We're aware that some users are experiencing technical issues which the team are working to resolve. See the Community Noticeboard for more info. Thank you for your patience.
📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!

Avast Rootkit Threat MBR Alureon-K

Options
2456

Comments

  • waddler_8
    waddler_8 Posts: 3,588 Forumite
    Yes, include the quote marks.


    "%userprofile%\desktop\aswmbr.exe" -ap 2
  • waddler, new log below.

    aswMBR version 0.9.9.1707 Copyright(c) 2011 AVAST Software
    Run date: 2013-01-27 11:05:21
    11:05:21.500 OS Version: Windows 5.1.2600 Service Pack 3
    11:05:21.500 Number of processors: 1 586 0x207
    11:05:21.500 ComputerName: ANGELA UserName: Angie
    11:05:23.062 Initialize success
    11:05:23.343 AVAST engine defs: 13012601
    11:05:30.703 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3
    11:05:30.703 Disk 0 Vendor: ST360015A 3.33 Size: 57241MB BusType: 3
    11:05:30.734 Disk 0 MBR read successfully
    11:05:30.750 Disk 0 MBR scan
    11:05:30.750 Disk 0 Windows XP default MBR code
    11:05:30.750 Disk 0 Partition 1 00 DE Dell Utility Dell 4.1 31 MB offset 63
    11:05:30.781 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 57208 MB offset 64260
    11:05:30.812 Disk 0 Partition 3 00 17 Hidd HPFS/NTFS NTFS 2 MB offset 117226305
    11:05:30.859 Disk 0 Partition 3 **INFECTED** MBR:Alureon-K [Rtk]
    11:05:30.875 Disk 0 MBR [SST] **ROOTKIT**
    11:05:30.875 Disk 0 trace - called modules:
    11:05:30.921 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys pciide.sys PCIIDEX.SYS
    11:05:30.921 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8738bab8]
    11:05:30.921 3 CLASSPNP.SYS[f76e3fd7] -> nt!IofCallDriver -> \Device\00000068[0x873732a0]
    11:05:30.937 5 ACPI.sys[f765a620] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-3[0x8736f940]
    11:05:32.437 AVAST engine scan C:\WINDOWS
    11:06:25.171 AVAST engine scan C:\WINDOWS\system32
    11:11:00.984 AVAST engine scan C:\WINDOWS\system32\drivers
    11:11:29.531 AVAST engine scan C:\Documents and Settings\Angie
    11:19:36.515 AVAST engine scan C:\Documents and Settings\All Users
    11:27:35.828 Scan finished successfully
    11:37:26.781 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\Angie\Desktop\MBR.dat"
    11:37:26.781 The log file has been saved successfully to "C:\Documents and Settings\Angie\Desktop\aswMBR.txt"

    thank you.
  • waddler_8
    waddler_8 Posts: 3,588 Forumite
    Good, The computer's no longer booting from the malware's partition.

    Download TDSSkiller from the link below and save it to your desktop

    LINK

    • Doubleclick TDSSKiller.exe
    • Click Change parameters
    • Under Objects to scan check Loaded modules in addition to those already checked.
    • Click Reboot now when prompted.
    • After reboot when TDSSKiller has re-loaded, click Start scan and allow it to scan.
    • If Malicious objects are detected, the default action will be Cure, ensure Cure is selected then click Continue
    • If suspicious objects are detected, the default action will be Skip, ensure Skip is selected then click Continue
    • It may ask you to reboot the computer to complete the process. Click on Reboot Now and allow the computer to reboot.
    • A log will be created at the root of your C: drive: TDSSKiller.Version_Date_Time_log.txt.:
    • If no reboot is required, click on Report. A log file should appear.
    • Post the contents in your next reply
  • Waddler

    after doing this "without changing the parameters this time as you did not ask me to click that":


    After reboot when TDSSKiller has re-loaded, click Start scan and allow it to scan.
    • If Malicious objects are detected, the default action will be Cure, ensure Cure is selected then click Continue
    • If suspicious objects are detected, the default action will be Skip, ensure Skip is selected then click Continue
    the result reads 946 objects - no threats found. So there are no malicious objects or suspicious objects.

    There is a "report" option and "close" option but no message to reboot. Should I just click on "Report" and send the log to you.
  • waddler_8
    waddler_8 Posts: 3,588 Forumite
    Yes. The report will be quite big so you'll have to split it up.
  • Waddler

    12:01:39.0375 3396 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35
    12:01:41.0453 3396 ============================================================
    12:01:41.0468 3396 Current date / time: 2013/01/27 12:01:41.0453
    12:01:41.0468 3396 SystemInfo:
    12:01:41.0468 3396
    12:01:41.0468 3396 OS Version: 5.1.2600 ServicePack: 3.0
    12:01:41.0468 3396 Product type: Workstation
    12:01:41.0468 3396 ComputerName: ANGELA
    12:01:41.0468 3396 UserName: Angie
    12:01:41.0468 3396 Windows directory: C:\WINDOWS
    12:01:41.0468 3396 System windows directory: C:\WINDOWS
    12:01:41.0468 3396 Processor architecture: Intel x86
    12:01:41.0468 3396 Number of processors: 1
    12:01:41.0468 3396 Page size: 0x1000
    12:01:41.0468 3396 Boot type: Normal boot
    12:01:41.0468 3396 ============================================================
    12:01:46.0765 3396 BG loaded
    12:01:48.0640 3396 Drive \Device\Harddisk0\DR0 - Size: 0xDF99E6000 (55.90 Gb), SectorSize: 0x200, Cylinders: 0x1C81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
    12:01:48.0796 3396 Drive \Device\Harddisk1\DR4 - Size: 0xE8DED00000 (931.48 Gb), SectorSize: 0x200, Cylinders: 0x1DAFD, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
    12:01:48.0796 3396 ============================================================
    12:01:48.0796 3396 \Device\Harddisk0\DR0:
    12:01:48.0843 3396 MBR partitions:
    12:01:48.0843 3396 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0xFB04, BlocksNum 0x6FBC03D
    12:01:48.0843 3396 \Device\Harddisk1\DR4:
    12:01:48.0843 3396 MBR partitions:
    12:01:48.0843 3396 \Device\Harddisk1\DR4\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x746F6000
    12:01:48.0843 3396 ============================================================
    12:01:49.0156 3396 C: <-> \Device\Harddisk0\DR0\Partition1
    12:01:49.0156 3396 E: <-> \Device\Harddisk1\DR4\Partition1
    12:01:49.0171 3396 ============================================================
    12:01:49.0171 3396 Initialize success
    12:01:49.0187 3396 ============================================================
    12:01:55.0828 3704 ============================================================
    12:01:55.0828 3704 Scan started
    12:01:55.0828 3704 Mode: Manual;
    12:01:55.0828 3704 ============================================================
    12:02:01.0562 3704 ================ Scan system memory ========================
    12:02:01.0562 3704 System memory - ok
    12:02:01.0562 3704 ================ Scan services =============================
    12:02:05.0734 3704 [ 149A8F7ADF9742554DC323E290551E3E ] Aavmker4 C:\WINDOWS\system32\drivers\Aavmker4.sys
    12:02:05.0750 3704 Aavmker4 - ok
    12:02:06.0500 3704 [ B33CF4DE909A5B30F526D82053A63C8E ] ABBYY.Licensing.FineReader.Sprint.9.0 C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
    12:02:06.0500 3704 ABBYY.Licensing.FineReader.Sprint.9.0 - ok
    12:02:06.0531 3704 Abiosdsk - ok
    12:02:06.0640 3704 [ 6ABB91494FE6C59089B9336452AB2EA3 ] abp480n5 C:\WINDOWS\System32\DRIVERS\ABP480N5.SYS
    12:02:06.0640 3704 abp480n5 - ok
    12:02:06.0781 3704 [ 8FD99680A539792A30E97944FDAECF17 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
    12:02:06.0859 3704 ACPI - ok
