13:53:33.0593 0364 TDSS rootkit removing tool 2.8.10.0 Sep 17 2012 19:23:24 13:53:33.0656 0364 ============================================================ 13:53:33.0656 0364 Current date / time: 2012/10/02 13:53:33.0656 13:53:33.0656 0364 SystemInfo: 13:53:33.0656 0364 13:53:33.0656 0364 OS Version: 5.1.2600 ServicePack: 2.0 13:53:33.0656 0364 Product type: Workstation 13:53:33.0656 0364 ComputerName: KOMP-306C20CBF4 13:53:33.0656 0364 UserName: Admin 13:53:33.0656 0364 Windows directory: C:\WINDOWS 13:53:33.0656 0364 System windows directory: C:\WINDOWS 13:53:33.0656 0364 Processor architecture: Intel x86 13:53:33.0656 0364 Number of processors: 2 13:53:33.0656 0364 Page size: 0x1000 13:53:33.0656 0364 Boot type: Normal boot 13:53:33.0656 0364 ============================================================ 13:53:34.0515 0364 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054 13:53:34.0515 0364 ============================================================ 13:53:34.0515 0364 \Device\Harddisk0\DR0: 13:53:34.0515 0364 MBR partitions: 13:53:34.0515 0364 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x1D1C0681 13:53:34.0531 0364 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1D1C06FF, BlocksNum 0x1D1C0681 13:53:34.0531 0364 ============================================================ 13:53:34.0562 0364 C: <-> \Device\Harddisk0\DR0\Partition1 13:53:34.0578 0364 E: <-> \Device\Harddisk0\DR0\Partition2 13:53:34.0578 0364 ============================================================ 13:53:34.0578 0364 Initialize success 13:53:34.0578 0364 ============================================================ 13:53:41.0921 2652 ============================================================ 13:53:41.0921 2652 Scan started 13:53:41.0921 2652 Mode: Manual; SigCheck; TDLFS; 13:53:41.0921 2652 ============================================================ 13:53:42.0140 2652 ================ Scan system memory ======================== 13:53:42.0156 2652 System memory - ok 13:53:42.0156 2652 ================ Scan services ============================= 13:53:42.0234 2652 Abiosdsk - ok 13:53:42.0234 2652 abp480n5 - ok 13:53:42.0265 2652 [ A966410ECF83B81F3B0B8E07A71957D4 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys 13:53:42.0421 2652 ACPI - ok 13:53:42.0437 2652 [ 66A42B7DB194E24B973BBCCE840A0F3F ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys 13:53:42.0515 2652 ACPIEC - ok 13:53:42.0531 2652 [ 5528FF03F1AAD2DC52914039F1C2002A ] ACS C:\WINDOWS\system32\acs.exe 13:53:42.0546 2652 ACS ( UnsignedFile.Multi.Generic ) - warning 13:53:42.0546 2652 ACS - detected UnsignedFile.Multi.Generic (1) 13:53:42.0546 2652 adpu160m - ok 13:53:42.0578 2652 [ 841F385C6CFAF66B58FBD898722BB4F0 ] aec C:\WINDOWS\system32\drivers\aec.sys 13:53:42.0656 2652 aec - ok 13:53:42.0687 2652 [ 55E6E1C51B6D30E54335750955453702 ] AFD C:\WINDOWS\System32\drivers\afd.sys 13:53:42.0703 2652 AFD - ok 13:53:42.0703 2652 Aha154x - ok 13:53:42.0718 2652 aic78u2 - ok 13:53:42.0718 2652 aic78xx - ok 13:53:42.0750 2652 [ F79B5C5B0A77A134C5671992335D1409 ] Alerter C:\WINDOWS\system32\alrsvc.dll 13:53:42.0812 2652 Alerter - ok 13:53:42.0828 2652 [ 9D12991BC6B6C5C0FBAB4C06E7073DF1 ] ALG C:\WINDOWS\System32\alg.exe 13:53:42.0859 2652 ALG - ok 13:53:42.0859 2652 AliIde - ok 13:53:42.0875 2652 amsint - ok 13:53:42.0890 2652 [ 8D60B308D061DA209CC271D9B480468C ] AppMgmt C:\WINDOWS\System32\appmgmts.dll 13:53:42.0921 2652 AppMgmt - ok 13:53:42.0968 2652 [ 10B3EA75CE9362CE9E908E71866BBDC2 ] AR9271 C:\WINDOWS\system32\DRIVERS\athuw.sys 13:53:43.0046 2652 AR9271 ( UnsignedFile.Multi.Generic ) - warning 13:53:43.0046 2652 AR9271 - detected UnsignedFile.Multi.Generic (1) 13:53:43.0046 2652 asc - ok 13:53:43.0046 2652 asc3350p - ok 13:53:43.0046 2652 asc3550 - ok 13:53:43.0062 2652 [ 02000ABF34AF4C218C35D257024807D6 ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys 13:53:43.0125 2652 AsyncMac - ok 13:53:43.0156 2652 [ CDFE4411A69C224BD1D11B2DA92DAC51 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys 13:53:43.0218 2652 atapi - ok 13:53:43.0218 2652 Atdisk - ok 13:53:43.0234 2652 [ EC88DA854AB7D7752EC8BE11A741BB7F ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys 13:53:43.0296 2652 Atmarpc - ok 13:53:43.0296 2652 [ 18BFF5EBA35F2562C5AA03EB9C6BA29E ] AudioSrv C:\WINDOWS\System32\audiosrv.dll 13:53:43.0359 2652 AudioSrv - ok 13:53:43.0390 2652 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys 13:53:43.0453 2652 audstub - ok 13:53:43.0484 2652 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys 13:53:43.0546 2652 Beep - ok 13:53:43.0593 2652 [ A6BFD910074B02C8794FC65F39CC6B28 ] BITS