Code:
22:32:15.0631 0x092c TDSS rootkit removing tool 3.1.0.17 Apr 20 2018 12:12:17
22:32:15.0631 0x092c UEFI system
22:32:17.0871 0x092c ============================================================
22:32:17.0871 0x092c Current date / time: 2018/09/11 22:32:17.0871
22:32:17.0872 0x092c SystemInfo:
22:32:17.0872 0x092c
22:32:17.0872 0x092c OS Version: 10.0.17134 ServicePack: 0.0
22:32:17.0872 0x092c Product type: Workstation
22:32:17.0872 0x092c ComputerName: DESKTOP-UKTCUI2
22:32:17.0872 0x092c UserName: staub
22:32:17.0872 0x092c Windows directory: C:\WINDOWS
22:32:17.0872 0x092c System windows directory: C:\WINDOWS
22:32:17.0872 0x092c Running under WOW64
22:32:17.0872 0x092c Processor architecture: Intel x64
22:32:17.0872 0x092c Number of processors: 4
22:32:17.0872 0x092c Page size: 0x1000
22:32:17.0872 0x092c Boot type: Normal boot
22:32:17.0872 0x092c CodeIntegrityOptions = 0x00000001
22:32:17.0872 0x092c ============================================================
22:32:17.0918 0x092c KLMD registered as C:\WINDOWS\system32\drivers\01921402.sys
22:32:17.0918 0x092c KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 17134.1, osProperties = 0x19
22:32:17.0936 0x092c System UUID: {EDB1CDC8-7A74-104B-02AF-2949488BCEB4}
22:32:18.0024 0x092c Drive \Device\Harddisk0\DR0 - Size: 0x15D50F66000 ( 1397.27 Gb ), SectorSize: 0x200, Cylinders: 0x2C881, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
22:32:18.0024 0x092c Drive \Device\Harddisk1\DR1 - Size: 0x1DCF856000 ( 119.24 Gb ), SectorSize: 0x200, Cylinders: 0x3CCE, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
22:32:18.0028 0x092c ============================================================
22:32:18.0028 0x092c \Device\Harddisk0\DR0:
22:32:18.0028 0x092c GPT partitions:
22:32:18.0029 0x092c \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {694BD22E-7594-451D-9096-AF677B4917EB}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0xA7287000
22:32:18.0029 0x092c \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {CFE500BC-FDAB-400A-A9BB-68597C0FA1EA}, Name: Basic data partition, StartLBA 0xA7287800, BlocksNum 0x7800000
22:32:18.0029 0x092c MBR partitions:
22:32:18.0029 0x092c \Device\Harddisk1\DR1:
22:32:18.0029 0x092c GPT partitions:
22:32:18.0030 0x092c \Device\Harddisk1\DR1\Partition1: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {37C984F9-D5E4-4A08-916B-06B97DDDF7E8}, Name: EFI system partition, StartLBA 0x800, BlocksNum 0x32000
22:32:18.0030 0x092c \Device\Harddisk1\DR1\Partition2: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {E56BC9C4-44E3-4B68-9BEA-B56A595BF278}, Name: Microsoft reserved partition, StartLBA 0x32800, BlocksNum 0x8000
22:32:18.0030 0x092c \Device\Harddisk1\DR1\Partition3: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {83D04214-4873-41EF-81F4-45DADF15BDE5}, Name: Basic data partition, StartLBA 0x3A800, BlocksNum 0xEA730B6
22:32:18.0030 0x092c \Device\Harddisk1\DR1\Partition4: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {469DA7C1-3405-49E3-9966-C1579FC63C47}, Name: , StartLBA 0xEAAE000, BlocksNum 0x1CE000
22:32:18.0030 0x092c \Device\Harddisk1\DR1\Partition5: GPT, TypeGUID: {8D7F0CC6-879E-47F6-A767-0ED8FD3B0659}, UniqueGUID: {F5AF82CE-BB6E-4309-9DD1-F36D46EAA02A}, Name: Basic data partition, StartLBA 0xEC7C000, BlocksNum 0x200000
22:32:18.0030 0x092c MBR partitions:
22:32:18.0030 0x092c ============================================================
22:32:18.0031 0x092c C: <-> \Device\Harddisk1\DR1\Partition3
22:32:18.0056 0x092c D: <-> \Device\Harddisk0\DR0\Partition1
22:32:18.0110 0x092c E: <-> \Device\Harddisk0\DR0\Partition2
22:32:18.0110 0x092c ============================================================
22:32:18.0110 0x092c Initialize success
22:32:18.0110 0x092c ============================================================
22:32:22.0684 0x3784 ============================================================
22:32:22.0684 0x3784 Scan started
22:32:22.0684 0x3784 Mode: Manual;
22:32:22.0684 0x3784 ============================================================
22:32:22.0684 0x3784 KSN ping started
22:32:22.0741 0x3784 KSN ping finished: true
22:32:23.0202 0x3784 ================ Scan system memory ========================
22:32:23.0202 0x3784 System memory - ok
22:32:23.0203 0x3784 ================ Scan services =============================
22:32:23.0250 0x3784 1394ohci - ok
22:32:23.0253 0x3784 3ware - ok
22:32:23.0256 0x3784 ACPI - ok
22:32:23.0259 0x3784 AcpiDev - ok
22:32:23.0264 0x3784 acpiex - ok
22:32:23.0268 0x3784 acpipagr - ok
22:32:23.0272 0x3784 [ 6AFFD57803BBB6FBCB483F983900A5C4, A3A87984E70C8B47F919D2633E6378F3AACCBF3E74DB3B35BB2E15D036DB36E2 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys
22:32:23.0273 0x3784 AcpiPmi - ok
22:32:23.0282 0x3784 acpitime - ok
22:32:23.0290 0x3784 [ 56FCC24867F2C87BF96EE9D17A4CC20E, 6DDEF1234D207C6CDE0298DD1DAC988AC6CD7716E4FDA01813D175AE50F6A022 ] acsock C:\WINDOWS\system32\DRIVERS\acsock64.sys
22:32:23.0295 0x3784 acsock - ok
22:32:23.0301 0x3784 ADP80XX - ok
22:32:23.0305 0x3784 AFD - ok
22:32:23.0311 0x3784 [ F267095A11A461BEF39FB180750BE801, CF90798C46892FF5225155D2C7BCC469A4A631E22919CBEDA2F4FEEF4F05E301 ] afunix C:\WINDOWS\system32\drivers\afunix.sys
22:32:23.0314 0x3784 afunix - ok
22:32:23.0321 0x3784 [ 0CD0F0C62414217DE9EA7EC8D425277E, FD211157B85B841D0C94B36776572FADC7425F1B0B49EACC910D3E175208A7EC ] ahcache C:\WINDOWS\system32\DRIVERS\ahcache.sys
22:32:23.0327 0x3784 ahcache - ok
22:32:23.0338 0x3784 [ 2BF4DA8EC5F1A0D88D2DDE1E6821076B, B9F4D499DB4CB91576ACE4847B96F2FC770B9BCC223B5E2261B2DEC22D7651E7 ] AJRouter C:\WINDOWS\System32\AJRouter.dll
22:32:23.0340 0x3784 AJRouter - ok
22:32:23.0347 0x3784 [ 9E9D78D1C179EB2E3E2282A1DC409D93, EA7486B4425A87FDDD60542AAF0812A8DB868F569886B894883702B362A05D2C ] ALG C:\WINDOWS\System32\alg.exe
22:32:23.0349 0x3784 ALG - ok
22:32:23.0352 0x3784 AmdK8 - ok
22:32:23.0356 0x3784 AmdPPM - ok
22:32:23.0364 0x3784 amdsata - ok
22:32:23.0368 0x3784 amdsbs - ok
22:32:23.0372 0x3784 amdxata - ok
22:32:23.0380 0x3784 [ E4A18157BF5D8D714C05169A8A8D604C, 45D8CB25A9967D634F8331070BDFB3DF4ACB6295CF1520F9AAE8753D3BF4018A ] AppID C:\WINDOWS\system32\drivers\appid.sys
22:32:23.0383 0x3784 AppID - ok
22:32:23.0388 0x3784 [ F1A04835C7FA75C8215961C1095D5EBF, 45D153404E601C0CE247058B78F328DD9F7F4F6A9480132F7CE6D9A7092F63CF ] AppIDSvc C:\WINDOWS\System32\appidsvc.dll
22:32:23.0390 0x3784 AppIDSvc - ok
22:32:23.0399 0x3784 [ 48EA4B4CCC920D130529A1EF85388B6A, 31F69543682E70DF0A6B2A70FC7553ECEE643C554E7F8FF18A2DD09359360F8E ] Appinfo C:\WINDOWS\System32\appinfo.dll
22:32:23.0403 0x3784 Appinfo - ok
22:32:23.0408 0x3784 [ 769316CA5884FBBD02D45C28FE105922, 117168BFB2D8DBF1258EBA53DCE09E74000B35B7B7460251B4C46BDB9CEA709A ] applockerfltr C:\WINDOWS\system32\drivers\applockerfltr.sys
22:32:23.0409 0x3784 applockerfltr - ok
22:32:23.0414 0x3784 AppReadiness - ok
22:32:23.0417 0x3784 AppXSvc - ok
22:32:23.0420 0x3784 arcsas - ok
22:32:23.0423 0x3784 AsyncMac - ok
22:32:23.0428 0x3784 atapi - ok
22:32:23.0433 0x3784 AudioEndpointBuilder - ok
22:32:23.0436 0x3784 Audiosrv - ok
22:32:23.0442 0x3784 [ D7BFD86F7A9ABE39351199869D093110, 90BB2C0A8185D3982FEFAC7C1E18783AF949EBECA3B9E44DCF89E2FD5FD6AA0C ] AxInstSV C:\WINDOWS\System32\AxInstSV.dll
22:32:23.0446 0x3784 AxInstSV - ok
22:32:23.0450 0x3784 b06bdrv - ok
22:32:23.0455 0x3784 [ 982FAA5686F67BFEF3E6094705C2621F, 02456312B0FD0ABE7B7EEC0FB385268AF34DDB5F13AF934F96FCA7C32EA51447 ] bam C:\WINDOWS\system32\drivers\bam.sys
22:32:23.0456 0x3784 bam - ok
22:32:23.0462 0x3784 BasicDisplay - ok
22:32:23.0466 0x3784 BasicRender - ok
22:32:23.0471 0x3784 BcastDVRUserService - ok
22:32:23.0480 0x3784 bcmfn2 - ok
22:32:23.0496 0x3784 [ 255D1EA1F4EDA1B7B28A88581F12A1CE, 5B2D7F2EFA7BB539719890CF2E45568C544DD0EECEC44BBA56CCECB792E8BC44 ] BDESVC C:\WINDOWS\System32\bdesvc.dll
22:32:23.0504 0x3784 BDESVC - ok
22:32:23.0507 0x3784 [ 9B068DF7B7B3DDF768D06DFD69B49FD0, DC2CD3A70506AEB1BCEB207A9B06657806E72C5432FA605FF9C6F11516F38132 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
22:32:23.0509 0x3784 Beep - ok
22:32:23.0517 0x3784 BFE - ok
22:32:23.0523 0x3784 [ BC1E5F20251E0AFDB955E7D91093B619, 5642E6B6CA6DBC8585834790A70CFF54252A631A9EA06D28F28EF7430FA42BE5 ] bindflt C:\WINDOWS\system32\drivers\bindflt.sys