    12:02:06.0921 3704 [ 9859C0F6936E723E4892D7141B1327D5 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
    12:02:06.0937 3704 ACPIEC - ok
    12:02:07.0000 3704 [ E467A7E56413058EBD74995F682BF684 ] ADILOADER C:\WINDOWS\system32\Drivers\adildr.sys
    12:02:07.0015 3704 ADILOADER - ok
    12:02:07.0109 3704 [ 88FA846846E5080FA2D2FBEC1EF2AEAA ] adiusbaw C:\WINDOWS\system32\DRIVERS\adiusbaw.sys
    12:02:07.0218 3704 adiusbaw - ok
    12:02:07.0359 3704 [ E12CFCF1DDBFC50948A75E6E38793225 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
    12:02:07.0406 3704 AdobeFlashPlayerUpdateSvc - ok
    12:02:07.0484 3704 [ 9A11864873DA202C996558B2106B0BBC ] adpu160m C:\WINDOWS\System32\DRIVERS\adpu160m.sys
    12:02:07.0500 3704 adpu160m - ok
    12:02:07.0546 3704 [ 11C04B17ED2ABBB4833694BCD644AC90 ] aeaudio C:\WINDOWS\system32\drivers\aeaudio.sys
    12:02:07.0656 3704 aeaudio - ok
    12:02:07.0750 3704 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys
    12:02:07.0750 3704 aec - ok
    12:02:07.0859 3704 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys
    12:02:07.0875 3704 AFD - ok
    12:02:07.0953 3704 [ 08FD04AA961BDC77FB983F328334E3D7 ] agp440 C:\WINDOWS\System32\DRIVERS\agp440.sys
    12:02:08.0000 3704 agp440 - ok
    12:02:08.0046 3704 [ 03A7E0922ACFE1B07D5DB2EEB0773063 ] agpCPQ C:\WINDOWS\System32\DRIVERS\agpCPQ.sys
    12:02:08.0125 3704 agpCPQ - ok
    12:02:08.0218 3704 [ C23EA9B5F46C7F7910DB3EAB648FF013 ] Aha154x C:\WINDOWS\System32\DRIVERS\aha154x.sys
    12:02:08.0250 3704 Aha154x - ok
    12:02:08.0312 3704 [ 19DD0FB48B0C18892F70E2E7D61A1529 ] aic78u2 C:\WINDOWS\System32\DRIVERS\aic78u2.sys
    12:02:08.0359 3704 aic78u2 - ok
    12:02:08.0500 3704 [ B7FE594A7468AA0132DEB03FB8E34326 ] aic78xx C:\WINDOWS\System32\DRIVERS\aic78xx.sys
    12:02:08.0531 3704 aic78xx - ok
    12:02:08.0593 3704 [ A9A3DAA780CA6C9671A19D52456705B4 ] Alerter C:\WINDOWS\system32\alrsvc.dll
    12:02:08.0656 3704 Alerter - ok
    12:02:08.0703 3704 [ 8C515081584A38AA007909CD02020B3D ] ALG C:\WINDOWS\System32\alg.exe
    12:02:08.0703 3704 ALG - ok
    12:02:08.0796 3704 [ 1140AB9938809700B46BB88E46D72A96 ] AliIde C:\WINDOWS\System32\DRIVERS\aliide.sys
    12:02:08.0890 3704 AliIde - ok
    12:02:08.0921 3704 [ CB08AED0DE2DD889A8A820CD8082D83C ] alim1541 C:\WINDOWS\System32\DRIVERS\alim1541.sys
    12:02:08.0937 3704 alim1541 - ok
    12:02:08.0984 3704 [ 95B4FB835E28AA1336CEEB07FD5B9398 ] amdagp C:\WINDOWS\System32\DRIVERS\amdagp.sys
    12:02:09.0015 3704 amdagp - ok
    12:02:09.0062 3704 [ 79F5ADD8D24BD6893F2903A3E2F3FAD6 ] amsint C:\WINDOWS\System32\DRIVERS\amsint.sys
    12:02:09.0187 3704 amsint - ok
    12:02:09.0593 3704 [ 018857EAD9A077A56AEDFC0E5EF7A24A ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    12:02:09.0593 3704 Apple Mobile Device - ok
    12:02:09.0625 3704 AppMgmt - ok
    12:02:09.0687 3704 [ 62D318E9A0C8FC9B780008E724283707 ] asc C:\WINDOWS\System32\DRIVERS\asc.sys
    12:02:09.0734 3704 asc - ok
    12:02:09.0781 3704 [ 69EB0CC7714B32896CCBFD5EDCBEA447 ] asc3350p C:\WINDOWS\System32\DRIVERS\asc3350p.sys
    12:02:09.0796 3704 asc3350p - ok
    12:02:09.0828 3704 [ 5D8DE112AA0254B907861E9E9C31D597 ] asc3550 C:\WINDOWS\System32\DRIVERS\asc3550.sys
    12:02:09.0843 3704 asc3550 - ok
    12:02:10.0593 3704 [ 776ACEFA0CA9DF0FAA51A5FB2F435705 ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
    12:02:11.0078 3704 aspnet_state - ok
    12:02:11.0125 3704 [ DE6ED95AEF259979B2830450072A627B ] aswFsBlk C:\WINDOWS\system32\drivers\aswFsBlk.sys
    12:02:11.0125 3704 aswFsBlk - ok
    12:02:11.0265 3704 [ 84F0BE324EE111338589F448C3E8BAB2 ] aswMon2 C:\WINDOWS\system32\drivers\aswMon2.sys
    12:02:11.0281 3704 aswMon2 - ok
    12:02:11.0375 3704 [ 7C9F0A2AB17D52261A9252A2EB320884 ] AswRdr C:\WINDOWS\system32\drivers\AswRdr.sys
    12:02:11.0375 3704 AswRdr - ok
    12:02:11.0968 3704 [ B32E9AD44A1DBB3E8095E80F8DF32B03 ] aswSnx C:\WINDOWS\system32\drivers\aswSnx.sys
    12:02:11.0984 3704 aswSnx - ok
    12:02:12.0140 3704 [ 67B558895695545FB0568B7541F3BCA7 ] aswSP C:\WINDOWS\system32\drivers\aswSP.sys
    12:02:12.0140 3704 aswSP - ok
    12:02:12.0203 3704 [ E3E73B2B73A4DFADFDDF557192C4B08A ] aswTdi C:\WINDOWS\system32\drivers\aswTdi.sys
    12:02:12.0234 3704 aswTdi - ok
    12:02:12.0328 3704 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
    12:02:12.0359 3704 AsyncMac - ok
    12:02:12.0500 3704 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
    12:02:12.0515 3704 atapi - ok
    12:02:12.0531 3704 Atdisk - ok
    12:02:12.0578 3704 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
    12:02:12.0593 3704 Atmarpc - ok
    12:02:12.0687 3704 [ DEF7A7882BEC100FE0B2CE2549188F9D ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
    12:02:12.0703 3704 AudioSrv - ok
    12:02:12.0781 3704 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
    12:02:12.0796 3704 audstub - ok
    12:02:13.0078 3704 [ 8FA553E9AE69808D99C164733A0F9590 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
    12:02:13.0078 3704 avast! Antivirus - ok
    12:02:13.0156 3704 [ F5C0D3C93235A455CDD13C954ADF1A80 ] bcm4sbxp C:\WINDOWS\system32\DRIVERS\bcm4sbxp.sys
    12:02:13.0187 3704 bcm4sbxp - ok
    12:02:13.0843 3704 [ 41347688046D49CDE0F6D138A534F73D ] BCMModem C:\WINDOWS\system32\DRIVERS\BCMSM.sys
    12:02:14.0515 3704 BCMModem - ok
    12:02:14.0593 3704 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
    12:02:14.0609 3704 Beep - ok
    12:02:14.0671 3704 [ 7741690C21A7F99453CBE5DEE8AF6907 ] BFAIFILT C:\WINDOWS\system32\Drivers\bfaifilt.sys
    12:02:14.0687 3704 BFAIFILT - ok
    12:02:14.0984 3704 [ 574738F61FCA2935F5265DC4E5691314 ] BITS C:\WINDOWS\system32\qmgr.dll
    12:02:18.0843 3704 BITS - ok
    12:02:19.0187 3704 [ F832F1505AD8B83474BD9A5B1B985E01 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
    12:02:19.0187 3704 Bonjour Service - ok
    12:02:19.0390 3704 [ CFD4E51402DA9838B5A04AE680AF54A0 ] Browser C:\WINDOWS\System32\browser.dll
    12:02:19.0390 3704 Browser - ok
  • 12:02:09.0734 3704 asc - ok
    12:02:09.0781 3704 [ 69EB0CC7714B32896CCBFD5EDCBEA447 ] asc3350p C:\WINDOWS\System32\DRIVERS\asc3350p.sys
    12:02:09.0796 3704 asc3350p - ok
    12:02:09.0828 3704 [ 5D8DE112AA0254B907861E9E9C31D597 ] asc3550 C:\WINDOWS\System32\DRIVERS\asc3550.sys
    12:02:09.0843 3704 asc3550 - ok
    12:02:10.0593 3704 [ 776ACEFA0CA9DF0FAA51A5FB2F435705 ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
    12:02:11.0078 3704 aspnet_state - ok
    12:02:11.0125 3704 [ DE6ED95AEF259979B2830450072A627B ] aswFsBlk C:\WINDOWS\system32\drivers\aswFsBlk.sys
    12:02:11.0125 3704 aswFsBlk - ok
    12:02:11.0265 3704 [ 84F0BE324EE111338589F448C3E8BAB2 ] aswMon2 C:\WINDOWS\system32\drivers\aswMon2.sys
    12:02:11.0281 3704 aswMon2 - ok
    12:02:11.0375 3704 [ 7C9F0A2AB17D52261A9252A2EB320884 ] AswRdr C:\WINDOWS\system32\drivers\AswRdr.sys
    12:02:11.0375 3704 AswRdr - ok
    12:02:11.0968 3704 [ B32E9AD44A1DBB3E8095E80F8DF32B03 ] aswSnx C:\WINDOWS\system32\drivers\aswSnx.sys
    12:02:11.0984 3704 aswSnx - ok
    12:02:12.0140 3704 [ 67B558895695545FB0568B7541F3BCA7 ] aswSP C:\WINDOWS\system32\drivers\aswSP.sys
    12:02:12.0140 3704 aswSP - ok
    12:02:12.0203 3704 [ E3E73B2B73A4DFADFDDF557192C4B08A ] aswTdi C:\WINDOWS\system32\drivers\aswTdi.sys
    12:02:12.0234 3704 aswTdi - ok
    12:02:12.0328 3704 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
    12:02:12.0359 3704 AsyncMac - ok
    12:02:12.0500 3704 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
    12:02:12.0515 3704 atapi - ok
    12:02:12.0531 3704 Atdisk - ok
