFA0FC09023077F22C2F979D86 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 18:25:35.0809 5896 USBSTOR - ok 18:25:35.0840 5896 [ 81FB2216D3A60D1284455D511797DB3D ] usbuhci C:\Windows\system32\drivers\usbuhci.sys 18:25:35.0903 5896 usbuhci - ok 18:25:35.0950 5896 [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys 18:25:36.0012 5896 usbvideo - ok 18:25:36.0043 5896 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll 18:25:36.0121 5896 UxSms - ok 18:25:36.0137 5896 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe 18:25:36.0168 5896 VaultSvc - ok 18:25:36.0215 5896 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys 18:25:36.0246 5896 vdrvroot - ok 18:25:36.0308 5896 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe 18:25:36.0433 5896 vds - ok 18:25:36.0480 5896 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 18:25:36.0527 5896 vga - ok 18:25:36.0542 5896 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys 18:25:36.0620 5896 VgaSave - ok 18:25:36.0683 5896 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys 18:25:36.0730 5896 vhdmp - ok 18:25:36.0745 5896 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys 18:25:36.0761 5896 viaide - ok 18:25:36.0792 5896 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys 18:25:36.0808 5896 volmgr - ok 18:25:36.0854 5896 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 18:25:36.0917 5896 volmgrx - ok 18:25:36.0948 5896 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys 18:25:36.0979 5896 volsnap - ok 18:25:37.0042 5896 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys 18:25:37.0073 5896 vsmraid - ok 18:25:37.0151 5896 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe 18:25:37.0260 5896 VSS - ok 18:25:37.0291 5896 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys 18:25:37.0338 5896 vwifibus - ok 18:25:37.0354 5896 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys 18:25:37.0400 5896 vwififlt - ok 18:25:37.0432 5896 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll 18:25:37.0510 5896 W32Time - ok 18:25:37.0541 5896 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys 18:25:37.0603 5896 WacomPen - ok 18:25:37.0666 5896 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 18:25:37.0775 5896 WANARP - ok 18:25:37.0775 5896 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 18:25:37.0822 5896 Wanarpv6 - ok 18:25:37.0915 5896 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe 18:25:37.0993 5896 WatAdminSvc - ok 18:25:38.0227 5896 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe 18:25:38.0305 5896 wbengine - ok 18:25:38.0321 5896 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 18:25:38.0368 5896 WbioSrvc - ok 18:25:38.0414 5896 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll 18:25:38.0477 5896 wcncsvc - ok 18:25:38.0508 5896 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 18:25:38.0555 5896 WcsPlugInService - ok 18:25:38.0570 5896 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys 18:25:38.0602 5896 Wd - ok 18:25:38.0633 5896 [ 441BD2D7B4F98134C3A4F9FA570FD250 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 18:25:38.0680 5896 Wdf01000 - ok 18:25:38.0695 5896 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll 18:25:38.0804 5896 WdiServiceHost - ok 18:25:38.0820 5896 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll 18:25:38.0851 5896 WdiSystemHost - ok 18:25:38.0929 5896 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll 18:25:39.0007 5896 WebClient - ok 18:25:39.0038 5896 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll 18:25:39.0148 5896 Wecsvc - ok 18:25:39.0163 5896 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll 18:25:39.0226 5896 wercplsupport - ok 18:25:39.0257 5896 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll 18:25:39.0335 5896 WerSvc - ok 18:25:39.0350 5896 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 18:25:39.0428 5896 WfpLwf - ok 18:25:39.0460 5896 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys 18:25:39.0475 5896 WIMMount - ok 18:25:39.0491 5896 WinDefend - ok 18:25:39.0491 5896 WinHttpAutoProxySvc - ok 18:25:39.0553 5896 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 18:25:39.0647 5896 Winmgmt - ok 18:25:39.0725 5896 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll 18:25:39.0865 5896 WinRM - ok 18:25:39.0928 5896 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys 18:25:39.0990 5896 WinUsb - ok 18:25:40.0037 5896 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll 18:25:40.0099 5896 Wlansvc - ok 18:25:40.0193 5896 [ 06C8FA1CF39DE6A735B54D906BA791C6 ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe 18:25:40.0208 5896 wlcrasvc - ok 18:25:40.0333 5896 [ 2BACD71123F42CEA603F4E205E1AE337 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE 18:25:40.0411 5896 wlidsvc - ok 18:25:40.0474 5896 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys 18:25:40.0536 5896 WmiAcpi - ok 18:25:40.0567 5896 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 18:25:40.0630 5896 wmiApSrv - ok 18:25:40.0645 5896 WMPNetworkSvc - ok 18:25:40.0692 5896 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll 18:25:40.0754 5896 WPCSvc - ok 18:25:40.0786 5896 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 18:25:40.0832 5896 WPDBusEnum - ok 18:25:40.0864 5896 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 18:25:40.0957 5896 ws2ifsl - ok 18:25:40.0988 5896 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\system32\wscsvc.dll 18:25:41.0051 5896 wscsvc - ok 18:25:41.0051 5896 WSearch - ok 18:25:41.0160 5896 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll 18:25:41.0238 5896 wuauserv - ok 18:25:41.0269 5896 [ D3381DC54C34D79B22CEE0D65BA91B7C ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 18:25:41.0347 5896 WudfPf - ok 18:25:41.0378 5896 [ CF8D590BE3373029D57AF80914190682 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 18:25:41.0456 5896 WUDFRd - ok 18:25:41.0488 5896 [ 7A95C95B6C4CF292D689106BCAE49543 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 18:25:41.0550 5896 wudfsvc - ok 18:25:41.0581 5896 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\Windows\System32\wwansvc.dll 18:25:41.0628 5896 WwanSvc - ok 18:25:41.0675 5896 [ B3EEACF62445E24FBB2CD4B0FB4DB026 ] yukonw7 C:\Windows\system32\DRIVERS\yk62x64.sys 18:25:41.0768 5896 yukonw7 - ok 18:25:41.0800 5896 ================ Scan global =============================== 18:25:41.0815 5896 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll 18:25:41.0846 5896 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll 18:25:41.0878 5896 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll 18:25:41.0924 5896 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll 18:25:42.0034 5896 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe 18:25:42.0065 5896 [Global] - ok 18:25:42.0065 5896 ================ Scan MBR ================================== 18:25:42.0080 5896 [ 67D4BCA827B95D5015166EBB70100B11 ] \Device\Harddisk0\DR0 18:25:42.0658 5896 \Device\Harddisk0\DR0 ( TDSS File System ) - warning 18:25:42.0658 5896 \Device\Harddisk0\DR0 - detected TDSS File System (1) 18:25:42.0673 5896 ================ Scan VBR ================================== 18:25:42.0689 5896 [ 634AB0919824763EE2B557E5C0D36E35 ] \Device\Harddisk0\DR0\Partition1 18:25:42.0689 5896 \Device\Harddisk0\DR0\Partition1 - ok 18:25:42.0704 5896 [ F0BEEC54A7D0A3E22748D993785EAF99 ] \Device\Harddisk0\DR0\Partition2 18:25:42.0704 5896 \Device\Harddisk0\DR0\Partition2 - ok 18:25:42.0736 5896 [ 41CA8C2BD75E9FA7079488D0110F8166 ] \Device\Harddisk0\DR0\Partition3 18:25:42.0751 5896 \Device\Harddisk0\DR0\Partition3 - ok 18:25:42.0751 5896 ================ Scan active images ======================== 18:25:42.0751 5896 [ 3E588B60EC061686BA05D33574A344C6 ] C:\Windows\System32\drivers\crashdmp.sys 18:25:42.0751 5896 C:\Windows\System32\drivers\crashdmp.sys - ok 18:25:42.0751 5896 [ 814DB88F2641691575A455CF25354098 ] C:\Windows\System32\drivers\dumpfve.sys 18:25:42.0751 5896 C:\Windows\System32\drivers\dumpfve.sys - ok 18:25:42.0751 5896 [ BBB3B6DF1ABB0FE35802EDE85CC1C011 ] C:\Windows\System32\drivers\iaStor.sys 18:25:42.0751 5896 C:\Windows\System32\drivers\iaStor.sys - ok 18:25:42.0767 5896 [ F036CE71586E93D94DAB220D7BDF4416 ] C:\Windows\System32\drivers\cdrom.sys 18:25:42.0767 5896 C:\Windows\System32\drivers\cdrom.sys - ok 18:25:42.0767 5896 [ 16A47CE2DECC9B099349A5F840654746 ] C:\Windows\System32\drivers\beep.sys 18:25:42.0767 5896 C:\Windows\System32\drivers\beep.sys - ok 18:25:42.0767 5896 [ 9899284589F75FA8724FF3D16AED75C1 ] C:\Windows\System32\drivers\null.sys 18:25:42.0767 5896 C:\Windows\System32\drivers\null.sys - ok 18:25:42.0782 5896 [ CEA6CC257FC9B7715F1C2B4849286D24 ] C:\Windows\System32\drivers\RDPCDD.sys 18:25:42.0782 5896 C:\Windows\System32\drivers\RDPCDD.sys - ok 18:25:42.0782 5896 [ 53E92A310193CB3C03BEA963DE7D9CFC ] C:\Windows\System32\drivers\vga.sys 18:25:42.0782 5896 C:\Windows\System32\drivers\vga.sys - ok 18:25:42.0782 5896 [ E7353D59C9842BC7299FAEB7E7E09340 ] C:\Windows\System32\drivers\videoprt.sys 18:25:42.0782 5896 C:\Windows\System32\drivers\videoprt.sys - ok 18:25:42.0782 5896 [ FC438D1430B28618E2D0C7C332A710AD ] C:\Windows\System32\drivers\watchdog.sys 18:25:42.0782 5896 C:\Windows\System32\drivers\watchdog.sys - ok 18:25:42.0798 5896 [ BB5971A4F00659529A5C44831AF22365 ] C:\Windows\System32\drivers\RDPENCDD.sys 18:25:42.0798 5896 C:\Windows\System32\drivers\RDPENCDD.sys - ok 18:25:42.0798 5896 [ 216F3FA57533D98E1F74DED70113177A ] C:\Windows\System32\drivers\RDPREFMP.sys 18:25:42.0798 5896 C:\Windows\System32\drivers\RDPREFMP.sys - ok 18:25:42.0798 5896 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] C:\Windows\System32\drivers\msfs.sys 18:25:42.0798 5896 C:\Windows\System32\drivers\msfs.sys - ok 18:25:42.0798 5896 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] C:\Windows\System32\drivers\npfs.sys 18:25:42.0798 5896 C:\Windows\System32\drivers\npfs.sys - ok 18:25:42.0814 5896 [ 6F020A220388ECA0AB6062DC27BD16B6 ] C:\Windows\System32\drivers\tdi.sys 18:25:42.0814 5896 C:\Windows\System32\drivers\tdi.sys - ok 18:25:42.0814 5896 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] C:\Windows\System32\drivers\tdx.sys 18:25:42.0814 5896 C:\Windows\System32\drivers\tdx.sys - ok 18:25:42.0829 5896 [ 1C7857B62DE5994A75B054A9FD4C3825 ] C:\Windows\System32\drivers\afd.sys 18:25:42.0829 5896 C:\Windows\System32\drivers\afd.sys - ok 18:25:42.0829 5896 [ 09594D1089C523423B32A4229263F068 ] C:\Windows\System32\drivers\netbt.sys 18:25:42.0829 5896 C:\Windows\System32\drivers\netbt.sys - ok 18:25:42.0829 5896 [ 0557CF5A2556BD58E26384169D72438D ] C:\Windows\System32\drivers\pacer.sys 18:25:42.0829 5896 C:\Windows\System32\drivers\pacer.sys - ok 18:25:42.0829 5896 [ 6A3D66263414FF0D6FA754C646612F3F ] C:\Windows\System32\drivers\vwififlt.sys 18:25:42.0829 5896 C:\Windows\System32\drivers\vwififlt.sys - ok 18:25:42.0845 5896 [ 611B23304BF067451A9FDEE01FBDD725 ] C:\Windows\System32\drivers\wfplwf.sys 18:25:42.0845 5896 C:\Windows\System32\drivers\wfplwf.sys - ok 18:25:42.0845 5896 [ 6BCC1D7D2FD2453957C5479A32364E52 ] C:\Windows\System32\drivers\ws2ifsl.sys 18:25:42.0845 5896 C:\Windows\System32\drivers\ws2ifsl.sys - ok 18:25:42.0860 5896 [ 86743D9F5D2B1048062B14B1D84501C4 ] C:\Windows\System32\drivers\netbios.sys 18:25:42.0860 5896 C:\Windows\System32\drivers\netbios.sys - ok 18:25:42.0860 5896 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] C:\Windows\System32\drivers\serial.sys 18:25:42.0860 5896 C:\Windows\System32\drivers\serial.sys - ok 18:25:42.0860 5896 [ 5922B1F5741BBDBAF7F7B4CBD2B7C4A5 ] C:\Windows\System32\drivers\tmlwf.sys 18:25:42.0860 5896 C:\Windows\System32\drivers\tmlwf.sys - ok 18:25:42.0860 5896 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] C:\Windows\System32\drivers\termdd.sys 18:25:42.0860 5896 C:\Windows\System32\drivers\termdd.sys - ok 18:25:42.0876 5896 [ 262198EFB734012BFCD17E7479AE4A09 ] C:\Windows\System32\drivers\tmtdi.sys 18:25:42.0876 5896 C:\Windows\System32\drivers\tmtdi.sys - ok 18:25:42.0876 5896 [ 356AFD78A6ED4457169241AC3965230C ] C:\Windows\System32\drivers\wanarp.sys 18:25:42.0876 5896 C:\Windows\System32\drivers\wanarp.sys - ok 18:25:42.0876 5896 [ 3289766038DB2CB14D07DC84392138D5 ] C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys 18:25:42.0876 5896 C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys - ok 18:25:42.0892 5896 [ 58A38E75F3316A83C23DF6173D41F2B5 ] C:\Program Files\SUPERAntiSpyware\saskutil64.sys 18:25:42.0892 5896 C:\Program Files\SUPERAntiSpyware\saskutil64.sys - ok 18:25:42.0892 5896 [ 13096B05847EC78F0977F2C0F79E9AB3 ] C:\Windows\System32\drivers\discache.sys 18:25:42.0892 5896 C:\Windows\System32\drivers\discache.sys - ok 18:25:42.0892 5896 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] C:\Windows\System32\drivers\mssmbios.sys 18:25:42.0892 5896 C:\Windows\System32\drivers\mssmbios.sys - ok 18:25:42.0892 5896 [ E7F5AE18AF4168178A642A9247C63001 ] C:\Windows\System32\drivers\nsiproxy.sys 18:25:42.0892 5896 C:\Windows\System32\drivers\nsiproxy.sys - ok 18:25:42.0907 5896 [ 77F665941019A1594D887A74F301FA2F ] C:\Windows\System32\drivers\rdbss.sys 18:25:42.0907 5896 C:\Windows\System32\drivers\rdbss.sys - ok 18:25:42.0907 5896 [ 61583EE3C3A17003C4ACD0475646B4D3 ] C:\Windows\System32\drivers\blbdrive.sys 18:25:42.0907 5896 C:\Windows\System32\drivers\blbdrive.sys - ok 18:25:42.0907 5896 [ 0840155D0BDDF1190F84A663C284BD33 ] C:\Windows\System32\drivers\CmBatt.sys 18:25:42.0907 5896 C:\Windows\System32\drivers\CmBatt.sys - ok 18:25:42.0923 5896 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] C:\Windows\System32\drivers\dfsc.sys 18:25:42.0923 5896 C:\Windows\System32\drivers\dfsc.sys - ok 18:25:42.0923 5896 [ 3566A8DAAFA27AF944F5D705EAA64894 ] C:\Windows\System32\drivers\tunnel.sys 18:25:42.0923 5896 C:\Windows\System32\drivers\tunnel.sys - ok 18:25:42.0923 5896 [ 1911A3356FA3F77CCC825CCBAC038C2A ] C:\Windows\System32\smss.exe 18:25:42.0923 5896 C:\Windows\System32\smss.exe - ok 18:25:42.0923 5896 [ CF95B85FF8D128385ABD411C8CA74DED ] C:\Windows\System32\ntdll.dll 18:25:42.0923 5896 C:\Windows\System32\ntdll.dll - ok 18:25:42.0938 5896 [ 3B536A8BEC3B4F23FFDFD78B11A2AB93 ] C:\Windows\System32\autochk.exe 18:25:42.0938 5896 C:\Windows\System32\autochk.exe - ok 18:25:42.0938 5896 [ 404548917ACAAA314165C2882B045C94 ] C:\Windows\System32\drivers\igdkmd64.sys 18:25:42.0938 5896 C:\Windows\System32\drivers\igdkmd64.sys - ok 18:25:42.0938 5896 [ F5BEE30450E18E6B83A5012C100616FD ] C:\Windows\System32\drivers\dxgkrnl.sys 18:25:42.0938 5896 C:\Windows\System32\drivers\dxgkrnl.sys - ok 18:25:42.0954 5896 [ 9CD68BDDF322535C02ADC8331013D13D ] C:\Windows\System32\drivers\dxgmms1.sys 18:25:42.0954 5896 C:\Windows\System32\drivers\dxgmms1.sys - ok 18:25:42.0954 5896 [ B6AC71AAA2B10848F57FC49D55A651AF ] C:\Windows\System32\drivers\HECIx64.sys 18:25:42.0954 5896 C:\Windows\System32\drivers\HECIx64.sys - ok 18:25:42.0954 5896 [ B6D64EE607637301FF8C33139B4950DE ] C:\Windows\System32\drivers\usbport.sys 18:25:42.0954 5896 C:\Windows\System32\drivers\usbport.sys - ok 18:25:42.0954 5896 [ 74EE782B1D9C241EFE425565854C661C ] C:\Windows\System32\drivers\usbehci.sys 18:25:42.0954 5896 C:\Windows\System32\drivers\usbehci.sys - ok 18:25:42.0970 5896 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] C:\Windows\System32\drivers\hdaudbus.sys 18:25:42.0970 5896 C:\Windows\System32\drivers\hdaudbus.sys - ok 18:25:42.0970 5896 [ 39EDE676D17F37AF4573C2B33EC28ACA ] C:\Windows\System32\drivers\NETw5s64.sys 18:25:42.0970 5896 C:\Windows\System32\drivers\NETw5s64.sys - ok 18:25:42.0970 5896 [ 524C79054636D2E5751169005006460B ] C:\Windows\System32\drivers\enecir.sys 18:25:42.0970 5896 C:\Windows\System32\drivers\enecir.sys - ok 18:25:42.0985 5896 [ 9AF482D058BE59CC28BCE52E7C4B747C ] C:\Windows\System32\drivers\HpqKbFiltr.sys 18:25:42.0985 5896 C:\Windows\System32\drivers\HpqKbFiltr.sys - ok 18:25:42.0985 5896 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] C:\Windows\System32\drivers\i8042prt.sys 18:25:42.0985 5896 C:\Windows\System32\drivers\i8042prt.sys - ok 18:25:42.0985 5896 [ F65F171165FBB613F7AA3CC78E8CAB42 ] C:\Windows\System32\drivers\Rt64win7.sys 18:25:42.0985 5896 C:\Windows\System32\drivers\Rt64win7.sys - ok 18:25:43.0001 5896 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] C:\Windows\System32\drivers\vwifibus.sys 18:25:43.0001 5896 C:\Windows\System32\drivers\vwifibus.sys - ok 18:25:43.0001 5896 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] C:\Windows\System32\drivers\kbdclass.sys 18:25:43.0001 5896 C:\Windows\System32\drivers\kbdclass.sys - ok 18:25:43.0001 5896 [ 63C8D74BED9F80F4DD0AA7A3101EB639 ] C:\Windows\System32\drivers\usbd.sys 18:25:43.0001 5896 C:\Windows\System32\drivers\usbd.sys - ok 18:25:43.0016 5896 [ 7D27EA49F3C1F687D357E77A470AEA99 ] C:\Windows\System32\drivers\mouclass.sys 18:25:43.0016 5896 C:\Windows\System32\drivers\mouclass.sys - ok 18:25:43.0016 5896 [ 924D711941956F7420A4925592BE8253 ] C:\Windows\System32\drivers\SynTP.sys 18:25:43.0016 5896 C:\Windows\System32\drivers\SynTP.sys - ok 18:25:43.0016 5896 [ 1CFFE9C06E66A57DAE1452E449A58240 ] C:\Windows\System32\drivers\Accelerometer.sys 18:25:43.0016 5896 C:\Windows\System32\drivers\Accelerometer.sys - ok 18:25:43.0032 5896 [ 03EDB043586CCEBA243D689BDDA370A8 ] C:\Windows\System32\drivers\CompositeBus.sys 18:25:43.0032 5896 C:\Windows\System32\drivers\CompositeBus.sys - ok 18:25:43.0032 5896 [ E403AACF8C7BB11375122D2464560311 ] C:\Windows\System32\drivers\GEARAspiWDM.sys 18:25:43.0032 5896 C:\Windows\System32\drivers\GEARAspiWDM.sys - ok 18:25:43.0032 5896 [ 49EE2E52E6CD03947DAD72F65367BE06 ] C:\Windows\System32\drivers\hidparse.sys 18:25:43.0032 5896 C:\Windows\System32\drivers\hidparse.sys - ok 18:25:43.0032 5896 [ ADA036632C664CAA754079041CF1F8C1 ] C:\Windows\System32\drivers\intelppm.sys 18:25:43.0032 5896 C:\Windows\System32\drivers\intelppm.sys - ok 18:25:43.0048 5896 [ F6FF8944478594D0E414D3F048F0D778 ] C:\Windows\System32\drivers\wmiacpi.sys 18:25:43.0048 5896 C:\Windows\System32\drivers\wmiacpi.sys - ok 18:25:43.0048 5896 [ 8B0E40E7E8BBF5ACF390465609D89FF1 ] C:\Windows\System32\drivers\hidclass.sys 18:25:43.0048 5896 C:\Windows\System32\drivers\hidclass.sys - ok 18:25:43.0048 5896 [ 6C691320C71CA8E8C38F52B2CE652C64 ] C:\Windows\System32\drivers\SMARTVHidMiniVistaAmd64.sys 18:25:43.0048 5896 C:\Windows\System32\drivers\SMARTVHidMiniVistaAmd64.sys - ok 18:25:43.0063 5896 [ 20563F6830BADD675407AF0F5BCA76BA ] C:\Windows\System32\drivers\SMARTVTabletPCx64.sys 18:25:43.0063 5896 C:\Windows\System32\drivers\SMARTVTabletPCx64.sys - ok 18:25:43.0063 5896 [ 222754C2104620DAA23DF7D21B7AEAAC ] C:\Windows\System32\drivers\ep_eiserial.sys 18:25:43.0063 5896 C:\Windows\System32\drivers\ep_eiserial.sys - ok 18:25:43.0063 5896 [ 9D4A9B6562541F92C3ECC07D360623D3 ] C:\Windows\System32\drivers\ep_eivirtab.sys 18:25:43.0063 5896 C:\Windows\System32\drivers\ep_eivirtab.sys - ok 18:25:43.0079 5896 [ 24FBF5CC5C04150073C315A7C83521EE ] C:\Windows\System32\drivers\ks.sys 18:25:43.0079 5896 C:\Windows\System32\drivers\ks.sys - ok 18:25:43.0079 5896 [ 001CC10FA5E71AE1119115E126C8750D ] C:\Windows\System32\drivers\stream.sys 18:25:43.0079 5896 C:\Windows\System32\drivers\stream.sys - ok 18:25:43.0079 5896 [ 6869281E78CB31A43E969F06B57347C4 ] C:\Windows\System32\drivers\ksthunk.sys 18:25:43.0079 5896 C:\Windows\System32\drivers\ksthunk.sys - ok 18:25:43.0094 5896 [ D33E2B74CF8B3A652BF0A9FBD068E87A ] C:\Windows\System32\drivers\ManyCam_x64.sys 18:25:43.0094 5896 C:\Windows\System32\drivers\ManyCam_x64.sys - ok 18:25:43.0094 5896 [ 7ECFF9B22276B73F43A99A15A6094E90 ] C:\Windows\System32\drivers\agilevpn.sys 18:25:43.0094 5896 C:\Windows\System32\drivers\agilevpn.sys - ok 18:25:43.0094 5896 [ 30639C932D9FEF22B31268FE25A1B6E5 ] C:\Windows\System32\drivers\ndistapi.sys 18:25:43.0094 5896 C:\Windows\System32\drivers\ndistapi.sys - ok 18:25:43.0110 5896 [ 53F7305169863F0A2BDDC49E116C2E11 ] C:\Windows\System32\drivers\ndiswan.sys 18:25:43.0110 5896 C:\Windows\System32\drivers\ndiswan.sys - ok 18:25:43.0110 5896 [ 471815800AE33E6F1C32FB1B97C490CA ] C:\Windows\System32\drivers\rasl2tp.sys 18:25:43.0110 5896 C:\Windows\System32\drivers\rasl2tp.sys - ok 18:25:43.0110 5896 [ D7CD5C4E1B71FA62050515314CFB52CF ] C:\Windows\System32\drivers\circlass.sys 18:25:43.0110 5896 C:\Windows\System32\drivers\circlass.sys - ok 18:25:43.0110 5896 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] C:\Windows\System32\drivers\raspppoe.sys 18:25:43.0110 5896 C:\Windows\System32\drivers\raspppoe.sys - ok 18:25:43.0126 5896 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] C:\Windows\System32\drivers\raspptp.sys 18:25:43.0126 5896 C:\Windows\System32\drivers\raspptp.sys - ok 18:25:43.0126 5896 [ E8B1E447B008D07FF47D016C2B0EEECB ] C:\Windows\System32\drivers\rassstp.sys 18:25:43.0126 5896 C:\Windows\System32\drivers\rassstp.sys - ok 18:25:43.0126 5896 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] C:\Windows\System32\drivers\swenum.sys 18:25:43.0126 5896 C:\Windows\System32\drivers\swenum.sys - ok 18:25:43.0126 5896 [ DC54A574663A895C8763AF0FA1FF7561 ] C:\Windows\System32\drivers\umbus.sys 18:25:43.0126 5896 C:\Windows\System32\drivers\umbus.sys - ok 18:25:43.0141 5896 [ DC96BD9CCB8403251BCF25047573558E ] C:\Windows\System32\drivers\usbhub.sys 18:25:43.0141 5896 C:\Windows\System32\drivers\usbhub.sys - ok 18:25:43.0141 5896 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] C:\Windows\System32\drivers\mouhid.sys 18:25:43.0141 5896 C:\Windows\System32\drivers\mouhid.sys - ok 18:25:43.0141 5896 [ 7EA404308934E675BFFDE8EDF0757BCD ] C:\Windows\System32\drivers\MTConfig.sys 18:25:43.0141 5896 C:\Windows\System32\drivers\MTConfig.sys - ok 18:25:43.0157 5896 [ 323DDCD15DB2A7FED09DF1F835CAFCFB ] C:\Windows\System32\drivers\SMARTMouseFilterx64.sys 18:25:43.0157 5896 C:\Windows\System32\drivers\SMARTMouseFilterx64.sys - ok 18:25:43.0157 5896 [ F7CE0C81C545364020ED8203CF0A633E ] C:\Windows\System32\difxapi.dll 18:25:43.0157 5896 C:\Windows\System32\difxapi.dll - ok 18:25:43.0157 5896 [ 4E4FFB09D895AA000DD56D1404F69A7E ] C:\Windows\System32\Wldap32.dll 18:25:43.0157 5896 C:\Windows\System32\Wldap32.dll - ok 18:25:43.0172 5896 [ 83404DCBCE4925B6A5A77C5170F46D86 ] C:\Windows\System32\sechost.dll 18:25:43.0172 5896 C:\Windows\System32\sechost.dll - ok 18:25:43.0172 5896 [ 2F8B1E3EE3545D3B5A8D56FA1AE07B65 ] C:\Windows\System32\usp10.dll 18:25:43.0172 5896 C:\Windows\System32\usp10.dll - ok 18:25:43.0172 5896 [ 0611473C1AD9E2D991CD9482068417F7 ] C:\Windows\System32\rpcrt4.dll 18:25:43.0172 5896 C:\Windows\System32\rpcrt4.dll - ok 18:25:43.0188 5896 [ C6689007B3A749C49A5438DCF36E0CE4 ] C:\Windows\System32\shell32.dll 18:25:43.0188 5896 C:\Windows\System32\shell32.dll - ok 18:25:43.0188 5896 [ 1084AA52CCC324EA54C7121FA24C2221 ] C:\Windows\System32\gdi32.dll 18:25:43.0188 5896 C:\Windows\System32\gdi32.dll - ok 18:25:43.0188 5896 [ C431EAF5CAA1C82CAC2534A2EAB348A3 ] C:\Windows\System32\msctf.dll 18:25:43.0188 5896 C:\Windows\System32\msctf.dll - ok 18:25:43.0204 5896 [ 28C0B5024F5C5A438E78B188CFC81B7F ] C:\Windows\System32\normaliz.dll 18:25:43.0204 5896 C:\Windows\System32\normaliz.dll - ok 18:25:43.0204 5896 [ 9835E63E09F824D22B689D2BB789BAB9 ] C:\Windows\System32\comdlg32.dll 18:25:43.0204 5896 C:\Windows\System32\comdlg32.dll - ok 18:25:43.0204 5896 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] C:\Windows\System32\drivers\ndproxy.sys 18:25:43.0204 5896 C:\Windows\System32\drivers\ndproxy.sys - ok 18:25:43.0219 5896 [ 21D26064AEDB4988F785BB4A3A2C051E ] C:\Windows\System32\drivers\drmk.sys 18:25:43.0219 5896 C:\Windows\System32\drivers\drmk.sys - ok 18:25:43.0219 5896 [ 32E11315B5126921FFD9074840EF13D3 ] C:\Windows\System32\drivers\portcls.sys 18:25:43.0219 5896 C:\Windows\System32\drivers\portcls.sys - ok 18:25:43.0219 5896 [ 1FEDF8D130CE221521B9BAD6703B92DE ] C:\Windows\System32\drivers\stwrt64.sys 18:25:43.0219 5896 C:\Windows\System32\drivers\stwrt64.sys - ok 18:25:43.0219 5896 [ 49072EDBC5C2F964917D1B585C90ED0A ] C:\Windows\System32\drivers\IntcDAud.sys 18:25:43.0219 5896 C:\Windows\System32\drivers\IntcDAud.sys - ok 18:25:43.0235 5896 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] C:\Windows\System32\drivers\hidir.sys 18:25:43.0235 5896 C:\Windows\System32\drivers\hidir.sys - ok 18:25:43.0235 5896 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] C:\Windows\System32\drivers\kbdhid.sys 18:25:43.0235 5896 C:\Windows\System32\drivers\kbdhid.sys - ok 18:25:43.0235 5896 [ 25983DE69B57142039AC8D95E71CD9C9 ] C:\Windows\System32\clbcatq.dll 18:25:43.0235 5896 C:\Windows\System32\clbcatq.dll - ok 18:25:43.0250 5896 [ D202223587518B13D72D68937B7E3F70 ] C:\Windows\System32\lpk.dll 18:25:43.0250 5896 C:\Windows\System32\lpk.dll - ok 18:25:43.0250 5896 [ 1DC3504CA4C57900F1557E9A3F01D272 ] C:\Windows\System32\kernel32.dll 18:25:43.0250 5896 C:\Windows\System32\kernel32.dll - ok 18:25:43.0250 5896 [ 044FE45FFD6AD40E3BBBE60B7F41BABE ] C:\Windows\System32\nsi.dll 18:25:43.0250 5896 C:\Windows\System32\nsi.dll - ok 18:25:43.0250 5896 [ EAF32CB8C1F810E4715B4DFBE785C7FF ] C:\Windows\System32\shlwapi.dll 18:25:43.0250 5896 C:\Windows\System32\shlwapi.dll - ok 18:25:43.0266 5896 [ AA2C08CE85653B1A0D2E4AB407FA176C ] C:\Windows\System32\imm32.dll 18:25:43.0266 5896 C:\Windows\System32\imm32.dll - ok 18:25:43.0266 5896 [ 435E9C764E1EF70058580996452BE6A2 ] C:\Windows\System32\wininet.dll 18:25:43.0266 5896 C:\Windows\System32\wininet.dll - ok 18:25:43.0282 5896 [ 5D8E6C95156ED1F79A63D1EADE6F9ED5 ] C:\Windows\System32\setupapi.dll 18:25:43.0282 5896 C:\Windows\System32\setupapi.dll - ok 18:25:43.0282 5896 [ 87BEA2616EFDEC6A1CB3BFCFB09D816A ] C:\Windows\System32\urlmon.dll 18:25:43.0282 5896 C:\Windows\System32\urlmon.dll - ok 18:25:43.0282 5896 [ F431C3C86FCCC1C53814F043A6CAD825 ] C:\Windows\System32\iertutil.dll 18:25:43.0282 5896 C:\Windows\System32\iertutil.dll - ok 18:25:43.0282 5896 [ 6C60B5ACA7442EFB794082CDACFC001C ] C:\Windows\System32\ole32.dll 18:25:43.0282 5896 C:\Windows\System32\ole32.dll - ok 18:25:43.0297 5896 [ 6DF46D2BD74E3DA1B45F08F10D172732 ] C:\Windows\System32\advapi32.dll 18:25:43.0297 5896 C:\Windows\System32\advapi32.dll - ok 18:25:43.0297 5896 [ C391FC68282A000CDF953F8B6B55D2EF ] C:\Windows\System32\msvcrt.dll 18:25:43.0297 5896 C:\Windows\System32\msvcrt.dll - ok 18:25:43.0297 5896 [ A1BE6A720D02E37F72E9CD89AE9CB3CF ] C:\Windows\System32\imagehlp.dll 18:25:43.0297 5896 C:\Windows\System32\imagehlp.dll - ok 18:25:43.0313 5896 [ C06B32165E23A72A898B7A89679AD754 ] C:\Windows\System32\oleaut32.dll 18:25:43.0313 5896 C:\Windows\System32\oleaut32.dll - ok 18:25:43.0313 5896 [ 4BBFA57F594F7E8A8EDC8F377184C3F0 ] C:\Windows\System32\ws2_32.dll 18:25:43.0313 5896 C:\Windows\System32\ws2_32.dll - ok 18:25:43.0313 5896 [ D87E1E59C73C1F98D5DED5B3850C40F5 ] C:\Windows\System32\psapi.dll 18:25:43.0313 