Jump to content

Build Theme!
  •  
  • Infected?

WE'RE SURE THAT YOU'LL LOVE US!

Hey there! :wub: Looks like you're enjoying the discussion, but you're not signed up for an account. When you create an account, we remember exactly what you've read, so you always come right back where you left off. You also get notifications, here and via email, whenever new posts are made. You can like posts to share the love. :D Join 91984 other members! Anybody can ask, anybody can answer. Consistently helpful members may be invited to become staff. Here's how it works. Virus cleanup? Start here -> Malware Removal Forum.

Try What the Tech -- It's free!


Photo

For Jeff - Old HP with XP [Solved]


  • This topic is locked This topic is locked
38 replies to this topic

#31 peachy_dar

peachy_dar

    Silver Member

  • Authentic Member
  • PipPipPip
  • 341 posts
  • Interests:Riding our 2009 Navy Metallic blue Honda Goldwing Trike<br />Taking pictures and videos while riding the trike

Posted 16 March 2014 - 06:39 PM

Jeff

Adware log:

# AdwCleaner v3.022 - Report created 15/03/2014 at 18:08:59
# Updated 13/03/2014 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : Owner - OURS
# Running from : C:\Documents and Settings\Owner\Local Settings\Temp\dlm1C.tmp\adwcleaner.exe
# Option : Scan

***** [ Services ] *****

Service Found : CltMngSvc
Service Found : Viewpoint Manager Service

***** [ Files / Folders ] *****

Folder Found C:\Documents and Settings\All Users\Application Data\Viewpoint
Folder Found C:\Documents and Settings\Owner\Local Settings\Application Data\SearchProtect
Folder Found C:\Documents and Settings\Owner\Local Settings\Application Data\Viewpoint
Folder Found C:\Program Files\Common Files\Viewpoint
Folder Found C:\Program Files\Filesubmit
Folder Found C:\Program Files\Free Offers from Freeze.com
Folder Found C:\Program Files\Freeze.com
Folder Found C:\Program Files\SearchProtect
Folder Found C:\Program Files\Viewpoint

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{56256A51-B582-467E-B8D4-7786EDA79AE0}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00A6FAF1-072E-44CF-8957-5838F569A31D}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA1-A523-4961-B6BB-170DE4475CCA}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA9-A523-4961-B6BB-170DE4475CCA}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EAB-A523-4961-B6BB-170DE4475CCA}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{25560540-9571-4D7B-9389-0F166788785A}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3DC201FB-E9C9-499C-A11F-23C360D7C3F8}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3E720452-B472-4954-B7AA-33069EB53906}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{63D0ED2C-B45B-4458-8B3B-60C69BBBD83C}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7473D294-B7BB-4F24-AE82-7E2CE94BB6A9}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{98D9753D-D73B-42D5-8C85-4469CDA897AB}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9FF05104-B030-46FC-94B8-81276E4E27DF}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A7327C09-B521-4EDB-8509-7D2660C9EC98}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E79DFBCA-5697-4FBD-94E5-5B2A9C7C1612}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F8AD5AA5-D966-4667-9DAF-2561D68B2012}
Key Found : HKCU\Software\Viewpoint
Key Found : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtl
Key Found : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtl.1
Key Found : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtlSecondary
Key Found : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtlSecondary.1
Key Found : HKLM\SOFTWARE\Classes\CLSID\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{03F998B2-0E00-11D3-A498-00104B6EB52E}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{147A976F-EEE1-4377-8EA7-4716E4CDD239}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Found : HKLM\SOFTWARE\Classes\Interface\{2E9937FC-CF2F-4F56-AF54-5A6A3DD375CC}
Key Found : HKLM\SOFTWARE\Classes\Interface\{741DE825-A6F0-4497-9AA6-8023CF9B0FFF}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{9DBB28C1-1925-11D3-A498-00104B6EB52E}
Key Found : HKLM\Software\Freeze.com
Key Found : HKLM\Software\ImInstaller
Key Found : HKLM\Software\MetaStream
Key Found : HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{03F998B2-0E00-11D3-A498-00104B6EB52E}
Key Found : HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}
Key Found : HKLM\SOFTWARE\Microsoft\Multimedia\WMPlayer\Schemes\f3pss
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Viewpoint Manager
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ViewpointMediaPlayer
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{03F998B2-0E00-11D3-A498-00104B6EB52E}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Viewpoint Manager
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ViewpointMediaPlayer
Key Found : HKLM\SOFTWARE\MozillaPlugins\@viewpoint.com/VMP
Key Found : HKLM\Software\SearchProtect
Key Found : HKLM\Software\Viewpoint
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{EF99BD32-C1FB-11D2-892F-0090271D4F88}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{EF99BD32-C1FB-11D2-892F-0090271D4F88}]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\post platform [FunWebProducts]

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.6001.18702

Setting Found : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://search.conduit.com/?ctid=CT3324790&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=4&UP=SP62363180-D37B-42D6-AC83-4AD7CAD2FD32&SSPV=

*************************

AdwCleaner[R0].txt - [6374 octets] - [15/03/2014 18:08:59]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [6434 octets] ##########
# AdwCleaner v3.022 - Report created 16/03/2014 at 20:19:59
# Updated 13/03/2014 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : Owner - YOUR-6JNHHU0520
# Running from : C:\Documents and Settings\Owner\Desktop\AdwCleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

File Found : C:\END
File Found : C:\WINDOWS\system32\roboot.exe
File Found : C:\WINDOWS\Tasks\RegClean Pro_DEFAULT.job
File Found : C:\WINDOWS\Tasks\RegClean Pro_UPDATES.job
Folder Found C:\Documents and Settings\All Users\Application Data\ParetoLogic
Folder Found C:\Documents and Settings\All Users\Application Data\Viewpoint
Folder Found C:\Documents and Settings\All Users\Start Menu\Programs\RegClean Pro
Folder Found C:\Documents and Settings\Owner\Application Data\Systweak
Folder Found C:\Documents and Settings\Owner\Local Settings\Application Data\Viewpoint
Folder Found C:\Program Files\Common Files\Viewpoint
Folder Found C:\Program Files\Filesubmit
Folder Found C:\Program Files\Free Offers from Freeze.com
Folder Found C:\Program Files\Freeze.com
Folder Found C:\Program Files\RegClean Pro
Folder Found C:\Program Files\Viewpoint

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\InstallCore
Key Found : HKCU\Software\systweak
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\RegClean Pro_is1
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\RegClean Pro_is1
Key Found : HKLM\Software\systweak
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [RDReminder]
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [systweakasp]

***** [ Browsers ] *****

-\\ Internet Explorer v6.0.2900.5512


*************************

AdwCleaner[R0].txt - [8349 octets] - [15/03/2014 17:08:59]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [8409 octets] ##########
Darlene

    Advertisements

Register to Remove


#32 peachy_dar

peachy_dar

    Silver Member

  • Authentic Member
  • PipPipPip
  • 341 posts
  • Interests:Riding our 2009 Navy Metallic blue Honda Goldwing Trike<br />Taking pictures and videos while riding the trike

