1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Inactive Update on No Chkdsk in Windows XP forum

Discussion in 'Malware and Virus Removal Archive' started by Spanner, 2012/09/28.

  1. 2012/09/28
    Spanner

    Spanner Inactive Thread Starter

    Joined:
    2006/08/27
    Messages:
    451
    Likes Received:
    1
    [Inactive] Update on No Chkdsk in Windows XP forum

    Further to Spyware Dr's request for mbam and GMER scans, completed mbam scan results 'No Malicious Items detected' GMER scan would not complete because of a problem with uninstalling AVG. I also tried Add/Remove to uninstall but AVG was not even on the list.
    In desperation got Mcafee to have a scan but they could not get past the AVG uninstal. Have No Mcafee at the moment but Firewall and Virus protection is still on ?. Mcafee tried remote control of my mouse and keyboard, and left Mcfee installing which it did not because of the AVG problem it seems.
    This is the problem PC I am working on which I cannot get CHKDSK or System Restore to run.
    Any Ideas?
    Spanner
     
  2. 2012/09/28
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116

  3. to hide this advert.

  4. 2012/09/29
    Spanner

    Spanner Inactive Thread Starter

    Joined:
    2006/08/27
    Messages:
    451
    Likes Received:
    1
    Update on No Chkdsk in windows forum

    Same Conmputer, could not complete previous scans because of health (mine) problems, came back to PC with its own health problems here are some of the basics.
    Will not CHKDSK, will not SYSTEM RESTORE, Will not read from memory card or stick. mban scan completed and reported NO malicious items detected. GMER scan did not complete due to problem with AVG, could not uninstal. tried to uninstal via Add/ Remove, it was not on the list.
    In desperation tried to get Mcafee to scan, it also had problems uninstalling AVG, and could not instal to scan.
    I have no Mcafee installed now,Firewall and Virus protection are still active ?.
    Shall I start again from the beginning with mbam scan and so on.
    The problem seems to be associated with files attributed to previous owner/administrator Pat Cox, for instance, one of the corrupt files is named C:\Documents and settings\Pat cox\ Local Settings\History\ History .IE5\ MS Hist. another corrupt file is the System Restore.
    Might be best to dump the HD?or format it.?
    Spanner
     
  5. 2012/09/29
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    Please, complete all steps listed HERE
     
  6. 2012/09/30
    Spanner

    Spanner Inactive Thread Starter

    Joined:
    2006/08/27
    Messages:
    451
    Likes Received:
    1
    No CHKDSK etc Log mbam-setup.exe

    Malwarebytes Anti-Malware 1.65.0.1400
    www.malwarebytes.org

    Database version: v2012.09.30.01

    Windows XP Service Pack 3 x86 FAT32
    Internet Explorer 8.0.6001.18702
    Pat cox :: SSTYLE [administrator]

    30/09/2012 13:06:37
    mbam-log-2012-09-30 (13-06-37).txt

    Scan type: Quick scan
    Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
    Scan options disabled: P2P
    Objects scanned: 260842
    Time elapsed: 23 minute(s), 11 second(s)

    Memory Processes Detected: 0
    (No malicious items detected)

    Memory Modules Detected: 0
    (No malicious items detected)

    Registry Keys Detected: 0
    (No malicious items detected)

    Registry Values Detected: 0
    (No malicious items detected)

    Registry Data Items Detected: 0
    (No malicious items detected)

    Folders Detected: 0
    (No malicious items detected)

    Files Detected: 0
    (No malicious items detected)

    (end)
     
  7. 2012/09/30
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    Go on...
     
  8. 2012/10/03
    Spanner

    Spanner Inactive Thread Starter

    Joined:
    2006/08/27
    Messages:
    451
    Likes Received:
    1
    Hi Broni, thanks for your help, I have not forgotten I still have GMER scans to do, I am in the middle of producing our Magazine for October deadline, will run scans SAP.
    Spanner
     
  9. 2012/10/03
    Spanner

    Spanner Inactive Thread Starter

    Joined:
    2006/08/27
    Messages:
    451
    Likes Received:
    1
    GMER LOGS 1 of 2.GMER 1.0.15.15641 - http://www.gmer.net
    Rootkit scan 2012-10-03 14:20:07
    Windows 5.1.2600 Service Pack 3 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T1L0-3 Maxtor_6Y080L0 rev.YAR41BW0
    Running: pxqznilf[1].exe; Driver: C:\DOCUME~1\PATCOX~1\LOCALS~1\Temp\kgtdypod.sys


    ---- User code sections - GMER 1.0.15 ----

    .text C:\Program Files\Internet Explorer\iexplore.exe[3792] USER32.dll!DialogBoxParamW 7E4247AB 5 Bytes JMP 3E215505 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
    .text C:\Program Files\Internet Explorer\iexplore.exe[3792] USER32.dll!CreateWindowExW 7E42D0A3 5 Bytes JMP 3E2EDAD4 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
    .text C:\Program Files\Internet Explorer\iexplore.exe[3792] USER32.dll!DialogBoxIndirectParamW 7E432072 5 Bytes JMP 3E3E7207 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
    .text C:\Program Files\Internet Explorer\iexplore.exe[3792] USER32.dll!MessageBoxIndirectA 7E43A082 5 Bytes JMP 3E3E7139 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
    .text C:\Program Files\Internet Explorer\iexplore.exe[3792] USER32.dll!DialogBoxParamA 7E43B144 5 Bytes JMP 3E3E71A4 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
    .text C:\Program Files\Internet Explorer\iexplore.exe[3792] USER32.dll!MessageBoxExW 7E450838 5 Bytes JMP 3E3E700A C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
    .text C:\Program Files\Internet Explorer\iexplore.exe[3792] USER32.dll!MessageBoxExA 7E45085C 5 Bytes JMP 3E3E706C C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
    .text C:\Program Files\Internet Explorer\iexplore.exe[3792] USER32.dll!DialogBoxIndirectParamA 7E456D7D 5 Bytes JMP 3E3E726A C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
    .text C:\Program Files\Internet Explorer\iexplore.exe[3792] USER32.dll!MessageBoxIndirectW 7E4664D5 5 Bytes JMP 3E3E70CE C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
    .text C:\Program Files\Internet Explorer\iexplore.exe[3912] USER32.dll!DialogBoxParamW 7E4247AB 5 Bytes JMP 3E215505 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
    .text C:\Program Files\Internet Explorer\iexplore.exe[3912] USER32.dll!SetWindowsHookExW 7E42820F 5 Bytes JMP 3E2E9A65 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
    .text C:\Program Files\Internet Explorer\iexplore.exe[3912] USER32.dll!CallNextHookEx 7E42B3C6 5 Bytes JMP 3E2DD0DD C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
    .text C:\Program Files\Internet Explorer\iexplore.exe[3912] USER32.dll!CreateWindowExW 7E42D0A3 5 Bytes JMP 3E2EDAD4 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
    .text C:\Program Files\Internet Explorer\iexplore.exe[3912] USER32.dll!UnhookWindowsHookEx 7E42D5F3 5 Bytes JMP 3E25466C C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
    .text C:\Program Files\Internet Explorer\iexplore.exe[3912] USER32.dll!DialogBoxIndirectParamW 7E432072 5 Bytes JMP 3E3E7207 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
    .text C:\Program Files\Internet Explorer\iexplore.exe[3912] USER32.dll!MessageBoxIndirectA 7E43A082 5 Bytes JMP 3E3E7139 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
    .text C:\Program Files\Internet Explorer\iexplore.exe[3912] USER32.dll!DialogBoxParamA 7E43B144 5 Bytes JMP 3E3E71A4 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
    .text C:\Program Files\Internet Explorer\iexplore.exe[3912] USER32.dll!MessageBoxExW 7E450838 5 Bytes JMP 3E3E700A C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
    .text C:\Program Files\Internet Explorer\iexplore.exe[3912] USER32.dll!MessageBoxExA 7E45085C 5 Bytes JMP 3E3E706C C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
    .text C:\Program Files\Internet Explorer\iexplore.exe[3912] USER32.dll!DialogBoxIndirectParamA 7E456D7D 5 Bytes JMP 3E3E726A C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
    .text C:\Program Files\Internet Explorer\iexplore.exe[3912] USER32.dll!MessageBoxIndirectW 7E4664D5 5 Bytes JMP 3E3E70CE C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
    .text C:\Program Files\Internet Explorer\iexplore.exe[3912] ole32.dll!CoCreateInstance 774FF1BC 5 Bytes JMP 3E2EDB30 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
    .text C:\Program Files\Internet Explorer\iexplore.exe[3912] ole32.dll!OleLoadFromStream 7752983B 5 Bytes JMP 3E3E756F C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)

    ---- User IAT/EAT - GMER 1.0.15 ----

    IAT C:\Program Files\Internet Explorer\iexplore.exe[3912] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExW] [451F1ACB] C:\Program Files\Internet Explorer\xpshims.dll (Internet Explorer Compatibility Shims for XP/Microsoft Corporation)

    ---- Registry - GMER 1.0.15 ----

    Reg HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\PrefetchParameters@VideoInitTime 1062

    ---- Files - GMER 1.0.15 ----

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\dystate.==
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\adyState. ==
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ };

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\tion ().{

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ent.gete.lem
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ __mi.cro
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\er = {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\gent: wi.ndo
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\,

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\() {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ent = th.is.
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\owser().{

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\(/ aolbu.ild
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ f.unc
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\matches.= u
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ r.etu
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\atches =. us
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ws Live.Mes
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ null;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\) {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ches = u.ser
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\//i);

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\rn match.es
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ }

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\nction i.sSa
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\


    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\hrome().{

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ return.mat
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ft Inter.net
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\= null)
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ return.fal
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\false;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\rn true;.

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\f(isAolB.row
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ r.etu
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\())

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\this.typ.es.
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ if(is.Liv
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\liveMess.eng
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ ret.urn
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ retu.rn
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\orer())
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\urn this..ty
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ retu.rn
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\s: {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\r.curren.tus
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\e|micros.oft
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\mber(mat.che
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\3]);

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ }.;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\__Micros.oft
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ativeele.men
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\iveEleme.nt(
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ this.p.lac
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ry;
    .thi
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ad.proto.typ
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\() {.

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ode = do.cum
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\an');

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\e.displa.y =
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ = "rela.tiv
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\node.cla.ssN
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ertising._ad
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ return.wra
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\__Micros.oft
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ype.crea.tiv
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ if.(cr
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\Microsof.tAd
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ } e.lse
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\agName.t.oLo
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\) {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\Ad.Flash.cre
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\);

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\vertisin.g.A
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\reativee.lem
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\lement.i.sLo
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ __Micro.sof
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\type.wra.pCr
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\reative.&&
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\tElement.().
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\his.crea.tiv
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\Node.ins.ert
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\his.crea.tiv
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ }

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ement()).;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ }
    _._mi
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\
    pla.cem
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\t = this..cr
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\t = this..cr
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ }

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\tion()

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ r.etu
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\upported. =
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\vertisin.g.b
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\tadverti.sin
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\owser ==. ty
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ == type.s.s
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ ret.urn
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ }

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\tising.a.d.p
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\is.plugi.ns[
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ar rootp.ath
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ry;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\is;


    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\tadverti.sin
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ad.plugi.ns[
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\th);

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\sing.ad..plu
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ce();

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ctory +.plu
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\nce

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\sing.ad..pro
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\plugins[.plu
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\();
    .del
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\_Microso.fta
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\rosoftad.ver
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ion(crea.tiv
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\(placeme.ntI
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ i<this..ins
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\
    va.r a
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\;
    i.f(a
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\cementId. ==
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ __Micr.oso
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\eCreativ.e =
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\nt) {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ent = an.cho
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ this.c.rea
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ ")[0];

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\rosoftad.ver
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ve.proto.typ
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\() {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ }
    __.Mic
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ImageCre.ati
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\rototype..ge
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\__Micros.oft
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\reative.= f
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\) {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ ")[0];

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\}

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\false;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\tch(e) {.

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ingEmbed. =
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ }

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\this.cre.ati
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\d ? embe.d :
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ }

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ising.Ad..fl
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\prototyp.e.r
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ion() {
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ode = th.is.
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\tNode;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\e) {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ = false.;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\tNode.re.mov
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\lement);.

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ashcreat.ive
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\Element).;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ flash.Ad.
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ 0
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\_Microso.fta
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\tion() {.

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ady) {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ if(th.is.
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\urn true.;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ch(e) {
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\s.rebind.Fla
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ }

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ retur.n f
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\_Microso.fta
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\e.getact.ive
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\tising)
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\icrosoft.adv
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\return;
    .


    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\layeleme.nt(
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\var elem.ent
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\e.displa.y =
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\uctor.px.Hei
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ructor.p.xwi
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\element..tar
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\Element(.'im
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\le.borde.rwi
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\
    . re
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\
    Ful.ldi
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ = 15;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\oonlyele.men
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\yle.disp.lay
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\tructor..pxH
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ elemen.t.s
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\structor..px
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ elemen.t.t
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\
    . va
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\tyle.bor.der
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\mg.style..di
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ img..sr
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ ";

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\img);

    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\
    }
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\this.ele.men
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\terval;
    .


    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\adChoice.sPl
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ funct.ion
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\terval);.

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\Area = a.d.g
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ght * ad..ge
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\h;
    .var
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ if.(ad
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\inLargeA.dAr
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ elem.ent
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ment(roo.tPa
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ else if.(ad
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\inAdArea.)

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\lement =. ne
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\tPath);
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ent)

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ement);
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\imeout(
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ display.Plu
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ );

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ }
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\terval =. se
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\00

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\lugin.pr.oto
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ion() {
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ ele.men
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\bsolute ".;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\le.zInde.x =
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\icesPlug.in.
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\is.eleme.nt.
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\d(this.e.lem
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\* fulldi.spl
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ __Micro.sof
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ns.AdCho.ice
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ if(!wi.ndo
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ing)

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\advertis.ing
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\icrosoft.adv
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\der) {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\tising.a.tla
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ = this..fin
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\vioussib.lin
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\e;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\findAuto.loa
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ this.fi.ndl
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ i.f(t
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ && test.Nod
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\() == "s.cri
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\tribute(. "sr
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\vioussib.lin
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\


    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\l;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\/)/.test.(do
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\cript: f.unc
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ var. te
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ode.node.Typ
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\gName.to.low
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\&& /\/j?.vie
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\test(tes.tNo
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\))) {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ }

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\var chil.d =
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\d.nodety.pe
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\bling;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\s.findLa.std
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\} else {.

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ }

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\,

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ent.body.

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\xistinga.tla
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\unction.exi
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ var p.lac
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\hes = do.cum
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ch(/\/i?.vie
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\;
    if.(ma
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\_Microso.fta
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\
    c.rea
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\asJavasc.rip
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ootcreat.ive
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\
    var.pla
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\= placem.ent
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\if(match.es)
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\_Microso.fta
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\
    c.rea
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\g.existi.ngA
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\findAuto.loa
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\dystate.==
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\adyState. ==
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ };

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\tion ().{

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ent.gete.lem
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ __mi.cro
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\er = {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\gent: wi.ndo
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\,

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\() {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ent = th.is.
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\owser().{

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\(/ aolbu.ild
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ f.unc
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\matches.= u
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ r.etu
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\atches =. us
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ws Live.Mes
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ null;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\) {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ches = u.ser
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\\//i);

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\rn match.es
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ }

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\nction i.sSa
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\


    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\hrome().{
     
    Last edited: 2012/10/03
  10. 2012/10/03
    Spanner

    Spanner Inactive Thread Starter

    Joined:
    2006/08/27
    Messages:
    451
    Likes Received:
    1
    GMER LOGS.2 of 3.File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ return.mat
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ft Inter.net
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\= null)
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ return.fal
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\false;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\rn true;.

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\f(isAolB.row
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ r.etu
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\())

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\this.typ.es.
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ if(is.Liv
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\liveMess.eng
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ ret.urn
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ retu.rn
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\orer())
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\urn this..ty
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ retu.rn
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\s: {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\r.curren.tus
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\e|micros.oft
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\mber(mat.che
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\3]);

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ }.;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\__Micros.oft
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ativeele.men
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\iveEleme.nt(
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ this.p.lac
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ry;
    .thi
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ad.proto.typ
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\() {.

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ode = do.cum
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\an');

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\e.displa.y =
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ = "rela.tiv
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\node.cla.ssN
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ertising._ad
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ return.wra
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\__Micros.oft
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ype.crea.tiv
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ if.(cr
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\Microsof.tAd
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ } e.lse
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\agName.t.oLo
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\) {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\Ad.Flash.cre
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\);

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\vertisin.g.A
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\reativee.lem
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\lement.i.sLo
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ __Micro.sof
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\type.wra.pCr
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\reative.&&
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\tElement.().
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\his.crea.tiv
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\Node.ins.ert
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\his.crea.tiv
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ }

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ement()).;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ }
    _._mi
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\
    pla.cem
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\t = this..cr
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\t = this..cr
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ }

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\tion()

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ r.etu
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\upported. =
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\vertisin.g.b
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\tadverti.sin
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\owser ==. ty
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ == type.s.s
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ ret.urn
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ }

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\tising.a.d.p
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\is.plugi.ns[
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ar rootp.ath
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ry;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\is;


    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\tadverti.sin
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ad.plugi.ns[
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\th);

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\sing.ad..plu
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ce();

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ctory +.plu
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\nce

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\sing.ad..pro
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\plugins[.plu
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\();
    .del
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\_Microso.fta
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\rosoftad.ver
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ion(crea.tiv
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\(placeme.ntI
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ i<this..ins
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\
    va.r a
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\;
    i.f(a
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\cementId. ==
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ __Micr.oso
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\eCreativ.e =
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\nt) {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ent = an.cho
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ this.c.rea
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ ")[0];

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\rosoftad.ver
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ve.proto.typ
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\() {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ }
    __.Mic
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ImageCre.ati
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\rototype..ge
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\__Micros.oft
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\reative.= f
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\) {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ ")[0];

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\}

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\false;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\tch(e) {.

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ingEmbed. =
     
  11. 2012/10/03
    Spanner

    Spanner Inactive Thread Starter

    Joined:
    2006/08/27
    Messages:
    451
    Likes Received:
    1
    GMER LOGS 3 0f 3.File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ }

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ising.Ad..fl
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\prototyp.e.r
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ion() {
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ode = th.is.
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\tNode;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\e) {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ = false.;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\tNode.re.mov
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\lement);.

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ashcreat.ive
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\Element).;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ flash.Ad.
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ 0
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\_Microso.fta
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\tion() {.

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ady) {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ if(th.is.
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\urn true.;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ch(e) {
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\s.rebind.Fla
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ }

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ retur.n f
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\_Microso.fta
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\e.getact.ive
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\tising)
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\icrosoft.adv
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\return;
    .


    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\layeleme.nt(
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\var elem.ent
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\e.displa.y =
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\uctor.px.Hei
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ructor.p.xwi
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\element..tar
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\Element(.'im
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\le.borde.rwi
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\
    . re
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\
    Ful.ldi
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ = 15;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\oonlyele.men
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\yle.disp.lay
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\tructor..pxH
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ elemen.t.s
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\structor..px
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ elemen.t.t
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\
    . va
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\tyle.bor.der
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\mg.style..di
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ img..sr
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ ";

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\img);

    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\
    }
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\this.ele.men
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\terval;
    .


    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\adChoice.sPl
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ funct.ion
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\terval);.

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\Area = a.d.g
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ght * ad..ge
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\h;
    .var
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ if.(ad
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\inLargeA.dAr
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ elem.ent
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ment(roo.tPa
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ else if.(ad
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\inAdArea.)

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\lement =. ne
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\tPath);
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ent)

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ement);
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\imeout(
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ display.Plu
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ );

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ }
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\terval =. se
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\00

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\lugin.pr.oto
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ion() {
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ ele.men
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\bsolute ".;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\le.zInde.x =
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\icesPlug.in.
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\is.eleme.nt.
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\d(this.e.lem
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\* fulldi.spl
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ __Micro.sof
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ns.AdCho.ice
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ if(!wi.ndo
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ing)

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\advertis.ing
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\icrosoft.adv
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\der) {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\tising.a.tla
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ = this..fin
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\vioussib.lin
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\e;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\findAuto.loa
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ this.fi.ndl
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ i.f(t
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ && test.Nod
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\() == "s.cri
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\tribute(. "sr
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\vioussib.lin
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\


    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\l;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\/)/.test.(do
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\cript: f.unc
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ var. te
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ode.node.Typ
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\gName.to.low
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\&& /\/j?.vie
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\test(tes.tNo
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\))) {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ }

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\var chil.d =
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\d.nodety.pe
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\bling;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\s.findLa.std
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\} else {.

