New
#1
Blue screen help immediately!!!
I've got a seriously annoying blue screen... sometimes it crash after 15 mins. , and sometimes it crash when i play games... please help...
I've got a seriously annoying blue screen... sometimes it crash after 15 mins. , and sometimes it crash when i play games... please help...
You have given us many dump reports, they are mostly consistent. They indicate this driver to be the cause xbext xbext.sys Fri Oct 01 23:06:32 2010.
Several clues lead to the belief that this may be a serious virus.
No mention of the driver in Google
The relatively new date of the driver
The number of BSODs caused by this same driver
No mention in Google usually means that the virus changes names, possibly a rootkit.
My suggestion is that you post in the security section,, give the facts and wait for a security analyst to help you. I will, also, notify one for you.
1. Go HERE http://bamajim.com/Tools/FileLister.zip and download File Lister.
Save it to your Desktop
Rt Click ->> Extract all ->> And extract it to your Desktop
Additional help on extracting zip files can be found HERE
Open the File Lister Folder.
Note: Leave the FileLister.vbe file in the folder and run it from there.
Rt Click FileLister.vbe ->>Select Open Then Open to confirm.
As the program runs, it will appear that nothing is happening.
When the program is fnished it will produce a log for you C:\Files.txt
Copy and paste the contents of that log in your reply.
+++++++++++++++++++++++++++
+ File Lister Version 1.1.4 +
+ +
+ By bamajim / SpywareHammer.com +
+++++++++++++++++++++++++++
Report ran on --->>> 11/23/2010 2:11:43 PM
====== Running Processes ======
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\TeamViewer\Version5\TeamViewer.exe
C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
C:\Program Files\DivX\DivX Update\DivXUpdate.exe
C:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\Adobe\Adobe Bridge CS5\Bridge.exe
C:\Program Files\Vuze\Azureus.exe
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
C:\PROGRA~1\Raptr\raptr.exe
C:\PROGRA~1\Raptr\raptr_im.exe
C:\Users\Christian\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Christian\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Christian\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Christian\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Christian\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Christian\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Christian\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Christian\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\System32\WScript.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Vuze_Remote\Vuze_RemoteToolbarHelper.exe
C:\Windows\system32\conhost.exe
C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\ytbb.exe
====== BHO's ======
BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
BHO: (NO NAME) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton AntiVirus\Engine\18.1.0.37\IPSBHO.DLL
BHO: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{ba14329e-9550-4989-b3f2-9732e92d17cc}\ - {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program Files\Vuze_Remote\tbVuz1.dll
BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
BHO: (NO NAME) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
BHO: (NO NAME) - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
====== System Keys (some whitelisted items will not be shown)======
