10:40:11.0952 2660 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35 10:40:12.0130 2660 ============================================================ 10:40:12.0130 2660 Current date / time: 2013/02/01 10:40:12.0130 10:40:12.0130 2660 SystemInfo: 10:40:12.0130 2660 10:40:12.0130 2660 OS Version: 6.1.7600 ServicePack: 0.0 10:40:12.0130 2660 Product type: Workstation 10:40:12.0130 2660 ComputerName: USER-PC 10:40:12.0131 2660 UserName: User 10:40:12.0131 2660 Windows directory: C:\Windows 10:40:12.0131 2660 System windows directory: C:\Windows 10:40:12.0131 2660 Processor architecture: Intel x86 10:40:12.0131 2660 Number of processors: 2 10:40:12.0131 2660 Page size: 0x1000 10:40:12.0131 2660 Boot type: Normal boot 10:40:12.0131 2660 ============================================================ 10:40:13.0409 2660 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050 10:40:13.0411 2660 Drive \Device\Harddisk1\DR1 - Size: 0xE8E0DB5E00 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W' 10:40:13.0421 2660 Drive \Device\Harddisk2\DR2 - Size: 0xEF300000 (3.74 Gb), SectorSize: 0x200, Cylinders: 0x1E7, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W' 10:40:13.0432 2660 Drive \Device\Harddisk3\DR3 - Size: 0x39CAB0000 (14.45 Gb), SectorSize: 0x200, Cylinders: 0x75E, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W' 10:40:13.0434 2660 ============================================================ 10:40:13.0434 2660 \Device\Harddisk0\DR0: 10:40:13.0434 2660 MBR partitions: 10:40:13.0434 2660 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000 10:40:13.0434 2660 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x3A353000 10:40:13.0434 2660 \Device\Harddisk1\DR1: 10:40:13.0435 2660 MBR partitions: 10:40:13.0435 2660 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x74705800 10:40:13.0435 2660 \Device\Harddisk2\DR2: 10:40:13.0435 2660 MBR partitions: 10:40:13.0435 2660 \Device\Harddisk2\DR2\Partition1: MBR, Type 0xB, StartLBA 0x20, BlocksNum 0x7797E0 10:40:13.0435 2660 \Device\Harddisk3\DR3: 10:40:13.0436 2660 MBR partitions: 10:40:13.0436 2660 \Device\Harddisk3\DR3\Partition1: MBR, Type 0xC, StartLBA 0x1F80, BlocksNum 0x1CE3600 10:40:13.0436 2660 ============================================================ 10:40:13.0484 2660 C: <-> \Device\Harddisk0\DR0\Partition2 10:40:13.0864 2660 E: <-> \Device\Harddisk1\DR1\Partition1 10:40:13.0873 2660 ============================================================ 10:40:13.0873 2660 Initialize success 10:40:13.0873 2660 ============================================================ 10:42:01.0666 8188 ============================================================ 10:42:01.0666 8188 Scan started 10:42:01.0666 8188 Mode: Manual; 10:42:01.0666 8188 ============================================================ 10:42:02.0287 8188 ================ Scan system memory ======================== 10:42:02.0287 8188 System memory - ok 10:42:02.0287 8188 ================ Scan services ============================= 10:42:02.0383 8188 [ 6D2ACA41739BFE8CB86EE8E85F29697D ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys 10:42:02.0386 8188 1394ohci - ok 10:42:02.0405 8188 [ F0E07D144C8685B8774BC32FC8DA4DF0 ] ACPI C:\Windows\system32\DRIVERS\ACPI.sys 10:42:02.0408 8188 ACPI - ok 10:42:02.0428 8188 [ 98D81CA942D19F7D9153B095162AC013 ] AcpiPmi C:\Windows\system32\DRIVERS\acpipmi.sys 10:42:02.0429 8188 AcpiPmi - ok 10:42:02.0498 8188 [ 3927397AC60D943DAF8808AFFED582B7 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe 10:42:02.0515 8188 AdobeARMservice - ok 10:42:02.0583 8188 [ 424877CB9D5517F980FF7BACA2EB379D ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe 10:42:02.0586 8188 AdobeFlashPlayerUpdateSvc - ok 10:42:02.0621 8188 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys 10:42:02.0628 8188 adp94xx - ok 10:42:02.0635 8188 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys 10:42:02.0638 8188 adpahci - ok 10:42:02.0653 8188 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys 10:42:02.0655 8188 adpu320 - ok 10:42:02.0688 8188 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 10:42:02.0689 8188 AeLookupSvc - ok 10:42:02.0721 8188 [ 0DB7A48388D54D154EBEC120461A0FCD ] AFD C:\Windows\system32\drivers\afd.sys 10:42:02.0725 8188 AFD - ok 10:42:02.0739 8188 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\DRIVERS\agp440.sys 10:42:02.0740 8188 agp440 - ok 10:42:02.0754 8188 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\DRIVERS\djsvs.sys 10:42:02.0756 8188 aic78xx - ok 10:42:02.0786 8188 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe 10:42:02.0787 8188 ALG - ok 10:42:02.0800 8188 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\DRIVERS\aliide.sys 10:42:02.0801 8188 aliide - ok 10:42:02.0806 8188 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\DRIVERS\amdagp.sys 10:42:02.0808 8188 amdagp - ok 10:42:02.0817 8188 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\DRIVERS\amdide.sys 10:42:02.0818 8188 amdide - ok 10:42:02.0826 8188 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys 10:42:02.0828 8188 AmdK8 - ok 10:42:02.0832 8188 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys 10:42:02.0834 8188 AmdPPM - ok 10:42:02.0863 8188 [ 19CE906B4CDC11FC4FEF5745F33A63B6 ] amdsata C:\Windows\system32\drivers\amdsata.sys 10:42:02.0864 8188 amdsata - ok 10:42:02.0880 8188 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys 10:42:02.0883 8188 amdsbs - ok 10:42:02.0892 8188 [ 869E67D66BE326A5A9159FBA8746FA70 ] amdxata C:\Windows\system32\drivers\amdxata.sys 10:42:02.0893 8188 amdxata - ok 10:42:02.0897 8188 [ FEB834C02CE1E84B6A38F953CA067706 ] AppID C:\Windows\system32\drivers\appid.sys 10:42:02.0898 8188 AppID - ok 10:42:02.0911 8188 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll 10:42:02.0912 8188 AppIDSvc - ok 10:42:02.0939 8188 [ 7DEAD9E3F65DCB2794F2711003BBF650 ] Appinfo C:\Windows\System32\appinfo.dll 10:42:02.0940 8188 Appinfo - ok 10:42:02.0950 8188 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\DRIVERS\arc.sys 10:42:02.0951 8188 arc - ok 10:42:02.0961 8188 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys 10:42:02.0963 8188 arcsas - ok 10:42:03.0070 8188 [ 776ACEFA0CA9DF0FAA51A5FB2F435705 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe 10:42:03.0078 8188 aspnet_state - ok 10:42:03.0095 8188 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 10:42:03.0096 8188 AsyncMac - ok 10:42:03.0104 8188 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\DRIVERS\atapi.sys 10:42:03.0104 8188 atapi - ok 10:42:03.0137 8188 [ 510C873BFA135AA829F4180352772734 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 10:42:03.0143 8188 AudioEndpointBuilder - ok 10:42:03.0150 8188 [ 510C873BFA135AA829F4180352772734 ] Audiosrv C:\Windows\System32\Audiosrv.dll 10:42:03.0153 8188 Audiosrv - ok 10:42:03.0311 8188 [ 4AFC14AFA58878FAA1D249E7E90EA54B ] AVGIDSAgent C:\Program Files\AVG\AVG2013\avgidsagent.exe 10:42:03.0395 8188 AVGIDSAgent - ok 10:42:03.0422 8188 [ 7BB2C605094DBCA536D127B434214862 ] AVGIDSDriver C:\Windows\system32\DRIVERS\avgidsdriverx.sys 10:42:03.0425 8188 AVGIDSDriver - ok 10:42:03.0451 8188 [ 8F50F98686C9A397A19FCBAE284DB1C5 ] AVGIDSHX C:\Windows\system32\DRIVERS\avgidshx.sys 10:42:03.0452 8188 AVGIDSHX - ok 10:42:03.0462 8188 [ A8DE230CC8536790CA07D37FBCD87A74 ] AVGIDSShim C:\Windows\system32\DRIVERS\avgidsshimx.sys 10:42:03.0463 8188 AVGIDSShim - ok 10:42:03.0484 8188 [ D53D35031365A0ECCB1DC1BC1B15B18E ] Avgldx86 C:\Windows\system32\DRIVERS\avgldx86.sys 10:42:03.0486 8188 Avgldx86 - ok 10:42:03.0515 8188 [ 95889A9D23F3133250FA8AD13C982D58 ] Avglogx C:\Windows\system32\DRIVERS\avglogx.sys 10:42:03.0517 8188 Avglogx - ok 10:42:03.0531 8188 [ AF7AA9BA434CD28833A66E90993E8DFD ] Avgmfx86 C:\Windows\system32\DRIVERS\avgmfx86.sys 10:42:03.0533 8188 Avgmfx86 - ok 10:42:03.0554 8188 [ F3D57358DE0B8B3491013C615754A7C7 ] Avgrkx86 C:\Windows\system32\DRIVERS\avgrkx86.sys 10:42:03.0556 8188 Avgrkx86 - ok 10:42:03.0561 8188 [ BA73B38E9033FC6018DB736B635706AE ] Avgtdix C:\Windows\system32\DRIVERS\avgtdix.sys 10:42:03.0563 8188 Avgtdix - ok 10:42:03.0589 8188 [ 6B72E1E329C4E98C6B6FDD2D265E3BA3 ] avgwd C:\Program Files\AVG\AVG2013\avgwdsvc.exe 10:42:03.0940 8188 avgwd - ok 10:42:03.0969 8188 [ DD6A431B43E34B91A767D1CE33728175 ] AxInstSV C:\Windows\System32\AxInstSV.dll 10:42:03.0971 8188 AxInstSV - ok 10:42:04.0006 8188 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys 10:42:04.0013 8188 b06bdrv - ok 10:42:04.0048 8188 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys 10:42:04.0052 8188 b57nd60x - ok 10:42:04.0074 8188 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll 10:42:04.0076 8188 BDESVC - ok 10:42:04.0093 8188 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys 10:42:04.0094 8188 Beep - ok 10:42:04.0110 8188 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys 10:42:04.0111 8188 blbdrive - ok 10:42:04.0136 8188 [ 9A5C671B7FBAE4865149BB11F59B91B2 ] bowser C:\Windows\system32\DRIVERS\bowser.sys 10:42:04.0138 8188 bowser - ok 10:42:04.0141 8188 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys 10:42:04.0143 8188 BrFiltLo - ok 10:42:04.0152 8188 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys 10:42:04.0153 8188 BrFiltUp - ok 10:42:04.0185 8188 [ A0E691DC6589D4D2CBE373171D1A49E5 ] Browser C:\Windows\System32\browser.dll 10:42:04.0186 8188 Browser - ok 10:42:04.0192 8188 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys 10:42:04.0196 8188 Brserid - ok 10:42:04.0210 8188 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 10:42:04.0211 8188 BrSerWdm - ok 10:42:04.0215 8188 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 10:42:04.0217 8188 BrUsbMdm - ok 10:42:04.0225 8188 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 10:42:04.0226 8188 BrUsbSer - ok 10:42:04.0239 8188 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys 10:42:04.0241 8188 BTHMODEM - ok 10:42:04.0286 8188 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll 10:42:04.0287 8188 bthserv - ok 10:42:04.0304 8188 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 10:42:04.0305 8188 cdfs - ok 10:42:04.0346 8188 [ CB232682501C081579A5FBB4DDD0ACCC ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys 10:42:04.0348 8188 Suspicious file (Forged): C:\Windows\system32\DRIVERS\cdrom.sys. Real md5: CB232682501C081579A5FBB4DDD0ACCC, Fake md5: BA6E70AA0E6091BC39DE29477D866A77 10:42:04.0348 8188 cdrom ( Virus.Win32.ZAccess.aml ) - infected 10:42:04.0349 8188 cdrom - detected Virus.Win32.ZAccess.aml (0) 10:42:04.0361 8188 [ 628A9E30EC5E18DD5DE6BE4DBDC12198 ] CertPropSvc C:\Windows\System32\certprop.dll 10:42:04.0363 8188 CertPropSvc - ok 10:42:04.0370 8188 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\DRIVERS\circlass.sys 10:42:04.0372 8188 circlass - ok 10:42:04.0384 8188 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys 10:42:04.0387 8188 CLFS - ok 10:42:04.0447 8188 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 10:42:04.0449 8188 clr_optimization_v2.0.50727_32 - ok 10:42:04.0480 8188 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 10:42:04.0493 8188 clr_optimization_v4.0.30319_32 - ok 10:42:04.0509 8188 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys 10:42:04.0510 8188 CmBatt - ok 10:42:04.0534 8188 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\DRIVERS\cmdide.sys 10:42:04.0536 8188 cmdide - ok 10:42:04.0567 8188 [ DB5E008B3744DD60C8498CBBF2A1CFA6 ] CNG C:\Windows\system32\Drivers\cng.sys 10:42:04.0573 8188 CNG - ok 10:42:04.0583 8188 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys 10:42:04.0585 8188 Compbatt - ok 10:42:04.0598 8188 [ F1724BA27E97D627F808FB0BA77A28A6 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys 10:42:04.0600 8188 CompositeBus - ok 10:42:04.0612 8188 COMSysApp - ok 10:42:04.0624 8188 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys 10:42:04.0625 8188 crcdisk - ok 10:42:04.0653 8188 [ F2FDE6C8DBAAD44CC58D1E07E4AF4EED ] CryptSvc C:\Windows\system32\cryptsvc.dll 10:42:04.0654 8188 CryptSvc - ok 10:42:04.0685 8188 [ B82CD39E336973359D7C9BF911E8E84F ] DcomLaunch C:\Windows\system32\rpcss.dll 10:42:04.0690 8188 DcomLaunch - ok 10:42:04.0716 8188 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll 10:42:04.0719 8188 defragsvc - ok 10:42:04.0744 8188 [ 83D1ECEA8FAAE75604C0FA49AC7AD996 ] DfsC C:\Windows\system32\Drivers\dfsc.sys 10:42:04.0746 8188 DfsC - ok 10:42:04.0761 8188 [ C56495FBD770712367CAD35E5DE72DA6 ] Dhcp C:\Windows\system32\dhcpcore.dll 10:42:04.0764 8188 Dhcp - ok 10:42:04.0772 8188 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys 10:42:04.0774 8188 discache - ok 10:42:04.0817 8188 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\DRIVERS\disk.sys 10:42:04.0818 8188 Disk - ok 10:42:04.0839 8188 [ B15BE77A2BACF9C3177D27518AFE26A9 ] Dnscache C:\Windows\System32\dnsrslvr.dll 10:42:04.0840 8188 Dnscache - ok 10:42:04.0856 8188 [ 4408C85C21EEA48EB0CE486BAEEF0502 ] dot3svc C:\Windows\System32\dot3svc.dll 10:42:04.0859 8188 dot3svc - ok 10:42:04.0873 8188 [ 7FA81C6E11CAA594ADB52084DA73A1E5 ] DPS C:\Windows\system32\dps.dll 10:42:04.0875 8188 DPS - ok 10:42:04.0922 8188 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 10:42:04.0923 8188 drmkaud - ok 10:42:04.0961 8188 [ 1679A4669326CB1A67CC95658D273234 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 10:42:04.0968 8188 DXGKrnl - ok 10:42:04.0992 8188 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll 10:42:04.0994 8188 EapHost - ok 10:42:05.0084 8188 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\DRIVERS\evbdx.sys 10:42:05.0145 8188 ebdrv - ok 10:42:05.0172 8188 [ C2243FF9E9AAD0C30E8B1A0914DA15B6 ] EFS C:\Windows\System32\lsass.exe 10:42:05.0174 8188 EFS - ok 10:42:05.0223 8188 [ 1697C39978CD69F6FBC15302EDCECE1F ] ehRecvr C:\Windows\ehome\ehRecvr.exe 10:42:05.0229 8188 ehRecvr - ok 10:42:05.0258 8188 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe 10:42:05.0259 8188 ehSched - ok 10:42:05.0286 8188 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys 10:42:05.0292 8188 elxstor - ok 10:42:05.0299 8188 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\DRIVERS\errdev.sys 10:42:05.0300 8188 ErrDev - ok 10:42:05.0359 8188 esgiguard - ok 10:42:05.0396 8188 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll 10:42:05.0399 8188 EventSystem - ok 10:42:05.0414 8188 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys 10:42:05.0416 8188 exfat - ok 10:42:05.0438 8188 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys 10:42:05.0440 8188 fastfat - ok 10:42:05.0471 8188 [ F7EA23CC5E6BF2181F3F399D54F6EFC1 ] Fax C:\Windows\system32\fxssvc.exe 10:42:05.0479 8188 Fax - ok 10:42:05.0512 8188 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys 10:42:05.0514 8188 fdc - ok 10:42:05.0530 8188 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll 10:42:05.0532 8188 fdPHost - ok 10:42:05.0545 8188 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll 10:42:05.0547 8188 FDResPub - ok 10:42:05.0559 8188 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 10:42:05.0561 8188 FileInfo - ok 10:42:05.0569 8188 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys 10:42:05.0571 8188 Filetrace - ok 10:42:05.0582 8188 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys 10:42:05.0583 8188 flpydisk - ok 10:42:05.0605 8188 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 10:42:05.0608 8188 FltMgr - ok 10:42:05.0640 8188 [ 151258FC2EC8C48BDF8A53350AE0A676 ] FontCache C:\Windows\system32\FntCache.dll 10:42:05.0648 8188 FontCache - ok 10:42:05.0711 8188 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe 10:42:05.0714 8188 FontCache3.0.0.0 - ok 10:42:05.0741 8188 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 10:42:05.0742 8188 FsDepends - ok 10:42:05.0767 8188 [ 500A9814FD9446A8126858A5A7F7D273 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 10:42:05.0768 8188 Fs_Rec - ok 10:42:05.0781 8188 [ DAFBD9FE39197495AED6D51F3B85B5D2 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 10:42:05.0784 8188 fvevol - ok 10:42:05.0799 8188 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys 10:42:05.0800 8188 gagp30kx - ok 10:42:05.0835 8188 [ 8BA3C04702BF8F927AB36AE8313CA4EE ] gpsvc C:\Windows\System32\gpsvc.dll 10:42:05.0840 8188 gpsvc - ok 10:42:05.0895 8188 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe 10:42:05.0897 8188 gupdate - ok 10:42:05.0901 8188 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe 10:42:05.0902 8188 gupdatem - ok 10:42:05.0918 8188 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 10:42:05.0920 8188 hcw85cir - ok 10:42:05.0958 8188 [ 3530CAD25DEBA7DC7DE8BB51632CBC5F ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 10:42:05.0961 8188 HdAudAddService - ok 10:42:05.0983 8188 [ 717A2207FD6F13AD3E664C7D5A43C7BF ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys 10:42:05.0985 8188 HDAudBus - ok 10:42:05.0989 8188 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys 10:42:05.0990 8188 HidBatt - ok 10:42:05.0995 8188 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys 10:42:05.0997 8188 HidBth - ok 10:42:06.0020 8188 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\DRIVERS\hidir.sys 10:42:06.0021 8188 HidIr - ok 10:42:06.0027 8188 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\system32\hidserv.dll 10:42:06.0029 8188 hidserv - ok 10:42:06.0055 8188 [ 25072FB35AC90B25F9E4E3BACF774102 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys 10:42:06.0056 8188 HidUsb - ok 10:42:06.0094 8188 [ 741C2A45CA8407E374AABA3E330B7872 ] hkmsvc C:\Windows\system32\kmsvc.dll 10:42:06.0096 8188 hkmsvc - ok 10:42:06.0122 8188 [ A768CA158BB06782A2835B907F4873C3 ] HomeGroupListener C:\Windows\system32\ListSvc.dll 10:42:06.0126 8188 HomeGroupListener - ok 10:42:06.0159 8188 [ FB08DEC5EF43D0C66D83B8E9694E7549 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 10:42:06.0163 8188 HomeGroupProvider - ok 10:42:06.0178 8188 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\DRIVERS\HpSAMD.sys 10:42:06.0179 8188 HpSAMD - ok 10:42:06.0199 8188 [ C531C7FD9E8B62021112787C4E2C5A5A ] HTTP C:\Windows\system32\drivers\HTTP.sys 10:42:06.0205 8188 HTTP - ok 10:42:06.0220 8188 [ 8305F33CDE89AD6C7A0763ED0B5A8D42 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 10:42:06.0221 8188 hwpolicy - ok 10:42:06.0234 8188 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys 10:42:06.0236 8188 i8042prt - ok 10:42:06.0274 8188 [ 71F1A494FEDF4B33C02C4A6A28D6D9E9 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 10:42:06.0278 8188 iaStorV - ok 10:42:06.0332 8188 [ 0DFFBA5AE3D2E1C076BD8E6F52C4FDFB ] IconMan_R C:\Program Files\Realtek\Realtek PCIE Card Reader\RIconMan.exe 10:42:06.0765 8188 IconMan_R - ok 10:42:06.0804 8188 [ 5AF815EB5BC9802E5A064E2BA62BFC0C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe 10:42:06.0813 8188 idsvc - ok 10:42:06.0988 8188 [ 38B33E6570D3D399C63CCCFB2F73C30F ] igfx C:\Windows\system32\DRIVERS\igdkmd32.sys 10:42:07.0159 8188 igfx - ok 10:42:07.0202 8188 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys 10:42:07.0206 8188 iirsp - ok 10:42:07.0230 8188 [ FAC0EE6562B121B1399D6E855583F7A5 ] IKEEXT C:\Windows\System32\ikeext.dll 10:42:07.0238 8188 IKEEXT - ok 10:42:07.0256 8188 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\DRIVERS\intelide.sys 10:42:07.0257 8188 intelide - ok 10:42:07.0265 8188 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys 10:42:07.0266 8188 intelppm - ok 10:42:07.0281 8188 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll 10:42:07.0283 8188 IPBusEnum - ok 10:42:07.0293 8188 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 10:42:07.0294 8188 IpFilterDriver - ok 10:42:07.0314 8188 [ E4454B6C37D7FFD5649611F6496308A7 ] IPMIDRV C:\Windows\system32\DRIVERS\IPMIDrv.sys 10:42:07.0316 8188 IPMIDRV - ok 10:42:07.0329 8188 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys 10:42:07.0331 8188 IPNAT - ok 10:42:07.0338 8188 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys 10:42:07.0339 8188 IRENUM - ok 10:42:07.0346 8188 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\DRIVERS\isapnp.sys 10:42:07.0348 8188 isapnp - ok 10:42:07.0359 8188 [ ED46C223AE46C6866AB77CDC41C404B7 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys 10:42:07.0362 8188 iScsiPrt - ok 10:42:07.0396 8188 [ 83A0305939E1D113A8D8BC2B2EA64774 ] itecir C:\Windows\system32\DRIVERS\itecir.sys 10:42:07.0397 8188 itecir - ok 10:42:07.0418 8188 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys 10:42:07.0420 8188 kbdclass - ok 10:42:07.0437 8188 [ 3D9F0EBF350EDCFD6498057301455964 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys 10:42:07.0438 8188 kbdhid - ok 10:42:07.0447 8188 [ C2243FF9E9AAD0C30E8B1A0914DA15B6 ] KeyIso C:\Windows\system32\lsass.exe 10:42:07.0448 8188 KeyIso - ok 10:42:07.0476 8188 [ 52FC17C8589F11747D01D3CF592673D0 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 10:42:07.0478 8188 KSecDD - ok 10:42:07.0508 8188 [ 3E5474B03568CFAB834DA3C38E8C9EFA ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 10:42:07.0511 8188 KSecPkg - ok 10:42:07.0535 8188 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll 10:42:07.0539 8188 KtmRm - ok 10:42:07.0567 8188 [ 8F6BF790D3168224C16F2AF68A84438C ] LanmanServer C:\Windows\system32\srvsvc.dll 10:42:07.0571 8188 LanmanServer - ok 10:42:07.0592 8188 [ B9891F885DCF1F0513A51CB58493CB1F ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 10:42:07.0595 8188 LanmanWorkstation - ok 10:42:07.0622 8188 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 10:42:07.0623 8188 lltdio - ok 10:42:07.0654 8188 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll 10:42:07.0657 8188 lltdsvc - ok 10:42:07.0671 8188 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll 10:42:07.0673 8188 lmhosts - ok 10:42:07.0722 8188 [ D75C4B4A8FE6D7FD74A7EECDBAEC729F ] LMS C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe 10:42:07.0727 8188 LMS - ok 10:42:07.0751 8188 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys 10:42:07.0753 8188 LSI_FC - ok 10:42:07.0764 8188 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys 10:42:07.0766 8188 LSI_SAS - ok 10:42:07.0779 8188 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys 10:42:07.0781 8188 LSI_SAS2 - ok 10:42:07.0790 8188 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys 10:42:07.0792 8188 LSI_SCSI - ok 10:42:07.0804 8188 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys 10:42:07.0806 8188 luafv - ok 10:42:07.0832 8188 [ E2B0887816ED336685954E3D8FDAA51D ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 10:42:07.0835 8188 Mcx2Svc - ok 10:42:07.0842 8188 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\DRIVERS\megasas.sys 10:42:07.0843 8188 megasas - ok 10:42:07.0853 8188 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys 10:42:07.0856 8188 MegaSR - ok 10:42:07.0890 8188 [ D86AC00883B9C98B570E7643AAF8E554 ] MEI C:\Windows\system32\DRIVERS\HECI.sys 10:42:07.0891 8188 MEI - ok 10:42:07.0905 8188 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll 10:42:07.0907 8188 MMCSS - ok 10:42:07.0918 8188 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys 10:42:07.0919 8188 Modem - ok 10:42:07.0936 8188 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys 10:42:07.0937 8188 monitor - ok 10:42:07.0953 8188 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys 10:42:07.0955 8188 mouclass - ok 10:42:07.0991 8188 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 10:42:07.0992 8188 mouhid - ok 10:42:08.0004 8188 [ 921C18727C5920D6C0300736646931C2 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 10:42:08.0006 8188 mountmgr - ok 10:42:08.0019 8188 [ 2AF5997438C55FB79D33D015C30E1974 ] mpio C:\Windows\system32\DRIVERS\mpio.sys 10:42:08.0022 8188 mpio - ok 10:42:08.0031 8188 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 10:42:08.0033 8188 mpsdrv - ok 10:42:08.0047 8188 [ B1BE47008D20E43DA3ADC37C24CDB89D ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 10:42:08.0049 8188 MRxDAV - ok 10:42:08.0073 8188 [ CA7570E42522E24324A12161DB14EC02 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 10:42:08.0075 8188 mrxsmb - ok 10:42:08.0087 8188 [ F965C3AB2B2AE5C378F4562486E35051 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 10:42:08.0090 8188 mrxsmb10 - ok 10:42:08.0101 8188 [ 25C38264A3C72594DD21D355D70D7A5D ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 10:42:08.0103 8188 mrxsmb20 - ok 10:42:08.0117 8188 [ 4326D168944123F38DD3B2D9C37A0B12 ] msahci C:\Windows\system32\DRIVERS\msahci.sys 10:42:08.0118 8188 msahci - ok 10:42:08.0131 8188 [ 455029C7174A2DBB03DBA8A0D8BDDD9A ] msdsm C:\Windows\system32\DRIVERS\msdsm.sys 10:42:08.0133 8188 msdsm - ok 10:42:08.0149 8188 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe 10:42:08.0152 8188 MSDTC - ok 10:42:08.0160 8188 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys 10:42:08.0162 8188 Msfs - ok 10:42:08.0172 8188 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 10:42:08.0173 8188 mshidkmdf - ok 10:42:08.0185 8188 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\DRIVERS\msisadrv.sys 10:42:08.0188 8188 msisadrv - ok 10:42:08.0239 8188 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 10:42:08.0241 8188 MSiSCSI - ok 10:42:08.0246 8188 msiserver - ok 10:42:08.0263 8188 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 10:42:08.0265 8188 MSKSSRV - ok 10:42:08.0278 8188 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 10:42:08.0279 8188 MSPCLOCK - ok 10:42:08.0282 8188 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 10:42:08.0284 8188 MSPQM - ok 10:42:08.0297 8188 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 10:42:08.0299 8188 MsRPC - ok 10:42:08.0316 8188 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys 10:42:08.0317 8188 mssmbios - ok 10:42:08.0321 8188 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 10:42:08.0323 8188 MSTEE - ok 10:42:08.0335 8188 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys 10:42:08.0336 8188 MTConfig - ok 10:42:08.0346 8188 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys 10:42:08.0347 8188 Mup - ok 10:42:08.0369 8188 [ 80284F1985C70C86F0B5F86DA2DFE1DF ] napagent C:\Windows\system32\qagentRT.dll 10:42:08.0374 8188 napagent - ok 10:42:08.0407 8188 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 10:42:08.0410 8188 NativeWifiP - ok 10:42:08.0432 8188 [ 23759D175A0A9BAAF04D05047BC135A8 ] NDIS C:\Windows\system32\drivers\ndis.sys 10:42:08.0440 8188 NDIS - ok 10:42:08.0455 8188 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 10:42:08.0456 8188 NdisCap - ok 10:42:08.0471 8188 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 10:42:08.0472 8188 NdisTapi - ok 10:42:08.0479 8188 [ B30AE7F2B6D7E343B0DF32E6C08FCE75 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 10:42:08.0480 8188 Ndisuio - ok 10:42:08.0494 8188 [ 267C415EADCBE53C9CA873DEE39CF3A4 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 10:42:08.0496 8188 NdisWan - ok 10:42:08.0508 8188 [ AF7E7C63DCEF3F8772726F86039D6EB4 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 10:42:08.0509 8188 NDProxy - ok 10:42:08.0519 8188 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 10:42:08.0520 8188 NetBIOS - ok 10:42:08.0537 8188 [ DD52A733BF4CA5AF84562A5E2F963B91 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 10:42:08.0539 8188 NetBT - ok 10:42:08.0547 8188 [ C2243FF9E9AAD0C30E8B1A0914DA15B6 ] Netlogon C:\Windows\system32\lsass.exe 10:42:08.0548 8188 Netlogon - ok 10:42:08.0591 8188 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll 10:42:08.0595 8188 Netman - ok 10:42:08.0617 8188 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe 10:42:08.0627 8188 NetMsmqActivator - ok 10:42:08.0631 8188 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe 10:42:08.0632 8188 NetPipeActivator - ok 10:42:08.0640 8188 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll 10:42:08.0645 8188 netprofm - ok 10:42:08.0698 8188 [ 64A4938C95AAC95BCE15AAD0766A3FBA ] netr28 C:\Windows\system32\DRIVERS\netr28.sys 10:42:08.0724 8188 netr28 - ok 10:42:08.0729 8188 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe 10:42:08.0730 8188 NetTcpActivator - ok 10:42:08.0734 8188 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe 10:42:08.0736 8188 NetTcpPortSharing - ok 10:42:08.0777 8188 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys 10:42:08.0779 8188 nfrd960 - ok 10:42:08.0797 8188 [ 2226496E34BD40734946A054B1CD657F ] NlaSvc C:\Windows\System32\nlasvc.dll 10:42:08.0802 8188 NlaSvc - ok 10:42:08.0814 8188 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys 10:42:08.0815 8188 Npfs - ok 10:42:08.0822 8188 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll 10:42:08.0824 8188 nsi - ok 10:42:08.0834 8188 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 10:42:08.0835 8188 nsiproxy - ok 10:42:08.0877 8188 [ 5126C5402C730C2A953275D8497A4715 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 10:42:08.0903 8188 Ntfs - ok 10:42:08.0922 8188 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys 10:42:08.0923 8188 Null - ok 10:42:08.0939 8188 [ F1B0BED906F97E16F6D0C3629D2F21C6 ] nvraid C:\Windows\system32\drivers\nvraid.sys 10:42:08.0941 8188 nvraid - ok 10:42:08.0973 8188 [ 4520B63899E867F354EE012D34E11536 ] nvstor C:\Windows\system32\drivers\nvstor.sys 10:42:08.0975 8188 nvstor - ok 10:42:08.0984 8188 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\DRIVERS\nv_agp.sys 10:42:08.0986 8188 nv_agp - ok 10:42:09.0034 8188 [ 0F00FAE78EADE195D89BDD262FBBF1CF ] NWVoltron C:\Windows\system32\DRIVERS\NWVoltron.sys 10:42:09.0035 8188 NWVoltron - ok 10:42:09.0055 8188 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys 10:42:09.0056 8188 ohci1394 - ok 10:42:09.0100 8188 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE 10:42:09.0102 8188 ose - ok 10:42:09.0210 8188 [ 358A9CCA612C68EB2F07DDAD4CE1D8D7 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE 10:42:09.0315 8188 osppsvc - ok 10:42:09.0349 8188 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 10:42:09.0354 8188 p2pimsvc - ok 10:42:09.0367 8188 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll 10:42:09.0372 8188 p2psvc - ok 10:42:09.0394 8188 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys 10:42:09.0396 8188 Parport - ok 10:42:09.0425 8188 [ 66D3415C159741ADE7038A277EFFF99F ] partmgr C:\Windows\system32\drivers\partmgr.sys 10:42:09.0426 8188 partmgr - ok 10:42:09.0441 8188 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys 10:42:09.0442 8188 Parvdm - ok 10:42:09.0459 8188 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll 10:42:09.0462 8188 PcaSvc - ok 10:42:09.0474 8188 [ C858CB77C577780ECC456A892E7E7D0F ] pci C:\Windows\system32\DRIVERS\pci.sys 10:42:09.0476 8188 pci - ok 10:42:09.0485 8188 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\DRIVERS\pciide.sys 10:42:09.0486 8188 pciide - ok 10:42:09.0492 8188 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys 10:42:09.0494 8188 pcmcia - ok 10:42:09.0503 8188 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys 10:42:09.0504 8188 pcw - ok 10:42:09.0520 8188 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys 10:42:09.0526 8188 PEAUTH - ok 10:42:09.0561 8188 [ 9C1BFF7910C89A1D12E57343475840CB ] pla C:\Windows\system32\pla.dll 10:42:09.0587 8188 pla - ok 10:42:09.0628 8188 [ 71DEF5EC79774C798342D0EA16E41780 ] PlugPlay C:\Windows\system32\umpnpmgr.dll 10:42:09.0634 8188 PlugPlay - ok 10:42:09.0645 8188 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 10:42:09.0648 8188 PNRPAutoReg - ok 10:42:09.0666 8188 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 10:42:09.0671 8188 PNRPsvc - ok 10:42:09.0700 8188 [ 48E1B75C6DC0232FD92BAAE4BD344721 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 10:42:09.0705 8188 PolicyAgent - ok 10:42:09.0731 8188 [ DBFF83F709A91049621C1D35DD45C92C ] Power C:\Windows\system32\umpo.dll 10:42:09.0734 8188 Power - ok 10:42:09.0760 8188 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 10:42:09.0761 8188 PptpMiniport - ok 10:42:09.0772 8188 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\DRIVERS\processr.sys 10:42:09.0774 8188 Processor - ok 10:42:09.0803 8188 [ AEA3BDBDBA667AA6F678CB38907E4F5E ] ProfSvc C:\Windows\system32\profsvc.dll 10:42:09.0807 8188 ProfSvc - ok 10:42:09.0822 8188 [ C2243FF9E9AAD0C30E8B1A0914DA15B6 ] ProtectedStorage C:\Windows\system32\lsass.exe 10:42:09.0823 8188 ProtectedStorage - ok 10:42:09.0849 8188 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys 10:42:09.0851 8188 Psched - ok 10:42:09.0876 8188 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys 10:42:09.0901 8188 ql2300 - ok 10:42:09.0913 8188 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys 10:42:09.0915 8188 ql40xx - ok 10:42:09.0935 8188 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll 10:42:09.0940 8188 QWAVE - ok 10:42:09.0953 8188 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 10:42:09.0955 8188 QWAVEdrv - ok 10:42:09.0964 8188 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 10:42:09.0965 8188 RasAcd - ok 10:42:09.0981 8188 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 10:42:09.0983 8188 RasAgileVpn - ok 10:42:09.0994 8188 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll 10:42:09.0996 8188 RasAuto - ok 10:42:10.0008 8188 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 10:42:10.0010 8188 Rasl2tp - ok 10:42:10.0025 8188 [ 0CE66EC736B7FC526D78F7624C7D2A94 ] RasMan C:\Windows\System32\rasmans.dll 10:42:10.0029 8188 RasMan - ok 10:42:10.0040 8188 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 10:42:10.0041 8188 RasPppoe - ok 10:42:10.0059 8188 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 10:42:10.0060 8188 RasSstp - ok 10:42:10.0074 8188 [ 835D7E81BF517A3B72384BDCC85E1CE6 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 10:42:10.0078 8188 rdbss - ok 10:42:10.0092 8188 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys 10:42:10.0093 8188 rdpbus - ok 10:42:10.0109 8188 [ 1E016846895B15A99F9A176A05029075 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 10:42:10.0110 8188 RDPCDD - ok 10:42:10.0128 8188 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 10:42:10.0129 8188 RDPENCDD - ok 10:42:10.0135 8188 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 10:42:10.0136 8188 RDPREFMP - ok 10:42:10.0156 8188 [ C5B8D47A4688DE9D335204EA757C2240 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 10:42:10.0158 8188 RDPWD - ok 10:42:10.0172 8188 [ 4EA225BF1CF05E158853F30A99CA29A7 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 10:42:10.0174 8188 rdyboost - ok 10:42:10.0206 8188 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll 10:42:10.0208 8188 RemoteAccess - ok 10:42:10.0225 8188 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll 10:42:10.0227 8188 RemoteRegistry - ok 10:42:10.0248 8188 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 10:42:10.0251 8188 RpcEptMapper - ok 10:42:10.0266 8188 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe 10:42:10.0268 8188 RpcLocator - ok 10:42:10.0284 8188 [ B82CD39E336973359D7C9BF911E8E84F ] RpcSs C:\Windows\system32\rpcss.dll 10:42:10.0288 8188 RpcSs - ok 10:42:10.0330 8188 [ 18BC9A60A569D0E82D3955BA9D566BA8 ] RSPCIESTOR C:\Windows\system32\DRIVERS\RtsPStor.sys 10:42:10.0334 8188 RSPCIESTOR - ok 10:42:10.0364 8188 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 10:42:10.0365 8188 rspndr - ok 10:42:10.0386 8188 [ 3E7C3E75A40118E267DB10FE4CBCE0DA ] RTL8167 C:\Windows\system32\DRIVERS\Rt86win7.sys 10:42:10.0391 8188 RTL8167 - ok 10:42:10.0397 8188 [ C2243FF9E9AAD0C30E8B1A0914DA15B6 ] SamSs C:\Windows\system32\lsass.exe 10:42:10.0398 8188 SamSs - ok 10:42:10.0413 8188 [ 34EE0C44B724E3E4CE2EFF29126DE5B5 ] sbp2port C:\Windows\system32\DRIVERS\sbp2port.sys 10:42:10.0415 8188 sbp2port - ok 10:42:10.0446 8188 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll 10:42:10.0449 8188 SCardSvr - ok 10:42:10.0462 8188 [ A95C54B2AC3CC9C73FCDF9E51A1D6B51 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 10:42:10.0463 8188 scfilter - ok 10:42:10.0495 8188 [ DF1E5C82E4D09CF8105CC644980C4803 ] Schedule C:\Windows\system32\schedsvc.dll 10:42:10.0508 8188 Schedule - ok 10:42:10.0519 8188 [ 628A9E30EC5E18DD5DE6BE4DBDC12198 ] SCPolicySvc C:\Windows\System32\certprop.dll 10:42:10.0520 8188 SCPolicySvc - ok 10:42:10.0529 8188 [ 5FD90ABDBFAEE85986802622CBB03446 ] SDRSVC C:\Windows\System32\SDRSVC.dll 10:42:10.0532 8188 SDRSVC - ok 10:42:10.0664 8188 [ 206387AB881E93A1A6EB89966C8651F1 ] SDScannerService C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe 10:42:10.0712 8188 SDScannerService - ok 10:42:10.0753 8188 [ A529CFE32565C0B145578FFB2B32C9A5 ] SDUpdateService C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe 10:42:10.0794 8188 SDUpdateService - ok 10:42:10.0822 8188 [ CB63BDB77BB86549FC3303C2F11EDC18 ] SDWSCService C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe 10:42:10.0825 8188 SDWSCService - ok 10:42:10.0849 8188 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys 10:42:10.0851 8188 secdrv - ok 10:42:10.0870 8188 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll 10:42:10.0873 8188 seclogon - ok 10:42:10.0886 8188 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\System32\sens.dll 10:42:10.0888 8188 SENS - ok 10:42:10.0897 8188 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll 10:42:10.0900 8188 SensrSvc - ok 10:42:10.0907 8188 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys 10:42:10.0908 8188 Serenum - ok 10:42:10.0928 8188 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys 10:42:10.0930 8188 Serial - ok 10:42:10.0948 8188 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys 10:42:10.0949 8188 sermouse - ok 10:42:10.0962 8188 [ 8F55CE568C543D5ADF45C409D16718FC ] SessionEnv C:\Windows\system32\sessenv.dll 10:42:10.0964 8188 SessionEnv - ok 10:42:10.0971 8188 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\DRIVERS\sffdisk.sys 10:42:10.0972 8188 sffdisk - ok 10:42:10.0975 8188 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\DRIVERS\sffp_mmc.sys 10:42:10.0977 8188 sffp_mmc - ok 10:42:10.0980 8188 [ A0708BBD07D245C06FF9DE549CA47185 ] sffp_sd C:\Windows\system32\DRIVERS\sffp_sd.sys 10:42:10.0982 8188 sffp_sd - ok 10:42:10.0985 8188 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys 10:42:10.0988 8188 sfloppy - ok 10:42:11.0006 8188 [ CD2E48FA5B29EE2B3B5858056D246EF2 ] ShellHWDetection C:\Windows\System32\shsvcs.dll 10:42:11.0011 8188 ShellHWDetection - ok 10:42:11.0053 8188 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\DRIVERS\sisagp.sys 10:42:11.0054 8188 sisagp - ok 10:42:11.0063 8188 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys 10:42:11.0064 8188 SiSRaid2 - ok 10:42:11.0079 8188 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys 10:42:11.0080 8188 SiSRaid4 - ok 10:42:11.0108 8188 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys 10:42:11.0110 8188 Smb - ok 10:42:11.0135 8188 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe 10:42:11.0137 8188 SNMPTRAP - ok 10:42:11.0145 8188 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys 10:42:11.0146 8188 spldr - ok 10:42:11.0175 8188 [ E17323B0AA9FB3FF9945731D736EDA2F ] Spooler C:\Windows\System32\spoolsv.exe 10:42:11.0180 8188 Spooler - ok 10:42:11.0228 8188 [ 4C287F9069FEDBD791178876EE9DE536 ] sppsvc C:\Windows\system32\sppsvc.exe 10:42:11.0279 8188 sppsvc - ok 10:42:11.0290 8188 [ D8E3E19EEBDAB49DD4A8D3062EAD4EC7 ] sppuinotify C:\Windows\system32\sppuinotify.dll 10:42:11.0293 8188 sppuinotify - ok 10:42:11.0318 8188 [ C4A027B8C0BD3FC0699F41FA5E9E0C87 ] srv C:\Windows\system32\DRIVERS\srv.sys 10:42:11.0322 8188 srv - ok 10:42:11.0350 8188 [ 414BB592CAD8A79649D01F9D94318FB3 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 10:42:11.0354 8188 srv2 - ok 10:42:11.0381 8188 [ FF207D67700AA18242AAF985D3E7D8F4 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 10:42:11.0383 8188 srvnet - ok 10:42:11.0410 8188 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 10:42:11.0413 8188 SSDPSRV - ok 10:42:11.0423 8188 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll 10:42:11.0426 8188 SstpSvc - ok 10:42:11.0455 8188 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys 10:42:11.0456 8188 stexstor - ok 10:42:11.0496 8188 [ A22825E7BB7018E8AF3E229A5AF17221 ] StiSvc C:\Windows\System32\wiaservc.dll 10:42:11.0503 8188 StiSvc - ok 10:42:11.0515 8188 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\DRIVERS\swenum.sys 10:42:11.0516 8188 swenum - ok 10:42:11.0529 8188 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll 10:42:11.0534 8188 swprv - ok 10:42:11.0557 8188 [ 04105C8DA62353589C29BDAEB8D88BD8 ] SysMain C:\Windows\system32\sysmain.dll 10:42:11.0583 8188 SysMain - ok 10:42:11.0592 8188 [ FCFB6C552FBC0DA299799CBD50AD9FD4 ] TabletInputService C:\Windows\System32\TabSvc.dll 10:42:11.0595 8188 TabletInputService - ok 10:42:11.0605 8188 [ 2F46B0C70A4ADC8C90CF825DA3B4FEAF ] TapiSrv C:\Windows\System32\tapisrv.dll 10:42:11.0609 8188 TapiSrv - ok 10:42:11.0618 8188 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll 10:42:11.0621 8188 TBS - ok 10:42:11.0673 8188 [ 55E9965552741F3850CB22CBBA9671ED ] Tcpip C:\Windows\system32\drivers\tcpip.sys 10:42:11.0698 8188 Tcpip - ok 10:42:11.0725 8188 [ 55E9965552741F3850CB22CBBA9671ED ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 10:42:11.0732 8188 TCPIP6 - ok 10:42:11.0765 8188 [ E64444523ADD154F86567C469BC0B17F ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 10:42:11.0766 8188 tcpipreg - ok 10:42:11.0783 8188 [ 1875C1490D99E70E449E3AFAE9FCBADF ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 10:42:11.0785 8188 TDPIPE - ok 10:42:11.0814 8188 [ 7156308896D34EA75A582F9A09E50C17 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 10:42:11.0816 8188 TDTCP - ok 10:42:11.0838 8188 [ CB39E896A2A83702D1737BFD402B3542 ] tdx C:\Windows\system32\DRIVERS\tdx.sys 10:42:11.0840 8188 tdx - ok 10:42:11.0847 8188 [ C36F41EE20E6999DBF4B0425963268A5 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys 10:42:11.0849 8188 TermDD - ok 10:42:11.0874 8188 [ A01E50A04D7B1960B33E92B9080E6A94 ] TermService C:\Windows\System32\termsrv.dll 10:42:11.0881 8188 TermService - ok 10:42:11.0890 8188 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll 10:42:11.0893 8188 Themes - ok 10:42:11.0905 8188 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll 10:42:11.0906 8188 THREADORDER - ok 10:42:11.0938 8188 [ EE471B163B3877FC87D9A840CC3F92CA ] tihub3 C:\Windows\system32\DRIVERS\tihub3.sys 10:42:11.0940 8188 tihub3 - ok 10:42:11.0975 8188 [ D485220BB1DB7157F387601725CAD5A4 ] tixhci C:\Windows\system32\DRIVERS\tixhci.sys 10:42:11.0979 8188 tixhci - ok 10:42:11.0993 8188 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll 10:42:11.0995 8188 TrkWks - ok 10:42:12.0053 8188 [ 41A4C781D2286208D397D72099304133 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 10:42:12.0056 8188 TrustedInstaller - ok 10:42:12.0072 8188 [ 98AE6FA07D12CB4EC5CF4A9BFA5F4242 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 10:42:12.0073 8188 tssecsrv - ok 10:42:12.0125 8188 [ 3E461D890A97F9D4C168F5FDA36E1D00 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 10:42:12.0127 8188 tunnel - ok 10:42:12.0137 8188 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys 10:42:12.0138 8188 uagp35 - ok 10:42:12.0152 8188 [ 09CC3E16F8E5EE7168E01CF8FCBE061A ] udfs C:\Windows\system32\DRIVERS\udfs.sys 10:42:12.0155 8188 udfs - ok 10:42:12.0187 8188 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe 10:42:12.0190 8188 UI0Detect - ok 10:42:12.0218 8188 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\DRIVERS\uliagpkx.sys 10:42:12.0220 8188 uliagpkx - ok 10:42:12.0240 8188 [ 049B3A50B3D646BAEEEE9EEC9B0668DC ] umbus C:\Windows\system32\DRIVERS\umbus.sys 10:42:12.0241 8188 umbus - ok 10:42:12.0252 8188 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\DRIVERS\umpass.sys 10:42:12.0254 8188 UmPass - ok 10:42:12.0318 8188 [ 758C2CE427C343F780A205E28555C98D ] UNS C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe 10:42:12.0368 8188 UNS - ok 10:42:12.0395 8188 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll 10:42:12.0400 8188 upnphost - ok 10:42:12.0435 8188 [ C31AE588E403042632DC796CF09E30B0 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys 10:42:12.0436 8188 usbccgp - ok 10:42:12.0448 8188 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\DRIVERS\usbcir.sys 10:42:12.0449 8188 usbcir - ok 10:42:12.0466 8188 [ E4C436D914768CE965D5E659BA7EEBD8 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys 10:42:12.0467 8188 usbehci - ok 10:42:12.0484 8188 [ BDCD7156EC37448F08633FD899823620 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 10:42:12.0488 8188 usbhub - ok 10:42:12.0500 8188 [ EB2D819A639015253C871CDA09D91D58 ] usbohci C:\Windows\system32\drivers\usbohci.sys 10:42:12.0501 8188 usbohci - ok 10:42:12.0509 8188 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys 10:42:12.0510 8188 usbprint - ok 10:42:12.0541 8188 [ 576096CCBC07E7C4EA4F5E6686D6888F ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys 10:42:12.0542 8188 usbscan - ok 10:42:12.0550 8188 [ 1C4287739A93594E57E2A9E6A3ED7353 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 10:42:12.0552 8188 USBSTOR - ok 10:42:12.0566 8188 [ 22480BF4E5A09192E5E30BA4DDE79FA4 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys 10:42:12.0567 8188 usbuhci - ok 10:42:12.0614 8188 [ B5F6A992D996282B7FAE7048E50AF83A ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys 10:42:12.0616 8188 usbvideo - ok 10:42:12.0645 8188 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll 10:42:12.0648 8188 UxSms - ok 10:42:12.0655 8188 [ C2243FF9E9AAD0C30E8B1A0914DA15B6 ] VaultSvc C:\Windows\system32\lsass.exe 10:42:12.0657 8188 VaultSvc - ok 10:42:12.0684 8188 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\DRIVERS\vdrvroot.sys 10:42:12.0686 8188 vdrvroot - ok 10:42:12.0706 8188 [ 8C4E7C49D3641BC9E299E466A7F8867D ] vds C:\Windows\System32\vds.exe 10:42:12.0715 8188 vds - ok 10:42:12.0743 8188 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 10:42:12.0744 8188 vga - ok 10:42:12.0756 8188 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys 10:42:12.0757 8188 VgaSave - ok 10:42:12.0772 8188 [ 3BE6E1F3A4F1AFEC8CEE0D7883F93583 ] vhdmp C:\Windows\system32\DRIVERS\vhdmp.sys 10:42:12.0775 8188 vhdmp - ok 10:42:12.0800 8188 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\DRIVERS\viaagp.sys 10:42:12.0802 8188 viaagp - ok 10:42:12.0806 8188 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\DRIVERS\viac7.sys 10:42:12.0808 8188 ViaC7 - ok 10:42:12.0813 8188 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\DRIVERS\viaide.sys 10:42:12.0815 8188 viaide - ok 10:42:12.0822 8188 [ 384E5A2AA49934295171E499F86BA6F3 ] volmgr C:\Windows\system32\DRIVERS\volmgr.sys 10:42:12.0824 8188 volmgr - ok 10:42:12.0837 8188 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 10:42:12.0841 8188 volmgrx - ok 10:42:12.0884 8188 [ 59F06B4968E58BC83DFC56CA4517960E ] volsnap C:\Windows\system32\DRIVERS\volsnap.sys 10:42:12.0887 8188 volsnap - ok 10:42:12.0912 8188 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys 10:42:12.0916 8188 vsmraid - ok 10:42:12.0959 8188 [ 7EA2BCD94D9CFAF4C556F5CC94532A6C ] VSS C:\Windows\system32\vssvc.exe 10:42:12.0975 8188 VSS - ok 10:42:12.0988 8188 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys 10:42:12.0989 8188 vwifibus - ok 10:42:12.0995 8188 [ 7090D3436EEB4E7DA3373090A23448F7 ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys 10:42:12.0996 8188 vwififlt - ok 10:42:13.0012 8188 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll 10:42:13.0017 8188 W32Time - ok 10:42:13.0036 8188 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys 10:42:13.0038 8188 WacomPen - ok 10:42:13.0060 8188 [ 692A712062146E96D28BA0B7D75DE31B ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 10:42:13.0062 8188 WANARP - ok 10:42:13.0065 8188 [ 692A712062146E96D28BA0B7D75DE31B ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 10:42:13.0066 8188 Wanarpv6 - ok 10:42:13.0115 8188 [ 353A04C273EC58475D8633E75CCD5604 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe 10:42:13.0167 8188 WatAdminSvc - ok 10:42:13.0222 8188 [ 7790B77FE1E5EE47DCC66247095BB4C9 ] wbengine C:\Windows\system32\wbengine.exe 10:42:13.0247 8188 wbengine - ok 10:42:13.0256 8188 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 10:42:13.0260 8188 WbioSrvc - ok 10:42:13.0283 8188 [ 6D9B75275C3E3A5F51AEF81AFFADB2B6 ] wcncsvc C:\Windows\System32\wcncsvc.dll 10:42:13.0288 8188 wcncsvc - ok 10:42:13.0295 8188 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 10:42:13.0298 8188 WcsPlugInService - ok 10:42:13.0317 8188 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\DRIVERS\wd.sys 10:42:13.0318 8188 Wd - ok 10:42:13.0349 8188 [ A840213F1ACDCC175B4D1D5AAEAC0D7A ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 10:42:13.0355 8188 Wdf01000 - ok 10:42:13.0368 8188 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll 10:42:13.0371 8188 WdiServiceHost - ok 10:42:13.0374 8188 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll 10:42:13.0377 8188 WdiSystemHost - ok 10:42:13.0403 8188 [ BB5EC38F8D4600119B4720BC5D4211F1 ] WebClient C:\Windows\System32\webclnt.dll 10:42:13.0408 8188 WebClient - ok 10:42:13.0423 8188 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll 10:42:13.0426 8188 Wecsvc - ok 10:42:13.0433 8188 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll 10:42:13.0435 8188 wercplsupport - ok 10:42:13.0456 8188 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll 10:42:13.0458 8188 WerSvc - ok 10:42:13.0479 8188 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 10:42:13.0481 8188 WfpLwf - ok 10:42:13.0499 8188 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys 10:42:13.0501 8188 WIMMount - ok 10:42:13.0506 8188 WinHttpAutoProxySvc - ok 10:42:13.0564 8188 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 10:42:13.0567 8188 Winmgmt - ok 10:42:13.0593 8188 [ C4F5D3901D1B41D602DDC196E0B95B51 ] WinRM C:\Windows\system32\WsmSvc.dll 10:42:13.0618 8188 WinRM - ok 10:42:13.0642 8188 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll 10:42:13.0657 8188 Wlansvc - ok 10:42:13.0714 8188 [ 5E7C103F8475C4289847D15E129C20F7 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE 10:42:13.0761 8188 wlidsvc - ok 10:42:13.0788 8188 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys 10:42:13.0790 8188 WmiAcpi - ok 10:42:13.0822 8188 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 10:42:13.0844 8188 wmiApSrv - ok 10:42:13.0908 8188 [ 77FBD400984CF72BA0FC4B3489D65F74 ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe 10:42:13.0922 8188 WMPNetworkSvc - ok 10:42:13.0942 8188 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll 10:42:13.0944 8188 WPCSvc - ok 10:42:13.0957 8188 [ B7F658A2EBC07129538AD9AB35212637 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 10:42:13.0960 8188 WPDBusEnum - ok 10:42:13.0967 8188 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 10:42:13.0968 8188 ws2ifsl - ok 10:42:13.0972 8188 WSearch - ok 10:42:13.0998 8188 [ 06E6F32C8D0A3F66D956F57B43A2E070 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 10:42:14.0000 8188 WudfPf - ok 10:42:14.0028 8188 [ 867C301E8B790040AE9CF6486E8041DF ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 10:42:14.0031 8188 WUDFRd - ok 10:42:14.0065 8188 [ FE47B7BC8EA320C2D9B5E5BF6E303765 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 10:42:14.0068 8188 wudfsvc - ok 10:42:14.0079 8188 [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc C:\Windows\System32\wwansvc.dll 10:42:14.0084 8188 WwanSvc - ok 10:42:14.0092 8188 ================ Scan global =============================== 10:42:14.0124 8188 [ 9A595DF601070DA78C40481120DD2C06 ] C:\Windows\system32\basesrv.dll 10:42:14.0148 8188 [ A9E43C040F405DB689FC29534EF0389B ] C:\Windows\system32\winsrv.dll 10:42:14.0157 8188 [ A9E43C040F405DB689FC29534EF0389B ] C:\Windows\system32\winsrv.dll 10:42:14.0177 8188 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll 10:42:14.0204 8188 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe 10:42:14.0208 8188 [Global] - ok 10:42:14.0209 8188 ================ Scan MBR ================================== 10:42:14.0219 8188 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 10:42:14.0385 8188 \Device\Harddisk0\DR0 - ok 10:42:14.0388 8188 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk1\DR1 10:42:14.0391 8188 \Device\Harddisk1\DR1 - ok 10:42:14.0397 8188 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk2\DR2 10:42:14.0404 8188 \Device\Harddisk2\DR2 - ok 10:42:14.0408 8188 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk3\DR3 10:42:14.0414 8188 \Device\Harddisk3\DR3 - ok 10:42:14.0415 8188 ================ Scan VBR ================================== 10:42:14.0416 8188 [ 7A7B7443CC4596A9F449E833785ED71D ] \Device\Harddisk0\DR0\Partition1 10:42:14.0417 8188 \Device\Harddisk0\DR0\Partition1 - ok 10:42:14.0423 8188 [ A4C07B4FF0BBC8D68D33B2E2E166B61E ] \Device\Harddisk0\DR0\Partition2 10:42:14.0424 8188 \Device\Harddisk0\DR0\Partition2 - ok 10:42:14.0427 8188 [ 3319B37A10FDE511B9347D4F7B6A852C ] \Device\Harddisk1\DR1\Partition1 10:42:14.0428 8188 \Device\Harddisk1\DR1\Partition1 - ok 10:42:14.0432 8188 [ 933F0597C7F10734DECB9FB658B9DD0A ] \Device\Harddisk2\DR2\Partition1 10:42:14.0433 8188 \Device\Harddisk2\DR2\Partition1 - ok 10:42:14.0436 8188 [ 2002998EF6B62DC53E33E8DF99EA5B87 ] \Device\Harddisk3\DR3\Partition1 10:42:14.0438 8188 \Device\Harddisk3\DR3\Partition1 - ok 10:42:14.0438 8188 ============================================================ 10:42:14.0438 8188 Scan finished 10:42:14.0438 8188 ============================================================ 10:42:14.0447 5720 Detected object count: 1 10:42:14.0447 5720 Actual detected object count: 1 10:42:36.0007 5720 C:\Windows\system32\DRIVERS\cdrom.sys - copied to quarantine 10:42:36.0752 5720 C:\Windows\$NtUninstallKB38935$\1141103636\@ - copied to quarantine 10:42:36.0818 5720 C:\Windows\$NtUninstallKB38935$\1141103636\Desktop.ini - copied to quarantine 10:42:36.0829 5720 C:\Windows\$NtUninstallKB38935$\1141103636\L\00000004.@ - copied to quarantine 10:42:36.0830 5720 C:\Windows\$NtUninstallKB38935$\1141103636\L\201d3dde - copied to quarantine 10:42:36.0844 5720 C:\Windows\$NtUninstallKB38935$\1141103636\L\xadqgnnk - copied to quarantine 10:42:36.0853 5720 C:\Windows\$NtUninstallKB38935$\1141103636\U\00000004.@ - copied to quarantine 10:42:36.0868 5720 C:\Windows\$NtUninstallKB38935$\1141103636\U\00000008.@ - copied to quarantine 10:42:36.0869 5720 C:\Windows\$NtUninstallKB38935$\1141103636\U\000000cb.@ - copied to quarantine 10:42:36.0884 5720 C:\Windows\$NtUninstallKB38935$\1141103636\U\80000000.@ - copied to quarantine 10:42:36.0899 5720 C:\Windows\$NtUninstallKB38935$\1141103636\U\80000032.@ - copied to quarantine 10:42:37.0050 5720 Backup copy found, using it.. 10:42:37.0059 5720 C:\Windows\system32\DRIVERS\cdrom.sys - will be cured on reboot 10:42:37.0132 5720 C:\Windows\$NtUninstallKB38935$\1141103636\@ - will be deleted on reboot 10:42:37.0133 5720 C:\Windows\$NtUninstallKB38935$\1141103636\Desktop.ini - will be deleted on reboot 10:42:37.0134 5720 C:\Windows\$NtUninstallKB38935$\1141103636\U\00000004.@ - will be deleted on reboot 10:42:37.0135 5720 C:\Windows\$NtUninstallKB38935$\1141103636\U\00000008.@ - will be deleted on reboot 10:42:37.0135 5720 C:\Windows\$NtUninstallKB38935$\1141103636\U\000000cb.@ - will be deleted on reboot 10:42:37.0135 5720 C:\Windows\$NtUninstallKB38935$\1141103636\U\80000000.@ - will be deleted on reboot 10:42:37.0135 5720 C:\Windows\$NtUninstallKB38935$\1141103636\U\80000032.@ - will be deleted on reboot 10:42:37.0135 5720 C:\Windows\$NtUninstallKB38935$\2647852055 - will be deleted on reboot 10:42:37.0139 5720 cdrom ( Virus.Win32.ZAccess.aml ) - User select action: Cure 10:42:50.0443 6548 Deinitialize success