Posted 16 March 2014 - 06:42 PM

jeff

TDSSkiller

0:21:21.0187 0x0944 TDSS rootkit removing tool 3.0.0.25 Feb 27 2014 15:23:02
20:21:25.0921 0x0944 ============================================================
20:21:25.0921 0x0944 Current date / time: 2014/03/16 20:21:25.0921
20:21:25.0921 0x0944 SystemInfo:
20:21:25.0921 0x0944
20:21:25.0921 0x0944 OS Version: 5.1.2600 ServicePack: 3.0
20:21:25.0921 0x0944 Product type: Workstation
20:21:25.0921 0x0944 ComputerName: YOUR-6JNHHU0520
20:21:25.0921 0x0944 UserName: Owner
20:21:25.0921 0x0944 Windows directory: C:\WINDOWS
20:21:25.0921 0x0944 System windows directory: C:\WINDOWS
20:21:25.0921 0x0944 Processor architecture: Intel x86
20:21:25.0921 0x0944 Number of processors: 1
20:21:25.0921 0x0944 Page size: 0x1000
20:21:25.0921 0x0944 Boot type: Normal boot
20:21:25.0937 0x0944 ============================================================
20:21:31.0125 0x0944 KLMD registered as C:\WINDOWS\system32\drivers\17610149.sys
20:21:31.0687 0x0944 System UUID: {06BAA840-36F1-077C-3F3D-A52BBBFBE441}
20:21:34.0296 0x0944 Drive \Device\Harddisk0\DR0 - Size: 0xDF99E6000 (55.90 Gb), SectorSize: 0x200, Cylinders: 0x1E49, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xF0, Type 'K0', Flags 0x00000054
20:21:34.0421 0x0944 ============================================================
20:21:34.0421 0x0944 \Device\Harddisk0\DR0:
20:21:34.0437 0x0944 MBR partitions:
20:21:34.0437 0x0944 \Device\Harddisk0\DR0\Partition1: MBR, Type 0xB, StartLBA 0x3F, BlocksNum 0xA8E181
20:21:34.0437 0x0944 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xA8E1C0, BlocksNum 0x6539AC0
20:21:34.0437 0x0944 ============================================================
20:21:34.0625 0x0944 C: <-> \Device\Harddisk0\DR0\Partition2
20:21:34.0656 0x0944 D: <-> \Device\Harddisk0\DR0\Partition1
20:21:34.0656 0x0944 ============================================================
20:21:34.0656 0x0944 Initialize success
20:21:34.0656 0x0944 ============================================================
20:21:36.0640 0x0964 ============================================================
20:21:36.0640 0x0964 Scan started
20:21:36.0640 0x0964 Mode: Manual;
20:21:36.0640 0x0964 ============================================================
20:21:36.0640 0x0964 KSN ping started
20:21:50.0781 0x0964 KSN ping finished: true
20:21:52.0875 0x0964 ================ Scan system memory ========================
20:21:52.0890 0x0964 System memory - ok
20:21:52.0890 0x0964 ================ Scan services =============================
20:21:55.0859 0x0964 Abiosdsk - ok
20:21:55.0875 0x0964 abp480n5 - ok
20:21:56.0015 0x0964 [ 8FD99680A539792A30E97944FDAECF17, 594F8E0C3695400B0C09A797AF6BDFAC6F750ECD67D0EE803914C572B1DCC43C ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
20:21:56.0078 0x0964 ACPI - ok
20:21:56.0625 0x0964 [ 9859C0F6936E723E4892D7141B1327D5, 5E8F6A2FC4DF2E5E92A1D66ECC2810E08B42B64E9CD0DF4AD3F78EA8558B90AF ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
20:21:56.0640 0x0964 ACPIEC - ok
20:21:56.0656 0x0964 adpu160m - ok
20:21:56.0812 0x0964 [ 8BED39E3C35D6A489438B8141717A557, 1B5796E56B0927360CE0759641B1151828BC0A9E45620D2B2D880491F5CE33D0 ] aec C:\WINDOWS\system32\drivers\aec.sys
20:21:56.0875 0x0964 aec - ok
20:21:56.0968 0x0964 [ 322D0E36693D6E24A2398BEE62A268CD, FB0BFF5846E50DBCC2826639318A6A1DE79EE7DEA2719ED74A5F6F44454E13D0 ] AFD C:\WINDOWS\System32\drivers\afd.sys
20:21:57.0046 0x0964 AFD - ok
20:21:57.0078 0x0964 Aha154x - ok
20:21:57.0125 0x0964 aic78u2 - ok
20:21:57.0156 0x0964 aic78xx - ok
20:21:57.0359 0x0964 [ DA0F7CE7FA90283BC218703B9D315FC5, 84C7F33877B57A85B00BFEC3AEE988A3434A60C1A3BF9A5BF55C3E42410661D0 ] ALCXWDM C:\WINDOWS\system32\drivers\ALCXWDM.SYS
20:21:57.0687 0x0964 ALCXWDM - ok
20:21:57.0765 0x0964 [ A9A3DAA780CA6C9671A19D52456705B4, 67C959144B57AE0BBF1D82DBED197F32CDB06FECD883A80C441A0202FE83FAB4 ] Alerter C:\WINDOWS\system32\alrsvc.dll
20:21:57.0812 0x0964 Alerter - ok
20:21:57.0859 0x0964 [ 8C515081584A38AA007909CD02020B3D, A5E13CA10F702928E0DE84C74D0EA8ACCB117FD76FBABC55220C75C4FFD596DC ] ALG C:\WINDOWS\System32\alg.exe
20:21:57.0875 0x0964 ALG - ok
20:21:57.0890 0x0964 AliIde - ok
20:21:58.0000 0x0964 [ 8FCE268CDBDD83B23419D1F35F42C7B1, DF1A5097DC5B5C35427460E866E16ED25C3DDD9217065B26C3214A5674BE37DB ] AmdK7 C:\WINDOWS\system32\DRIVERS\amdk7.sys
20:21:58.0046 0x0964 AmdK7 - ok
20:21:58.0062 0x0964 amsint - ok
20:21:58.0093 0x0964 AppMgmt - ok
20:21:58.0125 0x0964 asc - ok
20:21:58.0140 0x0964 asc3350p - ok
20:21:58.0171 0x0964 asc3550 - ok
20:21:58.0421 0x0964 [ 0E5E4957549056E2BF2C49F4F6B601AD, F7F19FDC906B719A3516D30A9B4A2262C8CC5B36B94E3D4195C345EC4610FF2B ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
20:21:58.0437 0x0964 aspnet_state - ok
20:21:58.0484 0x0964 [ B153AFFAC761E7F5FCFA822B9C4E97BC, 7E60F572A6B3C6219E3C86225AA37243AFFD74337DB7F108B04778042E5CC959 ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
20:21:58.0500 0x0964 AsyncMac - ok
20:21:58.0578 0x0964 [ 9F3A2F5AA6875C72BF062C712CFA2674, B4DF1D2C56A593C6B54DE57395E3B51D288F547842893B32B0F59228A0CF70B9 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
20:21:58.0593 0x0964 atapi - ok
20:21:58.0609 0x0964 Atdisk - ok
20:21:58.0671 0x0964 [ 9916C1225104BA14794209CFA8012159, 5D6F05F715C52A16D05CAE15C3DFE77A139A7F27F7AE710EC9A10F9EE05115A1 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
20:21:58.0718 0x0964 Atmarpc - ok
20:21:58.0765 0x0964 [ DEF7A7882BEC100FE0B2CE2549188F9D, 462C95B63D0A1058291A2DC8CBFCB13D7D74CCD1CA43B613A7EB43D49E3276F8 ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
20:21:58.0796 0x0964 AudioSrv - ok
20:21:58.0843 0x0964 [ D9F724AA26C010A217C97606B160ED68, 329B5118F2409731D06FDAE85B6ADD64A048292801BCB3546651CEB303111695 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
20:21:58.0859 0x0964 audstub - ok
20:21:58.0921 0x0964 [ DA1F27D85E0D1525F6621372E7B685E9, 5A81A46A3BDD19DAFC6C87D277267A5D44F3A1B5302F2CC1111D84B7BAD5610D ] Beep C:\WINDOWS\system32\drivers\Beep.sys
20:21:58.0921 0x0964 Beep - ok
20:21:59.0156 0x0964 [ 574738F61FCA2935F5265DC4E5691314, 3C7CCF064397186C3A3863DD2370AB6414A61B330097DCA4F299CA7BBAA3D1B4 ] BITS C:\WINDOWS\system32\qmgr.dll
20:21:59.0312 0x0964 BITS - ok
20:21:59.0421 0x0964 [ A06CE3399D16DB864F55FAEB1F1927A9, 3430FA8552D91670D9FB0A921C735ADBE2DA7FF108C199DDEEF2FB2E50713AF3 ] Browser C:\WINDOWS\System32\browser.dll
20:21:59.0453 0x0964 Browser - ok
20:21:59.0484 0x0964 [ 90A673FC8E12A79AFBED2576F6A7AAF9, BDE7858A3457DB979FEDD8577FA6321BF72848E4A7BF9F173C78A6A10CBB3EBE ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
20:21:59.0531 0x0964 cbidf2k - ok
20:21:59.0546 0x0964 cd20xrnt - ok
20:21:59.0578 0x0964 [ C1B486A7658353D33A10CC15211A873B, AA4DD9E7AAE5AAB1146B360B17001F975D2F29A1281CF7B13E7136480410F347 ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
20:21:59.0593 0x0964 Cdaudio - ok
20:21:59.0687 0x0964 [ C885B02847F5D2FD45A24E219ED93B32, B26B2F8E3A831E2B65EB0C5195B0645CD50E22615CE79C9B0B391CD563B121DB ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
20:21:59.0703 0x0964 Cdfs - ok
20:21:59.0781 0x0964 [ 1F4260CC5B42272D71F79E570A27A4FE, B51C2A3ED3C309953D0EA45869C8E464C10F2533DADE9E0286AF674979098D1D ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
20:21:59.0781 0x0964 Cdrom - ok
20:21:59.0812 0x0964 Changer - ok
20:21:59.0859 0x0964 [ 1CFE720EB8D93A7158A4EBC3AB178BDE, 65D2A9D9A88F38D4AF323134C151BA0F4B3CD0F6A134AF86E7AC9D07319F1726 ] CiSvc C:\WINDOWS\system32\cisvc.exe
20:21:59.0859 0x0964 CiSvc - ok
20:21:59.0890 0x0964 [ 34CBE729F38138217F9C80212A2A0C82, A9FD7A758D12E0818A11BEEF1CE772FEFA8373E92EF6C0DA8628CD4572CC9A43 ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
20:21:59.0890 0x0964 ClipSrv - ok
20:21:59.0953 0x0964 [ D87ACAED61E417BBA546CED5E7E36D9C, 14AC6034A5BC0FB2A1AFDAD42BEF4DE641556E54AD30D0C46765660A4BE55462 ] clr_optimization_v2.0.50727_32 c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
20:21:59.0984 0x0964 clr_optimization_v2.0.50727_32 - ok
20:22:00.0000 0x0964 CmdIde - ok
20:22:00.0015 0x0964 COMSysApp - ok
20:22:00.0062 0x0964 Cpqarray - ok
20:22:00.0250 0x0964 [ 3D4E199942E29207970E04315D02AD3B, 0825960894CF9C86CC8775BDD2A262948A09CA495AA7FE9F210FAF49E7086383 ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
