|
Log-Analyse und Auswertung: kein internetzugriff möglich, habe zwei infizierte regiestrierungsschlüsselWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
14.11.2012, 18:45 | #1 |
| kein internetzugriff möglich, habe zwei infizierte regiestrierungsschlüssel Hallo, ich brauche dringend Hilfe da trotz Internetverbindung mein Laptop keinen Zugang erhält. Ich konnte bereits mit Hilfe von Malwarebytes bis auf wahrscheinlich zwei Fehler alles bereinigen. Fehler ist passiert da ich nicht auf die automatischen Updates für meinen Bitdefender geachtet habe. Brauche den anderen Laptop sehr dringend für meine Arbeit. Hänge sonst nur an meinem reserve Möhrchen. Habe auch schon die benötigten scans mit angehängt. Wäre toll wenn es so schnell wie beim letzten Mal klappen würde. Vielen Dank im voraus. Klausi58 |
14.11.2012, 19:03 | #2 | |
/// TB-Ausbilder | kein internetzugriff möglich, habe zwei infizierte regiestrierungsschlüsselIch werde dir bei deinem Problem helfen. Eine Bereinigung ist mitunter mit viel Arbeit für Dich (und mich) verbunden. Bevor es los geht, habe ich etwas Lesestoff für dich. Logfiles nicht ZIPPEN! Bitte MBAM-log posten.
__________________ |
14.11.2012, 19:05 | #3 | |
/// TB-Ausbilder | kein internetzugriff möglich, habe zwei infizierte regiestrierungsschlüssel-----------------------
__________________ |
14.11.2012, 19:27 | #4 |
| kein internetzugriff möglich, habe zwei infizierte regiestrierungsschlüssel Malwarebytes Anti-Malware 1.65.1.1000 www.malwarebytes.org Datenbank Version: v2012.09.29.05 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 9.0.8112.16421 Weisgerber :: WEISGERBER-VAIO [Administrator] 14.11.2012 15:17:13 mbam-log-2012-11-14 (15-31-40).txt Art des Suchlaufs: Quick-Scan Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 201013 Laufzeit: 3 Minute(n), 23 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 2 HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{00CBB66B-1D3B-46D3-9577-323A336ACB50} (PUP.Blabbers) -> Keine Aktion durchgeführt. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{963B125B-8B21-49A2-A3A8-E37092276531} (PUP.Blabbers) -> Keine Aktion durchgeführt. Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 0 (Keine bösartigen Objekte gefunden) (Ende) |
14.11.2012, 19:28 | #5 |
/// TB-Ausbilder | kein internetzugriff möglich, habe zwei infizierte regiestrierungsschlüssel Das ist erstmal nur Webung. Wir schauen ob wir die wegbekommen. Schritt 1: AdwCleaner: Werbeprogramme suchen und löschen Schritt 2: Customscan mit OTL
__________________ Digitale Freibeuter gegen Malware! Keine Hilfe per PM! |
14.11.2012, 20:02 | #6 |
| kein internetzugriff möglich, habe zwei infizierte regiestrierungsschlüssel Hallo, ich habe da was überhaupt nicht kapiert. Wen soll ich wo rein kopieren? Und wenn ja, wie? Bitte verständlich, bin kein Fachmann. Danke. |
14.11.2012, 20:27 | #7 |
/// TB-Ausbilder | kein internetzugriff möglich, habe zwei infizierte regiestrierungsschlüssel Du kopierst das aus der orangenen Box in OTL.
__________________ Digitale Freibeuter gegen Malware! Keine Hilfe per PM! |
15.11.2012, 19:37 | #8 |
| kein internetzugriff möglich, habe zwei infizierte regiestrierungsschlüssel Hi ryder, ich möchte ja nicht drängeln, wollte nur wissen ob heute noch was geht? Ich habe ja jede Menge geschickt. Kann wahrscheinlich etwas dauern. Ich weiß nur nicht ob ich noch auf der Lauer liegen soll oder nicht. Sonst mach ich zu! Du weißt ja Moppedfahren wie wir beide haben es immer eilig. Klausi58 |
15.11.2012, 22:13 | #9 |
/// TB-Ausbilder | kein internetzugriff möglich, habe zwei infizierte regiestrierungsschlüssel Dann führte die beiden Schritte aus. Dann gehts auch weiter.
__________________ Digitale Freibeuter gegen Malware! Keine Hilfe per PM! |
16.11.2012, 14:14 | #10 |
| kein internetzugriff möglich, habe zwei infizierte regiestrierungsschlüsselCode:
ATTFilter # AdwCleaner v2.007 - Datei am 14/11/2012 um 19:32:31 erstellt # Aktualisiert am 06/11/2012 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzer : Weisgerber - WEISGERBER-VAIO # Bootmodus : Normal # Ausgeführt unter : C:\Users\Weisgerber\Desktop\adwcleaner.exe # Option [Löschen] **** [Dienste] **** Gestoppt & Gelöscht : Browser Manager ***** [Dateien / Ordner] ***** Datei Gelöscht : C:\Users\Weisgerber\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tbhcn.lnk Datei Gelöscht : C:\Users\Weisgerber\AppData\Roaming\Mozilla\Firefox\Profiles\40hac1kq.default\searchplugins\Plusnetwork.xml Gelöscht mit Neustart : C:\ProgramData\Browser Manager Ordner Gelöscht : C:\Program Files (x86)\appbario8 Ordner Gelöscht : C:\Program Files (x86)\Conduit Ordner Gelöscht : C:\Program Files (x86)\Savings Sidekick Ordner Gelöscht : C:\Program Files (x86)\Yontoo Ordner Gelöscht : C:\ProgramData\IBUpdaterService Ordner Gelöscht : C:\ProgramData\Tarma Installer Ordner Gelöscht : C:\Users\Weisgerber\AppData\Local\Conduit Ordner Gelöscht : C:\Users\Weisgerber\AppData\Local\Savings Sidekick Ordner Gelöscht : C:\Users\Weisgerber\AppData\LocalLow\appbario8 Ordner Gelöscht : C:\Users\Weisgerber\AppData\LocalLow\bbrs_002.tb Ordner Gelöscht : C:\Users\Weisgerber\AppData\LocalLow\Conduit Ordner Gelöscht : C:\Users\Weisgerber\AppData\Roaming\BrowserCompanion Ordner Gelöscht : C:\Users\Weisgerber\AppData\Roaming\Mozilla\Firefox\Profiles\40hac1kq.default\extensions\bbrs_002@blabbers.com Ordner Gelöscht : C:\Users\Weisgerber\AppData\Roaming\Mozilla\Firefox\Profiles\40hac1kq.default\extensions\plugin@yontoo.com ***** [Registrierungsdatenbank] ***** Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\appbario8 Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Conduit Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\ConduitSearchScopes Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Crossrider Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Savings Sidekick Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\SmartBar Schlüssel Gelöscht : HKCU\Software\AppDataLow\Toolbar Schlüssel Gelöscht : HKCU\Software\bProtector Schlüssel Gelöscht : HKCU\Software\Cr_Installer Schlüssel Gelöscht : HKCU\Software\DataMngr Schlüssel Gelöscht : HKCU\Software\DataMngr_Toolbar Schlüssel Gelöscht : HKCU\Software\InstalledBrowserExtensions Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{00CBB66B-1D3B-46D3-9577-323A336ACB50} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0CC09160-108C-4759-BAB1-5C12C216E005} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{963B125B-8B21-49A2-A3A8-E37092276531} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{17FBAC21-3A8E-43BD-AB17-F02E52037EDB} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8} Schlüssel Gelöscht : HKCU\Software\Softonic Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{4327FABE-3C22-4689-8DBF-D226CF777FE9} Schlüssel Gelöscht : HKLM\Software\appbario8 Schlüssel Gelöscht : HKLM\Software\bProtector Schlüssel Gelöscht : HKLM\Software\BrowserCompanion Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{20EDC024-43C5-423E-B7F5-FD93523E0D9F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{373ED12D-B306-43AC-9485-A7C5133DC34C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{ED6535E7-F778-48A5-A060-549D30024511} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\tdataprotocol.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\updatebho.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\wit4ie.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0005060.BHO Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0005060.Sandbox Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0005060.Sandbox.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar.CT3227982 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\YontooIEClient.Api Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\YontooIEClient.Api.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\YontooIEClient.Layers Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\YontooIEClient.Layers.1 Schlüssel Gelöscht : HKLM\Software\Conduit Schlüssel Gelöscht : HKLM\Software\DataMngr Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{17FBAC21-3A8E-43BD-AB17-F02E52037EDB} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{10DE7085-6A1E-4D41-A7BF-9AF93E351401} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{17FBAC21-3A8E-43BD-AB17-F02E52037EDB} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{22222222-2222-2222-2222-220022502260} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{7E84186E-B5DE-4226-8A66-6E49C6B511B4} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{99066096-8989-4612-841F-621A01D54AD7} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FE9271F2-6EFD-44B0-A826-84C829536E93} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66666666-6666-6666-6666-660066506660} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{7D86A08B-0A8F-4BE0-B693-F05E6947E780} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\dhdepfaagokllfmhfbcfmocaeigmoebo Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C32D855-113D-4167-9AEC-0806B69992AD} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C12B4A62-E7CF-4A83-B45F-4987F42795EC} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4EFD-BAD7-B9B4CB4BC693} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\appbario8 Toolbar Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Savings