Malwarebytes Anti-Rootkit funktioniert nicht.
Es kommt:
Initializing...
Done!
und dann passiert nichts mehr.
Werde jetzt mal TDSSKiller.exe aus.
Gruß
Cele
TDSSKiller: Code:
15:58:54.0777 0x0240 TDSS rootkit removing tool 3.0.0.44 Jan 22 2015 08:27:04
15:59:07.0454 0x0240 ============================================================
15:59:07.0454 0x0240 Current date / time: 2015/05/08 15:59:07.0454
15:59:07.0454 0x0240 SystemInfo:
15:59:07.0454 0x0240
15:59:07.0454 0x0240 OS Version: 6.1.7601 ServicePack: 1.0
15:59:07.0454 0x0240 Product type: Workstation
15:59:07.0454 0x0240 ComputerName: PC-4000
15:59:07.0454 0x0240 UserName: Armin
15:59:07.0454 0x0240 Windows directory: C:\Windows
15:59:07.0454 0x0240 System windows directory: C:\Windows
15:59:07.0454 0x0240 Processor architecture: Intel x86
15:59:07.0454 0x0240 Number of processors: 2
15:59:07.0454 0x0240 Page size: 0x1000
15:59:07.0454 0x0240 Boot type: Normal boot
15:59:07.0454 0x0240 ============================================================
15:59:07.0719 0x0240 KLMD registered as C:\Windows\system32\drivers\79838971.sys
15:59:08.0002 0x0240 System UUID: {2016ABCA-6A2A-87DB-21AB-FF9E0DB27F12}
15:59:08.0657 0x0240 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 ( 149.05 Gb ), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
15:59:08.0737 0x0240 ============================================================
15:59:08.0737 0x0240 \Device\Harddisk0\DR0:
15:59:08.0737 0x0240 MBR partitions:
15:59:08.0737 0x0240 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1384C7A, BlocksNum 0x8B8E955
15:59:08.0737 0x0240 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x9F135CF, BlocksNum 0x8B054F2
15:59:08.0737 0x0240 ============================================================
15:59:08.0768 0x0240 C: <-> \Device\Harddisk0\DR0\Partition1
15:59:08.0815 0x0240 D: <-> \Device\Harddisk0\DR0\Partition2
15:59:08.0815 0x0240 ============================================================
15:59:08.0815 0x0240 Initialize success
15:59:08.0815 0x0240 ============================================================
15:59:51.0939 0x1748 ============================================================
15:59:51.0939 0x1748 Scan started
15:59:51.0939 0x1748 Mode: Manual; SigCheck; TDLFS;
15:59:51.0939 0x1748 ============================================================
15:59:51.0939 0x1748 KSN ping started
15:59:54.0453 0x1748 KSN ping finished: true
15:59:54.0905 0x1748 ================ Scan system memory ========================
15:59:54.0905 0x1748 System memory - ok
15:59:54.0905 0x1748 ================ Scan services =============================
15:59:55.0061 0x1748 [ 1B133875B8AA8AC48969BD3458AFE9F5, 01753BDD47F3F9BC0E0D23A069B9C56D4AE6A6B6295BC19B95AE245D25B12744 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
15:59:55.0342 0x1748 1394ohci - ok
15:59:55.0373 0x1748 [ CEA80C80BED809AA0DA6FEBC04733349, AE69C142DC2210A4AE657C23CEA4A6E7CB32C4F4EBA039414123CAC52157509B ] ACPI C:\Windows\system32\drivers\ACPI.sys
15:59:55.0389 0x1748 ACPI - ok
15:59:55.0436 0x1748 [ 1EFBC664ABFF416D1D07DB115DCB264F, BF94D069D692140B792DBF4FD3CB0127D27C26CC5BFB6B0C28A8B6346767EE58 ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
15:59:55.0529 0x1748 AcpiPmi - ok
15:59:55.0639 0x1748 [ FC5B75CA6A1DA31EDD4F8D53F5540B98, CDC445F2790ADFC4C5568C40D4DA8BB95CD71991665B38AEC3D84571C99C3520 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
15:59:55.0685 0x1748 AdobeARMservice - ok
15:59:55.0748 0x1748 [ 21E785EBD7DC90A06391141AAC7892FB, A2D3D764C5E6DC0AD5AAF48485FFB8B121D2A40DC08ECF2D2CB92278A1002B25 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
15:59:55.0795 0x1748 adp94xx - ok
15:59:55.0810 0x1748 [ 0C676BC278D5B59FF5ABD57BBE9123F2, 339E8A433D186BAAB6FCB44C82CC9FB6FCD63C87981449494CBEB2072CB6B7BB ] adpahci C:\Windows\system32\drivers\adpahci.sys
15:59:55.0841 0x1748 adpahci - ok
15:59:55.0857 0x1748 [ 7C7B5EE4B7B822EC85321FE23A27DB33, A934AFB71D439555E6376DA9B34F82E8D39A300A4547BE9AC9311F6A3C36270C ] adpu320 C:\Windows\system32\drivers\adpu320.sys
15:59:55.0888 0x1748 adpu320 - ok
15:59:55.0904 0x1748 [ 8B5EEFEEC1E6D1A72A06C526628AD161, 026CDF4C96F4D493E7BABF79A14C4B0B5ADCCEF0B081FFFA2E3B243B2414167F ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
15:59:56.0075 0x1748 AeLookupSvc - ok
15:59:56.0138 0x1748 [ D0B388DA1D111A34366E04EB4A5DD156, 60D226F027F4025CC032CAFF73A80FAFB5FA75445654FDCF80CA8C0419C6E938 ] AFD C:\Windows\system32\drivers\afd.sys
15:59:56.0231 0x1748 AFD - ok
15:59:56.0263 0x1748 [ 507812C3054C21CEF746B6EE3D04DD6E, D7E59350AC338AD229E3D10C76E32AE16D120311B263714A9CD94AB538633B0E ] agp440 C:\Windows\system32\drivers\agp440.sys
15:59:56.0278 0x1748 agp440 - ok
15:59:56.0325 0x1748 [ 8B30250D573A8F6B4BD23195160D8707, 64EC289AFCD63D84EAFD9D81C50D0A77BCC79A1EFF32C50B2776BB0C0151757D ] aic78xx C:\Windows\system32\drivers\djsvs.sys
15:59:56.0341 0x1748 aic78xx - ok
15:59:56.0372 0x1748 [ 18A54E132947CD98FEA9ACCC57F98F13, 9D39AF972785E49F0DD12C4BAEF39A79CD69F098886BF152AF1B7CCE2E902115 ] ALG C:\Windows\System32\alg.exe
15:59:56.0434 0x1748 ALG - ok
15:59:56.0465 0x1748 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44, 1D1AA8F50935D976C29DE7A84708CADBBBDD936F0DD2C059E820F0D21367B3B6 ] aliide C:\Windows\system32\drivers\aliide.sys
15:59:56.0481 0x1748 aliide - ok
15:59:56.0528 0x1748 [ 90C11B21ACFA32BEBA54F41A86AB6500, 09DA0B90984D13805EF7C53AA48CC12F5D7BB3970E49DBC03A5E2151FAAC7A08 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
15:59:56.0606 0x1748 AMD External Events Utility - ok
15:59:56.0653 0x1748 AMD FUEL Service - ok
15:59:56.0684 0x1748 [ 3C6600A0696E90A463771C7422E23AB5, 370B33DC1C25B981628A318BAE434A78A5F0A0DA93C2896DC7A3D7B87AE1A5E7 ] amdagp C:\Windows\system32\drivers\amdagp.sys
15:59:56.0700 0x1748 amdagp - ok
15:59:56.0747 0x1748 [ DD4E62B39051CC38DEC6EC3016D761E6, 2BAF030BC54D9A9B609A65D35CA8A23F3A46426B3DD18A74C265B059F1BBE8B3 ] amdhub30 C:\Windows\system32\DRIVERS\amdhub30.sys
15:59:56.0794 0x1748 amdhub30 - ok
15:59:56.0825 0x1748 [ CD5914170297126B6266860198D1D4F0, 2239FCBD1A7EC27CE4F10DA36AE6BD6CCB87E5128C82CA71B84BFE5AF5602A60 ] amdide C:\Windows\system32\drivers\amdide.sys
15:59:56.0841 0x1748 amdide - ok
15:59:56.0872 0x1748 [ FF258424F0B2EF25EB98F04EE386E6E3, 09DC3854BF0D52FB80AB08DC4E0DD4A9E37ACAA500083A56F9836C837EBCFA82 ] amdiox86 C:\Windows\system32\DRIVERS\amdiox86.sys
15:59:56.0888 0x1748 amdiox86 - ok
15:59:56.0919 0x1748 [ 00DDA200D71BAC534BF56A9DB5DFD666, CA316B1FFD85BA1CF8664B3229DA1F238A5341E016059F7ED89702324CFD124B ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
15:59:56.0950 0x1748 AmdK8 - ok
15:59:57.0278 0x1748 [ 3C4BD906CCAE29F737F9B04210A88E05, A1809E322126C1A354DEFBD7EBBFAA7DCE75492BEE53C3939446F0AB4608F4D5 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
15:59:57.0933 0x1748 amdkmdag - ok
15:59:57.0964 0x1748 [ C4573AE73076F4C0D53B7646B648E176, 92DE881BAA27D7970BCD38E57B13A5125C85314229F8EE5B4804311F000337FE ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
15:59:58.0011 0x1748 amdkmdap - ok
15:59:58.0042 0x1748 [ 3CBF30F5370FDA40DD3E87DF38EA53B6, 7EACF1743367BE805357B6FD10F8F99E9B1C301FE3782D77719347B13DFA65EC ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
15:59:58.0089 0x1748 AmdPPM - ok
15:59:58.0151 0x1748 [ D320BF87125326F996D4904FE24300FC, F767D8C5C58D57202905D829F7AE1B1FF33937F407FDCE4C90E32A6638F27416 ] amdsata C:\Windows\system32\drivers\amdsata.sys
15:59:58.0182 0x1748 amdsata - ok
15:59:58.0214 0x1748 [ EA43AF0C423FF267355F74E7A53BDABA, 3F1335909AB0281A2FBDD7AD90E18309E091656CD32B48894B992789D8C61DB4 ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
15:59:58.0245 0x1748 amdsbs - ok
15:59:58.0245 0x1748 [ 46387FB17B086D16DEA267D5BE23A2F2, 8B8AC61B91F154B4EB5CC6DECB5FCCEBA8B42EFE94859947136AD06681EA8ED0 ] amdxata C:\Windows\system32\drivers\amdxata.sys
15:59:58.0276 0x1748 amdxata - ok
15:59:58.0307 0x1748 [ 8DF610D400D40856380ADB0F70CA8363, 2B277C041002E472A02845E7D18907DC7C3BD77522BD4928B9C0FF61BABB0E91 ] amdxhc C:\Windows\system32\DRIVERS\amdxhc.sys
15:59:58.0354 0x1748 amdxhc - ok
15:59:58.0370 0x1748 [ B63E2783AD88339A725329ACCE4E2F93, ADADA707E1B6527FD0B3789B3396A954DC6E2245B304C00FA3FFE9BCDFBD78AE ] amd_sata C:\Windows\system32\DRIVERS\amd_sata.sys
15:59:58.0385 0x1748 amd_sata - ok
15:59:58.0401 0x1748 [ DE00FE55A9C5902720F8B72027C5B750, C643E8F9144AF2CE5973EF18168D8E047866A7AB467EE8F903BB19580839EB9E ] amd_xata C:\Windows\system32\DRIVERS\amd_xata.sys
15:59:58.0416 0x1748 amd_xata - ok
15:59:58.0526 0x1748 [ 62A6B0A393591878A1E00224EA698AD7, 691B6E248D0682477543455B67E85C768A4A53A92139E153320ED4E4CED1E010 ] AntiVirMailService C:\Program Files\Avira\AntiVir Desktop\avmailc7.exe
15:59:58.0557 0x1748 AntiVirMailService - ok
15:59:58.0619 0x1748 [ F36D18EF1E66F92094AD89D17BEF007C, A5C793B340311CB7A301B77316E1976E3CD7CA9470CE5F1062CB003BCD4C155C ] AntiVirSchedulerService C:\Program Files\Avira\AntiVir Desktop\sched.exe
15:59:58.0666 0x1748 AntiVirSchedulerService - ok
15:59:58.0713 0x1748 [ F36D18EF1E66F92094AD89D17BEF007C, A5C793B340311CB7A301B77316E1976E3CD7CA9470CE5F1062CB003BCD4C155C ] AntiVirService C:\Program Files\Avira\AntiVir Desktop\avguard.exe
15:59:58.0744 0x1748 AntiVirService - ok
15:59:58.0838 0x1748 [ 5B7924A162A604B43FFBEE9384ABE77B, 1A1A836C145BAD330EDC778D4FD18CE737EB10E4B22AE8A39CDDBAAC36B0FF11 ] AntiVirWebService C:\Program Files\Avira\AntiVir Desktop\avwebg7.exe
15:59:58.0916 0x1748 AntiVirWebService - ok
15:59:58.0947 0x1748 [ 81F97D8F8B3FB94A451CC6F7CF8B2965, 8DEBA4E47E1016D69740C0BB7CDD23852D86E0D42C1C1EA5A847ECB115C38CB1 ] AppID C:\Windows\system32\drivers\appid.sys
15:59:59.0009 0x1748 AppID - ok
15:59:59.0040 0x1748 [ F5090F8FA6757C58E17BAEAA86093636, 5E14CF3032DF5801240F45C59AA93962EA41AA5648A0C6458D16D9B9D95A131F ] AppIDSvc C:\Windows\System32\appidsvc.dll
15:59:59.0072 0x1748 AppIDSvc - ok
15:59:59.0103 0x1748 [ EACFDF31921F51C097629F1F3C9129B4, 24138755D823E69760579ECBD672421192457CDC9941B2BC499C2D34D83E86C3 ] Appinfo C:\Windows\System32\appinfo.dll
15:59:59.0165 0x1748 Appinfo - ok
15:59:59.0212 0x1748 [ A45D184DF6A8803DA13A0B329517A64A, C1D16B60A6D69689AE951DC3D6884ED2E233D144B3FC0B86BC1C50AAAAA01ED2 ] AppMgmt C:\Windows\System32\appmgmts.dll
15:59:59.0274 0x1748 AppMgmt - ok
15:59:59.0306 0x1748 [ 2932004F49677BD84DBC72EDB754FFB3, 73F84582244AC53994A2F4499A119B4A84A6BF7FD3046C29A8080C763DE540B8 ] arc C:\Windows\system32\drivers\arc.sys
15:59:59.0352 0x1748 arc - ok
15:59:59.0368 0x1748 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7, F7C9C3B4F2C816F57A43B2921672858C291054220BADE291044343778216F6BA ] arcsas C:\Windows\system32\drivers\arcsas.sys
15:59:59.0384 0x1748 arcsas - ok
15:59:59.0446 0x1748 [ 9D768C43FEF254DD50B1DBF8AD5C4C0B, A50854EA5C08605133B8BB4DFDC6090357C5665314AA72E0BFA1E07D4E451F09 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
15:59:59.0540 0x1748 aspnet_state - ok
15:59:59.0586 0x1748 [ 6133404B5B260433922BBAC04E3254B2, D9111F412FE8EF7A1EBF3DA2B73E262A24863FEA2C82EB2991345F1BE2CBBDE8 ] AsrAppCharger C:\Windows\system32\DRIVERS\AsrAppCharger.sys
15:59:59.0602 0x1748 AsrAppCharger - ok
15:59:59.0633 0x1748 [ ADD2ADE1C2B285AB8378D2DAAF991481, 7965A705F37924C0EC7A934E64E89C5DF4069816E2EEA3509E0AC90F78910519 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
15:59:59.0727 0x1748 AsyncMac - ok
15:59:59.0758 0x1748 [ 338C86357871C167A96AB976519BF59E, F28CC534523D1701B0552F5D7E18E88369C4218BDB1F69110C3E31D395884AD6 ] atapi C:\Windows\system32\drivers\atapi.sys
15:59:59.0774 0x1748 atapi - ok
15:59:59.0820 0x1748 [ 6ADC42CF4A6AB84975CA63DCCFAAF5D8, 9629ABDC25D848F5B16A937A4897B17EE9BD6DFF0A69CF0FF97219AE15D3920F ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW73.sys
15:59:59.0836 0x1748 AtiHDAudioService - ok
15:59:59.0883 0x1748 [ C1619A13B10CAC5038BF7129F57D8DE3, 9F71EA6C844650658938E68CCC1383F92D37C68E46E08461A8351491185BA791 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
15:59:59.0914 0x1748 AudioEndpointBuilder - ok
15:59:59.0930 0x1748 [ C1619A13B10CAC5038BF7129F57D8DE3, 9F71EA6C844650658938E68CCC1383F92D37C68E46E08461A8351491185BA791 ] Audiosrv C:\Windows\System32\Audiosrv.dll
15:59:59.0945 0x1748 Audiosrv - ok
