A voir également:
- Portable infecté?
- Nettoyer ordinateur portable lent - Guide
- Réinitialiser pc portable - Guide
- Hwmonitor portable - Télécharger - Informations & Diagnostic
- Activer pavé tactile pc portable - Guide
- Test batterie pc portable - Guide
53 réponses
hello
relance l'outil , clique sur diag , puis heberge le rapport c:\pre_diag_xx_xx_xx.txt sur https://www.cjoint.com/ et donne le lien
relance l'outil , clique sur diag , puis heberge le rapport c:\pre_diag_xx_xx_xx.txt sur https://www.cjoint.com/ et donne le lien
Télécharge et enregistre (lien direct) ADWCleaner sur ton bureau :
attends que la fenetre de confirmation de telechargement arrive
Lance le,(Pour vista/7/8 => clic droit "executer en tant qu'administrateur")
clique sur suppression et poste C:\Adwcleaner[Sx].txt
attends que la fenetre de confirmation de telechargement arrive
Lance le,(Pour vista/7/8 => clic droit "executer en tant qu'administrateur")
clique sur suppression et poste C:\Adwcleaner[Sx].txt
Voici le rapport ADWCleaner
# AdwCleaner v2.306 - Rapport créé le 01/08/2013 à 12:36:55
# Mis à jour le 19/07/2013 par Xplode
# Système d'exploitation : Windows 7 Home Premium Service Pack 1 (64 bits)
# Nom d'utilisateur : lionel - LIONEL-PC
# Mode de démarrage : Normal
# Exécuté depuis : C:\Users\lionel\Desktop\AdwCleaner.exe
# Option [Suppression]
***** [Services] *****
***** [Fichiers / Dossiers] *****
***** [Registre] *****
***** [Navigateurs] *****
-\\ Internet Explorer v10.0.9200.16635
[OK] Le registre ne contient aucune entrée illégitime.
-\\ Chromium vnstall: 18002
Fichier : C:\Users\lionel\AppData\Local\Chromium\User Data\Default\Preferences
[OK] Le fichier ne contient aucune entrée illégitime.
*************************
AdwCleaner[R1].txt - [17568 octets] - [14/03/2013 21:56:14]
AdwCleaner[R2].txt - [28504 octets] - [25/03/2013 00:27:41]
AdwCleaner[R3].txt - [6558 octets] - [31/03/2013 21:29:38]
AdwCleaner[R4].txt - [1253 octets] - [02/04/2013 21:25:22]
AdwCleaner[S1].txt - [17530 octets] - [14/03/2013 21:56:59]
AdwCleaner[S2].txt - [29820 octets] - [25/03/2013 00:29:03]
AdwCleaner[S3].txt - [6568 octets] - [31/03/2013 21:30:11]
AdwCleaner[S4].txt - [1316 octets] - [02/04/2013 21:25:55]
AdwCleaner[S5].txt - [2901 octets] - [24/07/2013 20:27:25]
AdwCleaner[S6].txt - [1302 octets] - [01/08/2013 12:36:55]
########## EOF - C:\AdwCleaner[S6].txt - [1362 octets] ##########
# AdwCleaner v2.306 - Rapport créé le 01/08/2013 à 12:36:55
# Mis à jour le 19/07/2013 par Xplode
# Système d'exploitation : Windows 7 Home Premium Service Pack 1 (64 bits)
# Nom d'utilisateur : lionel - LIONEL-PC
# Mode de démarrage : Normal
# Exécuté depuis : C:\Users\lionel\Desktop\AdwCleaner.exe
# Option [Suppression]
***** [Services] *****
***** [Fichiers / Dossiers] *****
***** [Registre] *****
***** [Navigateurs] *****
-\\ Internet Explorer v10.0.9200.16635
[OK] Le registre ne contient aucune entrée illégitime.
-\\ Chromium vnstall: 18002
Fichier : C:\Users\lionel\AppData\Local\Chromium\User Data\Default\Preferences
[OK] Le fichier ne contient aucune entrée illégitime.
*************************
AdwCleaner[R1].txt - [17568 octets] - [14/03/2013 21:56:14]
AdwCleaner[R2].txt - [28504 octets] - [25/03/2013 00:27:41]
AdwCleaner[R3].txt - [6558 octets] - [31/03/2013 21:29:38]
AdwCleaner[R4].txt - [1253 octets] - [02/04/2013 21:25:22]
AdwCleaner[S1].txt - [17530 octets] - [14/03/2013 21:56:59]
AdwCleaner[S2].txt - [29820 octets] - [25/03/2013 00:29:03]
AdwCleaner[S3].txt - [6568 octets] - [31/03/2013 21:30:11]
AdwCleaner[S4].txt - [1316 octets] - [02/04/2013 21:25:55]
AdwCleaner[S5].txt - [2901 octets] - [24/07/2013 20:27:25]
AdwCleaner[S6].txt - [1302 octets] - [01/08/2013 12:36:55]
########## EOF - C:\AdwCleaner[S6].txt - [1362 octets] ##########
fermer toutes les fenêtres et applications lors de l'installation et de l'analyse.
▶ Télécharge ici :
Malwarebytes
▶ Installe le ( choisis bien "francais" ; ne modifie pas les paramètres d'installe ) et mets le à jour .
relance malwarebytes en suivant scrupuleusement ces consignes :
! Déconnecte toi et ferme toutes applications en cours !
▶ Lance Malwarebyte's .
Fais un examen dit "Complet" .
▶ Laisse le programme travailler ( et ne rien faire d'autre avec le PC durant le scan ).
▶ à la fin tu cliques sur "résultat" .
▶ Vérifie que tous les objets infectés soient validés, puis clique sur " suppression " .
▶ Note : si il faut redémarrer ton PC pour finir le nettoyage, fais le !
▶ Poste le rapport sauvegardé après la suppression des objets infectés (dans l'onglet "rapport/log"de Malwarebytes, le dernier en date)
▶ Télécharge ici :
Malwarebytes
▶ Installe le ( choisis bien "francais" ; ne modifie pas les paramètres d'installe ) et mets le à jour .
relance malwarebytes en suivant scrupuleusement ces consignes :
! Déconnecte toi et ferme toutes applications en cours !
▶ Lance Malwarebyte's .
Fais un examen dit "Complet" .
▶ Laisse le programme travailler ( et ne rien faire d'autre avec le PC durant le scan ).
▶ à la fin tu cliques sur "résultat" .
▶ Vérifie que tous les objets infectés soient validés, puis clique sur " suppression " .
▶ Note : si il faut redémarrer ton PC pour finir le nettoyage, fais le !
▶ Poste le rapport sauvegardé après la suppression des objets infectés (dans l'onglet "rapport/log"de Malwarebytes, le dernier en date)
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
voici le rapport
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
Version de la base de données: v2013.08.01.07
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16635
lionel :: LIONEL-PC [administrateur]
01/08/2013 20:11:40
mbam-log-2013-08-01 (20-11-40).txt
Type d'examen: Examen complet (C:\|D:\|E:\|F:\|Q:\|)
Options d'examen activées: Mémoire | Démarrage | Registre | Système de fichiers | Heuristique/Extra | Heuristique/Shuriken | PUP | PUM
Options d'examen désactivées: P2P
Elément(s) analysé(s): 402445
Temps écoulé: 1 heure(s), 10 minute(s), 57 seconde(s)
Processus mémoire détecté(s): 0
(Aucun élément nuisible détecté)
Module(s) mémoire détecté(s): 0
(Aucun élément nuisible détecté)
Clé(s) du Registre détectée(s): 0
(Aucun élément nuisible détecté)
Valeur(s) du Registre détectée(s): 0
(Aucun élément nuisible détecté)
Elément(s) de données du Registre détecté(s): 0
(Aucun élément nuisible détecté)
Dossier(s) détecté(s): 0
(Aucun élément nuisible détecté)
Fichier(s) détecté(s): 1
C:\Windows\Installer\2da9a67.msi (PUP.Optional.SweetPacks) -> Mis en quarantaine et supprimé avec succès.
(fin)
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
Version de la base de données: v2013.08.01.07
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16635
lionel :: LIONEL-PC [administrateur]
01/08/2013 20:11:40
mbam-log-2013-08-01 (20-11-40).txt
Type d'examen: Examen complet (C:\|D:\|E:\|F:\|Q:\|)
Options d'examen activées: Mémoire | Démarrage | Registre | Système de fichiers | Heuristique/Extra | Heuristique/Shuriken | PUP | PUM
Options d'examen désactivées: P2P
Elément(s) analysé(s): 402445
Temps écoulé: 1 heure(s), 10 minute(s), 57 seconde(s)
Processus mémoire détecté(s): 0
(Aucun élément nuisible détecté)
Module(s) mémoire détecté(s): 0
(Aucun élément nuisible détecté)
Clé(s) du Registre détectée(s): 0
(Aucun élément nuisible détecté)
Valeur(s) du Registre détectée(s): 0
(Aucun élément nuisible détecté)
Elément(s) de données du Registre détecté(s): 0
(Aucun élément nuisible détecté)
Dossier(s) détecté(s): 0
(Aucun élément nuisible détecté)
Fichier(s) détecté(s): 1
C:\Windows\Installer\2da9a67.msi (PUP.Optional.SweetPacks) -> Mis en quarantaine et supprimé avec succès.
(fin)
selectionne ce texte , puis CTRL + C :
Kill::
Key::
[HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Internet Explorer\Toolbar]|[Locked]
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{86488806-1FDB-452D-8D36-86231C63F3B9}]
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{86488806-1FDB-452D-8D36-86231C63F3B9}]
[HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{2318C2B1-4965-11D4-9B18-009027A5CD4F}]
[HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5}]
[HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{9D717F81-9148-4f12-8568-69135F087DB0},]
[HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{AA58ED58-01DD-4D91-8333-CF10577473F7}]
[HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{2318C2B1-4965-11D4-9B18-009027A5CD4F}]
[HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5}]
[HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{AA58ED58-01DD-4D91-8333-CF10577473F7}]
[HKU\S-1-5-21-819639659-4150350305-585420797-1000\Software\mozilla\Firefox\Extensions]|[lrcspal@xinghao.net]
[HKU\S-1-5-21-819639659-4150350305-585420797-1000\Software\Conduit]
[HKU\S-1-5-21-819639659-4150350305-585420797-1000\Software\Datamngr]
[HKCR\CLSID\{22222222-2222-2222-2222-220122272265}]
File|Fold::
C:\windows\Installer\{1AE46C09-2AB8-4EE5-88FB-08CD0FF7F2DF}
C:\Users\lionel\AppData\Local\Updater12765
C:\windows\System32\Tasks\CreateChoiceProcessTask
C:\windows\System32\Tasks\{BEA69D81-AD3C-4327-A5F0-98DD77D107E8}
C:\windows\System32\Tasks\DealPlyUpdate
C:\windows\System32\Tasks\BrowserProtect
C:\windows\System32\Tasks\Safer-Networking
Driver::
SYMDS
SYMEFA
SYMEVENT
SYMIRON
UWDIRPOG
MBR::
Clean::
Reboot::
Relance Pre_scan puis choisis l'option "Script"
une page va s'ouvrir
logiquement le texte que tu as sélectionné s'y trouve déjà , donc tu fermes et le programme va travailler.
sinon colle-le (clic droit/coller ou ctrl+V) dans la page vierge.
puis onglet fichier => enregistrer (pas enregistrer sous...) , puis ferme le texte
des fenetres noires risquent de clignoter , c'est normal , c'est le programme qui travaille
poste Pre_Script.txt qui apparaitra sur le bureau en fin de travail
Kill::
Key::
[HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Internet Explorer\Toolbar]|[Locked]
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{86488806-1FDB-452D-8D36-86231C63F3B9}]
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{86488806-1FDB-452D-8D36-86231C63F3B9}]
[HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{2318C2B1-4965-11D4-9B18-009027A5CD4F}]
[HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5}]
[HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{9D717F81-9148-4f12-8568-69135F087DB0},]
[HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{AA58ED58-01DD-4D91-8333-CF10577473F7}]
[HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{2318C2B1-4965-11D4-9B18-009027A5CD4F}]
[HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5}]
[HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{AA58ED58-01DD-4D91-8333-CF10577473F7}]
[HKU\S-1-5-21-819639659-4150350305-585420797-1000\Software\mozilla\Firefox\Extensions]|[lrcspal@xinghao.net]
[HKU\S-1-5-21-819639659-4150350305-585420797-1000\Software\Conduit]
[HKU\S-1-5-21-819639659-4150350305-585420797-1000\Software\Datamngr]
[HKCR\CLSID\{22222222-2222-2222-2222-220122272265}]
File|Fold::
C:\windows\Installer\{1AE46C09-2AB8-4EE5-88FB-08CD0FF7F2DF}
C:\Users\lionel\AppData\Local\Updater12765
C:\windows\System32\Tasks\CreateChoiceProcessTask
C:\windows\System32\Tasks\{BEA69D81-AD3C-4327-A5F0-98DD77D107E8}
C:\windows\System32\Tasks\DealPlyUpdate
C:\windows\System32\Tasks\BrowserProtect
C:\windows\System32\Tasks\Safer-Networking
Driver::
SYMDS
SYMEFA
SYMEVENT
SYMIRON
UWDIRPOG
MBR::
Clean::
Reboot::
Relance Pre_scan puis choisis l'option "Script"
une page va s'ouvrir
logiquement le texte que tu as sélectionné s'y trouve déjà , donc tu fermes et le programme va travailler.
sinon colle-le (clic droit/coller ou ctrl+V) dans la page vierge.
puis onglet fichier => enregistrer (pas enregistrer sous...) , puis ferme le texte
des fenetres noires risquent de clignoter , c'est normal , c'est le programme qui travaille
poste Pre_Script.txt qui apparaitra sur le bureau en fin de travail
bonjour,
voici le rapport
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Pre_Script | 3.0730 ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
lionel : Windows 7 Home Premium (64 bits)
Switchs : http://www.sosvirus.net/tutoriels/switchs-pre-script-t312.html
New restorepoint created
Script : 07:18:50
Boot : Normal
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
¤¤¤¤¤¤¤¤¤¤ | Stopped Processes
(948) -- nvvsvc.exe
(1568) -- spoolsv.exe
(1580) -- NvXDSync.exe
(1592) -- nvvsvc.exe
(1764) -- armsvc.exe
(1792) -- BTHSAmpPalService.exe
(1868) -- devmonsrv.exe
(2040) -- BTHSSecurityMgr.exe
(1424) -- RichVideo.exe
(2120) -- explorer.exe
(2316) -- RAVCpl64.exe
(2332) -- rundll32.exe
(2344) -- ETDCtrl.exe
(2352) -- 9props.exe
(2944) -- ETDCtrlHelper.exe
(2264) -- sftvsa.exe
(2496) -- obexsrv.exe
(3092) -- sftlist.exe
(3476) -- CVHSVC.EXE
(3700) -- mediasrv.exe
(3860) -- SearchIndexer.exe
(3932) -- btplayerctrl.exe
(768) -- taskhost.exe
(4604) -- taskeng.exe
(4896) -- wmpnetwk.exe
(3584) -- SmartSetting.exe
(2204) -- YCMMirage.exe
(3688) -- MovieColorEnhancer.exe
(5096) -- dmhkcore.exe
(4696) -- EasySpeedUpManager.exe
(4992) -- WLIDSVC.EXE
(4500) -- WLIDSVCM.EXE
(956) -- igfxext.exe
(4084) -- igfxsrvc.exe
(5936) -- LMS.exe
(5040) -- NOBuAgent.exe
(4348) -- WCScheduler.exe
(4160) -- daemonu.exe
(5560) -- UNS.exe
(3636) -- SSCKbdHk.exe
(5316) -- CLMLSvc.exe
(5812) -- NOBuClient.exe
(5952) -- Media+Player10Serv.exe
(5468) -- hkcmd.exe
(2096) -- igfxpers.exe
(6996) -- SeaPort.EXE
(1216) -- iexplore.exe
(4716) -- iexplore.exe
(1652) -- BingApp.exe
(6576) -- BingBar.exe
(4552) -- bingsurrogate.exe
(4436) -- bingsurrogate.exe
(5836) -- bingsurrogate.exe
(4740) -- bingsurrogate.exe
(6800) -- BBSvc.EXE
¤¤¤¤¤¤¤¤¤¤ | Deletion | Drivers | Services
Service : SYMDS Not actif
Service : SYMEFA Not actif
Service : SYMEVENT Not actif
Service : SYMIRON Not actif
Service : UWDIRPOG Not actif
¤
¤¤¤¤¤¤¤¤¤¤ | Registry Deletions
Value Deleted : [HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Internet Explorer\Toolbar]:Locked
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{86488806-1FDB-452D-8D36-86231C63F3B9}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{86488806-1FDB-452D-8D36-86231C63F3B9}
Key Deleted : HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
Key Deleted : HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5}
Key Deleted : HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{9D717F81-9148-4f12-8568-69135F087DB0},
Key Deleted : HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{AA58ED58-01DD-4D91-8333-CF10577473F7}
Key Deleted : HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
Key Deleted : HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5}
Key Deleted : HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{AA58ED58-01DD-4D91-8333-CF10577473F7}
No value : [HKU\S-1-5-21-819639659-4150350305-585420797-1000\Software\mozilla\Firefox\Extensions]:***@***
Key not found : HKU\S-1-5-21-819639659-4150350305-585420797-1000\Software\Conduit
Key not found : HKU\S-1-5-21-819639659-4150350305-585420797-1000\Software\Datamngr
Key Deleted : HKCR\CLSID\{22222222-2222-2222-2222-220122272265}
¤
Folder Moved to quarantine successfully : |D| - C:\windows\Installer\{1AE46C09-2AB8-4EE5-88FB-08CD0FF7F2DF}
Folder Moved to quarantine successfully : |D| - C:\Users\lionel\AppData\Local\Updater12765
File Moved to quarantine successfully : |A| - C:\windows\System32\Tasks\CreateChoiceProcessTask
File Moved to quarantine successfully : |A| - C:\windows\System32\Tasks\{BEA69D81-AD3C-4327-A5F0-98DD77D107E8}
File Moved to quarantine successfully : |A| - C:\windows\System32\Tasks\DealPlyUpdate
File Moved to quarantine successfully : |A| - C:\windows\System32\Tasks\BrowserProtect
Folder Moved to quarantine successfully : |D| - C:\windows\System32\Tasks\Safer-Networking
¤¤¤¤¤¤¤¤¤¤ | MBR
Windows Version: Windows 7 Home Premium Edition
Windows Information: Service Pack 1 (build 7601), 64-bit
Base Board Manufacturer: SAMSUNG ELECTRONICS CO., LTD.
