Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Win32:rootkit-gen [RtK] durch Avast gefunden.

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 04.02.2015, 20:15   #1
tjk
 
Win32:rootkit-gen [RtK] durch Avast gefunden. - Standard

Win32:rootkit-gen [RtK] durch Avast gefunden.



Guten Abend zusammen,

Avast hat die win32:rootkit-gen [Rtk] -Datei gefunden. Diese wurde durch die Startzeit-Überprüfung (Avast) gelöscht.
Anschließender Scan mit MBAM & Avast haben keine Funde mehr ergeben.

Sind weitere Schritte nötig? Wenn ja, welche genau? (Win 7 Prof., MBAM & Avast neuste Version)

Tausend Dank bereits vorab!

Alt 04.02.2015, 20:30   #2
schrauber
/// the machine
/// TB-Ausbilder
 

Win32:rootkit-gen [RtK] durch Avast gefunden. - Standard

Win32:rootkit-gen [RtK] durch Avast gefunden.



hi,

Wo wurde das gefunden?
__________________

__________________

Alt 04.02.2015, 23:09   #3
tjk
 
Win32:rootkit-gen [RtK] durch Avast gefunden. - Standard

Win32:rootkit-gen [RtK] durch Avast gefunden.



Ich kann es leider nicht mehr exakt rekonstruieren, da avast es schon beseitigt hat. Aber es war auf C in den systemdateien in einem unterordner von lenovo

Update: Nachfolgender Scan durch MBAM & Avast haben nichts gefunden JEDOCH die Startzeit-Überprüfung hat eine weitere Datei entdeckt:
C:\SWTOOLS\ReadyApps\tvsu\setupvsw.exe|>\suserv~1.cab.|>suservice.exe
mit Win32:Rootkit-gen [RtK] infiziert.
Diesesmal nicht gelöscht, sondern in den Container verschoben.

Genannte Datei bei Virus total gescant. Erkennungsrate 2/55 (Avast &VBA 32)
erkannt als:
Avast Win32:Rootkit-gen [Rtk] 20150204
VBA32 Worm.Qvod 20150204

Anschließend gelöscht. Weitere Schritte erforderlich?
Nachfolgend erstmal der Report des TDSS Killer & MBAM.

Vielen Dank!

TDSS Killer hat nichts gefunden. Anbei das Script:

23:58:44.0378 0x0d08 TDSS rootkit removing tool 3.0.0.44 Jan 22 2015 08:27:04
23:58:49.0775 0x0d08 ============================================================
23:58:49.0775 0x0d08 Current date / time: 2015/02/04 23:58:49.0775
23:58:49.0775 0x0d08 SystemInfo:
23:58:49.0775 0x0d08
23:58:49.0775 0x0d08 OS Version: 6.1.7601 ServicePack: 1.0
23:58:49.0775 0x0d08 Product type: Workstation
23:58:49.0775 0x0d08 ComputerName: XXXX
23:58:49.0775 0x0d08 UserName: XXXX
23:58:49.0775 0x0d08 Windows directory: C:\Windows
23:58:49.0775 0x0d08 System windows directory: C:\Windows
23:58:49.0775 0x0d08 Running under WOW64
23:58:49.0775 0x0d08 Processor architecture: Intel x64
23:58:49.0775 0x0d08 Number of processors: 4
23:58:49.0775 0x0d08 Page size: 0x1000
23:58:49.0775 0x0d08 Boot type: Normal boot
23:58:49.0775 0x0d08 ============================================================
23:58:49.0900 0x0d08 KLMD registered as C:\Windows\system32\drivers\38899124.sys
23:58:50.0384 0x0d08 System UUID: {529735B5-EF87-827D-DA15-D8F597451ACD}
23:58:50.0821 0x0d08 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
23:58:50.0836 0x0d08 ============================================================
23:58:50.0836 0x0d08 \Device\Harddisk0\DR0:
23:58:50.0836 0x0d08 MBR partitions:
23:58:50.0836 0x0d08 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x258000
23:58:50.0836 0x0d08 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x258800, BlocksNum 0x389BD000
23:58:50.0836 0x0d08 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x38C15800, BlocksNum 0x1770000
23:58:50.0836 0x0d08 ============================================================
23:58:50.0867 0x0d08 C: <-> \Device\Harddisk0\DR0\Partition2
23:58:50.0914 0x0d08 Q: <-> \Device\Harddisk0\DR0\Partition3
23:58:50.0914 0x0d08 ============================================================
23:58:50.0914 0x0d08 Initialize success
23:58:50.0914 0x0d08 ============================================================
23:58:57.0685 0x1724 ============================================================
23:58:57.0685 0x1724 Scan started
23:58:57.0685 0x1724 Mode: Manual;
23:58:57.0685 0x1724 ============================================================
23:58:57.0685 0x1724 KSN ping started
23:59:00.0196 0x1724 KSN ping finished: true
23:59:01.0553 0x1724 ================ Scan system memory ========================
23:59:01.0553 0x1724 System memory - ok
23:59:01.0553 0x1724 ================ Scan services =============================
23:59:01.0787 0x1724 [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
23:59:01.0787 0x1724 1394ohci - ok
23:59:01.0881 0x1724 [ F4AF97702BAD85BFEF64B9A557F11B6F, 8255B2FBE64C60562A7DAAAD575EED49EE0D23DD42E5C76C988B8A3673843EA6 ] 5U877 C:\Windows\system32\DRIVERS\5U877.sys
23:59:01.0897 0x1724 5U877 - ok
23:59:01.0928 0x1724 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI C:\Windows\system32\drivers\ACPI.sys
23:59:01.0943 0x1724 ACPI - ok
23:59:01.0959 0x1724 [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
23:59:01.0959 0x1724 AcpiPmi - ok
23:59:02.0146 0x1724 [ C5679E5186B2FC95BC76A8A9870D5456, 70AC61850B811A0A902532F098AE1D5DF4622455E56C78B89D4ABDBE4A061A48 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
23:59:02.0146 0x1724 AdobeARMservice - ok
23:59:02.0333 0x1724 [ A2A9C100FE1BE20A76C0B80D4CA44103, C34B4A31C8563E29EC6A3D318C40075F43C891C23D156F53EE2102C959B7887F ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
23:59:02.0349 0x1724 AdobeFlashPlayerUpdateSvc - ok
23:59:02.0411 0x1724 [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
23:59:02.0427 0x1724 adp94xx - ok
23:59:02.0474 0x1724 [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci C:\Windows\system32\drivers\adpahci.sys
23:59:02.0474 0x1724 adpahci - ok
23:59:02.0489 0x1724 [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
23:59:02.0489 0x1724 adpu320 - ok
23:59:02.0536 0x1724 [ 4B78B431F225FD8624C5655CB1DE7B61, 198A5AF2125C7C41F531A652D200C083A55A97DC541E3C0B5B253C7329949156 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
23:59:02.0536 0x1724 AeLookupSvc - ok
23:59:02.0599 0x1724 [ FA886682CFC5D36718D3E436AACF10B9, F80AB4F91AA6B5C7ECCB000D8E1BC2CF776DC3D69B3D9EBC2558C19035A6B3AB ] AFD C:\Windows\system32\drivers\afd.sys
23:59:02.0614 0x1724 AFD - ok
23:59:02.0661 0x1724 [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440 C:\Windows\system32\drivers\agp440.sys
23:59:02.0661 0x1724 agp440 - ok
23:59:02.0677 0x1724 [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG C:\Windows\System32\alg.exe
23:59:02.0692 0x1724 ALG - ok
23:59:02.0723 0x1724 [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide C:\Windows\system32\drivers\aliide.sys
23:59:02.0723 0x1724 aliide - ok
23:59:02.0755 0x1724 [ EC9904687265F3274583258AA435B405, 59F3D239A71C86EBDAFAF26AFAAA8584ED0A2C4C8A8B62F0B3BEE0B8184C66D4 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
23:59:02.0755 0x1724 AMD External Events Utility - ok
23:59:02.0770 0x1724 [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide C:\Windows\system32\drivers\amdide.sys
23:59:02.0770 0x1724 amdide - ok
23:59:02.0801 0x1724 [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
23:59:02.0817 0x1724 AmdK8 - ok
23:59:03.0082 0x1724 [ 1E04097AC7637F11257003D5DB8780D6, EA21469D142327E67F54D23F40DFB2AEA118482336125D13176D3EB620D807F7 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
23:59:03.0332 0x1724 amdkmdag - ok
23:59:03.0394 0x1724 [ 3796C675884092141D5ECE9B2689D113, 817D8AC2108106F0A71D21279FFEFEBCED52F52BA728A3F68DD3974A13605EFF ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
23:59:03.0410 0x1724 amdkmdap - ok
23:59:03.0410 0x1724 [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM C:\Windows\system32\drivers\amdppm.sys
23:59:03.0425 0x1724 AmdPPM - ok
23:59:03.0425 0x1724 [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata C:\Windows\system32\drivers\amdsata.sys
23:59:03.0441 0x1724 amdsata - ok
23:59:03.0441 0x1724 [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
23:59:03.0441 0x1724 amdsbs - ok
23:59:03.0457 0x1724 [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata C:\Windows\system32\drivers\amdxata.sys
23:59:03.0457 0x1724 amdxata - ok
23:59:03.0519 0x1724 [ 80B9412C4DE09147581FC935FB4C97AB, 0C9661F7B5EF7F9D61981790B7AB64E3375BD117962166619D0CC546A2D014D3 ] AppID C:\Windows\system32\drivers\appid.sys
23:59:03.0519 0x1724 AppID - ok
23:59:03.0535 0x1724 [ F71CA01C24FC3798A717B5A6F682F9AD, 8CF1C209E7BBBAD02D6D087293C0B681CDA3170AF119CA2916C2708D8801E749 ] AppIDSvc C:\Windows\System32\appidsvc.dll
23:59:03.0535 0x1724 AppIDSvc - ok
23:59:03.0566 0x1724 [ 9D2A2369AB4B08A4905FE72DB104498F, D6FA1705018BABABFA2362E05691A0D6408D14DE7B76129B16D0A1DAD6378E58 ] Appinfo C:\Windows\System32\appinfo.dll
23:59:03.0581 0x1724 Appinfo - ok
23:59:03.0613 0x1724 [ 4ABA3E75A76195A3E38ED2766C962899, E2001ACD44DA270B8289DA362D26416676301773AB22616C211F31CF2E7869AA ] AppMgmt C:\Windows\System32\appmgmts.dll
23:59:03.0628 0x1724 AppMgmt - ok
23:59:03.0644 0x1724 [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc C:\Windows\system32\drivers\arc.sys
23:59:03.0644 0x1724 arc - ok
23:59:03.0659 0x1724 [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas C:\Windows\system32\drivers\arcsas.sys
23:59:03.0659 0x1724 arcsas - ok
23:59:03.0784 0x1724 [ 9A262EDD17F8473B91B333D6B031A901, 05DFBD3A7D83FDE1D062EA719ACA9EC48CB7FD42D17DDD88B82E5D25469ADD23 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
23:59:03.0784 0x1724 aspnet_state - ok
23:59:03.0847 0x1724 [ 9BE9F2B83DE80E2752B1405CC427E2EC, 6015CA66553B3B882083B33F24FB338249A110D9769831C3D3D3C681AAFA9411 ] aswHwid C:\Windows\system32\drivers\aswHwid.sys
23:59:03.0847 0x1724 aswHwid - ok
23:59:03.0862 0x1724 [ 2DA1C1AEDF454F8E32A863A1AEACDD8C, F02E4D197AE00B9A9507CF6007A7B7BEA54AF0F255B752FBA7174FA2596D1CA9 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
23:59:03.0862 0x1724 aswMonFlt - ok
23:59:03.0893 0x1724 [ 4750016EF9CC1DEC6DA3FE5AF9A7F095, C4CF46246D8A3FF9BD8D2FE899685654ADD45EB9B032F33804D0B8131882BC74 ] aswRdr C:\Windows\system32\drivers\aswRdr2.sys
23:59:03.0893 0x1724 aswRdr - ok
23:59:03.0893 0x1724 [ 1323269A92645705DEFA053F3596829D, 83EC58E0577A1E45D1FCBC0C0AF182099FB70B9005B9F8161166EBB4E9F58F35 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
23:59:03.0909 0x1724 aswRvrt - ok
23:59:03.0956 0x1724 [ E74FD717476B30E23F45354B8F3ACB30, 951D1655E1FA4CF0ACB29F2EEDDB3B42522D392F46DD826C63DCA8941E17ABA8 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
23:59:03.0987 0x1724 aswSnx - ok
23:59:04.0049 0x1724 [ B1881A01E301990B671694CA1623F1B6, 5299C713EA7CF96F0550943DB37E963CDA09258F65C471CCEEAB44C4736B7A08 ] aswSP C:\Windows\system32\drivers\aswSP.sys
23:59:04.0065 0x1724 aswSP - ok
23:59:04.0096 0x1724 [ 7509F07BA6F84C1E3B2C0D78A1F6F782, A90A36E8E23F58E430DE98B3623688DC09D34B62906EF7796DFC90F581FC385F ] aswStm C:\Windows\system32\drivers\aswStm.sys
23:59:04.0096 0x1724 aswStm - ok
23:59:04.0127 0x1724 [ 1A5BDDE65B648DC3AD48B6ECAA3AE9C8, 858F674C3B775F9C8C782B7AFAC0B02AE9410C9F3B7F5B3AE1C4AD3BF6448C14 ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
23:59:04.0127 0x1724 aswVmm - ok
23:59:04.0174 0x1724 [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
23:59:04.0174 0x1724 AsyncMac - ok
23:59:04.0205 0x1724 [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi C:\Windows\system32\drivers\atapi.sys
23:59:04.0205 0x1724 atapi - ok
23:59:04.0283 0x1724 [ DE3E38431B00C2EA247C53675DCF01A0, 8965192096C94203A1F16689DCDA45FE0EDF3A6FB75B70FC378C2008E8E71C9B ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
23:59:04.0315 0x1724 AudioEndpointBuilder - ok
23:59:04.0330 0x1724 [ DE3E38431B00C2EA247C53675DCF01A0, 8965192096C94203A1F16689DCDA45FE0EDF3A6FB75B70FC378C2008E8E71C9B ] AudioSrv C:\Windows\System32\Audiosrv.dll
23:59:04.0346 0x1724 AudioSrv - ok
23:59:04.0439 0x1724 [ E3F7EC811923F3F1A77B185F22638E5E, 324041256314C1471B5F123FA8DECC8F374A6B497A6419D4CAF61E68E1733265 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
23:59:04.0455 0x1724 avast! Antivirus - ok
23:59:04.0502 0x1724 [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV C:\Windows\System32\AxInstSV.dll
23:59:04.0517 0x1724 AxInstSV - ok
23:59:04.0564 0x1724 [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
23:59:04.0580 0x1724 b06bdrv - ok
23:59:04.0642 0x1724 [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
23:59:04.0642 0x1724 b57nd60a - ok
23:59:04.0673 0x1724 [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC C:\Windows\System32\bdesvc.dll
23:59:04.0689 0x1724 BDESVC - ok
23:59:04.0705 0x1724 [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep C:\Windows\system32\drivers\Beep.sys
23:59:04.0705 0x1724 Beep - ok
23:59:04.0767 0x1724 [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE C:\Windows\System32\bfe.dll
23:59:04.0798 0x1724 BFE - ok
23:59:04.0861 0x1724 [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS C:\Windows\System32\qmgr.dll
23:59:04.0907 0x1724 BITS - ok
23:59:04.0923 0x1724 [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
23:59:04.0923 0x1724 blbdrive - ok
23:59:04.0954 0x1724 [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
23:59:04.0954 0x1724 bowser - ok
23:59:04.0985 0x1724 [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
23:59:04.0985 0x1724 BrFiltLo - ok
23:59:05.0001 0x1724 [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
23:59:05.0017 0x1724 BrFiltUp - ok
23:59:05.0048 0x1724 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser C:\Windows\System32\browser.dll
23:59:05.0063 0x1724 Browser - ok
23:59:05.0079 0x1724 [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid C:\Windows\System32\Drivers\Brserid.sys
23:59:05.0095 0x1724 Brserid - ok
23:59:05.0110 0x1724 [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
23:59:05.0110 0x1724 BrSerWdm - ok
23:59:05.0126 0x1724 [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
23:59:05.0126 0x1724 BrUsbMdm - ok
23:59:05.0141 0x1724 [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
23:59:05.0141 0x1724 BrUsbSer - ok
23:59:05.0188 0x1724 [ CF98190A94F62E405C8CB255018B2315, E1B2540023C4FE9FD588E4B6AE6347DFA565EB3898F21E5360882BF3E8B5E781 ] BthEnum C:\Windows\system32\drivers\BthEnum.sys
23:59:05.0188 0x1724 BthEnum - ok
23:59:05.0204 0x1724 [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
23:59:05.0204 0x1724 BTHMODEM - ok
23:59:05.0219 0x1724 [ 02DD601B708DD0667E1331FA8518E9FF, 7DE6CC4DBB621CD03B01D9CE6CF66EAFE31D39030A391562CD0E278E1D70ADE1 ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
23:59:05.0235 0x1724 BthPan - ok
23:59:05.0266 0x1724 [ 738D0E9272F59EB7A1449C3EC118E6C4, FE3D32C2A5E4DC21376A0F89C0B2EE024ECF1A3FB99213CC9BBC986ADF7AF080 ] BTHPORT C:\Windows\System32\Drivers\BTHport.sys
23:59:05.0282 0x1724 BTHPORT - ok
23:59:05.0313 0x1724 [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv C:\Windows\system32\bthserv.dll
23:59:05.0313 0x1724 bthserv - ok
23:59:05.0329 0x1724 [ F188B7394D81010767B6DF3178519A37, 576304E92FD94908F093A6AB5F4D328F25829BE32EC3CA0D29EBFDF5DE83539B ] BTHUSB C:\Windows\System32\Drivers\BTHUSB.sys
23:59:05.0344 0x1724 BTHUSB - ok
23:59:05.0391 0x1724 [ 8767C8B416B6D583881F0FD7A0555135, 0A8FBFCC24012475E30256DF3EB4D7C01062A700F5AF5E365F23CE7D56E81E45 ] BTWAMPFL C:\Windows\system32\DRIVERS\btwampfl.sys
23:59:05.0391 0x1724 BTWAMPFL - ok
23:59:05.0407 0x1724 [ 44770A3C07EBD5D6D7CD7DBA915B49BC, 341811B5C0E6FE8BE59AE24CA2285784239C13EFCD3817EA9BC5D4E9B24C4088 ] btwaudio C:\Windows\system32\drivers\btwaudio.sys
23:59:05.0422 0x1724 btwaudio - ok
23:59:05.0438 0x1724 [ 75B59923087AE6EB064D13D8F58A02B6, 50B970DF6F41950587C27F15CAA97854D3EA661A05FCE0CEF39EAC586996481C ] btwavdt C:\Windows\system32\drivers\btwavdt.sys
23:59:05.0453 0x1724 btwavdt - ok
23:59:05.0547 0x1724 [ 8C497DCA98F0EB0D1511F71C28496844, ABA3A41280598CF12BFB31217A6836779F384219B4A33110360B91827272456C ] btwdins C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe
23:59:05.0578 0x1724 btwdins - ok