20:22:00.0265 0x0964 CryptSvc - ok
20:22:00.0281 0x0964 dac2w2k - ok
20:22:00.0312 0x0964 dac960nt - ok
20:22:00.0484 0x0964 [ 2589FE6015A316C0F5D5112B4DA7B509, 2753785BA07A1A7A25E275332F5F9F403F6E8CBF396FD0905D6BA84B98C403A6 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
20:22:00.0765 0x0964 DcomLaunch - ok
20:22:00.0890 0x0964 [ 5E38D7684A49CACFB752B046357E0589, F192AD4190BCFB6939A5CBC91648FE63168AF79A5E227A111DEAD6A92E42AB8D ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
20:22:00.0906 0x0964 Dhcp - ok
20:22:01.0031 0x0964 [ 044452051F3E02E7963599FC8F4F3E25, 584BDDB074618BE76454CF90E74829CFF588B5B5FAEB793E2F7AAD26352DD689 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
20:22:01.0078 0x0964 Disk - ok
20:22:01.0109 0x0964 dmadmin - ok
20:22:01.0312 0x0964 [ D992FE1274BDE0F84AD826ACAE022A41, C82BD6561A14F2932A761F5883A787B99031250EE5E9B7B5714AA045545C9B99 ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
20:22:01.0703 0x0964 dmboot - ok
20:22:01.0875 0x0964 [ 7C824CF7BBDE77D95C08005717A95F6F, A73CB323B7A6410C3D3F258BF204E716ADF8C84C9E4F6562C57AB73DAED8CCDE ] dmio C:\WINDOWS\system32\drivers\dmio.sys
20:22:01.0937 0x0964 dmio - ok
20:22:02.0000 0x0964 [ E9317282A63CA4D188C0DF5E09C6AC5F, D41E002F555FE9015EF620975255F58BB79198CA1FF0E09EC950CB450FF77CF7 ] dmload C:\WINDOWS\system32\drivers\dmload.sys
20:22:02.0015 0x0964 dmload - ok
20:22:02.0062 0x0964 [ 57EDEC2E5F59F0335E92F35184BC8631, 61F6F0DC2D1A6C61D5EF0D5CC4BE0FFC217F1E61FDA3EA9F704709293656600F ] dmserver C:\WINDOWS\System32\dmserver.dll
20:22:02.0078 0x0964 dmserver - ok
20:22:02.0140 0x0964 [ 8A208DFCF89792A484E76C40E5F50B45, 4E40E2EB38C6254E7CAA488200E89EE7DEBBBA773890BC6A84313CC68178D54F ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
20:22:02.0140 0x0964 DMusic - ok
20:22:02.0203 0x0964 [ 474B4DC3983173E4B4C9740B0DAC98A6, C0B1B5B3A87529FFA93BCFCC2BC013A96CAD7F5049ED4D999E8D5D9AC91F95B7 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
20:22:02.0218 0x0964 Dnscache - ok
20:22:02.0312 0x0964 [ 0F0F6E687E5E15579EF4DA8DD6945814, 5C32D88119EB1465B2D719BEE2E05888D1A73454B5E33F2D4928DA710F8BFBA3 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
20:22:02.0421 0x0964 Dot3svc - ok
20:22:02.0437 0x0964 dpti2o - ok
20:22:02.0515 0x0964 [ 8F5FCFF8E8848AFAC920905FBD9D33C8, C8C6FB97AB0871C8C88A2201525A5CF10D5131CB6980D32692ED7A8F58399AD5 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
20:22:02.0546 0x0964 drmkaud - ok
20:22:02.0609 0x0964 [ B4CBA593C540FF2A1AB7C0761C9EDE16, F0128DE65E3F970CB6B249177161616A2140A0B87B16A57E66FB6471A6225024 ] drvmcdb C:\WINDOWS\system32\DRIVERS\drvmcdb.sys
20:22:02.0609 0x0964 drvmcdb - ok
20:22:02.0687 0x0964 [ 2187855A7703ADEF0CEF9EE4285182CC, 8233CC11F637866C0074043835A785EA2B616739B6B1181B143A253CF2508CFD ] EapHost C:\WINDOWS\System32\eapsvc.dll
20:22:02.0687 0x0964 EapHost - ok
20:22:02.0921 0x0964 [ BC93B4A066477954555966D77FEC9ECB, 27F5B780175EF46DA102EE33F7F33559C8B40C077EEA4405D579D9507F4B1C23 ] ERSvc C:\WINDOWS\System32\ersvc.dll
20:22:02.0937 0x0964 ERSvc - ok
20:22:03.0140 0x0964 [ 0E776ED5F7CC9F94299E70461B7B8185, 22750B3829133D1D4BB3CE2FA6247BE2373B5D15A6ED1C8A71673AA1CE7D9530 ] Eventlog C:\WINDOWS\system32\services.exe
20:22:03.0187 0x0964 Eventlog - ok
20:22:03.0546 0x0964 [ 19A799805B24990867B00C120D300C3A, 3C8CB64BE0508B5136D4F4919DA665AB86366EFFFFDD890A9B27E7CE39DCF098 ] EventSystem C:\WINDOWS\System32\es.dll
20:22:03.0718 0x0964 EventSystem - ok
20:22:03.0843 0x0964 [ 38D332A6D56AF32635675F132548343E, E6909DB836AF679B4F4D62C7396D6C82769CC7ABB8C919C2AABFE934FCE268F6 ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
20:22:03.0859 0x0964 Fastfat - ok
20:22:03.0953 0x0964 [ 1926899BF9FFE2602B63074971700412, F5C48EDBE5C6507527630B49C95BAA9F1E47EACC5A910F2B9A4528733E81A966 ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
20:22:03.0968 0x0964 FastUserSwitchingCompatibility - ok
20:22:04.0125 0x0964 [ E97D6A8684466DF94FF3BC24FB787A07, 89E5A6889E3C5AB9AD3E80FFC16DD608278F3ADC282048B40B60196336A5CBEB ] Fax C:\WINDOWS\system32\fxssvc.exe
20:22:04.0171 0x0964 Fax - ok
20:22:04.0218 0x0964 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81, 8307A532AB4D05CBBCE206DC2759497708BF5AAA880BD00F0E4F281D8578A1F5 ] Fdc C:\WINDOWS\system32\DRIVERS\fdc.sys
20:22:04.0234 0x0964 Fdc - ok
20:22:04.0296 0x0964 [ D45926117EB9FA946A6AF572FBE1CAA3, 4C94EF009D778BE0BDF8F812F026B96F91F641BE30AA2531427A5E63DBD280DA ] Fips C:\WINDOWS\system32\drivers\Fips.sys
20:22:04.0312 0x0964 Fips - ok
20:22:04.0343 0x0964 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0, 69C271AD5BCEBFD8AE5A769BDD7EC51256DA3A8ADAD5D12E5C0D13F4E82D8805 ] Flpydisk C:\WINDOWS\system32\DRIVERS\flpydisk.sys
20:22:04.0343 0x0964 Flpydisk - ok
20:22:04.0484 0x0964 [ B2CF4B0786F8212CB92ED2B50C6DB6B0, 280F5CF8A90F7BEDE73ADD0DD0F8952088133A7CA9A3D3B7041957E33B36845D ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
20:22:04.0500 0x0964 FltMgr - ok
20:22:04.0546 0x0964 [ D154E57A611275C29B417B9A764F8E69, 7CF1C8CFAB9CCAA4D7CA3C814955AED652A1C133B1E1BDBC5902F19987F6BC9E ] Freedom C:\WINDOWS\system32\DRIVERS\FREEDOM.SYS
20:22:04.0546 0x0964 Freedom - ok
20:22:04.0609 0x0964 [ 9C62D1C0CF4CF829FE629BF23CFAC348, B29E5F0639661E2C082A19AA21E1DDFBF5E8D15244D53F65E066836890BA9544 ] FreeTdi C:\WINDOWS\system32\Drivers\FreeTdi.sys
20:22:04.0625 0x0964 FreeTdi - ok
20:22:04.0656 0x0964 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A, EC635E071201A766845D48973772CBE0958942B4162F3F5F70660D114CC877E0 ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
20:22:04.0671 0x0964 Fs_Rec - ok
20:22:04.0718 0x0964 [ 6AC26732762483366C3969C9E4D2259D, FF2C9A23CC17F380093F0BEA955B1925794271C2FEA16B9B7639668E6999BAE3 ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
20:22:04.0734 0x0964 Ftdisk - ok
20:22:04.0781 0x0964 [ 0A02C63C8B144BD8C86B103DEE7C86A2, 7A3235DD3E1995DD72B212FAEB3ECA2A974434DE9BF6D269EA11BA65A80E7E50 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
20:22:04.0796 0x0964 Gpc - ok
20:22:04.0890 0x0964 [ 4FCCA060DFE0C51A09DD5C3843888BCD, D82417706B517F2610DDF7C86BE03A72EFA9A2A389DF5C8F8ADEAB8144E2C80A ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
20:22:04.0906 0x0964 helpsvc - ok
20:22:04.0968 0x0964 [ DEB04DA35CC871B6D309B77E1443C796, F66A15C9528D661940F1F4CA453B3E95036D68C74C3B8AB53644211DBD3D2F32 ] HidServ C:\WINDOWS\System32\hidserv.dll
20:22:04.0968 0x0964 HidServ - ok
20:22:05.0031 0x0964 [ CCF82C5EC8A7326C3066DE870C06DAF1, 93395FA4C26B2E82DC8B7025ED3BCF583885E5D8C5F60CD6EEAA6335D6A126EC ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys
20:22:05.0031 0x0964 HidUsb - ok
20:22:05.0078 0x0964 [ 8878BD685E490239777BFE51320B88E9, C5C3ECF6B049B6736E35B39518A8F830B45C45A88FFE8E3A6B7922AD946597E2 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
20:22:05.0093 0x0964 hkmsvc - ok
20:22:05.0109 0x0964 hpn - ok
20:22:05.0187 0x0964 [ F6AACF5BCE2893E0C1754AFEB672E5C9, 62A7A70515B5570A649DC30A3A122B1302F6839A63927C8B29EBE04ABA654892 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
20:22:05.0234 0x0964 HTTP - ok
20:22:05.0296 0x0964 [ 6100A808600F44D999CEBDEF8841C7A3, 61A75118C327812C60622010985A2E80E79B6FD9030A5732390EE5426E4AF6C9 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
20:22:05.0312 0x0964 HTTPFilter - ok
20:22:05.0343 0x0964 i2omgmt - ok
20:22:05.0375 0x0964 i2omp - ok
20:22:05.0437 0x0964 [ 4A0B06AA8943C1E332520F7440C0AA30, DB2452390CCFE67E0C5FEB4FD42CA24ABE2DDD40D0B22DD5F5B8F70416863918 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
20:22:05.0468 0x0964 i8042prt - ok
20:22:05.0515 0x0964 [ 3046F83C8A6ACEBB9EAA834C2CD7105C, EEB844DD9E5034360DA545883B3860A46913B657D31FB0A9BFBF49AEA512316B ] ialm C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
20:22:05.0515 0x0964 ialm - ok
20:22:05.0562 0x0964 [ 083A052659F5310DD8B6A6CB05EDCF8E, 48D39B03FFB6FAA1529B774443BA12618AE3982D9F65A7B9D18F2269F78B31F4 ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
20:22:05.0578 0x0964 Imapi - ok
20:22:05.0671 0x0964 [ 30DEAF54A9755BB8546168CFE8A6B5E1, 3936228CD3125C763ABFCB93E86E4B43838202BCC0913A28E84AC0263B43EE0D ] ImapiService C:\WINDOWS\system32\imapi.exe
20:22:05.0687 0x0964 ImapiService - ok
20:22:05.0718 0x0964 ini910u - ok