Winlogon\Userinit = C:\Windows\system32\Userinit.exe
Winlogon\Shell = explorer.exe
====== HKLM\~\Run Keys ======
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
[VirtualCloneDrive] = "C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
[SunJavaUpdateSched] = "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
[RtHDVCpl] = C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
[QuickTime Task] = "C:\Program Files\QuickTime\QTTask.exe" -atboottime
[iTunesHelper] = "C:\Program Files\iTunes\iTunesHelper.exe"
[AdobeAAMUpdater-1.0] = "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
[SwitchBoard] = C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
[AdobeCS5ServiceManager] = "C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
[YSearchProtection] = "C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe"
[DivXUpdate] = "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
[LogMeIn Hamachi Ui] = "C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
[Malwarebytes Anti-Malware (reboot)] = "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
[Adobe Reader Speed Launcher] = "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
[Adobe ARM] = "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
====== HKCU\~\Run Keys ======
[Google Update] = "C:\Users\Christian\AppData\Local\Google\Update\GoogleUpdate.exe" /c
[IDMan] = C:\Program Files\Internet Download Manager\IDMan.exe /onboot
[Raptr] = C:\PROGRA~1\Raptr\raptrstub.exe --startup
[P2kAutostart] =
[Messenger (Yahoo!)] = "C:\PROGRA~1\Yahoo!\Messenger\YahooMessenger.exe" -quiet
[Search Protection] = C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
[AdobeBridge] = "C:\Program Files\Adobe\Adobe Bridge CS5\Bridge.exe" -stealth
[Azureus] = C:\Program Files\Vuze\Azureus.exe
====== DNS Info (List may be empty) ======
ICSDomain = mshome.net
SyncDomainWithMembership = 1
NV Hostname = PalominoXIII
DataBasePath = %SystemRoot%\System32\drivers\etc
ForwardBroadcasts = 0
IPEnableRouter = 0
Hostname = PalominoXIII
UseDomainNameDevolution = 1
EnableICMPRedirect = 1
DeadGWDetectDefault = 1
DontAddDefaultGatewayDefault = 0
EnableWsd = 1
QualifyingDestinationThreshold = 3
MaxUserPort = 65534
TcpTimedWaitDelay = 16
TCPFinWait2Delay = 16
MaxHashTableSize = 65536
EnableConnectionRateLimiting = 0
DhcpNameServer = 121.1.3.81 121.1.3.16 121.1.3.66
DhcpDomain = smartbro.net
====== Folders and Files from "%\" and "%\Windows" Created Last 60 Days ======
11/5/2010 7:05:20 PM 10/19/2010 10:08:00 PM 2128 32 C:\{4B6580DA-7BC5-4FDB-BC2D-F0F15E7F6112}
11/4/2010 12:40:44 PM 2264 32 C:\{C0B71833-5D75-4CAB-A2EE-2CF75240BE94}
11/4/2010 12:42:36 PM 2440 32 C:\{C0DE8A11-706F-408C-BFD8-D17E5299BD29}
11/21/2010 7:50:36 PM 200704 C:\Windows\B9DB4C7601A446D58910F7AA6376DBAF.TMP
10/6/2010 8:19:02 AM 7918696 C:\Windows\Minidump
10/6/2010 8:20:42 AM 0 C:\Windows\PIF
11/15/2010 3:33:00 PM 451072 C:\Windows\RegCure
10/26/2010 4:34:28 PM 13794 32 C:\Windows\DirectX.log
11/3/2010 7:05:41 PM 239001307 32 C:\Windows\MEMORY.DMP
11/19/2010 9:37:18 PM 317250 32 C:\Windows\ntbtlog.txt
10/4/2010 12:50:19 PM 61832 32 C:\Windows\PFRO.log
9/27/2010 7:52:18 PM 11612 32 C:\Windows\setupact.log
9/27/2010 7:52:18 PM 0 32 C:\Windows\setuperr.log
9/27/2010 6:20:19 PM 67 32 C:\Windows\swf2avi.INI
10/26/2010 4:34:28 PM 0 C:\Windows\System32\directx
10/8/2010 9:11:03 PM 0 C:\Windows\System32\install
10/15/2010 10:03:07 AM 370 C:\Windows\System32\MpEngineStore
10/15/2010 10:03:07 AM 98 C:\Windows\System32\MpEngineStore\History