16:00:00.0023 0x1748 [ F431DC5D94F4B2FDBC927655D8A9B10E, FA16A95E5B83D08F0FD76FDAB03FC7CD4B6917BFE15F2F1D9F3B781F6A1888D8 ] Autodesk Content Service C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe
16:00:00.0054 0x1748 Autodesk Content Service - ok
16:00:00.0086 0x1748 [ AF5DA81B19AFA730F1E5246AD81D140A, 532951071F56896A3B5D47874C14D996C8620EA02F87D4BA21B083EC804FB166 ] avgntflt C:\Windows\system32\DRIVERS\avgntflt.sys
16:00:00.0117 0x1748 avgntflt - ok
16:00:00.0164 0x1748 [ A5674637BCA212D9FE136ADFA04C9857, 95F3632EBB041C539816D285EBE1F379D46A4187379C69D4683D9F4DECBDB80C ] avipbb C:\Windows\system32\DRIVERS\avipbb.sys
16:00:00.0195 0x1748 avipbb - ok
16:00:00.0288 0x1748 [ 0D32033DCB359FD98B4C3513EF849FE6, 5870D67526BC29D888DAF8DBAB04B1E97ED5C7C51484ED400A5E65D0EB61576A ] Avira.OE.ServiceHost C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe
16:00:00.0320 0x1748 Avira.OE.ServiceHost - ok
16:00:00.0351 0x1748 [ D8C712305F73CD34D1B344810E522728, 49A474FF6CA44E8427D7A8290B47395125B0148AF384CF2B3B1FA495A4718CBA ] avkmgr C:\Windows\system32\DRIVERS\avkmgr.sys
16:00:00.0366 0x1748 avkmgr - ok
16:00:00.0398 0x1748 [ D730AA8494EC4C8C6C976F5EB04D3AC2, 583CB13188A57C7A83C0B50BBE6269B2AA3C4E3A33C647062C101F5BBD5B0265 ] AVMCOWAN C:\Windows\system32\DRIVERS\AVMCOWAN.sys
16:00:00.0444 0x1748 AVMCOWAN - ok
16:00:00.0491 0x1748 [ 3303FB85532093FC6723632B5947E8C4, F8301069A8EAD7303CAE5B7CAE3F119747E7B7B4402178018EB5254087238A42 ] avnetflt C:\Windows\system32\DRIVERS\avnetflt.sys
16:00:00.0522 0x1748 avnetflt - ok
16:00:00.0569 0x1748 [ 6E30D02AAC9CAC84F421622E3A2F6178, 229DC527C1D6C778BCA2C855A2A6F6D2C4B0F4F6DE56C886B3AAD26E3347952C ] AxInstSV C:\Windows\System32\AxInstSV.dll
16:00:00.0663 0x1748 AxInstSV - ok
16:00:00.0741 0x1748 [ 1A231ABEC60FD316EC54C66715543CEC, 09E2897BA80737997A286EA5408C03DD3CC0EBACD24CB391C2455B6D4BE7D67E ] b06bdrv C:\Windows\system32\drivers\bxvbdx.sys
16:00:00.0788 0x1748 b06bdrv - ok
16:00:00.0819 0x1748 [ BD8869EB9CDE6BBE4508D869929869EE, F4363A12EBFDBB89C69FD59B22F9EE05BADA07D477A1DF2DE01F59D6EE496543 ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
16:00:00.0850 0x1748 b57nd60x - ok
16:00:00.0881 0x1748 [ EE1E9C3BB8228AE423DD38DB69128E71, ED54FD9795F3A4D32F02BED6052AD9404409A05644CDBEBFF19C662D104DA95A ] BDESVC C:\Windows\System32\bdesvc.dll
16:00:00.0912 0x1748 BDESVC - ok
16:00:00.0928 0x1748 [ 505506526A9D467307B3C393DEDAF858, 8AD6F1492E357F57CF42261497BA29122045D4FC0DCC9669AA5AC9B2A4BABFA4 ] Beep C:\Windows\system32\drivers\Beep.sys
16:00:00.0975 0x1748 Beep - ok
16:00:01.0006 0x1748 [ 1E2BAC209D184BB851E1A187D8A29136, 53933C938DA5126986FFF2918C1F522ABE93ABAB460AE32E4453161C2F7B68DF ] BFE C:\Windows\System32\bfe.dll
16:00:01.0053 0x1748 BFE - ok
16:00:01.0100 0x1748 [ E585445D5021971FAE10393F0F1C3961, 178C008A9A0A6BFDA65EB0B98C510271360AD4474F22F13594F5EB60AA4E1CF5 ] BITS C:\Windows\System32\qmgr.dll
16:00:01.0131 0x1748 BITS - ok
16:00:01.0162 0x1748 [ 2287078ED48FCFC477B05B20CF38F36F, 55BCA6174E6034A8D61CBE4126B2F1989F6052BFA624BEA9C0A0A664AEC74521 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
16:00:01.0178 0x1748 blbdrive - ok
16:00:01.0209 0x1748 [ 8F2DA3028D5FCBD1A060A3DE64CD6506, E234672E9CFE1A95AD2E78E306E41E010B870221E6EBBC0E2B0BE2FA5CE0CD76 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
16:00:01.0287 0x1748 bowser - ok
16:00:01.0318 0x1748 [ 9F9ACC7F7CCDE8A15C282D3F88B43309, A9131334BD9CF8FD60BA9D54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
16:00:01.0349 0x1748 BrFiltLo - ok
16:00:01.0365 0x1748 [ 56801AD62213A41F6497F96DEE83755A, 0DEB8318FB47DF6473C171C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
16:00:01.0412 0x1748 BrFiltUp - ok
16:00:01.0443 0x1748 [ 3DAA727B5B0A45039B0E1C9A211B8400, 903B51E75F0C503A0E255120F53BF51B047B219FEC1E15F2F1D02DDD562FC73B ] Browser C:\Windows\System32\browser.dll
16:00:01.0505 0x1748 Browser - ok
16:00:01.0552 0x1748 [ 845B8CE732E67F3B4133164868C666EA, 9309B094CD9B5EBC46295A5EB806BED472C3CEDE3B5F6F497EBDABA496A2A27F ] Brserid C:\Windows\System32\Drivers\Brserid.sys
16:00:01.0630 0x1748 Brserid - ok
16:00:01.0646 0x1748 [ 203F0B1E73ADADBBB7B7B1FABD901F6B, 782FA7B26940FE479C49C9BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
16:00:01.0716 0x1748 BrSerWdm - ok
16:00:01.0732 0x1748 [ BD456606156BA17E60A04E18016AE54B, DFBDC9DA6A3EA40BACFF204BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
16:00:01.0763 0x1748 BrUsbMdm - ok
16:00:01.0763 0x1748 [ AF72ED54503F717A43268B3CC5FAEC2E, 4A638669B0C30B1BDED242A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
16:00:01.0810 0x1748 BrUsbSer - ok
16:00:01.0888 0x1748 [ EA7E57F87D6FEE5FD6C5F813C04E8CD2, 1EB84F4DEE3034FAFBEA2A3F84EECE036E803872DA94D54E958E9F2F09519E88 ] BrYNSvc C:\Program Files\Browny02\BrYNSvc.exe
16:00:01.0934 0x1748 BrYNSvc - detected UnsignedFile.Multi.Generic ( 1 )
16:00:04.0446 0x1748 Detect skipped due to KSN trusted
16:00:04.0446 0x1748 BrYNSvc - ok
16:00:04.0462 0x1748 [ ED3DF7C56CE0084EB2034432FC56565A, B5B75E002E7BC0209582C635CCCA26DB569BDB23C33A126634E00C6434BF941B ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
16:00:04.0524 0x1748 BTHMODEM - ok
16:00:04.0618 0x1748 [ 1DF19C96EEF6C29D1C3E1A8678E07190, 1F4BB161FF3A1C5B1465BB52F3520FEDB7ACB1FAA132466F07D16DB8E394AEA5 ] bthserv C:\Windows\system32\bthserv.dll
16:00:04.0680 0x1748 bthserv - ok
16:00:04.0711 0x1748 [ 77EA11B065E0A8AB902D78145CA51E10, 160EB3BBE9E5F3CC4A02584E6F2576A812C7565B940D74838B983F1EE51FA73A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
16:00:04.0758 0x1748 cdfs - ok
16:00:04.0852 0x1748 [ BE167ED0FDB9C1FA1133953C18D5A6C9, E26A851CA13E7300F977E5B20FA5D25FD0E1442AB6AD5DB58BBDB2DAAD87027C ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
16:00:04.0914 0x1748 cdrom - ok
16:00:04.0992 0x1748 [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] CertPropSvc C:\Windows\System32\certprop.dll
16:00:05.0054 0x1748 CertPropSvc - ok
16:00:05.0086 0x1748 [ 3FE3FE94A34DF6FB06E6418D0F6A0060, 6B3A2A26609A75B690D4C0B3059E40822F3B3DB08943F58EC496BABDA7D0A735 ] circlass C:\Windows\system32\drivers\circlass.sys
16:00:05.0164 0x1748 circlass - ok
16:00:05.0226 0x1748 [ 33A60554882FDF59CDA3E1806370BBA1, 3DE5451E1CB84AAEBD03F54BEFC670C401447B4881A8B022748B6ECF0F500F01 ] CLFS C:\Windows\system32\CLFS.sys
16:00:05.0242 0x1748 CLFS - ok
16:00:05.0413 0x1748 [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
16:00:05.0476 0x1748 clr_optimization_v2.0.50727_32 - ok
16:00:05.0585 0x1748 [ E87213F37A13E2B54391E40934F071D0, 7EB221127EFB5BF158FB03D18EFDA2C55FB6CE3D1A1FE69C01D70DBED02C87E5 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
16:00:05.0726 0x1748 clr_optimization_v4.0.30319_32 - ok
16:00:05.0757 0x1748 [ DEA805815E587DAD1DD2C502220B5616, 2D6A7668C95352B818F5EC59FF462894935833D34190257DA9CAC7E67FD3631C ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
16:00:05.0804 0x1748 CmBatt - ok
16:00:05.0820 0x1748 [ C537B1DB64D495B9B4717B4D6D9EDBF2, 400EEFE662DE117C9CC956E4CBD5E98F28F962E7447CD93E8A78FDD8CA39EB4B ] cmdide C:\Windows\system32\drivers\cmdide.sys
16:00:05.0851 0x1748 cmdide - ok
16:00:05.0913 0x1748 [ 3051724F223EA48968B19567DE2A81F4, DCC27DE1B2B35866FC6DBDE95A368E7D0D346B6C3F31D0BACA63DD39B0A8874E ] CNG C:\Windows\system32\Drivers\cng.sys
16:00:05.0991 0x1748 CNG - ok
16:00:06.0038 0x1748 [ A6023D3823C37043986713F118A89BEE, FAC239A7FA6251C7EDFFA34B4BAE3910B8BC0BD4A3574B6DB6931A8D691E207B ] Compbatt C:\Windows\system32\drivers\compbatt.sys
16:00:06.0054 0x1748 Compbatt - ok
16:00:06.0085 0x1748 [ CBE8C58A8579CFE5FCCF809E6F114E89, AC083A1C649EBA18C59FCC1772D0784B10E2B8C63094E3C14388E147DBC3F6DF ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
16:00:06.0101 0x1748 CompositeBus - ok
16:00:06.0132 0x1748 COMSysApp - ok
16:00:06.0194 0x1748 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1, 6FC323217D82EF661BA0E3F949B61B05BB5235D1A69C81D24876C2153FAECEF6 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
16:00:06.0225 0x1748 crcdisk - ok
16:00:06.0319 0x1748 [ 49474B3E37969AF4B5C076F42B623AFF, BDA6B57E9B60EF1B67C74099263D33A367AAA035667239F76AB8B268FD3E8F23 ] CryptSvc C:\Windows\system32\cryptsvc.dll
16:00:06.0366 0x1748 CryptSvc - ok
16:00:06.0428 0x1748 [ 3C2177A897B4CA2788C6FB0C3FD81D4B, 98575CBD0664586E6211D02E71BDD52CBAA149A1658573550E29E74E5F7B1553 ] CSC C:\Windows\system32\drivers\csc.sys
16:00:06.0584 0x1748 CSC - ok
16:00:06.0678 0x1748 [ 15F93B37F6801943360D9EB42485D5D3, DD6838C6496CB15F8BB57A6596F6A64ADD9C36B09F062295699131232712B558 ] CscService C:\Windows\System32\cscsvc.dll
16:00:06.0725 0x1748 CscService - ok
16:00:06.0771 0x1748 [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] DcomLaunch C:\Windows\system32\rpcss.dll
16:00:06.0912 0x1748 DcomLaunch - ok
16:00:06.0943 0x1748 [ 8D6E10A2D9A5EED59562D9B82CF804E1, 888F9650F4E872BA8F4E0C27E38A6672A561042B17EBA40E306A22357965B0AD ] defragsvc C:\Windows\System32\defragsvc.dll
16:00:07.0037 0x1748 defragsvc - ok
16:00:07.0068 0x1748 [ F024449C97EC1E464AAFFDA18593DB88, 7EF1E241892E098A472BCA14C724DFF1AACCF190954AF1C4A38B6D542CC74BD2 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
16:00:07.0161 0x1748 DfsC - ok
16:00:07.0208 0x1748 [ E9E01EB683C132F7FA27CD607B8A2B63, 4D9037B458C522874619143A4176BCED42472C68933E6E83D37B67242706F3C4 ] Dhcp C:\Windows\system32\dhcpcore.dll
16:00:07.0255 0x1748 Dhcp - ok
16:00:07.0286 0x1748 [ 1A050B0274BFB3890703D490F330C0DA, 79D74F4679A2EE040FAAF4D0392A9311239A10A5F8A5CCB48656C6F89B6D62FB ] discache C:\Windows\system32\drivers\discache.sys
16:00:07.0364 0x1748 discache - ok
16:00:07.0442 0x1748 [ 565003F326F99802E68CA78F2A68E9FF, ABC42B24DBA4FFC411120E09278EF26AF56CCAB463B69B4BD6C530B4A07063D2 ] Disk C:\Windows\system32\drivers\disk.sys
16:00:07.0489 0x1748 Disk - ok
16:00:07.0536 0x1748 [ 2A958EF85DB1B61FFCA65044FA4BCE9E, C83511685EE1CE85A5ADF9B5BE96C375A521601F66024BDC3EE044C0B6E85D69 ] dmvsc C:\Windows\system32\drivers\dmvsc.sys
16:00:07.0676 0x1748 dmvsc - ok
16:00:07.0723 0x1748 [ 33EF4861F19A0736B11314AAD9AE28D0, 4C4B84365D85758E3263B88F157D8B086B392C6F1EA5F0F3DB6BF87EF90248EC ] Dnscache C:\Windows\System32\dnsrslvr.dll
16:00:07.0770 0x1748 Dnscache - ok
16:00:07.0801 0x1748 [ 366BA8FB4B7BB7435E3B9EACB3843F67, 65B7C61ACF34F1F0149045AA9E09A3F917A927963237A385A914D0B80551DC31 ] dot3svc C:\Windows\System32\dot3svc.dll
16:00:07.0879 0x1748 dot3svc - ok
16:00:07.0941 0x1748 [ 8EC04CA86F1D68DA9E11952EB85973D6, 2E3FBC2D683D1274E8BC45EEEA87D43B77EDDCAAF0D453296D9FDA6B9D717071 ] DPS C:\Windows\system32\dps.dll
16:00:07.0988 0x1748 DPS - ok
16:00:08.0066 0x1748 [ B918E7C5F9BF77202F89E1A9539F2EB4, C589A37DE50BBEF22E2DAA9682EA43147F614AA1AF7DAAA942BA5FC192313A0B ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
16:00:08.0144 0x1748 drmkaud - ok
16:00:08.0222 0x1748 [ 3583A5A8CC2E682BFFBD4630D0FEC08B, FD0F184B358FCECAA763444B414074BEF4E871EB7527D88385519FC158435C72 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
16:00:08.0347 0x1748 DXGKrnl - ok
16:00:08.0394 0x1748 [ 8600142FA91C1B96367D3300AD0F3F3A, 5713625E27DF11FAAFDA7AC79899A6AD813166E167088FA990EC5DE87DBE83DF ] EapHost C:\Windows\System32\eapsvc.dll
16:00:08.0456 0x1748 EapHost - ok
16:00:08.0690 0x1748 [ 024E1B5CAC09731E4D868E64DBFB4AB0, AB0826A74BBEE5B7A1B035861B665C79BC98305CFC7D82BEF420558FBD3EE994 ] ebdrv C:\Windows\system32\drivers\evbdx.sys
16:00:09.0221 0x1748 ebdrv - ok
16:00:09.0252 0x1748 [ 981CE3E3A653511799F4A862494B66A8, 414D975387A118535E39636413969A7D4C98A85E542A44B8FA515C8A20D6093F ] EFS C:\Windows\System32\lsass.exe
16:00:09.0314 0x1748 EFS - ok
16:00:09.0470 0x1748 [ A8C362018EFC87BEB013EE28F29C0863, 07971C681FBD391C0BA0172618AF8AD77520182207F1C57F134B34D6A113857F ] ehRecvr C:\Windows\ehome\ehRecvr.exe
16:00:09.0704 0x1748 ehRecvr - ok
16:00:09.0751 0x1748 [ D389BFF34F80CAEDE417BF9D1507996A, 12859B9925D7A4631DE61A820922F43F56ED23C2AF014CBF36322685E5CF641E ] ehSched C:\Windows\ehome\ehsched.exe
16:00:09.0813 0x1748 ehSched - ok
16:00:09.0923 0x1748 [ 0ED67910C8C326796FAA00B2BF6D9D3C, 97FAA7627A162B0AEC15545E0165D13355D535B4157604BB87F8EEB72ECD24A8 ] elxstor C:\Windows\system32\drivers\elxstor.sys
16:00:10.0032 0x1748 elxstor - ok
16:00:10.0047 0x1748 [ 8FC3208352DD3912C94367A206AB3F11, 69B65C12BDADD4B730508674B1B77C5496612B4ACCC447DB9AFE49ADEA8CBF02 ] ErrDev C:\Windows\system32\drivers\errdev.sys
