01:40:19.0671 0x05f8 TDSS rootkit removing tool 3.0.0.42 Dec 12 2014 00:35:20 01:40:31.0421 0x05f8 ============================================================ 01:40:31.0421 0x05f8 Current date / time: 2015/01/06 01:40:31.0421 01:40:31.0421 0x05f8 SystemInfo: 01:40:31.0421 0x05f8 01:40:31.0421 0x05f8 OS Version: 5.1.2600 ServicePack: 2.0 01:40:31.0421 0x05f8 Product type: Workstation 01:40:31.0421 0x05f8 ComputerName: JR-4D8A689B2268 01:40:31.0421 0x05f8 UserName: Jarek 01:40:31.0421 0x05f8 Windows directory: C:\WINDOWS 01:40:31.0421 0x05f8 System windows directory: C:\WINDOWS 01:40:31.0421 0x05f8 Processor architecture: Intel x86 01:40:31.0421 0x05f8 Number of processors: 2 01:40:31.0421 0x05f8 Page size: 0x1000 01:40:31.0421 0x05f8 Boot type: Safe boot with network 01:40:31.0421 0x05f8 ============================================================ 01:40:35.0875 0x05f8 KLMD registered as C:\WINDOWS\system32\drivers\44008613.sys 01:40:35.0968 0x05f8 System UUID: {A260E318-51C7-8676-505F-730F14F959E2} 01:40:36.0312 0x05f8 Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 ( 232.89 Gb ), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054 01:40:36.0312 0x05f8 ============================================================ 01:40:36.0312 0x05f8 \Device\Harddisk0\DR0: 01:40:36.0312 0x05f8 MBR partitions: 01:40:36.0312 0x05f8 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0xC34F28D 01:40:36.0328 0x05f8 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xC34F30B, BlocksNum 0x10E713B5 01:40:36.0328 0x05f8 ============================================================ 01:40:36.0390 0x05f8 C: <-> \Device\Harddisk0\DR0\Partition1 01:40:36.0453 0x05f8 D: <-> \Device\Harddisk0\DR0\Partition2 01:40:36.0546 0x05f8 ============================================================ 01:40:36.0546 0x05f8 Initialize success 01:40:36.0546 0x05f8 ============================================================ 01:44:29.0203 0x0328 ============================================================ 01:44:29.0203 0x0328 Scan started 01:44:29.0203 0x0328 Mode: Manual; 01:44:29.0203 0x0328 ============================================================ 01:44:29.0203 0x0328 KSN ping started 01:44:43.0640 0x0328 KSN ping finished: true 01:44:44.0421 0x0328 ================ Scan system memory ======================== 01:44:44.0421 0x0328 System memory - ok 01:44:44.0421 0x0328 ================ Scan services ============================= 01:44:44.0750 0x0328 Abiosdsk - ok 01:44:44.0765 0x0328 abp480n5 - ok 01:44:44.0843 0x0328 [ A966410ECF83B81F3B0B8E07A71957D4, 07B4E869CF9E88F75C4CF51EB1B7C55568DD967BEB7C67F8A582135C93895421 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys 01:44:44.0843 0x0328 ACPI - ok 01:44:44.0953 0x0328 [ 66A42B7DB194E24B973BBCCE840A0F3F, 2550F8E5B5ACD88E4191656194E46FB8EC8CCC65AFD4B5E6D5CED9FE297B573F ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys 01:44:44.0953 0x0328 ACPIEC - ok 01:44:44.0968 0x0328 adpu160m - ok 01:44:45.0031 0x0328 [ 841F385C6CFAF66B58FBD898722BB4F0, 0DA17CCA27DF5C7245959249162A5393B2E36B7C9A3A3525AE1371DE6AE698A3 ] aec C:\WINDOWS\system32\drivers\aec.sys 01:44:45.0031 0x0328 aec - ok 01:44:45.0062 0x0328 [ 5AC495F4CB807B2B98AD2AD591E6D92E, F645FAD628EC81C3D2555862BEE8DF3975FD9EAE326885528E773B2F148D70FB ] AFD C:\WINDOWS\System32\drivers\afd.sys 01:44:45.0062 0x0328 AFD - ok 01:44:45.0078 0x0328 Aha154x - ok 01:44:45.0109 0x0328 aic78u2 - ok 01:44:45.0125 0x0328 aic78xx - ok 01:44:45.0156 0x0328 [ F79B5C5B0A77A134C5671992335D1409, C98D395F7C3B2AEF21EAB08E241F9C85C8EA549BA4F13BB3077D14C942E97271 ] Alerter C:\WINDOWS\system32\alrsvc.dll 01:44:45.0171 0x0328 Alerter - ok 01:44:45.0187 0x0328 [ 9D12991BC6B6C5C0FBAB4C06E7073DF1, 5BD55117A8DDACDF954AF6E0DA3371F3BBAC561E041B7AFCEE161794D361E9C6 ] ALG C:\WINDOWS\System32\alg.exe 01:44:45.0203 0x0328 ALG - ok 01:44:45.0218 0x0328 AliIde - ok 01:44:45.0234 0x0328 amsint - ok 01:44:45.0281 0x0328 [ 8D60B308D061DA209CC271D9B480468C, 337BE1FF9B2147990C60995B4E38BD883097A31407E69B7E3FF5EA6417BCFFFD ] AppMgmt C:\WINDOWS\System32\appmgmts.dll 01:44:45.0281 0x0328 AppMgmt - ok 01:44:45.0296 0x0328 asc - ok 01:44:45.0328 0x0328 asc3350p - ok 01:44:45.0343 0x0328 asc3550 - ok 01:44:45.0375 0x0328 ASInsHelp - ok 01:44:45.0421 0x0328 [ 663F2FB92608073824EE3106886120F3, 41765151DF57125286B398CC107FF8007972F4653527F876D133DAC1548865D6 ] AsIO C:\WINDOWS\system32\drivers\AsIO.sys 01:44:45.0421 0x0328 AsIO - ok 01:44:45.0796 0x0328 [ 776ACEFA0CA9DF0FAA51A5FB2F435705, 72DF7ED6B085BC468994F5B3189506FD726A9A17A9C42ACA1E420D787691361D ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe 01:44:45.0796 0x0328 aspnet_state - ok 01:44:45.0828 0x0328 [ D320732BCF5FF856120BD06855C66867, E7334647B4BA712C519B29733055C7F8D9CEBB0034856C717CF32EBFE1AF329C ] asusgsb C:\WINDOWS\system32\drivers\asusgsb.sys 01:44:45.0828 0x0328 asusgsb - ok 01:44:45.0859 0x0328 [ 02000ABF34AF4C218C35D257024807D6, FDE21F7FCB198A44A6F2BCAF5EB11C9D90A094B4A2F8C307244A7655848954DA ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys 01:44:45.0859 0x0328 AsyncMac - ok 01:44:45.0890 0x0328 [ CDFE4411A69C224BD1D11B2DA92DAC51, 0E6B23A80F171550575BEBC56F7500CD87A5CF03B2B9FDC49BC3DE96282CD69D ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys 01:44:45.0890 0x0328 atapi - ok 01:44:45.0937 0x0328 [ 2610034ECD11A675ED2E2601C87961AF, FFDFBFA7658E97BCEB9E814E22C15225D1F3E36B516EC64A77B5E06B90E1EBA5 ] AtcL002 C:\WINDOWS\system32\DRIVERS\l251x86.sys 01:44:45.0937 0x0328 AtcL002 - ok 01:44:45.0968 0x0328 Atdisk - ok 01:44:46.0015 0x0328 [ 3C4B9850A2631C2263507400D029057B, A3DFF043B92C2F8C533BA609FB9FB20CF132E9D516449877CC2EDD75F1D6BC5C ] atksgt C:\WINDOWS\system32\DRIVERS\atksgt.sys 01:44:46.0031 0x0328 atksgt - ok 01:44:46.0046 0x0328 [ EC88DA854AB7D7752EC8BE11A741BB7F, 91FAF224CB4B44608C85CC25C3A82A3EC83F379D14A119A60A75505A30043255 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys 01:44:46.0046 0x0328 Atmarpc - ok 01:44:46.0078 0x0328 [ 18BFF5EBA35F2562C5AA03EB9C6BA29E, 08AF1739916F8B4393F9D64C9D99D56946830437C3AE743DEC4A9021B59B34F6 ] AudioSrv C:\WINDOWS\System32\audiosrv.dll 01:44:46.0078 0x0328 AudioSrv - ok 01:44:46.0125 0x0328 [ D9F724AA26C010A217C97606B160ED68, 329B5118F2409731D06FDAE85B6ADD64A048292801BCB3546651CEB303111695 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys 01:44:46.0125 0x0328 audstub - ok 01:44:46.0187 0x0328 awdw3w0e - ok 01:44:46.0250 0x0328 [ DA1F27D85E0D1525F6621372E7B685E9, 5A81A46A3BDD19DAFC6C87D277267A5D44F3A1B5302F2CC1111D84B7BAD5610D ] Beep C:\WINDOWS\system32\drivers\Beep.sys 01:44:46.0250 0x0328 Beep - ok 01:44:46.0281 0x0328 [ A6BFD910074B02C8794FC65F39CC6B28, 0D22B3900ACEF72406BC17674CBB2EFB80D9756406438E3AC91884EF0864F016 ] BITS C:\WINDOWS\system32\qmgr.dll 01:44:46.0296 0x0328 BITS - ok 01:44:46.0328 0x0328 [ 210830D2497FEF78694076179AF8C795, FE9EFA6B02254CA56AAD7D6028534CC23A7F1FF588E3CA48DF3EA71CD0C5839C ] Browser C:\WINDOWS\System32\browser.dll 01:44:46.0328 0x0328 Browser - ok 01:44:46.0359 0x0328 [ 90A673FC8E12A79AFBED2576F6A7AAF9, BDE7858A3457DB979FEDD8577FA6321BF72848E4A7BF9F173C78A6A10CBB3EBE ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys 01:44:46.0359 0x0328 cbidf2k - ok 01:44:46.0406 0x0328 [ 6163ED60B684BAB19D3352AB22FC48B2, 5A7ED636D8B2178EA21FA986CC9168DEF258AA4FFB9DCD792A81A1D615AC5D5E ] CCDECODE C:\WINDOWS\system32\DRIVERS\CCDECODE.sys 01:44:46.0406 0x0328 CCDECODE - ok 01:44:46.0421 0x0328 cd20xrnt - ok 01:44:46.0453 0x0328 [ C1B486A7658353D33A10CC15211A873B, AA4DD9E7AAE5AAB1146B360B17001F975D2F29A1281CF7B13E7136480410F347 ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys 01:44:46.0453 0x0328 Cdaudio - ok 01:44:46.0484 0x0328 [ CD7D5152DF32B47F4E36F710B35AAE02, 7382890CC1B27FC66C3E94E064562BBD87B3C75577CB0FD10860B8E2CE07D12E ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys 01:44:46.0484 0x0328 Cdfs - ok 01:44:46.0500 0x0328 [ AF9C19B3100FE010496B1A27181FBF72, 64E9E4461F631EED2B2A1FC80DCC9C31DCECB5738289D322E6A6428C840DC621 ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys 01:44:46.0515 0x0328 Cdrom - ok 01:44:46.0531 0x0328 Changer - ok 01:44:46.0578 0x0328 Chl27 - ok 01:44:46.0625 0x0328 [ B4E0A9B9064AA79AE188C0D953543520, 978F868E4BCA162E80D583A63973B2C9FE11C8A8DF1357A7DE1798A238ABD1DD ] CiSvc C:\WINDOWS\system32\cisvc.exe 