BIOS Manufacturer: Phoenix Technologies Ltd.
System Manufacturer: SAMSUNG ELECTRONICS CO., LTD.
System Product Name: 300E4A/300E5A/300E7A/3430EA/3530EA
Logical Drives Mask: 0x0001003c
Analysis of file "C:\Pre_Scan\MBR.bin":
Unknown MBR code
64 bits Not supported by MBR.exe , Dump : C:\Pre_Scan\MBR.Bin
¤
¤¤¤¤¤¤¤¤¤¤ | Disk cleaning
FreeSpace : 91100
Cleaning disk...
FreeSpace : 91104
¤
¤¤¤¤¤¤¤¤¤¤ ( EOF ) ¤¤¤¤¤¤¤¤¤¤ | End : 07:20:12
voici le rapport
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Pre_Script | 3.0730 ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
lionel : Windows 7 Home Premium (64 bits)
Switchs : http://www.sosvirus.net/tutoriels/switchs-pre-script-t312.html
New restorepoint created
Script : 07:18:50
Boot : Normal
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
¤¤¤¤¤¤¤¤¤¤ | Stopped Processes
(948) -- nvvsvc.exe
(1568) -- spoolsv.exe
(1580) -- NvXDSync.exe
(1592) -- nvvsvc.exe
(1764) -- armsvc.exe
(1792) -- BTHSAmpPalService.exe
(1868) -- devmonsrv.exe
(2040) -- BTHSSecurityMgr.exe
(1424) -- RichVideo.exe
(2120) -- explorer.exe
(2316) -- RAVCpl64.exe
(2332) -- rundll32.exe
(2344) -- ETDCtrl.exe
(2352) -- 9props.exe
(2944) -- ETDCtrlHelper.exe
(2264) -- sftvsa.exe
(2496) -- obexsrv.exe
(3092) -- sftlist.exe
(3476) -- CVHSVC.EXE
(3700) -- mediasrv.exe
(3860) -- SearchIndexer.exe
(3932) -- btplayerctrl.exe
(768) -- taskhost.exe
(4604) -- taskeng.exe
(4896) -- wmpnetwk.exe
(3584) -- SmartSetting.exe
(2204) -- YCMMirage.exe
(3688) -- MovieColorEnhancer.exe
(5096) -- dmhkcore.exe
(4696) -- EasySpeedUpManager.exe
(4992) -- WLIDSVC.EXE
(4500) -- WLIDSVCM.EXE
(956) -- igfxext.exe
(4084) -- igfxsrvc.exe
(5936) -- LMS.exe
(5040) -- NOBuAgent.exe
(4348) -- WCScheduler.exe
(4160) -- daemonu.exe
(5560) -- UNS.exe
(3636) -- SSCKbdHk.exe
(5316) -- CLMLSvc.exe
(5812) -- NOBuClient.exe
(5952) -- Media+Player10Serv.exe
(5468) -- hkcmd.exe
(2096) -- igfxpers.exe
(6996) -- SeaPort.EXE
(1216) -- iexplore.exe
(4716) -- iexplore.exe
(1652) -- BingApp.exe
(6576) -- BingBar.exe
(4552) -- bingsurrogate.exe
(4436) -- bingsurrogate.exe
(5836) -- bingsurrogate.exe
(4740) -- bingsurrogate.exe
(6800) -- BBSvc.EXE
¤¤¤¤¤¤¤¤¤¤ | Deletion | Drivers | Services
Service : SYMDS Not actif
Service : SYMEFA Not actif
Service : SYMEVENT Not actif
Service : SYMIRON Not actif
Service : UWDIRPOG Not actif
¤
¤¤¤¤¤¤¤¤¤¤ | Registry Deletions
Value Deleted : [HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Internet Explorer\Toolbar]:Locked
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{86488806-1FDB-452D-8D36-86231C63F3B9}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{86488806-1FDB-452D-8D36-86231C63F3B9}
Key Deleted : HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
Key Deleted : HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5}
Key Deleted : HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{9D717F81-9148-4f12-8568-69135F087DB0},
Key Deleted : HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{AA58ED58-01DD-4D91-8333-CF10577473F7}
Key Deleted : HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
Key Deleted : HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5}
Key Deleted : HKU\S-1-5-21-819639659-4150350305-585420797-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{AA58ED58-01DD-4D91-8333-CF10577473F7}
No value : [HKU\S-1-5-21-819639659-4150350305-585420797-1000\Software\mozilla\Firefox\Extensions]:***@***
Key not found : HKU\S-1-5-21-819639659-4150350305-585420797-1000\Software\Conduit
Key not found : HKU\S-1-5-21-819639659-4150350305-585420797-1000\Software\Datamngr
Key Deleted : HKCR\CLSID\{22222222-2222-2222-2222-220122272265}
¤
Folder Moved to quarantine successfully : |D| - C:\windows\Installer\{1AE46C09-2AB8-4EE5-88FB-08CD0FF7F2DF}
Folder Moved to quarantine successfully : |D| - C:\Users\lionel\AppData\Local\Updater12765
File Moved to quarantine successfully : |A| - C:\windows\System32\Tasks\CreateChoiceProcessTask
File Moved to quarantine successfully : |A| - C:\windows\System32\Tasks\{BEA69D81-AD3C-4327-A5F0-98DD77D107E8}
File Moved to quarantine successfully : |A| - C:\windows\System32\Tasks\DealPlyUpdate
File Moved to quarantine successfully : |A| - C:\windows\System32\Tasks\BrowserProtect
Folder Moved to quarantine successfully : |D| - C:\windows\System32\Tasks\Safer-Networking
¤¤¤¤¤¤¤¤¤¤ | MBR
Windows Version: Windows 7 Home Premium Edition
Windows Information: Service Pack 1 (build 7601), 64-bit
Base Board Manufacturer: SAMSUNG ELECTRONICS CO., LTD.
BIOS Manufacturer: Phoenix Technologies Ltd.
System Manufacturer: SAMSUNG ELECTRONICS CO., LTD.
System Product Name: 300E4A/300E5A/300E7A/3430EA/3530EA
Logical Drives Mask: 0x0001003c
Analysis of file "C:\Pre_Scan\MBR.bin":
Unknown MBR code
64 bits Not supported by MBR.exe , Dump : C:\Pre_Scan\MBR.Bin
¤
¤¤¤¤¤¤¤¤¤¤ | Disk cleaning
FreeSpace : 91100
Cleaning disk...
FreeSpace : 91104
¤
¤¤¤¤¤¤¤¤¤¤ ( EOF ) ¤¤¤¤¤¤¤¤¤¤ | End : 07:20:12
Fais analyser le(s) fichier(s) suivants sur Virustotal :
Virus Total
clique sur "Parcourir" et trouve puis selectionne ce(s) fichier(s) :
C:\Pre_Scan\MBR.Bin
* Clique maintenant sur Envoyer le fichier. et laisse travailler tant que "Situation actuelle : en cours d'analyse" est affiché.
* Il est possible que le fichier soit mis en file d'attente en raison d'un grand nombre de demandes d'analyses. En ce cas, il te faudra patienter sans actualiser la page.
* Lorsque l'analyse est terminée colle le lien de(s)( la) page(s) dans ta prochaine réponse.
Virus Total
clique sur "Parcourir" et trouve puis selectionne ce(s) fichier(s) :
C:\Pre_Scan\MBR.Bin
* Clique maintenant sur Envoyer le fichier. et laisse travailler tant que "Situation actuelle : en cours d'analyse" est affiché.
* Il est possible que le fichier soit mis en file d'attente en raison d'un grand nombre de demandes d'analyses. En ce cas, il te faudra patienter sans actualiser la page.
* Lorsque l'analyse est terminée colle le lien de(s)( la) page(s) dans ta prochaine réponse.
execute ceci stp
http://security-helpzone.com/gen-hackman/pre_scan-3/reload_tdsskiller/canned-speech/
http://security-helpzone.com/gen-hackman/pre_scan-3/reload_tdsskiller/canned-speech/
voici le rapport
11:23:44.0235 27536 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
11:23:44.0945 27536 ============================================================
11:23:44.0945 27536 Current date / time: 2013/08/03 11:23:44.0945
11:23:44.0945 27536 SystemInfo:
11:23:44.0945 27536
11:23:44.0945 27536 OS Version: 6.1.7601 ServicePack: 1.0
11:23:44.0945 27536 Product type: Workstation
11:23:44.0945 27536 ComputerName: LIONEL-PC
11:23:44.0945 27536 UserName: lionel
11:23:44.0945 27536 Windows directory: C:\windows
11:23:44.0945 27536 System windows directory: C:\windows
11:23:44.0945 27536 Running under WOW64
11:23:44.0945 27536 Processor architecture: Intel x64
11:23:44.0945 27536 Number of processors: 4
11:23:44.0945 27536 Page size: 0x1000
11:23:44.0945 27536 Boot type: Normal boot
11:23:44.0945 27536 ============================================================
11:23:46.0435 27536 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
11:23:46.0455 27536 ============================================================
11:23:46.0455 27536 \Device\Harddisk0\DR0:
11:23:46.0455 27536 MBR partitions:
11:23:46.0455 27536 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
11:23:46.0455 27536 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x16200000
11:23:46.0475 27536 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x16233000, BlocksNum 0x212B0000
11:23:46.0475 27536 ============================================================
11:23:46.0525 27536 C: <-> \Device\Harddisk0\DR0\Partition2
11:23:46.0565 27536 D: <-> \Device\Harddisk0\DR0\Partition3
11:23:46.0565 27536 ============================================================
11:23:46.0565 27536 Initialize success
11:23:46.0565 27536 ============================================================
11:23:54.0745 26832 ============================================================
11:23:54.0745 26832 Scan started
11:23:54.0745 26832 Mode: Manual;
11:23:54.0745 26832 ============================================================
11:23:55.0535 26832 ================ Scan system memory ========================
11:23:55.0535 26832 System memory - ok
11:23:55.0545 26832 ================ Scan services =============================
11:23:55.0845 26832 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\windows\system32\drivers\1394ohci.sys
11:23:55.0855 26832 1394ohci - ok
11:23:55.0895 26832 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\windows\system32\drivers\ACPI.sys
11:23:55.0905 26832 ACPI - ok
11:23:55.0995 26832 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\windows\system32\drivers\acpipmi.sys
11:23:56.0005 26832 AcpiPmi - ok
11:23:56.0115 26832 [ ADDA5E1951B90D3D23C56D3CF0622ADC ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
11:23:56.0115 26832 AdobeARMservice - ok
11:23:56.0315 26832 [ 476BB014F3F68C0C15EDDD5B444DA8FF ] AdobeFlashPlayerUpdateSvc C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
11:23:56.0315 26832 AdobeFlashPlayerUpdateSvc - ok
11:23:56.0435 26832 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\windows\system32\drivers\adp94xx.sys
11:23:56.0445 26832 adp94xx - ok
11:23:56.0485 26832 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\windows\system32\drivers\adpahci.sys
11:23:56.0495 26832 adpahci - ok
11:23:56.0545 26832 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\windows\system32\drivers\adpu320.sys
11:23:56.0545 26832 adpu320 - ok
11:23:56.0585 26832 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\windows\System32\aelupsvc.dll
11:23:56.0585 26832 AeLookupSvc - ok
11:23:56.0655 26832 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\windows\system32\drivers\afd.sys
11:23:56.0665 26832 AFD - ok
11:23:56.0755 26832 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\windows\system32\drivers\agp440.sys
11:23:56.0755 26832 agp440 - ok
11:23:56.0795 26832 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\windows\System32\alg.exe
11:23:56.0805 26832 ALG - ok
11:23:56.0835 26832 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\windows\system32\drivers\aliide.sys
11:23:56.0835 26832 aliide - ok
11:23:56.0855 26832 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\windows\system32\drivers\amdide.sys
11:23:56.0855 26832 amdide - ok
11:23:56.0875 26832 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\windows\system32\drivers\amdk8.sys
11:23:56.0885 26832 AmdK8 - ok
11:23:56.0965 26832 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\windows\system32\drivers\amdppm.sys
11:23:56.0965 26832 AmdPPM - ok
11:23:57.0015 26832 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\windows\system32\drivers\amdsata.sys
11:23:57.0025 26832 amdsata - ok
11:23:57.0065 26832 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\windows\system32\drivers\amdsbs.sys
11:23:57.0075 26832 amdsbs - ok
11:23:57.0095 26832 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\windows\system32\drivers\amdxata.sys
11:23:57.0095 26832 amdxata - ok
11:23:57.0195 26832 [ 3BC90482A834F998C3B7A9C934A20342 ] AMPPAL C:\windows\system32\DRIVERS\AMPPAL.sys
11:23:57.0205 26832 AMPPAL - ok
11:23:57.0225 26832 [ 3BC90482A834F998C3B7A9C934A20342 ] AMPPALP C:\windows\system32\DRIVERS\amppal.sys
11:23:57.0225 26832 AMPPALP - ok
11:23:57.0375 26832 [ A47D7FEBD9381D34DDB4FF38B15A67FE ] AMPPALR3 C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
11:23:57.0405 26832 AMPPALR3 - ok
11:23:57.0455 26832 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\windows\system32\drivers\appid.sys
11:23:57.0465 26832 AppID - ok
11:23:57.0555 26832 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\windows\System32\appidsvc.dll
11:23:57.0565 26832 AppIDSvc - ok
11:23:57.0605 26832 [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo C:\windows\System32\appinfo.dll
11:23:57.0605 26832 Appinfo - ok
11:23:57.0625 26832 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\windows\system32\drivers\arc.sys
11:23:57.0635 26832 arc - ok
11:23:57.0645 26832 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\windows\system32\drivers\arcsas.sys
11:23:57.0655 26832 arcsas - ok
11:23:57.0695 26832 [ 0BAEFD3F648C6E7AB52990DD9565E4E2 ] aswFsBlk C:\windows\system32\drivers\aswFsBlk.sys
11:23:57.0705 26832 aswFsBlk - ok
11:23:57.0825 26832 [ 36949EB7E71C5779C5163AF6AFB2A161 ] aswKbd C:\windows\system32\drivers\aswKbd.sys
11:23:57.0835 26832 aswKbd - ok
11:23:57.0865 26832 [ FA562F34ED6633C66170B09182B4C049 ] aswMonFlt C:\windows\system32\drivers\aswMonFlt.sys
11:23:57.0875 26832 aswMonFlt - ok
11:23:57.0905 26832 [ 64E2BAB4096C13D2342BC4661C967E07 ] aswRdr C:\windows\System32\Drivers\aswrdr2.sys
11:23:57.0915 26832 aswRdr - ok
11:23:58.0005 26832 [ 5573AA70993A2BB81525B1C704B88763 ] aswRvrt C:\windows\system32\drivers\aswRvrt.sys
11:23:58.0015 26832 aswRvrt - ok
11:23:58.0045 26832 [ 8C0800CDB501CFC1164B286A0478DC10 ] aswSnx C:\windows\system32\drivers\aswSnx.sys
11:23:58.0065 26832 aswSnx - ok
11:23:58.0105 26832 [ 3815DB16CDA62190F5C0A65118F3D714 ] aswSP C:\windows\system32\drivers\aswSP.sys
11:23:58.0115 26832 aswSP - ok
11:23:58.0135 26832 [ 29DD8E458A84171202AA4979364C30C0 ] aswTdi C:\windows\system32\drivers\aswTdi.sys
11:23:58.0135 26832 aswTdi - ok
11:23:58.0195 26832 [ 22F521108881DC59837F6FC614E0568F ] aswVmm C:\windows\system32\drivers\aswVmm.sys
11:23:58.0195 26832 aswVmm - ok
11:23:58.0235 26832 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\windows\system32\DRIVERS\asyncmac.sys
11:23:58.0235 26832 AsyncMac - ok
11:23:58.0255 26832 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\windows\system32\drivers\atapi.sys
11:23:58.0265 26832 atapi - ok
11:23:58.0385 26832 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\windows\System32\Audiosrv.dll
11:23:58.0405 26832 AudioEndpointBuilder - ok
11:23:58.0425 26832 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\windows\System32\Audiosrv.dll
11:23:58.0435 26832 AudioSrv - ok
11:23:58.0505 26832 [ 28D6701C710AD7BA3CB95E75F8F1A9AA ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
11:23:58.0505 26832 avast! Antivirus - ok
11:23:58.0545 26832 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\windows\System32\AxInstSV.dll
11:23:58.0555 26832 AxInstSV - ok
11:23:58.0655 26832 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\windows\system32\drivers\bxvbda.sys
11:23:58.0675 26832 b06bdrv - ok
11:23:58.0745 26832 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\windows\system32\DRIVERS\b57nd60a.sys
11:23:58.0755 26832 b57nd60a - ok
11:23:58.0905 26832 [ F48FEB7DA35821DA15E0B006DCB9A169 ] BBSvc C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\BBSvc.exe
11:23:58.0905 26832 BBSvc - ok
11:23:58.0945 26832 [ 8E16F7A85441986FD2B9CE6C879524E4 ] BBUpdate C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\SeaPort.exe
11:23:58.0955 26832 BBUpdate - ok
11:23:59.0025 26832 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\windows\System32\bdesvc.dll
11:23:59.0035 26832 BDESVC - ok
11:23:59.0055 26832 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\windows\system32\drivers\Beep.sys
11:23:59.0055 26832 Beep - ok
11:23:59.0125 26832 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\windows\System32\bfe.dll
11:23:59.0145 26832 BFE - ok
11:23:59.0215 26832 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\windows\System32\qmgr.dll
11:23:59.0235 26832 BITS - ok
11:23:59.0285 26832 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\windows\system32\DRIVERS\blbdrive.sys
11:23:59.0285 26832 blbdrive - ok
11:23:59.0485 26832 [ 0F46D2845BD7DDACA52340ECC2B65DA3 ] Bluetooth Device Monitor C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
11:23:59.0495 26832 Bluetooth Device Monitor - ok
11:23:59.0615 26832 [ 3341DE556EC28252D603277609EEF8BF ] Bluetooth Media Service C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
11:23:59.0635 26832 Bluetooth Media Service - ok
11:23:59.0695 26832 [ 5D5C3EC9BE1107DEDF0FEB55B7F3BD77 ] Bluetooth OBEX Service C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
11:23:59.0715 26832 Bluetooth OBEX Service - ok
11:23:59.0815 26832 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\windows\system32\DRIVERS\bowser.sys
11:23:59.0815 26832 bowser - ok
11:23:59.0855 26832 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\windows\system32\drivers\BrFiltLo.sys
11:23:59.0855 26832 BrFiltLo - ok
11:23:59.0875 26832 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\windows\system32\drivers\BrFiltUp.sys
11:23:59.0875 26832 BrFiltUp - ok
11:23:59.0915 26832 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\windows\System32\browser.dll
11:23:59.0915 26832 Browser - ok
11:23:59.0955 26832 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\windows\System32\Drivers\Brserid.sys
11:23:59.0955 26832 Brserid - ok
11:24:00.0015 26832 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\windows\System32\Drivers\BrSerWdm.sys
11:24:00.0015 26832 BrSerWdm - ok
11:24:00.0035 26832 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\windows\System32\Drivers\BrUsbMdm.sys
11:24:00.0035 26832 BrUsbMdm - ok
11:24:00.0065 26832 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\windows\System32\Drivers\BrUsbSer.sys
11:24:00.0065 26832 BrUsbSer - ok
11:24:00.0115 26832 [ 9D95F74875491CECBF9E10A5936A570E ] BtFilter C:\windows\system32\DRIVERS\btfilter.sys
11:24:00.0125 26832 BtFilter - ok
11:24:00.0215 26832 [ CF98190A94F62E405C8CB255018B2315 ] BthEnum C:\windows\system32\drivers\BthEnum.sys
11:24:00.0215 26832 BthEnum - ok
11:24:00.0245 26832 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\windows\system32\DRIVERS\bthmodem.sys
11:24:00.0255 26832 BTHMODEM - ok
11:24:00.0295 26832 [ 02DD601B708DD0667E1331FA8518E9FF ] BthPan C:\windows\system32\DRIVERS\bthpan.sys
11:24:00.0305 26832 BthPan - ok
11:24:00.0405 26832 [ 738D0E9272F59EB7A1449C3EC118E6C4 ] BTHPORT C:\windows\System32\Drivers\BTHport.sys
11:24:00.0415 26832 BTHPORT - ok
11:24:00.0465 26832 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\windows\system32\bthserv.dll
11:24:00.0465 26832 bthserv - ok
11:24:00.0545 26832 [ 9E2AF97302B9F4BF97E952A865EB31AE ] BTHSSecurityMgr C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
11:24:00.0555 26832 BTHSSecurityMgr - ok
11:24:00.0575 26832 [ F188B7394D81010767B6DF3178519A37 ] BTHUSB C:\windows\System32\Drivers\BTHUSB.sys
11:24:00.0575 26832 BTHUSB - ok
11:24:00.0615 26832 [ 274E47BD9C1367BDBFA9DF10C2E6C544 ] btmaudio C:\windows\system32\drivers\btmaud.sys
11:24:00.0625 26832 btmaudio - ok
11:24:00.0655 26832 [ AB0A33001FE7EBB209D9D52CED11BE1A ] btmaux C:\windows\system32\DRIVERS\btmaux.sys
11:24:00.0655 26832 btmaux - ok
11:24:00.0695 26832 [ 5BA4C6F82A5CA3307C0579D9F7B36E28 ] btmhsf C:\windows\system32\DRIVERS\btmhsf.sys
11:24:00.0705 26832 btmhsf - ok
11:24:00.0735 26832 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\windows\system32\DRIVERS\cdfs.sys
11:24:00.0735 26832 cdfs - ok
11:24:00.0845 26832 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\windows\system32\DRIVERS\cdrom.sys
11:24:00.0855 26832 cdrom - ok
11:24:00.0885 26832 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\windows\System32\certprop.dll
11:24:00.0895 26832 CertPropSvc - ok
11:24:00.0915 26832 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\windows\system32\drivers\circlass.sys
11:24:00.0925 26832 circlass - ok
11:24:00.0945 26832 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\windows\system32\CLFS.sys
11:24:00.0955 26832 CLFS - ok
11:24:01.0055 26832 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
11:24:01.0065 26832 clr_optimization_v2.0.50727_32 - ok
11:24:01.0115 26832 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
11:24:01.0125 26832 clr_optimization_v2.0.50727_64 - ok
11:24:01.0235 26832 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
11:24:01.0255 26832 clr_optimization_v4.0.30319_32 - ok
11:24:01.0285 26832 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
11:24:01.0295 26832 clr_optimization_v4.0.30319_64 - ok
11:24:01.0385 26832 [ E13A438F9E51DD034730678E33B73290 ] clwvd C:\windows\system32\DRIVERS\clwvd.sys
11:24:01.0385 26832 clwvd - ok
11:24:01.0405 26832 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\windows\system32\DRIVERS\CmBatt.sys
11:24:01.0415 26832 CmBatt - ok
11:24:01.0445 26832 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\windows\system32\drivers\cmdide.sys
11:24:01.0445 26832 cmdide - ok
11:24:01.0495 26832 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\windows\system32\Drivers\cng.sys
11:24:01.0505 26832 CNG - ok
11:24:01.0595 26832 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\windows\system32\DRIVERS\compbatt.sys
11:24:01.0615 26832 Compbatt - ok
11:24:01.0655 26832 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\windows\system32\DRIVERS\CompositeBus.sys
11:24:01.0655 26832 CompositeBus - ok
11:24:01.0675 26832 COMSysApp - ok
11:24:01.0705 26832 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\windows\system32\drivers\crcdisk.sys
11:24:01.0705 26832 crcdisk - ok
11:24:01.0775 26832 [ D8129C49798CBBFB2E4351D4B7B8EF9C ] CryptSvc C:\windows\system32\cryptsvc.dll
11:24:01.0785 26832 CryptSvc - ok
11:24:01.0915 26832 [ 72794D112CBAFF3BC0C29BF7350D4741 ] cvhsvc C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
11:24:01.0935 26832 cvhsvc - ok
11:24:02.0025 26832 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\windows\system32\rpcss.dll
11:24:02.0035 26832 DcomLaunch - ok
11:24:02.0085 26832 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\windows\System32\defragsvc.dll
11:24:02.0095 26832 defragsvc - ok
11:24:02.0185 26832 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\windows\system32\Drivers\dfsc.sys
11:24:02.0195 26832 DfsC - ok
11:24:02.0255 26832 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\windows\system32\dhcpcore.dll
11:24:02.0265 26832 Dhcp - ok
11:24:02.0315 26832 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\windows\system32\drivers\discache.sys
11:24:02.0315 26832 discache - ok
11:24:02.0345 26832 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\windows\system32\drivers\disk.sys
11:24:02.0355 26832 Disk - ok
11:24:02.0395 26832 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\windows\System32\dnsrslvr.dll
11:24:02.0405 26832 Dnscache - ok
11:24:02.0445 26832 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\windows\System32\dot3svc.dll
11:24:02.0455 26832 dot3svc - ok
11:24:02.0465 26832 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\windows\system32\dps.dll
11:24:02.0475 26832 DPS - ok
11:24:02.0515 26832 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\windows\system32\drivers\drmkaud.sys
11:24:02.0515 26832 drmkaud - ok
11:24:02.0655 26832 [ AF2E16242AA723F68F461B6EAE2EAD3D ] DXGKrnl C:\windows\System32\drivers\dxgkrnl.sys
11:24:02.0675 26832 DXGKrnl - ok
11:24:02.0735 26832 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\windows\System32\eapsvc.dll
11:24:02.0755 26832 EapHost - ok
11:24:02.0895 26832 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\windows\system32\drivers\evbda.sys
11:24:02.0985 26832 ebdrv - ok
11:24:03.0005 26832 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\windows\System32\lsass.exe
11:24:03.0015 26832 EFS - ok
11:24:03.0085 26832 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\windows\ehome\ehRecvr.exe
11:24:03.0105 26832 ehRecvr - ok
11:24:03.0155 26832 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\windows\ehome\ehsched.exe
11:24:03.0155 26832 ehSched - ok
11:24:03.0235 26832 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\windows\system32\drivers\elxstor.sys
11:24:03.0245 26832 elxstor - ok
11:24:03.0275 26832 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\windows\system32\drivers\errdev.sys
11:24:03.0275 26832 ErrDev - ok
11:24:03.0325 26832 [ 98B103D1D5C426A10219437E36E03FE8 ] ETD C:\windows\system32\DRIVERS\ETD.sys
11:24:03.0335 26832 ETD - ok
11:24:03.0435 26832 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\windows\system32\es.dll
11:24:03.0445 26832 EventSystem - ok
11:24:03.0475 26832 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\windows\system32\drivers\exfat.sys
11:24:03.0475 26832 exfat - ok
11:24:03.0485 26832 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\windows\system32\drivers\fastfat.sys
11:24:03.0495 26832 fastfat - ok
11:24:03.0525 26832 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\windows\system32\fxssvc.exe
11:24:03.0545 26832 Fax - ok
11:24:03.0575 26832 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\windows\system32\drivers\fdc.sys
11:24:03.0575 26832 fdc - ok
11:24:03.0605 26832 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\windows\system32\fdPHost.dll
11:24:03.0615 26832 fdPHost - ok
11:24:03.0625 26832 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\windows\system32\fdrespub.dll
11:24:03.0635 26832 FDResPub - ok
11:24:03.0665 26832 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\windows\system32\drivers\fileinfo.sys
11:24:03.0665 26832 FileInfo - ok
11:24:03.0735 26832 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\windows\system32\drivers\filetrace.sys
11:24:03.0735 26832 Filetrace - ok
11:24:03.0755 26832 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\windows\system32\drivers\flpydisk.sys
11:24:03.0765 26832 flpydisk - ok
11:24:03.0795 26832 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\windows\system32\drivers\fltmgr.sys
11:24:03.0805 26832 FltMgr - ok
11:24:03.0875 26832 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\windows\system32\FntCache.dll
11:24:03.0905 26832 FontCache - ok
11:24:03.0975 26832 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
11:24:03.0975 26832 FontCache3.0.0.0 - ok
11:24:04.0005 26832 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\windows\system32\drivers\FsDepends.sys
11:24:04.0005 26832 FsDepends - ok
11:24:04.0035 26832 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\windows\system32\drivers\Fs_Rec.sys
11:24:04.0045 26832 Fs_Rec - ok
11:24:04.0105 26832 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\windows\system32\DRIVERS\fvevol.sys
11:24:04.0105 26832 fvevol - ok
11:24:04.0175 26832 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\windows\system32\drivers\gagp30kx.sys
11:24:04.0185 26832 gagp30kx - ok
11:24:04.0295 26832 [ 521A469CAF61F00E1DE081CC2099C1D6 ] GameConsoleService C:\Program Files (x86)\WildGames\Game Console - WildGames\GameConsoleService.exe
11:24:04.0305 26832 GameConsoleService - ok
11:24:04.0345 26832 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\windows\System32\gpsvc.dll
11:24:04.0365 26832 gpsvc - ok
11:24:04.0465 26832 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
11:24:04.0475 26832 gupdate - ok
11:24:04.0485 26832 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
11:24:04.0485 26832 gupdatem - ok
11:24:04.0555 26832 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\windows\system32\drivers\hcw85cir.sys
11:24:04.0555 26832 hcw85cir - ok
11:24:04.0605 26832 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\windows\system32\drivers\HdAudio.sys
11:24:04.0615 26832 HdAudAddService - ok
11:24:04.0645 26832 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\windows\system32\DRIVERS\HDAudBus.sys
11:24:04.0645 26832 HDAudBus - ok
11:24:04.0715 26832 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\windows\system32\drivers\HidBatt.sys
11:24:04.0725 26832 HidBatt - ok
11:24:04.0735 26832 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\windows\system32\drivers\hidbth.sys
11:24:04.0745 26832 HidBth - ok
11:24:04.0765 26832 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\windows\system32\drivers\hidir.sys
11:24:04.0775 26832 HidIr - ok
11:24:04.0825 26832 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\windows\system32\hidserv.dll
11:24:04.0845 26832 hidserv - ok
11:24:04.0905 26832 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\windows\system32\DRIVERS\hidusb.sys
11:24:04.0915 26832 HidUsb - ok
11:24:04.0985 26832 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\windows\system32\kmsvc.dll
11:24:04.0995 26832 hkmsvc - ok
11:24:05.0035 26832 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\windows\system32\ListSvc.dll
11:24:05.0045 26832 HomeGroupListener - ok
11:24:05.0075 26832 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\windows\system32\provsvc.dll
11:24:05.0095 26832 HomeGroupProvider - ok
11:24:05.0165 26832 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\windows\system32\drivers\HpSAMD.sys
11:24:05.0165 26832 HpSAMD - ok
11:24:05.0215 26832 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\windows\system32\drivers\HTTP.sys
11:24:05.0225 26832 HTTP - ok
11:24:05.0245 26832 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\windows\system32\drivers\hwpolicy.sys
11:24:05.0245 26832 hwpolicy - ok
11:24:05.0315 26832 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\windows\system32\DRIVERS\i8042prt.sys
11:24:05.0325 26832 i8042prt - ok
11:24:05.0375 26832 [ 53CC5BF8B5A219119953C7ABB19A7705 ] iaStor C:\windows\system32\DRIVERS\iaStor.sys
11:24:05.0385 26832 iaStor - ok
11:24:05.0495 26832 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\windows\system32\drivers\iaStorV.sys
11:24:05.0505 26832 iaStorV - ok
11:24:05.0535 26832 [ 806422F30DF9CE8307457485779C77B7 ] iBtFltCoex C:\windows\system32\DRIVERS\iBtFltCoex.sys
11:24:05.0545 26832 iBtFltCoex - ok
11:24:05.0615 26832 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
11:24:05.0635 26832 idsvc - ok
11:24:06.0045 26832 [ 8CB8667F5A3B5515F2585F3254F3AAF7 ] igfx C:\windows\system32\DRIVERS\igdkmd64.sys
11:24:06.0365 26832 igfx - ok
11:24:06.0415 26832 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\windows\system32\drivers\iirsp.sys
11:24:06.0425 26832 iirsp - ok
11:24:06.0475 26832 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\windows\System32\ikeext.dll
11:24:06.0495 26832 IKEEXT - ok
11:24:06.0595 26832 [ 8E05ADB4B809B478B2EC65A1A1633DEB ] IntcAzAudAddService C:\windows\system32\drivers\RTKVHD64.sys
11:24:06.0735 26832 IntcAzAudAddService - ok
11:24:06.0795 26832 [ FC727061C0F47C8059E88E05D5C8E381 ] IntcDAud C:\windows\system32\DRIVERS\IntcDAud.sys
11:24:06.0805 26832 IntcDAud - ok
11:24:06.0865 26832 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\windows\system32\drivers\intelide.sys
11:24:06.0865 26832 intelide - ok
11:24:06.0905 26832 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\windows\system32\DRIVERS\intelppm.sys
11:24:06.0915 26832 intelppm - ok
11:24:06.0945 26832 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\windows\system32\ipbusenum.dll
11:24:06.0955 26832 IPBusEnum - ok
11:24:06.0985 26832 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\windows\system32\DRIVERS\ipfltdrv.sys
11:24:06.0995 26832 IpFilterDriver - ok
11:24:07.0035 26832 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\windows\System32\iphlpsvc.dll
11:24:07.0055 26832 iphlpsvc - ok
11:24:07.0075 26832 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\windows\system32\drivers\IPMIDrv.sys
11:24:07.0075 26832 IPMIDRV - ok
11:24:07.0105 26832 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\windows\system32\drivers\ipnat.sys
11:24:07.0115 26832 IPNAT - ok
11:24:07.0145 26832 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\windows\system32\drivers\irenum.sys
11:24:07.0145 26832 IRENUM - ok
11:24:07.0165 26832 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\windows\system32\drivers\isapnp.sys
11:24:07.0165 26832 isapnp - ok
11:24:07.0195 26832 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\windows\system32\drivers\msiscsi.sys
11:24:07.0205 26832 iScsiPrt - ok
11:24:07.0245 26832 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\windows\system32\DRIVERS\kbdclass.sys
11:24:07.0245 26832 kbdclass - ok
11:24:07.0275 26832 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\windows\system32\drivers\kbdhid.sys
11:24:07.0285 26832 kbdhid - ok
11:24:07.0305 26832 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\windows\system32\lsass.exe
11:24:07.0305 26832 KeyIso - ok
11:24:07.0345 26832 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\windows\system32\Drivers\ksecdd.sys
11:24:07.0355 26832 KSecDD - ok
11:24:07.0375 26832 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\windows\system32\Drivers\ksecpkg.sys
11:24:07.0385 26832 KSecPkg - ok
11:24:07.0395 26832 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\windows\system32\drivers\ksthunk.sys
11:24:07.0405 26832 ksthunk - ok
11:24:07.0435 26832 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\windows\system32\msdtckrm.dll
11:24:07.0455 26832 KtmRm - ok
11:24:07.0495 26832 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\windows\system32\srvsvc.dll
11:24:07.0515 26832 LanmanServer - ok
11:24:07.0555 26832 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\windows\System32\wkssvc.dll
11:24:07.0565 26832 LanmanWorkstation - ok
11:24:07.0675 26832 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\windows\system32\DRIVERS\lltdio.sys
11:24:07.0685 26832 lltdio - ok
11:24:07.0725 26832 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\windows\System32\lltdsvc.dll
11:24:07.0745 26832 lltdsvc - ok
11:24:07.0795 26832 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\windows\System32\lmhsvc.dll
11:24:07.0805 26832 lmhosts - ok
11:24:07.0875 26832 [ F4A17DCAB576267C85663E64F3ACE5A4 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
11:24:07.0885 26832 LMS - ok
11:24:07.0915 26832 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\windows\system32\drivers\lsi_fc.sys
11:24:07.0915 26832 LSI_FC - ok
11:24:07.0965 26832 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\windows\system32\drivers\lsi_sas.sys
11:24:07.0965 26832 LSI_SAS - ok
11:24:07.0985 26832 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\windows\system32\drivers\lsi_sas2.sys
11:24:07.0995 26832 LSI_SAS2 - ok
11:24:08.0025 26832 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\windows\system32\drivers\lsi_scsi.sys
11:24:08.0025 26832 LSI_SCSI - ok
11:24:08.0055 26832 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\windows\system32\drivers\luafv.sys
11:24:08.0065 26832 luafv - ok
11:24:08.0115 26832 [ 0BB97D43299910CBFBA59C461B99B910 ] MBAMProtector C:\windows\system32\drivers\mbam.sys
11:24:08.0125 26832 MBAMProtector - ok
11:24:08.0275 26832 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
11:24:08.0285 26832 MBAMScheduler - ok
11:24:08.0325 26832 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
11:24:08.0345 26832 MBAMService - ok
11:24:08.0385 26832 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\windows\system32\Mcx2Svc.dll
11:24:08.0385 26832 Mcx2Svc - ok
11:24:08.0425 26832 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\windows\system32\drivers\megasas.sys
11:24:08.0425 26832 megasas - ok
11:24:08.0475 26832 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\windows\system32\drivers\MegaSR.sys
11:24:08.0485 26832 MegaSR - ok
11:24:08.0525 26832 [ A6518DCC42F7A6E999BB3BEA8FD87567 ] MEIx64 C:\windows\system32\DRIVERS\HECIx64.sys
11:24:08.0525 26832 MEIx64 - ok
11:24:08.0565 26832 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\windows\system32\mmcss.dll
11:24:08.0575 26832 MMCSS - ok
11:24:08.0615 26832 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\windows\system32\drivers\modem.sys
11:24:08.0615 26832 Modem - ok
11:24:08.0665 26832 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\windows\system32\DRIVERS\monitor.sys
11:24:08.0675 26832 monitor - ok