16:00:10.0079 0x1748 ErrDev - ok
16:00:10.0125 0x1748 [ F6916EFC29D9953D5D0DF06882AE8E16, ED41893960018D5EC2F7829B1DE4B6967D9FD074D60B11B9EB854E3E0948EC24 ] EventSystem C:\Windows\system32\es.dll
16:00:10.0172 0x1748 EventSystem - ok
16:00:10.0203 0x1748 [ 2DC9108D74081149CC8B651D3A26207F, 75CB47923A867DDAC512701CE71DFCFC340FC3A2E27F4255D0836A1FBC463176 ] exfat C:\Windows\system32\drivers\exfat.sys
16:00:10.0297 0x1748 exfat - ok
16:00:10.0344 0x1748 [ 7E0AB74553476622FB6AE36F73D97D35, 41463A255FDA1D550B3385EC7C73ABC343B1BBBE9CEE4DF9F2A8B3E7338C4947 ] fastfat C:\Windows\system32\drivers\fastfat.sys
16:00:10.0437 0x1748 fastfat - ok
16:00:10.0469 0x1748 [ 967EA5B213E9984CBE270205DF37755B, 43153E23210B03FAE16897D62D55B8742F834EDC695F8401EAB5DE307F62602D ] Fax C:\Windows\system32\fxssvc.exe
16:00:10.0515 0x1748 Fax - ok
16:00:10.0531 0x1748 [ E817A017F82DF2A1F8CFDBDA29388B29, 4CC9320A21E6FEA2D16C48D6BEA14391B695BD541A3C5FDDAEEE086A414FC837 ] fdc C:\Windows\system32\drivers\fdc.sys
16:00:10.0547 0x1748 fdc - ok
16:00:10.0578 0x1748 [ F3222C893BD2F5821A0179E5C71E88FB, A85B947249DBB986358CCD4B158DD58A9301F074F3C6CCCDEF2D01F432E59D1B ] fdPHost C:\Windows\system32\fdPHost.dll
16:00:10.0609 0x1748 fdPHost - ok
16:00:10.0625 0x1748 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B, 0E76C29D2A974A3F2FBFCB63D066D4136B78E02F6B1F579B1865CA7A76193987 ] FDResPub C:\Windows\system32\fdrespub.dll
16:00:10.0671 0x1748 FDResPub - ok
16:00:10.0687 0x1748 [ 6CF00369C97F3CF563BE99BE983D13D8, F65F35324A2FB9DFB533B1C4D089D990CC242218FE83414329D07B786D8EFF33 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
16:00:10.0704 0x1748 FileInfo - ok
16:00:10.0719 0x1748 [ 42C51DC94C91DA21CB9196EB64C45DB9, 388C68D12ECC8FFE3116FEAAF4DB7B80CF4A3F97E935788DD21C6ADE2369F635 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
16:00:10.0766 0x1748 Filetrace - ok
16:00:10.0828 0x1748 [ ACEFEEA621DCA62EFB7A7EEA59F5E91B, 1D998E25B2C4C2DB51BF5E76BD0EFCA172CFC9BC16AFE7044BFC7A9FCF346154 ] FLEXnet Licensing Service C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
16:00:10.0875 0x1748 FLEXnet Licensing Service - ok
16:00:10.0891 0x1748 [ 87907AA70CB3C56600F1C2FB8841579B, CA1CD82A1CD453617CE5EA431A1836997F14E3580554E8A516D9FE1E9926D979 ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
16:00:10.0922 0x1748 flpydisk - ok
16:00:10.0953 0x1748 [ 7520EC808E0C35E0EE6F841294316653, 6EC65511B4838A7172A8F89E35C2F9DF4F0BFCE3BE12EDA790F3EB567102FF67 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
16:00:11.0062 0x1748 FltMgr - ok
16:00:11.0140 0x1748 [ E12C4928B32ACE04610259647F072635, B71B9C2DF45F33C4DAC88435129B08B0BCDBBE82E8C3AD0A95F00137CC8B619F ] FontCache C:\Windows\system32\FntCache.dll
16:00:11.0265 0x1748 FontCache - ok
16:00:11.0359 0x1748 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F, DBED26852B99B362152DA9CD4F31A1883EF6F9B496F3CF3772A197BA72DB61DA ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
16:00:11.0374 0x1748 FontCache3.0.0.0 - ok
16:00:11.0608 0x1748 [ 58992BB216D65A3165BE62B21B0B4196, 1B9EB4CAE5C0E7D4DEF9B0201AC4ADC5484FD37B4301E641BA0C852F150680A5 ] FPCIBASE C:\Windows\system32\DRIVERS\fpcibase.sys
16:00:11.0905 0x1748 FPCIBASE - ok
16:00:11.0920 0x1748 [ 1A16B57943853E598CFF37FE2B8CBF1D, 87609F46F3B8123552141FD70866E895220B1BBD92BC2B580CAF49201AA0197E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
16:00:11.0983 0x1748 FsDepends - ok
16:00:12.0045 0x1748 [ 7DAE5EBCC80E45D3253F4923DC424D05, 8A2C4D5591509B0B0A44583520617A9AE34F32BB6E68A012A7D7870ED24F703A ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
16:00:12.0108 0x1748 Fs_Rec - ok
16:00:12.0186 0x1748 [ E306A24D9694C724FA2491278BF50FDB, 1D246B9C28550640EACBF8CF9DC980FD75106B92832D392FEBEF0C7012353091 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
16:00:12.0248 0x1748 fvevol - ok
16:00:12.0295 0x1748 [ 65EE0C7A58B65E74AE05637418153938, 0E1A398ADD8411AF4CCC3344D67BE1B261320C58328BD5C5855A357476FAEBEF ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
16:00:12.0342 0x1748 gagp30kx - ok
16:00:12.0747 0x1748 [ DB36D71AE8031AD0A6328B27FEB8E3B1, 8D749A88909ED57182EAD7D72BCE8896EB0E11200E74A3F7E46C3305F4F6F2FA ] Garmin Device Interaction Service C:\Program Files\Garmin\Device Interaction Service\GarminService.exe
16:00:12.0997 0x1748 Garmin Device Interaction Service - ok
16:00:13.0059 0x1748 [ E897EAF5ED6BA41E081060C9B447A673, A428DC68516F19C6C53A8B62E4BDB2587E70FB751B9D77700B6B147D347DA157 ] gpsvc C:\Windows\System32\gpsvc.dll
16:00:13.0139 0x1748 gpsvc - ok
16:00:13.0280 0x1748 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
16:00:13.0311 0x1748 gupdate - ok
16:00:13.0326 0x1748 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
16:00:13.0342 0x1748 gupdatem - ok
16:00:13.0389 0x1748 [ C44E3C2BAB6837DB337DDEE7544736DB, 88A24FF7D2FECCEAFFD421B2039A0FB623DA47A6B220B80EF1E52DD26D9E222D ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
16:00:13.0467 0x1748 hcw85cir - ok
16:00:13.0482 0x1748 [ A5EF29D5315111C80A5C1ABAD14C8972, A181DA72E946F121C3F4A19438C547B0BFD15138AB1DB5465945EC89DF1F6B0A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
16:00:13.0529 0x1748 HdAudAddService - ok
16:00:13.0576 0x1748 [ 9036377B8A6C15DC2EEC53E489D159B5, 1E56D2ACFE92E6DF96D755B05C63D580EED82C210F075C8623E138BEE6BCD41B ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
16:00:13.0607 0x1748 HDAudBus - ok
16:00:13.0623 0x1748 [ 1D58A7F3E11A9731D0EAAAA8405ACC36, 7056FA18B86FBD52C4A6092D80476C02553EA053D6A0BEDB01A2FA5E152D5215 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
16:00:13.0638 0x1748 HidBatt - ok
16:00:13.0654 0x1748 [ 89448F40E6DF260C206A193A4683BA78, 71E0FCC32AE6FF8DFF420DB0383D6A200E1EAE14BD2E32453F92CE18B31C1F3C ] HidBth C:\Windows\system32\drivers\hidbth.sys
16:00:13.0685 0x1748 HidBth - ok
16:00:13.0701 0x1748 [ CF50B4CF4A4F229B9F3C08351F99CA5E, B97843620AF80FF0EC8F2C438255C0A42A756C6314FAF3DEF415DE16E14C108F ] HidIr C:\Windows\system32\drivers\hidir.sys
16:00:13.0716 0x1748 HidIr - ok
16:00:13.0748 0x1748 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B, 2AF3312F1C8C8923C0A29AA5DAE57CE269417E53DEA2F0CCCC8DB57029698FE1 ] hidserv C:\Windows\system32\hidserv.dll
16:00:13.0763 0x1748 hidserv - ok
16:00:13.0826 0x1748 [ 10C19F8290891AF023EAEC0832E1EB4D, E208553029488A6EE2F5216CC9FE5F93E9931A94C0D0625253BB159E30642853 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
16:00:13.0904 0x1748 HidUsb - ok
16:00:13.0935 0x1748 [ 196B4E3F4CCCC24AF836CE58FACBB699, 7A2E1F603A073421FA0987EFB96647F1F0F2D4E0C82AA62EBC041585DA811DAF ] hkmsvc C:\Windows\system32\kmsvc.dll
16:00:13.0982 0x1748 hkmsvc - ok
16:00:14.0013 0x1748 [ 6658F4404DE03D75FE3BA09F7ABA6A30, E51D9C1580A283EB862F09B73AAE1B647DD683A53F3DD99834222F12DD15E40F ] HomeGroupListener C:\Windows\system32\ListSvc.dll
16:00:14.0044 0x1748 HomeGroupListener - ok
16:00:14.0075 0x1748 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8, 02121800D9062692C102475876AE8143EBE46D855E8328B8CDCFE6A2F0D19696 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
16:00:14.0091 0x1748 HomeGroupProvider - ok
16:00:14.0216 0x1748 [ 5DA42D24712E00728CEA2342A65009B2, 73EC5250DCFD556525B24B3CA66C64AC7747E77652A2AD6119936A59A9E8562A ] hpqcxs08 C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
16:00:14.0247 0x1748 hpqcxs08 - ok
16:00:14.0262 0x1748 [ D86A39BF100069444D026D22D9A6E555, 7B24D48D5BA67704C88697FADB64364E0E64D26259408E3C219820C5404C5EEC ] hpqddsvc C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll
16:00:14.0262 0x1748 hpqddsvc - ok
16:00:14.0309 0x1748 [ 295FDC419039090EB8B49FFDBB374549, 670E8015FD374640C6570F56F7FE8DE4D8F92E7A8072F5D1B2B95D0BD699CEF7 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
16:00:14.0325 0x1748 HpSAMD - ok
16:00:14.0387 0x1748 [ 9D23402D305869844BC6004A05CC74BA, E7291966528555206859CD1AEBB8F12C6B2A4A0E17F8F3FF307A9AE2310B21CB ] HPSLPSVC C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL
16:00:14.0418 0x1748 HPSLPSVC - ok
16:00:14.0465 0x1748 [ 487569E5DA56A5A432FF8AF6D3599CF9, 7C974D8379C60B4F69A20B01876C49181B0A63AC318C4BD0A21DABFF27A15C9D ] HTTP C:\Windows\system32\drivers\HTTP.sys
16:00:14.0559 0x1748 HTTP - ok
16:00:14.0574 0x1748 [ 0C4E035C7F105F1299258C90886C64C5, CFB4FBE7B28058E6D3E6E508CF3C1645F6AAE0AFEB4C5364835B9C42311DF0D4 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
16:00:14.0590 0x1748 hwpolicy - ok
16:00:14.0606 0x1748 [ F151F0BDC47F4A28B1B20A0818EA36D6, 84B24B5796D9F70A8C37773F5484A4606CC7908370CCD942627ACBEDC4952D79 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
16:00:14.0637 0x1748 i8042prt - ok
16:00:14.0688 0x1748 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E, 72870092A80C6DAE0105025B0ED8B607E98BA81E59298364A7FE4C9C56C68FF0 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
16:00:14.0719 0x1748 iaStorV - ok
16:00:14.0781 0x1748 [ 3E9213A2A050BF429E91898C90F8B4E3, D80ABE5691087661B19F01927B631CB8C5291120B814B6F863F046E0D643E9E4 ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
16:00:14.0876 0x1748 idsvc - ok
16:00:14.0907 0x1748 IEEtwCollectorService - ok
16:00:14.0923 0x1748 [ 4173FF5708F3236CF25195FECD742915, 0A9C0701DF6EAC6602BE342FC13C7950EF04BB5BDF7D96C2C5DABBD2A29AA55D ] iirsp C:\Windows\system32\drivers\iirsp.sys
16:00:14.0938 0x1748 iirsp - ok
16:00:15.0001 0x1748 [ B9C54120F46392100478F58F374E5709, A28EE8B0988F580D5984E815FC78DF41B169260814234AA0E453375542D0957B ] IKEEXT C:\Windows\System32\ikeext.dll
16:00:15.0016 0x1748 IKEEXT - ok
16:00:15.0172 0x1748 [ F2C17D2C3D70C389193D9954E375E5E3, AECE30E09B52987CD71EED9AE8BBA4052EF552DEDC3FD406EB1276CA1265340F ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
16:00:15.0359 0x1748 IntcAzAudAddService - ok
16:00:15.0391 0x1748 [ A0F12F2C9BA6C72F3987CE780E77C130, 5F53DF8BE1621AA7DFB655CFD9C95E0AFA1AD3CE2E290E19D7B7FB3C6E380034 ] intelide C:\Windows\system32\drivers\intelide.sys
16:00:15.0406 0x1748 intelide - ok
16:00:15.0437 0x1748 [ 3B514D27BFC4ACCB4037BC6685F766E0, F12D7AC62F8550E6F33B28AD751D8413AB7FFEF963242D99FFA76CE8A48B027A ] intelppm C:\Windows\system32\drivers\intelppm.sys
16:00:15.0484 0x1748 intelppm - ok
16:00:15.0515 0x1748 [ ACB364B9075A45C0736E5C47BE5CAE19, 202F77C659103D2D0E787B8CB0A23BE32EA5AA2E6B3B0A0F0A8DFA906AB3C0C0 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
16:00:15.0562 0x1748 IPBusEnum - ok
16:00:15.0593 0x1748 [ 709D1761D3B19A932FF0238EA6D50200, 0A9D2C3A6E91CA45540555B40CB4E2DF3EBE98C1D164C4EECEE20C86782F5823 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
16:00:15.0625 0x1748 IpFilterDriver - ok
16:00:15.0671 0x1748 [ 58F67245D041FBE7AF88F4EAF79DF0FA, 67468D6A46FF4D87AD321BFEA42F2FC843D09AA292A119C76D4D795D06028F96 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
16:00:15.0718 0x1748 iphlpsvc - ok
16:00:15.0749 0x1748 [ 4BD7134618C1D2A27466A099062547BF, 20284ABEF4433A59E2981F4143CAEC67DC990864FE0B9E3DC70EE0B88539E964 ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
16:00:15.0765 0x1748 IPMIDRV - ok
16:00:15.0796 0x1748 [ A5FA468D67ABCDAA36264E463A7BB0CD, EDB828D596E43372F97DAE1AADA46428C4C45FB80646DDC64FAD5F25C826CF63 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
16:00:15.0812 0x1748 IPNAT - ok
16:00:15.0859 0x1748 [ 42996CFF20A3084A56017B7902307E9F, 688176DAB91BE569280E4822E4C5BDE755794D293591C53F8047AD59C441751D ] IRENUM C:\Windows\system32\drivers\irenum.sys
16:00:15.0890 0x1748 IRENUM - ok
16:00:15.0905 0x1748 [ 1F32BB6B38F62F7DF1A7AB7292638A35, 86522358680FBB1CEBC56B4D139290689BB0F71A3EC78CE883E4D75D0B37586F ] isapnp C:\Windows\system32\drivers\isapnp.sys
16:00:15.0921 0x1748 isapnp - ok
16:00:15.0968 0x1748 [ EB34CE31FABD4DC4343FD2AD16D2CAF9, D21C91227A15DA89ECF522345D0AB80B3B7FC24A230596DABDB8BD3B7554CE8C ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
16:00:16.0015 0x1748 iScsiPrt - ok
16:00:16.0046 0x1748 [ ADEF52CA1AEAE82B50DF86B56413107E, A3AE1E96B04AC81665ABBD3CB267DFB3F78376DAE18FB0DBD447908DDAAA22D2 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
16:00:16.0061 0x1748 kbdclass - ok
16:00:16.0108 0x1748 [ 9E3CED91863E6EE98C24794D05E27A71, 90CF59F20E14E4A5A793266805E82BF7AE1F0CF4C7BAB1FD2EEF3B53C5DF770F ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
