Google redirect virus or something simillar? Need assistance

Virusfighter7

New Member
Thread author
Dec 3, 2013
13
Here are the logs you requested. First, the 'Extras" from notepad.

[attachment=6450]

Secondly, the "OTL" from notepad.

[attachment=6449]
 

Attachments

  • Otl.txt
    40.4 KB · Views: 142
  • extras.txt
    20 KB · Views: 135

TwinHeadedEagle

Level 41
Verified
Mar 8, 2013
22,627
Hi,


<ol><li>Download AdwCleaner from the below link.
<><a href="http://general-changelog-team.fr/fr/downloads/finish/20-outils-de-xplode/2-adwcleaner" target="_blank">ADWCLEANER DOWNLAOD LINK</a></> (This link will automatically download Security Check on your computer)</li>

<li>Close all open programs and internet browsers.</li>
<li>Double click on <>adwcleaner.exe</> to run the tool.</li>
<li>Click on <>Delete</>,then confirm each time with <>Ok</>.</li>
<li>Your computer will be rebooted automatically. A text file will open after the restart.</li>
<li>Please post the contents of that logfile with your next reply.</li>
<li>You can find the logfile at <>C:\AdwCleaner[S1].txt</> as well.</li>
</ol>



Please download Farbar Recovery Scan Tool and save it to your desktop.

Note: You need to run the version compatibale with your system. If you are not sure which version applies to your system download both of them and try to run them.
Only one of them will run on your system, that will be the right version.


  • Double-click to run it. When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will make a log (FRST.txt) in the same directory the tool is run. Please attach it to your reply.
  • The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.



Please download aswMBR and save it to your desktop.

Double click aswMBR.exe to start the tool.
  • Select Yes if prompted to download the Avast database.
  • Click Scan
  • Upon completion of the scan ( Scan finished successfully ) click Save log and save it to your desktop, and post that log in your next reply for review.
    Note: do NOT attempt any Fix yet.
 
Last edited by a moderator:

Virusfighter7

New Member
Thread author
Dec 3, 2013
13
ADWcleaner log

[attachment=6451]

Farbar FRST log

[attachment=6452]

Farbar "addition" log

[attachment=6453]

aswMBR log

[attachment=6454]



There it, that would be all the logs you requested. I followed all of your instructions to the letter.
 

Attachments

  • adwcleaner.txt
    1.8 KB · Views: 129
  • FRST.txt
    35.1 KB · Views: 86
  • Addition.txt
    16.5 KB · Views: 117
  • aswmbr.txt
    2 KB · Views: 90

TwinHeadedEagle

Level 41
Verified
Mar 8, 2013
22,627
Who told you to run ComboFix? It is a very powerfull tool, that can mess you PC. Do not run it yourself...

Attach me Combofix report, it should be located at your system partition (D:\ i think)
 

Virusfighter7

New Member
Thread author
Dec 3, 2013
13
Actually, I did not run combofix, I aborted it because it required to me shut down Avira, which I did not want to do. I didn't run combofix, no worries.

That's as far as I remember, that is. I remember aborting it. Do the logs say that I ran it perhaps?
 

Virusfighter7

New Member
Thread author
Dec 3, 2013
13
If you are sure about this, I will. Though you did say it can mess up my computer. Are you sure I should run combofix? I just wanna double check before I potentially do damage to my system.
 

Virusfighter7

New Member
Thread author
Dec 3, 2013
13
Alright, I ran combofix after I removed Avira (I will reinstall Avira for additional security again though) and here's the report.




ComboFix 13-12-04.02 - Stipan 04.12.2013 15:07:30.1.4 - x86
Microsoft Windows XP Professional 5.1.2600.3.1250.385.1033.18.3327.2586 [GMT 1:00]
Running from: d:\documents and settings\Stipan\My Documents\Downloads\ComboFix.exe
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
d:\documents and settings\All Users.WINDOWS.0\Application Data\TEMP
d:\documents and settings\All Users.WINDOWS.0\Application Data\TEMP\RAIDTest
d:\windows.0\system32\28_83260.dll
.
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_DEFAULTTABSEARCH
.
.
((((((((((((((((((((((((( Files Created from 2013-11-04 to 2013-12-04 )))))))))))))))))))))))))))))))
.
.
2013-12-04 10:54 . 2013-12-04 10:54 -------- d-----w- D:\FRST
2013-12-04 10:41 . 2013-12-04 10:50 -------- d-----w- D:\AdwCleaner
2013-12-02 09:54 . 2013-12-02 09:54 -------- d--h--w- d:\documents and settings\Default User
2013-12-02 09:54 . 2013-12-02 09:54 -------- d-----w- d:\documents and settings\All Users
2013-12-01 17:54 . 2013-12-01 17:56 -------- d-----w- d:\windows.0\system32\MRT
2013-12-01 13:39 . 2013-12-01 13:39 -------- d-----w- c:\program files\ESET
2013-12-01 13:20 . 2013-12-01 13:20 12872 ----a-w- d:\windows.0\system32\bootdelete.exe
2013-12-01 13:15 . 2013-12-01 13:15 -------- d-----w- c:\program files\HitmanPro
2013-12-01 10:55 . 2013-12-01 10:55 -------- d-----w- d:\documents and settings\Stipan\Application Data\Malwarebytes
2013-11-18 17:50 . 2013-12-02 17:50 -------- d-----w- d:\windows.0\system32\NtmsData
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-12-01 19:05 . 2013-01-20 22:49 71048 ----a-w- d:\windows.0\system32\FlashPlayerCPLApp.cpl
2013-12-01 19:05 . 2013-01-20 22:49 692616 ----a-w- d:\windows.0\system32\FlashPlayerApp.exe
2013-10-12 15:56 . 2008-04-14 03:42 278528 ----a-w- d:\windows.0\system32\oakley.dll
2013-10-09 13:12 . 2008-04-14 03:41 287744 ----a-w- d:\windows.0\system32\gdi32.dll
2013-10-07 10:59 . 2008-04-14 03:41 603136 ----a-w- d:\windows.0\system32\crypt32.dll
2013-10-05 01:14 . 2013-01-21 11:04 7168 ----a-w- d:\windows.0\system32\xpsp4res.dll
.
.
------- Sigcheck -------
Note: Unsigned files aren't necessarily malware.
.
[-] 2008-04-28 . 9F42478360E9B053A6703DEF39B4CE33 . 1614848 . . [5.1.2600.5512] . . d:\windows.0\system32\sfcfiles.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{81017EA9-9AA8-4A6A-9734-7AF40E7D593F}"= "c:\progra~1\Yahoo!\Companion\Installs\cpn0\yt.dll" [2013-08-07 1561880]
.
[HKEY_CLASSES_ROOT\clsid\{81017ea9-9aa8-4a6a-9734-7af40e7d593f}]
[HKEY_CLASSES_ROOT\yt.YTNavAssistPlugin.1]
[HKEY_CLASSES_ROOT\TypeLib\{003028C2-EA1C-4676-A316-B5CB50917002}]
[HKEY_CLASSES_ROOT\yt.YTNavAssistPlugin]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"="d:\program files\uTorrent\uTorrent.exe" [2013-01-21 969104]
"EADM"="d:\program files\Origin\Origin.exe" [2013-11-22 3551576]
"Advanced SystemCare 6"="d:\program files\IObit\Advanced SystemCare 6\ASCTray.exe" [2013-04-18 491840]
"GarenaPlus"="d:\program files\Garena Plus\GarenaMessenger.exe" [2013-09-27 9866032]
"Messenger (Yahoo!)"="c:\progra~1\Yahoo!\Messenger\YahooMessenger.exe" [2012-05-25 6595928]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE" [2011-12-05 20065384]
"DivXMediaServer"="d:\program files\DivX\DivX Media Server\DivXMediaServer.exe" [2013-05-20 450560]
"Nikon Transfer Monitor"="d:\program files\Common Files\Nikon\Monitor\NkMonitor.exe" [2009-09-15 479232]
"Adobe ARM"="d:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576]
"Nvtmru"="d:\program files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-05-16 1012000]
"NvCplDaemon"="d:\windows.0\system32\NvCpl.dll" [2013-05-12 15677728]
"NvMediaCenter"="d:\windows.0\system32\NvMcTray.dll" [2013-05-12 223008]
"nwiz"="d:\program files\NVIDIA Corporation\nview\nwiz.exe" [2013-05-12 2562848]
"DivXUpdate"="d:\program files\DivX\DivX Update\DivXUpdate.exe" [2013-02-13 1263952]
"SunJavaUpdateSched"="d:\program files\Common Files\Java\Java Update\jusched.exe" [2013-03-12 253816]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="d:\windows.0\system32\CTFMON.EXE" [2008-04-14 15360]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"nltide_3"="advpack.dll" [2009-03-08 128512]
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HitmanPro37Crusader]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HitmanPro37CrusaderBoot]
@=""
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"d:\\Program Files\\uTorrent\\uTorrent.exe"=
"d:\\Documents and Settings\\All Users.WINDOWS.0\\Application Data\\Battle.net\\Agent\\Agent.1544\\Agent.exe"=
"d:\\Documents and Settings\\All Users.WINDOWS.0\\Application Data\\Battle.net\\Agent\\Agent.1737\\Agent.exe"=
"c:\\Games\\Mass Effect 2\\Binaries\\MassEffect2.exe"=
"c:\\Games\\Mass Effect 2\\MassEffect2Launcher.exe"=
"d:\\Program Files\\NVIDIA Corporation\\NVIDIA Update Core\\daemonu.exe"=
"d:\\Program Files\\Garena Plus\\Room\\garena_room.exe"=
"d:\\Program Files\\Garena Plus\\ggdllhost.exe"=
"d:\\Program Files\\Garena Plus\\bbtalk\\BBTalk.exe"=
"c:\\Games\\Atari\\Neverwinter Nights 2\\nwn2main.exe"=
"c:\\Games\\Atari\\Neverwinter Nights 2\\nwn2main_amdxp.exe"=
"c:\\Games\\Atari\\Neverwinter Nights 2\\nwupdate.exe"=
"c:\\Games\\Atari\\Neverwinter Nights 2\\nwn2server.exe"=
"c:\\program files\\Yahoo!\\Messenger\\YahooMessenger.exe"=
"d:\\Program Files\\Steam\\Steam.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"5985:TCP"= 5985:TCP:*:Disabled:Windows Remote Management
.
R0 SmartDefragDriver;SmartDefragDriver;d:\windows.0\system32\drivers\SmartDefragDriver.sys [2.8.2013 9:43 14776]
R2 AdvancedSystemCareService6;Advanced SystemCare Service 6;d:\program files\IObit\Advanced SystemCare 6\ASCService.exe [17.5.2013 17:50 574272]
S3 Ambfilt;Ambfilt;d:\windows.0\system32\drivers\Ambfilt.sys [20.1.2013 21:11 1691480]
S3 cleanhlp;cleanhlp;c:\eek\Run\cleanhlp32.sys [1.12.2013 15:41 50200]
S3 esgiguard;esgiguard;\??\c:\program files\Enigma Software Group\SpyHunter\esgiguard.sys --> c:\program files\Enigma Software Group\SpyHunter\esgiguard.sys [?]
S3 GGSAFERDriver;GGSAFER Driver;\??\d:\program files\Garena Plus\Room\safedrv.sys --> d:\program files\Garena Plus\Room\safedrv.sys [?]
S3 RegFilter;RegFilter;\??\d:\program files\IObit\IObit Malware Fighter\drivers\wxp_x86\regfilter.sys --> d:\program files\IObit\IObit Malware Fighter\drivers\wxp_x86\regfilter.sys [?]
S3 UrlFilter;UrlFilter;\??\d:\program files\IObit\IObit Malware Fighter\drivers\wxp_x86\UrlFilter.sys --> d:\program files\IObit\IObit Malware Fighter\drivers\wxp_x86\UrlFilter.sys [?]
S4 FileMonitor;FileMonitor;\??\d:\program files\IObit\IObit Malware Fighter\Drivers\wxp_x86\FileMonitor.sys --> d:\program files\IObit\IObit Malware Fighter\Drivers\wxp_x86\FileMonitor.sys [?]
.
Contents of the 'Scheduled Tasks' folder
.
2013-12-04 d:\windows.0\Tasks\Adobe Flash Player Updater.job
- d:\windows.0\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-01-20 19:05]
.
2013-12-04 d:\windows.0\Tasks\ASC6_PerformanceMonitor.job
- d:\program files\IObit\Advanced SystemCare 6\Monitor.exe [2013-05-17 17:02]
.
2013-12-04 d:\windows.0\Tasks\GoogleUpdateTaskMachineCore.job
- d:\program files\Google\Update\GoogleUpdate.exe [2013-01-20 18:27]
.
2013-12-04 d:\windows.0\Tasks\GoogleUpdateTaskMachineUA.job
- d:\program files\Google\Update\GoogleUpdate.exe [2013-01-20 18:27]
.
2013-12-04 d:\windows.0\Tasks\JetCleanLoginCheckUpdate.job
- d:\program files\BlueSprig\JetClean\AutoUpdate.exe [2013-05-17 13:05]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.com/
TCP: DhcpNameServer = 86.122.255.99 8.8.8.8
FF - ProfilePath - d:\documents and settings\Stipan\Application Data\Mozilla\Firefox\Profiles\erdra7p6.default\
FF - prefs.js: browser.search.selectedEngine - Yahoo
FF - prefs.js: browser.startup.homepage - hxxps://www.google.hr/
FF - prefs.js: network.proxy.type - 0
.
- - - - ORPHANS REMOVED - - - -
.
SafeBoot-50724399.sys
SafeBoot-CleanHlp
SafeBoot-CleanHlp.sys
SafeBoot-IMFservice
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2013-12-04 15:13
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@d:\\WINDOWS.0\\system32\\Macromed\\Flash\\FlashUtil32_11_9_900_117_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="d:\\WINDOWS.0\\system32\\Macromed\\Flash\\FlashUtil32_11_9_900_117_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'explorer.exe'(2668)
d:\windows.0\system32\WININET.dll
d:\windows.0\system32\ieframe.dll
d:\windows.0\system32\webcheck.dll
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Java\jre7\bin\jqs.exe
d:\windows.0\system32\nvsvc32.exe
d:\program files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
d:\windows.0\RTHDCPL.EXE
d:\windows.0\system32\RUNDLL32.EXE
d:\program files\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe
d:\windows.0\system32\wscntfy.exe
.
**************************************************************************
.
Completion time: 2013-12-04 15:14:58 - machine was rebooted
ComboFix-quarantined-files.txt 2013-12-04 14:14
.
Pre-Run: 3.277.803.520 bytes free
Post-Run: 3.514.597.376 bytes free
.
WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(2)\WINDOWS.0
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(2)\WINDOWS.0="Microsoft Windows XP Professional" /noexecute=optin /fastdetect /usepmtimer
multi(0)disk(0)rdisk(0)partition(2)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect /usepmtimer
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
.
- - End Of File - - F362C703FF04708AE329930BDD774C0B
8F558EB6672622401DA993E1E865C861
 

Virusfighter7

New Member
Thread author
Dec 3, 2013
13
Well, it's still the same, really :( I can barely surf the internet, some pages won't load, others will. It seems random. Sometimes google will load, sometimes it won't. Youtube will sometimes play videos, and sometimes not. It's all so random. One moment I can surf the web freely, another I can't load a single page save for some exceptions.