23:59:05.0609 0x1724 [ B9354F9F111C64F2495B60F1E24CB453, 67B3F5867B00F84832EF5AD649D817D27B3F200351C7C53579A63D30F8E2BFDD ] btwl2cap C:\Windows\system32\DRIVERS\btwl2cap.sys
23:59:05.0609 0x1724 btwl2cap - ok
23:59:05.0625 0x1724 [ 9555E15F828760341751E9183BD34E60, 8D9ED8ACC0DDF0B29903B0ED4D175CED0994F0EA30FD7401C331DDF5FF91C450 ] btwrchid C:\Windows\system32\DRIVERS\btwrchid.sys
23:59:05.0625 0x1724 btwrchid - ok
23:59:05.0672 0x1724 [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
23:59:05.0672 0x1724 cdfs - ok
23:59:05.0703 0x1724 [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
23:59:05.0719 0x1724 cdrom - ok
23:59:05.0750 0x1724 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc C:\Windows\System32\certprop.dll
23:59:05.0765 0x1724 CertPropSvc - ok
23:59:05.0781 0x1724 [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass C:\Windows\system32\drivers\circlass.sys
23:59:05.0781 0x1724 circlass - ok
23:59:05.0812 0x1724 [ FE1EC06F2253F691FE36217C592A0206, B9F122DB5E665ECDF29A5CB8BB6B531236F31A54A95769D6C5C1924C87FE70CE ] CLFS C:\Windows\system32\CLFS.sys
23:59:05.0828 0x1724 CLFS - ok
23:59:05.0890 0x1724 [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
23:59:05.0906 0x1724 clr_optimization_v2.0.50727_32 - ok
23:59:05.0921 0x1724 [ B4D73F04E9BC076F7CDAC4327DF636BB, 1ADED20D5A0D0A76E2F85CB778FD06BAB814868D35F8532E17D67045FF4770C2 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
23:59:05.0937 0x1724 clr_optimization_v2.0.50727_64 - ok
23:59:06.0015 0x1724 [ E87213F37A13E2B54391E40934F071D0, 7EB221127EFB5BF158FB03D18EFDA2C55FB6CE3D1A1FE69C01D70DBED02C87E5 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
23:59:06.0015 0x1724 clr_optimization_v4.0.30319_32 - ok
23:59:06.0031 0x1724 [ 4AEDAB50F83580D0B4D6CF78191F92AA, D113C47013B018B45161911B96E93AF96A2F3B34FA47061BF6E7A71FBA03194A ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
23:59:06.0046 0x1724 clr_optimization_v4.0.30319_64 - ok
23:59:06.0062 0x1724 [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
23:59:06.0062 0x1724 CmBatt - ok
23:59:06.0077 0x1724 [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide C:\Windows\system32\drivers\cmdide.sys
23:59:06.0077 0x1724 cmdide - ok
23:59:06.0124 0x1724 [ EBF28856F69CF094A902F884CF989706, AD6C9F0BC20AA49EEE5478DA0F856F0EA2B414B63208C5FFB03C9D7F5B59765F ] CNG C:\Windows\system32\Drivers\cng.sys
23:59:06.0140 0x1724 CNG - ok
23:59:06.0249 0x1724 [ 290CD2777CAF8A5E5499C7FC9E74CB87, F7E42190F1E4D2F8ADD829EFDE1805194EB33D507898D65C376AC11E993C4D33 ] CnxtHdAudService C:\Windows\system32\drivers\CHDRT64.sys
23:59:06.0311 0x1724 CnxtHdAudService - ok
23:59:06.0358 0x1724 [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
23:59:06.0358 0x1724 Compbatt - ok
23:59:06.0389 0x1724 [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
23:59:06.0389 0x1724 CompositeBus - ok
23:59:06.0405 0x1724 COMSysApp - ok
23:59:06.0421 0x1724 [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
23:59:06.0436 0x1724 crcdisk - ok
23:59:06.0483 0x1724 [ 19D511CC455C19DE1ADF60E6C39C85B6, 2A05DD5EF3D0BEC2C9F4EA186E0E2D0F7BE0BF6A473D51194B09D33773AC7FAA ] CryptSvc C:\Windows\system32\cryptsvc.dll
23:59:06.0483 0x1724 CryptSvc - ok
23:59:06.0499 0x1724 [ 54DA3DFD29ED9F1619B6F53F3CE55E49, 9177C6907A983296BF188892A894B668A09FFA058FD56B50FE12940D54B0FA5E ] CSC C:\Windows\system32\drivers\csc.sys
23:59:06.0514 0x1724 CSC - ok
23:59:06.0577 0x1724 [ 3AB183AB4D2C79DCF459CD2C1266B043, 72B0187EBA9DC74E61EC5CB3DC24058DDB768843E865801894AAEAA211610C56 ] CscService C:\Windows\System32\cscsvc.dll
23:59:06.0592 0x1724 CscService - ok
23:59:06.0639 0x1724 [ BF62FF663AE55E4ED99DE76881C2C0F1, 87018B61B2310558EB9C96887D92FA5ED06B9A4D69999F6B6F7BDD2D486FAA0D ] ctxusbm C:\Windows\system32\DRIVERS\ctxusbm.sys
23:59:06.0655 0x1724 ctxusbm - ok
23:59:06.0701 0x1724 [ 9D0D050170D47E778B624A28C90F23DE, 48528AA9EB0C9FB5086D992EF1F9556C8249D267C2E3D4E681D5C8B6BC316C71 ] CxAudMsg C:\Windows\system32\CxAudMsg64.exe
23:59:06.0701 0x1724 CxAudMsg - ok
23:59:06.0748 0x1724 [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch C:\Windows\system32\rpcss.dll
23:59:06.0764 0x1724 DcomLaunch - ok
23:59:06.0842 0x1724 [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc C:\Windows\System32\defragsvc.dll
23:59:06.0857 0x1724 defragsvc - ok
23:59:06.0889 0x1724 [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC C:\Windows\system32\Drivers\dfsc.sys
23:59:06.0889 0x1724 DfsC - ok
23:59:06.0920 0x1724 [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp C:\Windows\system32\dhcpcore.dll
23:59:06.0935 0x1724 Dhcp - ok
23:59:06.0951 0x1724 [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache C:\Windows\system32\drivers\discache.sys
23:59:06.0951 0x1724 discache - ok
23:59:06.0982 0x1724 [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk C:\Windows\system32\drivers\disk.sys
23:59:06.0982 0x1724 Disk - ok
23:59:07.0013 0x1724 [ 5DB085A8A6600BE6401F2B24EECB5415, 5FC5C7C1B4DB7BF6EFD0992E91DB41FD047E90D1ABA0B8F868CB72557F88FB13 ] dmvsc C:\Windows\system32\drivers\dmvsc.sys
23:59:07.0013 0x1724 dmvsc - ok
23:59:07.0060 0x1724 [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache C:\Windows\System32\dnsrslvr.dll
23:59:07.0060 0x1724 Dnscache - ok
23:59:07.0076 0x1724 [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc C:\Windows\System32\dot3svc.dll
23:59:07.0091 0x1724 dot3svc - ok
23:59:07.0123 0x1724 [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS C:\Windows\system32\dps.dll
23:59:07.0123 0x1724 DPS - ok
23:59:07.0154 0x1724 [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
23:59:07.0154 0x1724 drmkaud - ok
23:59:07.0232 0x1724 [ 87CE5C8965E101CCCED1F4675557E868, 077D98F0F130B2FC710208BA34016EF2B2506EE2BD71740B228145E34A3046F1 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
23:59:07.0294 0x1724 DXGKrnl - ok
23:59:07.0357 0x1724 [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost C:\Windows\System32\eapsvc.dll
23:59:07.0357 0x1724 EapHost - ok
23:59:07.0481 0x1724 [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv C:\Windows\system32\drivers\evbda.sys
23:59:07.0575 0x1724 ebdrv - ok
23:59:07.0606 0x1724 [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] EFS C:\Windows\System32\lsass.exe
23:59:07.0622 0x1724 EFS - ok
23:59:07.0684 0x1724 [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
23:59:07.0715 0x1724 ehRecvr - ok
23:59:07.0778 0x1724 [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched C:\Windows\ehome\ehsched.exe
23:59:07.0778 0x1724 ehSched - ok
23:59:07.0825 0x1724 [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor C:\Windows\system32\drivers\elxstor.sys
23:59:07.0840 0x1724 elxstor - ok
23:59:07.0887 0x1724 [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev C:\Windows\system32\drivers\errdev.sys
23:59:07.0887 0x1724 ErrDev - ok
23:59:07.0918 0x1724 [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem C:\Windows\system32\es.dll
23:59:07.0918 0x1724 EventSystem - ok
23:59:08.0043 0x1724 [ 8B6C9924B0D333DBF76086B8258A0891, 61A629A0BF00040F8E2B0588657FFA8C78C137B1B0F6CB92CFCC9B9E29630E0C ] EvtEng C:\Program Files\Intel\WiFi\bin\EvtEng.exe
23:59:08.0137 0x1724 EvtEng - ok
23:59:08.0152 0x1724 [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat C:\Windows\system32\drivers\exfat.sys
23:59:08.0152 0x1724 exfat - ok
23:59:08.0168 0x1724 [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat C:\Windows\system32\drivers\fastfat.sys
23:59:08.0183 0x1724 fastfat - ok
23:59:08.0246 0x1724 [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax C:\Windows\system32\fxssvc.exe
23:59:08.0277 0x1724 Fax - ok
23:59:08.0339 0x1724 [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc C:\Windows\system32\drivers\fdc.sys
23:59:08.0339 0x1724 fdc - ok
23:59:08.0371 0x1724 [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost C:\Windows\system32\fdPHost.dll
23:59:08.0371 0x1724 fdPHost - ok
23:59:08.0386 0x1724 [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub C:\Windows\system32\fdrespub.dll
23:59:08.0386 0x1724 FDResPub - ok
23:59:08.0386 0x1724 [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
23:59:08.0402 0x1724 FileInfo - ok
23:59:08.0402 0x1724 [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
23:59:08.0402 0x1724 Filetrace - ok
23:59:08.0433 0x1724 [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
23:59:08.0433 0x1724 flpydisk - ok
23:59:08.0464 0x1724 [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
23:59:08.0464 0x1724 FltMgr - ok
23:59:08.0542 0x1724 [ C4C183E6551084039EC862DA1C945E3D, 0874A2ACDD24D64965AA9A76E9C818E216880AE4C9A2E07ED932EE404585CEE6 ] FontCache C:\Windows\system32\FntCache.dll
23:59:08.0620 0x1724 FontCache - ok
23:59:08.0667 0x1724 [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
23:59:08.0667 0x1724 FontCache3.0.0.0 - ok
23:59:08.0683 0x1724 [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
23:59:08.0683 0x1724 FsDepends - ok
23:59:08.0729 0x1724 [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
23:59:08.0729 0x1724 Fs_Rec - ok
23:59:08.0776 0x1724 [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
23:59:08.0776 0x1724 fvevol - ok
23:59:08.0807 0x1724 [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
23:59:08.0807 0x1724 gagp30kx - ok
23:59:08.0854 0x1724 [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc C:\Windows\System32\gpsvc.dll
23:59:08.0885 0x1724 gpsvc - ok
23:59:08.0917 0x1724 [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
23:59:08.0917 0x1724 hcw85cir - ok
23:59:08.0963 0x1724 [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
23:59:08.0963 0x1724 HdAudAddService - ok
23:59:09.0010 0x1724 [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
23:59:09.0010 0x1724 HDAudBus - ok
23:59:09.0026 0x1724 [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
23:59:09.0026 0x1724 HidBatt - ok
23:59:09.0041 0x1724 [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth C:\Windows\system32\drivers\hidbth.sys
23:59:09.0057 0x1724 HidBth - ok
23:59:09.0057 0x1724 [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr C:\Windows\system32\drivers\hidir.sys
23:59:09.0057 0x1724 HidIr - ok
23:59:09.0088 0x1724 [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv C:\Windows\system32\hidserv.dll
23:59:09.0104 0x1724 hidserv - ok
23:59:09.0119 0x1724 [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
23:59:09.0119 0x1724 HidUsb - ok
23:59:09.0166 0x1724 [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc C:\Windows\system32\kmsvc.dll
23:59:09.0166 0x1724 hkmsvc - ok
23:59:09.0197 0x1724 [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
23:59:09.0197 0x1724 HomeGroupListener - ok
23:59:09.0229 0x1724 [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
23:59:09.0244 0x1724 HomeGroupProvider - ok
23:59:09.0400 0x1724 [ 5DA42D24712E00728CEA2342A65009B2, 73EC5250DCFD556525B24B3CA66C64AC7747E77652A2AD6119936A59A9E8562A ] hpqcxs08 C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll
23:59:09.0400 0x1724 hpqcxs08 - ok
23:59:09.0416 0x1724 [ D86A39BF100069444D026D22D9A6E555, 7B24D48D5BA67704C88697FADB64364E0E64D26259408E3C219820C5404C5EEC ] hpqddsvc C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll
23:59:09.0416 0x1724 hpqddsvc - ok
23:59:09.0463 0x1724 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
23:59:09.0463 0x1724 HpSAMD - ok
23:59:09.0525 0x1724 [ D4F91CF4DE215D6F14A06087D46725E4, 656E78AB0CD5B3DA396F937CF05863F80C9E430EDED6F68A88F39604A052921B ] HPSLPSVC C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL
23:59:09.0556 0x1724 HPSLPSVC - ok
23:59:09.0603 0x1724 [ 0EA7DE1ACB728DD5A369FD742D6EEE28, 21C489412EB33A12B22290EB701C19BA57006E8702E76F730954F0784DDE9779 ] HTTP C:\Windows\system32\drivers\HTTP.sys
23:59:09.0634 0x1724 HTTP - ok
23:59:09.0665 0x1724 [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
23:59:09.0665 0x1724 hwpolicy - ok
23:59:09.0728 0x1724 [ 9149907FF8681AD6475607EEBF62DD2F, F3F766ED689BCD69DC8BC705FF08BE9830B562D8CB85AD74A12FE370F5DA9668 ] HyperW7Svc C:\Program Files\Lenovo\RapidBoot\HyperW7Svc64.exe
23:59:09.0728 0x1724 HyperW7Svc - ok
23:59:09.0759 0x1724 [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
23:59:09.0759 0x1724 i8042prt - ok
23:59:09.0790 0x1724 [ D7921D5A870B11CC1ADAB198A519D50A, 5DF99EB5D5504E9D9EB21658E8B4A58DEE2AD143A1875DB7F9B7BF4877FCB57F ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys
23:59:09.0806 0x1724 iaStor - ok
23:59:09.0868 0x1724 [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
23:59:09.0884 0x1724 iaStorV - ok
23:59:09.0915 0x1724 [ 6C7FE2FD06EF34A7972E34C876FC78DF, B545A10DEEF59B8145D3D20361DA7F1C0FD27B6273B126B500594D6456C3FC06 ] IBMPMDRV C:\Windows\system32\DRIVERS\ibmpmdrv.sys
23:59:09.0915 0x1724 IBMPMDRV - ok
23:59:09.0962 0x1724 [ 5A1E3B4BA187327DF5FF122F96FA753A, AED93AA268F75D46752FCE5189392EE41225DA45F7D67C73B77629C8227E5084 ] IBMPMSVC C:\Windows\system32\ibmpmsvc.exe
23:59:09.0962 0x1724 IBMPMSVC - ok
23:59:10.0024 0x1724 [ C98A5B9D932430AD8EEBD3EF73756EF7, DF7E1D391A0F3345AD61154363922C27BD557DEEACE395A6A8A8A16BFD1BB9A8 ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
23:59:10.0071 0x1724 idsvc - ok
23:59:10.0087 0x1724 IEEtwCollectorService - ok
23:59:10.0118 0x1724 [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp C:\Windows\system32\drivers\iirsp.sys
23:59:10.0118 0x1724 iirsp - ok
23:59:10.0180 0x1724 [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT C:\Windows\System32\ikeext.dll
23:59:10.0211 0x1724 IKEEXT - ok
23:59:10.0289 0x1724 [ FC727061C0F47C8059E88E05D5C8E381, C7A3782F5D86C7FDE57AA1F2EE81638C5FC3072ACC6E572BA2EC7B3CFF389800 ] IntcDAud C:\Windows\system32\DRIVERS\IntcDAud.sys
23:59:10.0305 0x1724 IntcDAud - ok
23:59:10.0321 0x1724 [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide C:\Windows\system32\drivers\intelide.sys
23:59:10.0321 0x1724 intelide - ok
23:59:10.0695 0x1724 [ 795C99DC4F574C97C03D0BB39CF099EE, 67310B52F7A1B83A66872B961F347B1BD104C8A83A01F60507705B2ACEA76B71 ] intelkmd C:\Windows\system32\DRIVERS\igdpmd64.sys