20:22:05.0781 0x0964 [ B5466A9250342A7AA0CD1FBA13420678, 87E735C4E8924A883AB692D387A83BCBFAE6E165688336AE7AB488F7CA8D339E ] IntelIde C:\WINDOWS\system32\DRIVERS\intelide.sys
20:22:05.0796 0x0964 IntelIde - ok
20:22:05.0843 0x0964 [ 3BB22519A194418D5FEC05D800A19AD0, F6662F440950596DC1382DD1DB5D7891CCEA30A6062BEA942C18445B5F0D8B16 ] ip6fw C:\WINDOWS\system32\drivers\ip6fw.sys
20:22:05.0859 0x0964 ip6fw - ok
20:22:05.0906 0x0964 [ 731F22BA402EE4B62748ADAF6363C182, 5C3BEBD008A5BE4DC2F92076FF41A10DDC01E10EC7E6552213CFA11970811848 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
20:22:05.0906 0x0964 IpFilterDriver - ok
20:22:05.0953 0x0964 [ B87AB476DCF76E72010632B5550955F5, E6E74D3A86A7917A8BAED44F8E97CCD2EB171E4E4B27E9907F60D1523FAF319A ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
20:22:05.0953 0x0964 IpInIp - ok
20:22:06.0031 0x0964 [ CC748EA12C6EFFDE940EE98098BF96BB, AF523E21C25D9A1715EFEA573E4F52AF5D4FC9F28A2D613F5DB629C186C439E0 ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
20:22:06.0046 0x0964 IpNat - ok
20:22:06.0078 0x0964 [ 23C74D75E36E7158768DD63D92789A91, 394D296F38E7D8EFD91A6EEC301D9CE6AF910E35EB9819F1A9E3363863AEDFDC ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
20:22:06.0093 0x0964 IPSec - ok
20:22:06.0140 0x0964 [ C93C9FF7B04D772627A3646D89F7BF89, 805FA48E7A46D4F10240BF880A2468F53DEA36E83004399228AB70DB7D20544A ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
20:22:06.0140 0x0964 IRENUM - ok
20:22:06.0218 0x0964 [ 05A299EC56E52649B1CF2FC52D20F2D7, 2654619DB3E6D6C385B63AB02F87D4241C4F0250CC31383D1B3586917166C2DC ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
20:22:06.0218 0x0964 isapnp - ok
20:22:06.0265 0x0964 [ 463C1EC80CD17420A542B7F36A36F128, E3B11BA26AFEAFB50B0FC168EA07F6049DA6B88BCDDEEE20310602D7FC27A3A7 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
20:22:06.0265 0x0964 Kbdclass - ok
20:22:06.0312 0x0964 [ 9EF487A186DEA361AA06913A75B3FA99, B94EBA4EC6D85E11C81AF9927E9EF0AF2E6FE134CFF1FDB0535B7C5A794B4261 ] kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys
20:22:06.0312 0x0964 kbdhid - ok
20:22:06.0421 0x0964 [ 692BCF44383D056AED41B045A323D378, 1A99DEE83FFAF64E73067FC049C0A4CE07D94E4AE31EFA17B38CEFA9E41D67DC ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
20:22:06.0437 0x0964 kmixer - ok
20:22:06.0484 0x0964 [ 1705745D900DABF2D89F90EBADDC7517, FE90589415BDB3BA482D3EBE1A87A7BF1429791E8F18BCB66BF8874631CC8B2C ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
20:22:06.0500 0x0964 KSecDD - ok
20:22:06.0593 0x0964 [ F385F4B02C535BFFE1D70CAB80838123, A1695E161673BCB77CE150C2D98A07FCB454C53F10EEBECD754D2CC40DEAA1E0 ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
20:22:06.0609 0x0964 lanmanserver - ok
20:22:06.0703 0x0964 [ 1B67B632786FEF1C1BBAEF46C2F3F2E6, 48A6DB1EC7515F0DDD0639AEE3056F32C273B4D541F3647915A32ABA140DA34A ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
20:22:06.0734 0x0964 lanmanworkstation - ok
20:22:06.0750 0x0964 lbrtfdc - ok
20:22:06.0843 0x0964 [ A7DB739AE99A796D91580147E919CC59, EDF4E039BA277B0E6D66FEB0B28096E67D682C09DFC18ECECF062D9DCFB75ACF ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
20:22:06.0843 0x0964 LmHosts - ok
20:22:06.0937 0x0964 [ 6F9ED0BF94350F51DD73B96ECF7843C3, 47F116CDA844078F1EA6B054958E37FA8000A2EC753AE2C3EC6B396AA00C4E9B ] ltmodem5 C:\WINDOWS\system32\DRIVERS\ltmdmnt.sys
20:22:07.0000 0x0964 ltmodem5 - ok
20:22:07.0046 0x0964 [ 986B1FF5814366D71E0AC5755C88F2D3, E6AF051174531C24B38E73987755D366ABEC595476C6D17793E8DCCC73F55340 ] Messenger C:\WINDOWS\System32\msgsvc.dll
20:22:07.0062 0x0964 Messenger - ok
20:22:07.0109 0x0964 [ 4AE068242760A1FB6E1A44BF4E16AFA6, 1FB771162B96AAF787AC24867B818DF8511F0780BB094FA9A38C11D8DBFE68BC ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
20:22:07.0109 0x0964 mnmdd - ok
20:22:07.0156 0x0964 [ D18F1F0C101D06A1C1ADF26EED16FCDD, BA0837C7780BD8262E143E2935AFA63BE59C3C39EF56CB8608EED0F50AF070D4 ] mnmsrvc C:\WINDOWS\System32\mnmsrvc.exe
20:22:07.0171 0x0964 mnmsrvc - ok
20:22:07.0218 0x0964 [ DFCBAD3CEC1C5F964962AE10E0BCC8E1, B342CC9EC3729AB1AB4B5E2E99F890C1E0CA649162DE91F6768AB857B719E97B ] Modem C:\WINDOWS\system32\drivers\Modem.sys
20:22:07.0218 0x0964 Modem - ok
20:22:07.0265 0x0964 [ 35C9E97194C8CFB8430125F8DBC34D04, 0C0FCE6B0A23FB0ECB92E1663E1C72D2DD5B177D82E04782957690B69530DB39 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
20:22:07.0265 0x0964 Mouclass - ok
20:22:07.0328 0x0964 [ B1C303E17FB9D46E87A98E4BA6769685, 161A45488522055D0F0474ABEDA04DDD0B5DAC2411AF9154B15190BBD66E7153 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
20:22:07.0328 0x0964 mouhid - ok
20:22:07.0375 0x0964 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD, 2A5E15ED2C24C6C65EF2F7E1FD93374774076C9D8D451E4422561F4D269C012F ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
20:22:07.0390 0x0964 MountMgr - ok
20:22:07.0421 0x0964 mraid35x - ok
20:22:07.0453 0x0964 mrtRate - ok
20:22:07.0546 0x0964 [ 11D42BB6206F33FBB3BA0288D3EF81BD, 76ABCFB62C5AC549F58C231F72A99882CDEB74928104B77FE52554765C2B1A22 ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
20:22:07.0562 0x0964 MRxDAV - ok
20:22:07.0703 0x0964 [ 68755F0FF16070178B54674FE5B847B0, 2FFBCE3A67FA7E30E373624521C602E5510C5565F04381C6C9F961253DA928A6 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
20:22:07.0765 0x0964 MRxSmb - ok
20:22:07.0828 0x0964 [ A137F1470499A205ABBB9AAFB3B6F2B1, FB4951727543030D9E6ED74149C3FAACE2CA9DA8C1B5F616301B30B858C724E8 ] MSDTC C:\WINDOWS\System32\msdtc.exe
20:22:07.0828 0x0964 MSDTC - ok
20:22:07.0890 0x0964 [ C941EA2454BA8350021D774DAF0F1027, C940E978C7B66A713A0FDAB54B5F995DF59D089AFCD96221DD3222948CD49BBD ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
20:22:07.0890 0x0964 Msfs - ok
20:22:07.0921 0x0964 MSIServer - ok
20:22:07.0953 0x0964 [ D1575E71568F4D9E14CA56B7B0453BF1, 4ABE0E24786C0D39FA2B885447E56204CA6942FB175E534DCE675D7BCF0B176A ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
20:22:07.0968 0x0964 MSKSSRV - ok
20:22:08.0015 0x0964 [ 325BB26842FC7CCC1FCCE2C457317F3E, C07BE560513B1FB91D756494F0BA4AEEB2E1998DE0E1C21EE83DB1183B0CEE91 ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
20:22:08.0015 0x0964 MSPCLOCK - ok
20:22:08.0062 0x0964 [ BAD59648BA099DA4A17680B39730CB3D, 9AD4C7C94C186C8815D0BC75DCAFB962158DA6935A244BA243EDDDEB33F9816C ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
20:22:08.0062 0x0964 MSPQM - ok
20:22:08.0109 0x0964 [ AF5F4F3F14A8EA2C26DE30F7A1E17136, AC93A1E4ABB0D038B772E429015567E44CC2EDB66C54DBE23A5F98176FAC1520 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
20:22:08.0140 0x0964 mssmbios - ok
20:22:08.0187 0x0964 [ 2F625D11385B1A94360BFC70AAEFDEE1, 23E4974120233CF1A7BEE48977706A0A55418699379D1450502ABEB24191AC80 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
20:22:08.0203 0x0964 Mup - ok
20:22:08.0250 0x0964 [ 19DD5C581EEF70134CCEF87D626F4417, 42D558F9E540321A9C55AF876E743819C42519A4CD71347199D3D1E8BC244E54 ] MxlW2k C:\WINDOWS\system32\drivers\MxlW2k.sys
20:22:08.0250 0x0964 MxlW2k - ok
20:22:08.0359 0x0964 [ 0102140028FAD045756796E1C685D695, 5335B8278418CA200E2772124F0602C3E15A5CAF2D5CC59F6785DFAABF339B09 ] napagent C:\WINDOWS\System32\qagentrt.dll
20:22:08.0437 0x0964 napagent - ok
20:22:08.0531 0x0964 [ 1DF7F42665C94B825322FAE71721130D, FE0DCB728471465B39A42A7511F4133021FBA5DF88F88BCB5FE2FF34CFD713F9 ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
20:22:08.0546 0x0964 NDIS - ok
20:22:08.0593 0x0964 [ 1AB3D00C991AB086E69DB84B6C0ED78F, 1F881FCCF5557C44C078D99CA2DD38D635413D6212DBEDC06A428EDAC7F8B04E ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
20:22:08.0609 0x0964 NdisTapi - ok
20:22:08.0640 0x0964 [ F927A4434C5028758A842943EF1A3849, B1AA3AF150C05307461774925901789456B0CCCD03A5E71ADA4AB58455962BEE ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
20:22:08.0640 0x0964 Ndisuio - ok
20:22:08.0703 0x0964 [ EDC1531A49C80614B2CFDA43CA8659AB, 494042F790F33721328B4451E79842E21919681CC421A4F9633EC4D383E06097 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
20:22:08.0718 0x0964 NdisWan - ok
20:22:08.0765 0x0964 [ 6215023940CFD3702B46ABC304E1D45A, C767F3A349B365F6E7566C0738E2F62D8FFF8CB4457347E3614BD403BC6CADCB ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