It's weird. I'm not sure if it's the redirect virus because when google loads I can search whatever I want. It used to redirect me straight from google to some mozilla update page, but not anymore. Now it just won't load.
 

TwinHeadedEagle

Level 41
Verified
Mar 8, 2013
22,627
Hi,


Download TDSSKiller and save it to your desktop

Execute TDSSKiller.exe by doubleclicking on it.
Confirm "End user Licence Agreement" and "KSN Statement" dialog box by clicking on Accept button.
  • Press Start Scan
  • If Suspicious object is detected, the default action will be Skip, click on Continue.
  • If Malicious objects are found, select Cure.

Once complete, a log will be produced at the root drive which is typically C:\ ,for example, C:\TDSSKiller.<version_date_time>log.txt


Please post the contents of that log in your next reply.



Please download DDS and save it to your Desktop from here:
http://www.bleepingcomputer.com/download/dds/dl/104/

Double click to run the tool, click the Start button.

* When done, DDS will open two (2) logs:
1. DDS.txt
2. Attach.txt

Save both reports to your desktop. DDS.txt and Attach.txt attach back to topic.
 

Virusfighter7

New Member
Thread author
Dec 3, 2013
13
Here are the 3 reports you requested.



TDSSkiller



20:34:06.0765 0x061c TDSS rootkit removing tool 3.0.0.19 Nov 18 2013 09:27:50
20:34:11.0625 0x061c ============================================================
20:34:11.0625 0x061c Current date / time: 2013/12/04 20:34:11.0625
20:34:11.0625 0x061c SystemInfo:
20:34:11.0625 0x061c
20:34:11.0625 0x061c OS Version: 5.1.2600 ServicePack: 3.0
20:34:11.0625 0x061c Product type: Workstation
20:34:11.0625 0x061c ComputerName: JA
20:34:11.0625 0x061c UserName: Stipan
20:34:11.0625 0x061c Windows directory: D:\WINDOWS.0
20:34:11.0625 0x061c System windows directory: D:\WINDOWS.0
20:34:11.0625 0x061c Processor architecture: Intel x86
20:34:11.0625 0x061c Number of processors: 4
20:34:11.0625 0x061c Page size: 0x1000
20:34:11.0625 0x061c Boot type: Normal boot
20:34:11.0625 0x061c ============================================================
20:34:13.0625 0x061c KLMD registered as D:\WINDOWS.0\system32\drivers\39718030.sys
20:34:13.0796 0x061c System UUID: {599D3F4E-321C-9ECE-D46B-487832F1F59B}
20:34:15.0031 0x061c Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
20:34:15.0046 0x061c ============================================================
20:34:15.0046 0x061c \Device\Harddisk0\DR0:
20:34:15.0062 0x061c MBR partitions:
20:34:15.0062 0x061c \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x22D1814B
20:34:15.0078 0x061c \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x22D181C9, BlocksNum 0x2711637
20:34:15.0078 0x061c ============================================================
20:34:15.0125 0x061c C: <-> \Device\Harddisk0\DR0\Partition1
20:34:15.0156 0x061c D: <-> \Device\Harddisk0\DR0\Partition2
20:34:15.0156 0x061c ============================================================
20:34:15.0156 0x061c Initialize success
20:34:15.0156 0x061c ============================================================
20:34:22.0437 0x0ef4 ============================================================
20:34:22.0437 0x0ef4 Scan started
20:34:22.0437 0x0ef4 Mode: Manual; TDLFS;
20:34:22.0437 0x0ef4 ============================================================
20:34:22.0437 0x0ef4 KSN ping started
20:34:45.0843 0x0ef4 KSN ping finished: true
20:34:46.0250 0x0ef4 ================ Scan system memory ========================
20:34:46.0250 0x0ef4 System memory - ok
20:34:46.0250 0x0ef4 ================ Scan services =============================
20:34:46.0312 0x0ef4 Abiosdsk - ok
20:34:46.0312 0x0ef4 abp480n5 - ok
20:34:46.0343 0x0ef4 [ 4E5451DD0AEC8504D7F8030DD2D4C416, D1BF62B1D3D3D347DA46C0FE002C117FABC0ABCCABD1C56D5A6D9F1682C61233 ] ACEDRV07 D:\WINDOWS.0\system32\drivers\ACEDRV07.sys
20:34:46.0343 0x0ef4 ACEDRV07 - ok
20:34:46.0421 0x0ef4 [ 8FD99680A539792A30E97944FDAECF17, 594F8E0C3695400B0C09A797AF6BDFAC6F750ECD67D0EE803914C572B1DCC43C ] ACPI D:\WINDOWS.0\system32\DRIVERS\ACPI.sys
20:34:46.0421 0x0ef4 ACPI - ok
20:34:46.0437 0x0ef4 [ 9859C0F6936E723E4892D7141B1327D5, 5E8F6A2FC4DF2E5E92A1D66ECC2810E08B42B64E9CD0DF4AD3F78EA8558B90AF ] ACPIEC D:\WINDOWS.0\system32\drivers\ACPIEC.sys
20:34:46.0468 0x0ef4 ACPIEC - ok
20:34:46.0515 0x0ef4 [ 438F31336B3DC248ABC632F1C8F34A24, 94C1218E7EC2EC6D4870A6FDC118097D7D3A359DA073DCD3A9770F399F830991 ] AdobeFlashPlayerUpdateSvc D:\WINDOWS.0\system32\Macromed\Flash\FlashPlayerUpdateService.exe
20:34:46.0515 0x0ef4 AdobeFlashPlayerUpdateSvc - ok
20:34:46.0531 0x0ef4 adpu160m - ok
20:34:46.0593 0x0ef4 [ 9243229DFCCC99B5441750EBA49F1B14, 1292D9A049F07E74F3E60068D839E9166BBC090A63972FBE5432D4818AA9DF47 ] AdvancedSystemCareService6 D:\Program Files\IObit\Advanced SystemCare 6\ASCService.exe
20:34:46.0609 0x0ef4 AdvancedSystemCareService6 - ok
20:34:46.0640 0x0ef4 [ 8BED39E3C35D6A489438B8141717A557, 1B5796E56B0927360CE0759641B1151828BC0A9E45620D2B2D880491F5CE33D0 ] aec D:\WINDOWS.0\system32\drivers\aec.sys
20:34:46.0671 0x0ef4 aec - ok
20:34:46.0703 0x0ef4 [ 1E44BC1E83D8FD2305F8D452DB109CF9, CF5EC07E0B589FA2A4701C6CFD69E893FC3ABF274AD57AE3C13FFE49063B02C8 ] AFD D:\WINDOWS.0\System32\drivers\afd.sys
20:34:46.0703 0x0ef4 AFD - ok
20:34:46.0703 0x0ef4 Aha154x - ok
20:34:46.0703 0x0ef4 aic78u2 - ok
20:34:46.0718 0x0ef4 aic78xx - ok
20:34:46.0734 0x0ef4 [ A9A3DAA780CA6C9671A19D52456705B4, 67C959144B57AE0BBF1D82DBED197F32CDB06FECD883A80C441A0202FE83FAB4 ] Alerter D:\WINDOWS.0\system32\alrsvc.dll
20:34:46.0750 0x0ef4 Alerter - ok
20:34:46.0765 0x0ef4 [ 8C515081584A38AA007909CD02020B3D, A5E13CA10F702928E0DE84C74D0EA8ACCB117FD76FBABC55220C75C4FFD596DC ] ALG D:\WINDOWS.0\System32\alg.exe
20:34:46.0765 0x0ef4 ALG - ok
20:34:46.0765 0x0ef4 AliIde - ok
20:34:46.0875 0x0ef4 [ 267FC636801EDC5AB28E14036349E3BE, CFEF5DF5F9BE820283376BB86DB3CF6609C02D316A742E17459A2BFA42E724E0 ] Ambfilt D:\WINDOWS.0\system32\drivers\Ambfilt.sys
20:34:46.0921 0x0ef4 Ambfilt - ok
20:34:46.0937 0x0ef4 [ 033448D435E65C4BD72E70521FD05C76, A5462C22D5461F1BA06E81CD7E1ECE5409092DE53A8E4D3E78D089B65CB474D4 ] AmdPPM D:\WINDOWS.0\system32\DRIVERS\AmdPPM.sys
20:34:46.0937 0x0ef4 AmdPPM - ok
20:34:46.0953 0x0ef4 amsint - ok
20:34:47.0156 0x0ef4 [ 0D1E15010057B8426583A99CB179A6C4, 645C7D27E27AAC4124F7F907374B6A50D07D349B95AA869D7091372BD3AF653B ] AntiVirSchedulerService C:\Program Files\Avira\AntiVir Desktop\sched.exe
20:34:47.0171 0x0ef4 AntiVirSchedulerService - ok
20:34:47.0218 0x0ef4 [ FDE9C7030FB1E9E2715E113EE6A10F90, 541F278D743C34C6D9940FC1250B90674EB88EC429D481012F27817DAB1B557A ] AntiVirService C:\Program Files\Avira\AntiVir Desktop\avguard.exe
20:34:47.0218 0x0ef4 AntiVirService - ok
20:34:47.0296 0x0ef4 [ BA4772044917FDF80ADEAB2E9C3F863B, 7E5AFFAFE68531DB7EA73CE1B951A5EB8014CDFB1F25DEE3FF3CE90C3FCAD48E ] AntiVirWebService C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE
20:34:47.0328 0x0ef4 AntiVirWebService - ok
20:34:47.0406 0x0ef4 [ BEF294FFE5F40BE768BDCBE1837DFABE, A5EBC3289758E2E152BA1571BB288FA33D7E2D23FE715CB51D39992369FDFC19 ] APNMCP C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe
20:34:47.0406 0x0ef4 APNMCP - ok
20:34:47.0453 0x0ef4 [ D8849F77C0B66226335A59D26CB4EDC6, 4990031453204C57E36E850252A39B05D6ECDAB9E71A8136FB4900F17E59C9CA ] AppMgmt D:\WINDOWS.0\System32\appmgmts.dll
20:34:47.0468 0x0ef4 AppMgmt - ok
20:34:47.0500 0x0ef4 [ B5B8A80875C1DEDEDA8B02765642C32F, AD0C71D73B1B8225351FBF4FFB43001A32B4DAE69504C59970CD2428BB33D4EF ] Arp1394 D:\WINDOWS.0\system32\DRIVERS\arp1394.sys
20:34:47.0515 0x0ef4 Arp1394 - ok
20:34:47.0515 0x0ef4 asc - ok
20:34:47.0515 0x0ef4 asc3350p - ok
20:34:47.0531 0x0ef4 asc3550 - ok
20:34:47.0593 0x0ef4 [ 776ACEFA0CA9DF0FAA51A5FB2F435705, 72DF7ED6B085BC468994F5B3189506FD726A9A17A9C42ACA1E420D787691361D ] aspnet_state D:\WINDOWS.0\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
20:34:47.0593 0x0ef4 aspnet_state - ok
20:34:47.0593 0x0ef4 [ B153AFFAC761E7F5FCFA822B9C4E97BC, 7E60F572A6B3C6219E3C86225AA37243AFFD74337DB7F108B04778042E5CC959 ] AsyncMac D:\WINDOWS.0\system32\DRIVERS\asyncmac.sys
20:34:47.0609 0x0ef4 AsyncMac - ok
20:34:47.0640 0x0ef4 [ 9F3A2F5AA6875C72BF062C712CFA2674, B4DF1D2C56A593C6B54DE57395E3B51D288F547842893B32B0F59228A0CF70B9 ] atapi D:\WINDOWS.0\system32\DRIVERS\atapi.sys
20:34:47.0640 0x0ef4 atapi - ok
20:34:47.0640 0x0ef4 Atdisk - ok
20:34:47.0656 0x0ef4 [ 9916C1225104BA14794209CFA8012159, 5D6F05F715C52A16D05CAE15C3DFE77A139A7F27F7AE710EC9A10F9EE05115A1 ] Atmarpc D:\WINDOWS.0\system32\DRIVERS\atmarpc.sys
20:34:47.0671 0x0ef4 Atmarpc - ok
20:34:47.0703 0x0ef4 [ DEF7A7882BEC100FE0B2CE2549188F9D, 462C95B63D0A1058291A2DC8CBFCB13D7D74CCD1CA43B613A7EB43D49E3276F8 ] AudioSrv D:\WINDOWS.0\System32\audiosrv.dll
20:34:47.0718 0x0ef4 AudioSrv - ok
20:34:47.0734 0x0ef4 [ D9F724AA26C010A217C97606B160ED68, 329B5118F2409731D06FDAE85B6ADD64A048292801BCB3546651CEB303111695 ] audstub D:\WINDOWS.0\system32\DRIVERS\audstub.sys
20:34:47.0750 0x0ef4 audstub - ok
20:34:47.0781 0x0ef4 [ FE5C0B6E90EA6E0ECA1259571A13239F, 16FE8D7E8F750045DAD0D243FB69ABE9E5640388C907FA651FB0F38B4E9759BC ] avgntflt D:\WINDOWS.0\system32\DRIVERS\avgntflt.sys
20:34:47.0781 0x0ef4 avgntflt - ok
20:34:47.0796 0x0ef4 [ C0F13672DEA7BDB40A89414AB0411705, 5B0C2391340BEE31CB6D8D7433786EDD48BBCD5D5737A539D4A0A54F37636720 ] avipbb D:\WINDOWS.0\system32\DRIVERS\avipbb.sys
20:34:47.0796 0x0ef4 avipbb - ok
