19:39:45.0212 3736 TDSS rootkit removing tool 2.8.13.0 Oct 12 2012 17:26:47 19:39:45.0305 3736 ============================================================ 19:39:45.0305 3736 Current date / time: 2012/10/18 19:39:45.0305 19:39:45.0305 3736 SystemInfo: 19:39:45.0305 3736 19:39:45.0305 3736 OS Version: 5.1.2600 ServicePack: 2.0 19:39:45.0305 3736 Product type: Workstation 19:39:45.0305 3736 ComputerName: HAKER 19:39:45.0305 3736 UserName: haker765 19:39:45.0305 3736 Windows directory: C:\WINDOWS 19:39:45.0305 3736 System windows directory: C:\WINDOWS 19:39:45.0305 3736 Processor architecture: Intel x86 19:39:45.0305 3736 Number of processors: 1 19:39:45.0305 3736 Page size: 0x1000 19:39:45.0305 3736 Boot type: Normal boot 19:39:45.0305 3736 ============================================================ 19:39:46.0852 3736 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054 19:39:46.0868 3736 Drive \Device\Harddisk1\DR1 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x764A9, SectorsPerTrack: 0x3F, TracksPerCylinder: 0x10, Type 'K0', Flags 0x00000050 19:39:46.0868 3736 Drive \Device\Harddisk2\DR6 - Size: 0xEF000000 (3.73 Gb), SectorSize: 0x200, Cylinders: 0x1E7, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W' 19:39:46.0868 3736 ============================================================ 19:39:46.0868 3736 \Device\Harddisk0\DR0: 19:39:46.0868 3736 MBR partitions: 19:39:46.0868 3736 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x950E482 19:39:46.0899 3736 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x950E500, BlocksNum 0x950A5C1 19:39:46.0899 3736 \Device\Harddisk1\DR1: 19:39:46.0899 3736 MBR partitions: 19:39:46.0899 3736 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0xEA5FDF0, BlocksNum 0xE765B80 19:39:46.0899 3736 \Device\Harddisk1\DR1\Partition2: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0xEA5FDB1 19:39:46.0899 3736 \Device\Harddisk2\DR6: 19:39:46.0899 3736 MBR partitions: 19:39:46.0899 3736 \Device\Harddisk2\DR6\Partition1: MBR, Type 0xB, StartLBA 0x3F, BlocksNum 0x777A41 19:39:46.0899 3736 ============================================================ 19:39:47.0009 3736 C: <-> \Device\Harddisk0\DR0\Partition1 19:39:47.0055 3736 D: <-> \Device\Harddisk0\DR0\Partition2 19:39:47.0087 3736 G: <-> \Device\Harddisk1\DR1\Partition2 19:39:47.0134 3736 H: <-> \Device\Harddisk1\DR1\Partition1 19:39:47.0180 3736 ============================================================ 19:39:47.0180 3736 Initialize success 19:39:47.0180 3736 ============================================================ 19:39:54.0680 3880 ============================================================ 19:39:54.0680 3880 Scan started 19:39:54.0680 3880 Mode: Manual; SigCheck; TDLFS; 19:39:54.0680 3880 ============================================================ 19:39:55.0134 3880 ================ Scan system memory ======================== 19:39:55.0134 3880 System memory - ok 19:39:55.0134 3880 ================ Scan services ============================= 19:39:55.0415 3880 [ 95D1DE2A6613494E853A9738D5D9ACD4 ] Aavmker4 C:\WINDOWS\system32\drivers\Aavmker4.sys 19:39:55.0571 3880 Aavmker4 - ok 19:39:55.0571 3880 Abiosdsk - ok 19:39:55.0587 3880 abp480n5 - ok 19:39:55.0649 3880 [ A966410ECF83B81F3B0B8E07A71957D4 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys 19:39:56.0805 3880 ACPI - ok 19:39:56.0821 3880 [ 66A42B7DB194E24B973BBCCE840A0F3F ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys 19:39:56.0946 3880 ACPIEC - ok 19:39:56.0946 3880 adpu160m - ok 19:39:57.0024 3880 [ 841F385C6CFAF66B58FBD898722BB4F0 ] aec C:\WINDOWS\system32\drivers\aec.sys 19:39:57.0149 3880 aec - ok 19:39:57.0196 3880 [ 5AC495F4CB807B2B98AD2AD591E6D92E ] AFD C:\WINDOWS\System32\drivers\afd.sys 19:39:57.0446 3880 AFD - ok 19:39:57.0462 3880 Aha154x - ok 19:39:57.0462 3880 aic78u2 - ok 19:39:57.0477 3880 aic78xx - ok 19:39:57.0524 3880 [ F79B5C5B0A77A134C5671992335D1409 ] Alerter C:\WINDOWS\system32\alrsvc.dll 19:39:57.0696 3880 Alerter - ok 19:39:57.0743 3880 [ 9D12991BC6B6C5C0FBAB4C06E7073DF1 ] ALG C:\WINDOWS\System32\alg.exe 19:39:57.0790 3880 ALG - ok 19:39:57.0790 3880 AliIde - ok 19:39:58.0337 3880 [ 267FC636801EDC5AB28E14036349E3BE ] Ambfilt C:\WINDOWS\system32\drivers\Ambfilt.sys 19:39:59.0446 3880 Ambfilt - ok 19:39:59.0477 3880 [ 59301936898AE62245A6F09C0ABA9475 ] AmdK8 C:\WINDOWS\system32\DRIVERS\AmdK8.sys 19:39:59.0524 3880 AmdK8 - ok 19:39:59.0524 3880 amsint - ok 19:39:59.0587 3880 [ 8D60B308D061DA209CC271D9B480468C ] AppMgmt C:\WINDOWS\System32\appmgmts.dll 19:39:59.0680 3880 AppMgmt - ok 19:39:59.0680 3880 asc - ok 19:39:59.0696 3880 asc3350p - ok 19:39:59.0696 3880 asc3550 - ok 19:39:59.0805 3880 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe 19:39:59.0837 3880 aspnet_state - ok 19:39:59.0868 3880 [ C47623FFD181A1E7D63574DDE2A0A711 ] aswFsBlk C:\WINDOWS\system32\drivers\aswFsBlk.sys 19:39:59.0884 3880 aswFsBlk - ok 19:39:59.0946 3880 [ FFF2DBB17A3C89F87F78D5FA72CA47FD ] aswMon2 C:\WINDOWS\system32\drivers\aswMon2.sys 19:39:59.0993 3880 aswMon2 - ok 19:40:00.0009 3880 [ 36239E24470A3DD81FAE37510953CC6C ] aswRdr C:\WINDOWS\system32\drivers\aswRdr.sys 19:40:00.0024 3880 aswRdr - ok 19:40:00.0149 3880 [ CAA846E9C83836BDC3D2D700C678DB65 ] aswSnx C:\WINDOWS\system32\drivers\aswSnx.sys 19:40:00.0337 3880 aswSnx - ok 19:40:00.0430 3880 [ 748AE7F2D7DA33ADB063FE05704A9969 ] aswSP C:\WINDOWS\system32\drivers\aswSP.sys 19:40:00.0524 3880 aswSP - ok 