15:20:27.0621 4880 TDSS rootkit removing tool 2.7.45.0 Jul 9 2012 12:46:35
15:20:29.0624 4880 ============================================================
15:20:29.0624 4880 Current date / time: 2012/07/10 15:20:29.0624
15:20:29.0624 4880 SystemInfo:
15:20:29.0624 4880
15:20:29.0624 4880 OS Version: 6.0.6002 ServicePack: 2.0
15:20:29.0624 4880 Product type: Workstation
15:20:29.0624 4880 ComputerName: PC-DE-MAMBINGOM
15:20:29.0625 4880 UserName: MAMBINGO MAMBINGO AD
15:20:29.0625 4880 Windows directory: C:\Windows
15:20:29.0625 4880 System windows directory: C:\Windows
15:20:29.0625 4880 Processor architecture: Intel x86
15:20:29.0625 4880 Number of processors: 1
15:20:29.0625 4880 Page size: 0x1000
15:20:29.0625 4880 Boot type: Normal boot
15:20:29.0625 4880 ============================================================
15:20:31.0345 4880 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
15:20:31.0496 4880 Drive \Device\Harddisk1\DR2 - Size: 0x1E7D00000 (7.62 Gb), SectorSize: 0x200, Cylinders: 0x3E2, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
15:20:31.0498 4880 ============================================================
15:20:31.0498 4880 \Device\Harddisk0\DR0:
15:20:31.0498 4880 MBR partitions:
15:20:31.0498 4880 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x1A04000, BlocksNum 0x90567F0
15:20:31.0514 4880 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0xAA5B000, BlocksNum 0x3B3800
15:20:31.0514 4880 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xAE0E800, BlocksNum 0x7C0A000
15:20:31.0514 4880 \Device\Harddisk1\DR2:
15:20:31.0515 4880 MBR partitions:
15:20:31.0515 4880 \Device\Harddisk1\DR2\Partition0: MBR, Type 0xB, StartLBA 0x20, BlocksNum 0xF367E0
15:20:31.0515 4880 ============================================================
15:20:31.0773 4880 C: <-> \Device\Harddisk0\DR0\Partition0
15:20:31.0842 4880 D: <-> \Device\Harddisk0\DR0\Partition1
15:20:31.0971 4880 E: <-> \Device\Harddisk0\DR0\Partition2
15:20:32.0074 4880 ============================================================
15:20:32.0074 4880 Initialize success
15:20:32.0074 4880 ============================================================
15:21:14.0939 4896 ============================================================
15:21:14.0939 4896 Scan started
15:21:14.0939 4896 Mode: Manual;
15:21:14.0939 4896 ============================================================
15:21:19.0295 4896 ACPI (82b296ae1892fe3dbee00c9cf92f8ac7) C:\Windows\system32\drivers\acpi.sys
15:21:19.0312 4896 ACPI - ok
15:21:19.0394 4896 AdobeActiveFileMonitor6.0 (e8fe4fce23d2809bd88bcc1d0f8408ce) C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe
15:21:19.0407 4896 AdobeActiveFileMonitor6.0 - ok
15:21:19.0489 4896 adp94xx (04f0fcac69c7c71a3ac4eb97fafc8303) C:\Windows\system32\drivers\adp94xx.sys
15:21:19.0498 4896 adp94xx - ok
15:21:19.0549 4896 adpahci (60505e0041f7751bdbb80f88bf45c2ce) C:\Windows\system32\drivers\adpahci.sys
15:21:19.0561 4896 adpahci - ok
15:21:19.0592 4896 adpu160m (8a42779b02aec986eab64ecfc98f8bd7) C:\Windows\system32\drivers\adpu160m.sys
15:21:19.0595 4896 adpu160m - ok
15:21:19.0631 4896 adpu320 (241c9e37f8ce45ef51c3de27515ca4e5) C:\Windows\system32\drivers\adpu320.sys
15:21:19.0642 4896 adpu320 - ok
15:21:19.0701 4896 AeLookupSvc (9d1fda9e086ba64e3c93c9de32461bcf) C:\Windows\System32\aelupsvc.dll
15:21:19.0702 4896 AeLookupSvc - ok
15:21:19.0768 4896 AFD (3911b972b55fea0478476b2e777b29fa) C:\Windows\system32\drivers\afd.sys
15:21:19.0784 4896 AFD - ok
15:21:19.0811 4896 agp440 (13f9e33747e6b41a3ff305c37db0d360) C:\Windows\system32\drivers\agp440.sys
15:21:19.0826 4896 agp440 - ok
15:21:19.0846 4896 aic78xx (ae1fdf7bf7bb6c6a70f67699d880592a) C:\Windows\system32\drivers\djsvs.sys
15:21:19.0870 4896 aic78xx - ok
15:21:19.0926 4896 ALG (a1545b731579895d8cc44fc0481c1192) C:\Windows\System32\alg.exe
15:21:19.0928 4896 ALG - ok
15:21:19.0960 4896 aliide (9eaef5fc9b8e351afa7e78a6fae91f91) C:\Windows\system32\drivers\aliide.sys
15:21:19.0962 4896 aliide - ok
15:21:19.0985 4896 amdagp (c47344bc706e5f0b9dce369516661578) C:\Windows\system32\drivers\amdagp.sys
15:21:19.0987 4896 amdagp - ok
15:21:20.0002 4896 amdide (9b78a39a4c173fdbc1321e0dd659b34c) C:\Windows\system32\drivers\amdide.sys
15:21:20.0004 4896 amdide - ok
15:21:20.0035 4896 AmdK7 (18f29b49ad23ecee3d2a826c725c8d48) C:\Windows\system32\drivers\amdk7.sys
15:21:20.0037 4896 AmdK7 - ok
15:21:20.0070 4896 AmdK8 (93ae7f7dd54ab986a6f1a1b37be7442d) C:\Windows\system32\drivers\amdk8.sys
15:21:20.0072 4896 AmdK8 - ok
15:21:20.0124 4896 Appinfo (c6d704c7f0434dc791aac37cac4b6e14) C:\Windows\System32\appinfo.dll
15:21:20.0127 4896 Appinfo - ok
15:21:20.0229 4896 Apple Mobile Device (7ef47644b74ebe721cc32211d3c35e76) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
15:21:20.0232 4896 Apple Mobile Device - ok
15:21:20.0257 4896 arc (5d2888182fb46632511acee92fdad522) C:\Windows\system32\drivers\arc.sys
15:21:20.0271 4896 arc - ok
15:21:20.0297 4896 arcsas (5e2a321bd7c8b3624e41fdec3e244945) C:\Windows\system32\drivers\arcsas.sys
15:21:20.0300 4896 arcsas - ok
15:21:20.0337 4896 Aspi32 - ok
15:21:20.0372 4896 AsyncMac (53b202abee6455406254444303e87be1) C:\Windows\system32\DRIVERS\asyncmac.sys
15:21:20.0374 4896 AsyncMac - ok
15:21:20.0404 4896 atapi (1f05b78ab91c9075565a9d8a4b880bc4) C:\Windows\system32\drivers\atapi.sys
15:21:20.0404 4896 atapi - ok
15:21:20.0538 4896 athr (99d78248bfd454bfa9b5bec37350fade) C:\Windows\system32\DRIVERS\athr.sys
15:21:20.0571 4896 athr - ok
15:21:20.0644 4896 AudioEndpointBuilder (68e2a1a0407a66cf50da0300852424ab) C:\Windows\System32\Audiosrv.dll
15:21:20.0657 4896 AudioEndpointBuilder - ok
15:21:20.0664 4896 Audiosrv (68e2a1a0407a66cf50da0300852424ab) C:\Windows\System32\Audiosrv.dll
15:21:20.0667 4896 Audiosrv - ok
15:21:20.0793 4896 AVP (5e3f0aaea4642bf184deea311c7201de) C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations MP4\avp.exe
15:21:20.0799 4896 AVP - ok
15:21:20.0887 4896 BBSvc (01a24b415926bb5f772dbe12459d97de) C:\Program Files\Microsoft\BingBar\BBSvc.EXE
15:21:20.0896 4896 BBSvc - ok
15:21:20.0959 4896 BBUpdate (785de7abda13309d6065305542829e76) C:\Program Files\Microsoft\BingBar\SeaPort.EXE
15:21:20.0975 4896 BBUpdate - ok
15:21:21.0042 4896 Beep (67e506b75bd5326a3ec7b70bd014dfb6) C:\Windows\system32\drivers\Beep.sys
15:21:21.0044 4896 Beep - ok
15:21:21.0107 4896 BFE (c789af0f724fda5852fb9a7d3a432381) C:\Windows\System32\bfe.dll
15:21:21.0121 4896 BFE - ok
15:21:21.0304 4896 BITS (93952506c6d67330367f7e7934b6a02f) C:\Windows\system32\qmgr.dll
15:21:21.0330 4896 BITS - ok
15:21:21.0382 4896 blbdrive (d4df28447741fd3d953526e33a617397) C:\Windows\system32\drivers\blbdrive.sys
15:21:21.0385 4896 blbdrive - ok
15:21:21.0511 4896 Bonjour Service (db5bea73edaf19ac68b2c0fad0f92b1a) C:\Program Files\Bonjour\mDNSResponder.exe
15:21:21.0530 4896 Bonjour Service - ok
15:21:21.0577 4896 bowser (35f376253f687bde63976ccb3f2108ca) C:\Windows\system32\DRIVERS\bowser.sys
15:21:21.0580 4896 bowser - ok
15:21:21.0621 4896 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\drivers\brfiltlo.sys
15:21:21.0623 4896 BrFiltLo - ok
15:21:21.0651 4896 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\drivers\brfiltup.sys
15:21:21.0653 4896 BrFiltUp - ok
15:21:21.0695 4896 BridgeMP (b1564976d98e91fc764d5dc28a0297da) C:\Windows\system32\DRIVERS\bridge.sys
15:21:21.0698 4896 BridgeMP - ok
15:21:22.0064 4896 Browser (a3629a0c4226f9e9c72faaeebc3ad33c) C:\Windows\System32\browser.dll
15:21:22.0149 4896 Browser - ok
15:21:22.0267 4896 Brserid (b304e75cff293029eddf094246747113) C:\Windows\system32\drivers\brserid.sys