    12:02:12.0578 3704 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
    12:02:12.0593 3704 Atmarpc - ok
    12:02:12.0687 3704 [ DEF7A7882BEC100FE0B2CE2549188F9D ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
    12:02:12.0703 3704 AudioSrv - ok
    12:02:12.0781 3704 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
    12:02:12.0796 3704 audstub - ok
    12:02:13.0078 3704 [ 8FA553E9AE69808D99C164733A0F9590 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
    12:02:13.0078 3704 avast! Antivirus - ok
    12:02:13.0156 3704 [ F5C0D3C93235A455CDD13C954ADF1A80 ] bcm4sbxp C:\WINDOWS\system32\DRIVERS\bcm4sbxp.sys
    12:02:13.0187 3704 bcm4sbxp - ok
    12:02:13.0843 3704 [ 41347688046D49CDE0F6D138A534F73D ] BCMModem C:\WINDOWS\system32\DRIVERS\BCMSM.sys
    12:02:14.0515 3704 BCMModem - ok
    12:02:14.0593 3704 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
    12:02:14.0609 3704 Beep - ok
    12:02:14.0671 3704 [ 7741690C21A7F99453CBE5DEE8AF6907 ] BFAIFILT C:\WINDOWS\system32\Drivers\bfaifilt.sys
    12:02:14.0687 3704 BFAIFILT - ok
    12:02:14.0984 3704 [ 574738F61FCA2935F5265DC4E5691314 ] BITS C:\WINDOWS\system32\qmgr.dll
    12:02:18.0843 3704 BITS - ok
    12:02:19.0187 3704 [ F832F1505AD8B83474BD9A5B1B985E01 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
    12:02:19.0187 3704 Bonjour Service - ok
    12:02:19.0390 3704 [ CFD4E51402DA9838B5A04AE680AF54A0 ] Browser C:\WINDOWS\System32\browser.dll
    12:02:19.0390 3704 Browser - ok
    12:02:19.0421 3704 btaudio - ok
    12:02:19.0437 3704 BTDriver - ok
    12:02:19.0515 3704 [ B279426E3C0C344893ED78A613A73BDE ] BthEnum C:\WINDOWS\system32\DRIVERS\BthEnum.sys
    12:02:19.0609 3704 BthEnum - ok
    12:02:19.0656 3704 [ FCA6F069597B62D42495191ACE3FC6C1 ] BTHMODEM C:\WINDOWS\system32\DRIVERS\bthmodem.sys
    12:02:19.0671 3704 BTHMODEM - ok
    12:02:19.0781 3704 [ 80602B8746D3738F5886CE3D67EF06B6 ] BthPan C:\WINDOWS\system32\DRIVERS\bthpan.sys
    12:02:19.0906 3704 BthPan - ok
    12:02:20.0015 3704 [ 662BFD909447DD9CC15B1A1C366583B4 ] BTHPORT C:\WINDOWS\system32\Drivers\BTHport.sys
    12:02:20.0390 3704 BTHPORT - ok
    12:02:20.0468 3704 [ F4C43C66471B87996D95DB7A3A664A37 ] BthServ C:\WINDOWS\System32\bthserv.dll
    12:02:20.0484 3704 BthServ - ok
    12:02:20.0515 3704 [ 61364CD71EF63B0F038B7E9DF00F1EFA ] BTHUSB C:\WINDOWS\system32\Drivers\BTHUSB.sys
    12:02:20.0531 3704 BTHUSB - ok
    12:02:20.0562 3704 BTWDNDIS - ok
    12:02:20.0593 3704 BTWUSB - ok
    12:02:20.0656 3704 [ DF306FDAF60511B1F117B34A575ABE07 ] BUFADPT C:\WINDOWS\system32\BUFADPT.SYS
    12:02:20.0656 3704 BUFADPT - ok
    12:02:20.0671 3704 bvrp_pci - ok
    12:02:20.0734 3704 [ 8C4188E83E3B6E5C3DDBB7617820AF8E ] CardReaderFilter C:\WINDOWS\system32\Drivers\USBCRFT.SYS
    12:02:20.0750 3704 CardReaderFilter - ok
    12:02:22.0062 3704 catchme - ok
    12:02:22.0140 3704 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf C:\WINDOWS\System32\DRIVERS\cbidf2k.sys
    12:02:22.0156 3704 cbidf - ok
    12:02:22.0187 3704 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
    12:02:22.0187 3704 cbidf2k - ok
    12:02:22.0250 3704 [ F3EC03299634490E97BBCE94CD2954C7 ] cd20xrnt C:\WINDOWS\System32\DRIVERS\cd20xrnt.sys
    12:02:22.0265 3704 cd20xrnt - ok
    12:02:22.0328 3704 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
    12:02:22.0343 3704 Cdaudio - ok
    12:02:22.0437 3704 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
    12:02:22.0437 3704 Cdfs - ok
    12:02:22.0500 3704 [ 814ACB9B8A55804D9878248B3C79F862 ] Cdr4_xp C:\WINDOWS\system32\drivers\Cdr4_xp.sys
    12:02:22.0515 3704 Cdr4_xp - ok
    12:02:22.0546 3704 [ BCE7213F8AA1BC9D5C08F81CB05E10A7 ] Cdralw2k C:\WINDOWS\system32\drivers\Cdralw2k.sys
    12:02:22.0578 3704 Cdralw2k - ok
    12:02:22.0609 3704 [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
    12:02:22.0640 3704 Cdrom - ok
    12:02:22.0828 3704 [ 072070A498D5FAD70C3A99A5F0B1331B ] cdudf_xp C:\WINDOWS\system32\drivers\cdudf_xp.sys
    12:02:22.0890 3704 cdudf_xp - ok
    12:02:22.0984 3704 [ 67B20DA4727F54AEA29FDDAD810C898D ] cfwids C:\WINDOWS\system32\drivers\cfwids.sys
    12:02:23.0015 3704 cfwids - ok
    12:02:23.0031 3704 Changer - ok
    12:02:23.0093 3704 [ 1CFE720EB8D93A7158A4EBC3AB178BDE ] CiSvc C:\WINDOWS\system32\cisvc.exe
    12:02:23.0109 3704 CiSvc - ok
    12:02:23.0171 3704 [ 34CBE729F38138217F9C80212A2A0C82 ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
    12:02:23.0187 3704 ClipSrv - ok
    12:02:23.0734 3704 [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
    12:02:24.0468 3704 clr_optimization_v2.0.50727_32 - ok
    12:02:24.0843 3704 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
    12:02:25.0468 3704 clr_optimization_v4.0.30319_32 - ok
    12:02:25.0531 3704 [ E5DCB56C533014ECBC556A8357C929D5 ] CmdIde C:\WINDOWS\System32\DRIVERS\cmdide.sys
    12:02:25.0546 3704 CmdIde - ok
    12:02:25.0578 3704 COMSysApp - ok
    12:02:25.0625 3704 [ 3EE529119EED34CD212A215E8C40D4B6 ] Cpqarray C:\WINDOWS\System32\DRIVERS\cpqarray.sys
    12:02:25.0640 3704 Cpqarray - ok
    12:02:25.0734 3704 [ 3D4E199942E29207970E04315D02AD3B ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
    12:02:25.0734 3704 CryptSvc - ok
    12:02:25.0828 3704 [ CB6FF7012BB5D59D7C12350DB795CE1F ] ctxusbm C:\WINDOWS\system32\DRIVERS\ctxusbm.sys
    12:02:25.0828 3704 ctxusbm - ok
    12:02:25.0906 3704 [ E550E7418984B65A78299D248F0A7F36 ] dac2w2k C:\WINDOWS\System32\DRIVERS\dac2w2k.sys
    12:02:25.0921 3704 dac2w2k - ok
    12:02:25.0937 3704 [ 683789CAA3864EB46125AE86FF677D34 ] dac960nt C:\WINDOWS\System32\DRIVERS\dac960nt.sys
    12:02:25.0953 3704 dac960nt - ok
    12:02:26.0171 3704 [ 6B27A5C03DFB94B4245739065431322C ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
    12:02:26.0203 3704 DcomLaunch - ok
    12:02:26.0265 3704 [ 6CC6C4B9D7B906A151AA094CA087B9F0 ] dg_ssudbus C:\WINDOWS\system32\DRIVERS\ssudbus.sys
    12:02:26.0281 3704 dg_ssudbus - ok
    12:02:26.0390 3704 [ 5E38D7684A49CACFB752B046357E0589 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
    12:02:26.0406 3704 Dhcp - ok
    12:02:26.0468 3704 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
    12:02:26.0500 3704 Disk - ok
    12:02:26.0515 3704 dmadmin - ok
    12:02:26.0671 3704 [ D992FE1274BDE0F84AD826ACAE022A41 ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
    12:02:26.0734 3704 dmboot - ok
    12:02:26.0781 3704 [ 7C824CF7BBDE77D95C08005717A95F6F ] dmio C:\WINDOWS\system32\drivers\dmio.sys
    12:02:26.0828 3704 dmio - ok
    12:02:26.0890 3704 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
    12:02:26.0906 3704 dmload - ok
    12:02:26.0953 3704 [ 57EDEC2E5F59F0335E92F35184BC8631 ] dmserver C:\WINDOWS\System32\dmserver.dll
    12:02:27.0000 3704 dmserver - ok
    12:02:27.0046 3704 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
    12:02:27.0046 3704 DMusic - ok
    12:02:27.0109 3704 [ 5F7E24FA9EAB896051FFB87F840730D2 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
    12:02:27.0109 3704 Dnscache - ok
    12:02:27.0203 3704 [ 0F0F6E687E5E15579EF4DA8DD6945814 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
    12:02:27.0218 3704 Dot3svc - ok
    12:02:27.0312 3704 [ 40F3B93B4E5B0126F2F5C0A7A5E22660 ] dpti2o C:\WINDOWS\System32\DRIVERS\dpti2o.sys
    12:02:27.0328 3704 dpti2o - ok
    12:02:27.0390 3704 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
    12:02:27.0390 3704 drmkaud - ok
  • 12:02:30.0218 3704 [ 7BD2DE4C85EB4241EED57672B16A7D8D ] HidBth C:\WINDOWS\system32\DRIVERS\hidbth.sys
    12:02:30.0218 3704 HidBth - ok