Sidekick Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550055505560} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660066506660} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{817923CB-4744-4216-B250-CF7EDA8F1767} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9F0C17EB-EF2C-4278-9136-2D547656BC03} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B} Schlüssel Gelöscht : HKLM\SOFTWARE\Tarma Installer Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{0CC09160-108C-4759-BAB1-5C12C216E005}] Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{0CC09160-108C-4759-BAB1-5C12C216E005}] Wert Gelöscht : HKCU\Software\Mozilla\Firefox\Extensions [{b64982b1-d112-42b5-b1e4-d3867c4533f8}] Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{0CC09160-108C-4759-BAB1-5C12C216E005}] Wert Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{0CC09160-108C-4759-BAB1-5C12C216E005}] ***** [Internet Browser] ***** -\\ Internet Explorer v9.0.8112.16421 [OK] Die Registrierungsdatenbank ist sauber. -\\ Mozilla Firefox v15.0.1 (de) Profilname : default Datei : C:\Users\Weisgerber\AppData\Roaming\Mozilla\Firefox\Profiles\40hac1kq.default\prefs.js C:\Users\Weisgerber\AppData\Roaming\Mozilla\Firefox\Profiles\40hac1kq.default\user.js ... Gelöscht ! Gelöscht : user_pref("avg.install.userHPSettings", "hxxp://search.conduit.com/?ctid=CT3227980&SearchSource=13")[...] Gelöscht : user_pref("avg.install.userSPSettings", "appbario8 Customized Web Search"); Gelöscht : user_pref("browser.search.defaultenginename", "appbario8 Customized Web Search"); Gelöscht : user_pref("browser.search.order.1", "appbario8 Customized Web Search"); Gelöscht : user_pref("browser.search.selectedEngine", "appbario8 Customized Web Search"); Gelöscht : user_pref("browser.startup.homepage", "hxxp://search.conduit.com/?ctid=CT3227980&SearchSource=13"); Gelöscht : user_pref("extensions.crossriderapp5060.5060.InstallationTime", 1347970275); Gelöscht : user_pref("extensions.crossriderapp5060.5060.cookie.InstallationTime.expiration", "Fri Feb 01 2030 0[...] Gelöscht : user_pref("extensions.crossriderapp5060.5060.cookie.InstallationTime.value", "1347970275"); Gelöscht : user_pref("extensions.crossriderapp5060.adsOldValue", -1); Gelöscht : user_pref("extensions.crossriderapp5060.bic", "139d94a18a548fe8c654a9e4c41a8e52"); Gelöscht : user_pref("extensions.crossriderapp5060.firstrun", false); Gelöscht : user_pref("extensions.crossriderapp5060.installationdate", 1347970276); Gelöscht : user_pref("extensions.crossriderapp5060.lastcheck", 22548210); Gelöscht : user_pref("extensions.crossriderapp5060.lastcheckitem", 22548210); Gelöscht : user_pref("extensions.enabledAddons", "crossriderapp5060@crossrider.com:0.83.15,bbrs_002@blabbers.co[...] Gelöscht : user_pref("keyword.URL", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3227980&SearchSource=2&q=[...] -\\ Google Chrome v [Version kann nicht ermittelt werden] Datei : C:\Users\Weisgerber\AppData\Local\Google\Chrome\User Data\Default\Preferences [OK] Die Datei ist sauber. ************************* AdwCleaner[S1].txt - [10979 octets] - [14/11/2012 19:32:31] ########## EOF - C:\AdwCleaner[S1].txt - [11040 octets] ########## Code:
ATTFilter OTL Logfile: |
16.11.2012, 14:18 | #11 |
| kein internetzugriff möglich, habe zwei infizierte regiestrierungsschlüsselCode:
ATTFilter OTL EXTRAS Logfile: |
16.11.2012, 15:58 | #12 | |
/// TB-Ausbilder | kein internetzugriff möglich, habe zwei infizierte regiestrierungsschlüssel Hm gar nicht gut ... Schritt 1: Scan mit aswMBR Schritt 2: Scan mit dem TDSS-Killer Lese bitte folgende Anweisungen genau. Wir wollen hier noch nichts "fixen" sondern nur einen Scan Report sehen.
__________________ Digitale Freibeuter gegen Malware! Keine Hilfe per PM! |
16.11.2012, 17:29 | #13 |
| kein internetzugriff möglich, habe zwei infizierte regiestrierungsschlüssel Hi ryder, das ist ja mal was nettes. Aber was soll´s. Habe schon mal mein Onlinebanking gesichert. War noch alles ok. Dann werde ich mal loslegen. klausi58 aswMBR version 0.9.9.1707 Copyright(c) 2011 AVAST Software Run date: 2012-11-16 17:44:07 ----------------------------- 17:44:07.198 OS Version: Windows x64 6.1.7601 Service Pack 1 17:44:07.198 Number of processors: 2 586 0x2A07 17:44:07.199 ComputerName: WEISGERBER-VAIO UserName: Weisgerber 17:44:10.109 Initialize success 17:45:03.951 AVAST engine defs: 12111600 17:45:47.965 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 17:45:47.969 Disk 0 Vendor: Hitachi_ JE3O Size: 476940MB BusType: 3 17:45:47.975 Disk 0 MBR read successfully 17:45:47.979 Disk 0 MBR scan 17:45:48.071 Disk 0 Windows 7 default MBR code 17:45:48.074 Disk 0 Partition 1 00 27 Hidden NTFS WinRE NTFS 17112 MB offset 2048 17:45:48.090 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 350 MB offset 35047424 17:45:48.108 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 459476 MB offset 35764224 17:45:48.125 Disk 0 scanning C:\Windows\system32\drivers 17:46:01.411 Service scanning 17:46:06.609 Service BdfNdisf c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys **LOCKED** 5 17:46:06.683 Service bdfwfpf C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys **LOCKED** 5 17:46:37.940 Modules scanning 17:46:38.283 Disk 0 trace - called modules: 17:46:38.299 ntoskrnl.exe CLASSPNP.SYS disk.sys iaStor.sys hal.dll 17:46:38.303 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8007167060] 17:46:38.308 3 CLASSPNP.SYS[fffff8800160143f] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa80049e6050] 17:46:40.278 AVAST engine scan C:\Windows 17:46:44.134 AVAST engine scan C:\Windows\system32 17:50:07.059 AVAST engine scan C:\Windows\system32\drivers 17:50:23.137 AVAST engine scan C:\Users\Weisgerber 18:02:33.648 AVAST engine scan C:\ProgramData 18:04:49.977 Scan finished successfully 18:05:31.972 Disk 0 MBR has been saved successfully to "C:\Users\Weisgerber\Desktop\MBR.dat" 18:05:32.065 The log file has been saved successfully to "C:\Users\Weisgerber\Desktop\aswMBR.txt" 18:14:40.0603 4192 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35 18:14:40.0759 4192 ============================================================ 18:14:40.0759 4192 Current date / time: 2012/11/16 18:14:40.0759 18:14:40.0759 4192 SystemInfo: 18:14:40.0759 4192 18:14:40.0759 4192 OS Version: 6.1.7601 ServicePack: 1.0 18:14:40.0759 4192 Product type: Workstation 18:14:40.0759 4192 ComputerName: WEISGERBER-VAIO 18:14:40.0759 4192 UserName: Weisgerber 18:14:40.0759 4192 Windows directory: C:\Windows 18:14:40.0759 4192 System windows directory: C:\Windows 18:14:40.0759 4192 Running under WOW64 18:14:40.0759 4192 Processor architecture: Intel x64 18:14:40.0759 4192 Number of processors: 2 18:14:40.0759 4192 Page size: 0x1000 18:14:40.0759 4192 Boot type: Normal boot 18:14:40.0759 4192 ============================================================ 18:14:42.0069 4192 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 18:14:42.0335 4192 Drive \Device\Harddisk2\DR5 - Size: 0xEF000000 (3.73 Gb), SectorSize: 0x200, Cylinders: 0x1E7, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W' 18:14:42.0350 4192 ============================================================ 18:14:42.0350 4192 \Device\Harddisk0\DR0: 18:14:42.0350 4192 MBR partitions: 18:14:42.0350 4192 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x216C800, BlocksNum 0xAF000 18:14:42.0350 4192 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x221B800, BlocksNum 0x3816A030 18:14:42.0350 4192 \Device\Harddisk2\DR5: 18:14:42.0350 4192 MBR partitions: 18:14:42.0350 4192 \Device\Harddisk2\DR5\Partition1: MBR, Type 0xB, StartLBA 0x20, BlocksNum 0x777FE0 18:14:42.0350 4192 ============================================================ 18:14:42.0381 4192 C: <-> \Device\Harddisk0\DR0\Partition2 18:14:42.0381 4192 ============================================================ 18:14:42.0381 4192 Initialize success 18:14:42.0381 4192 ============================================================ 18:16:17.0510 7184 ============================================================ 18:16:17.0510 7184 Scan started 18:16:17.0510 7184 Mode: Manual; TDLFS; 18:16:17.0510 7184 ============================================================ 18:16:18.0259 7184 ================ Scan system memory ======================== 18:16:18.0259 7184 System memory - ok 18:16:18.0259 7184 ================ Scan services ============================= 18:16:18.0556 7184 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys 18:16:18.0587 7184 1394ohci - ok 18:16:18.0696 7184 [ ADC420616C501B45D26C0FD3EF1E54E4 ] ACDaemon C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe 18:16:18.0727 7184 ACDaemon - ok 18:16:18.0774 7184 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys 18:16:18.0790 7184 ACPI - ok 18:16:18.0790 7184 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys 18:16:18.0790 7184 AcpiPmi - ok 18:16:18.0883 7184 [ D19C4EE2AC7C47B8F5F84FFF1A789D8A ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 18:16:18.0883 7184 AdobeARMservice - ok 18:16:19.0070 7184 [ 44C00A385CA9DBC1D5CF3781F8C26AEA ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 18:16:19.0070 7184 AdobeFlashPlayerUpdateSvc - ok 18:16:19.0117 7184 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys 18:16:19.0117 7184 adp94xx - ok 18:16:19.0164 7184 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\drivers\adpahci.sys 18:16:19.0180 7184 adpahci - ok 18:16:19.0211 7184 