20:22:08.0781 0x0964 NDProxy - ok
20:22:08.0828 0x0964 [ 5D81CF9A2F1A3A756B66CF684911CDF0, 7989C36607CAEA17AFA2C1C9904145CA0714A54B9F712D9D4C1AB140D0B2CC0C ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
20:22:08.0843 0x0964 NetBIOS - ok
20:22:08.0921 0x0964 [ 74B2B2F5BEA5E9A3DC021D685551BD3D, 7932B71F98B4122BE88F576BF6D745A757AE378A48924B7F4358837B75640A82 ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
20:22:08.0937 0x0964 NetBT - ok
20:22:10.0078 0x0964 [ B857BA82860D7FF85AE29B095645563B, 86FF0E4CDD9C394E8BABD93A4D57E73FF9A779261717DEC6E9CDE99F1C6B0F4C ] NetDDE C:\WINDOWS\system32\netdde.exe
20:22:10.0109 0x0964 NetDDE - ok
20:22:10.0140 0x0964 [ B857BA82860D7FF85AE29B095645563B, 86FF0E4CDD9C394E8BABD93A4D57E73FF9A779261717DEC6E9CDE99F1C6B0F4C ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
20:22:10.0156 0x0964 NetDDEdsdm - ok
20:22:10.0218 0x0964 [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] Netlogon C:\WINDOWS\System32\lsass.exe
20:22:10.0218 0x0964 Netlogon - ok
20:22:10.0296 0x0964 [ 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE, 4E0A67B3CC897E80D4B342FFE8B7B4CC4F6CA2EF2D34C136027A098B2E1C6166 ] Netman C:\WINDOWS\System32\netman.dll
20:22:10.0312 0x0964 Netman - ok
20:22:10.0421 0x0964 [ B4138E99236F0F57D4CF49BAE98A0746, DDEAE046C1165C41F06933E808B143118208B02BB83FA80BEF8F550D4DC78149 ] Nla C:\WINDOWS\System32\mswsock.dll
20:22:10.0453 0x0964 Nla - ok
20:22:10.0500 0x0964 [ 3182D64AE053D6FB034F44B6DEF8034A, 4ADFC76965BA2A5F488E71789A4E4EA702A74AF42725F72130D1CA919406CF19 ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
20:22:10.0515 0x0964 Npfs - ok
20:22:10.0656 0x0964 [ 78A08DD6A8D65E697C18E1DB01C5CDCA, E0E6F3ED05068E32F1D5C2D2B38CDEF4536B8656DB6756C66CF6B40B60C8F3DA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
20:22:10.0718 0x0964 Ntfs - ok
20:22:10.0765 0x0964 [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] NtLmSsp C:\WINDOWS\System32\lsass.exe
20:22:10.0765 0x0964 NtLmSsp - ok
20:22:10.0937 0x0964 [ 156F64A3345BD23C600655FB4D10BC08, 9611BE411586E068D9297D77102DB3BE48AA67F1BAD6F61A84F83FC3043FA9CD ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
20:22:11.0093 0x0964 NtmsSvc - ok
20:22:11.0156 0x0964 [ 73C1E1F395918BC2C6DD67AF7591A3AD, B21133A75253EC15E2DFF66D3B480AB1A7E1A2360476C810E7AA55D0F0EB08D4 ] Null C:\WINDOWS\system32\drivers\Null.sys
20:22:11.0156 0x0964 Null - ok
20:22:11.0390 0x0964 [ 2B298519EDBFCF451D43E0F1E8F1006D, 67F3F2001F4C8DABD253D60AB3222793635532DC51AD977954286F8A246F5592 ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
20:22:11.0578 0x0964 nv - ok
20:22:11.0656 0x0964 [ FF73CCF924226C1E4D4AF8F34CF2D1F3, 09181A0A41F2EE6DC4626FAD101B73F619F288910732B19C5131BBA07E3CDF2E ] NVSvc C:\WINDOWS\System32\nvsvc32.exe
20:22:11.0656 0x0964 NVSvc - ok
20:22:11.0687 0x0964 [ B305F3FAD35083837EF46A0BBCE2FC57, 9D0E0E666D652D0FC9EAB97280A5D67AAF61D6B21929DF7CF8ED72A367720464 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
20:22:11.0687 0x0964 NwlnkFlt - ok
20:22:11.0734 0x0964 [ C99B3415198D1AAB7227F2C88FD664B9, DD8DA4B5E804F134AB9233859544C025062902DFC3E8FB8A09A67337A4E73F55 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
20:22:11.0734 0x0964 NwlnkFwd - ok
20:22:11.0796 0x0964 [ 5575FAF8F97CE5E713D108C2A58D7C7C, 96D4595D19A78CCBE8B325A08780AC077AE5CC99642ACD72FB47AEAE8D344D3B ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys
20:22:11.0812 0x0964 Parport - ok
20:22:11.0843 0x0964 [ BEB3BA25197665D82EC7065B724171C6, 7E71C13BA30CD95CEE8A9CC85E6F48A01F30EDEAADEE69D80AE828BF97E5A5CA ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
20:22:11.0843 0x0964 PartMgr - ok
20:22:11.0890 0x0964 [ 70E98B3FD8E963A6A46A2E6247E0BEA1, 6771313EC41B3B5BFD398F60706E40BE71617046880CC352DD110B001AFC22A1 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
20:22:11.0890 0x0964 ParVdm - ok
20:22:11.0968 0x0964 [ A219903CCF74233761D92BEF471A07B1, D4E6C360A1D2FCA4D17C991B834D68BF20F5111DD06B1FAB8B22984804CEC269 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
20:22:11.0968 0x0964 PCI - ok
20:22:12.0000 0x0964 PCIDump - ok
20:22:12.0046 0x0964 [ CCF5F451BB1A5A2A522A76E670000FF0, D63F7E5A39653EC9CCE94B7D84B2D3EBD4F54533BD65701020198724042C9257 ] PCIIde C:\WINDOWS\System32\DRIVERS\pciide.sys
20:22:12.0046 0x0964 PCIIde - ok
20:22:12.0125 0x0964 [ 9E89EF60E9EE05E3F2EEF2DA7397F1C1, 0BA3DB21DC7C641C181E2635B5C9B73965FDCDCD3EBBBE48FCFEC1C8C987F617 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
20:22:12.0140 0x0964 Pcmcia - ok
20:22:12.0156 0x0964 PDCOMP - ok
20:22:12.0187 0x0964 PDFRAME - ok
20:22:12.0218 0x0964 PDRELI - ok
20:22:12.0250 0x0964 PDRFRAME - ok
20:22:12.0281 0x0964 perc2 - ok
20:22:12.0312 0x0964 perc2hib - ok
20:22:12.0421 0x0964 [ DA86016F0672ADA925F589EDE715F185, 6D15AD035FBD68BEC8D9FED89D5FAC082589B194326A8C1C6EB73C471244A446 ] pfc C:\WINDOWS\system32\drivers\pfc.sys
20:22:12.0421 0x0964 pfc - ok
20:22:12.0484 0x0964 [ 0E776ED5F7CC9F94299E70461B7B8185, 22750B3829133D1D4BB3CE2FA6247BE2373B5D15A6ED1C8A71673AA1CE7D9530 ] PlugPlay C:\WINDOWS\system32\services.exe
20:22:12.0484 0x0964 PlugPlay - ok
20:22:12.0531 0x0964 [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] PolicyAgent C:\WINDOWS\system32\lsass.exe
20:22:12.0531 0x0964 PolicyAgent - ok
20:22:12.0593 0x0964 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99, C5F0C8C66A3AF7E7BB04CEDE4AC5306F8387AB384A2107DC5BE413AAE968EFF1 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
20:22:12.0625 0x0964 PptpMiniport - ok
20:22:12.0671 0x0964 [ A32BEBAF723557681BFC6BD93E98BD26, 35039BA72A29F87B2CA37DCDE4EFDAABBDEAD8CE3EB8652ACC665994118145A6 ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys
20:22:12.0671 0x0964 Processor - ok
20:22:12.0718 0x0964 [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
20:22:12.0718 0x0964 ProtectedStorage - ok
20:22:12.0765 0x0964 [ BFFDB363485501A38F0BCA83AEC810DB, FFD5DB5D5C2E088EE5E2A5F586A5DC0CC70E15DA811406465B4940FCE0B61B3A ] Ps2 C:\WINDOWS\system32\DRIVERS\PS2.sys
20:22:12.0765 0x0964 Ps2 - ok
20:22:12.0828 0x0964 [ 09298EC810B07E5D582CB3A3F9255424, 35473A1BE25AC289474090EB0806AC6B3035DC33D1F3DF97A14BF1E361AC6AC3 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
20:22:12.0843 0x0964 PSched - ok
20:22:12.0875 0x0964 [ 80D317BD1C3DBC5D4FE7B1678C60CADD, DA76804B55D0CAB3DDD01EFC06673764AE4860693375C658B6063FB14AF7F12C ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
20:22:12.0875 0x0964 Ptilink - ok
20:22:12.0937 0x0964 [ 73590A3732035A09B125D208A72BE73A, 4951F42C7266462985ABD158B343868B518F7E5678B9CE4E3B3A9E7C9F6CF822 ] PxHelp20 C:\WINDOWS\system32\DRIVERS\PxHelp20.sys
20:22:12.0953 0x0964 PxHelp20 - ok
20:22:12.0984 0x0964 ql1080 - ok
20:22:13.0015 0x0964 Ql10wnt - ok
20:22:13.0046 0x0964 ql12160 - ok
20:22:13.0078 0x0964 ql1240 - ok
20:22:13.0109 0x0964 ql1280 - ok
20:22:13.0156 0x0964 [ FE0D99D6F31E4FAD8159F690D68DED9C, 998685622ABE631984B7E4DBF91AB3594B1F574378D75EB9F6265F4650470692 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
20:22:13.0156 0x0964 RasAcd - ok
20:22:13.0250 0x0964 [ AD188BE7BDF94E8DF4CA0A55C00A5073, C7D76CB579FAEBCCC2873499441BACDD6BD6668ACF5ED7F31862656E96E2B20C ] RasAuto C:\WINDOWS\System32\rasauto.dll
20:22:13.0265 0x0964 RasAuto - ok
20:22:13.0328 0x0964 [ 11B4A627BC9614B885C4969BFA5FF8A6, EAE0A412A2B0F68919C32A96B3A08CC1A06585E4998819F5C9051745F63FF5AD ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
20:22:13.0328 0x0964 Rasl2tp - ok
20:22:13.0437 0x0964 [ 76A9A3CBEADD68CC57CDA5E1D7448235, 4AFD048C5D2306AB8DE46F3AA60AC0213333DDA3B09A9E91F7585DB6EB978EC8 ] RasMan C:\WINDOWS\System32\rasmans.dll
20:22:13.0453 0x0964 RasMan - ok
20:22:13.0515 0x0964 [ 5BC962F2654137C9909C3D4603587DEE, A5CE5653D0105240F5E86CFAAB89E7917D42D939E2F27A5A7D6979289CA651B8 ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
20:22:13.0531 0x0964 RasPppoe - ok
20:22:13.0578 0x0964 [ FDBB1D60066FCFBB7452FD8F9829B242, 10A2DACF944BD000032EBA8C095CB3D879CC55B28C377ADF6E52E508E47444DB ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
20:22:13.0578 0x0964 Raspti - ok
20:22:13.0656 0x0964 [ 7AD224AD1A1437FE28D89CF22B17780A, 6645235CA27D671954E3557FA37082881C3D7D47492C71264CD8CB8D108EC801 ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