01:44:46.0625 0x0328 CiSvc - ok 01:44:46.0640 0x0328 [ 1B11121083C32EA9A55ABE547A23FF71, 2880FEC954DF9498D300DE1ECCE4ADAFCCA8051397AF1D7203F28A90B423182E ] ClipSrv C:\WINDOWS\system32\clipsrv.exe 01:44:46.0656 0x0328 ClipSrv - ok 01:44:46.0734 0x0328 [ D87ACAED61E417BBA546CED5E7E36D9C, 14AC6034A5BC0FB2A1AFDAD42BEF4DE641556E54AD30D0C46765660A4BE55462 ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 01:44:46.0734 0x0328 clr_optimization_v2.0.50727_32 - ok 01:44:46.0812 0x0328 [ C5A75EB48E2344ABDC162BDA79E16841, 6070A8AAFD38FBC6A68A2B10C20117612354DF21B4492D90CA522BFB6870D726 ] clr_optimization_v4.0.30319_32 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 01:44:46.0812 0x0328 clr_optimization_v4.0.30319_32 - ok 01:44:46.0828 0x0328 CmdIde - ok 01:44:46.0859 0x0328 COMSysApp - ok 01:44:46.0906 0x0328 Cpqarray - ok 01:44:47.0078 0x0328 [ 799D1C3474DD49EE02DDCE7E4960154A, 78EADBEC05D67C6B048D91CB9E9E8AE3488F0A10B50A39D0B9A4EE369FC24F26 ] CPUCooLServer C:\Program Files\Overclocking\CPUCooL\CooLSrv.exe 01:44:47.0078 0x0328 CPUCooLServer - ok 01:44:47.0140 0x0328 [ 097A0A4899B759A4F032BD464963B4BE, 648EC619562FFD1005063D7622991F6A09A09BFC637B3B492347936E03C25DA9 ] cpuz132 C:\WINDOWS\system32\drivers\cpuz132_x32.sys 01:44:47.0140 0x0328 cpuz132 - ok 01:44:47.0171 0x0328 [ 91723CD7C96C5854149F9CAE820A90DD, 31B47EE2C33ACD3C8514DAE0D058FD40AF95245C73502035B803FE088A7DA20C ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll 01:44:47.0171 0x0328 CryptSvc - ok 01:44:47.0187 0x0328 dac2w2k - ok 01:44:47.0218 0x0328 dac960nt - ok 01:44:47.0265 0x0328 [ 346E5B19FC986FE7185A0C2C43593722, 1C9C76584FBE08032B55B0B15A75FF58CE4D37C25AED479D29546281A5BDC5FC ] DcomLaunch C:\WINDOWS\system32\rpcss.dll 01:44:47.0281 0x0328 DcomLaunch - ok 01:45:07.0406 0x0328 ddxgb - ok 01:45:07.0718 0x0328 [ E08557F41650B505571D50C9247A1E03, 2A4764BBD512DADF6BA75342304CE4D0610B88950782C48C30A1B75C5AAC0513 ] DefragFS C:\WINDOWS\system32\drivers\DefragFS.sys 01:45:07.0718 0x0328 DefragFS - ok 01:45:07.0765 0x0328 [ 94B49F2D487A7D4A79B3E96B6D5685B0, 78B5AB7D24F1B2088869C393E665CB0088918639909C795B78BB9FADAEDFC046 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll 01:45:07.0765 0x0328 Dhcp - ok 01:45:07.0781 0x0328 [ 00CA44E4534865F8A3B64F7C0984BFF0, 3FD73CCD9892F6CFEE776CB384C2E35FA15F4101D308A67E1358F85299501E3D ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys 01:45:07.0781 0x0328 Disk - ok 01:45:07.0812 0x0328 dmadmin - ok 01:45:07.0890 0x0328 [ 3B809FFAD55DCEBDB156D5CA1BD3DA65, C1C8740517740F0A7919C33A4CF7CAAAD9E75DFB7179B9C9C2348E6E23A539EF ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys 01:45:07.0906 0x0328 dmboot - ok 01:45:07.0937 0x0328 [ 27725B6501201C3080BA73048BCE389A, 05CBD9DE50679FED3789A6617AFAC673D7D20D3AAD958F20C37B24A1CD3F34FB ] dmio C:\WINDOWS\system32\drivers\dmio.sys 01:45:07.0937 0x0328 dmio - ok 01:45:07.0968 0x0328 [ E9317282A63CA4D188C0DF5E09C6AC5F, D41E002F555FE9015EF620975255F58BB79198CA1FF0E09EC950CB450FF77CF7 ] dmload C:\WINDOWS\system32\drivers\dmload.sys 01:45:07.0968 0x0328 dmload - ok 01:45:08.0000 0x0328 [ 4ADBB7593EC0115F7622C335B427C3DA, DD8031F144528829B531B1060AE1C74B1E5B4092869120FE3969B3F26673CC66 ] dmserver C:\WINDOWS\System32\dmserver.dll 01:45:08.0000 0x0328 dmserver - ok 01:45:08.0031 0x0328 [ A6F881284AC1150E37D9AE47FF601267, 6C07654CF21637E527FC727EB50F4138BF0EFF0680000AC94001063B436389DB ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys 01:45:08.0031 0x0328 DMusic - ok 01:45:08.0046 0x0328 [ F61C204EBCAA1D6B5FB5DFE7034741F3, 8C095B717C93F95CE8E965382ABB3CB1555D53AC753C7F8E313C2E8D41E70237 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll 01:45:08.0046 0x0328 Dnscache - ok 01:45:08.0062 0x0328 dpti2o - ok 01:45:08.0109 0x0328 [ 1ED4DBBAE9F5D558DBBA4CC450E3EB2E, B941AB5D9D504486083E0D1539B1A96E27721C9EFD7A67CA1DB7258B0D33AB78 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys 01:45:08.0109 0x0328 drmkaud - ok 01:45:08.0156 0x0328 [ 0C51F1D7A7501FC948D35AE0FDE764A5, 18AD67B2E5BDED5C322B4649CF51F5DAC0BB89F342A2FE7BE1D43A942F135CCD ] eamon C:\WINDOWS\system32\DRIVERS\eamon.sys 01:45:08.0171 0x0328 eamon - ok 01:45:08.0250 0x0328 [ C79916F203E1A2CBBE99F22D6E5D21DA, 84749E7067927AD437D38BEFEA12B40C3E849216F26338F707694918206C4C2A ] ehdrv C:\WINDOWS\system32\DRIVERS\ehdrv.sys 01:45:08.0250 0x0328 ehdrv - ok 01:45:08.0281 0x0328 [ 0DAF3544804650526751C478AECCCE63, C06F56A936B8A9E1392484B6AED05685459AC99182133E6BDA20EC9360E9E0FE ] EIO C:\WINDOWS\system32\drivers\EIO.sys 01:45:08.0281 0x0328 EIO - ok 01:45:08.0468 0x0328 [ F1DB56A7C59278DC68DE7DBFE9F6C73B, B3E07DCF52D227BD4C22EDE5B895BC338A8F1EA4C86C1358EAC065454D80E76C ] ekrn C:\Program Files\ESET\ekrn.exe 01:45:08.0500 0x0328 ekrn - ok 01:45:08.0546 0x0328 [ FD9FC82F134B1C91004FFC76A5AE494B, 76CF65ED91D4719CD5620479E492259224715FC67E3CD9AA11E5DD0D7FB65A45 ] ENTECH C:\WINDOWS\system32\DRIVERS\ENTECH.sys 01:45:08.0546 0x0328 ENTECH - ok 01:45:08.0578 0x0328 [ 8727A2182BBCD588E255C60C1AA7B357, DD6FA861FD2B8C58DA07CB815CD04AA1381924E2EA5613AC18B7FF3F628B1711 ] epfwtdir C:\WINDOWS\system32\DRIVERS\epfwtdir.sys 01:45:08.0593 0x0328 epfwtdir - ok 01:45:08.0625 0x0328 [ EFD32591F9E29C00A5814DF3F6D46683, A7F2DC9991FE0B7AF3A0BFD8863B07242EDEE43175BCBA81D51FD106158B42F6 ] ERSvc C:\WINDOWS\System32\ersvc.dll 01:45:08.0625 0x0328 ERSvc - ok 01:45:08.0656 0x0328 [ 3DA8D964D2CC12EF8E8C342471A37917, ECF35FEEBE608A89A0A355BC46567F979BBCFA05C459FD085D922738AB781863 ] Eventlog C:\WINDOWS\system32\services.exe 01:45:08.0671 0x0328 Eventlog - ok 01:45:08.0687 0x0328 [ DC54CC79E1FAEFA480A8117C9BF105E1, 77F88EB0123288DECCC611820606869A75FC390B3574819B684B646E2BFF6FD2 ] EventSystem C:\WINDOWS\system32\es.dll 01:45:08.0703 0x0328 EventSystem - ok 01:45:08.0734 0x0328 [ 3117F595E9615E04F05A54FC15A03B20, 4708E8F1CDE6E9663B5DBEBAB8C684B16E45D41AEF20E4071D0A2931B305BD76 ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys 01:45:08.0734 0x0328 Fastfat - ok 01:45:08.0750 0x0328 [ 7C8E934687C496EDC69FDBBD2C277E63, A935BE521622708140E3601EA1801B4A85AF6D953A4795331622C288C47D10DA ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll 01:45:08.0765 0x0328 FastUserSwitchingCompatibility - ok 01:45:08.0781 0x0328 [ CED2E8396A8838E59D8FD529C680E02C, 8542AE6A2D65D3F843EA70F5FFBC150B773C5CFA3FE6388FA68A95416FAD0F6E ] Fdc C:\WINDOWS\system32\drivers\Fdc.sys 01:45:08.0781 0x0328 Fdc - ok 01:45:08.0812 0x0328 [ C5FB298257C0A6514EA17835E774EA0A, DF82CF647DF507736AC47BF00A6AFC33CCCE26DF14DD4082F030879B879612F4 ] Fips C:\WINDOWS\system32\drivers\Fips.sys 01:45:08.0812 0x0328 Fips - ok 01:45:08.0828 0x0328 [ 0DD1DE43115B93F4D85E889D7A86F548, D50F7AAE5416C6D41845960BDDA24E97226F609AA726E4F88601ADC9ED50E872 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys 01:45:08.0828 0x0328 Flpydisk - ok 01:45:08.0875 0x0328 [ 157754F0DF355A9E0A6F54721914F9C6, 1EB1424D98000FE80901287F9D51DDD18132B7C2CFEC4C7767F32F71DC2F64F9 ] FltMgr C:\WINDOWS\system32\DRIVERS\fltMgr.sys 01:45:08.0875 0x0328 FltMgr - ok 01:45:08.0984 0x0328 [ 8BA7C024070F2B7FDD98ED8A4BA41789, 47585006F86B2C6016EC54250A416794792D1E4024FF229C120BC25B684AF66A ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe 01:45:08.0984 0x0328 FontCache3.0.0.0 - ok 01:45:09.0031 0x0328 [ 790A4CA68F44BE35967B3DF61F3E4675, 7CBC77C620ABA75FEF4BA8AD9C38766D50CD18106EBA4693F162F2C5A7D46AA8 ] FsUsbExDisk C:\WINDOWS\system32\FsUsbExDisk.SYS 01:45:09.0046 0x0328 FsUsbExDisk - ok 01:45:09.0078 0x0328 [ D3F9205CC4CB07553F2F9472C767EA87, B1DF2B8D718CF7958E5E0B367859EEFB45CC9042B1B88E0C4DA884DF2608B59A ] FsUsbExService C:\WINDOWS\system32\FsUsbExService.Exe 01:45:09.0078 0x0328 FsUsbExService - ok 01:45:09.0093 0x0328 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A, EC635E071201A766845D48973772CBE0958942B4162F3F5F70660D114CC877E0 ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys 01:45:09.0093 0x0328 Fs_Rec - ok 01:45:09.0125 0x0328 [ ED6D921D8AB423138FB35BEEE6D6A6CB, CF133B76960207595C44181A235E63B84C5A5A4E7BDDDC2E6A01DA837E55832D ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys 01:45:09.0125 0x0328 Ftdisk - ok 01:45:09.0171 0x0328 [ C0F1D4A21DE5A415DF8170616703DEBF, 3E21AAD06CF6EB95662B568671B1DBD129CED481761BCDB67088E965E5C0BC5B ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys 01:45:09.0171 0x0328 Gpc - ok 01:45:09.0281 0x0328 [ 51508F0C2476177E50C31B0BBFBF1BDB, 3F62A05181D54711180C8727AC66D624AFA7FC816A4ACC4DC0CFCF2D2DBE7F87 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe 01:45:09.0296 0x0328 gupdate - ok 01:45:09.0312 0x0328 [ 51508F0C2476177E50C31B0BBFBF1BDB, 3F62A05181D54711180C8727AC66D624AFA7FC816A4ACC4DC0CFCF2D2DBE7F87 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe 01:45:09.0312 0x0328 gupdatem - ok 01:45:09.0375 0x0328 [ 5D4BC124FAAE6730AC002CDB67BF1A1C, 00294F4DC7D17F6DD2A22B9C3299BED40146BA45C972367154D20DB502472551 ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe 01:45:09.0375 0x0328 gusvc - ok 01:45:09.0421 0x0328 [ 3FCC124B6E08EE0E9351F717DD136939, EBFE0FB51E14570A1A1D64C8E5383F3FF28509361D13945B79A9C551EB522012 ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys 01:45:09.0437 0x0328 HDAudBus - ok 01:45:09.0500 0x0328 [ E1552A082E8C0FBB70B758F170B3AFF8, 304473926CDE617C717A9E55A27D25CCDD5F6D8E2457E6B1A5123D700927FBF5 ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll 01:45:09.0500 0x0328 helpsvc - ok 01:45:09.0531 0x0328 [ 7D00FEC9B6DE9776B3D0EAD70BD71968, A7A02B1A759A5402840CBB4F189DB943FC465AC281601FEA88C4380CCFF9A0A1 ] HidServ C:\WINDOWS\System32\hidserv.dll 01:45:09.0531 0x0328 HidServ - ok 01:45:09.0562 0x0328 [ 1DE6783B918F540149AA69943BDFEBA8, 6ED28109CA0A7738857D840E369EAB91C1605F2643950762D327CCE241C135A1 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys 01:45:09.0562 0x0328 HidUsb - ok 01:45:09.0593 0x0328 Hmq51 - ok 01:45:09.0609 0x0328 hpn - ok 01:45:09.0671 0x0328 [ C19B522A9AE0BBC3293397F3055E80A1, C04F067E06798E50AE90743F6ACB53FEB83DC749C76F97C962B14616A49E15CE ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys 01:45:09.0671 0x0328 HTTP - ok 01:45:09.0703 0x0328 [ 2D303CAF3C6DCFB246E74550DBED5880, 404E27D218CC3130371A7242F48490AE28E96604746B704C2FFAE291C8E65CEA ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll 01:45:09.0703 0x0328 HTTPFilter - ok 01:45:09.0718 0x0328 i2omgmt - ok 01:45:09.0750 0x0328 i2omp - ok 01:45:09.0796 0x0328 [ 2656FDFE0A7916C3A16F374454C55DD9, D01995317C50067384F9001D571E60B55A1BAD073D0AA968354365BD080CA6E2 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys 01:45:09.0796 0x0328 i8042prt - ok 01:45:09.0906 0x0328 [ C01AC32DC5C03076CFB852CB5DA5229C, A4D7749220B5BC965D96A267F1E02FE8284A230BA249109207BD4B9EA8DFAC96 ] idsvc C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe 01:45:09.0921 0x0328 idsvc - ok 01:45:09.0968 0x0328 [ C0F65389C1544E917B3C4B9441130691, 3237137398D29CE23D4E14DBDFD87247070DB5B2962558E0B2CEF0BA0546F3B9 ] imagedrv C:\WINDOWS\system32\Drivers\imagedrv.sys 01:45:09.0968 0x0328 imagedrv - ok 01:45:10.0000 0x0328 [ 96DE706D0CF3D163D3D2C375D6622783, 9C5751E7EED1A6378C49076EBD00C328A17B4E5951DA4A6629737C605D775994 ] imagesrv C:\WINDOWS\system32\DRIVERS\imagesrv.sys 01:45:10.0000 0x0328 imagesrv - ok 01:45:10.0031 0x0328 [ F8AA320C6A0409C0380E5D8A99D76EC6, A848B9C489DDFBD48BDA140CB9DD43097686115042745F6444F803739168D391 ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys 01:45:10.0046 0x0328 Imapi - ok 01:45:10.0062 0x0328 [ BC74431E59FB0BADF3E9162BD8D37B00, C588F59E4B7467C0AA4A25D737FD8453F4991F3C8CF826DE785EBC4DDF763E0D ] ImapiService C:\WINDOWS\system32\imapi.exe 01:45:10.0062 0x0328 ImapiService - ok 01:45:10.0093 0x0328 ini910u - ok 01:45:10.0281 0x0328 [ CDFD5A68A2E1CAA89C5C0E0B3CB98731, 32CE18E6009E17DC2F49C473333F920000193F6A72F1F53F4E61113A4577470B ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RtkHDAud.sys 01:45:10.0390 0x0328 IntcAzAudAddService - ok 01:45:10.0421 0x0328 IntelIde - ok 01:45:10.0468 0x0328 [ 78A353438791C6D04C64013A5ABEC6BD, 5D3649211543D29CE5292FAFA8349F283A7CD79FEECC536C81DB01FC288F3757 ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys 01:45:10.0468 0x0328 intelppm - ok 01:45:10.0484 0x0328 [ 4448006B6BC60E6C027932CFC38D6855, C377235EBE475C281ACB6A3267F12D8FE623433F05134A6CE50562414F94D7B1 ] Ip6Fw C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys 01:45:10.0500 0x0328 Ip6Fw - ok 01:45:10.0531 0x0328 [ 731F22BA402EE4B62748ADAF6363C182, 5C3BEBD008A5BE4DC2F92076FF41A10DDC01E10EC7E6552213CFA11970811848 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 01:45:10.0531 0x0328 IpFilterDriver - ok 01:45:10.0546 0x0328 [ E1EC7F5DA720B640CD8FB8424F1B14BB, E5CF9F43D8C8028E8F29CAF8AD1E2179E5B02DCAA430900672FCB4C4EE288EF0 ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys 01:45:10.0546 0x0328 IpInIp - ok 01:45:10.0578 0x0328 [ B5A8E215AC29D24D60B4D1250EF05ACE, D1D47DCF9F35325549833710BD9B1C431698819914212FF6A328DD338FBA0E1D ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys 01:45:10.0578 0x0328 IpNat - ok 01:45:10.0609 0x0328 [ 64537AA5C003A6AFEEE1DF819062D0D1, 5A6C11317DEF14B8C34A8C669EB75F7A8D46F05090C43D3DFF602CFA13CC504E ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys 01:45:10.0609 0x0328 IPSec - ok 01:45:10.0640 0x0328 [ 50708DAA1B1CBB7D6AC1CF8F56A24410, A5657038A66B83472B456246E58884D5DF2E5B63BD176AE3DFFB6D5B6998E8B7 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys 01:45:10.0640 0x0328 IRENUM - ok 01:45:10.0687 0x0328 [ 01A9E68528F4F34E5702123D27C67BD4, 5A94B51BD3AAC23774D4161BEE511B7F4EE8853863D97FAC85A6A61A695686E9 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys 01:45:10.0687 0x0328 isapnp - ok 01:45:10.0781 0x0328 [ 89841B78D153B9863785823EB0CDEE27, 1B71F6DA273D5D30CFC63EB100B412E99E88DA22C6876D72CC04D61153C859C7 ] ISODrive C:\Program Files\UltraISO\drivers\ISODrive.sys 01:45:10.0781 0x0328 ISODrive - ok 01:45:10.0937 0x0328 [ BF918C9473D64BBD53C22C47045883F5, 1980726FBFEEE75E4B360B1A4F438CF1ADD929AC21BD5197F740CB8AD8194BD2 ] JavaQuickStarterService C:\Program Files\Java\jre7\bin\jqs.exe 01:45:10.0937 0x0328 JavaQuickStarterService - ok 01:45:10.0984 0x0328 [ CC13DB862F929AE33F64C3BEDC01CD31, 6FF1B2A9665304754B57E2101B733B8B1B932BF48138A298DB314930ABED678D ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys 01:45:10.0984 0x0328 Kbdclass - ok 01:45:11.0015 0x0328 [ 831BE9197BDACE6BDCAC1BFDBE1C380F, 22AF307EAE950395FEB55F58F29CD55AAB155641E16F6B4D0AB793EA8771BA47 ] kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys 01:45:11.0015 0x0328 kbdhid - ok 01:45:11.0046 0x0328 [ D93CAD07C5683DB066B0B2D2D3790EAD, 4C96F68F9914DCCDAFB5D6FC1A765ADFF37C6E4675AF0EF20AA1EDFF04CE27AD ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys 01:45:11.0062 0x0328 kmixer - ok 01:45:11.0093 0x0328 [ EB7FFE87FD367EA8FCA0506F74A87FBB, 5D318CD7DB88473A6FFB74939FF62EB8DD0E6C79847844212D7168095F635531 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys 01:45:11.0093 0x0328 KSecDD - ok 01:45:11.0140 0x0328 [ 83EC18EE52DBF7CCE9520F848F4E6584, F7FD19BDC5107A67E6D43D3BFFA0A87AFC903E232A11CC60A36D9CFF4FD1EB33 ] lanmanserver C:\WINDOWS\System32\srvsvc.dll 01:45:11.0140 0x0328 lanmanserver - ok 01:45:11.0156 0x0328 [ FF68CD5B967CD210562C292CBD263555, D89047701387151D103D9C7344B34F1E2A27E75FBABA3A15A2B3B29231ABF7E0 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll 01:45:11.0171 0x0328 lanmanworkstation - ok 01:45:11.0187 0x0328 lbrtfdc - ok 01:45:11.0250 0x0328 [ 4127E8B6DDB4090E815C1F8852C277D3, A5BC1F65FA6D8952CDDA08320ADDF0E4394E10AE4780017C8C86AC5E68DF83F8 ] lirsgt C:\WINDOWS\system32\DRIVERS\lirsgt.sys 01:45:11.0250 0x0328 lirsgt - ok 01:45:11.0281 0x0328 [ 94136B41F35666254DE29006DCCC30FC, CBD8B60B907DF6FEF42C5135422C3FA7D5E7596BBBDB464A5894B1D58CB572FC ] LmHosts C:\WINDOWS\System32\lmhsvc.dll 01:45:11.0281 0x0328 LmHosts - ok 01:45:11.0296 0x0328 [ 1D0EBF9EDAE8A61CBF56ED1FF8489FAC, 42F570D4282B61A923748310590F11C8F92CB38D21DC0308130862FA02A319F4 ] Messenger C:\WINDOWS\System32\msgsvc.dll 01:45:11.0312 0x0328 Messenger - ok 01:45:11.0359 0x0328 [ FAFE367D032ED82E9332B4C741A20216, 7B123766E360570E0FCB211835B7910D6A1806C25A06BCA9227AB9E993376CA8 ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe 01:45:11.0375 0x0328 Microsoft Office Groove Audit Service - ok 01:45:11.0406 0x0328 [ 4AE068242760A1FB6E1A44BF4E16AFA6, 1FB771162B96AAF787AC24867B818DF8511F0780BB094FA9A38C11D8DBFE68BC ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys 01:45:11.0406 0x0328 mnmdd - ok 01:45:11.0437 0x0328 [ DB082AAFD0859E28744E6629B64E0A91, 54B670C1D06FD8AE24DB182D5EF164F0C8FF43C03D2C41C4D897AA82A85FC93B ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe 01:45:11.0437 0x0328 