    12:02:30.0250 3704 HidServ - ok
    12:02:30.0296 3704 [ CCF82C5EC8A7326C3066DE870C06DAF1 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys
    12:02:30.0312 3704 HidUsb - ok
    12:02:30.0406 3704 [ 8878BD685E490239777BFE51320B88E9 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
    12:02:30.0421 3704 hkmsvc - ok
    12:02:30.0453 3704 hktxllre - ok
    12:02:30.0531 3704 [ B028377DEA0546A5FCFBA928A8AEFAE0 ] hpn C:\WINDOWS\System32\DRIVERS\hpn.sys
    12:02:30.0546 3704 hpn - ok
    12:02:30.0750 3704 [ F80A415EF82CD06FFAF0D971528EAD38 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
    12:02:30.0750 3704 HTTP - ok
    12:02:30.0828 3704 [ 6100A808600F44D999CEBDEF8841C7A3 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
    12:02:30.0875 3704 HTTPFilter - ok
    12:02:30.0937 3704 [ 9368670BD426EBEA5E8B18A62416EC28 ] i2omgmt C:\WINDOWS\system32\drivers\i2omgmt.sys
    12:02:30.0953 3704 i2omgmt - ok
    12:02:31.0000 3704 [ F10863BF1CCC290BABD1A09188AE49E0 ] i2omp C:\WINDOWS\System32\DRIVERS\i2omp.sys
    12:02:31.0015 3704 i2omp - ok
    12:02:31.0062 3704 [ 4A0B06AA8943C1E332520F7440C0AA30 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
    12:02:31.0078 3704 i8042prt - ok
    12:02:31.0171 3704 [ 06B7EF73BA5F302EECC294CDF7E19702 ] i81x C:\WINDOWS\system32\DRIVERS\i81xnt5.sys
    12:02:31.0250 3704 i81x - ok
    12:02:31.0296 3704 [ 7B5B44EFE5EB9DADFB8EE29700885D23 ] iAimFP0 C:\WINDOWS\system32\DRIVERS\wADV01nt.sys
    12:02:31.0296 3704 iAimFP0 - ok
    12:02:31.0343 3704 [ EB1F6BAB6C22EDE0BA551B527475F7E9 ] iAimFP1 C:\WINDOWS\system32\DRIVERS\wADV02NT.sys
    12:02:31.0359 3704 iAimFP1 - ok
    12:02:31.0421 3704 [ 03CE989D846C1AA81145CB22FCB86D06 ] iAimFP2 C:\WINDOWS\system32\DRIVERS\wADV05NT.sys
    12:02:31.0437 3704 iAimFP2 - ok
    12:02:31.0484 3704 [ 525849B4469DE021D5D61B4DB9BE3A9D ] iAimFP3 C:\WINDOWS\system32\DRIVERS\wSiINTxx.sys
    12:02:31.0500 3704 iAimFP3 - ok
    12:02:31.0562 3704 [ 589C2BCDB5BD602BF7B63D210407EF8C ] iAimFP4 C:\WINDOWS\system32\DRIVERS\wVchNTxx.sys
    12:02:31.0578 3704 iAimFP4 - ok
    12:02:31.0609 3704 [ D83BDD5C059667A2F647A6BE5703A4D2 ] iAimTV0 C:\WINDOWS\system32\DRIVERS\wATV01nt.sys
    12:02:31.0625 3704 iAimTV0 - ok
    12:02:31.0671 3704 [ ED968D23354DAA0D7C621580C012A1F6 ] iAimTV1 C:\WINDOWS\system32\DRIVERS\wATV02NT.sys
    12:02:31.0703 3704 iAimTV1 - ok
    12:02:31.0718 3704 iAimTV2 - ok
    12:02:31.0765 3704 [ D738273F218A224C1DDAC04203F27A84 ] iAimTV3 C:\WINDOWS\system32\DRIVERS\wATV04nt.sys
    12:02:31.0781 3704 iAimTV3 - ok
    12:02:31.0890 3704 [ 0052D118995CBAB152DAABE6106D1442 ] iAimTV4 C:\WINDOWS\system32\DRIVERS\wCh7xxNT.sys
    12:02:31.0906 3704 iAimTV4 - ok
    12:02:32.0265 3704 [ 44B7D5A4F2BD9FE21AEA0BB0BACE38C4 ] ialm C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
    12:02:32.0390 3704 ialm - ok
    12:02:32.0640 3704 [ 1CF03C69B49ACB70C722DF92755C0C8C ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    12:02:32.0640 3704 IDriverT - ok
    12:02:32.0765 3704 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
    12:02:32.0875 3704 idsvc - ok
    12:02:32.0953 3704 [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
    12:02:33.0046 3704 Imapi - ok
    12:02:33.0156 3704 [ 30DEAF54A9755BB8546168CFE8A6B5E1 ] ImapiService C:\WINDOWS\system32\imapi.exe
    12:02:33.0171 3704 ImapiService - ok
    12:02:33.0234 3704 [ 4A40E045FAEE58631FD8D91AFC620719 ] ini910u C:\WINDOWS\System32\DRIVERS\ini910u.sys
    12:02:33.0250 3704 ini910u - ok
    12:02:33.0296 3704 [ B5466A9250342A7AA0CD1FBA13420678 ] IntelIde C:\WINDOWS\System32\DRIVERS\intelide.sys
    12:02:33.0312 3704 IntelIde - ok
    12:02:33.0359 3704 [ 8C953733D8F36EB2133F5BB58808B66B ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
    12:02:33.0390 3704 intelppm - ok
    12:02:33.0468 3704 [ 3BB22519A194418D5FEC05D800A19AD0 ] ip6fw C:\WINDOWS\system32\drivers\ip6fw.sys
    12:02:33.0531 3704 ip6fw - ok
    12:02:33.0593 3704 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
    12:02:33.0609 3704 IpFilterDriver - ok
    12:02:33.0640 3704 [ B87AB476DCF76E72010632B5550955F5 ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
    12:02:33.0656 3704 IpInIp - ok
    12:02:33.0765 3704 [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
    12:02:33.0765 3704 IpNat - ok
    12:02:34.0343 3704 [ 0CA8C2E721617AA2F923A8151C96FB33 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
    12:02:34.0562 3704 iPod Service - ok
    12:02:34.0656 3704 [ 23C74D75E36E7158768DD63D92789A91 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
    12:02:34.0671 3704 IPSec - ok
    12:02:34.0718 3704 [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
    12:02:34.0734 3704 IRENUM - ok
    12:02:34.0796 3704 [ 05A299EC56E52649B1CF2FC52D20F2D7 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
    12:02:34.0796 3704 isapnp - ok
    12:02:34.0843 3704 [ 463C1EC80CD17420A542B7F36A36F128 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
    12:02:34.0843 3704 Kbdclass - ok
    12:02:34.0906 3704 [ 9EF487A186DEA361AA06913A75B3FA99 ] kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys
    12:02:34.0906 3704 kbdhid - ok
    12:02:34.0937 3704 [ 692BCF44383D056AED41B045A323D378 ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
    12:02:34.0953 3704 kmixer - ok
    12:02:35.0015 3704 [ B467646C54CC746128904E1654C750C1 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
    12:02:35.0031 3704 KSecDD - ok
    12:02:35.0093 3704 [ 3A7C3CBE5D96B8AE96CE81F0B22FB527 ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
    12:02:35.0125 3704 lanmanserver - ok
    12:02:35.0187 3704 [ A8888A5327621856C0CEC4E385F69309 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
    12:02:35.0234 3704 lanmanworkstation - ok
    12:02:35.0250 3704 lbrtfdc - ok
    12:02:35.0281 3704 ldjuhl - ok
    12:02:35.0359 3704 [ A7DB739AE99A796D91580147E919CC59 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
    12:02:35.0375 3704 LmHosts - ok
    12:02:35.0406 3704 [ 986B1FF5814366D71E0AC5755C88F2D3 ] Messenger C:\WINDOWS\System32\msgsvc.dll
    12:02:35.0437 3704 Messenger - ok
    12:02:35.0500 3704 [ BA3004F4C0A0CD19DB9C2C0AB3A84EFE ] mfeapfk C:\WINDOWS\system32\drivers\mfeapfk.sys
    12:02:35.0515 3704 mfeapfk - ok
    12:02:35.0578 3704 [ 39C20B7D9AC19BFE616CA09DD3A240AF ] mfeavfk C:\WINDOWS\system32\drivers\mfeavfk.sys
    12:02:35.0593 3704 mfeavfk - ok
    12:02:35.0625 3704 [ E3470DECDA0A4015A0CA00ED645F2EBE ] mfebopk C:\WINDOWS\system32\drivers\mfebopk.sys
    12:02:35.0640 3704 mfebopk - ok
    12:02:35.0656 3704 mfefire - ok
    12:02:35.0718 3704 [ C8AC8147E02ED8795E1FD946165BACCF ] mfefirek C:\WINDOWS\system32\drivers\mfefirek.sys
    12:02:35.0750 3704 mfefirek - ok
    12:02:35.0843 3704 [ 7AAF92954D8D2801B17A1163C60ABFE9 ] mfehidk C:\WINDOWS\system32\drivers\mfehidk.sys
    12:02:35.0875 3704 mfehidk - ok
    12:02:35.0937 3704 [ FCFAB391E3736769FE5865F3ACB3DCCB ] mfetdi2k C:\WINDOWS\system32\drivers\mfetdi2k.sys
    12:02:35.0937 3704 mfetdi2k - ok
    12:02:35.0984 3704 [ 82B7415D5A8FB24D3F6736400F5E1600 ] mfevtp C:\WINDOWS\system32\mfevtps.exe
    12:02:36.0015 3704 mfevtp - ok
    12:02:36.0046 3704 [ E97E3FE03B6F271336CB2FBB24734989 ] mmc_2K C:\WINDOWS\system32\drivers\mmc_2K.sys
    12:02:36.0046 3704 mmc_2K - ok
    12:02:36.0109 3704 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
    12:02:36.0125 3704 mnmdd - ok
    12:02:36.0187 3704 [ D18F1F0C101D06A1C1ADF26EED16FCDD ] mnmsrvc C:\WINDOWS\System32\mnmsrvc.exe
    12:02:36.0218 3704 mnmsrvc - ok
    12:02:36.0265 3704 [ DFCBAD3CEC1C5F964962AE10E0BCC8E1 ] Modem C:\WINDOWS\system32\drivers\Modem.sys
