16:21:59.0287 5964 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35 16:21:59.0740 5964 ============================================================ 16:21:59.0740 5964 Current date / time: 2013/01/18 16:21:59.0740 16:21:59.0740 5964 SystemInfo: 16:21:59.0740 5964 16:21:59.0740 5964 OS Version: 6.1.7601 ServicePack: 1.0 16:21:59.0740 5964 Product type: Workstation 16:21:59.0740 5964 ComputerName: LUCYNA-KOMPUTER 16:21:59.0740 5964 UserName: koala 16:21:59.0740 5964 Windows directory: C:\Windows 16:21:59.0740 5964 System windows directory: C:\Windows 16:21:59.0740 5964 Processor architecture: Intel x86 16:21:59.0740 5964 Number of processors: 2 16:21:59.0740 5964 Page size: 0x1000 16:21:59.0740 5964 Boot type: Normal boot 16:21:59.0740 5964 ============================================================ 16:22:01.0346 5964 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050 16:22:01.0346 5964 ============================================================ 16:22:01.0346 5964 \Device\Harddisk0\DR0: 16:22:01.0346 5964 MBR partitions: 16:22:01.0346 5964 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000 16:22:01.0346 5964 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x253FB800 16:22:01.0346 5964 ============================================================ 16:22:01.0378 5964 C: <-> \Device\Harddisk0\DR0\Partition2 16:22:01.0378 5964 ============================================================ 16:22:01.0378 5964 Initialize success 16:22:01.0378 5964 ============================================================ 16:22:03.0889 5860 ============================================================ 16:22:03.0889 5860 Scan started 16:22:03.0889 5860 Mode: Manual; 16:22:03.0889 5860 ============================================================ 16:22:04.0950 5860 ================ Scan system memory ======================== 16:22:04.0950 5860 System memory - ok 16:22:04.0950 5860 ================ Scan services ============================= 16:22:05.0137 5860 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys 16:22:05.0137 5860 1394ohci - ok 16:22:05.0168 5860 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys 16:22:05.0168 5860 ACPI - ok 16:22:05.0184 5860 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys 16:22:05.0184 5860 AcpiPmi - ok 16:22:05.0293 5860 [ B1EA9681502EE57F87DB71D726288A5B ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe 16:22:05.0309 5860 AdobeARMservice - ok 16:22:05.0356 5860 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\drivers\adp94xx.sys 16:22:05.0371 5860 adp94xx - ok 16:22:05.0387 5860 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\drivers\adpahci.sys 16:22:05.0402 5860 adpahci - ok 16:22:05.0418 5860 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\drivers\adpu320.sys 16:22:05.0418 5860 adpu320 - ok 16:22:05.0465 5860 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 16:22:05.0465 5860 AeLookupSvc - ok 16:22:05.0496 5860 [ 1151FD4FB0216CFED887BFDE29EBD516 ] AFD C:\Windows\system32\drivers\afd.sys 16:22:05.0512 5860 AFD - ok 16:22:05.0527 5860 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys 16:22:05.0527 5860 agp440 - ok 16:22:05.0543 5860 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\drivers\djsvs.sys 16:22:05.0543 5860 aic78xx - ok 16:22:05.0574 5860 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe 16:22:05.0574 5860 ALG - ok 16:22:05.0590 5860 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys 16:22:05.0605 5860 aliide - ok 16:22:05.0621 5860 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys 16:22:05.0621 5860 amdagp - ok 16:22:05.0636 5860 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys 16:22:05.0636 5860 amdide - ok 16:22:05.0683 5860 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys 16:22:05.0683 5860 AmdK8 - ok 16:22:05.0699 5860 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\drivers\amdppm.sys 16:22:05.0699 5860 AmdPPM - ok 16:22:05.0730 5860 [ E7F4D42D8076EC60E21715CD11743A0D ] amdsata C:\Windows\system32\drivers\amdsata.sys 16:22:05.0730 5860 amdsata - ok 16:22:05.0761 5860 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\drivers\amdsbs.sys 16:22:05.0777 5860 amdsbs - ok 16:22:05.0777 5860 [ 146459D2B08BFDCBFA856D9947043C81 ] amdxata C:\Windows\system32\drivers\amdxata.sys 16:22:05.0792 5860 amdxata - ok 16:22:05.0824 5860 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys 16:22:05.0824 5860 AppID - ok 16:22:05.0839 5860 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll 16:22:05.0839 5860 AppIDSvc - ok 16:22:05.0870 5860 [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo C:\Windows\System32\appinfo.dll 16:22:05.0886 5860 Appinfo - ok 16:22:05.0917 5860 [ A45D184DF6A8803DA13A0B329517A64A ] AppMgmt C:\Windows\System32\appmgmts.dll 16:22:05.0917 5860 AppMgmt - ok 16:22:05.0948 5860 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\drivers\arc.sys 16:22:05.0948 5860 arc - ok 16:22:05.0980 5860 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\drivers\arcsas.sys 16:22:05.0980 5860 arcsas - ok 16:22:05.0995 5860 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 16:22:05.0995 5860 AsyncMac - ok 16:22:06.0026 5860 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys 16:22:06.0026 5860 atapi - ok 16:22:06.0104 5860 [ FD08D220342C0F5556EE1D1A618817DD ] athr C:\Windows\system32\DRIVERS\athr.sys 16:22:06.0198 5860 athr - ok 16:22:06.0385 5860 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 16:22:06.0401 5860 AudioEndpointBuilder - ok 16:22:06.0416 5860 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll 16:22:06.0416 5860 Audiosrv - ok 16:22:06.0448 5860 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll 16:22:06.0448 5860 AxInstSV - ok 16:22:06.0479 5860 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\drivers\bxvbdx.sys 16:22:06.0494 5860 b06bdrv - ok 16:22:06.0541 5860 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys 16:22:06.0541 5860 b57nd60x - ok 16:22:06.0572 5860 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll 16:22:06.0572 5860 BDESVC - ok 16:22:06.0604 5860 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys 16:22:06.0604 5860 Beep - ok 16:22:06.0650 5860 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll 16:22:06.0650 5860 BFE - ok 16:22:06.0853 5860 [ 9DFFCB249663AA3C2ECB67202280054E ] BHDrvx86 C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\BASHDefs\20130111.001\BHDrvx86.sys 16:22:06.0884 5860 BHDrvx86 - ok 16:22:06.0931 5860 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\System32\qmgr.dll 16:22:06.0947 5860 BITS - ok 16:22:06.0978 5860 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys 16:22:06.0978 5860 blbdrive - ok 16:22:06.0978 5860 [ FCAFAEF6798D7B51FF029F99A9898961 ] bowser C:\Windows\system32\DRIVERS\bowser.sys 16:22:06.0978 5860 bowser - ok 16:22:06.0994 5860 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys 16:22:07.0009 5860 BrFiltLo - ok 16:22:07.0025 5860 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys 16:22:07.0025 5860 BrFiltUp - ok 16:22:07.0056 5860 [ 6E11F33D14D020F58D5E02E4D67DFA19 ] Browser C:\Windows\System32\browser.dll 16:22:07.0056 5860 Browser - ok 16:22:07.0072 5860 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys 16:22:07.0087 5860 Brserid - ok 16:22:07.0103 5860 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 16:22:07.0103 5860 BrSerWdm - ok 16:22:07.0118 5860 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 16:22:07.0118 5860 BrUsbMdm - ok 16:22:07.0134 5860 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 16:22:07.0134 5860 BrUsbSer - ok 16:22:07.0181 5860 [ 2865A5C8E98C70C605F417908CEBB3A4 ] BthEnum C:\Windows\system32\DRIVERS\BthEnum.sys 16:22:07.0181 5860 BthEnum - ok 16:22:07.0196 5860 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys 16:22:07.0196 5860 BTHMODEM - ok 16:22:07.0212 5860 [ AD1872E5829E8A2C3B5B4B641C3EAB0E ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys 16:22:07.0212 5860 BthPan - ok 16:22:07.0228 5860 [ 195C41CC67E9E1CEDD960CCB74925920 ] BTHPORT C:\Windows\system32\Drivers\BTHport.sys 16:22:07.0228 5860 BTHPORT - ok 16:22:07.0290 5860 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll 16:22:07.0290 5860 bthserv - ok 16:22:07.0306 5860 [ 43B3206DD654E783AA7E4EAD340A43B8 ] BTHUSB C:\Windows\system32\Drivers\BTHUSB.sys 16:22:07.0306 5860 BTHUSB - ok 16:22:07.0368 5860 [ 2A0DE6423D6BE95C96124FC66046176E ] BTWAMPFL C:\Windows\system32\DRIVERS\btwampfl.sys 16:22:07.0368 5860 BTWAMPFL - ok 16:22:07.0415 5860 [ CC0A5E69D19B5C1ECC6CF9BF3ACC3969 ] btwaudio C:\Windows\system32\drivers\btwaudio.sys 16:22:07.0415 5860 btwaudio - ok 16:22:07.0446 5860 [ 9ABEA4DC976E3F47DA2D4B169719CBAA ] btwavdt C:\Windows\system32\DRIVERS\btwavdt.sys 16:22:07.0462 5860 btwavdt - ok 16:22:07.0508 5860 [ 173C1243764C93EE97CA61BB4B4D4189 ] btwdins C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe 16:22:07.0524 5860 btwdins - ok 16:22:07.0540 5860 [ A94032A7755164E13C75E0E7409AFD65 ] btwl2cap C:\Windows\system32\DRIVERS\btwl2cap.sys 16:22:07.0555 5860 btwl2cap - ok 16:22:07.0586 5860 [ 1E5468447E4D18FBEA5F01267D6495A5 ] btwrchid C:\Windows\system32\DRIVERS\btwrchid.sys 16:22:07.0586 5860 btwrchid - ok 16:22:07.0696 5860 [ 1277AD8F053CC60C17CAFAB411F3CF40 ] ccSet_N360 C:\Windows\system32\drivers\N360\1402000.013\ccSetx86.sys 16:22:07.0696 5860 ccSet_N360 - ok 16:22:07.0711 5860 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 16:22:07.0727 5860 cdfs - ok 16:22:07.0789 5860 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys 16:22:07.0789 5860 cdrom - ok 16:22:07.0836 5860 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll 16:22:07.0836 5860 CertPropSvc - ok 16:22:07.0852 5860 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\drivers\circlass.sys 16:22:07.0852 5860 circlass - ok 16:22:07.0883 5860 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys 16:22:07.0883 5860 CLFS - ok 16:22:07.0961 5860 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 16:22:07.0961 5860 clr_optimization_v2.0.50727_32 - ok 16:22:07.0976 5860 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys 16:22:07.0976 5860 CmBatt - ok 16:22:07.0992 5860 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys 16:22:07.0992 5860 cmdide - ok 16:22:08.0023 5860 [ 1B675691ED940766149C93E8F4488D68 ] CNG C:\Windows\system32\Drivers\cng.sys 16:22:08.0023 5860 CNG - ok 16:22:08.0086 5860 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys 16:22:08.0086 5860 Compbatt - ok 16:22:08.0101 5860 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys 16:22:08.0101 5860 CompositeBus - ok 16:22:08.0132 5860 COMSysApp - ok 16:22:08.0148 5860 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys 16:22:08.0164 5860 crcdisk - ok 16:22:08.0195 5860 [ A585BEBF7D054BD9618EDA0922D5484A ] CryptSvc C:\Windows\system32\cryptsvc.dll 16:22:08.0195 5860 CryptSvc - ok 16:22:08.0242 5860 [ 3C2177A897B4CA2788C6FB0C3FD81D4B ] CSC C:\Windows\system32\drivers\csc.sys 16:22:08.0242 5860 CSC - ok 16:22:08.0273 5860 [ 15F93B37F6801943360D9EB42485D5D3 ] CscService C:\Windows\System32\cscsvc.dll 16:22:08.0273 5860 CscService - ok 16:22:08.0304 5860 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll 16:22:08.0320 5860 DcomLaunch - ok 16:22:08.0382 5860 [ CC8B5C964B777F4EC3E89F13B4B5FF0F ] DCService.exe C:\ProgramData\DatacardService\DCService.exe 16:22:08.0398 5860 DCService.exe - ok 16:22:08.0429 5860 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll 16:22:08.0444 5860 defragsvc - ok 16:22:08.0476 5860 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys 16:22:08.0476 5860 DfsC - ok 16:22:08.0538 5860 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll 16:22:08.0538 5860 Dhcp - ok 16:22:08.0569 5860 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys 16:22:08.0569 5860 discache - ok 16:22:08.0632 5860 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\drivers\disk.sys 16:22:08.0632 5860 Disk - ok 16:22:08.0678 5860 [ 2A958EF85DB1B61FFCA65044FA4BCE9E ] dmvsc C:\Windows\system32\drivers\dmvsc.sys 16:22:08.0678 5860 dmvsc - ok 16:22:08.0710 5860 [ 2FE30D71919C51131405797620E0A714 ] Dnscache C:\Windows\System32\dnsrslvr.dll 16:22:08.0710 5860 Dnscache - ok 16:22:08.0741 5860 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll 16:22:08.0741 5860 dot3svc - ok 16:22:08.0756 5860 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll 16:22:08.0756 5860 DPS - ok 16:22:08.0803 5860 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 16:22:08.0803 5860 drmkaud - ok 16:22:08.0834 5860 [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 16:22:08.0850 5860 DXGKrnl - ok 16:22:08.0866 5860 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll 16:22:08.0881 5860 EapHost - ok 16:22:08.0975 5860 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\drivers\evbdx.sys 16:22:09.0037 5860 ebdrv - ok 16:22:09.0131 5860 [ 85B8B4032A895A746D46A288A9B30DED ] eeCtrl C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys 16:22:09.0131 5860 eeCtrl - ok 16:22:09.0162 5860 [ F42309C4191C506B71DB5D1126D26318 ] EFS C:\Windows\System32\lsass.exe 16:22:09.0162 5860 EFS - ok 16:22:09.0240 5860 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe 16:22:09.0256 5860 ehRecvr - ok 16:22:09.0271 5860 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe 16:22:09.0271 5860 ehSched - ok 16:22:09.0334 5860 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\drivers\elxstor.sys 16:22:09.0349 5860 elxstor - ok 16:22:09.0396 5860 [ B5A8A04A6E5B4E86B95B1553AA918F5F ] EraserUtilRebootDrv C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys 16:22:09.0412 5860 EraserUtilRebootDrv - ok 16:22:09.0458 5860 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys 16:22:09.0458 5860 ErrDev - ok 16:22:09.0490 5860 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll 16:22:09.0505 5860 EventSystem - ok 16:22:09.0536 5860 [ ABA5756393410EC871D803D8D1B12FCD ] ewusbnet C:\Windows\system32\DRIVERS\ewusbnet.sys 16:22:09.0536 5860 ewusbnet - ok 16:22:09.0568 5860 