20:33:21.0470 4620 TDSS rootkit removing tool 2.7.12.0 Feb 11 2012 16:58:52 20:33:21.0500 4620 ============================================================ 20:33:21.0500 4620 Current date / time: 2012/02/13 20:33:21.0500 20:33:21.0500 4620 SystemInfo: 20:33:21.0500 4620 20:33:21.0500 4620 OS Version: 6.1.7601 ServicePack: 1.0 20:33:21.0500 4620 Product type: Workstation 20:33:21.0501 4620 ComputerName: AGAIPIOTR 20:33:21.0501 4620 UserName: Aga i Piotr 20:33:21.0501 4620 Windows directory: C:\Windows 20:33:21.0501 4620 System windows directory: C:\Windows 20:33:21.0502 4620 Processor architecture: Intel x86 20:33:21.0502 4620 Number of processors: 2 20:33:21.0502 4620 Page size: 0x1000 20:33:21.0502 4620 Boot type: Normal boot 20:33:21.0502 4620 ============================================================ 20:33:34.0381 4620 Drive \Device\Harddisk2\DR2 - Size: 0x2E93E36000 (186.31 Gb), SectorSize: 0x200, Cylinders: 0x5F01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050 20:33:34.0404 4620 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050 20:33:34.0416 4620 Drive \Device\Harddisk1\DR1 - Size: 0x4A85C4DE00 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x23DC4, SectorsPerTrack: 0x13, TracksPerCylinder: 0xE0, Type 'K0', Flags 0x00000050 20:33:34.0428 4620 \Device\Harddisk2\DR2: 20:33:34.0428 4620 MBR used 20:33:34.0428 4620 \Device\Harddisk2\DR2\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x17499EC1 20:33:34.0428 4620 \Device\Harddisk0\DR0: 20:33:34.0428 4620 MBR used 20:33:34.0428 4620 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x2B9242C0 20:33:34.0429 4620 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x2B9242FF, BlocksNum 0xEA60942 20:33:34.0429 4620 \Device\Harddisk1\DR1: 20:33:34.0461 4620 MBR used 20:33:34.0461 4620 \Device\Harddisk1\DR1\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000 20:33:34.0462 4620 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0xC31E000 20:33:34.0462 4620 \Device\Harddisk1\DR1\Partition2: MBR, Type 0x7, StartLBA 0xC350800, BlocksNum 0x190DD000 20:33:35.0072 4620 Initialize success 20:33:35.0073 4620 ============================================================ 20:33:52.0399 4672 ============================================================ 20:33:52.0399 4672 Scan started 20:33:52.0399 4672 Mode: Manual; 20:33:52.0399 4672 ============================================================ 20:33:56.0325 4672 .serial - ok 20:33:56.0920 4672 1394ohci (1b133875b8aa8ac48969bd3458afe9f5) C:\Windows\system32\drivers\1394ohci.sys 20:33:56.0942 4672 1394ohci - ok 20:33:57.0553 4672 ACPI (cea80c80bed809aa0da6febc04733349) C:\Windows\system32\drivers\ACPI.sys 20:33:57.0578 4672 ACPI - ok 20:33:58.0063 4672 AcpiPmi (1efbc664abff416d1d07db115dcb264f) C:\Windows\system32\drivers\acpipmi.sys 20:33:58.0077 4672 AcpiPmi - ok 20:33:58.0702 4672 adp94xx (21e785ebd7dc90a06391141aac7892fb) C:\Windows\system32\DRIVERS\adp94xx.sys 20:33:58.0720 4672 adp94xx - ok 20:33:59.0244 4672 adpahci (0c676bc278d5b59ff5abd57bbe9123f2) C:\Windows\system32\DRIVERS\adpahci.sys 20:33:59.0261 4672 adpahci - ok 20:33:59.0981 4672 adpu320 (7c7b5ee4b7b822ec85321fe23a27db33) C:\Windows\system32\DRIVERS\adpu320.sys 20:34:00.0002 4672 adpu320 - ok 20:34:00.0579 4672 Afc (fe3ea6e9afc1a78e6edca121e006afb7) C:\Windows\system32\drivers\Afc.sys 20:34:00.0580 4672 Afc - ok 20:34:01.0275 4672 AFD (9ebbba55060f786f0fcaa3893bfa2806) C:\Windows\system32\drivers\afd.sys 20:34:01.0301 4672 AFD - ok 20:34:01.0958 4672 agp440 (507812c3054c21cef746b6ee3d04dd6e) C:\Windows\system32\drivers\agp440.sys 20:34:01.0970 4672 agp440 - ok 20:34:02.0259 4672 aic78xx (8b30250d573a8f6b4bd23195160d8707) C:\Windows\system32\DRIVERS\djsvs.sys 20:34:02.0268 4672 aic78xx - ok 20:34:03.0423 4672 ALCXWDM (933933288df5ed26d1928215c97d05c7) C:\Windows\system32\drivers\ALCXWDM.SYS 20:34:03.0486 4672 ALCXWDM - ok 20:34:03.0646 4672 aliide (0d40bcf52ea90fc7df2aeab6503dea44) C:\Windows\system32\drivers\aliide.sys 20:34:03.0839 4672 aliide - ok 20:34:04.0165 4672 amdagp (3c6600a0696e90a463771c7422e23ab5) C:\Windows\system32\drivers\amdagp.sys 20:34:04.0174 4672 amdagp - ok 20:34:04.0494 4672 amdide (cd5914170297126b6266860198d1d4f0) C:\Windows\system32\drivers\amdide.sys 20:34:04.0496 4672 amdide - ok 20:34:05.0065 4672 AmdK8 (00dda200d71bac534bf56a9db5dfd666) C:\Windows\system32\DRIVERS\amdk8.sys 20:34:05.0107 4672 AmdK8 - ok 20:34:05.0436 4672 AmdPPM (3cbf30f5370fda40dd3e87df38ea53b6) C:\Windows\system32\DRIVERS\amdppm.sys 20:34:05.0447 4672 AmdPPM - ok 20:34:05.0924 4672 amdsata (e7f4d42d8076ec60e21715cd11743a0d) C:\Windows\system32\drivers\amdsata.sys 20:34:05.0966 4672 amdsata - ok 20:34:06.0300 4672 amdsbs (ea43af0c423ff267355f74e7a53bdaba) C:\Windows\system32\DRIVERS\amdsbs.sys 20:34:06.0318 4672 amdsbs - ok 20:34:06.0468 4672 amdxata (146459d2b08bfdcbfa856d9947043c81) C:\Windows\system32\drivers\amdxata.sys 20:34:06.0468 4672 amdxata - ok 20:34:07.0037 4672 androidusb (dd8d9c597af7cd2f6b70a3d6a4a1acea) C:\Windows\system32\Drivers\ssadadb.sys 20:34:07.0046 4672 androidusb - ok 20:34:07.0183 4672 AppID (aea177f783e20150ace5383ee368da19) C:\Windows\system32\drivers\appid.sys 20:34:07.0186 4672 AppID - ok 20:34:07.0933 