• Registrarse
  • Iniciar sesión


  • Resultados 1 al 10 de 10

    Problema con el virus sirefef

    Hola,hoy mi computadora funcionaba algo lenta así que decidí escanearla con el panda cloud cleaner,este detecto al sirefef como un clave en el registro,yo me puse a investigar y encontré que era como funcionaba y ...

    1. #1
      Usuario Avatar de aenoris
      Registrado
      jul 2012
      Ubicación
      Buenos Aires
      Mensajes
      14

      Atención Problema con el virus sirefef

      Hola,hoy mi computadora funcionaba algo lenta así que decidí escanearla con el panda cloud cleaner,este detecto al sirefef como un clave en el registro,yo me puse a investigar y encontré que era como funcionaba y un par de formas de eliminarlo.

      He intentado utilizar:

      Tdskiller (leí de su utilización en los foros de aquí,detecto algo como "sospechoso" ,cuyo nombre era akamai)

      Malwarebite antimalware (borro unos virus cuyos nombres cifras y letras aparentemente aleatorias)

      Yorkyt.exe Lo utilize y casi tengo que formatear ya que luego de que reinicie la pc (inmediatamente después de reiniciar,no interferí de ninguna forma) la pc cuando hize click en el recién iniciaba me aparecía un pantallaso azul (blue print) (tuve que restaurar sistema,no me atrevo a volver a usarlo)

      ESETSirefefEVCleaner

      Para limpiar el registro he utilizado:

      ccleaner
      glary up utlities.

      El problema es que el panda cloud sigue marcando la clave de registro infectada, ¿ahí alguna otra solución?

      Atte

    2. #2
      Ex-Colaborador Avatar de Gemsa_03
      Registrado
      feb 2012
      Ubicación
      Málaga-España
      Mensajes
      6.615

      Re: Problema con el virus sirefef

      Hola

      Podrías adjuntarnos el Informe del TDSKiller y el del Malwarebytes?

      Un saludo.

    3. #3
      Usuario Avatar de aenoris
      Registrado
      jul 2012
      Ubicación
      Buenos Aires
      Mensajes
      14

      Re: Problema con el virus sirefef

      Ahora publicare el registro del malwarebyte mas abajo:
      Última edición por aenoris fecha: 07/11/12 a las 16:07:44

    4. #4
      Usuario Avatar de aenoris
      Registrado
      jul 2012
      Ubicación
      Buenos Aires
      Mensajes
      14

      Re: Problema con el virus sirefef

      Un dato curioso el panda cloud cleaner me tomo esta clave de registro como el virus:

      Malware. REGKEY: HKLM\SOFTWARE\CLASSES\CLSID\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\INPROCSERVER32. Variable: (null) To be changed to: C:\Windows\system32\wbem\wbemess.dll

      Sin embargo al clickear para que lo elimine ,no deja.

    5. #5
      Ex-Colaborador Avatar de Gemsa_03
      Registrado
      feb 2012
      Ubicación
      Málaga-España
      Mensajes
      6.615

      Re: Problema con el virus sirefef

      Hola!

      Lo siento, pero Políticas del Foro de InfoSpyware

      2.3 No está permitido brindar/publicar directamente enlaces directos a la descarga de programas y/o aplicaciones, mucho menos enlaces a sitios de Hostings como "RapidShare", "HotFile", "Megaupload" o similar. Los programas recomendados y necesarios para atender el 90% de los casos del foro se encuentran disponibles en nuestra Web principal InfoSpyware, por lo que utilice los programas de ahí provistos o contáctese con alguno de los moderadores para solicitar el uso de algún otro programa
      .

      Envíame los reportes en varias respuestas.

      Gracias.

    6. #6
      Usuario Avatar de aenoris
      Registrado
      jul 2012
      Ubicación
      Buenos Aires
      Mensajes
      14

      Re: Problema con el virus sirefef

      Malwarebytes Anti-Malware 1.65.1.1000
      Malwarebytes : Free anti-malware download

      Versión de la Base de Datos: v2012.11.06.09

      Windows 7 x86 NTFS
      Internet Explorer 8.0.7600.16385
      Astrid :: ASTRID-PC [administrador]

      06/11/2012 06:29:00 p.m.
      mbam-log-2012-11-06 (18-29-00).txt

      Tipos de Análisis: Análisis Completo (A:\|C:\|D:\|E:\|F:\|G:\|)
      Opciones de análisis activado: Memoria | Inicio | Registro | Sistema de archivos | Heurística/Extra | Heurística/Shuriken | PUP | PUM
      Opciones de análisis desactivados: P2P
      Objetos examinados: 385049
      Tiempo transcurrido: 58 minuto(s), 12 segundo(s)

      Procesos en Memoria Detectados: 0
      (No se han detectado elementos maliciosos)

      Módulos de Memoria Detectados: 0
      (No se han detectado elementos maliciosos)

      Claves del Registro Detectados: 0
      (No se han detectado elementos maliciosos)

      Valores del Registro Detectados: 0
      (No se han detectado elementos maliciosos)

      Elementos de Datos del Registro Detectados: 0
      (No se han detectado elementos maliciosos)

      Carpetas Detectadas: 3
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache (PUP.Blabbers) -> En cuarentena y eliminado con éxito.

