13:06:50.0924 3792 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42 13:06:51.0143 3792 ============================================================ 13:06:51.0143 3792 Current date / time: 2013/03/13 13:06:51.0143 13:06:51.0143 3792 SystemInfo: 13:06:51.0143 3792 13:06:51.0143 3792 OS Version: 6.0.6002 ServicePack: 2.0 13:06:51.0143 3792 Product type: Workstation 13:06:51.0143 3792 ComputerName: RENATA 13:06:51.0143 3792 UserName: Renata2 13:06:51.0143 3792 Windows directory: C:\Windows 13:06:51.0143 3792 System windows directory: C:\Windows 13:06:51.0143 3792 Processor architecture: Intel x86 13:06:51.0144 3792 Number of processors: 2 13:06:51.0144 3792 Page size: 0x1000 13:06:51.0144 3792 Boot type: Normal boot 13:06:51.0144 3792 ============================================================ 13:06:55.0722 3792 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050 13:06:55.0725 3792 ============================================================ 13:06:55.0725 3792 \Device\Harddisk0\DR0: 13:06:55.0744 3792 MBR partitions: 13:06:55.0744 3792 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x406093, BlocksNum 0x6400800 13:06:55.0744 3792 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x6807000, BlocksNum 0xC212000 13:06:55.0744 3792 ============================================================ 13:06:55.0823 3792 C: <-> \Device\Harddisk0\DR0\Partition1 13:06:55.0992 3792 D: <-> \Device\Harddisk0\DR0\Partition2 13:06:55.0992 3792 ============================================================ 13:06:55.0992 3792 Initialize success 13:06:55.0992 3792 ============================================================ 13:07:00.0106 0460 ============================================================ 13:07:00.0106 0460 Scan started 13:07:00.0106 0460 Mode: Manual; 13:07:00.0106 0460 ============================================================ 13:07:17.0149 0412 ============================================================ 13:07:17.0149 0412 Scan started 13:07:17.0149 0412 Mode: Manual; SigCheck; TDLFS; 13:07:17.0149 0412 ============================================================ 13:07:20.0957 0412 ================ Scan system memory ======================== 13:07:20.0958 0412 System memory - ok 13:07:20.0958 0412 ================ Scan services ============================= 13:07:23.0151 0412 [ 82B296AE1892FE3DBEE00C9CF92F8AC7 ] ACPI C:\Windows\system32\drivers\acpi.sys 13:07:23.0396 0412 ACPI - ok 13:07:23.0771 0412 [ 3927397AC60D943DAF8808AFFED582B7 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe 13:07:23.0804 0412 AdobeARMservice - ok 13:07:24.0000 0412 [ 04F0FCAC69C7C71A3AC4EB97FAFC8303 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys 13:07:24.0147 0412 adp94xx - ok 13:07:24.0283 0412 [ 60505E0041F7751BDBB80F88BF45C2CE ] adpahci C:\Windows\system32\drivers\adpahci.sys 13:07:24.0434 0412 adpahci - ok 13:07:24.0459 0412 [ 8A42779B02AEC986EAB64ECFC98F8BD7 ] adpu160m C:\Windows\system32\drivers\adpu160m.sys 13:07:24.0494 0412 adpu160m - ok 13:07:24.0519 0412 [ 241C9E37F8CE45EF51C3DE27515CA4E5 ] adpu320 C:\Windows\system32\drivers\adpu320.sys 13:07:24.0564 0412 adpu320 - ok 13:07:24.0635 0412 [ 9D1FDA9E086BA64E3C93C9DE32461BCF ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 13:07:25.0143 0412 AeLookupSvc - ok 13:07:25.0303 0412 [ 3911B972B55FEA0478476B2E777B29FA ] AFD C:\Windows\system32\drivers\afd.sys 13:07:25.0409 0412 AFD - ok 13:07:25.0507 0412 [ 2D77788D0B7FE269044F58C86AE099CE ] agp440 C:\Windows\system32\drivers\agp440.sys 13:07:25.0545 0412 agp440 - ok 13:07:25.0612 0412 [ AE1FDF7BF7BB6C6A70F67699D880592A ] aic78xx C:\Windows\system32\drivers\djsvs.sys 13:07:25.0675 0412 aic78xx - ok 13:07:25.0759 0412 [ A1545B731579895D8CC44FC0481C1192 ] ALG C:\Windows\System32\alg.exe 13:07:26.0918 0412 ALG - ok 13:07:26.0987 0412 [ 9EAEF5FC9B8E351AFA7E78A6FAE91F91 ] aliide C:\Windows\system32\drivers\aliide.sys 13:07:27.0013 0412 aliide - ok 13:07:27.0080 0412 [ E91DC02D26DC729833DEB59A094CA341 ] amdagp C:\Windows\system32\drivers\amdagp.sys 13:07:27.0113 0412 amdagp - ok 13:07:27.0133 0412 [ 9B78A39A4C173FDBC1321E0DD659B34C ] amdide C:\Windows\system32\drivers\amdide.sys 13:07:27.0162 0412 amdide - ok 13:07:27.0225 0412 [ 18F29B49AD23ECEE3D2A826C725C8D48 ] AmdK7 C:\Windows\system32\drivers\amdk7.sys 13:07:27.0342 0412 AmdK7 - ok 13:07:27.0416 0412 [ 93AE7F7DD54AB986A6F1A1B37BE7442D ] AmdK8 C:\Windows\system32\drivers\amdk8.sys 13:07:27.0488 0412 AmdK8 - ok 13:07:27.0563 0412 [ C6D704C7F0434DC791AAC37CAC4B6E14 ] Appinfo C:\Windows\System32\appinfo.dll 13:07:27.0730 0412 Appinfo - ok 13:07:27.0898 0412 [ 5D2888182FB46632511ACEE92FDAD522 ] arc C:\Windows\system32\drivers\arc.sys 13:07:27.0961 0412 arc - ok 13:07:28.0070 0412 [ 5E2A321BD7C8B3624E41FDEC3E244945 ] arcsas C:\Windows\system32\drivers\arcsas.sys 13:07:28.0105 0412 arcsas - ok 13:07:28.0177 0412 [ 53B202ABEE6455406254444303E87BE1 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 13:07:28.0237 0412 AsyncMac - ok 13:07:28.0299 0412 [ 1F05B78AB91C9075565A9D8A4B880BC4 ] atapi C:\Windows\system32\drivers\atapi.sys 13:07:28.0321 0412 atapi - ok 13:07:28.0780 0412 [ 2846F5EE802889D500FCF5CC48B28381 ] athr C:\Windows\system32\DRIVERS\athr.sys 13:07:30.0163 0412 athr - ok 13:07:30.0332 0412 [ 68E2A1A0407A66CF50DA0300852424AB ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 13:07:30.0523 0412 AudioEndpointBuilder - ok 13:07:30.0575 0412 [ 68E2A1A0407A66CF50DA0300852424AB ] Audiosrv C:\Windows\System32\Audiosrv.dll 13:07:30.0607 0412 Audiosrv - ok 13:07:30.0779 0412 [ 502F1C30BD50B32D00CE4DCAECC3D3C7 ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys 13:07:30.0933 0412 b57nd60x - ok 13:07:31.0050 0412 [ 67E506B75BD5326A3EC7B70BD014DFB6 ] Beep C:\Windows\system32\drivers\Beep.sys 13:07:31.0096 0412 Beep - ok 13:07:31.0426 0412 [ C789AF0F724FDA5852FB9A7D3A432381 ] BFE C:\Windows\System32\bfe.dll 13:07:31.0533 0412 BFE - ok 13:07:31.0765 0412 [ 93952506C6D67330367F7E7934B6A02F ] BITS C:\Windows\System32\qmgr.dll 13:07:31.0909 0412 BITS - ok 13:07:31.0962 0412 [ D4DF28447741FD3D953526E33A617397 ] blbdrive C:\Windows\system32\drivers\blbdrive.sys 13:07:32.0054 0412 blbdrive - ok 13:07:32.0115 0412 [ 35F376253F687BDE63976CCB3F2108CA ] bowser C:\Windows\system32\DRIVERS\bowser.sys 13:07:32.0183 0412 bowser - ok 13:07:32.0219 0412 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\drivers\brfiltlo.sys 13:07:32.0276 0412 BrFiltLo - ok 13:07:32.0317 0412 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\drivers\brfiltup.sys 13:07:32.0422 0412 BrFiltUp - ok 13:07:32.0472 0412 [ A3629A0C4226F9E9C72FAAEEBC3AD33C ] Browser C:\Windows\System32\browser.dll 13:07:32.0564 0412 Browser - ok 13:07:32.0616 0412 [ B304E75CFF293029EDDF094246747113 ] Brserid C:\Windows\system32\drivers\brserid.sys 13:07:35.0709 0412 Brserid - ok 13:07:35.0756 0412 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\system32\drivers\brserwdm.sys 