10/15/2010 10:03:07 AM 98 C:\Windows\System32\MpEngineStore\History\Reboot
11/11/2010 1:48:35 PM 272 C:\Windows\System32\MpEngineStore\RebootActions
10/30/2010 4:21:09 PM 0 32 C:\Windows\System32\Access.dat
10/15/2010 8:53:10 AM 530432 32 C:\Windows\System32\comctl32.dll
10/29/2010 3:55:03 AM 641536 32 C:\Windows\System32\CPFilters.dll
10/26/2010 4:37:32 PM 2106216 32 C:\Windows\System32\D3DCompiler_43.dll
10/26/2010 4:37:31 PM 1868128 32 C:\Windows\System32\d3dcsx_43.dll
10/26/2010 4:37:31 PM 470880 32 C:\Windows\System32\d3dx10_43.dll
10/26/2010 4:37:31 PM 248672 32 C:\Windows\System32\d3dx11_43.dll
10/7/2010 2:53:10 PM 679936 32 C:\Windows\System32\D3DX81ab.dll
10/7/2010 2:53:10 PM 1970176 32 C:\Windows\System32\d3dx9.dll
10/26/2010 4:37:31 PM 1998168 32 C:\Windows\System32\D3DX9_43.dll
9/27/2010 11:50:26 PM 1700352 32 C:\Windows\System32\GdiPlus.dll
10/15/2010 8:53:28 AM 386048 32 C:\Windows\System32\html.iec
10/15/2010 8:53:28 AM 381440 32 C:\Windows\System32\iedkcs32.dll
10/15/2010 8:53:28 AM 10988544 32 C:\Windows\System32\ieframe.dll
10/15/2010 8:53:28 AM 185856 32 C:\Windows\System32\iepeers.dll
10/15/2010 8:53:29 AM 2058752 32 C:\Windows\System32\iertutil.dll
10/15/2010 8:53:28 AM 176640 32 C:\Windows\System32\ieui.dll
11/16/2010 12:37:50 PM 145184 32 C:\Windows\System32\java.exe
11/16/2010 12:37:50 PM 145184 32 C:\Windows\System32\javaw.exe
11/16/2010 12:37:50 PM 153376 32 C:\Windows\System32\javaws.exe
10/15/2010 8:53:28 AM 48128 32 C:\Windows\System32\jsproxy.dll
11/16/2010 12:37:21 PM 3805 32 C:\Windows\System32\jupdate-1.6.0_22-b04.log
9/27/2010 11:50:37 PM 10915840 32 C:\Windows\System32\libmfxhw32.dll
9/27/2010 11:50:38 PM 10833920 32 C:\Windows\System32\libmfxsw32.dll
10/15/2010 8:53:28 AM 44544 32 C:\Windows\System32\licmgr10.dll
10/15/2010 8:53:08 AM 954752 32 C:\Windows\System32\mfc40.dll
10/15/2010 8:53:08 AM 954288 32 C:\Windows\System32\mfc40u.dll
10/10/2010 3:18:14 PM 112856 34 C:\Windows\System32\mlfcache.dat
10/29/2010 3:55:03 AM 199680 32 C:\Windows\System32\mpg2splt.ax
10/15/2010 10:03:08 AM 183 32 C:\Windows\System32\MRT.INI
10/29/2010 3:55:03 AM 417792 32 C:\Windows\System32\msdri.dll
10/15/2010 8:53:28 AM 599040 32 C:\Windows\System32\msfeeds.dll
10/15/2010 8:53:28 AM 64512 32 C:\Windows\System32\msfeedsbs.dll
10/15/2010 8:53:28 AM 12800 32 C:\Windows\System32\msfeedssync.exe
10/15/2010 8:53:29 AM 5977600 32 C:\Windows\System32\mshtml.dll
10/15/2010 8:53:27 AM 1638912 32 C:\Windows\System32\mshtml.tlb
10/15/2010 8:53:28 AM 67072 32 C:\Windows\System32\mshtmled.dll
10/29/2010 3:55:03 AM 204288 32 C:\Windows\System32\MSNP.ax
10/15/2010 8:53:28 AM 606208 32 C:\Windows\System32\mstime.dll
9/27/2010 11:50:26 PM 24576 32 C:\Windows\System32\msxml3a.dll
11/21/2010 7:54:40 PM 1719912 32 C:\Windows\System32\nvapi.dll
11/21/2010 7:54:40 PM 13019752 32 C:\Windows\System32\nvcompiler.dll
10/16/2010 12:42:16 PM 3420776 32 C:\Windows\System32\nvcpl.dll
11/21/2010 7:54:40 PM 4837480 32 C:\Windows\System32\nvcuda.dll
11/21/2010 7:54:40 PM 2666600 32 C:\Windows\System32\nvcuvenc.dll
11/21/2010 7:54:40 PM 2912360 32 C:\Windows\System32\nvcuvid.dll
11/21/2010 7:54:40 PM 10023528 32 C:\Windows\System32\nvd3dum.dll
11/21/2010 7:54:40 PM 319080 32 C:\Windows\System32\nvdecodemft.dll
11/21/2010 7:54:40 PM 888424 32 C:\Windows\System32\nvdispco322050.dll
11/21/2010 7:54:40 PM 813672 32 C:\Windows\System32\nvgenco322030.dll
11/21/2010 7:54:40 PM 4962 32 C:\Windows\System32\nvinfo.pb