22:32:23.0526 0x3784 bindflt - ok
22:32:23.0556 0x3784 [ 97F4C0B9741E06BAC6AD2D93ABCEAED8, 25FD58F4BA2F8EC99241A580352D1EC49924829C61D89353B30CCEEE2CEBADE7 ] BITS C:\WINDOWS\System32\qmgr.dll
22:32:23.0584 0x3784 BITS - ok
22:32:23.0598 0x3784 [ 30D75769E23CCFBE13DB41FC54243BB1, 4ED018F1DB103D3F354D8EF7DFE797028DBDF22294D355F6D38DF9C6AF61B69E ] BluetoothUserService C:\WINDOWS\System32\Microsoft.Bluetooth.UserService.dll
22:32:23.0611 0x3784 BluetoothUserService - ok
22:32:23.0626 0x3784 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
22:32:23.0635 0x3784 Bonjour Service - ok
22:32:23.0639 0x3784 bowser - ok
22:32:23.0641 0x3784 BrokerInfrastructure - ok
22:32:23.0650 0x3784 [ 3E4BF0145201239E0BBD0A937431C14C, 1DDC27C89B16ADD9346EB30AA9E17330FE0181BE96DC6F06C455493FBDCB1113 ] Browser C:\WINDOWS\System32\browser.dll
22:32:23.0653 0x3784 Browser - ok
22:32:23.0667 0x3784 [ 2EB2D533A0C94F05F1F511D3FA20D892, 77375EC0C1FB059D03FF2D23C975EB9A6EB00F9B59000A60A89582D4F6D1D4C4 ] BstHdLogRotatorSvc C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
22:32:23.0674 0x3784 BstHdLogRotatorSvc - ok
22:32:23.0687 0x3784 [ 7DB8EE09821A6D81A19A6591C9B8AA3A, 0A9A826560884F95D64BDC8A2076AE33FB718A3A59C0BBEC48E48A5FB907ACA4 ] BstkDrv C:\Program Files (x86)\BlueStacks\BstkDrv.sys
22:32:23.0692 0x3784 BstkDrv - ok
22:32:23.0706 0x3784 [ 85F5808D19879E1803E46405090F29C8, E22E73BCE3B76BFBAC712DF1E5D7D38E189B80D1CE6E9A9AB3C94733CF18F04B ] BTAGService C:\WINDOWS\System32\BTAGService.dll
22:32:23.0716 0x3784 BTAGService - ok
22:32:23.0723 0x3784 [ 2B5EB1BB42AEE7A77B1E9C794DFCEF3D, E94040AAE365CFCAEEC75F38EBDDB2C7F13B41F41D96C33FE3F25078BA21DA13 ] BthA2DP C:\WINDOWS\system32\drivers\BthA2DP.sys
22:32:23.0728 0x3784 BthA2DP - ok
22:32:23.0739 0x3784 [ 063E91CD2CB1C372459FD6FBC02509E7, 29319290F73D8D87323584D938FBC86400AB37455E7E058A543A77F9BBF4579D ] BthAvctpSvc C:\WINDOWS\System32\BthAvctpSvc.dll
22:32:23.0747 0x3784 BthAvctpSvc - ok
22:32:23.0753 0x3784 [ E0121734C2492406034FA23E3D394EBD, E855EB12DD35CC47F68C5C6B1622560599C7074E274E510528196D47BDA56960 ] BthEnum C:\WINDOWS\System32\drivers\BthEnum.sys
22:32:23.0756 0x3784 BthEnum - ok
22:32:23.0761 0x3784 [ F56B351A4E2B384911B2BA2A98261F34, A8140A2ABEC704A11776D29894ADD5D1FA9C125567EB6B270694573DB9B0E30E ] BthHFAud C:\WINDOWS\system32\DRIVERS\BthHfAud.sys
22:32:23.0763 0x3784 BthHFAud - ok
22:32:23.0769 0x3784 [ 02FEC31842DD153D966AC227B6DDF8BB, 90EEEA049212E5FE8EFA2ACED45DFB6ABAFEA6D40FB4E1E2681F65A417237163 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys
22:32:23.0772 0x3784 BthHFEnum - ok
22:32:23.0780 0x3784 [ 8EE632BFE4BABD4E7A299AF54476F9A5, 836675F295A033C0239DCF86D90985443A60D5A1F38B668CA82A30BDFD983352 ] BthLEEnum C:\WINDOWS\system32\DRIVERS\Microsoft.Bluetooth.Legacy.LEEnumerator.sys
22:32:23.0783 0x3784 BthLEEnum - ok
22:32:23.0789 0x3784 [ A0EC1D5C937995A2C5F1179538A8A6B4, CBFBDF2D8305BD72FFF64AAAB31EB5D5B8ADE537C35AC63DC3F6ADCBF96B3659 ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys
22:32:23.0791 0x3784 BTHMODEM - ok
22:32:23.0799 0x3784 [ B10E0CC936462BBA7BC659C0927617A0, B4F2A318384D176D0ACF26372756CE097F34EED59FBB023E7DB8F95D8F73F69A ] BthPan C:\WINDOWS\System32\drivers\bthpan.sys
22:32:23.0801 0x3784 BthPan - ok
22:32:23.0826 0x3784 [ EF105DBEB81F14EBDBA5F7977AD8FA91, A4D20038B72361CD95446854F2E538314C4C8B5EA4618AC7B18A43D8AF777A34 ] BTHPORT C:\WINDOWS\system32\DRIVERS\BTHport.sys
22:32:23.0852 0x3784 BTHPORT - ok
22:32:23.0861 0x3784 [ 1EB49C9E2716D4924460B2FAA295E313, B96D39479BFD2ABCD3A3BB8897EAD7C5A03DFFD7266E82A1FBA0E7FEAF73E4B8 ] bthserv C:\WINDOWS\system32\bthserv.dll
22:32:23.0866 0x3784 bthserv - ok
22:32:23.0873 0x3784 [ 0D5ECDF2601312025811F6AC413F851A, B7E99CF02C6B511BD643E7F8BB59E983D8B65073D9B55ED44457EDC2BBBBC419 ] BTHUSB C:\WINDOWS\system32\DRIVERS\BTHUSB.sys
22:32:23.0876 0x3784 BTHUSB - ok
22:32:23.0881 0x3784 bttflt - ok
22:32:23.0884 0x3784 buttonconverter - ok
22:32:23.0888 0x3784 [ 9983FF8D9834F2E67787F4BDC42A8E36, 85260F4A657D657ACD394339DFDDE814AD6BCA65712EAD943833BE7AB0937C8D ] CAD C:\WINDOWS\System32\drivers\CAD.sys
22:32:23.0890 0x3784 CAD - ok
22:32:23.0895 0x3784 camsvc - ok
22:32:23.0900 0x3784 CapImg - ok
22:32:23.0905 0x3784 cdfs - ok
22:32:23.0922 0x3784 [ 0942C87ED45B1E227032AD154105F79B, A0A40589B9C399061C1C46247609CA514DCD21DDF1E7FCEE19F0CE75D0FC7996 ] CDPSvc C:\WINDOWS\System32\CDPSvc.dll
22:32:23.0934 0x3784 CDPSvc - ok
22:32:23.0947 0x3784 [ 9FBF5849A6F51E3B3F8AF2A4171648DA, 7422BC5C87075F5008E6364C8AFAA794AB17CA2DC238DC00F377B942B6FCDC11 ] CDPUserSvc C:\WINDOWS\System32\CDPUserSvc.dll
22:32:23.0957 0x3784 CDPUserSvc - ok
22:32:23.0964 0x3784 cdrom - ok
22:32:23.0972 0x3784 [ 620E4F2FDD04FFB70702676423F1C2AC, 25A19FFA966605C229F5BFBCBBBEE36695FC673C7814CF13E79EE4A9B3D8CBE2 ] CertPropSvc C:\WINDOWS\System32\certprop.dll
22:32:23.0976 0x3784 CertPropSvc - ok
22:32:23.0986 0x3784 [ 6581A8AA7D4CDE34EBE6DDF6A9913F86, DA921C0CADF48778C9144BDA601EA1806D92BADE4A082F1CBB032294A6C00494 ] CG6Service C:\Program Files\CyberGhost 6\CyberGhost.Service.exe
22:32:23.0991 0x3784 CG6Service - ok
22:32:23.0997 0x3784 [ 44293BF717CA39DC925C6A05453D8D34, 7A0761662C2B79F38CE24DC04509500BD818E6CF27252949072659AB39716A7F ] cgnetfilter1521 C:\WINDOWS\system32\drivers\cgnetfilter1521.sys
22:32:24.0000 0x3784 cgnetfilter1521 - ok
22:32:24.0004 0x3784 cht4iscsi - ok
22:32:24.0007 0x3784 cht4vbd - ok
22:32:24.0014 0x3784 [ 3AA86DA04A561E8162C2DBBF92D12074, 9CB67299BEC25F2B357DDAA5A36B3464193B8BDAB4DCFAE0CD4315911027E409 ] circlass C:\WINDOWS\System32\drivers\circlass.sys
22:32:24.0016 0x3784 circlass - ok
22:32:24.0028 0x3784 [ 5619FC2A3AE4F43D4B20D95472ED948E, A5D530FB6AC493FC01489A1D32C311F7D28F0D7B49C950E71F4ADF4FBA302689 ] CldFlt C:\WINDOWS\system32\drivers\cldflt.sys
22:32:24.0035 0x3784 CldFlt - ok
22:32:24.0039 0x3784 CLFS - ok
22:32:24.0236 0x3784 [ 1C1E503D9246B059B5B19613BA97A53B, 70C91D253E776D74F927313E30675828732D68C2EAC1E49F7056FF3A60A87389 ] ClickToRunSvc C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe
22:32:24.0401 0x3784 ClickToRunSvc - ok
22:32:24.0447 0x3784 [ 5BD85187D6A6A37D2A4563F33D7A76E4, 6FF434BE93259229E0EA64EC1B6E09B1B814C2A467FC2859B94C79549E2F114C ] ClipSVC C:\WINDOWS\System32\ClipSVC.dll
22:32:24.0464 0x3784 ClipSVC - ok
22:32:24.0474 0x3784 [ 228CB7727EC19833A74DAA5BE8627114, 7ABDEABF648C0CF04C736D9F1056CD54D5913837E1543CC358FDDFA9389934EC ] clwvd6 C:\WINDOWS\system32\DRIVERS\clwvd6.sys
22:32:24.0476 0x3784 clwvd6 - ok
22:32:24.0480 0x3784 CmBatt - ok
22:32:24.0485 0x3784 CNG - ok
22:32:24.0488 0x3784 [ 037DCC7A71938729CB12E8174E03031C, 1BA2F74F639BF8D5BB38AA658A6D847BAE8D85CF72C4AD5F13BBA1D53145789F ] cnghwassist C:\WINDOWS\system32\DRIVERS\cnghwassist.sys
22:32:24.0489 0x3784 cnghwassist - ok
22:32:24.0515 0x3784 [ E40C99A3E0FFF49687F2187BF3E3050D, 30723EC5767C3F6FAA3CF299440B71B5973F890FB54B9737B96FA0359E7D90FA ] CompositeBus C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_bcb89b3386563bd7\CompositeBus.sys
22:32:24.0516 0x3784 CompositeBus - ok
22:32:24.0519 0x3784 COMSysApp - ok
22:32:24.0523 0x3784 condrv - ok
22:32:24.0528 0x3784 CoreMessagingRegistrar - ok
22:32:24.0560 0x3784 [ 2E0A35871680D1E9E5A94031E2B781A7, 8EE720D4326DB9E409A291ED1AA169DC5595BE05663787D49DA6552A5FF3C509 ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
22:32:24.0566 0x3784 cphs - ok
22:32:24.0585 0x3784 [ 9E6D6C613E004890EFEAAE858C11BD6D, 26E4C2D12F0F7CDF5977206CDD3F8FA09A5E6DD020C959AF93B245501BF44225 ] cplspcon C:\WINDOWS\system32\IntelCpHDCPSvc.exe
22:32:24.0595 0x3784 cplspcon - ok
22:32:24.0604 0x3784 CryptSvc - ok
22:32:24.0609 0x3784 [ 8711386E9B04357F8F58166760759F3A, 8912CFD220645002C9D3F9E49717D8B0B98704380B45F53D45D5674537B496FF ] dam C:\WINDOWS\system32\drivers\dam.sys
22:32:24.0611 0x3784 dam - ok
22:32:24.0619 0x3784 [ E59CAC3C48E862959CBDFD08DF40CD2D, 303CB1C89AD2608BB5837D3860964AA1F88F87B296A5C6AB8C88E2169CE6228B ] DAX2API C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe
22:32:24.0622 0x3784 DAX2API - ok
22:32:24.0629 0x3784 [ A1F58FFF448E4099297D6EE0641D4D0E, 47839789332AAF8861F7731BF2D3FBB5E0991EA0D0B457BB4C8C1784F76C73DC ] dbupdate C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