13:07:35.0856 0412 BrSerWdm - ok 13:07:35.0894 0412 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\system32\drivers\brusbmdm.sys 13:07:36.0028 0412 BrUsbMdm - ok 13:07:36.0059 0412 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\system32\drivers\brusbser.sys 13:07:36.0162 0412 BrUsbSer - ok 13:07:36.0204 0412 [ AD07C1EC6665B8B35741AB91200C6B68 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys 13:07:36.0271 0412 BTHMODEM - ok 13:07:36.0377 0412 [ 7ADD03E75BEB9E6DD102C3081D29840A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 13:07:36.0429 0412 cdfs - ok 13:07:36.0491 0412 [ 6B4BFFB9BECD728097024276430DB314 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys 13:07:36.0524 0412 cdrom - ok 13:07:36.0641 0412 [ 312EC3E37A0A1F2006534913E37B4423 ] CertPropSvc C:\Windows\System32\certprop.dll 13:07:36.0679 0412 CertPropSvc - ok 13:07:36.0710 0412 [ E5D4133F37219DBCFE102BC61072589D ] circlass C:\Windows\system32\drivers\circlass.sys 13:07:36.0761 0412 circlass - ok 13:07:36.0876 0412 [ D7659D3B5B92C31E84E53C1431F35132 ] CLFS C:\Windows\system32\CLFS.sys 13:07:36.0922 0412 CLFS - ok 13:07:37.0115 0412 [ 8EE772032E2FE80A924F3B8DD5082194 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 13:07:37.0163 0412 clr_optimization_v2.0.50727_32 - ok 13:07:37.0324 0412 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 13:07:37.0428 0412 clr_optimization_v4.0.30319_32 - ok 13:07:37.0535 0412 [ 99AFC3795B58CC478FBBBCDC658FCB56 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys 13:07:37.0599 0412 CmBatt - ok 13:07:37.0632 0412 [ 0CA25E686A4928484E9FDABD168AB629 ] cmdide C:\Windows\system32\drivers\cmdide.sys 13:07:37.0673 0412 cmdide - ok 13:07:37.0705 0412 [ 6AFEF0B60FA25DE07C0968983EE4F60A ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys 13:07:37.0743 0412 Compbatt - ok 13:07:37.0754 0412 COMSysApp - ok 13:07:37.0795 0412 [ 741E9DFF4F42D2D8477D0FC1DC0DF871 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys 13:07:37.0839 0412 crcdisk - ok 13:07:37.0870 0412 [ 1F07BECDCA750766A96CDA811BA86410 ] Crusoe C:\Windows\system32\drivers\crusoe.sys 13:07:37.0950 0412 Crusoe - ok 13:07:38.0031 0412 [ F1E8C34892336D33EDDCDFE44E474F64 ] CryptSvc C:\Windows\system32\cryptsvc.dll 13:07:38.0110 0412 CryptSvc - ok 13:07:38.0246 0412 [ 3B5B4D53FEC14F7476CA29A20CC31AC9 ] DcomLaunch C:\Windows\system32\rpcss.dll 13:07:38.0420 0412 DcomLaunch - ok 13:07:38.0440 0412 [ 622C41A07CA7E6DD91770F50D532CB6C ] DfsC C:\Windows\system32\Drivers\dfsc.sys 13:07:38.0494 0412 DfsC - ok 13:07:39.0026 0412 [ 2CC3DCFB533A1035B13DCAB6160AB38B ] DFSR C:\Windows\system32\DFSR.exe 13:07:39.0318 0412 DFSR - ok 13:07:39.0459 0412 [ 9028559C132146FB75EB7ACF384B086A ] Dhcp C:\Windows\System32\dhcpcsvc.dll 13:07:39.0570 0412 Dhcp - ok 13:07:39.0642 0412 [ 5D4AEFC3386920236A548271F8F1AF6A ] disk C:\Windows\system32\drivers\disk.sys 13:07:39.0688 0412 disk - ok 13:07:39.0758 0412 [ 57D762F6F5974AF0DA2BE88A3349BAAA ] Dnscache C:\Windows\System32\dnsrslvr.dll 13:07:39.0930 0412 Dnscache - ok 13:07:40.0263 0412 [ 324FD74686B1EF5E7C19A8AF49E748F6 ] dot3svc C:\Windows\System32\dot3svc.dll 13:07:40.0449 0412 dot3svc - ok 13:07:40.0672 0412 [ 4F59C172C094E1A1D46463A8DC061CBD ] Dot4 C:\Windows\system32\DRIVERS\Dot4.sys 13:07:40.0776 0412 Dot4 - ok 13:07:40.0826 0412 [ 80BF3BA09F6F2523C8F6B7CC6DBF7BD5 ] Dot4Print C:\Windows\system32\DRIVERS\Dot4Prt.sys 13:07:40.0914 0412 Dot4Print - ok 13:07:40.0969 0412 [ C55004CA6B419B6695970DFE849B122F ] dot4usb C:\Windows\system32\DRIVERS\dot4usb.sys 13:07:41.0026 0412 dot4usb - ok 13:07:41.0139 0412 [ A622E888F8AA2F6B49E9BC466F0E5DEF ] DPS C:\Windows\system32\dps.dll 13:07:41.0261 0412 DPS - ok 13:07:41.0300 0412 [ 97FEF831AB90BEE128C9AF390E243F80 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 13:07:41.0344 0412 drmkaud - ok 13:07:41.0640 0412 [ C68AC676B0EF30CFBB1080ADCE49EB1F ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 13:07:41.0740 0412 DXGKrnl - ok 13:07:41.0785 0412 [ 5425F74AC0C1DBD96A1E04F17D63F94C ] E1G60 C:\Windows\system32\DRIVERS\E1G60I32.sys 13:07:41.0840 0412 E1G60 - ok 13:07:41.0909 0412 [ C0B95E40D85CD807D614E264248A45B9 ] EapHost C:\Windows\System32\eapsvc.dll 13:07:41.0943 0412 EapHost - ok 13:07:42.0041 0412 [ 7F64EA048DCFAC7ACF8B4D7B4E6FE371 ] Ecache C:\Windows\system32\drivers\ecache.sys 13:07:42.0087 0412 Ecache - ok 13:07:42.0133 0412 [ 23B62471681A124889978F6295B3F4C6 ] elxstor C:\Windows\system32\drivers\elxstor.sys 13:07:42.0175 0412 elxstor - ok 13:07:42.0433 0412 [ 4E6B23DFC917EA39306B529B773950F4 ] EMDMgmt C:\Windows\system32\emdmgmt.dll 13:07:42.0497 0412 EMDMgmt - ok 13:07:42.0555 0412 [ 3DB974F3935483555D7148663F726C61 ] ErrDev C:\Windows\system32\drivers\errdev.sys 13:07:42.0598 0412 ErrDev - ok 13:07:42.0753 0412 [ 67058C46504BC12D821F38CF99B7B28F ] EventSystem C:\Windows\system32\es.dll 13:07:42.0851 0412 EventSystem - ok 13:07:43.0089 0412 [ 22B408651F9123527BCEE54B4F6C5CAE ] exfat C:\Windows\system32\drivers\exfat.sys 13:07:43.0337 0412 exfat - ok 13:07:43.0407 0412 [ 1E9B9A70D332103C52995E957DC09EF8 ] fastfat C:\Windows\system32\drivers\fastfat.sys 13:07:43.0475 0412 fastfat - ok 13:07:43.0525 0412 [ AFE1E8B9782A0DD7FB46BBD88E43F89A ] fdc C:\Windows\system32\DRIVERS\fdc.sys 13:07:43.0615 0412 fdc - ok 13:07:43.0682 0412 [ 6629B5F0E98151F4AFDD87567EA32BA3 ] fdPHost C:\Windows\system32\fdPHost.dll 13:07:43.0768 0412 fdPHost - ok 13:07:43.0800 0412 [ 89ED56DCE8E47AF40892778A5BD31FD2 ] FDResPub C:\Windows\system32\fdrespub.dll 13:07:43.0920 0412 FDResPub - ok 13:07:43.0982 0412 [ A8C0139A884861E3AAE9CFE73B208A9F ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 13:07:44.0013 0412 FileInfo - ok 13:07:44.0080 0412 [ 0AE429A696AECBC5970E3CF2C62635AE ] Filetrace C:\Windows\system32\drivers\filetrace.sys 13:07:44.0155 0412 Filetrace - ok 13:07:44.0184 0412 [ 85B7CF99D532820495D68D747FDA9EBD ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys 13:07:44.0291 0412 flpydisk - ok 13:07:44.0377 0412 [ 01334F9EA68E6877C4EF05D3EA8ABB05 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 13:07:44.0448 0412 FltMgr - ok 13:07:44.0601 0412 [ 8CE364388C8ECA59B14B539179276D44 ] FontCache C:\Windows\system32\FntCache.dll 13:07:44.0795 0412 FontCache - ok 13:07:44.0865 0412 [ C7FBDD1ED42F82BFA35167A5C9803EA3 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe 13:07:44.0890 0412 FontCache3.0.0.0 - ok 13:07:44.0976 0412 [ 189ED732D3C5ECCA0719E9A862C09179 ] FSCSLII C:\Windows\system32\DRIVERS\FSCSLII.sys 13:07:45.0043 0412 FSCSLII - ok 13:07:45.0088 0412 [ D909075FA72C090F27AA926C32CB4612 ] fssfltr C:\Windows\system32\DRIVERS\fssfltr.sys 13:07:45.0112 0412 fssfltr - ok 13:07:45.0612 0412 [ 4CE9DAC1518FF7E77BD213E6394B9D77 ] fsssvc C:\Program Files\Windows Live\Family Safety\fsssvc.exe 13:07:46.0003 0412 fsssvc - ok 13:07:46.0056 0412 [ B972A66758577E0BFD1DE0F91AAA27B5 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 