PCWorld Forums

PCWorld Forums: I Think I Have A Virus - PCWorld Forums

Jump to content

  • 2 Pages +
  • 1
  • 2
  • You cannot start a new topic
  • You cannot reply to this topic

I Think I Have A Virus

#1 User is offline   bs27 

  • Member
  • PipPip
  • Group: New Member
  • Posts: 18
  • Joined: 26-July 12

Posted 26 July 2012 - 04:31 PM

I think I have some kind of virus on my laptop. It will occasionally open up a new internet explorer window (which goes to my homepage). There isnt any connection that I can make as to what would cause it. Then I have been having some trouble backing up my laptop but I did eventually get it. I would look to see what files had been skipped and it would say that all have been skipped and drive c is corrupt. I have scanned with every thing I could possibly find and they have all returned nothing found. I have no idea what to do next. I know that something is going on with it but I have no clue what. I would be grateful if someone would help me. Thanks
0

#2 User is offline   Flashorn 

  • Expert
  • PipPipPipPipPipPip
  • Group: Members
  • Posts: 4,362
  • Joined: 19-May 07
  • Location:Canada

Posted 26 July 2012 - 05:11 PM

Hey bs27 !

Welcome to PCWorld Community.

When you say that you scanned with all you could think of, which programs did you actually use?

Could we also have the name of the notebook manufacturer along with it's designated number/name
(not the serial #) and how old is it.

Which OS is installed ?

What antivirus/antimalware programs are installed and have you changed any of them lately?

Which back up service/program are you using ?



FLASHORN.




Posted Image Posted Image

Posted Image

Eurocom Scorpius: 3840QM-2.8 GHz-Ivy Bridge ; ATI 7970M Crossfire ; Intel SSD 520 series 480GB ; Seagate Momentus XT 750 GB,7200RPM ; 16 GB Corsair Vengeance 9 9 9 24 ; Sound Blaster X-Fi MB2 ; THX True Studio Pro.

Patience is Life.
0

#3 User is offline   bs27 

  • Member
  • PipPip
  • Group: New Member
  • Posts: 18
  • Joined: 26-July 12

Posted 31 July 2012 - 08:37 AM

View PostFlashorn, on 26 July 2012 - 05:11 PM, said:

Hey bs27 !

Welcome to PCWorld Community.

When you say that you scanned with all you could think of, which programs did you actually use?

Could we also have the name of the notebook manufacturer along with it's designated number/name
(not the serial #) and how old is it.

Which OS is installed ?

What antivirus/antimalware programs are installed and have you changed any of them lately?

Which back up service/program are you using ?



FLASHORN.

My laptop is a Compaq cq-57. I have had it for a year. It has windows 7 64bit. I dont know what the designated number would be. I sorry. I have Microsoft Security Essentials installed. Before that I was using panda then I went to Staples and said that they didnt reccomend using panda. The worker also said that Microsoft Security Essentials would be good. So I switched. I think it was 4 months ago. I was already have trouble out of my computer at that point. I also have SuperAntiSpyware installed and Malwarebytes. The scanners that I used to try and find virus' is Fsecure, Eset, Panda active scan, Sophos, Mcafee, Norton, Microsoft Windows Malicious Software and theres probably a few others that I have forgot to mention. One other thing I should maybe tell you is MSE did find one virus and removed it. The name of it was Blacole or something like that.That was a few weeks ago. I thought that would fix the problems that I was having but it hasnt.

This post has been edited by bs27: 31 July 2012 - 08:39 AM

0

#4 User is offline   Flashorn 

  • Expert
  • PipPipPipPipPipPip
  • Group: Members
  • Posts: 4,362
  • Joined: 19-May 07
  • Location:Canada

Posted 31 July 2012 - 11:52 AM

Hey bs27 !

The designated number of your notebook would be cq-57

OK, the problems you're having with the notebook, you say has been from the start which , was a year ago. Am I understanding this correctly?
Or, is this problem only recent as in 4 months ago?

IF so and the name you mentioned IS Blacole (pronounced BlackHole) then this is a bad Java exploit that has been around since February of this year.

Could you open MSE (Microsoft Security Essentials) and click on the tab "History". Verify the Path of that malware and paste it to this thread please.

In the meantime, I would not do any shopping online which would require the use of a credit card OR any online Banking.

We will have to run deep scanning tools to determine if you have remnants of this malware.


FLASHORN.
Posted Image Posted Image

Posted Image

Eurocom Scorpius: 3840QM-2.8 GHz-Ivy Bridge ; ATI 7970M Crossfire ; Intel SSD 520 series 480GB ; Seagate Momentus XT 750 GB,7200RPM ; 16 GB Corsair Vengeance 9 9 9 24 ; Sound Blaster X-Fi MB2 ; THX True Studio Pro.

Patience is Life.
0

#5 User is offline   bs27 

  • Member
  • PipPip
  • Group: New Member
  • Posts: 18
  • Joined: 26-July 12

Posted 01 August 2012 - 02:09 AM

I looked in the history of mse and its longer showing anything listed there. I have had the computer for a year and the problems started around 6 months ago. That is just a guess. I have been using my credit cards online. How will I know if someone has my info? Or is there anyway other than watching my spending? Another thing back when this all began the virus software I was using kept giving popups telling me that there was a malicious program running. I dont remember the name it gave exactly but it had hp??? listed.
0

#6 User is offline   bs27 

  • Member
  • PipPip
  • Group: New Member
  • Posts: 18
  • Joined: 26-July 12

Posted 01 August 2012 - 03:17 AM

I was just online and then mse found that virus again. Here is what is listed in the history.
It says dected item: Trojan:JS/BlacoleRef.BV
0

#7 User is offline   coastie65 

  • Moderator
  • PipPipPipPipPipPipPipPip
  • Group: Moderators
  • Posts: 19,667
  • Joined: 02-April 07
  • Location:Henrico, Va.

Posted 01 August 2012 - 08:01 AM

View Postbs27, on 01 August 2012 - 02:09 AM, said:

I looked in the history of mse and its longer showing anything listed there. I have had the computer for a year and the problems started around 6 months ago. That is just a guess. I have been using my credit cards online. How will I know if someone has my info? Or is there anyway other than watching my spending? Another thing back when this all began the virus software I was using kept giving popups telling me that there was a malicious program running. I dont remember the name it gave exactly but it had hp??? listed.


Hi. As for the Credit Cards, just watch your statements when you get them and check the charges on them. If you see something you don't recognize, then notify the Card Issuer immediately. As for the Pop ups, ignore them and stop right there. Go back to your home page then scan with soething like Malwarebytes to make sure that it didn't get installed.
Coolermaster HAF 912 Case....ASUS P8Z68-VPro MOBO.....Intel Core i7 2600k Sandy Bridge ( 4.4 Ghz ).... Gelid Tranquillo cooler.... Samsung 830 256 GB SSD.... Primary HDD- WD 1TB Caviar Black SATA III /6.0 .... SECONDARY HDD - WD 1TB Caviar Black SATA II / 3.0....8Gb GSkill Ripjaws Series X 1600 Mhz Memory....Corsair AX850w PSU....EVGA GTX 680 Super Clocked Signature 2 Gb GDDR5 Video Card....Samsung CD/DVD RW, DL, DVD-Ram, w/ Lightscribe Optical Drive....Samsung SyncMaster 2243BWX 22" Monitor..... Windows 7 Home Premium 64 Bit OS


http://novabench.com/image/266589.png

______________________________________________________________

Gateway FX6800-01e----Intel Core i7 960 ( 3.2 GHz)---- Seagate Barracuda 750 Gb SATA II / 3.0 Hdd---- 6 Gb Crucial 1066 Mhz memory, running in Tri Channel conf-----Corsair TX650w PSU----- EVGA Nvidia GTX 560Ti 1gb GDDR5 Vram ----DVD +/- RW / CD ,RAM/DL Optical drive w/ Label Flash-----Gateway TBGM-01 Motherboard.... Vista Home Premium 64 bit OS w/ SP2; Samsung Synch Master 2243BWX 22" Monitor.
0

#8 User is offline   coastie65 

  • Moderator
  • PipPipPipPipPipPipPipPip
  • Group: Moderators
  • Posts: 19,667
  • Joined: 02-April 07
  • Location:Henrico, Va.

Posted 01 August 2012 - 08:15 AM

View Postbs27, on 01 August 2012 - 03:17 AM, said:

I was just online and then mse found that virus again. Here is what is listed in the history.
It says dected item: Trojan:JS/BlacoleRef.BV



I don't know where you are surfing, but I would certainly avoid it. From what I can find, MSE and Malwarebytes should both remove it though.
Coolermaster HAF 912 Case....ASUS P8Z68-VPro MOBO.....Intel Core i7 2600k Sandy Bridge ( 4.4 Ghz ).... Gelid Tranquillo cooler.... Samsung 830 256 GB SSD.... Primary HDD- WD 1TB Caviar Black SATA III /6.0 .... SECONDARY HDD - WD 1TB Caviar Black SATA II / 3.0....8Gb GSkill Ripjaws Series X 1600 Mhz Memory....Corsair AX850w PSU....EVGA GTX 680 Super Clocked Signature 2 Gb GDDR5 Video Card....Samsung CD/DVD RW, DL, DVD-Ram, w/ Lightscribe Optical Drive....Samsung SyncMaster 2243BWX 22" Monitor..... Windows 7 Home Premium 64 Bit OS


http://novabench.com/image/266589.png

______________________________________________________________

Gateway FX6800-01e----Intel Core i7 960 ( 3.2 GHz)---- Seagate Barracuda 750 Gb SATA II / 3.0 Hdd---- 6 Gb Crucial 1066 Mhz memory, running in Tri Channel conf-----Corsair TX650w PSU----- EVGA Nvidia GTX 560Ti 1gb GDDR5 Vram ----DVD +/- RW / CD ,RAM/DL Optical drive w/ Label Flash-----Gateway TBGM-01 Motherboard.... Vista Home Premium 64 bit OS w/ SP2; Samsung Synch Master 2243BWX 22" Monitor.
0

#9 User is offline   LiveBrianD 

  • Elite
  • PipPipPipPipPipPipPipPip
  • Group: Members
  • Posts: 11,145
  • Joined: 31-December 09
  • Location:Right behind you... made you look! :D

Posted 01 August 2012 - 09:09 AM

To be honest, if a PC has been infected, I don't trust it (particularly with stuff like online banking) until the OS is reinstalled. If it keeps reappearing in MSE, you've likely got a particularly nasty, hard to remove one.
Spoiler
"The Internet will be used for all kinds of spurious things, including fake quotes from smart people." -Albert Einstein
Need a Windows ISO image?
0

#10 User is offline   Flashorn 

  • Expert
  • PipPipPipPipPipPip
  • Group: Members
  • Posts: 4,362
  • Joined: 19-May 07
  • Location:Canada

Posted 01 August 2012 - 01:48 PM

View PostLiveBrianD, on 01 August 2012 - 09:09 AM, said:

To be honest, if a PC has been infected, I don't trust it (particularly with stuff like online banking) until the OS is reinstalled. If it keeps reappearing in MSE, you've likely got a particularly nasty, hard to remove one.


Brian, I wish you would stop saying the same thing all the time. Yes, it's not a pretty one but, not impossible to remove.

This particular exploit is from a Java script that is on a infected web site. That site admin. should be notified as soon as possible
to prevent others from being infected and to restore this site to it's former state.


FLASHORN.
Posted Image Posted Image

Posted Image

Eurocom Scorpius: 3840QM-2.8 GHz-Ivy Bridge ; ATI 7970M Crossfire ; Intel SSD 520 series 480GB ; Seagate Momentus XT 750 GB,7200RPM ; 16 GB Corsair Vengeance 9 9 9 24 ; Sound Blaster X-Fi MB2 ; THX True Studio Pro.