      Archivos Detectados: 42
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\fix2.js (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\icon.png (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\jquery4toolbar.js (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\lock.js (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\witapi.js (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\witmain.js (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\wittoolbar.js (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\witwidgetapi.js (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\e919434ec29526b28593c426e4264271_expire (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\0324adea3b6ec02af09ea4ae9424591b (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\0324adea3b6ec02af09ea4ae9424591b_expire (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\2564f7e98c52af18d264c607088851e3 (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\2564f7e98c52af18d264c607088851e3_expire (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\292124057d00cb0fa73db6b90d079658 (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\292124057d00cb0fa73db6b90d079658_expire (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\4d3d10bd28ff623813254a49b26be41f (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\4d3d10bd28ff623813254a49b26be41f_expire (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\5cf8ee0a46a36058a37bf3f671e4a317 (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\5cf8ee0a46a36058a37bf3f671e4a317_expire (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\68d5f154ffa19938a123918cecb7c331 (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\68d5f154ffa19938a123918cecb7c331_expire (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\ee6538b0096ef2b7be8ff4049b25efc4 (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\ee6538b0096ef2b7be8ff4049b25efc4_expire (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\f03527c67e08602d2e4c18ae7867300d (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\f03527c67e08602d2e4c18ae7867300d_expire (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\fa74672918974682c82b8d91dfbe0d6b (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\fa74672918974682c82b8d91dfbe0d6b_expire (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\ff4d692d5e7cccbc4b3e9ef4062b1c6f (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\ff4d692d5e7cccbc4b3e9ef4062b1c6f_expire (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\a01446c299689e39aee437bde5010d93 (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\a01446c299689e39aee437bde5010d93_expire (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\a67b77f458e407f3476168de9999d387 (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\a67b77f458e407f3476168de9999d387_expire (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\b8e85cc76c3a1765d96995381dfeeb49 (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\b8e85cc76c3a1765d96995381dfeeb49_expire (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\bc19708f4abbe25f0e873224ac1c72ef (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\bc19708f4abbe25f0e873224ac1c72ef_expire (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\c02405f24f98f3b1d16b5586e10bfa38 (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\c02405f24f98f3b1d16b5586e10bfa38_expire (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\e02b35320e5111f1b626466c13c70a0a (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\e02b35320e5111f1b626466c13c70a0a_expire (PUP.Blabbers) -> En cuarentena y eliminado con éxito.
      C:\Users\Astrid.Astrid-PC\AppData\LocalLow\bbrs_002.tb\content\cache\e919434ec29526b28593c426e4264271 (PUP.Blabbers) -> En cuarentena y eliminado con éxito.

      fin)

    7. #7
      Ex-Colaborador Avatar de Gemsa_03
      Registrado
      feb 2012
      Ubicación
      Málaga-España
      Mensajes
      6.615

      Re: Problema con el virus sirefef

      Hola!

      Por favor repite los pasos pero en la manera que te digo.

      Desinstala el TDSSKiller.

      Lo vuelves a instalar desde aquí Manual de TDSSKiller. donde tienes el Manual.
      IMPORTANTE: CUANDO TE HAYAS BAJADO EL ARCHIVO ZIP DESCONÉCTATE DE INTERNET, SI NO SABES COMO, ÚNICAMENTE APAGA EL ROUTER
      Lo vuelves a ejecutar pero seleccionando en "Change Parameters" las 2 casillas que hay, tienes que ejecutarlo como Administrador, (NO EMPLEES EL EQUIPO MIENTRAS ESTÁ ANALIZANDO y hazlo saliendo y cerrando todos los programas/aplicaciones que tengas abiertos). Caso de que encuentre una infección tipo 0.Acces, selecciona "Cure". Una vez finalizado el Scan, reinicia para completar la desinfección. GUARDA REPORTE DEL TDSS...

      Conéctate a Internet y haces 2 cosas:

      1.) Ejecuta como Administrador el Rkill 2.0 | InfoSpyware

      2.) Actualiza/Ejecuta (SCAN COMPLETO) como Administrador, el Malwarebytes de nuevo. Cuando acabe SELECCIONA Y BORRA todo lo que te salga en el Escaneo. Reinicia.
      Ejecuta Ccleaner para borrar todo rastro de cookies, archivos temporales y de registro en modo LIMPIADOR/REGISTRO.

      Nos pegarías Informes del TDSSKiller/Malwarebytes y Rkill.

      Un saludo.
      Última edición por Gemsa_03 fecha: 12/11/12 a las 11:20:54 Razón: corrección

    8. #8
      Usuario Avatar de aenoris
      Registrado
      jul 2012
      Ubicación
      Buenos Aires
      Mensajes
      14

      Re: Problema con el virus sirefef

      Aqui estan los informes (los pegare en diferentes mensajes):

      RKILL:

      Rkill 2.4.5 by Lawrence Abrams (Grinler)
      Bleeping Computer - Technical Support and Computer Help
      Copyright 2008-2012 BleepingComputer.com
      More Information about Rkill can be found at this link:
      RKill - What it does and What it Doesn't - A brief introduction to the program

      Program started at: 11/13/2012 04:22:48 PM in x86 mode.
      Windows Version: Windows 7 Ultimate

      Checking for Windows services to stop:

      * No malware services found to stop.

      Checking for processes to terminate:

      * No malware processes found to kill.

      Checking Registry for malware related settings:

      * No issues found in the Registry.

      Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

      Performing miscellaneous checks:

      * No issues found.

      Checking Windows Service Integrity:

      * No issues found.

      Searching for Missing Digital Signatures:

      * No issues found.

      Checking HOSTS File:

      * HOSTS file entries found:

      127.0.0.1 activate.adobe.com
      127.0.0.1 foro.inexinferis.com.ar

      Program finished at: 11/13/2012 04:23:00 PM
      Execution time: 0 hours(s), 0 minute(s), and 11 seconds(s)

    9. #9
      Usuario Avatar de aenoris
      Registrado
      jul 2012
      Ubicación
      Buenos Aires
      Mensajes
      14

      Re: Problema con el virus sirefef

      TDSKILLER:(PARTE 1)