    12:02:36.0281 3704 Modem - ok
    12:02:36.0343 3704 [ 1992E0D143B09653AB0F9C5E04B0FD65 ] MODEMCSA C:\WINDOWS\system32\drivers\MODEMCSA.sys
    12:02:36.0343 3704 MODEMCSA - ok
    12:02:36.0390 3704 [ 35C9E97194C8CFB8430125F8DBC34D04 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
    12:02:36.0390 3704 Mouclass - ok
    12:02:36.0453 3704 [ B1C303E17FB9D46E87A98E4BA6769685 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
    12:02:36.0453 3704 mouhid - ok
    12:02:36.0500 3704 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
    12:02:36.0515 3704 MountMgr - ok
    12:02:36.0609 3704 [ 9C3758018DED02F4AE53CCA1C5F084A2 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
    12:02:36.0609 3704 MozillaMaintenance - ok
    12:02:36.0656 3704 [ 3F4BB95E5A44F3BE34824E8E7CAF0737 ] mraid35x C:\WINDOWS\System32\DRIVERS\mraid35x.sys
    12:02:36.0656 3704 mraid35x - ok
    12:02:36.0718 3704 [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
    12:02:36.0718 3704 MRxDAV - ok
    12:02:36.0796 3704 [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
    12:02:36.0812 3704 MRxSmb - ok
    12:02:36.0875 3704 [ A137F1470499A205ABBB9AAFB3B6F2B1 ] MSDTC C:\WINDOWS\System32\msdtc.exe
    12:02:36.0890 3704 MSDTC - ok
    12:02:36.0953 3704 [ C941EA2454BA8350021D774DAF0F1027 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
    12:02:36.0953 3704 Msfs - ok
    12:02:36.0984 3704 MSIServer - ok
    12:02:37.0031 3704 [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
    12:02:37.0046 3704 MSKSSRV - ok
    12:02:37.0062 3704 [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
    12:02:37.0078 3704 MSPCLOCK - ok
    12:02:37.0093 3704 [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
    12:02:37.0109 3704 MSPQM - ok
    12:02:37.0140 3704 [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
    12:02:37.0140 3704 mssmbios - ok
    12:02:37.0203 3704 [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
    12:02:37.0218 3704 Mup - ok
    12:02:37.0281 3704 [ 0102140028FAD045756796E1C685D695 ] napagent C:\WINDOWS\System32\qagentrt.dll
    12:02:37.0312 3704 napagent - ok
    12:02:37.0375 3704 [ 1DF7F42665C94B825322FAE71721130D ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
    12:02:37.0390 3704 NDIS - ok
    12:02:37.0453 3704 [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
    12:02:37.0453 3704 NdisTapi - ok
    12:02:37.0500 3704 [ F927A4434C5028758A842943EF1A3849 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
    12:02:37.0500 3704 Ndisuio - ok
    12:02:37.0531 3704 [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
    12:02:37.0531 3704 NdisWan - ok
    12:02:37.0609 3704 [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
    12:02:37.0609 3704 NDProxy - ok
    12:02:37.0671 3704 [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
    12:02:37.0671 3704 NetBIOS - ok
    12:02:37.0703 3704 [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
    12:02:37.0718 3704 NetBT - ok
    12:02:37.0765 3704 [ B857BA82860D7FF85AE29B095645563B ] NetDDE C:\WINDOWS\system32\netdde.exe
    12:02:37.0796 3704 NetDDE - ok
    12:02:37.0828 3704 [ B857BA82860D7FF85AE29B095645563B ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
    12:02:37.0843 3704 NetDDEdsdm - ok
    12:02:37.0890 3704 [ BF2466B3E18E970D8A976FB95FC1CA85 ] Netlogon C:\WINDOWS\system32\lsass.exe
    12:02:37.0906 3704 Netlogon - ok
    12:02:37.0937 3704 [ 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE ] Netman C:\WINDOWS\System32\netman.dll
    12:02:37.0968 3704 Netman - ok
    12:02:38.0046 3704 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
    12:02:38.0156 3704 NetTcpPortSharing - ok
    12:02:38.0203 3704 [ 943337D786A56729263071623BBB9DE5 ] Nla C:\WINDOWS\System32\mswsock.dll
    12:02:38.0234 3704 Nla - ok
    12:02:38.0296 3704 [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
    12:02:38.0296 3704 Npfs - ok
    12:02:38.0343 3704 [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
    12:02:38.0375 3704 Ntfs - ok
    12:02:38.0421 3704 [ BF2466B3E18E970D8A976FB95FC1CA85 ] NtLmSsp C:\WINDOWS\System32\lsass.exe
    12:02:38.0437 3704 NtLmSsp - ok
    12:02:38.0500 3704 [ 156F64A3345BD23C600655FB4D10BC08 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
    12:02:38.0546 3704 NtmsSvc - ok
  • 12:02:38.0578 3704 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
    12:02:38.0593 3704 Null - ok
    12:02:38.0734 3704 [ 2B298519EDBFCF451D43E0F1E8F1006D ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
    12:02:38.0828 3704 nv - ok
    12:02:38.0906 3704 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
    12:02:38.0921 3704 NwlnkFlt - ok
    12:02:38.0984 3704 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
    12:02:39.0000 3704 NwlnkFwd - ok
    12:02:39.0062 3704 [ 1D98907D80461371437A7C898C58C8AE ] omci C:\WINDOWS\system32\DRIVERS\omci.sys
    12:02:39.0062 3704 omci - ok
    12:02:39.0125 3704 [ C90018BAFDC7098619A4A95B046B30F3 ] P3 C:\WINDOWS\system32\DRIVERS\p3.sys
    12:02:39.0125 3704 P3 - ok
    12:02:39.0171 3704 [ 5575FAF8F97CE5E713D108C2A58D7C7C ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys
    12:02:39.0171 3704 Parport - ok
    12:02:39.0218 3704 [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
    12:02:39.0218 3704 PartMgr - ok
    12:02:39.0296 3704 [ 70E98B3FD8E963A6A46A2E6247E0BEA1 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
    12:02:39.0296 3704 ParVdm - ok
    12:02:39.0328 3704 [ A219903CCF74233761D92BEF471A07B1 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
    12:02:39.0343 3704 PCI - ok
    12:02:39.0359 3704 PCIDump - ok
    12:02:39.0390 3704 [ CCF5F451BB1A5A2A522A76E670000FF0 ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
    12:02:39.0390 3704 PCIIde - ok
    12:02:39.0453 3704 [ 9E89EF60E9EE05E3F2EEF2DA7397F1C1 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
    12:02:39.0468 3704 Pcmcia - ok
    12:02:39.0484 3704 PDCOMP - ok
    12:02:39.0515 3704 PDFRAME - ok
    12:02:39.0546 3704 PDRELI - ok
    12:02:39.0562 3704 PDRFRAME - ok
    12:02:39.0609 3704 [ 6C14B9C19BA84F73D3A86DBA11133101 ] perc2 C:\WINDOWS\System32\DRIVERS\perc2.sys
    12:02:39.0609 3704 perc2 - ok
    12:02:39.0640 3704 [ F50F7C27F131AFE7BEBA13E14A3B9416 ] perc2hib C:\WINDOWS\System32\DRIVERS\perc2hib.sys
    12:02:39.0656 3704 perc2hib - ok
    12:02:39.0750 3704 [ 65DF52F5B8B6E9BBD183505225C37315 ] PlugPlay C:\WINDOWS\system32\services.exe
    12:02:39.0781 3704 PlugPlay - ok
    12:02:39.0843 3704 [ BF2466B3E18E970D8A976FB95FC1CA85 ] PolicyAgent C:\WINDOWS\system32\lsass.exe
    12:02:39.0843 3704 PolicyAgent - ok
    12:02:39.0921 3704 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
    12:02:39.0921 3704 PptpMiniport - ok
    12:02:39.0968 3704 [ A32BEBAF723557681BFC6BD93E98BD26 ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys
    12:02:39.0984 3704 Processor - ok
    12:02:40.0000 3704 [ BF2466B3E18E970D8A976FB95FC1CA85 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
    12:02:40.0015 3704 ProtectedStorage - ok
    12:02:40.0062 3704 [ 09298EC810B07E5D582CB3A3F9255424 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
    12:02:40.0062 3704 PSched - ok
    12:02:40.0140 3704 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
    12:02:40.0140 3704 Ptilink - ok
    12:02:40.0171 3704 [ 070EDDD0E4A5BE55DD590D8B30DBFF22 ] pwd_2k C:\WINDOWS\system32\drivers\pwd_2k.sys
    12:02:40.0187 3704 pwd_2k - ok
    12:02:40.0203 3704 qgvesavj - ok