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\drivers\adpu320.sys 18:16:19.0211 7184 adpu320 - ok 18:16:19.0258 7184 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 18:16:19.0258 7184 AeLookupSvc - ok 18:16:19.0304 7184 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys 18:16:19.0336 7184 AFD - ok 18:16:19.0367 7184 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys 18:16:19.0367 7184 agp440 - ok 18:16:19.0382 7184 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe 18:16:19.0382 7184 ALG - ok 18:16:19.0398 7184 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys 18:16:19.0398 7184 aliide - ok 18:16:19.0429 7184 [ 010F8750A454224982CED18F35AA2C04 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe 18:16:19.0429 7184 AMD External Events Utility - ok 18:16:19.0445 7184 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys 18:16:19.0445 7184 amdide - ok 18:16:19.0460 7184 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys 18:16:19.0460 7184 AmdK8 - ok 18:16:19.0710 7184 [ 623EC962E3F8366B3C5DD03B51DE5075 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys 18:16:19.0913 7184 amdkmdag - ok 18:16:19.0944 7184 [ DF73398D14D9A20E0E1ADAEDA63B32D5 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys 18:16:19.0944 7184 amdkmdap - ok 18:16:19.0975 7184 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\drivers\amdppm.sys 18:16:19.0975 7184 AmdPPM - ok 18:16:19.0991 7184 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys 18:16:19.0991 7184 amdsata - ok 18:16:20.0006 7184 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\drivers\amdsbs.sys 18:16:20.0006 7184 amdsbs - ok 18:16:20.0022 7184 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys 18:16:20.0022 7184 amdxata - ok 18:16:20.0053 7184 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys 18:16:20.0053 7184 AppID - ok 18:16:20.0084 7184 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll 18:16:20.0084 7184 AppIDSvc - ok 18:16:20.0116 7184 [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo C:\Windows\System32\appinfo.dll 18:16:20.0116 7184 Appinfo - ok 18:16:20.0131 7184 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\drivers\arc.sys 18:16:20.0131 7184 arc - ok 18:16:20.0147 7184 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\drivers\arcsas.sys 18:16:20.0147 7184 arcsas - ok 18:16:20.0194 7184 [ C130BC4A51B1382B2BE8E44579EC4C0A ] ArcSoftKsUFilter C:\Windows\system32\DRIVERS\ArcSoftKsUFilter.sys 18:16:20.0194 7184 ArcSoftKsUFilter - ok 18:16:20.0287 7184 [ 9217D874131AE6FF8F642F124F00A555 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe 18:16:20.0334 7184 aspnet_state - ok 18:16:20.0350 7184 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 18:16:20.0350 7184 AsyncMac - ok 18:16:20.0381 7184 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys 18:16:20.0381 7184 atapi - ok 18:16:20.0443 7184 [ D0B119D6F52BDCA8D204F79D27690209 ] AthBTPort C:\Windows\system32\DRIVERS\btath_flt.sys 18:16:20.0443 7184 AthBTPort - ok 18:16:20.0506 7184 [ 86F8A0A8D59D0AE2B1096F3103F0E0AD ] AtherosSvc C:\Program Files (x86)\Bluetooth Suite\adminservice.exe 18:16:20.0506 7184 AtherosSvc - ok 18:16:20.0615 7184 [ 237EE0B7A65D55E08EB7530F77423480 ] athr C:\Windows\system32\DRIVERS\athrx.sys 18:16:20.0646 7184 athr - ok 18:16:20.0677 7184 [ 2B3B05C0A7768BF033217EB8F33F9C35 ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW76.sys 18:16:20.0677 7184 AtiHDAudioService - ok 18:16:20.0708 7184 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 18:16:20.0708 7184 AudioEndpointBuilder - ok 18:16:20.0724 7184 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll 18:16:20.0724 7184 AudioSrv - ok 18:16:20.0786 7184 [ F57DE310BF3BD9DF0F7D301C1D7F5432 ] avc3 C:\Windows\system32\DRIVERS\avc3.sys 18:16:20.0802 7184 avc3 - ok 18:16:20.0849 7184 [ 4C6BCC638798ABE1F70AFCA70D889C3F ] avchv C:\Windows\system32\DRIVERS\avchv.sys 18:16:20.0864 7184 avchv - ok 18:16:20.0958 7184 [ 6DC4CCA415BBF2FC629BEB532AA0E6CD ] avckf C:\Windows\system32\DRIVERS\avckf.sys 18:16:20.0974 7184 avckf - ok 18:16:21.0020 7184 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll 18:16:21.0020 7184 AxInstSV - ok 18:16:21.0083 7184 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys 18:16:21.0098 7184 b06bdrv - ok 18:16:21.0114 7184 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys 18:16:21.0130 7184 b57nd60a - ok 18:16:21.0192 7184 [ 01A24B415926BB5F772DBE12459D97DE ] BBSvc C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE 18:16:21.0270 7184 BBSvc - ok 18:16:21.0332 7184 [ 785DE7ABDA13309D6065305542829E76 ] BBUpdate C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE 18:16:21.0332 7184 BBUpdate - ok 18:16:21.0410 7184 [ 138F5A80CDC3A62E2FFB9BEA1B6385AC ] BdDesktopParental C:\Program Files\Bitdefender\Bitdefender 2013\bdparentalservice.exe 18:16:21.0426 7184 BdDesktopParental - ok 18:16:21.0457 7184 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll 18:16:21.0457 7184 BDESVC - ok 18:16:21.0551 7184 [ 9920B815BC3B3F2D69071842DD18D422 ] BdfNdisf c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys 18:16:21.0582 7184 BdfNdisf - ok 18:16:21.0644 7184 [ 4CE4B0098FC315C237FA8867F07886C4 ] bdfwfpf C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys 18:16:21.0644 7184 bdfwfpf - ok 18:16:21.0691 7184 [ 31571D77C6186AD228F52EE4EBDF8EE9 ] BDSandBox C:\Windows\system32\drivers\bdsandbox.sys 18:16:21.0707 7184 BDSandBox - ok 18:16:21.0738 7184 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys 18:16:21.0738 7184 Beep - ok 18:16:21.0769 7184 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys 18:16:21.0769 7184 blbdrive - ok 18:16:21.0785 7184 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys 18:16:21.0800 7184 bowser - ok 18:16:21.0816 7184 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys 18:16:21.0816 7184 BrFiltLo - ok 18:16:21.0832 7184 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys 18:16:21.0847 7184 BrFiltUp - ok 18:16:21.0863 7184 [ C711ED965009BDCFF9AA62CEB6FF1AAD ] Brother XP spl Service C:\Windows\SysWOW64\brsvc01a.exe 18:16:21.0878 7184 Brother XP spl Service - ok 18:16:21.0910 7184 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll 18:16:21.0910 7184 Browser - ok 18:16:21.0956 7184 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\system32\DRIVERS\BrSerId.sys 18:16:21.0972 7184 Brserid - ok 18:16:21.0988 7184 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 18:16:22.0003 7184 BrSerWdm - ok 18:16:22.0034 7184 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 18:16:22.0034 7184 BrUsbMdm - ok 18:16:22.0050 7184 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\system32\DRIVERS\BrUsbSer.sys 18:16:22.0050 7184 BrUsbSer - ok 18:16:22.0097 7184 [ C05ED3246C06EC56F10D85B0304CD09E ] BTATH_A2DP C:\Windows\system32\drivers\btath_a2dp.sys 18:16:22.0112 7184 BTATH_A2DP - ok 18:16:22.0144 7184 [ 2D27F7A831657D63AFC78E5E78DCA83F ] btath_avdt C:\Windows\system32\drivers\btath_avdt.sys 18:16:22.0144 7184 btath_avdt - ok 18:16:22.0175 7184 [ E6B734A37ADE36FE1A77035F4E484C8C ] BTATH_BUS C:\Windows\system32\DRIVERS\btath_bus.sys 18:16:22.0175 7184 BTATH_BUS - ok 18:16:22.0206 7184 [ FB3833E63FF602B69C2FF085846DCF43 ] BTATH_HCRP C:\Windows\system32\DRIVERS\btath_hcrp.sys 18:16:22.0206 7184 BTATH_HCRP - ok 18:16:22.0237 7184 [ 371A11C1333BA526263A987A93ACDE3D ] BTATH_LWFLT C:\Windows\system32\DRIVERS\btath_lwflt.sys 18:16:22.0237 7184 BTATH_LWFLT - ok 18:16:22.0268 7184 [ ABCD3C16CA850A7594CEB9AD5D966810 ] BTATH_RCP C:\Windows\system32\DRIVERS\btath_rcp.sys 18:16:22.0268 7184 BTATH_RCP - ok 18:16:22.0300 7184 [ 680BE9ED6431DAFA844F5F7B61B11F9A ] BTATH_VDP C:\Windows\system32\drivers\btath_vdp.sys 18:16:22.0315 7184 BTATH_VDP - ok 18:16:22.0362 7184 [ 4FBDD8AF372ED5CB2EA63C0890C62435 ] BtFilter C:\Windows\system32\DRIVERS\btfilter.sys 18:16:22.0378 7184 BtFilter - ok 18:16:22.0409 7184 [ CF98190A94F62E405C8CB255018B2315 ] BthEnum C:\Windows\system32\drivers\BthEnum.sys 18:16:22.0409 7184 BthEnum - ok 18:16:22.0440 7184 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys 18:16:22.0440 7184 BTHMODEM - ok 18:16:22.0456 7184 [ 02DD601B708DD0667E1331FA8518E9FF ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys 18:16:22.0456 7184 BthPan - ok 18:16:22.0502 7184 [ 738D0E9272F59EB7A1449C3EC118E6C4 ] BTHPORT C:\Windows\System32\Drivers\BTHport.sys 18:16:22.0534 7184 BTHPORT - ok 18:16:22.0565 7184 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll 18:16:22.0565 7184 bthserv - ok 18:16:22.0580 7184 [ F188B7394D81010767B6DF3178519A37 ] BTHUSB C:\Windows\System32\Drivers\BTHUSB.sys 18:16:22.0580 7184 BTHUSB - ok 18:16:22.0612 7184 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 18:16:22.0627 7184 cdfs - ok 18:16:22.0643 7184 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys 18:16:22.0643 7184 cdrom - ok 18:16:22.0674 7184 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll 18:16:22.0674 7184 CertPropSvc - ok 18:16:22.0705 7184 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\drivers\circlass.sys 18:16:22.0705 7184 circlass - ok 18:16:22.0783 7184 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys 18:16:22.0783 7184 CLFS - ok 18:16:22.0846 7184 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 18:16:22.0846 7184 clr_optimization_v2.0.50727_32 - ok 18:16:22.0908 7184 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 18:16:22.0924 7184 clr_optimization_v2.0.50727_64 - ok 18:16:22.0970 7184 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 18:16:23.0111 7184 clr_optimization_v4.0.30319_32 - ok 18:16:23.0173 7184 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe 18:16:23.0204 7184 clr_optimization_v4.0.30319_64 - ok 18:16:23.0236 7184 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys 18:16:23.0236 7184 CmBatt - ok 18:16:23.0251 7184 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys 18:16:23.0267 7184 cmdide - ok 18:16:23.0298 7184 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\Windows\system32\Drivers\cng.sys 18:16:23.0314 7184 CNG - ok 18:16:23.0329 7184 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys 18:16:23.0345 7184 Compbatt - ok 18:16:23.0345 7184 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys 18:16:23.0345 7184 CompositeBus - ok 18:16:23.0360 7184 COMSysApp - ok 18:16:23.0376 7184 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys 18:16:23.0376 7184 crcdisk - ok 18:16:23.0392 7184 [ 9C01375BE382E834CC26D1B7EAF2C4FE ] CryptSvc C:\Windows\system32\cryptsvc.dll 18:16:23.0407 7184 CryptSvc - ok 18:16:23.0516 7184 [ 72794D112CBAFF3BC0C29BF7350D4741 ] cvhsvc C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE 18:16:23.0532 7184 cvhsvc - ok 18:16:23.0641 7184 [ 461A0688205D088D2A2EBEEDEE81622E ] DCDhcpService C:\Program Files\Sony\VAIO Smart Network\WFDA\DCDhcpService.exe 18:16:23.0672 7184 DCDhcpService - ok 18:16:23.0704 7184 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll 18:16:23.0704 7184 DcomLaunch - ok 18:16:23.0750 7184 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll 18:16:23.0750 7184 defragsvc - ok 18:16:23.0782 7184 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys 18:16:23.0782 7184 DfsC - ok 18:16:23.0828 7184 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll 18:16:23.0844 7184 Dhcp - ok 18:16:23.0860 7184 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys 18:16:23.0860 7184 discache - ok 18:16:23.0891 7184 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\drivers\disk.sys 18:16:23.0891 7184 Disk - ok 18:16:23.0938 7184 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll 18:16:23.0938 7184 Dnscache - ok 18:16:23.0953 7184 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll 18:16:23.0969 7184 dot3svc - ok 18:16:23.0969 7184 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll 18:16:23.0984 7184 DPS - ok 18:16:24.0000 7184 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 18:16:24.0000 7184 drmkaud - ok 18:16:24.0047 7184 [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 18:16:24.0047 7184 DXGKrnl - ok 18:16:24.0078 7184 [ 50AD8FC1DC800FF36087994C8F7FDFF2 ] e1yexpress C:\Windows\system32\DRIVERS\e1y60x64.sys 18:16:24.0078 7184 e1yexpress - ok 18:16:24.0109 7184 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll 18:16:24.0109 7184 EapHost - ok 18:16:24.0234 7184 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\drivers\evbda.sys 18:16:24.0328 7184 ebdrv - ok 18:16:24.0359 7184 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe 18:16:24.0359 7184 EFS - ok 18:16:24.0437 7184 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe 18:16:24.0452 7184 ehRecvr - ok 18:16:24.0468 7184 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe 18:16:24.0484 7184 ehSched - ok 18:16:24.0530 7184 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\drivers\elxstor.sys 18:16:24.0546 7184 elxstor - ok 18:16:24.0562 7184 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys 18:16:24.0562 7184 ErrDev - ok 18:16:24.0624 7184 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll 18:16:24.0624 7184 EventSystem - ok 18:16:24.0655 7184 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys 18:16:24.0671 7184 exfat - ok 18:16:24.0686 7184 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys 18:16:24.0686 7184 fastfat - ok 18:16:24.0733 7184 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe 18:16:24.0749 7184 Fax - ok 18:16:24.0764 7184 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\drivers\fdc.sys 18:16:24.0764 7184 fdc - ok 18:16:24.0796 7184 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll 18:16:24.0796 7184 fdPHost - ok 18:16:24.0827 7184 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll 18:16:24.0827 7184 FDResPub - ok 18:16:24.0858 7184 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 18:16:24.0858 7184 FileInfo - ok 18:16:24.0874 7184 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys 18:16:24.0874 7184 Filetrace - ok 18:16:24.0936 7184 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\drivers\flpydisk.sys 18:16:24.0936 7184 flpydisk - ok 18:16:24.0952 7184 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 18:16:24.0967 7184 FltMgr - ok 18:16:25.0014 7184 [ 5C4CB4086FB83115B153E47ADD961A0C ] FontCache C:\Windows\system32\FntCache.dll 18:16:25.0045 7184 FontCache - ok 18:16:25.0092 7184 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 18:16:25.0092 7184 FontCache3.0.0.0 - ok 18:16:25.0108 7184 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 18:16:25.0108 7184 FsDepends - ok 18:16:25.0123 7184 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 18:16:25.0123 7184 Fs_Rec - ok 18:16:25.0154 7184 [ 1F7B25B858FA27015169FE95E54108ED ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 18:16:25.0154 7184 fvevol - ok 18:16:25.0170 7184 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys 18:16:25.0170 7184 gagp30kx - ok 18:16:25.0217 7184 [ C403C5DB49A0F9AAF4F2128EDC0106D8 ] GamesAppService C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe 18:16:25.0326 7184 GamesAppService - ok 18:16:25.0373 7184 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll 18:16:25.0404 7184 gpsvc - ok 18:16:25.0466 7184 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 18:16:25.0466 7184 gupdate - ok 18:16:25.0498 7184 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 18:16:25.0498 7184 gupdatem - ok 18:16:25.0560 7184 [ 5D4BC124FAAE6730AC002CDB67BF1A1C ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe 18:16:25.0622 7184 gusvc - ok 18:16:25.0654 7184 [ 07177B5A8C277074C30AC515FEBD4F37 ] gzflt C:\Windows\system32\DRIVERS\gzflt.sys 18:16:25.0654 7184 gzflt - ok 18:16:25.0685 7184 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 18:16:25.0685 7184 hcw85cir - ok 18:16:25.0700 7184 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 18:16:25.0700 7184 HdAudAddService - ok 18:16:25.0732 7184 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys 18:16:25.0732 7184 HDAudBus - ok 18:16:25.0763 7184 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\drivers\HidBatt.sys 18:16:25.0763 7184 HidBatt - ok 18:16:25.0778 7184 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\drivers\hidbth.sys 18:16:25.0778 7184 HidBth - ok 18:16:25.0794 7184 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\drivers\hidir.sys 18:16:25.0794 7184 HidIr - ok 18:16:25.0825 7184 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll 18:16:25.0825 7184 hidserv - ok 18:16:25.0856 7184 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys 18:16:25.0856 7184 HidUsb - ok 18:16:25.0888 7184 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll 18:16:25.0888 7184 hkmsvc - ok 18:16:25.0919 7184 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll 18:16:25.0919 7184 HomeGroupListener - ok 18:16:25.0950 7184 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 18:16:25.0950 7184 HomeGroupProvider - ok 18:16:25.0981 7184 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys 18:16:25.0981 7184 HpSAMD - ok 18:16:26.0012 7184 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys 18:16:26.0028 7184 HTTP - ok 18:16:26.0044 7184 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 18:16:26.0044 7184 hwpolicy - ok 18:16:26.0075 7184 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys 18:16:26.0075 7184 i8042prt - ok 18:16:26.0122 7184 [ C224331A54571C8C9162F7714400BBBD ] iaStor C:\Windows\system32\drivers\iaStor.sys 18:16:26.0122 7184 iaStor - ok 18:16:26.0200 7184 [ 7D4B9A48430ED57ACA6373B71D5904CA ] IAStorDataMgrSvc C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe 18:16:26.0215 7184 IAStorDataMgrSvc - ok 18:16:26.0262 7184 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 18:16:26.0278 7184 iaStorV - ok 18:16:26.0371 7184 [ 3CC7B3BB1A9EA201A040883EDFAA67A0 ] IconMan_R C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe 18:16:26.0465 7184 IconMan_R - ok 18:16:26.0512 7184 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 18:16:26.0527 7184 idsvc - ok 18:16:26.0543 7184 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\drivers\iirsp.sys 18:16:26.0543 7184 iirsp - ok 18:16:26.0605 7184 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll 18:16:26.0621 7184 IKEEXT - ok 18:16:26.0761 7184 [ E83BB47C3446F0497019DE7FD6C6A86F ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys 18:16:26.0886 7184 IntcAzAudAddService - ok 18:16:27.0026 7184 [ 832CE330DD987227B7DEA8C03F22AEFA ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe 18:16:27.0058 7184 Intel(R) Capability Licensing Service Interface - ok 18:16:27.0104 7184 [ 709C8623721A1F1EF388EA75A07EC33B ] Intel(R) ME Service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe 18:16:27.0104 7184 Intel(R) ME Service - ok 18:16:27.0136 7184 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys 18:16:27.0136 7184 intelide - ok 18:16:27.0167 