11:24:08.0715 26832 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\windows\system32\DRIVERS\mouclass.sys
11:24:08.0715 26832 mouclass - ok
11:24:08.0785 26832 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\windows\system32\DRIVERS\mouhid.sys
11:24:08.0785 26832 mouhid - ok
11:24:08.0855 26832 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\windows\system32\drivers\mountmgr.sys
11:24:08.0855 26832 mountmgr - ok
11:24:08.0895 26832 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\windows\system32\drivers\mpio.sys
11:24:08.0905 26832 mpio - ok
11:24:08.0935 26832 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\windows\system32\drivers\mpsdrv.sys
11:24:08.0935 26832 mpsdrv - ok
11:24:09.0005 26832 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\windows\system32\mpssvc.dll
11:24:09.0015 26832 MpsSvc - ok
11:24:09.0025 26832 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\windows\system32\drivers\mrxdav.sys
11:24:09.0035 26832 MRxDAV - ok
11:24:09.0065 26832 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\windows\system32\DRIVERS\mrxsmb.sys
11:24:09.0075 26832 mrxsmb - ok
11:24:09.0155 26832 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\windows\system32\DRIVERS\mrxsmb10.sys
11:24:09.0165 26832 mrxsmb10 - ok
11:24:09.0185 26832 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\windows\system32\DRIVERS\mrxsmb20.sys
11:24:09.0195 26832 mrxsmb20 - ok
11:24:09.0225 26832 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\windows\system32\drivers\msahci.sys
11:24:09.0225 26832 msahci - ok
11:24:09.0255 26832 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\windows\system32\drivers\msdsm.sys
11:24:09.0255 26832 msdsm - ok
11:24:09.0325 26832 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\windows\System32\msdtc.exe
11:24:09.0335 26832 MSDTC - ok
11:24:09.0375 26832 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\windows\system32\drivers\Msfs.sys
11:24:09.0375 26832 Msfs - ok
11:24:09.0405 26832 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\windows\System32\drivers\mshidkmdf.sys
11:24:09.0405 26832 mshidkmdf - ok
11:24:09.0435 26832 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\windows\system32\drivers\msisadrv.sys
11:24:09.0435 26832 msisadrv - ok
11:24:09.0475 26832 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\windows\system32\iscsiexe.dll
11:24:09.0475 26832 MSiSCSI - ok
11:24:09.0485 26832 msiserver - ok
11:24:09.0515 26832 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\windows\system32\drivers\MSKSSRV.sys
11:24:09.0525 26832 MSKSSRV - ok
11:24:09.0535 26832 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\windows\system32\drivers\MSPCLOCK.sys
11:24:09.0535 26832 MSPCLOCK - ok
11:24:09.0545 26832 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\windows\system32\drivers\MSPQM.sys
11:24:09.0545 26832 MSPQM - ok
11:24:09.0595 26832 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\windows\system32\drivers\MsRPC.sys
11:24:09.0605 26832 MsRPC - ok
11:24:09.0655 26832 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\windows\system32\DRIVERS\mssmbios.sys
11:24:09.0655 26832 mssmbios - ok
11:24:09.0665 26832 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\windows\system32\drivers\MSTEE.sys
11:24:09.0665 26832 MSTEE - ok
11:24:09.0685 26832 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\windows\system32\drivers\MTConfig.sys
11:24:09.0685 26832 MTConfig - ok
11:24:09.0765 26832 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\windows\system32\Drivers\mup.sys
11:24:09.0775 26832 Mup - ok
11:24:09.0815 26832 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\windows\system32\qagentRT.dll
11:24:09.0845 26832 napagent - ok
11:24:09.0875 26832 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\windows\system32\DRIVERS\nwifi.sys
11:24:09.0885 26832 NativeWifiP - ok
11:24:09.0945 26832 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\windows\system32\drivers\ndis.sys
11:24:09.0965 26832 NDIS - ok
11:24:10.0015 26832 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\windows\system32\DRIVERS\ndiscap.sys
11:24:10.0015 26832 NdisCap - ok
11:24:10.0055 26832 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\windows\system32\DRIVERS\ndistapi.sys
11:24:10.0055 26832 NdisTapi - ok
11:24:10.0065 26832 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\windows\system32\DRIVERS\ndisuio.sys
11:24:10.0075 26832 Ndisuio - ok
11:24:10.0095 26832 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\windows\system32\DRIVERS\ndiswan.sys
11:24:10.0105 26832 NdisWan - ok
11:24:10.0145 26832 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\windows\system32\drivers\NDProxy.sys
11:24:10.0145 26832 NDProxy - ok
11:24:10.0175 26832 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\windows\system32\DRIVERS\netbios.sys
11:24:10.0175 26832 NetBIOS - ok
11:24:10.0235 26832 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\windows\system32\DRIVERS\netbt.sys
11:24:10.0245 26832 NetBT - ok
11:24:10.0265 26832 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\windows\system32\lsass.exe
11:24:10.0275 26832 Netlogon - ok
11:24:10.0315 26832 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\windows\System32\netman.dll
11:24:10.0335 26832 Netman - ok
11:24:10.0355 26832 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\windows\System32\netprofm.dll
11:24:10.0375 26832 netprofm - ok
11:24:10.0405 26832 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
11:24:10.0415 26832 NetTcpPortSharing - ok
11:24:10.0735 26832 [ 9FD1BE1881446D954FF77244AE58FBCB ] NETwNs64 C:\windows\system32\DRIVERS\NETwNs64.sys
11:24:10.0945 26832 NETwNs64 - ok
11:24:11.0005 26832 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\windows\system32\drivers\nfrd960.sys
11:24:11.0005 26832 nfrd960 - ok
11:24:11.0115 26832 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\windows\System32\nlasvc.dll
11:24:11.0125 26832 NlaSvc - ok
11:24:11.0265 26832 [ 5839A8027D6D324A7CD494051A96628C ] NOBU C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
11:24:11.0305 26832 NOBU - ok
11:24:11.0335 26832 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\windows\system32\drivers\Npfs.sys
11:24:11.0335 26832 Npfs - ok
11:24:11.0385 26832 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\windows\system32\nsisvc.dll
11:24:11.0395 26832 nsi - ok
11:24:11.0425 26832 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\windows\system32\drivers\nsiproxy.sys
11:24:11.0425 26832 nsiproxy - ok
11:24:11.0555 26832 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\windows\system32\drivers\Ntfs.sys
11:24:11.0605 26832 Ntfs - ok
11:24:11.0635 26832 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\windows\system32\drivers\Null.sys
11:24:11.0635 26832 Null - ok
11:24:12.0005 26832 [ 70E89A21827B2669AF906B703C7C48B5 ] nvlddmkm C:\windows\system32\DRIVERS\nvlddmkm.sys
11:24:12.0405 26832 nvlddmkm - ok
11:24:12.0435 26832 [ 4B9C0C2BF78289513101EB0D44834701 ] nvpciflt C:\windows\system32\DRIVERS\nvpciflt.sys
11:24:12.0435 26832 nvpciflt - ok
11:24:12.0495 26832 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\windows\system32\drivers\nvraid.sys
11:24:12.0495 26832 nvraid - ok
11:24:12.0535 26832 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\windows\system32\drivers\nvstor.sys
11:24:12.0535 26832 nvstor - ok
11:24:12.0595 26832 [ E04FCE1D149CF05C3449E3171F9C3E41 ] NVSvc C:\windows\system32\nvvsvc.exe
11:24:12.0625 26832 NVSvc - ok
11:24:12.0705 26832 [ D96DDEA6C699A99832E0186057801971 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
11:24:12.0735 26832 nvUpdatusService - ok
11:24:12.0765 26832 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\windows\system32\drivers\nv_agp.sys
11:24:12.0765 26832 nv_agp - ok
11:24:12.0785 26832 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\windows\system32\drivers\ohci1394.sys
11:24:12.0785 26832 ohci1394 - ok
11:24:12.0815 26832 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
11:24:12.0825 26832 ose - ok
11:24:13.0065 26832 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
11:24:13.0225 26832 osppsvc - ok
11:24:13.0265 26832 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\windows\system32\pnrpsvc.dll
11:24:13.0285 26832 p2pimsvc - ok
11:24:13.0325 26832 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\windows\system32\p2psvc.dll
11:24:13.0335 26832 p2psvc - ok
11:24:13.0425 26832 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\windows\system32\drivers\parport.sys
11:24:13.0435 26832 Parport - ok
11:24:13.0465 26832 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\windows\system32\drivers\partmgr.sys
11:24:13.0465 26832 partmgr - ok
11:24:13.0485 26832 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\windows\System32\pcasvc.dll
11:24:13.0505 26832 PcaSvc - ok
11:24:13.0565 26832 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\windows\system32\drivers\pci.sys
11:24:13.0575 26832 pci - ok
11:24:13.0615 26832 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\windows\system32\drivers\pciide.sys
11:24:13.0625 26832 pciide - ok
11:24:13.0635 26832 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\windows\system32\drivers\pcmcia.sys
11:24:13.0645 26832 pcmcia - ok
11:24:13.0675 26832 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\windows\system32\drivers\pcw.sys
11:24:13.0675 26832 pcw - ok
11:24:13.0715 26832 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\windows\system32\drivers\peauth.sys
11:24:13.0735 26832 PEAUTH - ok
11:24:13.0865 26832 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\windows\SysWow64\perfhost.exe
11:24:13.0865 26832 PerfHost - ok
11:24:13.0965 26832 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\windows\system32\pla.dll
11:24:13.0995 26832 pla - ok
11:24:14.0055 26832 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\windows\system32\umpnpmgr.dll
11:24:14.0065 26832 PlugPlay - ok
11:24:14.0135 26832 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\windows\system32\pnrpauto.dll
11:24:14.0155 26832 PNRPAutoReg - ok
11:24:14.0195 26832 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\windows\system32\pnrpsvc.dll
11:24:14.0205 26832 PNRPsvc - ok
11:24:14.0285 26832 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\windows\System32\ipsecsvc.dll
11:24:14.0315 26832 PolicyAgent - ok
11:24:14.0365 26832 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\windows\system32\umpo.dll
11:24:14.0385 26832 Power - ok
11:24:14.0435 26832 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\windows\system32\DRIVERS\raspptp.sys
11:24:14.0445 26832 PptpMiniport - ok
11:24:14.0515 26832 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\windows\system32\drivers\processr.sys
11:24:14.0525 26832 Processor - ok
11:24:14.0585 26832 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\windows\system32\profsvc.dll
11:24:14.0595 26832 ProfSvc - ok
11:24:14.0615 26832 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\windows\system32\lsass.exe
11:24:14.0615 26832 ProtectedStorage - ok
11:24:14.0655 26832 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\windows\system32\DRIVERS\pacer.sys
11:24:14.0665 26832 Psched - ok
11:24:14.0715 26832 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\windows\system32\drivers\ql2300.sys
11:24:14.0735 26832 ql2300 - ok
11:24:14.0745 26832 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\windows\system32\drivers\ql40xx.sys
11:24:14.0755 26832 ql40xx - ok
11:24:14.0785 26832 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\windows\system32\qwave.dll
11:24:14.0795 26832 QWAVE - ok
11:24:14.0825 26832 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\windows\system32\drivers\qwavedrv.sys
11:24:14.0825 26832 QWAVEdrv - ok
11:24:14.0855 26832 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\windows\system32\DRIVERS\rasacd.sys
11:24:14.0855 26832 RasAcd - ok
11:24:14.0905 26832 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\windows\system32\DRIVERS\AgileVpn.sys
11:24:14.0905 26832 RasAgileVpn - ok
11:24:14.0945 26832 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\windows\System32\rasauto.dll
11:24:14.0945 26832 RasAuto - ok
11:24:15.0025 26832 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\windows\system32\DRIVERS\rasl2tp.sys
11:24:15.0035 26832 Rasl2tp - ok
11:24:15.0075 26832 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\windows\System32\rasmans.dll
11:24:15.0095 26832 RasMan - ok
11:24:15.0115 26832 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\windows\system32\DRIVERS\raspppoe.sys
11:24:15.0125 26832 RasPppoe - ok
11:24:15.0155 26832 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\windows\system32\DRIVERS\rassstp.sys
11:24:15.0155 26832 RasSstp - ok
11:24:15.0175 26832 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\windows\system32\DRIVERS\rdbss.sys
11:24:15.0185 26832 rdbss - ok
11:24:15.0205 26832 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\windows\system32\drivers\rdpbus.sys
11:24:15.0205 26832 rdpbus - ok
11:24:15.0285 26832 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\windows\system32\DRIVERS\RDPCDD.sys
11:24:15.0285 26832 RDPCDD - ok
11:24:15.0325 26832 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\windows\system32\drivers\rdpencdd.sys
11:24:15.0325 26832 RDPENCDD - ok
11:24:15.0345 26832 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\windows\system32\drivers\rdprefmp.sys
11:24:15.0345 26832 RDPREFMP - ok
11:24:15.0385 26832 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\windows\system32\drivers\RDPWD.sys
11:24:15.0395 26832 RDPWD - ok
11:24:15.0425 26832 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\windows\system32\drivers\rdyboost.sys
11:24:15.0435 26832 rdyboost - ok
11:24:15.0475 26832 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\windows\System32\mprdim.dll
11:24:15.0485 26832 RemoteAccess - ok
11:24:15.0565 26832 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\windows\system32\regsvc.dll
11:24:15.0575 26832 RemoteRegistry - ok
11:24:15.0615 26832 [ 3DD798846E2C28102B922C56E71B7932 ] RFCOMM C:\windows\system32\DRIVERS\rfcomm.sys
11:24:15.0625 26832 RFCOMM - ok
11:24:15.0765 26832 [ F12A68ED55053940CADD59CA5E3468DD ] RichVideo C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
11:24:15.0775 26832 RichVideo - ok
11:24:15.0835 26832 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\windows\System32\RpcEpMap.dll
11:24:15.0845 26832 RpcEptMapper - ok
11:24:15.0875 26832 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\windows\system32\locator.exe
11:24:15.0875 26832 RpcLocator - ok
11:24:15.0925 26832 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\windows\system32\rpcss.dll
11:24:15.0945 26832 RpcSs - ok
11:24:16.0055 26832 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\windows\system32\DRIVERS\rspndr.sys
11:24:16.0065 26832 rspndr - ok
11:24:16.0135 26832 [ F4C374B1C46DE294B573BB43723AC3F6 ] RTL8167 C:\windows\system32\DRIVERS\Rt64win7.sys
11:24:16.0145 26832 RTL8167 - ok
11:24:16.0285 26832 [ 4CA0DBA9E224473D664C25E411F5A3BD ] rtport C:\windows\SysWOW64\drivers\rtport.sys
11:24:16.0295 26832 rtport - ok
11:24:16.0315 26832 [ 62DB6CC4B0818F1B5F3441241B098F12 ] SABI C:\windows\system32\Drivers\SABI.sys
11:24:16.0315 26832 SABI - ok
11:24:16.0345 26832 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\windows\system32\lsass.exe
11:24:16.0355 26832 SamSs - ok
11:24:16.0375 26832 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\windows\system32\drivers\sbp2port.sys
11:24:16.0375 26832 sbp2port - ok
11:24:16.0465 26832 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\windows\System32\SCardSvr.dll
11:24:16.0475 26832 SCardSvr - ok
11:24:16.0495 26832 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\windows\system32\DRIVERS\scfilter.sys
11:24:16.0495 26832 scfilter - ok
11:24:16.0535 26832 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\windows\system32\schedsvc.dll
11:24:16.0565 26832 Schedule - ok
11:24:16.0595 26832 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\windows\System32\certprop.dll
11:24:16.0595 26832 SCPolicySvc - ok
11:24:16.0625 26832 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\windows\System32\SDRSVC.dll
11:24:16.0635 26832 SDRSVC - ok
11:24:16.0675 26832 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\windows\system32\drivers\secdrv.sys
11:24:16.0685 26832 secdrv - ok
11:24:16.0705 26832 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\windows\system32\seclogon.dll
11:24:16.0725 26832 seclogon - ok
11:24:16.0805 26832 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\windows\System32\sens.dll
11:24:16.0815 26832 SENS - ok
11:24:16.0835 26832 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\windows\system32\sensrsvc.dll
11:24:16.0845 26832 SensrSvc - ok
11:24:16.0855 26832 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\windows\system32\drivers\serenum.sys
11:24:16.0855 26832 Serenum - ok
11:24:16.0895 26832 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\windows\system32\drivers\serial.sys
11:24:16.0905 26832 Serial - ok
11:24:16.0925 26832 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\windows\system32\drivers\sermouse.sys
11:24:16.0935 26832 sermouse - ok
11:24:17.0005 26832 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\windows\system32\sessenv.dll
11:24:17.0015 26832 SessionEnv - ok
11:24:17.0035 26832 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\windows\system32\drivers\sffdisk.sys
11:24:17.0045 26832 sffdisk - ok
11:24:17.0065 26832 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\windows\system32\drivers\sffp_mmc.sys
11:24:17.0065 26832 sffp_mmc - ok
11:24:17.0085 26832 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\windows\system32\drivers\sffp_sd.sys
11:24:17.0085 26832 sffp_sd - ok
11:24:17.0105 26832 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\windows\system32\drivers\sfloppy.sys
11:24:17.0105 26832 sfloppy - ok
11:24:17.0195 26832 [ 0E30752CC6F579FF7C09437D375ACDA3 ] SFR.DashBoard.Service C:\Program Files (x86)\SFR\Gestionnaire de Connexion\SFR.DashBoard.Service.exe
11:24:17.0195 26832 SFR.DashBoard.Service - ok
11:24:17.0325 26832 [ C6CC9297BD53E5229653303E556AA539 ] Sftfs C:\windows\system32\DRIVERS\Sftfslh.sys
11:24:17.0345 26832 Sftfs - ok
11:24:17.0405 26832 [ 13693B6354DD6E72DC5131DA7D764B90 ] sftlist C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
11:24:17.0415 26832 sftlist - ok
11:24:17.0495 26832 [ 390AA7BC52CEE43F6790CDEA1E776703 ] Sftplay C:\windows\system32\DRIVERS\Sftplaylh.sys
11:24:17.0505 26832 Sftplay - ok
11:24:17.0525 26832 [ 617E29A0B0A2807466560D4C4E338D3E ] Sftredir C:\windows\system32\DRIVERS\Sftredirlh.sys
11:24:17.0535 26832 Sftredir - ok
11:24:17.0555 26832 [ 8F571F016FA1976F445147E9E6C8AE9B ] Sftvol C:\windows\system32\DRIVERS\Sftvollh.sys
11:24:17.0555 26832 Sftvol - ok
11:24:17.0665 26832 [ C3CDDD18F43D44AB713CF8C4916F7696 ] sftvsa C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
11:24:17.0675 26832 sftvsa - ok
11:24:17.0725 26832 [ 2FE1CD3AA602414841DB10AD96C95A5E ] SGDrv C:\windows\system32\DRIVERS\SGdrv64.sys
11:24:17.0725 26832 SGDrv - ok
11:24:17.0785 26832 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\windows\System32\ipnathlp.dll
11:24:17.0815 26832 SharedAccess - ok
11:24:17.0895 26832 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\windows\System32\shsvcs.dll
11:24:17.0915 26832 ShellHWDetection - ok
11:24:17.0955 26832 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\windows\system32\drivers\SiSRaid2.sys
11:24:17.0965 26832 SiSRaid2 - ok
11:24:17.0995 26832 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\windows\system32\drivers\sisraid4.sys
11:24:17.0995 26832 SiSRaid4 - ok
11:24:18.0065 26832 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
11:24:18.0065 26832 SkypeUpdate - ok
11:24:18.0165 26832 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\windows\system32\DRIVERS\smb.sys
11:24:18.0165 26832 Smb - ok
11:24:18.0225 26832 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\windows\System32\snmptrap.exe
11:24:18.0225 26832 SNMPTRAP - ok
11:24:18.0295 26832 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\windows\system32\drivers\spldr.sys
11:24:18.0295 26832 spldr - ok
11:24:18.0345 26832 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\windows\System32\spoolsv.exe
11:24:18.0365 26832 Spooler - ok
11:24:18.0455 26832 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\windows\system32\sppsvc.exe
11:24:18.0635 26832 sppsvc - ok
11:24:18.0665 26832 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\windows\system32\sppuinotify.dll
11:24:18.0675 26832 sppuinotify - ok
11:24:18.0725 26832 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\windows\system32\DRIVERS\srv.sys
11:24:18.0735 26832 srv - ok
11:24:18.0765 26832 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\windows\system32\DRIVERS\srv2.sys
11:24:18.0775 26832 srv2 - ok
11:24:18.0795 26832 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\windows\system32\DRIVERS\srvnet.sys
11:24:18.0805 26832 srvnet - ok
11:24:18.0855 26832 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\windows\System32\ssdpsrv.dll
11:24:18.0865 26832 SSDPSRV - ok
11:24:18.0885 26832 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\windows\system32\sstpsvc.dll
11:24:18.0895 26832 SstpSvc - ok
11:24:18.0935 26832 [ EF806D212D34B0E173BAEB3564D53E37 ] ss_bbus C:\windows\system32\DRIVERS\ss_bbus.sys
11:24:18.0935 26832 ss_bbus - ok
11:24:18.0995 26832 [ 08B1B34ABEBEB6AC2DEA06900C56411E ] ss_bmdfl C:\windows\system32\DRIVERS\ss_bmdfl.sys
11:24:18.0995 26832 ss_bmdfl - ok
11:24:19.0025 26832 [ 71A9DA6BEAA4CB54DFB827FB78600A5D ] ss_bmdm C:\windows\system32\DRIVERS\ss_bmdm.sys
11:24:19.0025 26832 ss_bmdm - ok
11:24:19.0055 26832 [ 677CDC98F8363ACCAAE783FDE1599C2A ] ss_bserd C:\windows\system32\DRIVERS\ss_bserd.sys
11:24:19.0065 26832 ss_bserd - ok
11:24:19.0095 26832 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\windows\system32\drivers\stexstor.sys
11:24:19.0095 26832 stexstor - ok
11:24:19.0165 26832 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\windows\System32\wiaservc.dll
11:24:19.0185 26832 stisvc - ok
11:24:19.0215 26832 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\windows\system32\DRIVERS\swenum.sys
11:24:19.0215 26832 swenum - ok
11:24:19.0255 26832 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\windows\System32\swprv.dll
11:24:19.0275 26832 swprv - ok
11:24:19.0365 26832 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\windows\system32\sysmain.dll
11:24:19.0415 26832 SysMain - ok
11:24:19.0435 26832 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\windows\System32\TabSvc.dll
11:24:19.0445 26832 TabletInputService - ok
11:24:19.0485 26832 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\windows\System32\tapisrv.dll
11:24:19.0495 26832 TapiSrv - ok
11:24:19.0515 26832 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\windows\System32\tbssvc.dll
11:24:19.0535 26832 TBS - ok
11:24:19.0735 26832 [ 9849EA3843A2ADBDD1497E97A85D8CAE ] Tcpip C:\windows\system32\drivers\tcpip.sys
11:24:19.0785 26832 Tcpip - ok
11:24:19.0845 26832 [ 9849EA3843A2ADBDD1497E97A85D8CAE ] TCPIP6 C:\windows\system32\DRIVERS\tcpip.sys
11:24:19.0865 26832 TCPIP6 - ok
11:24:19.0915 26832 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\windows\system32\drivers\tcpipreg.sys
11:24:19.0915 26832 tcpipreg - ok
11:24:19.0955 26832 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\windows\system32\drivers\tdpipe.sys
11:24:19.0955 26832 TDPIPE - ok
11:24:19.0985 26832 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\windows\system32\drivers\tdtcp.sys
11:24:19.0995 26832 TDTCP - ok
11:24:20.0085 26832 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\windows\system32\DRIVERS\tdx.sys
11:24:20.0095 26832 tdx - ok
11:24:20.0115 26832 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\windows\system32\DRIVERS\termdd.sys
11:24:20.0115 26832 TermDD - ok
11:24:20.0165 26832 [ 2E648163254233755035B46DD7B89123 ] TermService C:\windows\System32\termsrv.dll
11:24:20.0185 26832 TermService - ok
11:24:20.0195 26832 [ F0344071948D1A1FA732231785A0664C ] Themes C:\windows\system32\themeservice.dll
11:24:20.0205 26832 Themes - ok
11:24:20.0225 26832 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\windows\system32\mmcss.dll
11:24:20.0225 26832 THREADORDER - ok
11:24:20.0255 26832 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\windows\System32\trkwks.dll
11:24:20.0265 26832 TrkWks - ok
11:24:20.0375 26832 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\windows\servicing\TrustedInstaller.exe
11:24:20.0385 26832 TrustedInstaller - ok
11:24:20.0415 26832 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\windows\system32\DRIVERS\tssecsrv.sys
11:24:20.0415 26832 tssecsrv - ok
11:24:20.0435 26832 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\windows\system32\drivers\tsusbflt.sys
11:24:20.0435 26832 TsUsbFlt - ok
11:24:20.0475 26832 [ 9CC2CCAE8A84820EAECB886D477CBCB8 ] TsUsbGD C:\windows\system32\drivers\TsUsbGD.sys
11:24:20.0475 26832 TsUsbGD - ok
11:24:20.0555 26832 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\windows\system32\DRIVERS\tunnel.sys
11:24:20.0555 26832 tunnel - ok
11:24:20.0585 26832 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\windows\system32\drivers\uagp35.sys
11:24:20.0595 26832 uagp35 - ok
11:24:20.0625 26832 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\windows\system32\DRIVERS\udfs.sys
11:24:20.0645 26832 udfs - ok
11:24:20.0685 26832 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\windows\system32\UI0Detect.exe
11:24:20.0705 26832 UI0Detect - ok
11:24:20.0725 26832 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\windows\system32\drivers\uliagpkx.sys
11:24:20.0735 26832 uliagpkx - ok
11:24:20.0765 26832 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\windows\system32\DRIVERS\umbus.sys
11:24:20.0775 26832 umbus - ok
11:24:20.0805 26832 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\windows\system32\drivers\umpass.sys
11:24:20.0805 26832 UmPass - ok
11:24:21.0025 26832 [ DB641944F7E4B14C13C3FEFC89843F69 ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
11:24:21.0075 26832 UNS - ok
11:24:21.0125 26832 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\windows\System32\upnphost.dll
11:24:21.0145 26832 upnphost - ok
11:24:21.0195 26832 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\windows\system32\DRIVERS\usbccgp.sys
11:24:21.0195 26832 usbccgp - ok
11:24:21.0235 26832 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\windows\system32\drivers\usbcir.sys
11:24:21.0245 26832 usbcir - ok
11:24:21.0305 26832 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\windows\system32\drivers\usbehci.sys
11:24:21.0305 26832 usbehci - ok
11:24:21.0335 26832 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\windows\system32\DRIVERS\usbhub.sys
11:24:21.0345 26832 usbhub - ok
11:24:21.0365 26832 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci
11:23:44.0235 27536 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
11:23:44.0945 27536 ============================================================
11:23:44.0945 27536 Current date / time: 2013/08/03 11:23:44.0945
11:23:44.0945 27536 SystemInfo:
11:23:44.0945 27536
11:23:44.0945 27536 OS Version: 6.1.7601 ServicePack: 1.0
11:23:44.0945 27536 Product type: Workstation
11:23:44.0945 27536 ComputerName: LIONEL-PC
11:23:44.0945 27536 UserName: lionel
11:23:44.0945 27536 Windows directory: C:\windows
11:23:44.0945 27536 System windows directory: C:\windows
11:23:44.0945 27536 Running under WOW64
11:23:44.0945 27536 Processor architecture: Intel x64
11:23:44.0945 27536 Number of processors: 4
11:23:44.0945 27536 Page size: 0x1000
11:23:44.0945 27536 Boot type: Normal boot
11:23:44.0945 27536 ============================================================
11:23:46.0435 27536 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
11:23:46.0455 27536 ============================================================
11:23:46.0455 27536 \Device\Harddisk0\DR0:
11:23:46.0455 27536 MBR partitions:
11:23:46.0455 27536 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
11:23:46.0455 27536 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x16200000
11:23:46.0475 27536 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x16233000, BlocksNum 0x212B0000
11:23:46.0475 27536 ============================================================
11:23:46.0525 27536 C: <-> \Device\Harddisk0\DR0\Partition2
11:23:46.0565 27536 D: <-> \Device\Harddisk0\DR0\Partition3
11:23:46.0565 27536 ============================================================
11:23:46.0565 27536 Initialize success
11:23:46.0565 27536 ============================================================
11:23:54.0745 26832 ============================================================
11:23:54.0745 26832 Scan started
11:23:54.0745 26832 Mode: Manual;
11:23:54.0745 26832 ============================================================
11:23:55.0535 26832 ================ Scan system memory ========================
11:23:55.0535 26832 System memory - ok
11:23:55.0545 26832 ================ Scan services =============================
11:23:55.0845 26832 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\windows\system32\drivers\1394ohci.sys
11:23:55.0855 26832 1394ohci - ok
11:23:55.0895 26832 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\windows\system32\drivers\ACPI.sys
11:23:55.0905 26832 ACPI - ok
11:23:55.0995 26832 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\windows\system32\drivers\acpipmi.sys
11:23:56.0005 26832 AcpiPmi - ok
11:23:56.0115 26832 [ ADDA5E1951B90D3D23C56D3CF0622ADC ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
11:23:56.0115 26832 AdobeARMservice - ok
11:23:56.0315 26832 [ 476BB014F3F68C0C15EDDD5B444DA8FF ] AdobeFlashPlayerUpdateSvc C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
11:23:56.0315 26832 AdobeFlashPlayerUpdateSvc - ok
11:23:56.0435 26832 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\windows\system32\drivers\adp94xx.sys
11:23:56.0445 26832 adp94xx - ok
11:23:56.0485 26832 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\windows\system32\drivers\adpahci.sys
11:23:56.0495 26832 adpahci - ok
11:23:56.0545 26832 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\windows\system32\drivers\adpu320.sys
11:23:56.0545 26832 adpu320 - ok
11:23:56.0585 26832 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\windows\System32\aelupsvc.dll
11:23:56.0585 26832 AeLookupSvc - ok
11:23:56.0655 26832 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\windows\system32\drivers\afd.sys
11:23:56.0665 26832 AFD - ok
11:23:56.0755 26832 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\windows\system32\drivers\agp440.sys
11:23:56.0755 26832 agp440 - ok
11:23:56.0795 26832 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\windows\System32\alg.exe
11:23:56.0805 26832 ALG - ok
11:23:56.0835 26832 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\windows\system32\drivers\aliide.sys
11:23:56.0835 26832 aliide - ok
11:23:56.0855 26832 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\windows\system32\drivers\amdide.sys
11:23:56.0855 26832 amdide - ok
11:23:56.0875 26832 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\windows\system32\drivers\amdk8.sys
11:23:56.0885 26832 AmdK8 - ok
11:23:56.0965 26832 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\windows\system32\drivers\amdppm.sys
11:23:56.0965 26832 AmdPPM - ok
11:23:57.0015 26832 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\windows\system32\drivers\amdsata.sys
11:23:57.0025 26832 amdsata - ok
11:23:57.0065 26832 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\windows\system32\drivers\amdsbs.sys
11:23:57.0075 26832 amdsbs - ok
11:23:57.0095 26832 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\windows\system32\drivers\amdxata.sys
11:23:57.0095 26832 amdxata - ok
11:23:57.0195 26832 [ 3BC90482A834F998C3B7A9C934A20342 ] AMPPAL C:\windows\system32\DRIVERS\AMPPAL.sys
11:23:57.0205 26832 AMPPAL - ok
11:23:57.0225 26832 [ 3BC90482A834F998C3B7A9C934A20342 ] AMPPALP C:\windows\system32\DRIVERS\amppal.sys
11:23:57.0225 26832 AMPPALP - ok
11:23:57.0375 26832 [ A47D7FEBD9381D34DDB4FF38B15A67FE ] AMPPALR3 C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
11:23:57.0405 26832 AMPPALR3 - ok
11:23:57.0455 26832 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\windows\system32\drivers\appid.sys
11:23:57.0465 26832 AppID - ok
11:23:57.0555 26832 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\windows\System32\appidsvc.dll
11:23:57.0565 26832 AppIDSvc - ok
11:23:57.0605 26832 [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo C:\windows\System32\appinfo.dll
11:23:57.0605 26832 Appinfo - ok
11:23:57.0625 26832 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\windows\system32\drivers\arc.sys
11:23:57.0635 26832 arc - ok
11:23:57.0645 26832 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\windows\system32\drivers\arcsas.sys
11:23:57.0655 26832 arcsas - ok
11:23:57.0695 26832 [ 0BAEFD3F648C6E7AB52990DD9565E4E2 ] aswFsBlk C:\windows\system32\drivers\aswFsBlk.sys
11:23:57.0705 26832 aswFsBlk - ok
11:23:57.0825 26832 [ 36949EB7E71C5779C5163AF6AFB2A161 ] aswKbd C:\windows\system32\drivers\aswKbd.sys
11:23:57.0835 26832 aswKbd - ok
11:23:57.0865 26832 [ FA562F34ED6633C66170B09182B4C049 ] aswMonFlt C:\windows\system32\drivers\aswMonFlt.sys
11:23:57.0875 26832 aswMonFlt - ok
11:23:57.0905 26832 [ 64E2BAB4096C13D2342BC4661C967E07 ] aswRdr C:\windows\System32\Drivers\aswrdr2.sys
11:23:57.0915 26832 aswRdr - ok
11:23:58.0005 26832 [ 5573AA70993A2BB81525B1C704B88763 ] aswRvrt C:\windows\system32\drivers\aswRvrt.sys
11:23:58.0015 26832 aswRvrt - ok
11:23:58.0045 26832 [ 8C0800CDB501CFC1164B286A0478DC10 ] aswSnx C:\windows\system32\drivers\aswSnx.sys
11:23:58.0065 26832 aswSnx - ok
11:23:58.0105 26832 [ 3815DB16CDA62190F5C0A65118F3D714 ] aswSP C:\windows\system32\drivers\aswSP.sys
11:23:58.0115 26832 aswSP - ok
11:23:58.0135 26832 [ 29DD8E458A84171202AA4979364C30C0 ] aswTdi C:\windows\system32\drivers\aswTdi.sys
11:23:58.0135 26832 aswTdi - ok
11:23:58.0195 26832 [ 22F521108881DC59837F6FC614E0568F ] aswVmm C:\windows\system32\drivers\aswVmm.sys
11:23:58.0195 26832 aswVmm - ok
11:23:58.0235 26832 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\windows\system32\DRIVERS\asyncmac.sys
11:23:58.0235 26832 AsyncMac - ok
11:23:58.0255 26832 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\windows\system32\drivers\atapi.sys
11:23:58.0265 26832 atapi - ok
11:23:58.0385 26832 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\windows\System32\Audiosrv.dll
11:23:58.0405 26832 AudioEndpointBuilder - ok
11:23:58.0425 26832 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\windows\System32\Audiosrv.dll
11:23:58.0435 26832 AudioSrv - ok
11:23:58.0505 26832 [ 28D6701C710AD7BA3CB95E75F8F1A9AA ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
11:23:58.0505 26832 avast! Antivirus - ok
11:23:58.0545 26832 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\windows\System32\AxInstSV.dll
11:23:58.0555 26832 AxInstSV - ok
11:23:58.0655 26832 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\windows\system32\drivers\bxvbda.sys
11:23:58.0675 26832 b06bdrv - ok
11:23:58.0745 26832 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\windows\system32\DRIVERS\b57nd60a.sys
11:23:58.0755 26832 b57nd60a - ok
11:23:58.0905 26832 [ F48FEB7DA35821DA15E0B006DCB9A169 ] BBSvc C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\BBSvc.exe
11:23:58.0905 26832 BBSvc - ok
11:23:58.0945 26832 [ 8E16F7A85441986FD2B9CE6C879524E4 ] BBUpdate C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\SeaPort.exe
11:23:58.0955 26832 BBUpdate - ok
11:23:59.0025 26832 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\windows\System32\bdesvc.dll
11:23:59.0035 26832 BDESVC - ok
11:23:59.0055 26832 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\windows\system32\drivers\Beep.sys
11:23:59.0055 26832 Beep - ok
11:23:59.0125 26832 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\windows\System32\bfe.dll
11:23:59.0145 26832 BFE - ok
11:23:59.0215 26832 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\windows\System32\qmgr.dll
11:23:59.0235 26832 BITS - ok
11:23:59.0285 26832 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\windows\system32\DRIVERS\blbdrive.sys
11:23:59.0285 26832 blbdrive - ok
11:23:59.0485 26832 [ 0F46D2845BD7DDACA52340ECC2B65DA3 ] Bluetooth Device Monitor C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
11:23:59.0495 26832 Bluetooth Device Monitor - ok
11:23:59.0615 26832 [ 3341DE556EC28252D603277609EEF8BF ] Bluetooth Media Service C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
11:23:59.0635 26832 Bluetooth Media Service - ok
11:23:59.0695 26832 [ 5D5C3EC9BE1107DEDF0FEB55B7F3BD77 ] Bluetooth OBEX Service C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
11:23:59.0715 26832 Bluetooth OBEX Service - ok
11:23:59.0815 26832 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\windows\system32\DRIVERS\bowser.sys
11:23:59.0815 26832 bowser - ok
11:23:59.0855 26832 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\windows\system32\drivers\BrFiltLo.sys
11:23:59.0855 26832 BrFiltLo - ok
11:23:59.0875 26832 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\windows\system32\drivers\BrFiltUp.sys
11:23:59.0875 26832 BrFiltUp - ok
11:23:59.0915 26832 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\windows\System32\browser.dll
11:23:59.0915 26832 Browser - ok
11:23:59.0955 26832 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\windows\System32\Drivers\Brserid.sys
11:23:59.0955 26832 Brserid - ok
11:24:00.0015 26832 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\windows\System32\Drivers\BrSerWdm.sys
11:24:00.0015 26832 BrSerWdm - ok
11:24:00.0035 26832 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\windows\System32\Drivers\BrUsbMdm.sys
11:24:00.0035 26832 BrUsbMdm - ok
11:24:00.0065 26832 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\windows\System32\Drivers\BrUsbSer.sys
11:24:00.0065 26832 BrUsbSer - ok
11:24:00.0115 26832 [ 9D95F74875491CECBF9E10A5936A570E ] BtFilter C:\windows\system32\DRIVERS\btfilter.sys
11:24:00.0125 26832 BtFilter - ok
11:24:00.0215 26832 [ CF98190A94F62E405C8CB255018B2315 ] BthEnum C:\windows\system32\drivers\BthEnum.sys
11:24:00.0215 26832 BthEnum - ok
11:24:00.0245 26832 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\windows\system32\DRIVERS\bthmodem.sys
11:24:00.0255 26832 BTHMODEM - ok
11:24:00.0295 26832 [ 02DD601B708DD0667E1331FA8518E9FF ] BthPan C:\windows\system32\DRIVERS\bthpan.sys
11:24:00.0305 26832 BthPan - ok
11:24:00.0405 26832 [ 738D0E9272F59EB7A1449C3EC118E6C4 ] BTHPORT C:\windows\System32\Drivers\BTHport.sys
11:24:00.0415 26832 BTHPORT - ok
11:24:00.0465 26832 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\windows\system32\bthserv.dll
11:24:00.0465 26832 bthserv - ok
11:24:00.0545 26832 [ 9E2AF97302B9F4BF97E952A865EB31AE ] BTHSSecurityMgr C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
11:24:00.0555 26832 BTHSSecurityMgr - ok
11:24:00.0575 26832 [ F188B7394D81010767B6DF3178519A37 ] BTHUSB C:\windows\System32\Drivers\BTHUSB.sys
11:24:00.0575 26832 BTHUSB - ok
11:24:00.0615 26832 [ 274E47BD9C1367BDBFA9DF10C2E6C544 ] btmaudio C:\windows\system32\drivers\btmaud.sys
11:24:00.0625 26832 btmaudio - ok
11:24:00.0655 26832 [ AB0A33001FE7EBB209D9D52CED11BE1A ] btmaux C:\windows\system32\DRIVERS\btmaux.sys
11:24:00.0655 26832 btmaux - ok
11:24:00.0695 26832 [ 5BA4C6F82A5CA3307C0579D9F7B36E28 ] btmhsf C:\windows\system32\DRIVERS\btmhsf.sys
11:24:00.0705 26832 btmhsf - ok
11:24:00.0735 26832 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\windows\system32\DRIVERS\cdfs.sys
11:24:00.0735 26832 cdfs - ok
11:24:00.0845 26832 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\windows\system32\DRIVERS\cdrom.sys
11:24:00.0855 26832 cdrom - ok
11:24:00.0885 26832 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\windows\System32\certprop.dll
11:24:00.0895 26832 CertPropSvc - ok
11:24:00.0915 26832 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\windows\system32\drivers\circlass.sys
11:24:00.0925 26832 circlass - ok
11:24:00.0945 26832 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\windows\system32\CLFS.sys
11:24:00.0955 26832 CLFS - ok
11:24:01.0055 26832 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
11:24:01.0065 26832 clr_optimization_v2.0.50727_32 - ok
11:24:01.0115 26832 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
11:24:01.0125 26832 clr_optimization_v2.0.50727_64 - ok
11:24:01.0235 26832 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
11:24:01.0255 26832 clr_optimization_v4.0.30319_32 - ok
11:24:01.0285 26832 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
11:24:01.0295 26832 clr_optimization_v4.0.30319_64 - ok
11:24:01.0385 26832 [ E13A438F9E51DD034730678E33B73290 ] clwvd C:\windows\system32\DRIVERS\clwvd.sys
11:24:01.0385 26832 clwvd - ok
11:24:01.0405 26832 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\windows\system32\DRIVERS\CmBatt.sys
11:24:01.0415 26832 CmBatt - ok
11:24:01.0445 26832 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\windows\system32\drivers\cmdide.sys
11:24:01.0445 26832 cmdide - ok
11:24:01.0495 26832 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\windows\system32\Drivers\cng.sys
11:24:01.0505 26832 CNG - ok
11:24:01.0595 26832 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\windows\system32\DRIVERS\compbatt.sys
11:24:01.0615 26832 Compbatt - ok
11:24:01.0655 26832 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\windows\system32\DRIVERS\CompositeBus.sys
11:24:01.0655 26832 CompositeBus - ok
11:24:01.0675 26832 COMSysApp - ok
11:24:01.0705 26832 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\windows\system32\drivers\crcdisk.sys
11:24:01.0705 26832 crcdisk - ok
11:24:01.0775 26832 [ D8129C49798CBBFB2E4351D4B7B8EF9C ] CryptSvc C:\windows\system32\cryptsvc.dll
11:24:01.0785 26832 CryptSvc - ok
11:24:01.0915 26832 [ 72794D112CBAFF3BC0C29BF7350D4741 ] cvhsvc C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
11:24:01.0935 26832 cvhsvc - ok
11:24:02.0025 26832 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\windows\system32\rpcss.dll
11:24:02.0035 26832 DcomLaunch - ok
11:24:02.0085 26832 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\windows\System32\defragsvc.dll
11:24:02.0095 26832 defragsvc - ok
11:24:02.0185 26832 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\windows\system32\Drivers\dfsc.sys
11:24:02.0195 26832 DfsC - ok
11:24:02.0255 26832 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\windows\system32\dhcpcore.dll
11:24:02.0265 26832 Dhcp - ok
11:24:02.0315 26832 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\windows\system32\drivers\discache.sys
11:24:02.0315 26832 discache - ok
11:24:02.0345 26832 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\windows\system32\drivers\disk.sys
11:24:02.0355 26832 Disk - ok
11:24:02.0395 26832 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\windows\System32\dnsrslvr.dll
11:24:02.0405 26832 Dnscache - ok
11:24:02.0445 26832 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\windows\System32\dot3svc.dll
11:24:02.0455 26832 dot3svc - ok
11:24:02.0465 26832 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\windows\system32\dps.dll
11:24:02.0475 26832 DPS - ok
11:24:02.0515 26832 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\windows\system32\drivers\drmkaud.sys
11:24:02.0515 26832 drmkaud - ok
11:24:02.0655 26832 [ AF2E16242AA723F68F461B6EAE2EAD3D ] DXGKrnl C:\windows\System32\drivers\dxgkrnl.sys
11:24:02.0675 26832 DXGKrnl - ok
11:24:02.0735 26832 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\windows\System32\eapsvc.dll
11:24:02.0755 26832 EapHost - ok
11:24:02.0895 26832 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\windows\system32\drivers\evbda.sys
11:24:02.0985 26832 ebdrv - ok
11:24:03.0005 26832 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\windows\System32\lsass.exe
11:24:03.0015 26832 EFS - ok
11:24:03.0085 26832 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\windows\ehome\ehRecvr.exe
11:24:03.0105 26832 ehRecvr - ok
11:24:03.0155 26832 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\windows\ehome\ehsched.exe
11:24:03.0155 26832 ehSched - ok
11:24:03.0235 26832 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\windows\system32\drivers\elxstor.sys
11:24:03.0245 26832 elxstor - ok
11:24:03.0275 26832 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\windows\system32\drivers\errdev.sys
11:24:03.0275 26832 ErrDev - ok
11:24:03.0325 26832 [ 98B103D1D5C426A10219437E36E03FE8 ] ETD C:\windows\system32\DRIVERS\ETD.sys
11:24:03.0335 26832 ETD - ok
11:24:03.0435 26832 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\windows\system32\es.dll
11:24:03.0445 26832 EventSystem - ok
11:24:03.0475 26832 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\windows\system32\drivers\exfat.sys
11:24:03.0475 26832 exfat - ok
11:24:03.0485 26832 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\windows\system32\drivers\fastfat.sys
11:24:03.0495 26832 fastfat - ok
11:24:03.0525 26832 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\windows\system32\fxssvc.exe
11:24:03.0545 26832 Fax - ok
11:24:03.0575 26832 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\windows\system32\drivers\fdc.sys
11:24:03.0575 26832 fdc - ok
11:24:03.0605 26832 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\windows\system32\fdPHost.dll
11:24:03.0615 26832 fdPHost - ok
11:24:03.0625 26832 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\windows\system32\fdrespub.dll
11:24:03.0635 26832 FDResPub - ok
11:24:03.0665 26832 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\windows\system32\drivers\fileinfo.sys
11:24:03.0665 26832 FileInfo - ok
11:24:03.0735 26832 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\windows\system32\drivers\filetrace.sys
11:24:03.0735 26832 Filetrace - ok
11:24:03.0755 26832 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\windows\system32\drivers\flpydisk.sys
11:24:03.0765 26832 flpydisk - ok
11:24:03.0795 26832 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\windows\system32\drivers\fltmgr.sys
11:24:03.0805 26832 FltMgr - ok
11:24:03.0875 26832 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\windows\system32\FntCache.dll
11:24:03.0905 26832 FontCache - ok
11:24:03.0975 26832 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
11:24:03.0975 26832 FontCache3.0.0.0 - ok
11:24:04.0005 26832 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\windows\system32\drivers\FsDepends.sys
11:24:04.0005 26832 FsDepends - ok
11:24:04.0035 26832 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\windows\system32\drivers\Fs_Rec.sys
11:24:04.0045 26832 Fs_Rec - ok
11:24:04.0105 26832 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\windows\system32\DRIVERS\fvevol.sys
11:24:04.0105 26832 fvevol - ok
11:24:04.0175 26832 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\windows\system32\drivers\gagp30kx.sys
11:24:04.0185 26832 gagp30kx - ok
11:24:04.0295 26832 [ 521A469CAF61F00E1DE081CC2099C1D6 ] GameConsoleService C:\Program Files (x86)\WildGames\Game Console - WildGames\GameConsoleService.exe
11:24:04.0305 26832 GameConsoleService - ok
11:24:04.0345 26832 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\windows\System32\gpsvc.dll
11:24:04.0365 26832 gpsvc - ok
11:24:04.0465 26832 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
11:24:04.0475 26832 gupdate - ok
11:24:04.0485 26832 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
11:24:04.0485 26832 gupdatem - ok
11:24:04.0555 26832 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\windows\system32\drivers\hcw85cir.sys
11:24:04.0555 26832 hcw85cir - ok
11:24:04.0605 26832 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\windows\system32\drivers\HdAudio.sys
11:24:04.0615 26832 HdAudAddService - ok
11:24:04.0645 26832 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\windows\system32\DRIVERS\HDAudBus.sys
11:24:04.0645 26832 HDAudBus - ok
11:24:04.0715 26832 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\windows\system32\drivers\HidBatt.sys
11:24:04.0725 26832 HidBatt - ok
11:24:04.0735 26832 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\windows\system32\drivers\hidbth.sys
11:24:04.0745 26832 HidBth - ok
11:24:04.0765 26832 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\windows\system32\drivers\hidir.sys
11:24:04.0775 26832 HidIr - ok
11:24:04.0825 26832 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\windows\system32\hidserv.dll
11:24:04.0845 26832 hidserv - ok
11:24:04.0905 26832 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\windows\system32\DRIVERS\hidusb.sys
11:24:04.0915 26832 HidUsb - ok
11:24:04.0985 26832 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\windows\system32\kmsvc.dll
11:24:04.0995 26832 hkmsvc - ok
11:24:05.0035 26832 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\windows\system32\ListSvc.dll
11:24:05.0045 26832 HomeGroupListener - ok
11:24:05.0075 26832 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\windows\system32\provsvc.dll
11:24:05.0095 26832 HomeGroupProvider - ok
11:24:05.0165 26832 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\windows\system32\drivers\HpSAMD.sys
11:24:05.0165 26832 HpSAMD - ok
11:24:05.0215 26832 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\windows\system32\drivers\HTTP.sys
11:24:05.0225 26832 HTTP - ok
11:24:05.0245 26832 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\windows\system32\drivers\hwpolicy.sys
11:24:05.0245 26832 hwpolicy - ok
11:24:05.0315 26832 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\windows\system32\DRIVERS\i8042prt.sys
11:24:05.0325 26832 i8042prt - ok
11:24:05.0375 26832 [ 53CC5BF8B5A219119953C7ABB19A7705 ] iaStor C:\windows\system32\DRIVERS\iaStor.sys
11:24:05.0385 26832 iaStor - ok
11:24:05.0495 26832 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\windows\system32\drivers\iaStorV.sys
11:24:05.0505 26832 iaStorV - ok
11:24:05.0535 26832 [ 806422F30DF9CE8307457485779C77B7 ] iBtFltCoex C:\windows\system32\DRIVERS\iBtFltCoex.sys
11:24:05.0545 26832 iBtFltCoex - ok
11:24:05.0615 26832 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
11:24:05.0635 26832 idsvc - ok
11:24:06.0045 26832 [ 8CB8667F5A3B5515F2585F3254F3AAF7 ] igfx C:\windows\system32\DRIVERS\igdkmd64.sys
11:24:06.0365 26832 igfx - ok
11:24:06.0415 26832 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\windows\system32\drivers\iirsp.sys
11:24:06.0425 26832 iirsp - ok
11:24:06.0475 26832 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\windows\System32\ikeext.dll
11:24:06.0495 26832 IKEEXT - ok
11:24:06.0595 26832 [ 8E05ADB4B809B478B2EC65A1A1633DEB ] IntcAzAudAddService C:\windows\system32\drivers\RTKVHD64.sys
11:24:06.0735 26832 IntcAzAudAddService - ok
11:24:06.0795 26832 [ FC727061C0F47C8059E88E05D5C8E381 ] IntcDAud C:\windows\system32\DRIVERS\IntcDAud.sys
11:24:06.0805 26832 IntcDAud - ok
11:24:06.0865 26832 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\windows\system32\drivers\intelide.sys
11:24:06.0865 26832 intelide - ok
11:24:06.0905 26832 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\windows\system32\DRIVERS\intelppm.sys
11:24:06.0915 26832 intelppm - ok
11:24:06.0945 26832 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\windows\system32\ipbusenum.dll
11:24:06.0955 26832 IPBusEnum - ok
11:24:06.0985 26832 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\windows\system32\DRIVERS\ipfltdrv.sys
11:24:06.0995 26832 IpFilterDriver - ok
11:24:07.0035 26832 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\windows\System32\iphlpsvc.dll
11:24:07.0055 26832 iphlpsvc - ok
11:24:07.0075 26832 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\windows\system32\drivers\IPMIDrv.sys
11:24:07.0075 26832 IPMIDRV - ok
11:24:07.0105 26832 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\windows\system32\drivers\ipnat.sys
11:24:07.0115 26832 IPNAT - ok
11:24:07.0145 26832 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\windows\system32\drivers\irenum.sys
11:24:07.0145 26832 IRENUM - ok
11:24:07.0165 26832 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\windows\system32\drivers\isapnp.sys
11:24:07.0165 26832 isapnp - ok
11:24:07.0195 26832 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\windows\system32\drivers\msiscsi.sys
11:24:07.0205 26832 iScsiPrt - ok
11:24:07.0245 26832 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\windows\system32\DRIVERS\kbdclass.sys
11:24:07.0245 26832 kbdclass - ok
11:24:07.0275 26832 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\windows\system32\drivers\kbdhid.sys
11:24:07.0285 26832 kbdhid - ok
11:24:07.0305 26832 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\windows\system32\lsass.exe
11:24:07.0305 26832 KeyIso - ok
11:24:07.0345 26832 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\windows\system32\Drivers\ksecdd.sys
11:24:07.0355 26832 KSecDD - ok
11:24:07.0375 26832 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\windows\system32\Drivers\ksecpkg.sys
11:24:07.0385 26832 KSecPkg - ok
11:24:07.0395 26832 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\windows\system32\drivers\ksthunk.sys
11:24:07.0405 26832 ksthunk - ok
11:24:07.0435 26832 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\windows\system32\msdtckrm.dll
11:24:07.0455 26832 KtmRm - ok
11:24:07.0495 26832 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\windows\system32\srvsvc.dll
11:24:07.0515 26832 LanmanServer - ok
11:24:07.0555 26832 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\windows\System32\wkssvc.dll
11:24:07.0565 26832 LanmanWorkstation - ok
11:24:07.0675 26832 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\windows\system32\DRIVERS\lltdio.sys
11:24:07.0685 26832 lltdio - ok
11:24:07.0725 26832 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\windows\System32\lltdsvc.dll
11:24:07.0745 26832 lltdsvc - ok
11:24:07.0795 26832 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\windows\System32\lmhsvc.dll
11:24:07.0805 26832 lmhosts - ok
11:24:07.0875 26832 [ F4A17DCAB576267C85663E64F3ACE5A4 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
11:24:07.0885 26832 LMS - ok
11:24:07.0915 26832 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\windows\system32\drivers\lsi_fc.sys
11:24:07.0915 26832 LSI_FC - ok
11:24:07.0965 26832 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\windows\system32\drivers\lsi_sas.sys
11:24:07.0965 26832 LSI_SAS - ok
11:24:07.0985 26832 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\windows\system32\drivers\lsi_sas2.sys
11:24:07.0995 26832 LSI_SAS2 - ok
11:24:08.0025 26832 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\windows\system32\drivers\lsi_scsi.sys
11:24:08.0025 26832 LSI_SCSI - ok
11:24:08.0055 26832 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\windows\system32\drivers\luafv.sys
11:24:08.0065 26832 luafv - ok
11:24:08.0115 26832 [ 0BB97D43299910CBFBA59C461B99B910 ] MBAMProtector C:\windows\system32\drivers\mbam.sys
11:24:08.0125 26832 MBAMProtector - ok
11:24:08.0275 26832 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
11:24:08.0285 26832 MBAMScheduler - ok
11:24:08.0325 26832 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
11:24:08.0345 26832 MBAMService - ok
11:24:08.0385 26832 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\windows\system32\Mcx2Svc.dll
11:24:08.0385 26832 Mcx2Svc - ok
11:24:08.0425 26832 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\windows\system32\drivers\megasas.sys
11:24:08.0425 26832 megasas - ok
11:24:08.0475 26832 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\windows\system32\drivers\MegaSR.sys
11:24:08.0485 26832 MegaSR - ok
11:24:08.0525 26832 [ A6518DCC42F7A6E999BB3BEA8FD87567 ] MEIx64 C:\windows\system32\DRIVERS\HECIx64.sys
11:24:08.0525 26832 MEIx64 - ok
11:24:08.0565 26832 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\windows\system32\mmcss.dll
11:24:08.0575 26832 MMCSS - ok
11:24:08.0615 26832 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\windows\system32\drivers\modem.sys
11:24:08.0615 26832 Modem - ok
11:24:08.0665 26832 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\windows\system32\DRIVERS\monitor.sys
11:24:08.0675 26832 monitor - ok
11:24:08.0715 26832 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\windows\system32\DRIVERS\mouclass.sys
11:24:08.0715 26832 mouclass - ok
11:24:08.0785 26832 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\windows\system32\DRIVERS\mouhid.sys
11:24:08.0785 26832 mouhid - ok
11:24:08.0855 26832 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\windows\system32\drivers\mountmgr.sys
11:24:08.0855 26832 mountmgr - ok
11:24:08.0895 26832 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\windows\system32\drivers\mpio.sys
11:24:08.0905 26832 mpio - ok
11:24:08.0935 26832 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\windows\system32\drivers\mpsdrv.sys
11:24:08.0935 26832 mpsdrv - ok
11:24:09.0005 26832 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\windows\system32\mpssvc.dll
11:24:09.0015 26832 MpsSvc - ok
11:24:09.0025 26832 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\windows\system32\drivers\mrxdav.sys
11:24:09.0035 26832 MRxDAV - ok
11:24:09.0065 26832 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\windows\system32\DRIVERS\mrxsmb.sys
11:24:09.0075 26832 mrxsmb - ok
11:24:09.0155 26832 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\windows\system32\DRIVERS\mrxsmb10.sys
11:24:09.0165 26832 mrxsmb10 - ok
11:24:09.0185 26832 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\windows\system32\DRIVERS\mrxsmb20.sys
11:24:09.0195 26832 mrxsmb20 - ok
11:24:09.0225 26832 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\windows\system32\drivers\msahci.sys
11:24:09.0225 26832 msahci - ok
11:24:09.0255 26832 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\windows\system32\drivers\msdsm.sys
11:24:09.0255 26832 msdsm - ok
11:24:09.0325 26832 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\windows\System32\msdtc.exe
11:24:09.0335 26832 MSDTC - ok
11:24:09.0375 26832 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\windows\system32\drivers\Msfs.sys
11:24:09.0375 26832 Msfs - ok
11:24:09.0405 26832 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\windows\System32\drivers\mshidkmdf.sys
11:24:09.0405 26832 mshidkmdf - ok
11:24:09.0435 26832 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\windows\system32\drivers\msisadrv.sys
11:24:09.0435 26832 msisadrv - ok
11:24:09.0475 26832 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\windows\system32\iscsiexe.dll
11:24:09.0475 26832 MSiSCSI - ok
11:24:09.0485 26832 msiserver - ok
11:24:09.0515 26832 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\windows\system32\drivers\MSKSSRV.sys
11:24:09.0525 26832 MSKSSRV - ok
11:24:09.0535 26832 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\windows\system32\drivers\MSPCLOCK.sys
11:24:09.0535 26832 MSPCLOCK - ok
11:24:09.0545 26832 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\windows\system32\drivers\MSPQM.sys
11:24:09.0545 26832 MSPQM - ok
11:24:09.0595 26832 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\windows\system32\drivers\MsRPC.sys
11:24:09.0605 26832 MsRPC - ok
11:24:09.0655 26832 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\windows\system32\DRIVERS\mssmbios.sys
11:24:09.0655 26832 mssmbios - ok
11:24:09.0665 26832 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\windows\system32\drivers\MSTEE.sys
11:24:09.0665 26832 MSTEE - ok
11:24:09.0685 26832 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\windows\system32\drivers\MTConfig.sys
11:24:09.0685 26832 MTConfig - ok
11:24:09.0765 26832 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\windows\system32\Drivers\mup.sys
11:24:09.0775 26832 Mup - ok
11:24:09.0815 26832 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\windows\system32\qagentRT.dll
11:24:09.0845 26832 napagent - ok
11:24:09.0875 26832 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\windows\system32\DRIVERS\nwifi.sys
11:24:09.0885 26832 NativeWifiP - ok
11:24:09.0945 26832 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\windows\system32\drivers\ndis.sys
11:24:09.0965 26832 NDIS - ok
11:24:10.0015 26832 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\windows\system32\DRIVERS\ndiscap.sys
11:24:10.0015 26832 NdisCap - ok
11:24:10.0055 26832 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\windows\system32\DRIVERS\ndistapi.sys
11:24:10.0055 26832 NdisTapi - ok
11:24:10.0065 26832 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\windows\system32\DRIVERS\ndisuio.sys
11:24:10.0075 26832 Ndisuio - ok
11:24:10.0095 26832 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\windows\system32\DRIVERS\ndiswan.sys
11:24:10.0105 26832 NdisWan - ok
11:24:10.0145 26832 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\windows\system32\drivers\NDProxy.sys
11:24:10.0145 26832 NDProxy - ok
11:24:10.0175 26832 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\windows\system32\DRIVERS\netbios.sys
11:24:10.0175 26832 NetBIOS - ok
11:24:10.0235 26832 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\windows\system32\DRIVERS\netbt.sys
11:24:10.0245 26832 NetBT - ok
11:24:10.0265 26832 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\windows\system32\lsass.exe
11:24:10.0275 26832 Netlogon - ok
11:24:10.0315 26832 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\windows\System32\netman.dll
11:24:10.0335 26832 Netman - ok
11:24:10.0355 26832 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\windows\System32\netprofm.dll
11:24:10.0375 26832 netprofm - ok
11:24:10.0405 26832 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
11:24:10.0415 26832 NetTcpPortSharing - ok
11:24:10.0735 26832 [ 9FD1BE1881446D954FF77244AE58FBCB ] NETwNs64 C:\windows\system32\DRIVERS\NETwNs64.sys
11:24:10.0945 26832 NETwNs64 - ok
11:24:11.0005 26832 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\windows\system32\drivers\nfrd960.sys
11:24:11.0005 26832 nfrd960 - ok
11:24:11.0115 26832 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\windows\System32\nlasvc.dll
11:24:11.0125 26832 NlaSvc - ok
11:24:11.0265 26832 [ 5839A8027D6D324A7CD494051A96628C ] NOBU C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
11:24:11.0305 26832 NOBU - ok
11:24:11.0335 26832 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\windows\system32\drivers\Npfs.sys
11:24:11.0335 26832 Npfs - ok
11:24:11.0385 26832 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\windows\system32\nsisvc.dll
11:24:11.0395 26832 nsi - ok
11:24:11.0425 26832 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\windows\system32\drivers\nsiproxy.sys
11:24:11.0425 26832 nsiproxy - ok
11:24:11.0555 26832 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\windows\system32\drivers\Ntfs.sys
11:24:11.0605 26832 Ntfs - ok
11:24:11.0635 26832 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\windows\system32\drivers\Null.sys
11:24:11.0635 26832 Null - ok
11:24:12.0005 26832 [ 70E89A21827B2669AF906B703C7C48B5 ] nvlddmkm C:\windows\system32\DRIVERS\nvlddmkm.sys
11:24:12.0405 26832 nvlddmkm - ok
11:24:12.0435 26832 [ 4B9C0C2BF78289513101EB0D44834701 ] nvpciflt C:\windows\system32\DRIVERS\nvpciflt.sys
11:24:12.0435 26832 nvpciflt - ok
11:24:12.0495 26832 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\windows\system32\drivers\nvraid.sys
11:24:12.0495 26832 nvraid - ok
11:24:12.0535 26832 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\windows\system32\drivers\nvstor.sys
11:24:12.0535 26832 nvstor - ok
11:24:12.0595 26832 [ E04FCE1D149CF05C3449E3171F9C3E41 ] NVSvc C:\windows\system32\nvvsvc.exe
11:24:12.0625 26832 NVSvc - ok
11:24:12.0705 26832 [ D96DDEA6C699A99832E0186057801971 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
11:24:12.0735 26832 nvUpdatusService - ok
11:24:12.0765 26832 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\windows\system32\drivers\nv_agp.sys
11:24:12.0765 26832 nv_agp - ok
11:24:12.0785 26832 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\windows\system32\drivers\ohci1394.sys
11:24:12.0785 26832 ohci1394 - ok
11:24:12.0815 26832 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
11:24:12.0825 26832 ose - ok
11:24:13.0065 26832 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
11:24:13.0225 26832 osppsvc - ok
11:24:13.0265 26832 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\windows\system32\pnrpsvc.dll
11:24:13.0285 26832 p2pimsvc - ok
11:24:13.0325 26832 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\windows\system32\p2psvc.dll
11:24:13.0335 26832 p2psvc - ok
11:24:13.0425 26832 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\windows\system32\drivers\parport.sys
11:24:13.0435 26832 Parport - ok
11:24:13.0465 26832 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\windows\system32\drivers\partmgr.sys
11:24:13.0465 26832 partmgr - ok
11:24:13.0485 26832 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\windows\System32\pcasvc.dll
11:24:13.0505 26832 PcaSvc - ok
11:24:13.0565 26832 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\windows\system32\drivers\pci.sys
11:24:13.0575 26832 pci - ok
11:24:13.0615 26832 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\windows\system32\drivers\pciide.sys
11:24:13.0625 26832 pciide - ok
11:24:13.0635 26832 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\windows\system32\drivers\pcmcia.sys
11:24:13.0645 26832 pcmcia - ok
11:24:13.0675 26832 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\windows\system32\drivers\pcw.sys
11:24:13.0675 26832 pcw - ok
11:24:13.0715 26832 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\windows\system32\drivers\peauth.sys
11:24:13.0735 26832 PEAUTH - ok
11:24:13.0865 26832 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\windows\SysWow64\perfhost.exe
11:24:13.0865 26832 PerfHost - ok
11:24:13.0965 26832 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\windows\system32\pla.dll
11:24:13.0995 26832 pla - ok
11:24:14.0055 26832 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\windows\system32\umpnpmgr.dll
11:24:14.0065 26832 PlugPlay - ok
11:24:14.0135 26832 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\windows\system32\pnrpauto.dll
11:24:14.0155 26832 PNRPAutoReg - ok
11:24:14.0195 26832 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\windows\system32\pnrpsvc.dll
11:24:14.0205 26832 PNRPsvc - ok
11:24:14.0285 26832 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\windows\System32\ipsecsvc.dll
11:24:14.0315 26832 PolicyAgent - ok
11:24:14.0365 26832 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\windows\system32\umpo.dll
11:24:14.0385 26832 Power - ok
11:24:14.0435 26832 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\windows\system32\DRIVERS\raspptp.sys
11:24:14.0445 26832 PptpMiniport - ok
11:24:14.0515 26832 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\windows\system32\drivers\processr.sys
11:24:14.0525 26832 Processor - ok
11:24:14.0585 26832 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\windows\system32\profsvc.dll
11:24:14.0595 26832 ProfSvc - ok
11:24:14.0615 26832 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\windows\system32\lsass.exe
11:24:14.0615 26832 ProtectedStorage - ok
11:24:14.0655 26832 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\windows\system32\DRIVERS\pacer.sys
11:24:14.0665 26832 Psched - ok
11:24:14.0715 26832 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\windows\system32\drivers\ql2300.sys
11:24:14.0735 26832 ql2300 - ok
11:24:14.0745 26832 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\windows\system32\drivers\ql40xx.sys
11:24:14.0755 26832 ql40xx - ok
11:24:14.0785 26832 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\windows\system32\qwave.dll
11:24:14.0795 26832 QWAVE - ok
11:24:14.0825 26832 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\windows\system32\drivers\qwavedrv.sys
11:24:14.0825 26832 QWAVEdrv - ok
11:24:14.0855 26832 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\windows\system32\DRIVERS\rasacd.sys
11:24:14.0855 26832 RasAcd - ok
11:24:14.0905 26832 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\windows\system32\DRIVERS\AgileVpn.sys
11:24:14.0905 26832 RasAgileVpn - ok
11:24:14.0945 26832 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\windows\System32\rasauto.dll
11:24:14.0945 26832 RasAuto - ok
11:24:15.0025 26832 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\windows\system32\DRIVERS\rasl2tp.sys
11:24:15.0035 26832 Rasl2tp - ok
11:24:15.0075 26832 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\windows\System32\rasmans.dll
11:24:15.0095 26832 RasMan - ok
11:24:15.0115 26832 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\windows\system32\DRIVERS\raspppoe.sys
11:24:15.0125 26832 RasPppoe - ok
11:24:15.0155 26832 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\windows\system32\DRIVERS\rassstp.sys
11:24:15.0155 26832 RasSstp - ok
11:24:15.0175 26832 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\windows\system32\DRIVERS\rdbss.sys
11:24:15.0185 26832 rdbss - ok
11:24:15.0205 26832 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\windows\system32\drivers\rdpbus.sys
11:24:15.0205 26832 rdpbus - ok
11:24:15.0285 26832 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\windows\system32\DRIVERS\RDPCDD.sys
11:24:15.0285 26832 RDPCDD - ok
11:24:15.0325 26832 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\windows\system32\drivers\rdpencdd.sys
11:24:15.0325 26832 RDPENCDD - ok
11:24:15.0345 26832 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\windows\system32\drivers\rdprefmp.sys
11:24:15.0345 26832 RDPREFMP - ok
11:24:15.0385 26832 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\windows\system32\drivers\RDPWD.sys
11:24:15.0395 26832 RDPWD - ok
11:24:15.0425 26832 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\windows\system32\drivers\rdyboost.sys
11:24:15.0435 26832 rdyboost - ok
11:24:15.0475 26832 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\windows\System32\mprdim.dll
11:24:15.0485 26832 RemoteAccess - ok
11:24:15.0565 26832 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\windows\system32\regsvc.dll
11:24:15.0575 26832 RemoteRegistry - ok
11:24:15.0615 26832 [ 3DD798846E2C28102B922C56E71B7932 ] RFCOMM C:\windows\system32\DRIVERS\rfcomm.sys
11:24:15.0625 26832 RFCOMM - ok
11:24:15.0765 26832 [ F12A68ED55053940CADD59CA5E3468DD ] RichVideo C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
11:24:15.0775 26832 RichVideo - ok
11:24:15.0835 26832 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\windows\System32\RpcEpMap.dll
11:24:15.0845 26832 RpcEptMapper - ok
11:24:15.0875 26832 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\windows\system32\locator.exe
11:24:15.0875 26832 RpcLocator - ok
11:24:15.0925 26832 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\windows\system32\rpcss.dll
11:24:15.0945 26832 RpcSs - ok
11:24:16.0055 26832 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\windows\system32\DRIVERS\rspndr.sys
11:24:16.0065 26832 rspndr - ok
11:24:16.0135 26832 [ F4C374B1C46DE294B573BB43723AC3F6 ] RTL8167 C:\windows\system32\DRIVERS\Rt64win7.sys
11:24:16.0145 26832 RTL8167 - ok
11:24:16.0285 26832 [ 4CA0DBA9E224473D664C25E411F5A3BD ] rtport C:\windows\SysWOW64\drivers\rtport.sys
11:24:16.0295 26832 rtport - ok
11:24:16.0315 26832 [ 62DB6CC4B0818F1B5F3441241B098F12 ] SABI C:\windows\system32\Drivers\SABI.sys
11:24:16.0315 26832 SABI - ok
11:24:16.0345 26832 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\windows\system32\lsass.exe
11:24:16.0355 26832 SamSs - ok
11:24:16.0375 26832 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\windows\system32\drivers\sbp2port.sys
11:24:16.0375 26832 sbp2port - ok
11:24:16.0465 26832 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\windows\System32\SCardSvr.dll
11:24:16.0475 26832 SCardSvr - ok
11:24:16.0495 26832 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\windows\system32\DRIVERS\scfilter.sys
11:24:16.0495 26832 scfilter - ok
11:24:16.0535 26832 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\windows\system32\schedsvc.dll
11:24:16.0565 26832 Schedule - ok
11:24:16.0595 26832 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\windows\System32\certprop.dll
11:24:16.0595 26832 SCPolicySvc - ok
11:24:16.0625 26832 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\windows\System32\SDRSVC.dll
11:24:16.0635 26832 SDRSVC - ok
11:24:16.0675 26832 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\windows\system32\drivers\secdrv.sys
11:24:16.0685 26832 secdrv - ok
11:24:16.0705 26832 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\windows\system32\seclogon.dll
11:24:16.0725 26832 seclogon - ok
11:24:16.0805 26832 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\windows\System32\sens.dll
11:24:16.0815 26832 SENS - ok
11:24:16.0835 26832 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\windows\system32\sensrsvc.dll
11:24:16.0845 26832 SensrSvc - ok
11:24:16.0855 26832 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\windows\system32\drivers\serenum.sys
11:24:16.0855 26832 Serenum - ok
11:24:16.0895 26832 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\windows\system32\drivers\serial.sys
11:24:16.0905 26832 Serial - ok
11:24:16.0925 26832 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\windows\system32\drivers\sermouse.sys
11:24:16.0935 26832 sermouse - ok
11:24:17.0005 26832 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\windows\system32\sessenv.dll
11:24:17.0015 26832 SessionEnv - ok
11:24:17.0035 26832 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\windows\system32\drivers\sffdisk.sys
11:24:17.0045 26832 sffdisk - ok
11:24:17.0065 26832 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\windows\system32\drivers\sffp_mmc.sys
11:24:17.0065 26832 sffp_mmc - ok
11:24:17.0085 26832 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\windows\system32\drivers\sffp_sd.sys
11:24:17.0085 26832 sffp_sd - ok
11:24:17.0105 26832 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\windows\system32\drivers\sfloppy.sys
11:24:17.0105 26832 sfloppy - ok
11:24:17.0195 26832 [ 0E30752CC6F579FF7C09437D375ACDA3 ] SFR.DashBoard.Service C:\Program Files (x86)\SFR\Gestionnaire de Connexion\SFR.DashBoard.Service.exe
11:24:17.0195 26832 SFR.DashBoard.Service - ok
11:24:17.0325 26832 [ C6CC9297BD53E5229653303E556AA539 ] Sftfs C:\windows\system32\DRIVERS\Sftfslh.sys
11:24:17.0345 26832 Sftfs - ok
11:24:17.0405 26832 [ 13693B6354DD6E72DC5131DA7D764B90 ] sftlist C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
11:24:17.0415 26832 sftlist - ok
11:24:17.0495 26832 [ 390AA7BC52CEE43F6790CDEA1E776703 ] Sftplay C:\windows\system32\DRIVERS\Sftplaylh.sys
11:24:17.0505 26832 Sftplay - ok
11:24:17.0525 26832 [ 617E29A0B0A2807466560D4C4E338D3E ] Sftredir C:\windows\system32\DRIVERS\Sftredirlh.sys
11:24:17.0535 26832 Sftredir - ok
11:24:17.0555 26832 [ 8F571F016FA1976F445147E9E6C8AE9B ] Sftvol C:\windows\system32\DRIVERS\Sftvollh.sys
11:24:17.0555 26832 Sftvol - ok
11:24:17.0665 26832 [ C3CDDD18F43D44AB713CF8C4916F7696 ] sftvsa C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
11:24:17.0675 26832 sftvsa - ok
11:24:17.0725 26832 [ 2FE1CD3AA602414841DB10AD96C95A5E ] SGDrv C:\windows\system32\DRIVERS\SGdrv64.sys
11:24:17.0725 26832 SGDrv - ok
11:24:17.0785 26832 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\windows\System32\ipnathlp.dll
11:24:17.0815 26832 SharedAccess - ok
11:24:17.0895 26832 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\windows\System32\shsvcs.dll
11:24:17.0915 26832 ShellHWDetection - ok
11:24:17.0955 26832 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\windows\system32\drivers\SiSRaid2.sys
11:24:17.0965 26832 SiSRaid2 - ok
11:24:17.0995 26832 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\windows\system32\drivers\sisraid4.sys
11:24:17.0995 26832 SiSRaid4 - ok
11:24:18.0065 26832 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
11:24:18.0065 26832 SkypeUpdate - ok
11:24:18.0165 26832 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\windows\system32\DRIVERS\smb.sys
11:24:18.0165 26832 Smb - ok
11:24:18.0225 26832 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\windows\System32\snmptrap.exe
11:24:18.0225 26832 SNMPTRAP - ok
11:24:18.0295 26832 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\windows\system32\drivers\spldr.sys
11:24:18.0295 26832 spldr - ok
11:24:18.0345 26832 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\windows\System32\spoolsv.exe
11:24:18.0365 26832 Spooler - ok
11:24:18.0455 26832 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\windows\system32\sppsvc.exe
11:24:18.0635 26832 sppsvc - ok
11:24:18.0665 26832 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\windows\system32\sppuinotify.dll
11:24:18.0675 26832 sppuinotify - ok
11:24:18.0725 26832 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\windows\system32\DRIVERS\srv.sys
11:24:18.0735 26832 srv - ok
11:24:18.0765 26832 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\windows\system32\DRIVERS\srv2.sys
11:24:18.0775 26832 srv2 - ok
11:24:18.0795 26832 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\windows\system32\DRIVERS\srvnet.sys
11:24:18.0805 26832 srvnet - ok
11:24:18.0855 26832 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\windows\System32\ssdpsrv.dll
11:24:18.0865 26832 SSDPSRV - ok
11:24:18.0885 26832 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\windows\system32\sstpsvc.dll
11:24:18.0895 26832 SstpSvc - ok
11:24:18.0935 26832 [ EF806D212D34B0E173BAEB3564D53E37 ] ss_bbus C:\windows\system32\DRIVERS\ss_bbus.sys
11:24:18.0935 26832 ss_bbus - ok
11:24:18.0995 26832 [ 08B1B34ABEBEB6AC2DEA06900C56411E ] ss_bmdfl C:\windows\system32\DRIVERS\ss_bmdfl.sys
11:24:18.0995 26832 ss_bmdfl - ok
11:24:19.0025 26832 [ 71A9DA6BEAA4CB54DFB827FB78600A5D ] ss_bmdm C:\windows\system32\DRIVERS\ss_bmdm.sys
11:24:19.0025 26832 ss_bmdm - ok
11:24:19.0055 26832 [ 677CDC98F8363ACCAAE783FDE1599C2A ] ss_bserd C:\windows\system32\DRIVERS\ss_bserd.sys
11:24:19.0065 26832 ss_bserd - ok
11:24:19.0095 26832 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\windows\system32\drivers\stexstor.sys
11:24:19.0095 26832 stexstor - ok
11:24:19.0165 26832 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\windows\System32\wiaservc.dll
11:24:19.0185 26832 stisvc - ok
11:24:19.0215 26832 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\windows\system32\DRIVERS\swenum.sys
11:24:19.0215 26832 swenum - ok
11:24:19.0255 26832 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\windows\System32\swprv.dll
11:24:19.0275 26832 swprv - ok
11:24:19.0365 26832 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\windows\system32\sysmain.dll
11:24:19.0415 26832 SysMain - ok
11:24:19.0435 26832 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\windows\System32\TabSvc.dll
11:24:19.0445 26832 TabletInputService - ok
11:24:19.0485 26832 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\windows\System32\tapisrv.dll
11:24:19.0495 26832 TapiSrv - ok
11:24:19.0515 26832 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\windows\System32\tbssvc.dll
11:24:19.0535 26832 TBS - ok
11:24:19.0735 26832 [ 9849EA3843A2ADBDD1497E97A85D8CAE ] Tcpip C:\windows\system32\drivers\tcpip.sys
11:24:19.0785 26832 Tcpip - ok
11:24:19.0845 26832 [ 9849EA3843A2ADBDD1497E97A85D8CAE ] TCPIP6 C:\windows\system32\DRIVERS\tcpip.sys
11:24:19.0865 26832 TCPIP6 - ok
11:24:19.0915 26832 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\windows\system32\drivers\tcpipreg.sys
11:24:19.0915 26832 tcpipreg - ok
11:24:19.0955 26832 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\windows\system32\drivers\tdpipe.sys
11:24:19.0955 26832 TDPIPE - ok
11:24:19.0985 26832 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\windows\system32\drivers\tdtcp.sys
11:24:19.0995 26832 TDTCP - ok
11:24:20.0085 26832 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\windows\system32\DRIVERS\tdx.sys
11:24:20.0095 26832 tdx - ok
11:24:20.0115 26832 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\windows\system32\DRIVERS\termdd.sys
11:24:20.0115 26832 TermDD - ok
11:24:20.0165 26832 [ 2E648163254233755035B46DD7B89123 ] TermService C:\windows\System32\termsrv.dll
11:24:20.0185 26832 TermService - ok
11:24:20.0195 26832 [ F0344071948D1A1FA732231785A0664C ] Themes C:\windows\system32\themeservice.dll
11:24:20.0205 26832 Themes - ok
11:24:20.0225 26832 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\windows\system32\mmcss.dll
11:24:20.0225 26832 THREADORDER - ok
11:24:20.0255 26832 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\windows\System32\trkwks.dll
11:24:20.0265 26832 TrkWks - ok
11:24:20.0375 26832 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\windows\servicing\TrustedInstaller.exe
11:24:20.0385 26832 TrustedInstaller - ok
11:24:20.0415 26832 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\windows\system32\DRIVERS\tssecsrv.sys
11:24:20.0415 26832 tssecsrv - ok
11:24:20.0435 26832 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\windows\system32\drivers\tsusbflt.sys
11:24:20.0435 26832 TsUsbFlt - ok
11:24:20.0475 26832 [ 9CC2CCAE8A84820EAECB886D477CBCB8 ] TsUsbGD C:\windows\system32\drivers\TsUsbGD.sys
11:24:20.0475 26832 TsUsbGD - ok
11:24:20.0555 26832 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\windows\system32\DRIVERS\tunnel.sys
11:24:20.0555 26832 tunnel - ok
11:24:20.0585 26832 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\windows\system32\drivers\uagp35.sys
11:24:20.0595 26832 uagp35 - ok
11:24:20.0625 26832 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\windows\system32\DRIVERS\udfs.sys
11:24:20.0645 26832 udfs - ok
11:24:20.0685 26832 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\windows\system32\UI0Detect.exe
11:24:20.0705 26832 UI0Detect - ok
11:24:20.0725 26832 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\windows\system32\drivers\uliagpkx.sys
11:24:20.0735 26832 uliagpkx - ok
11:24:20.0765 26832 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\windows\system32\DRIVERS\umbus.sys
11:24:20.0775 26832 umbus - ok
11:24:20.0805 26832 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\windows\system32\drivers\umpass.sys
11:24:20.0805 26832 UmPass - ok
11:24:21.0025 26832 [ DB641944F7E4B14C13C3FEFC89843F69 ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
11:24:21.0075 26832 UNS - ok
11:24:21.0125 26832 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\windows\System32\upnphost.dll
11:24:21.0145 26832 upnphost - ok
11:24:21.0195 26832 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\windows\system32\DRIVERS\usbccgp.sys
11:24:21.0195 26832 usbccgp - ok
11:24:21.0235 26832 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\windows\system32\drivers\usbcir.sys
11:24:21.0245 26832 usbcir - ok
11:24:21.0305 26832 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\windows\system32\drivers\usbehci.sys
11:24:21.0305 26832 usbehci - ok
11:24:21.0335 26832 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\windows\system32\DRIVERS\usbhub.sys
11:24:21.0345 26832 usbhub - ok
11:24:21.0365 26832 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci
Télécharge et enregistre Malwarebytes Anti Rootkit en cliquant sur ce lien sur ton Bureau :
https://data-cdn.mbamupdates.com/web/mbar-1.10.3.1001.exe
* Décompresse le fichier mbar xxxxx.zip sur ton bureau (clic droit sur mbarxxx.zip et choisir decompresser ici)
*Lance le en double-cliquant sur le fichier mbar.exe. (dans le repertoire mbar)
/!\ Important: Sous Vista et Windows 7, il faut lancer le fichier par clic-droit -> Exécuter en tant qu'administrateur
* Dans la fêntre suivante, clique sur "Next"
* Clique sur l'option de mise à jour "Update"
* Patientez pendant la mise à jour, puis cliquez sur "Next"
* Si cela n'est pas déjà fait, sélectionne "[bles 3 cases (drivers, Sectors, System)".
* Patienter
* Une fois le scan terminé, une fenêtre s'ouvre, clic sur OK. Deux possibilités s'offrent à toi :
==> Si le programme n'a rien trouvé, clique sur Exit.
==> Si des infections sont présentes ton PC redemarrera plusieurs fois
2 Rapports sont générés et sont enregistrés dans le repertoire d'ou tu as lancé Mbar.exe en général le Bureau.
==> system-log.txt
==> mbar-log-la date-(*****).txt
* poste les 2 rapports dans ta prochaine réponse en fichiers joints.
https://data-cdn.mbamupdates.com/web/mbar-1.10.3.1001.exe
* Décompresse le fichier mbar xxxxx.zip sur ton bureau (clic droit sur mbarxxx.zip et choisir decompresser ici)
*Lance le en double-cliquant sur le fichier mbar.exe. (dans le repertoire mbar)
/!\ Important: Sous Vista et Windows 7, il faut lancer le fichier par clic-droit -> Exécuter en tant qu'administrateur
* Dans la fêntre suivante, clique sur "Next"
* Clique sur l'option de mise à jour "Update"
* Patientez pendant la mise à jour, puis cliquez sur "Next"
* Si cela n'est pas déjà fait, sélectionne "[bles 3 cases (drivers, Sectors, System)".
* Patienter
* Une fois le scan terminé, une fenêtre s'ouvre, clic sur OK. Deux possibilités s'offrent à toi :
==> Si le programme n'a rien trouvé, clique sur Exit.
==> Si des infections sont présentes ton PC redemarrera plusieurs fois
2 Rapports sont générés et sont enregistrés dans le repertoire d'ou tu as lancé Mbar.exe en général le Bureau.
==> system-log.txt
==> mbar-log-la date-(*****).txt
* poste les 2 rapports dans ta prochaine réponse en fichiers joints.
Télécharge ici :OTL
▶ enregistre le sur ton Bureau.
si tu as XP => double clique
si tu as Vista ou windows 7 / 8 => clic droit "executer en tant que...."
sur OTL.exe pour le lancer.
▶ => Clique ici pour voir la Configuration
▶ Copie et colle le contenu de ce qui suit en gras dans la partie inférieure d'OTL "Personnalisation"
HKCU\Software
HKLM\Software
HKCU\Software\Microsoft\Command Processor /s
HKLM\Software\Microsoft\Command Processor /s
%Homedrive%\*
%Homedrive%\*.
%Userprofile%\*
%Userprofile%\*.
%Allusersprofile%\*
%Allusersprofile%\*.
%LocalAppData%\*
%LocalAppData%\*.
%Userprofile%\Local Settings\Application Data\*
%Userprofile%\Local Settings\Application Data\*.
%programFiles%\*
%programFiles%\*.
%Systemroot%\Installer\*.
%Systemroot%\Temp\*.exe /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\*.exe /lockedfiles
%systemroot%\system32\*.in*
%systemroot%\Tasks\*
%systemroot%\Tasks\*.
%systemroot%\system32\Tasks\*
%systemroot%\system32\Tasks\*.
%systemroot%\system32\drivers\*.sy* /lockedfiles
%systemroot%\system32\config\*.exe /s
%Systemroot%\ServiceProfiles\*.exe /s
%systemroot%\system32\*.sys
dir C:\ /S /A:L /C
msconfig
activex
/md5start
explorer.exe
winlogon.exe
wininit.exe
volsnap.sys
atapi.sys
ndis.sys
cdrom.sys
i8042prt.sys
iastor.sys
tdx.sys
netbt.sys
afd.sys
/md5stop
netsvcs
safebootminimal
safebootnetwork
CREATERESTOREPOINT
▶ Clic sur Analyse.
A la fin du scan, le Bloc-Notes va s'ouvrir avec le rapport (OTL.txt).
Ce fichier est sur ton Bureau (en général C:\Documents and settings\le_nom_de_ta_session\<Bureau ou Desktop>\OTL.txt)
▶▶▶ NE LE POSTE PAS SUR LE FORUM (il est trop long)
heberge OTL.txt et extra.txt sur https://www.cjoint.com/ et donne les liens
▶ enregistre le sur ton Bureau.
si tu as XP => double clique
si tu as Vista ou windows 7 / 8 => clic droit "executer en tant que...."
sur OTL.exe pour le lancer.
▶ => Clique ici pour voir la Configuration
▶ Copie et colle le contenu de ce qui suit en gras dans la partie inférieure d'OTL "Personnalisation"
HKCU\Software
HKLM\Software
HKCU\Software\Microsoft\Command Processor /s
HKLM\Software\Microsoft\Command Processor /s
%Homedrive%\*
%Homedrive%\*.
%Userprofile%\*
%Userprofile%\*.
%Allusersprofile%\*
%Allusersprofile%\*.
%LocalAppData%\*
%LocalAppData%\*.
%Userprofile%\Local Settings\Application Data\*
%Userprofile%\Local Settings\Application Data\*.
%programFiles%\*
%programFiles%\*.
%Systemroot%\Installer\*.
%Systemroot%\Temp\*.exe /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\*.exe /lockedfiles
%systemroot%\system32\*.in*
%systemroot%\Tasks\*
%systemroot%\Tasks\*.
%systemroot%\system32\Tasks\*
%systemroot%\system32\Tasks\*.
%systemroot%\system32\drivers\*.sy* /lockedfiles
%systemroot%\system32\config\*.exe /s
%Systemroot%\ServiceProfiles\*.exe /s
%systemroot%\system32\*.sys
dir C:\ /S /A:L /C
msconfig
activex
/md5start
explorer.exe
winlogon.exe
wininit.exe
volsnap.sys
atapi.sys
ndis.sys
cdrom.sys
i8042prt.sys
iastor.sys
tdx.sys
netbt.sys
afd.sys
/md5stop
netsvcs
safebootminimal
safebootnetwork
CREATERESTOREPOINT
▶ Clic sur Analyse.
A la fin du scan, le Bloc-Notes va s'ouvrir avec le rapport (OTL.txt).
Ce fichier est sur ton Bureau (en général C:\Documents and settings\le_nom_de_ta_session\<Bureau ou Desktop>\OTL.txt)
▶▶▶ NE LE POSTE PAS SUR LE FORUM (il est trop long)
heberge OTL.txt et extra.txt sur https://www.cjoint.com/ et donne les liens
Je le relance en mode sans echec ou pas la peine
http://cjoint.com/?3GFnlNhIx73