15:21:22.0270 4896 Brserid - ok
15:21:22.0367 4896 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\system32\drivers\brserwdm.sys
15:21:22.0369 4896 BrSerWdm - ok
15:21:22.0439 4896 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\system32\drivers\brusbmdm.sys
15:21:22.0441 4896 BrUsbMdm - ok
15:21:22.0541 4896 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\system32\drivers\brusbser.sys
15:21:22.0543 4896 BrUsbSer - ok
15:21:22.0650 4896 BthEnum (6d39c954799b63ba866910234cf7d726) C:\Windows\system32\DRIVERS\BthEnum.sys
15:21:22.0652 4896 BthEnum - ok
15:21:22.0771 4896 BTHMODEM (5ffa6988ff9597986ff2ada736cc90c0) C:\Windows\system32\DRIVERS\bthmodem.sys
15:21:22.0773 4896 BTHMODEM - ok
15:21:22.0843 4896 BthPan (5904efa25f829bf84ea6fb045134a1d8) C:\Windows\system32\DRIVERS\bthpan.sys
15:21:22.0846 4896 BthPan - ok
15:21:22.0942 4896 BTHPORT (73d53f8e90550ba81e2cf44a0873b410) C:\Windows\system32\Drivers\BTHport.sys
15:21:22.0947 4896 BTHPORT - ok
15:21:23.0029 4896 BthServ (a4c8377fa4a994e07075107dbe2e3dce) C:\Windows\System32\bthserv.dll
15:21:23.0031 4896 BthServ - ok
15:21:23.0140 4896 BTHUSB (32045a4bb143bbc5bab1298c4e9e309a) C:\Windows\system32\Drivers\BTHUSB.sys
15:21:23.0143 4896 BTHUSB - ok
15:21:23.0282 4896 catchme - ok
15:21:23.0368 4896 cdfs (7add03e75beb9e6dd102c3081d29840a) C:\Windows\system32\DRIVERS\cdfs.sys
15:21:23.0371 4896 cdfs - ok
15:21:23.0471 4896 cdrom (6b4bffb9becd728097024276430db314) C:\Windows\system32\DRIVERS\cdrom.sys
15:21:23.0474 4896 cdrom - ok
15:21:23.0578 4896 CertPropSvc (312ec3e37a0a1f2006534913e37b4423) C:\Windows\System32\certprop.dll
15:21:23.0579 4896 CertPropSvc - ok
15:21:23.0646 4896 circlass (e5d4133f37219dbcfe102bc61072589d) C:\Windows\system32\drivers\circlass.sys
15:21:23.0650 4896 circlass - ok
15:21:23.0738 4896 CLFS (d7659d3b5b92c31e84e53c1431f35132) C:\Windows\system32\CLFS.sys
15:21:23.0744 4896 CLFS - ok
15:21:23.0855 4896 clr_optimization_v2.0.50727_32 (8ee772032e2fe80a924f3b8dd5082194) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
15:21:23.0873 4896 clr_optimization_v2.0.50727_32 - ok
15:21:23.0991 4896 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
15:21:24.0059 4896 clr_optimization_v4.0.30319_32 - ok
15:21:24.0139 4896 CmBatt (99afc3795b58cc478fbbbcdc658fcb56) C:\Windows\system32\DRIVERS\CmBatt.sys
15:21:24.0141 4896 CmBatt - ok
15:21:24.0231 4896 cmdide (0ca25e686a4928484e9fdabd168ab629) C:\Windows\system32\drivers\cmdide.sys
15:21:24.0233 4896 cmdide - ok
15:21:24.0277 4896 Compbatt (6afef0b60fa25de07c0968983ee4f60a) C:\Windows\system32\DRIVERS\compbatt.sys
15:21:24.0279 4896 Compbatt - ok
15:21:24.0311 4896 COMSysApp - ok
15:21:24.0372 4896 crcdisk (741e9dff4f42d2d8477d0fc1dc0df871) C:\Windows\system32\drivers\crcdisk.sys
15:21:24.0374 4896 crcdisk - ok
15:21:24.0446 4896 Crusoe (1f07becdca750766a96cda811ba86410) C:\Windows\system32\drivers\crusoe.sys
15:21:24.0448 4896 Crusoe - ok
15:21:24.0570 4896 CryptSvc (75c6a297e364014840b48eccd7525e30) C:\Windows\system32\cryptsvc.dll
15:21:24.0584 4896 CryptSvc - ok
15:21:24.0732 4896 DcomLaunch (3b5b4d53fec14f7476ca29a20cc31ac9) C:\Windows\system32\rpcss.dll
15:21:24.0755 4896 DcomLaunch - ok
15:21:24.0835 4896 DfsC (622c41a07ca7e6dd91770f50d532cb6c) C:\Windows\system32\Drivers\dfsc.sys
15:21:24.0838 4896 DfsC - ok
15:21:25.0171 4896 DFSR (2cc3dcfb533a1035b13dcab6160ab38b) C:\Windows\system32\DFSR.exe
15:21:25.0230 4896 DFSR - ok
15:21:25.0503 4896 Dhcp (9028559c132146fb75eb7acf384b086a) C:\Windows\System32\dhcpcsvc.dll
15:21:25.0524 4896 Dhcp - ok
15:21:25.0595 4896 disk (5d4aefc3386920236a548271f8f1af6a) C:\Windows\system32\drivers\disk.sys
15:21:25.0597 4896 disk - ok
15:21:25.0686 4896 DKbFltr (73baf270d24fe726b9cd7f80bb17a23d) C:\Windows\system32\DRIVERS\DKbFltr.sys
15:21:25.0688 4896 DKbFltr - ok
15:21:25.0823 4896 Dnscache (57d762f6f5974af0da2be88a3349baaa) C:\Windows\System32\dnsrslvr.dll
15:21:25.0830 4896 Dnscache - ok
15:21:26.0102 4896 dot3svc (324fd74686b1ef5e7c19a8af49e748f6) C:\Windows\System32\dot3svc.dll
15:21:26.0135 4896 dot3svc - ok
15:21:26.0201 4896 DPS (a622e888f8aa2f6b49e9bc466f0e5def) C:\Windows\system32\dps.dll
15:21:26.0222 4896 DPS - ok
15:21:26.0472 4896 DritekPortIO (5c918d413f5837e67a85775c9873775e) C:\PROGRA~1\LAUNCH~1\DPortIO.sys
15:21:26.0474 4896 DritekPortIO - ok
15:21:26.0567 4896 drmkaud (97fef831ab90bee128c9af390e243f80) C:\Windows\system32\drivers\drmkaud.sys
15:21:26.0569 4896 drmkaud - ok
15:21:26.0717 4896 DXGKrnl (c68ac676b0ef30cfbb1080adce49eb1f) C:\Windows\System32\drivers\dxgkrnl.sys
15:21:26.0792 4896 DXGKrnl - ok
15:21:26.0858 4896 E1G60 (5425f74ac0c1dbd96a1e04f17d63f94c) C:\Windows\system32\DRIVERS\E1G60I32.sys
15:21:26.0905 4896 E1G60 - ok
15:21:26.0997 4896 EapHost (c0b95e40d85cd807d614e264248a45b9) C:\Windows\System32\eapsvc.dll
15:21:26.0999 4896 EapHost - ok
15:21:27.0097 4896 Ecache (7f64ea048dcfac7acf8b4d7b4e6fe371) C:\Windows\system32\drivers\ecache.sys
15:21:27.0109 4896 Ecache - ok
15:21:27.0471 4896 elxstor (23b62471681a124889978f6295b3f4c6) C:\Windows\system32\drivers\elxstor.sys
15:21:27.0478 4896 elxstor - ok
15:21:27.0694 4896 EMDMgmt (4e6b23dfc917ea39306b529b773950f4) C:\Windows\system32\emdmgmt.dll
15:21:27.0724 4896 EMDMgmt - ok
15:21:28.0298 4896 ePowerSvc (926e9d64319454d1314858d348c3e963) C:\Program Files\PACKARD BELL\Packard Bell PowerSave Solution\ePowerSvc.exe
15:21:28.0343 4896 ePowerSvc - ok
15:21:28.0603 4896 ErrDev (3db974f3935483555d7148663f726c61) C:\Windows\system32\drivers\errdev.sys
15:21:28.0605 4896 ErrDev - ok
15:21:28.0774 4896 EventSystem (67058c46504bc12d821f38cf99b7b28f) C:\Windows\system32\es.dll
15:21:28.0789 4896 EventSystem - ok
15:21:28.0875 4896 ew_hwusbdev (57c171ea22f0a7f068fcb0caedd1e8e7) C:\Windows\system32\DRIVERS\ew_hwusbdev.sys
15:21:28.0879 4896 ew_hwusbdev - ok
15:21:28.0980 4896 exfat (22b408651f9123527bcee54b4f6c5cae) C:\Windows\system32\drivers\exfat.sys
15:21:29.0001 4896 exfat - ok
15:21:29.0104 4896 ezSharedSvc (42f721c52eef2d6df9372a53813a83ef) C:\Windows\System32\ezsvc7.dll
15:21:29.0108 4896 ezSharedSvc - ok
15:21:29.0171 4896 fastfat (1e9b9a70d332103c52995e957dc09ef8) C:\Windows\system32\drivers\fastfat.sys
15:21:29.0175 4896 fastfat - ok
15:21:29.0220 4896 fdc (afe1e8b9782a0dd7fb46bbd88e43f89a) C:\Windows\system32\DRIVERS\fdc.sys
15:21:29.0223 4896 fdc - ok
15:21:29.0320 4896 fdPHost (6629b5f0e98151f4afdd87567ea32ba3) C:\Windows\system32\fdPHost.dll
15:21:29.0322 4896 fdPHost - ok
15:21:29.0370 4896 FDResPub (89ed56dce8e47af40892778a5bd31fd2) C:\Windows\system32\fdrespub.dll
15:21:29.0372 4896 FDResPub - ok
15:21:29.0427 4896 FileInfo (a8c0139a884861e3aae9cfe73b208a9f) C:\Windows\system32\drivers\fileinfo.sys
15:21:29.0432 4896 FileInfo - ok
15:21:29.0475 4896 Filetrace (0ae429a696aecbc5970e3cf2c62635ae) C:\Windows\system32\drivers\filetrace.sys
15:21:29.0477 4896 Filetrace - ok
15:21:29.0638 4896 FLEXnet Licensing Service (227846995afeefa70d328bf5334a86a5) C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
15:21:29.0689 4896 FLEXnet Licensing Service - ok
15:21:29.0738 4896 flpydisk (85b7cf99d532820495d68d747fda9ebd) C:\Windows\system32\DRIVERS\flpydisk.sys
15:21:29.0740 4896 flpydisk - ok
15:21:29.0811 4896 FltMgr (01334f9ea68e6877c4ef05d3ea8abb05) C:\Windows\system32\drivers\fltmgr.sys
15:21:29.0843 4896 FltMgr - ok
15:21:30.0050 4896 FontCache (8ce364388c8eca59b14b539179276d44) C:\Windows\system32\FntCache.dll
15:21:30.0067 4896 FontCache - ok
15:21:30.0223 4896 FontCache3.0.0.0 (c7fbdd1ed42f82bfa35167a5c9803ea3) C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