Patience is Life.
0

#11 User is offline   Flashorn 

  • Expert
  • PipPipPipPipPipPip
  • Group: Members
  • Posts: 4,362
  • Joined: 19-May 07
  • Location:Canada

Posted 01 August 2012 - 02:21 PM

View Postbs27, on 01 August 2012 - 03:17 AM, said:

I was just online and then mse found that virus again. Here is what is listed in the history.
It says dected item: Trojan:JS/BlacoleRef.BV



Hey bs27 !

OK, let's start from the beginning.

Which browser(s) do you have installed and which one are you using when this happens and Which site are you visiting??

Please answer all questions.

Are all of your browsers up-to-date?

Are all of your pluggins up-to-date?

Which version of Java is installed and how many versions do you see? (go to > Start > Control Panel > Program & Features > search for Java)

In the mean time, run this Cleaner : Download@MajorGeeks ( you will be redirected to MajorGeeks where, your download will start in a few seconds)
Right Click to run" As Administrator " . When finished, it will ask to Re-boot. If not, please do so.

Download and run this security program from Kaspersky : TDSSKiller from here : Download@Author's Site

Download TDSSKiller.exe to your desktop (please make sure it's on the Desktop)
Execute TDSSKiller.exe by Right Clicking and from the menu, choose to "Run As Administrator" .
Press Start Scan
If Malicious objects are found, select "Skip" by changing the default Cure selection at the upper right
Once complete, a log will be produced at the root drive which is typically C:\TDSSKiller 2.7.48.0
For example, Start > Computer > C:\TDSSKiller.2.7.48.0_date_time_log.txt
Please, Copy & Paste the log from that scan. I have to ascertain if there are any false positives before we can Cure the infected files.

Run MalwareBytes' (a full scan) Copy & paste the log in your next reply along with other logs that I have requested.



FLASHORN.
Posted Image Posted Image

Posted Image

Eurocom Scorpius: 3840QM-2.8 GHz-Ivy Bridge ; ATI 7970M Crossfire ; Intel SSD 520 series 480GB ; Seagate Momentus XT 750 GB,7200RPM ; 16 GB Corsair Vengeance 9 9 9 24 ; Sound Blaster X-Fi MB2 ; THX True Studio Pro.

Patience is Life.
0

#12 User is offline   bs27 

  • Member
  • PipPip
  • Group: New Member
  • Posts: 18
  • Joined: 26-July 12

Posted 02 August 2012 - 02:52 AM

View PostFlashorn, on 01 August 2012 - 02:21 PM, said:

View Postbs27, on 01 August 2012 - 03:17 AM, said:

I was just online and then mse found that virus again. Here is what is listed in the history.
It says dected item: Trojan:JS/BlacoleRef.BV



Hey bs27 !

OK, let's start from the beginning.

Which browser(s) do you have installed and which one are you using when this happens and Which site are you visiting??

Please answer all questions.

Are all of your browsers up-to-date?

Are all of your pluggins up-to-date?

Which version of Java is installed and how many versions do you see? (go to > Start > Control Panel > Program & Features > search for Java)

In the mean time, run this Cleaner : Download@MajorGeeks ( you will be redirected to MajorGeeks where, your download will start in a few seconds)
Right Click to run" As Administrator " . When finished, it will ask to Re-boot. If not, please do so.

Download and run this security program from Kaspersky : TDSSKiller from here : Download@Author's Site

Download TDSSKiller.exe to your desktop (please make sure it's on the Desktop)
Execute TDSSKiller.exe by Right Clicking and from the menu, choose to "Run As Administrator" .
Press Start Scan
If Malicious objects are found, select "Skip" by changing the default Cure selection at the upper right
Once complete, a log will be produced at the root drive which is typically C:\TDSSKiller 2.7.48.0
For example, Start > Computer > C:\TDSSKiller.2.7.48.0_date_time_log.txt
Please, Copy & Paste the log from that scan. I have to ascertain if there are any false positives before we can Cure the infected files.

Run MalwareBytes' (a full scan) Copy & paste the log in your next reply along with other logs that I have requested.



FLASHORN.

Which browser(s) do you have installed and which one are you using when this happens and Which site are you visiting??

I am using Internet Explorer 9. As for what I am visting when it happens I am not really sure. I will start watching what page I am visiting when it happens now. I most study online and do my banking/credit cards and shopping. I also read news and facebook. Things that I would assume safe. I do let my boys use my computer so it could have been something they have done?.

Are all of your browsers/plugins up-to-date? I am not sure but I think they are. I am always checking for update.

Which version of Java is installed and how many versions do you see? (go to > Start > Control Panel > Program & Features > search for Java
I just recently updated Java 2days ago. The ones listed in the control panel are Java 6 update 22(64bit), Java 6 update 29, Java 7 update 5, and JavaFx 2.1.1

I just wanted to say thanks for helping me. I am lost trying to figure out how to get my computer back running right.