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys 16:22:09.0568 5860 exfat - ok 16:22:09.0583 5860 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys 16:22:09.0599 5860 fastfat - ok 16:22:09.0630 5860 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe 16:22:09.0646 5860 Fax - ok 16:22:09.0661 5860 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\drivers\fdc.sys 16:22:09.0677 5860 fdc - ok 16:22:09.0692 5860 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll 16:22:09.0692 5860 fdPHost - ok 16:22:09.0708 5860 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll 16:22:09.0708 5860 FDResPub - ok 16:22:09.0724 5860 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 16:22:09.0724 5860 FileInfo - ok 16:22:09.0739 5860 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys 16:22:09.0755 5860 Filetrace - ok 16:22:09.0755 5860 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\drivers\flpydisk.sys 16:22:09.0770 5860 flpydisk - ok 16:22:09.0786 5860 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 16:22:09.0802 5860 FltMgr - ok 16:22:09.0817 5860 [ B3A5EC6B6B6673DB7E87C2BCDBDDC074 ] FontCache C:\Windows\system32\FntCache.dll 16:22:09.0833 5860 FontCache - ok 16:22:09.0895 5860 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe 16:22:09.0895 5860 FontCache3.0.0.0 - ok 16:22:09.0926 5860 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 16:22:09.0926 5860 FsDepends - ok 16:22:09.0942 5860 [ A574B4360E438977038AAE4BF60D79A2 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 16:22:09.0958 5860 Fs_Rec - ok 16:22:09.0989 5860 [ 8A73E79089B282100B9393B644CB853B ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 16:22:09.0989 5860 fvevol - ok 16:22:10.0020 5860 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys 16:22:10.0020 5860 gagp30kx - ok 16:22:10.0067 5860 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll 16:22:10.0082 5860 gpsvc - ok 16:22:10.0098 5860 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 16:22:10.0098 5860 hcw85cir - ok 16:22:10.0160 5860 [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 16:22:10.0160 5860 HdAudAddService - ok 16:22:10.0192 5860 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys 16:22:10.0207 5860 HDAudBus - ok 16:22:10.0223 5860 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys 16:22:10.0223 5860 HidBatt - ok 16:22:10.0238 5860 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\drivers\hidbth.sys 16:22:10.0238 5860 HidBth - ok 16:22:10.0270 5860 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\drivers\hidir.sys 16:22:10.0270 5860 HidIr - ok 16:22:10.0285 5860 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\system32\hidserv.dll 16:22:10.0285 5860 hidserv - ok 16:22:10.0301 5860 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys 16:22:10.0316 5860 HidUsb - ok 16:22:10.0332 5860 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll 16:22:10.0348 5860 hkmsvc - ok 16:22:10.0363 5860 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll 16:22:10.0363 5860 HomeGroupListener - ok 16:22:10.0410 5860 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 16:22:10.0410 5860 HomeGroupProvider - ok 16:22:10.0441 5860 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys 16:22:10.0441 5860 HpSAMD - ok 16:22:10.0472 5860 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys 16:22:10.0472 5860 HTTP - ok 16:22:10.0519 5860 [ BB3C8E4B88842F3A1B9C5D603210C277 ] huawei_enumerator C:\Windows\system32\DRIVERS\ew_jubusenum.sys 16:22:10.0519 5860 huawei_enumerator - ok 16:22:10.0550 5860 [ 0B3957226EC94B1ECB7B9348BB535A23 ] hwdatacard C:\Windows\system32\DRIVERS\ewusbmdm.sys 16:22:10.0550 5860 hwdatacard - ok 16:22:10.0582 5860 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 16:22:10.0582 5860 hwpolicy - ok 16:22:10.0613 5860 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys 16:22:10.0613 5860 i8042prt - ok 16:22:10.0644 5860 [ A3CAE5D281DB4CFF7CFF8233507EE5AD ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 16:22:10.0644 5860 iaStorV - ok 16:22:10.0706 5860 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe 16:22:10.0722 5860 idsvc - ok 16:22:10.0831 5860 [ 404FB2AAF532BC7BBACC8880BE401C74 ] IDSVix86 C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\IPSDefs\20130117.001\IDSvix86.sys 16:22:10.0831 5860 IDSVix86 - ok 16:22:11.0112 5860 [ 60CC34AD19AF2716FF18EC756D55B9AB ] igfx C:\Windows\system32\DRIVERS\igdkmd32.sys 16:22:11.0346 5860 igfx - ok 16:22:11.0377 5860 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\drivers\iirsp.sys 16:22:11.0377 5860 iirsp - ok 16:22:11.0533 5860 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll 16:22:11.0564 5860 IKEEXT - ok 16:22:11.0627 5860 [ 5576AD2F0039D2BCCCA3567FC0BF981C ] IntcDAud C:\Windows\system32\DRIVERS\IntcDAud.sys 16:22:11.0627 5860 IntcDAud - ok 16:22:11.0658 5860 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys 16:22:11.0658 5860 intelide - ok 16:22:11.0689 5860 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys 16:22:11.0689 5860 intelppm - ok 16:22:11.0720 5860 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll 16:22:11.0720 5860 IPBusEnum - ok 16:22:11.0736 5860 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 16:22:11.0736 5860 IpFilterDriver - ok 16:22:11.0767 5860 [ 4D65A07B795D6674312F879D09AA7663 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 16:22:11.0783 5860 iphlpsvc - ok 16:22:11.0830 5860 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys 16:22:11.0830 5860 IPMIDRV - ok 16:22:11.0861 5860 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys 16:22:11.0861 5860 IPNAT - ok 16:22:11.0892 5860 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys 16:22:11.0892 5860 IRENUM - ok 16:22:11.0923 5860 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys 16:22:11.0923 5860 isapnp - ok 16:22:11.0954 5860 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys 16:22:11.0954 5860 iScsiPrt - ok 16:22:11.0986 5860 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys 16:22:11.0986 5860 kbdclass - ok 16:22:12.0017 5860 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys 16:22:12.0017 5860 kbdhid - ok 16:22:12.0032 5860 [ F42309C4191C506B71DB5D1126D26318 ] KeyIso C:\Windows\system32\lsass.exe 16:22:12.0032 5860 KeyIso - ok 16:22:12.0048 5860 [ 412CEA1AA78CC02A447F5C9E62B32FF1 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 16:22:12.0064 5860 KSecDD - ok 16:22:12.0079 5860 [ 26C046977E85B95036453D7B88BA1820 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 16:22:12.0079 5860 KSecPkg - ok 16:22:12.0110 5860 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll 16:22:12.0110 5860 KtmRm - ok 16:22:12.0173 5860 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\system32\srvsvc.dll 16:22:12.0173 5860 LanmanServer - ok 16:22:12.0204 5860 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 16:22:12.0204 5860 LanmanWorkstation - ok 16:22:12.0235 5860 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 16:22:12.0235 5860 