13:07:46.0143 0412 Fs_Rec - ok 13:07:46.0195 0412 [ 34582A6E6573D54A07ECE5FE24A126B5 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys 13:07:46.0230 0412 gagp30kx - ok 13:07:46.0429 0412 [ CD5D0AEEE35DFD4E986A5AA1500A6E66 ] gpsvc C:\Windows\System32\gpsvc.dll 13:07:46.0552 0412 gpsvc - ok 13:07:46.0690 0412 [ CB04C744BE0A61B1D648FAED182C3B59 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 13:07:46.0822 0412 HdAudAddService - ok 13:07:46.0996 0412 [ 062452B7FFD68C8C042A6261FE8DFF4A ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys 13:07:47.0092 0412 HDAudBus - ok 13:07:47.0153 0412 [ 1338520E78D90154ED6BE8F84DE5FCEB ] HidBth C:\Windows\system32\drivers\hidbth.sys 13:07:47.0300 0412 HidBth - ok 13:07:47.0359 0412 [ FF3160C3A2445128C5A6D9B076DA519E ] HidIr C:\Windows\system32\drivers\hidir.sys 13:07:47.0477 0412 HidIr - ok 13:07:47.0541 0412 [ 84067081F3318162797385E11A8F0582 ] hidserv C:\Windows\system32\hidserv.dll 13:07:47.0721 0412 hidserv - ok 13:07:47.0792 0412 [ 854CA287AB7FAF949617A788306D967E ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys 13:07:47.0862 0412 HidUsb - ok 13:07:47.0927 0412 [ D8AD255B37DA92434C26E4876DB7D418 ] hkmsvc C:\Windows\system32\kmsvc.dll 13:07:48.0022 0412 hkmsvc - ok 13:07:48.0051 0412 [ 16EE7B23A009E00D835CDB79574A91A6 ] HpCISSs C:\Windows\system32\drivers\hpcisss.sys 13:07:48.0086 0412 HpCISSs - ok 13:07:48.0333 0412 [ 0A3C6AA4A9FC38C20BA4EAC2C3351C05 ] hpqcxs08 C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll 13:07:48.0380 0412 hpqcxs08 ( UnsignedFile.Multi.Generic ) - warning 13:07:48.0380 0412 hpqcxs08 - detected UnsignedFile.Multi.Generic (1) 13:07:48.0464 0412 [ F3F72A2A86C22610BCA5439FA789DD52 ] hpqddsvc C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll 13:07:48.0495 0412 hpqddsvc ( UnsignedFile.Multi.Generic ) - warning 13:07:48.0495 0412 hpqddsvc - detected UnsignedFile.Multi.Generic (1) 13:07:48.0812 0412 [ 79737E0F7D25DE8405CB34D4C9882253 ] HPSLPSVC C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL 13:07:49.0034 0412 HPSLPSVC ( UnsignedFile.Multi.Generic ) - warning 13:07:49.0034 0412 HPSLPSVC - detected UnsignedFile.Multi.Generic (1) 13:07:49.0142 0412 [ 0EEECA26C8D4BDE2A4664DB058A81937 ] HTTP C:\Windows\system32\drivers\HTTP.sys 13:07:49.0319 0412 HTTP - ok 13:07:49.0375 0412 [ C6B032D69650985468160FC9937CF5B4 ] i2omp C:\Windows\system32\drivers\i2omp.sys 13:07:49.0413 0412 i2omp - ok 13:07:49.0554 0412 [ 22D56C8184586B7A1F6FA60BE5F5A2BD ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys 13:07:49.0638 0412 i8042prt - ok 13:07:49.0969 0412 [ 496DB78E6A0C4C44023D9A92B4A7AC31 ] ialm C:\Windows\system32\DRIVERS\igdkmd32.sys 13:07:50.0623 0412 ialm - ok 13:07:50.0693 0412 [ 54155EA1B0DF185878E0FC9EC3AC3A14 ] iaStorV C:\Windows\system32\drivers\iastorv.sys 13:07:50.0745 0412 iaStorV - ok 13:07:50.0998 0412 [ 98477B08E61945F974ED9FDC4CB6BDAB ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe 13:07:51.0365 0412 idsvc - ok 13:07:51.0400 0412 [ 2D077BF86E843F901D8DB709C95B49A5 ] iirsp C:\Windows\system32\drivers\iirsp.sys 13:07:51.0443 0412 iirsp - ok 13:07:51.0692 0412 [ AD5DF6F4FBBC798636EDC66BFEC7D0DE ] IJPLMSVC C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE 13:07:51.0737 0412 IJPLMSVC - ok 13:07:51.0872 0412 [ 9908D8A397B76CD8D31D0D383C5773C9 ] IKEEXT C:\Windows\System32\ikeext.dll 13:07:52.0060 0412 IKEEXT - ok 13:07:52.0797 0412 [ 0557AAEE4C86E2C333ACD2BAF42A7619 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys 13:07:54.0170 0412 IntcAzAudAddService - ok 13:07:54.0304 0412 [ 83AA759F3189E6370C30DE5DC5590718 ] intelide C:\Windows\system32\drivers\intelide.sys 13:07:54.0356 0412 intelide - ok 13:07:54.0428 0412 [ 224191001E78C89DFA78924C3EA595FF ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys 13:07:54.0493 0412 intelppm - ok 13:07:54.0603 0412 [ 9AC218C6E6105477484C6FDBE7D409A4 ] IPBusEnum C:\Windows\system32\ipbusenum.dll 13:07:54.0645 0412 IPBusEnum - ok 13:07:54.0688 0412 [ 62C265C38769B864CB25B4BCF62DF6C3 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 13:07:54.0979 0412 IpFilterDriver - ok 13:07:55.0045 0412 [ 1998BD97F950680BB55F55A7244679C2 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 13:07:55.0153 0412 iphlpsvc - ok 13:07:55.0166 0412 IpInIp - ok 13:07:55.0209 0412 [ B25AAF203552B7B3491139D582B39AD1 ] IPMIDRV C:\Windows\system32\drivers\ipmidrv.sys 13:07:55.0270 0412 IPMIDRV - ok 13:07:55.0298 0412 [ 8793643A67B42CEC66490B2A0CF92D68 ] IPNAT C:\Windows\system32\DRIVERS\ipnat.sys 13:07:55.0378 0412 IPNAT - ok 13:07:55.0415 0412 [ 109C0DFB82C3632FBD11949B73AEEAC9 ] IRENUM C:\Windows\system32\drivers\irenum.sys 13:07:55.0464 0412 IRENUM - ok 13:07:55.0611 0412 [ 30BD88A7DDE75BCA8F2A736D5D62A69D ] isapnp C:\Windows\system32\drivers\isapnp.sys 13:07:55.0642 0412 isapnp - ok 13:07:55.0680 0412 [ 232FA340531D940AAC623B121A595034 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys 13:07:55.0715 0412 iScsiPrt - ok 13:07:55.0737 0412 [ BCED60D16156E428F8DF8CF27B0DF150 ] iteatapi C:\Windows\system32\drivers\iteatapi.sys 13:07:55.0781 0412 iteatapi - ok 13:07:55.0826 0412 [ 06FA654504A498C30ADCA8BEC4E87E7E ] iteraid C:\Windows\system32\drivers\iteraid.sys 13:07:55.0853 0412 iteraid - ok 13:07:55.0891 0412 [ 37605E0A8CF00CBBA538E753E4344C6E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys 13:07:55.0937 0412 kbdclass - ok 13:07:55.0989 0412 [ 18247836959BA67E3511B62846B9C2E0 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys 13:07:56.0061 0412 kbdhid - ok 13:07:56.0110 0412 [ A3E186B4B935905B829219502557314E ] KeyIso C:\Windows\system32\lsass.exe 13:07:56.0173 0412 KeyIso - ok 13:07:56.0297 0412 [ 4A1445EFA932A3BAF5BDB02D7131EE20 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 13:07:56.0357 0412 KSecDD - ok 13:07:56.0522 0412 [ 8078F8F8F7A79E2E6B494523A828C585 ] KtmRm C:\Windows\system32\msdtckrm.dll 13:07:56.0579 0412 KtmRm - ok 13:07:56.0676 0412 [ 1BF5EEBFD518DD7298434D8C862F825D ] LanmanServer C:\Windows\system32\srvsvc.dll 13:07:56.0753 0412 LanmanServer - ok 13:07:56.0885 0412 [ 1DB69705B695B987082C8BAEC0C6B34F ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 13:07:57.0010 0412 LanmanWorkstation - ok 13:07:57.0048 0412 [ D1C5883087A0C3F1344D9D55A44901F6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 13:07:57.0098 0412 lltdio - ok 13:07:57.0168 0412 [ 2D5A428872F1442631D0959A34ABFF63 ] lltdsvc C:\Windows\System32\lltdsvc.dll 13:07:57.0229 0412 lltdsvc - ok 13:07:57.0263 0412 [ 35D40113E4A5B961B6CE5C5857702518 ] lmhosts C:\Windows\System32\lmhsvc.dll 13:07:57.0382 0412 lmhosts - ok 13:07:57.0447 0412 [ C7E15E82879BF3235B559563D4185365 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys 13:07:57.0509 0412 LSI_FC - ok 13:07:57.0531 0412 [ EE01EBAE8C9BF0FA072E0FF68718920A ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys 13:07:57.0575 0412 LSI_SAS - ok 13:07:57.0603 0412 [ 912A04696E9CA30146A62AFA1463DD5C ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys 13:07:57.0633 0412 LSI_SCSI - ok 13:07:57.0670 0412 [ 8F5C7426567798E62A3B3614965D62CC ] luafv C:\Windows\system32\drivers\luafv.sys 13:07:57.0725 0412 luafv - ok 13:07:57.0777 0412 [ 0001CE609D66632FA17B84705F658879 ] megasas C:\Windows\system32\drivers\megasas.sys 13:07:57.0805 0412 megasas - ok 13:07:57.0854 0412 [ C252F32CD9A49DBFC25ECF26EBD51A99 ] MegaSR C:\Windows\system32\drivers\megasr.sys 13:07:57.0908 0412 MegaSR - ok 13:07:57.0982 0412 [ 123271BD5237AB991DC5C21FDF8835EB ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe 13:07:58.0018 0412 Microsoft Office Groove Audit Service - ok 13:07:58.0091 0412 [ 1076FFCFFAAE8385FD62DFCB25AC4708 ] MMCSS C:\Windows\system32\mmcss.dll 13:07:58.0175 0412 MMCSS - ok 13:07:58.0210 0412 [ E13B5EA0F51BA5B1512EC671393D09BA ] Modem C:\Windows\system32\drivers\modem.sys 13:07:58.0302 0412 Modem - ok 13:07:58.0332 0412 [ 0A9BB33B56E294F686ABB7C1E4E2D8A8 ] monitor C:\Windows\system32\DRIVERS\monitor.sys 13:07:58.0398 0412 monitor - ok 13:07:58.0487 0412 [ 5BF6A1326A335C5298477754A506D263 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys 13:07:58.0555 0412 mouclass - ok 13:07:58.0596 0412 [ 93B8D4869E12CFBE663915502900876F ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 13:07:58.0649 0412 mouhid - ok 13:07:58.0693 0412 [ BDAFC88AA6B92F7842416EA6A48E1600 ] MountMgr C:\Windows\system32\drivers\mountmgr.sys 13:07:58.0738 0412 MountMgr - ok 13:07:58.0811 0412 [ CF105EE42E3F71E648CEBB3F666E1CF0 ] MpFilter C:\Windows\system32\DRIVERS\MpFilter.sys 13:07:58.0877 0412 MpFilter - ok 13:07:58.0921 0412 [ 511D011289755DD9F9A7579FB0B064E6 ] mpio C:\Windows\system32\drivers\mpio.sys 13:07:58.0951 0412 mpio - ok 13:07:59.0216 0412 MpKsl0009db8b - ok 13:07:59.0333 0412 [ A69630D039C38018689190234F866D77 ] MpKslfc768fc5 C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{DE624BD0-7A51-467B-A7D3-E031044BB88E}\MpKslfc768fc5.sys 13:07:59.0334 0412 Suspicious file (Forged): C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{DE624BD0-7A51-467B-A7D3-E031044BB88E}\MpKslfc768fc5.sys. Real md5: A69630D039C38018689190234F866D77, Fake md5: 4137EE420481D10734DA3018D0325582 13:07:59.0335 0412 MpKslfc768fc5 ( ForgedFile.Multi.Generic ) - warning 13:07:59.0335 0412 MpKslfc768fc5 - detected ForgedFile.Multi.Generic (1) 13:07:59.0361 0412 [ 22241FEBA9B2DEFA669C8CB0A8DD7D2E ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 13:07:59.0445 0412 mpsdrv - ok 13:08:00.0135 0412 [ 5DE62C6E9108F14F6794060A9BDECAEC ] MpsSvc C:\Windows\system32\mpssvc.dll 13:08:00.0244 0412 MpsSvc - ok 13:08:00.0296 0412 [ 4FBBB70D30FD20EC51F80061703B001E ] Mraid35x C:\Windows\system32\drivers\mraid35x.sys 13:08:00.0768 0412 Mraid35x - ok 13:08:00.0808 0412 [ 82CEA0395524AACFEB58BA1448E8325C ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 13:08:00.0896 0412 MRxDAV - ok 13:08:00.0967 0412 [ 1E94971C4B446AB2290DEB71D01CF0C2 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 13:08:01.0083 0412 mrxsmb - ok 13:08:01.0127 0412 [ 4FCCB34D793B116423209C0F8B7A3B03 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 13:08:01.0204 0412 mrxsmb10 - ok 13:08:01.0227 0412 [ C3CB1B40AD4A0124D617A1199B0B9D7C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 13:08:01.0252 0412 mrxsmb20 - ok 13:08:01.0280 0412 [ F70590424EEFBF5C27A40C67AFDB8383 ] msahci C:\Windows\system32\drivers\msahci.sys 13:08:01.0370 0412 msahci - ok 13:08:01.0398 0412 [ 4468B0F385A86ECDDAF8D3CA662EC0E7 ] msdsm C:\Windows\system32\drivers\msdsm.sys 13:08:01.0427 0412 msdsm - ok 13:08:01.0462 0412 [ FD7520CC3A80C5FC8C48852BB24C6DED ] MSDTC C:\Windows\System32\msdtc.exe 13:08:01.0493 0412 MSDTC - ok 13:08:01.0532 0412 [ A9927F4A46B816C92F461ACB90CF8515 ] Msfs C:\Windows\system32\drivers\Msfs.sys 13:08:01.0581 0412 Msfs - ok 13:08:01.0616 0412 [ 0F400E306F385C56317357D6DEA56F62 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 13:08:01.0654 0412 msisadrv - ok 13:08:01.0687 0412 [ 85466C0757A23D9A9AECDC0755203CB2 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 13:08:01.0718 0412 MSiSCSI - ok 13:08:01.0725 0412 msiserver - ok 13:08:01.0764 0412 [ D8C63D34D9C9E56C059E24EC7185CC07 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 13:08:01.0840 0412 MSKSSRV - ok 13:08:01.0889 0412 [ C1F19D2BACBEE9AB64D9AE69E9859AC0 ] MsMpSvc C:\Program Files\Microsoft Security Client\MsMpEng.exe 13:08:01.0905 0412 MsMpSvc - ok 13:08:01.0941 0412 [ 1D373C90D62DDB641D50E55B9E78D65E ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 13:08:01.0968 0412 MSPCLOCK - ok 13:08:01.0984 0412 [ B572DA05BF4E098D4BBA3A4734FB505B ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 13:08:02.0017 0412 MSPQM - ok 13:08:02.0121 0412 [ B49456D70555DE905C311BCDA6EC6ADB ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 13:08:02.0155 0412 MsRPC - ok 13:08:02.0192 0412 [ E384487CB84BE41D09711C30CA79646C ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys 13:08:02.0222 0412 mssmbios - ok 13:08:02.0240 0412 [ 7199C1EEC1E4993CAF96B8C0A26BD58A ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 13:08:02.0300 0412 MSTEE - ok 13:08:02.0340 0412 [ 6A57B5733D4CB702C8EA4542E836B96C ] Mup C:\Windows\system32\Drivers\mup.sys 13:08:02.0359 0412 Mup - ok 13:08:02.0397 0412 [ E4EAF0C5C1B41B5C83386CF212CA9584 ] napagent C:\Windows\system32\qagentRT.dll 13:08:02.0491 0412 napagent - ok 13:08:02.0529 0412 [ 85C44FDFF9CF7E72A40DCB7EC06A4416 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 13:08:02.0572 0412 NativeWifiP - ok 13:08:02.0633 0412 [ 1357274D1883F68300AEADD15D7BBB42 ] NDIS C:\Windows\system32\drivers\ndis.sys 13:08:02.0686 0412 NDIS - ok 13:08:02.0727 0412 [ 0E186E90404980569FB449BA7519AE61 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 13:08:02.0759 0412 NdisTapi - ok 13:08:02.0781 0412 [ D6973AA34C4D5D76C0430B181C3CD389 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 13:08:02.0837 0412 Ndisuio - ok 13:08:02.0886 0412 [ 818F648618AE34F729FDB47EC68345C3 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 13:08:02.0922 0412 NdisWan - ok 13:08:02.0961 0412 [ 71DAB552B41936358F3B541AE5997FB3 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 13:08:02.0994 0412 NDProxy - ok 13:08:03.0052 0412 [ 510C138564486FF926A3F773205C63D1 ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll 13:08:03.0076 0412 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning 13:08:03.0076 0412 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic (1) 13:08:03.0104 0412 [ BCD093A5A6777CF626434568DC7DBA78 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 13:08:03.0145 0412 NetBIOS - ok 13:08:03.0199 0412 [ ECD64230A59CBD93C85F1CD1CAB9F3F6 ] netbt C:\Windows\system32\DRIVERS\netbt.sys 13:08:03.0246 0412 netbt - ok 13:08:03.0281 0412 [ A3E186B4B935905B829219502557314E ] Netlogon C:\Windows\system32\lsass.exe 13:08:03.0313 0412 