20:34:47.0812 0x0ef4 [ D8C712305F73CD34D1B344810E522728, 49A474FF6CA44E8427D7A8290B47395125B0148AF384CF2B3B1FA495A4718CBA ] avkmgr D:\WINDOWS.0\system32\DRIVERS\avkmgr.sys
20:34:47.0812 0x0ef4 avkmgr - ok
20:34:47.0828 0x0ef4 [ DA1F27D85E0D1525F6621372E7B685E9, 5A81A46A3BDD19DAFC6C87D277267A5D44F3A1B5302F2CC1111D84B7BAD5610D ] Beep D:\WINDOWS.0\system32\drivers\Beep.sys
20:34:47.0843 0x0ef4 Beep - ok
20:34:47.0875 0x0ef4 [ 574738F61FCA2935F5265DC4E5691314, 3C7CCF064397186C3A3863DD2370AB6414A61B330097DCA4F299CA7BBAA3D1B4 ] BITS D:\WINDOWS.0\system32\qmgr.dll
20:34:47.0921 0x0ef4 BITS - ok
20:34:47.0953 0x0ef4 [ CFD4E51402DA9838B5A04AE680AF54A0, 5378F42B195B5832B00A05AD64E00473A45FFB86AC25C57241F26EA82B149FE1 ] Browser D:\WINDOWS.0\System32\browser.dll
20:34:47.0953 0x0ef4 Browser - ok
20:34:47.0953 0x0ef4 catchme - ok
20:34:47.0968 0x0ef4 [ 90A673FC8E12A79AFBED2576F6A7AAF9, BDE7858A3457DB979FEDD8577FA6321BF72848E4A7BF9F173C78A6A10CBB3EBE ] cbidf2k D:\WINDOWS.0\system32\drivers\cbidf2k.sys
20:34:47.0984 0x0ef4 cbidf2k - ok
20:34:47.0984 0x0ef4 cd20xrnt - ok
20:34:48.0000 0x0ef4 [ C1B486A7658353D33A10CC15211A873B, AA4DD9E7AAE5AAB1146B360B17001F975D2F29A1281CF7B13E7136480410F347 ] Cdaudio D:\WINDOWS.0\system32\drivers\Cdaudio.sys
20:34:48.0015 0x0ef4 Cdaudio - ok
20:34:48.0031 0x0ef4 [ C885B02847F5D2FD45A24E219ED93B32, B26B2F8E3A831E2B65EB0C5195B0645CD50E22615CE79C9B0B391CD563B121DB ] Cdfs D:\WINDOWS.0\system32\drivers\Cdfs.sys
20:34:48.0031 0x0ef4 Cdfs - ok
20:34:48.0046 0x0ef4 [ 1F4260CC5B42272D71F79E570A27A4FE, B51C2A3ED3C309953D0EA45869C8E464C10F2533DADE9E0286AF674979098D1D ] Cdrom D:\WINDOWS.0\system32\DRIVERS\cdrom.sys
20:34:48.0062 0x0ef4 Cdrom - ok
20:34:48.0062 0x0ef4 Changer - ok
20:34:48.0078 0x0ef4 [ 1CFE720EB8D93A7158A4EBC3AB178BDE, 65D2A9D9A88F38D4AF323134C151BA0F4B3CD0F6A134AF86E7AC9D07319F1726 ] CiSvc D:\WINDOWS.0\system32\cisvc.exe
20:34:48.0093 0x0ef4 CiSvc - ok
20:34:48.0125 0x0ef4 [ 85F1DDEA3C10921190CDBA107B22590C, 1B3BD413256BA1F06B3A7C06ADDEFF5823A68F8FEC058DB02023791B4D87A540 ] cleanhlp C:\EEK\Run\cleanhlp32.sys
20:34:48.0140 0x0ef4 cleanhlp - ok
20:34:48.0156 0x0ef4 [ 34CBE729F38138217F9C80212A2A0C82, A9FD7A758D12E0818A11BEEF1CE772FEFA8373E92EF6C0DA8628CD4572CC9A43 ] ClipSrv D:\WINDOWS.0\system32\clipsrv.exe
20:34:48.0187 0x0ef4 ClipSrv - ok
20:34:48.0203 0x0ef4 [ D87ACAED61E417BBA546CED5E7E36D9C, 14AC6034A5BC0FB2A1AFDAD42BEF4DE641556E54AD30D0C46765660A4BE55462 ] clr_optimization_v2.0.50727_32 D:\WINDOWS.0\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
20:34:48.0234 0x0ef4 clr_optimization_v2.0.50727_32 - ok
20:34:48.0265 0x0ef4 [ C5A75EB48E2344ABDC162BDA79E16841, 6070A8AAFD38FBC6A68A2B10C20117612354DF21B4492D90CA522BFB6870D726 ] clr_optimization_v4.0.30319_32 D:\WINDOWS.0\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
20:34:48.0296 0x0ef4 clr_optimization_v4.0.30319_32 - ok
20:34:48.0312 0x0ef4 CmdIde - ok
20:34:48.0312 0x0ef4 COMSysApp - ok
20:34:48.0312 0x0ef4 Cpqarray - ok
20:34:48.0343 0x0ef4 [ 3D4E199942E29207970E04315D02AD3B, 0825960894CF9C86CC8775BDD2A262948A09CA495AA7FE9F210FAF49E7086383 ] CryptSvc D:\WINDOWS.0\System32\cryptsvc.dll
20:34:48.0375 0x0ef4 CryptSvc - ok
20:34:48.0375 0x0ef4 dac2w2k - ok
20:34:48.0375 0x0ef4 dac960nt - ok
20:34:48.0421 0x0ef4 [ 6B27A5C03DFB94B4245739065431322C, 6AEAC16AB4E0DFD25123AAF4D4181FEE1B919B7B2793117006CE8CF30E826CFD ] DcomLaunch D:\WINDOWS.0\system32\rpcss.dll
20:34:48.0421 0x0ef4 DcomLaunch - ok
20:34:48.0453 0x0ef4 [ 5E38D7684A49CACFB752B046357E0589, F192AD4190BCFB6939A5CBC91648FE63168AF79A5E227A111DEAD6A92E42AB8D ] Dhcp D:\WINDOWS.0\System32\dhcpcsvc.dll
20:34:48.0453 0x0ef4 Dhcp - ok
20:34:48.0468 0x0ef4 [ 044452051F3E02E7963599FC8F4F3E25, 584BDDB074618BE76454CF90E74829CFF588B5B5FAEB793E2F7AAD26352DD689 ] Disk D:\WINDOWS.0\system32\DRIVERS\disk.sys
20:34:48.0468 0x0ef4 Disk - ok
20:34:48.0468 0x0ef4 dmadmin - ok
20:34:48.0515 0x0ef4 [ D992FE1274BDE0F84AD826ACAE022A41, C82BD6561A14F2932A761F5883A787B99031250EE5E9B7B5714AA045545C9B99 ] dmboot D:\WINDOWS.0\system32\drivers\dmboot.sys
20:34:48.0562 0x0ef4 dmboot - ok
20:34:48.0578 0x0ef4 [ 7C824CF7BBDE77D95C08005717A95F6F, A73CB323B7A6410C3D3F258BF204E716ADF8C84C9E4F6562C57AB73DAED8CCDE ] dmio D:\WINDOWS.0\system32\drivers\dmio.sys
20:34:48.0578 0x0ef4 dmio - ok
20:34:48.0593 0x0ef4 [ E9317282A63CA4D188C0DF5E09C6AC5F, D41E002F555FE9015EF620975255F58BB79198CA1FF0E09EC950CB450FF77CF7 ] dmload D:\WINDOWS.0\system32\drivers\dmload.sys
20:34:48.0593 0x0ef4 dmload - ok
20:34:48.0609 0x0ef4 [ 57EDEC2E5F59F0335E92F35184BC8631, 61F6F0DC2D1A6C61D5EF0D5CC4BE0FFC217F1E61FDA3EA9F704709293656600F ] dmserver D:\WINDOWS.0\System32\dmserver.dll
20:34:48.0625 0x0ef4 dmserver - ok
20:34:48.0656 0x0ef4 [ 8A208DFCF89792A484E76C40E5F50B45, 4E40E2EB38C6254E7CAA488200E89EE7DEBBBA773890BC6A84313CC68178D54F ] DMusic D:\WINDOWS.0\system32\drivers\DMusic.sys
20:34:48.0671 0x0ef4 DMusic - ok
20:34:48.0687 0x0ef4 [ 5F7E24FA9EAB896051FFB87F840730D2, 356EEFDCD54DECAD0170B34B993E4BF80DD039E2B2922D7A8D09B84031E9FC7A ] Dnscache D:\WINDOWS.0\System32\dnsrslvr.dll
20:34:48.0687 0x0ef4 Dnscache - ok
20:34:48.0718 0x0ef4 [ 0F0F6E687E5E15579EF4DA8DD6945814, 5C32D88119EB1465B2D719BEE2E05888D1A73454B5E33F2D4928DA710F8BFBA3 ] Dot3svc D:\WINDOWS.0\System32\dot3svc.dll
20:34:48.0750 0x0ef4 Dot3svc - ok
20:34:48.0750 0x0ef4 dpti2o - ok
20:34:48.0765 0x0ef4 [ 8F5FCFF8E8848AFAC920905FBD9D33C8, C8C6FB97AB0871C8C88A2201525A5CF10D5131CB6980D32692ED7A8F58399AD5 ] drmkaud D:\WINDOWS.0\system32\drivers\drmkaud.sys
20:34:48.0781 0x0ef4 drmkaud - ok
20:34:48.0781 0x0ef4 [ 2187855A7703ADEF0CEF9EE4285182CC, 8233CC11F637866C0074043835A785EA2B616739B6B1181B143A253CF2508CFD ] EapHost D:\WINDOWS.0\System32\eapsvc.dll
20:34:48.0796 0x0ef4 EapHost - ok
20:34:48.0812 0x0ef4 [ BC93B4A066477954555966D77FEC9ECB, 27F5B780175EF46DA102EE33F7F33559C8B40C077EEA4405D579D9507F4B1C23 ] ERSvc D:\WINDOWS.0\System32\ersvc.dll
20:34:48.0828 0x0ef4 ERSvc - ok
20:34:48.0875 0x0ef4 esgiguard - ok
20:34:48.0906 0x0ef4 [ 65DF52F5B8B6E9BBD183505225C37315, 59C606977DB40A3443DFF0BE2A4C761824881B22C9FDB3D23F6486DB580E92A4 ] Eventlog D:\WINDOWS.0\system32\services.exe
20:34:48.0906 0x0ef4 Eventlog - ok
20:34:48.0953 0x0ef4 [ D4991D98F2DB73C60D042F1AEF79EFAE, 58AF949EAEBF4FF3E3314DFB66CE4198BF65F0836B68CD27A6ED319742CCCCD2 ] EventSystem D:\WINDOWS.0\system32\es.dll
20:34:48.0953 0x0ef4 EventSystem - ok
20:34:48.0968 0x0ef4 [ 38D332A6D56AF32635675F132548343E, E6909DB836AF679B4F4D62C7396D6C82769CC7ABB8C919C2AABFE934FCE268F6 ] Fastfat D:\WINDOWS.0\system32\drivers\Fastfat.sys
20:34:49.0000 0x0ef4 Fastfat - ok
20:34:49.0031 0x0ef4 [ 99BC0B50F511924348BE19C7C7313BBF, A1006C687BD352F700B140DC741515A0CDD9E1352C0FBD1EE410D404E344444B ] FastUserSwitchingCompatibility D:\WINDOWS.0\System32\shsvcs.dll
20:34:49.0031 0x0ef4 FastUserSwitchingCompatibility - ok
20:34:49.0046 0x0ef4 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81, 8307A532AB4D05CBBCE206DC2759497708BF5AAA880BD00F0E4F281D8578A1F5 ] Fdc D:\WINDOWS.0\system32\DRIVERS\fdc.sys
20:34:49.0062 0x0ef4 Fdc - ok
20:34:49.0078 0x0ef4 FileMonitor - ok
20:34:49.0093 0x0ef4 [ D45926117EB9FA946A6AF572FBE1CAA3, 4C94EF009D778BE0BDF8F812F026B96F91F641BE30AA2531427A5E63DBD280DA ] Fips D:\WINDOWS.0\system32\drivers\Fips.sys
20:34:49.0109 0x0ef4 Fips - ok
20:34:49.0109 0x0ef4 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0, 69C271AD5BCEBFD8AE5A769BDD7EC51256DA3A8ADAD5D12E5C0D13F4E82D8805 ] Flpydisk D:\WINDOWS.0\system32\DRIVERS\flpydisk.sys
20:34:49.0140 0x0ef4 Flpydisk - ok
20:34:49.0171 0x0ef4 [ B2CF4B0786F8212CB92ED2B50C6DB6B0, 280F5CF8A90F7BEDE73ADD0DD0F8952088133A7CA9A3D3B7041957E33B36845D ] FltMgr D:\WINDOWS.0\system32\DRIVERS\fltMgr.sys
20:34:49.0171 0x0ef4 FltMgr - ok
20:34:49.0218 0x0ef4 [ 8BA7C024070F2B7FDD98ED8A4BA41789, 47585006F86B2C6016EC54250A416794792D1E4024FF229C120BC25B684AF66A ] FontCache3.0.0.0 D:\WINDOWS.0\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
20:34:49.0218 0x0ef4 FontCache3.0.0.0 - ok
20:34:49.0234 0x0ef4 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A, EC635E071201A766845D48973772CBE0958942B4162F3F5F70660D114CC877E0 ] Fs_Rec D:\WINDOWS.0\system32\drivers\Fs_Rec.sys
20:34:49.0250 0x0ef4 Fs_Rec - ok
20:34:49.0265 0x0ef4 [ 6AC26732762483366C3969C9E4D2259D, FF2C9A23CC17F380093F0BEA955B1925794271C2FEA16B9B7639668E6999BAE3 ] Ftdisk D:\WINDOWS.0\system32\DRIVERS\ftdisk.sys
20:34:49.0265 0x0ef4 Ftdisk - ok
20:34:49.0312 0x0ef4 GGSAFERDriver - ok
20:34:49.0328 0x0ef4 [ 0A02C63C8B144BD8C86B103DEE7C86A2, 7A3235DD3E1995DD72B212FAEB3ECA2A974434DE9BF6D269EA11BA65A80E7E50 ] Gpc D:\WINDOWS.0\system32\DRIVERS\msgpc.sys
20:34:49.0343 0x0ef4 Gpc - ok
20:34:49.0375 0x0ef4 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate D:\Program Files\Google\Update\GoogleUpdate.exe
20:34:49.0375 0x0ef4 gupdate - ok
20:34:49.0375 0x0ef4 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem D:\Program Files\Google\Update\GoogleUpdate.exe
20:34:49.0390 0x0ef4 gupdatem - ok
20:34:49.0406 0x0ef4 [ 573C7D0A32852B48F3058CFD8026F511, BC384BBA394AFDCDA1A9ABC858C692AA84A1F0A31AF3DDF7F38D120C027927FB ] HDAudBus D:\WINDOWS.0\system32\DRIVERS\HDAudBus.sys
20:34:49.0421 0x0ef4 HDAudBus - ok
20:34:49.0437 0x0ef4 [ 4FCCA060DFE0C51A09DD5C3843888BCD, D82417706B517F2610DDF7C86BE03A72EFA9A2A389DF5C8F8ADEAB8144E2C80A ] helpsvc D:\WINDOWS.0\PCHealth\HelpCtr\Binaries\pchsvc.dll
20:34:49.0453 0x0ef4 helpsvc - ok