C:\WINDOWS\system32\qmgr.dll 13:53:43.0656 2652 BITS - ok 13:53:43.0687 2652 [ 210830D2497FEF78694076179AF8C795 ] Browser C:\WINDOWS\System32\browser.dll 13:53:43.0750 2652 Browser - ok 13:53:43.0781 2652 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys 13:53:43.0843 2652 cbidf2k - ok 13:53:43.0859 2652 cd20xrnt - ok 13:53:43.0859 2652 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys 13:53:43.0921 2652 Cdaudio - ok 13:53:43.0921 2652 [ CD7D5152DF32B47F4E36F710B35AAE02 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys 13:53:43.0984 2652 Cdfs - ok 13:53:44.0000 2652 [ AF9C19B3100FE010496B1A27181FBF72 ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys 13:53:44.0062 2652 Cdrom - ok 13:53:44.0062 2652 Changer - ok 13:53:44.0078 2652 [ B4E0A9B9064AA79AE188C0D953543520 ] CiSvc C:\WINDOWS\system32\cisvc.exe 13:53:44.0156 2652 CiSvc - ok 13:53:44.0171 2652 [ 1B11121083C32EA9A55ABE547A23FF71 ] ClipSrv C:\WINDOWS\system32\clipsrv.exe 13:53:44.0250 2652 ClipSrv - ok 13:53:44.0250 2652 CmdIde - ok 13:53:44.0250 2652 COMSysApp - ok 13:53:44.0265 2652 Cpqarray - ok 13:53:44.0296 2652 [ 3C8B6609712F4FF78E521F6DCFC4032B ] Creative Service for CDROM Access C:\WINDOWS\system32\CTsvcCDA.EXE 13:53:44.0296 2652 Creative Service for CDROM Access ( UnsignedFile.Multi.Generic ) - warning 13:53:44.0296 2652 Creative Service for CDROM Access - detected UnsignedFile.Multi.Generic (1) 13:53:44.0328 2652 [ 91723CD7C96C5854149F9CAE820A90DD ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll 13:53:44.0406 2652 CryptSvc - ok 13:53:44.0453 2652 [ 499E69BD99543569BF212B93142220E9 ] ctsfm2k C:\WINDOWS\system32\DRIVERS\ctsfm2k.sys 13:53:44.0453 2652 ctsfm2k - ok 13:53:44.0468 2652 dac2w2k - ok 13:53:44.0468 2652 dac960nt - ok 13:53:44.0500 2652 [ B5D78596EFFBEB82F3B86D9A002538E1 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll 13:53:44.0578 2652 DcomLaunch - ok 13:53:44.0609 2652 [ 4F63FF698DC72EC2EC0262427F8B53CB ] dgderdrv C:\WINDOWS\system32\drivers\dgderdrv.sys 13:53:44.0640 2652 dgderdrv - ok 13:53:44.0656 2652 [ AEE4ADEFC56BF0ED1F80A37B1C3848D0 ] dgdersvc C:\WINDOWS\system32\dgdersvc.exe 13:53:44.0671 2652 dgdersvc - ok 13:53:44.0687 2652 [ 94B49F2D487A7D4A79B3E96B6D5685B0 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll 13:53:44.0750 2652 Dhcp - ok 13:53:44.0765 2652 [ 00CA44E4534865F8A3B64F7C0984BFF0 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys 13:53:44.0812 2652 Disk - ok 13:53:44.0828 2652 dmadmin - ok 13:53:44.0843 2652 [ 3B809FFAD55DCEBDB156D5CA1BD3DA65 ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys 13:53:44.0953 2652 dmboot - ok 13:53:44.0953 2652 [ 27725B6501201C3080BA73048BCE389A ] dmio C:\WINDOWS\system32\drivers\dmio.sys 13:53:45.0015 2652 dmio - ok 13:53:45.0031 2652 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys 13:53:45.0093 2652 dmload - ok 13:53:45.0109 2652 [ 4ADBB7593EC0115F7622C335B427C3DA ] dmserver C:\WINDOWS\System32\dmserver.dll 13:53:45.0171 2652 dmserver - ok 13:53:45.0203 2652 [ A6F881284AC1150E37D9AE47FF601267 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys 13:53:45.0281 2652 DMusic - ok 13:53:45.0281 2652 [ F61C204EBCAA1D6B5FB5DFE7034741F3 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll 13:53:45.0343 2652 Dnscache - ok 13:53:45.0343 2652 dpti2o - ok 13:53:45.0343 2652 [ 1ED4DBBAE9F5D558DBBA4CC450E3EB2E ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys 13:53:45.0406 2652 drmkaud - ok 13:53:45.0421 2652 [ EFD32591F9E29C00A5814DF3F6D46683 ] ERSvc C:\WINDOWS\System32\ersvc.dll 13:53:45.0484 2652 ERSvc - ok 13:53:45.0500 2652 [ ED4E5391100287B9EABF8F2CF4B42235 ] Eventlog C:\WINDOWS\system32\services.exe 13:53:45.0515 2652 Eventlog - ok 13:53:45.0546 2652 [ 878FA7B8FFBCFFDAEB05F0484A99562D ] EventSystem C:\WINDOWS\system32\es.dll 13:53:45.0593 2652 EventSystem - ok 13:53:45.0593 2652 [ 3117F595E9615E04F05A54FC15A03B20 ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys 13:53:45.0671 2652 Fastfat - ok 13:53:45.0687 2652 [ 7C8E934687C496EDC69FDBBD2C277E63 ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll 13:53:45.0750 2652 FastUserSwitchingCompatibility - ok 13:53:45.0765 2652 [ CED2E8396A8838E59D8FD529C680E02C ] Fdc C:\WINDOWS\system32\drivers\Fdc.sys 13:53:45.0828 2652 Fdc - ok 13:53:45.0828 2652 [ C5FB298257C0A6514EA17835E774EA0A ] Fips C:\WINDOWS\system32\drivers\Fips.sys 13:53:45.0890 2652 Fips - ok 13:53:45.0906 2652 [ 0DD1DE43115B93F4D85E889D7A86F548 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys 13:53:45.0984 2652 Flpydisk - ok 13:53:46.0000 2652 [ 157754F0DF355A9E0A6F54721914F9C6 ] FltMgr C:\WINDOWS\system32\DRIVERS\fltMgr.sys 