tonysto Публикувано Август 5, 2012 Report Share Публикувано Август 5, 2012 Здравейте имам проблеми с влизането във Фейсбук! Не мога да вляза нито през интернет експлоръра, нито хрома и мозила. Само през Опера се опитва да ми зареди но страницата е много разпокъсана и странно изглеждаща, при другите си остава празна! Цитирай Link to comment Сподели другаде More sharing options...
Night_Raven Публикувано Август 5, 2012 Report Share Публикувано Август 5, 2012 mst, лично ти ли си спряла UAC или не? Стартирай отново OTL. В празното поле "Custom Scans/Fixes" (в долната част на програмата) постави следния текст (маркирай го, натисни Ctrl+C и после в полето на OTL натисни Ctrl+V): :OTL O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0 O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-132208950-3660432363-3532671861-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-132208950-3660432363-3532671861-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 [2012.08.03 18:00:00 | 000,000,456 | ---- | M] () -- C:\Windows\Tasks\ParetoLogic Registration3.job [2012.07.31 15:49:35 | 000,000,260 | ---- | M] () -- C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Temp\wmpnsslog00.sqm :Commands [emptytemp] [reboot]Копирай текста точно както е в полето. Внимавай да не изтървеш началното двуеточие и всяка команда да е на отделен ред, както е в полето. Кликни бутон Run Fix. Потвърди с OK на съобщението, че е нужен рестарт на системата. След рестарта ще се появи текстов дневник/лог. Същият файл се намира в C:\_OTL\MovedFiles. Моля, прикачи го към следващия си коментар. ----- Сканирай с Malwarebytes Anti-Malware. Ако тепърва инсталираш програмата, в края инсталацията ще има отметка за автоматична актуализация, не я премахвай. В противен случай обнови дефинициите й ръчно. Ако вече имаш програмата, провери дали имаш последната версия и ако нямаш, премахни твоята и инсталирай най-новата, като в края на инсталацията остави отметката за актуализация на дефинициите. Инструкции за сканиране:- стартирай програмата;- избери Perform quick scan (Бързо сканиране) и кликни бутон Scan (Сканиране);- след като приключи сканирането, ако не са открити заплахи, ще се отвори автоматично текстов файл (който можеш да затвориш) и програмата ще те уведоми, че не е открила нищо, след което можеш да кликнеш бутон OK и да я затвориш;- ако са открити заплахи, кликни бутон OK и после Show Results (Покажи резултатите);- кликни бутон Remove Selected (Премахни избраните);Ако е нужен рестарт, се съгласи и рестартирай веднага. След рестарта стартирай отново програмата, иди на подпорозиорец Logs (Дневници), маркирай последния дневник, кликни бутон Open (Отвори) и му копирай съдържанието тук. Ако не е бил нужен рестарт, трябва да се появи текстов файл - копирай му съдържанието тук. ----- Здравейте имам проблеми с влизането във Фейсбук! Не мога да вляза нито през интернет експлоръра, нито хрома и мозила. Само през Опера се опитва да ми зареди но страницата е много разпокъсана и странно изглеждаща, при другите си остава празна!Увери се, че операционната система е с всички актуализации, че всичките ти браузъри са актуални версии, че регионалните настройки са наред (български) и че часовникът е сверен. Цитирай Link to comment Сподели другаде More sharing options...
tonysto Публикувано Август 5, 2012 Report Share Публикувано Август 5, 2012 Това всичко съм го проверила и е както трябва.Изчетох всичко във форума и съм пробвала всичко, което предлагате,но така и не може да се отвори приложението- просто си остава като едно безкрайно търсене. Цитирай Link to comment Сподели другаде More sharing options...
tonysto Публикувано Август 5, 2012 Report Share Публикувано Август 5, 2012 Това е резултата от сканирането с OTL. Extras-а ми е от по-ранно сканиране през деня, при сегашното просто не ми излезе.OTL.TxtExtras.Txt Цитирай Link to comment Сподели другаде More sharing options...
mst Публикувано Август 6, 2012 Report Share Публикувано Август 6, 2012 Не съм спирала UAC.Сканирах с Malwarebytes Anti-Malware и не откри нищо. Ето резултата от OTL:------------------------------ All processes killed========== OTL ==========Registry key HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Restrictions\ deleted successfully.Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDrives deleted successfully.Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\DisableRegistryTools deleted successfully.Registry key HKEY_USERS\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel\ not found.Registry key HKEY_USERS\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel\ not found.Registry key HKEY_USERS\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel\ not found.Registry key HKEY_USERS\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel\ not found.Registry key HKEY_USERS\S-1-5-21-132208950-3660432363-3532671861-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel\ deleted successfully.Registry value HKEY_USERS\S-1-5-21-132208950-3660432363-3532671861-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDrives deleted successfully.C:\Windows\Tasks\ParetoLogic Registration3.job moved successfully.C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Temp\wmpnsslog00.sqm moved successfully.========== COMMANDS ========== [EMPTYTEMP] User: All Users User: Default->Temp folder emptied: 0 bytes->Temporary Internet Files folder emptied: 0 bytes User: Default User->Temp folder emptied: 0 bytes->Temporary Internet Files folder emptied: 0 bytes User: LittleJimmy->Temp folder emptied: 15521113 bytes->Temporary Internet Files folder emptied: 201059 bytes->Java cache emptied: 0 bytes->FireFox cache emptied: 60031446 bytes->Google Chrome cache emptied: 0 bytes->Opera cache emptied: 0 bytes->Flash cache emptied: 726 bytes User: Public->Temp folder emptied: 0 bytes User: UpdatusUser->Temp folder emptied: 0 bytes->Temporary Internet Files folder emptied: 0 bytes %systemdrive% .tmp files removed: 0 bytes%systemroot% .tmp files removed: 0 bytes%systemroot%\System32 .tmp files removed: 0 bytes%systemroot%\System32\drivers .tmp files removed: 0 bytesWindows Temp folder emptied: 96411617 bytesRecycleBin emptied: 950585 bytes Total Files Cleaned = 165,00 mb OTL by OldTimer - Version 3.2.55.0 log created on 08062012_133807 Files\Folders moved on Reboot... PendingFileRenameOperations files... Registry entries deleted on Reboot... Цитирай Link to comment Сподели другаде More sharing options...
Night_Raven Публикувано Август 6, 2012 Report Share Публикувано Август 6, 2012 mst, поне на този етап, не изглежда проблемът да се дължи на зловреден код. Не пречи да направим още 2 бързи сканирания за всеки случай. Изтегли TDSSKiller и:- разархивирай архива на удобно място;- стартирай TDSSKiller.exe;- кликни Change paramteres, в долната секция Additional options постави отметки на Verify driver digital signatures и Detect TDLFS file system и потвърди с OK;- кликни бутон Start scan и изчакай да се извърши сканирането;- ако не бъдат открити заплахи, просто кликни Close;- ако бъдат открити подозрителни обекти, кликни Continue и след това Close;- ако бъдат открити зловредни обекти, се увери, че от падащите менюта е избрана опцята Cure, кликни Continue и след това Reboot computer;- в дял C: ще се създаде текстов файл дневник от сканирането (името му започва с TDSSKiller), копирай му съдържанието в следващия си коментар. --- Изтегли HitmanPro и:- стартирай файла и кликни Напред;- постави отметка на Приемам всички условия в лицензионното споразумение и кликни Напред;- избери Не, искам да извършва еднократно сканиране на компютъра и кликни Напред;- изчакай да приключи сканирането;- ако бъдат открити заплахи, кликни Напред, в противен случай кликни Затвори;- кликни Активирай безплатен лиценз, потвърди с OK и кликни Напред;- изчакай да приключи премахването и кликни Next;- кликни Изнеси резултатите от сканирането в XML файл и запази файла на удобно място с име по желание;- ако има нужда от рестартиране, ще има бутон Рестартирай, който го кликни; противен случай кликни Затвори. След това архивирай запазения XML файл и го прикачи към коментара си. ------ Това е резултата от сканирането с OTL.Занапред не предоставяй дневници от програми, освен ако не са поискани. Следвай точно инструкциите... Изтегли OTL и го запази на работния плот:- стартирай инструмента;- постави отметка в горната част на Scan All Users;- в поле Standard Registry избери All;- от падащо меню File Age избери 90 Days;- постави отметки още на: Skip Microsoft Files, LOP Check и Purity Check;- в поле Custom Scans/Fixes (в долната част на програмата) постави следния текст (маркирай го, натисни Ctrl+C и после в полето на OTL натисни Ctrl+V):netsvcs msconfig safebootminimal safebootnetwork activex drivers32 %SYSTEMDRIVE%\*.* %USERPROFILE%\*.* %USERPROFILE%\AppData\Local\*.* %USERPROFILE%\AppData\Roaming\*.* %ProgramData%\*.* %CommonProgramFiles%\*.* %CommonProgramFiles%\ComObjects*.* %PROGRAMFILES%\*.* %systemroot%\system32\config\systemprofile\AppData\Local\*.* %systemroot%\system32\config\systemprofile\AppData\Roaming\*.* %windir%\SysWOW64\config\systemprofile\AppData\Local\*.* %windir%\SysWOW64\config\systemprofile\AppData\Roaming\*.* %windir%\ServiceProfiles\LocalService\AppData\Local\Temp\*.* %windir%\ServiceProfiles\NetworkService\AppData\Local\Temp\*.* %windir%\temp\*.* %windir%\minidump\*.* %windir%\*. %windir%\installer\*. %windir%\system32\*. %windir%\sysnative\*. %Temp%\smtmp\1\*.* %Temp%\smtmp\2\*.* %Temp%\smtmp\3\*.* %Temp%\smtmp\4\*.* %systemroot%\system32\*.dll /lockedfiles %systemroot%\syswow64\*.dll /lockedfiles %systemroot%\Tasks\*.job /lockedfiles %systemroot%\system32\drivers\*.sys /90 %systemroot%\system32\drivers\*.sys /lockedfiles %systemroot%\syswow64\drivers\*.sys /90 %systemroot%\syswow64\drivers\*.sys /lockedfiles %systemroot%\system32\Spool\prtprocs\w32x86\*.dll %systemroot%\*. /rp /s %systemroot%\assembly mp\*.* /S /MD5 %systemroot%\assembly emp\*.* /S /MD5 %systemroot%\assembly\GAC\*.* /S /MD5 %systemroot%\assembly\GAC_32\*.* /S /MD5 %systemroot%\assembly\GAC_64\*.* /S /MD5 %SystemRoot%\assembly\GAC_MSIL\*.* /S /MD5 HKEY_CLASSES_ROOT\CLSID\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1} /s HKEY_CURRENT_USER\Software\Classes\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1} /s HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1} /s HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1} /s HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a2a9545d-a0c2-42b4-9708-a0b2badd77c8} /s HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24} /s HKEY_CURRENT_USER\Software\MSOLoad /s c:\system volume information|_REGISTRY_MACHINE_SYSTEM;true;true;true /FP c:\system volume information|_REGISTRY_MACHINE_SOFTWARE;true;true;true /FP bcdedit /enum all /v >C:\boot.txt /c echo list vol > C:\commands.txt | diskpart /s C:\commands.txt > C:\DiskReport.txt /c restorepoints /md5start consrv.dll services.exe explorer.exe lsass.exe svchost.exe wininit.exe winlogon.exe userinit.exe atapi.sys iaStor.sys serial.sys volsnap.sys disk.sys redbook.sys i8042prt.sys afd.sys netbt.sys csc.sys tcpip.sys dfsc.sys hlp.dat str.sys crexv.ocx /md5stop- кликни бутон Run Scan;Изчакай сканирането да приключи. След края на сканирането автоматично ще се отворят двата новосъздадени на работния плот файла: OTL.txt и Extras.txt. Моля, прикачи тези два файла (поотделно или в архив) към следващия си коментар. Цитирай Link to comment Сподели другаде More sharing options...
mst Публикувано Август 6, 2012 Report Share Публикувано Август 6, 2012 TDSSKiller :---------------------- 15:26:24.0312 2684 TDSS rootkit removing tool 2.7.48.0 Jul 24 2012 13:16:3215:26:24.0437 2684 ============================================================15:26:24.0437 2684 Current date / time: 2012/08/06 15:26:24.043715:26:24.0437 2684 SystemInfo:15:26:24.0437 2684 15:26:24.0437 2684 OS Version: 6.1.7601 ServicePack: 1.015:26:24.0437 2684 Product type: Workstation15:26:24.0437 2684 ComputerName: JIMMY15:26:24.0437 2684 UserName: LittleJimmy15:26:24.0437 2684 Windows directory: C:\Windows15:26:24.0437 2684 System windows directory: C:\Windows15:26:24.0437 2684 Processor architecture: Intel x8615:26:24.0437 2684 Number of processors: 215:26:24.0437 2684 Page size: 0x100015:26:24.0437 2684 Boot type: Normal boot15:26:24.0437 2684 ============================================================15:26:25.0076 2684 Drive \Device\Harddisk0\DR0 - Size: 0x950B056000 (596.17 Gb), SectorSize: 0x200, Cylinders: 0x13001, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x0000005015:26:25.0108 2684 ============================================================15:26:25.0108 2684 \Device\Harddisk0\DR0:15:26:25.0108 2684 MBR partitions:15:26:25.0108 2684 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x17B9668915:26:25.0123 2684 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x17B96707, BlocksNum 0x32CC07BA15:26:25.0123 2684 ============================================================15:26:25.0139 2684 C: <-> \Device\Harddisk0\DR0\Partition015:26:25.0154 2684 D: <-> \Device\Harddisk0\DR0\Partition115:26:25.0154 2684 ============================================================15:26:25.0154 2684 Initialize success15:26:25.0154 2684 ============================================================15:27:21.0205 3868 ============================================================15:27:21.0205 3868 Scan started15:27:21.0205 3868 Mode: Manual; SigCheck; TDLFS;15:27:21.0205 3868 ============================================================15:27:22.0563 3868 1394ohci (1b133875b8aa8ac48969bd3458afe9f5) C:\Windows\system32\drivers\1394ohci.sys15:27:22.0703 3868 1394ohci - ok15:27:22.0734 3868 acnzjhyt - ok15:27:22.0781 3868 ACPI (cea80c80bed809aa0da6febc04733349) C:\Windows\system32\drivers\ACPI.sys15:27:22.0781 3868 ACPI - ok15:27:22.0812 3868 AcpiPmi (1efbc664abff416d1d07db115dcb264f) C:\Windows\system32\drivers\acpipmi.sys15:27:22.0890 3868 AcpiPmi - ok15:27:22.0968 3868 AdobeFlashPlayerUpdateSvc (f19c98ad81d2c0e1bbfd8153d2c80ee8) C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe15:27:22.0984 3868 AdobeFlashPlayerUpdateSvc - ok15:27:23.0046 3868 adp94xx (21e785ebd7dc90a06391141aac7892fb) C:\Windows\system32\DRIVERS\adp94xx.sys15:27:23.0062 3868 adp94xx - ok15:27:23.0093 3868 adpahci (0c676bc278d5b59ff5abd57bbe9123f2) C:\Windows\system32\DRIVERS\adpahci.sys15:27:23.0109 3868 adpahci - ok15:27:23.0140 3868 adpu320 (7c7b5ee4b7b822ec85321fe23a27db33) C:\Windows\system32\DRIVERS\adpu320.sys15:27:23.0140 3868 adpu320 - ok15:27:23.0171 3868 AeLookupSvc (8b5eefeec1e6d1a72a06c526628ad161) C:\Windows\System32\aelupsvc.dll15:27:23.0265 3868 AeLookupSvc - ok15:27:23.0327 3868 AFD (9ebbba55060f786f0fcaa3893bfa2806) C:\Windows\system32\drivers\afd.sys15:27:23.0405 3868 AFD - ok15:27:23.0436 3868 agp440 (507812c3054c21cef746b6ee3d04dd6e) C:\Windows\system32\drivers\agp440.sys15:27:23.0436 3868 agp440 - ok15:27:23.0467 3868 aic78xx (8b30250d573a8f6b4bd23195160d8707) C:\Windows\system32\DRIVERS\djsvs.sys15:27:23.0483 3868 aic78xx - ok15:27:23.0499 3868 ALG (18a54e132947cd98fea9accc57f98f13) C:\Windows\System32\alg.exe15:27:23.0561 3868 ALG - ok15:27:23.0608 3868 aliide (0d40bcf52ea90fc7df2aeab6503dea44) C:\Windows\system32\drivers\aliide.sys15:27:23.0608 3868 aliide - ok15:27:23.0670 3868 AMD External Events Utility (ec98ca8298f67926fa50876348534b1d) C:\Windows\system32\atiesrxx.exe15:27:23.0779 3868 AMD External Events Utility - ok15:27:23.0811 3868 amdagp (3c6600a0696e90a463771c7422e23ab5) C:\Windows\system32\drivers\amdagp.sys15:27:23.0811 3868 amdagp - ok15:27:23.0857 3868 amdide (cd5914170297126b6266860198d1d4f0) C:\Windows\system32\drivers\amdide.sys15:27:23.0857 3868 amdide - ok15:27:23.0889 3868 AmdK8 (00dda200d71bac534bf56a9db5dfd666) C:\Windows\system32\DRIVERS\amdk8.sys15:27:23.0951 3868 AmdK8 - ok15:27:24.0294 3868 amdkmdag (65b44179cf184b08e86097bffbf03f24) C:\Windows\system32\DRIVERS\atikmdag.sys15:27:24.0497 3868 amdkmdag - ok15:27:24.0637 3868 amdkmdap (5e1c65524ff1713711ce27879d813384) C:\Windows\system32\DRIVERS\atikmpag.sys15:27:24.0669 3868 amdkmdap - ok15:27:24.0700 3868 AmdPPM (3cbf30f5370fda40dd3e87df38ea53b6) C:\Windows\system32\DRIVERS\amdppm.sys15:27:24.0731 3868 AmdPPM - ok15:27:24.0762 3868 amdsata (d320bf87125326f996d4904fe24300fc) C:\Windows\system32\drivers\amdsata.sys15:27:24.0778 3868 amdsata - ok15:27:24.0793 3868 amdsbs (ea43af0c423ff267355f74e7a53bdaba) C:\Windows\system32\DRIVERS\amdsbs.sys15:27:24.0809 3868 amdsbs - ok15:27:24.0825 3868 amdxata (46387fb17b086d16dea267d5be23a2f2) C:\Windows\system32\drivers\amdxata.sys15:27:24.0825 3868 amdxata - ok15:27:24.0856 3868 AppID (aea177f783e20150ace5383ee368da19) C:\Windows\system32\drivers\appid.sys15:27:24.0949 3868 AppID - ok15:27:24.0965 3868 AppIDSvc (62a9c86cb6085e20db4823e4e97826f5) C:\Windows\System32\appidsvc.dll15:27:24.0996 3868 AppIDSvc - ok15:27:25.0027 3868 Appinfo (fb1959012294d6ad43e5304df65e3c26) C:\Windows\System32\appinfo.dll15:27:25.0059 3868 Appinfo - ok15:27:25.0121 3868 arc (2932004f49677bd84dbc72edb754ffb3) C:\Windows\system32\DRIVERS\arc.sys15:27:25.0121 3868 arc - ok15:27:25.0137 3868 arcsas (5d6f36c46fd283ae1b57bd2e9feb0bc7) C:\Windows\system32\DRIVERS\arcsas.sys15:27:25.0152 3868 arcsas - ok15:27:25.0246 3868 aspnet_state (776acefa0ca9df0faa51a5fb2f435705) C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe15:27:25.0261 3868 aspnet_state - ok15:27:25.0277 3868 AsyncMac (add2ade1c2b285ab8378d2daaf991481) C:\Windows\system32\DRIVERS\asyncmac.sys15:27:25.0339 3868 AsyncMac - ok15:27:25.0386 3868 atapi (338c86357871c167a96ab976519bf59e) C:\Windows\system32\drivers\atapi.sys15:27:25.0402 3868 atapi - ok15:27:25.0464 3868 AtiHDAudioService (7725aecceddf81bd8374c77157e450ea) C:\Windows\system32\drivers\AtihdW73.sys15:27:25.0464 3868 AtiHDAudioService - ok15:27:25.0527 3868 AudioEndpointBuilder (ce3b4e731638d2ef62fcb419be0d39f0) C:\Windows\System32\Audiosrv.dll15:27:25.0558 3868 AudioEndpointBuilder - ok15:27:25.0558 3868 Audiosrv (ce3b4e731638d2ef62fcb419be0d39f0) C:\Windows\System32\Audiosrv.dll15:27:25.0589 3868 Audiosrv - ok15:27:25.0636 3868 AxInstSV (6e30d02aac9cac84f421622e3a2f6178) C:\Windows\System32\AxInstSV.dll15:27:25.0698 3868 AxInstSV - ok15:27:25.0745 3868 b06bdrv (1a231abec60fd316ec54c66715543cec) C:\Windows\system32\DRIVERS\bxvbdx.sys15:27:25.0807 3868 b06bdrv - ok15:27:25.0839 3868 b57nd60x (bd8869eb9cde6bbe4508d869929869ee) C:\Windows\system32\DRIVERS\b57nd60x.sys15:27:25.0870 3868 b57nd60x - ok15:27:25.0917 3868 BDESVC (ee1e9c3bb8228ae423dd38db69128e71) C:\Windows\System32\bdesvc.dll15:27:25.0995 3868 BDESVC - ok15:27:25.0995 3868 Beep (505506526a9d467307b3c393dedaf858) C:\Windows\system32\drivers\Beep.sys15:27:26.0041 3868 Beep - ok15:27:26.0104 3868 BFE (1e2bac209d184bb851e1a187d8a29136) C:\Windows\System32\bfe.dll15:27:26.0135 3868 BFE - ok15:27:26.0244 3868 BingDesktopUpdate (1b63f2b7ca6b5290cc124cdd07520bc9) C:\Program Files\Microsoft\BingDesktop\BingDesktopUpdater.exe15:27:26.0244 3868 BingDesktopUpdate - ok15:27:26.0307 3868 BITS (e585445d5021971fae10393f0f1c3961) C:\Windows\system32\qmgr.dll15:27:26.0338 3868 BITS - ok15:27:26.0385 3868 blbdrive (2287078ed48fcfc477b05b20cf38f36f) C:\Windows\system32\DRIVERS\blbdrive.sys15:27:26.0400 3868 blbdrive - ok15:27:26.0463 3868 BlueletAudio (5ff9a3f3476d726ae62da82d5da94c36) C:\Windows\system32\DRIVERS\blueletaudio.sys15:27:26.0463 3868 BlueletAudio - ok15:27:26.0494 3868 BlueletSCOAudio (bd91afc523fd59f881e1763c38fb772f) C:\Windows\system32\DRIVERS\BlueletSCOAudio.sys15:27:26.0494 3868 BlueletSCOAudio - ok15:27:26.0556 3868 BlueSoleil Hid Service (e460dbc78b9162a569c6ce3b7d31216d) C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe15:27:26.0572 3868 BlueSoleil Hid Service - ok15:27:26.0603 3868 bowser (8f2da3028d5fcbd1a060a3de64cd6506) C:\Windows\system32\DRIVERS\bowser.sys15:27:26.0650 3868 bowser - ok15:27:26.0665 3868 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\DRIVERS\BrFiltLo.sys15:27:26.0728 3868 BrFiltLo - ok15:27:26.0743 3868 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\DRIVERS\BrFiltUp.sys15:27:26.0775 3868 BrFiltUp - ok15:27:26.0806 3868 BridgeMP (77361d72a04f18809d0efb6cceb74d4b) C:\Windows\system32\DRIVERS\bridge.sys15:27:26.0853 3868 BridgeMP - ok15:27:26.0899 3868 Browser (6e11f33d14d020f58d5e02e4d67dfa19) C:\Windows\System32\browser.dll15:27:26.0946 3868 Browser - ok15:27:26.0977 3868 Brserid (845b8ce732e67f3b4133164868c666ea) C:\Windows\System32\Drivers\Brserid.sys15:27:27.0024 3868 Brserid - ok15:27:27.0040 3868 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\System32\Drivers\BrSerWdm.sys15:27:27.0055 3868 BrSerWdm - ok15:27:27.0087 3868 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\System32\Drivers\BrUsbMdm.sys15:27:27.0118 3868 BrUsbMdm - ok15:27:27.0118 3868 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\System32\Drivers\BrUsbSer.sys15:27:27.0149 3868 BrUsbSer - ok15:27:27.0196 3868 BT (c5cce2b26f73f8cf7f3c82159e79aa08) C:\Windows\system32\DRIVERS\btnetdrv.sys15:27:27.0196 3868 BT - ok15:27:27.0211 3868 Btcsrusb (fb2abc6d08d9f8d5ed8e02cbd18b39bb) C:\Windows\system32\Drivers\btcusb.sys15:27:27.0227 3868 Btcsrusb - ok15:27:27.0227 3868 BTHidEnum (ce643d0918123d76a5caab008fca9663) C:\Windows\system32\Drivers\vbtenum.sys15:27:27.0243 3868 BTHidEnum - ok15:27:27.0258 3868 BTHidMgr (dfca4fe4c8aec786b4d0f432eb730f48) C:\Windows\system32\Drivers\BTHidMgr.sys15:27:27.0258 3868 BTHidMgr - ok15:27:27.0274 3868 BTHMODEM (ed3df7c56ce0084eb2034432fc56565a) C:\Windows\system32\DRIVERS\bthmodem.sys15:27:27.0305 3868 BTHMODEM - ok15:27:27.0336 3868 bthserv (1df19c96eef6c29d1c3e1a8678e07190) C:\Windows\system32\bthserv.dll15:27:27.0367 3868 bthserv - ok15:27:27.0461 3868 catchme - ok15:27:27.0492 3868 cdfs (77ea11b065e0a8ab902d78145ca51e10) C:\Windows\system32\DRIVERS\cdfs.sys15:27:27.0523 3868 cdfs - ok15:27:27.0570 3868 cdrom (be167ed0fdb9c1fa1133953c18d5a6c9) C:\Windows\system32\DRIVERS\cdrom.sys15:27:27.0601 3868 cdrom - ok15:27:27.0633 3868 CertPropSvc (319c6b309773d063541d01df8ac6f55f) C:\Windows\System32\certprop.dll15:27:27.0664 3868 CertPropSvc - ok15:27:27.0695 3868 circlass (3fe3fe94a34df6fb06e6418d0f6a0060) C:\Windows\system32\DRIVERS\circlass.sys15:27:27.0695 3868 circlass - ok15:27:27.0742 3868 CLFS (635181e0e9bbf16871bf5380d71db02d) C:\Windows\system32\CLFS.sys15:27:27.0757 3868 CLFS - ok15:27:27.0820 3868 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe15:27:27.0835 3868 clr_optimization_v2.0.50727_32 - ok15:27:27.0898 3868 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe15:27:27.0960 3868 clr_optimization_v4.0.30319_32 - ok15:27:27.0976 3868 CmBatt (dea805815e587dad1dd2c502220b5616) C:\Windows\system32\DRIVERS\CmBatt.sys15:27:28.0007 3868 CmBatt - ok15:27:28.0038 3868 cmdide (c537b1db64d495b9b4717b4d6d9edbf2) C:\Windows\system32\drivers\cmdide.sys15:27:28.0054 3868 cmdide - ok15:27:28.0101 3868 CNG (247b4ce2dab1160cd422d532d5241e1f) C:\Windows\system32\Drivers\cng.sys15:27:28.0132 3868 CNG - ok15:27:28.0147 3868 Compbatt (a6023d3823c37043986713f118a89bee) C:\Windows\system32\DRIVERS\compbatt.sys15:27:28.0147 3868 Compbatt - ok15:27:28.0194 3868 CompositeBus (cbe8c58a8579cfe5fccf809e6f114e89) C:\Windows\system32\drivers\CompositeBus.sys15:27:28.0210 3868 CompositeBus - ok15:27:28.0225 3868 COMSysApp - ok15:27:28.0272 3868 cpuz135 (3411fdf098aa20193eee5ffa36ba43b2) C:\Windows\system32\drivers\cpuz135_x32.sys15:27:28.0288 3868 cpuz135 - ok15:27:28.0303 3868 crcdisk (2c4ebcfc84a9b44f209dff6c6e6c61d1) C:\Windows\system32\DRIVERS\crcdisk.sys15:27:28.0303 3868 crcdisk - ok15:27:28.0366 3868 CryptSvc (06e771aa596b8761107ab57e99f128d7) C:\Windows\system32\cryptsvc.dll15:27:28.0397 3868 CryptSvc - ok15:27:28.0459 3868 DcomLaunch (7660f01d3b38aca1747e397d21d790af) C:\Windows\system32\rpcss.dll15:27:28.0506 3868 DcomLaunch - ok15:27:28.0537 3868 defragsvc (8d6e10a2d9a5eed59562d9b82cf804e1) C:\Windows\System32\defragsvc.dll15:27:28.0569 3868 defragsvc - ok15:27:28.0615 3868 DfsC (f024449c97ec1e464aaffda18593db88) C:\Windows\system32\Drivers\dfsc.sys15:27:28.0647 3868 DfsC - ok15:27:28.0693 3868 Dhcp (e9e01eb683c132f7fa27cd607b8a2b63) C:\Windows\system32\dhcpcore.dll15:27:28.0725 3868 Dhcp - ok15:27:28.0740 3868 discache (1a050b0274bfb3890703d490f330c0da) C:\Windows\system32\drivers\discache.sys15:27:28.0771 3868 discache - ok15:27:28.0818 3868 Disk (565003f326f99802e68ca78f2a68e9ff) C:\Windows\system32\DRIVERS\disk.sys15:27:28.0818 3868 Disk - ok15:27:28.0849 3868 Dnscache (33ef4861f19a0736b11314aad9ae28d0) C:\Windows\System32\dnsrslvr.dll15:27:28.0896 3868 Dnscache - ok15:27:28.0943 3868 dot3svc (366ba8fb4b7bb7435e3b9eacb3843f67) C:\Windows\System32\dot3svc.dll15:27:28.0990 3868 dot3svc - ok15:27:29.0037 3868 Dot4 (b5e479eb83707dd698f66953e922042c) C:\Windows\system32\DRIVERS\Dot4.sys15:27:29.0037 3868 Dot4 - ok15:27:29.0083 3868 Dot4Print (caefd09b6a6249c53a67d55a9a9fcabf) C:\Windows\system32\DRIVERS\Dot4Prt.sys15:27:29.0099 3868 Dot4Print - ok15:27:29.0099 3868 dot4usb (cf491ff38d62143203c065260567e2f7) C:\Windows\system32\DRIVERS\dot4usb.sys15:27:29.0130 3868 dot4usb - ok15:27:29.0177 3868 DPS (8ec04ca86f1d68da9e11952eb85973d6) C:\Windows\system32\dps.dll15:27:29.0208 3868 DPS - ok15:27:29.0255 3868 drmkaud (b918e7c5f9bf77202f89e1a9539f2eb4) C:\Windows\system32\drivers\drmkaud.sys15:27:29.0255 3868 drmkaud - ok15:27:29.0302 3868 dtsoftbus01 (c0c7ceccb6c85994c2bc92d58e52d3f2) C:\Windows\system32\DRIVERS\dtsoftbus01.sys15:27:29.0317 3868 dtsoftbus01 - ok15:27:29.0317 3868 dump_wmimmc - ok15:27:29.0380 3868 DXGKrnl (23f5d28378a160352ba8f817bd8c71cb) C:\Windows\System32\drivers\dxgkrnl.sys15:27:29.0411 3868 DXGKrnl - ok15:27:29.0427 3868 EagleXNt - ok15:27:29.0458 3868 eamonm (04238864710460c5682e260207d06192) C:\Windows\system32\DRIVERS\eamonm.sys15:27:29.0473 3868 eamonm - ok15:27:29.0489 3868 EapHost (8600142fa91c1b96367d3300ad0f3f3a) C:\Windows\System32\eapsvc.dll15:27:29.0536 3868 EapHost - ok15:27:29.0676 3868 ebdrv (024e1b5cac09731e4d868e64dbfb4ab0) C:\Windows\system32\DRIVERS\evbdx.sys15:27:29.0739 3868 ebdrv - ok15:27:29.0832 3868 EFS (81951f51e318aecc2d68559e47485cc4) C:\Windows\System32\lsass.exe15:27:29.0910 3868 EFS - ok15:27:29.0957 3868 ehdrv (deff87f04ab5f6dd5edf2b80853bbe10) C:\Windows\system32\DRIVERS\ehdrv.sys15:27:29.0957 3868 ehdrv - ok15:27:30.0019 3868 ehRecvr (a8c362018efc87beb013ee28f29c0863) C:\Windows\ehome\ehRecvr.exe15:27:30.0097 3868 ehRecvr - ok15:27:30.0129 3868 ehSched (d389bff34f80caede417bf9d1507996a) C:\Windows\ehome\ehsched.exe15:27:30.0175 3868 ehSched - ok15:27:30.0300 3868 ekrn (c7bb95cf9631aa401e4aded1648f6af7) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe15:27:30.0316 3868 ekrn - ok15:27:30.0394 3868 ElbyCDFL (ce37e3d51912e59c80c6d84337c0b4cd) C:\Windows\system32\Drivers\ElbyCDFL.sys15:27:30.0409 3868 ElbyCDFL - ok15:27:30.0441 3868 ElbyCDIO (178cc9403816c082d22a1d47fa1f9c85) C:\Windows\system32\Drivers\ElbyCDIO.sys15:27:30.0456 3868 ElbyCDIO - ok15:27:30.0487 3868 elxstor (0ed67910c8c326796faa00b2bf6d9d3c) C:\Windows\system32\DRIVERS\elxstor.sys15:27:30.0503 3868 elxstor - ok15:27:30.0534 3868 epfwwfpr (f39c91795ebdb9ecbeb5a388ff2841fe) C:\Windows\system32\DRIVERS\epfwwfpr.sys15:27:30.0550 3868 epfwwfpr - ok15:27:30.0565 3868 ErrDev (8fc3208352dd3912c94367a206ab3f11) C:\Windows\system32\drivers\errdev.sys15:27:30.0597 3868 ErrDev - ok15:27:30.0643 3868 EventSystem (f6916efc29d9953d5d0df06882ae8e16) C:\Windows\system32\es.dll15:27:30.0690 3868 EventSystem - ok15:27:30.0721 3868 exfat (2dc9108d74081149cc8b651d3a26207f) C:\Windows\system32\drivers\exfat.sys15:27:30.0737 3868 exfat - ok15:27:30.0768 3868 fastfat (7e0ab74553476622fb6ae36f73d97d35) C:\Windows\system32\drivers\fastfat.sys15:27:30.0784 3868 fastfat - ok15:27:30.0846 3868 Fax (967ea5b213e9984cbe270205df37755b) C:\Windows\system32\fxssvc.exe15:27:30.0909 3868 Fax - ok15:27:30.0940 3868 fdc (e817a017f82df2a1f8cfdbda29388b29) C:\Windows\system32\DRIVERS\fdc.sys15:27:30.0940 3868 fdc - ok15:27:30.0971 3868 fdPHost (f3222c893bd2f5821a0179e5c71e88fb) C:\Windows\system32\fdPHost.dll15:27:31.0002 3868 fdPHost - ok15:27:31.0018 3868 FDResPub (7dbe8cbfe79efbdeb98c9fb08d3a9a5b) C:\Windows\system32\fdrespub.dll15:27:31.0049 3868 FDResPub - ok15:27:31.0080 3868 FileInfo (6cf00369c97f3cf563be99be983d13d8) C:\Windows\system32\drivers\fileinfo.sys15:27:31.0080 3868 FileInfo - ok15:27:31.0096 3868 Filetrace (42c51dc94c91da21cb9196eb64c45db9) C:\Windows\system32\drivers\filetrace.sys15:27:31.0111 3868 Filetrace - ok15:27:31.0127 3868 flpydisk (87907aa70cb3c56600f1c2fb8841579b) C:\Windows\system32\DRIVERS\flpydisk.sys15:27:31.0143 3868 flpydisk - ok15:27:31.0189 3868 FltMgr (7520ec808e0c35e0ee6f841294316653) C:\Windows\system32\drivers\fltmgr.sys15:27:31.0189 3868 FltMgr - ok15:27:31.0252 3868 FontCache (b3a5ec6b6b6673db7e87c2bcdbddc074) C:\Windows\system32\FntCache.dll15:27:31.0314 3868 FontCache - ok15:27:31.0377 3868 FontCache3.0.0.0 (e56f39f6b7fda0ac77a79b0fd3de1a2f) C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe15:27:31.0377 3868 FontCache3.0.0.0 - ok15:27:31.0392 3868 FsDepends (1a16b57943853e598cff37fe2b8cbf1d) C:\Windows\system32\drivers\FsDepends.sys15:27:31.0408 3868 FsDepends - ok15:27:31.0423 3868 Fs_Rec (7dae5ebcc80e45d3253f4923dc424d05) C:\Windows\system32\drivers\Fs_Rec.sys15:27:31.0439 3868 Fs_Rec - ok15:27:31.0486 3868 fvevol (8a73e79089b282100b9393b644cb853b) C:\Windows\system32\DRIVERS\fvevol.sys15:27:31.0486 3868 fvevol - ok15:27:31.0517 3868 gagp30kx (65ee0c7a58b65e74ae05637418153938) C:\Windows\system32\DRIVERS\gagp30kx.sys15:27:31.0533 3868 gagp30kx - ok15:27:31.0548 3868 gdrv - ok15:27:31.0595 3868 gpsvc (e897eaf5ed6ba41e081060c9b447a673) C:\Windows\System32\gpsvc.dll15:27:31.0642 3868 gpsvc - ok15:27:31.0673 3868 hamachi (d30b31375c40309425c21efe75db90bb) C:\Windows\system32\DRIVERS\hamachi.sys15:27:31.0689 3868 hamachi - ok15:27:31.0704 3868 hcw85cir (c44e3c2bab6837db337ddee7544736db) C:\Windows\system32\drivers\hcw85cir.sys15:27:31.0782 3868 hcw85cir - ok15:27:31.0845 3868 HdAudAddService (a5ef29d5315111c80a5c1abad14c8972) C:\Windows\system32\drivers\HdAudio.sys15:27:31.0860 3868 HdAudAddService - ok15:27:31.0891 3868 HDAudBus (9036377b8a6c15dc2eec53e489d159b5) C:\Windows\system32\DRIVERS\HDAudBus.sys15:27:31.0923 3868 HDAudBus - ok15:27:31.0938 3868 HidBatt (1d58a7f3e11a9731d0eaaaa8405acc36) C:\Windows\system32\DRIVERS\HidBatt.sys15:27:31.0969 3868 HidBatt - ok15:27:31.0985 3868 HidBth (89448f40e6df260c206a193a4683ba78) C:\Windows\system32\DRIVERS\hidbth.sys15:27:32.0016 3868 HidBth - ok15:27:32.0032 3868 HidIr (cf50b4cf4a4f229b9f3c08351f99ca5e) C:\Windows\system32\DRIVERS\hidir.sys15:27:32.0047 3868 HidIr - ok15:27:32.0079 3868 hidserv (2bc6f6a1992b3a77f5f41432ca6b3b6b) C:\Windows\System32\hidserv.dll15:27:32.0110 3868 hidserv - ok15:27:32.0157 3868 HidUsb (10c19f8290891af023eaec0832e1eb4d) C:\Windows\system32\DRIVERS\hidusb.sys15:27:32.0172 3868 HidUsb - ok15:27:32.0203 3868 hkmsvc (196b4e3f4cccc24af836ce58facbb699) C:\Windows\system32\kmsvc.dll15:27:32.0219 3868 hkmsvc - ok15:27:32.0250 3868 HomeGroupListener (6658f4404de03d75fe3ba09f7aba6a30) C:\Windows\system32\ListSvc.dll15:27:32.0297 3868 HomeGroupListener - ok15:27:32.0328 3868 HomeGroupProvider (dbc02d918fff1cad628acbe0c0eaa8e8) C:\Windows\system32\provsvc.dll15:27:32.0359 3868 HomeGroupProvider - ok15:27:32.0500 3868 hpqcxs08 (1dae5c46d42b02a6d5862e1482efb390) C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll15:27:32.0515 3868 hpqcxs08 ( UnsignedFile.Multi.Generic ) - warning15:27:32.0515 3868 hpqcxs08 - detected UnsignedFile.Multi.Generic (1)15:27:32.0547 3868 hpqddsvc (99e8eef42fe2f4af29b08c3355dd7685) C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll15:27:32.0547 3868 hpqddsvc ( UnsignedFile.Multi.Generic ) - warning15:27:32.0547 3868 hpqddsvc - detected UnsignedFile.Multi.Generic (1)15:27:32.0578 3868 HpSAMD (295fdc419039090eb8b49ffdbb374549) C:\Windows\system32\drivers\HpSAMD.sys15:27:32.0593 3868 HpSAMD - ok15:27:32.0687 3868 HPSLPSVC - ok15:27:32.0734 3868 HTTP (871917b07a141bff43d76d8844d48106) C:\Windows\system32\drivers\HTTP.sys15:27:32.0765 3868 HTTP - ok15:27:32.0781 3868 hwpolicy (0c4e035c7f105f1299258c90886c64c5) C:\Windows\system32\drivers\hwpolicy.sys15:27:32.0781 3868 hwpolicy - ok15:27:32.0827 3868 i8042prt (f151f0bdc47f4a28b1b20a0818ea36d6) C:\Windows\system32\DRIVERS\i8042prt.sys15:27:32.0843 3868 i8042prt - ok15:27:32.0905 3868 iaStor (db81f413fa4e3f328cad7b5d59ef3f21) C:\Windows\system32\DRIVERS\iaStor.sys15:27:32.0921 3868 iaStor - ok15:27:32.0983 3868 IAStorDataMgrSvc (d41861e56e7552c13674d7f147a02464) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe15:27:32.0983 3868 IAStorDataMgrSvc - ok15:27:33.0046 3868 iaStorV (5cd5f9a5444e6cdcb0ac89bd62d8b76e) C:\Windows\system32\drivers\iaStorV.sys15:27:33.0061 3868 iaStorV - ok15:27:33.0139 3868 idsvc (c521d7eb6497bb1af6afa89e322fb43c) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe15:27:33.0155 3868 idsvc - ok15:27:33.0249 3868 iirsp (4173ff5708f3236cf25195fecd742915) C:\Windows\system32\DRIVERS\iirsp.sys15:27:33.0249 3868 iirsp - ok15:27:33.0311 3868 IKEEXT (f95622f161474511b8d80d6b093aa610) C:\Windows\System32\ikeext.dll15:27:33.0358 3868 IKEEXT - ok15:27:33.0529 3868 IntcAzAudAddService (509888e289b4765f8d92ad57cf37efa7) C:\Windows\system32\drivers\RTKVHDA.sys15:27:33.0607 3868 IntcAzAudAddService - ok15:27:33.0701 3868 intelide (a0f12f2c9ba6c72f3987ce780e77c130) C:\Windows\system32\drivers\intelide.sys15:27:33.0717 3868 intelide - ok15:27:33.0732 3868 intelppm (3b514d27bfc4accb4037bc6685f766e0) C:\Windows\system32\DRIVERS\intelppm.sys15:27:33.0763 3868 intelppm - ok15:27:33.0795 3868 IPBusEnum (acb364b9075a45c0736e5c47be5cae19) C:\Windows\system32\ipbusenum.dll15:27:33.0826 3868 IPBusEnum - ok15:27:33.0841 3868 IpFilterDriver (709d1761d3b19a932ff0238ea6d50200) C:\Windows\system32\DRIVERS\ipfltdrv.sys15:27:33.0873 3868 IpFilterDriver - ok15:27:33.0935 3868 iphlpsvc (4d65a07b795d6674312f879d09aa7663) C:\Windows\System32\iphlpsvc.dll15:27:33.0982 3868 iphlpsvc - ok15:27:33.0997 3868 IPMIDRV (4bd7134618c1d2a27466a099062547bf) C:\Windows\system32\drivers\IPMIDrv.sys15:27:34.0029 3868 IPMIDRV - ok15:27:34.0060 3868 IPNAT (a5fa468d67abcdaa36264e463a7bb0cd) C:\Windows\system32\drivers\ipnat.sys15:27:34.0091 3868 IPNAT - ok15:27:34.0122 3868 IRENUM (42996cff20a3084a56017b7902307e9f) C:\Windows\system32\drivers\irenum.sys15:27:34.0169 3868 IRENUM - ok15:27:34.0200 3868 isapnp (1f32bb6b38f62f7df1a7ab7292638a35) C:\Windows\system32\drivers\isapnp.sys15:27:34.0216 3868 isapnp - ok15:27:34.0231 3868 iScsiPrt (cb7a9abb12b8415bce5d74994c7ba3ae) C:\Windows\system32\drivers\msiscsi.sys15:27:34.0247 3868 iScsiPrt - ok15:27:34.0263 3868 kbdclass (adef52ca1aeae82b50df86b56413107e) C:\Windows\system32\DRIVERS\kbdclass.sys15:27:34.0263 3868 kbdclass - ok15:27:34.0309 3868 kbdhid (9e3ced91863e6ee98c24794d05e27a71) C:\Windows\system32\drivers\kbdhid.sys15:27:34.0325 3868 kbdhid - ok15:27:34.0356 3868 KeyIso (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe15:27:34.0372 3868 KeyIso - ok15:27:34.0387 3868 KSecDD (b7895b4182c0d16f6efadeb8081e8d36) C:\Windows\system32\Drivers\ksecdd.sys15:27:34.0403 3868 KSecDD - ok15:27:34.0434 3868 KSecPkg (d30159ac9237519fbc62c6ec247d2d46) C:\Windows\system32\Drivers\ksecpkg.sys15:27:34.0450 3868 KSecPkg - ok15:27:34.0481 3868 KtmRm (89a7b9cc98d0d80c6f31b91c0a310fcd) C:\Windows\system32\msdtckrm.dll15:27:34.0512 3868 KtmRm - ok15:27:34.0575 3868 LanmanServer (d64af876d53eca3668bb97b51b4e70ab) C:\Windows\System32\srvsvc.dll15:27:34.0606 3868 LanmanServer - ok15:27:34.0637 3868 LanmanWorkstation (58405e4f68ba8e4057c6e914f326aba2) C:\Windows\System32\wkssvc.dll15:27:34.0668 3868 LanmanWorkstation - ok15:27:34.0699 3868 lltdsvc (5700673e13a2117fa3b9020c852c01e2) C:\Windows\System32\lltdsvc.dll15:27:34.0731 3868 lltdsvc - ok15:27:34.0762 3868 lmhosts (55ca01ba19d0006c8f2639b6c045e08b) C:\Windows\System32\lmhsvc.dll15:27:34.0793 3868 lmhosts - ok15:27:34.0887 3868 LMS (0803906d607a9b83184447b75b60ecc2) C:\Program Files\Intel\Intel® Management Engine Components\LMS\LMS.exe15:27:34.0902 3868 LMS - ok15:27:34.0949 3868 LSI_FC (eb119a53ccf2acc000ac71b065b78fef) C:\Windows\system32\DRIVERS\lsi_fc.sys15:27:34.0965 3868 LSI_FC - ok15:27:34.0980 3868 LSI_SAS (8ade1c877256a22e49b75d1cc9161f9c) C:\Windows\system32\DRIVERS\lsi_sas.sys15:27:34.0980 3868 LSI_SAS - ok15:27:34.0996 3868 LSI_SAS2 (dc9dc3d3daa0e276fd2ec262e38b11e9) C:\Windows\system32\DRIVERS\lsi_sas2.sys15:27:34.0996 3868 LSI_SAS2 - ok15:27:35.0011 3868 LSI_SCSI (0a036c7d7cab643a7f07135ac47e0524) C:\Windows\system32\DRIVERS\lsi_scsi.sys15:27:35.0011 3868 LSI_SCSI - ok15:27:35.0043 3868 luafv (6703e366cc18d3b6e534f5cf7df39cee) C:\Windows\system32\drivers\luafv.sys15:27:35.0074 3868 luafv - ok15:27:35.0105 3868 Mcx2Svc (bfb9ee8ee977efe85d1a3105abef6dd1) C:\Windows\system32\Mcx2Svc.dll15:27:35.0121 3868 Mcx2Svc - ok15:27:35.0152 3868 megasas (0fff5b045293002ab38eb1fd1fc2fb74) C:\Windows\system32\DRIVERS\megasas.sys15:27:35.0152 3868 megasas - ok15:27:35.0183 3868 MegaSR (dcbab2920c75f390caf1d29f675d03d6) C:\Windows\system32\DRIVERS\MegaSR.sys15:27:35.0199 3868 MegaSR - ok15:27:35.0230 3868 MEI (d86ac00883b9c98b570e7643aaf8e554) C:\Windows\system32\DRIVERS\HECI.sys15:27:35.0277 3868 MEI - ok15:27:35.0292 3868 MMCSS (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll15:27:35.0339 3868 MMCSS - ok15:27:35.0355 3868 Modem (f001861e5700ee84e2d4e52c712f4964) C:\Windows\system32\drivers\modem.sys15:27:35.0386 3868 Modem - ok15:27:35.0401 3868 monitor (79d10964de86b292320e9dfe02282a23) C:\Windows\system32\DRIVERS\monitor.sys15:27:35.0417 3868 monitor - ok15:27:35.0464 3868 mouclass (fb18cc1d4c2e716b6b903b0ac0cc0609) C:\Windows\system32\DRIVERS\mouclass.sys15:27:35.0479 3868 mouclass - ok15:27:35.0495 3868 mouhid (2c388d2cd01c9042596cf3c8f3c7b24d) C:\Windows\system32\DRIVERS\mouhid.sys15:27:35.0526 3868 mouhid - ok15:27:35.0573 3868 mountmgr (fc8771f45ecccfd89684e38842539b9b) C:\Windows\system32\drivers\mountmgr.sys15:27:35.0573 3868 mountmgr - ok15:27:35.0651 3868 MozillaMaintenance (46297fa8e30a6007f14118fc2b942fbc) C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe15:27:35.0651 3868 MozillaMaintenance - ok15:27:35.0682 3868 mpio (2d699fb6e89ce0d8da14ecc03b3edfe0) C:\Windows\system32\drivers\mpio.sys15:27:35.0698 3868 mpio - ok15:27:35.0713 3868 mpsdrv (ad2723a7b53dd1aacae6ad8c0bfbf4d0) C:\Windows\system32\drivers\mpsdrv.sys15:27:35.0729 3868 mpsdrv - ok15:27:35.0776 3868 MpsSvc (9835584e999d25004e1ee8e5f3e3b881) C:\Windows\system32\mpssvc.dll15:27:35.0823 3868 MpsSvc - ok15:27:35.0854 3868 MRxDAV (ceb46ab7c01c9f825f8cc6babc18166a) C:\Windows\system32\drivers\mrxdav.sys15:27:35.0885 3868 MRxDAV - ok15:27:35.0932 3868 mrxsmb (5d16c921e3671636c0eba3bbaac5fd25) C:\Windows\system32\DRIVERS\mrxsmb.sys15:27:35.0994 3868 mrxsmb - ok15:27:36.0025 3868 mrxsmb10 (6d17a4791aca19328c685d256349fefc) C:\Windows\system32\DRIVERS\mrxsmb10.sys15:27:36.0041 3868 mrxsmb10 - ok15:27:36.0057 3868 mrxsmb20 (b81f204d146000be76651a50670a5e9e) C:\Windows\system32\DRIVERS\mrxsmb20.sys15:27:36.0072 3868 mrxsmb20 - ok15:27:36.0103 3868 msahci (012c5f4e9349e711e11e0f19a8589f0a) C:\Windows\system32\DRIVERS\msahci.sys15:27:36.0119 3868 msahci - ok15:27:36.0135 3868 msdsm (55055f8ad8be27a64c831322a780a228) C:\Windows\system32\drivers\msdsm.sys15:27:36.0150 3868 msdsm - ok15:27:36.0181 3868 MSDTC (e1bce74a3bd9902b72599c0192a07e27) C:\Windows\System32\msdtc.exe15:27:36.0213 3868 MSDTC - ok15:27:36.0244 3868 Msfs (daefb28e3af5a76abcc2c3078c07327f) C:\Windows\system32\drivers\Msfs.sys15:27:36.0259 3868 Msfs - ok15:27:36.0259 3868 mshidkmdf (3e1e5767043c5af9367f0056295e9f84) C:\Windows\System32\drivers\mshidkmdf.sys15:27:36.0291 3868 mshidkmdf - ok15:27:36.0322 3868 msisadrv (0a4e5757ae09fa9622e3158cc1aef114) C:\Windows\system32\drivers\msisadrv.sys15:27:36.0322 3868 msisadrv - ok15:27:36.0353 3868 MSiSCSI (90f7d9e6b6f27e1a707d4a297f077828) C:\Windows\system32\iscsiexe.dll15:27:36.0384 3868 MSiSCSI - ok15:27:36.0384 3868 msiserver - ok15:27:36.0415 3868 MSKSSRV (8c0860d6366aaffb6c5bb9df9448e631) C:\Windows\system32\drivers\MSKSSRV.sys15:27:36.0462 3868 MSKSSRV - ok15:27:36.0478 3868 MSPCLOCK (3ea8b949f963562cedbb549eac0c11ce) C:\Windows\system32\drivers\MSPCLOCK.sys15:27:36.0509 3868 MSPCLOCK - ok15:27:36.0525 3868 MSPQM (f456e973590d663b1073e9c463b40932) C:\Windows\system32\drivers\MSPQM.sys15:27:36.0556 3868 MSPQM - ok15:27:36.0571 3868 MsRPC (0e008fc4819d238c51d7c93e7b41e560) C:\Windows\system32\drivers\MsRPC.sys15:27:36.0587 3868 MsRPC - ok15:27:36.0618 3868 mssmbios (fc6b9ff600cc585ea38b12589bd4e246) C:\Windows\system32\drivers\mssmbios.sys15:27:36.0618 3868 mssmbios - ok15:27:36.0649 3868 MSTEE (b42c6b921f61a6e55159b8be6cd54a36) C:\Windows\system32\drivers\MSTEE.sys15:27:36.0665 3868 MSTEE - ok15:27:36.0696 3868 MTConfig (33599130f44e1f34631cea241de8ac84) C:\Windows\system32\DRIVERS\MTConfig.sys15:27:36.0696 3868 MTConfig - ok15:27:36.0712 3868 Mup (159fad02f64e6381758c990f753bcc80) C:\Windows\system32\Drivers\mup.sys15:27:36.0727 3868 Mup - ok15:27:36.0759 3868 napagent (61d57a5d7c6d9afe10e77dae6e1b445e) C:\Windows\system32\qagentRT.dll15:27:36.0790 3868 napagent - ok15:27:36.0837 3868 NativeWifiP (26384429fcd85d83746f63e798ab1480) C:\Windows\system32\DRIVERS\nwifi.sys15:27:36.0837 3868 NativeWifiP - ok15:27:36.0883 3868 NDIS (e7c54812a2aaf43316eb6930c1ffa108) C:\Windows\system32\drivers\ndis.sys15:27:36.0899 3868 NDIS - ok15:27:36.0915 3868 NdisCap (0e1787aa6c9191d3d319e8bafe86f80c) C:\Windows\system32\DRIVERS\ndiscap.sys15:27:36.0946 3868 NdisCap - ok15:27:36.0977 3868 NdisTapi (e4a8aec125a2e43a9e32afeea7c9c888) C:\Windows\system32\DRIVERS\ndistapi.sys15:27:37.0008 3868 NdisTapi - ok15:27:37.0039 3868 Ndisuio (d8a65dafb3eb41cbb622745676fcd072) C:\Windows\system32\DRIVERS\ndisuio.sys15:27:37.0071 3868 Ndisuio - ok15:27:37.0102 3868 NdisWan (38fbe267e7e6983311179230facb1017) C:\Windows\system32\DRIVERS\ndiswan.sys15:27:37.0133 3868 NdisWan - ok15:27:37.0164 3868 NDProxy (a4bdc541e69674fbff1a8ff00be913f2) C:\Windows\system32\drivers\NDProxy.sys15:27:37.0180 3868 NDProxy - ok15:27:37.0242 3868 Net Driver HPZ12 (510c138564486ff926a3f773205c63d1) C:\Windows\system32\HPZinw12.dll15:27:37.0258 3868 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning15:27:37.0258 3868 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)15:27:37.0289 3868 NetBIOS (80b275b1ce3b0e79909db7b39af74d51) C:\Windows\system32\DRIVERS\netbios.sys15:27:37.0336 3868 NetBIOS - ok15:27:37.0367 3868 NetBT (280122ddcf04b378edd1ad54d71c1e54) C:\Windows\system32\DRIVERS\netbt.sys15:27:37.0398 3868 NetBT - ok15:27:37.0414 3868 Netlogon (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe15:27:37.0429 3868 Netlogon - ok15:27:37.0476 3868 Netman (7cccfca7510684768da22092d1fa4db2) C:\Windows\System32\netman.dll15:27:37.0523 3868 Netman - ok15:27:37.0601 3868 NetMsmqActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe15:27:37.0632 3868 NetMsmqActivator - ok15:27:37.0632 3868 NetPipeActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe15:27:37.0648 3868 NetPipeActivator - ok15:27:37.0679 3868 netprofm (8c338238c16777a802d6a9211eb2ba50) C:\Windows\System32\netprofm.dll15:27:37.0726 3868 netprofm - ok15:27:37.0726 3868 NetTcpActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe15:27:37.0741 3868 NetTcpActivator - ok15:27:37.0741 3868 NetTcpPortSharing (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe15:27:37.0741 3868 NetTcpPortSharing - ok15:27:37.0788 3868 nfrd960 (1d85c4b390b0ee09c7a46b91efb2c097) C:\Windows\system32\DRIVERS\nfrd960.sys15:27:37.0788 3868 nfrd960 - ok15:27:37.0835 3868 NlaSvc (912084381d30d8b89ec4e293053f4710) C:\Windows\System32\nlasvc.dll15:27:37.0866 3868 NlaSvc - ok15:27:37.0882 3868 Npfs (1db262a9f8c087e8153d89bef3d2235f) C:\Windows\system32\drivers\Npfs.sys15:27:37.0913 3868 Npfs - ok15:27:37.0944 3868 NPPTNT2 (9131fe60adfab595c8da53ad6a06aa31) C:\Windows\system32\npptNT2.sys15:27:37.0975 3868 NPPTNT2 ( UnsignedFile.Multi.Generic ) - warning15:27:37.0975 3868 NPPTNT2 - detected UnsignedFile.Multi.Generic (1)15:27:37.0991 3868 nsi (ba387e955e890c8a88306d9b8d06bf17) C:\Windows\system32\nsisvc.dll15:27:38.0007 3868 nsi - ok15:27:38.0022 3868 nsiproxy (e9a0a4d07e53d8fea2bb8387a3293c58) C:\Windows\system32\drivers\nsiproxy.sys15:27:38.0053 3868 nsiproxy - ok15:27:38.0131 3868 Ntfs (81189c3d7763838e55c397759d49007a) C:\Windows\system32\drivers\Ntfs.sys15:27:38.0163 3868 Ntfs - ok15:27:38.0241 3868 Null (f9756a98d69098dca8945d62858a812c) C:\Windows\system32\drivers\Null.sys15:27:38.0272 3868 Null - ok15:27:38.0709 3868 nvlddmkm (3056b19c3fd6d92e02b26f0e4fc9f572) C:\Windows\system32\DRIVERS\nvlddmkm.sys15:27:38.0989 3868 nvlddmkm - ok15:27:39.0099 3868 nvraid (b3e25ee28883877076e0e1ff877d02e0) C:\Windows\system32\drivers\nvraid.sys15:27:39.0114 3868 nvraid - ok15:27:39.0130 3868 nvstor (4380e59a170d88c4f1022eff6719a8a4) C:\Windows\system32\drivers\nvstor.sys15:27:39.0145 3868 nvstor - ok15:27:39.0161 3868 nv_agp (5a0983915f02bae73267cc2a041f717d) C:\Windows\system32\drivers\nv_agp.sys15:27:39.0161 3868 nv_agp - ok15:27:39.0192 3868 ohci1394 (08a70a1f2cdde9bb49b885cb817a66eb) C:\Windows\system32\drivers\ohci1394.sys15:27:39.0223 3868 ohci1394 - ok15:27:39.0270 3868 p2pimsvc (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll15:27:39.0333 3868 p2pimsvc - ok15:27:39.0364 3868 p2psvc (59c3ddd501e39e006dac31bf55150d91) C:\Windows\system32\p2psvc.dll15:27:39.0395 3868 p2psvc - ok15:27:39.0426 3868 Parport (2ea877ed5dd9713c5ac74e8ea7348d14) C:\Windows\system32\DRIVERS\parport.sys15:27:39.0426 3868 Parport - ok15:27:39.0457 3868 partmgr (3f34a1b4c5f6475f320c275e63afce9b) C:\Windows\system32\drivers\partmgr.sys15:27:39.0473 3868 partmgr - ok15:27:39.0473 3868 Parvdm (eb0a59f29c19b86479d36b35983daadc) C:\Windows\system32\DRIVERS\parvdm.sys15:27:39.0489 3868 Parvdm - ok15:27:39.0504 3868 PcaSvc (358ab7956d3160000726574083dfc8a6) C:\Windows\System32\pcasvc.dll15:27:39.0520 3868 PcaSvc - ok15:27:39.0567 3868 pci (673e55c3498eb970088e812ea820aa8f) C:\Windows\system32\drivers\pci.sys15:27:39.0582 3868 pci - ok15:27:39.0598 3868 pciide (afe86f419014db4e5593f69ffe26ce0a) C:\Windows\system32\drivers\pciide.sys15:27:39.0598 3868 pciide - ok15:27:39.0629 3868 pcmcia (f396431b31693e71e8a80687ef523506) C:\Windows\system32\DRIVERS\pcmcia.sys15:27:39.0645 3868 pcmcia - ok15:27:39.0660 3868 pcw (250f6b43d2b613172035c6747aeeb19f) C:\Windows\system32\drivers\pcw.sys15:27:39.0676 3868 pcw - ok15:27:39.0707 3868 PEAUTH (9e0104ba49f4e6973749a02bf41344ed) C:\Windows\system32\drivers\peauth.sys15:27:39.0754 3868 PEAUTH - ok15:27:39.0832 3868 pla (414bba67a3ded1d28437eb66aeb8a720) C:\Windows\system32\pla.dll15:27:39.0879 3868 pla - ok15:27:40.0003 3868 PlugPlay (ec7bc28d207da09e79b3e9faf8b232ca) C:\Windows\system32\umpnpmgr.dll15:27:40.0050 3868 PlugPlay - ok15:27:40.0113 3868 Pml Driver HPZ12 (37e5e8ffbad35605daeec3224ea0e465) C:\Windows\system32\HPZipm12.dll15:27:40.0128 3868 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning15:27:40.0128 3868 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)15:27:40.0159 3868 PnkBstrA (205e1b699fd3f2f9b036eea2ec30c620) C:\Windows\system32\PnkBstrA.exe15:27:40.0175 3868 PnkBstrA - ok15:27:40.0191 3868 PNRPAutoReg (63ff8572611249931eb16bb8eed6afc8) C:\Windows\system32\pnrpauto.dll15:27:40.0222 3868 PNRPAutoReg - ok15:27:40.0253 3868 PNRPsvc (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll15:27:40.0269 3868 PNRPsvc - ok15:27:40.0315 3868 PolicyAgent (53946b69ba0836bd95b03759530c81ec) C:\Windows\System32\ipsecsvc.dll15:27:40.0362 3868 PolicyAgent - ok15:27:40.0378 3868 Power (f87d30e72e03d579a5199ccb3831d6ea) C:\Windows\system32\umpo.dll15:27:40.0425 3868 Power - ok15:27:40.0487 3868 PptpMiniport (631e3e205ad6d86f2aed6a4a8e69f2db) C:\Windows\system32\DRIVERS\raspptp.sys15:27:40.0518 3868 PptpMiniport - ok15:27:40.0549 3868 Processor (85b1e3a0c7585bc4aae6899ec6fcf011) C:\Windows\system32\DRIVERS\processr.sys15:27:40.0565 3868 Processor - ok15:27:40.0596 3868 ProfSvc (cadefac453040e370a1bdff3973be00d) C:\Windows\system32\profsvc.dll15:27:40.0659 3868 ProfSvc - ok15:27:40.0690 3868 ProtectedStorage (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe15:27:40.0690 3868 ProtectedStorage - ok15:27:40.0737 3868 PStrip (bcf8d075fad718fea8ef6e281331a56e) C:\Windows\system32\drivers\pstrip.sys15:27:40.0752 3868 PStrip - ok15:27:40.0799 3868 ql2300 (ab95ecf1f6659a60ddc166d8315b0751) C:\Windows\system32\DRIVERS\ql2300.sys15:27:40.0830 3868 ql2300 - ok15:27:40.0924 3868 ql40xx (b4dd51dd25182244b86737dc51af2270) C:\Windows\system32\DRIVERS\ql40xx.sys15:27:40.0939 3868 ql40xx - ok15:27:40.0971 3868 QWAVE (31ac809e7707eb580b2bdb760390765a) C:\Windows\system32\qwave.dll15:27:40.0986 3868 QWAVE - ok15:27:41.0002 3868 QWAVEdrv (584078ca1b95ca72df2a27c336f9719d) C:\Windows\system32\drivers\qwavedrv.sys15:27:41.0002 3868 QWAVEdrv - ok15:27:41.0017 3868 RasAcd (30a81b53c766d0133bb86d234e5556ab) C:\Windows\system32\DRIVERS\rasacd.sys15:27:41.0049 3868 RasAcd - ok15:27:41.0080 3868 RasAgileVpn (57ec4aef73660166074d8f7f31c0d4fd) C:\Windows\system32\DRIVERS\AgileVpn.sys15:27:41.0111 3868 RasAgileVpn - ok15:27:41.0127 3868 RasAuto (a60f1839849c0c00739787fd5ec03f13) C:\Windows\System32\rasauto.dll15:27:41.0158 3868 RasAuto - ok15:27:41.0189 3868 Rasl2tp (d9f91eafec2815365cbe6d167e4e332a) C:\Windows\system32\DRIVERS\rasl2tp.sys15:27:41.0220 3868 Rasl2tp - ok15:27:41.0267 3868 RasMan (cb9e04dc05eacf5b9a36ca276d475006) C:\Windows\System32\rasmans.dll15:27:41.0283 3868 RasMan - ok15:27:41.0314 3868 RasPppoe (0fe8b15916307a6ac12bfb6a63e45507) C:\Windows\system32\DRIVERS\raspppoe.sys15:27:41.0329 3868 RasPppoe - ok15:27:41.0345 3868 RasSstp (44101f495a83ea6401d886e7fd70096b) C:\Windows\system32\DRIVERS\rassstp.sys15:27:41.0376 3868 RasSstp - ok15:27:41.0423 3868 rdbss (d528bc58a489409ba40334ebf96a311b) C:\Windows\system32\DRIVERS\rdbss.sys15:27:41.0454 3868 rdbss - ok15:27:41.0485 3868 rdpbus (0d8f05481cb76e70e1da06ee9f0da9df) C:\Windows\system32\DRIVERS\rdpbus.sys15:27:41.0501 3868 rdpbus - ok15:27:41.0517 3868 RDPCDD (23dae03f29d253ae74c44f99e515f9a1) C:\Windows\system32\DRIVERS\RDPCDD.sys15:27:41.0548 3868 RDPCDD - ok15:27:41.0579 3868 RDPENCDD (5a53ca1598dd4156d44196d200c94b8a) C:\Windows\system32\drivers\rdpencdd.sys15:27:41.0610 3868 RDPENCDD - ok15:27:41.0626 3868 RDPREFMP (44b0a53cd4f27d50ed461dae0c0b4e1f) C:\Windows\system32\drivers\rdprefmp.sys15:27:41.0657 3868 RDPREFMP - ok15:27:41.0688 3868 RDPWD (f031683e6d1fea157abb2ff260b51e61) C:\Windows\system32\drivers\RDPWD.sys15:27:41.0751 3868 RDPWD - ok15:27:41.0782 3868 rdyboost (518395321dc96fe2c9f0e96ac743b656) C:\Windows\system32\drivers\rdyboost.sys15:27:41.0797 3868 rdyboost - ok15:27:41.0813 3868 RemoteAccess (7b5e1419717fac363a31cc302895217a) C:\Windows\System32\mprdim.dll15:27:41.0844 3868 RemoteAccess - ok15:27:41.0875 3868 RemoteRegistry (cb9a8683f4ef2bf99e123d79950d7935) C:\Windows\system32\regsvc.dll15:27:41.0907 3868 RemoteRegistry - ok15:27:41.0922 3868 ROOTMODEM (564297827d213f52c7a3a2ff749568ca) C:\Windows\system32\Drivers\RootMdm.sys15:27:41.0969 3868 ROOTMODEM - ok15:27:41.0985 3868 RpcEptMapper (78d072f35bc45d9e4e1b61895c152234) C:\Windows\System32\RpcEpMap.dll15:27:42.0016 3868 RpcEptMapper - ok15:27:42.0047 3868 RpcLocator (94d36c0e44677dd26981d2bfeef2a29d) C:\Windows\system32\locator.exe15:27:42.0063 3868 RpcLocator - ok15:27:42.0109 3868 RpcSs (7660f01d3b38aca1747e397d21d790af) C:\Windows\System32\rpcss.dll15:27:42.0141 3868 RpcSs - ok15:27:42.0187 3868 RTL8167 (558684c0bef37c5be04940ee4e607b68) C:\Windows\system32\DRIVERS\Rt86win7.sys15:27:42.0203 3868 RTL8167 - ok15:27:42.0234 3868 SamSs (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe15:27:42.0234 3868 SamSs - ok15:27:42.0312 3868 SANDRA (230fd3749904ca045ea5ec0aa14006e9) C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP1\WNt500x86\Sandra.sys15:27:42.0328 3868 SANDRA - ok15:27:42.0328 3868 SandraAgentSrv (96f6f3e594d780b7e20fdc94504d4d89) C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP1\RpcAgentSrv.exe15:27:42.0359 3868 SandraAgentSrv ( UnsignedFile.Multi.Generic ) - warning15:27:42.0359 3868 SandraAgentSrv - detected UnsignedFile.Multi.Generic (1)15:27:42.0406 3868 sbp2port (05d860da1040f111503ac416ccef2bca) C:\Windows\system32\drivers\sbp2port.sys15:27:42.0406 3868 sbp2port - ok15:27:42.0437 3868 SCardSvr (8fc518ffe9519c2631d37515a68009c4) C:\Windows\System32\SCardSvr.dll15:27:42.0453 3868 SCardSvr - ok15:27:42.0484 3868 scfilter (0693b5ec673e34dc147e195779a4dcf6) C:\Windows\system32\DRIVERS\scfilter.sys15:27:42.0531 3868 scfilter - ok15:27:42.0577 3868 Schedule (a04bb13f8a72f8b6e8b4071723e4e336) C:\Windows\system32\schedsvc.dll15:27:42.0624 3868 Schedule - ok15:27:42.0655 3868 SCPolicySvc (319c6b309773d063541d01df8ac6f55f) C:\Windows\System32\certprop.dll15:27:42.0671 3868 SCPolicySvc - ok15:27:42.0687 3868 SDRSVC (08236c4bce5edd0a0318a438af28e0f7) C:\Windows\System32\SDRSVC.dll15:27:42.0749 3868 SDRSVC - ok15:27:42.0765 3868 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys15:27:42.0780 3868 secdrv - ok15:27:42.0796 3868 seclogon (a59b3a4442c52060cc7a85293aa3546f) C:\Windows\system32\seclogon.dll15:27:42.0843 3868 seclogon - ok15:27:42.0858 3868 SENS (dcb7fcdcc97f87360f75d77425b81737) C:\Windows\system32\sens.dll15:27:42.0874 3868 SENS - ok15:27:42.0905 3868 SensrSvc (50087fe1ee447009c9cc2997b90de53f) C:\Windows\system32\sensrsvc.dll15:27:42.0967 3868 SensrSvc - ok15:27:42.0983 3868 Serenum (9ad8b8b515e3df6acd4212ef465de2d1) C:\Windows\system32\DRIVERS\serenum.sys15:27:43.0014 3868 Serenum - ok15:27:43.0045 3868 Serial (5fb7fcea0490d821f26f39cc5ea3d1e2) C:\Windows\system32\DRIVERS\serial.sys15:27:43.0061 3868 Serial - ok15:27:43.0108 3868 sermouse (79bffb520327ff916a582dfea17aa813) C:\Windows\system32\DRIVERS\sermouse.sys15:27:43.0108 3868 sermouse - ok15:27:43.0155 3868 SessionEnv (4ae380f39a0032eab7dd953030b26d28) C:\Windows\system32\sessenv.dll15:27:43.0186 3868 SessionEnv - ok15:27:43.0217 3868 sffdisk (9f976e1eb233df46fce808d9dea3eb9c) C:\Windows\system32\drivers\sffdisk.sys15:27:43.0248 3868 sffdisk - ok15:27:43.0264 3868 sffp_mmc (932a68ee27833cfd57c1639d375f2731) C:\Windows\system32\drivers\sffp_mmc.sys15:27:43.0295 3868 sffp_mmc - ok15:27:43.0311 3868 sffp_sd (6d4ccaedc018f1cf52866bbbaa235982) C:\Windows\system32\drivers\sffp_sd.sys15:27:43.0326 3868 sffp_sd - ok15:27:43.0342 3868 sfloppy (db96666cc8312ebc45032f30b007a547) C:\Windows\system32\DRIVERS\sfloppy.sys15:27:43.0357 3868 sfloppy - ok15:27:43.0420 3868 SharedAccess (d1a079a0de2ea524513b6930c24527a2) C:\Windows\System32\ipnathlp.dll15:27:43.0451 3868 SharedAccess - ok15:27:43.0498 3868 ShellHWDetection (414da952a35bf5d50192e28263b40577) C:\Windows\System32\shsvcs.dll15:27:43.0529 3868 ShellHWDetection - ok15:27:43.0591 3868 sisagp (2565cac0dc9fe0371bdce60832582b2e) C:\Windows\system32\drivers\sisagp.sys15:27:43.0591 3868 sisagp - ok15:27:43.0623 3868 SiSRaid2 (a9f0486851becb6dda1d89d381e71055) C:\Windows\system32\DRIVERS\SiSRaid2.sys15:27:43.0638 3868 SiSRaid2 - ok15:27:43.0638 3868 SiSRaid4 (3727097b55738e2f554972c3be5bc1aa) C:\Windows\system32\DRIVERS\sisraid4.sys15:27:43.0654 3868 SiSRaid4 - ok15:27:43.0669 3868 Smb (3e21c083b8a01cb70ba1f09303010fce) C:\Windows\system32\DRIVERS\smb.sys15:27:43.0685 3868 Smb - ok15:27:43.0716 3868 SNMPTRAP (6a984831644eca1a33ffeae4126f4f37) C:\Windows\System32\snmptrap.exe15:27:43.0732 3868 SNMPTRAP - ok15:27:43.0732 3868 spldr (95cf1ae7527fb70f7816563cbc09d942) C:\Windows\system32\drivers\spldr.sys15:27:43.0747 3868 spldr - ok15:27:43.0794 3868 Spooler (866a43013535dc8587c258e43579c764) C:\Windows\System32\spoolsv.exe15:27:43.0841 3868 Spooler - ok15:27:43.0966 3868 sppsvc (cf87a1de791347e75b98885214ced2b8) C:\Windows\system32\sppsvc.exe15:27:44.0044 3868 sppsvc - ok15:27:44.0153 3868 sppuinotify (b0180b20b065d89232a78a40fe56eaa6) C:\Windows\system32\sppuinotify.dll15:27:44.0184 3868 sppuinotify - ok15:27:44.0262 3868 sptd (8ea0fd60a5b047e0c734d51aace531c9) C:\Windows\System32\Drivers\sptd.sys15:27:44.0262 3868 Suspicious file (NoAccess): C:\Windows\System32\Drivers\sptd.sys. md5: 8ea0fd60a5b047e0c734d51aace531c915:27:44.0262 3868 sptd ( LockedFile.Multi.Generic ) - warning15:27:44.0262 3868 sptd - detected LockedFile.Multi.Generic (1)15:27:44.0293 3868 srv (e4c2764065d66ea1d2d3ebc28fe99c46) C:\Windows\system32\DRIVERS\srv.sys15:27:44.0356 3868 srv - ok15:27:44.0387 3868 srv2 (03f0545bd8d4c77fa0ae1ceedfcc71ab) C:\Windows\system32\DRIVERS\srv2.sys15:27:44.0403 3868 srv2 - ok15:27:44.0434 3868 srvnet (be6bd660caa6f291ae06a718a4fa8abc) C:\Windows\system32\DRIVERS\srvnet.sys15:27:44.0449 3868 srvnet - ok15:27:44.0481 3868 SSDPSRV (d887c9fd02ac9fa880f6e5027a43e118) C:\Windows\System32\ssdpsrv.dll15:27:44.0512 3868 SSDPSRV - ok15:27:44.0512 3868 SstpSvc (d318f23be45d5e3a107469eb64815b50) C:\Windows\system32\sstpsvc.dll15:27:44.0559 3868 SstpSvc - ok15:27:44.0637 3868 Start BT in service (9d1a8732718438dc8c472d4d7762de5f) C:\Program Files\IVT Corporation\BlueSoleil\StartSkysolSvc.exe15:27:44.0652 3868 Start BT in service - ok15:27:44.0683 3868 Steam Client Service - ok15:27:44.0761 3868 Stereo Service (8d51ca9e6d36bf3be88abe4f4fead8ec) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe15:27:44.0777 3868 Stereo Service - ok15:27:44.0777 3868 stexstor (db32d325c192b801df274bfd12a7e72b) C:\Windows\system32\DRIVERS\stexstor.sys15:27:44.0793 3868 stexstor - ok15:27:44.0839 3868 StiSvc (e1fb3706030fb4578a0d72c2fc3689e4) C:\Windows\System32\wiaservc.dll15:27:44.0886 3868 StiSvc - ok15:27:44.0902 3868 swenum (e58c78a848add9610a4db6d214af5224) C:\Windows\system32\drivers\swenum.sys15:27:44.0917 3868 swenum - ok15:27:44.0949 3868 swprv (a28bd92df340e57b024ba433165d34d7) C:\Windows\System32\swprv.dll15:27:44.0980 3868 swprv - ok15:27:45.0058 3868 SysMain (36650d618ca34c9d357dfd3d89b2c56f) C:\Windows\system32\sysmain.dll15:27:45.0089 3868 SysMain - ok15:27:45.0105 3868 TabletInputService (763fecdc3d30c815fe72dd57936c6cd1) C:\Windows\System32\TabSvc.dll15:27:45.0120 3868 TabletInputService - ok15:27:45.0167 3868 TapiSrv (613bf4820361543956909043a265c6ac) C:\Windows\System32\tapisrv.dll15:27:45.0198 3868 TapiSrv - ok15:27:45.0229 3868 TBS (b799d9fdb26111737f58288d8dc172d9) C:\Windows\System32\tbssvc.dll15:27:45.0276 3868 TBS - ok15:27:45.0370 3868 Tcpip (7fa2e0f8b072bd04b77b421480b6cc22) C:\Windows\system32\drivers\tcpip.sys15:27:45.0417 3868 Tcpip - ok15:27:45.0526 3868 TCPIP6 (7fa2e0f8b072bd04b77b421480b6cc22) C:\Windows\system32\DRIVERS\tcpip.sys15:27:45.0541 3868 TCPIP6 - ok15:27:45.0588 3868 tcpipreg (cca24162e055c3714ce5a88b100c64ed) C:\Windows\system32\drivers\tcpipreg.sys15:27:45.0635 3868 tcpipreg - ok15:27:45.0651 3868 TDPIPE (1cb91b2bd8f6dd367dfc2ef26fd751b2) C:\Windows\system32\drivers\tdpipe.sys15:27:45.0729 3868 TDPIPE - ok15:27:45.0744 3868 TDTCP (2c2c5afe7ee4f620d69c23c0617651a8) C:\Windows\system32\drivers\tdtcp.sys15:27:45.0775 3868 TDTCP - ok15:27:45.0807 3868 tdx (b459575348c20e8121d6039da063c704) C:\Windows\system32\DRIVERS\tdx.sys15:27:45.0838 3868 tdx - ok15:27:45.0869 3868 TermDD (04dbf4b01ea4bf25a9a3e84affac9b20) C:\Windows\system32\drivers\termdd.sys15:27:45.0869 3868 TermDD - ok15:27:45.0916 3868 TermService (382c804c92811be57829d8e550a900e2) C:\Windows\System32\termsrv.dll15:27:45.0947 3868 TermService - ok15:27:45.0978 3868 Themes (42fb6afd6b79d9fe07381609172e7ca4) C:\Windows\system32\themeservice.dll15:27:46.0009 3868 Themes - ok15:27:46.0025 3868 THREADORDER (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll15:27:46.0056 3868 THREADORDER - ok15:27:46.0072 3868 TrkWks (4792c0378db99a9bc2ae2de6cfff0c3a) C:\Windows\System32\trkwks.dll15:27:46.0103 3868 TrkWks - ok15:27:46.0165 3868 TrustedInstaller (2c49b175aee1d4364b91b531417fe583) C:\Windows\servicing\TrustedInstaller.exe15:27:46.0181 3868 TrustedInstaller - ok15:27:46.0197 3868 tssecsrv (254bb140eee3c59d6114c1a86b636877) C:\Windows\system32\DRIVERS\tssecsrv.sys15:27:46.0212 3868 tssecsrv - ok15:27:46.0243 3868 TsUsbFlt (fd1d6c73e6333be727cbcc6054247654) C:\Windows\system32\drivers\tsusbflt.sys15:27:46.0306 3868 TsUsbFlt - ok15:27:46.0353 3868 tunnel (b2fa25d9b17a68bb93d58b0556e8c90d) C:\Windows\system32\DRIVERS\tunnel.sys15:27:46.0384 3868 tunnel - ok15:27:46.0399 3868 uagp35 (750fbcb269f4d7dd2e420c56b795db6d) C:\Windows\system32\DRIVERS\uagp35.sys15:27:46.0415 3868 uagp35 - ok15:27:46.0446 3868 udfs (ee43346c7e4b5e63e54f927babbb32ff) C:\Windows\system32\DRIVERS\udfs.sys15:27:46.0477 3868 udfs - ok15:27:46.0509 3868 UI0Detect (8344fd4fce927880aa1aa7681d4927e5) C:\Windows\system32\UI0Detect.exe15:27:46.0540 3868 UI0Detect - ok15:27:46.0587 3868 uliagpkx (44e8048ace47befbfdc2e9be4cbc8880) C:\Windows\system32\drivers\uliagpkx.sys15:27:46.0587 3868 uliagpkx - ok15:27:46.0602 3868 umbus (d295bed4b898f0fd999fcfa9b32b071b) C:\Windows\system32\drivers\umbus.sys15:27:46.0618 3868 umbus - ok15:27:46.0633 3868 UmPass (7550ad0c6998ba1cb4843e920ee0feac) C:\Windows\system32\DRIVERS\umpass.sys15:27:46.0665 3868 UmPass - ok15:27:46.0711 3868 unisofthid (52acec2902036b5f7031961824e34910) C:\Windows\system32\DRIVERS\unisofthid.sys15:27:46.0758 3868 unisofthid ( UnsignedFile.Multi.Generic ) - warning15:27:46.0758 3868 unisofthid - detected UnsignedFile.Multi.Generic (1)15:27:46.0930 3868 UNS (eb79c6c91a99930015ef29ae7fa802d1) C:\Program Files\Intel\Intel® Management Engine Components\UNS\UNS.exe15:27:46.0977 3868 UNS - ok15:27:47.0070 3868 upnphost (833fbb672460efce8011d262175fad33) C:\Windows\System32\upnphost.dll15:27:47.0101 3868 upnphost - ok15:27:47.0133 3868 usbccgp (bd9c55d7023c5de374507acc7a14e2ac) C:\Windows\system32\DRIVERS\usbccgp.sys15:27:47.0179 3868 usbccgp - ok15:27:47.0211 3868 usbcir (04ec7cec62ec3b6d9354eee93327fc82) C:\Windows\system32\drivers\usbcir.sys15:27:47.0226 3868 usbcir - ok15:27:47.0242 3868 usbehci (f92de757e4b7ce9c07c5e65423f3ae3b) C:\Windows\system32\DRIVERS\usbehci.sys15:27:47.0242 3868 usbehci - ok15:27:47.0273 3868 usbhub (8dc94aec6a7e644a06135ae7506dc2e9) C:\Windows\system32\DRIVERS\usbhub.sys15:27:47.0304 3868 usbhub - ok15:27:47.0320 3868 usbohci (e185d44fac515a18d9deddc23c2cdf44) C:\Windows\system32\DRIVERS\usbohci.sys15:27:47.0351 3868 usbohci - ok15:27:47.0382 3868 usbprint (797d862fe0875e75c7cc4c1ad7b30252) C:\Windows\system32\DRIVERS\usbprint.sys15:27:47.0382 3868 usbprint - ok15:27:47.0398 3868 usbscan (576096ccbc07e7c4ea4f5e6686d6888f) C:\Windows\system32\DRIVERS\usbscan.sys15:27:47.0429 3868 usbscan - ok15:27:47.0460 3868 USBSTOR (f991ab9cc6b908db552166768176896a) C:\Windows\system32\DRIVERS\USBSTOR.SYS15:27:47.0538 3868 USBSTOR - ok15:27:47.0569 3868 usbuhci (68df884cf41cdada664beb01daf67e3d) C:\Windows\system32\drivers\usbuhci.sys15:27:47.0569 3868 usbuhci - ok15:27:47.0601 3868 UxSms (081e6e1c91aec36758902a9f727cd23c) C:\Windows\System32\uxsms.dll15:27:47.0616 3868 UxSms - ok15:27:47.0647 3868 VaultSvc (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe15:27:47.0647 3868 VaultSvc - ok15:27:47.0679 3868 VComm (51750b0539986186c6931fc40d171521) C:\Windows\system32\DRIVERS\VComm.sys15:27:47.0679 3868 VComm - ok15:27:47.0694 3868 VcommMgr (6d9c891c0a761afed1f3609c2e56f2b9) C:\Windows\system32\Drivers\VcommMgr.sys15:27:47.0710 3868 VcommMgr - ok15:27:47.0757 3868 vdrvroot (a059c4c3edb09e07d21a8e5c0aabd3cb) C:\Windows\system32\drivers\vdrvroot.sys15:27:47.0772 3868 vdrvroot - ok15:27:47.0819 3868 vds (c3cd30495687c2a2f66a65ca6fd89be9) C:\Windows\System32\vds.exe15:27:47.0850 3868 vds - ok15:27:47.0881 3868 vga (17c408214ea61696cec9c66e388b14f3) C:\Windows\system32\DRIVERS\vgapnp.sys15:27:47.0897 3868 vga - ok15:27:47.0913 3868 VgaSave (8e38096ad5c8570a6f1570a61e251561) C:\Windows\System32\drivers\vga.sys15:27:47.0944 3868 VgaSave - ok15:27:47.0959 3868 vhdmp (5461686cca2fda57b024547733ab42e3) C:\Windows\system32\drivers\vhdmp.sys15:27:47.0975 3868 vhdmp - ok15:27:48.0006 3868 viaagp (c829317a37b4bea8f39735d4b076e923) C:\Windows\system32\drivers\viaagp.sys15:27:48.0006 3868 viaagp - ok15:27:48.0022 3868 ViaC7 (e02f079a6aa107f06b16549c6e5c7b74) C:\Windows\system32\DRIVERS\viac7.sys15:27:48.0037 3868 ViaC7 - ok15:27:48.0069 3868 viaide (e43574f6a56a0ee11809b48c09e4fd3c) C:\Windows\system32\drivers\viaide.sys15:27:48.0069 3868 viaide - ok15:27:48.0084 3868 volmgr (4c63e00f2f4b5f86ab48a58cd990f212) C:\Windows\system32\drivers\volmgr.sys15:27:48.0100 3868 volmgr - ok15:27:48.0131 3868 volmgrx (b5bb72067ddddbbfb04b2f89ff8c3c87) C:\Windows\system32\drivers\volmgrx.sys15:27:48.0147 3868 volmgrx - ok15:27:48.0178 3868 volsnap (f497f67932c6fa693d7de2780631cfe7) C:\Windows\system32\drivers\volsnap.sys15:27:48.0193 3868 volsnap - ok15:27:48.0225 3868 vproiah (42f5fc978f64faab5ac7160eb178f29b) C:\Windows\system32\DRIVERS\vproiah.sys15:27:48.0240 3868 vproiah ( UnsignedFile.Multi.Generic ) - warning15:27:48.0240 3868 vproiah - detected UnsignedFile.Multi.Generic (1)15:27:48.0240 3868 vsmraid (9dfa0cc2f8855a04816729651175b631) C:\Windows\system32\DRIVERS\vsmraid.sys15:27:48.0256 3868 vsmraid - ok15:27:48.0334 3868 VSS (209a3b1901b83aeb8527ed211cce9e4c) C:\Windows\system32\vssvc.exe15:27:48.0381 3868 VSS - ok15:27:48.0396 3868 vwifibus (90567b1e658001e79d7c8bbd3dde5aa6) C:\Windows\System32\drivers\vwifibus.sys15:27:48.0427 3868 vwifibus - ok15:27:48.0474 3868 W32Time (55187fd710e27d5095d10a472c8baf1c) C:\Windows\system32\w32time.dll15:27:48.0505 3868 W32Time - ok15:27:48.0521 3868 WacomPen (de3721e89c653aa281428c8a69745d90) C:\Windows\system32\DRIVERS\wacompen.sys15:27:48.0552 3868 WacomPen - ok15:27:48.0599 3868 WANARP (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys15:27:48.0630 3868 WANARP - ok15:27:48.0630 3868 Wanarpv6 (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys15:27:48.0661 3868 Wanarpv6 - ok15:27:48.0739 3868 WatAdminSvc (353a04c273ec58475d8633e75ccd5604) C:\Windows\system32\Wat\WatAdminSvc.exe15:27:48.0786 3868 WatAdminSvc - ok15:27:48.0942 3868 wbengine (691e3285e53dca558e1a84667f13e15a) C:\Windows\system32\wbengine.exe15:27:48.0989 3868 wbengine - ok15:27:49.0020 3868 WbioSrvc (9614b5d29dc76ac3c29f6d2d3aa70e67) C:\Windows\System32\wbiosrvc.dll15:27:49.0051 3868 WbioSrvc - ok15:27:49.0083 3868 wcncsvc (34eee0dfaadb4f691d6d5308a51315dc) C:\Windows\System32\wcncsvc.dll15:27:49.0098 3868 wcncsvc - ok15:27:49.0114 3868 WcsPlugInService (5d930b6357a6d2af4d7653bdabbf352f) C:\Windows\System32\WcsPlugInService.dll15:27:49.0161 3868 WcsPlugInService - ok15:27:49.0192 3868 Wd (1112a9badacb47b7c0bb0392e3158dff) C:\Windows\system32\DRIVERS\wd.sys15:27:49.0207 3868 Wd - ok15:27:49.0239 3868 Wdf01000 (9950e3d0f08141c7e89e64456ae7dc73) C:\Windows\system32\drivers\Wdf01000.sys15:27:49.0254 3868 Wdf01000 - ok15:27:49.0270 3868 WdiServiceHost (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll15:27:49.0332 3868 WdiServiceHost - ok15:27:49.0332 3868 WdiSystemHost (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll15:27:49.0332 3868 WdiSystemHost - ok15:27:49.0379 3868 WebClient (a9d880f97530d5b8fee278923349929d) C:\Windows\System32\webclnt.dll15:27:49.0410 3868 WebClient - ok15:27:49.0457 3868 Wecsvc (760f0afe937a77cff27153206534f275) C:\Windows\system32\wecsvc.dll15:27:49.0473 3868 Wecsvc - ok15:27:49.0535 3868 WeGameClientService (a8e0e75f8411ee0fce92f2ce65bdeeec) C:\Program Files\WeGame\WGClientService.exe15:27:49.0551 3868 WeGameClientService - ok15:27:49.0551 3868 wercplsupport (ac804569bb2364fb6017370258a4091b) C:\Windows\System32\wercplsupport.dll15:27:49.0582 3868 wercplsupport - ok15:27:49.0597 3868 WerSvc (08e420d873e4fd85241ee2421b02c4a4) C:\Windows\System32\WerSvc.dll15:27:49.0629 3868 WerSvc - ok15:27:49.0660 3868 WfpLwf (8b9a943f3b53861f2bfaf6c186168f79) C:\Windows\system32\DRIVERS\wfplwf.sys15:27:49.0691 3868 WfpLwf - ok15:27:49.0722 3868 WIMMount (5cf95b35e59e2a38023836fff31be64c) C:\Windows\system32\drivers\wimmount.sys15:27:49.0722 3868 WIMMount - ok15:27:49.0785 3868 WinDefend (3fae8f94296001c32eab62cd7d82e0fd) C:\Program Files\Windows Defender\mpsvc.dll15:27:49.0816 3868 WinDefend - ok15:27:49.0816 3868 WinHttpAutoProxySvc - ok15:27:49.0894 3868 Winmgmt (f62e510b6ad4c21eb9fe8668ed251826) C:\Windows\system32\wbem\WMIsvc.dll15:27:49.0909 3868 Winmgmt - ok15:27:49.0987 3868 WinRM (1b91cd34ea3a90ab6a4ef0550174f4cc) C:\Windows\system32\WsmSvc.dll15:27:50.0019 3868 WinRM - ok15:27:50.0081 3868 WinUsb (a67e5f9a400f3bd1be3d80613b45f708) C:\Windows\system32\DRIVERS\WinUsb.sys15:27:50.0097 3868 WinUsb - ok15:27:50.0159 3868 Wlansvc (16935c98ff639d185086a3529b1f2067) C:\Windows\System32\wlansvc.dll15:27:50.0175 3868 Wlansvc - ok15:27:50.0315 3868 wlidsvc (5144ae67d60ec653f97ddf3feed29e77) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE15:27:50.0346 3868 wlidsvc - ok15:27:50.0440 3868 WmiAcpi (0217679b8fca58714c3bf2726d2ca84e) C:\Windows\system32\drivers\wmiacpi.sys15:27:50.0455 3868 WmiAcpi - ok15:27:50.0518 3868 wmiApSrv (6eb6b66517b048d87dc1856ddf1f4c3f) C:\Windows\system32\wbem\WmiApSrv.exe15:27:50.0533 3868 wmiApSrv - ok15:27:50.0643 3868 WMPNetworkSvc (3b40d3a61aa8c21b88ae57c58ab3122e) C:\Program Files\Windows Media Player\wmpnetwk.exe15:27:50.0689 3868 WMPNetworkSvc - ok15:27:50.0783 3868 WPCSvc (a2f0ec770a92f2b3f9de6d518e11409c) C:\Windows\System32\wpcsvc.dll15:27:50.0830 3868 WPCSvc - ok15:27:50.0861 3868 WPDBusEnum (aa53356d60af47eacc85bc617a4f3f66) C:\Windows\system32\wpdbusenum.dll15:27:50.0908 3868 WPDBusEnum - ok15:27:50.0939 3868 ws2ifsl (6db3276587b853bf886b69528fdb048c) C:\Windows\system32\drivers\ws2ifsl.sys15:27:50.0986 3868 ws2ifsl - ok15:27:51.0001 3868 wscsvc (6f5d49efe0e7164e03ae773a3fe25340) C:\Windows\system32\wscsvc.dll15:27:51.0017 3868 wscsvc - ok15:27:51.0017 3868 WSearch - ok15:27:51.0111 3868 wuauserv (fc3ec24fce372c89423e015a2ac1a31e) C:\Windows\system32\wuaueng.dll15:27:51.0157 3868 wuauserv - ok15:27:51.0267 3868 WudfPf (e714a1c0354636837e20ccbf00888ee7) C:\Windows\system32\drivers\WudfPf.sys15:27:51.0313 3868 WudfPf - ok15:27:51.0360 3868 WUDFRd (1023ee888c9b47178c5293ed5336ab69) C:\Windows\system32\DRIVERS\WUDFRd.sys15:27:51.0391 3868 WUDFRd - ok15:27:51.0423 3868 wudfsvc (8d1e1e529a2c9e9b6a85b55a345f7629) C:\Windows\System32\WUDFSvc.dll15:27:51.0469 3868 wudfsvc - ok15:27:51.0501 3868 WwanSvc (ff2d745b560f7c71b31f30f4d49f73d2) C:\Windows\System32\wwansvc.dll15:27:51.0516 3868 WwanSvc - ok15:27:51.0563 3868 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR015:27:51.0610 3868 \Device\Harddisk0\DR0 ( Rootkit.Boot.Sinowal.b ) - infected15:27:51.0610 3868 \Device\Harddisk0\DR0 - detected Rootkit.Boot.Sinowal.b (0)15:27:51.0610 3868 \Device\Harddisk0\DR0 ( TDSS File System ) - warning15:27:51.0610 3868 \Device\Harddisk0\DR0 - detected TDSS File System (1)15:27:51.0610 3868 Boot (0x1200) (70896d25c8d8fb92420b712e32369125) \Device\Harddisk0\DR0\Partition015:27:51.0610 3868 \Device\Harddisk0\DR0\Partition0 - ok15:27:51.0641 3868 Boot (0x1200) (216c387358dc145099daa82683ffef24) \Device\Harddisk0\DR0\Partition115:27:51.0641 3868 \Device\Harddisk0\DR0\Partition1 - ok15:27:51.0641 3868 ============================================================15:27:51.0641 3868 Scan finished15:27:51.0641 3868 ============================================================15:27:51.0641 4416 Detected object count: 1115:27:51.0641 4416 Actual detected object count: 1115:29:31.0856 4416 hpqcxs08 ( UnsignedFile.Multi.Generic ) - skipped by user15:29:31.0856 4416 hpqcxs08 ( UnsignedFile.Multi.Generic ) - User select action: Skip15:29:31.0856 4416 hpqddsvc ( UnsignedFile.Multi.Generic ) - skipped by user15:29:31.0856 4416 hpqddsvc ( UnsignedFile.Multi.Generic ) - User select action: Skip15:29:31.0856 4416 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user15:29:31.0856 4416 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip15:29:31.0856 4416 NPPTNT2 ( UnsignedFile.Multi.Generic ) - skipped by user15:29:31.0856 4416 NPPTNT2 ( UnsignedFile.Multi.Generic ) - User select action: Skip15:29:31.0856 4416 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user15:29:31.0856 4416 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip15:29:31.0856 4416 SandraAgentSrv ( UnsignedFile.Multi.Generic ) - skipped by user15:29:31.0856 4416 SandraAgentSrv ( UnsignedFile.Multi.Generic ) - User select action: Skip15:29:31.0856 4416 sptd ( LockedFile.Multi.Generic ) - skipped by user15:29:31.0856 4416 sptd ( LockedFile.Multi.Generic ) - User select action: Skip15:29:31.0856 4416 unisofthid ( UnsignedFile.Multi.Generic ) - skipped by user15:29:31.0856 4416 unisofthid ( UnsignedFile.Multi.Generic ) - User select action: Skip15:29:31.0856 4416 vproiah ( UnsignedFile.Multi.Generic ) - skipped by user15:29:31.0856 4416 vproiah ( UnsignedFile.Multi.Generic ) - User select action: Skip15:29:32.0090 4416 \Device\Harddisk0\DR0\# - copied to quarantine15:29:32.0090 4416 \Device\Harddisk0\DR0 - copied to quarantine15:29:32.0136 4416 \Device\Harddisk0\DR0 ( Rootkit.Boot.Sinowal.b ) - will be cured on reboot15:29:32.0152 4416 \Device\Harddisk0\DR0 - ok15:29:32.0152 4416 \Device\Harddisk0\DR0 ( Rootkit.Boot.Sinowal.b ) - User select action: Cure15:29:32.0152 4416 \Device\Harddisk0\DR0 ( TDSS File System ) - skipped by user15:29:32.0152 4416 \Device\Harddisk0\DR0 ( TDSS File System ) - User select action: Skip15:29:34.0430 5604 Deinitialize success TDSSKiller :---------------------- 15:26:24.0312 2684 TDSS rootkit removing tool 2.7.48.0 Jul 24 2012 13:16:3215:26:24.0437 2684 ============================================================15:26:24.0437 2684 Current date / time: 2012/08/06 15:26:24.043715:26:24.0437 2684 SystemInfo:15:26:24.0437 2684 15:26:24.0437 2684 OS Version: 6.1.7601 ServicePack: 1.015:26:24.0437 2684 Product type: Workstation15:26:24.0437 2684 ComputerName: JIMMY15:26:24.0437 2684 UserName: LittleJimmy15:26:24.0437 2684 Windows directory: C:\Windows15:26:24.0437 2684 System windows directory: C:\Windows15:26:24.0437 2684 Processor architecture: Intel x8615:26:24.0437 2684 Number of processors: 215:26:24.0437 2684 Page size: 0x100015:26:24.0437 2684 Boot type: Normal boot15:26:24.0437 2684 ============================================================15:26:25.0076 2684 Drive \Device\Harddisk0\DR0 - Size: 0x950B056000 (596.17 Gb), SectorSize: 0x200, Cylinders: 0x13001, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x0000005015:26:25.0108 2684 ============================================================15:26:25.0108 2684 \Device\Harddisk0\DR0:15:26:25.0108 2684 MBR partitions:15:26:25.0108 2684 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x17B9668915:26:25.0123 2684 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x17B96707, BlocksNum 0x32CC07BA15:26:25.0123 2684 ============================================================15:26:25.0139 2684 C: <-> \Device\Harddisk0\DR0\Partition015:26:25.0154 2684 D: <-> \Device\Harddisk0\DR0\Partition115:26:25.0154 2684 ============================================================15:26:25.0154 2684 Initialize success15:26:25.0154 2684 ============================================================15:27:21.0205 3868 ============================================================15:27:21.0205 3868 Scan started15:27:21.0205 3868 Mode: Manual; SigCheck; TDLFS;15:27:21.0205 3868 ============================================================15:27:22.0563 3868 1394ohci (1b133875b8aa8ac48969bd3458afe9f5) C:\Windows\system32\drivers\1394ohci.sys15:27:22.0703 3868 1394ohci - ok15:27:22.0734 3868 acnzjhyt - ok15:27:22.0781 3868 ACPI (cea80c80bed809aa0da6febc04733349) C:\Windows\system32\drivers\ACPI.sys15:27:22.0781 3868 ACPI - ok15:27:22.0812 3868 AcpiPmi (1efbc664abff416d1d07db115dcb264f) C:\Windows\system32\drivers\acpipmi.sys15:27:22.0890 3868 AcpiPmi - ok15:27:22.0968 3868 AdobeFlashPlayerUpdateSvc (f19c98ad81d2c0e1bbfd8153d2c80ee8) C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe15:27:22.0984 3868 AdobeFlashPlayerUpdateSvc - ok15:27:23.0046 3868 adp94xx (21e785ebd7dc90a06391141aac7892fb) C:\Windows\system32\DRIVERS\adp94xx.sys15:27:23.0062 3868 adp94xx - ok15:27:23.0093 3868 adpahci (0c676bc278d5b59ff5abd57bbe9123f2) C:\Windows\system32\DRIVERS\adpahci.sys15:27:23.0109 3868 adpahci - ok15:27:23.0140 3868 adpu320 (7c7b5ee4b7b822ec85321fe23a27db33) C:\Windows\system32\DRIVERS\adpu320.sys15:27:23.0140 3868 adpu320 - ok15:27:23.0171 3868 AeLookupSvc (8b5eefeec1e6d1a72a06c526628ad161) C:\Windows\System32\aelupsvc.dll15:27:23.0265 3868 AeLookupSvc - ok15:27:23.0327 3868 AFD (9ebbba55060f786f0fcaa3893bfa2806) C:\Windows\system32\drivers\afd.sys15:27:23.0405 3868 AFD - ok15:27:23.0436 3868 agp440 (507812c3054c21cef746b6ee3d04dd6e) C:\Windows\system32\drivers\agp440.sys15:27:23.0436 3868 agp440 - ok15:27:23.0467 3868 aic78xx (8b30250d573a8f6b4bd23195160d8707) C:\Windows\system32\DRIVERS\djsvs.sys15:27:23.0483 3868 aic78xx - ok15:27:23.0499 3868 ALG (18a54e132947cd98fea9accc57f98f13) C:\Windows\System32\alg.exe15:27:23.0561 3868 ALG - ok15:27:23.0608 3868 aliide (0d40bcf52ea90fc7df2aeab6503dea44) C:\Windows\system32\drivers\aliide.sys15:27:23.0608 3868 aliide - ok15:27:23.0670 3868 AMD External Events Utility (ec98ca8298f67926fa50876348534b1d) C:\Windows\system32\atiesrxx.exe15:27:23.0779 3868 AMD External Events Utility - ok15:27:23.0811 3868 amdagp (3c6600a0696e90a463771c7422e23ab5) C:\Windows\system32\drivers\amdagp.sys15:27:23.0811 3868 amdagp - ok15:27:23.0857 3868 amdide (cd5914170297126b6266860198d1d4f0) C:\Windows\system32\drivers\amdide.sys15:27:23.0857 3868 amdide - ok15:27:23.0889 3868 AmdK8 (00dda200d71bac534bf56a9db5dfd666) C:\Windows\system32\DRIVERS\amdk8.sys15:27:23.0951 3868 AmdK8 - ok15:27:24.0294 3868 amdkmdag (65b44179cf184b08e86097bffbf03f24) C:\Windows\system32\DRIVERS\atikmdag.sys15:27:24.0497 3868 amdkmdag - ok15:27:24.0637 3868 amdkmdap (5e1c65524ff1713711ce27879d813384) C:\Windows\system32\DRIVERS\atikmpag.sys15:27:24.0669 3868 amdkmdap - ok15:27:24.0700 3868 AmdPPM (3cbf30f5370fda40dd3e87df38ea53b6) C:\Windows\system32\DRIVERS\amdppm.sys15:27:24.0731 3868 AmdPPM - ok15:27:24.0762 3868 amdsata (d320bf87125326f996d4904fe24300fc) C:\Windows\system32\drivers\amdsata.sys15:27:24.0778 3868 amdsata - ok15:27:24.0793 3868 amdsbs (ea43af0c423ff267355f74e7a53bdaba) C:\Windows\system32\DRIVERS\amdsbs.sys15:27:24.0809 3868 amdsbs - ok15:27:24.0825 3868 amdxata (46387fb17b086d16dea267d5be23a2f2) C:\Windows\system32\drivers\amdxata.sys15:27:24.0825 3868 amdxata - ok15:27:24.0856 3868 AppID (aea177f783e20150ace5383ee368da19) C:\Windows\system32\drivers\appid.sys15:27:24.0949 3868 AppID - ok15:27:24.0965 3868 AppIDSvc (62a9c86cb6085e20db4823e4e97826f5) C:\Windows\System32\appidsvc.dll15:27:24.0996 3868 AppIDSvc - ok15:27:25.0027 3868 Appinfo (fb1959012294d6ad43e5304df65e3c26) C:\Windows\System32\appinfo.dll15:27:25.0059 3868 Appinfo - ok15:27:25.0121 3868 arc (2932004f49677bd84dbc72edb754ffb3) C:\Windows\system32\DRIVERS\arc.sys15:27:25.0121 3868 arc - ok15:27:25.0137 3868 arcsas (5d6f36c46fd283ae1b57bd2e9feb0bc7) C:\Windows\system32\DRIVERS\arcsas.sys15:27:25.0152 3868 arcsas - ok15:27:25.0246 3868 aspnet_state (776acefa0ca9df0faa51a5fb2f435705) C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe15:27:25.0261 3868 aspnet_state - ok15:27:25.0277 3868 AsyncMac (add2ade1c2b285ab8378d2daaf991481) C:\Windows\system32\DRIVERS\asyncmac.sys15:27:25.0339 3868 AsyncMac - ok15:27:25.0386 3868 atapi (338c86357871c167a96ab976519bf59e) C:\Windows\system32\drivers\atapi.sys15:27:25.0402 3868 atapi - ok15:27:25.0464 3868 AtiHDAudioService (7725aecceddf81bd8374c77157e450ea) C:\Windows\system32\drivers\AtihdW73.sys15:27:25.0464 3868 AtiHDAudioService - ok15:27:25.0527 3868 AudioEndpointBuilder (ce3b4e731638d2ef62fcb419be0d39f0) C:\Windows\System32\Audiosrv.dll15:27:25.0558 3868 AudioEndpointBuilder - ok15:27:25.0558 3868 Audiosrv (ce3b4e731638d2ef62fcb419be0d39f0) C:\Windows\System32\Audiosrv.dll15:27:25.0589 3868 Audiosrv - ok15:27:25.0636 3868 AxInstSV (6e30d02aac9cac84f421622e3a2f6178) C:\Windows\System32\AxInstSV.dll15:27:25.0698 3868 AxInstSV - ok15:27:25.0745 3868 b06bdrv (1a231abec60fd316ec54c66715543cec) C:\Windows\system32\DRIVERS\bxvbdx.sys15:27:25.0807 3868 b06bdrv - ok15:27:25.0839 3868 b57nd60x (bd8869eb9cde6bbe4508d869929869ee) C:\Windows\system32\DRIVERS\b57nd60x.sys15:27:25.0870 3868 b57nd60x - ok15:27:25.0917 3868 BDESVC (ee1e9c3bb8228ae423dd38db69128e71) C:\Windows\System32\bdesvc.dll15:27:25.0995 3868 BDESVC - ok15:27:25.0995 3868 Beep (505506526a9d467307b3c393dedaf858) C:\Windows\system32\drivers\Beep.sys15:27:26.0041 3868 Beep - ok15:27:26.0104 3868 BFE (1e2bac209d184bb851e1a187d8a29136) C:\Windows\System32\bfe.dll15:27:26.0135 3868 BFE - ok15:27:26.0244 3868 BingDesktopUpdate (1b63f2b7ca6b5290cc124cdd07520bc9) C:\Program Files\Microsoft\BingDesktop\BingDesktopUpdater.exe15:27:26.0244 3868 BingDesktopUpdate - ok15:27:26.0307 3868 BITS (e585445d5021971fae10393f0f1c3961) C:\Windows\system32\qmgr.dll15:27:26.0338 3868 BITS - ok15:27:26.0385 3868 blbdrive (2287078ed48fcfc477b05b20cf38f36f) C:\Windows\system32\DRIVERS\blbdrive.sys15:27:26.0400 3868 blbdrive - ok15:27:26.0463 3868 BlueletAudio (5ff9a3f3476d726ae62da82d5da94c36) C:\Windows\system32\DRIVERS\blueletaudio.sys15:27:26.0463 3868 BlueletAudio - ok15:27:26.0494 3868 BlueletSCOAudio (bd91afc523fd59f881e1763c38fb772f) C:\Windows\system32\DRIVERS\BlueletSCOAudio.sys15:27:26.0494 3868 BlueletSCOAudio - ok15:27:26.0556 3868 BlueSoleil Hid Service (e460dbc78b9162a569c6ce3b7d31216d) C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe15:27:26.0572 3868 BlueSoleil Hid Service - ok15:27:26.0603 3868 bowser (8f2da3028d5fcbd1a060a3de64cd6506) C:\Windows\system32\DRIVERS\bowser.sys15:27:26.0650 3868 bowser - ok15:27:26.0665 3868 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\DRIVERS\BrFiltLo.sys15:27:26.0728 3868 BrFiltLo - ok15:27:26.0743 3868 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\DRIVERS\BrFiltUp.sys15:27:26.0775 3868 BrFiltUp - ok15:27:26.0806 3868 BridgeMP (77361d72a04f18809d0efb6cceb74d4b) C:\Windows\system32\DRIVERS\bridge.sys15:27:26.0853 3868 BridgeMP - ok15:27:26.0899 3868 Browser (6e11f33d14d020f58d5e02e4d67dfa19) C:\Windows\System32\browser.dll15:27:26.0946 3868 Browser - ok15:27:26.0977 3868 Brserid (845b8ce732e67f3b4133164868c666ea) C:\Windows\System32\Drivers\Brserid.sys15:27:27.0024 3868 Brserid - ok15:27:27.0040 3868 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\System32\Drivers\BrSerWdm.sys15:27:27.0055 3868 BrSerWdm - ok15:27:27.0087 3868 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\System32\Drivers\BrUsbMdm.sys15:27:27.0118 3868 BrUsbMdm - ok15:27:27.0118 3868 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\System32\Drivers\BrUsbSer.sys15:27:27.0149 3868 BrUsbSer - ok15:27:27.0196 3868 BT (c5cce2b26f73f8cf7f3c82159e79aa08) C:\Windows\system32\DRIVERS\btnetdrv.sys15:27:27.0196 3868 BT - ok15:27:27.0211 3868 Btcsrusb (fb2abc6d08d9f8d5ed8e02cbd18b39bb) C:\Windows\system32\Drivers\btcusb.sys15:27:27.0227 3868 Btcsrusb - ok15:27:27.0227 3868 BTHidEnum (ce643d0918123d76a5caab008fca9663) C:\Windows\system32\Drivers\vbtenum.sys15:27:27.0243 3868 BTHidEnum - ok15:27:27.0258 3868 BTHidMgr (dfca4fe4c8aec786b4d0f432eb730f48) C:\Windows\system32\Drivers\BTHidMgr.sys15:27:27.0258 3868 BTHidMgr - ok15:27:27.0274 3868 BTHMODEM (ed3df7c56ce0084eb2034432fc56565a) C:\Windows\system32\DRIVERS\bthmodem.sys15:27:27.0305 3868 BTHMODEM - ok15:27:27.0336 3868 bthserv (1df19c96eef6c29d1c3e1a8678e07190) C:\Windows\system32\bthserv.dll15:27:27.0367 3868 bthserv - ok15:27:27.0461 3868 catchme - ok15:27:27.0492 3868 cdfs (77ea11b065e0a8ab902d78145ca51e10) C:\Windows\system32\DRIVERS\cdfs.sys15:27:27.0523 3868 cdfs - ok15:27:27.0570 3868 cdrom (be167ed0fdb9c1fa1133953c18d5a6c9) C:\Windows\system32\DRIVERS\cdrom.sys15:27:27.0601 3868 cdrom - ok15:27:27.0633 3868 CertPropSvc (319c6b309773d063541d01df8ac6f55f) C:\Windows\System32\certprop.dll15:27:27.0664 3868 CertPropSvc - ok15:27:27.0695 3868 circlass (3fe3fe94a34df6fb06e6418d0f6a0060) C:\Windows\system32\DRIVERS\circlass.sys15:27:27.0695 3868 circlass - ok15:27:27.0742 3868 CLFS (635181e0e9bbf16871bf5380d71db02d) C:\Windows\system32\CLFS.sys15:27:27.0757 3868 CLFS - ok15:27:27.0820 3868 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe15:27:27.0835 3868 clr_optimization_v2.0.50727_32 - ok15:27:27.0898 3868 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe15:27:27.0960 3868 clr_optimization_v4.0.30319_32 - ok15:27:27.0976 3868 CmBatt (dea805815e587dad1dd2c502220b5616) C:\Windows\system32\DRIVERS\CmBatt.sys15:27:28.0007 3868 CmBatt - ok15:27:28.0038 3868 cmdide (c537b1db64d495b9b4717b4d6d9edbf2) C:\Windows\system32\drivers\cmdide.sys15:27:28.0054 3868 cmdide - ok15:27:28.0101 3868 CNG (247b4ce2dab1160cd422d532d5241e1f) C:\Windows\system32\Drivers\cng.sys15:27:28.0132 3868 CNG - ok15:27:28.0147 3868 Compbatt (a6023d3823c37043986713f118a89bee) C:\Windows\system32\DRIVERS\compbatt.sys15:27:28.0147 3868 Compbatt - ok15:27:28.0194 3868 CompositeBus (cbe8c58a8579cfe5fccf809e6f114e89) C:\Windows\system32\drivers\CompositeBus.sys15:27:28.0210 3868 CompositeBus - ok15:27:28.0225 3868 COMSysApp - ok15:27:28.0272 3868 cpuz135 (3411fdf098aa20193eee5ffa36ba43b2) C:\Windows\system32\drivers\cpuz135_x32.sys15:27:28.0288 3868 cpuz135 - ok15:27:28.0303 3868 crcdisk (2c4ebcfc84a9b44f209dff6c6e6c61d1) C:\Windows\system32\DRIVERS\crcdisk.sys15:27:28.0303 3868 crcdisk - ok15:27:28.0366 3868 CryptSvc (06e771aa596b8761107ab57e99f128d7) C:\Windows\system32\cryptsvc.dll15:27:28.0397 3868 CryptSvc - ok15:27:28.0459 3868 DcomLaunch (7660f01d3b38aca1747e397d21d790af) C:\Windows\system32\rpcss.dll15:27:28.0506 3868 DcomLaunch - ok15:27:28.0537 3868 defragsvc (8d6e10a2d9a5eed59562d9b82cf804e1) C:\Windows\System32\defragsvc.dll15:27:28.0569 3868 defragsvc - ok15:27:28.0615 3868 DfsC (f024449c97ec1e464aaffda18593db88) C:\Windows\system32\Drivers\dfsc.sys15:27:28.0647 3868 DfsC - ok15:27:28.0693 3868 Dhcp (e9e01eb683c132f7fa27cd607b8a2b63) C:\Windows\system32\dhcpcore.dll15:27:28.0725 3868 Dhcp - ok15:27:28.0740 3868 discache (1a050b0274bfb3890703d490f330c0da) C:\Windows\system32\drivers\discache.sys15:27:28.0771 3868 discache - ok15:27:28.0818 3868 Disk (565003f326f99802e68ca78f2a68e9ff) C:\Windows\system32\DRIVERS\disk.sys15:27:28.0818 3868 Disk - ok15:27:28.0849 3868 Dnscache (33ef4861f19a0736b11314aad9ae28d0) C:\Windows\System32\dnsrslvr.dll15:27:28.0896 3868 Dnscache - ok15:27:28.0943 3868 dot3svc (366ba8fb4b7bb7435e3b9eacb3843f67) C:\Windows\System32\dot3svc.dll15:27:28.0990 3868 dot3svc - ok15:27:29.0037 3868 Dot4 (b5e479eb83707dd698f66953e922042c) C:\Windows\system32\DRIVERS\Dot4.sys15:27:29.0037 3868 Dot4 - ok15:27:29.0083 3868 Dot4Print (caefd09b6a6249c53a67d55a9a9fcabf) C:\Windows\system32\DRIVERS\Dot4Prt.sys15:27:29.0099 3868 Dot4Print - ok15:27:29.0099 3868 dot4usb (cf491ff38d62143203c065260567e2f7) C:\Windows\system32\DRIVERS\dot4usb.sys15:27:29.0130 3868 dot4usb - ok15:27:29.0177 3868 DPS (8ec04ca86f1d68da9e11952eb85973d6) C:\Windows\system32\dps.dll15:27:29.0208 3868 DPS - ok15:27:29.0255 3868 drmkaud (b918e7c5f9bf77202f89e1a9539f2eb4) C:\Windows\system32\drivers\drmkaud.sys15:27:29.0255 3868 drmkaud - ok15:27:29.0302 3868 dtsoftbus01 (c0c7ceccb6c85994c2bc92d58e52d3f2) C:\Windows\system32\DRIVERS\dtsoftbus01.sys15:27:29.0317 3868 dtsoftbus01 - ok15:27:29.0317 3868 dump_wmimmc - ok15:27:29.0380 3868 DXGKrnl (23f5d28378a160352ba8f817bd8c71cb) C:\Windows\System32\drivers\dxgkrnl.sys15:27:29.0411 3868 DXGKrnl - ok15:27:29.0427 3868 EagleXNt - ok15:27:29.0458 3868 eamonm (04238864710460c5682e260207d06192) C:\Windows\system32\DRIVERS\eamonm.sys15:27:29.0473 3868 eamonm - ok15:27:29.0489 3868 EapHost (8600142fa91c1b96367d3300ad0f3f3a) C:\Windows\System32\eapsvc.dll15:27:29.0536 3868 EapHost - ok15:27:29.0676 3868 ebdrv (024e1b5cac09731e4d868e64dbfb4ab0) C:\Windows\system32\DRIVERS\evbdx.sys15:27:29.0739 3868 ebdrv - ok15:27:29.0832 3868 EFS (81951f51e318aecc2d68559e47485cc4) C:\Windows\System32\lsass.exe15:27:29.0910 3868 EFS - ok15:27:29.0957 3868 ehdrv (deff87f04ab5f6dd5edf2b80853bbe10) C:\Windows\system32\DRIVERS\ehdrv.sys15:27:29.0957 3868 ehdrv - ok15:27:30.0019 3868 ehRecvr (a8c362018efc87beb013ee28f29c0863) C:\Windows\ehome\ehRecvr.exe15:27:30.0097 3868 ehRecvr - ok15:27:30.0129 3868 ehSched (d389bff34f80caede417bf9d1507996a) C:\Windows\ehome\ehsched.exe15:27:30.0175 3868 ehSched - ok15:27:30.0300 3868 ekrn (c7bb95cf9631aa401e4aded1648f6af7) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe15:27:30.0316 3868 ekrn - ok15:27:30.0394 3868 ElbyCDFL (ce37e3d51912e59c80c6d84337c0b4cd) C:\Windows\system32\Drivers\ElbyCDFL.sys15:27:30.0409 3868 ElbyCDFL - ok15:27:30.0441 3868 ElbyCDIO (178cc9403816c082d22a1d47fa1f9c85) C:\Windows\system32\Drivers\ElbyCDIO.sys15:27:30.0456 3868 ElbyCDIO - ok15:27:30.0487 3868 elxstor (0ed67910c8c326796faa00b2bf6d9d3c) C:\Windows\system32\DRIVERS\elxstor.sys15:27:30.0503 3868 elxstor - ok15:27:30.0534 3868 epfwwfpr (f39c91795ebdb9ecbeb5a388ff2841fe) C:\Windows\system32\DRIVERS\epfwwfpr.sys15:27:30.0550 3868 epfwwfpr - ok15:27:30.0565 3868 ErrDev (8fc3208352dd3912c94367a206ab3f11) C:\Windows\system32\drivers\errdev.sys15:27:30.0597 3868 ErrDev - ok15:27:30.0643 3868 EventSystem (f6916efc29d9953d5d0df06882ae8e16) C:\Windows\system32\es.dll15:27:30.0690 3868 EventSystem - ok15:27:30.0721 3868 exfat (2dc9108d74081149cc8b651d3a26207f) C:\Windows\system32\drivers\exfat.sys15:27:30.0737 3868 exfat - ok15:27:30.0768 3868 fastfat (7e0ab74553476622fb6ae36f73d97d35) C:\Windows\system32\drivers\fastfat.sys15:27:30.0784 3868 fastfat - ok15:27:30.0846 3868 Fax (967ea5b213e9984cbe270205df37755b) C:\Windows\system32\fxssvc.exe15:27:30.0909 3868 Fax - ok15:27:30.0940 3868 fdc (e817a017f82df2a1f8cfdbda29388b29) C:\Windows\system32\DRIVERS\fdc.sys15:27:30.0940 3868 fdc - ok15:27:30.0971 3868 fdPHost (f3222c893bd2f5821a0179e5c71e88fb) C:\Windows\system32\fdPHost.dll15:27:31.0002 3868 fdPHost - ok15:27:31.0018 3868 FDResPub (7dbe8cbfe79efbdeb98c9fb08d3a9a5b) C:\Windows\system32\fdrespub.dll15:27:31.0049 3868 FDResPub - ok15:27:31.0080 3868 FileInfo (6cf00369c97f3cf563be99be983d13d8) C:\Windows\system32\drivers\fileinfo.sys15:27:31.0080 3868 FileInfo - ok15:27:31.0096 3868 Filetrace (42c51dc94c91da21cb9196eb64c45db9) C:\Windows\system32\drivers\filetrace.sys15:27:31.0111 3868 Filetrace - ok15:27:31.0127 3868 flpydisk (87907aa70cb3c56600f1c2fb8841579b) C:\Windows\system32\DRIVERS\flpydisk.sys15:27:31.0143 3868 flpydisk - ok15:27:31.0189 3868 FltMgr (7520ec808e0c35e0ee6f841294316653) C:\Windows\system32\drivers\fltmgr.sys15:27:31.0189 3868 FltMgr - ok15:27:31.0252 3868 FontCache (b3a5ec6b6b6673db7e87c2bcdbddc074) C:\Windows\system32\FntCache.dll15:27:31.0314 3868 FontCache - ok15:27:31.0377 3868 FontCache3.0.0.0 (e56f39f6b7fda0ac77a79b0fd3de1a2f) C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe15:27:31.0377 3868 FontCache3.0.0.0 - ok15:27:31.0392 3868 FsDepends (1a16b57943853e598cff37fe2b8cbf1d) C:\Windows\system32\drivers\FsDepends.sys15:27:31.0408 3868 FsDepends - ok15:27:31.0423 3868 Fs_Rec (7dae5ebcc80e45d3253f4923dc424d05) C:\Windows\system32\drivers\Fs_Rec.sys15:27:31.0439 3868 Fs_Rec - ok15:27:31.0486 3868 fvevol (8a73e79089b282100b9393b644cb853b) C:\Windows\system32\DRIVERS\fvevol.sys15:27:31.0486 3868 fvevol - ok15:27:31.0517 3868 gagp30kx (65ee0c7a58b65e74ae05637418153938) C:\Windows\system32\DRIVERS\gagp30kx.sys15:27:31.0533 3868 gagp30kx - ok15:27:31.0548 3868 gdrv - ok15:27:31.0595 3868 gpsvc (e897eaf5ed6ba41e081060c9b447a673) C:\Windows\System32\gpsvc.dll15:27:31.0642 3868 gpsvc - ok15:27:31.0673 3868 hamachi (d30b31375c40309425c21efe75db90bb) C:\Windows\system32\DRIVERS\hamachi.sys15:27:31.0689 3868 hamachi - ok15:27:31.0704 3868 hcw85cir (c44e3c2bab6837db337ddee7544736db) C:\Windows\system32\drivers\hcw85cir.sys15:27:31.0782 3868 hcw85cir - ok15:27:31.0845 3868 HdAudAddService (a5ef29d5315111c80a5c1abad14c8972) C:\Windows\system32\drivers\HdAudio.sys15:27:31.0860 3868 HdAudAddService - ok15:27:31.0891 3868 HDAudBus (9036377b8a6c15dc2eec53e489d159b5) C:\Windows\system32\DRIVERS\HDAudBus.sys15:27:31.0923 3868 HDAudBus - ok15:27:31.0938 3868 HidBatt (1d58a7f3e11a9731d0eaaaa8405acc36) C:\Windows\system32\DRIVERS\HidBatt.sys15:27:31.0969 3868 HidBatt - ok15:27:31.0985 3868 HidBth (89448f40e6df260c206a193a4683ba78) C:\Windows\system32\DRIVERS\hidbth.sys15:27:32.0016 3868 HidBth - ok15:27:32.0032 3868 HidIr (cf50b4cf4a4f229b9f3c08351f99ca5e) C:\Windows\system32\DRIVERS\hidir.sys15:27:32.0047 3868 HidIr - ok15:27:32.0079 3868 hidserv (2bc6f6a1992b3a77f5f41432ca6b3b6b) C:\Windows\System32\hidserv.dll15:27:32.0110 3868 hidserv - ok15:27:32.0157 3868 HidUsb (10c19f8290891af023eaec0832e1eb4d) C:\Windows\system32\DRIVERS\hidusb.sys15:27:32.0172 3868 HidUsb - ok15:27:32.0203 3868 hkmsvc (196b4e3f4cccc24af836ce58facbb699) C:\Windows\system32\kmsvc.dll15:27:32.0219 3868 hkmsvc - ok15:27:32.0250 3868 HomeGroupListener (6658f4404de03d75fe3ba09f7aba6a30) C:\Windows\system32\ListSvc.dll15:27:32.0297 3868 HomeGroupListener - ok15:27:32.0328 3868 HomeGroupProvider (dbc02d918fff1cad628acbe0c0eaa8e8) C:\Windows\system32\provsvc.dll15:27:32.0359 3868 HomeGroupProvider - ok15:27:32.0500 3868 hpqcxs08 (1dae5c46d42b02a6d5862e1482efb390) C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll15:27:32.0515 3868 hpqcxs08 ( UnsignedFile.Multi.Generic ) - warning15:27:32.0515 3868 hpqcxs08 - detected UnsignedFile.Multi.Generic (1)15:27:32.0547 3868 hpqddsvc (99e8eef42fe2f4af29b08c3355dd7685) C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll15:27:32.0547 3868 hpqddsvc ( UnsignedFile.Multi.Generic ) - warning15:27:32.0547 3868 hpqddsvc - detected UnsignedFile.Multi.Generic (1)15:27:32.0578 3868 HpSAMD (295fdc419039090eb8b49ffdbb374549) C:\Windows\system32\drivers\HpSAMD.sys15:27:32.0593 3868 HpSAMD - ok15:27:32.0687 3868 HPSLPSVC - ok15:27:32.0734 3868 HTTP (871917b07a141bff43d76d8844d48106) C:\Windows\system32\drivers\HTTP.sys15:27:32.0765 3868 HTTP - ok15:27:32.0781 3868 hwpolicy (0c4e035c7f105f1299258c90886c64c5) C:\Windows\system32\drivers\hwpolicy.sys15:27:32.0781 3868 hwpolicy - ok15:27:32.0827 3868 i8042prt (f151f0bdc47f4a28b1b20a0818ea36d6) C:\Windows\system32\DRIVERS\i8042prt.sys15:27:32.0843 3868 i8042prt - ok15:27:32.0905 3868 iaStor (db81f413fa4e3f328cad7b5d59ef3f21) C:\Windows\system32\DRIVERS\iaStor.sys15:27:32.0921 3868 iaStor - ok15:27:32.0983 3868 IAStorDataMgrSvc (d41861e56e7552c13674d7f147a02464) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe15:27:32.0983 3868 IAStorDataMgrSvc - ok15:27:33.0046 3868 iaStorV (5cd5f9a5444e6cdcb0ac89bd62d8b76e) C:\Windows\system32\drivers\iaStorV.sys15:27:33.0061 3868 iaStorV - ok15:27:33.0139 3868 idsvc (c521d7eb6497bb1af6afa89e322fb43c) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe15:27:33.0155 3868 idsvc - ok15:27:33.0249 3868 iirsp (4173ff5708f3236cf25195fecd742915) C:\Windows\system32\DRIVERS\iirsp.sys15:27:33.0249 3868 iirsp - ok15:27:33.0311 3868 IKEEXT (f95622f161474511b8d80d6b093aa610) C:\Windows\System32\ikeext.dll15:27:33.0358 3868 IKEEXT - ok15:27:33.0529 3868 IntcAzAudAddService (509888e289b4765f8d92ad57cf37efa7) C:\Windows\system32\drivers\RTKVHDA.sys15:27:33.0607 3868 IntcAzAudAddService - ok15:27:33.0701 3868 intelide (a0f12f2c9ba6c72f3987ce780e77c130) C:\Windows\system32\drivers\intelide.sys15:27:33.0717 3868 intelide - ok15:27:33.0732 3868 intelppm (3b514d27bfc4accb4037bc6685f766e0) C:\Windows\system32\DRIVERS\intelppm.sys15:27:33.0763 3868 intelppm - ok15:27:33.0795 3868 IPBusEnum (acb364b9075a45c0736e5c47be5cae19) C:\Windows\system32\ipbusenum.dll15:27:33.0826 3868 IPBusEnum - ok15:27:33.0841 3868 IpFilterDriver (709d1761d3b19a932ff0238ea6d50200) C:\Windows\system32\DRIVERS\ipfltdrv.sys15:27:33.0873 3868 IpFilterDriver - ok15:27:33.0935 3868 iphlpsvc (4d65a07b795d6674312f879d09aa7663) C:\Windows\System32\iphlpsvc.dll15:27:33.0982 3868 iphlpsvc - ok15:27:33.0997 3868 IPMIDRV (4bd7134618c1d2a27466a099062547bf) C:\Windows\system32\drivers\IPMIDrv.sys15:27:34.0029 3868 IPMIDRV - ok15:27:34.0060 3868 IPNAT (a5fa468d67abcdaa36264e463a7bb0cd) C:\Windows\system32\drivers\ipnat.sys15:27:34.0091 3868 IPNAT - ok15:27:34.0122 3868 IRENUM (42996cff20a3084a56017b7902307e9f) C:\Windows\system32\drivers\irenum.sys15:27:34.0169 3868 IRENUM - ok15:27:34.0200 3868 isapnp (1f32bb6b38f62f7df1a7ab7292638a35) C:\Windows\system32\drivers\isapnp.sys15:27:34.0216 3868 isapnp - ok15:27:34.0231 3868 iScsiPrt (cb7a9abb12b8415bce5d74994c7ba3ae) C:\Windows\system32\drivers\msiscsi.sys15:27:34.0247 3868 iScsiPrt - ok15:27:34.0263 3868 kbdclass (adef52ca1aeae82b50df86b56413107e) C:\Windows\system32\DRIVERS\kbdclass.sys15:27:34.0263 3868 kbdclass - ok15:27:34.0309 3868 kbdhid (9e3ced91863e6ee98c24794d05e27a71) C:\Windows\system32\drivers\kbdhid.sys15:27:34.0325 3868 kbdhid - ok15:27:34.0356 3868 KeyIso (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe15:27:34.0372 3868 KeyIso - ok15:27:34.0387 3868 KSecDD (b7895b4182c0d16f6efadeb8081e8d36) C:\Windows\system32\Drivers\ksecdd.sys15:27:34.0403 3868 KSecDD - ok15:27:34.0434 3868 KSecPkg (d30159ac9237519fbc62c6ec247d2d46) C:\Windows\system32\Drivers\ksecpkg.sys15:27:34.0450 3868 KSecPkg - ok15:27:34.0481 3868 KtmRm (89a7b9cc98d0d80c6f31b91c0a310fcd) C:\Windows\system32\msdtckrm.dll15:27:34.0512 3868 KtmRm - ok15:27:34.0575 3868 LanmanServer (d64af876d53eca3668bb97b51b4e70ab) C:\Windows\System32\srvsvc.dll15:27:34.0606 3868 LanmanServer - ok15:27:34.0637 3868 LanmanWorkstation (58405e4f68ba8e4057c6e914f326aba2) C:\Windows\System32\wkssvc.dll15:27:34.0668 3868 LanmanWorkstation - ok15:27:34.0699 3868 lltdsvc (5700673e13a2117fa3b9020c852c01e2) C:\Windows\System32\lltdsvc.dll15:27:34.0731 3868 lltdsvc - ok15:27:34.0762 3868 lmhosts (55ca01ba19d0006c8f2639b6c045e08b) C:\Windows\System32\lmhsvc.dll15:27:34.0793 3868 lmhosts - ok15:27:34.0887 3868 LMS (0803906d607a9b83184447b75b60ecc2) C:\Program Files\Intel\Intel® Management Engine Components\LMS\LMS.exe15:27:34.0902 3868 LMS - ok15:27:34.0949 3868 LSI_FC (eb119a53ccf2acc000ac71b065b78fef) C:\Windows\system32\DRIVERS\lsi_fc.sys15:27:34.0965 3868 LSI_FC - ok15:27:34.0980 3868 LSI_SAS (8ade1c877256a22e49b75d1cc9161f9c) C:\Windows\system32\DRIVERS\lsi_sas.sys15:27:34.0980 3868 LSI_SAS - ok15:27:34.0996 3868 LSI_SAS2 (dc9dc3d3daa0e276fd2ec262e38b11e9) C:\Windows\system32\DRIVERS\lsi_sas2.sys15:27:34.0996 3868 LSI_SAS2 - ok15:27:35.0011 3868 LSI_SCSI (0a036c7d7cab643a7f07135ac47e0524) C:\Windows\system32\DRIVERS\lsi_scsi.sys15:27:35.0011 3868 LSI_SCSI - ok15:27:35.0043 3868 luafv (6703e366cc18d3b6e534f5cf7df39cee) C:\Windows\system32\drivers\luafv.sys15:27:35.0074 3868 luafv - ok15:27:35.0105 3868 Mcx2Svc (bfb9ee8ee977efe85d1a3105abef6dd1) C:\Windows\system32\Mcx2Svc.dll15:27:35.0121 3868 Mcx2Svc - ok15:27:35.0152 3868 megasas (0fff5b045293002ab38eb1fd1fc2fb74) C:\Windows\system32\DRIVERS\megasas.sys15:27:35.0152 3868 megasas - ok15:27:35.0183 3868 MegaSR (dcbab2920c75f390caf1d29f675d03d6) C:\Windows\system32\DRIVERS\MegaSR.sys15:27:35.0199 3868 MegaSR - ok15:27:35.0230 3868 MEI (d86ac00883b9c98b570e7643aaf8e554) C:\Windows\system32\DRIVERS\HECI.sys15:27:35.0277 3868 MEI - ok15:27:35.0292 3868 MMCSS (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll15:27:35.0339 3868 MMCSS - ok15:27:35.0355 3868 Modem (f001861e5700ee84e2d4e52c712f4964) C:\Windows\system32\drivers\modem.sys15:27:35.0386 3868 Modem - ok15:27:35.0401 3868 monitor (79d10964de86b292320e9dfe02282a23) C:\Windows\system32\DRIVERS\monitor.sys15:27:35.0417 3868 monitor - ok15:27:35.0464 3868 mouclass (fb18cc1d4c2e716b6b903b0ac0cc0609) C:\Windows\system32\DRIVERS\mouclass.sys15:27:35.0479 3868 mouclass - ok15:27:35.0495 3868 mouhid (2c388d2cd01c9042596cf3c8f3c7b24d) C:\Windows\system32\DRIVERS\mouhid.sys15:27:35.0526 3868 mouhid - ok15:27:35.0573 3868 mountmgr (fc8771f45ecccfd89684e38842539b9b) C:\Windows\system32\drivers\mountmgr.sys15:27:35.0573 3868 mountmgr - ok15:27:35.0651 3868 MozillaMaintenance (46297fa8e30a6007f14118fc2b942fbc) C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe15:27:35.0651 3868 MozillaMaintenance - ok15:27:35.0682 3868 mpio (2d699fb6e89ce0d8da14ecc03b3edfe0) C:\Windows\system32\drivers\mpio.sys15:27:35.0698 3868 mpio - ok15:27:35.0713 3868 mpsdrv (ad2723a7b53dd1aacae6ad8c0bfbf4d0) C:\Windows\system32\drivers\mpsdrv.sys15:27:35.0729 3868 mpsdrv - ok15:27:35.0776 3868 MpsSvc (9835584e999d25004e1ee8e5f3e3b881) C:\Windows\system32\mpssvc.dll15:27:35.0823 3868 MpsSvc - ok15:27:35.0854 3868 MRxDAV (ceb46ab7c01c9f825f8cc6babc18166a) C:\Windows\system32\drivers\mrxdav.sys15:27:35.0885 3868 MRxDAV - ok15:27:35.0932 3868 mrxsmb (5d16c921e3671636c0eba3bbaac5fd25) C:\Windows\system32\DRIVERS\mrxsmb.sys15:27:35.0994 3868 mrxsmb - ok15:27:36.0025 3868 mrxsmb10 (6d17a4791aca19328c685d256349fefc) C:\Windows\system32\DRIVERS\mrxsmb10.sys15:27:36.0041 3868 mrxsmb10 - ok15:27:36.0057 3868 mrxsmb20 (b81f204d146000be76651a50670a5e9e) C:\Windows\system32\DRIVERS\mrxsmb20.sys15:27:36.0072 3868 mrxsmb20 - ok15:27:36.0103 3868 msahci (012c5f4e9349e711e11e0f19a8589f0a) C:\Windows\system32\DRIVERS\msahci.sys15:27:36.0119 3868 msahci - ok15:27:36.0135 3868 msdsm (55055f8ad8be27a64c831322a780a228) C:\Windows\system32\drivers\msdsm.sys15:27:36.0150 3868 msdsm - ok15:27:36.0181 3868 MSDTC (e1bce74a3bd9902b72599c0192a07e27) C:\Windows\System32\msdtc.exe15:27:36.0213 3868 MSDTC - ok15:27:36.0244 3868 Msfs (daefb28e3af5a76abcc2c3078c07327f) C:\Windows\system32\drivers\Msfs.sys15:27:36.0259 3868 Msfs - ok15:27:36.0259 3868 mshidkmdf (3e1e5767043c5af9367f0056295e9f84) C:\Windows\System32\drivers\mshidkmdf.sys15:27:36.0291 3868 mshidkmdf - ok15:27:36.0322 3868 msisadrv (0a4e5757ae09fa9622e3158cc1aef114) C:\Windows\system32\drivers\msisadrv.sys15:27:36.0322 3868 msisadrv - ok15:27:36.0353 3868 MSiSCSI (90f7d9e6b6f27e1a707d4a297f077828) C:\Windows\system32\iscsiexe.dll15:27:36.0384 3868 MSiSCSI - ok15:27:36.0384 3868 msiserver - ok15:27:36.0415 3868 MSKSSRV (8c0860d6366aaffb6c5bb9df9448e631) C:\Windows\system32\drivers\MSKSSRV.sys15:27:36.0462 3868 MSKSSRV - ok15:27:36.0478 3868 MSPCLOCK (3ea8b949f963562cedbb549eac0c11ce) C:\Windows\system32\drivers\MSPCLOCK.sys15:27:36.0509 3868 MSPCLOCK - ok15:27:36.0525 3868 MSPQM (f456e973590d663b1073e9c463b40932) C:\Windows\system32\drivers\MSPQM.sys15:27:36.0556 3868 MSPQM - ok15:27:36.0571 3868 MsRPC (0e008fc4819d238c51d7c93e7b41e560) C:\Windows\system32\drivers\MsRPC.sys15:27:36.0587 3868 MsRPC - ok15:27:36.0618 3868 mssmbios (fc6b9ff600cc585ea38b12589bd4e246) C:\Windows\system32\drivers\mssmbios.sys15:27:36.0618 3868 mssmbios - ok15:27:36.0649 3868 MSTEE (b42c6b921f61a6e55159b8be6cd54a36) C:\Windows\system32\drivers\MSTEE.sys15:27:36.0665 3868 MSTEE - ok15:27:36.0696 3868 MTConfig (33599130f44e1f34631cea241de8ac84) C:\Windows\system32\DRIVERS\MTConfig.sys15:27:36.0696 3868 MTConfig - ok15:27:36.0712 3868 Mup (159fad02f64e6381758c990f753bcc80) C:\Windows\system32\Drivers\mup.sys15:27:36.0727 3868 Mup - ok15:27:36.0759 3868 napagent (61d57a5d7c6d9afe10e77dae6e1b445e) C:\Windows\system32\qagentRT.dll15:27:36.0790 3868 napagent - ok15:27:36.0837 3868 NativeWifiP (26384429fcd85d83746f63e798ab1480) C:\Windows\system32\DRIVERS\nwifi.sys15:27:36.0837 3868 NativeWifiP - ok15:27:36.0883 3868 NDIS (e7c54812a2aaf43316eb6930c1ffa108) C:\Windows\system32\drivers\ndis.sys15:27:36.0899 3868 NDIS - ok15:27:36.0915 3868 NdisCap (0e1787aa6c9191d3d319e8bafe86f80c) C:\Windows\system32\DRIVERS\ndiscap.sys15:27:36.0946 3868 NdisCap - ok15:27:36.0977 3868 NdisTapi (e4a8aec125a2e43a9e32afeea7c9c888) C:\Windows\system32\DRIVERS\ndistapi.sys15:27:37.0008 3868 NdisTapi - ok15:27:37.0039 3868 Ndisuio (d8a65dafb3eb41cbb622745676fcd072) C:\Windows\system32\DRIVERS\ndisuio.sys15:27:37.0071 3868 Ndisuio - ok15:27:37.0102 3868 NdisWan (38fbe267e7e6983311179230facb1017) C:\Windows\system32\DRIVERS\ndiswan.sys15:27:37.0133 3868 NdisWan - ok15:27:37.0164 3868 NDProxy (a4bdc541e69674fbff1a8ff00be913f2) C:\Windows\system32\drivers\NDProxy.sys15:27:37.0180 3868 NDProxy - ok15:27:37.0242 3868 Net Driver HPZ12 (510c138564486ff926a3f773205c63d1) C:\Windows\system32\HPZinw12.dll15:27:37.0258 3868 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning15:27:37.0258 3868 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)15:27:37.0289 3868 NetBIOS (80b275b1ce3b0e79909db7b39af74d51) C:\Windows\system32\DRIVERS\netbios.sys15:27:37.0336 3868 NetBIOS - ok15:27:37.0367 3868 NetBT (280122ddcf04b378edd1ad54d71c1e54) C:\Windows\system32\DRIVERS\netbt.sys15:27:37.0398 3868 NetBT - ok15:27:37.0414 3868 Netlogon (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe15:27:37.0429 3868 Netlogon - ok15:27:37.0476 3868 Netman (7cccfca7510684768da22092d1fa4db2) C:\Windows\System32\netman.dll15:27:37.0523 3868 Netman - ok15:27:37.0601 3868 NetMsmqActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe15:27:37.0632 3868 NetMsmqActivator - ok15:27:37.0632 3868 NetPipeActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe15:27:37.0648 3868 NetPipeActivator - ok15:27:37.0679 3868 netprofm (8c338238c16777a802d6a9211eb2ba50) C:\Windows\System32\netprofm.dll15:27:37.0726 3868 netprofm - ok15:27:37.0726 3868 NetTcpActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe15:27:37.0741 3868 NetTcpActivator - ok15:27:37.0741 3868 NetTcpPortSharing (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe15:27:37.0741 3868 NetTcpPortSharing - ok15:27:37.0788 3868 nfrd960 (1d85c4b390b0ee09c7a46b91efb2c097) C:\Windows\system32\DRIVERS\nfrd960.sys15:27:37.0788 3868 nfrd960 - ok15:27:37.0835 3868 NlaSvc (912084381d30d8b89ec4e293053f4710) C:\Windows\System32\nlasvc.dll15:27:37.0866 3868 NlaSvc - ok15:27:37.0882 3868 Npfs (1db262a9f8c087e8153d89bef3d2235f) C:\Windows\system32\drivers\Npfs.sys15:27:37.0913 3868 Npfs - ok15:27:37.0944 3868 NPPTNT2 (9131fe60adfab595c8da53ad6a06aa31) C:\Windows\system32\npptNT2.sys15:27:37.0975 3868 NPPTNT2 ( UnsignedFile.Multi.Generic ) - warning15:27:37.0975 3868 NPPTNT2 - detected UnsignedFile.Multi.Generic (1)15:27:37.0991 3868 nsi (ba387e955e890c8a88306d9b8d06bf17) C:\Windows\system32\nsisvc.dll15:27:38.0007 3868 nsi - ok15:27:38.0022 3868 nsiproxy (e9a0a4d07e53d8fea2bb8387a3293c58) C:\Windows\system32\drivers\nsiproxy.sys15:27:38.0053 3868 nsiproxy - ok15:27:38.0131 3868 Ntfs (81189c3d7763838e55c397759d49007a) C:\Windows\system32\drivers\Ntfs.sys15:27:38.0163 3868 Ntfs - ok15:27:38.0241 3868 Null (f9756a98d69098dca8945d62858a812c) C:\Windows\system32\drivers\Null.sys15:27:38.0272 3868 Null - ok15:27:38.0709 3868 nvlddmkm (3056b19c3fd6d92e02b26f0e4fc9f572) C:\Windows\system32\DRIVERS\nvlddmkm.sys15:27:38.0989 3868 nvlddmkm - ok15:27:39.0099 3868 nvraid (b3e25ee28883877076e0e1ff877d02e0) C:\Windows\system32\drivers\nvraid.sys15:27:39.0114 3868 nvraid - ok15:27:39.0130 3868 nvstor (4380e59a170d88c4f1022eff6719a8a4) C:\Windows\system32\drivers\nvstor.sys15:27:39.0145 3868 nvstor - ok15:27:39.0161 3868 nv_agp (5a0983915f02bae73267cc2a041f717d) C:\Windows\system32\drivers\nv_agp.sys15:27:39.0161 3868 nv_agp - ok15:27:39.0192 3868 ohci1394 (08a70a1f2cdde9bb49b885cb817a66eb) C:\Windows\system32\drivers\ohci1394.sys15:27:39.0223 3868 ohci1394 - ok15:27:39.0270 3868 p2pimsvc (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll15:27:39.0333 3868 p2pimsvc - ok15:27:39.0364 3868 p2psvc (59c3ddd501e39e006dac31bf55150d91) C:\Windows\system32\p2psvc.dll15:27:39.0395 3868 p2psvc - ok15:27:39.0426 3868 Parport (2ea877ed5dd9713c5ac74e8ea7348d14) C:\Windows\system32\DRIVERS\parport.sys15:27:39.0426 3868 Parport - ok15:27:39.0457 3868 partmgr (3f34a1b4c5f6475f320c275e63afce9b) C:\Windows\system32\drivers\partmgr.sys15:27:39.0473 3868 partmgr - ok15:27:39.0473 3868 Parvdm (eb0a59f29c19b86479d36b35983daadc) C:\Windows\system32\DRIVERS\parvdm.sys15:27:39.0489 3868 Parvdm - ok15:27:39.0504 3868 PcaSvc (358ab7956d3160000726574083dfc8a6) C:\Windows\System32\pcasvc.dll15:27:39.0520 3868 PcaSvc - ok15:27:39.0567 3868 pci (673e55c3498eb970088e812ea820aa8f) C:\Windows\system32\drivers\pci.sys15:27:39.0582 3868 pci - ok15:27:39.0598 3868 pciide (afe86f419014db4e5593f69ffe26ce0a) C:\Windows\system32\drivers\pciide.sys15:27:39.0598 3868 pciide - ok15:27:39.0629 3868 pcmcia (f396431b31693e71e8a80687ef523506) C:\Windows\system32\DRIVERS\pcmcia.sys15:27:39.0645 3868 pcmcia - ok15:27:39.0660 3868 pcw (250f6b43d2b613172035c6747aeeb19f) C:\Windows\system32\drivers\pcw.sys15:27:39.0676 3868 pcw - ok15:27:39.0707 3868 PEAUTH (9e0104ba49f4e6973749a02bf41344ed) C:\Windows\system32\drivers\peauth.sys15:27:39.0754 3868 PEAUTH - ok15:27:39.0832 3868 pla (414bba67a3ded1d28437eb66aeb8a720) C:\Windows\system32\pla.dll15:27:39.0879 3868 pla - ok15:27:40.0003 3868 PlugPlay (ec7bc28d207da09e79b3e9faf8b232ca) C:\Windows\system32\umpnpmgr.dll15:27:40.0050 3868 PlugPlay - ok15:27:40.0113 3868 Pml Driver HPZ12 (37e5e8ffbad35605daeec3224ea0e465) C:\Windows\system32\HPZipm12.dll15:27:40.0128 3868 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning15:27:40.0128 3868 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)15:27:40.0159 3868 PnkBstrA (205e1b699fd3f2f9b036eea2ec30c620) C:\Windows\system32\PnkBstrA.exe15:27:40.0175 3868 PnkBstrA - ok15:27:40.0191 3868 PNRPAutoReg (63ff8572611249931eb16bb8eed6afc8) C:\Windows\system32\pnrpauto.dll15:27:40.0222 3868 PNRPAutoReg - ok15:27:40.0253 3868 PNRPsvc (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll15:27:40.0269 3868 PNRPsvc - ok15:27:40.0315 3868 PolicyAgent (53946b69ba0836bd95b03759530c81ec) C:\Windows\System32\ipsecsvc.dll15:27:40.0362 3868 PolicyAgent - ok15:27:40.0378 3868 Power (f87d30e72e03d579a5199ccb3831d6ea) C:\Windows\system32\umpo.dll15:27:40.0425 3868 Power - ok15:27:40.0487 3868 PptpMiniport (631e3e205ad6d86f2aed6a4a8e69f2db) C:\Windows\system32\DRIVERS\raspptp.sys15:27:40.0518 3868 PptpMiniport - ok15:27:40.0549 3868 Processor (85b1e3a0c7585bc4aae6899ec6fcf011) C:\Windows\system32\DRIVERS\processr.sys15:27:40.0565 3868 Processor - ok15:27:40.0596 3868 ProfSvc (cadefac453040e370a1bdff3973be00d) C:\Windows\system32\profsvc.dll15:27:40.0659 3868 ProfSvc - ok15:27:40.0690 3868 ProtectedStorage (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe15:27:40.0690 3868 ProtectedStorage - ok15:27:40.0737 3868 PStrip (bcf8d075fad718fea8ef6e281331a56e) C:\Windows\system32\drivers\pstrip.sys15:27:40.0752 3868 PStrip - ok15:27:40.0799 3868 ql2300 (ab95ecf1f6659a60ddc166d8315b0751) C:\Windows\system32\DRIVERS\ql2300.sys15:27:40.0830 3868 ql2300 - ok15:27:40.0924 3868 ql40xx (b4dd51dd25182244b86737dc51af2270) C:\Windows\system32\DRIVERS\ql40xx.sys15:27:40.0939 3868 ql40xx - ok15:27:40.0971 3868 QWAVE (31ac809e7707eb580b2bdb760390765a) C:\Windows\system32\qwave.dll15:27:40.0986 3868 QWAVE - ok15:27:41.0002 3868 QWAVEdrv (584078ca1b95ca72df2a27c336f9719d) C:\Windows\system32\drivers\qwavedrv.sys15:27:41.0002 3868 QWAVEdrv - ok15:27:41.0017 3868 RasAcd (30a81b53c766d0133bb86d234e5556ab) C:\Windows\system32\DRIVERS\rasacd.sys15:27:41.0049 3868 RasAcd - ok15:27:41.0080 3868 RasAgileVpn (57ec4aef73660166074d8f7f31c0d4fd) C:\Windows\system32\DRIVERS\AgileVpn.sys15:27:41.0111 3868 RasAgileVpn - ok15:27:41.0127 3868 RasAuto (a60f1839849c0c00739787fd5ec03f13) C:\Windows\System32\rasauto.dll15:27:41.0158 3868 RasAuto - ok15:27:41.0189 3868 Rasl2tp (d9f91eafec2815365cbe6d167e4e332a) C:\Windows\system32\DRIVERS\rasl2tp.sys15:27:41.0220 3868 Rasl2tp - ok15:27:41.0267 3868 RasMan (cb9e04dc05eacf5b9a36ca276d475006) C:\Windows\System32\rasmans.dll15:27:41.0283 3868 RasMan - ok15:27:41.0314 3868 RasPppoe (0fe8b15916307a6ac12bfb6a63e45507) C:\Windows\system32\DRIVERS\raspppoe.sys15:27:41.0329 3868 RasPppoe - ok15:27:41.0345 3868 RasSstp (44101f495a83ea6401d886e7fd70096b) C:\Windows\system32\DRIVERS\rassstp.sys15:27:41.0376 3868 RasSstp - ok15:27:41.0423 3868 rdbss (d528bc58a489409ba40334ebf96a311b) C:\Windows\system32\DRIVERS\rdbss.sys15:27:41.0454 3868 rdbss - ok15:27:41.0485 3868 rdpbus (0d8f05481cb76e70e1da06ee9f0da9df) C:\Windows\system32\DRIVERS\rdpbus.sys15:27:41.0501 3868 rdpbus - ok15:27:41.0517 3868 RDPCDD (23dae03f29d253ae74c44f99e515f9a1) C:\Windows\system32\DRIVERS\RDPCDD.sys15:27:41.0548 3868 RDPCDD - ok15:27:41.0579 3868 RDPENCDD (5a53ca1598dd4156d44196d200c94b8a) C:\Windows\system32\drivers\rdpencdd.sys15:27:41.0610 3868 RDPENCDD - ok15:27:41.0626 3868 RDPREFMP (44b0a53cd4f27d50ed461dae0c0b4e1f) C:\Windows\system32\drivers\rdprefmp.sys15:27:41.0657 3868 RDPREFMP - ok15:27:41.0688 3868 RDPWD (f031683e6d1fea157abb2ff260b51e61) C:\Windows\system32\drivers\RDPWD.sys15:27:41.0751 3868 RDPWD - ok15:27:41.0782 3868 rdyboost (518395321dc96fe2c9f0e96ac743b656) C:\Windows\system32\drivers\rdyboost.sys15:27:41.0797 3868 rdyboost - ok15:27:41.0813 3868 RemoteAccess (7b5e1419717fac363a31cc302895217a) C:\Windows\System32\mprdim.dll15:27:41.0844 3868 RemoteAccess - ok15:27:41.0875 3868 RemoteRegistry (cb9a8683f4ef2bf99e123d79950d7935) C:\Windows\system32\regsvc.dll15:27:41.0907 3868 RemoteRegistry - ok15:27:41.0922 3868 ROOTMODEM (564297827d213f52c7a3a2ff749568ca) C:\Windows\system32\Drivers\RootMdm.sys15:27:41.0969 3868 ROOTMODEM - ok15:27:41.0985 3868 RpcEptMapper (78d072f35bc45d9e4e1b61895c152234) C:\Windows\System32\RpcEpMap.dll15:27:42.0016 3868 RpcEptMapper - ok15:27:42.0047 3868 RpcLocator (94d36c0e44677dd26981d2bfeef2a29d) C:\Windows\system32\locator.exe15:27:42.0063 3868 RpcLocator - ok15:27:42.0109 3868 RpcSs (7660f01d3b38aca1747e397d21d790af) C:\Windows\System32\rpcss.dll15:27:42.0141 3868 RpcSs - ok15:27:42.0187 3868 RTL8167 (558684c0bef37c5be04940ee4e607b68) C:\Windows\system32\DRIVERS\Rt86win7.sys15:27:42.0203 3868 RTL8167 - ok15:27:42.0234 3868 SamSs (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe15:27:42.0234 3868 SamSs - ok15:27:42.0312 3868 SANDRA (230fd3749904ca045ea5ec0aa14006e9) C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP1\WNt500x86\Sandra.sys15:27:42.0328 3868 SANDRA - ok15:27:42.0328 3868 SandraAgentSrv (96f6f3e594d780b7e20fdc94504d4d89) C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP1\RpcAgentSrv.exe15:27:42.0359 3868 SandraAgentSrv ( UnsignedFile.Multi.Generic ) - warning15:27:42.0359 3868 SandraAgentSrv - detected UnsignedFile.Multi.Generic (1)15:27:42.0406 3868 sbp2port (05d860da1040f111503ac416ccef2bca) C:\Windows\system32\drivers\sbp2port.sys15:27:42.0406 3868 sbp2port - ok15:27:42.0437 3868 SCardSvr (8fc518ffe9519c2631d37515a68009c4) C:\Windows\System32\SCardSvr.dll15:27:42.0453 3868 SCardSvr - ok15:27:42.0484 3868 scfilter (0693b5ec673e34dc147e195779a4dcf6) C:\Windows\system32\DRIVERS\scfilter.sys15:27:42.0531 3868 scfilter - ok15:27:42.0577 3868 Schedule (a04bb13f8a72f8b6e8b4071723e4e336) C:\Windows\system32\schedsvc.dll15:27:42.0624 3868 Schedule - ok15:27:42.0655 3868 SCPolicySvc (319c6b309773d063541d01df8ac6f55f) C:\Windows\System32\certprop.dll15:27:42.0671 3868 SCPolicySvc - ok15:27:42.0687 3868 SDRSVC (08236c4bce5edd0a0318a438af28e0f7) C:\Windows\System32\SDRSVC.dll15:27:42.0749 3868 SDRSVC - ok15:27:42.0765 3868 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys15:27:42.0780 3868 secdrv - ok15:27:42.0796 3868 seclogon (a59b3a4442c52060cc7a85293aa3546f) C:\Windows\system32\seclogon.dll15:27:42.0843 3868 seclogon - ok15:27:42.0858 3868 SENS (dcb7fcdcc97f87360f75d77425b81737) C:\Windows\system32\sens.dll15:27:42.0874 3868 SENS - ok15:27:42.0905 3868 SensrSvc (50087fe1ee447009c9cc2997b90de53f) C:\Windows\system32\sensrsvc.dll15:27:42.0967 3868 SensrSvc - ok15:27:42.0983 3868 Serenum (9ad8b8b515e3df6acd4212ef465de2d1) C:\Windows\system32\DRIVERS\serenum.sys15:27:43.0014 3868 Serenum - ok15:27:43.0045 3868 Serial (5fb7fcea0490d821f26f39cc5ea3d1e2) C:\Windows\system32\DRIVERS\serial.sys15:27:43.0061 3868 Serial - ok15:27:43.0108 3868 sermouse (79bffb520327ff916a582dfea17aa813) C:\Windows\system32\DRIVERS\sermouse.sys15:27:43.0108 3868 sermouse - ok15:27:43.0155 3868 SessionEnv (4ae380f39a0032eab7dd953030b26d28) C:\Windows\system32\sessenv.dll15:27:43.0186 3868 SessionEnv - ok15:27:43.0217 3868 sffdisk (9f976e1eb233df46fce808d9dea3eb9c) C:\Windows\system32\drivers\sffdisk.sys15:27:43.0248 3868 sffdisk - ok15:27:43.0264 3868 sffp_mmc (932a68ee27833cfd57c1639d375f2731) C:\Windows\system32\drivers\sffp_mmc.sys15:27:43.0295 3868 sffp_mmc - ok15:27:43.0311 3868 sffp_sd (6d4ccaedc018f1cf52866bbbaa235982) C:\Windows\system32\drivers\sffp_sd.sys15:27:43.0326 3868 sffp_sd - ok15:27:43.0342 3868 sfloppy (db96666cc8312ebc45032f30b007a547) C:\Windows\system32\DRIVERS\sfloppy.sys15:27:43.0357 3868 sfloppy - ok15:27:43.0420 3868 SharedAccess (d1a079a0de2ea524513b6930c24527a2) C:\Windows\System32\ipnathlp.dll15:27:43.0451 3868 SharedAccess - ok15:27:43.0498 3868 ShellHWDetection (414da952a35bf5d50192e28263b40577) C:\Windows\System32\shsvcs.dll15:27:43.0529 3868 ShellHWDetection - ok15:27:43.0591 3868 sisagp (2565cac0dc9fe0371bdce60832582b2e) C:\Windows\system32\drivers\sisagp.sys15:27:43.0591 3868 sisagp - ok15:27:43.0623 3868 SiSRaid2 (a9f0486851becb6dda1d89d381e71055) C:\Windows\system32\DRIVERS\SiSRaid2.sys15:27:43.0638 3868 SiSRaid2 - ok15:27:43.0638 3868 SiSRaid4 (3727097b55738e2f554972c3be5bc1aa) C:\Windows\system32\DRIVERS\sisraid4.sys15:27:43.0654 3868 SiSRaid4 - ok15:27:43.0669 3868 Smb (3e21c083b8a01cb70ba1f09303010fce) C:\Windows\system32\DRIVERS\smb.sys15:27:43.0685 3868 Smb - ok15:27:43.0716 3868 SNMPTRAP (6a984831644eca1a33ffeae4126f4f37) C:\Windows\System32\snmptrap.exe15:27:43.0732 3868 SNMPTRAP - ok15:27:43.0732 3868 spldr (95cf1ae7527fb70f7816563cbc09d942) C:\Windows\system32\drivers\spldr.sys15:27:43.0747 3868 spldr - ok15:27:43.0794 3868 Spooler (866a43013535dc8587c258e43579c764) C:\Windows\System32\spoolsv.exe15:27:43.0841 3868 Spooler - ok15:27:43.0966 3868 sppsvc (cf87a1de791347e75b98885214ced2b8) C:\Windows\system32\sppsvc.exe15:27:44.0044 3868 sppsvc - ok15:27:44.0153 3868 sppuinotify (b0180b20b065d89232a78a40fe56eaa6) C:\Windows\system32\sppuinotify.dll15:27:44.0184 3868 sppuinotify - ok15:27:44.0262 3868 sptd (8ea0fd60a5b047e0c734d51aace531c9) C:\Windows\System32\Drivers\sptd.sys15:27:44.0262 3868 Suspicious file (NoAccess): C:\Windows\System32\Drivers\sptd.sys. md5: 8ea0fd60a5b047e0c734d51aace531c915:27:44.0262 3868 sptd ( LockedFile.Multi.Generic ) - warning15:27:44.0262 3868 sptd - detected LockedFile.Multi.Generic (1)15:27:44.0293 3868 srv (e4c2764065d66ea1d2d3ebc28fe99c46) C:\Windows\system32\DRIVERS\srv.sys15:27:44.0356 3868 srv - ok15:27:44.0387 3868 srv2 (03f0545bd8d4c77fa0ae1ceedfcc71ab) C:\Windows\system32\DRIVERS\srv2.sys15:27:44.0403 3868 srv2 - ok15:27:44.0434 3868 srvnet (be6bd660caa6f291ae06a718a4fa8abc) C:\Windows\system32\DRIVERS\srvnet.sys15:27:44.0449 3868 srvnet - ok15:27:44.0481 3868 SSDPSRV (d887c9fd02ac9fa880f6e5027a43e118) C:\Windows\System32\ssdpsrv.dll15:27:44.0512 3868 SSDPSRV - ok15:27:44.0512 3868 SstpSvc (d318f23be45d5e3a107469eb64815b50) C:\Windows\system32\sstpsvc.dll15:27:44.0559 3868 SstpSvc - ok15:27:44.0637 3868 Start BT in service (9d1a8732718438dc8c472d4d7762de5f) C:\Program Files\IVT Corporation\BlueSoleil\StartSkysolSvc.exe15:27:44.0652 3868 Start BT in service - ok15:27:44.0683 3868 Steam Client Service - ok15:27:44.0761 3868 Stereo Service (8d51ca9e6d36bf3be88abe4f4fead8ec) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe15:27:44.0777 3868 Stereo Service - ok15:27:44.0777 3868 stexstor (db32d325c192b801df274bfd12a7e72b) C:\Windows\system32\DRIVERS\stexstor.sys15:27:44.0793 3868 stexstor - ok15:27:44.0839 3868 StiSvc (e1fb3706030fb4578a0d72c2fc3689e4) C:\Windows\System32\wiaservc.dll15:27:44.0886 3868 StiSvc - ok15:27:44.0902 3868 swenum (e58c78a848add9610a4db6d214af5224) C:\Windows\system32\drivers\swenum.sys15:27:44.0917 3868 swenum - ok15:27:44.0949 3868 swprv (a28bd92df340e57b024ba433165d34d7) C:\Windows\System32\swprv.dll15:27:44.0980 3868 swprv - ok15:27:45.0058 3868 SysMain (36650d618ca34c9d357dfd3d89b2c56f) C:\Windows\system32\sysmain.dll15:27:45.0089 3868 SysMain - ok15:27:45.0105 3868 TabletInputService (763fecdc3d30c815fe72dd57936c6cd1) C:\Windows\System32\TabSvc.dll15:27:45.0120 3868 TabletInputService - ok15:27:45.0167 3868 TapiSrv (613bf4820361543956909043a265c6ac) C:\Windows\System32\tapisrv.dll15:27:45.0198 3868 TapiSrv - ok15:27:45.0229 3868 TBS (b799d9fdb26111737f58288d8dc172d9) C:\Windows\System32\tbssvc.dll15:27:45.0276 3868 TBS - ok15:27:45.0370 3868 Tcpip (7fa2e0f8b072bd04b77b421480b6cc22) C:\Windows\system32\drivers\tcpip.sys15:27:45.0417 3868 Tcpip - ok15:27:45.0526 3868 TCPIP6 (7fa2e0f8b072bd04b77b421480b6cc22) C:\Windows\system32\DRIVERS\tcpip.sys15:27:45.0541 3868 TCPIP6 - ok15:27:45.0588 3868 tcpipreg (cca24162e055c3714ce5a88b100c64ed) C:\Windows\system32\drivers\tcpipreg.sys15:27:45.0635 3868 tcpipreg - ok15:27:45.0651 3868 TDPIPE (1cb91b2bd8f6dd367dfc2ef26fd751b2) C:\Windows\system32\drivers\tdpipe.sys15:27:45.0729 3868 TDPIPE - ok15:27:45.0744 3868 TDTCP (2c2c5afe7ee4f620d69c23c0617651a8) C:\Windows\system32\drivers\tdtcp.sys15:27:45.0775 3868 TDTCP - ok15:27:45.0807 3868 tdx (b459575348c20e8121d6039da063c704) C:\Windows\system32\DRIVERS\tdx.sys15:27:45.0838 3868 tdx - ok15:27:45.0869 3868 TermDD (04dbf4b01ea4bf25a9a3e84affac9b20) C:\Windows\system32\drivers\termdd.sys15:27:45.0869 3868 TermDD - ok15:27:45.0916 3868 TermService (382c804c92811be57829d8e550a900e2) C:\Windows\System32\termsrv.dll15:27:45.0947 3868 TermService - ok15:27:45.0978 3868 Themes (42fb6afd6b79d9fe07381609172e7ca4) C:\Windows\system32\themeservice.dll15:27:46.0009 3868 Themes - ok15:27:46.0025 3868 THREADORDER (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll15:27:46.0056 3868 THREADORDER - ok15:27:46.0072 3868 TrkWks (4792c0378db99a9bc2ae2de6cfff0c3a) C:\Windows\System32\trkwks.dll15:27:46.0103 3868 TrkWks - ok15:27:46.0165 3868 TrustedInstaller (2c49b175aee1d4364b91b531417fe583) C:\Windows\servicing\TrustedInstaller.exe15:27:46.0181 3868 TrustedInstaller - ok15:27:46.0197 3868 tssecsrv (254bb140eee3c59d6114c1a86b636877) C:\Windows\system32\DRIVERS\tssecsrv.sys15:27:46.0212 3868 tssecsrv - ok15:27:46.0243 3868 TsUsbFlt (fd1d6c73e6333be727cbcc6054247654) C:\Windows\system32\drivers\tsusbflt.sys15:27:46.0306 3868 TsUsbFlt - ok15:27:46.0353 3868 tunnel (b2fa25d9b17a68bb93d58b0556e8c90d) C:\Windows\system32\DRIVERS\tunnel.sys15:27:46.0384 3868 tunnel - ok15:27:46.0399 3868 uagp35 (750fbcb269f4d7dd2e420c56b795db6d) C:\Windows\system32\DRIVERS\uagp35.sys15:27:46.0415 3868 uagp35 - ok15:27:46.0446 3868 udfs (ee43346c7e4b5e63e54f927babbb32ff) C:\Windows\system32\DRIVERS\udfs.sys15:27:46.0477 3868 udfs - ok15:27:46.0509 3868 UI0Detect (8344fd4fce927880aa1aa7681d4927e5) C:\Windows\system32\UI0Detect.exe15:27:46.0540 3868 UI0Detect - ok15:27:46.0587 3868 uliagpkx (44e8048ace47befbfdc2e9be4cbc8880) C:\Windows\system32\drivers\uliagpkx.sys15:27:46.0587 3868 uliagpkx - ok15:27:46.0602 3868 umbus (d295bed4b898f0fd999fcfa9b32b071b) C:\Windows\system32\drivers\umbus.sys15:27:46.0618 3868 umbus - ok15:27:46.0633 3868 UmPass (7550ad0c6998ba1cb4843e920ee0feac) C:\Windows\system32\DRIVERS\umpass.sys15:27:46.0665 3868 UmPass - ok15:27:46.0711 3868 unisofthid (52acec2902036b5f7031961824e34910) C:\Windows\system32\DRIVERS\unisofthid.sys15:27:46.0758 3868 unisofthid ( UnsignedFile.Multi.Generic ) - warning15:27:46.0758 3868 unisofthid - detected UnsignedFile.Multi.Generic (1)15:27:46.0930 3868 UNS (eb79c6c91a99930015ef29ae7fa802d1) C:\Program Files\Intel\Intel® Management Engine Components\UNS\UNS.exe15:27:46.0977 3868 UNS - ok15:27:47.0070 3868 upnphost (833fbb672460efce8011d262175fad33) C:\Windows\System32\upnphost.dll15:27:47.0101 3868 upnphost - ok15:27:47.0133 3868 usbccgp (bd9c55d7023c5de374507acc7a14e2ac) C:\Windows\system32\DRIVERS\usbccgp.sys15:27:47.0179 3868 usbccgp - ok15:27:47.0211 3868 usbcir (04ec7cec62ec3b6d9354eee93327fc82) C:\Windows\system32\drivers\usbcir.sys15:27:47.0226 3868 usbcir - ok15:27:47.0242 3868 usbehci (f92de757e4b7ce9c07c5e65423f3ae3b) C:\Windows\system32\DRIVERS\usbehci.sys15:27:47.0242 3868 usbehci - ok15:27:47.0273 3868 usbhub (8dc94aec6a7e644a06135ae7506dc2e9) C:\Windows\system32\DRIVERS\usbhub.sys15:27:47.0304 3868 usbhub - ok15:27:47.0320 3868 usbohci (e185d44fac515a18d9deddc23c2cdf44) C:\Windows\system32\DRIVERS\usbohci.sys15:27:47.0351 3868 usbohci - ok15:27:47.0382 3868 usbprint (797d862fe0875e75c7cc4c1ad7b30252) C:\Windows\system32\DRIVERS\usbprint.sys15:27:47.0382 3868 usbprint - ok15:27:47.0398 3868 usbscan (576096ccbc07e7c4ea4f5e6686d6888f) C:\Windows\system32\DRIVERS\usbscan.sys15:27:47.0429 3868 usbscan - ok15:27:47.0460 3868 USBSTOR (f991ab9cc6b908db552166768176896a) C:\Windows\system32\DRIVERS\USBSTOR.SYS15:27:47.0538 3868 USBSTOR - ok15:27:47.0569 3868 usbuhci (68df884cf41cdada664beb01daf67e3d) C:\Windows\system32\drivers\usbuhci.sys15:27:47.0569 3868 usbuhci - ok15:27:47.0601 3868 UxSms (081e6e1c91aec36758902a9f727cd23c) C:\Windows\System32\uxsms.dll15:27:47.0616 3868 UxSms - ok15:27:47.0647 3868 VaultSvc (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe15:27:47.0647 3868 VaultSvc - ok15:27:47.0679 3868 VComm (51750b0539986186c6931fc40d171521) C:\Windows\system32\DRIVERS\VComm.sys15:27:47.0679 3868 VComm - ok15:27:47.0694 3868 VcommMgr (6d9c891c0a761afed1f3609c2e56f2b9) C:\Windows\system32\Drivers\VcommMgr.sys15:27:47.0710 3868 VcommMgr - ok15:27:47.0757 3868 vdrvroot (a059c4c3edb09e07d21a8e5c0aabd3cb) C:\Windows\system32\drivers\vdrvroot.sys15:27:47.0772 3868 vdrvroot - ok15:27:47.0819 3868 vds (c3cd30495687c2a2f66a65ca6fd89be9) C:\Windows\System32\vds.exe15:27:47.0850 3868 vds - ok15:27:47.0881 3868 vga (17c408214ea61696cec9c66e388b14f3) C:\Windows\system32\DRIVERS\vgapnp.sys15:27:47.0897 3868 vga - ok15:27:47.0913 3868 VgaSave (8e38096ad5c8570a6f1570a61e251561) C:\Windows\System32\drivers\vga.sys15:27:47.0944 3868 VgaSave - ok15:27:47.0959 3868 vhdmp (5461686cca2fda57b024547733ab42e3) C:\Windows\system32\drivers\vhdmp.sys15:27:47.0975 3868 vhdmp - ok15:27:48.0006 3868 viaagp (c829317a37b4bea8f39735d4b076e923) C:\Windows\system32\drivers\viaagp.sys15:27:48.0006 3868 viaagp - ok15:27:48.0022 3868 ViaC7 (e02f079a6aa107f06b16549c6e5c7b74) C:\Windows\system32\DRIVERS\viac7.sys15:27:48.0037 3868 ViaC7 - ok15:27:48.0069 3868 viaide (e43574f6a56a0ee11809b48c09e4fd3c) C:\Windows\system32\drivers\viaide.sys15:27:48.0069 3868 viaide - ok15:27:48.0084 3868 volmgr (4c63e00f2f4b5f86ab48a58cd990f212) C:\Windows\system32\drivers\volmgr.sys15:27:48.0100 3868 volmgr - ok15:27:48.0131 3868 volmgrx (b5bb72067ddddbbfb04b2f89ff8c3c87) C:\Windows\system32\drivers\volmgrx.sys15:27:48.0147 3868 volmgrx - ok15:27:48.0178 3868 volsnap (f497f67932c6fa693d7de2780631cfe7) C:\Windows\system32\drivers\volsnap.sys15:27:48.0193 3868 volsnap - ok15:27:48.0225 3868 vproiah (42f5fc978f64faab5ac7160eb178f29b) C:\Windows\system32\DRIVERS\vproiah.sys15:27:48.0240 3868 vproiah ( UnsignedFile.Multi.Generic ) - warning15:27:48.0240 3868 vproiah - detected UnsignedFile.Multi.Generic (1)15:27:48.0240 3868 vsmraid (9dfa0cc2f8855a04816729651175b631) C:\Windows\system32\DRIVERS\vsmraid.sys15:27:48.0256 3868 vsmraid - ok15:27:48.0334 3868 VSS (209a3b1901b83aeb8527ed211cce9e4c) C:\Windows\system32\vssvc.exe15:27:48.0381 3868 VSS - ok15:27:48.0396 3868 vwifibus (90567b1e658001e79d7c8bbd3dde5aa6) C:\Windows\System32\drivers\vwifibus.sys15:27:48.0427 3868 vwifibus - ok15:27:48.0474 3868 W32Time (55187fd710e27d5095d10a472c8baf1c) C:\Windows\system32\w32time.dll15:27:48.0505 3868 W32Time - ok15:27:48.0521 3868 WacomPen (de3721e89c653aa281428c8a69745d90) C:\Windows\system32\DRIVERS\wacompen.sys15:27:48.0552 3868 WacomPen - ok15:27:48.0599 3868 WANARP (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys15:27:48.0630 3868 WANARP - ok15:27:48.0630 3868 Wanarpv6 (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys15:27:48.0661 3868 Wanarpv6 - ok15:27:48.0739 3868 WatAdminSvc (353a04c273ec58475d8633e75ccd5604) C:\Windows\system32\Wat\WatAdminSvc.exe15:27:48.0786 3868 WatAdminSvc - ok15:27:48.0942 3868 wbengine (691e3285e53dca558e1a84667f13e15a) C:\Windows\system32\wbengine.exe15:27:48.0989 3868 wbengine - ok15:27:49.0020 3868 WbioSrvc (9614b5d29dc76ac3c29f6d2d3aa70e67) C:\Windows\System32\wbiosrvc.dll15:27:49.0051 3868 WbioSrvc - ok15:27:49.0083 3868 wcncsvc (34eee0dfaadb4f691d6d5308a51315dc) C:\Windows\System32\wcncsvc.dll15:27:49.0098 3868 wcncsvc - ok15:27:49.0114 3868 WcsPlugInService (5d930b6357a6d2af4d7653bdabbf352f) C:\Windows\System32\WcsPlugInService.dll15:27:49.0161 3868 WcsPlugInService - ok15:27:49.0192 3868 Wd (1112a9badacb47b7c0bb0392e3158dff) C:\Windows\system32\DRIVERS\wd.sys15:27:49.0207 3868 Wd - ok15:27:49.0239 3868 Wdf01000 (9950e3d0f08141c7e89e64456ae7dc73) C:\Windows\system32\drivers\Wdf01000.sys15:27:49.0254 3868 Wdf01000 - ok15:27:49.0270 3868 WdiServiceHost (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll15:27:49.0332 3868 WdiServiceHost - ok15:27:49.0332 3868 WdiSystemHost (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll15:27:49.0332 3868 WdiSystemHost - ok15:27:49.0379 3868 WebClient (a9d880f97530d5b8fee278923349929d) C:\Windows\System32\webclnt.dll15:27:49.0410 3868 WebClient - ok15:27:49.0457 3868 Wecsvc (760f0afe937a77cff27153206534f275) C:\Windows\system32\wecsvc.dll15:27:49.0473 3868 Wecsvc - ok15:27:49.0535 3868 WeGameClientService (a8e0e75f8411ee0fce92f2ce65bdeeec) C:\Program Files\WeGame\WGClientService.exe15:27:49.0551 3868 WeGameClientService - ok15:27:49.0551 3868 wercplsupport (ac804569bb2364fb6017370258a4091b) C:\Windows\System32\wercplsupport.dll15:27:49.0582 3868 wercplsupport - ok15:27:49.0597 3868 WerSvc (08e420d873e4fd85241ee2421b02c4a4) C:\Windows\System32\WerSvc.dll15:27:49.0629 3868 WerSvc - ok15:27:49.0660 3868 WfpLwf (8b9a943f3b53861f2bfaf6c186168f79) C:\Windows\system32\DRIVERS\wfplwf.sys15:27:49.0691 3868 WfpLwf - ok15:27:49.0722 3868 WIMMount (5cf95b35e59e2a38023836fff31be64c) C:\Windows\system32\drivers\wimmount.sys15:27:49.0722 3868 WIMMount - ok15:27:49.0785 3868 WinDefend (3fae8f94296001c32eab62cd7d82e0fd) C:\Program Files\Windows Defender\mpsvc.dll15:27:49.0816 3868 WinDefend - ok15:27:49.0816 3868 WinHttpAutoProxySvc - ok15:27:49.0894 3868 Winmgmt (f62e510b6ad4c21eb9fe8668ed251826) C:\Windows\system32\wbem\WMIsvc.dll15:27:49.0909 3868 Winmgmt - ok15:27:49.0987 3868 WinRM (1b91cd34ea3a90ab6a4ef0550174f4cc) C:\Windows\system32\WsmSvc.dll15:27:50.0019 3868 WinRM - ok15:27:50.0081 3868 WinUsb (a67e5f9a400f3bd1be3d80613b45f708) C:\Windows\system32\DRIVERS\WinUsb.sys15:27:50.0097 3868 WinUsb - ok15:27:50.0159 3868 Wlansvc (16935c98ff639d185086a3529b1f2067) C:\Windows\System32\wlansvc.dll15:27:50.0175 3868 Wlansvc - ok15:27:50.0315 3868 wlidsvc (5144ae67d60ec653f97ddf3feed29e77) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE15:27:50.0346 3868 wlidsvc - ok15:27:50.0440 3868 WmiAcpi (0217679b8fca58714c3bf2726d2ca84e) C:\Windows\system32\drivers\wmiacpi.sys15:27:50.0455 3868 WmiAcpi - ok15:27:50.0518 3868 wmiApSrv (6eb6b66517b048d87dc1856ddf1f4c3f) C:\Windows\system32\wbem\WmiApSrv.exe15:27:50.0533 3868 wmiApSrv - ok15:27:50.0643 3868 WMPNetworkSvc (3b40d3a61aa8c21b88ae57c58ab3122e) C:\Program Files\Windows Media Player\wmpnetwk.exe15:27:50.0689 3868 WMPNetworkSvc - ok15:27:50.0783 3868 WPCSvc (a2f0ec770a92f2b3f9de6d518e11409c) C:\Windows\System32\wpcsvc.dll15:27:50.0830 3868 WPCSvc - ok15:27:50.0861 3868 WPDBusEnum (aa53356d60af47eacc85bc617a4f3f66) C:\Windows\system32\wpdbusenum.dll15:27:50.0908 3868 WPDBusEnum - ok15:27:50.0939 3868 ws2ifsl (6db3276587b853bf886b69528fdb048c) C:\Windows\system32\drivers\ws2ifsl.sys15:27:50.0986 3868 ws2ifsl - ok15:27:51.0001 3868 wscsvc (6f5d49efe0e7164e03ae773a3fe25340) C:\Windows\system32\wscsvc.dll15:27:51.0017 3868 wscsvc - ok15:27:51.0017 3868 WSearch - ok15:27:51.0111 3868 wuauserv (fc3ec24fce372c89423e015a2ac1a31e) C:\Windows\system32\wuaueng.dll15:27:51.0157 3868 wuauserv - ok15:27:51.0267 3868 WudfPf (e714a1c0354636837e20ccbf00888ee7) C:\Windows\system32\drivers\WudfPf.sys15:27:51.0313 3868 WudfPf - ok15:27:51.0360 3868 WUDFRd (1023ee888c9b47178c5293ed5336ab69) C:\Windows\system32\DRIVERS\WUDFRd.sys15:27:51.0391 3868 WUDFRd - ok15:27:51.0423 3868 wudfsvc (8d1e1e529a2c9e9b6a85b55a345f7629) C:\Windows\System32\WUDFSvc.dll15:27:51.0469 3868 wudfsvc - ok15:27:51.0501 3868 WwanSvc (ff2d745b560f7c71b31f30f4d49f73d2) C:\Windows\System32\wwansvc.dll15:27:51.0516 3868 WwanSvc - ok15:27:51.0563 3868 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR015:27:51.0610 3868 \Device\Harddisk0\DR0 ( Rootkit.Boot.Sinowal.b ) - infected15:27:51.0610 3868 \Device\Harddisk0\DR0 - detected Rootkit.Boot.Sinowal.b (0)15:27:51.0610 3868 \Device\Harddisk0\DR0 ( TDSS File System ) - warning15:27:51.0610 3868 \Device\Harddisk0\DR0 - detected TDSS File System (1)15:27:51.0610 3868 Boot (0x1200) (70896d25c8d8fb92420b712e32369125) \Device\Harddisk0\DR0\Partition015:27:51.0610 3868 \Device\Harddisk0\DR0\Partition0 - ok15:27:51.0641 3868 Boot (0x1200) (216c387358dc145099daa82683ffef24) \Device\Harddisk0\DR0\Partition115:27:51.0641 3868 \Device\Harddisk0\DR0\Partition1 - ok15:27:51.0641 3868 ============================================================15:27:51.0641 3868 Scan finished15:27:51.0641 3868 ============================================================15:27:51.0641 4416 Detected object count: 1115:27:51.0641 4416 Actual detected object count: 1115:29:31.0856 4416 hpqcxs08 ( UnsignedFile.Multi.Generic ) - skipped by user15:29:31.0856 4416 hpqcxs08 ( UnsignedFile.Multi.Generic ) - User select action: Skip15:29:31.0856 4416 hpqddsvc ( UnsignedFile.Multi.Generic ) - skipped by user15:29:31.0856 4416 hpqddsvc ( UnsignedFile.Multi.Generic ) - User select action: Skip15:29:31.0856 4416 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user15:29:31.0856 4416 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip15:29:31.0856 4416 NPPTNT2 ( UnsignedFile.Multi.Generic ) - skipped by user15:29:31.0856 4416 NPPTNT2 ( UnsignedFile.Multi.Generic ) - User select action: Skip15:29:31.0856 4416 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user15:29:31.0856 4416 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip15:29:31.0856 4416 SandraAgentSrv ( UnsignedFile.Multi.Generic ) - skipped by user15:29:31.0856 4416 SandraAgentSrv ( UnsignedFile.Multi.Generic ) - User select action: Skip15:29:31.0856 4416 sptd ( LockedFile.Multi.Generic ) - skipped by user15:29:31.0856 4416 sptd ( LockedFile.Multi.Generic ) - User select action: Skip15:29:31.0856 4416 unisofthid ( UnsignedFile.Multi.Generic ) - skipped by user15:29:31.0856 4416 unisofthid ( UnsignedFile.Multi.Generic ) - User select action: Skip15:29:31.0856 4416 vproiah ( UnsignedFile.Multi.Generic ) - skipped by user15:29:31.0856 4416 vproiah ( UnsignedFile.Multi.Generic ) - User select action: Skip15:29:32.0090 4416 \Device\Harddisk0\DR0\# - copied to quarantine15:29:32.0090 4416 \Device\Harddisk0\DR0 - copied to quarantine15:29:32.0136 4416 \Device\Harddisk0\DR0 ( Rootkit.Boot.Sinowal.b ) - will be cured on reboot15:29:32.0152 4416 \Device\Harddisk0\DR0 - ok15:29:32.0152 4416 \Device\Harddisk0\DR0 ( Rootkit.Boot.Sinowal.b ) - User select action: Cure15:29:32.0152 4416 \Device\Harddisk0\DR0 ( TDSS File System ) - skipped by user15:29:32.0152 4416 \Device\Harddisk0\DR0 ( TDSS File System ) - User select action: Skip15:29:34.0430 5604 Deinitialize success ---------------- Hitman Pro не ми излезе Активирай безплатен лиценз .HitmanPro_20120806_1539.rar Цитирай Link to comment Сподели другаде More sharing options...
Night_Raven Публикувано Август 6, 2012 Report Share Публикувано Август 6, 2012 Явно все пак е имало гадинка. Има ли подобрение? Ако има, не бързай да изчезваш. Цитирай Link to comment Сподели другаде More sharing options...
mst Публикувано Август 6, 2012 Report Share Публикувано Август 6, 2012 Не,няма подобрение . Цитирай Link to comment Сподели другаде More sharing options...
Night_Raven Публикувано Август 6, 2012 Report Share Публикувано Август 6, 2012 Всъщност сега забелязах, че дневникът от сканирането с TDSSKiller е от 24-ти юли. Да не би да търсиш помощ за проблема и на друго място и да изпълняваш други инструкции за почистване? Ако не, изтрий всички дневници на TDSSKiller и повтори сканриането. Цитирай Link to comment Сподели другаде More sharing options...
tonysto Публикувано Август 6, 2012 Report Share Публикувано Август 6, 2012 Изпращам докладите според указанията.OTL.TxtExtras.Txt Цитирай Link to comment Сподели другаде More sharing options...
mst Публикувано Август 7, 2012 Report Share Публикувано Август 7, 2012 Единствено само от тук търся помощ. Не знам защо датата е от 24 - юли. ------------------------------ 07:16:19.0327 0864 TDSS rootkit removing tool 2.7.48.0 Jul 24 2012 13:16:3207:16:19.0609 0864 ============================================================07:16:19.0609 0864 Current date / time: 2012/08/07 07:16:19.060907:16:19.0609 0864 SystemInfo:07:16:19.0609 0864 07:16:19.0609 0864 OS Version: 6.1.7601 ServicePack: 1.007:16:19.0609 0864 Product type: Workstation07:16:19.0609 0864 ComputerName: JIMMY07:16:19.0609 0864 UserName: LittleJimmy07:16:19.0609 0864 Windows directory: C:\Windows07:16:19.0609 0864 System windows directory: C:\Windows07:16:19.0609 0864 Processor architecture: Intel x8607:16:19.0609 0864 Number of processors: 207:16:19.0609 0864 Page size: 0x100007:16:19.0609 0864 Boot type: Normal boot07:16:19.0609 0864 ============================================================07:16:20.0164 0864 Drive \Device\Harddisk0\DR0 - Size: 0x950B056000 (596.17 Gb), SectorSize: 0x200, Cylinders: 0x13001, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x0000005007:16:20.0165 0864 ============================================================07:16:20.0165 0864 \Device\Harddisk0\DR0:07:16:20.0166 0864 MBR partitions:07:16:20.0166 0864 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x17B9668907:16:20.0181 0864 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x17B96707, BlocksNum 0x32CC07BA07:16:20.0181 0864 ============================================================07:16:20.0197 0864 C: <-> \Device\Harddisk0\DR0\Partition007:16:20.0223 0864 D: <-> \Device\Harddisk0\DR0\Partition107:16:20.0223 0864 ============================================================07:16:20.0223 0864 Initialize success07:16:20.0223 0864 ============================================================07:16:49.0188 4652 ============================================================07:16:49.0188 4652 Scan started07:16:49.0188 4652 Mode: Manual; SigCheck; TDLFS;07:16:49.0188 4652 ============================================================07:16:49.0521 4652 1394ohci (1b133875b8aa8ac48969bd3458afe9f5) C:\Windows\system32\drivers\1394ohci.sys07:16:49.0614 4652 1394ohci - ok07:16:49.0646 4652 acnzjhyt - ok07:16:49.0674 4652 ACPI (cea80c80bed809aa0da6febc04733349) C:\Windows\system32\drivers\ACPI.sys07:16:49.0687 4652 ACPI - ok07:16:49.0729 4652 AcpiPmi (1efbc664abff416d1d07db115dcb264f) C:\Windows\system32\drivers\acpipmi.sys07:16:49.0789 4652 AcpiPmi - ok07:16:49.0872 4652 AdobeFlashPlayerUpdateSvc (f19c98ad81d2c0e1bbfd8153d2c80ee8) C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe07:16:49.0882 4652 AdobeFlashPlayerUpdateSvc - ok07:16:49.0934 4652 adp94xx (21e785ebd7dc90a06391141aac7892fb) C:\Windows\system32\DRIVERS\adp94xx.sys07:16:49.0950 4652 adp94xx - ok07:16:49.0972 4652 adpahci (0c676bc278d5b59ff5abd57bbe9123f2) C:\Windows\system32\DRIVERS\adpahci.sys07:16:49.0984 4652 adpahci - ok07:16:50.0004 4652 adpu320 (7c7b5ee4b7b822ec85321fe23a27db33) C:\Windows\system32\DRIVERS\adpu320.sys07:16:50.0014 4652 adpu320 - ok07:16:50.0043 4652 AeLookupSvc (8b5eefeec1e6d1a72a06c526628ad161) C:\Windows\System32\aelupsvc.dll07:16:50.0108 4652 AeLookupSvc - ok07:16:50.0173 4652 AFD (9ebbba55060f786f0fcaa3893bfa2806) C:\Windows\system32\drivers\afd.sys07:16:50.0239 4652 AFD - ok07:16:50.0271 4652 agp440 (507812c3054c21cef746b6ee3d04dd6e) C:\Windows\system32\drivers\agp440.sys07:16:50.0292 4652 agp440 - ok07:16:50.0321 4652 aic78xx (8b30250d573a8f6b4bd23195160d8707) C:\Windows\system32\DRIVERS\djsvs.sys07:16:50.0329 4652 aic78xx - ok07:16:50.0356 4652 ALG (18a54e132947cd98fea9accc57f98f13) C:\Windows\System32\alg.exe07:16:50.0418 4652 ALG - ok07:16:50.0456 4652 aliide (0d40bcf52ea90fc7df2aeab6503dea44) C:\Windows\system32\drivers\aliide.sys07:16:50.0464 4652 aliide - ok07:16:50.0505 4652 AMD External Events Utility (ec98ca8298f67926fa50876348534b1d) C:\Windows\system32\atiesrxx.exe07:16:50.0565 4652 AMD External Events Utility - ok07:16:50.0584 4652 amdagp (3c6600a0696e90a463771c7422e23ab5) C:\Windows\system32\drivers\amdagp.sys07:16:50.0593 4652 amdagp - ok07:16:50.0620 4652 amdide (cd5914170297126b6266860198d1d4f0) C:\Windows\system32\drivers\amdide.sys07:16:50.0628 4652 amdide - ok07:16:50.0652 4652 AmdK8 (00dda200d71bac534bf56a9db5dfd666) C:\Windows\system32\DRIVERS\amdk8.sys07:16:50.0713 4652 AmdK8 - ok07:16:51.0058 4652 amdkmdag (65b44179cf184b08e86097bffbf03f24) C:\Windows\system32\DRIVERS\atikmdag.sys07:16:51.0265 4652 amdkmdag - ok07:16:51.0385 4652 amdkmdap (5e1c65524ff1713711ce27879d813384) C:\Windows\system32\DRIVERS\atikmpag.sys07:16:51.0414 4652 amdkmdap - ok07:16:51.0447 4652 AmdPPM (3cbf30f5370fda40dd3e87df38ea53b6) C:\Windows\system32\DRIVERS\amdppm.sys07:16:51.0479 4652 AmdPPM - ok07:16:51.0521 4652 amdsata (d320bf87125326f996d4904fe24300fc) C:\Windows\system32\drivers\amdsata.sys07:16:51.0540 4652 amdsata - ok07:16:51.0554 4652 amdsbs (ea43af0c423ff267355f74e7a53bdaba) C:\Windows\system32\DRIVERS\amdsbs.sys07:16:51.0564 4652 amdsbs - ok07:16:51.0571 4652 amdxata (46387fb17b086d16dea267d5be23a2f2) C:\Windows\system32\drivers\amdxata.sys07:16:51.0579 4652 amdxata - ok07:16:51.0613 4652 AppID (aea177f783e20150ace5383ee368da19) C:\Windows\system32\drivers\appid.sys07:16:51.0702 4652 AppID - ok07:16:51.0726 4652 AppIDSvc (62a9c86cb6085e20db4823e4e97826f5) C:\Windows\System32\appidsvc.dll07:16:51.0759 4652 AppIDSvc - ok07:16:51.0804 4652 Appinfo (fb1959012294d6ad43e5304df65e3c26) C:\Windows\System32\appinfo.dll07:16:51.0853 4652 Appinfo - ok07:16:51.0910 4652 arc (2932004f49677bd84dbc72edb754ffb3) C:\Windows\system32\DRIVERS\arc.sys07:16:51.0919 4652 arc - ok07:16:51.0939 4652 arcsas (5d6f36c46fd283ae1b57bd2e9feb0bc7) C:\Windows\system32\DRIVERS\arcsas.sys07:16:51.0948 4652 arcsas - ok07:16:52.0035 4652 aspnet_state (776acefa0ca9df0faa51a5fb2f435705) C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe07:16:52.0043 4652 aspnet_state - ok07:16:52.0060 4652 AsyncMac (add2ade1c2b285ab8378d2daaf991481) C:\Windows\system32\DRIVERS\asyncmac.sys07:16:52.0179 4652 AsyncMac - ok07:16:52.0233 4652 atapi (338c86357871c167a96ab976519bf59e) C:\Windows\system32\drivers\atapi.sys07:16:52.0240 4652 atapi - ok07:16:52.0319 4652 AtiHDAudioService (7725aecceddf81bd8374c77157e450ea) C:\Windows\system32\drivers\AtihdW73.sys07:16:52.0381 4652 AtiHDAudioService - ok07:16:52.0433 4652 AudioEndpointBuilder (ce3b4e731638d2ef62fcb419be0d39f0) C:\Windows\System32\Audiosrv.dll07:16:52.0472 4652 AudioEndpointBuilder - ok07:16:52.0476 4652 Audiosrv (ce3b4e731638d2ef62fcb419be0d39f0) C:\Windows\System32\Audiosrv.dll07:16:52.0499 4652 Audiosrv - ok07:16:52.0552 4652 AxInstSV (6e30d02aac9cac84f421622e3a2f6178) C:\Windows\System32\AxInstSV.dll07:16:52.0638 4652 AxInstSV - ok07:16:52.0682 4652 b06bdrv (1a231abec60fd316ec54c66715543cec) C:\Windows\system32\DRIVERS\bxvbdx.sys07:16:52.0726 4652 b06bdrv - ok07:16:52.0752 4652 b57nd60x (bd8869eb9cde6bbe4508d869929869ee) C:\Windows\system32\DRIVERS\b57nd60x.sys07:16:52.0787 4652 b57nd60x - ok07:16:52.0833 4652 BDESVC (ee1e9c3bb8228ae423dd38db69128e71) C:\Windows\System32\bdesvc.dll07:16:52.0884 4652 BDESVC - ok07:16:52.0896 4652 Beep (505506526a9d467307b3c393dedaf858) C:\Windows\system32\drivers\Beep.sys07:16:52.0940 4652 Beep - ok07:16:53.0003 4652 BFE (1e2bac209d184bb851e1a187d8a29136) C:\Windows\System32\bfe.dll07:16:53.0045 4652 BFE - ok07:16:53.0142 4652 BingDesktopUpdate (1b63f2b7ca6b5290cc124cdd07520bc9) C:\Program Files\Microsoft\BingDesktop\BingDesktopUpdater.exe07:16:53.0163 4652 BingDesktopUpdate - ok07:16:53.0208 4652 BITS (e585445d5021971fae10393f0f1c3961) C:\Windows\system32\qmgr.dll07:16:53.0256 4652 BITS - ok07:16:53.0289 4652 blbdrive (2287078ed48fcfc477b05b20cf38f36f) C:\Windows\system32\DRIVERS\blbdrive.sys07:16:53.0313 4652 blbdrive - ok07:16:53.0359 4652 BlueletAudio (5ff9a3f3476d726ae62da82d5da94c36) C:\Windows\system32\DRIVERS\blueletaudio.sys07:16:53.0373 4652 BlueletAudio - ok07:16:53.0381 4652 BlueletSCOAudio (bd91afc523fd59f881e1763c38fb772f) C:\Windows\system32\DRIVERS\BlueletSCOAudio.sys07:16:53.0389 4652 BlueletSCOAudio - ok07:16:53.0455 4652 BlueSoleil Hid Service (e460dbc78b9162a569c6ce3b7d31216d) C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe07:16:53.0475 4652 BlueSoleil Hid Service - ok07:16:53.0510 4652 bowser (8f2da3028d5fcbd1a060a3de64cd6506) C:\Windows\system32\DRIVERS\bowser.sys07:16:53.0550 4652 bowser - ok07:16:53.0568 4652 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\DRIVERS\BrFiltLo.sys07:16:53.0617 4652 BrFiltLo - ok07:16:53.0629 4652 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\DRIVERS\BrFiltUp.sys07:16:53.0659 4652 BrFiltUp - ok07:16:53.0700 4652 BridgeMP (77361d72a04f18809d0efb6cceb74d4b) C:\Windows\system32\DRIVERS\bridge.sys07:16:53.0756 4652 BridgeMP - ok07:16:53.0805 4652 Browser (6e11f33d14d020f58d5e02e4d67dfa19) C:\Windows\System32\browser.dll07:16:53.0847 4652 Browser - ok07:16:53.0882 4652 Brserid (845b8ce732e67f3b4133164868c666ea) C:\Windows\System32\Drivers\Brserid.sys07:16:53.0906 4652 Brserid - ok07:16:53.0916 4652 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\System32\Drivers\BrSerWdm.sys07:16:53.0941 4652 BrSerWdm - ok07:16:53.0965 4652 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\System32\Drivers\BrUsbMdm.sys07:16:53.0992 4652 BrUsbMdm - ok07:16:53.0995 4652 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\System32\Drivers\BrUsbSer.sys07:16:54.0038 4652 BrUsbSer - ok07:16:54.0080 4652 BT (c5cce2b26f73f8cf7f3c82159e79aa08) C:\Windows\system32\DRIVERS\btnetdrv.sys07:16:54.0088 4652 BT - ok07:16:54.0104 4652 Btcsrusb (fb2abc6d08d9f8d5ed8e02cbd18b39bb) C:\Windows\system32\Drivers\btcusb.sys07:16:54.0111 4652 Btcsrusb - ok07:16:54.0117 4652 BTHidEnum (ce643d0918123d76a5caab008fca9663) C:\Windows\system32\Drivers\vbtenum.sys07:16:54.0124 4652 BTHidEnum - ok07:16:54.0140 4652 BTHidMgr (dfca4fe4c8aec786b4d0f432eb730f48) C:\Windows\system32\Drivers\BTHidMgr.sys07:16:54.0147 4652 BTHidMgr - ok07:16:54.0158 4652 BTHMODEM (ed3df7c56ce0084eb2034432fc56565a) C:\Windows\system32\DRIVERS\bthmodem.sys07:16:54.0197 4652 BTHMODEM - ok07:16:54.0231 4652 bthserv (1df19c96eef6c29d1c3e1a8678e07190) C:\Windows\system32\bthserv.dll07:16:54.0264 4652 bthserv - ok07:16:54.0350 4652 catchme - ok07:16:54.0384 4652 cdfs (77ea11b065e0a8ab902d78145ca51e10) C:\Windows\system32\DRIVERS\cdfs.sys07:16:54.0426 4652 cdfs - ok07:16:54.0471 4652 cdrom (be167ed0fdb9c1fa1133953c18d5a6c9) C:\Windows\system32\DRIVERS\cdrom.sys07:16:54.0515 4652 cdrom - ok07:16:54.0552 4652 CertPropSvc (319c6b309773d063541d01df8ac6f55f) C:\Windows\System32\certprop.dll07:16:54.0586 4652 CertPropSvc - ok07:16:54.0602 4652 circlass (3fe3fe94a34df6fb06e6418d0f6a0060) C:\Windows\system32\DRIVERS\circlass.sys07:16:54.0613 4652 circlass - ok07:16:54.0656 4652 CLFS (635181e0e9bbf16871bf5380d71db02d) C:\Windows\system32\CLFS.sys07:16:54.0667 4652 CLFS - ok07:16:54.0722 4652 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe07:16:54.0730 4652 clr_optimization_v2.0.50727_32 - ok07:16:54.0784 4652 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe07:16:54.0808 4652 clr_optimization_v4.0.30319_32 - ok07:16:54.0827 4652 CmBatt (dea805815e587dad1dd2c502220b5616) C:\Windows\system32\DRIVERS\CmBatt.sys07:16:54.0853 4652 CmBatt - ok07:16:54.0876 4652 cmdide (c537b1db64d495b9b4717b4d6d9edbf2) C:\Windows\system32\drivers\cmdide.sys07:16:54.0883 4652 cmdide - ok07:16:54.0935 4652 CNG (247b4ce2dab1160cd422d532d5241e1f) C:\Windows\system32\Drivers\cng.sys07:16:54.0957 4652 CNG - ok07:16:54.0964 4652 Compbatt (a6023d3823c37043986713f118a89bee) C:\Windows\system32\DRIVERS\compbatt.sys07:16:54.0972 4652 Compbatt - ok07:16:54.0992 4652 CompositeBus (cbe8c58a8579cfe5fccf809e6f114e89) C:\Windows\system32\drivers\CompositeBus.sys07:16:55.0035 4652 CompositeBus - ok07:16:55.0038 4652 COMSysApp - ok07:16:55.0094 4652 cpuz135 (3411fdf098aa20193eee5ffa36ba43b2) C:\Windows\system32\drivers\cpuz135_x32.sys07:16:55.0106 4652 cpuz135 - ok07:16:55.0122 4652 crcdisk (2c4ebcfc84a9b44f209dff6c6e6c61d1) C:\Windows\system32\DRIVERS\crcdisk.sys07:16:55.0130 4652 crcdisk - ok07:16:55.0176 4652 CryptSvc (06e771aa596b8761107ab57e99f128d7) C:\Windows\system32\cryptsvc.dll07:16:55.0207 4652 CryptSvc - ok07:16:55.0257 4652 DcomLaunch (7660f01d3b38aca1747e397d21d790af) C:\Windows\system32\rpcss.dll07:16:55.0296 4652 DcomLaunch - ok07:16:55.0325 4652 defragsvc (8d6e10a2d9a5eed59562d9b82cf804e1) C:\Windows\System32\defragsvc.dll07:16:55.0361 4652 defragsvc - ok07:16:55.0388 4652 DfsC (f024449c97ec1e464aaffda18593db88) C:\Windows\system32\Drivers\dfsc.sys07:16:55.0427 4652 DfsC - ok07:16:55.0479 4652 Dhcp (e9e01eb683c132f7fa27cd607b8a2b63) C:\Windows\system32\dhcpcore.dll07:16:55.0525 4652 Dhcp - ok07:16:55.0538 4652 discache (1a050b0274bfb3890703d490f330c0da) C:\Windows\system32\drivers\discache.sys07:16:55.0587 4652 discache - ok07:16:55.0635 4652 Disk (565003f326f99802e68ca78f2a68e9ff) C:\Windows\system32\DRIVERS\disk.sys07:16:55.0644 4652 Disk - ok07:16:55.0671 4652 Dnscache (33ef4861f19a0736b11314aad9ae28d0) C:\Windows\System32\dnsrslvr.dll07:16:55.0721 4652 Dnscache - ok07:16:55.0755 4652 dot3svc (366ba8fb4b7bb7435e3b9eacb3843f67) C:\Windows\System32\dot3svc.dll07:16:55.0809 4652 dot3svc - ok07:16:55.0852 4652 Dot4 (b5e479eb83707dd698f66953e922042c) C:\Windows\system32\DRIVERS\Dot4.sys07:16:55.0875 4652 Dot4 - ok07:16:55.0905 4652 Dot4Print (caefd09b6a6249c53a67d55a9a9fcabf) C:\Windows\system32\DRIVERS\Dot4Prt.sys07:16:55.0948 4652 Dot4Print - ok07:16:55.0966 4652 dot4usb (cf491ff38d62143203c065260567e2f7) C:\Windows\system32\DRIVERS\dot4usb.sys07:16:56.0015 4652 dot4usb - ok07:16:56.0055 4652 DPS (8ec04ca86f1d68da9e11952eb85973d6) C:\Windows\system32\dps.dll07:16:56.0102 4652 DPS - ok07:16:56.0137 4652 drmkaud (b918e7c5f9bf77202f89e1a9539f2eb4) C:\Windows\system32\drivers\drmkaud.sys07:16:56.0173 4652 drmkaud - ok07:16:56.0218 4652 dtsoftbus01 (c0c7ceccb6c85994c2bc92d58e52d3f2) C:\Windows\system32\DRIVERS\dtsoftbus01.sys07:16:56.0229 4652 dtsoftbus01 - ok07:16:56.0242 4652 dump_wmimmc - ok07:16:56.0301 4652 DXGKrnl (23f5d28378a160352ba8f817bd8c71cb) C:\Windows\System32\drivers\dxgkrnl.sys07:16:56.0331 4652 DXGKrnl - ok07:16:56.0351 4652 EagleXNt - ok07:16:56.0389 4652 eamonm (04238864710460c5682e260207d06192) C:\Windows\system32\DRIVERS\eamonm.sys07:16:56.0400 4652 eamonm - ok07:16:56.0422 4652 EapHost (8600142fa91c1b96367d3300ad0f3f3a) C:\Windows\System32\eapsvc.dll07:16:56.0457 4652 EapHost - ok07:16:56.0595 4652 ebdrv (024e1b5cac09731e4d868e64dbfb4ab0) C:\Windows\system32\DRIVERS\evbdx.sys07:16:56.0674 4652 ebdrv - ok07:16:56.0774 4652 EFS (81951f51e318aecc2d68559e47485cc4) C:\Windows\System32\lsass.exe07:16:56.0815 4652 EFS - ok07:16:56.0863 4652 ehdrv (deff87f04ab5f6dd5edf2b80853bbe10) C:\Windows\system32\DRIVERS\ehdrv.sys07:16:56.0872 4652 ehdrv - ok07:16:56.0934 4652 ehRecvr (a8c362018efc87beb013ee28f29c0863) C:\Windows\ehome\ehRecvr.exe07:16:56.0979 4652 ehRecvr - ok07:16:57.0017 4652 ehSched (d389bff34f80caede417bf9d1507996a) C:\Windows\ehome\ehsched.exe07:16:57.0062 4652 ehSched - ok07:16:57.0180 4652 ekrn (c7bb95cf9631aa401e4aded1648f6af7) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe07:16:57.0214 4652 ekrn - ok07:16:57.0293 4652 ElbyCDFL (ce37e3d51912e59c80c6d84337c0b4cd) C:\Windows\system32\Drivers\ElbyCDFL.sys07:16:57.0302 4652 ElbyCDFL - ok07:16:57.0341 4652 ElbyCDIO (178cc9403816c082d22a1d47fa1f9c85) C:\Windows\system32\Drivers\ElbyCDIO.sys07:16:57.0349 4652 ElbyCDIO - ok07:16:57.0384 4652 elxstor (0ed67910c8c326796faa00b2bf6d9d3c) C:\Windows\system32\DRIVERS\elxstor.sys07:16:57.0410 4652 elxstor - ok07:16:57.0439 4652 epfwwfpr (f39c91795ebdb9ecbeb5a388ff2841fe) C:\Windows\system32\DRIVERS\epfwwfpr.sys07:16:57.0447 4652 epfwwfpr - ok07:16:57.0470 4652 ErrDev (8fc3208352dd3912c94367a206ab3f11) C:\Windows\system32\drivers\errdev.sys07:16:57.0497 4652 ErrDev - ok07:16:57.0545 4652 EventSystem (f6916efc29d9953d5d0df06882ae8e16) C:\Windows\system32\es.dll07:16:57.0581 4652 EventSystem - ok07:16:57.0614 4652 exfat (2dc9108d74081149cc8b651d3a26207f) C:\Windows\system32\drivers\exfat.sys07:16:57.0637 4652 exfat - ok07:16:57.0655 4652 fastfat (7e0ab74553476622fb6ae36f73d97d35) C:\Windows\system32\drivers\fastfat.sys07:16:57.0686 4652 fastfat - ok07:16:57.0740 4652 Fax (967ea5b213e9984cbe270205df37755b) C:\Windows\system32\fxssvc.exe07:16:57.0793 4652 Fax - ok07:16:57.0814 4652 fdc (e817a017f82df2a1f8cfdbda29388b29) C:\Windows\system32\DRIVERS\fdc.sys07:16:57.0844 4652 fdc - ok07:16:57.0865 4652 fdPHost (f3222c893bd2f5821a0179e5c71e88fb) C:\Windows\system32\fdPHost.dll07:16:57.0898 4652 fdPHost - ok07:16:57.0919 4652 FDResPub (7dbe8cbfe79efbdeb98c9fb08d3a9a5b) C:\Windows\system32\fdrespub.dll07:16:57.0950 4652 FDResPub - ok07:16:57.0971 4652 FileInfo (6cf00369c97f3cf563be99be983d13d8) C:\Windows\system32\drivers\fileinfo.sys07:16:57.0979 4652 FileInfo - ok07:16:57.0990 4652 Filetrace (42c51dc94c91da21cb9196eb64c45db9) C:\Windows\system32\drivers\filetrace.sys07:16:58.0022 4652 Filetrace - ok07:16:58.0035 4652 flpydisk (87907aa70cb3c56600f1c2fb8841579b) C:\Windows\system32\DRIVERS\flpydisk.sys07:16:58.0074 4652 flpydisk - ok07:16:58.0111 4652 FltMgr (7520ec808e0c35e0ee6f841294316653) C:\Windows\system32\drivers\fltmgr.sys07:16:58.0122 4652 FltMgr - ok07:16:58.0176 4652 FontCache (b3a5ec6b6b6673db7e87c2bcdbddc074) C:\Windows\system32\FntCache.dll07:16:58.0238 4652 FontCache - ok07:16:58.0289 4652 FontCache3.0.0.0 (e56f39f6b7fda0ac77a79b0fd3de1a2f) C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe07:16:58.0296 4652 FontCache3.0.0.0 - ok07:16:58.0314 4652 FsDepends (1a16b57943853e598cff37fe2b8cbf1d) C:\Windows\system32\drivers\FsDepends.sys07:16:58.0322 4652 FsDepends - ok07:16:58.0351 4652 Fs_Rec (7dae5ebcc80e45d3253f4923dc424d05) C:\Windows\system32\drivers\Fs_Rec.sys07:16:58.0364 4652 Fs_Rec - ok07:16:58.0397 4652 fvevol (8a73e79089b282100b9393b644cb853b) C:\Windows\system32\DRIVERS\fvevol.sys07:16:58.0410 4652 fvevol - ok07:16:58.0429 4652 gagp30kx (65ee0c7a58b65e74ae05637418153938) C:\Windows\system32\DRIVERS\gagp30kx.sys07:16:58.0437 4652 gagp30kx - ok07:16:58.0465 4652 gdrv - ok07:16:58.0498 4652 gpsvc (e897eaf5ed6ba41e081060c9b447a673) C:\Windows\System32\gpsvc.dll07:16:58.0542 4652 gpsvc - ok07:16:58.0577 4652 hamachi (d30b31375c40309425c21efe75db90bb) C:\Windows\system32\DRIVERS\hamachi.sys07:16:58.0584 4652 hamachi - ok07:16:58.0602 4652 hcw85cir (c44e3c2bab6837db337ddee7544736db) C:\Windows\system32\drivers\hcw85cir.sys07:16:58.0643 4652 hcw85cir - ok07:16:58.0697 4652 HdAudAddService (a5ef29d5315111c80a5c1abad14c8972) C:\Windows\system32\drivers\HdAudio.sys07:16:58.0761 4652 HdAudAddService - ok07:16:58.0791 4652 HDAudBus (9036377b8a6c15dc2eec53e489d159b5) C:\Windows\system32\DRIVERS\HDAudBus.sys07:16:58.0822 4652 HDAudBus - ok07:16:58.0845 4652 HidBatt (1d58a7f3e11a9731d0eaaaa8405acc36) C:\Windows\system32\DRIVERS\HidBatt.sys07:16:58.0867 4652 HidBatt - ok07:16:58.0886 4652 HidBth (89448f40e6df260c206a193a4683ba78) C:\Windows\system32\DRIVERS\hidbth.sys07:16:58.0912 4652 HidBth - ok07:16:58.0934 4652 HidIr (cf50b4cf4a4f229b9f3c08351f99ca5e) C:\Windows\system32\DRIVERS\hidir.sys07:16:58.0957 4652 HidIr - ok07:16:58.0982 4652 hidserv (2bc6f6a1992b3a77f5f41432ca6b3b6b) C:\Windows\System32\hidserv.dll07:16:59.0016 4652 hidserv - ok07:16:59.0058 4652 HidUsb (10c19f8290891af023eaec0832e1eb4d) C:\Windows\system32\DRIVERS\hidusb.sys07:16:59.0098 4652 HidUsb - ok07:16:59.0121 4652 hkmsvc (196b4e3f4cccc24af836ce58facbb699) C:\Windows\system32\kmsvc.dll07:16:59.0141 4652 hkmsvc - ok07:16:59.0174 4652 HomeGroupListener (6658f4404de03d75fe3ba09f7aba6a30) C:\Windows\system32\ListSvc.dll07:16:59.0191 4652 HomeGroupListener - ok07:16:59.0224 4652 HomeGroupProvider (dbc02d918fff1cad628acbe0c0eaa8e8) C:\Windows\system32\provsvc.dll07:16:59.0258 4652 HomeGroupProvider - ok07:16:59.0398 4652 hpqcxs08 (1dae5c46d42b02a6d5862e1482efb390) C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll07:16:59.0417 4652 hpqcxs08 ( UnsignedFile.Multi.Generic ) - warning07:16:59.0417 4652 hpqcxs08 - detected UnsignedFile.Multi.Generic (1)07:16:59.0433 4652 hpqddsvc (99e8eef42fe2f4af29b08c3355dd7685) C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll07:16:59.0439 4652 hpqddsvc ( UnsignedFile.Multi.Generic ) - warning07:16:59.0439 4652 hpqddsvc - detected UnsignedFile.Multi.Generic (1)07:16:59.0468 4652 HpSAMD (295fdc419039090eb8b49ffdbb374549) C:\Windows\system32\drivers\HpSAMD.sys07:16:59.0476 4652 HpSAMD - ok07:16:59.0566 4652 HPSLPSVC - ok07:16:59.0616 4652 HTTP (871917b07a141bff43d76d8844d48106) C:\Windows\system32\drivers\HTTP.sys07:16:59.0671 4652 HTTP - ok07:16:59.0681 4652 hwpolicy (0c4e035c7f105f1299258c90886c64c5) C:\Windows\system32\drivers\hwpolicy.sys07:16:59.0690 4652 hwpolicy - ok07:16:59.0728 4652 i8042prt (f151f0bdc47f4a28b1b20a0818ea36d6) C:\Windows\system32\DRIVERS\i8042prt.sys07:16:59.0762 4652 i8042prt - ok07:16:59.0808 4652 iaStor (db81f413fa4e3f328cad7b5d59ef3f21) C:\Windows\system32\DRIVERS\iaStor.sys07:16:59.0821 4652 iaStor - ok07:16:59.0875 4652 IAStorDataMgrSvc (d41861e56e7552c13674d7f147a02464) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe07:16:59.0888 4652 IAStorDataMgrSvc - ok07:16:59.0932 4652 iaStorV (5cd5f9a5444e6cdcb0ac89bd62d8b76e) C:\Windows\system32\drivers\iaStorV.sys07:16:59.0945 4652 iaStorV - ok07:17:00.0025 4652 idsvc (c521d7eb6497bb1af6afa89e322fb43c) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe07:17:00.0047 4652 idsvc - ok07:17:00.0122 4652 iirsp (4173ff5708f3236cf25195fecd742915) C:\Windows\system32\DRIVERS\iirsp.sys07:17:00.0130 4652 iirsp - ok07:17:00.0196 4652 IKEEXT (f95622f161474511b8d80d6b093aa610) C:\Windows\System32\ikeext.dll07:17:00.0238 4652 IKEEXT - ok07:17:00.0418 4652 IntcAzAudAddService (509888e289b4765f8d92ad57cf37efa7) C:\Windows\system32\drivers\RTKVHDA.sys07:17:00.0485 4652 IntcAzAudAddService - ok07:17:00.0578 4652 intelide (a0f12f2c9ba6c72f3987ce780e77c130) C:\Windows\system32\drivers\intelide.sys07:17:00.0585 4652 intelide - ok07:17:00.0604 4652 intelppm (3b514d27bfc4accb4037bc6685f766e0) C:\Windows\system32\DRIVERS\intelppm.sys07:17:00.0644 4652 intelppm - ok07:17:00.0666 4652 IPBusEnum (acb364b9075a45c0736e5c47be5cae19) C:\Windows\system32\ipbusenum.dll07:17:00.0710 4652 IPBusEnum - ok07:17:00.0734 4652 IpFilterDriver (709d1761d3b19a932ff0238ea6d50200) C:\Windows\system32\DRIVERS\ipfltdrv.sys07:17:00.0782 4652 IpFilterDriver - ok07:17:00.0819 4652 iphlpsvc (4d65a07b795d6674312f879d09aa7663) C:\Windows\System32\iphlpsvc.dll07:17:00.0863 4652 iphlpsvc - ok07:17:00.0885 4652 IPMIDRV (4bd7134618c1d2a27466a099062547bf) C:\Windows\system32\drivers\IPMIDrv.sys07:17:00.0909 4652 IPMIDRV - ok07:17:00.0938 4652 IPNAT (a5fa468d67abcdaa36264e463a7bb0cd) C:\Windows\system32\drivers\ipnat.sys07:17:00.0992 4652 IPNAT - ok07:17:01.0023 4652 IRENUM (42996cff20a3084a56017b7902307e9f) C:\Windows\system32\drivers\irenum.sys07:17:01.0085 4652 IRENUM - ok07:17:01.0110 4652 isapnp (1f32bb6b38f62f7df1a7ab7292638a35) C:\Windows\system32\drivers\isapnp.sys07:17:01.0118 4652 isapnp - ok07:17:01.0134 4652 iScsiPrt (cb7a9abb12b8415bce5d74994c7ba3ae) C:\Windows\system32\drivers\msiscsi.sys07:17:01.0147 4652 iScsiPrt - ok07:17:01.0173 4652 kbdclass (adef52ca1aeae82b50df86b56413107e) C:\Windows\system32\DRIVERS\kbdclass.sys07:17:01.0193 4652 kbdclass - ok07:17:01.0225 4652 kbdhid (9e3ced91863e6ee98c24794d05e27a71) C:\Windows\system32\drivers\kbdhid.sys07:17:01.0257 4652 kbdhid - ok07:17:01.0288 4652 KeyIso (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe07:17:01.0298 4652 KeyIso - ok07:17:01.0321 4652 KSecDD (b7895b4182c0d16f6efadeb8081e8d36) C:\Windows\system32\Drivers\ksecdd.sys07:17:01.0330 4652 KSecDD - ok07:17:01.0364 4652 KSecPkg (d30159ac9237519fbc62c6ec247d2d46) C:\Windows\system32\Drivers\ksecpkg.sys07:17:01.0374 4652 KSecPkg - ok07:17:01.0404 4652 KtmRm (89a7b9cc98d0d80c6f31b91c0a310fcd) C:\Windows\system32\msdtckrm.dll07:17:01.0446 4652 KtmRm - ok07:17:01.0499 4652 LanmanServer (d64af876d53eca3668bb97b51b4e70ab) C:\Windows\System32\srvsvc.dll07:17:01.0533 4652 LanmanServer - ok07:17:01.0558 4652 LanmanWorkstation (58405e4f68ba8e4057c6e914f326aba2) C:\Windows\System32\wkssvc.dll07:17:01.0594 4652 LanmanWorkstation - ok07:17:01.0625 4652 lltdsvc (5700673e13a2117fa3b9020c852c01e2) C:\Windows\System32\lltdsvc.dll07:17:01.0666 4652 lltdsvc - ok07:17:01.0686 4652 lmhosts (55ca01ba19d0006c8f2639b6c045e08b) C:\Windows\System32\lmhsvc.dll07:17:01.0728 4652 lmhosts - ok07:17:01.0817 4652 LMS (0803906d607a9b83184447b75b60ecc2) C:\Program Files\Intel\Intel® Management Engine Components\LMS\LMS.exe07:17:01.0829 4652 LMS - ok07:17:01.0879 4652 LSI_FC (eb119a53ccf2acc000ac71b065b78fef) C:\Windows\system32\DRIVERS\lsi_fc.sys07:17:01.0888 4652 LSI_FC - ok07:17:01.0903 4652 LSI_SAS (8ade1c877256a22e49b75d1cc9161f9c) C:\Windows\system32\DRIVERS\lsi_sas.sys07:17:01.0918 4652 LSI_SAS - ok07:17:01.0936 4652 LSI_SAS2 (dc9dc3d3daa0e276fd2ec262e38b11e9) C:\Windows\system32\DRIVERS\lsi_sas2.sys07:17:01.0944 4652 LSI_SAS2 - ok07:17:01.0963 4652 LSI_SCSI (0a036c7d7cab643a7f07135ac47e0524) C:\Windows\system32\DRIVERS\lsi_scsi.sys07:17:01.0972 4652 LSI_SCSI - ok07:17:01.0995 4652 luafv (6703e366cc18d3b6e534f5cf7df39cee) C:\Windows\system32\drivers\luafv.sys07:17:02.0029 4652 luafv - ok07:17:02.0066 4652 Mcx2Svc (bfb9ee8ee977efe85d1a3105abef6dd1) C:\Windows\system32\Mcx2Svc.dll07:17:02.0078 4652 Mcx2Svc - ok07:17:02.0100 4652 megasas (0fff5b045293002ab38eb1fd1fc2fb74) C:\Windows\system32\DRIVERS\megasas.sys07:17:02.0109 4652 megasas - ok07:17:02.0137 4652 MegaSR (dcbab2920c75f390caf1d29f675d03d6) C:\Windows\system32\DRIVERS\MegaSR.sys07:17:02.0153 4652 MegaSR - ok07:17:02.0189 4652 MEI (d86ac00883b9c98b570e7643aaf8e554) C:\Windows\system32\DRIVERS\HECI.sys07:17:02.0230 4652 MEI - ok07:17:02.0253 4652 MMCSS (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll07:17:02.0289 4652 MMCSS - ok07:17:02.0314 4652 Modem (f001861e5700ee84e2d4e52c712f4964) C:\Windows\system32\drivers\modem.sys07:17:02.0357 4652 Modem - ok07:17:02.0393 4652 monitor (79d10964de86b292320e9dfe02282a23) C:\Windows\system32\DRIVERS\monitor.sys07:17:02.0443 4652 monitor - ok07:17:02.0480 4652 mouclass (fb18cc1d4c2e716b6b903b0ac0cc0609) C:\Windows\system32\DRIVERS\mouclass.sys07:17:02.0512 4652 mouclass - ok07:17:02.0534 4652 mouhid (2c388d2cd01c9042596cf3c8f3c7b24d) C:\Windows\system32\DRIVERS\mouhid.sys07:17:02.0568 4652 mouhid - ok07:17:02.0616 4652 mountmgr (fc8771f45ecccfd89684e38842539b9b) C:\Windows\system32\drivers\mountmgr.sys07:17:02.0625 4652 mountmgr - ok07:17:02.0697 4652 MozillaMaintenance (46297fa8e30a6007f14118fc2b942fbc) C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe07:17:02.0706 4652 MozillaMaintenance - ok07:17:02.0740 4652 mpio (2d699fb6e89ce0d8da14ecc03b3edfe0) C:\Windows\system32\drivers\mpio.sys07:17:02.0755 4652 mpio - ok07:17:02.0773 4652 mpsdrv (ad2723a7b53dd1aacae6ad8c0bfbf4d0) C:\Windows\system32\drivers\mpsdrv.sys07:17:02.0803 4652 mpsdrv - ok07:17:02.0857 4652 MpsSvc (9835584e999d25004e1ee8e5f3e3b881) C:\Windows\system32\mpssvc.dll07:17:02.0909 4652 MpsSvc - ok07:17:02.0931 4652 MRxDAV (ceb46ab7c01c9f825f8cc6babc18166a) C:\Windows\system32\drivers\mrxdav.sys07:17:02.0957 4652 MRxDAV - ok07:17:03.0007 4652 mrxsmb (5d16c921e3671636c0eba3bbaac5fd25) C:\Windows\system32\DRIVERS\mrxsmb.sys07:17:03.0055 4652 mrxsmb - ok07:17:03.0075 4652 mrxsmb10 (6d17a4791aca19328c685d256349fefc) C:\Windows\system32\DRIVERS\mrxsmb10.sys07:17:03.0087 4652 mrxsmb10 - ok07:17:03.0098 4652 mrxsmb20 (b81f204d146000be76651a50670a5e9e) C:\Windows\system32\DRIVERS\mrxsmb20.sys07:17:03.0124 4652 mrxsmb20 - ok07:17:03.0156 4652 msahci (012c5f4e9349e711e11e0f19a8589f0a) C:\Windows\system32\DRIVERS\msahci.sys07:17:03.0165 4652 msahci - ok07:17:03.0179 4652 msdsm (55055f8ad8be27a64c831322a780a228) C:\Windows\system32\drivers\msdsm.sys07:17:03.0189 4652 msdsm - ok07:17:03.0218 4652 MSDTC (e1bce74a3bd9902b72599c0192a07e27) C:\Windows\System32\msdtc.exe07:17:03.0248 4652 MSDTC - ok07:17:03.0275 4652 Msfs (daefb28e3af5a76abcc2c3078c07327f) C:\Windows\system32\drivers\Msfs.sys07:17:03.0296 4652 Msfs - ok07:17:03.0304 4652 mshidkmdf (3e1e5767043c5af9367f0056295e9f84) C:\Windows\System32\drivers\mshidkmdf.sys07:17:03.0334 4652 mshidkmdf - ok07:17:03.0355 4652 msisadrv (0a4e5757ae09fa9622e3158cc1aef114) C:\Windows\system32\drivers\msisadrv.sys07:17:03.0363 4652 msisadrv - ok07:17:03.0390 4652 MSiSCSI (90f7d9e6b6f27e1a707d4a297f077828) C:\Windows\system32\iscsiexe.dll07:17:03.0425 4652 MSiSCSI - ok07:17:03.0428 4652 msiserver - ok07:17:03.0462 4652 MSKSSRV (8c0860d6366aaffb6c5bb9df9448e631) C:\Windows\system32\drivers\MSKSSRV.sys07:17:03.0501 4652 MSKSSRV - ok07:17:03.0522 4652 MSPCLOCK (3ea8b949f963562cedbb549eac0c11ce) C:\Windows\system32\drivers\MSPCLOCK.sys07:17:03.0571 4652 MSPCLOCK - ok07:17:03.0588 4652 MSPQM (f456e973590d663b1073e9c463b40932) C:\Windows\system32\drivers\MSPQM.sys07:17:03.0622 4652 MSPQM - ok07:17:03.0640 4652 MsRPC (0e008fc4819d238c51d7c93e7b41e560) C:\Windows\system32\drivers\MsRPC.sys07:17:03.0650 4652 MsRPC - ok07:17:03.0678 4652 mssmbios (fc6b9ff600cc585ea38b12589bd4e246) C:\Windows\system32\drivers\mssmbios.sys07:17:03.0687 4652 mssmbios - ok07:17:03.0707 4652 MSTEE (b42c6b921f61a6e55159b8be6cd54a36) C:\Windows\system32\drivers\MSTEE.sys07:17:03.0744 4652 MSTEE - ok07:17:03.0761 4652 MTConfig (33599130f44e1f34631cea241de8ac84) C:\Windows\system32\DRIVERS\MTConfig.sys07:17:03.0770 4652 MTConfig - ok07:17:03.0783 4652 Mup (159fad02f64e6381758c990f753bcc80) C:\Windows\system32\Drivers\mup.sys07:17:03.0792 4652 Mup - ok07:17:03.0830 4652 napagent (61d57a5d7c6d9afe10e77dae6e1b445e) C:\Windows\system32\qagentRT.dll07:17:03.0863 4652 napagent - ok07:17:03.0897 4652 NativeWifiP (26384429fcd85d83746f63e798ab1480) C:\Windows\system32\DRIVERS\nwifi.sys07:17:03.0923 4652 NativeWifiP - ok07:17:03.0973 4652 NDIS (e7c54812a2aaf43316eb6930c1ffa108) C:\Windows\system32\drivers\ndis.sys07:17:03.0993 4652 NDIS - ok07:17:04.0018 4652 NdisCap (0e1787aa6c9191d3d319e8bafe86f80c) C:\Windows\system32\DRIVERS\ndiscap.sys07:17:04.0065 4652 NdisCap - ok07:17:04.0089 4652 NdisTapi (e4a8aec125a2e43a9e32afeea7c9c888) C:\Windows\system32\DRIVERS\ndistapi.sys07:17:04.0129 4652 NdisTapi - ok07:17:04.0159 4652 Ndisuio (d8a65dafb3eb41cbb622745676fcd072) C:\Windows\system32\DRIVERS\ndisuio.sys07:17:04.0214 4652 Ndisuio - ok07:17:04.0244 4652 NdisWan (38fbe267e7e6983311179230facb1017) C:\Windows\system32\DRIVERS\ndiswan.sys07:17:04.0288 4652 NdisWan - ok07:17:04.0330 4652 NDProxy (a4bdc541e69674fbff1a8ff00be913f2) C:\Windows\system32\drivers\NDProxy.sys07:17:04.0350 4652 NDProxy - ok07:17:04.0411 4652 Net Driver HPZ12 (510c138564486ff926a3f773205c63d1) C:\Windows\system32\HPZinw12.dll07:17:04.0430 4652 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning07:17:04.0430 4652 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)07:17:04.0460 4652 NetBIOS (80b275b1ce3b0e79909db7b39af74d51) C:\Windows\system32\DRIVERS\netbios.sys07:17:04.0508 4652 NetBIOS - ok07:17:04.0538 4652 NetBT (280122ddcf04b378edd1ad54d71c1e54) C:\Windows\system32\DRIVERS\netbt.sys07:17:04.0582 4652 NetBT - ok07:17:04.0606 4652 Netlogon (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe07:17:04.0616 4652 Netlogon - ok07:17:04.0654 4652 Netman (7cccfca7510684768da22092d1fa4db2) C:\Windows\System32\netman.dll07:17:04.0695 4652 Netman - ok07:17:04.0767 4652 NetMsmqActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe07:17:04.0775 4652 NetMsmqActivator - ok07:17:04.0778 4652 NetPipeActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe07:17:04.0796 4652 NetPipeActivator - ok07:17:04.0820 4652 netprofm (8c338238c16777a802d6a9211eb2ba50) C:\Windows\System32\netprofm.dll07:17:04.0862 4652 netprofm - ok07:17:04.0865 4652 NetTcpActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe07:17:04.0873 4652 NetTcpActivator - ok07:17:04.0875 4652 NetTcpPortSharing (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe07:17:04.0883 4652 NetTcpPortSharing - ok07:17:04.0920 4652 nfrd960 (1d85c4b390b0ee09c7a46b91efb2c097) C:\Windows\system32\DRIVERS\nfrd960.sys07:17:04.0929 4652 nfrd960 - ok07:17:04.0965 4652 NlaSvc (912084381d30d8b89ec4e293053f4710) C:\Windows\System32\nlasvc.dll07:17:05.0005 4652 NlaSvc - ok07:17:05.0026 4652 Npfs (1db262a9f8c087e8153d89bef3d2235f) C:\Windows\system32\drivers\Npfs.sys07:17:05.0047 4652 Npfs - ok07:17:05.0078 4652 NPPTNT2 (9131fe60adfab595c8da53ad6a06aa31) C:\Windows\system32\npptNT2.sys07:17:05.0099 4652 NPPTNT2 ( UnsignedFile.Multi.Generic ) - warning07:17:05.0099 4652 NPPTNT2 - detected UnsignedFile.Multi.Generic (1)07:17:05.0118 4652 nsi (ba387e955e890c8a88306d9b8d06bf17) C:\Windows\system32\nsisvc.dll07:17:05.0151 4652 nsi - ok07:17:05.0173 4652 nsiproxy (e9a0a4d07e53d8fea2bb8387a3293c58) C:\Windows\system32\drivers\nsiproxy.sys07:17:05.0223 4652 nsiproxy - ok07:17:05.0290 4652 Ntfs (81189c3d7763838e55c397759d49007a) C:\Windows\system32\drivers\Ntfs.sys07:17:05.0329 4652 Ntfs - ok07:17:05.0420 4652 Null (f9756a98d69098dca8945d62858a812c) C:\Windows\system32\drivers\Null.sys07:17:05.0458 4652 Null - ok07:17:05.0884 4652 nvlddmkm (3056b19c3fd6d92e02b26f0e4fc9f572) C:\Windows\system32\DRIVERS\nvlddmkm.sys07:17:06.0145 4652 nvlddmkm - ok07:17:06.0253 4652 nvraid (b3e25ee28883877076e0e1ff877d02e0) C:\Windows\system32\drivers\nvraid.sys07:17:06.0262 4652 nvraid - ok07:17:06.0282 4652 nvstor (4380e59a170d88c4f1022eff6719a8a4) C:\Windows\system32\drivers\nvstor.sys07:17:06.0292 4652 nvstor - ok07:17:06.0313 4652 nv_agp (5a0983915f02bae73267cc2a041f717d) C:\Windows\system32\drivers\nv_agp.sys07:17:06.0322 4652 nv_agp - ok07:17:06.0336 4652 ohci1394 (08a70a1f2cdde9bb49b885cb817a66eb) C:\Windows\system32\drivers\ohci1394.sys07:17:06.0362 4652 ohci1394 - ok07:17:06.0402 4652 p2pimsvc (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll07:17:06.0454 4652 p2pimsvc - ok07:17:06.0489 4652 p2psvc (59c3ddd501e39e006dac31bf55150d91) C:\Windows\system32\p2psvc.dll07:17:06.0521 4652 p2psvc - ok07:17:06.0547 4652 Parport (2ea877ed5dd9713c5ac74e8ea7348d14) C:\Windows\system32\DRIVERS\parport.sys07:17:06.0568 4652 Parport - ok07:17:06.0594 4652 partmgr (3f34a1b4c5f6475f320c275e63afce9b) C:\Windows\system32\drivers\partmgr.sys07:17:06.0619 4652 partmgr - ok07:17:06.0627 4652 Parvdm (eb0a59f29c19b86479d36b35983daadc) C:\Windows\system32\DRIVERS\parvdm.sys07:17:06.0657 4652 Parvdm - ok07:17:06.0680 4652 PcaSvc (358ab7956d3160000726574083dfc8a6) C:\Windows\System32\pcasvc.dll07:17:06.0695 4652 PcaSvc - ok07:17:06.0738 4652 pci (673e55c3498eb970088e812ea820aa8f) C:\Windows\system32\drivers\pci.sys07:17:06.0748 4652 pci - ok07:17:06.0759 4652 pciide (afe86f419014db4e5593f69ffe26ce0a) C:\Windows\system32\drivers\pciide.sys07:17:06.0767 4652 pciide - ok07:17:06.0793 4652 pcmcia (f396431b31693e71e8a80687ef523506) C:\Windows\system32\DRIVERS\pcmcia.sys07:17:06.0804 4652 pcmcia - ok07:17:06.0814 4652 pcw (250f6b43d2b613172035c6747aeeb19f) C:\Windows\system32\drivers\pcw.sys07:17:06.0823 4652 pcw - ok07:17:06.0854 4652 PEAUTH (9e0104ba49f4e6973749a02bf41344ed) C:\Windows\system32\drivers\peauth.sys07:17:06.0917 4652 PEAUTH - ok07:17:07.0004 4652 pla (414bba67a3ded1d28437eb66aeb8a720) C:\Windows\system32\pla.dll07:17:07.0055 4652 pla - ok07:17:07.0185 4652 PlugPlay (ec7bc28d207da09e79b3e9faf8b232ca) C:\Windows\system32\umpnpmgr.dll07:17:07.0245 4652 PlugPlay - ok07:17:07.0311 4652 Pml Driver HPZ12 (37e5e8ffbad35605daeec3224ea0e465) C:\Windows\system32\HPZipm12.dll07:17:07.0328 4652 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning07:17:07.0328 4652 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)07:17:07.0359 4652 PnkBstrA (205e1b699fd3f2f9b036eea2ec30c620) C:\Windows\system32\PnkBstrA.exe07:17:07.0368 4652 PnkBstrA - ok07:17:07.0393 4652 PNRPAutoReg (63ff8572611249931eb16bb8eed6afc8) C:\Windows\system32\pnrpauto.dll07:17:07.0418 4652 PNRPAutoReg - ok07:17:07.0444 4652 PNRPsvc (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll07:17:07.0456 4652 PNRPsvc - ok07:17:07.0501 4652 PolicyAgent (53946b69ba0836bd95b03759530c81ec) C:\Windows\System32\ipsecsvc.dll07:17:07.0546 4652 PolicyAgent - ok07:17:07.0570 4652 Power (f87d30e72e03d579a5199ccb3831d6ea) C:\Windows\system32\umpo.dll07:17:07.0610 4652 Power - ok07:17:07.0667 4652 PptpMiniport (631e3e205ad6d86f2aed6a4a8e69f2db) C:\Windows\system32\DRIVERS\raspptp.sys07:17:07.0716 4652 PptpMiniport - ok07:17:07.0739 4652 Processor (85b1e3a0c7585bc4aae6899ec6fcf011) C:\Windows\system32\DRIVERS\processr.sys07:17:07.0763 4652 Processor - ok07:17:07.0795 4652 ProfSvc (cadefac453040e370a1bdff3973be00d) C:\Windows\system32\profsvc.dll07:17:07.0847 4652 ProfSvc - ok07:17:07.0872 4652 ProtectedStorage (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe07:17:07.0882 4652 ProtectedStorage - ok07:17:07.0925 4652 PStrip (bcf8d075fad718fea8ef6e281331a56e) C:\Windows\system32\drivers\pstrip.sys07:17:07.0937 4652 PStrip - ok07:17:07.0998 4652 ql2300 (ab95ecf1f6659a60ddc166d8315b0751) C:\Windows\system32\DRIVERS\ql2300.sys07:17:08.0030 4652 ql2300 - ok07:17:08.0124 4652 ql40xx (b4dd51dd25182244b86737dc51af2270) C:\Windows\system32\DRIVERS\ql40xx.sys07:17:08.0140 4652 ql40xx - ok07:17:08.0162 4652 QWAVE (31ac809e7707eb580b2bdb760390765a) C:\Windows\system32\qwave.dll07:17:08.0178 4652 QWAVE - ok07:17:08.0191 4652 QWAVEdrv (584078ca1b95ca72df2a27c336f9719d) C:\Windows\system32\drivers\qwavedrv.sys07:17:08.0203 4652 QWAVEdrv - ok07:17:08.0209 4652 RasAcd (30a81b53c766d0133bb86d234e5556ab) C:\Windows\system32\DRIVERS\rasacd.sys07:17:08.0259 4652 RasAcd - ok07:17:08.0288 4652 RasAgileVpn (57ec4aef73660166074d8f7f31c0d4fd) C:\Windows\system32\DRIVERS\AgileVpn.sys07:17:08.0332 4652 RasAgileVpn - ok07:17:08.0353 4652 RasAuto (a60f1839849c0c00739787fd5ec03f13) C:\Windows\System32\rasauto.dll07:17:08.0385 4652 RasAuto - ok07:17:08.0401 4652 Rasl2tp (d9f91eafec2815365cbe6d167e4e332a) C:\Windows\system32\DRIVERS\rasl2tp.sys07:17:08.0447 4652 Rasl2tp - ok07:17:08.0488 4652 RasMan (cb9e04dc05eacf5b9a36ca276d475006) C:\Windows\System32\rasmans.dll07:17:08.0513 4652 RasMan - ok07:17:08.0536 4652 RasPppoe (0fe8b15916307a6ac12bfb6a63e45507) C:\Windows\system32\DRIVERS\raspppoe.sys07:17:08.0569 4652 RasPppoe - ok07:17:08.0590 4652 RasSstp (44101f495a83ea6401d886e7fd70096b) C:\Windows\system32\DRIVERS\rassstp.sys07:17:08.0642 4652 RasSstp - ok07:17:08.0677 4652 rdbss (d528bc58a489409ba40334ebf96a311b) C:\Windows\system32\DRIVERS\rdbss.sys07:17:08.0726 4652 rdbss - ok07:17:08.0753 4652 rdpbus (0d8f05481cb76e70e1da06ee9f0da9df) C:\Windows\system32\DRIVERS\rdpbus.sys07:17:08.0764 4652 rdpbus - ok07:17:08.0788 4652 RDPCDD (23dae03f29d253ae74c44f99e515f9a1) C:\Windows\system32\DRIVERS\RDPCDD.sys07:17:08.0830 4652 RDPCDD - ok07:17:08.0853 4652 RDPENCDD (5a53ca1598dd4156d44196d200c94b8a) C:\Windows\system32\drivers\rdpencdd.sys07:17:08.0906 4652 RDPENCDD - ok07:17:08.0924 4652 RDPREFMP (44b0a53cd4f27d50ed461dae0c0b4e1f) C:\Windows\system32\drivers\rdprefmp.sys07:17:08.0970 4652 RDPREFMP - ok07:17:09.0005 4652 RDPWD (f031683e6d1fea157abb2ff260b51e61) C:\Windows\system32\drivers\RDPWD.sys07:17:09.0059 4652 RDPWD - ok07:17:09.0096 4652 rdyboost (518395321dc96fe2c9f0e96ac743b656) C:\Windows\system32\drivers\rdyboost.sys07:17:09.0107 4652 rdyboost - ok07:17:09.0126 4652 RemoteAccess (7b5e1419717fac363a31cc302895217a) C:\Windows\System32\mprdim.dll07:17:09.0160 4652 RemoteAccess - ok07:17:09.0184 4652 RemoteRegistry (cb9a8683f4ef2bf99e123d79950d7935) C:\Windows\system32\regsvc.dll07:17:09.0232 4652 RemoteRegistry - ok07:17:09.0252 4652 ROOTMODEM (564297827d213f52c7a3a2ff749568ca) C:\Windows\system32\Drivers\RootMdm.sys07:17:09.0300 4652 ROOTMODEM - ok07:17:09.0324 4652 RpcEptMapper (78d072f35bc45d9e4e1b61895c152234) C:\Windows\System32\RpcEpMap.dll07:17:09.0356 4652 RpcEptMapper - ok07:17:09.0380 4652 RpcLocator (94d36c0e44677dd26981d2bfeef2a29d) C:\Windows\system32\locator.exe07:17:09.0405 4652 RpcLocator - ok07:17:09.0447 4652 RpcSs (7660f01d3b38aca1747e397d21d790af) C:\Windows\System32\rpcss.dll07:17:09.0478 4652 RpcSs - ok07:17:09.0534 4652 RTL8167 (558684c0bef37c5be04940ee4e607b68) C:\Windows\system32\DRIVERS\Rt86win7.sys07:17:09.0555 4652 RTL8167 - ok07:17:09.0580 4652 SamSs (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe07:17:09.0590 4652 SamSs - ok07:17:09.0667 4652 SANDRA (230fd3749904ca045ea5ec0aa14006e9) C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP1\WNt500x86\Sandra.sys07:17:09.0681 4652 SANDRA - ok07:17:09.0697 4652 SandraAgentSrv (96f6f3e594d780b7e20fdc94504d4d89) C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP1\RpcAgentSrv.exe07:17:09.0733 4652 SandraAgentSrv ( UnsignedFile.Multi.Generic ) - warning07:17:09.0733 4652 SandraAgentSrv - detected UnsignedFile.Multi.Generic (1)07:17:09.0783 4652 sbp2port (05d860da1040f111503ac416ccef2bca) C:\Windows\system32\drivers\sbp2port.sys07:17:09.0792 4652 sbp2port - ok07:17:09.0816 4652 SCardSvr (8fc518ffe9519c2631d37515a68009c4) C:\Windows\System32\SCardSvr.dll07:17:09.0839 4652 SCardSvr - ok07:17:09.0867 4652 scfilter (0693b5ec673e34dc147e195779a4dcf6) C:\Windows\system32\DRIVERS\scfilter.sys07:17:09.0905 4652 scfilter - ok07:17:09.0959 4652 Schedule (a04bb13f8a72f8b6e8b4071723e4e336) C:\Windows\system32\schedsvc.dll07:17:10.0015 4652 Schedule - ok07:17:10.0050 4652 SCPolicySvc (319c6b309773d063541d01df8ac6f55f) C:\Windows\System32\certprop.dll07:17:10.0070 4652 SCPolicySvc - ok07:17:10.0083 4652 SDRSVC (08236c4bce5edd0a0318a438af28e0f7) C:\Windows\System32\SDRSVC.dll07:17:10.0135 4652 SDRSVC - ok07:17:10.0152 4652 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys07:17:10.0173 4652 secdrv - ok07:17:10.0188 4652 seclogon (a59b3a4442c52060cc7a85293aa3546f) C:\Windows\system32\seclogon.dll07:17:10.0238 4652 seclogon - ok07:17:10.0255 4652 SENS (dcb7fcdcc97f87360f75d77425b81737) C:\Windows\system32\sens.dll07:17:10.0277 4652 SENS - ok07:17:10.0301 4652 SensrSvc (50087fe1ee447009c9cc2997b90de53f) C:\Windows\system32\sensrsvc.dll07:17:10.0357 4652 SensrSvc - ok07:17:10.0374 4652 Serenum (9ad8b8b515e3df6acd4212ef465de2d1) C:\Windows\system32\DRIVERS\serenum.sys07:17:10.0406 4652 Serenum - ok07:17:10.0434 4652 Serial (5fb7fcea0490d821f26f39cc5ea3d1e2) C:\Windows\system32\DRIVERS\serial.sys07:17:10.0469 4652 Serial - ok07:17:10.0508 4652 sermouse (79bffb520327ff916a582dfea17aa813) C:\Windows\system32\DRIVERS\sermouse.sys07:17:10.0525 4652 sermouse - ok07:17:10.0559 4652 SessionEnv (4ae380f39a0032eab7dd953030b26d28) C:\Windows\system32\sessenv.dll07:17:10.0608 4652 SessionEnv - ok07:17:10.0630 4652 sffdisk (9f976e1eb233df46fce808d9dea3eb9c) C:\Windows\system32\drivers\sffdisk.sys07:17:10.0663 4652 sffdisk - ok07:17:10.0674 4652 sffp_mmc (932a68ee27833cfd57c1639d375f2731) C:\Windows\system32\drivers\sffp_mmc.sys07:17:10.0702 4652 sffp_mmc - ok07:17:10.0715 4652 sffp_sd (6d4ccaedc018f1cf52866bbbaa235982) C:\Windows\system32\drivers\sffp_sd.sys07:17:10.0735 4652 sffp_sd - ok07:17:10.0760 4652 sfloppy (db96666cc8312ebc45032f30b007a547) C:\Windows\system32\DRIVERS\sfloppy.sys07:17:10.0784 4652 sfloppy - ok07:17:10.0828 4652 SharedAccess (d1a079a0de2ea524513b6930c24527a2) C:\Windows\System32\ipnathlp.dll07:17:10.0868 4652 SharedAccess - ok07:17:10.0905 4652 ShellHWDetection (414da952a35bf5d50192e28263b40577) C:\Windows\System32\shsvcs.dll07:17:10.0954 4652 ShellHWDetection - ok07:17:11.0004 4652 sisagp (2565cac0dc9fe0371bdce60832582b2e) C:\Windows\system32\drivers\sisagp.sys07:17:11.0012 4652 sisagp - ok07:17:11.0044 4652 SiSRaid2 (a9f0486851becb6dda1d89d381e71055) C:\Windows\system32\DRIVERS\SiSRaid2.sys07:17:11.0052 4652 SiSRaid2 - ok07:17:11.0057 4652 SiSRaid4 (3727097b55738e2f554972c3be5bc1aa) C:\Windows\system32\DRIVERS\sisraid4.sys07:17:11.0067 4652 SiSRaid4 - ok07:17:11.0090 4652 Smb (3e21c083b8a01cb70ba1f09303010fce) C:\Windows\system32\DRIVERS\smb.sys07:17:11.0133 4652 Smb - ok07:17:11.0154 4652 SNMPTRAP (6a984831644eca1a33ffeae4126f4f37) C:\Windows\System32\snmptrap.exe07:17:11.0175 4652 SNMPTRAP - ok07:17:11.0188 4652 spldr (95cf1ae7527fb70f7816563cbc09d942) C:\Windows\system32\drivers\spldr.sys07:17:11.0196 4652 spldr - ok07:17:11.0243 4652 Spooler (866a43013535dc8587c258e43579c764) C:\Windows\System32\spoolsv.exe07:17:11.0299 4652 Spooler - ok07:17:11.0434 4652 sppsvc (cf87a1de791347e75b98885214ced2b8) C:\Windows\system32\sppsvc.exe07:17:11.0510 4652 sppsvc - ok07:17:11.0621 4652 sppuinotify (b0180b20b065d89232a78a40fe56eaa6) C:\Windows\system32\sppuinotify.dll07:17:11.0654 4652 sppuinotify - ok07:17:11.0725 4652 sptd (8ea0fd60a5b047e0c734d51aace531c9) C:\Windows\System32\Drivers\sptd.sys07:17:11.0725 4652 Suspicious file (NoAccess): C:\Windows\System32\Drivers\sptd.sys. md5: 8ea0fd60a5b047e0c734d51aace531c907:17:11.0726 4652 sptd ( LockedFile.Multi.Generic ) - warning07:17:11.0726 4652 sptd - detected LockedFile.Multi.Generic (1)07:17:11.0767 4652 srv (e4c2764065d66ea1d2d3ebc28fe99c46) C:\Windows\system32\DRIVERS\srv.sys07:17:11.0812 4652 srv - ok07:17:11.0833 4652 srv2 (03f0545bd8d4c77fa0ae1ceedfcc71ab) C:\Windows\system32\DRIVERS\srv2.sys07:17:11.0862 4652 srv2 - ok07:17:11.0882 4652 srvnet (be6bd660caa6f291ae06a718a4fa8abc) C:\Windows\system32\DRIVERS\srvnet.sys07:17:11.0903 4652 srvnet - ok07:17:11.0932 4652 SSDPSRV (d887c9fd02ac9fa880f6e5027a43e118) C:\Windows\System32\ssdpsrv.dll07:17:11.0957 4652 SSDPSRV - ok07:17:11.0972 4652 SstpSvc (d318f23be45d5e3a107469eb64815b50) C:\Windows\system32\sstpsvc.dll07:17:12.0007 4652 SstpSvc - ok07:17:12.0093 4652 Start BT in service (9d1a8732718438dc8c472d4d7762de5f) C:\Program Files\IVT Corporation\BlueSoleil\StartSkysolSvc.exe07:17:12.0107 4652 Start BT in service - ok07:17:12.0149 4652 Steam Client Service - ok07:17:12.0220 4652 Stereo Service (8d51ca9e6d36bf3be88abe4f4fead8ec) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe07:17:12.0244 4652 Stereo Service - ok07:17:12.0260 4652 stexstor (db32d325c192b801df274bfd12a7e72b) C:\Windows\system32\DRIVERS\stexstor.sys07:17:12.0270 4652 stexstor - ok07:17:12.0334 4652 StiSvc (e1fb3706030fb4578a0d72c2fc3689e4) C:\Windows\System32\wiaservc.dll07:17:12.0366 4652 StiSvc - ok07:17:12.0394 4652 swenum (e58c78a848add9610a4db6d214af5224) C:\Windows\system32\drivers\swenum.sys07:17:12.0401 4652 swenum - ok07:17:12.0430 4652 swprv (a28bd92df340e57b024ba433165d34d7) C:\Windows\System32\swprv.dll07:17:12.0467 4652 swprv - ok07:17:12.0538 4652 SysMain (36650d618ca34c9d357dfd3d89b2c56f) C:\Windows\system32\sysmain.dll07:17:12.0575 4652 SysMain - ok07:17:12.0606 4652 TabletInputService (763fecdc3d30c815fe72dd57936c6cd1) C:\Windows\System32\TabSvc.dll07:17:12.0620 4652 TabletInputService - ok07:17:12.0656 4652 TapiSrv (613bf4820361543956909043a265c6ac) C:\Windows\System32 apisrv.dll07:17:12.0690 4652 TapiSrv - ok07:17:12.0723 4652 TBS (b799d9fdb26111737f58288d8dc172d9) C:\Windows\System32 bssvc.dll07:17:12.0760 4652 TBS - ok07:17:12.0853 4652 Tcpip (7fa2e0f8b072bd04b77b421480b6cc22) C:\Windows\system32\drivers cpip.sys07:17:12.0893 4652 Tcpip - ok07:17:12.0988 4652 TCPIP6 (7fa2e0f8b072bd04b77b421480b6cc22) C:\Windows\system32\DRIVERS cpip.sys07:17:13.0013 4652 TCPIP6 - ok07:17:13.0066 4652 tcpipreg (cca24162e055c3714ce5a88b100c64ed) C:\Windows\system32\drivers cpipreg.sys07:17:13.0123 4652 tcpipreg - ok07:17:13.0147 4652 TDPIPE (1cb91b2bd8f6dd367dfc2ef26fd751b2) C:\Windows\system32\drivers dpipe.sys07:17:13.0206 4652 TDPIPE - ok07:17:13.0228 4652 TDTCP (2c2c5afe7ee4f620d69c23c0617651a8) C:\Windows\system32\drivers dtcp.sys07:17:13.0275 4652 TDTCP - ok07:17:13.0306 4652 tdx (b459575348c20e8121d6039da063c704) C:\Windows\system32\DRIVERS dx.sys07:17:13.0358 4652 tdx - ok07:17:13.0382 4652 TermDD (04dbf4b01ea4bf25a9a3e84affac9b20) C:\Windows\system32\drivers ermdd.sys07:17:13.0391 4652 TermDD - ok07:17:13.0434 4652 TermService (382c804c92811be57829d8e550a900e2) C:\Windows\System32 ermsrv.dll07:17:13.0472 4652 TermService - ok07:17:13.0501 4652 Themes (42fb6afd6b79d9fe07381609172e7ca4) C:\Windows\system32 hemeservice.dll07:17:13.0530 4652 Themes - ok07:17:13.0559 4652 THREADORDER (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll07:17:13.0580 4652 THREADORDER - ok07:17:13.0592 4652 TrkWks (4792c0378db99a9bc2ae2de6cfff0c3a) C:\Windows\System32 rkwks.dll07:17:13.0629 4652 TrkWks - ok07:17:13.0686 4652 TrustedInstaller (2c49b175aee1d4364b91b531417fe583) C:\Windows\servicing\TrustedInstaller.exe07:17:13.0708 4652 TrustedInstaller - ok07:17:13.0716 4652 tssecsrv (254bb140eee3c59d6114c1a86b636877) C:\Windows\system32\DRIVERS ssecsrv.sys07:17:13.0768 4652 tssecsrv - ok07:17:13.0798 4652 TsUsbFlt (fd1d6c73e6333be727cbcc6054247654) C:\Windows\system32\drivers susbflt.sys07:17:13.0855 4652 TsUsbFlt - ok07:17:13.0909 4652 tunnel (b2fa25d9b17a68bb93d58b0556e8c90d) C:\Windows\system32\DRIVERS unnel.sys07:17:13.0963 4652 tunnel - ok07:17:13.0991 4652 uagp35 (750fbcb269f4d7dd2e420c56b795db6d) C:\Windows\system32\DRIVERS\uagp35.sys07:17:13.0999 4652 uagp35 - ok07:17:14.0028 4652 udfs (ee43346c7e4b5e63e54f927babbb32ff) C:\Windows\system32\DRIVERS\udfs.sys07:17:14.0085 4652 udfs - ok07:17:14.0114 4652 UI0Detect (8344fd4fce927880aa1aa7681d4927e5) C:\Windows\system32\UI0Detect.exe07:17:14.0145 4652 UI0Detect - ok07:17:14.0193 4652 uliagpkx (44e8048ace47befbfdc2e9be4cbc8880) C:\Windows\system32\drivers\uliagpkx.sys07:17:14.0208 4652 uliagpkx - ok07:17:14.0238 4652 umbus (d295bed4b898f0fd999fcfa9b32b071b) C:\Windows\system32\drivers\umbus.sys07:17:14.0248 4652 umbus - ok07:17:14.0266 4652 UmPass (7550ad0c6998ba1cb4843e920ee0feac) C:\Windows\system32\DRIVERS\umpass.sys07:17:14.0291 4652 UmPass - ok07:17:14.0341 4652 unisofthid (52acec2902036b5f7031961824e34910) C:\Windows\system32\DRIVERS\unisofthid.sys07:17:14.0389 4652 unisofthid ( UnsignedFile.Multi.Generic ) - warning07:17:14.0389 4652 unisofthid - detected UnsignedFile.Multi.Generic (1)07:17:14.0556 4652 UNS (eb79c6c91a99930015ef29ae7fa802d1) C:\Program Files\Intel\Intel® Management Engine Components\UNS\UNS.exe07:17:14.0608 4652 UNS - ok07:17:14.0707 4652 upnphost (833fbb672460efce8011d262175fad33) C:\Windows\System32\upnphost.dll07:17:14.0732 4652 upnphost - ok07:17:14.0765 4652 usbccgp (bd9c55d7023c5de374507acc7a14e2ac) C:\Windows\system32\DRIVERS\usbccgp.sys07:17:14.0826 4652 usbccgp - ok07:17:14.0838 4652 usbcir (04ec7cec62ec3b6d9354eee93327fc82) C:\Windows\system32\drivers\usbcir.sys07:17:14.0849 4652 usbcir - ok07:17:14.0864 4652 usbehci (f92de757e4b7ce9c07c5e65423f3ae3b) C:\Windows\system32\DRIVERS\usbehci.sys07:17:14.0884 4652 usbehci - ok07:17:14.0911 4652 usbhub (8dc94aec6a7e644a06135ae7506dc2e9) C:\Windows\system32\DRIVERS\usbhub.sys07:17:14.0945 4652 usbhub - ok07:17:14.0963 4652 usbohci (e185d44fac515a18d9deddc23c2cdf44) C:\Windows\system32\DRIVERS\usbohci.sys07:17:15.0008 4652 usbohci - ok07:17:15.0036 4652 usbprint (797d862fe0875e75c7cc4c1ad7b30252) C:\Windows\system32\DRIVERS\usbprint.sys07:17:15.0058 4652 usbprint - ok07:17:15.0073 4652 usbscan (576096ccbc07e7c4ea4f5e6686d6888f) C:\Windows\system32\DRIVERS\usbscan.sys07:17:15.0099 4652 usbscan - ok07:17:15.0143 4652 USBSTOR (f991ab9cc6b908db552166768176896a) C:\Windows\system32\DRIVERS\USBSTOR.SYS07:17:15.0197 4652 USBSTOR - ok07:17:15.0208 4652 usbuhci (68df884cf41cdada664beb01daf67e3d) C:\Windows\system32\drivers\usbuhci.sys07:17:15.0226 4652 usbuhci - ok07:17:15.0247 4652 UxSms (081e6e1c91aec36758902a9f727cd23c) C:\Windows\System32\uxsms.dll07:17:15.0269 4652 UxSms - ok07:17:15.0296 4652 VaultSvc (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe07:17:15.0306 4652 VaultSvc - ok07:17:15.0331 4652 VComm (51750b0539986186c6931fc40d171521) C:\Windows\system32\DRIVERS\VComm.sys07:17:15.0340 4652 VComm - ok07:17:15.0363 4652 VcommMgr (6d9c891c0a761afed1f3609c2e56f2b9) C:\Windows\system32\Drivers\VcommMgr.sys07:17:15.0371 4652 VcommMgr - ok07:17:15.0414 4652 vdrvroot (a059c4c3edb09e07d21a8e5c0aabd3cb) C:\Windows\system32\drivers\vdrvroot.sys07:17:15.0433 4652 vdrvroot - ok07:17:15.0475 4652 vds (c3cd30495687c2a2f66a65ca6fd89be9) C:\Windows\System32\vds.exe07:17:15.0516 4652 vds - ok07:17:15.0536 4652 vga (17c408214ea61696cec9c66e388b14f3) C:\Windows\system32\DRIVERS\vgapnp.sys07:17:15.0584 4652 vga - ok07:17:15.0605 4652 VgaSave (8e38096ad5c8570a6f1570a61e251561) C:\Windows\System32\drivers\vga.sys07:17:15.0626 4652 VgaSave - ok07:17:15.0660 4652 vhdmp (5461686cca2fda57b024547733ab42e3) C:\Windows\system32\drivers\vhdmp.sys07:17:15.0676 4652 vhdmp - ok07:17:15.0699 4652 viaagp (c829317a37b4bea8f39735d4b076e923) C:\Windows\system32\drivers\viaagp.sys07:17:15.0708 4652 viaagp - ok07:17:15.0715 4652 ViaC7 (e02f079a6aa107f06b16549c6e5c7b74) C:\Windows\system32\DRIVERS\viac7.sys07:17:15.0738 4652 ViaC7 - ok07:17:15.0753 4652 viaide (e43574f6a56a0ee11809b48c09e4fd3c) C:\Windows\system32\drivers\viaide.sys07:17:15.0761 4652 viaide - ok07:17:15.0776 4652 volmgr (4c63e00f2f4b5f86ab48a58cd990f212) C:\Windows\system32\drivers\volmgr.sys07:17:15.0785 4652 volmgr - ok07:17:15.0820 4652 volmgrx (b5bb72067ddddbbfb04b2f89ff8c3c87) C:\Windows\system32\drivers\volmgrx.sys07:17:15.0834 4652 volmgrx - ok07:17:15.0866 4652 volsnap (f497f67932c6fa693d7de2780631cfe7) C:\Windows\system32\drivers\volsnap.sys07:17:15.0876 4652 volsnap - ok07:17:15.0916 4652 vproiah (42f5fc978f64faab5ac7160eb178f29b) C:\Windows\system32\DRIVERS\vproiah.sys07:17:15.0935 4652 vproiah ( UnsignedFile.Multi.Generic ) - warning07:17:15.0935 4652 vproiah - detected UnsignedFile.Multi.Generic (1)07:17:15.0957 4652 vsmraid (9dfa0cc2f8855a04816729651175b631) C:\Windows\system32\DRIVERS\vsmraid.sys07:17:15.0978 4652 vsmraid - ok07:17:16.0042 4652 VSS (209a3b1901b83aeb8527ed211cce9e4c) C:\Windows\system32\vssvc.exe07:17:16.0097 4652 VSS - ok07:17:16.0119 4652 vwifibus (90567b1e658001e79d7c8bbd3dde5aa6) C:\Windows\System32\drivers\vwifibus.sys07:17:16.0145 4652 vwifibus - ok07:17:16.0182 4652 W32Time (55187fd710e27d5095d10a472c8baf1c) C:\Windows\system32\w32time.dll07:17:16.0220 4652 W32Time - ok07:17:16.0244 4652 WacomPen (de3721e89c653aa281428c8a69745d90) C:\Windows\system32\DRIVERS\wacompen.sys07:17:16.0273 4652 WacomPen - ok07:17:16.0321 4652 WANARP (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys07:17:16.0369 4652 WANARP - ok07:17:16.0373 4652 Wanarpv6 (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys07:17:16.0393 4652 Wanarpv6 - ok07:17:16.0487 4652 WatAdminSvc (353a04c273ec58475d8633e75ccd5604) C:\Windows\system32\Wat\WatAdminSvc.exe07:17:16.0519 4652 WatAdminSvc - ok07:17:16.0653 4652 wbengine (691e3285e53dca558e1a84667f13e15a) C:\Windows\system32\wbengine.exe07:17:16.0711 4652 wbengine - ok07:17:16.0732 4652 WbioSrvc (9614b5d29dc76ac3c29f6d2d3aa70e67) C:\Windows\System32\wbiosrvc.dll07:17:16.0764 4652 WbioSrvc - ok07:17:16.0803 4652 wcncsvc (34eee0dfaadb4f691d6d5308a51315dc) C:\Windows\System32\wcncsvc.dll07:17:16.0832 4652 wcncsvc - ok07:17:16.0843 4652 WcsPlugInService (5d930b6357a6d2af4d7653bdabbf352f) C:\Windows\System32\WcsPlugInService.dll07:17:16.0893 4652 WcsPlugInService - ok07:17:16.0932 4652 Wd (1112a9badacb47b7c0bb0392e3158dff) C:\Windows\system32\DRIVERS\wd.sys07:17:16.0940 4652 Wd - ok07:17:16.0968 4652 Wdf01000 (9950e3d0f08141c7e89e64456ae7dc73) C:\Windows\system32\drivers\Wdf01000.sys07:17:16.0983 4652 Wdf01000 - ok07:17:16.0993 4652 WdiServiceHost (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll07:17:17.0052 4652 WdiServiceHost - ok07:17:17.0055 4652 WdiSystemHost (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll07:17:17.0067 4652 WdiSystemHost - ok07:17:17.0105 4652 WebClient (a9d880f97530d5b8fee278923349929d) C:\Windows\System32\webclnt.dll07:17:17.0150 4652 WebClient - ok07:17:17.0187 4652 Wecsvc (760f0afe937a77cff27153206534f275) C:\Windows\system32\wecsvc.dll07:17:17.0211 4652 Wecsvc - ok07:17:17.0268 4652 WeGameClientService (a8e0e75f8411ee0fce92f2ce65bdeeec) C:\Program Files\WeGame\WGClientService.exe07:17:17.0283 4652 WeGameClientService - ok07:17:17.0300 4652 wercplsupport (ac804569bb2364fb6017370258a4091b) C:\Windows\System32\wercplsupport.dll07:17:17.0330 4652 wercplsupport - ok07:17:17.0354 4652 WerSvc (08e420d873e4fd85241ee2421b02c4a4) C:\Windows\System32\WerSvc.dll07:17:17.0376 4652 WerSvc - ok07:17:17.0408 4652 WfpLwf (8b9a943f3b53861f2bfaf6c186168f79) C:\Windows\system32\DRIVERS\wfplwf.sys07:17:17.0456 4652 WfpLwf - ok07:17:17.0477 4652 WIMMount (5cf95b35e59e2a38023836fff31be64c) C:\Windows\system32\drivers\wimmount.sys07:17:17.0496 4652 WIMMount - ok07:17:17.0549 4652 WinDefend (3fae8f94296001c32eab62cd7d82e0fd) C:\Program Files\Windows Defender\mpsvc.dll07:17:17.0593 4652 WinDefend - ok07:17:17.0598 4652 WinHttpAutoProxySvc - ok07:17:17.0664 4652 Winmgmt (f62e510b6ad4c21eb9fe8668ed251826) C:\Windows\system32\wbem\WMIsvc.dll07:17:17.0695 4652 Winmgmt - ok07:17:17.0762 4652 WinRM (1b91cd34ea3a90ab6a4ef0550174f4cc) C:\Windows\system32\WsmSvc.dll07:17:17.0810 4652 WinRM - ok07:17:17.0874 4652 WinUsb (a67e5f9a400f3bd1be3d80613b45f708) C:\Windows\system32\DRIVERS\WinUsb.sys07:17:17.0906 4652 WinUsb - ok07:17:17.0956 4652 Wlansvc (16935c98ff639d185086a3529b1f2067) C:\Windows\System32\wlansvc.dll07:17:17.0981 4652 Wlansvc - ok07:17:18.0105 4652 wlidsvc (5144ae67d60ec653f97ddf3feed29e77) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE07:17:18.0138 4652 wlidsvc - ok07:17:18.0230 4652 WmiAcpi (0217679b8fca58714c3bf2726d2ca84e) C:\Windows\system32\drivers\wmiacpi.sys07:17:18.0246 4652 WmiAcpi - ok07:17:18.0304 4652 wmiApSrv (6eb6b66517b048d87dc1856ddf1f4c3f) C:\Windows\system32\wbem\WmiApSrv.exe07:17:18.0326 4652 wmiApSrv - ok07:17:18.0436 4652 WMPNetworkSvc (3b40d3a61aa8c21b88ae57c58ab3122e) C:\Program Files\Windows Media Player\wmpnetwk.exe07:17:18.0476 4652 WMPNetworkSvc - ok07:17:18.0565 4652 WPCSvc (a2f0ec770a92f2b3f9de6d518e11409c) C:\Windows\System32\wpcsvc.dll07:17:18.0612 4652 WPCSvc - ok07:17:18.0639 4652 WPDBusEnum (aa53356d60af47eacc85bc617a4f3f66) C:\Windows\system32\wpdbusenum.dll07:17:18.0680 4652 WPDBusEnum - ok07:17:18.0705 4652 ws2ifsl (6db3276587b853bf886b69528fdb048c) C:\Windows\system32\drivers\ws2ifsl.sys07:17:18.0739 4652 ws2ifsl - ok07:17:18.0764 4652 wscsvc (6f5d49efe0e7164e03ae773a3fe25340) C:\Windows\system32\wscsvc.dll07:17:18.0789 4652 wscsvc - ok07:17:18.0792 4652 WSearch - ok07:17:18.0885 4652 wuauserv (fc3ec24fce372c89423e015a2ac1a31e) C:\Windows\system32\wuaueng.dll07:17:18.0927 4652 wuauserv - ok07:17:19.0024 4652 WudfPf (e714a1c0354636837e20ccbf00888ee7) C:\Windows\system32\drivers\WudfPf.sys07:17:19.0079 4652 WudfPf - ok07:17:19.0131 4652 WUDFRd (1023ee888c9b47178c5293ed5336ab69) C:\Windows\system32\DRIVERS\WUDFRd.sys07:17:19.0168 4652 WUDFRd - ok07:17:19.0205 4652 wudfsvc (8d1e1e529a2c9e9b6a85b55a345f7629) C:\Windows\System32\WUDFSvc.dll07:17:19.0240 4652 wudfsvc - ok07:17:19.0271 4652 WwanSvc (ff2d745b560f7c71b31f30f4d49f73d2) C:\Windows\System32\wwansvc.dll07:17:19.0315 4652 WwanSvc - ok07:17:19.0363 4652 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk0\DR007:17:19.0570 4652 \Device\Harddisk0\DR0 ( TDSS File System ) - warning07:17:19.0570 4652 \Device\Harddisk0\DR0 - detected TDSS File System (1)07:17:19.0572 4652 Boot (0x1200) (70896d25c8d8fb92420b712e32369125) \Device\Harddisk0\DR0\Partition007:17:19.0574 4652 \Device\Harddisk0\DR0\Partition0 - ok07:17:19.0597 4652 Boot (0x1200) (216c387358dc145099daa82683ffef24) \Device\Harddisk0\DR0\Partition107:17:19.0598 4652 \Device\Harddisk0\DR0\Partition1 - ok07:17:19.0598 4652 ============================================================07:17:19.0598 4652 Scan finished07:17:19.0598 4652 ============================================================07:17:19.0606 1920 Detected object count: 1007:17:19.0606 1920 Actual detected object count: 1007:17:59.0850 1920 hpqcxs08 ( UnsignedFile.Multi.Generic ) - skipped by user07:17:59.0850 1920 hpqcxs08 ( UnsignedFile.Multi.Generic ) - User select action: Skip07:17:59.0852 1920 hpqddsvc ( UnsignedFile.Multi.Generic ) - skipped by user07:17:59.0852 1920 hpqddsvc ( UnsignedFile.Multi.Generic ) - User select action: Skip07:17:59.0852 1920 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user07:17:59.0852 1920 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip07:17:59.0853 1920 NPPTNT2 ( UnsignedFile.Multi.Generic ) - skipped by user07:17:59.0854 1920 NPPTNT2 ( UnsignedFile.Multi.Generic ) - User select action: Skip07:17:59.0855 1920 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user07:17:59.0855 1920 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip07:17:59.0856 1920 SandraAgentSrv ( UnsignedFile.Multi.Generic ) - skipped by user07:17:59.0856 1920 SandraAgentSrv ( UnsignedFile.Multi.Generic ) - User select action: Skip07:17:59.0857 1920 sptd ( LockedFile.Multi.Generic ) - skipped by user07:17:59.0857 1920 sptd ( LockedFile.Multi.Generic ) - User select action: Skip07:17:59.0858 1920 unisofthid ( UnsignedFile.Multi.Generic ) - skipped by user07:17:59.0858 1920 unisofthid ( UnsignedFile.Multi.Generic ) - User select action: Skip07:17:59.0859 1920 vproiah ( UnsignedFile.Multi.Generic ) - skipped by user07:17:59.0859 1920 vproiah ( UnsignedFile.Multi.Generic ) - User select action: Skip07:17:59.0860 1920 \Device\Harddisk0\DR0 ( TDSS File System ) - skipped by user07:17:59.0860 1920 \Device\Harddisk0\DR0 ( TDSS File System ) - User select action: Skip07:18:10.0564 6108 Deinitialize success --------------------------------------------- Изтрих всички дневници на TDSSKiller и повторих сканирането ,но пак показва дата 24-ти юли. п.п. Всъщност , сега забелязах ,че на втория ред от сканирането пише :Current date / time: 2012/08/07 07:16:19.0609 В предишното сканиране също :Current date / time: 2012/08/06 15:26:24.0437 Цитирай Link to comment Сподели другаде More sharing options...
Night_Raven Публикувано Август 7, 2012 Report Share Публикувано Август 7, 2012 Изтегли ListParts и го запази на работния плот. Разбира се избери правилната версия (32- или 64-битова) на базата на това каква операционна система използваш. Стартирай инструмента, постави отметка на List BCD, кликни бутон Scan и изчакай да приключи сканирането. След като приключи, ще ти се отвори текстов файл. Копирай съдържанието му тук. Можеш и да го прикачиш, ако ще ти е по-удобно. Въпросният текстов файл ще се намира също на работния плот. Цитирай Link to comment Сподели другаде More sharing options...
mst Публикувано Август 7, 2012 Report Share Публикувано Август 7, 2012 Резултата от сканирането :Result.txt Цитирай Link to comment Сподели другаде More sharing options...
Night_Raven Публикувано Август 7, 2012 Report Share Публикувано Август 7, 2012 Изглежда чисто. Повтори сканирането с TDSSKiller, но този път избери Cure за TDSS File System. След рестарта провери дали ще има подобрение. Ако няма, изготви отново дневник с OTL. Поради наличието на Sinowal и останки от TDSS допускам, че е възможно заради тях да не се отваря Facebook, затова искам да проверим още веднъж с OTL, защото това не са простички заплахи. И все пак е възможно проблемът с Facebook да е напълно независим. Цитирай Link to comment Сподели другаде More sharing options...
Препоръчан пост
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.