lltdio - ok 16:22:12.0266 5860 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll 16:22:12.0266 5860 lltdsvc - ok 16:22:12.0298 5860 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll 16:22:12.0298 5860 lmhosts - ok 16:22:12.0344 5860 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys 16:22:12.0344 5860 LSI_FC - ok 16:22:12.0376 5860 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys 16:22:12.0376 5860 LSI_SAS - ok 16:22:12.0407 5860 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys 16:22:12.0407 5860 LSI_SAS2 - ok 16:22:12.0422 5860 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys 16:22:12.0422 5860 LSI_SCSI - ok 16:22:12.0454 5860 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys 16:22:12.0454 5860 luafv - ok 16:22:12.0485 5860 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 16:22:12.0485 5860 Mcx2Svc - ok 16:22:12.0516 5860 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\drivers\megasas.sys 16:22:12.0516 5860 megasas - ok 16:22:12.0532 5860 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys 16:22:12.0532 5860 MegaSR - ok 16:22:12.0625 5860 [ FAFE367D032ED82E9332B4C741A20216 ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe 16:22:12.0625 5860 Microsoft Office Groove Audit Service - ok 16:22:12.0656 5860 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll 16:22:12.0656 5860 MMCSS - ok 16:22:12.0672 5860 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys 16:22:12.0688 5860 Modem - ok 16:22:12.0734 5860 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys 16:22:12.0734 5860 monitor - ok 16:22:12.0766 5860 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys 16:22:12.0766 5860 mouclass - ok 16:22:12.0797 5860 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 16:22:12.0797 5860 mouhid - ok 16:22:12.0812 5860 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 16:22:12.0812 5860 mountmgr - ok 16:22:12.0906 5860 [ 8C7336950F1E69CDFD811CBBD9CF00A2 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe 16:22:12.0906 5860 MozillaMaintenance - ok 16:22:12.0922 5860 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys 16:22:12.0937 5860 mpio - ok 16:22:12.0953 5860 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 16:22:12.0953 5860 mpsdrv - ok 16:22:13.0000 5860 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll 16:22:13.0000 5860 MpsSvc - ok 16:22:13.0031 5860 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 16:22:13.0031 5860 MRxDAV - ok 16:22:13.0046 5860 [ B272B4C3E085EA860C12F2E4FAF2FFA2 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 16:22:13.0046 5860 mrxsmb - ok 16:22:13.0078 5860 [ 9AC33EF26C8A3AD0F117D00EB7301D03 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 16:22:13.0078 5860 mrxsmb10 - ok 16:22:13.0124 5860 [ E0ABDB5ED7E199E242A7D028E76C1D3A ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 16:22:13.0124 5860 mrxsmb20 - ok 16:22:13.0156 5860 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys 16:22:13.0156 5860 msahci - ok 16:22:13.0171 5860 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys 16:22:13.0171 5860 msdsm - ok 16:22:13.0202 5860 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe 16:22:13.0202 5860 MSDTC - ok 16:22:13.0218 5860 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys 16:22:13.0218 5860 Msfs - ok 16:22:13.0234 5860 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 16:22:13.0234 5860 mshidkmdf - ok 16:22:13.0249 5860 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 16:22:13.0249 5860 msisadrv - ok 16:22:13.0296 5860 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 16:22:13.0296 5860 MSiSCSI - ok 16:22:13.0312 5860 msiserver - ok 16:22:13.0327 5860 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 16:22:13.0327 5860 MSKSSRV - ok 16:22:13.0358 5860 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 16:22:13.0374 5860 MSPCLOCK - ok 16:22:13.0390 5860 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 16:22:13.0390 5860 MSPQM - ok 16:22:13.0405 5860 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 16:22:13.0405 5860 MsRPC - ok 16:22:13.0421 5860 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys 16:22:13.0436 5860 mssmbios - ok 16:22:13.0436 5860 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 16:22:13.0436 5860 MSTEE - ok 16:22:13.0452 5860 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\drivers\MTConfig.sys 16:22:13.0468 5860 MTConfig - ok 16:22:13.0468 5860 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys 16:22:13.0483 5860 Mup - ok 16:22:13.0561 5860 [ 4A9258B9597A31DB68EC9740F3A8A70B ] N360 C:\Program Files\Norton 360\Engine\20.2.0.19\ccSvcHst.exe 16:22:13.0561 5860 N360 - ok 16:22:13.0592 5860 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll 16:22:13.0608 5860 napagent - ok 16:22:13.0670 5860 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 16:22:13.0670 5860 NativeWifiP - ok 16:22:13.0748 5860 [ 7D7A3BC6640C1A0D1442816B30856928 ] NAVENG C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\VirusDefs\20130117.025\NAVENG.SYS 16:22:13.0748 5860 NAVENG - ok 16:22:13.0842 5860 [ 28494C43D62AA7584BDCA2FADFBC4D11 ] NAVEX15 C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_20.1.0.24\Definitions\VirusDefs\20130117.025\NAVEX15.SYS 16:22:13.0873 5860 NAVEX15 - ok 16:22:13.0936 5860 [ E7C54812A2AAF43316EB6930C1FFA108 ] NDIS C:\Windows\system32\drivers\ndis.sys 16:22:13.0967 5860 NDIS - ok 16:22:13.0998 5860 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 16:22:13.0998 5860 NdisCap - ok 16:22:14.0029 5860 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 16:22:14.0029 5860 NdisTapi - ok 16:22:14.0045 5860 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 16:22:14.0060 5860 Ndisuio - ok 16:22:14.0076 5860 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 16:22:14.0076 5860 NdisWan - ok 16:22:14.0107 5860 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 16:22:14.0107 5860 NDProxy - ok 16:22:14.0123 5860 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 16:22:14.0123 5860 NetBIOS - ok 16:22:14.0138 5860 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 16:22:14.0154 5860 NetBT - ok 16:22:14.0154 5860 [ F42309C4191C506B71DB5D1126D26318 ] Netlogon C:\Windows\system32\lsass.exe 16:22:14.0170 5860 Netlogon - ok 16:22:14.0216 5860 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll 16:22:14.0216 5860 Netman - ok 16:22:14.0232 5860 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll 16:22:14.0248 5860 netprofm - ok 16:22:14.0279 5860 [ F476EC40033CDB91EFBE73EB99B8362D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe 16:22:14.0294 5860 NetTcpPortSharing - ok 16:22:14.0326 5860 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys 16:22:14.0326 5860 nfrd960 - ok 16:22:14.0341 5860 [ 912084381D30D8B89EC4E293053F4710 ] NlaSvc C:\Windows\System32\nlasvc.dll 16:22:14.0357 5860 NlaSvc - ok 16:22:14.0372 5860 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys 16:22:14.0372 5860 Npfs - ok 16:22:14.0388 5860 