    12:02:40.0265 3704 [ 0A63FB54039EB5662433CABA3B26DBA7 ] ql1080 C:\WINDOWS\System32\DRIVERS\ql1080.sys
    12:02:40.0265 3704 ql1080 - ok
    12:02:40.0296 3704 [ 6503449E1D43A0FF0201AD5CB1B8C706 ] Ql10wnt C:\WINDOWS\System32\DRIVERS\ql10wnt.sys
    12:02:40.0312 3704 Ql10wnt - ok
    12:02:40.0328 3704 [ 156ED0EF20C15114CA097A34A30D8A01 ] ql12160 C:\WINDOWS\System32\DRIVERS\ql12160.sys
    12:02:40.0343 3704 ql12160 - ok
    12:02:40.0390 3704 [ 70F016BEBDE6D29E864C1230A07CC5E6 ] ql1240 C:\WINDOWS\System32\DRIVERS\ql1240.sys
    12:02:40.0390 3704 ql1240 - ok
    12:02:40.0421 3704 [ 907F0AEEA6BC451011611E732BD31FCF ] ql1280 C:\WINDOWS\System32\DRIVERS\ql1280.sys
    12:02:40.0421 3704 ql1280 - ok
    12:02:40.0500 3704 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
    12:02:40.0500 3704 RasAcd - ok
    12:02:40.0562 3704 [ AD188BE7BDF94E8DF4CA0A55C00A5073 ] RasAuto C:\WINDOWS\System32\rasauto.dll
    12:02:40.0593 3704 RasAuto - ok
    12:02:40.0640 3704 [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
    12:02:40.0640 3704 Rasl2tp - ok
    12:02:40.0703 3704 [ 76A9A3CBEADD68CC57CDA5E1D7448235 ] RasMan C:\WINDOWS\System32\rasmans.dll
    12:02:40.0734 3704 RasMan - ok
    12:02:40.0765 3704 [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
    12:02:40.0765 3704 RasPppoe - ok
    12:02:40.0796 3704 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
    12:02:40.0812 3704 Raspti - ok
    12:02:40.0875 3704 [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
    12:02:40.0875 3704 Rdbss - ok
    12:02:40.0906 3704 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
    12:02:40.0921 3704 RDPCDD - ok
    12:02:40.0984 3704 [ 15CABD0F7C00C47C70124907916AF3F1 ] rdpdr C:\WINDOWS\system32\DRIVERS\rdpdr.sys
    12:02:41.0000 3704 rdpdr - ok
    12:02:41.0078 3704 [ 43AF5212BD8FB5BA6EED9754358BD8F7 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
    12:02:41.0078 3704 RDPWD - ok
    12:02:41.0156 3704 [ 3C37BF86641BDA977C3BF8A840F3B7FA ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
    12:02:41.0187 3704 RDSessMgr - ok
    12:02:41.0234 3704 [ F828DD7E1419B6653894A8F97A0094C5 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
    12:02:41.0234 3704 redbook - ok
    12:02:41.0296 3704 [ 7E699FF5F59B5D9DE5390E3C34C67CF5 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
    12:02:41.0328 3704 RemoteAccess - ok
    12:02:41.0390 3704 [ 851C30DF2807FCFA21E4C681A7D6440E ] RFCOMM C:\WINDOWS\system32\DRIVERS\rfcomm.sys
    12:02:41.0390 3704 RFCOMM - ok
    12:02:41.0437 3704 [ D8B0B4ADE32574B2D9C5CC34DC0DBBE7 ] ROOTMODEM C:\WINDOWS\system32\Drivers\RootMdm.sys
    12:02:41.0437 3704 ROOTMODEM - ok
    12:02:41.0515 3704 [ AAED593F84AFA419BBAE8572AF87CF6A ] RpcLocator C:\WINDOWS\System32\locator.exe
    12:02:41.0531 3704 RpcLocator - ok
    12:02:41.0578 3704 [ 6B27A5C03DFB94B4245739065431322C ] RpcSs C:\WINDOWS\System32\rpcss.dll
    12:02:41.0609 3704 RpcSs - ok
    12:02:41.0671 3704 [ 471B3F9741D762ABE75E9DEEA4787E47 ] RSVP C:\WINDOWS\System32\rsvp.exe
    12:02:41.0734 3704 RSVP - ok
    12:02:41.0796 3704 [ 918CC067FFF88A3C063A79952B82C1C7 ] RT2500USB C:\WINDOWS\system32\DRIVERS\rt2500usb.sys
    12:02:41.0812 3704 RT2500USB - ok
    12:02:41.0859 3704 [ BF2466B3E18E970D8A976FB95FC1CA85 ] SamSs C:\WINDOWS\system32\lsass.exe
    12:02:41.0859 3704 SamSs - ok
    12:02:41.0906 3704 [ 86D007E7A654B9A71D1D7D856B104353 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
    12:02:41.0937 3704 SCardSvr - ok
    12:02:42.0000 3704 [ 0A9A7365A1CA4319AA7C1D6CD8E4EAFA ] Schedule C:\WINDOWS\system32\schedsvc.dll
    12:02:42.0031 3704 Schedule - ok
    12:02:42.0171 3704 [ 629B60B289BEFD36545A5CB42E831E55 ] SDhelper C:\Program Files\Spyware Doctor\sdhelp.exe
    12:02:42.0265 3704 SDhelper - ok
    12:02:42.0328 3704 [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
    12:02:42.0328 3704 Secdrv - ok
    12:02:42.0406 3704 [ CBE612E2BB6A10E3563336191EDA1250 ] seclogon C:\WINDOWS\System32\seclogon.dll
    12:02:42.0437 3704 seclogon - ok
    12:02:42.0484 3704 [ 7FDD5D0684ECA8C1F68B4D99D124DCD0 ] SENS C:\WINDOWS\system32\sens.dll
    12:02:42.0500 3704 SENS - ok
    12:02:42.0562 3704 [ 0F29512CCD6BEAD730039FB4BD2C85CE ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys
    12:02:42.0562 3704 serenum - ok
    12:02:42.0593 3704 [ CCA207A8896D4C6A0C9CE29A4AE411A7 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys
    12:02:42.0593 3704 Serial - ok
    12:02:42.0687 3704 [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
    12:02:42.0703 3704 Sfloppy - ok
    12:02:42.0781 3704 [ 83F41D0D89645D7235C051AB1D9523AC ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
    12:02:42.0796 3704 SharedAccess - ok
    12:02:42.0843 3704 [ 99BC0B50F511924348BE19C7C7313BBF ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
    12:02:42.0859 3704 ShellHWDetection - ok
    12:02:42.0890 3704 Simbad - ok
    12:02:42.0953 3704 [ 6B33D0EBD30DB32E27D1D78FE946A754 ] sisagp C:\WINDOWS\System32\DRIVERS\sisagp.sys
    12:02:42.0953 3704 sisagp - ok
    12:02:43.0062 3704 [ 70B8DD8707DBF6142530C106365DF67D ] smwdm C:\WINDOWS\system32\drivers\smwdm.sys
    12:02:43.0093 3704 smwdm - ok
    12:02:43.0140 3704 [ A1ECEEAA5C5E74B2499EB51D38185B84 ] SONYPVU1 C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS
    12:02:43.0156 3704 SONYPVU1 - ok
    12:02:43.0218 3704 [ 83C0F71F86D3BDAF915685F3D568B20E ] Sparrow C:\WINDOWS\System32\DRIVERS\sparrow.sys
    12:02:43.0234 3704 Sparrow - ok
    12:02:43.0281 3704 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter C:\WINDOWS\system32\drivers\splitter.sys
    12:02:43.0281 3704 splitter - ok
    12:02:43.0343 3704 [ 60784F891563FB1B767F70117FC2428F ] Spooler C:\WINDOWS\system32\spoolsv.exe
    12:02:43.0375 3704 Spooler - ok
    12:02:43.0437 3704 [ 76BB022C2FB6902FD5BDD4F78FC13A5D ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
    12:02:43.0453 3704 sr - ok
    12:02:43.0531 3704 [ 3805DF0AC4296A34BA4BF93B346CC378 ] srservice C:\WINDOWS\system32\srsvc.dll
    12:02:43.0546 3704 srservice - ok
    12:02:43.0625 3704 [ 47DDFC2F003F7F9F0592C6874962A2E7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
    12:02:43.0640 3704 Srv - ok
    12:02:43.0703 3704 [ 0A5679B3714EDAB99E357057EE88FCA6 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
    12:02:43.0734 3704 SSDPSRV - ok
    12:02:43.0796 3704 [ 359FEE084F1173FFFFD7F9CCBD43D47F ] ssudmdm C:\WINDOWS\system32\DRIVERS\ssudmdm.sys
    12:02:43.0812 3704 ssudmdm - ok
    12:02:43.0875 3704 [ 8BAD69CBAC032D4BBACFCE0306174C30 ] stisvc C:\WINDOWS\system32\wiaservc.dll
    12:02:43.0906 3704 stisvc - ok
    12:02:43.0937 3704 [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
    12:02:43.0953 3704 swenum - ok
    12:02:44.0015 3704 [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
    12:02:44.0031 3704 swmidi - ok
    12:02:44.0062 3704 SwPrv - ok
    12:02:44.0109 3704 [ 1FF3217614018630D0A6758630FC698C ] symc810 C:\WINDOWS\System32\DRIVERS\symc810.sys
    12:02:44.0109 3704 symc810 - ok
    12:02:44.0140 3704 [ 070E001D95CF725186EF8B20335F933C ] symc8xx C:\WINDOWS\System32\DRIVERS\symc8xx.sys
    12:02:44.0156 3704 symc8xx - ok
    12:02:44.0171 3704 [ 80AC1C4ABBE2DF3B738BF15517A51F2C ] sym_hi C:\WINDOWS\System32\DRIVERS\sym_hi.sys
    12:02:44.0187 3704 sym_hi - ok
    12:02:44.0218 3704 [ BF4FAB949A382A8E105F46EBB4937058 ] sym_u3 C:\WINDOWS\System32\DRIVERS\sym_u3.sys
    12:02:44.0234 3704 sym_u3 - ok
    12:02:44.0265 3704 [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
    12:02:44.0265 3704 sysaudio - ok