22:32:24.0632 0x3784 dbupdate - ok
22:32:24.0637 0x3784 [ A1F58FFF448E4099297D6EE0641D4D0E, 47839789332AAF8861F7731BF2D3FBB5E0991EA0D0B457BB4C8C1784F76C73DC ] dbupdatem C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
22:32:24.0639 0x3784 dbupdatem - ok
22:32:24.0647 0x3784 [ 646AFD6F45B1B5AB9CE77C09B755B90B, CFC61FC136C9C062F509D2C756266F581BA9B2FDB1D2C8CBAAA66F51D1E8B876 ] DbxSvc C:\WINDOWS\system32\DbxSvc.exe
22:32:24.0649 0x3784 DbxSvc - ok
22:32:24.0657 0x3784 DcomLaunch - ok
22:32:24.0662 0x3784 defragsvc - ok
22:32:24.0675 0x3784 [ 8DF502E8116C625387DD789936D7A0C2, D42661E068F401199FAEA012C200EEF02C1409A09DACD30E6B08E3FBE4149BFA ] DeviceAssociationService C:\WINDOWS\system32\das.dll
22:32:24.0685 0x3784 DeviceAssociationService - ok
22:32:24.0689 0x3784 DeviceInstall - ok
22:32:24.0701 0x3784 [ 38D6ED38A46F815C24C5656E8A5AB083, 730DD6D85771A60E5C089BF5D810E3AEA335BF7DD14FD72924A1A4FCF021A59D ] DevicePickerUserSvc C:\WINDOWS\System32\Windows.Devices.Picker.dll
22:32:24.0714 0x3784 DevicePickerUserSvc - ok
22:32:24.0734 0x3784 [ 372BD821867225F32DE87A6B3FEC8A2E, 20389A1861B5A451EE3383F68FC59B3C9A75D3123B2DF1669CBB5CC37A0128B0 ] DevicesFlowUserSvc C:\WINDOWS\System32\DevicesFlowBroker.dll
22:32:24.0758 0x3784 DevicesFlowUserSvc - ok
22:32:24.0767 0x3784 [ C48C4D6B8D9C53F0399DEDA402A6FAE5, 25FBE2A51DCF7DB95AD2707502F8A9661B94FC61DFC405DA5BF23BED1BA123D2 ] DevQueryBroker C:\WINDOWS\system32\DevQueryBroker.dll
22:32:24.0769 0x3784 DevQueryBroker - ok
22:32:24.0772 0x3784 Dfsc - ok
22:32:24.0777 0x3784 Dhcp - ok
22:32:24.0783 0x3784 diagnosticshub.standardcollector.service - ok
22:32:24.0790 0x3784 [ 6EC6BB6EF31C85FD72D14BE4A1BD1B03, E027124AD492ED22F0D604030CB0E2C3778331879FC73A614644FA8C8606ADD3 ] diagsvc C:\WINDOWS\system32\DiagSvc.dll
22:32:24.0796 0x3784 diagsvc - ok
22:32:24.0800 0x3784 DiagTrack - ok
22:32:24.0803 0x3784 Disk - ok
22:32:24.0822 0x3784 [ 89FC056F9CEFB85FC7159AA063904AFF, 6B6F86F87C48EE92F616D4EEE624C9711D0606FD651F3B1D4DD5EF3767B76750 ] DmEnrollmentSvc C:\WINDOWS\system32\Windows.Internal.Management.dll
22:32:24.0843 0x3784 DmEnrollmentSvc - ok
22:32:24.0848 0x3784 dmvsc - ok
22:32:24.0852 0x3784 [ 8B3601E34BD1D693598F968D70361C37, 897C5AEB5ED6AC9DAB2E8E638A42FF588AF3A94EE4C731E97DFAB89BD3B658BC ] dmwappushservice C:\WINDOWS\system32\dmwappushsvc.dll
22:32:24.0854 0x3784 dmwappushservice - ok
22:32:24.0857 0x3784 Dnscache - ok
22:32:24.0870 0x3784 [ C79E79CD4DE45EC0EC0ECB5C76D6CB11, C1AFCA79A104EDF5C59C3E6A113467C7F73E84AACEDE97A22BCBA5B25563E163 ] dot3svc C:\WINDOWS\System32\dot3svc.dll
22:32:24.0875 0x3784 dot3svc - ok
22:32:24.0883 0x3784 [ 5B1EF28DE7302A6BD5DF8459E2C598EF, F2292B8ED8FBFFA681942D5566BF1932D1E9B4F44C2D13329B60E5A8B9386CC9 ] DPS C:\WINDOWS\system32\dps.dll
22:32:24.0886 0x3784 DPS - ok
22:32:24.0889 0x3784 drmkaud - ok
22:32:24.0899 0x3784 [ 5242DC5849014BCFBB3147B76A899783, 759542B42D9DCC224D9CBD19A0C6B8939417F2F08B547BE07FFA3356918C1ED7 ] DsmSvc C:\WINDOWS\System32\DeviceSetupManager.dll
22:32:24.0905 0x3784 DsmSvc - ok
22:32:24.0910 0x3784 DsSvc - ok
22:32:24.0923 0x3784 [ 974BC06C0EC847EA4DC8D9002D394FEB, 4952FEADD7A3EF541FD537EBBCD56ED573D712755798C42428E78267E50BAB34 ] DusmSvc C:\WINDOWS\System32\dusmsvc.dll
22:32:24.0931 0x3784 DusmSvc - ok
22:32:24.0935 0x3784 DXGKrnl - ok
22:32:24.0939 0x3784 Eaphost - ok
22:32:24.0943 0x3784 EasyAntiCheat - ok
22:32:24.0947 0x3784 ebdrv - ok
22:32:24.0953 0x3784 EFS - ok
22:32:24.0957 0x3784 EhStorClass - ok
22:32:24.0962 0x3784 EhStorTcgDrv - ok
22:32:24.0969 0x3784 [ 80D5BD4804C587B21A121566549A63FB, 9BDC1DEB8805E06851F2E2A8B8762265FDC6B12B873D391BFCB8300BDF425B36 ] embeddedmode C:\WINDOWS\System32\embeddedmodesvc.dll
22:32:24.0973 0x3784 embeddedmode - ok
22:32:24.0984 0x3784 [ 8BDB4EB138A93B9C4242D5ADC068899A, 528C0D16CE5D9A69EA75C43DC53D14F7BD2D8BB0B0B0F32BB1F36AC6659C6A27 ] EntAppSvc C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
22:32:24.0990 0x3784 EntAppSvc - ok
22:32:24.0994 0x3784 ErrDev - ok
22:32:25.0012 0x3784 [ BF8362193CB83B5283BC5D24AA3D8DF3, 9A45520D624B101D18A434E63DB7EA6CC44F598EDA36B8A916BB76C1DBB0955C ] ETD C:\WINDOWS\system32\DRIVERS\ETD.sys
22:32:25.0020 0x3784 ETD - ok
22:32:25.0029 0x3784 [ 06C67EE6E9E5DF0692BBE14437E56F3F, 9569B03031AE0CAC51AEF8B8CB8F8F2E717478B482AB4760711E1427C33A396D ] ETDService C:\Program Files\Elantech\ETDService.exe
22:32:25.0031 0x3784 ETDService - ok
22:32:25.0036 0x3784 [ C75C4769BBAE1397E1333D895C2DAE63, A066F6D6BCF25976EA16EC2077A0656C44952A3CB49C6A1A857482C8346E9D2D ] ETDSMBus C:\WINDOWS\System32\drivers\ETDSMBus.sys
22:32:25.0037 0x3784 ETDSMBus - ok
22:32:25.0052 0x3784 [ 9B538A1E44E1D61FA80E80EA75A085FA, 6431BBC533895BD466879C407B9BE7EB50345D666FEE69CAB0813283F07DBE82 ] EventSystem C:\WINDOWS\system32\es.dll
22:32:25.0062 0x3784 EventSystem - ok
22:32:25.0078 0x3784 [ 416D42491C6A21C2F7DF6F93E572B463, 940074B51DC14586A0BCE22293F445B22E6F7F02D1FE0E12D71F3A9748A8CCD2 ] EvtEng C:\Program Files\Intel\WiFi\bin\EvtEng.exe
22:32:25.0089 0x3784 EvtEng - ok
22:32:25.0094 0x3784 exfat - ok
22:32:25.0098 0x3784 fastfat - ok
22:32:25.0114 0x3784 [ BBD6407DA3DA4FC718710587E253C7BF, 8C9995A86EF9FC1FB47ADA1367A67A9829E0E3CE191D11E0AFB0F85E325D48DC ] Fax C:\WINDOWS\system32\fxssvc.exe
22:32:25.0126 0x3784 Fax - ok
22:32:25.0131 0x3784 fdc - ok
22:32:25.0135 0x3784 [ A2037943CCC079307A383C5543607CEF, 2FAC5F76526A8E4D7D7FAE80F9A0AF31D37DD12FF597769C87912B973C339BF4 ] fdPHost C:\WINDOWS\system32\fdPHost.dll
22:32:25.0138 0x3784 fdPHost - ok
22:32:25.0147 0x3784 [ C11A1A9CF331B7AA2F04974EE262EC07, AA1C79FCCDEC3C7236B7BE73E6888D7DD5642EB16E13B4633C98EE34CB72A644 ] FDResPub C:\WINDOWS\system32\fdrespub.dll
22:32:25.0150 0x3784 FDResPub - ok
22:32:25.0156 0x3784 [ 71CECDA2DCF81E0AD8C30440C77966E2, E26313CD895579A9F3380A648E6FC271EFED0E82C0FCFB287049C5C2D0CC35A9 ] fhsvc C:\WINDOWS\system32\fhsvc.dll
22:32:25.0160 0x3784 fhsvc - ok
22:32:25.0165 0x3784 [ 9BC7FE262AF52B341048234809AA7D91, DF95BBEB59821357C69797AC659380C9F27C11B8A60A599C9A2C5623B7CBB6DB ] FileCrypt C:\WINDOWS\system32\drivers\filecrypt.sys
22:32:25.0166 0x3784 FileCrypt - ok
22:32:25.0169 0x3784 FileInfo - ok
22:32:25.0173 0x3784 Filetrace - ok
22:32:25.0177 0x3784 flpydisk - ok
22:32:25.0181 0x3784 FltMgr - ok
22:32:25.0185 0x3784 FontCache - ok
22:32:25.0189 0x3784 FontCache3.0.0.0 - ok
22:32:25.0192 0x3784 FrameServer - ok
22:32:25.0197 0x3784 FsDepends - ok
22:32:25.0200 0x3784 Fs_Rec - ok
22:32:25.0203 0x3784 fvevol - ok
22:32:25.0207 0x3784 [ 71DBED7FB264DB60341BC796EC2E8135, DBD29794A45AEFB16A5765D03962B311CB061D1EB8A281C5F34DABF39C66A3B2 ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys
22:32:25.0210 0x3784 gencounter - ok
22:32:25.0214 0x3784 genericusbfn - ok
22:32:25.0218 0x3784 GPIOClx0101 - ok
22:32:25.0221 0x3784 gpsvc - ok
22:32:25.0223 0x3784 [ 508614CAC7BF8AEE4FB9002A413919B1, F60DE0236B0453FC99473A09A7FAC1140831E581C08F3F5C440F5EFCD30943AB ] GpuEnergyDrv C:\WINDOWS\system32\drivers\gpuenergydrv.sys
22:32:25.0225 0x3784 GpuEnergyDrv - ok
22:32:25.0232 0x3784 [ 248739BB0F3A1156A2C0AF51F39A9EA2, A94C43658BCCC88C2D229F40F5C03CA5839A2EAFD57CA088E3E85EB9264CCA3E ] GraphicsPerfSvc C:\WINDOWS\System32\GraphicsPerfSvc.dll
22:32:25.0236 0x3784 GraphicsPerfSvc - ok
22:32:25.0242 0x3784 [ 0545A3EB959CFA4790D267BFB8C1ACA4, 69061E33ACB7587D773D05000390F9101F71DFD6EED7973B551594EAF3F04193 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
22:32:25.0245 0x3784 gupdate - ok
22:32:25.0252 0x3784 [ 0545A3EB959CFA4790D267BFB8C1ACA4, 69061E33ACB7587D773D05000390F9101F71DFD6EED7973B551594EAF3F04193 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
22:32:25.0254 0x3784 gupdatem - ok
22:32:25.0258 0x3784 HDAudBus - ok
22:32:25.0263 0x3784 HidBatt - ok
22:32:25.0268 0x3784 [ 33346BD26BB0AE4361DF1ED00D2876CF, 1777169606573646F7E7D54E01E421F62479DF57FAE86005B1EEFDC06F4898B7 ] HidBth C:\WINDOWS\System32\drivers\hidbth.sys
22:32:25.0270 0x3784 HidBth - ok
22:32:25.0274 0x3784 hidi2c - ok
22:32:25.0279 0x3784 hidinterrupt - ok
22:32:25.0284 0x3784 [ 1553DF41F4EE4F60B4BEEEC62264BE71, 46AE8357E8038D35ADB82A51ED421293D7AB18C926C713F19149B97400D4C65E ] HidIr C:\WINDOWS\System32\drivers\hidir.sys
22:32:25.0285 0x3784 HidIr - ok
22:32:25.0289 0x3784 hidserv - ok