5896 C:\Windows\System32\psapi.dll - ok 18:25:43.0313 5896 [ FE70103391A64039A921DBFFF9C7AB1B ] C:\Windows\System32\user32.dll 18:25:43.0313 5896 C:\Windows\System32\user32.dll - ok 18:25:43.0328 5896 [ 2477A28081BDAEE622CF045ACF8EE124 ] C:\Windows\System32\cfgmgr32.dll 18:25:43.0328 5896 C:\Windows\System32\cfgmgr32.dll - ok 18:25:43.0328 5896 [ 14DFDEAF4E589ED3F1FF187A86B9408C ] C:\Windows\System32\comctl32.dll 18:25:43.0328 5896 C:\Windows\System32\comctl32.dll - ok 18:25:43.0328 5896 [ AA06902362B1422D7A7DA7061E07C624 ] C:\Windows\System32\wintrust.dll 18:25:43.0328 5896 C:\Windows\System32\wintrust.dll - ok 18:25:43.0344 5896 [ 6F2E324703E6D22B9934C33DA48F1F01 ] C:\Windows\System32\KernelBase.dll 18:25:43.0344 5896 C:\Windows\System32\KernelBase.dll - ok 18:25:43.0344 5896 [ 12EE6FE9268CEE6D90FDCCBF89236C65 ] C:\Windows\System32\crypt32.dll 18:25:43.0344 5896 C:\Windows\System32\crypt32.dll - ok 18:25:43.0344 5896 [ 06FEC9E8117103BB1141A560E98077DA ] C:\Windows\System32\devobj.dll 18:25:43.0344 5896 C:\Windows\System32\devobj.dll - ok 18:25:43.0360 5896 [ 884415BD4269C02EAF8E2613BF85500D ] C:\Windows\System32\msasn1.dll 18:25:43.0360 5896 C:\Windows\System32\msasn1.dll - ok 18:25:43.0360 5896 [ 9C278785347BCC991F8EA2999D90F58D ] C:\Windows\SysWOW64\normaliz.dll 18:25:43.0360 5896 C:\Windows\SysWOW64\normaliz.dll - ok 18:25:43.0360 5896 [ BF24D6F2ED97FE830BFD52B246F98E67 ] C:\Windows\System32\drivers\dxapi.sys 18:25:43.0360 5896 C:\Windows\System32\drivers\dxapi.sys - ok 18:25:43.0375 5896 [ 59E21156113E438D1D91AF4FC0C3B19F ] C:\Windows\System32\win32k.sys 18:25:43.0375 5896 C:\Windows\System32\win32k.sys - ok 18:25:43.0375 5896 [ 96F587CA26A6AA894BD8CACE4540CFFC ] C:\Windows\System32\csrsrv.dll 18:25:43.0375 5896 C:\Windows\System32\csrsrv.dll - ok 18:25:43.0375 5896 [ 60C2862B4BF0FD9F582EF344C2B1EC72 ] C:\Windows\System32\csrss.exe 18:25:43.0375 5896 C:\Windows\System32\csrss.exe - ok 18:25:43.0391 5896 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\System32\basesrv.dll 18:25:43.0391 5896 C:\Windows\System32\basesrv.dll - ok 18:25:43.0391 5896 [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\System32\winsrv.dll 18:25:43.0391 5896 C:\Windows\System32\winsrv.dll - ok 18:25:43.0391 5896 [ B03D591DC7DA45ECE20B3B467E6AADAA ] C:\Windows\System32\drivers\monitor.sys 18:25:43.0391 5896 C:\Windows\System32\drivers\monitor.sys - ok 18:25:43.0406 5896 [ 481DFF26B4DCA8F4CBAC1F7DCE1D6829 ] C:\Windows\System32\drivers\usbccgp.sys 18:25:43.0406 5896 C:\Windows\System32\drivers\usbccgp.sys - ok 18:25:43.0406 5896 [ 454800C2BC7F3927CE030141EE4F4C50 ] C:\Windows\System32\drivers\usbvideo.sys 18:25:43.0406 5896 C:\Windows\System32\drivers\usbvideo.sys - ok 18:25:43.0406 5896 [ F29FE765E1448EF371CFE05BFAC74ADB ] C:\Windows\System32\tsddd.dll 18:25:43.0406 5896 C:\Windows\System32\tsddd.dll - ok 18:25:43.0422 5896 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\System32\sxssrv.dll 18:25:43.0422 5896 C:\Windows\System32\sxssrv.dll - ok 18:25:43.0422 5896 [ 94355C28C1970635A31B3FE52EB7CEBA ] C:\Windows\System32\wininit.exe 18:25:43.0422 5896 C:\Windows\System32\wininit.exe - ok 18:25:43.0422 5896 [ 05569A79BF4693670B709144382D02D4 ] C:\Windows\System32\cdd.dll 18:25:43.0422 5896 C:\Windows\System32\cdd.dll - ok 18:25:43.0438 5896 [ 2C942733A5983DD4502219FF37C7EBC7 ] C:\Windows\System32\profapi.dll 18:25:43.0438 5896 C:\Windows\System32\profapi.dll - ok 18:25:43.0438 5896 [ 78523A26F5604C0568FE9D1CE86E36F4 ] C:\Windows\System32\KBDUS.DLL 18:25:43.0438 5896 C:\Windows\System32\KBDUS.DLL - ok 18:25:43.0438 5896 [ C2A8CB1275ECB85D246A9ECC02A728E3 ] C:\Windows\System32\RpcRtRemote.dll 18:25:43.0438 5896 C:\Windows\System32\RpcRtRemote.dll - ok 18:25:43.0453 5896 [ 9CEAD32E79A62150FE9F8557E58E008B ] C:\Windows\System32\sxs.dll 18:25:43.0453 5896 C:\Windows\System32\sxs.dll - ok 18:25:43.0453 5896 [ B26B1801356760841C3BC69F9F91537F ] C:\Windows\System32\WlS0WndH.dll 18:25:43.0453 5896 C:\Windows\System32\WlS0WndH.dll - ok 18:25:43.0453 5896 [ 784FA3DF338E2E8F5F0389D6FAC428AF ] C:\Windows\System32\cryptbase.dll 18:25:43.0453 5896 C:\Windows\System32\cryptbase.dll - ok 18:25:43.0469 5896 [ 90499F3163A9F815CF196A205EA3CD5D ] C:\Windows\System32\apphelp.dll 18:25:43.0469 5896 C:\Windows\System32\apphelp.dll - ok 18:25:43.0469 5896 [ 66A6063D0BAAD3F7B2B9868859E0743B ] C:\Windows\System32\lsasrv.dll 18:25:43.0469 5896 C:\Windows\System32\lsasrv.dll - ok 18:25:43.0469 5896 [ C118A82CD78818C29AB228366EBF81C3 ] C:\Windows\System32\lsass.exe 18:25:43.0469 5896 C:\Windows\System32\lsass.exe - ok 18:25:43.0484 5896 [ 9662EE182644511439F1C53745DC1C88 ] C:\Windows\System32\lsm.exe 18:25:43.0484 5896 C:\Windows\System32\lsm.exe - ok 18:25:43.0484 5896 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\System32\services.exe 18:25:43.0484 5896 C:\Windows\System32\services.exe - ok 18:25:43.0484 5896 [ B66BC8B20B7F33975865B1DF99783FD8 ] C:\Windows\System32\sspicli.dll 18:25:43.0484 5896 C:\Windows\System32\sspicli.dll - ok 18:25:43.0484 5896 [ 3A0CE5FE781708CD6ABD55313607EC8B ] C:\Windows\System32\sspisrv.dll 18:25:43.0484 5896 C:\Windows\System32\sspisrv.dll - ok 18:25:43.0500 5896 [ 68083118797CAF30FB2EA3E71494D67E ] C:\Windows\System32\sysntfy.dll 18:25:43.0500 5896 C:\Windows\System32\sysntfy.dll - ok 18:25:43.0500 5896 [ DEE7267C5D232A3B816866872CE199E6 ] C:\Windows\System32\wmsgapi.dll 18:25:43.0500 5896 C:\Windows\System32\wmsgapi.dll - ok 18:25:43.0500 5896 [ BBCDF350817BA86416C0F06B6981BE8D ] C:\Windows\System32\scesrv.dll 18:25:43.0500 5896 C:\Windows\System32\scesrv.dll - ok 18:25:43.0500 5896 [ E914A50A151DFFE63D3935226DB5E2C1 ] C:\Windows\System32\scext.dll 18:25:43.0500 5896 C:\Windows\System32\scext.dll - ok 18:25:43.0516 5896 [ 0144D8D75A0B12938AEEE859E3310A46 ] C:\Windows\System32\secur32.dll 18:25:43.0516 5896 C:\Windows\System32\secur32.dll - ok 18:25:43.0516 5896 [ A744BA6E04C8AA4592818178DBF89521 ] C:\Windows\System32\samsrv.dll 18:25:43.0516 5896 C:\Windows\System32\samsrv.dll - ok 18:25:43.0516 5896 [ 3A9C9BAF610B0DD4967086040B3B62A9 ] C:\Windows\System32\srvcli.dll 18:25:43.0516 5896 C:\Windows\System32\srvcli.dll - ok 18:25:43.0531 5896 [ 3A061472B38233BAFF9CFEFF2E49C46B ] C:\Windows\System32\cryptdll.dll 18:25:43.0531 5896 C:\Windows\System32\cryptdll.dll - ok 18:25:43.0531 5896 [ 3C073B0C596A0AF84933E7406766B040 ] C:\Windows\System32\wevtapi.dll 18:25:43.0531 5896 C:\Windows\System32\wevtapi.dll - ok 18:25:43.0531 5896 [ 7FBEBD2229EA5FD48D41B199EC2D541C ] C:\Windows\System32\authz.dll 18:25:43.0531 5896 C:\Windows\System32\authz.dll - ok 18:25:43.0531 5896 [ 86FE1B1F8FD42CD0DB641AB1CDB13093 ] C:\Windows\System32\cngaudit.dll 18:25:43.0531 5896 C:\Windows\System32\cngaudit.dll - ok 18:25:43.0547 5896 [ A34A587FFFD45FA649FBA6D03784D257 ] C:\Windows\System32\iphlpsvc.dll 18:25:43.0547 5896 C:\Windows\System32\iphlpsvc.dll - ok 18:25:43.0547 5896 [ 5F3307352216618221A17CFEF273EEE2 ] C:\Windows\System32\ncrypt.dll 18:25:43.0547 5896 C:\Windows\System32\ncrypt.dll - ok 18:25:43.0547 5896 [ B9A95365E52F421A20E1501935FADDA5 ] C:\Windows\System32\bcrypt.dll 18:25:43.0547 5896 C:\Windows\System32\bcrypt.dll - ok 18:25:43.0562 5896 [ 02B64609F865A39365FF88580DF11738 ] C:\Windows\System32\msprivs.dll 18:25:43.0562 5896 C:\Windows\System32\msprivs.dll - ok 18:25:43.0562 5896 [ C6505DE3561537BA1004D638C2F93F2F ] C:\Windows\System32\netjoin.dll 18:25:43.0562 5896 C:\Windows\System32\netjoin.dll - ok 18:25:43.0562 5896 [ 50532FCD7ECF02DD169CE5C485F02534 ] C:\Windows\System32\negoexts.dll 18:25:43.0562 5896 C:\Windows\System32\negoexts.dll - ok 18:25:43.0578 5896 [ CB2ABB2DA1E9C977302A78D86D4AE3B0 ] C:\Windows\System32\atmfd.dll 18:25:43.0578 5896 C:\Windows\System32\atmfd.dll - ok 18:25:43.0578 5896 [ 44E1A196DFCB53B01FE4B855C3B56A15 ] C:\Windows\System32\kerberos.dll 18:25:43.0578 5896 C:\Windows\System32\kerberos.dll - ok 18:25:43.0578 5896 [ D0C2FBB6D97416B0166478FC7AE2B212 ] C:\Windows\System32\cryptsp.dll 18:25:43.0578 5896 C:\Windows\System32\cryptsp.dll - ok 18:25:43.0594 5896 [ EF12B8385AA2849999008A977918F96B ] C:\Windows\System32\msv1_0.dll 18:25:43.0594 5896 C:\Windows\System32\msv1_0.dll - ok 18:25:43.0594 5896 [ 1D5185A4C7E6695431AE4B55C3D7D333 ] C:\Windows\System32\mswsock.dll 18:25:43.0594 5896 C:\Windows\System32\mswsock.dll - ok 18:25:43.0594 5896 [ EC7CBFF96B05ECF3D366355B3C64ADCF ] C:\Windows\System32\wship6.dll 18:25:43.0594 5896 C:\Windows\System32\wship6.dll - ok 18:25:43.0594 5896 [ AA339DD8BB128EF66660DFBBB59043D3 ] C:\Windows\System32\netlogon.dll 18:25:43.0594 5896 C:\Windows\System32\netlogon.dll - ok 18:25:43.0609 5896 [ 492D07D79E7024CA310867B526D9636D ] C:\Windows\System32\dnsapi.dll 18:25:43.0609 5896 C:\Windows\System32\dnsapi.dll - ok 18:25:43.0609 5896 [ 8FFE297B8449386E7B6851458B6E474E ] C:\Windows\System32\logoncli.dll 18:25:43.0609 5896 C:\Windows\System32\logoncli.dll - ok 18:25:43.0609 5896 [ 1573C45E65DE32B1BC3572634F8F1E8E ] C:\Windows\System32\schannel.dll 18:25:43.0609 5896 C:\Windows\System32\schannel.dll - ok 18:25:43.0625 5896 [ 95FB6CA4374E343DDD653FCC43F9D26B ] C:\Windows\System32\wdigest.dll 18:25:43.0625 5896 C:\Windows\System32\wdigest.dll - ok 18:25:43.0625 5896 [ E08088A97F95345E181C3DFCE2C615EF ] C:\Windows\System32\pku2u.dll 18:25:43.0625 5896 C:\Windows\System32\pku2u.dll - ok 18:25:43.0625 5896 [ 5D8874A8C11DDDDE29E12DE0E2013493 ] C:\Windows\System32\rsaenh.dll 18:25:43.0625 5896 C:\Windows\System32\rsaenh.dll - ok 18:25:43.0625 5896 [ 8A25506B6948EFBD5A7F37E53CCD36D9 ] C:\Windows\System32\TSpkg.dll 18:25:43.0625 5896 C:\Windows\System32\TSpkg.dll - ok 18:25:43.0640 5896 [ 7DBA64AD70C2E2481C68D9E0F7CD7840 ] C:\Windows\System32\LIVESSP.DLL 18:25:43.0640 5896 C:\Windows\System32\LIVESSP.DLL - ok 18:25:43.0640 5896 [ D6C7780A364C6BBACFA796BAB9F1B374 ] C:\Windows\System32\bcryptprimitives.dll 18:25:43.0640 5896 C:\Windows\System32\bcryptprimitives.dll - ok 18:25:43.0640 5896 [ 90BDEFC5DF334E5100EAA781D798DE1A ] C:\Windows\System32\efslsaext.dll 18:25:43.0640 5896 C:\Windows\System32\efslsaext.dll - ok 18:25:43.0656 5896 [ 52D3D5E3586988D4D9E34ACAAC33105C ] C:\Windows\System32\credssp.dll 18:25:43.0656 5896 C:\Windows\System32\credssp.dll - ok 18:25:43.0656 5896 [ ED78427259134C63ED69804D2132B86C ] C:\Windows\System32\scecli.dll 18:25:43.0656 5896 C:\Windows\System32\scecli.dll - ok 18:25:43.0656 5896 [ 7CC7DF5B654DA579613F811D8C637E29 ] C:\Windows\System32\ubpm.dll 18:25:43.0656 5896 C:\Windows\System32\ubpm.dll - ok 18:25:43.0656 5896 [ 0D9764D58C5EFD672B7184854B152E5E ] C:\Windows\System32\winsta.dll 18:25:43.0656 5896 C:\Windows\System32\winsta.dll - ok 18:25:43.0672 5896 [ C78655BC80301D76ED4FEF1C1EA40A7D ] C:\Windows\System32\svchost.exe 18:25:43.0672 5896 C:\Windows\System32\svchost.exe - ok 18:25:43.0672 5896 [ E6EB44ABAAF1F330119F854856C53EBE ] C:\Windows\System32\SPInf.dll 18:25:43.0672 5896 C:\Windows\System32\SPInf.dll - ok 18:25:43.0672 5896 [ 25FBDEF06C4D92815B353F6E792C8129 ] C:\Windows\System32\umpnpmgr.dll 18:25:43.0672 5896 C:\Windows\System32\umpnpmgr.dll - ok 18:25:43.0672 5896 [ CD1B5AD07E5F7FEF30E055DCC9E96180 ] C:\Windows\System32\devrtl.dll 18:25:43.0672 5896 C:\Windows\System32\devrtl.dll - ok 18:25:43.0687 5896 [ 9C9307C95671AC962F3D6EB3A4A89BAE ] C:\Windows\System32\gpapi.dll 18:25:43.0687 5896 C:\Windows\System32\gpapi.dll - ok 18:25:43.0687 5896 [ 7A17485DC7D8A7AC81321A42CD034519 ] C:\Windows\System32\userenv.dll 18:25:43.0687 5896 C:\Windows\System32\userenv.dll - ok 18:25:43.0687 5896 [ F6C011B46FAEEF33536B2E80F48B5CBE ] C:\Windows\System32\pcwum.dll 18:25:43.0687 5896 C:\Windows\System32\pcwum.dll - ok 18:25:43.0703 5896 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] C:\Windows\System32\umpo.dll 18:25:43.0703 5896 C:\Windows\System32\umpo.dll - ok 18:25:43.0703 5896 [ 716175021BDA290504CE434273F666BC ] C:\Windows\System32\powrprof.dll 18:25:43.0703 5896 C:\Windows\System32\powrprof.dll - ok 18:25:43.0703 5896 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] C:\Windows\System32\drivers\luafv.sys 18:25:43.0703 5896 C:\Windows\System32\drivers\luafv.sys - ok 18:25:43.0703 5896 [ D3381DC54C34D79B22CEE0D65BA91B7C ] C:\Windows\System32\drivers\WUDFPf.sys 18:25:43.0703 5896 C:\Windows\System32\drivers\WUDFPf.sys - ok 18:25:43.0718 5896 [ 5C627D1B1138676C0A7AB2C2C190D123 ] C:\Windows\System32\rpcss.dll 18:25:43.0718 5896 C:\Windows\System32\rpcss.dll - ok 18:25:43.0718 5896 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] C:\Windows\System32\RpcEpMap.dll 18:25:43.0718 5896 C:\Windows\System32\RpcEpMap.dll - ok 18:25:43.0718 5896 [ 16E964ABF6D1E0F0CC7822FCA9BA754D ] C:\Windows\System32\wshqos.dll 18:25:43.0718 5896 C:\Windows\System32\wshqos.dll - ok 18:25:43.0718 5896 [ 31559F3244C6BC00A52030CAA83B6B91 ] C:\Windows\System32\WSHTCPIP.DLL 18:25:43.0718 5896 C:\Windows\System32\WSHTCPIP.DLL - ok 18:25:43.0734 5896 [ 9AD9E06F8656F296D91FAE8EE5B95A27 ] C:\Windows\System32\FirewallAPI.dll 18:25:43.0734 5896 C:\Windows\System32\FirewallAPI.dll - ok 18:25:43.0734 5896 [ 94E026870A55AAEAFF7853C1754091E9 ] C:\Windows\System32\version.dll 18:25:43.0734 5896 C:\Windows\System32\version.dll - ok 18:25:43.0734 5896 [ 6011714C8C5C55CBFFAD24D61E879FBD ] C:\Windows\System32\wevtsvc.dll 18:25:43.0734 5896 C:\Windows\System32\wevtsvc.dll - ok 18:25:43.0750 5896 [ F23FEF6D569FCE88671949894A8BECF1 ] C:\Windows\System32\audiosrv.dll 18:25:43.0750 5896 C:\Windows\System32\audiosrv.dll - ok 18:25:43.0750 5896 [ 5C78838B4D166D1A27DB3A8A820C799A ] C:\Windows\System32\profsvc.dll 18:25:43.0750 5896 C:\Windows\System32\profsvc.dll - ok 18:25:43.0750 5896 [ 78A1E65207484B7F8D3217507745F47C ] C:\Windows\System32\avrt.dll 18:25:43.0750 5896 C:\Windows\System32\avrt.dll - ok 18:25:43.0750 5896 [ 57BEB4500716DD30B65DFA85A35CC3D7 ] C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_d15ed671de43d681\stacsv64.exe 18:25:43.0750 5896 C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_d15ed671de43d681\stacsv64.exe - ok 18:25:43.0765 5896 [ E40E80D0304A73E8D269F7141D77250B ] C:\Windows\System32\mmcss.dll 18:25:43.0765 5896 C:\Windows\System32\mmcss.dll - ok 18:25:43.0765 5896 [ 588CD0C78A7FAAE4186B5EEA0AF3ED67 ] C:\Windows\System32\adtschema.dll 18:25:43.0765 5896 C:\Windows\System32\adtschema.dll - ok 18:25:43.0765 5896 [ 227E2C382A1E02F8D4965E664D3BBE43 ] C:\Windows\System32\MMDevAPI.dll 18:25:43.0765 5896 C:\Windows\System32\MMDevAPI.dll - ok 18:25:43.0781 5896 [ F06BB4E336EA57511FDBAFAFCC47DE62 ] C:\Windows\System32\propsys.dll 18:25:43.0781 5896 C:\Windows\System32\propsys.dll - ok 18:25:43.0781 5896 [ 9110FFAD124283F37D38771BB60556AF ] C:\Windows\System32\dsound.dll 18:25:43.0781 5896 C:\Windows\System32\dsound.dll - ok 18:25:43.0796 5896 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] C:\Windows\System32\wlansvc.dll 18:25:43.0796 5896 C:\Windows\System32\wlansvc.dll - ok 18:25:43.0796 5896 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] C:\Windows\System32\netprofm.dll 18:25:43.0796 5896 C:\Windows\System32\netprofm.dll - ok 18:25:43.0796 5896 [ EF2AE43BCD46ABB13FC3E5B2B1935C73 ] C:\Windows\System32\winmm.dll 18:25:43.0796 5896 C:\Windows\System32\winmm.dll - ok 18:25:43.0796 5896 [ 76DA443051A2366AF9DBCA34A2614E9A ] C:\Windows\System32\stapi64.dll 18:25:43.0796 5896 C:\Windows\System32\stapi64.dll - ok 18:25:43.0812 5896 [ 50544D04AD845C43130B70212EC05CCD ] C:\Windows\System32\microsoft-windows-kernel-power-events.dll 18:25:43.0812 5896 C:\Windows\System32\microsoft-windows-kernel-power-events.dll - ok 18:25:43.0812 5896 [ DA6B67270FD9DB3697B20FCE94950741 ] C:\Windows\System32\drivers\fltMgr.sys 18:25:43.0812 5896 C:\Windows\System32\drivers\fltMgr.sys - ok 18:25:43.0828 5896 [ A3DB3C17EE6CAE65D53602B4E80BCCBC ] C:\Windows\System32\PSHED.DLL 18:25:43.0828 5896 C:\Windows\System32\PSHED.DLL - ok 18:25:43.0828 5896 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] C:\Windows\System32\MPSSVC.dll 18:25:43.0828 5896 C:\Windows\System32\MPSSVC.dll - ok 18:25:43.0828 5896 [ D5CCA1453B98A5801E6D5FF0FF89DC6C ] C:\Windows\System32\audiodg.exe 18:25:43.0828 5896 C:\Windows\System32\audiodg.exe - ok 18:25:43.0828 5896 [ DC220AE6F64819099F7EBD6F137E32E7 ] C:\Windows\System32\AudioSes.dll 18:25:43.0828 5896 C:\Windows\System32\AudioSes.dll - ok 18:25:43.0843 5896 [ B0945E538CF906BBDDC5A11C8EE868CC ] C:\Windows\System32\microsoft-windows-kernel-processor-power-events.dll 18:25:43.0843 5896 C:\Windows\System32\microsoft-windows-kernel-processor-power-events.dll - ok 18:25:43.0843 5896 [ 1F4492FE41767CDB8B89D17655847CDD ] C:\Windows\System32\ntmarta.dll 18:25:43.0843 5896 C:\Windows\System32\ntmarta.dll - ok 18:25:43.0843 5896 [ 5EDBB34736DD7AC1A73CF8792A835E10 ] C:\Windows\System32\AudioEng.dll 18:25:43.0843 5896 C:\Windows\System32\AudioEng.dll - ok 18:25:43.0859 5896 [ C1395286B822E306B4FE1568A8A77813 ] C:\Windows\System32\AUDIOKSE.dll 18:25:43.0859 5896 C:\Windows\System32\AUDIOKSE.dll - ok 18:25:43.0859 5896 [ 8560FFFC8EB3A806DCD4F82252CFC8C6 ] C:\Windows\System32\ksuser.dll 18:25:43.0859 5896 C:\Windows\System32\ksuser.dll - ok 18:25:43.0859 5896 [ 1151B1BAA6F350B1DB6598E0FEA7C457 ] C:\Windows\System32\winlogon.exe 18:25:43.0859 5896 C:\Windows\System32\winlogon.exe - ok 18:25:43.0874 5896 [ E179A291A04EC856741A66D44A0D29CA ] C:\Windows\System32\stapo64.dll 18:25:43.0874 5896 C:\Windows\System32\stapo64.dll - ok 18:25:43.0874 5896 [ F45843C30B6AFE40F524B7B2D8141143 ] C:\Windows\System32\AESTAC64.dll 18:25:43.0874 5896 C:\Windows\System32\AESTAC64.dll - ok 18:25:43.0874 5896 [ 715F03B4C7223349768013EA95D9E5B7 ] C:\Windows\System32\LogonUI.exe 18:25:43.0874 5896 C:\Windows\System32\LogonUI.exe - ok 18:25:43.0890 5896 [ 0BEE002C68E28CE6DA161DCF1376D7D7 ] C:\Windows\System32\authui.dll 18:25:43.0890 5896 C:\Windows\System32\authui.dll - ok 18:25:43.0890 5896 [ 6F3C559B82F2912354BE5B098744CC8C ] C:\Windows\System32\WMALFXGFXDSP.dll 18:25:43.0890 5896 C:\Windows\System32\WMALFXGFXDSP.dll - ok 18:25:43.0890 5896 [ B3BFBD758506ECB50C5804AAA76318F9 ] C:\Windows\System32\cryptui.dll 18:25:43.0890 5896 C:\Windows\System32\cryptui.dll - ok 18:25:43.0906 5896 [ 54B5DCD55B223BC5DF50B82E1E9E86B1 ] C:\Windows\System32\mfplat.dll 18:25:43.0906 5896 C:\Windows\System32\mfplat.dll - ok 18:25:43.0906 5896 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] C:\Windows\System32\gpsvc.dll 18:25:43.0906 5896 C:\Windows\System32\gpsvc.dll - ok 18:25:43.0906 5896 [ 7FA8FDC2C2A27817FD0F624E78D3B50C ] C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac\comctl32.dll 18:25:43.0906 5896 C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac\comctl32.dll - ok 18:25:43.0921 5896 [ 58775492FFD419248B08325E583C527F ] C:\Windows\System32\atl.dll 18:25:43.0921 5896 C:\Windows\System32\atl.dll - ok 18:25:43.0921 5896 [ 2DF36F15B2BC1571A6A542A3C2107920 ] C:\Windows\System32\nlaapi.dll 18:25:43.0921 5896 C:\Windows\System32\nlaapi.dll - ok 18:25:43.0937 5896 [ 5B3EBFC3DA142324B388DDCC4465E1FF ] C:\Windows\System32\samlib.dll 18:25:43.0937 5896 C:\Windows\System32\samlib.dll - ok 18:25:43.0937 5896 [ 4E9C2DB10F7E6AE91BF761139D4B745B ] C:\Windows\System32\shacct.dll 18:25:43.0937 5896 C:\Windows\System32\shacct.dll - ok 18:25:43.0937 5896 [ F0344071948D1A1FA732231785A0664C ] C:\Windows\System32\themeservice.dll 18:25:43.0937 5896 C:\Windows\System32\themeservice.dll - ok 18:25:43.0952 5896 [ A77BE7CB3222B4FB0AC6C71D1C2698D4 ] C:\Windows\System32\dsrole.dll 18:25:43.0952 5896 C:\Windows\System32\dsrole.dll - ok 18:25:43.0952 5896 [ BE097F5BB10F9079FCEB2DC4E7E20F02 ] C:\Windows\System32\slc.dll 18:25:43.0952 5896 C:\Windows\System32\slc.dll - ok 18:25:43.0952 5896 [ 4166F82BE4D24938977DD1746BE9B8A0 ] C:\Windows\System32\es.dll 18:25:43.0952 5896 C:\Windows\System32\es.dll - ok 18:25:43.0952 5896 [ D29E998E8277666982B4F0303BF4E7AF ] C:\Windows\System32\uxtheme.dll 18:25:43.0952 5896 C:\Windows\System32\uxtheme.dll - ok 18:25:43.0968 5896 [ 179E8401224D557ECFF3695F2016EA5B ] C:\Windows\winsxs\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_2b253c 8271ec7765\GdiPlus.dll 18:25:43.0968 5896 C:\Windows\winsxs\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_2b253c 8271ec7765\GdiPlus.dll - ok 18:25:43.0968 5896 [ 1A47D52E303B7543E4E6026595B95422 ] C:\Windows\System32\comres.dll 18:25:43.0968 5896 C:\Windows\System32\comres.dll - ok 18:25:43.0968 5896 [ AA036CC5F5221D9B915F4D4DCE74BA9A ] C:\Windows\System32\hpservice.exe 18:25:43.0968 5896 C:\Windows\System32\hpservice.exe - ok 18:25:43.0984 5896 [ C32AB8FA018EF34C0F113BD501436D21 ] C:\Windows\System32\Sens.dll 18:25:43.0984 5896 C:\Windows\System32\Sens.dll - ok 18:25:43.0984 5896 [ 19F9B524A525D202194247E96656CB88 ] C:\Windows\System32\mfc42u.dll 18:25:43.0984 5896 C:\Windows\System32\mfc42u.dll - ok 18:25:43.0984 5896 [ 7FF8E121AFA05BDAB23B9FEDCDAB7A33 ] C:\Windows\System32\odbc32.dll 18:25:43.0984 5896 C:\Windows\System32\odbc32.dll - ok 18:25:43.0984 5896 [ E4534381D36D42EBF3A5E9B17DEBC707 ] C:\Windows\System32\accelerometerdll.DLL 18:25:43.0984 5896 C:\Windows\System32\accelerometerdll.DLL - ok 18:25:43.0999 5896 [ 3E466073C3B1033FF92ADE9031E3D4A2 ] C:\Windows\System32\odbcint.dll 18:25:43.0999 5896 C:\Windows\System32\odbcint.dll - ok 18:25:43.0999 5896 [ BD3674BE7FC9D8D3732C83E8499576ED ] C:\Windows\System32\wtsapi32.dll 18:25:43.0999 5896 C:\Windows\System32\wtsapi32.dll - ok 18:25:43.0999 5896 [ 3CB6A7286422C72C34DAB54A5DFF1A34 ] C:\Windows\System32\dui70.dll 18:25:43.0999 5896 C:\Windows\System32\dui70.dll - ok 18:25:43.0999 5896 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] C:\Windows\System32\TabSvc.dll 18:25:43.0999 5896 C:\Windows\System32\TabSvc.dll - ok 18:25:44.0015 5896 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] C:\Windows\System32\uxsms.dll 18:25:44.0015 5896 C:\Windows\System32\uxsms.dll - ok 18:25:44.0015 5896 [ 80E69670BDA10F32A941BA7358E33012 ] C:\Windows\System32\WUDFPlatform.dll 18:25:44.0015 5896 C:\Windows\System32\WUDFPlatform.dll - ok 18:25:44.0015 5896 [ 7A95C95B6C4CF292D689106BCAE49543 ] C:\Windows\System32\WUDFSvc.dll 18:25:44.0015 5896 C:\Windows\System32\WUDFSvc.dll - ok 18:25:44.0030 5896 [ 896F15A6434D93EDB42519D5E18E6B50 ] C:\Windows\System32\hid.dll 18:25:44.0030 5896 C:\Windows\System32\hid.dll - ok 18:25:44.0030 5896 [ 8CCDE014A4CDF84564E03ACE064CA753 ] C:\Windows\System32\duser.dll 18:25:44.0030 5896 C:\Windows\System32\duser.dll - ok 18:25:44.0030 5896 [ DA1B7075260F3872585BFCDD668C648B ] C:\Windows\System32\dwmapi.dll 18:25:44.0030 5896 C:\Windows\System32\dwmapi.dll - ok 18:25:44.0046 5896 [ D7F1EF374A90709B31591823B002F918 ] C:\Windows\System32\SndVolSSO.dll 18:25:44.0046 5896 C:\Windows\System32\SndVolSSO.dll - ok 18:25:44.0046 5896 [ 1473768973453DE50DC738C2955FC4DD ] C:\Windows\System32\wdmaud.drv 18:25:44.0046 5896 C:\Windows\System32\wdmaud.drv - ok 18:25:44.0046 5896 [ 1538831CF8AD2979A04C423779465827 ] C:\Windows\System32\drivers\lltdio.sys 18:25:44.0046 5896 C:\Windows\System32\drivers\lltdio.sys - ok 18:25:44.0046 5896 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] C:\Windows\System32\drivers\nwifi.sys 18:25:44.0046 5896 C:\Windows\System32\drivers\nwifi.sys - ok 18:25:44.0062 5896 [ 136185F9FB2CC61E573E676AA5402356 ] C:\Windows\System32\drivers\ndisuio.sys 18:25:44.0062 5896 C:\Windows\System32\drivers\ndisuio.sys - ok 18:25:44.0062 5896 [ DDC86E4F8E7456261E637E3552E804FF ] C:\Windows\System32\drivers\rspndr.sys 18:25:44.0062 5896 C:\Windows\System32\drivers\rspndr.sys - ok 18:25:44.0062 5896 [ 2B81776DA02017A37FE26C662827470E ] C:\Windows\System32\IPHLPAPI.DLL 18:25:44.0062 5896 C:\Windows\System32\IPHLPAPI.DLL - ok 18:25:44.0062 5896 [ F993A32249B66C9D622EA5592A8B76B8 ] C:\Windows\System32\lmhsvc.dll 18:25:44.0062 5896 C:\Windows\System32\lmhsvc.dll - ok 18:25:44.0077 5896 [ D54BFDF3E0C953F823B3D0BFE4732528 ] C:\Windows\System32\nsisvc.dll 18:25:44.0077 5896 C:\Windows\System32\nsisvc.dll - ok 18:25:44.0077 5896 [ 4C9210E8F4E052F6A4EB87716DA0C24C ] C:\Windows\System32\winnsi.dll 18:25:44.0077 5896 C:\Windows\System32\winnsi.dll - ok 18:25:44.0077 5896 [ D6F630C1FD7F436316093AE500363B19 ] C:\Windows\System32\xmllite.dll 18:25:44.0077 5896 C:\Windows\System32\xmllite.dll - ok 18:25:44.0077 5896 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] C:\Windows\System32\dhcpcore.dll 18:25:44.0077 5896 C:\Windows\System32\dhcpcore.dll - ok 18:25:44.0093 5896 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] C:\Windows\System32\dnsrslvr.dll 18:25:44.0093 5896 C:\Windows\System32\dnsrslvr.dll - ok 18:25:44.0093 5896 [ 87356377F31DA5F20A833811CD59499C ] C:\Windows\System32\eapphost.dll 18:25:44.0093 5896 C:\Windows\System32\eapphost.dll - ok 18:25:44.0093 5896 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] C:\Windows\System32\eapsvc.dll 18:25:44.0093 5896 C:\Windows\System32\eapsvc.dll - ok 18:25:44.0108 5896 [ F9EC845C5EECF20E9A67F9F805F2EF1F ] C:\Windows\System32\keyiso.dll 18:25:44.0108 5896 C:\Windows\System32\keyiso.dll - ok 18:25:44.0108 5896 [ B73A6E4B319AFFE64582AC5C1801BB3F ] C:\Windows\System32\nrpsrv.dll 18:25:44.0108 5896 C:\Windows\System32\nrpsrv.dll - ok 18:25:44.0108 5896 [ 71C7B65B6557B75B99907E76956AE4B8 ] C:\Windows\System32\dhcpcore6.dll 18:25:44.0108 5896 C:\Windows\System32\dhcpcore6.dll - ok 18:25:44.0124 5896 [ 0040C486584A8E582C861CFB57AB5387 ] C:\Windows\System32\FWPUCLNT.DLL 18:25:44.0124 5896 C:\Windows\System32\FWPUCLNT.DLL - ok 18:25:44.0124 5896 [ 9FCA3A84338ADEF2AFF67CDA46EF8539 ] C:\Windows\System32\umb.dll 18:25:44.0124 5896 C:\Windows\System32\umb.dll - ok 18:25:44.0124 5896 [ 26B73A85855681500BCC25C7CD9FF5B1 ] C:\Windows\System32\WindowsCodecs.dll 18:25:44.0124 5896 C:\Windows\System32\WindowsCodecs.dll - ok 18:25:44.0140 5896 [ A648C4A06DE367065B24056D067B4460 ] C:\Windows\System32\wlanmsm.dll 18:25:44.0140 5896 C:\Windows\System32\wlanmsm.dll - ok 18:25:44.0140 5896 [ 06A1386B6E3A0CBC368665C1840906F4 ] C:\Windows\System32\wlansec.dll 18:25:44.0140 5896 C:\Windows\System32\wlansec.dll - ok 18:25:44.0140 5896 [ 885D0942E0F28DB90919BE3129ECF279 ] C:\Windows\System32\dnsext.dll 18:25:44.0140 5896 C:\Windows\System32\dnsext.dll - ok 18:25:44.0155 5896 [ 4CBCC37856EA2039C27A2FB661DDA0E5 ] C:\Windows\System32\dhcpcsvc6.dll 18:25:44.0155 5896 C:\Windows\System32\dhcpcsvc6.dll - ok 18:25:44.0155 5896 [ CA2A0750ED830678997695FF61B04C30 ] C:\Windows\System32\midimap.dll 18:25:44.0155 5896 C:\Windows\System32\midimap.dll - ok 18:25:44.0155 5896 [ 10AC5CE9F78DC281A1BBD9B8CC587B8A ] C:\Windows\System32\msacm32.dll 18:25:44.0155 5896 C:\Windows\System32\msacm32.dll - ok 18:25:44.0155 5896 [ 1B7C3A37362C7B2890168C5FC61C8D9B ] C:\Windows\System32\msacm32.drv 18:25:44.0155 5896 C:\Windows\System32\msacm32.drv - ok 18:25:44.0171 5896 [ F568F7C08458D69E4FCD8675BBB107E4 ] C:\Windows\System32\dhcpcsvc.dll 18:25:44.0171 5896 C:\Windows\System32\dhcpcsvc.dll - ok 18:25:44.0171 5896 [ 73FCB7919DEE80EE556F2E498594EBAE ] C:\Windows\System32\onex.dll 18:25:44.0171 5896 C:\Windows\System32\onex.dll - ok 18:25:44.0171 5896 [ C469893743E18BA547DB3C7ED98B32F5 ] C:\Windows\System32\AESTAR64.dll 18:25:44.0171 5896 C:\Windows\System32\AESTAR64.dll - ok 18:25:44.0186 5896 [ 0D753307D274F3688BD21C377B616700 ] C:\Windows\System32\eappcfg.dll 18:25:44.0186 5896 C:\Windows\System32\eappcfg.dll - ok 18:25:44.0186 5896 [ 65522E77A1360DBC8D199DA3BF5EFFE4 ] C:\Windows\System32\eappprxy.dll 18:25:44.0186 5896 C:\Windows\System32\eappprxy.dll - ok 18:25:44.0186 5896 [ C2762A57DF0EE85E63CE4893C5215313 ] C:\Windows\System32\VaultCredProvider.dll 18:25:44.0186 5896 C:\Windows\System32\VaultCredProvider.dll - ok 18:25:44.0202 5896 [ 9F2BACD5E1776A4BB7CC0EC3C3A4F96D ] C:\Windows\System32\winbrand.dll 18:25:44.0202 5896 C:\Windows\System32\winbrand.dll - ok 18:25:44.0202 5896 [ 3D9FC44CA93001B423F89876369F1348 ] C:\Windows\System32\SRSLabs\{176F4E15-8F7C-4833-ADED-81FAE8CCD186}\sluapo64.dll 18:25:44.0202 5896 C:\Windows\System32\SRSLabs\{176F4E15-8F7C-4833-ADED-81FAE8CCD186}\sluapo64.dll - ok 18:25:44.0202 5896 [ 97E43F324BE1503CB2FFB058534688DA ] C:\Windows\System32\l2gpstore.dll 18:25:44.0202 5896 C:\Windows\System32\l2gpstore.dll - ok 18:25:44.0218 5896 [ 7D5645EE0EA77D539828433D9B95F5EB ] C:\Windows\System32\WinSCard.dll 18:25:44.0218 5896 C:\Windows\System32\WinSCard.dll - ok 18:25:44.0218 5896 [ 7F1B4C6FF3B85F9ADF74055187B8A22C ] C:\Windows\System32\wlanutil.dll 18:25:44.0218 5896 C:\Windows\System32\wlanutil.dll - ok 18:25:44.0218 5896 [ 730BF204A595D5B6D7DC57A247CC741C ] C:\Windows\System32\wlgpclnt.dll 18:25:44.0218 5896 C:\Windows\System32\wlgpclnt.dll - ok 18:25:44.0218 5896 [ CA2985996BB49924B677113DF95CFEA7 ] C:\Windows\System32\SmartcardCredentialProvider.dll 18:25:44.0218 5896 C:\Windows\System32\SmartcardCredentialProvider.dll - ok 18:25:44.0233 5896 [ B6F0676FC23D543452FE81D8B71D24E7 ] C:\Windows\System32\SRSLabs\{176F4E15-8F7C-4833-ADED-81FAE8CCD186}\slcshp64.dll 18:25:44.0233 5896 C:\Windows\System32\SRSLabs\{176F4E15-8F7C-4833-ADED-81FAE8CCD186}\slcshp64.dll - ok 18:25:44.0233 5896 [ F7BA79CEFBD9DF4AF781E00356FBF48E ] C:\Windows\System32\SRSLabs\{176F4E15-8F7C-4833-ADED-81FAE8CCD186}\slh36064.dll 18:25:44.0233 5896 C:\Windows\System32\SRSLabs\{176F4E15-8F7C-4833-ADED-81FAE8CCD186}\slh36064.dll - ok 18:25:44.0233 5896 [ 79E25E0628A2FF7A74356EAEF5011C26 ] C:\Windows\System32\SRSLabs\{176F4E15-8F7C-4833-ADED-81FAE8CCD186}\sltshd64.dll 18:25:44.0233 5896 C:\Windows\System32\SRSLabs\{176F4E15-8F7C-4833-ADED-81FAE8CCD186}\sltshd64.dll - ok 18:25:44.0249 5896 [ BF352E73615F5461AA6884472435A544 ] C:\Windows\System32\BioCredProv.dll 18:25:44.0249 5896 C:\Windows\System32\BioCredProv.dll - ok 18:25:44.0249 5896 [ 99B91C5D2FCEF218CAD3600ECB62A799 ] C:\Windows\System32\msxml6.dll 18:25:44.0249 5896 C:\Windows\System32\msxml6.dll - ok 18:25:44.0249 5896 [ 796B8123A7859AFD3A4AE10514DBAEB5 ] C:\Windows\System32\winbio.dll 18:25:44.0249 5896 C:\Windows\System32\winbio.dll - ok 18:25:44.0264 5896 [ CC0AB40F02D2C2A12209715A3C1B07B8 ] C:\Windows\System32\credui.dll 18:25:44.0264 5896 C:\Windows\System32\credui.dll - ok 18:25:44.0264 5896 [ EEEA40F0EDB0A6E5359E539E15D0BC77 ] C:\Windows\System32\netapi32.dll 18:25:44.0264 5896 C:\Windows\System32\netapi32.dll - ok 18:25:44.0264 5896 [ 44B9C66177651F3F53C87B665D58D17A ] C:\Windows\System32\vaultcli.dll 18:25:44.0264 5896 C:\Windows\System32\vaultcli.dll - ok 18:25:44.0264 5896 [ 6CECA4C6A489C9B2E6073AFDAAE3F607 ] C:\Windows\System32\netutils.dll 18:25:44.0264 5896 C:\Windows\System32\netutils.dll - ok 18:25:44.0280 5896 [ 3C91392D448F6E5D525A85B7550D8BA9 ] C:\Windows\System32\wkscli.dll 18:25:44.0280 5896 C:\Windows\System32\wkscli.dll - ok 18:25:44.0280 5896 [ FC51229C7D4AFA0D6F186133728B95AB ] C:\Windows\System32\samcli.dll 18:25:44.0280 5896 C:\Windows\System32\samcli.dll - ok 18:25:44.0280 5896 [ 972C3301DB3DA91AE06A95F6B4160B1B ] C:\Windows\System32\certCredProvider.dll 18:25:44.0280 5896 C:\Windows\System32\certCredProvider.dll - ok 18:25:44.0296 5896 [ 032229246107C5C7211E6D1498B52D3D ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL 18:25:44.0296 5896 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL - ok 18:25:44.0296 5896 [ 87FA0C48C3B2E9FEE518818FE26B15B5 ] C:\Windows\System32\rasplap.dll 18:25:44.0296 5896 C:\Windows\System32\rasplap.dll - ok 18:25:44.0296 5896 [ AAF932B4011D14052955D4B212A4DA8D ] C:\Windows\System32\shsvcs.dll 18:25:44.0296 5896 C:\Windows\System32\shsvcs.dll - ok 18:25:44.0296 5896 [ 019CD868461B646E09BDF04474C19341 ] C:\Windows\System32\rasapi32.dll 18:25:44.0296 5896 C:\Windows\System32\rasapi32.dll - ok 18:25:44.0311 5896 [ B28DEEC597C8DEB70C744C7CF9210E3E ] C:\Windows\System32\rasman.dll 18:25:44.0311 5896 C:\Windows\System32\rasman.dll - ok 18:25:44.0311 5896 [ 262F6592C3299C005FD6BEC90FC4463A ] C:\Windows\System32\schedsvc.dll 18:25:44.0311 5896 C:\Windows\System32\schedsvc.dll - ok 18:25:44.0311 5896 [ B53C4B69B695EDA1B7E41D35CA4244E2 ] C:\Windows\System32\rtutils.dll 18:25:44.0311 5896 C:\Windows\System32\rtutils.dll - ok 18:25:44.0327 5896 [ BC414631876B2F28B8DAB08E849C12C5 ] C:\Windows\System32\ktmw32.dll 18:25:44.0327 5896 C:\Windows\System32\ktmw32.dll - ok 18:25:44.0327 5896 [ 9BC8610C32C96A2983A65DC21CAFA921 ] C:\Windows\System32\UXInit.dll 18:25:44.0327 5896 C:\Windows\System32\UXInit.dll - ok 18:25:44.0327 5896 [ 02E20372D9D6D28E37BA9704EDC90B67 ] C:\Windows\System32\wisptis.exe 18:25:44.0327 5896 C:\Windows\System32\wisptis.exe - ok 18:25:44.0327 5896 [ DF6737304C458AFB28AA214AEB7D7ECD ] C:\Windows\System32\Magnification.dll 18:25:44.0327 5896 C:\Windows\System32\Magnification.dll - ok 18:25:44.0342 5896 [ 4C3DAEE652B005B483F16B8E9131C99D ] C:\Windows\System32\d3d9.dll 18:25:44.0342 5896 C:\Windows\System32\d3d9.dll - ok 18:25:44.0342 5896 [ 945E54F23C72D37B8CD1987AF0DB63BF ] C:\Windows\System32\fveapi.dll 18:25:44.0342 5896 C:\Windows\System32\fveapi.dll - ok 18:25:44.0342 5896 [ 891ECFD08E2C538B7948CBC45106D697 ] C:\Windows\System32\fvecerts.dll 18:25:44.0342 5896 C:\Windows\System32\fvecerts.dll - ok 18:25:44.0358 5896 [ 694865362F0965779F92BCFE97712323 ] C:\Windows\System32\tbs.dll 18:25:44.0358 5896 C:\Windows\System32\tbs.dll - ok 18:25:44.0358 5896 [ 6DC4A7242F565C9E9C9CCC7BB0FA75C7 ] C:\Windows\System32\taskcomp.dll 18:25:44.0358 5896 C:\Windows\System32\taskcomp.dll - ok 18:25:44.0358 5896 [ 8269210DAF3B12BC8300631B28A2A442 ] C:\Windows\System32\wiarpc.dll 18:25:44.0358 5896 C:\Windows\System32\wiarpc.dll - ok 18:25:44.0358 5896 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] C:\Windows\System32\drivers\http.sys 18:25:44.0358 5896 C:\Windows\System32\drivers\http.sys - ok 18:25:44.0374 5896 [ 3044D07ABDF4BBEA27E2EE7B1E0C0C65 ] C:\Windows\System32\d3d8thk.dll 18:25:44.0374 5896 C:\Windows\System32\d3d8thk.dll - ok 18:25:44.0374 5896 [ CF636C92B762B26F0B39B38E92380A09 ] C:\Windows\System32\oleacc.dll 18:25:44.0374 5896 C:\Windows\System32\oleacc.dll - ok 18:25:44.0374 5896 [ B96C17B5DC1424D56EEA3A99E97428CD ] C:\Windows\System32\spoolsv.exe 18:25:44.0374 5896 C:\Windows\System32\spoolsv.exe - ok 18:25:44.0389 5896 [ DAF3E300311D2B78174AE52B231981BD ] C:\Windows\System32\Tabbtn.dll 18:25:44.0389 5896 C:\Windows\System32\Tabbtn.dll - ok 18:25:44.0389 5896 [ 5AA945234E9D4CCE4F715276B9AA712C ] C:\Windows\System32\imageres.dll 18:25:44.0389 5896 C:\Windows\System32\imageres.dll - ok 18:25:44.0389 5896 [ 82974D6A2FD19445CC5171FC378668A4 ] C:\Windows\System32\BFE.DLL 18:25:44.0389 5896 C:\Windows\System32\BFE.DLL - ok 18:25:44.0405 5896 [ 27E461F0BE5BFF5FC737328F749538C3 ] C:\Windows\System32\drivers\srvnet.sys 18:25:44.0405 5896 C:\Windows\System32\drivers\srvnet.sys - ok 18:25:44.0405 5896 [ 03706015DB44368375AEBE6339490E66 ] C:\Windows\System32\netcfgx.dll 18:25:44.0405 5896 C:\Windows\System32\netcfgx.dll - ok 18:25:44.0405 5896 [ 6C02A83164F5CC0A262F4199F0871CF5 ] C:\Windows\System32\drivers\bowser.sys 18:25:44.0405 5896 C:\Windows\System32\drivers\bowser.sys - ok 18:25:44.0405 5896 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] C:\Windows\System32\drivers\mpsdrv.sys 18:25:44.0405 5896 C:\Windows\System32\drivers\mpsdrv.sys - ok 18:25:44.0420 5896 [ A5D9106A73DC88564C825D317CAC68AC ] C:\Windows\System32\drivers\mrxsmb.sys 18:25:44.0420 5896 C:\Windows\System32\drivers\mrxsmb.sys - ok 18:25:44.0420 5896 [ D711B3C1D5F42C0C2415687BE09FC163 ] C:\Windows\System32\drivers\mrxsmb10.sys 18:25:44.0420 5896 C:\Windows\System32\drivers\mrxsmb10.sys - ok 18:25:44.0420 5896 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] C:\Windows\System32\drivers\mrxsmb20.sys 18:25:44.0420 5896 C:\Windows\System32\drivers\mrxsmb20.sys - ok 18:25:44.0436 5896 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] C:\Windows\System32\drivers\srv2.sys 18:25:44.0436 5896 C:\Windows\System32\drivers\srv2.sys - ok 18:25:44.0436 5896 [ C67F8A962B2534224D5908D16D2AD3CE ] C:\Windows\System32\wfapigp.dll 18:25:44.0436 5896 C:\Windows\System32\wfapigp.dll - ok 18:25:44.0436 5896 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] C:\Windows\System32\drivers\srv.sys 18:25:44.0436 5896 C:\Windows\System32\drivers\srv.sys - ok 18:25:44.0436 5896 [ 851A1382EED3E3A7476DB004F4EE3E1A ] C:\Windows\System32\wkssvc.dll 18:25:44.0436 5896 C:\Windows\System32\wkssvc.dll - ok 18:25:44.0452 5896 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] C:\Windows\System32\browser.dll 18:25:44.0452 5896 C:\Windows\System32\browser.dll - ok 18:25:44.0452 5896 [ CFEFA40DDE34659BE5211966EAD86437 ] C:\Windows\System32\netmsg.dll 18:25:44.0452 5896 C:\Windows\System32\netmsg.dll - ok 18:25:44.0452 5896 [ D9F42719019740BAA6D1C6D536CBDAA6 ] C:\Windows\System32\srvsvc.dll 18:25:44.0452 5896 C:\Windows\System32\srvsvc.dll - ok 18:25:44.0452 5896 [ FF80CAD87555E8E4D2CFD7B9058343F8 ] C:\Windows\System32\sscore.dll 18:25:44.0452 5896 C:\Windows\System32\sscore.dll - ok 18:25:44.0467 5896 [ 81749E073AC5857B044A686B406E5244 ] C:\Windows\System32\clusapi.dll 18:25:44.0467 5896 C:\Windows\System32\clusapi.dll - ok 18:25:44.0467 5896 [ 1834B31C749B86DAC233BBBA1C03BC48 ] C:\Windows\System32\mscms.dll 18:25:44.0467 5896 C:\Windows\System32\mscms.dll - ok 18:25:44.0483 5896 [ 344FCC9850C3A8A3B4D3C65151AF8E4C ] C:\Windows\System32\resutils.dll 18:25:44.0483 5896 C:\Windows\System32\resutils.dll - ok 18:25:44.0483 5896 [ 3AEAA8B561E63452C655DC0584922257 ] C:\Windows\System32\pcasvc.dll 18:25:44.0483 5896 C:\Windows\System32\pcasvc.dll - ok 18:25:44.0483 5896 [ 6313F223E817CC09AA41811DAA7F541D ] C:\Windows\System32\snmptrap.exe 18:25:44.0483 5896 C:\Windows\System32\snmptrap.exe - ok 18:25:44.0498 5896 [ 908ACB1F594274965A53926B10C81E89 ] C:\Windows\System32\provsvc.dll 18:25:44.0498 5896 C:\Windows\System32\provsvc.dll - ok 18:25:44.0498 5896 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] C:\Windows\System32\sstpsvc.dll 18:25:44.0498 5896 C:\Windows\System32\sstpsvc.dll - ok 18:25:44.0498 5896 [ 0015ACFBBDD164A8A730009908868CA7 ] C:\Windows\System32\winspool.drv 18:25:44.0498 5896 C:\Windows\System32\winspool.drv - ok 18:25:44.0514 5896 [ AFB5B500AD69E24ED1BC15D1161641EF ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL 18:25:44.0514 5896 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL - ok 18:25:44.0514 5896 [ F9D908DE6B166DAC9B89BF62FA291CE8 ] C:\Program Files\Bonjour\mdnsNSP.dll 18:25:44.0514 5896 C:\Program Files\Bonjour\mdnsNSP.dll - ok 18:25:44.0514 5896 [ 88351B29B622B30962D2FEB6CA8D860B ] C:\Windows\System32\rasadhlp.dll 18:25:44.0514 5896 C:\Windows\System32\rasadhlp.dll - ok 18:25:44.0530 5896 [ 45CFBFA8EDC3DF4E2B7FB0D0260FE051 ] C:\Windows\System32\localspl.dll 18:25:44.0530 5896 C:\Windows\System32\localspl.dll - ok 18:25:44.0530 5896 [ 3285481F5C12305CA104A6C493CA5A0B ] C:\Windows\System32\spoolss.dll 18:25:44.0530 5896 C:\Windows\System32\spoolss.dll - ok 18:25:44.0530 5896 [ 0993EF9B46A96493EFD049E688CA9112 ] C:\Windows\System32\cpwmon64.dll 18:25:44.0530 5896 C:\Windows\System32\cpwmon64.dll - ok 18:25:44.0545 5896 [ C5AC93CF3BA30D367FB49148A2B673B9 ] C:\Windows\System32\PrintIsolationProxy.dll 18:25:44.0545 5896 C:\Windows\System32\PrintIsolationProxy.dll - ok 18:25:44.0545 5896 [ 46B8E04B3C35CB93F89EF27746D7A908 ] C:\Windows\System32\EP0SLM01.DLL 18:25:44.0545 5896 C:\Windows\System32\EP0SLM01.DLL - ok 18:25:44.0545 5896 [ 19E41CCCEE697CC9465396B370929792 ] C:\Windows\System32\FXSMON.dll 18:25:44.0545 5896 C:\Windows\System32\FXSMON.dll - ok 18:25:44.0561 5896 [ E6CE06CB77D918BA02741F4D9C095698 ] C:\Windows\System32\smrtlocalmon.dll 18:25:44.0561 5896 C:\Windows\System32\smrtlocalmon.dll - ok 18:25:44.0561 5896 [ 32A3C8600AF124CBAAD845F13CFAE3CB ] C:\Windows\System32\tcpmon.dll 18:25:44.0561 5896 C:\Windows\System32\tcpmon.dll - ok 18:25:44.0561 5896 [ 93518C6EDE0B61BCBD02BDB02BD05FEE ] C:\Windows\System32\snmpapi.dll 18:25:44.0561 5896 C:\Windows\System32\snmpapi.dll - ok 18:25:44.0576 5896 [ FFF9D00CF16397C64317F213484F94BD ] C:\Windows\System32\wsnmp32.dll 18:25:44.0576 5896 C:\Windows\System32\wsnmp32.dll - ok 18:25:44.0576 5896 [ DF72A9936D0C3F517083119648814B09 ] C:\Windows\System32\usbmon.dll 18:25:44.0576 5896 C:\Windows\System32\usbmon.dll - ok 18:25:44.0592 5896 [ A1D7E3ADCDB07DDB6F423862DCB1A52B ] C:\Windows\System32\WSDMon.dll 18:25:44.0592 5896 C:\Windows\System32\WSDMon.dll - ok 18:25:44.0592 5896 [ F1B205F932F62F94506A5F332C895DAF ] C:\Windows\System32\WSDApi.dll 18:25:44.0592 5896 C:\Windows\System32\WSDApi.dll - ok 18:25:44.0592 5896 [ C55516D98DD5D8F0153C2A9B4227DA86 ] C:\Windows\System32\webservices.dll 18:25:44.0592 5896 C:\Windows\System32\webservices.dll - ok 18:25:44.0608 5896 [ B5055B51BAA0FD0A736A88653DA3C1C0 ] C:\Windows\System32\fundisc.dll 18:25:44.0608 5896 C:\Windows\System32\fundisc.dll - ok 18:25:44.0608 5896 [ 4581716B4BF76ACFD8E167EB0B26D82A ] C:\Windows\System32\fdPnp.dll 18:25:44.0608 5896 C:\Windows\System32\fdPnp.dll - ok 18:25:44.0608 5896 [ 1D626FE2E13C1CE49CA0136CFF214E93 ] C:\Windows\System32\spool\prtprocs\x64\winprint.dll 18:25:44.0608 5896 C:\Windows\System32\spool\prtprocs\x64\winprint.dll - ok 18:25:44.0623 5896 [ DAEEAD506E5B84E177D88C4D7B739401 ] C:\Windows\System32\spool\prtprocs\x64\EP0NPP01.DLL 18:25:44.0623 5896 C:\Windows\System32\spool\prtprocs\x64\EP0NPP01.DLL - ok 18:25:44.0623 5896 [ 0353B239C28B0E9EBC7FA3D1F6181661 ] C:\Windows\System32\win32spl.dll 18:25:44.0623 5896 C:\Windows\System32\win32spl.dll - ok 18:25:44.0623 5896 [ 507D5567A0A4EE86C4B0CE2CE1777025 ] C:\Windows\System32\inetpp.dll 18:25:44.0623 5896 C:\Windows\System32\inetpp.dll - ok 18:25:44.0639 5896 [ 18F64623E76FF58009D6F9CB9DEA5D0A ] C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe 18:25:44.0639 5896 C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe - ok 18:25:44.0639 5896 [ A214B178650E019F5399A3E436D4C4B8 ] C:\Program Files\Trend Micro\AMSP\utilInstallation.dll 18:25:44.0639 5896 C:\Program Files\Trend Micro\AMSP\utilInstallation.dll - ok 18:25:44.0654 5896 [ 9423C9A80BFAE56CBACF82097AE17F78 ] C:\Program Files\Trend Micro\AMSP\utilThread.dll 18:25:44.0654 5896 C:\Program Files\Trend Micro\AMSP\utilThread.dll - ok 18:25:44.0654 5896 [ EC6BA7C92FA5B2AA4AFDF4DF22AEDAB7 ] C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_88e41e092fab0 294\msvcr80.dll 18:25:44.0654 5896 C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_88e41e092fab0 294\msvcr80.dll - ok 18:25:44.0654 5896 [ A208F522B71109BF9A896CD8C842DD4E ] C:\Program Files\Trend Micro\AMSP\utilDebugLog.dll 18:25:44.0654 5896 C:\Program Files\Trend Micro\AMSP\utilDebugLog.dll - ok 18:25:44.0670 5896 [ A8704A10FFDE468F4AB18EBF82A9A86F ] C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_88e41e092fab0 294\msvcp80.dll 18:25:44.0670 5896 C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_88e41e092fab0 294\msvcp80.dll - ok 18:25:44.0670 5896 [ 8158913139DD41770A6A0DB62374A15A ] C:\Program Files\Trend Micro\AMSP\boost_thread-vc80-mt-1_36.dll 18:25:44.0670 5896 C:\Program Files\Trend Micro\AMSP\boost_thread-vc80-mt-1_36.dll - ok 18:25:44.0670 5896 [ 97902BF4AE575FD11D092616DB62E2C4 ] C:\Program Files\Trend Micro\AMSP\boost_date_time-vc80-mt-1_36.dll 18:25:44.0670 5896 C:\Program Files\Trend Micro\AMSP\boost_date_time-vc80-mt-1_36.dll - ok 18:25:44.0670 5896 [ DB62CB0840BF84E9DFD646F39B6EF742 ] C:\Program Files\Trend Micro\AMSP\utilComponentInfo.dll 18:25:44.0670 5896 C:\Program Files\Trend Micro\AMSP\utilComponentInfo.dll - ok 18:25:44.0686 5896 [ B9562B9088E56D01F04F72A2452018F9 ] C:\Program Files\Trend Micro\AMSP\utilMsgBuffer.dll 18:25:44.0686 5896 C:\Program Files\Trend Micro\AMSP\utilMsgBuffer.dll - ok 18:25:44.0686 5896 [ EBE9542554DAF801DA24CFDBC6AA209E ] C:\Program Files\Trend Micro\AMSP\utilGenericLoader.dll 18:25:44.0686 5896 C:\Program Files\Trend Micro\AMSP\utilGenericLoader.dll - ok 18:25:44.0686 5896 [ A7A8CA53D9C9FD90C07AB0EB38E5316B ] C:\Windows\System32\dbghelp.dll 18:25:44.0686 5896 C:\Windows\System32\dbghelp.dll - ok 18:25:44.0686 5896 [ A9471B0EBEED4431FDCBEFD52567B2C4 ] C:\Program Files\Trend Micro\UniClient\UiFrmwrk\uiWatchDog.exe 18:25:44.0686 5896 C:\Program Files\Trend Micro\UniClient\UiFrmwrk\uiWatchDog.exe - ok 18:25:44.0701 5896 [ 360E61217D4E1E333583D0C721057F70 ] C:\Windows\System32\drivers\tmcomm.sys 18:25:44.0701 5896 C:\Windows\System32\drivers\tmcomm.sys - ok 18:25:44.0701 5896 [ 699D34EB7C670139CA23A65372BD5743 ] C:\Windows\System32\drivers\tmevtmgr.sys 18:25:44.0701 5896 C:\Windows\System32\drivers\tmevtmgr.sys - ok 18:25:44.0701 5896 [ 581D88B25C4D4121824FED2CA38E562F ] C:\Program Files\SUPERAntiSpyware\SASCore64.exe 18:25:44.0701 5896 C:\Program Files\SUPERAntiSpyware\SASCore64.exe - ok 18:25:44.0717 5896 [ 73AAFFDD2AC3C8814B26C440E5DD9DD4 ] C:\Windows\System32\drivers\tmactmon.sys 18:25:44.0717 5896 C:\Windows\System32\drivers\tmactmon.sys - ok 18:25:44.0717 5896 [ 3326166011C9BC13D6A8EFD856E9921C ] C:\Windows\System32\conhost.exe 18:25:44.0717 5896 C:\Windows\System32\conhost.exe - ok 18:25:44.0717 5896 [ B1EA9681502EE57F87DB71D726288A5B ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 18:25:44.0717 5896 C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe - ok 18:25:44.0732 5896 [ 3F5D34F630261BE31168D6EEC38C9B99 ] C:\Program Files\Trend Micro\AMSP\coreFrameworkHost.exe 18:25:44.0732 5896 C:\Program Files\Trend Micro\AMSP\coreFrameworkHost.exe - ok 18:25:44.0732 5896 [ E73B0F1819602CB6EF176FB78D76A47B ] C:\Windows\SysWOW64\ntdll.dll 18:25:44.0732 5896 C:\Windows\SysWOW64\ntdll.dll - ok 18:25:44.0732 5896 [ 15B30F15BD13640B337A0FC37BD48CDE ] C:\Windows\System32\wow64.dll 18:25:44.0732 5896 C:\Windows\System32\wow64.dll - ok 18:25:44.0748 5896 [ 2970785A72054740E1A5DCEB32485486 ] C:\Windows\System32\wow64win.dll 18:25:44.0748 5896 C:\Windows\System32\wow64win.dll - ok 18:25:44.0748 5896 [ 5E74C4F95B29B5645939606B5434AC42 ] C:\Program Files\Trend Micro\AMSP\sqlite3.dll 18:25:44.0748 5896 C:\Program Files\Trend Micro\AMSP\sqlite3.dll - ok 18:25:44.0748 5896 [ 98168B9B0656A01A321FF1BECB2C03E1 ] C:\Windows\System32\wow64cpu.dll 18:25:44.0748 5896 C:\Windows\System32\wow64cpu.dll - ok 18:25:44.0764 5896 [ D4F3176082566CEFA633B4945802D4C4 ] C:\Windows\SysWOW64\kernel32.dll 18:25:44.0764 5896 C:\Windows\SysWOW64\kernel32.dll - ok 18:25:44.0764 5896 [ 0978C2B33BDD0A7E6C563AA337DC8BA0 ] C:\Windows\SysWOW64\KernelBase.dll 18:25:44.0764 5896 C:\Windows\SysWOW64\KernelBase.dll - ok 18:25:44.0764 5896 [ 5E0DB2D8B2750543CD2EBB9EA8E6CDD3 ] C:\Windows\SysWOW64\user32.dll 18:25:44.0764 5896 C:\Windows\SysWOW64\user32.dll - ok 18:25:44.0764 5896 [ D6D3AD7BF1D6F6CE9547613ED5E170A2 ] C:\Windows\SysWOW64\gdi32.dll 18:25:44.0764 5896 C:\Windows\SysWOW64\gdi32.dll - ok 18:25:44.0779 5896 [ 384721EF4024890092625E20CADFAF85 ] C:\Windows\SysWOW64\lpk.dll 18:25:44.0779 5896 C:\Windows\SysWOW64\lpk.dll - ok 18:25:44.0779 5896 [ 804AAAFEBB3AD5F49334DD906BCB1DE5 ] C:\Windows\SysWOW64\usp10.dll 18:25:44.0779 5896 C:\Windows\SysWOW64\usp10.dll - ok 18:25:44.0795 5896 [ 9DC80A8AAAAAC397BDAB3C67165A824E ] C:\Windows\SysWOW64\msvcrt.dll 18:25:44.0795 5896 C:\Windows\SysWOW64\msvcrt.dll - ok 18:25:44.0795 5896 [ 95E2376B3323F062EB562B8586D0F14A ] C:\Windows\SysWOW64\advapi32.dll 18:25:44.0795 5896 C:\Windows\SysWOW64\advapi32.dll - ok 18:25:44.0795 5896 [ C5AD8083CF94201F1F8084ECC696A8B7 ] C:\Windows\SysWOW64\rpcrt4.dll 18:25:44.0795 5896 C:\Windows\SysWOW64\rpcrt4.dll - ok 18:25:44.0810 5896 [ CFC97F07904067A1E5FAE195D534DA3A ] C:\Windows\SysWOW64\sechost.dll 18:25:44.0810 5896 C:\Windows\SysWOW64\sechost.dll - ok 18:25:44.0810 5896 [ F08F6FCD09F9BE94C37ACC1B344685FF ] C:\Windows\SysWOW64\cryptbase.dll 18:25:44.0810 5896 C:\Windows\SysWOW64\cryptbase.dll - ok 18:25:44.0810 5896 [ 29E9794708DF51DB5DC89FB2E903A0F6 ] C:\Windows\SysWOW64\shell32.dll 18:25:44.0810 5896 C:\Windows\SysWOW64\shell32.dll - ok 18:25:44.0826 5896 [ EDA7AD21DF8945528F01F0A86D69E524 ] C:\Windows\SysWOW64\sspicli.dll 18:25:44.0826 5896 C:\Windows\SysWOW64\sspicli.dll - ok 18:25:44.0826 5896 [ 8CC3C111D653E96F3EA1590891491D71 ] C:\Windows\SysWOW64\shlwapi.dll 18:25:44.0826 5896 C:\Windows\SysWOW64\shlwapi.dll - ok 18:25:44.0842 5896 [ 928CF7268086631F54C3D8E17238C6DD ] C:\Windows\SysWOW64\ole32.dll 18:25:44.0842 5896 C:\Windows\SysWOW64\ole32.dll - ok 18:25:44.0842 5896 [ 6C765E82B57F2E66CE9C54AC238471D9 ] C:\Windows\SysWOW64\oleaut32.dll 18:25:44.0842 5896 C:\Windows\SysWOW64\oleaut32.dll - ok 18:25:44.0842 5896 [ 60D21799A4AF4EDCE65FB98830E4B0C8 ] C:\Windows\SysWOW64\crypt32.dll 18:25:44.0842 5896 C:\Windows\SysWOW64\crypt32.dll - ok 18:25:44.0857 5896 [ 938F39B50BAFE13D6F58C7790682C010 ] C:\Windows\SysWOW64\msasn1.dll 18:25:44.0857 5896 C:\Windows\SysWOW64\msasn1.dll - ok 18:25:44.0857 5896 [ 17448AF0BBA9E7AB5EC955AF93F271BD ] C:\Windows\SysWOW64\wintrust.dll 18:25:44.0857 5896 C:\Windows\SysWOW64\wintrust.dll - ok 18:25:44.0857 5896 [ CDBE9690CF2B8409FACAD94FAC9479C9 ] C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb5 7\msvcr90.dll 18:25:44.0857 5896 C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb5 7\msvcr90.dll - ok 18:25:44.0857 5896 [ A6F09E5669D9A19035F6D942CAA15882 ] C:\Windows\SysWOW64\imm32.dll 18:25:44.0857 5896 C:\Windows\SysWOW64\imm32.dll - ok 18:25:44.0873 5896 [ C9618BC9B2B0FD7C1138D8774795A79B ] C:\Windows\SysWOW64\msctf.dll 18:25:44.0873 5896 C:\Windows\SysWOW64\msctf.dll - ok 18:25:44.0873 5896 [ A6FB9DB8F1A86861D955FD6975977AE0 ] C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_d15ed671de43d681\AESTSr64.exe 18:25:44.0873 5896 C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_d15ed671de43d681\AESTSr64.exe - ok 18:25:44.0888 5896 [ 7EF47644B74EBE721CC32211D3C35E76 ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe 18:25:44.0888 5896 C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe - ok 18:25:44.0888 5896 [ 0B3595A4FF0B36D68E5FC67FD7D70FDC ] C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9 a\msvcp80.dll 18:25:44.0888 5896 C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9 a\msvcp80.dll - ok 18:25:44.0888 5896 [ C9564CF4976E7E96B4052737AA2492B4 ] C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9 a\msvcr80.dll 18:25:44.0888 5896 C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9 a\msvcr80.dll - ok 18:25:44.0888 5896 [ 6C63DC384A15E2AFD4A860031EF40267 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\AppleVersions.dll 18:25:44.0888 5896 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\AppleVersions.dll - ok 18:25:44.0904 5896 [ 702254574E7E52052DE39408457B7149 ] C:\Windows\SysWOW64\version.dll 18:25:44.0904 5896 C:\Windows\SysWOW64\version.dll - ok 18:25:44.0904 5896 [ 67B539D844F804EBAC7A1E3828FDE709 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\CoreFoundation.dll 18:25:44.0904 5896 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\CoreFoundation.dll - ok 18:25:44.0920 5896 [ 2DEDC3AFE3C49B5DAE717D0A9BEBF298 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\YSCrashDump.dll 18:25:44.0920 5896 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\YSCrashDump.dll - ok 18:25:44.0920 5896 [ 7FF15A4F092CD4A96055BA69F903E3E9 ] C:\Windows\SysWOW64\ws2_32.dll 18:25:44.0920 5896 C:\Windows\SysWOW64\ws2_32.dll - ok 18:25:44.0920 5896 [ 15530639789C990827E594344EACC465 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\pthreadVC2.dll 18:25:44.0920 5896 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\pthreadVC2.dll - ok 18:25:44.0935 5896 [ 6377051C63D5552A311935C67E9FDFDC ] C:\Windows\SysWOW64\nsi.dll 18:25:44.0935 5896 C:\Windows\SysWOW64\nsi.dll - ok 18:25:44.0935 5896 [ 32D78DCABFB942275E01363D5232C77D ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\objc.dll 18:25:44.0935 5896 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\objc.dll - ok 18:25:44.0951 5896 [ DF13A51A5C591887D2EC6AE64CEED0FA ] C:\Windows\SysWOW64\wsock32.dll 18:25:44.0951 5896 C:\Windows\SysWOW64\wsock32.dll - ok 18:25:44.0951 5896 [ 3BDE52411DF2FE4252C9289F51CB0F7E ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libdispatch.dll 18:25:44.0951 5896 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libdispatch.dll - ok 18:25:44.0951 5896 [ D5AEFAD57C08349A4393D987DF7C715D ] C:\Windows\SysWOW64\winmm.dll 18:25:44.0951 5896 C:\Windows\SysWOW64\winmm.dll - ok 18:25:44.0966 5896 [ 9ABB7CDAC0914579C86990048771B1B4 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libicuin.dll 18:25:44.0966 5896 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libicuin.dll - ok 18:25:44.0966 5896 [ D47913F993A0E3A0C9F1E88FD02E98C6 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libicuuc.dll 18:25:44.0966 5896 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libicuuc.dll - ok 18:25:44.0982 5896 [ 43A0A24CD12B110DC93462D6B035C961 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\icudt46.dll 18:25:44.0982 5896 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\icudt46.dll - ok 18:25:44.0982 5896 [ BA02F01BE7ED88E8974C798ACB3075F5 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\ASL.dll 18:25:44.0982 5896 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\ASL.dll - ok 18:25:44.0982 5896 [ C733D233B623B7FFCE5031E4B756EE26 ] C:\Windows\SysWOW64\profapi.dll 18:25:44.0982 5896 C:\Windows\SysWOW64\profapi.dll - ok 18:25:44.0998 5896 [ F8ECB748B53A010464F7A63154D75F56 ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService_main.dll 18:25:44.0998 5896 C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService_main.dll - ok 18:25:44.0998 5896 [ 10FB16B50AFFDA6D44588F3C445DC273 ] C:\Windows\SysWOW64\setupapi.dll 18:25:44.0998 5896 C:\Windows\SysWOW64\setupapi.dll - ok 18:25:45.0013 5896 [ F436E847FA799ECD75AD8C313673F450 ] C:\Windows\SysWOW64\cfgmgr32.dll 18:25:45.0013 5896 C:\Windows\SysWOW64\cfgmgr32.dll - ok 18:25:45.0013 5896 [ 2EEFF4502F5E13B1BED4A04CCAD64C08 ] C:\Windows\SysWOW64\devobj.dll 18:25:45.0013 5896 C:\Windows\SysWOW64\devobj.dll - ok 18:25:45.0013 5896 [ D15618A0FF8DBC2C5BF3726BACC75A0B ] C:\Windows\SysWOW64\userenv.dll 18:25:45.0013 5896 C:\Windows\SysWOW64\userenv.dll - ok 18:25:45.0029 5896 [ 062373995EAE5F0EAC9EAA9192136BFB ] C:\Windows\SysWOW64\dnssd.dll 18:25:45.0029 5896 