16:00:16.0139 0x1748 kbdhid - ok
16:00:16.0155 0x1748 [ 981CE3E3A653511799F4A862494B66A8, 414D975387A118535E39636413969A7D4C98A85E542A44B8FA515C8A20D6093F ] KeyIso C:\Windows\system32\lsass.exe
16:00:16.0171 0x1748 KeyIso - ok
16:00:16.0202 0x1748 [ 746F89CE0C6569C589E6AC4D3DA82D41, 6D41311CBA8BB7C9C09C1757D7947539B67FE3EFF6299502176C673809BAEAD8 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
16:00:16.0217 0x1748 KSecDD - ok
16:00:16.0249 0x1748 [ D800E1EAF33630A1636BB21E8256AA92, D07542A242E0D52B494BE63A6A141207D0A59CF66ABEBA9CE33877594BF7BA5D ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
16:00:16.0280 0x1748 KSecPkg - ok
16:00:16.0311 0x1748 [ 89A7B9CC98D0D80C6F31B91C0A310FCD, 4583CAEEE0D50C0C7CE955E533FDA063CDC37B69033D41EF22EF1BA242E4C747 ] KtmRm C:\Windows\system32\msdtckrm.dll
16:00:16.0358 0x1748 KtmRm - ok
16:00:16.0389 0x1748 [ D64AF876D53ECA3668BB97B51B4E70AB, D5C07C019BFEAFBEDC29AB5060356A3B07449712B21B50E03378BEF04AF180F9 ] LanmanServer C:\Windows\system32\srvsvc.dll
16:00:16.0436 0x1748 LanmanServer - ok
16:00:16.0467 0x1748 [ 58405E4F68BA8E4057C6E914F326ABA2, C3E6519A1A38F1B3597D4391E42ABFE8F1F5E86256C4B3BD876CDAD9BB68B0A6 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
16:00:16.0514 0x1748 LanmanWorkstation - ok
16:00:16.0561 0x1748 [ F7611EC07349979DA9B0AE1F18CCC7A6, 879AA7A391966F00761CA039C25EBC62F6712DD5461694911EEC673E12DE103E ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
16:00:16.0619 0x1748 lltdio - ok
16:00:16.0635 0x1748 [ 5700673E13A2117FA3B9020C852C01E2, 6684A2905EE8C438F2A64BE47E51A54D287B08DEFB8E0AE7FC2809D845EE3C5F ] lltdsvc C:\Windows\System32\lltdsvc.dll
16:00:16.0682 0x1748 lltdsvc - ok
16:00:16.0697 0x1748 [ 55CA01BA19D0006C8F2639B6C045E08B, 4DBBDC820C514DB18CC13F8EE178F8C4E39C295C6E3C255416C235553CE7BDC1 ] lmhosts C:\Windows\System32\lmhsvc.dll
16:00:16.0729 0x1748 lmhosts - ok
16:00:16.0744 0x1748 [ EB119A53CCF2ACC000AC71B065B78FEF, 1FD60735C4945AE565C223F0B47EAF9602D8777E3D15600914C1A9D761215AF9 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
16:00:16.0775 0x1748 LSI_FC - ok
16:00:16.0791 0x1748 [ 8ADE1C877256A22E49B75D1CC9161F9C, 3D64F233DC866537E50549A7C1A2B40A954055B22F0BDA39825B04C38C607CB7 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
16:00:16.0807 0x1748 LSI_SAS - ok
16:00:16.0822 0x1748 [ DC9DC3D3DAA0E276FD2EC262E38B11E9, A264990857CBC74036799E17A087130626C0A09BE19879019BAF2D761C62AECC ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
16:00:16.0838 0x1748 LSI_SAS2 - ok
16:00:16.0869 0x1748 [ 0A036C7D7CAB643A7F07135AC47E0524, 2F662D07FCB74B8D493156DB555EAA90A47E93CF14C7B30039D2FE47EB8682B8 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
16:00:16.0885 0x1748 LSI_SCSI - ok
16:00:16.0885 0x1748 [ 6703E366CC18D3B6E534F5CF7DF39CEE, 7396B9AF938284D99EC51206A7B2FA4A0DC10A493DCE6707818B03A7473782C4 ] luafv C:\Windows\system32\drivers\luafv.sys
16:00:16.0916 0x1748 luafv - ok
16:00:16.0947 0x1748 mbamchameleon - ok
16:00:17.0009 0x1748 [ 04B309A1A653177994630C2773E659F1, 1D9F81D2DF513FE177E5308E3DE0CE416109F87FDBD00FE7453FEB6074216C3C ] MBAMSwissArmy C:\Windows\system32\drivers\MBAMSwissArmy.sys
16:00:17.0041 0x1748 MBAMSwissArmy - ok
16:00:17.0087 0x1748 [ 29CB85A1FE091C9D3AA3C72D66DF3E69, FB196EC7F8095752713A336B79835D796F8EA738EE0512386C9116B277A9F210 ] MBfilt C:\Windows\system32\drivers\MBfilt32.sys
16:00:17.0119 0x1748 MBfilt - ok
16:00:17.0150 0x1748 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1, D2A84EBF0C0B7A14AD432FD2EF43CC12300027AEA3FA4075659FB088AB62B588 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
16:00:17.0181 0x1748 Mcx2Svc - ok
16:00:17.0197 0x1748 [ 0FFF5B045293002AB38EB1FD1FC2FB74, 49071B565FD5B2DE43EC00D8518C3BE70843F38919E82F13104B8C1FAFB20374 ] megasas C:\Windows\system32\drivers\megasas.sys
16:00:17.0228 0x1748 megasas - ok
16:00:17.0259 0x1748 [ DCBAB2920C75F390CAF1D29F675D03D6, 85C3A7A010BEA5E3C6179161B295F2CB900A6A214833A5F87A4327392880E2BB ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
16:00:17.0290 0x1748 MegaSR - ok
16:00:17.0321 0x1748 [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] MMCSS C:\Windows\system32\mmcss.dll
16:00:17.0337 0x1748 MMCSS - ok
16:00:17.0353 0x1748 [ F001861E5700EE84E2D4E52C712F4964, F4DC5AEED6F34D76CCEF360862CC47EF71097BE0813C8CE04EE5F0DB387DFFAE ] Modem C:\Windows\system32\drivers\modem.sys
16:00:17.0399 0x1748 Modem - ok
16:00:17.0415 0x1748 [ 79D10964DE86B292320E9DFE02282A23, 52714827B7EEDACA55326A4E4F6158D4942DFAA3BACDE303A2F569BF3F4FAA72 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
16:00:17.0431 0x1748 monitor - ok
16:00:17.0462 0x1748 [ FB18CC1D4C2E716B6B903B0AC0CC0609, F10CCA63493782B16DE6B96B94A27078DBE68AECEF34FDF840CFF86D2C6E3C5E ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
16:00:17.0477 0x1748 mouclass - ok
16:00:17.0493 0x1748 [ 2C388D2CD01C9042596CF3C8F3C7B24D, B2FB72272BB01AEDA4047B57C943B7E9BD8A6497854F8CC34672AAA592D0A703 ] mouhid C:\Windows\system32\drivers\mouhid.sys
16:00:17.0555 0x1748 mouhid - ok
16:00:17.0571 0x1748 [ 644905A19D0F37F2233DFCE53BC4BC19, F52CB40AA0FD1EBF8CBF0F3BFB20C47142C637719840877FB93F10D085EB8C2B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
16:00:17.0602 0x1748 mountmgr - ok
16:00:17.0618 0x1748 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0, D3D903EEA465D77345AAC9B9F02CDEADF4831212EA2DE4FCA33BEE26EBB47420 ] mpio C:\Windows\system32\drivers\mpio.sys
16:00:17.0633 0x1748 mpio - ok
16:00:17.0665 0x1748 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0, 1D6DCFA0E56C3E55B6AED819176E751502F863BA0FCF4F0B3253A81D208141A2 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
16:00:17.0696 0x1748 mpsdrv - ok
16:00:17.0743 0x1748 [ 9835584E999D25004E1EE8E5F3E3B881, 71798B0CBE9AE69F1F29B845319019C69EC7F415CBABB3B87DDE92C360675021 ] MpsSvc C:\Windows\system32\mpssvc.dll
16:00:17.0789 0x1748 MpsSvc - ok
16:00:17.0805 0x1748 [ 03F899F521D2AAED1C55008F734DF252, 4E56A51476A13F5630719018037B1F63DF9ACEA1CFE782AF04E669BD696954C5 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
16:00:17.0852 0x1748 MRxDAV - ok
16:00:17.0883 0x1748 [ 5D16C921E3671636C0EBA3BBAAC5FD25, 5BC107B95CAFC88F51FBB9F657B99944B20627A2B618F263093D7045E4FFD65C ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
16:00:17.0930 0x1748 mrxsmb - ok
16:00:17.0945 0x1748 [ 6D17A4791ACA19328C685D256349FEFC, 012AA3D84EEAAF53780D06D2D11B9727DFC3441F3FAD75BC9E751FB814403668 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
16:00:17.0992 0x1748 mrxsmb10 - ok
16:00:18.0008 0x1748 [ B81F204D146000BE76651A50670A5E9E, 78193D0F967BE9829E53F9B500342934B4B1E1F4CEFC444382959E2061BC3B17 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
16:00:18.0039 0x1748 mrxsmb20 - ok
16:00:18.0070 0x1748 [ 012C5F4E9349E711E11E0F19A8589F0A, 208B92DFCF7AD43202660FBBC9FF5E03AEDBEE38178FF3628EB74CB6CD37C584 ] msahci C:\Windows\system32\drivers\msahci.sys
16:00:18.0070 0x1748 msahci - ok
16:00:18.0101 0x1748 [ 55055F8AD8BE27A64C831322A780A228, C2C9FD1F61302997117B1CD0835E8234405BB80084065ED05363B77868397304 ] msdsm C:\Windows\system32\drivers\msdsm.sys
16:00:18.0133 0x1748 msdsm - ok
16:00:18.0148 0x1748 [ E1BCE74A3BD9902B72599C0192A07E27, 5162EB623FE64E9DFEAC6CA2410EFA1314E62EC13207FFBFED2D61AA887603C4 ] MSDTC C:\Windows\System32\msdtc.exe
16:00:18.0164 0x1748 MSDTC - ok
16:00:18.0179 0x1748 [ DAEFB28E3AF5A76ABCC2C3078C07327F, 6EB558532400B489763BAE7203538DE5F196282A8CB46A1B31D59120FC5AFCEF ] Msfs C:\Windows\system32\drivers\Msfs.sys
16:00:18.0211 0x1748 Msfs - ok
16:00:18.0211 0x1748 [ 3E1E5767043C5AF9367F0056295E9F84, B2EDFECD3C14E4FE1BA87D9A86334043A9BD696A554EBD186DA7EAEB2EBD4F70 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
16:00:18.0242 0x1748 mshidkmdf - ok
16:00:18.0242 0x1748 [ 0A4E5757AE09FA9622E3158CC1AEF114, ED574E420E57374E328C7C526504ECA569C164287966F06019EC207CB17F2C54 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
16:00:18.0257 0x1748 msisadrv - ok
16:00:18.0289 0x1748 [ 90F7D9E6B6F27E1A707D4A297F077828, BEFC220EAA7307849600748842ACB9254A6A91158812D9B23EFAF912C498BA7F ] MSiSCSI C:\Windows\system32\iscsiexe.dll
16:00:18.0335 0x1748 MSiSCSI - ok
16:00:18.0335 0x1748 msiserver - ok
16:00:18.0367 0x1748 [ 8C0860D6366AAFFB6C5BB9DF9448E631, 949C5A14E57F2D7385543C17C3485E7ADE36EA2016F6E0A1866571D2EDE90A77 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
16:00:18.0382 0x1748 MSKSSRV - ok
16:00:18.0398 0x1748 [ 3EA8B949F963562CEDBB549EAC0C11CE, 1B0B2F16A1790282504F3C548D47C3281EFB440D5D9711A1EF76D6371B768D2D ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
16:00:18.0413 0x1748 MSPCLOCK - ok
16:00:18.0429 0x1748 [ F456E973590D663B1073E9C463B40932, 48BA6D5580EE7B6A4C06E04772FD35B51779553FC0DD6C5C30DD8B5DEEB25B11 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
16:00:18.0445 0x1748 MSPQM - ok
16:00:18.0476 0x1748 [ 0E008FC4819D238C51D7C93E7B41E560, 141FCEBDD05874407EAEC35A9DCD3BB16F2A428F23E55487D6A5DBFCADBF10D2 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
16:00:18.0491 0x1748 MsRPC - ok
16:00:18.0507 0x1748 [ FC6B9FF600CC585EA38B12589BD4E246, F05DB01AE1955D2468CE6B51E51998B111CA3B0BDEED090EE6B99B625CBA564A ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
16:00:18.0523 0x1748 mssmbios - ok
16:00:18.0523 0x1748 [ B42C6B921F61A6E55159B8BE6CD54A36, 6BB0A7BE005B8F281E551D1B8046CE4202372BC7AE0161881C858BFAC675FE1C ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
16:00:18.0569 0x1748 MSTEE - ok
16:00:18.0585 0x1748 [ 33599130F44E1F34631CEA241DE8AC84, E15B31D1AFDC8DC6D2B21D4215796A99ECC69EEDBB06CEED01AECC3C99A44C8B ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
16:00:18.0601 0x1748 MTConfig - ok
16:00:18.0616 0x1748 [ 159FAD02F64E6381758C990F753BCC80, E55AB01DCFA95ECAB24A2A9656E28FF9D064BA08B3D82DC8AA42F5991BA09598 ] Mup C:\Windows\system32\Drivers\mup.sys
16:00:18.0632 0x1748 Mup - ok
16:00:18.0679 0x1748 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E, D252248532142E9E2332DA693BC51B795102CA938B568FF04981E98B19BFBC5C ] napagent C:\Windows\system32\qagentRT.dll
16:00:18.0694 0x1748 napagent - ok
16:00:18.0741 0x1748 [ 26384429FCD85D83746F63E798AB1480, 957C115C263A4B4DC854558B43ECE632D8E2BCCB744E23A01EBA7476BA2E7FFB ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
16:00:18.0788 0x1748 NativeWifiP - ok
16:00:18.0850 0x1748 [ 8C9C922D71F1CD4DEF73F186416B7896, 15FF43CD90C7913F83B35F2E7986561584588E8A45196EBD965C3A355836A9C7 ] NDIS C:\Windows\system32\drivers\ndis.sys
16:00:18.0897 0x1748 NDIS - ok
16:00:18.0913 0x1748 [ 0E1787AA6C9191D3D319E8BAFE86F80C, F535022747355B2C66424BDA892D7DCB820C2EB8EE05BAE5BC6D1B1D65186278 ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
16:00:18.0944 0x1748 NdisCap - ok
16:00:18.0959 0x1748 [ E4A8AEC125A2E43A9E32AFEEA7C9C888, 6EA181117126FC70B3C1DD1AC73CC26D1603A2CF49E47F66623E2C9489C49B55 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
16:00:18.0991 0x1748 NdisTapi - ok
16:00:19.0006 0x1748 [ D8A65DAFB3EB41CBB622745676FCD072, 874D3C3D247C4A309DA813DB1D2EDB0037D3C489824BD5FE95B0C20699764EF7 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
16:00:19.0022 0x1748 Ndisuio - ok
16:00:19.0037 0x1748 [ 38FBE267E7E6983311179230FACB1017, CFD1CBCA59650795C030DB30E5795B37C11C736E14003AE1DAB081BA5C0C9B14 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
16:00:19.0084 0x1748 NdisWan - ok
16:00:19.0100 0x1748 [ A4BDC541E69674FBFF1A8FF00BE913F2, 18CCFD063E9870B8B6958715BC0414C4D920AE63528EA1E9D7E30F7138918FFA ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
16:00:19.0131 0x1748 NDProxy - ok
16:00:19.0193 0x1748 [ A081CB6FB9A12668F233EB5414BE3A0E, EE2A1311B51D1FEBAF79F45E568A927D8EA7704AFC8495AED2D26927566F61E3 ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
16:00:19.0225 0x1748 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic ( 1 )
16:00:21.0753 0x1748 Detect skipped due to KSN trusted
16:00:21.0753 0x1748 Net Driver HPZ12 - ok
16:00:21.0784 0x1748 [ 80B275B1CE3B0E79909DB7B39AF74D51, 75B406B0D9D28239D4EB2A298419A5F78A58237D88C5FD688EF1DFFAFACCF796 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
16:00:21.0831 0x1748 NetBIOS - ok
16:00:21.0846 0x1748 [ 280122DDCF04B378EDD1AD54D71C1E54, F98B2ADE34F7E67C7C06C1D0FFB80ECBC353D044D4B4784CD952910345DC2ED0 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
