09:33:16.0678 6672 TDSS rootkit removing tool 2.8.18.0 Jun 10 2013 21:44:19 09:33:17.0075 6672 ============================================================ 09:33:17.0075 6672 Current date / time: 2013/06/28 09:33:17.0075 09:33:17.0075 6672 SystemInfo: 09:33:17.0076 6672 09:33:17.0076 6672 OS Version: 6.0.6002 ServicePack: 2.0 09:33:17.0076 6672 Product type: Workstation 09:33:17.0076 6672 ComputerName: MATT-PC 09:33:17.0076 6672 UserName: Matt 09:33:17.0076 6672 Windows directory: C:\Windows 09:33:17.0076 6672 System windows directory: C:\Windows 09:33:17.0077 6672 Processor architecture: Intel x86 09:33:17.0077 6672 Number of processors: 2 09:33:17.0077 6672 Page size: 0x1000 09:33:17.0077 6672 Boot type: Normal boot 09:33:17.0077 6672 ============================================================ 09:33:18.0196 6672 Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050 09:33:18.0520 6672 Drive \Device\Harddisk1\DR1 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050 09:33:18.0525 6672 ============================================================ 09:33:18.0525 6672 \Device\Harddisk0\DR0: 09:33:18.0530 6672 MBR partitions: 09:33:18.0530 6672 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x1C03D6CA 09:33:18.0530 6672 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1C03D709, BlocksNum 0x1186E78 09:33:18.0530 6672 \Device\Harddisk1\DR1: 09:33:18.0530 6672 MBR partitions: 09:33:18.0530 6672 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x1D1C4542 09:33:18.0530 6672 ============================================================ 09:33:18.0572 6672 C: <-> \Device\Harddisk0\DR0\Partition1 09:33:18.0604 6672 D: <-> \Device\Harddisk1\DR1\Partition1 09:33:18.0820 6672 E: <-> \Device\Harddisk0\DR0\Partition2 09:33:18.0821 6672 ============================================================ 09:33:18.0821 6672 Initialize success 09:33:18.0821 6672 ============================================================ 09:33:22.0268 4724 ============================================================ 09:33:22.0268 4724 Scan started 09:33:22.0268 4724 Mode: Manual; 09:33:22.0268 4724 ============================================================ 09:33:24.0797 4724 ================ Scan system memory ======================== 09:33:24.0798 4724 System memory - ok 09:33:24.0799 4724 ================ Scan services ============================= 09:33:25.0076 4724 [ 82B296AE1892FE3DBEE00C9CF92F8AC7 ] ACPI C:\Windows\system32\drivers\acpi.sys 09:33:25.0084 4724 ACPI - ok 09:33:25.0165 4724 [ 2EDC5BBAC6C651ECE337BDE8ED97C9FB ] adp94xx C:\Windows\system32\drivers\adp94xx.sys 09:33:25.0179 4724 adp94xx - ok 09:33:25.0228 4724 [ B84088CA3CDCA97DA44A984C6CE1CCAD ] adpahci C:\Windows\system32\drivers\adpahci.sys 09:33:25.0237 4724 adpahci - ok 09:33:25.0269 4724 [ 7880C67BCCC27C86FD05AA2AFB5EA469 ] adpu160m C:\Windows\system32\drivers\adpu160m.sys 09:33:25.0274 4724 adpu160m - ok 09:33:25.0329 4724 [ 9AE713F8E30EFC2ABCCD84904333DF4D ] adpu320 C:\Windows\system32\drivers\adpu320.sys 09:33:25.0335 4724 adpu320 - ok 09:33:25.0404 4724 [ 9D1FDA9E086BA64E3C93C9DE32461BCF ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 09:33:25.0406 4724 AeLookupSvc - ok 09:33:25.0478 4724 [ 3911B972B55FEA0478476B2E777B29FA ] AFD C:\Windows\system32\drivers\afd.sys 09:33:25.0485 4724 AFD - ok 09:33:25.0539 4724 [ EF23439CDD587F64C2C1B8825CEAD7D8 ] agp440 C:\Windows\system32\drivers\agp440.sys 09:33:25.0541 4724 agp440 - ok 09:33:25.0577 4724 [ AE1FDF7BF7BB6C6A70F67699D880592A ] aic78xx C:\Windows\system32\drivers\djsvs.sys 09:33:25.0617 4724 aic78xx - ok 09:33:25.0672 4724 [ A1545B731579895D8CC44FC0481C1192 ] ALG C:\Windows\System32\alg.exe 09:33:25.0677 4724 ALG - ok 09:33:25.0698 4724 [ 90395B64600EBB4552E26E178C94B2E4 ] aliide C:\Windows\system32\drivers\aliide.sys 09:33:25.0701 4724 aliide - ok 09:33:25.0732 4724 [ 2B13E304C9DFDFA5EB582F6A149FA2C7 ] amdagp C:\Windows\system32\drivers\amdagp.sys 09:33:25.0736 4724 amdagp - ok 09:33:25.0785 4724 [ 0577DF1D323FE75A739C787893D300EA ] amdide C:\Windows\system32\drivers\amdide.sys 09:33:25.0788 4724 amdide - ok 09:33:25.0840 4724 [ DC487885BCEF9F28EECE6FAC0E5DDFC5 ] AmdK7 C:\Windows\system32\drivers\amdk7.sys 09:33:25.0843 4724 AmdK7 - ok 09:33:25.0902 4724 [ 0CA0071DA4315B00FC1328CA86B425DA ] AmdK8 C:\Windows\system32\drivers\amdk8.sys 09:33:25.0904 4724 AmdK8 - ok 09:33:25.0953 4724 [ C6D704C7F0434DC791AAC37CAC4B6E14 ] Appinfo C:\Windows\System32\appinfo.dll 09:33:25.0955 4724 Appinfo - ok 09:33:25.0976 4724 [ 5F673180268BB1FDB69C99B6619FE379 ] arc C:\Windows\system32\drivers\arc.sys 09:33:25.0979 4724 arc - ok 09:33:26.0013 4724 [ 957F7540B5E7F602E44648C7DE5A1C05 ] arcsas C:\Windows\system32\drivers\arcsas.sys 09:33:26.0016 4724 arcsas - ok 09:33:26.0150 4724 [ 40C145F12FF461A0220303BDA134F598 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe 09:33:26.0153 4724 aspnet_state - ok 09:33:26.0204 4724 [ 53B202ABEE6455406254444303E87BE1 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 09:33:26.0207 4724 AsyncMac - ok 09:33:26.0281 4724 [ 1F05B78AB91C9075565A9D8A4B880BC4 ] atapi C:\Windows\system32\drivers\atapi.sys 09:33:26.0283 4724 atapi - ok 09:33:26.0430 4724 [ 4FEE29D288226C9252E49A3277F025C3 ] ATService C:\Program Files\Fingerprint Sensor\AtService.exe 09:33:26.0465 4724 ATService - ok 09:33:26.0544 4724 [ 53FF3096D5D9AE2A75C16703A9819965 ] ATSwpWDF C:\Windows\system32\Drivers\ATSwpWDF.sys 09:33:26.0558 4724 ATSwpWDF - ok 09:33:26.0631 4724 [ 68E2A1A0407A66CF50DA0300852424AB ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 09:33:26.0638 4724 AudioEndpointBuilder - ok 09:33:26.0648 4724 [ 68E2A1A0407A66CF50DA0300852424AB ] Audiosrv C:\Windows\System32\Audiosrv.dll 09:33:26.0652 4724 Audiosrv - ok 09:33:26.0733 4724 [ CF6A67C90951E3E763D2135DEDE44B85 ] BCM43XV C:\Windows\system32\DRIVERS\bcmwl6.sys 09:33:26.0744 4724 BCM43XV - ok 09:33:26.0805 4724 [ 67E506B75BD5326A3EC7B70BD014DFB6 ] Beep C:\Windows\system32\drivers\Beep.sys 09:33:26.0807 4724 Beep - ok 09:33:26.0814 4724 blbdrive - ok 09:33:26.0896 4724 [ 35F376253F687BDE63976CCB3F2108CA ] bowser C:\Windows\system32\DRIVERS\bowser.sys 09:33:26.0900 4724 bowser - ok 09:33:26.0933 4724 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\drivers\brfiltlo.sys 09:33:26.0935 4724 BrFiltLo - ok 09:33:26.0950 4724 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\drivers\brfiltup.sys 09:33:26.0952 4724 BrFiltUp - ok 09:33:27.0001 4724 [ A3629A0C4226F9E9C72FAAEEBC3AD33C ] Browser C:\Windows\System32\browser.dll 09:33:27.0004 4724 Browser - ok 09:33:27.0031 4724 [ B304E75CFF293029EDDF094246747113 ] Brserid C:\Windows\system32\drivers\brserid.sys 09:33:27.0034 4724 Brserid - ok 09:33:27.0051 4724 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\system32\drivers\brserwdm.sys 09:33:27.0054 4724 BrSerWdm - ok 09:33:27.0068 4724 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\system32\drivers\brusbmdm.sys 09:33:27.0079 4724 BrUsbMdm - ok 09:33:27.0090 4724 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\system32\drivers\brusbser.sys 09:33:27.0098 4724 BrUsbSer - ok 09:33:27.0162 4724 [ 6D39C954799B63BA866910234CF7D726 ] BthEnum C:\Windows\system32\DRIVERS\BthEnum.sys 09:33:27.0169 4724 BthEnum - ok 09:33:27.0401 4724 [ 9A966A8E86D1771911AE34A20D11BFF3 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys 09:33:27.0404 4724 BTHMODEM - ok 09:33:27.0498 4724 [ 5904EFA25F829BF84EA6FB045134A1D8 ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys 09:33:27.0508 4724 BthPan - ok 09:33:27.0582 4724 [ 611FF3F2F095C8D4A6D4CFD9DCC09793 ] BTHPORT C:\Windows\system32\Drivers\BTHport.sys 09:33:27.0595 4724 BTHPORT - ok 09:33:27.0646 4724 [ A4C8377FA4A994E07075107DBE2E3DCE ] BthServ C:\Windows\System32\bthserv.dll 09:33:27.0649 4724 BthServ - ok 09:33:27.0679 4724 [ D330803EAB2A15CAEC7F011F1D4CB30E ] BTHUSB C:\Windows\system32\Drivers\BTHUSB.sys 09:33:27.0681 4724 BTHUSB - ok 09:33:27.0737 4724 [ 99AEEA7CEFDFC6E4151A8F620D682088 ] btwaudio C:\Windows\system32\drivers\btwaudio.sys 09:33:27.0741 4724 btwaudio - ok 09:33:27.0773 4724 [ 195872E48A7FB01F8BC9B800F70F4054 ] btwavdt C:\Windows\system32\drivers\btwavdt.sys 09:33:27.0776 4724 btwavdt - ok 09:33:27.0793 4724 [ 0724E7D6C9B6A289EDDDA33FA8176E80 ] btwrchid C:\Windows\system32\DRIVERS\btwrchid.sys 09:33:27.0795 4724 btwrchid - ok 09:33:27.0840 4724 [ 7ADD03E75BEB9E6DD102C3081D29840A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 09:33:27.0842 4724 cdfs - ok 09:33:27.0902 4724 [ 6B4BFFB9BECD728097024276430DB314 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys 09:33:27.0905 4724 cdrom - ok 09:33:27.0976 4724 [ 312EC3E37A0A1F2006534913E37B4423 ] CertPropSvc C:\Windows\System32\certprop.dll 09:33:27.0979 4724 CertPropSvc - ok 09:33:28.0001 4724 [ DA8E0AFC7BAA226C538EF53AC2F90897 ] circlass C:\Windows\system32\drivers\circlass.sys 09:33:28.0003 4724 circlass - ok 09:33:28.0059 4724 [ D7659D3B5B92C31E84E53C1431F35132 ] CLFS C:\Windows\system32\CLFS.sys 09:33:28.0068 4724 CLFS - ok 09:33:28.0115 4724 [ 8EE772032E2FE80A924F3B8DD5082194 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 09:33:28.0119 4724 clr_optimization_v2.0.50727_32 - ok 09:33:28.0221 4724 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 09:33:28.0273 4724 clr_optimization_v4.0.30319_32 - ok 09:33:28.0343 4724 [ 99AFC3795B58CC478FBBBCDC658FCB56 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys 09:33:28.0345 4724 CmBatt - ok 09:33:28.0374 4724 [ 45201046C776FFDAF3FC8A0029C581C8 ] cmdide C:\Windows\system32\drivers\cmdide.sys 09:33:28.0376 4724 cmdide - ok 09:33:28.0467 4724 [ D8774ACE03B46C9B01A49818055F9AD4 ] Com4Qlb C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe 09:33:28.0476 4724 Com4Qlb - ok 09:33:28.0539 4724 [ 6AFEF0B60FA25DE07C0968983EE4F60A ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys 09:33:28.0541 4724 Compbatt - ok 09:33:28.0560 4724 COMSysApp - ok 09:33:28.0583 4724 [ 2A213AE086BBEC5E937553C7D9A2B22C ] crcdisk C:\Windows\system32\drivers\crcdisk.sys 09:33:28.0585 4724 crcdisk - ok 09:33:28.0597 4724 [ 22A7F883508176489F559EE745B5BF5D ] Crusoe C:\Windows\system32\drivers\crusoe.sys 09:33:28.0599 4724 Crusoe - ok 09:33:28.0665 4724 [ FB27772BEAF8E1D28CCD825C09DA939B ] CryptSvc C:\Windows\system32\cryptsvc.dll 09:33:28.0667 4724 CryptSvc - ok 09:33:28.0736 4724 [ 3B5B4D53FEC14F7476CA29A20CC31AC9 ] DcomLaunch C:\Windows\system32\rpcss.dll 09:33:28.0762 4724 DcomLaunch - ok 09:33:28.0829 4724 [ 7FEF5EC8900F4685BC02D78C724D3602 ] DfsC C:\Windows\system32\Drivers\dfsc.sys 09:33:28.0832 4724 Suspicious file (Forged): C:\Windows\system32\Drivers\dfsc.sys. Real md5: 7FEF5EC8900F4685BC02D78C724D3602, Fake md5: 622C41A07CA7E6DD91770F50D532CB6C 09:33:28.0832 4724 DfsC ( Virus.Win32.ZAccess.aml ) - infected 09:33:28.0832 4724 DfsC - detected Virus.Win32.ZAccess.aml (0) 09:33:28.0988 4724 [ 2CC3DCFB533A1035B13DCAB6160AB38B ] DFSR C:\Windows\system32\DFSR.exe 09:33:29.0054 4724 DFSR - ok 09:33:29.0120 4724 [ 6CC6C4B9D7B906A151AA094CA087B9F0 ] dg_ssudbus C:\Windows\system32\DRIVERS\ssudbus.sys 09:33:29.0191 4724 dg_ssudbus - ok 09:33:29.0239 4724 [ 9028559C132146FB75EB7ACF384B086A ] Dhcp C:\Windows\System32\dhcpcsvc.dll 09:33:29.0244 4724 Dhcp - ok 09:33:29.0313 4724 [ 5D4AEFC3386920236A548271F8F1AF6A ] disk C:\Windows\system32\drivers\disk.sys 09:33:29.0316 4724 disk - ok 09:33:29.0378 4724 [ 57D762F6F5974AF0DA2BE88A3349BAAA ] Dnscache C:\Windows\System32\dnsrslvr.dll 09:33:29.0388 4724 Dnscache - ok 09:33:29.0422 4724 [ 324FD74686B1EF5E7C19A8AF49E748F6 ] dot3svc C:\Windows\System32\dot3svc.dll 09:33:29.0432 4724 dot3svc - ok 09:33:29.0498 4724 [ 5BC1D876DFD53C31C5FC65D2E9614015 ] DpHost C:\Program Files\DigitalPersona\Bin\DpHostW.exe 09:33:29.0508 4724 DpHost - ok 09:33:29.0569 4724 [ A622E888F8AA2F6B49E9BC466F0E5DEF ] DPS C:\Windows\system32\dps.dll 09:33:29.0575 4724 DPS - ok 09:33:29.0636 4724 [ 97FEF831AB90BEE128C9AF390E243F80 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 09:33:29.0651 4724 drmkaud - ok 09:33:29.0718 4724 [ C68AC676B0EF30CFBB1080ADCE49EB1F ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 09:33:29.0732 4724 DXGKrnl - ok 09:33:29.0788 4724 [ C0B00E55CF82D122D25983C7A6A53DEA ] E100B C:\Windows\system32\DRIVERS\e100b325.sys 09:33:29.0827 4724 E100B - ok 09:33:29.0866 4724 [ F88FB26547FD2CE6D0A5AF2985892C48 ] E1G60 C:\Windows\system32\DRIVERS\E1G60I32.sys 09:33:29.0870 4724 E1G60 - ok 09:33:29.0960 4724 [ 04238864710460C5682E260207D06192 ] eamonm C:\Windows\system32\DRIVERS\eamonm.sys 09:33:29.0964 4724 eamonm - ok 09:33:30.0006 4724 [ C0B95E40D85CD807D614E264248A45B9 ] EapHost C:\Windows\System32\eapsvc.dll 09:33:30.0009 4724 EapHost - ok 09:33:30.0082 4724 [ 7F64EA048DCFAC7ACF8B4D7B4E6FE371 ] Ecache C:\Windows\system32\drivers\ecache.sys 09:33:30.0086 4724 Ecache - ok 09:33:30.0121 4724 [ DEFF87F04AB5F6DD5EDF2B80853BBE10 ] ehdrv C:\Windows\system32\DRIVERS\ehdrv.sys 09:33:30.0125 4724 ehdrv - ok 09:33:30.0197 4724 [ 9BE3744D295A7701EB425332014F0797 ] ehRecvr C:\Windows\ehome\ehRecvr.exe 09:33:30.0204 4724 ehRecvr - ok 09:33:30.0230 4724 [ AD1870C8E5D6DD340C829E6074BF3C3F ] ehSched C:\Windows\ehome\ehsched.exe 09:33:30.0233 4724 ehSched - ok 09:33:30.0251 4724 [ C27C4EE8926E74AA72EFCAB24C5242C3 ] ehstart C:\Windows\ehome\ehstart.dll 09:33:30.0253 4724 ehstart - ok 09:33:30.0359 4724 [ C7BB95CF9631AA401E4ADED1648F6AF7 ] ekrn C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe 09:33:30.0385 4724 ekrn - ok 09:33:30.0454 4724 [ E8F3F21A71720C84BCF423B80028359F ] elxstor C:\Windows\system32\drivers\elxstor.sys 09:33:30.0461 4724 elxstor - ok 09:33:30.0534 4724 [ 4E6B23DFC917EA39306B529B773950F4 ] EMDMgmt C:\Windows\system32\emdmgmt.dll 09:33:30.0548 4724 EMDMgmt - ok 09:33:30.0598 4724 [ F39C91795EBDB9ECBEB5A388FF2841FE ] epfwwfpr C:\Windows\system32\DRIVERS\epfwwfpr.sys 09:33:30.0603 4724 epfwwfpr - ok 09:33:30.0680 4724 [ 539CA34FBC74EC366A0D751028C32A08 ] epmntdrv C:\Windows\system32\epmntdrv.sys 09:33:30.0718 4724 epmntdrv - ok 09:33:30.0739 4724 [ 1F2F4AB15CE03ECC257FEB2F6DC5A013 ] EuGdiDrv C:\Windows\system32\EuGdiDrv.sys 09:33:30.0746 4724 EuGdiDrv - ok 09:33:30.0805 4724 [ 67058C46504BC12D821F38CF99B7B28F ] EventSystem C:\Windows\system32\es.dll 09:33:30.0811 4724 EventSystem - ok 09:33:30.0936 4724 [ BA6063E3375F9BC11A9C8450A7F61E70 ] EvtEng C:\Program Files\Intel\WiFi\bin\EvtEng.exe 09:33:30.0954 4724 EvtEng - ok 09:33:31.0040 4724 [ 22B408651F9123527BCEE54B4F6C5CAE ] exfat C:\Windows\system32\drivers\exfat.sys 09:33:31.0045 4724 exfat - ok 09:33:31.0099 4724 [ 1E9B9A70D332103C52995E957DC09EF8 ] fastfat C:\Windows\system32\drivers\fastfat.sys 09:33:31.0104 4724 fastfat - ok 09:33:31.0159 4724 [ 63BDADA84951B9C03E641800E176898A ] fdc C:\Windows\system32\DRIVERS\fdc.sys 09:33:31.0165 4724 fdc - ok 09:33:31.0214 4724 [ 6629B5F0E98151F4AFDD87567EA32BA3 ] fdPHost C:\Windows\system32\fdPHost.dll 09:33:31.0216 4724 fdPHost - ok 09:33:31.0241 4724 [ 89ED56DCE8E47AF40892778A5BD31FD2 ] FDResPub C:\Windows\system32\fdrespub.dll 09:33:31.0244 4724 FDResPub - ok 09:33:31.0303 4724 [ A8C0139A884861E3AAE9CFE73B208A9F ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 09:33:31.0346 4724 FileInfo - ok 09:33:31.0385 4724 [ 0AE429A696AECBC5970E3CF2C62635AE ] Filetrace C:\Windows\system32\drivers\filetrace.sys 09:33:31.0387 4724 Filetrace - ok 09:33:31.0413 4724 [ 6603957EFF5EC62D25075EA8AC27DE68 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys 09:33:31.0416 4724 flpydisk - ok 09:33:31.0489 4724 [ 01334F9EA68E6877C4EF05D3EA8ABB05 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 09:33:31.0494 4724 FltMgr - ok 09:33:31.0606 4724 [ 8CE364388C8ECA59B14B539179276D44 ] FontCache C:\Windows\system32\FntCache.dll 09:33:31.0631 4724 FontCache - ok 09:33:31.0706 4724 [ C7FBDD1ED42F82BFA35167A5C9803EA3 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe 09:33:31.0714 4724 FontCache3.0.0.0 - ok 09:33:31.0792 4724 [ B972A66758577E0BFD1DE0F91AAA27B5 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 09:33:31.0802 4724 Fs_Rec - ok 09:33:31.0850 4724 [ 4E1CD0A45C50A8882616CAE5BF82F3C5 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys 09:33:31.0855 4724 gagp30kx - ok 09:33:31.0930 4724 [ CD5D0AEEE35DFD4E986A5AA1500A6E66 ] gpsvc C:\Windows\System32\gpsvc.dll 09:33:31.0947 4724 gpsvc - ok 09:33:32.0005 4724 [ 7929A161F9951D173CA9900FE7067391 ] hamachi C:\Windows\system32\DRIVERS\hamachi.sys 09:33:32.0009 4724 hamachi - ok 09:33:32.0075 4724 [ CB04C744BE0A61B1D648FAED182C3B59 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 09:33:32.0085 4724 HdAudAddService - ok 09:33:32.0153 4724 [ 062452B7FFD68C8C042A6261FE8DFF4A ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys 09:33:32.0172 4724 HDAudBus - ok 09:33:32.0223 4724 [ FCB3F4BE408F72C1BD81BCABA87FC22F ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys 09:33:32.0228 4724 HidBth - ok 09:33:32.0261 4724 [ FF3160C3A2445128C5A6D9B076DA519E ] HidIr C:\Windows\system32\drivers\hidir.sys 09:33:32.0267 4724 HidIr - ok 09:33:32.0325 4724 [ 84067081F3318162797385E11A8F0582 ] hidserv C:\Windows\system32\hidserv.dll 09:33:32.0329 4724 hidserv - ok 09:33:32.0377 4724 [ CCA4B519B17E23A00B826C55716809CC ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys 09:33:32.0379 4724 HidUsb - ok 09:33:32.0424 4724 [ D8AD255B37DA92434C26E4876DB7D418 ] hkmsvc C:\Windows\system32\kmsvc.dll 09:33:32.0429 4724 hkmsvc - ok 09:33:32.0514 4724 [ 89F9E1984C1CD9E5F4FE39642D886E11 ] HP Health Check Service c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe 09:33:32.0518 4724 HP Health Check Service - ok 09:33:32.0548 4724 [ DF353B401001246853763C4B7AAA6F50 ] HpCISSs C:\Windows\system32\drivers\hpcisss.sys 09:33:32.0551 4724 HpCISSs - ok 09:33:32.0664 4724 [ E4E285A3766B4A57401FEEAF66CB07B5 ] hpqcxs08 C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll 09:33:32.0669 4724 hpqcxs08 - ok 09:33:32.0731 4724 [ EE4C7A4CF2316701FFDE90F404520265 ] hpqddsvc C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll 09:33:32.0736 4724 hpqddsvc - ok 09:33:32.0776 4724 [ 35956140E686D53BF676CF0C778880FC ] HpqKbFiltr C:\Windows\system32\DRIVERS\HpqKbFiltr.sys 09:33:32.0780 4724 HpqKbFiltr - ok 09:33:32.0801 4724 [ 115C0933B3ED51DFBEC4449348C8065B ] HpqRemHid C:\Windows\system32\DRIVERS\HpqRemHid.sys 09:33:32.0806 4724 HpqRemHid - ok 09:33:32.0872 4724 [ 04C1DCBB226C6AE647B794833CE3CEB6 ] hpqwmiex C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe 09:33:32.0875 4724 hpqwmiex - ok 09:33:32.0951 4724 [ 6F9CB6539A1B2508BD1C53D29334431A ] HPSLPSVC C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL 09:33:32.0964 4724 HPSLPSVC - ok 09:33:33.0011 4724 [ 46D67209550973257601A533E2AC5785 ] HSFHWAZL C:\Windows\system32\DRIVERS\VSTAZL3.SYS 09:33:33.0081 4724 HSFHWAZL - ok 09:33:33.0124 4724 [ EC36F1D542ED4252390D446BF6D4DFD0 ] HSF_DPV C:\Windows\system32\DRIVERS\VSTDPV3.SYS 09:33:33.0159 4724 HSF_DPV - ok 09:33:33.0213 4724 [ F870AA3E254628EBEAFE754108D664DE ] HTTP C:\Windows\system32\drivers\HTTP.sys 09:33:33.0223 4724 HTTP - ok 09:33:33.0244 4724 [ 324C2152FF2C61ABAE92D09F3CCA4D63 ] i2omp C:\Windows\system32\drivers\i2omp.sys 09:33:33.0247 4724 i2omp - ok 09:33:33.0315 4724 [ 22D56C8184586B7A1F6FA60BE5F5A2BD ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys 09:33:33.0317 4724 i8042prt - ok 09:33:33.0410 4724 [ 68431DB6633ED4C9D18226384498310A ] IAANTMON C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe 09:33:33.0421 4724 IAANTMON - ok 09:33:33.0532 4724 [ 496DB78E6A0C4C44023D9A92B4A7AC31 ] ialm C:\Windows\system32\DRIVERS\igdkmd32.sys 09:33:33.0620 4724 ialm - ok 09:33:33.0655 4724 [ 2358C53F30CB9DCD1D3843C4E2F299B2 ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys 09:33:33.0661 4724 iaStor - ok 09:33:33.0696 4724 [ C957BF4B5D80B46C5017BF0101E6C906 ] iaStorV C:\Windows\system32\drivers\iastorv.sys 09:33:33.0705 4724 iaStorV - ok 09:33:33.0800 4724 [ 6F95324909B502E2651442C1548AB12F ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe 09:33:33.0806 4724 IDriverT - ok 09:33:33.0892 4724 [ 98477B08E61945F974ED9FDC4CB6BDAB ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe 09:33:33.0916 4724 idsvc - ok 09:33:33.0948 4724 [ 2D077BF86E843F901D8DB709C95B49A5 ] iirsp C:\Windows\system32\drivers\iirsp.sys 09:33:33.0951 4724 iirsp - ok 09:33:34.0029 4724 [ 9908D8A397B76CD8D31D0D383C5773C9 ] IKEEXT C:\Windows\System32\ikeext.dll 09:33:34.0041 4724 IKEEXT - ok 09:33:34.0178 4724 [ 9F5898EBD3BBE82EADF2EFA595F02A72 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys 09:33:34.0232 4724 IntcAzAudAddService - ok 09:33:34.0282 4724 [ 83AA759F3189E6370C30DE5DC5590718 ] intelide C:\Windows\system32\drivers\intelide.sys 09:33:34.0284 4724 intelide - ok 09:33:34.0327 4724 [ 224191001E78C89DFA78924C3EA595FF ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys 09:33:34.0329 4724 intelppm - ok 09:33:34.0383 4724 [ 9AC218C6E6105477484C6FDBE7D409A4 ] IPBusEnum C:\Windows\system32\ipbusenum.dll 09:33:34.0388 4724 IPBusEnum - ok 09:33:34.0427 4724 [ 62C265C38769B864CB25B4BCF62DF6C3 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 09:33:34.0431 4724 IpFilterDriver - ok 09:33:34.0437 4724 IpInIp - ok 09:33:34.0463 4724 [ 40F34F8ABA2A015D780E4B09138B6C17 ] IPMIDRV C:\Windows\system32\drivers\ipmidrv.sys 09:33:34.0466 4724 IPMIDRV - ok 09:33:34.0527 4724 [ 8793643A67B42CEC66490B2A0CF92D68 ] IPNAT C:\Windows\system32\DRIVERS\ipnat.sys 09:33:34.0533 4724 IPNAT - ok 09:33:34.0594 4724 [ 109C0DFB82C3632FBD11949B73AEEAC9 ] IRENUM C:\Windows\system32\drivers\irenum.sys 09:33:34.0597 4724 IRENUM - ok 09:33:34.0614 4724 [ 350FCA7E73CF65BCEF43FAE1E4E91293 ] isapnp C:\Windows\system32\drivers\isapnp.sys 09:33:34.0617 4724 isapnp - ok 09:33:34.0680 4724 [ 232FA340531D940AAC623B121A595034 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys 09:33:34.0687 4724 iScsiPrt - ok 09:33:34.0719 4724 [ BCED60D16156E428F8DF8CF27B0DF150 ] iteatapi C:\Windows\system32\drivers\iteatapi.sys 09:33:34.0731 4724 iteatapi - ok 09:33:34.0781 4724 [ 06FA654504A498C30ADCA8BEC4E87E7E ] iteraid C:\Windows\system32\drivers\iteraid.sys 09:33:34.0786 4724 iteraid - ok 09:33:34.0829 4724 [ FE8300320281D658A7854D5CFC02A63F ] k750bus C:\Windows\system32\DRIVERS\k750bus.sys 09:33:34.0833 4724 k750bus - ok 09:33:34.0874 4724 [ F44521F63C0C00364FA3D59DB980DE6A ] k750mdfl C:\Windows\system32\DRIVERS\k750mdfl.sys 09:33:34.0877 4724 k750mdfl - ok 09:33:34.0894 4724 [ E93323C3ED5E8923A177740A973C27B2 ] k750mdm C:\Windows\system32\DRIVERS\k750mdm.sys 09:33:34.0900 4724 k750mdm - ok 09:33:34.0955 4724 [ 37605E0A8CF00CBBA538E753E4344C6E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys 09:33:34.0959 4724 kbdclass - ok 09:33:34.0998 4724 [ EDE59EC70E25C24581ADD1FBEC7325F7 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys 09:33:35.0001 4724 kbdhid - ok 09:33:35.0026 4724 [ A3E186B4B935905B829219502557314E ] KeyIso C:\Windows\system32\lsass.exe 09:33:35.0030 4724 KeyIso - ok 09:33:35.0070 4724 [ 73186A580E287152B1BE5087C0E92339 ] KMWDFilter C:\Windows\System32\Drivers\KMWDFilter.SYS 09:33:35.0072 4724 KMWDFilter - ok 09:33:35.0101 4724 [ 3D6CB0DB6FE125F622C02DC0249DDE9F ] KMWDSERVICE C:\Program Files\Mouse Driver\KMWDSrv.exe 09:33:35.0105 4724 KMWDSERVICE - ok 09:33:35.0137 4724 [ 2B2F1638466E8CB091400C9019CC730E ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 09:33:35.0147 4724 KSecDD - ok 09:33:35.0229 4724 [ 8078F8F8F7A79E2E6B494523A828C585 ] KtmRm C:\Windows\system32\msdtckrm.dll 09:33:35.0238 4724 KtmRm - ok 09:33:35.0317 4724 [ 1BF5EEBFD518DD7298434D8C862F825D ] LanmanServer C:\Windows\system32\srvsvc.dll 09:33:35.0323 4724 LanmanServer - ok 09:33:35.0380 4724 [ 1DB69705B695B987082C8BAEC0C6B34F ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 09:33:35.0389 4724 LanmanWorkstation - ok 09:33:35.0439 4724 [ 53710476495886D9961BE46983A6A33F ] LightScribeService C:\Program Files\Common Files\LightScribe\LSSrvc.exe 09:33:35.0441 4724 LightScribeService - ok 09:33:35.0484 4724 [ D1C5883087A0C3F1344D9D55A44901F6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 09:33:35.0487 4724 lltdio - ok 09:33:35.0540 4724 [ 2D5A428872F1442631D0959A34ABFF63 ] lltdsvc C:\Windows\System32\lltdsvc.dll 09:33:35.0550 4724 lltdsvc - ok 09:33:35.0587 4724 [ 35D40113E4A5B961B6CE5C5857702518 ] lmhosts C:\Windows\System32\lmhsvc.dll 09:33:35.0591 4724 lmhosts - ok 09:33:35.0651 4724 [ A2262FB9F28935E862B4DB46438C80D2 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys 09:33:35.0655 4724 LSI_FC - ok 09:33:35.0697 4724 [ 30D73327D390F72A62F32C103DAF1D6D ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys 09:33:35.0701 4724 LSI_SAS - ok 09:33:35.0722 4724 [ E1E36FEFD45849A95F1AB81DE0159FE3 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys 09:33:35.0726 4724 LSI_SCSI - ok 09:33:35.0785 4724 [ 8F5C7426567798E62A3B3614965D62CC ] luafv C:\Windows\system32\drivers\luafv.sys 09:33:35.0797 4724 luafv - ok 09:33:35.0845 4724 [ AEF9BABB8A506BC4CE0451A64AADED46 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 09:33:35.0856 4724 Mcx2Svc - ok 09:33:35.0904 4724 [ D153B14FC6598EAE8422A2037553ADCE ] megasas C:\Windows\system32\drivers\megasas.sys 09:33:35.0906 4724 megasas - ok 09:33:36.0313 4724 [ 123271BD5237AB991DC5C21FDF8835EB ] Microsoft Office Groove Audit Service D:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe 09:33:36.0321 4724 Microsoft Office Groove Audit Service - ok 09:33:36.0366 4724 [ 1076FFCFFAAE8385FD62DFCB25AC4708 ] MMCSS C:\Windows\system32\mmcss.dll 09:33:36.0370 4724 MMCSS - ok 09:33:36.0413 4724 [ E13B5EA0F51BA5B1512EC671393D09BA ] Modem C:\Windows\system32\drivers\modem.sys 09:33:36.0415 4724 Modem - ok 09:33:36.0458 4724 [ 0A9BB33B56E294F686ABB7C1E4E2D8A8 ] monitor C:\Windows\system32\DRIVERS\monitor.sys 09:33:36.0460 4724 monitor - ok 09:33:36.0502 4724 [ 5BF6A1326A335C5298477754A506D263 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys 09:33:36.0504 4724 mouclass - ok 09:33:36.0517 4724 [ 93B8D4869E12CFBE663915502900876F ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 09:33:36.0520 4724 mouhid - ok 09:33:36.0573 4724 [ BDAFC88AA6B92F7842416EA6A48E1600 ] MountMgr C:\Windows\system32\drivers\mountmgr.sys 09:33:36.0576 4724 MountMgr - ok 09:33:36.0597 4724 [ 583A41F26278D9E0EA548163D6139397 ] mpio C:\Windows\system32\drivers\mpio.sys 09:33:36.0600 4724 mpio - ok 09:33:36.0637 4724 [ 22241FEBA9B2DEFA669C8CB0A8DD7D2E ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 09:33:36.0662 4724 mpsdrv - ok 09:33:36.0690 4724 [ 4FBBB70D30FD20EC51F80061703B001E ] Mraid35x C:\Windows\system32\drivers\mraid35x.sys 09:33:36.0692 4724 Mraid35x - ok 09:33:36.0742 4724 [ 82CEA0395524AACFEB58BA1448E8325C ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 09:33:36.0746 4724 MRxDAV - ok 09:33:36.0799 4724 [ 1E94971C4B446AB2290DEB71D01CF0C2 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 09:33:36.0803 4724 mrxsmb - ok 09:33:36.0839 4724 [ 4FCCB34D793B116423209C0F8B7A3B03 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 09:33:36.0845 4724 mrxsmb10 - ok 09:33:36.0853 4724 [ C3CB1B40AD4A0124D617A1199B0B9D7C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 09:33:36.0857 4724 mrxsmb20 - ok 09:33:36.0893 4724 [ 742AED7939E734C36B7E8D6228CE26B7 ] msahci C:\Windows\system32\drivers\msahci.sys 09:33:36.0896 4724 msahci - ok 09:33:36.0914 4724 [ 3FC82A2AE4CC149165A94699183D3028 ] msdsm C:\Windows\system32\drivers\msdsm.sys 09:33:36.0919 4724 msdsm - ok 09:33:36.0977 4724 [ FD7520CC3A80C5FC8C48852BB24C6DED ] MSDTC C:\Windows\System32\msdtc.exe 09:33:36.0983 4724 MSDTC - ok 09:33:37.0009 4724 [ A9927F4A46B816C92F461ACB90CF8515 ] Msfs C:\Windows\system32\drivers\Msfs.sys 09:33:37.0012 4724 Msfs - ok 09:33:37.0061 4724 [ 0F400E306F385C56317357D6DEA56F62 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 09:33:37.0063 4724 msisadrv - ok 09:33:37.0096 4724 [ 85466C0757A23D9A9AECDC0755203CB2 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 09:33:37.0100 4724 MSiSCSI - ok 09:33:37.0106 4724 msiserver - ok 09:33:37.0160 4724 [ D8C63D34D9C9E56C059E24EC7185CC07 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 09:33:37.0162 4724 MSKSSRV - ok 09:33:37.0177 4724 [ 1D373C90D62DDB641D50E55B9E78D65E ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 09:33:37.0182 4724 MSPCLOCK - ok 09:33:37.0205 4724 [ B572DA05BF4E098D4BBA3A4734FB505B ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 09:33:37.0207 4724 MSPQM - ok 09:33:37.0271 4724 [ B49456D70555DE905C311BCDA6EC6ADB ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 09:33:37.0275 4724 MsRPC - ok 09:33:37.0294 4724 [ E384487CB84BE41D09711C30CA79646C ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys 09:33:37.0296 4724 mssmbios - ok 09:33:37.0311 4724 [ 7199C1EEC1E4993CAF96B8C0A26BD58A ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 09:33:37.0314 4724 MSTEE - ok 09:33:37.0358 4724 [ 6A57B5733D4CB702C8EA4542E836B96C ] Mup C:\Windows\system32\Drivers\mup.sys 09:33:37.0379 4724 Mup - ok 09:33:37.0437 4724 [ E4EAF0C5C1B41B5C83386CF212CA9584 ] napagent C:\Windows\system32\qagentRT.dll 09:33:37.0446 4724 napagent - ok 09:33:37.0527 4724 [ 85C44FDFF9CF7E72A40DCB7EC06A4416 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 09:33:37.0574 4724 NativeWifiP - ok 09:33:37.0610 4724 [ 1357274D1883F68300AEADD15D7BBB42 ] NDIS C:\Windows\system32\drivers\ndis.sys 09:33:37.0622 4724 NDIS - ok 09:33:37.0669 4724 [ 0E186E90404980569FB449BA7519AE61 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 09:33:37.0671 4724 NdisTapi - ok 09:33:37.0725 4724 [ D6973AA34C4D5D76C0430B181C3CD389 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 09:33:37.0729 4724 Ndisuio - ok 09:33:37.0790 4724 [ 818F648618AE34F729FDB47EC68345C3 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 09:33:37.0795 4724 NdisWan - ok 09:33:37.0856 4724 [ 71DAB552B41936358F3B541AE5997FB3 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 09:33:37.0861 4724 NDProxy - ok 09:33:37.0935 4724 [ 2969D26EEE289BE7422AA46FC55F4E38 ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll 09:33:37.0942 4724 Net Driver HPZ12 - ok 09:33:37.0964 4724 [ BCD093A5A6777CF626434568DC7DBA78 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 09:33:37.0969 4724 NetBIOS - ok 09:33:37.0998 4724 [ ECD64230A59CBD93C85F1CD1CAB9F3F6 ] netbt C:\Windows\system32\DRIVERS\netbt.sys 09:33:38.0006 4724 netbt - ok 09:33:38.0026 4724 [ A3E186B4B935905B829219502557314E ] Netlogon C:\Windows\system32\lsass.exe 09:33:38.0031 4724 Netlogon - ok 09:33:38.0081 4724 [ C8052711DAECC48B982434C5116CA401 ] Netman C:\Windows\System32\netman.dll 09:33:38.0097 4724 Netman - ok 09:33:38.0143 4724 [ 2EF3BBE22E5A5ACD1428EE387A0D0172 ] netprofm C:\Windows\System32\netprofm.dll 09:33:38.0161 4724 netprofm - ok 09:33:38.0226 4724 [ D6C4E4A39A36029AC0813D476FBD0248 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe 09:33:38.0232 4724 NetTcpPortSharing - ok 09:33:38.0334 4724 [ A15F219208843A5A210C8CB391384453 ] NETw3v32 C:\Windows\system32\DRIVERS\NETw3v32.sys 09:33:38.0384 4724 NETw3v32 - ok 09:33:38.0503 4724 [ 25ACCCFC33DD448B9D3037C5E439E830 ] NETw4v32 C:\Windows\system32\DRIVERS\NETw4v32.sys 09:33:38.0582 4724 NETw4v32 - ok 09:33:38.0759 4724 [ BA420E8EBFCAD35581FE8E4C64F71469 ] NETw5v32 C:\Windows\system32\DRIVERS\NETw5v32.sys 09:33:38.0864 4724 NETw5v32 - ok 09:33:38.0899 4724 [ 2E7FB731D4790A1BC6270ACCEFACB36E ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys 09:33:38.0903 4724 nfrd960 - ok 09:33:38.0966 4724 [ 2997B15415F9BBE05B5A4C1C85E0C6A2 ] NlaSvc C:\Windows\System32\nlasvc.dll 09:33:38.0976 4724 NlaSvc - ok 09:33:39.0004 4724 NOD32FiXTemDono - ok 09:33:39.0062 4724 [ B9730495E0CF674680121E34BD95A73B ] npf C:\Windows\system32\drivers\npf.sys 09:33:39.0081 4724 npf - ok 09:33:39.0142 4724 [ D36F239D7CCE1931598E8FB90A0DBC26 ] Npfs C:\Windows\system32\drivers\Npfs.sys 09:33:39.0145 4724 Npfs - ok 09:33:39.0195 4724 [ 8BB86F0C7EEA2BDED6FE095D0B4CA9BD ] nsi C:\Windows\system32\nsisvc.dll 09:33:39.0201 4724 nsi - ok 09:33:39.0244 4724 [ 609773E344A97410CE4EBF74A8914FCF ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 09:33:39.0246 4724 nsiproxy - ok 09:33:39.0299 4724 [ 6A4A98CEE84CF9E99564510DDA4BAA47 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 09:33:39.0322 4724 Ntfs - ok 09:33:39.0351 4724 [ E875C093AEC0C978A90F30C9E0DFBB72 ] ntrigdigi C:\Windows\system32\drivers\ntrigdigi.sys 09:33:39.0354 4724 ntrigdigi - ok 09:33:39.0402 4724 [ C5DBBCDA07D780BDA9B685DF333BB41E ] Null C:\Windows\system32\drivers\Null.sys 09:33:39.0404 4724 Null - ok 09:33:39.0755 4724 [ 24000B817CC84AC1555F41929879AF5A ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys 09:33:40.0068 4724 nvlddmkm - ok 09:33:40.0096 4724 [ E69E946F80C1C31C53003BFBF50CBB7C ] nvraid C:\Windows\system32\drivers\nvraid.sys 09:33:40.0101 4724 nvraid - ok 09:33:40.0127 4724 [ 9E0BA19A28C498A6D323D065DB76DFFC ] nvstor C:\Windows\system32\drivers\nvstor.sys 09:33:40.0131 4724 nvstor - ok 09:33:40.0200 4724 [ C4D17F11526F87BC762F31DA5BD2580B ] nvsvc C:\Windows\system32\nvvsvc.exe 09:33:40.0211 4724 nvsvc - ok 09:33:40.0226 4724 [ 07C186427EB8FCC3D8D7927187F260F7 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 09:33:40.0232 4724 nv_agp - ok 09:33:40.0243 4724 NwlnkFlt - ok 09:33:40.0255 4724 NwlnkFwd - ok 09:33:40.0364 4724 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE 09:33:40.0379 4724 odserv - ok 09:33:40.0454 4724 [ 6F310E890D46E246E0E261A63D9B36B4 ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys 09:33:40.0459 4724 ohci1394 - ok 09:33:40.0533 4724 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE 09:33:40.0537 4724 ose - ok 09:33:40.0616 4724 [ 0C8E8E61AD1EB0B250B846712C917506 ] p2pimsvc C:\Windows\system32\p2psvc.dll 09:33:40.0633 4724 p2pimsvc - ok 09:33:40.0650 4724 [ 0C8E8E61AD1EB0B250B846712C917506 ] p2psvc C:\Windows\system32\p2psvc.dll 09:33:40.0661 4724 p2psvc - ok 09:33:40.0710 4724 [ 0FA9B5055484649D63C303FE404E5F4D ] Parport C:\Windows\system32\drivers\parport.sys 09:33:40.0714 4724 Parport - ok 09:33:40.0728 4724 [ 57389FA59A36D96B3EB09D0CB91E9CDC ] partmgr C:\Windows\system32\drivers\partmgr.sys 09:33:40.0731 4724 partmgr - ok 09:33:40.0747 4724 [ 4F9A6A8A31413180D0FCB279AD5D8112 ] Parvdm C:\Windows\system32\drivers\parvdm.sys 09:33:40.0749 4724 Parvdm - ok 09:33:40.0789 4724 [ C6276AD11F4BB49B58AA1ED88537F14A ] PcaSvc C:\Windows\System32\pcasvc.dll 09:33:40.0794 4724 PcaSvc - ok 09:33:40.0840 4724 [ 941DC1D19E7E8620F40BBC206981EFDB ] pci C:\Windows\system32\drivers\pci.sys 09:33:40.0845 4724 pci - ok 09:33:40.0860 4724 [ 3B1901E401473E03EB8C874271E50C26 ] pciide C:\Windows\system32\drivers\pciide.sys 09:33:40.0863 4724 pciide - ok 09:33:40.0878 4724 [ E6F3FB1B86AA519E7698AD05E58B04E5 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys 09:33:40.0885 4724 pcmcia - ok 09:33:40.0958 4724 [ 6349F6ED9C623B44B52EA3C63C831A92 ] PEAUTH C:\Windows\system32\drivers\peauth.sys 09:33:40.0980 4724 PEAUTH - ok 09:33:41.0080 4724 [ B1689DF169143F57053F795390C99DB3 ] pla C:\Windows\system32\pla.dll 09:33:41.0113 4724 pla - ok 09:33:41.0174 4724 [ C5E7F8A996EC0A82D508FD9064A5569E ] PlugPlay C:\Windows\system32\umpnpmgr.dll 09:33:41.0182 4724 PlugPlay - ok 09:33:41.0226 4724 [ BAFC9706BDF425A02B66468AB2605C59 ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll 09:33:41.0230 4724 Pml Driver HPZ12 - ok 09:33:41.0286 4724 [ 0E01D7EEBADA0B324DB0CA1EE73440BA ] PnkBstrA C:\Windows\system32\PnkBstrA.exe 09:33:41.0292 4724 PnkBstrA - ok 09:33:41.0303 4724 [ 1428E6CC1458A36CBFC1F2E304C7C42D ] PnkBstrB C:\Windows\system32\PnkBstrB.exe 09:33:41.0309 4724 PnkBstrB - ok 09:33:41.0338 4724 [ 0C8E8E61AD1EB0B250B846712C917506 ] PNRPAutoReg C:\Windows\system32\p2psvc.dll 09:33:41.0348 4724 PNRPAutoReg - ok 09:33:41.0372 4724 [ 0C8E8E61AD1EB0B250B846712C917506 ] PNRPsvc C:\Windows\system32\p2psvc.dll 09:33:41.0382 4724 PNRPsvc - ok 09:33:41.0439 4724 [ D0494460421A03CD5225CCA0059AA146 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 09:33:41.0451 4724 PolicyAgent - ok 09:33:41.0499 4724 [ ECFFFAEC0C1ECD8DBC77F39070EA1DB1 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 09:33:41.0534 4724 PptpMiniport - ok 09:33:41.0569 4724 [ 0E3CEF5D28B40CF273281D620C50700A ] Processor C:\Windows\system32\drivers\processr.sys 09:33:41.0635 4724 Processor - ok 09:33:41.0697 4724 [ 0508FAA222D28835310B7BFCA7A77346 ] ProfSvc C:\Windows\system32\profsvc.dll 09:33:41.0704 4724 ProfSvc - ok 09:33:41.0726 4724 [ A3E186B4B935905B829219502557314E ] ProtectedStorage C:\Windows\system32\lsass.exe 09:33:41.0729 4724 ProtectedStorage - ok 09:33:41.0777 4724 [ 99514FAA8DF93D34B5589187DB3AA0BA ] PSched C:\Windows\system32\DRIVERS\pacer.sys 09:33:41.0780 4724 PSched - ok 09:33:41.0833 4724 [ CFACAA25576D473EF7B771ECE1B24D73 ] pwdrvio C:\Windows\system32\pwdrvio.sys 09:33:41.0873 4724 pwdrvio - ok 09:33:41.0919 4724 [ 0B675A61B23561C86E8710F751842276 ] pwdspio C:\Windows\system32\pwdspio.sys 09:33:41.0928 4724 pwdspio - ok 09:33:42.0005 4724 [ CCDAC889326317792480C0A67156A1EC ] ql2300 C:\Windows\system32\drivers\ql2300.sys 09:33:42.0025 4724 ql2300 - ok 09:33:42.0048 4724 [ 81A7E5C076E59995D54BC1ED3A16E60B ] ql40xx C:\Windows\system32\drivers\ql40xx.sys 09:33:42.0052 4724 ql40xx - ok 09:33:42.0129 4724 [ 599FF0B96561CA4F0899FE7F1C4CCE9A ] QPCapSvc C:\Program Files\HP\QuickPlay\Kernel\TV\QPCapSvc.exe 09:33:42.0135 4724 QPCapSvc - ok 09:33:42.0184 4724 [ 8FF5CAD74C3C5E692E1610E861609A3B ] QPSched C:\Program Files\HP\QuickPlay\Kernel\TV\QPSched.exe 09:33:42.0191 4724 QPSched - ok 09:33:42.0263 4724 [ E9ECAE663F47E6CB43962D18AB18890F ] QWAVE C:\Windows\system32\qwave.dll 09:33:42.0274 4724 QWAVE - ok 09:33:42.0327 4724 [ 9F5E0E1926014D17486901C88ECA2DB7 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 09:33:42.0330 4724 QWAVEdrv - ok 09:33:42.0431 4724 [ 8F97D374AD1857E1EED85A79F29A1D3D ] RapiMgr C:\Windows\WindowsMobile\rapimgr.dll 09:33:42.0436 4724 RapiMgr - ok 09:33:42.0493 4724 [ 147D7F9C556D259924351FEB0DE606C3 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 09:33:42.0496 4724 RasAcd - ok 09:33:42.0568 4724 [ F6A452EB4CEADBB51C9E0EE6B3ECEF0F ] RasAuto C:\Windows\System32\rasauto.dll 09:33:42.0575 4724 RasAuto - ok 09:33:42.0636 4724 [ A214ADBAF4CB47DD2728859EF31F26B0 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 09:33:42.0640 4724 Rasl2tp - ok 09:33:42.0706 4724 [ 75D47445D70CA6F9F894B032FBC64FCF ] RasMan C:\Windows\System32\rasmans.dll 09:33:42.0714 4724 RasMan - ok 09:33:42.0740 4724 [ 509A98DD18AF4375E1FC40BC175F1DEF ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 09:33:42.0743 4724 RasPppoe - ok 09:33:42.0759 4724 [ 2005F4A1E05FA09389AC85840F0A9E4D ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 09:33:42.0762 4724 RasSstp - ok 09:33:42.0827 4724 [ B14C9D5B9ADD2F84F70570BBBFAA7935 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 09:33:42.0833 4724 rdbss - ok 09:33:42.0870 4724 [ 89E59BE9A564262A3FB6C4F4F1CD9899 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 09:33:42.0872 4724 RDPCDD - ok 09:33:42.0909 4724 [ E8BD98D46F2ED77132BA927FCCB47D8B ] rdpdr C:\Windows\system32\drivers\rdpdr.sys 09:33:42.0924 4724 rdpdr - ok 09:33:42.0931 4724 [ 9D91FE5286F748862ECFFA05F8A0710C ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 09:33:42.0934 4724 RDPENCDD - ok 09:33:42.0988 4724 [ 79C6DF8477250F5C54F7C5AE1D6B814E ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 09:33:42.0993 4724 RDPWD - ok 09:33:43.0081 4724 [ 7EEEEC28A34516E66137F355DCC15BDB ] RegSrvc C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe 09:33:43.0091 4724 RegSrvc - ok 09:33:43.0141 4724 [ BCDD6B4804D06B1F7EBF29E53A57ECE9 ] RemoteAccess C:\Windows\System32\mprdim.dll 09:33:43.0148 4724 RemoteAccess - ok 09:33:43.0209 4724 [ 9E6894EA18DAFF37B63E1005F83AE4AB ] RemoteRegistry C:\Windows\system32\regsvc.dll 09:33:43.0216 4724 RemoteRegistry - ok 09:33:43.0262 4724 [ 6482707F9F4DA0ECBAB43B2E0398A101 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys 09:33:43.0267 4724 RFCOMM - ok 09:33:43.0359 4724 [ 17E0BEF5CA5C9CE52CC8082AC6EBC449 ] RichVideo C:\Program Files\CyberLink\Shared Files\RichVideo.exe 09:33:43.0364 4724 RichVideo - ok 09:33:43.0394 4724 [ 355AAC141B214BEF1DBC1483AFD9BD50 ] rimmptsk C:\Windows\system32\DRIVERS\rimmptsk.sys 09:33:43.0398 4724 rimmptsk - ok 09:33:43.0420 4724 [ A4216C71DD4F60B26418CCFD99CD0815 ] rimsptsk C:\Windows\system32\DRIVERS\rimsptsk.sys 09:33:43.0424 4724 rimsptsk - ok 09:33:43.0459 4724 [ D231B577024AA324AF13A42F3A807D10 ] rismxdp C:\Windows\system32\DRIVERS\rixdptsk.sys 09:33:43.0513 4724 rismxdp - ok 09:33:43.0565 4724 [ A780D3EAA74582EA1DEB6BD9C7A3D9C9 ] rpcapd C:\Program Files\WinPcap\rpcapd.exe 09:33:43.0578 4724 rpcapd - ok 09:33:43.0612 4724 [ 5123F83CBC4349D065534EEB6BBDC42B ] RpcLocator C:\Windows\system32\locator.exe 09:33:43.0617 4724 RpcLocator - ok 09:33:43.0678 4724 [ 3B5B4D53FEC14F7476CA29A20CC31AC9 ] RpcSs C:\Windows\system32\rpcss.dll 09:33:43.0693 4724 RpcSs - ok 09:33:43.0738 4724 [ 9C508F4074A39E8B4B31D27198146FAD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 09:33:43.0742 4724 rspndr - ok 09:33:43.0801 4724 [ 9A929308A64183D3D9DCCBB6DF4BADAE ] RTL8169 C:\Windows\system32\DRIVERS\Rtlh86.sys 09:33:43.0863 4724 RTL8169 - ok 09:33:43.0882 4724 [ A3E186B4B935905B829219502557314E ] SamSs C:\Windows\system32\lsass.exe 09:33:43.0886 4724 SamSs - ok 09:33:43.0922 4724 [ 3CE8F073A557E172B330109436984E30 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 09:33:43.0927 4724 sbp2port - ok 09:33:44.0002 4724 [ 77B7A11A0C3D78D3386398FBBEA1B632 ] SCardSvr C:\Windows\System32\SCardSvr.dll 09:33:44.0012 4724 SCardSvr - ok 09:33:44.0080 4724 [ 1A58069DB21D05EB2AB58EE5753EBE8D ] Schedule C:\Windows\system32\schedsvc.dll 09:33:44.0103 4724 Schedule - ok 09:33:44.0154 4724 [ 312EC3E37A0A1F2006534913E37B4423 ] SCPolicySvc C:\Windows\System32\certprop.dll 09:33:44.0156 4724 SCPolicySvc - ok 09:33:44.0205 4724 [ 8F36B54688C31EED4580129040C6A3D3 ] sdbus C:\Windows\system32\DRIVERS\sdbus.sys 09:33:44.0208 4724 sdbus - ok 09:33:44.0255 4724 [ 716313D9F6B0529D03F726D5AAF6F191 ] SDRSVC C:\Windows\System32\SDRSVC.dll 09:33:44.0261 4724 SDRSVC - ok 09:33:44.0288 4724 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys 09:33:44.0290 4724 secdrv - ok 09:33:44.0342 4724 [ FD5199D4D8A521005E4B5EE7FE00FA9B ] seclogon C:\Windows\system32\seclogon.dll 09:33:44.0347 4724 seclogon - ok 09:33:44.0354 4724 [ A9BBAB5759771E523F55563D6CBE140F ] SENS C:\Windows\System32\sens.dll 09:33:44.0361 4724 SENS - ok 09:33:44.0379 4724 [ 68E44E331D46F0FB38F0863A84CD1A31 ] Serenum C:\Windows\system32\drivers\serenum.sys 09:33:44.0382 4724 Serenum - ok 09:33:44.0399 4724 [ C70D69A918B178D3C3B06339B40C2E1B ] Serial C:\Windows\system32\drivers\serial.sys 09:33:44.0403 4724 Serial - ok 09:33:44.0456 4724 [ 8AF3D28A879BF75DB53A0EE7A4289624 ] sermouse C:\Windows\system32\drivers\sermouse.sys 09:33:44.0459 4724 sermouse - ok 09:33:44.0531 4724 [ D2193326F729B163125610DBF3E17D57 ] SessionEnv C:\Windows\system32\sessenv.dll 09:33:44.0536 4724 SessionEnv - ok 09:33:44.0559 4724 [ 3EFA810BDCA87F6ECC24F9832243FE86 ] sffdisk C:\Windows\system32\DRIVERS\sffdisk.sys 09:33:44.0561 4724 sffdisk - ok 09:33:44.0600 4724 [ 8FD08A310645FE872EEEC6E08C6BF3EE ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 09:33:44.0602 4724 sffp_mmc - ok 09:33:44.0649 4724 [ 9F66A46C55D6F1CCABC79BB7AFCCC545 ] sffp_sd C:\Windows\system32\DRIVERS\sffp_sd.sys 09:33:44.0651 4724 sffp_sd - ok 09:33:44.0665 4724 [ 46ED8E91793B2E6F848015445A0AC188 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys 09:33:44.0668 4724 sfloppy - ok 09:33:44.0731 4724 [ C7230FBEE14437716701C15BE02C27B8 ] ShellHWDetection C:\Windows\System32\shsvcs.dll 09:33:44.0739 4724 ShellHWDetection - ok 09:33:44.0762 4724 [ D2A595D6EEBEEAF4334F8E50EFBC9931 ] sisagp C:\Windows\system32\drivers\sisagp.sys 09:33:44.0765 4724 sisagp - ok 09:33:44.0778 4724 [ CEDD6F4E7D84E9F98B34B3FE988373AA ] SiSRaid2 C:\Windows\system32\drivers\sisraid2.sys 09:33:44.0781 4724 SiSRaid2 - ok 09:33:44.0816 4724 [ DF843C528C4F69D12CE41CE462E973A7 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys 09:33:44.0819 4724 SiSRaid4 - ok 09:33:44.0963 4724 [ 862BB4CBC05D80C5B45BE430E5EF872F ] slsvc C:\Windows\system32\SLsvc.exe 09:33:45.0063 4724 slsvc - ok 09:33:45.0117 4724 [ 6EDC422215CD78AA8A9CDE6B30ABBD35 ] SLUINotify C:\Windows\system32\SLUINotify.dll 09:33:45.0124 4724 SLUINotify - ok 09:33:45.0168 4724 [ 7B75299A4D201D6A6533603D6914AB04 ] Smb C:\Windows\system32\DRIVERS\smb.sys 09:33:45.0172 4724 Smb - ok 09:33:45.0237 4724 [ C8A58FC905C9184FA70E37F71060C64D ] smserial C:\Windows\system32\DRIVERS\smserial.sys 09:33:45.0269 4724 smserial - ok 09:33:45.0293 4724 [ 2A146A055B4401C16EE62D18B8E2A032 ] SNMPTRAP C:\Windows\System32\snmptrap.exe 09:33:45.0298 4724 SNMPTRAP - ok 09:33:45.0350 4724 [ 7AEBDEEF071FE28B0EEF2CDD69102BFF ] spldr C:\Windows\system32\drivers\spldr.sys 09:33:45.0353 4724 spldr - ok 09:33:45.0398 4724 [ 8554097E5136C3BF9F69FE578A1B35F4 ] Spooler C:\Windows\System32\spoolsv.exe 09:33:45.0404 4724 Spooler - ok 09:33:45.0417 4724 Suspicious service (NoAccess): sptd 09:33:45.0468 4724 [ D15DA1BA189770D93EEA2D7E18F95AF9 ] sptd C:\Windows\system32\Drivers\sptd.sys 09:33:45.0494 4724 sptd ( LockedService.Multi.Generic ) - warning 09:33:45.0494 4724 sptd - detected LockedService.Multi.Generic (1) 09:33:45.0567 4724 [ 41987F9FC0E61ADF54F581E15029AD91 ] srv C:\Windows\system32\DRIVERS\srv.sys 09:33:45.0577 4724 srv - ok 09:33:45.0643 4724 [ FF33AFF99564B1AA534F58868CBE41EF ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 09:33:45.0650 4724 srv2 - ok 09:33:45.0704 4724 [ 7605C0E1D01A08F3ECD743F38B834A44 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 09:33:45.0709 4724 srvnet - ok 09:33:45.0767 4724 [ 03D50B37234967433A5EA5BA72BC0B62 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 09:33:45.0778 4724 SSDPSRV - ok 09:33:45.0849 4724 [ 6F1A32E7B7B30F004D9A20AFADB14944 ] SstpSvc C:\Windows\system32\sstpsvc.dll 09:33:45.0858 4724 SstpSvc - ok 09:33:45.0923 4724 [ 359FEE084F1173FFFFD7F9CCBD43D47F ] ssudmdm C:\Windows\system32\DRIVERS\ssudmdm.sys 09:33:45.0931 4724 ssudmdm - ok 09:33:45.0970 4724 [ EF70B3D22B4BFFDA6EA851ECB063EFAA ] StillCam C:\Windows\system32\DRIVERS\serscan.sys 09:33:45.0973 4724 StillCam - ok 09:33:46.0047 4724 [ 5DE7D67E49B88F5F07F3E53C4B92A352 ] stisvc C:\Windows\System32\wiaservc.dll 09:33:46.0067 4724 stisvc - ok 09:33:46.0094 4724 [ 7BA58ECF0C0A9A69D44B3DCA62BECF56 ] swenum C:\Windows\system32\DRIVERS\swenum.sys 09:33:46.0098 4724 swenum - ok 09:33:46.0222 4724 [ F577910A133A592234EBAAD3F3AFA258 ] SwitchBoard C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe 09:33:46.0233 4724 SwitchBoard - ok 09:33:46.0297 4724 [ F21FD248040681CCA1FB6C9A03AAA93D ] swprv C:\Windows\System32\swprv.dll 09:33:46.0310 4724 swprv - ok 09:33:46.0345 4724 [ 192AA3AC01DF071B541094F251DEED10 ] Symc8xx C:\Windows\system32\drivers\symc8xx.sys 09:33:46.0349 4724 Symc8xx - ok 09:33:46.0355 4724 SymIMMP - ok 09:33:46.0376 4724 [ 8C8EB8C76736EBAF3B13B633B2E64125 ] Sym_hi C:\Windows\system32\drivers\sym_hi.sys 09:33:46.0380 4724 Sym_hi - ok 09:33:46.0395 4724 [ 8072AF52B5FD103BBBA387A1E49F62CB ] Sym_u3 C:\Windows\system32\drivers\sym_u3.sys 09:33:46.0398 4724 Sym_u3 - ok 09:33:46.0450 4724 [ F5D926807BD9BC0AF68F9376144DE425 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys 09:33:46.0456 4724 SynTP - ok 09:33:46.0496 4724 [ 9A51B04E9886AA4EE90093586B0BA88D ] SysMain C:\Windows\system32\sysmain.dll 09:33:46.0512 4724 SysMain - ok 09:33:46.0542 4724 [ 2DCA225EAE15F42C0933E998EE0231C3 ] TabletInputService C:\Windows\System32\TabSvc.dll 09:33:46.0548 4724 TabletInputService - ok 09:33:46.0606 4724 [ D7673E4B38CE21EE54C59EEEB65E2483 ] TapiSrv C:\Windows\System32\tapisrv.dll 09:33:46.0614 4724 TapiSrv - ok 09:33:46.0661 4724 [ CB05822CD9CC6C688168E113C603DBE7 ] TBS C:\Windows\System32\tbssvc.dll 09:33:46.0667 4724 TBS - ok 09:33:46.0738 4724 [ 814A1C66FBD4E1B310A517221F1456BF ] Tcpip C:\Windows\system32\drivers\tcpip.sys 09:33:46.0759 4724 Tcpip - ok 09:33:46.0785 4724 [ 814A1C66FBD4E1B310A517221F1456BF ] Tcpip6 C:\Windows\system32\DRIVERS\tcpip.sys 09:33:46.0795 4724 Tcpip6 - ok 09:33:46.0848 4724 [ 608C345A255D82A6289C2D468EB41FD7 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 09:33:46.0851 4724 tcpipreg - ok 09:33:46.0894 4724 [ 5DCF5E267BE67A1AE926F2DF77FBCC56 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 09:33:46.0897 4724 TDPIPE - ok 09:33:46.0948 4724 [ 389C63E32B3CEFED425B61ED92D3F021 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 09:33:46.0950 4724 TDTCP - ok 09:33:46.0998 4724 [ 76B06EB8A01FC8624D699E7045303E54 ] tdx C:\Windows\system32\DRIVERS\tdx.sys 09:33:47.0004 4724 tdx - ok 09:33:47.0055 4724 [ 3CAD38910468EAB9A6479E2F01DB43C7 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys 09:33:47.0059 4724 TermDD - ok 09:33:47.0092 4724 [ BB95DA09BEF6E7A131BFF3BA5032090D ] TermService C:\Windows\System32\termsrv.dll 09:33:47.0110 4724 TermService - ok 09:33:47.0143 4724 [ C7230FBEE14437716701C15BE02C27B8 ] Themes C:\Windows\system32\shsvcs.dll 09:33:47.0152 4724 Themes - ok 09:33:47.0166 4724 [ 1076FFCFFAAE8385FD62DFCB25AC4708 ] THREADORDER C:\Windows\system32\mmcss.dll 09:33:47.0172 4724 THREADORDER - ok 09:33:47.0223 4724 [ EC74E77D0EB004BD3A809B5F8FB8C2CE ] TrkWks C:\Windows\System32\trkwks.dll 09:33:47.0229 4724 TrkWks - ok 09:33:47.0282 4724 [ 97D9D6A04E3AD9B6C626B9931DB78DBA ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 09:33:47.0285 4724 TrustedInstaller - ok 09:33:47.0333 4724 [ DCF0F056A2E4F52287264F5AB29CF206 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 09:33:47.0337 4724 tssecsrv - ok 09:33:47.0387 4724 [ CAECC0120AC49E3D2F758B9169872D38 ] tunmp C:\Windows\system32\DRIVERS\tunmp.sys 09:33:47.0390 4724 tunmp - ok 09:33:47.0446 4724 [ 300DB877AC094FEAB0BE7688C3454A9C ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 09:33:47.0450 4724 tunnel - ok 09:33:47.0508 4724 [ C3ADE15414120033A36C0F293D4A4121 ] uagp35 C:\Windows\system32\drivers\uagp35.sys 09:33:47.0513 4724 uagp35 - ok 09:33:47.0578 4724 [ D9728AF68C4C7693CB100B8441CBDEC6 ] udfs C:\Windows\system32\DRIVERS\udfs.sys 09:33:47.0587 4724 udfs - ok 09:33:47.0639 4724 [ ECEF404F62863755951E09C802C94AD5 ] UI0Detect C:\Windows\system32\UI0Detect.exe 09:33:47.0649 4724 UI0Detect - ok 09:33:47.0667 4724 [ 75E6890EBFCE0841D3291B02E7A8BDB0 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 09:33:47.0674 4724 uliagpkx - ok 09:33:47.0698 4724 [ 3CD4EA35A6221B85DCC25DAA46313F8D ] uliahci C:\Windows\system32\drivers\uliahci.sys 09:33:47.0708 4724 uliahci - ok 09:33:47.0726 4724 [ 8514D0E5CD0534467C5FC61BE94A569F ] UlSata C:\Windows\system32\drivers\ulsata.sys 09:33:47.0732 4724 UlSata - ok 09:33:47.0775 4724 [ 38C3C6E62B157A6BC46594FADA45C62B ] ulsata2 C:\Windows\system32\drivers\ulsata2.sys 09:33:47.0781 4724 ulsata2 - ok 09:33:47.0838 4724 [ 32CFF9F809AE9AED85464492BF3E32D2 ] umbus C:\Windows\system32\DRIVERS\umbus.sys 09:33:47.0842 4724 umbus - ok 09:33:47.0909 4724 [ BB879DCFD22926EFBEB3298129898CBB ] UnlockerDriver5 C:\Program Files\Unlocker\UnlockerDriver5.sys 09:33:47.0915 4724 UnlockerDriver5 - ok 09:33:47.0970 4724 [ 68308183F4AE0BE7BF8ECD07CB297999 ] upnphost C:\Windows\System32\upnphost.dll 09:33:47.0985 4724 upnphost - ok 09:33:48.0057 4724 [ 32DB9517628FF0D070682AAB61E688F0 ] usbaudio C:\Windows\system32\drivers\usbaudio.sys 09:33:48.0062 4724 usbaudio - ok 09:33:48.0121 4724 [ CAF811AE4C147FFCD5B51750C7F09142 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys 09:33:48.0126 4724 usbccgp - ok 09:33:48.0157 4724 [ E9476E6C486E76BC4898074768FB7131 ] usbcir C:\Windows\system32\drivers\usbcir.sys 09:33:48.0163 4724 usbcir - ok 09:33:48.0218 4724 [ 79E96C23A97CE7B8F14D310DA2DB0C9B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys 09:33:48.0222 4724 usbehci - ok 09:33:48.0251 4724 [ 4673BBCB006AF60E7ABDDBE7A130BA42 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 09:33:48.0259 4724 usbhub - ok 09:33:48.0282 4724 [ 38DBC7DD6CC5A72011F187425384388B ] usbohci C:\Windows\system32\drivers\usbohci.sys 09:33:48.0284 4724 usbohci - ok 09:33:48.0297 4724 [ B51E52ACF758BE00EF3A58EA452FE360 ] usbprint C:\Windows\system32\drivers\usbprint.sys 09:33:48.0300 4724 usbprint - ok 09:33:48.0330 4724 [ BE3DA31C191BC222D9AD503C5224F2AD ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 09:33:48.0333 4724 USBSTOR - ok 09:33:48.0377 4724 [ 814D653EFC4D48BE3B04A307ECEFF56F ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys 09:33:48.0380 4724 usbuhci - ok 09:33:48.0443 4724 [ E67998E8F14CB0627A769F6530BCB352 ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys 09:33:48.0452 4724 usbvideo - ok 09:33:48.0495 4724 [ 35C9095FA7076466AFBFC5B9EC4B779E ] usb_rndisx C:\Windows\system32\DRIVERS\usb8023x.sys 09:33:48.0531 4724 usb_rndisx - ok 09:33:48.0583 4724 [ C5B70A6AA947667CE0E5FC84A05EC8B6 ] usnjsvc C:\Program Files\MSN Messenger\usnsvc.exe 09:33:48.0586 4724 usnjsvc - ok 09:33:48.0639 4724 [ 1509E705F3AC1D474C92454A5C2DD81F ] UxSms C:\Windows\System32\uxsms.dll 09:33:48.0645 4724 UxSms - ok 09:33:48.0677 4724 [ CD88D1B7776DC17A119049742EC07EB4 ] vds C:\Windows\System32\vds.exe 09:33:48.0690 4724 vds - ok 09:33:48.0746 4724 [ 7D92BE0028ECDEDEC74617009084B5EF ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 09:33:48.0780 4724 vga - ok 09:33:48.0836 4724 [ 2E93AC0A1D8C79D019DB6C51F036636C ] VgaSave C:\Windows\System32\drivers\vga.sys 09:33:48.0839 4724 VgaSave - ok 09:33:48.0854 4724 [ 045D9961E591CF0674A920B6BA3BA5CB ] viaagp C:\Windows\system32\drivers\viaagp.sys 09:33:48.0857 4724 viaagp - ok 09:33:48.0867 4724 [ 56A4DE5F02F2E88182B0981119B4DD98 ] ViaC7 C:\Windows\system32\drivers\viac7.sys 09:33:48.0870 4724 ViaC7 - ok 09:33:48.0890 4724 [ FD2E3175FCADA350C7AB4521DCA187EC ] viaide C:\Windows\system32\drivers\viaide.sys 09:33:48.0893 4724 viaide - ok 09:33:48.0917 4724 [ 69503668AC66C77C6CD7AF86FBDF8C43 ] volmgr C:\Windows\system32\drivers\volmgr.sys 09:33:48.0919 4724 volmgr - ok 09:33:48.0974 4724 [ 23E41B834759917BFD6B9A0D625D0C28 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 09:33:48.0982 4724 volmgrx - ok 09:33:49.0025 4724 [ 147281C01FCB1DF9252DE2A10D5E7093 ] volsnap C:\Windows\system32\drivers\volsnap.sys 09:33:49.0031 4724 volsnap - ok 09:33:49.0062 4724 [ D984439746D42B30FC65A4C3546C6829 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys 09:33:49.0066 4724 vsmraid - ok 09:33:49.0123 4724 [ DB3D19F850C6EB32BDCB9BC0836ACDDB ] VSS C:\Windows\system32\vssvc.exe 09:33:49.0149 4724 VSS - ok 09:33:49.0209 4724 [ 96EA68B9EB310A69C25EBB0282B2B9DE ] W32Time C:\Windows\system32\w32time.dll 09:33:49.0220 4724 W32Time - ok 09:33:49.0257 4724 [ 48DFEE8F1AF7C8235D4E626F0C4FE031 ] WacomPen C:\Windows\system32\drivers\wacompen.sys 09:33:49.0259 4724 WacomPen - ok 09:33:49.0320 4724 [ 55201897378CCA7AF8B5EFD874374A26 ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys 09:33:49.0323 4724 Wanarp - ok 09:33:49.0333 4724 [ 55201897378CCA7AF8B5EFD874374A26 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 09:33:49.0335 4724 Wanarpv6 - ok 09:33:49.0408 4724 [ 59E19BD13C3BDB857646B9E436BA27F7 ] WcesComm C:\Windows\WindowsMobile\wcescomm.dll 09:33:49.0417 4724 WcesComm - ok 09:33:49.0485 4724 [ A3CD60FD826381B49F03832590E069AF ] wcncsvc C:\Windows\System32\wcncsvc.dll 09:33:49.0503 4724 wcncsvc - ok 09:33:49.0534 4724 [ 11BCB7AFCDD7AADACB5746F544D3A9C7 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 09:33:49.0545 4724 WcsPlugInService - ok 09:33:49.0590 4724 [ AFC5AD65B991C1E205CF25CFDBF7A6F4 ] Wd C:\Windows\system32\drivers\wd.sys 09:33:49.0593 4724 Wd - ok 09:33:49.0652 4724 [ B6F0A7AD6D4BD325FBCD8BAC96CD8D96 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 09:33:49.0664 4724 Wdf01000 - ok 09:33:49.0706 4724 [ ABFC76B48BB6C96E3338D8943C5D93B5 ] WdiServiceHost C:\Windows\system32\wdi.dll 09:33:49.0712 4724 WdiServiceHost - ok 09:33:49.0717 4724 [ ABFC76B48BB6C96E3338D8943C5D93B5 ] WdiSystemHost C:\Windows\system32\wdi.dll 09:33:49.0724 4724 WdiSystemHost - ok 09:33:49.0785 4724 [ 04C37D8107320312FBAE09926103D5E2 ] WebClient C:\Windows\System32\webclnt.dll 09:33:49.0794 4724 WebClient - ok 09:33:49.0845 4724 [ AE3736E7E8892241C23E4EBBB7453B60 ] Wecsvc C:\Windows\system32\wecsvc.dll 09:33:49.0854 4724 Wecsvc - ok 09:33:49.0888 4724 [ 670FF720071ED741206D69BD995EA453 ] wercplsupport C:\Windows\System32\wercplsupport.dll 09:33:49.0894 4724 wercplsupport - ok 09:33:49.0908 4724 [ 32B88481D3B326DA6DEB07B1D03481E7 ] WerSvc C:\Windows\System32\WerSvc.dll 09:33:49.0915 4724 WerSvc - ok 09:33:49.0986 4724 [ 5C7BDCF5864DB00323FE2D90FA26A8A2 ] winachsf C:\Windows\system32\DRIVERS\VSTCNXT3.SYS 09:33:50.0060 4724 winachsf - ok 09:33:50.0075 4724 WinHttpAutoProxySvc - ok 09:33:50.0160 4724 [ 6B2A1D0E80110E3D04E6863C6E62FD8A ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 09:33:50.0164 4724 Winmgmt - ok 09:33:50.0237 4724 [ 7CFE68BDC065E55AA5E8421607037511 ] WinRM C:\Windows\system32\WsmSvc.dll 09:33:50.0269 4724 WinRM - ok 09:33:50.0342 4724 [ 676F4B665BDD8053EAA53AC1695B8074 ] WINUSB C:\Windows\system32\DRIVERS\WinUSB.SYS 09:33:50.0345 4724 WINUSB - ok 09:33:50.0407 4724 [ C008405E4FEEB069E30DA1D823910234 ] Wlansvc C:\Windows\System32\wlansvc.dll 09:33:50.0422 4724 Wlansvc - ok 09:33:50.0560 4724 [ 5144AE67D60EC653F97DDF3FEED29E77 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE 09:33:50.0601 4724 wlidsvc - ok 09:33:50.0661 4724 [ 2E7255D172DF0B8283CDFB7B433B864E ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys 09:33:50.0663 4724 WmiAcpi - ok 09:33:50.0734 4724 [ 43BE3875207DCB62A85C8C49970B66CC ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 09:33:50.0738 4724 wmiApSrv - ok 09:33:50.0821 4724 [ 3978704576A121A9204F8CC49A301A9B ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe 09:33:50.0839 4724 WMPNetworkSvc - ok 09:33:50.0893 4724 [ CFC5A04558F5070CEE3E3A7809F3FF52 ] WPCSvc C:\Windows\System32\wpcsvc.dll 09:33:50.0903 4724 WPCSvc - ok 09:33:50.0968 4724 [ 801FBDB89D472B3C467EB112A0FC9246 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 09:33:50.0977 4724 WPDBusEnum - ok 09:33:51.0029 4724 [ DE9D36F91A4DF3D911626643DEBF11EA ] WpdUsb C:\Windows\system32\DRIVERS\wpdusb.sys 09:33:51.0052 4724 WpdUsb - ok 09:33:51.0220 4724 [ DCF3E3EDF5109EE8BC02FE6E1F045795 ] WPFFontCache_v0400 C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe 09:33:51.0242 4724 WPFFontCache_v0400 - ok 09:33:51.0287 4724 [ E3A3CB253C0EC2494D4A61F5E43A389C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 09:33:51.0291 4724 ws2ifsl - ok 09:33:51.0300 4724 WSearch - ok 09:33:51.0377 4724 [ AC13CB789D93412106B0FB6C7EB2BCB6 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 09:33:51.0382 4724 WUDFRd - ok 09:33:51.0436 4724 [ 575A4190D989F64732119E4114045A4F ] wudfsvc C:\Windows\System32\WUDFSvc.dll 09:33:51.0446 4724 wudfsvc - ok 09:33:51.0474 4724 ================ Scan global =============================== 09:33:51.0525 4724 [ F31EEBC1A1C81FD04005489CC3DCDFE7 ] C:\Windows\system32\basesrv.dll 09:33:51.0574 4724 [ D2293B069E4B63DC17B2F08D45E71124 ] C:\Windows\system32\winsrv.dll 09:33:51.0612 4724 [ D2293B069E4B63DC17B2F08D45E71124 ] C:\Windows\system32\winsrv.dll 09:33:51.0676 4724 [ D4E6D91C1349B7BFB3599A6ADA56851B ] C:\Windows\system32\services.exe 09:33:51.0685 4724 [Global] - ok 09:33:51.0686 4724 ================ Scan MBR ================================== 09:33:51.0694 4724 [ 1A1A06F62E891045814007163C1C76C3 ] \Device\Harddisk0\DR0 09:33:52.0252 4724 \Device\Harddisk0\DR0 - ok 09:33:52.0586 4724 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk1\DR1 09:33:52.0594 4724 \Device\Harddisk1\DR1 - ok 09:33:52.0629 4724 ================ Scan VBR ================================== 09:33:52.0631 4724 [ 0CD904FF61F04522CA2D5D244D7467B0 ] \Device\Harddisk0\DR0\Partition1 09:33:52.0634 4724 \Device\Harddisk0\DR0\Partition1 - ok 09:33:52.0642 4724 [ 39DD41D88D27FDE5A335741EE3238617 ] \Device\Harddisk0\DR0\Partition2 09:33:52.0645 4724 \Device\Harddisk0\DR0\Partition2 - ok 09:33:52.0651 4724 [ 8996108478F6899023FA578AF49EAC9C ] \Device\Harddisk1\DR1\Partition1 09:33:52.0653 4724 \Device\Harddisk1\DR1\Partition1 - ok 09:33:52.0655 4724 ============================================================ 09:33:52.0655 4724 Scan finished 09:33:52.0655 4724 ============================================================ 09:33:52.0675 6356 Detected object count: 2 09:33:52.0676 6356 Actual detected object count: 2 09:34:30.0435 6356 C:\Windows\system32\Drivers\dfsc.sys - copied to quarantine 09:34:36.0368 6356 C:\Windows\$NtUninstallKB62280$\485945278\@ - copied to quarantine 09:34:36.0405 6356 C:\Windows\$NtUninstallKB62280$\485945278\Desktop.ini - copied to quarantine 09:34:37.0647 6356 C:\Windows\$NtUninstallKB62280$\485945278\L\00000004.@ - copied to quarantine 09:34:37.0654 6356 C:\Windows\$NtUninstallKB62280$\485945278\L\201d3dde - copied to quarantine 09:34:37.0660 6356 C:\Windows\$NtUninstallKB62280$\485945278\L\6715e287 - copied to quarantine 09:34:37.0666 6356 C:\Windows\$NtUninstallKB62280$\485945278\L\76603ac3 - copied to quarantine 09:34:37.0690 6356 C:\Windows\$NtUninstallKB62280$\485945278\L\qnbwvoto - copied to quarantine 09:34:37.0711 6356 C:\Windows\$NtUninstallKB62280$\485945278\U\00000004.@ - copied to quarantine 09:34:38.0938 6356 C:\Windows\$NtUninstallKB62280$\485945278\U\00000008.@ - copied to quarantine 09:34:38.0946 6356 C:\Windows\$NtUninstallKB62280$\485945278\U\000000cb.@ - copied to quarantine 09:34:40.0155 6356 C:\Windows\$NtUninstallKB62280$\485945278\U\80000000.@ - copied to quarantine 09:34:41.0415 6356 C:\Windows\$NtUninstallKB62280$\485945278\U\80000032.@ - copied to quarantine 09:34:43.0761 6356 Backup copy found, using it.. 09:34:43.0841 6356 C:\Windows\system32\Drivers\dfsc.sys - will be cured on reboot 09:34:43.0963 6356 C:\Windows\$NtUninstallKB62280$\3438722373 - will be deleted on reboot 09:34:43.0964 6356 C:\Windows\$NtUninstallKB62280$\485945278\@ - will be deleted on reboot 09:34:43.0965 6356 C:\Windows\$NtUninstallKB62280$\485945278\Desktop.ini - will be deleted on reboot 09:34:43.0998 6356 C:\Windows\$NtUninstallKB62280$\485945278\U\00000004.@ - will be deleted on reboot 09:34:43.0998 6356 C:\Windows\$NtUninstallKB62280$\485945278\U\00000008.@ - will be deleted on reboot 09:34:43.0999 6356 C:\Windows\$NtUninstallKB62280$\485945278\U\000000cb.@ - will be deleted on reboot 09:34:44.0000 6356 C:\Windows\$NtUninstallKB62280$\485945278\U\80000000.@ - will be deleted on reboot 09:34:44.0000 6356 C:\Windows\$NtUninstallKB62280$\485945278\U\80000032.@ - will be deleted on reboot 09:34:44.0020 6356 DfsC ( Virus.Win32.ZAccess.aml ) - User select action: Cure 09:34:44.0020 6356 sptd ( LockedService.Multi.Generic ) - skipped by user 09:34:44.0021 6356 sptd ( LockedService.Multi.Generic ) - User select action: Skip 09:34:52.0472 6704 Deinitialize success