20:34:49.0468 0x0ef4 [ DEB04DA35CC871B6D309B77E1443C796, F66A15C9528D661940F1F4CA453B3E95036D68C74C3B8AB53644211DBD3D2F32 ] HidServ D:\WINDOWS.0\System32\hidserv.dll
20:34:49.0468 0x0ef4 HidServ - ok
20:34:49.0500 0x0ef4 [ CCF82C5EC8A7326C3066DE870C06DAF1, 93395FA4C26B2E82DC8B7025ED3BCF583885E5D8C5F60CD6EEAA6335D6A126EC ] hidusb D:\WINDOWS.0\system32\DRIVERS\hidusb.sys
20:34:49.0500 0x0ef4 hidusb - ok
20:34:49.0531 0x0ef4 [ 8878BD685E490239777BFE51320B88E9, C5C3ECF6B049B6736E35B39518A8F830B45C45A88FFE8E3A6B7922AD946597E2 ] hkmsvc D:\WINDOWS.0\System32\kmsvc.dll
20:34:49.0546 0x0ef4 hkmsvc - ok
20:34:49.0546 0x0ef4 hpn - ok
20:34:49.0593 0x0ef4 [ F80A415EF82CD06FFAF0D971528EAD38, 524D9E9201572929522F6805011783711B7C0F76308B924C89CF75F4B7A1FDF3 ] HTTP D:\WINDOWS.0\system32\Drivers\HTTP.sys
20:34:49.0593 0x0ef4 HTTP - ok
20:34:49.0640 0x0ef4 [ 6100A808600F44D999CEBDEF8841C7A3, 61A75118C327812C60622010985A2E80E79B6FD9030A5732390EE5426E4AF6C9 ] HTTPFilter D:\WINDOWS.0\System32\w3ssl.dll
20:34:49.0640 0x0ef4 HTTPFilter - ok
20:34:49.0640 0x0ef4 i2omgmt - ok
20:34:49.0656 0x0ef4 i2omp - ok
20:34:49.0671 0x0ef4 [ 4A0B06AA8943C1E332520F7440C0AA30, DB2452390CCFE67E0C5FEB4FD42CA24ABE2DDD40D0B22DD5F5B8F70416863918 ] i8042prt D:\WINDOWS.0\system32\drivers\i8042prt.sys
20:34:49.0687 0x0ef4 i8042prt - ok
20:34:49.0718 0x0ef4 [ 1CF03C69B49ACB70C722DF92755C0C8C, C227850C133F29BB9DED91A26A22AE077FD69629CEF35B67D305F016C4BDAA81 ] IDriverT D:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
20:34:49.0750 0x0ef4 IDriverT - ok
20:34:49.0812 0x0ef4 [ C01AC32DC5C03076CFB852CB5DA5229C, A4D7749220B5BC965D96A267F1E02FE8284A230BA249109207BD4B9EA8DFAC96 ] idsvc D:\WINDOWS.0\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
20:34:49.0875 0x0ef4 idsvc - ok
20:34:49.0906 0x0ef4 [ 083A052659F5310DD8B6A6CB05EDCF8E, 48D39B03FFB6FAA1529B774443BA12618AE3982D9F65A7B9D18F2269F78B31F4 ] Imapi D:\WINDOWS.0\system32\DRIVERS\imapi.sys
20:34:49.0921 0x0ef4 Imapi - ok
20:34:49.0937 0x0ef4 [ 30DEAF54A9755BB8546168CFE8A6B5E1, 3936228CD3125C763ABFCB93E86E4B43838202BCC0913A28E84AC0263B43EE0D ] ImapiService D:\WINDOWS.0\system32\imapi.exe
20:34:49.0937 0x0ef4 ImapiService - ok
20:34:49.0937 0x0ef4 ini910u - ok
20:34:50.0312 0x0ef4 [ 5D138ADC44C43BF37634C8E528D75B1F, 4FA38D9B34C9F840B432F6E1337ED39323C4457563FC7167B5815A9D91343361 ] IntcAzAudAddService D:\WINDOWS.0\system32\drivers\RtkHDAud.sys
20:34:50.0531 0x0ef4 IntcAzAudAddService - ok
20:34:50.0546 0x0ef4 IntelIde - ok
20:34:50.0609 0x0ef4 [ 3BB22519A194418D5FEC05D800A19AD0, F6662F440950596DC1382DD1DB5D7891CCEA30A6062BEA942C18445B5F0D8B16 ] Ip6Fw D:\WINDOWS.0\system32\DRIVERS\Ip6Fw.sys
20:34:50.0625 0x0ef4 Ip6Fw - ok
20:34:50.0656 0x0ef4 [ 731F22BA402EE4B62748ADAF6363C182, 5C3BEBD008A5BE4DC2F92076FF41A10DDC01E10EC7E6552213CFA11970811848 ] IpFilterDriver D:\WINDOWS.0\system32\DRIVERS\ipfltdrv.sys
20:34:50.0687 0x0ef4 IpFilterDriver - ok
20:34:50.0687 0x0ef4 [ B87AB476DCF76E72010632B5550955F5, E6E74D3A86A7917A8BAED44F8E97CCD2EB171E4E4B27E9907F60D1523FAF319A ] IpInIp D:\WINDOWS.0\system32\DRIVERS\ipinip.sys
20:34:50.0718 0x0ef4 IpInIp - ok
20:34:50.0750 0x0ef4 [ CC748EA12C6EFFDE940EE98098BF96BB, AF523E21C25D9A1715EFEA573E4F52AF5D4FC9F28A2D613F5DB629C186C439E0 ] IpNat D:\WINDOWS.0\system32\DRIVERS\ipnat.sys
20:34:50.0750 0x0ef4 IpNat - ok
20:34:50.0765 0x0ef4 [ 23C74D75E36E7158768DD63D92789A91, 394D296F38E7D8EFD91A6EEC301D9CE6AF910E35EB9819F1A9E3363863AEDFDC ] IPSec D:\WINDOWS.0\system32\DRIVERS\ipsec.sys
20:34:50.0781 0x0ef4 IPSec - ok
20:34:50.0796 0x0ef4 [ C93C9FF7B04D772627A3646D89F7BF89, 805FA48E7A46D4F10240BF880A2468F53DEA36E83004399228AB70DB7D20544A ] IRENUM D:\WINDOWS.0\system32\DRIVERS\irenum.sys
20:34:50.0812 0x0ef4 IRENUM - ok
20:34:50.0828 0x0ef4 [ 05A299EC56E52649B1CF2FC52D20F2D7, 2654619DB3E6D6C385B63AB02F87D4241C4F0250CC31383D1B3586917166C2DC ] isapnp D:\WINDOWS.0\system32\DRIVERS\isapnp.sys
20:34:50.0828 0x0ef4 isapnp - ok
20:34:50.0921 0x0ef4 [ 9ECF00E19736054E019C532AED8228FC, F5A64A8269EA3655BBD4850298F335C0BD30535258928ED7CE62A32A3363E60B ] JavaQuickStarterService C:\Program Files\Java\jre7\bin\jqs.exe
20:34:50.0921 0x0ef4 JavaQuickStarterService - ok
20:34:50.0953 0x0ef4 [ 463C1EC80CD17420A542B7F36A36F128, E3B11BA26AFEAFB50B0FC168EA07F6049DA6B88BCDDEEE20310602D7FC27A3A7 ] Kbdclass D:\WINDOWS.0\system32\DRIVERS\kbdclass.sys
20:34:50.0968 0x0ef4 Kbdclass - ok
20:34:50.0984 0x0ef4 [ 9EF487A186DEA361AA06913A75B3FA99, B94EBA4EC6D85E11C81AF9927E9EF0AF2E6FE134CFF1FDB0535B7C5A794B4261 ] kbdhid D:\WINDOWS.0\system32\DRIVERS\kbdhid.sys
20:34:50.0984 0x0ef4 kbdhid - ok
20:34:51.0015 0x0ef4 [ 692BCF44383D056AED41B045A323D378, 1A99DEE83FFAF64E73067FC049C0A4CE07D94E4AE31EFA17B38CEFA9E41D67DC ] kmixer D:\WINDOWS.0\system32\drivers\kmixer.sys
20:34:51.0046 0x0ef4 kmixer - ok
20:34:51.0062 0x0ef4 [ B467646C54CC746128904E1654C750C1, 3BD71BE3663EA23463D236D8A2A2E42DFA10C502BDB4B6E131FAF0FBA748219E ] KSecDD D:\WINDOWS.0\system32\drivers\KSecDD.sys
20:34:51.0062 0x0ef4 KSecDD - ok
20:34:51.0093 0x0ef4 [ 3A7C3CBE5D96B8AE96CE81F0B22FB527, 0044F03132596A494448CCE5F3D6ECC12617BB4CF6BAE348F79D4DC40ACD6EE0 ] LanmanServer D:\WINDOWS.0\System32\srvsvc.dll
20:34:51.0093 0x0ef4 LanmanServer - ok
20:34:51.0109 0x0ef4 [ A8888A5327621856C0CEC4E385F69309, B08B63300D824E35E31EEEA2C4C086DFA2C2A964CEDAE512E74D3D88AADAA2C1 ] lanmanworkstation D:\WINDOWS.0\System32\wkssvc.dll
20:34:51.0109 0x0ef4 lanmanworkstation - ok
20:34:51.0125 0x0ef4 lbrtfdc - ok
20:34:51.0140 0x0ef4 [ A7DB739AE99A796D91580147E919CC59, EDF4E039BA277B0E6D66FEB0B28096E67D682C09DFC18ECECF062D9DCFB75ACF ] LmHosts D:\WINDOWS.0\System32\lmhsvc.dll
20:34:51.0156 0x0ef4 LmHosts - ok
20:34:51.0171 0x0ef4 [ 986B1FF5814366D71E0AC5755C88F2D3, E6AF051174531C24B38E73987755D366ABEC595476C6D17793E8DCCC73F55340 ] Messenger D:\WINDOWS.0\System32\msgsvc.dll
20:34:51.0187 0x0ef4 Messenger - ok
20:34:51.0203 0x0ef4 [ 4AE068242760A1FB6E1A44BF4E16AFA6, 1FB771162B96AAF787AC24867B818DF8511F0780BB094FA9A38C11D8DBFE68BC ] mnmdd D:\WINDOWS.0\system32\drivers\mnmdd.sys
20:34:51.0218 0x0ef4 mnmdd - ok
20:34:51.0234 0x0ef4 [ D18F1F0C101D06A1C1ADF26EED16FCDD, BA0837C7780BD8262E143E2935AFA63BE59C3C39EF56CB8608EED0F50AF070D4 ] mnmsrvc D:\WINDOWS.0\system32\mnmsrvc.exe
20:34:51.0250 0x0ef4 mnmsrvc - ok
20:34:51.0265 0x0ef4 [ DFCBAD3CEC1C5F964962AE10E0BCC8E1, B342CC9EC3729AB1AB4B5E2E99F890C1E0CA649162DE91F6768AB857B719E97B ] Modem D:\WINDOWS.0\system32\drivers\Modem.sys
20:34:51.0296 0x0ef4 Modem - ok
20:34:51.0375 0x0ef4 [ C7D9F9717916B34C1B00DD4834AF485C, A9512A03E8142C83534189963F90ADA6FA425BD606928C40C3D724177105A658 ] Monfilt D:\WINDOWS.0\system32\drivers\Monfilt.sys
20:34:51.0421 0x0ef4 Monfilt - ok
20:34:51.0437 0x0ef4 [ 35C9E97194C8CFB8430125F8DBC34D04, 0C0FCE6B0A23FB0ECB92E1663E1C72D2DD5B177D82E04782957690B69530DB39 ] Mouclass D:\WINDOWS.0\system32\DRIVERS\mouclass.sys
20:34:51.0453 0x0ef4 Mouclass - ok
20:34:51.0468 0x0ef4 [ B1C303E17FB9D46E87A98E4BA6769685, 161A45488522055D0F0474ABEDA04DDD0B5DAC2411AF9154B15190BBD66E7153 ] mouhid D:\WINDOWS.0\system32\DRIVERS\mouhid.sys
20:34:51.0484 0x0ef4 mouhid - ok
20:34:51.0531 0x0ef4 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD, 2A5E15ED2C24C6C65EF2F7E1FD93374774076C9D8D451E4422561F4D269C012F ] MountMgr D:\WINDOWS.0\system32\drivers\MountMgr.sys
20:34:51.0531 0x0ef4 MountMgr - ok
20:34:51.0562 0x0ef4 [ 5E0686615A80A6279B2314E13CD23F6E, 659931AB2DD395FAA2E5036D02BC6AAE8A7E4C9FF1A902B1FF9C15E878C89E77 ] MozillaMaintenance D:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
20:34:51.0562 0x0ef4 MozillaMaintenance - ok
20:34:51.0562 0x0ef4 mraid35x - ok
20:34:51.0593 0x0ef4 [ 11D42BB6206F33FBB3BA0288D3EF81BD, 76ABCFB62C5AC549F58C231F72A99882CDEB74928104B77FE52554765C2B1A22 ] MRxDAV D:\WINDOWS.0\system32\DRIVERS\mrxdav.sys
20:34:51.0609 0x0ef4 MRxDAV - ok
20:34:51.0656 0x0ef4 [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0, DB9B186F7076D7B94F45041AF7B77C1AD2CAB504D683B459C6CB1C22840ED170 ] MRxSmb D:\WINDOWS.0\system32\DRIVERS\mrxsmb.sys
20:34:51.0671 0x0ef4 MRxSmb - ok
20:34:51.0687 0x0ef4 [ A137F1470499A205ABBB9AAFB3B6F2B1, FB4951727543030D9E6ED74149C3FAACE2CA9DA8C1B5F616301B30B858C724E8 ] MSDTC D:\WINDOWS.0\system32\msdtc.exe
20:34:51.0750 0x0ef4 MSDTC - ok
20:34:51.0765 0x0ef4 [ C941EA2454BA8350021D774DAF0F1027, C940E978C7B66A713A0FDAB54B5F995DF59D089AFCD96221DD3222948CD49BBD ] Msfs D:\WINDOWS.0\system32\drivers\Msfs.sys
20:34:51.0765 0x0ef4 Msfs - ok
20:34:51.0765 0x0ef4 MSIServer - ok
20:34:51.0781 0x0ef4 [ D1575E71568F4D9E14CA56B7B0453BF1, 4ABE0E24786C0D39FA2B885447E56204CA6942FB175E534DCE675D7BCF0B176A ] MSKSSRV D:\WINDOWS.0\system32\drivers\MSKSSRV.sys
20:34:51.0812 0x0ef4 MSKSSRV - ok
20:34:51.0812 0x0ef4 [ 325BB26842FC7CCC1FCCE2C457317F3E, C07BE560513B1FB91D756494F0BA4AEEB2E1998DE0E1C21EE83DB1183B0CEE91 ] MSPCLOCK D:\WINDOWS.0\system32\drivers\MSPCLOCK.sys
20:34:51.0828 0x0ef4 MSPCLOCK - ok
20:34:51.0828 0x0ef4 [ BAD59648BA099DA4A17680B39730CB3D, 9AD4C7C94C186C8815D0BC75DCAFB962158DA6935A244BA243EDDDEB33F9816C ] MSPQM D:\WINDOWS.0\system32\drivers\MSPQM.sys
20:34:51.0843 0x0ef4 MSPQM - ok
20:34:51.0859 0x0ef4 [ AF5F4F3F14A8EA2C26DE30F7A1E17136, AC93A1E4ABB0D038B772E429015567E44CC2EDB66C54DBE23A5F98176FAC1520 ] mssmbios D:\WINDOWS.0\system32\DRIVERS\mssmbios.sys
20:34:51.0859 0x0ef4 mssmbios - ok
20:34:51.0875 0x0ef4 [ DE6A75F5C270E756C5508D94B6CF68F5, FCC972DDC36C2C44D836913F10004C2C33B11C54DEFFF0C63E0FDF901D2F9261 ] Mup D:\WINDOWS.0\system32\drivers\Mup.sys