C:\Windows\SysWOW64\dnssd.dll - ok 18:25:45.0029 5896 [ 6A6B2EE4565A178035BE2A4FF6F2C968 ] C:\Windows\SysWOW64\wtsapi32.dll 18:25:45.0029 5896 C:\Windows\SysWOW64\wtsapi32.dll - ok 18:25:45.0029 5896 [ 3FD15B4611D9BDA3F8013548C0ECAECA ] C:\Windows\SysWOW64\ntmarta.dll 18:25:45.0029 5896 C:\Windows\SysWOW64\ntmarta.dll - ok 18:25:45.0029 5896 [ A8BB45F9ECAD993461E0FEF8E2A99152 ] C:\Windows\SysWOW64\Wldap32.dll 18:25:45.0029 5896 C:\Windows\SysWOW64\Wldap32.dll - ok 18:25:45.0044 5896 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] C:\Program Files\Bonjour\mDNSResponder.exe 18:25:45.0044 5896 C:\Program Files\Bonjour\mDNSResponder.exe - ok 18:25:45.0044 5896 [ 8999B8631C7FD9F7F9EC3CAFD953BA24 ] C:\Windows\SysWOW64\mswsock.dll 18:25:45.0044 5896 C:\Windows\SysWOW64\mswsock.dll - ok 18:25:45.0044 5896 [ EE5C8E27C37B79CB54A2FCEEED2DC262 ] C:\Windows\SysWOW64\WSHTCPIP.DLL 18:25:45.0044 5896 C:\Windows\SysWOW64\WSHTCPIP.DLL - ok 18:25:45.0060 5896 [ 2C478E667CE27B2B7142F756CF569A9A ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\MobileDevice.dll 18:25:45.0060 5896 C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\MobileDevice.dll - ok 18:25:45.0060 5896 [ 744012D3EA82B11FB2838A09F1838592 ] C:\Program Files\EPSON Projector\Easy Interactive Tools Ver.2\EIN_BMM.exe 18:25:45.0060 5896 C:\Program Files\EPSON Projector\Easy Interactive Tools Ver.2\EIN_BMM.exe - ok 18:25:45.0076 5896 [ 9C01375BE382E834CC26D1B7EAF2C4FE ] C:\Windows\System32\cryptsvc.dll 18:25:45.0076 5896 C:\Windows\System32\cryptsvc.dll - ok 18:25:45.0076 5896 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] C:\Windows\System32\dps.dll 18:25:45.0076 5896 C:\Windows\System32\dps.dll - ok 18:25:45.0076 5896 [ B49B56B64F57699A1A663D2CF7D0A56F ] C:\Windows\SysWOW64\wininet.dll 18:25:45.0076 5896 C:\Windows\SysWOW64\wininet.dll - ok 18:25:45.0091 5896 [ 8792BAB371B4B1589E015B6FD1ED3B15 ] C:\Windows\System32\cryptnet.dll 18:25:45.0091 5896 C:\Windows\System32\cryptnet.dll - ok 18:25:45.0091 5896 [ 0E2F58F6E698EDCB9E58FAD0CBCD0567 ] C:\Windows\System32\vssapi.dll 18:25:45.0091 5896 C:\Windows\System32\vssapi.dll - ok 18:25:45.0091 5896 [ BAAFAF9CEAEC0B73C2A3550A01F6CECB ] C:\Windows\System32\taskschd.dll 18:25:45.0091 5896 C:\Windows\System32\taskschd.dll - ok 18:25:45.0107 5896 [ FF5688D309347F2720911D8796912834 ] C:\Windows\SysWOW64\clbcatq.dll 18:25:45.0107 5896 C:\Windows\SysWOW64\clbcatq.dll - ok 18:25:45.0107 5896 [ 802496CB59A30349F9A6DD22D6947644 ] C:\Windows\System32\FDResPub.dll 18:25:45.0107 5896 C:\Windows\System32\FDResPub.dll - ok 18:25:45.0107 5896 [ FCD84C381E0140AF901E58D48882D26B ] C:\Windows\System32\IKEEXT.DLL 18:25:45.0107 5896 C:\Windows\System32\IKEEXT.DLL - ok 18:25:45.0107 5896 [ 2238B91AC1A12CC6CC4C4FED41258B2A ] C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe 18:25:45.0107 5896 C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe - ok 18:25:45.0122 5896 [ BBB4F402C02367449C4C38D7D7097458 ] C:\Program Files (x86)\Common Files\LightScribe\LSSProxy.dll 18:25:45.0122 5896 C:\Program Files (x86)\Common Files\LightScribe\LSSProxy.dll - ok 18:25:45.0122 5896 [ 7321F18D1F820612ED0E9F2D4B578A7E ] C:\Windows\SysWOW64\cryptsp.dll 18:25:45.0122 5896 C:\Windows\SysWOW64\cryptsp.dll - ok 18:25:45.0122 5896 [ 5997D769CDB108390DCFAEBF442BF816 ] C:\Windows\SysWOW64\RpcRtRemote.dll 18:25:45.0122 5896 C:\Windows\SysWOW64\RpcRtRemote.dll - ok 18:25:45.0138 5896 [ ED8EC63F7522DF4852147C84EC62C36A ] C:\Windows\SysWOW64\rsaenh.dll 18:25:45.0138 5896 C:\Windows\SysWOW64\rsaenh.dll - ok 18:25:45.0138 5896 [ D171EAA745A2C0C583CDDA13D9088EE4 ] C:\Windows\SysWOW64\iertutil.dll 18:25:45.0138 5896 C:\Windows\SysWOW64\iertutil.dll - ok 18:25:45.0138 5896 [ AAFCA5BE1E8D0844A4DBA0A6E61C2CA3 ] C:\Program Files (x86)\Common Files\LightScribe\LSLog.dll 18:25:45.0138 5896 C:\Program Files (x86)\Common Files\LightScribe\LSLog.dll - ok 18:25:45.0138 5896 [ A543AC1F7138376D778D630A35FCBC4C ] C:\Windows\SysWOW64\psapi.dll 18:25:45.0138 5896 C:\Windows\SysWOW64\psapi.dll - ok 18:25:45.0154 5896 [ 7485FBCEF9136F530953575E2977859D ] C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe 18:25:45.0154 5896 C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe - ok 18:25:45.0154 5896 [ 58F4493BF748A3A89689997B7BD00E95 ] C:\Windows\System32\winhttp.dll 18:25:45.0154 5896 C:\Windows\System32\winhttp.dll - ok 18:25:45.0154 5896 [ B40420876B9288E0A1C8CCA8A84E5DC9 ] C:\Windows\SysWOW64\dnsapi.dll 18:25:45.0154 5896 C:\Windows\SysWOW64\dnsapi.dll - ok 18:25:45.0154 5896 [ A90DC9ABD65DB1A8902F361103029952 ] C:\Windows\SysWOW64\IPHLPAPI.DLL 18:25:45.0154 5896 C:\Windows\SysWOW64\IPHLPAPI.DLL - ok 18:25:45.0169 5896 [ CFF35B879D1618D42C86644C717BA947 ] C:\Windows\SysWOW64\winnsi.dll 18:25:45.0169 5896 C:\Windows\SysWOW64\winnsi.dll - ok 18:25:45.0169 5896 [ 603EBD34E216C5654A2D774EAC98D278 ] C:\Windows\System32\webio.dll 18:25:45.0169 5896 C:\Windows\System32\webio.dll - ok 18:25:45.0169 5896 [ 77B5035BC6EDF4D1B6265391AECEE4C0 ] C:\Windows\System32\vpnikeapi.dll 18:25:45.0169 5896 C:\Windows\System32\vpnikeapi.dll - ok 18:25:45.0185 5896 [ BCEA9AB347E53BC03B2E36BE0B8BA0EF ] C:\Windows\System32\httpapi.dll 18:25:45.0185 5896 C:\Windows\System32\httpapi.dll - ok 18:25:45.0185 5896 [ BE157C3800DA3010EFC48280ECF81C16 ] C:\Windows\SysWOW64\urlmon.dll 18:25:45.0185 5896 C:\Windows\SysWOW64\urlmon.dll - ok 18:25:45.0185 5896 [ 287923557447D7E4BDD7E65B1F0F5428 ] C:\Windows\System32\vsstrace.dll 18:25:45.0185 5896 C:\Windows\System32\vsstrace.dll - ok 18:25:45.0185 5896 [ 847D3AE376C0817161A14A82C8922A9E ] C:\Windows\System32\netman.dll 18:25:45.0185 5896 C:\Windows\System32\netman.dll - ok 18:25:45.0200 5896 [ 58B61578D5704E9FC8B8A9861A85069D ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 18:25:45.0200 5896 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll - ok 18:25:45.0200 5896 [ 1EE99A89CC788ADA662441D1E9830529 ] C:\Windows\System32\nlasvc.dll 18:25:45.0200 5896 C:\Windows\System32\nlasvc.dll - ok 18:25:45.0200 5896 [ 57E8C7791AB2596AFB8EE1273C2DF1F8 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\CFNetwork.dll 18:25:45.0200 5896 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\CFNetwork.dll - ok 18:25:45.0216 5896 [ 4A435F95B940E93A88FEC144BD409789 ] C:\Windows\System32\ncsi.dll 18:25:45.0216 5896 C:\Windows\System32\ncsi.dll - ok 18:25:45.0216 5896 [ 2BBF3FDB70B8965DFA0258CBAB41ECCE ] C:\Windows\System32\ssdpapi.dll 18:25:45.0216 5896 C:\Windows\System32\ssdpapi.dll - ok 18:25:45.0216 5896 [ 1727B2A2F379A32B864C096FA794AADC ] C:\Windows\System32\aepic.dll 18:25:45.0216 5896 C:\Windows\System32\aepic.dll - ok 18:25:45.0232 5896 [ 68769C3356B3BE5D1C732C97B9A80D6E ] C:\Windows\System32\drivers\PEAuth.sys 18:25:45.0232 5896 C:\Windows\System32\drivers\PEAuth.sys - ok 18:25:45.0232 5896 [ C6DCD1D11ED6827F05C00773C3E7053C ] C:\Windows\System32\sfc.dll 18:25:45.0232 5896 C:\Windows\System32\sfc.dll - ok 18:25:45.0232 5896 [ 895C9AB0A855547445C4181195230757 ] C:\Windows\System32\sfc_os.dll 18:25:45.0232 5896 C:\Windows\System32\sfc_os.dll - ok 18:25:45.0247 5896 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] C:\Windows\System32\IPSECSVC.DLL 18:25:45.0247 5896 C:\Windows\System32\IPSECSVC.DLL - ok 18:25:45.0247 5896 [ 8A1CBAE63FC06EDAEDCCE1B23E9C9267 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\SQLite3.dll 18:25:45.0247 5896 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\SQLite3.dll - ok 18:25:45.0263 5896 [ 498EB62A160674E793FA40FD65390625 ] C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe 18:25:45.0263 5896 C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe - ok 18:25:45.0263 5896 [ 3EA8A16169C26AFBEB544E0E48421186 ] C:\Windows\System32\drivers\secdrv.sys 18:25:45.0263 5896 C:\Windows\System32\drivers\secdrv.sys - ok 18:25:45.0263 5896 [ BC617A4E1B4FA8DF523A061739A0BD87 ] C:\Windows\System32\seclogon.dll 18:25:45.0263 5896 C:\Windows\System32\seclogon.dll - ok 18:25:45.0278 5896 [ C3C8D359D1FCB72941F75F8A302BFBDE ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 18:25:45.0278 5896 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll - ok 18:25:45.0278 5896 [ 9BC93C9ACFA34DB5A41B89357B31E4ED ] C:\Windows\System32\FwRemoteSvr.dll 18:25:45.0278 5896 C:\Windows\System32\FwRemoteSvr.dll - ok 18:25:45.0278 5896 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] C:\Windows\System32\sysmain.dll 18:25:45.0278 5896 C:\Windows\System32\sysmain.dll - ok 18:25:45.0294 5896 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] C:\Windows\System32\wiaservc.dll 18:25:45.0294 5896 C:\Windows\System32\wiaservc.dll - ok 18:25:45.0294 5896 [ DF687E3D8836BFB04FCC0615BF15A519 ] C:\Windows\System32\drivers\tcpipreg.sys 18:25:45.0294 5896 C:\Windows\System32\drivers\tcpipreg.sys - ok 18:25:45.0294 5896 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] C:\Windows\System32\tapisrv.dll 18:25:45.0294 5896 C:\Windows\System32\tapisrv.dll - ok 18:25:45.0310 5896 [ 0364256B4A2A93A8C8CDA6B3B5A0EFF5 ] C:\Windows\System32\wiatrace.dll 18:25:45.0310 5896 C:\Windows\System32\wiatrace.dll - ok 18:25:45.0310 5896 [ 210FCACAF902B2CD47CF9FD17D846146 ] C:\Windows\System32\aeevts.dll 18:25:45.0310 5896 C:\Windows\System32\aeevts.dll - ok 18:25:45.0310 5896 [ 0A2E3899CC72AD4CC85EA3D50A5331CC ] C:\Windows\System32\drivers\tmwfp.sys 18:25:45.0310 5896 C:\Windows\System32\drivers\tmwfp.sys - ok 18:25:45.0310 5896 [ 1BF0CB861A48FEB1638228760750F3CB ] C:\Windows\System32\cscapi.dll 18:25:45.0310 5896 C:\Windows\System32\cscapi.dll - ok 18:25:45.0325 5896 [ 2BACD71123F42CEA603F4E205E1AE337 ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE 18:25:45.0325 5896 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE - ok 18:25:45.0325 5896 [ 7E7AFD841694F6AC397E99D75CEAD49D ] C:\Windows\System32\trkwks.dll 18:25:45.0325 5896 C:\Windows\System32\trkwks.dll - ok 18:25:45.0325 5896 [ 19B07E7E8915D701225DA41CB3877306 ] C:\Windows\System32\wbem\WMIsvc.dll 18:25:45.0325 5896 C:\Windows\System32\wbem\WMIsvc.dll - ok 18:25:45.0341 5896 [ 7DB5AA22A8A8E5C2D335F44853C1F6DE ] C:\Windows\System32\wbemcomn.dll 18:25:45.0341 5896 C:\Windows\System32\wbemcomn.dll - ok 18:25:45.0341 5896 [ 0255C22D99602534F15CBB8D9B6F152F ] C:\Windows\System32\wbem\WinMgmtR.dll 18:25:45.0341 5896 C:\Windows\System32\wbem\WinMgmtR.dll - ok 18:25:45.0341 5896 [ 0C52762C606BCF6A377D5E4688191A6B ] C:\Windows\System32\wbem\WmiDcPrv.dll 18:25:45.0341 5896 C:\Windows\System32\wbem\WmiDcPrv.dll - ok 18:25:45.0356 5896 [ A3F5E8EC1316C3E2562B82694A251C9E ] C:\Windows\System32\wbem\fastprox.dll 18:25:45.0356 5896 C:\Windows\System32\wbem\fastprox.dll - ok 18:25:45.0356 5896 [ B837D1528CE2E3CB79F09496BC08DDC6 ] C:\Windows\System32\SensApi.dll 18:25:45.0356 5896 C:\Windows\System32\SensApi.dll - ok 18:25:45.0356 5896 [ 93812FDC01AA864195816CD814445F95 ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\SQMAPI.DLL 18:25:45.0356 5896 C:\Program Files\Common Files\Microsoft Shared\Windows Live\SQMAPI.DLL - ok 18:25:45.0356 5896 [ EE26D130808D16C0E417BBBED0451B34 ] C:\Windows\System32\ntdsapi.dll 18:25:45.0356 5896 C:\Windows\System32\ntdsapi.dll - ok 18:25:45.0372 5896 [ 666A60F6F5E719856FF6254E0966EFF7 ] C:\Windows\System32\wbem\wbemprox.dll 18:25:45.0372 5896 C:\Windows\System32\wbem\wbemprox.dll - ok 18:25:45.0372 5896 [ 9689A9C7F7C2A1A423CDA2C3B43FFF65 ] C:\Windows\System32\wer.dll 18:25:45.0372 5896 C:\Windows\System32\wer.dll - ok 18:25:45.0372 5896 [ 5EB55F661DEBF156E126160BCD4D89F8 ] C:\Windows\System32\wbem\wbemcore.dll 18:25:45.0372 5896 C:\Windows\System32\wbem\wbemcore.dll - ok 18:25:45.0388 5896 [ 087D8668C71634A3A3761135ABF16EEE ] C:\Windows\System32\wbem\esscli.dll 18:25:45.0388 5896 C:\Windows\System32\wbem\esscli.dll - ok 18:25:45.0388 5896 [ 718B6F51AB7F6FE2988A36868F9AD3AB ] C:\Windows\System32\wbem\wbemsvc.dll 18:25:45.0388 5896 C:\Windows\System32\wbem\wbemsvc.dll - ok 18:25:45.0388 5896 [ 0143DB80DACFB7C2B5B7009ED9063353 ] C:\Windows\System32\wbem\wmiutils.dll 18:25:45.0388 5896 C:\Windows\System32\wbem\wmiutils.dll - ok 18:25:45.0403 5896 [ 0AB34456654C283DAA13B8D2BA21439B ] C:\Windows\System32\wbem\repdrvfs.dll 18:25:45.0403 5896 C:\Windows\System32\wbem\repdrvfs.dll - ok 18:25:45.0403 5896 [ 27B9E163740A226B65E4B9E186117911 ] C:\Windows\System32\sqmapi.dll 18:25:45.0403 5896 C:\Windows\System32\sqmapi.dll - ok 18:25:45.0419 5896 [ 079FD1D59EAD19270C979AF174D881A3 ] C:\ProgramData\Microsoft\IdentityCRL\production\ppcrlconfig600.dll 18:25:45.0419 5896 C:\ProgramData\Microsoft\IdentityCRL\production\ppcrlconfig600.dll - ok 18:25:45.0419 5896 [ 371948BC5911ABA06168FAC91ED25F06 ] C:\Windows\System32\msxml3.dll 18:25:45.0419 5896 C:\Windows\System32\msxml3.dll - ok 18:25:45.0419 5896 [ 7B38D7916A7CD058C16A0A6CA5077901 ] C:\Windows\System32\wdscore.dll 18:25:45.0419 5896 C:\Windows\System32\wdscore.dll - ok 18:25:45.0419 5896 [ EE867A0870FC9E4972BA9EAAD35651E2 ] C:\Windows\System32\rasmans.dll 18:25:45.0419 5896 C:\Windows\System32\rasmans.dll - ok 18:25:45.0434 5896 [ 44C96B48112EB24AE7764EBF1C527000 ] C:\Windows\System32\rastapi.dll 18:25:45.0434 5896 C:\Windows\System32\rastapi.dll - ok 18:25:45.0434 5896 [ FAFAE01E889DC9C05A6CA2138CFC220B ] C:\Windows\System32\tapi32.dll 18:25:45.0434 5896 C:\Windows\System32\tapi32.dll - ok 18:25:45.0434 5896 [ 3B367397320C26DBA890B260F80D1B1B ] C:\Windows\System32\hnetcfg.dll 18:25:45.0434 5896 C:\Windows\System32\hnetcfg.dll - ok 18:25:45.0450 5896 [ D2A0FFA75AB181B19B5EB93BB29C7686 ] C:\Windows\System32\unimdm.tsp 18:25:45.0450 5896 C:\Windows\System32\unimdm.tsp - ok 18:25:45.0450 5896 [ 94B7DF336815B47236724019FAB24B7C ] C:\Windows\System32\uniplat.dll 18:25:45.0450 5896 C:\Windows\System32\uniplat.dll - ok 18:25:45.0450 5896 [ 7C1BAE7D23D4874FEE256A2B9C00E019 ] C:\Windows\System32\hidphone.tsp 18:25:45.0450 5896 C:\Windows\System32\hidphone.tsp - ok 18:25:45.0466 5896 [ 41326DD08ACC0CDC5F8177AF96C066E8 ] C:\Windows\System32\kmddsp.tsp 18:25:45.0466 5896 C:\Windows\System32\kmddsp.tsp - ok 18:25:45.0466 5896 [ 1D6BC2769DA66C1145F4DA5A65F52E61 ] C:\Windows\System32\ndptsp.tsp 18:25:45.0466 5896 C:\Windows\System32\ndptsp.tsp - ok 18:25:45.0466 5896 [ DDD0357A92FA843EFF8915ED17253D6C ] C:\Windows\System32\wbem\WmiPrvSD.dll 18:25:45.0466 5896 C:\Windows\System32\wbem\WmiPrvSD.dll - ok 18:25:45.0481 5896 [ 2A46FFE841EC43001D5A293A54DB34DE ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE 18:25:45.0481 5896 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE - ok 18:25:45.0481 5896 [ D41FEBD098234F02485A4EA98D4730A4 ] C:\Windows\System32\ncobjapi.dll 18:25:45.0481 5896 C:\Windows\System32\ncobjapi.dll - ok 18:25:45.0481 5896 [ 6F40D6FB05E0C1E5402812B426971AF0 ] C:\Windows\System32\wbem\wbemess.dll 18:25:45.0481 5896 C:\Windows\System32\wbem\wbemess.dll - ok 18:25:45.0497 5896 [ A717A35120DBAB5AB707AB40662AF9DD ] C:\Windows\System32\rasppp.dll 18:25:45.0497 5896 C:\Windows\System32\rasppp.dll - ok 18:25:45.0497 5896 [ 0FE5CD5F9C9248F42D1EF56E495B182E ] C:\Windows\System32\vpnike.dll 18:25:45.0497 5896 C:\Windows\System32\vpnike.dll - ok 18:25:45.0497 5896 [ 6A84E68B538B8B04608BF2F0D426CE6F ] C:\Windows\System32\raschap.dll 18:25:45.0497 5896 C:\Windows\System32\raschap.dll - ok 18:25:45.0512 5896 [ B95F6501A2F8B2E78C697FEC401970CE ] C:\Windows\System32\ipnathlp.dll 18:25:45.0512 5896 C:\Windows\System32\ipnathlp.dll - ok 18:25:45.0512 5896 [ 2DF29664ED261F0FC448E58F338F0671 ] C:\Windows\System32\mprapi.dll 18:25:45.0512 5896 C:\Windows\System32\mprapi.dll - ok 18:25:45.0512 5896 [ A42F2C1EB3B66C54FB3C7B79D30C1A6D ] C:\Windows\System32\netshell.dll 18:25:45.0512 5896 C:\Windows\System32\netshell.dll - ok 18:25:45.0528 5896 [ BD9EB3958F213F96B97B1D897DEE006D ] C:\Windows\System32\hidserv.dll 18:25:45.0528 5896 C:\Windows\System32\hidserv.dll - ok 18:25:45.0528 5896 [ BF1FC3F79B863C914687A737C2F3D681 ] C:\Windows\System32\wdi.dll 18:25:45.0528 5896 C:\Windows\System32\wdi.dll - ok 18:25:45.0544 5896 [ 93221146D4EBBF314C29B23CD6CC391D ] C:\Windows\System32\wpdbusenum.dll 18:25:45.0544 5896 C:\Windows\System32\wpdbusenum.dll - ok 18:25:45.0544 5896 [ 4449D23E8F197862F1B16F1E6C89C36C ] C:\Windows\System32\diagperf.dll 18:25:45.0544 5896 C:\Windows\System32\diagperf.dll - ok 18:25:45.0544 5896 [ F7073C962C4FB7C415565DDE109DE49F ] C:\Windows\System32\npmproxy.dll 18:25:45.0544 5896 C:\Windows\System32\npmproxy.dll - ok 18:25:45.0559 5896 [ BF4AC709BE5BF64F331F5D67773A0C82 ] C:\Windows\System32\perftrack.dll 18:25:45.0559 5896 C:\Windows\System32\perftrack.dll - ok 18:25:45.0559 5896 [ 58A0CDABEA255616827B1C22C9994466 ] C:\Windows\System32\NapiNSP.dll 18:25:45.0559 5896 C:\Windows\System32\NapiNSP.dll - ok 18:25:45.0575 5896 [ 9719E3D834F5C8C43F56A93DFA497023 ] C:\Windows\System32\pnpts.dll 18:25:45.0575 5896 C:\Windows\System32\pnpts.dll - ok 18:25:45.0575 5896 [ E811F8510B133E70CF6E509FB809824F ] C:\Windows\System32\wdiasqmmodule.dll 18:25:45.0575 5896 C:\Windows\System32\wdiasqmmodule.dll - ok 18:25:45.0575 5896 [ 613C8CE10A5FDE582BA5FA64C4D56AAA ] C:\Windows\System32\pnrpnsp.dll 18:25:45.0575 5896 C:\Windows\System32\pnrpnsp.dll - ok 18:25:45.0590 5896 [ 2E2072EB48238FCA8FBB7A9F5FABAC45 ] C:\Windows\System32\winrnr.dll 18:25:45.0590 5896 C:\Windows\System32\winrnr.dll - ok 18:25:45.0590 5896 [ 79AFFC7FEEA9CD2FEFEA5EF3B631A02C ] C:\Windows\System32\ndiscapCfg.dll 18:25:45.0590 5896 C:\Windows\System32\ndiscapCfg.dll - ok 18:25:45.0590 5896 [ 3D6AF45673C4B31CDECD7F80AF09D443 ] C:\Windows\System32\rascfg.dll 18:25:45.0590 5896 C:\Windows\System32\rascfg.dll - ok 18:25:45.0606 5896 [ 1CF21800E337F4039AAD4C94B4280EE4 ] C:\Windows\System32\mprmsg.dll 18:25:45.0606 5896 C:\Windows\System32\mprmsg.dll - ok 18:25:45.0606 5896 [ 55DE45B116711881C852D2841E4C84DD ] C:\Windows\System32\tcpipcfg.dll 18:25:45.0606 5896 C:\Windows\System32\tcpipcfg.dll - ok 18:25:45.0606 5896 [ FEB91B4DA0D540865260A33838654FA3 ] C:\Windows\System32\nci.dll 18:25:45.0606 5896 C:\Windows\System32\nci.dll - ok 18:25:45.0622 5896 [ AC0C9CEA1218DAB1994AF8B28E680BD9 ] C:\Windows\System32\wlaninst.dll 18:25:45.0622 5896 C:\Windows\System32\wlaninst.dll - ok 18:25:45.0622 5896 [ 5A406C9C8E0880D3EABADC5DFD1ACDAE ] C:\Windows\System32\wwaninst.dll 18:25:45.0622 5896 C:\Windows\System32\wwaninst.dll - ok 18:25:45.0622 5896 [ E64D9EC8018C55873B40FDEE9DBEF5B3 ] C:\Windows\System32\PortableDeviceApi.dll 18:25:45.0622 5896 C:\Windows\System32\PortableDeviceApi.dll - ok 18:25:45.0622 5896 [ E1B22739C933BE33F53DB58C5393ADD3 ] C:\Windows\System32\Apphlpdm.dll 18:25:45.0622 5896 C:\Windows\System32\Apphlpdm.dll - ok 18:25:45.0637 5896 [ AFA79C343F9D1555F7E5D5FA70BB2A14 ] C:\Windows\System32\PortableDeviceConnectApi.dll 18:25:45.0637 5896 C:\Windows\System32\PortableDeviceConnectApi.dll - ok 18:25:45.0637 5896 [ 198803E5E93E29967DFB0BCFD0186151 ] C:\Windows\System32\spfileq.dll 18:25:45.0637 5896 C:\Windows\System32\spfileq.dll - ok 18:25:45.0653 5896 [ 639774C9ACD063F028F6084ABF5593AD ] C:\Windows\System32\taskhost.exe 18:25:45.0653 5896 C:\Windows\System32\taskhost.exe - ok 18:25:45.0653 5896 [ E629F1A051C82795DDFFD3E8D4855811 ] C:\Windows\System32\dimsjob.dll 18:25:45.0653 5896 C:\Windows\System32\dimsjob.dll - ok 18:25:45.0653 5896 [ 94DFBB481BF51158B216E23C5C1C9D6E ] C:\Windows\System32\certcli.dll 18:25:45.0653 5896 C:\Windows\System32\certcli.dll - ok 18:25:45.0668 5896 [ 35CB97CBC3EDC463418ED4997AAB29B6 ] C:\Windows\System32\pautoenr.dll 18:25:45.0668 5896 C:\Windows\System32\pautoenr.dll - ok 18:25:45.0668 5896 [ 263B26106606A010CF877472B535E4BB ] C:\Windows\System32\CertEnroll.dll 18:25:45.0668 5896 C:\Windows\System32\CertEnroll.dll - ok 18:25:45.0668 5896 [ 46863C4CC5B68EB09EA2D5EEF0F1193A ] C:\Windows\System32\radardt.dll 18:25:45.0668 5896 C:\Windows\System32\radardt.dll - ok 18:25:45.0668 5896 [ A8EDB86FC2A4D6D1285E4C70384AC35A ] C:\Windows\System32\dllhost.exe 18:25:45.0668 5896 C:\Windows\System32\dllhost.exe - ok 18:25:45.0684 5896 [ 14DFDEAF4E589ED3F1FF187A86B9408C ] C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_a4d6a923711520a9\comctl32.dll 18:25:45.0684 5896 C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_a4d6a923711520a9\comctl32.dll - ok 18:25:45.0684 5896 [ A0A2C1D812C231C9BFE119FDC68E341B ] C:\Windows\System32\IDStore.dll 18:25:45.0684 5896 C:\Windows\System32\IDStore.dll - ok 18:25:45.0684 5896 [ 418E881201583A3039D81F43E39E6C78 ] C:\Windows\SysWOW64\winsta.dll 18:25:45.0684 5896 C:\Windows\SysWOW64\winsta.dll - ok 18:25:45.0700 5896 [ 94EEAC26F57811BD1AEFC164412F7FCE ] C:\Windows\System32\PlaySndSrv.dll 18:25:45.0700 5896 C:\Windows\System32\PlaySndSrv.dll - ok 18:25:45.0700 5896 [ 23566F9723771108D2E6CD768AC27407 ] C:\Windows\System32\AtBroker.exe 18:25:45.0700 5896 C:\Windows\System32\AtBroker.exe - ok 18:25:45.0700 5896 [ 65EA57712340C09B1B0C427B4848AE05 ] C:\Windows\System32\taskeng.exe 18:25:45.0700 5896 C:\Windows\System32\taskeng.exe - ok 18:25:45.0715 5896 [ 6CEF7856A3EFAC59470F6208F0F585CE ] C:\Windows\System32\mpr.dll 18:25:45.0715 5896 C:\Windows\System32\mpr.dll - ok 18:25:45.0715 5896 [ 2ABFB305022FA93E87273E2A21E4B30A ] C:\Windows\System32\TabbtnEx.dll 18:25:45.0715 5896 C:\Windows\System32\TabbtnEx.dll - ok 18:25:45.0731 5896 [ BAFE84E637BF7388C96EF48D4D3FDD53 ] C:\Windows\System32\userinit.exe 18:25:45.0731 5896 C:\Windows\System32\userinit.exe - ok 18:25:45.0731 5896 [ F162D5F5E845B9DC352DD1BAD8CEF1BC ] C:\Windows\System32\dwm.exe 18:25:45.0731 5896 C:\Windows\System32\dwm.exe - ok 18:25:45.0731 5896 [ 9BB99503D6A4DD62569EDE9E5E2672A5 ] C:\Windows\System32\HotStartUserAgent.dll 18:25:45.0731 5896 C:\Windows\System32\HotStartUserAgent.dll - ok 18:25:45.0746 5896 [ FCFCD1101C5DA23B4B95F93D02B2C169 ] C:\Windows\System32\dwmredir.dll 18:25:45.0746 5896 C:\Windows\System32\dwmredir.dll - ok 18:25:45.0746 5896 [ B2742EA6ED844D747E2348A504E491CB ] C:\Windows\System32\dxva2.dll 18:25:45.0746 5896 C:\Windows\System32\dxva2.dll - ok 18:25:45.0746 5896 [ 4BA77A5EF71C14C764B0ED4701683E3E ] C:\Windows\System32\dwmcore.dll 18:25:45.0746 5896 C:\Windows\System32\dwmcore.dll - ok 18:25:45.0746 5896 [ 1F1CA9E99DD5BF918BE0BF30B5A42FDA ] C:\Windows\System32\MsCtfMonitor.dll 18:25:45.0746 5896 C:\Windows\System32\MsCtfMonitor.dll - ok 18:25:45.0762 5896 [ F09A9A1AD21FE618C4C8B0A0D830C886 ] C:\Windows\System32\msutb.dll 18:25:45.0762 5896 C:\Windows\System32\msutb.dll - ok 18:25:45.0762 5896 [ 805A52C5AE26C28E88FDD9BCCFE6F312 ] C:\Windows\System32\TSChannel.dll 18:25:45.0762 5896 C:\Windows\System32\TSChannel.dll - ok 18:25:45.0762 5896 [ 506708142BC63DABA64F2D3AD1DCD5BF ] C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 18:25:45.0762 5896 C:\Program Files (x86)\Google\Update\GoogleUpdate.exe - ok 18:25:45.0778 5896 [ D63BEE2A8B22482F7080A8D3F2E1A733 ] C:\Windows\System32\d3d10_1.dll 18:25:45.0778 5896 C:\Windows\System32\d3d10_1.dll - ok 18:25:45.0778 5896 [ 426BA4E737A7988FD1202AF2F2B2F4A6 ] C:\Windows\System32\d3d10_1core.dll 18:25:45.0778 5896 C:\Windows\System32\d3d10_1core.dll - ok 18:25:45.0778 5896 [ F404E59DB6A0F122AB26BF4F3E2FD0FA ] C:\Windows\System32\dxgi.dll 18:25:45.0778 5896 C:\Windows\System32\dxgi.dll - ok 18:25:45.0793 5896 [ AC4C51EB24AA95B77F705AB159189E24 ] C:\Windows\explorer.exe 18:25:45.0793 5896 C:\Windows\explorer.exe - ok 18:25:45.0793 5896 [ F11A57E91FDAECFB41A5CB21EB1EBC8E ] C:\Windows\System32\dssenh.dll 18:25:45.0793 5896 C:\Windows\System32\dssenh.dll - ok 18:25:45.0809 5896 [ 2E5672EEA419A4DC9DACD714632E1DC3 ] C:\Program Files (x86)\Google\Update\1.3.21.135\goopdate.dll 18:25:45.0809 5896 C:\Program Files (x86)\Google\Update\1.3.21.135\goopdate.dll - ok 18:25:45.0809 5896 [ 758430D65989D3F9B44803723C80A136 ] C:\Windows\System32\igd10umd64.dll 18:25:45.0809 5896 C:\Windows\System32\igd10umd64.dll - ok 18:25:45.0809 5896 [ 2FCA0D2C59A855C54BAFA22AA329DF0F ] C:\Windows\SysWOW64\netapi32.dll 18:25:45.0809 5896 C:\Windows\SysWOW64\netapi32.dll - ok 18:25:45.0809 5896 [ 20B3934DB73EABA2B49B7177873CB81F ] C:\Windows\SysWOW64\netutils.dll 18:25:45.0809 5896 C:\Windows\SysWOW64\netutils.dll - ok 18:25:45.0824 5896 [ 5CCDCD40E732D54E0F7451AC66AC1C87 ] C:\Windows\SysWOW64\srvcli.dll 18:25:45.0824 5896 C:\Windows\SysWOW64\srvcli.dll - ok 18:25:45.0824 5896 [ E5A4A1326A02F8E7B59E6C3270CE7202 ] C:\Windows\SysWOW64\wkscli.dll 18:25:45.0824 5896 C:\Windows\SysWOW64\wkscli.dll - ok 18:25:45.0824 5896 [ 352B3DC62A0D259A82A052238425C872 ] C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll 18:25:45.0824 5896 C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll - ok 18:25:45.0840 5896 [ B2DB6ABA2E292235749B80A9C3DFA867 ] C:\Windows\SysWOW64\imagehlp.dll 18:25:45.0840 5896 C:\Windows\SysWOW64\imagehlp.dll - ok 18:25:45.0840 5896 [ EED05D42D91835064703E2318552ED25 ] C:\Windows\System32\ExplorerFrame.dll 18:25:45.0840 5896 C:\Windows\System32\ExplorerFrame.dll - ok 18:25:45.0840 5896 [ 0CE4D3BD306DA6D1F6F233C403F5B667 ] C:\Windows\SysWOW64\msi.dll 18:25:45.0840 5896 C:\Windows\SysWOW64\msi.dll - ok 18:25:45.0856 5896 [ 5877A3341AA7DF58789294CEBA38AE2B ] C:\Users\Jim\AppData\Roaming\Dropbox\bin\DropboxExt64.17.dll 18:25:45.0856 5896 C:\Users\Jim\AppData\Roaming\Dropbox\bin\DropboxExt64.17.dll - ok 18:25:45.0856 5896 [ 49E5753D923F1AC63B22D3DCB0B47E00 ] C:\Windows\System32\uDWM.dll 18:25:45.0856 5896 C:\Windows\System32\uDWM.dll - ok 18:25:45.0856 5896 [ 241AF87821FDA0F5792037B779F49BE0 ] C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc 251\msvcp90.dll 18:25:45.0856 5896 C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc 251\msvcp90.dll - ok 18:25:45.0856 5896 [ D233C7FEAE3FAA25F93A9E6B46815ADC ] C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc 251\msvcr90.dll 18:25:45.0856 5896 C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc 251\msvcr90.dll - ok 18:25:45.0871 5896 [ 465BEA35F7ED4A4A57686DEA7EA10F47 ] C:\Windows\SysWOW64\cscapi.dll 18:25:45.0871 5896 C:\Windows\SysWOW64\cscapi.dll - ok 18:25:45.0871 5896 [ 53223B673A3FA2F9A4D1C31C8D3F6CD8 ] C:\Windows\SysWOW64\dbghelp.dll 18:25:45.0871 5896 C:\Windows\SysWOW64\dbghelp.dll - ok 18:25:45.0871 5896 [ 024352FEEC9042260BB4CFB4D79A206B ] C:\Windows\System32\EhStorShell.dll 18:25:45.0871 5896 C:\Windows\System32\EhStorShell.dll - ok 18:25:45.0887 5896 [ 7BBF670114373CE6A203FA155A9E0D0A ] C:\Windows\System32\ntshrui.dll 18:25:45.0887 5896 C:\Windows\System32\ntshrui.dll - ok 18:25:45.0887 5896 [ 863F793D15B4026B1A5FDECA873D4D84 ] C:\Windows\SysWOW64\apphelp.dll 18:25:45.0887 5896 C:\Windows\SysWOW64\apphelp.dll - ok 18:25:45.0887 5896 [ BECDDA0990DEBD72A30096533521AD73 ] C:\Program Files (x86)\Google\Update\1.3.21.135\GoogleCrashHandler.exe 18:25:45.0887 5896 C:\Program Files (x86)\Google\Update\1.3.21.135\GoogleCrashHandler.exe - ok 18:25:45.0902 5896 [ 1D63F4366288B8A7595397E27010FD44 ] C:\Windows\System32\IconCodecService.dll 18:25:45.0902 5896 C:\Windows\System32\IconCodecService.dll - ok 18:25:45.0902 5896 [ 3977D4A871CA0D4F2ED1E7DB46829731 ] C:\Windows\System32\appinfo.dll 18:25:45.0902 5896 C:\Windows\System32\appinfo.dll - ok 18:25:45.0918 5896 [ B676429E44F2F8ACC3BAE7C89F46B212 ] C:\Program Files (x86)\Google\Update\1.3.21.135\GoogleCrashHandler64.exe 18:25:45.0918 5896 C:\Program Files (x86)\Google\Update\1.3.21.135\GoogleCrashHandler64.exe - ok 18:25:45.0918 5896 [ C5A99A4C0DC9F0F5A95BA0C83D30A549 ] C:\Windows\SysWOW64\mstask.dll 18:25:45.0918 5896 C:\Windows\SysWOW64\mstask.dll - ok 18:25:45.0918 5896 [ 025E7DBDB98866ED3CB2D4DDA70B364D ] C:\Windows\System32\runonce.exe 18:25:45.0918 5896 C:\Windows\System32\runonce.exe - ok 18:25:45.0934 5896 [ D44741F65A1D71F65814A12CF6E2400A ] C:\Windows\SysWOW64\runonce.exe 18:25:45.0934 5896 C:\Windows\SysWOW64\runonce.exe - ok 18:25:45.0934 5896 [ 43964FA89CCF97BA6BE34D69455AC65F ] C:\Windows\SysWOW64\uxtheme.dll 18:25:45.0934 5896 C:\Windows\SysWOW64\uxtheme.dll - ok 18:25:45.0934 5896 [ 12C45E3CB6D65F73209549E2D02ECA7A ] C:\Windows\SysWOW64\propsys.dll 18:25:45.0934 5896 C:\Windows\SysWOW64\propsys.dll - ok 18:25:45.0949 5896 [ F93674263F6B07C77956E966953242D9 ] C:\Windows\SysWOW64\secur32.dll 18:25:45.0949 5896 C:\Windows\SysWOW64\secur32.dll - ok 18:25:45.0949 5896 [ AD7B9C14083B52BC532FBA5948342B98 ] C:\Windows\SysWOW64\cmd.exe 18:25:45.0949 5896 C:\Windows\SysWOW64\cmd.exe - ok 18:25:45.0949 5896 [ 326C7F76A29897A892AA7726E91C1C67 ] C:\Windows\SysWOW64\winbrand.dll 18:25:45.0949 5896 C:\Windows\SysWOW64\winbrand.dll - ok 18:25:45.0965 5896 [ 0E816EA3C5DCE94C95099E8B38E75E67 ] C:\Windows\SysWOW64\ieframe.dll 18:25:45.0965 5896 C:\Windows\SysWOW64\ieframe.dll - ok 18:25:45.0965 5896 [ 8E01332CC4B68BC6B5B7EFFE374442AA ] C:\Windows\SysWOW64\oleacc.dll 18:25:45.0965 5896 C:\Windows\SysWOW64\oleacc.dll - ok 18:25:45.0965 5896 [ BE247AE996A9FDE007A27B51413A6C79 ] C:\Windows\SysWOW64\shdocvw.dll 18:25:45.0965 5896 C:\Windows\SysWOW64\shdocvw.dll - ok 18:25:45.0980 5896 [ 4B78B431F225FD8624C5655CB1DE7B61 ] C:\Windows\System32\aelupsvc.dll 18:25:45.0980 5896 C:\Windows\System32\aelupsvc.dll - ok 18:25:45.0980 5896 [ 178A34E5554DCE485E1262DDF027960C ] C:\Users\Jim\AppData\Local\Temp\688E3D46-8A8C-4727-A706-8469C2B60A5F.exe 18:25:45.0980 5896 C:\Users\Jim\AppData\Local\Temp\688E3D46-8A8C-4727-A706-8469C2B60A5F.exe - ok 18:25:45.0980 5896 [ BF6D6ED5FADCEEE885BD0144ECF1BA27 ] C:\Windows\SysWOW64\ncrypt.dll 18:25:45.0980 5896 C:\Windows\SysWOW64\ncrypt.dll - ok 18:25:45.0996 5896 [ CE71B9119A258EDD0A05B37D7B0F92E3 ] C:\Windows\SysWOW64\bcrypt.dll 18:25:45.0996 5896 C:\Windows\SysWOW64\bcrypt.dll - ok 18:25:45.0996 5896 [ E8449FE262D7406BCB2AC2A45C53EC5F ] C:\Windows\SysWOW64\bcryptprimitives.dll 18:25:45.0996 5896 C:\Windows\SysWOW64\bcryptprimitives.dll - ok 18:25:45.0996 5896 [ 1097F3035BAF46CED8B332B3564C5108 ] C:\Windows\SysWOW64\gpapi.dll 18:25:45.0996 5896 C:\Windows\SysWOW64\gpapi.dll - ok 18:25:45.0996 5896 [ CA79539D3D4C0BA66F0F051A5EE5E923 ] C:\Windows\SysWOW64\cryptnet.dll 18:25:45.0996 5896 C:\Windows\SysWOW64\cryptnet.dll - ok 18:25:46.0012 5896 [ 6F8E3B7B70E1BBA871212940C1FBDF60 ] C:\Windows\SysWOW64\SensApi.dll 18:25:46.0012 5896 C:\Windows\SysWOW64\SensApi.dll - ok 18:25:46.0012 5896 [ FB19FC5951A88F3C523E35C2C98D23C0 ] C:\Windows\SysWOW64\webio.dll 18:25:46.0012 5896 C:\Windows\SysWOW64\webio.dll - ok 18:25:46.0012 5896 [ CA9F7888B524D8100B977C81F44C3234 ] C:\Windows\SysWOW64\winhttp.dll 18:25:46.0012 5896 C:\Windows\SysWOW64\winhttp.dll - ok 18:25:46.0012 5896 [ 4E5FE39C1076D115EC8BFCFE14D75B80 ] C:\Windows\SysWOW64\credssp.dll 18:25:46.0012 5896 C:\Windows\SysWOW64\credssp.dll - ok 18:25:46.0027 5896 [ 29CA5974FAB0E8AE4AA7814FE05CF832 ] C:\Windows\SysWOW64\dhcpcsvc6.dll 18:25:46.0027 5896 C:\Windows\SysWOW64\dhcpcsvc6.dll - ok 18:25:46.0027 5896 [ 73E8667A19FEEDD856DF2695E9E511D4 ] C:\Windows\SysWOW64\wship6.dll 18:25:46.0027 5896 C:\Windows\SysWOW64\wship6.dll - ok 18:25:46.0027 5896 [ 9A85ABCE0FDD1AF8E79E731EB0B679F3 ] C:\Windows\SysWOW64\dhcpcsvc.dll 18:25:46.0027 5896 C:\Windows\SysWOW64\dhcpcsvc.dll - ok 18:25:46.0043 5896 [ 12B79422A23814429CDA9E734C58F78F ] C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL 18:25:46.0043 5896 C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL - ok 18:25:46.0043 5896 [ 40947436A70E0034E41123DF5A0A7702 ] C:\Program Files (x86)\Bonjour\mdnsNSP.dll 18:25:46.0043 5896 C:\Program Files (x86)\Bonjour\mdnsNSP.dll - ok 18:25:46.0043 5896 [ ED6EE83D61EBC683C2CD8E899EA6FEBE ] C:\Windows\SysWOW64\rasadhlp.dll 18:25:46.0043 5896 C:\Windows\SysWOW64\rasadhlp.dll - ok 18:25:46.0043 5896 [ 03A03A453F1AAAE0C73AAAF895321C7A ] C:\Windows\SysWOW64\FWPUCLNT.DLL 18:25:46.0043 5896 C:\Windows\SysWOW64\FWPUCLNT.DLL - ok 18:25:46.0058 5896 [ 39C5F32747B3414D1BB216FDB1DEFC58 ] C:\Windows\SysWOW64\dwmapi.dll 18:25:46.0058 5896 C:\Windows\SysWOW64\dwmapi.dll - ok 18:25:46.0058 5896 [ 1DB71A41DAEE6B3F8CD0DDA8209FA2D5 ] C:\Windows\SysWOW64\WindowsCodecs.dll 18:25:46.0058 5896 C:\Windows\SysWOW64\WindowsCodecs.dll - ok 18:25:46.0058 5896 [ 846D0E4DB261CFAF363902E41498E961 ] C:\Windows\SysWOW64\EhStorShell.dll 18:25:46.0058 5896 C:\Windows\SysWOW64\EhStorShell.dll - ok 18:25:46.0074 5896 [ EB77DB354791A5932CA559B6F6374E95 ] C:\Windows\SysWOW64\ntshrui.dll 18:25:46.0074 5896 C:\Windows\SysWOW64\ntshrui.dll - ok 18:25:46.0074 5896 [ 8B74CEC6980D4816B0037AE9A27E538F ] C:\Windows\SysWOW64\slc.dll 18:25:46.0074 5896 C:\Windows\SysWOW64\slc.dll - ok 18:25:46.0074 5896 [ 827CB0D6C3F8057EA037FF271F8E9795 ] C:\Windows\SysWOW64\imageres.dll 18:25:46.0074 5896 C:\Windows\SysWOW64\imageres.dll - ok 18:25:46.0074 5896 [ C6331D11F80B3AFFD91A9B3858E00F23 ] C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe 18:25:46.0074 5896 C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe - ok 18:25:46.0090 5896 [ 1CE55AE7E57826457FD56EB3C50E4E54 ] C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe 18:25:46.0090 5896 C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe - ok 18:25:46.0090 5896 [ 7717F84F483002815490033BF069DABD ] C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d27359 8668a06b\GdiPlus.dll 18:25:46.0090 5896 C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d27359 8668a06b\GdiPlus.dll - ok 18:25:46.0090 5896 [ 198552AEFECA69D646867EC8D792DE95 ] C:\Windows\SysWOW64\ddraw.dll 18:25:46.0090 5896 C:\Windows\SysWOW64\ddraw.dll - ok 18:25:46.0105 5896 [ 55E5B32AE8D1F51A63C82919656FD275 ] C:\Windows\SysWOW64\dciman32.dll 18:25:46.0105 5896 C:\Windows\SysWOW64\dciman32.dll - ok 18:25:46.0105 5896 [ A94DC60A90EFD7A35C36D971E3EE7470 ] C:\Windows\SysWOW64\MSVCP71.DLL 18:25:46.0105 5896 C:\Windows\SysWOW64\MSVCP71.DLL - ok 18:25:46.0105 5896 [ 6EF5F3F18413C367195F06E503AB86A6 ] C:\Windows\SysWOW64\d3d9.dll 18:25:46.0105 5896 C:\Windows\SysWOW64\d3d9.dll - ok 18:25:46.0121 5896 [ 77B1471A490B53B24EFE136F09F76550 ] C:\Windows\SysWOW64\d3d8thk.dll 18:25:46.0121 5896 C:\Windows\SysWOW64\d3d8thk.dll - ok 18:25:46.0121 5896 [ CA2F560921B7B8BE1CF555A5A18D54C3 ] C:\Windows\SysWOW64\MSVCR71.DLL 18:25:46.0121 5896 C:\Windows\SysWOW64\MSVCR71.DLL - ok 18:25:46.0121 5896 [ 1FD3F9722119BDF7B8CFF0ECD1E84EA6 ] C:\Windows\SysWOW64\mfc71.dll 18:25:46.0121 5896 C:\Windows\SysWOW64\mfc71.dll - ok 18:25:46.0121 5896 [ 539C49CEBB3C50957AC8A09D95ECD880 ] C:\Windows\SysWOW64\shfolder.dll 18:25:46.0121 5896 C:\Windows\SysWOW64\shfolder.dll - ok 18:25:46.0136 5896 [ 601FFAEAF926AFBD72E60EA5C9987371 ] C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMediaLibrary.dll 18:25:46.0136 5896 C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMediaLibrary.dll - ok 18:25:46.0136 5896 [ 6780F366154293210F661A48043CC469 ] C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Helper.dll 18:25:46.0136 5896 C:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Helper.dll - ok 18:25:46.0136 5896 [ 21D3A18769EC2C4E56756D04E989A221 ] C:\Windows\SysWOW64\msxml3.dll 18:25:46.0136 5896 C:\Windows\SysWOW64\msxml3.dll - ok 18:25:46.0152 5896 [ 6DD91526FADED38B0A4A0D35255E9AE5 ] C:\Windows\SysWOW64\igdumdx32.dll 18:25:46.0152 5896 C:\Windows\SysWOW64\igdumdx32.dll - ok 18:25:46.0152 5896 [ 1C004BA458D25B6C4289900D000F5509 ] C:\Windows\SysWOW64\igdumd32.dll 18:25:46.0152 5896 C:\Windows\SysWOW64\igdumd32.dll - ok 18:25:46.0152 5896 [ 08DFDBD2FD4EA951DC46B1C7661ED35A ] C:\Windows\SysWOW64\powrprof.dll 18:25:46.0152 5896 C:\Windows\SysWOW64\powrprof.dll - ok 18:25:46.0152 5896 [ 2424231BBD703A677D115C29983B4293 ] C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL 18:25:46.0152 5896 C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL - ok 18:25:46.0168 5896 [ 7BF5EA753D4CC056B9462A02AC51B160 ] C:\Windows\SysWOW64\xmllite.dll 18:25:46.0168 5896 C:\Windows\SysWOW64\xmllite.dll - ok 18:25:46.0168 5896 [ 5987EA8A82C53359BCD2C29D6588583E ] C:\Windows\SysWOW64\linkinfo.dll 18:25:46.0168 5896 C:\Windows\SysWOW64\linkinfo.dll - ok 18:25:46.0168 5896 [ B9A8CBCFCD3EC9D2EA4740AF347BF108 ] C:\Windows\SysWOW64\mpr.dll 18:25:46.0168 5896 C:\Windows\SysWOW64\mpr.dll - ok 18:25:46.0183 5896 [ D6692338B985D4A0CA52B828314D897D ] C:\Windows\SysWOW64\drprov.dll 18:25:46.0183 5896 C:\Windows\SysWOW64\drprov.dll - ok 18:25:46.0183 5896 [ D7B7159BC8374E87D8C45A30377A3440 ] C:\Windows\SysWOW64\ntlanman.dll 18:25:46.0183 5896 C:\Windows\SysWOW64\ntlanman.dll - ok 18:25:46.0183 5896 [ 284B59D7B56FC76C80E622AB856B1FAB ] C:\Windows\SysWOW64\davclnt.dll 18:25:46.0183 5896 C:\Windows\SysWOW64\davclnt.dll - ok 18:25:46.0199 5896 [ 179BECE8D1A4C488DDB7191FF9BE3FB0 ] C:\Windows\SysWOW64\davhlpr.dll 18:25:46.0199 5896 C:\Windows\SysWOW64\davhlpr.dll - ok 18:25:46.0199 5896 [ 40CAEEE0EAF1B8569F7C8DF6420F2CB9 ] C:\Windows\SysWOW64\sfc.dll 18:25:46.0199 5896 C:\Windows\SysWOW64\sfc.dll - ok 18:25:46.0199 5896 [ 84799328D87B3091A3BDD251E1AD31F9 ] C:\Windows\SysWOW64\sfc_os.dll 18:25:46.0199 5896 C:\Windows\SysWOW64\sfc_os.dll - ok 18:25:46.0199 5896 [ 162D247E995EAEBF3EF4289069E1111C ] C:\Windows\SysWOW64\devrtl.dll 18:25:46.0199 5896 C:\Windows\SysWOW64\devrtl.dll - ok 18:25:46.0214 5896 [ B519848DFA30AE2B306576B51321D102 ] C:\Windows\System32\ie4uinit.exe 18:25:46.0214 5896 C:\Windows\System32\ie4uinit.exe - ok 18:25:46.0214 5896 [ C3E98C42EDF7EF237A4BAB91FEAC7426 ] C:\Windows\System32\iedkcs32.dll 18:25:46.0214 5896 C:\Windows\System32\iedkcs32.dll - ok 18:25:46.0214 5896 [ 1FCB1A72BF5C784F7358E6BEF38E4571 ] C:\Windows\System32\timedate.cpl 18:25:46.0214 5896 C:\Windows\System32\timedate.cpl - ok 18:25:46.0230 5896 [ E6F0F82788E8BD0F7A616350EFA0761C ] C:\Windows\System32\actxprxy.dll 18:25:46.0230 5896 C:\Windows\System32\actxprxy.dll - ok 18:25:46.0230 5896 [ A0A65D306A5490D2EB8E7DE66898ECFD ] C:\Windows\System32\linkinfo.dll 18:25:46.0230 5896 C:\Windows\System32\linkinfo.dll - ok 18:25:46.0230 5896 [ C4F40F6CACD796A8E16671D0E9A2F319 ] C:\Windows\System32\shdocvw.dll 18:25:46.0230 5896 C:\Windows\System32\shdocvw.dll - ok 18:25:46.0246 5896 [ 1EAC1A8CA6874BF5B15E2EFB9A9A7B86 ] C:\Windows\System32\msftedit.dll 18:25:46.0246 5896 C:\Windows\System32\msftedit.dll - ok 18:25:46.0246 5896 [ 7FCAB194F01E3403C300EB034E480B36 ] C:\Windows\System32\msls31.dll 18:25:46.0246 5896 C:\Windows\System32\msls31.dll - ok 18:25:46.0246 5896 [ 3504B34CD2DE00BA3CC1A195F1B739BD ] C:\Windows\System32\gameux.dll 18:25:46.0246 5896 C:\Windows\System32\gameux.dll - ok 18:25:46.0246 5896 [ 118E20C5268C1E9480C13C8F69305C2F ] C:\Windows\System32\hccutils.dll 18:25:46.0246 5896 C:\Windows\System32\hccutils.dll - ok 18:25:46.0261 5896 [ 90912DB3D10DA53CAB6C9350088C8B08 ] C:\Windows\System32\igfxtray.exe 18:25:46.0261 5896 C:\Windows\System32\igfxtray.exe - ok 18:25:46.0261 5896 [ 4C2C4640BF23AAFCF90519E0F34436CE ] C:\Windows\System32\DeviceCenter.dll 18:25:46.0261 5896 C:\Windows\System32\DeviceCenter.dll - ok 18:25:46.0261 5896 [ 3389D6DD0A3B23012911681F7862B1AA ] C:\Windows\System32\hkcmd.exe 18:25:46.0261 5896 C:\Windows\System32\hkcmd.exe - ok 18:25:46.0277 5896 [ 24F4B480F335A6C724AF352253C5D98B ] C:\Windows\System32\thumbcache.dll 18:25:46.0277 5896 C:\Windows\System32\thumbcache.dll - ok 18:25:46.0277 5896 [ D94E68E9A7F1CA463BE909C504EB3D7C ] C:\Windows\System32\igfxpers.exe 18:25:46.0277 5896 C:\Windows\System32\igfxpers.exe - ok 18:25:46.0277 5896 [ 405F4D32D2185F1F1BD753D8EEAFFB3A ] C:\Windows\System32\networkexplorer.dll 18:25:46.0277 5896 C:\Windows\System32\networkexplorer.dll - ok 18:25:46.0277 5896 [ 6A16BCE3C09496650BE881C467611653 ] C:\Windows\System32\msi.dll 18:25:46.0277 5896 C:\Windows\System32\msi.dll - ok 18:25:46.0292 5896 [ 69754747274B76E7FAF287239333D7E6 ] C:\Windows\System32\msiltcfg.dll 18:25:46.0292 5896 C:\Windows\System32\msiltcfg.dll - ok 18:25:46.0292 5896 [ DDAF5338F858FDBE61193CE3928A6E43 ] C:\Windows\System32\igfxsrvc.exe 18:25:46.0292 5896 C:\Windows\System32\igfxsrvc.exe - ok 18:25:46.0292 5896 [ B06163CF2DD35BC577267C056D236CAF ] C:\Windows\System32\igfxdev.dll 18:25:46.0292 5896 C:\Windows\System32\igfxdev.dll - ok 18:25:46.0292 5896 [ 6A5C737914BC242CD442D35494D47CD5 ] C:\Windows\System32\igfxsrvc.dll 18:25:46.0292 5896 C:\Windows\System32\igfxsrvc.dll - ok 18:25:46.0308 5896 [ 5F45D87B172CFCA862B7F1BED641F263 ] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe 18:25:46.0308 5896 C:\Program Files\Synaptics\SynTP\SynTPEnh.exe - ok 18:25:46.0308 5896 [ 59E58A7A5388E00BB4347AEBBDCC84FE ] C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe 18:25:46.0308 5896 C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe - ok 18:25:46.0308 5896 [ 0F22DA454AE3249AF6236098EDBA0AD9 ] C:\Program Files\IDT\WDM\sttray64.exe 18:25:46.0308 5896 C:\Program Files\IDT\WDM\sttray64.exe - ok 18:25:46.0324 5896 [ B8C6C969561169EEDC20969671D332DE ] C:\Windows\System32\igfxrenu.lrc 18:25:46.0324 5896 C:\Windows\System32\igfxrenu.lrc - ok 18:25:46.0324 5896 [ 42267639EFE63AD845F9371D05648D15 ] C:\Program Files\IDT\WDM\stlang64.dll 18:25:46.0324 5896 C:\Program Files\IDT\WDM\stlang64.dll - ok 18:25:46.0339 5896 [ 95F8353F1408F3E637A4CE5E976F1798 ] C:\Windows\System32\d2d1.dll 18:25:46.0339 5896 C:\Windows\System32\d2d1.dll - ok 18:25:46.0339 5896 [ 7426279D625196393EABBEFE1C60A0C2 ] C:\Windows\System32\DWrite.dll 18:25:46.0339 5896 C:\Windows\System32\DWrite.dll - ok 18:25:46.0339 5896 [ E7D38DBCFA8D80C1C05FBE1AACD3FFCC ] C:\Windows\System32\SynCOM.dll 18:25:46.0339 5896 C:\Windows\System32\SynCOM.dll - ok 18:25:46.0339 5896 [ 35126DDDE8241C4C4A5F15F6CDDF4434 ] C:\Windows\System32\ieframe.dll 18:25:46.0339 5896 C:\Windows\System32\ieframe.dll - ok 18:25:46.0355 5896 [ 2F407AA24101E4678B110A1FFA13F587 ] C:\Program Files\Java\jre6\bin\jusched.exe 18:25:46.0355 5896 C:\Program Files\Java\jre6\bin\jusched.exe - ok 18:25:46.0355 5896 [ 41F2A2F9EDFC2F0A2C99FD4A39E9F7CF ] C:\Windows\System32\SynTPAPI.dll 18:25:46.0355 5896 C:\Windows\System32\SynTPAPI.dll - ok 18:25:46.0355 5896 [ FB49361D2DC193507A370E913583375D ] C:\Windows\System32\igfxress.dll 18:25:46.0355 5896 C:\Windows\System32\igfxress.dll - ok 18:25:46.0370 5896 [ EE81A6A3D0498E9A3D7DC4675B9D6A65 ] C:\Program Files\Trend Micro\Titanium\UIFramework\uiWinMgr.exe 18:25:46.0370 5896 C:\Program Files\Trend Micro\Titanium\UIFramework\uiWinMgr.exe - ok 18:25:46.0370 5896 [ B15DFB916F0D7AFEA5802A014E0A3715 ] C:\Program Files\Synaptics\SynTP\SynTPHelper.exe 18:25:46.0370 5896 C:\Program Files\Synaptics\SynTP\SynTPHelper.exe - ok 18:25:46.0370 5896 [ 4CE1C9F944C5EC5B6B7F0C833A273DEA ] C:\Program Files\Trend Micro\Titanium\UIFramework\utilDebugLog.dll 18:25:46.0370 5896 C:\Program Files\Trend Micro\Titanium\UIFramework\utilDebugLog.dll - ok 18:25:46.0386 5896 [ 7BDA9423415F7612454B91DF4FA11576 ] C:\Program Files\Trend Micro\Titanium\UIFramework\boost_thread-vc80-mt-1_36.dll 18:25:46.0386 5896 C:\Program Files\Trend Micro\Titanium\UIFramework\boost_thread-vc80-mt-1_36.dll - ok 18:25:46.0386 5896 [ 0B5511674394666E9D221F8681B2C2E6 ] C:\Windows\System32\consent.exe 18:25:46.0386 5896 C:\Windows\System32\consent.exe - ok 18:25:46.0386 5896 [ 50EE778BF4C4EE52CF1FB49E268710CD ] C:\Program Files\Trend Micro\Titanium\UIFramework\boost_date_time-vc80-mt-1_36.dll 18:25:46.0386 5896 C:\Program Files\Trend Micro\Titanium\UIFramework\boost_date_time-vc80-mt-1_36.dll - ok 18:25:46.0386 5896 [ E424B3EF666B184CEE0B6871AAA8C9F6 ] C:\Windows\System32\msimg32.dll 18:25:46.0386 5896 C:\Windows\System32\msimg32.dll - ok 18:25:46.0402 5896 [ D4E2C2D539093F8BEE3E045B8CF4CD0A ] C:\Program Files\Trend Micro\Titanium\UIFramework\libcef.dll 18:25:46.0402 5896 C:\Program Files\Trend Micro\Titanium\UIFramework\libcef.dll - ok 18:25:46.0402 5896 [ 26B1ABDF2C7EE7DEFBA311EC5CC747E9 ] C:\Program Files\Trend Micro\UniClient\UiFrmwrk\uiSeAgnt.exe 18:25:46.0402 5896 C:\Program Files\Trend Micro\UniClient\UiFrmwrk\uiSeAgnt.exe - ok 18:25:46.0402 5896 [ E02E715FA2BC8D88FF9362374E309D76 ] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe 18:25:46.0402 5896 C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe - ok 18:25:46.0402 5896 [ A077C15186B2378457A030143F01ACD0 ] C:\Program Files\Trend Micro\AMSP\utilJsonHandle.dll 18:25:46.0402 5896 C:\Program Files\Trend Micro\AMSP\utilJsonHandle.dll - ok 18:25:46.0417 5896 [ E3BF29CED96790CDAAFA981FFDDF53A3 ] C:\Program Files\Windows Sidebar\sidebar.exe 18:25:46.0417 5896 C:\Program Files\Windows Sidebar\sidebar.exe - ok 18:25:46.0417 5896 [ B1FDCFFF7609E121C10751A669AB1611 ] C:\Windows\winsxs\amd64_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_8448b2bd328df 189\mfc80u.dll 18:25:46.0417 5896 C:\Windows\winsxs\amd64_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_8448b2bd328df 189\mfc80u.dll - ok 18:25:46.0417 5896 [ F023A14FE899F5401935CAC119A723CE ] C:\Users\Jim\AppData\Local\Akamai\netsession_win.exe 18:25:46.0417 5896 C:\Users\Jim\AppData\Local\Akamai\netsession_win.exe - ok 18:25:46.0433 5896 [ 6C12BD722FFC94584348DD34F4059FC5 ] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe 18:25:46.0433 5896 C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe - ok 18:25:46.0433 5896 [ 2C5BA148BA7936D9BB6BB1F4945BA469 ] C:\Users\Jim\AppData\Roaming\Dropbox\bin\Dropbox.exe 18:25:46.0433 5896 C:\Users\Jim\AppData\Roaming\Dropbox\bin\Dropbox.exe - ok 18:25:46.0433 5896 [ 14DEB733ACB08A71CC0783ED02FF1F8D ] C:\Windows\System32\mshtml.dll 18:25:46.0433 5896 C:\Windows\System32\mshtml.dll - ok 18:25:46.0433 5896 [ 487F44B08EFEAF5AD087878357B9403D ] C:\Windows\SysWOW64\pdh.dll 18:25:46.0433 5896 C:\Windows\SysWOW64\pdh.dll - ok 18:25:46.0448 5896 [ 4EFCDF3DB1BBA69C09622991280C4ACB ] C:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe 18:25:46.0448 5896 C:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe - ok 18:25:46.0448 5896 [ 019D774B725DCFD9A188F07764A32214 ] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe 18:25:46.0448 5896 C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe - ok 18:25:46.0464 5896 [ AA89A847B99A8DAB8802DE367935238B ] C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe 18:25:46.0464 5896 C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe - ok 18:25:46.0464 5896 [ 5516C26A6AF8EB4E2CAB48EC98A74398 ] C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe 18:25:46.0464 5896 C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe - ok 18:25:46.0464 5896 [ DA4ED31DD43ABB0AF99888E236FFDB91 ] C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe 18:25:46.0464 5896 C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe - ok 18:25:46.0480 5896 [ A08C010D859F8EB42BDD7E1D55B8CA27 ] C:\Windows\System32\mscoree.dll 18:25:46.0480 5896 C:\Windows\System32\mscoree.dll - ok 18:25:46.0480 5896 [ 63DF770DF74ACB370EF5A16727069AAF ] C:\Windows\SysWOW64\hid.dll 18:25:46.0480 5896 C:\Windows\SysWOW64\hid.dll - ok 18:25:46.0480 5896 [ FE875F44CEB44161F1D7F781393C53AB ] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBSERVICE.dll 18:25:46.0480 5896 C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBSERVICE.dll - ok 18:25:46.0495 5896 [ 205D43DD91BCD857BCA16FF16EF6DE20 ] C:\Program Files\Trend Micro\AMSP\outer_AMSP_ClientLibrary.dll 18:25:46.0495 5896 C:\Program Files\Trend Micro\AMSP\outer_AMSP_ClientLibrary.dll - ok 18:25:46.0495 5896 [ 717484C33B2993DEC02A3DEB44E74534 ] C:\Program Files\Trend Micro\AMSP\utilIPC.dll 18:25:46.0495 5896 C:\Program Files\Trend Micro\AMSP\utilIPC.dll - ok 18:25:46.0495 5896 [ 9E4B0E7472B4CEBA9E17F440B8CB0AB8 ] C:\Windows\SysWOW64\winspool.drv 18:25:46.0495 5896 C:\Windows\SysWOW64\winspool.drv - ok 18:25:46.0511 5896 [ 559BCDFE4F46B4AD2CAC0528A9BCB7AA ] C:\Program Files\Trend Micro\AMSP\utilRPC.dll 18:25:46.0511 5896 C:\Program Files\Trend Micro\AMSP\utilRPC.dll - ok 18:25:46.0511 5896 [ D71698E1AED284DB38F4D75941E65B47 ] C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTBoardService.exe 18:25:46.0511 5896 C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTBoardService.exe - ok 18:25:46.0511 5896 [ 02CD5B2C3B017122CAC00BDB520CD7AC ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorwks.dll 18:25:46.0511 5896 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorwks.dll - ok 18:25:46.0526 5896 [ 8EA53101FF2B15BDFF934B62A8FB326D ] C:\Windows\SysWOW64\logoncli.dll 18:25:46.0526 5896 C:\Windows\SysWOW64\logoncli.dll - ok 18:25:46.0526 5896 [ E3E811471DE781900FF21C1FD84E941E ] C:\Windows\SysWOW64\ntdsapi.dll 18:25:46.0526 5896 C:\Windows\SysWOW64\ntdsapi.dll - ok 18:25:46.0526 5896 [ 4F6E72B34ED3DC53DCC5E8708E60B61F ] C:\Windows\SysWOW64\security.dll 18:25:46.0526 5896 C:\Windows\SysWOW64\security.dll - ok 18:25:46.0526 5896 [ 181F69BC9C406B7FB5C0ADE8031630AC ] C:\Windows\SysWOW64\wpdshext.dll 18:25:46.0526 5896 C:\Windows\SysWOW64\wpdshext.dll - ok 18:25:46.0542 5896 [ 9AB3620C0A97366E1565967BD78BF64C ] C:\Program Files (x86)\Common Files\LightScribe\QtCore4.dll 18:25:46.0542 5896 C:\Program Files (x86)\Common Files\LightScribe\QtCore4.dll - ok 18:25:46.0542 5896 [ 6693F4D635561B765AC40CE754187AA8 ] C:\Program Files\Trend Micro\AMSP\utilAccessControl.dll 18:25:46.0542 5896 C:\Program Files\Trend Micro\AMSP\utilAccessControl.dll - ok 18:25:46.0558 5896 [ D1DE1EAFDE97BE41CF6585027FF3E732 ] C:\Windows\SysWOW64\comdlg32.dll 18:25:46.0558 5896 C:\Windows\SysWOW64\comdlg32.dll - ok 18:25:46.0558 5896 [ B4447F606BB19FD8AD0BAFB59B90F5D9 ] C:\Windows\System32\FntCache.dll 18:25:46.0558 5896 C:\Windows\System32\FntCache.dll - ok 18:25:46.0558 5896 [ 442235AC4F20B195F932990CAE47408E ] C:\Windows\winsxs\amd64_microsoft.vc80.mfcloc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_bc20f59b0b dd1acd\mfc80ENU.dll 18:25:46.0558 5896 C:\Windows\winsxs\amd64_microsoft.vc80.mfcloc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_bc20f59b0b dd1acd\mfc80ENU.dll - ok 18:25:46.0573 5896 [ 18AB2E5A40064ED5F7791AC5946A90F3 ] C:\Windows\SysWOW64\msimg32.dll 18:25:46.0573 5896 C:\Windows\SysWOW64\msimg32.dll - ok 18:25:46.0573 5896 [ 7DA4F72284D2C927927DFC0E12AFAB85 ] C:\Program Files (x86)\Common Files\LightScribe\QtGui4.dll 18:25:46.0573 5896 C:\Program Files (x86)\Common Files\LightScribe\QtGui4.dll - ok 18:25:46.0573 5896 [ 4C1E16B9A53102C8D6FBA587CBCB95DE ] C:\Windows\SysWOW64\msv1_0.dll 18:25:46.0573 5896 C:\Windows\SysWOW64\msv1_0.dll - ok 18:25:46.0589 5896 [ C3761661C17C2248A9379A8FB89E3DE1 ] C:\Windows\System32\stobject.dll 18:25:46.0589 5896 C:\Windows\System32\stobject.dll - ok 18:25:46.0589 5896 [ CE73DA166252C7C45097757F2E52133F ] C:\Program Files\Trend Micro\AMSP\instInstallationLibrary.dll 18:25:46.0589 5896 C:\Program Files\Trend Micro\AMSP\instInstallationLibrary.dll - ok 18:25:46.0589 5896 [ 1128637CAD49A8E3C8B5FA5D0A061525 ] C:\Windows\SysWOW64\cryptdll.dll 18:25:46.0589 5896 C:\Windows\SysWOW64\cryptdll.dll - ok 18:25:46.0604 5896 [ D1BBE227367ED791D5FCF08E132D2956 ] C:\Windows\SysWOW64\opengl32.dll 18:25:46.0604 5896 C:\Windows\SysWOW64\opengl32.dll - ok 18:25:46.0604 5896 [ F832EEEA97CDDA1AF577E721F652A0D1 ] C:\Windows\System32\batmeter.dll 18:25:46.0604 5896 C:\Windows\System32\batmeter.dll - ok 18:25:46.0604 5896 [ B3CE0951E3C1EA3C733573C472EE85F9 ] C:\Windows\System32\msimtf.dll 18:25:46.0604 5896 C:\Windows\System32\msimtf.dll - ok 18:25:46.0604 5896 [ 94430B72358F84238C674090AEAE268C ] C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTSNMPAgent.exe 18:25:46.0604 5896 C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTSNMPAgent.exe - ok 18:25:46.0620 5896 [ BA2655001D1F017EDFD9132D5C07E941 ] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\hiddata.exe 18:25:46.0620 5896 C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\hiddata.exe - ok 18:25:46.0620 5896 [ E36112A8A6C7F840169A7E92C12F4203 ] C:\Windows\System32\wsock32.dll 18:25:46.0620 5896 C:\Windows\System32\wsock32.dll - ok 18:25:46.0620 5896 [ 532F7A411E073CFC5C2876B7E701CF2E ] C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SBSDK.dll 18:25:46.0620 5896 C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SBSDK.dll - ok 18:25:46.0636 5896 [ 85E24DF0519664D1E83DAA2B641855DD ] C:\Program Files\Trend Micro\UniClient\UiFrmwrk\utilUIProfile.dll 18:25:46.0636 5896 C:\Program Files\Trend Micro\UniClient\UiFrmwrk\utilUIProfile.dll - ok 18:25:46.0636 5896 [ 42CDFB2273EEC623B903C311B19FB484 ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe 18:25:46.0636 5896 C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe - ok 18:25:46.0636 5896 [ 0AEE5668EB59912F32FF245BFA72465F ] C:\Program Files (x86)\QuickTime\QTTask.exe 18:25:46.0636 5896 C:\Program Files (x86)\QuickTime\QTTask.exe - ok 18:25:46.0636 5896 [ 823A40F9A790AC89E690ABFD7D93EB72 ] C:\Windows\System32\GfxUI.exe 18:25:46.0636 5896 C:\Windows\System32\GfxUI.exe - ok 18:25:46.0651 5896 [ 21C0D7CF8FF91A6ED206CD327FA1CE4B ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\MobileMeNotification.dll 18:25:46.0651 5896 C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\MobileMeNotification.dll - ok 18:25:46.0651 5896 [ F3500B8809AC8642AF9C51B80B1C946C ] C:\Windows\System32\jscript9.dll 18:25:46.0651 5896 C:\Windows\System32\jscript9.dll - ok 18:25:46.0651 5896 [ 862596399AAFD2A21DB2AF9270CD4F70 ] C:\Windows\System32\mstask.dll 18:25:46.0651 5896 C:\Windows\System32\mstask.dll - ok 18:25:46.0667 5896 [ DE3897365B04C4DA1CF8FF725577C082 ] C:\Windows\SysWOW64\glu32.dll 18:25:46.0667 5896 C:\Windows\SysWOW64\glu32.dll - ok 18:25:46.0667 5896 [ 4C39358EBDD2FFCD9132A30E1EC31E16 ] C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb5 7\msvcp90.dll 18:25:46.0667 5896 C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb5 7\msvcp90.dll - ok 18:25:46.0667 5896 [ 6E3245DF783E58375B3465F03274743E ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe 18:25:46.0667 5896 C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe - ok 18:25:46.0682 5896 [ E2C48CD0132D4D1DC7D0DF9A6BEF686A ] C:\Windows\winsxs\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8 f\mfc80u.dll 18:25:46.0682 5896 C:\Windows\winsxs\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8 f\mfc80u.dll - ok 18:25:46.0682 5896 [ E5EB1B688D25CBBC5E868D88DF35C52C ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\XMPP.dll 18:25:46.0682 5896 C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\XMPP.dll - ok 18:25:46.0682 5896 [ 96F8E8118661EC51D47719F037EBFD12 ] C:\Program Files\Trend Micro\Titanium\UIFramework\utilJsonHandle.dll 18:25:46.0682 