22:32:25.0293 0x3784 HidUsb - ok
22:32:25.0298 0x3784 [ B815C6E6C0156330A09700901EA4154D, FF003B408CDC62563CEAB39CF081B4AC09C2DDFFA4128491525D9B4F9EB7B3D0 ] HiPatchService C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
22:32:25.0299 0x3784 HiPatchService - ok
22:32:25.0305 0x3784 HpSAMD - ok
22:32:25.0312 0x3784 HTTP - ok
22:32:25.0316 0x3784 [ 9E1F3BA540DB9F4942A3F50A92E5754F, 3FF53B60DC52886D6F2EC7F9D8C12009A4BECE5A046D827BC8C941E7401ED000 ] hvcrash C:\WINDOWS\System32\drivers\hvcrash.sys
22:32:25.0317 0x3784 hvcrash - ok
22:32:25.0321 0x3784 [ 64A94654E5703D2E8830AA2500D8F0A4, A1E3C910DFF1485E412F01076A11B9441161224C0F08A9067082A9FD8A5D8E5B ] HvHost C:\WINDOWS\System32\hvhostsvc.dll
22:32:25.0325 0x3784 HvHost - ok
22:32:25.0331 0x3784 [ 621042C19113527CF8FA89F3454576BF, AB072C44B9BA8CD3AFE0DA33E42A69210AE87F4314FA3A0DF984DDF12516F063 ] hvservice C:\WINDOWS\system32\drivers\hvservice.sys
22:32:25.0333 0x3784 hvservice - ok
22:32:25.0337 0x3784 [ B149905CD7451160B6BFA2191A3F6182, A706E4F12963A20F9767D8730973282B5830D97A087ADA8CA9B7D219513C127F ] HwNClx0101 C:\WINDOWS\system32\Drivers\mshwnclx.sys
22:32:25.0338 0x3784 HwNClx0101 - ok
22:32:25.0343 0x3784 hwpolicy - ok
22:32:25.0346 0x3784 hyperkbd - ok
22:32:25.0349 0x3784 HyperVideo - ok
22:32:25.0353 0x3784 i8042prt - ok
22:32:25.0357 0x3784 iagpio - ok
22:32:25.0363 0x3784 iai2c - ok
22:32:25.0369 0x3784 iaLPSS2i_GPIO2 - ok
22:32:25.0376 0x3784 iaLPSS2i_GPIO2_BXT_P - ok
22:32:25.0379 0x3784 iaLPSS2i_I2C - ok
22:32:25.0383 0x3784 iaLPSS2i_I2C_BXT_P - ok
22:32:25.0386 0x3784 iaLPSSi_GPIO - ok
22:32:25.0390 0x3784 iaLPSSi_I2C - ok
22:32:25.0421 0x3784 [ 5C9AAE902452EF47D8C9EA5838E666B9, 9171558EE78B555312FD8D99EDF85849A4CDE87142EB91DB9E8AF92A1DDF664E ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys
22:32:25.0443 0x3784 iaStorA - ok
22:32:25.0449 0x3784 iaStorAVC - ok
22:32:25.0452 0x3784 [ 31BD488EE7F6ED608A7418F6A7C6948D, BB7DC889C0F73FDE089FC0E52D321F29CBB5A65A3D9F90B0B3A730EF938B6178 ] IAStorDataMgrSvc C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
22:32:25.0453 0x3784 IAStorDataMgrSvc - ok
22:32:25.0456 0x3784 iaStorV - ok
22:32:25.0461 0x3784 ibbus - ok
22:32:25.0466 0x3784 ibtsiva - ok
22:32:25.0473 0x3784 [ 27AD258DB51E25496F74E98C3CF80415, 58180A50CC8C28A0F7388F62F8A7E4DFE96B40D16C6E10BB067FD4F1EF3868AF ] ibtusb C:\WINDOWS\system32\DRIVERS\ibtusb.sys
22:32:25.0478 0x3784 ibtusb - ok
22:32:25.0488 0x3784 [ F8CFDD8FED56E1261367A81A731BC1C0, 408187B2E7B403B47AF0D4BF089439D9BA3B3090A430983F77A55DEF2AB381DB ] icssvc C:\WINDOWS\System32\tetheringservice.dll
22:32:25.0500 0x3784 icssvc - ok
22:32:25.0643 0x3784 [ F37606EAFFB621AA6A341CC76BEF37C3, 421674158785B8911354AA02514080390239FBFC8713A2F2AEF55223AF1C28D3 ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys
22:32:25.0771 0x3784 igfx - ok
22:32:25.0793 0x3784 [ 407102406ABA1916DFA7915E52A2EC48, 2DBC62F778579E3BB839D31E4C4BDB26E1EDD2735EECFF4298973A03EC53233F ] igfxCUIService2.0.0.0 C:\WINDOWS\system32\igfxCUIService.exe
22:32:25.0801 0x3784 igfxCUIService2.0.0.0 - ok
22:32:25.0805 0x3784 IKEEXT - ok
22:32:25.0811 0x3784 [ AA38C19A3D65E8228D822EB18037E19D, 54943929E398C67A5A9C72EA65F0FD7A06BB43F03A2291CAEA29443CD10C5169 ] IndirectKmd C:\WINDOWS\System32\drivers\IndirectKmd.sys
22:32:25.0812 0x3784 IndirectKmd - ok
22:32:25.0818 0x3784 InstallService - ok
22:32:25.0906 0x3784 [ 35A78C3E44DAB0E8396A1FD9BF48597F, 6F61ECEC687A1271BEF85956ECEC9EE545065FFE3EE30933D3AF1000BDBCC511 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
22:32:25.0991 0x3784 IntcAzAudAddService - ok
22:32:26.0016 0x3784 [ 947360145F94C61E17EECD4BD3516AA9, F55A9EC31FE253E063D34B0118070B14156567B2E3B4ED74B697CA656D7789A0 ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys
22:32:26.0027 0x3784 IntcDAud - ok
22:32:26.0033 0x3784 intelide - ok
22:32:26.0040 0x3784 [ E6CC7C1E7CEDC81D6B15BF2CF4C99109, 1B181F55CD2E500468FE07C9BA6F20B207FA4B601C4971D1551B80A480D42EBD ] intelpep C:\WINDOWS\system32\drivers\intelpep.sys
22:32:26.0043 0x3784 intelpep - ok
22:32:26.0047 0x3784 intelppm - ok
22:32:26.0051 0x3784 [ 917931A6116F03DB3CA56CFCE8634667, 27B661B6143F4AE94BF28DE1133001F95A451C18804F6DFED1D7D1F36B5E5350 ] iorate C:\WINDOWS\system32\drivers\iorate.sys
22:32:26.0053 0x3784 iorate - ok
22:32:26.0059 0x3784 [ FB72A49FAD5C343C8C38948F92D87BBF, 3947D9393D6F4F104D2D07D5FBA61041A8D6006BE2497F2A6337462F8B04A124 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
22:32:26.0061 0x3784 IpFilterDriver - ok
22:32:26.0084 0x3784 [ 9064A49C03F1CED42EAC2B4636C87192, CF388E05EA782BC0645FD0B42A41C9334C074BE6D7C193FA4F9819905CBCEA9C ] iphlpsvc C:\WINDOWS\System32\iphlpsvc.dll
22:32:26.0098 0x3784 iphlpsvc - ok
22:32:26.0103 0x3784 IPMIDRV - ok
22:32:26.0111 0x3784 [ 7408B83959A4B8271EF67FD06A6B366B, C22DDB76AC3351A50B889AD7D2756EF8612450AC8EE72C88A1044691A0071BE5 ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys
22:32:26.0115 0x3784 IPNAT - ok
22:32:26.0120 0x3784 [ 7BEA2228C81FB6E1EADDD54D615B4C7E, 8640865C98F951B1B8D99E841D9A3FDC6E0251AFAC6B02F815DC409627A50112 ] IPT C:\WINDOWS\System32\drivers\ipt.sys
22:32:26.0121 0x3784 IPT - ok
22:32:26.0126 0x3784 [ AD0574F12AA812340BD39071FD30AD1E, 765F1EDFEDEA1F2728108D7A1187A468F529A883886006F74DB9EAD0BFE7B1B6 ] IpxlatCfgSvc C:\WINDOWS\System32\IpxlatCfg.dll
22:32:26.0131 0x3784 IpxlatCfgSvc - ok
22:32:26.0136 0x3784 [ 030AE3773151CFA728C67E38416FAD8D, 167E698035F2F07E822B430B31F02FABF3997BAC93039786747053344CE6E6D3 ] irda C:\WINDOWS\system32\drivers\irda.sys
22:32:26.0138 0x3784 irda - ok
22:32:26.0143 0x3784 [ 79D02DC54AB4F85D2C13A728A0E36193, 3B6BA678ED269195D506D29EBD9E070603F02AC0FAA92364E7C553B8856C3EDB ] IRENUM C:\WINDOWS\system32\drivers\irenum.sys
22:32:26.0143 0x3784 IRENUM - ok
22:32:26.0154 0x3784 [ 6ADE9DCAF71DCD888320CA47DB8B05EF, 6FA1EBB3D025546AAD14D968DF7CABD3002598F2F561CCC1D4F07A9B0322DE02 ] irmon C:\WINDOWS\System32\irmon.dll
22:32:26.0157 0x3784 irmon - ok
22:32:26.0162 0x3784 isapnp - ok
22:32:26.0166 0x3784 iScsiPrt - ok
22:32:26.0169 0x3784 ItSas35i - ok
22:32:26.0173 0x3784 [ DA0A946E6C4228B659FA798EF0B075C1, BC2F5710D6165615CD578A970BC154C8DB1ECCA5725D09A29954E9BE8FAC0ED7 ] iwdbus C:\WINDOWS\System32\drivers\iwdbus.sys
22:32:26.0175 0x3784 iwdbus - ok
22:32:26.0180 0x3784 kbdclass - ok
22:32:26.0185 0x3784 kbdhid - ok
22:32:26.0188 0x3784 kdnic - ok
22:32:26.0192 0x3784 KeyIso - ok
22:32:26.0196 0x3784 KSecDD - ok
22:32:26.0200 0x3784 KSecPkg - ok
22:32:26.0203 0x3784 ksthunk - ok
22:32:26.0214 0x3784 [ C4151271434A490707B4FD4E6AAE9EED, DDB809D002039645CDED08322B9CDCA04C483A119380098FF9EBA998A1A3811D ] KtmRm C:\WINDOWS\system32\msdtckrm.dll
22:32:26.0225 0x3784 KtmRm - ok
22:32:26.0229 0x3784 LanmanServer - ok
22:32:26.0233 0x3784 LanmanWorkstation - ok
22:32:26.0240 0x3784 [ C2A49E8EEE7C3D06ECA80847A42F65D5, E1559EF96E6F2146E4AC0BE46CBFF5FA29829812A64A6F09803C00E3E0AAB1F0 ] lfsvc C:\WINDOWS\System32\lfsvc.dll
22:32:26.0246 0x3784 lfsvc - ok
22:32:26.0251 0x3784 [ DB8F10ED986BFE0A5B663A1D067F2CCC, 88EE540F545C8838E9F855094A2A4AAC096BD24F77103E06464CCD77C3FCFFFD ] LicenseManager C:\WINDOWS\system32\LicenseManagerSvc.dll
22:32:26.0254 0x3784 LicenseManager - ok
22:32:26.0260 0x3784 [ 3CF979AFF0196DF3DF5E54DFC049EB1F, FEA82EF2AA4222171E80548EB00A4F0FBD27363B84AA9E6B8F82147C568BADEE ] lltdio C:\WINDOWS\system32\drivers\lltdio.sys
22:32:26.0262 0x3784 lltdio - ok
22:32:26.0271 0x3784 [ D6DD748EAC3BC540CFE65C73FE20C099, 8A79E1F1834D949D027B4D3471297ADFB539B9282DE5DF5FDBE60AE171F3CFFC ] lltdsvc C:\WINDOWS\System32\lltdsvc.dll
22:32:26.0279 0x3784 lltdsvc - ok
22:32:26.0283 0x3784 lmhosts - ok
22:32:26.0288 0x3784 LSI_SAS - ok
22:32:26.0293 0x3784 LSI_SAS2i - ok
22:32:26.0298 0x3784 LSI_SAS3i - ok
22:32:26.0301 0x3784 LSI_SSS - ok
22:32:26.0304 0x3784 LSM - ok
22:32:26.0310 0x3784 [ E86400D7B6E095E89CF63667D94D3F50, 4E30374B82FB1D8904B9803109C4557C565023FA94C7AE61BB2ADAAACAE0E179 ] luafv C:\WINDOWS\system32\drivers\luafv.sys
22:32:26.0313 0x3784 luafv - ok
22:32:26.0322 0x3784 [ 07514F5635999D7DDB5F3A62B5C5AEB3, D3717437D14C36873E2D0C1AA65F29EB9A5DB1DE60A7EE86A093FD126B7EBC05 ] LxpSvc C:\WINDOWS\System32\LanguageOverlayServer.dll
22:32:26.0330 0x3784 LxpSvc - ok