Netlogon - ok 13:08:03.0473 0412 [ C8052711DAECC48B982434C5116CA401 ] Netman C:\Windows\System32\netman.dll 13:08:03.0563 0412 Netman - ok 13:08:03.0687 0412 [ 2EF3BBE22E5A5ACD1428EE387A0D0172 ] netprofm C:\Windows\System32\netprofm.dll 13:08:03.0792 0412 netprofm - ok 13:08:03.0860 0412 [ D6C4E4A39A36029AC0813D476FBD0248 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe 13:08:03.0912 0412 NetTcpPortSharing - ok 13:08:03.0964 0412 [ 2E7FB731D4790A1BC6270ACCEFACB36E ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys 13:08:04.0024 0412 nfrd960 - ok 13:08:04.0086 0412 [ 832E098BCA8235436FE2D8AE50AC3718 ] NisDrv C:\Windows\system32\DRIVERS\NisDrvWFP.sys 13:08:04.0144 0412 NisDrv - ok 13:08:04.0367 0412 [ E570ECA850F30EB740C2E9699DF3D2BD ] NisSrv C:\Program Files\Microsoft Security Client\NisSrv.exe 13:08:04.0494 0412 NisSrv - ok 13:08:04.0537 0412 [ 2997B15415F9BBE05B5A4C1C85E0C6A2 ] NlaSvc C:\Windows\System32\nlasvc.dll 13:08:04.0615 0412 NlaSvc - ok 13:08:04.0662 0412 [ D36F239D7CCE1931598E8FB90A0DBC26 ] Npfs C:\Windows\system32\drivers\Npfs.sys 13:08:04.0710 0412 Npfs - ok 13:08:04.0741 0412 [ 8BB86F0C7EEA2BDED6FE095D0B4CA9BD ] nsi C:\Windows\system32\nsisvc.dll 13:08:04.0821 0412 nsi - ok 13:08:04.0858 0412 [ 609773E344A97410CE4EBF74A8914FCF ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 13:08:04.0931 0412 nsiproxy - ok 13:08:05.0075 0412 [ 6A4A98CEE84CF9E99564510DDA4BAA47 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 13:08:05.0210 0412 Ntfs - ok 13:08:05.0247 0412 [ E875C093AEC0C978A90F30C9E0DFBB72 ] ntrigdigi C:\Windows\system32\drivers\ntrigdigi.sys 13:08:05.0340 0412 ntrigdigi - ok 13:08:05.0370 0412 [ C5DBBCDA07D780BDA9B685DF333BB41E ] Null C:\Windows\system32\drivers\Null.sys 13:08:05.0423 0412 Null - ok 13:08:05.0499 0412 [ 1EFEC38A852AB35883BFFF3427B92B3F ] NVENETFD C:\Windows\system32\DRIVERS\nvmfdx32.sys 13:08:05.0553 0412 NVENETFD - ok 13:08:05.0952 0412 [ 2713392707E515EFB671751FA767EBD2 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys 13:08:06.0580 0412 nvlddmkm - ok 13:08:06.0667 0412 [ 1EFEC38A852AB35883BFFF3427B92B3F ] NVNET C:\Windows\system32\DRIVERS\nvmfdx32.sys 13:08:06.0697 0412 NVNET - ok 13:08:06.0740 0412 [ 2EDF9E7751554B42CBB60116DE727101 ] nvraid C:\Windows\system32\drivers\nvraid.sys 13:08:06.0773 0412 nvraid - ok 13:08:06.0871 0412 [ 7894FFC354DDD5A0600BC112FFEC2DD0 ] nvrd32 C:\Windows\system32\drivers\nvrd32.sys 13:08:06.0900 0412 nvrd32 - ok 13:08:06.0968 0412 [ AF1BD777AF00E96C45C77192D7453369 ] nvsmu C:\Windows\system32\DRIVERS\nvsmu.sys 13:08:07.0048 0412 nvsmu - ok 13:08:07.0080 0412 [ ABED0C09758D1D97DB0042DBB2688177 ] nvstor C:\Windows\system32\drivers\nvstor.sys 13:08:07.0111 0412 nvstor - ok 13:08:07.0158 0412 [ 8EE374B6FB3CB2BB8D70395218B464A5 ] nvstor32 C:\Windows\system32\drivers\nvstor32.sys 13:08:07.0206 0412 nvstor32 - ok 13:08:07.0248 0412 [ D445466C0A10536486FBEBBC271D6E34 ] nvsvc C:\Windows\system32\nvvsvc.exe 13:08:07.0283 0412 nvsvc - ok 13:08:07.0318 0412 [ C9DF9D48721AE616281496391EBB0B5C ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 13:08:07.0374 0412 nv_agp - ok 13:08:07.0389 0412 NwlnkFlt - ok 13:08:07.0400 0412 NwlnkFwd - ok 13:08:07.0504 0412 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE 13:08:07.0544 0412 odserv - ok 13:08:07.0604 0412 [ BE32DA025A0BE1878F0EE8D6D9386CD5 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys 13:08:07.0669 0412 ohci1394 - ok 13:08:07.0702 0412 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE 13:08:07.0720 0412 ose - ok 13:08:07.0797 0412 [ 0C8E8E61AD1EB0B250B846712C917506 ] p2pimsvc C:\Windows\system32\p2psvc.dll 13:08:07.0868 0412 p2pimsvc - ok 13:08:07.0887 0412 [ 0C8E8E61AD1EB0B250B846712C917506 ] p2psvc C:\Windows\system32\p2psvc.dll 13:08:07.0921 0412 p2psvc - ok 13:08:07.0984 0412 [ 8A79FDF04A73428597E2CAF9D0D67850 ] Parport C:\Windows\system32\DRIVERS\parport.sys 13:08:08.0021 0412 Parport - ok 13:08:08.0066 0412 [ B9C2B89F08670E159F7181891E449CD9 ] partmgr C:\Windows\system32\drivers\partmgr.sys 13:08:08.0096 0412 partmgr - ok 13:08:08.0153 0412 [ 6C580025C81CAF3AE9E3617C22CAD00E ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys 13:08:08.0210 0412 Parvdm - ok 13:08:08.0247 0412 [ C6276AD11F4BB49B58AA1ED88537F14A ] PcaSvc C:\Windows\System32\pcasvc.dll 13:08:08.0307 0412 PcaSvc - ok 13:08:08.0360 0412 [ 941DC1D19E7E8620F40BBC206981EFDB ] pci C:\Windows\system32\drivers\pci.sys 13:08:08.0387 0412 pci - ok 13:08:08.0435 0412 [ 1636D43F10416AEB483BC6001097B26C ] pciide C:\Windows\system32\drivers\pciide.sys 13:08:08.0458 0412 pciide - ok 13:08:08.0504 0412 [ E6F3FB1B86AA519E7698AD05E58B04E5 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys 13:08:08.0530 0412 pcmcia - ok 13:08:08.0587 0412 [ 6349F6ED9C623B44B52EA3C63C831A92 ] PEAUTH C:\Windows\system32\drivers\peauth.sys 13:08:08.0786 0412 PEAUTH - ok 13:08:08.0920 0412 [ B1689DF169143F57053F795390C99DB3 ] pla C:\Windows\system32\pla.dll 13:08:09.0023 0412 pla - ok 13:08:09.0106 0412 [ C5E7F8A996EC0A82D508FD9064A5569E ] PlugPlay C:\Windows\system32\umpnpmgr.dll 13:08:09.0137 0412 PlugPlay - ok 13:08:09.0194 0412 [ 37E5E8FFBAD35605DAEEC3224EA0E465 ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll 13:08:09.0237 0412 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning 13:08:09.0237 0412 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic (1) 13:08:09.0276 0412 [ 0C8E8E61AD1EB0B250B846712C917506 ] PNRPAutoReg C:\Windows\system32\p2psvc.dll 13:08:09.0312 0412 PNRPAutoReg - ok 13:08:09.0352 0412 [ 0C8E8E61AD1EB0B250B846712C917506 ] PNRPsvc C:\Windows\system32\p2psvc.dll 13:08:09.0388 0412 PNRPsvc - ok 13:08:09.0432 0412 [ D0494460421A03CD5225CCA0059AA146 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 13:08:09.0524 0412 PolicyAgent - ok 13:08:09.0575 0412 [ ECFFFAEC0C1ECD8DBC77F39070EA1DB1 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 13:08:09.0638 0412 PptpMiniport - ok 13:08:09.0659 0412 [ 2027293619DD0F047C584CF2E7DF4FFD ] Processor C:\Windows\system32\drivers\processr.sys 13:08:09.0716 0412 Processor - ok 13:08:09.0756 0412 [ 0508FAA222D28835310B7BFCA7A77346 ] ProfSvc C:\Windows\system32\profsvc.dll 13:08:09.0805 0412 ProfSvc - ok 13:08:09.0852 0412 [ A3E186B4B935905B829219502557314E ] ProtectedStorage C:\Windows\system32\lsass.exe 13:08:09.0883 0412 ProtectedStorage - ok 13:08:09.0952 0412 [ 99514FAA8DF93D34B5589187DB3AA0BA ] PSched C:\Windows\system32\DRIVERS\pacer.sys 13:08:10.0021 0412 PSched - ok 13:08:10.0094 0412 [ 0A6DB55AFB7820C99AA1F3A1D270F4F6 ] ql2300 C:\Windows\system32\drivers\ql2300.sys 13:08:10.0182 0412 ql2300 - ok 13:08:10.0210 0412 [ 81A7E5C076E59995D54BC1ED3A16E60B ] ql40xx C:\Windows\system32\drivers\ql40xx.sys 13:08:10.0233 0412 ql40xx - ok 13:08:10.0297 0412 [ E9ECAE663F47E6CB43962D18AB18890F ] QWAVE C:\Windows\system32\qwave.dll 13:08:10.0361 0412 QWAVE - ok 13:08:10.0395 0412 [ 9F5E0E1926014D17486901C88ECA2DB7 