5896 C:\Program Files\Trend Micro\Titanium\UIFramework\utilJsonHandle.dll - ok 18:25:46.0698 5896 [ 35AC4B63CBB9FB6B4472913E9948B517 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe 18:25:46.0698 5896 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe - ok 18:25:46.0698 5896 [ 5B76AB411D8F896B4A5A1830D6AFEEC1 ] C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\BugslayerUtil.dll 18:25:46.0698 5896 C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\BugslayerUtil.dll - ok 18:25:46.0714 5896 [ 32A9EE3F2E419AE55C096DD9399AD044 ] C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\QtCore4.dll 18:25:46.0714 5896 C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\QtCore4.dll - ok 18:25:46.0714 5896 [ 42A9CB6906D9A8BEDC83B57163E62924 ] C:\Windows\System32\DXP.dll 18:25:46.0714 5896 C:\Windows\System32\DXP.dll - ok 18:25:46.0714 5896 [ ABB1B50F36CCBEF119FBEF8FDF14AD61 ] C:\Program Files\SUPERAntiSpyware\SASCTXMN64.DLL 18:25:46.0714 5896 C:\Program Files\SUPERAntiSpyware\SASCTXMN64.DLL - ok 18:25:46.0729 5896 [ 4275701172E647D59623D42734E132AF ] C:\Program Files\Trend Micro\Titanium\UIFramework\outer_AMSP_ClientLibrary.dll 18:25:46.0729 5896 C:\Program Files\Trend Micro\Titanium\UIFramework\outer_AMSP_ClientLibrary.dll - ok 18:25:46.0729 5896 [ BDAC1AA64495D0F7E1FF810EBBF1F018 ] C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_ec83dffa859149af\comctl32.dll 18:25:46.0729 5896 C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_ec83dffa859149af\comctl32.dll - ok 18:25:46.0729 5896 [ 89E3317708F167AE4BAE0000842C8CE7 ] C:\Windows\System32\UIHub.dll 18:25:46.0729 5896 C:\Windows\System32\UIHub.dll - ok 18:25:46.0745 5896 [ 2C1BB3AD51826AA96C9802CBC123814F ] C:\Windows\assembly\NativeImages_v2.0.50727_64\mscorlib\51a23687fdafc32b697f5a719e364651\mscorlib.ni.dll 18:25:46.0745 5896 C:\Windows\assembly\NativeImages_v2.0.50727_64\mscorlib\51a23687fdafc32b697f5a719e364651\mscorlib.ni.dll - ok 18:25:46.0745 5896 [ 73ADC4709ACBFE8C3C106DC794C8651E ] C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\ZipArchive.dll 18:25:46.0745 5896 C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\ZipArchive.dll - ok 18:25:46.0745 5896 [ ADE6A6FEBF1FC2B7080636B9051582EA ] C:\Program Files\Trend Micro\Titanium\UIFramework\utilMsgBuffer.dll 18:25:46.0745 5896 C:\Program Files\Trend Micro\Titanium\UIFramework\utilMsgBuffer.dll - ok 18:25:46.0760 5896 [ ACE195303472D15FA4B6BEE30F319657 ] C:\Program Files\Trend Micro\Titanium\UIFramework\utilIPC.dll 18:25:46.0760 5896 C:\Program Files\Trend Micro\Titanium\UIFramework\utilIPC.dll - ok 18:25:46.0760 5896 [ D9D79F547AE2A70C650DFCFC27AEC0F7 ] C:\Program Files (x86)\iTunes\iTunesHelper.exe 18:25:46.0760 5896 C:\Program Files (x86)\iTunes\iTunesHelper.exe - ok 18:25:46.0760 5896 [ 10685A9A922E971B2B4D811A374A01E1 ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncPref.resources\en.lproj\AppleSyncPrefLocalized.dll 18:25:46.0760 5896 C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncPref.resources\en.lproj\AppleSyncPrefLocalized.dll - ok 18:25:46.0760 5896 [ E2CC3130FFDA0644AC918851A78B090F ] C:\Program Files\Trend Micro\AMSP\coreConfigRepository.dll 18:25:46.0760 5896 C:\Program Files\Trend Micro\AMSP\coreConfigRepository.dll - ok 18:25:46.0776 5896 [ D02F845EF350910B3424AD15BBB68E83 ] C:\Program Files (x86)\Common Files\LightScribe\plugins\imageformats\qjpeg4.dll 18:25:46.0776 5896 C:\Program Files (x86)\Common Files\LightScribe\plugins\imageformats\qjpeg4.dll - ok 18:25:46.0776 5896 [ 08875F073FD0AA75BD81EFC6AA955F20 ] C:\Program Files\Trend Micro\Titanium\UIFramework\utilThread.dll 18:25:46.0776 5896 C:\Program Files\Trend Micro\Titanium\UIFramework\utilThread.dll - ok 18:25:46.0776 5896 [ 2D2A6EC8EAD30EC3ACE2FD6FB1B3E122 ] C:\Windows\System32\prnfldr.dll 18:25:46.0776 5896 C:\Windows\System32\prnfldr.dll - ok 18:25:46.0792 5896 [ 794B73472A43C9E18DE264340096D58C ] C:\Program Files\Trend Micro\Titanium\UIFramework\utilRPC.dll 18:25:46.0792 5896 C:\Program Files\Trend Micro\Titanium\UIFramework\utilRPC.dll - ok 18:25:46.0792 5896 [ FB355B817AE641BBAE08607E58CB5CE2 ] C:\Windows\System32\hhctrl.ocx 18:25:46.0792 5896 C:\Windows\System32\hhctrl.ocx - ok 18:25:46.0792 5896 [ FE821F6FA60E9DF9FDEE69A23488BBAB ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe 18:25:46.0792 5896 C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe - ok 18:25:46.0807 5896 [ F146E2BA475893DD77B2370DC1211FC6 ] C:\Windows\System32\drivers\59017701.sys 18:25:46.0807 5896 C:\Windows\System32\drivers\59017701.sys - ok 18:25:46.0807 5896 [ C6AF064CE23D822C397C771CD4985BC5 ] C:\Program Files (x86)\Common Files\LightScribe\LSCAPI.dll 18:25:46.0807 5896 C:\Program Files (x86)\Common Files\LightScribe\LSCAPI.dll - ok 18:25:46.0807 5896 [ F9909B83C000A953F21B2358494C0E19 ] C:\Program Files\Trend Micro\Titanium\UIFramework\utilAccessControl.dll 18:25:46.0807 5896 C:\Program Files\Trend Micro\Titanium\UIFramework\utilAccessControl.dll - ok 18:25:46.0823 5896 [ FDF273A845F1FFCCEADF363AAF47582F ] C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe 18:25:46.0823 5896 C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe - ok 18:25:46.0823 5896 [ 57BBB3DB2D8D1949D11964FCE332D7CD ] C:\Program Files\Trend Micro\Titanium\UIFramework\utilInstallation.dll 18:25:46.0823 5896 C:\Program Files\Trend Micro\Titanium\UIFramework\utilInstallation.dll - ok 18:25:46.0838 5896 [ 14EB5FDBD22D406F606030F2446F100A ] C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\QtGui4.dll 18:25:46.0838 5896 C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\QtGui4.dll - ok 18:25:46.0838 5896 [ CA6ADE4F7761BB15B3325356DC3B82BB ] C:\Windows\winsxs\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_4bf7e3e2bf9ada4 c\mfc90u.dll 18:25:46.0838 5896 C:\Windows\winsxs\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_4bf7e3e2bf9ada4 c\mfc90u.dll - ok 18:25:46.0838 5896 [ C2F5DFC47BCA388DFAB8236FE1B38A98 ] C:\Program Files\Trend Micro\Titanium\UIFramework\utilComponentInfo.dll 18:25:46.0838 5896 C:\Program Files\Trend Micro\Titanium\UIFramework\utilComponentInfo.dll - ok 18:25:46.0854 5896 [ F6FD82845D9A0D3DE9294CB8743FB1FE ] C:\Program Files\Trend Micro\Titanium\UIFramework\utilGenericLoader.dll 18:25:46.0854 5896 C:\Program Files\Trend Micro\Titanium\UIFramework\utilGenericLoader.dll - ok 18:25:46.0854 5896 [ 2BC7C9FD0A9F2C9AFC373F3AD1EE3891 ] C:\Windows\System32\Syncreg.dll 18:25:46.0854 5896 C:\Windows\System32\Syncreg.dll - ok 18:25:46.0854 5896 [ C836175870E00ACC546066632E15BD10 ] C:\Windows\ehome\ehSSO.dll 18:25:46.0854 5896 C:\Windows\ehome\ehSSO.dll - ok 18:25:46.0870 5896 [ 6BB0E6585650F54EFFC51F3E7A9C95F8 ] C:\Program Files\Trend Micro\AMSP\module\1\1.5.1381\coreFrameworkBuilder.dll 18:25:46.0870 5896 C:\Program Files\Trend Micro\AMSP\module\1\1.5.1381\coreFrameworkBuilder.dll - ok 18:25:46.0870 5896 [ E7368F0A8D19445EAF5C5D0DBB8B8DAB ] C:\Windows\System32\AltTab.dll 18:25:46.0870 5896 C:\Windows\System32\AltTab.dll - ok 18:25:46.0870 5896 [ E2CC3130FFDA0644AC918851A78B090F ] C:\Program Files\Trend Micro\AMSP\module\5\1.5.1381\coreConfigRepository.dll 18:25:46.0870 5896 C:\Program Files\Trend Micro\AMSP\module\5\1.5.1381\coreConfigRepository.dll - ok 18:25:46.0870 5896 [ 10F815BE90A66AAFC6C713D1BD626064 ] C:\Windows\System32\pnidui.dll 18:25:46.0870 5896 C:\Windows\System32\pnidui.dll - ok 18:25:46.0885 5896 [ BCF6769867388B5A47BC742F92290946 ] C:\Program Files\Trend Micro\AMSP\module\7\1.5.1381\coreUpdateManager.dll 18:25:46.0885 5896 C:\Program Files\Trend Micro\AMSP\module\7\1.5.1381\coreUpdateManager.dll - ok 18:25:46.0885 5896 [ B9F0A4020AA98B7A20287BF7FE99A1FD ] C:\Windows\System32\QUTIL.DLL 18:25:46.0885 5896 C:\Windows\System32\QUTIL.DLL - ok 18:25:46.0885 5896 [ 0B79A2CCC38B18AD273ABE92EBE431D6 ] C:\Program Files\Trend Micro\AMSP\module\10\1.5.1516\coreActionManager.dll 18:25:46.0885 5896 C:\Program Files\Trend Micro\AMSP\module\10\1.5.1516\coreActionManager.dll - ok 18:25:46.0901 5896 [ 0778510D9BC4237BA529A86937039153 ] C:\Program Files\Trend Micro\AMSP\module\11\1.5.1516\coreScanManager.dll 18:25:46.0901 5896 C:\Program Files\Trend Micro\AMSP\module\11\1.5.1516\coreScanManager.dll - ok 18:25:46.0901 5896 [ A0AFF18FADF319DEA5111726CC6925F3 ] C:\Program Files\Trend Micro\AMSP\module\2\1.5.1516\coreCommandManager.dll 18:25:46.0901 5896 C:\Program Files\Trend Micro\AMSP\module\2\1.5.1516\coreCommandManager.dll - ok 18:25:46.0901 5896 [ F3701EEE801C2EE7CFC4DC4743ABAA2D ] C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\QtNetwork4.dll 18:25:46.0901 5896 C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\QtNetwork4.dll - ok 18:25:46.0901 5896 [ 4E1955B1A6B41A34FCD43C66413E2D59 ] C:\Program Files\Trend Micro\AMSP\module\3\1.5.1516\coreEventManager.dll 18:25:46.0901 5896 C:\Program Files\Trend Micro\AMSP\module\3\1.5.1516\coreEventManager.dll - ok 18:25:46.0916 5896 [ C8FDF0FA9E97E2FAAF3F814716AAA881 ] C:\Windows\System32\WPDShServiceObj.dll 18:25:46.0916 5896 C:\Windows\System32\WPDShServiceObj.dll - ok 18:25:46.0916 5896 [ 073866FC3EF99A08992554696633A574 ] C:\Program Files\Trend Micro\AMSP\module\4\1.5.1516\coreTaskManager.dll 18:25:46.0916 5896 C:\Program Files\Trend Micro\AMSP\module\4\1.5.1516\coreTaskManager.dll - ok 18:25:46.0916 5896 [ D7F4A834CB6D7D896244C9412CC2F2B6 ] C:\Program Files\Trend Micro\AMSP\module\6\1.5.1516\coreReportManager.dll 18:25:46.0916 5896 C:\Program Files\Trend Micro\AMSP\module\6\1.5.1516\coreReportManager.dll - ok 18:25:46.0932 5896 [ 4F3CD1C59EA71401E155C432BCECE180 ] C:\Windows\System32\PortableDeviceTypes.dll 18:25:46.0932 5896 C:\Windows\System32\PortableDeviceTypes.dll - ok 18:25:46.0932 5896 [ F7A256EC899C72B4ECDD2C02CB592EFD ] C:\Windows\System32\bthprops.cpl 18:25:46.0932 5896 C:\Windows\System32\bthprops.cpl - ok 18:25:46.0932 5896 [ 8CD1DEE212E52B9C22E66DBA44991D32 ] C:\Windows\SysWOW64\httpapi.dll 18:25:46.0932 5896 C:\Windows\SysWOW64\httpapi.dll - ok 18:25:46.0932 5896 [ 3994F422872BAECF9F7DAC9017F31BFF ] C:\Program Files\Trend Micro\AMSP\module\1000001\1.5.1381\paCoreProductAdaptor.dll 18:25:46.0932 5896 C:\Program Files\Trend Micro\AMSP\module\1000001\1.5.1381\paCoreProductAdaptor.dll - ok 18:25:46.0948 5896 [ 8A6B867FC26B9850D446D2D86E5DB071 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon_main.dll 18:25:46.0948 5896 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon_main.dll - ok 18:25:46.0948 5896 [ B64F80B64EE7DE4FB68A0FEDA192EE52 ] C:\Program Files (x86)\iTunes\iTunesHelper.dll 18:25:46.0948 5896 C:\Program Files (x86)\iTunes\iTunesHelper.dll - ok 18:25:46.0948 5896 [ C5B0324DB461559ADD070E632A6919FA ] C:\Windows\SysWOW64\wbem\wbemprox.dll 18:25:46.0948 5896 C:\Windows\SysWOW64\wbem\wbemprox.dll - ok 18:25:46.0963 5896 [ 704314FD398C81D5F342CAA5DF7B7F21 ] C:\Windows\SysWOW64\wbemcomn.dll 18:25:46.0963 5896 C:\Windows\SysWOW64\wbemcomn.dll - ok 18:25:46.0963 5896 [ 28A09777D2D952122567A8A82F1A2C7B ] C:\Windows\winsxs\x86_microsoft.vc80.mfcloc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_03ce2c722059 43d3\mfc80ENU.dll 18:25:46.0963 5896 C:\Windows\winsxs\x86_microsoft.vc80.mfcloc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_03ce2c722059 43d3\mfc80ENU.dll - ok 18:25:46.0963 5896 [ A0F110AB73271DA15E6BC314A8C1512A ] C:\Program Files (x86)\iTunes\iTunesHelper.Resources\iTunesHelper.dll 18:25:46.0963 5896 C:\Program Files (x86)\iTunes\iTunesHelper.Resources\iTunesHelper.dll - ok 18:25:46.0963 5896 [ F047AC8029004B2FB94E2429F54617A9 ] C:\Program Files (x86)\iTunes\iTunesHelper.Resources\en.lproj\iTunesHelperLocalized.dll 18:25:46.0963 5896 C:\Program Files (x86)\iTunes\iTunesHelper.Resources\en.lproj\iTunesHelperLocalized.dll - ok 18:25:46.0979 5896 [ 0A94DE4AA9864D312E60D747FD249ABE ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsec.dll 18:25:46.0979 5896 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsec.dll - ok 18:25:46.0979 5896 [ BF7DDBE14FA4B68AAB6A3C78EF5C96B8 ] C:\Windows\SysWOW64\inetmib1.dll 18:25:46.0979 5896 C:\Windows\SysWOW64\inetmib1.dll - ok 18:25:46.0979 5896 [ 1220595CABA75AB91A6B3FA3B89483CC ] C:\Windows\SysWOW64\snmpapi.dll 18:25:46.0979 5896 C:\Windows\SysWOW64\snmpapi.dll - ok 18:25:46.0979 5896 [ C746F3BF98E92FB137B5BD2B8B5925BD ] C:\Windows\System32\FXSST.dll 18:25:46.0979 5896 C:\Windows\System32\FXSST.dll - ok 18:25:46.0994 5896 [ 776AE0564F8B1C282E331FD95A1BDC5F ] C:\Windows\SysWOW64\wbem\wbemsvc.dll 18:25:46.0994 5896 C:\Windows\SysWOW64\wbem\wbemsvc.dll - ok 18:25:46.0994 5896 [ CA0C67BA7AEBA6AED5DDB852E6EEA811 ] C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe 18:25:46.0994 5896 C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe - ok 18:25:46.0994 5896 [ 850BD2D2D9CB5894935C3B6333CAD6FD ] C:\Windows\System32\riched20.dll 18:25:46.0994 5896 C:\Windows\System32\riched20.dll - ok 18:25:47.0010 5896 [ CFC7D8289D2B5F3CF8D16E2DB7F93D4A ] C:\Windows\SysWOW64\wbem\fastprox.dll 18:25:47.0010 5896 C:\Windows\SysWOW64\wbem\fastprox.dll - ok 18:25:47.0010 5896 [ 1578ED9A1C0AA2A32461072B2BC8123C ] C:\Program Files\Trend Micro\Titanium\UIFramework\instInstallationLibrary.dll 18:25:47.0010 5896 C:\Program Files\Trend Micro\Titanium\UIFramework\instInstallationLibrary.dll - ok 18:25:47.0010 5896 [ FBFCA1A574D47EE575448B719CBBF2E4 ] C:\Windows\winsxs\x86_microsoft.vc90.mfcloc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_49768ef57548 175e\MFC90ENU.DLL 18:25:47.0010 5896 C:\Windows\winsxs\x86_microsoft.vc90.mfcloc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_49768ef57548 175e\MFC90ENU.DLL - ok 18:25:47.0026 5896 [ 3819AD4329303EAC88480CA16A650735 ] C:\Windows\System32\UIAnimation.dll 18:25:47.0026 5896 C:\Windows\System32\UIAnimation.dll - ok 18:25:47.0026 5896 [ 104A1070E90F1C530328E69B49718841 ] C:\Windows\SysWOW64\nlaapi.dll 18:25:47.0026 5896 C:\Windows\SysWOW64\nlaapi.dll - ok 18:25:47.0026 5896 [ 64ABE1250EC1A1CFD1442E7C8800216E ] C:\Windows\System32\d3d10warp.dll 18:25:47.0026 5896 C:\Windows\System32\d3d10warp.dll - ok 18:25:47.0026 5896 [ 843D21A20736016E5613E4B51EA60D46 ] C:\Windows\SysWOW64\winusb.dll 18:25:47.0026 5896 C:\Windows\SysWOW64\winusb.dll - ok 18:25:47.0041 5896 [ 0B7E85364CB878E2AD531DB7B601A9E5 ] C:\Windows\SysWOW64\NapiNSP.dll 18:25:47.0041 5896 C:\Windows\SysWOW64\NapiNSP.dll - ok 18:25:47.0041 5896 [ 1C09B662C52F738D38D7C6B35B21676F ] C:\Program Files\Trend Micro\AMSP\inner_AMSP_ClientLibrary.dll 18:25:47.0041 5896 C:\Program Files\Trend Micro\AMSP\inner_AMSP_ClientLibrary.dll - ok 18:25:47.0041 5896 [ 5CF640EDDB1E40A5AB1BB743BCDEC610 ] C:\Windows\SysWOW64\pnrpnsp.dll 18:25:47.0041 5896 C:\Windows\SysWOW64\pnrpnsp.dll - ok 18:25:47.0041 5896 [ 58B8702C20DE211D1FCB248D2FDD71D1 ] C:\Program Files (x86)\Adobe\Reader 11.0\Reader\reader_sl.exe 18:25:47.0041 5896 C:\Program Files (x86)\Adobe\Reader 11.0\Reader\reader_sl.exe - ok 18:25:47.0057 5896 [ 5DF5D8CFD9B9573FA3B2C89D9061A240 ] C:\Windows\SysWOW64\winrnr.dll 18:25:47.0057 5896 C:\Windows\SysWOW64\winrnr.dll - ok 18:25:47.0057 5896 [ 919001D2BB17DF06CA3F8AC16AD039F6 ] C:\Windows\SysWOW64\sxs.dll 18:25:47.0057 5896 C:\Windows\SysWOW64\sxs.dll - ok 18:25:47.0057 5896 [ 650CAEA856943E29F25A25D31E004B18 ] C:\Windows\System32\FXSAPI.dll 18:25:47.0057 5896 C:\Windows\System32\FXSAPI.dll - ok 18:25:47.0072 5896 [ AD31942BDF3D594C404874613BC2FE4D ] C:\Windows\System32\SearchIndexer.exe 18:25:47.0072 5896 C:\Windows\System32\SearchIndexer.exe - ok 18:25:47.0072 5896 [ 55DAF541B5C121BC485377D7617F8C46 ] C:\Windows\System32\igdumd64.dll 18:25:47.0072 5896 C:\Windows\System32\igdumd64.dll - ok 18:25:47.0072 5896 [ C8E8B8239FCF17BEA10E751BE5854631 ] C:\Windows\System32\FXSRESM.dll 18:25:47.0072 5896 C:\Windows\System32\FXSRESM.dll - ok 18:25:47.0072 5896 [ 6C597496AB646EB9F31C68241050F771 ] C:\Windows\System32\tquery.dll 18:25:47.0072 5896 C:\Windows\System32\tquery.dll - ok 18:25:47.0088 5896 [ 09EAD9CB2346B671F8F079D3472134D8 ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\iTunesMobileDevice.dll 18:25:47.0088 5896 C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\iTunesMobileDevice.dll - ok 18:25:47.0088 5896 [ 017F5CE9BC2333FE0FB738B0A9C13C2F ] C:\Windows\System32\mssrch.dll 18:25:47.0088 5896 C:\Windows\System32\mssrch.dll - ok 18:25:47.0088 5896 [ D63F0353F632FB1EDE724173BE6DB5B5 ] C:\Windows\System32\esent.dll 18:25:47.0088 5896 C:\Windows\System32\esent.dll - ok 18:25:47.0104 5896 [ E3C817F7FE44CC870ECDBCBC3EA36132 ] C:\Windows\SysWOW64\msvcp100.dll 18:25:47.0104 5896 C:\Windows\SysWOW64\msvcp100.dll - ok 18:25:47.0104 5896 [ 80C7DB229137215B5B6B4A543D997388 ] C:\Program Files\Trend Micro\AMSP\module\10000\1.5.1464\9.700.1001\plugEngineVSAPI.dll 18:25:47.0104 5896 C:\Program Files\Trend Micro\AMSP\module\10000\1.5.1464\9.700.1001\plugEngineVSAPI.dll - ok 18:25:47.0104 5896 [ 1B1431D9520C7578AD5633ED2A70625F ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorjit.dll 18:25:47.0104 5896 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorjit.dll - ok 18:25:47.0104 5896 [ 8569E35D00F45972E506502EEE622BA4 ] C:\Windows\System32\srchadmin.dll 18:25:47.0104 5896 C:\Windows\System32\srchadmin.dll - ok 18:25:47.0119 5896 [ 6D137963730144698CBD10F202E9F251 ] C:\Windows\System32\wersvc.dll 18:25:47.0119 5896 C:\Windows\System32\wersvc.dll - ok 18:25:47.0119 5896 [ 1EA7969E3271CBC59E1730697DC74682 ] C:\Windows\System32\qmgr.dll 18:25:47.0119 5896 C:\Windows\System32\qmgr.dll - ok 18:25:47.0135 5896 [ 3121A79D13A61562BE9CC902CD46B542 ] C:\Windows\System32\msidle.dll 18:25:47.0135 5896 C:\Windows\System32\msidle.dll - ok 18:25:47.0135 5896 [ BD66ECA9479C688412DDDA9F2CCD2C69 ] C:\Windows\System32\d3d10.dll 18:25:47.0135 5896 C:\Windows\System32\d3d10.dll - ok 18:25:47.0135 5896 [ BF38660A9125935658CFA3E53FDC7D65 ] C:\Windows\SysWOW64\msvcr100.dll 18:25:47.0135 5896 C:\Windows\SysWOW64\msvcr100.dll - ok 18:25:47.0135 5896 [ 619A67C9F617B7E69315BB28ECD5E1DF ] C:\Windows\System32\wbem\WmiPrvSE.exe 18:25:47.0135 5896 C:\Windows\System32\wbem\WmiPrvSE.exe - ok 18:25:47.0150 5896 [ 0017163E0D5985168792BEE5CF70D5DF ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\diasymreader.dll 18:25:47.0150 5896 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\diasymreader.dll - ok 18:25:47.0150 5896 [ 29409ED7400CA5BCCC30C0EE5147A60D ] C:\Windows\System32\bitsperf.dll 18:25:47.0150 5896 C:\Windows\System32\bitsperf.dll - ok 18:25:47.0150 5896 [ B628DA8B548E6D11A35B86799714CB22 ] C:\Windows\System32\d3d10core.dll 18:25:47.0150 5896 C:\Windows\System32\d3d10core.dll - ok 18:25:47.0166 5896 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] C:\Windows\System32\FXSSVC.exe 18:25:47.0166 5896 C:\Windows\System32\FXSSVC.exe - ok 18:25:47.0166 5896 [ 50D6CCC6FF5561F9F56946B3E6164FB8 ] C:\Program Files\iPod\bin\iPodService.exe 18:25:47.0166 5896 C:\Program Files\iPod\bin\iPodService.exe - ok 18:25:47.0166 5896 [ D2155709E336C3BC15729EB87FEC6064 ] C:\Windows\System32\rasdlg.dll 18:25:47.0166 5896 C:\Windows\System32\rasdlg.dll - ok 18:25:47.0166 5896 [ ACE1BB07E0377E37A2C514CD2EC119B1 ] C:\Windows\System32\mssprxy.dll 18:25:47.0166 5896 C:\Windows\System32\mssprxy.dll - ok 18:25:47.0182 5896 [ A6C09924C6730DE8DEED9890A12AA691 ] C:\Windows\System32\ddraw.dll 18:25:47.0182 5896 C:\Windows\System32\ddraw.dll - ok 18:25:47.0182 5896 [ D9431DCF90B0253773F51FDEFE7FD42F ] C:\Windows\System32\bitsigd.dll 18:25:47.0182 5896 C:\Windows\System32\bitsigd.dll - ok 18:25:47.0182 5896 [ 96DB78C9C50CEED9DA5050EFFEE272A2 ] C:\Windows\System32\upnp.dll 18:25:47.0182 5896 C:\Windows\System32\upnp.dll - ok 18:25:47.0182 5896 [ DACE6AD6B6968DA86CDDEAC8989FE373 ] C:\Program Files\Trend Micro\AMSP\module\10001\1.5.1381\6.2.1028\plugEngineSSAPI.dll 18:25:47.0182 5896 C:\Program Files\Trend Micro\AMSP\module\10001\1.5.1381\6.2.1028\plugEngineSSAPI.dll - ok 18:25:47.0197 5896 [ 29C22748937F45C26590909E9F8E7137 ] C:\Windows\System32\dciman32.dll 18:25:47.0197 5896 C:\Windows\System32\dciman32.dll - ok 18:25:47.0197 5896 [ 9682D5B9D9309377C1A7E08C3E6B7B3D ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System\6be6efa1e2ffc9d46e99839edac5c5a8\System.ni.dll 18:25:47.0197 5896 C:\Windows\assembly\NativeImages_v2.0.50727_64\System\6be6efa1e2ffc9d46e99839edac5c5a8\System.ni.dll - ok 18:25:47.0197 5896 [ F9AFD12BB4B1CFA5FCC0A5B37C604FD2 ] C:\Windows\System32\dot3api.dll 18:25:47.0197 5896 C:\Windows\System32\dot3api.dll - ok 18:25:47.0213 5896 [ 102CF6879887BBE846A00C459E6D4ABC ] C:\Windows\SysWOW64\riched20.dll 18:25:47.0213 5896 C:\Windows\SysWOW64\riched20.dll - ok 18:25:47.0213 5896 [ D171FFB6DF8F648BA9022A550B056E00 ] C:\Program Files\iPod\bin\iPodService.Resources\iPodService.dll 18:25:47.0213 5896 C:\Program Files\iPod\bin\iPodService.Resources\iPodService.dll - ok 18:25:47.0213 5896 [ E0A8EDCE1DFDC9874CD2817F9FC4BDF0 ] C:\Program Files\iPod\bin\iPodService.Resources\en.lproj\iPodServiceLocalized.dll 18:25:47.0213 5896 C:\Program Files\iPod\bin\iPodService.Resources\en.lproj\iPodServiceLocalized.dll - ok 18:25:47.0228 5896 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] C:\Windows\System32\ssdpsrv.dll 18:25:47.0228 5896 C:\Windows\System32\ssdpsrv.dll - ok 18:25:47.0228 5896 [ E4FCA0F99A41E460C84016DEFD31E6EF ] C:\Windows\System32\wlanhlp.dll 18:25:47.0228 5896 C:\Windows\System32\wlanhlp.dll - ok 18:25:47.0244 5896 [ E2A17BCC08D92F42E08AF6BA2F93ABA7 ] C:\Windows\SysWOW64\ExplorerFrame.dll 18:25:47.0244 5896 C:\Windows\SysWOW64\ExplorerFrame.dll - ok 18:25:47.0244 5896 [ 28638660E651578C354BF43CD646EF6D ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Drawing\672fc9526d8954656bcb46e42082e09c\System.Drawing.ni.dll 18:25:47.0244 5896 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Drawing\672fc9526d8954656bcb46e42082e09c\System.Drawing.ni.dll - ok 18:25:47.0244 5896 [ 357BE883C5236BFC7341CB9E82308908 ] C:\Windows\System32\wlanapi.dll 18:25:47.0244 5896 C:\Windows\System32\wlanapi.dll - ok 18:25:47.0260 5896 [ 89344657836F91640F3DDB235D0E7F73 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\WindowsBase\5f684be17ae6b826f6f9eaa170b41b05\WindowsBase.ni.dll 18:25:47.0260 5896 C:\Windows\assembly\NativeImages_v2.0.50727_64\WindowsBase\5f684be17ae6b826f6f9eaa170b41b05\WindowsBase.ni.dll - ok 18:25:47.0260 5896 [ 6699A112A3BDC9B52338512894EBA9D6 ] C:\Program Files\Windows Media Player\wmpnscfg.exe 18:25:47.0260 5896 C:\Program Files\Windows Media Player\wmpnscfg.exe - ok 18:25:47.0260 5896 [ 5DA219F57A9076FB6FBD3C9C3713A672 ] C:\Windows\System32\WWanAPI.dll 18:25:47.0260 5896 C:\Windows\System32\WWanAPI.dll - ok 18:25:47.0260 5896 [ 62C7AACC746C9723468A8F2169ED3E85 ] C:\Windows\System32\wwapi.dll 18:25:47.0260 5896 C:\Windows\System32\wwapi.dll - ok 18:25:47.0275 5896 [ 6B851E682A36453E1B1EE297FFB6E2AB ] C:\Windows\System32\QAGENT.DLL 18:25:47.0275 5896 C:\Windows\System32\QAGENT.DLL - ok 18:25:47.0275 5896 [ B78E390C802B8F0D2BAF4F8B181318A0 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Windows.Forms\e644aa1f8f3898d38876168757db0d9b\System.Windows.Forms.ni.dll 18:25:47.0275 5896 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Windows.Forms\e644aa1f8f3898d38876168757db0d9b\System.Windows.Forms.ni.dll - ok 18:25:47.0275 5896 [ AC5DF873913B00E554D8F553459BC431 ] C:\Windows\System32\qmgrprxy.dll 18:25:47.0275 5896 C:\Windows\System32\qmgrprxy.dll - ok 18:25:47.0291 5896 [ 85B45B4B285B159ACDB355FC8C1E8925 ] C:\Windows\SysWOW64\qmgrprxy.dll 18:25:47.0291 5896 C:\Windows\SysWOW64\qmgrprxy.dll - ok 18:25:47.0291 5896 [ 6E1F8165C365D35C8E3C045AF0CDD481 ] C:\Windows\SysWOW64\duser.dll 18:25:47.0291 5896 C:\Windows\SysWOW64\duser.dll - ok 18:25:47.0291 5896 [ 6B4AC520AC1DCD6CD8FC0222A66DC7A1 ] C:\Program Files\Trend Micro\AMSP\module\10002\1.5.1381\7.0.1028\plugEngineDCE.dll 18:25:47.0291 5896 C:\Program Files\Trend Micro\AMSP\module\10002\1.5.1381\7.0.1028\plugEngineDCE.dll - ok 18:25:47.0291 5896 [ C9FB9038B15036CA28CF0B4BE2BED9BD ] C:\Windows\System32\en-US\tquery.dll.mui 18:25:47.0291 5896 C:\Windows\System32\en-US\tquery.dll.mui - ok 18:25:47.0306 5896 [ 07AD88DF9EF73215458867EFC1BFFE9E ] C:\Windows\System32\wbem\wmiprov.dll 18:25:47.0306 5896 C:\Windows\System32\wbem\wmiprov.dll - ok 18:25:47.0306 5896 [ EE06B85BC69F18826302348A2AD089E0 ] C:\Windows\SysWOW64\dui70.dll 18:25:47.0306 5896 C:\Windows\SysWOW64\dui70.dll - ok 18:25:47.0306 5896 [ C7494C67A6BF6FE914808E42F8265FEF ] C:\Program Files\Windows Media Player\wmpnssci.dll 18:25:47.0306 5896 C:\Program Files\Windows Media Player\wmpnssci.dll - ok 18:25:47.0322 5896 [ A9F3BFC9345F49614D5859EC95B9E994 ] C:\Program Files\Windows Media Player\wmpnetwk.exe 18:25:47.0322 5896 C:\Program Files\Windows Media Player\wmpnetwk.exe - ok 18:25:47.0322 5896 [ 6FA41E0C86EF049A12C05CA4BBA8F9AF ] C:\Windows\SysWOW64\perfos.dll 18:25:47.0322 5896 C:\Windows\SysWOW64\perfos.dll - ok 18:25:47.0322 5896 [ 7BB710183AAD6C420A8FAF7C4ABC6384 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationCore\68f908f70841f6159b1124f89029ef77\PresentationCore.ni.dll 18:25:47.0322 5896 C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationCore\68f908f70841f6159b1124f89029ef77\PresentationCore.ni.dll - ok 18:25:47.0338 5896 [ 085506F9323778027D21711C95449F34 ] C:\Program Files\Trend Micro\AMSP\module\10004\1.5.1381\3.50.1169\plugEngineAEGIS.dll 18:25:47.0338 5896 C:\Program Files\Trend Micro\AMSP\module\10004\1.5.1381\3.50.1169\plugEngineAEGIS.dll - ok 18:25:47.0338 5896 [ 220159496484D34009DE71CA1A68E0D4 ] C:\Windows\System32\wbem\NCProv.dll 18:25:47.0338 5896 C:\Windows\System32\wbem\NCProv.dll - ok 18:25:47.0338 5896 [ E04D34D2386D57DEA994558CD3E7F523 ] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\FnKyACTN.dll 18:25:47.0338 5896 C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\FnKyACTN.dll - ok 18:25:47.0338 5896 [ 1CEA1F902834F96A0AF927EB8F745541 ] C:\Program Files\Trend Micro\AMSP\module\10005\1.5.1464\3.5.1058\plugEngineTMUFE.dll 18:25:47.0338 5896 C:\Program Files\Trend Micro\AMSP\module\10005\1.5.1464\3.5.1058\plugEngineTMUFE.dll - ok 18:25:47.0353 5896 [ CDAD3376DFF3D9AC7FDCBE2B94B0D3C8 ] C:\Windows\System32\shfolder.dll 18:25:47.0353 5896 C:\Windows\System32\shfolder.dll - ok 18:25:47.0353 5896 [ 8095F16314D49965F58FE968B2804248 ] C:\Program Files\Trend Micro\AMSP\module\10007\1.5.1464\2.5.1032\plugEngineTMFBE.dll 18:25:47.0353 5896 C:\Program Files\Trend Micro\AMSP\module\10007\1.5.1464\2.5.1032\plugEngineTMFBE.dll - ok 18:25:47.0353 5896 [ 449560DC46EF63760B777CB45345351E ] C:\Program Files\Trend Micro\AMSP\module\10008\1.5.1381\1.3.1040\plugEngineICRC.dll 18:25:47.0353 5896 C:\Program Files\Trend Micro\AMSP\module\10008\1.5.1381\1.3.1040\plugEngineICRC.dll - ok 18:25:47.0369 5896 [ 318C986400E0BB5B179D986290E42BE8 ] C:\Program Files\Trend Micro\AMSP\module\20001\1.5.1464\3.50.1182\plugAdapterSystem.dll 18:25:47.0369 5896 C:\Program Files\Trend Micro\AMSP\module\20001\1.5.1464\3.50.1182\plugAdapterSystem.dll - ok 18:25:47.0369 5896 [ D64D99EC088B54FFE8EE67A480386C20 ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Culture.dll 18:25:47.0369 5896 