7184 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys 18:16:27.0167 7184 intelppm - ok 18:16:27.0198 7184 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll 18:16:27.0198 7184 IPBusEnum - ok 18:16:27.0229 7184 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 18:16:27.0229 7184 IpFilterDriver - ok 18:16:27.0276 7184 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys 18:16:27.0276 7184 IPMIDRV - ok 18:16:27.0307 7184 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys 18:16:27.0307 7184 IPNAT - ok 18:16:27.0323 7184 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys 18:16:27.0323 7184 IRENUM - ok 18:16:27.0354 7184 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys 18:16:27.0354 7184 isapnp - ok 18:16:27.0370 7184 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys 18:16:27.0370 7184 iScsiPrt - ok 18:16:27.0401 7184 [ 6BCEF45131C8B8E1C558BE540B190B3C ] iusb3hcs C:\Windows\system32\DRIVERS\iusb3hcs.sys 18:16:27.0401 7184 iusb3hcs - ok 18:16:27.0432 7184 [ F080EADA8715F811B58BD35BB774F2F9 ] iusb3hub C:\Windows\system32\DRIVERS\iusb3hub.sys 18:16:27.0448 7184 iusb3hub - ok 18:16:27.0479 7184 [ 0F1756D9396740F053221FA6260FCE66 ] iusb3xhc C:\Windows\system32\DRIVERS\iusb3xhc.sys 18:16:27.0494 7184 iusb3xhc - ok 18:16:27.0541 7184 [ C44B44E24B929631D9D7368F5B2B40CF ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe 18:16:27.0541 7184 jhi_service - ok 18:16:27.0572 7184 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys 18:16:27.0572 7184 kbdclass - ok 18:16:27.0588 7184 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys 18:16:27.0588 7184 kbdhid - ok 18:16:27.0604 7184 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe 18:16:27.0604 7184 KeyIso - ok 18:16:27.0635 7184 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 18:16:27.0635 7184 KSecDD - ok 18:16:27.0650 7184 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 18:16:27.0650 7184 KSecPkg - ok 18:16:27.0682 7184 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys 18:16:27.0682 7184 ksthunk - ok 18:16:27.0713 7184 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll 18:16:27.0728 7184 KtmRm - ok 18:16:27.0760 7184 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll 18:16:27.0760 7184 LanmanServer - ok 18:16:27.0791 7184 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 18:16:27.0791 7184 LanmanWorkstation - ok 18:16:27.0869 7184 [ 101CFC3764C27259847188581B185EA6 ] LiveTunerPM C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 9\LiveTunerProcessMonitor64.sys 18:16:27.0884 7184 LiveTunerPM - ok 18:16:27.0900 7184 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 18:16:27.0900 7184 lltdio - ok 18:16:27.0931 7184 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll 18:16:27.0947 7184 lltdsvc - ok 18:16:27.0947 7184 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll 18:16:27.0962 7184 lmhosts - ok 18:16:27.0994 7184 [ 75F29D77B0540FCF47EE3BE000BBABDA ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe 18:16:27.0994 7184 LMS - ok 18:16:28.0025 7184 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys 18:16:28.0025 7184 LSI_FC - ok 18:16:28.0056 7184 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys 18:16:28.0056 7184 LSI_SAS - ok 18:16:28.0072 7184 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys 18:16:28.0072 7184 LSI_SAS2 - ok 18:16:28.0087 7184 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys 18:16:28.0103 7184 LSI_SCSI - ok 18:16:28.0134 7184 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys 18:16:28.0134 7184 luafv - ok 18:16:28.0165 7184 [ A8FE8F2783B2929B56F5370A89356CE9 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys 18:16:28.0165 7184 MBAMProtector - ok 18:16:28.0228 7184 [ 85B16A92B117A5A800032ECD904B86DB ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe 18:16:28.0243 7184 MBAMScheduler - ok 18:16:28.0274 7184 [ 20E2469DB709FC675E655CEAA11BE312 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe 18:16:28.0290 7184 MBAMService - ok 18:16:28.0321 7184 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 18:16:28.0321 7184 Mcx2Svc - ok 18:16:28.0337 7184 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\drivers\megasas.sys 18:16:28.0352 7184 megasas - ok 18:16:28.0384 7184 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys 18:16:28.0384 7184 MegaSR - ok 18:16:28.0399 7184 [ 6B01B7414A105B9E51652089A03027CF ] MEIx64 C:\Windows\system32\DRIVERS\HECIx64.sys 18:16:28.0415 7184 MEIx64 - ok 18:16:28.0430 7184 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll 18:16:28.0430 7184 MMCSS - ok 18:16:28.0446 7184 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys 18:16:28.0462 7184 Modem - ok 18:16:28.0477 7184 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys 18:16:28.0477 7184 monitor - ok 18:16:28.0493 7184 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys 18:16:28.0493 7184 mouclass - ok 18:16:28.0508 7184 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 18:16:28.0508 7184 mouhid - ok 18:16:28.0524 7184 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 18:16:28.0524 7184 mountmgr - ok 18:16:28.0571 7184 [ CB8AF049AC9BE419A77ADAE288673359 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 18:16:28.0618 7184 MozillaMaintenance - ok 18:16:28.0633 7184 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys 18:16:28.0649 7184 mpio - ok 18:16:28.0680 7184 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 18:16:28.0680 7184 mpsdrv - ok 18:16:28.0696 7184 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 18:16:28.0696 7184 MRxDAV - ok 18:16:28.0727 7184 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 18:16:28.0727 7184 mrxsmb - ok 18:16:28.0758 7184 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 18:16:28.0758 7184 mrxsmb10 - ok 18:16:28.0805 7184 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 18:16:28.0805 7184 mrxsmb20 - ok 18:16:28.0820 7184 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys 18:16:28.0836 7184 msahci - ok 18:16:28.0852 7184 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys 18:16:28.0852 7184 msdsm - ok 18:16:28.0914 7184 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe 18:16:28.0914 7184 MSDTC - ok 18:16:28.0961 7184 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys 18:16:28.0961 7184 Msfs - ok 18:16:28.0992 7184 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 18:16:29.0008 7184 mshidkmdf - ok 18:16:29.0039 7184 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 18:16:29.0039 7184 msisadrv - ok 18:16:29.0054 7184 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 18:16:29.0070 7184 MSiSCSI - ok 18:16:29.0070 7184 msiserver - ok 18:16:29.0086 7184 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 18:16:29.0086 7184 MSKSSRV - ok 18:16:29.0117 7184 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 18:16:29.0117 7184 MSPCLOCK - ok 18:16:29.0132 7184 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 18:16:29.0132 7184 MSPQM - ok 18:16:29.0148 7184 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 18:16:29.0164 7184 MsRPC - ok 18:16:29.0164 7184 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys 18:16:29.0179 7184 mssmbios - ok 18:16:29.0195 7184 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 18:16:29.0195 7184 MSTEE - ok 18:16:29.0210 7184 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\drivers\MTConfig.sys 18:16:29.0210 7184 MTConfig - ok 18:16:29.0226 7184 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys 18:16:29.0226 7184 Mup - ok 18:16:29.0273 7184 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll 18:16:29.0273 7184 napagent - ok 18:16:29.0304 7184 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 18:16:29.0320 7184 NativeWifiP - ok 18:16:29.0351 7184 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys 18:16:29.0366 7184 NDIS - ok 18:16:29.0382 7184 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 18:16:29.0382 7184 NdisCap - ok 18:16:29.0398 7184 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 18:16:29.0413 7184 NdisTapi - ok 18:16:29.0413 7184 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 18:16:29.0413 7184 Ndisuio - ok 18:16:29.0444 7184 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 18:16:29.0444 7184 NdisWan - ok 18:16:29.0460 7184 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 18:16:29.0460 7184 NDProxy - ok 18:16:29.0491 7184 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 18:16:29.0491 7184 NetBIOS - ok 18:16:29.0522 7184 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 18:16:29.0522 7184 NetBT - ok 18:16:29.0538 7184 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe 18:16:29.0538 7184 Netlogon - ok 18:16:29.0569 7184 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll 18:16:29.0569 7184 Netman - ok 18:16:29.0600 7184 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 18:16:29.0616 7184 NetMsmqActivator - ok 18:16:29.0632 7184 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 18:16:29.0632 7184 NetPipeActivator - ok 18:16:29.0663 7184 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll 18:16:29.0678 7184 netprofm - ok 18:16:29.0694 7184 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 18:16:29.0694 7184 NetTcpActivator - ok 18:16:29.0694 7184 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 18:16:29.0694 7184 NetTcpPortSharing - ok 18:16:29.0725 7184 