Hi Maxi,
I forgot to disable Avast but TDSS appeared to complete okay anyways.
Re Computer operation: I still can't launch autocadlt. I would like to run chkdsk but I will wait until your next post.
Otherwise it appears to run okay. I haven't seen any slowdowns or lockups. But I haven't been using it that much.
T06:41:26.0578 2168 TDSS rootkit removing tool 2.7.33.0 Apr 24 2012 18:43:43
06:41:27.0203 2168 ============================================================
06:41:27.0203 2168 Current date / time: 2012/05/01 06:41:27.0203
06:41:27.0203 2168 SystemInfo:
06:41:27.0203 2168
06:41:27.0203 2168 OS Version: 5.1.2600 ServicePack: 3.0
06:41:27.0203 2168 Product type: Workstation
06:41:27.0203 2168 ComputerName: DELL
06:41:27.0203 2168 UserName: FAR
06:41:27.0203 2168 Windows directory: C:\WINDOWS
06:41:27.0203 2168 System windows directory: C:\WINDOWS
06:41:27.0203 2168 Processor architecture: Intel x86
06:41:27.0203 2168 Number of processors: 2
06:41:27.0203 2168 Page size: 0x1000
06:41:27.0203 2168 Boot type: Normal boot
06:41:27.0203 2168 ============================================================
06:41:36.0234 2168 Drive \Device\Harddisk0\DR0 - Size: 0x1248119400 (73.13 Gb), SectorSize: 0x200, Cylinders: 0x254A, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
06:41:36.0250 2168 ============================================================
06:41:36.0250 2168 \Device\Harddisk0\DR0:
06:41:36.0250 2168 MBR partitions:
06:41:36.0250 2168 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x17886, BlocksNum 0x8C239FB
06:41:36.0250 2168 ============================================================
06:41:36.0328 2168 C: <-> \Device\Harddisk0\DR0\Partition0
06:41:36.0359 2168 ============================================================
06:41:36.0359 2168 Initialize success
06:41:36.0359 2168 ============================================================
06:42:08.0015 2756 ============================================================
06:42:08.0015 2756 Scan started
06:42:08.0015 2756 Mode: Manual;
06:42:08.0015 2756 ============================================================
06:42:08.0640 2756 Aavmker4 (473f97edc5a5312f3665ab2921196c0c) C:\WINDOWS\system32\drivers\Aavmker4.sys
06:42:08.0640 2756 Aavmker4 - ok
06:42:08.0640 2756 Abiosdsk - ok
06:42:08.0687 2756 abp480n5 (6abb91494fe6c59089b9336452ab2ea3) C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS
06:42:08.0687 2756 abp480n5 - ok
06:42:08.0734 2756 ACPI (8fd99680a539792a30e97944fdaecf17) C:\WINDOWS\system32\DRIVERS\ACPI.sys
06:42:08.0750 2756 ACPI - ok
06:42:08.0781 2756 ACPIEC (9859c0f6936e723e4892d7141b1327d5) C:\WINDOWS\system32\drivers\ACPIEC.sys
06:42:08.0781 2756 ACPIEC - ok
06:42:08.0859 2756 Adobe LM Service (6d182c31acf16213407f2768f1107fe3) C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
06:42:08.0859 2756 Adobe LM Service - ok
06:42:08.0968 2756 AdobeFlashPlayerUpdateSvc (0d4c486a24a711a45fd83acdf4d18506) C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
06:42:08.0968 2756 AdobeFlashPlayerUpdateSvc - ok
06:42:09.0015 2756 adpu160m (9a11864873da202c996558b2106b0bbc) C:\WINDOWS\system32\DRIVERS\adpu160m.sys
06:42:09.0015 2756 adpu160m - ok
06:42:09.0046 2756 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
06:42:09.0062 2756 aec - ok
06:42:09.0109 2756 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
06:42:09.0125 2756 AFD - ok
06:42:09.0171 2756 agp440 (08fd04aa961bdc77fb983f328334e3d7) C:\WINDOWS\system32\DRIVERS\agp440.sys
06:42:09.0171 2756 agp440 - ok
06:42:09.0203 2756 agpCPQ (03a7e0922acfe1b07d5db2eeb0773063) C:\WINDOWS\system32\DRIVERS\agpCPQ.sys
06:42:09.0203 2756 agpCPQ - ok
06:42:09.0218 2756 Aha154x (c23ea9b5f46c7f7910db3eab648ff013) C:\WINDOWS\system32\DRIVERS\aha154x.sys
06:42:09.0218 2756 Aha154x - ok
06:42:09.0218 2756 aic78u2 (19dd0fb48b0c18892f70e2e7d61a1529) C:\WINDOWS\system32\DRIVERS\aic78u2.sys
06:42:09.0234 2756 aic78u2 - ok
06:42:09.0234 2756 aic78xx (b7fe594a7468aa0132deb03fb8e34326) C:\WINDOWS\system32\DRIVERS\aic78xx.sys
06:42:09.0234 2756 aic78xx - ok
06:42:09.0281 2756 Alerter (a9a3daa780ca6c9671a19d52456705b4) C:\WINDOWS\system32\alrsvc.dll
06:42:09.0281 2756 Alerter - ok
06:42:09.0312 2756 ALG (8c515081584a38aa007909cd02020b3d) C:\WINDOWS\System32\alg.exe
06:42:09.0312 2756 ALG - ok
06:42:09.0328 2756 AliIde (1140ab9938809700b46bb88e46d72a96) C:\WINDOWS\system32\DRIVERS\aliide.sys
06:42:09.0328 2756 AliIde - ok
06:42:09.0328 2756 alim1541 (cb08aed0de2dd889a8a820cd8082d83c) C:\WINDOWS\system32\DRIVERS\alim1541.sys
06:42:09.0343 2756 alim1541 - ok
06:42:09.0343 2756 amdagp (95b4fb835e28aa1336ceeb07fd5b9398) C:\WINDOWS\system32\DRIVERS\amdagp.sys
06:42:09.0343 2756 amdagp - ok
06:42:09.0359 2756 amsint (79f5add8d24bd6893f2903a3e2f3fad6) C:\WINDOWS\system32\DRIVERS\amsint.sys
06:42:09.0359 2756 amsint - ok
06:42:09.0406 2756 APPDRV - ok
06:42:09.0453 2756 AppMgmt (d8849f77c0b66226335a59d26cb4edc6) C:\WINDOWS\System32\appmgmts.dll
06:42:09.0453 2756 AppMgmt - ok
06:42:09.0500 2756 Arp1394 (b5b8a80875c1dededa8b02765642c32f) C:\WINDOWS\system32\DRIVERS\arp1394.sys
06:42:09.0500 2756 Arp1394 - ok
06:42:09.0500 2756 asc (62d318e9a0c8fc9b780008e724283707) C:\WINDOWS\system32\DRIVERS\asc.sys
06:42:09.0500 2756 asc - ok
06:42:09.0515 2756 asc3350p (69eb0cc7714b32896ccbfd5edcbea447) C:\WINDOWS\system32\DRIVERS\asc3350p.sys
06:42:09.0515 2756 asc3350p - ok
06:42:09.0515 2756 asc3550 (5d8de112aa0254b907861e9e9c31d597) C:\WINDOWS\system32\DRIVERS\asc3550.sys
06:42:09.0515 2756 asc3550 - ok
06:42:09.0640 2756 aspnet_state (0e5e4957549056e2bf2c49f4f6b601ad) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
06:42:09.0656 2756 aspnet_state - ok
06:42:09.0703 2756 aswFsBlk (0ae43c6c411254049279c2ee55630f95) C:\WINDOWS\system32\drivers\aswFsBlk.sys
06:42:09.0703 2756 aswFsBlk - ok
06:42:09.0750 2756 aswMon2 (8c30b7ddd2f1d8d138ebe40345af2b11) C:\WINDOWS\system32\drivers\aswMon2.sys
06:42:09.0750 2756 aswMon2 - ok
06:42:09.0765 2756 aswRdr (da12626fd9a67f4e917e2f2fbe1e1764) C:\WINDOWS\system32\drivers\aswRdr.sys
06:42:09.0765 2756 aswRdr - ok
06:42:09.0843 2756 aswSnx (dcb199b967375753b5019ec15f008f53) C:\WINDOWS\system32\drivers\aswSnx.sys
06:42:09.0875 2756 aswSnx - ok
06:42:09.0906 2756 aswSP (b32873e5a1443c0a1e322266e203bf10) C:\WINDOWS\system32\drivers\aswSP.sys
06:42:09.0921 2756 aswSP - ok
06:42:09.0953 2756 aswTdi (6ff544175a9180c5d88534d3d9c9a9f7) C:\WINDOWS\system32\drivers\aswTdi.sys
06:42:09.0953 2756 aswTdi - ok
06:42:10.0015 2756 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
06:42:10.0015 2756 AsyncMac - ok
06:42:10.0031 2756 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
06:42:10.0031 2756 atapi - ok
06:42:10.0031 2756 Atdisk - ok
06:42:10.0125 2756 Ati HotKey Poller (954c1d5b84d1cf925999a4c27e2ab34d) C:\WINDOWS\system32\Ati2evxx.exe
06:42:10.0125 2756 Ati HotKey Poller - ok
06:42:10.0250 2756 ati2mtag (bebeb471617782d138b6f92e7c3fab1c) C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
06:42:10.0328 2756 ati2mtag - ok
06:42:10.0468 2756 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
06:42:10.0468 2756 Atmarpc - ok
06:42:10.0500 2756 AudioSrv (def7a7882bec100fe0b2ce2549188f9d) C:\WINDOWS\System32\audiosrv.dll
06:42:10.0500 2756 AudioSrv - ok
06:42:10.0562 2756 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
06:42:10.0562 2756 audstub - ok
06:42:10.0671 2756 Autodesk Licensing Service (32a5defddc3562bf89d73586f5915b34) C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
06:42:10.0687 2756 Autodesk Licensing Service - ok
06:42:10.0765 2756 avast! Antivirus (4041d31508a2a084dfb42c595854090f) C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
06:42:10.0781 2756 avast! Antivirus - ok
06:42:10.0812 2756 bcm4sbxp (cd4646067cc7dcba1907fa0acf7e3966) C:\WINDOWS\system32\DRIVERS\bcm4sbxp.sys
06:42:10.0812 2756 bcm4sbxp - ok
06:42:10.0828 2756 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
06:42:10.0843 2756 Beep - ok
06:42:10.0890 2756 BITS (574738f61fca2935f5265dc4e5691314) C:\WINDOWS\system32\qmgr.dll
06:42:10.0953 2756 BITS - ok
06:42:11.0015 2756 Browser (a06ce3399d16db864f55faeb1f1927a9) C:\WINDOWS\System32\browser.dll
06:42:11.0015 2756 Browser - ok
06:42:11.0046 2756 cbidf (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\DRIVERS\cbidf2k.sys
06:42:11.0046 2756 cbidf - ok
06:42:11.0046 2756 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
06:42:11.0046 2756 cbidf2k - ok
06:42:11.0062 2756 cd20xrnt (f3ec03299634490e97bbce94cd2954c7) C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys
06:42:11.0062 2756 cd20xrnt - ok
06:42:11.0062 2756 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
06:42:11.0078 2756 Cdaudio - ok
06:42:11.0109 2756 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
06:42:11.0125 2756 Cdfs - ok
06:42:11.0140 2756 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
06:42:11.0140 2756 Cdrom - ok
06:42:11.0140 2756 Changer - ok
06:42:11.0187 2756 CiSvc (1cfe720eb8d93a7158a4ebc3ab178bde) C:\WINDOWS\system32\cisvc.exe
06:42:11.0187 2756 CiSvc - ok
06:42:11.0203 2756 ClipSrv (34cbe729f38138217f9c80212a2a0c82) C:\WINDOWS\system32\clipsrv.exe
06:42:11.0203 2756 ClipSrv - ok
06:42:11.0343 2756 clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
06:42:11.0390 2756 clr_optimization_v2.0.50727_32 - ok
06:42:11.0421 2756 CmBatt (0f6c187d38d98f8df904589a5f94d411) C:\WINDOWS\system32\DRIVERS\CmBatt.sys
06:42:11.0437 2756 CmBatt - ok
06:42:11.0468 2756 CmdIde (e5dcb56c533014ecbc556a8357c929d5) C:\WINDOWS\system32\DRIVERS\cmdide.sys
06:42:11.0468 2756 CmdIde - ok
06:42:11.0500 2756 Compbatt (6e4c9f21f0fae8940661144f41b13203) C:\WINDOWS\system32\DRIVERS\compbatt.sys
06:42:11.0500 2756 Compbatt - ok
06:42:11.0515 2756 COMSysApp - ok
06:42:11.0562 2756 Cpqarray (3ee529119eed34cd212a215e8c40d4b6) C:\WINDOWS\system32\DRIVERS\cpqarray.sys
06:42:11.0562 2756 Cpqarray - ok
06:42:11.0609 2756 CryptSvc (3d4e199942e29207970e04315d02ad3b) C:\WINDOWS\System32\cryptsvc.dll
06:42:11.0609 2756 CryptSvc - ok
06:42:11.0625 2756 dac2w2k (e550e7418984b65a78299d248f0a7f36) C:\WINDOWS\system32\DRIVERS\dac2w2k.sys
06:42:11.0640 2756 dac2w2k - ok
06:42:11.0656 2756 dac960nt (683789caa3864eb46125ae86ff677d34) C:\WINDOWS\system32\DRIVERS\dac960nt.sys
06:42:11.0656 2756 dac960nt - ok
06:42:11.0718 2756 DcomLaunch (6b27a5c03dfb94b4245739065431322c) C:\WINDOWS\system32\rpcss.dll
06:42:11.0734 2756 DcomLaunch - ok
06:42:11.0781 2756 Dhcp (5e38d7684a49cacfb752b046357e0589) C:\WINDOWS\System32\dhcpcsvc.dll
06:42:11.0796 2756 Dhcp - ok
06:42:11.0812 2756 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
06:42:11.0812 2756 Disk - ok
06:42:11.0828 2756 dmadmin - ok
06:42:11.0906 2756 dmboot (d992fe1274bde0f84ad826acae022a41) C:\WINDOWS\system32\drivers\dmboot.sys
06:42:11.0968 2756 dmboot - ok
06:42:11.0984 2756 dmio (7c824cf7bbde77d95c08005717a95f6f) C:\WINDOWS\system32\drivers\dmio.sys
06:42:11.0984 2756 dmio - ok
06:42:12.0000 2756 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
06:42:12.0015 2756 dmload - ok
06:42:12.0046 2756 dmserver (57edec2e5f59f0335e92f35184bc8631) C:\WINDOWS\System32\dmserver.dll
06:42:12.0046 2756 dmserver - ok
06:42:12.0078 2756 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
06:42:12.0093 2756 DMusic - ok
06:42:12.0125 2756 Dnscache (5f7e24fa9eab896051ffb87f840730d2) C:\WINDOWS\System32\dnsrslvr.dll
06:42:12.0140 2756 Dnscache - ok
06:42:12.0187 2756 Dot3svc (0f0f6e687e5e15579ef4da8dd6945814) C:\WINDOWS\System32\dot3svc.dll
06:42:12.0203 2756 Dot3svc - ok
06:42:12.0218 2756 dpti2o (40f3b93b4e5b0126f2f5c0a7a5e22660) C:\WINDOWS\system32\DRIVERS\dpti2o.sys
06:42:12.0234 2756 dpti2o - ok
06:42:12.0250 2756 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
06:42:12.0250 2756 drmkaud - ok
06:42:12.0296 2756 drvmcdb (e814854e6b246ccf498874839ab64d77) C:\WINDOWS\system32\drivers\drvmcdb.sys
06:42:12.0296 2756 drvmcdb - ok
06:42:12.0312 2756 drvnddm (ee83a4ebae70bc93cf14879d062f548b) C:\WINDOWS\system32\drivers\drvnddm.sys
06:42:12.0312 2756 drvnddm - ok
06:42:12.0453 2756 DSBrokerService (fe80901578e7e3da70299a5aeb2b7fbd) C:\Program Files\DellSupport\brkrsvc.exe
06:42:12.0453 2756 DSBrokerService - ok
06:42:12.0484 2756 DSproct (413f2d5f9d802688242c23b38f767ecb) C:\Program Files\DellSupport\GTAction\triggers\DSproct.sys
06:42:12.0484 2756 DSproct - ok
06:42:12.0531 2756 dsunidrv (dfeabb7cfffadea4a912ab95bdc3177a) C:\WINDOWS\system32\DRIVERS\dsunidrv.sys
06:42:12.0531 2756 dsunidrv - ok
06:42:12.0578 2756 E100B (3fca03cbca11269f973b70fa483c88ef) C:\WINDOWS\system32\DRIVERS\e100b325.sys
06:42:12.0593 2756 E100B - ok
06:42:12.0625 2756 EapHost (2187855a7703adef0cef9ee4285182cc) C:\WINDOWS\System32\eapsvc.dll
06:42:12.0640 2756 EapHost - ok
06:42:12.0687 2756 EIO (59d74c7b787aa3dda0948986403cea55) C:\WINDOWS\system32\drivers\EIO.sys
06:42:12.0687 2756 EIO - ok
06:42:12.0718 2756 ERSvc (bc93b4a066477954555966d77fec9ecb) C:\WINDOWS\System32\ersvc.dll
06:42:12.0718 2756 ERSvc - ok
06:42:12.0750 2756 Eventlog (65df52f5b8b6e9bbd183505225c37315) C:\WINDOWS\system32\services.exe
06:42:12.0781 2756 Eventlog - ok
06:42:12.0828 2756 EventSystem (d4991d98f2db73c60d042f1aef79efae) C:\WINDOWS\system32\es.dll
06:42:12.0828 2756 EventSystem - ok
06:42:12.0859 2756 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
06:42:12.0875 2756 Fastfat - ok
06:42:12.0906 2756 FastUserSwitchingCompatibility (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll
06:42:12.0937 2756 FastUserSwitchingCompatibility - ok
06:42:12.0968 2756 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
06:42:12.0968 2756 Fdc - ok
06:42:13.0000 2756 Fips (d45926117eb9fa946a6af572fbe1caa3) C:\WINDOWS\system32\drivers\Fips.sys
06:42:13.0000 2756 Fips - ok
06:42:13.0031 2756 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
06:42:13.0031 2756 Flpydisk - ok
06:42:13.0093 2756 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
06:42:13.0093 2756 FltMgr - ok
06:42:13.0218 2756 FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
06:42:13.0218 2756 FontCache3.0.0.0 - ok
06:42:13.0250 2756 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
06:42:13.0250 2756 Fs_Rec - ok
06:42:13.0312 2756 Ftdisk (6ac26732762483366c3969c9e4d2259d) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
06:42:13.0312 2756 Ftdisk - ok
06:42:13.0359 2756 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
06:42:13.0375 2756 Gpc - ok
06:42:13.0390 2756 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
06:42:13.0406 2756 HDAudBus - ok
06:42:13.0484 2756 helpsvc (4fcca060dfe0c51a09dd5c3843888bcd) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
06:42:13.0484 2756 helpsvc - ok
06:42:13.0515 2756 HidServ (deb04da35cc871b6d309b77e1443c796) C:\WINDOWS\System32\hidserv.dll
06:42:13.0531 2756 HidServ - ok
06:42:13.0546 2756 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
06:42:13.0546 2756 HidUsb - ok
06:42:13.0593 2756 hkmsvc (8878bd685e490239777bfe51320b88e9) C:\WINDOWS\System32\kmsvc.dll
06:42:13.0593 2756 hkmsvc - ok
06:42:13.0625 2756 hpn (b028377dea0546a5fcfba928a8aefae0) C:\WINDOWS\system32\DRIVERS\hpn.sys
06:42:13.0625 2756 hpn - ok
06:42:13.0671 2756 HSFHWAZL (1c8caa80e91fb71864e9426f9eed048d) C:\WINDOWS\system32\DRIVERS\HSFHWAZL.sys
06:42:13.0687 2756 HSFHWAZL - ok
06:42:13.0734 2756 HSF_DPV (698204d9c2832e53633e53a30a53fc3d) C:\WINDOWS\system32\DRIVERS\HSF_DPV.sys
06:42:13.0796 2756 HSF_DPV - ok
06:42:13.0843 2756 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
06:42:13.0859 2756 HTTP - ok
06:42:13.0906 2756 HTTPFilter (6100a808600f44d999cebdef8841c7a3) C:\WINDOWS\System32\w3ssl.dll
06:42:13.0921 2756 HTTPFilter - ok
06:42:13.0953 2756 i2omgmt (9368670bd426ebea5e8b18a62416ec28) C:\WINDOWS\system32\drivers\i2omgmt.sys
06:42:13.0968 2756 i2omgmt - ok
06:42:13.0984 2756 i2omp (f10863bf1ccc290babd1a09188ae49e0) C:\WINDOWS\system32\DRIVERS\i2omp.sys
06:42:13.0984 2756 i2omp - ok
06:42:14.0015 2756 i8042prt (4a0b06aa8943c1e332520f7440c0aa30) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
06:42:14.0015 2756 i8042prt - ok
06:42:14.0171 2756 idsvc (c01ac32dc5c03076cfb852cb5da5229c) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
06:42:14.0203 2756 idsvc - ok
06:42:14.0234 2756 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
06:42:14.0234 2756 Imapi - ok
06:42:14.0296 2756 ImapiService (30deaf54a9755bb8546168cfe8a6b5e1) C:\WINDOWS\system32\imapi.exe
06:42:14.0312 2756 ImapiService - ok
06:42:14.0359 2756 ini910u (4a40e045faee58631fd8d91afc620719) C:\WINDOWS\system32\DRIVERS\ini910u.sys
06:42:14.0359 2756 ini910u - ok
06:42:14.0390 2756 IntelIde (b5466a9250342a7aa0cd1fba13420678) C:\WINDOWS\system32\DRIVERS\intelide.sys
06:42:14.0390 2756 IntelIde - ok
06:42:14.0437 2756 intelppm (8c953733d8f36eb2133f5bb58808b66b) C:\WINDOWS\system32\DRIVERS\intelppm.sys
06:42:14.0437 2756 intelppm - ok
06:42:14.0468 2756 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
06:42:14.0468 2756 Ip6Fw - ok
06:42:14.0500 2756 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
06:42:14.0500 2756 IpFilterDriver - ok
06:42:14.0531 2756 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
06:42:14.0531 2756 IpInIp - ok
06:42:14.0578 2756 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
06:42:14.0593 2756 IpNat - ok
06:42:14.0593 2756 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
06:42:14.0609 2756 IPSec - ok
06:42:14.0609 2756 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
06:42:14.0609 2756 IRENUM - ok
06:42:14.0625 2756 isapnp (05a299ec56e52649b1cf2fc52d20f2d7) C:\WINDOWS\system32\DRIVERS\isapnp.sys
06:42:14.0625 2756 isapnp - ok
06:42:14.0796 2756 JavaQuickStarterService (0a5709543986843d37a92290b7838340) C:\Program Files\Java\jre6\bin\jqs.exe
06:42:14.0796 2756 JavaQuickStarterService - ok
06:42:14.0828 2756 Kbdclass (463c1ec80cd17420a542b7f36a36f128) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
06:42:14.0828 2756 Kbdclass - ok
06:42:14.0859 2756 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
06:42:14.0859 2756 kmixer - ok
06:42:14.0890 2756 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
06:42:14.0906 2756 KSecDD - ok
06:42:14.0984 2756 lanmanserver (3a7c3cbe5d96b8ae96ce81f0b22fb527) C:\WINDOWS\System32\srvsvc.dll
06:42:15.0000 2756 lanmanserver - ok
06:42:15.0046 2756 lanmanworkstation (a8888a5327621856c0cec4e385f69309) C:\WINDOWS\System32\wkssvc.dll
06:42:15.0062 2756 lanmanworkstation - ok
06:42:15.0062 2756 lbrtfdc - ok
06:42:15.0140 2756 LmHosts (a7db739ae99a796d91580147e919cc59) C:\WINDOWS\System32\lmhsvc.dll
06:42:15.0140 2756 LmHosts - ok
06:42:15.0140 2756 MaxBackServiceInt - ok
06:42:15.0296 2756 MDM (11f714f85530a2bd134074dc30e99fca) C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
06:42:15.0312 2756 MDM - ok
06:42:15.0343 2756 mdmxsdk (3c318b9cd391371bed62126581ee9961) C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys
06:42:15.0343 2756 mdmxsdk - ok
06:42:15.0375 2756 Messenger (986b1ff5814366d71e0ac5755c88f2d3) C:\WINDOWS\System32\msgsvc.dll
06:42:15.0390 2756 Messenger - ok
06:42:15.0421 2756 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
06:42:15.0421 2756 mnmdd - ok
06:42:15.0468 2756 mnmsrvc (d18f1f0c101d06a1c1adf26eed16fcdd) C:\WINDOWS\system32\mnmsrvc.exe
06:42:15.0484 2756 mnmsrvc - ok
06:42:15.0531 2756 Modem (dfcbad3cec1c5f964962ae10e0bcc8e1) C:\WINDOWS\system32\drivers\Modem.sys
06:42:15.0531 2756 Modem - ok
06:42:15.0546 2756 Mouclass (35c9e97194c8cfb8430125f8dbc34d04) C:\WINDOWS\system32\DRIVERS\mouclass.sys
06:42:15.0546 2756 Mouclass - ok
06:42:15.0593 2756 mouhid (b1c303e17fb9d46e87a98e4ba6769685) C:\WINDOWS\system32\DRIVERS\mouhid.sys
06:42:15.0593 2756 mouhid - ok
06:42:15.0609 2756 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
06:42:15.0609 2756 MountMgr - ok
06:42:15.0640 2756 mraid35x (3f4bb95e5a44f3be34824e8e7caf0737) C:\WINDOWS\system32\DRIVERS\mraid35x.sys
06:42:15.0656 2756 mraid35x - ok
06:42:15.0718 2756 MREMP50 (80b2ec735495823ae5771a5f603e73bd) C:\PROGRA~1\COMMON~1\Motive\MREMP50.SYS
06:42:15.0734 2756 MREMP50 - ok
06:42:15.0734 2756 MREMP50a64 - ok
06:42:15.0750 2756 MRENDIS5 (594b9d8194e3f4ecbf0325bd10bbeb05) C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS
06:42:15.0765 2756 MRENDIS5 - ok
06:42:15.0765 2756 MRESP50 (37d7c22f7e26da90e2d2d260e5d27846) C:\PROGRA~1\COMMON~1\Motive\MRESP50.SYS
06:42:15.0765 2756 MRESP50 - ok
06:42:15.0765 2756 MRESP50a64 - ok
06:42:15.0796 2756 mrtRate (5300cb219dcfebc7540ce61532db329e) C:\WINDOWS\system32\drivers\mrtRate.sys
06:42:15.0812 2756 mrtRate - ok
06:42:15.0843 2756 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
06:42:15.0843 2756 MRxDAV - ok
06:42:15.0906 2756 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
06:42:15.0937 2756 MRxSmb - ok
06:42:15.0984 2756 MSDTC (a137f1470499a205abbb9aafb3b6f2b1) C:\WINDOWS\system32\msdtc.exe
06:42:15.0984 2756 MSDTC - ok
06:42:16.0031 2756 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
06:42:16.0031 2756 Msfs - ok
06:42:16.0031 2756 MSIServer - ok
06:42:16.0062 2756 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
06:42:16.0062 2756 MSKSSRV - ok
06:42:16.0078 2756 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
06:42:16.0078 2756 MSPCLOCK - ok
06:42:16.0078 2756 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
06:42:16.0078 2756 MSPQM - ok
06:42:16.0125 2756 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
06:42:16.0125 2756 mssmbios - ok
06:42:16.0156 2756 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
06:42:16.0156 2756 Mup - ok
06:42:16.0218 2756 MXOPSWD (c29f284ff7ab4ed38ce419a9424e52a2) C:\WINDOWS\system32\DRIVERS\mxopswd.sys
06:42:16.0218 2756 MXOPSWD - ok
06:42:16.0265 2756 napagent (0102140028fad045756796e1c685d695) C:\WINDOWS\System32\qagentrt.dll
06:42:16.0296 2756 napagent - ok
06:42:16.0328 2756 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
06:42:16.0343 2756 NDIS - ok
06:42:16.0375 2756 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
06:42:16.0390 2756 NdisTapi - ok
06:42:16.0390 2756 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
06:42:16.0406 2756 Ndisuio - ok
06:42:16.0406 2756 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
06:42:16.0421 2756 NdisWan - ok
06:42:16.0468 2756 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
06:42:16.0468 2756 NDProxy - ok
06:42:16.0515 2756 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
06:42:16.0515 2756 NetBIOS - ok
06:42:16.0546 2756 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
06:42:16.0562 2756 NetBT - ok
06:42:16.0609 2756 NetDDE (b857ba82860d7ff85ae29b095645563b) C:\WINDOWS\system32\netdde.exe
06:42:16.0625 2756 NetDDE - ok
06:42:16.0625 2756 NetDDEdsdm (b857ba82860d7ff85ae29b095645563b) C:\WINDOWS\system32\netdde.exe
06:42:16.0640 2756 NetDDEdsdm - ok
06:42:16.0687 2756 Netlogon (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
06:42:16.0687 2756 Netlogon - ok
06:42:16.0718 2756 Netman (13e67b55b3abd7bf3fe7aae5a0f9a9de) C:\WINDOWS\System32\netman.dll
06:42:16.0734 2756 Netman - ok
06:42:16.0843 2756 NetTcpPortSharing (d34612c5d02d026535b3095d620626ae) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
06:42:16.0859 2756 NetTcpPortSharing - ok
06:42:17.0000 2756 NETw4x32 (88100ebdd10309fbd445ef8e42452eae) C:\WINDOWS\system32\DRIVERS\NETw4x32.sys
06:42:17.0125 2756 NETw4x32 - ok
06:42:17.0312 2756 NIC1394 (e9e47cfb2d461fa0fc75b7a74c6383ea) C:\WINDOWS\system32\DRIVERS\nic1394.sys
06:42:17.0312 2756 NIC1394 - ok
06:42:17.0484 2756 NICCONFIGSVC (11d8a00c7eff1aaec8e8464769c84a3d) C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
06:42:17.0500 2756 NICCONFIGSVC - ok
06:42:17.0546 2756 Nla (943337d786a56729263071623bbb9de5) C:\WINDOWS\System32\mswsock.dll
06:42:17.0578 2756 Nla - ok
06:42:17.0625 2756 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
06:42:17.0640 2756 Npfs - ok
06:42:17.0671 2756 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
06:42:17.0703 2756 Ntfs - ok
06:42:17.0750 2756 NtLmSsp (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
06:42:17.0765 2756 NtLmSsp - ok
06:42:17.0812 2756 NtmsSvc (156f64a3345bd23c600655fb4d10bc08) C:\WINDOWS\system32\ntmssvc.dll
06:42:17.0828 2756 NtmsSvc - ok
06:42:17.0859 2756 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
06:42:17.0875 2756 Null - ok
06:42:18.0015 2756 nv (2b298519edbfcf451d43e0f1e8f1006d) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
06:42:18.0125 2756 nv - ok
06:42:18.0234 2756 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
06:42:18.0234 2756 NwlnkFlt - ok
06:42:18.0250 2756 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
06:42:18.0250 2756 NwlnkFwd - ok
06:42:18.0421 2756 OAcat (27e83f14ae20f92ed7c30e840d71e23d) C:\Program Files\Tall Emu\Online Armor\OAcat.exe
06:42:18.0437 2756 OAcat - ok
06:42:18.0515 2756 OADevice (da5e5a2026eeef52d94fcb760e171752) C:\WINDOWS\system32\drivers\OADriver.sys
06:42:18.0531 2756 OADevice - ok
06:42:18.0546 2756 OAmon (3524dd1f24bd0114eaa98048d76075c1) C:\WINDOWS\system32\drivers\OAmon.sys
06:42:18.0546 2756 OAmon - ok
06:42:18.0593 2756 OAnet (e57d9d511e837ef56f93ec29f1ff730d) C:\WINDOWS\system32\drivers\OAnet.sys
06:42:18.0609 2756 OAnet - ok
06:42:18.0625 2756 ohci1394 (ca33832df41afb202ee7aeb05145922f) C:\WINDOWS\system32\DRIVERS\ohci1394.sys
06:42:18.0640 2756 ohci1394 - ok
06:42:18.0687 2756 omci (b17228142cec9b3c222239fd935a37ca) C:\WINDOWS\system32\DRIVERS\omci.sys
06:42:18.0687 2756 omci - ok
06:42:18.0781 2756 ose (7a56cf3e3f12e8af599963b16f50fb6a) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
06:42:18.0781 2756 ose - ok
06:42:18.0812 2756 Parport (5575faf8f97ce5e713d108c2a58d7c7c) C:\WINDOWS\system32\DRIVERS\parport.sys
06:42:18.0812 2756 Parport - ok
06:42:18.0828 2756 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
06:42:18.0828 2756 PartMgr - ok
06:42:18.0859 2756 ParVdm (70e98b3fd8e963a6a46a2e6247e0bea1) C:\WINDOWS\system32\drivers\ParVdm.sys
06:42:18.0859 2756 ParVdm - ok
06:42:18.0859 2756 PCI (a219903ccf74233761d92bef471a07b1) C:\WINDOWS\system32\DRIVERS\pci.sys
06:42:18.0875 2756 PCI - ok
06:42:18.0875 2756 PCIDump - ok
06:42:18.0921 2756 PCIIde (ccf5f451bb1a5a2a522a76e670000ff0) C:\WINDOWS\system32\DRIVERS\pciide.sys
06:42:18.0921 2756 PCIIde - ok
06:42:18.0953 2756 Pcmcia (9e89ef60e9ee05e3f2eef2da7397f1c1) C:\WINDOWS\system32\drivers\Pcmcia.sys
06:42:18.0968 2756 Pcmcia - ok
06:42:18.0968 2756 PDCOMP - ok
06:42:18.0984 2756 PDFRAME - ok
06:42:18.0984 2756 PDRELI - ok
06:42:19.0000 2756 PDRFRAME - ok
06:42:19.0015 2756 perc2 (6c14b9c19ba84f73d3a86dba11133101) C:\WINDOWS\system32\DRIVERS\perc2.sys
06:42:19.0015 2756 perc2 - ok
06:42:19.0031 2756 perc2hib (f50f7c27f131afe7beba13e14a3b9416) C:\WINDOWS\system32\DRIVERS\perc2hib.sys
06:42:19.0031 2756 perc2hib - ok
06:42:19.0093 2756 PlugPlay (65df52f5b8b6e9bbd183505225c37315) C:\WINDOWS\system32\services.exe
06:42:19.0109 2756 PlugPlay - ok
06:42:19.0156 2756 Pml Driver HPZ12 (2d091a99624fb9e7eef0a86d872ec0c3) C:\WINDOWS\system32\HPZipm12.exe
06:42:19.0171 2756 Pml Driver HPZ12 - ok
06:42:19.0187 2756 PolicyAgent (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
06:42:19.0203 2756 PolicyAgent - ok
06:42:19.0234 2756 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
06:42:19.0250 2756 PptpMiniport - ok
06:42:19.0250 2756 ProtectedStorage (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
06:42:19.0265 2756 ProtectedStorage - ok
06:42:19.0265 2756 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
06:42:19.0281 2756 PSched - ok
06:42:19.0312 2756 PSI (d24dfd16a1e2a76034df5aa18125c35d) C:\WINDOWS\system32\DRIVERS\psi_mf.sys
06:42:19.0328 2756 PSI - ok
06:42:19.0343 2756 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
06:42:19.0359 2756 Ptilink - ok
06:42:19.0406 2756 PxHelp20 (d86b4a68565e444d76457f14172c875a) C:\WINDOWS\system32\Drivers\PxHelp20.sys
06:42:19.0406 2756 PxHelp20 - ok
06:42:19.0437 2756 ql1080 (0a63fb54039eb5662433caba3b26dba7) C:\WINDOWS\system32\DRIVERS\ql1080.sys
06:42:19.0437 2756 ql1080 - ok
06:42:19.0453 2756 Ql10wnt (6503449e1d43a0ff0201ad5cb1b8c706) C:\WINDOWS\system32\DRIVERS\ql10wnt.sys
06:42:19.0453 2756 Ql10wnt - ok
06:42:19.0484 2756 ql12160 (156ed0ef20c15114ca097a34a30d8a01) C:\WINDOWS\system32\DRIVERS\ql12160.sys
06:42:19.0484 2756 ql12160 - ok
06:42:19.0500 2756 ql1240 (70f016bebde6d29e864c1230a07cc5e6) C:\WINDOWS\system32\DRIVERS\ql1240.sys
06:42:19.0500 2756 ql1240 - ok
06:42:19.0531 2756 ql1280 (907f0aeea6bc451011611e732bd31fcf) C:\WINDOWS\system32\DRIVERS\ql1280.sys
06:42:19.0531 2756 ql1280 - ok
06:42:19.0562 2756 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
06:42:19.0562 2756 RasAcd - ok
06:42:19.0609 2756 RasAuto (ad188be7bdf94e8df4ca0a55c00a5073) C:\WINDOWS\System32\rasauto.dll
06:42:19.0625 2756 RasAuto - ok
06:42:19.0671 2756 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
06:42:19.0671 2756 Rasl2tp - ok
06:42:19.0718 2756 RasMan (76a9a3cbeadd68cc57cda5e1d7448235) C:\WINDOWS\System32\rasmans.dll
06:42:19.0734 2756 RasMan - ok
06:42:19.0750 2756 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
06:42:19.0750 2756 RasPppoe - ok
06:42:19.0781 2756 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
06:42:19.0781 2756 Raspti - ok
06:42:19.0812 2756 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
06:42:19.0812 2756 Rdbss - ok
06:42:19.0843 2756 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
06:42:19.0859 2756 RDPCDD - ok
06:42:19.0875 2756 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
06:42:19.0890 2756 rdpdr - ok
06:42:19.0937 2756 RDPWD (5b3055daa788bd688594d2f5981f2a83) C:\WINDOWS\system32\drivers\RDPWD.sys
06:42:19.0953 2756 RDPWD - ok
06:42:20.0000 2756 RDSessMgr (3c37bf86641bda977c3bf8a840f3b7fa) C:\WINDOWS\system32\sessmgr.exe
06:42:20.0015 2756 RDSessMgr - ok
06:42:20.0062 2756 redbook (f828dd7e1419b6653894a8f97a0094c5) C:\WINDOWS\system32\DRIVERS\redbook.sys
06:42:20.0078 2756 redbook - ok
06:42:20.0109 2756 RemoteAccess (7e699ff5f59b5d9de5390e3c34c67cf5) C:\WINDOWS\System32\mprdim.dll
06:42:20.0125 2756 RemoteAccess - ok
06:42:20.0156 2756 RemoteRegistry (5b19b557b0c188210a56a6b699d90b8f) C:\WINDOWS\system32\regsvc.dll
06:42:20.0171 2756 RemoteRegistry - ok
06:42:20.0218 2756 rimmptsk (d85e3fa9f5b1f29bb4ed185c450d1470) C:\WINDOWS\system32\DRIVERS\rimmptsk.sys
06:42:20.0218 2756 rimmptsk - ok
06:42:20.0218 2756 rimsptsk (db8eb01c58c9fada00c70b1775278ae0) C:\WINDOWS\system32\DRIVERS\rimsptsk.sys
06:42:20.0234 2756 rimsptsk - ok
06:42:20.0234 2756 rismxdp (6c1f93c0760c9f79a1869d07233df39d) C:\WINDOWS\system32\DRIVERS\rixdptsk.sys
06:42:20.0250 2756 rismxdp - ok
06:42:20.0281 2756 RpcLocator (aaed593f84afa419bbae8572af87cf6a) C:\WINDOWS\system32\locator.exe
06:42:20.0296 2756 RpcLocator - ok
06:42:20.0359 2756 RpcSs (6b27a5c03dfb94b4245739065431322c) C:\WINDOWS\system32\rpcss.dll
06:42:20.0375 2756 RpcSs - ok
06:42:20.0421 2756 RSVP (471b3f9741d762abe75e9deea4787e47) C:\WINDOWS\system32\rsvp.exe
06:42:20.0437 2756 RSVP - ok
06:42:20.0453 2756 s24trans - ok
06:42:20.0500 2756 SamSs (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
06:42:20.0500 2756 SamSs - ok
06:42:20.0546 2756 SCardSvr (86d007e7a654b9a71d1d7d856b104353) C:\WINDOWS\System32\SCardSvr.exe
06:42:20.0562 2756 SCardSvr - ok
06:42:20.0609 2756 Schedule (0a9a7365a1ca4319aa7c1d6cd8e4eafa) C:\WINDOWS\system32\schedsvc.dll
06:42:20.0640 2756 Schedule - ok
06:42:20.0687 2756 sdbus (8d04819a3ce51b9eb47e5689b44d43c4) C:\WINDOWS\system32\DRIVERS\sdbus.sys
06:42:20.0687 2756 sdbus - ok
06:42:20.0734 2756 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
06:42:20.0750 2756 Secdrv - ok
06:42:20.0781 2756 seclogon (cbe612e2bb6a10e3563336191eda1250) C:\WINDOWS\System32\seclogon.dll
06:42:20.0796 2756 seclogon - ok
06:42:20.0968 2756 Secunia PSI Agent (1ce8490e8919ef5c72275952c202e749) C:\Program Files\Secunia\PSI\PSIA.exe
06:42:20.0984 2756 Secunia PSI Agent - ok
06:42:21.0031 2756 Secunia Update Agent (9337c7c45392a32cac5e59ddac0d0342) C:\Program Files\Secunia\PSI\sua.exe
06:42:21.0031 2756 Secunia Update Agent - ok
06:42:21.0140 2756 SENS (7fdd5d0684eca8c1f68b4d99d124dcd0) C:\WINDOWS\system32\sens.dll
06:42:21.0156 2756 SENS - ok
06:42:21.0250 2756 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
06:42:21.0250 2756 serenum - ok
06:42:21.0281 2756 Serial (cca207a8896d4c6a0c9ce29a4ae411a7) C:\WINDOWS\system32\DRIVERS\serial.sys
06:42:21.0281 2756 Serial - ok
06:42:21.0312 2756 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
06:42:21.0312 2756 Sfloppy - ok
06:42:21.0359 2756 SharedAccess (83f41d0d89645d7235c051ab1d9523ac) C:\WINDOWS\System32\ipnathlp.dll
06:42:21.0406 2756 SharedAccess - ok
06:42:21.0437 2756 ShellHWDetection (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll
06:42:21.0453 2756 ShellHWDetection - ok
06:42:21.0468 2756 Simbad - ok
06:42:21.0515 2756 sisagp (6b33d0ebd30db32e27d1d78fe946a754) C:\WINDOWS\system32\DRIVERS\sisagp.sys
06:42:21.0531 2756 sisagp - ok
06:42:21.0562 2756 Sparrow (83c0f71f86d3bdaf915685f3d568b20e) C:\WINDOWS\system32\DRIVERS\sparrow.sys
06:42:21.0562 2756 Sparrow - ok
06:42:21.0609 2756 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
06:42:21.0609 2756 splitter - ok
06:42:21.0656 2756 Spooler (60784f891563fb1b767f70117fc2428f) C:\WINDOWS\system32\spoolsv.exe
06:42:21.0671 2756 Spooler - ok
06:42:21.0703 2756 sr (76bb022c2fb6902fd5bdd4f78fc13a5d) C:\WINDOWS\system32\DRIVERS\sr.sys
06:42:21.0703 2756 sr - ok
06:42:21.0750 2756 srservice (3805df0ac4296a34ba4bf93b346cc378) C:\WINDOWS\system32\srsvc.dll
06:42:21.0796 2756 srservice - ok
06:42:21.0859 2756 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
06:42:21.0875 2756 Srv - ok
06:42:21.0906 2756 sscdbhk5 (d7968049be0adbb6a57cee3960320911) C:\WINDOWS\system32\drivers\sscdbhk5.sys
06:42:21.0906 2756 sscdbhk5 - ok
06:42:21.0937 2756 SSDPSRV (0a5679b3714edab99e357057ee88fca6) C:\WINDOWS\System32\ssdpsrv.dll
06:42:21.0953 2756 SSDPSRV - ok
06:42:21.0968 2756 ssrtln (c3ffd65abfb6441e7606cf74f1155273) C:\WINDOWS\system32\drivers\ssrtln.sys
06:42:21.0968 2756 ssrtln - ok
06:42:22.0062 2756 STHDA (2a2dc39623adef8ab3703ab9fac4b440) C:\WINDOWS\system32\drivers\sthda.sys
06:42:22.0125 2756 STHDA - ok
06:42:22.0187 2756 StillCam (a9573045baa16eab9b1085205b82f1ed) C:\WINDOWS\system32\DRIVERS\serscan.sys
06:42:22.0187 2756 StillCam - ok
06:42:22.0234 2756 stisvc (8bad69cbac032d4bbacfce0306174c30) C:\WINDOWS\system32\wiaservc.dll
06:42:22.0265 2756 stisvc - ok
06:42:22.0546 2756 SvcOnlineArmor (2a27eaa524005170ded0415596e75f46) C:\Program Files\Tall Emu\Online Armor\oasrv.exe
06:42:22.0687 2756 SvcOnlineArmor - ok
06:42:22.0875 2756 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
06:42:22.0890 2756 swenum - ok
06:42:22.0937 2756 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
06:42:22.0937 2756 swmidi - ok
06:42:22.0953 2756 SwPrv - ok
06:42:23.0000 2756 symc810 (1ff3217614018630d0a6758630fc698c) C:\WINDOWS\system32\DRIVERS\symc810.sys
06:42:23.0000 2756 symc810 - ok
06:42:23.0031 2756 symc8xx (070e001d95cf725186ef8b20335f933c) C:\WINDOWS\system32\DRIVERS\symc8xx.sys
06:42:23.0031 2756 symc8xx - ok
06:42:23.0046 2756 sym_hi (80ac1c4abbe2df3b738bf15517a51f2c) C:\WINDOWS\system32\DRIVERS\sym_hi.sys
06:42:23.0046 2756 sym_hi - ok
06:42:23.0062 2756 sym_u3 (bf4fab949a382a8e105f46ebb4937058) C:\WINDOWS\system32\DRIVERS\sym_u3.sys
06:42:23.0062 2756 sym_u3 - ok
06:42:23.0125 2756 SynTP (35d5b3632e0bcebe27b391157de05996) C:\WINDOWS\system32\DRIVERS\SynTP.sys
06:42:23.0140 2756 SynTP - ok
06:42:23.0156 2756 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
06:42:23.0171 2756 sysaudio - ok
06:42:23.0218 2756 SysmonLog (c7abbc59b43274b1109df6b24d617051) C:\WINDOWS\system32\smlogsvc.exe
06:42:23.0234 2756 SysmonLog - ok
06:42:23.0281 2756 TapiSrv (3cb78c17bb664637787c9a1c98f79c38) C:\WINDOWS\System32\tapisrv.dll
06:42:23.0312 2756 TapiSrv - ok
06:42:23.0375 2756 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
06:42:23.0390 2756 Tcpip - ok
06:42:23.0421 2756 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
06:42:23.0421 2756 TDPIPE - ok
06:42:23.0484 2756 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
06:42:23.0484 2756 TDTCP - ok
06:42:23.0500 2756 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
06:42:23.0500 2756 TermDD - ok
06:42:23.0562 2756 TermService (56f4867bae6fd78e5365a3a7afa59c82) C:\WINDOWS\System32\termsrv32.dll
06:42:23.0578 2756 TermService - ok
06:42:23.0671 2756 tfsnboio (30698355067d07da5f9eb81132c9fdd6) C:\WINDOWS\system32\dla\tfsnboio.sys
06:42:23.0687 2756 tfsnboio - ok
06:42:23.0687 2756 tfsncofs (fb9d825bb4a2abdf24600f7505050e2b) C:\WINDOWS\system32\dla\tfsncofs.sys
06:42:23.0687 2756 tfsncofs - ok
06:42:23.0703 2756 tfsndrct (cafd8cca11aa1e8b6d2ea1ba8f70ec33) C:\WINDOWS\system32\dla\tfsndrct.sys
06:42:23.0703 2756 tfsndrct - ok
06:42:23.0703 2756 tfsndres (8db1e78fbf7c426d8ec3d8f1a33d6485) C:\WINDOWS\system32\dla\tfsndres.sys
06:42:23.0718 2756 tfsndres - ok
06:42:23.0718 2756 tfsnifs (b92f67a71cc8176f331b8aa8d9f555ad) C:\WINDOWS\system32\dla\tfsnifs.sys
06:42:23.0734 2756 tfsnifs - ok
06:42:23.0734 2756 tfsnopio (85985faa9a71e2358fcc2edefc2a3c5c) C:\WINDOWS\system32\dla\tfsnopio.sys
06:42:23.0734 2756 tfsnopio - ok
06:42:23.0750 2756 tfsnpool (bba22094f0f7c210567efdaf11f64495) C:\WINDOWS\system32\dla\tfsnpool.sys
06:42:23.0750 2756 tfsnpool - ok
06:42:23.0765 2756 tfsnudf (81340bef80b9811e98ce64611e67e3ff) C:\WINDOWS\system32\dla\tfsnudf.sys
06:42:23.0765 2756 tfsnudf - ok
06:42:23.0781 2756 tfsnudfa (c035fd116224ccc8325f384776b6a8bb) C:\WINDOWS\system32\dla\tfsnudfa.sys
06:42:23.0781 2756 tfsnudfa - ok
06:42:23.0828 2756 Themes (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll
06:42:23.0843 2756 Themes - ok
06:42:23.0875 2756 TlntSvr (db7205804759ff62c34e3efd8a4cc76a) C:\WINDOWS\system32\tlntsvr.exe
06:42:23.0906 2756 TlntSvr - ok
06:42:23.0937 2756 TosIde (f2790f6af01321b172aa62f8e1e187d9) C:\WINDOWS\system32\DRIVERS\toside.sys
06:42:23.0937 2756 TosIde - ok
06:42:23.0984 2756 TrkWks (55bca12f7f523d35ca3cb833c725f54e) C:\WINDOWS\system32\trkwks.dll
06:42:24.0000 2756 TrkWks - ok
06:42:24.0046 2756 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
06:42:24.0046 2756 Udfs - ok
06:42:24.0093 2756 ultra (1b698a51cd528d8da4ffaed66dfc51b9) C:\WINDOWS\system32\DRIVERS\ultra.sys
06:42:24.0093 2756 ultra - ok
06:42:24.0156 2756 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
06:42:24.0171 2756 Update - ok
06:42:24.0218 2756 upnphost (1ebafeb9a3fbdc41b8d9c7f0f687ad91) C:\WINDOWS\System32\upnphost.dll
06:42:24.0250 2756 upnphost - ok
06:42:24.0265 2756 UPS (05365fb38fca1e98f7a566aaaf5d1815) C:\WINDOWS\System32\ups.exe
06:42:24.0281 2756 UPS - ok
06:42:24.0328 2756 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
06:42:24.0328 2756 usbccgp - ok
06:42:24.0359 2756 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
06:42:24.0375 2756 usbehci - ok
06:42:24.0421 2756 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
06:42:24.0421 2756 usbhub - ok
06:42:24.0468 2756 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
06:42:24.0468 2756 usbscan - ok
06:42:24.0484 2756 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
06:42:24.0500 2756 USBSTOR - ok
06:42:24.0500 2756 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
06:42:24.0515 2756 usbuhci - ok
06:42:24.0515 2756 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
06:42:24.0515 2756 VgaSave - ok
06:42:24.0562 2756 viaagp (754292ce5848b3738281b4f3607eaef4) C:\WINDOWS\system32\DRIVERS\viaagp.sys
06:42:24.0562 2756 viaagp - ok
06:42:24.0593 2756 ViaIde (3b3efcda263b8ac14fdf9cbdd0791b2e) C:\WINDOWS\system32\DRIVERS\viaide.sys
06:42:24.0593 2756 ViaIde - ok
06:42:24.0625 2756 VolSnap (4c8fcb5cc53aab716d810740fe59d025) C:\WINDOWS\system32\drivers\VolSnap.sys
06:42:24.0640 2756 VolSnap - ok
06:42:24.0687 2756 VSS (7a9db3a67c333bf0bd42e42b8596854b) C:\WINDOWS\System32\vssvc.exe
06:42:24.0718 2756 VSS - ok
06:42:24.0765 2756 w32time (54af4b1d5459500ef0937f6d33b1914f) C:\WINDOWS\system32\w32time.dll
06:42:24.0796 2756 w32time - ok
06:42:24.0906 2756 w39n51 (b1f126e7e28877106d60e6ff3998d033) C:\WINDOWS\system32\DRIVERS\w39n51.sys
06:42:24.0968 2756 w39n51 - ok
06:42:25.0109 2756 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
06:42:25.0109 2756 Wanarp - ok
06:42:25.0109 2756 wanatw - ok
06:42:25.0125 2756 WDICA - ok
06:42:25.0156 2756 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
06:42:25.0171 2756 wdmaud - ok
06:42:25.0203 2756 WebClient (77a354e28153ad2d5e120a5a8687bc06) C:\WINDOWS\System32\webclnt.dll
06:42:25.0218 2756 WebClient - ok
06:42:25.0312 2756 winachsf (74cf3f2e4e40c4a2e18d39d6300a5c24) C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys
06:42:25.0359 2756 winachsf - ok
06:42:25.0468 2756 winmgmt (2d0e4ed081963804ccc196a0929275b5) C:\WINDOWS\system32\wbem\WMIsvc.dll
06:42:25.0484 2756 winmgmt - ok
06:42:25.0546 2756 WmdmPmSN (c51b4a5c05a5475708e3c81c7765b71d) C:\WINDOWS\system32\MsPMSNSv.dll
06:42:25.0546 2756 WmdmPmSN - ok
06:42:25.0640 2756 Wmi (e76f8807070ed04e7408a86d6d3a6137) C:\WINDOWS\System32\advapi32.dll
06:42:25.0671 2756 Wmi - ok
06:42:25.0734 2756 WmiAcpi (c42584fd66ce9e17403aebca199f7bdb) C:\WINDOWS\system32\DRIVERS\wmiacpi.sys
06:42:25.0734 2756 WmiAcpi - ok
06:42:25.0781 2756 WmiApSrv (e0673f1106e62a68d2257e376079f821) C:\WINDOWS\system32\wbem\wmiapsrv.exe
06:42:25.0796 2756 WmiApSrv - ok
06:42:26.0031 2756 WMPNetworkSvc (f74e3d9a7fa9556c3bbb14d4e5e63d3b) C:\Program Files\Windows Media Player\WMPNetwk.exe
06:42:26.0078 2756 WMPNetworkSvc - ok
06:42:26.0125 2756 wscsvc (7c278e6408d1dce642230c0585a854d5) C:\WINDOWS\system32\wscsvc.dll
06:42:26.0156 2756 wscsvc - ok
06:42:26.0203 2756 wuauserv (35321fb577cdc98ce3eb3a3eb9e4610a) C:\WINDOWS\system32\wuauserv.dll
06:42:26.0250 2756 wuauserv - ok
06:42:26.0281 2756 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
06:42:26.0281 2756 WudfPf - ok
06:42:26.0312 2756 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
06:42:26.0312 2756 WudfRd - ok
06:42:26.0328 2756 WudfSvc (05231c04253c5bc30b26cbaae680ed89) C:\WINDOWS\System32\WUDFSvc.dll
06:42:26.0343 2756 WudfSvc - ok
06:42:26.0406 2756 WZCSVC (81dc3f549f44b1c1fff022dec9ecf30b) C:\WINDOWS\System32\wzcsvc.dll
06:42:26.0453 2756 WZCSVC - ok
06:42:26.0500 2756 xmlprov (295d21f14c335b53cb8154e5b1f892b9) C:\WINDOWS\System32\xmlprov.dll
06:42:26.0531 2756 xmlprov - ok
06:42:26.0562 2756 MBR (0x1B8) (dea9e81f0228b68c9adaf84c9b0cf931) \Device\Harddisk0\DR0
06:42:26.0578 2756 \Device\Harddisk0\DR0 ( Rootkit.Boot.Sinowal.b ) - infected
06:42:26.0578 2756 \Device\Harddisk0\DR0 - detected Rootkit.Boot.Sinowal.b (0)
06:42:26.0609 2756 Boot (0x1200) (43926fcb5c4b3ae5531c5fb6dcc2b5af) \Device\Harddisk0\DR0\Partition0
06:42:26.0609 2756 \Device\Harddisk0\DR0\Partition0 - ok
06:42:26.0609 2756 ============================================================
06:42:26.0609 2756 Scan finished
06:42:26.0609 2756 ============================================================
06:42:26.0625 0188 Detected object count: 1
06:42:26.0625 0188 Actual detected object count: 1
06:42:38.0187 0188 \Device\Harddisk0\DR0\# - copied to quarantine
06:42:38.0187 0188 \Device\Harddisk0\DR0 - copied to quarantine
06:42:38.0218 0188 \Device\Harddisk0\DR0 ( Rootkit.Boot.Sinowal.b ) - will be cured on reboot
06:42:38.0234 0188 \Device\Harddisk0\DR0 - ok
06:42:38.0234 0188 \Device\Harddisk0\DR0 ( Rootkit.Boot.Sinowal.b ) - User select action: Cure
06:42:51.0000 2064 Deinitialize success
Report follows