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Culture.dll - ok 18:25:47.0369 5896 [ 1D5A06280E3E6C07950FAAA4D153269B ] C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\f30de4ac82d4a89c959a7f525ba05aed\PresentationFramework.ni.dll 18:25:47.0369 5896 C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\f30de4ac82d4a89c959a7f525ba05aed\PresentationFramework.ni.dll - ok 18:25:47.0369 5896 [ 5519FD230A8679E89E323670CB83CB2A ] C:\Program Files\Trend Micro\AMSP\module\20004\1.5.1505\6.6.1088\plugAdapterProxy.dll 18:25:47.0369 5896 C:\Program Files\Trend Micro\AMSP\module\20004\1.5.1505\6.6.1088\plugAdapterProxy.dll - ok 18:25:47.0384 5896 [ 0181B4C10F409299E0D8EE130EF87353 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Management\c54fc0cac648a174c5e35bd6589c9390\System.Management.ni.dll 18:25:47.0384 5896 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Management\c54fc0cac648a174c5e35bd6589c9390\System.Management.ni.dll - ok 18:25:47.0384 5896 [ 3F50200237961034FACE602373838980 ] C:\Windows\SysWOW64\FirewallAPI.dll 18:25:47.0384 5896 C:\Windows\SysWOW64\FirewallAPI.dll - ok 18:25:47.0384 5896 [ 4A424A0AB88CCB6F779E0E56E6524744 ] C:\Program Files\Trend Micro\AMSP\module\30000\1.5.1464\plugRealtimeScanFlow.dll 18:25:47.0384 5896 C:\Program Files\Trend Micro\AMSP\module\30000\1.5.1464\plugRealtimeScanFlow.dll - ok 18:25:47.0400 5896 [ C60911F82DD9C1C4E1A386A32FFF01A7 ] C:\Program Files\Trend Micro\AMSP\module\30001\1.5.1464\plugManualScanFlow.dll 18:25:47.0400 5896 C:\Program Files\Trend Micro\AMSP\module\30001\1.5.1464\plugManualScanFlow.dll - ok 18:25:47.0400 5896 [ AF1E324250AE512D0E8708CADE7CE462 ] C:\Program Files\Trend Micro\AMSP\module\30004\1.5.1464\plugRealTimeScanCache.dll 18:25:47.0400 5896 C:\Program Files\Trend Micro\AMSP\module\30004\1.5.1464\plugRealTimeScanCache.dll - ok 18:25:47.0400 5896 [ 02E35AE1159EB627D0EB1E4DEC6CF74B ] C:\Program Files\Trend Micro\AMSP\module\40001\1.5.1487\plugUtilEnum.dll 18:25:47.0400 5896 C:\Program Files\Trend Micro\AMSP\module\40001\1.5.1487\plugUtilEnum.dll - ok 18:25:47.0400 5896 [ 2C1055E2C6D42753241FB2A129136994 ] C:\Windows\System32\drmv2clt.dll 18:25:47.0400 5896 C:\Windows\System32\drmv2clt.dll - ok 18:25:47.0416 5896 [ 423982DD851406A52B6399DDB196C606 ] C:\Windows\System32\wmdrmdev.dll 18:25:47.0416 5896 C:\Windows\System32\wmdrmdev.dll - ok 18:25:47.0416 5896 [ F9A79C5B27037821112C50A9C8FB367A ] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe 18:25:47.0416 5896 C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe - ok 18:25:47.0416 5896 [ 4AD4CCE5ECA3A943A37455B146088AB6 ] C:\Program Files\Trend Micro\AMSP\module\20002\6.6.1010\6.6.1010\plugAdapterBP.dll 18:25:47.0416 5896 C:\Program Files\Trend Micro\AMSP\module\20002\6.6.1010\6.6.1010\plugAdapterBP.dll - ok 18:25:47.0431 5896 [ FB6AEC7AE0725C48783E6023A9B20A00 ] C:\Program Files\Trend Micro\AMSP\libprotobuf.dll 18:25:47.0431 5896 C:\Program Files\Trend Micro\AMSP\libprotobuf.dll - ok 18:25:47.0431 5896 [ E389EA130C4A9A4DBA0F138222261056 ] C:\Program Files\SUPERAntiSpyware\SSUpdate64.exe 18:25:47.0431 5896 C:\Program Files\SUPERAntiSpyware\SSUpdate64.exe - ok 18:25:47.0431 5896 [ 1EB82516F21F27EED1833B4F9FD9614E ] C:\Windows\System32\wmp.dll 18:25:47.0431 5896 C:\Windows\System32\wmp.dll - ok 18:25:47.0431 5896 [ 24DCA8BA1CA4B9E976140822B30DCD13 ] C:\Program Files\Trend Micro\AMSP\module\10009\2.5.1535\2.5.1535\plugEngineLCE.dll 18:25:47.0431 5896 C:\Program Files\Trend Micro\AMSP\module\10009\2.5.1535\2.5.1535\plugEngineLCE.dll - ok 18:25:47.0447 5896 [ 78A3C3438E31CD7C609677BD42D63461 ] C:\Program Files\Trend Micro\AMSP\module\10010\2.5.1535\2.5.1535\plugEngineLES.dll 18:25:47.0447 5896 C:\Program Files\Trend Micro\AMSP\module\10010\2.5.1535\2.5.1535\plugEngineLES.dll - ok 18:25:47.0447 5896 [ 2210E88D567BF7353FCCB116BC3A0563 ] C:\Program Files\Trend Micro\AMSP\module\40002\1.5.1464\plugUtilSysInfo.dll 18:25:47.0447 5896 C:\Program Files\Trend Micro\AMSP\module\40002\1.5.1464\plugUtilSysInfo.dll - ok 18:25:47.0447 5896 [ C264145F107437CBD3B30303733AEE4F ] C:\Windows\assembly\GAC_64\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll 18:25:47.0447 5896 C:\Windows\assembly\GAC_64\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll - ok 18:25:47.0462 5896 [ DE507971661F14AFEFAA06EEFCD8111A ] C:\Program Files\Trend Micro\AMSP\module\30005\1.5.1464\plugLocalCorrelationFlow.dll 18:25:47.0462 5896 C:\Program Files\Trend Micro\AMSP\module\30005\1.5.1464\plugLocalCorrelationFlow.dll - ok 18:25:47.0462 5896 [ E19AD0D49BFF5938B3E374873AC174DE ] C:\Windows\System32\wmploc.DLL 18:25:47.0462 5896 C:\Windows\System32\wmploc.DLL - ok 18:25:47.0462 5896 [ 31C87BA55B701F17D6D5B1E07C4DE39E ] C:\Program Files\Trend Micro\AMSP\module\10011\1.0.1274\1.0.1274\plugEngineTMSA.dll 18:25:47.0462 5896 C:\Program Files\Trend Micro\AMSP\module\10011\1.0.1274\1.0.1274\plugEngineTMSA.dll - ok 18:25:47.0478 5896 [ DE31043F24188636DED393A8002D78B8 ] C:\Program Files\Trend Micro\AMSP\module\30006\1.5.1464\plugCommonScanCache.dll 18:25:47.0478 5896 C:\Program Files\Trend Micro\AMSP\module\30006\1.5.1464\plugCommonScanCache.dll - ok 18:25:47.0478 5896 [ 825890A9AD3B2A867B6A91FFC5C31921 ] C:\Program Files\Trend Micro\AMSP\module\40003\1.5.1381\1.5.1381\plugUtilException.dll 18:25:47.0478 5896 C:\Program Files\Trend Micro\AMSP\module\40003\1.5.1381\1.5.1381\plugUtilException.dll - ok 18:25:47.0478 5896 [ 3B89EBB099074059D8274C483A693F69 ] C:\Program Files\Trend Micro\AMSP\module\20003\1.5.1381\6.5.1234\plugAdapterFirewall.dll 18:25:47.0478 5896 C:\Program Files\Trend Micro\AMSP\module\20003\1.5.1381\6.5.1234\plugAdapterFirewall.dll - ok 18:25:47.0494 5896 [ C8541AECCCA9260DE93C85F214110FA8 ] C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\wpfgfx_v0300.dll 18:25:47.0494 5896 C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\wpfgfx_v0300.dll - ok 18:25:47.0494 5896 [ 45375DF47ED4D0535739465105AAABE3 ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\WMINet_Utils.dll 18:25:47.0494 5896 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\WMINet_Utils.dll - ok 18:25:47.0509 5896 [ 0DE3C7622EC33126579B1742260F08C2 ] C:\Program Files (x86)\Hewlett-Packard\Shared\HpqToaster.exe 18:25:47.0509 5896 C:\Program Files (x86)\Hewlett-Packard\Shared\HpqToaster.exe - ok 18:25:47.0509 5896 [ C208932C72A2B2B553D7C9318221D1BE ] C:\Windows\System32\gfxSrvc.dll 18:25:47.0509 5896 C:\Windows\System32\gfxSrvc.dll - ok 18:25:47.0509 5896 [ ECE6C7003747065D0BD7E5E08D24EEB8 ] C:\Windows\System32\IGFXDEVLib.dll 18:25:47.0509 5896 C:\Windows\System32\IGFXDEVLib.dll - ok 18:25:47.0525 5896 [ 936F728E04ACCF3F38801CFFCF1E3F40 ] C:\Windows\SysWOW64\oledlg.dll 18:25:47.0525 5896 C:\Windows\SysWOW64\oledlg.dll - ok 18:25:47.0525 5896 [ 80FA0D24CAB9B3C7CC60548CEE0D634B ] C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe 18:25:47.0525 5896 C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe - ok 18:25:47.0525 5896 [ 5CCD5B62076D4432D4728BB6CB3DEBFD ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Xml\7a560781987776298120763de1df8f77\System.Xml.ni.dll 18:25:47.0525 5896 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Xml\7a560781987776298120763de1df8f77\System.Xml.ni.dll - ok 18:25:47.0540 5896 [ 710A702487D4DFCF6DECE1ABB4E219FF ] C:\Program Files\Trend Micro\AMSP\module\10000\1.5.1464\9.700.1001\vsapi64.dll 18:25:47.0540 5896 C:\Program Files\Trend Micro\AMSP\module\10000\1.5.1464\9.700.1001\vsapi64.dll - ok 18:25:47.0540 5896 [ 8323B32A6FC3FCD7E5C8BA94B36CE162 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Configuration\3762e80651ff8d0bbcdb0ccebfb3b3f7\System.Configuration.ni.dll 18:25:47.0540 5896 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Configuration\3762e80651ff8d0bbcdb0ccebfb3b3f7\System.Configuration.ni.dll - ok 18:25:47.0540 5896 [ 80C834BA6B844C4B717F2465C4E8EC0F ] C:\Windows\System32\WindowsCodecsExt.dll 18:25:47.0540 5896 C:\Windows\System32\WindowsCodecsExt.dll - ok 18:25:47.0556 5896 [ 1D296F090ED401967B30BD2B970DC306 ] C:\Windows\System32\icm32.dll 18:25:47.0556 5896 C:\Windows\System32\icm32.dll - ok 18:25:47.0556 5896 [ 68E1D09FC5F2214F712FBB0340998A34 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\WindowsFormsIntegra#\d965d516c924bc92b801f2b316444ffd\WindowsFormsIntegration.ni.dll 18:25:47.0556 5896 C:\Windows\assembly\NativeImages_v2.0.50727_64\WindowsFormsIntegra#\d965d516c924bc92b801f2b316444ffd\WindowsFormsIntegration.ni.dll - ok 18:25:47.0556 5896 [ E5840A20CAB43276A2F58CA6F541D5DF ] C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\a50f3d1b7985318568ecec58ba24e409\PresentationFramework.Aero.ni.dll 18:25:47.0556 5896 C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\a50f3d1b7985318568ecec58ba24e409\PresentationFramework.Aero.ni.dll - ok 18:25:47.0572 5896 [ EA3CD9D80CF28DB7191C6485674CB6FA ] C:\Program Files\Trend Micro\AMSP\module\10002\1.5.1381\7.0.1028\tscdll64.dll 18:25:47.0572 5896 C:\Program Files\Trend Micro\AMSP\module\10002\1.5.1381\7.0.1028\tscdll64.dll - ok 18:25:47.0572 5896 [ F1D4CD9DC615BC637FD757169B55C3EA ] C:\Program Files\Trend Micro\AMSP\module\10004\1.5.1381\3.50.1169\TmAegis.dll 18:25:47.0572 5896 C:\Program Files\Trend Micro\AMSP\module\10004\1.5.1381\3.50.1169\TmAegis.dll - ok 18:25:47.0572 5896 [ C2F42144D1D39D15A215D7C638C5D57A ] C:\Program Files\Trend Micro\AMSP\module\10005\1.5.1464\3.5.1058\tmufeng.dll 18:25:47.0572 5896 C:\Program Files\Trend Micro\AMSP\module\10005\1.5.1464\3.5.1058\tmufeng.dll - ok 18:25:47.0572 5896 [ 76B8C2EB0116F08AB52FEABBE51523E7 ] C:\Program Files\Trend Micro\AMSP\module\10007\1.5.1464\2.5.1032\tmfbeng.dll 18:25:47.0572 5896 C:\Program Files\Trend Micro\AMSP\module\10007\1.5.1464\2.5.1032\tmfbeng.dll - ok 18:25:47.0587 5896 [ 3A810862917BC93FADBEB73D34E9E365 ] C:\Program Files\Trend Micro\AMSP\module\10008\1.5.1381\1.3.1040\ICRCHdler.dll 18:25:47.0587 5896 C:\Program Files\Trend Micro\AMSP\module\10008\1.5.1381\1.3.1040\ICRCHdler.dll - ok 18:25:47.0587 5896 [ 52B16EDBD5AAA12CC083632FD27A7B97 ] C:\Program Files\Trend Micro\AMSP\module\10008\1.5.1381\1.3.1040\libcurl.dll 18:25:47.0587 5896 C:\Program Files\Trend Micro\AMSP\module\10008\1.5.1381\1.3.1040\libcurl.dll - ok 18:25:47.0587 5896 [ 93895AF94D66454DEF2CED51BC85EE03 ] C:\Program Files\Trend Micro\AMSP\module\10008\1.5.1381\1.3.1040\libeay32.dll 18:25:47.0587 5896 C:\Program Files\Trend Micro\AMSP\module\10008\1.5.1381\1.3.1040\libeay32.dll - ok 18:25:47.0603 5896 [ A349C67E4F2904C00190CAFB1ABCD185 ] C:\Program Files\Trend Micro\AMSP\module\10008\1.5.1381\1.3.1040\ssleay32.dll 18:25:47.0603 5896 C:\Program Files\Trend Micro\AMSP\module\10008\1.5.1381\1.3.1040\ssleay32.dll - ok 18:25:47.0603 5896 [ 6177F34483D8F5ADB88F8DEF62DE13FD ] C:\Program Files\Trend Micro\AMSP\module\10008\1.5.1381\1.3.1040\perfiCrcPerfMonMgr.dll 18:25:47.0603 5896 C:\Program Files\Trend Micro\AMSP\module\10008\1.5.1381\1.3.1040\perfiCrcPerfMonMgr.dll - ok 18:25:47.0603 5896 [ 9FE3ED67345F0FF829A4A53B90E09672 ] C:\Windows\System32\loadperf.dll 18:25:47.0603 5896 C:\Windows\System32\loadperf.dll - ok 18:25:47.0618 5896 [ D1F4EF194A129726FBF30E2F514824AA ] C:\Users\Jim\AppData\Roaming\Dropbox\bin\DropboxExt.17.dll 18:25:47.0618 5896 C:\Users\Jim\AppData\Roaming\Dropbox\bin\DropboxExt.17.dll - ok 18:25:47.0618 5896 [ 86F8C8C03426D7DFEF88C6FEE6FAE67F ] C:\Program Files\Trend Micro\AMSP\module\10009\2.5.1535\2.5.1535\TMLCE64.dll 18:25:47.0618 5896 C:\Program Files\Trend Micro\AMSP\module\10009\2.5.1535\2.5.1535\TMLCE64.dll - ok 18:25:47.0618 5896 [ 3EBAD02E8C1654931BD826AD03595F1E ] C:\Program Files\Trend Micro\AMSP\module\10011\1.0.1274\1.0.1274\tmsa64.dll 18:25:47.0618 5896 C:\Program Files\Trend Micro\AMSP\module\10011\1.0.1274\1.0.1274\tmsa64.dll - ok 18:25:47.0618 5896 [ D7CEAEDD5F75D2C8A2E80887D7C114CE ] C:\Windows\System32\webcheck.dll 18:25:47.0618 5896 C:\Windows\System32\webcheck.dll - ok 18:25:47.0634 5896 [ 8494E126F0B10180F3293AF861CE1F7A ] C:\Windows\System32\mlang.dll 18:25:47.0634 5896 C:\Windows\System32\mlang.dll - ok 18:25:47.0634 5896 [ 101797BA603D227946B4B5109867EB19 ] C:\Windows\System32\SyncCenter.dll 18:25:47.0634 5896 C:\Windows\System32\SyncCenter.dll - ok 18:25:47.0634 5896 [ 42EC9065D9BF266ADE924B066C783A56 ] C:\Windows\System32\SearchProtocolHost.exe 18:25:47.0634 5896 C:\Windows\System32\SearchProtocolHost.exe - ok 18:25:47.0650 5896 [ C70CE1EC31515CD7AAFEAF141D1D04B7 ] C:\Program Files\Trend Micro\AMSP\module\20001\1.5.1464\3.50.1182\TmSysEvt.dll 18:25:47.0650 5896 C:\Program Files\Trend Micro\AMSP\module\20001\1.5.1464\3.50.1182\TmSysEvt.dll - ok 18:25:47.0650 5896 [ 8130391F82D52D36C0441F714136957F ] C:\Windows\System32\imapi2.dll 18:25:47.0650 5896 C:\Windows\System32\imapi2.dll - ok 18:25:47.0650 5896 [ D2A5B2B09F2AF5ED13BF494508B09788 ] C:\Windows\System32\msshooks.dll 18:25:47.0650 5896 C:\Windows\System32\msshooks.dll - ok 18:25:47.0665 5896 [ 52D56D1013D4F1B99102679314CC5325 ] C:\Windows\System32\SearchFilterHost.exe 18:25:47.0665 5896 C:\Windows\System32\SearchFilterHost.exe - ok 18:25:47.0665 5896 [ 6A5C1A8AC0B572679361026D0E900420 ] C:\Windows\System32\hgcpl.dll 18:25:47.0665 5896 C:\Windows\System32\hgcpl.dll - ok 18:25:47.0665 5896 [ ABDBABE3A7D2222B3A0DB1B8B9CAD16E ] C:\Windows\System32\mssph.dll 18:25:47.0665 5896 C:\Windows\System32\mssph.dll - ok 18:25:47.0665 5896 [ 0438CAB2E03F4FB61455A7956026FE86 ] C:\Windows\System32\fdPHost.dll 18:25:47.0665 5896 C:\Windows\System32\fdPHost.dll - ok 18:25:47.0681 5896 [ 171D7DB433314A868507C4326E8209DC ] C:\Windows\System32\fdWSD.dll 18:25:47.0681 5896 C:\Windows\System32\fdWSD.dll - ok 18:25:47.0681 5896 [ 8F4BB0CFECED925D440ABC2481278360 ] C:\Windows\System32\mapi32.dll 18:25:47.0681 5896 C:\Windows\System32\mapi32.dll - ok 18:25:47.0681 5896 [ A2E5B2D20954210DCE1A75A1FC8CC36D ] C:\Windows\System32\fdSSDP.dll 18:25:47.0681 5896 C:\Windows\System32\fdSSDP.dll - ok 18:25:47.0696 5896 [ 2A436796758BF2555A26C770FE8A6FEE ] C:\Windows\System32\fdProxy.dll 18:25:47.0696 5896 C:\Windows\System32\fdProxy.dll - ok 18:25:47.0696 5896 [ 919D858C06EE021311D4B854D6612C7A ] C:\Program Files\Trend Micro\AMSP\module\20003\1.5.1381\6.5.1234\TmPfwCtl.dll 18:25:47.0696 5896 C:\Program Files\Trend Micro\AMSP\module\20003\1.5.1381\6.5.1234\TmPfwCtl.dll - ok 18:25:47.0696 5896 [ 537D12AFB6002D86AAB8047A683BAB9D ] C:\PROGRA~1\TRENDM~1\AMSP\module\20003\15A772~1.13~\6574A7~1.12~\TmNscDbg.dll 18:25:47.0696 5896 C:\PROGRA~1\TRENDM~1\AMSP\module\20003\15A772~1.13~\6574A7~1.12~\TmNscDbg.dll - ok 18:25:47.0712 5896 [ B6411CED931AFD059E48C52DBFBA95B4 ] C:\Windows\System32\P2P.dll 18:25:47.0712 5896 C:\Windows\System32\P2P.dll - ok 18:25:47.0712 5896 [ EFDFB3DD38A4376F93E7985173813ABD ] C:\Windows\System32\ListSvc.dll 18:25:47.0712 5896 C:\Windows\System32\ListSvc.dll - ok 18:25:47.0712 5896 [ 4A82EA2807B16FF577AEAF8ADB8779FF ] C:\Windows\System32\IdListen.dll 18:25:47.0712 5896 C:\Windows\System32\IdListen.dll - ok 18:25:47.0728 5896 [ 92E0508D924512F63FFEEFE498CBD11F ] C:\Windows\System32\p2pcollab.dll 18:25:47.0728 5896 C:\Windows\System32\p2pcollab.dll - ok 18:25:47.0728 5896 [ A0524499F4C63CADA7E1529FC77F5DC1 ] C:\Windows\System32\hgprint.dll 18:25:47.0728 5896 C:\Windows\System32\hgprint.dll - ok 18:25:47.0728 5896 [ 34821FFD092AACB81B1D31EE90C34F1D ] C:\Program Files\Trend Micro\AMSP\module\20004\1.5.1505\6.6.1088\TmpxCfg.dll 18:25:47.0728 5896 C:\Program Files\Trend Micro\AMSP\module\20004\1.5.1505\6.6.1088\TmpxCfg.dll - ok 18:25:47.0743 5896 [ 537D12AFB6002D86AAB8047A683BAB9D ] C:\PROGRA~1\TRENDM~1\AMSP\module\20004\154FE5~1.150\667E99~1.108\TmNscDbg.dll 18:25:47.0743 5896 C:\PROGRA~1\TRENDM~1\AMSP\module\20004\154FE5~1.150\667E99~1.108\TmNscDbg.dll - ok 18:25:47.0743 5896 [ 3EAC4455472CC2C97107B5291E0DCAFE ] C:\Windows\System32\pnrpsvc.dll 18:25:47.0743 5896 C:\Windows\System32\pnrpsvc.dll - ok 18:25:47.0743 5896 [ 582AC6D9873E31DFA28A4547270862DD ] C:\Windows\System32\QAGENTRT.DLL 18:25:47.0743 5896 C:\Windows\System32\QAGENTRT.DLL - ok 18:25:47.0759 5896 [ 506A83A3BEEE9FCA09F0170DE9FC7D1B ] C:\Windows\System32\fveui.dll 18:25:47.0759 5896 C:\Windows\System32\fveui.dll - ok 18:25:47.0759 5896 [ 927463ECB02179F88E4B9A17568C63C3 ] C:\Windows\System32\p2psvc.dll 18:25:47.0759 5896 C:\Windows\System32\p2psvc.dll - ok 18:25:47.0759 5896 [ 3AEE02CEDAA3ACD14F9D7E038E44D6D1 ] C:\Windows\System32\P2PGraph.dll 18:25:47.0759 5896 C:\Windows\System32\P2PGraph.dll - ok 18:25:47.0774 5896 [ 66E4246FEF8C364611F9782AA0809F42 ] C:\Program Files\Internet Explorer\ieproxy.dll 18:25:47.0774 5896 C:\Program Files\Internet Explorer\ieproxy.dll - ok 18:25:47.0774 5896 [ 30E2535797091282BCF6C5057D8B29BF ] C:\Program Files\Trend Micro\AMSP\module\20004\1.5.1505\6.6.1088\TmpxCtl.dll 18:25:47.0774 5896 C:\Program Files\Trend Micro\AMSP\module\20004\1.5.1505\6.6.1088\TmpxCtl.dll - ok 18:25:47.0774 5896 [ 2E2C937846A0B8789E5E91739284D17A ] C:\Windows\regedit.exe 18:25:47.0774 5896 C:\Windows\regedit.exe - ok 18:25:47.0790 5896 [ 489BFBBB3950AEFA5A40B7B8BFD76430 ] C:\Windows\System32\aclui.dll 18:25:47.0790 5896 C:\Windows\System32\aclui.dll - ok 18:25:47.0790 5896 [ EE11A3F03D8B801B721BC6D0089BDD9C ] C:\Windows\System32\ulib.dll 18:25:47.0790 5896 C:\Windows\System32\ulib.dll - ok 18:25:47.0790 5896 [ A4898B7BCA283C7CA3170117FE1AF893 ] C:\Windows\System32\clb.dll 18:25:47.0790 5896 C:\Windows\System32\clb.dll - ok 18:25:47.0806 5896 [ D70CF0C8541149E4FF1361C14146C4D4 ] C:\Program Files\Trend Micro\AMSP\module\10001\1.5.1381\6.2.1028\Ssapi64.dll 18:25:47.0806 5896 C:\Program Files\Trend Micro\AMSP\module\10001\1.5.1381\6.2.1028\Ssapi64.dll - ok 18:25:47.0806 5896 [ 84827B0DCC0A535DB6CB0FC2FADFE38E ] C:\Windows\System32\occache.dll 18:25:47.0806 5896 C:\Windows\System32\occache.dll - ok 18:25:47.0806 5896 [ CD1ED0EEAA14B9556F777466CE3A5CE1 ] C:\Program Files\Trend Micro\AMSP\module\10004\1.5.1381\3.50.1169\tmwlchk.dll 18:25:47.0806 5896 C:\Program Files\Trend Micro\AMSP\module\10004\1.5.1381\3.50.1169\tmwlchk.dll - ok 18:25:47.0821 5896 [ FE8030AFADAB4C4DF6CE47DB2E67E468 ] C:\Program Files\Trend Micro\AMSP\module\10004\1.5.1381\3.50.1169\tmtap.dll 18:25:47.0821 5896 C:\Program Files\Trend Micro\AMSP\module\10004\1.5.1381\3.50.1169\tmtap.dll - ok 18:25:47.0821 5896 [ EC8FDF98FFA693B9C08AE6443BB4CEB0 ] C:\Program Files\Trend Micro\AMSP\module\10004\1.5.1381\3.50.1169\TMPEM.dll 18:25:47.0821 5896 C:\Program Files\Trend Micro\AMSP\module\10004\1.5.1381\3.50.1169\TMPEM.dll - ok 18:25:47.0821 5896 [ 0D893F8D145D3B125B0226727C243A69 ] C:\Windows\System32\security.dll 18:25:47.0821 5896 C:\Windows\System32\security.dll - ok 18:25:47.0837 5896 [ 842A9CAFB5F0C2AF5BBF46DFBCC2E470 ] C:\ProgramData\Microsoft\Windows\DRM\Cache\Indiv_SID_S-1-5-20\Indiv01_64.key 18:25:47.0837 5896 C:\ProgramData\Microsoft\Windows\DRM\Cache\Indiv_SID_S-1-5-20\Indiv01_64.key - ok 18:25:47.0837 5896 [ C5413BC4F10CEB4C3070BBF04D324117 ] C:\Windows\SysWOW64\msisip.dll 18:25:47.0837 5896 C:\Windows\SysWOW64\msisip.dll - ok 18:25:47.0837 5896 [ 2E7ADF9B0389CD94605717784D7E416A ] C:\Windows\System32\drttransport.dll 18:25:47.0837 5896 C:\Windows\System32\drttransport.dll - ok 18:25:47.0837 5896 [ C57BC99A4467B3E8F1CC2184A3F46729 ] C:\Windows\System32\drt.dll 18:25:47.0837 5896 C:\Windows\System32\drt.dll - ok 18:25:47.0852 5896 [ 355A138ABDFD43FBABCAE3A1B06AB93D ] C:\Windows\System32\wmpps.dll 18:25:47.0852 5896 C:\Windows\System32\wmpps.dll - ok 18:25:47.0852 5896 [ F149E8CAE538DBF7059B00326673F602 ] C:\Windows\System32\wmpmde.dll 18:25:47.0852 5896 C:\Windows\System32\wmpmde.dll - ok 18:25:47.0852 5896 [ 021287C2050FD5DB4A8B084E2C38139C ] C:\Windows\System32\WinSATAPI.dll 18:25:47.0852 5896 C:\Windows\System32\WinSATAPI.dll - ok 18:25:47.0868 5896 [ B79515AFF098E5A56DFBD316152534DE ] C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL 18:25:47.0868 5896 C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL - ok 18:25:47.0868 5896 [ 28A7D7C7E2FDD1D55F12F750CD6331EC ] C:\Windows\System32\MSMPEG2ENC.DLL 18:25:47.0868 5896 C:\Windows\System32\MSMPEG2ENC.DLL - ok 18:25:47.0884 5896 [ AA4052D3AB64FEDD6F140F347776EAAD ] C:\Program Files\Trend Micro\AMSP\module\10010\2.5.1535\2.5.1535\TMLES64.dll 18:25:47.0884 5896 C:\Program Files\Trend Micro\AMSP\module\10010\2.5.1535\2.5.1535\TMLES64.dll - ok 18:25:47.0884 5896 [ 471C46965B86F1245598C1AAE5FE919A ] C:\PROGRA~1\TRENDM~1\AMSP\module\20003\15A772~1.13~\6574A7~1.12~\tmwfpapi.dll 18:25:47.0884 5896 C:\PROGRA~1\TRENDM~1\AMSP\module\20003\15A772~1.13~\6574A7~1.12~\tmwfpapi.dll - ok 18:25:47.0884 5896 [ 46767946E7B559D981C1DC04EC0AB36F ] C:\Windows\System32\devenum.dll 18:25:47.0884 5896 C:\Windows\System32\devenum.dll - ok 18:25:47.0884 5896 [ 6485DD6A8792E6C212BF16D42F8EAF6B ] C:\PROGRA~1\TRENDM~1\AMSP\module\20003\15A772~1.13~\6574A7~1.12~\tmHash.dll 18:25:47.0884 5896 C:\PROGRA~1\TRENDM~1\AMSP\module\20003\15A772~1.13~\6574A7~1.12~\tmHash.dll - ok 18:25:47.0899 5896 [ 8DF4D9C01015841111814B53538D1CCC ] C:\PROGRA~1\TRENDM~1\AMSP\module\20003\15A772~1.13~\6574A7~1.12~\TmPfwRul.dll 18:25:47.0899 5896 C:\PROGRA~1\TRENDM~1\AMSP\module\20003\15A772~1.13~\6574A7~1.12~\TmPfwRul.dll - ok 18:25:47.0899 5896 [ 5A0B51AF6585A073315FB6B535277F92 ] C:\PROGRA~1\TRENDM~1\AMSP\module\20003\15A772~1.13~\6574A7~1.12~\TmPfwWht.dll 18:25:47.0899 5896 C:\PROGRA~1\TRENDM~1\AMSP\module\20003\15A772~1.13~\6574A7~1.12~\TmPfwWht.dll - ok 18:25:47.0899 5896 [ F5EF3F7B68FD871F63EE59543E82A679 ] C:\PROGRA~1\TRENDM~1\AMSP\module\20004\154FE5~1.150\667E99~1.108\tmtdi.dll 18:25:47.0899 5896 C:\PROGRA~1\TRENDM~1\AMSP\module\20004\154FE5~1.150\667E99~1.108\tmtdi.dll - ok 18:25:47.0915 5896 [ 558C42D165DB5799B4072DC0A9C27C0B ] C:\Windows\System32\msdmo.dll 18:25:47.0915 5896 C:\Windows\System32\msdmo.dll - ok 18:25:47.0915 5896 [ D081B53B376EF55892E2B2B252D08188 ] C:\PROGRA~1\TRENDM~1\AMSP\module\20004\154FE5~1.150\667E99~1.108\TmpeUrlF.dll 18:25:47.0915 5896 C:\PROGRA~1\TRENDM~1\AMSP\module\20004\154FE5~1.150\667E99~1.108\TmpeUrlF.dll - ok 18:25:47.0915 5896 [ B49C333DA65CA8D3BA1FD72029F50634 ] C:\PROGRA~1\TRENDM~1\AMSP\module\20004\154FE5~1.150\667E99~1.108\TmsmHttp.dll 18:25:47.0915 5896 C:\PROGRA~1\TRENDM~1\AMSP\module\20004\154FE5~1.150\667E99~1.108\TmsmHttp.dll - ok 18:25:47.0930 5896 [ FA9F64693BDDC7C968EF7FDD6273382F ] C:\PROGRA~1\TRENDM~1\AMSP\module\20004\154FE5~1.150\667E99~1.108\TmpeHosF.dll 18:25:47.0930 5896 C:\PROGRA~1\TRENDM~1\AMSP\module\20004\154FE5~1.150\667E99~1.108\TmpeHosF.dll - ok 18:25:47.0930 5896 [ AD592DDD2AFBECFA5D9A810678CFE08B ] C:\PROGRA~1\TRENDM~1\AMSP\module\20004\154FE5~1.150\667E99~1.108\TmpeEvts.dll 18:25:47.0930 5896 C:\PROGRA~1\TRENDM~1\AMSP\module\20004\154FE5~1.150\667E99~1.108\TmpeEvts.dll - ok 18:25:47.0930 5896 [ D47EC6A8E81633DD18D2436B19BAF6DE ] C:\Windows\System32\upnphost.dll 18:25:47.0930 5896 C:\Windows\System32\upnphost.dll - ok 18:25:47.0946 5896 [ 8D3C246E57777C1E639669FF48185025 ] C:\PROGRA~1\TRENDM~1\AMSP\module\20004\154FE5~1.150\667E99~1.108\TmpeSAL.dll 18:25:47.0946 5896 C:\PROGRA~1\TRENDM~1\AMSP\module\20004\154FE5~1.150\667E99~1.108\TmpeSAL.dll - ok 18:25:47.0946 5896 [ 3E9E20F4258A283D48B9765239876CB9 ] C:\PROGRA~1\TRENDM~1\AMSP\module\20004\154FE5~1.150\667E99~1.108\TmphHttp.dll 18:25:47.0946 5896 C:\PROGRA~1\TRENDM~1\AMSP\module\20004\154FE5~1.150\667E99~1.108\TmphHttp.dll - ok 18:25:47.0946 5896 [ 7913A3C6C014FF04ACAF0F809DA71A31 ] C:\PROGRA~1\TRENDM~1\AMSP\module\20004\154FE5~1.150\667E99~1.108\TmPlgAdp.dll 18:25:47.0946 5896 C:\PROGRA~1\TRENDM~1\AMSP\module\20004\154FE5~1.150\667E99~1.108\TmPlgAdp.dll - ok 18:25:47.0962 5896 [ B84E2D174DC84916A536572BB8F691A8 ] C:\Windows\System32\wscisvif.dll 18:25:47.0962 5896 C:\Windows\System32\wscisvif.dll - ok 18:25:47.0962 5896 [ 218A400108F280428FA22282D3268BBC ] C:\Windows\System32\wscapi.dll 18:25:47.0962 5896 C:\Windows\System32\wscapi.dll - ok 18:25:47.0962 5896 [ 71E68F2443A80BD4DA89181889C457EA ] C:\Windows\System32\udhisapi.dll 18:25:47.0962 5896 C:\Windows\System32\udhisapi.dll - ok 18:25:47.0977 5896 [ 6C1E3C43B35268C17833244C8ED96430 ] C:\Windows\System32\wscproxystub.dll 18:25:47.0977 5896 C:\Windows\System32\wscproxystub.dll - ok 18:25:47.0977 5896 [ 5F639198C4137075DA50E61C23963C11 ] C:\Windows\System32\drprov.dll 18:25:47.0977 5896 C:\Windows\System32\drprov.dll - ok 18:25:47.0977 5896 [ BC566D17914B07ABAAB3A5A385CC3300 ] C:\Windows\System32\ntlanman.dll 18:25:47.0977 5896 C:\Windows\System32\ntlanman.dll - ok 18:25:47.0993 5896 [ B3A33600DCDFB84D7FBE09ADEB1C9B8A ] C:\Windows\System32\davclnt.dll 18:25:47.0993 5896 C:\Windows\System32\davclnt.dll - ok 18:25:47.0993 5896 [ 45B24A357C801CE62052FE0CDC8BD4D2 ] C:\Windows\System32\davhlpr.dll 18:25:47.0993 5896 C:\Windows\System32\davhlpr.dll - ok 18:25:47.0993 5896 [ 0C15DB6FF927935F0ECA52FEEA40E6C2 ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\wlidcli.dll 18:25:47.0993 5896 C:\Program Files\Common Files\Microsoft Shared\Windows Live\wlidcli.dll - ok 18:25:48.0008 5896 [ 3C06536A9AA332E9E0CEBDE5A596822A ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDPROV.DLL 18:25:48.0008 5896 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDPROV.DLL - ok 18:25:48.0008 5896 [ 925E7F22D5FE9C2AEED1D8119F04EB14 ] C:\Program Files\Trend Micro\AMSP\module\1000001\1.5.1381\utilUniClient.dll 18:25:48.0008 5896 C:\Program Files\Trend Micro\AMSP\module\1000001\1.5.1381\utilUniClient.dll - ok 18:25:48.0008 5896 [ 012787CEB35505EB78DF82E0A0072888 ] C:\Windows\System32\browcli.dll 18:25:48.0008 5896 C:\Windows\System32\browcli.dll - ok 18:25:48.0024 5896 [ 79BDF3DBB70A4B412EB89B5623FC9DE6 ] C:\Program Files\Trend Micro\UniClient\plugins\plugEventHub.dll 18:25:48.0024 5896 C:\Program Files\Trend Micro\UniClient\plugins\plugEventHub.dll - ok 18:25:48.0024 5896 [ 3AC943EAE8C2B51B8B8D6018A9F62666 ] C:\Program Files\Trend Micro\UniClient\plugins\plugWorkflowHost.dll 18:25:48.0024 5896 C:\Program Files\Trend Micro\UniClient\plugins\plugWorkflowHost.dll - ok 18:25:48.0024 5896 [ DF8BA404A68D84A39452F7D2CB56BED4 ] C:\Program Files\Trend Micro\UniClient\plugins\LUADLL.dll 18:25:48.0024 5896 C:\Program Files\Trend Micro\UniClient\plugins\LUADLL.dll - ok 18:25:48.0040 5896 ============================================================ 18:25:48.0040 5896 Scan finished 18:25:48.0040 5896 ============================================================ 18:25:48.0040 5888 Detected object count: 3 18:25:48.0040 5888 Actual detected object count: 3 18:26:38.0849 5888 HP Health Check Service ( UnsignedFile.Multi.Generic ) - skipped by user 18:26:38.0849 5888 HP Health Check Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 18:26:38.0849 5888 LightScribeService ( UnsignedFile.Multi.Generic ) - skipped by user 18:26:38.0849 5888 LightScribeService ( UnsignedFile.Multi.Generic ) - User select action: Skip 18:26:38.0849 5888 \Device\Harddisk0\DR0 ( TDSS File System ) - skipped by user 18:26:38.0849 5888 \Device\Harddisk0\DR0 ( TDSS File System ) - User select action: Skip
Run TDSSKiller again and choose Delete for this one only: (no need to post the log)