    12:02:44.0328 3704 [ C7ABBC59B43274B1109DF6B24D617051 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
    12:02:44.0359 3704 SysmonLog - ok
    12:02:44.0406 3704 [ 3CB78C17BB664637787C9A1C98F79C38 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
    12:02:44.0437 3704 TapiSrv - ok
    12:02:44.0515 3704 [ 9AEFA14BD6B182D61E3119FA5F436D3D ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
    12:02:44.0531 3704 Tcpip - ok
    12:02:44.0593 3704 [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
    12:02:44.0593 3704 TDPIPE - ok
    12:02:44.0625 3704 [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
    12:02:44.0640 3704 TDTCP - ok
    12:02:44.0687 3704 [ 88155247177638048422893737429D9E ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
    12:02:44.0687 3704 TermDD - ok
    12:02:44.0765 3704 [ FF3477C03BE7201C294C35F684B3479F ] TermService C:\WINDOWS\System32\termsrv.dll
    12:02:44.0796 3704 TermService - ok
    12:02:44.0828 3704 TfFsMon - ok
    12:02:44.0843 3704 TfNetMon - ok
    12:02:44.0875 3704 TfSysMon - ok
    12:02:44.0921 3704 [ 99BC0B50F511924348BE19C7C7313BBF ] Themes C:\WINDOWS\System32\shsvcs.dll
    12:02:44.0953 3704 Themes - ok
    12:02:45.0031 3704 [ F2790F6AF01321B172AA62F8E1E187D9 ] TosIde C:\WINDOWS\System32\DRIVERS\toside.sys
    12:02:45.0031 3704 TosIde - ok
  • 12:02:45.0093 3704 [ 55BCA12F7F523D35CA3CB833C725F54E ] TrkWks C:\WINDOWS\system32\trkwks.dll
    12:02:45.0125 3704 TrkWks - ok
    12:02:45.0187 3704 [ 70AEEC67E87A2002E6B2CC353D56E222 ] U2KG54 C:\WINDOWS\system32\DRIVERS\U2KG54.sys
    12:02:45.0203 3704 U2KG54 - ok
    12:02:45.0265 3704 [ 27E66E79FD742C107FDB23280E17D869 ] UdfReadr_xp C:\WINDOWS\system32\drivers\UdfReadr_xp.sys
    12:02:45.0281 3704 UdfReadr_xp - ok
    12:02:45.0328 3704 [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
    12:02:45.0328 3704 Udfs - ok
    12:02:45.0390 3704 [ 1B698A51CD528D8DA4FFAED66DFC51B9 ] ultra C:\WINDOWS\System32\DRIVERS\ultra.sys
    12:02:45.0390 3704 ultra - ok
    12:02:45.0468 3704 [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
    12:02:45.0500 3704 Update - ok
    12:02:45.0546 3704 [ 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 ] upnphost C:\WINDOWS\System32\upnphost.dll
    12:02:45.0578 3704 upnphost - ok
    12:02:45.0609 3704 [ 05365FB38FCA1E98F7A566AAAF5D1815 ] UPS C:\WINDOWS\System32\ups.exe
    12:02:45.0640 3704 UPS - ok
    12:02:45.0703 3704 [ F15FA1133B544B670132DA0A0FBB7088 ] USB200M C:\WINDOWS\system32\DRIVERS\USB200M2.sys
    12:02:45.0703 3704 USB200M - ok
    12:02:45.0765 3704 [ 173F317CE0DB8E21322E71B7E60A27E8 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
    12:02:45.0765 3704 usbccgp - ok
    12:02:45.0828 3704 [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
    12:02:45.0828 3704 usbehci - ok
    12:02:45.0859 3704 [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
    12:02:45.0875 3704 usbhub - ok
    12:02:45.0921 3704 [ A0B8CF9DEB1184FBDD20784A58FA75D4 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
    12:02:45.0937 3704 usbscan - ok
    12:02:45.0984 3704 [ A32426D9B14A089EAA1D922E0C5801A9 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
    12:02:46.0000 3704 USBSTOR - ok
    12:02:46.0031 3704 [ 26496F9DEE2D787FC3E61AD54821FFE6 ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
    12:02:46.0031 3704 usbuhci - ok
    12:02:46.0078 3704 [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
    12:02:46.0078 3704 VgaSave - ok
    12:02:46.0140 3704 [ 754292CE5848B3738281B4F3607EAEF4 ] viaagp C:\WINDOWS\System32\DRIVERS\viaagp.sys
    12:02:46.0140 3704 viaagp - ok
    12:02:46.0171 3704 [ 3B3EFCDA263B8AC14FDF9CBDD0791B2E ] ViaIde C:\WINDOWS\System32\DRIVERS\viaide.sys
    12:02:46.0187 3704 ViaIde - ok
    12:02:46.0203 3704 visv - ok
    12:02:46.0281 3704 [ 4C8FCB5CC53AAB716D810740FE59D025 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
    12:02:46.0296 3704 VolSnap - ok
    12:02:46.0359 3704 [ 7A9DB3A67C333BF0BD42E42B8596854B ] VSS C:\WINDOWS\System32\vssvc.exe
    12:02:46.0390 3704 VSS - ok
    12:02:46.0453 3704 [ 54AF4B1D5459500EF0937F6D33B1914F ] w32time C:\WINDOWS\system32\w32time.dll
    12:02:46.0500 3704 w32time - ok
    12:02:46.0531 3704 w800bus - ok
    12:02:46.0562 3704 w800mdfl - ok
    12:02:46.0578 3704 w800mdm - ok
    12:02:46.0609 3704 w800mgmt - ok
    12:02:46.0640 3704 w800obex - ok
    12:02:46.0671 3704 w810bus - ok
    12:02:46.0687 3704 w810mdfl - ok
    12:02:46.0718 3704 w810mdm - ok
    12:02:46.0750 3704 w810mgmt - ok
    12:02:46.0781 3704 w810obex - ok
    12:02:46.0812 3704 [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
    12:02:46.0828 3704 Wanarp - ok
    12:02:46.0843 3704 wanatw - ok
    12:02:47.0000 3704 [ 96C4C98FE4866C16FC64E4578A0AA975 ] WDBackup C:\Program Files\Western Digital\WD SmartWare\WDBackupEngine.exe
    12:02:47.0015 3704 WDBackup - ok
    12:02:47.0046 3704 WDC_SAM - ok
    12:02:47.0125 3704 [ 80F8944EA183004D6EDCBBDCEC166404 ] WDDriveService C:\Program Files\Western Digital\WD Drive Manager\WDDriveService.exe
    12:02:47.0125 3704 WDDriveService - ok
    12:02:47.0187 3704 [ BBCFEAB7E871CDDAC2D397EE7FA91FDC ] Wdf01000 C:\WINDOWS\system32\Drivers\wdf01000.sys
    12:02:47.0218 3704 Wdf01000 - ok
    12:02:47.0234 3704 WDICA - ok
    12:02:47.0296 3704 [ 6768ACF64B18196494413695F0C3A00F ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
    12:02:47.0312 3704 wdmaud - ok
    12:02:47.0406 3704 [ FD2D1C60CDBDFAB63EF182539D8FFC2D ] WDRulesService C:\Program Files\Western Digital\WD SmartWare\WDRulesEngine.exe
    12:02:47.0421 3704 WDRulesService - ok
    12:02:47.0484 3704 [ 77A354E28153AD2D5E120A5A8687BC06 ] WebClient C:\WINDOWS\System32\webclnt.dll
    12:02:47.0515 3704 WebClient - ok
    12:02:47.0656 3704 [ 2D0E4ED081963804CCC196A0929275B5 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
    12:02:47.0656 3704 winmgmt - ok
    12:02:47.0750 3704 [ C51B4A5C05A5475708E3C81C7765B71D ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll
    12:02:47.0765 3704 WmdmPmSN - ok
    12:02:47.0843 3704 [ E0673F1106E62A68D2257E376079F821 ] WmiApSrv C:\WINDOWS\System32\wbem\wmiapsrv.exe
    12:02:47.0843 3704 WmiApSrv - ok
    12:02:47.0984 3704 [ F74E3D9A7FA9556C3BBB14D4E5E63D3B ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe
    12:02:48.0031 3704 WMPNetworkSvc - ok
    12:02:48.0078 3704 [ CF4DEF1BF66F06964DC0D91844239104 ] WpdUsb C:\WINDOWS\system32\DRIVERS\wpdusb.sys
    12:02:48.0093 3704 WpdUsb - ok
    12:02:48.0218 3704 [ DCF3E3EDF5109EE8BC02FE6E1F045795 ] WPFFontCache_v0400 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
    12:02:48.0250 3704 WPFFontCache_v0400 - ok
    12:02:48.0312 3704 [ 6ABE6E225ADB5A751622A9CC3BC19CE8 ] WS2IFSL C:\WINDOWS\System32\drivers\ws2ifsl.sys
    12:02:48.0328 3704 WS2IFSL - ok
    12:02:48.0437 3704 [ 7C278E6408D1DCE642230C0585A854D5 ] wscsvc C:\WINDOWS\system32\wscsvc.dll
    12:02:48.0453 3704 wscsvc - ok
    12:02:48.0515 3704 [ 35321FB577CDC98CE3EB3A3EB9E4610A ] wuauserv C:\WINDOWS\system32\wuauserv.dll
    12:02:48.0546 3704 wuauserv - ok
    12:02:48.0609 3704 [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
    12:02:48.0625 3704 WudfPf - ok
    12:02:48.0671 3704 [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
    12:02:48.0671 3704 WudfRd - ok
    12:02:48.0750 3704 [ 05231C04253C5BC30B26CBAAE680ED89 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
    12:02:48.0781 3704 WudfSvc - ok
    12:02:48.0859 3704 [ 81DC3F549F44B1C1FFF022DEC9ECF30B ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
    12:02:48.0890 3704 WZCSVC - ok