16:00:21.0878 0x1748 NetBT - ok
16:00:21.0893 0x1748 [ 981CE3E3A653511799F4A862494B66A8, 414D975387A118535E39636413969A7D4C98A85E542A44B8FA515C8A20D6093F ] Netlogon C:\Windows\system32\lsass.exe
16:00:21.0893 0x1748 Netlogon - ok
16:00:21.0924 0x1748 [ 7CCCFCA7510684768DA22092D1FA4DB2, BB9E4F8FABBF596D888E6D303CB54A336D9DFF95B36AEA9369D2ED787DDC4B5D ] Netman C:\Windows\System32\netman.dll
16:00:21.0971 0x1748 Netman - ok
16:00:21.0987 0x1748 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
16:00:22.0065 0x1748 NetMsmqActivator - ok
16:00:22.0080 0x1748 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
16:00:22.0096 0x1748 NetPipeActivator - ok
16:00:22.0127 0x1748 [ 8C338238C16777A802D6A9211EB2BA50, 0D08A47CD403EDA5E8CAD7409BBBBCDC29A9861D2DC41D42B68B22B1AA1EBDD6 ] netprofm C:\Windows\System32\netprofm.dll
16:00:22.0174 0x1748 netprofm - ok
16:00:22.0190 0x1748 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
16:00:22.0205 0x1748 NetTcpActivator - ok
16:00:22.0221 0x1748 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
16:00:22.0221 0x1748 NetTcpPortSharing - ok
16:00:22.0268 0x1748 [ 1D85C4B390B0EE09C7A46B91EFB2C097, 6A8850B151E88EE371F3CC543A946302DDF9494908D684B8B0C706A42CC54348 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
16:00:22.0268 0x1748 nfrd960 - ok
16:00:22.0299 0x1748 [ F115C5CD29E512F18BD7138A094B77E5, 90C2CE8B256EE9AABF674ADDE7F85E91DAF48EA368452D03C187A4AE027D4E39 ] NlaSvc C:\Windows\System32\nlasvc.dll
16:00:22.0346 0x1748 NlaSvc - ok
16:00:22.0361 0x1748 [ 1DB262A9F8C087E8153D89BEF3D2235F, A51EE5D5AD3CD76B74BEA9C66C462608BF3B50C53DAA4110A75DB10495A8C101 ] Npfs C:\Windows\system32\drivers\Npfs.sys
16:00:22.0392 0x1748 Npfs - ok
16:00:22.0424 0x1748 [ BA387E955E890C8A88306D9B8D06BF17, 3477BD9686C5777A93251C154512671AAA7533B18C536DF51F7B1D6D28E7F8A5 ] nsi C:\Windows\system32\nsisvc.dll
16:00:22.0439 0x1748 nsi - ok
16:00:22.0455 0x1748 [ E9A0A4D07E53D8FEA2BB8387A3293C58, 690CAD6C4E35ECC1172A2E1FD3933DF73158B3BF42CB21244269612A53DE4D7A ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
16:00:22.0486 0x1748 nsiproxy - ok
16:00:22.0580 0x1748 [ C8DFF8D07755A66C7A4A738930F0FEAC, A2CC58312CE57988ABD976155BE91F558DCEC4C23481C6FBE64B361D511A36EA ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
16:00:22.0658 0x1748 Ntfs - ok
16:00:22.0673 0x1748 [ F9756A98D69098DCA8945D62858A812C, 572ADBFCFDE2030B34A013AADC14DBC144EB3F34D06991E2464A3EA9605BC045 ] Null C:\Windows\system32\drivers\Null.sys
16:00:22.0704 0x1748 Null - ok
16:00:22.0736 0x1748 [ B3E25EE28883877076E0E1FF877D02E0, 402B6FED6FBBF645190396DC141141EF52DD059DABD01F8AC9CF01D23664070C ] nvraid C:\Windows\system32\drivers\nvraid.sys
16:00:22.0751 0x1748 nvraid - ok
16:00:22.0782 0x1748 [ 4380E59A170D88C4F1022EFF6719A8A4, 93EDB3F4CDBF53C9C1970DD29AB146E390695C568180847BA8903F5FBEABCFF2 ] nvstor C:\Windows\system32\drivers\nvstor.sys
16:00:22.0814 0x1748 nvstor - ok
16:00:22.0829 0x1748 [ 5A0983915F02BAE73267CC2A041F717D, D83461D74597BF2BE042FEFCC27FCD18BF63CB8135B0666D731D50951C3468A8 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
16:00:22.0845 0x1748 nv_agp - ok
16:00:22.0938 0x1748 [ 785F487A64950F3CB8E9F16253BA3B7B, 02445344BD214370A6D48B1CA04921D8EFCB13E676B5648266DD0E076C0822B6 ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
16:00:22.0985 0x1748 odserv - ok
16:00:23.0016 0x1748 [ 08A70A1F2CDDE9BB49B885CB817A66EB, 0BB98123B544124B144F3E95D77E01E973D060B8B2302503FF24ABBBE803EB63 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
16:00:23.0063 0x1748 ohci1394 - ok
16:00:23.0143 0x1748 [ 30B5F9FB0C35AE6B4A0851D24CE2EE8B, 0340E77E8EC2ADC21B8DDD9C9CC95B3F4BCAFD54618A333C72D7D9587D593B83 ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
16:00:23.0174 0x1748 ose - ok
16:00:23.0424 0x1748 [ EE5756BDA5BE5891270E0CC6CEC44096, EA18073EEE0F461B14C539D49A7DD91D33AB0C503236F67F70A000835FAAC890 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
16:00:23.0720 0x1748 osppsvc - ok
16:00:23.0767 0x1748 [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
16:00:23.0798 0x1748 p2pimsvc - ok
16:00:23.0830 0x1748 [ 59C3DDD501E39E006DAC31BF55150D91, E02B63AB7F34CF6FF3F644AF354D10004E6F50014E03172D80BD78934EF71EF1 ] p2psvc C:\Windows\system32\p2psvc.dll
16:00:23.0861 0x1748 p2psvc - ok
16:00:23.0892 0x1748 [ 2EA877ED5DD9713C5AC74E8EA7348D14, 14BA3722CE5F8FF07F2D97DCDD6558EB49C9B02E5E6FAD6D9F18D354733EFECE ] Parport C:\Windows\system32\DRIVERS\parport.sys
16:00:23.0954 0x1748 Parport - ok
16:00:23.0986 0x1748 [ 3F34A1B4C5F6475F320C275E63AFCE9B, 31295D5121C0C3F2085E0EEBA260EEE4CA003993C026E2F81986D19158036E6B ] partmgr C:\Windows\system32\drivers\partmgr.sys
16:00:24.0001 0x1748 partmgr - ok
16:00:24.0017 0x1748 [ EB0A59F29C19B86479D36B35983DAADC, AC09AFE7F13BE4079D01383BAC44091997E1AAF6512C9673A42B9E3780EB08A8 ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
16:00:24.0032 0x1748 Parvdm - ok
16:00:24.0064 0x1748 [ 52954BE460EC6C54C0ACB2B3B126FFC6, 9F9878EC5ABC74C5A8EE8E1D940F0934F081895B07D844F42F80A638FE713F7B ] PcaSvc C:\Windows\System32\pcasvc.dll
16:00:24.0157 0x1748 PcaSvc - ok
16:00:24.0188 0x1748 [ 673E55C3498EB970088E812EA820AA8F, 1F81315664B8CBFDD569416C0ECCE4C6251F34577313A0858AB46609781303B5 ] pci C:\Windows\system32\drivers\pci.sys
16:00:24.0204 0x1748 pci - ok
16:00:24.0220 0x1748 [ AFE86F419014DB4E5593F69FFE26CE0A, CAF36E61BE7B511D3A03A65FF5A3017CEE4D2F53005B410F2D4A2AAE9FED4C00 ] pciide C:\Windows\system32\drivers\pciide.sys
16:00:24.0220 0x1748 pciide - ok
16:00:24.0251 0x1748 [ F396431B31693E71E8A80687EF523506, BC614FC21E029E2497F1CCE3131BBD295B827F2310762B47D5BBC7703D80554B ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
16:00:24.0282 0x1748 pcmcia - ok
16:00:24.0298 0x1748 [ 250F6B43D2B613172035C6747AEEB19F, A91F15B133F2619912CF750E6F3662E011CD0FA4B9477CE532CE3196D23307D9 ] pcw C:\Windows\system32\drivers\pcw.sys
16:00:24.0313 0x1748 pcw - ok
16:00:24.0344 0x1748 [ AEBC369F7DC72AB3F5B9BDF34FA0D43F, 2A819154AC6C23E97C583D90B4D0C112188B7AE9D8D9B3F88811BFCED124E551 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
16:00:24.0391 0x1748 PEAUTH - ok
16:00:24.0438 0x1748 [ AF4D64D2A57B9772CF3801950B8058A6, C9C493A3775E6E1660CE5DF75DA574D0C04245FB88CF41B96217A725359C350D ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
16:00:24.0500 0x1748 PeerDistSvc - ok
16:00:24.0625 0x1748 [ 414BBA67A3DED1D28437EB66AEB8A720, D6DF254E2615FA402044824DCD9004F579FC0DF74B90E44C99D5F0253CF8AD88 ] pla C:\Windows\system32\pla.dll
16:00:24.0767 0x1748 pla - ok
16:00:24.0813 0x1748 [ EC7BC28D207DA09E79B3E9FAF8B232CA, A42F8F69C3CD753D787A5D558659DEA2CC306C896D75B8C82549219CF654504F ] PlugPlay C:\Windows\system32\umpnpmgr.dll
16:00:24.0845 0x1748 PlugPlay - ok
16:00:24.0907 0x1748 [ 65BC271F337637731D3C71455AE1F476, DAD32B61FE0147F8D2DA4C8F016920CD6BB2098F16E3CC2768009763E71DEFBC ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
16:00:24.0938 0x1748 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic ( 1 )
16:00:27.0465 0x1748 Detect skipped due to KSN trusted
16:00:27.0465 0x1748 Pml Driver HPZ12 - ok
16:00:27.0481 0x1748 [ 63FF8572611249931EB16BB8EED6AFC8, 9732CCBCB93A7A4BEC88812B952C20244479E9BD781240C195E57F09E619EA33 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
16:00:27.0512 0x1748 PNRPAutoReg - ok
16:00:27.0543 0x1748 [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
16:00:27.0559 0x1748 PNRPsvc - ok
16:00:27.0590 0x1748 [ 53946B69BA0836BD95B03759530C81EC, 7F14A34635354CCA0F5342C8D9DF5A6AA1B94F6A508BD8834029E9BACF252920 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
16:00:27.0637 0x1748 PolicyAgent - ok
16:00:27.0684 0x1748 [ F87D30E72E03D579A5199CCB3831D6EA, B09328E89954584F97908FA5946376BA990B8C650DABCBF3CA3B08719937C694 ] Power C:\Windows\system32\umpo.dll
16:00:27.0699 0x1748 Power - ok
16:00:27.0731 0x1748 [ 631E3E205AD6D86F2AED6A4A8E69F2DB, 1D3BF0CFC37D91A3A56246920B9CF1084E78A055D56E85A773417809C58C8065 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
16:00:27.0762 0x1748 PptpMiniport - ok
16:00:27.0777 0x1748 [ 85B1E3A0C7585BC4AAE6899EC6FCF011, 1E067113C146D6842D7FB04007F363D6FB7783C6BC7C9AB6614E44075C4F86C3 ] Processor C:\Windows\system32\drivers\processr.sys
16:00:27.0809 0x1748 Processor - ok
16:00:27.0840 0x1748 [ FD9692A3D31E021207D3C2A9DDDC2BE3, 5295EFAD9BD4B59996935A41825392C12A4C968D161BEEA37797F90AF8E54229 ] ProfSvc C:\Windows\system32\profsvc.dll
16:00:27.0871 0x1748 ProfSvc - ok
16:00:27.0887 0x1748 [ 981CE3E3A653511799F4A862494B66A8, 414D975387A118535E39636413969A7D4C98A85E542A44B8FA515C8A20D6093F ] ProtectedStorage C:\Windows\system32\lsass.exe
16:00:27.0902 0x1748 ProtectedStorage - ok
16:00:27.0918 0x1748 [ 6270CCAE2A86DE6D146529FE55B3246A, 463209CBAF1B0E269DC8FC6FBDEE5BB7E5ADB5D3F024930BFD0B97E0A9678883 ] Psched C:\Windows\system32\DRIVERS\pacer.sys
16:00:27.0949 0x1748 Psched - ok
16:00:28.0027 0x1748 [ AB95ECF1F6659A60DDC166D8315B0751, 0ED6D3460D28978BADF31B930DBB3298A6A10EFF8883763EABA0E36A21A0E83D ] ql2300 C:\Windows\system32\drivers\ql2300.sys
16:00:28.0105 0x1748 ql2300 - ok
16:00:28.0136 0x1748 [ B4DD51DD25182244B86737DC51AF2270, 7E62B04F054A6330B7F9968222523BDE8F3EE47A11D17E6C0E2D5ACDC07B9E6B ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
16:00:28.0152 0x1748 ql40xx - ok
16:00:28.0183 0x1748 [ 31AC809E7707EB580B2BDB760390765A, A8481FD19A0F778F5591B7676F591F664ADC68B6867E663C0F9564173F4AC909 ] QWAVE C:\Windows\system32\qwave.dll
16:00:28.0214 0x1748 QWAVE - ok
16:00:28.0230 0x1748 [ 584078CA1B95CA72DF2A27C336F9719D, 836F115C92D343463C14A9DE39648C1EFA7C7EE4720F5C692EE0F68B84830121 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
16:00:28.0261 0x1748 QWAVEdrv - ok
16:00:28.0292 0x1748 [ 30A81B53C766D0133BB86D234E5556AB, 726C6B83B5ACAA84CAB1689B6DD6DDAE3199D61A57B5D7B5B5A0F62FCF838090 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
16:00:28.0323 0x1748 RasAcd - ok
16:00:28.0355 0x1748 [ 57EC4AEF73660166074D8F7F31C0D4FD, C66B425EC4DB5E7FD289AE631C9B019EB16717C55E80FAE964BB22203E4AACEF ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
16:00:28.0386 0x1748 RasAgileVpn - ok
16:00:28.0417 0x1748 [ A60F1839849C0C00739787FD5EC03F13, B210DFA5A843CF1DA73635F168E2EA5052CBED15C664F8523CDFB34CA165D0E0 ] RasAuto C:\Windows\System32\rasauto.dll
16:00:28.0464 0x1748 RasAuto - ok
16:00:28.0479 0x1748 [ D9F91EAFEC2815365CBE6D167E4E332A, 8350457A39D141C13807E7DB5A8D4113197C4016F7744B9993391F4AEA0C4A5C ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
16:00:28.0526 0x1748 Rasl2tp - ok
16:00:28.0542 0x1748 [ CB9E04DC05EACF5B9A36CA276D475006, 4D8C0AEF1D4F84F375AD2BAF786C9F6C52316A3E655B913449E71AD7C0FCA56E ] RasMan C:\Windows\System32\rasmans.dll
16:00:28.0604 0x1748 RasMan - ok
16:00:28.0635 0x1748 [ 0FE8B15916307A6AC12BFB6A63E45507, 64119474DE7499E6E8B82E78BBD50074B3AA70B3E8329089FAE9B7F29919004E ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
16:00:28.0670 0x1748 RasPppoe - ok
16:00:28.0685 0x1748 [ 44101F495A83EA6401D886E7FD70096B, 56A0CE5C89870752B9B2AB795C1A248CA28209E049B2F20CCA0308CBE2488A0A ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
16:00:28.0716 0x1748 RasSstp - ok
16:00:28.0732 0x1748 [ D528BC58A489409BA40334EBF96A311B, C71E9A4B101DB6C3183B9F97B9098D73D6FE1B12C05C2EB3CE8A8041BEE6BA61 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
16:00:28.0779 0x1748 rdbss - ok
16:00:28.0810 0x1748 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF, 2AFCBE3237D27AFBF095F91F1FCCA63E6890F34A9E4F00E5C34C92394CDA89FB ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
16:00:28.0826 0x1748 rdpbus - ok
16:00:28.0841 0x1748 [ 23DAE03F29D253AE74C44F99E515F9A1, 8FED93D10B2062F0526FE3508101F8FCF8F72DEB90AFB472EB7CBAE83A0EC430 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
16:00:28.0857 0x1748 RDPCDD - ok
16:00:28.0888 0x1748 [ B973FCFC50DC1434E1970A146F7E3885, BE797E5F5AE34D37F8DA1134CE94DD14DBE36D2BC405B97E992E2257848B7CA9 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
16:00:28.0919 0x1748 RDPDR - ok
16:00:28.0935 0x1748 [ 5A53CA1598DD4156D44196D200C94B8A, 8112FE14FEC94C67B1C5BDE4171E37584F1D0098D2C557C9E4BDD3E0291E25E4 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
16:00:28.0966 0x1748 RDPENCDD - ok