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll 16:22:14.0388 5860 nsi - ok 16:22:14.0404 5860 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 16:22:14.0404 5860 nsiproxy - ok 16:22:14.0528 5860 [ 33C3093D09017CFE2E219F2472BFF6EB ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 16:22:14.0560 5860 Ntfs - ok 16:22:14.0606 5860 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys 16:22:14.0606 5860 Null - ok 16:22:14.0622 5860 [ AF2EEC9580C1D32FB7EAF105D9784061 ] nvraid C:\Windows\system32\drivers\nvraid.sys 16:22:14.0622 5860 nvraid - ok 16:22:14.0638 5860 [ 9283C58EBAA2618F93482EB5DABCEC82 ] nvstor C:\Windows\system32\drivers\nvstor.sys 16:22:14.0638 5860 nvstor - ok 16:22:14.0653 5860 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 16:22:14.0653 5860 nv_agp - ok 16:22:14.0747 5860 [ 84DE1DD996B48B05ACE31AD015FA108A ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE 16:22:14.0747 5860 odserv - ok 16:22:14.0778 5860 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys 16:22:14.0778 5860 ohci1394 - ok 16:22:14.0825 5860 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE 16:22:14.0825 5860 ose - ok 16:22:14.0872 5860 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 16:22:14.0872 5860 p2pimsvc - ok 16:22:14.0903 5860 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll 16:22:14.0903 5860 p2psvc - ok 16:22:14.0918 5860 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\drivers\parport.sys 16:22:14.0918 5860 Parport - ok 16:22:14.0934 5860 [ BF8F6AF06DA75B336F07E23AEF97D93B ] partmgr C:\Windows\system32\drivers\partmgr.sys 16:22:14.0934 5860 partmgr - ok 16:22:14.0950 5860 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\drivers\parvdm.sys 16:22:14.0950 5860 Parvdm - ok 16:22:14.0981 5860 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll 16:22:14.0981 5860 PcaSvc - ok 16:22:14.0996 5860 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys 16:22:14.0996 5860 pci - ok 16:22:15.0012 5860 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys 16:22:15.0012 5860 pciide - ok 16:22:15.0028 5860 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys 16:22:15.0028 5860 pcmcia - ok 16:22:15.0043 5860 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys 16:22:15.0059 5860 pcw - ok 16:22:15.0074 5860 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys 16:22:15.0090 5860 PEAUTH - ok 16:22:15.0121 5860 [ AF4D64D2A57B9772CF3801950B8058A6 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll 16:22:15.0152 5860 PeerDistSvc - ok 16:22:15.0215 5860 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll 16:22:15.0262 5860 pla - ok 16:22:15.0308 5860 [ 92DC6E68D2C856C5C2F21AE9E22112B8 ] PlugPlay C:\Windows\system32\umpnpmgr.dll 16:22:15.0308 5860 PlugPlay - ok 16:22:15.0324 5860 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 16:22:15.0324 5860 PNRPAutoReg - ok 16:22:15.0355 5860 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 16:22:15.0355 5860 PNRPsvc - ok 16:22:15.0386 5860 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 16:22:15.0386 5860 PolicyAgent - ok 16:22:15.0418 5860 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll 16:22:15.0418 5860 Power - ok 16:22:15.0449 5860 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 16:22:15.0449 5860 PptpMiniport - ok 16:22:15.0480 5860 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\drivers\processr.sys 16:22:15.0480 5860 Processor - ok 16:22:15.0527 5860 [ 43CA4CCC22D52FB58E8988F0198851D0 ] ProfSvc C:\Windows\system32\profsvc.dll 16:22:15.0527 5860 ProfSvc - ok 16:22:15.0542 5860 [ F42309C4191C506B71DB5D1126D26318 ] ProtectedStorage C:\Windows\system32\lsass.exe 16:22:15.0542 5860 ProtectedStorage - ok 16:22:15.0558 5860 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys 16:22:15.0558 5860 Psched - ok 16:22:15.0589 5860 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\drivers\ql2300.sys 16:22:15.0636 5860 ql2300 - ok 16:22:15.0636 5860 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys 16:22:15.0636 5860 ql40xx - ok 16:22:15.0652 5860 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll 16:22:15.0667 5860 QWAVE - ok 16:22:15.0683 5860 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 16:22:15.0683 5860 QWAVEdrv - ok 16:22:15.0698 5860 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 16:22:15.0698 5860 RasAcd - ok 16:22:15.0714 5860 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 16:22:15.0714 5860 RasAgileVpn - ok 16:22:15.0730 5860 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll 16:22:15.0745 5860 RasAuto - ok 16:22:15.0761 5860 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 16:22:15.0761 5860 Rasl2tp - ok 16:22:15.0776 5860 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll 16:22:15.0792 5860 RasMan - ok 16:22:15.0808 5860 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 16:22:15.0808 5860 RasPppoe - ok 16:22:15.0823 5860 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 16:22:15.0823 5860 RasSstp - ok 16:22:15.0854 5860 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 16:22:15.0854 5860 rdbss - ok 16:22:15.0870 5860 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys 16:22:15.0870 5860 rdpbus - ok 16:22:15.0886 5860 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 16:22:15.0886 5860 RDPCDD - ok 16:22:15.0917 5860 [ B973FCFC50DC1434E1970A146F7E3885 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys 16:22:15.0917 5860 RDPDR - ok 16:22:15.0932 5860 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 16:22:15.0932 5860 RDPENCDD - ok 16:22:15.0964 5860 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 16:22:15.0964 5860 RDPREFMP - ok 16:22:15.0979 5860 [ 288B06960D78428FF89E811632684E20 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 16:22:15.0979 5860 RDPWD - ok 16:22:16.0010 5860 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 16:22:16.0010 5860 rdyboost - ok 16:22:16.0042 5860 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll 16:22:16.0057 5860 RemoteAccess - ok 16:22:16.0073 5860 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll 16:22:16.0073 5860 RemoteRegistry - ok 16:22:16.0088 5860 [ CB928D9E6DAF51879DD6BA8D02F01321 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys 16:22:16.0104 5860 RFCOMM - ok 16:22:16.0120 5860 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 16:22:16.0120 5860 RpcEptMapper - ok 16:22:16.0151 5860 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe 16:22:16.0151 5860 RpcLocator - ok 16:22:16.0182 5860 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\system32\rpcss.dll 16:22:16.0182 5860 RpcSs - ok 16:22:16.0244 5860 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 16:22:16.0244 5860 rspndr - ok 16:22:16.0338 5860 [ 45449ACF2B9DD9278A40FCFB2DAA7969 ] RSUSBVSTOR C:\Windows\system32\Drivers\RtsUVStor.sys 16:22:16.0354 5860 RSUSBVSTOR - ok 16:22:16.0385 5860 [ 59509AD6CBC28F2C73056268985B3E48 ] s0016bus C:\Windows\system32\DRIVERS\s0016bus.sys 16:22:16.0385 5860 s0016bus - ok 