22:32:26.0335 0x3784 [ 1C1FF36E51F73989FB4DD2DBAFAE11EC, B5C0B169BFEF5FD769745F924B3F30C960A555F8B0C0C7315B273435D9F246D5 ] MapsBroker C:\WINDOWS\System32\moshost.dll
22:32:26.0341 0x3784 MapsBroker - ok
22:32:26.0355 0x3784 mausbhost - ok
22:32:26.0359 0x3784 mausbip - ok
22:32:26.0475 0x3784 [ F7265B7490428499F2FE409FA9247866, 43A406C74689B72020E4669B45F19D377A5FF3EFE79B03AF58C2679D14405E9D ] MBAMService C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe
22:32:26.0586 0x3784 MBAMService - ok
22:32:26.0602 0x3784 [ A692F41F46F789228CECB2AA128AEC85, 83F7A12934D008BE46A774ABB136A7C11408D92832A0AEFF4866AEACF2594C55 ] MBAMSwissArmy C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
22:32:26.0607 0x3784 MBAMSwissArmy - ok
22:32:26.0613 0x3784 megasas - ok
22:32:26.0617 0x3784 megasas2i - ok
22:32:26.0620 0x3784 megasas35i - ok
22:32:26.0623 0x3784 megasr - ok
22:32:26.0631 0x3784 [ 86F565B0D41EBCCE7256B812F3A0442B, BACB5753D4501679B0C3D5D6B2D2D5233EC6B5BF76D0C2BD616EC460D5B9918F ] MEIx64 C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys
22:32:26.0635 0x3784 MEIx64 - ok
22:32:26.0639 0x3784 [ 69259AFDF347B5F4AF06E900C4A1F62E, 167FF155F3E1B362A5D5FDB010A5F539F5E13CAD7E64E6F105CC770DA3639EEB ] MessagingService C:\WINDOWS\System32\MessagingService.dll
22:32:26.0645 0x3784 MessagingService - ok
22:32:26.0655 0x3784 [ 1ECAB1D7A88F953397D09ECFCF789B91, 42AFE658FABAA6816700886B2F0697A692DE6B5DB0B90B361E099BF79B44E389 ] Microsoft_Bluetooth_AvrcpTransport C:\WINDOWS\system32\DRIVERS\Microsoft.Bluetooth.AvrcpTransport.sys
22:32:26.0657 0x3784 Microsoft_Bluetooth_AvrcpTransport - ok
22:32:26.0662 0x3784 mlx4_bus - ok
22:32:26.0666 0x3784 MMCSS - ok
22:32:26.0670 0x3784 [ CA25F2D78FDD0D36E3F3071B4B317BD4, 21B5902EF802FAFA7DC6FD737CE9888C74526983FDCE31CDFAB11630E1476FD1 ] Modem C:\WINDOWS\system32\drivers\modem.sys
22:32:26.0671 0x3784 Modem - ok
22:32:26.0677 0x3784 [ 13142B3B30F633F407D5256B2FFCCEF0, 0A8DD229FD752E8B7E1D11E1A066BCF8B3E2023068AD731FF23ACBF4D182D23D ] monitor C:\WINDOWS\System32\drivers\monitor.sys
22:32:26.0679 0x3784 monitor - ok
22:32:26.0683 0x3784 mouclass - ok
22:32:26.0686 0x3784 mouhid - ok
22:32:26.0689 0x3784 mountmgr - ok
22:32:26.0697 0x3784 [ 5FD8FEB002DCA919BA18F51C267BFFEB, E6F6F1A1C5C0299B9386AC8A97D4360936CBFC664B99452EE78AACA163673123 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
22:32:26.0701 0x3784 MozillaMaintenance - ok
22:32:26.0705 0x3784 mpsdrv - ok
22:32:26.0709 0x3784 mpssvc - ok
22:32:26.0714 0x3784 MRxDAV - ok
22:32:26.0718 0x3784 mrxsmb - ok
22:32:26.0722 0x3784 mrxsmb20 - ok
22:32:26.0729 0x3784 [ F14DE177087F9E990EDE95ACE1F94662, E0B8C7DAF8C13CAD08B974D681981038E33ED8871717C550477EDCFD05A3B96D ] MsBridge C:\WINDOWS\system32\drivers\bridge.sys
22:32:26.0731 0x3784 MsBridge - ok
22:32:26.0750 0x3784 [ 9A94F32C1DC90A7E5A35D0F820A8FB1D, 4CAFCE804D9135BE9CBF80307D570F24E4A102890DAB504E3DEFF3B335C9B80E ] MSDTC C:\WINDOWS\System32\msdtc.exe
22:32:26.0757 0x3784 MSDTC - ok
22:32:26.0766 0x3784 Msfs - ok
22:32:26.0770 0x3784 [ 5A5ABA987943317300A4E55A5C5EB8C4, 9AC863F537BBB2D776C3F240B510DEE94BD84A7675C695D1270770609E77F65B ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys
22:32:26.0772 0x3784 msgpiowin32 - ok
22:32:26.0777 0x3784 mshidkmdf - ok
22:32:26.0784 0x3784 [ E12A703CE10B068727499276340D5296, 67F513A83D896DBF014D7446D66F1A1F9F0D03ADB23B57FD1A3CCC880ED50299 ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys
22:32:26.0785 0x3784 mshidumdf - ok
22:32:26.0788 0x3784 msisadrv - ok
22:32:26.0794 0x3784 MSiSCSI - ok
22:32:26.0798 0x3784 msiserver - ok
22:32:26.0801 0x3784 MSKSSRV - ok
22:32:26.0806 0x3784 [ AECFFBE104D428E8A74BCABF5B3B9912, EA94A7FA1F9BE357311E411293F4D3CC8F80ED1523BFE362DA56A3C2AC65DF58 ] MsLldp C:\WINDOWS\system32\drivers\mslldp.sys
22:32:26.0809 0x3784 MsLldp - ok
22:32:26.0813 0x3784 MSPCLOCK - ok
22:32:26.0816 0x3784 MSPQM - ok
22:32:26.0820 0x3784 MsRPC - ok
22:32:26.0825 0x3784 mssmbios - ok
22:32:26.0829 0x3784 MSTEE - ok
22:32:26.0833 0x3784 MTConfig - ok
22:32:26.0836 0x3784 Mup - ok
22:32:26.0839 0x3784 mvumis - ok
22:32:26.0849 0x3784 [ 808DEF96BB1E01490DC38520D22A05A3, C242E34A20FE765A8CC2D1314B13347005E266C39B3467661BC7FB1E4BB75ABE ] MyWiFiDHCPDNS C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
22:32:26.0854 0x3784 MyWiFiDHCPDNS - ok
22:32:26.0861 0x3784 NativeWifiP - ok
22:32:26.0888 0x3784 [ B281FAC1C60FE21ED3F635ECF673A981, 6641CCBD38AEF3FA5D9EDD24F01AAB6509AD6D3927371CD7938C04B3BBC92FD1 ] NaturalAuthentication C:\WINDOWS\System32\NaturalAuth.dll
22:32:26.0907 0x3784 NaturalAuthentication - ok
22:32:26.0918 0x3784 [ 6FEC83EDC4A3D1E99039CA1D96AD720D, F6DB011FBED10EAF8CCDC9EDDCB47F728B6B17A6A3CA5D6DB5DE50EEFE7DDD4D ] NcaSvc C:\WINDOWS\System32\ncasvc.dll
22:32:26.0925 0x3784 NcaSvc - ok
22:32:26.0937 0x3784 [ C3D3E2DFBD52C48EA787604F49060A5C, 0F5E3C9E63F6421398154EF942182FE67CCCCE6DE25B1EE2A30A8E6E3C17145A ] NcbService C:\WINDOWS\System32\ncbservice.dll
22:32:26.0949 0x3784 NcbService - ok
22:32:26.0956 0x3784 [ 9AB04C4C14B32D127DB6E7D3DF79FF26, DAC84CBDF605C43657CDA1B95A86DC0D55E236A75BFDA3041472C5D6222EB025 ] NcdAutoSetup C:\WINDOWS\System32\NcdAutoSetup.dll
22:32:26.0964 0x3784 NcdAutoSetup - ok
22:32:26.0968 0x3784 ndfltr - ok
22:32:26.0972 0x3784 NDIS - ok
22:32:26.0979 0x3784 [ AF73B18F3096B165A6F4417C5ED36B01, B0FA9E52D7208F756103E2E853F1D17F594C9FDD2E76304743C581613E612449 ] NdisCap C:\WINDOWS\system32\drivers\ndiscap.sys
22:32:26.0981 0x3784 NdisCap - ok
22:32:26.0989 0x3784 [ 1A9B1F5B8B131CE461A01C9424E149D7, 66E3F49308DF111B5D5DBF57F11A05E0B9492530587E37C6729C46AED17647D3 ] NdisImPlatform C:\WINDOWS\system32\drivers\NdisImPlatform.sys
22:32:26.0992 0x3784 NdisImPlatform - ok
22:32:26.0997 0x3784 NdisTapi - ok
22:32:27.0000 0x3784 Ndisuio - ok
22:32:27.0004 0x3784 NdisVirtualBus - ok
22:32:27.0009 0x3784 NdisWan - ok
22:32:27.0014 0x3784 ndiswanlegacy - ok
22:32:27.0020 0x3784 ndproxy - ok
22:32:27.0027 0x3784 [ 0E3B0F3645D1BAE79397C66FE8AF6402, 6568FD9646FE7C7D61D280C26097583EFA2FB9F59D43340A7283BEAD3A5CC206 ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys
22:32:27.0030 0x3784 Ndu - ok
22:32:27.0033 0x3784 NetAdapterCx - ok
22:32:27.0037 0x3784 NetBIOS - ok
22:32:27.0043 0x3784 NetBT - ok
22:32:27.0047 0x3784 Netlogon - ok
22:32:27.0051 0x3784 Netman - ok
22:32:27.0066 0x3784 [ E9931F57F05696CBF53A086449D97BF6, 986C99033AA10A258F0CC42727B14C5812BC76AB535CDF54FCA1B038C4BF9546 ] netprofm C:\WINDOWS\System32\netprofmsvc.dll
22:32:27.0079 0x3784 netprofm - ok
22:32:27.0084 0x3784 NetSetupSvc - ok
22:32:27.0095 0x3784 [ 7EC8B56348F9298BCCA7A745C7F70E2C, F677CBD94ABE25AECF08ECFBBDA063A9C032C678327A0D105CB6B3E587C44C19 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
22:32:27.0098 0x3784 NetTcpPortSharing - ok
22:32:27.0103 0x3784 netvsc - ok
22:32:27.0235 0x3784 [ 43A6FA571D6B06279B9CD30901957AA1, A3451C696FC5FBE2C3778D974CF28B429B6265178E5372239C205221E9BDB39E ] Netwtw04 C:\WINDOWS\system32\DRIVERS\Netwtw04.sys
22:32:27.0368 0x3784 Netwtw04 - ok
22:32:27.0394 0x3784 [ 162A571ABAF9546339EE0BB482FF6AE7, E6E590B628AA65D161D7A87C9CF360D905FCC858E73EE1C4723FE217E8A91EA2 ] NgcCtnrSvc C:\WINDOWS\System32\NgcCtnrSvc.dll
22:32:27.0409 0x3784 NgcCtnrSvc - ok
22:32:27.0430 0x3784 [ DB3589FF79F06EC1967EBA56C7249E3C, C3F1B4687F2AAE869C8566B38DCFE507F8E7201A2241BD5342AAC22A2370D5E4 ] NgcSvc C:\WINDOWS\system32\ngcsvc.dll
22:32:27.0447 0x3784 NgcSvc - ok
22:32:27.0452 0x3784 NlaSvc - ok
22:32:27.0455 0x3784 Npfs - ok
22:32:27.0461 0x3784 npsvctrig - ok
22:32:27.0465 0x3784 nsi - ok
22:32:27.0470 0x3784 nsiproxy - ok
22:32:27.0476 0x3784 Ntfs - ok
22:32:27.0480 0x3784 Null - ok
22:32:27.0485 0x3784 nvdimm - ok
22:32:27.0488 0x3784 nvraid - ok
22:32:27.0492 0x3784 nvstor - ok
22:32:27.0506 0x3784 [ 9DBC464AB85AA48C9760C6C2E591E2D3, C9D718F8BE838E13F7488F1E8DAA79809340235A5BA5BF206C1C3DBF0A5DDB48 ] OneSyncSvc C:\WINDOWS\System32\APHostService.dll
22:32:27.0512 0x3784 OneSyncSvc - ok
22:32:27.0578 0x3784 [ F5989050C229483DA0C25E41BBAD310F, B4593F01F710C4A457686328CC88EFC904ED34D73AFF85DB4A722BA6A25E0B7C ] Origin Client Service C:\Program Files (x86)\Origin\OriginClientService.exe
22:32:27.0619 0x3784 Origin Client Service - ok
22:32:27.0685 0x3784 [ 4A91DFB1F6B5DF14559DF9293EE2AC5F, 5E8ECB5797E11EDE3B57EA200A7103F772F687629BBCFD12F612BA8BC599F848 ] Origin Web Helper Service C:\Program Files (x86)\Origin\OriginWebHelperService.exe