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys 18:16:29.0725 7184 nfrd960 - ok 18:16:29.0788 7184 [ 85B9891151AD3C1BDBBF7D3F1082DC1A ] NitroReaderDriverReadSpool2 C:\Program Files\Common Files\Nitro PDF\Reader\2.0\NitroPDFReaderDriverService2x64.exe 18:16:29.0803 7184 NitroReaderDriverReadSpool2 - ok 18:16:29.0834 7184 [ 1EE99A89CC788ADA662441D1E9830529 ] NlaSvc C:\Windows\System32\nlasvc.dll 18:16:29.0850 7184 NlaSvc - ok 18:16:29.0881 7184 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys 18:16:29.0881 7184 Npfs - ok 18:16:29.0897 7184 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll 18:16:29.0897 7184 nsi - ok 18:16:29.0912 7184 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 18:16:29.0912 7184 nsiproxy - ok 18:16:29.0975 7184 [ E453ACF4E7D44E5530B5D5F2B9CA8563 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 18:16:30.0006 7184 Ntfs - ok 18:16:30.0037 7184 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys 18:16:30.0037 7184 Null - ok 18:16:30.0256 7184 [ DD81FBC57AB9134CDDC5CE90880BFD80 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys 18:16:30.0474 7184 nvlddmkm - ok 18:16:30.0490 7184 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys 18:16:30.0505 7184 nvraid - ok 18:16:30.0521 7184 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys 18:16:30.0536 7184 nvstor - ok 18:16:30.0552 7184 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 18:16:30.0552 7184 nv_agp - ok 18:16:30.0599 7184 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys 18:16:30.0599 7184 ohci1394 - ok 18:16:30.0646 7184 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 18:16:30.0661 7184 ose - ok 18:16:30.0817 7184 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE 18:16:30.0926 7184 osppsvc - ok 18:16:30.0973 7184 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 18:16:30.0989 7184 p2pimsvc - ok 18:16:31.0020 7184 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll 18:16:31.0036 7184 p2psvc - ok 18:16:31.0067 7184 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\drivers\parport.sys 18:16:31.0067 7184 Parport - ok 18:16:31.0082 7184 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys 18:16:31.0082 7184 partmgr - ok 18:16:31.0114 7184 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll 18:16:31.0114 7184 PcaSvc - ok 18:16:31.0145 7184 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys 18:16:31.0145 7184 pci - ok 18:16:31.0160 7184 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys 18:16:31.0160 7184 pciide - ok 18:16:31.0176 7184 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\drivers\pcmcia.sys 18:16:31.0192 7184 pcmcia - ok 18:16:31.0223 7184 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys 18:16:31.0223 7184 pcw - ok 18:16:31.0238 7184 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys 18:16:31.0254 7184 PEAUTH - ok 18:16:31.0332 7184 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe 18:16:31.0348 7184 PerfHost - ok 18:16:31.0426 7184 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll 18:16:31.0457 7184 pla - ok 18:16:31.0472 7184 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll 18:16:31.0488 7184 PlugPlay - ok 18:16:31.0582 7184 [ 9C4D0DE187CBC24F658C52EFC93B1C73 ] PMBDeviceInfoProvider c:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe 18:16:31.0613 7184 PMBDeviceInfoProvider - ok 18:16:31.0644 7184 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 18:16:31.0644 7184 PNRPAutoReg - ok 18:16:31.0675 7184 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 18:16:31.0675 7184 PNRPsvc - ok 18:16:31.0722 7184 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 18:16:31.0722 7184 PolicyAgent - ok 18:16:31.0753 7184 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll 18:16:31.0753 7184 Power - ok 18:16:31.0784 7184 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 18:16:31.0784 7184 PptpMiniport - ok 18:16:31.0800 7184 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\drivers\processr.sys 18:16:31.0800 7184 Processor - ok 18:16:31.0831 7184 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll 18:16:31.0831 7184 ProfSvc - ok 18:16:31.0847 7184 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe 18:16:31.0862 7184 ProtectedStorage - ok 18:16:31.0862 7184 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys 18:16:31.0862 7184 Psched - ok 18:16:31.0940 7184 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\drivers\ql2300.sys 18:16:31.0972 7184 ql2300 - ok 18:16:31.0987 7184 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys 18:16:31.0987 7184 ql40xx - ok 18:16:32.0018 7184 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll 18:16:32.0018 7184 QWAVE - ok 18:16:32.0034 7184 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 18:16:32.0034 7184 QWAVEdrv - ok 18:16:32.0081 7184 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 18:16:32.0081 7184 RasAcd - ok 18:16:32.0112 7184 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 18:16:32.0112 7184 RasAgileVpn - ok 18:16:32.0143 7184 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll 18:16:32.0143 7184 RasAuto - ok 18:16:32.0159 7184 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 18:16:32.0159 7184 Rasl2tp - ok 18:16:32.0190 7184 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll 18:16:32.0190 7184 RasMan - ok 18:16:32.0206 7184 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 18:16:32.0206 7184 RasPppoe - ok 18:16:32.0237 7184 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 18:16:32.0237 7184 RasSstp - ok 18:16:32.0252 7184 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 18:16:32.0268 7184 rdbss - ok 18:16:32.0284 7184 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\drivers\rdpbus.sys 18:16:32.0284 7184 rdpbus - ok 18:16:32.0299 7184 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 18:16:32.0299 7184 RDPCDD - ok 18:16:32.0315 7184 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 18:16:32.0315 7184 RDPENCDD - ok 18:16:32.0330 7184 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 18:16:32.0330 7184 RDPREFMP - ok 18:16:32.0362 7184 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 18:16:32.0377 7184 RDPWD - ok 18:16:32.0408 7184 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 18:16:32.0408 7184 rdyboost - ok 18:16:32.0440 7184 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll 18:16:32.0440 7184 RemoteAccess - ok 18:16:32.0471 7184 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll 18:16:32.0471 7184 RemoteRegistry - ok 18:16:32.0502 7184 [ 3DD798846E2C28102B922C56E71B7932 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys 18:16:32.0518 7184 RFCOMM - ok 18:16:32.0533 7184 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 18:16:32.0549 7184 RpcEptMapper - ok 18:16:32.0564 7184 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe 18:16:32.0564 7184 RpcLocator - ok 18:16:32.0596 7184 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll 18:16:32.0611 7184 RpcSs - ok 18:16:32.0642 7184 [ EBBFA2B4E317AF86E93FEC4C04D7A9B3 ] RSPCIESTOR C:\Windows\system32\DRIVERS\RtsPStor.sys 18:16:32.0642 7184 RSPCIESTOR - ok 18:16:32.0674 7184 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 18:16:32.0689 7184 rspndr - ok 18:16:32.0720 7184 [ 9140DB0911DE035FED0A9A77A2D156EA ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys 18:16:32.0736 7184 RTL8167 - ok 18:16:32.0767 7184 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe 18:16:32.0767 7184 SamSs - ok 18:16:32.0798 7184 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 18:16:32.0798 7184 sbp2port - ok 18:16:32.0845 7184 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll 18:16:32.0845 7184 SCardSvr - ok 18:16:32.0892 7184 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 18:16:32.0892 7184 scfilter - ok 18:16:32.0923 7184 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll 18:16:32.0939 7184 Schedule - ok 18:16:32.0970 7184 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll 18:16:32.0970 7184 SCPolicySvc - ok 18:16:33.0017 7184 [ 111E0EBC0AD79CB0FA014B907B231CF0 ] sdbus C:\Windows\system32\DRIVERS\sdbus.sys 18:16:33.0017 7184 sdbus - ok 18:16:33.0048 7184 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll 18:16:33.0048 7184 SDRSVC - ok 18:16:33.0064 7184 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys 18:16:33.0064 7184 secdrv - ok 18:16:33.0064 7184 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll 18:16:33.0064 7184 seclogon - ok 18:16:33.0095 7184 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll 18:16:33.0095 7184 SENS - ok 18:16:33.0142 7184 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll 18:16:33.0142 7184 SensrSvc - ok 18:16:33.0157 7184 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\drivers\serenum.sys 18:16:33.0157 7184 Serenum - ok 18:16:33.0204 7184 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\drivers\serial.sys 18:16:33.0204 7184 Serial - ok 18:16:33.0220 7184 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\drivers\sermouse.sys 18:16:33.0220 7184 sermouse - ok 18:16:33.0266 7184 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll 18:16:33.0266 7184 SessionEnv - ok 18:16:33.0298 7184 [ 85D0F874734C105D02280B39BF0AD23F ] SFEP C:\Windows\system32\DRIVERS\SFEP.sys 18:16:33.0313 7184 SFEP - ok 18:16:33.0329 7184 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 18:16:33.0329 7184 sffdisk - ok 18:16:33.0344 7184 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 18:16:33.0344 7184 sffp_mmc - ok 18:16:33.0360 7184 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 18:16:33.0360 7184 sffp_sd - ok 18:16:33.0376 7184 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys 18:16:33.0376 7184 sfloppy - ok 18:16:33.0407 7184 [ C6CC9297BD53E5229653303E556AA539 ] Sftfs C:\Windows\system32\DRIVERS\Sftfslh.sys 18:16:33.0422 7184 Sftfs - ok 18:16:33.0500 7184 [ 13693B6354DD6E72DC5131DA7D764B90 ] sftlist C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe 18:16:33.0516 7184 sftlist - ok 18:16:33.0532 7184 [ 390AA7BC52CEE43F6790CDEA1E776703 ] Sftplay C:\Windows\system32\DRIVERS\Sftplaylh.sys 18:16:33.0547 7184 Sftplay - ok 18:16:33.0563 7184 [ 617E29A0B0A2807466560D4C4E338D3E ] Sftredir C:\Windows\system32\DRIVERS\Sftredirlh.sys 18:16:33.0563 7184 Sftredir - ok 18:16:33.0563 7184 [ 8F571F016FA1976F445147E9E6C8AE9B ] Sftvol C:\Windows\system32\DRIVERS\Sftvollh.sys 18:16:33.0563 7184 Sftvol - ok 18:16:33.0594 7184 [ C3CDDD18F43D44AB713CF8C4916F7696 ] sftvsa C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe 18:16:33.0610 7184 sftvsa - ok 18:16:33.0656 7184 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll 18:16:33.0672 7184 ShellHWDetection - ok 18:16:33.0703 7184 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys 18:16:33.0703 7184 SiSRaid2 - ok 18:16:33.0719 7184 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys 18:16:33.0734 7184 SiSRaid4 - ok 18:16:33.0766 7184 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe 18:16:33.0844 7184 SkypeUpdate - ok 18:16:33.0875 7184 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys 18:16:33.0875 7184 Smb - ok 18:16:33.0906 7184 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe 18:16:33.0906 7184 SNMPTRAP - ok 18:16:33.0984 7184 [ 4AEA7A1C3CA06D95D6966C34D13C0D8B ] SOHCImp C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe 18:16:34.0000 7184 SOHCImp - ok 18:16:34.0015 7184 [ 16FD95781117E13107D477AE36219E6F ] SOHDs C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe 18:16:34.0031 7184 SOHDs - ok 18:16:34.0093 7184 [ C03E480E63A80D73FABE28D24D3B6B47 ] SpfService C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe 18:16:34.0109 7184 SpfService - ok 18:16:34.0140 7184 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys 18:16:34.0140 7184 spldr - ok 18:16:34.0187 7184 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe 18:16:34.0202 7184 Spooler - ok 18:16:34.0327 7184 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe 18:16:34.0405 7184 sppsvc - ok 18:16:34.0421 7184 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll 18:16:34.0421 7184 sppuinotify - ok 18:16:34.0452 7184 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys 18:16:34.0452 7184 srv - ok 18:16:34.0468 7184 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 18:16:34.0468 7184 srv2 - ok 18:16:34.0483 7184 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 18:16:34.0499 7184 srvnet - ok 18:16:34.0530 7184 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 18:16:34.0530 7184 SSDPSRV - ok 18:16:34.0546 7184 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll 18:16:34.0561 7184 SstpSvc - ok 18:16:34.0577 7184 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\drivers\stexstor.sys 18:16:34.0577 7184 stexstor - ok 18:16:34.0608 7184 [ DECACB6921DED1A38642642685D77DAC ] StillCam C:\Windows\system32\DRIVERS\serscan.sys 18:16:34.0608 7184 StillCam - ok 18:16:34.0655 7184 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll 18:16:34.0670 7184 stisvc - ok 18:16:34.0702 7184 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\DRIVERS\swenum.sys 18:16:34.0702 7184 swenum - ok 18:16:34.0733 7184 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll 18:16:34.0748 7184 swprv - ok 18:16:34.0795 7184 [ BD4F51AEF67AB7D57698BC4AAD983D1F ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys 18:16:34.0811 7184 SynTP - ok 18:16:34.0904 7184 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll 18:16:34.0951 7184 SysMain - ok 18:16:34.0998 7184 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll 18:16:34.0998 7184 TabletInputService - ok 18:16:35.0014 7184 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll 18:16:35.0014 7184 TapiSrv - ok 18:16:35.0029 7184 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll 18:16:35.0045 7184 TBS - ok 18:16:35.0092 7184 [ F782CAD3CEDBB3F9FFE3BF2775D92DDC ] Tcpip C:\Windows\system32\drivers\tcpip.sys 18:16:35.0107 7184 Tcpip - ok 18:16:35.0138 7184 [ F782CAD3CEDBB3F9FFE3BF2775D92DDC ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 18:16:35.0154 7184 TCPIP6 - ok 18:16:35.0170 7184 [ DF687E3D8836BFB04FCC0615BF15A519 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 18:16:35.0170 7184 tcpipreg - ok 18:16:35.0201 7184 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 18:16:35.0201 7184 TDPIPE - ok 18:16:35.0216 7184 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 18:16:35.0216 7184 TDTCP - ok 18:16:35.0232 7184 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys 18:16:35.0232 7184 tdx - ok 18:16:35.0263 7184 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys 18:16:35.0263 7184 TermDD - ok 18:16:35.0294 7184 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll 18:16:35.0310 7184 TermService - ok 18:16:35.0310 7184 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll 18:16:35.0310 7184 Themes - ok 18:16:35.0341 7184 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll 18:16:35.0341 7184 THREADORDER - ok 18:16:35.0372 7184 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll 18:16:35.0372 7184 TrkWks - ok 18:16:35.0404 7184 [ DF219721DDFFCBE03AA894B6B6742BA1 ] trufos C:\Windows\system32\DRIVERS\trufos.sys 18:16:35.0419 7184 trufos - ok 18:16:35.0482 7184 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 18:16:35.0482 7184 TrustedInstaller - ok 18:16:35.0513 7184 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 18:16:35.0513 7184 tssecsrv - ok 18:16:35.0528 7184 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys 18:16:35.0528 7184 TsUsbFlt - ok 18:16:35.0560 7184 [ 9CC2CCAE8A84820EAECB886D477CBCB8 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys 18:16:35.0560 7184 TsUsbGD - ok 18:16:35.0575 7184 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 18:16:35.0575 7184 tunnel - ok 18:16:35.0606 7184 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\drivers\uagp35.sys 18:16:35.0606 7184 uagp35 - ok 18:16:35.0653 7184 [ 1FE69F3C1CA1CF4B7EC7E2E9090FFFDC ] uCamMonitor C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe 18:16:35.0653 7184 uCamMonitor - ok 18:16:35.0684 7184 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys 18:16:35.0684 7184 udfs - ok 18:16:35.0731 7184 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe 18:16:35.0731 7184 UI0Detect - ok 18:16:35.0747 7184 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 18:16:35.0747 7184 uliagpkx - ok 18:16:35.0778 7184 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\DRIVERS\umbus.sys 18:16:35.0778 7184 umbus - ok 18:16:35.0794 7184 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\drivers\umpass.sys 18:16:35.0794 7184 UmPass - ok 18:16:35.0887 7184 [ 193AD338F2A64D17300AD640ADFA5D0A ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe 18:16:35.0903 7184 UNS - ok 18:16:35.0965 7184 [ 2B1970C804C16D887C28246DB6078EC4 ] UPDATESRV C:\Program Files\Bitdefender\Bitdefender 2013\updatesrv.exe 18:16:35.0981 7184 UPDATESRV - ok 18:16:36.0012 7184 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll 18:16:36.0028 7184 upnphost - ok 18:16:36.0059 7184 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys 18:16:36.0059 7184 usbccgp - ok 18:16:36.0074 7184 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys 18:16:36.0074 7184 usbcir - ok 18:16:36.0106 7184 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys 18:16:36.0106 7184 usbehci - ok 18:16:36.0152 7184 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 18:16:36.0168 7184 usbhub - ok 18:16:36.0184 7184 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\Windows\system32\drivers\usbohci.sys 18:16:36.0184 7184 usbohci - ok 18:16:36.0199 7184 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys 18:16:36.0199 7184 usbprint - ok 18:16:36.0230 7184 [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys 18:16:36.0230 7184 usbscan - ok 18:16:36.0277 7184 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 18:16:36.0277 7184 USBSTOR - ok 18:16:36.0308 7184 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\Windows\system32\drivers\usbuhci.sys 18:16:36.0308 7184 usbuhci - ok 18:16:36.0340 7184 [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys 18:16:36.0340 7184 usbvideo - ok 18:16:36.0371 7184 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll 18:16:36.0371 7184 UxSms - ok 18:16:36.0418 7184 [ 203FD19D70549A2939E1AE3A36608151 ] VAIO Event Service C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe 18:16:36.0418 7184 VAIO Event Service - ok 18:16:36.0527 7184 [ 59308CD511A5F3EE33595FFD46F76B31 ] VAIO Power Management C:\Program Files\Sony\VAIO Power Management\SPMService.exe 18:16:36.0589 7184 VAIO Power Management - ok 18:16:36.0605 7184 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe 18:16:36.0605 7184 VaultSvc - ok 18:16:36.0683 7184 [ ADD5A5BA64D0710E1C764A8D4DAD510E ] VCFw