16:22:16.0416 5860 [ B98C3A6F91F4FBA285AF9606A240C6B4 ] s0016mdfl C:\Windows\system32\DRIVERS\s0016mdfl.sys 16:22:16.0416 5860 s0016mdfl - ok 16:22:16.0432 5860 [ 8A83426F4FB7B5212825D9DE76368B1A ] s0016mdm C:\Windows\system32\DRIVERS\s0016mdm.sys 16:22:16.0432 5860 s0016mdm - ok 16:22:16.0447 5860 [ 7A78BBA97FEB5E6D24C49E93A3BF7287 ] s0016mgmt C:\Windows\system32\DRIVERS\s0016mgmt.sys 16:22:16.0447 5860 s0016mgmt - ok 16:22:16.0463 5860 [ 34EF7B5F611957B73E7219DD5A222AD1 ] s0016nd5 C:\Windows\system32\DRIVERS\s0016nd5.sys 16:22:16.0478 5860 s0016nd5 - ok 16:22:16.0494 5860 [ 36792935847143E4A3CDA0DC87248487 ] s0016obex C:\Windows\system32\DRIVERS\s0016obex.sys 16:22:16.0494 5860 s0016obex - ok 16:22:16.0525 5860 [ 927208754FB27FC3E7A659E77500C5D1 ] s0016unic C:\Windows\system32\DRIVERS\s0016unic.sys 16:22:16.0525 5860 s0016unic - ok 16:22:16.0556 5860 [ 7FA7F2E249A5DCBB7970630E15E1F482 ] s3cap C:\Windows\system32\drivers\vms3cap.sys 16:22:16.0556 5860 s3cap - ok 16:22:16.0572 5860 [ F42309C4191C506B71DB5D1126D26318 ] SamSs C:\Windows\system32\lsass.exe 16:22:16.0572 5860 SamSs - ok 16:22:16.0619 5860 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 16:22:16.0619 5860 sbp2port - ok 16:22:16.0650 5860 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll 16:22:16.0650 5860 SCardSvr - ok 16:22:16.0666 5860 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 16:22:16.0681 5860 scfilter - ok 16:22:16.0712 5860 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll 16:22:16.0712 5860 Schedule - ok 16:22:16.0744 5860 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll 16:22:16.0744 5860 SCPolicySvc - ok 16:22:16.0759 5860 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll 16:22:16.0759 5860 SDRSVC - ok 16:22:16.0790 5860 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys 16:22:16.0790 5860 secdrv - ok 16:22:16.0790 5860 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll 16:22:16.0806 5860 seclogon - ok 16:22:16.0822 5860 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\System32\sens.dll 16:22:16.0822 5860 SENS - ok 16:22:16.0853 5860 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll 16:22:16.0853 5860 SensrSvc - ok 16:22:16.0868 5860 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\drivers\serenum.sys 16:22:16.0868 5860 Serenum - ok 16:22:16.0884 5860 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\drivers\serial.sys 16:22:16.0884 5860 Serial - ok 16:22:16.0900 5860 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\drivers\sermouse.sys 16:22:16.0900 5860 sermouse - ok 16:22:16.0931 5860 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll 16:22:16.0931 5860 SessionEnv - ok 16:22:16.0946 5860 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 16:22:16.0946 5860 sffdisk - ok 16:22:16.0962 5860 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 16:22:16.0962 5860 sffp_mmc - ok 16:22:16.0978 5860 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 16:22:16.0978 5860 sffp_sd - ok 16:22:16.0993 5860 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys 16:22:16.0993 5860 sfloppy - ok 16:22:17.0040 5860 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll 16:22:17.0056 5860 SharedAccess - ok 16:22:17.0071 5860 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll 16:22:17.0071 5860 ShellHWDetection - ok 16:22:17.0102 5860 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys 16:22:17.0102 5860 sisagp - ok 16:22:17.0134 5860 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys 16:22:17.0134 5860 SiSRaid2 - ok 16:22:17.0149 5860 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys 16:22:17.0149 5860 SiSRaid4 - ok 16:22:17.0321 5860 [ 388AE59FE75F1B959DFA0900923C61BB ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe 16:22:17.0399 5860 Skype C2C Service - ok 16:22:17.0492 5860 [ A4FAB5F7818A69DA6E740943CB8F7CA9 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe 16:22:17.0492 5860 SkypeUpdate - ok 16:22:17.0524 5860 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys 16:22:17.0539 5860 Smb - ok 16:22:17.0570 5860 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe 16:22:17.0570 5860 SNMPTRAP - ok 16:22:17.0664 5860 [ 5177D14A78E60FD61DCFC6B388E7E971 ] Sony PC Companion C:\Program Files\Sony\Sony PC Companion\PCCService.exe 16:22:17.0664 5860 Sony PC Companion - ok 16:22:17.0695 5860 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys 16:22:17.0695 5860 spldr - ok 16:22:17.0711 5860 [ 866A43013535DC8587C258E43579C764 ] Spooler C:\Windows\System32\spoolsv.exe 16:22:17.0726 5860 Spooler - ok 16:22:17.0804 5860 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe 16:22:17.0851 5860 sppsvc - ok 16:22:17.0898 5860 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll 16:22:17.0914 5860 sppuinotify - ok 16:22:17.0960 5860 [ 26C1B59C80FEF94B025DF5C3C1B791A7 ] SRTSP C:\Windows\System32\Drivers\N360\1402000.013\SRTSP.SYS 16:22:17.0960 5860 SRTSP - ok 16:22:17.0992 5860 [ 21AC3AE81E8263061624C4ED3B11509A ] SRTSPX C:\Windows\system32\drivers\N360\1402000.013\SRTSPX.SYS 16:22:17.0992 5860 SRTSPX - ok 16:22:18.0007 5860 [ 112127C3B2E64D7680CC39CD0A39DD7E ] srv C:\Windows\system32\DRIVERS\srv.sys 16:22:18.0007 5860 srv - ok 16:22:18.0054 5860 [ E5DD784A4EE5EBC72A86C677C988FCDB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 16:22:18.0054 5860 srv2 - ok 16:22:18.0070 5860 [ CDBE627E16CC9E98F343D73F8E81D258 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 16:22:18.0070 5860 srvnet - ok 16:22:18.0085 5860 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 16:22:18.0085 5860 SSDPSRV - ok 16:22:18.0101 5860 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll 16:22:18.0101 5860 SstpSvc - ok 16:22:18.0116 5860 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\drivers\stexstor.sys 16:22:18.0132 5860 stexstor - ok 16:22:18.0179 5860 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\Windows\System32\wiaservc.dll 16:22:18.0179 5860 StiSvc - ok 16:22:18.0210 5860 [ 472AF0311073DCECEAA8FA18BA2BDF89 ] storflt C:\Windows\system32\drivers\vmstorfl.sys 16:22:18.0226 5860 storflt - ok 16:22:18.0257 5860 [ 0BF669F0A910BEDA4A32258D363AF2A5 ] StorSvc C:\Windows\system32\storsvc.dll 16:22:18.0257 5860 StorSvc - ok 16:22:18.0272 5860 [ DCAFFD62259E0BDB433DD67B5BB37619 ] storvsc C:\Windows\system32\drivers\storvsc.sys 16:22:18.0272 5860 storvsc - ok 16:22:18.0288 5860 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\DRIVERS\swenum.sys 16:22:18.0288 5860 swenum - ok 16:22:18.0335 5860 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll 16:22:18.0335 5860 swprv - ok 16:22:18.0397 5860 [ FB69A67FEEE3026C7F99774A1C405326 ] SymDS C:\Windows\system32\drivers\N360\1402000.013\SYMDS.SYS 16:22:18.0397 5860 SymDS - ok 16:22:18.0444 5860 [ 28C5FAFA7FD1C522B8DCD59694D39412 ] SymEFA C:\Windows\system32\drivers\N360\1402000.013\SYMEFA.SYS 16:22:18.0460 5860 SymEFA - ok 16:22:18.0506 5860 [ C940F10C31E2C60CC967FFD6A370720C ] SymEvent C:\Windows\system32\Drivers\SYMEVENT.SYS 16:22:18.0506 5860 