15:21:30.0229 4896 FontCache3.0.0.0 - ok
15:21:30.0340 4896 fssfltr (491e9d9a26a745f6ae7d570849f4bd87) C:\Windows\system32\DRIVERS\fssfltr.sys
15:21:30.0345 4896 fssfltr - ok
15:21:30.0603 4896 fsssvc (45b52394f9624237f33a8a3d73c0b221) C:\Program Files\Windows Live\Family Safety\fsssvc.exe
15:21:30.0704 4896 fsssvc - ok
15:21:30.0758 4896 Fs_Rec (b972a66758577e0bfd1de0f91aaa27b5) C:\Windows\system32\drivers\Fs_Rec.sys
15:21:30.0760 4896 Fs_Rec - ok
15:21:30.0850 4896 gagp30kx (34582a6e6573d54a07ece5fe24a126b5) C:\Windows\system32\drivers\gagp30kx.sys
15:21:30.0853 4896 gagp30kx - ok
15:21:30.0935 4896 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
15:21:30.0937 4896 GEARAspiWDM - ok
15:21:31.0125 4896 GoogleDesktopManager-051210-111108 (9f5f2f0fb0a7f5aa9f16b9a7b6dad89f) C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
15:21:31.0279 4896 GoogleDesktopManager-051210-111108 - ok
15:21:31.0475 4896 gpsvc (cd5d0aeee35dfd4e986a5aa1500a6e66) C:\Windows\System32\gpsvc.dll
15:21:31.0581 4896 gpsvc - ok
15:21:31.0698 4896 gupdate (8f0de4fef8201e306f9938b0905ac96a) C:\Program Files\Google\Update\GoogleUpdate.exe
15:21:31.0734 4896 gupdate - ok
15:21:31.0818 4896 gupdatem (8f0de4fef8201e306f9938b0905ac96a) C:\Program Files\Google\Update\GoogleUpdate.exe
15:21:31.0820 4896 gupdatem - ok
15:21:31.0904 4896 gusvc (cc839e8d766cc31a7710c9f38cf3e375) C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
15:21:31.0933 4896 gusvc - ok
15:21:32.0037 4896 HdAudAddService (cb04c744be0a61b1d648faed182c3b59) C:\Windows\system32\drivers\HdAudio.sys
15:21:32.0051 4896 HdAudAddService - ok
15:21:32.0301 4896 HDAudBus (062452b7ffd68c8c042a6261fe8dff4a) C:\Windows\system32\DRIVERS\HDAudBus.sys
15:21:32.0351 4896 HDAudBus - ok
15:21:32.0429 4896 HidBth (1338520e78d90154ed6be8f84de5fceb) C:\Windows\system32\drivers\hidbth.sys
15:21:32.0431 4896 HidBth - ok
15:21:32.0516 4896 HidIr (ff3160c3a2445128c5a6d9b076da519e) C:\Windows\system32\drivers\hidir.sys
15:21:32.0518 4896 HidIr - ok
15:21:32.0644 4896 hidserv (84067081f3318162797385e11a8f0582) C:\Windows\System32\hidserv.dll
15:21:32.0647 4896 hidserv - ok
15:21:32.0753 4896 HidUsb (cca4b519b17e23a00b826c55716809cc) C:\Windows\system32\DRIVERS\hidusb.sys
15:21:32.0755 4896 HidUsb - ok
15:21:32.0818 4896 hkmsvc (d8ad255b37da92434c26e4876db7d418) C:\Windows\system32\kmsvc.dll
15:21:32.0821 4896 hkmsvc - ok
15:21:32.0963 4896 HpCISSs (16ee7b23a009e00d835cdb79574a91a6) C:\Windows\system32\drivers\hpcisss.sys
15:21:32.0965 4896 HpCISSs - ok
15:21:33.0070 4896 HSFHWAZL (46d67209550973257601a533e2ac5785) C:\Windows\system32\DRIVERS\VSTAZL3.SYS
15:21:33.0178 4896 HSFHWAZL - ok
15:21:33.0300 4896 HsfXAudioService (1e7c79cbaf71aa92e0eee924907dcb55) C:\Windows\system32\XAudio32.dll
15:21:33.0316 4896 HsfXAudioService - ok
15:21:33.0411 4896 HTTP (0eeeca26c8d4bde2a4664db058a81937) C:\Windows\system32\drivers\HTTP.sys
15:21:33.0463 4896 HTTP - ok
15:21:33.0627 4896 huawei_cdcacm (e28311606c48b6d7612138bd267ca1e1) C:\Windows\system32\DRIVERS\ew_jucdcacm.sys
15:21:33.0690 4896 huawei_cdcacm - ok
15:21:33.0756 4896 huawei_enumerator (bed3a9f86a637cc6c2c5296cd82423d8) C:\Windows\system32\DRIVERS\ew_jubusenum.sys
15:21:33.0759 4896 huawei_enumerator - ok
15:21:33.0849 4896 hwdatacard (a89423d0132c8ab69ba621b6ce191714) C:\Windows\system32\DRIVERS\ewusbmdm.sys
15:21:33.0922 4896 hwdatacard - ok
15:21:34.0084 4896 i2omp (c6b032d69650985468160fc9937cf5b4) C:\Windows\system32\drivers\i2omp.sys
15:21:34.0086 4896 i2omp - ok
15:21:34.0127 4896 i8042prt (22d56c8184586b7a1f6fa60be5f5a2bd) C:\Windows\system32\DRIVERS\i8042prt.sys
15:21:34.0129 4896 i8042prt - ok
15:21:34.0201 4896 iaStorV (54155ea1b0df185878e0fc9ec3ac3a14) C:\Windows\system32\drivers\iastorv.sys
15:21:34.0308 4896 iaStorV - ok
15:21:34.0996 4896 idsvc (98477b08e61945f974ed9fdc4cb6bdab) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
15:21:35.0208 4896 idsvc - ok
15:21:36.0574 4896 igfx (8266ae06df974e5ba047b3e9e9e70b3f) C:\Windows\system32\DRIVERS\igdkmd32.sys
15:21:36.0868 4896 igfx - ok
15:21:37.0076 4896 iirsp (2d077bf86e843f901d8db709c95b49a5) C:\Windows\system32\drivers\iirsp.sys
15:21:37.0078 4896 iirsp - ok
15:21:37.0828 4896 IKEEXT (9908d8a397b76cd8d31d0d383c5773c9) C:\Windows\System32\ikeext.dll
15:21:37.0839 4896 IKEEXT - ok
15:21:38.0160 4896 IntcAzAudAddService (de7d0a44de9eaf68165748a8d6af1c86) C:\Windows\system32\drivers\RTKVHDA.sys
15:21:38.0256 4896 IntcAzAudAddService - ok
15:21:38.0467 4896 IntcHdmiAddService (092a78e9c6f71bf0e22379503b90e800) C:\Windows\system32\drivers\IntcHdmi.sys
15:21:38.0545 4896 IntcHdmiAddService - ok
15:21:38.0673 4896 intelide (83aa759f3189e6370c30de5dc5590718) C:\Windows\system32\drivers\intelide.sys
15:21:38.0676 4896 intelide - ok
15:21:38.0756 4896 intelppm (224191001e78c89dfa78924c3ea595ff) C:\Windows\system32\DRIVERS\intelppm.sys
15:21:38.0758 4896 intelppm - ok
15:21:39.0087 4896 InternetEverywhere_Service (c01faf3ac8f8ccb81bcb424cc3c9b2b0) C:\Program Files\InternetEverywhere\InternetEverywhere_Service.exe
15:21:39.0171 4896 InternetEverywhere_Service - ok
15:21:39.0317 4896 IPBusEnum (9ac218c6e6105477484c6fdbe7d409a4) C:\Windows\system32\ipbusenum.dll
15:21:39.0320 4896 IPBusEnum - ok
15:21:39.0356 4896 IpFilterDriver (62c265c38769b864cb25b4bcf62df6c3) C:\Windows\system32\DRIVERS\ipfltdrv.sys
15:21:39.0358 4896 IpFilterDriver - ok
15:21:39.0411 4896 iphlpsvc (1998bd97f950680bb55f55a7244679c2) C:\Windows\System32\iphlpsvc.dll
15:21:39.0420 4896 iphlpsvc - ok
15:21:39.0438 4896 IpInIp - ok
15:21:39.0538 4896 IPMIDRV (b25aaf203552b7b3491139d582b39ad1) C:\Windows\system32\drivers\ipmidrv.sys
15:21:39.0541 4896 IPMIDRV - ok
15:21:39.0607 4896 IPNAT (8793643a67b42cec66490b2a0cf92d68) C:\Windows\system32\DRIVERS\ipnat.sys
15:21:39.0634 4896 IPNAT - ok
15:21:39.0809 4896 iPod Service (ce004777b92dea56fe14ec900d20baa4) C:\Program Files\iPod\bin\iPodService.exe
15:21:39.0856 4896 iPod Service - ok
15:21:39.0899 4896 irda (e50a95179211b12946f7e035d60af560) C:\Windows\system32\DRIVERS\irda.sys
15:21:39.0902 4896 irda - ok
15:21:39.0944 4896 IRENUM (109c0dfb82c3632fbd11949b73aeeac9) C:\Windows\system32\drivers\irenum.sys
15:21:39.0946 4896 IRENUM - ok
15:21:39.0993 4896 Irmon (cbb0d940221a281bcfeaea695bd1cda5) C:\Windows\System32\irmon.dll
15:21:39.0996 4896 Irmon - ok
15:21:40.0209 4896 irsir (5896b5ff6332ab2be1582523e9656a67) C:\Windows\system32\DRIVERS\irsir.sys
15:21:40.0212 4896 irsir - ok
15:21:40.0276 4896 isapnp (6c70698a3e5c4376c6ab5c7c17fb0614) C:\Windows\system32\drivers\isapnp.sys
15:21:40.0279 4896 isapnp - ok
15:21:40.0328 4896 iScsiPrt (232fa340531d940aac623b121a595034) C:\Windows\system32\DRIVERS\msiscsi.sys
15:21:40.0381 4896 iScsiPrt - ok
15:21:40.0399 4896 iteatapi (bced60d16156e428f8df8cf27b0df150) C:\Windows\system32\drivers\iteatapi.sys
15:21:40.0401 4896 iteatapi - ok
15:21:40.0417 4896 iteraid (06fa654504a498c30adca8bec4e87e7e) C:\Windows\system32\drivers\iteraid.sys
15:21:40.0420 4896 iteraid - ok
15:21:40.0497 4896 k57nd60x (eac21e8014c7e6ee341afffb7e2bbd54) C:\Windows\system32\DRIVERS\k57nd60x.sys
15:21:40.0508 4896 k57nd60x - ok
15:21:40.0520 4896 kbdclass (37605e0a8cf00cbba538e753e4344c6e) C:\Windows\system32\DRIVERS\kbdclass.sys
15:21:40.0521 4896 kbdclass - ok
15:21:40.0817 4896 kbdhid (ede59ec70e25c24581add1fbec7325f7) C:\Windows\system32\DRIVERS\kbdhid.sys
15:21:40.0904 4896 kbdhid - ok
15:21:41.0116 4896 KeyIso (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
15:21:41.0160 4896 KeyIso - ok
15:21:41.0316 4896 kl1 (a884729b0e98cd93d6511de6d58cdc98) C:\Windows\system32\DRIVERS\kl1.sys