    12:02:48.0953 3704 [ 295D21F14C335B53CB8154E5B1F892B9 ] xmlprov C:\WINDOWS\System32\xmlprov.dll
    12:02:48.0984 3704 xmlprov - ok
    12:02:49.0078 3704 [ AFEFFE0F8805FCD47B05CF1FBDE08092 ] {6080A529-897E-4629-A488-ABA0C29B635E} C:\WINDOWS\system32\drivers\ialmsbw.sys
    12:02:49.0093 3704 {6080A529-897E-4629-A488-ABA0C29B635E} - ok
    12:02:49.0125 3704 [ 85A36991A5CEAF9E65C4B743210E759B ] {D31A0762-0CEB-444e-ACFF-B049A1F6FE91} C:\WINDOWS\system32\drivers\ialmkchw.sys
    12:02:49.0140 3704 {D31A0762-0CEB-444e-ACFF-B049A1F6FE91} - ok
    12:02:49.0140 3704 ================ Scan global ===============================
    12:02:49.0203 3704 [ 42F1F4C0AFB08410E5F02D4B13EBB623 ] C:\WINDOWS\system32\basesrv.dll
    12:02:49.0265 3704 [ 8C7DCA4B158BF16894120786A7A5F366 ] C:\WINDOWS\system32\winsrv.dll
    12:02:49.0328 3704 [ 8C7DCA4B158BF16894120786A7A5F366 ] C:\WINDOWS\system32\winsrv.dll
    12:02:49.0421 3704 [ 65DF52F5B8B6E9BBD183505225C37315 ] C:\WINDOWS\system32\services.exe
    12:02:49.0453 3704 [Global] - ok
    12:02:49.0453 3704 ================ Scan MBR ==================================
    12:02:49.0484 3704 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk0\DR0
    12:02:49.0671 3704 \Device\Harddisk0\DR0 - ok
    12:02:49.0687 3704 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk1\DR4
    12:02:49.0687 3704 \Device\Harddisk1\DR4 - ok
    12:02:49.0703 3704 ================ Scan VBR ==================================
    12:02:49.0718 3704 [ 994BF7154966D8350E0F7B99AE71BF36 ] \Device\Harddisk0\DR0\Partition1
    12:02:49.0718 3704 \Device\Harddisk0\DR0\Partition1 - ok
    12:02:49.0734 3704 [ 1F0125D9E125DAAF15EEC61D85429C6C ] \Device\Harddisk1\DR4\Partition1
    12:02:49.0734 3704 \Device\Harddisk1\DR4\Partition1 - ok
    12:02:49.0750 3704 ================ Scan active images ========================
    12:02:49.0750 3704 [ 8C953733D8F36EB2133F5BB58808B66B ] C:\WINDOWS\SYSTEM32\DRIVERS\intelppm.sys
    12:02:49.0750 3704 C:\WINDOWS\SYSTEM32\DRIVERS\intelppm.sys - ok
    12:02:49.0765 3704 [ E28726B72C46821A28830E077D39A55B ] C:\WINDOWS\SYSTEM32\DRIVERS\videoprt.sys
    12:02:49.0765 3704 C:\WINDOWS\SYSTEM32\DRIVERS\videoprt.sys - ok
    12:02:49.0765 3704 [ 44B7D5A4F2BD9FE21AEA0BB0BACE38C4 ] C:\WINDOWS\SYSTEM32\DRIVERS\ialmnt5.sys
    12:02:49.0765 3704 C:\WINDOWS\SYSTEM32\DRIVERS\ialmnt5.sys - ok
    12:02:49.0781 3704 [ 791912E524CC2CC6F50B5F2B52D1EB71 ] C:\WINDOWS\SYSTEM32\DRIVERS\usbport.sys
    12:02:49.0781 3704 C:\WINDOWS\SYSTEM32\DRIVERS\usbport.sys - ok
    12:02:49.0796 3704 [ 26496F9DEE2D787FC3E61AD54821FFE6 ] C:\WINDOWS\SYSTEM32\DRIVERS\usbuhci.sys
    12:02:49.0796 3704 C:\WINDOWS\SYSTEM32\DRIVERS\usbuhci.sys - ok
    12:02:49.0812 3704 [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] C:\WINDOWS\SYSTEM32\DRIVERS\usbehci.sys
    12:02:49.0812 3704 C:\WINDOWS\SYSTEM32\DRIVERS\usbehci.sys - ok
    12:02:49.0828 3704 [ 0753515F78DF7F271A5E61C20BCD36A1 ] C:\WINDOWS\SYSTEM32\DRIVERS\ks.sys
    12:02:49.0828 3704 C:\WINDOWS\SYSTEM32\DRIVERS\ks.sys - ok
    12:02:49.0843 3704 [ 41347688046D49CDE0F6D138A534F73D ] C:\WINDOWS\SYSTEM32\DRIVERS\BCMSM.sys
    12:02:49.0843 3704 C:\WINDOWS\SYSTEM32\DRIVERS\BCMSM.sys - ok
    12:02:49.0859 3704 [ DFCBAD3CEC1C5F964962AE10E0BCC8E1 ] C:\WINDOWS\SYSTEM32\DRIVERS\modem.sys
    12:02:49.0859 3704 C:\WINDOWS\SYSTEM32\DRIVERS\modem.sys - ok
    12:02:49.0875 3704 [ F5C0D3C93235A455CDD13C954ADF1A80 ] C:\WINDOWS\SYSTEM32\DRIVERS\bcm4sbxp.sys
    12:02:49.0875 3704 C:\WINDOWS\SYSTEM32\DRIVERS\bcm4sbxp.sys - ok
    12:02:49.0890 3704 [ 083A052659F5310DD8B6A6CB05EDCF8E ] C:\WINDOWS\SYSTEM32\DRIVERS\imapi.sys
    12:02:49.0890 3704 C:\WINDOWS\SYSTEM32\DRIVERS\imapi.sys - ok
    12:02:49.0921 3704 [ 814ACB9B8A55804D9878248B3C79F862 ] C:\WINDOWS\SYSTEM32\DRIVERS\cdr4_xp.sys
    12:02:49.0921 3704 C:\WINDOWS\SYSTEM32\DRIVERS\cdr4_xp.sys - ok
    12:02:49.0937 3704 [ 1F4260CC5B42272D71F79E570A27A4FE ] C:\WINDOWS\SYSTEM32\DRIVERS\cdrom.sys
    12:02:49.0937 3704 C:\WINDOWS\SYSTEM32\DRIVERS\cdrom.sys - ok
    12:02:49.0953 3704 [ F828DD7E1419B6653894A8F97A0094C5 ] C:\WINDOWS\SYSTEM32\DRIVERS\redbook.sys
    12:02:49.0953 3704 C:\WINDOWS\SYSTEM32\DRIVERS\redbook.sys - ok
    12:02:49.0968 3704 [ BCE7213F8AA1BC9D5C08F81CB05E10A7 ] C:\WINDOWS\SYSTEM32\DRIVERS\cdralw2k.sys
    12:02:49.0968 3704 C:\WINDOWS\SYSTEM32\DRIVERS\cdralw2k.sys - ok
    12:02:49.0984 3704 [ 070EDDD0E4A5BE55DD590D8B30DBFF22 ] C:\WINDOWS\SYSTEM32\DRIVERS\pwd_2K.sys
    12:02:49.0984 3704 C:\WINDOWS\SYSTEM32\DRIVERS\pwd_2K.sys - ok
    12:02:50.0000 3704 [ 8182FF89C65E4D38B2DE4BB0FB18564E ] C:\WINDOWS\SYSTEM32\DRIVERS\GEARAspiWDM.sys
    12:02:50.0000 3704 C:\WINDOWS\SYSTEM32\DRIVERS\GEARAspiWDM.sys - ok
    12:02:50.0015 3704 [ 6CB08593487F5701D2D2254E693EAFCE ] C:\WINDOWS\SYSTEM32\DRIVERS\drmk.sys
    12:02:50.0015 3704 C:\WINDOWS\SYSTEM32\DRIVERS\drmk.sys - ok
    12:02:50.0015 3704 [ E82A496C3961EFC6828B508C310CE98F ] C:\WINDOWS\SYSTEM32\DRIVERS\portcls.sys
    12:02:50.0015 3704 C:\WINDOWS\SYSTEM32\DRIVERS\portcls.sys - ok
    12:02:50.0031 3704 [ 70B8DD8707DBF6142530C106365DF67D ] C:\WINDOWS\SYSTEM32\DRIVERS\smwdm.sys
    12:02:50.0031 3704 C:\WINDOWS\SYSTEM32\DRIVERS\smwdm.sys - ok
    12:02:50.0046 3704 [ 11C04B17ED2ABBB4833694BCD644AC90 ] C:\WINDOWS\SYSTEM32\DRIVERS\aeaudio.sys
    12:02:50.0046 3704 C:\WINDOWS\SYSTEM32\DRIVERS\aeaudio.sys - ok
    12:02:50.0062 3704 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] C:\WINDOWS\SYSTEM32\DRIVERS\fdc.sys
    12:02:50.0062 3704 C:\WINDOWS\SYSTEM32\DRIVERS\fdc.sys - ok
    12:02:50.0078 3704 [ CCA207A8896D4C6A0C9CE29A4AE411A7 ] C:\WINDOWS\SYSTEM32\DRIVERS\serial.sys
    12:02:50.0078 3704 C:\WINDOWS\SYSTEM32\DRIVERS\serial.sys - ok
    12:02:50.0093 3704 [ 0F29512CCD6BEAD730039FB4BD2C85CE ] C:\WINDOWS\SYSTEM32\DRIVERS\serenum.sys
    12:02:50.0093 3704 C:\WINDOWS\SYSTEM32\DRIVERS\serenum.sys - ok
    12:02:50.0125 3704 [ 5575FAF8F97CE5E713D108C2A58D7C7C ] C:\WINDOWS\SYSTEM32\DRIVERS\parport.sys
    12:02:50.0125 3704 C:\WINDOWS\SYSTEM32\DRIVERS\parport.sys - ok
    12:02:50.0140 3704 [ 4A0B06AA8943C1E332520F7440C0AA30 ] C:\WINDOWS\SYSTEM32\DRIVERS\i8042prt.sys
    12:02:50.0140 3704 C:\WINDOWS\SYSTEM32\DRIVERS\i8042prt.sys - ok
    12:02:50.0156 3704 [ 35C9E97194C8CFB8430125F8DBC34D04 ] C:\WINDOWS\SYSTEM32\DRIVERS\mouclass.sys
    12:02:50.0156 3704 C:\WINDOWS\SYSTEM32\DRIVERS\mouclass.sys - ok
    12:02:50.0171 3704 [ 463C1EC80CD17420A542B7F36A36F128 ] C:\WINDOWS\SYSTEM32\DRIVERS\kbdclass.sys
    12:02:50.0171 3704 C:\WINDOWS\SYSTEM32\DRIVERS\kbdclass.sys - ok
    12:02:50.0187 3704 [ D9F724AA26C010A217C97606B160ED68 ] C:\WINDOWS\SYSTEM32\DRIVERS\AUDSTUB.SYS
    12:02:50.0187 3704 C:\WINDOWS\SYSTEM32\DRIVERS\AUDSTUB.SYS - ok
    12:02:50.0203 3704 [ 11B4A627BC9614B885C4969BFA5FF8A6 ] C:\WINDOWS\SYSTEM32\DRIVERS\rasl2tp.sys
    12:02:50.0203 3704 C:\WINDOWS\SYSTEM32\DRIVERS\rasl2tp.sys - ok
    12:02:50.0218 3704 [ 0109C4F3850DFBAB279542515386AE22 ] C:\WINDOWS\SYSTEM32\DRIVERS\ndistapi.sys
    12:02:50.0218 3704 C:\WINDOWS\SYSTEM32\DRIVERS\ndistapi.sys - ok
    12:02:50.0234 3704 [ EDC1531A49C80614B2CFDA43CA8659AB ] C:\WINDOWS\SYSTEM32\DRIVERS\ndiswan.sys
    12:02:50.0234 3704 C:\WINDOWS\SYSTEM32\DRIVERS\ndiswan.sys - ok
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 350.9K Banking & Borrowing
  • 253.1K Reduce Debt & Boost Income
  • 453.5K Spending & Discounts
  • 243.9K Work, Benefits & Business
  • 598.8K Mortgages, Homes & Bills
  • 176.9K Life & Family
  • 257.2K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16.1K Discuss & Feedback
  • 37.6K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.