23:59:11.0054 0x1724 intelkmd - ok
23:59:11.0101 0x1724 [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
23:59:11.0101 0x1724 intelppm - ok
23:59:11.0132 0x1724 [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum C:\Windows\system32\ipbusenum.dll
23:59:11.0132 0x1724 IPBusEnum - ok
23:59:11.0163 0x1724 [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
23:59:11.0163 0x1724 IpFilterDriver - ok
23:59:11.0225 0x1724 [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
23:59:11.0257 0x1724 iphlpsvc - ok
23:59:11.0272 0x1724 [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
23:59:11.0272 0x1724 IPMIDRV - ok
23:59:11.0288 0x1724 [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT C:\Windows\system32\drivers\ipnat.sys
23:59:11.0288 0x1724 IPNAT - ok
23:59:11.0335 0x1724 [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM C:\Windows\system32\drivers\irenum.sys
23:59:11.0335 0x1724 IRENUM - ok
23:59:11.0350 0x1724 [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp C:\Windows\system32\drivers\isapnp.sys
23:59:11.0350 0x1724 isapnp - ok
23:59:11.0397 0x1724 [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
23:59:11.0397 0x1724 iScsiPrt - ok
23:59:11.0491 0x1724 [ 6C85719A21B3F62C2C76280F4BD36C7B, 471E333467937720EF9369419EEDE5C2246C976123B437E0AC66F394CF1C056A ] jhi_service C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
23:59:11.0491 0x1724 jhi_service - ok
23:59:11.0537 0x1724 [ B97BA5CD0CEE9E1474A61C94A4920DE3, EDFC1744C0D162D76447FF18E6F52BF58463D2C33163DBBBBBABA5206197C43D ] jnprns C:\Windows\system32\DRIVERS\jnprns.sys
23:59:11.0553 0x1724 jnprns - ok
23:59:11.0569 0x1724 [ F9F7A903F3DACB84DE6E6A8CC23C1D11, 7B20D809BF31693F0F6B41E04F1951BF4339F07ABF3D2D2A51988649D139FF8F ] jnprTdi_803_44983 C:\Windows\system32\Drivers\jnprTdi_803_44983.sys
23:59:11.0569 0x1724 jnprTdi_803_44983 - ok
23:59:11.0600 0x1724 [ 44C9235408780F1F6299FA809A2C4FCE, 409E0A4212669A30E3EA14083668785C69D5F0028692F23419BCDAD00D15097A ] jnprva C:\Windows\system32\DRIVERS\jnprva.sys
23:59:11.0600 0x1724 jnprva - ok
23:59:11.0615 0x1724 [ 43389A5F75966CB4715253F1B3EAD392, 68C61701DAC97EB21AFDD9457A71417C474F9EE0B0CEE6859B694266E601803C ] JnprVaMgr C:\Windows\system32\DRIVERS\jnprvamgr.sys
23:59:11.0615 0x1724 JnprVaMgr - ok
23:59:11.0709 0x1724 [ 631FE3A05B6B569C24E86C63EA704508, 860EDDD196324EA2866C8E0C83721BDE833D942A62408A59359B43C5B314A7D1 ] JuniperAccessService C:\Program Files (x86)\Common Files\Juniper Networks\JUNS\dsAccessService.exe
23:59:11.0709 0x1724 JuniperAccessService - ok
23:59:11.0756 0x1724 [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
23:59:11.0756 0x1724 kbdclass - ok
23:59:11.0771 0x1724 [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
23:59:11.0771 0x1724 kbdhid - ok
23:59:11.0787 0x1724 [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] KeyIso C:\Windows\system32\lsass.exe
23:59:11.0787 0x1724 KeyIso - ok
23:59:11.0818 0x1724 KMService - ok
23:59:11.0834 0x1724 [ 353009DEDF918B2A51414F330CF72DEC, BF157D6E329F26E02FA16271B751B421396040DBB1D7BF9B2E0A21BC569672E2 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
23:59:11.0834 0x1724 KSecDD - ok
23:59:11.0881 0x1724 [ 41774FF331F609EF442B7398EE6202B1, AD67DA06A74895C384F4A1F1CF47050DAEE9C6CE8AD12F1A116FC977B6C3A864 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
23:59:11.0881 0x1724 KSecPkg - ok
23:59:11.0896 0x1724 [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
23:59:11.0896 0x1724 ksthunk - ok
23:59:11.0927 0x1724 [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm C:\Windows\system32\msdtckrm.dll
23:59:11.0943 0x1724 KtmRm - ok
23:59:11.0974 0x1724 [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer C:\Windows\system32\srvsvc.dll
23:59:11.0990 0x1724 LanmanServer - ok
23:59:12.0021 0x1724 [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
23:59:12.0021 0x1724 LanmanWorkstation - ok
23:59:12.0068 0x1724 [ 1EF45F1BD62B8F4C19458326A3E91930, 3EABD2DC53815FE69A0A599FCD7CB486EE0C95AC35376D11257E6595D77B8526 ] LENOVO.CAMMUTE C:\Program Files\Lenovo\Communications Utility\CAMMUTE.exe
23:59:12.0083 0x1724 LENOVO.CAMMUTE - ok
23:59:12.0115 0x1724 [ 128158D8B1DF639BF3E3FDBCBB64CDAC, F55DA8F202A8E81D4E8ABECCC1B7CE5162D6891A23278A8C664AA1EE9AE3C7CF ] LENOVO.MICMUTE C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe
23:59:12.0115 0x1724 LENOVO.MICMUTE - ok
23:59:12.0146 0x1724 [ 2B9D8555DC004E240082D18E7725CE20, 9DEF9463CB099C0BC8782C1E5FCE62F038B971ABC12966774D1F83569B081A42 ] lenovo.smi C:\Windows\system32\DRIVERS\smiifx64.sys
23:59:12.0146 0x1724 lenovo.smi - ok
23:59:12.0161 0x1724 [ 448BE3E001004A55E8A959C57E17F6D8, 229CA631876CF493C42A23DB92E5D75653CC57F5E78A52D6829235AE49D5F588 ] LENOVO.TPKNRSVC C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe
23:59:12.0161 0x1724 LENOVO.TPKNRSVC - ok
23:59:12.0193 0x1724 [ 6F2CC57EB5836D2AC9BD37F3554D55F8, C877F63AACA68AD3505EC4A8B8916FA2E07C2CB29E74FA368A103F612E18499E ] Lenovo.VIRTSCRLSVC C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe
23:59:12.0193 0x1724 Lenovo.VIRTSCRLSVC - ok
23:59:12.0224 0x1724 [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
23:59:12.0224 0x1724 lltdio - ok
23:59:12.0255 0x1724 [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc C:\Windows\System32\lltdsvc.dll
23:59:12.0271 0x1724 lltdsvc - ok
23:59:12.0286 0x1724 [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts C:\Windows\System32\lmhsvc.dll
23:59:12.0286 0x1724 lmhosts - ok
23:59:12.0349 0x1724 [ E7859BA062DB5E23C6DD34AD66B09F50, 6A702CBCC365233E7876BF79D84BB38C4A78C3D49DE51C04EECE5CD651B76686 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
23:59:12.0349 0x1724 LMS - ok
23:59:12.0395 0x1724 [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
23:59:12.0395 0x1724 LSI_FC - ok
23:59:12.0411 0x1724 [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
23:59:12.0411 0x1724 LSI_SAS - ok
23:59:12.0427 0x1724 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
23:59:12.0427 0x1724 LSI_SAS2 - ok
23:59:12.0458 0x1724 [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
23:59:12.0458 0x1724 LSI_SCSI - ok
23:59:12.0473 0x1724 [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv C:\Windows\system32\drivers\luafv.sys
23:59:12.0473 0x1724 luafv - ok
23:59:12.0505 0x1724 [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
23:59:12.0520 0x1724 Mcx2Svc - ok
23:59:12.0536 0x1724 [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas C:\Windows\system32\drivers\megasas.sys
23:59:12.0536 0x1724 megasas - ok
23:59:12.0567 0x1724 [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
23:59:12.0567 0x1724 MegaSR - ok
23:59:12.0614 0x1724 [ A6518DCC42F7A6E999BB3BEA8FD87567, 8A9AE992F93F37E0723761EA271A7E1AA8172702C471041A17324474FC96B9BC ] MEIx64 C:\Windows\system32\DRIVERS\HECIx64.sys
23:59:12.0614 0x1724 MEIx64 - ok
23:59:12.0676 0x1724 Microsoft SharePoint Workspace Audit Service - ok
23:59:12.0692 0x1724 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS C:\Windows\system32\mmcss.dll
23:59:12.0707 0x1724 MMCSS - ok
23:59:12.0707 0x1724 [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem C:\Windows\system32\drivers\modem.sys
23:59:12.0723 0x1724 Modem - ok
23:59:12.0739 0x1724 [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
23:59:12.0739 0x1724 monitor - ok
23:59:12.0770 0x1724 [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
23:59:12.0770 0x1724 mouclass - ok
23:59:12.0785 0x1724 [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
23:59:12.0785 0x1724 mouhid - ok
23:59:12.0801 0x1724 [ 32E7A3D591D671A6DF2DB515A5CBE0FA, 47CED0B9067AE8BF5EEF60B17ADEE5906BEDCC56E4CB460B7BFBC12BB9A69E63 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
23:59:12.0801 0x1724 mountmgr - ok
23:59:12.0879 0x1724 [ 345477F02C308B7480702767218C86A2, 98AFB5CF35BD82BA44B8F52CBC5FA3760506ADD7892C2AA1A77E8DF71FC8523F ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
23:59:12.0879 0x1724 MozillaMaintenance - ok
23:59:12.0895 0x1724 [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio C:\Windows\system32\drivers\mpio.sys
23:59:12.0910 0x1724 mpio - ok
23:59:12.0941 0x1724 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
23:59:12.0941 0x1724 mpsdrv - ok
23:59:12.0988 0x1724 [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc C:\Windows\system32\mpssvc.dll
23:59:13.0019 0x1724 MpsSvc - ok
23:59:13.0051 0x1724 [ AE3334958D8F631FF14A0AEB3D7EFB3A, F5FD6B61F896104C20DFC43FEE2FCE6930B73F78DF876BD19A333EABB9139C6D ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
23:59:13.0051 0x1724 MRxDAV - ok
23:59:13.0082 0x1724 [ A5D9106A73DC88564C825D317CAC68AC, 0457B2AEA4E05A91D0E43F317894A614434D8CEBE35020785387F307E231FBE4 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
23:59:13.0097 0x1724 mrxsmb - ok
23:59:13.0113 0x1724 [ D711B3C1D5F42C0C2415687BE09FC163, 9B3013AC60BD2D0FF52086658BA5FF486ADE15954A552D7DD590580E8BAE3EFF ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
23:59:13.0113 0x1724 mrxsmb10 - ok
23:59:13.0144 0x1724 [ 9423E9D355C8D303E76B8CFBD8A5C30C, 220B33F120C2DD937FE4D5664F4B581DC0ACF78D62EB56B7720888F67B9644CC ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
23:59:13.0144 0x1724 mrxsmb20 - ok
23:59:13.0175 0x1724 [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci C:\Windows\system32\drivers\msahci.sys
23:59:13.0175 0x1724 msahci - ok
23:59:13.0222 0x1724 [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm C:\Windows\system32\drivers\msdsm.sys
23:59:13.0222 0x1724 msdsm - ok
23:59:13.0238 0x1724 [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC C:\Windows\System32\msdtc.exe
23:59:13.0253 0x1724 MSDTC - ok
23:59:13.0269 0x1724 [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs C:\Windows\system32\drivers\Msfs.sys
23:59:13.0285 0x1724 Msfs - ok
23:59:13.0300 0x1724 [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
23:59:13.0316 0x1724 mshidkmdf - ok
23:59:13.0331 0x1724 [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
23:59:13.0331 0x1724 msisadrv - ok
23:59:13.0363 0x1724 [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
23:59:13.0363 0x1724 MSiSCSI - ok
23:59:13.0378 0x1724 msiserver - ok
23:59:13.0394 0x1724 [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
23:59:13.0394 0x1724 MSKSSRV - ok
23:59:13.0409 0x1724 [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
23:59:13.0409 0x1724 MSPCLOCK - ok
23:59:13.0425 0x1724 [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
23:59:13.0425 0x1724 MSPQM - ok
23:59:13.0441 0x1724 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
23:59:13.0456 0x1724 MsRPC - ok
23:59:13.0472 0x1724 [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
23:59:13.0472 0x1724 mssmbios - ok
23:59:13.0487 0x1724 [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
23:59:13.0487 0x1724 MSTEE - ok
23:59:13.0503 0x1724 [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
23:59:13.0503 0x1724 MTConfig - ok
23:59:13.0519 0x1724 [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup C:\Windows\system32\Drivers\mup.sys
23:59:13.0519 0x1724 Mup - ok
23:59:13.0565 0x1724 [ 6ED8935257672F4CD04A88A0F3DE093D, 0417FD87546B105510BB29539AE29EB1DFE522416FC64E2A2ACB2DF24EAC7B1E ] MyWiFiDHCPDNS C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
23:59:13.0581 0x1724 MyWiFiDHCPDNS - ok
23:59:13.0612 0x1724 [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent C:\Windows\system32\qagentRT.dll
23:59:13.0628 0x1724 napagent - ok
23:59:13.0659 0x1724 [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
23:59:13.0675 0x1724 NativeWifiP - ok
23:59:13.0721 0x1724 [ 760E38053BF56E501D562B70AD796B88, F856E81A975D44F8684A6F2466549CEEDFAEB3950191698555A93A1206E0A42D ] NDIS C:\Windows\system32\drivers\ndis.sys
23:59:13.0753 0x1724 NDIS - ok
23:59:13.0768 0x1724 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
23:59:13.0784 0x1724 NdisCap - ok
23:59:13.0815 0x1724 [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
23:59:13.0815 0x1724 NdisTapi - ok
23:59:13.0831 0x1724 [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
23:59:13.0831 0x1724 Ndisuio - ok
23:59:13.0846 0x1724 [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
23:59:13.0846 0x1724 NdisWan - ok
23:59:13.0862 0x1724 [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
23:59:13.0862 0x1724 NDProxy - ok
23:59:13.0924 0x1724 [ D4F51E88C71BF8F06EA1BE320B0BB75B, ABDA528F8159290BFDFBAAFC3BDA4484649FF612FD1D9E74284CA7DBA00A4B0D ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
23:59:13.0924 0x1724 Net Driver HPZ12 - ok
23:59:13.0940 0x1724 [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
23:59:13.0940 0x1724 NetBIOS - ok
23:59:13.0955 0x1724 [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
23:59:13.0971 0x1724 NetBT - ok
23:59:13.0987 0x1724 [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] Netlogon C:\Windows\system32\lsass.exe
23:59:13.0987 0x1724 Netlogon - ok
23:59:14.0018 0x1724 [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman C:\Windows\System32\netman.dll
23:59:14.0033 0x1724 Netman - ok
23:59:14.0065 0x1724 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
23:59:14.0080 0x1724 NetMsmqActivator - ok
23:59:14.0080 0x1724 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
23:59:14.0080 0x1724 NetPipeActivator - ok
23:59:14.0127 0x1724 [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm C:\Windows\System32\netprofm.dll
23:59:14.0143 0x1724 netprofm - ok
23:59:14.0189 0x1724 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
23:59:14.0189 0x1724 NetTcpActivator - ok
23:59:14.0189 0x1724 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
23:59:14.0189 0x1724 NetTcpPortSharing - ok
23:59:14.0470 0x1724 [ 5D262402B0634C998F8CBCEAD7DD8676, 535C869C4522B012A7FB600382D46D6E5F242C18F28590FD26A918648B19EDFD ] NETwNs64 C:\Windows\system32\DRIVERS\NETwNs64.sys
23:59:14.0704 0x1724 NETwNs64 - ok
23:59:14.0735 0x1724 [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
23:59:14.0751 0x1724 nfrd960 - ok
23:59:14.0767 0x1724 [ 8B301D474B478E9A92823BAB50A7BC49, 8181816035F41B1DABEC05E65E4F67BCD785F56760A61F1049E91BA39D42F01D ] NlaSvc C:\Windows\System32\nlasvc.dll
23:59:14.0782 0x1724 NlaSvc - ok
23:59:14.0798 0x1724 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs C:\Windows\system32\drivers\Npfs.sys
23:59:14.0798 0x1724 Npfs - ok
23:59:14.0829 0x1724 [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi C:\Windows\system32\nsisvc.dll
23:59:14.0829 0x1724 nsi - ok
23:59:14.0845 0x1724 [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
23:59:14.0845 0x1724 nsiproxy - ok
23:59:14.0938 0x1724 [ 1A29A59A4C5BA6F8C85062A613B7E2B2, CC137F499A12C724D4166C2D85E9F447413419A0683DAC6F1A802B7F210C77F1 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
23:59:15.0001 0x1724 Ntfs - ok
23:59:15.0047 0x1724 [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null C:\Windows\system32\drivers\Null.sys
23:59:15.0047 0x1724 Null - ok
23:59:15.0079 0x1724 [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid C:\Windows\system32\drivers\nvraid.sys
23:59:15.0079 0x1724 nvraid - ok
23:59:15.0079 0x1724 [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor C:\Windows\system32\drivers\nvstor.sys
23:59:15.0094 0x1724 nvstor - ok
23:59:15.0110 0x1724 [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
23:59:15.0125 0x1724 nv_agp - ok
23:59:15.0125 0x1724 [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
23:59:15.0125 0x1724 ohci1394 - ok
23:59:15.0203 0x1724 [ 4965B005492CBA7719E82B71E3245495, 52AD72C05FACC1E0E416A1FA25F34FDD3CB274FAB973BEAAE911A2FACA42B650 ] ose64 C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
23:59:15.0203 0x1724 ose64 - ok
23:59:15.0406 0x1724 [ 61BFFB5F57AD12F83AB64B7181829B34, 1DD0DD35E4158F95765EE6639F217DF03A0A19E624E020DBA609268C08A13846 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
23:59:15.0547 0x1724 osppsvc - ok
23:59:15.0593 0x1724 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
23:59:15.0609 0x1724 p2pimsvc - ok
23:59:15.0625 0x1724 [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc C:\Windows\system32\p2psvc.dll
23:59:15.0640 0x1724 p2psvc - ok
23:59:15.0671 0x1724 [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport C:\Windows\system32\drivers\parport.sys
23:59:15.0671 0x1724 Parport - ok
23:59:15.0687 0x1724 [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr C:\Windows\system32\drivers\partmgr.sys
23:59:15.0687 0x1724 partmgr - ok
23:59:15.0734 0x1724 [ 256390425414F90FCBC12F525A84EB11, A4992020BF6A239AD8A77125426E2C39980C9ABC971C4DBCB24B358F946AD7F9 ] PcaSvc C:\Windows\System32\pcasvc.dll
23:59:15.0734 0x1724 PcaSvc - ok
23:59:15.0827 0x1724 [ 7317A0B550F7AC0223B7070897670476, ABB0A1296BA267467C16CF99383EFCAB1732B07EE5B2494197A26B8432DD0A94 ] PCDSRVC{127174DC-C366ED8B-06020101}_0 c:\program files\pc-doctor\pcdsrvc_x64.pkms
23:59:15.0827 0x1724 PCDSRVC{127174DC-C366ED8B-06020101}_0 - ok
23:59:15.0859 0x1724 [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci C:\Windows\system32\drivers\pci.sys
23:59:15.0859 0x1724 pci - ok
23:59:15.0890 0x1724 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide C:\Windows\system32\drivers\pciide.sys
23:59:15.0890 0x1724 pciide - ok
23:59:15.0905 0x1724 [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
23:59:15.0921 0x1724 pcmcia - ok
23:59:15.0937 0x1724 [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw C:\Windows\system32\drivers\pcw.sys
23:59:15.0937 0x1724 pcw - ok
23:59:15.0983 0x1724 [ 946010CDFA91469351B22E2620CEBCD8, F099C92706D42ADC289B72724F7932E5D4F62A427AEC967DDB0A1D728AE59A63 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
23:59:16.0015 0x1724 PEAUTH - ok
23:59:16.0093 0x1724 [ B9B0A4299DD2D76A4243F75FD54DC680, BBF62E9628131FA396EB08D63B76D2D5FBDD61339E92B759125A066470D1C039 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
23:59:16.0155 0x1724 PeerDistSvc - ok
23:59:16.0249 0x1724 [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost C:\Windows\SysWow64\perfhost.exe
23:59:16.0264 0x1724 PerfHost - ok
23:59:16.0327 0x1724 [ 18EEA095AF22AC5FA16FC27FB98C82D3, B9E7D8D7172E873650FB61604F192958E86BE51EDCD22278995F4F0441167E39 ] PHCORE C:\Program Files\Lenovo\RapidBoot\PHCORE64.SYS
23:59:16.0327 0x1724 PHCORE - ok
23:59:16.0389 0x1724 [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla C:\Windows\system32\pla.dll
23:59:16.0436 0x1724 pla - ok
23:59:16.0498 0x1724 [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
23:59:16.0514 0x1724 PlugPlay - ok
23:59:16.0561 0x1724 [ 9A80707D8B6C1806531BFD7399B3CC76, C9996A265B0C461843DECE336314AEDD38D3F0644A8AA4D3F20D3496AD17956B ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
23:59:16.0561 0x1724 Pml Driver HPZ12 - ok
23:59:16.0576 0x1724 [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
23:59:16.0592 0x1724 PNRPAutoReg - ok
23:59:16.0623 0x1724 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
23:59:16.0623 0x1724 PNRPsvc - ok
23:59:16.0670 0x1724 [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
23:59:16.0701 0x1724 PolicyAgent - ok
23:59:16.0717 0x1724 [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power C:\Windows\system32\umpo.dll
23:59:16.0732 0x1724 Power - ok
23:59:16.0779 0x1724 [ 45FFAFD8BF60BC9D48B253F1E466D7A1, 255EB87BF92C24C5FC18AAAE9BDBBDAFCE942DB3C8E47477F48837F699F86410 ] Power Manager DBC Service C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE
23:59:16.0795 0x1724 Power Manager DBC Service - ok
23:59:16.0841 0x1724 [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
23:59:16.0841 0x1724 PptpMiniport - ok
23:59:16.0857 0x1724 [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor C:\Windows\system32\drivers\processr.sys
23:59:16.0857 0x1724 Processor - ok
23:59:16.0904 0x1724 [ B6A58491307B4CADA572583D863DC602, 5C44936605E52C9533E4CE22F18FAB8211475877F71EFD88DA4D02FD608C90A3 ] ProfSvc C:\Windows\system32\profsvc.dll
23:59:16.0904 0x1724 ProfSvc - ok
23:59:16.0919 0x1724 [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] ProtectedStorage C:\Windows\system32\lsass.exe
23:59:16.0919 0x1724 ProtectedStorage - ok
23:59:16.0966 0x1724 [ 515A7C5A0886FCC60901916785EFD549, B9B7C39CDBFC3860752C305433EADBC594AC2EEC66818E91F4AA779915A3A21C ] psadd C:\Windows\system32\DRIVERS\psadd.sys
23:59:16.0966 0x1724 psadd - ok
23:59:16.0997 0x1724 [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched C:\Windows\system32\DRIVERS\pacer.sys
23:59:16.0997 0x1724 Psched - ok
23:59:17.0075 0x1724 [ F036CFB275D0C55F4E45FBBF5F98B3C8, D8D1CA9F65B34A93AB9F7FD9BB6C453B2BF4E8320E620F56055B743DF1D56DE8 ] PSI_SVC_2 C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
23:59:17.0075 0x1724 PSI_SVC_2 - ok
23:59:17.0107 0x1724 [ B397FCCC113E37E1CC97C45956FB5B02, D03CC86AB4029A2131DA8779FD8858DD040D8FAF6BA517FE077A69F8A35D98CD ] PwmEWSvc C:\Program Files (x86)\ThinkPad\Utilities\PWMEWSVC.EXE
23:59:17.0107 0x1724 PwmEWSvc - ok
23:59:17.0185 0x1724 [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
23:59:17.0231 0x1724 ql2300 - ok
23:59:17.0263 0x1724 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
23:59:17.0263 0x1724 ql40xx - ok
23:59:17.0294 0x1724 [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE C:\Windows\system32\qwave.dll
23:59:17.0309 0x1724 QWAVE - ok
23:59:17.0325 0x1724 [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
23:59:17.0325 0x1724 QWAVEdrv - ok
23:59:17.0325 0x1724 [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
23:59:17.0325 0x1724 RasAcd - ok
23:59:17.0372 0x1724 [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
23:59:17.0387 0x1724 RasAgileVpn - ok
23:59:17.0387 0x1724 [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto C:\Windows\System32\rasauto.dll
23:59:17.0403 0x1724 RasAuto - ok
23:59:17.0419 0x1724 [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
23:59:17.0419 0x1724 Rasl2tp - ok
23:59:17.0450 0x1724 [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan C:\Windows\System32\rasmans.dll
23:59:17.0465 0x1724 RasMan - ok
23:59:17.0481 0x1724 [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
23:59:17.0481 0x1724 RasPppoe - ok
23:59:17.0512 0x1724 [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
23:59:17.0512 0x1724 RasSstp - ok
23:59:17.0543 0x1724 [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
23:59:17.0543 0x1724 rdbss - ok
23:59:17.0559 0x1724 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
23:59:17.0559 0x1724 rdpbus - ok
23:59:17.0575 0x1724 [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
23:59:17.0575 0x1724 RDPCDD - ok
23:59:17.0606 0x1724 [ 1B6163C503398B23FF8B939C67747683, 339A5AA7970FF34FAAB213B655860C5B0DEC5F983A4A11A088017D849F320ACE ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
23:59:17.0606 0x1724 RDPDR - ok
23:59:17.0621 0x1724 [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
23:59:17.0621 0x1724 RDPENCDD - ok
23:59:17.0637 0x1724 [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
23:59:17.0637 0x1724 RDPREFMP - ok
23:59:17.0715 0x1724 [ 313F68E1A3E6345A4F47A36B07062F34, B8318A0AE06BDE278931CA52F960B9FE226FD9894B076858DDB755AE26E1E66F ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
23:59:17.0715 0x1724 RdpVideoMiniport - ok
23:59:17.0746 0x1724 [ FE571E088C2D83619D2D48D4E961BF41, 88C5A2FCB1D0E528657842E39963471A6E42FCA3FCDF37955AEC8258AB4C48EA ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
23:59:17.0762 0x1724 RDPWD - ok
23:59:17.0793 0x1724 [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
23:59:17.0793 0x1724 rdyboost - ok
23:59:17.0887 0x1724 [ 189C5A8D2098E0AA14FD157A954B34FC, 2549746D1C6F7FDCB632BE0E7386FA0CDDBA0EA0EC9DD88A8348A03B2C3722E0 ] RegSrvc C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
23:59:17.0902 0x1724 RegSrvc - ok
23:59:17.0918 0x1724 [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess C:\Windows\System32\mprdim.dll
23:59:17.0918 0x1724 RemoteAccess - ok
23:59:17.0949 0x1724 [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry C:\Windows\system32\regsvc.dll
23:59:17.0965 0x1724 RemoteRegistry - ok
23:59:17.0996 0x1724 [ 3DD798846E2C28102B922C56E71B7932, 30B111615D74CB2213997A5C08DD9C8613ADE441D9423CC1C49A753D13CE524D ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
23:59:17.0996 0x1724 RFCOMM - ok
23:59:18.0027 0x1724 [ 819FE65AE1C0312B535B7AA54D30CFDA, 9187453E7ABB8BA9489DBC237BBBDE4B1EA6D69B5AACC0AFA9765BEF502134DC ] risdxc C:\Windows\system32\DRIVERS\risdxc64.sys
23:59:18.0027 0x1724 risdxc - ok
23:59:18.0043 0x1724 [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
23:59:18.0043 0x1724 RpcEptMapper - ok
23:59:18.0074 0x1724 [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator C:\Windows\system32\locator.exe
23:59:18.0074 0x1724 RpcLocator - ok
23:59:18.0105 0x1724 [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] RpcSs C:\Windows\system32\rpcss.dll
23:59:18.0121 0x1724 RpcSs - ok
23:59:18.0183 0x1724 [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
23:59:18.0183 0x1724 rspndr - ok
23:59:18.0230 0x1724 [ EE082E06A82FF630351D1E0EBBD3D8D0, 537F1A4108BDA72E8DD271466E7B7FCF39D4D55E4129AB35A409AB7AF2E7D219 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
23:59:18.0245 0x1724 RTL8167 - ok
23:59:18.0261 0x1724 [ E60C0A09F997826C7627B244195AB581, E8630ED74B38B98BF584E353D992C1311BC36AB7F20A1BB66C9CD65CE1E46F8D ] s3cap C:\Windows\system32\drivers\vms3cap.sys
23:59:18.0261 0x1724 s3cap - ok
23:59:18.0277 0x1724 [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] SamSs C:\Windows\system32\lsass.exe
23:59:18.0277 0x1724 SamSs - ok
23:59:18.0292 0x1724 SAService - ok
23:59:18.0308 0x1724 [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
23:59:18.0308 0x1724 sbp2port - ok
23:59:18.0355 0x1724 [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr C:\Windows\System32\SCardSvr.dll
23:59:18.0370 0x1724 SCardSvr - ok
23:59:18.0370 0x1724 [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
23:59:18.0386 0x1724 scfilter - ok
23:59:18.0417 0x1724 [ 262F6592C3299C005FD6BEC90FC4463A, 54095E37F0B6CC677A3E9BDD40F4647C713273D197DB341063AA7F342A60C4A7 ] Schedule C:\Windows\system32\schedsvc.dll
23:59:18.0464 0x1724 Schedule - ok
23:59:18.0495 0x1724 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc C:\Windows\System32\certprop.dll
23:59:18.0495 0x1724 SCPolicySvc - ok
23:59:18.0526 0x1724 [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC C:\Windows\System32\SDRSVC.dll
23:59:18.0526 0x1724 SDRSVC - ok
23:59:18.0542 0x1724 [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\Windows\system32\drivers\secdrv.sys
23:59:18.0542 0x1724 secdrv - ok
23:59:18.0573 0x1724 [ BC617A4E1B4FA8DF523A061739A0BD87, 10C4057F6B321EB5237FF619747B74F5401BC17D15A8C7060829E8204A2297F9 ] seclogon C:\Windows\system32\seclogon.dll
23:59:18.0573 0x1724 seclogon - ok
23:59:18.0589 0x1724 [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS C:\Windows\System32\sens.dll
23:59:18.0589 0x1724 SENS - ok
23:59:18.0604 0x1724 [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc C:\Windows\system32\sensrsvc.dll
23:59:18.0604 0x1724 SensrSvc - ok
23:59:18.0635 0x1724 [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum C:\Windows\system32\drivers\serenum.sys
23:59:18.0635 0x1724 Serenum - ok
23:59:18.0682 0x1724 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial C:\Windows\system32\drivers\serial.sys
23:59:18.0682 0x1724 Serial - ok
23:59:18.0682 0x1724 [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse C:\Windows\system32\drivers\sermouse.sys
23:59:18.0682 0x1724 sermouse - ok
23:59:18.0713 0x1724 [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv C:\Windows\system32\sessenv.dll
23:59:18.0729 0x1724 SessionEnv - ok
23:59:18.0729 0x1724 [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
23:59:18.0729 0x1724 sffdisk - ok
23:59:18.0745 0x1724 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
23:59:18.0745 0x1724 sffp_mmc - ok
23:59:18.0745 0x1724 [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
23:59:18.0745 0x1724 sffp_sd - ok