15:21:41.0319 4896 kl1 - ok
15:21:41.0346 4896 KLFLTDEV (adda474c9b18fd829a6c8351485c4842) C:\Windows\system32\DRIVERS\klfltdev.sys
15:21:41.0349 4896 KLFLTDEV - ok
15:21:41.0406 4896 KLIF (9d51d6f7845f0248c67a8a36cd7cdf05) C:\Windows\system32\DRIVERS\klif.sys
15:21:41.0424 4896 KLIF - ok
15:21:41.0550 4896 KLIM6 (00dc8637480a8a26df1407d8207781c8) C:\Windows\system32\DRIVERS\klim6.sys
15:21:41.0553 4896 KLIM6 - ok
15:21:41.0630 4896 KSecDD (2b2f1638466e8cb091400c9019cc730e) C:\Windows\system32\Drivers\ksecdd.sys
15:21:41.0658 4896 KSecDD - ok
15:21:42.0114 4896 KtmRm (8078f8f8f7a79e2e6b494523a828c585) C:\Windows\system32\msdtckrm.dll
15:21:42.0228 4896 KtmRm - ok
15:21:42.0326 4896 LanmanServer (1bf5eebfd518dd7298434d8c862f825d) C:\Windows\System32\srvsvc.dll
15:21:42.0332 4896 LanmanServer - ok
15:21:42.0374 4896 LanmanWorkstation (1db69705b695b987082c8baec0c6b34f) C:\Windows\System32\wkssvc.dll
15:21:42.0460 4896 LanmanWorkstation - ok
15:21:42.0500 4896 lltdio (d1c5883087a0c3f1344d9d55a44901f6) C:\Windows\system32\DRIVERS\lltdio.sys
15:21:42.0502 4896 lltdio - ok
15:21:42.0683 4896 lltdsvc (2d5a428872f1442631d0959a34abff63) C:\Windows\System32\lltdsvc.dll
15:21:42.0694 4896 lltdsvc - ok
15:21:42.0738 4896 lmhosts (35d40113e4a5b961b6ce5c5857702518) C:\Windows\System32\lmhsvc.dll
15:21:42.0741 4896 lmhosts - ok
15:21:42.0870 4896 LSI_FC (c7e15e82879bf3235b559563d4185365) C:\Windows\system32\drivers\lsi_fc.sys
15:21:42.0913 4896 LSI_FC - ok
15:21:42.0942 4896 LSI_SAS (ee01ebae8c9bf0fa072e0ff68718920a) C:\Windows\system32\drivers\lsi_sas.sys
15:21:42.0959 4896 LSI_SAS - ok
15:21:42.0985 4896 LSI_SCSI (912a04696e9ca30146a62afa1463dd5c) C:\Windows\system32\drivers\lsi_scsi.sys
15:21:42.0988 4896 LSI_SCSI - ok
15:21:43.0018 4896 luafv (8f5c7426567798e62a3b3614965d62cc) C:\Windows\system32\drivers\luafv.sys
15:21:43.0021 4896 luafv - ok
15:21:43.0107 4896 MarvinBus (a3e700d78eec390f1208098cdca5c6b6) C:\Windows\system32\DRIVERS\MarvinBus.sys
15:21:43.0124 4896 MarvinBus - ok
15:21:43.0160 4896 MBAMProtector (fb097bbc1a18f044bd17bd2fccf97865) C:\Windows\system32\drivers\mbam.sys
15:21:43.0162 4896 MBAMProtector - ok
15:21:43.0288 4896 MBAMService (ba400ed640bca1eae5c727ae17c10207) C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
15:21:43.0683 4896 MBAMService - ok
15:21:44.0119 4896 MBAMSwissArmy (0db7527db188c7d967a37bb51bbf3963) C:\Windows\system32\drivers\mbamswissarmy.sys
15:21:44.0153 4896 MBAMSwissArmy - ok
15:21:44.0272 4896 mdmxsdk (0cea2d0d3fa284b85ed5b68365114f76) C:\Windows\system32\DRIVERS\mdmxsdk.sys
15:21:44.0274 4896 mdmxsdk - ok
15:21:44.0307 4896 megasas (0001ce609d66632fa17b84705f658879) C:\Windows\system32\drivers\megasas.sys
15:21:44.0309 4896 megasas - ok
15:21:44.0437 4896 MegaSR (c252f32cd9a49dbfc25ecf26ebd51a99) C:\Windows\system32\drivers\megasr.sys
15:21:44.0445 4896 MegaSR - ok
15:21:44.0565 4896 MMCSS (1076ffcffaae8385fd62dfcb25ac4708) C:\Windows\system32\mmcss.dll
15:21:44.0569 4896 MMCSS - ok
15:21:44.0630 4896 Modem (e13b5ea0f51ba5b1512ec671393d09ba) C:\Windows\system32\drivers\modem.sys
15:21:44.0632 4896 Modem - ok
15:21:44.0680 4896 monitor (0a9bb33b56e294f686abb7c1e4e2d8a8) C:\Windows\system32\DRIVERS\monitor.sys
15:21:44.0682 4896 monitor - ok
15:21:44.0703 4896 mouclass (5bf6a1326a335c5298477754a506d263) C:\Windows\system32\DRIVERS\mouclass.sys
15:21:44.0705 4896 mouclass - ok
15:21:44.0723 4896 mouhid (93b8d4869e12cfbe663915502900876f) C:\Windows\system32\DRIVERS\mouhid.sys
15:21:44.0725 4896 mouhid - ok
15:21:44.0745 4896 MountMgr (bdafc88aa6b92f7842416ea6a48e1600) C:\Windows\system32\drivers\mountmgr.sys
15:21:44.0747 4896 MountMgr - ok
15:21:44.0772 4896 mpio (511d011289755dd9f9a7579fb0b064e6) C:\Windows\system32\drivers\mpio.sys
15:21:44.0775 4896 mpio - ok
15:21:44.0840 4896 mpsdrv (22241feba9b2defa669c8cb0a8dd7d2e) C:\Windows\system32\drivers\mpsdrv.sys
15:21:44.0842 4896 mpsdrv - ok
15:21:44.0907 4896 MpsSvc (5de62c6e9108f14f6794060a9bdecaec) C:\Windows\system32\mpssvc.dll
15:21:44.0976 4896 MpsSvc - ok
15:21:45.0041 4896 Mraid35x (4fbbb70d30fd20ec51f80061703b001e) C:\Windows\system32\drivers\mraid35x.sys
15:21:45.0043 4896 Mraid35x - ok
15:21:45.0076 4896 MRxDAV (82cea0395524aacfeb58ba1448e8325c) C:\Windows\system32\drivers\mrxdav.sys
15:21:45.0125 4896 MRxDAV - ok
15:21:45.0173 4896 mrxsmb (1e94971c4b446ab2290deb71d01cf0c2) C:\Windows\system32\DRIVERS\mrxsmb.sys
15:21:45.0187 4896 mrxsmb - ok
15:21:45.0264 4896 mrxsmb10 (4fccb34d793b116423209c0f8b7a3b03) C:\Windows\system32\DRIVERS\mrxsmb10.sys
15:21:45.0273 4896 mrxsmb10 - ok
15:21:45.0302 4896 mrxsmb20 (c3cb1b40ad4a0124d617a1199b0b9d7c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
15:21:45.0305 4896 mrxsmb20 - ok
15:21:45.0328 4896 msahci (5457dcfa7c0da43522f4d9d4049c1472) C:\Windows\system32\drivers\msahci.sys
15:21:45.0331 4896 msahci - ok
15:21:45.0364 4896 msdsm (4468b0f385a86ecddaf8d3ca662ec0e7) C:\Windows\system32\drivers\msdsm.sys
15:21:45.0367 4896 msdsm - ok
15:21:45.0485 4896 MSDTC (fd7520cc3a80c5fc8c48852bb24c6ded) C:\Windows\System32\msdtc.exe
15:21:45.0490 4896 MSDTC - ok
15:21:45.0553 4896 Msfs (a9927f4a46b816c92f461acb90cf8515) C:\Windows\system32\drivers\Msfs.sys
15:21:45.0555 4896 Msfs - ok
15:21:45.0561 4896 msisadrv (0f400e306f385c56317357d6dea56f62) C:\Windows\system32\drivers\msisadrv.sys
15:21:45.0565 4896 msisadrv - ok
15:21:45.0592 4896 MSiSCSI (85466c0757a23d9a9aecdc0755203cb2) C:\Windows\system32\iscsiexe.dll
15:21:45.0607 4896 MSiSCSI - ok
15:21:45.0627 4896 msiserver - ok
15:21:45.0647 4896 MSKSSRV (d8c63d34d9c9e56c059e24ec7185cc07) C:\Windows\system32\drivers\MSKSSRV.sys
15:21:45.0649 4896 MSKSSRV - ok
15:21:45.0669 4896 MSPCLOCK (1d373c90d62ddb641d50e55b9e78d65e) C:\Windows\system32\drivers\MSPCLOCK.sys
15:21:45.0700 4896 MSPCLOCK - ok
15:21:45.0723 4896 MSPQM (b572da05bf4e098d4bba3a4734fb505b) C:\Windows\system32\drivers\MSPQM.sys
15:21:45.0724 4896 MSPQM - ok
15:21:45.0929 4896 MsRPC (b49456d70555de905c311bcda6ec6adb) C:\Windows\system32\drivers\MsRPC.sys
15:21:45.0938 4896 MsRPC - ok
15:21:45.0998 4896 mssmbios (e384487cb84be41d09711c30ca79646c) C:\Windows\system32\DRIVERS\mssmbios.sys
15:21:46.0000 4896 mssmbios - ok
15:21:46.0019 4896 MSTEE (7199c1eec1e4993caf96b8c0a26bd58a) C:\Windows\system32\drivers\MSTEE.sys
15:21:46.0021 4896 MSTEE - ok
15:21:46.0039 4896 Mup (6a57b5733d4cb702c8ea4542e836b96c) C:\Windows\system32\Drivers\mup.sys
15:21:46.0043 4896 Mup - ok
15:21:46.0156 4896 napagent (e4eaf0c5c1b41b5c83386cf212ca9584) C:\Windows\system32\qagentRT.dll
15:21:46.0237 4896 napagent - ok
15:21:46.0355 4896 NativeWifiP (85c44fdff9cf7e72a40dcb7ec06a4416) C:\Windows\system32\DRIVERS\nwifi.sys
15:21:46.0400 4896 NativeWifiP - ok
15:21:46.0463 4896 NDIS (1357274d1883f68300aeadd15d7bbb42) C:\Windows\system32\drivers\ndis.sys
15:21:46.0502 4896 NDIS - ok
15:21:46.0566 4896 NdisTapi (0e186e90404980569fb449ba7519ae61) C:\Windows\system32\DRIVERS\ndistapi.sys
15:21:46.0570 4896 NdisTapi - ok
15:21:46.0589 4896 Ndisuio (d6973aa34c4d5d76c0430b181c3cd389) C:\Windows\system32\DRIVERS\ndisuio.sys
15:21:46.0590 4896 Ndisuio - ok
15:21:46.0692 4896 NdisWan (818f648618ae34f729fdb47ec68345c3) C:\Windows\system32\DRIVERS\ndiswan.sys
15:21:46.0695 4896 NdisWan - ok
15:21:46.0725 4896 NDProxy (71dab552b41936358f3b541ae5997fb3) C:\Windows\system32\drivers\NDProxy.sys
15:21:46.0727 4896 NDProxy - ok
15:21:46.0957 4896 Nero BackItUp Scheduler 3 (6d4028d458eaaa1782099750790dc8c9) C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
15:21:46.0995 4896 Nero BackItUp Scheduler 3 - ok