4672 arc (2932004f49677bd84dbc72edb754ffb3) C:\Windows\system32\DRIVERS\arc.sys 20:34:07.0945 4672 arc - ok 20:34:08.0118 4672 arcsas (5d6f36c46fd283ae1b57bd2e9feb0bc7) C:\Windows\system32\DRIVERS\arcsas.sys 20:34:08.0121 4672 arcsas - ok 20:34:08.0511 4672 AsyncMac (add2ade1c2b285ab8378d2daaf991481) C:\Windows\system32\DRIVERS\asyncmac.sys 20:34:08.0513 4672 AsyncMac - ok 20:34:08.0984 4672 atapi (338c86357871c167a96ab976519bf59e) C:\Windows\system32\drivers\atapi.sys 20:34:08.0984 4672 atapi - ok 20:34:09.0518 4672 AVGIDSDriver (f6878b90a8a9795116bce335238e65af) C:\Windows\system32\DRIVERS\AVGIDSDriver.Sys 20:34:09.0519 4672 AVGIDSDriver - ok 20:34:09.0839 4672 AVGIDSEH (19a08a6728a6e02099d64268218cd799) C:\Windows\system32\DRIVERS\AVGIDSEH.Sys 20:34:09.0856 4672 AVGIDSEH - ok 20:34:10.0027 4672 AVGIDSFilter (f8927ab1dd086edeff2924a64dc89869) C:\Windows\system32\DRIVERS\AVGIDSFilter.Sys 20:34:10.0028 4672 AVGIDSFilter - ok 20:34:10.0161 4672 AVGIDSShim (dadca567891033dcf2ec4a3f9da46ae4) C:\Windows\system32\DRIVERS\AVGIDSShim.Sys 20:34:10.0162 4672 AVGIDSShim - ok 20:34:10.0465 4672 Avgldx86 (bf8118cd5e2255387b715b534d64acd1) C:\Windows\system32\DRIVERS\avgldx86.sys 20:34:10.0467 4672 Avgldx86 - ok 20:34:10.0812 4672 Avgmfx86 (1c77ef67f196466adc9924cb288afe87) C:\Windows\system32\DRIVERS\avgmfx86.sys 20:34:10.0813 4672 Avgmfx86 - ok 20:34:11.0496 4672 Avgrkx86 (f2038ed7284b79dcef581468121192a9) C:\Windows\system32\DRIVERS\avgrkx86.sys 20:34:11.0497 4672 Avgrkx86 - ok 20:34:11.0882 4672 Avgtdix (a6d562b612216d8d02a35ebeb92366bd) C:\Windows\system32\DRIVERS\avgtdix.sys 20:34:11.0886 4672 Avgtdix - ok 20:34:12.0302 4672 b06bdrv (1a231abec60fd316ec54c66715543cec) C:\Windows\system32\DRIVERS\bxvbdx.sys 20:34:12.0338 4672 b06bdrv - ok 20:34:12.0715 4672 b57nd60x (bd8869eb9cde6bbe4508d869929869ee) C:\Windows\system32\DRIVERS\b57nd60x.sys 20:34:12.0984 4672 b57nd60x - ok 20:34:13.0394 4672 Beep (505506526a9d467307b3c393dedaf858) C:\Windows\system32\drivers\Beep.sys 20:34:13.0414 4672 Beep - ok 20:34:13.0695 4672 blbdrive (2287078ed48fcfc477b05b20cf38f36f) C:\Windows\system32\DRIVERS\blbdrive.sys 20:34:13.0706 4672 blbdrive - ok 20:34:14.0278 4672 bowser (8f2da3028d5fcbd1a060a3de64cd6506) C:\Windows\system32\DRIVERS\bowser.sys 20:34:14.0285 4672 bowser - ok 20:34:14.0507 4672 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\DRIVERS\BrFiltLo.sys 20:34:14.0510 4672 BrFiltLo - ok 20:34:15.0113 4672 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\DRIVERS\BrFiltUp.sys 20:34:15.0152 4672 BrFiltUp - ok 20:34:15.0902 4672 Brserid (845b8ce732e67f3b4133164868c666ea) C:\Windows\System32\Drivers\Brserid.sys 20:34:15.0919 4672 Brserid - ok 20:34:16.0273 4672 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\System32\Drivers\BrSerWdm.sys 20:34:16.0295 4672 BrSerWdm - ok 20:34:16.0448 4672 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\System32\Drivers\BrUsbMdm.sys 20:34:16.0450 4672 BrUsbMdm - ok 20:34:17.0035 4672 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\System32\Drivers\BrUsbSer.sys 20:34:17.0043 4672 BrUsbSer - ok 20:34:17.0477 4672 BTHMODEM (ed3df7c56ce0084eb2034432fc56565a) C:\Windows\system32\DRIVERS\bthmodem.sys 20:34:17.0500 4672 BTHMODEM - ok 20:34:18.0104 4672 cdfs (77ea11b065e0a8ab902d78145ca51e10) C:\Windows\system32\DRIVERS\cdfs.sys 20:34:18.0129 4672 cdfs - ok 20:34:18.0606 4672 cdrom (be167ed0fdb9c1fa1133953c18d5a6c9) C:\Windows\system32\drivers\cdrom.sys 20:34:18.0621 4672 cdrom - ok 20:34:19.0332 4672 circlass (3fe3fe94a34df6fb06e6418d0f6a0060) C:\Windows\system32\DRIVERS\circlass.sys 20:34:19.0343 4672 circlass - ok 20:34:19.0657 4672 CLFS (635181e0e9bbf16871bf5380d71db02d) C:\Windows\system32\CLFS.sys 20:34:19.0671 4672 CLFS - ok 20:34:20.0246 4672 CmBatt (dea805815e587dad1dd2c502220b5616) C:\Windows\system32\DRIVERS\CmBatt.sys 20:34:20.0269 4672 CmBatt - ok 20:34:20.0583 4672 cmdide (c537b1db64d495b9b4717b4d6d9edbf2) C:\Windows\system32\drivers\cmdide.sys 20:34:20.0633 4672 cmdide - ok 20:34:21.0260 4672 CNG (6427525d76f61d0c519b008d3680e8e7) C:\Windows\system32\Drivers\cng.sys 20:34:21.0290 4672 CNG - ok 20:34:21.0930 4672 Compbatt (a6023d3823c37043986713f118a89bee) C:\Windows\system32\DRIVERS\compbatt.sys 20:34:21.0932 4672 Compbatt - ok 20:34:22.0248 4672 CompositeBus (cbe8c58a8579cfe5fccf809e6f114e89) C:\Windows\system32\drivers\CompositeBus.sys 20:34:22.0256 4672 CompositeBus - ok 20:34:22.0864 4672 crcdisk (2c4ebcfc84a9b44f209dff6c6e6c61d1) C:\Windows\system32\DRIVERS\crcdisk.sys 20:34:22.0878 4672 crcdisk - ok 20:34:23.0402 4672 CSC (3c2177a897b4ca2788c6fb0c3fd81d4b) C:\Windows\system32\drivers\csc.sys 20:34:23.0429 4672 CSC - ok 20:34:24.0202 4672 DfsC (f024449c97ec1e464aaffda18593db88) C:\Windows\system32\Drivers\dfsc.sys 20:34:24.0214 4672 DfsC - ok 20:34:24.0974 4672 dgderdrv (4f63ff698dc72ec2ec0262427f8b53cb) C:\Windows\system32\drivers\dgderdrv.sys 20:34:24.0975 4672 dgderdrv - ok 20:34:25.0399 4672 discache (1a050b0274bfb3890703d490f330c0da) C:\Windows\system32\drivers\discache.sys 20:34:25.0411 4672 discache - ok 20:34:26.0083 4672 Disk (565003f326f99802e68ca78f2a68e9ff) C:\Windows\system32\DRIVERS\disk.sys 20:34:26.0083 4672 Disk - ok 20:34:26.0506 4672 drmkaud (b918e7c5f9bf77202f89e1a9539f2eb4) C:\Windows\system32\drivers\drmkaud.sys 20:34:26.0520 4672 drmkaud - ok 20:34:27.0157 4672 DXGKrnl (23f5d28378a160352ba8f817bd8c71cb) C:\Windows\System32\drivers\dxgkrnl.sys 20:34:27.0164 4672 DXGKrnl - ok 20:34:28.0251 4672 ebdrv (024e1b5cac09731e4d868e64dbfb4ab0) C:\Windows\system32\DRIVERS\evbdx.sys 20:34:28.0365 4672 ebdrv - ok 20:34:29.0036 4672 EL90Xbc - ok 20:34:29.0494 4672 elxstor (0ed67910c8c326796faa00b2bf6d9d3c) C:\Windows\system32\DRIVERS\elxstor.sys 20:34:29.0545 4672 elxstor - ok 20:34:29.0973 4672 ErrDev (8fc3208352dd3912c94367a206ab3f11) C:\Windows\system32\drivers\errdev.sys 20:34:29.0975 4672 ErrDev - ok 20:34:30.0064 4672 exfat (2dc9108d74081149cc8b651d3a26207f) C:\Windows\system32\drivers\exfat.sys 20:34:30.0068 4672 exfat - ok 20:34:30.0523 4672 fastfat (7e0ab74553476622fb6ae36f73d97d35) C:\Windows\system32\drivers\fastfat.sys 20:34:30.0531 4672 fastfat - ok 20:34:30.0969 4672 fdc (e817a017f82df2a1f8cfdbda29388b29) C:\Windows\system32\DRIVERS\fdc.sys 20:34:30.0985 4672 fdc - ok 20:34:31.0356 4672 FETNDIS (f5cb6cb6d12f495516be27cffccde4bf) C:\Windows\system32\DRIVERS\fetnd6.sys 20:34:31.0368 4672 FETNDIS - ok 20:34:31.0694 4672 FileInfo (6cf00369c97f3cf563be99be983d13d8) C:\Windows\system32\drivers\fileinfo.sys 20:34:31.0695 4672 FileInfo - ok 20:34:31.0896 4672 Filetrace (42c51dc94c91da21cb9196eb64c45db9) C:\Windows\system32\drivers\filetrace.sys 20:34:31.0903 4672 Filetrace - ok 20:34:32.0337 4672 flpydisk (87907aa70cb3c56600f1c2fb8841579b) C:\Windows\system32\DRIVERS\flpydisk.sys 20:34:32.0347 4672 flpydisk - ok 20:34:33.0038 4672 FltMgr (7520ec808e0c35e0ee6f841294316653) C:\Windows\system32\drivers\fltmgr.sys 20:34:33.0058 4672 FltMgr - ok 20:34:33.0334 4672 FsDepends (1a16b57943853e598cff37fe2b8cbf1d) C:\Windows\system32\drivers\FsDepends.sys 20:34:33.0351 4672 FsDepends - ok 20:34:33.0957 4672 fssfltr (b74b0578fd1d3f897e95f2a2b69ea051) C:\Windows\system32\DRIVERS\fssfltr.sys 20:34:33.0964 4672 fssfltr - ok 20:34:34.0337 4672 FsUsbExDisk (b07663a810e861eebfd0eac7e82ca62d) C:\Windows\system32\FsUsbExDisk.SYS 20:34:34.0345 4672 FsUsbExDisk - ok 20:34:34.0981 4672 Fs_Rec (a574b4360e438977038aae4bf60d79a2) C:\Windows\system32\drivers\Fs_Rec.sys 20:34:34.0982 4672 Fs_Rec - ok 20:34:35.0392 4672 fvevol (8a73e79089b282100b9393b644cb853b) C:\Windows\system32\DRIVERS\fvevol.sys 20:34:35.0424 4672 fvevol - ok 20:34:35.0901 4672 gagp30kx (65ee0c7a58b65e74ae05637418153938) C:\Windows\system32\DRIVERS\gagp30kx.sys 20:34:35.0905 4672 gagp30kx - ok 20:34:36.0222 4672 giveio (77ebf3e9386daa51551af429052d88d0) C:\Windows\system32\giveio.sys 20:34:36.0224 4672 giveio - ok 20:34:37.0103 4672 hcw85cir (c44e3c2bab6837db337ddee7544736db) C:\Windows\system32\drivers\hcw85cir.sys 20:34:37.0116 4672 hcw85cir - ok 20:34:37.0551 4672 HDAudBus (9036377b8a6c15dc2eec53e489d159b5) C:\Windows\system32\drivers\HDAudBus.sys 20:34:37.0554 4672 HDAudBus - ok 20:34:37.0945 4672 HidBatt (1d58a7f3e11a9731d0eaaaa8405acc36) C:\Windows\system32\DRIVERS\HidBatt.sys 20:34:37.0968 4672 HidBatt - ok 20:34:38.0139 4672 HidBth (89448f40e6df260c206a193a4683ba78) C:\Windows\system32\DRIVERS\hidbth.sys 20:34:38.0142 4672 HidBth - ok 20:34:38.0297 4672 HidIr (cf50b4cf4a4f229b9f3c08351f99ca5e) C:\Windows\system32\DRIVERS\hidir.sys 20:34:38.0306 4672 HidIr - ok 20:34:38.0928 4672 HidUsb (10c19f8290891af023eaec0832e1eb4d) C:\Windows\system32\drivers\hidusb.sys 20:34:38.0930 4672 HidUsb - ok 20:34:39.0191 4672 HpSAMD (295fdc419039090eb8b49ffdbb374549) C:\Windows\system32\drivers\HpSAMD.sys 20:34:39.0229 4672 HpSAMD - ok 20:34:39.0539 4672 HTTP (871917b07a141bff43d76d8844d48106) C:\Windows\system32\drivers\HTTP.sys 20:34:39.0574 4672 HTTP - ok 20:34:40.0046 4672 hwpolicy (0c4e035c7f105f1299258c90886c64c5) C:\Windows\system32\drivers\hwpolicy.sys 20:34:40.0047 4672 hwpolicy - ok 20:34:40.0271 4672 i8042prt (f151f0bdc47f4a28b1b20a0818ea36d6) C:\Windows\system32\drivers\i8042prt.sys 20:34:40.0274 4672 i8042prt - ok 20:34:40.0563 4672 iaStorV (a3cae5d281db4cff7cff8233507ee5ad) C:\Windows\system32\drivers\iaStorV.sys 20:34:40.0615 4672 iaStorV - ok 20:34:41.0394 4672 iirsp (4173ff5708f3236cf25195fecd742915) C:\Windows\system32\DRIVERS\iirsp.sys 20:34:41.0403 4672 iirsp - ok 20:34:41.0972 4672 intelide (a0f12f2c9ba6c72f3987ce780e77c130) C:\Windows\system32\drivers\intelide.sys 20:34:41.0982 4672 intelide - ok 20:34:42.0284 4672 intelppm (3b514d27bfc4accb4037bc6685f766e0) C:\Windows\system32\DRIVERS\intelppm.sys 20:34:42.0285 4672 intelppm - ok 20:34:42.0635 4672 IpFilterDriver (709d1761d3b19a932ff0238ea6d50200) C:\Windows\system32\DRIVERS\ipfltdrv.sys 20:34:42.0647 4672 IpFilterDriver - ok 20:34:43.0013 4672 IPMIDRV (4bd7134618c1d2a27466a099062547bf) C:\Windows\system32\drivers\IPMIDrv.sys 20:34:43.0024 4672 IPMIDRV - ok 20:34:43.0248 4672 IPNAT (a5fa468d67abcdaa36264e463a7bb0cd) C:\Windows\system32\drivers\ipnat.sys 20:34:43.0250 4672 IPNAT - ok 20:34:43.0560 4672 IRENUM (42996cff20a3084a56017b7902307e9f) C:\Windows\system32\drivers\irenum.sys 20:34:43.0562 4672 IRENUM - ok 20:34:44.0073 4672 isapnp (1f32bb6b38f62f7df1a7ab7292638a35) C:\Windows\system32\drivers\isapnp.sys 20:34:44.0086 4672 isapnp - ok 