SymEvent - ok 16:22:18.0538 5860 [ 8C9B9036E301A9965CF15BEC91C58A12 ] SymIRON C:\Windows\system32\drivers\N360\1402000.013\Ironx86.SYS 16:22:18.0553 5860 SymIRON - ok 16:22:18.0584 5860 [ 21698476A90ACAA056B8CFE09A82785F ] SymNetS C:\Windows\System32\Drivers\N360\1402000.013\SYMNETS.SYS 16:22:18.0600 5860 SymNetS - ok 16:22:18.0709 5860 [ 47BE94508669046A2459520F2FE4E0E0 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys 16:22:18.0756 5860 SynTP - ok 16:22:18.0818 5860 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\Windows\system32\sysmain.dll 16:22:18.0834 5860 SysMain - ok 16:22:18.0865 5860 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll 16:22:18.0865 5860 TabletInputService - ok 16:22:18.0881 5860 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\Windows\System32\tapisrv.dll 16:22:18.0896 5860 TapiSrv - ok 16:22:18.0912 5860 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll 16:22:18.0912 5860 TBS - ok 16:22:18.0974 5860 [ 37E8FA3779668837CA9E2C36D2415949 ] Tcpip C:\Windows\system32\drivers\tcpip.sys 16:22:19.0006 5860 Tcpip - ok 16:22:19.0037 5860 [ 37E8FA3779668837CA9E2C36D2415949 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 16:22:19.0052 5860 TCPIP6 - ok 16:22:19.0068 5860 [ CCA24162E055C3714CE5A88B100C64ED ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 16:22:19.0068 5860 tcpipreg - ok 16:22:19.0099 5860 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 16:22:19.0099 5860 TDPIPE - ok 16:22:19.0115 5860 [ 2C10395BAA4847F83042813C515CC289 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 16:22:19.0115 5860 TDTCP - ok 16:22:19.0130 5860 [ B459575348C20E8121D6039DA063C704 ] tdx C:\Windows\system32\DRIVERS\tdx.sys 16:22:19.0146 5860 tdx - ok 16:22:19.0146 5860 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys 16:22:19.0146 5860 TermDD - ok 16:22:19.0193 5860 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\Windows\System32\termsrv.dll 16:22:19.0193 5860 TermService - ok 16:22:19.0208 5860 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll 16:22:19.0224 5860 Themes - ok 16:22:19.0224 5860 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll 16:22:19.0224 5860 THREADORDER - ok 16:22:19.0255 5860 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll 16:22:19.0255 5860 TrkWks - ok 16:22:19.0302 5860 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 16:22:19.0318 5860 TrustedInstaller - ok 16:22:19.0333 5860 [ 254BB140EEE3C59D6114C1A86B636877 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 16:22:19.0333 5860 tssecsrv - ok 16:22:19.0364 5860 [ FD1D6C73E6333BE727CBCC6054247654 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys 16:22:19.0364 5860 TsUsbFlt - ok 16:22:19.0380 5860 [ 01246F0BAAD7B68EC0F472AA41E33282 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys 16:22:19.0380 5860 TsUsbGD - ok 16:22:19.0411 5860 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 16:22:19.0411 5860 tunnel - ok 16:22:19.0427 5860 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\drivers\uagp35.sys 16:22:19.0427 5860 uagp35 - ok 16:22:19.0458 5860 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\Windows\system32\DRIVERS\udfs.sys 16:22:19.0458 5860 udfs - ok 16:22:19.0489 5860 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe 16:22:19.0489 5860 UI0Detect - ok 16:22:19.0505 5860 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 16:22:19.0505 5860 uliagpkx - ok 16:22:19.0520 5860 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\Windows\system32\DRIVERS\umbus.sys 16:22:19.0520 5860 umbus - ok 16:22:19.0552 5860 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\drivers\umpass.sys 16:22:19.0552 5860 UmPass - ok 16:22:19.0583 5860 [ 409994A8EACEEE4E328749C0353527A0 ] UmRdpService C:\Windows\System32\umrdp.dll 16:22:19.0598 5860 UmRdpService - ok 16:22:19.0630 5860 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll 16:22:19.0630 5860 upnphost - ok 16:22:19.0645 5860 [ 7E72E7D7E0757D59481D530FD2B0BFAE ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys 16:22:19.0645 5860 usbccgp - ok 16:22:19.0676 5860 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\drivers\usbcir.sys 16:22:19.0676 5860 usbcir - ok 16:22:19.0708 5860 [ CFBCE999C057D78979A181C9C60F208E ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys 16:22:19.0708 5860 usbehci - ok 16:22:19.0739 5860 [ 9D22AAD9AC6A07C691A1113E5F860868 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 16:22:19.0739 5860 usbhub - ok 16:22:19.0754 5860 [ A6FB7957EA7AFB1165991E54CE934B74 ] usbohci C:\Windows\system32\drivers\usbohci.sys 16:22:19.0754 5860 usbohci - ok 16:22:19.0786 5860 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\drivers\usbprint.sys 16:22:19.0786 5860 usbprint - ok 16:22:19.0801 5860 [ BF63EBFC6979FEFB2BC03DF7989A0C1A ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 16:22:19.0801 5860 USBSTOR - ok 16:22:19.0817 5860 [ 78780C3EBCE17405B1CCD07A3A8A7D72 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys 16:22:19.0817 5860 usbuhci - ok 16:22:19.0848 5860 [ 45F4E7BF43DB40A6C6B4D92C76CBC3F2 ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys 16:22:19.0848 5860 usbvideo - ok 16:22:19.0879 5860 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll 16:22:19.0879 5860 UxSms - ok 16:22:19.0895 5860 [ F42309C4191C506B71DB5D1126D26318 ] VaultSvc C:\Windows\system32\lsass.exe 16:22:19.0895 5860 VaultSvc - ok 16:22:19.0910 5860 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys 16:22:19.0910 5860 vdrvroot - ok 16:22:19.0942 5860 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\Windows\System32\vds.exe 16:22:19.0942 5860 vds - ok 16:22:20.0004 5860 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 16:22:20.0004 5860 vga - ok 16:22:20.0020 5860 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys 16:22:20.0020 5860 VgaSave - ok 16:22:20.0051 5860 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys 16:22:20.0051 5860 vhdmp - ok 16:22:20.0082 5860 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\drivers\viaagp.sys 16:22:20.0082 5860 viaagp - ok 16:22:20.0098 5860 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\drivers\viac7.sys 16:22:20.0098 5860 ViaC7 - ok 16:22:20.0113 5860 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\drivers\viaide.sys 16:22:20.0113 5860 viaide - ok 16:22:20.0144 5860 [ C682BC1A21E26925229649966949F2AD ] vm2uvcflt C:\Windows\system32\Drivers\vm2uvcflt.sys 16:22:20.0144 5860 vm2uvcflt - ok 16:22:20.0176 5860 [ E4F74B4DB19D53A5BDEF5306F49CD7B8 ] vm332avs C:\Windows\system32\Drivers\vm332avs.sys 16:22:20.0191 5860 vm332avs - ok 16:22:20.0222 5860 [ C2F2911156FDC7817C52829C86DA494E ] vmbus C:\Windows\system32\drivers\vmbus.sys 16:22:20.0222 5860 vmbus - ok 16:22:20.0238 5860 [ D4D77455211E204F370D08F4963063CE ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys 16:22:20.0238 5860 VMBusHID - ok 16:22:20.0269 5860 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\Windows\system32\drivers\volmgr.sys 16:22:20.0269 5860 volmgr - ok 