15:21:47.0014 4896 NetBIOS (bcd093a5a6777cf626434568dc7dba78) C:\Windows\system32\DRIVERS\netbios.sys
15:21:47.0016 4896 NetBIOS - ok
15:21:47.0149 4896 netbt (ecd64230a59cbd93c85f1cd1cab9f3f6) C:\Windows\system32\DRIVERS\netbt.sys
15:21:47.0271 4896 netbt - ok
15:21:47.0451 4896 Netlogon (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
15:21:47.0454 4896 Netlogon - ok
15:21:47.0510 4896 Netman (c8052711daecc48b982434c5116ca401) C:\Windows\System32\netman.dll
15:21:47.0526 4896 Netman - ok
15:21:47.0561 4896 netprofm (2ef3bbe22e5a5acd1428ee387a0d0172) C:\Windows\System32\netprofm.dll
15:21:47.0617 4896 netprofm - ok
15:21:48.0312 4896 NetTcpPortSharing (d6c4e4a39a36029ac0813d476fbd0248) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
15:21:48.0316 4896 NetTcpPortSharing - ok
15:21:48.0396 4896 nfrd960 (2e7fb731d4790a1bc6270accefacb36e) C:\Windows\system32\drivers\nfrd960.sys
15:21:48.0398 4896 nfrd960 - ok
15:21:48.0442 4896 NlaSvc (2997b15415f9bbe05b5a4c1c85e0c6a2) C:\Windows\System32\nlasvc.dll
15:21:48.0540 4896 NlaSvc - ok
15:21:48.0797 4896 NMIndexingService (1bef5464c06f4af0c704378824c52adb) C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
15:21:48.0829 4896 NMIndexingService - ok
15:21:48.0859 4896 Npfs (d36f239d7cce1931598e8fb90a0dbc26) C:\Windows\system32\drivers\Npfs.sys
15:21:48.0862 4896 Npfs - ok
15:21:48.0920 4896 nsi (8bb86f0c7eea2bded6fe095d0b4ca9bd) C:\Windows\system32\nsisvc.dll
15:21:48.0934 4896 nsi - ok
15:21:49.0079 4896 nsiproxy (609773e344a97410ce4ebf74a8914fcf) C:\Windows\system32\drivers\nsiproxy.sys
15:21:49.0092 4896 nsiproxy - ok
15:21:49.0549 4896 Ntfs (6a4a98cee84cf9e99564510dda4baa47) C:\Windows\system32\drivers\Ntfs.sys
15:21:49.0574 4896 Ntfs - ok
15:21:49.0684 4896 NTI IScheduleSvc (952bf6dfc96e3e94d1d88fd0b78ec443) C:\Program Files\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe
15:21:49.0687 4896 NTI IScheduleSvc - ok
15:21:49.0928 4896 NTIDrvr (2757d2ba59aee155209e24942ab127c9) C:\Windows\system32\Drivers\NTIDrvr.sys
15:21:49.0929 4896 NTIDrvr - ok
15:21:49.0957 4896 ntrigdigi (e875c093aec0c978a90f30c9e0dfbb72) C:\Windows\system32\drivers\ntrigdigi.sys
15:21:49.0959 4896 ntrigdigi - ok
15:21:49.0981 4896 Null (c5dbbcda07d780bda9b685df333bb41e) C:\Windows\system32\drivers\Null.sys
15:21:49.0982 4896 Null - ok
15:21:50.0020 4896 nvraid (2edf9e7751554b42cbb60116de727101) C:\Windows\system32\drivers\nvraid.sys
15:21:50.0041 4896 nvraid - ok
15:21:50.0102 4896 nvstor (abed0c09758d1d97db0042dbb2688177) C:\Windows\system32\drivers\nvstor.sys
15:21:50.0107 4896 nvstor - ok
15:21:50.0258 4896 nv_agp (18bbdf913916b71bd54575bdb6eeac0b) C:\Windows\system32\drivers\nv_agp.sys
15:21:50.0373 4896 nv_agp - ok
15:21:50.0378 4896 NwlnkFlt - ok
15:21:50.0382 4896 NwlnkFwd - ok
15:21:50.0535 4896 odserv (1f0e05dff4f5a833168e49be1256f002) C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
15:21:50.0546 4896 odserv - ok
15:21:50.0614 4896 ohci1394 (be32da025a0be1878f0ee8d6d9386cd5) C:\Windows\system32\drivers\ohci1394.sys
15:21:50.0617 4896 ohci1394 - ok
15:21:50.0660 4896 ose (5a432a042dae460abe7199b758e8606c) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
15:21:50.0672 4896 ose - ok
15:21:50.0799 4896 p2pimsvc (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
15:21:51.0244 4896 p2pimsvc - ok
15:21:51.0268 4896 p2psvc (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
15:21:51.0277 4896 p2psvc - ok
15:21:51.0623 4896 Parport (0fa9b5055484649d63c303fe404e5f4d) C:\Windows\system32\drivers\parport.sys
15:21:51.0627 4896 Parport - ok
15:21:51.0656 4896 partmgr (b9c2b89f08670e159f7181891e449cd9) C:\Windows\system32\drivers\partmgr.sys
15:21:51.0659 4896 partmgr - ok
15:21:51.0687 4896 Parvdm (4f9a6a8a31413180d0fcb279ad5d8112) C:\Windows\system32\drivers\parvdm.sys
15:21:51.0691 4896 Parvdm - ok
15:21:51.0809 4896 PcaSvc (c6276ad11f4bb49b58aa1ed88537f14a) C:\Windows\System32\pcasvc.dll
15:21:51.0815 4896 PcaSvc - ok
15:21:51.0843 4896 pci (941dc1d19e7e8620f40bbc206981efdb) C:\Windows\system32\drivers\pci.sys
15:21:51.0847 4896 pci - ok
15:21:51.0868 4896 pciide (fc175f5ddab666d7f4d17449a547626f) C:\Windows\system32\drivers\pciide.sys
15:21:51.0870 4896 pciide - ok
15:21:51.0923 4896 pcmcia (e6f3fb1b86aa519e7698ad05e58b04e5) C:\Windows\system32\drivers\pcmcia.sys
15:21:51.0927 4896 pcmcia - ok
15:21:52.0066 4896 PEAUTH (6349f6ed9c623b44b52ea3c63c831a92) C:\Windows\system32\drivers\peauth.sys
15:21:52.0131 4896 PEAUTH - ok
15:21:52.0380 4896 pla (b1689df169143f57053f795390c99db3) C:\Windows\system32\pla.dll
15:21:52.0554 4896 pla - ok
15:21:52.0865 4896 PlugPlay (c5e7f8a996ec0a82d508fd9064a5569e) C:\Windows\system32\umpnpmgr.dll
15:21:52.0873 4896 PlugPlay - ok
15:21:53.0692 4896 PNRPAutoReg (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
15:21:53.0709 4896 PNRPAutoReg - ok
15:21:53.0719 4896 PNRPsvc (0c8e8e61ad1eb0b250b846712c917506) C:\Windows\system32\p2psvc.dll
15:21:53.0727 4896 PNRPsvc - ok
15:21:53.0894 4896 PolicyAgent (d0494460421a03cd5225cca0059aa146) C:\Windows\System32\ipsecsvc.dll
15:21:53.0923 4896 PolicyAgent - ok
15:21:54.0100 4896 PptpMiniport (ecfffaec0c1ecd8dbc77f39070ea1db1) C:\Windows\system32\DRIVERS\raspptp.sys
15:21:54.0103 4896 PptpMiniport - ok
15:21:54.0131 4896 Processor (2027293619dd0f047c584cf2e7df4ffd) C:\Windows\system32\drivers\processr.sys
15:21:54.0134 4896 Processor - ok
15:21:54.0179 4896 ProfSvc (0508faa222d28835310b7bfca7a77346) C:\Windows\system32\profsvc.dll
15:21:54.0224 4896 ProfSvc - ok
15:21:54.0366 4896 ProtectedStorage (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
15:21:54.0369 4896 ProtectedStorage - ok
15:21:54.0490 4896 PSched (99514faa8df93d34b5589187db3aa0ba) C:\Windows\system32\DRIVERS\pacer.sys
15:21:54.0493 4896 PSched - ok
15:21:54.0632 4896 PSI_SVC_2 (a6a7ad767bf5141665f5c675f671b3e1) c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
15:21:54.0687 4896 PSI_SVC_2 - ok
15:21:54.0725 4896 PxHelp20 (d86b4a68565e444d76457f14172c875a) C:\Windows\system32\Drivers\PxHelp20.sys
15:21:54.0727 4896 PxHelp20 - ok
15:21:54.0973 4896 ql2300 (0a6db55afb7820c99aa1f3a1d270f4f6) C:\Windows\system32\drivers\ql2300.sys
15:21:55.0066 4896 ql2300 - ok
15:21:55.0099 4896 ql40xx (81a7e5c076e59995d54bc1ed3a16e60b) C:\Windows\system32\drivers\ql40xx.sys
15:21:55.0114 4896 ql40xx - ok
15:21:55.0193 4896 QWAVE (e9ecae663f47e6cb43962d18ab18890f) C:\Windows\system32\qwave.dll
15:21:55.0210 4896 QWAVE - ok
15:21:55.0232 4896 QWAVEdrv (9f5e0e1926014d17486901c88eca2db7) C:\Windows\system32\drivers\qwavedrv.sys
15:21:55.0234 4896 QWAVEdrv - ok
15:21:55.0311 4896 RalinkRegistryWriter (81bebbffe45855b7faf204c517fbeef1) C:\Program Files\Ralink\Common\RalinkRegistryWriter.exe
15:21:55.0314 4896 RalinkRegistryWriter - ok
15:21:55.0355 4896 RasAcd (147d7f9c556d259924351feb0de606c3) C:\Windows\system32\DRIVERS\rasacd.sys
15:21:55.0357 4896 RasAcd - ok
15:21:55.0557 4896 RasAuto (f6a452eb4ceadbb51c9e0ee6b3ecef0f) C:\Windows\System32\rasauto.dll
15:21:55.0562 4896 RasAuto - ok
15:21:55.0641 4896 Rasl2tp (a214adbaf4cb47dd2728859ef31f26b0) C:\Windows\system32\DRIVERS\rasl2tp.sys
15:21:55.0644 4896 Rasl2tp - ok
15:21:55.0897 4896 RasMan (75d47445d70ca6f9f894b032fbc64fcf) C:\Windows\System32\rasmans.dll
15:21:55.0905 4896 RasMan - ok
15:21:55.0975 4896 RasPppoe (509a98dd18af4375e1fc40bc175f1def) C:\Windows\system32\DRIVERS\raspppoe.sys
15:21:55.0978 4896 RasPppoe - ok
15:21:55.0988 4896 RasSstp (2005f4a1e05fa09389ac85840f0a9e4d) C:\Windows\system32\DRIVERS\rassstp.sys
15:21:55.0991 4896 RasSstp - ok
15:21:56.0113 4896 rdbss (b14c9d5b9add2f84f70570bbbfaa7935) C:\Windows\system32\DRIVERS\rdbss.sys