23:59:18.0760 0x1724 [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
23:59:18.0776 0x1724 sfloppy - ok
23:59:18.0807 0x1724 [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess C:\Windows\System32\ipnathlp.dll
23:59:18.0807 0x1724 SharedAccess - ok
23:59:18.0838 0x1724 [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
23:59:18.0854 0x1724 ShellHWDetection - ok
23:59:18.0885 0x1724 [ C3F190562FE82EFDA7CCEF305EBAD3E3, BE809035A9B11945B3BB630F73A7651BBD4D1EA2091060378BCF7AD20003BBE4 ] Shockprf C:\Windows\system32\DRIVERS\Apsx64.sys
23:59:18.0901 0x1724 Shockprf - ok
23:59:18.0901 0x1724 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
23:59:18.0901 0x1724 SiSRaid2 - ok
23:59:18.0901 0x1724 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
23:59:18.0916 0x1724 SiSRaid4 - ok
23:59:18.0963 0x1724 [ 050A4112B00BCA2E13314CDE48C1DEEE, 86C679CD494DEEB984372BF954EFBB8982AC7995FBF89FCF83BC228991D1B825 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
23:59:18.0963 0x1724 SkypeUpdate - ok
23:59:18.0979 0x1724 [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb C:\Windows\system32\DRIVERS\smb.sys
23:59:18.0979 0x1724 Smb - ok
23:59:19.0025 0x1724 [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
23:59:19.0041 0x1724 SNMPTRAP - ok
23:59:19.0041 0x1724 [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr C:\Windows\system32\drivers\spldr.sys
23:59:19.0057 0x1724 spldr - ok
23:59:19.0103 0x1724 [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler C:\Windows\System32\spoolsv.exe
23:59:19.0119 0x1724 Spooler - ok
23:59:19.0228 0x1724 [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc C:\Windows\system32\sppsvc.exe
23:59:19.0337 0x1724 sppsvc - ok
23:59:19.0369 0x1724 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify C:\Windows\system32\sppuinotify.dll
23:59:19.0369 0x1724 sppuinotify - ok
23:59:19.0415 0x1724 [ 441FBA48BFF01FDB9D5969EBC1838F0B, 306128F1AD489F87161A089D1BDC1542A4CB742D91A0C12A7CD1863FDB8932C0 ] srv C:\Windows\system32\DRIVERS\srv.sys
23:59:19.0415 0x1724 srv - ok
23:59:19.0447 0x1724 [ B4ADEBBF5E3677CCE9651E0F01F7CC28, 726DB2283113AB2A9681E8E9F61132303D6D86E9CD034C40EE4A8C9DB29E87F7 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
23:59:19.0462 0x1724 srv2 - ok
23:59:19.0478 0x1724 [ 27E461F0BE5BFF5FC737328F749538C3, AFA4704ED8FFC1A0BAB40DFB81D3AE3F3D933A3C9BF54DDAF39FF9AF3646D9E6 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
23:59:19.0493 0x1724 srvnet - ok
23:59:19.0525 0x1724 [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
23:59:19.0540 0x1724 SSDPSRV - ok
23:59:19.0556 0x1724 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc C:\Windows\system32\sstpsvc.dll
23:59:19.0556 0x1724 SstpSvc - ok
23:59:19.0587 0x1724 [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor C:\Windows\system32\drivers\stexstor.sys
23:59:19.0603 0x1724 stexstor - ok
23:59:19.0618 0x1724 [ DECACB6921DED1A38642642685D77DAC, 1633711CE973F818EBCCCA28538772431167C33ECDD44D1E846A9436598B52DC ] StillCam C:\Windows\system32\DRIVERS\serscan.sys
23:59:19.0634 0x1724 StillCam - ok
23:59:19.0665 0x1724 [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc C:\Windows\System32\wiaservc.dll
23:59:19.0696 0x1724 stisvc - ok
23:59:19.0727 0x1724 [ 7785DC213270D2FC066538DAF94087E7, F09CB2895241719CA5147B2EE9F7ECBD0303AFFB5CD896F06D4D29BAAAFC207B ] storflt C:\Windows\system32\drivers\vmstorfl.sys
23:59:19.0727 0x1724 storflt - ok
23:59:19.0743 0x1724 [ C40841817EF57D491F22EB103DA587CC, 5FAA2DE43BADC16A898C0C290C44C41E4411D919A95FE8C6FF45EA7A34495079 ] StorSvc C:\Windows\system32\storsvc.dll
23:59:19.0759 0x1724 StorSvc - ok
23:59:19.0790 0x1724 [ D34E4943D5AC096C8EDEEBFD80D76E23, 1DD7F6F97060B5F763A04ACA1F75E59DAB09EF824FD09B83FC3C192837D006DE ] storvsc C:\Windows\system32\drivers\storvsc.sys
23:59:19.0790 0x1724 storvsc - ok
23:59:19.0805 0x1724 [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
23:59:19.0805 0x1724 swenum - ok
23:59:19.0837 0x1724 [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv C:\Windows\System32\swprv.dll
23:59:19.0852 0x1724 swprv - ok
23:59:19.0915 0x1724 [ AEAE48AF681BAF5904608FF5D84E3C9C, 39B362E9E64A43B9AF5CCE2E704CCAE5E10B5BA0B45E535098BC0E40A4F772A8 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
23:59:19.0930 0x1724 SynTP - ok
23:59:19.0993 0x1724 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D, 3C13217548BE61F2BDB8BD41F77345CDDA1F97BF0AE17241C335B9807EB3DBB8 ] SysMain C:\Windows\system32\sysmain.dll
23:59:20.0055 0x1724 SysMain - ok
23:59:20.0086 0x1724 [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll
23:59:20.0086 0x1724 TabletInputService - ok
23:59:20.0117 0x1724 [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv C:\Windows\System32\tapisrv.dll
23:59:20.0117 0x1724 TapiSrv - ok
23:59:20.0133 0x1724 [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS C:\Windows\System32\tbssvc.dll
23:59:20.0133 0x1724 TBS - ok
23:59:20.0227 0x1724 [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
23:59:20.0273 0x1724 Tcpip - ok
23:59:20.0351 0x1724 [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
23:59:20.0383 0x1724 TCPIP6 - ok
23:59:20.0414 0x1724 [ 1B16D0BD9841794A6E0CDE0CEF744ABC, 7EB8BA97339199EEE7F2B09DA2DA6279DA64A510D4598D42CF86415D67CD674C ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
23:59:20.0414 0x1724 tcpipreg - ok
23:59:20.0445 0x1724 [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
23:59:20.0445 0x1724 TDPIPE - ok
23:59:20.0476 0x1724 [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
23:59:20.0476 0x1724 TDTCP - ok
23:59:20.0507 0x1724 [ 70988118145F5F10EF24720B97F35F65, F80C806417A68047FFB3D63214BC4AE5445315219AC594E043293006B704A63D ] tdx C:\Windows\system32\DRIVERS\tdx.sys
23:59:20.0507 0x1724 tdx - ok
23:59:20.0523 0x1724 [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
23:59:20.0523 0x1724 TermDD - ok
23:59:20.0570 0x1724 [ 008CD4EBFABCF78D0F19B3778492648C, 9050490EEE0AD86E73F0A82D83E4FC29DF84F6B6FDB389AE135FD712B5F425BE ] TermService C:\Windows\System32\termsrv.dll
23:59:20.0601 0x1724 TermService - ok
23:59:20.0632 0x1724 [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes C:\Windows\system32\themeservice.dll
23:59:20.0632 0x1724 Themes - ok
23:59:20.0663 0x1724 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER C:\Windows\system32\mmcss.dll
23:59:20.0663 0x1724 THREADORDER - ok
23:59:20.0695 0x1724 [ 1BB77ECCBFA3675B1EE8D6D6D37A1E1E, 6C22ED2FC9FF1EDFAFFA9C5F89A65D348B45F0087885401D056D6448F56F97AF ] TPDIGIMN C:\Windows\system32\DRIVERS\ApsHM64.sys
23:59:20.0695 0x1724 TPDIGIMN - ok
23:59:20.0726 0x1724 [ 88F81D810FF16AC65B02643DAF308D4F, FDD4AFD1836D2CB528F92A788CEEC0D7800CC18B861E7D7601DA69543F0AD315 ] TPHDEXLGSVC C:\Windows\system32\TPHDEXLG64.exe
23:59:20.0726 0x1724 TPHDEXLGSVC - ok
23:59:20.0804 0x1724 [ 2670D23A61CD706004C24A83D4D48294, 4A7740E8D6E00AD7C27FFB1BD2AD33F7880F35BF4AA29B186A60983AE78DEB6F ] TPHKLOAD C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe
23:59:20.0804 0x1724 TPHKLOAD - ok
23:59:20.0804 0x1724 [ CB0625C2F5B7C72C50C5AE34F8E8F7D0, 301BA79C4CA350EB9CFC083B69D830C27B3298DD23ADC986D002B4C58BD6DBAD ] TPHKSVC C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe
23:59:20.0819 0x1724 TPHKSVC - ok
23:59:20.0835 0x1724 [ DBCC20C02E8A3E43B03C304A4E40A84F, BF5F3ACCB0342304A6870E94D2576644B08DBF307C853C7DBA4B82B0C7309DA4 ] TPM C:\Windows\system32\drivers\tpm.sys
23:59:20.0835 0x1724 TPM - ok
23:59:20.0866 0x1724 [ 7165B5A9B4867F64A6D6935F57D4196B, 716BF044005E11A84D2B114E4DBCDA390C7842EBD4B6E8FA710D2D002BAE09DC ] TPPWRIF C:\Windows\system32\drivers\Tppwr64v.sys
23:59:20.0866 0x1724 TPPWRIF - ok
23:59:20.0897 0x1724 [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks C:\Windows\System32\trkwks.dll
23:59:20.0897 0x1724 TrkWks - ok
23:59:20.0944 0x1724 [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
23:59:20.0960 0x1724 TrustedInstaller - ok
23:59:20.0991 0x1724 [ E232A3B43A894BB327FC161529BD9ED1, F2673DA8C920F21ACCECC25F7C59A05822E5E577D47F126EDF9C94FEB4B30C5F ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
23:59:20.0991 0x1724 tssecsrv - ok
23:59:21.0022 0x1724 [ E9981ECE8D894CEF7038FD1D040EB426, DCDDCE933CAECE8180A3447199B07F2F0413704EEC1A09606EE357901A84A7CF ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
23:59:21.0022 0x1724 TsUsbFlt - ok
23:59:21.0038 0x1724 [ AD64450A4ABE076F5CB34CC08EEACB07, B5C386635441A19178E7FEEE299BA430C8D72F9110866C13A216B12A1080AD12 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
23:59:21.0053 0x1724 TsUsbGD - ok
23:59:21.0085 0x1724 [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
23:59:21.0085 0x1724 tunnel - ok
23:59:21.0100 0x1724 [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
23:59:21.0116 0x1724 uagp35 - ok
23:59:21.0116 0x1724 [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
23:59:21.0131 0x1724 udfs - ok
23:59:21.0163 0x1724 [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect C:\Windows\system32\UI0Detect.exe
23:59:21.0163 0x1724 UI0Detect - ok
23:59:21.0225 0x1724 [ BE788A747457E6916586C410EC0111E7, 525F9065270AF40FED854C5B3C7E690783F5169C2F9286EE225F6C817ED1E237 ] UleadBurningHelper C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
23:59:21.0225 0x1724 UleadBurningHelper - ok
23:59:21.0241 0x1724 [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
23:59:21.0256 0x1724 uliagpkx - ok
23:59:21.0272 0x1724 [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus C:\Windows\system32\DRIVERS\umbus.sys
23:59:21.0272 0x1724 umbus - ok
23:59:21.0287 0x1724 [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass C:\Windows\system32\drivers\umpass.sys
23:59:21.0287 0x1724 UmPass - ok
23:59:21.0303 0x1724 [ A293DCD756D04D8492A750D03B9A297C, 203600ED0B7F8BA4C6D6F4ED810F4DF5AB70928B06EC4131C5D8ADF628444ED1 ] UmRdpService C:\Windows\System32\umrdp.dll
23:59:21.0319 0x1724 UmRdpService - ok
23:59:21.0459 0x1724 [ E91F8AFBD7FB96C94B266579D6BFA77A, 1931FA7C575DCC2FDDF4A8B88FC2718355539049A370985E7CF8906A389C4864 ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
23:59:21.0537 0x1724 UNS - ok
23:59:21.0568 0x1724 [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost C:\Windows\System32\upnphost.dll
23:59:21.0584 0x1724 upnphost - ok
23:59:21.0615 0x1724 [ B0435098C81D04CAFFF80DDB746CD3A2, A17B207740382E38729571F0B0BC98FF874E856A7C7CE9EB930328A2AD88F52A ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
23:59:21.0615 0x1724 usbaudio - ok
23:59:21.0646 0x1724 [ DCA68B0943D6FA415F0C56C92158A83A, BEE5A5B33B22D1DF50B884D46D89FC3B8286EB16E38AD5A20F0A49E5C6766C57 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
23:59:21.0646 0x1724 usbccgp - ok
23:59:21.0677 0x1724 [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir C:\Windows\system32\drivers\usbcir.sys
23:59:21.0677 0x1724 usbcir - ok
23:59:21.0693 0x1724 [ 18A85013A3E0F7E1755365D287443965, 811C5EDF38C765BCF71BCE25CB6626FF6988C3699F5EF1846240EA0052F34C33 ] usbehci C:\Windows\system32\drivers\usbehci.sys
23:59:21.0709 0x1724 usbehci - ok
23:59:21.0740 0x1724 [ 8D1196CFBB223621F2C67D45710F25BA, B5D7AFE51833B24FC9576F3AED3D8A2B290E5846060E73F9FFFAC1890A8B6003 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
23:59:21.0755 0x1724 usbhub - ok
23:59:21.0771 0x1724 [ 765A92D428A8DB88B960DA5A8D6089DC, 56DE8A2ED58E53B202C399CA7BACB1551136303C2EE0AB426BDBBF880E3C542C ] usbohci C:\Windows\system32\drivers\usbohci.sys
23:59:21.0771 0x1724 usbohci - ok
23:59:21.0802 0x1724 [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
23:59:21.0802 0x1724 usbprint - ok
23:59:21.0818 0x1724 [ FED648B01349A3C8395A5169DB5FB7D6, DC4D7594C24ADD076927B9347F1B50B91CF03A4ABDB284248D5711D9C19DEB96 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
23:59:21.0818 0x1724 USBSTOR - ok
23:59:21.0833 0x1724 [ DD253AFC3BC6CBA412342DE60C3647F3, 146F8613F1057AC054DC3593E84BC52899DA27EA33B0E72ACFB78C3699ADCDE7 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
23:59:21.0833 0x1724 usbuhci - ok
23:59:21.0880 0x1724 [ 1F775DA4CF1A3A1834207E975A72E9D7, 6D3DE5BD3EF3A76E997E5BAF900C51D25308F5A9682D1F62017F577A24095B90 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
23:59:21.0880 0x1724 usbvideo - ok
23:59:21.0911 0x1724 [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms C:\Windows\System32\uxsms.dll
23:59:21.0927 0x1724 UxSms - ok
23:59:21.0927 0x1724 [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] VaultSvc C:\Windows\system32\lsass.exe
23:59:21.0943 0x1724 VaultSvc - ok
23:59:21.0974 0x1724 [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
23:59:21.0974 0x1724 vdrvroot - ok
23:59:22.0005 0x1724 [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds C:\Windows\System32\vds.exe
23:59:22.0036 0x1724 vds - ok
23:59:22.0067 0x1724 [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
23:59:22.0083 0x1724 vga - ok
23:59:22.0083 0x1724 [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave C:\Windows\System32\drivers\vga.sys
23:59:22.0083 0x1724 VgaSave - ok
23:59:22.0114 0x1724 [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
23:59:22.0114 0x1724 vhdmp - ok
23:59:22.0145 0x1724 [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide C:\Windows\system32\drivers\viaide.sys
23:59:22.0145 0x1724 viaide - ok
23:59:22.0208 0x1724 [ 6AD85F32EA4AA65BB2EA652F2B9D4005, 62AAFB48611C8F9DDBB5664AD60F63673D0A7B54C2572F6905E168683E5689B2 ] VIPAppService C:\Program Files (x86)\Symantec\VIP Access Client\VIPAppService.exe
23:59:22.0208 0x1724 VIPAppService - ok
23:59:22.0223 0x1724 [ 86EA3E79AE350FEA5331A1303054005F, 7E7D6027EB41E591633C7383A5D29A3BA8ECFC08C177D2BCF741EE27686B1691 ] vmbus C:\Windows\system32\drivers\vmbus.sys
23:59:22.0223 0x1724 vmbus - ok
23:59:22.0223 0x1724 [ 7DE90B48F210D29649380545DB45A187, 09522F84285D62B961868DA98C40B82E746CA4D24A9780905673A2349D6B07F4 ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
23:59:22.0223 0x1724 VMBusHID - ok
23:59:22.0255 0x1724 [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr C:\Windows\system32\drivers\volmgr.sys