10/16/2010 12:42:20 PM 110696 32 C:\Windows\System32\nvmctray.dll
11/21/2010 7:54:40 PM 14899816 32 C:\Windows\System32\nvoglv32.dll
10/16/2010 12:42:20 PM 66664 32 C:\Windows\System32\nvshext.dll
10/16/2010 12:42:12 PM 2079336 32 C:\Windows\System32\nvsvc.dll
10/16/2010 12:42:20 PM 600680 32 C:\Windows\System32\nvvsvc.exe
11/21/2010 7:54:40 PM 5473896 32 C:\Windows\System32\nvwgf2um.dll
10/15/2010 8:53:32 AM 1413632 32 C:\Windows\System32\ole32.dll
11/21/2010 7:54:40 PM 57960 32 C:\Windows\System32\OpenCL.dll
10/15/2010 8:53:12 AM 224256 32 C:\Windows\System32\schannel.dll
10/15/2010 8:52:41 AM 168448 32 C:\Windows\System32\srvsvc.dll
10/15/2010 8:52:39 AM 363520 32 C:\Windows\System32\StructuredQuery.dll
10/15/2010 8:53:13 AM 109056 32 C:\Windows\System32\t2embed.dll
10/1/2010 9:53:48 AM 2048 32 C:\Windows\System32\tzres.dll
10/25/2010 6:49:37 PM 165376 32 C:\Windows\System32\unrar.dll
10/15/2010 8:53:28 AM 1226752 32 C:\Windows\System32\urlmon.dll
10/15/2010 8:52:42 AM 2327552 32 C:\Windows\System32\win32k.sys
10/15/2010 8:53:28 AM 978432 32 C:\Windows\System32\wininet.dll
10/15/2010 8:52:48 AM 11406848 32 C:\Windows\System32\wmp.dll
10/15/2010 8:52:48 AM 12625408 32 C:\Windows\System32\wmploc.DLL
10/15/2010 8:52:41 AM 738816 32 C:\Windows\System32\wmpmde.dll
10/26/2010 4:37:18 PM 22360 32 C:\Windows\System32\X3DAudio1_7.dll
10/26/2010 4:37:18 PM 238936 32 C:\Windows\System32\xactengine3_6.dll
10/26/2010 4:37:32 PM 239960 32 C:\Windows\System32\xactengine3_7.dll
10/26/2010 4:37:26 PM 74072 32 C:\Windows\System32\XAPOFX1_4.dll
10/26/2010 4:37:35 PM 74072 32 C:\Windows\System32\XAPOFX1_5.dll
10/26/2010 4:37:26 PM 528216 32 C:\Windows\System32\XAudio2_6.dll
10/26/2010 4:37:35 PM 527192 32 C:\Windows\System32\XAudio2_7.dll
====== "\Administrator & All Users\Startup" Last 60 Days======
====== "\Program Files" Last 60 Days======
11/22/2010 10:37:08 PM 1777930 C:\Program Files\Ask.com
9/27/2010 11:50:26 PM 64717334 C:\Program Files\AVS4YOU
10/8/2010 4:06:59 PM 5694598008 C:\Program Files\Black_Box
9/27/2010 5:17:39 PM 3015288 C:\Program Files\CCleaner
10/7/2010 2:53:09 PM 10257511 C:\Program Files\Cheat Engine
10/25/2010 6:14:27 PM 94735829 C:\Program Files\DivX
10/25/2010 6:36:33 PM 276397 C:\Program Files\GPL MPEG Decoder
10/9/2010 5:55:22 PM 252204 C:\Program Files\Intelore
9/27/2010 6:20:14 PM 18208468 C:\Program Files\iWisoft Flash SWF to Video Converter
10/8/2010 8:20:56 PM 80646236 C:\Program Files\JDownloader
10/25/2010 6:49:36 PM 19251095 C:\Program Files\K-Lite Codec Pack
10/29/2010 2:59:54 PM 3044040 C:\Program Files\LogMeIn Hamachi
9/27/2010 8:31:38 PM 402918 C:\Program Files\LyricsSeeker
9/27/2010 3:48:23 PM 3962914 C:\Program Files\Malwarebytes' Anti-Malware
10/12/2010 5:41:39 PM 1590623 C:\Program Files\MP3Gain
10/26/2010 10:59:17 AM 6690088 C:\Program Files\NCH Swift Sound
10/11/2010 10:12:58 AM 110909230 C:\Program Files\Norton AntiVirus
10/25/2010 9:15:17 PM 12944369 C:\Program Files\Norton Security Scan
10/11/2010 10:06:30 AM 36999965 C:\Program Files\NortonInstaller
10/14/2010 6:09:04 PM 936218571 C:\Program Files\Red Alert 2 Yuri's Revenge
11/15/2010 3:26:22 PM 14262306 C:\Program Files\RegCure
10/10/2010 3:16:51 PM 29202016 C:\Program Files\Safari
10/11/2010 10:15:20 AM 60808 C:\Program Files\Symantec
10/17/2010 3:49:39 PM 25606842 C:\Program Files\TeamViewer
11/2/2010 3:37:18 PM 151552 C:\Program Files\USB Vibration Joystick
======"Drivers" Modified Last 60 Days======
11/21/2010 7:54:40 PM 10920 32 C:\Windows\System32\drivers\nvBridge.kmd
11/21/2010 7:54:40 PM 10084360 32 C:\Windows\System32\drivers\nvlddmkm.sys
10/11/2010 10:15:21 AM 7456 32 C:\Windows\System32\drivers\SYMEVENT.CAT
10/11/2010 10:15:21 AM 805 32 C:\Windows\System32\drivers\SYMEVENT.INF
10/11/2010 10:15:21 AM 126512 32 C:\Windows\System32\drivers\SYMEVENT.SYS
====== Files Deleted under "%Temp%" ======
10 Files deleted
======"All Users\Application Data" Last 60 Days======
====== HKLM\~\ShellServiceObjectDelayLoad======
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} -
====== HKLM\~\SharedTaskScheduler======
======HKLM\~\msconfig\startupreg======
HKLM\Software\microsoft\shared tools\msconfig\startupreg\
====== Services ( Services that are Whitelisted are not shown) ======
1394ohci (1394 OHCI Compliant Host Controller)- C:\Windows\system32\DRIVERS\1394ohci.sys - Manual/Stopped
AcpiPmi (ACPI Power Meter Driver)- C:\Windows\system32\DRIVERS\acpipmi.sys - Manual/Stopped
adp94xx (adp94xx)- C:\Windows\system32\DRIVERS\adp94xx.sys - Manual/Stopped
adpahci (adpahci)- C:\Windows\system32\DRIVERS\adpahci.sys - Manual/Stopped
amdide (amdide)- C:\Windows\system32\DRIVERS\amdide.sys - Manual/Stopped
amdsata (amdsata)- C:\Windows\system32\DRIVERS\amdsata.sys - Manual/Stopped
amdsbs (amdsbs)- C:\Windows\system32\DRIVERS\amdsbs.sys - Manual/Stopped
amdxata (amdxata)- C:\Windows\system32\DRIVERS\amdxata.sys - Boot/Running
AppID (AppID Driver)- C:\Windows\system32\drivers\appid.sys - Manual/Stopped
arcsas (arcsas)- C:\Windows\system32\DRIVERS\arcsas.sys - Manual/Stopped
b06bdrv (Broadcom NetXtreme II VBD)- C:\Windows\system32\DRIVERS\bxvbdx.sys - Manual/Stopped
b57nd60x (Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0)- C:\Windows\system32\DRIVERS\b57nd60x.sys - Manual/Stopped
BHDrvx86 (BHDrvx86)- \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_18.1.0.37\Definitions\BASHDefs\20101104.001\BHDrvx86.sys - System/Running
blbdrive (blbdrive)- C:\Windows\system32\DRIVERS\blbdrive.sys - System/Running
bowser (Browser Support Driver)- C:\Windows\system32\DRIVERS\bowser.sys - Manual/Running
BrFiltLo (Brother USB Mass-Storage Lower Filter Driver)- C:\Windows\system32\DRIVERS\BrFiltLo.sys - Manual/Stopped
BrFiltUp (Brother USB Mass-Storage Upper Filter Driver)- C:\Windows\system32\DRIVERS\BrFiltUp.sys - Manual/Stopped
Brserid (Brother MFC Serial Port Interface Driver (WDM))- C:\Windows\system32\Drivers\Brserid.sys - Manual/Stopped
BrSerWdm (Brother WDM Serial driver)- C:\Windows\system32\Drivers\BrSerWdm.sys - Manual/Stopped
BrUsbMdm (Brother MFC USB Fax Only Modem)- C:\Windows\system32\Drivers\BrUsbMdm.sys - Manual/Stopped
BrUsbSer (Brother MFC USB Serial WDM Driver)- C:\Windows\system32\Drivers\BrUsbSer.sys - Manual/Stopped
circlass (Consumer IR Devices)- C:\Windows\system32\DRIVERS\circlass.sys - Manual/Stopped
CLFS (Common Log (CLFS))- C:\Windows\system32\CLFS.sys - Boot/Running
CNG (CNG)- C:\Windows\system32\Drivers\cng.sys - Boot/Running
CompositeBus (Composite Bus Enumerator Driver)- C:\Windows\system32\DRIVERS\CompositeBus.sys - Manual/Stopped
DfsC (DFS Namespace Client Driver)- C:\Windows\system32\Drivers\dfsc.sys - System/Running
discache (System Attribute Cache)- C:\Windows\system32\drivers\discache.sys - System/Running
DXGKrnl (LDDM Graphics Subsystem)- C:\Windows\system32\drivers\dxgkrnl.sys - Manual/Stopped
ebdrv (Broadcom NetXtreme II 10 GigE VBD)- C:\Windows\system32\DRIVERS\evbdx.sys - Manual/Stopped