15:21:56.0153 4896 rdbss - ok
15:21:56.0199 4896 RDPCDD (89e59be9a564262a3fb6c4f4f1cd9899) C:\Windows\system32\DRIVERS\RDPCDD.sys
15:21:56.0202 4896 RDPCDD - ok
15:21:56.0294 4896 rdpdr (fbc0bacd9c3d7f6956853f64a66e252d) C:\Windows\system32\drivers\rdpdr.sys
15:21:56.0322 4896 rdpdr - ok
15:21:56.0328 4896 RDPENCDD (9d91fe5286f748862ecffa05f8a0710c) C:\Windows\system32\drivers\rdpencdd.sys
15:21:56.0330 4896 RDPENCDD - ok
15:21:56.0381 4896 RDPWD (c127ebd5afab31524662c48dfceb773a) C:\Windows\system32\drivers\RDPWD.sys
15:21:56.0388 4896 RDPWD - ok
15:21:56.0508 4896 RemoteAccess (bcdd6b4804d06b1f7ebf29e53a57ece9) C:\Windows\System32\mprdim.dll
15:21:56.0512 4896 RemoteAccess - ok
15:21:56.0640 4896 RemoteRegistry (9e6894ea18daff37b63e1005f83ae4ab) C:\Windows\system32\regsvc.dll
15:21:56.0699 4896 RemoteRegistry - ok
15:21:56.0767 4896 RFCOMM (6482707f9f4da0ecbab43b2e0398a101) C:\Windows\system32\DRIVERS\rfcomm.sys
15:21:56.0780 4896 RFCOMM - ok
15:21:56.0812 4896 RichVideo - ok
15:21:56.0832 4896 RimUsb - ok
15:21:56.0866 4896 RpcLocator (5123f83cbc4349d065534eeb6bbdc42b) C:\Windows\system32\locator.exe
15:21:56.0869 4896 RpcLocator - ok
15:21:57.0417 4896 RpcSs (3b5b4d53fec14f7476ca29a20cc31ac9) C:\Windows\system32\rpcss.dll
15:21:57.0425 4896 RpcSs - ok
15:21:57.0462 4896 rspndr (9c508f4074a39e8b4b31d27198146fad) C:\Windows\system32\DRIVERS\rspndr.sys
15:21:57.0469 4896 rspndr - ok
15:21:57.0510 4896 RTSTOR (d97d8259293b7a82cb891f37f997df3f) C:\Windows\system32\drivers\RTSTOR.SYS
15:21:57.0513 4896 RTSTOR - ok
15:21:57.0591 4896 SamSs (a3e186b4b935905b829219502557314e) C:\Windows\system32\lsass.exe
15:21:57.0594 4896 SamSs - ok
15:21:57.0676 4896 sbp2port (3ce8f073a557e172b330109436984e30) C:\Windows\system32\drivers\sbp2port.sys
15:21:57.0679 4896 sbp2port - ok
15:21:57.0722 4896 SCardSvr (77b7a11a0c3d78d3386398fbbea1b632) C:\Windows\System32\SCardSvr.dll
15:21:57.0761 4896 SCardSvr - ok
15:21:57.0909 4896 Schedule (1a58069db21d05eb2ab58ee5753ebe8d) C:\Windows\system32\schedsvc.dll
15:21:57.0929 4896 Schedule - ok
15:21:57.0988 4896 SCPolicySvc (312ec3e37a0a1f2006534913e37b4423) C:\Windows\System32\certprop.dll
15:21:57.0989 4896 SCPolicySvc - ok
15:21:58.0031 4896 SDRSVC (716313d9f6b0529d03f726d5aaf6f191) C:\Windows\System32\SDRSVC.dll
15:21:58.0089 4896 SDRSVC - ok
15:21:58.0181 4896 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
15:21:58.0184 4896 secdrv - ok
15:21:58.0248 4896 seclogon (fd5199d4d8a521005e4b5ee7fe00fa9b) C:\Windows\system32\seclogon.dll
15:21:58.0252 4896 seclogon - ok
15:21:58.0276 4896 SENS (a9bbab5759771e523f55563d6cbe140f) C:\Windows\system32\sens.dll
15:21:58.0280 4896 SENS - ok
15:21:58.0327 4896 Serenum (68e44e331d46f0fb38f0863a84cd1a31) C:\Windows\system32\drivers\serenum.sys
15:21:58.0365 4896 Serenum - ok
15:21:58.0579 4896 Serial (c70d69a918b178d3c3b06339b40c2e1b) C:\Windows\system32\drivers\serial.sys
15:21:58.0583 4896 Serial - ok
15:21:58.0620 4896 sermouse (8af3d28a879bf75db53a0ee7a4289624) C:\Windows\system32\drivers\sermouse.sys
15:21:58.0622 4896 sermouse - ok
15:21:58.0698 4896 SessionEnv (d2193326f729b163125610dbf3e17d57) C:\Windows\system32\sessenv.dll
15:21:58.0703 4896 SessionEnv - ok
15:21:58.0749 4896 sffdisk (3efa810bdca87f6ecc24f9832243fe86) C:\Windows\system32\drivers\sffdisk.sys
15:21:58.0751 4896 sffdisk - ok
15:21:58.0795 4896 sffp_mmc (e95d451f7ea3e583aec75f3b3ee42dc5) C:\Windows\system32\drivers\sffp_mmc.sys
15:21:58.0797 4896 sffp_mmc - ok
15:21:58.0851 4896 sffp_sd (3d0ea348784b7ac9ea9bd9f317980979) C:\Windows\system32\drivers\sffp_sd.sys
15:21:58.0853 4896 sffp_sd - ok
15:21:58.0873 4896 sfloppy (46ed8e91793b2e6f848015445a0ac188) C:\Windows\system32\drivers\sfloppy.sys
15:21:58.0874 4896 sfloppy - ok
15:21:58.0935 4896 SharedAccess (e1499bd0ff76b1b2fbbf1af339d91165) C:\Windows\System32\ipnathlp.dll
15:21:58.0961 4896 SharedAccess - ok
15:21:59.0253 4896 ShellHWDetection (c7230fbee14437716701c15be02c27b8) C:\Windows\System32\shsvcs.dll
15:21:59.0268 4896 ShellHWDetection - ok
15:21:59.0438 4896 sisagp (1d76624a09a054f682d746b924e2dbc3) C:\Windows\system32\drivers\sisagp.sys
15:21:59.0443 4896 sisagp - ok
15:21:59.0565 4896 SiSRaid2 (43cb7aa756c7db280d01da9b676cfde2) C:\Windows\system32\drivers\sisraid2.sys
15:21:59.0569 4896 SiSRaid2 - ok
15:21:59.0619 4896 SiSRaid4 (a99c6c8b0baa970d8aa59ddc50b57f94) C:\Windows\system32\drivers\sisraid4.sys
15:21:59.0635 4896 SiSRaid4 - ok
15:21:59.0724 4896 SkypeUpdate (db0405d9aad62f0762e0876ac142b7e1) C:\Program Files\Skype\Updater\Updater.exe
15:21:59.0769 4896 SkypeUpdate - ok
15:22:00.0440 4896 slsvc (862bb4cbc05d80c5b45be430e5ef872f) C:\Windows\system32\SLsvc.exe
15:22:00.0576 4896 slsvc - ok
15:22:00.0941 4896 SLUINotify (6edc422215cd78aa8a9cde6b30abbd35) C:\Windows\system32\SLUINotify.dll
15:22:00.0946 4896 SLUINotify - ok
15:22:01.0109 4896 Smb (7b75299a4d201d6a6533603d6914ab04) C:\Windows\system32\DRIVERS\smb.sys
15:22:01.0112 4896 Smb - ok
15:22:01.0367 4896 SNMPTRAP (2a146a055b4401c16ee62d18b8e2a032) C:\Windows\System32\snmptrap.exe
15:22:01.0370 4896 SNMPTRAP - ok
15:22:01.0561 4896 spldr (7aebdeef071fe28b0eef2cdd69102bff) C:\Windows\system32\drivers\spldr.sys
15:22:01.0564 4896 spldr - ok
15:22:01.0599 4896 Spooler (8554097e5136c3bf9f69fe578a1b35f4) C:\Windows\System32\spoolsv.exe
15:22:01.0635 4896 Spooler - ok
15:22:01.0849 4896 sptd (cdddec541bc3c96f91ecb48759673505) C:\Windows\system32\Drivers\sptd.sys
15:22:01.0850 4896 Suspicious file (NoAccess): C:\Windows\system32\Drivers\sptd.sys. md5: cdddec541bc3c96f91ecb48759673505
15:22:01.0885 4896 sptd ( LockedFile.Multi.Generic ) - warning
15:22:01.0885 4896 sptd - detected LockedFile.Multi.Generic (1)
15:22:01.0954 4896 srv (41987f9fc0e61adf54f581e15029ad91) C:\Windows\system32\DRIVERS\srv.sys
15:22:01.0961 4896 srv - ok
15:22:01.0997 4896 srv2 (ff33aff99564b1aa534f58868cbe41ef) C:\Windows\system32\DRIVERS\srv2.sys
15:22:02.0002 4896 srv2 - ok
15:22:02.0025 4896 srvnet (7605c0e1d01a08f3ecd743f38b834a44) C:\Windows\system32\DRIVERS\srvnet.sys
15:22:02.0028 4896 srvnet - ok
15:22:02.0125 4896 SSDPSRV (03d50b37234967433a5ea5ba72bc0b62) C:\Windows\System32\ssdpsrv.dll
15:22:02.0136 4896 SSDPSRV - ok
15:22:02.0192 4896 ssm_bus (14622ae81c72b08691eedaabc1d4a129) C:\Windows\system32\DRIVERS\ssm_bus.sys
15:22:02.0221 4896 ssm_bus - ok
15:22:02.0283 4896 ssm_mdfl (43ee5e9fda61a5e0eac4c1de699e6e4d) C:\Windows\system32\DRIVERS\ssm_mdfl.sys
15:22:02.0285 4896 ssm_mdfl - ok
15:22:02.0349 4896 ssm_mdm (918cfd32c7feb174f356a0a6fad11f4b) C:\Windows\system32\DRIVERS\ssm_mdm.sys
15:22:02.0375 4896 ssm_mdm - ok
15:22:02.0558 4896 SstpSvc (6f1a32e7b7b30f004d9a20afadb14944) C:\Windows\system32\sstpsvc.dll
15:22:02.0564 4896 SstpSvc - ok
15:22:02.0647 4896 StarOpen (306521935042fc0a6988d528643619b3) C:\Windows\system32\drivers\StarOpen.sys
15:22:02.0650 4896 StarOpen - ok
15:22:02.0759 4896 stisvc (5de7d67e49b88f5f07f3e53c4b92a352) C:\Windows\System32\wiaservc.dll
15:22:02.0795 4896 stisvc - ok
15:22:02.0880 4896 swenum (7ba58ecf0c0a9a69d44b3dca62becf56) C:\Windows\system32\DRIVERS\swenum.sys
15:22:02.0882 4896 swenum - ok
15:22:02.0938 4896 swprv (f21fd248040681cca1fb6c9a03aaa93d) C:\Windows\System32\swprv.dll
15:22:02.0959 4896 swprv - ok
15:22:03.0041 4896 Symc8xx (192aa3ac01df071b541094f251deed10) C:\Windows\system32\drivers\symc8xx.sys
15:22:03.0043 4896 Symc8xx - ok
15:22:03.0069 4896 Sym_hi (8c8eb8c76736ebaf3b13b633b2e64125) C:\Windows\system32\drivers\sym_hi.sys
15:22:03.0071 4896 Sym_hi - ok
15:22:03.0107 4896 Sym_u3 (8072af52b5fd103bbba387a1e49f62cb) C:\Windows\system32\drivers\sym_u3.sys
15:22:03.0109 4896 Sym_u3 - ok
