System Freezes after FBI MoneyPak removal

kuttus

Level 2
Verified
Oct 5, 2012
2,697
Hi and welcome to the malwaretips.com forums!

I'm Kuttus and I am going to try to assist you with your problem. Please take note of the below:
  • I will start working on your malware issues, this may or may not, solve other issues you have with your machine.
  • The fixes are specific to your problem and should only be used for this issue on this machine!
  • The process is not instant. Please continue to review my answers until I tell you your machine is clear. Absence of symptoms does not mean that everything is clear.
  • If you don't know, stop and ask! Don't keep going on.
  • Please reply to this thread. Do not start a new topic.
  • Refrain from running self fixes as this will hinder the malware removal process.
  • It may prove beneficial if you print of the following instructions or save them to notepad as I post them.
Your security programs may give warnings for some of the tools I will ask you to use. Be assured, any links I give are safe.


Before we start:
Please be aware that removing malware is a potentially hazardous undertaking. I will take care not to knowingly suggest courses of action that might damage your computer. However it is impossible for me to foresee all interactions that may happen between the software on your computer and those we'll use to clear you of infection, and I cannot guarantee the safety of your system. It is possible that we might encounter situations where the only recourse is to re-format and re-install your operating system, or to necessitate you taking your computer to a repair shop.

Because of this, I advise you to backup any personal files and folders before you start.
<hr />

Can you please try to run a scan with Farbar Recovery Scan Tool. You will need a USB (Flash) pendrive.

For x32 (x86) bit systems download Farbar Recovery Scan Tooland save it to a flash drive.
For x64 bit systems download Farbar Recovery Scan Tool x64 and save it to a flash drive.

Plug the flashdrive into the infected PC.

Enter System Recovery Options.

To enter System Recovery Options from the Advanced Boot Options:
  • Restart the computer.
  • As soon as the BIOS is loaded begin tapping the F8 key until Advanced Boot Options appears.
  • Click on Repair your computer menu item.
  • Select US as the keyboard language settings, and then click Next.
  • Select the operating system you want to repair, and then click Next.
  • Select your user account and click Next.
On the System Recovery Options menu you will get the following options:
Startup Repair
System Restore
Windows Complete PC Restore
Windows Memory Diagnostic Tool
Command Prompt

  • Select Command Prompt
  • In the command window type in notepad and press Enter.
  • The notepad opens. Under File menu select Open.
  • Select "Computer" and find your flash drive letter and close the notepad.
  • In the command window type e:\frst.exe (for x64 bit version type e:\frst64) and press Enter
    Note: Replace letter e with the drive letter of your flash drive.
  • The tool will start to run.
  • When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will make a log (FRST.txt) in the flash drive. Please copy and paste it to your reply.
 

Djimbe

New Member
Thread author
Verified
Dec 5, 2013
15
I dont have a thumb drive so here is the scan I ran in safe mode.

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 07-12-2013 01
Ran by Djimbe2_2 (administrator) on 1A on 07-12-2013 04:19:43
Running from C:\Users\Djimbe2_2\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 10
Boot Mode: Safe Mode (with Networking)

==================== Processes (Whitelisted) =================

(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(BitTorrent, Inc.) C:\Program Files (x86)\uTorrent\uTorrent.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(MPC-HC Team) C:\Program Files (x86)\K-Lite Codec Pack\Media Player Classic\mpc-hc.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6245408 2010-05-25] (Realtek Semiconductor)
HKLM\...\Run: [IntelliPoint] - C:\Program Files\Microsoft IntelliPoint\ipoint.exe [2417032 2011-08-01] (Microsoft Corporation)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-14] (Synaptics Incorporated)
HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [1356240 2013-08-12] (Microsoft Corporation)
HKLM\...\Policies\Explorer: [RestrictRun] 0
HKCU\...\Run: [HPAdvisorDock] - C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Dock\HPAdvisorDock.exe [1712184 2010-02-09] ()
HKCU\...\Run: [LightScribe Control Panel] - C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2736128 2010-05-19] (Hewlett-Packard Company)
HKCU\...\Run: [swg] - C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2011-02-21] (Google Inc.)
HKCU\...\Run: [Facebook Update] - C:\Users\Djimbe2_2\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-10-18] (Facebook Inc.)
HKCU\...\Run: [GoogleDriveSync] - C:\Program Files (x86)\Google\Drive\googledrivesync.exe [20133824 2013-09-25] (Google)
HKCU\...\RunOnce: [FlashPlayerUpdate] - C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_8_800_94_ActiveX.exe -update activex [814984 2013-07-11] (Adobe Systems Incorporated)
HKCU\...\Policies\Explorer: [RestrictRun] 0
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2010-06-17] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [TkBellExe] - C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe [295512 2013-07-12] (RealNetworks, Inc.)
HKU\Default\...\Run: [HPAdvisorDock] - C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Dock\HPAdvisorDock.exe [1712184 2010-02-09] ()
HKU\Default User\...\Run: [HPAdvisorDock] - C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Dock\HPAdvisorDock.exe [1712184 2010-02-09] ()
HKU\Djimbe2\...\Run: [swg] - C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2011-02-21] (Google Inc.)
HKU\Djimbe2\...\Run: [Facebook Update] - C:\Users\Djimbe2\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-06-21] (Facebook Inc.)
HKU\Djimbe2\...\Run: [GoogleDriveSync] - C:\Program Files (x86)\Google\Drive\googledrivesync.exe [20133824 2013-09-25] (Google)
HKU\Djimbe2\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3481408 2012-02-13] (DT Soft Ltd)
HKU\TEMP.1A.003\...\Run: [HPAdvisorDock] - C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Dock\HPAdvisorDock.exe [1712184 2010-02-09] ()
HKU\TEMP.1A.003\...\Run: [LightScribe Control Panel] - C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2736128 2010-05-19] (Hewlett-Packard Company)
Startup: C:\Users\Djimbe2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PdaNet Desktop.lnk
ShortcutTarget: PdaNet Desktop.lnk -> C:\Program Files (x86)\PdaNet for Android\PdaNetPC.exe ()

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - {0385B458-6C4B-4090-8DBF-493BF0AD1451} URL = http://en.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {7E98756E-5482-4F76-9D6A-ABFEE6399AC3} URL = http://www.ask.com/web?q={searchterms}&l=dis&o=ushpl
SearchScopes: HKLM - {F682C2EF-0D56-4172-90AD-FBDED0185679} URL = http://search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF
SearchScopes: HKLM-x32 - {7E98756E-5482-4F76-9D6A-ABFEE6399AC3} URL = http://www.ask.com/web?q={searchterms}&l=dis&o=ushpl
SearchScopes: HKLM-x32 - {F682C2EF-0D56-4172-90AD-FBDED0185679} URL = http://search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF
SearchScopes: HKCU - {0385B458-6C4B-4090-8DBF-493BF0AD1451} URL =
SearchScopes: HKCU - {7E98756E-5482-4F76-9D6A-ABFEE6399AC3} URL =
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: No Name - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No File
BHO: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll (Adblock Plus)
BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
BHO-x32: No Name - {6C09FC0C-026F-474F-B831-8FB2850DC0D0} - No File
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll (Adblock Plus)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
DPF: HKLM-x32 {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: HKLM-x32 {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} http://h20614.www2.hp.com/ediags/gmd/Install/Cab/hpdetect1261.cab
DPF: HKLM-x32 {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} http://zone.msn.com/bingame/dim2/default/popcaploader_v6.cab
Winsock: Catalog5 01 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll"
Winsock: Catalog5-x64 01 %SystemRoot%\System32\mswsock.dll [327168] (Microsoft Corporation) ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll"
Tcpip\Parameters: [DhcpNameServer] 208.59.247.45 208.59.247.46

Chrome:
=======
CHR HomePage: hxxp://www.google.com
CHR RestoreOnStartup: "hxxp://www.google.com"
CHR Extension: (Google Docs) - C:\Users\Djimbe2_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0
CHR Extension: (Google Drive) - C:\Users\Djimbe2_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (YouTube) - C:\Users\Djimbe2_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Users\Djimbe2_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (MagicScroll eBook Reader) - C:\Users\Djimbe2_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghgnmgfdoiplfmhgghbmlphanpfmjble\3.0_0
CHR Extension: (Crackle) - C:\Users\Djimbe2_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibfamoapbmmmlknoopmmfofgladlinic\7.1.7_0
CHR Extension: (RealDownloader) - C:\Users\Djimbe2_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji\1.3.2_0
CHR Extension: (Facebook Notifications) - C:\Users\Djimbe2_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmameahlembdcigphohgiodcgjomcgeo\1.27_0
CHR Extension: (Google Wallet) - C:\Users\Djimbe2_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0
CHR Extension: (Evernote Web Clipper) - C:\Users\Djimbe2_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\pioclpoplcdbaefihamjohnefbikjilc\6.0.3_0
CHR Extension: (Gmail) - C:\Users\Djimbe2_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
CHR HKLM-x32\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx

==================== Services (Whitelisted) =================

S4 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [140672 2012-07-11] (SUPERAntiSpyware.com)
S2 Motorola Device Manager; C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe [137528 2013-07-31] (Motorola Mobility LLC)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-08-12] (Microsoft Corporation)
S3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [366600 2013-08-12] (Microsoft Corporation)
S4 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH)
S4 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH)
S2 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-04-16] ()
S2 Realtek11nCU; C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\RtlService.exe [36864 2010-04-16] (Realtek)
S2 Virtual Router; C:\Program Files (x86)\Virtual Router\VirtualRouterService.exe [12288 2013-02-10] (Chris Pietschmann (http://pietschsoft.com))

==================== Drivers (Whitelisted) ====================

R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-03-20] (DT Soft Ltd)
S1 ESProtectionDriver; C:\Program Files\Malwarebytes Anti-Exploit\MBAE.sys [62168 2013-08-01] ()
S3 mbamchameleon; C:\Windows\system32\drivers\mbamchameleon.sys [91352 2013-10-15] (Malwarebytes Corporation)
S0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [247216 2013-06-18] (Microsoft Corporation)
S2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [139616 2013-06-18] (Microsoft Corporation)
S3 RTL8192cu; C:\Windows\System32\DRIVERS\RTL8192cu.sys [848384 2011-02-10] (Realtek Semiconductor Corporation )
S1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-13] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
S3 cpuz136; \??\C:\Users\DJIMBE~1\AppData\Local\Temp\cpuz136\cpuz136_x64.sys [x]
S4 danxnwvg; \??\C:\Windows\system32\drivers\danxnwvg.sys [x]
S4 gamaqgqk; \??\C:\Windows\system32\drivers\gamaqgqk.sys [x]
S4 jpjrpwpi; \??\C:\Windows\system32\drivers\jpjrpwpi.sys [x]
S4 lstgprdh; \??\C:\Windows\system32\drivers\lstgprdh.sys [x]
S3 motccgpfl; system32\DRIVERS\motccgpfl.sys [x]
S4 motusbdevice; system32\DRIVERS\motusbdevice.sys [x]
S4 SBRE; \??\C:\Windows\system32\drivers\SBREdrv.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-12-07 04:21 - 2013-12-07 04:21 - 89966713 _____ C:\Users\Djimbe2\Downloads\hot-gf-#####ed-in-h-m-changing-room747609hq.mp4
2013-12-07 04:19 - 2013-12-07 04:19 - 01927360 _____ (Farbar) C:\Users\Djimbe2_2\Downloads\FRST64.exe
2013-12-07 04:19 - 2013-12-07 04:19 - 00000000 _____ C:\Users\Djimbe2_2\Downloads\FRST.txt
2013-12-07 01:13 - 2013-12-07 03:54 - 281514926 _____ C:\Users\Djimbe2\Downloads\BigWetButts - Ava Addams (An Ass Fit For a King) NEW November 15, 2013.mp4
2013-12-07 01:03 - 2013-12-07 01:03 - 00000000 ____D C:\Users\Djimbe2\Downloads\Young_White_Pussy_Teen_XXX_Cumshot
2013-12-07 00:54 - 2013-12-07 00:54 - 205531983 _____ C:\Users\Djimbe2\Downloads\Maximum Fitness_Scene 7_Aleska Diamond and Cathy Heaven.wmv
2013-12-07 00:14 - 2013-12-07 00:14 - 00000000 ____D C:\Users\Djimbe2\Downloads\Tiny.Chicks.Struggle.To.Fit.Huge.Dicks.2.XXX.DVDRip.XviD-STARLETS
2013-12-07 00:10 - 2013-12-07 00:10 - 209463685 _____ C:\Users\Djimbe2\Downloads\JuliadeLucia_MeCorroentusGafas_CumLouder.mp4
2013-12-06 23:18 - 2013-12-07 01:04 - 00000000 ____D C:\Users\Djimbe2\Downloads\Irena.4398.CzechCasting.2013.HD_iyutero.com
2013-12-06 23:18 - 2013-12-06 23:18 - 00000000 ____D C:\Users\Djimbe2\Downloads\Lauren – It Fits Perfect
2013-12-06 22:47 - 2013-12-07 04:08 - 00000000 ____D C:\Users\Djimbe2\Downloads\BrokendollHouse.11.12.14.Kendra.James.XXX.WMV-FiTTA[rarbg]
2013-12-06 22:39 - 2013-12-06 22:39 - 153958403 _____ C:\Users\Djimbe2\Downloads\Black_Wonder_Erika_Vuitton_Brings_Boyfriend_Home_And_Lets_Him_Eat_Her_Pussy_Before_She_Climbs_On_Him_To_Fit_His_Long_Schlong_Inside_Her_Cumshot_Boobs_XXX.mp4
2013-12-06 22:39 - 2013-12-06 22:39 - 00000000 ____D C:\Users\Djimbe2\Downloads\MyBestFetish.12.11.12.Fitting.Room.Hidden.Cam.XXX.720p.WMV
2013-12-06 22:34 - 2013-12-06 22:34 - 00000000 ____D C:\Users\Djimbe2\Downloads\Muriel - Fitness Ball HD 720p
2013-12-06 22:33 - 2013-12-06 22:33 - 00000000 ____D C:\Users\Djimbe2\Downloads\[hshare.net].Piss.Fit.EP03.[RAW]
2013-12-06 22:32 - 2013-12-07 04:16 - 943233522 _____ C:\Users\Djimbe2\Downloads\Sheena.Shaw.Mandingo.Will.It.Fit.In.My.Ass.JulesJordan.2013.HD_iyutero.com.mp4
2013-12-06 22:32 - 2013-12-07 01:17 - 775070447 _____ C:\Users\Djimbe2\Downloads\i01.wmv
2013-12-06 22:32 - 2013-12-06 22:32 - 162966034 _____ C:\Users\Djimbe2\Downloads\hot_emo_amateur_girl.avi
2013-12-06 22:32 - 2013-12-06 22:32 - 142644287 _____ C:\Users\Djimbe2\Downloads\Fitness-Maus - Ausgehungerter User betrügt seine Frau mit mir 06.09.13.flv
2013-12-06 22:31 - 2013-12-06 22:31 - 00000000 ____D C:\Users\Djimbe2\Downloads\So Big It Barely Fits 3 (2012) XXX DVDRip
2013-12-06 11:44 - 2013-12-07 04:15 - 111391528 _____ C:\Users\Djimbe2\Downloads\Fit Blonde #####s in Hotel Room.wmv
2013-12-06 11:18 - 2013-12-06 11:18 - 00000000 ____D C:\Users\Djimbe2\Downloads\Private.Lustschweine.Fick.dich.Fit.German.XXX.DVDRip.x264-KissMyDick
2013-12-06 10:24 - 2013-12-06 23:47 - 687401797 _____ C:\Users\Djimbe2\Downloads\bcc.13.11.18.emjay.mp4
2013-12-06 09:57 - 2013-12-06 09:57 - 00000000 ____D C:\Users\Djimbe2\Downloads\YoungLegalPorn.Ira
2013-12-06 07:33 - 2013-12-06 07:33 - 00000000 ____D C:\Users\Djimbe2\Downloads\Young.Sex.Parties.-.Luda,Ira
2013-12-06 06:10 - 2013-12-07 02:54 - 00000000 ____D C:\Users\Djimbe2\Downloads\FirstAnalQuest.Ira
2013-12-06 06:09 - 2013-12-06 23:02 - 895891685 _____ C:\Users\Djimbe2\Downloads\bcc.13.12.02.melody.mp4
2013-12-06 06:02 - 2013-12-06 06:02 - 00000000 ____D C:\Users\Djimbe2\Downloads\TeenyLovers - Ira - Slutty Schoolgirl Doing-Her Home Work
2013-12-06 05:34 - 2013-12-06 05:34 - 00000000 ____D C:\Users\Djimbe2\Downloads\YoungLibertines-Ira And Andy [720p]
2013-12-06 04:44 - 2013-12-06 04:44 - 00000000 ____D C:\Users\Djimbe2\Downloads\CzechCasting.13.02.27.Irena.4398.XXX.720p.WMV-IEVA
2013-12-06 03:36 - 2013-12-06 05:11 - 263341535 _____ C:\Users\Djimbe2\Downloads\Ira.Lets.Give.It.A.Shot.YoungLegalPorn.2013.HD_iyutero.com.mp4
2013-12-06 03:27 - 2013-12-06 05:56 - 00000000 ____D C:\Users\Djimbe2\Downloads\Hegre-Art.09.04.07.Ira.Oil.XXX.720p.MOV-KTR[rbg]
2013-12-06 03:11 - 2013-12-07 00:13 - 379383061 _____ C:\Users\Djimbe2\Downloads\Russian Hot Blonde Teen - Ira.wmv
2013-12-06 03:10 - 2013-12-06 03:20 - 00000000 ____D C:\Users\Djimbe2\Downloads\SellYourGF.13.06.06.Ira.XXX.720p.MP4-iaK[rarbg]
2013-12-06 03:08 - 2013-12-06 03:45 - 298386844 _____ C:\Users\Djimbe2\Downloads\ira_1000k.mp4
2013-12-06 01:58 - 2013-12-06 02:59 - 00000000 ____D C:\Users\Djimbe2\Downloads\Sexy60Plus.E102.Irena.XXX.MP4-oRo[rarbg]
2013-12-06 01:46 - 2013-12-06 03:43 - 546985919 _____ C:\Users\Djimbe2\Downloads\CasualTeenSex - Irena [720p].mp4
2013-12-06 01:45 - 2013-12-06 03:17 - 218114637 _____ C:\Users\Djimbe2\Downloads\Ass Needs to Be Ready for Big Cock.wmv
2013-12-06 01:39 - 2013-12-06 01:39 - 00000000 ____D C:\Users\Djimbe2\Downloads\Cindy (AKA_ Cindy Vega, Clara, Ilona, Irena, Kacka, Lisa, Liza, Lola, Sindy, Sindy Vega, Tia) - Once Before Bedtime (2013) HDTV
2013-12-06 01:37 - 2013-12-06 09:19 - 00000000 ____D C:\Users\Djimbe2\Downloads\CasualTeenSex.13.11.08.Irena.XXX.720p.MP4-KTR[rarbg]
2013-12-06 01:37 - 2013-12-06 01:38 - 00000000 ____D C:\Users\Djimbe2\Downloads\Nubiles.13.03.23.Irena.Ready.To.Please.XXX.720p.WMV-KTR[rarbg]
2013-12-06 01:35 - 2013-12-06 01:35 - 00000000 ____D C:\Users\Djimbe2\Downloads\Cindy (AKA_ Cindy R, Cindy Vega, Clara, Ilona, Irena, Kacka, Lisa, Liza, Lola, Sindy, Sindy Vega, Tia) - Triple The Fun
2013-12-06 01:30 - 2013-12-06 10:16 - 00000000 ____D C:\Users\Djimbe2\Downloads\PlayboyPlus.13.08.19.Irina.Voronina.Killer.Shots.XXX.1080p.x264-PAYiSO[rarbg]
2013-12-04 21:23 - 2013-12-04 21:23 - 00000000 ____D C:\Users\Djimbe2\Downloads\Tiny Chicks Struggle To Fit Huge Dicks 2 XXX (Split Scenes)
2013-12-04 21:18 - 2013-12-05 14:14 - 196334332 _____ C:\Users\Djimbe2\Downloads\Innocent teen girl takes a huge dick in her tiny asshole[truehdporn].flv
2013-12-04 21:16 - 2013-12-04 21:48 - 416248083 _____ C:\Users\Djimbe2\Downloads\mc11168_1500.mp4
2013-12-04 21:15 - 2013-12-04 21:39 - 403859526 _____ C:\Users\Djimbe2\Downloads\mc12494_1500.mp4
2013-12-04 20:58 - 2013-12-04 21:12 - 506096687 _____ C:\Users\Djimbe2\Downloads\6388-540p.mp4
2013-12-04 20:53 - 2013-12-04 21:22 - 312343616 _____ C:\Users\Djimbe2\Downloads\Anita Bellini - Teeny Toes.mp4
2013-12-04 20:51 - 2013-12-07 04:09 - 305629068 _____ C:\Users\Djimbe2\Downloads\21Sextury - Anita Bellini - A Good Student .mp4
2013-12-04 20:44 - 2013-12-05 10:07 - 229478117 _____ C:\Users\Djimbe2\Downloads\SexArt - Anita Bellini & Mark I (Temptation) 720p NEW October 09, 2013.mp4
2013-12-04 20:43 - 2013-12-04 20:51 - 285251691 _____ C:\Users\Djimbe2\Downloads\Pervers_Trio_SD.mp4
2013-12-04 20:00 - 2013-12-04 20:16 - 378497617 _____ C:\Users\Djimbe2\Downloads\v200251 - Anita Bellini.mp4
2013-12-04 19:46 - 2013-12-04 20:23 - 368040262 _____ C:\Users\Djimbe2\Downloads\v8464 - Anita Bellini.mp4
2013-12-04 19:42 - 2013-12-04 20:37 - 399387138 _____ C:\Users\Djimbe2\Downloads\[Dorcel] Anita Bellini, Gina Devine, Markus Dupree - PERVERS TRIO WITH COLLEGE GIRLS (11.11.2013) [NEW RELEASE].mp4
2013-12-04 19:41 - 2013-12-04 19:41 - 00000000 ____D C:\Users\Djimbe2\Downloads\Tiny vs Huge (Anita Bellini) (2013) SiteRip
2013-12-04 19:36 - 2013-12-04 19:36 - 00000328 _____ C:\Windows\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1452896597-1932748492-2834507788-1007.job
2013-12-04 19:10 - 2013-12-04 19:11 - 00000000 ____D C:\32788R22FWJFW
2013-12-04 19:09 - 2013-12-04 19:09 - 00002998 _____ C:\Windows\System32\Tasks\Malwarebytes Anti-Exploit
2013-12-04 19:09 - 2013-12-04 19:09 - 00000508 _____ C:\Windows\Tasks\Malwarebytes Anti-Exploit.job
2013-12-03 10:55 - 2013-12-03 10:55 - 00000000 ____D C:\Users\Djimbe2\Downloads\Hegre-Art.11.07.26.Stasha.Neon.Light.XXX.720p.MOV-KTR[rbg]
2013-12-03 10:54 - 2013-12-03 11:19 - 352267217 _____ C:\Users\Djimbe2\Downloads\Hegre.Art.Stasha.Finger.Frenzy.Load.XXX.pornalized.wmv
2013-12-03 10:48 - 2013-12-03 13:09 - 00000000 ____D C:\Users\Djimbe2\Downloads\Hegre-Art.10.08.24.Stasha.Private.Show.XXX.INTERNAL.720p.MOV-KTR[rbg]
2013-12-03 10:48 - 2013-12-03 11:23 - 00000000 ____D C:\Users\Djimbe2\Downloads\Doc's Perfect 10s #441 - Hegre Art - Stasha - Baby Blue Bath
2013-12-03 10:47 - 2013-12-03 11:51 - 124444200 _____ C:\Users\Djimbe2\Downloads\Hengre-Art - Crazy In Bed - Stasha.avi
2013-12-01 17:50 - 2013-12-02 09:51 - 176255120 _____ C:\Users\Djimbe2\Downloads\Sora no Iro, Mizu no Iro - 01 [H264_AAC].mkv
2013-12-01 17:24 - 2013-12-01 19:12 - 109173084 _____ C:\Users\Djimbe2\Downloads\Simone Clair.wmv
2013-12-01 14:53 - 2013-12-01 14:53 - 00000000 ____D C:\Users\Djimbe2\Downloads\GloryHole-Initiations.13.02.11.Ana.Foxxx.XXX.720p.x264-SEXORS[rarbg]
2013-12-01 14:51 - 2013-12-02 07:38 - 394979151 _____ C:\Users\Djimbe2\Downloads\X-Art Ana Foxxx Hot Chocolate 720p.mp4
2013-12-01 14:48 - 2013-12-02 13:57 - 00000000 ____D C:\Users\Djimbe2\Downloads\Ana Foxxx - Bad Advice 5 [Penthouse][720P]
2013-12-01 14:43 - 2013-12-01 17:43 - 655388407 _____ C:\Users\Djimbe2\Downloads\2cstanaleilaniskinjohnny_2k.wmv
2013-12-01 14:42 - 2013-12-01 16:50 - 00000000 ____D C:\Users\Djimbe2\Downloads\Ana Foxxx - Bad Advice
2013-12-01 14:42 - 2013-12-01 15:55 - 546821694 _____ C:\Users\Djimbe2\Downloads\Ana Foxxx + Krystal - Round And Brown SD.mp4
2013-12-01 14:35 - 2013-12-01 17:21 - 190303332 _____ C:\Users\Djimbe2\Downloads\Sora no Iro, Mizu no Iro - 02 [H264_AAC].mkv
2013-11-29 19:52 - 2013-11-29 19:53 - 00000000 ____D C:\Users\Djimbe2\Downloads\フォルト!! Fault!! Ep.01-03 [EngSubs]
2013-11-29 19:19 - 2013-11-29 19:57 - 378686191 _____ C:\Users\Djimbe2\Downloads\The.Ultimate.Fighter.S18E11.iNTERNAL.HDTV.x264-KOENiG.mp4
2013-11-29 19:17 - 2013-11-29 20:00 - 00000000 ____D C:\Users\Djimbe2\Downloads\The.Ultimate.Fighter.S18E12.HDTV.x264-KYR[rarbg]
2013-11-29 19:16 - 2013-11-29 19:43 - 438124591 _____ C:\Users\Djimbe2\Downloads\The.Ultimate.Fighter.S18E13.HDTV.x264-PLAYNOW.mp4
2013-11-29 17:42 - 2013-11-30 04:50 - 00000000 ____D C:\Users\Djimbe2\Downloads\Fukubiki
2013-11-29 17:42 - 2013-11-29 17:43 - 00000000 ____D C:\Users\Djimbe2\Downloads\Sora no Iro, Mizu no Iro
2013-11-29 17:38 - 2013-11-29 17:38 - 00000000 ____D C:\Users\Djimbe2\Downloads\Honoo No Haramase Tenkousei [Hentai][Japan+Sub.English][WwW.xXxViCiOsAsZT.CoM]
2013-11-28 21:18 - 2013-11-28 21:18 - 00000418 _____ C:\Windows\Tasks\{7DF45D32-FE32-41F4-90FE-37F19E4C75A4}.job
2013-11-28 21:17 - 2013-11-28 21:17 - 01551008 _____ (Skype Technologies S.A.) C:\Users\Djimbe2_2\Downloads\SkypeSetup.exe
2013-11-27 09:05 - 2013-11-27 09:05 - 00837032 _____ (AirInstaller ) C:\Users\Djimbe2_2\Downloads\Setup.exe
2013-11-27 09:04 - 2013-11-27 09:04 - 00395776 _____ C:\Users\Djimbe2_2\Downloads\Marvel Avengers Alliance Hack (1).exe
2013-11-27 08:50 - 2013-11-27 08:50 - 00291570 _____ C:\Users\Djimbe2_2\Downloads\Marvel Avengers Alliance Hack[2013].zip
2013-11-27 08:03 - 2013-11-27 08:03 - 00000000 ____D C:\Users\Djimbe2_2\Downloads\Marvel Avengers Alliance Tool Adder ver 2.17
2013-11-27 08:03 - 2013-09-01 22:07 - 05858304 _____ (M) C:\Users\Djimbe2_2\Downloads\Marvel Avengers Alliance Tool Adder ver 2.17.exe
2013-11-27 08:01 - 2013-11-27 08:02 - 04382775 _____ C:\Users\Djimbe2_2\Downloads\Marvel Avengers Alliance Tool Adder ver 2.17.rar
2013-11-25 17:31 - 2013-11-25 20:53 - 16167493 _____ C:\Users\Djimbe2\Downloads\X-Force_Cable_-_Messiah_War_01__2009___Archangel-DCP_.cbr
2013-11-25 01:49 - 2013-11-26 15:50 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Roaming\CDisplayEx
2013-11-25 01:20 - 2013-11-25 01:21 - 38585753 _____ C:\Users\Djimbe2\Downloads\Cable and X-Force 16 (2013) (Digital) (G85-Empire).cbr
2013-11-22 13:31 - 2013-12-04 19:07 - 00000000 ___RD C:\Users\Djimbe2_2\Google Drive
2013-11-22 13:31 - 2013-11-22 13:31 - 00001665 _____ C:\Users\Djimbe2_2\Desktop\Google Drive.lnk
2013-11-22 11:48 - 2013-11-26 16:44 - 00004807 _____ C:\Users\Djimbe2_2\Desktop\Steroid Info.txt
2013-11-20 00:09 - 2013-11-20 00:10 - 00692512 _____ (RealNetworks, Inc.) C:\Users\Djimbe2_2\Downloads\RealDownloader (1).exe
2013-11-20 00:09 - 2013-11-20 00:09 - 00692512 _____ (RealNetworks, Inc.) C:\Users\Djimbe2_2\Downloads\RealDownloader.exe
2013-11-15 15:43 - 2013-11-15 15:53 - 503735416 _____ C:\Users\Djimbe2_2\Downloads\adt-bundle-windows-x86_64-20131030.zip
2013-11-15 14:54 - 2013-11-15 14:54 - 00000978 _____ C:\Users\Djimbe2_2\Desktop\XT897 - Shortcut.lnk
2013-11-15 13:57 - 2013-11-15 13:57 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Roaming\Motorola
2013-11-15 13:56 - 2013-11-15 13:56 - 35618040 _____ (Motorola Mobility) C:\Users\Djimbe2_2\Downloads\MotorolaDeviceManager_2.4.3.exe
2013-11-15 13:52 - 2013-11-15 13:52 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_Motousbnet_01009.Wdf
2013-11-15 13:52 - 2013-11-15 13:52 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_motfilt_01009.Wdf
2013-11-15 13:52 - 2013-11-15 13:52 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_motccgp_01009.Wdf
2013-11-15 07:52 - 2013-11-15 07:52 - 00000000 ____D C:\Users\Djimbe2_2\Downloads\Afternoons In December
2013-11-15 07:41 - 2013-11-15 07:46 - 92062001 _____ C:\Users\Djimbe2_2\Downloads\Afternoons In December.zip
2013-11-14 06:08 - 2013-11-22 13:34 - 00000000 ____D C:\Users\Djimbe2\Downloads\turbulence training torrent
2013-11-12 10:53 - 2013-11-12 10:59 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Roaming\calibre
2013-11-12 08:59 - 2013-11-12 08:59 - 00000000 ____D C:\Users\Djimbe2\Downloads\The Reason I Jump - The Inner Voice of A Thirteen Year Old Boy With Autism - Naoki Higashida
2013-11-12 08:53 - 2013-11-12 08:54 - 01375010 _____ C:\Users\Djimbe2\Downloads\The Reason I Jump - The Inner Voice of A Thirteen Year Old Boy With Autism - Naoki Higashida.epub
2013-11-12 08:23 - 2013-11-12 08:55 - 397540553 _____ C:\Users\Djimbe2\Downloads\The.Ultimate.Fighter.S18E10.6th.Nov.2013.HDTV.x264-Sir.Paul.mp4
2013-11-09 20:56 - 2013-11-09 20:56 - 00000390 _____ C:\Windows\Tasks\ReclaimerResumeInstall_Djimbe2_2.job
2013-11-09 20:50 - 2013-11-09 20:52 - 00000306 _____ C:\Windows\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1452896597-1932748492-2834507788-1007.job
2013-11-09 20:42 - 2013-11-09 20:42 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Local\Adobe

==================== One Month Modified Files and Folders =======

2013-12-07 04:21 - 2013-12-07 04:21 - 89966713 _____ C:\Users\Djimbe2\Downloads\hot-gf-#####ed-in-h-m-changing-room747609hq.mp4
2013-12-07 04:21 - 2013-07-25 03:56 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Roaming\uTorrent
2013-12-07 04:19 - 2013-12-07 04:19 - 01927360 _____ (Farbar) C:\Users\Djimbe2_2\Downloads\FRST64.exe
2013-12-07 04:19 - 2013-12-07 04:19 - 00000000 _____ C:\Users\Djimbe2_2\Downloads\FRST.txt
2013-12-07 04:16 - 2013-12-06 22:32 - 943233522 _____ C:\Users\Djimbe2\Downloads\Sheena.Shaw.Mandingo.Will.It.Fit.In.My.Ass.JulesJordan.2013.HD_iyutero.com.mp4
2013-12-07 04:16 - 2013-10-12 09:34 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Roaming\vlc
2013-12-07 04:15 - 2013-12-06 11:44 - 111391528 _____ C:\Users\Djimbe2\Downloads\Fit Blonde #####s in Hotel Room.wmv
2013-12-07 04:09 - 2013-12-04 20:51 - 305629068 _____ C:\Users\Djimbe2\Downloads\21Sextury - Anita Bellini - A Good Student .mp4
2013-12-07 04:08 - 2013-12-06 22:47 - 00000000 ____D C:\Users\Djimbe2\Downloads\BrokendollHouse.11.12.14.Kendra.James.XXX.WMV-FiTTA[rarbg]
2013-12-07 03:54 - 2013-12-07 01:13 - 281514926 _____ C:\Users\Djimbe2\Downloads\BigWetButts - Ava Addams (An Ass Fit For a King) NEW November 15, 2013.mp4
2013-12-07 02:54 - 2013-12-06 06:10 - 00000000 ____D C:\Users\Djimbe2\Downloads\FirstAnalQuest.Ira
2013-12-07 01:17 - 2013-12-06 22:32 - 775070447 _____ C:\Users\Djimbe2\Downloads\i01.wmv
2013-12-07 01:04 - 2013-12-06 23:18 - 00000000 ____D C:\Users\Djimbe2\Downloads\Irena.4398.CzechCasting.2013.HD_iyutero.com
2013-12-07 01:03 - 2013-12-07 01:03 - 00000000 ____D C:\Users\Djimbe2\Downloads\Young_White_Pussy_Teen_XXX_Cumshot
2013-12-07 00:54 - 2013-12-07 00:54 - 205531983 _____ C:\Users\Djimbe2\Downloads\Maximum Fitness_Scene 7_Aleska Diamond and Cathy Heaven.wmv
2013-12-07 00:14 - 2013-12-07 00:14 - 00000000 ____D C:\Users\Djimbe2\Downloads\Tiny.Chicks.Struggle.To.Fit.Huge.Dicks.2.XXX.DVDRip.XviD-STARLETS
2013-12-07 00:13 - 2013-12-06 03:11 - 379383061 _____ C:\Users\Djimbe2\Downloads\Russian Hot Blonde Teen - Ira.wmv
2013-12-07 00:10 - 2013-12-07 00:10 - 209463685 _____ C:\Users\Djimbe2\Downloads\JuliadeLucia_MeCorroentusGafas_CumLouder.mp4
2013-12-06 23:47 - 2013-12-06 10:24 - 687401797 _____ C:\Users\Djimbe2\Downloads\bcc.13.11.18.emjay.mp4
2013-12-06 23:18 - 2013-12-06 23:18 - 00000000 ____D C:\Users\Djimbe2\Downloads\Lauren – It Fits Perfect
2013-12-06 23:02 - 2013-12-06 06:09 - 895891685 _____ C:\Users\Djimbe2\Downloads\bcc.13.12.02.melody.mp4
2013-12-06 22:39 - 2013-12-06 22:39 - 153958403 _____ C:\Users\Djimbe2\Downloads\Black_Wonder_Erika_Vuitton_Brings_Boyfriend_Home_And_Lets_Him_Eat_Her_Pussy_Before_She_Climbs_On_Him_To_Fit_His_Long_Schlong_Inside_Her_Cumshot_Boobs_XXX.mp4
2013-12-06 22:39 - 2013-12-06 22:39 - 00000000 ____D C:\Users\Djimbe2\Downloads\MyBestFetish.12.11.12.Fitting.Room.Hidden.Cam.XXX.720p.WMV
2013-12-06 22:34 - 2013-12-06 22:34 - 00000000 ____D C:\Users\Djimbe2\Downloads\Muriel - Fitness Ball HD 720p
2013-12-06 22:33 - 2013-12-06 22:33 - 00000000 ____D C:\Users\Djimbe2\Downloads\[hshare.net].Piss.Fit.EP03.[RAW]
2013-12-06 22:32 - 2013-12-06 22:32 - 162966034 _____ C:\Users\Djimbe2\Downloads\hot_emo_amateur_girl.avi
2013-12-06 22:32 - 2013-12-06 22:32 - 142644287 _____ C:\Users\Djimbe2\Downloads\Fitness-Maus - Ausgehungerter User betrügt seine Frau mit mir 06.09.13.flv
2013-12-06 22:31 - 2013-12-06 22:31 - 00000000 ____D C:\Users\Djimbe2\Downloads\So Big It Barely Fits 3 (2012) XXX DVDRip
2013-12-06 17:13 - 2013-05-07 08:20 - 01122704 _____ C:\Windows\WindowsUpdate.log
2013-12-06 11:18 - 2013-12-06 11:18 - 00000000 ____D C:\Users\Djimbe2\Downloads\Private.Lustschweine.Fick.dich.Fit.German.XXX.DVDRip.x264-KissMyDick
2013-12-06 10:16 - 2013-12-06 01:30 - 00000000 ____D C:\Users\Djimbe2\Downloads\PlayboyPlus.13.08.19.Irina.Voronina.Killer.Shots.XXX.1080p.x264-PAYiSO[rarbg]
2013-12-06 09:57 - 2013-12-06 09:57 - 00000000 ____D C:\Users\Djimbe2\Downloads\YoungLegalPorn.Ira
2013-12-06 09:19 - 2013-12-06 01:37 - 00000000 ____D C:\Users\Djimbe2\Downloads\CasualTeenSex.13.11.08.Irena.XXX.720p.MP4-KTR[rarbg]
2013-12-06 07:33 - 2013-12-06 07:33 - 00000000 ____D C:\Users\Djimbe2\Downloads\Young.Sex.Parties.-.Luda,Ira
2013-12-06 06:02 - 2013-12-06 06:02 - 00000000 ____D C:\Users\Djimbe2\Downloads\TeenyLovers - Ira - Slutty Schoolgirl Doing-Her Home Work
2013-12-06 05:56 - 2013-12-06 03:27 - 00000000 ____D C:\Users\Djimbe2\Downloads\Hegre-Art.09.04.07.Ira.Oil.XXX.720p.MOV-KTR[rbg]
2013-12-06 05:34 - 2013-12-06 05:34 - 00000000 ____D C:\Users\Djimbe2\Downloads\YoungLibertines-Ira And Andy [720p]
2013-12-06 05:11 - 2013-12-06 03:36 - 263341535 _____ C:\Users\Djimbe2\Downloads\Ira.Lets.Give.It.A.Shot.YoungLegalPorn.2013.HD_iyutero.com.mp4
2013-12-06 04:44 - 2013-12-06 04:44 - 00000000 ____D C:\Users\Djimbe2\Downloads\CzechCasting.13.02.27.Irena.4398.XXX.720p.WMV-IEVA
2013-12-06 03:45 - 2013-12-06 03:08 - 298386844 _____ C:\Users\Djimbe2\Downloads\ira_1000k.mp4
2013-12-06 03:43 - 2013-12-06 01:46 - 546985919 _____ C:\Users\Djimbe2\Downloads\CasualTeenSex - Irena [720p].mp4
2013-12-06 03:20 - 2013-12-06 03:10 - 00000000 ____D C:\Users\Djimbe2\Downloads\SellYourGF.13.06.06.Ira.XXX.720p.MP4-iaK[rarbg]
2013-12-06 03:17 - 2013-12-06 01:45 - 218114637 _____ C:\Users\Djimbe2\Downloads\Ass Needs to Be Ready for Big Cock.wmv
2013-12-06 02:59 - 2013-12-06 01:58 - 00000000 ____D C:\Users\Djimbe2\Downloads\Sexy60Plus.E102.Irena.XXX.MP4-oRo[rarbg]
2013-12-06 01:39 - 2013-12-06 01:39 - 00000000 ____D C:\Users\Djimbe2\Downloads\Cindy (AKA_ Cindy Vega, Clara, Ilona, Irena, Kacka, Lisa, Liza, Lola, Sindy, Sindy Vega, Tia) - Once Before Bedtime (2013) HDTV
2013-12-06 01:38 - 2013-12-06 01:37 - 00000000 ____D C:\Users\Djimbe2\Downloads\Nubiles.13.03.23.Irena.Ready.To.Please.XXX.720p.WMV-KTR[rarbg]
2013-12-06 01:35 - 2013-12-06 01:35 - 00000000 ____D C:\Users\Djimbe2\Downloads\Cindy (AKA_ Cindy R, Cindy Vega, Clara, Ilona, Irena, Kacka, Lisa, Liza, Lola, Sindy, Sindy Vega, Tia) - Triple The Fun
2013-12-05 17:05 - 2009-07-14 00:13 - 00789280 _____ C:\Windows\system32\PerfStringBackup.INI
2013-12-05 17:00 - 2013-10-18 00:13 - 00022128 _____ C:\Windows\setupact.log
2013-12-05 17:00 - 2013-02-12 23:23 - 00000000 _____ C:\Windows\system32\Ikeext.etl
2013-12-05 14:14 - 2013-12-04 21:18 - 196334332 _____ C:\Users\Djimbe2\Downloads\Innocent teen girl takes a huge dick in her tiny asshole[truehdporn].flv
2013-12-05 10:07 - 2013-12-04 20:44 - 229478117 _____ C:\Users\Djimbe2\Downloads\SexArt - Anita Bellini & Mark I (Temptation) 720p NEW October 09, 2013.mp4
2013-12-04 21:48 - 2013-12-04 21:16 - 416248083 _____ C:\Users\Djimbe2\Downloads\mc11168_1500.mp4
2013-12-04 21:39 - 2013-12-04 21:15 - 403859526 _____ C:\Users\Djimbe2\Downloads\mc12494_1500.mp4
2013-12-04 21:23 - 2013-12-04 21:23 - 00000000 ____D C:\Users\Djimbe2\Downloads\Tiny Chicks Struggle To Fit Huge Dicks 2 XXX (Split Scenes)
2013-12-04 21:22 - 2013-12-04 20:53 - 312343616 _____ C:\Users\Djimbe2\Downloads\Anita Bellini - Teeny Toes.mp4
2013-12-04 21:12 - 2013-12-04 20:58 - 506096687 _____ C:\Users\Djimbe2\Downloads\6388-540p.mp4
2013-12-04 20:51 - 2013-12-04 20:43 - 285251691 _____ C:\Users\Djimbe2\Downloads\Pervers_Trio_SD.mp4
2013-12-04 20:37 - 2013-12-04 19:42 - 399387138 _____ C:\Users\Djimbe2\Downloads\[Dorcel] Anita Bellini, Gina Devine, Markus Dupree - PERVERS TRIO WITH COLLEGE GIRLS (11.11.2013) [NEW RELEASE].mp4
2013-12-04 20:23 - 2013-12-04 19:46 - 368040262 _____ C:\Users\Djimbe2\Downloads\v8464 - Anita Bellini.mp4
2013-12-04 20:16 - 2013-12-04 20:00 - 378497617 _____ C:\Users\Djimbe2\Downloads\v200251 - Anita Bellini.mp4
2013-12-04 19:41 - 2013-12-04 19:41 - 00000000 ____D C:\Users\Djimbe2\Downloads\Tiny vs Huge (Anita Bellini) (2013) SiteRip
2013-12-04 19:36 - 2013-12-04 19:36 - 00000328 _____ C:\Windows\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1452896597-1932748492-2834507788-1007.job
2013-12-04 19:13 - 2009-07-13 23:45 - 00023248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-12-04 19:13 - 2009-07-13 23:45 - 00023248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-12-04 19:11 - 2013-12-04 19:10 - 00000000 ____D C:\32788R22FWJFW
2013-12-04 19:11 - 2013-07-25 05:53 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Local\CrashDumps
2013-12-04 19:09 - 2013-12-04 19:09 - 00002998 _____ C:\Windows\System32\Tasks\Malwarebytes Anti-Exploit
2013-12-04 19:09 - 2013-12-04 19:09 - 00000508 _____ C:\Windows\Tasks\Malwarebytes Anti-Exploit.job
2013-12-04 19:07 - 2013-11-22 13:31 - 00000000 ___RD C:\Users\Djimbe2_2\Google Drive
2013-12-04 19:04 - 2009-07-14 00:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-12-03 13:09 - 2013-12-03 10:48 - 00000000 ____D C:\Users\Djimbe2\Downloads\Hegre-Art.10.08.24.Stasha.Private.Show.XXX.INTERNAL.720p.MOV-KTR[rbg]
2013-12-03 11:51 - 2013-12-03 10:47 - 124444200 _____ C:\Users\Djimbe2\Downloads\Hengre-Art - Crazy In Bed - Stasha.avi
2013-12-03 11:23 - 2013-12-03 10:48 - 00000000 ____D C:\Users\Djimbe2\Downloads\Doc's Perfect 10s #441 - Hegre Art - Stasha - Baby Blue Bath
2013-12-03 11:19 - 2013-12-03 10:54 - 352267217 _____ C:\Users\Djimbe2\Downloads\Hegre.Art.Stasha.Finger.Frenzy.Load.XXX.pornalized.wmv
2013-12-03 10:55 - 2013-12-03 10:55 - 00000000 ____D C:\Users\Djimbe2\Downloads\Hegre-Art.11.07.26.Stasha.Neon.Light.XXX.720p.MOV-KTR[rbg]
2013-12-02 13:57 - 2013-12-01 14:48 - 00000000 ____D C:\Users\Djimbe2\Downloads\Ana Foxxx - Bad Advice 5 [Penthouse][720P]
2013-12-02 09:51 - 2013-12-01 17:50 - 176255120 _____ C:\Users\Djimbe2\Downloads\Sora no Iro, Mizu no Iro - 01 [H264_AAC].mkv
2013-12-02 07:38 - 2013-12-01 14:51 - 394979151 _____ C:\Users\Djimbe2\Downloads\X-Art Ana Foxxx Hot Chocolate 720p.mp4
2013-12-01 19:12 - 2013-12-01 17:24 - 109173084 _____ C:\Users\Djimbe2\Downloads\Simone Clair.wmv
2013-12-01 17:43 - 2013-12-01 14:43 - 655388407 _____ C:\Users\Djimbe2\Downloads\2cstanaleilaniskinjohnny_2k.wmv
2013-12-01 17:21 - 2013-12-01 14:35 - 190303332 _____ C:\Users\Djimbe2\Downloads\Sora no Iro, Mizu no Iro - 02 [H264_AAC].mkv
2013-12-01 16:50 - 2013-12-01 14:42 - 00000000 ____D C:\Users\Djimbe2\Downloads\Ana Foxxx - Bad Advice
2013-12-01 15:55 - 2013-12-01 14:42 - 546821694 _____ C:\Users\Djimbe2\Downloads\Ana Foxxx + Krystal - Round And Brown SD.mp4
2013-12-01 14:53 - 2013-12-01 14:53 - 00000000 ____D C:\Users\Djimbe2\Downloads\GloryHole-Initiations.13.02.11.Ana.Foxxx.XXX.720p.x264-SEXORS[rarbg]
2013-11-30 04:50 - 2013-11-29 17:42 - 00000000 ____D C:\Users\Djimbe2\Downloads\Fukubiki
2013-11-29 20:00 - 2013-11-29 19:17 - 00000000 ____D C:\Users\Djimbe2\Downloads\The.Ultimate.Fighter.S18E12.HDTV.x264-KYR[rarbg]
2013-11-29 19:57 - 2013-11-29 19:19 - 378686191 _____ C:\Users\Djimbe2\Downloads\The.Ultimate.Fighter.S18E11.iNTERNAL.HDTV.x264-KOENiG.mp4
2013-11-29 19:53 - 2013-11-29 19:52 - 00000000 ____D C:\Users\Djimbe2\Downloads\フォルト!! Fault!! Ep.01-03 [EngSubs]
2013-11-29 19:43 - 2013-11-29 19:16 - 438124591 _____ C:\Users\Djimbe2\Downloads\The.Ultimate.Fighter.S18E13.HDTV.x264-PLAYNOW.mp4
2013-11-29 17:43 - 2013-11-29 17:42 - 00000000 ____D C:\Users\Djimbe2\Downloads\Sora no Iro, Mizu no Iro
2013-11-29 17:38 - 2013-11-29 17:38 - 00000000 ____D C:\Users\Djimbe2\Downloads\Honoo No Haramase Tenkousei [Hentai][Japan+Sub.English][WwW.xXxViCiOsAsZT.CoM]
2013-11-28 21:18 - 2013-11-28 21:18 - 00000418 _____ C:\Windows\Tasks\{7DF45D32-FE32-41F4-90FE-37F19E4C75A4}.job
2013-11-28 21:18 - 2010-07-10 23:28 - 00000000 ____D C:\ProgramData\Skype
2013-11-28 21:17 - 2013-11-28 21:17 - 01551008 _____ (Skype Technologies S.A.) C:\Users\Djimbe2_2\Downloads\SkypeSetup.exe
2013-11-27 09:05 - 2013-11-27 09:05 - 00837032 _____ (AirInstaller ) C:\Users\Djimbe2_2\Downloads\Setup.exe
2013-11-27 09:04 - 2013-11-27 09:04 - 00395776 _____ C:\Users\Djimbe2_2\Downloads\Marvel Avengers Alliance Hack (1).exe
2013-11-27 08:50 - 2013-11-27 08:50 - 00291570 _____ C:\Users\Djimbe2_2\Downloads\Marvel Avengers Alliance Hack[2013].zip
2013-11-27 08:03 - 2013-11-27 08:03 - 00000000 ____D C:\Users\Djimbe2_2\Downloads\Marvel Avengers Alliance Tool Adder ver 2.17
2013-11-27 08:02 - 2013-11-27 08:01 - 04382775 _____ C:\Users\Djimbe2_2\Downloads\Marvel Avengers Alliance Tool Adder ver 2.17.rar
2013-11-26 16:44 - 2013-11-22 11:48 - 00004807 _____ C:\Users\Djimbe2_2\Desktop\Steroid Info.txt
2013-11-26 15:50 - 2013-11-25 01:49 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Roaming\CDisplayEx
2013-11-25 20:53 - 2013-11-25 17:31 - 16167493 _____ C:\Users\Djimbe2\Downloads\X-Force_Cable_-_Messiah_War_01__2009___Archangel-DCP_.cbr
2013-11-25 01:21 - 2013-11-25 01:20 - 38585753 _____ C:\Users\Djimbe2\Downloads\Cable and X-Force 16 (2013) (Digital) (G85-Empire).cbr
2013-11-22 13:34 - 2013-11-14 06:08 - 00000000 ____D C:\Users\Djimbe2\Downloads\turbulence training torrent
2013-11-22 13:31 - 2013-11-22 13:31 - 00001665 _____ C:\Users\Djimbe2_2\Desktop\Google Drive.lnk
2013-11-22 13:31 - 2013-06-18 01:17 - 00000000 ____D C:\Users\Djimbe2_2
2013-11-21 16:54 - 2011-06-28 23:58 - 00024932 _____ C:\Users\Djimbe2\Desktop\Names.txt
2013-11-20 00:10 - 2013-11-20 00:09 - 00692512 _____ (RealNetworks, Inc.) C:\Users\Djimbe2_2\Downloads\RealDownloader (1).exe
2013-11-20 00:09 - 2013-11-20 00:09 - 00692512 _____ (RealNetworks, Inc.) C:\Users\Djimbe2_2\Downloads\RealDownloader.exe
2013-11-15 15:53 - 2013-11-15 15:43 - 503735416 _____ C:\Users\Djimbe2_2\Downloads\adt-bundle-windows-x86_64-20131030.zip
2013-11-15 14:54 - 2013-11-15 14:54 - 00000978 _____ C:\Users\Djimbe2_2\Desktop\XT897 - Shortcut.lnk
2013-11-15 13:57 - 2013-11-15 13:57 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Roaming\Motorola
2013-11-15 13:56 - 2013-11-15 13:56 - 35618040 _____ (Motorola Mobility) C:\Users\Djimbe2_2\Downloads\MotorolaDeviceManager_2.4.3.exe
2013-11-15 13:52 - 2013-11-15 13:52 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_Motousbnet_01009.Wdf
2013-11-15 13:52 - 2013-11-15 13:52 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_motfilt_01009.Wdf
2013-11-15 13:52 - 2013-11-15 13:52 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_motccgp_01009.Wdf
2013-11-15 07:52 - 2013-11-15 07:52 - 00000000 ____D C:\Users\Djimbe2_2\Downloads\Afternoons In December
2013-11-15 07:46 - 2013-11-15 07:41 - 92062001 _____ C:\Users\Djimbe2_2\Downloads\Afternoons In December.zip
2013-11-12 10:59 - 2013-11-12 10:53 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Roaming\calibre
2013-11-12 10:59 - 2011-12-19 11:16 - 00000000 ____D C:\Users\Djimbe2\Calibre Library
2013-11-12 08:59 - 2013-11-12 08:59 - 00000000 ____D C:\Users\Djimbe2\Downloads\The Reason I Jump - The Inner Voice of A Thirteen Year Old Boy With Autism - Naoki Higashida
2013-11-12 08:55 - 2013-11-12 08:23 - 397540553 _____ C:\Users\Djimbe2\Downloads\The.Ultimate.Fighter.S18E10.6th.Nov.2013.HDTV.x264-Sir.Paul.mp4
2013-11-12 08:54 - 2013-11-12 08:53 - 01375010 _____ C:\Users\Djimbe2\Downloads\The Reason I Jump - The Inner Voice of A Thirteen Year Old Boy With Autism - Naoki Higashida.epub
2013-11-09 20:56 - 2013-11-09 20:56 - 00000390 _____ C:\Windows\Tasks\ReclaimerResumeInstall_Djimbe2_2.job
2013-11-09 20:56 - 2013-07-25 03:29 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Roaming\Real
2013-11-09 20:52 - 2013-11-09 20:50 - 00000306 _____ C:\Windows\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1452896597-1932748492-2834507788-1007.job
2013-11-09 20:42 - 2013-11-09 20:42 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Local\Adobe
2013-11-09 20:42 - 2013-06-18 01:17 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Roaming\Adobe
ZeroAccess:
C:\Users\Djimbe2\AppData\Local\Google\Desktop\Install

Files to move or delete:
====================
C:\Users\Djimbe2\AppData\Roaming\skype.ini
C:\ProgramData\wavav0bdtzbtb43b.reg
C:\Windows\Tasks\{7DF45D32-FE32-41F4-90FE-37F19E4C75A4}.job


Some content of TEMP:
====================
C:\Users\Djimbe2_2\AppData\Local\temp\ComboFix.exe
C:\Users\Djimbe2_2\AppData\Local\temp\ntdll_dump.dll
C:\Users\Djimbe2_2\AppData\Local\temp\Quarantine.exe
C:\Users\Djimbe2_2\AppData\Local\temp\speccycpuid.dll


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-10-12 02:53

==================== End Of Log ============================
 

Djimbe

New Member
Thread author
Verified
Dec 5, 2013
15
Did it again with all Options listed...

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 07-12-2013 01
Ran by Djimbe2_2 (administrator) on 1A on 07-12-2013 04:27:24
Running from C:\Users\Djimbe2_2\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 10
Boot Mode: Safe Mode (with Networking)

==================== Processes (Whitelisted) =================

(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(BitTorrent, Inc.) C:\Program Files (x86)\uTorrent\uTorrent.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(MPC-HC Team) C:\Program Files (x86)\K-Lite Codec Pack\Media Player Classic\mpc-hc.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6245408 2010-05-25] (Realtek Semiconductor)
HKLM\...\Run: [IntelliPoint] - C:\Program Files\Microsoft IntelliPoint\ipoint.exe [2417032 2011-08-01] (Microsoft Corporation)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-14] (Synaptics Incorporated)
HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [1356240 2013-08-12] (Microsoft Corporation)
HKLM\...\Policies\Explorer: [RestrictRun] 0
HKCU\...\Run: [HPAdvisorDock] - C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Dock\HPAdvisorDock.exe [1712184 2010-02-09] ()
HKCU\...\Run: [LightScribe Control Panel] - C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2736128 2010-05-19] (Hewlett-Packard Company)
HKCU\...\Run: [swg] - C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2011-02-21] (Google Inc.)
HKCU\...\Run: [Facebook Update] - C:\Users\Djimbe2_2\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-10-18] (Facebook Inc.)
HKCU\...\Run: [GoogleDriveSync] - C:\Program Files (x86)\Google\Drive\googledrivesync.exe [20133824 2013-09-25] (Google)
HKCU\...\RunOnce: [FlashPlayerUpdate] - C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_8_800_94_ActiveX.exe -update activex [814984 2013-07-11] (Adobe Systems Incorporated)
HKCU\...\Policies\Explorer: [RestrictRun] 0
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2010-06-17] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [TkBellExe] - C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe [295512 2013-07-12] (RealNetworks, Inc.)
HKU\Default\...\Run: [HPAdvisorDock] - C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Dock\HPAdvisorDock.exe [1712184 2010-02-09] ()
HKU\Default User\...\Run: [HPAdvisorDock] - C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Dock\HPAdvisorDock.exe [1712184 2010-02-09] ()
HKU\Djimbe2\...\Run: [swg] - C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2011-02-21] (Google Inc.)
HKU\Djimbe2\...\Run: [Facebook Update] - C:\Users\Djimbe2\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-06-21] (Facebook Inc.)
HKU\Djimbe2\...\Run: [GoogleDriveSync] - C:\Program Files (x86)\Google\Drive\googledrivesync.exe [20133824 2013-09-25] (Google)
HKU\Djimbe2\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3481408 2012-02-13] (DT Soft Ltd)
HKU\TEMP.1A.003\...\Run: [HPAdvisorDock] - C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Dock\HPAdvisorDock.exe [1712184 2010-02-09] ()
HKU\TEMP.1A.003\...\Run: [LightScribe Control Panel] - C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2736128 2010-05-19] (Hewlett-Packard Company)
Startup: C:\Users\Djimbe2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PdaNet Desktop.lnk
ShortcutTarget: PdaNet Desktop.lnk -> C:\Program Files (x86)\PdaNet for Android\PdaNetPC.exe ()

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - {0385B458-6C4B-4090-8DBF-493BF0AD1451} URL = http://en.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {7E98756E-5482-4F76-9D6A-ABFEE6399AC3} URL = http://www.ask.com/web?q={searchterms}&l=dis&o=ushpl
SearchScopes: HKLM - {F682C2EF-0D56-4172-90AD-FBDED0185679} URL = http://search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF
SearchScopes: HKLM-x32 - {7E98756E-5482-4F76-9D6A-ABFEE6399AC3} URL = http://www.ask.com/web?q={searchterms}&l=dis&o=ushpl
SearchScopes: HKLM-x32 - {F682C2EF-0D56-4172-90AD-FBDED0185679} URL = http://search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF
SearchScopes: HKCU - {0385B458-6C4B-4090-8DBF-493BF0AD1451} URL =
SearchScopes: HKCU - {7E98756E-5482-4F76-9D6A-ABFEE6399AC3} URL =
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: No Name - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No File
BHO: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll (Adblock Plus)
BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
BHO-x32: No Name - {6C09FC0C-026F-474F-B831-8FB2850DC0D0} - No File
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll (Adblock Plus)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
DPF: HKLM-x32 {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: HKLM-x32 {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} http://h20614.www2.hp.com/ediags/gmd/Install/Cab/hpdetect1261.cab
DPF: HKLM-x32 {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} http://zone.msn.com/bingame/dim2/default/popcaploader_v6.cab
Winsock: Catalog5 01 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll"
Winsock: Catalog5-x64 01 %SystemRoot%\System32\mswsock.dll [327168] (Microsoft Corporation) ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll"
Tcpip\Parameters: [DhcpNameServer] 208.59.247.45 208.59.247.46

Chrome:
=======
CHR HomePage: hxxp://www.google.com
CHR RestoreOnStartup: "hxxp://www.google.com"
CHR Extension: (Google Docs) - C:\Users\Djimbe2_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0
CHR Extension: (Google Drive) - C:\Users\Djimbe2_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (YouTube) - C:\Users\Djimbe2_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Users\Djimbe2_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (MagicScroll eBook Reader) - C:\Users\Djimbe2_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghgnmgfdoiplfmhgghbmlphanpfmjble\3.0_0
CHR Extension: (Crackle) - C:\Users\Djimbe2_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibfamoapbmmmlknoopmmfofgladlinic\7.1.7_0
CHR Extension: (RealDownloader) - C:\Users\Djimbe2_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji\1.3.2_0
CHR Extension: (Facebook Notifications) - C:\Users\Djimbe2_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmameahlembdcigphohgiodcgjomcgeo\1.27_0
CHR Extension: (Google Wallet) - C:\Users\Djimbe2_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0
CHR Extension: (Evernote Web Clipper) - C:\Users\Djimbe2_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\pioclpoplcdbaefihamjohnefbikjilc\6.0.3_0
CHR Extension: (Gmail) - C:\Users\Djimbe2_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
CHR HKLM-x32\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx

==================== Services (Whitelisted) =================

S4 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [140672 2012-07-11] (SUPERAntiSpyware.com)
S2 Motorola Device Manager; C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe [137528 2013-07-31] (Motorola Mobility LLC)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-08-12] (Microsoft Corporation)
S3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [366600 2013-08-12] (Microsoft Corporation)
S4 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH)
S4 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH)
S2 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-04-16] ()
S2 Realtek11nCU; C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\RtlService.exe [36864 2010-04-16] (Realtek)
S2 Virtual Router; C:\Program Files (x86)\Virtual Router\VirtualRouterService.exe [12288 2013-02-10] (Chris Pietschmann (http://pietschsoft.com))

==================== Drivers (Whitelisted) ====================

R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-03-20] (DT Soft Ltd)
S1 ESProtectionDriver; C:\Program Files\Malwarebytes Anti-Exploit\MBAE.sys [62168 2013-08-01] ()
S3 mbamchameleon; C:\Windows\system32\drivers\mbamchameleon.sys [91352 2013-10-15] (Malwarebytes Corporation)
S0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [247216 2013-06-18] (Microsoft Corporation)
S2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [139616 2013-06-18] (Microsoft Corporation)
S3 RTL8192cu; C:\Windows\System32\DRIVERS\RTL8192cu.sys [848384 2011-02-10] (Realtek Semiconductor Corporation )
S1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-13] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
S3 cpuz136; \??\C:\Users\DJIMBE~1\AppData\Local\Temp\cpuz136\cpuz136_x64.sys [x]
S4 danxnwvg; \??\C:\Windows\system32\drivers\danxnwvg.sys [x]
S4 gamaqgqk; \??\C:\Windows\system32\drivers\gamaqgqk.sys [x]
S4 jpjrpwpi; \??\C:\Windows\system32\drivers\jpjrpwpi.sys [x]
S4 lstgprdh; \??\C:\Windows\system32\drivers\lstgprdh.sys [x]
S3 motccgpfl; system32\DRIVERS\motccgpfl.sys [x]
S4 motusbdevice; system32\DRIVERS\motusbdevice.sys [x]
S4 SBRE; \??\C:\Windows\system32\drivers\SBREdrv.sys [x]

========================== Drivers MD5 =======================

C:\Windows\system32\drivers\1394ohci.sys ==> MD5 is legit
C:\Windows\System32\drivers\ACPI.sys ==> MD5 is legit
C:\Windows\system32\drivers\acpipmi.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\adp94xx.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\adpahci.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\adpu320.sys ==> MD5 is legit
C:\Windows\system32\drivers\afd.sys 314C17917AC8523EC77A710215012A65
C:\Windows\system32\drivers\agp440.sys ==> MD5 is legit
C:\Windows\system32\drivers\aliide.sys ==> MD5 is legit
C:\Windows\system32\drivers\amdide.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\amdk8.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\atipmdag.sys 4BFFEAD896AFFBC80C86F62CD18F17C9
C:\Windows\System32\DRIVERS\atikmpag.sys A7155A832F24CF5B048F6048380636EC
C:\Windows\System32\DRIVERS\amdppm.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\amdsata.sys 53D8D46D51D390ABDB54ECA623165CB7
C:\Windows\system32\DRIVERS\amdsbs.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\amdxata.sys 75C51148154E34EB3D7BB84749A758D5
C:\Windows\system32\drivers\appid.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\arc.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\arcsas.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\asyncmac.sys ==> MD5 is legit
C:\Windows\System32\drivers\atapi.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\athrx.sys B4421D8CDADC441F76BA39532A3E3414
C:\Windows\System32\drivers\AtiHdmi.sys 2D648572BA9A610952FCAFBA1E119C2D
C:\Windows\System32\DRIVERS\AtiPcie.sys C07A040D6B5A42DD41EE386CF90974C8
C:\Windows\system32\DRIVERS\bxvbda.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\b57nd60a.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Beep.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\blbdrive.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\bowser.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\BrFiltLo.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\BrFiltUp.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\bridge.sys 5C2F352A4E961D72518261257AAE204B
C:\Windows\System32\DRIVERS\bridge.sys 5C2F352A4E961D72518261257AAE204B
C:\Windows\System32\Drivers\Brserid.sys ==> MD5 is legit
C:\Windows\System32\Drivers\BrSerWdm.sys ==> MD5 is legit
C:\Windows\System32\Drivers\BrUsbMdm.sys ==> MD5 is legit
C:\Windows\System32\Drivers\BrUsbSer.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\motfilt.sys 21A583678FD814794BC3E8E32E5A6BD3
C:\Windows\system32\DRIVERS\bthmodem.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\cdfs.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\cdrom.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\circlass.sys ==> MD5 is legit
C:\Windows\System32\CLFS.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\CmBatt.sys ==> MD5 is legit
C:\Windows\system32\drivers\cmdide.sys ==> MD5 is legit
C:\Windows\System32\Drivers\cng.sys AAFCB52FE0037207FB6FBEA070D25EFE
C:\Windows\System32\DRIVERS\compbatt.sys ==> MD5 is legit
C:\Windows\system32\drivers\CompositeBus.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\crcdisk.sys ==> MD5 is legit
C:\Windows\System32\Drivers\dfsc.sys ==> MD5 is legit
C:\Windows\System32\drivers\discache.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\disk.sys ==> MD5 is legit
C:\Windows\System32\drivers\drmkaud.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\dtsoftbus01.sys 46571ED73AE84469DCA53081D33CF3C8
C:\Windows\System32\drivers\dxgkrnl.sys 88612F1CE3BF42256913BF6E61C70D52
C:\Windows\system32\DRIVERS\evbda.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\elxstor.sys ==> MD5 is legit
C:\Windows\system32\drivers\errdev.sys ==> MD5 is legit
C:\Program Files\Malwarebytes Anti-Exploit\MBAE.sys 0571E626B1FDB6A83F67F11ACC65D2C0
C:\Windows\System32\Drivers\exfat.sys ==> MD5 is legit
C:\Windows\System32\Drivers\fastfat.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\fdc.sys ==> MD5 is legit
C:\Windows\System32\drivers\fileinfo.sys ==> MD5 is legit
C:\Windows\System32\drivers\filetrace.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\flpydisk.sys ==> MD5 is legit
C:\Windows\System32\drivers\fltmgr.sys ==> MD5 is legit
C:\Windows\System32\drivers\FsDepends.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\fssfltr.sys 6C06701BF1DB05405804D7EB610991CE
C:\Windows\System32\Drivers\Fs_Rec.sys 6BD9295CC032DD3077C671FCCF579A7B
C:\Windows\System32\DRIVERS\fvevol.sys 8F6322049018354F45F05A2FD2D4E5E0
C:\Windows\system32\DRIVERS\gagp30kx.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\GEARAspiWDM.sys ==> MD5 is legit
C:\Windows\system32\drivers\hcw85cir.sys ==> MD5 is legit
C:\Windows\system32\drivers\HdAudio.sys 975761C778E33CD22498059B91E7373A
C:\Windows\system32\drivers\HDAudBus.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\HidBatt.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\hidbth.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\hidir.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\hidusb.sys ==> MD5 is legit
C:\Windows\system32\drivers\HpSAMD.sys ==> MD5 is legit
C:\Windows\System32\drivers\HTTP.sys ==> MD5 is legit
C:\Windows\System32\drivers\hwpolicy.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\i8042prt.sys ==> MD5 is legit
C:\Windows\system32\drivers\iaStorV.sys AAAF44DB3BD0B9D1FB6969B23ECC8366
C:\Windows\System32\DRIVERS\igdkmd64.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\iirsp.sys ==> MD5 is legit
C:\Windows\System32\drivers\RTKVHD64.sys B88E24BD77A0CE2CFFEE2FACF1151BE0
C:\Windows\system32\drivers\intelide.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\intelppm.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\ipfltdrv.sys ==> MD5 is legit
C:\Windows\system32\drivers\IPMIDrv.sys ==> MD5 is legit
C:\Windows\System32\drivers\ipnat.sys ==> MD5 is legit
C:\Windows\System32\drivers\irenum.sys ==> MD5 is legit
C:\Windows\system32\drivers\isapnp.sys ==> MD5 is legit
C:\Windows\system32\drivers\msiscsi.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\kbdclass.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\kbdhid.sys ==> MD5 is legit
C:\Windows\System32\Drivers\ksecdd.sys 97A7070AEA4C058B6418519E869A63B4
C:\Windows\System32\Drivers\ksecpkg.sys 7EFB9333E4ECCE6AE4AE9D777D9E553E
C:\Windows\system32\drivers\ksthunk.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\lltdio.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\lsi_fc.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\lsi_sas.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\lsi_sas2.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\lsi_scsi.sys ==> MD5 is legit
C:\Windows\system32\drivers\luafv.sys ==> MD5 is legit
C:\Windows\system32\drivers\mbamchameleon.sys C63BF488680F88B6A1D83302AA0ACD0E
C:\Windows\system32\DRIVERS\megasas.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\MegaSR.sys ==> MD5 is legit
C:\Windows\System32\drivers\modem.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\monitor.sys ==> MD5 is legit
C:\Windows\System32\Drivers\motoandroid.sys 4BD239A90FAFC80CA91AF2DD644D719A
C:\Windows\System32\DRIVERS\motccgp.sys 12588483F1A69AB2970D36D96B07F71B
C:\Windows\System32\DRIVERS\MijXfilt.sys EB03D4164E7F10B601D280413655ADE4
C:\Windows\System32\DRIVERS\motswch.sys 19BC2161C3FCCED802F1BCD9B78C3466
C:\Windows\System32\DRIVERS\Motousbnet.sys 6A3C0B01551B614B6C6BC9743DEF60D9
C:\Windows\System32\DRIVERS\mouclass.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\mouhid.sys ==> MD5 is legit
C:\Windows\System32\drivers\mountmgr.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\MpFilter.sys FC1D590039EF06A381768710E6C07E75
C:\Windows\system32\drivers\mpio.sys ==> MD5 is legit
C:\Windows\System32\drivers\mpsdrv.sys ==> MD5 is legit
C:\Windows\system32\drivers\mrxdav.sys 1A4F75E63C9FB84B85DFFC6B63FD5404
C:\Windows\System32\DRIVERS\mrxsmb.sys A5D9106A73DC88564C825D317CAC68AC
C:\Windows\System32\DRIVERS\mrxsmb10.sys D711B3C1D5F42C0C2415687BE09FC163
C:\Windows\System32\DRIVERS\mrxsmb20.sys 9423E9D355C8D303E76B8CFBD8A5C30C
C:\Windows\System32\drivers\msahci.sys ==> MD5 is legit
C:\Windows\system32\drivers\msdsm.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Msfs.sys ==> MD5 is legit
C:\Windows\System32\drivers\mshidkmdf.sys ==> MD5 is legit
C:\Windows\System32\drivers\msisadrv.sys ==> MD5 is legit
C:\Windows\System32\drivers\MSKSSRV.sys ==> MD5 is legit
C:\Windows\System32\drivers\MSPCLOCK.sys ==> MD5 is legit
C:\Windows\System32\drivers\MSPQM.sys ==> MD5 is legit
C:\Windows\System32\Drivers\MsRPC.sys ==> MD5 is legit
C:\Windows\system32\drivers\mssmbios.sys ==> MD5 is legit
C:\Windows\System32\drivers\MSTEE.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\MTConfig.sys ==> MD5 is legit
C:\Windows\System32\Drivers\mup.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\nwifi.sys ==> MD5 is legit
C:\Windows\System32\drivers\ndis.sys 760E38053BF56E501D562B70AD796B88
C:\Windows\System32\DRIVERS\ndiscap.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\ndistapi.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\ndisuio.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\ndiswan.sys ==> MD5 is legit
C:\Windows\System32\Drivers\NDProxy.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\netbios.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\netbt.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\netr28ux.sys 618C55B392238B9467F9113E13525C49
C:\Windows\System32\DRIVERS\netw5v64.sys 64428DFDAF6E88366CB51F45A79C5F69
C:\Windows\system32\DRIVERS\nfrd960.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\NisDrvWFP.sys 8FB3C853E886E1E4D57271672486111C
C:\Windows\System32\Drivers\Npfs.sys ==> MD5 is legit
C:\Windows\System32\drivers\nsiproxy.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Ntfs.sys B98F8C6E31CD07B2E6F71F7F648E38C0
C:\Windows\System32\Drivers\Null.sys ==> MD5 is legit
C:\Windows\system32\drivers\nvraid.sys 0A92CB65770442ED0DC44834632F66AD
C:\Windows\system32\drivers\nvstor.sys DAB0E87525C10052BF65F06152F37E4A
C:\Windows\system32\drivers\nv_agp.sys ==> MD5 is legit
C:\Windows\system32\drivers\ohci1394.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\parport.sys ==> MD5 is legit
C:\Windows\System32\drivers\partmgr.sys E9766131EEADE40A27DC27D2D68FBA9C
C:\Windows\System32\drivers\pci.sys ==> MD5 is legit
C:\Windows\system32\drivers\pciide.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\pcmcia.sys ==> MD5 is legit
C:\Windows\System32\drivers\pcw.sys ==> MD5 is legit
C:\Windows\System32\drivers\peauth.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\pneteth.sys A010F13D27C1033A8BE09D5FA9BF348B
C:\Windows\System32\DRIVERS\pnetmdm64.sys 06841F5CD8410B6BDC0B5A631B8F8787
C:\Windows\System32\DRIVERS\point64.sys 4F0878FD62D5F7444C5F1C4C66D9D293
C:\Windows\System32\DRIVERS\raspptp.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\processr.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\pacer.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\ql2300.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\ql40xx.sys ==> MD5 is legit
C:\Windows\system32\drivers\qwavedrv.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rasacd.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\AgileVpn.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rasl2tp.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\raspppoe.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rassstp.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rdbss.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\rdpbus.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\RDPCDD.sys ==> MD5 is legit
C:\Windows\System32\drivers\rdpencdd.sys ==> MD5 is legit
C:\Windows\System32\drivers\rdprefmp.sys ==> MD5 is legit
C:\Windows\System32\drivers\rdpvideominiport.sys 313F68E1A3E6345A4F47A36B07062F34
C:\Windows\System32\Drivers\RDPWD.sys E61608AA35E98999AF9AAEEEA6114B0A
C:\Windows\System32\drivers\rdyboost.sys ==> MD5 is legit
C:\Windows\System32\Drivers\RootMdm.sys 388D3DD1A6457280F3BADBA9F3ACD6B1
C:\Windows\System32\DRIVERS\rspndr.sys ==> MD5 is legit
C:\Windows\System32\Drivers\RtsUStor.sys 22D6B47D004A6568C500680BE2972854
C:\Windows\System32\DRIVERS\Rt64win7.sys EE082E06A82FF630351D1E0EBBD3D8D0
C:\Windows\System32\DRIVERS\RTL8192cu.sys 665BA29357882A8C5980B15B3A0123A4
C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS 3289766038DB2CB14D07DC84392138D5
C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS 58A38E75F3316A83C23DF6173D41F2B5
C:\Windows\system32\drivers\sbp2port.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\scfilter.sys ==> MD5 is legit
C:\Windows\system32\drivers\sdbus.sys 111E0EBC0AD79CB0FA014B907B231CF0
C:\Windows\System32\Drivers\secdrv.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\serenum.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\serial.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\sermouse.sys ==> MD5 is legit
C:\Windows\system32\drivers\sffdisk.sys ==> MD5 is legit
C:\Windows\system32\drivers\sffp_mmc.sys ==> MD5 is legit
C:\Windows\system32\drivers\sffp_sd.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\sfloppy.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\Sftfslh.sys 2046AA7491DE7EFA4D70E615D9BC9D09
C:\Windows\System32\DRIVERS\Sftplaylh.sys 0E0446BC4D51BE4263ACB7E33491191C
C:\Windows\System32\DRIVERS\Sftredirlh.sys C5FB982CD266E604ED3142102C26D62C
C:\Windows\System32\DRIVERS\Sftvollh.sys 2575511AF67AA1FA068CCC4918E2C2A3
C:\Windows\system32\DRIVERS\SiSRaid2.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\sisraid4.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\smb.sys ==> MD5 is legit
C:\Windows\SysWow64\speedfan.sys 12583AF6CBE0050651EAF2723B3AD7B3
C:\Windows\System32\Drivers\spldr.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\srv.sys 441FBA48BFF01FDB9D5969EBC1838F0B
C:\Windows\System32\DRIVERS\srv2.sys B4ADEBBF5E3677CCE9651E0F01F7CC28
C:\Windows\System32\DRIVERS\VSTAZL6.SYS 0C4540311E11664B245A263E1154CEF8
C:\Windows\System32\DRIVERS\VSTDPV6.SYS 02071D207A9858FBE3A48CBFD59C4A04
C:\Windows\System32\DRIVERS\VSTCNXT6.SYS 18E40C245DBFAF36FD0134A7EF2DF396
C:\Windows\System32\DRIVERS\srvnet.sys 27E461F0BE5BFF5FC737328F749538C3
C:\Windows\system32\DRIVERS\stexstor.sys ==> MD5 is legit
C:\Windows\system32\drivers\swenum.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\SynTP.sys AC3CC98B1BDB6540021D3FFB105AC2B9
C:\Windows\System32\drivers\tcpip.sys 40AF23633D197905F03AB5628C558C51
C:\Windows\System32\DRIVERS\tcpip.sys 40AF23633D197905F03AB5628C558C51
C:\Windows\System32\drivers\tcpipreg.sys 1B16D0BD9841794A6E0CDE0CEF744ABC
C:\Windows\System32\drivers\tdpipe.sys ==> MD5 is legit
C:\Windows\System32\drivers\tdtcp.sys 51C5ECEB1CDEE2468A1748BE550CFBC8
C:\Windows\System32\DRIVERS\tdx.sys ==> MD5 is legit
C:\Windows\system32\drivers\termdd.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\tssecsrv.sys 4CE278FC9671BA81A138D70823FCAA09
C:\Windows\System32\drivers\tsusbflt.sys 17C6B51CBCCDED95B3CC14E22791F85E
C:\Windows\System32\DRIVERS\tunnel.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\uagp35.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\udfs.sys ==> MD5 is legit
C:\Windows\system32\drivers\uliagpkx.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\umbus.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\umpass.sys ==> MD5 is legit
C:\Windows\System32\Drivers\usbaapl64.sys F724B03C3DFAACF08D17D38BF3333583
C:\Windows\system32\drivers\usbaudio.sys B0435098C81D04CAFFF80DDB746CD3A2
C:\Windows\System32\DRIVERS\usbccgp.sys 6F1A3157A1C89435352CEB543CDB359C
C:\Windows\system32\drivers\usbcir.sys 80B0F7D5CCF86CEB5D402EAAF61FEC31
C:\Windows\System32\DRIVERS\usbehci.sys C025055FE7B87701EB042095DF1A2D7B
C:\Windows\System32\DRIVERS\usbfilter.sys 2C780746DC44A28FE67004DC58173F05
C:\Windows\System32\DRIVERS\usbhub.sys 287C6C9410B111B68B52CA298F7B8C24
C:\Windows\System32\DRIVERS\usbohci.sys 9840FC418B4CBD632D3D0A667A725C31
C:\Windows\System32\DRIVERS\usbprint.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\usbscan.sys 9661DA76B4531B2DA272ECCE25A8AF24
C:\Windows\System32\DRIVERS\USBSTOR.SYS FED648B01349A3C8395A5169DB5FB7D6
C:\Windows\system32\drivers\usbuhci.sys 62069A34518BCF9C1FD9E74B3F6DB7CD
C:\Windows\System32\Drivers\usbvideo.sys 1F775DA4CF1A3A1834207E975A72E9D7
C:\Windows\System32\drivers\vdrvroot.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\vgapnp.sys ==> MD5 is legit
C:\Windows\System32\drivers\vga.sys ==> MD5 is legit
C:\Windows\system32\drivers\vhdmp.sys ==> MD5 is legit
C:\Windows\system32\drivers\viaide.sys ==> MD5 is legit
C:\Windows\System32\drivers\volmgr.sys ==> MD5 is legit
C:\Windows\System32\drivers\volmgrx.sys ==> MD5 is legit
C:\Windows\System32\drivers\volsnap.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\vsmraid.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\vwifibus.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\vwififlt.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\vwifimp.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\wacompen.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\wanarp.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\wanarp.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\wd.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\wdcsam64.sys ==> MD5 is legit
C:\Windows\System32\drivers\Wdf01000.sys E2C933EDBC389386EBE6D2BA953F43D8
C:\Windows\System32\DRIVERS\wfplwf.sys ==> MD5 is legit
C:\Windows\System32\drivers\wimmount.sys ==> MD5 is legit
C:\Windows\SysWow64\drivers\wimmount.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\WinUsb.sys FE88B288356E7B47B74B13372ADD906D
C:\Windows\system32\drivers\wmiacpi.sys ==> MD5 is legit
C:\Windows\system32\drivers\ws2ifsl.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\WSDPrint.sys 8D918B1DB190A4D9B1753A66FA8C96E8
C:\Windows\System32\drivers\WudfPf.sys AB886378EEB55C6C75B4F2D14B6C869F
C:\Windows\System32\DRIVERS\WUDFRd.sys DDA4CAF29D8C0A297F886BFE561E6659
C:\Windows\System32\DRIVERS\xusb21.sys 9176C0822FAA649E45121875BE32F5D2
C:\Windows\System32\DRIVERS\yk62x64.sys B3EEACF62445E24FBB2CD4B0FB4DB026

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-12-07 04:21 - 2013-12-07 04:23 - 89966713 _____ C:\Users\Djimbe2\Downloads\hot-gf-#####ed-in-h-m-changing-room747609hq.mp4
2013-12-07 04:19 - 2013-12-07 04:28 - 00034202 _____ C:\Users\Djimbe2_2\Downloads\FRST.txt
2013-12-07 04:19 - 2013-12-07 04:19 - 01927360 _____ (Farbar) C:\Users\Djimbe2_2\Downloads\FRST64.exe
2013-12-07 01:13 - 2013-12-07 03:54 - 281514926 _____ C:\Users\Djimbe2\Downloads\BigWetButts - Ava Addams (An Ass Fit For a King) NEW November 15, 2013.mp4
2013-12-07 01:03 - 2013-12-07 01:03 - 00000000 ____D C:\Users\Djimbe2\Downloads\Young_White_Pussy_Teen_XXX_Cumshot
2013-12-07 00:54 - 2013-12-07 00:54 - 205531983 _____ C:\Users\Djimbe2\Downloads\Maximum Fitness_Scene 7_Aleska Diamond and Cathy Heaven.wmv
2013-12-07 00:14 - 2013-12-07 00:14 - 00000000 ____D C:\Users\Djimbe2\Downloads\Tiny.Chicks.Struggle.To.Fit.Huge.Dicks.2.XXX.DVDRip.XviD-STARLETS
2013-12-07 00:10 - 2013-12-07 00:10 - 209463685 _____ C:\Users\Djimbe2\Downloads\JuliadeLucia_MeCorroentusGafas_CumLouder.mp4
2013-12-06 23:18 - 2013-12-07 01:04 - 00000000 ____D C:\Users\Djimbe2\Downloads\Irena.4398.CzechCasting.2013.HD_iyutero.com
2013-12-06 23:18 - 2013-12-06 23:18 - 00000000 ____D C:\Users\Djimbe2\Downloads\Lauren – It Fits Perfect
2013-12-06 22:47 - 2013-12-07 04:08 - 00000000 ____D C:\Users\Djimbe2\Downloads\BrokendollHouse.11.12.14.Kendra.James.XXX.WMV-FiTTA[rarbg]
2013-12-06 22:39 - 2013-12-06 22:39 - 153958403 _____ C:\Users\Djimbe2\Downloads\Black_Wonder_Erika_Vuitton_Brings_Boyfriend_Home_And_Lets_Him_Eat_Her_Pussy_Before_She_Climbs_On_Him_To_Fit_His_Long_Schlong_Inside_Her_Cumshot_Boobs_XXX.mp4
2013-12-06 22:39 - 2013-12-06 22:39 - 00000000 ____D C:\Users\Djimbe2\Downloads\MyBestFetish.12.11.12.Fitting.Room.Hidden.Cam.XXX.720p.WMV
2013-12-06 22:34 - 2013-12-06 22:34 - 00000000 ____D C:\Users\Djimbe2\Downloads\Muriel - Fitness Ball HD 720p
2013-12-06 22:33 - 2013-12-06 22:33 - 00000000 ____D C:\Users\Djimbe2\Downloads\[hshare.net].Piss.Fit.EP03.[RAW]
2013-12-06 22:32 - 2013-12-07 04:16 - 943233522 _____ C:\Users\Djimbe2\Downloads\Sheena.Shaw.Mandingo.Will.It.Fit.In.My.Ass.JulesJordan.2013.HD_iyutero.com.mp4
2013-12-06 22:32 - 2013-12-07 01:17 - 775070447 _____ C:\Users\Djimbe2\Downloads\i01.wmv
2013-12-06 22:32 - 2013-12-06 22:32 - 162966034 _____ C:\Users\Djimbe2\Downloads\hot_emo_amateur_girl.avi
2013-12-06 22:32 - 2013-12-06 22:32 - 142644287 _____ C:\Users\Djimbe2\Downloads\Fitness-Maus - Ausgehungerter User betrügt seine Frau mit mir 06.09.13.flv
2013-12-06 22:31 - 2013-12-06 22:31 - 00000000 ____D C:\Users\Djimbe2\Downloads\So Big It Barely Fits 3 (2012) XXX DVDRip
2013-12-06 11:44 - 2013-12-07 04:28 - 111391528 _____ C:\Users\Djimbe2\Downloads\Fit Blonde #####s in Hotel Room.wmv
2013-12-06 11:18 - 2013-12-06 11:18 - 00000000 ____D C:\Users\Djimbe2\Downloads\Private.Lustschweine.Fick.dich.Fit.German.XXX.DVDRip.x264-KissMyDick
2013-12-06 10:24 - 2013-12-06 23:47 - 687401797 _____ C:\Users\Djimbe2\Downloads\bcc.13.11.18.emjay.mp4
2013-12-06 09:57 - 2013-12-06 09:57 - 00000000 ____D C:\Users\Djimbe2\Downloads\YoungLegalPorn.Ira
2013-12-06 07:33 - 2013-12-06 07:33 - 00000000 ____D C:\Users\Djimbe2\Downloads\Young.Sex.Parties.-.Luda,Ira
2013-12-06 06:10 - 2013-12-07 02:54 - 00000000 ____D C:\Users\Djimbe2\Downloads\FirstAnalQuest.Ira
2013-12-06 06:09 - 2013-12-06 23:02 - 895891685 _____ C:\Users\Djimbe2\Downloads\bcc.13.12.02.melody.mp4
2013-12-06 06:02 - 2013-12-06 06:02 - 00000000 ____D C:\Users\Djimbe2\Downloads\TeenyLovers - Ira - Slutty Schoolgirl Doing-Her Home Work
2013-12-06 05:34 - 2013-12-06 05:34 - 00000000 ____D C:\Users\Djimbe2\Downloads\YoungLibertines-Ira And Andy [720p]
2013-12-06 04:44 - 2013-12-06 04:44 - 00000000 ____D C:\Users\Djimbe2\Downloads\CzechCasting.13.02.27.Irena.4398.XXX.720p.WMV-IEVA
2013-12-06 03:36 - 2013-12-06 05:11 - 263341535 _____ C:\Users\Djimbe2\Downloads\Ira.Lets.Give.It.A.Shot.YoungLegalPorn.2013.HD_iyutero.com.mp4
2013-12-06 03:27 - 2013-12-06 05:56 - 00000000 ____D C:\Users\Djimbe2\Downloads\Hegre-Art.09.04.07.Ira.Oil.XXX.720p.MOV-KTR[rbg]
2013-12-06 03:11 - 2013-12-07 00:13 - 379383061 _____ C:\Users\Djimbe2\Downloads\Russian Hot Blonde Teen - Ira.wmv
2013-12-06 03:10 - 2013-12-06 03:20 - 00000000 ____D C:\Users\Djimbe2\Downloads\SellYourGF.13.06.06.Ira.XXX.720p.MP4-iaK[rarbg]
2013-12-06 03:08 - 2013-12-06 03:45 - 298386844 _____ C:\Users\Djimbe2\Downloads\ira_1000k.mp4
2013-12-06 01:58 - 2013-12-06 02:59 - 00000000 ____D C:\Users\Djimbe2\Downloads\Sexy60Plus.E102.Irena.XXX.MP4-oRo[rarbg]
2013-12-06 01:46 - 2013-12-06 03:43 - 546985919 _____ C:\Users\Djimbe2\Downloads\CasualTeenSex - Irena [720p].mp4
2013-12-06 01:45 - 2013-12-06 03:17 - 218114637 _____ C:\Users\Djimbe2\Downloads\Ass Needs to Be Ready for Big Cock.wmv
2013-12-06 01:39 - 2013-12-06 01:39 - 00000000 ____D C:\Users\Djimbe2\Downloads\Cindy (AKA_ Cindy Vega, Clara, Ilona, Irena, Kacka, Lisa, Liza, Lola, Sindy, Sindy Vega, Tia) - Once Before Bedtime (2013) HDTV
2013-12-06 01:37 - 2013-12-06 09:19 - 00000000 ____D C:\Users\Djimbe2\Downloads\CasualTeenSex.13.11.08.Irena.XXX.720p.MP4-KTR[rarbg]
2013-12-06 01:37 - 2013-12-06 01:38 - 00000000 ____D C:\Users\Djimbe2\Downloads\Nubiles.13.03.23.Irena.Ready.To.Please.XXX.720p.WMV-KTR[rarbg]
2013-12-06 01:35 - 2013-12-06 01:35 - 00000000 ____D C:\Users\Djimbe2\Downloads\Cindy (AKA_ Cindy R, Cindy Vega, Clara, Ilona, Irena, Kacka, Lisa, Liza, Lola, Sindy, Sindy Vega, Tia) - Triple The Fun
2013-12-06 01:30 - 2013-12-06 10:16 - 00000000 ____D C:\Users\Djimbe2\Downloads\PlayboyPlus.13.08.19.Irina.Voronina.Killer.Shots.XXX.1080p.x264-PAYiSO[rarbg]
2013-12-04 21:23 - 2013-12-04 21:23 - 00000000 ____D C:\Users\Djimbe2\Downloads\Tiny Chicks Struggle To Fit Huge Dicks 2 XXX (Split Scenes)
2013-12-04 21:18 - 2013-12-05 14:14 - 196334332 _____ C:\Users\Djimbe2\Downloads\Innocent teen girl takes a huge dick in her tiny asshole[truehdporn].flv
2013-12-04 21:16 - 2013-12-04 21:48 - 416248083 _____ C:\Users\Djimbe2\Downloads\mc11168_1500.mp4
2013-12-04 21:15 - 2013-12-04 21:39 - 403859526 _____ C:\Users\Djimbe2\Downloads\mc12494_1500.mp4
2013-12-04 20:58 - 2013-12-04 21:12 - 506096687 _____ C:\Users\Djimbe2\Downloads\6388-540p.mp4
2013-12-04 20:53 - 2013-12-04 21:22 - 312343616 _____ C:\Users\Djimbe2\Downloads\Anita Bellini - Teeny Toes.mp4
2013-12-04 20:51 - 2013-12-07 04:09 - 305629068 _____ C:\Users\Djimbe2\Downloads\21Sextury - Anita Bellini - A Good Student .mp4
2013-12-04 20:44 - 2013-12-05 10:07 - 229478117 _____ C:\Users\Djimbe2\Downloads\SexArt - Anita Bellini & Mark I (Temptation) 720p NEW October 09, 2013.mp4
2013-12-04 20:43 - 2013-12-04 20:51 - 285251691 _____ C:\Users\Djimbe2\Downloads\Pervers_Trio_SD.mp4
2013-12-04 20:00 - 2013-12-04 20:16 - 378497617 _____ C:\Users\Djimbe2\Downloads\v200251 - Anita Bellini.mp4
2013-12-04 19:46 - 2013-12-04 20:23 - 368040262 _____ C:\Users\Djimbe2\Downloads\v8464 - Anita Bellini.mp4
2013-12-04 19:42 - 2013-12-04 20:37 - 399387138 _____ C:\Users\Djimbe2\Downloads\[Dorcel] Anita Bellini, Gina Devine, Markus Dupree - PERVERS TRIO WITH COLLEGE GIRLS (11.11.2013) [NEW RELEASE].mp4
2013-12-04 19:41 - 2013-12-04 19:41 - 00000000 ____D C:\Users\Djimbe2\Downloads\Tiny vs Huge (Anita Bellini) (2013) SiteRip
2013-12-04 19:36 - 2013-12-04 19:36 - 00000328 _____ C:\Windows\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1452896597-1932748492-2834507788-1007.job
2013-12-04 19:10 - 2013-12-04 19:11 - 00000000 ____D C:\32788R22FWJFW
2013-12-04 19:09 - 2013-12-04 19:09 - 00002998 _____ C:\Windows\System32\Tasks\Malwarebytes Anti-Exploit
2013-12-04 19:09 - 2013-12-04 19:09 - 00000508 _____ C:\Windows\Tasks\Malwarebytes Anti-Exploit.job
2013-12-03 10:55 - 2013-12-03 10:55 - 00000000 ____D C:\Users\Djimbe2\Downloads\Hegre-Art.11.07.26.Stasha.Neon.Light.XXX.720p.MOV-KTR[rbg]
2013-12-03 10:54 - 2013-12-03 11:19 - 352267217 _____ C:\Users\Djimbe2\Downloads\Hegre.Art.Stasha.Finger.Frenzy.Load.XXX.pornalized.wmv
2013-12-03 10:48 - 2013-12-03 13:09 - 00000000 ____D C:\Users\Djimbe2\Downloads\Hegre-Art.10.08.24.Stasha.Private.Show.XXX.INTERNAL.720p.MOV-KTR[rbg]
2013-12-03 10:48 - 2013-12-03 11:23 - 00000000 ____D C:\Users\Djimbe2\Downloads\Doc's Perfect 10s #441 - Hegre Art - Stasha - Baby Blue Bath
2013-12-03 10:47 - 2013-12-03 11:51 - 124444200 _____ C:\Users\Djimbe2\Downloads\Hengre-Art - Crazy In Bed - Stasha.avi
2013-12-01 17:50 - 2013-12-02 09:51 - 176255120 _____ C:\Users\Djimbe2\Downloads\Sora no Iro, Mizu no Iro - 01 [H264_AAC].mkv
2013-12-01 17:24 - 2013-12-01 19:12 - 109173084 _____ C:\Users\Djimbe2\Downloads\Simone Clair.wmv
2013-12-01 14:53 - 2013-12-01 14:53 - 00000000 ____D C:\Users\Djimbe2\Downloads\GloryHole-Initiations.13.02.11.Ana.Foxxx.XXX.720p.x264-SEXORS[rarbg]
2013-12-01 14:51 - 2013-12-02 07:38 - 394979151 _____ C:\Users\Djimbe2\Downloads\X-Art Ana Foxxx Hot Chocolate 720p.mp4
2013-12-01 14:48 - 2013-12-02 13:57 - 00000000 ____D C:\Users\Djimbe2\Downloads\Ana Foxxx - Bad Advice 5 [Penthouse][720P]
2013-12-01 14:43 - 2013-12-01 17:43 - 655388407 _____ C:\Users\Djimbe2\Downloads\2cstanaleilaniskinjohnny_2k.wmv
2013-12-01 14:42 - 2013-12-01 16:50 - 00000000 ____D C:\Users\Djimbe2\Downloads\Ana Foxxx - Bad Advice
2013-12-01 14:42 - 2013-12-01 15:55 - 546821694 _____ C:\Users\Djimbe2\Downloads\Ana Foxxx + Krystal - Round And Brown SD.mp4
2013-12-01 14:35 - 2013-12-01 17:21 - 190303332 _____ C:\Users\Djimbe2\Downloads\Sora no Iro, Mizu no Iro - 02 [H264_AAC].mkv
2013-11-29 19:52 - 2013-11-29 19:53 - 00000000 ____D C:\Users\Djimbe2\Downloads\フォルト!! Fault!! Ep.01-03 [EngSubs]
2013-11-29 19:19 - 2013-11-29 19:57 - 378686191 _____ C:\Users\Djimbe2\Downloads\The.Ultimate.Fighter.S18E11.iNTERNAL.HDTV.x264-KOENiG.mp4
2013-11-29 19:17 - 2013-11-29 20:00 - 00000000 ____D C:\Users\Djimbe2\Downloads\The.Ultimate.Fighter.S18E12.HDTV.x264-KYR[rarbg]
2013-11-29 19:16 - 2013-11-29 19:43 - 438124591 _____ C:\Users\Djimbe2\Downloads\The.Ultimate.Fighter.S18E13.HDTV.x264-PLAYNOW.mp4
2013-11-29 17:42 - 2013-11-30 04:50 - 00000000 ____D C:\Users\Djimbe2\Downloads\Fukubiki
2013-11-29 17:42 - 2013-11-29 17:43 - 00000000 ____D C:\Users\Djimbe2\Downloads\Sora no Iro, Mizu no Iro
2013-11-29 17:38 - 2013-11-29 17:38 - 00000000 ____D C:\Users\Djimbe2\Downloads\Honoo No Haramase Tenkousei [Hentai][Japan+Sub.English][WwW.xXxViCiOsAsZT.CoM]
2013-11-28 21:18 - 2013-11-28 21:18 - 00000418 _____ C:\Windows\Tasks\{7DF45D32-FE32-41F4-90FE-37F19E4C75A4}.job
2013-11-28 21:17 - 2013-11-28 21:17 - 01551008 _____ (Skype Technologies S.A.) C:\Users\Djimbe2_2\Downloads\SkypeSetup.exe
2013-11-27 09:05 - 2013-11-27 09:05 - 00837032 _____ (AirInstaller ) C:\Users\Djimbe2_2\Downloads\Setup.exe
2013-11-27 09:04 - 2013-11-27 09:04 - 00395776 _____ C:\Users\Djimbe2_2\Downloads\Marvel Avengers Alliance Hack (1).exe
2013-11-27 08:50 - 2013-11-27 08:50 - 00291570 _____ C:\Users\Djimbe2_2\Downloads\Marvel Avengers Alliance Hack[2013].zip
2013-11-27 08:03 - 2013-11-27 08:03 - 00000000 ____D C:\Users\Djimbe2_2\Downloads\Marvel Avengers Alliance Tool Adder ver 2.17
2013-11-27 08:03 - 2013-09-01 22:07 - 05858304 _____ (M) C:\Users\Djimbe2_2\Downloads\Marvel Avengers Alliance Tool Adder ver 2.17.exe
2013-11-27 08:01 - 2013-11-27 08:02 - 04382775 _____ C:\Users\Djimbe2_2\Downloads\Marvel Avengers Alliance Tool Adder ver 2.17.rar
2013-11-25 17:31 - 2013-11-25 20:53 - 16167493 _____ C:\Users\Djimbe2\Downloads\X-Force_Cable_-_Messiah_War_01__2009___Archangel-DCP_.cbr
2013-11-25 01:49 - 2013-11-26 15:50 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Roaming\CDisplayEx
2013-11-25 01:20 - 2013-11-25 01:21 - 38585753 _____ C:\Users\Djimbe2\Downloads\Cable and X-Force 16 (2013) (Digital) (G85-Empire).cbr
2013-11-22 13:31 - 2013-12-04 19:07 - 00000000 ___RD C:\Users\Djimbe2_2\Google Drive
2013-11-22 13:31 - 2013-11-22 13:31 - 00001665 _____ C:\Users\Djimbe2_2\Desktop\Google Drive.lnk
2013-11-22 11:48 - 2013-11-26 16:44 - 00004807 _____ C:\Users\Djimbe2_2\Desktop\Steroid Info.txt
2013-11-20 00:09 - 2013-11-20 00:10 - 00692512 _____ (RealNetworks, Inc.) C:\Users\Djimbe2_2\Downloads\RealDownloader (1).exe
2013-11-20 00:09 - 2013-11-20 00:09 - 00692512 _____ (RealNetworks, Inc.) C:\Users\Djimbe2_2\Downloads\RealDownloader.exe
2013-11-15 15:43 - 2013-11-15 15:53 - 503735416 _____ C:\Users\Djimbe2_2\Downloads\adt-bundle-windows-x86_64-20131030.zip
2013-11-15 14:54 - 2013-11-15 14:54 - 00000978 _____ C:\Users\Djimbe2_2\Desktop\XT897 - Shortcut.lnk
2013-11-15 13:57 - 2013-11-15 13:57 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Roaming\Motorola
2013-11-15 13:56 - 2013-11-15 13:56 - 35618040 _____ (Motorola Mobility) C:\Users\Djimbe2_2\Downloads\MotorolaDeviceManager_2.4.3.exe
2013-11-15 13:52 - 2013-11-15 13:52 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_Motousbnet_01009.Wdf
2013-11-15 13:52 - 2013-11-15 13:52 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_motfilt_01009.Wdf
2013-11-15 13:52 - 2013-11-15 13:52 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_motccgp_01009.Wdf
2013-11-15 07:52 - 2013-11-15 07:52 - 00000000 ____D C:\Users\Djimbe2_2\Downloads\Afternoons In December
2013-11-15 07:41 - 2013-11-15 07:46 - 92062001 _____ C:\Users\Djimbe2_2\Downloads\Afternoons In December.zip
2013-11-14 06:08 - 2013-11-22 13:34 - 00000000 ____D C:\Users\Djimbe2\Downloads\turbulence training torrent
2013-11-12 10:53 - 2013-11-12 10:59 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Roaming\calibre
2013-11-12 08:59 - 2013-11-12 08:59 - 00000000 ____D C:\Users\Djimbe2\Downloads\The Reason I Jump - The Inner Voice of A Thirteen Year Old Boy With Autism - Naoki Higashida
2013-11-12 08:53 - 2013-11-12 08:54 - 01375010 _____ C:\Users\Djimbe2\Downloads\The Reason I Jump - The Inner Voice of A Thirteen Year Old Boy With Autism - Naoki Higashida.epub
2013-11-12 08:23 - 2013-11-12 08:55 - 397540553 _____ C:\Users\Djimbe2\Downloads\The.Ultimate.Fighter.S18E10.6th.Nov.2013.HDTV.x264-Sir.Paul.mp4
2013-11-09 20:56 - 2013-11-09 20:56 - 00000390 _____ C:\Windows\Tasks\ReclaimerResumeInstall_Djimbe2_2.job
2013-11-09 20:50 - 2013-11-09 20:52 - 00000306 _____ C:\Windows\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1452896597-1932748492-2834507788-1007.job
2013-11-09 20:42 - 2013-11-09 20:42 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Local\Adobe

==================== One Month Modified Files and Folders =======

2013-12-07 04:29 - 2013-07-25 03:56 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Roaming\uTorrent
2013-12-07 04:28 - 2013-12-07 04:19 - 00034202 _____ C:\Users\Djimbe2_2\Downloads\FRST.txt
2013-12-07 04:28 - 2013-12-06 11:44 - 111391528 _____ C:\Users\Djimbe2\Downloads\Fit Blonde #####s in Hotel Room.wmv
2013-12-07 04:23 - 2013-12-07 04:21 - 89966713 _____ C:\Users\Djimbe2\Downloads\hot-gf-#####ed-in-h-m-changing-room747609hq.mp4
2013-12-07 04:19 - 2013-12-07 04:19 - 01927360 _____ (Farbar) C:\Users\Djimbe2_2\Downloads\FRST64.exe
2013-12-07 04:16 - 2013-12-06 22:32 - 943233522 _____ C:\Users\Djimbe2\Downloads\Sheena.Shaw.Mandingo.Will.It.Fit.In.My.Ass.JulesJordan.2013.HD_iyutero.com.mp4
2013-12-07 04:16 - 2013-10-12 09:34 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Roaming\vlc
2013-12-07 04:09 - 2013-12-04 20:51 - 305629068 _____ C:\Users\Djimbe2\Downloads\21Sextury - Anita Bellini - A Good Student .mp4
2013-12-07 04:08 - 2013-12-06 22:47 - 00000000 ____D C:\Users\Djimbe2\Downloads\BrokendollHouse.11.12.14.Kendra.James.XXX.WMV-FiTTA[rarbg]
2013-12-07 03:54 - 2013-12-07 01:13 - 281514926 _____ C:\Users\Djimbe2\Downloads\BigWetButts - Ava Addams (An Ass Fit For a King) NEW November 15, 2013.mp4
2013-12-07 02:54 - 2013-12-06 06:10 - 00000000 ____D C:\Users\Djimbe2\Downloads\FirstAnalQuest.Ira
2013-12-07 01:17 - 2013-12-06 22:32 - 775070447 _____ C:\Users\Djimbe2\Downloads\i01.wmv
2013-12-07 01:04 - 2013-12-06 23:18 - 00000000 ____D C:\Users\Djimbe2\Downloads\Irena.4398.CzechCasting.2013.HD_iyutero.com
2013-12-07 01:03 - 2013-12-07 01:03 - 00000000 ____D C:\Users\Djimbe2\Downloads\Young_White_Pussy_Teen_XXX_Cumshot
2013-12-07 00:54 - 2013-12-07 00:54 - 205531983 _____ C:\Users\Djimbe2\Downloads\Maximum Fitness_Scene 7_Aleska Diamond and Cathy Heaven.wmv
2013-12-07 00:14 - 2013-12-07 00:14 - 00000000 ____D C:\Users\Djimbe2\Downloads\Tiny.Chicks.Struggle.To.Fit.Huge.Dicks.2.XXX.DVDRip.XviD-STARLETS
2013-12-07 00:13 - 2013-12-06 03:11 - 379383061 _____ C:\Users\Djimbe2\Downloads\Russian Hot Blonde Teen - Ira.wmv
2013-12-07 00:10 - 2013-12-07 00:10 - 209463685 _____ C:\Users\Djimbe2\Downloads\JuliadeLucia_MeCorroentusGafas_CumLouder.mp4
2013-12-06 23:47 - 2013-12-06 10:24 - 687401797 _____ C:\Users\Djimbe2\Downloads\bcc.13.11.18.emjay.mp4
2013-12-06 23:18 - 2013-12-06 23:18 - 00000000 ____D C:\Users\Djimbe2\Downloads\Lauren – It Fits Perfect
2013-12-06 23:02 - 2013-12-06 06:09 - 895891685 _____ C:\Users\Djimbe2\Downloads\bcc.13.12.02.melody.mp4
2013-12-06 22:39 - 2013-12-06 22:39 - 153958403 _____ C:\Users\Djimbe2\Downloads\Black_Wonder_Erika_Vuitton_Brings_Boyfriend_Home_And_Lets_Him_Eat_Her_Pussy_Before_She_Climbs_On_Him_To_Fit_His_Long_Schlong_Inside_Her_Cumshot_Boobs_XXX.mp4
2013-12-06 22:39 - 2013-12-06 22:39 - 00000000 ____D C:\Users\Djimbe2\Downloads\MyBestFetish.12.11.12.Fitting.Room.Hidden.Cam.XXX.720p.WMV
2013-12-06 22:34 - 2013-12-06 22:34 - 00000000 ____D C:\Users\Djimbe2\Downloads\Muriel - Fitness Ball HD 720p
2013-12-06 22:33 - 2013-12-06 22:33 - 00000000 ____D C:\Users\Djimbe2\Downloads\[hshare.net].Piss.Fit.EP03.[RAW]
2013-12-06 22:32 - 2013-12-06 22:32 - 162966034 _____ C:\Users\Djimbe2\Downloads\hot_emo_amateur_girl.avi
2013-12-06 22:32 - 2013-12-06 22:32 - 142644287 _____ C:\Users\Djimbe2\Downloads\Fitness-Maus - Ausgehungerter User betrügt seine Frau mit mir 06.09.13.flv
2013-12-06 22:31 - 2013-12-06 22:31 - 00000000 ____D C:\Users\Djimbe2\Downloads\So Big It Barely Fits 3 (2012) XXX DVDRip
2013-12-06 17:13 - 2013-05-07 08:20 - 01122704 _____ C:\Windows\WindowsUpdate.log
2013-12-06 11:18 - 2013-12-06 11:18 - 00000000 ____D C:\Users\Djimbe2\Downloads\Private.Lustschweine.Fick.dich.Fit.German.XXX.DVDRip.x264-KissMyDick
2013-12-06 10:16 - 2013-12-06 01:30 - 00000000 ____D C:\Users\Djimbe2\Downloads\PlayboyPlus.13.08.19.Irina.Voronina.Killer.Shots.XXX.1080p.x264-PAYiSO[rarbg]
2013-12-06 09:57 - 2013-12-06 09:57 - 00000000 ____D C:\Users\Djimbe2\Downloads\YoungLegalPorn.Ira
2013-12-06 09:19 - 2013-12-06 01:37 - 00000000 ____D C:\Users\Djimbe2\Downloads\CasualTeenSex.13.11.08.Irena.XXX.720p.MP4-KTR[rarbg]
2013-12-06 07:33 - 2013-12-06 07:33 - 00000000 ____D C:\Users\Djimbe2\Downloads\Young.Sex.Parties.-.Luda,Ira
2013-12-06 06:02 - 2013-12-06 06:02 - 00000000 ____D C:\Users\Djimbe2\Downloads\TeenyLovers - Ira - Slutty Schoolgirl Doing-Her Home Work
2013-12-06 05:56 - 2013-12-06 03:27 - 00000000 ____D C:\Users\Djimbe2\Downloads\Hegre-Art.09.04.07.Ira.Oil.XXX.720p.MOV-KTR[rbg]
2013-12-06 05:34 - 2013-12-06 05:34 - 00000000 ____D C:\Users\Djimbe2\Downloads\YoungLibertines-Ira And Andy [720p]
2013-12-06 05:11 - 2013-12-06 03:36 - 263341535 _____ C:\Users\Djimbe2\Downloads\Ira.Lets.Give.It.A.Shot.YoungLegalPorn.2013.HD_iyutero.com.mp4
2013-12-06 04:44 - 2013-12-06 04:44 - 00000000 ____D C:\Users\Djimbe2\Downloads\CzechCasting.13.02.27.Irena.4398.XXX.720p.WMV-IEVA
2013-12-06 03:45 - 2013-12-06 03:08 - 298386844 _____ C:\Users\Djimbe2\Downloads\ira_1000k.mp4
2013-12-06 03:43 - 2013-12-06 01:46 - 546985919 _____ C:\Users\Djimbe2\Downloads\CasualTeenSex - Irena [720p].mp4
2013-12-06 03:20 - 2013-12-06 03:10 - 00000000 ____D C:\Users\Djimbe2\Downloads\SellYourGF.13.06.06.Ira.XXX.720p.MP4-iaK[rarbg]
2013-12-06 03:17 - 2013-12-06 01:45 - 218114637 _____ C:\Users\Djimbe2\Downloads\Ass Needs to Be Ready for Big Cock.wmv
2013-12-06 02:59 - 2013-12-06 01:58 - 00000000 ____D C:\Users\Djimbe2\Downloads\Sexy60Plus.E102.Irena.XXX.MP4-oRo[rarbg]
2013-12-06 01:39 - 2013-12-06 01:39 - 00000000 ____D C:\Users\Djimbe2\Downloads\Cindy (AKA_ Cindy Vega, Clara, Ilona, Irena, Kacka, Lisa, Liza, Lola, Sindy, Sindy Vega, Tia) - Once Before Bedtime (2013) HDTV
2013-12-06 01:38 - 2013-12-06 01:37 - 00000000 ____D C:\Users\Djimbe2\Downloads\Nubiles.13.03.23.Irena.Ready.To.Please.XXX.720p.WMV-KTR[rarbg]
2013-12-06 01:35 - 2013-12-06 01:35 - 00000000 ____D C:\Users\Djimbe2\Downloads\Cindy (AKA_ Cindy R, Cindy Vega, Clara, Ilona, Irena, Kacka, Lisa, Liza, Lola, Sindy, Sindy Vega, Tia) - Triple The Fun
2013-12-05 17:05 - 2009-07-14 00:13 - 00789280 _____ C:\Windows\system32\PerfStringBackup.INI
2013-12-05 17:00 - 2013-10-18 00:13 - 00022128 _____ C:\Windows\setupact.log
2013-12-05 17:00 - 2013-02-12 23:23 - 00065536 _____ C:\Windows\system32\Ikeext.etl
2013-12-05 14:14 - 2013-12-04 21:18 - 196334332 _____ C:\Users\Djimbe2\Downloads\Innocent teen girl takes a huge dick in her tiny asshole[truehdporn].flv
2013-12-05 10:07 - 2013-12-04 20:44 - 229478117 _____ C:\Users\Djimbe2\Downloads\SexArt - Anita Bellini & Mark I (Temptation) 720p NEW October 09, 2013.mp4
2013-12-04 21:48 - 2013-12-04 21:16 - 416248083 _____ C:\Users\Djimbe2\Downloads\mc11168_1500.mp4
2013-12-04 21:39 - 2013-12-04 21:15 - 403859526 _____ C:\Users\Djimbe2\Downloads\mc12494_1500.mp4
2013-12-04 21:23 - 2013-12-04 21:23 - 00000000 ____D C:\Users\Djimbe2\Downloads\Tiny Chicks Struggle To Fit Huge Dicks 2 XXX (Split Scenes)
2013-12-04 21:22 - 2013-12-04 20:53 - 312343616 _____ C:\Users\Djimbe2\Downloads\Anita Bellini - Teeny Toes.mp4
2013-12-04 21:12 - 2013-12-04 20:58 - 506096687 _____ C:\Users\Djimbe2\Downloads\6388-540p.mp4
2013-12-04 20:51 - 2013-12-04 20:43 - 285251691 _____ C:\Users\Djimbe2\Downloads\Pervers_Trio_SD.mp4
2013-12-04 20:37 - 2013-12-04 19:42 - 399387138 _____ C:\Users\Djimbe2\Downloads\[Dorcel] Anita Bellini, Gina Devine, Markus Dupree - PERVERS TRIO WITH COLLEGE GIRLS (11.11.2013) [NEW RELEASE].mp4
2013-12-04 20:23 - 2013-12-04 19:46 - 368040262 _____ C:\Users\Djimbe2\Downloads\v8464 - Anita Bellini.mp4
2013-12-04 20:16 - 2013-12-04 20:00 - 378497617 _____ C:\Users\Djimbe2\Downloads\v200251 - Anita Bellini.mp4
2013-12-04 19:41 - 2013-12-04 19:41 - 00000000 ____D C:\Users\Djimbe2\Downloads\Tiny vs Huge (Anita Bellini) (2013) SiteRip
2013-12-04 19:36 - 2013-12-04 19:36 - 00000328 _____ C:\Windows\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1452896597-1932748492-2834507788-1007.job
2013-12-04 19:13 - 2009-07-13 23:45 - 00023248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-12-04 19:13 - 2009-07-13 23:45 - 00023248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-12-04 19:11 - 2013-12-04 19:10 - 00000000 ____D C:\32788R22FWJFW
2013-12-04 19:11 - 2013-07-25 05:53 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Local\CrashDumps
2013-12-04 19:09 - 2013-12-04 19:09 - 00002998 _____ C:\Windows\System32\Tasks\Malwarebytes Anti-Exploit
2013-12-04 19:09 - 2013-12-04 19:09 - 00000508 _____ C:\Windows\Tasks\Malwarebytes Anti-Exploit.job
2013-12-04 19:07 - 2013-11-22 13:31 - 00000000 ___RD C:\Users\Djimbe2_2\Google Drive
2013-12-04 19:04 - 2009-07-14 00:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-12-03 13:09 - 2013-12-03 10:48 - 00000000 ____D C:\Users\Djimbe2\Downloads\Hegre-Art.10.08.24.Stasha.Private.Show.XXX.INTERNAL.720p.MOV-KTR[rbg]
2013-12-03 11:51 - 2013-12-03 10:47 - 124444200 _____ C:\Users\Djimbe2\Downloads\Hengre-Art - Crazy In Bed - Stasha.avi
2013-12-03 11:23 - 2013-12-03 10:48 - 00000000 ____D C:\Users\Djimbe2\Downloads\Doc's Perfect 10s #441 - Hegre Art - Stasha - Baby Blue Bath
2013-12-03 11:19 - 2013-12-03 10:54 - 352267217 _____ C:\Users\Djimbe2\Downloads\Hegre.Art.Stasha.Finger.Frenzy.Load.XXX.pornalized.wmv
2013-12-03 10:55 - 2013-12-03 10:55 - 00000000 ____D C:\Users\Djimbe2\Downloads\Hegre-Art.11.07.26.Stasha.Neon.Light.XXX.720p.MOV-KTR[rbg]
2013-12-02 13:57 - 2013-12-01 14:48 - 00000000 ____D C:\Users\Djimbe2\Downloads\Ana Foxxx - Bad Advice 5 [Penthouse][720P]
2013-12-02 09:51 - 2013-12-01 17:50 - 176255120 _____ C:\Users\Djimbe2\Downloads\Sora no Iro, Mizu no Iro - 01 [H264_AAC].mkv
2013-12-02 07:38 - 2013-12-01 14:51 - 394979151 _____ C:\Users\Djimbe2\Downloads\X-Art Ana Foxxx Hot Chocolate 720p.mp4
2013-12-01 19:12 - 2013-12-01 17:24 - 109173084 _____ C:\Users\Djimbe2\Downloads\Simone Clair.wmv
2013-12-01 17:43 - 2013-12-01 14:43 - 655388407 _____ C:\Users\Djimbe2\Downloads\2cstanaleilaniskinjohnny_2k.wmv
2013-12-01 17:21 - 2013-12-01 14:35 - 190303332 _____ C:\Users\Djimbe2\Downloads\Sora no Iro, Mizu no Iro - 02 [H264_AAC].mkv
2013-12-01 16:50 - 2013-12-01 14:42 - 00000000 ____D C:\Users\Djimbe2\Downloads\Ana Foxxx - Bad Advice
2013-12-01 15:55 - 2013-12-01 14:42 - 546821694 _____ C:\Users\Djimbe2\Downloads\Ana Foxxx + Krystal - Round And Brown SD.mp4
2013-12-01 14:53 - 2013-12-01 14:53 - 00000000 ____D C:\Users\Djimbe2\Downloads\GloryHole-Initiations.13.02.11.Ana.Foxxx.XXX.720p.x264-SEXORS[rarbg]
2013-11-30 04:50 - 2013-11-29 17:42 - 00000000 ____D C:\Users\Djimbe2\Downloads\Fukubiki
2013-11-29 20:00 - 2013-11-29 19:17 - 00000000 ____D C:\Users\Djimbe2\Downloads\The.Ultimate.Fighter.S18E12.HDTV.x264-KYR[rarbg]
2013-11-29 19:57 - 2013-11-29 19:19 - 378686191 _____ C:\Users\Djimbe2\Downloads\The.Ultimate.Fighter.S18E11.iNTERNAL.HDTV.x264-KOENiG.mp4
2013-11-29 19:53 - 2013-11-29 19:52 - 00000000 ____D C:\Users\Djimbe2\Downloads\フォルト!! Fault!! Ep.01-03 [EngSubs]
2013-11-29 19:43 - 2013-11-29 19:16 - 438124591 _____ C:\Users\Djimbe2\Downloads\The.Ultimate.Fighter.S18E13.HDTV.x264-PLAYNOW.mp4
2013-11-29 17:43 - 2013-11-29 17:42 - 00000000 ____D C:\Users\Djimbe2\Downloads\Sora no Iro, Mizu no Iro
2013-11-29 17:38 - 2013-11-29 17:38 - 00000000 ____D C:\Users\Djimbe2\Downloads\Honoo No Haramase Tenkousei [Hentai][Japan+Sub.English][WwW.xXxViCiOsAsZT.CoM]
2013-11-28 21:18 - 2013-11-28 21:18 - 00000418 _____ C:\Windows\Tasks\{7DF45D32-FE32-41F4-90FE-37F19E4C75A4}.job
2013-11-28 21:18 - 2010-07-10 23:28 - 00000000 ____D C:\ProgramData\Skype
2013-11-28 21:17 - 2013-11-28 21:17 - 01551008 _____ (Skype Technologies S.A.) C:\Users\Djimbe2_2\Downloads\SkypeSetup.exe
2013-11-27 09:05 - 2013-11-27 09:05 - 00837032 _____ (AirInstaller ) C:\Users\Djimbe2_2\Downloads\Setup.exe
2013-11-27 09:04 - 2013-11-27 09:04 - 00395776 _____ C:\Users\Djimbe2_2\Downloads\Marvel Avengers Alliance Hack (1).exe
2013-11-27 08:50 - 2013-11-27 08:50 - 00291570 _____ C:\Users\Djimbe2_2\Downloads\Marvel Avengers Alliance Hack[2013].zip
2013-11-27 08:03 - 2013-11-27 08:03 - 00000000 ____D C:\Users\Djimbe2_2\Downloads\Marvel Avengers Alliance Tool Adder ver 2.17
2013-11-27 08:02 - 2013-11-27 08:01 - 04382775 _____ C:\Users\Djimbe2_2\Downloads\Marvel Avengers Alliance Tool Adder ver 2.17.rar
2013-11-26 16:44 - 2013-11-22 11:48 - 00004807 _____ C:\Users\Djimbe2_2\Desktop\Steroid Info.txt
2013-11-26 15:50 - 2013-11-25 01:49 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Roaming\CDisplayEx
2013-11-25 20:53 - 2013-11-25 17:31 - 16167493 _____ C:\Users\Djimbe2\Downloads\X-Force_Cable_-_Messiah_War_01__2009___Archangel-DCP_.cbr
2013-11-25 01:21 - 2013-11-25 01:20 - 38585753 _____ C:\Users\Djimbe2\Downloads\Cable and X-Force 16 (2013) (Digital) (G85-Empire).cbr
2013-11-22 13:34 - 2013-11-14 06:08 - 00000000 ____D C:\Users\Djimbe2\Downloads\turbulence training torrent
2013-11-22 13:31 - 2013-11-22 13:31 - 00001665 _____ C:\Users\Djimbe2_2\Desktop\Google Drive.lnk
2013-11-22 13:31 - 2013-06-18 01:17 - 00000000 ____D C:\Users\Djimbe2_2
2013-11-21 16:54 - 2011-06-28 23:58 - 00024932 _____ C:\Users\Djimbe2\Desktop\Names.txt
2013-11-20 00:10 - 2013-11-20 00:09 - 00692512 _____ (RealNetworks, Inc.) C:\Users\Djimbe2_2\Downloads\RealDownloader (1).exe
2013-11-20 00:09 - 2013-11-20 00:09 - 00692512 _____ (RealNetworks, Inc.) C:\Users\Djimbe2_2\Downloads\RealDownloader.exe
2013-11-15 15:53 - 2013-11-15 15:43 - 503735416 _____ C:\Users\Djimbe2_2\Downloads\adt-bundle-windows-x86_64-20131030.zip
2013-11-15 14:54 - 2013-11-15 14:54 - 00000978 _____ C:\Users\Djimbe2_2\Desktop\XT897 - Shortcut.lnk
2013-11-15 13:57 - 2013-11-15 13:57 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Roaming\Motorola
2013-11-15 13:56 - 2013-11-15 13:56 - 35618040 _____ (Motorola Mobility) C:\Users\Djimbe2_2\Downloads\MotorolaDeviceManager_2.4.3.exe
2013-11-15 13:52 - 2013-11-15 13:52 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_Motousbnet_01009.Wdf
2013-11-15 13:52 - 2013-11-15 13:52 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_motfilt_01009.Wdf
2013-11-15 13:52 - 2013-11-15 13:52 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_motccgp_01009.Wdf
2013-11-15 07:52 - 2013-11-15 07:52 - 00000000 ____D C:\Users\Djimbe2_2\Downloads\Afternoons In December
2013-11-15 07:46 - 2013-11-15 07:41 - 92062001 _____ C:\Users\Djimbe2_2\Downloads\Afternoons In December.zip
2013-11-12 10:59 - 2013-11-12 10:53 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Roaming\calibre
2013-11-12 10:59 - 2011-12-19 11:16 - 00000000 ____D C:\Users\Djimbe2\Calibre Library
2013-11-12 08:59 - 2013-11-12 08:59 - 00000000 ____D C:\Users\Djimbe2\Downloads\The Reason I Jump - The Inner Voice of A Thirteen Year Old Boy With Autism - Naoki Higashida
2013-11-12 08:55 - 2013-11-12 08:23 - 397540553 _____ C:\Users\Djimbe2\Downloads\The.Ultimate.Fighter.S18E10.6th.Nov.2013.HDTV.x264-Sir.Paul.mp4
2013-11-12 08:54 - 2013-11-12 08:53 - 01375010 _____ C:\Users\Djimbe2\Downloads\The Reason I Jump - The Inner Voice of A Thirteen Year Old Boy With Autism - Naoki Higashida.epub
2013-11-09 20:56 - 2013-11-09 20:56 - 00000390 _____ C:\Windows\Tasks\ReclaimerResumeInstall_Djimbe2_2.job
2013-11-09 20:56 - 2013-07-25 03:29 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Roaming\Real
2013-11-09 20:52 - 2013-11-09 20:50 - 00000306 _____ C:\Windows\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1452896597-1932748492-2834507788-1007.job
2013-11-09 20:42 - 2013-11-09 20:42 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Local\Adobe
2013-11-09 20:42 - 2013-06-18 01:17 - 00000000 ____D C:\Users\Djimbe2_2\AppData\Roaming\Adobe
ZeroAccess:
C:\Users\Djimbe2\AppData\Local\Google\Desktop\Install

Files to move or delete:
====================
C:\Users\Djimbe2\AppData\Roaming\skype.ini
C:\ProgramData\wavav0bdtzbtb43b.reg
C:\Windows\Tasks\{7DF45D32-FE32-41F4-90FE-37F19E4C75A4}.job


Some content of TEMP:
====================
C:\Users\Djimbe2_2\AppData\Local\temp\ComboFix.exe
C:\Users\Djimbe2_2\AppData\Local\temp\ntdll_dump.dll
C:\Users\Djimbe2_2\AppData\Local\temp\Quarantine.exe
C:\Users\Djimbe2_2\AppData\Local\temp\speccycpuid.dll


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
 

Djimbe

New Member
Thread author
Verified
Dec 5, 2013
15
I will try to find a Flash/thumbnail drive tomorrow (in a few hours) sorry the weekend is the busiest time of my week. (like Im lucky if i can poop) Feel free to delete the above if they're of no use to you.
 

kuttus

Level 2
Verified
Oct 5, 2012
2,697
Download attached fixlist.txt on the same location as FRST (otherwise the fix won't work)

[attachment=6494]

Open FRST, and click Fix. Attach me that report after it is finished.
 

Attachments

  • fixlist.txt
    439 bytes · Views: 159

Djimbe

New Member
Thread author
Verified
Dec 5, 2013
15
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 08-12-2013 01
Ran by Djimbe2_2 at 2013-12-08 05:39:03 Run:1
Running from C:\Users\Djimbe2_2\Downloads
Boot Mode: Safe Mode (with Networking)
==============================================

Content of fixlist:
*****************
S3 cpuz136; \??\C:\Users\DJIMBE~1\AppData\Local\Temp\cpuz136\cpuz136_x64.sys [x]
C:\Users\Djimbe2_2\AppData\Local\temp\ComboFix.exe
C:\Users\Djimbe2_2\AppData\Local\temp\ntdll_dump.dll
C:\Users\Djimbe2_2\AppData\Local\temp\Quarantine.exe
C:\Users\Djimbe2_2\AppData\Local\temp\speccycpuid.dll
C:\Users\Djimbe2\AppData\Roaming\skype.ini
C:\ProgramData\wavav0bdtzbtb43b.reg
C:\Windows\Tasks\{7DF45D32-FE32-41F4-90FE-37F19E4C75A4}.job

*****************

cpuz136 => Service deleted successfully.
C:\Users\Djimbe2_2\AppData\Local\temp\ComboFix.exe => Moved successfully.
C:\Users\Djimbe2_2\AppData\Local\temp\ntdll_dump.dll => Moved successfully.
C:\Users\Djimbe2_2\AppData\Local\temp\Quarantine.exe => Moved successfully.
C:\Users\Djimbe2_2\AppData\Local\temp\speccycpuid.dll => Moved successfully.
C:\Users\Djimbe2\AppData\Roaming\skype.ini => Moved successfully.
C:\ProgramData\wavav0bdtzbtb43b.reg => Moved successfully.
C:\Windows\Tasks\{7DF45D32-FE32-41F4-90FE-37F19E4C75A4}.job => Moved successfully.

==== End of Fixlog ====
 

kuttus

Level 2
Verified
Oct 5, 2012
2,697
STEP 1: Run a scan with AdwCleaner

<ol><li>Download AdwCleaner from the below link.
<><a href="http://general-changelog-team.fr/fr/downloads/finish/20-outils-de-xplode/2-adwcleaner" target="_blank">ADWCLEANER DOWNLAOD LINK</a></> (This link will automatically download Security Check on your computer)</li>

<li>Close all open programs and internet browsers.</li>
<li>Double click on <>adwcleaner.exe</> to run the tool.</li>
<li>Click on <>Scan</>,then confirm each time with <>Ok</>.</li>
<li>After the Scan is Over press on Clean ,then confirm each time with <>Ok</>.
</li>
<li>Your computer will be rebooted automatically. A text file will open after the restart.</li>
<li>Please post the contents of that logfile with your next reply.</li>
<li>You can find the logfile at <>C:\AdwCleaner[S1].txt</> as well.</li>
</ol>
<hr/>
STEP 2: Run a scan with Junkware Removal Tool

Please download Junkware Removal Tool to your desktop from here
  • Turn off your antivirus software now to avoid potential conflicts
  • Double-click to run the tool. For Windows Vista or 7 users, right-click the file and select Run as Administrator
  • The tool will open and start scanning your system
  • Please be patient as this can take a while to complete depending on your system's specifications
  • On completion, a log (JRT.txt) will be saved to your desktop and will automatically open
  • Post the contents of JRT.txt into your next reply




Download Malwarebytes Anti-Rootkit from here to your Desktop
  • Unzip the contents to a folder on your Desktop.
  • Open the folder where the contents were unzipped and run mbar.exe
  • Follow the instructions in the wizard to update and allow the program to scan your computer for threats.
  • Make sure there is a check next to Create Restore Point and click the Cleanup button to remove any threats. Reboot if prompted to do so.
  • After the reboot, perform another scan with Malwarebytes Anti-Rootkit to verify that no threats remain. If there are threats, click Cleanup once more and reboot.
  • When done, please post the two logs in the MBAR folder(mbar-log.txt and system-log.txt)



Please download Malwarebytes' Anti-Malware to your desktop.
  • Double-click mbam-setup.exe and follow the prompts to install the program.
  • At the end, be sure a checkmark is placed next to
    • Update Malwarebytes' Anti-Malware
    • and Launch Malwarebytes' Anti-Malware
  • then click Finish.
  • If an update is found, it will download and install the latest version.
  • When it prompts you to try their 30-day trail, click decline
  • Once the program has loaded, select Perform quick scan, then click Scan.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Be sure that everything is Checked (ticked) except items in the C:\System Volume Information folder and click on Remove Selected.
  • When completed, a log will open in Notepad. please copy and paste the log into your next reply
    • If you accidently close it, the log file is saved here and will be named like this:
    • C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-date (time).txt


 
Last edited by a moderator:

Djimbe

New Member
Thread author
Verified
Dec 5, 2013
15
# AdwCleaner v3.014 - Report created 08/12/2013 at 09:33:29
# Updated 01/12/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Djimbe2_2 - 1A
# Running from : C:\Users\Djimbe2_2\Downloads\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Program Files (x86)\AVG SafeGuard toolbar

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iMesh_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iMesh_RASMANCS
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Deleted : HKLM\Software\Trymedia Systems

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16720


-\\ Google Chrome v30.0.1599.101

[ File : C:\Users\Djimbe2\AppData\Local\Google\Chrome\User Data\Default\preferences ]


[ File : C:\Users\Djimbe2_2\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [3411 octets] - [19/10/2013 06:21:24]
AdwCleaner[R1].txt - [3471 octets] - [19/10/2013 06:48:52]
AdwCleaner[R2].txt - [1249 octets] - [23/10/2013 14:07:06]
AdwCleaner[R3].txt - [1545 octets] - [08/12/2013 09:31:32]
AdwCleaner[S0].txt - [3612 octets] - [19/10/2013 06:51:13]
AdwCleaner[S1].txt - [1314 octets] - [23/10/2013 14:09:36]
AdwCleaner[S2].txt - [1480 octets] - [08/12/2013 09:33:29]

########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [1540 octets] ##########


~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 7 Home Premium x64
Ran by Djimbe2_2 on Sun 12/08/2013 at 10:03:50.65
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys



~~~ Files



~~~ Folders



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Sun 12/08/2013 at 10:07:36.07
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 

Djimbe

New Member
Thread author
Verified
Dec 5, 2013
15
I tried to run MBAR. it always stalled in the same spot. (as in my whole PC froze - its like if anything looks into one particular file the result is PC lockup) I can type in what could see on the scanner at the time but even that is truncated...

At the top it said:
"...e2
bdd3-00252242d174}.TMContainer00000000000000000001.regtrans-"

And i can only assume that that was what it was scanning that made the pc lock up at the time.

At the bottom it said:

"DONE!
Infected
C\Users\Djimbe2\Desktop\edhb.tmp
C\Users\Djimbe2\Desktop\flja.tmp
C\Users\Djimbe2\Desktop\pjnb.tmp"

I then tried to find these files after reboot and could not. even with "find hidden files and folders".

I am trying to run MBAM now, abd I suspect it will freeze up, though it has not yet.
 

kuttus

Level 2
Verified
Oct 5, 2012
2,697
If it Freezes again try

STEP 1 : Run a scan with Kaspersky TDSSKiller
<ol>
<li>Download Kaspersky TDSKiller from the below link.
<><a title="External link" href="http://support.kaspersky.com/downloads/utils/tdsskiller.exe" rel="external">KASPERKSY TDSSKILLER DOWNLOAD LINK</a></> <em>(This link will automatically download Kaspersky TDSSKiller on your computer)</em>
</li>
<li>Double-click on <>TDSSKiller.exe</> to run the application.
<img src="http://img4.imageshack.us/img4/1907/tdss1.png" alt="Posted Image" /></li>
<li>Click <>Change parameters</>
<img src="http://img593.imageshack.us/img593/288/tdss2.png" alt="Posted Image" /></li>
<li>Check the boxes next to <>Verify Driver Digital Signature</> and <>Detect TDLFS file system</>, then click <>OK</>
<img src="http://img521.imageshack.us/img521/1456/tdss3.png" alt="Posted Image" /></li>
<li>Click on the <>Start Scan</> button to begin the scan and wait for it to finish.
<>NOTE:</> Do not use the computer during the scan!</li>
<li>During the scan it will look similar to the image below:
<img src="http://img6.imageshack.us/img6/9136/tdss4.jpg" alt="Posted Image" /></li>
<li>When it finishes, you will either see a report that no threats were found like below:
<img src="http://img696.imageshack.us/img696/9898/tdss5.jpg" alt="Posted Image" />
If no threats are found at this point, just click the <>Report</> selection on the top right of the form to generate a log. A log file report will pop which you can just close since the report file is already saved.</li>
<li>If any infection or suspected items are found, you will see a window similar to below:
<img src="http://img854.imageshack.us/img854/905/tdss7.jpg" alt="Posted Image" />
<ul>
<li>If you have files that are shown to fail <em>signature check</em> do not take any action on these. Make sure you select <>Skip</>. I will tell you what to do with these later. They may not be issues at all.</li>
<li>If <em>Suspicious objects</em> are detected, the default action will be Skip. Leave the default set to Skip.</li>
<li>If <em>Malicious objects</em> are detected, they will show in the Scan results. TDSSKiller automatically selects an action (Cure or Delete) for malicious objects
Make sure that <>Cure</> is selected. <>VERY IMPORTANT!</> - If <em>Cure</em> is not available, please choose <>Skip</> instead. DO NOT choose Delete unless instructed to do so.</li>
</ul>
</li>
<li>Click <>Continue</> to apply selected actions.</li>
<li>A reboot may be required to complete disinfection. A window like the below will appear:
<img src="http://img828.imageshack.us/img828/4812/tdss6.jpg" alt="Posted Image" />
Reboot immediately if TDSSKiller states that one is needed.</li>
<li>Whether an infection is found or not, a log file should have already been created on your C: drive (or whatever drive you boot from) in the root folder named something like <>TDSSKiller.2.1.1_2.12.2012_14.17.04_log.txt</> which is based on the program version # and date and time run.</li>
<li>Attach this log to your next reply.</li>
</ol>
<hr />
 
Last edited by a moderator:

Djimbe

New Member
Thread author
Verified
Dec 5, 2013
15
12:51:10.0172 0x13e4 TDSS rootkit removing tool 3.0.0.19 Nov 18 2013 09:27:50
12:51:19.0661 0x13e4 ============================================================
12:51:19.0661 0x13e4 Current date / time: 2013/12/08 12:51:19.0661
12:51:19.0661 0x13e4 SystemInfo:
12:51:19.0661 0x13e4
12:51:19.0661 0x13e4 OS Version: 6.1.7601 ServicePack: 1.0
12:51:19.0661 0x13e4 Product type: Workstation
12:51:19.0661 0x13e4 ComputerName: 1A
12:51:19.0661 0x13e4 UserName: Djimbe2_2
12:51:19.0661 0x13e4 Windows directory: C:\Windows
12:51:19.0661 0x13e4 System windows directory: C:\Windows
12:51:19.0661 0x13e4 Running under WOW64
12:51:19.0661 0x13e4 Processor architecture: Intel x64
12:51:19.0661 0x13e4 Number of processors: 2
12:51:19.0661 0x13e4 Page size: 0x1000
12:51:19.0661 0x13e4 Boot type: Safe boot with network
12:51:19.0661 0x13e4 ============================================================
12:51:21.0798 0x13e4 KLMD registered as C:\Windows\system32\drivers\20382998.sys
12:51:21.0863 0x13e4 System UUID: {C8E46233-981C-952E-D1BD-E0042A11E3D1}
12:51:22.0291 0x13e4 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
12:51:22.0294 0x13e4 Drive \Device\Harddisk1\DR1 - Size: 0xE8DED00000 (931.48 Gb), SectorSize: 0x200, Cylinders: 0x1DAFD, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
12:51:22.0296 0x13e4 ============================================================
12:51:22.0296 0x13e4 \Device\Harddisk0\DR0:
12:51:22.0296 0x13e4 MBR partitions:
12:51:22.0297 0x13e4 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x63800
12:51:22.0297 0x13e4 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x64000, BlocksNum 0x232EB000
12:51:22.0297 0x13e4 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x2334F000, BlocksNum 0x20AB800
12:51:22.0297 0x13e4 \Device\Harddisk0\DR0\Partition4: MBR, Type 0xC, StartLBA 0x253FA800, BlocksNum 0x33AB0
12:51:22.0297 0x13e4 \Device\Harddisk1\DR1:
12:51:22.0298 0x13e4 MBR partitions:
12:51:22.0298 0x13e4 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x746F6000
12:51:22.0298 0x13e4 ============================================================
12:51:22.0338 0x13e4 C: <-> \Device\Harddisk0\DR0\Partition2
12:51:22.0400 0x13e4 D: <-> \Device\Harddisk0\DR0\Partition3
12:51:22.0403 0x13e4 K: <-> \Device\Harddisk1\DR1\Partition1
12:51:22.0403 0x13e4 ============================================================
12:51:22.0403 0x13e4 Initialize success
12:51:22.0404 0x13e4 ============================================================
12:51:27.0567 0x0580 ============================================================
12:51:27.0567 0x0580 Scan started
12:51:27.0567 0x0580 Mode: Manual;
12:51:27.0567 0x0580 ============================================================
12:51:27.0567 0x0580 KSN ping started
12:51:30.0148 0x0580 KSN ping finished: true
12:51:44.0993 0x0580 ================ Scan system memory ========================
12:51:44.0993 0x0580 System memory - ok
12:51:44.0994 0x0580 ================ Scan services =============================
12:51:45.0160 0x0580 [ 581D88B25C4D4121824FED2CA38E562F, 838FFC4270ED32858A4AC14B389DEA1ECCCAAFC94BEAF683F8976B5F5A91DD15 ] !SASCORE C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
12:51:45.0725 0x0580 !SASCORE - ok
12:51:45.0888 0x0580 [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
12:51:45.0895 0x0580 1394ohci - ok
12:51:45.0998 0x0580 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI C:\Windows\system32\drivers\ACPI.sys
12:51:46.0008 0x0580 ACPI - ok
12:51:46.0098 0x0580 [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
12:51:46.0100 0x0580 AcpiPmi - ok
12:51:46.0271 0x0580 [ 3927397AC60D943DAF8808AFFED582B7, 2688254085C219E8CA9C5494ABDAD8FAE52533CEF7FA3C152715E0B78D591BCF ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
12:51:46.0274 0x0580 AdobeARMservice - ok
12:51:46.0742 0x0580 [ 476BB014F3F68C0C15EDDD5B444DA8FF, 94E8FDC4390672C31081EACF3B3AE57486ED06669C4120F139DB3A62AAE77071 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
12:51:46.0750 0x0580 AdobeFlashPlayerUpdateSvc - ok
12:51:46.0810 0x0580 [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
12:51:46.0829 0x0580 adp94xx - ok
12:51:46.0875 0x0580 [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
12:51:46.0886 0x0580 adpahci - ok
12:51:46.0920 0x0580 [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
12:51:46.0926 0x0580 adpu320 - ok
12:51:47.0016 0x0580 [ 4B78B431F225FD8624C5655CB1DE7B61, 198A5AF2125C7C41F531A652D200C083A55A97DC541E3C0B5B253C7329949156 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
12:51:47.0042 0x0580 AeLookupSvc - ok
12:51:47.0180 0x0580 [ D1E343BC00136CE03C4D403194D06A80, 94F2543164A2CEA179EDE53E1294EE24391A59CAEFF83BA5CE9385E8E686E89C ] AERTFilters C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
12:51:47.0185 0x0580 AERTFilters - ok
12:51:47.0303 0x0580 [ 314C17917AC8523EC77A710215012A65, 725CF2D5F63C06F7704C24FE0CFA696215DADC6C0EC445D9671E82F8E23E56AD ] AFD C:\Windows\system32\drivers\afd.sys
12:51:47.0317 0x0580 AFD - ok
12:51:47.0367 0x0580 [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440 C:\Windows\system32\drivers\agp440.sys
12:51:47.0370 0x0580 agp440 - ok
12:51:47.0388 0x0580 [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG C:\Windows\System32\alg.exe
12:51:47.0391 0x0580 ALG - ok
12:51:47.0479 0x0580 [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide C:\Windows\system32\drivers\aliide.sys
12:51:47.0480 0x0580 aliide - ok
12:51:47.0526 0x0580 [ 4609419A19891C706455C1A747431AF9, 1389A4884C92D89A71EF45FAD4E75F51704DC87C1152A992FE873B8556450E83 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
12:51:47.0535 0x0580 AMD External Events Utility - ok
12:51:47.0618 0x0580 [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide C:\Windows\system32\drivers\amdide.sys
12:51:47.0619 0x0580 amdide - ok
12:51:47.0654 0x0580 [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
12:51:47.0658 0x0580 AmdK8 - ok
12:51:47.0974 0x0580 [ 4BFFEAD896AFFBC80C86F62CD18F17C9, 429FE924351CAFE20AFAD2FE0AD487766785545FD421439DEAED7CCB1EA5E971 ] amdkmdag C:\Windows\system32\DRIVERS\atipmdag.sys
12:51:48.0203 0x0580 amdkmdag - ok
12:51:48.0276 0x0580 [ A7155A832F24CF5B048F6048380636EC, E7990CFE2C7F87C13A9A6AE0DD3309E881413B85E4F01B7BAA81F0EFE95E5673 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
12:51:48.0282 0x0580 amdkmdap - ok
12:51:48.0374 0x0580 [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
12:51:48.0377 0x0580 AmdPPM - ok
12:51:48.0419 0x0580 [ 53D8D46D51D390ABDB54ECA623165CB7, D16A3604412D0DC3EA68320FB6980D146ED60D587AAB6B65810C038AFF1EC237 ] amdsata C:\Windows\system32\DRIVERS\amdsata.sys
12:51:48.0421 0x0580 amdsata - ok
12:51:48.0534 0x0580 [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
12:51:48.0541 0x0580 amdsbs - ok
12:51:48.0548 0x0580 [ 75C51148154E34EB3D7BB84749A758D5, 8865F223CBAE166A9BF6CBCDA66F63369F151CCB449A28E95560C36AD45D0C85 ] amdxata C:\Windows\system32\DRIVERS\amdxata.sys
12:51:48.0550 0x0580 amdxata - ok
12:51:48.0591 0x0580 [ 89A69C3F2F319B43379399547526D952, 8ABDB4B8E106F96EBBA0D4D04C4F432296516E107E7BA5644ED2E50CF9BB491A ] AppID C:\Windows\system32\drivers\appid.sys
12:51:48.0593 0x0580 AppID - ok
12:51:48.0658 0x0580 [ 0BC381A15355A3982216F7172F545DE1, C33AF13CB218F7BF52E967452573DF2ADD20A95C6BF99229794FEF07C4BBE725 ] AppIDSvc C:\Windows\System32\appidsvc.dll
12:51:48.0660 0x0580 AppIDSvc - ok
12:51:48.0766 0x0580 [ 9D2A2369AB4B08A4905FE72DB104498F, D6FA1705018BABABFA2362E05691A0D6408D14DE7B76129B16D0A1DAD6378E58 ] Appinfo C:\Windows\System32\appinfo.dll
12:51:48.0769 0x0580 Appinfo - ok
12:51:48.0840 0x0580 [ 5AA788D5A2C6737BB9C45933985BC1B8, 6449514A776001BCA134A1DEF1EB05C537583C4A153FDF3D8E9F5ABE6923447C ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
12:51:48.0844 0x0580 Apple Mobile Device - ok
12:51:48.0963 0x0580 [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc C:\Windows\system32\DRIVERS\arc.sys
12:51:48.0966 0x0580 arc - ok
12:51:49.0072 0x0580 [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
12:51:49.0076 0x0580 arcsas - ok
12:51:49.0268 0x0580 [ 108FB6DDB69E537A2EA53F425363FAE5, B12A9F5338D39805E08A44A335FF7AA77F2266F535A2F5C8412CC746C75E5B1D ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
12:51:49.0293 0x0580 aspnet_state - ok
12:51:49.0426 0x0580 [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
12:51:49.0427 0x0580 AsyncMac - ok
12:51:49.0512 0x0580 [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi C:\Windows\system32\drivers\atapi.sys
12:51:49.0514 0x0580 atapi - ok
12:51:49.0665 0x0580 [ B4421D8CDADC441F76BA39532A3E3414, 4C7C14C99E2095012A85672C824E21CF2FC152BCC37A1B25BF3189D0F6A06ED3 ] athr C:\Windows\system32\DRIVERS\athrx.sys
12:51:49.0851 0x0580 athr - ok
12:51:49.0929 0x0580 [ 2D648572BA9A610952FCAFBA1E119C2D, 4CD7E7D3C878DEF8CC18A925EAB1E0E8E8893BE99DA1E1F78FE9AD12EF1C48BC ] AtiHdmiService C:\Windows\system32\drivers\AtiHdmi.sys
12:51:49.0932 0x0580 AtiHdmiService - ok
12:51:49.0973 0x0580 [ C07A040D6B5A42DD41EE386CF90974C8, 8D47815F99C79B795504C3172B5FBBDBA6AFACC004B17AA3954A06BE713FACAE ] AtiPcie C:\Windows\system32\DRIVERS\AtiPcie.sys
12:51:49.0974 0x0580 AtiPcie - ok
12:51:50.0025 0x0580 [ F23FEF6D569FCE88671949894A8BECF1, FCE7B156ED663471CF9A736915F00302E93B50FC647563D235313A37FCE8F0F6 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
12:51:50.0044 0x0580 AudioEndpointBuilder - ok
12:51:50.0069 0x0580 [ F23FEF6D569FCE88671949894A8BECF1, FCE7B156ED663471CF9A736915F00302E93B50FC647563D235313A37FCE8F0F6 ] AudioSrv C:\Windows\System32\Audiosrv.dll
12:51:50.0085 0x0580 AudioSrv - ok
12:51:50.0132 0x0580 [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV C:\Windows\System32\AxInstSV.dll
12:51:50.0136 0x0580 AxInstSV - ok
12:51:50.0199 0x0580 [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys
12:51:50.0213 0x0580 b06bdrv - ok
12:51:50.0233 0x0580 [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
12:51:50.0242 0x0580 b57nd60a - ok
12:51:50.0284 0x0580 [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC C:\Windows\System32\bdesvc.dll
12:51:50.0287 0x0580 BDESVC - ok
12:51:50.0327 0x0580 [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep C:\Windows\system32\drivers\Beep.sys
12:51:50.0327 0x0580 Beep - ok
12:51:50.0403 0x0580 [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE C:\Windows\System32\bfe.dll
12:51:50.0424 0x0580 BFE - ok
12:51:50.0556 0x0580 [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS C:\Windows\System32\qmgr.dll
12:51:50.0708 0x0580 BITS - ok
12:51:50.0751 0x0580 [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
12:51:50.0753 0x0580 blbdrive - ok
12:51:50.0812 0x0580 [ F832F1505AD8B83474BD9A5B1B985E01, 205D9F237DD50FDF84F57CC53476B5ADB218A03A8B68B017AFF7CBD0DCAC71C4 ] Bonjour Service C:\Program Files (x86)\Bonjour\mDNSResponder.exe
12:51:50.0823 0x0580 Bonjour Service - ok
12:51:50.0885 0x0580 [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
12:51:50.0889 0x0580 bowser - ok
12:51:50.0902 0x0580 [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
12:51:50.0904 0x0580 BrFiltLo - ok
12:51:50.0937 0x0580 [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
12:51:50.0939 0x0580 BrFiltUp - ok
12:51:51.0006 0x0580 [ 5C2F352A4E961D72518261257AAE204B, 9EE1001E1D46A414A7A86FE1DBBE232203E26F54D9EF43ED31ED8EACD4D09853 ] Bridge C:\Windows\system32\DRIVERS\bridge.sys
12:51:51.0010 0x0580 Bridge - ok
12:51:51.0023 0x0580 [ 5C2F352A4E961D72518261257AAE204B, 9EE1001E1D46A414A7A86FE1DBBE232203E26F54D9EF43ED31ED8EACD4D09853 ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
12:51:51.0027 0x0580 BridgeMP - ok
12:51:51.0072 0x0580 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser C:\Windows\System32\browser.dll
12:51:51.0077 0x0580 Browser - ok
12:51:51.0112 0x0580 [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid C:\Windows\System32\Drivers\Brserid.sys
12:51:51.0122 0x0580 Brserid - ok
12:51:51.0141 0x0580 [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
12:51:51.0143 0x0580 BrSerWdm - ok
12:51:51.0154 0x0580 [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
12:51:51.0155 0x0580 BrUsbMdm - ok
12:51:51.0185 0x0580 [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
12:51:51.0186 0x0580 BrUsbSer - ok
12:51:51.0227 0x0580 [ 21A583678FD814794BC3E8E32E5A6BD3, 4EC67E35BAC69A66B480DA50FBB176104C7294744B3F7B7F4C05F2B351FE62DE ] BTCFilterService C:\Windows\system32\DRIVERS\motfilt.sys
12:51:51.0284 0x0580 BTCFilterService - ok
12:51:51.0313 0x0580 [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
12:51:51.0316 0x0580 BTHMODEM - ok
12:51:51.0358 0x0580 [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv C:\Windows\system32\bthserv.dll
12:51:51.0362 0x0580 bthserv - ok
12:51:51.0468 0x0580 catchme - ok
12:51:51.0519 0x0580 [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
12:51:51.0523 0x0580 cdfs - ok
12:51:51.0580 0x0580 [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
12:51:51.0585 0x0580 cdrom - ok
12:51:51.0633 0x0580 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc C:\Windows\System32\certprop.dll
12:51:51.0636 0x0580 CertPropSvc - ok
12:51:51.0679 0x0580 [ 533328A3D9A9C286682525842547540C, 56BFE3213244E66555AC509140D5512430BE40E196DB3DA45BBC52687393B770 ] CinemaNow Service C:\Program Files (x86)\CinemaNow\CinemaNow Media Manager\CinemanowSvc.exe
12:51:51.0685 0x0580 CinemaNow Service - ok
12:51:51.0720 0x0580 [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass C:\Windows\system32\DRIVERS\circlass.sys
12:51:51.0722 0x0580 circlass - ok
12:51:51.0795 0x0580 [ FE1EC06F2253F691FE36217C592A0206, B9F122DB5E665ECDF29A5CB8BB6B531236F31A54A95769D6C5C1924C87FE70CE ] CLFS C:\Windows\system32\CLFS.sys
12:51:51.0807 0x0580 CLFS - ok
12:51:51.0869 0x0580 [ D88040F816FDA31C3B466F0FA0918F29, 39D3630E623DA25B8444B6D3AAAB16B98E7E289C5619E19A85D47B74C71449F3 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
12:51:51.0875 0x0580 clr_optimization_v2.0.50727_32 - ok
12:51:51.0898 0x0580 [ D1CEEA2B47CB998321C579651CE3E4F8, 654013B8FD229A50017B08DEC6CA19C7DDA8CE0771260E057A92625201D539B1 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
12:51:51.0904 0x0580 clr_optimization_v2.0.50727_64 - ok
12:51:51.0984 0x0580 [ 6D7C8A951AF6AD6835C029B3CB88D333, 66F3D79887B2449B4C6912D1A258D1A96056888F51A8AA24FEDF37942AD5BDBB ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
12:51:52.0123 0x0580 clr_optimization_v4.0.30319_32 - ok
12:51:52.0144 0x0580 [ 86329C35FF23CFEF0FB6C0023BA06BCE, D915CE7AD564F97A1C3B047D5248B7EF67ADDC59687FBC90F1776C21DAA0D3FD ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
12:51:52.0162 0x0580 clr_optimization_v4.0.30319_64 - ok
12:51:52.0206 0x0580 [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
12:51:52.0207 0x0580 CmBatt - ok
12:51:52.0255 0x0580 [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide C:\Windows\system32\drivers\cmdide.sys
12:51:52.0257 0x0580 cmdide - ok
12:51:52.0307 0x0580 [ AAFCB52FE0037207FB6FBEA070D25EFE, 7D035BFB6DD86944CCDE6D71811891406D7FD08344EF8CF57C4D932E096F1377 ] CNG C:\Windows\system32\Drivers\cng.sys
12:51:52.0321 0x0580 CNG - ok
12:51:52.0360 0x0580 [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
12:51:52.0362 0x0580 Compbatt - ok
12:51:52.0403 0x0580 [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
12:51:52.0404 0x0580 CompositeBus - ok
12:51:52.0417 0x0580 COMSysApp - ok
12:51:52.0458 0x0580 [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
12:51:52.0460 0x0580 crcdisk - ok
12:51:52.0524 0x0580 [ 6B400F211BEE880A37A1ED0368776BF4, 2F27C6FA96A1C8CBDA467846DA57E63949A7EA37DB094B13397DDD30114295BD ] CryptSvc C:\Windows\system32\cryptsvc.dll
12:51:52.0530 0x0580 CryptSvc - ok
12:51:52.0658 0x0580 [ FD557A50A65E44041CD2FCEF4BEB04DB, 746D5958F7198895D35A23566D3736D993D57726BF59D91421D8091C48926A26 ] cvhsvc C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
12:51:52.0688 0x0580 cvhsvc - ok
12:51:52.0695 0x0580 danxnwvg - ok
12:51:52.0765 0x0580 [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch C:\Windows\system32\rpcss.dll
12:51:52.0782 0x0580 DcomLaunch - ok
12:51:52.0822 0x0580 [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc C:\Windows\System32\defragsvc.dll
12:51:52.0831 0x0580 defragsvc - ok
12:51:52.0901 0x0580 [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC C:\Windows\system32\Drivers\dfsc.sys
12:51:52.0904 0x0580 DfsC - ok
12:51:52.0933 0x0580 [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp C:\Windows\system32\dhcpcore.dll
12:51:52.0943 0x0580 Dhcp - ok
12:51:52.0989 0x0580 [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache C:\Windows\system32\drivers\discache.sys
12:51:52.0991 0x0580 discache - ok
12:51:53.0021 0x0580 [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk C:\Windows\system32\DRIVERS\disk.sys
12:51:53.0024 0x0580 Disk - ok
12:51:53.0051 0x0580 [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache C:\Windows\System32\dnsrslvr.dll
12:51:53.0058 0x0580 Dnscache - ok
12:51:53.0101 0x0580 [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc C:\Windows\System32\dot3svc.dll
12:51:53.0127 0x0580 dot3svc - ok
12:51:53.0170 0x0580 [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS C:\Windows\system32\dps.dll
12:51:53.0175 0x0580 DPS - ok
12:51:53.0230 0x0580 [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
12:51:53.0231 0x0580 drmkaud - ok
12:51:53.0294 0x0580 [ 46571ED73AE84469DCA53081D33CF3C8, 8BB386BB4F6AD39F06A8607CD1DF3D67CFA45BBE52E40EDB90EB8C862283EBFF ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
12:51:53.0301 0x0580 dtsoftbus01 - ok
12:51:53.0418 0x0580 [ 88612F1CE3BF42256913BF6E61C70D52, 7CF190F83FA8F15C33008EB381D3E345CEF37CBC046227DED26B36799EF4D9A7 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
12:51:53.0449 0x0580 DXGKrnl - ok
12:51:53.0526 0x0580 [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost C:\Windows\System32\eapsvc.dll
12:51:53.0530 0x0580 EapHost - ok
12:51:53.0675 0x0580 [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys
12:51:53.0799 0x0580 ebdrv - ok
12:51:53.0832 0x0580 [ C118A82CD78818C29AB228366EBF81C3, 00820F3065871DCBA52A27C7F73BA470C4F2CB26EFB7F76FEF8B1207F81B284D ] EFS C:\Windows\System32\lsass.exe
12:51:53.0834 0x0580 EFS - ok
12:51:53.0928 0x0580 [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
12:51:53.0948 0x0580 ehRecvr - ok
12:51:53.0984 0x0580 [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched C:\Windows\ehome\ehsched.exe
12:51:53.0989 0x0580 ehSched - ok
12:51:54.0027 0x0580 [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
12:51:54.0044 0x0580 elxstor - ok
12:51:54.0073 0x0580 [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev C:\Windows\system32\drivers\errdev.sys
12:51:54.0074 0x0580 ErrDev - ok
12:51:54.0156 0x0580 [ 0571E626B1FDB6A83F67F11ACC65D2C0, 78590CD49BFAE9CC0F607C1BA28F5E4EF324823BAE05A27DA9D50C385B94DF18 ] ESProtectionDriver C:\Program Files\Malwarebytes Anti-Exploit\MBAE.sys
12:51:54.0159 0x0580 ESProtectionDriver - ok
12:51:54.0232 0x0580 [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem C:\Windows\system32\es.dll
12:51:54.0244 0x0580 EventSystem - ok
12:51:54.0289 0x0580 [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat C:\Windows\system32\drivers\exfat.sys
12:51:54.0296 0x0580 exfat - ok
12:51:54.0341 0x0580 [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat C:\Windows\system32\drivers\fastfat.sys
12:51:54.0348 0x0580 fastfat - ok
12:51:54.0419 0x0580 [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax C:\Windows\system32\fxssvc.exe
12:51:54.0441 0x0580 Fax - ok
12:51:54.0486 0x0580 [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc C:\Windows\system32\DRIVERS\fdc.sys
12:51:54.0488 0x0580 fdc - ok
12:51:54.0522 0x0580 [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost C:\Windows\system32\fdPHost.dll
12:51:54.0524 0x0580 fdPHost - ok
12:51:54.0537 0x0580 [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub C:\Windows\system32\fdrespub.dll
12:51:54.0539 0x0580 FDResPub - ok
12:51:54.0582 0x0580 [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
12:51:54.0585 0x0580 FileInfo - ok
12:51:54.0601 0x0580 [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
12:51:54.0603 0x0580 Filetrace - ok
12:51:54.0623 0x0580 [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
12:51:54.0624 0x0580 flpydisk - ok
12:51:54.0669 0x0580 [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
12:51:54.0678 0x0580 FltMgr - ok
12:51:54.0752 0x0580 [ C4C183E6551084039EC862DA1C945E3D, 0874A2ACDD24D64965AA9A76E9C818E216880AE4C9A2E07ED932EE404585CEE6 ] FontCache C:\Windows\system32\FntCache.dll
12:51:54.0787 0x0580 FontCache - ok
12:51:54.0866 0x0580 [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
12:51:54.0869 0x0580 FontCache3.0.0.0 - ok
12:51:54.0913 0x0580 [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
12:51:54.0915 0x0580 FsDepends - ok
12:51:54.0976 0x0580 [ 6C06701BF1DB05405804D7EB610991CE, 75DEB2204D9AC338ED7C4742BEFAFA0AFC7E42B2C1B54A57DF8A1AD097D9EC3E ] fssfltr C:\Windows\system32\DRIVERS\fssfltr.sys
12:51:54.0978 0x0580 fssfltr - ok
12:51:55.0070 0x0580 [ 4CE9DAC1518FF7E77BD213E6394B9D77, D7D0D29DF93AC7DC5F85E385EEB45306C7BD87ACA7AAC5A8D47893D120C32C03 ] fsssvc C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe
12:51:55.0112 0x0580 fsssvc - ok
12:51:55.0172 0x0580 [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
12:51:55.0173 0x0580 Fs_Rec - ok
12:51:55.0225 0x0580 [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
12:51:55.0232 0x0580 fvevol - ok
12:51:55.0268 0x0580 [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
12:51:55.0270 0x0580 gagp30kx - ok
12:51:55.0295 0x0580 gamaqgqk - ok
12:51:55.0356 0x0580 [ 551D463E4CCEB5240234DA6718C93A44, 37CE7DFD392A1899FDB1B36163D34E9C005344EABDF7397BEA81447B9F7262D1 ] GameConsoleService C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe
12:51:55.0363 0x0580 GameConsoleService - ok
12:51:55.0399 0x0580 [ E403AACF8C7BB11375122D2464560311, 0427B8FFD999D256EA1A5135F218692959A7577CB32354D3087CF0FB4F0577DF ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
12:51:55.0401 0x0580 GEARAspiWDM - ok
12:51:55.0452 0x0580 [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc C:\Windows\System32\gpsvc.dll
12:51:55.0476 0x0580 gpsvc - ok
12:51:55.0555 0x0580 [ F02A533F517EB38333CB12A9E8963773, 1F72CD1CF660766FA8F912E40B7323A0192A300B376186C10F6803DC5EFE28DF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
12:51:55.0560 0x0580 gupdate - ok
12:51:55.0588 0x0580 [ F02A533F517EB38333CB12A9E8963773, 1F72CD1CF660766FA8F912E40B7323A0192A300B376186C10F6803DC5EFE28DF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
12:51:55.0591 0x0580 gupdatem - ok
12:51:55.0658 0x0580 [ 5D4BC124FAAE6730AC002CDB67BF1A1C, 00294F4DC7D17F6DD2A22B9C3299BED40146BA45C972367154D20DB502472551 ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
12:51:55.0664 0x0580 gusvc - ok
12:51:55.0698 0x0580 [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
12:51:55.0700 0x0580 hcw85cir - ok
12:51:55.0743 0x0580 [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
12:51:55.0756 0x0580 HdAudAddService - ok
12:51:55.0778 0x0580 [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
12:51:55.0781 0x0580 HDAudBus - ok
12:51:55.0826 0x0580 [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
12:51:55.0828 0x0580 HidBatt - ok
12:51:55.0842 0x0580 [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
12:51:55.0846 0x0580 HidBth - ok
12:51:55.0885 0x0580 [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
12:51:55.0888 0x0580 HidIr - ok
12:51:55.0924 0x0580 [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv C:\Windows\System32\hidserv.dll
12:51:55.0927 0x0580 hidserv - ok
12:51:55.0955 0x0580 [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
12:51:55.0957 0x0580 HidUsb - ok
12:51:56.0024 0x0580 [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc C:\Windows\system32\kmsvc.dll
12:51:56.0028 0x0580 hkmsvc - ok
12:51:56.0060 0x0580 [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
12:51:56.0068 0x0580 HomeGroupListener - ok
12:51:56.0101 0x0580 [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
12:51:56.0109 0x0580 HomeGroupProvider - ok
12:51:56.0196 0x0580 [ BB1FC298BE53AAB1E110F6E786BD8AC5, C2DA2C3CE96D5F8B50013063B5EF7BED7478636896C709A7AF34855B2E69B9F1 ] HP Support Assistant Service C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
12:51:56.0200 0x0580 HP Support Assistant Service - ok
12:51:56.0249 0x0580 [ 3A09322A8AA8B0C79036686A0EBE7B4C, A110ECBBD9A0EDAA134B95F9FB3428F33F7629480ABCF36F58891837EE1B04C0 ] HP Wireless Assistant Service C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
12:51:56.0255 0x0580 HP Wireless Assistant Service - ok
12:51:56.0334 0x0580 [ 9B7EDD3FE7C211C36E921D34D18A3A0A, 03A450F85A042F9668D1560FA2B8B89783568C87CDB1A8685CDA2AC9FE3761C3 ] hpqwmiex C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
12:51:56.0364 0x0580 hpqwmiex - ok
12:51:56.0402 0x0580 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
12:51:56.0405 0x0580 HpSAMD - ok
12:51:56.0501 0x0580 [ F630DD7564EBB7248A13B1CC774D9EA6, 53BDFDB7177606DCBB5098A417542F181487227FB73C5C93BE1275752D2C002A ] HPWMISVC C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
12:51:56.0504 0x0580 HPWMISVC - ok
12:51:56.0619 0x0580 [ 0EA7DE1ACB728DD5A369FD742D6EEE28, 21C489412EB33A12B22290EB701C19BA57006E8702E76F730954F0784DDE9779 ] HTTP C:\Windows\system32\drivers\HTTP.sys
12:51:56.0642 0x0580 HTTP - ok
12:51:56.0707 0x0580 [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
12:51:56.0708 0x0580 hwpolicy - ok
12:51:56.0738 0x0580 [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
12:51:56.0741 0x0580 i8042prt - ok
12:51:56.0792 0x0580 [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
12:51:56.0804 0x0580 iaStorV - ok
12:51:56.0891 0x0580 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD, 2B9512324DBA4A97F6AC34E8067EE08E3B6874CD60F6CB4209AFC22A34D2BE99 ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
12:51:56.0917 0x0580 idsvc - ok
12:51:57.0154 0x0580 [ A87261EF1546325B559374F5689CF5BC, 8DE48A8A13A32AAAC54CDDF58F3F61BE3E2802C1D9CA1CA98E57EB0D65FB6002 ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys
12:51:57.0372 0x0580 igfx - ok
12:51:57.0427 0x0580 [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
12:51:57.0429 0x0580 iirsp - ok
12:51:57.0486 0x0580 [ FCD84C381E0140AF901E58D48882D26B, 76955FFC230C801E8ED890E32076075F04CD6E5EC79E594FDE6D23797A36B406 ] IKEEXT C:\Windows\System32\ikeext.dll
12:51:57.0511 0x0580 IKEEXT - ok
12:51:57.0677 0x0580 [ B88E24BD77A0CE2CFFEE2FACF1151BE0, 7BC5EE908C1150E5F85843131BCE5A29806F15BCBF4ECE6AE7EEF10398AC3BBB ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
12:51:57.0806 0x0580 IntcAzAudAddService - ok
12:51:57.0868 0x0580 [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide C:\Windows\system32\drivers\intelide.sys
12:51:57.0869 0x0580 intelide - ok
12:51:57.0922 0x0580 [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
12:51:57.0925 0x0580 intelppm - ok
12:51:57.0954 0x0580 [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum C:\Windows\system32\ipbusenum.dll
12:51:57.0959 0x0580 IPBusEnum - ok
12:51:57.0993 0x0580 [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
12:51:57.0996 0x0580 IpFilterDriver - ok
12:51:58.0065 0x0580 [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
12:51:58.0082 0x0580 iphlpsvc - ok
12:51:58.0130 0x0580 [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
12:51:58.0133 0x0580 IPMIDRV - ok
12:51:58.0177 0x0580 [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT C:\Windows\system32\drivers\ipnat.sys
12:51:58.0181 0x0580 IPNAT - ok
12:51:58.0237 0x0580 [ 3D62FE4FEFE9C67DAFEC52B534DFA1FB, 93BCED5F17999D6CC4564D3AA7D00CA05F69FF6D8A112FBD963B03D628526E1C ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
12:51:58.0264 0x0580 iPod Service - ok
12:51:58.0298 0x0580 [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM C:\Windows\system32\drivers\irenum.sys
12:51:58.0300 0x0580 IRENUM - ok
12:51:58.0332 0x0580 [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp C:\Windows\system32\drivers\isapnp.sys
12:51:58.0333 0x0580 isapnp - ok
12:51:58.0366 0x0580 [ D931D7309DEB2317035B07C9F9E6B0BD, 13AD84172ED8C6153F8A98499C01733B74E48464CE07D099508E38D409913ED3 ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
12:51:58.0375 0x0580 iScsiPrt - ok
12:51:58.0413 0x0580 jpjrpwpi - ok
12:51:58.0449 0x0580 [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
12:51:58.0450 0x0580 kbdclass - ok
12:51:58.0535 0x0580 [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
12:51:58.0536 0x0580 kbdhid - ok
12:51:58.0570 0x0580 [ C118A82CD78818C29AB228366EBF81C3, 00820F3065871DCBA52A27C7F73BA470C4F2CB26EFB7F76FEF8B1207F81B284D ] KeyIso C:\Windows\system32\lsass.exe
12:51:58.0571 0x0580 KeyIso - ok
12:51:58.0626 0x0580 [ 97A7070AEA4C058B6418519E869A63B4, 15345C2D6CA159BD498002974A0BD21CAB611124D85E3320248B47652AEF23C8 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
12:51:58.0630 0x0580 KSecDD - ok
12:51:58.0692 0x0580 [ 7EFB9333E4ECCE6AE4AE9D777D9E553E, 94F1382291BD748BAE7EDBCB56F43B8564A1EE22E2DBEB37066559EE3D065FBA ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
12:51:58.0697 0x0580 KSecPkg - ok
12:51:58.0734 0x0580 [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
12:51:58.0735 0x0580 ksthunk - ok
12:51:58.0772 0x0580 [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm C:\Windows\system32\msdtckrm.dll
12:51:58.0784 0x0580 KtmRm - ok
12:51:58.0837 0x0580 [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer C:\Windows\System32\srvsvc.dll
12:51:58.0845 0x0580 LanmanServer - ok
12:51:58.0871 0x0580 [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
12:51:58.0881 0x0580 LanmanWorkstation - ok
12:51:58.0953 0x0580 [ 7550D101BF49FDB1F92666A233EE36C4, 281EE6C9AAE0A3FDA8D0FE7CD6BA55C481B8719799A526601FEA0542345CAF18 ] LightScribeService C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
12:51:58.0957 0x0580 LightScribeService - ok
12:51:58.0981 0x0580 [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
12:51:58.0983 0x0580 lltdio - ok
12:51:59.0019 0x0580 [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc C:\Windows\System32\lltdsvc.dll
12:51:59.0030 0x0580 lltdsvc - ok
12:51:59.0043 0x0580 [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts C:\Windows\System32\lmhsvc.dll
12:51:59.0046 0x0580 lmhosts - ok
12:51:59.0123 0x0580 [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
12:51:59.0128 0x0580 LSI_FC - ok
12:51:59.0139 0x0580 [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
12:51:59.0143 0x0580 LSI_SAS - ok
12:51:59.0168 0x0580 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
12:51:59.0171 0x0580 LSI_SAS2 - ok
12:51:59.0197 0x0580 [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
12:51:59.0201 0x0580 LSI_SCSI - ok
12:51:59.0239 0x0580 lstgprdh - ok
12:51:59.0313 0x0580 [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv C:\Windows\system32\drivers\luafv.sys
12:51:59.0317 0x0580 luafv - ok
12:51:59.0369 0x0580 [ 90AA9E273410AD7A41D2D06E0FB46022, DE8D57149D503F9D5B3B6D4133482C9A19F8BB1FF0FCCADBB0F5B4E64121F92C ] mbamchameleon C:\Windows\system32\drivers\mbamchameleon.sys
12:51:59.0372 0x0580 mbamchameleon - ok
12:51:59.0410 0x0580 MBAMSwissArmy - ok
12:51:59.0446 0x0580 [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
12:51:59.0450 0x0580 Mcx2Svc - ok
12:51:59.0473 0x0580 [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
12:51:59.0475 0x0580 megasas - ok
12:51:59.0516 0x0580 [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
12:51:59.0526 0x0580 MegaSR - ok
12:51:59.0563 0x0580 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS C:\Windows\system32\mmcss.dll
12:51:59.0567 0x0580 MMCSS - ok
12:51:59.0598 0x0580 [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem C:\Windows\system32\drivers\modem.sys
12:51:59.0601 0x0580 Modem - ok
12:51:59.0634 0x0580 [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
12:51:59.0636 0x0580 monitor - ok
12:51:59.0700 0x0580 [ 4BD239A90FAFC80CA91AF2DD644D719A, D26D48AB392426544C9E57593BB72F9416E7EFF73769C94A9A4614099EA31E18 ] motandroidusb C:\Windows\system32\Drivers\motoandroid.sys
12:51:59.0748 0x0580 motandroidusb - ok
12:51:59.0790 0x0580 [ 12588483F1A69AB2970D36D96B07F71B, CDC044F2FDAD3B22B295528A117D93B7DF464DE63E421DAE9C19E7A1535E3743 ] motccgp C:\Windows\system32\DRIVERS\motccgp.sys
12:51:59.0792 0x0580 motccgp - ok
12:51:59.0805 0x0580 motccgpfl - ok
12:51:59.0881 0x0580 [ EB03D4164E7F10B601D280413655ADE4, 5C35A13962567FA6C886A8E4DD32D494294176AE5A0EE3E3E9A954C9419624F7 ] MotioninJoyXFilter C:\Windows\system32\DRIVERS\MijXfilt.sys
12:51:59.0887 0x0580 MotioninJoyXFilter - ok
12:52:00.0017 0x0580 [ 1BCB26A55B2E092FAA4DA01D9A3DE528, A4A00F6DAB0EB8AC750184221E19F6182DC8A4CAD87D1259DC15AAF7ACA82360 ] Motorola Device Manager C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe
12:52:00.0023 0x0580 Motorola Device Manager - ok
12:52:00.0082 0x0580 [ 19BC2161C3FCCED802F1BCD9B78C3466, 2EA39F23C49191A4651CD785A742554801A4AC59AACE1993B3A30EA137B4A321 ] MotoSwitchService C:\Windows\system32\DRIVERS\motswch.sys
12:52:00.0083 0x0580 MotoSwitchService - ok
12:52:00.0099 0x0580 [ 6A3C0B01551B614B6C6BC9743DEF60D9, 9144C0149A764355045711B36C12F87B2F914B76809407F46FB7BA72F83DDB9D ] Motousbnet C:\Windows\system32\DRIVERS\Motousbnet.sys
12:52:00.0101 0x0580 Motousbnet - ok
12:52:00.0119 0x0580 motusbdevice - ok
12:52:00.0135 0x0580 [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
12:52:00.0136 0x0580 mouclass - ok
12:52:00.0166 0x0580 [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
12:52:00.0168 0x0580 mouhid - ok
12:52:00.0206 0x0580 [ 32E7A3D591D671A6DF2DB515A5CBE0FA, 47CED0B9067AE8BF5EEF60B17ADEE5906BEDCC56E4CB460B7BFBC12BB9A69E63 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
12:52:00.0209 0x0580 mountmgr - ok
12:52:00.0290 0x0580 [ FC1D590039EF06A381768710E6C07E75, 2F8B4D5232C4848A423A4E647102F3EDFD9B3D55D0D14AC04FD6D60D9212106F ] MpFilter C:\Windows\system32\DRIVERS\MpFilter.sys
12:52:00.0297 0x0580 MpFilter - ok
12:52:00.0339 0x0580 [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio C:\Windows\system32\drivers\mpio.sys
12:52:00.0344 0x0580 mpio - ok
12:52:00.0369 0x0580 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
12:52:00.0372 0x0580 mpsdrv - ok
12:52:00.0491 0x0580 [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc C:\Windows\system32\mpssvc.dll
12:52:00.0516 0x0580 MpsSvc - ok
12:52:00.0570 0x0580 [ 1A4F75E63C9FB84B85DFFC6B63FD5404, 01AFA6DBB4CDE55FE4EA05BBE8F753A4266F8D072EA1EE01DB79F5126780C21F ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
12:52:00.0574 0x0580 MRxDAV - ok
12:52:00.0641 0x0580 [ A5D9106A73DC88564C825D317CAC68AC, 0457B2AEA4E05A91D0E43F317894A614434D8CEBE35020785387F307E231FBE4 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
12:52:00.0646 0x0580 mrxsmb - ok
12:52:00.0718 0x0580 [ D711B3C1D5F42C0C2415687BE09FC163, 9B3013AC60BD2D0FF52086658BA5FF486ADE15954A552D7DD590580E8BAE3EFF ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
12:52:00.0729 0x0580 mrxsmb10 - ok
12:52:00.0775 0x0580 [ 9423E9D355C8D303E76B8CFBD8A5C30C, 220B33F120C2DD937FE4D5664F4B581DC0ACF78D62EB56B7720888F67B9644CC ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
12:52:00.0779 0x0580 mrxsmb20 - ok
12:52:00.0825 0x0580 [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci C:\Windows\system32\drivers\msahci.sys
12:52:00.0827 0x0580 msahci - ok
12:52:00.0876 0x0580 [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm C:\Windows\system32\drivers\msdsm.sys
12:52:00.0880 0x0580 msdsm - ok
12:52:00.0906 0x0580 [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC C:\Windows\System32\msdtc.exe
12:52:00.0913 0x0580 MSDTC - ok
12:52:00.0953 0x0580 [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs C:\Windows\system32\drivers\Msfs.sys
12:52:00.0955 0x0580 Msfs - ok
12:52:00.0965 0x0580 [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
12:52:00.0966 0x0580 mshidkmdf - ok
12:52:01.0009 0x0580 [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
12:52:01.0010 0x0580 msisadrv - ok
12:52:01.0054 0x0580 [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
12:52:01.0060 0x0580 MSiSCSI - ok
12:52:01.0068 0x0580 msiserver - ok
12:52:01.0087 0x0580 [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
12:52:01.0088 0x0580 MSKSSRV - ok
12:52:01.0175 0x0580 [ 52D60E642263719B37F1E4A785E676EB, 1ECCB557FC26F120852E02142EDE60A91F1E53EBD6BF3A15676AF2A286B986E6 ] MsMpSvc c:\Program Files\Microsoft Security Client\MsMpEng.exe
12:52:01.0176 0x0580 MsMpSvc - ok
12:52:01.0196 0x0580 [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
12:52:01.0197 0x0580 MSPCLOCK - ok
12:52:01.0208 0x0580 [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
12:52:01.0209 0x0580 MSPQM - ok
12:52:01.0283 0x0580 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
12:52:01.0295 0x0580 MsRPC - ok
12:52:01.0346 0x0580 [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
12:52:01.0348 0x0580 mssmbios - ok
12:52:01.0374 0x0580 [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
12:52:01.0375 0x0580 MSTEE - ok
12:52:01.0384 0x0580 [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
12:52:01.0386 0x0580 MTConfig - ok
12:52:01.0415 0x0580 [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup C:\Windows\system32\Drivers\mup.sys
12:52:01.0419 0x0580 Mup - ok
12:52:01.0468 0x0580 [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent C:\Windows\system32\qagentRT.dll
12:52:01.0484 0x0580 napagent - ok
12:52:01.0538 0x0580 [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
12:52:01.0548 0x0580 NativeWifiP - ok
12:52:01.0624 0x0580 [ 760E38053BF56E501D562B70AD796B88, F856E81A975D44F8684A6F2466549CEEDFAEB3950191698555A93A1206E0A42D ] NDIS C:\Windows\system32\drivers\ndis.sys
12:52:01.0652 0x0580 NDIS - ok
12:52:01.0677 0x0580 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
12:52:01.0679 0x0580 NdisCap - ok
12:52:01.0726 0x0580 [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
12:52:01.0727 0x0580 NdisTapi - ok
12:52:01.0785 0x0580 [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
12:52:01.0787 0x0580 Ndisuio - ok
12:52:01.0816 0x0580 [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
12:52:01.0821 0x0580 NdisWan - ok
12:52:01.0862 0x0580 [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
12:52:01.0864 0x0580 NDProxy - ok
12:52:01.0882 0x0580 [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
12:52:01.0884 0x0580 NetBIOS - ok
12:52:01.0923 0x0580 [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
12:52:01.0931 0x0580 NetBT - ok
12:52:01.0961 0x0580 [ C118A82CD78818C29AB228366EBF81C3, 00820F3065871DCBA52A27C7F73BA470C4F2CB26EFB7F76FEF8B1207F81B284D ] Netlogon C:\Windows\system32\lsass.exe
12:52:01.0963 0x0580 Netlogon - ok
12:52:01.0999 0x0580 [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman C:\Windows\System32\netman.dll
12:52:02.0011 0x0580 Netman - ok
12:52:02.0049 0x0580 [ 5243CFC2E7161C91C2B355240035B9E4, CFD77485A9D7BC47F3A9C53D73B2AE2D5D04B90ED38628F3124EA569F4DE969E ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
12:52:02.0100 0x0580 NetMsmqActivator - ok
12:52:02.0110 0x0580 [ 5243CFC2E7161C91C2B355240035B9E4, CFD77485A9D7BC47F3A9C53D73B2AE2D5D04B90ED38628F3124EA569F4DE969E ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
12:52:02.0114 0x0580 NetPipeActivator - ok
12:52:02.0144 0x0580 [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm C:\Windows\System32\netprofm.dll
12:52:02.0158 0x0580 netprofm - ok
12:52:02.0241 0x0580 [ 618C55B392238B9467F9113E13525C49, 304A77EF3E1E7A1738E5A4F6A911B4DF736CEF4867C6F07CA71E227048E90370 ] netr28ux C:\Windows\system32\DRIVERS\netr28ux.sys
12:52:02.0266 0x0580 netr28ux - ok
12:52:02.0291 0x0580 [ 5243CFC2E7161C91C2B355240035B9E4, CFD77485A9D7BC47F3A9C53D73B2AE2D5D04B90ED38628F3124EA569F4DE969E ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
12:52:02.0295 0x0580 NetTcpActivator - ok
12:52:02.0302 0x0580 [ 5243CFC2E7161C91C2B355240035B9E4, CFD77485A9D7BC47F3A9C53D73B2AE2D5D04B90ED38628F3124EA569F4DE969E ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
12:52:02.0307 0x0580 NetTcpPortSharing - ok
12:52:02.0529 0x0580 [ 64428DFDAF6E88366CB51F45A79C5F69, 31187D38C1AB52120A3CB7AC3CE47ED9682AC37B0F06B9A9610C0065DD4E7B13 ] netw5v64 C:\Windows\system32\DRIVERS\netw5v64.sys
12:52:02.0766 0x0580 netw5v64 - ok
12:52:02.0807 0x0580 [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
12:52:02.0810 0x0580 nfrd960 - ok
12:52:02.0858 0x0580 [ 8FB3C853E886E1E4D57271672486111C, 2D2954740BF2046FC4C0F1C00FBA9627C356792C0636A51078116876E4886FC6 ] NisDrv C:\Windows\system32\DRIVERS\NisDrvWFP.sys
12:52:02.0862 0x0580 NisDrv - ok
12:52:02.0923 0x0580 [ 506BAA292F60C2AB637B9AEA3325D7D0, 5535FA9DD208CDBE70999866FAD422F2D9B6F59C33617675867F2B8C923F108E ] NisSrv c:\Program Files\Microsoft Security Client\NisSrv.exe
12:52:02.0934 0x0580 NisSrv - ok
12:52:02.0979 0x0580 [ 8AD77806D336673F270DB31645267293, E23F324913554A23CD043DD27D4305AF62F48C0561A0FC7B7811E55B74B1BE79 ] NlaSvc C:\Windows\System32\nlasvc.dll
12:52:02.0989 0x0580 NlaSvc - ok
12:52:03.0025 0x0580 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs C:\Windows\system32\drivers\Npfs.sys
12:52:03.0027 0x0580 Npfs - ok
12:52:03.0051 0x0580 [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi C:\Windows\system32\nsisvc.dll
12:52:03.0053 0x0580 nsi - ok
12:52:03.0065 0x0580 [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
12:52:03.0067 0x0580 nsiproxy - ok
12:52:03.0186 0x0580 [ B98F8C6E31CD07B2E6F71F7F648E38C0, 2FEA100B80680FBBF644CB6763738804155DF1E94A6542CAE2B2786D770D554E ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
12:52:03.0241 0x0580 Ntfs - ok
12:52:03.0284 0x0580 [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null C:\Windows\system32\drivers\Null.sys
12:52:03.0285 0x0580 Null - ok
12:52:03.0309 0x0580 [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid C:\Windows\system32\drivers\nvraid.sys
12:52:03.0314 0x0580 nvraid - ok
12:52:03.0336 0x0580 [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor C:\Windows\system32\drivers\nvstor.sys
12:52:03.0341 0x0580 nvstor - ok
12:52:03.0365 0x0580 [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
12:52:03.0369 0x0580 nv_agp - ok
12:52:03.0410 0x0580 [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
12:52:03.0413 0x0580 ohci1394 - ok
12:52:03.0454 0x0580 [ 9D10F99A6712E28F8ACD5641E3A7EA6B, 70964A0ED9011EA94044E15FA77EDD9CF535CC79ED8E03A3721FF007E69595CC ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
12:52:03.0461 0x0580 ose - ok
12:52:03.0709 0x0580 [ 61BFFB5F57AD12F83AB64B7181829B34, 1DD0DD35E4158F95765EE6639F217DF03A0A19E624E020DBA609268C08A13846 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
12:52:03.0944 0x0580 osppsvc - ok
12:52:03.0988 0x0580 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
12:52:03.0998 0x0580 p2pimsvc - ok
12:52:04.0039 0x0580 [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc C:\Windows\system32\p2psvc.dll
12:52:04.0053 0x0580 p2psvc - ok
12:52:04.0092 0x0580 [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport C:\Windows\system32\DRIVERS\parport.sys
12:52:04.0096 0x0580 Parport - ok
12:52:04.0119 0x0580 [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr C:\Windows\system32\drivers\partmgr.sys
12:52:04.0122 0x0580 partmgr - ok
12:52:04.0158 0x0580 [ 3AEAA8B561E63452C655DC0584922257, 04C072969B58657602EB0C21CEDF24FCEE14E61B90A0F758F93925EF2C9FC32D ] PcaSvc C:\Windows\System32\pcasvc.dll
12:52:04.0165 0x0580 PcaSvc - ok
12:52:04.0205 0x0580 [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci C:\Windows\system32\drivers\pci.sys
12:52:04.0212 0x0580 pci - ok
12:52:04.0240 0x0580 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide C:\Windows\system32\drivers\pciide.sys
12:52:04.0241 0x0580 pciide - ok
12:52:04.0296 0x0580 [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
12:52:04.0303 0x0580 pcmcia - ok
12:52:04.0342 0x0580 [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw C:\Windows\system32\drivers\pcw.sys
12:52:04.0345 0x0580 pcw - ok
12:52:04.0448 0x0580 [ 20372BE109FEE1C37E2D5216680DB9EB, 2C3737FB3C6BCF81D0A7293667412DDEA649A8AEA40B7ADCFCB9893E8B3C4AF3 ] PDF Architect Helper Service C:\Program Files (x86)\PDF Architect\HelperService.exe
12:52:04.0486 0x0580 PDF Architect Helper Service - ok
12:52:04.0558 0x0580 [ B90A279073A815A4AA2C45A09EE004FA, 9EA27630C47F5FF99CBBE513C113F3ED01FABA0D59B9D9637764027BCC6EA24A ] PDF Architect Service C:\Program Files (x86)\PDF Architect\ConversionService.exe
12:52:04.0581 0x0580 PDF Architect Service - ok
12:52:04.0662 0x0580 [ 68769C3356B3BE5D1C732C97B9A80D6E, FB2D61145980A2899D1B7729184C54070315B0E63C9A22400A76CCD39E00029C ] PEAUTH C:\Windows\system32\drivers\peauth.sys
12:52:04.0682 0x0580 PEAUTH - ok
12:52:04.0749 0x0580 [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost C:\Windows\SysWow64\perfhost.exe
12:52:04.0858 0x0580 PerfHost - ok
12:52:04.0949 0x0580 [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla C:\Windows\system32\pla.dll
12:52:04.0993 0x0580 pla - ok
12:52:05.0054 0x0580 [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
12:52:05.0067 0x0580 PlugPlay - ok
12:52:05.0107 0x0580 [ A010F13D27C1033A8BE09D5FA9BF348B, 5536A233554C469F270046ADEE12A158F70E2D8BE776BAD0925235B015567D46 ] pneteth C:\Windows\system32\DRIVERS\pneteth.sys
12:52:05.0109 0x0580 pneteth - ok
12:52:05.0162 0x0580 [ 06841F5CD8410B6BDC0B5A631B8F8787, 95CA940AAE0C713C7161899D7DD7109FC985B60A1B3817C4243ED9870DA5FDE0 ] pnetmdm C:\Windows\system32\DRIVERS\pnetmdm64.sys
12:52:05.0164 0x0580 pnetmdm - ok
12:52:05.0181 0x0580 [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
12:52:05.0184 0x0580 PNRPAutoReg - ok
12:52:05.0213 0x0580 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
12:52:05.0222 0x0580 PNRPsvc - ok
12:52:05.0289 0x0580 [ 4F0878FD62D5F7444C5F1C4C66D9D293, B381217D6202C06EE992EBDE061FA20376FF71F698022D0A80168CCD1059453C ] Point64 C:\Windows\system32\DRIVERS\point64.sys
12:52:05.0291 0x0580 Point64 - ok
12:52:05.0351 0x0580 [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
12:52:05.0367 0x0580 PolicyAgent - ok
12:52:05.0406 0x0580 [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power C:\Windows\system32\umpo.dll
12:52:05.0412 0x0580 Power - ok
12:52:05.0474 0x0580 [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
12:52:05.0478 0x0580 PptpMiniport - ok
12:52:05.0527 0x0580 [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor C:\Windows\system32\DRIVERS\processr.sys
12:52:05.0529 0x0580 Processor - ok
12:52:05.0565 0x0580 [ 53E83F1F6CF9D62F32801CF66D8352A8, 1225FED810BE8E0729EEAE5B340035CCBB9BACD3EF247834400F9B72D05ACE48 ] ProfSvc C:\Windows\system32\profsvc.dll
12:52:05.0572 0x0580 ProfSvc - ok
12:52:05.0583 0x0580 [ C118A82CD78818C29AB228366EBF81C3, 00820F3065871DCBA52A27C7F73BA470C4F2CB26EFB7F76FEF8B1207F81B284D ] ProtectedStorage C:\Windows\system32\lsass.exe
12:52:05.0585 0x0580 ProtectedStorage - ok
12:52:05.0635 0x0580 [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched C:\Windows\system32\DRIVERS\pacer.sys
12:52:05.0639 0x0580 Psched - ok
12:52:05.0698 0x0580 [ EA735BF6DF13A857A83C99BF27A422AD, 026A57155FB9E01CFAFD8613980CDF0F3D744ABBBC66EFDC6C20B89980FB45CF ] PST Service C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe
12:52:05.0701 0x0580 PST Service - ok
12:52:05.0769 0x0580 [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300
 

kuttus

Level 2
Verified
Oct 5, 2012
2,697
See this Post to know more about how do I attach things to a post.

http://malwaretips.com/Thread-How-to-use-the-attachment-system?pid=16072#pid16072
 

Djimbe

New Member
Thread author
Verified
Dec 5, 2013
15
thank you! That black line was really screwing me up for some reason!
 

Attachments

  • TDSSKiller.3.0.0.19_08.12.2013_12.51.10_log.txt
    417.4 KB · Views: 88
  • TDSSKiller.3.0.0.14_08.12.2013_12.47.51_log.txt
    366 bytes · Views: 86

Djimbe

New Member
Thread author
Verified
Dec 5, 2013
15
I could always START it in normal mode. its just that its only going to be so long before it freezes up. You have 5-20 min, OR if you run a MBAM scan... its like if it sees ONE special file it freezes up.
 

kuttus

Level 2
Verified
Oct 5, 2012
2,697
STEP 1: Download and Run Windows Repair (all in one)

Download Windows Repair (all in one)

  • Install the program then run it.
  • Go to step 2 and allow it to run Disc check by clicking Do It
  • Go to step 3 and allow it to run SFC
  • Go to start repairs tab select advanced mode and click start.
  • Check the box next to "Restart/Shutdown system when finished" and ensure the following is checked along with the default checks
    1. Reset File Permissions
    2. Register System Files
    3. Repair WMI
    4. Remove Policies Set By Infections
    5. Remove Temp Files
  • Then click Start.
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top