22:32:27.0742 0x3784 Origin Web Helper Service - ok
22:32:27.0752 0x3784 [ 9FACCCBC44D65D7D41E88D8DAD365871, 5B215F7E0F2F15033ACAB40328265A224057E5FB4E8D3A3F2BB35D878F4CEFE4 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
22:32:27.0755 0x3784 ose - ok
22:32:27.0766 0x3784 [ CD5ECD6470B6B235B73569A091150299, FAAE20B0F2F15ADA5B3F5F2BBBFEA000A95EC8A64B37C9364145CE04EE204352 ] p2pimsvc C:\WINDOWS\system32\pnrpsvc.dll
22:32:27.0775 0x3784 p2pimsvc - ok
22:32:27.0788 0x3784 [ CCD10679BA0D9EF549F80C458C2AD1C4, 7B433FEE4BEA69C28A98F4BFBE5FA603DB2CE1DFCF229EBB4D9B7A0FD159FF04 ] p2psvc C:\WINDOWS\system32\p2psvc.dll
22:32:27.0800 0x3784 p2psvc - ok
22:32:27.0803 0x3784 Parport - ok
22:32:27.0807 0x3784 partmgr - ok
22:32:27.0827 0x3784 [ 0CF87FC2DA60940031D553F8FDF5066B, 95F8A15210D6F431B84C6E18643F93C9D16F53D3FF4873F9A327A77924B4B9F8 ] PcaSvc C:\WINDOWS\System32\pcasvc.dll
22:32:27.0840 0x3784 PcaSvc - ok
22:32:27.0846 0x3784 pci - ok
22:32:27.0849 0x3784 pciide - ok
22:32:27.0853 0x3784 pcmcia - ok
22:32:27.0856 0x3784 pcw - ok
22:32:27.0861 0x3784 pdc - ok
22:32:27.0880 0x3784 [ 42B12A76D3C98AE69C97727E3BEC7D8A, C878A05A9817F62514432685FAA795737F628EF7258EC5C7846045E1CAB2DF6E ] PEAUTH C:\WINDOWS\system32\drivers\peauth.sys
22:32:27.0891 0x3784 PEAUTH - ok
22:32:27.0896 0x3784 [ EE926C59CBD4DC4DC9FBB85014A2F1A5, 777459BD30A480E03EA5D0BBA431C2CD573403687FAA0B29F172086A0304E230 ] PEGAGFN C:\Program Files (x86)\PHotkey\PEGAGFN.sys
22:32:27.0897 0x3784 PEGAGFN - ok
22:32:27.0902 0x3784 [ 753402F5B8C5B85AB60FCF53229FA072, 981D065EBE5A0BD5180974E9AE77E3307F97A0E66DE2A7A79FBE0888F6657B7D ] PegaRadioSwitch C:\WINDOWS\System32\drivers\PegaRadioSwitch.sys
22:32:27.0903 0x3784 PegaRadioSwitch - ok
22:32:27.0908 0x3784 percsas2i - ok
22:32:27.0913 0x3784 percsas3i - ok
22:32:27.0937 0x3784 [ 185100798FBD23C849DC1C00ED43D99D, 10895ADE339744BBABDFB50BE6025217C02C76B1911C2C8740A57912385B38DE ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe
22:32:27.0940 0x3784 PerfHost - ok
22:32:27.0958 0x3784 [ 9A7B272B8815093763B996C7EE5D001F, B0499C50D031B6BDED2365C105D0274B72D611C23CFD4B6AE58B1C7F84B30A00 ] PGFNEXSrv C:\Program Files (x86)\PHotkey\PGFNEXSrv.exe
22:32:27.0961 0x3784 PGFNEXSrv - ok
22:32:27.0965 0x3784 PhoneSvc - ok
22:32:27.0973 0x3784 [ 807ED476A62E79935315342BD3FAA046, FF56FC79C6B6043A10C123CF85A8DDA0B8564E03D49AD5811DDCBB99823C4836 ] PimIndexMaintenanceSvc C:\WINDOWS\System32\PimIndexMaintenance.dll
22:32:27.0982 0x3784 PimIndexMaintenanceSvc - ok
22:32:28.0014 0x3784 [ 4E614DBE28B5857F70DEBCC804629E67, B93C42FB96BBA0577CB892274905352AE4A6DE257F676D6A23CE0297F945D7E7 ] pla C:\WINDOWS\system32\pla.dll
22:32:28.0043 0x3784 pla - ok
22:32:28.0048 0x3784 PlugPlay - ok
22:32:28.0053 0x3784 pmem - ok
22:32:28.0057 0x3784 [ 99ECEDA6B2E1FDB6892FBD5AED1E5D99, C970DDDBDB4AF8C6A1AA92D780B82920B4922304649509075CF14A2AB86C3CCF ] PNPMEM C:\WINDOWS\System32\drivers\pnpmem.sys
22:32:28.0059 0x3784 PNPMEM - ok
22:32:28.0064 0x3784 [ 75690F495CEDBEF3D5989828AEEAE832, 3257E7261DF8F39CA4988BBED3060B9E8A5988978F66A4B1409E08F65B262FED ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll
22:32:28.0070 0x3784 PNRPAutoReg - ok
22:32:28.0081 0x3784 [ CD5ECD6470B6B235B73569A091150299, FAAE20B0F2F15ADA5B3F5F2BBBFEA000A95EC8A64B37C9364145CE04EE204352 ] PNRPsvc C:\WINDOWS\system32\pnrpsvc.dll
22:32:28.0089 0x3784 PNRPsvc - ok
22:32:28.0094 0x3784 PolicyAgent - ok
22:32:28.0100 0x3784 Power - ok
22:32:28.0103 0x3784 PptpMiniport - ok
22:32:28.0184 0x3784 [ AD62FCEC1CB8ECD7C0E3DFD2FA79FDE4, 6372FC5E78A2DDB8AE6EB73BEB5C0D4056FB6BE9F231A36BAC37AE970F5EB247 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
22:32:28.0242 0x3784 PrintNotify - ok
22:32:28.0251 0x3784 [ A60202AE474E2173ED91118DD73ADAAD, 6AE315E1DD9E3B03E48B8848FCB0CDD506080F0012DE478BA99D102F91E968E6 ] PrintWorkflowUserSvc C:\WINDOWS\System32\PrintWorkflowService.dll
22:32:28.0258 0x3784 PrintWorkflowUserSvc - ok
22:32:28.0264 0x3784 Processor - ok
22:32:28.0267 0x3784 ProfSvc - ok
22:32:28.0274 0x3784 [ E4BF8BE7B3711BCBBC95EE983C0236F4, A71C09D83034C96F7ED4DB58F7388F8A13C7FD1A3F41FE8EEC553C42B65DFFC6 ] Psched C:\WINDOWS\system32\drivers\pacer.sys
22:32:28.0278 0x3784 Psched - ok
22:32:28.0287 0x3784 [ 29F12CD3F77B65C7E37F8517395B13D2, 690517756A21B3DE4CF4A027AA712FC62DB6F5F2E89B4D2DE220A29C4A36878B ] PushToInstall C:\WINDOWS\system32\PushToInstall.dll
22:32:28.0296 0x3784 PushToInstall - ok
22:32:28.0305 0x3784 [ 8AB5F41584C98047ABEF490FC1E31F7E, F8480F9D9C1A60901975C529CC0911ED592834AB1068FADD88B15E6497A59221 ] QWAVE C:\WINDOWS\system32\qwave.dll
22:32:28.0314 0x3784 QWAVE - ok
22:32:28.0319 0x3784 [ 00F72861538B6C4E925A21BAE397A49D, 6847E2332CC8573850428CC7E3A73B2DA0274977F53BDDF7DBA68D223A501CC4 ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys
22:32:28.0320 0x3784 QWAVEdrv - ok
22:32:28.0324 0x3784 Ramdisk - ok
22:32:28.0329 0x3784 RasAcd - ok
22:32:28.0332 0x3784 RasAgileVpn - ok
22:32:28.0336 0x3784 RasAuto - ok
22:32:28.0339 0x3784 Rasl2tp - ok
22:32:28.0346 0x3784 RasMan - ok
22:32:28.0349 0x3784 RasPppoe - ok
22:32:28.0353 0x3784 RasSstp - ok
22:32:28.0356 0x3784 rdbss - ok
22:32:28.0365 0x3784 [ 206AB796793FDBD518B82E2F308A7176, ED0DBDE7106970F217F4FB1FB184B6795A16356C879C17E0910840F64F292809 ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys
22:32:28.0366 0x3784 rdpbus - ok
22:32:28.0374 0x3784 [ 52A6CC99F5934CFAE88353C47B6193E7, 37F6991FA526036866E8CFC938A16750644AD764FA52BB102B11B5D594DB7E96 ] RDPDR C:\WINDOWS\system32\drivers\rdpdr.sys
22:32:28.0378 0x3784 RDPDR - ok
22:32:28.0388 0x3784 [ 0600DF60EF88FD10663EC84709E5E245, 48572DC0C644E13BD1713E29E522763EB4E00337ACA64D1392960D17EAF8923A ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys
22:32:28.0390 0x3784 RdpVideoMiniport - ok
22:32:28.0402 0x3784 [ 65652EFAAF4A8A59E60A2D7BE15317E8, 83A9A8506EF4769625EF0EF43B93906A6FBD9133E52C12B17A68B89DAC68D026 ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys
22:32:28.0408 0x3784 rdyboost - ok
22:32:28.0483 0x3784 Redis - ok
22:32:28.0486 0x3784 ReFS - ok
22:32:28.0489 0x3784 ReFSv1 - ok
22:32:28.0496 0x3784 [ 3B346EFB42F3D3FFAF775E9A5D84A2C8, 242BFB2836408728A6D8E721D3C25ABD29D83CEF2438724D7D663FD417F2979A ] RegSrvc C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
22:32:28.0499 0x3784 RegSrvc - ok
22:32:28.0512 0x3784 [ 980F60634FAF9C58FC468AF9AA609D68, 7BA03FE851F78D5DC9062ACEADF194ACB4F8F56C9D496B17D846CE1E4373B404 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
22:32:28.0523 0x3784 RemoteAccess - ok
22:32:28.0532 0x3784 [ 106E630F1B2A8BF2BBD4508D9B166406, FAFBE21EC61B97B4B825285EBA0F661382A95119E1740EE4FB9A1F6FB3C0F5F7 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
22:32:28.0541 0x3784 RemoteRegistry - ok
22:32:28.0558 0x3784 [ 53BE6D9C36A9CB95A1568C24D44A8A34, DD8245F87B9D4203F56595D6ABF9F1E74EA071D4B7BB0469A293CA9E20BDA246 ] RetailDemo C:\WINDOWS\system32\RDXService.dll
22:32:28.0572 0x3784 RetailDemo - ok
22:32:28.0583 0x3784 [ 59F600BDA5B6EE591802945F1D8388D5, A30593A0EC696DE21264969664261E7ADA12C9E1161445BD41E71B7E3232604F ] RFCOMM C:\WINDOWS\System32\drivers\rfcomm.sys
22:32:28.0586 0x3784 RFCOMM - ok
22:32:28.0592 0x3784 [ 3D4F4CCE0364CD3F1B539D2630686F24, 620EFC53D6F5279AEF4748FAE22F7239E7855D1F5C79B85F6CB54EF51C516408 ] rhproxy C:\WINDOWS\System32\drivers\rhproxy.sys
22:32:28.0595 0x3784 rhproxy - ok
22:32:28.0607 0x3784 [ ADA13EBD9C23C51876A5B2EADF7F2E29, D08E6A907DE5DC6F51CA71CBF7886FE7D8C6FB09154B633D86CDBE9C311361A0 ] RmSvc C:\WINDOWS\System32\RMapi.dll
22:32:28.0616 0x3784 RmSvc - ok
22:32:28.0619 0x3784 RpcEptMapper - ok
22:32:28.0624 0x3784 [ 19EC4D05E01FE350B3494CEA122D64EB, 09FF60A8F22D66796257E33F4CFD6059D4A11A3173A7691718E9FE841E15ABA2 ] RpcLocator C:\WINDOWS\system32\locator.exe
22:32:28.0629 0x3784 RpcLocator - ok
22:32:28.0632 0x3784 RpcSs - ok
22:32:28.0637 0x3784 [ FFFB16EF6E0B8B5F7F19B425923E7D12, 27C2882AC7B27BAC5A4051C2C9326A6D289F297158DE7A3A93E8B09378DC91AA ] rspndr C:\WINDOWS\system32\drivers\rspndr.sys
22:32:28.0639 0x3784 rspndr - ok
22:32:28.0663 0x3784 [ E11A3F79475F9D019CD51ADCCC377909, CF14C494C4A969233C1D2B32A56C86C8636AC70004725B53447C42EB63C31BA9 ] rt640x64 C:\WINDOWS\System32\drivers\rt640x64.sys
22:32:28.0676 0x3784 rt640x64 - ok
22:32:28.0690 0x3784 [ CD119D2452BCB3ED0803FAF8A24F74AE, 8FC84679AE0B682DD79FE3879F92F854430C724C22E4F1DCD1E2D01777103492 ] RTSUER C:\WINDOWS\system32\Drivers\RtsUer.sys
22:32:28.0697 0x3784 RTSUER - ok
22:32:28.0702 0x3784 [ A2939E69027B97105014434BFBFF7195, 9DC09BE94415564D0E80431223BDA1C59E3555AB5267DD3F64E71D4A18C8553A ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys
22:32:28.0704 0x3784 s3cap - ok
22:32:28.0708 0x3784 SamSs - ok
22:32:28.0712 0x3784 sbp2port - ok
22:32:28.0722 0x3784 [ D48F36EA4B4E8237B24E33B18D76EB2A, 128E754F15FDB00D218FB23431BF0FBDC65D64EEF294D72535B0C07EB5472136 ] SCardSvr C:\WINDOWS\System32\SCardSvr.dll
22:32:28.0733 0x3784 SCardSvr - ok
22:32:28.0744 0x3784 [ 1B1FB3D8403E621F2B9201EF414E21D9, 5EFBEA5DC09CD5F151EF224BE2FF2C985D19301B17E5C16F5D00CB2852DAF8BF ] ScDeviceEnum C:\WINDOWS\System32\ScDeviceEnum.dll
22:32:28.0752 0x3784 ScDeviceEnum - ok
22:32:28.0757 0x3784 [ 0070C2DC6563C48EDA63A282748F3FCD, 12C8505DDD05994641B2B19666D7A54E12A21F6894913342A9BA5D148F193BE0 ] scfilter C:\WINDOWS\system32\DRIVERS\scfilter.sys
22:32:28.0759 0x3784 scfilter - ok
22:32:28.0781 0x3784 [ 9D13410D7B4D76AA2EA73EC8CA0E0190, 7C46D202683F34F1C07D9D297E9A239376800DC8C84FE1585FE7FC723B6EBBA0 ] Schedule C:\WINDOWS\system32\schedsvc.dll
22:32:28.0801 0x3784 Schedule - ok
22:32:28.0811 0x3784 scmbus - ok
22:32:28.0819 0x3784 [ 620E4F2FDD04FFB70702676423F1C2AC, 25A19FFA966605C229F5BFBCBBBEE36695FC673C7814CF13E79EE4A9B3D8CBE2 ] SCPolicySvc C:\WINDOWS\System32\certprop.dll
22:32:28.0822 0x3784 SCPolicySvc - ok
22:32:28.0827 0x3784 sdbus - ok
22:32:28.0832 0x3784 [ 9EF09DE84CE20B787C02395394AC2A7E, 17019B74506D26707EBC342365008A9BB5AACA381FB60ABA85F34D153FB0682C ] SDFRd C:\WINDOWS\System32\drivers\SDFRd.sys
22:32:28.0833 0x3784 SDFRd - ok
22:32:28.0841 0x3784 [ 01607A2FAB0068450A06C90AF755D57E, 9615261063475045CBC99F17BD3A4919198D0F77CA9E4EC7B13826E514BC8543 ] SDRSVC C:\WINDOWS\System32\SDRSVC.dll
22:32:28.0849 0x3784 SDRSVC - ok
22:32:28.0853 0x3784 sdstor - ok
22:32:28.0857 0x3784 [ 44B1F4F200B4D3AE8B53290101148AFC, 34F18FEDE525BB398371329CA9F93BD3D88C30E23FCA576978D94EC67513228C ] seclogon C:\WINDOWS\system32\seclogon.dll
22:32:28.0864 0x3784 seclogon - ok
22:32:28.0893 0x3784 [ 7D7ED932B6417D8687D1D972989B310B, A5DF3B6CEE97DD110FD1BC542CC5A5313B2F447E5FCC40DF6EFB9D7D49CD792C ] SEMgrSvc C:\WINDOWS\system32\SEMgrSvc.dll
22:32:28.0921 0x3784 SEMgrSvc - ok
22:32:28.0927 0x3784 [ CA614C9FBC8307AB1DC937F3393899E2, 4833CC631FA30E4D4B45BBC2CE41DE72B332B6A1FFD23B7DBFD6EDD6BC1A2ED8 ] SENS C:\WINDOWS\System32\sens.dll
22:32:28.0934 0x3784 SENS - ok
22:32:28.0978 0x3784 [ 46AEFFC68BEAF89805B95CC6F9529C2E, 7A6A38A329E82F684191561479604142BBB35121822A5CDD828819C606F2A60A ] SensorDataService C:\WINDOWS\System32\SensorDataService.exe
22:32:29.0004 0x3784 SensorDataService - ok
22:32:29.0023 0x3784 [ 2B81117E9C3E20BBAA2CB5467D000F77, AC0DF8E635908026EE43EE0444DEF61481E211737A85A473D64EC8BB214D1135 ] SensorService C:\WINDOWS\system32\SensorService.dll
22:32:29.0040 0x3784 SensorService - ok
22:32:29.0050 0x3784 [ DF94FAAEC4CDAA3886A0169E660C984B, 54BB09459D59B5DDA24D72821840FA7A71A194EA464E09DFDE021B24CB27FCAD ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll
22:32:29.0058 0x3784 SensrSvc - ok
22:32:29.0062 0x3784 SerCx - ok
22:32:29.0065 0x3784 SerCx2 - ok
22:32:29.0069 0x3784 Serenum - ok
22:32:29.0072 0x3784 Serial - ok
22:32:29.0083 0x3784 sermouse - ok
22:32:29.0102 0x3784 [ 87340BC77470B34F11A9E558B591DB08, FD91561FE5951B4F59FEE23707E1ACE31293E508EF734A5CDB0F34D332EFDDF7 ] SessionEnv C:\WINDOWS\system32\sessenv.dll
22:32:29.0113 0x3784 SessionEnv - ok
22:32:29.0116 0x3784 sfloppy - ok
22:32:29.0122 0x3784 [ 1941F5CA54C469E16957587FD56ED842, D356547A9702A50AEB5F7765AC44668EEA913563A422ABBD0427EC22833A5B78 ] SgrmAgent C:\WINDOWS\system32\drivers\SgrmAgent.sys
22:32:29.0125 0x3784 SgrmAgent - ok
22:32:29.0133 0x3784 [ D3170A3F3A9626597EEE1888686E3EA6, 9321991C441B095DF15D24C8AE58F87EE5A3242532E8C023D0F78B2F96FEE6B7 ] SgrmBroker C:\WINDOWS\system32\SgrmBroker.exe
22:32:29.0142 0x3784 SgrmBroker - ok
22:32:29.0159 0x3784 [ AC1D97F89F2EC7E334A406603A686973, D230059C1CB400CCA62438603356F058B40E17DE4C7BD4DADDBB981E4F5E4C9C ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
22:32:29.0171 0x3784 SharedAccess - ok
22:32:29.0190 0x3784 [ 0BE15FDA358837ABD88DC72AA75C75CD, 3990FA051E7C280B446C8A749FCEE04E384230CC5E286B4E7080B1737E5730DD ] SharedRealitySvc C:\WINDOWS\System32\SharedRealitySvc.dll
22:32:29.0208 0x3784 SharedRealitySvc - ok
22:32:29.0224 0x3784 [ 63B104867F70F0D81125C37989146960, 468431098DD9B91F1C58551CEB4DBE6E1C456FFE845E302571B970EF05AE03A8 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
22:32:29.0241 0x3784 ShellHWDetection - ok
22:32:29.0251 0x3784 [ F6D90D09D2BCFA2B5E492BFECA40EDE4, 7B427335943C1EFDE482D59F3A23149FCD45BB014643BEF620A708720383C4A8 ] shpamsvc C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll
22:32:29.0260 0x3784 shpamsvc - ok
22:32:29.0265 0x3784 SiSRaid2 - ok
22:32:29.0268 0x3784 SiSRaid4 - ok
22:32:29.0272 0x3784 smphost - ok
22:32:29.0288 0x3784 [ A3BEF2736E902B9DCA68554F4E10E08C, 5C7590D8F2D637B6D4A5F68945D8350B1C3D48EBE1B2C36658361900C9425611 ] SmsRouter C:\WINDOWS\system32\SmsRouterSvc.dll
22:32:29.0303 0x3784 SmsRouter - ok
22:32:29.0313 0x3784 [ 577EC13EB5215325E9B9FC51FB56A974, 1D7A0245A3C474BCD4EC69704040FB50C0E086DB1711C5B7FC4D9C4A7909DAB9 ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe
22:32:29.0318 0x3784 SNMPTRAP - ok
22:32:29.0322 0x3784 spaceport - ok
22:32:29.0328 0x3784 [ FE1776E587227120DC04EAEC45473245, 9DEBD997D275065481EEEDD2310479F2021D53B64AA6D5CEEA70E9BB8C9856C7 ] SpatialGraphFilter C:\WINDOWS\system32\drivers\SpatialGraphFilter.sys
22:32:29.0331 0x3784 SpatialGraphFilter - ok
22:32:29.0334 0x3784 SpbCx - ok
22:32:29.0338 0x3784 spectrum - ok
22:32:29.0359 0x3784 [ C05A19A38D7D203B738771FD1854656F, 3A832F3CBA33682EAA18ABB721BF2D5A6FE9AC853038C684C264700DEB52AA65 ] Spooler C:\WINDOWS\System32\spoolsv.exe
22:32:29.0375 0x3784 Spooler - ok
22:32:29.0381 0x3784 sppsvc - ok
22:32:29.0385 0x3784 srv - ok
22:32:29.0388 0x3784 srv2 - ok
22:32:29.0395 0x3784 srvnet - ok
22:32:29.0405 0x3784 [ 1AEA66706573E8CCD6038369FE37F237, A62CAFE205D5B4C9F8528EDDA4E20BA4E2D1E231F2B183FE70EFE6458B2D5460 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
22:32:29.0417 0x3784 SSDPSRV - ok
22:32:29.0430 0x3784 [ 5EE518DFADC18573E681BB78833E93FA, E98CCD3E2ADA265D6E3CF48CDBFE5C3067E0546F179F23B77C267F65CEB978EE ] ssh-agent C:\WINDOWS\System32\OpenSSH\ssh-agent.exe
22:32:29.0436 0x3784 ssh-agent - ok
22:32:29.0442 0x3784 SstpSvc - ok
22:32:29.0461 0x3784 [ 9DA3B55B17B54789AFB8C657D4ACE4D7, 5E4599E682327E3B8097A88A69ED73F96254A29054744D5DFB782054863F131E ] ss_conn_service C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe
22:32:29.0471 0x3784 ss_conn_service - ok
22:32:29.0477 0x3784 StateRepository - ok
22:32:29.0512 0x3784 [ 3BCC3C334DF59EE4765B31730D7EA04C, BA193D484666BF5FFEEF715A74501F068E13F0330E5EFD4A9864175E313EAB63 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe
22:32:29.0539 0x3784 Steam Client Service - ok
22:32:29.0545 0x3784 stexstor - ok
22:32:29.0562 0x3784 [ EB2C25A3700309F3F67D9334CF33A36C, 9262778566EEEA810AD32CD660DEA841797BD9F874252CC5445D917FF159280B ] stisvc C:\WINDOWS\System32\wiaservc.dll
22:32:29.0577 0x3784 stisvc - ok
22:32:29.0582 0x3784 storahci - ok
22:32:29.0586 0x3784 storflt - ok
22:32:29.0589 0x3784 stornvme - ok
22:32:29.0595 0x3784 storqosflt - ok
22:32:29.0599 0x3784 StorSvc - ok
22:32:29.0602 0x3784 storufs - ok
22:32:29.0606 0x3784 storvsc - ok
22:32:29.0611 0x3784 svsvc - ok
22:32:29.0633 0x3784 swenum - ok
22:32:29.0636 0x3784 swprv - ok
22:32:29.0641 0x3784 [ A2A42A570524C975259E3B81C4D80DCA, 4B2A6295E46DD2042B3C741D9519A0376687B30711F2DA8B9B81A039E46229F9 ] Synth3dVsc C:\WINDOWS\System32\drivers\Synth3dVsc.sys
22:32:29.0643 0x3784 Synth3dVsc - ok
22:32:29.0667 0x3784 [ 62492FAAC26223E8A21E79A2331A3F10, 164C2650EAD344B6DFF95B8275436231E7994B7F06ACB3DA19054849BED61FD2 ] SysMain C:\WINDOWS\system32\sysmain.dll
22:32:29.0687 0x3784 SysMain - ok
22:32:29.0693 0x3784 SystemEventsBroker - ok