eeCtrl (Symantec Eraser Control driver)- \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys - System/Running
ElbyCDIO (ElbyCDIO Driver)- C:\Windows\system32\Drivers\ElbyCDIO.sys - System/Running
elxstor (elxstor)- C:\Windows\system32\DRIVERS\elxstor.sys - Manual/Stopped
EraserUtilRebootDrv (EraserUtilRebootDrv)- \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys - Manual/Stopped
ErrDev (Microsoft Hardware Error Device Driver)- C:\Windows\system32\DRIVERS\errdev.sys - Manual/Stopped
FileInfo (File Information FS MiniFilter)- C:\Windows\system32\drivers\fileinfo.sys - Boot/Running
Filetrace (Filetrace)- C:\Windows\system32\drivers\filetrace.sys - Manual/Stopped
FsDepends (File System Dependency Minifilter)- C:\Windows\system32\drivers\FsDepends.sys - Manual/Stopped
fvevol (Bitlocker Drive Encryption Filter Driver)- C:\Windows\system32\DRIVERS\fvevol.sys - Boot/Running
gagp30kx (Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms)- C:\Windows\system32\DRIVERS\gagp30kx.sys - Manual/Stopped
hcw85cir (Hauppauge Consumer Infrared Receiver)- C:\Windows\system32\drivers\hcw85cir.sys - Manual/Stopped
HidBth (Microsoft Bluetooth HID Miniport)- C:\Windows\system32\DRIVERS\hidbth.sys - Manual/Stopped
HidIr (Microsoft Infrared HID Driver)- C:\Windows\system32\DRIVERS\hidir.sys - Manual/Stopped
HpSAMD (HpSAMD)- C:\Windows\system32\DRIVERS\HpSAMD.sys - Manual/Stopped
hwpolicy (Hardware Policy Driver)- C:\Windows\system32\drivers\hwpolicy.sys - Boot/Running
iaStorV (iaStorV)- C:\Windows\system32\DRIVERS\iaStorV.sys - Manual/Stopped
IDSVix86 (IDSVix86)- \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_18.1.0.37\Definitions\IPSDefs\20101112.001_efc\IDSvix86.sys - System/Running
IPMIDRV (IPMIDRV)- C:\Windows\system32\DRIVERS\IPMIDrv.sys - Manual/Stopped
iScsiPrt (iScsiPort Driver)- C:\Windows\system32\DRIVERS\msiscsi.sys - Manual/Stopped
KSecPkg (KSecPkg)- C:\Windows\system32\Drivers\ksecpkg.sys - Boot/Running
lltdio (Link-Layer Topology Discovery Mapper I/O Driver)- C:\Windows\system32\DRIVERS\lltdio.sys - Auto/Running
LSI_FC (LSI_FC)- C:\Windows\system32\DRIVERS\lsi_fc.sys - Manual/Stopped
LSI_SAS (LSI_SAS)- C:\Windows\system32\DRIVERS\lsi_sas.sys - Manual/Stopped
LSI_SAS2 (LSI_SAS2)- C:\Windows\system32\DRIVERS\lsi_sas2.sys - Manual/Stopped
LSI_SCSI (LSI_SCSI)- C:\Windows\system32\DRIVERS\lsi_scsi.sys - Manual/Stopped
luafv (UAC File Virtualization)- C:\Windows\system32\drivers\luafv.sys - Auto/Running
megasas (megasas)- C:\Windows\system32\DRIVERS\megasas.sys - Manual/Stopped
MegaSR (MegaSR)- C:\Windows\system32\DRIVERS\MegaSR.sys - Manual/Stopped
mpio (mpio)- C:\Windows\system32\DRIVERS\mpio.sys - Manual/Stopped
mpsdrv (Windows Firewall Authorization Driver)- C:\Windows\system32\drivers\mpsdrv.sys - Manual/Running
mrxsmb10 (SMB 1.x MiniRedirector)- C:\Windows\system32\DRIVERS\mrxsmb10.sys - Manual/Running
mrxsmb20 (SMB 2.0 MiniRedirector)- C:\Windows\system32\DRIVERS\mrxsmb20.sys - Manual/Running
msahci (msahci)- C:\Windows\system32\DRIVERS\msahci.sys - Manual/Stopped
msdsm (msdsm)- C:\Windows\system32\DRIVERS\msdsm.sys - Manual/Stopped
mshidkmdf (Pass-through HID to KMDF Filter Driver)- C:\Windows\system32\drivers\mshidkmdf.sys - Manual/Stopped
msisadrv (msisadrv)- C:\Windows\system32\DRIVERS\msisadrv.sys - Boot/Running
MsRPC (MsRPC)- C:\Windows\system32\drivers\MsRPC.sys - Manual/Stopped
MTConfig (Microsoft Input Configuration Driver)- C:\Windows\system32\DRIVERS\MTConfig.sys - Manual/Stopped
MTsensor (ATK0110 ACPI UTILITY)- C:\Windows\system32\DRIVERS\ASACPI.sys - Manual/Stopped
NativeWifiP (NativeWiFi Filter)- C:\Windows\system32\DRIVERS\nwifi.sys - Manual/Stopped
NdisCap (NDIS Capture LightWeight Filter)- C:\Windows\system32\DRIVERS\ndiscap.sys - Manual/Stopped
nfrd960 (nfrd960)- C:\Windows\system32\DRIVERS\nfrd960.sys - Manual/Stopped
nsiproxy (NSI proxy service driver.)- C:\Windows\system32\drivers\nsiproxy.sys - System/Running
nvlddmkm (nvlddmkm)- C:\Windows\system32\DRIVERS\nvlddmkm.sys - Manual/Stopped
nvstor (nvstor)- C:\Windows\system32\DRIVERS\nvstor.sys - Manual/Stopped
pcw (Performance Counters for Windows Driver)- C:\Windows\system32\drivers\pcw.sys - Boot/Running
PEAUTH (PEAUTH)- C:\Windows\system32\drivers\peauth.sys - Auto/Running
PL-40R (CASIO USB MIDI)- C:\Windows\system32\Drivers\pl40rwdm.sys - Manual/Stopped
ql2300 (ql2300)- C:\Windows\system32\DRIVERS\ql2300.sys - Manual/Stopped
ql40xx (ql40xx)- C:\Windows\system32\DRIVERS\ql40xx.sys - Manual/Stopped
QWAVEdrv (QWAVE driver)- C:\Windows\system32\drivers\qwavedrv.sys - Manual/Stopped
RasAgileVpn (WAN Miniport (IKEv2))- C:\Windows\system32\DRIVERS\AgileVpn.sys - Manual/Stopped
rdpbus (Remote Desktop Device Redirector Bus Driver)- C:\Windows\system32\DRIVERS\rdpbus.sys - Manual/Stopped
RDPENCDD (RDP Encoder Mirror Driver)- C:\Windows\system32\drivers\rdpencdd.sys - System/Running
RDPREFMP (Reflector Display Driver used to gain access to graphics data)- C:\Windows\system32\drivers\rdprefmp.sys - System/Running
rdyboost (ReadyBoost)- C:\Windows\system32\drivers\rdyboost.sys - Boot/Running
rspndr (Link-Layer Topology Discovery Responder)- C:\Windows\system32\DRIVERS\rspndr.sys - Auto/Running
RTL8167 (Realtek 8167 NT Driver)- C:\Windows\system32\DRIVERS\Rt86win7.sys - Manual/Stopped
s3cap (s3cap)- C:\Windows\system32\DRIVERS\vms3cap.sys - Manual/Stopped
sbp2port (sbp2port)- C:\Windows\system32\DRIVERS\sbp2port.sys - Manual/Stopped
scfilter (Smart card PnP Class Filter Driver)- C:\Windows\system32\DRIVERS\scfilter.sys - Manual/Stopped
sermouse (Serial Mouse Driver)- C:\Windows\system32\DRIVERS\sermouse.sys - Manual/Stopped
sffdisk (SFF Storage Class Driver)- C:\Windows\system32\DRIVERS\sffdisk.sys - Manual/Stopped
sffp_mmc (SFF Storage Protocol Driver for MMC)- C:\Windows\system32\DRIVERS\sffp_mmc.sys - Manual/Stopped
sffp_sd (SFF Storage Protocol Driver for SDBus)- C:\Windows\system32\DRIVERS\sffp_sd.sys - Manual/Stopped
SiSRaid2 (SiSRaid2)- C:\Windows\system32\DRIVERS\SiSRaid2.sys - Manual/Stopped
SiSRaid4 (SiSRaid4)- C:\Windows\system32\DRIVERS\sisraid4.sys - Manual/Stopped
spldr (Security Processor Loader Driver)- C:\Windows\system32\drivers\spldr.sys - Boot/Running
SRTSP (Symantec Real Time Storage Protection)- C:\Windows\system32\drivers\NAV\1201000.025\SRTSP.SYS - Manual/Stopped
SRTSPX (Symantec Real Time Storage Protection (PEL))- C:\Windows\system32\drivers\NAV\1201000.025\SRTSPX.SYS - System/Running
srv2 (Server SMB 2.xxx Driver)- C:\Windows\system32\DRIVERS\srv2.sys - Manual/Running
srvnet (srvnet)- C:\Windows\system32\DRIVERS\srvnet.sys - Manual/Running
stexstor (stexstor)- C:\Windows\system32\DRIVERS\stexstor.sys - Manual/Stopped
storflt (Disk Virtual Machine Bus Acceleration Filter Driver)- C:\Windows\system32\DRIVERS\vmstorfl.sys - Boot/Running
storvsc (storvsc)- C:\Windows\system32\DRIVERS\storvsc.sys - Manual/Stopped
SymDS (Symantec Data Store)- C:\Windows\system32\drivers\NAV\1201000.025\SYMDS.SYS - Boot/Running
SymEFA (Symantec Extended File Attributes)- C:\Windows\system32\drivers\NAV\1201000.025\SYMEFA.SYS - Boot/Running
SymIRON (Symantec Iron Driver)- C:\Windows\system32\drivers\NAV\1201000.025\Ironx86.SYS - System/Running
SymNetS (Symantec Network Security WFP Driver)- C:\Windows\system32\drivers\NAV\1201000.025\SYMNETS.SYS - System/Running
tap0901t (TAP-Win32 Adapter V9 (Tunngle))- C:\Windows\system32\DRIVERS\tap0901t.sys - Manual/Stopped
TCPIP6 (Microsoft IPv6 Protocol Driver)- C:\Windows\system32\DRIVERS\tcpip.sys - Manual/Stopped
tcpipreg (TCP/IP Registry Compatibility)- C:\Windows\system32\drivers\tcpipreg.sys - Auto/Running
tdx (NetIO Legacy TDI Support Driver)- C:\Windows\system32\DRIVERS\tdx.sys - System/Running
tssecsrv (Remote Desktop Services Security Filter Driver)- C:\Windows\system32\DRIVERS\tssecsrv.sys - Manual/Stopped
tunnel (Microsoft Tunnel Miniport Adapter Driver)- C:\Windows\system32\DRIVERS\tunnel.sys - Manual/Stopped
uagp35 (Microsoft AGPv3.5 Filter)- C:\Windows\system32\DRIVERS\uagp35.sys - Manual/Stopped
uliagpkx (Uli AGP Bus Filter)- C:\Windows\system32\DRIVERS\uliagpkx.sys - Manual/Stopped
umbus (UMBus Enumerator Driver)- C:\Windows\system32\DRIVERS\umbus.sys - Manual/Stopped
UmPass (Microsoft UMPass Driver)- C:\Windows\system32\DRIVERS\umpass.sys - Manual/Stopped
USBAAPL (Apple Mobile USB Driver)- C:\Windows\system32\Drivers\usbaapl.sys - Manual/Stopped
usbcir (eHome Infrared Receiver (USBCIR))- C:\Windows\system32\DRIVERS\usbcir.sys - Manual/Stopped
VClone (VClone)- C:\Windows\system32\DRIVERS\VClone.sys - Manual/Stopped
vdrvroot (Microsoft Virtual Drive Enumerator Driver)- C:\Windows\system32\DRIVERS\vdrvroot.sys - Boot/Running
vhdmp (vhdmp)- C:\Windows\system32\DRIVERS\vhdmp.sys - Manual/Stopped
ViaC7 (VIA C7 Processor Driver)- C:\Windows\system32\DRIVERS\viac7.sys - Manual/Stopped
vmbus (Virtual Machine Bus)- C:\Windows\system32\DRIVERS\vmbus.sys - Manual/Stopped
VMBusHID (VMBusHID)- C:\Windows\system32\DRIVERS\VMBusHID.sys - Manual/Stopped
volmgr (Volume Manager Driver)- C:\Windows\system32\DRIVERS\volmgr.sys - Boot/Running
volmgrx (Dynamic Volume Manager)- C:\Windows\system32\drivers\volmgrx.sys - Boot/Running
vsmraid (vsmraid)- C:\Windows\system32\DRIVERS\vsmraid.sys - Manual/Stopped
vwifibus (Virtual WiFi Bus Driver)- C:\Windows\system32\drivers\vwifibus.sys - Manual/Stopped
WacomPen (Wacom Serial Pen HID Driver)- C:\Windows\system32\DRIVERS\wacompen.sys - Manual/Stopped
Wanarpv6 (Remote Access IPv6 ARP Driver)- C:\Windows\system32\DRIVERS\wanarp.sys - System/Running
Wdf01000 (Kernel Mode Driver Frameworks service)- C:\Windows\system32\drivers\Wdf01000.sys - Boot/Running
WfpLwf (WFP Lightweight Filter)- C:\Windows\system32\DRIVERS\wfplwf.sys - System/Running
WIMMount (WIMMount)- C:\Windows\system32\drivers\wimmount.sys - Manual/Stopped
WinUsb (WinUsb)- C:\Windows\system32\DRIVERS\WinUsb.sys - Manual/Stopped
WmiAcpi (Microsoft Windows Management Interface for ACPI)- C:\Windows\system32\DRIVERS\wmiacpi.sys - Manual/Stopped
====== Uninstall List ======
A file named 'UNI.txt' was created and saved to
FileListers default location. Post the results if requested.
======== Other Info ========
TOTAL PHYSICAL RAM: 2147 MB
Boot Info
OS Type: Microsoft Windows 7 Ultimate
Build: 6.1.7600
Service Pack: 0.0
====== Files with Hidden Attributes======
A file named 'Hidden.txt' was created and saved to
FileListers default location. Post the results if requested.
==End of Report==