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 13:08:10.0413 0412 QWAVEdrv - ok 13:08:10.0438 0412 [ 147D7F9C556D259924351FEB0DE606C3 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 13:08:10.0481 0412 RasAcd - ok 13:08:10.0544 0412 [ F6A452EB4CEADBB51C9E0EE6B3ECEF0F ] RasAuto C:\Windows\System32\rasauto.dll 13:08:10.0591 0412 RasAuto - ok 13:08:10.0665 0412 [ A214ADBAF4CB47DD2728859EF31F26B0 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 13:08:10.0708 0412 Rasl2tp - ok 13:08:10.0773 0412 [ 75D47445D70CA6F9F894B032FBC64FCF ] RasMan C:\Windows\System32\rasmans.dll 13:08:10.0832 0412 RasMan - ok 13:08:10.0887 0412 [ 509A98DD18AF4375E1FC40BC175F1DEF ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 13:08:10.0937 0412 RasPppoe - ok 13:08:10.0978 0412 [ 2005F4A1E05FA09389AC85840F0A9E4D ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 13:08:11.0058 0412 RasSstp - ok 13:08:11.0106 0412 [ B14C9D5B9ADD2F84F70570BBBFAA7935 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 13:08:11.0156 0412 rdbss - ok 13:08:11.0214 0412 [ 89E59BE9A564262A3FB6C4F4F1CD9899 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 13:08:11.0287 0412 RDPCDD - ok 13:08:11.0323 0412 [ 1A7E20EE05498B18A5ADB4D3D197D176 ] rdpdr C:\Windows\system32\drivers\rdpdr.sys 13:08:11.0557 0412 rdpdr - ok 13:08:11.0579 0412 [ 9D91FE5286F748862ECFFA05F8A0710C ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 13:08:11.0660 0412 RDPENCDD - ok 13:08:11.0736 0412 [ C127EBD5AFAB31524662C48DFCEB773A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 13:08:11.0828 0412 RDPWD - ok 13:08:11.0863 0412 [ BCDD6B4804D06B1F7EBF29E53A57ECE9 ] RemoteAccess C:\Windows\System32\mprdim.dll 13:08:11.0909 0412 RemoteAccess - ok 13:08:11.0969 0412 [ 9E6894EA18DAFF37B63E1005F83AE4AB ] RemoteRegistry C:\Windows\system32\regsvc.dll 13:08:12.0018 0412 RemoteRegistry - ok 13:08:12.0065 0412 [ 5123F83CBC4349D065534EEB6BBDC42B ] RpcLocator C:\Windows\system32\locator.exe 13:08:12.0124 0412 RpcLocator - ok 13:08:12.0155 0412 [ 3B5B4D53FEC14F7476CA29A20CC31AC9 ] RpcSs C:\Windows\system32\rpcss.dll 13:08:12.0205 0412 RpcSs - ok 13:08:12.0252 0412 [ 9C508F4074A39E8B4B31D27198146FAD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 13:08:12.0296 0412 rspndr - ok 13:08:12.0320 0412 [ A3E186B4B935905B829219502557314E ] SamSs C:\Windows\system32\lsass.exe 13:08:12.0339 0412 SamSs - ok 13:08:12.0413 0412 [ 3CE8F073A557E172B330109436984E30 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 13:08:12.0492 0412 sbp2port - ok 13:08:12.0552 0412 [ 77B7A11A0C3D78D3386398FBBEA1B632 ] SCardSvr C:\Windows\System32\SCardSvr.dll 13:08:12.0592 0412 SCardSvr - ok 13:08:12.0719 0412 [ 1A58069DB21D05EB2AB58EE5753EBE8D ] Schedule C:\Windows\system32\schedsvc.dll 13:08:12.0776 0412 Schedule - ok 13:08:12.0809 0412 [ 312EC3E37A0A1F2006534913E37B4423 ] SCPolicySvc C:\Windows\System32\certprop.dll 13:08:12.0837 0412 SCPolicySvc - ok 13:08:12.0906 0412 [ 716313D9F6B0529D03F726D5AAF6F191 ] SDRSVC C:\Windows\System32\SDRSVC.dll 13:08:12.0965 0412 SDRSVC - ok 13:08:13.0018 0412 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys 13:08:13.0121 0412 secdrv - ok 13:08:13.0183 0412 [ FD5199D4D8A521005E4B5EE7FE00FA9B ] seclogon C:\Windows\system32\seclogon.dll 13:08:13.0277 0412 seclogon - ok 13:08:13.0308 0412 [ A9BBAB5759771E523F55563D6CBE140F ] SENS C:\Windows\System32\sens.dll 13:08:13.0396 0412 SENS - ok 13:08:13.0470 0412 [ CE9EC966638EF0B10B864DDEDF62A099 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys 13:08:13.0513 0412 Serenum - ok 13:08:13.0581 0412 [ 6D663022DB3E7058907784AE14B69898 ] Serial C:\Windows\system32\DRIVERS\serial.sys 13:08:13.0645 0412 Serial - ok 13:08:13.0709 0412 [ 8AF3D28A879BF75DB53A0EE7A4289624 ] sermouse C:\Windows\system32\drivers\sermouse.sys 13:08:13.0763 0412 sermouse - ok 13:08:13.0889 0412 [ D2193326F729B163125610DBF3E17D57 ] SessionEnv C:\Windows\system32\sessenv.dll 13:08:14.0024 0412 SessionEnv - ok 13:08:14.0117 0412 [ 3EFA810BDCA87F6ECC24F9832243FE86 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 13:08:14.0186 0412 sffdisk - ok 13:08:14.0211 0412 [ E95D451F7EA3E583AEC75F3B3EE42DC5 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 13:08:14.0268 0412 sffp_mmc - ok 13:08:14.0294 0412 [ 3D0EA348784B7AC9EA9BD9F317980979 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 13:08:14.0377 0412 sffp_sd - ok 13:08:14.0413 0412 [ 46ED8E91793B2E6F848015445A0AC188 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys 13:08:14.0510 0412 sfloppy - ok 13:08:14.0569 0412 [ E1499BD0FF76B1B2FBBF1AF339D91165 ] SharedAccess C:\Windows\System32\ipnathlp.dll 13:08:14.0622 0412 SharedAccess - ok 13:08:14.0735 0412 [ C7230FBEE14437716701C15BE02C27B8 ] ShellHWDetection C:\Windows\System32\shsvcs.dll 13:08:14.0792 0412 ShellHWDetection - ok 13:08:14.0818 0412 [ FF0385DA6AD8AA85F45571C55E813C43 ] sisagp C:\Windows\system32\drivers\sisagp.sys 13:08:14.0838 0412 sisagp - ok 13:08:14.0880 0412 [ 43CB7AA756C7DB280D01DA9B676CFDE2 ] SiSRaid2 C:\Windows\system32\drivers\sisraid2.sys 13:08:14.0895 0412 SiSRaid2 - ok 13:08:14.0921 0412 [ A99C6C8B0BAA970D8AA59DDC50B57F94 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys 13:08:14.0953 0412 SiSRaid4 - ok 13:08:15.0098 0412 [ 862BB4CBC05D80C5B45BE430E5EF872F ] slsvc C:\Windows\system32\SLsvc.exe 13:08:15.0367 0412 slsvc - ok 13:08:15.0401 0412 [ 6EDC422215CD78AA8A9CDE6B30ABBD35 ] SLUINotify C:\Windows\system32\SLUINotify.dll 13:08:15.0442 0412 SLUINotify - ok 13:08:15.0494 0412 [ 7B75299A4D201D6A6533603D6914AB04 ] Smb C:\Windows\system32\DRIVERS\smb.sys 13:08:15.0542 0412 Smb - ok 13:08:15.0592 0412 [ 2A146A055B4401C16EE62D18B8E2A032 ] SNMPTRAP C:\Windows\System32\snmptrap.exe 13:08:15.0621 0412 SNMPTRAP - ok 13:08:15.0654 0412 [ 7AEBDEEF071FE28B0EEF2CDD69102BFF ] spldr C:\Windows\system32\drivers\spldr.sys 13:08:15.0684 0412 spldr - ok 13:08:15.0750 0412 [ 8554097E5136C3BF9F69FE578A1B35F4 ] Spooler C:\Windows\System32\spoolsv.exe 13:08:15.0806 0412 Spooler - ok 13:08:15.0869 0412 [ 41987F9FC0E61ADF54F581E15029AD91 ] srv C:\Windows\system32\DRIVERS\srv.sys 13:08:15.0948 0412 srv - ok 13:08:15.0985 0412 [ FF33AFF99564B1AA534F58868CBE41EF ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 13:08:16.0043 0412 srv2 - ok 13:08:16.0098 0412 [ 7605C0E1D01A08F3ECD743F38B834A44 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 13:08:16.0152 0412 srvnet - ok 13:08:16.0207 0412 [ 03D50B37234967433A5EA5BA72BC0B62 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 13:08:16.0282 0412 SSDPSRV - ok 13:08:16.0316 0412 [ 6F1A32E7B7B30F004D9A20AFADB14944 ] SstpSvc C:\Windows\system32\sstpsvc.dll 13:08:16.0344 0412 SstpSvc - ok 13:08:16.0540 0412 [ 5DE7D67E49B88F5F07F3E53C4B92A352 ] stisvc C:\Windows\System32\wiaservc.dll 13:08:16.0816 0412 stisvc - ok 13:08:16.0842 0412 [ 7BA58ECF0C0A9A69D44B3DCA62BECF56 ] swenum C:\Windows\system32\DRIVERS\swenum.sys 13:08:16.0879 