20:34:44.0401 4672 iScsiPrt (cb7a9abb12b8415bce5d74994c7ba3ae) C:\Windows\system32\drivers\msiscsi.sys 20:34:44.0418 4672 iScsiPrt - ok 20:34:44.0900 4672 kbdclass (adef52ca1aeae82b50df86b56413107e) C:\Windows\system32\drivers\kbdclass.sys 20:34:44.0902 4672 kbdclass - ok 20:34:45.0217 4672 kbdhid (9e3ced91863e6ee98c24794d05e27a71) C:\Windows\system32\drivers\kbdhid.sys 20:34:45.0219 4672 kbdhid - ok 20:34:45.0488 4672 KMWDFilter (72c55c745d804d62162144ebfd6390b8) C:\Windows\System32\Drivers\KMWDFilter.SYS 20:34:45.0498 4672 KMWDFilter - ok 20:34:46.0079 4672 KMWDFILTERx86 (72c55c745d804d62162144ebfd6390b8) C:\Windows\system32\DRIVERS\KMWDFILTER.sys 20:34:46.0080 4672 KMWDFILTERx86 - ok 20:34:46.0363 4672 KSecDD (f4647bb23db9038a7536cf6b68f4207f) C:\Windows\system32\Drivers\ksecdd.sys 20:34:46.0376 4672 KSecDD - ok 20:34:46.0838 4672 KSecPkg (e73cae53bbb72ba26918492c6b4c229d) C:\Windows\system32\Drivers\ksecpkg.sys 20:34:46.0841 4672 KSecPkg - ok 20:34:47.0165 4672 lltdio (f7611ec07349979da9b0ae1f18ccc7a6) C:\Windows\system32\DRIVERS\lltdio.sys 20:34:47.0205 4672 lltdio - ok 20:34:47.0633 4672 LSI_FC (eb119a53ccf2acc000ac71b065b78fef) C:\Windows\system32\DRIVERS\lsi_fc.sys 20:34:47.0654 4672 LSI_FC - ok 20:34:48.0307 4672 LSI_SAS (8ade1c877256a22e49b75d1cc9161f9c) C:\Windows\system32\DRIVERS\lsi_sas.sys 20:34:48.0332 4672 LSI_SAS - ok 20:34:48.0602 4672 LSI_SAS2 (dc9dc3d3daa0e276fd2ec262e38b11e9) C:\Windows\system32\DRIVERS\lsi_sas2.sys 20:34:48.0615 4672 LSI_SAS2 - ok 20:34:48.0962 4672 LSI_SCSI (0a036c7d7cab643a7f07135ac47e0524) C:\Windows\system32\DRIVERS\lsi_scsi.sys 20:34:48.0975 4672 LSI_SCSI - ok 20:34:49.0326 4672 luafv (6703e366cc18d3b6e534f5cf7df39cee) C:\Windows\system32\drivers\luafv.sys 20:34:49.0339 4672 luafv - ok 20:34:50.0161 4672 MarvinBus (a3e700d78eec390f1208098cdca5c6b6) C:\Windows\system32\DRIVERS\MarvinBus.sys 20:34:50.0183 4672 MarvinBus - ok 20:34:50.0603 4672 megasas (0fff5b045293002ab38eb1fd1fc2fb74) C:\Windows\system32\DRIVERS\megasas.sys 20:34:50.0618 4672 megasas - ok 20:34:51.0305 4672 MegaSR (dcbab2920c75f390caf1d29f675d03d6) C:\Windows\system32\DRIVERS\MegaSR.sys 20:34:51.0324 4672 MegaSR - ok 20:34:51.0803 4672 Modem (f001861e5700ee84e2d4e52c712f4964) C:\Windows\system32\drivers\modem.sys 20:34:51.0817 4672 Modem - ok 20:34:52.0102 4672 monitor (79d10964de86b292320e9dfe02282a23) C:\Windows\system32\DRIVERS\monitor.sys 20:34:52.0103 4672 monitor - ok 20:34:52.0400 4672 mouclass (fb18cc1d4c2e716b6b903b0ac0cc0609) C:\Windows\system32\drivers\mouclass.sys 20:34:52.0401 4672 mouclass - ok 20:34:52.0993 4672 mouhid (2c388d2cd01c9042596cf3c8f3c7b24d) C:\Windows\system32\DRIVERS\mouhid.sys 20:34:53.0012 4672 mouhid - ok 20:34:53.0415 4672 mountmgr (fc8771f45ecccfd89684e38842539b9b) C:\Windows\system32\drivers\mountmgr.sys 20:34:53.0421 4672 mountmgr - ok 20:34:54.0001 4672 mpio (2d699fb6e89ce0d8da14ecc03b3edfe0) C:\Windows\system32\drivers\mpio.sys 20:34:54.0010 4672 mpio - ok 20:34:54.0538 4672 mpsdrv (ad2723a7b53dd1aacae6ad8c0bfbf4d0) C:\Windows\system32\drivers\mpsdrv.sys 20:34:54.0541 4672 mpsdrv - ok 20:34:55.0206 4672 MRxDAV (ceb46ab7c01c9f825f8cc6babc18166a) C:\Windows\system32\drivers\mrxdav.sys 20:34:55.0217 4672 MRxDAV - ok 20:34:55.0608 4672 mrxsmb (5d16c921e3671636c0eba3bbaac5fd25) C:\Windows\system32\DRIVERS\mrxsmb.sys 20:34:55.0618 4672 mrxsmb - ok 20:34:56.0055 4672 mrxsmb10 (6d17a4791aca19328c685d256349fefc) C:\Windows\system32\DRIVERS\mrxsmb10.sys 20:34:56.0106 4672 mrxsmb10 - ok 20:34:56.0511 4672 mrxsmb20 (b81f204d146000be76651a50670a5e9e) C:\Windows\system32\DRIVERS\mrxsmb20.sys 20:34:56.0523 4672 mrxsmb20 - ok 20:34:57.0166 4672 msahci (012c5f4e9349e711e11e0f19a8589f0a) C:\Windows\system32\drivers\msahci.sys 20:34:57.0188 4672 msahci - ok 20:34:57.0662 4672 msdsm (55055f8ad8be27a64c831322a780a228) C:\Windows\system32\drivers\msdsm.sys 20:34:57.0669 4672 msdsm - ok 20:34:58.0192 4672 Msfs (daefb28e3af5a76abcc2c3078c07327f) C:\Windows\system32\drivers\Msfs.sys 20:34:58.0205 4672 Msfs - ok 20:34:58.0395 4672 mshidkmdf (3e1e5767043c5af9367f0056295e9f84) C:\Windows\System32\drivers\mshidkmdf.sys 20:34:58.0405 4672 mshidkmdf - ok 20:34:58.0888 4672 msisadrv (0a4e5757ae09fa9622e3158cc1aef114) C:\Windows\system32\drivers\msisadrv.sys 20:34:58.0889 4672 msisadrv - ok 20:34:58.0989 4672 MSKSSRV (8c0860d6366aaffb6c5bb9df9448e631) C:\Windows\system32\drivers\MSKSSRV.sys 20:34:59.0047 4672 MSKSSRV - ok 20:34:59.0309 4672 MSPCLOCK (3ea8b949f963562cedbb549eac0c11ce) C:\Windows\system32\drivers\MSPCLOCK.sys 20:34:59.0311 4672 MSPCLOCK - ok 20:34:59.0344 4672 MSPQM (f456e973590d663b1073e9c463b40932) C:\Windows\system32\drivers\MSPQM.sys 20:34:59.0346 4672 MSPQM - ok 20:34:59.0421 4672 MsRPC (0e008fc4819d238c51d7c93e7b41e560) C:\Windows\system32\drivers\MsRPC.sys 20:34:59.0431 4672 MsRPC - ok 20:35:00.0120 4672 mssmbios (fc6b9ff600cc585ea38b12589bd4e246) C:\Windows\system32\drivers\mssmbios.sys 20:35:00.0121 4672 mssmbios - ok 20:35:00.0447 4672 MSTEE (b42c6b921f61a6e55159b8be6cd54a36) C:\Windows\system32\drivers\MSTEE.sys 20:35:00.0499 4672 MSTEE - ok 20:35:01.0064 4672 MTConfig (33599130f44e1f34631cea241de8ac84) C:\Windows\system32\DRIVERS\MTConfig.sys 20:35:01.0076 4672 MTConfig - ok 20:35:01.0499 4672 Mup (159fad02f64e6381758c990f753bcc80) C:\Windows\system32\Drivers\mup.sys 20:35:01.0500 4672 Mup - ok 20:35:02.0089 4672 NativeWifiP (26384429fcd85d83746f63e798ab1480) C:\Windows\system32\DRIVERS\nwifi.sys 20:35:02.0147 4672 NativeWifiP - ok 20:35:02.0843 4672 NDIS (e7c54812a2aaf43316eb6930c1ffa108) C:\Windows\system32\drivers\ndis.sys 20:35:02.0882 4672 NDIS - ok 20:35:03.0526 4672 NdisCap (0e1787aa6c9191d3d319e8bafe86f80c) C:\Windows\system32\DRIVERS\ndiscap.sys 20:35:03.0537 4672 NdisCap - ok 20:35:04.0068 4672 NdisTapi (e4a8aec125a2e43a9e32afeea7c9c888) C:\Windows\system32\DRIVERS\ndistapi.sys 20:35:04.0076 4672 NdisTapi - ok 20:35:04.0427 4672 Ndisuio (d8a65dafb3eb41cbb622745676fcd072) C:\Windows\system32\DRIVERS\ndisuio.sys 20:35:04.0435 4672 Ndisuio - ok 20:35:04.0995 4672 NdisWan (38fbe267e7e6983311179230facb1017) C:\Windows\system32\DRIVERS\ndiswan.sys 20:35:05.0003 4672 NdisWan - ok 20:35:05.0327 4672 NDProxy (a4bdc541e69674fbff1a8ff00be913f2) C:\Windows\system32\drivers\NDProxy.sys 20:35:05.0339 4672 NDProxy - ok 20:35:06.0001 4672 NetBIOS (80b275b1ce3b0e79909db7b39af74d51) C:\Windows\system32\DRIVERS\netbios.sys 20:35:06.0011 4672 NetBIOS - ok 20:35:06.0327 4672 NetBT (280122ddcf04b378edd1ad54d71c1e54) C:\Windows\system32\DRIVERS\netbt.sys 20:35:06.0344 4672 NetBT - ok 20:35:06.0984 4672 nfrd960 (1d85c4b390b0ee09c7a46b91efb2c097) C:\Windows\system32\DRIVERS\nfrd960.sys 20:35:06.0994 4672 nfrd960 - ok 20:35:07.0356 4672 nmwcd (c3963d85b721a7f80d8a55f4e2867a3a) C:\Windows\system32\drivers\ccdcmb.sys 20:35:07.0378 4672 nmwcd - ok 20:35:07.0971 4672 nmwcdc (3859c69a77793180548802dac9f34a38) C:\Windows\system32\drivers\ccdcmbo.sys 20:35:07.0981 4672 nmwcdc - ok 20:35:08.0338 4672 Npfs (1db262a9f8c087e8153d89bef3d2235f) C:\Windows\system32\drivers\Npfs.sys 20:35:08.0352 4672 Npfs - ok 20:35:08.0637 4672 nsiproxy (e9a0a4d07e53d8fea2bb8387a3293c58) C:\Windows\system32\drivers\nsiproxy.sys 20:35:08.0890 4672 nsiproxy - ok 20:35:09.0593 4672 Ntfs (33c3093d09017cfe2e219f2472bff6eb) C:\Windows\system32\drivers\Ntfs.sys 20:35:09.0637 4672 Ntfs - ok 20:35:10.0127 4672 Null (f9756a98d69098dca8945d62858a812c) C:\Windows\system32\drivers\Null.sys 20:35:10.0143 4672 Null - ok 20:35:12.0699 4672 nvlddmkm (c8cb6135884cbc2a10225c4c3cef0f95) C:\Windows\system32\DRIVERS\nvlddmkm.sys 20:35:12.0782 4672 nvlddmkm - ok 20:35:13.0211 4672 nvraid (af2eec9580c1d32fb7eaf105d9784061) C:\Windows\system32\drivers\nvraid.sys 20:35:13.0248 4672 nvraid - ok 20:35:13.0606 4672 nvstor (9283c58ebaa2618f93482eb5dabcec82) C:\Windows\system32\drivers\nvstor.sys 20:35:13.0649 4672 nvstor - ok 20:35:14.0187 4672 nv_agp (5a0983915f02bae73267cc2a041f717d) C:\Windows\system32\drivers\nv_agp.sys 20:35:14.0190 4672 nv_agp - ok 20:35:14.0370 4672 ohci1394 (08a70a1f2cdde9bb49b885cb817a66eb) C:\Windows\system32\drivers\ohci1394.sys 20:35:14.0379 4672 ohci1394 - ok 20:35:15.0205 4672 PAC207 (dca942c0a19a0ad2abcd9acf94eb4b10) C:\Windows\system32\DRIVERS\PFC027.SYS 20:35:15.0273 4672 PAC207 - ok 20:35:15.0823 4672 Parport (2ea877ed5dd9713c5ac74e8ea7348d14) C:\Windows\system32\DRIVERS\parport.sys 20:35:15.0836 4672 Parport - ok 20:35:16.0168 4672 partmgr (bf8f6af06da75b336f07e23aef97d93b) C:\Windows\system32\drivers\partmgr.sys 20:35:16.0169 4672 partmgr - ok 20:35:16.0535 4672 Parvdm (eb0a59f29c19b86479d36b35983daadc) C:\Windows\system32\DRIVERS\parvdm.sys 20:35:16.0544 4672 Parvdm - ok 20:35:17.0004 4672 pccsmcfd (fd2041e9ba03db7764b2248f02475079) C:\Windows\system32\DRIVERS\pccsmcfd.sys 20:35:17.0015 4672 pccsmcfd - ok 20:35:17.0170 4672 pci (673e55c3498eb970088e812ea820aa8f) C:\Windows\system32\drivers\pci.sys 20:35:17.0215 4672 pci - ok 20:35:17.0395 4672 pciide (afe86f419014db4e5593f69ffe26ce0a) C:\Windows\system32\drivers\pciide.sys 20:35:17.0428 4672 pciide - ok 20:35:17.0857 4672 pcmcia (f396431b31693e71e8a80687ef523506) C:\Windows\system32\DRIVERS\pcmcia.sys 20:35:17.0862 4672 pcmcia - ok 20:35:18.0198 4672 pcw (250f6b43d2b613172035c6747aeeb19f) C:\Windows\system32\drivers\pcw.sys 20:35:18.0199 4672 pcw - ok 20:35:18.0545 4672 PEAUTH (9e0104ba49f4e6973749a02bf41344ed) C:\Windows\system32\drivers\peauth.sys 20:35:18.0572 4672 PEAUTH - ok 20:35:19.0141 4672 PptpMiniport (631e3e205ad6d86f2aed6a4a8e69f2db) C:\Windows\system32\DRIVERS\raspptp.sys 20:35:19.0153 4672 PptpMiniport - ok 20:35:19.0484 4672 Processor (85b1e3a0c7585bc4aae6899ec6fcf011) C:\Windows\system32\DRIVERS\processr.sys 20:35:19.0494 4672 Processor - ok 20:35:20.0102 4672 Psched (6270ccae2a86de6d146529fe55b3246a) C:\Windows\system32\DRIVERS\pacer.sys 20:35:20.0110 4672 Psched - ok 20:35:20.0653 4672 ql2300 (ab95ecf1f6659a60ddc166d8315b0751) C:\Windows\system32\DRIVERS\ql2300.sys 20:35:20.0905 4672 ql2300 - ok 20:35:21.0255 4672 ql40xx (b4dd51dd25182244b86737dc51af2270) C:\Windows\system32\DRIVERS\ql40xx.sys 20:35:21.0258 4672 ql40xx - ok 20:35:21.0908 4672 QWAVEdrv (584078ca1b95ca72df2a27c336f9719d) C:\Windows\system32\drivers\qwavedrv.sys 20:35:21.0912 4672 QWAVEdrv - ok 20:35:22.0396 4672 RasAcd (30a81b53c766d0133bb86d234e5556ab) C:\Windows\system32\DRIVERS\rasacd.sys 20:35:22.0407 4672 RasAcd - ok 20:35:23.0095 4672 RasAgileVpn (57ec4aef73660166074d8f7f31c0d4fd) C:\Windows\system32\DRIVERS\AgileVpn.sys 20:35:23.0109 4672 RasAgileVpn - ok 20:35:23.0512 4672 Rasl2tp (d9f91eafec2815365cbe6d167e4e332a) C:\Windows\system32\DRIVERS\rasl2tp.sys 20:35:23.0522 4672 Rasl2tp - ok 20:35:24.0214 4672 RasPppoe (0fe8b15916307a6ac12bfb6a63e45507) C:\Windows\system32\DRIVERS\raspppoe.sys 20:35:24.0231 4672 RasPppoe - ok 20:35:24.0603 4672 RasSstp (44101f495a83ea6401d886e7fd70096b) C:\Windows\system32\DRIVERS\rassstp.sys 20:35:24.0613 4672 RasSstp - ok 20:35:25.0124 4672 rdbss (d528bc58a489409ba40334ebf96a311b) C:\Windows\system32\DRIVERS\rdbss.sys 20:35:25.0174 4672 rdbss - ok 20:35:25.0435 4672 rdpbus (0d8f05481cb76e70e1da06ee9f0da9df) C:\Windows\system32\DRIVERS\rdpbus.sys 20:35:25.0460 4672 rdpbus - ok 20:35:25.0862 4672 RDPCDD (23dae03f29d253ae74c44f99e515f9a1) C:\Windows\system32\DRIVERS\RDPCDD.sys 20:35:25.0871 4672 RDPCDD - ok 20:35:26.0254 4672 RDPDR (b973fcfc50dc1434e1970a146f7e3885) C:\Windows\system32\drivers\rdpdr.sys 20:35:26.0293 4672 RDPDR - ok 20:35:26.0462 4672 RDPENCDD (5a53ca1598dd4156d44196d200c94b8a) C:\Windows\system32\drivers\rdpencdd.sys 20:35:26.0481 4672 RDPENCDD - ok 20:35:26.0890 4672 RDPREFMP (44b0a53cd4f27d50ed461dae0c0b4e1f) C:\Windows\system32\drivers\rdprefmp.sys 20:35:26.0904 4672 RDPREFMP - ok 20:35:27.0239 4672 RDPWD (288b06960d78428ff89e811632684e20) C:\Windows\system32\drivers\RDPWD.sys 20:35:27.0244 4672 RDPWD - ok 20:35:27.0554 4672 rdyboost (518395321dc96fe2c9f0e96ac743b656) C:\Windows\system32\drivers\rdyboost.sys 20:35:27.0557 4672 rdyboost - ok 20:35:28.0323 4672 rspndr (032b0d36ad92b582d869879f5af5b928) C:\Windows\system32\DRIVERS\rspndr.sys 20:35:28.0363 4672 rspndr - ok 20:35:29.0014 4672 s3cap (7fa7f2e249a5dcbb7970630e15e1f482) C:\Windows\system32\drivers\vms3cap.sys 20:35:29.0032 4672 s3cap - ok 20:35:29.0437 4672 sbp2port (05d860da1040f111503ac416ccef2bca) C:\Windows\system32\drivers\sbp2port.sys 20:35:29.0484 4672 sbp2port - ok 20:35:30.0108 4672 scfilter (0693b5ec673e34dc147e195779a4dcf6) C:\Windows\system32\DRIVERS\scfilter.sys 20:35:30.0152 4672 scfilter - ok 20:35:30.0890 4672 SDVC05 - ok 20:35:31.0636 4672 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys 20:35:31.0659 4672 secdrv - ok 20:35:32.0179 4672 Serenum (9ad8b8b515e3df6acd4212ef465de2d1) C:\Windows\system32\DRIVERS\serenum.sys 20:35:32.0191 4672 Serenum - ok 20:35:32.0832 4672 Serial - ok 20:35:33.0285 4672 sermouse (79bffb520327ff916a582dfea17aa813) C:\Windows\system32\DRIVERS\sermouse.sys 20:35:33.0322 4672 sermouse - ok 20:35:33.0740 4672 sffdisk (9f976e1eb233df46fce808d9dea3eb9c) C:\Windows\system32\drivers\sffdisk.sys 20:35:33.0748 4672 sffdisk - ok 20:35:34.0149 4672 sffp_mmc (932a68ee27833cfd57c1639d375f2731) C:\Windows\system32\drivers\sffp_mmc.sys 20:35:34.0201 4672 sffp_mmc - ok 20:35:34.0723 4672 sffp_sd (6d4ccaedc018f1cf52866bbbaa235982) C:\Windows\system32\drivers\sffp_sd.sys 20:35:34.0783 4672 sffp_sd - ok 20:35:35.0389 4672 sfloppy (db96666cc8312ebc45032f30b007a547) C:\Windows\system32\DRIVERS\sfloppy.sys 20:35:35.0445 4672 sfloppy - ok 20:35:35.0933 4672 sisagp (2565cac0dc9fe0371bdce60832582b2e) C:\Windows\system32\drivers\sisagp.sys 20:35:35.0982 4672 sisagp - ok 20:35:36.0296 4672 SiSRaid2 (a9f0486851becb6dda1d89d381e71055) C:\Windows\system32\DRIVERS\SiSRaid2.sys 20:35:36.0333 4672 SiSRaid2 - ok 20:35:36.0672 4672 SiSRaid4 (3727097b55738e2f554972c3be5bc1aa) C:\Windows\system32\DRIVERS\sisraid4.sys 20:35:36.0694 4672 SiSRaid4 - ok 20:35:37.0140 4672 Smb (3e21c083b8a01cb70ba1f09303010fce) C:\Windows\system32\DRIVERS\smb.sys 20:35:37.0148 4672 Smb - ok 20:35:37.0459 4672 speedfan (5d6401db90ec81b71f8e2c5c8f0fef23) C:\Windows\system32\speedfan.sys 20:35:37.0463 4672 speedfan - ok 20:35:37.0918 4672 spldr (95cf1ae7527fb70f7816563cbc09d942) C:\Windows\system32\drivers\spldr.sys 20:35:37.0919 4672 spldr - ok 20:35:38.0372 4672 srv (e4c2764065d66ea1d2d3ebc28fe99c46) C:\Windows\system32\DRIVERS\srv.sys 20:35:38.0389 4672 srv - ok 20:35:38.0786 4672 srv2 (03f0545bd8d4c77fa0ae1ceedfcc71ab) C:\Windows\system32\DRIVERS\srv2.sys 20:35:38.0803 4672 srv2 - ok 20:35:39.0122 4672 srvnet (be6bd660caa6f291ae06a718a4fa8abc) C:\Windows\system32\DRIVERS\srvnet.sys 20:35:39.0137 4672 srvnet - ok 20:35:39.0556 4672 ssadbus (48f44a1be434830b7c90fb730745f65a) C:\Windows\system32\DRIVERS\ssadbus.sys 20:35:39.0583 4672 ssadbus - ok 20:35:39.0996 4672 ssadmdfl (9630b486b62cc0adb0a89152ed0218d7) C:\Windows\system32\DRIVERS\ssadmdfl.sys 20:35:40.0024 4672 ssadmdfl - ok 20:35:40.0294 4672 ssadmdm (9afaa23421622c392b55508fa9613949) C:\Windows\system32\DRIVERS\ssadmdm.sys 20:35:40.0316 4672 ssadmdm - ok 20:35:40.0711 4672 ssadserd (1cac71d756ce00ae0681f9028dde874b) C:\Windows\system32\DRIVERS\ssadserd.sys 20:35:40.0742 4672 ssadserd - ok 20:35:41.0087 4672 sscdbus (069351a1d7d291013177a90ae6edccbc) C:\Windows\system32\DRIVERS\sscdbus.sys 20:35:41.0125 4672 sscdbus - ok 20:35:41.0774 4672 sscdmdfl (1c925be223a5c0f9f469252292a48df6) C:\Windows\system32\DRIVERS\sscdmdfl.sys 20:35:41.0810 4672 sscdmdfl - ok 20:35:42.0240 4672 sscdmdm (ae3e77ae0fbdb07eb1ac3fed74a0695e) C:\Windows\system32\DRIVERS\sscdmdm.sys 20:35:42.0257 4672 sscdmdm - ok 20:35:42.0639 4672 ss_bbus (3f0164fbc0bd1adbd02df9759181451a) C:\Windows\system32\DRIVERS\ss_bbus.sys 20:35:42.0654 4672 ss_bbus - ok 20:35:43.0054 4672 ss_bmdfl (b89d62206034e5fe573c80a24dd55675) C:\Windows\system32\DRIVERS\ss_bmdfl.sys 20:35:43.0066 4672 ss_bmdfl - ok 20:35:43.0394 4672 ss_bmdm (1ed0fcea586fe2a416ee15196e5631dd) C:\Windows\system32\DRIVERS\ss_bmdm.sys 20:35:43.0422 4672 ss_bmdm - ok 20:35:43.0855 4672 ss_bserd (994d2e5378cc337ec7dd73c1e04fcaa4) C:\Windows\system32\DRIVERS\ss_bserd.sys 20:35:43.0875 4672 ss_bserd - ok 20:35:44.0227 4672 stexstor (db32d325c192b801df274bfd12a7e72b) C:\Windows\system32\DRIVERS\stexstor.sys 20:35:44.0248 4672 stexstor - ok 20:35:44.0629 4672 StillCam (edb05bd63148796f23ea78506404a538) C:\Windows\system32\DRIVERS\serscan.sys 20:35:44.0636 4672 StillCam - ok 20:35:44.0901 4672 storflt (472af0311073dceceaa8fa18ba2bdf89) C:\Windows\system32\drivers\vmstorfl.sys 20:35:44.0903 4672 storflt - ok 20:35:45.0244 4672 storvsc (dcaffd62259e0bdb433dd67b5bb37619) C:\Windows\system32\drivers\storvsc.sys 20:35:45.0258 4672 storvsc - ok 20:35:45.0602 4672 swenum (e58c78a848add9610a4db6d214af5224) C:\Windows\system32\drivers\swenum.sys 20:35:45.0603 4672 swenum - ok 20:35:46.0235 4672 Tcpip (65d10b191c59c5501a1263fc33f6894b) C:\Windows\system32\drivers\tcpip.sys 20:35:46.0288 4672 Tcpip - ok 20:35:46.0868 4672 TCPIP6 (65d10b191c59c5501a1263fc33f6894b) C:\Windows\system32\DRIVERS\tcpip.sys 20:35:46.0878 4672 TCPIP6 - ok 20:35:47.0212 4672 tcpipreg (cca24162e055c3714ce5a88b100c64ed) C:\Windows\system32\drivers\tcpipreg.sys 20:35:47.0235 4672 tcpipreg - ok 20:35:47.0744 4672 TDPIPE (1cb91b2bd8f6dd367dfc2ef26fd751b2) C:\Windows\system32\drivers\tdpipe.sys 20:35:47.0779 4672 TDPIPE - ok 20:35:48.0149 4672 TDTCP (2c10395baa4847f83042813c515cc289) C:\Windows\system32\drivers\tdtcp.sys 20:35:48.0166 4672 TDTCP - ok 20:35:48.0514 4672 tdx (7e37ccafae3f29b2aa28ec4dec97f6e5) C:\Windows\system32\DRIVERS\tdx.sys 20:35:48.0515 4672 Suspicious file (Forged): C:\Windows\system32\DRIVERS\tdx.sys. Real md5: 7e37ccafae3f29b2aa28ec4dec97f6e5, Fake md5: b459575348c20e8121d6039da063c704 20:35:48.0516 4672 tdx ( Virus.Win32.ZAccess.c ) - infected 20:35:48.0516 4672 tdx - detected Virus.Win32.ZAccess.c (0) 20:35:48.0818 4672 TermDD (04dbf4b01ea4bf25a9a3e84affac9b20) C:\Windows\system32\drivers\termdd.sys 20:35:48.0820 4672 TermDD - ok 20:35:49.0433 4672 tssecsrv (254bb140eee3c59d6114c1a86b636877) C:\Windows\system32\DRIVERS\tssecsrv.sys 20:35:49.0442 4672 tssecsrv - ok 20:35:49.0701 4672 TsUsbFlt (fd1d6c73e6333be727cbcc6054247654) C:\Windows\system32\drivers\tsusbflt.sys 20:35:49.0704 4672 TsUsbFlt - ok 20:35:49.0788 4672 tunnel (b2fa25d9b17a68bb93d58b0556e8c90d) C:\Windows\system32\DRIVERS\tunnel.sys 20:35:49.0801 4672 tunnel - ok 20:35:50.0183 4672 uagp35 (750fbcb269f4d7dd2e420c56b795db6d) C:\Windows\system32\DRIVERS\uagp35.sys 20:35:50.0184 4672 uagp35 - ok 20:35:50.0378 4672 udfs (ee43346c7e4b5e63e54f927babbb32ff) C:\Windows\system32\DRIVERS\udfs.sys 20:35:50.0383 4672 udfs - ok 20:35:50.0740 4672 uliagpkx (44e8048ace47befbfdc2e9be4cbc8880) C:\Windows\system32\drivers\uliagpkx.sys 20:35:50.0756 4672 uliagpkx - ok 20:35:51.0094 4672 umbus (d295bed4b898f0fd999fcfa9b32b071b) C:\Windows\system32\DRIVERS\umbus.sys 20:35:51.0105 4672 umbus - ok 20:35:51.0358 4672 UmPass (7550ad0c6998ba1cb4843e920ee0feac) C:\Windows\system32\DRIVERS\umpass.sys 20:35:51.0360 4672 UmPass - ok 20:35:51.0660 4672 upperdev (0ccadc7391021376edbb8aa649d04e68) C:\Windows\system32\DRIVERS\usbser_lowerflt.sys 20:35:51.0687 4672 upperdev - ok 20:35:51.0877 4672 usbccgp (7e72e7d7e0757d59481d530fd2b0bfae) C:\Windows\system32\drivers\usbccgp.sys 20:35:51.0898 4672 usbccgp - ok 20:35:52.0072 4672 usbcir (04ec7cec62ec3b6d9354eee93327fc82) C:\Windows\system32\drivers\usbcir.sys 20:35:52.0080 4672 usbcir - ok 20:35:52.0428 4672 usbehci (cfbce999c057d78979a181c9c60f208e) C:\Windows\system32\drivers\usbehci.sys 20:35:52.0430 4672 usbehci - ok 20:35:52.0556 4672 usbhub (9d22aad9ac6a07c691a1113e5f860868) C:\Windows\system32\drivers\usbhub.sys 20:35:52.0566 4672 usbhub - ok 20:35:52.0616 4672 usbohci (a6fb7957ea7afb1165991e54ce934b74) C:\Windows\system32\drivers\usbohci.sys 20:35:52.0647 4672 usbohci - ok 20:35:52.0789 4672 usbprint (797d862fe0875e75c7cc4c1ad7b30252) C:\Windows\system32\DRIVERS\usbprint.sys 20:35:52.0804 4672 usbprint - ok 20:35:52.0981 4672 UsbserFilt (68b4f83cccf70a2ff32ee142c234332a) C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys 20:35:52.0990 4672 UsbserFilt - ok 20:35:53.0132 4672 USBSTOR (bf63ebfc6979fefb2bc03df7989a0c1a) C:\Windows\system32\DRIVERS\USBSTOR.SYS 20:35:53.0142 4672 USBSTOR - ok 20:35:53.0299 4672 usbuhci (78780c3ebce17405b1ccd07a3a8a7d72) C:\Windows\system32\drivers\usbuhci.sys 20:35:53.0302 4672 usbuhci - ok 20:35:54.0062 4672 vdrvroot (a059c4c3edb09e07d21a8e5c0aabd3cb) C:\Windows\system32\drivers\vdrvroot.sys 20:35:54.0078 4672 vdrvroot - ok 20:35:54.0648 4672 vga (17c408214ea61696cec9c66e388b14f3) C:\Windows\system32\DRIVERS\vgapnp.sys 20:35:54.0761 4672 vga - ok 20:35:54.0982 4672 VgaSave (8e38096ad5c8570a6f1570a61e251561) C:\Windows\System32\drivers\vga.sys 20:35:54.0991 4672 VgaSave - ok 20:35:55.0416 4672 vhdmp (5461686cca2fda57b024547733ab42e3) C:\Windows\system32\drivers\vhdmp.sys 20:35:55.0450 4672 vhdmp - ok 20:35:56.0170 4672 viaagp (c829317a37b4bea8f39735d4b076e923) C:\Windows\system32\drivers\viaagp.sys 20:35:56.0207 4672 viaagp - ok 20:35:56.0596 4672 ViaC7 (e02f079a6aa107f06b16549c6e5c7b74) C:\Windows\system32\DRIVERS\viac7.sys 20:35:56.0728 4672 ViaC7 - ok 20:35:57.0116 4672 viaide (e43574f6a56a0ee11809b48c09e4fd3c) C:\Windows\system32\drivers\viaide.sys 20:35:57.0117 4672 viaide - ok 20:35:57.0776 4672 viamraid (00046aa2e396edc2238556e740a8e5af) C:\Windows\system32\DRIVERS\viamraid.sys 20:35:57.0778 4672 viamraid - ok 20:35:58.0394 4672 vmbus (c2f2911156fdc7817c52829c86da494e) C:\Windows\system32\drivers\vmbus.sys 20:35:58.0431 4672 vmbus - ok 20:35:58.0903 4672 VMBusHID (d4d77455211e204f370d08f4963063ce) C:\Windows\system32\drivers\VMBusHID.sys 20:35:58.0913 4672 VMBusHID - ok 20:35:59.0411 4672 volmgr (4c63e00f2f4b5f86ab48a58cd990f212) C:\Windows\system32\drivers\volmgr.sys 20:35:59.0412 4672 volmgr - ok 20:35:59.0928 4672 volmgrx (b5bb72067ddddbbfb04b2f89ff8c3c87) C:\Windows\system32\drivers\volmgrx.sys 20:35:59.0942 4672 volmgrx - ok 20:36:00.0230 4672 volsnap (f497f67932c6fa693d7de2780631cfe7) C:\Windows\system32\drivers\volsnap.sys 20:36:00.0258 4672 volsnap - ok 20:36:00.0552 4672 vsmraid (9dfa0cc2f8855a04816729651175b631) C:\Windows\system32\DRIVERS\vsmraid.sys 20:36:00.0554 4672 vsmraid - ok 20:36:01.0046 4672 vwifibus (90567b1e658001e79d7c8bbd3dde5aa6) C:\Windows\System32\drivers\vwifibus.sys 20:36:01.0057 4672 vwifibus - ok 20:36:01.0390 4672 WacomPen (de3721e89c653aa281428c8a69745d90) C:\Windows\system32\DRIVERS\wacompen.sys 20:36:01.0393 4672 WacomPen - ok 20:36:01.0839 4672 WANARP (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys 20:36:01.0842 4672 WANARP - ok 20:36:01.0853 4672 Wanarpv6 (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys 20:36:01.0855 4672 Wanarpv6 - ok 20:36:02.0241 4672 Wd (1112a9badacb47b7c0bb0392e3158dff) C:\Windows\system32\DRIVERS\wd.sys 20:36:02.0250 4672 Wd - ok 20:36:02.0438 4672 Wdf01000 (9950e3d0f08141c7e89e64456ae7dc73) C:\Windows\system32\drivers\Wdf01000.sys 20:36:02.0446 4672 Wdf01000 - ok 20:36:02.0935 4672 WfpLwf (8b9a943f3b53861f2bfaf6c186168f79) C:\Windows\system32\DRIVERS\wfplwf.sys 20:36:02.0938 4672 WfpLwf - ok 20:36:03.0321 4672 WIMMount (5cf95b35e59e2a38023836fff31be64c) C:\Windows\system32\drivers\wimmount.sys 20:36:03.0343 4672 WIMMount - ok 20:36:03.0781 4672 WinUsb (a67e5f9a400f3bd1be3d80613b45f708) C:\Windows\system32\DRIVERS\WinUsb.sys 20:36:03.0791 4672 WinUsb - ok 20:36:04.0053 4672 WmiAcpi (0217679b8fca58714c3bf2726d2ca84e) C:\Windows\system32\drivers\wmiacpi.sys 20:36:04.0076 4672 WmiAcpi - ok 20:36:04.0415 4672 ws2ifsl (6db3276587b853bf886b69528fdb048c) C:\Windows\system32\drivers\ws2ifsl.sys 20:36:04.0422 4672 ws2ifsl - ok 20:36:04.0715 4672 WSDPrintDevice (553f6ccd7c58eb98d4a8fbdaf283d7a9) C:\Windows\system32\DRIVERS\WSDPrint.sys 20:36:04.0753 4672 WSDPrintDevice - ok 20:36:05.0218 4672 WudfPf (e714a1c0354636837e20ccbf00888ee7) C:\Windows\system32\drivers\WudfPf.sys 20:36:05.0235 4672 WudfPf - ok 20:36:05.0725 4672 WUDFRd (1023ee888c9b47178c5293ed5336ab69) C:\Windows\system32\DRIVERS\WUDFRd.sys 20:36:05.0751 4672 WUDFRd - ok 20:36:05.0990 4672 MBR (0x1B8) (32052574bf9f325ae309abc7bfd04460) \Device\Harddisk2\DR2 20:36:06.0021 4672 \Device\Harddisk2\DR2 - ok 20:36:06.0029 4672 MBR (0x1B8) (32052574bf9f325ae309abc7bfd04460) \Device\Harddisk0\DR0 20:36:06.0134 4672 \Device\Harddisk0\DR0 - ok 20:36:06.0172 4672 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk1\DR1 20:36:06.0328 4672 \Device\Harddisk1\DR1 - ok 20:36:06.0334 4672 Boot (0x1200) (31d0b1a1700d456d49a321bf9c31e9f2) \Device\Harddisk2\DR2\Partition0 20:36:06.0335 4672 \Device\Harddisk2\DR2\Partition0 - ok 20:36:06.0349 4672 Boot (0x1200) (08a5660fcb298457a6be29c5eec633c1) \Device\Harddisk0\DR0\Partition0 20:36:06.0352 4672 \Device\Harddisk0\DR0\Partition0 - ok 20:36:06.0361 4672 Boot (0x1200) (35f598d74e7ecee1b8361e3335adbf50) \Device\Harddisk0\DR0\Partition1 20:36:06.0363 4672 \Device\Harddisk0\DR0\Partition1 - ok 20:36:06.0376 4672 Boot (0x1200) (4ddc1cba87bd716b6c036c9db20a578f) \Device\Harddisk1\DR1\Partition0 20:36:06.0452 4672 \Device\Harddisk1\DR1\Partition0 - ok 20:36:06.0482 4672 Boot (0x1200) (9179aa344265c0621db13d1d6f03f889) \Device\Harddisk1\DR1\Partition1 20:36:06.0553 4672 \Device\Harddisk1\DR1\Partition1 - ok 20:36:06.0583 4672 Boot (0x1200) (163ff5faaa8417d1534781f2cf2f4236) \Device\Harddisk1\DR1\Partition2 20:36:06.0643 4672 \Device\Harddisk1\DR1\Partition2 - ok 20:36:06.0644 4672 ============================================================ 20:36:06.0644 4672 Scan finished 20:36:06.0644 4672 ============================================================ 20:36:06.0673 4664 Detected object count: 1 20:36:06.0673 4664 Actual detected object count: 1 20:36:42.0144 4664 C:\Windows\system32\DRIVERS\tdx.sys - copied to quarantine 20:36:43.0022 4664 Backup copy found, using it.. 20:36:43.0372 4664 C:\Windows\system32\DRIVERS\tdx.sys - will be cured on reboot 20:37:22.0296 4664 tdx ( Virus.Win32.ZAccess.c ) - User select action: Cure 20:37:34.0870 4608 Deinitialize success