20:22:13.0687 0x0964 Rdbss - ok
20:22:13.0718 0x0964 [ 4912D5B403614CE99C28420F75353332, 975341ECD660209987B5E5171B8315E032439E408CBE8A5986E67AF767F373BB ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
20:22:13.0718 0x0964 RDPCDD - ok
20:22:13.0828 0x0964 [ 6728E45B66F93C08F11DE2E316FC70DD, EA63ECD4F84CAE08BD2BF843C48AF505B1B9D7B61349A63536C9C6FEBEF23452 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
20:22:13.0843 0x0964 RDPWD - ok
20:22:13.0921 0x0964 [ 3C37BF86641BDA977C3BF8A840F3B7FA, AB9A6E54DBA3F4561CD4837372BECCE0D73943D02E3288F944333039375AC08C ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
20:22:13.0953 0x0964 RDSessMgr - ok
20:22:14.0015 0x0964 [ F828DD7E1419B6653894A8F97A0094C5, E6150E1F598BA4CFEDB8FF075BC0D576518C331B864388F1CAE8812EFF106ECF ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
20:22:14.0031 0x0964 redbook - ok
20:22:14.0078 0x0964 [ 7E699FF5F59B5D9DE5390E3C34C67CF5, 3FCF0442D80AB181FED4303E570378736AA1F8718C0B8B70F689A1E45200FFE4 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
20:22:14.0093 0x0964 RemoteAccess - ok
20:22:14.0171 0x0964 [ AAED593F84AFA419BBAE8572AF87CF6A, CC0FFC5A69394C8830DC66320DA01A820BBF41AD7E57D0FC343561DC5EF9A360 ] RpcLocator C:\WINDOWS\System32\locator.exe
20:22:14.0187 0x0964 RpcLocator - ok
20:22:14.0328 0x0964 [ 2589FE6015A316C0F5D5112B4DA7B509, 2753785BA07A1A7A25E275332F5F9F403F6E8CBF396FD0905D6BA84B98C403A6 ] RpcSs C:\WINDOWS\system32\rpcss.dll
20:22:14.0343 0x0964 RpcSs - ok
20:22:14.0437 0x0964 [ 471B3F9741D762ABE75E9DEEA4787E47, D9ADE42965EC22AEB4B2AD21D429C3C8232A60AA9853DEFDA7AED86A13FE8623 ] RSVP C:\WINDOWS\System32\rsvp.exe
20:22:14.0453 0x0964 RSVP - ok
20:22:14.0531 0x0964 [ D507C1400284176573224903819FFDA3, DD0BDB2AB39A8A0A300B6D60FB6A7F5BA08C4DB8F59E0A784FB763EA8AD72AB2 ] rtl8139 C:\WINDOWS\system32\DRIVERS\RTL8139.SYS
20:22:14.0546 0x0964 rtl8139 - ok
20:22:14.0640 0x0964 [ 0DBCC071A268E0340A2BA6BDD98BACE4, 1DDC39AF8FC7342A5C0D314B6F20E212400472349B15769F0480C2C48636DFCF ] S3Psddr C:\WINDOWS\system32\DRIVERS\s3gnbm.sys
20:22:14.0671 0x0964 S3Psddr - ok
20:22:14.0703 0x0964 [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] SamSs C:\WINDOWS\system32\lsass.exe
20:22:14.0718 0x0964 SamSs - ok
20:22:14.0781 0x0964 [ 86D007E7A654B9A71D1D7D856B104353, 7B1DE53D637A5FC9619D5D07C48927AFEC89D959207F6F2E2F45DD054EEA04C7 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
20:22:14.0796 0x0964 SCardSvr - ok
20:22:14.0921 0x0964 [ 0A9A7365A1CA4319AA7C1D6CD8E4EAFA, 0B582F47BD70732BAC48B8B86E5D06CE7F299A20E8177F3F2E6F28217C3FB605 ] Schedule C:\WINDOWS\system32\schedsvc.dll
20:22:14.0968 0x0964 Schedule - ok
20:22:15.0406 0x0964 [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
20:22:15.0421 0x0964 Secdrv - ok
20:22:15.0468 0x0964 [ CBE612E2BB6A10E3563336191EDA1250, C331797DC3569F0E715766561DE2562F60B924378842246C35D2B1CF867E9D96 ] seclogon C:\WINDOWS\System32\seclogon.dll
20:22:15.0468 0x0964 seclogon - ok
20:22:15.0515 0x0964 [ 7FDD5D0684ECA8C1F68B4D99D124DCD0, 7105B026F966A992430F86C3698ABE15EC73E4772F1A3E362E29FD5247A5DCA6 ] SENS C:\WINDOWS\system32\sens.dll
20:22:15.0515 0x0964 SENS - ok
20:22:15.0562 0x0964 [ 0F29512CCD6BEAD730039FB4BD2C85CE, 4F98AE390D1B14A755700DD6CEFB9CF921F0404AF2145D2D7E5F52394F87C6A5 ] Serenum C:\WINDOWS\system32\DRIVERS\serenum.sys
20:22:15.0578 0x0964 Serenum - ok
20:22:15.0640 0x0964 [ CCA207A8896D4C6A0C9CE29A4AE411A7, 5999B39242283CD803319AADCA171CCCC6E2A40FB2FAFA51B1D29F3FF2DD8D6C ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys
20:22:15.0640 0x0964 Serial - ok
20:22:15.0671 0x0964 [ 8E6B8C671615D126FDC553D1E2DE5562, CEEC0067514555D5CA489F50E3D7562FCA8DB8E952C3C878604C9277FC77959F ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
20:22:15.0687 0x0964 Sfloppy - ok
20:22:15.0828 0x0964 [ 83F41D0D89645D7235C051AB1D9523AC, B681F33EEAA511D6A2DCB9FBAA407B739184C9FF6067C6B7E51F1FC37E9D4DD7 ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
20:22:15.0921 0x0964 SharedAccess - ok
20:22:16.0015 0x0964 [ 1926899BF9FFE2602B63074971700412, F5C48EDBE5C6507527630B49C95BAA9F1E47EACC5A910F2B9A4528733E81A966 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
20:22:16.0031 0x0964 ShellHWDetection - ok
20:22:16.0046 0x0964 Simbad - ok
20:22:16.0156 0x0964 [ 99D5140D748BA27576A4C883E536E6D6, C2798DCD549A21DAF95A5CA3465C1477121BA96557B3C7202BA8E3AD4663129E ] SISAGP C:\WINDOWS\system32\DRIVERS\SISAGP.sys
20:22:16.0203 0x0964 SISAGP - ok
20:22:16.0234 0x0964 Sparrow - ok
20:22:16.0296 0x0964 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F, DD17733CBB370FCA08F0296704D7CBEACA3C8F76D0ABE4761C3B1FFDF7481D9E ] splitter C:\WINDOWS\system32\drivers\splitter.sys
20:22:16.0296 0x0964 splitter - ok
20:22:16.0359 0x0964 [ D8E14A61ACC1D4A6CD0D38AEBAC7FA3B, 130D686A220AF97EBF33DD481B79990F259B4EE38DD95A35CD3D0F0517790FF0 ] Spooler C:\WINDOWS\system32\spoolsv.exe
20:22:16.0375 0x0964 Spooler - ok
20:22:16.0421 0x0964 [ 76BB022C2FB6902FD5BDD4F78FC13A5D, 6031CB2344D7277FC703480EB43CF856A0F8F818EA98FF26A2CA532336CD2DFA ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
20:22:16.0437 0x0964 sr - ok
20:22:16.0515 0x0964 [ 3805DF0AC4296A34BA4BF93B346CC378, B57A14F1B7B0997E619DDD62B73157AA2399A9852166FB58139CBB358A88F6F3 ] srservice C:\WINDOWS\system32\srsvc.dll
20:22:16.0546 0x0964 srservice - ok
20:22:16.0656 0x0964 [ 5252605079810904E31C332E241CD59B, 039DD965DE2137219168F95CA3BF1CA7353957026BDD0481F7964E2578DF2128 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
20:22:16.0703 0x0964 Srv - ok
20:22:16.0781 0x0964 [ 0A5679B3714EDAB99E357057EE88FCA6, 01E1A101FFF48402C77E385A78FEF27876E04533B60EB1C18558A737E57E5FA8 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
20:22:16.0781 0x0964 SSDPSRV - ok
20:22:16.0937 0x0964 [ 8BAD69CBAC032D4BBACFCE0306174C30, 2AA0DA710FCBFF38FE8DA91EE02E7A4503269347E61F8D3246FCA3384BBA2305 ] stisvc C:\WINDOWS\system32\wiaservc.dll
20:22:16.0984 0x0964 stisvc - ok
20:22:17.0031 0x0964 [ 3941D127AEF12E93ADDF6FE6EE027E0F, EA1F0E32E1C5E90FA4AAC421DEBBE086512340758D3217A6334E886BCE638B51 ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
20:22:17.0031 0x0964 swenum - ok
20:22:17.0078 0x0964 [ 8CE882BCC6CF8A62F2B2323D95CB3D01, B408550A581F3DA222355964AFA4E976AD8471F0AA37573C42C4948AE5A23A3B ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
20:22:17.0109 0x0964 swmidi - ok
20:22:17.0125 0x0964 SwPrv - ok
20:22:17.0171 0x0964 symc810 - ok
20:22:17.0218 0x0964 symc8xx - ok
20:22:17.0234 0x0964 sym_hi - ok
20:22:17.0296 0x0964 sym_u3 - ok
20:22:17.0359 0x0964 [ 8B83F3ED0F1688B4958F77CD6D2BF290, 546D3602183702B4F53E84413CFA2C933D64C8540378E54A8DCD148F3F36A2DA ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
20:22:17.0390 0x0964 sysaudio - ok
20:22:17.0468 0x0964 [ C7ABBC59B43274B1109DF6B24D617051, 4384CA0AA6CE9B603CF7DB775A3C721E46715D5B120B94FB57DEADAADE18535B ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
20:22:17.0484 0x0964 SysmonLog - ok
20:22:17.0609 0x0964 [ 3CB78C17BB664637787C9A1C98F79C38, F35C31F6B7F366CB949D1044B357C76DEC9170441C5E559802794F62B72FD255 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
20:22:17.0640 0x0964 TapiSrv - ok
20:22:17.0750 0x0964 [ 93EA8D04EC73A85DB02EB8805988F733, 013008E23F5F14E0C836C28524D1181759BAF84530C6331163882A772217F398 ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
20:22:17.0796 0x0964 Tcpip - ok
20:22:17.0828 0x0964 [ 6471A66807F5E104E4885F5B67349397, F35CBFFB8BB235CCE30EF94A5273333900DD49FD506BF9D55D99A320B8A53A5A ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
20:22:17.0828 0x0964 TDPIPE - ok
20:22:17.0875 0x0964 [ C56B6D0402371CF3700EB322EF3AAF61, 7743FA4C734BCE38EFB1CA69BC17364D8421E2CD172F856F7E38E7AE1EE93F2F ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
20:22:17.0875 0x0964 TDTCP - ok
20:22:17.0953 0x0964 [ 88155247177638048422893737429D9E, B6D4E8691917946332C2208D01F8C8281978C1AD1E9951C5D99DF0D49AC34B3B ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
20:22:17.0968 0x0964 TermDD - ok
20:22:18.0156 0x0964 [ FF3477C03BE7201C294C35F684B3479F, D6246521539BA4ACD022D26983182F5E323D2EF1EA7C54265A248C43A1CE5202 ] TermService C:\WINDOWS\System32\termsrv.dll
20:22:18.0328 0x0964 TermService - ok
20:22:18.0406 0x0964 [ 1926899BF9FFE2602B63074971700412, F5C48EDBE5C6507527630B49C95BAA9F1E47EACC5A910F2B9A4528733E81A966 ] Themes C:\WINDOWS\System32\shsvcs.dll
20:22:18.0421 0x0964 Themes - ok
20:22:18.0453 0x0964 TosIde - ok
20:22:18.0531 0x0964 [ 55BCA12F7F523D35CA3CB833C725F54E, 849FB1AE31B143B14B298BBC0D91230693D41DEB95F46516878F53A7F4186C38 ] TrkWks C:\WINDOWS\system32\trkwks.dll
20:22:18.0531 0x0964 TrkWks - ok
20:22:18.0609 0x0964 [ 5787B80C2E3C5E2F56C2A233D91FA2C9, 3774905CF77954DFCECDA5BCC7CDE3D0ED72712BFAAD85ADAE5246306447E46C ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
20:22:18.0609 0x0964 Udfs - ok
20:22:18.0640 0x0964 ultra - ok
20:22:18.0765 0x0964 [ 402DDC88356B1BAC0EE3DD1580C76A31, 32A686595710336A6BFD54C03F552AE39439611662F84EF5D24193AE5665C6F3 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
20:22:18.0796 0x0964 Update - ok
20:22:18.0890 0x0964 [ 1EBAFEB9A3FBDC41B8D9C7F0F687AD91, 7746916DB48E3F5B243B63C066596AD9037A494BF1AD935946DD04AC85D983DF ] upnphost C:\WINDOWS\System32\upnphost.dll
20:22:18.0906 0x0964 upnphost - ok
20:22:18.0953 0x0964 [ 05365FB38FCA1E98F7A566AAAF5D1815, 16843048CEEC3DAA3B953A12FF1EE339E86783A08F2A56DA7F94AD9F9717D77D ] UPS C:\WINDOWS\System32\ups.exe
20:22:18.0953 0x0964 UPS - ok
20:22:19.0031 0x0964 [ 173F317CE0DB8E21322E71B7E60A27E8, 7042441BA63AE38AE9D7BE0BC5CA7404FC9EE5BB3F084604A68F01E82769652A ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
20:22:19.0031 0x0964 usbccgp - ok
20:22:19.0140 0x0964 [ 65DCF09D0E37D4C6B11B5B0B76D470A7, 90EBA8BAF45932B453D905EDF2BDDDF3A432BFD50B9F7DF58CDEAE98D11C2E2F ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
20:22:19.0140 0x0964 usbehci - ok
20:22:19.0203 0x0964 [ 1AB3CDDE553B6E064D2E754EFE20285C, A99C4528C4227B1E96847614745AAFACD3C5F1BDFE435214DBF78740FFB300FE ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
20:22:19.0203 0x0964 usbhub - ok
20:22:19.0234 0x0964 [ 0DAECCE65366EA32B162F85F07C6753B, 3C33AC2FC95E876933F2016CF0CDA2745491679728684DA8DF95A515CE4804BD ] usbohci C:\WINDOWS\system32\DRIVERS\usbohci.sys
20:22:19.0234 0x0964 usbohci - ok
20:22:19.0281 0x0964 [ 26496F9DEE2D787FC3E61AD54821FFE6, 8BE7FF647470B9A951CBB478FAF83D657A15CC78037F42348A6B738F21D523DA ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
20:22:19.0281 0x0964 usbuhci - ok
20:22:19.0328 0x0964 [ 0D3A8FAFCEACD8B7625CD549757A7DF1, B9CFDEFCD66AA139F3DC2F967B184669532922563AD5A71769BABDC4370D065E ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
20:22:19.0328 0x0964 VgaSave - ok
20:22:19.0390 0x0964 [ 099F10C7B9D4C7A2BF48D4C6ECA1E7F1, 59BF7F8A7E2F9DB4E30621FEA9AFA96DDC757858403C53BC4D964758AC24DACD ] viaagp1 C:\WINDOWS\system32\DRIVERS\viaagp1.sys
20:22:19.0406 0x0964 viaagp1 - ok
20:22:19.0453 0x0964 [ 3B3EFCDA263B8AC14FDF9CBDD0791B2E, FC7FFD53FCC0F81587EFF26A43C141D25C43DBC68311520CE2BCDD739CA58CA9 ] ViaIde C:\WINDOWS\System32\DRIVERS\viaide.sys
20:22:19.0453 0x0964 ViaIde - ok
20:22:19.0500 0x0964 [ 4C8FCB5CC53AAB716D810740FE59D025, 010EAC43DBED700B73E4FC908FAAF9F6A0168EBBD5D86751E49BC33AAA18BFA4 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
20:22:19.0515 0x0964 VolSnap - ok
20:22:19.0640 0x0964 [ 7A9DB3A67C333BF0BD42E42B8596854B, D31A9A3B1AAAB373EDD73B674102395212FCB616F829E938B7B2B7BE7D4752C5 ] VSS C:\WINDOWS\System32\vssvc.exe
20:22:19.0687 0x0964 VSS - ok
20:22:19.0781 0x0964 [ 54AF4B1D5459500EF0937F6D33B1914F, FA1876888BCB9C72A92369DBED4FF1A8666784523FB41E618FA0919490FCDDB9 ] W32Time C:\WINDOWS\system32\w32time.dll
20:22:19.0796 0x0964 W32Time - ok
20:22:19.0890 0x0964 [ E20B95BAEDB550F32DD489265C1DA1F6, 5589B2067E6C9FBA290D8C5EADDC198EBAF39C50C3CD7D2BC5CDA7CBFBC445E5 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
20:22:19.0890 0x0964 Wanarp - ok
20:22:19.0906 0x0964 WDICA - ok
20:22:20.0000 0x0964 [ 6768ACF64B18196494413695F0C3A00F, 3A8F8586F1D997D19A8478345338D2AECD785AEABDB61531DD3F92003D3230A5 ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
20:22:20.0015 0x0964 wdmaud - ok
20:22:20.0078 0x0964 [ 77A354E28153AD2D5E120A5A8687BC06, 8B2D37A4443501C0A8E70BC2079BE27F0A36FD07B561E6F68B40A72EABBC2DFE ] WebClient C:\WINDOWS\System32\webclnt.dll
20:22:20.0093 0x0964 WebClient - ok
20:22:20.0218 0x0964 [ 2D0E4ED081963804CCC196A0929275B5, E1D75C7D7233D81DFDE13160B0C80138DF8B35230D04FB79B367A52FACF69BF8 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
20:22:20.0250 0x0964 winmgmt - ok
20:22:20.0359 0x0964 [ C51B4A5C05A5475708E3C81C7765B71D, F776D2680BD3407307B7072626F78460361FC5BC38623C9E16F394D300AB25DE ] WmdmPmSN C:\WINDOWS\System32\mspmsnsv.dll
20:22:20.0359 0x0964 WmdmPmSN - ok
20:22:20.0468 0x0964 [ E0673F1106E62A68D2257E376079F821, 12992F18C9653050B10DC61D12988067933FCFDF02123D3A7EF5DE607A785DDC ] WmiApSrv C:\WINDOWS\System32\wbem\wmiapsrv.exe
20:22:20.0484 0x0964 WmiApSrv - ok
20:22:20.0546 0x0964 [ 6ABE6E225ADB5A751622A9CC3BC19CE8, 4061C5D0F051DFF1730E2A3BFC1CCA97B29602FC50F10F6B44D93B0D28F42024 ] WS2IFSL C:\WINDOWS\System32\drivers\ws2ifsl.sys
20:22:20.0546 0x0964 WS2IFSL - ok
20:22:20.0609 0x0964 [ 7C278E6408D1DCE642230C0585A854D5, DA46079A04F6E8E3441E4AE454AEAC02B3E935DE29CE7F6D4476F57867FCC12A ] wscsvc C:\WINDOWS\system32\wscsvc.dll
20:22:20.0625 0x0964 wscsvc - ok
20:22:20.0671 0x0964 [ 35321FB577CDC98CE3EB3A3EB9E4610A, C9A6F5CF282D8FCB3CDFCC4B306013480E78E1B664E1A60A4E27B161F9FFD4CD ] wuauserv C:\WINDOWS\system32\wuauserv.dll
20:22:20.0671 0x0964 wuauserv - ok
20:22:20.0812 0x0964 [ 81DC3F549F44B1C1FFF022DEC9ECF30B, 3D14BFEA539F9CEB16555BD56C5E3C7C8F6692FC62C2789F8AAEA1C042E63940 ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
20:22:20.0859 0x0964 WZCSVC - ok
20:22:21.0000 0x0964 [ 295D21F14C335B53CB8154E5B1F892B9, 9418477C2E3EA93E93D931A4EDD4500DA568FAD6040204B5201D1080203B0BBC ] xmlprov C:\WINDOWS\System32\xmlprov.dll
20:22:21.0015 0x0964 xmlprov - ok
20:22:21.0078 0x0964 [ F0890825E7A9F4A808190A781C480568, 5B2805F19B2730A7A4AF2D74B4EA11FF20B0033CBFB80B866FF56490430FA952 ] {6080A529-897E-4629-A488-ABA0C29B635E} C:\WINDOWS\system32\drivers\ialmsbw.sys
20:22:21.0093 0x0964 {6080A529-897E-4629-A488-ABA0C29B635E} - ok
20:22:21.0156 0x0964 [ 8854F5453CCE4C5831538E935F92F73B, 49AF985DA8F43921C6903B10CB1EF29C5D9F755EFF44059B78B5C6B56F13A621 ] {D31A0762-0CEB-444e-ACFF-B049A1F6FE91} C:\WINDOWS\system32\drivers\ialmkchw.sys
20:22:21.0156 0x0964 {D31A0762-0CEB-444e-ACFF-B049A1F6FE91} - ok
20:22:21.0156 0x0964 ================ Scan global ===============================
20:22:21.0218 0x0964 [ 42F1F4C0AFB08410E5F02D4B13EBB623, 924C30587C51C0D1E1F47991969AF492A644552E15F2480EA991DCB74A3E68D5 ] C:\WINDOWS\system32\basesrv.dll
20:22:21.0343 0x0964 [ 1618F36D4F7F6CCCEB3EE44BA95BE85C, 1ED920E475221228EF215708701EC166A0B1BBCBD236E5B047420EBD0FF1371A ] C:\WINDOWS\system32\winsrv.dll
20:22:21.0421 0x0964 [ 1618F36D4F7F6CCCEB3EE44BA95BE85C, 1ED920E475221228EF215708701EC166A0B1BBCBD236E5B047420EBD0FF1371A ] C:\WINDOWS\system32\winsrv.dll
20:22:21.0484 0x0964 [ 0E776ED5F7CC9F94299E70461B7B8185, 22750B3829133D1D4BB3CE2FA6247BE2373B5D15A6ED1C8A71673AA1CE7D9530 ] C:\WINDOWS\system32\services.exe
20:22:21.0484 0x0964 [ Global ] - ok
20:22:21.0500 0x0964 ================ Scan MBR ==================================
20:22:21.0531 0x0964 [ 24BF22B59C30B9B11E1AF62CFC3C418E ] \Device\Harddisk0\DR0
20:22:23.0156 0x0964 \Device\Harddisk0\DR0 - ok
20:22:23.0156 0x0964 ================ Scan VBR ==================================
20:22:23.0187 0x0964 [ 0F01C4A6BDA3635CA3D54F7D4587C9F7 ] \Device\Harddisk0\DR0\Partition1
20:22:23.0187 0x0964 \Device\Harddisk0\DR0\Partition1 - ok
20:22:23.0218 0x0964 [ 265FC0B8590948BA9E08C14A23E8CEC8 ] \Device\Harddisk0\DR0\Partition2
20:22:23.0218 0x0964 \Device\Harddisk0\DR0\Partition2 - ok
20:22:23.0218 0x0964 Waiting for KSN requests completion. In queue: 152
20:22:24.0218 0x0964 Waiting for KSN requests completion. In queue: 152
20:22:25.0218 0x0964 Waiting for KSN requests completion. In queue: 152
20:22:26.0218 0x0964 Waiting for KSN requests completion. In queue: 152
20:22:27.0796 0x0964 Win FW state via NFM: enabled
20:22:30.0281 0x0964 ============================================================
20:22:30.0281 0x0964 Scan finished
20:22:30.0281 0x0964 ============================================================
20:22:30.0312 0x0998 Detected object count: 0
20:22:30.0312 0x0998 Actual detected object count: 0
Darlene