20:34:51.0875 0x0ef4 Mup - ok
20:34:51.0906 0x0ef4 [ 0102140028FAD045756796E1C685D695, 5335B8278418CA200E2772124F0602C3E15A5CAF2D5CC59F6785DFAABF339B09 ] napagent D:\WINDOWS.0\System32\qagentrt.dll
20:34:51.0937 0x0ef4 napagent - ok
20:34:51.0937 0x0ef4 [ 1DF7F42665C94B825322FAE71721130D, FE0DCB728471465B39A42A7511F4133021FBA5DF88F88BCB5FE2FF34CFD713F9 ] NDIS D:\WINDOWS.0\system32\drivers\NDIS.sys
20:34:51.0953 0x0ef4 NDIS - ok
20:34:51.0968 0x0ef4 [ 0109C4F3850DFBAB279542515386AE22, 4F6DB1E499AC853FD36FD603FBB6D3AC9BDCEB298C7FE1FB59A9236CB46729B2 ] NdisTapi D:\WINDOWS.0\system32\DRIVERS\ndistapi.sys
20:34:51.0968 0x0ef4 NdisTapi - ok
20:34:51.0968 0x0ef4 [ F927A4434C5028758A842943EF1A3849, B1AA3AF150C05307461774925901789456B0CCCD03A5E71ADA4AB58455962BEE ] Ndisuio D:\WINDOWS.0\system32\DRIVERS\ndisuio.sys
20:34:51.0984 0x0ef4 Ndisuio - ok
20:34:52.0000 0x0ef4 [ EDC1531A49C80614B2CFDA43CA8659AB, 494042F790F33721328B4451E79842E21919681CC421A4F9633EC4D383E06097 ] NdisWan D:\WINDOWS.0\system32\DRIVERS\ndiswan.sys
20:34:52.0015 0x0ef4 NdisWan - ok
20:34:52.0031 0x0ef4 [ 9282BD12DFB069D3889EB3FCC1000A9B, 09A46F1712BD9165068D8E153585FE3E6E5CBF4F1DDEC142115555D3A91AEC09 ] NDProxy D:\WINDOWS.0\system32\drivers\NDProxy.sys
20:34:52.0031 0x0ef4 NDProxy - ok
20:34:52.0062 0x0ef4 [ 5D81CF9A2F1A3A756B66CF684911CDF0, 7989C36607CAEA17AFA2C1C9904145CA0714A54B9F712D9D4C1AB140D0B2CC0C ] NetBIOS D:\WINDOWS.0\system32\DRIVERS\netbios.sys
20:34:52.0062 0x0ef4 NetBIOS - ok
20:34:52.0078 0x0ef4 [ 74B2B2F5BEA5E9A3DC021D685551BD3D, 7932B71F98B4122BE88F576BF6D745A757AE378A48924B7F4358837B75640A82 ] NetBT D:\WINDOWS.0\system32\DRIVERS\netbt.sys
20:34:52.0109 0x0ef4 NetBT - ok
20:34:52.0125 0x0ef4 [ B857BA82860D7FF85AE29B095645563B, 86FF0E4CDD9C394E8BABD93A4D57E73FF9A779261717DEC6E9CDE99F1C6B0F4C ] NetDDE D:\WINDOWS.0\system32\netdde.exe
20:34:52.0125 0x0ef4 NetDDE - ok
20:34:52.0140 0x0ef4 [ B857BA82860D7FF85AE29B095645563B, 86FF0E4CDD9C394E8BABD93A4D57E73FF9A779261717DEC6E9CDE99F1C6B0F4C ] NetDDEdsdm D:\WINDOWS.0\system32\netdde.exe
20:34:52.0140 0x0ef4 NetDDEdsdm - ok
20:34:52.0156 0x0ef4 [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] Netlogon D:\WINDOWS.0\system32\lsass.exe
20:34:52.0156 0x0ef4 Netlogon - ok
20:34:52.0171 0x0ef4 [ 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE, 4E0A67B3CC897E80D4B342FFE8B7B4CC4F6CA2EF2D34C136027A098B2E1C6166 ] Netman D:\WINDOWS.0\System32\netman.dll
20:34:52.0187 0x0ef4 Netman - ok
20:34:52.0218 0x0ef4 [ D34612C5D02D026535B3095D620626AE, 1BBCCCBF49EB8807240A77DCB43C25C21682073CC5356594E2C4F53EF36BF657 ] NetTcpPortSharing D:\WINDOWS.0\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
20:34:52.0234 0x0ef4 NetTcpPortSharing - ok
20:34:52.0265 0x0ef4 [ E9E47CFB2D461FA0FC75B7A74C6383EA, 544136F5BFD4DC23D45E90F12FA48B82FD9EAEA9EAF3E0F5F0BD27E23D672C3E ] NIC1394 D:\WINDOWS.0\system32\DRIVERS\nic1394.sys
20:34:52.0265 0x0ef4 NIC1394 - ok
20:34:52.0281 0x0ef4 [ 943337D786A56729263071623BBB9DE5, B631B47C869FE4ACF46E4AA272435D9A9CA536E3349E3FFBB8602636FEE7AFD4 ] Nla D:\WINDOWS.0\System32\mswsock.dll
20:34:52.0296 0x0ef4 Nla - ok
20:34:52.0296 0x0ef4 [ 3182D64AE053D6FB034F44B6DEF8034A, 4ADFC76965BA2A5F488E71789A4E4EA702A74AF42725F72130D1CA919406CF19 ] Npfs D:\WINDOWS.0\system32\drivers\Npfs.sys
20:34:52.0296 0x0ef4 Npfs - ok
20:34:52.0328 0x0ef4 [ 78A08DD6A8D65E697C18E1DB01C5CDCA, E0E6F3ED05068E32F1D5C2D2B38CDEF4536B8656DB6756C66CF6B40B60C8F3DA ] Ntfs D:\WINDOWS.0\system32\drivers\Ntfs.sys
20:34:52.0375 0x0ef4 Ntfs - ok
20:34:52.0375 0x0ef4 [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] NtLmSsp D:\WINDOWS.0\system32\lsass.exe
20:34:52.0375 0x0ef4 NtLmSsp - ok
20:34:52.0421 0x0ef4 [ 156F64A3345BD23C600655FB4D10BC08, 9611BE411586E068D9297D77102DB3BE48AA67F1BAD6F61A84F83FC3043FA9CD ] NtmsSvc D:\WINDOWS.0\system32\ntmssvc.dll
20:34:52.0453 0x0ef4 NtmsSvc - ok
20:34:52.0484 0x0ef4 [ 73C1E1F395918BC2C6DD67AF7591A3AD, B21133A75253EC15E2DFF66D3B480AB1A7E1A2360476C810E7AA55D0F0EB08D4 ] Null D:\WINDOWS.0\system32\drivers\Null.sys
20:34:52.0500 0x0ef4 Null - ok
20:34:53.0078 0x0ef4 [ 6773CA16B32A66DDED1F0CA6CC780619, E219CF58A13AD61A8BDF4CC06DB7CAA817C8D382F7988AA344AB0B264A75439A ] nv D:\WINDOWS.0\system32\DRIVERS\nv4_mini.sys
20:34:53.0609 0x0ef4 nv - ok
20:34:53.0656 0x0ef4 [ C61927D27B75ED56723F2508F1A6B1BE, 519CB698A0AF0A4DD6FA33F708CC8FA4D358F351950F6D2C279E6B9437C01718 ] NVENETFD D:\WINDOWS.0\system32\DRIVERS\NVENETFD.sys
20:34:53.0656 0x0ef4 NVENETFD - ok
20:34:53.0671 0x0ef4 [ C529B614EF88BE0F62B886C67B516550, 885EE2D9ED6939BDCDF08BCE2AF7244E54C16F4E9E56B69BF4A86139D4AB4AC6 ] nvnetbus D:\WINDOWS.0\system32\DRIVERS\nvnetbus.sys
20:34:53.0671 0x0ef4 nvnetbus - ok
20:34:53.0671 0x0ef4 [ 02A9F366BCB94B286E34825B2094CB38, 1F525EA1C9530FC5361745D0761C8E3AF9BF7CD80087A4791BB8DB8D5DF00115 ] nvsmu D:\WINDOWS.0\system32\DRIVERS\nvsmu.sys
20:34:53.0671 0x0ef4 nvsmu - ok
20:34:53.0703 0x0ef4 [ 55E823719F5F1795D7AE78D189A95CBA, 1B7425D5054D16D755FDB6D741FD1190C6F506B9231E086EB0D6248608EB15CE ] NVSvc D:\WINDOWS.0\system32\nvsvc32.exe
20:34:53.0703 0x0ef4 NVSvc - ok
20:34:53.0843 0x0ef4 [ A9AFE5B0648C8D7A411A72D8222F7F6E, A58AF8C615D97C769DA778D56F7E6999AAEB577C82C65455D3B2A8ED5B742777 ] nvUpdatusService C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
20:34:53.0890 0x0ef4 nvUpdatusService - ok
20:34:53.0921 0x0ef4 [ B305F3FAD35083837EF46A0BBCE2FC57, 9D0E0E666D652D0FC9EAB97280A5D67AAF61D6B21929DF7CF8ED72A367720464 ] NwlnkFlt D:\WINDOWS.0\system32\DRIVERS\nwlnkflt.sys
20:34:53.0953 0x0ef4 NwlnkFlt - ok
20:34:53.0953 0x0ef4 [ C99B3415198D1AAB7227F2C88FD664B9, DD8DA4B5E804F134AB9233859544C025062902DFC3E8FB8A09A67337A4E73F55 ] NwlnkFwd D:\WINDOWS.0\system32\DRIVERS\nwlnkfwd.sys
20:34:53.0968 0x0ef4 NwlnkFwd - ok
20:34:53.0984 0x0ef4 [ CA33832DF41AFB202EE7AEB05145922F, 9DD0089C2E13C7F81214C3B5A4A61276292052F9BBFEA7FCD0F6AA27815D5F95 ] ohci1394 D:\WINDOWS.0\system32\DRIVERS\ohci1394.sys
20:34:53.0984 0x0ef4 ohci1394 - ok
20:34:54.0015 0x0ef4 [ 5575FAF8F97CE5E713D108C2A58D7C7C, 96D4595D19A78CCBE8B325A08780AC077AE5CC99642ACD72FB47AEAE8D344D3B ] Parport D:\WINDOWS.0\system32\drivers\Parport.sys
20:34:54.0031 0x0ef4 Parport - ok
20:34:54.0046 0x0ef4 [ BEB3BA25197665D82EC7065B724171C6, 7E71C13BA30CD95CEE8A9CC85E6F48A01F30EDEAADEE69D80AE828BF97E5A5CA ] PartMgr D:\WINDOWS.0\system32\drivers\PartMgr.sys
20:34:54.0046 0x0ef4 PartMgr - ok
20:34:54.0062 0x0ef4 [ 70E98B3FD8E963A6A46A2E6247E0BEA1, 6771313EC41B3B5BFD398F60706E40BE71617046880CC352DD110B001AFC22A1 ] ParVdm D:\WINDOWS.0\system32\drivers\ParVdm.sys
20:34:54.0078 0x0ef4 ParVdm - ok
20:34:54.0093 0x0ef4 [ A219903CCF74233761D92BEF471A07B1, D4E6C360A1D2FCA4D17C991B834D68BF20F5111DD06B1FAB8B22984804CEC269 ] PCI D:\WINDOWS.0\system32\DRIVERS\pci.sys
20:34:54.0093 0x0ef4 PCI - ok
20:34:54.0093 0x0ef4 PCIDump - ok
20:34:54.0109 0x0ef4 [ CCF5F451BB1A5A2A522A76E670000FF0, D63F7E5A39653EC9CCE94B7D84B2D3EBD4F54533BD65701020198724042C9257 ] PCIIde D:\WINDOWS.0\system32\DRIVERS\pciide.sys
20:34:54.0109 0x0ef4 PCIIde - ok
20:34:54.0125 0x0ef4 [ 9E89EF60E9EE05E3F2EEF2DA7397F1C1, 0BA3DB21DC7C641C181E2635B5C9B73965FDCDCD3EBBBE48FCFEC1C8C987F617 ] Pcmcia D:\WINDOWS.0\system32\drivers\Pcmcia.sys
20:34:54.0156 0x0ef4 Pcmcia - ok
20:34:54.0171 0x0ef4 PDCOMP - ok
20:34:54.0171 0x0ef4 PDFRAME - ok
20:34:54.0171 0x0ef4 PDRELI - ok
20:34:54.0171 0x0ef4 PDRFRAME - ok
20:34:54.0171 0x0ef4 perc2 - ok
20:34:54.0187 0x0ef4 perc2hib - ok
20:34:54.0218 0x0ef4 [ 65DF52F5B8B6E9BBD183505225C37315, 59C606977DB40A3443DFF0BE2A4C761824881B22C9FDB3D23F6486DB580E92A4 ] PlugPlay D:\WINDOWS.0\system32\services.exe
20:34:54.0218 0x0ef4 PlugPlay - ok
20:34:54.0218 0x0ef4 [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] PolicyAgent D:\WINDOWS.0\system32\lsass.exe
20:34:54.0234 0x0ef4 PolicyAgent - ok
20:34:54.0234 0x0ef4 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99, C5F0C8C66A3AF7E7BB04CEDE4AC5306F8387AB384A2107DC5BE413AAE968EFF1 ] PptpMiniport D:\WINDOWS.0\system32\DRIVERS\raspptp.sys
20:34:54.0250 0x0ef4 PptpMiniport - ok
20:34:54.0265 0x0ef4 [ A32BEBAF723557681BFC6BD93E98BD26, 35039BA72A29F87B2CA37DCDE4EFDAABBDEAD8CE3EB8652ACC665994118145A6 ] Processor D:\WINDOWS.0\system32\DRIVERS\processr.sys
20:34:54.0281 0x0ef4 Processor - ok
20:34:54.0296 0x0ef4 [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] ProtectedStorage D:\WINDOWS.0\system32\lsass.exe
20:34:54.0296 0x0ef4 ProtectedStorage - ok
20:34:54.0296 0x0ef4 [ 09298EC810B07E5D582CB3A3F9255424, 35473A1BE25AC289474090EB0806AC6B3035DC33D1F3DF97A14BF1E361AC6AC3 ] PSched D:\WINDOWS.0\system32\DRIVERS\psched.sys
20:34:54.0312 0x0ef4 PSched - ok
20:34:54.0343 0x0ef4 [ 80D317BD1C3DBC5D4FE7B1678C60CADD, DA76804B55D0CAB3DDD01EFC06673764AE4860693375C658B6063FB14AF7F12C ] Ptilink D:\WINDOWS.0\system32\DRIVERS\ptilink.sys
20:34:54.0359 0x0ef4 Ptilink - ok
20:34:54.0375 0x0ef4 [ D86B4A68565E444D76457F14172C875A, 06B1CF81A62B3DAA8D0C5A8B88C56A504DE8E9278C520F754AF363A6676C58B0 ] PxHelp20 D:\WINDOWS.0\system32\Drivers\PxHelp20.sys
20:34:54.0375 0x0ef4 PxHelp20 - ok
20:34:54.0375 0x0ef4 ql1080 - ok
20:34:54.0375 0x0ef4 Ql10wnt - ok
20:34:54.0375 0x0ef4 ql12160 - ok
20:34:54.0390 0x0ef4 ql1240 - ok
20:34:54.0390 0x0ef4 ql1280 - ok
20:34:54.0406 0x0ef4 [ FE0D99D6F31E4FAD8159F690D68DED9C, 998685622ABE631984B7E4DBF91AB3594B1F574378D75EB9F6265F4650470692 ] RasAcd D:\WINDOWS.0\system32\DRIVERS\rasacd.sys