23:59:22.0255 0x1724 volmgr - ok
23:59:22.0270 0x1724 [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
23:59:22.0286 0x1724 volmgrx - ok
23:59:22.0317 0x1724 [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap C:\Windows\system32\drivers\volsnap.sys
23:59:22.0317 0x1724 volsnap - ok
23:59:22.0348 0x1724 [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
23:59:22.0364 0x1724 vsmraid - ok
23:59:22.0442 0x1724 [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS C:\Windows\system32\vssvc.exe
23:59:22.0489 0x1724 VSS - ok
23:59:22.0520 0x1724 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
23:59:22.0520 0x1724 vwifibus - ok
23:59:22.0535 0x1724 [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
23:59:22.0535 0x1724 vwififlt - ok
23:59:22.0551 0x1724 [ 6A638FC4BFDDC4D9B186C28C91BD1A01, 5521F1DC515586777EC4837E0AEAA3E613CC178AF1074031C4D0D0C695A93168 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys
23:59:22.0551 0x1724 vwifimp - ok
23:59:22.0582 0x1724 [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time C:\Windows\system32\w32time.dll
23:59:22.0582 0x1724 W32Time - ok
23:59:22.0629 0x0814 Object required for P2P: [ D7921D5A870B11CC1ADAB198A519D50A ] iaStor
23:59:22.0645 0x1724 [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
23:59:22.0645 0x1724 WacomPen - ok
23:59:22.0691 0x1724 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
23:59:22.0691 0x1724 WANARP - ok
23:59:22.0707 0x1724 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
23:59:22.0707 0x1724 Wanarpv6 - ok
23:59:22.0785 0x1724 [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine C:\Windows\system32\wbengine.exe
23:59:22.0847 0x1724 wbengine - ok
23:59:22.0879 0x1724 [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
23:59:22.0879 0x1724 WbioSrvc - ok
23:59:22.0910 0x1724 [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc C:\Windows\System32\wcncsvc.dll
23:59:22.0910 0x1724 wcncsvc - ok
23:59:22.0925 0x1724 [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
23:59:22.0941 0x1724 WcsPlugInService - ok
23:59:22.0972 0x1724 [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd C:\Windows\system32\drivers\wd.sys
23:59:22.0972 0x1724 Wd - ok
23:59:23.0019 0x1724 [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
23:59:23.0050 0x1724 Wdf01000 - ok
23:59:23.0097 0x1724 [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiServiceHost C:\Windows\system32\wdi.dll
23:59:23.0097 0x1724 WdiServiceHost - ok
23:59:23.0113 0x1724 [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiSystemHost C:\Windows\system32\wdi.dll
23:59:23.0113 0x1724 WdiSystemHost - ok
23:59:23.0144 0x1724 [ 5E1640435DD54D00451156CA5340B109, 414044DAA1ACA5161CEF9D48F9796B1C10E350C187A1CE0703E432E9D6248259 ] wdkmd C:\Windows\system32\DRIVERS\WDKMD.sys
23:59:23.0144 0x1724 wdkmd - ok
23:59:23.0175 0x1724 [ 0EB0E5D22B1760F2DBCE632F2DD7A54D, B8A4CC62F88768947FB0A161CF9564DB28FD9C1C037B5475DF192982DE035C22 ] WebClient C:\Windows\System32\webclnt.dll
23:59:23.0191 0x1724 WebClient - ok
23:59:23.0206 0x1724 [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc C:\Windows\system32\wecsvc.dll
23:59:23.0222 0x1724 Wecsvc - ok
23:59:23.0237 0x1724 [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport C:\Windows\System32\wercplsupport.dll
23:59:23.0237 0x1724 wercplsupport - ok
23:59:23.0269 0x1724 [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc C:\Windows\System32\WerSvc.dll
23:59:23.0269 0x1724 WerSvc - ok
23:59:23.0315 0x1724 [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
23:59:23.0315 0x1724 WfpLwf - ok
23:59:23.0331 0x1724 [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount C:\Windows\system32\drivers\wimmount.sys
23:59:23.0331 0x1724 WIMMount - ok
23:59:23.0362 0x1724 WinDefend - ok
23:59:23.0378 0x1724 WinHttpAutoProxySvc - ok
23:59:23.0440 0x1724 [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
23:59:23.0440 0x1724 Winmgmt - ok
23:59:23.0534 0x1724 [ D929ABD465A2DED963DA8B30946A8D5C, DE8DBFB01C11D2AE903CBD6A974D6F995E9813CE2D6484B7DA06EAE4C545842A ] WinRM C:\Windows\system32\WsmSvc.dll
23:59:23.0596 0x1724 WinRM - ok
23:59:23.0659 0x1724 [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
23:59:23.0659 0x1724 WinUsb - ok
23:59:23.0705 0x1724 [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc C:\Windows\System32\wlansvc.dll
23:59:23.0737 0x1724 Wlansvc - ok
23:59:23.0783 0x1724 [ 06C8FA1CF39DE6A735B54D906BA791C6, D8FEC7DE227781CDA876904701B2AA995268F74DCD6CB34AA0296C557FC283B6 ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
23:59:23.0783 0x1724 wlcrasvc - ok
23:59:23.0908 0x1724 [ 7E47C328FC4768CB8BEAFBCFAFA70362, C98BD6A0C2F70E069D5FD3BAB31BD028DFEAC0490D180BBC28A14BE375897D8C ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
23:59:23.0955 0x1724 wlidsvc - ok
23:59:24.0017 0x1724 [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
23:59:24.0017 0x1724 WmiAcpi - ok
23:59:24.0049 0x1724 [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
23:59:24.0049 0x1724 wmiApSrv - ok
23:59:24.0080 0x1724 WMPNetworkSvc - ok
23:59:24.0111 0x1724 [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc C:\Windows\System32\wpcsvc.dll
23:59:24.0111 0x1724 WPCSvc - ok
23:59:24.0127 0x1724 [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
23:59:24.0127 0x1724 WPDBusEnum - ok
23:59:24.0158 0x1724 [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
23:59:24.0158 0x1724 ws2ifsl - ok
23:59:24.0173 0x1724 [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc C:\Windows\System32\wscsvc.dll
23:59:24.0173 0x1724 wscsvc - ok
23:59:24.0189 0x1724 WSearch - ok
23:59:24.0298 0x1724 [ 61FF576450CCC80564B850BC3FB6713A, B2843BC9E2F62D27DCF6787D063378926748CE75002BADA1873DCB5039883705 ] wuauserv C:\Windows\system32\wuaueng.dll
23:59:24.0376 0x1724 wuauserv - ok
23:59:24.0407 0x1724 [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
23:59:24.0407 0x1724 WudfPf - ok
23:59:24.0439 0x1724 [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
23:59:24.0439 0x1724 WUDFRd - ok
23:59:24.0485 0x1724 [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
23:59:24.0485 0x1724 wudfsvc - ok
23:59:24.0517 0x1724 [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc C:\Windows\System32\wwansvc.dll
23:59:24.0532 0x1724 WwanSvc - ok
23:59:24.0579 0x1724 ================ Scan global ===============================
23:59:24.0610 0x1724 [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\system32\basesrv.dll
23:59:24.0626 0x1724 [ 88EDD0B34EED542745931E581AD21A32, DC2B93E1CEF5B0BCEE08D72669BB0F3AD0E8E6E75BDC08858407ED92F6FFA031 ] C:\Windows\system32\winsrv.dll
23:59:24.0657 0x1724 [ 88EDD0B34EED542745931E581AD21A32, DC2B93E1CEF5B0BCEE08D72669BB0F3AD0E8E6E75BDC08858407ED92F6FFA031 ] C:\Windows\system32\winsrv.dll
23:59:24.0688 0x1724 [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll
23:59:24.0719 0x1724 [ 24ACB7E5BE595468E3B9AA488B9B4FCB, 63541E3432FCE953F266AE553E7A394978D6EE3DB52388D885F668CF42C5E7E2 ] C:\Windows\system32\services.exe
23:59:24.0735 0x1724 [ Global ] - ok
23:59:24.0735 0x1724 ================ Scan MBR ==================================
23:59:24.0751 0x1724 [ E76FA47A20E5A3A815F1426F4127390F ] \Device\Harddisk0\DR0
23:59:25.0094 0x1724 \Device\Harddisk0\DR0 - ok
23:59:25.0094 0x1724 ================ Scan VBR ==================================
23:59:25.0109 0x1724 [ 00DDA61FC76A92C031CBC41A97CBC99A ] \Device\Harddisk0\DR0\Partition1
23:59:25.0109 0x1724 \Device\Harddisk0\DR0\Partition1 - ok
23:59:25.0109 0x1724 [ 4BA402D4467AE4BEA5BFBA9DF357B8C9 ] \Device\Harddisk0\DR0\Partition2
23:59:25.0109 0x1724 \Device\Harddisk0\DR0\Partition2 - ok
23:59:25.0109 0x1724 [ FFDEDC635550AE99685C277F012EA9C4 ] \Device\Harddisk0\DR0\Partition3
23:59:25.0109 0x1724 \Device\Harddisk0\DR0\Partition3 - ok
23:59:25.0109 0x1724 ================ Scan generic autorun ======================
23:59:25.0187 0x0814 Object send P2P result: true
23:59:25.0203 0x1724 [ 23E6E5C5061A44C32E9922B4AF22D895, B166E2DB3E9C2B8234CEE3B001D63BFFC4F41635455016DD54CD0F03B08410A0 ] C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
23:59:25.0203 0x0814 Object required for P2P: [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport
23:59:25.0234 0x1724 IntelWireless - ok
23:59:25.0250 0x1724 [ 2508FA41A1B58C97D94FFF044111492F, 656AC5EC110C5F8CE68CE1962D6B2CBD47EE6CE20A181C88BB1E5481793F0578 ] C:\Windows\system32\TpShocks.exe
23:59:25.0265 0x1724 TpShocks - ok
23:59:25.0343 0x1724 [ 0E4E9AE5F9BEF9883F01F2A0E3742934, 1A86BFA480B4346426E86A8EDA15ABA2645476C5418BF4CD0661046B796A20D1 ] C:\Program Files\CONEXANT\SAII\SAIICpl.exe
23:59:25.0343 0x1724 SmartAudio - ok
23:59:25.0359 0x1724 [ 42361B4BD80768E82B80285851037665, A555A6BF8016645B838FEA993AD273D1F472586F3600619DC243B1C33438FA07 ] C:\Program Files\Conexant\ForteConfig\fmapp.exe
23:59:25.0359 0x1724 ForteConfig - ok
23:59:25.0390 0x1724 [ C48A6FCEF9CE8BCE3BA0D486C0FED950, 86BBAC0E956F0E54345B097E347C9D4A05198325956361B8449B8AC2E1BB2716 ] C:\Windows\system32\igfxtray.exe
23:59:25.0390 0x1724 IgfxTray - ok
23:59:25.0437 0x1724 [ 3DE53AEB74CA9C2955349DCFFCD677F4, 38FD602B16ED5A4BA44161D17243A260D5510B98F86E2D271DACCA9AE8D81E5D ] C:\Windows\system32\hkcmd.exe
23:59:25.0437 0x1724 HotKeysCmds - ok
23:59:25.0453 0x1724 [ 475EE62C77A778A0AD24DA5A7231DECE, DC24882EA7176A1ED9A048896514854CA22EE28C4E797D5AFEEDA6EEAA0B025D ] C:\Windows\system32\igfxpers.exe
23:59:25.0468 0x1724 Persistence - ok
23:59:25.0499 0x1724 [ DE286A742DB9B4E37EF5FA2D9BDF1BE6, D9A2CDE82A3C496FCB8961914CFFDA2E173B2581B010E072D8F47347BCB4AC9B ] C:\Program Files\Lenovo\Communications Utility\TPKNRRES.exe
23:59:25.0499 0x1724 LENOVO.TPKNRRES - ok
23:59:25.0546 0x1724 [ A986119F5DB7983176C952B7082D2987, 0CFEF5D598C0DBD0ECD1490475A6445B2ADB370302583F5FB491697D5B6602CF ] C:\Program Files\Lenovo\AutoLock\ALCKRESI.EXE
23:59:25.0546 0x1724 ALCKRESI.EXE - ok
23:59:25.0609 0x1724 [ 39CF316EB5842AE27CC0D3CC4E2840DE, BC4D4ED926F988B7B70CC87B7EC92D148DA6BC39C5C514751F1B0CA69D0F9081 ] C:\Program Files\Microsoft Office\Office14\BCSSync.exe
23:59:25.0609 0x1724 BCSSync - ok
23:59:25.0609 0x1724 SynTPEnh - ok
23:59:25.0655 0x1724 [ 0307536FD43CC7BFB92F9DAC8DB913F1, 6C8BEDA4ADFBEF28E647B39B3EEA37A20BFE5C93C7EDA79471EFB46156197843 ] C:\Program Files (x86)\Integrated Camera Driver\X64\RCIMGDIR.exe
23:59:25.0655 0x1724 RotateImage - ok
23:59:25.0733 0x1724 [ AE04ACCE2CC8395A4CAECFFC8AAA1E39, 6A97C5C3B7F84EC046EF65702065BC56199A1E7E2E6E90AB7EC8EC5F2F02F080 ] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
23:59:25.0733 0x1724 StartCCC - ok
23:59:25.0749 0x1724 PWMTRV - ok
23:59:25.0921 0x1724 [ C8BD6D2BD6D52259C2A672A86AA26A51, B790812B7B2A6BBEAD46E78D97358F7135386BDA8C95C8E936BE55286C8492D7 ] C:\Program Files (x86)\Lenovo Registration\LenovoReg.exe
23:59:25.0983 0x1724 Lenovo Registration - ok
23:59:26.0201 0x1724 [ 44ADDA5FB88EE14F57A246285775AC2F, 2776225BA9F22C553453541DA0285E093B4F2019DB6FE640D033BA45045299C8 ] C:\Program Files\AVAST Software\Avast\AvastUI.exe
23:59:26.0357 0x1724 AvastUI.exe - ok
23:59:26.0451 0x1724 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
23:59:26.0498 0x1724 Sidebar - ok
23:59:26.0529 0x1724 [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe
23:59:26.0529 0x1724 mctadmin - ok
23:59:26.0560 0x1724 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
23:59:26.0576 0x1724 Sidebar - ok
23:59:26.0576 0x1724 [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe
23:59:26.0591 0x1724 mctadmin - ok
23:59:26.0638 0x1724 [ 7DFCCC67990B6DE7F30F553A4E4612A4, 9FF98D6FD2539CEFC9F42103A7F72388BED6EE590400559B92BC7430228DA36A ] C:\Program Files (x86)\RocketDock\RocketDock.exe
23:59:26.0638 0x1724 RocketDock - ok
23:59:26.0919 0x1724 [ B2BAE2D76FBE9FDC3F6E0D1F886DF367, 964EBF736891BE252C68FCE1F9EAD5E60E6E0C2119D21C6DF49FBD30FBB678EF ] C:\Program Files\CCleaner\CCleaner64.exe
23:59:27.0044 0x1724 CCleaner Monitoring - ok
23:59:27.0044 0x1724 Waiting for KSN requests completion. In queue: 199
23:59:28.0058 0x1724 Waiting for KSN requests completion. In queue: 199
23:59:29.0072 0x1724 Waiting for KSN requests completion. In queue: 199
23:59:30.0055 0x04a8 Object required for P2P: [ 70988118145F5F10EF24720B97F35F65 ] tdx
23:59:30.0086 0x1724 Waiting for KSN requests completion. In queue: 184
23:59:31.0100 0x1724 Waiting for KSN requests completion. In queue: 184
23:59:32.0114 0x1724 Waiting for KSN requests completion. In queue: 184
23:59:32.0535 0x04a8 Object send P2P result: true
23:59:32.0551 0x04a8 Object required for P2P: [ C749025A679C5103E575E3B48E092C43 ] Wecsvc
23:59:33.0128 0x1724 Waiting for KSN requests completion. In queue: 116
23:59:34.0142 0x1724 Waiting for KSN requests completion. In queue: 116
23:59:35.0047 0x04a8 Object send P2P result: true
23:59:35.0156 0x1724 Waiting for KSN requests completion. In queue: 74
23:59:36.0170 0x1724 Waiting for KSN requests completion. In queue: 74
23:59:37.0184 0x1724 Waiting for KSN requests completion. In queue: 74
23:59:38.0198 0x1724 Waiting for KSN requests completion. In queue: 74
23:59:39.0212 0x1724 Waiting for KSN requests completion. In queue: 74
23:59:40.0226 0x1724 Waiting for KSN requests completion. In queue: 74
23:59:41.0240 0x1724 Waiting for KSN requests completion. In queue: 74
23:59:42.0254 0x1724 Waiting for KSN requests completion. In queue: 74
23:59:43.0268 0x1724 Waiting for KSN requests completion. In queue: 74
23:59:44.0282 0x1724 Waiting for KSN requests completion. In queue: 74
23:59:45.0218 0x0814 Object send P2P result: false
23:59:45.0343 0x1724 AV detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 10.0.2208.712 ), 0x41000 ( enabled : updated )
23:59:45.0343 0x1724 Win FW state via NFP2: enabled
23:59:47.0808 0x1724 ============================================================
23:59:47.0808 0x1724 Scan finished
23:59:47.0808 0x1724 ============================================================
23:59:47.0808 0x1428 Detected object count: 0
23:59:47.0808 0x1428 Actual detected object count: 0

________________________________________________________________________
Zusätzlich der MBAM Report:

Malwarebytes Anti-Malware
Malwarebytes | Free Anti-Malware & Internet Security Software

Scan Date: 04.02.2015
Scan Time: 21:34:55
Logfile: Neues Textdokument.txt
Administrator: Yes

Version: 2.00.4.1028
Malware Database: v2015.02.04.10
Rootkit Database: v2015.02.03.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: XXXX

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 341105
Time Elapsed: 13 min, 25 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)


(end)


Ich bin über jede Hilfe sehr Dankebar!!!
Werden weitere Reports benötigt?

Vielen Dank bereits vorab!
__________________

Alt 05.02.2015, 09:26   #4
schrauber
/// the machine
/// TB-Ausbilder
 

Win32:rootkit-gen [RtK] durch Avast gefunden. - Standard

Win32:rootkit-gen [RtK] durch Avast gefunden.



Das ist ein Fehlalarm von Avast.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 05.02.2015, 13:24   #5
tjk
 
Win32:rootkit-gen [RtK] durch Avast gefunden. - Standard

Win32:rootkit-gen [RtK] durch Avast gefunden.



Ok gut. Vielen Dank für die schnelle Rückmeldung!

Hat mich auch gewundert, dass im Grunde nichts gefunden wurde.

Mich hat nur beunruhigt, dass in vielen Beiträgen explizit vor diesem Win32:rootkit-gen [RtK] gewarnt wurde....

Gruß


Alt 05.02.2015, 16:57   #6
schrauber
/// the machine
/// TB-Ausbilder
 

Win32:rootkit-gen [RtK] durch Avast gefunden. - Standard

Win32:rootkit-gen [RtK] durch Avast gefunden.



Ja, ein Rootkit ansich is auch auch doof, aber nit wenn eine legitime Datei fälschlicherweise als solches bezeichnet wird.
__________________
--> Win32:rootkit-gen [RtK] durch Avast gefunden.

Antwort

Themen zu Win32:rootkit-gen [RtK] durch Avast gefunden.
abend, avast, bereits, gefunde, guten, keine funde, mbam, neuste, nötig, scan, schließe, schritte, version, win, win 7, win32, win32:rootkit-gen, zusammen



Ähnliche Themen: Win32:rootkit-gen [RtK] durch Avast gefunden.


  1. Fund von Win32: Rootkit-Gen von Avast und Trojan.Downloader von Malwarebytes!
    Plagegeister aller Art und deren Bekämpfung - 22.04.2015 (15)
  2. Win32: Malware-gen / Win32: Trojan-gen bei Routinescan mit AVAST gefunden! Fehlalarm?
    Plagegeister aller Art und deren Bekämpfung - 17.02.2015 (5)
  3. Windows7, Fehlermeldung von Avast: Rootkit gefunden
    Log-Analyse und Auswertung - 08.02.2015 (25)
  4. Avast findet Win32:Rootkit-gen
    Plagegeister aller Art und deren Bekämpfung - 05.02.2015 (5)
  5. Win32:Rootkit-gen[Rtk] in C:\OEM\Preload\Autorun\APP\Power Management. AVAST
    Plagegeister aller Art und deren Bekämpfung - 17.01.2015 (5)
  6. Win32:Rootkit-gen [Rtk] von Avast! gemeldet - Was tun?
    Log-Analyse und Auswertung - 31.12.2014 (3)
  7. Avast Fund: Win32:Rootkit-gen [rtk] Echtzeitprüfung und Startzeit-Prüfung
    Plagegeister aller Art und deren Bekämpfung - 16.12.2014 (13)
  8. Win32 Dropper Gen Meldung von Avast, aber kein Fund durch Malwarebytes Anti-Rootkit
    Antiviren-, Firewall- und andere Schutzprogramme - 01.06.2014 (14)
  9. Windows 7: Rootkit durch Avast Internet Security blockiert und in Virus Container verschoben
    Log-Analyse und Auswertung - 30.05.2014 (26)
  10. Win32-rootkit-gen von Avast erkannt
    Log-Analyse und Auswertung - 25.04.2014 (11)
  11. avast hat Rootkit gefunden
    Log-Analyse und Auswertung - 21.11.2013 (34)
  12. Win32:rootkit-gen [Rtk] von avast! gefunden - Wie werde ich den wieder los?
    Log-Analyse und Auswertung - 19.11.2013 (9)
  13. Windows7PC - Win32Adware-gen und Win32:Dropper-gen erst nach vollst. Scan durch AVAST gefunden - Kreditkarte "gehackt"
    Log-Analyse und Auswertung - 28.10.2013 (9)
  14. win32:evo-gen durch Avast gefunden! Alle Internetseiten von Google gesperrt!
    Plagegeister aller Art und deren Bekämpfung - 15.02.2013 (13)
  15. Win32:Rootkit-gen (rtk) von Avast gefunden...was ist zu tun?
    Plagegeister aller Art und deren Bekämpfung - 30.10.2011 (36)
  16. avast! meldet Bedrohung: Win32:rootkit-gen [Rtk]
    Log-Analyse und Auswertung - 03.12.2010 (3)
  17. Win32:Trojan-gen, Win32:Rootkit-gen, Win32:Adware-gen gefunden!
    Log-Analyse und Auswertung - 14.07.2008 (1)

Zum Thema Win32:rootkit-gen [RtK] durch Avast gefunden. - Guten Abend zusammen, Avast hat die win32:rootkit-gen [Rtk] -Datei gefunden. Diese wurde durch die Startzeit-Überprüfung (Avast) gelöscht. Anschließender Scan mit MBAM & Avast haben keine Funde mehr ergeben. Sind weitere - Win32:rootkit-gen [RtK] durch Avast gefunden....
Archiv
Du betrachtest: Win32:rootkit-gen [RtK] durch Avast gefunden. auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.