18:26:38.0849 5888 \Device\Harddisk0\DR0 ( TDSS File System ) - skipped by user
18:26:38.0849 5888 \Device\Harddisk0\DR0 ( TDSS File System ) - User select action: Skip


~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Next…………

Please download and run ComboFix.

The most important things to remember when running it is to disable all your malware programs and run Combofix from your desktop.

Please visit this webpage for download links, and instructions for running ComboFix

http://www.bleepingcomputer.com/combofix/how-to-use-combofix

Ensure you have disabled all anti virus and anti malware programs so they do not interfere with the running of ComboFix.

Information on disabling your malware programs can be found Here.

Make sure you run ComboFix from your desktop.

Give it at least 30-45 minutes to finish if needed.

Please include the C:\ComboFix.txt in your next reply for further review.

———->NOTE<———-

If you get the message Illegal operation attempted on registry key that has been marked for deletion after you run ComboFix….please reboot the computer, this should resolve the problem. You may have to do this several times if needed.

MrC
ComboFix 13-02-18.02 - Jim 02/18/2013 20:18:06.2.4 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.3895.2470 [GMT -5:00] Running from: c:\users\[removed]\Desktop\ComboFix.exe AV: Trend Micro Titanium Internet Security *Disabled/Updated* {68F968AC-2AA0-091D-848C-803E83E35902} FW: Trend Micro Firewall Booster *Enabled* {49A8346C-6900-54B6-B1B3-5F678736DDE9} SP: Trend Micro Titanium Internet Security *Disabled/Updated* {D3988948-0C9A-0693-BE3C-BB4CF86413BF} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} * Created a new restore point . . ((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) . . c:\program files (x86)\INSTALL.LOG c:\programdata\Microsoft\Windows\DRM\BD1D.tmp c:\programdata\Microsoft\Windows\DRM\BD1E.tmp c:\windows\SysWow64\drivers\npf.sys c:\windows\SysWow64\Packet.dll c:\windows\SysWow64\WanPacket.dll c:\windows\SysWow64\wpcap.dll . . ((((((((((((((((((((((((( Files Created from 2013-01-19 to 2013-02-19 ))))))))))))))))))))))))))))))) . . 2013-02-19 01:28 . 2013-02-19 01:28 ——– d—–w- c:\users\Public\AppData\Local\temp 2013-02-19 01:28 . 2013-02-19 01:28 ——– d—–w- c:\users\Default\AppData\Local\temp 2013-02-19 01:28 . 2013-02-19 01:28 ——– d—–w- c:\users\ADMINI~1\AppData\Local\temp 2013-02-19 00:55 . 2013-02-19 00:55 22064 —-a-w- c:\windows\DCEBoot64.exe 2013-02-19 00:52 . 2013-02-19 00:52 ——– d—–w- C:\TDSSKiller_Quarantine 2013-02-18 13:21 . 2010-09-21 20:30 339536 —-a-w- c:\windows\system32\drivers\tmwfp.sys 2013-02-18 13:21 . 2010-09-21 20:30 194640 —-a-w- c:\windows\system32\drivers\tmlwf.sys 2013-02-16 16:38 . 2013-02-16 16:38 ——– d—–w- c:\users\Jim\AppData\Roaming\SUPERAntiSpyware.com 2013-02-16 16:38 . 2013-02-16 16:38 ——– d—–w- c:\program files\SUPERAntiSpyware 2013-02-16 16:38 . 2013-02-16 16:38 ——– d—–w- c:\programdata\SUPERAntiSpyware.com 2013-02-15 12:43 . 2013-02-15 12:43 ——– d—–w- c:\users\Jim\AppData\Local\Programs 2013-02-13 13:35 . 2013-01-09 01:10 996352 —-a-w- c:\program files\Common Files\Microsoft Shared\VGX\VGX.dll 2013-02-13 13:35 . 2013-01-08 22:01 768000 —-a-w- c:\program files (x86)\Common Files\Microsoft Shared\VGX\VGX.dll 2013-02-13 12:20 . 2013-01-05 05:53 5553512 —-a-w- c:\windows\system32\ntoskrnl.exe 2013-02-13 12:20 . 2013-01-05 05:00 3967848 —-a-w- c:\windows\SysWow64\ntkrnlpa.exe 2013-02-13 12:20 . 2013-01-05 05:00 3913064 —-a-w- c:\windows\SysWow64\ntoskrnl.exe 2013-02-13 12:19 . 2013-01-04 03:26 3153408 —-a-w- c:\windows\system32\win32k.sys 2013-02-13 12:19 . 2013-01-04 05:46 215040 —-a-w- c:\windows\system32\winsrv.dll 2013-02-13 12:19 . 2013-01-04 02:47 25600 —-a-w- c:\windows\SysWow64\setup16.exe 2013-02-13 12:19 . 2013-01-04 02:47 7680 —-a-w- c:\windows\SysWow64\instnm.exe 2013-02-13 12:19 . 2013-01-04 02:47 14336 —-a-w- c:\windows\SysWow64\ntvdm64.dll 2013-02-13 12:19 . 2013-01-04 04:51 5120 —-a-w- c:\windows\SysWow64\wow32.dll 2013-02-13 12:19 . 2013-01-04 02:47 2048 —-a-w- c:\windows\SysWow64\user.exe 2013-02-13 12:19 . 2013-01-03 06:00 1913192 —-a-w- c:\windows\system32\drivers\tcpip.sys 2013-02-13 12:19 . 2013-01-03 06:00 288088 —-a-w- c:\windows\system32\drivers\FWPKCLNT.SYS . . . (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2013-02-13 13:35 . 2012-05-29 22:52 70004024 —-a-w- c:\windows\system32\MRT.exe 2013-01-04 04:43 . 2013-02-13 12:19 44032 —-a-w- c:\windows\apppatch\acwow64.dll 2012-12-22 22:47 . 2012-12-22 22:47 108008 —-a-w- c:\windows\system32\WindowsAccessBridge-64.dll 2012-12-22 22:47 . 2012-12-22 22:48 308200 —-a-w- c:\windows\system32\javaws.exe 2012-12-22 22:47 . 2010-01-10 01:49 188392 —-a-w- c:\windows\system32\javaw.exe 2012-12-22 22:47 . 2012-12-22 22:48 959976 —-a-w- c:\windows\system32\deployJava1.dll 2012-12-22 22:47 . 2012-12-22 22:48 1081320 —-a-w- c:\windows\system32\npDeployJava1.dll 2012-12-22 22:47 . 2010-01-10 01:49 188392 —-a-w- c:\windows\system32\java.exe 2012-12-22 22:43 . 2012-04-02 00:23 697272 —-a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2012-12-22 22:43 . 2011-07-25 22:02 73656 —-a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2012-12-16 17:11 . 2012-12-22 14:30 46080 —-a-w- c:\windows\system32\atmlib.dll 2012-12-16 14:45 . 2012-12-22 14:30 367616 —-a-w- c:\windows\system32\atmfd.dll 2012-12-16 14:13 . 2012-12-22 14:30 295424 —-a-w- c:\windows\SysWow64\atmfd.dll 2012-12-16 14:13 . 2012-12-22 14:30 34304 —-a-w- c:\windows\SysWow64\atmlib.dll 2012-12-14 21:49 . 2011-11-18 22:57 24176 —-a-w- c:\windows\system32\drivers\mbam.sys 2012-11-23 03:13 . 2013-01-09 12:04 68608 —-a-w- c:\windows\system32\taskhost.exe 2007-11-21 08:38 . 2010-04-05 12:09 161344 —-a-w- c:\program files (x86)\UNWISE.EXE . . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* empty entries & legit default entries are not shown REGEDIT4 . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1] @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}] 2012-11-13 23:32 129272 —-a-w- c:\users\Jim\AppData\Roaming\Dropbox\bin\DropboxExt.17.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2] @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}] 2012-11-13 23:32 129272 —-a-w- c:\users\Jim\AppData\Roaming\Dropbox\bin\DropboxExt.17.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3] @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}] 2012-11-13 23:32 129272 —-a-w- c:\users\Jim\AppData\Roaming\Dropbox\bin\DropboxExt.17.dll . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "LightScribe Control Panel"="c:\program files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" [2009-08-20 2363392] "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584] "Akamai NetSession Interface"="c:\users\Jim\AppData\Local\Akamai\netsession_win.exe" [2012-10-09 4441920] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "HPCam_Menu"="c:\program files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe" [2009-05-20 222504] "QlbCtrl.exe"="c:\program files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2009-08-20 322104] "NortonOnlineBackupReminder"="c:\program files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe" [2009-06-29 600936] "HP Software Update"="c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe" [2008-12-08 54576] "WirelessAssistant"="c:\program files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2009-07-23 498744] "SMART Board Service"="c:\program files (x86)\SMART Technologies\SMART Product Drivers\SMARTBoardService.exe" [2010-07-15 5350288] "SMART SNMP Agent"="c:\program files (x86)\SMART Technologies\SMART Product Drivers\SMARTSNMPAgent.exe" [2010-07-15 1662352] "AppleSyncNotifier"="c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe" [2011-04-20 58656] "QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2010-11-29 421888] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-06-09 254696] "APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-02-21 59240] "iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2012-03-27 421736] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-09-24 926896] . c:\users\Jim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ Dropbox.lnk - c:\users\Jim\AppData\Roaming\Dropbox\bin\Dropbox.exe [2013-1-20 28539272] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32] "mixer"=wdmaud.drv . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE] @="" . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] @="Driver" . R3 dopewars-server;dopewars server;c:\program files (x86)\dopewars-1.5.12\dopewars.exe [2011-12-17 301056] R3 netw5v64;Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;c:\windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368] R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [2009-09-02 225280] R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2009-07-31 236544] R3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL6.SYS [2009-06-10 292864] R3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV6.SYS [2009-06-10 1485312] R3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT6.SYS [2009-06-10 740864] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392] R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [2012-02-15 52736] R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [2010-04-05 1255736] R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys [2009-06-10 389120] R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184] S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV64.SYS [2011-07-22 14928] S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL64.SYS [2011-07-12 12368] S1 tmlwf;Trend Micro NDIS 6.0 Filter Driver;c:\windows\system32\DRIVERS\tmlwf.sys [2010-09-21 194640] S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE64.EXE [2012-07-11 140672] S2 AESTFilters;Andrea ST Filters Service;c:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_d15ed671de43d681\AESTSr64.exe [2009-03-03 89600] S2 Amsp;Trend Micro Solution Platform;c:\program files\Trend Micro\AMSP\coreServiceShell.exe coreFrameworkHost.exe [x] S2 EIN_BMM;EIN_BMM;c:\program files\EPSON Projector\Easy Interactive Tools Ver.2\EIN_BMM.exe [2011-10-28 108704] S2 hpsrv;HP Service;c:\windows\system32\Hpservice.exe [2009-07-08 30520] S2 tmevtmgr;tmevtmgr;c:\windows\system32\DRIVERS\tmevtmgr.sys [2010-09-21 67664] S2 tmwfp;Trend Micro WFP Callout Driver;c:\windows\system32\DRIVERS\tmwfp.sys [2010-09-21 339536] S2 UNS;Intel® Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2009-10-01 2320920] S3 Com4QLBEx;Com4QLBEx;c:\program files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2009-05-05 228408] S3 enecir;ENE CIR Receiver;c:\windows\system32\DRIVERS\enecir.sys [2009-06-29 70656] S3 ep_eiserial;Easy Interactive Virtual Serial Driver;c:\windows\system32\DRIVERS\ep_eiserial.sys [2010-09-18 12800] S3 EPVTPen;Easy Interactive Virtual HID Driver;c:\windows\system32\DRIVERS\ep_eivirtab.sys [2010-09-18 13056] S3 HECIx64;Intel® Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344] S3 IntcDAud;Intel® Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [2009-09-26 233984] S3 ManyCam;ManyCam Virtual Webcam, WDM Video Capture Driver;c:\windows\system32\DRIVERS\ManyCam_x64.sys [2008-03-13 27136] S3 NETw5s64;Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit;c:\windows\system32\DRIVERS\NETw5s64.sys [2010-01-13 7675392] S3 SMARTMouseFilterx64;HID-compliant mouse;c:\windows\system32\DRIVERS\SMARTMouseFilterx64.sys [2010-06-15 12584] S3 SMARTVHidMiniVistaAmd64;SMART HID Device;c:\windows\system32\DRIVERS\SMARTVHidMiniVistaAmd64.sys [2010-06-15 15784] S3 SMARTVTabletPCx64;SMART Virtual TabletPC;c:\windows\system32\DRIVERS\SMARTVTabletPCx64.sys [2010-06-15 18432] . . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}] 2009-08-20 21:24 451872 —-a-w- c:\program files (x86)\Common Files\LightScribe\LSRunOnce.exe . Contents of the 'Scheduled Tasks' folder . 2013-02-19 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-06-03 22:05] . 2013-02-19 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-06-03 22:05] . . ——— X64 Entries ———– . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1] @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}] 2012-11-13 23:32 162552 —-a-w- c:\users\Jim\AppData\Roaming\Dropbox\bin\DropboxExt64.17.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2] @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}] 2012-11-13 23:32 162552 —-a-w- c:\users\Jim\AppData\Roaming\Dropbox\bin\DropboxExt64.17.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3] @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}] 2012-11-13 23:32 162552 —-a-w- c:\users\Jim\AppData\Roaming\Dropbox\bin\DropboxExt64.17.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4] @="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}] 2012-11-13 23:32 162552 —-a-w- c:\users\Jim\AppData\Roaming\Dropbox\bin\DropboxExt64.17.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"="c:\windows\system32\igfxtray.exe" [2009-10-24 166424] "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2009-10-24 390168] "Persistence"="c:\windows\system32\igfxpers.exe" [2009-10-24 408600] "SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [BU] "SysTrayApp"="c:\program files\IDT\WDM\sttray64.exe" [2009-10-21 487424] "SmartMenu"="c:\program files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe" [2009-08-25 610872] "SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2010-01-10 171520] "Trend Micro Titanium"="c:\program files\Trend Micro\Titanium\UIFramework\uiWinMgr.exe" [2011-10-08 1111568] "Trend Micro Client Framework"="c:\program files\Trend Micro\UniClient\UiFrmWrk\UIWatchDog.exe" [2011-02-10 197152] . ——- Supplementary Scan ——- . uStart Page = hxxp://www.yahoo.com/ uLocal Page = c:\windows\system32\blank.htm mLocal Page = c:\windows\SysWOW64\blank.htm uInternet Settings,ProxyOverride = *.local; IE: Download Link Using Mega Manager… - c:\program files (x86)\Megaupload\Mega Manager\mm_file.htm IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~4\Office12\EXCEL.EXE/3000 TCP: DhcpNameServer = 75.75.75.75 75.75.76.76 FF - ProfilePath - c:\users\Jim\AppData\Roaming\Mozilla\Firefox\Profiles\qbgsk9sh.default\ FF - prefs.js: browser.search.selectedEngine - NCH Customized Web Search FF - prefs.js: browser.startup.homepage - hxxp://www.yahoo.com/ . - - - - ORPHANS REMOVED - - - - . SafeBoot-16285248.sys SafeBoot-43648938.sys . . . ——————— LOCKED REGISTRY KEYS ——————— . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10i_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10i_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10i.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.10" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10i.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10i.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10i.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}] @Denied: (A 2) (Everyone) @="IFlashBroker4" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\DbgagD\1*] "value"="?\0a\01\11\01\0a\0a?" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Completion time: 2013-02-18 20:32:18 ComboFix-quarantined-files.txt 2013-02-19 01:32 ComboFix2.txt 2012-06-12 22:55 . Pre-Run: 272,920,141,824 bytes free Post-Run: 273,151,979,520 bytes free . - - End Of File - - BCC4D9A73531B20547818F6A201A68CD
Looks Good…almost done…Next:

Please download AdwCleaner from here and save it on your Desktop.

AdwCleaner is a reliable removal tool for Adware, Foistware, toolbars and potentially unwanted programs.

AdwCleaner is a tool that deletes :
· Adwares (software ads)
· PUP/LPI (Potentially Undesirable Program)
· Toolbars
· Hijacker (Hijack of the browser's homepage)

It works with a Search and Deletion methode. It can be easily uninstalled using the "Uninstall" mode.


  • Right-click on adwcleaner.exe and select Run As Administrator (for XP just double click) to launch the application.
  • Now click on the Search tab.
  • Please post the contents of the log-file created in your next post.

Note: The log can also be located at C:\ >> AdwCleaner[XX].txt >> XX <– Denotes the number of times the application has been ran, so in this should be something like R1.

Please look over what was found, we're going to delete it all in the next step….if there's something you may want to keep…please let me know and I'll explain to why it shouldn't be on your system.

MrC
# AdwCleaner v2.112 - Logfile created 02/18/2013 at 21:33:50 # Updated 10/02/2013 by Xplode # Operating system : Windows 7 Home Premium Service Pack 1 (64 bits) # User : Jim - JIM-PC # Boot Mode : Normal # Running from : C:\Users\Jim\Desktop\adwcleaner0.exe # Option [Search] ***** [Services] ***** ***** [Files / Folders] ***** File Found : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eBay.lnk File Found : C:\Users\Jim\AppData\Roaming\Mozilla\Firefox\Profiles\qbgsk9sh.default\searchplugins\Conduit.xml Folder Found : C:\Users\Jim\AppData\Local\Conduit Folder Found : C:\Users\Jim\AppData\LocalLow\Conduit Folder Found : C:\Users\Jim\AppData\Roaming\iWin ***** [Registry] ***** Key Found : HKCU\Software\Conduit Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} Key Found : HKLM\SOFTWARE\Classes\Conduit.Engine Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT2117678 Key Found : HKLM\Software\Conduit Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{761F6A83-F007-49E4-8EAC-CDB6808EF06F} Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{76C45B18-A29E-43EA-AAF8-AF55C2E1AE17} Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{7CD74AFF-3433-4E34-92E2-D98DFDB30754} Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{96EF404C-24C7-43D0-9096-4CCC8BB7CCAC} Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{97720195-206A-42AE-8E65-260B9BA5589F} Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{986F7A5A-9676-47E1-8642-F41F8C3FCF82} Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B18788A4-92BD-440E-A4D1-380C36531119} Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} Key Found : HKU\S-1-5-21-510024845-1952235138-4060687309-1001\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} ***** [Internet Browsers] ***** -\\ Internet Explorer v9.0.8112.16464 [OK] Registry is clean. -\\ Mozilla Firefox v18.0.2 (en-US) File : C:\Users\Jim\AppData\Roaming\Mozilla\Firefox\Profiles\qbgsk9sh.default\prefs.js Found : user_pref("browser.search.defaultthis.engineName", "NCH Customized Web Search"); Found : user_pref("browser.search.selectedEngine", "NCH Customized Web Search"); ************************* AdwCleaner[R1].txt - [2352 octets] - [18/02/2013 21:33:50] ########## EOF - C:\AdwCleaner[R1].txt - [2412 octets] ##########
Some adware found….lets clear it out…..
  • Please re-run AdwCleaner
  • Click on Delete button.
  • Confirm each time with OK if asked.
  • Your computer will be rebooted automatically. A text file will open after the restart. Please post the content of that logfile in your reply.

Note: You can find the logfile at C:\AdwCleaner[Sn].txt as well - n is the order number.

Then……

Lets check your computers security before you go and we have a little cleanup to do also:

Download Security Check by screen317 from HERE or HERE.
  • Save it to your Desktop.
  • Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
  • A Notepad document should open automatically called checkup.txt.
  • Please Post the contents of that document.
  • Do Not Attach It!!!
MrC

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI