20:02:10.0203 3732 TDSS rootkit removing tool 2.6.18.0 Nov 11 2011 15:47:15 20:02:10.0312 3732 ============================================================ 20:02:10.0312 3732 Current date / time: 2011/11/13 20:02:10.0312 20:02:10.0312 3732 SystemInfo: 20:02:10.0312 3732 20:02:10.0312 3732 OS Version: 5.1.2600 ServicePack: 3.0 20:02:10.0312 3732 Product type: Workstation 20:02:10.0312 3732 ComputerName: THINKPAD 20:02:10.0312 3732 UserName: Marta 20:02:10.0312 3732 Windows directory: C:\WINDOWS 20:02:10.0312 3732 System windows directory: C:\WINDOWS 20:02:10.0312 3732 Processor architecture: Intel x86 20:02:10.0312 3732 Number of processors: 1 20:02:10.0312 3732 Page size: 0x1000 20:02:10.0312 3732 Boot type: Normal boot 20:02:10.0312 3732 ============================================================ 20:02:11.0734 3732 Initialize success 20:02:13.0562 3788 ============================================================ 20:02:13.0562 3788 Scan started 20:02:13.0562 3788 Mode: Manual; 20:02:13.0562 3788 ============================================================ 20:02:14.0953 3788 Abiosdsk - ok 20:02:15.0281 3788 abp480n5 (6abb91494fe6c59089b9336452ab2ea3) C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS 20:02:15.0281 3788 abp480n5 - ok 20:02:15.0609 3788 ac97intc (0f2d66d5f08ebe2f77bb904288dcf6f0) C:\WINDOWS\system32\drivers\ac97intc.sys 20:02:15.0625 3788 ac97intc - ok 20:02:16.0046 3788 ACPI (05118282f5d039595a2b92b4a4afe197) C:\WINDOWS\system32\DRIVERS\ACPI.sys 20:02:16.0078 3788 ACPI - ok 20:02:16.0406 3788 ACPIEC (66a42b7db194e24b973bbcce840a0f3f) C:\WINDOWS\system32\DRIVERS\ACPIEC.sys 20:02:16.0406 3788 ACPIEC - ok 20:02:16.0796 3788 ADIHdAudAddService (66614b9fdc7e74ab736a84d89f7b06b6) C:\WINDOWS\system32\drivers\ADIHdAud.sys 20:02:16.0796 3788 ADIHdAudAddService - ok 20:02:17.0078 3788 ADILOADER - ok 20:02:17.0406 3788 adiusbaw - ok 20:02:17.0546 3788 adpu160m (9a11864873da202c996558b2106b0bbc) C:\WINDOWS\system32\DRIVERS\adpu160m.sys 20:02:17.0546 3788 adpu160m - ok 20:02:17.0625 3788 AEAudioService (c984de22ed71414abc42c1e03d412e33) C:\WINDOWS\system32\drivers\AEAudio.sys 20:02:17.0640 3788 AEAudioService - ok 20:02:17.0703 3788 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys 20:02:17.0703 3788 aec - ok 20:02:17.0828 3788 AegisP (91f3df93f40a74d222cd166fe95db633) C:\WINDOWS\system32\DRIVERS\AegisP.sys 20:02:17.0828 3788 AegisP - ok 20:02:17.0953 3788 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys 20:02:17.0953 3788 AFD - ok 20:02:18.0031 3788 agp440 (08fd04aa961bdc77fb983f328334e3d7) C:\WINDOWS\system32\DRIVERS\agp440.sys 20:02:18.0046 3788 agp440 - ok 20:02:18.0140 3788 agpCPQ (03a7e0922acfe1b07d5db2eeb0773063) C:\WINDOWS\system32\DRIVERS\agpCPQ.sys 20:02:18.0140 3788 agpCPQ - ok 20:02:18.0265 3788 Aha154x (c23ea9b5f46c7f7910db3eab648ff013) C:\WINDOWS\system32\DRIVERS\aha154x.sys 20:02:18.0265 3788 Aha154x - ok 20:02:18.0359 3788 aic78u2 (19dd0fb48b0c18892f70e2e7d61a1529) C:\WINDOWS\system32\DRIVERS\aic78u2.sys 20:02:18.0359 3788 aic78u2 - ok 20:02:18.0468 3788 aic78xx (b7fe594a7468aa0132deb03fb8e34326) C:\WINDOWS\system32\DRIVERS\aic78xx.sys 20:02:18.0468 3788 aic78xx - ok 20:02:18.0593 3788 alcan5wn (0940030d5a5869067ccc03e3b0b8dec7) C:\WINDOWS\system32\DRIVERS\alcan5wn.sys 20:02:18.0593 3788 alcan5wn - ok 20:02:18.0703 3788 alcaudsl (4c9577888c53243e2991456f510488a1) C:\WINDOWS\system32\DRIVERS\alcaudsl.sys 20:02:18.0703 3788 alcaudsl - ok 20:02:18.0812 3788 AliIde (1140ab9938809700b46bb88e46d72a96) C:\WINDOWS\system32\DRIVERS\aliide.sys 20:02:18.0812 3788 AliIde - ok 20:02:18.0890 3788 alim1541 (cb08aed0de2dd889a8a820cd8082d83c) C:\WINDOWS\system32\DRIVERS\alim1541.sys 20:02:18.0890 3788 alim1541 - ok 20:02:18.0921 3788 amdagp (95b4fb835e28aa1336ceeb07fd5b9398) C:\WINDOWS\system32\DRIVERS\amdagp.sys 20:02:18.0921 3788 amdagp - ok 20:02:18.0984 3788 amsint (79f5add8d24bd6893f2903a3e2f3fad6) C:\WINDOWS\system32\DRIVERS\amsint.sys 20:02:18.0984 3788 amsint - ok 20:02:19.0015 3788 ANC (11ab185a7af224800bbfb5b836974a17) C:\WINDOWS\system32\drivers\ANC.SYS 20:02:19.0015 3788 ANC - ok 20:02:19.0078 3788 AR5211 (1b778efe22771e827ee24b334084a1f5) C:\WINDOWS\system32\DRIVERS\ar5211.sys 20:02:19.0093 3788 AR5211 - ok 20:02:19.0140 3788 asc (62d318e9a0c8fc9b780008e724283707) C:\WINDOWS\system32\DRIVERS\asc.sys 20:02:19.0140 3788 asc - ok 20:02:19.0187 3788 asc3350p (69eb0cc7714b32896ccbfd5edcbea447) C:\WINDOWS\system32\DRIVERS\asc3350p.sys 20:02:19.0187 3788 asc3350p - ok 20:02:19.0203 3788 asc3550 (5d8de112aa0254b907861e9e9c31d597) C:\WINDOWS\system32\DRIVERS\asc3550.sys 20:02:19.0203 3788 asc3550 - ok 20:02:19.0265 3788 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys 20:02:19.0281 3788 AsyncMac - ok 20:02:19.0312 3788 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys 20:02:19.0312 3788 atapi - ok 20:02:19.0328 3788 Atdisk - ok 20:02:19.0390 3788 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys 20:02:19.0390 3788 Atmarpc - ok 20:02:19.0421 3788 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys 20:02:19.0421 3788 audstub - ok 20:02:19.0468 3788 b57w2k (c0acd392ece55784884cc208aafa06ce) C:\WINDOWS\system32\DRIVERS\b57xp32.sys 20:02:19.0468 3788 b57w2k - ok 20:02:19.0515 3788 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys 20:02:19.0515 3788 Beep - ok 20:02:19.0562 3788 BMLoad (d002033c1a37f6af51b5f0ba6d0211bc) C:\WINDOWS\system32\drivers\BMLoad.sys 20:02:19.0562 3788 BMLoad - ok 20:02:19.0687 3788 catchme - ok 20:02:19.0718 3788 cbidf (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\DRIVERS\cbidf2k.sys 20:02:19.0718 3788 cbidf - ok 20:02:19.0734 3788 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys 20:02:19.0734 3788 cbidf2k - ok 20:02:19.0781 3788 cc808513 (8f2bb1827cac01aee6a16e30a1260199) C:\WINDOWS\327516364:863992556.exe 20:02:21.0265 3788 Suspicious file (Hidden): C:\WINDOWS\327516364:863992556.exe. md5: 8f2bb1827cac01aee6a16e30a1260199 20:02:21.0265 3788 cc808513 ( Rootkit.Win32.PMax.gen ) - infected 20:02:21.0265 3788 cc808513 - detected Rootkit.Win32.PMax.gen (0) 20:02:21.0343 3788 CCDECODE (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys 20:02:21.0343 3788 CCDECODE - ok 20:02:21.0406 3788 cd20xrnt (f3ec03299634490e97bbce94cd2954c7) C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys 20:02:21.0406 3788 cd20xrnt - ok 20:02:21.0421 3788 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys 20:02:21.0421 3788 Cdaudio - ok 20:02:21.0468 3788 CDD_HOST (22ed9531a73da662b4a8ff2094c518db) C:\WINDOWS\system32\Drivers\CDD_HOST.sys 20:02:21.0468 3788 CDD_HOST - ok 20:02:21.0515 3788 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys 20:02:21.0515 3788 Cdfs - ok 20:02:21.0546 3788 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys 20:02:21.0546 3788 Cdrom - ok 20:02:21.0578 3788 Changer - ok 20:02:21.0609 3788 CmBatt (0f6c187d38d98f8df904589a5f94d411) C:\WINDOWS\system32\DRIVERS\CmBatt.sys 20:02:21.0609 3788 CmBatt - ok 20:02:21.0640 3788 CmdIde (f6f17a1ab440c70b0bf3d5b08aac40da) C:\WINDOWS\system32\DRIVERS\cmdide.sys 20:02:21.0640 3788 CmdIde - ok 20:02:21.0656 3788 Compbatt (6e4c9f21f0fae8940661144f41b13203) C:\WINDOWS\system32\DRIVERS\compbatt.sys 20:02:21.0656 3788 Compbatt - ok 20:02:21.0703 3788 Cpqarray (3ee529119eed34cd212a215e8c40d4b6) C:\WINDOWS\system32\DRIVERS\cpqarray.sys 20:02:21.0703 3788 Cpqarray - ok 20:02:21.0750 3788 dac2w2k (e550e7418984b65a78299d248f0a7f36) C:\WINDOWS\system32\DRIVERS\dac2w2k.sys 20:02:21.0765 3788 dac2w2k - ok 20:02:21.0781 3788 dac960nt (683789caa3864eb46125ae86ff677d34) C:\WINDOWS\system32\DRIVERS\dac960nt.sys 20:02:21.0781 3788 dac960nt - ok 20:02:21.0812 3788 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys 20:02:21.0812 3788 Disk - ok 20:02:21.0875 3788 dmboot (bc9219abc5696942e6f9ac8a9b28670f) C:\WINDOWS\system32\drivers\dmboot.sys 20:02:21.0890 3788 dmboot - ok 20:02:21.0921 3788 dmio (5fa232e3ba6e1346f9f5a7e519320cb0) C:\WINDOWS\system32\drivers\dmio.sys 20:02:21.0921 3788 dmio - ok 20:02:21.0937 3788 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys 20:02:21.0953 3788 dmload - ok 20:02:21.0968 3788 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys 20:02:21.0984 3788 DMusic - ok 20:02:22.0031 3788 dpti2o (40f3b93b4e5b0126f2f5c0a7a5e22660) C:\WINDOWS\system32\DRIVERS\dpti2o.sys 20:02:22.0031 3788 dpti2o - ok 20:02:22.0046 3788 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys 20:02:22.0046 3788 drmkaud - ok 20:02:22.0093 3788 E100B (dc99d59f311f829693528e6ee91810c8) C:\WINDOWS\system32\DRIVERS\e100b325.sys 20:02:22.0093 3788 E100B - ok 20:02:22.0156 3788 EGATHDRV (2d0fc676d159525f6cd74c3302c7a61c) C:\WINDOWS\SYSTEM32\EGATHDRV.SYS 20:02:22.0156 3788 EGATHDRV - ok 20:02:22.0171 3788 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys 20:02:22.0187 3788 Fastfat - ok 20:02:22.0234 3788 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys 20:02:22.0234 3788 Fdc - ok 20:02:22.0265 3788 Fips (5143759081e7f2165843f6424e4a384c) C:\WINDOWS\system32\drivers\Fips.sys 20:02:22.0265 3788 Suspicious file (Forged): C:\WINDOWS\system32\drivers\Fips.sys. Real md5: 5143759081e7f2165843f6424e4a384c, Fake md5: 09e2a4d33f81a06a8aab2ba0a0b5d235 20:02:22.0265 3788 Fips ( Rootkit.Win32.ZAccess.e ) - infected 20:02:22.0265 3788 Fips - detected Rootkit.Win32.ZAccess.e (0) 20:02:22.0296 3788 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys 20:02:22.0296 3788 Flpydisk - ok 20:02:22.0343 3788 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys 20:02:22.0343 3788 FltMgr - ok 20:02:22.0375 3788 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys 20:02:22.0390 3788 Fs_Rec - ok 20:02:22.0421 3788 Ftdisk (ed6d921d8ab423138fb35beee6d6a6cb) C:\WINDOWS\system32\DRIVERS\ftdisk.sys 20:02:22.0421 3788 Ftdisk - ok 20:02:22.0437 3788 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys 20:02:22.0453 3788 Gpc - ok 20:02:22.0468 3788 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys 20:02:22.0468 3788 HDAudBus - ok 20:02:22.0515 3788 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys 20:02:22.0515 3788 HidUsb - ok 20:02:22.0546 3788 hpn (b028377dea0546a5fcfba928a8aefae0) C:\WINDOWS\system32\DRIVERS\hpn.sys 20:02:22.0562 3788 hpn - ok 20:02:22.0625 3788 HSF_DPV (b1fc0b027df4374f9e5b796cfdf797b3) C:\WINDOWS\system32\DRIVERS\hsx_dpv.sys 20:02:22.0625 3788 HSF_DPV - ok 20:02:22.0656 3788 HSXHWAZL (3af45f5b4157c88ffae24d89ba408302) C:\WINDOWS\system32\DRIVERS\hsxhwazl.sys 20:02:22.0656 3788 HSXHWAZL - ok 20:02:22.0703 3788 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys 20:02:22.0703 3788 HTTP - ok 20:02:22.0750 3788 i2omgmt (9368670bd426ebea5e8b18a62416ec28) C:\WINDOWS\system32\drivers\i2omgmt.sys 20:02:22.0750 3788 i2omgmt - ok 20:02:22.0765 3788 i2omp (f10863bf1ccc290babd1a09188ae49e0) C:\WINDOWS\system32\DRIVERS\i2omp.sys 20:02:22.0781 3788 i2omp - ok 20:02:22.0796 3788 i8042prt (177b372af55c4460d0968b5f1d02aa1c) C:\WINDOWS\system32\DRIVERS\i8042prt.sys 20:02:22.0796 3788 i8042prt - ok 20:02:22.0875 3788 ialm (bc1f1ff8d5800398937966cdb0a97fdc) C:\WINDOWS\system32\DRIVERS\ialmnt5.sys 20:02:22.0906 3788 ialm - ok 20:02:22.0937 3788 iaStor (309c4d86d989fb1fcf64bd30dc81c51b) C:\WINDOWS\system32\DRIVERS\iaStor.sys 20:02:22.0953 3788 iaStor - ok 20:02:22.0968 3788 ibmfilter (bd1ddf774e7fd633d701b1fb69b9f081) C:\WINDOWS\system32\drivers\ibmfilter.sys 20:02:22.0968 3788 ibmfilter - ok 20:02:23.0000 3788 IBMPMDRV (067a88764593b1f46a6cfb00c69c11eb) C:\WINDOWS\system32\DRIVERS\ibmpmdrv.sys 20:02:23.0000 3788 IBMPMDRV - ok 20:02:23.0031 3788 IBMTPCHK (bfc9f3adaad74e13f9ce16c8bd336f95) C:\WINDOWS\system32\Drivers\IBMBLDID.sys 20:02:23.0031 3788 IBMTPCHK - ok 20:02:23.0062 3788 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys 20:02:23.0062 3788 Imapi - ok 20:02:23.0109 3788 ini910u (4a40e045faee58631fd8d91afc620719) C:\WINDOWS\system32\DRIVERS\ini910u.sys 20:02:23.0109 3788 ini910u - ok 20:02:23.0156 3788 IntelIde (0d3140db49f05b2b69467bd5daf1c94b) C:\WINDOWS\system32\DRIVERS\intelide.sys 20:02:23.0156 3788 IntelIde - ok 20:02:23.0187 3788 intelppm (da153edc09de8c4f846c085caa39d1cc) C:\WINDOWS\system32\DRIVERS\intelppm.sys 20:02:23.0187 3788 intelppm - ok 20:02:23.0218 3788 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys 20:02:23.0218 3788 Ip6Fw - ok 20:02:23.0265 3788 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 20:02:23.0265 3788 IpFilterDriver - ok 20:02:23.0281 3788 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys 20:02:23.0281 3788 IpInIp - ok 20:02:23.0296 3788 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys 20:02:23.0296 3788 IpNat - ok 20:02:23.0343 3788 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys 20:02:23.0343 3788 IPSec - ok 20:02:23.0375 3788 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys 20:02:23.0375 3788 IRENUM - ok 20:02:23.0406 3788 isapnp (c8eef2e93835b81bd335de2123121283) C:\WINDOWS\system32\DRIVERS\isapnp.sys 20:02:23.0406 3788 isapnp - ok 20:02:23.0437 3788 Kbdclass (2aeca45d4aeaacbdcb77ad11184e4601) C:\WINDOWS\system32\DRIVERS\kbdclass.sys 20:02:23.0437 3788 Kbdclass - ok 20:02:23.0468 3788 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys 20:02:23.0468 3788 kmixer - ok 20:02:23.0500 3788 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys 20:02:23.0500 3788 KSecDD - ok 20:02:23.0515 3788 lbrtfdc - ok 20:02:23.0593 3788 massfilter (f0435fe3c1ec2659d2bbf073ca0752ee) C:\WINDOWS\system32\drivers\massfilter.sys 20:02:23.0593 3788 massfilter - ok 20:02:23.0640 3788 mdmxsdk (e246a32c445056996074a397da56e815) C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys 20:02:23.0640 3788 mdmxsdk - ok 20:02:23.0687 3788 mferkdk - ok 20:02:23.0718 3788 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys 20:02:23.0734 3788 mnmdd - ok 20:02:23.0750 3788 Modem (4a068db7dc37d5afedb6512d2931d7b3) C:\WINDOWS\system32\drivers\Modem.sys 20:02:23.0765 3788 Modem - ok 20:02:23.0796 3788 Mouclass (fbed3df6b884f8cf00447b73507f2c48) C:\WINDOWS\system32\DRIVERS\mouclass.sys 20:02:23.0796 3788 Mouclass - ok 20:02:23.0828 3788 mouhid (ecec1e6cd558ab80f944f31326e9d3b5) C:\WINDOWS\system32\DRIVERS\mouhid.sys 20:02:23.0828 3788 mouhid - ok 20:02:23.0875 3788 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys 20:02:23.0875 3788 MountMgr - ok 20:02:23.0906 3788 mraid35x (3f4bb95e5a44f3be34824e8e7caf0737) C:\WINDOWS\system32\DRIVERS\mraid35x.sys 20:02:23.0921 3788 mraid35x - ok 20:02:23.0984 3788 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys 20:02:24.0000 3788 MRxDAV - ok 20:02:24.0031 3788 MRxSmb - ok 20:02:24.0062 3788 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys 20:02:24.0062 3788 Msfs - ok 20:02:24.0140 3788 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys 20:02:24.0156 3788 MSKSSRV - ok 20:02:24.0203 3788 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys 20:02:24.0203 3788 MSPCLOCK - ok 20:02:24.0296 3788 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys 20:02:24.0296 3788 MSPQM - ok 20:02:24.0343 3788 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys 20:02:24.0343 3788 mssmbios - ok 20:02:24.0390 3788 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys 20:02:24.0390 3788 MSTEE - ok 20:02:24.0437 3788 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys 20:02:24.0453 3788 Mup - ok 20:02:24.0468 3788 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys 20:02:24.0468 3788 NABTSFEC - ok 20:02:24.0515 3788 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys 20:02:24.0531 3788 NDIS - ok 20:02:24.0546 3788 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) C:\WINDOWS\system32\DRIVERS\NdisIP.sys 20:02:24.0546 3788 NdisIP - ok 20:02:24.0578 3788 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys 20:02:24.0593 3788 NdisTapi - ok 20:02:24.0609 3788 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys 20:02:24.0609 3788 Ndisuio - ok 20:02:24.0625 3788 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys 20:02:24.0625 3788 NdisWan - ok 20:02:24.0656 3788 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys 20:02:24.0656 3788 NDProxy - ok 20:02:24.0671 3788 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys 20:02:24.0671 3788 NetBIOS - ok 20:02:24.0718 3788 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys 20:02:24.0718 3788 NetBT - ok 20:02:24.0781 3788 nmwcd (9a908a9bb857c2cceb2907eb9dcaeb8b) C:\WINDOWS\system32\drivers\ccdcmb.sys 20:02:24.0781 3788 nmwcd - ok 20:02:24.0828 3788 nmwcdc (68ec3ee2348e475ea62c66e6aafcfc9b) C:\WINDOWS\system32\drivers\ccdcmbo.sys 20:02:24.0828 3788 nmwcdc - ok 20:02:24.0859 3788 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys 20:02:24.0859 3788 Npfs - ok 20:02:24.0890 3788 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys 20:02:24.0906 3788 Ntfs - ok 20:02:24.0953 3788 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys 20:02:24.0953 3788 Null - ok 20:02:25.0015 3788 nv (2b298519edbfcf451d43e0f1e8f1006d) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys 20:02:25.0062 3788 nv - ok 20:02:25.0078 3788 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys 20:02:25.0078 3788 NwlnkFlt - ok 20:02:25.0093 3788 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys 20:02:25.0109 3788 NwlnkFwd - ok 20:02:25.0171 3788 Parport (2d4cdaebced17743aa9e25d3016dc229) C:\WINDOWS\system32\DRIVERS\parport.sys 20:02:25.0171 3788 Parport - ok 20:02:25.0203 3788 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys 20:02:25.0203 3788 PartMgr - ok 20:02:25.0250 3788 ParVdm (453ec2c2a20a1382f564541918520eeb) C:\WINDOWS\system32\drivers\ParVdm.sys 20:02:25.0250 3788 ParVdm - ok 20:02:25.0281 3788 pccsmcfd (fd2041e9ba03db7764b2248f02475079) C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys 20:02:25.0296 3788 pccsmcfd - ok 20:02:25.0312 3788 PCI (6862c69168d787b85a7d95ccd33c694e) C:\WINDOWS\system32\DRIVERS\pci.sys 20:02:25.0312 3788 PCI - ok 20:02:25.0328 3788 PCIDump - ok 20:02:25.0359 3788 PCIIde (548cf2d6369eae441a4c6baa75bc4f0a) C:\WINDOWS\system32\DRIVERS\pciide.sys 20:02:25.0359 3788 PCIIde - ok 20:02:25.0375 3788 Pcmcia (8db27f1ae9593c94095485305a583862) C:\WINDOWS\system32\DRIVERS\pcmcia.sys 20:02:25.0375 3788 Pcmcia - ok 20:02:25.0390 3788 PDCOMP - ok 20:02:25.0406 3788 PDFRAME - ok 20:02:25.0437 3788 PDRELI - ok 20:02:25.0453 3788 PDRFRAME - ok 20:02:25.0484 3788 perc2 (6c14b9c19ba84f73d3a86dba11133101) C:\WINDOWS\system32\DRIVERS\perc2.sys 20:02:25.0484 3788 perc2 - ok 20:02:25.0515 3788 perc2hib (f50f7c27f131afe7beba13e14a3b9416) C:\WINDOWS\system32\DRIVERS\perc2hib.sys 20:02:25.0515 3788 perc2hib - ok 20:02:25.0578 3788 phil2vid (3bd216de6a56190c19c951ed2e19087a) C:\WINDOWS\system32\DRIVERS\philcam2.sys 20:02:25.0593 3788 phil2vid - ok 20:02:25.0625 3788 pmem (fa292805788528c083f416e151b60ab6) C:\WINDOWS\System32\drivers\pmemnt.sys 20:02:25.0625 3788 pmem - ok 20:02:25.0671 3788 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys 20:02:25.0671 3788 PptpMiniport - ok 20:02:25.0765 3788 PrivateDisk (e580dd7d54415905bb0bab306b659fdf) C:\Program Files\IBM ThinkVantage\SafeGuard PrivateDisk\PrivateDiskM.sys 20:02:25.0765 3788 PrivateDisk - ok 20:02:25.0796 3788 Processor (7a1367d250502c6416a4d3a19ef155f5) C:\WINDOWS\system32\DRIVERS\processr.sys 20:02:25.0796 3788 Processor - ok 20:02:25.0843 3788 psadd (76df9412c1556fca3d6d94b2c9d94d6b) C:\WINDOWS\system32\Drivers\psadd.sys 20:02:25.0843 3788 psadd - ok 20:02:25.0859 3788 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys 20:02:25.0859 3788 PSched - ok 20:02:25.0906 3788 PSINAflt (9abf1d1da5afaaaa41fcbd940aa2e844) C:\WINDOWS\system32\DRIVERS\PSINAflt.sys 20:02:25.0906 3788 PSINAflt - ok 20:02:25.0937 3788 PSINFile (5bab5fb4cb1963f643a1a8b4d816cf8f) C:\WINDOWS\system32\DRIVERS\PSINFile.sys 20:02:25.0937 3788 PSINFile - ok 20:02:25.0968 3788 PSINKNC (0518f472a69249e18612e29278bd58ec) C:\WINDOWS\system32\DRIVERS\psinknc.sys 20:02:25.0968 3788 PSINKNC - ok 20:02:25.0984 3788 PSINProc (87b2fe6d7b427947541360f48c302054) C:\WINDOWS\system32\DRIVERS\PSINProc.sys 20:02:25.0984 3788 PSINProc - ok 20:02:26.0000 3788 PSINProt (f4804beb5ff6741019b56a02ead4d3b7) C:\WINDOWS\system32\DRIVERS\PSINProt.sys 20:02:26.0000 3788 PSINProt - ok 20:02:26.0031 3788 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys 20:02:26.0031 3788 Ptilink - ok 20:02:26.0046 3788 PxHelp20 (183ef96bcc2ec3d5294cb2c2c0ecbcd1) C:\WINDOWS\system32\Drivers\PxHelp20.sys 20:02:26.0046 3788 PxHelp20 - ok 20:02:26.0078 3788 ql1080 (0a63fb54039eb5662433caba3b26dba7) C:\WINDOWS\system32\DRIVERS\ql1080.sys 20:02:26.0078 3788 ql1080 - ok 20:02:26.0109 3788 Ql10wnt (6503449e1d43a0ff0201ad5cb1b8c706) C:\WINDOWS\system32\DRIVERS\ql10wnt.sys 20:02:26.0109 3788 Ql10wnt - ok 20:02:26.0125 3788 ql12160 (156ed0ef20c15114ca097a34a30d8a01) C:\WINDOWS\system32\DRIVERS\ql12160.sys 20:02:26.0125 3788 ql12160 - ok 20:02:26.0140 3788 ql1240 (70f016bebde6d29e864c1230a07cc5e6) C:\WINDOWS\system32\DRIVERS\ql1240.sys 20:02:26.0140 3788 ql1240 - ok 20:02:26.0203 3788 ql1280 (907f0aeea6bc451011611e732bd31fcf) C:\WINDOWS\system32\DRIVERS\ql1280.sys 20:02:26.0218 3788 ql1280 - ok 20:02:26.0265 3788 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys 20:02:26.0265 3788 RasAcd - ok 20:02:26.0296 3788 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys 20:02:26.0296 3788 Rasl2tp - ok 20:02:26.0328 3788 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys 20:02:26.0328 3788 RasPppoe - ok 20:02:26.0359 3788 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys 20:02:26.0359 3788 Raspti - ok 20:02:26.0406 3788 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys 20:02:26.0406 3788 Rdbss - ok 20:02:26.0453 3788 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys 20:02:26.0453 3788 RDPCDD - ok 20:02:26.0515 3788 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys 20:02:26.0531 3788 rdpdr - ok 20:02:26.0578 3788 RDPWD (fc105dd312ed64eb66bff111e8ec6eac) C:\WINDOWS\system32\drivers\RDPWD.sys 20:02:26.0593 3788 RDPWD - ok 20:02:26.0640 3788 redbook (e0c7bbd18040b58651bac700c804861d) C:\WINDOWS\system32\DRIVERS\redbook.sys 20:02:26.0656 3788 redbook - ok 20:02:26.0750 3788 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys 20:02:26.0750 3788 Secdrv - ok 20:02:26.0843 3788 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys 20:02:26.0843 3788 serenum - ok 20:02:26.0875 3788 Serial (d07b02f88165e69b9f17162cf592c8a6) C:\WINDOWS\system32\DRIVERS\serial.sys 20:02:26.0875 3788 Serial - ok 20:02:26.0906 3788 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys 20:02:26.0906 3788 Sfloppy - ok 20:02:26.0937 3788 Simbad - ok 20:02:26.0968 3788 sisagp (6b33d0ebd30db32e27d1d78fe946a754) C:\WINDOWS\system32\DRIVERS\sisagp.sys 20:02:26.0984 3788 sisagp - ok 20:02:27.0031 3788 SLIP (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys 20:02:27.0046 3788 SLIP - ok 20:02:27.0109 3788 Smapint (26341d0dd225d19fd50e0ee3c3c77502) C:\WINDOWS\system32\drivers\Smapint.sys 20:02:27.0109 3788 Smapint - ok 20:02:27.0187 3788 smi2 (3ba9d0c8a0fbd9fb4029b6cd87c8ce0b) C:\Program Files\SMI2\smi2.sys 20:02:27.0187 3788 smi2 - ok 20:02:27.0281 3788 SONYPVU1 (a1eceeaa5c5e74b2499eb51d38185b84) C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS 20:02:27.0281 3788 SONYPVU1 - ok 20:02:27.0328 3788 Sparrow (83c0f71f86d3bdaf915685f3d568b20e) C:\WINDOWS\system32\DRIVERS\sparrow.sys 20:02:27.0343 3788 Sparrow - ok 20:02:27.0390 3788 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys 20:02:27.0390 3788 splitter - ok 20:02:27.0406 3788 sptd - ok 20:02:27.0453 3788 sr (eb032822be406ef220d546ddffcf0002) C:\WINDOWS\system32\DRIVERS\sr.sys 20:02:27.0453 3788 sr - ok 20:02:27.0484 3788 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys 20:02:27.0500 3788 Srv - ok 20:02:27.0546 3788 streamip (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys 20:02:27.0546 3788 streamip - ok 20:02:27.0593 3788 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys 20:02:27.0593 3788 swenum - ok 20:02:27.0625 3788 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys 20:02:27.0625 3788 swmidi - ok 20:02:27.0687 3788 symc810 (1ff3217614018630d0a6758630fc698c) C:\WINDOWS\system32\DRIVERS\symc810.sys 20:02:27.0703 3788 symc810 - ok 20:02:27.0734 3788 symc8xx (070e001d95cf725186ef8b20335f933c) C:\WINDOWS\system32\DRIVERS\symc8xx.sys 20:02:27.0734 3788 symc8xx - ok 20:02:27.0765 3788 sym_hi (80ac1c4abbe2df3b738bf15517a51f2c) C:\WINDOWS\system32\DRIVERS\sym_hi.sys 20:02:27.0765 3788 sym_hi - ok 20:02:27.0781 3788 sym_u3 (bf4fab949a382a8e105f46ebb4937058) C:\WINDOWS\system32\DRIVERS\sym_u3.sys 20:02:27.0781 3788 sym_u3 - ok 20:02:27.0812 3788 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys 20:02:27.0812 3788 sysaudio - ok 20:02:27.0859 3788 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys 20:02:27.0875 3788 Tcpip - ok 20:02:27.0906 3788 tcpipBM (dcfeb82ca988598ceb8f83148616038e) C:\WINDOWS\system32\drivers\tcpipBM.sys 20:02:27.0906 3788 tcpipBM - ok 20:02:27.0953 3788 TDKeybd (3e6b3d860fdaa4a868b5f4d5b4d281e5) C:\WINDOWS\system32\drivers\TDKeybd.sys 20:02:27.0953 3788 TDKeybd - ok 20:02:27.0984 3788 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys 20:02:27.0984 3788 TDPIPE - ok 20:02:28.0015 3788 TDSMAPI (564b337034271b7bddcabfddc91c6b7a) C:\WINDOWS\system32\drivers\TDSMAPI.SYS 20:02:28.0015 3788 TDSMAPI - ok 20:02:28.0031 3788 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys 20:02:28.0031 3788 TDTCP - ok 20:02:28.0062 3788 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys 20:02:28.0062 3788 TermDD - ok 20:02:28.0109 3788 TosIde (f37062a534b2e34560950607b1fef2c1) C:\WINDOWS\system32\DRIVERS\toside.sys 20:02:28.0109 3788 TosIde - ok 20:02:28.0140 3788 Tp4Track (e06117f4ee0fd094532d8b82f1b7883a) C:\WINDOWS\system32\DRIVERS\tp4track.sys 20:02:28.0140 3788 Tp4Track - ok 20:02:28.0171 3788 TPHKDRV (29f3601d4233a53f819010fee8c04a60) C:\WINDOWS\system32\drivers\TPHKDRV.sys 20:02:28.0171 3788 TPHKDRV - ok 20:02:28.0187 3788 TPPWRIF (44672de6cea9569c21c4b7a8d2560750) C:\WINDOWS\system32\drivers\Tppwrif.sys 20:02:28.0187 3788 TPPWRIF - ok 20:02:28.0218 3788 TSMAPIP (f2aba3066d7921d7fcdbd66dea88be11) C:\WINDOWS\system32\drivers\TSMAPIP.SYS 20:02:28.0218 3788 TSMAPIP - ok 20:02:28.0265 3788 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys 20:02:28.0265 3788 Udfs - ok 20:02:28.0281 3788 ultra (1b698a51cd528d8da4ffaed66dfc51b9) C:\WINDOWS\system32\DRIVERS\ultra.sys 20:02:28.0296 3788 ultra - ok 20:02:28.0328 3788 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys 20:02:28.0343 3788 Update - ok 20:02:28.0375 3788 upperdev (a34560a5d516a2f5240180370866b99d) C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys 20:02:28.0375 3788 upperdev - ok 20:02:28.0421 3788 usbaudio (e919708db44ed8543a7c017953148330) C:\WINDOWS\system32\drivers\usbaudio.sys 20:02:28.0421 3788 usbaudio - ok 20:02:28.0453 3788 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys 20:02:28.0453 3788 usbccgp - ok 20:02:28.0484 3788 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys 20:02:28.0484 3788 usbehci - ok 20:02:28.0531 3788 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys 20:02:28.0531 3788 usbhub - ok 20:02:28.0562 3788 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys 20:02:28.0562 3788 usbprint - ok 20:02:28.0609 3788 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys 20:02:28.0609 3788 usbscan - ok 20:02:28.0640 3788 usbser (1c888b000c2f9492f4b15b5b6b84873e) C:\WINDOWS\system32\drivers\usbser.sys 20:02:28.0640 3788 usbser - ok 20:02:28.0687 3788 UsbserFilt (6410eebd6e0427466812858ee84c8467) C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys 20:02:28.0687 3788 UsbserFilt - ok 20:02:28.0734 3788 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS 20:02:28.0734 3788 USBSTOR - ok 20:02:28.0750 3788 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys 20:02:28.0750 3788 usbuhci - ok 20:02:28.0781 3788 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys 20:02:28.0781 3788 VgaSave - ok 20:02:28.0828 3788 viaagp (754292ce5848b3738281b4f3607eaef4) C:\WINDOWS\system32\DRIVERS\viaagp.sys 20:02:28.0843 3788 viaagp - ok 20:02:28.0890 3788 ViaIde (3b3efcda263b8ac14fdf9cbdd0791b2e) C:\WINDOWS\system32\DRIVERS\viaide.sys 20:02:28.0890 3788 ViaIde - ok 20:02:28.0921 3788 VolSnap (56b191ac5fc0df219949c95a6c87afe7) C:\WINDOWS\system32\drivers\VolSnap.sys 20:02:28.0921 3788 VolSnap - ok 20:02:28.0953 3788 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys 20:02:28.0953 3788 Wanarp - ok 20:02:29.0000 3788 wceusbsh (dc7f91b2ed24a738c807ea07f298928c) C:\WINDOWS\system32\DRIVERS\wceusbsh.sys 20:02:29.0000 3788 wceusbsh - ok 20:02:29.0062 3788 Wdf01000 (bbcfeab7e871cddac2d397ee7fa91fdc) C:\WINDOWS\system32\DRIVERS\Wdf01000.sys 20:02:29.0078 3788 Wdf01000 - ok 20:02:29.0093 3788 WDICA - ok 20:02:29.0125 3788 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys 20:02:29.0125 3788 wdmaud - ok 20:02:29.0203 3788 winachsf (11ec1afceb5c917ce73d3c301ff4291e) C:\WINDOWS\system32\DRIVERS\hsx_cnxt.sys 20:02:29.0203 3788 winachsf - ok 20:02:29.0250 3788 WinDriver6 (9ae9e94531e5ef4bddb8febce3c244b7) C:\WINDOWS\system32\drivers\windrvr6.sys 20:02:29.0250 3788 WinDriver6 - ok 20:02:29.0343 3788 WpdUsb (c1b3d9d75c3fb735f5fa3a5806aded57) C:\WINDOWS\system32\Drivers\wpdusb.sys 20:02:29.0343 3788 WpdUsb - ok 20:02:29.0406 3788 WSTCODEC (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS 20:02:29.0406 3788 WSTCODEC - ok 20:02:29.0468 3788 ZTEusbmdm6k (c2215c6ada8b1e9feb507cee9b446661) C:\WINDOWS\system32\DRIVERS\ZTEusbmdm6k.sys 20:02:29.0468 3788 ZTEusbmdm6k - ok 20:02:29.0484 3788 ZTEusbnmea (f16ce3c7690ab7426dc96520d54a737e) C:\WINDOWS\system32\DRIVERS\ZTEusbnmea.sys 20:02:29.0500 3788 ZTEusbnmea - ok 20:02:29.0515 3788 ZTEusbser6k (c2215c6ada8b1e9feb507cee9b446661) C:\WINDOWS\system32\DRIVERS\ZTEusbser6k.sys 20:02:29.0515 3788 ZTEusbser6k - ok 20:02:29.0546 3788 MBR (0x1B8) (09ce7397af23d4c0b331b89d0297cc7e) \Device\Harddisk0\DR0 20:02:29.0703 3788 \Device\Harddisk0\DR0 - ok 20:02:29.0718 3788 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk1\DR4 20:02:30.0843 3788 \Device\Harddisk1\DR4 - ok 20:02:30.0890 3788 Boot (0x1200) (e428a25bd074cbf7e69b3580c9a7fa41) \Device\Harddisk0\DR0\Partition0 20:02:30.0890 3788 \Device\Harddisk0\DR0\Partition0 - ok 20:02:30.0906 3788 Boot (0x1200) (46cec7f4c24955400565c6d8d62a0906) \Device\Harddisk0\DR0\Partition1 20:02:30.0906 3788 \Device\Harddisk0\DR0\Partition1 - ok 20:02:30.0921 3788 Boot (0x1200) (ed92821bd6154265039b36256bd8272c) \Device\Harddisk1\DR4\Partition0 20:02:30.0921 3788 \Device\Harddisk1\DR4\Partition0 - ok 20:02:30.0921 3788 ============================================================ 20:02:30.0921 3788 Scan finished 20:02:30.0921 3788 ============================================================ 20:02:30.0937 3780 Detected object count: 2 20:02:30.0937 3780 Actual detected object count: 2 20:02:36.0562 3780 HKLM\SYSTEM\ControlSet001\services\cc808513 - will be deleted on reboot 20:02:36.0562 3780 HKLM\SYSTEM\ControlSet002\services\cc808513 - will be deleted on reboot 20:02:36.0578 3780 C:\WINDOWS\327516364:863992556.exe - will be deleted on reboot 20:02:36.0578 3780 cc808513 ( Rootkit.Win32.PMax.gen ) - User select action: Delete 20:02:39.0531 3780 Backup copy not found, trying to cure infected file.. 20:02:39.0531 3780 C:\WINDOWS\system32\drivers\Fips.sys - Cure failed (FFFFFFFF) 20:02:39.0531 3780 C:\WINDOWS\system32\drivers\Fips.sys - processing error 20:02:40.0343 3780 C:\WINDOWS\system32\c_77831.nls - will be deleted on reboot 20:02:40.0359 3780 C:\WINDOWS\system32\c_77831.nl_ - will be deleted on reboot 20:02:41.0109 3780 Fips ( Rootkit.Win32.ZAccess.e ) - User select action: Cure 20:02:46.0218 3728 Deinitialize success