16:22:20.0285 5860 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 16:22:20.0285 5860 volmgrx - ok 16:22:20.0316 5860 [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap C:\Windows\system32\drivers\volsnap.sys 16:22:20.0332 5860 volsnap - ok 16:22:20.0347 5860 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys 16:22:20.0363 5860 vsmraid - ok 16:22:20.0410 5860 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\Windows\system32\vssvc.exe 16:22:20.0441 5860 VSS - ok 16:22:20.0456 5860 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys 16:22:20.0456 5860 vwifibus - ok 16:22:20.0488 5860 [ 7090D3436EEB4E7DA3373090A23448F7 ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys 16:22:20.0488 5860 vwififlt - ok 16:22:20.0534 5860 [ A3F04CBEA6C2A10E6CB01F8B47611882 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys 16:22:20.0534 5860 vwifimp - ok 16:22:20.0550 5860 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll 16:22:20.0566 5860 W32Time - ok 16:22:20.0581 5860 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\drivers\wacompen.sys 16:22:20.0581 5860 WacomPen - ok 16:22:20.0628 5860 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 16:22:20.0628 5860 WANARP - ok 16:22:20.0628 5860 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 16:22:20.0628 5860 Wanarpv6 - ok 16:22:20.0675 5860 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\Windows\system32\wbengine.exe 16:22:20.0706 5860 wbengine - ok 16:22:20.0753 5860 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 16:22:20.0753 5860 WbioSrvc - ok 16:22:20.0784 5860 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\Windows\System32\wcncsvc.dll 16:22:20.0784 5860 wcncsvc - ok 16:22:20.0800 5860 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 16:22:20.0815 5860 WcsPlugInService - ok 16:22:20.0831 5860 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\drivers\wd.sys 16:22:20.0831 5860 Wd - ok 16:22:20.0862 5860 [ 73C5809C82828E34232F9811CB51490E ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 16:22:20.0862 5860 Wdf01000 ( Virus.Win32.Rloader.a ) - infected 16:22:20.0862 5860 Wdf01000 - detected Virus.Win32.Rloader.a (0) 16:22:20.0878 5860 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll 16:22:20.0878 5860 WdiServiceHost - ok 16:22:20.0878 5860 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll 16:22:20.0878 5860 WdiSystemHost - ok 16:22:20.0909 5860 [ A9D880F97530D5B8FEE278923349929D ] WebClient C:\Windows\System32\webclnt.dll 16:22:20.0909 5860 WebClient - ok 16:22:20.0924 5860 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll 16:22:20.0924 5860 Wecsvc - ok 16:22:20.0940 5860 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll 16:22:20.0956 5860 wercplsupport - ok 16:22:20.0987 5860 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll 16:22:20.0987 5860 WerSvc - ok 16:22:21.0018 5860 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 16:22:21.0018 5860 WfpLwf - ok 16:22:21.0034 5860 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys 16:22:21.0034 5860 WIMMount - ok 16:22:21.0096 5860 [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll 16:22:21.0143 5860 WinDefend - ok 16:22:21.0143 5860 WinHttpAutoProxySvc - ok 16:22:21.0205 5860 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 16:22:21.0221 5860 Winmgmt - ok 16:22:21.0283 5860 [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM C:\Windows\system32\WsmSvc.dll 16:22:21.0330 5860 WinRM - ok 16:22:21.0392 5860 [ A67E5F9A400F3BD1BE3D80613B45F708 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys 16:22:21.0392 5860 WinUsb - ok 16:22:21.0439 5860 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll 16:22:21.0455 5860 Wlansvc - ok 16:22:21.0502 5860 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys 16:22:21.0502 5860 WmiAcpi - ok 16:22:21.0517 5860 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 16:22:21.0533 5860 wmiApSrv - ok 16:22:21.0611 5860 [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe 16:22:21.0673 5860 WMPNetworkSvc - ok 16:22:21.0704 5860 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll 16:22:21.0704 5860 WPCSvc - ok 16:22:21.0720 5860 [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 16:22:21.0720 5860 WPDBusEnum - ok 16:22:21.0736 5860 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 16:22:21.0736 5860 ws2ifsl - ok 16:22:21.0767 5860 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\Windows\System32\wscsvc.dll 16:22:21.0767 5860 wscsvc - ok 16:22:21.0767 5860 WSearch - ok 16:22:21.0845 5860 [ 3026418A50C5B4761BEFA632CEDB7406 ] wuauserv C:\Windows\system32\wuaueng.dll 16:22:21.0876 5860 wuauserv - ok 16:22:21.0907 5860 [ E714A1C0354636837E20CCBF00888EE7 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 16:22:21.0907 5860 WudfPf - ok 16:22:21.0938 5860 [ 1023EE888C9B47178C5293ED5336AB69 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 16:22:21.0938 5860 WUDFRd - ok 16:22:21.0954 5860 [ 8D1E1E529A2C9E9B6A85B55A345F7629 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 16:22:21.0970 5860 wudfsvc - ok 16:22:21.0985 5860 [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc C:\Windows\System32\wwansvc.dll 16:22:21.0985 5860 WwanSvc - ok 16:22:22.0032 5860 ================ Scan global =============================== 16:22:22.0063 5860 [ DAB748AE0439955ED2FA22357533DDDB ] C:\Windows\system32\basesrv.dll 16:22:22.0094 5860 [ A9F564F254E9DDDE120A7135767EC24B ] C:\Windows\system32\winsrv.dll 16:22:22.0110 5860 [ A9F564F254E9DDDE120A7135767EC24B ] C:\Windows\system32\winsrv.dll 16:22:22.0141 5860 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll 16:22:22.0172 5860 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe 16:22:22.0172 5860 [Global] - ok 16:22:22.0172 5860 ================ Scan MBR ================================== 16:22:22.0188 5860 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 16:22:22.0781 5860 \Device\Harddisk0\DR0 - ok 16:22:22.0781 5860 ================ Scan VBR ================================== 16:22:22.0781 5860 [ 8307B2166A5046F1C1AA8101DBDCA2AC ] \Device\Harddisk0\DR0\Partition1 16:22:22.0781 5860 \Device\Harddisk0\DR0\Partition1 - ok 16:22:22.0796 5860 [ A3002858A43630B2576FACD5181CE07B ] \Device\Harddisk0\DR0\Partition2 16:22:22.0796 5860 \Device\Harddisk0\DR0\Partition2 - ok 16:22:22.0812 5860 ============================================================ 16:22:22.0812 5860 Scan finished 16:22:22.0812 5860 ============================================================ 16:22:22.0812 3964 Detected object count: 1 16:22:22.0812 3964 Actual detected object count: 1 16:22:39.0582 3964 C:\Windows\system32\drivers\Wdf01000.sys - copied to quarantine 16:22:58.0287 3964 Backup copy not found, trying to cure infected file.. 16:22:58.0302 3964 Cure success, using it.. 16:22:58.0536 3964 C:\Windows\system32\drivers\Wdf01000.sys - will be cured on reboot 16:22:58.0536 3964 Wdf01000 ( Virus.Win32.Rloader.a ) - User select action: Cure 16:23:22.0966 4040 Deinitialize success