20:34:54.0406 0x0ef4 RasAcd - ok
20:34:54.0437 0x0ef4 [ AD188BE7BDF94E8DF4CA0A55C00A5073, C7D76CB579FAEBCCC2873499441BACDD6BD6668ACF5ED7F31862656E96E2B20C ] RasAuto D:\WINDOWS.0\System32\rasauto.dll
20:34:54.0453 0x0ef4 RasAuto - ok
20:34:54.0468 0x0ef4 [ 11B4A627BC9614B885C4969BFA5FF8A6, EAE0A412A2B0F68919C32A96B3A08CC1A06585E4998819F5C9051745F63FF5AD ] Rasl2tp D:\WINDOWS.0\system32\DRIVERS\rasl2tp.sys
20:34:54.0484 0x0ef4 Rasl2tp - ok
20:34:54.0515 0x0ef4 [ 76A9A3CBEADD68CC57CDA5E1D7448235, 4AFD048C5D2306AB8DE46F3AA60AC0213333DDA3B09A9E91F7585DB6EB978EC8 ] RasMan D:\WINDOWS.0\System32\rasmans.dll
20:34:54.0531 0x0ef4 RasMan - ok
20:34:54.0531 0x0ef4 [ 5BC962F2654137C9909C3D4603587DEE, A5CE5653D0105240F5E86CFAAB89E7917D42D939E2F27A5A7D6979289CA651B8 ] RasPppoe D:\WINDOWS.0\system32\DRIVERS\raspppoe.sys
20:34:54.0546 0x0ef4 RasPppoe - ok
20:34:54.0562 0x0ef4 [ FDBB1D60066FCFBB7452FD8F9829B242, 10A2DACF944BD000032EBA8C095CB3D879CC55B28C377ADF6E52E508E47444DB ] Raspti D:\WINDOWS.0\system32\DRIVERS\raspti.sys
20:34:54.0578 0x0ef4 Raspti - ok
20:34:54.0593 0x0ef4 [ 7AD224AD1A1437FE28D89CF22B17780A, 6645235CA27D671954E3557FA37082881C3D7D47492C71264CD8CB8D108EC801 ] Rdbss D:\WINDOWS.0\system32\DRIVERS\rdbss.sys
20:34:54.0609 0x0ef4 Rdbss - ok
20:34:54.0609 0x0ef4 [ 4912D5B403614CE99C28420F75353332, 975341ECD660209987B5E5171B8315E032439E408CBE8A5986E67AF767F373BB ] RDPCDD D:\WINDOWS.0\system32\DRIVERS\RDPCDD.sys
20:34:54.0625 0x0ef4 RDPCDD - ok
20:34:54.0640 0x0ef4 [ 15CABD0F7C00C47C70124907916AF3F1, 66B5C978B7FB6359AD8BAC9F568FE9D469E358FEAB07B1F129BA9E85F1DF723E ] rdpdr D:\WINDOWS.0\system32\DRIVERS\rdpdr.sys
20:34:54.0671 0x0ef4 rdpdr - ok
20:34:54.0703 0x0ef4 [ 43AF5212BD8FB5BA6EED9754358BD8F7, AF330F61CECA4AFA359CEABC5EB3227E6B56A9A2DCE50701381D665122D7356D ] RDPWD D:\WINDOWS.0\system32\drivers\RDPWD.sys
20:34:54.0718 0x0ef4 RDPWD - ok
20:34:54.0734 0x0ef4 [ 3C37BF86641BDA977C3BF8A840F3B7FA, AB9A6E54DBA3F4561CD4837372BECCE0D73943D02E3288F944333039375AC08C ] RDSessMgr D:\WINDOWS.0\system32\sessmgr.exe
20:34:54.0765 0x0ef4 RDSessMgr - ok
20:34:54.0781 0x0ef4 [ F828DD7E1419B6653894A8F97A0094C5, E6150E1F598BA4CFEDB8FF075BC0D576518C331B864388F1CAE8812EFF106ECF ] redbook D:\WINDOWS.0\system32\DRIVERS\redbook.sys
20:34:54.0796 0x0ef4 redbook - ok
20:34:54.0796 0x0ef4 RegFilter - ok
20:34:54.0828 0x0ef4 [ 7E699FF5F59B5D9DE5390E3C34C67CF5, 3FCF0442D80AB181FED4303E570378736AA1F8718C0B8B70F689A1E45200FFE4 ] RemoteAccess D:\WINDOWS.0\System32\mprdim.dll
20:34:54.0843 0x0ef4 RemoteAccess - ok
20:34:54.0875 0x0ef4 [ 5B19B557B0C188210A56A6B699D90B8F, 0FA880B81AE615206FD1738B83428AAA491D54B24168339DE6E87FDE8C6C14B0 ] RemoteRegistry D:\WINDOWS.0\system32\regsvc.dll
20:34:54.0890 0x0ef4 RemoteRegistry - ok
20:34:54.0906 0x0ef4 [ AAED593F84AFA419BBAE8572AF87CF6A, CC0FFC5A69394C8830DC66320DA01A820BBF41AD7E57D0FC343561DC5EF9A360 ] RpcLocator D:\WINDOWS.0\system32\locator.exe
20:34:54.0921 0x0ef4 RpcLocator - ok
20:34:54.0953 0x0ef4 [ 6B27A5C03DFB94B4245739065431322C, 6AEAC16AB4E0DFD25123AAF4D4181FEE1B919B7B2793117006CE8CF30E826CFD ] RpcSs D:\WINDOWS.0\System32\rpcss.dll
20:34:54.0968 0x0ef4 RpcSs - ok
20:34:55.0000 0x0ef4 [ 471B3F9741D762ABE75E9DEEA4787E47, D9ADE42965EC22AEB4B2AD21D429C3C8232A60AA9853DEFDA7AED86A13FE8623 ] RSVP D:\WINDOWS.0\system32\rsvp.exe
20:34:55.0015 0x0ef4 RSVP - ok
20:34:55.0031 0x0ef4 [ BF2466B3E18E970D8A976FB95FC1CA85, F7794B5D12DC5D820A162850F4388E2AA80426AD07CB221799CF941C682AB501 ] SamSs D:\WINDOWS.0\system32\lsass.exe
20:34:55.0031 0x0ef4 SamSs - ok
20:34:55.0046 0x0ef4 [ 86D007E7A654B9A71D1D7D856B104353, 7B1DE53D637A5FC9619D5D07C48927AFEC89D959207F6F2E2F45DD054EEA04C7 ] SCardSvr D:\WINDOWS.0\System32\SCardSvr.exe
20:34:55.0078 0x0ef4 SCardSvr - ok
20:34:55.0125 0x0ef4 [ 0A9A7365A1CA4319AA7C1D6CD8E4EAFA, 0B582F47BD70732BAC48B8B86E5D06CE7F299A20E8177F3F2E6F28217C3FB605 ] Schedule D:\WINDOWS.0\system32\schedsvc.dll
20:34:55.0140 0x0ef4 Schedule - ok
20:34:55.0171 0x0ef4 [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] Secdrv D:\WINDOWS.0\system32\DRIVERS\secdrv.sys
20:34:55.0187 0x0ef4 Secdrv - ok
20:34:55.0203 0x0ef4 [ CBE612E2BB6A10E3563336191EDA1250, C331797DC3569F0E715766561DE2562F60B924378842246C35D2B1CF867E9D96 ] seclogon D:\WINDOWS.0\System32\seclogon.dll
20:34:55.0234 0x0ef4 seclogon - ok
20:34:55.0250 0x0ef4 [ 7FDD5D0684ECA8C1F68B4D99D124DCD0, 7105B026F966A992430F86C3698ABE15EC73E4772F1A3E362E29FD5247A5DCA6 ] SENS D:\WINDOWS.0\system32\sens.dll
20:34:55.0250 0x0ef4 SENS - ok
20:34:55.0250 0x0ef4 [ 0F29512CCD6BEAD730039FB4BD2C85CE, 4F98AE390D1B14A755700DD6CEFB9CF921F0404AF2145D2D7E5F52394F87C6A5 ] serenum D:\WINDOWS.0\system32\DRIVERS\serenum.sys
20:34:55.0265 0x0ef4 serenum - ok
20:34:55.0281 0x0ef4 [ CCA207A8896D4C6A0C9CE29A4AE411A7, 5999B39242283CD803319AADCA171CCCC6E2A40FB2FAFA51B1D29F3FF2DD8D6C ] Serial D:\WINDOWS.0\system32\DRIVERS\serial.sys
20:34:55.0312 0x0ef4 Serial - ok
20:34:55.0328 0x0ef4 [ 8E6B8C671615D126FDC553D1E2DE5562, CEEC0067514555D5CA489F50E3D7562FCA8DB8E952C3C878604C9277FC77959F ] Sfloppy D:\WINDOWS.0\system32\DRIVERS\sfloppy.sys
20:34:55.0343 0x0ef4 Sfloppy - ok
20:34:55.0375 0x0ef4 [ 83F41D0D89645D7235C051AB1D9523AC, B681F33EEAA511D6A2DCB9FBAA407B739184C9FF6067C6B7E51F1FC37E9D4DD7 ] SharedAccess D:\WINDOWS.0\System32\ipnathlp.dll
20:34:55.0390 0x0ef4 SharedAccess - ok
20:34:55.0390 0x0ef4 [ 99BC0B50F511924348BE19C7C7313BBF, A1006C687BD352F700B140DC741515A0CDD9E1352C0FBD1EE410D404E344444B ] ShellHWDetection D:\WINDOWS.0\System32\shsvcs.dll
20:34:55.0406 0x0ef4 ShellHWDetection - ok
20:34:55.0406 0x0ef4 Simbad - ok
20:34:55.0421 0x0ef4 [ 14BB60A4F1C5291217A05D5728C403E6, 0F4DD318A58576DC867AB9DDD33393948DB795C187DED5D6DDD7D6A54E0F157B ] SmartDefragDriver D:\WINDOWS.0\system32\Drivers\SmartDefragDriver.sys
20:34:55.0421 0x0ef4 SmartDefragDriver - ok
20:34:55.0437 0x0ef4 Sparrow - ok
20:34:55.0453 0x0ef4 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F, DD17733CBB370FCA08F0296704D7CBEACA3C8F76D0ABE4761C3B1FFDF7481D9E ] splitter D:\WINDOWS.0\system32\drivers\splitter.sys
20:34:55.0453 0x0ef4 splitter - ok
20:34:55.0468 0x0ef4 [ 60784F891563FB1B767F70117FC2428F, E0B07F08E60FFBAD36C2E58180F4B2A16DCA47716044CBE0213DF7B74D742F1F ] Spooler D:\WINDOWS.0\system32\spoolsv.exe
20:34:55.0500 0x0ef4 Spooler - ok
20:34:55.0718 0x0ef4 [ 76BB022C2FB6902FD5BDD4F78FC13A5D, 6031CB2344D7277FC703480EB43CF856A0F8F818EA98FF26A2CA532336CD2DFA ] sr D:\WINDOWS.0\system32\DRIVERS\sr.sys
20:34:55.0718 0x0ef4 sr - ok
20:34:55.0765 0x0ef4 [ 3805DF0AC4296A34BA4BF93B346CC378, B57A14F1B7B0997E619DDD62B73157AA2399A9852166FB58139CBB358A88F6F3 ] srservice D:\WINDOWS.0\system32\srsvc.dll
20:34:55.0937 0x0ef4 srservice - ok
20:34:56.0031 0x0ef4 [ 47DDFC2F003F7F9F0592C6874962A2E7, 17C643BD4EB09B5666FE41817DC785BE04A6E491CE79E8E5A702CDBD98E1BDD7 ] Srv D:\WINDOWS.0\system32\DRIVERS\srv.sys
20:34:56.0109 0x0ef4 Srv - ok
20:34:56.0140 0x0ef4 [ 0A5679B3714EDAB99E357057EE88FCA6, 01E1A101FFF48402C77E385A78FEF27876E04533B60EB1C18558A737E57E5FA8 ] SSDPSRV D:\WINDOWS.0\System32\ssdpsrv.dll
20:34:56.0171 0x0ef4 SSDPSRV - ok
20:34:56.0187 0x0ef4 [ A36EE93698802CD899F98BFD553D8185, 224CFED921EA230FF8025D259E34968FD2C0FD34BB3A918FB4B9B8BA42BEA5D3 ] ssmdrv D:\WINDOWS.0\system32\DRIVERS\ssmdrv.sys
20:34:56.0187 0x0ef4 ssmdrv - ok
20:34:56.0203 0x0ef4 [ E57B778208C783D8DEBAB320C16A1B82, D9B0ACAF219D377E91737337466137F1AC78731659C1F0531BA3D9191DADC483 ] StarOpen D:\WINDOWS.0\system32\drivers\StarOpen.sys
20:34:56.0203 0x0ef4 StarOpen - ok
20:34:56.0234 0x0ef4 Steam Client Service - ok
20:34:56.0265 0x0ef4 [ 8BAD69CBAC032D4BBACFCE0306174C30, 2AA0DA710FCBFF38FE8DA91EE02E7A4503269347E61F8D3246FCA3384BBA2305 ] stisvc D:\WINDOWS.0\system32\wiaservc.dll
20:34:56.0296 0x0ef4 stisvc - ok
20:34:56.0312 0x0ef4 [ 3941D127AEF12E93ADDF6FE6EE027E0F, EA1F0E32E1C5E90FA4AAC421DEBBE086512340758D3217A6334E886BCE638B51 ] swenum D:\WINDOWS.0\system32\DRIVERS\swenum.sys
20:34:56.0312 0x0ef4 swenum - ok
20:34:56.0328 0x0ef4 [ 8CE882BCC6CF8A62F2B2323D95CB3D01, B408550A581F3DA222355964AFA4E976AD8471F0AA37573C42C4948AE5A23A3B ] swmidi D:\WINDOWS.0\system32\drivers\swmidi.sys
20:34:56.0359 0x0ef4 swmidi - ok
20:34:56.0359 0x0ef4 SwPrv - ok
20:34:56.0359 0x0ef4 symc810 - ok
20:34:56.0359 0x0ef4 symc8xx - ok
20:34:56.0359 0x0ef4 sym_hi - ok
20:34:56.0375 0x0ef4 sym_u3 - ok
20:34:56.0390 0x0ef4 [ 8B83F3ED0F1688B4958F77CD6D2BF290, 546D3602183702B4F53E84413CFA2C933D64C8540378E54A8DCD148F3F36A2DA ] sysaudio D:\WINDOWS.0\system32\drivers\sysaudio.sys
20:34:56.0406 0x0ef4 sysaudio - ok
20:34:56.0421 0x0ef4 [ C7ABBC59B43274B1109DF6B24D617051, 4384CA0AA6CE9B603CF7DB775A3C721E46715D5B120B94FB57DEADAADE18535B ] SysmonLog D:\WINDOWS.0\system32\smlogsvc.exe
20:34:56.0437 0x0ef4 SysmonLog - ok
20:34:56.0437 0x0ef4 taphss - ok
20:34:56.0468 0x0ef4 [ 3CB78C17BB664637787C9A1C98F79C38, F35C31F6B7F366CB949D1044B357C76DEC9170441C5E559802794F62B72FD255 ] TapiSrv D:\WINDOWS.0\System32\tapisrv.dll
20:34:56.0484 0x0ef4 TapiSrv - ok
20:34:56.0531 0x0ef4 [ 9AEFA14BD6B182D61E3119FA5F436D3D, EA29E49434585409272E7901AF89771FE9D6E911A7DC44AB3C7020CFF8A44552 ] Tcpip D:\WINDOWS.0\system32\DRIVERS\tcpip.sys
20:34:56.0531 0x0ef4 Tcpip - ok
20:34:56.0578 0x0ef4 [ 6471A66807F5E104E4885F5B67349397, F35CBFFB8BB235CCE30EF94A5273333900DD49FD506BF9D55D99A320B8A53A5A ] TDPIPE D:\WINDOWS.0\system32\drivers\TDPIPE.sys
20:34:56.0578 0x0ef4 TDPIPE - ok