16:00:28.0982 0x1748 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F, CDA80B08E67AD034081C0C920CD66147689F1844403CBC552F65005E7C011A91 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
16:00:29.0028 0x1748 RDPREFMP - ok
16:00:29.0060 0x1748 [ CD9214A6AE17D188D17C3CF8CB9CC693, 2E16FF1F7446F0600D6519010FD05A30B94D97167C16B3E7FC396A97D8139D60 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
16:00:29.0122 0x1748 RDPWD - ok
16:00:29.0153 0x1748 [ 518395321DC96FE2C9F0E96AC743B656, 5F6A0880B4F3EE7196259EA362DA9554B0687B0236F9A8E5CF7A4A77F01F1776 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
16:00:29.0169 0x1748 rdyboost - ok
16:00:29.0200 0x1748 [ 7B5E1419717FAC363A31CC302895217A, 048B96B127CC20833948DAE53C59886D5C725ECA7A744424A01339447D2DDC32 ] RemoteAccess C:\Windows\System32\mprdim.dll
16:00:29.0231 0x1748 RemoteAccess - ok
16:00:29.0247 0x1748 [ CB9A8683F4EF2BF99E123D79950D7935, B9FA3E7E91E76D975CF40BFA37909E50F29CC13AB1399007884710651827E9AA ] RemoteRegistry C:\Windows\system32\regsvc.dll
16:00:29.0294 0x1748 RemoteRegistry - ok
16:00:29.0309 0x1748 [ 78D072F35BC45D9E4E1B61895C152234, 80C924EE1156B4E3172E83DCB9C60817E87885FB9377647E0BF90153E415B1CA ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
16:00:29.0340 0x1748 RpcEptMapper - ok
16:00:29.0356 0x1748 [ 94D36C0E44677DD26981D2BFEEF2A29D, D77A93AC60536F3706E8A0154C0C2199E888B7748C84DB7437254FF175F4DF55 ] RpcLocator C:\Windows\system32\locator.exe
16:00:29.0356 0x1748 RpcLocator - ok
16:00:29.0387 0x1748 [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] RpcSs C:\Windows\system32\rpcss.dll
16:00:29.0418 0x1748 RpcSs - ok
16:00:29.0434 0x1748 [ 032B0D36AD92B582D869879F5AF5B928, 0F8F18A6A0A689957B886D9368015889091094EDA18BE532093F06A70A7CE184 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
16:00:29.0481 0x1748 rspndr - ok
16:00:29.0528 0x1748 [ 3849D5D73BDD9B7BC4E3305DDC345B2C, CCB81EB36DB8A7027EAB0C5BA28D77694AD25BD11A222B4B6BF3932E284F77A1 ] RTL8167 C:\Windows\system32\DRIVERS\Rt86win7.sys
16:00:29.0543 0x1748 RTL8167 - ok
16:00:29.0574 0x1748 [ 7FA7F2E249A5DCBB7970630E15E1F482, 9633B193F3FDA67BC551C6DCA4788AB83E9F45F77763EE579D02FE5D6B80DEDF ] s3cap C:\Windows\system32\drivers\vms3cap.sys
16:00:29.0606 0x1748 s3cap - ok
16:00:29.0621 0x1748 [ 981CE3E3A653511799F4A862494B66A8, 414D975387A118535E39636413969A7D4C98A85E542A44B8FA515C8A20D6093F ] SamSs C:\Windows\system32\lsass.exe
16:00:29.0621 0x1748 SamSs - ok
16:00:29.0668 0x1748 [ 05D860DA1040F111503AC416CCEF2BCA, DAE2F37D09A5A42F945BC8E27E4EA2303521081783A80CEE7FEE7C5A1C2CFC5E ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
16:00:29.0715 0x1748 sbp2port - ok
16:00:29.0730 0x1748 [ 8FC518FFE9519C2631D37515A68009C4, 21E10585470CF9FC3BD1977F8A426686CD2FA6BD2094B9E3594B21C7C4541D25 ] SCardSvr C:\Windows\System32\SCardSvr.dll
16:00:29.0793 0x1748 SCardSvr - ok
16:00:29.0808 0x1748 [ 0693B5EC673E34DC147E195779A4DCF6, AF1B56FBF3ADABF94CD9DBA67586B8746DE135151F6B3D1B0EE315BC1E2DB670 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
16:00:29.0840 0x1748 scfilter - ok
16:00:29.0886 0x1748 [ A04BB13F8A72F8B6E8B4071723E4E336, E63287FF71C39CBF64C3347C455324C8437F9CF398153E269543588B65389502 ] Schedule C:\Windows\system32\schedsvc.dll
16:00:29.0933 0x1748 Schedule - ok
16:00:29.0949 0x1748 [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] SCPolicySvc C:\Windows\System32\certprop.dll
16:00:29.0964 0x1748 SCPolicySvc - ok
16:00:29.0980 0x1748 [ 08236C4BCE5EDD0A0318A438AF28E0F7, 77727F963F63C4CEC11E7AAD5FB3836179701D512CA9436C3170B9E6A4E5F888 ] SDRSVC C:\Windows\System32\SDRSVC.dll
16:00:30.0027 0x1748 SDRSVC - ok
16:00:30.0058 0x1748 [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv C:\Windows\system32\drivers\secdrv.sys
16:00:30.0089 0x1748 secdrv - ok
16:00:30.0120 0x1748 [ A59B3A4442C52060CC7A85293AA3546F, 1776D6DEE51991149265AAF39E17065E301C5FA1FF4068653DC0010B9B27185D ] seclogon C:\Windows\system32\seclogon.dll
16:00:30.0152 0x1748 seclogon - ok
16:00:30.0167 0x1748 [ DCB7FCDCC97F87360F75D77425B81737, F8289AF2C458C167038EEFE613EE5E3D6D5B3308B8784168374BC81C47891CE5 ] SENS C:\Windows\System32\sens.dll
16:00:30.0214 0x1748 SENS - ok
16:00:30.0230 0x1748 [ 50087FE1EE447009C9CC2997B90DE53F, B5E6CF1D991F87C29C5E28198E0962E31FFB499A46C3BD43FC20391693389959 ] SensrSvc C:\Windows\system32\sensrsvc.dll
16:00:30.0276 0x1748 SensrSvc - ok
16:00:30.0308 0x1748 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1, E2F019BCD1446236D078D46065DD151DD068778F33BE2F1E8A0CC1EA2F954E86 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
16:00:30.0323 0x1748 Serenum - ok
16:00:30.0323 0x1748 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2, A26DB2EB9F3E2509B4EBA949DB97595CC32332D9321DF68283BFC102E66D766F ] Serial C:\Windows\system32\DRIVERS\serial.sys
16:00:30.0354 0x1748 Serial - ok
16:00:30.0370 0x1748 [ 79BFFB520327FF916A582DFEA17AA813, 7A2A9D69BE02228591186A9F4453D4B5FD98837CA422C873C48040170E8BD18C ] sermouse C:\Windows\system32\drivers\sermouse.sys
16:00:30.0370 0x1748 sermouse - ok
16:00:30.0401 0x1748 [ 4AE380F39A0032EAB7DD953030B26D28, C8F5F2DD59574E966FDF3057867BB959A554BAB6FD5DC6F1427094A6BC2B2809 ] SessionEnv C:\Windows\system32\sessenv.dll
16:00:30.0432 0x1748 SessionEnv - ok
16:00:30.0448 0x1748 [ 9F976E1EB233DF46FCE808D9DEA3EB9C, 6A5C53F27F8BCA85CE206EE7D196176F67EC6FFA5D4830373A20792C149B5E75 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
16:00:30.0464 0x1748 sffdisk - ok
16:00:30.0464 0x1748 [ 932A68EE27833CFD57C1639D375F2731, 11D6B98FBEEE2B9C7B06EF7091857BBD3B349077997D6261D66280668FD1B5C3 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
16:00:30.0495 0x1748 sffp_mmc - ok
16:00:30.0510 0x1748 [ 6D4CCAEDC018F1CF52866BBBAA235982, AAC41F5C97B3FE5A3DC0838457EB8CC9BB71FCA16D3EDBB67D603F0A9D46C131 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
16:00:30.0542 0x1748 sffp_sd - ok
16:00:30.0557 0x1748 [ DB96666CC8312EBC45032F30B007A547, C3AE60FC65A36E96E0D2CC6E184481D70F91A19DC3E2E17E2873DD670A592DD7 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
16:00:30.0573 0x1748 sfloppy - ok
16:00:30.0620 0x1748 [ D1A079A0DE2EA524513B6930C24527A2, E2BC16DBCF38841EECD49C6FA1A9AC89C17F332F12606CA826F058E995E1B83D ] SharedAccess C:\Windows\System32\ipnathlp.dll
16:00:30.0698 0x1748 SharedAccess - ok
16:00:30.0729 0x1748 [ 414DA952A35BF5D50192E28263B40577, 9C9BAFB9880DA6CC728506A142BE124E186219610DCC3460657A3CA93C865DF1 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
16:00:30.0760 0x1748 ShellHWDetection - ok
16:00:30.0776 0x1748 [ 2565CAC0DC9FE0371BDCE60832582B2E, 1A775214E86B83C2F1799F12D71077D81C89AD32734A248BA88787B7F104B79D ] sisagp C:\Windows\system32\drivers\sisagp.sys
16:00:30.0791 0x1748 sisagp - ok
16:00:30.0822 0x1748 [ A9F0486851BECB6DDA1D89D381E71055, 7E909538AB758C18AC2CCBFFEE17BA36FA6ED2E674AA70924AA87AC61375FF35 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
16:00:30.0838 0x1748 SiSRaid2 - ok
16:00:30.0854 0x1748 [ 3727097B55738E2F554972C3BE5BC1AA, 75D52A596A298C33EC79A3B0B80F25492C08A182ABC679401502DA9597687566 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
16:00:30.0869 0x1748 SiSRaid4 - ok
16:00:30.0900 0x1748 [ 3E21C083B8A01CB70BA1F09303010FCE, 803F8F91299C387110F34A49340E7136AAE91B418E2977A36285EA8F432FF197 ] Smb C:\Windows\system32\DRIVERS\smb.sys
16:00:30.0932 0x1748 Smb - ok
16:00:30.0963 0x1748 [ 6A984831644ECA1A33FFEAE4126F4F37, 753E23D2B33D47C52C05D892B052CFD96D93B97FB6E9FCB58EF1E4C4A125BF78 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
16:00:30.0994 0x1748 SNMPTRAP - ok
16:00:31.0010 0x1748 [ 95CF1AE7527FB70F7816563CBC09D942, CE8BACB91A5A86CBCE82619C6C1873B4D7593B00CED3B522E41B8F7F6258CC65 ] spldr C:\Windows\system32\drivers\spldr.sys
16:00:31.0025 0x1748 spldr - ok
16:00:31.0056 0x1748 [ 9AEA093B8F9C37CF45538382CABA2475, CC63239C412067AA72318ADB8BB80BCDF2CA60DA05D814D32753C92508BC16A8 ] Spooler C:\Windows\System32\spoolsv.exe
16:00:31.0103 0x1748 Spooler - ok
16:00:31.0275 0x1748 [ CF87A1DE791347E75B98885214CED2B8, 7AF4E03D751C951A4E5FBA28200DABFE6B3BF055490163EEEEA84EBA4D0F368A ] sppsvc C:\Windows\system32\sppsvc.exe
16:00:31.0431 0x1748 sppsvc - ok
16:00:31.0446 0x1748 [ B0180B20B065D89232A78A40FE56EAA6, 4D045B23AD58A8822BE9F20119744A8D47455469D54494745CEB099951DA60FF ] sppuinotify C:\Windows\system32\sppuinotify.dll
16:00:31.0493 0x1748 sppuinotify - ok
16:00:31.0556 0x1748 [ CDDDEC541BC3C96F91ECB48759673505, B030FFA02832317AC5626BF1BF8A4A95A5992C9A6E81BC1C002D5F4D667C27FB ] sptd C:\Windows\system32\Drivers\sptd.sys
16:00:31.0556 0x1748 Suspicious file ( NoAccess ): C:\Windows\system32\Drivers\sptd.sys. md5: CDDDEC541BC3C96F91ECB48759673505, sha256: B030FFA02832317AC5626BF1BF8A4A95A5992C9A6E81BC1C002D5F4D667C27FB
16:00:31.0556 0x1748 sptd - detected LockedFile.Multi.Generic ( 1 )
16:00:34.0068 0x1748 Detect skipped due to KSN trusted
16:00:34.0068 0x1748 sptd - ok
16:00:34.0099 0x1748 [ E4C2764065D66EA1D2D3EBC28FE99C46, 043AEF06A23069DD17675955C834690A5FD8F1948A05B3969F977E823C4E25F5 ] srv C:\Windows\system32\DRIVERS\srv.sys
16:00:34.0193 0x1748 srv - ok
16:00:34.0240 0x1748 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB, 4DF31206DF8F33C2975E23C7257ED930C4EDA8BC4E246D8FDA130BB583083ED0 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
16:00:34.0287 0x1748 srv2 - ok
16:00:34.0318 0x1748 [ BE6BD660CAA6F291AE06A718A4FA8ABC, CD38939CFBA80B882D38099194FC1EBAE15A9D27A4D941DD03C55EC745E52E59 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
16:00:34.0349 0x1748 srvnet - ok
16:00:34.0380 0x1748 [ D887C9FD02AC9FA880F6E5027A43E118, F38BAD90EC791368C37C21090302708D2DFB83ECE9096609AD9AA667B2E5592E ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
16:00:34.0411 0x1748 SSDPSRV - ok
16:00:34.0443 0x1748 [ A36EE93698802CD899F98BFD553D8185, 224CFED921EA230FF8025D259E34968FD2C0FD34BB3A918FB4B9B8BA42BEA5D3 ] ssmdrv C:\Windows\system32\DRIVERS\ssmdrv.sys
16:00:34.0458 0x1748 ssmdrv - ok
16:00:34.0474 0x1748 [ D318F23BE45D5E3A107469EB64815B50, D74355E6FF215AA8CE53BC9DF16AF2740F2FC2FD754939478A3608BDA8C6DDA0 ] SstpSvc C:\Windows\system32\sstpsvc.dll
16:00:34.0505 0x1748 SstpSvc - ok
16:00:34.0521 0x1748 [ DB32D325C192B801DF274BFD12A7E72B, F089DBA719E22BC269720A6B840B873A4AF5639745DB0C3DBC8BD2F2839A1ABA ] stexstor C:\Windows\system32\drivers\stexstor.sys
16:00:34.0536 0x1748 stexstor - ok
16:00:34.0583 0x1748 [ EDB05BD63148796F23EA78506404A538, 8EBF623D3DEB6CCAC75AAFCF8B23271029A28BE29D459088E40FBF109E80AA17 ] StillCam C:\Windows\system32\DRIVERS\serscan.sys
16:00:34.0630 0x1748 StillCam - ok
16:00:34.0692 0x1748 [ E1FB3706030FB4578A0D72C2FC3689E4, A62EC9AA4514CAF2A10C0A3AEF7A36F593A7E7DA370A3F130C24E1B612E19427 ] StiSvc C:\Windows\System32\wiaservc.dll
16:00:34.0739 0x1748 StiSvc - ok
16:00:34.0770 0x1748 [ 472AF0311073DCECEAA8FA18BA2BDF89, 089414057EB2047E42C96C1ACE79D509967461DC5A4D2836F63C04268637A3FC ] storflt C:\Windows\system32\drivers\vmstorfl.sys
16:00:34.0786 0x1748 storflt - ok
16:00:34.0817 0x1748 [ 0BF669F0A910BEDA4A32258D363AF2A5, 83EEBACDE4F69A2866B69CAA633F5C8B3CB01D88CEDB01B6EA5988E0A25CEE47 ] StorSvc C:\Windows\system32\storsvc.dll
16:00:34.0864 0x1748 StorSvc - ok
16:00:34.0879 0x1748 [ DCAFFD62259E0BDB433DD67B5BB37619, CBD12FF9BBF33D18B0F3D322B12EC62E7DF3BF45C6AD43D2E91FF4C4762E05D0 ] storvsc C:\Windows\system32\drivers\storvsc.sys
16:00:34.0895 0x1748 storvsc - ok
16:00:34.0911 0x1748 [ E58C78A848ADD9610A4DB6D214AF5224, 1575A90EB22A4FB066459BDA00C6CAC10198C3C8C74493721EC6D34B51F50426 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
16:00:34.0926 0x1748 swenum - ok
16:00:34.0957 0x1748 [ A28BD92DF340E57B024BA433165D34D7, 889CC7FF143C3549982128473FF927CD80CF36485A347EF399C1271C8CE12CE4 ] swprv C:\Windows\System32\swprv.dll
16:00:35.0004 0x1748 swprv - ok
16:00:35.0051 0x1748 [ 36650D618CA34C9D357DFD3D89B2C56F, 7C3774E53DCF32CB3A4B3504E32D2A651E18467FA0A6AC4C7993C696741B704B ] SysMain C:\Windows\system32\sysmain.dll
16:00:35.0113 0x1748 SysMain - ok
16:00:35.0129 0x1748 [ 763FECDC3D30C815FE72DD57936C6CD1, 1A62C7E63E426D56894F4121C75D9C60FC9A14469ADBD0D6F0B94B8DE48CDA3E ] TabletInputService C:\Windows\System32\TabSvc.dll
16:00:35.0145 0x1748 TabletInputService - ok
16:00:35.0176 0x1748 [ 613BF4820361543956909043A265C6AC, FCFF02E466D2501630B452627FB218C01E5245A0921EE3D2117E7FD63AC7E98E ] TapiSrv C:\Windows\System32\tapisrv.dll