This post has been edited by bs27: 02 August 2012 - 02:56 AM

0

#13 User is offline   bs27 

  • Member
  • PipPip
  • Group: New Member
  • Posts: 18
  • Joined: 26-July 12

Posted 02 August 2012 - 09:36 AM

13:10:41.0639 3296 TDSS rootkit removing tool 2.7.48.0 Jul 24 2012 13:16:32
13:10:42.0341 3296 ============================================================
13:10:42.0341 3296 Current date / time: 2012/08/02 13:10:42.0341
13:10:42.0341 3296 SystemInfo:
13:10:42.0341 3296
13:10:42.0341 3296 OS Version: 6.1.7601 ServicePack: 1.0
13:10:42.0341 3296 Product type: Workstation
13:10:42.0341 3296 ComputerName: SHAWNA-HP
13:10:42.0341 3296 UserName: shawna
13:10:42.0341 3296 Windows directory: C:\Windows
13:10:42.0341 3296 System windows directory: C:\Windows
13:10:42.0341 3296 Running under WOW64
13:10:42.0341 3296 Processor architecture: Intel x64
13:10:42.0341 3296 Number of processors: 2
13:10:42.0341 3296 Page size: 0x1000
13:10:42.0341 3296 Boot type: Normal boot
13:10:42.0341 3296 ============================================================
13:10:47.0364 3296 Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
13:10:47.0426 3296 ============================================================
13:10:47.0426 3296 \Device\Harddisk0\DR0:
13:10:47.0426 3296 MBR partitions:
13:10:47.0426 3296 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x63800
13:10:47.0426 3296 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x64000, BlocksNum 0x1B5D8000
13:10:47.0426 3296 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1B63C000, BlocksNum 0x1B55800
13:10:47.0426 3296 \Device\Harddisk0\DR0\Partition3: MBR, Type 0xC, StartLBA 0x1D191800, BlocksNum 0x33970
13:10:47.0426 3296 ============================================================
13:10:47.0598 3296 C: <-> \Device\Harddisk0\DR0\Partition1
13:10:47.0832 3296 D: <-> \Device\Harddisk0\DR0\Partition2
13:10:47.0910 3296 G: <-> \Device\Harddisk0\DR0\Partition3
13:10:49.0688 3296 ============================================================
13:10:49.0688 3296 Initialize success
13:10:49.0688 3296 ============================================================
13:11:27.0674 3600 ============================================================
13:11:27.0674 3600 Scan started
13:11:27.0674 3600 Mode: Manual;
13:11:27.0674 3600 ============================================================
13:11:31.0387 3600 !SASCORE (7d9d615201a483d6fa99491c2e655a5a) C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
13:11:31.0403 3600 !SASCORE - ok
13:11:31.0793 3600 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
13:11:31.0871 3600 1394ohci - ok
13:11:32.0089 3600 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
13:11:32.0089 3600 ACPI - ok
13:11:32.0214 3600 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
13:11:32.0245 3600 AcpiPmi - ok
13:11:32.0463 3600 AdobeARMservice (62b7936f9036dd6ed36e6a7efa805dc0) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
13:11:32.0463 3600 AdobeARMservice - ok
13:11:32.0791 3600 AdobeFlashPlayerUpdateSvc (6c40d5ed8951ab7b90d08af655224ee4) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
13:11:32.0853 3600 AdobeFlashPlayerUpdateSvc - ok
13:11:32.0963 3600 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\drivers\adp94xx.sys
13:11:33.0087 3600 adp94xx - ok
13:11:33.0212 3600 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\drivers\adpahci.sys
13:11:33.0228 3600 adpahci - ok
13:11:33.0399 3600 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\drivers\adpu320.sys
13:11:33.0431 3600 adpu320 - ok
13:11:33.0493 3600 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\Windows\System32\aelupsvc.dll
13:11:33.0493 3600 AeLookupSvc - ok
13:11:33.0633 3600 AERTFilters (d1e343bc00136ce03c4d403194d06a80) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
13:11:33.0649 3600 AERTFilters - ok
13:11:33.0758 3600 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys
13:11:33.0789 3600 AFD - ok
13:11:33.0899 3600 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
13:11:33.0899 3600 agp440 - ok
13:11:33.0930 3600 ALG (3290d6946b5e30e70414990574883ddb) C:\Windows\System32\alg.exe
13:11:33.0961 3600 ALG - ok
13:11:34.0055 3600 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
13:11:34.0070 3600 aliide - ok
13:11:34.0148 3600 AMD External Events Utility (715b02b892c5ba46471efc8dcd2ae934) C:\Windows\system32\atiesrxx.exe
13:11:34.0179 3600 AMD External Events Utility - ok
13:11:34.0211 3600 AMD FUEL Service - ok
13:11:34.0382 3600 AMD Reservation Manager (dd27f6c3de9bfe50635c721e09edc5dd) C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe
13:11:34.0382 3600 AMD Reservation Manager - ok
13:11:34.0523 3600 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
13:11:34.0538 3600 amdide - ok
13:11:34.0632 3600 amdiox64 (6a2eeb0c4133b20773bb3dd0b7b377b4) C:\Windows\system32\DRIVERS\amdiox64.sys
13:11:34.0647 3600 amdiox64 - ok
13:11:34.0741 3600 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\drivers\amdk8.sys
13:11:34.0803 3600 AmdK8 - ok
13:11:36.0691 3600 amdkmdag (7054d5d028b6ca727d0575192d633fa9) C:\Windows\system32\DRIVERS\atikmdag.sys
13:11:36.0987 3600 amdkmdag - ok
13:11:37.0315 3600 amdkmdap (1cd2bc11467fd5fc7be9827a9f3d8566) C:\Windows\system32\DRIVERS\atikmpag.sys
13:11:37.0331 3600 amdkmdap - ok
13:11:37.0409 3600 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
13:11:37.0409 3600 AmdPPM - ok
13:11:37.0487 3600 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys
13:11:37.0518 3600 amdsata - ok
13:11:37.0565 3600 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\drivers\amdsbs.sys
13:11:37.0611 3600 amdsbs - ok
13:11:37.0627 3600 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys
13:11:37.0643 3600 amdxata - ok
13:11:37.0689 3600 amd_sata (80a508d0c7a21bc13c01d4c671541203) C:\Windows\system32\DRIVERS\amd_sata.sys
13:11:37.0689 3600 amd_sata - ok
13:11:37.0736 3600 amd_xata (2be940f3a632a1a301b22b096bf221f1) C:\Windows\system32\DRIVERS\amd_xata.sys
13:11:37.0736 3600 amd_xata - ok
13:11:37.0830 3600 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
13:11:37.0845 3600 AppID - ok
13:11:37.0908 3600 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\Windows\System32\appidsvc.dll
13:11:37.0939 3600 AppIDSvc - ok
13:11:38.0033 3600 Appinfo (3977d4a871ca0d4f2ed1e7db46829731) C:\Windows\System32\appinfo.dll
13:11:38.0048 3600 Appinfo - ok
13:11:38.0126 3600 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\drivers\arc.sys
13:11:38.0173 3600 arc - ok
13:11:38.0220 3600 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\drivers\arcsas.sys
13:11:38.0235 3600 arcsas - ok
13:11:38.0282 3600 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
13:11:38.0313 3600 AsyncMac - ok
13:11:38.0438 3600 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
13:11:38.0438 3600 atapi - ok
13:11:38.0625 3600 AudioEndpointBuilder (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
13:11:38.0688 3600 AudioEndpointBuilder - ok
13:11:38.0703 3600 AudioSrv (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
13:11:38.0719 3600 AudioSrv - ok
13:11:38.0969 3600 AxInstSV (a6bf31a71b409dfa8cac83159e1e2aff) C:\Windows\System32\AxInstSV.dll
13:11:39.0015 3600 AxInstSV - ok
13:11:39.0203 3600 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\drivers\bxvbda.sys
13:11:39.0281 3600 b06bdrv - ok
13:11:39.0468 3600 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
13:11:39.0499 3600 b57nd60a - ok
13:11:39.0639 3600 BCM43XX (9e84a931dbee0292e38ed672f6293a99) C:\Windows\system32\DRIVERS\bcmwl664.sys
13:11:39.0764 3600 BCM43XX - ok
13:11:39.0811 3600 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\Windows\System32\bdesvc.dll
13:11:39.0842 3600 BDESVC - ok
13:11:39.0983 3600 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
13:11:39.0998 3600 Beep - ok
13:11:40.0217 3600 BFE (82974d6a2fd19445cc5171fc378668a4) C:\Windows\System32\bfe.dll
13:11:40.0232 3600 BFE - ok
13:11:40.0388 3600 BITS (1ea7969e3271cbc59e1730697dc74682) C:\Windows\System32\qmgr.dll
13:11:40.0435 3600 BITS - ok
13:11:40.0669 3600 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\drivers\blbdrive.sys
13:11:40.0685 3600 blbdrive - ok
13:11:40.0950 3600 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
13:11:40.0950 3600 bowser - ok
13:11:41.0043 3600 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\drivers\BrFiltLo.sys
13:11:41.0059 3600 BrFiltLo - ok
13:11:41.0090 3600 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\drivers\BrFiltUp.sys
13:11:41.0090 3600 BrFiltUp - ok
13:11:41.0153 3600 Browser (8ef0d5c41ec907751b8429162b1239ed) C:\Windows\System32\browser.dll
13:11:41.0168 3600 Browser - ok
13:11:41.0215 3600 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
13:11:41.0278 3600 Brserid - ok
13:11:41.0293 3600 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
13:11:41.0356 3600 BrSerWdm - ok
13:11:41.0387 3600 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
13:11:41.0449 3600 BrUsbMdm - ok
13:11:41.0465 3600 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
13:11:41.0480 3600 BrUsbSer - ok
13:11:41.0621 3600 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\drivers\bthmodem.sys
13:11:41.0652 3600 BTHMODEM - ok
13:11:41.0792 3600 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\Windows\system32\bthserv.dll
13:11:41.0824 3600 bthserv - ok
13:11:41.0855 3600 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
13:11:41.0855 3600 cdfs - ok
13:11:41.0995 3600 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\DRIVERS\cdrom.sys
13:11:41.0995 3600 cdrom - ok
13:11:42.0182 3600 CertPropSvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
13:11:42.0198 3600 CertPropSvc - ok
13:11:42.0292 3600 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\drivers\circlass.sys
13:11:42.0323 3600 circlass - ok
13:11:42.0448 3600 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
13:11:42.0463 3600 CLFS - ok
13:11:42.0635 3600 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
13:11:42.0713 3600 clr_optimization_v2.0.50727_32 - ok
13:11:42.0806 3600 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
13:11:42.0822 3600 clr_optimization_v2.0.50727_64 - ok
13:11:42.0962 3600 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
13:11:43.0040 3600 clr_optimization_v4.0.30319_32 - ok
13:11:43.0493 3600 clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
13:11:43.0508 3600 clr_optimization_v4.0.30319_64 - ok
13:11:43.0649 3600 clwvd (50f92c943f18b070f166d019dfab3d9a) C:\Windows\system32\DRIVERS\clwvd.sys
13:11:43.0649 3600 clwvd - ok
13:11:43.0852 3600 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\drivers\CmBatt.sys
13:11:43.0852 3600 CmBatt - ok
13:11:43.0898 3600 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
13:11:43.0898 3600 cmdide - ok
13:11:44.0164 3600 CNG (9ac4f97c2d3e93367e2148ea940cd2cd) C:\Windows\system32\Drivers\cng.sys
13:11:44.0179 3600 CNG - ok
13:11:44.0257 3600 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\drivers\compbatt.sys
13:11:44.0257 3600 Compbatt - ok
13:11:44.0429 3600 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys
13:11:44.0429 3600 CompositeBus - ok
13:11:44.0460 3600 COMSysApp - ok
13:11:44.0538 3600 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\drivers\crcdisk.sys
13:11:44.0538 3600 crcdisk - ok
13:11:44.0678 3600 CryptSvc (4f5414602e2544a4554d95517948b705) C:\Windows\system32\cryptsvc.dll
13:11:44.0710 3600 CryptSvc - ok
13:11:44.0990 3600 DcomLaunch (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
13:11:45.0022 3600 DcomLaunch - ok
13:11:45.0209 3600 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\Windows\System32\defragsvc.dll
13:11:45.0224 3600 defragsvc - ok
13:11:45.0302 3600 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
13:11:45.0302 3600 DfsC - ok
13:11:45.0443 3600 Dhcp (43d808f5d9e1a18e5eeb5ebc83969e4e) C:\Windows\system32\dhcpcore.dll
13:11:45.0443 3600 Dhcp - ok
13:11:45.0474 3600 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
13:11:45.0490 3600 discache - ok
13:11:45.0583 3600 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\drivers\disk.sys
13:11:45.0583 3600 Disk - ok
13:11:45.0739 3600 Dnscache (16835866aaa693c7d7fceba8fff706e4) C:\Windows\System32\dnsrslvr.dll
13:11:45.0755 3600 Dnscache - ok
13:11:46.0004 3600 dot3svc (b1fb3ddca0fdf408750d5843591afbc6) C:\Windows\System32\dot3svc.dll
13:11:46.0145 3600 dot3svc - ok
13:11:46.0270 3600 DPS (b26f4f737e8f9df4f31af6cf31d05820) C:\Windows\system32\dps.dll
13:11:46.0301 3600 DPS - ok
13:11:46.0363 3600 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
13:11:46.0363 3600 drmkaud - ok
13:11:46.0550 3600 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
13:11:46.0582 3600 DXGKrnl - ok
13:11:46.0800 3600 EapHost (e2dda8726da9cb5b2c4000c9018a9633) C:\Windows\System32\eapsvc.dll
13:11:46.0862 3600 EapHost - ok
13:11:50.0170 3600 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\drivers\evbda.sys
13:11:50.0294 3600 ebdrv - ok
13:11:51.0730 3600 EFS (c118a82cd78818c29ab228366ebf81c3) C:\Windows\System32\lsass.exe
13:11:51.0730 3600 EFS - ok
13:11:54.0694 3600 ehRecvr (c4002b6b41975f057d98c439030cea07) C:\Windows\ehome\ehRecvr.exe
13:11:55.0006 3600 ehRecvr - ok
13:11:55.0084 3600 ehSched (4705e8ef9934482c5bb488ce28afc681) C:\Windows\ehome\ehsched.exe
13:11:55.0364 3600 ehSched - ok
13:11:58.0126 3600 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\drivers\elxstor.sys
13:11:58.0172 3600 elxstor - ok
13:11:58.0313 3600 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
13:11:58.0360 3600 ErrDev - ok
13:11:59.0904 3600 EventSystem (4166f82be4d24938977dd1746be9b8a0) C:\Windows\system32\es.dll
13:11:59.0935 3600 EventSystem - ok
13:12:00.0528 3600 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
13:12:00.0590 3600 exfat - ok
13:12:00.0856 3600 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
13:12:00.0856 3600 fastfat - ok
13:12:01.0636 3600 Fax (dbefd454f8318a0ef691fdd2eaab44eb) C:\Windows\system32\fxssvc.exe
13:12:01.0682 3600 Fax - ok
13:12:01.0760 3600 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\drivers\fdc.sys
13:12:01.0776 3600 fdc - ok
13:12:01.0901 3600 fdPHost (0438cab2e03f4fb61455a7956026fe86) C:\Windows\system32\fdPHost.dll
13:12:01.0916 3600 fdPHost - ok
13:12:01.0963 3600 FDResPub (802496cb59a30349f9a6dd22d6947644) C:\Windows\system32\fdrespub.dll
13:12:01.0979 3600 FDResPub - ok
13:12:02.0057 3600 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
13:12:02.0057 3600 FileInfo - ok
13:12:02.0088 3600 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
13:12:02.0088 3600 Filetrace - ok
13:12:02.0119 3600 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\drivers\flpydisk.sys
13:12:02.0135 3600 flpydisk - ok
13:12:02.0462 3600 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
13:12:02.0478 3600 FltMgr - ok
13:12:03.0476 3600 FontCache (5c4cb4086fb83115b153e47add961a0c) C:\Windows\system32\FntCache.dll
13:12:03.0586 3600 FontCache - ok
13:12:03.0866 3600 FontCache3.0.0.0 (a8b7f3818ab65695e3a0bb3279f6dce6) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
13:12:03.0882 3600 FontCache3.0.0.0 - ok
13:12:04.0272 3600 fsbts (d5c492752fccb61bffae361c82f914ac) C:\Windows\system32\Drivers\fsbts.sys
13:12:04.0272 3600 fsbts - ok
13:12:04.0319 3600 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
13:12:04.0334 3600 FsDepends - ok
13:12:04.0475 3600 Fs_Rec (6bd9295cc032dd3077c671fccf579a7b) C:\Windows\system32\drivers\Fs_Rec.sys
13:12:04.0475 3600 Fs_Rec - ok
13:12:04.0615 3600 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
13:12:04.0631 3600 fvevol - ok
13:12:04.0724 3600 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\drivers\gagp30kx.sys
13:12:04.0740 3600 gagp30kx - ok
13:12:05.0239 3600 GameConsoleService (d154305de6090e6e84e525f84bb08a06) C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe
13:12:05.0255 3600 GameConsoleService - ok
13:12:05.0629 3600 gpsvc (277bbc7e1aa1ee957f573a10eca7ef3a) C:\Windows\System32\gpsvc.dll
13:12:05.0660 3600 gpsvc - ok
13:12:05.0707 3600 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
13:12:05.0707 3600 hcw85cir - ok
13:12:05.0926 3600 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys
13:12:05.0941 3600 HdAudAddService - ok
13:12:06.0035 3600 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys
13:12:06.0050 3600 HDAudBus - ok
13:12:06.0160 3600 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\drivers\HidBatt.sys
13:12:06.0191 3600 HidBatt - ok
13:12:06.0316 3600 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\drivers\hidbth.sys
13:12:06.0331 3600 HidBth - ok
13:12:06.0394 3600 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\drivers\hidir.sys
13:12:06.0409 3600 HidIr - ok
13:12:06.0456 3600 hidserv (bd9eb3958f213f96b97b1d897dee006d) C:\Windows\system32\hidserv.dll
13:12:06.0472 3600 hidserv - ok
13:12:06.0596 3600 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys
13:12:06.0612 3600 HidUsb - ok
13:12:06.0643 3600 hkmsvc (387e72e739e15e3d37907a86d9ff98e2) C:\Windows\system32\kmsvc.dll
13:12:06.0659 3600 hkmsvc - ok
13:12:06.0721 3600 HomeGroupListener (efdfb3dd38a4376f93e7985173813abd) C:\Windows\system32\ListSvc.dll
13:12:06.0737 3600 HomeGroupListener - ok
13:12:07.0018 3600 HomeGroupProvider (908acb1f594274965a53926b10c81e89) C:\Windows\system32\provsvc.dll
13:12:07.0033 3600 HomeGroupProvider - ok
13:12:07.0252 3600 HP Support Assistant Service (13bb1114451c63bfb41ba7daa4d70a29) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
13:12:07.0267 3600 HP Support Assistant Service - ok
13:12:07.0501 3600 HP Wireless Assistant Service (c930128c8f8ff03d8f8c42b570920d56) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
13:12:07.0501 3600 HP Wireless Assistant Service - ok
13:12:07.0610 3600 HPClientSvc (3dc11a802353401332d49c3cbfbbe5fc) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
13:12:07.0626 3600 HPClientSvc - ok
13:12:07.0782 3600 HPDrvMntSvc.exe (b19ff523b533a3f198b9239e1749c940) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
13:12:07.0798 3600 HPDrvMntSvc.exe - ok
13:12:08.0203 3600 hpqwmiex (01091b900e15878b4434f9c726c4541d) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
13:12:08.0266 3600 hpqwmiex - ok
13:12:09.0170 3600 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
13:12:09.0170 3600 HpSAMD - ok
13:12:09.0436 3600 HPWMISVC (2bec76bdcd1bc080210325e7b5094834) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
13:12:09.0436 3600 HPWMISVC - ok
13:12:09.0857 3600 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
13:12:09.0872 3600 HTTP - ok
13:12:09.0950 3600 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
13:12:09.0950 3600 hwpolicy - ok
13:12:10.0075 3600 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\DRIVERS\i8042prt.sys
13:12:10.0075 3600 i8042prt - ok
13:12:10.0184 3600 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys
13:12:10.0200 3600 iaStorV - ok
13:12:11.0230 3600 IconMan_R (e4693409d06785477a49fb34afae1b92) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
13:12:12.0493 3600 IconMan_R - ok
13:12:13.0289 3600 idsvc (5988fc40f8db5b0739cd1e3a5d0d78bd) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
13:12:13.0351 3600 idsvc - ok
13:12:13.0944 3600 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\drivers\iirsp.sys
13:12:13.0991 3600 iirsp - ok
13:12:14.0194 3600 IKEEXT (fcd84c381e0140af901e58d48882d26b) C:\Windows\System32\ikeext.dll
13:12:14.0225 3600 IKEEXT - ok
13:12:15.0691 3600 IntcAzAudAddService (336c3a6bf14d5a9af35af07c6b6b29cd) C:\Windows\system32\drivers\RTKVHD64.sys
13:12:15.0722 3600 IntcAzAudAddService - ok
13:12:16.0846 3600 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
13:12:16.0846 3600 intelide - ok
13:12:16.0939 3600 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\drivers\intelppm.sys
13:12:16.0955 3600 intelppm - ok
13:12:17.0095 3600 IPBusEnum (098a91c54546a3b878dad6a7e90a455b) C:\Windows\system32\ipbusenum.dll
13:12:17.0126 3600 IPBusEnum - ok
13:12:17.0220 3600 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
13:12:17.0236 3600 IpFilterDriver - ok
13:12:17.0423 3600 iphlpsvc (a34a587fffd45fa649fba6d03784d257) C:\Windows\System32\iphlpsvc.dll
13:12:17.0454 3600 iphlpsvc - ok
13:12:17.0579 3600 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
13:12:17.0594 3600 IPMIDRV - ok
13:12:17.0735 3600 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
13:12:17.0782 3600 IPNAT - ok
13:12:17.0922 3600 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
13:12:17.0922 3600 IRENUM - ok
13:12:17.0969 3600 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
13:12:17.0969 3600 isapnp - ok
13:12:18.0078 3600 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
13:12:18.0109 3600 iScsiPrt - ok
13:12:18.0203 3600 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\drivers\kbdclass.sys
13:12:18.0203 3600 kbdclass - ok
13:12:18.0421 3600 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\drivers\kbdhid.sys
13:12:18.0468 3600 kbdhid - ok
13:12:18.0562 3600 KeyIso (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
13:12:18.0562 3600 KeyIso - ok
13:12:18.0640 3600 KSecDD (97a7070aea4c058b6418519e869a63b4) C:\Windows\system32\Drivers\ksecdd.sys
13:12:18.0640 3600 KSecDD - ok
13:12:18.0796 3600 KSecPkg (26c43a7c2862447ec59deda188d1da07) C:\Windows\system32\Drivers\ksecpkg.sys
13:12:18.0811 3600 KSecPkg - ok
13:12:18.0874 3600 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
13:12:18.0889 3600 ksthunk - ok
13:12:19.0201 3600 KtmRm (6ab66e16aa859232f64deb66887a8c9c) C:\Windows\system32\msdtckrm.dll
13:12:19.0248 3600 KtmRm - ok
13:12:19.0544 3600 LanmanServer (d9f42719019740baa6d1c6d536cbdaa6) C:\Windows\system32\srvsvc.dll
13:12:19.0544 3600 LanmanServer - ok
13:12:19.0716 3600 LanmanWorkstation (851a1382eed3e3a7476db004f4ee3e1a) C:\Windows\System32\wkssvc.dll
13:12:19.0934 3600 LanmanWorkstation - ok
13:12:20.0059 3600 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
13:12:20.0106 3600 lltdio - ok
13:12:20.0168 3600 lltdsvc (c1185803384ab3feed115f79f109427f) C:\Windows\System32\lltdsvc.dll
13:12:20.0215 3600 lltdsvc - ok
13:12:20.0278 3600 lmhosts (f993a32249b66c9d622ea5592a8b76b8) C:\Windows\System32\lmhsvc.dll
13:12:20.0278 3600 lmhosts - ok
13:12:20.0402 3600 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\drivers\lsi_fc.sys
13:12:20.0465 3600 LSI_FC - ok
13:12:20.0512 3600 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\drivers\lsi_sas.sys
13:12:20.0543 3600 LSI_SAS - ok
13:12:20.0574 3600 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\drivers\lsi_sas2.sys
13:12:20.0590 3600 LSI_SAS2 - ok
13:12:20.0683 3600 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\drivers\lsi_scsi.sys
13:12:20.0730 3600 LSI_SCSI - ok
13:12:20.0839 3600 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
13:12:20.0870 3600 luafv - ok
13:12:21.0042 3600 MBAMProtector (dc8490812a3b72811ae534f423b4c206) C:\Windows\system32\drivers\mbam.sys
13:12:21.0151 3600 MBAMProtector - ok
13:12:22.0009 3600 MBAMService (43683e970f008c93c9429ef428147a54) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
13:12:22.0072 3600 MBAMService - ok
13:12:23.0569 3600 McComponentHostService (485405de203e88b3fe4294a2ea48d7ee) C:\Program Files (x86)\McAfee Security Scan\3.0.271\McCHSvc.exe
13:12:23.0647 3600 McComponentHostService - ok
13:12:23.0881 3600 Mcx2Svc (0be09cd858abf9df6ed259d57a1a1663) C:\Windows\system32\Mcx2Svc.dll
13:12:23.0897 3600 Mcx2Svc - ok
13:12:24.0006 3600 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\drivers\megasas.sys
13:12:24.0022 3600 megasas - ok
13:12:24.0427 3600 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\drivers\MegaSR.sys
13:12:24.0474 3600 MegaSR - ok
13:12:24.0568 3600 MMCSS (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
13:12:24.0583 3600 MMCSS - ok
13:12:24.0614 3600 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
13:12:24.0630 3600 Modem - ok
13:12:24.0692 3600 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
13:12:24.0692 3600 monitor - ok
13:12:24.0770 3600 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys
13:12:24.0802 3600 mouclass - ok
13:12:24.0989 3600 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
13:12:25.0020 3600 mouhid - ok
13:12:25.0129 3600 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys
13:12:25.0129 3600 mountmgr - ok
13:12:25.0410 3600 MpFilter (94c66ededcdb6a126880472f9a704d8e) C:\Windows\system32\DRIVERS\MpFilter.sys
13:12:25.0426 3600 MpFilter - ok
13:12:25.0519 3600 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys
13:12:25.0550 3600 mpio - ok
13:12:25.0722 3600 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
13:12:25.0738 3600 mpsdrv - ok
13:12:26.0065 3600 MpsSvc (54ffc9c8898113ace189d4aa7199d2c1) C:\Windows\system32\mpssvc.dll
13:12:26.0096 3600 MpsSvc - ok
13:12:26.0174 3600 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys
13:12:26.0174 3600 MRxDAV - ok
13:12:26.0299 3600 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys
13:12:26.0315 3600 mrxsmb - ok
13:12:26.0408 3600 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys
13:12:26.0408 3600 mrxsmb10 - ok
13:12:26.0642 3600 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
13:12:26.0658 3600 mrxsmb20 - ok
13:12:26.0767 3600 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys
13:12:26.0767 3600 msahci - ok
13:12:26.0954 3600 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys
13:12:26.0970 3600 msdsm - ok
13:12:27.0110 3600 MSDTC (de0ece52236cfa3ed2dbfc03f28253a8) C:\Windows\System32\msdtc.exe
13:12:27.0126 3600 MSDTC - ok
13:12:27.0235 3600 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
13:12:27.0251 3600 Msfs - ok
13:12:27.0329 3600 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
13:12:27.0344 3600 mshidkmdf - ok
13:12:27.0516 3600 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
13:12:27.0516 3600 msisadrv - ok
13:12:28.0156 3600 MSiSCSI (808e98ff49b155c522e6400953177b08) C:\Windows\system32\iscsiexe.dll
13:12:28.0218 3600 MSiSCSI - ok
13:12:28.0234 3600 msiserver - ok
13:12:28.0358 3600 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
13:12:28.0374 3600 MSKSSRV - ok
13:12:28.0624 3600 MsMpSvc (59faaf2c83c8169ea20f9e335e418907) c:\Program Files\Microsoft Security Client\MsMpEng.exe
13:12:28.0624 3600 MsMpSvc - ok
13:12:28.0686 3600 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
13:12:28.0686 3600 MSPCLOCK - ok
13:12:28.0748 3600 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
13:12:28.0748 3600 MSPQM - ok
13:12:28.0826 3600 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys
13:12:28.0842 3600 MsRPC - ok
13:12:29.0014 3600 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys
13:12:29.0014 3600 mssmbios - ok
13:12:29.0092 3600 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
13:12:29.0092 3600 MSTEE - ok
13:12:29.0216 3600 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\drivers\MTConfig.sys
13:12:29.0263 3600 MTConfig - ok
13:12:29.0388 3600 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
13:12:29.0404 3600 Mup - ok
13:12:29.0903 3600 napagent (582ac6d9873e31dfa28a4547270862dd) C:\Windows\system32\qagentRT.dll
13:12:29.0934 3600 napagent - ok
13:12:30.0355 3600 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
13:12:30.0355 3600 NativeWifiP - ok
13:12:30.0605 3600 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys
13:12:30.0620 3600 NDIS - ok
13:12:30.0745 3600 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
13:12:30.0745 3600 NdisCap - ok
13:12:30.0808 3600 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
13:12:30.0808 3600 NdisTapi - ok
13:12:30.0823 3600 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys
13:12:30.0870 3600 Ndisuio - ok
13:12:31.0042 3600 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys
13:12:31.0042 3600 NdisWan - ok
13:12:31.0135 3600 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys
13:12:31.0135 3600 NDProxy - ok
13:12:31.0213 3600 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
13:12:31.0213 3600 NetBIOS - ok
13:12:31.0244 3600 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys
13:12:31.0260 3600 NetBT - ok
13:12:31.0291 3600 Netlogon (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
13:12:31.0291 3600 Netlogon - ok
13:12:31.0588 3600 Netman (847d3ae376c0817161a14a82c8922a9e) C:\Windows\System32\netman.dll
13:12:31.0588 3600 Netman - ok
13:12:31.0681 3600 netprofm (5f28111c648f1e24f7dbc87cdeb091b8) C:\Windows\System32\netprofm.dll
13:12:31.0712 3600 netprofm - ok
13:12:31.0868 3600 NetTcpPortSharing (3e5a36127e201ddf663176b66828fafe) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
13:12:31.0915 3600 NetTcpPortSharing - ok
13:12:32.0024 3600 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\drivers\nfrd960.sys
13:12:32.0040 3600 nfrd960 - ok
13:12:32.0118 3600 NisDrv (91b4e0273d2f6c24ef845f2b41311289) C:\Windows\system32\DRIVERS\NisDrvWFP.sys
13:12:32.0134 3600 NisDrv - ok
13:12:32.0274 3600 NisSrv (10a43829a9e606af3eef25a1c1665923) c:\Program Files\Microsoft Security Client\NisSrv.exe
13:12:32.0321 3600 NisSrv - ok
13:12:32.0508 3600 NlaSvc (1ee99a89cc788ada662441d1e9830529) C:\Windows\System32\nlasvc.dll
13:12:32.0539 3600 NlaSvc - ok
13:12:32.0602 3600 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
13:12:32.0633 3600 Npfs - ok
13:12:32.0742 3600 nsi (d54bfdf3e0c953f823b3d0bfe4732528) C:\Windows\system32\nsisvc.dll
13:12:32.0758 3600 nsi - ok
13:12:32.0789 3600 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
13:12:32.0789 3600 nsiproxy - ok
13:12:33.0070 3600 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys
13:12:33.0116 3600 Ntfs - ok
13:12:33.0319 3600 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
13:12:33.0366 3600 Null - ok
13:12:33.0506 3600 NVENETFD (a85b4f2ef3a7304a5399ef0526423040) C:\Windows\system32\DRIVERS\nvm62x64.sys
13:12:33.0522 3600 NVENETFD - ok
13:12:33.0631 3600 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys
13:12:33.0662 3600 nvraid - ok
13:12:33.0850 3600 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys
13:12:33.0865 3600 nvstor - ok
13:12:34.0068 3600 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
13:12:34.0068 3600 nv_agp - ok
13:12:34.0162 3600 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
13:12:34.0162 3600 ohci1394 - ok
13:12:34.0318 3600 p2pimsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
13:12:34.0333 3600 p2pimsvc - ok
13:12:34.0708 3600 p2psvc (927463ecb02179f88e4b9a17568c63c3) C:\Windows\system32\p2psvc.dll
13:12:34.0817 3600 p2psvc - ok
13:12:35.0020 3600 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\drivers\parport.sys
13:12:35.0035 3600 Parport - ok
13:12:35.0285 3600 partmgr (e9766131eeade40a27dc27d2d68fba9c) C:\Windows\system32\drivers\partmgr.sys
13:12:35.0285 3600 partmgr - ok
13:12:35.0456 3600 PcaSvc (3aeaa8b561e63452c655dc0584922257) C:\Windows\System32\pcasvc.dll
13:12:35.0472 3600 PcaSvc - ok
13:12:35.0768 3600 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys
13:12:35.0768 3600 pci - ok
13:12:35.0815 3600 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
13:12:35.0831 3600 pciide - ok
13:12:35.0924 3600 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\drivers\pcmcia.sys
13:12:35.0940 3600 pcmcia - ok
13:12:35.0987 3600 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
13:12:35.0987 3600 pcw - ok
13:12:36.0283 3600 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
13:12:36.0392 3600 PEAUTH - ok
13:12:36.0580 3600 PerfHost (e495e408c93141e8fc72dc0c6046ddfa) C:\Windows\SysWow64\perfhost.exe
13:12:36.0626 3600 PerfHost - ok
13:12:37.0344 3600 pla (c7cf6a6e137463219e1259e3f0f0dd6c) C:\Windows\system32\pla.dll
13:12:37.0453 3600 pla - ok
13:12:37.0734 3600 PlugPlay (25fbdef06c4d92815b353f6e792c8129) C:\Windows\system32\umpnpmgr.dll
13:12:37.0796 3600 PlugPlay - ok
13:12:37.0921 3600 PNRPAutoReg (7195581cec9bb7d12abe54036acc2e38) C:\Windows\system32\pnrpauto.dll
13:12:37.0937 3600 PNRPAutoReg - ok
13:12:38.0062 3600 PNRPsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
13:12:38.0062 3600 PNRPsvc - ok
13:12:38.0420 3600 PolicyAgent (4f15d75adf6156bf56eced6d4a55c389) C:\Windows\System32\ipsecsvc.dll
13:12:38.0483 3600 PolicyAgent - ok
13:12:38.0561 3600 Power (6ba9d927dded70bd1a9caded45f8b184) C:\Windows\system32\umpo.dll
13:12:38.0576 3600 Power - ok
13:12:39.0169 3600 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys
13:12:39.0169 3600 PptpMiniport - ok
13:12:39.0294 3600 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\drivers\processr.sys
13:12:39.0325 3600 Processor - ok
13:12:39.0512 3600 ProfSvc (53e83f1f6cf9d62f32801cf66d8352a8) C:\Windows\system32\profsvc.dll
13:12:39.0528 3600 ProfSvc - ok
13:12:39.0668 3600 Prot6Flt - ok
13:12:39.0731 3600 ProtectedStorage (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
13:12:39.0731 3600 ProtectedStorage - ok
13:12:40.0121 3600 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys
13:12:40.0121 3600 Psched - ok
13:12:40.0651 3600 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\drivers\ql2300.sys
13:12:40.0729 3600 ql2300 - ok
13:12:41.0228 3600 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\drivers\ql40xx.sys
13:12:41.0244 3600 ql40xx - ok
13:12:41.0618 3600 QWAVE (906191634e99aea92c4816150bda3732) C:\Windows\system32\qwave.dll
13:12:41.0650 3600 QWAVE - ok
13:12:41.0681 3600 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
13:12:41.0681 3600 QWAVEdrv - ok
13:12:41.0728 3600 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
13:12:41.0743 3600 RasAcd - ok
13:12:41.0806 3600 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
13:12:41.0806 3600 RasAgileVpn - ok
13:12:41.0915 3600 RasAuto (8f26510c5383b8dbe976de1cd00fc8c7) C:\Windows\System32\rasauto.dll
13:12:41.0930 3600 RasAuto - ok
13:12:41.0993 3600 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys
13:12:42.0008 3600 Rasl2tp - ok
13:12:42.0086 3600 RasMan (ee867a0870fc9e4972ba9eaad35651e2) C:\Windows\System32\rasmans.dll
13:12:42.0118 3600 RasMan - ok
13:12:42.0149 3600 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
13:12:42.0149 3600 RasPppoe - ok
13:12:42.0367 3600 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
13:12:42.0367 3600 RasSstp - ok
13:12:42.0664 3600 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys
13:12:42.0664 3600 rdbss - ok
13:12:42.0773 3600 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\drivers\rdpbus.sys
13:12:42.0788 3600 rdpbus - ok
13:12:42.0820 3600 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
13:12:42.0820 3600 RDPCDD - ok
13:12:42.0898 3600 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
13:12:42.0898 3600 RDPENCDD - ok
13:12:42.0929 3600 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
13:12:42.0929 3600 RDPREFMP - ok
13:12:43.0022 3600 RDPWD (e61608aa35e98999af9aaeeea6114b0a) C:\Windows\system32\drivers\RDPWD.sys
13:12:43.0038 3600 RDPWD - ok
13:12:43.0194 3600 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys
13:12:43.0210 3600 rdyboost - ok
13:12:43.0397 3600 RemoteAccess (254fb7a22d74e5511c73a3f6d802f192) C:\Windows\System32\mprdim.dll
13:12:43.0412 3600 RemoteAccess - ok
13:12:43.0600 3600 RemoteRegistry (e4d94f24081440b5fc5aa556c7c62702) C:\Windows\system32\regsvc.dll
13:12:43.0600 3600 RemoteRegistry - ok
13:12:43.0927 3600 RoxioNow Service (085d18c71ab2611a3d61528132b6501e) C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe
13:12:43.0958 3600 RoxioNow Service - ok
13:12:44.0068 3600 RpcEptMapper (e4dc58cf7b3ea515ae917ff0d402a7bb) C:\Windows\System32\RpcEpMap.dll
13:12:44.0083 3600 RpcEptMapper - ok
13:12:44.0114 3600 RpcLocator (d5ba242d4cf8e384db90e6a8ed850b8c) C:\Windows\system32\locator.exe
13:12:44.0130 3600 RpcLocator - ok
13:12:44.0442 3600 RpcSs (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
13:12:44.0458 3600 RpcSs - ok
13:12:44.0660 3600 RSPCIESTOR (546d7f426776090b90ef5f195b6ae662) C:\Windows\system32\DRIVERS\RtsPStor.sys
13:12:44.0660 3600 RSPCIESTOR - ok
13:12:44.0832 3600 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
13:12:44.0848 3600 rspndr - ok
13:12:45.0004 3600 RTL8167 (ee082e06a82ff630351d1e0ebbd3d8d0) C:\Windows\system32\DRIVERS\Rt64win7.sys
13:12:45.0004 3600 RTL8167 - ok
13:12:45.0643 3600 RTL8192Ce (508d997a5e9f400fade6c85251bf13df) C:\Windows\system32\DRIVERS\rtl8192Ce.sys
13:12:45.0659 3600 RTL8192Ce - ok
13:12:45.0815 3600 SamSs (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
13:12:45.0815 3600 SamSs - ok
13:12:46.0127 3600 SASDIFSV (3289766038db2cb14d07dc84392138d5) C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS
13:12:46.0127 3600 SASDIFSV - ok
13:12:46.0267 3600 SASKUTIL (58a38e75f3316a83c23df6173d41f2b5) C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS
13:12:46.0267 3600 SASKUTIL - ok
13:12:46.0345 3600 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys
13:12:46.0392 3600 sbp2port - ok
13:12:46.0626 3600 SCardSvr (9b7395789e3791a3b6d000fe6f8b131e) C:\Windows\System32\SCardSvr.dll
13:12:46.0626 3600 SCardSvr - ok
13:12:46.0657 3600 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys
13:12:46.0673 3600 scfilter - ok
13:12:46.0985 3600 Schedule (262f6592c3299c005fd6bec90fc4463a) C:\Windows\system32\schedsvc.dll
13:12:47.0032 3600 Schedule - ok
13:12:47.0172 3600 SCPolicySvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
13:12:47.0172 3600 SCPolicySvc - ok
13:12:47.0328 3600 sdbus (111e0ebc0ad79cb0fa014b907b231cf0) C:\Windows\system32\DRIVERS\sdbus.sys
13:12:47.0328 3600 sdbus - ok
13:12:47.0484 3600 SDRSVC (6ea4234dc55346e0709560fe7c2c1972) C:\Windows\System32\SDRSVC.dll
13:12:47.0500 3600 SDRSVC - ok
13:12:47.0640 3600 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
13:12:47.0656 3600 secdrv - ok
13:12:47.0687 3600 seclogon (bc617a4e1b4fa8df523a061739a0bd87) C:\Windows\system32\seclogon.dll
13:12:47.0687 3600 seclogon - ok
13:12:47.0874 3600 SENS (c32ab8fa018ef34c0f113bd501436d21) C:\Windows\System32\sens.dll
13:12:47.0905 3600 SENS - ok
13:12:48.0014 3600 SensrSvc (0336cffafaab87a11541f1cf1594b2b2) C:\Windows\system32\sensrsvc.dll
13:12:48.0030 3600 SensrSvc - ok
13:12:48.0108 3600 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\drivers\serenum.sys
13:12:48.0124 3600 Serenum - ok
13:12:48.0186 3600 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\drivers\serial.sys
13:12:48.0186 3600 Serial - ok
13:12:48.0342 3600 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\drivers\sermouse.sys
13:12:48.0373 3600 sermouse - ok
13:12:48.0576 3600 SessionEnv (0b6231bf38174a1628c4ac812cc75804) C:\Windows\system32\sessenv.dll
13:12:48.0592 3600 SessionEnv - ok
13:12:48.0732 3600 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
13:12:48.0748 3600 sffdisk - ok
13:12:48.0779 3600 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
13:12:48.0779 3600 sffp_mmc - ok
13:12:48.0810 3600 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys
13:12:48.0810 3600 sffp_sd - ok
13:12:48.0872 3600 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\drivers\sfloppy.sys
13:12:48.0888 3600 sfloppy - ok
13:12:49.0138 3600 SharedAccess (b95f6501a2f8b2e78c697fec401970ce) C:\Windows\System32\ipnathlp.dll
13:12:49.0169 3600 SharedAccess - ok
13:12:49.0309 3600 ShellHWDetection (aaf932b4011d14052955d4b212a4da8d) C:\Windows\System32\shsvcs.dll
13:12:49.0372 3600 ShellHWDetection - ok
13:12:49.0528 3600 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\drivers\SiSRaid2.sys
13:12:49.0543 3600 SiSRaid2 - ok
13:12:49.0621 3600 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\drivers\sisraid4.sys
13:12:49.0621 3600 SiSRaid4 - ok
13:12:49.0871 3600 SkypeUpdate (ddaa5f4a6b958fc313ebd02dd925752f) C:\Program Files (x86)\Skype\Updater\Updater.exe
13:12:49.0871 3600 SkypeUpdate - ok
13:12:50.0011 3600 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
13:12:50.0011 3600 Smb - ok
13:12:50.0183 3600 SNMPTRAP (6313f223e817cc09aa41811daa7f541d) C:\Windows\System32\snmptrap.exe
13:12:50.0230 3600 SNMPTRAP - ok
13:12:50.0276 3600 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
13:12:50.0276 3600 spldr - ok
13:12:50.0432 3600 Spooler (b96c17b5dc1424d56eea3a99e97428cd) C:\Windows\System32\spoolsv.exe
13:12:50.0464 3600 Spooler - ok
13:12:51.0290 3600 sppsvc (e17e0188bb90fae42d83e98707efa59c) C:\Windows\system32\sppsvc.exe
13:12:51.0446 3600 sppsvc - ok
13:12:51.0836 3600 sppuinotify (93d7d61317f3d4bc4f4e9f8a96a7de45) C:\Windows\system32\sppuinotify.dll
13:12:51.0836 3600 sppuinotify - ok
13:12:51.0946 3600 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys
13:12:51.0961 3600 srv - ok
13:12:52.0195 3600 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys
13:12:52.0211 3600 srv2 - ok
13:12:52.0382 3600 SrvHsfHDA (0c4540311e11664b245a263e1154cef8) C:\Windows\system32\DRIVERS\VSTAZL6.SYS
13:12:52.0382 3600 SrvHsfHDA - ok
13:12:53.0490 3600 SrvHsfV92 (02071d207a9858fbe3a48cbfd59c4a04) C:\Windows\system32\DRIVERS\VSTDPV6.SYS
13:12:53.0552 3600 SrvHsfV92 - ok
13:12:54.0005 3600 SrvHsfWinac (18e40c245dbfaf36fd0134a7ef2df396) C:\Windows\system32\DRIVERS\VSTCNXT6.SYS
13:12:54.0020 3600 SrvHsfWinac - ok
13:12:54.0176 3600 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys
13:12:54.0176 3600 srvnet - ok
13:12:54.0332 3600 SSDPSRV (51b52fbd583cde8aa9ba62b8b4298f33) C:\Windows\System32\ssdpsrv.dll
13:12:54.0348 3600 SSDPSRV - ok
13:12:54.0504 3600 SstpSvc (ab7aebf58dad8daab7a6c45e6a8885cb) C:\Windows\system32\sstpsvc.dll
13:12:54.0504 3600 SstpSvc - ok
13:12:54.0551 3600 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\drivers\stexstor.sys
13:12:54.0566 3600 stexstor - ok
13:12:54.0707 3600 stisvc (8dd52e8e6128f4b2da92ce27402871c1) C:\Windows\System32\wiaservc.dll
13:12:54.0738 3600 stisvc - ok
13:12:54.0832 3600 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys
13:12:54.0832 3600 swenum - ok
13:12:54.0894 3600 swprv (e08e46fdd841b7184194011ca1955a0b) C:\Windows\System32\swprv.dll
13:12:54.0988 3600 swprv - ok
13:12:55.0097 3600 SynTP (ac3cc98b1bdb6540021d3ffb105ac2b9) C:\Windows\system32\DRIVERS\SynTP.sys
13:12:55.0112 3600 SynTP - ok
13:12:56.0002 3600 SysMain (bf9ccc0bf39b418c8d0ae8b05cf95b7d) C:\Windows\system32\sysmain.dll
13:12:56.0095 3600 SysMain - ok
13:12:56.0860 3600 TabletInputService (e3c61fd7b7c2557e1f1b0b4cec713585) C:\Windows\System32\TabSvc.dll
13:12:56.0891 3600 TabletInputService - ok
13:12:57.0062 3600 TapiSrv (40f0849f65d13ee87b9a9ae3c1dd6823) C:\Windows\System32\tapisrv.dll
13:12:57.0109 3600 TapiSrv - ok
13:12:57.0140 3600 TBS (1be03ac720f4d302ea01d40f588162f6) C:\Windows\System32\tbssvc.dll
13:12:57.0156 3600 TBS - ok
13:12:57.0889 3600 Tcpip (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\drivers\tcpip.sys
13:12:57.0967 3600 Tcpip - ok
13:12:58.0576 3600 TCPIP6 (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\DRIVERS\tcpip.sys
13:12:58.0607 3600 TCPIP6 - ok
13:12:58.0794 3600 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys
13:12:58.0794 3600 tcpipreg - ok
13:12:58.0872 3600 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
13:12:58.0872 3600 TDPIPE - ok
13:12:58.0903 3600 TDTCP (51c5eceb1cdee2468a1748be550cfbc8) C:\Windows\system32\drivers\tdtcp.sys
13:12:58.0919 3600 TDTCP - ok
13:12:58.0950 3600 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys
13:12:58.0950 3600 tdx - ok
13:12:58.0997 3600 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys
13:12:58.0997 3600 TermDD - ok
13:12:59.0106 3600 TermService (2e648163254233755035b46dd7b89123) C:\Windows\System32\termsrv.dll
13:12:59.0153 3600 TermService - ok
13:12:59.0200 3600 Themes (f0344071948d1a1fa732231785a0664c) C:\Windows\system32\themeservice.dll
13:12:59.0200 3600 Themes - ok
13:12:59.0262 3600 THREADORDER (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
13:12:59.0262 3600 THREADORDER - ok
13:12:59.0293 3600 TrkWks (7e7afd841694f6ac397e99d75cead49d) C:\Windows\System32\trkwks.dll
13:12:59.0324 3600 TrkWks - ok
13:12:59.0402 3600 TrustedInstaller (773212b2aaa24c1e31f10246b15b276c) C:\Windows\servicing\TrustedInstaller.exe
13:12:59.0543 3600 TrustedInstaller - ok
13:12:59.0605 3600 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys
13:12:59.0621 3600 tssecsrv - ok
13:12:59.0683 3600 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
13:12:59.0699 3600 TsUsbFlt - ok
13:12:59.0730 3600 TsUsbGD (9cc2ccae8a84820eaecb886d477cbcb8) C:\Windows\system32\drivers\TsUsbGD.sys
13:12:59.0730 3600 TsUsbGD - ok
13:12:59.0824 3600 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys
13:12:59.0839 3600 tunnel - ok
13:12:59.0870 3600 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\drivers\uagp35.sys
13:12:59.0886 3600 uagp35 - ok
13:12:59.0933 3600 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys
13:12:59.0964 3600 udfs - ok
13:13:00.0026 3600 UI0Detect (3cbdec8d06b9968aba702eba076364a1) C:\Windows\system32\UI0Detect.exe
13:13:00.0042 3600 UI0Detect - ok
13:13:00.0089 3600 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
13:13:00.0089 3600 uliagpkx - ok
13:13:00.0167 3600 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\DRIVERS\umbus.sys
13:13:00.0167 3600 umbus - ok
13:13:00.0198 3600 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\drivers\umpass.sys
13:13:00.0198 3600 UmPass - ok
13:13:00.0245 3600 upnphost (d47ec6a8e81633dd18d2436b19baf6de) C:\Windows\System32\upnphost.dll
13:13:00.0276 3600 upnphost - ok
13:13:00.0385 3600 USBAAPL64 (aa33fc47ed58c34e6e9261e4f850b7eb) C:\Windows\system32\Drivers\usbaapl64.sys
13:13:00.0463 3600 USBAAPL64 - ok
13:13:00.0526 3600 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys
13:13:00.0526 3600 usbccgp - ok
13:13:00.0682 3600 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
13:13:00.0697 3600 usbcir - ok
13:13:00.0744 3600 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\DRIVERS\usbehci.sys
13:13:00.0744 3600 usbehci - ok
13:13:00.0775 3600 usbfilter (76e2ffad301490ba27b947c6507752fb) C:\Windows\system32\DRIVERS\usbfilter.sys
13:13:00.0775 3600 usbfilter - ok
13:13:00.0884 3600 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys
13:13:00.0884 3600 usbhub - ok
13:13:00.0931 3600 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\DRIVERS\usbohci.sys
13:13:00.0931 3600 usbohci - ok
13:13:00.0978 3600 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys
13:13:00.0994 3600 usbprint - ok
13:13:01.0150 3600 usbscan (aaa2513c8aed8b54b189fd0c6b1634c0) C:\Windows\system32\DRIVERS\usbscan.sys
13:13:01.0150 3600 usbscan - ok
13:13:01.0196 3600 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\DRIVERS\USBSTOR.SYS
13:13:01.0228 3600 USBSTOR - ok
13:13:01.0243 3600 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\drivers\usbuhci.sys
13:13:01.0259 3600 usbuhci - ok
13:13:01.0337 3600 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\system32\Drivers\usbvideo.sys
13:13:01.0352 3600 usbvideo - ok
13:13:01.0399 3600 UxSms (edbb23cbcf2cdf727d64ff9b51a6070e) C:\Windows\System32\uxsms.dll
13:13:01.0415 3600 UxSms - ok
13:13:01.0446 3600 VaultSvc (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
13:13:01.0446 3600 VaultSvc - ok
13:13:01.0493 3600 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
13:13:01.0493 3600 vdrvroot - ok
13:13:01.0586 3600 vds (8d6b481601d01a456e75c3210f1830be) C:\Windows\System32\vds.exe
13:13:01.0633 3600 vds - ok
13:13:01.0711 3600 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
13:13:01.0727 3600 vga - ok
13:13:01.0758 3600 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
13:13:01.0758 3600 VgaSave - ok
13:13:01.0820 3600 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys
13:13:01.0852 3600 vhdmp - ok
13:13:01.0898 3600 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
13:13:01.0898 3600 viaide - ok
13:13:01.0961 3600 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys
13:13:01.0961 3600 volmgr - ok
13:13:02.0039 3600 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys
13:13:02.0054 3600 volmgrx - ok
13:13:02.0117 3600 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys
13:13:02.0117 3600 volsnap - ok
13:13:02.0179 3600 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\drivers\vsmraid.sys
13:13:02.0210 3600 vsmraid - ok
13:13:02.0398 3600 VSS (b60ba0bc31b0cb414593e169f6f21cc2) C:\Windows\system32\vssvc.exe
13:13:02.0476 3600 VSS - ok
13:13:02.0663 3600 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\system32\DRIVERS\vwifibus.sys
13:13:02.0663 3600 vwifibus - ok
13:13:02.0788 3600 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys
13:13:02.0788 3600 vwififlt - ok
13:13:02.0819 3600 vwifimp (6a638fc4bfddc4d9b186c28c91bd1a01) C:\Windows\system32\DRIVERS\vwifimp.sys
13:13:02.0819 3600 vwifimp - ok
13:13:02.0897 3600 W32Time (1c9d80cc3849b3788048078c26486e1a) C:\Windows\system32\w32time.dll
13:13:02.0944 3600 W32Time - ok
13:13:03.0006 3600 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\drivers\wacompen.sys
13:13:03.0006 3600 WacomPen - ok
13:13:03.0100 3600 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
13:13:03.0100 3600 WANARP - ok
13:13:03.0131 3600 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
13:13:03.0131 3600 Wanarpv6 - ok
13:13:03.0349 3600 WatAdminSvc (3cec96de223e49eaae3651fcf8faea6c) C:\Windows\system32\Wat\WatAdminSvc.exe
13:13:03.0412 3600 WatAdminSvc - ok
13:13:03.0692 3600 wbengine (78f4e7f5c56cb9716238eb57da4b6a75) C:\Windows\system32\wbengine.exe
13:13:03.0755 3600 wbengine - ok
13:13:03.0926 3600 WbioSrvc (3aa101e8edab2db4131333f4325c76a3) C:\Windows\System32\wbiosrvc.dll
13:13:03.0942 3600 WbioSrvc - ok
13:13:04.0020 3600 wcncsvc (7368a2afd46e5a4481d1de9d14848edd) C:\Windows\System32\wcncsvc.dll
13:13:04.0036 3600 wcncsvc - ok
13:13:04.0082 3600 WcsPlugInService (20f7441334b18cee52027661df4a6129) C:\Windows\System32\WcsPlugInService.dll
13:13:04.0098 3600 WcsPlugInService - ok
13:13:04.0145 3600 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\drivers\wd.sys
13:13:04.0160 3600 Wd - ok
13:13:04.0254 3600 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
13:13:04.0270 3600 Wdf01000 - ok
13:13:04.0301 3600 WdiServiceHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
13:13:04.0316 3600 WdiServiceHost - ok
13:13:04.0332 3600 WdiSystemHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
13:13:04.0348 3600 WdiSystemHost - ok
13:13:04.0394 3600 WebClient (3db6d04e1c64272f8b14eb8bc4616280) C:\Windows\System32\webclnt.dll
13:13:04.0426 3600 WebClient - ok
13:13:04.0472 3600 Wecsvc (c749025a679c5103e575e3b48e092c43) C:\Windows\system32\wecsvc.dll
13:13:04.0519 3600 Wecsvc - ok
13:13:04.0566 3600 wercplsupport (7e591867422dc788b9e5bd337a669a08) C:\Windows\System32\wercplsupport.dll
13:13:04.0582 3600 wercplsupport - ok
13:13:04.0691 3600 WerSvc (6d137963730144698cbd10f202e9f251) C:\Windows\System32\WerSvc.dll
13:13:04.0722 3600 WerSvc - ok
13:13:04.0816 3600 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
13:13:04.0816 3600 WfpLwf - ok
13:13:04.0847 3600 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
13:13:04.0862 3600 WIMMount - ok
13:13:04.0878 3600 WinDefend - ok
13:13:04.0909 3600 WinHttpAutoProxySvc - ok
13:13:05.0003 3600 Winmgmt (19b07e7e8915d701225da41cb3877306) C:\Windows\system32\wbem\WMIsvc.dll
13:13:05.0018 3600 Winmgmt - ok
13:13:05.0237 3600 WinRM (bcb1310604aa415c4508708975b3931e) C:\Windows\system32\WsmSvc.dll
13:13:05.0330 3600 WinRM - ok
13:13:05.0627 3600 WinUsb (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUsb.sys
13:13:05.0642 3600 WinUsb - ok
13:13:05.0752 3600 Wlansvc (4fada86e62f18a1b2f42ba18ae24e6aa) C:\Windows\System32\wlansvc.dll
13:13:05.0830 3600 Wlansvc - ok
13:13:05.0939 3600 wlcrasvc (06c8fa1cf39de6a735b54d906ba791c6) C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
13:13:05.0954 3600 wlcrasvc - ok
13:13:06.0282 3600 wlidsvc (2bacd71123f42cea603f4e205e1ae337) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
13:13:06.0344 3600 wlidsvc - ok
13:13:06.0547 3600 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys
13:13:06.0563 3600 WmiAcpi - ok
13:13:06.0656 3600 wmiApSrv (38b84c94c5a8af291adfea478ae54f93) C:\Windows\system32\wbem\WmiApSrv.exe
13:13:06.0750 3600 wmiApSrv - ok
13:13:06.0797 3600 WMPNetworkSvc - ok
13:13:06.0844 3600 WPCSvc (96c6e7100d724c69fcf9e7bf590d1dca) C:\Windows\System32\wpcsvc.dll
13:13:06.0844 3600 WPCSvc - ok
13:13:06.0875 3600 WPDBusEnum (93221146d4ebbf314c29b23cd6cc391d) C:\Windows\system32\wpdbusenum.dll
13:13:06.0906 3600 WPDBusEnum - ok
13:13:06.0937 3600 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
13:13:06.0953 3600 ws2ifsl - ok
13:13:06.0984 3600 wscsvc (e8b1fe6669397d1772d8196df0e57a9e) C:\Windows\System32\wscsvc.dll
13:13:07.0000 3600 wscsvc - ok
13:13:07.0015 3600 WSearch - ok
13:13:07.0343 3600 wuauserv (d9ef901dca379cfe914e9fa13b73b4c4) C:\Windows\system32\wuaueng.dll
13:13:07.0452 3600 wuauserv - ok
13:13:07.0608 3600 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys
13:13:07.0624 3600 WudfPf - ok
13:13:07.0702 3600 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys
13:13:07.0733 3600 WUDFRd - ok
13:13:07.0764 3600 wudfsvc (7a95c95b6c4cf292d689106bcae49543) C:\Windows\System32\WUDFSvc.dll
13:13:07.0764 3600 wudfsvc - ok
13:13:07.0858 3600 WwanSvc (9a3452b3c2a46c073166c5cf49fad1ae) C:\Windows\System32\wwansvc.dll
13:13:07.0889 3600 WwanSvc - ok
13:13:08.0060 3600 YahooAUService (dd0042f0c3b606a6a8b92d49afb18ad6) C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
13:13:08.0092 3600 YahooAUService - ok
13:13:08.0170 3600 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
13:13:08.0638 3600 \Device\Harddisk0\DR0 - ok
13:13:08.0653 3600 Boot (0x1200) (4a38cdf4bb07a578fd56815a0133bc3d) \Device\Harddisk0\DR0\Partition0
13:13:08.0653 3600 \Device\Harddisk0\DR0\Partition0 - ok
13:13:08.0700 3600 Boot (0x1200) (d7d88bd8b0363f43101cce56ec09d52e) \Device\Harddisk0\DR0\Partition1
13:13:08.0716 3600 \Device\Harddisk0\DR0\Partition1 - ok
13:13:08.0778 3600 Boot (0x1200) (97bb9c864c6cb618d4078f36f93b620e) \Device\Harddisk0\DR0\Partition2
13:13:08.0778 3600 \Device\Harddisk0\DR0\Partition2 - ok
13:13:08.0825 3600 Boot (0x1200) (66007fd0fb7ccc43a8fbbc6cc3b89d8d) \Device\Harddisk0\DR0\Partition3
13:13:08.0825 3600 \Device\Harddisk0\DR0\Partition3 - ok
13:13:08.0825 3600 ============================================================
13:13:08.0825 3600 Scan finished
13:13:08.0825 3600 ============================================================
13:13:08.0856 4024 Detected object count: 0
13:13:08.0856 4024 Actual detected object count: 0
0