#33 peachy_dar

peachy_dar

    Silver Member

  • Authentic Member
  • PipPipPip
  • 341 posts
  • Interests:Riding our 2009 Navy Metallic blue Honda Goldwing Trike<br />Taking pictures and videos while riding the trike

Posted 16 March 2014 - 06:43 PM

looks like I ran an extra scan!!!

 

I must be tired!

 

The Good Wife comes on in 15 min.....

 

cya tomorrow!!

 

dar


Darlene

#34 jeffce

jeffce

    Malware Guy

  • Authentic Member
  • PipPipPipPipPipPip
  • 8,693 posts

Posted 17 March 2014 - 05:31 AM

Hi Dar!  :)

 

Hold on....this time with AdwCleaner I wanted for you to press the Clean button and then post the log created.  :)


Posted Image
 
 

#35 peachy_dar

peachy_dar

    Silver Member

  • Authentic Member
  • PipPipPip
  • 341 posts
  • Interests:Riding our 2009 Navy Metallic blue Honda Goldwing Trike<br />Taking pictures and videos while riding the trike

Posted 17 March 2014 - 04:56 PM

Jeff - I feel soooo dumbbbbbbbb......

Came home from work and rand adware scan and clean - here is the log:

# AdwCleaner v3.022 - Report created 17/03/2014 at 18:52:43
# Updated 13/03/2014 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : Owner - YOUR-6JNHHU0520
# Running from : C:\Documents and Settings\Owner\Desktop\AdwCleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Documents and Settings\All Users\Application Data\ParetoLogic
Folder Deleted : C:\Documents and Settings\All Users\Application Data\Viewpoint
Folder Deleted : C:\Program Files\Filesubmit
Folder Deleted : C:\Program Files\Free Offers from Freeze.com
Folder Deleted : C:\Program Files\Freeze.com
Folder Deleted : C:\Program Files\Viewpoint
Folder Deleted : C:\Program Files\Common Files\Viewpoint
Folder Deleted : C:\Documents and Settings\Owner\Local Settings\Application Data\Viewpoint
Folder Deleted : C:\Documents and Settings\Owner\Application Data\Systweak
File Deleted : C:\END
File Deleted : C:\WINDOWS\system32\roboot.exe

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\systweak
Key Deleted : HKLM\Software\systweak

***** [ Browsers ] *****

-\\ Internet Explorer v6.0.2900.5512


*************************

AdwCleaner[R0].txt - [8489 octets] - [15/03/2014 17:08:59]
AdwCleaner[R1].txt - [1449 octets] - [17/03/2014 18:47:07]
AdwCleaner[S0].txt - [1416 octets] - [17/03/2014 18:52:43]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1476 octets] ##########
Darlene

#36 peachy_dar

peachy_dar

    Silver Member

  • Authentic Member
  • PipPipPip
  • 341 posts
  • Interests:Riding our 2009 Navy Metallic blue Honda Goldwing Trike<br />Taking pictures and videos while riding the trike

Posted 17 March 2014 - 05:01 PM

Jeff:

When can I get IE8 installed??? I can't get updates!!!

And this site looks horrible in IE6!!! I have to make this page 3 my home page, or it takes forever to navigate to here!!

dar
Darlene

#37 jeffce

jeffce

    Malware Guy

  • Authentic Member
  • PipPipPipPipPipPip
  • 8,693 posts

Posted 18 March 2014 - 05:37 AM

Please read response to the PM you sent.  :)


Posted Image
 
 

#38 jeffce

jeffce

    Malware Guy

  • Authentic Member
  • PipPipPipPipPipPip
  • 8,693 posts

Posted 20 March 2014 - 05:23 AM

Per PM this topic is being closed.  


Posted Image
 
 

#39 jeffce

jeffce

    Malware Guy

  • Authentic Member
  • PipPipPipPipPipPip
  • 8,693 posts

Posted 20 March 2014 - 05:23 AM

Since this issue appears to be resolved ... this Topic has been closed. Glad we could be of assistance.

If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.

Everyone else please follow the instructions here http://forums.whatth...ed_t106388.html
and start a New Topic.
Posted Image
 
 

Related Topics



0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users