13:53:46.0062 2652 FltMgr - ok 13:53:46.0109 2652 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe 13:53:46.0125 2652 FontCache3.0.0.0 - ok 13:53:46.0140 2652 [ B07663A810E861EEBFD0EAC7E82CA62D ] FsUsbExDisk C:\WINDOWS\system32\FsUsbExDisk.SYS 13:53:46.0156 2652 FsUsbExDisk ( UnsignedFile.Multi.Generic ) - warning 13:53:46.0156 2652 FsUsbExDisk - detected UnsignedFile.Multi.Generic (1) 13:53:46.0156 2652 [ F96C429788350DB4BA6771C3034DFD88 ] FsUsbExService C:\WINDOWS\system32\FsUsbExService.Exe 13:53:46.0171 2652 FsUsbExService ( UnsignedFile.Multi.Generic ) - warning 13:53:46.0171 2652 FsUsbExService - detected UnsignedFile.Multi.Generic (1) 13:53:46.0171 2652 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys 13:53:46.0234 2652 Fs_Rec - ok 13:53:46.0250 2652 [ ED6D921D8AB423138FB35BEEE6D6A6CB ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys 13:53:46.0312 2652 Ftdisk - ok 13:53:46.0343 2652 [ C0F1D4A21DE5A415DF8170616703DEBF ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys 13:53:46.0421 2652 Gpc - ok 13:53:46.0453 2652 [ E1552A082E8C0FBB70B758F170B3AFF8 ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll 13:53:46.0515 2652 helpsvc - ok 13:53:46.0546 2652 [ 7D00FEC9B6DE9776B3D0EAD70BD71968 ] HidServ C:\WINDOWS\System32\hidserv.dll 13:53:46.0625 2652 HidServ - ok 13:53:46.0625 2652 [ 1DE6783B918F540149AA69943BDFEBA8 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys 13:53:46.0687 2652 HidUsb - ok 13:53:46.0687 2652 hpn - ok 13:53:46.0718 2652 [ 9F8B0F4276F618964FD118BE4289B7CD ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys 13:53:46.0750 2652 HTTP - ok 13:53:46.0765 2652 [ 2D303CAF3C6DCFB246E74550DBED5880 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll 13:53:46.0859 2652 HTTPFilter - ok 13:53:46.0875 2652 [ 8ADF5EF39E896A65BEDED878494EE2B6 ] hwdatacard C:\WINDOWS\system32\DRIVERS\ewusbmdm.sys 13:53:46.0921 2652 hwdatacard - ok 13:53:46.0937 2652 i2omgmt - ok 13:53:46.0937 2652 i2omp - ok 13:53:46.0953 2652 [ 2656FDFE0A7916C3A16F374454C55DD9 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys 13:53:47.0031 2652 i8042prt - ok 13:53:47.0156 2652 [ A01BB8DA8D73BCA83702A4CF1CD56DCE ] ialm C:\WINDOWS\system32\DRIVERS\igxpmp32.sys 13:53:47.0281 2652 ialm - ok 13:53:47.0312 2652 [ F8AA320C6A0409C0380E5D8A99D76EC6 ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys 13:53:47.0375 2652 Imapi - ok 13:53:47.0390 2652 [ BC74431E59FB0BADF3E9162BD8D37B00 ] ImapiService C:\WINDOWS\system32\imapi.exe 13:53:47.0468 2652 ImapiService - ok 13:53:47.0484 2652 ini910u - ok 13:53:47.0484 2652 IntelIde - ok 13:53:47.0500 2652 [ 78A353438791C6D04C64013A5ABEC6BD ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys 13:53:47.0562 2652 intelppm - ok 13:53:47.0578 2652 [ 4448006B6BC60E6C027932CFC38D6855 ] Ip6Fw C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys 13:53:47.0656 2652 Ip6Fw - ok 13:53:47.0671 2652 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 13:53:47.0734 2652 IpFilterDriver - ok 13:53:47.0734 2652 [ E1EC7F5DA720B640CD8FB8424F1B14BB ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys 13:53:47.0812 2652 IpInIp - ok 13:53:47.0828 2652 [ B5A8E215AC29D24D60B4D1250EF05ACE ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys 13:53:47.0890 2652 IpNat - ok 13:53:47.0906 2652 [ 64537AA5C003A6AFEEE1DF819062D0D1 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys 13:53:48.0046 2652 IPSec - ok 13:53:48.0062 2652 [ 50708DAA1B1CBB7D6AC1CF8F56A24410 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys 13:53:48.0109 2652 IRENUM - ok 13:53:48.0156 2652 [ 01A9E68528F4F34E5702123D27C67BD4 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys 13:53:48.0218 2652 isapnp - ok 13:53:48.0359 2652 [ A12175F063302CD68F8FC6D572D7E5FD ] JavaQuickStarterService C:\Program Files\Java\jre7\bin\jqs.exe 13:53:48.0375 2652 JavaQuickStarterService - ok 13:53:48.0390 2652 [ CC13DB862F929AE33F64C3BEDC01CD31 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys 13:53:48.0468 2652 Kbdclass - ok 13:53:48.0484 2652 [ 831BE9197BDACE6BDCAC1BFDBE1C380F ] kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys 13:53:48.0546 2652 kbdhid - ok 13:53:48.0562 2652 [ D93CAD07C5683DB066B0B2D2D3790EAD ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys 13:53:48.0625 2652 kmixer - ok 13:53:48.0640 2652 [ 674D3E5A593475915DC6643317192403 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys 13:53:48.0671 2652 KSecDD - ok 13:53:48.0703 2652 [ 83EC18EE52DBF7CCE9520F848F4E6584 ] lanmanserver C:\WINDOWS\System32\srvsvc.dll 13:53:48.0765 2652 lanmanserver - ok 13:53:48.0796 2652 [ F8442B1E1A60AAD8824CB540D2B20FB2 