20:34:56.0593 0x0ef4 [ C56B6D0402371CF3700EB322EF3AAF61, 7743FA4C734BCE38EFB1CA69BC17364D8421E2CD172F856F7E38E7AE1EE93F2F ] TDTCP D:\WINDOWS.0\system32\drivers\TDTCP.sys
20:34:56.0625 0x0ef4 TDTCP - ok
20:34:56.0625 0x0ef4 [ 88155247177638048422893737429D9E, B6D4E8691917946332C2208D01F8C8281978C1AD1E9951C5D99DF0D49AC34B3B ] TermDD D:\WINDOWS.0\system32\DRIVERS\termdd.sys
20:34:56.0640 0x0ef4 TermDD - ok
20:34:56.0671 0x0ef4 [ FF3477C03BE7201C294C35F684B3479F, D6246521539BA4ACD022D26983182F5E323D2EF1EA7C54265A248C43A1CE5202 ] TermService D:\WINDOWS.0\System32\termsrv.dll
20:34:56.0703 0x0ef4 TermService - ok
20:34:56.0718 0x0ef4 [ 99BC0B50F511924348BE19C7C7313BBF, A1006C687BD352F700B140DC741515A0CDD9E1352C0FBD1EE410D404E344444B ] Themes D:\WINDOWS.0\System32\shsvcs.dll
20:34:56.0734 0x0ef4 Themes - ok
20:34:56.0750 0x0ef4 [ DB7205804759FF62C34E3EFD8A4CC76A, 13A4248F528CE98ACA66898E56822E4FC49B11F491FF1F61A687BA601BF0A802 ] TlntSvr D:\WINDOWS.0\system32\tlntsvr.exe
20:34:56.0765 0x0ef4 TlntSvr - ok
20:34:56.0765 0x0ef4 TosIde - ok
20:34:56.0781 0x0ef4 [ 55BCA12F7F523D35CA3CB833C725F54E, 849FB1AE31B143B14B298BBC0D91230693D41DEB95F46516878F53A7F4186C38 ] TrkWks D:\WINDOWS.0\system32\trkwks.dll
20:34:56.0812 0x0ef4 TrkWks - ok
20:34:56.0828 0x0ef4 [ 5787B80C2E3C5E2F56C2A233D91FA2C9, 3774905CF77954DFCECDA5BCC7CDE3D0ED72712BFAAD85ADAE5246306447E46C ] Udfs D:\WINDOWS.0\system32\drivers\Udfs.sys
20:34:56.0843 0x0ef4 Udfs - ok
20:34:56.0843 0x0ef4 ultra - ok
20:34:56.0890 0x0ef4 [ 402DDC88356B1BAC0EE3DD1580C76A31, 32A686595710336A6BFD54C03F552AE39439611662F84EF5D24193AE5665C6F3 ] Update D:\WINDOWS.0\system32\DRIVERS\update.sys
20:34:56.0921 0x0ef4 Update - ok
20:34:56.0953 0x0ef4 [ 1EBAFEB9A3FBDC41B8D9C7F0F687AD91, 7746916DB48E3F5B243B63C066596AD9037A494BF1AD935946DD04AC85D983DF ] upnphost D:\WINDOWS.0\System32\upnphost.dll
20:34:56.0968 0x0ef4 upnphost - ok
20:34:56.0968 0x0ef4 [ 05365FB38FCA1E98F7A566AAAF5D1815, 16843048CEEC3DAA3B953A12FF1EE339E86783A08F2A56DA7F94AD9F9717D77D ] UPS D:\WINDOWS.0\System32\ups.exe
20:34:56.0984 0x0ef4 UPS - ok
20:34:57.0000 0x0ef4 UrlFilter - ok
20:34:57.0000 0x0ef4 [ 1B611611C28D2DF25BC057D79C6F13FC, B0D86F63E44B40413BBAE6402CC088046CFAE082D41BBC2ED5A916293356B846 ] usbccgp D:\WINDOWS.0\system32\DRIVERS\usbccgp.sys
20:34:57.0000 0x0ef4 usbccgp - ok
20:34:57.0015 0x0ef4 [ 4BAC8DF07F1D8434FC640E677A62204E, 76C1351AF6752224BF59DEEE0F8665FE699F3DFD679F5BCD01C7D9383E6402A4 ] usbehci D:\WINDOWS.0\system32\DRIVERS\usbehci.sys
20:34:57.0015 0x0ef4 usbehci - ok
20:34:57.0031 0x0ef4 [ 1AB3CDDE553B6E064D2E754EFE20285C, A99C4528C4227B1E96847614745AAFACD3C5F1BDFE435214DBF78740FFB300FE ] usbhub D:\WINDOWS.0\system32\DRIVERS\usbhub.sys
20:34:57.0046 0x0ef4 usbhub - ok
20:34:57.0078 0x0ef4 [ 0DAECCE65366EA32B162F85F07C6753B, 3C33AC2FC95E876933F2016CF0CDA2745491679728684DA8DF95A515CE4804BD ] usbohci D:\WINDOWS.0\system32\DRIVERS\usbohci.sys
20:34:57.0093 0x0ef4 usbohci - ok
20:34:57.0109 0x0ef4 [ F8EDE2B6928970DCE3D5614C27D9E7F6, 6E5EBBC8B70C1D593634DAF0C190DEADFDA18C3CBC8F552A76F156F3869EF05B ] usbscan D:\WINDOWS.0\system32\DRIVERS\usbscan.sys
20:34:57.0109 0x0ef4 usbscan - ok
20:34:57.0125 0x0ef4 [ A32426D9B14A089EAA1D922E0C5801A9, ED1DC52EE45F8EAD3AEC4B1F817BB25634141CF48295494C5947DCE6CF7A9817 ] USBSTOR D:\WINDOWS.0\system32\DRIVERS\USBSTOR.SYS
20:34:57.0140 0x0ef4 USBSTOR - ok
20:34:57.0156 0x0ef4 [ 0D3A8FAFCEACD8B7625CD549757A7DF1, B9CFDEFCD66AA139F3DC2F967B184669532922563AD5A71769BABDC4370D065E ] VgaSave D:\WINDOWS.0\System32\drivers\vga.sys
20:34:57.0171 0x0ef4 VgaSave - ok
20:34:57.0171 0x0ef4 ViaIde - ok
20:34:57.0187 0x0ef4 [ 4C8FCB5CC53AAB716D810740FE59D025, 010EAC43DBED700B73E4FC908FAAF9F6A0168EBBD5D86751E49BC33AAA18BFA4 ] VolSnap D:\WINDOWS.0\system32\drivers\VolSnap.sys
20:34:57.0187 0x0ef4 VolSnap - ok
20:34:57.0218 0x0ef4 [ 7A9DB3A67C333BF0BD42E42B8596854B, D31A9A3B1AAAB373EDD73B674102395212FCB616F829E938B7B2B7BE7D4752C5 ] VSS D:\WINDOWS.0\System32\vssvc.exe
20:34:57.0250 0x0ef4 VSS - ok
20:34:57.0265 0x0ef4 [ 54AF4B1D5459500EF0937F6D33B1914F, FA1876888BCB9C72A92369DBED4FF1A8666784523FB41E618FA0919490FCDDB9 ] W32Time D:\WINDOWS.0\system32\w32time.dll
20:34:57.0296 0x0ef4 W32Time - ok
20:34:57.0312 0x0ef4 [ E20B95BAEDB550F32DD489265C1DA1F6, 5589B2067E6C9FBA290D8C5EADDC198EBAF39C50C3CD7D2BC5CDA7CBFBC445E5 ] Wanarp D:\WINDOWS.0\system32\DRIVERS\wanarp.sys
20:34:57.0328 0x0ef4 Wanarp - ok
20:34:57.0328 0x0ef4 WDICA - ok
20:34:57.0343 0x0ef4 [ 6768ACF64B18196494413695F0C3A00F, 3A8F8586F1D997D19A8478345338D2AECD785AEABDB61531DD3F92003D3230A5 ] wdmaud D:\WINDOWS.0\system32\drivers\wdmaud.sys
20:34:57.0375 0x0ef4 wdmaud - ok
20:34:57.0390 0x0ef4 [ 77A354E28153AD2D5E120A5A8687BC06, 8B2D37A4443501C0A8E70BC2079BE27F0A36FD07B561E6F68B40A72EABBC2DFE ] WebClient D:\WINDOWS.0\System32\webclnt.dll
20:34:57.0406 0x0ef4 WebClient - ok
20:34:57.0578 0x0ef4 [ 2D0E4ED081963804CCC196A0929275B5, E1D75C7D7233D81DFDE13160B0C80138DF8B35230D04FB79B367A52FACF69BF8 ] winmgmt D:\WINDOWS.0\system32\wbem\WMIsvc.dll
20:34:57.0593 0x0ef4 winmgmt - ok
20:34:57.0687 0x0ef4 [ 18F347402DA544A780949B8FDF83351B, D1AD972D438A51A4998FEF68670395DAE3353240AD2A17F35794287AF0826FFB ] WinRM D:\WINDOWS.0\system32\WsmSvc.dll
20:34:57.0750 0x0ef4 WinRM - ok
20:34:57.0781 0x0ef4 [ C7E39EA41233E9F5B86C8DA3A9F1E4A8, 98C21DEEB7124426D749FACDAD06EBD7F500AE5C465A98D558919C2A51C08554 ] WmdmPmSN D:\WINDOWS.0\system32\mspmsnsv.dll
20:34:57.0796 0x0ef4 WmdmPmSN - ok
20:34:57.0843 0x0ef4 [ E76F8807070ED04E7408A86D6D3A6137, BFCF5361B7335760A7AE4B6958DE516A27AC60AA09135A46F0B49F588FAFE3A0 ] Wmi D:\WINDOWS.0\System32\advapi32.dll
20:34:57.0875 0x0ef4 Wmi - ok
20:34:57.0875 0x0ef4 [ C42584FD66CE9E17403AEBCA199F7BDB, E3F2E1066F36AE5D33D4482239B2E556BE0C137923C9A120DFB36EC82F2E77B0 ] WmiAcpi D:\WINDOWS.0\system32\DRIVERS\wmiacpi.sys
20:34:57.0875 0x0ef4 WmiAcpi - ok
20:34:57.0890 0x0ef4 [ E0673F1106E62A68D2257E376079F821, 12992F18C9653050B10DC61D12988067933FCFDF02123D3A7EF5DE607A785DDC ] WmiApSrv D:\WINDOWS.0\system32\wbem\wmiapsrv.exe
20:34:57.0906 0x0ef4 WmiApSrv - ok
20:34:57.0984 0x0ef4 [ 15673BD0B86150CB8E27766059C72A9B, 56C23289A8BFF4945EE532CF6D62D3EC81B827CA15A359F30A327789F9FE9CAF ] WPFFontCache_v0400 D:\WINDOWS.0\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
20:34:58.0015 0x0ef4 WPFFontCache_v0400 - ok
20:34:58.0031 0x0ef4 [ 6ABE6E225ADB5A751622A9CC3BC19CE8, 4061C5D0F051DFF1730E2A3BFC1CCA97B29602FC50F10F6B44D93B0D28F42024 ] WS2IFSL D:\WINDOWS.0\System32\drivers\ws2ifsl.sys
20:34:58.0046 0x0ef4 WS2IFSL - ok
20:34:58.0078 0x0ef4 [ 7C278E6408D1DCE642230C0585A854D5, DA46079A04F6E8E3441E4AE454AEAC02B3E935DE29CE7F6D4476F57867FCC12A ] wscsvc D:\WINDOWS.0\system32\wscsvc.dll
20:34:58.0093 0x0ef4 wscsvc - ok
20:34:58.0109 0x0ef4 [ 35321FB577CDC98CE3EB3A3EB9E4610A, C9A6F5CF282D8FCB3CDFCC4B306013480E78E1B664E1A60A4E27B161F9FFD4CD ] wuauserv D:\WINDOWS.0\system32\wuauserv.dll
20:34:58.0109 0x0ef4 wuauserv - ok
20:34:58.0156 0x0ef4 [ 81DC3F549F44B1C1FFF022DEC9ECF30B, 3D14BFEA539F9CEB16555BD56C5E3C7C8F6692FC62C2789F8AAEA1C042E63940 ] WZCSVC D:\WINDOWS.0\System32\wzcsvc.dll
20:34:58.0187 0x0ef4 WZCSVC - ok
20:34:58.0218 0x0ef4 [ 295D21F14C335B53CB8154E5B1F892B9, 9418477C2E3EA93E93D931A4EDD4500DA568FAD6040204B5201D1080203B0BBC ] xmlprov D:\WINDOWS.0\System32\xmlprov.dll
20:34:58.0234 0x0ef4 xmlprov - ok
20:34:58.0250 0x0ef4 ================ Scan global ===============================
20:34:58.0265 0x0ef4 [ 42F1F4C0AFB08410E5F02D4B13EBB623, 924C30587C51C0D1E1F47991969AF492A644552E15F2480EA991DCB74A3E68D5 ] D:\WINDOWS.0\system32\basesrv.dll
20:34:58.0312 0x0ef4 [ 69AE2B2E6968C316536E5B10B9702E63, D9C5DA7A20DDE69D91E72400C3F06F3CB099DEF42EA6C53FCE076258A0C22391 ] D:\WINDOWS.0\system32\winsrv.dll
20:34:58.0343 0x0ef4 [ 69AE2B2E6968C316536E5B10B9702E63, D9C5DA7A20DDE69D91E72400C3F06F3CB099DEF42EA6C53FCE076258A0C22391 ] D:\WINDOWS.0\system32\winsrv.dll
20:34:58.0359 0x0ef4 [ 65DF52F5B8B6E9BBD183505225C37315, 59C606977DB40A3443DFF0BE2A4C761824881B22C9FDB3D23F6486DB580E92A4 ] D:\WINDOWS.0\system32\services.exe
20:34:58.0359 0x0ef4 [ Global ] - ok
20:34:58.0359 0x0ef4 ================ Scan MBR ==================================
20:34:58.0390 0x0ef4 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk0\DR0
20:34:58.0687 0x0ef4 \Device\Harddisk0\DR0 - ok
20:34:58.0687 0x0ef4 ================ Scan VBR ==================================
20:34:58.0687 0x0ef4 [ 43BC28783569EA1C30B16155E832C76F ] \Device\Harddisk0\DR0\Partition1
20:34:58.0687 0x0ef4 \Device\Harddisk0\DR0\Partition1 - ok
20:34:58.0703 0x0ef4 [ A112624515101B845E6DD2298E696C74 ] \Device\Harddisk0\DR0\Partition2
20:34:58.0703 0x0ef4 \Device\Harddisk0\DR0\Partition2 - ok
20:34:58.0703 0x0ef4 Waiting for KSN requests completion. In queue: 122
20:34:59.0703 0x0ef4 Waiting for KSN requests completion. In queue: 122
20:35:00.0703 0x0ef4 Waiting for KSN requests completion. In queue: 122
20:35:01.0703 0x0ef4 Waiting for KSN requests completion. In queue: 122
20:35:02.0703 0x0ef4 Waiting for KSN requests completion. In queue: 122
20:35:03.0734 0x0ef4 AV detected via SS1: Avira Desktop, 14.0.1.519, enabled, updated
20:35:03.0734 0x0ef4 Win FW state via NFM: enabled
20:35:17.0125 0x0ef4 ============================================================
20:35:17.0125 0x0ef4 Scan finished
20:35:17.0125 0x0ef4 ============================================================
20:35:17.0125 0x0b98 Detected object count: 0
20:35:17.0125 0x0b98 Actual detected object count: 0