#14 User is offline   Flashorn 

  • Expert
  • PipPipPipPipPipPip
  • Group: Members
  • Posts: 4,362
  • Joined: 19-May 07
  • Location:Canada

Posted 02 August 2012 - 05:47 PM

Hey bs27 !

Your welcome.

Please read ALL of my post before doing any work. If there is a step you don't understand, ask .

Now, it seems there's no rootkits installed and that's good news.

I still don't have the log from MalwarBytes'. Please post.

There's too many Java versions installed. Please go to Programs & Features to uninstall all but the latest one (7 update5)

Next, go to Start > Control Panel > Java. Click on the icon.

If you don't have all available options to view folders then, upper right hand side, click on "View By". Choose "Large Icons".
This is the old way of using Control Panel. In this list of folders, look for Java. Click on the icon. A screen should appear. Click on the "Settings" button (bottom)
another screen will appear. Uncheck "Keep Temporary files on my computer". The rest of the screen should go dull. No other options to choose from.
Bottom button. Delete Files, click on it. One last screen will appear. IF the option to tick all three boxes, do so then, click Delete Files. Now, click OK on the first two screens
and Apply and OK on the last one.

Run CCleaner to clean out all remaining temp files from these uninstalls.
Download from here if you don't have it : Piriform.com. USE THE BROOM OPTION ON THE LEFT ONLY.


Once this is done, could you perform another scan for me please.

Please download aswMBR.exe and save it to your desktop.

aswMBR.exe

Right click to "Run as Administrator" aswMBR.exe to start the tool.

Allow it to download the definitions from the internet.

Click Scan ( this could take some time)

* Upon completion of the scan, click Save log and save it to your "desktop", and post that log in your next reply for review. Note - do NOT attempt any Fix yet.

Please post those logs in your next reply.

What other problems are you experiencing with this PC ?

Please be as specific as possible as we can only go by your description of the problem(s)

Also, could you change the passwords to your most sensitive sites (Bank , email(s)...)


FLASHORN.



This post has been edited by Flashorn: 02 August 2012 - 05:51 PM

Posted Image Posted Image

Posted Image

Eurocom Scorpius: 3840QM-2.8 GHz-Ivy Bridge ; ATI 7970M Crossfire ; Intel SSD 520 series 480GB ; Seagate Momentus XT 750 GB,7200RPM ; 16 GB Corsair Vengeance 9 9 9 24 ; Sound Blaster X-Fi MB2 ; THX True Studio Pro.

Patience is Life.
0

#15 User is offline   bs27 

  • Member
  • PipPip
  • Group: New Member
  • Posts: 18
  • Joined: 26-July 12

Posted 04 August 2012 - 06:09 AM

I am sorry I didnt get the post the Malwarebytes log. I had something come up while I was in middle and I had to run out. I just got back. I am trying to uninstall the Java but its not giving me the setting options. When I click on it, the only option I get is uninstall. I changed the view to the large setting. But I still cant find settings option. Maybe I am doing it wrong.
0

#16 User is offline   bs27 

  • Member
  • PipPip
  • Group: New Member
  • Posts: 18
  • Joined: 26-July 12

Posted 04 August 2012 - 09:34 AM

Malwarebytes Anti-Malware 1.62.0.1300
www.malwarebytes.org

Database version: v2012.08.01.04

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
shawna :: SHAWNA-HP [administrator]

8/4/2012 9:55:36 AM
mbam-log-2012-08-04 (09-55-36).txt

Scan type: Full scan (C:\|D:\|G:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM | P2P
Scan options disabled:
Objects scanned: 329914
Time elapsed: 1 hour(s), 49 minute(s), 26 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)

I downloaded the ccleaner. I did not know if you wanted me to go ahead and run it before I uninstalled the other java apps?

This post has been edited by bs27: 04 August 2012 - 09:43 AM

0

#17 User is offline   Flashorn 

  • Expert
  • PipPipPipPipPipPip
  • Group: Members
  • Posts: 4,362
  • Joined: 19-May 07
  • Location:Canada

Posted 04 August 2012 - 12:58 PM

Hey bs27 !

It's OK, Take your time and do it well.
Thank you for the text report from MBAM. There's nothing to report in there either.

I will attempt to explain further.

You will have to uninstall those extra Java installs from the Programs & Features (where we uninstall programs we don't need or want)

Click on the Start Button. next, click on Control Panel. IF you have a screen similar to this one :

Posted Image

You will have to change the View BY in the upper right hand corner of this screen by clicking on the View By button.There will be options
to choose from. Choose (or click) on the one that says Large Icons.

Posted Image

Now, scroll down to the option "Program & Features" and Click on it.

Posted Image

The next screen to appear will be the one where you will click on Java (all but the most recent one : 7 update 5) and uninstall by
either Right Clicking on the item you want to uninstall and choose to Uninstall OR simply double click on it and follow the on screen
instructions.:

Posted Image


This should take care of the extra Java install.


After you have uninstalled those extra Java items, you should remove all temps files from the Java cache and not have Java keep any other
temp files on your PC. Infected files seem to like this cache as a hiding place where they can re-infect your PC.

First , Open Control Panel by going to Start > Control Panel. You should now have the viewing screen for Control Panel (since we just changed it)
Scroll down to Java and click (or double click) on it :

Posted Image


A small screen (or pop-up) will appear : (It may take a few seconds for the pop-up to appear)
On the Bottom of this screen (pop-up) you will see a "Settings" button. Click on it.

Posted Image


Another little pop-up will appear : In the Upper Left Hand corner, you will see a Box with a Check Mark in it. Please remove that check mark by clicking on it:


Posted Image


The rest of the pop-up will go Dull, meaning that there are no other options to choose from "Except" the "Delete Files" button.
Please click on it.

A last pop-up will appear. There are THREE boxes to check mark. IF they are already check marked then, all you have to do is click on the "OK" button on the bottom.
IF they are not all check marked and you have the option to check mark the remaining boxes then, do so and click on the OK button on the bottom.

The last pop-up to appear will now Disappear.

Click on the OK button on the next pop-up and APPLY & OK on the remaining pop-up .

This is the progression of this operation :


Posted Image


You should now be Java temps file free and no other temps files from Java will be cached on your PC.


All new programs that you would like to either Install or Run, should be done by Right Clicking on the Program or .exe and from the context menu, choose to "Run as Administrator".


Run CCleaner to clean out all remaining temp files from these uninstalls.
Download from here if you don't have it : Piriform.com. USE THE BROOM OPTION ON THE LEFT ONLY.

Once this is done, could you perform another scan for me please.

Please download aswMBR.exe and save it to your desktop.

aswMBR.exe

Right click to "Run as Administrator" aswMBR.exe to start the tool.

Allow it to download the definitions from the internet.

Click Scan ( this could take some time)

* Upon completion of the scan, click Save log and save it to your "desktop", and post that log in your next reply for review. Note - do NOT attempt any "Fix" yet.

Please post those logs in your next reply.
-----------------------------------------------------------------------------------------------------------------
What other problems are you experiencing with this PC ?

Please be as specific as possible as we can only go by your description of the problem(s)

Also, could you change the passwords to your most sensitive sites (Bank , email(s)...)
-----------------------------------------------------------------------------------------------------------------


FLASHORN.







Posted Image Posted Image

Posted Image

Eurocom Scorpius: 3840QM-2.8 GHz-Ivy Bridge ; ATI 7970M Crossfire ; Intel SSD 520 series 480GB ; Seagate Momentus XT 750 GB,7200RPM ; 16 GB Corsair Vengeance 9 9 9 24 ; Sound Blaster X-Fi MB2 ; THX True Studio Pro.

Patience is Life.
0

#18 User is offline   bs27 

  • Member
  • PipPip
  • Group: New Member
  • Posts: 18
  • Joined: 26-July 12

Posted 05 August 2012 - 02:10 AM

View PostFlashorn, on 04 August 2012 - 12:58 PM, said:

Hey bs27 !

It's OK, Take your time and do it well.
Thank you for the text report from MBAM. There's nothing to report in there either.

I will attempt to explain further.

You will have to uninstall those extra Java installs from the Programs & Features (where we uninstall programs we don't need or want)

Click on the Start Button. next, click on Control Panel. IF you have a screen similar to this one :

Posted Image

You will have to change the View BY in the upper right hand corner of this screen by clicking on the View By button.There will be options
to choose from. Choose (or click) on the one that says Large Icons.

Posted Image

Now, scroll down to the option "Program & Features" and Click on it.

Posted Image

The next screen to appear will be the one where you will click on Java (all but the most recent one : 7 update 5) and uninstall by
either Right Clicking on the item you want to uninstall and choose to Uninstall OR simply double click on it and follow the on screen
instructions.:

Posted Image


This should take care of the extra Java install.


After you have uninstalled those extra Java items, you should remove all temps files from the Java cache and not have Java keep any other
temp files on your PC. Infected files seem to like this cache as a hiding place where they can re-infect your PC.

First , Open Control Panel by going to Start > Control Panel. You should now have the viewing screen for Control Panel (since we just changed it)
Scroll down to Java and click (or double click) on it :

Posted Image


A small screen (or pop-up) will appear : (It may take a few seconds for the pop-up to appear)
On the Bottom of this screen (pop-up) you will see a "Settings" button. Click on it.

Posted Image


Another little pop-up will appear : In the Upper Left Hand corner, you will see a Box with a Check Mark in it. Please remove that check mark by clicking on it:


Posted Image


The rest of the pop-up will go Dull, meaning that there are no other options to choose from "Except" the "Delete Files" button.
Please click on it.

A last pop-up will appear. There are THREE boxes to check mark. IF they are already check marked then, all you have to do is click on the "OK" button on the bottom.
IF they are not all check marked and you have the option to check mark the remaining boxes then, do so and click on the OK button on the bottom.

The last pop-up to appear will now Disappear.

Click on the OK button on the next pop-up and APPLY & OK on the remaining pop-up .

This is the progression of this operation :


Posted Image


You should now be Java temps file free and no other temps files from Java will be cached on your PC.


All new programs that you would like to either Install or Run, should be done by Right Clicking on the Program or .exe and from the context menu, choose to "Run as Administrator".


Run CCleaner to clean out all remaining temp files from these uninstalls.
Download from here if you don't have it : Piriform.com. USE THE BROOM OPTION ON THE LEFT ONLY.

Once this is done, could you perform another scan for me please.

Please download aswMBR.exe and save it to your desktop.

aswMBR.exe

Right click to "Run as Administrator" aswMBR.exe to start the tool.

Allow it to download the definitions from the internet.

Click Scan ( this could take some time)

* Upon completion of the scan, click Save log and save it to your "desktop", and post that log in your next reply for review. Note - do NOT attempt any "Fix" yet.

Please post those logs in your next reply.
-----------------------------------------------------------------------------------------------------------------
What other problems are you experiencing with this PC ?

Please be as specific as possible as we can only go by your description of the problem(s)

Also, could you change the passwords to your most sensitive sites (Bank , email(s)...)
-----------------------------------------------------------------------------------------------------------------


FLASHORN.



aswMBR version 0.9.9.1665 Copyright© 2011 AVAST Software
Run date: 2012-08-04 19:31:50
-----------------------------
19:31:50.749 OS Version: Windows x64 6.1.7601 Service Pack 1
19:31:50.749 Number of processors: 2 586 0x100
19:31:50.749 ComputerName: SHAWNA-HP UserName: shawna
19:31:52.730 Initialize success
19:37:17.929 AVAST engine defs: 12080401
19:37:31.173 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\00000065
19:37:31.173 Disk 0 Vendor: ST250LT0 0001 Size: 238475MB BusType: 11
19:37:31.236 Disk 0 MBR read successfully
19:37:31.236 Disk 0 MBR scan
19:37:31.329 Disk 0 Windows 7 default MBR code
19:37:31.361 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 199 MB offset 2048
19:37:31.485 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 224176 MB offset 409600
19:37:31.641 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 13995 MB offset 459522048
19:37:31.766 Disk 0 Partition 4 00 0C FAT32 LBA MSDOS5.0 103 MB offset 488183808
19:37:32.359 Disk 0 scanning C:\Windows\system32\drivers
19:38:03.809 Service scanning
19:39:12.215 Modules scanning
19:39:12.230 Disk 0 trace - called modules:
19:39:12.277 ntoskrnl.exe CLASSPNP.SYS disk.sys amd_xata.sys storport.sys hal.dll amd_sata.sys
19:39:12.293 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8002419060]
19:39:12.308 3 CLASSPNP.SYS[fffff8800196d43f] -> nt!IofCallDriver -> [0xfffffa8002308040]
19:39:12.324 5 amd_xata.sys[fffff880010dc900] -> nt!IofCallDriver -> \Device\00000065[0xfffffa80022fb060]
19:39:13.619 AVAST engine scan C:\Windows
19:39:19.796 AVAST engine scan C:\Windows\system32
19:48:43.446 AVAST engine scan C:\Windows\system32\drivers
19:49:21.198 AVAST engine scan C:\Users\shawna
20:04:55.297 AVAST engine scan C:\ProgramData
20:07:47.131 Scan finished successfully
05:55:50.326 Disk 0 MBR has been saved successfully to "C:\Users\shawna\Desktop\MBR.dat"
05:55:50.388 The log file has been saved successfully to "C:\Users\shawna\Desktop\aswMBR.txt"


What other problems are you experiencing with this PC ?

The only problem I am having with this computer is that Internet Explorer randomly opens new windows on its own. It just opens up my homepage in a small window. There isnt any connection that I can make with what causes it. When it starts it does it repeatedly. I'll close it another one will open just as soon as I close it.
0

#19 User is offline   Flashorn 

  • Expert
  • PipPipPipPipPipPip
  • Group: Members
  • Posts: 4,362
  • Joined: 19-May 07
  • Location:Canada

Posted 05 August 2012 - 05:02 AM

Hey bs27 !

Were my explanations sufficient for you to accomplish the tasks I suggested you do?

Did you clean out the temp files with CCleaner ?

OK, scan looks normal.

For the IE9 problem, have you tried another browser to see if this problem is transferred to the newly installed browser.
I would suggest you download Firefox from here : http://www.mozilla.o...US/firefox/new/ and try it out. Let me know if
this works out.

I would need another scan from you if you don't mind. Download and Run (no install needed) HijackThis from here :
http://sourceforge.net/projects/hjt/ . You will need to Right Click and Run as Administrator.

When the program opens, click on the first option "Do a system scan and save a log file". This will take a few seconds.
A notepad will open. You can save that notepad logfile to your desktop. Now, open that notepad and copy & paste the
results from that scan in your next reply pls.

I would also like to see the processes running on your PC if that's alright with you.
Pick a spot on the Task Bar where there are no icons and right click on it. You will get a menu. Choose the Task Manager.
The Task Manager will open. Near the top you will see Applications - Processes - Services and so on.Click on the Processes tab.
On the bottom left, you will see "show processes from all users" Click on it .
Now, take a screen shot (it might take more than one to cover it all) of ALL those processes. Please post those screen shots.

Also, if you used CCleaner, open it up and on the left click the Tools option . In that tab, you will see more options. Click on
Startup. Wait a few seconds and your startup entries will appear. Copy and paste those entries in your next reply pls.



FLASHORN.

This post has been edited by Flashorn: 05 August 2012 - 05:09 AM

Posted Image Posted Image

Posted Image

Eurocom Scorpius: 3840QM-2.8 GHz-Ivy Bridge ; ATI 7970M Crossfire ; Intel SSD 520 series 480GB ; Seagate Momentus XT 750 GB,7200RPM ; 16 GB Corsair Vengeance 9 9 9 24 ; Sound Blaster X-Fi MB2 ; THX True Studio Pro.

Patience is Life.
0

#20 User is offline   bs27 

  • Member
  • PipPip
  • Group: New Member
  • Posts: 18
  • Joined: 26-July 12

Posted 07 August 2012 - 03:01 AM

Yes your instructions were very easy to understand. I have done all that you have ask of me.
I am having some trouble getting the screenshots to upload. I have them made but cant get them on here. As you can probably tell I havent never done it before.
0

Share this topic:


  • 2 Pages +
  • 1
  • 2
  • You cannot start a new topic
  • You cannot reply to this topic

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users