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll 13:53:48.0812 2652 lanmanworkstation - ok 13:53:48.0812 2652 lbrtfdc - ok 13:53:48.0843 2652 [ 94136B41F35666254DE29006DCCC30FC ] LmHosts C:\WINDOWS\System32\lmhsvc.dll 13:53:48.0906 2652 LmHosts - ok 13:53:48.0937 2652 [ 1D0EBF9EDAE8A61CBF56ED1FF8489FAC ] Messenger C:\WINDOWS\System32\msgsvc.dll 13:53:49.0000 2652 Messenger - ok 13:53:49.0015 2652 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys 13:53:49.0093 2652 mnmdd - ok 13:53:49.0125 2652 [ DB082AAFD0859E28744E6629B64E0A91 ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe 13:53:49.0187 2652 mnmsrvc - ok 13:53:49.0218 2652 [ 15F33D12D604D0198CE5561F102CD9C5 ] Modem C:\WINDOWS\system32\drivers\Modem.sys 13:53:49.0281 2652 Modem - ok 13:53:49.0296 2652 [ 69C12B99AE8B6B99EC314E9B99833728 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys 13:53:49.0359 2652 Mouclass - ok 13:53:49.0375 2652 [ ECEC1E6CD558AB80F944F31326E9D3B5 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys 13:53:49.0453 2652 mouhid - ok 13:53:49.0453 2652 [ 65653F3B4477F3C63E68A9659F85EE2E ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys 13:53:49.0531 2652 MountMgr - ok 13:53:49.0531 2652 mraid35x - ok 13:53:49.0562 2652 [ 46EDCC8F2DB2F322C24F48785CB46366 ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys 13:53:49.0625 2652 MRxDAV - ok 13:53:49.0656 2652 [ FB6C89BB3CE282B08BDB1E3C179E1C39 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 13:53:49.0671 2652 MRxSmb - ok 13:53:49.0718 2652 [ FB68F196B215782333FA1467CBAFC8B0 ] MSDTC C:\WINDOWS\system32\msdtc.exe 13:53:49.0796 2652 MSDTC - ok 13:53:49.0796 2652 [ 561B3A4333CA2DBDBA28B5B956822519 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys 13:53:49.0859 2652 Msfs - ok 13:53:49.0859 2652 MSIServer - ok 13:53:49.0859 2652 [ AE431A8DD3C1D0D0610CDBAC16057AD0 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys 13:53:49.0921 2652 MSKSSRV - ok 13:53:49.0937 2652 [ 13E75FEF9DFEB08EEDED9D0246E1F448 ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys 13:53:50.0015 2652 MSPCLOCK - ok 13:53:50.0015 2652 [ 1988A33FF19242576C3D0EF9CE785DA7 ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys 13:53:50.0078 2652 MSPQM - ok 13:53:50.0093 2652 [ 469541F8BFD2B32659D5D463A6714BCE ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys 13:53:50.0156 2652 mssmbios - ok 13:53:50.0187 2652 [ D48659BB24C48345D926ECB45C1EBDF5 ] MTsensor C:\WINDOWS\system32\DRIVERS\ASACPI.sys 13:53:50.0203 2652 MTsensor - ok 13:53:50.0203 2652 [ 82035E0F41C2DD05AE41D27FE6CF7DE1 ] Mup C:\WINDOWS\system32\drivers\Mup.sys 13:53:50.0265 2652 Mup - ok 13:53:50.0281 2652 [ 558635D3AF1C7546D26067D5D9B6959E ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys 13:53:50.0375 2652 NDIS - ok 13:53:50.0390 2652 [ 08D43BBDACDF23F34D79E44ED35C1B4C ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys 13:53:50.0515 2652 NdisTapi - ok 13:53:50.0531 2652 [ 34D6CD56409DA9A7ED573E1C90A308BF ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys 13:53:50.0593 2652 Ndisuio - ok 13:53:50.0593 2652 [ 0B90E255A9490166AB368CD55A529893 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys 13:53:50.0671 2652 NdisWan - ok 13:53:50.0687 2652 [ 59FC3FB44D2669BC144FD87826BB571F ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys 13:53:50.0750 2652 NDProxy - ok 13:53:50.0750 2652 [ 3A2ACA8FC1D7786902CA434998D7CEB4 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys 13:53:50.0828 2652 NetBIOS - ok 13:53:50.0843 2652 [ 0C80E410CD2F47134407EE7DD19CC86B ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys 13:53:50.0890 2652 NetBT - ok 13:53:50.0906 2652 [ 8DE3841527161ABDFAE5C44AB570F8E1 ] NetDDE C:\WINDOWS\system32\netdde.exe 13:53:50.0968 2652 NetDDE - ok 13:53:50.0984 2652 [ 8DE3841527161ABDFAE5C44AB570F8E1 ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe 13:53:51.0046 2652 NetDDEdsdm - ok 13:53:51.0046 2652 [ F485FEFC8CC4FD29243D800BE5D275D1 ] Netlogon C:\WINDOWS\system32\lsass.exe 13:53:51.0125 2652 Netlogon - ok 13:53:51.0140 2652 [ 3E7B6583269BC118720D0020B03CC71E ] Netman C:\WINDOWS\System32\netman.dll 13:53:51.0203 2652 Netman - ok 13:53:51.0250 2652 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe 13:53:51.0250 2652 NetTcpPortSharing - ok 13:53:51.0281 2652 [ D4ABFCD86AF9533EF94F291A1BB3E9A2 ] Nla C:\WINDOWS\System32\mswsock.dll 13:53:51.0328 2652 Nla - ok 13:53:51.0390 2652 [ 7AEA4DF1CA68FD45DD4BBE1F0243CE7F ] NMSAccess C:\Program Files\CDBurnerXP\NMSAccessU.exe 13:53:51.0390 2652 NMSAccess - ok 13:53:51.0421 2652 [ B9730495E0CF674680121E34BD95A73B ] NPF C:\WINDOWS\system32\drivers\NPF.sys 13:53:51.0421 2652 NPF - ok 