mnmsrvc - ok 01:45:11.0468 0x0328 [ 15F33D12D604D0198CE5561F102CD9C5, DE400CEF8F08260614DCB02929109846711FE235B698F7B4E4DCCAE2AD63568A ] Modem C:\WINDOWS\system32\drivers\Modem.sys 01:45:11.0468 0x0328 Modem - ok 01:45:11.0500 0x0328 [ 69C12B99AE8B6B99EC314E9B99833728, F386009CE404F0BBDC11C630FF8CF31730C0E5D24AF845DFCA159F44361381F9 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys 01:45:11.0500 0x0328 Mouclass - ok 01:45:11.0546 0x0328 [ ECEC1E6CD558AB80F944F31326E9D3B5, E61B7124FDFE36D7C9081ABA7745F87F83592CE683AB49F7C31359D393B2E691 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys 01:45:11.0546 0x0328 mouhid - ok 01:45:11.0562 0x0328 [ 65653F3B4477F3C63E68A9659F85EE2E, 32A34B22A4C1F50A966F321FD228C6B85F0F0315ABF3D40FC416618E786A4024 ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys 01:45:11.0578 0x0328 MountMgr - ok 01:45:11.0625 0x0328 [ 46297FA8E30A6007F14118FC2B942FBC, 40785B7121DBFA411EA922ECF6008BA4A94BC742662E271BFD6B31288ECC1BA4 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe 01:45:11.0625 0x0328 MozillaMaintenance - ok 01:45:11.0640 0x0328 mraid35x - ok 01:45:11.0671 0x0328 [ 46EDCC8F2DB2F322C24F48785CB46366, 0300EC19CAAEEC52001EBB7F3BE6DE314B42FE7F8BA072905070FEA75CC06E3B ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys 01:45:11.0671 0x0328 MRxDAV - ok 01:45:11.0718 0x0328 [ 1FD607FC67F7F7C633C3DA65BFC53D18, 0FDD53C72F3158283306892A57A2687D5358A468380E8BE6EB58EAE100D813C1 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 01:45:11.0718 0x0328 MRxSmb - ok 01:45:11.0765 0x0328 [ FB68F196B215782333FA1467CBAFC8B0, 2E6308B02F1DCDEAF2576DC3664E6293B248E2D6D3411B24312E999124AAB0C1 ] MSDTC C:\WINDOWS\system32\msdtc.exe 01:45:11.0765 0x0328 MSDTC - ok 01:45:11.0812 0x0328 [ 561B3A4333CA2DBDBA28B5B956822519, 5B53906A29B9AA55A399F880CA989F9878BD943D3E97FB10A25BFD723654AF49 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys 01:45:11.0812 0x0328 Msfs - ok 01:45:11.0843 0x0328 MSIServer - ok 01:45:11.0890 0x0328 [ AE431A8DD3C1D0D0610CDBAC16057AD0, 8B3BCAC3DA71778DC8B863E6DEF10F02F65D1BDD3381802DDC0B2980F4F1FBB9 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys 01:45:11.0890 0x0328 MSKSSRV - ok 01:45:11.0921 0x0328 [ 13E75FEF9DFEB08EEDED9D0246E1F448, 69D4CF483753FF253431656E1CB680F6702375696F94E259729BD11C25004031 ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys 01:45:11.0921 0x0328 MSPCLOCK - ok 01:45:11.0953 0x0328 [ 1988A33FF19242576C3D0EF9CE785DA7, 9E1C07F364DA7EF0D859BB7A3A06F849A153722E27E872640120CC6855D9FC51 ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys 01:45:11.0953 0x0328 MSPQM - ok 01:45:11.0984 0x0328 [ 469541F8BFD2B32659D5D463A6714BCE, 46AA7D2442DCC4C51C08BA0C00136F058F9160E6D6EDE78B2FD82545AE4FD10B ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys 01:45:11.0984 0x0328 mssmbios - ok 01:45:12.0015 0x0328 [ BF13612142995096AB084F2DB7F40F77, E23FA89B54772A33A0A92A0701F02CB9683823FCA5CC192235378E1433FB21CF ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys 01:45:12.0015 0x0328 MSTEE - ok 01:45:12.0062 0x0328 [ D48659BB24C48345D926ECB45C1EBDF5, EDEDE58316827530C25F8085F62AD48EA6D44B0F8AC1917B940F53B02CF72EA6 ] MTsensor C:\WINDOWS\system32\DRIVERS\ASACPI.sys 01:45:12.0062 0x0328 MTsensor - ok 01:45:12.0078 0x0328 [ 82035E0F41C2DD05AE41D27FE6CF7DE1, 6111D330E7ACB77E23EA6A9E001FC651DE1DC49D772DC6FDD3C4B8EDA57E1C7A ] Mup C:\WINDOWS\system32\drivers\Mup.sys 01:45:12.0078 0x0328 Mup - ok 01:45:12.0109 0x0328 [ 5C8DC6429C43DC6177C1FA5B76290D1A, BBD145E87D4CF25A873CAE89DF29DF297187B604D42CD36AD8D3F62A033D906E ] NABTSFEC C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys 01:45:12.0125 0x0328 NABTSFEC - ok 01:45:12.0234 0x0328 [ 3BAE2BFCB6D69E19C8373F635DD544DC, A32DB5282ED5AFC1650883B1870E46FDC029EF9225075E6916D2E371F18D8B9E ] NBService C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe 01:45:12.0265 0x0328 NBService - ok 01:45:12.0296 0x0328 [ 558635D3AF1C7546D26067D5D9B6959E, 8C1802908DF35E442575969D29F4B22019A2B3E4C309B8E193F98F75AE81F013 ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys 01:45:12.0296 0x0328 NDIS - ok 01:45:12.0328 0x0328 [ 520CE427A8B298F54112857BCF6BDE15, 521BFFC460D64CD69D12F8C9D61CEBE409A63F1F1FB928450E4564DA29C0FFEA ] NdisIP C:\WINDOWS\system32\DRIVERS\NdisIP.sys 01:45:12.0328 0x0328 NdisIP - ok 01:45:12.0359 0x0328 [ 08D43BBDACDF23F34D79E44ED35C1B4C, F72CB8FA67C361C40B4C83F08302D7B2FD9178C1C60A7C236AF08B9CB5162591 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys 01:45:12.0359 0x0328 NdisTapi - ok 01:45:12.0390 0x0328 [ 34D6CD56409DA9A7ED573E1C90A308BF, DE2060F57C913272524AFB0D472714ABF6F7E49A01534F23D95EE67F207CC6CF ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys 01:45:12.0390 0x0328 Ndisuio - ok 01:45:12.0406 0x0328 [ 0B90E255A9490166AB368CD55A529893, 90EB17422BF52FE6D0CC6ADA4262D605806C5B583DE04EDEC95FD47EE9697865 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys 01:45:12.0406 0x0328 NdisWan - ok 01:45:12.0437 0x0328 [ 59FC3FB44D2669BC144FD87826BB571F, B3C8CEFB09D5C85CBF12AED8CDB1FE455679D3436337263EFDABDC5116D92453 ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys 01:45:12.0437 0x0328 NDProxy - ok 01:45:12.0453 0x0328 [ 3A2ACA8FC1D7786902CA434998D7CEB4, ECE218DCDCB4D0A5CA8CBD14E931BAA3B5F381B70BBACB65B0EBBB46D2D31683 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys 01:45:12.0453 0x0328 NetBIOS - ok 01:45:12.0484 0x0328 [ 0C80E410CD2F47134407EE7DD19CC86B, 2A1D0CE9797F4AB7A24873947A26DD6413B8DBB5A82C24CF28D1FC243AEFC5C8 ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys 01:45:12.0500 0x0328 NetBT - ok 01:45:12.0531 0x0328 [ 8DE3841527161ABDFAE5C44AB570F8E1, 3C0D437AEF4C52C57464EB793D7A6AE5DE5F0EBE26F1AC61F42A331F8D9A395E ] NetDDE C:\WINDOWS\system32\netdde.exe 01:45:12.0531 0x0328 NetDDE - ok 01:45:12.0546 0x0328 [ 8DE3841527161ABDFAE5C44AB570F8E1, 3C0D437AEF4C52C57464EB793D7A6AE5DE5F0EBE26F1AC61F42A331F8D9A395E ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe 01:45:12.0546 0x0328 NetDDEdsdm - ok 01:45:12.0593 0x0328 [ F485FEFC8CC4FD29243D800BE5D275D1, F0817F2647FC35F13EB4ECC342A10C781CF69A25AEE04FD3598ECCA8F8C57771 ] Netlogon C:\WINDOWS\system32\lsass.exe 01:45:12.0593 0x0328 Netlogon - ok 01:45:12.0625 0x0328 [ 3E7B6583269BC118720D0020B03CC71E, 7B62C5DBACCC532A0DCF4FADE28DB46734F5BE1B00F36E1ABE29160838A54604 ] Netman C:\WINDOWS\System32\netman.dll 01:45:12.0625 0x0328 Netman - ok 01:45:12.0890 0x0328 [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe 01:45:12.0906 0x0328 NetTcpPortSharing - ok 01:45:12.0953 0x0328 [ 83387067B25E000E64B178A62E5DCD24, 0139BE136E2DEE23F51FAB186249D7BE6DBB54E96B865071B2BA1BDBB94CE2B4 ] Nla C:\WINDOWS\System32\mswsock.dll 01:45:12.0953 0x0328 Nla - ok 01:45:13.0000 0x0328 [ 60CF8C7192B3614F240838DDBAA4A245, 48CCE03B545A340D298F005688DE874D28E76959FD965218D93E4A33EE0E9C01 ] nm C:\WINDOWS\system32\DRIVERS\NMnt.sys 01:45:13.0000 0x0328 nm - ok 01:45:13.0125 0x0328 [ 193FA51DDDD0BFFDED1C340F0434999A, C05CA0A8568E9CBDA15633ED420C29F52082114B2B9F24EB61369E42C480C080 ] NMIndexingService C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe 01:45:13.0140 0x0328 NMIndexingService - ok 01:45:13.0156 0x0328 NOD32FiXTemDono - ok 01:45:13.0203 0x0328 [ B48DC6ABCD3AEFF8618350CCBDC6B09A, 824D8B03E061DDD0D33EF9F03C669B13E7B6E339684009BD44D69178C45E2DE1 ] NPF C:\WINDOWS\system32\drivers\npf.sys 01:45:13.0203 0x0328 NPF - ok 01:45:13.0234 0x0328 [ 4F601BCB8F64EA3AC0994F98FED03F8E, D9D6783B970CB871DE0C6EDD8BE42F30CD1DCD55D4DF006922D9CFC0CF020D27 ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys 01:45:13.0234 0x0328 Npfs - ok 01:45:13.0265 0x0328 [ B78BE402C3F63DD55521F73876951CDD, 020D75527B4814C544820D29CA064E94F2FCB7B1BA011D63E9D2BFD4CF91BA61 ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys 01:45:13.0281 0x0328 Ntfs - ok 01:45:13.0328 0x0328 [ 8A2788FF5AA0FE75D7231417200406FF, 2B2879DD284F4923440E1C164D22FC14E6826563FFF27B5719B172DECF8A45B4 ] ntiomin C:\WINDOWS\system32\drivers\ntiomin.sys 01:45:13.0328 0x0328 ntiomin - ok 01:45:13.0390 0x0328 [ D1B956288363CC67EDBB34C578CC5374, B2E3A4091B5A948861ABBF45A81AD64567A3CA5EB44AAFBF8DCE86857B663F29 ] ntiopnp C:\WINDOWS\system32\drivers\ntiopnp.sys 01:45:13.0390 0x0328 ntiopnp - ok 01:45:13.0437 0x0328 [ 69AF9176EF2A4B589A3B84841A793F38, E122EBF264D2BC924F4B9E51A7FC26A5CE5406AEEA0C6463FD89270D3EF33DB5 ] ntiowp C:\WINDOWS\system32\drivers\ntiowp.sys 01:45:13.0437 0x0328 ntiowp - ok 01:45:13.0468 0x0328 [ F485FEFC8CC4FD29243D800BE5D275D1, F0817F2647FC35F13EB4ECC342A10C781CF69A25AEE04FD3598ECCA8F8C57771 ] NtLmSsp C:\WINDOWS\system32\lsass.exe 01:45:13.0468 0x0328 NtLmSsp - ok 01:45:13.0515 0x0328 [ C8CE1566B0537C3F5F7AE1CA458A6697, 54C1DCB580C993BAD04E84F030FFB273F95E3EF960B5E87C978B11FC9074B3B8 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll 01:45:13.0515 0x0328 NtmsSvc - ok 01:45:13.0562 0x0328 [ 73C1E1F395918BC2C6DD67AF7591A3AD, B21133A75253EC15E2DFF66D3B480AB1A7E1A2360476C810E7AA55D0F0EB08D4 ] Null C:\WINDOWS\system32\drivers\Null.sys 01:45:13.0562 0x0328 Null - ok 01:45:14.0312 0x0328 [ 7B5A17BD54BB9142843DBE99A1CAAED8, 67029BD064A926D77AB5217D0FD9A16CA04D0D0A5903DAFEE8663FD6849022CC ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys 01:45:15.0031 0x0328 nv - ok 01:45:15.0109 0x0328 [ 5150B108EA88831E1C599603D8B89621, C2E0A77330172149D64613CB113851414C7BDCB4BDA367349BA421651DB47AD1 ] NVSvc C:\WINDOWS\system32\nvsvc32.exe 01:45:15.0109 0x0328 NVSvc - ok 01:45:15.0156 0x0328 [ B305F3FAD35083837EF46A0BBCE2FC57, 9D0E0E666D652D0FC9EAB97280A5D67AAF61D6B21929DF7CF8ED72A367720464 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys 01:45:15.0156 0x0328 NwlnkFlt - ok 01:45:15.0171 0x0328 [ C99B3415198D1AAB7227F2C88FD664B9, DD8DA4B5E804F134AB9233859544C025062902DFC3E8FB8A09A67337A4E73F55 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys 01:45:15.0171 0x0328 NwlnkFwd - ok 01:45:15.0281 0x0328 [ 84DE1DD996B48B05ACE31AD015FA108A, 4B9D1E4EF83ECED6C77F23D9879C124534F7053D7423E3A2D0F67A4A720CEA94 ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE 01:45:15.0296 0x0328 odserv - ok 01:45:15.0343 0x0328 [ 5A432A042DAE460ABE7199B758E8606C, 6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71 ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE 01:45:15.0343 0x0328 ose - ok 01:45:15.0390 0x0328 [ 2FF48D8FDC815A8492FB2BD81E6999C2, 17AC6FF51DCBB80C71490A8925642AA57D4508047F3B22F0BC80B29180752FF2 ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys 01:45:15.0390 0x0328 Parport - ok 01:45:15.0437 0x0328 [ 3334430C29DC338092F79C38EF7B4CD0, B54989B46D77F124D66741A939FF2033F73854FC39AF13C8165D01203A94A94E ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys 01:45:15.0437 0x0328 PartMgr - ok 01:45:15.0468 0x0328 [ 453EC2C2A20A1382F564541918520EEB, 797ED3127131BAE255AE793B8327D0E3BB6D054421F8D90511B315937BEBB6B0 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys 01:45:15.0468 0x0328 ParVdm - ok 01:45:15.0531 0x0328 [ 175CC28DCF819F78CAA3FBD44AD9E52A, C00F17040440E5C10439FF8110368A7813BD197E96338FD3703C86E399E27128 ] pccsmcfd C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys 01:45:15.0531 0x0328 pccsmcfd - ok 01:45:15.0562 0x0328 [ 5FD05C92EC56F696EAA50B68CEF1B84A, BB87DF59A2656F194CACA01F4608089F598368EC1422FCF8FFE32D8B52ED0C14 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys 01:45:15.0562 0x0328 PCI - ok 01:45:15.0578 0x0328 PCIDump - ok 01:45:15.0609 0x0328 [ 548CF2D6369EAE441A4C6BAA75BC4F0A, C659E9E8A16DD4CBEC97FFB50784D8585E02F20FA360D2280D322D975F00A994 ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys 01:45:15.0609 0x0328 PCIIde - ok 01:45:15.0640 0x0328 [ 2849812217ECEC059CB45F80EB6E52D4, 0B6E804F676A62F27142E9F52DD75B340077C00C64A58265AE15FC5F7AEFF411 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys 01:45:15.0656 0x0328 Pcmcia - ok 01:45:15.0734 0x0328 [ 62066C65AF8C2BF009542ABF96549FD6, F8302D624EDA4997DF10940E181CD97FB172D804769A0F05047415881270CE8B ] PD91Agent C:\Program Files\Perfect Disk\PD\PD91Agent.exe 01:45:15.0750 0x0328 PD91Agent - ok 01:45:15.0812 0x0328 [ C8C61B7C8BB184A4772988380AFB9B07, 083F3CDA7FAE8A33417CD1D64AB0195A9E68C5CB77AB5F633C153C0A563083FA ] PD91Engine C:\Program Files\Perfect Disk\PD\PD91Engine.exe 01:45:15.0828 0x0328 PD91Engine - ok 01:45:15.0859 0x0328 PDCOMP - ok 01:45:15.0875 0x0328 PDFRAME - ok 01:45:15.0906 0x0328 PDRELI - ok 01:45:15.0921 0x0328 PDRFRAME - ok 01:45:15.0953 0x0328 perc2 - ok 01:45:15.0984 0x0328 perc2hib - ok 01:45:16.0078 0x0328 [ 875E4E0661F3A5994DF9E5E3A0A4F96B, 7198C02935B3714C455EE94305D2A21D900D72AC67049C11A1E842572AD6C5E1 ] PLFlash DeviceIoControl Service C:\WINDOWS\system32\IoctlSvc.exe 01:45:16.0078 0x0328 PLFlash DeviceIoControl Service - ok 01:45:16.0109 0x0328 [ 3DA8D964D2CC12EF8E8C342471A37917, ECF35FEEBE608A89A0A355BC46567F979BBCFA05C459FD085D922738AB781863 ] PlugPlay C:\WINDOWS\system32\services.exe 01:45:16.0109 0x0328 PlugPlay - ok 01:45:16.0140 0x0328 [ F485FEFC8CC4FD29243D800BE5D275D1, F0817F2647FC35F13EB4ECC342A10C781CF69A25AEE04FD3598ECCA8F8C57771 ] PolicyAgent C:\WINDOWS\system32\lsass.exe 01:45:16.0140 0x0328 PolicyAgent - ok 01:45:16.0171 0x0328 [ 1C5CC65AAC0783C344F16353E60B72AC, 7786CFE970A79B327DB57AEBADA8B0B94B4DE07CE8AF285E9835B2AADD597296 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys 01:45:16.0171 0x0328 PptpMiniport - ok 01:45:16.0187 0x0328 [ F485FEFC8CC4FD29243D800BE5D275D1, F0817F2647FC35F13EB4ECC342A10C781CF69A25AEE04FD3598ECCA8F8C57771 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe 01:45:16.0187 0x0328 ProtectedStorage - ok 01:45:16.0218 0x0328 [ 48671F327553DCF1D27F6197F622A668, CB34A17BC36E8F8BB5F87F9EE21311C50DE9AE156513D682581DE47C93EC155D ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys 01:45:16.0218 0x0328 PSched - ok 01:45:16.0250 0x0328 [ 80D317BD1C3DBC5D4FE7B1678C60CADD, DA76804B55D0CAB3DDD01EFC06673764AE4860693375C658B6063FB14AF7F12C ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys 01:45:16.0250 0x0328 Ptilink - ok 01:45:16.0296 0x0328 [ D86B4A68565E444D76457F14172C875A, 06B1CF81A62B3DAA8D0C5A8B88C56A504DE8E9278C520F754AF363A6676C58B0 ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys 01:45:16.0296 0x0328 PxHelp20 - ok 01:45:16.0312 0x0328 ql1080 - ok 01:45:16.0343 0x0328 Ql10wnt - ok 01:45:16.0359 0x0328 ql12160 - ok 01:45:16.0390 0x0328 ql1240 - ok 01:45:16.0406 0x0328 ql1280 - ok 01:45:16.0437 0x0328 [ FE0D99D6F31E4FAD8159F690D68DED9C, 998685622ABE631984B7E4DBF91AB3594B1F574378D75EB9F6265F4650470692 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys 01:45:16.0437 0x0328 RasAcd - ok 01:45:16.0484 0x0328 [ 5ED5AF86EE8CC13F6392B37A81AF5D5B, BBB4995A9C974FDDEC04558EEF9AB243F269D0A5D8005DA923624BC7C1A468D6 ] RasAuto C:\WINDOWS\System32\rasauto.dll 01:45:16.0484 0x0328 RasAuto - ok 01:45:16.0515 0x0328 [ 98FAEB4A4DCF812BA1C6FCA4AA3E115C, F59974A2A3C21071BC72CA4DAF5D2DDF93471EC16FD1A34DE9DC1A50027F6835 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys 01:45:16.0515 0x0328 Rasl2tp - ok 01:45:16.0546 0x0328 [ FF59EC9427760470DE7FFCA75738ECB8, C048833F77DB9E14C2887711C4F553891B566FE292A8DB014907986A498D2314 ] RasMan C:\WINDOWS\System32\rasmans.dll 01:45:16.0546 0x0328 RasMan - ok 01:45:16.0562 0x0328 [ 7306EEED8895454CBED4669BE9F79FAA, DC6874ECAD9105BC9EAB007291958911D7D4D3649124472070B3496B36C45200 ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys 01:45:16.0562 0x0328 RasPppoe - ok 01:45:16.0593 0x0328 [ FDBB1D60066FCFBB7452FD8F9829B242, 10A2DACF944BD000032EBA8C095CB3D879CC55B28C377ADF6E52E508E47444DB ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys 01:45:16.0593 0x0328 Raspti - ok 01:45:16.0625 0x0328 [ 29D66245ADBA878FFF574CD66ABD2884, E85710229E61DB37BAB291E2E13ABD99FA8DFF7C8245853253BE540D8741990E ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys 01:45:16.0625 0x0328 Rdbss - ok 01:45:16.0640 0x0328 [ 4912D5B403614CE99C28420F75353332, 975341ECD660209987B5E5171B8315E032439E408CBE8A5986E67AF767F373BB ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys 01:45:16.0640 0x0328 RDPCDD - ok 01:45:16.0703 0x0328 [ A2CAE2C60BC37E0751EF9DDA7CEAF4AD, 586900D30F44E132AC75520EFF4FF615AA46283F1F050AC93FF9C235AC0F1D75 ] rdpdr C:\WINDOWS\system32\DRIVERS\rdpdr.sys 01:45:16.0703 0x0328 rdpdr - ok 01:45:16.0750 0x0328 [ D4F5643D7714EF499AE9527FDCD50894, 6D9EDD9DE3B21324FBDEF074F815A4925F656E06BD15B73B53CD255FD8F0D63F ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys 01:45:16.0750 0x0328 RDPWD - ok 01:45:16.0765 0x0328 [ EE93399BC7CD84624AB7890DD7D8B296, A0E530700B4F0271501B239FFD6BD23448CB98F4F7F0C80A8588720864923A12 ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe 01:45:16.0781 0x0328 RDSessMgr - ok 01:45:16.0812 