19:40:00.0555 3880 [ CA9925CE1DBD07FFE1EB357752CF5577 ] aswTdi C:\WINDOWS\system32\drivers\aswTdi.sys 19:40:00.0571 3880 aswTdi - ok 19:40:00.0618 3880 [ 02000ABF34AF4C218C35D257024807D6 ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys 19:40:00.0743 3880 AsyncMac - ok 19:40:00.0774 3880 [ CDFE4411A69C224BD1D11B2DA92DAC51 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys 19:40:00.0899 3880 atapi - ok 19:40:00.0899 3880 Atdisk - ok 19:40:01.0009 3880 [ 3C4B9850A2631C2263507400D029057B ] atksgt C:\WINDOWS\system32\DRIVERS\atksgt.sys 19:40:01.0009 3880 atksgt - ok 19:40:01.0040 3880 [ EC88DA854AB7D7752EC8BE11A741BB7F ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys 19:40:01.0165 3880 Atmarpc - ok 19:40:01.0212 3880 [ 18BFF5EBA35F2562C5AA03EB9C6BA29E ] AudioSrv C:\WINDOWS\System32\audiosrv.dll 19:40:01.0352 3880 AudioSrv - ok 19:40:01.0368 3880 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys 19:40:01.0493 3880 audstub - ok 19:40:01.0665 3880 [ C76769F246250EDAD34A5581419E9D60 ] avast! Antivirus C:\Program Files\Alwil Software\Avast5\AvastSvc.exe 19:40:01.0680 3880 avast! Antivirus - ok 19:40:01.0712 3880 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys 19:40:01.0821 3880 Beep - ok 19:40:01.0946 3880 [ A6BFD910074B02C8794FC65F39CC6B28 ] BITS C:\WINDOWS\system32\qmgr.dll 19:40:02.0274 3880 BITS - ok 19:40:02.0321 3880 [ E4E6A0922E3D983728C9AD4E8D466954 ] Bridge C:\WINDOWS\system32\DRIVERS\bridge.sys 19:40:02.0368 3880 Bridge - ok 19:40:02.0384 3880 [ E4E6A0922E3D983728C9AD4E8D466954 ] BridgeMP C:\WINDOWS\system32\DRIVERS\bridge.sys 19:40:02.0446 3880 BridgeMP - ok 19:40:02.0477 3880 [ 210830D2497FEF78694076179AF8C795 ] Browser C:\WINDOWS\System32\browser.dll 19:40:02.0634 3880 Browser - ok 19:40:02.0665 3880 [ A6BC71402F4F7DD5B77FD7F4A8DDBA85 ] BulkUsb C:\WINDOWS\system32\DRIVERS\usbscan.sys 19:40:02.0774 3880 BulkUsb - ok 19:40:02.0790 3880 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys 19:40:02.0899 3880 cbidf2k - ok 19:40:02.0899 3880 cd20xrnt - ok 19:40:02.0930 3880 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys 19:40:03.0040 3880 Cdaudio - ok 19:40:03.0055 3880 [ CD7D5152DF32B47F4E36F710B35AAE02 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys 19:40:03.0212 3880 Cdfs - ok 19:40:03.0243 3880 [ AF9C19B3100FE010496B1A27181FBF72 ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys 19:40:03.0352 3880 Cdrom - ok 19:40:03.0368 3880 Changer - ok 19:40:03.0384 3880 [ B4E0A9B9064AA79AE188C0D953543520 ] cisvc C:\WINDOWS\system32\cisvc.exe 19:40:03.0524 3880 cisvc - ok 19:40:03.0555 3880 [ 1B11121083C32EA9A55ABE547A23FF71 ] ClipSrv C:\WINDOWS\system32\clipsrv.exe 19:40:03.0680 3880 ClipSrv - ok 19:40:03.0743 3880 [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 19:40:03.0930 3880 clr_optimization_v2.0.50727_32 - ok 19:40:03.0946 3880 CmdIde - ok 19:40:03.0946 3880 COMSysApp - ok 19:40:03.0962 3880 Cpqarray - ok 19:40:03.0993 3880 [ 91723CD7C96C5854149F9CAE820A90DD ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll 19:40:04.0118 3880 CryptSvc - ok 19:40:04.0118 3880 dac2w2k - ok 19:40:04.0118 3880 dac960nt - ok 19:40:04.0259 3880 [ 346E5B19FC986FE7185A0C2C43593722 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll 19:40:04.0587 3880 DcomLaunch - ok 19:40:04.0618 3880 [ 6216FD7FD227DE454238A702B218CEC7 ] dgderdrv C:\WINDOWS\system32\drivers\dgderdrv.sys 19:40:04.0634 3880 dgderdrv - ok 19:40:04.0680 3880 [ 94B49F2D487A7D4A79B3E96B6D5685B0 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll 19:40:04.0821 3880 Dhcp - ok 19:40:04.0837 3880 [ 00CA44E4534865F8A3B64F7C0984BFF0 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys 19:40:04.0962 3880 Disk - ok 19:40:04.0962 3880 dmadmin - ok 19:40:05.0196 3880 [ 3B809FFAD55DCEBDB156D5CA1BD3DA65 ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys 19:40:05.0634 3880 dmboot - ok 19:40:05.0680 3880 [ 27725B6501201C3080BA73048BCE389A ] dmio C:\WINDOWS\system32\drivers\dmio.sys 19:40:05.0821 3880 dmio - ok 19:40:05.0837 3880 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys 19:40:05.0946 3880 dmload - ok 19:40:05.0993 3880 [ 4ADBB7593EC0115F7622C335B427C3DA ] dmserver C:\WINDOWS\System32\dmserver.dll 19:40:06.0102 3880 dmserver - ok 19:40:06.0134 3880 [ A6F881284AC1150E37D9AE47FF601267 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys 19:40:06.0227 3880 DMusic - ok 19:40:06.0259 3880 [ F61C204EBCAA1D6B5FB5DFE7034741F3 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll 19:40:06.0368 3880 Dnscache - ok 19:40:06.0368 3880 dpti2o - ok 19:40:06.0384 3880 [ 1ED4DBBAE9F5D558DBBA4CC450E3EB2E ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys 19:40:06.0493 3880 drmkaud - ok 19:40:06.0696 3880 [ 687AF6BB383885FF6A64071B189A7F3E ] dtsoftbus01 C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys 19:40:06.0774 3880 dtsoftbus01 - ok 19:40:06.0790 3880 [ EFD32591F9E29C00A5814DF3F6D46683 ] ERSvc C:\WINDOWS\System32\ersvc.dll 19:40:06.0915 3880 ERSvc - ok 19:40:06.0962 3880 [ 3DA8D964D2CC12EF8E8C342471A37917 ] Eventlog C:\WINDOWS\system32\services.exe 19:40:07.0087 3880 Eventlog - ok 19:40:07.0165 3880 [ DC54CC79E1FAEFA480A8117C9BF105E1 ] EventSystem C:\WINDOWS\System32\es.dll 19:40:07.0321 3880 EventSystem - ok 19:40:07.0446 3880 [ 7C3B92D523C03FC63C6D8641A43C530F ] EverestDriver C:\Program Files\Lavalys\EVEREST Ultimate Edition\kerneld.wnt 19:40:07.0477 3880 EverestDriver ( UnsignedFile.Multi.Generic ) - warning 19:40:07.0477 3880 EverestDriver - detected UnsignedFile.Multi.Generic (1) 19:40:07.0540 3880 [ 3117F595E9615E04F05A54FC15A03B20 ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys 19:40:07.0665 3880 Fastfat - ok 19:40:07.0727 3880 [ 7C8E934687C496EDC69FDBBD2C277E63 ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll 19:40:07.0884 3880 FastUserSwitchingCompatibility - ok 19:40:07.0884 3880 [ CED2E8396A8838E59D8FD529C680E02C ] Fdc C:\WINDOWS\system32\DRIVERS\fdc.sys 19:40:07.0993 3880 Fdc - ok 19:40:08.0024 3880 [ C5FB298257C0A6514EA17835E774EA0A ] Fips C:\WINDOWS\system32\drivers\Fips.sys 19:40:08.0180 3880 Fips - ok 19:40:08.0180 3880 [ 0DD1DE43115B93F4D85E889D7A86F548 ] Flpydisk C:\WINDOWS\system32\DRIVERS\flpydisk.sys 19:40:08.0290 3880 Flpydisk - ok 19:40:08.0337 3880 [ 157754F0DF355A9E0A6F54721914F9C6 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys 19:40:08.0462 3880 FltMgr - ok 19:40:08.0540 3880 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe 19:40:08.0555 3880 FontCache3.0.0.0 - ok 19:40:08.0571 3880 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys 19:40:08.0696 3880 Fs_Rec - ok 19:40:08.0759 3880 [ ED6D921D8AB423138FB35BEEE6D6A6CB ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys 19:40:08.0868 3880 Ftdisk - ok 19:40:08.0899 3880 [ 4B5FDDBCB9407741F47818B8D1EE4A8E ] ggflt C:\WINDOWS\system32\DRIVERS\ggflt.sys 19:40:08.0899 3880 ggflt - ok 19:40:08.0930 3880 [ 80BBCC9724B24A708CA9489C1E0A1E5F ] ggsemc C:\WINDOWS\system32\DRIVERS\ggsemc.sys 19:40:08.0930 3880 ggsemc - ok 19:40:08.0962 3880 [ C0F1D4A21DE5A415DF8170616703DEBF ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys 19:40:09.0071 3880 Gpc - ok 19:40:09.0180 3880 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe 19:40:09.0212 3880 gupdate - ok 19:40:09.0243 3880 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe 19:40:09.0259 3880 gupdatem - ok 19:40:09.0305 3880 [ 3FCC124B6E08EE0E9351F717DD136939 ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys 19:40:09.0352 3880 HDAudBus ( UnsignedFile.Multi.Generic ) - warning 19:40:09.0352 3880 HDAudBus - detected UnsignedFile.Multi.Generic (1) 19:40:09.0384 3880 [ E1552A082E8C0FBB70B758F170B3AFF8 ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll 19:40:09.0634 3880 helpsvc - ok 19:40:09.0696 3880 [ 7D00FEC9B6DE9776B3D0EAD70BD71968 ] HidServ C:\WINDOWS\System32\hidserv.dll 19:40:09.0805 3880 HidServ - ok 19:40:09.0821 3880 [ 1DE6783B918F540149AA69943BDFEBA8 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys 19:40:09.0915 3880 HidUsb - ok 19:40:09.0930 3880 hpn - ok 19:40:09.0930 3880 hpt3xx - ok 19:40:09.0977 3880 [ D03D10F7DED688FECF50F8FBF1EA9B8A ] HPZid412 C:\WINDOWS\system32\DRIVERS\HPZid412.sys 19:40:10.0009 3880 HPZid412 - ok 19:40:10.0009 3880 [ 89F41658929393487B6B7D13C8528CE3 ] HPZipr12 C:\WINDOWS\system32\DRIVERS\HPZipr12.sys 19:40:10.0055 3880 HPZipr12 - ok 19:40:10.0102 3880 [ ABCB05CCDBF03000354B9553820E39F8 ] HPZius12 C:\WINDOWS\system32\DRIVERS\HPZius12.sys 19:40:10.0134 3880 HPZius12 - ok 19:40:10.0493 3880 [ C19B522A9AE0BBC3293397F3055E80A1 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys 19:40:10.0696 3880 HTTP - ok 19:40:10.0712 3880 [ 2D303CAF3C6DCFB246E74550DBED5880 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll 19:40:10.0852 3880 HTTPFilter - ok 19:40:10.0852 3880 i2omgmt - ok 19:40:10.0868 3880 i2omp - ok 19:40:10.0884 3880 [ 2656FDFE0A7916C3A16F374454C55DD9 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys 19:40:10.0977 3880 i8042prt - ok 19:40:11.0259 3880 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe 19:40:11.0727 3880 idsvc - ok 19:40:11.0743 3880 [ F8AA320C6A0409C0380E5D8A99D76EC6 ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys 19:40:11.0868 3880 Imapi - ok 19:40:11.0915 3880 [ BC74431E59FB0BADF3E9162BD8D37B00 ] ImapiService C:\WINDOWS\system32\imapi.exe 19:40:12.0055 3880 ImapiService - ok 19:40:12.0055 3880 ini910u - ok 19:40:13.0899 3880 [ 810F3F5FDD5A255EAE8C324504F7EC5C ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RtkHDAud.sys 19:40:17.0727 3880 IntcAzAudAddService - ok 19:40:17.0743 3880 IntelIde - ok 19:40:17.0774 3880 [ 4448006B6BC60E6C027932CFC38D6855 ] ip6fw C:\WINDOWS\system32\drivers\ip6fw.sys 19:40:17.0899 3880 ip6fw - ok 19:40:17.0930 3880 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 19:40:18.0024 3880 IpFilterDriver - ok 19:40:18.0040 3880 [ E1EC7F5DA720B640CD8FB8424F1B14BB ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys 19:40:18.0149 3880 IpInIp - ok 19:40:18.0227 3880 [ B5A8E215AC29D24D60B4D1250EF05ACE ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys 19:40:18.0352 3880 IpNat - ok 19:40:18.0384 3880 [ 64537AA5C003A6AFEEE1DF819062D0D1 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys 19:40:18.0493 3880 IPSec - ok 19:40:18.0524 3880 [ 86C204836FEEC22510D434982D4221B8 ] irda C:\WINDOWS\system32\DRIVERS\irda.sys 19:40:18.0618 3880 irda - ok 19:40:18.0634 3880 [ 50708DAA1B1CBB7D6AC1CF8F56A24410 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys 19:40:18.0696 3880 IRENUM - ok 19:40:18.0727 3880 [ 8B96D185866CB5AB844875588A60B065 ] Irmon C:\WINDOWS\System32\irmon.dll 19:40:18.0774 3880 Irmon - ok 19:40:18.0790 3880 [ 0501F0B9AB08425F8C0EACBDCC04AA32 ] irsir C:\WINDOWS\system32\DRIVERS\irsir.sys 19:40:18.0852 3880 irsir - ok 19:40:18.0868 3880 [ 01A9E68528F4F34E5702123D27C67BD4 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys 19:40:18.0993 3880 isapnp - ok 19:40:19.0149 3880 [ 0A5709543986843D37A92290B7838340 ] JavaQuickStarterService C:\Program Files\Java\jre6\bin\jqs.exe 19:40:19.0196 3880 JavaQuickStarterService - ok 19:40:19.0227 3880 [ CC13DB862F929AE33F64C3BEDC01CD31 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys 19:40:19.0321 3880 Kbdclass - ok 19:40:19.0337 3880 [ 831BE9197BDACE6BDCAC1BFDBE1C380F ] kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys 19:40:19.0446 3880 kbdhid - ok 19:40:19.0493 3880 [ D93CAD07C5683DB066B0B2D2D3790EAD ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys 19:40:19.0665 3880 kmixer - ok 19:40:19.0790 3880 [ EB7FFE87FD367EA8FCA0506F74A87FBB ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys 19:40:19.0930 3880 KSecDD - ok 19:40:19.0977 3880 [ 83EC18EE52DBF7CCE9520F848F4E6584 ] lanmanserver C:\WINDOWS\System32\srvsvc.dll 19:40:20.0102 3880 lanmanserver - ok 19:40:20.0149 3880 [ FF68CD5B967CD210562C292CBD263555 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll 19:40:20.0274 3880 lanmanworkstation - ok 19:40:20.0290 3880 lbrtfdc - ok 19:40:20.0337 3880 [ 4127E8B6DDB4090E815C1F8852C277D3 ] lirsgt C:\WINDOWS\system32\DRIVERS\lirsgt.sys 19:40:20.0337 3880 lirsgt - ok 19:40:20.0352 3880 [ 94136B41F35666254DE29006DCCC30FC ] LmHosts C:\WINDOWS\System32\lmhsvc.dll 19:40:20.0462 3880 LmHosts - ok 19:40:20.0477 3880 [ 1D0EBF9EDAE8A61CBF56ED1FF8489FAC ] Messenger C:\WINDOWS\System32\msgsvc.dll 19:40:20.0618 3880 Messenger - ok 19:40:20.0712 3880 [ FAFE367D032ED82E9332B4C741A20216 ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe 19:40:20.0727 3880 Microsoft Office Groove Audit Service - ok 19:40:20.0759 3880 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys 19:40:20.0852 3880 mnmdd - ok 19:40:20.0884 3880 [ DB082AAFD0859E28744E6629B64E0A91 ] mnmsrvc C:\WINDOWS\System32\mnmsrvc.exe 19:40:20.0977 3880 mnmsrvc - ok 19:40:21.0009 3880 [ 15F33D12D604D0198CE5561F102CD9C5 ] Modem C:\WINDOWS\system32\drivers\Modem.sys 19:40:21.0102 3880 Modem - ok 19:40:21.0462 3880 [ C7D9F9717916B34C1B00DD4834AF485C ] Monfilt C:\WINDOWS\system32\drivers\Monfilt.sys 19:40:22.0196 3880 Monfilt - ok 19:40:22.0212 3880 [ 69C12B99AE8B6B99EC314E9B99833728 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys 19:40:22.0321 3880 Mouclass - ok 19:40:22.0337 3880 [ ECEC1E6CD558AB80F944F31326E9D3B5 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys 19:40:22.0430 3880 mouhid - ok 19:40:22.0462 3880 [ 65653F3B4477F3C63E68A9659F85EE2E ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys 19:40:22.0602 3880 MountMgr - ok 19:40:22.0602 3880 mraid35x - ok 19:40:22.0649 3880 [ 46EDCC8F2DB2F322C24F48785CB46366 ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys 19:40:22.0774 3880 MRxDAV - ok 19:40:22.0899 3880 [ 1FD607FC67F7F7C633C3DA65BFC53D18 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 19:40:23.0165 3880 MRxSmb - ok 19:40:23.0212 3880 [ FB68F196B215782333FA1467CBAFC8B0 ] MSDTC C:\WINDOWS\System32\msdtc.exe 19:40:23.0305 3880 MSDTC - ok 19:40:23.0321 3880 [ 561B3A4333CA2DBDBA28B5B956822519 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys 19:40:23.0415 3880 Msfs - ok 19:40:23.0415 3880 MSIServer - ok 19:40:23.0430 3880 [ AE431A8DD3C1D0D0610CDBAC16057AD0 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys 19:40:23.0540 3880 MSKSSRV - ok 19:40:23.0571 3880 [ 13E75FEF9DFEB08EEDED9D0246E1F448 ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys 19:40:23.0665 3880 MSPCLOCK - ok 19:40:23.0680 3880 [ 1988A33FF19242576C3D0EF9CE785DA7 ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys 19:40:23.0774 3880 MSPQM - ok 19:40:23.0790 3880 [ 469541F8BFD2B32659D5D463A6714BCE ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys 19:40:23.0884 3880 mssmbios - ok 19:40:23.0930 3880 [ 82035E0F41C2DD05AE41D27FE6CF7DE1 ] Mup C:\WINDOWS\system32\drivers\Mup.sys 19:40:24.0024 3880 Mup - ok 19:40:24.0087 3880 [ 558635D3AF1C7546D26067D5D9B6959E ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys 19:40:24.0212 3880 NDIS - ok 19:40:24.0243 3880 [ 08D43BBDACDF23F34D79E44ED35C1B4C ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys 19:40:24.0337 3880 NdisTapi - ok 19:40:24.0352 3880 [ 34D6CD56409DA9A7ED573E1C90A308BF ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys 19:40:24.0446 3880 Ndisuio - ok 19:40:24.0477 3880 [ 0B90E255A9490166AB368CD55A529893 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys 19:40:24.0634 3880 NdisWan - ok 19:40:24.0665 3880 [ 59FC3FB44D2669BC144FD87826BB571F ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys 19:40:24.0759 3880 NDProxy - ok 19:40:24.0774 3880 [ 3A2ACA8FC1D7786902CA434998D7CEB4 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys 19:40:24.0884 3880 NetBIOS - ok 19:40:24.0930 3880 [ 0C80E410CD2F47134407EE7DD19CC86B ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys 19:40:25.0040 3880 NetBT - ok 19:40:25.0102 3880 [ 8DE3841527161ABDFAE5C44AB570F8E1 ] NetDDE C:\WINDOWS\system32\netdde.exe 19:40:25.0227 3880 NetDDE - ok 19:40:25.0259 3880 [ 8DE3841527161ABDFAE5C44AB570F8E1 ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe 19:40:25.0368 3880 NetDDEdsdm - ok 19:40:25.0384 3880 [ F485FEFC8CC4FD29243D800BE5D275D1 ] Netlogon C:\WINDOWS\system32\lsass.exe 19:40:25.0493 3880 Netlogon - ok 19:40:25.0618 3880 [ 3E7B6583269BC118720D0020B03CC71E ] Netman C:\WINDOWS\System32\netman.dll 19:40:25.0774 3880 Netman - ok 19:40:25.0837 3880 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe 19:40:25.0884 3880 NetTcpPortSharing - ok 19:40:25.0962 3880 [ 83387067B25E000E64B178A62E5DCD24 ] Nla C:\WINDOWS\System32\mswsock.dll 19:40:26.0118 3880 Nla - ok 19:40:26.0149 3880 [ 60CF8C7192B3614F240838DDBAA4A245 ] nm C:\WINDOWS\system32\DRIVERS\NMnt.sys 19:40:26.0243 3880 nm - ok 19:40:26.0274 3880 [ 6623E51595C0076755C29C00846C4EB2 ] NPF C:\WINDOWS\system32\drivers\npf.sys 19:40:26.0290 3880 NPF - ok 19:40:26.0305 3880 [ 4F601BCB8F64EA3AC0994F98FED03F8E ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys 19:40:26.0399 3880 Npfs - ok 19:40:26.0665 3880 [ B78BE402C3F63DD55521F73876951CDD ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys 19:40:26.0977 3880 Ntfs - ok 19:40:26.0977 3880 [ F485FEFC8CC4FD29243D800BE5D275D1 ] NtLmSsp C:\WINDOWS\System32\lsass.exe 19:40:27.0071 3880 NtLmSsp - ok 19:40:27.0212 3880 [ C8CE1566B0537C3F5F7AE1CA458A6697 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll 19:40:27.0493 3880 NtmsSvc - ok 19:40:27.0509 3880 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys 19:40:27.0634 3880 Null - ok 19:40:29.0321 3880 [ 9F4384AA43548DDD438F7B7825D11699 ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys 19:40:32.0837 3880 nv - ok 19:40:32.0884 3880 [ B7FB72492B753930EC70A0F49D04F12F ] nvata C:\WINDOWS\system32\DRIVERS\nvata.sys 19:40:32.0899 3880 nvata - ok 19:40:32.0930 3880 [ CC34564BCA235EBAD8B308D871EFA2DF ] NVENETFD C:\WINDOWS\system32\DRIVERS\NVENETFD.sys 19:40:32.0962 3880 NVENETFD - ok 19:40:32.0993 3880 [ 46FDB8D07DD4FC81093B0ACB243A525D ] nvnetbus C:\WINDOWS\system32\DRIVERS\nvnetbus.sys 19:40:33.0009 3880 nvnetbus - ok 19:40:33.0071 3880 [ 0C41C4ACFE00D826DB479C40C1D9EDC8 ] NVSvc C:\WINDOWS\system32\nvsvc32.exe 19:40:33.0134 3880 NVSvc - ok 19:40:33.0165 3880 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys 19:40:33.0274 3880 NwlnkFlt - ok 19:40:33.0290 3880 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys 19:40:33.0399 3880 NwlnkFwd - ok 19:40:33.0587 3880 [ 84DE1DD996B48B05ACE31AD015FA108A ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE 19:40:33.0774 3880 odserv - ok 19:40:33.0837 3880 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE 19:40:33.0884 3880 ose - ok 19:40:33.0915 3880 [ 2FF48D8FDC815A8492FB2BD81E6999C2 ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys 19:40:34.0009 3880 Parport - ok 19:40:34.0040 3880 [ 3334430C29DC338092F79C38EF7B4CD0 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys 19:40:34.0134 3880 PartMgr - ok 19:40:34.0149 3880 [ 453EC2C2A20A1382F564541918520EEB ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys 19:40:34.0259 3880 ParVdm - ok 19:40:34.0290 3880 [ 5FD05C92EC56F696EAA50B68CEF1B84A ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys 19:40:34.0384 3880 PCI - ok 19:40:34.0384 3880 PCIDump - ok 19:40:34.0384 3880 [ 548CF2D6369EAE441A4C6BAA75BC4F0A ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys 19:40:34.0477 3880 PCIIde - ok 19:40:34.0524 3880 [ 2849812217ECEC059CB45F80EB6E52D4 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys 19:40:34.0634 3880 Pcmcia - ok 19:40:34.0634 3880 PDCOMP - ok 19:40:34.0634 3880 PDFRAME - ok 19:40:34.0649 3880 PDRELI - ok 19:40:34.0649 3880 PDRFRAME - ok 19:40:34.0649 3880 perc2 - ok 19:40:34.0665 3880 perc2hib - ok 19:40:34.0712 3880 [ 3DA8D964D2CC12EF8E8C342471A37917 ] PlugPlay C:\WINDOWS\system32\services.exe 19:40:34.0805 3880 PlugPlay - ok 19:40:34.0821 3880 [ F485FEFC8CC4FD29243D800BE5D275D1 ] PolicyAgent C:\WINDOWS\system32\lsass.exe 19:40:34.0915 3880 PolicyAgent - ok 19:40:34.0930 3880 [ 1C5CC65AAC0783C344F16353E60B72AC ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys 19:40:35.0024 3880 PptpMiniport - ok 19:40:35.0055 3880 [ 0914733FB2FC58F69CDA0E929BF2DF22 ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys 19:40:35.0149 3880 Processor - ok 19:40:35.0165 3880 [ F485FEFC8CC4FD29243D800BE5D275D1 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe 19:40:35.0259 3880 ProtectedStorage - ok 19:40:35.0274 3880 [ 48671F327553DCF1D27F6197F622A668 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys 19:40:35.0368 3880 PSched - ok 19:40:35.0384 3880 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys 19:40:35.0477 3880 Ptilink - ok 19:40:35.0493 3880 [ 153D02480A0A2F45785522E814C634B6 ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys 19:40:35.0509 3880 PxHelp20 - ok 19:40:35.0509 3880 ql1080 - ok 19:40:35.0524 3880 Ql10wnt - ok 19:40:35.0540 3880 ql12160 - ok 19:40:35.0555 3880 ql1240 - ok 19:40:35.0587 3880 ql1280 - ok 19:40:35.0618 3880 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys 19:40:35.0727 3880 RasAcd - ok 19:40:35.0774 3880 [ 5ED5AF86EE8CC13F6392B37A81AF5D5B ] RasAuto C:\WINDOWS\System32\rasauto.dll 19:40:35.0884 3880 RasAuto - ok 19:40:35.0899 3880 [ 0207D26DDF796A193CCD9F83047BB5FC ] Rasirda C:\WINDOWS\system32\DRIVERS\rasirda.sys 19:40:35.0946 3880 Rasirda - ok 19:40:35.0977 3880 [ 98FAEB4A4DCF812BA1C6FCA4AA3E115C ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys 19:40:36.0071 3880 Rasl2tp - ok 19:40:36.0134 3880 [ FF59EC9427760470DE7FFCA75738ECB8 ] RasMan C:\WINDOWS\System32\rasmans.dll 19:40:36.0274 3880 RasMan - ok 19:40:36.0290 3880 [ 7306EEED8895454CBED4669BE9F79FAA ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys 19:40:36.0384 3880 RasPppoe - ok 19:40:36.0399 3880 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys 19:40:36.0493 3880 Raspti - ok 19:40:36.0634 3880 [ 29D66245ADBA878FFF574CD66ABD2884 ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys 19:40:36.0743 3880 Rdbss - ok 19:40:36.0759 3880 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys 19:40:36.0852 3880 RDPCDD - ok 19:40:36.0930 3880 [ A2CAE2C60BC37E0751EF9DDA7CEAF4AD ] rdpdr C:\WINDOWS\system32\DRIVERS\rdpdr.sys 19:40:37.0040 3880 rdpdr - ok 19:40:37.0087 3880 [ D4F5643D7714EF499AE9527FDCD50894 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys 19:40:37.0196 3880 RDPWD - ok 19:40:37.0243 3880 [ EE93399BC7CD84624AB7890DD7D8B296 ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe 19:40:37.0384 3880 RDSessMgr - ok 19:40:37.0399 3880 [ BDDCECE9ACDAD26841C987D10376F6F7 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys 19:40:37.0477 3880 redbook - ok 19:40:37.0524 3880 [ 6A9CB0C18B634B187B8B5A32B0FC2773 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll 19:40:37.0696 3880 RemoteAccess - ok 19:40:37.0727 3880 [ A19BFED61736127DB5B8B815AFB35190 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll 19:40:37.0837 3880 RemoteRegistry - ok 19:40:37.0930 3880 [ 1D4061CC5BC8E823D05E1E6E6C1224E3 ] RichVideo C:\Program Files\CyberLink\Shared Files\RichVideo.exe 19:40:37.0977 3880 RichVideo - ok 19:40:38.0009 3880 [ D8B0B4ADE32574B2D9C5CC34DC0DBBE7 ] ROOTMODEM C:\WINDOWS\system32\Drivers\RootMdm.sys 19:40:38.0087 3880 ROOTMODEM - ok 19:40:38.0134 3880 [ E51A8D02B4BD33EBA1F7A5B76C3766ED ] rpcapd C:\Program Files\WinPcap\rpcapd.exe 19:40:38.0165 3880 rpcapd - ok 19:40:38.0196 3880 [ 6BE739F700580F23740EFA1D1B57C0A5 ] RpcLocator C:\WINDOWS\System32\locator.exe 19:40:38.0337 3880 RpcLocator - ok 19:40:38.0446 3880 [ 346E5B19FC986FE7185A0C2C43593722 ] RpcSs C:\WINDOWS\System32\rpcss.dll 19:40:38.0649 3880 RpcSs - ok 19:40:38.0712 3880 [ 9ACEE3313020A01235336C2A483AFD1A ] RSVP C:\WINDOWS\system32\rsvp.exe 19:40:38.0837 3880 RSVP - ok 19:40:38.0899 3880 [ CF84B1F0E8B14D4120AAF9CF35CBB265 ] RTL8023xp C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys 19:40:38.0962 3880 RTL8023xp - ok 19:40:38.0993 3880 [ 2EF9C0DC26B30B2318B1FC3FAA1F0AE7 ] rtl8139 C:\WINDOWS\system32\DRIVERS\R8139n51.SYS 19:40:39.0009 3880 rtl8139 - ok 19:40:39.0055 3880 [ 815445F4676CC96BC9AEEC303C727E19 ] s116bus C:\WINDOWS\system32\DRIVERS\s116bus.sys 19:40:39.0055 3880 s116bus - ok 19:40:39.0087 3880 [ 333D1E0743E6DE1779C3C418AC601C3A ] s116mdfl C:\WINDOWS\system32\DRIVERS\s116mdfl.sys 19:40:39.0087 3880 s116mdfl - ok 19:40:39.0149 3880 [ 50D6E5B021E9EC7553AB8A3553CC1B6B ] s116mdm C:\WINDOWS\system32\DRIVERS\s116mdm.sys 19:40:39.0165 3880 s116mdm - ok 19:40:39.0212 3880 [ 1589AA53E43F8D193A7D4D580D3FFA95 ] s116mgmt C:\WINDOWS\system32\DRIVERS\s116mgmt.sys 19:40:39.0227 3880 s116mgmt - ok 19:40:39.0243 3880 [ 306F85733671FE507470F0273025E768 ] s116nd5 C:\WINDOWS\system32\DRIVERS\s116nd5.sys 19:40:39.0259 3880 s116nd5 - ok 19:40:39.0290 3880 [ EC32601F04A5A5DE89315D0F55E73D66 ] s116obex C:\WINDOWS\system32\DRIVERS\s116obex.sys 19:40:39.0305 3880 s116obex - ok 19:40:39.0352 3880 [ 32E3ECB4B2B5887426EAF241A8149CDE ] s116unic C:\WINDOWS\system32\DRIVERS\s116unic.sys 19:40:39.0368 3880 s116unic - ok 19:40:39.0415 3880 [ AA786AD3A2684D39630744787B00E6F4 ] s3017bus C:\WINDOWS\system32\DRIVERS\s3017bus.sys 19:40:39.0430 3880 s3017bus - ok 19:40:39.0446 3880 [ CBA4CA5BCE44084E98CE420FD6692D3A ] s3017mdfl C:\WINDOWS\system32\DRIVERS\s3017mdfl.sys 19:40:39.0462 3880 s3017mdfl - ok 19:40:39.0493 3880 [ 68036EFF647970D6C0399789C8707CAD ] s3017mdm C:\WINDOWS\system32\DRIVERS\s3017mdm.sys 19:40:39.0509 3880 s3017mdm - ok 19:40:39.0571 3880 [ 3672E7F9349BD98FD3F5AC33E7B2B1A6 ] s3017mgmt C:\WINDOWS\system32\DRIVERS\s3017mgmt.sys 19:40:39.0602 3880 s3017mgmt - ok 19:40:39.0634 3880 [ B1133B37EB184AEF81D56B4302DBAE9C ] s3017nd5 C:\WINDOWS\system32\DRIVERS\s3017nd5.sys 19:40:39.0634 3880 s3017nd5 - ok 19:40:39.0680 3880 [ D81B1D504AA1426622E7EC09F25130A9 ] s3017obex C:\WINDOWS\system32\DRIVERS\s3017obex.sys 19:40:39.0696 3880 s3017obex - ok 19:40:39.0759 3880 [ 7B95C53EA8BB585013767EEF2875C0A0 ] s3017unic C:\WINDOWS\system32\DRIVERS\s3017unic.sys 19:40:39.0774 3880 s3017unic - ok 19:40:39.0837 3880 [ 8C156E6B568AA927EB5DEADEB870BDD2 ] s816bus C:\WINDOWS\system32\DRIVERS\s816bus.sys 19:40:39.0837 3880 s816bus - ok 19:40:39.0852 3880 [ D4ED429953A2B8B09C702805813A26C8 ] s816mdfl C:\WINDOWS\system32\DRIVERS\s816mdfl.sys 19:40:39.0868 3880 s816mdfl - ok 19:40:39.0899 3880 [ 94306F371A6FF8B690BEA81157111B3B ] s816mdm C:\WINDOWS\system32\DRIVERS\s816mdm.sys 19:40:39.0915 3880 s816mdm - ok 19:40:39.0946 3880 [ F485FEFC8CC4FD29243D800BE5D275D1 ] SamSs C:\WINDOWS\system32\lsass.exe 19:40:40.0024 3880 SamSs - ok 19:40:40.0071 3880 [ 8DF7262F72C3AB75486D21BA78B9F749 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe 19:40:40.0196 3880 SCardSvr - ok 19:40:40.0274 3880 [ E5F1C9EAD4C6617ACD40CA90882CC7D4 ] Schedule C:\WINDOWS\system32\schedsvc.dll 19:40:40.0415 3880 Schedule - ok 19:40:40.0430 3880 [ D26E26EA516450AF9D072635C60387F4 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys 19:40:40.0493 3880 Secdrv - ok 19:40:40.0509 3880 [ 60255AC385A08AAF4897AB4A42483500 ] seclogon C:\WINDOWS\System32\seclogon.dll 19:40:40.0727 3880 seclogon - ok 19:40:40.0759 3880 [ 1398DF553E701C7948188A7D4E347A18 ] SENS C:\WINDOWS\system32\sens.dll 19:40:40.0852 3880 SENS - ok 19:40:40.0884 3880 [ A2D868AEEFF612E70E213C451A70CAFB ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys 19:40:40.0977 3880 serenum - ok 19:40:41.0009 3880 [ 859BC6F8C3D58CFDA9181E9926C7DDB9 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys 19:40:41.0102 3880 Serial - ok 19:40:41.0149 3880 [ 0D13B6DF6E9E101013A7AFB0CE629FE0 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys 19:40:41.0227 3880 Sfloppy - ok 19:40:41.0337 3880 [ DDC87ADF808D192A5212CC8A1E7F8E87 ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll 19:40:41.0618 3880 SharedAccess - ok 19:40:41.0665 3880 [ 7C8E934687C496EDC69FDBBD2C277E63 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll 19:40:41.0759 3880 ShellHWDetection - ok 19:40:41.0774 3880 Simbad - ok 19:40:41.0774 3880 Sparrow - ok 19:40:41.0790 3880 [ 8E186B8F23295D1E42C573B82B80D548 ] splitter C:\WINDOWS\system32\drivers\splitter.sys 19:40:41.0868 3880 splitter - ok 19:40:41.0915 3880 [ BEBE8A85954FF460374FD5A0CD21E19B ] Spooler C:\WINDOWS\system32\spoolsv.exe 19:40:42.0024 3880 Spooler - ok 19:40:42.0024 3880 sptd - ok 19:40:42.0055 3880 [ 6145CA23BCCDA679A772EC0AF42D6EB5 ] sr C:\WINDOWS\system32\DRIVERS\sr.sys 19:40:42.0102 3880 sr - ok 19:40:42.0180 3880 [ F309D9894FCA821E3C2F557A8032D47A ] srservice C:\WINDOWS\system32\srsvc.dll 19:40:42.0274 3880 srservice - ok 19:40:42.0384 3880 [ 20B7E396720353E4117D64D9DCB926CA ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys 19:40:42.0649 3880 Srv - ok 19:40:42.0696 3880 [ BB754C4BE0B18F0FAF01A7EBDE7025C4 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll 19:40:42.0790 3880 SSDPSRV - ok 19:40:42.0884 3880 [ C6718154A50FE6C55E382CDBDEDCE7A7 ] stisvc C:\WINDOWS\system32\wiaservc.dll 19:40:43.0134 3880 stisvc - ok 19:40:43.0149 3880 [ 03C1BAE4766E2450219D20B993D6E046 ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys 19:40:43.0259 3880 swenum - ok 19:40:43.0290 3880 [ 94ABC808FC4B6D7D2BBF42B85E25BB4D ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys 19:40:43.0384 3880 swmidi - ok 19:40:43.0384 3880 SwPrv - ok 19:40:43.0399 3880 symc810 - ok 19:40:43.0399 3880 symc8xx - ok 19:40:43.0415 3880 sym_hi - ok 19:40:43.0415 3880 sym_u3 - ok 19:40:43.0446 3880 [ 650AD082D46BAC0E64C9C0E0928492FD ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys 19:40:43.0571 3880 sysaudio - ok 19:40:43.0618 3880 [ 5893B3B5B966233CAE426B2FEDC34DDF ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe 19:40:43.0727 3880 SysmonLog - ok 19:40:43.0790 3880 [ 0A695B77564D8E9333E846B526F95AB2 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll 19:40:43.0946 3880 TapiSrv - ok 19:40:43.0977 3880 [ 04E1C782CF14B7282EBC633B0FD3ED16 ] TBPanel C:\WINDOWS\system32\drivers\TBPanel.sys 19:40:43.0977 3880 TBPanel - ok 19:40:44.0102 3880 [ 9F4B36614A0FC234525BA224957DE55C ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys 19:40:44.0352 3880 Tcpip - ok 19:40:44.0368 3880 [ 38D437CF2D98965F239B0ABCD66DCB0F ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys 19:40:44.0462 3880 TDPIPE - ok 19:40:44.0477 3880 [ ED0580AF02502D00AD8C4C066B156BE9 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys 19:40:44.0618 3880 TDTCP - ok 19:40:44.0649 3880 [ A540A99C281D933F3D69D55E48727F47 ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys 19:40:44.0727 3880 TermDD - ok 19:40:44.0805 3880 [ 2C28157229925280916B3041CCC5FE4B ] TermService C:\WINDOWS\System32\termsrv.dll 19:40:44.0977 3880 TermService - ok 19:40:45.0024 3880 [ 7C8E934687C496EDC69FDBBD2C277E63 ] Themes C:\WINDOWS\System32\shsvcs.dll 19:40:45.0118 3880 Themes - ok 19:40:45.0149 3880 [ CAC717418CCDF09110F406108017BFA6 ] TlntSvr C:\WINDOWS\System32\tlntsvr.exe 19:40:45.0227 3880 TlntSvr - ok 19:40:45.0227 3880 TosIde - ok 19:40:45.0259 3880 [ FACBC230AA93401D2FE88976E7CB7369 ] TrkWks C:\WINDOWS\system32\trkwks.dll 19:40:45.0368 3880 TrkWks - ok 19:40:45.0399 3880 [ 12F70256F140CD7D52C58C7048FDE657 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys 19:40:45.0493 3880 Udfs - ok 19:40:45.0509 3880 ultra - ok 19:40:45.0618 3880 [ AFF2E5045961BBC0A602BB6F95EB1345 ] Update C:\WINDOWS\system32\DRIVERS\update.sys 19:40:45.0743 3880 Update - ok 19:40:45.0821 3880 [ 387D2A06C8E7CCCEA8E9A350C8FE6781 ] upnphost C:\WINDOWS\System32\upnphost.dll 19:40:45.0915 3880 upnphost - ok 19:40:45.0946 3880 [ 576A2C38CF3904F2CA1107F922288435 ] UPS C:\WINDOWS\System32\ups.exe 19:40:46.0055 3880 UPS - ok 19:40:46.0071 3880 [ BFFD9F120CC63BCBAA3D840F3EEF9F79 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys 19:40:46.0180 3880 usbccgp - ok 19:40:46.0212 3880 [ 15E993BA2F6946B2BFBBFCD30398621E ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys 19:40:46.0290 3880 usbehci - ok 19:40:46.0337 3880 [ C72F40947F92CEA56A8FB532EDF025F1 ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys 19:40:46.0430 3880 usbhub - ok 19:40:46.0446 3880 [ BDFE799A8531BAD8A5A985821FE78760 ] usbohci C:\WINDOWS\system32\DRIVERS\usbohci.sys 19:40:46.0587 3880 usbohci - ok 19:40:46.0634 3880 [ A42369B7CD8886CD7C70F33DA6FCBCF5 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys 19:40:46.0712 3880 usbprint - ok 19:40:46.0743 3880 [ A6BC71402F4F7DD5B77FD7F4A8DDBA85 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys 19:40:46.0837 3880 usbscan - ok 19:40:46.0868 3880 [ 6CD7B22193718F1D17A47A1CD6D37E75 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS 19:40:46.0962 3880 USBSTOR - ok 19:40:46.0993 3880 [ 8A60EDD72B4EA5AEA8202DAF0E427925 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys 19:40:47.0087 3880 VgaSave - ok 19:40:47.0087 3880 ViaIde - ok 19:40:47.0118 3880 [ ECD173739B8EC10A814CC18653DF5A36 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys 19:40:47.0212 3880 VolSnap - ok 19:40:47.0290 3880 [ FEC1E19B91972105044960B23C442949 ] VSS C:\WINDOWS\System32\vssvc.exe 19:40:47.0430 3880 VSS - ok 19:40:47.0493 3880 [ 000A0D516A2E20441E77AEA44E46B19B ] W32Time C:\WINDOWS\system32\w32time.dll 19:40:47.0680 3880 W32Time - ok 19:40:47.0696 3880 [ 984EF0B9788ABF89974CFED4BFBAACBC ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys 19:40:47.0805 3880 Wanarp - ok 19:40:47.0821 3880 [ 46A247F6617526AFE38B6F12F5512120 ] wceusbsh C:\WINDOWS\system32\DRIVERS\wceusbsh.sys 19:40:47.0852 3880 wceusbsh - ok 19:40:48.0009 3880 [ FD47474BD21794508AF449D9D91AF6E6 ] Wdf01000 C:\WINDOWS\system32\DRIVERS\Wdf01000.sys 19:40:48.0227 3880 Wdf01000 - ok 19:40:48.0227 3880 WDICA - ok 19:40:48.0274 3880 [ 2797F33EBF50466020C430EE4F037933 ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys 19:40:48.0399 3880 wdmaud - ok 19:40:48.0446 3880 [ F796BEFE565C59A30A4C61B640557276 ] WebClient C:\WINDOWS\System32\webclnt.dll 19:40:48.0587 3880 WebClient - ok 19:40:48.0665 3880 [ 482435B2A2DE8E06C83C3B1EB3237C2C ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll 19:40:48.0774 3880 winmgmt - ok 19:40:49.0024 3880 [ C51B4A5C05A5475708E3C81C7765B71D ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll 19:40:49.0055 3880 WmdmPmSN - ok 19:40:49.0243 3880 [ 5822B8BAF16F7CAE6B56E839D65A8BFB ] Wmi C:\WINDOWS\System32\advapi32.dll 19:40:49.0665 3880 Wmi - ok 19:40:49.0727 3880 [ 45E43704611D7C2202A180FF87E63550 ] WmiApSrv C:\WINDOWS\System32\wbem\wmiapsrv.exe 19:40:49.0837 3880 WmiApSrv - ok 19:40:50.0118 3880 [ F74E3D9A7FA9556C3BBB14D4E5E63D3B ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe 19:40:50.0571 3880 WMPNetworkSvc - ok 19:40:50.0602 3880 [ CF4DEF1BF66F06964DC0D91844239104 ] WpdUsb C:\WINDOWS\system32\DRIVERS\wpdusb.sys 19:40:50.0634 3880 WpdUsb - ok 19:40:50.0665 3880 [ 6ABE6E225ADB5A751622A9CC3BC19CE8 ] WS2IFSL C:\WINDOWS\System32\drivers\ws2ifsl.sys 19:40:50.0743 3880 WS2IFSL - ok 19:40:50.0790 3880 [ 390D0951271908C46EECF89893876424 ] wscsvc C:\WINDOWS\system32\wscsvc.dll 19:40:50.0899 3880 wscsvc - ok 19:40:50.0930 3880 [ 40C600488FF127953AA2F1835E5FD433 ] wuauserv C:\WINDOWS\system32\wuauserv.dll 19:40:51.0024 3880 wuauserv - ok 19:40:51.0071 3880 [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys 19:40:51.0087 3880 WudfPf - ok 19:40:51.0118 3880 [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys 19:40:51.0149 3880 WudfRd - ok 19:40:51.0196 3880 [ 05231C04253C5BC30B26CBAAE680ED89 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll 19:40:51.0259 3880 WudfSvc - ok 19:40:51.0446 3880 [ 98A8014DBE72349F73462262CF493574 ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll 19:40:51.0915 3880 WZCSVC - ok 19:40:51.0977 3880 [ E3C9EF5BCC9EB171BD81051CD19BDED7 ] xmlprov C:\WINDOWS\System32\xmlprov.dll 19:40:52.0134 3880 xmlprov - ok 19:40:52.0180 3880 [ 8098180B3F6C430A4E60333BC036F936 ] {95808DC4-FA4A-4c74-92FE-5B863F82066B} C:\Program Files\CyberLink\PowerDVD\000.fcl 19:40:52.0180 3880 {95808DC4-FA4A-4c74-92FE-5B863F82066B} - ok 19:40:52.0196 3880 ================ Scan global =============================== 19:40:52.0243 3880 [ FF952713E6B51D49B68BBA9233FBAA81 ] C:\WINDOWS\system32\basesrv.dll 19:40:52.0321 3880 [ 143B9018051E3A3CFDE92A861F8080E9 ] C:\WINDOWS\system32\winsrv.dll 19:40:52.0462 3880 [ 143B9018051E3A3CFDE92A861F8080E9 ] C:\WINDOWS\system32\winsrv.dll 19:40:52.0509 3880 [ 3DA8D964D2CC12EF8E8C342471A37917 ] C:\WINDOWS\system32\services.exe 19:40:52.0524 3880 [Global] - ok 19:40:52.0524 3880 ================ Scan MBR ================================== 19:40:52.0540 3880 [ 32052574BF9F325AE309ABC7BFD04460 ] \Device\Harddisk0\DR0 19:40:53.0087 3880 \Device\Harddisk0\DR0 - ok 19:40:53.0102 3880 [ 5C616939100B85E558DA92B899A0FC36 ] \Device\Harddisk1\DR1 19:40:53.0165 3880 \Device\Harddisk1\DR1 - ok 19:40:53.0165 3880 [ 973E9BA32FDBB305C552ED3E1EBF0686 ] \Device\Harddisk2\DR6 19:40:53.0259 3880 \Device\Harddisk2\DR6 - ok 19:40:53.0259 3880 ================ Scan VBR ================================== 19:40:53.0259 3880 [ C1FF39874ADAFE511F7401E17AC68ADC ] \Device\Harddisk0\DR0\Partition1 19:40:53.0274 3880 \Device\Harddisk0\DR0\Partition1 - ok 19:40:53.0274 3880 [ 742646A7400AFD9607D76B740E764C81 ] \Device\Harddisk0\DR0\Partition2 19:40:53.0274 3880 \Device\Harddisk0\DR0\Partition2 - ok 19:40:53.0274 3880 [ 4AC8E70BD2348331F216F6490778CFD4 ] \Device\Harddisk1\DR1\Partition1 19:40:53.0290 3880 \Device\Harddisk1\DR1\Partition1 - ok 19:40:53.0305 3880 [ 5CE5F86136B90EEA386239C1DE30F29B ] \Device\Harddisk1\DR1\Partition2 19:40:53.0305 3880 \Device\Harddisk1\DR1\Partition2 - ok 19:40:53.0305 3880 [ 4482373A46D00091C4174FF330BB716B ] \Device\Harddisk2\DR6\Partition1 19:40:53.0305 3880 \Device\Harddisk2\DR6\Partition1 - ok 19:40:53.0305 3880 ============================================================ 19:40:53.0305 3880 Scan finished 19:40:53.0305 3880 ============================================================ 19:40:53.0430 0188 Detected object count: 2 19:40:53.0430 0188 Actual detected object count: 2 19:40:56.0555 0188 EverestDriver ( UnsignedFile.Multi.Generic ) - skipped by user 19:40:56.0555 0188 EverestDriver ( UnsignedFile.Multi.Generic ) - User select action: Skip 19:40:56.0555 0188 HDAudBus ( UnsignedFile.Multi.Generic ) - skipped by user 19:40:56.0555 0188 HDAudBus ( UnsignedFile.Multi.Generic ) - User select action: Skip 19:40:59.0993 3648 Deinitialize success