0412 swenum - ok 13:08:17.0017 0412 [ F21FD248040681CCA1FB6C9A03AAA93D ] swprv C:\Windows\System32\swprv.dll 13:08:17.0238 0412 swprv - ok 13:08:17.0372 0412 [ 192AA3AC01DF071B541094F251DEED10 ] Symc8xx C:\Windows\system32\drivers\symc8xx.sys 13:08:17.0439 0412 Symc8xx - ok 13:08:17.0489 0412 [ 8C8EB8C76736EBAF3B13B633B2E64125 ] Sym_hi C:\Windows\system32\drivers\sym_hi.sys 13:08:17.0544 0412 Sym_hi - ok 13:08:17.0587 0412 [ 8072AF52B5FD103BBBA387A1E49F62CB ] Sym_u3 C:\Windows\system32\drivers\sym_u3.sys 13:08:17.0608 0412 Sym_u3 - ok 13:08:17.0730 0412 [ 180A8FFCDE4D579A4B2A98EB5C6A089A ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys 13:08:17.0825 0412 SynTP - ok 13:08:17.0987 0412 [ 9A51B04E9886AA4EE90093586B0BA88D ] SysMain C:\Windows\system32\sysmain.dll 13:08:18.0266 0412 SysMain - ok 13:08:18.0332 0412 [ 2DCA225EAE15F42C0933E998EE0231C3 ] TabletInputService C:\Windows\System32\TabSvc.dll 13:08:18.0386 0412 TabletInputService - ok 13:08:18.0455 0412 [ D7673E4B38CE21EE54C59EEEB65E2483 ] TapiSrv C:\Windows\System32\tapisrv.dll 13:08:18.0514 0412 TapiSrv - ok 13:08:18.0613 0412 [ C91729D2488619161A9052F10231D645 ] TaurusUsb C:\Windows\system32\DRIVERS\torususb.sys 13:08:18.0701 0412 TaurusUsb ( UnsignedFile.Multi.Generic ) - warning 13:08:18.0701 0412 TaurusUsb - detected UnsignedFile.Multi.Generic (1) 13:08:18.0766 0412 [ CB05822CD9CC6C688168E113C603DBE7 ] TBS C:\Windows\System32\tbssvc.dll 13:08:18.0820 0412 TBS - ok 13:08:19.0229 0412 [ 3535CD93F944C00F098E73E12EE7FEB6 ] Tcpip C:\Windows\system32\drivers\tcpip.sys 13:08:19.0425 0412 Tcpip - ok 13:08:19.0501 0412 [ 3535CD93F944C00F098E73E12EE7FEB6 ] Tcpip6 C:\Windows\system32\DRIVERS\tcpip.sys 13:08:19.0586 0412 Tcpip6 - ok 13:08:19.0643 0412 [ CD21572F83F7EC6E2C20C465967BEDD9 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 13:08:19.0698 0412 tcpipreg - ok 13:08:19.0726 0412 [ 5DCF5E267BE67A1AE926F2DF77FBCC56 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 13:08:19.0781 0412 TDPIPE - ok 13:08:19.0805 0412 [ 389C63E32B3CEFED425B61ED92D3F021 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 13:08:19.0844 0412 TDTCP - ok 13:08:19.0888 0412 [ 76B06EB8A01FC8624D699E7045303E54 ] tdx C:\Windows\system32\DRIVERS\tdx.sys 13:08:19.0914 0412 tdx - ok 13:08:19.0939 0412 [ 3CAD38910468EAB9A6479E2F01DB43C7 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys 13:08:19.0975 0412 TermDD - ok 13:08:20.0115 0412 [ BB95DA09BEF6E7A131BFF3BA5032090D ] TermService C:\Windows\System32\termsrv.dll 13:08:20.0239 0412 TermService - ok 13:08:20.0425 0412 [ 492CD96EFA28DCCF0497523C161884E8 ] TestHandler C:\Program Files\Fujitsu Siemens Computers\SystemDiagnostics\OnlineDiagnostic\TestManager\TestHandler.exe 13:08:20.0454 0412 TestHandler - ok 13:08:20.0505 0412 [ C7230FBEE14437716701C15BE02C27B8 ] Themes C:\Windows\system32\shsvcs.dll 13:08:20.0533 0412 Themes - ok 13:08:20.0561 0412 [ 1076FFCFFAAE8385FD62DFCB25AC4708 ] THREADORDER C:\Windows\system32\mmcss.dll 13:08:20.0611 0412 THREADORDER - ok 13:08:20.0669 0412 [ EC74E77D0EB004BD3A809B5F8FB8C2CE ] TrkWks C:\Windows\System32\trkwks.dll 13:08:20.0751 0412 TrkWks - ok 13:08:20.0824 0412 [ 97D9D6A04E3AD9B6C626B9931DB78DBA ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 13:08:20.0867 0412 TrustedInstaller - ok 13:08:21.0003 0412 [ DCF0F056A2E4F52287264F5AB29CF206 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 13:08:21.0094 0412 tssecsrv - ok 13:08:21.0172 0412 [ CAECC0120AC49E3D2F758B9169872D38 ] tunmp C:\Windows\system32\DRIVERS\tunmp.sys 13:08:21.0222 0412 tunmp - ok 13:08:21.0282 0412 [ 300DB877AC094FEAB0BE7688C3454A9C ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 13:08:21.0339 0412 tunnel - ok 13:08:21.0364 0412 [ 7D33C4DB2CE363C8518D2DFCF533941F ] uagp35 C:\Windows\system32\drivers\uagp35.sys 13:08:21.0393 0412 uagp35 - ok 13:08:21.0456 0412 [ D9728AF68C4C7693CB100B8441CBDEC6 ] udfs C:\Windows\system32\DRIVERS\udfs.sys 13:08:21.0543 0412 udfs - ok 13:08:21.0601 0412 [ ECEF404F62863755951E09C802C94AD5 ] UI0Detect C:\Windows\system32\UI0Detect.exe 13:08:21.0669 0412 UI0Detect - ok 13:08:21.0686 0412 [ 6FF5EBC382441E8C8555750C17E17152 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 13:08:21.0714 0412 uliagpkx - ok 13:08:21.0745 0412 [ 9224BB254F591DE4CA8D572A5F0D635C ] uliahci C:\Windows\system32\drivers\uliahci.sys 13:08:21.0769 0412 uliahci - ok 13:08:21.0809 0412 [ 8514D0E5CD0534467C5FC61BE94A569F ] UlSata C:\Windows\system32\drivers\ulsata.sys 13:08:21.0842 0412 UlSata - ok 13:08:21.0870 0412 [ 38C3C6E62B157A6BC46594FADA45C62B ] ulsata2 C:\Windows\system32\drivers\ulsata2.sys 13:08:21.0898 0412 ulsata2 - ok 13:08:21.0926 0412 [ 32CFF9F809AE9AED85464492BF3E32D2 ] umbus C:\Windows\system32\DRIVERS\umbus.sys 13:08:21.0973 0412 umbus - ok 13:08:22.0014 0412 [ 68308183F4AE0BE7BF8ECD07CB297999 ] upnphost C:\Windows\System32\upnphost.dll 13:08:22.0102 0412 upnphost - ok 13:08:22.0191 0412 [ CAF811AE4C147FFCD5B51750C7F09142 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys 13:08:22.0250 0412 usbccgp - ok 13:08:22.0318 0412 [ E9476E6C486E76BC4898074768FB7131 ] usbcir C:\Windows\system32\drivers\usbcir.sys 13:08:22.0392 0412 usbcir - ok 13:08:22.0504 0412 [ 79E96C23A97CE7B8F14D310DA2DB0C9B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys 13:08:22.0730 0412 usbehci - ok 13:08:22.0760 0412 [ 4673BBCB006AF60E7ABDDBE7A130BA42 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 13:08:22.0854 0412 usbhub - ok 13:08:22.0916 0412 [ CE697FEE0D479290D89BEC80DFE793B7 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys 13:08:22.0995 0412 usbohci - ok 13:08:23.0073 0412 [ E75C4B5269091D15A2E7DC0B6D35F2F5 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys 13:08:23.0169 0412 usbprint - ok 13:08:23.0241 0412 [ A508C9BD8724980512136B039BBA65E9 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys 13:08:23.0294 0412 usbscan - ok 13:08:23.0326 0412 [ BE3DA31C191BC222D9AD503C5224F2AD ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 13:08:23.0383 0412 USBSTOR - ok 13:08:23.0430 0412 [ 587809974E43CFAD0CA0EF6E1D940CA9 ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys 13:08:23.0482 0412 usbuhci - ok 13:08:23.0510 0412 [ 1509E705F3AC1D474C92454A5C2DD81F ] UxSms C:\Windows\System32\uxsms.dll 13:08:23.0553 0412 UxSms - ok 13:08:23.0598 0412 [ CD88D1B7776DC17A119049742EC07EB4 ] vds C:\Windows\System32\vds.exe 13:08:23.0669 0412 vds - ok 13:08:23.0732 0412 [ 87B06E1F30B749A114F74622D013F8D4 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 13:08:23.0803 0412 vga - ok 13:08:23.0842 0412 [ 2E93AC0A1D8C79D019DB6C51F036636C ] VgaSave C:\Windows\System32\drivers\vga.sys 13:08:23.0900 0412 VgaSave - ok 13:08:23.0925 0412 [ D3314D5DB878F62C6B51595F5AD902D9 ] viaagp C:\Windows\system32\drivers\viaagp.sys 13:08:24.0018 0412 viaagp - ok 13:08:24.0078 0412 [ C4F3A691B5BAD343E6249BD8C2D45DEE ] ViaC7 C:\Windows\system32\drivers\viac7.sys 