0x0328 [ BDDCECE9ACDAD26841C987D10376F6F7, 89B18D5C7A6882E98A6893913EF3AE6E52FE9DCBBB28E9C9250D06FC126CB395 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys 01:45:16.0812 0x0328 redbook - ok 01:45:16.0843 0x0328 [ 6A9CB0C18B634B187B8B5A32B0FC2773, 0AC1D40AFC6CC0BD560BF121581824207D78E2E98375DDA53FECC8D3EDEA99DF ] RemoteAccess C:\WINDOWS\System32\mprdim.dll 01:45:16.0859 0x0328 RemoteAccess - ok 01:45:16.0875 0x0328 [ A19BFED61736127DB5B8B815AFB35190, 7E2162F98D5CE7F67281A7A6A0BC98DDC3438A1E60C7E0255E38F53B1B761CE3 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll 01:45:16.0890 0x0328 RemoteRegistry - ok 01:45:16.0937 0x0328 [ 8B5B8A11306190C6963D3473F052D3C8, BEBCCA8109C742447C862907B7A3924548303AC720E3FB16563F24DF3238F82B ] Revoflt C:\WINDOWS\system32\DRIVERS\revoflt.sys 01:45:16.0937 0x0328 Revoflt - ok 01:45:17.0015 0x0328 [ C0C8909BE3ECC9DF8089112BF9BE954E, 6F9BB117EBB21BDFD3A9DF774A78157BB15C76EEF3B329B99F029D3D8A72C5C4 ] RivaTuner32 C:\Program Files\Overclocking\RivaTuner\RivaTuner32.sys 01:45:17.0015 0x0328 RivaTuner32 - ok 01:45:17.0062 0x0328 [ B60F58F175DE20A6739194E85B035178, 6E66D6041AF0B69896E4556F9FF3A3AA70CF4B09FFBE68E14E60313C5E3FFDDB ] rpcapd C:\Program Files\WinPcap\rpcapd.exe 01:45:17.0062 0x0328 rpcapd - ok 01:45:17.0093 0x0328 [ 6BE739F700580F23740EFA1D1B57C0A5, 610860F14740EE342BE75E1CA185985FBD33912328A7AC869A05B71D51DF6806 ] RpcLocator C:\WINDOWS\system32\locator.exe 01:45:17.0109 0x0328 RpcLocator - ok 01:45:17.0140 0x0328 [ 346E5B19FC986FE7185A0C2C43593722, 1C9C76584FBE08032B55B0B15A75FF58CE4D37C25AED479D29546281A5BDC5FC ] RpcSs C:\WINDOWS\system32\rpcss.dll 01:45:17.0156 0x0328 RpcSs - ok 01:45:17.0187 0x0328 [ 9ACEE3313020A01235336C2A483AFD1A, 87DD3B037FB80DC5BB9F3E335C9A0F3926481012EF9A8DE2CEF53C5386F69009 ] RSVP C:\WINDOWS\system32\rsvp.exe 01:45:17.0187 0x0328 RSVP - ok 01:45:17.0218 0x0328 [ F485FEFC8CC4FD29243D800BE5D275D1, F0817F2647FC35F13EB4ECC342A10C781CF69A25AEE04FD3598ECCA8F8C57771 ] SamSs C:\WINDOWS\system32\lsass.exe 01:45:17.0218 0x0328 SamSs - ok 01:45:17.0250 0x0328 [ 8DF7262F72C3AB75486D21BA78B9F749, BE7C07DB5CC639094028F41ADAFAF700D0D347B0A5A6BF3F27319209A84CAABB ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe 01:45:17.0250 0x0328 SCardSvr - ok 01:45:17.0281 0x0328 [ E5F1C9EAD4C6617ACD40CA90882CC7D4, 21A0C71D68F27627A6825BFE02B8BDC34FEBE2E9E8138DA67C9D2CE76110C379 ] Schedule C:\WINDOWS\system32\schedsvc.dll 01:45:17.0296 0x0328 Schedule - ok 01:45:17.0453 0x0328 [ 48ED93AAEE764FEE0B54E94A916E69CF, D27AE0F2E0DE15CFE5FE91CF4A484C5CC1FE7721E24F4E481464A52E2B552704 ] ScReadSpool C:\Program Files\SolidConverterPDF\SCPDF\SolidPdfService.exe 01:45:17.0468 0x0328 ScReadSpool - ok 01:45:17.0500 0x0328 [ 07F7F501AD50DE2BA2D5842D9B6D6155, 60A8B320AB7D3A329E60911986905C2CA193E83E637976F29C78670DC287A6A8 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys 01:45:17.0515 0x0328 Secdrv - ok 01:45:17.0531 0x0328 [ 60255AC385A08AAF4897AB4A42483500, 5B428759EAB0831926D7556EA08EF5A3719AC32B4548FD52B12D09A369F15732 ] seclogon C:\WINDOWS\System32\seclogon.dll 01:45:17.0531 0x0328 seclogon - ok 01:45:17.0546 0x0328 SecurityCenterServer4196545509 - ok 01:45:17.0578 0x0328 [ 1398DF553E701C7948188A7D4E347A18, 618709741367AE95DC02C305BB6761AF4DDC80167650EBBA6B45A9DD91D0190C ] SENS C:\WINDOWS\system32\sens.dll 01:45:17.0578 0x0328 SENS - ok 01:45:17.0609 0x0328 [ A2D868AEEFF612E70E213C451A70CAFB, 25CBB9E26CDCBD8E221ACF4364E82E8F811C3144E0EEF9DF9DAEC8534243BD3B ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys 01:45:17.0609 0x0328 serenum - ok 01:45:17.0640 0x0328 [ 2BDB9FF806BE5D9AB2DB8AA87DECCAC6, 22B96F999DD113E2BAC653435BE921FE7CD44EA24DEF2A0FC247EA02D3D501D9 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys 01:45:17.0640 0x0328 Serial - detected Virus.Win32.ZAccess.k ( 0 ) 01:45:19.0984 0x0328 Serial ( Virus.Win32.ZAccess.k ) - infected 01:45:19.0984 0x0328 Force sending object to P2P due to detect: Serial 01:45:22.0437 0x0328 Object send P2P result: true 01:45:24.0921 0x0328 [ 9D38320BB32230349379DF5DDBBF7FCE, 8AAA8B0B60E65F596C3276DCCD0D8146B40172B6D509B597EDFDA46AC8A72A4C ] ServiceLayer C:\Program Files\PC Connectivity Solution\ServiceLayer.exe 01:45:24.0937 0x0328 ServiceLayer - ok 01:45:25.0109 0x0328 [ 4C0D673281178CB496011A2E28571FC8, 14CFB50F3EA987C4485475B2E5EC85C137949911495245F29FE64723C909C9E8 ] sfdrv01 C:\WINDOWS\system32\drivers\sfdrv01.sys 01:45:25.0109 0x0328 sfdrv01 - ok 01:45:25.0156 0x0328 [ 4D0CE0FADCA29E7DA68CE597AC9010BD, C34810B3801AA9410B52A3FC3B8D538EC2A6643C0F2311D355D6418A6DE21DAD ] sfdrv01a C:\WINDOWS\system32\drivers\sfdrv01a.sys 01:45:25.0156 0x0328 sfdrv01a - ok 01:45:25.0218 0x0328 [ DAAD4C099EBF5094D32C373AC1AC0F3C, 4783DBDB18B4388D63BAF7D1E266D176DD4D25E6084E67A835DBC16732FCD9BC ] sfhlp02 C:\WINDOWS\system32\drivers\sfhlp02.sys 01:45:25.0218 0x0328 sfhlp02 - ok 01:45:25.0250 0x0328 [ 0D13B6DF6E9E101013A7AFB0CE629FE0, 2214EA0F16BB33970E299CE457EB50AEE0BEF7959BC1EBD3C06C78A46B42B808 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys 01:45:25.0250 0x0328 Sfloppy - ok 01:45:25.0281 0x0328 [ 6DC03269F4C71E4AB313C3597F42A340, A5E33E2E8006321FF93651D623A018B1CD61538C1773F45D4683839F1A87DDE6 ] sfsync02 C:\WINDOWS\system32\drivers\sfsync02.sys 01:45:25.0281 0x0328 sfsync02 - ok 01:45:25.0312 0x0328 [ D5A7E09D2C6A702809E49190D52ADC9F, 7B3226A7C8C954A04B4543AFAA3079AA9A306E00CBD81346F952B40804608A87 ] sfvfs02 C:\WINDOWS\system32\drivers\sfvfs02.sys 01:45:25.0312 0x0328 sfvfs02 - ok 01:45:25.0359 0x0328 [ 7C8E934687C496EDC69FDBBD2C277E63, A935BE521622708140E3601EA1801B4A85AF6D953A4795331622C288C47D10DA ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll 01:45:25.0359 0x0328 ShellHWDetection - ok 01:45:25.0375 0x0328 Simbad - ok 01:45:25.0421 0x0328 [ 5CAEED86821FA2C6139E32E9E05CCDC9, 63F91C95FD2914DAEC648A6EAF75EE5E18EAA7754F5A03A57D693AC49C66479E ] SLIP C:\WINDOWS\system32\DRIVERS\SLIP.sys 01:45:25.0421 0x0328 SLIP - ok 01:45:25.0453 0x0328 Sparrow - ok 01:45:25.0500 0x0328 [ 8E186B8F23295D1E42C573B82B80D548, C418568C2071E2761CD26F736443BD7BF9C6914D47D171A5AC990278E855A74F ] splitter C:\WINDOWS\system32\drivers\splitter.sys 01:45:25.0500 0x0328 splitter - ok 01:45:25.0531 0x0328 [ BEBE8A85954FF460374FD5A0CD21E19B, 968E14950163E402A4299742DFF10779FDF5F89ECB85DFEFF2D228203C306AF0 ] Spooler C:\WINDOWS\system32\spoolsv.exe 01:45:25.0531 0x0328 Spooler - ok 01:45:25.0546 0x0328 sptd - ok 01:45:25.0609 0x0328 [ 6145CA23BCCDA679A772EC0AF42D6EB5, 9EBBA81F6F63624EB5F76C11DDCE13EEFC98BE32E810AB0B3E40132A598A6AF9 ] sr C:\WINDOWS\system32\DRIVERS\sr.sys 01:45:25.0609 0x0328 sr - ok 01:45:25.0625 0x0328 [ F309D9894FCA821E3C2F557A8032D47A, 41B17009E7E48CBD5CBD52CE6D9FB9DB4237D60EB79C2F58FB30DDF5FF4EFDCE ] srservice C:\WINDOWS\system32\srsvc.dll 01:45:25.0640 0x0328 srservice - ok 01:45:25.0656 0x0328 [ 20B7E396720353E4117D64D9DCB926CA, 55E35EBA5792DC42BE2F10A4FAD4BE5721C05C134C153E37AC4D5E68982DED6C ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys 01:45:25.0671 0x0328 Srv - ok 01:45:25.0687 0x0328 [ BB754C4BE0B18F0FAF01A7EBDE7025C4, 4559018E3C707AFB8FCBC861CF925C56A1A41D34F7344C802319D37C4EDEE412 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll 01:45:25.0703 0x0328 SSDPSRV - ok 01:45:25.0734 0x0328 [ C6718154A50FE6C55E382CDBDEDCE7A7, 368A386FA7CBE57ED03EAC77073815F6857AB11F7205583E1771F0D64F8D0E0D ] stisvc C:\WINDOWS\system32\wiaservc.dll 01:45:25.0750 0x0328 stisvc - ok 01:45:25.0781 0x0328 [ 284C57DF5DC7ABCA656BC2B96A667AFB, 7E3CAE1911E710B1CC37571AE1B92DC981FCD46E67A3AD3C258672D17781C709 ] streamip C:\WINDOWS\system32\DRIVERS\StreamIP.sys 01:45:25.0781 0x0328 streamip - ok 01:45:25.0812 0x0328 [ 03C1BAE4766E2450219D20B993D6E046, 0D8E5B141EAA9E2C8D1F8BFD522F57EE8074216A336CBE37FE77B8ADDB791DBE ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys 01:45:25.0812 0x0328 swenum - ok 01:45:25.0843 0x0328 [ 94ABC808FC4B6D7D2BBF42B85E25BB4D, EEF6DB9EDD8C273A6595675A7A12B9D440FA4E178BA7C69FB1942D97E291F989 ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys 01:45:25.0843 0x0328 swmidi - ok 01:45:25.0859 0x0328 SwPrv - ok 01:45:25.0890 0x0328 symc810 - ok 01:45:25.0906 0x0328 symc8xx - ok 01:45:25.0937 0x0328 sym_hi - ok 01:45:25.0968 0x0328 sym_u3 - ok 01:45:26.0000 0x0328 [ 650AD082D46BAC0E64C9C0E0928492FD, 6A587A55418A3A7867602D92B99FE393152DED191F27992C4BA909BD268AC43C ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys 01:45:26.0000 0x0328 sysaudio - ok 01:45:26.0031 0x0328 [ 5893B3B5B966233CAE426B2FEDC34DDF, 765F85C5FB8838E61430E67ACE9A853DC67C0FC0117D6891C687A7091C0885A0 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe 01:45:26.0046 0x0328 SysmonLog - ok 01:45:26.0078 0x0328 [ 0A695B77564D8E9333E846B526F95AB2, B03EEE6C1477640BBA3F083FD8AFF8A105F50BF573454D8D7DDAD48229B3D476 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll 01:45:26.0078 0x0328 TapiSrv - ok 01:45:26.0109 0x0328 [ 9F4B36614A0FC234525BA224957DE55C, 56766EF576479367C29B2EE16CF232EDE2569CEB0A72BF8E38FBABC9BF7C1BEC ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys 01:45:26.0109 0x0328 Tcpip - ok 01:45:26.0156 0x0328 [ 38D437CF2D98965F239B0ABCD66DCB0F, CC497A25C7AC1FF1E07CEE25FB0C5A5E6C4005C1CB244601FE620884A5C26506 ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys 01:45:26.0156 0x0328 TDPIPE - ok 01:45:26.0171 0x0328 [ ED0580AF02502D00AD8C4C066B156BE9, 41AA6C88CF48CAF0DA8E374F37E74206E4F558332075304A28983D04E08B3154 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys 01:45:26.0171 0x0328 TDTCP - ok 01:45:26.0203 0x0328 [ A540A99C281D933F3D69D55E48727F47, CC430FA0E0F1745E167877003FDCC35FE940AF8CAD05387ECBA880CC3A3F6709 ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys 01:45:26.0203 0x0328 TermDD - ok 01:45:26.0250 0x0328 [ 2C28157229925280916B3041CCC5FE4B, 02955165CCA2C3DF113ADE7045F3818AAB5B1A61B77DC7C0DF908DD4857CFDE3 ] TermService C:\WINDOWS\System32\termsrv.dll 01:45:26.0265 0x0328 TermService - ok 01:45:26.0281 0x0328 [ 7C8E934687C496EDC69FDBBD2C277E63, A935BE521622708140E3601EA1801B4A85AF6D953A4795331622C288C47D10DA ] Themes C:\WINDOWS\System32\shsvcs.dll 01:45:26.0281 0x0328 Themes - ok 01:45:26.0312 0x0328 [ CAC717418CCDF09110F406108017BFA6, 39A173247894EE0ED3DDF64064B870F3FD2B93501DCBCDC1760D7658557FD638 ] TlntSvr C:\WINDOWS\system32\tlntsvr.exe 01:45:26.0312 0x0328 TlntSvr - ok 01:45:26.0328 0x0328 TosIde - ok 01:45:26.0359 0x0328 [ FACBC230AA93401D2FE88976E7CB7369, 142FBED6890D596AD4153131BB78085D18EEEC46C52CC67E2C9228251AC27C0C ] TrkWks C:\WINDOWS\system32\trkwks.dll 01:45:26.0359 0x0328 TrkWks - ok 01:45:26.0406 0x0328 [ 12F70256F140CD7D52C58C7048FDE657, F2E3E645AA713A520452F5E17513D258D3900E93F65013551FC2B542BFA15BB3 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys 01:45:26.0406 0x0328 Udfs - ok 01:45:26.0421 0x0328 ultra - ok 01:45:26.0468 0x0328 [ AFF2E5045961BBC0A602BB6F95EB1345, FEEF47B9683B0F26355AC0947019DE9AE27002A7019C1C4A2D22FA0046E9F07B ] Update C:\WINDOWS\system32\DRIVERS\update.sys 01:45:26.0468 0x0328 Update - ok 01:45:26.0500 0x0328 [ 387D2A06C8E7CCCEA8E9A350C8FE6781, 70B84B2C09232156DCAF920DB2A9E91BC01F6D356CD7CC5C50F410C986F3DC0B ] upnphost C:\WINDOWS\System32\upnphost.dll 01:45:26.0515 0x0328 upnphost - ok 01:45:26.0531 0x0328 [ 576A2C38CF3904F2CA1107F922288435, EC0FA205B30DA52A59F5BDFC09E8394AA45D9EDA936E2DDA2071007AA37438F0 ] UPS C:\WINDOWS\System32\ups.exe 01:45:26.0531 0x0328 UPS - ok 01:45:26.0562 0x0328 [ BFFD9F120CC63BCBAA3D840F3EEF9F79, 0183D82E341473200FB1A05F6ABBBA3F2BD635654F49599E4CEB3E6394A33D36 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys 01:45:26.0562 0x0328 usbccgp - ok 01:45:26.0578 0x0328 [ 15E993BA2F6946B2BFBBFCD30398621E, 10AD5B133C9C68B8E11DF702C50BDE5162693C5A9F132DFE1823D03D70D4EB89 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys 01:45:26.0578 0x0328 usbehci - ok 01:45:26.0609 0x0328 [ C72F40947F92CEA56A8FB532EDF025F1, EBB9E235C973574B835B1FD22D813E9215029B3FC5030591D6F7971C9A23AEF7 ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys 01:45:26.0609 0x0328 usbhub - ok 01:45:26.0656 0x0328 [ 6CD7B22193718F1D17A47A1CD6D37E75, CFD74FE06819DA488654F88BFCCBF29994FE7F04EC6CD5CD41552B0C95A8130F ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS 01:45:26.0656 0x0328 USBSTOR - ok 01:45:26.0687 0x0328 [ F8FD1400092E23C8F2F31406EF06167B, AE93C83BA1966535AFA3E72D6F69156B7E56F021A6808EC8DA44C7E7D506D7E5 ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys 01:45:26.0687 0x0328 usbuhci - ok 01:45:26.0718 0x0328 [ 8A60EDD72B4EA5AEA8202DAF0E427925, ED0624B285E4F64E07E30C12490873A2090F9DFD6A91A2EDA7A1082B88A8199E ] VgaSave C:\WINDOWS\System32\drivers\vga.sys 01:45:26.0718 0x0328 VgaSave - ok 01:45:26.0734 0x0328 ViaIde - ok 01:45:26.0765 0x0328 Video3D - ok 01:45:26.0796 0x0328 [ ECD173739B8EC10A814CC18653DF5A36, 31E27AB65378946240DB927598B0521743DB72F248E93A3B2027A39D02A37993 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys 01:45:26.0796 0x0328 VolSnap - ok 01:45:26.0828 0x0328 [ FEC1E19B91972105044960B23C442949, 59C49C63B3AA64A7A7D5C2BB3E20F5F2882A69CD342092B3D9E556C7A961B518 ] VSS C:\WINDOWS\System32\vssvc.exe 01:45:26.0843 0x0328 VSS - ok 01:45:26.0875 0x0328 [ 000A0D516A2E20441E77AEA44E46B19B, B9FED26AE07649B93DC0262CD072DA77607320F9ABE08B8A6989AE923697F2C0 ] W32Time C:\WINDOWS\system32\w32time.dll 01:45:26.0875 0x0328 W32Time - ok 01:45:26.0921 0x0328 [ 984EF0B9788ABF89974CFED4BFBAACBC, 8178888E3A1AA3BD3BE34456118BB76AF2DD04EC575E4880F97A8EFB182C9E92 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys 01:45:26.0921 0x0328 Wanarp - ok 01:45:26.0937 0x0328 WDICA - ok 01:45:26.0984 0x0328 [ 2797F33EBF50466020C430EE4F037933, F134F8C091D944880714E4D193D2753BE4F1C18757D5274A892195C4EC9C4D08 ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys 01:45:26.0984 0x0328 wdmaud - ok 01:45:27.0000 0x0328 [ F796BEFE565C59A30A4C61B640557276, 4567405D6D9C3FA3C37BAEC68485C352E66F105B3C2138159F032C068CFA0AC9 ] WebClient C:\WINDOWS\System32\webclnt.dll 01:45:27.0015 0x0328 WebClient - ok 01:45:27.0093 0x0328 [ 482435B2A2DE8E06C83C3B1EB3237C2C, C85915C173D3EE4BCA55E32660F0CB4A1133A4ED549A9751027BC5803076EACE ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll 01:45:27.0093 0x0328 winmgmt - ok 01:45:27.0171 0x0328 [ C51B4A5C05A5475708E3C81C7765B71D, F776D2680BD3407307B7072626F78460361FC5BC38623C9E16F394D300AB25DE ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll 01:45:27.0171 0x0328 WmdmPmSN - ok 01:45:27.0218 0x0328 [ 5822B8BAF16F7CAE6B56E839D65A8BFB, 28FBA2E5BEA8AD03DFE4E6C79A2397161D855A6133E9514EBBF60EFCBE432D3F ] Wmi C:\WINDOWS\System32\advapi32.dll 01:45:27.0234 0x0328 Wmi - ok 01:45:27.0281 0x0328 [ 45E43704611D7C2202A180FF87E63550, 6100097DC3B6244CD42725C6D018EAF236896EEF1C88F91514E8F8EE73D143F8 ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe 01:45:27.0281 0x0328 WmiApSrv - ok 01:45:27.0375 0x0328 [ CDFA647AA82FDBA6C9C7A06155AFCB40, 4ACF2E90E4A933A5C662AFECFFB52997BED865953E452C80A772DF1B049060FD ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe 01:45:27.0390 0x0328 WMPNetworkSvc - ok 01:45:27.0484 0x0328 [ DCF3E3EDF5109EE8BC02FE6E1F045795, 4B8E14B1CFB095982D34DAEC336114F5039D7793080FB787DC95A63B6B945DD0 ] WPFFontCache_v0400 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe 01:45:27.0515 0x0328 WPFFontCache_v0400 - ok 01:45:27.0546 0x0328 [ D5842484F05E12121C511AA93F6439EC, 531888E914578172534BBC3220A86C99D1FCE423E89834B533E0A79F583436F3 ] WSTCODEC C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS 01:45:27.0546 0x0328 WSTCODEC - ok 01:45:27.0593 0x0328 [ 40C600488FF127953AA2F1835E5FD433, B61DB473C55C8D43AD719A73655E1616E956681A01383CCF78EAD9C9E3555645 ] wuauserv C:\WINDOWS\system32\wuauserv.dll 01:45:27.0593 0x0328 wuauserv - ok 01:45:27.0625 0x0328 [ F15FEAFFFBB3644CCC80C5DA584E6311, 79B3E9AF35976CE49921E9BEA3BA3B4A8AF762FD3F284B62954038B5FFB32471 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys 01:45:27.0625 0x0328 WudfPf - ok 01:45:27.0656 0x0328 [ 28B524262BCE6DE1F7EF9F510BA3985B, AEFF02B899801A63CBB262757C3D4369E38BFF0690BD085DE60E873DFBE3C3F4 ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys 01:45:27.0671 0x0328 WudfRd - ok 01:45:27.0687 0x0328 [ 05231C04253C5BC30B26CBAAE680ED89, 5C03C2D7E0B573646D32F4093E2FF2C3BA391C39F5BA37D67F69D38E357FCC3D ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll 01:45:27.0687 0x0328 WudfSvc - ok 01:45:27.0750 0x0328 [ 98A8014DBE72349F73462262CF493574, 428DFBC4F6AF107D234D90BCD35CAB6FD3F7DA873ED6E3D2A623FE1515493FA9 ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll 01:45:27.0750 0x0328 WZCSVC - ok 01:45:27.0781 0x0328 [ E3C9EF5BCC9EB171BD81051CD19BDED7, 3173043B79E59697EB7508B2CD90D9B204EFA9180B5593BB1CC9D43F05E2126C ] xmlprov C:\WINDOWS\System32\xmlprov.dll 01:45:27.0781 0x0328 xmlprov - ok 01:45:27.0828 0x0328 ================ Scan global =============================== 01:45:27.0859 0x0328 [ FF952713E6B51D49B68BBA9233FBAA81, 5D73E4D0773DE7E435BCD4DBBD63B6950E22AA7DE0CE291DFA89EE2A9F7F91DD ] C:\WINDOWS\system32\basesrv.dll 01:45:27.0875 0x0328 [ 143B9018051E3A3CFDE92A861F8080E9, 07F4EFE8E1FC197FDA4220D61BD78D9746509890BF69FCFDA498CA505BC851C9 ] C:\WINDOWS\system32\winsrv.dll 01:45:27.0890 0x0328 [ 143B9018051E3A3CFDE92A861F8080E9, 07F4EFE8E1FC197FDA4220D61BD78D9746509890BF69FCFDA498CA505BC851C9 ] C:\WINDOWS\system32\winsrv.dll 01:45:27.0906 0x0328 [ 3DA8D964D2CC12EF8E8C342471A37917, ECF35FEEBE608A89A0A355BC46567F979BBCFA05C459FD085D922738AB781863 ] C:\WINDOWS\system32\services.exe 01:45:27.0906 0x0328 [ Global ] - ok 01:45:27.0906 0x0328 ================ Scan MBR ================================== 01:45:27.0937 0x0328 [ 32052574BF9F325AE309ABC7BFD04460 ] \Device\Harddisk0\DR0 01:45:28.0140 0x0328 \Device\Harddisk0\DR0 - ok 01:45:28.0140 0x0328 ================ Scan VBR ================================== 01:45:28.0140 0x0328 [ 9395B4288A9CED2A658813AA60C3DB0E ] \Device\Harddisk0\DR0\Partition1 01:45:28.0156 0x0328 \Device\Harddisk0\DR0\Partition1 - detected Rootkit.Boot.Cidox.b ( 0 ) 01:45:28.0156 0x0328 \Device\Harddisk0\DR0\Partition1 ( Rootkit.Boot.Cidox.b ) - infected 01:45:30.0515 0x0328 [ C00F5DD907C57E21229D282EA0C80C4F ] \Device\Harddisk0\DR0\Partition2 01:45:30.0515 0x0328 \Device\Harddisk0\DR0\Partition2 - ok 01:45:30.0531 0x0328 ================ Scan generic autorun ====================== 01:45:30.0562 0x0328 [ 38D198A2DD54A67120040566A38103BA, 01604BD91A5B2C0DDC7B52036511F8219952626716E75979D8464F2C56BA0114 ] C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe 01:45:30.0562 0x0328 GrooveMonitor - ok 01:45:31.0046 0x0328 [ 14D7A3545CC1DE3E3EC6DC900B96ADD2, C52F5832665269EB72B30C98AA936B4E7ED366A2529E24DC194777DE9532118E ] C:\WINDOWS\RTHDCPL.EXE 01:45:31.0500 0x0328 RTHDCPL - ok 01:45:31.0609 0x0328 [ 91D24356B3B549075D9D96F73A463EDA, E8433B5A215B7771918586D97ADDEE278315E1000D67E9BD657CF1E789107B91 ] C:\WINDOWS\SkyTel.EXE 01:45:31.0640 0x0328 SkyTel - ok 01:45:31.0671 0x0328 [ 8B4CBBA1EA526830C7F97E7822E2493A, 1DFD05B1C0050DB44F5B4293E5574BFC292AF804A63FC0A70131BB498C326977 ] C:\WINDOWS\ALCMTR.EXE 01:45:31.0671 0x0328 Alcmtr - ok 01:45:31.0718 0x0328 [ D36ED326635F4F04A330022343D3B486, 0E7028017C95227A65DB18F386F74902B116D02D629314B838C5FD52DBE5AFB9 ] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe 01:45:31.0734 0x0328 NeroFilterCheck - ok 01:45:31.0781 0x0328 [ A72B1F62AC27EA7E62E9EF549BA14229, 8AB276E161CECCB023FEF984842640F179ADA620581655F63A1E7545660100CA ] C:\Program Files\ASUS\AASP\1.00.14\AsRunHelp.exe 01:45:31.0796 0x0328 AsusStartupHelp - ok 01:45:32.0015 0x0328 [ BFFBF59F00D4C7C6EAAD55C89A1339E2, 0780E256912E805941F772927A825FA1A398CB93172C3CD5428147A3F34E5F7B ] C:\Program Files\Overclocking\RivaTuner\RivaTuner.exe 01:45:32.0078 0x0328 RivaTuner - ok 01:45:32.0156 0x0328 [ BFFBF59F00D4C7C6EAAD55C89A1339E2, 0780E256912E805941F772927A825FA1A398CB93172C3CD5428147A3F34E5F7B ] C:\Program Files\Overclocking\RivaTuner\RivaTuner.exe 01:45:32.0203 0x0328 RivaTunerStartupDaemon - ok 01:45:32.0250 0x0328 [ C89E11355515DCEDD0457888CAC6F638, C11D45B96B7AB6B5546167898E07040B28D1BAF7F18C0B91809BD0AC0B9695FA ] C:\Program Files\Overclocking\RivaTuner\Tools\RTSS\RTSS.exe 01:45:32.0265 0x0328 RTSS - ok 01:45:32.0265 0x0328 NvCplDaemon - ok 01:45:32.0281 0x0328 NvMediaCenter - ok 01:45:32.0390 0x0328 [ 3F5E05178C67DC2E9A90D5FA98CDF295, 179FDF42EB42BD6E872DB29B93F8A79AEBA2C9975815B475289FB83B80399011 ] C:\Program Files\NVIDIA Corporation\nview\nwiz.exe 01:45:32.0421 0x0328 nwiz - ok 01:45:32.0500 0x0328 [ 048EA4B978851788E9F5E8E4F081DF7A, EB62719AC0DCC18FF056F2CD84438BF14B61E38F0619617C81961C6257BDFCEC ] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe 01:45:32.0531 0x0328 Adobe ARM - ok 01:45:32.0796 0x0328 [ 0F01BAC5042F046553D2EC0EE5E52B81, A6C694F037CDFF7FB6A39AB48174B6071CF091A94FB916BB107AE3EC12AD8D35 ] C:\Program Files\ESET\egui.exe 01:45:32.0906 0x0328 egui - ok 01:45:32.0984 0x0328 [ 308F2EE28005510DE616409148CF077B, A2126CB185B0053086BDD6F0A16A503F6CA629AC677E4B7AE6D43C770061D087 ] C:\Program Files\Common Files\Java\Java Update\jusched.exe 01:45:32.0984 0x0328 SunJavaUpdateSched - ok 01:45:33.0000 0x0328 [ CBFA30492D70CE3938D8A7783D0C0436, 8FC062811BB0C9FD3DC01D9EED5904A539831A7E97E8C664AFDB4EC89A596D1F ] C:\WINDOWS\system32\CTFMON.EXE 01:45:33.0015 0x0328 CTFMON.EXE - ok 01:45:33.0031 0x0328 [ CBFA30492D70CE3938D8A7783D0C0436, 8FC062811BB0C9FD3DC01D9EED5904A539831A7E97E8C664AFDB4EC89A596D1F ] C:\WINDOWS\system32\CTFMON.EXE 01:45:33.0031 0x0328 CTFMON.EXE - ok 01:45:33.0046 0x0328 [ CBFA30492D70CE3938D8A7783D0C0436, 8FC062811BB0C9FD3DC01D9EED5904A539831A7E97E8C664AFDB4EC89A596D1F ] C:\WINDOWS\system32\CTFMON.EXE 01:45:33.0046 0x0328 CTFMON.EXE - ok 01:45:33.0078 0x0328 [ CBFA30492D70CE3938D8A7783D0C0436, 8FC062811BB0C9FD3DC01D9EED5904A539831A7E97E8C664AFDB4EC89A596D1F ] C:\WINDOWS\system32\ctfmon.exe 01:45:33.0078 0x0328 ctfmon.exe - ok 01:45:33.0125 0x0328 [ E616A6A6E91B0A86F2F6217CDE835FFE, 411671C4B2BB4DB3F02A21C199A5479F31394165704736A549B53245B94577F7 ] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe 01:45:33.0125 0x0328 swg - ok 01:45:33.0250 0x0328 [ B740EBA7B8C0E73EA78A37A0ADF66A26, 80FD12FB632D0E3F59DA6E90EBA28F6840D6DD055984BAADE9F3BDE2D37E25D6 ] C:\Documents and Settings\Jarek\Ustawienia lokalne\Dane aplikacji\Otsics\tmpD2.exe 01:45:33.0250 0x0328 Otsics - ok 01:45:33.0250 0x0328 Ektion - ok 01:45:33.0281 0x0328 [ 0839A1A12C37DF9E2F94E8447F03939A, 7AD06E6AF06299595BA8190D6D5C1888EC5B10D32D4A597E807CCEC6407DEB17 ] C:\WINDOWS\system32\regsvr32.exe 01:45:33.0296 0x0328 YjPack - ok 01:45:33.0390 0x0328 [ D3A40D11D9CA8D081C3FBFCAC1E260A7, 74856AE33E3CD4C70CFB0753FF032F153BA9535A7BDF407F908007A64FC68CED ] C:\Documents and Settings\Jarek\Dane aplikacji\FrameworkUpdate\ChromeUpdate.exe 01:45:33.0406 0x0328 ChromeUpdate - ok 01:45:33.0406 0x0328 Waiting for KSN requests completion. In queue: 78 01:45:34.0406 0x0328 Waiting for KSN requests completion. In queue: 78 01:45:35.0406 0x0328 Waiting for KSN requests completion. In queue: 78 01:45:36.0406 0x0328 Waiting for KSN requests completion. In queue: 78 01:45:37.0406 0x0328 Have new async UDS detects: 2 01:45:37.0406 0x0328 Otsics - detected UDS:DangerousObject.Multi.Generic ( 0 ) 01:45:37.0468 0x0328 Otsics ( UDS:DangerousObject.Multi.Generic ) - infected 01:45:37.0468 0x0328 Force sending object to P2P due to detect: C:\Documents and Settings\Jarek\Ustawienia lokalne\Dane aplikacji\Otsics\tmpD2.exe 01:45:39.0906 0x0328 Object send P2P result: true 01:45:42.0265 0x0328 ChromeUpdate - detected UDS:DangerousObject.Multi.Generic ( 0 ) 01:45:42.0265 0x0328 ChromeUpdate ( UDS:DangerousObject.Multi.Generic ) - infected 01:45:42.0265 0x0328 Force sending object to P2P due to detect: C:\Documents and Settings\Jarek\Dane aplikacji\FrameworkUpdate\ChromeUpdate.exe 01:45:55.0703 0x0328 Object send P2P result: true 01:45:58.0109 0x0328 AV detected via SS1: ESET NOD32 Antivirus 7.0, 7.0, enabled, outofdate 01:46:00.0484 0x0328 ============================================================ 01:46:00.0484 0x0328 Scan finished 01:46:00.0484 0x0328 ============================================================ 01:46:00.0515 0x0764 Detected object count: 4 01:46:00.0515 0x0764 Actual detected object count: 4 01:50:28.0093 0x0764 Serial ( Virus.Win32.ZAccess.k ) - skipped by user 01:50:28.0093 0x0764 Serial ( Virus.Win32.ZAccess.k ) - User select action: Skip 01:50:28.0093 0x0764 \Device\Harddisk0\DR0\Partition1 ( Rootkit.Boot.Cidox.b ) - skipped by user 01:50:28.0093 0x0764 \Device\Harddisk0\DR0\Partition1 ( Rootkit.Boot.Cidox.b ) - User select action: Skip 01:50:28.0109 0x0764 Otsics ( UDS:DangerousObject.Multi.Generic ) - skipped by user 01:50:28.0109 0x0764 Otsics ( UDS:DangerousObject.Multi.Generic ) - User select action: Skip 01:50:28.0125 0x0764 ChromeUpdate ( UDS:DangerousObject.Multi.Generic ) - skipped by user 01:50:28.0125 0x0764 ChromeUpdate ( UDS:DangerousObject.Multi.Generic ) - User select action: Skip 01:50:47.0656 0x061c Deinitialize success