Attach DDS report



.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 20.1.2013 18:49:34
System Uptime: 4.12.2013 16:56:49 (4 hours ago)
.
Motherboard: | | K10N750SLI-WiFi
Processor: AMD Phenom(tm) 9550 Quad-Core Processor | CPUSocket | 2199/200mhz
.
==== Disk Partitions =========================
.
A: is Removable
C: is FIXED (NTFS) - 279 GiB total, 125,668 GiB free.
D: is FIXED (NTFS) - 20 GiB total, 0,308 GiB free.
E: is CDROM ()
.
==== Disabled Device Manager Items =============
.
Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: RTL8187_Wireless
Device ID: USB\VID_0BDA&PID_8187\0015AF74C7CE
Manufacturer:
Name: RTL8187_Wireless
PNP Device ID: USB\VID_0BDA&PID_8187\0015AF74C7CE
Service:
.
==== System Restore Points ===================
.
RP296: 1.12.2013 18:53:27 - Software Distribution Service 3.0
RP297: 1.12.2013 19:10:24 - Software Distribution Service 3.0
RP298: 1.12.2013 19:15:17 - Software Distribution Service 3.0
RP299: 1.12.2013 19:17:52 - Software Distribution Service 3.0
RP300: 1.12.2013 19:21:12 - Software Distribution Service 3.0
RP301: 1.12.2013 19:26:09 - Software Distribution Service 3.0
RP302: 1.12.2013 19:28:48 - Software Distribution Service 3.0
RP303: 1.12.2013 19:31:24 - Software Distribution Service 3.0
RP304: 1.12.2013 19:36:15 - Software Distribution Service 3.0
RP305: 1.12.2013 19:40:55 - Software Distribution Service 3.0
RP306: 1.12.2013 19:44:01 - Software Distribution Service 3.0
RP307: 1.12.2013 19:59:37 - Software Distribution Service 3.0
RP308: 1.12.2013 20:02:28 - Software Distribution Service 3.0
RP309: 1.12.2013 21:18:08 - Software Distribution Service 3.0
RP310: 1.12.2013 21:30:23 - Software Distribution Service 3.0
RP311: 1.12.2013 21:36:55 - Software Distribution Service 3.0
RP312: 2.12.2013 10:49:18 - avast! Free Antivirus Setup
RP313: 3.12.2013 14:08:30 - System Checkpoint
RP314: 4.12.2013 15:00:29 - Removed Avira SearchFree Toolbar
RP315: 4.12.2013 15:50:21 - Software Distribution Service 3.0
RP316: 4.12.2013 16:12:42 - Software Distribution Service 3.0
RP317: 4.12.2013 16:19:45 - Software Distribution Service 3.0
RP318: 4.12.2013 17:57:53 - Installed Driver Detective.
.
==== Installed Programs ======================
.
Adobe Flash Player 11 ActiveX
Adobe Flash Player 11 Plugin
Adobe Reader XI (11.0.05)
Advanced SystemCare 6
AMD Processor Driver
µTorrent
Avira Free Antivirus
Avira SearchFree Toolbar
CCleaner
CDBurnerXP
DivX Converter
DivX Plus DirectShow Filters
DivX Plus Web Player
DivX Setup
DivX Version Checker
Driver Detective
DriverIdentifier 3.9
ESET Online Scanner v3
File Uploader
Google Update Helper
HitmanPro 3.7
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows XP (KB954550-v5)
Hotfix for Windows XP (KB976002-v5)
IObit Apps Toolbar v7.3
IrfanView (remove only)
Java 7 Update 25
Java Auto Updater
Java(TM) 6 Update 20
JetClean
Mass Effect 2
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Extended
Microsoft Base Smart Card Cryptographic Service Provider Package
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
Mozilla Firefox 25.0.1 (x86 en-US)
Mozilla Maintenance Service
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
Neverwinter Nights 2
Nikon Message Center
Nikon Transfer
NVIDIA Control Panel 320.18
NVIDIA Display Control Panel
NVIDIA Drivers
NVIDIA GeForce Experience 1.5
NVIDIA Graphics Driver 320.18
NVIDIA Install Application
NVIDIA nView 140.54
NVIDIA nView Desktop Manager
NVIDIA PhysX
NVIDIA PhysX System Software 9.12.1031
NVIDIA Update 4.11.9
NVIDIA Update Components
OpenOffice 4.0.0
Origin
Realtek High Definition Audio Driver
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2604111)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2736416)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2840629)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2861697)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2736428)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2804576)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2832407)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2835393)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2858302v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2861188)
Security Update for Microsoft .NET Framework 4 Extended (KB2487367)
Security Update for Microsoft .NET Framework 4 Extended (KB2656351)
Security Update for Microsoft .NET Framework 4 Extended (KB2736428)
Security Update for Microsoft .NET Framework 4 Extended (KB2742595)
Security Update for Microsoft .NET Framework 4 Extended (KB2858302v2)
Security Update for Windows Internet Explorer 8 (KB2510531)
Security Update for Windows Internet Explorer 8 (KB2544521)
Security Update for Windows Internet Explorer 8 (KB2618444)
Security Update for Windows Internet Explorer 8 (KB2744842)
Security Update for Windows Internet Explorer 8 (KB2761465)
Security Update for Windows Internet Explorer 8 (KB2792100)
Security Update for Windows Internet Explorer 8 (KB2797052)
Security Update for Windows Internet Explorer 8 (KB2799329)
Security Update for Windows Internet Explorer 8 (KB2817183)
Security Update for Windows Internet Explorer 8 (KB2829530)
Security Update for Windows Internet Explorer 8 (KB2838727)
Security Update for Windows Internet Explorer 8 (KB2846071)
Security Update for Windows Internet Explorer 8 (KB2847204)
Security Update for Windows Internet Explorer 8 (KB982381)
Security Update for Windows Media Player (KB2803821-v2)
Security Update for Windows XP (KB923789)
 

Virusfighter7

New Member
Thread author
Dec 3, 2013
13
That's odd, I could have sworn I copied all 3...in any case, here it is.


[attachment=6460]
 

Attachments

  • dds.txt
    12.9 KB · Views: 106

TwinHeadedEagle

Level 41
Verified
Mar 8, 2013
22,627
Please download zoek.zip or zoek.rar by smeenk (
Zoek_icon.png
) from here or here and save it to your Desktop.
Unpack the archive...
  • Close any open browsers
  • Temporarily disable your AntiVirus program. (If necessary)
    If you are unsure how to do this please read this or this Instruction.
  • Double click on zoek.exe to run the tool .
    Please wait while the tool does not start...
  • Copy the text present inside the code box below and paste it into the large window in the zoek tool:

    Code:
    emptyclsid;
    shortcutfix;
    emptyalltemp; 
    autoclean;
  • Click on
    Run%20Script%20by%20zoek.png
    button.
    Please wait until a logreport will open (this can be after reboot)
  • Save notepad to your Desktop and attach here zoek-results.log
    Note: It will also create a log in the C:\ directory named "zoek-results.log"
 

Virusfighter7

New Member
Thread author
Dec 3, 2013
13
My internet has been working fine all day today and yesterday from what I could tell. Google loads normally and youtube as well. It seems to be fine now.

However, I'm still not sure if my internet is 100% safe yet. I'm gonna keep testing it, and if I encounter any more problems, I'll let you know in this thread. Thanks a lot for your help so far eagle :) I'll be sure to make another post here sooner or later to let you know how things are with my computer.
 

Virusfighter7

New Member
Thread author
Dec 3, 2013
13
Update: My internet seems to be quite slow now, and experiences freezing every several seconds. I also get some ads and pop ups showing up every now and then. I guess the virus may still be here, only it now has a different effect on the system.

I'll try to remove the pop ups and stuff myself, shouldn't be hard. I'll update you on the progress. All else seems fine though, for now.
 

Virusfighter7

New Member
Thread author
Dec 3, 2013
13
Update; I gave reset firefox, no more ads, no more popups, and the internet does not freeze. Seems fine once again.

I will keep monitoring the state of my computer the next several days, and will inform you if anything happens. You can probably expect more updates sooner or later. Though for now, it seems to be fine.
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top