13:53:51.0437 2652 [ 4F601BCB8F64EA3AC0994F98FED03F8E ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys 13:53:51.0500 2652 Npfs - ok 13:53:51.0515 2652 [ B78BE402C3F63DD55521F73876951CDD ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys 13:53:51.0625 2652 Ntfs - ok 13:53:51.0640 2652 [ F485FEFC8CC4FD29243D800BE5D275D1 ] NtLmSsp C:\WINDOWS\system32\lsass.exe 13:53:51.0703 2652 NtLmSsp - ok 13:53:51.0718 2652 [ C8CE1566B0537C3F5F7AE1CA458A6697 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll 13:53:51.0796 2652 NtmsSvc - ok 13:53:51.0812 2652 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys 13:53:51.0875 2652 Null - ok 13:53:51.0875 2652 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys 13:53:51.0937 2652 NwlnkFlt - ok 13:53:51.0937 2652 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys 13:53:52.0000 2652 NwlnkFwd - ok 13:53:52.0015 2652 [ D3353DD62853631AA67CB6C73406EC78 ] ossrv C:\WINDOWS\system32\DRIVERS\ctoss2k.sys 13:53:52.0031 2652 ossrv - ok 13:53:52.0062 2652 [ 2FF48D8FDC815A8492FB2BD81E6999C2 ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys 13:53:52.0125 2652 Parport - ok 13:53:52.0140 2652 [ 3334430C29DC338092F79C38EF7B4CD0 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys 13:53:52.0187 2652 PartMgr - ok 13:53:52.0203 2652 [ 453EC2C2A20A1382F564541918520EEB ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys 13:53:52.0265 2652 ParVdm - ok 13:53:52.0296 2652 [ FD2041E9BA03DB7764B2248F02475079 ] pccsmcfd C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys 13:53:52.0312 2652 pccsmcfd - ok 13:53:52.0343 2652 [ 5FD05C92EC56F696EAA50B68CEF1B84A ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys 13:53:52.0453 2652 PCI - ok 13:53:52.0468 2652 PCIDump - ok 13:53:52.0484 2652 [ 548CF2D6369EAE441A4C6BAA75BC4F0A ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys 13:53:52.0546 2652 PCIIde - ok 13:53:52.0578 2652 [ 2849812217ECEC059CB45F80EB6E52D4 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys 13:53:52.0656 2652 Pcmcia - ok 13:53:52.0656 2652 PDCOMP - ok 13:53:52.0656 2652 PDFRAME - ok 13:53:52.0656 2652 PDRELI - ok 13:53:52.0656 2652 PDRFRAME - ok 13:53:52.0656 2652 perc2 - ok 13:53:52.0671 2652 perc2hib - ok 13:53:52.0687 2652 [ 0ABC514F6606324CE15484D079027798 ] PfModNT C:\WINDOWS\system32\drivers\PfModNT.sys 13:53:52.0687 2652 PfModNT ( UnsignedFile.Multi.Generic ) - warning 13:53:52.0687 2652 PfModNT - detected UnsignedFile.Multi.Generic (1) 13:53:52.0703 2652 [ ED4E5391100287B9EABF8F2CF4B42235 ] PlugPlay C:\WINDOWS\system32\services.exe 13:53:52.0734 2652 PlugPlay - ok 13:53:52.0734 2652 [ F485FEFC8CC4FD29243D800BE5D275D1 ] PolicyAgent C:\WINDOWS\system32\lsass.exe 13:53:52.0796 2652 PolicyAgent - ok 13:53:52.0812 2652 [ 1C5CC65AAC0783C344F16353E60B72AC ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys 13:53:52.0875 2652 PptpMiniport - ok 13:53:52.0875 2652 [ F485FEFC8CC4FD29243D800BE5D275D1 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe 13:53:52.0937 2652 ProtectedStorage - ok 13:53:52.0937 2652 [ 48671F327553DCF1D27F6197F622A668 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys 13:53:53.0015 2652 PSched - ok 13:53:53.0015 2652 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys 13:53:53.0093 2652 Ptilink - ok 13:53:53.0109 2652 [ E42E3433DBB4CFFE8FDD91EAB29AEA8E ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys 13:53:53.0109 2652 PxHelp20 - ok 13:53:53.0109 2652 ql1080 - ok 13:53:53.0125 2652 Ql10wnt - ok 13:53:53.0125 2652 ql12160 - ok 13:53:53.0125 2652 ql1240 - ok 13:53:53.0125 2652 ql1280 - ok 13:53:53.0125 2652 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys 13:53:53.0203 2652 RasAcd - ok 13:53:53.0218 2652 [ 5ED5AF86EE8CC13F6392B37A81AF5D5B ] RasAuto C:\WINDOWS\System32\rasauto.dll 13:53:53.0281 2652 RasAuto - ok 13:53:53.0296 2652 [ 98FAEB4A4DCF812BA1C6FCA4AA3E115C ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys 13:53:53.0359 2652 Rasl2tp - ok 13:53:53.0375 2652 [ FF59EC9427760470DE7FFCA75738ECB8 ] RasMan C:\WINDOWS\System32\rasmans.dll 13:53:53.0437 2652 RasMan - ok 13:53:53.0437 2652 [ 7306EEED8895454CBED4669BE9F79FAA ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys 13:53:53.0562 2652 RasPppoe - ok 13:53:53.0578 2652 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys 13:53:53.0640 2652 Raspti - ok 13:53:53.0671 2652 [ 29D66245ADBA878FFF574CD66ABD2884 ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys 13:53:53.0734 2652 Rdbss - ok 13:53:53.0750 2652 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys 13:53:53.0812 2652 RDPCDD - ok 13:53:53.0828 2652 [ A2CAE2C60BC37E0751EF9DDA7CEAF4AD ] rdpdr