      6:08:41.0235 3112 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35
      16:08:42.0017 3112 ============================================================
      16:08:42.0017 3112 Current date / time: 2012/11/13 16:08:42.0017
      16:08:42.0017 3112 SystemInfo:
      16:08:42.0017 3112
      16:08:42.0017 3112 OS Version: 6.1.7600 ServicePack: 0.0
      16:08:42.0017 3112 Product type: Workstation
      16:08:42.0018 3112 ComputerName: ASTRID-PC
      16:08:42.0018 3112 UserName: Astrid
      16:08:42.0018 3112 Windows directory: C:\Windows
      16:08:42.0018 3112 System windows directory: C:\Windows
      16:08:42.0018 3112 Processor architecture: Intel x86
      16:08:42.0018 3112 Number of processors: 2
      16:08:42.0018 3112 Page size: 0x1000
      16:08:42.0018 3112 Boot type: Normal boot
      16:08:42.0018 3112 ============================================================
      16:08:45.0059 3112 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
      16:08:45.0214 3112 ============================================================
      16:08:45.0214 3112 \Device\Harddisk0\DR0:
      16:08:45.0215 3112 MBR partitions:
      16:08:45.0215 3112 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
      16:08:45.0215 3112 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0xC31E000
      16:08:45.0215 3112 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0xC350800, BlocksNum 0x190DD800
      16:08:45.0215 3112 ============================================================
      16:08:45.0310 3112 C: <-> \Device\Harddisk0\DR0\Partition2
      16:08:45.0380 3112 D: <-> \Device\Harddisk0\DR0\Partition3
      16:08:45.0380 3112 ============================================================
      16:08:45.0380 3112 Initialize success
      16:08:45.0380 3112 ============================================================
      16:09:32.0607 3504 ============================================================
      16:09:32.0607 3504 Scan started
      16:09:32.0608 3504 Mode: Manual; SigCheck; TDLFS;
      16:09:32.0608 3504 ============================================================
      16:09:32.0970 3504 ================ Scan system memory ========================
      16:09:32.0970 3504 System memory - ok
      16:09:32.0971 3504 ================ Scan services =============================
      16:09:33.0107 3504 [ 6D2ACA41739BFE8CB86EE8E85F29697D ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys
      16:09:33.0455 3504 1394ohci - ok
      16:09:33.0542 3504 [ 368638508F3675F7C6E69381FA65339D ] ABBYY.Licensing.FineReader.Corporate.9.0 C:\Program Files\Common Files\ABBYY\FineReader\9.00\Licensing\CE\NetworkLicenseServer.exe
      16:09:33.0576 3504 ABBYY.Licensing.FineReader.Corporate.9.0 - ok
      16:09:33.0589 3504 [ F0E07D144C8685B8774BC32FC8DA4DF0 ] ACPI C:\Windows\system32\DRIVERS\ACPI.sys
      16:09:33.0605 3504 ACPI - ok
      16:09:33.0623 3504 [ 98D81CA942D19F7D9153B095162AC013 ] AcpiPmi C:\Windows\system32\DRIVERS\acpipmi.sys
      16:09:33.0715 3504 AcpiPmi - ok
      16:09:33.0795 3504 [ D19C4EE2AC7C47B8F5F84FFF1A789D8A ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
      16:09:33.0814 3504 AdobeARMservice - ok
      16:09:33.0887 3504 [ 0CB0AA071C7B86A64F361DCFDF357329 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
      16:09:33.0909 3504 AdobeFlashPlayerUpdateSvc - ok
      16:09:33.0927 3504 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
      16:09:33.0945 3504 adp94xx - ok
      16:09:33.0965 3504 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
      16:09:33.0981 3504 adpahci - ok
      16:09:34.0017 3504 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
      16:09:34.0041 3504 adpu320 - ok
      16:09:34.0066 3504 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
      16:09:34.0193 3504 AeLookupSvc - ok
      16:09:34.0228 3504 [ 0DB7A48388D54D154EBEC120461A0FCD ] AFD C:\Windows\system32\drivers\afd.sys
      16:09:34.0294 3504 AFD - ok
      16:09:34.0309 3504 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\DRIVERS\agp440.sys
      16:09:34.0323 3504 agp440 - ok
      16:09:34.0329 3504 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\DRIVERS\djsvs.sys
      16:09:34.0343 3504 aic78xx - ok
      16:09:34.0365 3504 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe
      16:09:34.0410 3504 ALG - ok
      16:09:34.0427 3504 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\DRIVERS\aliide.sys
      16:09:34.0438 3504 aliide - ok
      16:09:34.0454 3504 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\DRIVERS\amdagp.sys
      16:09:34.0465 3504 amdagp - ok
      16:09:34.0480 3504 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\DRIVERS\amdide.sys
      16:09:34.0490 3504 amdide - ok
      16:09:34.0496 3504 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
      16:09:34.0523 3504 AmdK8 - ok
      16:09:34.0542 3504 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
      16:09:34.0580 3504 AmdPPM - ok
      16:09:34.0603 3504 [ 2101A86C25C154F8314B24EF49D7FBC2 ] amdsata C:\Windows\system32\DRIVERS\amdsata.sys
      16:09:34.0616 3504 amdsata - ok
      16:09:34.0628 3504 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
      16:09:34.0641 3504 amdsbs - ok
      16:09:34.0656 3504 [ B81C2B5616F6420A9941EA093A92B150 ] amdxata C:\Windows\system32\DRIVERS\amdxata.sys
      16:09:34.0668 3504 amdxata - ok
      16:09:34.0677 3504 [ FEB834C02CE1E84B6A38F953CA067706 ] AppID C:\Windows\system32\drivers\appid.sys
      16:09:34.0735 3504 AppID - ok
      16:09:34.0758 3504 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll
      16:09:34.0860 3504 AppIDSvc - ok
      16:09:34.0874 3504 [ 7DEAD9E3F65DCB2794F2711003BBF650 ] Appinfo C:\Windows\System32\appinfo.dll
      16:09:34.0948 3504 Appinfo - ok
      16:09:34.0971 3504 [ A45D184DF6A8803DA13A0B329517A64A ] AppMgmt C:\Windows\System32\appmgmts.dll
      16:09:35.0047 3504 AppMgmt - ok
      16:09:35.0074 3504 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\DRIVERS\arc.sys
      16:09:35.0086 3504 arc - ok
      16:09:35.0103 3504 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
      16:09:35.0115 3504 arcsas - ok
      16:09:35.0192 3504 [ 776ACEFA0CA9DF0FAA51A5FB2F435705 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
      16:09:35.0211 3504 aspnet_state - ok
      16:09:35.0235 3504 [ DE6ED95AEF259979B2830450072A627B ] aswFsBlk C:\Windows\system32\drivers\aswFsBlk.sys
      16:09:35.0261 3504 aswFsBlk - ok
      16:09:35.0276 3504 [ 62F9DCEC95F91B8E0203E85D344A7E65 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
      16:09:35.0285 3504 aswMonFlt - ok
      16:09:35.0309 3504 [ 81F638A2DD94ABBF0B43880AB38D8DBD ] aswRdr C:\Windows\System32\Drivers\aswrdr2.sys
      16:09:35.0318 3504 aswRdr - ok
      16:09:35.0375 3504 [ B32E9AD44A1DBB3E8095E80F8DF32B03 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
      16:09:35.0403 3504 aswSnx - ok
      16:09:35.0430 3504 [ 67B558895695545FB0568B7541F3BCA7 ] aswSP C:\Windows\system32\drivers\aswSP.sys
      16:09:35.0445 3504 aswSP - ok
      16:09:35.0458 3504 [ E3E73B2B73A4DFADFDDF557192C4B08A ] aswTdi C:\Windows\system32\drivers\aswTdi.sys
      16:09:35.0469 3504 aswTdi - ok
      16:09:35.0482 3504 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
      16:09:35.0533 3504 AsyncMac - ok
      16:09:35.0560 3504 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\DRIVERS\atapi.sys
      16:09:35.0570 3504 atapi - ok
      16:09:35.0594 3504 [ 510C873BFA135AA829F4180352772734 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
      16:09:35.0640 3504 AudioEndpointBuilder - ok
      16:09:35.0662 3504 [ 510C873BFA135AA829F4180352772734 ] Audiosrv C:\Windows\System32\Audiosrv.dll
      16:09:35.0691 3504 Audiosrv - ok
      16:09:35.0737 3504 [ 8FA553E9AE69808D99C164733A0F9590 ] avast! Antivirus C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
      16:09:35.0753 3504 avast! Antivirus - ok
      16:09:35.0770 3504 [ DD6A431B43E34B91A767D1CE33728175 ] AxInstSV C:\Windows\System32\AxInstSV.dll
      16:09:35.0855 3504 AxInstSV - ok
      16:09:35.0880 3504 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys
      16:09:35.0937 3504 b06bdrv - ok
      16:09:35.0957 3504 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
      16:09:35.0993 3504 b57nd60x - ok
      16:09:36.0019 3504 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll
      16:09:36.0085 3504 BDESVC - ok
      16:09:36.0095 3504 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys
      16:09:36.0153 3504 Beep - ok
      16:09:36.0182 3504 [ 85AC71C045CEB054ED48A7841AAE0C11 ] BFE C:\Windows\System32\bfe.dll
      16:09:36.0235 3504 BFE - ok
      16:09:36.0280 3504 [ 53F476476F55A27F580661BDE09C4EC4 ] BITS C:\Windows\System32\qmgr.dll
      16:09:36.0394 3504 BITS - ok
      16:09:36.0416 3504 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
      16:09:36.0432 3504 blbdrive - ok
      16:09:36.0457 3504 [ 9A5C671B7FBAE4865149BB11F59B91B2 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
      16:09:36.0514 3504 bowser - ok
      16:09:36.0524 3504 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
      16:09:36.0554 3504 BrFiltLo - ok
      16:09:36.0573 3504 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
      16:09:36.0588 3504 BrFiltUp - ok
      16:09:36.0612 3504 [ 598E1280E7FF3744F4B8329366CC5635 ] Browser C:\Windows\System32\browser.dll
      16:09:36.0653 3504 Browser - ok
      16:09:36.0671 3504 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys
      16:09:36.0738 3504 Brserid - ok
      16:09:36.0751 3504 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
      16:09:36.0778 3504 BrSerWdm - ok
      16:09:36.0796 3504 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
      16:09:36.0824 3504 BrUsbMdm - ok
      16:09:36.0839 3504 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
      16:09:36.0854 3504 BrUsbSer - ok
      16:09:36.0870 3504 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
      16:09:36.0895 3504 BTHMODEM - ok
      16:09:36.0914 3504 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll
      16:09:36.0952 3504 bthserv - ok
      16:09:36.0973 3504 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
      16:09:37.0015 3504 cdfs - ok
      16:09:37.0033 3504 [ BA6E70AA0E6091BC39DE29477D866A77 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
      16:09:37.0065 3504 cdrom - ok
      16:09:37.0082 3504 [ 628A9E30EC5E18DD5DE6BE4DBDC12198 ] CertPropSvc C:\Windows\System32\certprop.dll
      16:09:37.0122 3504 CertPropSvc - ok
      16:09:37.0141 3504 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\DRIVERS\circlass.sys
      16:09:37.0166 3504 circlass - ok
      16:09:37.0188 3504 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys
      16:09:37.0203 3504 CLFS - ok
      16:09:37.0244 3504 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
      16:09:37.0256 3504 clr_optimization_v2.0.50727_32 - ok
      16:09:37.0284 3504 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
      16:09:37.0295 3504 clr_optimization_v4.0.30319_32 - ok
      16:09:37.0309 3504 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
      16:09:37.0337 3504 CmBatt - ok
      16:09:37.0358 3504 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\DRIVERS\cmdide.sys
      16:09:37.0370 3504 cmdide - ok
      16:09:37.0405 3504 [ 1B675691ED940766149C93E8F4488D68 ] CNG C:\Windows\system32\Drivers\cng.sys
      16:09:37.0576 3504 CNG - ok
      16:09:37.0582 3504 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
      16:09:37.0593 3504 Compbatt - ok
      16:09:37.0613 3504 [ F1724BA27E97D627F808FB0BA77A28A6 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
      16:09:37.0641 3504 CompositeBus - ok
      16:09:37.0647 3504 COMSysApp - ok
      16:09:37.0666 3504 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
      16:09:37.0677 3504 crcdisk - ok
      16:09:37.0704 3504 [ 9C231178CE4FB385F4B54B0A9080B8A4 ] CryptSvc C:\Windows\system32\cryptsvc.dll
      16:09:37.0734 3504 CryptSvc - ok
      16:09:37.0756 3504 [ 27C9490BDD0AE48911AB8CF1932591ED ] CSC C:\Windows\system32\drivers\csc.sys
      16:09:37.0838 3504 CSC - ok
      16:09:37.0862 3504 [ 56FB5F222EA30D3D3FC459879772CB73 ] CscService C:\Windows\System32\cscsvc.dll
      16:09:37.0892 3504 CscService - ok
      16:09:37.0931 3504 [ B82CD39E336973359D7C9BF911E8E84F ] DcomLaunch C:\Windows\system32\rpcss.dll
      16:09:37.0964 3504 DcomLaunch - ok
      16:09:37.0988 3504 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll
      16:09:38.0044 3504 defragsvc - ok
      16:09:38.0073 3504 [ 83D1ECEA8FAAE75604C0FA49AC7AD996 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
      16:09:38.0140 3504 DfsC - ok
      16:09:38.0160 3504 [ C56495FBD770712367CAD35E5DE72DA6 ] Dhcp C:\Windows\system32\dhcpcore.dll
      16:09:38.0195 3504 Dhcp - ok
      16:09:38.0213 3504 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys
      16:09:38.0251 3504 discache - ok
      16:09:38.0274 3504 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\DRIVERS\disk.sys
      16:09:38.0297 3504 Disk - ok
      16:09:38.0338 3504 [ B15BE77A2BACF9C3177D27518AFE26A9 ] Dnscache C:\Windows\System32\dnsrslvr.dll
      16:09:38.0386 3504 Dnscache - ok
      16:09:38.0403 3504 [ 4408C85C21EEA48EB0CE486BAEEF0502 ] dot3svc C:\Windows\System32\dot3svc.dll
      16:09:38.0457 3504 dot3svc - ok
      16:09:38.0501 3504 [ B5E479EB83707DD698F66953E922042C ] Dot4 C:\Windows\system32\DRIVERS\Dot4.sys
      16:09:38.0533 3504 Dot4 - ok
      16:09:38.0567 3504 [ C25FEA07A8E7767E8B89AB96A3B96519 ] Dot4Print C:\Windows\system32\DRIVERS\Dot4Prt.sys
      16:09:38.0596 3504 Dot4Print - ok
      16:09:38.0632 3504 [ CF491FF38D62143203C065260567E2F7 ] dot4usb C:\Windows\system32\DRIVERS\dot4usb.sys
      16:09:38.0676 3504 dot4usb - ok
      16:09:38.0699 3504 [ 7FA81C6E11CAA594ADB52084DA73A1E5 ] DPS C:\Windows\system32\dps.dll
      16:09:38.0762 3504 DPS - ok
      16:09:38.0795 3504 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
      16:09:38.0824 3504 drmkaud - ok
      16:09:38.0848 3504 [ 687AF6BB383885FF6A64071B189A7F3E ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
      16:09:38.0860 3504 dtsoftbus01 - ok
      16:09:38.0912 3504 [ 1679A4669326CB1A67CC95658D273234 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
      16:09:38.0935 3504 DXGKrnl - ok
      16:09:38.0973 3504 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll
      16:09:39.0014 3504 EapHost - ok
      16:09:39.0088 3504 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\DRIVERS\evbdx.sys
      16:09:39.0184 3504 ebdrv - ok
      16:09:39.0211 3504 [ F42309C4191C506B71DB5D1126D26318 ] EFS C:\Windows\System32\lsass.exe
      16:09:39.0241 3504 EFS - ok
      16:09:39.0294 3504 [ 1697C39978CD69F6FBC15302EDCECE1F ] ehRecvr C:\Windows\ehome\ehRecvr.exe
      16:09:39.0377 3504 ehRecvr - ok
      16:09:39.0409 3504 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe
      16:09:39.0471 3504 ehSched - ok
      16:09:39.0501 3504 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
      16:09:39.0523 3504 elxstor - ok
      16:09:39.0541 3504 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\DRIVERS\errdev.sys
      16:09:39.0570 3504 ErrDev - ok
      16:09:39.0606 3504 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll
      16:09:39.0639 3504 EventSystem - ok
      16:09:39.0659 3504 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys
      16:09:39.0705 3504 exfat - ok
      16:09:39.0722 3504 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys
      16:09:39.0764 3504 fastfat - ok
      16:09:39.0794 3504 [ F7EA23CC5E6BF2181F3F399D54F6EFC1 ] Fax C:\Windows\system32\fxssvc.exe
      16:09:39.0870 3504 Fax - ok
      16:09:39.0881 3504 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys
      16:09:39.0902 3504 fdc - ok
      16:09:39.0917 3504 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll
      16:09:39.0943 3504 fdPHost - ok
      16:09:39.0951 3504 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll
      16:09:39.0977 3504 FDResPub - ok
      16:09:39.0987 3504 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
      16:09:39.0999 3504 FileInfo - ok
      16:09:40.0019 3504 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
      16:09:40.0045 3504 Filetrace - ok
      16:09:40.0061 3504 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
      16:09:40.0090 3504 flpydisk - ok
      16:09:40.0109 3504 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
      16:09:40.0123 3504 FltMgr - ok
      16:09:40.0163 3504 [ 151258FC2EC8C48BDF8A53350AE0A676 ] FontCache C:\Windows\system32\FntCache.dll
      16:09:40.0217 3504 FontCache - ok
      16:09:40.0279 3504 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
      16:09:40.0290 3504 FontCache3.0.0.0 - ok
      16:09:40.0307 3504 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
      16:09:40.0321 3504 FsDepends - ok
      16:09:40.0326 3504 [ A574B4360E438977038AAE4BF60D79A2 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
      16:09:40.0340 3504 Fs_Rec - ok
      16:09:40.0373 3504 [ DAFBD9FE39197495AED6D51F3B85B5D2 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
      16:09:40.0392 3504 fvevol - ok
      16:09:40.0407 3504 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
      16:09:40.0419 3504 gagp30kx - ok
      16:09:40.0459 3504 [ 8BA3C04702BF8F927AB36AE8313CA4EE ] gpsvc C:\Windows\System32\gpsvc.dll
      16:09:40.0499 3504 gpsvc - ok
      16:09:40.0575 3504 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
      16:09:40.0585 3504 gupdate - ok
      16:09:40.0591 3504 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
      16:09:40.0600 3504 gupdatem - ok
      16:09:40.0626 3504 [ 833051C6C6C42117191935F734CFBD97 ] hamachi C:\Windows\system32\DRIVERS\hamachi.sys
      16:09:40.0636 3504 hamachi - ok
      16:09:40.0649 3504 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
      16:09:40.0714 3504 hcw85cir - ok
      16:09:40.0741 3504 [ 3530CAD25DEBA7DC7DE8BB51632CBC5F ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
      16:09:40.0772 3504 HdAudAddService - ok
      16:09:40.0794 3504 [ 717A2207FD6F13AD3E664C7D5A43C7BF ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
      16:09:40.0820 3504 HDAudBus - ok
      16:09:40.0838 3504 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
      16:09:40.0851 3504 HidBatt - ok
      16:09:40.0863 3504 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
      16:09:40.0879 3504 HidBth - ok
      16:09:40.0892 3504 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
      16:09:40.0920 3504 HidIr - ok
      16:09:40.0947 3504 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\system32\hidserv.dll
      16:09:40.0990 3504 hidserv - ok
      16:09:41.0013 3504 [ 25072FB35AC90B25F9E4E3BACF774102 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
      16:09:41.0025 3504 HidUsb - ok
      16:09:41.0043 3504 [ 741C2A45CA8407E374AABA3E330B7872 ] hkmsvc C:\Windows\system32\kmsvc.dll
      16:09:41.0072 3504 hkmsvc - ok
      16:09:41.0087 3504 [ A768CA158BB06782A2835B907F4873C3 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
      16:09:41.0126 3504 HomeGroupListener - ok
      16:09:41.0156 3504 [ FB08DEC5EF43D0C66D83B8E9694E7549 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
      16:09:41.0199 3504 HomeGroupProvider - ok
      16:09:41.0291 3504 [ 1DAE5C46D42B02A6D5862E1482EFB390 ] hpqcxs08 C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
      16:09:41.0307 3504 hpqcxs08 ( UnsignedFile.Multi.Generic ) - warning
      16:09:41.0307 3504 hpqcxs08 - detected UnsignedFile.Multi.Generic (1)
      16:09:41.0324 3504 [ 99E8EEF42FE2F4AF29B08C3355DD7685 ] hpqddsvc C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll
      16:09:41.0354 3504 hpqddsvc ( UnsignedFile.Multi.Generic ) - warning
      16:09:41.0354 3504 hpqddsvc - detected UnsignedFile.Multi.Generic (1)
      16:09:41.0370 3504 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\DRIVERS\HpSAMD.sys
      16:09:41.0384 3504 HpSAMD - ok
      16:09:41.0419 3504 [ C531C7FD9E8B62021112787C4E2C5A5A ] HTTP C:\Windows\system32\drivers\HTTP.sys
      16:09:41.0452 3504 HTTP - ok
      16:09:41.0466 3504 [ 8305F33CDE89AD6C7A0763ED0B5A8D42 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
      16:09:41.0476 3504 hwpolicy - ok
      16:09:41.0486 3504 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
      16:09:41.0513 3504 i8042prt - ok
      16:09:41.0543 3504 [ 934AF4D7C5F457B9F0743F4299B77B67 ] iaStorV C:\Windows\system32\DRIVERS\iaStorV.sys
      16:09:41.0559 3504 iaStorV - ok
      16:09:41.0593 3504 [ 5AF815EB5BC9802E5A064E2BA62BFC0C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
      16:09:41.0617 3504 idsvc - ok
      16:09:41.0790 3504 [ DCE0B53570703CCE580D066F89EF58CD ] igfx C:\Windows\system32\DRIVERS\igdkmd32.sys
      16:09:42.0042 3504 igfx - ok
      16:09:42.0074 3504 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
      16:09:42.0085 3504 iirsp - ok
      16:09:42.0124 3504 [ FAC0EE6562B121B1399D6E855583F7A5 ] IKEEXT C:\Windows\System32\ikeext.dll
      16:09:42.0175 3504 IKEEXT - ok
      16:09:42.0199 3504 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\DRIVERS\intelide.sys
      16:09:42.0209 3504 intelide - ok
      16:09:42.0223 3504 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
      16:09:42.0238 3504 intelppm - ok
      16:09:42.0255 3504 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
      16:09:42.0298 3504 IPBusEnum - ok
      16:09:42.0314 3504 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
      16:09:42.0340 3504 IpFilterDriver - ok
      16:09:42.0364 3504 [ 477397B432A256A50EE7E4339EB9EA14 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
      16:09:42.0414 3504 iphlpsvc - ok
      16:09:42.0432 3504 [ E4454B6C37D7FFD5649611F6496308A7 ] IPMIDRV C:\Windows\system32\DRIVERS\IPMIDrv.sys
      16:09:42.0446 3504 IPMIDRV - ok
      16:09:42.0459 3504 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys
      16:09:42.0486 3504 IPNAT - ok
      16:09:42.0496 3504 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys
      16:09:42.0523 3504 IRENUM - ok
      16:09:42.0546 3504 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\DRIVERS\isapnp.sys
      16:09:42.0557 3504 isapnp - ok
      16:09:42.0575 3504 [ ED46C223AE46C6866AB77CDC41C404B7 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
      16:09:42.0589 3504 iScsiPrt - ok
      16:09:42.0608 3504 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
      16:09:42.0619 3504 kbdclass - ok
      16:09:42.0632 3504 [ 3D9F0EBF350EDCFD6498057301455964 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
      16:09:42.0664 3504 kbdhid - ok
      16:09:42.0677 3504 [ F42309C4191C506B71DB5D1126D26318 ] KeyIso C:\Windows\system32\lsass.exe
      16:09:42.0692 3504 KeyIso - ok
      16:09:42.0703 3504 [ E36A061EC11B373826905B21BE10948F ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
      16:09:42.0715 3504 KSecDD - ok
      16:09:42.0748 3504 [ 365C6154BBBC5377173F1CA7BFB6CC59 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
      16:09:42.0761 3504 KSecPkg - ok
      16:09:42.0778 3504 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll
      16:09:42.0825 3504 KtmRm - ok
      16:09:42.0869 3504 [ 8F6BF790D3168224C16F2AF68A84438C ] LanmanServer C:\Windows\system32\srvsvc.dll
      16:09:42.0923 3504 LanmanServer - ok
      16:09:42.0952 3504 [ B9891F885DCF1F0513A51CB58493CB1F ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
      16:09:43.0002 3504 LanmanWorkstation - ok
      16:09:43.0024 3504 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
      16:09:43.0062 3504 lltdio - ok
      16:09:43.0084 3504 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll
      16:09:43.0127 3504 lltdsvc - ok
      16:09:43.0142 3504 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll
      16:09:43.0169 3504 lmhosts - ok
      16:09:43.0198 3504 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
      16:09:43.0210 3504 LSI_FC - ok
      16:09:43.0219 3504 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
      16:09:43.0231 3504 LSI_SAS - ok
      16:09:43.0242 3504 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
      16:09:43.0255 3504 LSI_SAS2 - ok
      16:09:43.0266 3504 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
      16:09:43.0278 3504 LSI_SCSI - ok
      16:09:43.0295 3504 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys
      16:09:43.0331 3504 luafv - ok
      16:09:43.0361 3504 [ E2B0887816ED336685954E3D8FDAA51D ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
      16:09:43.0388 3504 Mcx2Svc - ok
      16:09:43.0450 3504 [ 7CF1B716372B89568AE4C0FE769F5869 ] MDM C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
      16:09:43.0480 3504 MDM ( UnsignedFile.Multi.Generic ) - warning
      16:09:43.0480 3504 MDM - detected UnsignedFile.Multi.Generic (1)
      16:09:43.0504 3504 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
      16:09:43.0525 3504 megasas - ok
      16:09:43.0546 3504 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
      16:09:43.0567 3504 MegaSR - ok
      16:09:43.0585 3504 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll
      16:09:43.0619 3504 MMCSS - ok
      16:09:43.0634 3504 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys
      16:09:43.0675 3504 Modem - ok
      16:09:43.0690 3504 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
      16:09:43.0722 3504 monitor - ok
      16:09:43.0739 3504 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
      16:09:43.0752 3504 mouclass - ok
      16:09:43.0763 3504 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
      16:09:43.0777 3504 mouhid - ok
      16:09:43.0794 3504 [ 921C18727C5920D6C0300736646931C2 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
      16:09:43.0806 3504 mountmgr - ok
      16:09:43.0819 3504 [ 2AF5997438C55FB79D33D015C30E1974 ] mpio C:\Windows\system32\DRIVERS\mpio.sys
      16:09:43.0831 3504 mpio - ok
      16:09:43.0844 3504 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
      16:09:43.0870 3504 mpsdrv - ok
      16:09:43.0890 3504 [ 5CD996CECF45CBC3E8D109C86B82D69E ] MpsSvc C:\Windows\system32\mpssvc.dll
      16:09:43.0926 3504 MpsSvc - ok
      16:09:43.0939 3504 [ B1BE47008D20E43DA3ADC37C24CDB89D ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
      16:09:43.0956 3504 MRxDAV - ok
      16:09:43.0990 3504 [ CA7570E42522E24324A12161DB14EC02 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
      16:09:44.0060 3504 mrxsmb - ok
      16:09:44.0077 3504 [ C108952D3660375DCB716B222912E868 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
      16:09:44.0112 3504 mrxsmb10 - ok
      16:09:44.0142 3504 [ 25C38264A3C72594DD21D355D70D7A5D ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
      16:09:44.0171 3504 mrxsmb20 - ok
      16:09:44.0198 3504 [ 4326D168944123F38DD3B2D9C37A0B12 ] msahci C:\Windows\system32\DRIVERS\msahci.sys
      16:09:44.0210 3504 msahci - ok
      16:09:44.0225 3504 [ 455029C7174A2DBB03DBA8A0D8BDDD9A ] msdsm C:\Windows\system32\DRIVERS\msdsm.sys
      16:09:44.0238 3504 msdsm - ok
      16:09:44.0269 3504 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe
      16:09:44.0301 3504 MSDTC - ok
      16:09:44.0315 3504 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys
      16:09:44.0346 3504 Msfs - ok
      16:09:44.0359 3504 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
      16:09:44.0385 3504 mshidkmdf - ok
      16:09:44.0410 3504 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\DRIVERS\msisadrv.sys
      16:09:44.0421 3504 msisadrv - ok
      16:09:44.0462 3504 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
      16:09:44.0505 3504 MSiSCSI - ok
      16:09:44.0510 3504 msiserver - ok
      16:09:44.0533 3504 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
      16:09:44.0573 3504 MSKSSRV - ok
      16:09:44.0593 3504 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
      16:09:44.0619 3504 MSPCLOCK - ok
      16:09:44.0632 3504 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
      16:09:44.0657 3504 MSPQM - ok
      16:09:44.0673 3504 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
      16:09:44.0687 3504 MsRPC - ok
      16:09:44.0704 3504 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
      16:09:44.0715 3504 mssmbios - ok
      16:09:44.0732 3504 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
      16:09:44.0757 3504 MSTEE - ok
      16:09:44.0772 3504 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
      16:09:44.0805 3504 MTConfig - ok
      16:09:44.0820 3504 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys
      16:09:44.0832 3504 Mup - ok
      16:09:44.0858 3504 [ 80284F1985C70C86F0B5F86DA2DFE1DF ] napagent C:\Windows\system32\qagentRT.dll
      16:09:44.0891 3504 napagent - ok
      16:09:44.0913 3504 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
      16:09:44.0942 3504 NativeWifiP - ok
      16:09:44.0966 3504 [ 23759D175A0A9BAAF04D05047BC135A8 ] NDIS C:\Windows\system32\drivers\ndis.sys
      16:09:44.0990 3504 NDIS - ok
      16:09:45.0002 3504 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
      16:09:45.0037 3504 NdisCap - ok
      16:09:45.0055 3504 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
      16:09:45.0095 3504 NdisTapi - ok
      16:09:45.0116 3504 [ B30AE7F2B6D7E343B0DF32E6C08FCE75 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
      16:09:45.0159 3504 Ndisuio - ok
      16:09:45.0176 3504 [ 267C415EADCBE53C9CA873DEE39CF3A4 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
      16:09:45.0203 3504 NdisWan - ok
      16:09:45.0215 3504 [ AF7E7C63DCEF3F8772726F86039D6EB4 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
      16:09:45.0254 3504 NDProxy - ok
      16:09:45.0280 3504 [ 510C138564486FF926A3F773205C63D1 ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
      16:09:45.0300 3504 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
      16:09:45.0300 3504 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
      16:09:45.0316 3504 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
      16:09:45.0342 3504 NetBIOS - ok
      16:09:45.0356 3504 [ DD52A733BF4CA5AF84562A5E2F963B91 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
      16:09:45.0393 3504 NetBT - ok
      16:09:45.0411 3504 [ F42309C4191C506B71DB5D1126D26318 ] Netlogon C:\Windows\system32\lsass.exe
      16:09:45.0426 3504 Netlogon - ok
      16:09:45.0464 3504 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll
      16:09:45.0495 3504 Netman - ok
      16:09:45.0524 3504 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
      16:09:45.0535 3504 NetMsmqActivator - ok
      16:09:45.0539 3504 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
      16:09:45.0549 3504 NetPipeActivator - ok
      16:09:45.0571 3504 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll
      16:09:45.0614 3504 netprofm - ok
      16:09:45.0619 3504 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
      16:09:45.0629 3504 NetTcpActivator - ok
      16:09:45.0633 3504 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
      16:09:45.0643 3504 NetTcpPortSharing - ok
      16:09:45.0663 3504 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
      16:09:45.0675 3504 nfrd960 - ok
      16:09:45.0693 3504 [ 2226496E34BD40734946A054B1CD657F ] NlaSvc C:\Windows\System32\nlasvc.dll
      16:09:45.0734 3504 NlaSvc - ok
      16:09:45.0749 3504 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys
      16:09:45.0787 3504 Npfs - ok
      16:09:45.0792 3504 npggsvc - ok
      16:09:45.0808 3504 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll
      16:09:45.0839 3504 nsi - ok
      16:09:45.0851 3504 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
      16:09:45.0876 3504 nsiproxy - ok
      16:09:45.0910 3504 [ 3795DCD21F740EE799FB7223234215AF ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
      16:09:45.0955 3504 Ntfs - ok
      16:09:45.0971 3504 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys
      16:09:45.0997 3504 Null - ok
      16:09:46.0193 3504 [ AFB33A823AABC112FC7BD62AFBCDB0CD ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
      16:09:46.0498 3504 nvlddmkm - ok
      16:09:46.0541 3504 [ 3F3D04B1D08D43C16EA7963954EC768D ] nvraid C:\Windows\system32\DRIVERS\nvraid.sys
      16:09:46.0581 3504 nvraid - ok
      16:09:46.0608 3504 [ C99F251A5DE63C6F129CF71933ACED0F ] nvstor C:\Windows\system32\DRIVERS\nvstor.sys
      16:09:46.0631 3504 nvstor - ok
      16:09:46.0724 3504 [ 782945716AD010AC3D41758E8E52C735 ] nvsvc C:\Windows\system32\nvvsvc.exe
      16:09:46.0769 3504 nvsvc - ok
      16:09:47.0004 3504 [ A974E5C310B9B00894070CEB055D467F ] nvUpdatusService C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
      16:09:47.0068 3504 nvUpdatusService - ok
      16:09:47.0095 3504 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\DRIVERS\nv_agp.sys
      16:09:47.0126 3504 nv_agp - ok
      16:09:47.0201 3504 [ 84DE1DD996B48B05ACE31AD015FA108A ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
      16:09:47.0240 3504 odserv - ok
      16:09:47.0282 3504 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys
      16:09:47.0346 3504 ohci1394 - ok
      16:09:47.0390 3504 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
      16:09:47.0410 3504 ose - ok
      16:09:47.0489 3504 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
      16:09:47.0572 3504 p2pimsvc - ok
      16:09:47.0604 3504 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
      16:09:47.0651 3504 p2psvc - ok
      16:09:47.0683 3504 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys
      16:09:47.0711 3504 Parport - ok
      16:09:47.0728 3504 [ FF4218952B51DE44FE910953A3E686B9 ] partmgr C:\Windows\system32\drivers\partmgr.sys
      16:09:47.0742 3504 partmgr - ok
      16:09:47.0760 3504 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
      16:09:47.0774 3504 Parvdm - ok
      16:09:47.0789 3504 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
      16:09:47.0817 3504 PcaSvc - ok
      16:09:47.0830 3504 [ C858CB77C577780ECC456A892E7E7D0F ] pci C:\Windows\system32\DRIVERS\pci.sys
      16:09:47.0843 3504 pci - ok
      16:09:47.0861 3504 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\DRIVERS\pciide.sys
      16:09:47.0872 3504 pciide - ok
      16:09:47.0888 3504 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
      16:09:47.0903 3504 pcmcia - ok
      16:09:47.0919 3504 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
      16:09:47.0931 3504 pcw - ok
      16:09:47.0950 3504 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
      16:09:48.0028 3504 PEAUTH - ok
      16:09:48.0071 3504 [ AF4D64D2A57B9772CF3801950B8058A6 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
      16:09:48.0196 3504 PeerDistSvc - ok
      16:09:48.0269 3504 [ 9C1BFF7910C89A1D12E57343475840CB ] pla C:\Windows\system32\pla.dll
      16:09:48.0333 3504 pla - ok
      16:09:48.0364 3504 [ 71DEF5EC79774C798342D0EA16E41780 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
      16:09:48.0423 3504 PlugPlay - ok
      16:09:48.0446 3504 [ 37E5E8FFBAD35605DAEEC3224EA0E465 ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
      16:09:48.0453 3504 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
      16:09:48.0453 3504 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
      16:09:48.0493 3504 [ 205E1B699FD3F2F9B036EEA2EC30C620 ] PnkBstrA C:\Windows\system32\PnkBstrA.exe
      16:09:48.0505 3504 PnkBstrA - ok
      16:09:48.0560 3504 [ 80B2BFDF72A938A022B75FB17924B59E ] PnkBstrB C:\Windows\system32\PnkBstrB.exe
      16:09:48.0575 3504 PnkBstrB - ok
      16:09:48.0608 3504 [ 4CAF4189905F6F6C77494F4B068F68AB ] PnkBstrK C:\Windows\system32\drivers\PnkBstrK.sys
      16:09:48.0618 3504 PnkBstrK - ok
      16:09:48.0658 3504 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
      16:09:48.0690 3504 PNRPAutoReg - ok
      16:09:48.0714 3504 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
      16:09:48.0733 3504 PNRPsvc - ok
      16:09:48.0769 3504 [ 48E1B75C6DC0232FD92BAAE4BD344721 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
      16:09:48.0801 3504 PolicyAgent - ok
      16:09:48.0819 3504 [ DBFF83F709A91049621C1D35DD45C92C ] Power C:\Windows\system32\umpo.dll
      16:09:48.0861 3504 Power - ok
      16:09:48.0892 3504 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
      16:09:48.0937 3504 PptpMiniport - ok
      16:09:48.0961 3504 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\DRIVERS\processr.sys
      16:09:48.0987 3504 Processor - ok
      16:09:49.0017 3504 [ 630CF26F0227498B7D5A92B12548960F ] ProfSvc C:\Windows\system32\profsvc.dll
      16:09:49.0047 3504 ProfSvc - ok
      16:09:49.0060 3504 [ F42309C4191C506B71DB5D1126D26318 ] ProtectedStorage C:\Windows\system32\lsass.exe
      16:09:49.0075 3504 ProtectedStorage - ok
      16:09:49.0087 3504 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys
      16:09:49.0113 3504 Psched - ok
      16:09:49.0153 3504 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
      16:09:49.0200 3504 ql2300 - ok
      16:09:49.0213 3504 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
      16:09:49.0226 3504 ql40xx - ok
      16:09:49.0248 3504 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll
      16:09:49.0280 3504 QWAVE - ok
      16:09:49.0296 3504 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
      16:09:49.0325 3504 QWAVEdrv - ok
      16:09:49.0347 3504 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
      16:09:49.0387 3504 RasAcd - ok
      16:09:49.0412 3504 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
      16:09:49.0438 3504 RasAgileVpn - ok
      16:09:49.0453 3504 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll
      16:09:49.0482 3504 RasAuto - ok

    10. #10
      Ex-Colaborador Avatar de Gemsa_03
      Registrado
      feb 2012
      Ubicación
      Málaga-España
      Mensajes
      6.615

      Re: Problema con el virus sirefef

      Hola, ¿y el resto?

      Espero resto de informes.

      Saludos.