16:00:35.0238 0x1748 TapiSrv - ok
16:00:35.0254 0x1748 [ B799D9FDB26111737F58288D8DC172D9, 409A60819A4305699E2E492A6190637FAAEBD19E745A5DB2A5D6977106C86591 ] TBS C:\Windows\System32\tbssvc.dll
16:00:35.0285 0x1748 TBS - ok
16:00:35.0363 0x1748 [ 5579DD18546999F5D0EC39D018726C6B, 82432BACEE75C34F21222D9CC1607223C2940947118A63DB239777A4B1442AD3 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
16:00:35.0457 0x1748 Tcpip - ok
16:00:35.0519 0x1748 [ 5579DD18546999F5D0EC39D018726C6B, 82432BACEE75C34F21222D9CC1607223C2940947118A63DB239777A4B1442AD3 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
16:00:35.0566 0x1748 TCPIP6 - ok
16:00:35.0581 0x1748 [ 3EEBD3BD93DA46A26E89893C7AB2FF3B, 2C7204DCD2BCBC6A250FF0F6477616F327AF41FDB7CABE69E5C357361009FB4E ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
16:00:35.0597 0x1748 tcpipreg - ok
16:00:35.0613 0x1748 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2, 879E2827354BB21573AC6A7CCEB746D44214540687E6882FFCB4089546FBD954 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
16:00:35.0675 0x1748 TDPIPE - ok
16:00:35.0691 0x1748 [ 2C2C5AFE7EE4F620D69C23C0617651A8, E828D974C3F9D7004A030C3AD448096C736FDB4C4C1707D043E567D08C845103 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
16:00:35.0722 0x1748 TDTCP - ok
16:00:35.0753 0x1748 [ 7FE680A3DFA421C4A8E4879AE4C5AAB0, A4C64E155AB2843823CD3586756BA7681CFDEA50812095468221503BBAD30DCD ] tdx C:\Windows\system32\DRIVERS\tdx.sys
16:00:35.0784 0x1748 tdx - ok
16:00:36.0049 0x1748 [ 0F2A43DB0A4A70EF400295F413527293, D67D78CFB47E9EA1C1D9B37BFFFB44320A6ECC2D0C029768517C64F3A1882E19 ] TeamViewer8 C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe
16:00:36.0346 0x1748 TeamViewer8 - ok
16:00:36.0377 0x1748 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20, 0D81B427720637882077C5024D738191F858FC734ED040697872D906351EF663 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
16:00:36.0393 0x1748 TermDD - ok
16:00:36.0424 0x1748 [ FCFD4F50419B4BC72E80066DA10D2E54, 7C2314A57A404525F0444986332DBAE0964A3359374671598387051D7AAE72AE ] TermService C:\Windows\System32\termsrv.dll
16:00:36.0455 0x1748 TermService - ok
16:00:36.0471 0x1748 [ 42FB6AFD6B79D9FE07381609172E7CA4, B57C85091209A2FAD19ED490B8FA7FC98F12911F9C9CACE9AF1E540780CE6700 ] Themes C:\Windows\system32\themeservice.dll
16:00:36.0502 0x1748 Themes - ok
16:00:36.0517 0x1748 [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] THREADORDER C:\Windows\system32\mmcss.dll
16:00:36.0533 0x1748 THREADORDER - ok
16:00:36.0549 0x1748 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A, 532A3A812578B2DFD83001DE66FC73689D79EC729409EB572E07E6D65B281712 ] TrkWks C:\Windows\System32\trkwks.dll
16:00:36.0564 0x1748 TrkWks - ok
16:00:36.0611 0x1748 [ 2C49B175AEE1D4364B91B531417FE583, 6C7995E18F84E465C376D1D5F153C15ACB66CDEA86EE5BF186677F572E7E129B ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
16:00:36.0642 0x1748 TrustedInstaller - ok
16:00:36.0673 0x1748 [ 6C5139E4283249518F7743D7043775B3, 58684E8C90EBAC65459A97C905CDCFE3A915CFF7E8E96071DE1AC3489F85E67F ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
16:00:36.0720 0x1748 tssecsrv - ok
16:00:36.0751 0x1748 [ C6A5FBD4977305E1FA23E02C042DB463, A6EB5E4B8051A258D40A385609E930318EAA3494C8466F48542B806FE6A7C47A ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
16:00:36.0783 0x1748 TsUsbFlt - ok
16:00:36.0798 0x1748 [ 01246F0BAAD7B68EC0F472AA41E33282, 51F975AF029AD015576FFFA3E88F5DBB8B40C7CD30ECDEDE8AFABCB08C954199 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
16:00:36.0845 0x1748 TsUsbGD - ok
16:00:36.0876 0x1748 [ B2FA25D9B17A68BB93D58B0556E8C90D, 0146931B733CAB1CD87F94C35F97E110D6ED6C55EAFF03345400A29AEDE99BDE ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
16:00:36.0954 0x1748 tunnel - ok
16:00:36.0970 0x1748 [ 750FBCB269F4D7DD2E420C56B795DB6D, E1A95C59148FE463539C34336FD0E74B31A33B8AB2B8E34AA10349C3347471D7 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
16:00:36.0985 0x1748 uagp35 - ok
16:00:36.0985 0x1748 [ EE43346C7E4B5E63E54F927BABBB32FF, BAD6FC3BEE45E644D5A6A0A31428F5B2AEC72A0AA0C74EF8177B1FE23EEF3AA9 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
16:00:37.0032 0x1748 udfs - ok
16:00:37.0063 0x1748 [ 8344FD4FCE927880AA1AA7681D4927E5, 1B54EFA60A221E2B9FFE59BB41C7E7D8B5AC6826F1C5577456D81371D464255A ] UI0Detect C:\Windows\system32\UI0Detect.exe
16:00:37.0079 0x1748 UI0Detect - ok
16:00:37.0126 0x1748 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880, 5D96D90FDF68AE470CC92CA9DF9DA2C05A53EF455A5A109DBBF7C96F3238257C ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
16:00:37.0141 0x1748 uliagpkx - ok
16:00:37.0157 0x1748 [ D295BED4B898F0FD999FCFA9B32B071B, D4130DB4AE76EE6DC0B8E7A4FEF5CB8B26EBD822C21021F6FA78FD29C1E211C2 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
16:00:37.0188 0x1748 umbus - ok
16:00:37.0204 0x1748 [ 7550AD0C6998BA1CB4843E920EE0FEAC, 24C001E422C3B3B920CDCF6003A3179CE464DE4284775403DD5122EF9780460D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
16:00:37.0219 0x1748 UmPass - ok
16:00:37.0251 0x1748 [ 409994A8EACEEE4E328749C0353527A0, FFC57B647147DE2957A7DE4B330CC534DE7AC892A2FCE3BB164F7A516CAB1B56 ] UmRdpService C:\Windows\System32\umrdp.dll
16:00:37.0266 0x1748 UmRdpService - ok
16:00:37.0297 0x1748 [ 833FBB672460EFCE8011D262175FAD33, C0C3067A305993CBF056C229771CB0593DD60C9C7AC5130FF1CA610BCA812AB5 ] upnphost C:\Windows\System32\upnphost.dll
16:00:37.0329 0x1748 upnphost - ok
16:00:37.0344 0x1748 [ EC1C23779BB41A8B2AB2AA6FCE308BDE, D027A2B472CAE97AECB16F69BE52E06CB61E1C61AE196C22662050B711C1C72D ] USBAAPL C:\Windows\system32\Drivers\usbaapl.sys
16:00:37.0360 0x1748 USBAAPL - detected UnsignedFile.Multi.Generic ( 1 )
16:00:39.0857 0x1748 Detect skipped due to KSN trusted
16:00:39.0857 0x1748 USBAAPL - ok
16:00:39.0904 0x1748 [ 0803FBA9FE829D61AE26EC0BCC910C46, 30D00E2C7DFC630C99C1599587D4F9C272BC30D444E07C961AA05BF84587806B ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
16:00:39.0950 0x1748 usbccgp - ok
16:00:39.0982 0x1748 [ 2352AB5F9F8F097BF9D41D5A4718A041, 25BC7828C625B9B2A5110C25B230C5828CEC18EC97ECF9EC4745E8930CBF472C ] usbcir C:\Windows\system32\drivers\usbcir.sys
16:00:39.0997 0x1748 usbcir - ok
16:00:40.0028 0x1748 [ D40855F89B69305140BBD7E9A3BA2DA6, 745DC6D770666F6B19C2B6AA89C21D1A314732E291453BFA2367F9AF86F97C3C ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
16:00:40.0028 0x1748 usbehci - ok
16:00:40.0075 0x1748 [ 4A3804458500F801D91B47131D350E3B, 9921878484CC047F0E9A5E8B0B127ABDA40FEC5DF7E46A034A1B8C6B533E4E7D ] usbfilter C:\Windows\system32\DRIVERS\usbfilter.sys
16:00:40.0075 0x1748 usbfilter - ok
16:00:40.0122 0x1748 [ EDF2DF71C4F1E13A6AC75F5224DE655A, 1764D155C6B99201774B57195349304259232A12868ECFC2069CA49443EBDC2C ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
16:00:40.0138 0x1748 usbhub - ok
16:00:40.0153 0x1748 [ 9828C8D14CC2676421778F0DE638CF97, 479A28211FFB85190A01FAB0283B927588805D2C0CDB03F85F8F814B88E4F453 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
16:00:40.0169 0x1748 usbohci - ok
16:00:40.0184 0x1748 [ 797D862FE0875E75C7CC4C1AD7B30252, 1BBE745E4C85F8911076F6032ACD7A35FAC048D3CB1500C64E08D8B2C70A1069 ] usbprint C:\Windows\system32\drivers\usbprint.sys
16:00:40.0216 0x1748 usbprint - ok
16:00:40.0247 0x1748 [ F991AB9CC6B908DB552166768176896A, AD8E7A16B23B244B7F834622D4E38B5844193C6E31EF96F61E0E2EA16C945026 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
16:00:40.0294 0x1748 USBSTOR - ok
16:00:40.0309 0x1748 [ 800AABFD625EEFF899F7E5496BDE37AB, 3EB7ED07760CB348FCA9A06C2B838EF79B51A83C5F70A9C9EAAEAE54480067E2 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
16:00:40.0325 0x1748 usbuhci - ok
16:00:40.0356 0x1748 [ 081E6E1C91AEC36758902A9F727CD23C, 9FDAA17A3B99067E035E5D76305427F15FFDBC5D304B2BB78AFC6463EDDE1A75 ] UxSms C:\Windows\System32\uxsms.dll
16:00:40.0387 0x1748 UxSms - ok
16:00:40.0387 0x1748 [ 981CE3E3A653511799F4A862494B66A8, 414D975387A118535E39636413969A7D4C98A85E542A44B8FA515C8A20D6093F ] VaultSvc C:\Windows\system32\lsass.exe
16:00:40.0403 0x1748 VaultSvc - ok
16:00:40.0434 0x1748 [ A059C4C3EDB09E07D21A8E5C0AABD3CB, BDD3729B49DF2E2FC72FFEF9D10235B481A671DE5A721B6B9A80873B7A343F07 ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
16:00:40.0450 0x1748 vdrvroot - ok
16:00:40.0481 0x1748 [ C3CD30495687C2A2F66A65CA6FD89BE9, 582E4706C1D6A151020D14B26C7BF166F4E42BDD6E410F30EC452469270C5E9B ] vds C:\Windows\System32\vds.exe
16:00:40.0528 0x1748 vds - ok
16:00:40.0543 0x1748 [ 17C408214EA61696CEC9C66E388B14F3, 829C0416672E2B2DFABCFE641E7F281F41E8DBB3C0EF11C7784CB9BB94F87E97 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
16:00:40.0574 0x1748 vga - ok
16:00:40.0590 0x1748 [ 8E38096AD5C8570A6F1570A61E251561, 4DBA3C1397A2203548F45F006E66D99F837903F601ABBCE2304754F783CA8A39 ] VgaSave C:\Windows\System32\drivers\vga.sys
16:00:40.0621 0x1748 VgaSave - ok
16:00:40.0637 0x1748 [ 5461686CCA2FDA57B024547733AB42E3, 2721D0659AA890172FCAD4EC4D926B58ACD0EE4887DA51545DC7237420D5BF84 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
16:00:40.0652 0x1748 vhdmp - ok
16:00:40.0668 0x1748 [ C829317A37B4BEA8F39735D4B076E923, 55D1796AE750071E1E05BD7702B6C355CCFFE27B4C00E93E7044C3184732B497 ] viaagp C:\Windows\system32\drivers\viaagp.sys
16:00:40.0699 0x1748 viaagp - ok
16:00:40.0715 0x1748 [ E02F079A6AA107F06B16549C6E5C7B74, B530DCE3EE4F285B3D5F69F7148D17E016D54F04E6F93706B829A34567748788 ] ViaC7 C:\Windows\system32\drivers\viac7.sys
16:00:40.0730 0x1748 ViaC7 - ok
16:00:40.0762 0x1748 [ E43574F6A56A0EE11809B48C09E4FD3C, 3687BF638E21C00E62ABFED70D728B91ADA08F7164CA898E654F31DA196589E9 ] viaide C:\Windows\system32\drivers\viaide.sys
16:00:40.0777 0x1748 viaide - ok
16:00:40.0793 0x1748 [ C2F2911156FDC7817C52829C86DA494E, FE499F189B5016FCE0018AA3DE3970B72275B7B15F3D4D608117F6DDEC6B90DC ] vmbus C:\Windows\system32\drivers\vmbus.sys
16:00:40.0824 0x1748 vmbus - ok
16:00:40.0824 0x1748 [ D4D77455211E204F370D08F4963063CE, 2018B2A84C73E0834200A594C02A9D28C74906F126DAD3CCDDFC9CD9A61669E2 ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
16:00:40.0855 0x1748 VMBusHID - ok
16:00:40.0871 0x1748 [ 4C63E00F2F4B5F86AB48A58CD990F212, 9796BD4B9CFEEEAF57C5E332A732EFC2770B21F9B35301A5D202F5FC52C1E035 ] volmgr C:\Windows\system32\drivers\volmgr.sys
16:00:40.0886 0x1748 volmgr - ok
16:00:40.0902 0x1748 [ B5BB72067DDDDBBFB04B2F89FF8C3C87, 65B9AD55F43940A5FDD88B6EC5034A7E375DF8E6F5F1AE6519A4BD6B7E992EBC ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
16:00:40.0933 0x1748 volmgrx - ok
16:00:40.0949 0x1748 [ F497F67932C6FA693D7DE2780631CFE7, DAE544ED99D2CF570DA31343BD87D2F856D0D13529656D38E1BF854C77F017F6 ] volsnap C:\Windows\system32\drivers\volsnap.sys
16:00:40.0964 0x1748 volsnap - ok
16:00:40.0996 0x1748 [ 9DFA0CC2F8855A04816729651175B631, 37FD9E43A2A3F125E94A315FB4CD8A1B5499A5FD74806EB2D1E5DA88C070D3A3 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
16:00:41.0011 0x1748 vsmraid - ok
16:00:41.0089 0x1748 [ 209A3B1901B83AEB8527ED211CCE9E4C, 1A431F6409F8E0531F600F8F988ECECECB902DA26BBAAF1DE74A5CAC29A7CB44 ] VSS C:\Windows\system32\vssvc.exe
16:00:41.0214 0x1748 VSS - ok
16:00:41.0230 0x1748 [ 90567B1E658001E79D7C8BBD3DDE5AA6, EFC23BEEA7F54A2DC56CB523DAD1AF0358D904C5278BF08873910E2DB3F13557 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
16:00:41.0261 0x1748 vwifibus - ok
16:00:41.0276 0x1748 [ 55187FD710E27D5095D10A472C8BAF1C, AE298E2D3BA366BCBDC092C717214C181E8843FA564A6DFB07FC3238A5A68DC3 ] W32Time C:\Windows\system32\w32time.dll
16:00:41.0308 0x1748 W32Time - ok
16:00:41.0323 0x1748 [ DE3721E89C653AA281428C8A69745D90, 501C78056ED4295625D8A5412025FD2F0CA24077044D3A5800BA79DF3D946516 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
16:00:41.0339 0x1748 WacomPen - ok
16:00:41.0354 0x1748 [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
16:00:41.0386 0x1748 WANARP - ok
16:00:41.0386 0x1748 [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
16:00:41.0401 0x1748 Wanarpv6 - ok
16:00:41.0464 0x1748 [ 691E3285E53DCA558E1A84667F13E15A, 12EDB66EF8FC100402BEA221F354D3BD5542F6DDF715B6E7D873D6BAE7E3D329 ] wbengine C:\Windows\system32\wbengine.exe
16:00:41.0542 0x1748 wbengine - ok
16:00:41.0557 0x1748 [ 9614B5D29DC76AC3C29F6D2D3AA70E67, A2FFB92F0030B4CD771E862DA575ECCF2F3A5B4B85858C1241A0C59262C0EC88 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
16:00:41.0588 0x1748 WbioSrvc - ok
16:00:41.0620 0x1748 [ 34EEE0DFAADB4F691D6D5308A51315DC, A040A03E25A0C78B9E26F86C2DF95BCAF8E7EC90183CEB295615D3265350EBEE ] wcncsvc C:\Windows\System32\wcncsvc.dll
16:00:41.0651 0x1748 wcncsvc - ok
16:00:41.0666 0x1748 [ 5D930B6357A6D2AF4D7653BDABBF352F, 677FF2ED14EE0B0CAA710DA81556CC16D5971DAB10E7C7432D167A87CA6F0EAA ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
16:00:41.0698 0x1748 WcsPlugInService - ok
16:00:41.0729 0x1748 [ 1112A9BADACB47B7C0BB0392E3158DFF, 1AE2AFA125973571F91E6945FE8A735F63D76EBB250A0075D98C580167FD9ED4 ] Wd C:\Windows\system32\drivers\wd.sys
16:00:41.0729 0x1748 Wd - ok
16:00:41.0776 0x1748 [ 25944D2CC49E0A6C581D02A74B7D6645, AF8FFAFEC07F1A6A3D4008E609E8E1D705A8DFCC7995C766E3946887203F7BEE ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
16:00:41.0807 0x1748 Wdf01000 - ok
16:00:41.0838 0x1748 [ DDE994E9159497D0D5AB2CDF66D1EAD6, 49BEDECA469C47E7622542D3B9BCD31ECDDAA27838495EC5C2F1338E33FEA877 ] WdiServiceHost C:\Windows\system32\wdi.dll
16:00:41.0854 0x1748 WdiServiceHost - ok
16:00:41.0869 0x1748 [ DDE994E9159497D0D5AB2CDF66D1EAD6, 49BEDECA469C47E7622542D3B9BCD31ECDDAA27838495EC5C2F1338E33FEA877 ] WdiSystemHost C:\Windows\system32\wdi.dll
16:00:41.0885 0x1748 WdiSystemHost - ok
16:00:41.0900 0x1748 [ 75E8EBD7040CE238684333F97014762A, 2CA0B267FBAEB303D1F8B639D733DC0DE17BA1276CC9096035B4F2BBBED3EF7F ] WebClient C:\Windows\System32\webclnt.dll
16:00:41.0978 0x1748 WebClient - ok
16:00:42.0010 0x1748 [ 760F0AFE937A77CFF27153206534F275, A53940BA28854486FF18F16B98A3314B36322B0B6EFB54D08B921315BEB0ADD5 ] Wecsvc C:\Windows\system32\wecsvc.dll
16:00:42.0041 0x1748 Wecsvc - ok
16:00:42.0056 0x1748 [ AC804569BB2364FB6017370258A4091B, 1856F354146A5946F3E7D0DD09726FC8A3502B0F0776FEADDF10669C81CC28E2 ] wercplsupport C:\Windows\System32\wercplsupport.dll
16:00:42.0119 0x1748 wercplsupport - ok
16:00:42.0150 0x1748 [ 08E420D873E4FD85241EE2421B02C4A4, E1E9436EB096FF7DE9A76DA6217035257EF9FC7565DDB9016DCA3859E7F1EF0F ] WerSvc C:\Windows\System32\WerSvc.dll
16:00:42.0166 0x1748 WerSvc - ok
16:00:42.0181 0x1748 [ 8B9A943F3B53861F2BFAF6C186168F79, 88E2F79F32AFBA17CB8377A508B83A1EC2315E9F3A365F591C87FE4525AA6713 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
16:00:42.0212 0x1748 WfpLwf - ok
16:00:42.0244 0x1748 [ 5CF95B35E59E2A38023836FFF31BE64C, CEA21302B3E855EE592810D4E0DE10E47A47A393064C435463CD54598735CD8D ] WIMMount C:\Windows\system32\drivers\wimmount.sys
16:00:42.0259 0x1748 WIMMount - ok
16:00:42.0337 0x1748 [ 082CF481F659FAE0DE51AD060881EB47, BB67D2AF0BB9192D4CCF66C23D80CE5A1B38715556D94E2561DBF8F805FA30A5 ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
16:00:42.0400 0x1748 WinDefend - ok
16:00:42.0415 0x1748 WinHttpAutoProxySvc - ok
16:00:42.0478 0x1748 [ F62E510B6AD4C21EB9FE8668ED251826, FA3E5CAC3E67E49377320CFBE4646585E6B62168292768FEA81E4623F9166890 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
16:00:42.0540 0x1748 Winmgmt - ok
16:00:42.0602 0x1748 [ 1DE9BD23AFA36150586C732D876D9B74, 32CF2C8EC18CFDA677AB72A182EB4B839DCC72BFCD6CA309BE2F434991CAE973 ] WinRM C:\Windows\system32\WsmSvc.dll
16:00:42.0683 0x1748 WinRM - ok
16:00:42.0730 0x1748 [ A67E5F9A400F3BD1BE3D80613B45F708, E170A8BD31A779403DC9C43ED6483DA8E186512D3EE700B87F6BA292E284E367 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
16:00:42.0746 0x1748 WinUsb - ok
16:00:42.0793 0x1748 [ 16935C98FF639D185086A3529B1F2067, E9C6B73A572A04FCE9B1B0E6815F941B10332D9A6D55B92927C2B1275F119091 ] Wlansvc C:\Windows\System32\wlansvc.dll
16:00:42.0839 0x1748 Wlansvc - ok
16:00:42.0949 0x1748 [ 5E7C103F8475C4289847D15E129C20F7, C6325D3557545FA1DA26B0B1EA9A1C95AED1FA84A93BE29A771DAD9ECB00768B ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
16:00:43.0073 0x1748 wlidsvc - ok
16:00:43.0089 0x1748 [ 0217679B8FCA58714C3BF2726D2CA84E, 4494984B922DCF24D37BCD0E6831CEBD07D1CA49235D04E821D17ED3DF84ED2A ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
16:00:43.0120 0x1748 WmiAcpi - ok
16:00:43.0167 0x1748 [ 6EB6B66517B048D87DC1856DDF1F4C3F, EBB534C4829477C70062ADBB5626236B02FE563A544C53FA255E79F3CA170FE8 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
16:00:43.0198 0x1748 wmiApSrv - ok
16:00:43.0307 0x1748 [ 3B40D3A61AA8C21B88AE57C58AB3122E, 6C67DCB007C3CDF2EB0BBF5FD89C32CD7800C20F7166872F8C387BE262C5CD21 ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
16:00:43.0387 0x1748 WMPNetworkSvc - ok
16:00:43.0419 0x1748 [ A2F0EC770A92F2B3F9DE6D518E11409C, 6838F2148B11285E00DC449D51F8AD85AAE57694E89BA2C607B87AC1C650D845 ] WPCSvc C:\Windows\System32\wpcsvc.dll
16:00:43.0465 0x1748 WPCSvc - ok
16:00:43.0497 0x1748 [ AA53356D60AF47EACC85BC617A4F3F66, 155CB8112AA382D841C1891750FF29EF4F1BF716CD9CDF0F2243209E2CCCAC98 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
16:00:43.0528 0x1748 WPDBusEnum - ok
16:00:43.0559 0x1748 [ 6DB3276587B853BF886B69528FDB048C, 9972FF6DF0DF6F86D1E9BCEF4C29064748B217DA196B0633C30D3D580144951C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
16:00:43.0590 0x1748 ws2ifsl - ok
16:00:43.0621 0x1748 [ 6F5D49EFE0E7164E03AE773A3FE25340, 15B6AFF7455538189A96F8863CC995A271E02C6FBDAC15B037D44DDA65E61339 ] wscsvc C:\Windows\System32\wscsvc.dll
16:00:43.0637 0x1748 wscsvc - ok
16:00:43.0653 0x1748 WSearch - ok
16:00:43.0777 0x1748 [ 7E5C454A3F986FEBAD075DB8D915917E, 9E9147DDACD075958689523130DB92FC4ED0E38433461D8AB8792BCFBD9376DA ] wuauserv C:\Windows\system32\wuaueng.dll
16:00:43.0902 0x1748 wuauserv - ok
16:00:43.0933 0x1748 [ 06E6F32C8D0A3F66D956F57B43A2E070, 9A6BD96A28294B0372F16E13D652FD603308F64B74A56E41E0C68C5E8011F943 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
16:00:43.0965 0x1748 WudfPf - ok
16:00:43.0980 0x1748 [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
16:00:44.0011 0x1748 WUDFRd - ok
16:00:44.0058 0x1748 [ FE47B7BC8EA320C2D9B5E5BF6E303765, 34518DBD1E9EA6E5DA62273B18613761E1D9C6B4E074A93C6D639FBAF02222EA ] wudfsvc C:\Windows\System32\WUDFSvc.dll
16:00:44.0089 0x1748 wudfsvc - ok
16:00:44.0121 0x1748 [ 7CC38741B8F68F1E0D5D79DA6123666A, F90D2DA1C9AFB506C381CD386E1430931B5F81813FEDFD720F87FBC54E7A00DA ] WwanSvc C:\Windows\System32\wwansvc.dll
16:00:44.0167 0x1748 WwanSvc - ok
16:00:44.0167 0x1748 ================ Scan global ===============================
16:00:44.0199 0x1748 [ DAB748AE0439955ED2FA22357533DDDB, 73EDD402C7479DDCE1998D0C7E99E1EC2974F64EFC33A851439CC85D09EDCDF9 ] C:\Windows\system32\basesrv.dll
16:00:44.0230 0x1748 [ 51BB04243DF6196C06E125898127E397, E1B6C83FC6E455F6806185027C5B56F8BA9ECDF1CD69E97301EC0291F0D3466E ] C:\Windows\system32\winsrv.dll
16:00:44.0245 0x1748 [ 51BB04243DF6196C06E125898127E397, E1B6C83FC6E455F6806185027C5B56F8BA9ECDF1CD69E97301EC0291F0D3466E ] C:\Windows\system32\winsrv.dll
16:00:44.0277 0x1748 [ 364455805E64882844EE9ACB72522830, 906561DBBB33F744844CF27E456226044C85DF0FCFD26DE1FD11E09E2CFA6F8F ] C:\Windows\system32\sxssrv.dll
16:00:44.0292 0x1748 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6, D7BC4ED605B32274B45328FD9914FB0E7B90D869A38F0E6F94FB1BF4E9E2B407 ] C:\Windows\system32\services.exe
16:00:44.0308 0x1748 [ Global ] - ok
16:00:44.0308 0x1748 ================ Scan MBR ==================================
16:00:44.0323 0x1748 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
16:00:44.0604 0x1748 \Device\Harddisk0\DR0 - ok
16:00:44.0604 0x1748 ================ Scan VBR ==================================
16:00:44.0604 0x1748 [ 32B2EFDC4A27AC14F21A9E6C855012D3 ] \Device\Harddisk0\DR0\Partition1
16:00:44.0604 0x1748 \Device\Harddisk0\DR0\Partition1 - ok
16:00:44.0604 0x1748 [ 803C75FAE8B33DDE883B57AFCA315F3B ] \Device\Harddisk0\DR0\Partition2
16:00:44.0620 0x1748 \Device\Harddisk0\DR0\Partition2 - ok
16:00:44.0620 0x1748 ================ Scan generic autorun ======================
16:00:44.0682 0x1748 [ 053C93D5967E08748DBA0E132EAEC0B3, B48A00B00DFDFCF6911911B34788CD359BF90AB66F4A2A3FE177B75EB775C2C2 ] C:\Program Files\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe
16:00:44.0698 0x1748 NUSB3MON - detected UnsignedFile.Multi.Generic ( 1 )
16:00:47.0196 0x1748 Detect skipped due to KSN trusted
16:00:47.0196 0x1748 NUSB3MON - ok
16:00:47.0664 0x1748 [ F979E2139F2DD221ECB8506EEAC9931F, A8DD6B1B5ACB6F801B6C0BE20D7E7C02834D12E11B1368EAD939191960AA9196 ] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
16:00:47.0929 0x1748 RTHDVCPL - ok
16:00:48.0038 0x1748 [ 5B4BBAC9467B8DB6BC4A404CF1867FE0, 6CDF6291CE36A94ED50ECAF2F050302619D2FD4915961E968B7E97EC339AE3F0 ] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
16:00:48.0085 0x1748 StartCCC - ok
16:00:48.0085 0x1748 AMD AVT - ok
16:00:48.0179 0x1748 [ 3E23D1F7E91627DBD44AC82077E2BA7C, 09235370B85EF5FEA24F1291B9ADAD805C8D7357A78EF8CE3BA0E913F59145EC ] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
16:00:48.0194 0x1748 avgnt - ok
16:00:48.0288 0x1748 [ 904E116925920BBD1F8A1A7E9D82BA57, 9EEFB1E3A1FD2A40288E3EEB26AD7F3C826ACF7384C3AAFFA08CC62ABBA5E0AD ] C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe
16:00:48.0319 0x1748 Autodesk Sync - ok
16:00:48.0491 0x1748 [ 7F42FFCD6FF7CA558C2D95DADCD5EFA9, CD9E71A718AD3FF465950A7D3937884154F021A296C301BE2FECD0AE69F04713 ] C:\Program Files\Browny02\Brother\BrStMonW.exe
16:00:48.0584 0x1748 BrStsMon00 - detected UnsignedFile.Multi.Generic ( 1 )
16:00:51.0067 0x1748 Detect skipped due to KSN trusted
16:00:51.0082 0x1748 BrStsMon00 - ok
16:00:51.0145 0x1748 [ 34D296AFC913E302953C70463EF09A48, BC413307CBC56C039EE8A05B51A56E14EF59678FBB33815AEB320078056C8CE7 ] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
16:00:51.0176 0x1748 HP Software Update - ok
16:00:51.0269 0x1748 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\Sidebar.exe
16:00:51.0410 0x1748 Sidebar - ok
16:00:51.0425 0x1748 [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
16:00:51.0441 0x1748 mctadmin - ok
16:00:51.0503 0x1748 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\Sidebar.exe
16:00:51.0535 0x1748 Sidebar - ok
16:00:51.0535 0x1748 [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
16:00:51.0550 0x1748 mctadmin - ok
16:00:51.0597 0x1748 GarminExpressTrayApp - ok
16:00:51.0659 0x1748 Akamai NetSession Interface - ok
16:00:51.0659 0x1748 Waiting for KSN requests completion. In queue: 9
16:00:52.0673 0x1748 Waiting for KSN requests completion. In queue: 9
16:00:53.0675 0x1748 Waiting for KSN requests completion. In queue: 9
16:00:54.0751 0x1748 AV detected via SS2: Avira Antivirus, C:\Program Files\Avira\AntiVir Desktop\wsctool.exe ( 15.0.9.460 ), 0x41000 ( enabled : updated )
16:00:54.0782 0x1748 Win FW state via NFP2: enabled
16:00:57.0281 0x1748 ============================================================
16:00:57.0281 0x1748 Scan finished
16:00:57.0281 0x1748 ============================================================
16:00:57.0281 0x0f30 Detected object count: 0
16:00:57.0281 0x0f30 Actual detected object count: 0 Hallo
ich habe mal die ganzen Emails angeschaut welche welche nicht zugestellt werden konnten. Es ist immer eine UndeliveredMessageHeaders.txt dabei.
In dieser ist immer immer etwas von DHL zu lesen. Also werden die DHL Paketankünnigungen Spammails von einer mailadresse versendet.
Vielleicht hilft dies Ihnen.
Gruß
Cele
Im abgesicherten Modus hat Malwarebytes Anti-Rootkit funktoniert. Hat aber nichts gefunden.
Ich habe mal erneut Avira durchlaufen lassen. Dieses hat aufeinmal einiges gefunden. Ist mein PC jetzt wieder sauber oder was soll ich als nächstes tun?
Log von Malwarebytes Anti-Rootkit: Code:
Malwarebytes Anti-Rootkit BETA 1.09.1.1004
www.malwarebytes.org
Database version:
main: v2015.05.08.09
rootkit: v2015.04.21.01
Windows 7 Service Pack 1 x86 NTFS (Safe Mode/Networking)
Internet Explorer 11.0.9600.17728
Armin :: PC-4000 [administrator]
09.05.2015 07:32:26
mbar-log-2015-05-09 (07-32-26).txt
Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled:
Objects scanned: 315394
Time elapsed: 16 minute(s), 32 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 0
(No malicious items detected)
Physical Sectors Detected: 0
(No malicious items detected)
(end) |