C:\WINDOWS\system32\DRIVERS\rdpdr.sys 13:53:53.0906 2652 rdpdr - ok 13:53:53.0906 2652 [ D4F5643D7714EF499AE9527FDCD50894 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys 13:53:53.0968 2652 RDPWD - ok 13:53:54.0000 2652 [ EE93399BC7CD84624AB7890DD7D8B296 ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe 13:53:54.0062 2652 RDSessMgr - ok 13:53:54.0078 2652 [ BDDCECE9ACDAD26841C987D10376F6F7 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys 13:53:54.0156 2652 redbook - ok 13:53:54.0187 2652 [ 6A9CB0C18B634B187B8B5A32B0FC2773 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll 13:53:54.0265 2652 RemoteAccess - ok 13:53:54.0281 2652 [ A19BFED61736127DB5B8B815AFB35190 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll 13:53:54.0343 2652 RemoteRegistry - ok 13:53:54.0359 2652 [ 6BE739F700580F23740EFA1D1B57C0A5 ] RpcLocator C:\WINDOWS\system32\locator.exe 13:53:54.0437 2652 RpcLocator - ok 13:53:54.0453 2652 [ B5D78596EFFBEB82F3B86D9A002538E1 ] RpcSs C:\WINDOWS\system32\rpcss.dll 13:53:54.0500 2652 RpcSs - ok 13:53:54.0515 2652 [ 9ACEE3313020A01235336C2A483AFD1A ] RSVP C:\WINDOWS\system32\rsvp.exe 13:53:54.0578 2652 RSVP - ok 13:53:54.0609 2652 [ CB9310A5A910648D359C99A857E22A54 ] RTLE8023xp C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys 13:53:54.0640 2652 RTLE8023xp - ok 13:53:54.0656 2652 [ F485FEFC8CC4FD29243D800BE5D275D1 ] SamSs C:\WINDOWS\system32\lsass.exe 13:53:54.0718 2652 SamSs - ok 13:53:54.0750 2652 [ B0B51AC5B0AFCB0CDB40D0C0A1ADA662 ] sbusb C:\WINDOWS\system32\DRIVERS\sbusb.sys 13:53:54.0781 2652 sbusb - ok 13:53:54.0828 2652 [ 8DF7262F72C3AB75486D21BA78B9F749 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe 13:53:54.0890 2652 SCardSvr - ok 13:53:54.0921 2652 [ E5F1C9EAD4C6617ACD40CA90882CC7D4 ] Schedule C:\WINDOWS\system32\schedsvc.dll 13:53:54.0984 2652 Schedule - ok 13:53:55.0000 2652 [ D26E26EA516450AF9D072635C60387F4 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys 13:53:55.0031 2652 Secdrv - ok 13:53:55.0046 2652 [ 60255AC385A08AAF4897AB4A42483500 ] seclogon C:\WINDOWS\System32\seclogon.dll 13:53:55.0109 2652 seclogon - ok 13:53:55.0125 2652 [ 1398DF553E701C7948188A7D4E347A18 ] SENS C:\WINDOWS\system32\sens.dll 13:53:55.0187 2652 SENS - ok 13:53:55.0203 2652 [ A2D868AEEFF612E70E213C451A70CAFB ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys 13:53:55.0265 2652 serenum - ok 13:53:55.0265 2652 [ 859BC6F8C3D58CFDA9181E9926C7DDB9 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys 13:53:55.0328 2652 Serial - ok 13:53:55.0343 2652 [ 0D13B6DF6E9E101013A7AFB0CE629FE0 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys 13:53:55.0390 2652 Sfloppy - ok 13:53:55.0406 2652 [ DDC87ADF808D192A5212CC8A1E7F8E87 ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll 13:53:55.0484 2652 SharedAccess - ok 13:53:55.0500 2652 [ 7C8E934687C496EDC69FDBBD2C277E63 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll 13:53:55.0562 2652 ShellHWDetection - ok 13:53:55.0562 2652 Simbad - ok 13:53:55.0562 2652 Sparrow - ok 13:53:55.0609 2652 [ 8E186B8F23295D1E42C573B82B80D548 ] splitter C:\WINDOWS\system32\drivers\splitter.sys 13:53:55.0671 2652 splitter - ok 13:53:55.0703 2652 [ BEBE8A85954FF460374FD5A0CD21E19B ] Spooler C:\WINDOWS\system32\spoolsv.exe 13:53:55.0765 2652 Spooler - ok 13:53:55.0781 2652 [ 6145CA23BCCDA679A772EC0AF42D6EB5 ] sr C:\WINDOWS\system32\DRIVERS\sr.sys 13:53:55.0812 2652 sr - ok 13:53:55.0812 2652 [ F309D9894FCA821E3C2F557A8032D47A ] srservice C:\WINDOWS\system32\srsvc.dll 13:53:55.0875 2652 srservice - ok 13:53:55.0890 2652 [ 7A4F147CC6B133F905F6E65E2F8669FB ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys 13:53:55.0906 2652 Srv - ok 13:53:55.0937 2652 [ BB754C4BE0B18F0FAF01A7EBDE7025C4 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll 13:53:55.0984 2652 SSDPSRV - ok 13:53:56.0015 2652 [ 3F0164FBC0BD1ADBD02DF9759181451A ] ss_bbus C:\WINDOWS\system32\DRIVERS\ss_bbus.sys 13:53:56.0015 2652 ss_bbus - ok 13:53:56.0015 2652 [ B89D62206034E5FE573C80A24DD55675 ] ss_bmdfl C:\WINDOWS\system32\DRIVERS\ss_bmdfl.sys 13:53:56.0031 2652 ss_bmdfl - ok 13:53:56.0031 2652 [ 1ED0FCEA586FE2A416EE15196E5631DD ] ss_bmdm C:\WINDOWS\system32\DRIVERS\ss_bmdm.sys 13:53:56.0031 2652 ss_bmdm - ok 13:53:56.0031 2652 [ 994D2E5378CC337EC7DD73C1E04FCAA4 ] ss_bserd C:\WINDOWS\system32\DRIVERS\ss_bserd.sys 13:53:56.0046 2652 ss_bserd - ok 13:53:56.0046 2652 [ E57B778208C783D8DEBAB320C16A1B82 ] StarOpen C:\WINDOWS\system32\drivers\StarOpen.sys 13:53:56.0062 2652 StarOpen ( UnsignedFile.Multi.Generic ) - warning 13:53:56.0062 2652 StarOpen - detected UnsignedFile.Multi.Generic (1) 13:53:56.0093 