13:08:24.0146 0412 ViaC7 - ok 13:08:24.0170 0412 [ AADF5587A4063F52C2C3FED7887426FC ] viaide C:\Windows\system32\drivers\viaide.sys 13:08:24.0219 0412 viaide - ok 13:08:24.0295 0412 [ 69503668AC66C77C6CD7AF86FBDF8C43 ] volmgr C:\Windows\system32\drivers\volmgr.sys 13:08:24.0330 0412 volmgr - ok 13:08:24.0438 0412 [ 23E41B834759917BFD6B9A0D625D0C28 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 13:08:24.0542 0412 volmgrx - ok 13:08:24.0618 0412 [ 786DB5771F05EF300390399F626BF30A ] volsnap C:\Windows\system32\drivers\volsnap.sys 13:08:24.0695 0412 volsnap - ok 13:08:24.0720 0412 [ 587253E09325E6BF226B299774B728A9 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys 13:08:24.0757 0412 vsmraid - ok 13:08:24.0929 0412 [ DB3D19F850C6EB32BDCB9BC0836ACDDB ] VSS C:\Windows\system32\vssvc.exe 13:08:25.0253 0412 VSS - ok 13:08:25.0296 0412 [ 96EA68B9EB310A69C25EBB0282B2B9DE ] W32Time C:\Windows\system32\w32time.dll 13:08:25.0353 0412 W32Time - ok 13:08:25.0414 0412 [ 48DFEE8F1AF7C8235D4E626F0C4FE031 ] WacomPen C:\Windows\system32\drivers\wacompen.sys 13:08:25.0530 0412 WacomPen - ok 13:08:25.0578 0412 [ 55201897378CCA7AF8B5EFD874374A26 ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys 13:08:25.0669 0412 Wanarp - ok 13:08:25.0682 0412 [ 55201897378CCA7AF8B5EFD874374A26 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 13:08:25.0717 0412 Wanarpv6 - ok 13:08:25.0769 0412 [ A3CD60FD826381B49F03832590E069AF ] wcncsvc C:\Windows\System32\wcncsvc.dll 13:08:25.0910 0412 wcncsvc - ok 13:08:25.0965 0412 [ 11BCB7AFCDD7AADACB5746F544D3A9C7 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 13:08:26.0015 0412 WcsPlugInService - ok 13:08:26.0099 0412 [ 78FE9542363F297B18C027B2D7E7C07F ] Wd C:\Windows\system32\drivers\wd.sys 13:08:26.0160 0412 Wd - ok 13:08:26.0304 0412 [ A840213F1ACDCC175B4D1D5AAEAC0D7A ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 13:08:26.0410 0412 Wdf01000 - ok 13:08:26.0458 0412 [ ABFC76B48BB6C96E3338D8943C5D93B5 ] WdiServiceHost C:\Windows\system32\wdi.dll 13:08:26.0516 0412 WdiServiceHost - ok 13:08:26.0523 0412 [ ABFC76B48BB6C96E3338D8943C5D93B5 ] WdiSystemHost C:\Windows\system32\wdi.dll 13:08:26.0558 0412 WdiSystemHost - ok 13:08:26.0645 0412 [ 04C37D8107320312FBAE09926103D5E2 ] WebClient C:\Windows\System32\webclnt.dll 13:08:26.0815 0412 WebClient - ok 13:08:26.0940 0412 [ AE3736E7E8892241C23E4EBBB7453B60 ] Wecsvc C:\Windows\system32\wecsvc.dll 13:08:27.0056 0412 Wecsvc - ok 13:08:27.0168 0412 [ 670FF720071ED741206D69BD995EA453 ] wercplsupport C:\Windows\System32\wercplsupport.dll 13:08:27.0211 0412 wercplsupport - ok 13:08:27.0288 0412 [ 32B88481D3B326DA6DEB07B1D03481E7 ] WerSvc C:\Windows\System32\WerSvc.dll 13:08:27.0344 0412 WerSvc - ok 13:08:27.0425 0412 [ 4575AA12561C5648483403541D0D7F2B ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll 13:08:27.0534 0412 WinDefend - ok 13:08:27.0543 0412 WinHttpAutoProxySvc - ok 13:08:27.0660 0412 [ 6B2A1D0E80110E3D04E6863C6E62FD8A ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 13:08:27.0721 0412 Winmgmt - ok 13:08:27.0929 0412 [ 7CFE68BDC065E55AA5E8421607037511 ] WinRM C:\Windows\system32\WsmSvc.dll 13:08:28.0333 0412 WinRM - ok 13:08:28.0457 0412 [ C008405E4FEEB069E30DA1D823910234 ] Wlansvc C:\Windows\System32\wlansvc.dll 13:08:28.0544 0412 Wlansvc - ok 13:08:28.0589 0412 [ 6067ACEF367E79914AF628FA1E9B5330 ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe 13:08:28.0614 0412 wlcrasvc - ok 13:08:29.0140 0412 [ 0A70F4022EC2E14C159EFC4F69AA2477 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE 13:08:29.0289 0412 wlidsvc - ok 13:08:29.0346 0412 [ 2E7255D172DF0B8283CDFB7B433B864E ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys 13:08:29.0391 0412 WmiAcpi - ok 13:08:29.0472 0412 [ 43BE3875207DCB62A85C8C49970B66CC ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 13:08:29.0522 0412 wmiApSrv - ok 13:08:29.0712 0412 [ 3978704576A121A9204F8CC49A301A9B ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe 13:08:29.0802 0412 WMPNetworkSvc - ok 13:08:29.0837 0412 [ CFC5A04558F5070CEE3E3A7809F3FF52 ] WPCSvc C:\Windows\System32\wpcsvc.dll 13:08:29.0920 0412 WPCSvc - ok 13:08:29.0955 0412 [ 801FBDB89D472B3C467EB112A0FC9246 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 13:08:30.0016 0412 WPDBusEnum - ok 13:08:30.0088 0412 [ DE9D36F91A4DF3D911626643DEBF11EA ] WpdUsb C:\Windows\system32\DRIVERS\wpdusb.sys 13:08:30.0118 0412 WpdUsb - ok 13:08:30.0519 0412 [ DCF3E3EDF5109EE8BC02FE6E1F045795 ] WPFFontCache_v0400 C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe 13:08:30.0590 0412 WPFFontCache_v0400 - ok 13:08:30.0629 0412 [ E3A3CB253C0EC2494D4A61F5E43A389C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 13:08:30.0684 0412 ws2ifsl - ok 13:08:30.0755 0412 [ 1CA6C40261DDC0425987980D0CD2AAAB ] wscsvc C:\Windows\System32\wscsvc.dll 13:08:30.0798 0412 wscsvc - ok 13:08:30.0856 0412 [ 4422AC5ED8D4C2F0DB63E71D4C069DD7 ] WSDPrintDevice C:\Windows\system32\DRIVERS\WSDPrint.sys 13:08:30.0900 0412 WSDPrintDevice - ok 13:08:30.0910 0412 WSearch - ok 13:08:31.0047 0412 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll 13:08:31.0239 0412 wuauserv - ok 13:08:31.0295 0412 [ 06E6F32C8D0A3F66D956F57B43A2E070 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 13:08:31.0353 0412 WudfPf - ok 13:08:31.0377 0412 [ 867C301E8B790040AE9CF6486E8041DF ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 13:08:31.0411 0412 WUDFRd - ok 13:08:31.0444 0412 [ FE47B7BC8EA320C2D9B5E5BF6E303765 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 13:08:31.0560 0412 wudfsvc - ok 13:08:31.0596 0412 ================ Scan global =============================== 13:08:31.0625 0412 [ F31EEBC1A1C81FD04005489CC3DCDFE7 ] C:\Windows\system32\basesrv.dll 13:08:31.0728 0412 [ D2293B069E4B63DC17B2F08D45E71124 ] C:\Windows\system32\winsrv.dll 13:08:31.0764 0412 [ D2293B069E4B63DC17B2F08D45E71124 ] C:\Windows\system32\winsrv.dll 13:08:31.0845 0412 [ D4E6D91C1349B7BFB3599A6ADA56851B ] C:\Windows\system32\services.exe 13:08:31.0941 0412 [Global] - ok 13:08:31.0942 0412 ================ Scan MBR ================================== 13:08:31.0963 0412 [ 5C616939100B85E558DA92B899A0FC36 ] \Device\Harddisk0\DR0 13:08:32.0688 0412 \Device\Harddisk0\DR0 - ok 13:08:32.0689 0412 ================ Scan VBR ================================== 13:08:32.0840 0412 [ 9AB519E96CAE7EAF54CFF8997938869F ] \Device\Harddisk0\DR0\Partition1 13:08:32.0843 0412 \Device\Harddisk0\DR0\Partition1 - ok 13:08:32.0870 0412 [ C3877B79F6A5C6FA34B432A3CA5DEEFF ] \Device\Harddisk0\DR0\Partition2 13:08:32.0874 0412 \Device\Harddisk0\DR0\Partition2 - ok 13:08:32.0874 0412 ============================================================ 13:08:32.0874 0412 Scan finished 13:08:32.0874 0412 ============================================================ 13:08:32.0900 0524 Detected object count: 7 13:08:32.0900 0524 Actual detected object count: 7