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ }

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\,

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ent.body.

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\xistinga.tla
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\unction.exi
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ var p.lac
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\hes = do.cum
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ch(/\/i?.vie
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\;
    if.(ma
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\_Microso.fta
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\
    c.rea
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\asJavasc.rip
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ootcreat.ive
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\
    var.pla
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\= placem.ent
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\if(match.es)
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\_Microso.fta
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\
    c.rea
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\g.existi.ngA
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\findAuto.loa
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ipt.src..mat
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\n dir;

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\cript.sr.c.m
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\);

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\var vari.abl
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\t( "= ");
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\variable.[0]
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\t');

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\= "text/.jav
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ adScri.pt.
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\s ";

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\mentsbyt.agN
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\
    . va
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\_Microso.fta
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\inder.fi.ndC
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\tadverti.sin
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ var.plu
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\indow.se.tIn
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\(__Micro.sof
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\d) {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ameplace.men
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\w __Micr.oso
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\gAtlasIf.ram
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ {
    . a
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ r.oot
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ root.Dir
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\++) {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ }

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\ 100

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\\);
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\cript.sr.c.m
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\);

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\var vari.abl
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\t( "= ");
    .

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\variable.[0]
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\t');

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\= "text/.jav
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ adScri.pt.
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\s ";

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\mentsbyt.agN
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\
    . va
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\_Microso.fta
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\inder.fi.ndC
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\tadverti.sin
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ var.plu
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\indow.se.tIn
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\(__Micro.sof
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\d) {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ameplace.men
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\w __Micr.oso
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\gAtlasIf.ram
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ {
    . a
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ r.oot
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ root.Dir
    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\++) {

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ }

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\ 100

    File C:\Documents and Settings\Pat cox\Local Settings\Temporary Internet Files\Content.IE5\UXUZXO1O\);

    ---- EOF - GMER 1.0.15 ----
     
  12. 2012/10/03
    Spanner

    Spanner Inactive Thread Starter

    Joined:
    2006/08/27
    Messages:
    451
    Likes Received:
    1
    aswMBR next SAP.
    Spanner
     
  13. 2012/10/03
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    Ok....
     
  14. 2012/10/04
    Spanner

    Spanner Inactive Thread Starter

    Joined:
    2006/08/27
    Messages:
    451
    Likes Received:
    1
    Beginning to feel this is getting too long for this post/thread.
    Situation to-date= DDS scan will not complete, stops ( under the 'r' of 'there' in the DDS instruction "Post the contents of the logfile to the forum ' where' it was requested ")
    Computer freezes, have restart to get it back, tried this in safe mode also.
    cannot find ref to'script blocking' only Script debugging.
    Unable to uninstall AVG 2011 even though I have tried to reinstal it, also tried installing AVG 2013 in the hopes it would uninstal 2011 I could then uninstal 2013 ?. Questionis where do I go from here?
    Spanner.
     
  15. 2012/10/04
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    Download TDSSKiller and save it to your desktop.
    • Extract (unzip) its contents to your desktop.
    • Open the TDSSKiller folder and doubleclick on TDSSKiller.exe to run the application, then on Start Scan.
    • If an infected file is detected, the default action will be Cure, click on Continue.
    • If a suspicious file is detected, the default action will be Skip, click on Continue.
    • It may ask you to reboot the computer to complete the process. Click on Reboot Now.
    • If no reboot is require, click on Report. A log file should appear. Please copy and paste the contents of that file here.
    • If a reboot is required, the report can also be found in your root directory (usually C:\ folder) in the form of TDSSKiller_xxxx_log.txt. Please copy and paste the contents of that file here.

    ==============================

    • Download RogueKiller on the desktop
    • Close all the running programs
    • Windows Vista/7 users: right click on RogueKiller.exe, click Run as Administrator
    • Otherwise just double-click on RogueKiller.exe
    • Pre-scan will start. Let it finish.
    • Click on SCAN button.
    • Wait until the Status box shows Scan Finished
    • Click on Delete.
    • Wait until the Status box shows Deleting Finished.
    • Click on Report and copy/paste the content of the Notepad into your next reply.
    • RKreport.txt could also be found on your desktop.
    • If more than one log is produced post all logs.
    • If RogueKiller has been blocked, do not hesitate to try a few times more. If really won't run, rename it to winlogon.exe (or winlogon.com) and try again

    ============================

    Download aswMBR to your desktop.
    Double click the aswMBR.exe to run it.
    If you see this question: Would you like to download latest Avast! virus definitions?" say "Yes ".
    Click the "Scan" button to start scan.
    On completion of the scan click "Save log ", save it to your desktop and post in your next reply.

    NOTE. aswMBR will create MBR.dat file on your desktop. This is a copy of your MBR. Do NOT delete it.
     