2652 [ C6718154A50FE6C55E382CDBDEDCE7A7 ] stisvc C:\WINDOWS\system32\wiaservc.dll 13:53:56.0156 2652 stisvc - ok 13:53:56.0171 2652 [ 03C1BAE4766E2450219D20B993D6E046 ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys 13:53:56.0234 2652 swenum - ok 13:53:56.0250 2652 [ 94ABC808FC4B6D7D2BBF42B85E25BB4D ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys 13:53:56.0296 2652 swmidi - ok 13:53:56.0312 2652 SwPrv - ok 13:53:56.0312 2652 symc810 - ok 13:53:56.0312 2652 symc8xx - ok 13:53:56.0312 2652 sym_hi - ok 13:53:56.0312 2652 sym_u3 - ok 13:53:56.0328 2652 [ 650AD082D46BAC0E64C9C0E0928492FD ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys 13:53:56.0390 2652 sysaudio - ok 13:53:56.0406 2652 [ 5893B3B5B966233CAE426B2FEDC34DDF ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe 13:53:56.0468 2652 SysmonLog - ok 13:53:56.0500 2652 [ 0A695B77564D8E9333E846B526F95AB2 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll 13:53:56.0578 2652 TapiSrv - ok 13:53:56.0593 2652 [ 2A5554FC5B1E04E131230E3CE035C3F9 ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys 13:53:56.0625 2652 Tcpip - ok 13:53:56.0640 2652 [ 38D437CF2D98965F239B0ABCD66DCB0F ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys 13:53:56.0687 2652 TDPIPE - ok 13:53:56.0703 2652 [ ED0580AF02502D00AD8C4C066B156BE9 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys 13:53:56.0750 2652 TDTCP - ok 13:53:56.0765 2652 [ A540A99C281D933F3D69D55E48727F47 ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys 13:53:56.0828 2652 TermDD - ok 13:53:56.0859 2652 [ 2C28157229925280916B3041CCC5FE4B ] TermService C:\WINDOWS\System32\termsrv.dll 13:53:56.0921 2652 TermService - ok 13:53:56.0921 2652 [ 7C8E934687C496EDC69FDBBD2C277E63 ] Themes C:\WINDOWS\System32\shsvcs.dll 13:53:56.0984 2652 Themes - ok 13:53:57.0000 2652 [ CAC717418CCDF09110F406108017BFA6 ] TlntSvr C:\WINDOWS\system32\tlntsvr.exe 13:53:57.0031 2652 TlntSvr - ok 13:53:57.0046 2652 TosIde - ok 13:53:57.0062 2652 [ FACBC230AA93401D2FE88976E7CB7369 ] TrkWks C:\WINDOWS\system32\trkwks.dll 13:53:57.0125 2652 TrkWks - ok 13:53:57.0140 2652 [ 12F70256F140CD7D52C58C7048FDE657 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys 13:53:57.0187 2652 Udfs - ok 13:53:57.0187 2652 ultra - ok 13:53:57.0218 2652 [ AFF2E5045961BBC0A602BB6F95EB1345 ] Update C:\WINDOWS\system32\DRIVERS\update.sys 13:53:57.0281 2652 Update - ok 13:53:57.0296 2652 [ 387D2A06C8E7CCCEA8E9A350C8FE6781 ] upnphost C:\WINDOWS\System32\upnphost.dll 13:53:57.0359 2652 upnphost - ok 13:53:57.0375 2652 [ 576A2C38CF3904F2CA1107F922288435 ] UPS C:\WINDOWS\System32\ups.exe 13:53:57.0421 2652 UPS - ok 13:53:57.0437 2652 [ 45A0D14B26C35497AD93BCE7E15C9941 ] usbaudio C:\WINDOWS\system32\drivers\usbaudio.sys 13:53:57.0500 2652 usbaudio - ok 13:53:57.0515 2652 [ BFFD9F120CC63BCBAA3D840F3EEF9F79 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys 13:53:57.0578 2652 usbccgp - ok 13:53:57.0609 2652 [ 15E993BA2F6946B2BFBBFCD30398621E ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys 13:53:57.0656 2652 usbehci - ok 13:53:57.0671 2652 [ C72F40947F92CEA56A8FB532EDF025F1 ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys 13:53:57.0750 2652 usbhub - ok 13:53:57.0750 2652 [ A6BC71402F4F7DD5B77FD7F4A8DDBA85 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys 13:53:57.0812 2652 usbscan - ok 13:53:57.0812 2652 [ 6CD7B22193718F1D17A47A1CD6D37E75 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS 13:53:57.0875 2652 USBSTOR - ok 13:53:57.0906 2652 [ F8FD1400092E23C8F2F31406EF06167B ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys 13:53:57.0953 2652 usbuhci - ok 13:53:57.0968 2652 [ 8A60EDD72B4EA5AEA8202DAF0E427925 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys 13:53:58.0046 2652 VgaSave - ok 13:53:58.0078 2652 [ 1A8E19B027885E8E9E852784C9E4B21A ] VIAHdAudAddService C:\WINDOWS\system32\drivers\viahduaa.sys 13:53:58.0125 2652 VIAHdAudAddService - ok 13:53:58.0125 2652 ViaIde - ok 13:53:58.0140 2652 [ ECD173739B8EC10A814CC18653DF5A36 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys 13:53:58.0203 2652 VolSnap - ok 13:53:58.0234 2652 [ FEC1E19B91972105044960B23C442949 ] VSS C:\WINDOWS\System32\vssvc.exe 13:53:58.0265 2652 VSS - ok 13:53:58.0281 2652 [ 000A0D516A2E20441E77AEA44E46B19B ] W32Time C:\WINDOWS\system32\w32time.dll 13:53:58.0343 2652 W32Time - ok 13:53:58.0375 2652 [ 984EF0B9788ABF89974CFED4BFBAACBC ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys 13:53:58.0421 2652 Wanarp - ok 13:53:58.0437 2652 WDICA - ok 13:53:58.0437 2652 [ 2797F33EBF50466020C430EE4F037933 ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys 13:53:58.0500 2652 wdmaud - ok 13:53:58.0500 2652 [ F796BEFE565C59A30A4C61B640557276 ] WebClient C:\WINDOWS\System32\webclnt.dll 13:53:58.0562 2652 WebClient - ok 13:53:58.0640 2652 [ 482435B2A2DE8E06C83C3B1EB3237C2C ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll 13:53:58.0687 2652 winmgmt - ok 13:53:58.0718 2652 [ 36678803A8030EE9A771935CFC1848BD ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll 13:53:58.0750 2652 WmdmPmSN - ok 13:53:58.0781 2652 [ C5507CDDA7FB1141B296FD0B9A10130E ] Wmi C:\WINDOWS\System32\advapi32.dll 13:53:58.0812 2652 Wmi - ok 13:53:58.0828 2652 [ 45E43704611D7C2202A180FF87E63550 ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe 13:53:58.0890 2652 WmiApSrv - ok 13:53:58.0906 2652 [ CF4DEF1BF66F06964DC0D91844239104 ] WpdUsb C:\WINDOWS\system32\DRIVERS\wpdusb.sys 13:53:58.0921 2652 WpdUsb - ok 13:53:58.0937 2652 [ 390D0951271908C46EECF89893876424 ] wscsvc C:\WINDOWS\system32\wscsvc.dll 13:53:59.0015 2652 wscsvc - ok 13:53:59.0046 2652 [ 0091D78C5F8FDE0CDF2B214823DE6E48 ] WSIMD C:\WINDOWS\system32\DRIVERS\wsimd.sys 13:53:59.0046 2652 WSIMD ( UnsignedFile.Multi.Generic ) - warning 13:53:59.0046 2652 WSIMD - detected UnsignedFile.Multi.Generic (1) 13:53:59.0078 2652 [ 40C600488FF127953AA2F1835E5FD433 ] wuauserv C:\WINDOWS\system32\wuauserv.dll 13:53:59.0140 2652 wuauserv - ok 13:53:59.0171 2652 [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys 13:53:59.0187 2652 WudfPf - ok 13:53:59.0218 2652 [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys 13:53:59.0234 2652 WudfRd - ok 13:53:59.0234 2652 [ 05231C04253C5BC30B26CBAAE680ED89 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll 13:53:59.0250 2652 WudfSvc - ok 13:53:59.0265 2652 [ 98A8014DBE72349F73462262CF493574 ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll 13:53:59.0328 2652 WZCSVC - ok 13:53:59.0343 2652 [ E3C9EF5BCC9EB171BD81051CD19BDED7 ] xmlprov C:\WINDOWS\System32\xmlprov.dll 13:53:59.0406 2652 xmlprov - ok 13:53:59.0421 2652 ================ Scan global =============================== 13:53:59.0437 2652 [ FF952713E6B51D49B68BBA9233FBAA81 ] C:\WINDOWS\system32\basesrv.dll 13:53:59.0453 2652 [ 143B9018051E3A3CFDE92A861F8080E9 ] C:\WINDOWS\system32\winsrv.dll 13:53:59.0453 2652 [ 143B9018051E3A3CFDE92A861F8080E9 ] C:\WINDOWS\system32\winsrv.dll 13:53:59.0468 2652 [ ED4E5391100287B9EABF8F2CF4B42235 ] C:\WINDOWS\system32\services.exe 13:53:59.0468 2652 [Global] - ok 13:53:59.0468 2652 ================ Scan MBR ================================== 13:53:59.0484 2652 [ 32052574BF9F325AE309ABC7BFD04460 ] \Device\Harddisk0\DR0 13:53:59.0640 2652 \Device\Harddisk0\DR0 - ok 13:53:59.0640 2652 ================ Scan VBR ================================== 13:53:59.0640 2652 [ 5D672391DFF045CD5C1E8ACF836913D2 ] \Device\Harddisk0\DR0\Partition1 13:53:59.0640 2652 \Device\Harddisk0\DR0\Partition1 - ok 13:53:59.0671 2652 [ 790B392C76FA09F12E0249D1C75D8DB3 ] \Device\Harddisk0\DR0\Partition2 13:53:59.0671 2652 \Device\Harddisk0\DR0\Partition2 - ok 13:53:59.0671 2652 ============================================================ 13:53:59.0671 2652 Scan finished 13:53:59.0671 2652 ============================================================ 13:53:59.0765 2648 Detected object count: 8 13:53:59.0765 2648 Actual detected object count: 8 13:54:09.0265 2648 ACS ( UnsignedFile.Multi.Generic ) - skipped by user 13:54:09.0265 2648 ACS ( UnsignedFile.Multi.Generic ) - User select action: Skip 13:54:09.0265 2648 AR9271 ( UnsignedFile.Multi.Generic ) - skipped by user 13:54:09.0265 2648 AR9271 ( UnsignedFile.Multi.Generic ) - User select action: Skip 13:54:09.0281 2648 Creative Service for CDROM Access ( UnsignedFile.Multi.Generic ) - skipped by user 13:54:09.0281 2648 Creative Service for CDROM Access ( UnsignedFile.Multi.Generic ) - User select action: Skip 13:54:09.0281 2648 FsUsbExDisk ( UnsignedFile.Multi.Generic ) - skipped by user 13:54:09.0281 2648 FsUsbExDisk ( UnsignedFile.Multi.Generic ) - User select action: Skip 13:54:09.0281 2648 FsUsbExService ( UnsignedFile.Multi.Generic ) - skipped by user 13:54:09.0281 2648 FsUsbExService ( UnsignedFile.Multi.Generic ) - User select action: Skip 13:54:09.0281 2648 PfModNT ( UnsignedFile.Multi.Generic ) - skipped by user 13:54:09.0281 2648 PfModNT ( UnsignedFile.Multi.Generic ) - User select action: Skip 13:54:09.0281 2648 StarOpen ( UnsignedFile.Multi.Generic ) - skipped by user 13:54:09.0281 2648 StarOpen ( UnsignedFile.Multi.Generic ) - User select action: Skip 13:54:09.0281 2648 WSIMD ( UnsignedFile.Multi.Generic ) - skipped by user 13:54:09.0281 2648 WSIMD ( UnsignedFile.Multi.Generic ) - User select action: Skip