15:22:03.0159 4896 SynTP (5c3e900f41426a372de60675afc8aa07) C:\Windows\system32\DRIVERS\SynTP.sys
15:22:03.0202 4896 SynTP - ok
15:22:03.0411 4896 SysMain (9a51b04e9886aa4ee90093586b0ba88d) C:\Windows\system32\sysmain.dll
15:22:03.0472 4896 SysMain - ok
15:22:03.0646 4896 TabletInputService (2dca225eae15f42c0933e998ee0231c3) C:\Windows\System32\TabSvc.dll
15:22:03.0676 4896 TabletInputService - ok
15:22:03.0753 4896 TapiSrv (d7673e4b38ce21ee54c59eeeb65e2483) C:\Windows\System32\tapisrv.dll
15:22:03.0789 4896 TapiSrv - ok
15:22:03.0825 4896 TBS (cb05822cd9cc6c688168e113c603dbe7) C:\Windows\System32\tbssvc.dll
15:22:03.0830 4896 TBS - ok
15:22:04.0086 4896 Tcpip (27d470dabc77bc60d0a3b0e4deb6cb91) C:\Windows\system32\drivers\tcpip.sys
15:22:04.0157 4896 Tcpip - ok
15:22:04.0177 4896 Tcpip6 (27d470dabc77bc60d0a3b0e4deb6cb91) C:\Windows\system32\DRIVERS\tcpip.sys
15:22:04.0186 4896 Tcpip6 - ok
15:22:04.0280 4896 tcpipreg (608c345a255d82a6289c2d468eb41fd7) C:\Windows\system32\drivers\tcpipreg.sys
15:22:04.0283 4896 tcpipreg - ok
15:22:04.0354 4896 TDPIPE (5dcf5e267be67a1ae926f2df77fbcc56) C:\Windows\system32\drivers\tdpipe.sys
15:22:04.0356 4896 TDPIPE - ok
15:22:04.0371 4896 TDTCP (389c63e32b3cefed425b61ed92d3f021) C:\Windows\system32\drivers\tdtcp.sys
15:22:04.0373 4896 TDTCP - ok
15:22:04.0410 4896 tdx (76b06eb8a01fc8624d699e7045303e54) C:\Windows\system32\DRIVERS\tdx.sys
15:22:04.0413 4896 tdx - ok
15:22:04.0528 4896 TermDD (3cad38910468eab9a6479e2f01db43c7) C:\Windows\system32\DRIVERS\termdd.sys
15:22:04.0530 4896 TermDD - ok
15:22:04.0751 4896 TermService (bb95da09bef6e7a131bff3ba5032090d) C:\Windows\System32\termsrv.dll
15:22:04.0808 4896 TermService - ok
15:22:05.0117 4896 Themes (c7230fbee14437716701c15be02c27b8) C:\Windows\system32\shsvcs.dll
15:22:05.0124 4896 Themes - ok
15:22:05.0178 4896 THREADORDER (1076ffcffaae8385fd62dfcb25ac4708) C:\Windows\system32\mmcss.dll
15:22:05.0180 4896 THREADORDER - ok
15:22:05.0317 4896 TOSHIBA Bluetooth Service - ok
15:22:05.0490 4896 tosporte (2c15b4856f929ac7dd144044d8334b54) C:\Windows\system32\DRIVERS\tosporte.sys
15:22:05.0492 4896 tosporte - ok
15:22:05.0563 4896 Tosrfbd (cd6e9c27adc6b37b0b3df29cc83e15a7) C:\Windows\system32\DRIVERS\tosrfbd.sys
15:22:05.0598 4896 Tosrfbd - ok
15:22:05.0663 4896 tosrfbnp (181e217a7a326817d97946d045b3cb46) C:\Windows\system32\Drivers\tosrfbnp.sys
15:22:05.0666 4896 tosrfbnp - ok
15:22:05.0710 4896 Tosrfcom (4579b035ae3ac8044df72621af734894) C:\Windows\system32\Drivers\tosrfcom.sys
15:22:05.0712 4896 Tosrfcom - ok
15:22:05.0755 4896 Tosrfhid (d3f87c46c7c9e5db99fbd3d17121b891) C:\Windows\system32\DRIVERS\Tosrfhid.sys
15:22:05.0758 4896 Tosrfhid - ok
15:22:05.0811 4896 tosrfnds (c52fd27b9adf3a1f22cb90e6bcf9b0cb) C:\Windows\system32\DRIVERS\tosrfnds.sys
15:22:05.0813 4896 tosrfnds - ok
15:22:05.0850 4896 TosRfSnd (156d63f6898e4d95f2962f2b72862868) C:\Windows\system32\drivers\tosrfsnd.sys
15:22:05.0852 4896 TosRfSnd - ok
15:22:05.0901 4896 Tosrfusb (01c17a03427b6dad32515d90041f43e2) C:\Windows\system32\DRIVERS\tosrfusb.sys
15:22:05.0903 4896 Tosrfusb - ok
15:22:06.0040 4896 TrkWks (ec74e77d0eb004bd3a809b5f8fb8c2ce) C:\Windows\System32\trkwks.dll
15:22:06.0102 4896 TrkWks - ok
15:22:06.0161 4896 TrustedInstaller (97d9d6a04e3ad9b6c626b9931db78dba) C:\Windows\servicing\TrustedInstaller.exe
15:22:06.0164 4896 TrustedInstaller - ok
15:22:06.0210 4896 tssecsrv (dcf0f056a2e4f52287264f5ab29cf206) C:\Windows\system32\DRIVERS\tssecsrv.sys
15:22:06.0212 4896 tssecsrv - ok
15:22:06.0603 4896 TuneUp.UtilitiesSvc (743b11d9efcf8625dbcb7783dea3f94f) C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe
15:22:06.0815 4896 TuneUp.UtilitiesSvc - ok
15:22:06.0862 4896 TuneUpUtilitiesDrv (f2107c9d85ec0df116939ccce06ae697) C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesDriver32.sys
15:22:06.0864 4896 TuneUpUtilitiesDrv - ok
15:22:07.0048 4896 tunmp (caecc0120ac49e3d2f758b9169872d38) C:\Windows\system32\DRIVERS\tunmp.sys
15:22:07.0049 4896 tunmp - ok
15:22:07.0073 4896 tunnel (300db877ac094feab0be7688c3454a9c) C:\Windows\system32\DRIVERS\tunnel.sys
15:22:07.0075 4896 tunnel - ok
15:22:07.0147 4896 uagp35 (7d33c4db2ce363c8518d2dfcf533941f) C:\Windows\system32\drivers\uagp35.sys
15:22:07.0150 4896 uagp35 - ok
15:22:07.0231 4896 UBHelper (f763e070843ee2803de1395002b42938) C:\Windows\system32\drivers\UBHelper.sys
15:22:07.0233 4896 UBHelper - ok
15:22:07.0270 4896 udfs (d9728af68c4c7693cb100b8441cbdec6) C:\Windows\system32\DRIVERS\udfs.sys
15:22:07.0276 4896 udfs - ok
15:22:07.0364 4896 UI0Detect (ecef404f62863755951e09c802c94ad5) C:\Windows\system32\UI0Detect.exe
15:22:07.0369 4896 UI0Detect - ok
15:22:07.0431 4896 uliagpkx (b0acfdc9e4af279e9116c03e014b2b27) C:\Windows\system32\drivers\uliagpkx.sys
15:22:07.0434 4896 uliagpkx - ok
15:22:07.0517 4896 uliahci (9224bb254f591de4ca8d572a5f0d635c) C:\Windows\system32\drivers\uliahci.sys
15:22:07.0547 4896 uliahci - ok
15:22:07.0616 4896 UlSata (8514d0e5cd0534467c5fc61be94a569f) C:\Windows\system32\drivers\ulsata.sys
15:22:07.0619 4896 UlSata - ok
15:22:07.0672 4896 ulsata2 (38c3c6e62b157a6bc46594fada45c62b) C:\Windows\system32\drivers\ulsata2.sys
15:22:07.0677 4896 ulsata2 - ok
15:22:07.0700 4896 umbus (32cff9f809ae9aed85464492bf3e32d2) C:\Windows\system32\DRIVERS\umbus.sys
15:22:07.0702 4896 umbus - ok
15:22:07.0777 4896 upnphost (68308183f4ae0be7bf8ecd07cb297999) C:\Windows\System32\upnphost.dll
15:22:07.0794 4896 upnphost - ok
15:22:07.0927 4896 USBAAPL (eafe1e00739afe6c51487a050e772e17) C:\Windows\system32\Drivers\usbaapl.sys
15:22:07.0929 4896 USBAAPL - ok
15:22:07.0976 4896 usbccgp (caf811ae4c147ffcd5b51750c7f09142) C:\Windows\system32\DRIVERS\usbccgp.sys
15:22:07.0979 4896 usbccgp - ok
15:22:08.0053 4896 usbcir (e9476e6c486e76bc4898074768fb7131) C:\Windows\system32\drivers\usbcir.sys
15:22:08.0056 4896 usbcir - ok
15:22:08.0144 4896 usbehci (79e96c23a97ce7b8f14d310da2db0c9b) C:\Windows\system32\DRIVERS\usbehci.sys
15:22:08.0146 4896 usbehci - ok
15:22:08.0260 4896 usbhub (4673bbcb006af60e7abddbe7a130ba42) C:\Windows\system32\DRIVERS\usbhub.sys
15:22:08.0291 4896 usbhub - ok
15:22:08.0365 4896 usbohci (38dbc7dd6cc5a72011f187425384388b) C:\Windows\system32\drivers\usbohci.sys
15:22:08.0367 4896 usbohci - ok
15:22:08.0383 4896 usbprint (b51e52acf758be00ef3a58ea452fe360) C:\Windows\system32\drivers\usbprint.sys
15:22:08.0386 4896 usbprint - ok
15:22:08.0413 4896 USBSTOR (be3da31c191bc222d9ad503c5224f2ad) C:\Windows\system32\DRIVERS\USBSTOR.SYS
15:22:08.0416 4896 USBSTOR - ok
15:22:08.0438 4896 usbuhci (814d653efc4d48be3b04a307eceff56f) C:\Windows\system32\DRIVERS\usbuhci.sys
15:22:08.0441 4896 usbuhci - ok
15:22:08.0470 4896 usbvideo (e67998e8f14cb0627a769f6530bcb352) C:\Windows\system32\Drivers\usbvideo.sys
15:22:08.0481 4896 usbvideo - ok
15:22:08.0876 4896 UxSms (1509e705f3ac1d474c92454a5c2dd81f) C:\Windows\System32\uxsms.dll
15:22:08.0880 4896 UxSms - ok
15:22:08.0922 4896 UxTuneUp (7d16172c7c29426dcea16797de048493) C:\Windows\System32\uxtuneup.dll
15:22:08.0927 4896 UxTuneUp - ok
15:22:09.0213 4896 vds (cd88d1b7776dc17a119049742ec07eb4) C:\Windows\System32\vds.exe
15:22:09.0326 4896 vds - ok
15:22:09.0398 4896 vga (87b06e1f30b749a114f74622d013f8d4) C:\Windows\system32\DRIVERS\vgapnp.sys
15:22:09.0400 4896 vga - ok
15:22:09.0418 4896 VgaSave (2e93ac0a1d8c79d019db6c51f036636c) C:\Windows\System32\drivers\vga.sys
15:22:09.0420 4896 VgaSave - ok
15:22:09.0441 4896 viaagp (5d7159def58a800d5781ba3a879627bc) C:\Windows\system32\drivers\viaagp.sys
15:22:09.0444 4896 viaagp - ok
15:22:09.0468 4896 ViaC7 (c4f3a691b5bad343e6249bd8c2d45dee) C:\Windows\system32\drivers\viac7.sys