C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe 18:16:36.0730 7184 VCFw - ok 18:16:36.0792 7184 [ EEE5AD6FB40B35F7867C3A49B98BB4EF ] VcmIAlzMgr C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe 18:16:36.0839 7184 VcmIAlzMgr - ok 18:16:36.0901 7184 [ FD5BD55C1854208BC9C51DBCFC3C1941 ] VcmINSMgr C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe 18:16:36.0948 7184 VcmINSMgr - ok 18:16:37.0010 7184 [ 9BC1F203C5604C24F345BCFCD6956BAE ] VcmXmlIfHelper C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe 18:16:37.0026 7184 VcmXmlIfHelper - ok 18:16:37.0073 7184 [ D076011ECD0D1310E879F32EBF3B4886 ] VCService C:\Program Files\Sony\VAIO Care\VCService.exe 18:16:37.0073 7184 VCService - ok 18:16:37.0088 7184 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys 18:16:37.0104 7184 vdrvroot - ok 18:16:37.0151 7184 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe 18:16:37.0151 7184 vds - ok 18:16:37.0182 7184 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 18:16:37.0182 7184 vga - ok 18:16:37.0198 7184 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys 18:16:37.0198 7184 VgaSave - ok 18:16:37.0213 7184 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys 18:16:37.0213 7184 vhdmp - ok 18:16:37.0244 7184 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys 18:16:37.0244 7184 viaide - ok 18:16:37.0244 7184 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys 18:16:37.0260 7184 volmgr - ok 18:16:37.0291 7184 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 18:16:37.0291 7184 volmgrx - ok 18:16:37.0322 7184 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys 18:16:37.0338 7184 volsnap - ok 18:16:37.0354 7184 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys 18:16:37.0354 7184 vsmraid - ok 18:16:37.0432 7184 [ 596E65BDEE804CC6658A39756CC61849 ] VSNService C:\Program Files\Sony\VAIO Smart Network\VSNService.exe 18:16:37.0447 7184 VSNService - ok 18:16:37.0525 7184 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe 18:16:37.0541 7184 VSS - ok 18:16:37.0603 7184 [ 44A325DDD4199F68C56492B33E7E3B75 ] vsserv C:\Program Files\Bitdefender\Bitdefender 2013\vsserv.exe 18:16:37.0619 7184 vsserv - ok 18:16:37.0681 7184 [ FB4A1695D2D74F9C92CA5E84795CDBE1 ] VUAgent C:\Program Files\Sony\VAIO Update Common\VUAgent.exe 18:16:37.0697 7184 VUAgent - ok 18:16:37.0712 7184 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys 18:16:37.0712 7184 vwifibus - ok 18:16:37.0744 7184 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys 18:16:37.0744 7184 vwififlt - ok 18:16:37.0759 7184 [ 6A638FC4BFDDC4D9B186C28C91BD1A01 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys 18:16:37.0759 7184 vwifimp - ok 18:16:37.0790 7184 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll 18:16:37.0806 7184 W32Time - ok 18:16:37.0822 7184 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\drivers\wacompen.sys 18:16:37.0822 7184 WacomPen - ok 18:16:37.0853 7184 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 18:16:37.0853 7184 WANARP - ok 18:16:37.0853 7184 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 18:16:37.0868 7184 Wanarpv6 - ok 18:16:37.0915 7184 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe 18:16:37.0931 7184 wbengine - ok 18:16:37.0946 7184 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 18:16:37.0962 7184 WbioSrvc - ok 18:16:37.0993 7184 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll 18:16:37.0993 7184 wcncsvc - ok 18:16:38.0009 7184 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 18:16:38.0009 7184 WcsPlugInService - ok 18:16:38.0024 7184 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\drivers\wd.sys 18:16:38.0024 7184 Wd - ok 18:16:38.0056 7184 [ 441BD2D7B4F98134C3A4F9FA570FD250 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 18:16:38.0056 7184 Wdf01000 - ok 18:16:38.0071 7184 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll 18:16:38.0087 7184 WdiServiceHost - ok 18:16:38.0087 7184 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll 18:16:38.0087 7184 WdiSystemHost - ok 18:16:38.0118 7184 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll 18:16:38.0118 7184 WebClient - ok 18:16:38.0134 7184 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll 18:16:38.0134 7184 Wecsvc - ok 18:16:38.0149 7184 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll 18:16:38.0165 7184 wercplsupport - ok 18:16:38.0196 7184 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll 18:16:38.0196 7184 WerSvc - ok 18:16:38.0212 7184 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 18:16:38.0212 7184 WfpLwf - ok 18:16:38.0227 7184 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys 18:16:38.0227 7184 WIMMount - ok 18:16:38.0243 7184 WinHttpAutoProxySvc - ok 18:16:38.0305 7184 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 18:16:38.0305 7184 Winmgmt - ok 18:16:38.0383 7184 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll 18:16:38.0414 7184 WinRM - ok 18:16:38.0461 7184 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys 18:16:38.0461 7184 WinUsb - ok 18:16:38.0539 7184 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll 18:16:38.0555 7184 Wlansvc - ok 18:16:38.0602 7184 [ 06C8FA1CF39DE6A735B54D906BA791C6 ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe 18:16:38.0617 7184 wlcrasvc - ok 18:16:38.0726 7184 [ 2BACD71123F42CEA603F4E205E1AE337 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE 18:16:38.0758 7184 wlidsvc - ok 18:16:38.0773 7184 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys 18:16:38.0773 7184 WmiAcpi - ok 18:16:38.0804 7184 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 18:16:38.0804 7184 wmiApSrv - ok 18:16:38.0836 7184 WMPNetworkSvc - ok 18:16:38.0945 7184 [ 94D96F43F7FBECDDEB6D7837FF375611 ] WO_LiveService C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 9\LiveTunerService.exe 18:16:38.0976 7184 WO_LiveService - ok 18:16:39.0023 7184 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll 18:16:39.0023 7184 WPCSvc - ok 18:16:39.0054 7184 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 18:16:39.0054 7184 WPDBusEnum - ok 18:16:39.0101 7184 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 18:16:39.0101 7184 ws2ifsl - ok 18:16:39.0101 7184 WSearch - ok 18:16:39.0132 7184 [ D3381DC54C34D79B22CEE0D65BA91B7C ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 18:16:39.0132 7184 WudfPf - ok 18:16:39.0163 7184 [ CF8D590BE3373029D57AF80914190682 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 18:16:39.0163 7184 WUDFRd - ok 18:16:39.0210 7184 [ 7A95C95B6C4CF292D689106BCAE49543 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 18:16:39.0210 7184 wudfsvc - ok 18:16:39.0257 7184 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\Windows\System32\wwansvc.dll 18:16:39.0257 7184 WwanSvc - ok 18:16:39.0335 7184 [ A5B25E310678175F4779499FFF7D0994 ] ZAtheros Bt&Wlan Coex Agent C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe 18:16:39.0335 7184 ZAtheros Bt&Wlan Coex Agent - ok 18:16:39.0366 7184 ================ Scan global =============================== 18:16:39.0397 7184 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll 18:16:39.0428 7184 [ F46BBAAC1C4980F4D0DD463F190A42D3 ] C:\Windows\system32\winsrv.dll 18:16:39.0460 7184 [ F46BBAAC1C4980F4D0DD463F190A42D3 ] C:\Windows\system32\winsrv.dll 18:16:39.0491 7184 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll 18:16:39.0506 7184 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe 18:16:39.0522 7184 [Global] - ok 18:16:39.0522 7184 ================ Scan MBR ================================== 18:16:39.0538 7184 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 18:16:39.0990 7184 \Device\Harddisk0\DR0 - ok 18:16:40.0006 7184 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk2\DR5 18:16:40.0146 7184 \Device\Harddisk2\DR5 - ok 18:16:40.0146 7184 ================ Scan VBR ================================== 18:16:40.0177 7184 [ 1E28CBFDDF5EE29763C77CAFFFCDB838 ] \Device\Harddisk0\DR0\Partition1 18:16:40.0177 7184 \Device\Harddisk0\DR0\Partition1 - ok 18:16:40.0193 7184 [ 75D791D941BA28C9BC16AB65C99C4073 ] \Device\Harddisk0\DR0\Partition2 18:16:40.0193 7184 \Device\Harddisk0\DR0\Partition2 - ok 18:16:40.0208 7184 [ 7B3BB3EA1CAFA844C839115AB78A7C60 ] \Device\Harddisk2\DR5\Partition1 18:16:40.0208 7184 \Device\Harddisk2\DR5\Partition1 - ok 18:16:40.0208 7184 ============================================================ 18:16:40.0208 7184 Scan finished 18:16:40.0208 7184 ============================================================ 18:16:40.0208 4136 Detected object count: 0 18:16:40.0208 4136 Actual detected object count: 0 18:18:07.0128 5552 Deinitialize success |
16.11.2012, 19:49 | #14 | ||
/// TB-Ausbilder | kein internetzugriff möglich, habe zwei infizierte regiestrierungsschlüssel Dann jetzt bitte ... Scan mit Combofix
__________________ Digitale Freibeuter gegen Malware! Keine Hilfe per PM! |
16.11.2012, 21:40 | #15 |
| kein internetzugriff möglich, habe zwei infizierte regiestrierungsschlüsselCode:
ATTFilter Combofix Logfile: |
Themen zu kein internetzugriff möglich, habe zwei infizierte regiestrierungsschlüssel |
andere, anderen, automatische, automatischen, benötigte, bereits, bitdefender, brauche, defender, dringend, fehler, infizierte, interne, internetverbindung, kein internetzugriff, konnte, laptop, malwarebytes, schnell, trotz, updates, verbindung, wahrscheinlich, zugang, zugriff |