  16. 2012/10/05
    Spanner

    Spanner Inactive Thread Starter

    Joined:
    2006/08/27
    Messages:
    451
    Likes Received:
    1
    Logs todate.08:06:00.0795 1868 TDSS rootkit removing tool 2.8.10.0 Sep 17 2012 19:23:24
    08:06:01.0139 1868 ============================================================
    08:06:01.0139 1868 Current date / time: 2012/10/05 08:06:01.0139
    08:06:01.0139 1868 SystemInfo:
    08:06:01.0139 1868
    08:06:01.0139 1868 OS Version: 5.1.2600 ServicePack: 3.0
    08:06:01.0139 1868 Product type: Workstation
    08:06:01.0139 1868 ComputerName: SSTYLE
    08:06:01.0139 1868 UserName: Pat cox
    08:06:01.0139 1868 Windows directory: C:\WINDOWS
    08:06:01.0139 1868 System windows directory: C:\WINDOWS
    08:06:01.0139 1868 Processor architecture: Intel x86
    08:06:01.0139 1868 Number of processors: 1
    08:06:01.0139 1868 Page size: 0x1000
    08:06:01.0139 1868 Boot type: Normal boot
    08:06:01.0139 1868 ============================================================
    08:06:01.0592 1868 Drive \Device\Harddisk0\DR0 - Size: 0x12882D8000 (74.13 Gb), SectorSize: 0x200, Cylinders: 0x25CC, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
    08:06:01.0607 1868 ============================================================
    08:06:01.0607 1868 \Device\Harddisk0\DR0:
    08:06:01.0607 1868 MBR partitions:
    08:06:01.0607 1868 \Device\Harddisk0\DR0\Partition1: MBR, Type 0xC, StartLBA 0x3F, BlocksNum 0x9441680
    08:06:01.0607 1868 ============================================================
    08:06:01.0607 1868 C: <-> \Device\Harddisk0\DR0\Partition1
    08:06:01.0607 1868 ============================================================
    08:06:01.0607 1868 Initialize success
    08:06:01.0607 1868 ============================================================
    08:06:05.0499 2052 ============================================================
    08:06:05.0499 2052 Scan started
    08:06:05.0499 2052 Mode: Manual;
    08:06:05.0499 2052 ============================================================
    08:06:06.0343 2052 ================ Scan system memory ========================
    08:06:06.0343 2052 System memory - ok
    08:06:06.0358 2052 ================ Scan services =============================
    08:06:06.0702 2052 Abiosdsk - ok
    08:06:06.0765 2052 abp480n5 - ok
    08:06:06.0843 2052 [ 8FD99680A539792A30E97944FDAECF17 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
    08:06:06.0858 2052 ACPI - ok
    08:06:06.0905 2052 [ 9859C0F6936E723E4892D7141B1327D5 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
    08:06:06.0905 2052 ACPIEC - ok
    08:06:07.0093 2052 [ B2B64AF436FACCFA854DD397027C5360 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
    08:06:07.0108 2052 AdobeFlashPlayerUpdateSvc - ok
    08:06:07.0140 2052 adpu160m - ok
    08:06:07.0233 2052 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys
    08:06:07.0233 2052 aec - ok
    08:06:07.0280 2052 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys
    08:06:07.0296 2052 AFD - ok
    08:06:07.0327 2052 Aha154x - ok
    08:06:07.0374 2052 aic78u2 - ok
    08:06:07.0405 2052 aic78xx - ok
    08:06:07.0468 2052 [ 0940030D5A5869067CCC03E3B0B8DEC7 ] alcan5wn C:\WINDOWS\system32\DRIVERS\alcan5wn.sys
    08:06:07.0468 2052 alcan5wn - ok
    08:06:07.0530 2052 [ 4C9577888C53243E2991456F510488A1 ] alcaudsl C:\WINDOWS\system32\DRIVERS\alcaudsl.sys
    08:06:07.0530 2052 alcaudsl - ok
    08:06:07.0671 2052 [ A9A3DAA780CA6C9671A19D52456705B4 ] Alerter C:\WINDOWS\system32\alrsvc.dll
    08:06:07.0671 2052 Alerter - ok
    08:06:07.0765 2052 [ 8C515081584A38AA007909CD02020B3D ] ALG C:\WINDOWS\System32\alg.exe
    08:06:07.0780 2052 ALG - ok
    08:06:07.0827 2052 AliIde - ok
    08:06:07.0858 2052 amsint - ok
    08:06:07.0983 2052 AppMgmt - ok
    08:06:08.0015 2052 asc - ok
    08:06:08.0062 2052 asc3350p - ok
    08:06:08.0093 2052 asc3550 - ok
    08:06:08.0202 2052 [ 54AB078660E536DA72B21A27F56B035B ] Aspi32 C:\WINDOWS\system32\drivers\aspi32.sys
    08:06:08.0218 2052 Aspi32 - ok
    08:06:08.0374 2052 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
    08:06:08.0390 2052 aspnet_state - ok
    08:06:08.0437 2052 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
    08:06:08.0437 2052 AsyncMac - ok
    08:06:08.0499 2052 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
    08:06:08.0515 2052 atapi - ok
    08:06:08.0562 2052 Atdisk - ok
    08:06:08.0671 2052 [ FBC566675FBFA5248EBFA4492B167240 ] Ati HotKey Poller C:\WINDOWS\System32\Ati2evxx.exe
    08:06:08.0687 2052 Ati HotKey Poller - ok
    08:06:08.0780 2052 [ 49D98316588BADBFF31B6B09779E99C6 ] ATI Smart C:\WINDOWS\system32\ati2sgag.exe
    08:06:08.0780 2052 ATI Smart - ok
    08:06:08.0859 2052 [ 812E72F761837BDB80AD5CA83FAD474B ] ati2mtag C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
    08:06:08.0859 2052 ati2mtag - ok
    08:06:08.0921 2052 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
    08:06:08.0921 2052 Atmarpc - ok
    08:06:09.0093 2052 [ DEF7A7882BEC100FE0B2CE2549188F9D ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
    08:06:09.0109 2052 AudioSrv - ok
    08:06:09.0124 2052 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
    08:06:09.0124 2052 audstub - ok
    08:06:09.0218 2052 [ 1B9C81AB9A456EABD9F8335F04B5F495 ] basic2 C:\WINDOWS\system32\DRIVERS\HSF_BSC2.sys
    08:06:09.0234 2052 basic2 - ok
    08:06:09.0281 2052 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
    08:06:09.0281 2052 Beep - ok
    08:06:09.0359 2052 [ 574738F61FCA2935F5265DC4E5691314 ] BITS C:\WINDOWS\system32\qmgr.dll
    08:06:09.0374 2052 BITS - ok
    08:06:09.0546 2052 [ A06CE3399D16DB864F55FAEB1F1927A9 ] Browser C:\WINDOWS\System32\browser.dll
    08:06:09.0562 2052 Browser - ok
    08:06:09.0624 2052 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
    08:06:09.0624 2052 cbidf2k - ok
    08:06:09.0656 2052 cd20xrnt - ok
    08:06:09.0703 2052 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
    08:06:09.0703 2052 Cdaudio - ok
    08:06:09.0749 2052 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
    08:06:09.0749 2052 Cdfs - ok
    08:06:09.0812 2052 [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
    08:06:09.0828 2052 Cdrom - ok
    08:06:09.0859 2052 Changer - ok
    08:06:09.0937 2052 [ 1CFE720EB8D93A7158A4EBC3AB178BDE ] CiSvc C:\WINDOWS\system32\cisvc.exe
    08:06:09.0937 2052 CiSvc - ok
    08:06:10.0093 2052 [ 34CBE729F38138217F9C80212A2A0C82 ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
    08:06:10.0109 2052 ClipSrv - ok
    08:06:10.0281 2052 [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
    08:06:10.0281 2052 clr_optimization_v2.0.50727_32 - ok
    08:06:10.0328 2052 CmdIde - ok
    08:06:10.0468 2052 COMSysApp - ok
    08:06:10.0515 2052 Cpqarray - ok
    08:06:10.0656 2052 [ 3D4E199942E29207970E04315D02AD3B ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
    08:06:10.0671 2052 CryptSvc - ok
    08:06:10.0687 2052 dac2w2k - ok
    08:06:10.0734 2052 dac960nt - ok
    08:06:10.0828 2052 [ 6B27A5C03DFB94B4245739065431322C ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
    08:06:10.0843 2052 DcomLaunch - ok
    08:06:10.0921 2052 [ 5E38D7684A49CACFB752B046357E0589 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
    08:06:10.0937 2052 Dhcp - ok
    08:06:10.0968 2052 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
    08:06:10.0984 2052 Disk - ok
    08:06:11.0109 2052 dmadmin - ok
    08:06:11.0234 2052 [ D992FE1274BDE0F84AD826ACAE022A41 ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
    08:06:11.0250 2052 dmboot - ok
    08:06:11.0312 2052 [ 7C824CF7BBDE77D95C08005717A95F6F ] dmio C:\WINDOWS\system32\drivers\dmio.sys
    08:06:11.0328 2052 dmio - ok
    08:06:11.0390 2052 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
    08:06:11.0390 2052 dmload - ok
    08:06:11.0468 2052 [ 57EDEC2E5F59F0335E92F35184BC8631 ] dmserver C:\WINDOWS\System32\dmserver.dll
    08:06:11.0468 2052 dmserver - ok
    08:06:11.0562 2052 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
    08:06:11.0562 2052 DMusic - ok
    08:06:11.0593 2052 [ 5F7E24FA9EAB896051FFB87F840730D2 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
    08:06:11.0609 2052 Dnscache - ok
    08:06:11.0812 2052 [ 0F0F6E687E5E15579EF4DA8DD6945814 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
    08:06:11.0828 2052 Dot3svc - ok
    08:06:11.0875 2052 dpti2o - ok
    08:06:11.0937 2052 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
    08:06:11.0937 2052 drmkaud - ok
    08:06:12.0078 2052 [ 2187855A7703ADEF0CEF9EE4285182CC ] EapHost C:\WINDOWS\System32\eapsvc.dll
    08:06:12.0078 2052 EapHost - ok
    08:06:12.0234 2052 [ BC93B4A066477954555966D77FEC9ECB ] ERSvc C:\WINDOWS\System32\ersvc.dll
    08:06:12.0250 2052 ERSvc - ok
    08:06:12.0344 2052 [ 65DF52F5B8B6E9BBD183505225C37315 ] Eventlog C:\WINDOWS\system32\services.exe
    08:06:12.0359 2052 Eventlog - ok
    08:06:12.0469 2052 [ D4991D98F2DB73C60D042F1AEF79EFAE ] EventSystem C:\WINDOWS\System32\es.dll
    08:06:12.0500 2052 EventSystem - ok
    08:06:12.0547 2052 [ C823DEBE2548656549F84A875D65237B ] Fallback C:\WINDOWS\system32\DRIVERS\HSF_FALL.sys
    08:06:12.0562 2052 Fallback - ok
    08:06:12.0641 2052 [ 38D332A6D56AF32635675F132548343E ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
    08:06:12.0656 2052 Fastfat - ok
    08:06:12.0703 2052 [ 99BC0B50F511924348BE19C7C7313BBF ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
    08:06:12.0719 2052 FastUserSwitchingCompatibility - ok
    08:06:12.0750 2052 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc C:\WINDOWS\system32\DRIVERS\fdc.sys
    08:06:12.0750 2052 Fdc - ok
    08:06:12.0781 2052 [ CFC4CC73C903152A23E1DB28EABA1F03 ] FETND5BV C:\WINDOWS\system32\DRIVERS\fetnd5bv.sys
    08:06:12.0797 2052 FETND5BV - ok
    08:06:12.0844 2052 [ E9648254056BCE81A85380C0C3647DC4 ] FETNDIS C:\WINDOWS\system32\DRIVERS\fetnd5.sys
    08:06:12.0859 2052 FETNDIS - ok
    08:06:12.0906 2052 [ D45926117EB9FA946A6AF572FBE1CAA3 ] Fips C:\WINDOWS\system32\drivers\Fips.sys
    08:06:12.0906 2052 Fips - ok
    08:06:12.0953 2052 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk C:\WINDOWS\system32\DRIVERS\flpydisk.sys
    08:06:12.0953 2052 Flpydisk - ok
    08:06:13.0016 2052 [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
    08:06:13.0031 2052 FltMgr - ok
    08:06:13.0203 2052 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
    08:06:13.0266 2052 FontCache3.0.0.0 - ok
    08:06:13.0312 2052 [ 6483414841D4CAB6C3B4DB2AC6EDD70B ] Fsks C:\WINDOWS\system32\DRIVERS\HSF_FSKS.sys
    08:06:13.0328 2052 Fsks - ok
    08:06:13.0359 2052 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
    08:06:13.0359 2052 Fs_Rec - ok
    08:06:13.0406 2052 [ 6AC26732762483366C3969C9E4D2259D ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
    08:06:13.0422 2052 Ftdisk - ok
    08:06:13.0469 2052 [ 065639773D8B03F33577F6CDAEA21063 ] gameenum C:\WINDOWS\system32\DRIVERS\gameenum.sys
    08:06:13.0469 2052 gameenum - ok
    08:06:13.0516 2052 [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
    08:06:13.0531 2052 Gpc - ok
    08:06:13.0672 2052 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
    08:06:13.0688 2052 gupdate - ok
    08:06:13.0719 2052 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
    08:06:13.0734 2052 gupdatem - ok
    08:06:13.0828 2052 [ 751C1D2CA2ABF4A9F5A6B8D7D45B907C ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    08:06:13.0859 2052 gusvc - ok
    08:06:13.0953 2052 [ 4FCCA060DFE0C51A09DD5C3843888BCD ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
    08:06:13.0953 2052 helpsvc - ok
    08:06:14.0141 2052 HidServ - ok
    08:06:14.0235 2052 [ CCF82C5EC8A7326C3066DE870C06DAF1 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys
    08:06:14.0235 2052 HidUsb - ok
    08:06:14.0375 2052 [ 8878BD685E490239777BFE51320B88E9 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
    08:06:14.0391 2052 hkmsvc - ok
    08:06:14.0422 2052 hpn - ok
    08:06:14.0516 2052 [ 970178E8E003EB1481293830069624B9 ] HSFHWBS2 C:\WINDOWS\system32\DRIVERS\HSFBS2S2.sys
    08:06:14.0531 2052 HSFHWBS2 - ok
    08:06:14.0625 2052 [ EBB354438A4C5A3327FB97306260714A ] HSF_DP C:\WINDOWS\system32\DRIVERS\HSFDPSP2.sys
    08:06:14.0672 2052 HSF_DP - ok
    08:06:14.0766 2052 [ 74E379857D4C0DFB56DE2D19B8F4C434 ] hsf_msft C:\WINDOWS\system32\DRIVERS\HSF_MSFT.sys
    08:06:14.0797 2052 hsf_msft - ok
    08:06:14.0907 2052 [ F80A415EF82CD06FFAF0D971528EAD38 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
    08:06:14.0922 2052 HTTP - ok
    08:06:15.0110 2052 [ 6100A808600F44D999CEBDEF8841C7A3 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
    08:06:15.0125 2052 HTTPFilter - ok
    08:06:15.0157 2052 i2omgmt - ok
    08:06:15.0188 2052 i2omp - ok
    08:06:15.0250 2052 [ 4A0B06AA8943C1E332520F7440C0AA30 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
    08:06:15.0250 2052 i8042prt - ok
    08:06:15.0407 2052 [ 6F95324909B502E2651442C1548AB12F ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    08:06:15.0422 2052 IDriverT - ok
    08:06:15.0641 2052 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
    08:06:15.0704 2052 idsvc - ok
    08:06:15.0750 2052 [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
    08:06:15.0766 2052 Imapi - ok
    08:06:15.0875 2052 [ 30DEAF54A9755BB8546168CFE8A6B5E1 ] ImapiService C:\WINDOWS\System32\imapi.exe
    08:06:15.0891 2052 ImapiService - ok
    08:06:15.0938 2052 ini910u - ok
    08:06:15.0969 2052 IntelIde - ok
    08:06:16.0063 2052 [ 8C953733D8F36EB2133F5BB58808B66B ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
    08:06:16.0063 2052 intelppm - ok
    08:06:16.0125 2052 [ 3BB22519A194418D5FEC05D800A19AD0 ] ip6fw C:\WINDOWS\system32\drivers\ip6fw.sys
    08:06:16.0125 2052 ip6fw - ok
    08:06:16.0188 2052 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
    08:06:16.0188 2052 IpFilterDriver - ok
    08:06:16.0297 2052 [ B87AB476DCF76E72010632B5550955F5 ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
    08:06:16.0297 2052 IpInIp - ok
    08:06:16.0360 2052 [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
    08:06:16.0360 2052 IpNat - ok
    08:06:16.0407 2052 [ 23C74D75E36E7158768DD63D92789A91 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
    08:06:16.0422 2052 IPSec - ok
    08:06:16.0469 2052 [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
    08:06:16.0469 2052 IRENUM - ok
    08:06:16.0563 2052 [ 05A299EC56E52649B1CF2FC52D20F2D7 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
    08:06:16.0563 2052 isapnp - ok
    08:06:16.0641 2052 [ 9C5E3FDBFCC30CF71A49CA178B9AD442 ] K56 C:\WINDOWS\system32\DRIVERS\HSF_K56K.sys
    08:06:16.0672 2052 K56 - ok
    08:06:16.0704 2052 [ 463C1EC80CD17420A542B7F36A36F128 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
    08:06:16.0704 2052 Kbdclass - ok
    08:06:16.0797 2052 [ 692BCF44383D056AED41B045A323D378 ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
    08:06:16.0813 2052 kmixer - ok
    08:06:16.0860 2052 [ B467646C54CC746128904E1654C750C1 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
    08:06:16.0860 2052 KSecDD - ok
    08:06:16.0922 2052 [ 3A7C3CBE5D96B8AE96CE81F0B22FB527 ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
    08:06:16.0922 2052 lanmanserver - ok
    08:06:17.0110 2052 [ A8888A5327621856C0CEC4E385F69309 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
    08:06:17.0126 2052 lanmanworkstation - ok
    08:06:17.0173 2052 lbrtfdc - ok
    08:06:17.0329 2052 [ A7DB739AE99A796D91580147E919CC59 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
    08:06:17.0329 2052 LmHosts - ok
    08:06:17.0376 2052 [ 65FEF13327D25BC33AF78178365C1412 ] Maestro C:\WINDOWS\system32\drivers\essm2e.sys
    08:06:17.0391 2052 Maestro - ok
    08:06:17.0454 2052 MASPINT - ok
    08:06:17.0532 2052 McComponentHostService - ok
    08:06:17.0626 2052 [ 11F714F85530A2BD134074DC30E99FCA ] MDM C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    08:06:17.0641 2052 MDM - ok
    08:06:17.0688 2052 [ 195741AEE20369980796B557358CD774 ] mdmxsdk C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys
    08:06:17.0688 2052 mdmxsdk - ok
    08:06:17.0782 2052 [ 986B1FF5814366D71E0AC5755C88F2D3 ] Messenger C:\WINDOWS\System32\msgsvc.dll
    08:06:17.0798 2052 Messenger - ok
    08:06:17.0844 2052 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
    08:06:17.0860 2052 mnmdd - ok
    08:06:17.0923 2052 [ D18F1F0C101D06A1C1ADF26EED16FCDD ] mnmsrvc C:\WINDOWS\System32\mnmsrvc.exe
    08:06:17.0938 2052 mnmsrvc - ok
    08:06:17.0970 2052 [ DFCBAD3CEC1C5F964962AE10E0BCC8E1 ] Modem C:\WINDOWS\system32\drivers\Modem.sys
    08:06:17.0985 2052 Modem - ok
    08:06:18.0063 2052 [ 1992E0D143B09653AB0F9C5E04B0FD65 ] MODEMCSA C:\WINDOWS\system32\drivers\MODEMCSA.sys
    08:06:18.0063 2052 MODEMCSA - ok
    08:06:18.0126 2052 [ 35C9E97194C8CFB8430125F8DBC34D04 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
    08:06:18.0126 2052 Mouclass - ok
    08:06:18.0204 2052 [ B1C303E17FB9D46E87A98E4BA6769685 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
    08:06:18.0204 2052 mouhid - ok
    08:06:18.0282 2052 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
    08:06:18.0282 2052 MountMgr - ok
    08:06:18.0329 2052 MozillaMaintenance - ok
    08:06:18.0376 2052 mraid35x - ok
    08:06:18.0407 2052 [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
    08:06:18.0407 2052 MRxDAV - ok
    08:06:18.0470 2052 [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
    08:06:18.0501 2052 MRxSmb - ok
    08:06:18.0595 2052 [ A137F1470499A205ABBB9AAFB3B6F2B1 ] MSDTC C:\WINDOWS\System32\msdtc.exe
    08:06:18.0595 2052 MSDTC - ok
    08:06:18.0642 2052 [ C941EA2454BA8350021D774DAF0F1027 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
    08:06:18.0642 2052 Msfs - ok
    08:06:18.0798 2052 MSIServer - ok
    08:06:18.0876 2052 [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
    08:06:18.0876 2052 MSKSSRV - ok
    08:06:18.0923 2052 [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
    08:06:18.0923 2052 MSPCLOCK - ok
    08:06:18.0954 2052 [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
    08:06:18.0954 2052 MSPQM - ok
    08:06:19.0001 2052 [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
    08:06:19.0001 2052 mssmbios - ok
    08:06:19.0032 2052 [ CA3E22598F411199ADC2DFEE76CD0AE0 ] ms_mpu401 C:\WINDOWS\system32\drivers\msmpu401.sys
    08:06:19.0032 2052 ms_mpu401 - ok
    08:06:19.0079 2052 [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
    08:06:19.0079 2052 Mup - ok
    08:06:19.0204 2052 [ 0EBE5687330AFAF6B00851F983950365 ] MWAgent C:\Program Files\Common Files\MicroWorld\Agent\MWASER.EXE
    08:06:19.0220 2052 MWAgent - ok
    08:06:19.0439 2052 [ 0102140028FAD045756796E1C685D695 ] napagent C:\WINDOWS\System32\qagentrt.dll
    08:06:19.0454 2052 napagent - ok
    08:06:19.0501 2052 [ 1DF7F42665C94B825322FAE71721130D ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
    08:06:19.0517 2052 NDIS - ok
    08:06:19.0548 2052 [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
    08:06:19.0548 2052 NdisTapi - ok
    08:06:19.0626 2052 [ F927A4434C5028758A842943EF1A3849 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
    08:06:19.0626 2052 Ndisuio - ok
    08:06:19.0657 2052 [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
    08:06:19.0657 2052 NdisWan - ok
    08:06:19.0689 2052 [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
    08:06:19.0704 2052 NDProxy - ok
    08:06:19.0829 2052 [ A081CB6FB9A12668F233EB5414BE3A0E ] Net Driver HPZ12 C:\WINDOWS\system32\HPZinw12.dll
    08:06:19.0845 2052 Net Driver HPZ12 - ok
    08:06:19.0876 2052 [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
    08:06:19.0892 2052 NetBIOS - ok
    08:06:19.0923 2052 [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
    08:06:19.0939 2052 NetBT - ok
    08:06:20.0064 2052 [ B857BA82860D7FF85AE29B095645563B ] NetDDE C:\WINDOWS\system32\netdde.exe
    08:06:20.0079 2052 NetDDE - ok
    08:06:20.0095 2052 [ B857BA82860D7FF85AE29B095645563B ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
    08:06:20.0110 2052 NetDDEdsdm - ok
    08:06:20.0236 2052 [ BF2466B3E18E970D8A976FB95FC1CA85 ] Netlogon C:\WINDOWS\System32\lsass.exe
    08:06:20.0236 2052 Netlogon - ok
    08:06:20.0361 2052 [ 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE ] Netman C:\WINDOWS\System32\netman.dll
    08:06:20.0376 2052 Netman - ok
    08:06:20.0517 2052 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
    08:06:20.0532 2052 NetTcpPortSharing - ok
    08:06:20.0595 2052 [ 943337D786A56729263071623BBB9DE5 ] Nla C:\WINDOWS\System32\mswsock.dll
    08:06:20.0595 2052 Nla - ok
    08:06:20.0689 2052 nosGetPlusHelper - ok
    08:06:20.0736 2052 [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
    08:06:20.0736 2052 Npfs - ok
    08:06:20.0814 2052 [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
    08:06:20.0829 2052 Ntfs - ok
    08:06:20.0939 2052 [ BF2466B3E18E970D8A976FB95FC1CA85 ] NtLmSsp C:\WINDOWS\System32\lsass.exe
    08:06:20.0939 2052 NtLmSsp - ok
    08:06:21.0126 2052 [ 156F64A3345BD23C600655FB4D10BC08 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
    08:06:21.0158 2052 NtmsSvc - ok
    08:06:21.0204 2052 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
    08:06:21.0204 2052 Null - ok
    08:06:21.0283 2052 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
    08:06:21.0283 2052 NwlnkFlt - ok
    08:06:21.0314 2052 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
    08:06:21.0329 2052 NwlnkFwd - ok
    08:06:21.0454 2052 [ 7A56CF3E3F12E8AF599963B16F50FB6A ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
    08:06:21.0454 2052 ose - ok
    08:06:21.0517 2052 [ 5575FAF8F97CE5E713D108C2A58D7C7C ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys
    08:06:21.0533 2052 Parport - ok
    08:06:21.0579 2052 [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
    08:06:21.0579 2052 PartMgr - ok
    08:06:21.0626 2052 [ 70E98B3FD8E963A6A46A2E6247E0BEA1 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
    08:06:21.0626 2052 ParVdm - ok
    08:06:21.0658 2052 [ A219903CCF74233761D92BEF471A07B1 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
    08:06:21.0658 2052 PCI - ok
    08:06:21.0705 2052 PCIDump - ok
    08:06:21.0736 2052 PCIIde - ok
    08:06:21.0798 2052 [ 9E89EF60E9EE05E3F2EEF2DA7397F1C1 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
    08:06:21.0798 2052 Pcmcia - ok
    08:06:21.0845 2052 PDCOMP - ok
    08:06:21.0876 2052 PDFRAME - ok
    08:06:21.0908 2052 PDRELI - ok
    08:06:21.0939 2052 PDRFRAME - ok
    08:06:21.0970 2052 perc2 - ok
    08:06:22.0017 2052 perc2hib - ok
    08:06:22.0158 2052 [ 65DF52F5B8B6E9BBD183505225C37315 ] PlugPlay C:\WINDOWS\system32\services.exe
    08:06:22.0173 2052 PlugPlay - ok
    08:06:22.0298 2052 [ 65BC271F337637731D3C71455AE1F476 ] Pml Driver HPZ12 C:\WINDOWS\system32\HPZipm12.dll
    08:06:22.0314 2052 Pml Driver HPZ12 - ok
    08:06:22.0423 2052 [ BF2466B3E18E970D8A976FB95FC1CA85 ] PolicyAgent C:\WINDOWS\System32\lsass.exe
    08:06:22.0439 2052 PolicyAgent - ok
    08:06:22.0470 2052 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
    08:06:22.0486 2052 PptpMiniport - ok
    08:06:22.0502 2052 [ A32BEBAF723557681BFC6BD93E98BD26 ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys
    08:06:22.0517 2052 Processor - ok
    08:06:22.0627 2052 [ BF2466B3E18E970D8A976FB95FC1CA85 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
    08:06:22.0642 2052 ProtectedStorage - ok
    08:06:22.0673 2052 [ 09298EC810B07E5D582CB3A3F9255424 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
    08:06:22.0673 2052 PSched - ok
    08:06:22.0689 2052 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
    08:06:22.0705 2052 Ptilink - ok
    08:06:22.0736 2052 [ 0C8DA0A8B0D227319C285E0EAE65DEFD ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys
    08:06:22.0736 2052 PxHelp20 - ok
    08:06:22.0783 2052 ql1080 - ok
    08:06:22.0814 2052 Ql10wnt - ok
    08:06:22.0861 2052 ql12160 - ok
    08:06:22.0892 2052 ql1240 - ok
    08:06:22.0923 2052 ql1280 - ok
    08:06:22.0955 2052 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
    08:06:22.0970 2052 RasAcd - ok
    08:06:23.0111 2052 [ AD188BE7BDF94E8DF4CA0A55C00A5073 ] RasAuto C:\WINDOWS\System32\rasauto.dll
    08:06:23.0127 2052 RasAuto - ok
    08:06:23.0174 2052 [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
    08:06:23.0189 2052 Rasl2tp - ok
    08:06:23.0361 2052 [ 76A9A3CBEADD68CC57CDA5E1D7448235 ] RasMan C:\WINDOWS\System32\rasmans.dll
    08:06:23.0377 2052 RasMan - ok
    08:06:23.0408 2052 [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
    08:06:23.0424 2052 RasPppoe - ok
    08:06:23.0455 2052 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
    08:06:23.0455 2052 Raspti - ok
    08:06:23.0502 2052 [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
    08:06:23.0517 2052 Rdbss - ok
    08:06:23.0564 2052 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
    08:06:23.0564 2052 RDPCDD - ok
    08:06:23.0658 2052 [ 6589DB6E5969F8EEE594CF71171C5028 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
    08:06:23.0674 2052 RDPWD - ok
    08:06:23.0814 2052 [ 3C37BF86641BDA977C3BF8A840F3B7FA ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
    08:06:23.0830 2052 RDSessMgr - ok
    08:06:23.0877 2052 [ F828DD7E1419B6653894A8F97A0094C5 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
    08:06:23.0877 2052 redbook - ok
    08:06:24.0033 2052 [ 7E699FF5F59B5D9DE5390E3C34C67CF5 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
    08:06:24.0033 2052 RemoteAccess - ok
    08:06:24.0080 2052 [ BB7549BD94D1AAC3599C7606C50C48A0 ] Rksample C:\WINDOWS\system32\DRIVERS\HSF_SAMP.sys
    08:06:24.0096 2052 Rksample - ok
    08:06:24.0158 2052 [ AAED593F84AFA419BBAE8572AF87CF6A ] RpcLocator C:\WINDOWS\System32\locator.exe
    08:06:24.0158 2052 RpcLocator - ok
    08:06:24.0252 2052 [ 6B27A5C03DFB94B4245739065431322C ] RpcSs C:\WINDOWS\system32\rpcss.dll
    08:06:24.0252 2052 RpcSs - ok
    08:06:24.0377 2052 [ 471B3F9741D762ABE75E9DEEA4787E47 ] RSVP C:\WINDOWS\System32\rsvp.exe
    08:06:24.0392 2052 RSVP - ok
    08:06:24.0486 2052 [ BF2466B3E18E970D8A976FB95FC1CA85 ] SamSs C:\WINDOWS\system32\lsass.exe
    08:06:24.0502 2052 SamSs - ok
    08:06:24.0627 2052 [ 86D007E7A654B9A71D1D7D856B104353 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
    08:06:24.0643 2052 SCardSvr - ok
    08:06:24.0752 2052 [ 0A9A7365A1CA4319AA7C1D6CD8E4EAFA ] Schedule C:\WINDOWS\system32\schedsvc.dll
    08:06:24.0768 2052 Schedule - ok
    08:06:24.0924 2052 [ 4A5809A1D796E2675AC0332BF7B0CB11 ] SeaPort C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
    08:06:24.0939 2052 SeaPort - ok
    08:06:24.0986 2052 [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
    08:06:25.0002 2052 Secdrv - ok
    08:06:25.0143 2052 [ CBE612E2BB6A10E3563336191EDA1250 ] seclogon C:\WINDOWS\System32\seclogon.dll
    08:06:25.0143 2052 seclogon - ok
    08:06:25.0268 2052 [ 7FDD5D0684ECA8C1F68B4D99D124DCD0 ] SENS C:\WINDOWS\system32\sens.dll
    08:06:25.0268 2052 SENS - ok
    08:06:25.0330 2052 [ E42F03D1081C4F60D3DB6C38235B1456 ] Ser2pl C:\WINDOWS\system32\DRIVERS\ser2pl.sys
    08:06:25.0330 2052 Ser2pl - ok
    08:06:25.0393 2052 [ 0F29512CCD6BEAD730039FB4BD2C85CE ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys
    08:06:25.0393 2052 serenum - ok
    08:06:25.0424 2052 [ CCA207A8896D4C6A0C9CE29A4AE411A7 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys
    08:06:25.0424 2052 Serial - ok
    08:06:25.0502 2052 [ 1F16931C722C69E4A7866244796C66A0 ] sermouse C:\WINDOWS\system32\DRIVERS\sermouse.sys
    08:06:25.0502 2052 sermouse - ok
    08:06:25.0565 2052 [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
    08:06:25.0565 2052 Sfloppy - ok
    08:06:25.0674 2052 [ 83F41D0D89645D7235C051AB1D9523AC ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
    08:06:25.0690 2052 SharedAccess - ok
    08:06:25.0736 2052 [ 99BC0B50F511924348BE19C7C7313BBF ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
    08:06:25.0736 2052 ShellHWDetection - ok
    08:06:25.0783 2052 Simbad - ok
    08:06:25.0846 2052 [ D9E8E0CE154A2F6430D9EFABDF730867 ] SoftFax C:\WINDOWS\system32\DRIVERS\HSF_FAXX.sys
    08:06:25.0861 2052 SoftFax - ok
    08:06:25.0908 2052 Sparrow - ok
    08:06:25.0971 2052 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter C:\WINDOWS\system32\drivers\splitter.sys
    08:06:25.0971 2052 splitter - ok
    08:06:26.0033 2052 [ 60784F891563FB1B767F70117FC2428F ] Spooler C:\WINDOWS\system32\spoolsv.exe
    08:06:26.0033 2052 Spooler - ok
    08:06:26.0080 2052 [ 76BB022C2FB6902FD5BDD4F78FC13A5D ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
    08:06:26.0096 2052 sr - ok
    08:06:26.0205 2052 [ 3805DF0AC4296A34BA4BF93B346CC378 ] srservice C:\WINDOWS\System32\srsvc.dll
    08:06:26.0221 2052 srservice - ok
    08:06:26.0268 2052 [ 47DDFC2F003F7F9F0592C6874962A2E7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
    08:06:26.0283 2052 Srv - ok
    08:06:26.0424 2052 [ 0A5679B3714EDAB99E357057EE88FCA6 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
    08:06:26.0424 2052 SSDPSRV - ok
    08:06:26.0487 2052 [ A9573045BAA16EAB9B1085205B82F1ED ] StillCam C:\WINDOWS\system32\DRIVERS\serscan.sys
    08:06:26.0487 2052 StillCam - ok
    08:06:26.0580 2052 [ 8BAD69CBAC032D4BBACFCE0306174C30 ] stisvc C:\WINDOWS\system32\wiaservc.dll
    08:06:26.0596 2052 stisvc - ok
    08:06:26.0658 2052 Stltrk2k - ok
    08:06:26.0690 2052 [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
    08:06:26.0690 2052 swenum - ok
    08:06:26.0737 2052 [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
    08:06:26.0737 2052 swmidi - ok
    08:06:26.0893 2052 SwPrv - ok
    08:06:26.0955 2052 symc810 - ok
    08:06:26.0987 2052 symc8xx - ok
    08:06:27.0018 2052 sym_hi - ok
    08:06:27.0065 2052 sym_u3 - ok
    08:06:27.0127 2052 [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
    08:06:27.0127 2052 sysaudio - ok
    08:06:27.0252 2052 [ C7ABBC59B43274B1109DF6B24D617051 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
    08:06:27.0268 2052 SysmonLog - ok
    08:06:27.0362 2052 [ 3CB78C17BB664637787C9A1C98F79C38 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
    08:06:27.0377 2052 TapiSrv - ok
    08:06:27.0440 2052 [ 9AEFA14BD6B182D61E3119FA5F436D3D ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
    08:06:27.0455 2052 Tcpip - ok
    08:06:27.0518 2052 [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
    08:06:27.0518 2052 TDPIPE - ok
    08:06:27.0565 2052 [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
    08:06:27.0565 2052 TDTCP - ok
    08:06:27.0612 2052 [ 88155247177638048422893737429D9E ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
    08:06:27.0627 2052 TermDD - ok
    08:06:27.0815 2052 [ FF3477C03BE7201C294C35F684B3479F ] TermService C:\WINDOWS\System32\termsrv.dll
    08:06:27.0831 2052 TermService - ok
    08:06:27.0909 2052 [ 99BC0B50F511924348BE19C7C7313BBF ] Themes C:\WINDOWS\System32\shsvcs.dll
    08:06:27.0909 2052 Themes - ok
    08:06:27.0940 2052 [ 8021A499DB46B2961C285168671CB9AF ] Tones C:\WINDOWS\system32\DRIVERS\HSF_TONE.sys
    08:06:27.0956 2052 Tones - ok
    08:06:27.0971 2052 TosIde - ok
    08:06:28.0081 2052 [ 55BCA12F7F523D35CA3CB833C725F54E ] TrkWks C:\WINDOWS\system32\trkwks.dll
    08:06:28.0081 2052 TrkWks - ok
    08:06:28.0159 2052 [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
    08:06:28.0159 2052 Udfs - ok
    08:06:28.0206 2052 ultra - ok
    08:06:28.0268 2052 [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
    08:06:28.0284 2052 Update - ok
    08:06:28.0409 2052 [ 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 ] upnphost C:\WINDOWS\System32\upnphost.dll
    08:06:28.0424 2052 upnphost - ok
    08:06:28.0565 2052 [ 05365FB38FCA1E98F7A566AAAF5D1815 ] UPS C:\WINDOWS\System32\ups.exe
    08:06:28.0581 2052 UPS - ok
    08:06:28.0628 2052 [ 173F317CE0DB8E21322E71B7E60A27E8 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
    08:06:28.0643 2052 usbccgp - ok
    08:06:28.0690 2052 [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
    08:06:28.0706 2052 usbehci - ok
    08:06:28.0737 2052 [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
    08:06:28.0737 2052 usbhub - ok
    08:06:28.0815 2052 [ A717C8721046828520C9EDF31288FC00 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys
    08:06:28.0831 2052 usbprint - ok
    08:06:28.0893 2052 [ A0B8CF9DEB1184FBDD20784A58FA75D4 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
    08:06:28.0893 2052 usbscan - ok
    08:06:28.0987 2052 [ A32426D9B14A089EAA1D922E0C5801A9 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
    08:06:29.0003 2052 USBSTOR - ok
    08:06:29.0034 2052 [ 26496F9DEE2D787FC3E61AD54821FFE6 ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
    08:06:29.0049 2052 usbuhci - ok
    08:06:29.0112 2052 [ 269C0ADE94B90029B12497747BE408CB ] V124 C:\WINDOWS\system32\DRIVERS\HSF_V124.sys
    08:06:29.0143 2052 V124 - ok
    08:06:29.0175 2052 [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
    08:06:29.0190 2052 VgaSave - ok
    08:06:29.0237 2052 [ 754292CE5848B3738281B4F3607EAEF4 ] viaagp C:\WINDOWS\system32\DRIVERS\viaagp.sys
    08:06:29.0253 2052 viaagp - ok
    08:06:29.0284 2052 [ 0E3E3FAE3A0A58B8D936A8E841A17D16 ] viaagp1 C:\WINDOWS\system32\DRIVERS\viaagp1.sys
    08:06:29.0284 2052 viaagp1 - ok
    08:06:29.0346 2052 [ 3B3EFCDA263B8AC14FDF9CBDD0791B2E ] ViaIde C:\WINDOWS\system32\DRIVERS\viaide.sys
    08:06:29.0346 2052 ViaIde - ok
    08:06:29.0393 2052 [ A6B4B9EBC02991EE9623C06CC1CA8DAE ] VIAudio C:\WINDOWS\system32\drivers\viaudio.sys
    08:06:29.0409 2052 VIAudio - ok
    08:06:29.0440 2052 [ 4C8FCB5CC53AAB716D810740FE59D025 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
    08:06:29.0440 2052 VolSnap - ok
    08:06:29.0596 2052 [ 7A9DB3A67C333BF0BD42E42B8596854B ] VSS C:\WINDOWS\System32\vssvc.exe
    08:06:29.0612 2052 VSS - ok
    08:06:29.0784 2052 [ 54AF4B1D5459500EF0937F6D33B1914F ] W32Time C:\WINDOWS\System32\w32time.dll
    08:06:29.0800 2052 W32Time - ok
    08:06:29.0831 2052 [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
    08:06:29.0846 2052 Wanarp - ok
    08:06:29.0893 2052 [ D6EFAF429FD30C5DF613D220E344CCE7 ] WDC_SAM C:\WINDOWS\system32\DRIVERS\wdcsam.sys
    08:06:29.0909 2052 WDC_SAM - ok
    08:06:29.0956 2052 WDICA - ok
    08:06:30.0034 2052 [ 6768ACF64B18196494413695F0C3A00F ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
    08:06:30.0050 2052 wdmaud - ok
    08:06:30.0143 2052 [ 77A354E28153AD2D5E120A5A8687BC06 ] WebClient C:\WINDOWS\System32\webclnt.dll
    08:06:30.0159 2052 WebClient - ok
    08:06:30.0284 2052 [ 1225EBEA76AAC3C84DF6C54FE5E5D8BE ] winachsf C:\WINDOWS\system32\DRIVERS\HSFCXTS2.sys
    08:06:30.0300 2052 winachsf - ok
    08:06:30.0393 2052 [ 2D0E4ED081963804CCC196A0929275B5 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
    08:06:30.0409 2052 winmgmt - ok
    08:06:30.0534 2052 wlidsvc - ok
    08:06:30.0675 2052 [ C51B4A5C05A5475708E3C81C7765B71D ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll
    08:06:30.0675 2052 WmdmPmSN - ok
    08:06:30.0769 2052 [ E0673F1106E62A68D2257E376079F821 ] WmiApSrv C:\WINDOWS\System32\wbem\wmiapsrv.exe
    08:06:30.0784 2052 WmiApSrv - ok
    08:06:30.0925 2052 [ F74E3D9A7FA9556C3BBB14D4E5E63D3B ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe
    08:06:30.0956 2052 WMPNetworkSvc - ok
    08:06:31.0019 2052 [ CF4DEF1BF66F06964DC0D91844239104 ] WpdUsb C:\WINDOWS\system32\Drivers\wpdusb.sys
    08:06:31.0034 2052 WpdUsb - ok
    08:06:31.0112 2052 [ 6ABE6E225ADB5A751622A9CC3BC19CE8 ] WS2IFSL C:\WINDOWS\System32\drivers\ws2ifsl.sys
    08:06:31.0112 2052 WS2IFSL - ok
    08:06:31.0269 2052 [ 7C278E6408D1DCE642230C0585A854D5 ] wscsvc C:\WINDOWS\system32\wscsvc.dll
    08:06:31.0284 2052 wscsvc - ok
    08:06:31.0394 2052 [ 35321FB577CDC98CE3EB3A3EB9E4610A ] wuauserv C:\WINDOWS\system32\wuauserv.dll
    08:06:31.0394 2052 wuauserv - ok
    08:06:31.0425 2052 [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
    08:06:31.0441 2052 WudfPf - ok
    08:06:31.0503 2052 [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
    08:06:31.0519 2052 WudfRd - ok
    08:06:31.0706 2052 [ 05231C04253C5BC30B26CBAAE680ED89 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
    08:06:31.0722 2052 WudfSvc - ok
    08:06:31.0816 2052 [ 81DC3F549F44B1C1FFF022DEC9ECF30B ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
    08:06:31.0847 2052 WZCSVC - ok
    08:06:31.0987 2052 [ 295D21F14C335B53CB8154E5B1F892B9 ] xmlprov C:\WINDOWS\System32\xmlprov.dll
    08:06:32.0003 2052 xmlprov - ok
    08:06:32.0066 2052 ================ Scan global ===============================
    08:06:32.0331 2052 [ 42F1F4C0AFB08410E5F02D4B13EBB623 ] C:\WINDOWS\system32\basesrv.dll
    08:06:32.0488 2052 [ 8C7DCA4B158BF16894120786A7A5F366 ] C:\WINDOWS\system32\winsrv.dll
    08:06:32.0644 2052 [ 8C7DCA4B158BF16894120786A7A5F366 ] C:\WINDOWS\system32\winsrv.dll
    08:06:32.0722 2052 [ 65DF52F5B8B6E9BBD183505225C37315 ] C:\WINDOWS\system32\services.exe
    08:06:32.0738 2052 [Global] - ok
    08:06:32.0738 2052 ================ Scan MBR ==================================
    08:06:32.0769 2052 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk0\DR0
    08:06:39.0786 2052 \Device\Harddisk0\DR0 - ok
    08:06:39.0801 2052 ================ Scan VBR ==================================
    08:06:39.0801 2052 [ 69962C5DE9EC38C51D87BE0A14E28A9F ] \Device\Harddisk0\DR0\Partition1
    08:06:39.0801 2052 \Device\Harddisk0\DR0\Partition1 - ok
    08:06:39.0817 2052 ============================================================
    08:06:39.0817 2052 Scan finished
    08:06:39.0817 2052 ============================================================
    08:06:39.0848 0660 Detected object count: 0
    08:06:39.0848 0660 Actual detected object count: 0
    08:09:05.0904 1828 Deinitialize success
     
  17. 2012/10/05
    Spanner

    Spanner Inactive Thread Starter

    Joined:
    2006/08/27
    Messages:
    451
    Likes Received:
    1
    RK Logs.08:06:00.0795 1868 TDSS rootkit removing tool 2.8.10.0 Sep 17 2012 19:23:24
    08:06:01.0139 1868 ============================================================
    08:06:01.0139 1868 Current date / time: 2012/10/05 08:06:01.0139
    08:06:01.0139 1868 SystemInfo:
    08:06:01.0139 1868
    08:06:01.0139 1868 OS Version: 5.1.2600 ServicePack: 3.0
    08:06:01.0139 1868 Product type: Workstation
    08:06:01.0139 1868 ComputerName: SSTYLE
    08:06:01.0139 1868 UserName: Pat cox
    08:06:01.0139 1868 Windows directory: C:\WINDOWS
    08:06:01.0139 1868 System windows directory: C:\WINDOWS
    08:06:01.0139 1868 Processor architecture: Intel x86
    08:06:01.0139 1868 Number of processors: 1
    08:06:01.0139 1868 Page size: 0x1000
    08:06:01.0139 1868 Boot type: Normal boot
    08:06:01.0139 1868 ============================================================
    08:06:01.0592 1868 Drive \Device\Harddisk0\DR0 - Size: 0x12882D8000 (74.13 Gb), SectorSize: 0x200, Cylinders: 0x25CC, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
    08:06:01.0607 1868 ============================================================
    08:06:01.0607 1868 \Device\Harddisk0\DR0:
    08:06:01.0607 1868 MBR partitions:
    08:06:01.0607 1868 \Device\Harddisk0\DR0\Partition1: MBR, Type 0xC, StartLBA 0x3F, BlocksNum 0x9441680
    08:06:01.0607 1868 ============================================================
    08:06:01.0607 1868 C: <-> \Device\Harddisk0\DR0\Partition1
    08:06:01.0607 1868 ============================================================
    08:06:01.0607 1868 Initialize success
    08:06:01.0607 1868 ============================================================
    08:06:05.0499 2052 ============================================================
    08:06:05.0499 2052 Scan started
    08:06:05.0499 2052 Mode: Manual;
    08:06:05.0499 2052 ============================================================
    08:06:06.0343 2052 ================ Scan system memory ========================
    08:06:06.0343 2052 System memory - ok
    08:06:06.0358 2052 ================ Scan services =============================
    08:06:06.0702 2052 Abiosdsk - ok
    08:06:06.0765 2052 abp480n5 - ok
    08:06:06.0843 2052 [ 8FD99680A539792A30E97944FDAECF17 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
    08:06:06.0858 2052 ACPI - ok
    08:06:06.0905 2052 [ 9859C0F6936E723E4892D7141B1327D5 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
    08:06:06.0905 2052 ACPIEC - ok
    08:06:07.0093 2052 [ B2B64AF436FACCFA854DD397027C5360 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
    08:06:07.0108 2052 AdobeFlashPlayerUpdateSvc - ok
    08:06:07.0140 2052 adpu160m - ok
    08:06:07.0233 2052 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys
    08:06:07.0233 2052 aec - ok
    08:06:07.0280 2052 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys
    08:06:07.0296 2052 AFD - ok
    08:06:07.0327 2052 Aha154x - ok
    08:06:07.0374 2052 aic78u2 - ok
    08:06:07.0405 2052 aic78xx - ok
    08:06:07.0468 2052 [ 0940030D5A5869067CCC03E3B0B8DEC7 ] alcan5wn C:\WINDOWS\system32\DRIVERS\alcan5wn.sys
    08:06:07.0468 2052 alcan5wn - ok
    08:06:07.0530 2052 [ 4C9577888C53243E2991456F510488A1 ] alcaudsl C:\WINDOWS\system32\DRIVERS\alcaudsl.sys
    08:06:07.0530 2052 alcaudsl - ok
    08:06:07.0671 2052 [ A9A3DAA780CA6C9671A19D52456705B4 ] Alerter C:\WINDOWS\system32\alrsvc.dll
    08:06:07.0671 2052 Alerter - ok
    08:06:07.0765 2052 [ 8C515081584A38AA007909CD02020B3D ] ALG C:\WINDOWS\System32\alg.exe
    08:06:07.0780 2052 ALG - ok
    08:06:07.0827 2052 AliIde - ok
    08:06:07.0858 2052 amsint - ok
    08:06:07.0983 2052 AppMgmt - ok
    08:06:08.0015 2052 asc - ok
    08:06:08.0062 2052 asc3350p - ok
    08:06:08.0093 2052 asc3550 - ok
    08:06:08.0202 2052 [ 54AB078660E536DA72B21A27F56B035B ] Aspi32 C:\WINDOWS\system32\drivers\aspi32.sys
    08:06:08.0218 2052 Aspi32 - ok
    08:06:08.0374 2052 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
    08:06:08.0390 2052 aspnet_state - ok
    08:06:08.0437 2052 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
    08:06:08.0437 2052 AsyncMac - ok
    08:06:08.0499 2052 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
    08:06:08.0515 2052 atapi - ok
    08:06:08.0562 2052 Atdisk - ok
    08:06:08.0671 2052 [ FBC566675FBFA5248EBFA4492B167240 ] Ati HotKey Poller C:\WINDOWS\System32\Ati2evxx.exe
    08:06:08.0687 2052 Ati HotKey Poller - ok
    08:06:08.0780 2052 [ 49D98316588BADBFF31B6B09779E99C6 ] ATI Smart C:\WINDOWS\system32\ati2sgag.exe
    08:06:08.0780 2052 ATI Smart - ok
    08:06:08.0859 2052 [ 812E72F761837BDB80AD5CA83FAD474B ] ati2mtag C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
    08:06:08.0859 2052 ati2mtag - ok
    08:06:08.0921 2052 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
    08:06:08.0921 2052 Atmarpc - ok
    08:06:09.0093 2052 [ DEF7A7882BEC100FE0B2CE2549188F9D ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
    08:06:09.0109 2052 AudioSrv - ok
    08:06:09.0124 2052 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
    08:06:09.0124 2052 audstub - ok
    08:06:09.0218 2052 [ 1B9C81AB9A456EABD9F8335F04B5F495 ] basic2 C:\WINDOWS\system32\DRIVERS\HSF_BSC2.sys
    08:06:09.0234 2052 basic2 - ok
    08:06:09.0281 2052 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
    08:06:09.0281 2052 Beep - ok
    08:06:09.0359 2052 [ 574738F61FCA2935F5265DC4E5691314 ] BITS C:\WINDOWS\system32\qmgr.dll
    08:06:09.0374 2052 BITS - ok
    08:06:09.0546 2052 [ A06CE3399D16DB864F55FAEB1F1927A9 ] Browser C:\WINDOWS\System32\browser.dll
    08:06:09.0562 2052 Browser - ok
    08:06:09.0624 2052 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
    08:06:09.0624 2052 cbidf2k - ok
    08:06:09.0656 2052 cd20xrnt - ok
    08:06:09.0703 2052 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
    08:06:09.0703 2052 Cdaudio - ok
    08:06:09.0749 2052 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
    08:06:09.0749 2052 Cdfs - ok
    08:06:09.0812 2052 [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
    08:06:09.0828 2052 Cdrom - ok
    08:06:09.0859 2052 Changer - ok
    08:06:09.0937 2052 [ 1CFE720EB8D93A7158A4EBC3AB178BDE ] CiSvc C:\WINDOWS\system32\cisvc.exe
    08:06:09.0937 2052 CiSvc - ok
    08:06:10.0093 2052 [ 34CBE729F38138217F9C80212A2A0C82 ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
    08:06:10.0109 2052 ClipSrv - ok
    08:06:10.0281 2052 [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
    08:06:10.0281 2052 clr_optimization_v2.0.50727_32 - ok
    08:06:10.0328 2052 CmdIde - ok
    08:06:10.0468 2052 COMSysApp - ok
    08:06:10.0515 2052 Cpqarray - ok
    08:06:10.0656 2052 [ 3D4E199942E29207970E04315D02AD3B ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
    08:06:10.0671 2052 CryptSvc - ok
    08:06:10.0687 2052 dac2w2k - ok
    08:06:10.0734 2052 dac960nt - ok
    08:06:10.0828 2052 [ 6B27A5C03DFB94B4245739065431322C ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
    08:06:10.0843 2052 DcomLaunch - ok
    08:06:10.0921 2052 [ 5E38D7684A49CACFB752B046357E0589 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
    08:06:10.0937 2052 Dhcp - ok
    08:06:10.0968 2052 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
    08:06:10.0984 2052 Disk - ok
    08:06:11.0109 2052 dmadmin - ok
    08:06:11.0234 2052 [ D992FE1274BDE0F84AD826ACAE022A41 ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
    08:06:11.0250 2052 dmboot - ok
    08:06:11.0312 2052 [ 7C824CF7BBDE77D95C08005717A95F6F ] dmio C:\WINDOWS\system32\drivers\dmio.sys
    08:06:11.0328 2052 dmio - ok
    08:06:11.0390 2052 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
    08:06:11.0390 2052 dmload - ok
    08:06:11.0468 2052 [ 57EDEC2E5F59F0335E92F35184BC8631 ] dmserver C:\WINDOWS\System32\dmserver.dll
    08:06:11.0468 2052 dmserver - ok
    08:06:11.0562 2052 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
    08:06:11.0562 2052 DMusic - ok
    08:06:11.0593 2052 [ 5F7E24FA9EAB896051FFB87F840730D2 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
    08:06:11.0609 2052 Dnscache - ok
    08:06:11.0812 2052 [ 0F0F6E687E5E15579EF4DA8DD6945814 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
    08:06:11.0828 2052 Dot3svc - ok
    08:06:11.0875 2052 dpti2o - ok
    08:06:11.0937 2052 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
    08:06:11.0937 2052 drmkaud - ok
    08:06:12.0078 2052 [ 2187855A7703ADEF0CEF9EE4285182CC ] EapHost C:\WINDOWS\System32\eapsvc.dll
    08:06:12.0078 2052 EapHost - ok
    08:06:12.0234 2052 [ BC93B4A066477954555966D77FEC9ECB ] ERSvc C:\WINDOWS\System32\ersvc.dll
    08:06:12.0250 2052 ERSvc - ok
    08:06:12.0344 2052 [ 65DF52F5B8B6E9BBD183505225C37315 ] Eventlog C:\WINDOWS\system32\services.exe
    08:06:12.0359 2052 Eventlog - ok
    08:06:12.0469 2052 [ D4991D98F2DB73C60D042F1AEF79EFAE ] EventSystem C:\WINDOWS\System32\es.dll
    08:06:12.0500 2052 EventSystem - ok
    08:06:12.0547 2052 [ C823DEBE2548656549F84A875D65237B ] Fallback C:\WINDOWS\system32\DRIVERS\HSF_FALL.sys
    08:06:12.0562 2052 Fallback - ok
    08:06:12.0641 2052 [ 38D332A6D56AF32635675F132548343E ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
    08:06:12.0656 2052 Fastfat - ok
    08:06:12.0703 2052 [ 99BC0B50F511924348BE19C7C7313BBF ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
    08:06:12.0719 2052 FastUserSwitchingCompatibility - ok
    08:06:12.0750 2052 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc C:\WINDOWS\system32\DRIVERS\fdc.sys
    08:06:12.0750 2052 Fdc - ok
    08:06:12.0781 2052 [ CFC4CC73C903152A23E1DB28EABA1F03 ] FETND5BV C:\WINDOWS\system32\DRIVERS\fetnd5bv.sys
    08:06:12.0797 2052 FETND5BV - ok
    08:06:12.0844 2052 [ E9648254056BCE81A85380C0C3647DC4 ] FETNDIS C:\WINDOWS\system32\DRIVERS\fetnd5.sys
    08:06:12.0859 2052 FETNDIS - ok
    08:06:12.0906 2052 [ D45926117EB9FA946A6AF572FBE1CAA3 ] Fips C:\WINDOWS\system32\drivers\Fips.sys
    08:06:12.0906 2052 Fips - ok
    08:06:12.0953 2052 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk C:\WINDOWS\system32\DRIVERS\flpydisk.sys
    08:06:12.0953 2052 Flpydisk - ok
    08:06:13.0016 2052 [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
    08:06:13.0031 2052 FltMgr - ok
    08:06:13.0203 2052 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
    08:06:13.0266 2052 FontCache3.0.0.0 - ok
    08:06:13.0312 2052 [ 6483414841D4CAB6C3B4DB2AC6EDD70B ] Fsks C:\WINDOWS\system32\DRIVERS\HSF_FSKS.sys
    08:06:13.0328 2052 Fsks - ok
    08:06:13.0359 2052 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
    08:06:13.0359 2052 Fs_Rec - ok
    08:06:13.0406 2052 [ 6AC26732762483366C3969C9E4D2259D ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
    08:06:13.0422 2052 Ftdisk - ok
    08:06:13.0469 2052 [ 065639773D8B03F33577F6CDAEA21063 ] gameenum C:\WINDOWS\system32\DRIVERS\gameenum.sys
    08:06:13.0469 2052 gameenum - ok
    08:06:13.0516 2052 [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
    08:06:13.0531 2052 Gpc - ok
    08:06:13.0672 2052 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
    08:06:13.0688 2052 gupdate - ok
    08:06:13.0719 2052 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
    08:06:13.0734 2052 gupdatem - ok
    08:06:13.0828 2052 [ 751C1D2CA2ABF4A9F5A6B8D7D45B907C ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    08:06:13.0859 2052 gusvc - ok
    08:06:13.0953 2052 [ 4FCCA060DFE0C51A09DD5C3843888BCD ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
    08:06:13.0953 2052 helpsvc - ok
    08:06:14.0141 2052 HidServ - ok
    08:06:14.0235 2052 [ CCF82C5EC8A7326C3066DE870C06DAF1 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys
    08:06:14.0235 2052 HidUsb - ok
    08:06:14.0375 2052 [ 8878BD685E490239777BFE51320B88E9 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
    08:06:14.0391 2052 hkmsvc - ok
    08:06:14.0422 2052 hpn - ok
    08:06:14.0516 2052 [ 970178E8E003EB1481293830069624B9 ] HSFHWBS2 C:\WINDOWS\system32\DRIVERS\HSFBS2S2.sys
    08:06:14.0531 2052 HSFHWBS2 - ok
    08:06:14.0625 2052 [ EBB354438A4C5A3327FB97306260714A ] HSF_DP C:\WINDOWS\system32\DRIVERS\HSFDPSP2.sys
    08:06:14.0672 2052 HSF_DP - ok
    08:06:14.0766 2052 [ 74E379857D4C0DFB56DE2D19B8F4C434 ] hsf_msft C:\WINDOWS\system32\DRIVERS\HSF_MSFT.sys
    08:06:14.0797 2052 hsf_msft - ok
    08:06:14.0907 2052 [ F80A415EF82CD06FFAF0D971528EAD38 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
    08:06:14.0922 2052 HTTP - ok
    08:06:15.0110 2052 [ 6100A808600F44D999CEBDEF8841C7A3 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
    08:06:15.0125 2052 HTTPFilter - ok
    08:06:15.0157 2052 i2omgmt - ok
    08:06:15.0188 2052 i2omp - ok
    08:06:15.0250 2052 [ 4A0B06AA8943C1E332520F7440C0AA30 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
    08:06:15.0250 2052 i8042prt - ok
    08:06:15.0407 2052 [ 6F95324909B502E2651442C1548AB12F ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    08:06:15.0422 2052 IDriverT - ok
    08:06:15.0641 2052 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
    08:06:15.0704 2052 idsvc - ok
    08:06:15.0750 2052 [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
    08:06:15.0766 2052 Imapi - ok
    08:06:15.0875 2052 [ 30DEAF54A9755BB8546168CFE8A6B5E1 ] ImapiService C:\WINDOWS\System32\imapi.exe
    08:06:15.0891 2052 ImapiService - ok
    08:06:15.0938 2052 ini910u - ok
    08:06:15.0969 2052 IntelIde - ok
    08:06:16.0063 2052 [ 8C953733D8F36EB2133F5BB58808B66B ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
    08:06:16.0063 2052 intelppm - ok
    08:06:16.0125 2052 [ 3BB22519A194418D5FEC05D800A19AD0 ] ip6fw C:\WINDOWS\system32\drivers\ip6fw.sys
    08:06:16.0125 2052 ip6fw - ok
    08:06:16.0188 2052 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
    08:06:16.0188 2052 IpFilterDriver - ok
    08:06:16.0297 2052 [ B87AB476DCF76E72010632B5550955F5 ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
    08:06:16.0297 2052 IpInIp - ok
    08:06:16.0360 2052 [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
    08:06:16.0360 2052 IpNat - ok
    08:06:16.0407 2052 [ 23C74D75E36E7158768DD63D92789A91 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
    08:06:16.0422 2052 IPSec - ok
    08:06:16.0469 2052 [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
    08:06:16.0469 2052 IRENUM - ok
    08:06:16.0563 2052 [ 05A299EC56E52649B1CF2FC52D20F2D7 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
    08:06:16.0563 2052 isapnp - ok
    08:06:16.0641 2052 [ 9C5E3FDBFCC30CF71A49CA178B9AD442 ] K56 C:\WINDOWS\system32\DRIVERS\HSF_K56K.sys
    08:06:16.0672 2052 K56 - ok
    08:06:16.0704 2052 [ 463C1EC80CD17420A542B7F36A36F128 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
    08:06:16.0704 2052 Kbdclass - ok
    08:06:16.0797 2052 [ 692BCF44383D056AED41B045A323D378 ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
    08:06:16.0813 2052 kmixer - ok
    08:06:16.0860 2052 [ B467646C54CC746128904E1654C750C1 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
    08:06:16.0860 2052 KSecDD - ok
    08:06:16.0922 2052 [ 3A7C3CBE5D96B8AE96CE81F0B22FB527 ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
    08:06:16.0922 2052 lanmanserver - ok
    08:06:17.0110 2052 [ A8888A5327621856C0CEC4E385F69309 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
    08:06:17.0126 2052 lanmanworkstation - ok
    08:06:17.0173 2052 lbrtfdc - ok
    08:06:17.0329 2052 [ A7DB739AE99A796D91580147E919CC59 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
    08:06:17.0329 2052 LmHosts - ok
    08:06:17.0376 2052 [ 65FEF13327D25BC33AF78178365C1412 ] Maestro C:\WINDOWS\system32\drivers\essm2e.sys
    08:06:17.0391 2052 Maestro - ok
    08:06:17.0454 2052 MASPINT - ok
    08:06:17.0532 2052 McComponentHostService - ok
    08:06:17.0626 2052 [ 11F714F85530A2BD134074DC30E99FCA ] MDM C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    08:06:17.0641 2052 MDM - ok
    08:06:17.0688 2052 [ 195741AEE20369980796B557358CD774 ] mdmxsdk C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys
    08:06:17.0688 2052 mdmxsdk - ok
    08:06:17.0782 2052 [ 986B1FF5814366D71E0AC5755C88F2D3 ] Messenger C:\WINDOWS\System32\msgsvc.dll
    08:06:17.0798 2052 Messenger - ok
    08:06:17.0844 2052 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
    08:06:17.0860 2052 mnmdd - ok
    08:06:17.0923 2052 [ D18F1F0C101D06A1C1ADF26EED16FCDD ] mnmsrvc C:\WINDOWS\System32\mnmsrvc.exe
    08:06:17.0938 2052 mnmsrvc - ok
    08:06:17.0970 2052 [ DFCBAD3CEC1C5F964962AE10E0BCC8E1 ] Modem C:\WINDOWS\system32\drivers\Modem.sys
    08:06:17.0985 2052 Modem - ok
    08:06:18.0063 2052 [ 1992E0D143B09653AB0F9C5E04B0FD65 ] MODEMCSA C:\WINDOWS\system32\drivers\MODEMCSA.sys
    08:06:18.0063 2052 MODEMCSA - ok
    08:06:18.0126 2052 [ 35C9E97194C8CFB8430125F8DBC34D04 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
    08:06:18.0126 2052 Mouclass - ok
    08:06:18.0204 2052 [ B1C303E17FB9D46E87A98E4BA6769685 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
    08:06:18.0204 2052 mouhid - ok
    08:06:18.0282 2052 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
    08:06:18.0282 2052 MountMgr - ok
    08:06:18.0329 2052 MozillaMaintenance - ok
    08:06:18.0376 2052 mraid35x - ok
    08:06:18.0407 2052 [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
    08:06:18.0407 2052 MRxDAV - ok
    08:06:18.0470 2052 [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
    08:06:18.0501 2052 MRxSmb - ok
    08:06:18.0595 2052 [ A137F1470499A205ABBB9AAFB3B6F2B1 ] MSDTC C:\WINDOWS\System32\msdtc.exe
    08:06:18.0595 2052 MSDTC - ok
    08:06:18.0642 2052 [ C941EA2454BA8350021D774DAF0F1027 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
    08:06:18.0642 2052 Msfs - ok
    08:06:18.0798 2052 MSIServer - ok
    08:06:18.0876 2052 [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
    08:06:18.0876 2052 MSKSSRV - ok
    08:06:18.0923 2052 [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
    08:06:18.0923 2052 MSPCLOCK - ok
    08:06:18.0954 2052 [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
    08:06:18.0954 2052 MSPQM - ok
    08:06:19.0001 2052 [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
    08:06:19.0001 2052 mssmbios - ok
    08:06:19.0032 2052 [ CA3E22598F411199ADC2DFEE76CD0AE0 ] ms_mpu401 C:\WINDOWS\system32\drivers\msmpu401.sys
    08:06:19.0032 2052 ms_mpu401 - ok
    08:06:19.0079 2052 [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
    08:06:19.0079 2052 Mup - ok
    08:06:19.0204 2052 [ 0EBE5687330AFAF6B00851F983950365 ] MWAgent C:\Program Files\Common Files\MicroWorld\Agent\MWASER.EXE
    08:06:19.0220 2052 MWAgent - ok
    08:06:19.0439 2052 [ 0102140028FAD045756796E1C685D695 ] napagent C:\WINDOWS\System32\qagentrt.dll
    08:06:19.0454 2052 napagent - ok
    08:06:19.0501 2052 [ 1DF7F42665C94B825322FAE71721130D ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
    08:06:19.0517 2052 NDIS - ok
    08:06:19.0548 2052 [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
    08:06:19.0548 2052 NdisTapi - ok
    08:06:19.0626 2052 [ F927A4434C5028758A842943EF1A3849 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
    08:06:19.0626 2052 Ndisuio - ok
    08:06:19.0657 2052 [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
    08:06:19.0657 2052 NdisWan - ok
    08:06:19.0689 2052 [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
    08:06:19.0704 2052 NDProxy - ok
    08:06:19.0829 2052 [ A081CB6FB9A12668F233EB5414BE3A0E ] Net Driver HPZ12 C:\WINDOWS\system32\HPZinw12.dll
    08:06:19.0845 2052 Net Driver HPZ12 - ok
    08:06:19.0876 2052 [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
    08:06:19.0892 2052 NetBIOS - ok
    08:06:19.0923 2052 [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
    08:06:19.0939 2052 NetBT - ok
    08:06:20.0064 2052 [ B857BA82860D7FF85AE29B095645563B ] NetDDE C:\WINDOWS\system32\netdde.exe
    08:06:20.0079 2052 NetDDE - ok
    08:06:20.0095 2052 [ B857BA82860D7FF85AE29B095645563B ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
    08:06:20.0110 2052 NetDDEdsdm - ok
    08:06:20.0236 2052 [ BF2466B3E18E970D8A976FB95FC1CA85 ] Netlogon C:\WINDOWS\System32\lsass.exe
    08:06:20.0236 2052 Netlogon - ok
    08:06:20.0361 2052 [ 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE ] Netman C:\WINDOWS\System32\netman.dll
    08:06:20.0376 2052 Netman - ok
    08:06:20.0517 2052 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
    08:06:20.0532 2052 NetTcpPortSharing - ok
    08:06:20.0595 2052 [ 943337D786A56729263071623BBB9DE5 ] Nla C:\WINDOWS\System32\mswsock.dll
    08:06:20.0595 2052 Nla - ok
    08:06:20.0689 2052 nosGetPlusHelper - ok
    08:06:20.0736 2052 [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
    08:06:20.0736 2052 Npfs - ok
    08:06:20.0814 2052 [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
    08:06:20.0829 2052 Ntfs - ok
    08:06:20.0939 2052 [ BF2466B3E18E970D8A976FB95FC1CA85 ] NtLmSsp C:\WINDOWS\System32\lsass.exe
    08:06:20.0939 2052 NtLmSsp - ok
    08:06:21.0126 2052 [ 156F64A3345BD23C600655FB4D10BC08 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
    08:06:21.0158 2052 NtmsSvc - ok
    08:06:21.0204 2052 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
    08:06:21.0204 2052 Null - ok
    08:06:21.0283 2052 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
    08:06:21.0283 2052 NwlnkFlt - ok
    08:06:21.0314 2052 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
    08:06:21.0329 2052 NwlnkFwd - ok
    08:06:21.0454 2052 [ 7A56CF3E3F12E8AF599963B16F50FB6A ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
    08:06:21.0454 2052 ose - ok
    08:06:21.0517 2052 [ 5575FAF8F97CE5E713D108C2A58D7C7C ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys
    08:06:21.0533 2052 Parport - ok
    08:06:21.0579 2052 [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
    08:06:21.0579 2052 PartMgr - ok
    08:06:21.0626 2052 [ 70E98B3FD8E963A6A46A2E6247E0BEA1 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
    08:06:21.0626 2052 ParVdm - ok
    08:06:21.0658 2052 [ A219903CCF74233761D92BEF471A07B1 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
    08:06:21.0658 2052 PCI - ok
    08:06:21.0705 2052 PCIDump - ok
    08:06:21.0736 2052 PCIIde - ok
    08:06:21.0798 2052 [ 9E89EF60E9EE05E3F2EEF2DA7397F1C1 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
    08:06:21.0798 2052 Pcmcia - ok
    08:06:21.0845 2052 PDCOMP - ok
    08:06:21.0876 2052 PDFRAME - ok
    08:06:21.0908 2052 PDRELI - ok
    08:06:21.0939 2052 PDRFRAME - ok
    08:06:21.0970 2052 perc2 - ok
    08:06:22.0017 2052 perc2hib - ok
    08:06:22.0158 2052 [ 65DF52F5B8B6E9BBD183505225C37315 ] PlugPlay C:\WINDOWS\system32\services.exe
    08:06:22.0173 2052 PlugPlay - ok
    08:06:22.0298 2052 [ 65BC271F337637731D3C71455AE1F476 ] Pml Driver HPZ12 C:\WINDOWS\system32\HPZipm12.dll
    08:06:22.0314 2052 Pml Driver HPZ12 - ok
    08:06:22.0423 2052 [ BF2466B3E18E970D8A976FB95FC1CA85 ] PolicyAgent C:\WINDOWS\System32\lsass.exe
    08:06:22.0439 2052 PolicyAgent - ok
    08:06:22.0470 2052 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
    08:06:22.0486 2052 PptpMiniport - ok
    08:06:22.0502 2052 [ A32BEBAF723557681BFC6BD93E98BD26 ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys
    08:06:22.0517 2052 Processor - ok
    08:06:22.0627 2052 [ BF2466B3E18E970D8A976FB95FC1CA85 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
    08:06:22.0642 2052 ProtectedStorage - ok
    08:06:22.0673 2052 [ 09298EC810B07E5D582CB3A3F9255424 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
    08:06:22.0673 2052 PSched - ok
    08:06:22.0689 2052 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
    08:06:22.0705 2052 Ptilink - ok
    08:06:22.0736 2052 [ 0C8DA0A8B0D227319C285E0EAE65DEFD ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys
    08:06:22.0736 2052 PxHelp20 - ok
    08:06:22.0783 2052 ql1080 - ok
    08:06:22.0814 2052 Ql10wnt - ok
    08:06:22.0861 2052 ql12160 - ok
    08:06:22.0892 2052 ql1240 - ok
    08:06:22.0923 2052 ql1280 - ok
    08:06:22.0955 2052 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
    08:06:22.0970 2052 RasAcd - ok
    08:06:23.0111 2052 [ AD188BE7BDF94E8DF4CA0A55C00A5073 ] RasAuto C:\WINDOWS\System32\rasauto.dll
    08:06:23.0127 2052 RasAuto - ok
    08:06:23.0174 2052 [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
    08:06:23.0189 2052 Rasl2tp - ok
    08:06:23.0361 2052 [ 76A9A3CBEADD68CC57CDA5E1D7448235 ] RasMan C:\WINDOWS\System32\rasmans.dll
    08:06:23.0377 2052 RasMan - ok
    08:06:23.0408 2052 [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
    08:06:23.0424 2052 RasPppoe - ok
    08:06:23.0455 2052 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
    08:06:23.0455 2052 Raspti - ok
    08:06:23.0502 2052 [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
    08:06:23.0517 2052 Rdbss - ok
    08:06:23.0564 2052 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
    08:06:23.0564 2052 RDPCDD - ok
    08:06:23.0658 2052 [ 6589DB6E5969F8EEE594CF71171C5028 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
    08:06:23.0674 2052 RDPWD - ok
    08:06:23.0814 2052 [ 3C37BF86641BDA977C3BF8A840F3B7FA ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
    08:06:23.0830 2052 RDSessMgr - ok
    08:06:23.0877 2052 [ F828DD7E1419B6653894A8F97A0094C5 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
    08:06:23.0877 2052 redbook - ok
    08:06:24.0033 2052 [ 7E699FF5F59B5D9DE5390E3C34C67CF5 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
    08:06:24.0033 2052 RemoteAccess - ok
    08:06:24.0080 2052 [ BB7549BD94D1AAC3599C7606C50C48A0 ] Rksample C:\WINDOWS\system32\DRIVERS\HSF_SAMP.sys
    08:06:24.0096 2052 Rksample - ok
    08:06:24.0158 2052 [ AAED593F84AFA419BBAE8572AF87CF6A ] RpcLocator C:\WINDOWS\System32\locator.exe
    08:06:24.0158 2052 RpcLocator - ok
    08:06:24.0252 2052 [ 6B27A5C03DFB94B4245739065431322C ] RpcSs C:\WINDOWS\system32\rpcss.dll
    08:06:24.0252 2052 RpcSs - ok
    08:06:24.0377 2052 [ 471B3F9741D762ABE75E9DEEA4787E47 ] RSVP C:\WINDOWS\System32\rsvp.exe
    08:06:24.0392 2052 RSVP - ok
    08:06:24.0486 2052 [ BF2466B3E18E970D8A976FB95FC1CA85 ] SamSs C:\WINDOWS\system32\lsass.exe
    08:06:24.0502 2052 SamSs - ok
    08:06:24.0627 2052 [ 86D007E7A654B9A71D1D7D856B104353 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
    08:06:24.0643 2052 SCardSvr - ok
    08:06:24.0752 2052 [ 0A9A7365A1CA4319AA7C1D6CD8E4EAFA ] Schedule C:\WINDOWS\system32\schedsvc.dll
    08:06:24.0768 2052 Schedule - ok
    08:06:24.0924 2052 [ 4A5809A1D796E2675AC0332BF7B0CB11 ] SeaPort C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
    08:06:24.0939 2052 SeaPort - ok
    08:06:24.0986 2052 [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
    08:06:25.0002 2052 Secdrv - ok
    08:06:25.0143 2052 [ CBE612E2BB6A10E3563336191EDA1250 ] seclogon C:\WINDOWS\System32\seclogon.dll
    08:06:25.0143 2052 seclogon - ok
    08:06:25.0268 2052 [ 7FDD5D0684ECA8C1F68B4D99D124DCD0 ] SENS C:\WINDOWS\system32\sens.dll
    08:06:25.0268 2052 SENS - ok
    08:06:25.0330 2052 [ E42F03D1081C4F60D3DB6C38235B1456 ] Ser2pl C:\WINDOWS\system32\DRIVERS\ser2pl.sys
    08:06:25.0330 2052 Ser2pl - ok
    08:06:25.0393 2052 [ 0F29512CCD6BEAD730039FB4BD2C85CE ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys
    08:06:25.0393 2052 serenum - ok
    08:06:25.0424 2052 [ CCA207A8896D4C6A0C9CE29A4AE411A7 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys
    08:06:25.0424 2052 Serial - ok
    08:06:25.0502 2052 [ 1F16931C722C69E4A7866244796C66A0 ] sermouse C:\WINDOWS\system32\DRIVERS\sermouse.sys
    08:06:25.0502 2052 sermouse - ok
    08:06:25.0565 2052 [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
    08:06:25.0565 2052 Sfloppy - ok
    08:06:25.0674 2052 [ 83F41D0D89645D7235C051AB1D9523AC ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
    08:06:25.0690 2052 SharedAccess - ok
    08:06:25.0736 2052 [ 99BC0B50F511924348BE19C7C7313BBF ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
    08:06:25.0736 2052 ShellHWDetection - ok
    08:06:25.0783 2052 Simbad - ok
    08:06:25.0846 2052 [ D9E8E0CE154A2F6430D9EFABDF730867 ] SoftFax C:\WINDOWS\system32\DRIVERS\HSF_FAXX.sys
    08:06:25.0861 2052 SoftFax - ok
    08:06:25.0908 2052 Sparrow - ok
    08:06:25.0971 2052 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter C:\WINDOWS\system32\drivers\splitter.sys
    08:06:25.0971 2052 splitter - ok
    08:06:26.0033 2052 [ 60784F891563FB1B767F70117FC2428F ] Spooler C:\WINDOWS\system32\spoolsv.exe
    08:06:26.0033 2052 Spooler - ok
    08:06:26.0080 2052 [ 76BB022C2FB6902FD5BDD4F78FC13A5D ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
    08:06:26.0096 2052 sr - ok
    08:06:26.0205 2052 [ 3805DF0AC4296A34BA4BF93B346CC378 ] srservice C:\WINDOWS\System32\srsvc.dll
    08:06:26.0221 2052 srservice - ok
    08:06:26.0268 2052 [ 47DDFC2F003F7F9F0592C6874962A2E7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
    08:06:26.0283 2052 Srv - ok
    08:06:26.0424 2052 [ 0A5679B3714EDAB99E357057EE88FCA6 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
    08:06:26.0424 2052 SSDPSRV - ok
    08:06:26.0487 2052 [ A9573045BAA16EAB9B1085205B82F1ED ] StillCam C:\WINDOWS\system32\DRIVERS\serscan.sys
    08:06:26.0487 2052 StillCam - ok
    08:06:26.0580 2052 [ 8BAD69CBAC032D4BBACFCE0306174C30 ] stisvc C:\WINDOWS\system32\wiaservc.dll
    08:06:26.0596 2052 stisvc - ok
    08:06:26.0658 2052 Stltrk2k - ok
    08:06:26.0690 2052 [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
    08:06:26.0690 2052 swenum - ok
    08:06:26.0737 2052 [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
    08:06:26.0737 2052 swmidi - ok
    08:06:26.0893 2052 SwPrv - ok
    08:06:26.0955 2052 symc810 - ok
    08:06:26.0987 2052 symc8xx - ok
    08:06:27.0018 2052 sym_hi - ok
    08:06:27.0065 2052 sym_u3 - ok
    08:06:27.0127 2052 [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
    08:06:27.0127 2052 sysaudio - ok
    08:06:27.0252 2052 [ C7ABBC59B43274B1109DF6B24D617051 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
    08:06:27.0268 2052 SysmonLog - ok
    08:06:27.0362 2052 [ 3CB78C17BB664637787C9A1C98F79C38 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
    08:06:27.0377 2052 TapiSrv - ok
    08:06:27.0440 2052 [ 9AEFA14BD6B182D61E3119FA5F436D3D ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
    08:06:27.0455 2052 Tcpip - ok
    08:06:27.0518 2052 [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
    08:06:27.0518 2052 TDPIPE - ok
    08:06:27.0565 2052 [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
    08:06:27.0565 2052 TDTCP - ok
    08:06:27.0612 2052 [ 88155247177638048422893737429D9E ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
    08:06:27.0627 2052 TermDD - ok
    08:06:27.0815 2052 [ FF3477C03BE7201C294C35F684B3479F ] TermService C:\WINDOWS\System32\termsrv.dll
    08:06:27.0831 2052 TermService - ok
    08:06:27.0909 2052 [ 99BC0B50F511924348BE19C7C7313BBF ] Themes C:\WINDOWS\System32\shsvcs.dll
    08:06:27.0909 2052 Themes - ok
    08:06:27.0940 2052 [ 8021A499DB46B2961C285168671CB9AF ] Tones C:\WINDOWS\system32\DRIVERS\HSF_TONE.sys
    08:06:27.0956 2052 Tones - ok
    08:06:27.0971 2052 TosIde - ok
    08:06:28.0081 2052 [ 55BCA12F7F523D35CA3CB833C725F54E ] TrkWks C:\WINDOWS\system32\trkwks.dll
    08:06:28.0081 2052 TrkWks - ok
    08:06:28.0159 2052 [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
    08:06:28.0159 2052 Udfs - ok
    08:06:28.0206 2052 ultra - ok
    08:06:28.0268 2052 [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
    08:06:28.0284 2052 Update - ok
    08:06:28.0409 2052 [ 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 ] upnphost C:\WINDOWS\System32\upnphost.dll
    08:06:28.0424 2052 upnphost - ok
    08:06:28.0565 2052 [ 05365FB38FCA1E98F7A566AAAF5D1815 ] UPS C:\WINDOWS\System32\ups.exe
    08:06:28.0581 2052 UPS - ok
    08:06:28.0628 2052 [ 173F317CE0DB8E21322E71B7E60A27E8 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
    08:06:28.0643 2052 usbccgp - ok
    08:06:28.0690 2052 [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
    08:06:28.0706 2052 usbehci - ok
    08:06:28.0737 2052 [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
    08:06:28.0737 2052 usbhub - ok
    08:06:28.0815 2052 [ A717C8721046828520C9EDF31288FC00 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys
    08:06:28.0831 2052 usbprint - ok
    08:06:28.0893 2052 [ A0B8CF9DEB1184FBDD20784A58FA75D4 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
    08:06:28.0893 2052 usbscan - ok
    08:06:28.0987 2052 [ A32426D9B14A089EAA1D922E0C5801A9 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
    08:06:29.0003 2052 USBSTOR - ok
    08:06:29.0034 2052 [ 26496F9DEE2D787FC3E61AD54821FFE6 ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
    08:06:29.0049 2052 usbuhci - ok
    08:06:29.0112 2052 [ 269C0ADE94B90029B12497747BE408CB ] V124 C:\WINDOWS\system32\DRIVERS\HSF_V124.sys
    08:06:29.0143 2052 V124 - ok
    08:06:29.0175 2052 [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
    08:06:29.0190 2052 VgaSave - ok
    08:06:29.0237 2052 [ 754292CE5848B3738281B4F3607EAEF4 ] viaagp C:\WINDOWS\system32\DRIVERS\viaagp.sys
    08:06:29.0253 2052 viaagp - ok
    08:06:29.0284 2052 [ 0E3E3FAE3A0A58B8D936A8E841A17D16 ] viaagp1 C:\WINDOWS\system32\DRIVERS\viaagp1.sys
    08:06:29.0284 2052 viaagp1 - ok
    08:06:29.0346 2052 [ 3B3EFCDA263B8AC14FDF9CBDD0791B2E ] ViaIde C:\WINDOWS\system32\DRIVERS\viaide.sys
    08:06:29.0346 2052 ViaIde - ok
    08:06:29.0393 2052 [ A6B4B9EBC02991EE9623C06CC1CA8DAE ] VIAudio C:\WINDOWS\system32\drivers\viaudio.sys
    08:06:29.0409 2052 VIAudio - ok
    08:06:29.0440 2052 [ 4C8FCB5CC53AAB716D810740FE59D025 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
    08:06:29.0440 2052 VolSnap - ok
    08:06:29.0596 2052 [ 7A9DB3A67C333BF0BD42E42B8596854B ] VSS C:\WINDOWS\System32\vssvc.exe
    08:06:29.0612 2052 VSS - ok
    08:06:29.0784 2052 [ 54AF4B1D5459500EF0937F6D33B1914F ] W32Time C:\WINDOWS\System32\w32time.dll
    08:06:29.0800 2052 W32Time - ok
    08:06:29.0831 2052 [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
    08:06:29.0846 2052 Wanarp - ok
    08:06:29.0893 2052 [ D6EFAF429FD30C5DF613D220E344CCE7 ] WDC_SAM C:\WINDOWS\system32\DRIVERS\wdcsam.sys
    08:06:29.0909 2052 WDC_SAM - ok
    08:06:29.0956 2052 WDICA - ok
    08:06:30.0034 2052 [ 6768ACF64B18196494413695F0C3A00F ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
    08:06:30.0050 2052 wdmaud - ok
    08:06:30.0143 2052 [ 77A354E28153AD2D5E120A5A8687BC06 ] WebClient C:\WINDOWS\System32\webclnt.dll
    08:06:30.0159 2052 WebClient - ok
    08:06:30.0284 2052 [ 1225EBEA76AAC3C84DF6C54FE5E5D8BE ] winachsf C:\WINDOWS\system32\DRIVERS\HSFCXTS2.sys
    08:06:30.0300 2052 winachsf - ok
    08:06:30.0393 2052 [ 2D0E4ED081963804CCC196A0929275B5 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
    08:06:30.0409 2052 winmgmt - ok
    08:06:30.0534 2052 wlidsvc - ok
    08:06:30.0675 2052 [ C51B4A5C05A5475708E3C81C7765B71D ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll
    08:06:30.0675 2052 WmdmPmSN - ok
    08:06:30.0769 2052 [ E0673F1106E62A68D2257E376079F821 ] WmiApSrv C:\WINDOWS\System32\wbem\wmiapsrv.exe
    08:06:30.0784 2052 WmiApSrv - ok
    08:06:30.0925 2052 [ F74E3D9A7FA9556C3BBB14D4E5E63D3B ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe
    08:06:30.0956 2052 WMPNetworkSvc - ok
    08:06:31.0019 2052 [ CF4DEF1BF66F06964DC0D91844239104 ] WpdUsb C:\WINDOWS\system32\Drivers\wpdusb.sys
    08:06:31.0034 2052 WpdUsb - ok
    08:06:31.0112 2052 [ 6ABE6E225ADB5A751622A9CC3BC19CE8 ] WS2IFSL C:\WINDOWS\System32\drivers\ws2ifsl.sys
    08:06:31.0112 2052 WS2IFSL - ok
    08:06:31.0269 2052 [ 7C278E6408D1DCE642230C0585A854D5 ] wscsvc C:\WINDOWS\system32\wscsvc.dll
    08:06:31.0284 2052 wscsvc - ok
    08:06:31.0394 2052 [ 35321FB577CDC98CE3EB3A3EB9E4610A ] wuauserv C:\WINDOWS\system32\wuauserv.dll
    08:06:31.0394 2052 wuauserv - ok
    08:06:31.0425 2052 [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
    08:06:31.0441 2052 WudfPf - ok
    08:06:31.0503 2052 [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
    08:06:31.0519 2052 WudfRd - ok
    08:06:31.0706 2052 [ 05231C04253C5BC30B26CBAAE680ED89 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
    08:06:31.0722 2052 WudfSvc - ok
    08:06:31.0816 2052 [ 81DC3F549F44B1C1FFF022DEC9ECF30B ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
    08:06:31.0847 2052 WZCSVC - ok
    08:06:31.0987 2052 [ 295D21F14C335B53CB8154E5B1F892B9 ] xmlprov C:\WINDOWS\System32\xmlprov.dll
    08:06:32.0003 2052 xmlprov - ok
    08:06:32.0066 2052 ================ Scan global ===============================
    08:06:32.0331 2052 [ 42F1F4C0AFB08410E5F02D4B13EBB623 ] C:\WINDOWS\system32\basesrv.dll
    08:06:32.0488 2052 [ 8C7DCA4B158BF16894120786A7A5F366 ] C:\WINDOWS\system32\winsrv.dll
    08:06:32.0644 2052 [ 8C7DCA4B158BF16894120786A7A5F366 ] C:\WINDOWS\system32\winsrv.dll
    08:06:32.0722 2052 [ 65DF52F5B8B6E9BBD183505225C37315 ] C:\WINDOWS\system32\services.exe
    08:06:32.0738 2052 [Global] - ok
    08:06:32.0738 2052 ================ Scan MBR ==================================
    08:06:32.0769 2052 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk0\DR0
    08:06:39.0786 2052 \Device\Harddisk0\DR0 - ok
    08:06:39.0801 2052 ================ Scan VBR ==================================
    08:06:39.0801 2052 [ 69962C5DE9EC38C51D87BE0A14E28A9F ] \Device\Harddisk0\DR0\Partition1
    08:06:39.0801 2052 \Device\Harddisk0\DR0\Partition1 - ok
    08:06:39.0817 2052 ============================================================
    08:06:39.0817 2052 Scan finished
    08:06:39.0817 2052 ============================================================
    08:06:39.0848 0660 Detected object count: 0
    08:06:39.0848 0660 Actual detected object count: 0
    08:09:05.0904 1828 Deinitialize success
     
  18. 2012/10/05
    Spanner

    Spanner Inactive Thread Starter

    Joined:
    2006/08/27
    Messages:
    451
    Likes Received:
    1
    RK Logs (2). not sure if This is a repeat of previous ?.08:06:00.0795 1868 TDSS rootkit removing tool 2.8.10.0 Sep 17 2012 19:23:24
    08:06:01.0139 1868 ============================================================
    08:06:01.0139 1868 Current date / time: 2012/10/05 08:06:01.0139
    08:06:01.0139 1868 SystemInfo:
    08:06:01.0139 1868
    08:06:01.0139 1868 OS Version: 5.1.2600 ServicePack: 3.0
    08:06:01.0139 1868 Product type: Workstation
    08:06:01.0139 1868 ComputerName: SSTYLE
    08:06:01.0139 1868 UserName: Pat cox
    08:06:01.0139 1868 Windows directory: C:\WINDOWS
    08:06:01.0139 1868 System windows directory: C:\WINDOWS
    08:06:01.0139 1868 Processor architecture: Intel x86
    08:06:01.0139 1868 Number of processors: 1
    08:06:01.0139 1868 Page size: 0x1000
    08:06:01.0139 1868 Boot type: Normal boot
    08:06:01.0139 1868 ============================================================
    08:06:01.0592 1868 Drive \Device\Harddisk0\DR0 - Size: 0x12882D8000 (74.13 Gb), SectorSize: 0x200, Cylinders: 0x25CC, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
    08:06:01.0607 1868 ============================================================
    08:06:01.0607 1868 \Device\Harddisk0\DR0:
    08:06:01.0607 1868 MBR partitions:
    08:06:01.0607 1868 \Device\Harddisk0\DR0\Partition1: MBR, Type 0xC, StartLBA 0x3F, BlocksNum 0x9441680
    08:06:01.0607 1868 ============================================================
    08:06:01.0607 1868 C: <-> \Device\Harddisk0\DR0\Partition1
    08:06:01.0607 1868 ============================================================
    08:06:01.0607 1868 Initialize success
    08:06:01.0607 1868 ============================================================
    08:06:05.0499 2052 ============================================================
    08:06:05.0499 2052 Scan started
    08:06:05.0499 2052 Mode: Manual;
    08:06:05.0499 2052 ============================================================
    08:06:06.0343 2052 ================ Scan system memory ========================
    08:06:06.0343 2052 System memory - ok
    08:06:06.0358 2052 ================ Scan services =============================
    08:06:06.0702 2052 Abiosdsk - ok
    08:06:06.0765 2052 abp480n5 - ok
    08:06:06.0843 2052 [ 8FD99680A539792A30E97944FDAECF17 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
    08:06:06.0858 2052 ACPI - ok
    08:06:06.0905 2052 [ 9859C0F6936E723E4892D7141B1327D5 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
    08:06:06.0905 2052 ACPIEC - ok
    08:06:07.0093 2052 [ B2B64AF436FACCFA854DD397027C5360 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
    08:06:07.0108 2052 AdobeFlashPlayerUpdateSvc - ok
    08:06:07.0140 2052 adpu160m - ok
    08:06:07.0233 2052 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys
    08:06:07.0233 2052 aec - ok
    08:06:07.0280 2052 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys
    08:06:07.0296 2052 AFD - ok
    08:06:07.0327 2052 Aha154x - ok
    08:06:07.0374 2052 aic78u2 - ok
    08:06:07.0405 2052 aic78xx - ok
    08:06:07.0468 2052 [ 0940030D5A5869067CCC03E3B0B8DEC7 ] alcan5wn C:\WINDOWS\system32\DRIVERS\alcan5wn.sys
    08:06:07.0468 2052 alcan5wn - ok
    08:06:07.0530 2052 [ 4C9577888C53243E2991456F510488A1 ] alcaudsl C:\WINDOWS\system32\DRIVERS\alcaudsl.sys
    08:06:07.0530 2052 alcaudsl - ok
    08:06:07.0671 2052 [ A9A3DAA780CA6C9671A19D52456705B4 ] Alerter C:\WINDOWS\system32\alrsvc.dll
    08:06:07.0671 2052 Alerter - ok
    08:06:07.0765 2052 [ 8C515081584A38AA007909CD02020B3D ] ALG C:\WINDOWS\System32\alg.exe
    08:06:07.0780 2052 ALG - ok
    08:06:07.0827 2052 AliIde - ok
    08:06:07.0858 2052 amsint - ok
    08:06:07.0983 2052 AppMgmt - ok
    08:06:08.0015 2052 asc - ok
    08:06:08.0062 2052 asc3350p - ok
    08:06:08.0093 2052 asc3550 - ok
    08:06:08.0202 2052 [ 54AB078660E536DA72B21A27F56B035B ] Aspi32 C:\WINDOWS\system32\drivers\aspi32.sys
    08:06:08.0218 2052 Aspi32 - ok
    08:06:08.0374 2052 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
    08:06:08.0390 2052 aspnet_state - ok
    08:06:08.0437 2052 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
    08:06:08.0437 2052 AsyncMac - ok
    08:06:08.0499 2052 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
    08:06:08.0515 2052 atapi - ok
    08:06:08.0562 2052 Atdisk - ok
    08:06:08.0671 2052 [ FBC566675FBFA5248EBFA4492B167240 ] Ati HotKey Poller C:\WINDOWS\System32\Ati2evxx.exe
    08:06:08.0687 2052 Ati HotKey Poller - ok
    08:06:08.0780 2052 [ 49D98316588BADBFF31B6B09779E99C6 ] ATI Smart C:\WINDOWS\system32\ati2sgag.exe
    08:06:08.0780 2052 ATI Smart - ok
    08:06:08.0859 2052 [ 812E72F761837BDB80AD5CA83FAD474B ] ati2mtag C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
    08:06:08.0859 2052 ati2mtag - ok
    08:06:08.0921 2052 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
    08:06:08.0921 2052 Atmarpc - ok
    08:06:09.0093 2052 [ DEF7A7882BEC100FE0B2CE2549188F9D ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
    08:06:09.0109 2052 AudioSrv - ok
    08:06:09.0124 2052 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
    08:06:09.0124 2052 audstub - ok
    08:06:09.0218 2052 [ 1B9C81AB9A456EABD9F8335F04B5F495 ] basic2 C:\WINDOWS\system32\DRIVERS\HSF_BSC2.sys
    08:06:09.0234 2052 basic2 - ok
    08:06:09.0281 2052 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
    08:06:09.0281 2052 Beep - ok
    08:06:09.0359 2052 [ 574738F61FCA2935F5265DC4E5691314 ] BITS C:\WINDOWS\system32\qmgr.dll
    08:06:09.0374 2052 BITS - ok
    08:06:09.0546 2052 [ A06CE3399D16DB864F55FAEB1F1927A9 ] Browser C:\WINDOWS\System32\browser.dll
    08:06:09.0562 2052 Browser - ok
    08:06:09.0624 2052 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
    08:06:09.0624 2052 cbidf2k - ok
    08:06:09.0656 2052 cd20xrnt - ok
    08:06:09.0703 2052 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
    08:06:09.0703 2052 Cdaudio - ok
    08:06:09.0749 2052 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
    08:06:09.0749 2052 Cdfs - ok
    08:06:09.0812 2052 [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
    08:06:09.0828 2052 Cdrom - ok
    08:06:09.0859 2052 Changer - ok
    08:06:09.0937 2052 [ 1CFE720EB8D93A7158A4EBC3AB178BDE ] CiSvc C:\WINDOWS\system32\cisvc.exe
    08:06:09.0937 2052 CiSvc - ok
    08:06:10.0093 2052 [ 34CBE729F38138217F9C80212A2A0C82 ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
    08:06:10.0109 2052 ClipSrv - ok
    08:06:10.0281 2052 [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
    08:06:10.0281 2052 clr_optimization_v2.0.50727_32 - ok
    08:06:10.0328 2052 CmdIde - ok
    08:06:10.0468 2052 COMSysApp - ok
    08:06:10.0515 2052 Cpqarray - ok
    08:06:10.0656 2052 [ 3D4E199942E29207970E04315D02AD3B ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
    08:06:10.0671 2052 CryptSvc - ok
    08:06:10.0687 2052 dac2w2k - ok
    08:06:10.0734 2052 dac960nt - ok
    08:06:10.0828 2052 [ 6B27A5C03DFB94B4245739065431322C ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
    08:06:10.0843 2052 DcomLaunch - ok
    08:06:10.0921 2052 [ 5E38D7684A49CACFB752B046357E0589 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
    08:06:10.0937 2052 Dhcp - ok
    08:06:10.0968 2052 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
    08:06:10.0984 2052 Disk - ok
    08:06:11.0109 2052 dmadmin - ok
    08:06:11.0234 2052 [ D992FE1274BDE0F84AD826ACAE022A41 ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
    08:06:11.0250 2052 dmboot - ok
    08:06:11.0312 2052 [ 7C824CF7BBDE77D95C08005717A95F6F ] dmio C:\WINDOWS\system32\drivers\dmio.sys
    08:06:11.0328 2052 dmio - ok
    08:06:11.0390 2052 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
    08:06:11.0390 2052 dmload - ok
    08:06:11.0468 2052 [ 57EDEC2E5F59F0335E92F35184BC8631 ] dmserver C:\WINDOWS\System32\dmserver.dll
    08:06:11.0468 2052 dmserver - ok
    08:06:11.0562 2052 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
    08:06:11.0562 2052 DMusic - ok
    08:06:11.0593 2052 [ 5F7E24FA9EAB896051FFB87F840730D2 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
    08:06:11.0609 2052 Dnscache - ok
    08:06:11.0812 2052 [ 0F0F6E687E5E15579EF4DA8DD6945814 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
    08:06:11.0828 2052 Dot3svc - ok
    08:06:11.0875 2052 dpti2o - ok
    08:06:11.0937 2052 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
    08:06:11.0937 2052 drmkaud - ok
    08:06:12.0078 2052 [ 2187855A7703ADEF0CEF9EE4285182CC ] EapHost C:\WINDOWS\System32\eapsvc.dll
    08:06:12.0078 2052 EapHost - ok
    08:06:12.0234 2052 [ BC93B4A066477954555966D77FEC9ECB ] ERSvc C:\WINDOWS\System32\ersvc.dll
    08:06:12.0250 2052 ERSvc - ok
    08:06:12.0344 2052 [ 65DF52F5B8B6E9BBD183505225C37315 ] Eventlog C:\WINDOWS\system32\services.exe
    08:06:12.0359 2052 Eventlog - ok
    08:06:12.0469 2052 [ D4991D98F2DB73C60D042F1AEF79EFAE ] EventSystem C:\WINDOWS\System32\es.dll
    08:06:12.0500 2052 EventSystem - ok
    08:06:12.0547 2052 [ C823DEBE2548656549F84A875D65237B ] Fallback C:\WINDOWS\system32\DRIVERS\HSF_FALL.sys
    08:06:12.0562 2052 Fallback - ok
    08:06:12.0641 2052 [ 38D332A6D56AF32635675F132548343E ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
    08:06:12.0656 2052 Fastfat - ok
    08:06:12.0703 2052 [ 99BC0B50F511924348BE19C7C7313BBF ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
    08:06:12.0719 2052 FastUserSwitchingCompatibility - ok
    08:06:12.0750 2052 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc C:\WINDOWS\system32\DRIVERS\fdc.sys
    08:06:12.0750 2052 Fdc - ok
    08:06:12.0781 2052 [ CFC4CC73C903152A23E1DB28EABA1F03 ] FETND5BV C:\WINDOWS\system32\DRIVERS\fetnd5bv.sys
    08:06:12.0797 2052 FETND5BV - ok
    08:06:12.0844 2052 [ E9648254056BCE81A85380C0C3647DC4 ] FETNDIS C:\WINDOWS\system32\DRIVERS\fetnd5.sys
    08:06:12.0859 2052 FETNDIS - ok
    08:06:12.0906 2052 [ D45926117EB9FA946A6AF572FBE1CAA3 ] Fips C:\WINDOWS\system32\drivers\Fips.sys
    08:06:12.0906 2052 Fips - ok
    08:06:12.0953 2052 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk C:\WINDOWS\system32\DRIVERS\flpydisk.sys
    08:06:12.0953 2052 Flpydisk - ok
    08:06:13.0016 2052 [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
    08:06:13.0031 2052 FltMgr - ok
    08:06:13.0203 2052 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
    08:06:13.0266 2052 FontCache3.0.0.0 - ok
    08:06:13.0312 2052 [ 6483414841D4CAB6C3B4DB2AC6EDD70B ] Fsks C:\WINDOWS\system32\DRIVERS\HSF_FSKS.sys
    08:06:13.0328 2052 Fsks - ok
    08:06:13.0359 2052 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
    08:06:13.0359 2052 Fs_Rec - ok
    08:06:13.0406 2052 [ 6AC26732762483366C3969C9E4D2259D ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
    08:06:13.0422 2052 Ftdisk - ok
    08:06:13.0469 2052 [ 065639773D8B03F33577F6CDAEA21063 ] gameenum C:\WINDOWS\system32\DRIVERS\gameenum.sys
    08:06:13.0469 2052 gameenum - ok
    08:06:13.0516 2052 [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
    08:06:13.0531 2052 Gpc - ok
    08:06:13.0672 2052 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
    08:06:13.0688 2052 gupdate - ok
    08:06:13.0719 2052 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
    08:06:13.0734 2052 gupdatem - ok
    08:06:13.0828 2052 [ 751C1D2CA2ABF4A9F5A6B8D7D45B907C ] gusvc C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    08:06:13.0859 2052 gusvc - ok
    08:06:13.0953 2052 [ 4FCCA060DFE0C51A09DD5C3843888BCD ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
    08:06:13.0953 2052 helpsvc - ok
    08:06:14.0141 2052 HidServ - ok
    08:06:14.0235 2052 [ CCF82C5EC8A7326C3066DE870C06DAF1 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys
    08:06:14.0235 2052 HidUsb - ok
    08:06:14.0375 2052 [ 8878BD685E490239777BFE51320B88E9 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
    08:06:14.0391 2052 hkmsvc - ok
    08:06:14.0422 2052 hpn - ok
    08:06:14.0516 2052 [ 970178E8E003EB1481293830069624B9 ] HSFHWBS2 C:\WINDOWS\system32\DRIVERS\HSFBS2S2.sys
    08:06:14.0531 2052 HSFHWBS2 - ok
    08:06:14.0625 2052 [ EBB354438A4C5A3327FB97306260714A ] HSF_DP C:\WINDOWS\system32\DRIVERS\HSFDPSP2.sys
    08:06:14.0672 2052 HSF_DP - ok
    08:06:14.0766 2052 [ 74E379857D4C0DFB56DE2D19B8F4C434 ] hsf_msft C:\WINDOWS\system32\DRIVERS\HSF_MSFT.sys
    08:06:14.0797 2052 hsf_msft - ok
    08:06:14.0907 2052 [ F80A415EF82CD06FFAF0D971528EAD38 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
    08:06:14.0922 2052 HTTP - ok
    08:06:15.0110 2052 [ 6100A808600F44D999CEBDEF8841C7A3 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
    08:06:15.0125 2052 HTTPFilter - ok
    08:06:15.0157 2052 i2omgmt - ok
    08:06:15.0188 2052 i2omp - ok
    08:06:15.0250 2052 [ 4A0B06AA8943C1E332520F7440C0AA30 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
    08:06:15.0250 2052 i8042prt - ok
    08:06:15.0407 2052 [ 6F95324909B502E2651442C1548AB12F ] IDriverT C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    08:06:15.0422 2052 IDriverT - ok
    08:06:15.0641 2052 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
    08:06:15.0704 2052 idsvc - ok
    08:06:15.0750 2052 [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
    08:06:15.0766 2052 Imapi - ok
    08:06:15.0875 2052 [ 30DEAF54A9755BB8546168CFE8A6B5E1 ] ImapiService C:\WINDOWS\System32\imapi.exe
    08:06:15.0891 2052 ImapiService - ok
    08:06:15.0938 2052 ini910u - ok
    08:06:15.0969 2052 IntelIde - ok
    08:06:16.0063 2052 [ 8C953733D8F36EB2133F5BB58808B66B ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
    08:06:16.0063 2052 intelppm - ok
    08:06:16.0125 2052 [ 3BB22519A194418D5FEC05D800A19AD0 ] ip6fw C:\WINDOWS\system32\drivers\ip6fw.sys
    08:06:16.0125 2052 ip6fw - ok
    08:06:16.0188 2052 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
    08:06:16.0188 2052 IpFilterDriver - ok
    08:06:16.0297 2052 [ B87AB476DCF76E72010632B5550955F5 ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
    08:06:16.0297 2052 IpInIp - ok
    08:06:16.0360 2052 [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
    08:06:16.0360 2052 IpNat - ok
    08:06:16.0407 2052 [ 23C74D75E36E7158768DD63D92789A91 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
    08:06:16.0422 2052 IPSec - ok
    08:06:16.0469 2052 [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
    08:06:16.0469 2052 IRENUM - ok
    08:06:16.0563 2052 [ 05A299EC56E52649B1CF2FC52D20F2D7 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
    08:06:16.0563 2052 isapnp - ok
    08:06:16.0641 2052 [ 9C5E3FDBFCC30CF71A49CA178B9AD442 ] K56 C:\WINDOWS\system32\DRIVERS\HSF_K56K.sys
    08:06:16.0672 2052 K56 - ok
    08:06:16.0704 2052 [ 463C1EC80CD17420A542B7F36A36F128 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
    08:06:16.0704 2052 Kbdclass - ok
    08:06:16.0797 2052 [ 692BCF44383D056AED41B045A323D378 ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
    08:06:16.0813 2052 kmixer - ok
    08:06:16.0860 2052 [ B467646C54CC746128904E1654C750C1 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
    08:06:16.0860 2052 KSecDD - ok
    08:06:16.0922 2052 [ 3A7C3CBE5D96B8AE96CE81F0B22FB527 ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
    08:06:16.0922 2052 lanmanserver - ok
    08:06:17.0110 2052 [ A8888A5327621856C0CEC4E385F69309 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
    08:06:17.0126 2052 lanmanworkstation - ok
    08:06:17.0173 2052 lbrtfdc - ok
    08:06:17.0329 2052 [ A7DB739AE99A796D91580147E919CC59 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
    08:06:17.0329 2052 LmHosts - ok
    08:06:17.0376 2052 [ 65FEF13327D25BC33AF78178365C1412 ] Maestro C:\WINDOWS\system32\drivers\essm2e.sys
    08:06:17.0391 2052 Maestro - ok
    08:06:17.0454 2052 MASPINT - ok
    08:06:17.0532 2052 McComponentHostService - ok
    08:06:17.0626 2052 [ 11F714F85530A2BD134074DC30E99FCA ] MDM C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    08:06:17.0641 2052 MDM - ok
    08:06:17.0688 2052 [ 195741AEE20369980796B557358CD774 ] mdmxsdk C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys
    08:06:17.0688 2052 mdmxsdk - ok
    08:06:17.0782 2052 [ 986B1FF5814366D71E0AC5755C88F2D3 ] Messenger C:\WINDOWS\System32\msgsvc.dll
    08:06:17.0798 2052 Messenger - ok
    08:06:17.0844 2052 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
    08:06:17.0860 2052 mnmdd - ok
    08:06:17.0923 2052 [ D18F1F0C101D06A1C1ADF26EED16FCDD ] mnmsrvc C:\WINDOWS\System32\mnmsrvc.exe
    08:06:17.0938 2052 mnmsrvc - ok
    08:06:17.0970 2052 [ DFCBAD3CEC1C5F964962AE10E0BCC8E1 ] Modem C:\WINDOWS\system32\drivers\Modem.sys
    08:06:17.0985 2052 Modem - ok
    08:06:18.0063 2052 [ 1992E0D143B09653AB0F9C5E04B0FD65 ] MODEMCSA C:\WINDOWS\system32\drivers\MODEMCSA.sys
    08:06:18.0063 2052 MODEMCSA - ok
    08:06:18.0126 2052 [ 35C9E97194C8CFB8430125F8DBC34D04 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
    08:06:18.0126 2052 Mouclass - ok
    08:06:18.0204 2052 [ B1C303E17FB9D46E87A98E4BA6769685 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
    08:06:18.0204 2052 mouhid - ok
    08:06:18.0282 2052 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
    08:06:18.0282 2052 MountMgr - ok
    08:06:18.0329 2052 MozillaMaintenance - ok
    08:06:18.0376 2052 mraid35x - ok
    08:06:18.0407 2052 [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
    08:06:18.0407 2052 MRxDAV - ok
    08:06:18.0470 2052 [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
    08:06:18.0501 2052 MRxSmb - ok
    08:06:18.0595 2052 [ A137F1470499A205ABBB9AAFB3B6F2B1 ] MSDTC C:\WINDOWS\System32\msdtc.exe
    08:06:18.0595 2052 MSDTC - ok
    08:06:18.0642 2052 [ C941EA2454BA8350021D774DAF0F1027 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
    08:06:18.0642 2052 Msfs - ok
    08:06:18.0798 2052 MSIServer - ok
    08:06:18.0876 2052 [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
    08:06:18.0876 2052 MSKSSRV - ok
    08:06:18.0923 2052 [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
    08:06:18.0923 2052 MSPCLOCK - ok
    08:06:18.0954 2052 [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
    08:06:18.0954 2052 MSPQM - ok
    08:06:19.0001 2052 [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
    08:06:19.0001 2052 mssmbios - ok
    08:06:19.0032 2052 [ CA3E22598F411199ADC2DFEE76CD0AE0 ] ms_mpu401 C:\WINDOWS\system32\drivers\msmpu401.sys
    08:06:19.0032 2052 ms_mpu401 - ok
    08:06:19.0079 2052 [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
    08:06:19.0079 2052 Mup - ok
    08:06:19.0204 2052 [ 0EBE5687330AFAF6B00851F983950365 ] MWAgent C:\Program Files\Common Files\MicroWorld\Agent\MWASER.EXE
    08:06:19.0220 2052 MWAgent - ok
    08:06:19.0439 2052 [ 0102140028FAD045756796E1C685D695 ] napagent C:\WINDOWS\System32\qagentrt.dll
    08:06:19.0454 2052 napagent - ok
    08:06:19.0501 2052 [ 1DF7F42665C94B825322FAE71721130D ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
    08:06:19.0517 2052 NDIS - ok
    08:06:19.0548 2052 [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
    08:06:19.0548 2052 NdisTapi - ok
    08:06:19.0626 2052 [ F927A4434C5028758A842943EF1A3849 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
    08:06:19.0626 2052 Ndisuio - ok
    08:06:19.0657 2052 [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
    08:06:19.0657 2052 NdisWan - ok
    08:06:19.0689 2052 [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
    08:06:19.0704 2052 NDProxy - ok
    08:06:19.0829 2052 [ A081CB6FB9A12668F233EB5414BE3A0E ] Net Driver HPZ12 C:\WINDOWS\system32\HPZinw12.dll
    08:06:19.0845 2052 Net Driver HPZ12 - ok
    08:06:19.0876 2052 [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
    08:06:19.0892 2052 NetBIOS - ok
    08:06:19.0923 2052 [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
    08:06:19.0939 2052 NetBT - ok
    08:06:20.0064 2052 [ B857BA82860D7FF85AE29B095645563B ] NetDDE C:\WINDOWS\system32\netdde.exe
    08:06:20.0079 2052 NetDDE - ok
    08:06:20.0095 2052 [ B857BA82860D7FF85AE29B095645563B ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
    08:06:20.0110 2052 NetDDEdsdm - ok
    08:06:20.0236 2052 [ BF2466B3E18E970D8A976FB95FC1CA85 ] Netlogon C:\WINDOWS\System32\lsass.exe
    08:06:20.0236 2052 Netlogon - ok
    08:06:20.0361 2052 [ 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE ] Netman C:\WINDOWS\System32\netman.dll
    08:06:20.0376 2052 Netman - ok
    08:06:20.0517 2052 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
    08:06:20.0532 2052 NetTcpPortSharing - ok
    08:06:20.0595 2052 [ 943337D786A56729263071623BBB9DE5 ] Nla C:\WINDOWS\System32\mswsock.dll
    08:06:20.0595 2052 Nla - ok
    08:06:20.0689 2052 nosGetPlusHelper - ok
    08:06:20.0736 2052 [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
    08:06:20.0736 2052 Npfs - ok
    08:06:20.0814 2052 [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
    08:06:20.0829 2052 Ntfs - ok
    08:06:20.0939 2052 [ BF2466B3E18E970D8A976FB95FC1CA85 ] NtLmSsp C:\WINDOWS\System32\lsass.exe
    08:06:20.0939 2052 NtLmSsp - ok
    08:06:21.0126 2052 [ 156F64A3345BD23C600655FB4D10BC08 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
    08:06:21.0158 2052 NtmsSvc - ok
    08:06:21.0204 2052 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
    08:06:21.0204 2052 Null - ok
    08:06:21.0283 2052 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
    08:06:21.0283 2052 NwlnkFlt - ok
    08:06:21.0314 2052 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
    08:06:21.0329 2052 NwlnkFwd - ok
    08:06:21.0454 2052 [ 7A56CF3E3F12E8AF599963B16F50FB6A ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
    08:06:21.0454 2052 ose - ok
    08:06:21.0517 2052 [ 5575FAF8F97CE5E713D108C2A58D7C7C ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys
    08:06:21.0533 2052 Parport - ok
    08:06:21.0579 2052 [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
    08:06:21.0579 2052 PartMgr - ok
    08:06:21.0626 2052 [ 70E98B3FD8E963A6A46A2E6247E0BEA1 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
    08:06:21.0626 2052 ParVdm - ok
    08:06:21.0658 2052 [ A219903CCF74233761D92BEF471A07B1 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
    08:06:21.0658 2052 PCI - ok
    08:06:21.0705 2052 PCIDump - ok
    08:06:21.0736 2052 PCIIde - ok
    08:06:21.0798 2052 [ 9E89EF60E9EE05E3F2EEF2DA7397F1C1 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
    08:06:21.0798 2052 Pcmcia - ok
    08:06:21.0845 2052 PDCOMP - ok
    08:06:21.0876 2052 PDFRAME - ok
    08:06:21.0908 2052 PDRELI - ok
    08:06:21.0939 2052 PDRFRAME - ok
    08:06:21.0970 2052 perc2 - ok
    08:06:22.0017 2052 perc2hib - ok
    08:06:22.0158 2052 [ 65DF52F5B8B6E9BBD183505225C37315 ] PlugPlay C:\WINDOWS\system32\services.exe
    08:06:22.0173 2052 PlugPlay - ok
    08:06:22.0298 2052 [ 65BC271F337637731D3C71455AE1F476 ] Pml Driver HPZ12 C:\WINDOWS\system32\HPZipm12.dll
    08:06:22.0314 2052 Pml Driver HPZ12 - ok
    08:06:22.0423 2052 [ BF2466B3E18E970D8A976FB95FC1CA85 ] PolicyAgent C:\WINDOWS\System32\lsass.exe
    08:06:22.0439 2052 PolicyAgent - ok
    08:06:22.0470 2052 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
    08:06:22.0486 2052 PptpMiniport - ok
    08:06:22.0502 2052 [ A32BEBAF723557681BFC6BD93E98BD26 ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys
    08:06:22.0517 2052 Processor - ok
    08:06:22.0627 2052 [ BF2466B3E18E970D8A976FB95FC1CA85 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
    08:06:22.0642 2052 ProtectedStorage - ok
    08:06:22.0673 2052 [ 09298EC810B07E5D582CB3A3F9255424 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
    08:06:22.0673 2052 PSched - ok
    08:06:22.0689 2052 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
    08:06:22.0705 2052 Ptilink - ok
    08:06:22.0736 2052 [ 0C8DA0A8B0D227319C285E0EAE65DEFD ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys
    08:06:22.0736 2052 PxHelp20 - ok
    08:06:22.0783 2052 ql1080 - ok
    08:06:22.0814 2052 Ql10wnt - ok
    08:06:22.0861 2052 ql12160 - ok
    08:06:22.0892 2052 ql1240 - ok
    08:06:22.0923 2052 ql1280 - ok
    08:06:22.0955 2052 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
    08:06:22.0970 2052 RasAcd - ok
    08:06:23.0111 2052 [ AD188BE7BDF94E8DF4CA0A55C00A5073 ] RasAuto C:\WINDOWS\System32\rasauto.dll
    08:06:23.0127 2052 RasAuto - ok
    08:06:23.0174 2052 [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
    08:06:23.0189 2052 Rasl2tp - ok
    08:06:23.0361 2052 [ 76A9A3CBEADD68CC57CDA5E1D7448235 ] RasMan C:\WINDOWS\System32\rasmans.dll
    08:06:23.0377 2052 RasMan - ok
    08:06:23.0408 2052 [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
    08:06:23.0424 2052 RasPppoe - ok
    08:06:23.0455 2052 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
    08:06:23.0455 2052 Raspti - ok
    08:06:23.0502 2052 [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
    08:06:23.0517 2052 Rdbss - ok
    08:06:23.0564 2052 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
    08:06:23.0564 2052 RDPCDD - ok
    08:06:23.0658 2052 [ 6589DB6E5969F8EEE594CF71171C5028 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
    08:06:23.0674 2052 RDPWD - ok
    08:06:23.0814 2052 [ 3C37BF86641BDA977C3BF8A840F3B7FA ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
    08:06:23.0830 2052 RDSessMgr - ok
    08:06:23.0877 2052 [ F828DD7E1419B6653894A8F97A0094C5 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
    08:06:23.0877 2052 redbook - ok
    08:06:24.0033 2052 [ 7E699FF5F59B5D9DE5390E3C34C67CF5 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
    08:06:24.0033 2052 RemoteAccess - ok
    08:06:24.0080 2052 [ BB7549BD94D1AAC3599C7606C50C48A0 ] Rksample C:\WINDOWS\system32\DRIVERS\HSF_SAMP.sys
    08:06:24.0096 2052 Rksample - ok
    08:06:24.0158 2052 [ AAED593F84AFA419BBAE8572AF87CF6A ] RpcLocator C:\WINDOWS\System32\locator.exe
    08:06:24.0158 2052 RpcLocator - ok
    08:06:24.0252 2052 [ 6B27A5C03DFB94B4245739065431322C ] RpcSs C:\WINDOWS\system32\rpcss.dll
    08:06:24.0252 2052 RpcSs - ok
    08:06:24.0377 2052 [ 471B3F9741D762ABE75E9DEEA4787E47 ] RSVP C:\WINDOWS\System32\rsvp.exe
    08:06:24.0392 2052 RSVP - ok
    08:06:24.0486 2052 [ BF2466B3E18E970D8A976FB95FC1CA85 ] SamSs C:\WINDOWS\system32\lsass.exe
    08:06:24.0502 2052 SamSs - ok
    08:06:24.0627 2052 [ 86D007E7A654B9A71D1D7D856B104353 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
    08:06:24.0643 2052 SCardSvr - ok
    08:06:24.0752 2052 [ 0A9A7365A1CA4319AA7C1D6CD8E4EAFA ] Schedule C:\WINDOWS\system32\schedsvc.dll
    08:06:24.0768 2052 Schedule - ok
    08:06:24.0924 2052 [ 4A5809A1D796E2675AC0332BF7B0CB11 ] SeaPort C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
    08:06:24.0939 2052 SeaPort - ok
    08:06:24.0986 2052 [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
    08:06:25.0002 2052 Secdrv - ok
    08:06:25.0143 2052 [ CBE612E2BB6A10E3563336191EDA1250 ] seclogon C:\WINDOWS\System32\seclogon.dll
    08:06:25.0143 2052 seclogon - ok
    08:06:25.0268 2052 [ 7FDD5D0684ECA8C1F68B4D99D124DCD0 ] SENS C:\WINDOWS\system32\sens.dll
    08:06:25.0268 2052 SENS - ok
    08:06:25.0330 2052 [ E42F03D1081C4F60D3DB6C38235B1456 ] Ser2pl C:\WINDOWS\system32\DRIVERS\ser2pl.sys
    08:06:25.0330 2052 Ser2pl - ok
    08:06:25.0393 2052 [ 0F29512CCD6BEAD730039FB4BD2C85CE ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys
    08:06:25.0393 2052 serenum - ok
    08:06:25.0424 2052 [ CCA207A8896D4C6A0C9CE29A4AE411A7 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys
    08:06:25.0424 2052 Serial - ok
    08:06:25.0502 2052 [ 1F16931C722C69E4A7866244796C66A0 ] sermouse C:\WINDOWS\system32\DRIVERS\sermouse.sys
    08:06:25.0502 2052 sermouse - ok
    08:06:25.0565 2052 [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
    08:06:25.0565 2052 Sfloppy - ok
    08:06:25.0674 2052 [ 83F41D0D89645D7235C051AB1D9523AC ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
    08:06:25.0690 2052 SharedAccess - ok
    08:06:25.0736 2052 [ 99BC0B50F511924348BE19C7C7313BBF ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
    08:06:25.0736 2052 ShellHWDetection - ok
    08:06:25.0783 2052 Simbad - ok
    08:06:25.0846 2052 [ D9E8E0CE154A2F6430D9EFABDF730867 ] SoftFax C:\WINDOWS\system32\DRIVERS\HSF_FAXX.sys
    08:06:25.0861 2052 SoftFax - ok
    08:06:25.0908 2052 Sparrow - ok
    08:06:25.0971 2052 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter C:\WINDOWS\system32\drivers\splitter.sys
    08:06:25.0971 2052 splitter - ok
    08:06:26.0033 2052 [ 60784F891563FB1B767F70117FC2428F ] Spooler C:\WINDOWS\system32\spoolsv.exe
    08:06:26.0033 2052 Spooler - ok
    08:06:26.0080 2052 [ 76BB022C2FB6902FD5BDD4F78FC13A5D ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
    08:06:26.0096 2052 sr - ok
    08:06:26.0205 2052 [ 3805DF0AC4296A34BA4BF93B346CC378 ] srservice C:\WINDOWS\System32\srsvc.dll
    08:06:26.0221 2052 srservice - ok
    08:06:26.0268 2052 [ 47DDFC2F003F7F9F0592C6874962A2E7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
    08:06:26.0283 2052 Srv - ok
    08:06:26.0424 2052 [ 0A5679B3714EDAB99E357057EE88FCA6 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
    08:06:26.0424 2052 SSDPSRV - ok
    08:06:26.0487 2052 [ A9573045BAA16EAB9B1085205B82F1ED ] StillCam C:\WINDOWS\system32\DRIVERS\serscan.sys
    08:06:26.0487 2052 StillCam - ok
    08:06:26.0580 2052 [ 8BAD69CBAC032D4BBACFCE0306174C30 ] stisvc C:\WINDOWS\system32\wiaservc.dll
    08:06:26.0596 2052 stisvc - ok
    08:06:26.0658 2052 Stltrk2k - ok
    08:06:26.0690 2052 [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
    08:06:26.0690 2052 swenum - ok
    08:06:26.0737 2052 [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
    08:06:26.0737 2052 swmidi - ok
    08:06:26.0893 2052 SwPrv - ok
    08:06:26.0955 2052 symc810 - ok
    08:06:26.0987 2052 symc8xx - ok
    08:06:27.0018 2052 sym_hi - ok
    08:06:27.0065 2052 sym_u3 - ok
    08:06:27.0127 2052 [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
    08:06:27.0127 2052 sysaudio - ok
    08:06:27.0252 2052 [ C7ABBC59B43274B1109DF6B24D617051 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
    08:06:27.0268 2052 SysmonLog - ok
    08:06:27.0362 2052 [ 3CB78C17BB664637787C9A1C98F79C38 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
    08:06:27.0377 2052 TapiSrv - ok
    08:06:27.0440 2052 [ 9AEFA14BD6B182D61E3119FA5F436D3D ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
    08:06:27.0455 2052 Tcpip - ok
    08:06:27.0518 2052 [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
    08:06:27.0518 2052 TDPIPE - ok
    08:06:27.0565 2052 [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
    08:06:27.0565 2052 TDTCP - ok
    08:06:27.0612 2052 [ 88155247177638048422893737429D9E ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
    08:06:27.0627 2052 TermDD - ok
    08:06:27.0815 2052 [ FF3477C03BE7201C294C35F684B3479F ] TermService C:\WINDOWS\System32\termsrv.dll
    08:06:27.0831 2052 TermService - ok
    08:06:27.0909 2052 [ 99BC0B50F511924348BE19C7C7313BBF ] Themes C:\WINDOWS\System32\shsvcs.dll
    08:06:27.0909 2052 Themes - ok
    08:06:27.0940 2052 [ 8021A499DB46B2961C285168671CB9AF ] Tones C:\WINDOWS\system32\DRIVERS\HSF_TONE.sys
    08:06:27.0956 2052 Tones - ok
    08:06:27.0971 2052 TosIde - ok
    08:06:28.0081 2052 [ 55BCA12F7F523D35CA3CB833C725F54E ] TrkWks C:\WINDOWS\system32\trkwks.dll
    08:06:28.0081 2052 TrkWks - ok
    08:06:28.0159 2052 [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
    08:06:28.0159 2052 Udfs - ok
    08:06:28.0206 2052 ultra - ok
    08:06:28.0268 2052 [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
    08:06:28.0284 2052 Update - ok
    08:06:28.0409 2052 [ 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 ] upnphost C:\WINDOWS\System32\upnphost.dll
    08:06:28.0424 2052 upnphost - ok
    08:06:28.0565 2052 [ 05365FB38FCA1E98F7A566AAAF5D1815 ] UPS C:\WINDOWS\System32\ups.exe
    08:06:28.0581 2052 UPS - ok
    08:06:28.0628 2052 [ 173F317CE0DB8E21322E71B7E60A27E8 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
    08:06:28.0643 2052 usbccgp - ok
    08:06:28.0690 2052 [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
    08:06:28.0706 2052 usbehci - ok
    08:06:28.0737 2052 [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
    08:06:28.0737 2052 usbhub - ok
    08:06:28.0815 2052 [ A717C8721046828520C9EDF31288FC00 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys
    08:06:28.0831 2052 usbprint - ok
    08:06:28.0893 2052 [ A0B8CF9DEB1184FBDD20784A58FA75D4 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
    08:06:28.0893 2052 usbscan - ok
    08:06:28.0987 2052 [ A32426D9B14A089EAA1D922E0C5801A9 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
    08:06:29.0003 2052 USBSTOR - ok
    08:06:29.0034 2052 [ 26496F9DEE2D787FC3E61AD54821FFE6 ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
    08:06:29.0049 2052 usbuhci - ok
    08:06:29.0112 2052 [ 269C0ADE94B90029B12497747BE408CB ] V124 C:\WINDOWS\system32\DRIVERS\HSF_V124.sys
    08:06:29.0143 2052 V124 - ok
    08:06:29.0175 2052 [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
    08:06:29.0190 2052 VgaSave - ok
    08:06:29.0237 2052 [ 754292CE5848B3738281B4F3607EAEF4 ] viaagp C:\WINDOWS\system32\DRIVERS\viaagp.sys
    08:06:29.0253 2052 viaagp - ok
    08:06:29.0284 2052 [ 0E3E3FAE3A0A58B8D936A8E841A17D16 ] viaagp1 C:\WINDOWS\system32\DRIVERS\viaagp1.sys
    08:06:29.0284 2052 viaagp1 - ok
    08:06:29.0346 2052 [ 3B3EFCDA263B8AC14FDF9CBDD0791B2E ] ViaIde C:\WINDOWS\system32\DRIVERS\viaide.sys
    08:06:29.0346 2052 ViaIde - ok
    08:06:29.0393 2052 [ A6B4B9EBC02991EE9623C06CC1CA8DAE ] VIAudio C:\WINDOWS\system32\drivers\viaudio.sys
    08:06:29.0409 2052 VIAudio - ok
    08:06:29.0440 2052 [ 4C8FCB5CC53AAB716D810740FE59D025 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
    08:06:29.0440 2052 VolSnap - ok
    08:06:29.0596 2052 [ 7A9DB3A67C333BF0BD42E42B8596854B ] VSS C:\WINDOWS\System32\vssvc.exe
    08:06:29.0612 2052 VSS - ok
    08:06:29.0784 2052 [ 54AF4B1D5459500EF0937F6D33B1914F ] W32Time C:\WINDOWS\System32\w32time.dll
    08:06:29.0800 2052 W32Time - ok
    08:06:29.0831 2052 [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
    08:06:29.0846 2052 Wanarp - ok
    08:06:29.0893 2052 [ D6EFAF429FD30C5DF613D220E344CCE7 ] WDC_SAM C:\WINDOWS\system32\DRIVERS\wdcsam.sys
    08:06:29.0909 2052 WDC_SAM - ok
    08:06:29.0956 2052 WDICA - ok
    08:06:30.0034 2052 [ 6768ACF64B18196494413695F0C3A00F ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
    08:06:30.0050 2052 wdmaud - ok
    08:06:30.0143 2052 [ 77A354E28153AD2D5E120A5A8687BC06 ] WebClient C:\WINDOWS\System32\webclnt.dll
    08:06:30.0159 2052 WebClient - ok
    08:06:30.0284 2052 [ 1225EBEA76AAC3C84DF6C54FE5E5D8BE ] winachsf C:\WINDOWS\system32\DRIVERS\HSFCXTS2.sys
    08:06:30.0300 2052 winachsf - ok
    08:06:30.0393 2052 [ 2D0E4ED081963804CCC196A0929275B5 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
    08:06:30.0409 2052 winmgmt - ok
    08:06:30.0534 2052 wlidsvc - ok
    08:06:30.0675 2052 [ C51B4A5C05A5475708E3C81C7765B71D ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll
    08:06:30.0675 2052 WmdmPmSN - ok
    08:06:30.0769 2052 [ E0673F1106E62A68D2257E376079F821 ] WmiApSrv C:\WINDOWS\System32\wbem\wmiapsrv.exe
    08:06:30.0784 2052 WmiApSrv - ok
    08:06:30.0925 2052 [ F74E3D9A7FA9556C3BBB14D4E5E63D3B ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe
    08:06:30.0956 2052 WMPNetworkSvc - ok
    08:06:31.0019 2052 [ CF4DEF1BF66F06964DC0D91844239104 ] WpdUsb C:\WINDOWS\system32\Drivers\wpdusb.sys
    08:06:31.0034 2052 WpdUsb - ok
    08:06:31.0112 2052 [ 6ABE6E225ADB5A751622A9CC3BC19CE8 ] WS2IFSL C:\WINDOWS\System32\drivers\ws2ifsl.sys
    08:06:31.0112 2052 WS2IFSL - ok
    08:06:31.0269 2052 [ 7C278E6408D1DCE642230C0585A854D5 ] wscsvc C:\WINDOWS\system32\wscsvc.dll
    08:06:31.0284 2052 wscsvc - ok
    08:06:31.0394 2052 [ 35321FB577CDC98CE3EB3A3EB9E4610A ] wuauserv C:\WINDOWS\system32\wuauserv.dll
    08:06:31.0394 2052 wuauserv - ok
    08:06:31.0425 2052 [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
    08:06:31.0441 2052 WudfPf - ok
    08:06:31.0503 2052 [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
    08:06:31.0519 2052 WudfRd - ok
    08:06:31.0706 2052 [ 05231C04253C5BC30B26CBAAE680ED89 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
    08:06:31.0722 2052 WudfSvc - ok
    08:06:31.0816 2052 [ 81DC3F549F44B1C1FFF022DEC9ECF30B ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
    08:06:31.0847 2052 WZCSVC - ok
    08:06:31.0987 2052 [ 295D21F14C335B53CB8154E5B1F892B9 ] xmlprov C:\WINDOWS\System32\xmlprov.dll
    08:06:32.0003 2052 xmlprov - ok
    08:06:32.0066 2052 ================ Scan global ===============================
    08:06:32.0331 2052 [ 42F1F4C0AFB08410E5F02D4B13EBB623 ] C:\WINDOWS\system32\basesrv.dll
    08:06:32.0488 2052 [ 8C7DCA4B158BF16894120786A7A5F366 ] C:\WINDOWS\system32\winsrv.dll
    08:06:32.0644 2052 [ 8C7DCA4B158BF16894120786A7A5F366 ] C:\WINDOWS\system32\winsrv.dll
    08:06:32.0722 2052 [ 65DF52F5B8B6E9BBD183505225C37315 ] C:\WINDOWS\system32\services.exe
    08:06:32.0738 2052 [Global] - ok
    08:06:32.0738 2052 ================ Scan MBR ==================================
    08:06:32.0769 2052 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk0\DR0
    08:06:39.0786 2052 \Device\Harddisk0\DR0 - ok
    08:06:39.0801 2052 ================ Scan VBR ==================================
    08:06:39.0801 2052 [ 69962C5DE9EC38C51D87BE0A14E28A9F ] \Device\Harddisk0\DR0\Partition1
    08:06:39.0801 2052 \Device\Harddisk0\DR0\Partition1 - ok
    08:06:39.0817 2052 ============================================================
    08:06:39.0817 2052 Scan finished
    08:06:39.0817 2052 ============================================================
    08:06:39.0848 0660 Detected object count: 0
    08:06:39.0848 0660 Actual detected object count: 0
    08:09:05.0904 1828 Deinitialize success
     
  19. 2012/10/05
    Spanner

    Spanner Inactive Thread Starter

    Joined:
    2006/08/27
    Messages:
    451
    Likes Received:
    1
    Tried to download aswMBR kept getting 'unable to display webpage' tried a few times, then tried to download Avast, this would not download either.
    Any idea of problem yet ? or is it a malfunctioning OS, that snould be dumped.
    Should I uninstall all files/folders with the previous owner/administrator 'Pat Cox' in the titles? if so how do I do it please?.
    And thanks for your help so far , I am determined to get an answer, with your help, pity to waste this amount of time if not.
    Thanks, Spanner
     
    Last edited: 2012/10/05
  20. 2012/10/05
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    You posted TDSSKiller log three times.
    I still need RogueKiller log.
     
  21. 2012/10/06
    Spanner

    Spanner Inactive Thread Starter

    Joined:
    2006/08/27
    Messages:
    451
    Likes Received:
    1
    Broni, I posted 3 logs because the logs would not fit in one post and I was told to split logs I did. cannot download aswMBR tried to download Avast that would not download.
    Thanks for your help I am now closing this and dumping the HD, it is taking too much of my time and I am sure you have better things to do.
    Thanks again.
    Spanner
     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.