15:22:09.0470 4896 ViaC7 - ok
15:22:09.0483 4896 viaide (aadf5587a4063f52c2c3fed7887426fc) C:\Windows\system32\drivers\viaide.sys
15:22:09.0486 4896 viaide - ok
15:22:09.0671 4896 volmgr (69503668ac66c77c6cd7af86fbdf8c43) C:\Windows\system32\drivers\volmgr.sys
15:22:09.0673 4896 volmgr - ok
15:22:09.0796 4896 volmgrx (23e41b834759917bfd6b9a0d625d0c28) C:\Windows\system32\drivers\volmgrx.sys
15:22:09.0803 4896 volmgrx - ok
15:22:09.0884 4896 volsnap (147281c01fcb1df9252de2a10d5e7093) C:\Windows\system32\drivers\volsnap.sys
15:22:09.0889 4896 volsnap - ok
15:22:09.0995 4896 vsmraid (587253e09325e6bf226b299774b728a9) C:\Windows\system32\drivers\vsmraid.sys
15:22:10.0000 4896 vsmraid - ok
15:22:10.0663 4896 VSS (db3d19f850c6eb32bdcb9bc0836acddb) C:\Windows\system32\vssvc.exe
15:22:10.0844 4896 VSS - ok
15:22:11.0010 4896 W32Time (96ea68b9eb310a69c25ebb0282b2b9de) C:\Windows\system32\w32time.dll
15:22:11.0031 4896 W32Time - ok
15:22:11.0326 4896 WacomPen (48dfee8f1af7c8235d4e626f0c4fe031) C:\Windows\system32\drivers\wacompen.sys
15:22:11.0328 4896 WacomPen - ok
15:22:11.0403 4896 Wanarp (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
15:22:11.0405 4896 Wanarp - ok
15:22:11.0408 4896 Wanarpv6 (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
15:22:11.0410 4896 Wanarpv6 - ok
15:22:11.0501 4896 wcncsvc (a3cd60fd826381b49f03832590e069af) C:\Windows\System32\wcncsvc.dll
15:22:11.0541 4896 wcncsvc - ok
15:22:11.0567 4896 WcsPlugInService (11bcb7afcdd7aadacb5746f544d3a9c7) C:\Windows\System32\WcsPlugInService.dll
15:22:11.0572 4896 WcsPlugInService - ok
15:22:11.0906 4896 Wd (78fe9542363f297b18c027b2d7e7c07f) C:\Windows\system32\drivers\wd.sys
15:22:11.0909 4896 Wd - ok
15:22:11.0984 4896 Wdf01000 (b6f0a7ad6d4bd325fbcd8bac96cd8d96) C:\Windows\system32\drivers\Wdf01000.sys
15:22:12.0021 4896 Wdf01000 - ok
15:22:12.0081 4896 WdiServiceHost (abfc76b48bb6c96e3338d8943c5d93b5) C:\Windows\system32\wdi.dll
15:22:12.0122 4896 WdiServiceHost - ok
15:22:12.0126 4896 WdiSystemHost (abfc76b48bb6c96e3338d8943c5d93b5) C:\Windows\system32\wdi.dll
15:22:12.0129 4896 WdiSystemHost - ok
15:22:12.0195 4896 WebClient (04c37d8107320312fbae09926103d5e2) C:\Windows\System32\webclnt.dll
15:22:12.0216 4896 WebClient - ok
15:22:12.0295 4896 Wecsvc (ae3736e7e8892241c23e4ebbb7453b60) C:\Windows\system32\wecsvc.dll
15:22:12.0452 4896 Wecsvc - ok
15:22:12.0492 4896 wercplsupport (670ff720071ed741206d69bd995ea453) C:\Windows\System32\wercplsupport.dll
15:22:12.0497 4896 wercplsupport - ok
15:22:12.0655 4896 WerSvc (32b88481d3b326da6deb07b1d03481e7) C:\Windows\System32\WerSvc.dll
15:22:12.0680 4896 WerSvc - ok
15:22:12.0970 4896 WinDefend (4575aa12561c5648483403541d0d7f2b) C:\Program Files\Windows Defender\mpsvc.dll
15:22:13.0039 4896 WinDefend - ok
15:22:13.0069 4896 WinHttpAutoProxySvc - ok
15:22:13.0225 4896 Winmgmt (6b2a1d0e80110e3d04e6863c6e62fd8a) C:\Windows\system32\wbem\WMIsvc.dll
15:22:13.0259 4896 Winmgmt - ok
15:22:13.0449 4896 WinRM (7cfe68bdc065e55aa5e8421607037511) C:\Windows\system32\WsmSvc.dll
15:22:13.0624 4896 WinRM - ok
15:22:14.0155 4896 Wlansvc (c008405e4feeb069e30da1d823910234) C:\Windows\System32\wlansvc.dll
15:22:14.0193 4896 Wlansvc - ok
15:22:14.0331 4896 WmiAcpi (2e7255d172df0b8283cdfb7b433b864e) C:\Windows\system32\DRIVERS\wmiacpi.sys
15:22:14.0333 4896 WmiAcpi - ok
15:22:14.0478 4896 wmiApSrv (43be3875207dcb62a85c8c49970b66cc) C:\Windows\system32\wbem\WmiApSrv.exe
15:22:14.0492 4896 wmiApSrv - ok
15:22:14.0788 4896 WMPNetworkSvc (3978704576a121a9204f8cc49a301a9b) C:\Program Files\Windows Media Player\wmpnetwk.exe
15:22:14.0835 4896 WMPNetworkSvc - ok
15:22:14.0973 4896 WPCSvc (cfc5a04558f5070cee3e3a7809f3ff52) C:\Windows\System32\wpcsvc.dll
15:22:14.0991 4896 WPCSvc - ok
15:22:15.0152 4896 WPDBusEnum (801fbdb89d472b3c467eb112a0fc9246) C:\Windows\system32\wpdbusenum.dll
15:22:15.0157 4896 WPDBusEnum - ok
15:22:15.0272 4896 WpdUsb (de9d36f91a4df3d911626643debf11ea) C:\Windows\system32\DRIVERS\wpdusb.sys
15:22:15.0274 4896 WpdUsb - ok
15:22:15.0500 4896 WPFFontCache_v0400 (dcf3e3edf5109ee8bc02fe6e1f045795) C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
15:22:15.0525 4896 WPFFontCache_v0400 - ok
15:22:15.0612 4896 ws2ifsl (e3a3cb253c0ec2494d4a61f5e43a389c) C:\Windows\system32\drivers\ws2ifsl.sys
15:22:15.0614 4896 ws2ifsl - ok
15:22:15.0646 4896 wscsvc (1ca6c40261ddc0425987980d0cd2aaab) C:\Windows\system32\wscsvc.dll
15:22:15.0651 4896 wscsvc - ok
15:22:15.0693 4896 WSearch - ok
15:22:16.0117 4896 wuauserv (fc3ec24fce372c89423e015a2ac1a31e) C:\Windows\system32\wuaueng.dll
15:22:16.0186 4896 wuauserv - ok
15:22:17.0252 4896 WUDFRd (ac13cb789d93412106b0fb6c7eb2bcb6) C:\Windows\system32\DRIVERS\WUDFRd.sys
15:22:17.0255 4896 WUDFRd - ok
15:22:17.0343 4896 wudfsvc (575a4190d989f64732119e4114045a4f) C:\Windows\System32\WUDFSvc.dll
15:22:17.0348 4896 wudfsvc - ok
15:22:17.0463 4896 XAudio (22a08b9faecd6a306868f59b7f03f188) C:\Windows\system32\DRIVERS\XAudio32.sys
15:22:17.0464 4896 XAudio - ok
15:22:17.0497 4896 XinweiIad (9061abdddda0cb2502a92d89f10f7ca1) C:\Windows\system32\DRIVERS\netnnusb.sys
15:22:17.0499 4896 XinweiIad - ok
15:22:17.0577 4896 MBR (0x1B8) (5c616939100b85e558da92b899a0fc36) \Device\Harddisk0\DR0
15:22:18.0466 4896 \Device\Harddisk0\DR0 - ok
15:22:18.0473 4896 MBR (0x1B8) (20c15ef2111b8472bbfe5e65b7c949e6) \Device\Harddisk1\DR2
15:22:19.0328 4896 \Device\Harddisk1\DR2 - ok
15:22:19.0338 4896 Boot (0x1200) (adcd5397dd015f9ce0abbe8da1ce7e45) \Device\Harddisk0\DR0\Partition0
15:22:19.0340 4896 \Device\Harddisk0\DR0\Partition0 - ok
15:22:19.0399 4896 Boot (0x1200) (77de563fefda9a44f071634acef2b3e9) \Device\Harddisk0\DR0\Partition1
15:22:19.0401 4896 \Device\Harddisk0\DR0\Partition1 - ok
15:22:19.0419 4896 Boot (0x1200) (0aecc31dcaf63ae45c1de203b07260fc) \Device\Harddisk0\DR0\Partition2
15:22:19.0421 4896 \Device\Harddisk0\DR0\Partition2 - ok
15:22:19.0423 4896 Boot (0x1200) (9ec3c6a85384dd5f1bc06661d9ef083e) \Device\Harddisk1\DR2\Partition0
15:22:19.0425 4896 \Device\Harddisk1\DR2\Partition0 - ok
15:22:19.0425 4896 ============================================================
15:22:19.0425 4896 Scan finished
15:22:19.0425 4896 ============================================================
15:22:19.0428 4172 Detected object count: 1
15:22:19.0428 4172 Actual detected object count: 1
15:23:04.0312 4172 C:\Windows\system32\Drivers\sptd.sys - copied to quarantine
15:23:04.0312 4172 sptd ( LockedFile.Multi.Generic ) - User select action: Quarantine
15:50:55.0461 1748 ============================================================
15:50:55.0461 1748 Scan started
15:50:55.0461 1748 Mode: Manual; SigCheck; TDLFS;
15:50:55.0461 1748 ============================================================
15:50:59.0825 1748 ACPI (82b296ae1892fe3dbee00c9cf92f8ac7) C:\Windows\system32\drivers\acpi.sys
15:51:01.0005 1748 ACPI - ok
15:51:01.0135 1748 AdobeActiveFileMonitor6.0 (e8fe4fce23d2809bd88bcc1d0f8408ce) C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe
15:51:01.0165 1748 AdobeActiveFileMonitor6.0 - ok
15:51:01.0285 1748 adp94xx (04f0fcac69c7c71a3ac4eb97fafc8303) C:\Windows\system32\drivers\adp94xx.sys
15:51:01.0335 1748 adp94xx - ok
15:51:01.0405 1748 adpahci (60505e0041f7751bdbb80f88bf45c2ce) C:\Windows\system32\drivers\adpahci.sys
15:51:01.0445 1748 adpahci - ok
15:51:01.0475 1748 adpu160m (8a42779b02aec986eab64ecfc98f8bd7) C:\Windows\system32\drivers\adpu160m.sys
15:51:01.0505 1748 adpu160m - ok
15:51:01.0535 1748 adpu320 (241c9e37f8ce45ef51c3de27515ca4e5) C:\Windows\system32\drivers\adpu320.sys
15:51: