Sign in to follow this  
dcole

not sure what is going on trouble posting trouble with infection

Recommended Posts

so can't seem at a different computer at a different internet connection even post my log file and description. I am not sure if the post is too long or what is going on. Attaching a word document with the description and logs to this post. Hopefully that will work. And it doesn't it will not let me upload the file. I am at my wits end here. I can not post the copied and pasted log files or attach the docx file to a post. What is going on?

Share this post


Link to post
Share on other sites

Ok I apologize for the multiple replies but went to another location with a different computer to try and get this to work so going to try everything I can think off to get this to work. As it will not let me upload the docx file I have changed it to both a pdf and a txt. Going to try and see if I can upload one of those. Not at all sure what is going on.

 

Yeah these seem to work! Now if only this post goes through...

post for adaware.pdf

post for adaware.txt

Share this post


Link to post
Share on other sites

Hi dcole,

 

The log files are in .txt format, that is normal text file that should open in Notepad. You're allowed to attach text files (.txt) but not Word files, since such files can contain malicious macros. Your FRST.txt file is too long to paste into your post, maybe because you have selected all extra features in FRST.

 

1. Do you have the same amount of ads in both Internet Explorer and Firefox?

When did this amount of ads start?

Is the computer connected to the internet through a router or gateway?
Does other computers using the same router or gateway also get a lot of extra ads?

 

2. Please disable or uninstall Bitraider while cleaning the computer.

 

3. Please uninstall Java 8 Update 31 since it's an old version with known vulnerabilities that can be used by a web page to infect the computer. Most people don't need to have Java, but if you need it it's very important to always have the latest version.

 

 

4. Please, save RougueKiller on the Desktop. http://www.adlice.com/softwares/roguekiller/
Click on one of the three first buttons labelled "Portable 64 bits".

Turn off all running programs and remove any external drives and other devices connected with USB etc. except mouse and keyboard.

Start RougueKiller. If it won't start, try several times. If you still are unsuccessful, rename the file to winlogon.exe.

Wait until "Prescan" has finished.
Click on "Scan" button in upper right corner.
Wait until the scan has finished.
Click on "Report" button.
A report will be created.
Please, post it in your reply.

 

 

5. Run an online scan with Eset (easiest with Internet Explorer): http://www.eset.com/onlinescan/
To shorten the scanning time disable your antivirus program while scanning.

Select Enable detection of potentially unwanted applications.
Click Advanced Settings.

Deselect Remove found threats.

Select:
Scan Archives
Scan for potentially unsafe applications
Enable Anti-Stealth Technology

Click Start.

When the scan is finished, click on List of found threats and then Export to text file. Copy the content of the text file and paste its content in your reply.

Share this post


Link to post
Share on other sites

Glad we got this worked out so that I can post what I need to! Was unable to get the first program to work. Even when I renmane it I get a this app can not run on your computer to get one that will please contact the publisher. Deleted the programs you mentioned (still having the problem but didn't think that would fix it). It is a desktop that I am using so should I be downloading a portable? Also when I clicked on the second button (first that said 64 bits) the page it took me to downloaded what looked like an installer not a portable one. Should I do the other scan before using rouge killer?

I am connecting to the internet directly not through a gateway or a router so nothing for other computers to be using.

Thanks for all the help!

Share this post


Link to post
Share on other sites

Both desktops and laptops can use portable programs. A portable program can be stored e.g. on a flash drive and moved between computers without installation in each computer.

 

It's the portable version of the program you get even with the second button.

 

You can run with Eset's scanner even if RogueKiller doesn't work.

 

Are you using a modem when connecting to internet, and which model if you use one?

 

You're welcome :)

Share this post


Link to post
Share on other sites

Ah ok. Wish I could get rouge killer to work as it looks like it is good. After I post the log here for esnet should I go ahead and clean? Using a cable modem. Motorola SB5101 SURFboard. Will run eset now.

Share this post


Link to post
Share on other sites

When I have seen the log from Eset's scanner, I'll reply with the next step.

 

Do you have the same amount of ads in both Internet Explorer and Firefox?

When did this amount of ads start?

 

 

Save TDSSKiller on the Desktop:
http://support.kaspersky.com/downloads/utils/tdsskiller.exe

Turn off all programs.
Run the program TDSSKiller.

Click on Start Scan.

If any malicious objects are found select Cure and click Continue. If Cure isn't available select Skip. If any suspicious objects are found select Skip Do NOT select Quarantine or Delete.
The computer might need a restart.

Paste the content of the TDSSKiller log which is located in the folder C:\ with the name TDSSKiller followed by version and time.

Share this post


Link to post
Share on other sites

Been using internet explorer more after last posting can say MUCH less adds than in firefox. Actually IE seems to be running incredibly smoothly with almost no problems. The amount of ads started several weeks ago about a month maybe more. Busy with the end of law school so unable to deal with it much before. Log from Eset below:

 

C:\Users\Daniel\Documents\RCA easyRip\RCAeasyRipInstaller.exe a variant of Win32/Bundled.Toolbar.Ask.G potentially unsafe application
G:\Users\Daniel\AppData\Local\Temp\AskInstallChecker.exe a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application
G:\Users\Daniel\AppData\Local\Temp\AskSLib.dll a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application
G:\Users\Daniel\AppData\Local\Temp\AAWInstallerTemp\v9.0.7\Ad-Aware.msi a variant of Win32/Toolbar.Visicom.A potentially unwanted application
G:\Users\Daniel\Documents\RCA easyRip\RCAeasyRipInstaller.exe a variant of Win32/Bundled.Toolbar.Ask.G potentially unsafe application

Share this post


Link to post
Share on other sites

TDSS Killer was an incredibly quick scan didn't seem to find anything. Log is below.

 

12:28:38.0777 0x302c TDSS rootkit removing tool 3.0.0.44 Jan 22 2015 08:27:04
12:28:47.0059 0x302c ============================================================
12:28:47.0059 0x302c Current date / time: 2015/05/27 12:28:47.0059
12:28:47.0059 0x302c SystemInfo:
12:28:47.0059 0x302c
12:28:47.0059 0x302c OS Version: 6.3.9600 ServicePack: 0.0
12:28:47.0059 0x302c Product type: Workstation
12:28:47.0059 0x302c ComputerName: PC
12:28:47.0059 0x302c UserName: Daniel
12:28:47.0059 0x302c Windows directory: C:\Windows
12:28:47.0059 0x302c System windows directory: C:\Windows
12:28:47.0059 0x302c Running under WOW64
12:28:47.0059 0x302c Processor architecture: Intel x64
12:28:47.0059 0x302c Number of processors: 8
12:28:47.0059 0x302c Page size: 0x1000
12:28:47.0059 0x302c Boot type: Normal boot
12:28:47.0059 0x302c ============================================================
12:28:47.0356 0x302c KLMD registered as C:\Windows\system32\drivers\44743907.sys
12:28:48.0621 0x302c System UUID: {F3DCB092-6D3C-B07B-6072-E628B5482B8D}
12:28:49.0277 0x302c Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
12:28:49.0293 0x302c Drive \Device\Harddisk1\DR1 - Size: 0x3A38B2E000 ( 232.89 Gb ), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
12:28:49.0309 0x302c ============================================================
12:28:49.0309 0x302c \Device\Harddisk0\DR0:
12:28:49.0309 0x302c MBR partitions:
12:28:49.0309 0x302c \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xAF000
12:28:49.0309 0x302c \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xAF800, BlocksNum 0x3A2D6000
12:28:49.0309 0x302c \Device\Harddisk1\DR1:
12:28:49.0309 0x302c MBR partitions:
12:28:49.0309 0x302c \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
12:28:49.0309 0x302c \Device\Harddisk1\DR1\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x8886000
12:28:49.0324 0x302c \Device\Harddisk1\DR1\Partition3: MBR, Type 0x7, StartLBA 0x88B901B, BlocksNum 0x149076A5
12:28:49.0324 0x302c ============================================================
12:28:49.0371 0x302c C: <-> \Device\Harddisk0\DR0\Partition2
12:28:49.0387 0x302c E: <-> \Device\Harddisk1\DR1\Partition1
12:28:49.0402 0x302c F: <-> \Device\Harddisk1\DR1\Partition3
12:28:49.0418 0x302c G: <-> \Device\Harddisk1\DR1\Partition2
12:28:49.0418 0x302c ============================================================
12:28:49.0418 0x302c Initialize success
12:28:49.0418 0x302c ============================================================
12:29:34.0068 0x121c ============================================================
12:29:34.0068 0x121c Scan started
12:29:34.0068 0x121c Mode: Manual;
12:29:34.0068 0x121c ============================================================
12:29:34.0068 0x121c KSN ping started
12:29:36.0428 0x121c KSN ping finished: true
12:29:40.0318 0x121c ================ Scan system memory ========================
12:29:40.0318 0x121c System memory - ok
12:29:40.0318 0x121c ================ Scan services =============================
12:29:40.0474 0x121c [ E1832BD9FD7E0FC2DC9FA5935DE3E8C1, 41FF7418887AFC8B9C96EF21C5950DD342CC9E3C0D87AFD60A05B988C1D6CC23 ] 1394ohci C:\Windows\System32\drivers\1394ohci.sys
12:29:40.0474 0x121c 1394ohci - ok
12:29:40.0521 0x121c [ AD508A1A46EC21B740AB31C28EFDFDB1, 9B1046CF0B80723149BD359B55CC0B8B3ABBEAA9038469F542A4C345C503FB02 ] 3ware C:\Windows\system32\drivers\3ware.sys
12:29:40.0521 0x121c 3ware - ok
12:29:40.0584 0x121c [ E796AE43DDD1844281DB4D57294D17C0, 21AE69615044A96041E46476BE814B52C22624B6C7EA6BFC77BB64F69C3C21F5 ] ACPI C:\Windows\system32\drivers\ACPI.sys
12:29:40.0599 0x121c ACPI - ok
12:29:40.0615 0x121c [ AC8279D229398BCF05C3154ADCA86813, 083E86CBE53244D24C334DB1511C77025133AE7875191845764B890A8CA5AFA9 ] acpiex C:\Windows\system32\Drivers\acpiex.sys
12:29:40.0615 0x121c acpiex - ok
12:29:40.0631 0x121c [ A8970D9BF23CD309E0403978A1B58F3F, 9946C8477104EEC7DB197E2222F9905307F101C398CCED4B5FD0F86A5622C791 ] acpipagr C:\Windows\System32\drivers\acpipagr.sys
12:29:40.0631 0x121c acpipagr - ok
12:29:40.0646 0x121c [ 111A89C99C5B4F1A7BCE5F643DD86F65, 41A2E49FF443927D05F7EF638518108227852984E68D4663C8761178C0B84A45 ] AcpiPmi C:\Windows\System32\drivers\acpipmi.sys
12:29:40.0646 0x121c AcpiPmi - ok
12:29:40.0646 0x121c [ 5758387D68A20AE7D3245011B07E36E7, 77832E200E8B0D259552F6F60FE454A887E3EBBB9EA2F3590E6645289A04E293 ] acpitime C:\Windows\System32\drivers\acpitime.sys
12:29:40.0646 0x121c acpitime - ok
12:29:40.0787 0x121c [ FC5B75CA6A1DA31EDD4F8D53F5540B98, CDC445F2790ADFC4C5568C40D4DA8BB95CD71991665B38AEC3D84571C99C3520 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
12:29:40.0787 0x121c AdobeARMservice - ok
12:29:40.0849 0x121c [ B04A4810C6CC205F9DC72DC22E4AB236, 547321F5C28C80D4818372D65E2A33D4BAC593015DD6613B24586FE4B4A95D5D ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
12:29:40.0849 0x121c AdobeFlashPlayerUpdateSvc - ok
12:29:40.0881 0x121c [ 7C1FDF1B48298CBA7CE4BDD4978951AD, 80F4D536E1231B30E836F72ADC8814AE6AA9FEC573FB5F3F965FAC8ABCCAF0F8 ] ADP80XX C:\Windows\system32\drivers\ADP80XX.SYS
12:29:40.0896 0x121c ADP80XX - ok
12:29:40.0943 0x121c [ BCD58DACAA1EAAADC115EDD940478F6D, F31613F583C302F62A00E6766B031531C9E193CAED563689B178BA257715B992 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
12:29:40.0943 0x121c AeLookupSvc - ok
12:29:41.0021 0x121c [ 374E27295F0A9DCAA8FC96370F9BEEA5, 51C394E0C2322D7D093941A1B8766171B5D1F47DF2FE0834209492891EA7D999 ] AFD C:\Windows\system32\drivers\afd.sys
12:29:41.0037 0x121c AFD - ok
12:29:41.0053 0x121c [ 7DFAEBA9AD62D20102B576D5CAC45EC8, 9FA5207335303D1E8E9A3C9E1FB82C09AD21B04382F69D777A67E48EE91D2093 ] agp440 C:\Windows\system32\drivers\agp440.sys
12:29:41.0053 0x121c agp440 - ok
12:29:41.0099 0x121c [ FE14D249D39368CA62D8DA6BC94AC694, E1036E22BFBD3750FD2D3DA6AB939B2DD54E824F4BD3E6539EF0E45AB5453DD1 ] ahcache C:\Windows\system32\DRIVERS\ahcache.sys
12:29:41.0099 0x121c ahcache - ok
12:29:41.0162 0x121c [ 14A45BE6F5678339F0EC5752D9849410, DD0F60E96FAC68FBD5B86382E541408C613BD0F871D0E0A1EF9AB6E7B26E545C ] ALG C:\Windows\System32\alg.exe
12:29:41.0162 0x121c ALG - ok
12:29:41.0193 0x121c [ 7589DE749DB6F71A68489DCE04158729, 5F35EDD50737985595C9D6703237CA2ADE49AA5443331020899698EB5114A0FB ] AmdK8 C:\Windows\System32\drivers\amdk8.sys
12:29:41.0209 0x121c AmdK8 - ok
12:29:41.0224 0x121c [ B46D2D89AFF8A9490FA8C98C7A5616E3, BE0765B5423B690E0F097FECD9717FAA95BFDFFDC6CF1B93DE5A19A1B7797879 ] AmdPPM C:\Windows\System32\drivers\amdppm.sys
12:29:41.0240 0x121c AmdPPM - ok
12:29:41.0256 0x121c [ D2BF2F94A47D332814910FD47C6BBCD2, FE273D77D119D958676E1197D9EA7B008E3B05C6192B1962A81D4223ED204C35 ] amdsata C:\Windows\system32\drivers\amdsata.sys
12:29:41.0256 0x121c amdsata - ok
12:29:41.0287 0x121c [ A8E04943C7BBA7219AA50400272C3C6E, 794C0BD12DF0392654E9A37AE4A24B5BE2D83F1F24F74DD48A1A0BF3AB8B1FF8 ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
12:29:41.0287 0x121c amdsbs - ok
12:29:41.0287 0x121c [ CEA5F4F27CFC08E3A44D576811B35F50, 89DF64B81BD109BAABAE93A4603C1617241219F38DDAF325EFE6BD35FF6FD717 ] amdxata C:\Windows\system32\drivers\amdxata.sys
12:29:41.0303 0x121c amdxata - ok
12:29:41.0334 0x121c [ 415DD71628795197F7AFC176CBADC74E, 5F0359053A6CD6EE239139E0E6F46E1FA9A73F017C0CE9B7BC052216B2C846EC ] AppID C:\Windows\system32\drivers\appid.sys
12:29:41.0349 0x121c AppID - ok
12:29:41.0396 0x121c [ 34B2E222F82D05398DAE7203B36B6A2B, AC04BC6B5A36A6807FFE302E9ACF073342B4D76B0BB386249251CB3CA1852CE8 ] AppIDSvc C:\Windows\System32\appidsvc.dll
12:29:41.0396 0x121c AppIDSvc - ok
12:29:41.0459 0x121c [ 680BFB820C5A943AB709BAA2B1EF27F2, A51D2A7976A762FE470C13C6D1BA0319A0FB19C9E66BF02AA44F83EAEC7130F8 ] Appinfo C:\Windows\System32\appinfo.dll
12:29:41.0474 0x121c Appinfo - ok
12:29:41.0521 0x121c [ 35E28923A23ADABAA5A1B43256D0AB58, A5F3AF8BBEE58B2165BAFACC5FF8B167B55B020998D3D1565C2229ED8753B269 ] AppReadiness C:\Windows\system32\AppReadiness.dll
12:29:41.0537 0x121c AppReadiness - ok
12:29:41.0646 0x121c [ 573542B5E97772021B73E854DA861DAA, C3FD00FA28060F8D7CDFD455BBB5FF8239CB76DDFFF2BDAE6AA944674DD993D3 ] AppXSvc C:\Windows\system32\appxdeploymentserver.dll
12:29:41.0678 0x121c AppXSvc - ok
12:29:41.0709 0x121c [ 65045784366F7EC5FB4E71BCF923187B, 53C215C64FF12E44B097F7CB88E8482438CE0ACBD3C68D8FD38BA0D0D8747FAA ] arcsas C:\Windows\system32\drivers\arcsas.sys
12:29:41.0709 0x121c arcsas - ok
12:29:41.0771 0x121c [ BBF8F831C7720DD5135D8C4C8325187A, 2630C68200D7BD49A5772830D6B369C0EC337C2558A9562DD564DF042249ECC0 ] asComSvc C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
12:29:41.0787 0x121c asComSvc - ok
12:29:41.0803 0x121c [ 798DE15F187C1F013095BBBEB6FB6197, 436CCAB6F62FA2D29827916E054ADE7ACAE485B3DE1D3E5C6C62D3DEBF1480E7 ] AsIO C:\Windows\syswow64\drivers\AsIO.sys
12:29:41.0803 0x121c AsIO - ok
12:29:41.0803 0x121c [ 3DB7721F06BC2FEDB25029EA23AB27DA, 221861148C66FE53E4D6EE49C6E656479AB5804A2D348A280A1CD8093E8AB788 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
12:29:41.0803 0x121c AsyncMac - ok
12:29:41.0818 0x121c [ 74B14192CF79A72F7536B27CB8814FBD, 0CF6BBB63FFE0C12777664D80B2797923844C8392D0FD81D7962EE5EE2C3C3D9 ] atapi C:\Windows\system32\drivers\atapi.sys
12:29:41.0818 0x121c atapi - ok
12:29:41.0881 0x121c [ 8779FDAE68BC948B0FE152E758CC8DA7, 13070C2073F8E7546B48AE9CF54067B9BB75DFCD98F2987B90FFAD20D40D54CF ] AudioEndpointBuilder C:\Windows\System32\AudioEndpointBuilder.dll
12:29:41.0881 0x121c AudioEndpointBuilder - ok
12:29:41.0928 0x121c [ 61EA45A645854FE81D8A924E2D93DFFE, 34F79532297F609CA93C380B68BB8B7B0F027F9C8F4FB8E02A9A43EA3D155F1B ] Audiosrv C:\Windows\System32\Audiosrv.dll
12:29:41.0959 0x121c Audiosrv - ok
12:29:42.0037 0x121c [ E058520EEE9DAC4613D846596FF82D92, 0291075CA16ACB79F4989DE44D381F5742A2A3601F22C3600AE236D864E3370E ] avc3 C:\Windows\system32\DRIVERS\avc3.sys
12:29:42.0053 0x121c avc3 - ok
12:29:42.0115 0x121c [ 91E41A7195E5B0E44FB3BEB83926F385, 241A7918C265B065C66FF742562313DEA764454E0F0AF579E3EA5DE6AE18F442 ] avchv C:\Windows\system32\DRIVERS\avchv.sys
12:29:42.0131 0x121c avchv - ok
12:29:42.0178 0x121c [ 62C4DB41DAEA0FC1F5CB103B023D1068, 8C04FDF08CB487A775C8970527AE8115D9CE538781C607F703EE49674C63BA56 ] avckf C:\Windows\system32\DRIVERS\avckf.sys
12:29:42.0193 0x121c avckf - ok
12:29:42.0256 0x121c [ 3C6ED74AF41DD1A5585CE5EF3D00915F, A742F576407776634E5A8E49C60023FFDF395DE0B2DE36662A23F85B79405ED2 ] AxInstSV C:\Windows\System32\AxInstSV.dll
12:29:42.0256 0x121c AxInstSV - ok
12:29:42.0318 0x121c [ A4A73F631FE2AA2826FBE4A399B04DEF, 973AACE8DC8DA669D0DF20F17EFDEEABB90AA046AC980948D16A62D39A606A79 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
12:29:42.0318 0x121c b06bdrv - ok
12:29:42.0349 0x121c [ 8CC7F7E4AFCBA605921B137ED7992C68, 71406E6D6E9964740A6D90B05329D5492BB90AF40E0630CF2FBF4BA4BA14F2DD ] BasicDisplay C:\Windows\System32\drivers\BasicDisplay.sys
12:29:42.0349 0x121c BasicDisplay - ok
12:29:42.0412 0x121c [ 38A82F4EE8C416A6744B6D30381ED768, 9EAAE5F43BA09359130AC04B1DCA0F5D4DF32ED89C02DC5CEB640918948847F7 ] BasicRender C:\Windows\System32\drivers\BasicRender.sys
12:29:42.0412 0x121c BasicRender - ok
12:29:42.0428 0x121c [ C1ABB0F7E3BEA48A0417BDF6FF14AB21, 1CAC63A1A0FB9855A27EE977794576A860F6650C9EF7667FFB27F2A2FF721857 ] bcmfn2 C:\Windows\System32\drivers\bcmfn2.sys
12:29:42.0443 0x121c bcmfn2 - ok
12:29:42.0506 0x121c [ 77D760E9B477C21487C171F561497F98, 2393D466CEC863C771C5BB4CD81B251635DC084386134B8E13F74F3E1C6D68DF ] BDESVC C:\Windows\System32\bdesvc.dll
12:29:42.0521 0x121c BDESVC - ok
12:29:42.0615 0x121c [ 8F966B0778C248ACC4D22DB88364455E, EAC1780FCA264EFA36FEDAFEF676594D11BDD0C00998C5EBB86F2F21012E71B7 ] BdfNdisf C:\Program Files\Lavasoft\Ad-Aware Antivirus\Firewall Engine\1.6.0.0\Drivers\bdfndisf6.sys
12:29:42.0615 0x121c BdfNdisf - ok
12:29:42.0631 0x121c [ EC80614A72BC7039D2B22E3DD6C15895, 932260AB126523428B884034162E3619E1B7FA13720F830783B592AAE825AC86 ] bdfwfpf C:\Program Files\Lavasoft\Ad-Aware Antivirus\Firewall Engine\1.6.0.0\Drivers\bdfwfpf.sys
12:29:42.0646 0x121c bdfwfpf - ok
12:29:42.0662 0x121c [ EC19013E4CF87609534165DF897274D6, 8ED45537CF2D58D759A587CCBFDADD5580C7447B0C3B172CF19ECC7585E073FC ] Beep C:\Windows\system32\drivers\Beep.sys
12:29:42.0662 0x121c Beep - ok
12:29:42.0756 0x121c [ 7BCB00EA702F78EC74CD9699D85CE80B, 17241ADAA13051B560DB9FA9079CAE6321D5B49788B596C125DC912443B00421 ] BFE C:\Windows\System32\bfe.dll
12:29:42.0771 0x121c BFE - ok
12:29:42.0787 0x121c [ 48554994279BFE17A3D2B00076D0CB1A, 6521B1EC0BC6B01F63976370D89FE7DC2E7404899F68B6FAC37A9173B9C5D489 ] BITS C:\Windows\System32\qmgr.dll
12:29:42.0943 0x121c BITS - ok
12:29:42.0959 0x121c [ 6B4FFFDDC618FCF64473CAA86E305697, 29EA66071D5822920F5C50533673ADAB5204F8B25C11027AD27450D881F1142D ] bowser C:\Windows\system32\DRIVERS\bowser.sys
12:29:42.0959 0x121c bowser - ok
12:29:42.0974 0x121c BRDriver64_1_3_3_E02B25FC - ok
12:29:43.0037 0x121c [ FA601515FF2B59F25FDD8EDB1D2A1104, 21DFB53241F8E880F7546B9ADF38F47D6AD0782EC7F8F0284ED69DE7CEF7DCB9 ] BrokerInfrastructure C:\Windows\System32\bisrv.dll
12:29:43.0037 0x121c BrokerInfrastructure - ok
12:29:43.0099 0x121c [ BC111AADACD0BF59D56547461D13AB6E, 91E3619930C29EE4B2683683888BA7EE3CF6B1DDB0C19A14E0880470CBE40EF4 ] Browser C:\Windows\System32\browser.dll
12:29:43.0115 0x121c Browser - ok
12:29:43.0115 0x121c BRSptStub - ok
12:29:43.0146 0x121c [ A8F23D453A424FF4DE04989C4727ECC7, AE4A9081395C7379F1C947EF8243F7609F90C843E086B8E77E1A2C06E36D4381 ] BthAvrcpTg C:\Windows\System32\drivers\BthAvrcpTg.sys
12:29:43.0146 0x121c BthAvrcpTg - ok
12:29:43.0193 0x121c [ 272A62B660A48AEF366F8A1836CED19F, 78EFAC6B1B2313482329BBFFBF0DDA6462BD88E5BE3C817C5E8E0EAF3074C925 ] BthHFEnum C:\Windows\System32\drivers\bthhfenum.sys
12:29:43.0193 0x121c BthHFEnum - ok
12:29:43.0209 0x121c [ 71FE2A48E4C93DDB9798C024880B6C07, 8E93DE29C61A5FA64216231228CB3C4A1A693FE87CAA2C070BCAD7BE2D8ED000 ] bthhfhid C:\Windows\System32\drivers\BthHFHid.sys
12:29:43.0209 0x121c bthhfhid - ok
12:29:43.0287 0x121c [ 9307A4B743D277C499CDA8E19E5687AC, 7A01989EC3D54581F292BDEDC9B9445F2ABD50165102617E3089BDD061C63A19 ] BthHFSrv C:\Windows\System32\BthHFSrv.dll
12:29:43.0303 0x121c BthHFSrv - ok
12:29:43.0318 0x121c [ 07E33226AD218A2A162662A05CAFB52F, 0AC3D8B79EDA6DA232FA4E1CAF6592420A9EDE96350D1F0504C2434261684F0B ] BTHMODEM C:\Windows\System32\drivers\bthmodem.sys
12:29:43.0318 0x121c BTHMODEM - ok
12:29:43.0365 0x121c [ 043A0F37631BF453F16D478B71320F46, C368296B802984F438852927B8A40EA3F4205724A05828F3173F08EC17228356 ] bthserv C:\Windows\system32\bthserv.dll
12:29:43.0381 0x121c bthserv - ok
12:29:43.0584 0x121c [ 1F79342D9EB530A48742F651E570983A, 99E0B613C23FA8591E248DFA6FF2D3EE19E262BE6E070A0E43E256B69687017F ] c2cautoupdatesvc C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
12:29:43.0599 0x121c c2cautoupdatesvc - ok
12:29:43.0709 0x121c [ E4938E0A376CF0B9D989EE5C0A146891, 9DF6AB5781CD60862D9664CA9A8AF0696A1FB6D09D804CD8DE9630F40DE59E90 ] c2cpnrsvc C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
12:29:43.0740 0x121c c2cpnrsvc - ok
12:29:43.0756 0x121c [ 2FA6510E33F7DEFEC03658B74101A9B9, 61C8C8E3F09B427711464C974EE22E1E01C48E10DB54A4EC9901F482FC36C978 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
12:29:43.0756 0x121c cdfs - ok
12:29:43.0771 0x121c [ C6796EA22B513E3457514D92DCDB1A3D, 2B893F3950C6B913B934C2089B69F3B0B77F229AE1820907E598455CBB78139C ] cdrom C:\Windows\System32\drivers\cdrom.sys
12:29:43.0771 0x121c cdrom - ok
12:29:43.0834 0x121c [ 41C0D7B1A6D4AD119BA6AC0487EA5C8E, 516C2B34BA7507D0DA4148B4ABC0A8C36286570D4EA5C60B28647B1249C15018 ] CertPropSvc C:\Windows\System32\certprop.dll
12:29:43.0849 0x121c CertPropSvc - ok
12:29:43.0865 0x121c [ BE9936EDD3267FAAFF94A7835867F00B, 3CEEF2377D45ED38C7CD3CE4C746EC5EA7277EFEC728A5438F0EF5F62FC7C859 ] circlass C:\Windows\System32\drivers\circlass.sys
12:29:43.0865 0x121c circlass - ok
12:29:43.0928 0x121c [ 8EB7E70C2D348FE2476A2E3F2D585E3D, 2B5D407FACF1D049261026CC552A7C93B028A661B0F4E959815EAE7670054127 ] CLFS C:\Windows\system32\drivers\CLFS.sys
12:29:43.0959 0x121c CLFS - ok
12:29:44.0115 0x121c [ 42C5B8010D47EF3F4BAE6D1B427E80F4, 721C24522C43D50081EA01FD521D68EB365B91561CCF2E7AD1F091FBD61E67FB ] ClickToRunSvc C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe
12:29:44.0146 0x121c ClickToRunSvc - ok
12:29:44.0162 0x121c [ EF6EF85DADC3184A10D8F2F7159973CB, 42FCB286CED95A5DEBC5C0C894FCBC4818A2C818BB71087142FB51A08A0BE96B ] CmBatt C:\Windows\System32\drivers\CmBatt.sys
12:29:44.0162 0x121c CmBatt - ok
12:29:44.0240 0x121c [ 5E5AB950693F2C6D6ACBEE3A74697ED7, 3790A7DD0AC65F47A697A577744FDFA4CC1CA3422884C84E499F97AC91BA84F3 ] CNG C:\Windows\system32\Drivers\cng.sys
12:29:44.0256 0x121c CNG - ok
12:29:44.0318 0x121c [ 03AAED827C36F35D70900558B8274905, 8E44A23C6013FFAE7769F99CAA3B1D6288DE00A38937F9056903AC265B503AFA ] CompositeBus C:\Windows\System32\drivers\CompositeBus.sys
12:29:44.0318 0x121c CompositeBus - ok
12:29:44.0334 0x121c COMSysApp - ok
12:29:44.0349 0x121c [ A1FF7DFBFBE164CF92603C651D304DD2, 470ACE5A75E64FC62C950037201199857E974803625DC73BEDBCF6FA4DDD496C ] condrv C:\Windows\system32\drivers\condrv.sys
12:29:44.0349 0x121c condrv - ok
12:29:44.0396 0x121c [ 6324F0D18FB52833BA64BC828E29054C, 04118FA1BDFC512F76E4A81FEF34C78B6BD98429DB1D65123B6802B4A1E30584 ] CryptSvc C:\Windows\system32\cryptsvc.dll
12:29:44.0412 0x121c CryptSvc - ok
12:29:44.0412 0x121c [ 315BA4BC19316D72B2E037534E048B93, 69613635DB23E6A935673B1025C2010ED3E195473D25368CF74234C4C36910BE ] dam C:\Windows\system32\drivers\dam.sys
12:29:44.0412 0x121c dam - ok
12:29:44.0615 0x121c [ 914A7156B0C0F10BE645A02E13F576B2, C8686CE4DD9C457D56D5535307FD210AE057BFF94AC59665681DA6CF46DBE2E8 ] DAUpdaterSvc C:\Program Files (x86)\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe
12:29:44.0615 0x121c DAUpdaterSvc - ok
12:29:44.0709 0x121c [ A6F17C299A03BAFEFB9257C462A19E00, EB68967D28355271897166D7B6FD963D1E546D3C24AE1AEAAC561F94357A9345 ] DcomLaunch C:\Windows\system32\rpcss.dll
12:29:44.0724 0x121c DcomLaunch - ok
12:29:44.0803 0x121c [ 95E1ABFB27F8A62ED764805775F0D2F3, 692865DA60C93481E01592883678B2C51FD9AC9A835DFB00A8E3F2DFEE7AB0ED ] defragsvc C:\Windows\System32\defragsvc.dll
12:29:44.0834 0x121c defragsvc - ok
12:29:44.0912 0x121c [ FF086DEF5995558CCB1B5AAC2110195D, CED52FF01F9247BFDAFC5C7EFC538F8638146ED715574A422496EE0F846CB079 ] DeviceAssociationService C:\Windows\system32\das.dll
12:29:44.0928 0x121c DeviceAssociationService - ok
12:29:45.0006 0x121c [ 2C02AFF8383D893F8DBEB07A84F6E77C, 7CC34BAC67E2988E3D16DD6EB6F6785CD2460E3EF7FBD0BD5F86E49793BD473E ] DeviceInstall C:\Windows\system32\umpnpmgr.dll
12:29:45.0021 0x121c DeviceInstall - ok
12:29:45.0068 0x121c [ A03F362C5557E238CBFA914689C77248, BAD0A1124E6A384C15028FBE121ADF650F7716442555AD3737B9EA1F58A69246 ] Dfsc C:\Windows\system32\Drivers\dfsc.sys
12:29:45.0084 0x121c Dfsc - ok
12:29:45.0162 0x121c [ 3EEAADA3125431980E5804ED7143458A, 381E12C83E3211C255B321D35536F4049D67E31061F8D82155E4D4509E97F43D ] Dhcp C:\Windows\system32\dhcpcore.dll
12:29:45.0178 0x121c Dhcp - ok
12:29:45.0287 0x121c [ 9703EC57F5BBB94F89CA80A5D0C12221, 29639F73AA86AA42401A1DB0AF4E76012E617879EC03AD7591210164BA105EBF ] DiagTrack C:\Windows\system32\diagtrack.dll
12:29:45.0318 0x121c DiagTrack - ok
12:29:45.0349 0x121c [ 4D40C9B33F738797CF50E77CB7C53E85, 7BA341342A47DEB15B51971C97A5237ACD8BDAD9033F63DF0000892BE43F8E13 ] disk C:\Windows\system32\drivers\disk.sys
12:29:45.0349 0x121c disk - ok
12:29:45.0349 0x121c [ EB70A894708D1BC176AFD690FF06085F, 0DD2A97F5E1B38D1F7C0D44E50F09EA222B18B3B074CC9C8CD25A7526CB1A112 ] dmvsc C:\Windows\System32\drivers\dmvsc.sys
12:29:45.0349 0x121c dmvsc - ok
12:29:45.0412 0x121c [ 33ADFB7453BF3271463712C4BCE61AD1, A1DB30F874BA7B2C4C653494D70B46B94BF7D39D0DD8559F6CA7A14B676FD617 ] Dnscache C:\Windows\System32\dnsrslvr.dll
12:29:45.0428 0x121c Dnscache - ok
12:29:45.0474 0x121c [ 811EACBCC7C51A03AE11F13CC27B2AB6, FAB94F84950FFB7D3649BAFB8D96D43B880D7FDE8D5B879472AE26C4BC4203B0 ] dot3svc C:\Windows\System32\dot3svc.dll
12:29:45.0490 0x121c dot3svc - ok
12:29:45.0506 0x121c [ 27069CFFF29B7F04F4B1BB10154BE52B, 6869626F9A1D3F64224883C5E661638CEE893A3E29651C7B9302A03E52180415 ] dot4 C:\Windows\system32\DRIVERS\Dot4.sys
12:29:45.0506 0x121c dot4 - ok
12:29:45.0521 0x121c [ 0BD906A79F9CE3013F7D9D0AC45F9F9D, 2F7D5082E7E226D5EBEA164A8ACEE0A447C96EB1829224A6EFA3E7B4EFEE1D14 ] Dot4Print C:\Windows\System32\drivers\Dot4Prt.sys
12:29:45.0521 0x121c Dot4Print - ok
12:29:45.0537 0x121c [ B7D595F2F464F7B628AD53F06547792C, F5D06A91EF54FBF56305FCC882B854350B266B2A005D80CC77AEBC2929440729 ] dot4usb C:\Windows\system32\DRIVERS\dot4usb.sys
12:29:45.0537 0x121c dot4usb - ok
12:29:45.0599 0x121c [ B99CB575986789A93A683DCF292A43A1, 6ACEA31C723B74003E106FC8303542FCC6DBC4952B6B523F6590D006BE57238D ] DPS C:\Windows\system32\dps.dll
12:29:45.0599 0x121c DPS - ok
12:29:45.0662 0x121c [ 00C594D5A1DBD22AD8B2902B9F6EFF94, 2920D62B5F7C49A8AFA80FCAD1E834BBAA670AEBDD7E6F21F0496D1D3CCB4E90 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
12:29:45.0662 0x121c drmkaud - ok
12:29:45.0724 0x121c [ 263625A4F616538EB867B6306A6590DB, 2A064720C247EAA3446EFDCC9E01D84CBA875905D78DFED0FBD62D1EE422D416 ] DsmSvc C:\Windows\System32\DeviceSetupManager.dll
12:29:45.0740 0x121c DsmSvc - ok
12:29:45.0818 0x121c [ E1BB0B6F00F470B451AB45EA13EBA0B3, 3A2FC2175B69A5EB98D6C2D563DBFDCB320647AB87A14E47FAE800423DCACDAB ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
12:29:45.0865 0x121c DXGKrnl - ok
12:29:45.0881 0x121c [ E253530BD5EDE28F1FF6AF93C4D8034D, 787A70C3E946348F066FB8EB81FCE60157217D93FD78ADC631B5835E8D76A253 ] Eaphost C:\Windows\System32\eapsvc.dll
12:29:45.0896 0x121c Eaphost - ok
12:29:45.0990 0x121c [ 114BCFDF367FF37C3F1B0A96AF542E4D, D385BC1D91BC1406091C8C3691C07A90BD60EDE05B1384E5AA3506FCB909C857 ] ebdrv C:\Windows\system32\drivers\evbda.sys
12:29:46.0084 0x121c ebdrv - ok
12:29:46.0146 0x121c [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] EFS C:\Windows\System32\lsass.exe
12:29:46.0146 0x121c EFS - ok
12:29:46.0178 0x121c [ 43531A5993380CC5113242C29D265FD9, EE0076D96F7F3CF29884AC7A67C08A429115A7201354A1FB5DE45FD63ABB4960 ] EhStorClass C:\Windows\system32\drivers\EhStorClass.sys
12:29:46.0178 0x121c EhStorClass - ok
12:29:46.0209 0x121c [ 6F8E738A9505A388B1157FDDE7B3101B, 3696CA634102B41EEA11EB9DCA0B24439D8636AED4A7190C138C5E64A2EFB514 ] EhStorTcgDrv C:\Windows\system32\drivers\EhStorTcgDrv.sys
12:29:46.0224 0x121c EhStorTcgDrv - ok
12:29:46.0240 0x121c [ DFFFAE1442BA4076E18EED5E406FA0D3, 329FC6FB8D14BEACDBE2A5D4C496EDEA485E838B1DF27566E278F8F8E0D8E82E ] ErrDev C:\Windows\System32\drivers\errdev.sys
12:29:46.0240 0x121c ErrDev - ok
12:29:46.0318 0x121c [ F00C593994D57C75273F820653440536, 2DC986D9890EC907405FB2045E6F55ACC384169B45F0B56CCB1A953CF71D9A5D ] EventSystem C:\Windows\system32\es.dll
12:29:46.0334 0x121c EventSystem - ok
12:29:46.0349 0x121c [ 7729D294A555C7AEB281ED8E4D0E01E4, 7269E79D72CCE477AC108294D0DDFB59CF533B03C587599C5AB0507C43A0B6D4 ] exfat C:\Windows\system32\drivers\exfat.sys
12:29:46.0349 0x121c exfat - ok
12:29:46.0365 0x121c [ 7C4E0D5900B2A1D11EDD626D6DDB937B, 732F310F8F6016C56F432A81636B13CE0124A802FE8DD91287B618EED22C9A1D ] fastfat C:\Windows\system32\drivers\fastfat.sys
12:29:46.0365 0x121c fastfat - ok
12:29:46.0428 0x121c [ 304B6AEC4639A7CCCCF544C6BA6177B2, B75CDD52FD3890B3008E06C503945D1E36478F0EC5E067C8DBC2822D7935D24B ] Fax C:\Windows\system32\fxssvc.exe
12:29:46.0459 0x121c Fax - ok
12:29:46.0474 0x121c [ 5D8402613E778B3BD45E687A8372710B, EE9EA10805168D309A609B9019AEC5961EE46D18207B5E0EA2DE4064A5770AF8 ] fdc C:\Windows\System32\drivers\fdc.sys
12:29:46.0474 0x121c fdc - ok
12:29:46.0506 0x121c [ 020D2F29009F893ADEFF4405B4B44565, 9F8501064C72933D1442DA00E70392B30D0207EB7D60F50E6648FF363799E6F1 ] fdPHost C:\Windows\system32\fdPHost.dll
12:29:46.0521 0x121c fdPHost - ok
12:29:46.0568 0x121c [ E80D2EDD2F88B6E20076A0A4F5A5A245, E3CD6E0BE152B22E8A7340EFFD10CCDB1B632CD3EDF487E83F697D2E22A7D594 ] FDResPub C:\Windows\system32\fdrespub.dll
12:29:46.0568 0x121c FDResPub - ok
12:29:46.0631 0x121c [ 47AB7D16EDE434B934AA4D661456C2D5, D375A92FB3E4BB0A8DA5270DACC888E53FB9F514516039FE6DAE4D4EF6B9A970 ] fhsvc C:\Windows\system32\fhsvc.dll
12:29:46.0646 0x121c fhsvc - ok
12:29:46.0693 0x121c [ BCFD8B149B3ADF92D0DB1E909CAF0265, 002B085C131473642450176B4B8359F3E5B04350AFB659B9C0F9EB587D1181E7 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
12:29:46.0709 0x121c FileInfo - ok
12:29:46.0724 0x121c [ A1A66C4FDAFD6B0289523232AFB7D8AF, 0F5832F626BB62190D5F3A088CE6E048D8A400CCF9EA527F06973CAD96D3A81C ] Filetrace C:\Windows\system32\drivers\filetrace.sys
12:29:46.0724 0x121c Filetrace - ok
12:29:46.0756 0x121c [ BE743083CF7063C486A4398E3AEFE59A, 85796D89943DD6FE3932C1ED6CF01470C1B4DFD243C390B07055FFDA3C231551 ] flpydisk C:\Windows\System32\drivers\flpydisk.sys
12:29:46.0756 0x121c flpydisk - ok
12:29:46.0818 0x121c [ C1FB505A73FA2E9019D32444AB33B75A, 765F0635C18295855CA4C0394192E8B94BA2EA1C4D74F86B720358ABA019FFAA ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
12:29:46.0834 0x121c FltMgr - ok
12:29:46.0928 0x121c [ 6C068E7207F183FF3647E45D2599E80C, D65C9888522CA29596D5C8BEFF42356F0310E812117E72C1D612BA089C0940D9 ] FontCache C:\Windows\system32\FntCache.dll
12:29:46.0974 0x121c FontCache - ok
12:29:47.0053 0x121c [ 1C52387BF5A127F5F3BFB31288F30D93, 90D13F60170CD74304F3036A90D596AA3E1E134455A780310BDF67AC7815F2E7 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
12:29:47.0053 0x121c FontCache3.0.0.0 - ok
12:29:47.0115 0x121c [ A7C31B168F371E8E6796219F23E354DB, C51C9BF568F1E96CBBE57D2432B38F93F40520086DDB6AAAAC48CBCD1691B441 ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
12:29:47.0115 0x121c FsDepends - ok
12:29:47.0131 0x121c [ 09F460AFEDCA03F3BF6E07D1CCC9AC42, B832091BC9B2C2FE38A4BCA132ABB58251E851F21EC6F39636E73777AB9A5791 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
12:29:47.0146 0x121c Fs_Rec - ok
12:29:47.0224 0x121c [ F152D55E497E12256290C43B31C7D0CE, FFC54B14CCFBC1548948C07FB3866E40A11D0C05AC352BD000E71CEF053F6A6E ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
12:29:47.0240 0x121c fvevol - ok
12:29:47.0240 0x121c [ 9591D0B9351ED489EAFD9D1CE52A8015, AC64C236C3AE545FCE8ED44A4A87FB86265A453BA60026EC9A4DE2B631E99996 ] FxPPM C:\Windows\System32\drivers\fxppm.sys
12:29:47.0240 0x121c FxPPM - ok
12:29:47.0271 0x121c [ FC3EF65EE20D39F8749C2218DBA681CA, 12980F1DE99B25E6920A33556F3ABDA5EC9BFE4757BE602130B5E939D8D25CE3 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
12:29:47.0287 0x121c gagp30kx - ok
12:29:47.0287 0x121c [ 0BF5CAD281E25F1418E5B8875DC5ADD1, 0929AD8437DD78234553D8B2CDF0D6838FD54ACDE1918AFEBE48684EB32A07A3 ] gencounter C:\Windows\System32\drivers\vmgencounter.sys
12:29:47.0287 0x121c gencounter - ok
12:29:47.0443 0x121c [ C2730FE9713C1C474257A7085386B11E, 7D35D00D2B455841C8C9A87CE92885CD22F4B8B6690CB21443ED1B515117EF95 ] GfExperienceService C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
12:29:47.0474 0x121c GfExperienceService - ok
12:29:47.0568 0x121c [ BF6DD6A0E1501D395DE1B26D4FEBAD29, 8F29C73416C72A3E41EDA615AC863752669273E2D2E0901A0C9AB66FF7011781 ] GoToAssist C:\Program Files (x86)\Citrix\GoToAssist Corporate\1121\G2AC_Service.exe
12:29:47.0584 0x121c GoToAssist - ok
12:29:47.0615 0x121c [ 8DF1254093B5C354CE725EB6B9B0DE19, DE6C5661CC076DA44B8A5D044FDB7280EDCF38D322A98C14FDC82E25586B3014 ] GPIOClx0101 C:\Windows\system32\Drivers\msgpioclx.sys
12:29:47.0615 0x121c GPIOClx0101 - ok
12:29:47.0709 0x121c [ 0D03F87D4FF4ADBAF8336DD80548155A, BC10CFA88EA2F41A8D96CB810B7953A4C168B79273A3E804A9F020F49AB58CD3 ] gpsvc C:\Windows\System32\gpsvc.dll
12:29:47.0740 0x121c gpsvc - ok
12:29:47.0787 0x121c [ C8B54E81501386A91B0E0BD596965C9B, DC2580D45BA96C81C0BC005781BBB5E70652A1CAA637FE1B779AB538B040BB97 ] gzflt C:\Program Files\Lavasoft\Ad-Aware Antivirus\Antimalware Engine\3.0.98.0\gzflt.sys
12:29:47.0803 0x121c gzflt - ok
12:29:47.0849 0x121c [ 56F69F7C25FB67C970997D7066DBC593, 83E03A82237DCC5BCB3E722ACECACEF3510CAA619F33E0D7C4D902A482E90418 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
12:29:47.0865 0x121c HdAudAddService - ok
12:29:47.0912 0x121c [ D4B7ED39C7900384D9E5C1283F1E7926, F93F98858067B40F1C071EAD0F8E85442A78B95342BC692AF4D726540634923F ] HDAudBus C:\Windows\System32\drivers\HDAudBus.sys
12:29:47.0928 0x121c HDAudBus - ok
12:29:47.0943 0x121c [ 10A70BC1871CD955D85CD88372724906, 2480A74854D0A89FF028EE9BA41224D4B2F9B0863066BFC43097920794FEE08D ] HidBatt C:\Windows\System32\drivers\HidBatt.sys
12:29:47.0943 0x121c HidBatt - ok
12:29:48.0006 0x121c [ 42F88B57CAE42FC10059C887B3FCFCEA, 9363AA2B8E839A6935A7C6A36C491938DF78024886DCCE6D29CB18E1D6A6D806 ] HidBth C:\Windows\System32\drivers\hidbth.sys
12:29:48.0006 0x121c HidBth - ok
12:29:48.0037 0x121c [ C241A8BAFBBFC90176EA0F5240EACC17, 571E20B87818618BE9179986177D55739A240F04D1F740B3C1B7809B9427B767 ] hidi2c C:\Windows\System32\drivers\hidi2c.sys
12:29:48.0037 0x121c hidi2c - ok
12:29:48.0068 0x121c [ 9BDDEE26255421017E161CCB9D5EDA95, B766FD5E31708F29384F69418FC33C4BCC6E3064AA553D5B1D30EE0B8B1BFB40 ] HidIr C:\Windows\System32\drivers\hidir.sys
12:29:48.0068 0x121c HidIr - ok
12:29:48.0115 0x121c [ EA85B5093DF7B5C3E80362B053740AE2, 1D4251385402A2ADEE8FA1642F54180304F88337DA74989BDE44025ABB145FE5 ] hidserv C:\Windows\system32\hidserv.dll
12:29:48.0131 0x121c hidserv - ok
12:29:48.0193 0x121c [ 8DB8EAB9D0C6A5DF0BDCADEA239220B4, EDA23E6909EB83E5E148816DFB16CC29EA01BD6BD2F73AA46B3D820B85FB9C83 ] HidUsb C:\Windows\System32\drivers\hidusb.sys
12:29:48.0193 0x121c HidUsb - ok
12:29:48.0256 0x121c [ 93C4315F47F8D635C6DB0DF49FCE10EE, 70C52B8927D54ACD23F27948780B522974250FD5CD81AA9801C3F158C402889F ] hkmsvc C:\Windows\system32\kmsvc.dll
12:29:48.0256 0x121c hkmsvc - ok
12:29:48.0318 0x121c [ AC49522ED106BD4B545D6614D71C2445, 40BD738A301170378ECFC031635EB04E2F812B676376CADDD6607ECABEC9255F ] HomeGroupListener C:\Windows\system32\ListSvc.dll
12:29:48.0334 0x121c HomeGroupListener - ok
12:29:48.0396 0x121c [ 99932E30CE0283B73BB6E5019E150394, 1F88C2F56A7B8E1F75E6359281F418F9661DA4FB7B7D7B14FA7F718B15D4DCE0 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
12:29:48.0428 0x121c HomeGroupProvider - ok
12:29:48.0443 0x121c [ A6AACEA4C785789BDA5912AD1FEDA80D, D197012A5DA6AB3F76FF298336DF0CF027C07ECC71267BAEF5912DE12893E096 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
12:29:48.0443 0x121c HpSAMD - ok
12:29:48.0553 0x121c [ E87A6D3B8FECD5B93BC0CFBB48C27970, 55C49B6F3822450447C082B40A263F3370694DB53AD0018ADEB911E4A9F65A88 ] HTTP C:\Windows\system32\drivers\HTTP.sys
12:29:48.0568 0x121c HTTP - ok
12:29:48.0568 0x121c [ 90656C0B3864804B090434EFC582404F, BDB60050B729AACB9E009AC7129BEBD6298BBD8A9DB14B817D02E8E13669BD6E ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
12:29:48.0584 0x121c hwpolicy - ok
12:29:48.0584 0x121c [ 6D6F9E3BF0484967E52F7E846BFF1CA1, C982966BDE6A3E6773D9441ADA7A3B08D13511DFC68D04DF303248B942423F38 ] hyperkbd C:\Windows\System32\drivers\hyperkbd.sys
12:29:48.0584 0x121c hyperkbd - ok
12:29:48.0599 0x121c [ 907C870F8C31F8DDD6F090857B46AB25, 308664A31717383D06185875E76C6612407A9F04E7DB28404F574A5706C6715D ] HyperVideo C:\Windows\system32\DRIVERS\HyperVideo.sys
12:29:48.0599 0x121c HyperVideo - ok
12:29:48.0646 0x121c [ D887446F3F6051C60C26F4FD1FC8D43F, A3235C64E9D5378E3409FA7CDD9DB0DD1B3CE6A6EB018F2C40558EB9C427A498 ] i8042prt C:\Windows\System32\drivers\i8042prt.sys
12:29:48.0662 0x121c i8042prt - ok
12:29:48.0662 0x121c [ 5D90E32E36CE5D4C535D17CE08AEAF05, 976A463343E8C8308AFBE9E64DF56C430D2241DE002430D00318AB065EB72E4A ] iaLPSSi_GPIO C:\Windows\System32\drivers\iaLPSSi_GPIO.sys
12:29:48.0662 0x121c iaLPSSi_GPIO - ok
12:29:48.0678 0x121c [ DD05E7E80F52ADE9AEB292819920F32C, E71AB6A50B0F90C8F94569CE89F66F915A0A4A00D4AC091B2E5E750D88CFC334 ] iaLPSSi_I2C C:\Windows\System32\drivers\iaLPSSi_I2C.sys
12:29:48.0693 0x121c iaLPSSi_I2C - ok
12:29:48.0709 0x121c [ 08BFE413B0B4AA8DFA4B5684CE06D3DC, 95DEEBB203E12EE6E191F5247A74C04AEC0E16DE981FADDC4D6C42EE41D8D079 ] iaStorAV C:\Windows\system32\drivers\iaStorAV.sys
12:29:48.0724 0x121c iaStorAV - ok
12:29:48.0740 0x121c [ A2200C3033FA4EF249FC096A7A7D02A2, 5819F5C2020DE2EEE339B0C08CD4B1E3490EAFBBEA1277CE649DB5A5150986B0 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
12:29:48.0756 0x121c iaStorV - ok
12:29:48.0756 0x121c IEEtwCollectorService - ok
12:29:48.0834 0x121c [ 3DBDBD9581C015F02651D6A89801FAD5, 81B6D302C9CD29AD8319515056CFBCD0BD25619B2B166937ACD5F1416B568837 ] IKEEXT C:\Windows\System32\ikeext.dll
12:29:48.0865 0x121c IKEEXT - ok
12:29:48.0974 0x121c [ 0DB1E3F6189C628675F855C0EB510419, 989F539E82105019D2D81255369B96DC65826CD2A421DA09809155B26F69C555 ] Intel® Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
12:29:48.0990 0x121c Intel® Capability Licensing Service Interface - ok
12:29:49.0006 0x121c [ 492AAF2FF66F437F0E796574B116EFC3, 6BF21C61ED05705DD58203952A750D1AB4D4B62F3A2B640BBBD9B85D1ECC3E5C ] Intel® Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
12:29:49.0021 0x121c Intel® Capability Licensing Service TCP IP Interface - ok
12:29:49.0053 0x121c [ 4E448FCFFD00E8D657CD9E48D3E47157, 4A958CF0BF8DAEAE5E008500BA67CE89B21388592811274331EE39CAC1043A00 ] intelide C:\Windows\system32\drivers\intelide.sys
12:29:49.0053 0x121c intelide - ok
12:29:49.0099 0x121c [ A770340FC02B999EF0DE6C2A6BC8437C, 214567BE706B21BEA7EC13AF6B10FBFF658000511DBBA79BAA28D1D4EFD029A7 ] intelpep C:\Windows\system32\drivers\intelpep.sys
12:29:49.0099 0x121c intelpep - ok
12:29:49.0131 0x121c [ 47E74A8E53C7C24DCE38311E1451C1D9, 79B06E37A552C8A847404D4C572CDB8CF525354D8AE3BEBC06892B7C3B330761 ] intelppm C:\Windows\System32\drivers\intelppm.sys
12:29:49.0131 0x121c intelppm - ok
12:29:49.0146 0x121c [ 9DB76D7F9E4E53EFE5DD8C53DE837514, 07BA4EDA9BE9139A689A2C3EFC1D1A4F3D1216625ED145F313398292A2CD5703 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
12:29:49.0162 0x121c IpFilterDriver - ok
12:29:49.0240 0x121c [ A5800036E4EA06697A34742A24ACFBE1, BA67060526E9213000B4206F86A74F904999AD7018EFCBE4FE9708650DA9D973 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
12:29:49.0271 0x121c iphlpsvc - ok
12:29:49.0303 0x121c [ 9C096BF5E10CA8BFA56F32522A89FAF1, 6C1151160799338DA351C7237AB049926C6C15F24F5E154BBF5929B4A96C0B8D ] IPMIDRV C:\Windows\System32\drivers\IPMIDrv.sys
12:29:49.0303 0x121c IPMIDRV - ok
12:29:49.0349 0x121c [ B7342B3C58E91107F6E946A93D9D4EFD, D5DA3C02C5C5A343785745EF6983CC9B5FBD3FB8D49FE9B450523E50212D1A32 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
12:29:49.0349 0x121c IPNAT - ok
12:29:49.0365 0x121c [ AE44C526AB5F8A487D941CEB57B10C97, A783A2EAF7A6FF450FB3F189A5930036FA60D125C42171AC44B6FE2E3DBD6F7A ] IRENUM C:\Windows\system32\drivers\irenum.sys
12:29:49.0365 0x121c IRENUM - ok
12:29:49.0381 0x121c [ 8AFEEA3955AA43616A60F133B1D25F21, E99359A4F1D653790133F145CF7C9F97399FD75C5E135AA7E5F989BB660789AF ] isapnp C:\Windows\system32\drivers\isapnp.sys
12:29:49.0381 0x121c isapnp - ok
12:29:49.0428 0x121c [ D90AB68D0FAC9F357F663670FDBB511E, A82AAA5DF1B38EFBDCF834535A0C520D1BB2D7A4A906C18CFDD22BCF16BDB97D ] iScsiPrt C:\Windows\System32\drivers\msiscsi.sys
12:29:49.0443 0x121c iScsiPrt - ok
12:29:49.0506 0x121c [ 52069AEB42D3D0F97CBCA1085EBF55E6, ADB2EFFF563B3FE113FCD156FD1E469BC24FC1D68AFEDCA21306F76592C9FF88 ] jhi_service C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
12:29:49.0521 0x121c jhi_service - ok
12:29:49.0584 0x121c [ A1D4D34A56DF1D5122CDB265038A2E72, AE061BA1A65C98AF875FA18878B014B57E33594D4AC4C39B050AA532E2220F83 ] kbdclass C:\Windows\System32\drivers\kbdclass.sys
12:29:49.0584 0x121c kbdclass - ok
12:29:49.0631 0x121c [ 4A34D7084B862A92F3ABC4969166B3D3, 87B2635873DA4DD06D9E3B8E4313CBDBDC1488E4E340EC2101393EC65823771F ] kbdhid C:\Windows\System32\drivers\kbdhid.sys
12:29:49.0631 0x121c kbdhid - ok
12:29:49.0662 0x121c [ 813871C7D402A05F2E3A7075F9584A05, FF0C2F87EB083F8CE74C679D80C845CDFBFBBC70BE818F899F3336BBB54A3FFB ] kdnic C:\Windows\system32\DRIVERS\kdnic.sys
12:29:49.0662 0x121c kdnic - ok
12:29:49.0678 0x121c [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] KeyIso C:\Windows\system32\lsass.exe
12:29:49.0678 0x121c KeyIso - ok
12:29:49.0724 0x121c [ 4E829B18D5BAEC29893792A3C671A847, 64C3B99F53A9D1ACA802B46B09E820AD210B667D5A1CD0ADAF1F12944B15B52E ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
12:29:49.0756 0x121c KSecDD - ok
12:29:49.0803 0x121c [ 15C8C65CEA018C02EA0F648448C491C5, DF909704D22D891BE439B2E3D8386EA659444F91DC92AABFF9766446AEE5EBC0 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
12:29:49.0818 0x121c KSecPkg - ok
12:29:49.0849 0x121c [ 11AFB527AA370B1DAFD5C36F35F6D45F, 757AD234284467ADB826F7CA0251F58D48866B91995BC867DEA4BAF676947163 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
12:29:49.0849 0x121c ksthunk - ok
12:29:49.0881 0x121c [ C1591A66028C71147A3E2EAB0B1CCB7E, 82F3D5DCC1614398A144D9791E4BAA814DBA9112677341FD57D5E9834CEDEB41 ] KtmRm C:\Windows\system32\msdtckrm.dll
12:29:49.0896 0x121c KtmRm - ok
12:29:49.0974 0x121c [ CA2828DDE4B09FEFFDB7CE68B3D8D00A, B514792FF1EF36C678BB51644A1C420105D5E2CD6DD5A89A3FB252D08277A40C ] LanmanServer C:\Windows\system32\srvsvc.dll
12:29:49.0990 0x121c LanmanServer - ok
12:29:50.0053 0x121c [ 3DBD9100745F9B8506B8FEC6FE6CCDE3, C3EF2856A1680AFDE133887E48946CF9CAB6755C3BDC07F0326965DCD4096F62 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
12:29:50.0084 0x121c LanmanWorkstation - ok
12:29:50.0209 0x121c [ 8E1F77A904BD51D74FDBC0F7EB8D86A9, 01ECF158DB7472D530BFB7E70AF4A5788F34FF2A80AC29E118298B6D75C13F1B ] LavasoftAdAwareService11 C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.6.306.7947\AdAwareService.exe
12:29:50.0224 0x121c LavasoftAdAwareService11 - ok
12:29:50.0318 0x121c [ 2B7479EB47731A8ACBA28AF4C4BDA32D, 67AEB98E7B41337FEFD92CC81BFAD25FBB679998B318C110A4873B1AD8927A97 ] lfsvc C:\Windows\System32\GeofenceMonitorService.dll
12:29:50.0334 0x121c lfsvc - ok
12:29:50.0334 0x121c [ C09010B3680860131631F53E8FE7BAD8, 35F2A06D5F29478D22ABDCC20DA893EF9D96504C65594A0CEA674D1C21B04FF8 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
12:29:50.0349 0x121c lltdio - ok
12:29:50.0365 0x121c [ DAE98CC96C5EE308BF4EA7B18F226CB8, 7A6CC56BF075010707715AB6608764291E358EDF27C806A025532869004C686B ] lltdsvc C:\Windows\System32\lltdsvc.dll
12:29:50.0365 0x121c lltdsvc - ok
12:29:50.0412 0x121c [ 1E2662D847B7D9995C65D90D254A7E0F, AFD4063D2071FFCB6B0EAC0715276D986F42326919C86E525DCE12E1109A93E2 ] lmhosts C:\Windows\System32\lmhsvc.dll
12:29:50.0428 0x121c lmhosts - ok
12:29:50.0506 0x121c [ 6A35B295812CE7064CFBCD9F254169CF, 561DD131FED6F90686D8C031B45B87B6D065C7E0C8804AEFCDE239725AAEE43E ] LMS C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
12:29:50.0521 0x121c LMS - ok
12:29:50.0553 0x121c [ C755AE4635457AA2A11F79C0DF857ABC, E03D1ACAC155287291FE1BD0B653953ADC94279A74D0152088D698FAA796460F ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
12:29:50.0553 0x121c LSI_SAS - ok
12:29:50.0568 0x121c [ ADAC09CBE7A2040B7F68B5E5C9A75141, 7865DA7E91404F3642BC444B97F6B7AA42B9523D5EDD7F6365DA236B8EC3410F ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
12:29:50.0568 0x121c LSI_SAS2 - ok
12:29:50.0568 0x121c [ 04D1274BB9BBCCF12BD12374002AA191, 4B9618F8D25F2278DE1610A70ACAADB074D171D162C3AF27D464F5DC800A8E60 ] LSI_SAS3 C:\Windows\system32\drivers\lsi_sas3.sys
12:29:50.0568 0x121c LSI_SAS3 - ok
12:29:50.0584 0x121c [ 327469EEF3833D0C584B7E88A76AEC0C, 3D88B5A2D68F93F01B39C6E3D8D5C7A2A20686EFC756086E66AFFF1BC3019B85 ] LSI_SSS C:\Windows\system32\drivers\lsi_sss.sys
12:29:50.0584 0x121c LSI_SSS - ok
12:29:50.0631 0x121c [ 9A7A7E45DAED2E8C2816716D8D28236A, C94787988826E546A8DC752BD6BE4EA7423DC3762B2D371DB297A63F865A95FF ] LSM C:\Windows\System32\lsm.dll
12:29:50.0678 0x121c LSM - ok
12:29:50.0724 0x121c [ DDEE191AB32DFC22C6465002ECDF5EE4, 190C3930A8449118F9FEDF43C482837EF1C255E6D67F9651156E66A1E2BC6553 ] luafv C:\Windows\system32\drivers\luafv.sys
12:29:50.0724 0x121c luafv - ok
12:29:50.0803 0x121c [ 54D70409DE6932E9EFA117779611E7A9, 4FF4328CEB222160664633D361D06EAEF4B27E2A5AE515CF7D425650A6A23136 ] mbamchameleon C:\Windows\system32\drivers\mbamchameleon.sys
12:29:50.0803 0x121c mbamchameleon - ok
12:29:50.0834 0x121c [ 1E9E32AEC3E1EB1B31B8169F33168B56, 39114585E1FDBBA31E1F781C6A627281907183F94626EB347B08D1F78992ED2A ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
12:29:50.0834 0x121c MBAMProtector - ok
12:29:50.0974 0x121c [ 516E29AD03BDF610CC36A95AE692FE42, 09F913B169AD775FF587AE59AEC5DD2A2D8646803F48BF616C74EEC0DE3BE7A2 ] MBAMScheduler C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
12:29:51.0006 0x121c MBAMScheduler - ok
12:29:51.0037 0x121c [ 2B983F067AEE3F9EB4DF5E97F45D21D1, 0B9ED0E91FF01A5445927650113E320C3C0EA16F1401AA55A509DDBF704DF22F ] MBAMService C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
12:29:51.0053 0x121c MBAMService - ok
12:29:51.0131 0x121c [ E9CD058C79EA15B4AA93E259FA713B07, 2B09F65188D8782F9C797545F2F791EC7EAB85D8914B2C0B30BD869C412E3980 ] MBAMSwissArmy C:\Windows\system32\drivers\MBAMSwissArmy.sys
12:29:51.0131 0x121c MBAMSwissArmy - ok
12:29:51.0162 0x121c [ 28B597A61C9AC9B59BC0573D70A62CBF, 032C095ECDAEEE800BD9C7AB08C089E7530A9DD09AE577D1612035F2BFFAA61C ] MBAMWebAccessControl C:\Windows\system32\drivers\mwac.sys
12:29:51.0162 0x121c MBAMWebAccessControl - ok
12:29:51.0178 0x121c [ EB5C03A070F30D64A6DF80E53B22F53F, 12051B6AEBDEE1E28F24364F25A52BA3A6E282ECF86D6290E34BD38E6D4E066D ] megasas C:\Windows\system32\drivers\megasas.sys
12:29:51.0193 0x121c megasas - ok
12:29:51.0224 0x121c [ F6F13533196DE7A582D422B0241E4363, B3CD9B08937AFFF12141B38634AF3A56F5AC5FF3EF03941802B9841DEC559469 ] megasr C:\Windows\system32\drivers\megasr.sys
12:29:51.0256 0x121c megasr - ok
12:29:51.0303 0x121c [ 926C135CFB0C75B32FB714B5C0C58FAA, AF627CD125794B69D450D298D5608D357F2C91FB89EBFAA0DA2A0F07C6A304A8 ] MEIx64 C:\Windows\system32\DRIVERS\TeeDriverx64.sys
12:29:51.0318 0x121c MEIx64 - ok
12:29:51.0381 0x121c [ 4C5179DB61B9E14BEC15CDC4B152B2E9, 9048BEC7AD6A3F4B640E99B1F0365AC9A46740B188758FBB2C160EF30AD6E64B ] MMCSS C:\Windows\system32\mmcss.dll
12:29:51.0381 0x121c MMCSS - ok
12:29:51.0396 0x121c [ 8B38C44F69259987C95135C9627E2378, E698B82D4EFFF56D66C7FC9866369BA5736FDBDBE2028CC421C51E70DEA74727 ] Modem C:\Windows\system32\drivers\modem.sys
12:29:51.0396 0x121c Modem - ok
12:29:51.0412 0x121c [ 601589000CC90F0DF8DA2CC254A3CCC9, D1238A386C41B6C368D9A44B7C112C943995B5403E2A5B4B7346B266DDB0C5A0 ] monitor C:\Windows\System32\drivers\monitor.sys
12:29:51.0412 0x121c monitor - ok
12:29:51.0459 0x121c [ 2A2F8D5284E59815169A88F1FC9CEE28, 58EFBCF3C849FD088CFB7FE287FC7D9DD7E03D4E6AA98F0497C09E4596E42538 ] mouclass C:\Windows\System32\drivers\mouclass.sys
12:29:51.0474 0x121c mouclass - ok
12:29:51.0521 0x121c [ 91223A2AE2955B3E0DA3DB79C3A897A6, 32B59CF1586C2300D60AF8A1D819515033ACC7F7A1F3523FC4AC7725E29B5A90 ] mouhid C:\Windows\System32\drivers\mouhid.sys
12:29:51.0521 0x121c mouhid - ok
12:29:51.0537 0x121c [ D1D82F007A079A4D623DBD1F36EF30A1, 7901F81B62C5A4196D75A10C05386B16831CB290EFB9A1611CECF281068C520F ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
12:29:51.0553 0x121c mountmgr - ok
12:29:51.0631 0x121c [ DD370A8148862150BA81A3F5C56A1E40, F56B84297BDC32266CB69D10FB2D66B8B332D60CAB7E64E4E3AC2BB749BBD31B ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
12:29:51.0631 0x121c MozillaMaintenance - ok
12:29:51.0693 0x121c [ 6FC047578785B0435F4E2660946D1ADC, 8AEA5659F01FC2F75160922C69622502DABA39F33CB90D5178DD679A1CDE617D ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
12:29:51.0693 0x121c mpsdrv - ok
12:29:51.0787 0x121c [ C18AA14126ADC66478E8E962B2DFAA98, A6F8CE9D88D590DC083253004392572C3BD02C33433CD6C0D9117D2AA7171EEC ] MpsSvc C:\Windows\system32\mpssvc.dll
12:29:51.0803 0x121c MpsSvc - ok
12:29:51.0865 0x121c [ DB32958F0E704EFBF7F15161A569E39F, 8A26448B954F8A16EE9BA72EF47F6C549A75B30BD13FEB5A29EB099A74D8F678 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
12:29:51.0865 0x121c MRxDAV - ok
12:29:51.0928 0x121c [ 31233271EDE50D1BBB220F78AFA60486, 2122FAB5BD353DF63CF0FE9CEDBD5DFD1F26F2DE04303E1B3FFB03AA02AECED9 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
12:29:51.0943 0x121c mrxsmb - ok
12:29:52.0006 0x121c [ 3E28B99198B514DFEB152EACF913025E, 6C1D8353DCD5F811F39C0C3CB5DF3D2457F0D17EE80FB06196AA169E3D19E9B2 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
12:29:52.0021 0x121c mrxsmb10 - ok
12:29:52.0053 0x121c [ 6276AC2AA203CF47811F6EFBBD214FBF, AE55D87D863A626347B0074F4E962080F1989A94153DAF8475593249F616DA2F ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
12:29:52.0053 0x121c mrxsmb20 - ok
12:29:52.0099 0x121c [ F3C060444777A59FC63D920719E43CCD, 8766A2746E3DFB0749E902F458141269335CA6F0CEDCA3D5F8C204637C19E783 ] MsBridge C:\Windows\system32\DRIVERS\bridge.sys
12:29:52.0115 0x121c MsBridge - ok
12:29:52.0146 0x121c [ 915747E010A9414B069173284A9B93F4, 8A335C28FE1EF96DD71485877F2E86155D24B5614ACE05468F4B07E2ACD56331 ] MSDTC C:\Windows\System32\msdtc.exe
12:29:52.0146 0x121c MSDTC - ok
12:29:52.0209 0x121c [ D13329FBF8345B28AB30F44CC247DC08, 9C7EC2D4D65E6510EB5B9E61BB0D14F725D7E8FE98D65161C3971E43EF1AB6EB ] Msfs C:\Windows\system32\drivers\Msfs.sys
12:29:52.0209 0x121c Msfs - ok
12:29:52.0224 0x121c [ C6B474E46F9E543B875981ED3FFE6ADD, E16687E52FB649C23D92159A1F036CB662202C1E58D961EECDAA528AA4FA669A ] msgpiowin32 C:\Windows\System32\drivers\msgpiowin32.sys
12:29:52.0224 0x121c msgpiowin32 - ok
12:29:52.0240 0x121c [ 65C92EB9D08DB5C69F28C7FFD4E84E31, D709BA4723225321F665B1157A33A4AE230420752308EF535DA9A41CAC164628 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
12:29:52.0240 0x121c mshidkmdf - ok
12:29:52.0256 0x121c [ 52299F086AC2DAFD100DD5DC4A8614BA, B36BE0FC96798E5EB8C193C318970E3906961E3ABC3BFAAD73138C76D9A95B0B ] mshidumdf C:\Windows\System32\drivers\mshidumdf.sys
12:29:52.0256 0x121c mshidumdf - ok
12:29:52.0271 0x121c [ 36D92AF3343C3A3E57FEF11C449AEA4C, ECC85AA1E530DF55B4A4545798219F87F0FCA66DDD2E37BCEF0850D3C9129DD2 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
12:29:52.0271 0x121c msisadrv - ok
12:29:52.0287 0x121c [ 4EAEEBAC8CFF4E0D717DFA920BC58A90, A65CB1BB3392B6A04B978348CAC18A414560A6B04A727F22DFC0ADB20DD3AF6B ] MSiSCSI C:\Windows\system32\iscsiexe.dll
12:29:52.0287 0x121c MSiSCSI - ok
12:29:52.0303 0x121c msiserver - ok
12:29:52.0303 0x121c [ A9BBBD2BAE6142253B9195E949AC2E8D, 599D2952D4E0B0B3E02D91E38A30F4900B1ADA330716B887B156A1CB9A3E6EE9 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
12:29:52.0303 0x121c MSKSSRV - ok
12:29:52.0365 0x121c [ 51B3AC0560848CD6D65AC2033E293113, 73A27E88774C6929328E6C9FC9C389F4DF76D4D4D5CBFC4F51651CC308829628 ] MsLldp C:\Windows\system32\DRIVERS\mslldp.sys
12:29:52.0365 0x121c MsLldp - ok
12:29:52.0381 0x121c [ 7B2128EB875DCBC006E6A913211006D6, 97BBD7FF770741FBFC0F181A609AD0954EA926DA203B742E8F08C89AD8FE476E ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
12:29:52.0381 0x121c MSPCLOCK - ok
12:29:52.0396 0x121c [ 1E88171579B218115C7A772F8DE04BD8, B9EAA835D0BF8F9C4DF8403D95EF1400E8AE38F28F9DBA87657DE2129FEF02D2 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
12:29:52.0396 0x121c MSPQM - ok
12:29:52.0428 0x121c [ BBE2A455053E63BECBF42C2F9B21FAE0, 7C5DF563499DF59DF9895A1581E47ADF5FD54C94ECEF6C886CDB60E5E95A6DAE ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
12:29:52.0443 0x121c MsRPC - ok
12:29:52.0459 0x121c [ 8D6B7D515C5CBCDB75B928A0B73C3C5E, 1EB4DC3DD21D2627C78EC3F9931D9E5D033169087E43B5D7C17BF1FF2A0028CD ] mssmbios C:\Windows\System32\drivers\mssmbios.sys
12:29:52.0459 0x121c mssmbios - ok
12:29:52.0459 0x121c [ 115019AE01E0EB9C048530D2928AB4A2, 6E2275E85EACF2D0FC784792E0D72A165589D33CBAB3BCFA8E271CA09566C925 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
12:29:52.0459 0x121c MSTEE - ok
12:29:52.0474 0x121c [ 96D604A35070360F0DD4A7A8AF410B5E, F94DD1A3566C7C8D0A76D6E1E2530552A9B7F99C5DA0DE11829325EAB9F8B7ED ] MTConfig C:\Windows\System32\drivers\MTConfig.sys
12:29:52.0474 0x121c MTConfig - ok
12:29:52.0490 0x121c [ 619CA29326B82372621DB2C0964D8365, 4091F08E266DB45A6E33A4A8B1CE9FA78BB294B3111526AA9E3868620F30AFDF ] Mup C:\Windows\system32\Drivers\mup.sys
12:29:52.0490 0x121c Mup - ok
12:29:52.0506 0x121c [ B8C35C94DCB2DFEAF03BB42131F2F77F, F0FCF367CA8F722D6ABCF7F363CD406D890D71452E91C3FC6677B47AD74D6324 ] mvumis C:\Windows\system32\drivers\mvumis.sys
12:29:52.0506 0x121c mvumis - ok
12:29:52.0553 0x121c [ 8DF30698BDD9492A9D45A4B94FB4A82A, 26B1B2D7E785E29B8BCB74C467C66AE4EBDD481ACFF36334F3BDF4506B778244 ] napagent C:\Windows\system32\qagentRT.dll
12:29:52.0568 0x121c napagent - ok
12:29:52.0631 0x121c [ 008F7CED69FD5B30CBDE1E03C6F36A27, D4ADA7834C470B17A3CD976012DC5A511B32545B9F91D23D09A85722E0B75320 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
12:29:52.0662 0x121c NativeWifiP - ok
12:29:52.0709 0x121c [ BFCE1225D10619029E68946929CEB64C, 499F560331FFBA82E3D673B47F027FDAB7BEE4F2CB5B811D69E0218839F6E6A5 ] NcaSvc C:\Windows\System32\ncasvc.dll
12:29:52.0709 0x121c NcaSvc - ok
12:29:52.0771 0x121c [ 267C97373110B7AFD3B46DF60B6CBB85, CEBB99F71D47634BB9C04DF2836DF6B47F15B3073FEFC237F85526DF01E4E38B ] NcbService C:\Windows\System32\ncbservice.dll
12:29:52.0787 0x121c NcbService - ok
12:29:52.0818 0x121c [ 9ACED0F5B458C9011F39143326494E93, 9DFFC7EE7DE6FD92545EC6A203213C498A01EEFB0BC55460D339BCE498E56A7F ] NcdAutoSetup C:\Windows\System32\NcdAutoSetup.dll
12:29:52.0834 0x121c NcdAutoSetup - ok
12:29:52.0928 0x121c [ 6D3A2565E01B3E4B0F1BEDB0D4B00B3F, 95F2608E17CA3E25BD7958D1A49F7030EC8088BC1DF12422F1DAC5BA99113E34 ] NDIS C:\Windows\system32\drivers\ndis.sys
12:29:52.0959 0x121c NDIS - ok
12:29:53.0006 0x121c [ 8CECC8DA55F3274181FD1EA28AD76664, 188112424CEF97FB926A0FB915260B803555A775DD2E1846725A9C8616300F42 ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
12:29:53.0006 0x121c NdisCap - ok
12:29:53.0021 0x121c [ 269882812E9A68FFF1AFE1283D428322, 50B99EBC42DA9B46A8C2C28C9BADCF58AE3079535CDD1227D0F5C86291C715FF ] NdisImPlatform C:\Windows\system32\DRIVERS\NdisImPlatform.sys
12:29:53.0037 0x121c NdisImPlatform - ok
12:29:53.0068 0x121c [ 82821F4EEC776B4CF11695A38F3ABA46, 23184F9D31E662855DC4D23EFE7C2FE00E5487D3762B6024704A5D8C87762E1C ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
12:29:53.0084 0x121c NdisTapi - ok
12:29:53.0099 0x121c [ B832B35055BA2B7B4181861FF94D8E59, 2E60E5D503E88D27E35ECFEE265D51328E93A9C7B9B931F86D9CBC947636BB00 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
12:29:53.0099 0x121c Ndisuio - ok
12:29:53.0131 0x121c [ 1F58E48EF75F34C35D8E93A0DC535CFE, D65619A6C4B1747F8B05DA08A44EF0E46B5CC384880E04E4755A2BA6CDB3C4EA ] NdisVirtualBus C:\Windows\System32\drivers\NdisVirtualBus.sys
12:29:53.0131 0x121c NdisVirtualBus - ok
12:29:53.0162 0x121c [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
12:29:53.0178 0x121c NdisWan - ok
12:29:53.0193 0x121c [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWanLegacy C:\Windows\system32\DRIVERS\ndiswan.sys
12:29:53.0193 0x121c NdisWanLegacy - ok
12:29:53.0256 0x121c [ DDD7F92A83F74D1476B71FBA9530A8DC, D3F94FC9F48854E09B0B77CE5E1C1DB948D54EAC63C5583437051BB893B5A386 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
12:29:53.0256 0x121c NDProxy - ok
12:29:53.0318 0x121c [ 3083926D1CC5B56EA0786527B557DD1B, 3C3F0CA0D43398576DBE8F677B353ADDA7E8F56829874958CE668E31261C1590 ] Ndu C:\Windows\system32\drivers\Ndu.sys
12:29:53.0318 0x121c Ndu - ok
12:29:53.0365 0x121c [ 42FF4975D032CAE558AE4BB8448F6E5A, 0B8FACF3382443DED79A8004A6AA14C32471A6A1C6BAA543AA9F3FEC52620A6D ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
12:29:53.0365 0x121c NetBIOS - ok
12:29:53.0396 0x121c [ 0217532E19A748F0E5D569307363D5FD, C40C2E7AFA276057E7327A7BB173122689D6CEC9AE443C3850C3F94AF03DFBF5 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
12:29:53.0412 0x121c NetBT - ok
12:29:53.0428 0x121c [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] Netlogon C:\Windows\system32\lsass.exe
12:29:53.0428 0x121c Netlogon - ok
12:29:53.0490 0x121c [ 8F074B62E66B6117D9598C62A12069C5, 5FDB19045D3E2F6D0F0C5158AC2ECB0D5404CD2AF7A319755D7E3753CA3B7CF3 ] Netman C:\Windows\System32\netman.dll
12:29:53.0506 0x121c Netman - ok
12:29:53.0568 0x121c [ 4A04B1CD5BFB4A978C5F60E86D6C3E45, A946922C1C38ADD3CF9D3B09DDCC301AE4DAC960A081B2F42B32BE1E7095B3FD ] netprofm C:\Windows\System32\netprofmsvc.dll
12:29:53.0584 0x121c netprofm - ok
12:29:53.0615 0x121c [ 1092B3190E69E0C5ECBCE90F171DE047, C16106EEFC324EE80E5F659CB71A5DD69FA800D36D829F5B0E6AD3393BD1BAF7 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
12:29:53.0631 0x121c NetTcpPortSharing - ok
12:29:53.0662 0x121c [ D4DCE03870314D3354F3501F9DDD4123, 5BFE8299B3F72B8C39A4965365CBF5BA151024451F02DD872FAD1CC35CF94CEA ] netvsc C:\Windows\System32\drivers\netvsc63.sys
12:29:53.0678 0x121c netvsc - ok
12:29:53.0756 0x121c [ E94EB2A95D7D016E119C4D6868788831, 3E4A925D23262FBA0A6432DD635FBE94B0CEF76BD9BB323254B66977497FEE2A ] NlaSvc C:\Windows\System32\nlasvc.dll
12:29:53.0771 0x121c NlaSvc - ok
12:29:53.0787 0x121c [ 8F44A2F57C9F1A19AC9C6288C10FB351, 310274DDBAC0FE4BE54ECD3B90C97D82A0F9F5CFCA7A35711A36164DE4B94074 ] Npfs C:\Windows\system32\drivers\Npfs.sys
12:29:53.0787 0x121c Npfs - ok
12:29:53.0803 0x121c [ CBDB4F0871C88DF930FC0E8588CA67FC, 7E4AA3EA81A9D532F236FD7896744F07ED07CA9B37A9F18A9778BCCCC67490F2 ] npsvctrig C:\Windows\System32\drivers\npsvctrig.sys
12:29:53.0803 0x121c npsvctrig - ok
12:29:53.0865 0x121c [ 0F12A72A753CFD7FB0631EE8D08FE983, 860A96471F6CD90DDA9AB3A48E95CEAD826C87D2FA98A00EF91B61C44A4C8B82 ] nsi C:\Windows\system32\nsisvc.dll
12:29:53.0865 0x121c nsi - ok
12:29:53.0896 0x121c [ 0E046FF5823B95326D10CF1B4AF23541, 39D22715003746527AB4BFEDED8C34B695DAF589091AE7F3A2A2C4B8A35675A9 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
12:29:53.0896 0x121c nsiproxy - ok
12:29:54.0021 0x121c [ 7F68063A5A0461E02BC860CE0E6BFDDC, 47E9F75D27B97278B74034B7D3951A26B1644911ED321455E08D935731C858DE ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
12:29:54.0053 0x121c Ntfs - ok
12:29:54.0068 0x121c [ EF1B290FC9F0E47CC0B537292BEE5904, DBC07BBC54EBC2D2E576B23A4CE116B3DA988577AD0D96CB7289A6748A60F9EA ] Null C:\Windows\system32\drivers\Null.sys
12:29:54.0068 0x121c Null - ok
12:29:54.0131 0x121c [ 7E4355930B28C2798D9F09AB9F81151F, 941C730F3B75BDF99639E76350031EDD15F18D8D860F3B1282C28B62096E7717 ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys
12:29:54.0146 0x121c NVHDA - ok
12:29:54.0412 0x121c [ 7C28BA74B766F3470128107DA764F711, 43738B3B7F7A493D2B0102B889612A1E91545F38BA82CD911D63361F08048314 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
12:29:54.0646 0x121c nvlddmkm - ok
12:29:54.0849 0x121c [ F9CF3FB8DD81B390783532B3C98D6976, 8C94638136CFAEB3ED6DD7CE2059E98B64B15918DDB0796CC0B88474EE99F5BF ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
12:29:54.0881 0x121c NvNetworkService - ok
12:29:54.0896 0x121c [ BC6B5942AFF25EBAF62DE43C3807EDF8, CB0FA194084B8C309039D571B5760FDA800E9531B8660C499B4F9977BA5C36D5 ] nvraid C:\Windows\system32\drivers\nvraid.sys
12:29:54.0896 0x121c nvraid - ok
12:29:54.0912 0x121c [ 1F43ABFFAC3D6CA356851D517392966E, 6FD7621F67BA94B0E1D8F43BEC2951DBCDEEA1E848BB265AC169E27C01DA68F2 ] nvstor C:\Windows\system32\drivers\nvstor.sys
12:29:54.0912 0x121c nvstor - ok
12:29:54.0959 0x121c [ 3A7B0570D896602E37EAF80EC3D1615A, 1F5A71432F96731115ADA2A50E605923666188D08F9FD748424AB6588D0E1482 ] NvStreamKms C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys
12:29:54.0959 0x121c NvStreamKms - ok
12:29:54.0974 0x121c NvStreamSvc - ok
12:29:55.0037 0x121c [ 2A4F832243E869FD7564AA90402D74BD, E730A517EB6D49036B6FC196BFC930ED93EDB4FD4FA7EB1EB69A434BB94AE3C0 ] nvsvc C:\Windows\system32\nvvsvc.exe
12:29:55.0053 0x121c nvsvc - ok
12:29:55.0099 0x121c [ DBFE7B2DF103F74AE51840B3C5F25FE9, 436CAA417FD24BA870F117FA4BABA2AB694825795508BCFCC8C927CC2D5BBC5E ] nvvad_WaveExtensible C:\Windows\system32\drivers\nvvad64v.sys
12:29:55.0099 0x121c nvvad_WaveExtensible - ok
12:29:55.0115 0x121c [ 6934A936A7369DFE37B7DBA93F5E5E49, 0900FEEB0CE8D09F0FC60630B5B986034A8BCD3882ED66E47170810C32492892 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
12:29:55.0115 0x121c nv_agp - ok
12:29:55.0193 0x121c [ 30B5F9FB0C35AE6B4A0851D24CE2EE8B, 0340E77E8EC2ADC21B8DDD9C9CC95B3F4BCAFD54618A333C72D7D9587D593B83 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
12:29:55.0193 0x121c ose - ok
12:29:55.0271 0x121c [ 26657F3B4F39A0E64AF859278B599C4E, 3DD65E0BCEF3045DBA29FB8171CA3FCC9781AED3A1C7A160CF26388CE80A3683 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
12:29:55.0287 0x121c p2pimsvc - ok
12:29:55.0349 0x121c [ FD8F61F0D1F64BBB3D835F39A3F979C9, E5C5F86576488EA7F605E26C06EE5AFB36506A446F60C894D55E0A148BF7F02D ] p2psvc C:\Windows\system32\p2psvc.dll
12:29:55.0365 0x121c p2psvc - ok
12:29:55.0396 0x121c [ 764B1121867B2D9B31C491668AC72B2B, 32C04B6FCE1DDD09697B81473A23BDCED8BEEFBCD0D2D58DDC9A11A33C756967 ] Parport C:\Windows\System32\drivers\parport.sys
12:29:55.0412 0x121c Parport - ok
12:29:55.0443 0x121c [ BAFF6122CFC9F95CA175AD8C348179A4, 079A912D951DF6A57BC1BDB0D182977EE9592751EC9DDCDA2932BDEDB333850C ] partmgr C:\Windows\system32\drivers\partmgr.sys
12:29:55.0459 0x121c partmgr - ok
12:29:55.0490 0x121c [ ABE95ABE27A8BD9701782BBCD82C9925, AE3BA1E9ECDE692374D8DAC95A8DAA289DD2470E3D8D58EFAD9F83A37F3AC8E5 ] PcaSvc C:\Windows\System32\pcasvc.dll
12:29:55.0506 0x121c PcaSvc - ok
12:29:55.0553 0x121c [ 91ED124E261EA8FAA1C0FFDF2A71B0C4, 20E41A38067395D03184938983A9BE459717A1941352972DBC28D83D542319EC ] pci C:\Windows\system32\drivers\pci.sys
12:29:55.0568 0x121c pci - ok
12:29:55.0568 0x121c [ 346E38FCC6859A727DD28AFAD1F0AFF4, FF3DA26F79B3BC3A5B8A8AA0B9139B9EF70297F4EA1203B1E68FB5A212C3AA58 ] pciide C:\Windows\system32\drivers\pciide.sys
12:29:55.0584 0x121c pciide - ok
12:29:55.0599 0x121c [ 4D3BDCC1C7B40C9D7B6AD990E6DEC397, 27A7AF2127B699F4579CB77936F38DC102211E26E5E2947DB808756FE06FC98E ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
12:29:55.0599 0x121c pcmcia - ok
12:29:55.0615 0x121c [ BF28771D1436C88BE1D297D3098B0F7D, 5F7630916A76A8CF31289E9C577F522B999C74C39E541CD40E62BD53004BEF74 ] pcw C:\Windows\system32\drivers\pcw.sys
12:29:55.0615 0x121c pcw - ok
12:29:55.0662 0x121c [ 24A8DFC07E4BAF29AEA26E383D4CC886, 1B903FE52CD816662D37A8113930B4B7019B6996D49F1982D8F42933A3525A67 ] pdc C:\Windows\system32\drivers\pdc.sys
12:29:55.0678 0x121c pdc - ok
12:29:55.0756 0x121c [ 0ECEE590F2E2EF969FB74A6FC583A1E6, 1C611D9225C863CF32125F684B324C58BDE1942F4F283F5674133200AC505D44 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
12:29:55.0771 0x121c PEAUTH - ok
12:29:55.0834 0x121c [ 8E3C640FFF5A963F570233AE99C0FFF3, 3DE978B005BF2E88BA858CE37D9E27BD3584642B8412E22C300A1E739743838A ] PerfHost C:\Windows\SysWow64\perfhost.exe
12:29:55.0834 0x121c PerfHost - ok
12:29:55.0959 0x121c [ 70B39E7241F750A248798CE82C44596D, 54A72199EB277EE586611DCBC21654786FD2196F91D5884C4F531297893CC3EC ] pla C:\Windows\system32\pla.dll
12:29:56.0006 0x121c pla - ok
12:29:56.0053 0x121c [ 2C02AFF8383D893F8DBEB07A84F6E77C, 7CC34BAC67E2988E3D16DD6EB6F6785CD2460E3EF7FBD0BD5F86E49793BD473E ] PlugPlay C:\Windows\system32\umpnpmgr.dll
12:29:56.0068 0x121c PlugPlay - ok
12:29:56.0115 0x121c [ 4570F8A37D221660F3A09D6F4DD4BA94, 0EA190CFFA53DF9CCA2D53A4EF1BCB837BA3F2489A3AC5BD11F6D6ED811D118E ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
12:29:56.0131 0x121c PNRPAutoReg - ok
12:29:56.0162 0x121c [ 26657F3B4F39A0E64AF859278B599C4E, 3DD65E0BCEF3045DBA29FB8171CA3FCC9781AED3A1C7A160CF26388CE80A3683 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
12:29:56.0178 0x121c PNRPsvc - ok
12:29:56.0240 0x121c [ BDD52AB4AEBB8B1904568DBD0CCB70CB, C3D1DBA349C79B43DCDD9EF5255C5EE973EFB844235B808B5EF9B63A51FF00AA ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
12:29:56.0256 0x121c PolicyAgent - ok
12:29:56.0303 0x121c [ C8DD82C3035E60D671B8CC5DF128D3A9, 6AABF632CBEDA9A7B553BC9134FF100CB6FDC88000D499D2883408FCEDD97576 ] Power C:\Windows\system32\umpo.dll
12:29:56.0303 0x121c Power - ok
12:29:56.0318 0x121c [ E075CC071022BD4E9BE7C024717C0E0A, BE65A8C1082AE8DF8C37CA06B2BCC521478AC153EA7388B03F7FAE3913920E75 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
12:29:56.0334 0x121c PptpMiniport - ok
12:29:56.0474 0x121c [ E3514CE7CB4AF80ECCA383F065BC77C0, 1EA06D358A07EB9DFB703CEFC4EB834B947B899E0ACFE1C494E2DAED63F1D4B5 ] PrintNotify C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll
12:29:56.0553 0x121c PrintNotify - ok
12:29:56.0599 0x121c [ ECD373F9571C745894367CC2635EA44F, E08B2A1017DAE1BF10B986DAFAD14BDE20D79703E0EF3A8C700A3753908C1392 ] Processor C:\Windows\System32\drivers\processr.sys
12:29:56.0615 0x121c Processor - ok
12:29:56.0678 0x121c [ 19424364D8C03B990C4281BE53963FD0, 958FC8436E6B754858E20BC48B0D4B269991E8CA94C15C2761BF04ED52591907 ] ProfSvc C:\Windows\system32\profsvc.dll
12:29:56.0693 0x121c ProfSvc - ok
12:29:56.0740 0x121c [ FC0141B4A5AD6D637D883C1A89FC45C5, DCE8942C02EEDAE7A57707CA60CAC3A8CD6BA68E6571E405CA882D4DD6D69E43 ] Psched C:\Windows\system32\DRIVERS\pacer.sys
12:29:56.0756 0x121c Psched - ok
12:29:56.0818 0x121c [ DAA9DEE0A5D5F238C4EE54C2C7FB67C5, 7EC8C603BD92699AC35BDCD294F13BEE90D5C2C195FD93A3F16928BFCF53CA93 ] QWAVE C:\Windows\system32\qwave.dll
12:29:56.0849 0x121c QWAVE - ok
12:29:56.0912 0x121c [ 83868EB2924E6BC21A54337C65D614D1, 8D1BE01EBD190231153B867C32120DC8FBFBD32050448A778134D435D76A0B07 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
12:29:56.0912 0x121c QWAVEdrv - ok
12:29:56.0928 0x121c [ B337B1F1E82A83E20A1743E008E25C0F, A2E8AF041B4CAB78AEE28A2147A189FF0F9D2FCEFB167D60FBBA0A787A5A5BE7 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
12:29:56.0928 0x121c RasAcd - ok
12:29:56.0959 0x121c [ E8FFD8BE3C50E7A71C5FBB87BDD1128E, 3E3EB906CC9A1CCA09580DA9F94DD0E1162CABD343874B76718DC4F2E9069C4E ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
12:29:56.0974 0x121c RasAgileVpn - ok
12:29:57.0006 0x121c [ 044638489B4A5FE5334F46C5314A0826, E06CC2A9EF369794DAD69FBB5AFD1676D4283DDAB2AD5E3EFE454C473F62F955 ] RasAuto C:\Windows\System32\rasauto.dll
12:29:57.0021 0x121c RasAuto - ok
12:29:57.0053 0x121c [ BBB6272B7F46C4640A8CDB8A70C3450F, 4266C3ABD0D1D0219F715EA0F155744F7C1E3A7B722BE863831B57AE785419A2 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
12:29:57.0068 0x121c Rasl2tp - ok
12:29:57.0131 0x121c [ F83B38FCD4F69157B3D158433FA149CC, AB103BD3E2B3B134CB355C556DF70BCF0CF4DB11EFF7DB4A9876D5AA43D81293 ] RasMan C:\Windows\System32\rasmans.dll
12:29:57.0146 0x121c RasMan - ok
12:29:57.0162 0x121c [ 5247F308C4103CDC4FE12AE1D235800A, E567CD33CA1897D53795E071B7AFBAF98B2C8F725F8BED0BA90F5EF611520E48 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
12:29:57.0162 0x121c RasPppoe - ok
12:29:57.0209 0x121c [ 41F631007A158FEBB67F0E2AD1601BBA, EB5EA7277F4178BC27E55BF850AEBCD84B6BED80B2383CFB29548824AAFED135 ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
12:29:57.0209 0x121c RasSstp - ok
12:29:57.0271 0x121c [ A1A5E79C0D1352AFDC08328A623DA051, 01546DDE6F1FF159A7EB7F2BF104910445D3D863F1F37DEA695579BA60D84280 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
12:29:57.0287 0x121c rdbss - ok
12:29:57.0318 0x121c [ 6B21EBF892CD8CACB71669B35AB5DE32, 0AD8E14FEF16FB2559F5FC8AFBC9D49E4E24F43CF65F480DBF9FAB593269B419 ] rdpbus C:\Windows\System32\drivers\rdpbus.sys
12:29:57.0318 0x121c rdpbus - ok
12:29:57.0334 0x121c [ 680C1DAE268B6FB67FA21B389A8B79EF, 856911F77BDD8830C3D683EBE8AF399FB3A54C7D8D0B34EA37D903377F0A39BD ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
12:29:57.0349 0x121c RDPDR - ok
12:29:57.0396 0x121c [ BC8A79C625568DDB7DCA49D0C2741A64, AB0A7ED9EC2282EC0356D27EA4F70515943E41C2112428B787636B8BEC278933 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
12:29:57.0396 0x121c RdpVideoMiniport - ok
12:29:57.0459 0x121c [ A26AEC49F318FEE141DDDB2C5F99B3E6, 246AD79FF27E79DEDCB0AAA7C22A8EA6349DEDAC863413A1E378E68FD94C9C4F ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
12:29:57.0474 0x121c rdyboost - ok
12:29:57.0599 0x121c [ EA569D48B2E755AF6D96F03F3335D98A, EED2DCDF187A69F36A38129C8A1E0D6FE0EBF9232DEAF68A116E9A26E40AB636 ] Realtek11nSU C:\Program Files (x86)\INTELLINET\11n USB Wireless LAN Utility\RtlService.exe
12:29:57.0599 0x121c Realtek11nSU - ok
12:29:57.0709 0x121c [ 615DFD97DEA56CE1C3A52185A3038FF8, 707BF5F9FAE478A12656D15013F507CC1335E7B72BD21CA99BB813CB95E37BC0 ] ReFS C:\Windows\system32\drivers\ReFS.sys
12:29:57.0724 0x121c ReFS - ok
12:29:57.0771 0x121c [ 0CF7CB56BF2D5E9DBCEE0185CB626FAD, 2BD2E2FB1D2EADD1F70EF55E8523C353F95D4FEB1BAD5017FA4D94F790F27825 ] RemoteAccess C:\Windows\System32\mprdim.dll
12:29:57.0771 0x121c RemoteAccess - ok
12:29:57.0818 0x121c [ AC8785B53F8436058C90450DA1840AE7, CC1FFC2713910211F8A6AD532DBB9253ACD188CBD784F1BE6613DF382825A3C1 ] RemoteRegistry C:\Windows\system32\regsvc.dll
12:29:57.0834 0x121c RemoteRegistry - ok
12:29:57.0865 0x121c [ 65B9FDE300A6DECC03BA44C4616DCAD6, CAD992982733DD20282A3453DC4E554AE1FC077C35479C0CA4E8BC3A9DCD3BB0 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
12:29:57.0865 0x121c RpcEptMapper - ok
12:29:57.0928 0x121c [ A737B433ABAF3F2DCB2BD7B4CC582B26, 3B5706B0CF0969A9F82060FD4DCC745F2D83C066B663FE8A4F0F493B64032C9C ] RpcLocator C:\Windows\system32\locator.exe
12:29:57.0928 0x121c RpcLocator - ok
12:29:58.0037 0x121c [ A6F17C299A03BAFEFB9257C462A19E00, EB68967D28355271897166D7B6FD963D1E546D3C24AE1AEAAC561F94357A9345 ] RpcSs C:\Windows\system32\rpcss.dll
12:29:58.0053 0x121c RpcSs - ok
12:29:58.0068 0x121c [ 2D05A5508F4685412F2B89E8C2189ABC, 82F12B4E0E73411A121EFD35FBD3B44CBBC0AE96ACFBB45D8C3C3777E2EA320D ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
12:29:58.0084 0x121c rspndr - ok
12:29:58.0131 0x121c [ 19764658C1468C2C0CEF133D28414A6B, 87AD4056F6C67052433A366B200B75613148B69B9B9D502AD926A7F7F037B8DE ] RTL8168 C:\Windows\system32\DRIVERS\Rt630x64.sys
12:29:58.0146 0x121c RTL8168 - ok
12:29:58.0240 0x121c [ ED997BA41F8E760AD442E2EF9C9DF652, 3EBF6AEFC92F166AEFA4228E45BEC86525A4D652CF5582BB13C082F0C0EFCAC0 ] RTL8192su C:\Windows\system32\DRIVERS\RTL8192su.sys
12:29:58.0256 0x121c RTL8192su - ok
12:29:58.0381 0x121c [ B0A0260A3C03156937ECDB67CE5C6FE5, 88102D22976398599FA6165E9DBC1213EF2A001C99602E2195C9A7BAB0A127D7 ] RtlWlanu C:\Windows\system32\DRIVERS\rtwlanu.sys
12:29:58.0443 0x121c RtlWlanu - ok
12:29:58.0459 0x121c [ 1A063730F221B2746FF00457AE17E4F0, 39A3C258CBFE3BC566C63528C9020A3BC9409736AE5289C08A7BA471D8409263 ] s3cap C:\Windows\System32\drivers\vms3cap.sys
12:29:58.0474 0x121c s3cap - ok
12:29:58.0521 0x121c [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] SamSs C:\Windows\system32\lsass.exe
12:29:58.0521 0x121c SamSs - ok
12:29:58.0537 0x121c [ C624A1B32211C3166EDB3F4AB02A30B7, 6B2A4607DB52D74242787ED9DF9067058983D310431D8612D2B0236E6201E681 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
12:29:58.0537 0x121c sbp2port - ok
12:29:58.0599 0x121c [ 74A3B67F03877D06B09B1B40C5ED582E, A8FF9BF416F0BF365BFB4E1796859825C811A74B5E54DDDCE8345193BEEBE206 ] SCardSvr C:\Windows\System32\SCardSvr.dll
12:29:58.0599 0x121c SCardSvr - ok
12:29:58.0678 0x121c [ 8B9C4D55B4A536FB01C360DDB9533574, 9B939FE68F6F9C171ED0D91E2CE1E67515295D34EC23606BCDFD097DCC8CFD4A ] ScDeviceEnum C:\Windows\System32\ScDeviceEnum.dll
12:29:58.0678 0x121c ScDeviceEnum - ok
12:29:58.0740 0x121c [ 13BEA6C882D4D877A5A85CA149C86BC1, 8E9BE5C2A36D5881D9985C3A31309FE03966EA13A3541D3C5B542AB67FA0D55F ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
12:29:58.0740 0x121c scfilter - ok
12:29:58.0834 0x121c [ A626F5E446860F22835E783142D7AE33, 3A786639E1FABCA512F4F91A10811DD3C4D9C9C9BB893362E4D019219D0BD8E2 ] Schedule C:\Windows\system32\schedsvc.dll
12:29:58.0849 0x121c Schedule - ok
12:29:58.0865 0x121c [ 41C0D7B1A6D4AD119BA6AC0487EA5C8E, 516C2B34BA7507D0DA4148B4ABC0A8C36286570D4EA5C60B28647B1249C15018 ] SCPolicySvc C:\Windows\System32\certprop.dll
12:29:58.0865 0x121c SCPolicySvc - ok
12:29:58.0943 0x121c [ C54B6B2170BF628FD42F799A66956D75, BCF460A124CAA6F1F1A9A7BCBDCC2D5E39B0404D96B7C9FFAC806E041782B91E ] sdbus C:\Windows\System32\drivers\sdbus.sys
12:29:58.0975 0x121c sdbus - ok
12:29:59.0021 0x121c [ 0B1E929D11A8E358106955603FAC65E8, A5EC91BFC0873EC6AB1D0DB4E91654BD35339BD680E7E82DA2DC64996B4AE515 ] sdstor C:\Windows\System32\drivers\sdstor.sys
12:29:59.0037 0x121c sdstor - ok
12:29:59.0053 0x121c [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\Windows\system32\drivers\secdrv.sys
12:29:59.0053 0x121c secdrv - ok
12:29:59.0115 0x121c [ BA24CEA7152239F42ECD04AFB7C89D24, A2A11EABB0C283772B74667C7544B61BEB1B9745FBF065E831542129EB585AFA ] seclogon C:\Windows\system32\seclogon.dll
12:29:59.0115 0x121c seclogon - ok
12:29:59.0178 0x121c [ 81FE9A81EDF8016816C9E91FBFBF7D35, 87FB92A3D15F312F0B9C423EF851061A944B013E5668D8C9A441B4DC0EB690AF ] SENS C:\Windows\System32\sens.dll
12:29:59.0193 0x121c SENS - ok
12:29:59.0240 0x121c [ 6E4012AE67F09F867EF620C8D5524C0B, 63933E51F8E413E63481369CE2F9FD224560550FBD3BD2B4573E9F4AD88708A2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
12:29:59.0271 0x121c SensrSvc - ok
12:29:59.0287 0x121c [ DB2FF24CE0BDD15FE75870AFE312BA89, 7DB0D978C92CD0A0A81F7AB46FE323B4929CEA01585B0F330921E6DFA7DE1B85 ] SerCx C:\Windows\system32\drivers\SerCx.sys
12:29:59.0287 0x121c SerCx - ok
12:29:59.0349 0x121c [ 0044B31F93946D5D41982314381FE431, 95B8A94BA9EF770F29ACD5B23D447EC2B6CF1CB3D0030343BA1550AC31F6E2A5 ] SerCx2 C:\Windows\system32\drivers\SerCx2.sys
12:29:59.0349 0x121c SerCx2 - ok
12:29:59.0365 0x121c [ 3CD600C089C1251BEEB4CD4CD5164F9E, D9F81951B4454B24E821E33ACA53A851A61F3135E8EC6FBE6761A1A3E1CDCBE2 ] Serenum C:\Windows\System32\drivers\serenum.sys
12:29:59.0365 0x121c Serenum - ok
12:29:59.0381 0x121c [ D864381BC9C725FAB01D94C060660166, 132FED95222BBE3B0B25B3F1F0EFC5903D04564BD047BA4D2042AD51E3FDA724 ] Serial C:\Windows\System32\drivers\serial.sys
12:29:59.0381 0x121c Serial - ok
12:29:59.0428 0x121c [ 96B01F117057FB4DAE0FF919ACB55770, D0F58F1CAE4F81D60FCE60BB0065A34B4F897E8105DF17B6DAA334938CD25A56 ] sermouse C:\Windows\System32\drivers\sermouse.sys
12:29:59.0443 0x121c sermouse - ok
12:29:59.0506 0x121c [ 3A2F1A7472C3B7CC9B89C8516C726488, 9BCBBAC10C900EA7B30822B463A77EE5067F217C4B490857A09E5277983CB89B ] SessionEnv C:\Windows\system32\sessenv.dll
12:29:59.0521 0x121c SessionEnv - ok
12:29:59.0537 0x121c [ 472B7A5AC181C050888DB454663DD764, C950A8615D57BFD455E18880398350642B2E1D6B951EC9754FD8D429F3418835 ] sfloppy C:\Windows\System32\drivers\sfloppy.sys
12:29:59.0537 0x121c sfloppy - ok
12:29:59.0568 0x121c [ 8081FF3DAE8159FE8956B09BC29CE983, AC0F305AEE8B1AB2E1275F1D33EC1D2F3E23F234F831BD9D41F415A94A19D3AB ] SharedAccess C:\Windows\System32\ipnathlp.dll
12:29:59.0568 0x121c SharedAccess - ok
12:29:59.0599 0x121c [ 7FD9A61A3523A61FC135D61D6E160314, 409E1CF7A62FD90CBC31AEAFBB7230B02DBEC6CFCA2D266D221A7643FAEBA13B ] ShellHWDetection C:\Windows\System32\shsvcs.dll
12:29:59.0615 0x121c ShellHWDetection - ok
12:29:59.0631 0x121c [ 2F518D13DD6F3053837FE606F1A2EA1F, 64109296CE95BD233525688A350D575CF97B9464659AA07CF78B307B6ADBC835 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
12:29:59.0631 0x121c SiSRaid2 - ok
12:29:59.0631 0x121c [ 1AC9A200A9C49C4508F04AAFFCA34A3F, 972BCB2A39169155F74111FAC74ACCD8F50E34EADCF087833B0980827627BBF4 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
12:29:59.0646 0x121c SiSRaid4 - ok
12:29:59.0756 0x121c [ A9C057A9463C25490CF99EA8DF8A4B35, 8F4D1C40D0F17EDBF84ED455B8946F782C7552383F0A07E410A9B6CFF7F51D63 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
12:29:59.0771 0x121c SkypeUpdate - ok
12:29:59.0818 0x121c [ 3C84DCCE5B322F745A75CA8BA3A0F6B3, 1FB94A8A1C63D6FDB82E28ED5B696B3CB1F64183A89A3B5153B266C292CB7815 ] smphost C:\Windows\System32\smphost.dll
12:29:59.0850 0x121c smphost - ok
12:29:59.0896 0x121c [ D0EB0DF8C603BBA084351A92732B1CBE, E24ED8F78EF41C1BC17386AE4BBCE0DC892C5B89B12C03FC9FB61D359B13F1B4 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
12:29:59.0912 0x121c SNMPTRAP - ok
12:29:59.0990 0x121c [ D24B1945ED1F9C96DA786DBBF1E983CE, B46CB0B72B7A3DF94A46B8D65E38535C5F8E72A55CF2DC48EFA1F9A0108691C4 ] spaceport C:\Windows\system32\drivers\spaceport.sys
12:30:00.0006 0x121c spaceport - ok
12:30:00.0006 0x121c [ F337BE11071818FC3F5DC2940B6BDE34, D5CFF00E5DF37045F71AEE101AC9B270EBB29F372F404757B58600E9966C7E4D ] SpbCx C:\Windows\system32\drivers\SpbCx.sys
12:30:00.0006 0x121c SpbCx - ok
12:30:00.0099 0x121c [ FCB156A6745631A67DEA61827061D483, 9275ABFA1E1E595969A71C0DA228D18D1B868BF46E097E1276142BD80F8A32C9 ] Spooler C:\Windows\System32\spoolsv.exe
12:30:00.0131 0x121c Spooler - ok
12:30:00.0349 0x121c [ C993A0B97BECD3AAF5158E3869878465, 8B86F37DEFCBE55DE507D830EC4980EBB39B3CCA30C2B3E76B588AAB282A50FC ] sppsvc C:\Windows\system32\sppsvc.exe
12:30:00.0521 0x121c sppsvc - ok
12:30:00.0568 0x121c [ 6416E79A58A8FCC33A447A4DDDD3BF04, 839E3107ACCD520C309BD6C8324DF7A8EB724EAD442AB1F1CACB0D83F84BE488 ] srv C:\Windows\system32\DRIVERS\srv.sys
12:30:00.0584 0x121c srv - ok
12:30:00.0599 0x121c [ 00D8AC8E3053290BDE6EA2FB6810D2FC, 957FEF84CBBAE71829529AE99A1B24F52D7831BD666442D0132FBB825409A75D ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
12:30:00.0599 0x121c srv2 - ok
12:30:00.0615 0x121c [ D047CD668E6277FD80F0C613946F034C, BD0209E7FD89F9295D4DE48C9652DF2A2990277C16AFA473B96704B1CBD2F338 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
12:30:00.0631 0x121c srvnet - ok
12:30:00.0678 0x121c [ CF6C3037839CF78421A94F9060C2886F, CA98C180AE03F5BE8FEFFBA75BD98DEE2AD4FA975E1EF83215C9CD2476946811 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
12:30:00.0693 0x121c SSDPSRV - ok
12:30:00.0740 0x121c [ 198A737DBA666F4808D62E9A8277A6B7, 90B6E5E2ACE95D850C913A3A1DA1F966C44955C530004C228FA93B2A536F5C27 ] SstpSvc C:\Windows\system32\sstpsvc.dll
12:30:00.0756 0x121c SstpSvc - ok
12:30:00.0850 0x121c [ 0398BF35F898BA77033E678609AAB64F, E48D2E1E1C8FD314340BA1AA69E8942F630139B1E7019C8828BA5525444320D4 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe
12:30:00.0881 0x121c Steam Client Service - ok
12:30:01.0006 0x121c [ F82B2FC221CA0E408874884787491667, A9C7FB9C4719484BDA4FB69A8F948DC556CFEA19DFE89D2E63536F2C42725E66 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
12:30:01.0021 0x121c Stereo Service - ok
12:30:01.0037 0x121c [ 366DEA74BBA65B362BCCFC6FC2ADFD8B, 4D28122AB9D8DAB724021E6513B4474BD34FCEDF47769B1D27AC7551FCA002F8 ] stexstor C:\Windows\system32\drivers\stexstor.sys
12:30:01.0037 0x121c stexstor - ok
12:30:01.0131 0x121c [ 63E9CE568CF1192771A5F0460DE7D2B9, C27B21FD2C14AD41A59EF62EB8AC95C08EB13CCB1CEECD8378B8CDD4DC352E69 ] stisvc C:\Windows\System32\wiaservc.dll
12:30:01.0146 0x121c stisvc - ok
12:30:01.0178 0x121c [ 0ED2E318ABB68C1A35A8B8038BDB4C90, 5C3ABC245F4BCFE64E646D9C0E2F5E211244956C84D03084C71FF6A7E0CDED30 ] storahci C:\Windows\system32\drivers\storahci.sys
12:30:01.0178 0x121c storahci - ok
12:30:01.0240 0x121c [ 8B9486B64E5FC17FB9CC04CA10B77A34, C1EAC9D27DC83E4C56B890D97988C3CCFAE3877309610601F2E3FFFE97686D43 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
12:30:01.0240 0x121c storflt - ok
12:30:01.0303 0x121c [ 6B06E2D11E604BE2B1A406C4CB3B90DE, 2DDEA1568A85AD64FCE5D10D348304FCD9BE6E96C2313353EF70A2933306D188 ] stornvme C:\Windows\system32\drivers\stornvme.sys
12:30:01.0303 0x121c stornvme - ok
12:30:01.0365 0x121c [ A45F5AC9D8069D0EC66E3CA73103073B, 996788F1C58E016E8E5CF3FD1D220A3C40AFFD6C21361A34636415DB12E0D381 ] StorSvc C:\Windows\system32\storsvc.dll
12:30:01.0365 0x121c StorSvc - ok
12:30:01.0381 0x121c [ 548759755BC73DAD663250239D7E0B9F, D31A05A8CE800B539420B6E545F1F4BF6E4B02EAF8366DE89CAF13A83C6CA48D ] storvsc C:\Windows\system32\drivers\storvsc.sys
12:30:01.0396 0x121c storvsc - ok
12:30:01.0412 0x121c [ E395BE02F80A79A6CF973BA38DBB8135, 4C6F85B0EB8E7725BA720F9742561D229726C0D7C17505D1E79F19A5626F6325 ] svsvc C:\Windows\system32\svsvc.dll
12:30:01.0412 0x121c svsvc - ok
12:30:01.0459 0x121c [ 65454187E0F8B6C0DCECB0287D06EC43, 87550000CF5B3C1DF3E69633934AFE8554AE40B6638F190D3185AD63F1D7A2EE ] swenum C:\Windows\System32\drivers\swenum.sys
12:30:01.0475 0x121c swenum - ok
12:30:01.0553 0x121c [ 1C71D72D4997A284128FBEE770726330, 21682BDE74A1108FED1124FB1EA35A03CBFA94ABE1B89CC0FADB4DD82596C43E ] swprv C:\Windows\System32\swprv.dll
12:30:01.0584 0x121c swprv - ok
12:30:01.0678 0x121c [ 3114CB46C2853CA71525428CB0C7CB58, A9CC51506AABBC23BAB2B90E30AB13197A72268A3DE6D2F281C1C367ED7118AE ] SysMain C:\Windows\system32\sysmain.dll
12:30:01.0709 0x121c SysMain - ok
12:30:01.0771 0x121c [ 23BECB70654B192A7E378DEE3DBD8D42, 7596174AE7508B62C40A429645198F6A420D0CD5B62A10AB78516113584E7EDB ] SystemEventsBroker C:\Windows\System32\SystemEventsBrokerServer.dll
12:30:01.0787 0x121c SystemEventsBroker - ok
12:30:01.0850 0x121c [ D6A71B95ACF71ACA63B67232059F1BCD, C5CEC032E7AB507500D1CC7A4E65DA6322412C798201A9D770CBDE892E50DFC8 ] TabletInputService C:\Windows\System32\TabSvc.dll
12:30:01.0865 0x121c TabletInputService - ok
12:30:01.0881 0x121c [ 5A5BAB1CA9621E73E25EE4744B67CDA6, 479EBD7BAE1E2AD431153FDC016742F7A8D824716EAB1A4CA87EBBD21D61DECD ] TapiSrv C:\Windows\System32\tapisrv.dll
12:30:01.0896 0x121c TapiSrv - ok
12:30:01.0959 0x121c [ 468273F7089A3A33D149955F0F203FA4, 18FD0B73FBD63550E904EE76D4323EFE163BFF8C3DC6DE67F4BE6003C7DC6879 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
12:30:02.0021 0x121c Tcpip - ok
12:30:02.0068 0x121c [ 468273F7089A3A33D149955F0F203FA4, 18FD0B73FBD63550E904EE76D4323EFE163BFF8C3DC6DE67F4BE6003C7DC6879 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
12:30:02.0099 0x121c TCPIP6 - ok
12:30:02.0146 0x121c [ 41CF802064F72E55F50CA0A221FD36D4, 70ABCDF9E96611E8C83042C581575E26649FE479475E8E118CD3FF6CB1C84C3F ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
12:30:02.0162 0x121c tcpipreg - ok
12:30:02.0193 0x121c [ FFF28F9F6823EB1756C60F1649560BBF, 208DFF8BF0329D0D4761C7E31527AEED7FF5F3C36C5005953D01477F35408D5C ] tdx C:\Windows\system32\DRIVERS\tdx.sys
12:30:02.0209 0x121c tdx - ok
12:30:02.0225 0x121c [ 232D185D2337F141311D0CF1983E1431, 02EB56D3F26174AF1741C1A444CE30DE84D5BAF583C1A52C7A953BCC52445547 ] terminpt C:\Windows\System32\drivers\terminpt.sys
12:30:02.0225 0x121c terminpt - ok
12:30:02.0287 0x121c [ C50997E282576DA492EBA66B059D4196, EBD793CB396F9503376207FA60353F5672DEDB620C8E01C8D6AE0030B3B03339 ] TermService C:\Windows\System32\termsrv.dll
12:30:02.0318 0x121c TermService - ok
12:30:02.0334 0x121c [ 2180DBCE75B914E5E5BBFFFAAE97AA21, 8000AECC8855903DB50ABA7E304396D1FCEAE8DC9ADD4FC50275CF24B4D914DE ] Themes C:\Windows\system32\themeservice.dll
12:30:02.0334 0x121c Themes - ok
12:30:02.0381 0x121c [ 4C5179DB61B9E14BEC15CDC4B152B2E9, 9048BEC7AD6A3F4B640E99B1F0365AC9A46740B188758FBB2C160EF30AD6E64B ] THREADORDER C:\Windows\system32\mmcss.dll
12:30:02.0381 0x121c THREADORDER - ok
12:30:02.0443 0x121c [ B5ED9CC61798C7D44BD535D40B89EFB5, 1BDCEAA9AF2096381870D92129C748F4EE06A1167ABA9367B9DD43BAF27E3F5B ] TimeBroker C:\Windows\System32\TimeBrokerServer.dll
12:30:02.0475 0x121c TimeBroker - ok
12:30:02.0506 0x121c [ 82F909359600D3603FE852DB7F135626, 2EB2BB9D81AC9A2E432B2628E296B7B21F1C82EAE8009300EEF1B8596A9F418D ] TPM C:\Windows\system32\drivers\tpm.sys
12:30:02.0506 0x121c TPM - ok
12:30:02.0521 0x121c [ 884113C2BB703FE806C8608B75F34831, 24DE5750CA4363455412BABB0B1FAB08497153E8F158ED44958F100410F93506 ] TrkWks C:\Windows\System32\trkwks.dll
12:30:02.0537 0x121c TrkWks - ok
12:30:02.0600 0x121c [ 3E75A47D2DEFD2683DCA409572FBE8B2, 33964B1A05E045D3B878CDFD9F52A9086B4FA54D6D4D1DC38062D2874CACD4A0 ] Trufos C:\Windows\system32\DRIVERS\Trufos.sys
12:30:02.0615 0x121c Trufos - ok
12:30:02.0646 0x121c [ 44A94FB4C76528D2382FFE04B05827C3, B0BCDF7CD1D65E61A9061D539D83527A89B69583958F8A26C6BF9766C1B61E0C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
12:30:02.0662 0x121c TrustedInstaller - ok
12:30:02.0678 0x121c [ BF8F54CA37E9C9D6582C31C5761F8C93, 337C566792F6FB9B7FD5D1D4384B767CFE4CF5DBB2E4688CCC36CBB018A0DD0F ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
12:30:02.0678 0x121c TsUsbFlt - ok
12:30:02.0725 0x121c [ 20185BEB7512EDE4EFECDFA148AC9F99, 6F539478493C0F87F3DDF67A4A6D4D41E9474EEF21434E856350CE149A34EA9F ] TsUsbGD C:\Windows\System32\drivers\TsUsbGD.sys
12:30:02.0725 0x121c TsUsbGD - ok
12:30:02.0740 0x121c [ C8E0E78B5D284C2FF59BDFFDAF997242, BA1576C491A1246EF9866762426D110F4570F9DB42A68C174943C7D5020FE3E2 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
12:30:02.0740 0x121c tunnel - ok
12:30:02.0756 0x121c [ F6EEAD052943B5A3104C1405BB856C54, FE422813E6C1012E9F392EFF2AE4C6D3A4DBD9CB2BD5E6A5CAB57D4E89A29468 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
12:30:02.0756 0x121c uagp35 - ok
12:30:02.0787 0x121c [ FE6067B1FD4E63650C667B33D080565B, 2C330ED00E49BA55E25564230E0DFB8A35F2B5320EB18D4AF7CAACFA9A449044 ] UASPStor C:\Windows\System32\drivers\uaspstor.sys
12:30:02.0787 0x121c UASPStor - ok
12:30:02.0850 0x121c [ 807F8CF3E973305FC435C61CBBEE2A49, 43CDEAC2BFC5091C11DFC0E7F7171AF9A598AE56CB056C3CF382AE7807F79EF0 ] UCX01000 C:\Windows\System32\drivers\ucx01000.sys
12:30:02.0865 0x121c UCX01000 - ok
12:30:02.0943 0x121c [ C61EAF8E1E4B2F62BA4FDF457440B2C6, 961F76A789925234AC27F56AAE34556FA06088D71580B42C24B0BC209EAFD67E ] udfs C:\Windows\system32\DRIVERS\udfs.sys
12:30:02.0959 0x121c udfs - ok
12:30:02.0975 0x121c [ 9578691F297E1B1F519970FE6D47CB21, 080C352AAF22A16A4F3C4AB4DCEA5BFA656457C73F735CEBA30516FDACCF6301 ] UEFI C:\Windows\System32\drivers\UEFI.sys
12:30:02.0975 0x121c UEFI - ok
12:30:03.0021 0x121c [ A867F0F978EE64C87FADC3B100869EE4, 2686BE85F963D0D0BB275E92E5B543280D8742CF10772303E3189D0719B6A277 ] UI0Detect C:\Windows\system32\UI0Detect.exe
12:30:03.0037 0x121c UI0Detect - ok
12:30:03.0037 0x121c [ 5EAB5117DDB24FC4D39E6FFFCF1837B9, 2BC709240867F161E94BE6625A04F478EAAA3EEE7BC7C37ED0DFA9EEA5928E98 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
12:30:03.0053 0x121c uliagpkx - ok
12:30:03.0068 0x121c [ DA34C39A18E60E7C3FA0630566408034, 2F162504214053894C72760D9933D01DBF3578609FE5E2376C3272818599FE32 ] umbus C:\Windows\System32\drivers\umbus.sys
12:30:03.0084 0x121c umbus - ok
12:30:03.0084 0x121c [ AE8294875E5446E359B1E8035D40C05E, AE0357BAB47C07C3576BC76951CD258C009BC5A1B93259D2122A841BD9CDA8FA ] UmPass C:\Windows\System32\drivers\umpass.sys
12:30:03.0084 0x121c UmPass - ok
12:30:03.0146 0x121c [ A023F267A262D5DA6CE1436D9C5E8FD9, 92AD7AF91184C244A7E392F49663143193A80D5D81114546A00F18227DE31D23 ] UmRdpService C:\Windows\System32\umrdp.dll
12:30:03.0178 0x121c UmRdpService - ok
12:30:03.0256 0x121c [ C98493DD8E6A50154FAC75C15E1C36BB, CECD1C826C8F7AF05468871BF6A0ACDBB6B0202F4F87F48C6D367E5BD699E800 ] upnphost C:\Windows\System32\upnphost.dll
12:30:03.0287 0x121c upnphost - ok
12:30:03.0334 0x121c [ FF78D053A05E5A394F4E3C1816CC65A8, 5DAE02414271231F5FDBB751AFEB99874779B467947020815D4AE54432D4269D ] usbccgp C:\Windows\System32\drivers\usbccgp.sys
12:30:03.0350 0x121c usbccgp - ok
12:30:03.0365 0x121c [ 0139248F6B95CF0D837B5B46A2722D40, 38E3E704E0364F07732DB418AEBD126B040FB3CDB7D78EA36E8605D50D528A80 ] usbcir C:\Windows\System32\drivers\usbcir.sys
12:30:03.0381 0x121c usbcir - ok
12:30:03.0428 0x121c [ 48BA326A3DBA5B5BEB5F2777F4618696, B9EC8155F11A3A7644BD9DC8910681B46AE44AE3BF53F052DF50E9C5555E3229 ] usbehci C:\Windows\System32\drivers\usbehci.sys
12:30:03.0443 0x121c usbehci - ok
12:30:03.0459 0x121c [ FEF0BC107812B36849741C3211BA6B60, B3EF738BE1E6B6027F29C9713CD3F367EA067D2BE46580AFBC0FB58046EF6BBD ] usbhub C:\Windows\System32\drivers\usbhub.sys
12:30:03.0490 0x121c usbhub - ok
12:30:03.0600 0x121c [ 95B0179BDA907252025DEEA183699FB3, A6BDFB93EE9418A83407024204A41640A08638C60E2BE75C249D102601DC1D80 ] USBHUB3 C:\Windows\System32\drivers\UsbHub3.sys
12:30:03.0615 0x121c USBHUB3 - ok
12:30:03.0678 0x121c [ 3019097FB6C985EF24C058090FF3BDBD, 24AC518D34E338D94BF3D5B3F72E53F8A1369BAA7F32FEA3EDBCF928C4FF1D17 ] usbohci C:\Windows\System32\drivers\usbohci.sys
12:30:03.0678 0x121c usbohci - ok
12:30:03.0709 0x121c [ 4D655E3B684BE9B0F7FFD8A2935C348C, 3A7FC1748C5AEA8CFE0E7C22ADC77E3DCA475455FC16D9C6A5C16EB5E949A516 ] usbprint C:\Windows\System32\drivers\usbprint.sys
12:30:03.0709 0x121c usbprint - ok
12:30:03.0771 0x121c [ 0F030491BA4A27BD46F8B8ACEEE83F1A, 7063855611BEF94D4D229BA1BE507ECBDD89F5861641A407EB3E2919A352F9D4 ] usbscan C:\Windows\System32\drivers\usbscan.sys
12:30:03.0771 0x121c usbscan - ok
12:30:03.0834 0x121c [ 66732C13628BDB1AB0D6FD46027327C2, B582C0F348D8F79419CA5A58F10CA151E06D7CA3BE162344CADA46D9D7FED97C ] USBSTOR C:\Windows\System32\drivers\USBSTOR.SYS
12:30:03.0850 0x121c USBSTOR - ok
12:30:03.0912 0x121c [ 064260B3A5868AC894A4943543BC7AB7, D3534E98B34C4AC9A430D7E0AB301A0E5E1511E3117C2FEA392636B0DE2C38E2 ] usbuhci C:\Windows\System32\drivers\usbuhci.sys
12:30:03.0928 0x121c usbuhci - ok
12:30:03.0990 0x121c [ 5C8F604F6DC74177CDD8372D7B1ADFF0, C1DE9A37A7A01CCCBFCE13C1E5B26683F620AB21EDA5A14C82022E2F49C84484 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
12:30:04.0006 0x121c usbvideo - ok
12:30:04.0053 0x121c [ 1A20F03700D2B2ED775E38D751EF2F63, 76F8BE9F412D4397437E60A7E6231C80EA9B4F5436C9A8FAB967C78604994AE9 ] USBXHCI C:\Windows\System32\drivers\USBXHCI.SYS
12:30:04.0068 0x121c USBXHCI - ok
12:30:04.0084 0x121c [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] VaultSvc C:\Windows\system32\lsass.exe
12:30:04.0084 0x121c VaultSvc - ok
12:30:04.0100 0x121c [ FEB26E3B8345A7E8D62F945C4AE86562, 3AAFE87C402FC8E92542DFE60EC9540559863065F88D429A16D7B1BF829223FF ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
12:30:04.0100 0x121c vdrvroot - ok
12:30:04.0209 0x121c [ 8A4D808D1EC7C1C47B2C8BF488A9A07A, 63C07312ADB6F8A8BDE93361C30AC63DAB4DE1141AF54630EEF11E54B0BF983D ] vds C:\Windows\System32\vds.exe
12:30:04.0256 0x121c vds - ok
12:30:04.0303 0x121c [ A026EDEAA5EECAE0B08E2748B616D4BD, 2525A54DC7F49DDFBB999C22BF3FAB6D9E9F70C0806E58D81E90AC59F9F46089 ] VerifierExt C:\Windows\system32\drivers\VerifierExt.sys
12:30:04.0318 0x121c VerifierExt - ok
12:30:04.0396 0x121c [ C06E8481E068F170A258441639AC5792, 2F550530BACB511A195D5047F003B01CB6E04FA9A0DCCF638CB3D51FF5467DC7 ] vhdmp C:\Windows\System32\drivers\vhdmp.sys
12:30:04.0428 0x121c vhdmp - ok
12:30:04.0443 0x121c [ 06D38968028E9AB19DE9B618C7B6D199, 62022297A47F440D1C82CA0B0E57C0C8E9D5033D83DD3B40492B218DF65EBF68 ] viaide C:\Windows\system32\drivers\viaide.sys
12:30:04.0443 0x121c viaide - ok
12:30:04.0475 0x121c [ 511AD3FF957A0127E6BD336FF6F89C38, 55325BFD0857A1204F7F6F8ED8C91C07B0E20A50402105708E7365ECD9E25A21 ] vmbus C:\Windows\system32\drivers\vmbus.sys
12:30:04.0490 0x121c vmbus - ok
12:30:04.0506 0x121c [ DA40BEA0A863CE768C940CA9723BF81F, 567C0C3F422325635808B0CF76E05D3B6187F96845C33F85F92F98C9FE53A5B8 ] VMBusHID C:\Windows\System32\drivers\VMBusHID.sys
12:30:04.0506 0x121c VMBusHID - ok
12:30:04.0568 0x121c [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicguestinterface C:\Windows\System32\ICSvc.dll
12:30:04.0584 0x121c vmicguestinterface - ok
12:30:04.0600 0x121c [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicheartbeat C:\Windows\System32\ICSvc.dll
12:30:04.0600 0x121c vmicheartbeat - ok
12:30:04.0615 0x121c [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmickvpexchange C:\Windows\System32\ICSvc.dll
12:30:04.0615 0x121c vmickvpexchange - ok
12:30:04.0631 0x121c [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicrdv C:\Windows\System32\ICSvc.dll
12:30:04.0631 0x121c vmicrdv - ok
12:30:04.0646 0x121c [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicshutdown C:\Windows\System32\ICSvc.dll
12:30:04.0646 0x121c vmicshutdown - ok
12:30:04.0678 0x121c [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmictimesync C:\Windows\System32\ICSvc.dll
12:30:04.0678 0x121c vmictimesync - ok
12:30:04.0693 0x121c [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicvss C:\Windows\System32\ICSvc.dll
12:30:04.0693 0x121c vmicvss - ok
12:30:04.0740 0x121c [ 55D7D963DE85162F1C49721E502F9744, 5AD34D6DB707EF3E5242BD8CA67B21D6258EE7E7FC477D5227BD15500AE7F45F ] volmgr C:\Windows\system32\drivers\volmgr.sys
12:30:04.0740 0x121c volmgr - ok
12:30:04.0756 0x121c [ CCB9E901F7254BF96D28EB1B0E5329B7, F0E3CA4EFA544CDAEF4092284CF3EC7DF07F806A770285E281816457AD8813F5 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
12:30:04.0756 0x121c volmgrx - ok
12:30:04.0803 0x121c [ 64CA2B4A49A8EAF495E435623ECCE7DB, 81151F295A54DE2B8B88C7F48C86BF58CDFF96F98493509C06D6F41484594386 ] volsnap C:\Windows\system32\drivers\volsnap.sys
12:30:04.0803 0x121c volsnap - ok
12:30:04.0818 0x121c [ EF31713EE4C7CCFE4049F7E7F15645A2, 35D198D3F1061E19A7EF89FA1E75377049CD6BCA9702F8076B9F95BB8737E0D4 ] vpci C:\Windows\System32\drivers\vpci.sys
12:30:04.0834 0x121c vpci - ok
12:30:04.0850 0x121c [ 4539F45F9F4C9757A86A56C949421E07, DEC362314B2C66414F39354AFE79C02B18BF4EEF90787FB58307F6EB62237E2C ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
12:30:04.0865 0x121c vsmraid - ok
12:30:04.0943 0x121c [ 94FAFD473CDD80CE19A21FB9503D7ED1, 953E5E8C753C0017E1258695A76F60CC05D283F7476B9D9C5C8AC78B8E3FCE18 ] VSS C:\Windows\system32\vssvc.exe
12:30:04.0975 0x121c VSS - ok
12:30:05.0021 0x121c [ 0849B7260F26FE05EA56DED0672E2F4B, 7EAC0E7988F45CB4133A15932955B7B03CE715C967A3BAC9999D81543EBCAEC5 ] VSTXRAID C:\Windows\system32\drivers\vstxraid.sys
12:30:05.0037 0x121c VSTXRAID - ok
12:30:05.0100 0x121c [ BE970C369E43B509C1EDA2B8FA7CECB0, 18951F2AA842A0795AA79A4E164EE925A35E6270EBE4C4CDB19D0A891830E383 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
12:30:05.0100 0x121c vwifibus - ok
12:30:05.0146 0x121c [ 35BF5C5F5E3C9902C98978C7640574DA, C61E50B04000DCEC72365723F0C0725C2E005529DAF2777A59E624C14DA29E55 ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
12:30:05.0162 0x121c vwififlt - ok
12:30:05.0225 0x121c [ DC821E811EFBB65CDD77FBB8B6ECA385, B7C8AACDF81DBA298F2F384983D36B269876C31F0398D89BF9070217A069B96F ] w32time C:\Windows\system32\w32time.DLL
12:30:05.0256 0x121c w32time - ok
12:30:05.0271 0x121c [ 0910AB9ED404C1434E2D0376C2AD5D8B, 62585CA5F1375BDA440D28D5DF1ADDC9DE3DDFA196D49BBFF3456A5A09EE1C6B ] WacomPen C:\Windows\System32\drivers\wacompen.sys
12:30:05.0271 0x121c WacomPen - ok
12:30:05.0318 0x121c [ 6505C9E72910F91D4C317EECF22D1DE6, 838BAEA6F0BBA916B3291EB165F65DA2F4EC35395678D450EEEB1E540A123FC4 ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys
12:30:05.0334 0x121c Wanarp - ok
12:30:05.0334 0x121c [ 6505C9E72910F91D4C317EECF22D1DE6, 838BAEA6F0BBA916B3291EB165F65DA2F4EC35395678D450EEEB1E540A123FC4 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
12:30:05.0349 0x121c Wanarpv6 - ok
12:30:05.0443 0x121c [ A81988DCC4FA440AA88B84CA452F5E22, 3573AAA09971E8ADB6FEFA778E02B2D8EE5E4249267CF37A524D9F019CC836FB ] wbengine C:\Windows\system32\wbengine.exe
12:30:05.0475 0x121c wbengine - ok
12:30:05.0490 0x121c [ 0F1DFA2FED73FA78B8C3CDE332A870F6, 1089F6F585F5350D349A640EBD3117832DF6B3657EB6667CB00AE217E04ACA17 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
12:30:05.0506 0x121c WbioSrvc - ok
12:30:05.0521 0x121c [ 0EAEC313B24837613621B4A2536ED382, 61C194ED7FA7D65BBE61A546D5FCA52F52AB08324E084D3EC23C9706E9BF0175 ] Wcmsvc C:\Windows\System32\wcmsvc.dll
12:30:05.0521 0x121c Wcmsvc - ok
12:30:05.0537 0x121c [ F6B4C2280FF7C7156AC8A4687B9DA35E, 1899D584D7469BB49355D84080051E2575B033E6312009D9C6C1DD3F7F9AA4C5 ] wcncsvc C:\Windows\System32\wcncsvc.dll
12:30:05.0553 0x121c wcncsvc - ok
12:30:05.0600 0x121c [ B7BF1D783F5B2484E8CE1C0C78257F16, 468601199FCCF63DBAE86EE6B8825EA85B2A1EE177413353FFA2CC9CA5249FCD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
12:30:05.0600 0x121c WcsPlugInService - ok
12:30:05.0662 0x121c [ 1751F6B031ADAC34724511057D2E455D, BCBC77DE02718868302F7469E8FBB8F2E7E0F8A5D3E46A5B4D48713E829FBAF6 ] WdBoot C:\Windows\system32\drivers\WdBoot.sys
12:30:05.0662 0x121c WdBoot - ok
12:30:05.0709 0x121c [ CB6C63FF8342B467E2EF76E98D5B934D, BE017CE91E3BAB293DE6ECF143797CCE3F33CC63024437472B4E38C6961AD884 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
12:30:05.0725 0x121c Wdf01000 - ok
12:30:05.0740 0x121c [ D296D0F0DB2CD1504F90405603664493, 9531034AE2E027B5C7366713AA9003085501800B35F971D1CE7FFB8E5DAE3825 ] WdFilter C:\Windows\system32\drivers\WdFilter.sys
12:30:05.0756 0x121c WdFilter - ok
12:30:05.0803 0x121c [ F581F9C9D6953FABFA24E67105F0B614, 5A7BB72523D1C53BBE68700537D7AE0D150BC7E4B8227A916B2E29EE4CA267A9 ] WdiServiceHost C:\Windows\system32\wdi.dll
12:30:05.0818 0x121c WdiServiceHost - ok
12:30:05.0818 0x121c [ F581F9C9D6953FABFA24E67105F0B614, 5A7BB72523D1C53BBE68700537D7AE0D150BC7E4B8227A916B2E29EE4CA267A9 ] WdiSystemHost C:\Windows\system32\wdi.dll
12:30:05.0834 0x121c WdiSystemHost - ok
12:30:05.0850 0x121c [ 9F4DF0043965808973023A9B51A11136, 3A799125CBC5C214D9FBB91C348B39563B1FDB7403B520270752E9A177464723 ] WdNisDrv C:\Windows\system32\Drivers\WdNisDrv.sys
12:30:05.0850 0x121c WdNisDrv - ok
12:30:05.0881 0x121c WdNisSvc - ok
12:30:05.0943 0x121c [ 185E4111627F7AA6799E1366B5E91D65, 7A02C816DFBCCF47EDB49E5E2005A3D0B80719FAC94F9298D2DBAC63950EDA05 ] WebClient C:\Windows\System32\webclnt.dll
12:30:05.0959 0x121c WebClient - ok
12:30:05.0990 0x121c [ 384E1D04FE20845B2559D292F17A9FA1, AD3B0B2B2219691AC30FEEC8AFDB3BBB74B51BB7D02038AE2B4DEA514E245315 ] Wecsvc C:\Windows\system32\wecsvc.dll
12:30:05.0990 0x121c Wecsvc - ok
12:30:06.0037 0x121c [ 455014F4E48B67EBE0F032E2B0E06BF2, A36435784A034B27056A0E606683A20C69F1B0AB2B6BAEDEAEAA190F6287CAEF ] WEPHOSTSVC C:\Windows\system32\wephostsvc.dll
12:30:06.0053 0x121c WEPHOSTSVC - ok
12:30:06.0115 0x121c [ F13DBA57CEA9B7074B95EDCA6AD2635E, 1D9BA4841EF1343A5D9096B5FE27FC65DC1901D6683DD13516171638549666B5 ] wercplsupport C:\Windows\System32\wercplsupport.dll
12:30:06.0115 0x121c wercplsupport - ok
12:30:06.0162 0x121c [ FD7E58B6AA3EABF2D12B9762A20E11E4, 4C5E2E246C5C70074866BB3DBC2AAF483ECE4345004CCB8D1FE285047268685D ] WerSvc C:\Windows\System32\WerSvc.dll
12:30:06.0178 0x121c WerSvc - ok
12:30:06.0225 0x121c [ BAB713B409258DB7B5D9F9693F802B0E, C0D0391EC4FDC07E0A07F4EEB2DC9CC5B2BE5D2E292E7D01929E8D39D6F73EA5 ] WFPLWFS C:\Windows\system32\DRIVERS\wfplwfs.sys
12:30:06.0240 0x121c WFPLWFS - ok
12:30:06.0256 0x121c [ 8C840E1FD7584E74BD0CC1EA581EC187, 148E534A94B4882E7396B13FABE17407802292E7890713540080D03D5629C81D ] WiaRpc C:\Windows\System32\wiarpc.dll
12:30:06.0271 0x121c WiaRpc - ok
12:30:06.0271 0x121c [ 5F66B7BB330AA80067FC66149A692620, 92C5D7115A168A23108B65EEEB5FBA8FA43D781855355792596D2419160263C2 ] WIMMount C:\Windows\system32\drivers\wimmount.sys
12:30:06.0287 0x121c WIMMount - ok
12:30:06.0287 0x121c WinDefend - ok
12:30:06.0381 0x121c [ 10DAD6A7FC617A221313BD584E3C3A00, F139B878668ECF38FE59831E8595A207D5CEEE76C6FFDA8C9F735435E601A763 ] WinHttpAutoProxySvc C:\Windows\system32\winhttp.dll
12:30:06.0412 0x121c WinHttpAutoProxySvc - ok
12:30:06.0475 0x121c [ FC8BD690321216C32BB58B035B6D5674, D61698DB19D9DB2593B60B6BA13F7B7735667206F41D751D507135469D6D3CDD ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
12:30:06.0490 0x121c Winmgmt - ok
12:30:06.0600 0x121c [ 75436315AA383CF527695C6D49D0CA59, E3D55F2ACBD45D4D031FA6CA799394459C89BE50FF6ADE4FE36F2CAB2D2E63D0 ] WinRM C:\Windows\system32\WsmSvc.dll
12:30:06.0709 0x121c WinRM - ok
12:30:06.0756 0x121c [ AC263C2F66405589528995AA41040599, 81B46E551D6130A2C3D113EC3B563CEDB5A06BB340986C0E03136CE5BE729481 ] WinUsb C:\Windows\System32\drivers\WinUsb.sys
12:30:06.0756 0x121c WinUsb - ok
12:30:06.0818 0x121c [ DC079BA8390089E4EBCA63D27EEA3ECB, 4D549217A68292E2B16C09FD9F84317011EE54A2DAF4E2AB85554267DF0D3249 ] WlanSvc C:\Windows\System32\wlansvc.dll
12:30:06.0850 0x121c WlanSvc - ok
12:30:06.0896 0x121c [ 06BF5897949A8F24893F792E876B71F5, 9D3719492A86BF52A56E2EA798FD6FDB5862A03F6D360FCC4B0CEA9BE9792AE4 ] wlidsvc C:\Windows\system32\wlidsvc.dll
12:30:06.0928 0x121c wlidsvc - ok
12:30:06.0943 0x121c [ 2834D9D3B4F554A39C72F00EA3F0E128, D10124343C67FE9A0B711AD569BB8080495FCEA0ECEF9AC3F3FBD6865F436A44 ] WmiAcpi C:\Windows\System32\drivers\wmiacpi.sys
12:30:06.0943 0x121c WmiAcpi - ok
12:30:06.0990 0x121c [ B96F7A1236C3F21212DE2C40A3DDB005, 5A29EBB6DA036E303611EB1304192655021405BB05452FD37886DDE604FF0D9D ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
12:30:06.0990 0x121c wmiApSrv - ok
12:30:07.0006 0x121c WMPNetworkSvc - ok
12:30:07.0068 0x121c [ 7FC5667DF73D4B04AA457CC3A4180E09, CB7B014945DCA16B6D120DBE0E5876C4C867A4ACD3C3536AEADC14B908613D4E ] Wof C:\Windows\system32\drivers\Wof.sys
12:30:07.0068 0x121c Wof - ok
12:30:07.0115 0x121c [ 588040D595BBF0856CA1ADD941A8ED17, CBC92BB5453FE1BEA6F33239B7CE884F312559591383408EA5F95A006156C5D3 ] workfolderssvc C:\Windows\system32\workfolderssvc.dll
12:30:07.0162 0x121c workfolderssvc - ok
12:30:07.0209 0x121c [ A2468CC3509394A33C4C32F99563D845, 62690C7D41F382DF74B8F4B942647842858E37DE35FF2DE028192E4D09ABB2C5 ] wpcfltr C:\Windows\system32\DRIVERS\wpcfltr.sys
12:30:07.0225 0x121c wpcfltr - ok
12:30:07.0271 0x121c [ 19F4DF69876DA7E9C4965351560FE6B7, 127247A7964F55EE3AF842D25120F5ACD387632BEE2BF3D28FAC05840CEA19BA ] WPCSvc C:\Windows\System32\wpcsvc.dll
12:30:07.0287 0x121c WPCSvc - ok
12:30:07.0334 0x121c [ 2ADE11F3D84709C5F6781E4C59F11683, F003C43396CF8FCF44EAB87583650DB4D2A233322D28D6A78D1694945D9073BB ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
12:30:07.0350 0x121c WPDBusEnum - ok
12:30:07.0365 0x121c [ 9F2904B55F6CECCD1A8D986B5CE2609A, E19ED4DD3CEF3A22C058FC324824604FB3FC98A029C94E6C2A3389F938D680B6 ] WpdUpFltr C:\Windows\system32\drivers\WpdUpFltr.sys
12:30:07.0365 0x121c WpdUpFltr - ok
12:30:07.0381 0x121c [ AE072B0339D0A18E455DC21666CAD572, AB1DAEA25E2C7AD610818D4B4783F6D4190D85EBB3963BBAD410E8CEA7899EDB ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
12:30:07.0381 0x121c ws2ifsl - ok
12:30:07.0428 0x121c [ 5596C0960ED6ED7494BF2A55DE428684, C95CF09A657F37F421CC80E16F2F95B8EC59A8D5D48F104551155EAC8E53DCB2 ] wscsvc C:\Windows\System32\wscsvc.dll
12:30:07.0443 0x121c wscsvc - ok
12:30:07.0475 0x121c [ F586F3F1BF962FE9AE4316E0D896B22F, 8D0AD48D79294567123D943D0F5B6D5A32D7A82B129A24DC821D3095AFAA100B ] WSDPrintDevice C:\Windows\System32\drivers\WSDPrint.sys
12:30:07.0475 0x121c WSDPrintDevice - ok
12:30:07.0490 0x121c WSearch - ok
12:30:07.0631 0x121c [ 6B2D71124C1EA86B74412F414C42431D, 078CC6C9667EF6BDA3E6900BC26A5A5B030CAA66928A6BBB7B7DC43C5C199EDC ] WSService C:\Windows\System32\WSService.dll
12:30:07.0740 0x121c WSService - ok
12:30:07.0896 0x121c [ 5F3D70B19BCAC985DA90F22CA2FF45E4, BBD82BAEF0DCA2C6361F8D1ADF5BED36D0F1AB1A2AEADB0E4526B917F40C2E52 ] wuauserv C:\Windows\system32\wuaueng.dll
12:30:08.0021 0x121c wuauserv - ok
12:30:08.0084 0x121c [ 481286719402E4BAEFEA0604AB1B5113, F3CF65DF2AB39F79AE4C1335831408418E40726706E0242677E8B96B0FAD988F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
12:30:08.0100 0x121c WudfPf - ok
12:30:08.0115 0x121c [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFRd C:\Windows\System32\drivers\WUDFRd.sys
12:30:08.0115 0x121c WUDFRd - ok
12:30:08.0131 0x121c [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFSensorLP C:\Windows\System32\drivers\WUDFRd.sys
12:30:08.0146 0x121c WUDFSensorLP - ok
12:30:08.0193 0x121c [ 51D28F7F1F888DDCF2C67DCF3B79A5D3, 74FF2936AFCEB9A36175D5B00EB91A5AD614B52BE3FB3FA9B994A025A484D2B7 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
12:30:08.0193 0x121c wudfsvc - ok
12:30:08.0193 0x121c [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFWpdFs C:\Windows\System32\drivers\WUDFRd.sys
12:30:08.0209 0x121c WUDFWpdFs - ok
12:30:08.0209 0x121c [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFWpdMtp C:\Windows\System32\drivers\WUDFRd.sys
12:30:08.0209 0x121c WUDFWpdMtp - ok
12:30:08.0271 0x121c [ A0900F8F628B5AF6841414EB3CF11E50, 8A531F2472FF4B4D895D469D28C215C834ECADBEF539894B8F3F606079A86184 ] WwanSvc C:\Windows\System32\wwansvc.dll
12:30:08.0287 0x121c WwanSvc - ok
12:30:08.0287 0x121c ================ Scan global ===============================
12:30:08.0318 0x121c [ 243F54DBA6EB48A369CA465E263ABA4A, 9D9F9DE783D000F3EA130EB68FD71319F21E4F1CD4232FB8B2F8A9A67E08F5F4 ] C:\Windows\system32\basesrv.dll
12:30:08.0381 0x121c [ EAB311B0A7A8EA0346F14F08D4BC8F46, 11168E4074679F8A69DA714C0ABD0C68BA49D171B379343F14783C9C563202CA ] C:\Windows\system32\winsrv.dll
12:30:08.0459 0x121c [ 3600ED7EA8AED849E20700551C0BD63B, 4A8C346C1646E80B58EF93F87F915A41E05CA2E993BB1C96955AE62A0669AF66 ] C:\Windows\system32\sxssrv.dll
12:30:08.0537 0x121c [ E0C7813A97CA7947FF5C18A8F3B61A45, 083BB4F3B20419C87DB656F1465E5F782ACDE76838CDE6207F26AAD035C69DE0 ] C:\Windows\system32\services.exe
12:30:08.0537 0x121c [ Global ] - ok
12:30:08.0537 0x121c ================ Scan MBR ==================================
12:30:08.0553 0x121c [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
12:30:08.0709 0x121c \Device\Harddisk0\DR0 - ok
12:30:08.0709 0x121c [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
12:30:08.0834 0x121c \Device\Harddisk1\DR1 - ok
12:30:08.0834 0x121c ================ Scan VBR ==================================
12:30:08.0834 0x121c [ AE7A6F6F316973717CFAA6EE40B24978 ] \Device\Harddisk0\DR0\Partition1
12:30:08.0850 0x121c \Device\Harddisk0\DR0\Partition1 - ok
12:30:08.0850 0x121c [ 62383CEE5D7B47C0650BC2B51E2A9668 ] \Device\Harddisk0\DR0\Partition2
12:30:08.0865 0x121c \Device\Harddisk0\DR0\Partition2 - ok
12:30:08.0865 0x121c [ 7419ACD39CFF24EEE1507A86C0F323F9 ] \Device\Harddisk1\DR1\Partition1
12:30:08.0881 0x121c \Device\Harddisk1\DR1\Partition1 - ok
12:30:08.0881 0x121c [ 7A28226F8C0913318BEE43E96E0DF6A6 ] \Device\Harddisk1\DR1\Partition2
12:30:08.0881 0x121c \Device\Harddisk1\DR1\Partition2 - ok
12:30:08.0881 0x121c [ A7F820AE850D530B1390C3E07DA040B9 ] \Device\Harddisk1\DR1\Partition3
12:30:08.0912 0x121c \Device\Harddisk1\DR1\Partition3 - ok
12:30:08.0912 0x121c ================ Scan generic autorun ======================
12:30:08.0975 0x121c [ 6C308D32AFA41D26CE2A0EA8F7B79565, 5CC2C563D89257964C4B446F54AFE1E57BBEE49315A9FC001FF5A6BCB6650393 ] C:\Windows\system32\rundll32.exe
12:30:08.0975 0x121c ShadowPlay - ok
12:30:09.0131 0x121c [ 046DDF9B31BEC14D03CCC97DD728A4D1, D29F49F870B27553E13F9C1486D9B27A27C41FBEC7ACEC77EDFD5552C941E710 ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
12:30:09.0146 0x121c NvBackend - ok
12:30:09.0240 0x121c [ 61E4289E91E88C90478D7F4BEB10DCF7, 1D0F4034E0111CF5758F470C15A22A0A28EB8269CB5BF07222C9C0FB07A15C55 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
12:30:09.0256 0x121c APSDaemon - ok
12:30:09.0350 0x121c [ 271B0D188430670509CB9943D5229205, 74CB5A9D8B5988AE08C0F65C601FC54F8745BAB6825B6FEEFBA8F068D656D8D7 ] C:\Program Files (x86)\QuickTime\QTTask.exe
12:30:09.0365 0x121c QuickTime Task - ok
12:30:09.0490 0x121c [ 112067B1E0C808FD01AB4E4E1FF32E95, 9445BC48E49BB04750869E21AA2E55F2A8D4184B936CDA5B0C82323F1DAD4731 ] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
12:30:09.0490 0x121c DivXMediaServer - ok
12:30:09.0615 0x121c [ 16AFB34618E1286FF856DC600AC49C79, 431EC110507685A0F4472EAE35383B4C1E3DC0B56E01CDECFB18F753181DC995 ] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
12:30:09.0646 0x121c DivXUpdate - ok
12:30:09.0693 0x121c [ EBC0E8C0A4DDA2C32A7D5863462A321A, 2F410138DB66D0219254339F1F098E401CEDAA032596F1F67BC54F394256FC68 ] C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe
12:30:09.0693 0x121c amd_dc_opt - ok
12:30:09.0787 0x121c [ 3E04F1E482357B1FC8B088197C3D9FF8, 85524ADDC27ADC831EBBD24E079B412CFDC69E5F594BD153319087665A28D546 ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
12:30:09.0818 0x121c Adobe ARM - ok
12:30:09.0975 0x121c [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] C:\Users\Daniel\AppData\Local\Google\Update\GoogleUpdate.exe
12:30:09.0990 0x121c Google Update - ok
12:30:10.0193 0x121c [ 08DFA176E4FC0E63ACD8EC854449D2B0, B8CA204C3F318CD9D12F61CDDA5C66184A48D6206F019AD11DB2605FDBEB288D ] C:\Users\Daniel\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
12:30:10.0209 0x121c Spotify Web Helper - ok
12:30:10.0412 0x121c [ 0431B48CF752D88C33C4BA39BA64CCB2, 4D65608DB7B460E4797285D8FE305E407C6FA57663AF54500E1A730BBBC433FF ] C:\Users\Daniel\AppData\Roaming\Spotify\spotify.exe
12:30:10.0568 0x121c Spotify - ok
12:30:10.0756 0x121c [ 843401664451C560582F445DE7333E15, 31D94EB408B4AB9B4F754269D9907AE9F7D227E75C03EE4C67D0A87B8D8F6307 ] C:\Users\Daniel\Documents\RCA easyRip\EZDock.exe
12:30:10.0771 0x121c Easy Dock - ok
12:30:10.0834 0x121c Skype - ok
12:30:10.0990 0x121c [ 7E6B4AD487ED241D8224108E8E86A351, 8246F75DF64BBCC35CDC8DFF2F5157AD9523179344AC0517D42BAC99F2E87E8D ] C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_17_0_0_169_Plugin.exe
12:30:11.0021 0x121c FlashPlayerUpdate - ok
12:30:11.0021 0x121c Waiting for KSN requests completion. In queue: 118
12:30:12.0037 0x121c Waiting for KSN requests completion. In queue: 118
12:30:13.0053 0x121c Waiting for KSN requests completion. In queue: 118
12:30:14.0115 0x121c AV detected via SS2: Ad-Aware Antivirus, C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.6.306.7947\AdAwareSecurityCenter.exe ( 11.6.306.7947 ), 0x41000 ( enabled : updated )
12:30:14.0146 0x121c AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.7.205.0 ), 0x60100 ( disabled : updated )
12:30:14.0146 0x121c FW detected via SS2: Ad-Aware Firewall, C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.6.306.7947\AdAwareSecurityCenter.exe ( 11.6.306.7947 ), 0x41010 ( enabled )
12:30:16.0553 0x121c ============================================================
12:30:16.0553 0x121c Scan finished
12:30:16.0553 0x121c ============================================================
12:30:16.0568 0x2d1c Detected object count: 0
12:30:16.0568 0x2d1c Actual detected object count: 0
12:30:29.0631 0x0d3c Deinitialize success

Share this post


Link to post
Share on other sites

Nothing dangerous was detected by Eset's scanner and TDSSKiller.

 

Let us concentrate on Firefox. It might be an extension to it that injects ads in the web pages.

Please refresh Firefox to remove all add-ons and extensions : https://support.mozilla.org/en-US/kb/reset-preferences-fix-problems

Install only those that you really need and only one at a time to be able to see if ads are added by one of them.

Share this post


Link to post
Share on other sites

Refreshed and problem still exists. Also deleted the prf.js file as they talked about on the second version. Acted like it was running for the first time when I opened it after doing that but same issue still there. ... Sigh. Also I am going to need java at some point after we get things fixed to use my streaming videos in my bar review class. Likely more people than not need it now actually as any site that streams videos probably uses at least javascript...

 

Thanks again for all your help.

Share this post


Link to post
Share on other sites

You don't need to have Java installed to show web pages with Javascript, since Java and Javascript are two different programming languages. The browsers have built-in interpretation of Javascript code.

 

You're welcome :)

 

1. Please, start FRST.

Select Addition.txt but no other options.

Scan with it and attach the two new logs.

 

 

2. Please, save AdwCleaner by Xplode on the desktop: https://toolslib.net/downloads/viewdownload/1-adwcleaner/

Turn off all programs, including browsers.
Double-click on AdwCleaner to start the program.

Click on the Scan button.
Wait until the search has finished.

Click on the Log file button.
A report will be displayed, copy its content and paste into your reply.
If the report isn't displayed, it's available as C:\AdwCleaner\AdwCleaner[R0].txt.

Share this post


Link to post
Share on other sites
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 29-05-2015

Ran by Daniel (administrator) on PC on 31-05-2015 01:13:13

Running from C:\Users\Daniel\Downloads

Loaded Profiles: Daniel (Available Profiles: Daniel)

Platform: Windows 8.1 (X64) OS Language: English (United States)

Internet Explorer Version 11 (Default browser: Chrome)

Boot Mode: Normal



==================== Processes (All) =========================


(Microsoft Corporation) C:\Windows\System32\smss.exe

(Microsoft Corporation) C:\Windows\System32\csrss.exe

(Microsoft Corporation) C:\Windows\System32\wininit.exe

(Microsoft Corporation) C:\Windows\System32\services.exe

(Microsoft Corporation) C:\Windows\System32\lsass.exe

(Microsoft Corporation) C:\Windows\System32\svchost.exe

(Microsoft Corporation) C:\Windows\System32\svchost.exe

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe

(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

(Microsoft Corporation) C:\Windows\System32\svchost.exe

(Microsoft Corporation) C:\Windows\System32\svchost.exe

(Microsoft Corporation) C:\Windows\System32\svchost.exe

(Microsoft Corporation) C:\Windows\System32\svchost.exe

(Microsoft Corporation) C:\Windows\System32\svchost.exe

(Microsoft Corporation) C:\Windows\System32\spoolsv.exe

(Microsoft Corporation) C:\Windows\System32\svchost.exe

(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

() C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe

(Microsoft Corporation) C:\Windows\System32\svchost.exe

(Microsoft Corporation) C:\Windows\System32\dasHost.exe

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe

(Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe

() C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.6.306.7947\AdAwareService.exe

(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe

(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe

(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe

(Realtek) C:\Program Files (x86)\INTELLINET\11n USB Wireless LAN Utility\RtlService.exe

(Microsoft Corporation) C:\Windows\System32\svchost.exe

(Microsoft Corporation) C:\Windows\System32\svchost.exe

(Microsoft Corporation) C:\Windows\System32\svchost.exe

(Microsoft Corporation) C:\Windows\System32\WUDFHost.exe

(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe

(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

(Microsoft Corporation) C:\Windows\System32\svchost.exe

(Microsoft Corporation) C:\Windows\System32\dllhost.exe

(Microsoft Corporation) C:\Windows\System32\csrss.exe

(Microsoft Corporation) C:\Windows\System32\winlogon.exe

(Microsoft Corporation) C:\Windows\System32\dwm.exe

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe

(Microsoft Corporation) C:\Windows\explorer.exe

(Realtek Semiconductor Corp.) C:\Program Files (x86)\INTELLINET\11n USB Wireless LAN Utility\RtWLan.exe

(Microsoft Corporation) C:\Windows\System32\taskhostex.exe

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe

(Microsoft Corporation) C:\Windows\System32\InputMethod\JPN\JpnIME.exe

(Microsoft Corporation) C:\Windows\System32\conhost.exe

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe

(Microsoft Corporation) C:\Windows\System32\conhost.exe

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe

(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe

(http://tortoisesvn.net) C:\Program Files\TortoiseSVN\bin\TSVNCache.exe

() C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.6.306.7947\AdAwareTray.exe

(Spotify Ltd) C:\Users\Daniel\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe

() C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe

(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe

(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe

(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe

(http://tortoisesvn.net) C:\Program Files\TortoiseSVN\bin\TSVNCache.exe

(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe

(Microsoft Corporation) C:\Windows\System32\SearchIndexer.exe

(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe

(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe

(Microsoft Corporation) C:\Windows\System32\taskhost.exe

(Microsoft Corporation) C:\Windows\System32\taskhostex.exe

(Microsoft Corporation) C:\Windows\System32\taskhost.exe

(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20856_x64__8wekyb3d8bbwe\livecomm.exe

(Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe

(Microsoft Corporation) C:\Windows\System32\RuntimeBroker.exe

(Microsoft Corporation) C:\Windows\System32\SearchProtocolHost.exe

(Microsoft Corporation) C:\Windows\System32\SearchFilterHost.exe

(Microsoft Corporation) C:\Windows\System32\audiodg.exe

(Microsoft Corporation) C:\Windows\System32\wbem\WmiPrvSE.exe

(Farbar) C:\Users\Daniel\Downloads\FRST64.exe


==================== Registry (All) ===========================


(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)


HKLM\...\Run: [shadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart

HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2685072 2015-05-01] (NVIDIA Corporation)

HKLM\...\Run: [] => [X]

HKLM\...\Run: [AdAwareTray] => C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.6.306.7947\AdAwareTray.exe [9566192 2015-03-10] ()

HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)

HKLM-x32\...\Run: [Easy Dock] => [X]

HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.)

HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [448856 2014-08-19] (DivX, LLC)

HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2014-01-10] ()

HKLM-x32\...\Run: [amd_dc_opt] => C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [77824 2008-07-22] (AMD)

HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)

HKLM\...\Winlogon: [userinit] C:\Windows\system32\userinit.exe, [26112 2014-10-28] (Microsoft Corporation)

HKLM-x32\...\Winlogon: [userinit] C:\Windows\sysWOW64\userinit.exe [22528 2014-10-28] (Microsoft Corporation)

HKLM\...\Winlogon: [shell] explorer.exe [2501368 2015-01-27] (Microsoft Corporation)

HKLM-x32\...\Winlogon: [shell] explorer.exe [2207488 2015-01-27] (Microsoft Corporation)

Winlogon\Notify\GoToAssist: C:\Program Files (x86)\Citrix\GoToAssist Corporate\1121\G2AWinLogon_x64.dll (Citrix Online, a division of Citrix Systems, Inc.)

HKLM\...\Policies\Explorer: [ForceActiveDesktopOn] 0

HKLM\...\Policies\Explorer: [NoActiveDesktopChanges] 1

HKLM\...\Policies\Explorer: [NoActiveDesktop] 1

HKU\S-1-5-21-4289144934-992402691-377659798-1001\...\Run: [Google Update] => C:\Users\Daniel\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2014-01-29] (Google Inc.)

HKU\S-1-5-21-4289144934-992402691-377659798-1001\...\Run: [spotify Web Helper] => C:\Users\Daniel\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1676344 2015-02-26] (Spotify Ltd)

HKU\S-1-5-21-4289144934-992402691-377659798-1001\...\Run: [spotify] => C:\Users\Daniel\AppData\Roaming\Spotify\spotify.exe [6737976 2015-02-26] (Spotify Ltd)

HKU\S-1-5-21-4289144934-992402691-377659798-1001\...\Run: [Easy Dock] => C:\Users\Daniel\Documents\RCA easyRip\EZDock.exe [585728 2012-06-29] (Audiovox Electronics Corp.)

HKU\S-1-5-21-4289144934-992402691-377659798-1001\...\Run: [skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [31087200 2015-01-23] (Skype Technologies S.A.)

HKU\S-1-5-21-4289144934-992402691-377659798-1001\...\RunOnce: [FlashPlayerUpdate] => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_17_0_0_169_Plugin.exe [927920 2015-04-14] (Adobe Systems Incorporated)

HKU\S-1-5-21-4289144934-992402691-377659798-1001\...\MountPoints2: {5a35147f-7469-11e3-824b-806e6f6e6963} - "D:\setup.exe"

HKU\S-1-5-21-4289144934-992402691-377659798-1001\...\MountPoints2: {db60c81e-7f06-11e4-8286-d850e640e04f} - "J:\setup.exe"

HKU\S-1-5-21-4289144934-992402691-377659798-1001\...\MountPoints2: {db60c82b-7f06-11e4-8286-d850e640e04f} - "K:\setup.exe"

HKU\S-1-5-21-4289144934-992402691-377659798-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Ribbons.scr [132608 2014-10-28] (Microsoft Corporation)

Lsa: [Authentication Packages] msv1_0

Lsa: [Notification Packages] scecli

SecurityProviders: credssp.dll

Startup: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-02-15]

ShortcutTarget: Dropbox.lnk -> C:\Users\Daniel\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)

Startup: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\RCA Detective.lnk [2014-05-31]

ShortcutTarget: RCA Detective.lnk -> C:\Users\Daniel\Documents\RCA Detective\RCADetective.exe (Audiovox Accessories Corp.)

SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No File

SSODL-x32: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No File

ShellIconOverlayIdentifiers: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-04-14] (Microsoft Corporation)

ShellIconOverlayIdentifiers: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-04-14] (Microsoft Corporation)

ShellIconOverlayIdentifiers: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-04-14] (Microsoft Corporation)

ShellIconOverlayIdentifiers: [1TortoiseNormal] -> {C5994560-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (http://tortoisesvn.net)

ShellIconOverlayIdentifiers: [2TortoiseModified] -> {C5994561-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (http://tortoisesvn.net)

ShellIconOverlayIdentifiers: [3TortoiseConflict] -> {C5994562-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (http://tortoisesvn.net)

ShellIconOverlayIdentifiers: [4TortoiseLocked] -> {C5994563-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (http://tortoisesvn.net)

ShellIconOverlayIdentifiers: [5TortoiseReadOnly] -> {C5994564-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (http://tortoisesvn.net)

ShellIconOverlayIdentifiers: [6TortoiseDeleted] -> {C5994565-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (http://tortoisesvn.net)

ShellIconOverlayIdentifiers: [7TortoiseAdded] -> {C5994566-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (http://tortoisesvn.net)

ShellIconOverlayIdentifiers: [8TortoiseIgnored] -> {C5994567-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (http://tortoisesvn.net)

ShellIconOverlayIdentifiers: [9TortoiseUnversioned] -> {C5994568-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (http://tortoisesvn.net)

ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-10] (Dropbox, Inc.)

ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-10] (Dropbox, Inc.)

ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-10] (Dropbox, Inc.)

ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-10] (Dropbox, Inc.)

ShellIconOverlayIdentifiers: [EnhancedStorageShell] -> {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D} => C:\Windows\System32\EhStorShell.dll [2014-10-28] (Microsoft Corporation)

ShellIconOverlayIdentifiers-x32: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-04-14] (Microsoft Corporation)

ShellIconOverlayIdentifiers-x32: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-04-14] (Microsoft Corporation)

ShellIconOverlayIdentifiers-x32: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-04-14] (Microsoft Corporation)

ShellIconOverlayIdentifiers-x32: [1TortoiseNormal] -> {C5994560-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (http://tortoisesvn.net)

ShellIconOverlayIdentifiers-x32: [2TortoiseModified] -> {C5994561-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (http://tortoisesvn.net)

ShellIconOverlayIdentifiers-x32: [3TortoiseConflict] -> {C5994562-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (http://tortoisesvn.net)

ShellIconOverlayIdentifiers-x32: [4TortoiseLocked] -> {C5994563-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (http://tortoisesvn.net)

ShellIconOverlayIdentifiers-x32: [5TortoiseReadOnly] -> {C5994564-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (http://tortoisesvn.net)

ShellIconOverlayIdentifiers-x32: [6TortoiseDeleted] -> {C5994565-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (http://tortoisesvn.net)

ShellIconOverlayIdentifiers-x32: [7TortoiseAdded] -> {C5994566-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (http://tortoisesvn.net)

ShellIconOverlayIdentifiers-x32: [8TortoiseIgnored] -> {C5994567-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (http://tortoisesvn.net)

ShellIconOverlayIdentifiers-x32: [9TortoiseUnversioned] -> {C5994568-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2011-06-13] (http://tortoisesvn.net)

ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-10] (Dropbox, Inc.)

ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-10] (Dropbox, Inc.)

ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Daniel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-10] (Dropbox, Inc.)

BootExecute: autocheck autochk *

AlternateShell: cmd.exe

GroupPolicy: Group Policy on Chrome detected <======= ATTENTION


==================== Internet (All) ===========================


HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank

HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank

HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =

HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =

HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =

HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =

HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm

HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

HKU\S-1-5-21-4289144934-992402691-377659798-1001\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\system32\blank.htm

HKU\S-1-5-21-4289144934-992402691-377659798-1001\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

HKU\S-1-5-21-4289144934-992402691-377659798-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank

HKU\S-1-5-21-4289144934-992402691-377659798-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://t.msn.com/

URLSearchHook: HKU\S-1-5-21-4289144934-992402691-377659798-1001 - Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\System32\ieframe.dll (Microsoft Corporation)

URLSearchHook: HKU\S-1-5-21-4289144934-992402691-377659798-1001 - Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll (Microsoft Corporation)

SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC

SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC

SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC

SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC

SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =

SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =

SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =

SearchScopes: HKU\S-1-5-21-4289144934-992402691-377659798-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC

SearchScopes: HKU\S-1-5-21-4289144934-992402691-377659798-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC

BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-03-10] (Microsoft Corporation)

BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation)

BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-04-14] (Microsoft Corporation)

BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2015-03-04] (Microsoft Corporation)

BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)

BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-04-14] (Microsoft Corporation)

DPF: HKLM {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab

Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll [2015-04-21] (Microsoft Corporation)

Handler-x32: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll [2015-04-21] (Microsoft Corporation)

Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\System32\urlmon.dll [2015-04-21] (Microsoft Corporation)

Handler-x32: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\SysWOW64\urlmon.dll [2015-04-21] (Microsoft Corporation)

Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\System32\msvidctl.dll [2014-10-28] (Microsoft Corporation)

Handler-x32: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysWOW64\msvidctl.dll [2014-10-28] (Microsoft Corporation)

Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll [2015-04-21] (Microsoft Corporation)

Handler-x32: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll [2015-04-21] (Microsoft Corporation)

Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll [2015-04-21] (Microsoft Corporation)

Handler-x32: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll [2015-04-21] (Microsoft Corporation)

Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll [2015-04-21] (Microsoft Corporation)

Handler-x32: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll [2015-04-21] (Microsoft Corporation)

Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll [2015-04-21] (Microsoft Corporation)

Handler-x32: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll [2015-04-21] (Microsoft Corporation)

Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll [2014-10-28] (Microsoft Corporation)

Handler-x32: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll [2014-10-28] (Microsoft Corporation)

Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll [2015-04-21] (Microsoft Corporation)

Handler-x32: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll [2015-04-21] (Microsoft Corporation)

Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll [2015-04-21] (Microsoft Corporation)

Handler-x32: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll [2015-04-21] (Microsoft Corporation)

Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll [2015-04-21] (Microsoft Corporation)

Handler-x32: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll [2015-04-21] (Microsoft Corporation)

Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\System32\inetcomm.dll [2015-04-21] (Microsoft Corporation)

Handler-x32: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\SysWOW64\inetcomm.dll [2015-04-21] (Microsoft Corporation)

Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll [2015-04-21] (Microsoft Corporation)

Handler-x32: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll [2015-04-21] (Microsoft Corporation)

Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll [2014-10-28] (Microsoft Corporation)

Handler-x32: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll [2014-10-28] (Microsoft Corporation)

Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-02-03] (Microsoft Corporation)

Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll [2015-04-21] (Microsoft Corporation)

Handler-x32: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll [2015-04-21] (Microsoft Corporation)

Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)

Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation)

Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)

Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\System32\msvidctl.dll [2014-10-28] (Microsoft Corporation)

Handler-x32: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\SysWOW64\msvidctl.dll [2014-10-28] (Microsoft Corporation)

Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll [2015-04-21] (Microsoft Corporation)

Handler-x32: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll [2015-04-21] (Microsoft Corporation)

Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll [2013-08-22] (Microsoft Corporation)

Filter-x32: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWOW64\mscoree.dll [2013-08-21] (Microsoft Corporation)

Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll [2013-08-22] (Microsoft Corporation)

Filter-x32: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWOW64\mscoree.dll [2013-08-21] (Microsoft Corporation)

Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - No File

Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll [2013-08-22] (Microsoft Corporation)

Filter-x32: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWOW64\mscoree.dll [2013-08-21] (Microsoft Corporation)

Winsock: Catalog5 01 C:\Windows\SysWOW64\napinsp.dll [55296 2015-03-10] (Microsoft Corporation)

Winsock: Catalog5 02 C:\Windows\SysWOW64\pnrpnsp.dll [70144 2015-03-10] (Microsoft Corporation)

Winsock: Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [70144 2015-03-10] (Microsoft Corporation)

Winsock: Catalog5 04 C:\Windows\SysWOW64\NLAapi.dll [65536 2015-01-13] (Microsoft Corporation)

Winsock: Catalog5 05 C:\Windows\SysWOW64\mswsock.dll [286208 2015-03-10] (Microsoft Corporation)

Winsock: Catalog5 06 C:\Windows\SysWOW64\winrnr.dll [23040 2015-03-10] (Microsoft Corporation)

Winsock: Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [286208 2015-03-10] (Microsoft Corporation)

Winsock: Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [286208 2015-03-10] (Microsoft Corporation)

Winsock: Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [286208 2015-03-10] (Microsoft Corporation)

Winsock: Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [286208 2015-03-10] (Microsoft Corporation)

Winsock: Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [286208 2015-03-10] (Microsoft Corporation)

Winsock: Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [286208 2015-03-10] (Microsoft Corporation)

Winsock: Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [286208 2015-03-10] (Microsoft Corporation)

Winsock: Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [286208 2015-03-10] (Microsoft Corporation)

Winsock: Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [286208 2015-03-10] (Microsoft Corporation)

Winsock: Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [286208 2015-03-10] (Microsoft Corporation)

Winsock: Catalog5-x64 01 C:\Windows\system32\napinsp.dll [69120 2015-03-10] (Microsoft Corporation)

Winsock: Catalog5-x64 02 C:\Windows\system32\pnrpnsp.dll [88576 2015-03-10] (Microsoft Corporation)

Winsock: Catalog5-x64 03 C:\Windows\system32\pnrpnsp.dll [88576 2015-03-10] (Microsoft Corporation)

Winsock: Catalog5-x64 04 C:\Windows\system32\NLAapi.dll [86016 2015-01-13] (Microsoft Corporation)

Winsock: Catalog5-x64 05 C:\Windows\System32\mswsock.dll [339456 2015-03-10] (Microsoft Corporation)

Winsock: Catalog5-x64 06 C:\Windows\System32\winrnr.dll [30720 2015-03-10] (Microsoft Corporation)

Winsock: Catalog9-x64 01 C:\Windows\system32\mswsock.dll [339456 2015-03-10] (Microsoft Corporation)

Winsock: Catalog9-x64 02 C:\Windows\system32\mswsock.dll [339456 2015-03-10] (Microsoft Corporation)

Winsock: Catalog9-x64 03 C:\Windows\system32\mswsock.dll [339456 2015-03-10] (Microsoft Corporation)

Winsock: Catalog9-x64 04 C:\Windows\system32\mswsock.dll [339456 2015-03-10] (Microsoft Corporation)

Winsock: Catalog9-x64 05 C:\Windows\system32\mswsock.dll [339456 2015-03-10] (Microsoft Corporation)

Winsock: Catalog9-x64 06 C:\Windows\system32\mswsock.dll [339456 2015-03-10] (Microsoft Corporation)

Winsock: Catalog9-x64 07 C:\Windows\system32\mswsock.dll [339456 2015-03-10] (Microsoft Corporation)

Winsock: Catalog9-x64 08 C:\Windows\system32\mswsock.dll [339456 2015-03-10] (Microsoft Corporation)

Winsock: Catalog9-x64 09 C:\Windows\system32\mswsock.dll [339456 2015-03-10] (Microsoft Corporation)

Winsock: Catalog9-x64 10 C:\Windows\system32\mswsock.dll [339456 2015-03-10] (Microsoft Corporation)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt

Tcpip\Parameters: [DhcpNameServer] 209.18.47.61 209.18.47.62

StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe


FireFox:

========

FF ProfilePath: C:\Users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\wsirvojl.default-1432842819509

FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_17_0_0_169.dll [2015-04-14] ()

FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC.)

FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)

FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll [2015-04-14] ()

FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC.)

FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll [2014-08-13] (DivX, LLC)

FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-03] (Intel Corporation)

FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-03] (Intel Corporation)

FF Plugin-x32: @mcafee.com/MVT -> C:\Program Files (x86)\McAfee\Supportability\MVT\NPMVTPlugin.dll [2014-12-08] (McAfee, Inc.)

FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-02-17] (Microsoft Corporation)

FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)

FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2014-01-09] (Microsoft Corporation)

FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-04-08] (NVIDIA Corporation)

FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-04-08] (NVIDIA Corporation)

FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-28] (Google Inc.)

FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-28] (Google Inc.)

FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-22] (VideoLAN)

FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-05-01] (Adobe Systems Inc.)

FF Plugin HKU\S-1-5-21-4289144934-992402691-377659798-1001: @citrixonline.com/appdetectorplugin -> C:\Users\Daniel\AppData\Local\Citrix\Plugins\104\npappdetector.dll [2015-05-02] (Citrix Online)

FF Plugin HKU\S-1-5-21-4289144934-992402691-377659798-1001: @talk.google.com/GoogleTalkPlugin -> C:\Users\Daniel\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2015-04-17] (Google)

FF Plugin HKU\S-1-5-21-4289144934-992402691-377659798-1001: @talk.google.com/O1DPlugin -> C:\Users\Daniel\AppData\Roaming\Mozilla\plugins\npo1d.dll [2015-04-17] (Google)

FF Plugin HKU\S-1-5-21-4289144934-992402691-377659798-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Daniel\AppData\Local\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-16] (Google Inc.)

FF Plugin HKU\S-1-5-21-4289144934-992402691-377659798-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Daniel\AppData\Local\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-16] (Google Inc.)

FF Plugin ProgramFiles/Appdata: C:\Users\Daniel\AppData\Roaming\mozilla\plugins\npatgpc.dll [2014-01-29] (Cisco WebEx LLC)

FF Plugin ProgramFiles/Appdata: C:\Users\Daniel\AppData\Roaming\mozilla\plugins\npgoogletalk.dll [2015-04-17] (Google)

FF Plugin ProgramFiles/Appdata: C:\Users\Daniel\AppData\Roaming\mozilla\plugins\npo1d.dll [2015-04-17] (Google)

FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom.xml [2015-05-17]

FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\bing.xml [2015-05-17]

FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\ddg.xml [2015-05-17]

FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay.xml [2015-05-17]

FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\google.xml [2015-05-17]

FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\twitter.xml [2015-05-17]

FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\wikipedia.xml [2015-05-17]

FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo.xml [2015-05-17]

FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [2015-05-17]

FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-05-01]

FF Extension: Firefox Helper - C:\Program Files (x86)\Mozilla Firefox\distribution\bundles\e58526c76809aa13e4a38405eba84817 [2015-05-17]

FF HKLM-x32\...\Mozilla Firefox 38.0.1\Extensions: [Components] - C:\Program Files (x86)\Mozilla Firefox\components

FF HKLM-x32\...\Mozilla Firefox 38.0.1\Extensions: [Plugins] - C:\Program Files (x86)\Mozilla Firefox\plugins

FF HKU\S-1-5-21-4289144934-992402691-377659798-1001\...\Mozilla Firefox 38.0.1\Extensions: [Components] - C:\Program Files (x86)\Mozilla Firefox\components

FF HKU\S-1-5-21-4289144934-992402691-377659798-1001\...\Mozilla Firefox 38.0.1\Extensions: [Plugins] - C:\Program Files (x86)\Mozilla Firefox\plugins

StartMenuInternet: FIREFOX.EXE - "C:\Program Files (x86)\Mozilla Firefox\firefox.exe"

FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\channel-prefs.js [2015-05-17]


Chrome:

=======

CHR Profile: C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default

CHR Extension: (Google Slides) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-05-28]

CHR Extension: (Google Docs) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-05-28]

CHR Extension: (Google Drive) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-05-28]

CHR Extension: (YouTube) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-05-28]

CHR Extension: (Google Search) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-05-28]

CHR Extension: (Google Sheets) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-05-28]

CHR Extension: (Bookmark Manager) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-05-28]

CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-05-28]

CHR Extension: (Google Wallet) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-05-28]

CHR Extension: (Gmail) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-05-28]

StartMenuInternet: Google Chrome - "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"


==================== Services (All) ========================


(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [81088 2014-12-19] (Adobe Systems Incorporated)

S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [268464 2015-04-14] (Adobe Systems Incorporated)

R3 AeLookupSvc; C:\Windows\System32\aelupsvc.dll [214528 2014-10-28] (Microsoft Corporation)

S3 ALG; C:\Windows\System32\alg.exe [96768 2014-10-28] (Microsoft Corporation)

S3 AppIDSvc; C:\Windows\System32\appidsvc.dll [39424 2014-10-28] (Microsoft Corporation)

R3 Appinfo; C:\Windows\System32\appinfo.dll [110080 2014-10-28] (Microsoft Corporation)

S3 AppReadiness; C:\Windows\system32\AppReadiness.dll [562688 2014-10-28] (Microsoft Corporation)

S3 AppXSvc; C:\Windows\system32\appxdeploymentserver.dll [1348096 2014-10-28] (Microsoft Corporation)

R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe [936728 2013-07-04] ()

R2 AudioEndpointBuilder; C:\Windows\System32\AudioEndpointBuilder.dll [229888 2014-12-05] (Microsoft Corporation)

R2 Audiosrv; C:\Windows\System32\Audiosrv.dll [911360 2014-10-28] (Microsoft Corporation)

S3 AxInstSV; C:\Windows\System32\AxInstSV.dll [111104 2014-10-28] (Microsoft Corporation)

S3 BDESVC; C:\Windows\System32\bdesvc.dll [348672 2014-10-28] (Microsoft Corporation)

R2 BFE; C:\Windows\System32\bfe.dll [845312 2014-10-28] (Microsoft Corporation)

R2 BITS; C:\Windows\System32\qmgr.dll [933376 2014-10-28] (Microsoft Corporation)

R2 BrokerInfrastructure; C:\Windows\System32\bisrv.dll [270336 2014-10-28] (Microsoft Corporation)

R3 Browser; C:\Windows\System32\browser.dll [135168 2014-10-28] (Microsoft Corporation)

S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-28] (Microsoft Corporation)

S3 bthserv; C:\Windows\system32\bthserv.dll [94720 2014-10-28] (Microsoft Corporation)

R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation)

R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation)

S3 CertPropSvc; C:\Windows\System32\certprop.dll [156160 2014-10-28] (Microsoft Corporation)

R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2736824 2015-04-07] (Microsoft Corporation)

R2 CryptSvc; C:\Windows\system32\cryptsvc.dll [131584 2014-10-28] (Microsoft Corporation)

S3 DAUpdaterSvc; C:\Program Files (x86)\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe [25832 2009-12-15] (BioWare)

R2 DcomLaunch; C:\Windows\system32\rpcss.dll [817664 2014-10-28] (Microsoft Corporation)

S3 defragsvc; C:\Windows\System32\defragsvc.dll [524288 2014-10-28] (Microsoft Corporation)

R2 DeviceAssociationService; C:\Windows\system32\das.dll [407040 2014-10-28] (Microsoft Corporation)

S3 DeviceInstall; C:\Windows\system32\umpnpmgr.dll [116736 2014-10-28] (Microsoft Corporation)

R2 Dhcp; C:\Windows\system32\dhcpcore.dll [365056 2014-10-28] (Microsoft Corporation)

R2 Dhcp; C:\Windows\SysWOW64\dhcpcore.dll [292864 2014-10-28] (Microsoft Corporation)

R2 DiagTrack; C:\Windows\system32\diagtrack.dll [1429504 2015-03-04] (Microsoft Corporation)

R2 Dnscache; C:\Windows\System32\dnsrslvr.dll [252416 2014-10-28] (Microsoft Corporation)

S3 dot3svc; C:\Windows\System32\dot3svc.dll [262144 2014-10-28] (Microsoft Corporation)

R2 DPS; C:\Windows\system32\dps.dll [174080 2014-10-28] (Microsoft Corporation)

S3 DsmSvc; C:\Windows\System32\DeviceSetupManager.dll [206848 2014-10-28] (Microsoft Corporation)

S3 Eaphost; C:\Windows\System32\eapsvc.dll [110592 2014-10-28] (Microsoft Corporation)

R2 EFS; C:\Windows\system32\efssvc.dll [41472 2014-10-28] (Microsoft Corporation)

R2 EventLog; C:\Windows\System32\wevtsvc.dll [1696256 2015-03-05] (Microsoft Corporation)

R2 EventSystem; C:\Windows\system32\es.dll [516608 2014-10-28] (Microsoft Corporation)

R2 EventSystem; C:\Windows\SysWOW64\es.dll [367616 2014-10-28] (Microsoft Corporation)

S3 Fax; C:\Windows\system32\fxssvc.exe [658944 2014-10-28] (Microsoft Corporation)

S3 fdPHost; C:\Windows\system32\fdPHost.dll [22016 2014-10-28] (Microsoft Corporation)

R3 FDResPub; C:\Windows\system32\fdrespub.dll [34816 2014-10-28] (Microsoft Corporation)

S3 fhsvc; C:\Windows\system32\fhsvc.dll [121856 2014-10-28] (Microsoft Corporation)

R2 FontCache; C:\Windows\system32\FntCache.dll [1387008 2015-04-09] (Microsoft Corporation)

S3 FontCache3.0.0.0; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [43696 2013-08-03] (Microsoft Corporation)

R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656 2015-05-01] (NVIDIA Corporation)

S3 GoToAssist; C:\Program Files (x86)\Citrix\GoToAssist Corporate\1121\G2AC_Service.exe [310080 2015-05-02] (Citrix Online, a division of Citrix Systems, Inc.)

S2 gpsvc; C:\Windows\System32\gpsvc.dll [1360896 2014-10-28] (Microsoft Corporation)

S2 gupdate; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-05-28] (Google Inc.)

S3 gupdatem; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-05-28] (Google Inc.)

S3 hidserv; C:\Windows\system32\hidserv.dll [33792 2014-10-28] (Microsoft Corporation)

S3 hidserv; C:\Windows\SysWOW64\hidserv.dll [30720 2014-10-28] (Microsoft Corporation)

S3 hkmsvc; C:\Windows\system32\kmsvc.dll [101376 2014-10-28] (Microsoft Corporation)

R3 HomeGroupListener; C:\Windows\system32\ListSvc.dll [275968 2014-10-28] (Microsoft Corporation)

R3 HomeGroupProvider; C:\Windows\system32\provsvc.dll [445952 2014-10-28] (Microsoft Corporation)

R3 HomeGroupProvider; C:\Windows\SysWOW64\provsvc.dll [366080 2014-10-28] (Microsoft Corporation)

S3 IEEtwCollectorService; C:\Windows\system32\IEEtwCollector.exe [114688 2014-10-31] (Microsoft Corporation)

R2 IKEEXT; C:\Windows\System32\ikeext.dll [1084416 2014-10-28] (Microsoft Corporation)

R2 Intel® Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel® Corporation) [File not signed]

S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel® Corporation)

R2 iphlpsvc; C:\Windows\System32\iphlpsvc.dll [926208 2014-10-28] (Microsoft Corporation)

R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [169432 2013-09-03] (Intel Corporation)

R3 KeyIso; C:\Windows\system32\keyiso.dll [62464 2014-10-28] (Microsoft Corporation)

R3 KeyIso; C:\Windows\SysWOW64\keyiso.dll [46592 2014-10-28] (Microsoft Corporation)

S3 KtmRm; C:\Windows\system32\msdtckrm.dll [373248 2014-10-28] (Microsoft Corporation)

R2 LanmanServer; C:\Windows\system32\srvsvc.dll [329216 2014-10-28] (Microsoft Corporation)

R2 LanmanWorkstation; C:\Windows\System32\wkssvc.dll [289280 2014-10-28] (Microsoft Corporation)

R2 LavasoftAdAwareService11; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.6.306.7947\AdAwareService.exe [720760 2015-03-10] ()

S3 lfsvc; C:\Windows\System32\GeofenceMonitorService.dll [521728 2014-10-28] (Microsoft Corporation)

S3 lfsvc; C:\Windows\SysWOW64\GeofenceMonitorService.dll [367104 2014-10-28] (Microsoft Corporation)

S3 lltdsvc; C:\Windows\System32\lltdsvc.dll [279040 2014-10-28] (Microsoft Corporation)

R2 lmhosts; C:\Windows\System32\lmhsvc.dll [24576 2014-10-28] (Microsoft Corporation)

R2 LMS; C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe [390616 2013-09-03] (Intel Corporation)

R2 LSM; C:\Windows\System32\lsm.dll [780800 2015-02-20] (Microsoft Corporation)

R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-04-14] (Malwarebytes Corporation)

R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)

R2 MMCSS; C:\Windows\system32\mmcss.dll [71168 2014-10-28] (Microsoft Corporation)

S3 MozillaMaintenance; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [148080 2015-05-17] (Mozilla Foundation)

R2 MpsSvc; C:\Windows\system32\mpssvc.dll [880640 2014-10-28] (Microsoft Corporation)

S3 MSDTC; C:\Windows\System32\msdtc.exe [144384 2014-10-28] (Microsoft Corporation)

S3 MSiSCSI; C:\Windows\system32\iscsiexe.dll [151040 2014-10-28] (Microsoft Corporation)

S3 msiserver; C:\Windows\System32\msiexec.exe [64512 2014-10-28] (Microsoft Corporation)

S3 msiserver; C:\Windows\SysWOW64\msiexec.exe [59904 2014-10-28] (Microsoft Corporation)

S3 napagent; C:\Windows\system32\qagentRT.dll [446464 2014-10-28] (Microsoft Corporation)

S3 NcaSvc; C:\Windows\System32\ncasvc.dll [166400 2014-10-28] (Microsoft Corporation)

R3 NcbService; C:\Windows\System32\ncbservice.dll [154112 2014-10-28] (Microsoft Corporation)

S3 NcdAutoSetup; C:\Windows\System32\NcdAutoSetup.dll [74752 2014-10-28] (Microsoft Corporation)

S3 Netlogon; C:\Windows\system32\netlogon.dll [838656 2014-10-28] (Microsoft Corporation)

S3 Netlogon; C:\Windows\SysWOW64\netlogon.dll [695296 2014-10-28] (Microsoft Corporation)

S3 Netman; C:\Windows\System32\netman.dll [266752 2014-10-28] (Microsoft Corporation)

R3 netprofm; C:\Windows\System32\netprofmsvc.dll [550912 2014-10-28] (Microsoft Corporation)

S4 NetTcpPortSharing; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [139856 2013-08-09] (Microsoft Corporation)

R2 NlaSvc; C:\Windows\System32\nlasvc.dll [391680 2014-12-05] (Microsoft Corporation)

R2 nsi; C:\Windows\system32\nsisvc.dll [28672 2014-10-28] (Microsoft Corporation)

R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1884304 2015-05-01] (NVIDIA Corporation)

R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [22997648 2015-05-01] (NVIDIA Corporation)

R2 nvsvc; C:\Windows\system32\nvvsvc.exe [936264 2015-04-08] (NVIDIA Corporation)

S3 ose; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [150600 2013-11-23] (Microsoft Corporation)

R3 p2pimsvc; C:\Windows\system32\pnrpsvc.dll [380416 2014-10-28] (Microsoft Corporation)

R3 p2psvc; C:\Windows\system32\p2psvc.dll [440832 2014-10-28] (Microsoft Corporation)

R2 PcaSvc; C:\Windows\System32\pcasvc.dll [474112 2014-10-28] (Microsoft Corporation)

S3 PerfHost; C:\Windows\SysWow64\perfhost.exe [21504 2013-08-22] (Microsoft Corporation)

S3 pla; C:\Windows\system32\pla.dll [1526784 2014-10-28] (Microsoft Corporation)

S3 pla; C:\Windows\SysWOW64\pla.dll [1534464 2014-10-28] (Microsoft Corporation)

R3 PlugPlay; C:\Windows\system32\umpnpmgr.dll [116736 2014-10-28] (Microsoft Corporation)

S3 PNRPAutoReg; C:\Windows\system32\pnrpauto.dll [26624 2014-10-28] (Microsoft Corporation)

R3 PNRPsvc; C:\Windows\system32\pnrpsvc.dll [380416 2014-10-28] (Microsoft Corporation)

R3 PolicyAgent; C:\Windows\System32\ipsecsvc.dll [397312 2014-10-28] (Microsoft Corporation)

R2 Power; C:\Windows\system32\umpo.dll [80384 2014-10-28] (Microsoft Corporation)

S3 PrintNotify; C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll [2987520 2014-10-28] (Microsoft Corporation)

R2 ProfSvc; C:\Windows\system32\profsvc.dll [225280 2014-12-08] (Microsoft Corporation)

S3 QWAVE; C:\Windows\system32\qwave.dll [303104 2014-10-28] (Microsoft Corporation)

S3 RasAuto; C:\Windows\System32\rasauto.dll [102912 2014-10-28] (Microsoft Corporation)

S3 RasMan; C:\Windows\System32\rasmans.dll [542208 2014-10-28] (Microsoft Corporation)

R2 Realtek11nSU; C:\Program Files (x86)\INTELLINET\11n USB Wireless LAN Utility\RtlService.exe [36864 2010-04-16] (Realtek) [File not signed]

S4 RemoteAccess; C:\Windows\System32\mprdim.dll [226816 2014-10-28] (Microsoft Corporation)

S4 RemoteAccess; C:\Windows\SysWOW64\mprdim.dll [183296 2014-10-28] (Microsoft Corporation)

S4 RemoteRegistry; C:\Windows\system32\regsvc.dll [166400 2014-10-28] (Microsoft Corporation)

R2 RpcEptMapper; C:\Windows\System32\RpcEpMap.dll [80896 2014-10-28] (Microsoft Corporation)

S3 RpcLocator; C:\Windows\system32\locator.exe [10240 2014-10-28] (Microsoft Corporation)

R2 RpcSs; C:\Windows\system32\rpcss.dll [817664 2014-10-28] (Microsoft Corporation)

R2 SamSs; C:\Windows\system32\lsass.exe [47024 2014-10-28] (Microsoft Corporation)

S4 SCardSvr; C:\Windows\System32\SCardSvr.dll [194048 2014-10-28] (Microsoft Corporation)

S3 ScDeviceEnum; C:\Windows\System32\ScDeviceEnum.dll [131072 2014-10-28] (Microsoft Corporation)

R2 Schedule; C:\Windows\system32\schedsvc.dll [1265152 2014-10-28] (Microsoft Corporation)

S3 SCPolicySvc; C:\Windows\System32\certprop.dll [156160 2014-10-28] (Microsoft Corporation)

S3 seclogon; C:\Windows\system32\seclogon.dll [31744 2014-10-28] (Microsoft Corporation)

R2 SENS; C:\Windows\System32\sens.dll [73728 2014-10-28] (Microsoft Corporation)

S3 SensrSvc; C:\Windows\system32\sensrsvc.dll [243200 2014-10-28] (Microsoft Corporation)

S3 SessionEnv; C:\Windows\system32\sessenv.dll [339968 2014-10-28] (Microsoft Corporation)

S3 SessionEnv; C:\Windows\SysWOW64\sessenv.dll [296448 2014-10-28] (Microsoft Corporation)

S4 SharedAccess; C:\Windows\System32\ipnathlp.dll [452608 2014-10-28] (Microsoft Corporation)

R2 ShellHWDetection; C:\Windows\System32\shsvcs.dll [640000 2014-10-28] (Microsoft Corporation)

R2 ShellHWDetection; C:\Windows\SysWOW64\shsvcs.dll [576512 2014-10-28] (Microsoft Corporation)

S2 SkypeUpdate; C:\Program Files (x86)\Skype\Updater\Updater.exe [315488 2015-01-02] (Skype Technologies)

S3 smphost; C:\Windows\System32\smphost.dll [13312 2014-10-28] (Microsoft Corporation)

S3 smphost; C:\Windows\SysWOW64\smphost.dll [11776 2014-10-28] (Microsoft Corporation)

S3 SNMPTRAP; C:\Windows\System32\snmptrap.exe [14848 2014-10-28] (Microsoft Corporation)

R2 Spooler; C:\Windows\System32\spoolsv.exe [827392 2014-10-28] (Microsoft Corporation)

S2 sppsvc; C:\Windows\system32\sppsvc.exe [6353960 2013-12-21] (Microsoft Corporation)

R3 SSDPSRV; C:\Windows\System32\ssdpsrv.dll [249344 2014-10-28] (Microsoft Corporation)

S3 SstpSvc; C:\Windows\system32\sstpsvc.dll [142848 2014-10-28] (Microsoft Corporation)

S3 Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [837824 2015-05-14] (Valve Corporation)

R2 Stereo Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [410952 2015-04-08] (NVIDIA Corporation)

R2 stisvc; C:\Windows\System32\wiaservc.dll [670720 2014-10-28] (Microsoft Corporation)

S3 StorSvc; C:\Windows\system32\storsvc.dll [20480 2014-10-28] (Microsoft Corporation)

S3 StorSvc; C:\Windows\SysWOW64\storsvc.dll [17920 2014-10-28] (Microsoft Corporation)

S3 svsvc; C:\Windows\system32\svsvc.dll [13312 2014-10-28] (Microsoft Corporation)

S3 swprv; C:\Windows\System32\swprv.dll [706048 2014-10-28] (Microsoft Corporation)

R2 SysMain; C:\Windows\system32\sysmain.dll [1217024 2014-10-28] (Microsoft Corporation)

R2 SystemEventsBroker; C:\Windows\System32\SystemEventsBrokerServer.dll [294912 2014-10-28] (Microsoft Corporation)

S3 TabletInputService; C:\Windows\System32\TabSvc.dll [154624 2014-10-28] (Microsoft Corporation)

S3 TapiSrv; C:\Windows\System32\tapisrv.dll [313344 2014-10-28] (Microsoft Corporation)

S3 TapiSrv; C:\Windows\SysWOW64\tapisrv.dll [254464 2014-10-28] (Microsoft Corporation)

S3 TermService; C:\Windows\System32\termsrv.dll [1114624 2014-10-28] (Microsoft Corporation)

R2 Themes; C:\Windows\system32\themeservice.dll [59392 2014-10-28] (Microsoft Corporation)

S3 THREADORDER; C:\Windows\system32\mmcss.dll [71168 2014-10-28] (Microsoft Corporation)

R3 TimeBroker; C:\Windows\System32\TimeBrokerServer.dll [262656 2014-10-28] (Microsoft Corporation)

R2 TrkWks; C:\Windows\System32\trkwks.dll [124416 2014-10-28] (Microsoft Corporation)

S3 TrustedInstaller; C:\Windows\servicing\TrustedInstaller.exe [106496 2014-10-28] (Microsoft Corporation)

S3 UI0Detect; C:\Windows\system32\UI0Detect.exe [41984 2014-10-28] (Microsoft Corporation)

S3 UmRdpService; C:\Windows\System32\umrdp.dll [300032 2014-10-28] (Microsoft Corporation)

R3 upnphost; C:\Windows\System32\upnphost.dll [457728 2014-10-28] (Microsoft Corporation)

R3 upnphost; C:\Windows\SysWOW64\upnphost.dll [331776 2014-10-28] (Microsoft Corporation)

R3 VaultSvc; C:\Windows\System32\vaultsvc.dll [260608 2014-10-28] (Microsoft Corporation)

S3 vds; C:\Windows\System32\vds.exe [1313792 2014-10-28] (Microsoft Corporation)

S3 vmicguestinterface; C:\Windows\System32\ICSvc.dll [524800 2014-10-28] (Microsoft Corporation)

S3 vmicheartbeat; C:\Windows\System32\ICSvc.dll [524800 2014-10-28] (Microsoft Corporation)

S3 vmickvpexchange; C:\Windows\System32\ICSvc.dll [524800 2014-10-28] (Microsoft Corporation)

S3 vmicrdv; C:\Windows\System32\ICSvc.dll [524800 2014-10-28] (Microsoft Corporation)

S3 vmicshutdown; C:\Windows\System32\ICSvc.dll [524800 2014-10-28] (Microsoft Corporation)

S3 vmictimesync; C:\Windows\System32\ICSvc.dll [524800 2014-10-28] (Microsoft Corporation)

S3 vmicvss; C:\Windows\System32\ICSvc.dll [524800 2014-10-28] (Microsoft Corporation)

S3 VSS; C:\Windows\system32\vssvc.exe [1454080 2014-10-28] (Microsoft Corporation)

S3 w32time; C:\Windows\system32\w32time.DLL [411648 2014-10-28] (Microsoft Corporation)

S3 wbengine; C:\Windows\system32\wbengine.exe [1571328 2014-10-28] (Microsoft Corporation)

S3 WbioSrvc; C:\Windows\System32\wbiosrvc.dll [465920 2014-10-28] (Microsoft Corporation)

R2 Wcmsvc; C:\Windows\System32\wcmsvc.dll [374784 2014-10-28] (Microsoft Corporation)

S3 wcncsvc; C:\Windows\System32\wcncsvc.dll [465920 2014-10-28] (Microsoft Corporation)

S3 WcsPlugInService; C:\Windows\System32\WcsPlugInService.dll [43520 2014-10-28] (Microsoft Corporation)

S3 WcsPlugInService; C:\Windows\SysWOW64\WcsPlugInService.dll [34304 2014-10-28] (Microsoft Corporation)

R3 WdiServiceHost; C:\Windows\system32\wdi.dll [95744 2014-10-28] (Microsoft Corporation)

R3 WdiServiceHost; C:\Windows\SysWOW64\wdi.dll [84992 2014-10-28] (Microsoft Corporation)

R3 WdiSystemHost; C:\Windows\system32\wdi.dll [95744 2014-10-28] (Microsoft Corporation)

R3 WdiSystemHost; C:\Windows\SysWOW64\wdi.dll [84992 2014-10-28] (Microsoft Corporation)

S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-03] (Microsoft Corporation)

S3 WebClient; C:\Windows\System32\webclnt.dll [229376 2014-10-28] (Microsoft Corporation)

S3 WebClient; C:\Windows\SysWOW64\webclnt.dll [199168 2014-10-28] (Microsoft Corporation)

S3 Wecsvc; C:\Windows\system32\wecsvc.dll [209408 2014-10-28] (Microsoft Corporation)

S3 WEPHOSTSVC; C:\Windows\system32\wephostsvc.dll [26112 2014-10-28] (Microsoft Corporation)

S3 wercplsupport; C:\Windows\System32\wercplsupport.dll [84992 2014-10-28] (Microsoft Corporation)

S3 WerSvc; C:\Windows\System32\WerSvc.dll [108544 2014-10-28] (Microsoft Corporation)

S3 WiaRpc; C:\Windows\System32\wiarpc.dll [67584 2014-10-28] (Microsoft Corporation)

S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-03] (Microsoft Corporation)

R3 WinHttpAutoProxySvc; C:\Windows\system32\winhttp.dll [802816 2014-10-28] (Microsoft Corporation)

R3 WinHttpAutoProxySvc; C:\Windows\SysWOW64\winhttp.dll [631808 2014-10-28] (Microsoft Corporation)

R2 Winmgmt; C:\Windows\system32\wbem\WMIsvc.dll [230400 2014-10-28] (Microsoft Corporation)

S3 WinRM; C:\Windows\system32\WsmSvc.dll [2608640 2014-10-28] (Microsoft Corporation)

S3 WinRM; C:\Windows\SysWOW64\WsmSvc.dll [2170368 2014-10-28] (Microsoft Corporation)

R2 WlanSvc; C:\Windows\System32\wlansvc.dll [1547264 2014-10-28] (Microsoft Corporation)

S3 wlidsvc; C:\Windows\system32\wlidsvc.dll [1639424 2014-10-28] (Microsoft Corporation)

S3 wmiApSrv; C:\Windows\system32\wbem\WmiApSrv.exe [201728 2014-10-28] (Microsoft Corporation)

S2 WMPNetworkSvc; C:\Program Files\Windows Media Player\wmpnetwk.exe [1478144 2014-10-28] (Microsoft Corporation)

S3 workfolderssvc; C:\Windows\system32\workfolderssvc.dll [1668096 2014-10-28] (Microsoft Corporation)

S3 WPCSvc; C:\Windows\System32\wpcsvc.dll [12288 2014-10-28] (Microsoft Corporation)

S3 WPCSvc; C:\Windows\SysWOW64\wpcsvc.dll [10240 2014-10-28] (Microsoft Corporation)

S3 WPDBusEnum; C:\Windows\system32\wpdbusenum.dll [86528 2014-10-28] (Microsoft Corporation)

R2 wscsvc; C:\Windows\System32\wscsvc.dll [146944 2014-10-28] (Microsoft Corporation)

R2 WSearch; C:\Windows\system32\SearchIndexer.exe [903168 2014-10-28] (Microsoft Corporation)

R2 WSearch; C:\Windows\SysWOW64\SearchIndexer.exe [710144 2014-10-28] (Microsoft Corporation)

S3 WSService; C:\Windows\System32\WSService.dll [3460472 2014-10-28] (Microsoft Corporation)

S3 wuauserv; C:\Windows\system32\wuaueng.dll [3678720 2015-03-13] (Microsoft Corporation)

R3 wudfsvc; C:\Windows\System32\WUDFSvc.dll [104960 2014-10-28] (Microsoft Corporation)

S3 WwanSvc; C:\Windows\System32\wwansvc.dll [513536 2014-10-28] (Microsoft Corporation)

S3 BRSptStub; "C:\ProgramData\BitRaider\BRSptStub.exe" [X]

S3 COMSysApp; %SystemRoot%\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}


==================== Drivers (All) ==========================


(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


S3 1394ohci; C:\Windows\System32\drivers\1394ohci.sys [231424 2013-08-22] (Microsoft Corporation)

S0 3ware; C:\Windows\System32\drivers\3ware.sys [108896 2013-08-22] (LSI)

R0 ACPI; C:\Windows\System32\drivers\ACPI.sys [533824 2014-10-07] (Microsoft Corporation)

R0 acpiex; C:\Windows\System32\Drivers\acpiex.sys [79712 2013-08-22] (Microsoft Corporation)

S3 acpipagr; C:\Windows\System32\drivers\acpipagr.sys [10240 2013-08-22] (Microsoft Corporation)

S3 AcpiPmi; C:\Windows\System32\drivers\acpipmi.sys [12288 2013-08-22] (Microsoft Corporation)

S3 acpitime; C:\Windows\System32\drivers\acpitime.sys [10752 2013-08-22] (Microsoft Corporation)

S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra)

R1 AFD; C:\Windows\system32\drivers\afd.sys [563200 2014-05-29] (Microsoft Corporation)

S0 agp440; C:\Windows\System32\drivers\agp440.sys [62304 2013-08-22] (Microsoft Corporation)

R1 ahcache; C:\Windows\System32\DRIVERS\ahcache.sys [80384 2015-03-19] (Microsoft Corporation)

S3 AmdK8; C:\Windows\System32\drivers\amdk8.sys [95744 2013-08-22] (Microsoft Corporation)

S3 AmdPPM; C:\Windows\System32\drivers\amdppm.sys [98816 2013-08-22] (Microsoft Corporation)

S0 amdsata; C:\Windows\System32\drivers\amdsata.sys [79200 2013-08-22] (Advanced Micro Devices)

S0 amdsbs; C:\Windows\System32\drivers\amdsbs.sys [259424 2013-08-22] (AMD Technologies Inc.)

S0 amdxata; C:\Windows\System32\drivers\amdxata.sys [25952 2013-08-22] (Advanced Micro Devices)

S3 AppID; C:\Windows\system32\drivers\appid.sys [82944 2014-10-28] (Microsoft Corporation)

S0 arcsas; C:\Windows\System32\drivers\arcsas.sys [114016 2013-08-22] (PMC-Sierra, Inc.)

R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2013-07-04] ()

S3 AsyncMac; C:\Windows\system32\DRIVERS\asyncmac.sys [26624 2013-08-22] (Microsoft Corporation)

S0 atapi; C:\Windows\System32\drivers\atapi.sys [26464 2013-08-22] (Microsoft Corporation)

R3 avc3; C:\Windows\System32\DRIVERS\avc3.sys [727592 2014-10-09] (BitDefender)

R3 avchv; C:\Windows\system32\DRIVERS\avchv.sys [261496 2014-10-09] (BitDefender)

R3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [601360 2014-10-09] (BitDefender)

S0 b06bdrv; C:\Windows\System32\drivers\bxvbda.sys [531296 2013-08-22] (Broadcom Corporation)

R1 BasicDisplay; C:\Windows\System32\drivers\BasicDisplay.sys [50688 2013-08-22] (Microsoft Corporation)

R1 BasicRender; C:\Windows\System32\drivers\BasicRender.sys [33280 2014-02-22] (Microsoft Corporation)

U5 BattC; C:\Windows\System32\Drivers\BattC.sys [35168 2013-08-22] (Microsoft Corporation)

S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-12] (Windows ® Win 7 DDK provider)

R1 BdfNdisf; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Firewall Engine\1.6.0.0\Drivers\bdfndisf6.sys [97816 2014-10-09] (BitDefender LLC)

R1 bdfwfpf; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Firewall Engine\1.6.0.0\Drivers\bdfwfpf.sys [107080 2014-10-09] (BitDefender LLC)

R1 Beep; C:\Windows\System32\Drivers\Beep.sys [7680 2013-08-22] (Microsoft Corporation)

R3 bowser; C:\Windows\System32\DRIVERS\bowser.sys [102912 2013-08-22] (Microsoft Corporation)

S3 BthAvrcpTg; C:\Windows\System32\drivers\BthAvrcpTg.sys [36992 2013-08-22] (Microsoft Corporation)

S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [57856 2015-03-08] (Microsoft Corporation)

S3 bthhfhid; C:\Windows\System32\drivers\BthHFHid.sys [30720 2013-08-22] (Microsoft Corporation)

S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [63488 2013-08-22] (Microsoft Corporation)

R4 cdfs; C:\Windows\System32\DRIVERS\cdfs.sys [88576 2013-08-22] (Microsoft Corporation)

R1 cdrom; C:\Windows\System32\drivers\cdrom.sys [164352 2013-08-22] (Microsoft Corporation)

S3 circlass; C:\Windows\System32\drivers\circlass.sys [44032 2013-08-22] (Microsoft Corporation)

R0 CLFS; C:\Windows\System32\drivers\CLFS.sys [377152 2015-03-04] (Microsoft Corporation)

S3 CmBatt; C:\Windows\System32\drivers\CmBatt.sys [25472 2013-08-22] (Microsoft Corporation)

R0 CNG; C:\Windows\System32\Drivers\cng.sys [561928 2015-03-30] (Microsoft Corporation)

R3 CompositeBus; C:\Windows\System32\drivers\CompositeBus.sys [36352 2013-08-22] (Microsoft Corporation)

R3 condrv; C:\Windows\System32\drivers\condrv.sys [43008 2013-08-22] (Microsoft Corporation)

S1 dam; C:\Windows\System32\drivers\dam.sys [57696 2013-08-22] (Microsoft Corporation)

R1 Dfsc; C:\Windows\System32\Drivers\dfsc.sys [134144 2014-03-06] (Microsoft Corporation)

R0 disk; C:\Windows\System32\drivers\disk.sys [100192 2013-08-22] (Microsoft Corporation)

S3 dmvsc; C:\Windows\System32\drivers\dmvsc.sys [29696 2013-08-22] (Microsoft Corporation)

R3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows ® Win 7 DDK provider)

R3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows ® Win 7 DDK provider)

R3 dot4usb; C:\Windows\system32\DRIVERS\dot4usb.sys [49056 2012-10-19] (Microsoft Corporation)

S3 drmkaud; C:\Windows\system32\drivers\drmkaud.sys [14528 2014-10-28] (Microsoft Corporation)

R3 DXGKrnl; C:\Windows\System32\drivers\dxgkrnl.sys [1552704 2014-10-28] (Microsoft Corporation)

S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)

S0 EhStorClass; C:\Windows\System32\drivers\EhStorClass.sys [82784 2013-08-22] (Microsoft Corporation)

S0 EhStorTcgDrv; C:\Windows\System32\drivers\EhStorTcgDrv.sys [114016 2013-08-22] (Microsoft Corporation)

S3 ErrDev; C:\Windows\System32\drivers\errdev.sys [10240 2013-08-22] (Microsoft Corporation)

S3 exfat; C:\Windows\System32\Drivers\exfat.sys [200704 2013-08-22] (Microsoft Corporation)

S3 fastfat; C:\Windows\System32\Drivers\fastfat.sys [217952 2013-08-22] (Microsoft Corporation)

S3 fdc; C:\Windows\System32\drivers\fdc.sys [30720 2013-08-22] (Microsoft Corporation)

R0 FileInfo; C:\Windows\System32\drivers\fileinfo.sys [79192 2014-02-22] (Microsoft Corporation)

S3 Filetrace; C:\Windows\System32\drivers\filetrace.sys [34816 2013-08-22] (Microsoft Corporation)

S3 flpydisk; C:\Windows\System32\drivers\flpydisk.sys [25088 2013-08-22] (Microsoft Corporation)

R0 FltMgr; C:\Windows\System32\drivers\fltmgr.sys [354112 2014-08-25] (Microsoft Corporation)

S3 FsDepends; C:\Windows\System32\drivers\FsDepends.sys [61248 2014-10-15] (Microsoft Corporation)

U0 Fs_Rec; C:\Windows\System32\Drivers\Fs_Rec.sys [30048 2013-08-22] (Microsoft Corporation)

R0 fvevol; C:\Windows\System32\DRIVERS\fvevol.sys [589656 2014-04-07] (Microsoft Corporation)

S3 FxPPM; C:\Windows\System32\drivers\fxppm.sys [27136 2013-08-22] (Microsoft Corporation)

S0 gagp30kx; C:\Windows\System32\drivers\gagp30kx.sys [65888 2013-08-22] (Microsoft Corporation)

S3 gencounter; C:\Windows\System32\drivers\vmgencounter.sys [11264 2013-08-22] (Microsoft Corporation)

S3 GPIOClx0101; C:\Windows\System32\Drivers\msgpioclx.sys [146752 2014-08-14] (Microsoft Corporation)

R3 gzflt; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Antimalware Engine\3.0.98.0\gzflt.sys [155912 2015-01-22] (BitDefender LLC)

R3 HdAudAddService; C:\Windows\system32\drivers\HdAudio.sys [395776 2013-08-22] (Microsoft Corporation)

R3 HDAudBus; C:\Windows\System32\drivers\HDAudBus.sys [76800 2014-07-24] (Microsoft Corporation)

S3 HidBatt; C:\Windows\System32\drivers\HidBatt.sys [26624 2013-08-22] (Microsoft Corporation)

S3 HidBth; C:\Windows\System32\drivers\hidbth.sys [97792 2015-01-29] (Microsoft Corporation)

S3 hidi2c; C:\Windows\System32\drivers\hidi2c.sys [41472 2013-08-22] (Microsoft Corporation)

S3 HidIr; C:\Windows\System32\drivers\hidir.sys [45568 2013-08-22] (Microsoft Corporation)

R3 HidUsb; C:\Windows\System32\drivers\hidusb.sys [33280 2014-03-06] (Microsoft Corporation)

S0 HpSAMD; C:\Windows\System32\drivers\HpSAMD.sys [64352 2013-08-22] (Hewlett-Packard Company)

R3 HTTP; C:\Windows\System32\drivers\HTTP.sys [991552 2015-02-24] (Microsoft Corporation)

S0 hwpolicy; C:\Windows\System32\drivers\hwpolicy.sys [24416 2013-08-22] (Microsoft Corporation)

S3 hyperkbd; C:\Windows\System32\drivers\hyperkbd.sys [13824 2013-08-22] (Microsoft Corporation)

S3 HyperVideo; C:\Windows\system32\DRIVERS\HyperVideo.sys [22016 2013-08-22] (Microsoft Corporation)

R3 i8042prt; C:\Windows\System32\drivers\i8042prt.sys [107520 2014-10-06] (Microsoft Corporation)

S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation)

S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation)

S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-09] (Intel Corporation)

S0 iaStorV; C:\Windows\System32\drivers\iaStorV.sys [412000 2013-08-22] (Intel Corporation)

S0 intelide; C:\Windows\System32\drivers\intelide.sys [18272 2013-08-22] (Microsoft Corporation)

R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39744 2014-10-12] (Microsoft Corporation)

R3 intelppm; C:\Windows\System32\drivers\intelppm.sys [98816 2013-08-22] (Microsoft Corporation)

S3 IpFilterDriver; C:\Windows\System32\DRIVERS\ipfltdrv.sys [84992 2013-08-22] (Microsoft Corporation)

S3 IPMIDRV; C:\Windows\System32\drivers\IPMIDrv.sys [79872 2014-07-24] (Microsoft Corporation)

S3 IPNAT; C:\Windows\System32\drivers\ipnat.sys [142848 2013-11-27] (Microsoft Corporation)

S3 IRENUM; C:\Windows\System32\drivers\irenum.sys [17920 2013-08-22] (Microsoft Corporation)

S0 isapnp; C:\Windows\System32\drivers\isapnp.sys [21856 2013-08-22] (Microsoft Corporation)

S3 iScsiPrt; C:\Windows\System32\drivers\msiscsi.sys [275800 2014-04-06] (Microsoft Corporation)

R3 kbdclass; C:\Windows\System32\drivers\kbdclass.sys [59712 2014-10-07] (Microsoft Corporation)

S3 kbdhid; C:\Windows\System32\drivers\kbdhid.sys [32256 2014-10-06] (Microsoft Corporation)

R3 kdnic; C:\Windows\system32\DRIVERS\kdnic.sys [19456 2013-08-22] (Microsoft Corporation)

R0 KSecDD; C:\Windows\System32\Drivers\ksecdd.sys [100672 2014-10-28] (Microsoft Corporation)

R0 KSecPkg; C:\Windows\System32\Drivers\ksecpkg.sys [177984 2015-01-15] (Microsoft Corporation)

R3 ksthunk; C:\Windows\system32\drivers\ksthunk.sys [21248 2013-08-22] (Microsoft Corporation)

R2 lltdio; C:\Windows\system32\DRIVERS\lltdio.sys [59392 2013-08-22] (Microsoft Corporation)

S0 LSI_SAS; C:\Windows\System32\drivers\lsi_sas.sys [109408 2013-08-22] (LSI Corporation)

S0 LSI_SAS2; C:\Windows\System32\drivers\lsi_sas2.sys [93536 2013-08-22] (LSI Corporation)

S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation)

S0 LSI_SSS; C:\Windows\System32\drivers\lsi_sss.sys [82784 2013-08-22] (LSI Corporation)

R2 luafv; C:\Windows\system32\drivers\luafv.sys [124416 2014-02-22] (Microsoft Corporation)

R1 mbamchameleon; C:\Windows\system32\drivers\mbamchameleon.sys [107736 2015-04-14] (Malwarebytes Corporation)

R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-04-14] (Malwarebytes Corporation)

R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [136408 2015-05-30] (Malwarebytes Corporation)

R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2015-04-14] (Malwarebytes Corporation)

S0 megasas; C:\Windows\System32\drivers\megasas.sys [56672 2013-08-22] (LSI Corporation)

S0 megasr; C:\Windows\System32\drivers\megasr.sys [575840 2013-08-22] (LSI Corporation, Inc.)

R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-03] (Intel Corporation)

S3 Modem; C:\Windows\System32\drivers\modem.sys [40960 2013-08-22] (Microsoft Corporation)

R3 monitor; C:\Windows\System32\drivers\monitor.sys [30208 2013-08-22] (Microsoft Corporation)

R3 mouclass; C:\Windows\System32\drivers\mouclass.sys [51008 2014-10-07] (Microsoft Corporation)

R3 mouhid; C:\Windows\System32\drivers\mouhid.sys [30208 2014-10-06] (Microsoft Corporation)

R0 mountmgr; C:\Windows\System32\drivers\mountmgr.sys [102208 2014-10-07] (Microsoft Corporation)

R3 mpsdrv; C:\Windows\System32\drivers\mpsdrv.sys [74240 2014-10-28] (Microsoft Corporation)

S3 MRxDAV; C:\Windows\system32\drivers\mrxdav.sys [140800 2014-12-19] (Microsoft Corporation)

R3 mrxsmb; C:\Windows\System32\DRIVERS\mrxsmb.sys [405504 2014-10-08] (Microsoft Corporation)

R2 mrxsmb10; C:\Windows\System32\DRIVERS\mrxsmb10.sys [283648 2014-03-06] (Microsoft Corporation)

R3 mrxsmb20; C:\Windows\System32\DRIVERS\mrxsmb20.sys [202752 2014-09-27] (Microsoft Corporation)

S3 MsBridge; C:\Windows\system32\DRIVERS\bridge.sys [115712 2014-10-28] (Microsoft Corporation)

R1 Msfs; C:\Windows\System32\Drivers\Msfs.sys [30208 2013-08-22] (Microsoft Corporation)

S3 msgpiowin32; C:\Windows\System32\drivers\msgpiowin32.sys [41824 2013-08-22] (Microsoft Corporation)

S3 mshidkmdf; C:\Windows\System32\drivers\mshidkmdf.sys [8192 2013-08-22] (Microsoft Corporation)

S3 mshidumdf; C:\Windows\System32\drivers\mshidumdf.sys [9728 2013-08-22] (Microsoft Corporation)

R0 msisadrv; C:\Windows\System32\drivers\msisadrv.sys [17248 2013-08-22] (Microsoft Corporation)

S3 MSKSSRV; C:\Windows\system32\drivers\MSKSSRV.sys [10624 2013-08-22] (Microsoft Corporation)

S3 MsLldp; C:\Windows\system32\DRIVERS\mslldp.sys [66560 2014-10-28] (Microsoft Corporation)

S3 MSPCLOCK; C:\Windows\system32\drivers\MSPCLOCK.sys [7040 2013-08-22] (Microsoft Corporation)

S3 MSPQM; C:\Windows\system32\drivers\MSPQM.sys [6784 2013-08-22] (Microsoft Corporation)

S3 MsRPC; C:\Windows\System32\Drivers\MsRPC.sys [366432 2013-08-22] (Microsoft Corporation)

R1 mssmbios; C:\Windows\System32\drivers\mssmbios.sys [37728 2013-08-22] (Microsoft Corporation)

S3 MSTEE; C:\Windows\system32\drivers\MSTEE.sys [7936 2013-08-22] (Microsoft Corporation)

S3 MTConfig; C:\Windows\System32\drivers\MTConfig.sys [13312 2013-08-22] (Microsoft Corporation)

R0 Mup; C:\Windows\System32\Drivers\mup.sys [78688 2013-08-22] (Microsoft Corporation)

S0 mvumis; C:\Windows\System32\drivers\mvumis.sys [63840 2013-08-22] (Marvell Semiconductor, Inc.)

R3 NativeWifiP; C:\Windows\system32\DRIVERS\nwifi.sys [445440 2014-10-28] (Microsoft Corporation)

R0 NDIS; C:\Windows\System32\drivers\ndis.sys [1113920 2015-02-05] (Microsoft Corporation)

S3 NdisCap; C:\Windows\system32\DRIVERS\ndiscap.sys [43008 2014-10-28] (Microsoft Corporation)

S3 NdisImPlatform; C:\Windows\system32\DRIVERS\NdisImPlatform.sys [126464 2014-10-28] (Microsoft Corporation)

S3 NdisTapi; C:\Windows\system32\DRIVERS\ndistapi.sys [24576 2014-10-28] (Microsoft Corporation)

R3 Ndisuio; C:\Windows\system32\DRIVERS\ndisuio.sys [60416 2013-08-22] (Microsoft Corporation)

R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation)

S3 NdisWan; C:\Windows\system32\DRIVERS\ndiswan.sys [220672 2013-08-22] (Microsoft Corporation)

S3 NdisWanLegacy; C:\Windows\system32\DRIVERS\ndiswan.sys [220672 2013-08-22] (Microsoft Corporation)

S3 NDProxy; C:\Windows\System32\Drivers\NDProxy.sys [72192 2014-10-28] (Microsoft Corporation)

R2 Ndu; C:\Windows\System32\drivers\Ndu.sys [103424 2014-10-28] (Microsoft Corporation)

R1 NetBIOS; C:\Windows\System32\DRIVERS\netbios.sys [48128 2014-10-28] (Microsoft Corporation)

R1 NetBT; C:\Windows\System32\DRIVERS\netbt.sys [282624 2013-08-22] (Microsoft Corporation)

S3 netvsc; C:\Windows\System32\drivers\netvsc63.sys [87040 2014-10-28] (Microsoft Corporation)

R1 Npfs; C:\Windows\System32\Drivers\Npfs.sys [58880 2013-08-22] (Microsoft Corporation)

R1 npsvctrig; C:\Windows\System32\drivers\npsvctrig.sys [23040 2013-08-22] (Microsoft Corporation)

R1 nsiproxy; C:\Windows\System32\drivers\nsiproxy.sys [39424 2014-10-28] (Microsoft Corporation)

R3 Ntfs; C:\Windows\System32\Drivers\Ntfs.sys [2025792 2014-10-15] (Microsoft Corporation)

R1 Null; C:\Windows\System32\Drivers\Null.sys [5632 2013-08-22] (Microsoft Corporation)

R3 NVHDA; C:\Windows\system32\drivers\nvhda64v.sys [195728 2014-10-09] (NVIDIA Corporation)

R3 nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [10423952 2015-04-08] (NVIDIA Corporation)

S0 nvraid; C:\Windows\System32\drivers\nvraid.sys [150368 2013-08-22] (NVIDIA Corporation)

S0 nvstor; C:\Windows\System32\drivers\nvstor.sys [168288 2013-08-22] (NVIDIA Corporation)

R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-05-01] (NVIDIA Corporation)

R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)

S0 nv_agp; C:\Windows\System32\drivers\nv_agp.sys [124768 2013-08-22] (Microsoft Corporation)

S3 Parport; C:\Windows\System32\drivers\parport.sys [94208 2013-08-22] (Microsoft Corporation)

R0 partmgr; C:\Windows\System32\drivers\partmgr.sys [88896 2014-10-15] (Microsoft Corporation)

R0 pci; C:\Windows\System32\drivers\pci.sys [280384 2014-07-24] (Microsoft Corporation)

S0 pciide; C:\Windows\System32\drivers\pciide.sys [14688 2013-08-22] (Microsoft Corporation)

S0 pcmcia; C:\Windows\System32\drivers\pcmcia.sys [114528 2013-08-22] (Microsoft Corporation)

R0 pcw; C:\Windows\System32\drivers\pcw.sys [50016 2013-08-22] (Microsoft Corporation)

R0 pdc; C:\Windows\System32\drivers\pdc.sys [86336 2014-10-12] (Microsoft Corporation)

R2 PEAUTH; C:\Windows\System32\drivers\peauth.sys [663040 2014-02-22] (Microsoft Corporation)

S3 PptpMiniport; C:\Windows\system32\DRIVERS\raspptp.sys [107520 2013-08-22] (Microsoft Corporation)

S3 Processor; C:\Windows\System32\drivers\processr.sys [92160 2013-08-22] (Microsoft Corporation)

R1 Psched; C:\Windows\system32\DRIVERS\pacer.sys [151040 2014-10-28] (Microsoft Corporation)

S3 QWAVEdrv; C:\Windows\system32\drivers\qwavedrv.sys [47104 2014-10-28] (Microsoft Corporation)

S3 RasAcd; C:\Windows\System32\DRIVERS\rasacd.sys [17408 2014-10-28] (Microsoft Corporation)

S3 RasAgileVpn; C:\Windows\system32\DRIVERS\AgileVpn.sys [96768 2014-10-28] (Microsoft Corporation)

S3 Rasl2tp; C:\Windows\system32\DRIVERS\rasl2tp.sys [120832 2013-08-22] (Microsoft Corporation)

S3 RasPppoe; C:\Windows\system32\DRIVERS\raspppoe.sys [84992 2013-08-22] (Microsoft Corporation)

S3 RasSstp; C:\Windows\system32\DRIVERS\rassstp.sys [93696 2014-10-28] (Microsoft Corporation)

R1 rdbss; C:\Windows\System32\DRIVERS\rdbss.sys [408576 2013-12-17] (Microsoft Corporation)

R3 rdpbus; C:\Windows\System32\drivers\rdpbus.sys [22528 2013-08-22] (Microsoft Corporation)

S3 RDPDR; C:\Windows\System32\drivers\rdpdr.sys [195584 2013-08-22] (Microsoft Corporation)

R3 RdpVideoMiniport; C:\Windows\System32\drivers\rdpvideominiport.sys [27456 2014-10-28] (Microsoft Corporation)

R0 rdyboost; C:\Windows\System32\drivers\rdyboost.sys [249688 2014-02-22] (Microsoft Corporation)

S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [921920 2014-10-15] (Microsoft Corporation)

R2 rspndr; C:\Windows\system32\DRIVERS\rspndr.sys [80384 2013-08-22] (Microsoft Corporation)

R3 RTL8168; C:\Windows\system32\DRIVERS\Rt630x64.sys [591360 2013-06-18] (Realtek )

S3 RTL8192su; C:\Windows\system32\DRIVERS\RTL8192su.sys [694856 2013-06-18] (Realtek Semiconductor Corporation )

S3 RtlWlanu; C:\Windows\system32\DRIVERS\rtwlanu.sys [1975000 2013-07-31] (Realtek Semiconductor Corporation )

S3 s3cap; C:\Windows\System32\drivers\vms3cap.sys [7168 2013-08-22] (Microsoft Corporation)

S0 sbp2port; C:\Windows\System32\drivers\sbp2port.sys [107872 2013-08-22] (Microsoft Corporation)

S3 scfilter; C:\Windows\System32\DRIVERS\scfilter.sys [40960 2014-10-28] (Microsoft Corporation)

S3 sdbus; C:\Windows\System32\drivers\sdbus.sys [239424 2015-03-13] (Microsoft Corporation)

S3 sdstor; C:\Windows\System32\drivers\sdstor.sys [79192 2014-02-22] (Microsoft Corporation)

R2 secdrv; C:\Windows\System32\Drivers\secdrv.sys [23040 2013-08-22] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)

S3 SerCx; C:\Windows\System32\drivers\SerCx.sys [69472 2013-08-22] (Microsoft Corporation)

S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-25] (Microsoft Corporation)

R3 Serenum; C:\Windows\System32\drivers\serenum.sys [23040 2013-08-22] (Microsoft Corporation)

R3 Serial; C:\Windows\System32\drivers\serial.sys [83456 2013-08-22] (Microsoft Corporation)

S3 sermouse; C:\Windows\System32\drivers\sermouse.sys [26112 2014-10-06] (Microsoft Corporation)

S3 sfloppy; C:\Windows\System32\drivers\sfloppy.sys [17408 2013-08-22] (Microsoft Corporation)

S0 SiSRaid2; C:\Windows\System32\drivers\SiSRaid2.sys [44896 2013-08-22] (Silicon Integrated Systems Corp.)

S0 SiSRaid4; C:\Windows\System32\drivers\sisraid4.sys [81760 2013-08-22] (Silicon Integrated Systems)

R0 spaceport; C:\Windows\System32\drivers\spaceport.sys [415040 2014-10-28] (Microsoft Corporation)

S3 SpbCx; C:\Windows\System32\drivers\SpbCx.sys [72032 2013-08-22] (Microsoft Corporation)

R2 srv; C:\Windows\System32\DRIVERS\srv.sys [412160 2014-07-24] (Microsoft Corporation)

R3 srv2; C:\Windows\System32\DRIVERS\srv2.sys [678400 2014-10-08] (Microsoft Corporation)

R3 srvnet; C:\Windows\System32\DRIVERS\srvnet.sys [246272 2014-06-27] (Microsoft Corporation)

S0 stexstor; C:\Windows\System32\drivers\stexstor.sys [31072 2013-08-22] (Promise Technology, Inc.)

R0 storahci; C:\Windows\System32\drivers\storahci.sys [107872 2013-08-22] (Microsoft Corporation)

S0 storflt; C:\Windows\System32\drivers\vmstorfl.sys [49944 2014-10-28] (Microsoft Corporation)

S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-10-05] (Microsoft Corporation)

S0 storvsc; C:\Windows\System32\drivers\storvsc.sys [45888 2013-08-22] (Microsoft Corporation)

R3 swenum; C:\Windows\System32\drivers\swenum.sys [14144 2014-10-28] (Microsoft Corporation)

R0 Tcpip; C:\Windows\System32\drivers\tcpip.sys [2485056 2014-10-28] (Microsoft Corporation)

S3 TCPIP6; C:\Windows\system32\DRIVERS\tcpip.sys [2485056 2014-10-28] (Microsoft Corporation)

R2 tcpipreg; C:\Windows\System32\drivers\tcpipreg.sys [49152 2014-03-06] (Microsoft Corporation)

R1 tdx; C:\Windows\system32\DRIVERS\tdx.sys [107520 2013-08-22] (Microsoft Corporation)

S3 terminpt; C:\Windows\System32\drivers\terminpt.sys [37216 2013-08-22] (Microsoft Corporation)

S3 TPM; C:\Windows\system32\drivers\tpm.sys [159584 2013-08-22] (Microsoft Corporation)

S3 Trufos; C:\Windows\System32\DRIVERS\Trufos.sys [452040 2015-01-22] (BitDefender S.R.L.)

S3 TsUsbFlt; C:\Windows\System32\drivers\tsusbflt.sys [56320 2013-08-22] (Microsoft Corporation)

S3 TsUsbGD; C:\Windows\System32\drivers\TsUsbGD.sys [29696 2014-10-28] (Microsoft Corporation)

R3 tunnel; C:\Windows\system32\DRIVERS\tunnel.sys [154112 2013-08-22] (Microsoft Corporation)

S0 uagp35; C:\Windows\System32\drivers\uagp35.sys [64864 2013-08-22] (Microsoft Corporation)

S3 UASPStor; C:\Windows\System32\drivers\uaspstor.sys [74080 2013-08-22] (Microsoft Corporation)

R3 UCX01000; C:\Windows\System32\drivers\ucx01000.sys [189248 2014-10-07] (Microsoft Corporation)

S4 udfs; C:\Windows\System32\DRIVERS\udfs.sys [316416 2015-03-12] (Microsoft Corporation)

S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation)

S0 uliagpkx; C:\Windows\System32\drivers\uliagpkx.sys [65888 2013-08-22] (Microsoft Corporation)

R3 umbus; C:\Windows\System32\drivers\umbus.sys [46080 2013-08-22] (Microsoft Corporation)

S3 UmPass; C:\Windows\System32\drivers\umpass.sys [11776 2013-08-22] (Microsoft Corporation)

R3 usbccgp; C:\Windows\System32\drivers\usbccgp.sys [143680 2014-07-24] (Microsoft Corporation)

S3 usbcir; C:\Windows\System32\drivers\usbcir.sys [98304 2014-10-28] (Microsoft Corporation)

R3 usbehci; C:\Windows\System32\drivers\usbehci.sys [89944 2014-05-31] (Microsoft Corporation)

R3 usbhub; C:\Windows\System32\drivers\usbhub.sys [419648 2014-07-24] (Microsoft Corporation)

R3 USBHUB3; C:\Windows\System32\drivers\UsbHub3.sys [467776 2015-03-17] (Microsoft Corporation)

S3 usbohci; C:\Windows\System32\drivers\usbohci.sys [30208 2013-08-22] (Microsoft Corporation)

R3 usbprint; C:\Windows\System32\drivers\usbprint.sys [26112 2013-08-22] (Microsoft Corporation)

R3 usbscan; C:\Windows\System32\drivers\usbscan.sys [44544 2014-10-28] (Microsoft Corporation)

S3 USBSTOR; C:\Windows\System32\drivers\USBSTOR.SYS [148800 2014-08-30] (Microsoft Corporation)

S3 usbuhci; C:\Windows\System32\drivers\usbuhci.sys [37376 2014-05-31] (Microsoft Corporation)

S3 usbvideo; C:\Windows\System32\Drivers\usbvideo.sys [212736 2014-06-21] (Microsoft Corporation)

R3 USBXHCI; C:\Windows\System32\drivers\USBXHCI.SYS [324928 2014-10-07] (Microsoft Corporation)

R0 vdrvroot; C:\Windows\System32\drivers\vdrvroot.sys [37728 2013-08-22] (Microsoft Corporation)

S3 VerifierExt; C:\Windows\System32\drivers\VerifierExt.sys [175960 2013-09-14] (Microsoft Corporation)

S3 vhdmp; C:\Windows\System32\drivers\vhdmp.sys [551232 2014-10-15] (Microsoft Corporation)

S0 viaide; C:\Windows\System32\drivers\viaide.sys [19808 2013-08-22] (VIA Technologies, Inc.)

S0 vmbus; C:\Windows\System32\drivers\vmbus.sys [97048 2014-10-28] (Microsoft Corporation)

S3 VMBusHID; C:\Windows\System32\drivers\VMBusHID.sys [21760 2013-08-22] (Microsoft Corporation)

R0 volmgr; C:\Windows\System32\drivers\volmgr.sys [73568 2013-08-22] (Microsoft Corporation)

R0 volmgrx; C:\Windows\System32\drivers\volmgrx.sys [377696 2013-08-22] (Microsoft Corporation)

R0 volsnap; C:\Windows\System32\drivers\volsnap.sys [310080 2014-06-18] (Microsoft Corporation)

S3 vpci; C:\Windows\System32\drivers\vpci.sys [69952 2014-10-07] (Microsoft Corporation)

S0 vsmraid; C:\Windows\System32\drivers\vsmraid.sys [168800 2013-08-22] (VIA Technologies Inc.,Ltd)

S0 VSTXRAID; C:\Windows\System32\drivers\vstxraid.sys [305504 2013-08-22] (VIA Corporation)

S3 vwifibus; C:\Windows\System32\drivers\vwifibus.sys [24576 2013-08-22] (Microsoft Corporation)

R1 vwififlt; C:\Windows\system32\DRIVERS\vwififlt.sys [71680 2014-04-30] (Microsoft Corporation)

S3 WacomPen; C:\Windows\System32\drivers\wacompen.sys [26752 2013-08-22] (Microsoft Corporation)

S3 Wanarp; C:\Windows\system32\DRIVERS\wanarp.sys [80896 2014-10-28] (Microsoft Corporation)

R1 Wanarpv6; C:\Windows\system32\DRIVERS\wanarp.sys [80896 2014-10-28] (Microsoft Corporation)

S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44024 2015-02-03] (Microsoft Corporation)

R0 Wdf01000; C:\Windows\System32\drivers\Wdf01000.sys [839488 2013-08-22] (Microsoft Corporation)

S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [264000 2015-02-03] (Microsoft Corporation)

S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-03] (Microsoft Corporation)

R0 WFPLWFS; C:\Windows\System32\DRIVERS\wfplwfs.sys [136512 2014-10-28] (Microsoft Corporation)

S3 WIMMount; C:\Windows\System32\drivers\wimmount.sys [33600 2014-10-29] (Microsoft Corporation)

S3 WinUsb; C:\Windows\System32\drivers\WinUsb.sys [78848 2013-08-22] (Microsoft Corporation)

R3 WmiAcpi; C:\Windows\System32\drivers\wmiacpi.sys [16384 2013-08-22] (Microsoft Corporation)

R0 Wof; C:\Windows\System32\Drivers\Wof.sys [157016 2014-03-13] (Microsoft Corporation)

S3 wpcfltr; C:\Windows\System32\DRIVERS\wpcfltr.sys [54784 2014-10-28] (Microsoft Corporation)

S3 WpdUpFltr; C:\Windows\System32\drivers\WpdUpFltr.sys [26976 2013-08-22] (Microsoft Corporation)

S4 ws2ifsl; C:\Windows\system32\drivers\ws2ifsl.sys [21504 2013-08-22] (Microsoft Corporation)

S3 WSDPrintDevice; C:\Windows\System32\drivers\WSDPrint.sys [20992 2013-08-22] (Microsoft Corporation)

R3 WudfPf; C:\Windows\System32\drivers\WudfPf.sys [113664 2014-10-28] (Microsoft Corporation)

R3 WUDFRd; C:\Windows\System32\drivers\WUDFRd.sys [226304 2014-10-28] (Microsoft Corporation)

R3 WUDFSensorLP; C:\Windows\System32\drivers\WUDFRd.sys [226304 2014-10-28] (Microsoft Corporation)

R3 WUDFWpdFs; C:\Windows\System32\drivers\WUDFRd.sys [226304 2014-10-28] (Microsoft Corporation)

R3 WUDFWpdMtp; C:\Windows\System32\drivers\WUDFRd.sys [226304 2014-10-28] (Microsoft Corporation)

S3 BRDriver64_1_3_3_E02B25FC; \??\C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [X]


==================== NetSvcs (Whitelisted) ===================


(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)



==================== One Month Created files and folders ========


(If an entry is included in the fixlist, the file/folder will be moved.)


2015-05-31 01:12 - 2015-05-31 01:12 - 00000000 ____D () C:\Users\Daniel\Downloads\FRST-OlderVersion

2015-05-28 16:38 - 2015-05-28 16:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome

2015-05-28 16:36 - 2015-05-31 00:41 - 00000904 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job

2015-05-28 16:36 - 2015-05-30 16:41 - 00000900 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job

2015-05-28 16:36 - 2015-05-28 16:38 - 00000000 ____D () C:\Program Files (x86)\Google

2015-05-28 16:36 - 2015-05-28 16:36 - 00003876 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA

2015-05-28 16:36 - 2015-05-28 16:36 - 00003640 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore

2015-05-28 15:53 - 2015-05-28 15:53 - 00000000 ____D () C:\Users\Daniel\Desktop\Old Firefox Data

2015-05-27 12:28 - 2015-05-27 12:28 - 04197016 _____ (Kaspersky Lab ZAO) C:\Users\Daniel\Desktop\tdsskiller.exe

2015-05-17 15:19 - 2015-05-17 15:19 - 00047132 _____ () C:\Users\Daniel\Downloads\Shortcut.txt

2015-05-17 15:18 - 2015-05-17 15:19 - 00083178 _____ () C:\Users\Daniel\Downloads\Addition.txt

2015-05-17 15:14 - 2015-05-31 01:13 - 00088204 _____ () C:\Users\Daniel\Downloads\FRST.txt

2015-05-17 15:14 - 2015-05-31 01:13 - 00000000 ____D () C:\FRST

2015-05-17 15:13 - 2015-05-31 01:12 - 02108928 _____ (Farbar) C:\Users\Daniel\Downloads\FRST64.exe

2015-05-17 03:24 - 2015-05-17 03:24 - 00000000 ____D () C:\Program Files (x86)\ESET

2015-05-17 02:59 - 2015-05-17 03:06 - 00000000 ____D () C:\AdwCleaner

2015-05-17 02:58 - 2015-05-17 02:59 - 02209792 _____ () C:\Users\Daniel\Downloads\adwcleaner_4.204.exe

2015-05-17 02:53 - 2015-05-17 02:53 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox

2015-05-15 17:37 - 2015-05-15 17:37 - 00002149 _____ () C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk

2015-05-15 17:36 - 2015-04-08 16:32 - 00560968 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe

2015-05-15 17:34 - 2015-04-08 20:58 - 31570064 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 30397072 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 25375048 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 24053576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 15818528 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 15716232 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 14617288 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 14006752 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 12852784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 11380728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 10423952 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys

2015-05-15 17:34 - 2015-04-08 20:58 - 02935416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 02896528 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 02573456 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 01895568 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435012.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435012.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 01086424 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 01047368 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 01037640 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 00970568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 00962192 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 00927440 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 00849552 _____ () C:\Windows\system32\nvmcumd.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 00499344 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 00402576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 00390472 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 00346256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 00175880 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 00154256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 00150648 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll

2015-05-15 17:34 - 2015-04-08 20:58 - 00128512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll

2015-05-15 16:36 - 2015-05-30 18:12 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys

2015-05-15 16:36 - 2015-05-15 16:36 - 00001114 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk

2015-05-15 16:36 - 2015-05-15 16:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware

2015-05-15 16:36 - 2015-05-15 16:36 - 00000000 ____D () C:\ProgramData\Malwarebytes

2015-05-15 16:36 - 2015-05-15 16:36 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware

2015-05-15 16:36 - 2015-04-14 09:38 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys

2015-05-15 16:36 - 2015-04-14 09:37 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys

2015-05-15 16:36 - 2015-04-14 09:37 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys

2015-05-15 05:07 - 2015-05-15 05:10 - 38543305 _____ () C:\Users\Daniel\Downloads\SongOfSaya.part2.rar

2015-05-15 04:38 - 2015-05-15 04:54 - 209715200 _____ () C:\Users\Daniel\Downloads\SongOfSaya.part1.rar

2015-05-13 04:52 - 2015-04-30 16:35 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll

2015-05-13 04:52 - 2015-04-30 16:35 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll

2015-05-13 03:15 - 2015-04-09 20:34 - 02256896 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll

2015-05-13 03:15 - 2015-04-09 20:11 - 01943040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll

2015-05-13 03:15 - 2015-03-17 13:26 - 00467776 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS

2015-05-13 03:15 - 2015-03-08 22:02 - 00057856 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\bthhfenum.sys

2015-05-13 03:14 - 2015-04-30 19:05 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll

2015-05-13 03:14 - 2015-04-30 18:48 - 00358912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll

2015-05-13 03:14 - 2015-04-24 17:32 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll

2015-05-13 03:14 - 2015-04-21 13:14 - 24971776 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll

2015-05-13 03:14 - 2015-04-21 12:50 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll

2015-05-13 03:14 - 2015-04-21 12:50 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec

2015-05-13 03:14 - 2015-04-21 12:49 - 02885120 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll

2015-05-13 03:14 - 2015-04-21 12:37 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll

2015-05-13 03:14 - 2015-04-21 12:35 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll

2015-05-13 03:14 - 2015-04-21 12:31 - 06025728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll

2015-05-13 03:14 - 2015-04-21 12:24 - 19691008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll

2015-05-13 03:14 - 2015-04-21 12:13 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll

2015-05-13 03:14 - 2015-04-21 12:11 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll

2015-05-13 03:14 - 2015-04-21 12:09 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec

2015-05-13 03:14 - 2015-04-21 12:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll

2015-05-13 03:14 - 2015-04-21 12:07 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll

2015-05-13 03:14 - 2015-04-21 12:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll

2015-05-13 03:14 - 2015-04-21 12:04 - 02278400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll

2015-05-13 03:14 - 2015-04-21 11:59 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll

2015-05-13 03:14 - 2015-04-21 11:58 - 00664576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll

2015-05-13 03:14 - 2015-04-21 11:52 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll

2015-05-13 03:14 - 2015-04-21 11:49 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll

2015-05-13 03:14 - 2015-04-21 11:49 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe

2015-05-13 03:14 - 2015-04-21 11:49 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll

2015-05-13 03:14 - 2015-04-21 11:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl

2015-05-13 03:14 - 2015-04-21 11:40 - 14401536 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll

2015-05-13 03:14 - 2015-04-21 11:38 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll

2015-05-13 03:14 - 2015-04-21 11:37 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll

2015-05-13 03:14 - 2015-04-21 11:36 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll

2015-05-13 03:14 - 2015-04-21 11:32 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll

2015-05-13 03:14 - 2015-04-21 11:31 - 04305920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll

2015-05-13 03:14 - 2015-04-21 11:28 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll

2015-05-13 03:14 - 2015-04-21 11:27 - 02352128 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll

2015-05-13 03:14 - 2015-04-21 11:26 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll

2015-05-13 03:14 - 2015-04-21 11:26 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll

2015-05-13 03:14 - 2015-04-21 11:25 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl

2015-05-13 03:14 - 2015-04-21 11:17 - 12828672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll

2015-05-13 03:14 - 2015-04-21 11:15 - 01547264 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll

2015-05-13 03:14 - 2015-04-21 11:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll

2015-05-13 03:14 - 2015-04-21 11:02 - 01882112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll

2015-05-13 03:14 - 2015-04-21 10:58 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll

2015-05-13 03:14 - 2015-04-21 10:56 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll

2015-05-13 03:14 - 2015-04-13 18:48 - 04180480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys

2015-05-13 03:14 - 2015-04-09 21:00 - 01996800 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll

2015-05-13 03:14 - 2015-04-09 20:50 - 01387008 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll

2015-05-13 03:14 - 2015-04-09 20:26 - 01560576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll

2015-05-13 03:14 - 2015-04-08 18:55 - 00410128 _____ (Microsoft Corporation) C:\Windows\system32\services.exe

2015-05-13 03:14 - 2015-04-02 20:35 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\PhotoMetadataHandler.dll

2015-05-13 03:14 - 2015-04-02 20:14 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoMetadataHandler.dll

2015-05-13 03:14 - 2015-04-01 18:22 - 02985984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbgeng.dll

2015-05-13 03:14 - 2015-04-01 18:20 - 04417536 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll

2015-05-13 03:14 - 2015-03-31 23:45 - 01491456 _____ (Microsoft Corporation) C:\Windows\system32\dbghelp.dll

2015-05-13 03:14 - 2015-03-31 22:31 - 01207296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbghelp.dll

2015-05-13 03:14 - 2015-03-30 01:47 - 00561928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys

2015-05-13 03:14 - 2015-03-26 23:27 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll

2015-05-13 03:14 - 2015-03-26 22:50 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll

2015-05-13 03:14 - 2015-03-26 22:48 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll

2015-05-13 03:14 - 2015-03-19 21:56 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys

2015-05-13 03:14 - 2015-03-13 00:03 - 00239424 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys

2015-05-13 03:14 - 2015-03-13 00:03 - 00154432 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys

2015-05-13 03:14 - 2015-03-12 22:02 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys

2015-05-13 03:14 - 2015-03-12 21:11 - 02162176 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll

2015-05-13 03:14 - 2015-03-12 20:39 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll

2015-05-13 03:14 - 2015-03-12 20:29 - 00410017 _____ () C:\Windows\system32\ApnDatabase.xml

2015-05-13 03:14 - 2015-03-10 21:49 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe

2015-05-13 03:14 - 2015-03-10 21:09 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe

2015-05-13 03:14 - 2015-03-05 23:08 - 02067968 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll

2015-05-13 03:14 - 2015-03-05 22:47 - 01696256 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll

2015-05-13 03:14 - 2015-03-05 22:43 - 01969664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll

2015-05-13 03:14 - 2015-03-04 19:09 - 01429504 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll

2015-05-13 03:14 - 2015-03-03 21:32 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Input.Inking.dll

2015-05-13 03:14 - 2015-03-03 21:12 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll

2015-05-13 03:14 - 2015-02-17 19:19 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll

2015-05-13 03:14 - 2015-01-29 20:53 - 02819584 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll

2015-05-13 03:14 - 2014-11-14 02:58 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsDatabase.dll

2015-05-12 04:03 - 2015-05-12 04:09 - 00000000 ____D () C:\Users\Daniel\AppData\Local\Kobo

2015-05-06 20:41 - 2015-05-04 23:54 - 00000000 ____D () C:\Users\Daniel\Downloads\YanSimMay5th

2015-05-02 13:45 - 2015-05-02 13:47 - 00181040 _____ (McAfee, Inc.) C:\Users\Daniel\Downloads\McPreInstall.exe

2015-05-02 13:39 - 2015-05-02 13:40 - 04798416 _____ (McAfee, Inc.) C:\Users\Daniel\Downloads\MCPR(1).exe

2015-05-02 13:34 - 2015-05-02 13:34 - 04798416 _____ (McAfee, Inc.) C:\Users\Daniel\Downloads\MCPR.exe

2015-05-02 13:27 - 2015-05-08 08:16 - 00000000 ____D () C:\Users\Daniel\AppData\Local\Citrix

2015-05-02 13:27 - 2015-05-02 13:27 - 00000000 ____D () C:\Program Files (x86)\Citrix

2015-05-02 13:11 - 2015-05-02 13:11 - 00586096 _____ (McAfee, Inc.) C:\Users\Daniel\Downloads\MVTInstaller(1).exe

2015-05-02 12:59 - 2015-05-02 12:59 - 00586096 _____ (McAfee, Inc.) C:\Users\Daniel\Downloads\MVTInstaller.exe

2015-05-02 12:15 - 2015-05-02 12:15 - 05314608 _____ (McAfee, Inc.) C:\Users\Daniel\Downloads\Setup_serial_VQHcpoyDYPrHxj1gwgasNQ2_key.exe


==================== One Month Modified files and folders ========


(If an entry is included in the fixlist, the file/folder will be moved.)


2015-05-31 01:12 - 2015-03-24 13:25 - 00000000 ____D () C:\Users\Daniel\Documents\Outlook Files

2015-05-31 01:07 - 2014-06-18 21:32 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job

2015-05-31 01:06 - 2014-10-21 05:01 - 00000918 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4289144934-992402691-377659798-1001UA1cfed0d8e325d29.job

2015-05-31 01:03 - 2015-02-05 00:53 - 00000918 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4289144934-992402691-377659798-1001UA1d040ffa5530307.job

2015-05-31 01:02 - 2013-08-22 11:36 - 00000000 ____D () C:\Windows\system32\sru

2015-05-31 01:01 - 2014-01-29 19:31 - 00000918 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4289144934-992402691-377659798-1001UA.job

2015-05-31 00:53 - 2014-11-13 03:48 - 00000918 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4289144934-992402691-377659798-1001UA1cfff1631c7d1c3.job

2015-05-30 23:44 - 2014-01-03 09:18 - 01316839 _____ () C:\Windows\WindowsUpdate.log

2015-05-30 22:01 - 2014-01-03 11:45 - 00003906 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{2BA1A4D6-7D91-4151-A240-1E66D90F672E}

2015-05-30 21:03 - 2015-02-05 00:53 - 00000866 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4289144934-992402691-377659798-1001Core1d040ffa43a2264.job

2015-05-30 19:01 - 2014-01-29 19:31 - 00000866 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4289144934-992402691-377659798-1001Core.job

2015-05-30 18:48 - 2014-01-03 09:19 - 00000000 ____D () C:\Users\Daniel\AppData\Local\Packages

2015-05-30 05:06 - 2014-10-21 05:01 - 00000866 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4289144934-992402691-377659798-1001Core1cfed0d8d608e04.job

2015-05-30 02:53 - 2014-11-13 03:48 - 00000866 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4289144934-992402691-377659798-1001Core1cfff163090f93a.job

2015-05-29 10:17 - 2013-08-22 11:36 - 00000000 ____D () C:\Windows\rescache

2015-05-28 18:42 - 2014-01-03 09:24 - 00003596 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4289144934-992402691-377659798-1001

2015-05-28 16:38 - 2014-09-30 16:11 - 00002275 _____ () C:\Users\Public\Desktop\Google Chrome.lnk

2015-05-28 16:38 - 2014-01-29 19:31 - 00000000 ____D () C:\Users\Daniel\AppData\Local\Google

2015-05-27 16:41 - 2014-02-15 11:26 - 00000000 ___RD () C:\Program Files (x86)\Skype

2015-05-26 19:06 - 2014-01-06 19:33 - 00000000 ____D () C:\Program Files\Microsoft Office 15

2015-05-26 18:44 - 2014-01-05 14:13 - 00000000 __RDO () C:\Users\Daniel\SkyDrive

2015-05-26 18:20 - 2014-02-26 21:12 - 00000000 ____D () C:\Users\Daniel\AppData\Local\TSVNCache

2015-05-26 18:17 - 2015-04-04 05:06 - 00000000 ___SD () C:\Windows\SysWOW64\GWX

2015-05-26 18:17 - 2015-04-04 05:06 - 00000000 ___SD () C:\Windows\system32\GWX

2015-05-26 18:17 - 2013-08-22 11:20 - 00000000 ____D () C:\Windows\CbsTemp

2015-05-18 23:52 - 2014-01-03 09:23 - 00863592 _____ () C:\Windows\system32\PerfStringBackup.INI

2015-05-18 18:04 - 2014-01-04 23:15 - 00000000 ____D () C:\Program Files (x86)\Steam

2015-05-17 14:40 - 2014-09-17 07:57 - 00002345 _____ () C:\Users\Public\Desktop\Ad-Aware Antivirus.lnk

2015-05-17 14:39 - 2014-01-03 11:08 - 00000000 ____D () C:\ProgramData\NVIDIA

2015-05-17 14:39 - 2013-08-22 10:46 - 00045176 _____ () C:\Windows\setupact.log

2015-05-17 14:39 - 2013-08-22 10:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT

2015-05-17 14:38 - 2013-08-22 09:25 - 00262144 ___SH () C:\Windows\system32\config\BBI

2015-05-17 03:03 - 2015-02-20 06:22 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service

2015-05-17 03:03 - 2014-01-03 07:22 - 00090280 _____ () C:\Windows\PFRO.log

2015-05-17 02:56 - 2015-02-20 06:22 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox.bak

2015-05-17 01:33 - 2013-08-22 11:36 - 00000000 ____D () C:\Windows\AppReadiness

2015-05-16 20:58 - 2015-02-05 00:53 - 00003866 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-4289144934-992402691-377659798-1001UA1d040ffa5530307

2015-05-16 20:58 - 2015-02-05 00:53 - 00003486 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-4289144934-992402691-377659798-1001Core1d040ffa43a2264

2015-05-15 18:58 - 2014-01-07 17:34 - 00000000 ____D () C:\Users\Daniel\Documents\job applications, cover letters and example lectures

2015-05-15 17:40 - 2014-02-15 12:20 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk

2015-05-15 17:37 - 2014-01-04 04:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation

2015-05-15 17:37 - 2014-01-03 11:07 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation

2015-05-15 17:09 - 2014-01-06 19:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013

2015-05-15 17:07 - 2013-08-22 10:44 - 00484472 _____ () C:\Windows\system32\FNTCACHE.DAT

2015-05-15 17:06 - 2014-03-01 23:22 - 00000000 ____D () C:\Program Files\Microsoft Silverlight

2015-05-15 17:06 - 2014-03-01 23:22 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight

2015-05-15 17:06 - 1941-12-16 03:44 - 00000000 ____D () C:\Program Files\Common Files\McAfee

2015-05-15 17:01 - 2013-08-22 11:36 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel

2015-05-15 17:01 - 2013-08-22 09:36 - 00000000 ____D () C:\Windows\system32\AdvancedInstallers

2015-05-13 04:51 - 2014-01-03 11:15 - 00000000 ____D () C:\Windows\system32\MRT

2015-05-13 04:38 - 2014-01-03 11:15 - 140425016 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe

2015-05-13 04:31 - 2014-03-01 23:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight

2015-05-13 04:26 - 2013-08-22 15:11 - 00000000 ____D () C:\Program Files\Windows Journal

2015-05-12 04:08 - 2014-09-29 01:33 - 00000975 _____ () C:\Users\Public\Desktop\Kobo.lnk

2015-05-12 04:07 - 2014-09-29 01:32 - 00000000 ____D () C:\Program Files (x86)\Kobo

2015-05-05 13:59 - 2015-03-12 22:42 - 00792568 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe

2015-05-05 13:59 - 2015-03-12 22:42 - 00178168 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl

2015-05-02 13:50 - 2013-08-22 11:36 - 00000000 __RHD () C:\Users\Public\Libraries

2015-05-02 13:36 - 2014-01-04 23:05 - 00000000 ____D () C:\Program Files (x86)\McAfee

2015-05-02 13:36 - 2014-01-04 22:35 - 00000000 ____D () C:\Program Files\McAfee

2015-05-02 13:35 - 2013-08-22 11:36 - 00000000 ___HD () C:\Windows\ELAMBKUP

2015-05-02 13:12 - 2014-01-04 23:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee

2015-05-02 12:36 - 2014-01-03 09:19 - 00000000 ____D () C:\Users\Daniel

2015-05-01 12:51 - 2014-06-03 13:38 - 01316000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll

2015-05-01 12:51 - 2014-01-04 04:44 - 01316184 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll

2015-05-01 12:50 - 2014-06-03 13:38 - 01756424 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll

2015-05-01 12:50 - 2014-01-04 04:44 - 01570672 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll


==================== Files in the root of some directories =======


2015-02-01 17:10 - 2015-02-01 17:10 - 0000004 _____ () C:\Users\Daniel\AppData\Roaming\.lockfile

2014-06-08 03:24 - 2006-06-26 01:33 - 0163840 ____N (アリスソフト) C:\Users\Daniel\AppData\Local\Tempals_inst.exe

2014-07-21 03:40 - 2014-05-22 03:40 - 0000032 ____R () C:\ProgramData\hash.dat


Files to move or delete:

====================

C:\ProgramData\hash.dat



Some files in TEMP:

====================

C:\Users\Daniel\AppData\Local\Temp\BRSVC_791912109_hlp.exe

C:\Users\Daniel\AppData\Local\Temp\mcitinfo_-1.exe

C:\Users\Daniel\AppData\Local\Temp\nvSCPAPI.dll

C:\Users\Daniel\AppData\Local\Temp\nvSCPAPI64.dll

C:\Users\Daniel\AppData\Local\Temp\nvStInst.exe

C:\Users\Daniel\AppData\Local\Temp\Quarantine.exe

C:\Users\Daniel\AppData\Local\Temp\sqlite3.dll



==================== Bamital & volsnap Check =================


(There is no automatic fix for files that do not pass verification.)


C:\Windows\System32\winlogon.exe => File is digitally signed

C:\Windows\System32\wininit.exe => File is digitally signed

C:\Windows\explorer.exe => File is digitally signed

C:\Windows\SysWOW64\explorer.exe => File is digitally signed

C:\Windows\System32\svchost.exe => File is digitally signed

C:\Windows\SysWOW64\svchost.exe => File is digitally signed

C:\Windows\System32\services.exe => File is digitally signed

C:\Windows\System32\User32.dll => File is digitally signed

C:\Windows\SysWOW64\User32.dll => File is digitally signed

C:\Windows\System32\userinit.exe => File is digitally signed

C:\Windows\SysWOW64\userinit.exe => File is digitally signed

C:\Windows\System32\rpcss.dll => File is digitally signed

C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed



LastRegBack: 2015-05-27 02:23


==================== End of log ============================



Share this post


Link to post
Share on other sites

1. Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.169 - Adobe Systems Incorporated)
It's an old version, please update: https://www.adobe.com/products/flashplayer/distribution3.html


2. Have you selected which types of updates of Firefox you want to have, e.g. beta versions instead of stable versions?


3. Have you added entries in the Hosts file?
0.0.0.0 .psf
0.0.0.0 psf


4. Please, save AdwCleaner by Xplode on the desktop: https://toolslib.net/downloads/viewdownload/1-adwcleaner/

Turn off all programs, including browsers.
Double-click on AdwCleaner to start the program.

Click on the Scan button.
Wait until the search has finished.

Click on the Log file button.
A report will be displayed, copy its content and paste into your reply.
If the report isn't displayed, it's available as C:\AdwCleaner\AdwCleaner[R0].txt.


5. The following script will remove all files in the recycle bin and in temporary folders, please check that you don't have anything you want to keep in those locations.

Please, start Notepad.
Copy all text that is in the box:

CreateRestorePoint:
CloseProcesses:
AlternateDataStreams: C:\Users\Daniel\Desktop\tdsskiller.exe:BDU
AlternateDataStreams: C:\Users\Daniel\Downloads\adwcleaner_4.204.exe:BDU
AlternateDataStreams: C:\Users\Daniel\Downloads\McAfeeSetup-AutoLogin.exe:BDU
AlternateDataStreams: C:\Users\Daniel\Downloads\MCPR(1).exe:BDU
AlternateDataStreams: C:\Users\Daniel\Downloads\MCPR.exe:BDU
AlternateDataStreams: C:\Users\Daniel\Downloads\McPreInstall.exe:BDU
AlternateDataStreams: C:\Users\Daniel\Downloads\MVTInstaller(1).exe:BDU
AlternateDataStreams: C:\Users\Daniel\Downloads\MVTInstaller.exe:BDU
AlternateDataStreams: C:\Users\Daniel\Downloads\Setup_serial_VQHcpoyDYPrHxj1gwgasNQ2_key.exe:BDU
AlternateDataStreams: C:\Users\Daniel\Downloads\Setup_serial_x87kdHL_MxE5IoIHpZ8SZg2_key.exe:BDU
EmptyTemp:
Reboot:

and paste in Notepad. Check that no files have been split on two lines.
Save the file as fixlist.txt on the desktop.

Exit all programs.
Start FRST, please.
Click the Fix button.
Wait until the tool has finished.

It creates a log file, called Fixlog.txt, on the desktop.
Please, paste the content of that file in your reply.



6. Let's see what happened during April.
Start FRST.
Select everything in the Whitelist group, but only "90 days files" in the Optional Scan group.
Scan with FRST and attach the new FRST.txt.

Share this post


Link to post
Share on other sites

adwcleaner log

 

# AdwCleaner v4.205 - Logfile created 31/05/2015 at 04:14:59
# Updated 21/05/2015 by Xplode
# Database : 2015-05-25.3 [server]
# Operating system : Windows 8.1 (x64)
# Username : Daniel - PC
# Running from : C:\Users\Daniel\Downloads\adwcleaner_4.205.exe
# Option : Scan
***** [ Services ] *****
***** [ Files / Folders ] *****
***** [ Scheduled tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Found : HKCU\Software\AppDataLow\Software\adawarebp
***** [ Web browsers ] *****
-\\ Internet Explorer v11.0.9600.17416
-\\ Mozilla Firefox v38.0.1 (x86 en-US)
-\\ Google Chrome v43.0.2357.81
[C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Web data] - Found [search Provider] : hxxp://search.aol.com/aol/search?q={searchTerms}
[C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Web data] - Found [search Provider] : hxxp://www.ask.com/web?q={searchTerms}
-\\ Chromium v
*************************
AdwCleaner[R0].txt - [1755 bytes] - [17/05/2015 03:00:15]
AdwCleaner[R1].txt - [1061 bytes] - [31/05/2015 04:14:59]
AdwCleaner[s0].txt - [1730 bytes] - [17/05/2015 03:02:28]
########## EOF - C:\AdwCleaner\AdwCleaner[R1].txt - [1179 bytes] ##########
time on this is off not sure if it matters though was not 4:15 am when I did this more like 10:30 EST.
fix log - fact I removed 1.5 gig of temporary data is hilarious I can remember when my entire hard drive was a tenth of that ... (God I am old now and not even 40 sigh..)
Fix result of Farbar Recovery Scan Tool (x64) Version: 29-05-2015
Ran by Daniel at 2015-05-31 22:40:48 Run:1
Running from C:\Users\Daniel\Desktop
Loaded Profiles: Daniel (Available Profiles: Daniel)
Boot Mode: Normal
==============================================
fixlist content:
*****************
CreateRestorePoint:
CloseProcesses:
AlternateDataStreams: C:\Users\Daniel\Desktop\tdsskiller.exe:BDU
AlternateDataStreams: C:\Users\Daniel\Downloads\adwcleaner_4.204.exe:BDU
AlternateDataStreams: C:\Users\Daniel\Downloads\McAfeeSetup-AutoLogin.exe:BDU
AlternateDataStreams: C:\Users\Daniel\Downloads\MCPR(1).exe:BDU
AlternateDataStreams: C:\Users\Daniel\Downloads\MCPR.exe:BDU
AlternateDataStreams: C:\Users\Daniel\Downloads\McPreInstall.exe:BDU
AlternateDataStreams: C:\Users\Daniel\Downloads\MVTInstaller(1).exe:BDU
AlternateDataStreams: C:\Users\Daniel\Downloads\MVTInstaller.exe:BDU
AlternateDataStreams: C:\Users\Daniel\Downloads\Setup_serial_VQHcpoyDYPrHxj1gwgasNQ2_key.exe:BDU
AlternateDataStreams: C:\Users\Daniel\Downloads\Setup_serial_x87kdHL_MxE5IoIHpZ8SZg2_key.exe:BDU
EmptyTemp:
Reboot:
*****************
Restore point was successfully created.
Processes closed successfully.
C:\Users\Daniel\Desktop\tdsskiller.exe => ":BDU" ADS Removed successfully.
C:\Users\Daniel\Downloads\adwcleaner_4.204.exe => ":BDU" ADS Removed successfully.
C:\Users\Daniel\Downloads\McAfeeSetup-AutoLogin.exe => ":BDU" ADS Removed successfully.
C:\Users\Daniel\Downloads\MCPR(1).exe => ":BDU" ADS Removed successfully.
C:\Users\Daniel\Downloads\MCPR.exe => ":BDU" ADS Removed successfully.
C:\Users\Daniel\Downloads\McPreInstall.exe => ":BDU" ADS Removed successfully.
C:\Users\Daniel\Downloads\MVTInstaller(1).exe => ":BDU" ADS Removed successfully.
C:\Users\Daniel\Downloads\MVTInstaller.exe => ":BDU" ADS Removed successfully.
C:\Users\Daniel\Downloads\Setup_serial_VQHcpoyDYPrHxj1gwgasNQ2_key.exe => ":BDU" ADS Removed successfully.
C:\Users\Daniel\Downloads\Setup_serial_x87kdHL_MxE5IoIHpZ8SZg2_key.exe => ":BDU" ADS Removed successfully.
EmptyTemp: => Removed 1.5 GB temporary data.
The system needed a reboot.
==== End of Fixlog 22:45:06 ====
Will scan with FRST later as that takes awhile and need to do some work on the computer right now before bed.

Share this post


Link to post
Share on other sites

Please, try to answer my questions 2 and 3 in post #16. I need to know if it's you or malware that changed it.

Share this post


Link to post
Share on other sites

Förstår du inte mina frågor eller vad är problemet?

  • Like 1

Share this post


Link to post
Share on other sites

Oh sorry. I had put in firefox which versions I wanted and put in testing beta versions, did that a long time ago. I can put it back if that might help. The hosts file, no I did not make any changes to it. I have no idea what that file even is...don't go messing with things I don't understand on my computer quick way to break it.

Share this post


Link to post
Share on other sites

Sorry for the post in Swedish :( I forgot that I wasn't in a Swedish forum.

 

You can use beta versions of Firefox, that's no problem, but would be a problem if a malicious program had changed the setting.

 

According to FRST, there were no changes in the system during the second half of April.

 

 

Please, start Notepad.

Copy all text that is in the box:

CreateRestorePoint:
CloseProcesses:
HKLM\...\Run: [] => [X]
HKU\S-1-5-21-4289144934-992402691-377659798-1001\...\MountPoints2: {5a35147f-7469-11e3-824b-806e6f6e6963} - "D:\setup.exe" 
HKU\S-1-5-21-4289144934-992402691-377659798-1001\...\MountPoints2: {db60c81e-7f06-11e4-8286-d850e640e04f} - "J:\setup.exe" 
HKU\S-1-5-21-4289144934-992402691-377659798-1001\...\MountPoints2: {db60c82b-7f06-11e4-8286-d850e640e04f} - "K:\setup.exe" 
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} -  No File
Hosts:
FF Extension: Firefox Helper - C:\Program Files (x86)\Mozilla Firefox\distribution\bundles\e58526c76809aa13e4a38405eba84817 [2015-05-17]
Task: {1B91F7B8-E1A8-41D9-BBD1-C8D999E7CFCF} - System32\Tasks\{0924FF02-CD74-472C-A4CB-68CBE864B291} => pcalua.exe -a C:\Users\Daniel\AppData\Local\Temp\devcon.exe -d C:\Users\Daniel\AppData\Local\Temp -c INSTALL "C:\Users\Daniel\AppData\Local\Temp\AmdLLD.INF" *AMDLLDDEV
Reboot:
and paste in Notepad. Check that no files have been split on two lines.

Save the file as fixlist.txt on the desktop.

 

Exit all programs.

Start FRST, please.

Click the Fix button.

Wait until the tool has finished.

 

It creates a log file, called Fixlog.txt, on the desktop.

Please, paste the content of that file in your reply.

 

 

If still too much ads in Firefox, please restart Firefox without any addons by selecting that in the Help menu.

Share this post


Link to post
Share on other sites

Ha no problem on the sweedish talk. I took German in high school and college years ago so it was interesting looking for differences in the two languages. Different enough that I didn't recognize anything. Two interesting things happened while trying to use FRST64 this time. Started and it told me the copy I was using was nine days out of date so redownloaded it and then tried to fix as instructed. While it looked like it was trying to create a restore point error came up that said FRST has stopped working, windows will close the program and see if a fix exists. Then closed the program and nothing happened. Will try running again and post if get a different response, but maybe something doesn't like what we are trying to change aka found what the malware changed and it is trying to protect itself?

 

Your English is great by the way. Would never have known it was a second language. Be well!

 

Worked the second time not sure why fixlog attached

 

Fix result of Farbar Recovery Scan Tool (x64) Version:07-06-2015
Ran by Daniel at 2015-06-08 00:06:08 Run:3
Running from C:\Users\Daniel\Desktop
Loaded Profiles: Daniel (Available Profiles: Daniel)
Boot Mode: Normal
==============================================
fixlist content:
*****************
CreateRestorePoint:
CloseProcesses:
HKLM\...\Run: [] => [X]
HKU\S-1-5-21-4289144934-992402691-377659798-1001\...\MountPoints2: {5a35147f-7469-11e3-824b-806e6f6e6963} - "D:\setup.exe"
HKU\S-1-5-21-4289144934-992402691-377659798-1001\...\MountPoints2: {db60c81e-7f06-11e4-8286-d850e640e04f} - "J:\setup.exe"
HKU\S-1-5-21-4289144934-992402691-377659798-1001\...\MountPoints2: {db60c82b-7f06-11e4-8286-d850e640e04f} - "K:\setup.exe"
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - No File
Hosts:
FF Extension: Firefox Helper - C:\Program Files (x86)\Mozilla Firefox\distribution\bundles\e58526c76809aa13e4a38405eba84817 [2015-05-17]
Task: {1B91F7B8-E1A8-41D9-BBD1-C8D999E7CFCF} - System32\Tasks\{0924FF02-CD74-472C-A4CB-68CBE864B291} => pcalua.exe -a C:\Users\Daniel\AppData\Local\Temp\devcon.exe -d C:\Users\Daniel\AppData\Local\Temp -c INSTALL "C:\Users\Daniel\AppData\Local\Temp\AmdLLD.INF" *AMDLLDDEV
Reboot:
*****************
Restore point was successfully created.
Processes closed successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\ => value not found.
HKU\S-1-5-21-4289144934-992402691-377659798-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5a35147f-7469-11e3-824b-806e6f6e6963} => key not found.
HKCR\CLSID\{5a35147f-7469-11e3-824b-806e6f6e6963} => key not found.
HKU\S-1-5-21-4289144934-992402691-377659798-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{db60c81e-7f06-11e4-8286-d850e640e04f} => key not found.
HKCR\CLSID\{db60c81e-7f06-11e4-8286-d850e640e04f} => key not found.
HKU\S-1-5-21-4289144934-992402691-377659798-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{db60c82b-7f06-11e4-8286-d850e640e04f} => key not found.
HKCR\CLSID\{db60c82b-7f06-11e4-8286-d850e640e04f} => key not found.
"C:\Windows\system32\GroupPolicy\Machine" => File/Folder not found.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value not found.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value not found.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value not found.
HKCR\PROTOCOLS\Filter\application/x-mfe-ipt => key not found.
HKCR\CLSID\{3EF5086B-5478-4598-A054-786C45D75692} => key not found.
C:\Windows\System32\Drivers\etc\hosts => moved successfully.
Hosts restored successfully.
C:\Program Files (x86)\Mozilla Firefox\distribution\bundles\e58526c76809aa13e4a38405eba84817 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1B91F7B8-E1A8-41D9-BBD1-C8D999E7CFCF}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1B91F7B8-E1A8-41D9-BBD1-C8D999E7CFCF}" => key removed successfully
C:\Windows\System32\Tasks\{0924FF02-CD74-472C-A4CB-68CBE864B291} => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{0924FF02-CD74-472C-A4CB-68CBE864B291}" => key removed successfully
The system needed a reboot..
==== End of Fixlog 00:06:19 ====
Edited by dcole

Share this post


Link to post
Share on other sites

Many words are similar, even if I don't remember much of my lessons in German during High School.

Förstår du inte mina frågor eller vad är problemet?

förstår = verstehen (remember the pronunciation of V is F) https://en.wiktionary.org/wiki/verstehen

inte = nicht

mina = mein

frågor = Fragen

 

Thank you :)
I always wonder if it's understandable.

 

How is Firefox doing?

  • Like 1

Share this post


Link to post
Share on other sites
Guest
This topic is now closed to further replies.
Sign in to follow this