22:32:29.0701 0x3784 [ CE9975A9E0DFBEFECECE218D2674C1CD, 20ABA9B78FF40C89A757ED2B4AE2F8BE5F4C6C257AA00A324849D68ACA59A264 ] TabletInputService C:\WINDOWS\System32\TabSvc.dll
22:32:29.0711 0x3784 TabletInputService - ok
22:32:29.0716 0x3784 [ D765F43CBEA72D14C04AF3D2B9C8E54B, 89C5CA1440DF186497CE158EB71C0C6BF570A75B6BC1880EAC7C87A0250201C0 ] tap0901 C:\WINDOWS\System32\drivers\tap0901.sys
22:32:29.0718 0x3784 tap0901 - ok
22:32:29.0727 0x3784 [ E38C7C4D57B1438F70A1B913870E8665, EEBE640E31F3D9126FD2F58EB93051FE4EEA591223DFAB9E918DEBE879718B95 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
22:32:29.0737 0x3784 TapiSrv - ok
22:32:29.0743 0x3784 [ 1960E9FD4082A0170FBA0231FD709113, D5854811787EBC979E9FAB02847F1E662F430A06AB2D3CB9F0EE4BB3A9EC56FE ] tapprotonvpn C:\WINDOWS\System32\drivers\tapprotonvpn.sys
22:32:29.0745 0x3784 tapprotonvpn - ok
22:32:29.0749 0x3784 [ 039CFEDBC0D1A751A1308228A72C1CCD, C451FA71353CB2D31AE4AA3F2B03D098A2C6156B687EC33E0AD2DFC766646647 ] tapwindscribe0901 C:\WINDOWS\System32\drivers\tapwindscribe0901.sys
22:32:29.0751 0x3784 tapwindscribe0901 - ok
22:32:29.0755 0x3784 Tcpip - ok
22:32:29.0760 0x3784 Tcpip6 - ok
22:32:29.0768 0x3784 [ 085F8A5F09E64CC27309AF160EF4F9BA, DB3DFD3059836A9FB26FE924E9F2B960E454F4B20D8862266DFDA3168D610FD8 ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys
22:32:29.0770 0x3784 tcpipreg - ok
22:32:29.0779 0x3784 tdx - ok
22:32:29.0784 0x3784 [ B2C4D7CB291293CAC636748E695D111E, 5E0AA8147EFDA5D21CEE8AE254F74A974B0ADAF298F569CAA73AC4E3B758438A ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys
22:32:29.0786 0x3784 terminpt - ok
22:32:29.0808 0x3784 [ 10ADC3589E50B1ED8452C86E0CBE8248, BE82341A12EA83D9EFADC9AC35CF16D327F8499C99107DCDE88DD0F5DF84523C ] TermService C:\WINDOWS\System32\termsrv.dll
22:32:29.0830 0x3784 TermService - ok
22:32:29.0835 0x3784 [ 1A0A0F6A139148AFDC4622046D4B3CBD, 8FC2FB99B70A3A5B2F1D757A2F0E3085B1D242B792A35070E1DB3871A275329E ] Themes C:\WINDOWS\system32\themeservice.dll
22:32:29.0844 0x3784 Themes - ok
22:32:29.0854 0x3784 [ 811910E891A6DB4A864AE119EB71218C, 2CBB6159E2ACAE4BA73892A4F7F8A3981C159083C29F1A1D548C59FB713B9D74 ] TieringEngineService C:\WINDOWS\system32\TieringEngineService.exe
22:32:29.0864 0x3784 TieringEngineService - ok
22:32:29.0869 0x3784 TimeBrokerSvc - ok
22:32:29.0871 0x3784 TokenBroker - ok
22:32:29.0876 0x3784 TPM - ok
22:32:29.0883 0x3784 [ A5C0F857C38278A90E953A24E1701196, 1A646E47013946CCE41C798A494C6D266AEFC8A8D6EB65CD8848E72106687E38 ] TrkWks C:\WINDOWS\System32\trkwks.dll
22:32:29.0889 0x3784 TrkWks - ok
22:32:29.0894 0x3784 TrustedInstaller - ok
22:32:29.0902 0x3784 [ 0D721F40C179EC5737C15E551F22C69B, BBA04E11C3D9150C60F74D8B1A3F444BDE0C19857BB7C45D58448F641082DE1A ] TsUsbFlt C:\WINDOWS\system32\drivers\tsusbflt.sys
22:32:29.0904 0x3784 TsUsbFlt - ok
22:32:29.0913 0x3784 [ DE1296871208D1F13B7AC57C4B1FA46C, D18709F65E372A47AE114ECFD6A45E6736089B4A8E719E2FB5D831D9415E995D ] TsUsbGD C:\WINDOWS\System32\drivers\TsUsbGD.sys
22:32:29.0915 0x3784 TsUsbGD - ok
22:32:29.0925 0x3784 [ BC938ABBF586272BD4063CA51F09149F, 06EB662948D212ACDF930C3CD01C6381A6FB152AC0F1628C86764F0973ABA1CB ] tunnel C:\WINDOWS\system32\drivers\tunnel.sys
22:32:29.0928 0x3784 tunnel - ok
22:32:29.0935 0x3784 [ E94996BB8F323AF02860196C1400AD30, DE605439FC5B59C1064DF05F63C94D7C275482C1C66BEC74FA4A83F61C2051FC ] tzautoupdate C:\WINDOWS\system32\tzautoupdate.dll
22:32:29.0945 0x3784 tzautoupdate - ok
22:32:29.0949 0x3784 UASPStor - ok
22:32:29.0963 0x3784 [ 00C4396DE1CD3502884BB2E2B6D6861C, 39F6BF25096ACE29CAF964DCA15078F47986F645DF49FB502A2CDF2C05C89AAB ] UcmCx0101 C:\WINDOWS\system32\Drivers\UcmCx.sys
22:32:29.0966 0x3784 UcmCx0101 - ok
22:32:29.0973 0x3784 [ ED9CBD1541C8AFDAA9B8255A384E2B53, D970F5E976CEBE0BCDF07B9E155EDB5B3C225812991779748CD04A9C4852DF3D ] UcmTcpciCx0101 C:\WINDOWS\system32\Drivers\UcmTcpciCx.sys
22:32:29.0977 0x3784 UcmTcpciCx0101 - ok
22:32:29.0990 0x3784 [ F58F1BC6A6972437CE18516F8ACCEB9F, 2C619D1E2E80662FA463EE48E3D41C8437A81B0F68EE67A0839A93DEDCD2E0B2 ] UcmUcsi C:\WINDOWS\System32\drivers\UcmUcsi.sys
22:32:29.0993 0x3784 UcmUcsi - ok
22:32:29.0997 0x3784 Ucx01000 - ok
22:32:30.0002 0x3784 UdeCx - ok
22:32:30.0006 0x3784 udfs - ok
22:32:30.0012 0x3784 UEFI - ok
22:32:30.0022 0x3784 [ 588B9212DEE84F5192C09A147AA5C316, 80C70FD489D72015FCF8AFBE649F6C77F40B613882A1F031A2DAE088B9B4F67B ] Ufx01000 C:\WINDOWS\system32\drivers\ufx01000.sys
22:32:30.0029 0x3784 Ufx01000 - ok
22:32:30.0034 0x3784 UfxChipidea - ok
22:32:30.0038 0x3784 ufxsynopsys - ok
22:32:30.0049 0x3784 umbus - ok
22:32:30.0054 0x3784 UmPass - ok
22:32:30.0066 0x3784 [ 0D806415E1F86E7C1C192261C247EF0D, 640CB73D9ACC3B6E0F2A2A5A4587375F05A7519081BEC510B926A8A4A496C3B9 ] UmRdpService C:\WINDOWS\System32\umrdp.dll
22:32:30.0077 0x3784 UmRdpService - ok
22:32:30.0102 0x3784 [ EAEC69961D9D8B39FEA44D56F7FB259D, 43FEB15A32B353B6F3C8E5F1072FF9507F2FA7799A414F30FEA0B8C47999D969 ] UnistoreSvc C:\WINDOWS\System32\unistore.dll
22:32:30.0129 0x3784 UnistoreSvc - ok
22:32:30.0146 0x3784 [ 2362D5C18120FAB9CE5BD1F73EE33758, D9AB5D5BEAF95F62A204CE8A3B8B3B6C9C1E85FB5425CA2AADCBB4770EDCDF30 ] upnphost C:\WINDOWS\System32\upnphost.dll
22:32:30.0158 0x3784 upnphost - ok
22:32:30.0165 0x3784 [ 49A5E1B43C59DC0E363AD9C2D7D10BE4, B903C1C24DAF316AF9D8C1770687DE0A24ACDA4EFE47845E13BE99985609B7CE ] UrsChipidea C:\WINDOWS\System32\drivers\urschipidea.sys
22:32:30.0167 0x3784 UrsChipidea - ok
22:32:30.0172 0x3784 [ 53F1DA2D92D1D8CE4BB9D33E58D7DF01, CD3F4B92EDA042FE696C59D67BEB711C7AF0EB5979AD5F4110297C47454EBBFA ] UrsCx01000 C:\WINDOWS\system32\drivers\urscx01000.sys
22:32:30.0175 0x3784 UrsCx01000 - ok
22:32:30.0180 0x3784 [ 09518A324B95BBC0B472BD5A472CB916, B3C6BF8C84268C02CC43E5C6B37648F9691B6038D275F4BEBA7B5E9ECA046181 ] UrsSynopsys C:\WINDOWS\System32\drivers\urssynopsys.sys
22:32:30.0181 0x3784 UrsSynopsys - ok
22:32:30.0185 0x3784 usbccgp - ok
22:32:30.0190 0x3784 [ 250D21958EE5F45CD13FE6BE3788EE70, C0EF097EE2ED91950BD3A6881AB08698E85C4ABABC4F7520F7E92E70CA454D4E ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys
22:32:30.0194 0x3784 usbcir - ok
22:32:30.0197 0x3784 usbehci - ok
22:32:30.0200 0x3784 usbhub - ok
22:32:30.0203 0x3784 USBHUB3 - ok
22:32:30.0208 0x3784 usbohci - ok
22:32:30.0214 0x3784 [ 692C0BA4109C8F78392A299369F51129, A675E11CD4794693D0B65A06E85F264199506A4C6EDBB68503163EED389B8D1F ] usbprint C:\WINDOWS\System32\drivers\usbprint.sys
22:32:30.0216 0x3784 usbprint - ok
22:32:30.0220 0x3784 usbser - ok
22:32:30.0224 0x3784 USBSTOR - ok
22:32:30.0229 0x3784 usbuhci - ok
22:32:30.0239 0x3784 [ 9431F7E997A8750139517709B04D8629, 250DE2A461DD3E6D40BD7A21041BF451D954D5BC14A9BC4D819955A135FC34F4 ] usbvideo C:\WINDOWS\System32\Drivers\usbvideo.sys
22:32:30.0246 0x3784 usbvideo - ok
22:32:30.0251 0x3784 USBXHCI - ok
22:32:30.0284 0x3784 [ CE0E3BA8FC974BEE5BE20E4F43A1C583, E19DE81559FD92D1F7B0ADB4297926E6971F7FCB642E11758D361FC2A22C33BB ] UserDataSvc C:\WINDOWS\System32\userdataservice.dll
22:32:30.0316 0x3784 UserDataSvc - ok
22:32:30.0324 0x3784 UserManager - ok
22:32:30.0329 0x3784 UsoSvc - ok
22:32:30.0341 0x3784 [ 3E283D06357616CD4117CC15BDB7C4C3, ACE50702EE61C9F93855720037898F19E509D45982F9173643EDA455F54FB9E7 ] VacSvc C:\WINDOWS\System32\vac.dll
22:32:30.0354 0x3784 VacSvc - ok
22:32:30.0360 0x3784 VaultSvc - ok
22:32:30.0365 0x3784 [ F257A2737280F0076EAE3AB489C06474, A02E37292D86E675D55C13097E9F107C73DDFD8AAC69310F7D9910A811A541D8 ] VClone C:\WINDOWS\System32\drivers\VClone.sys
22:32:30.0366 0x3784 VClone - ok
22:32:30.0369 0x3784 vdrvroot - ok
22:32:30.0373 0x3784 vds - ok
22:32:30.0379 0x3784 VerifierExt - ok
22:32:30.0383 0x3784 vhdmp - ok
22:32:30.0387 0x3784 vhf - ok
22:32:30.0392 0x3784 vmbus - ok
22:32:30.0396 0x3784 VMBusHID - ok
22:32:30.0400 0x3784 [ C9F69EBA06A703CE726CC6FC0AEFB5E9, 53E441D9D6017CC4BB75F41C6CB9DA79DE500CACBDDE58104D1857A2B749C373 ] vmgid C:\WINDOWS\System32\drivers\vmgid.sys
22:32:30.0401 0x3784 vmgid - ok
22:32:30.0412 0x3784 [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmicguestinterface C:\WINDOWS\System32\icsvc.dll
22:32:30.0419 0x3784 vmicguestinterface - ok
22:32:30.0428 0x3784 [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmicheartbeat C:\WINDOWS\System32\icsvc.dll
22:32:30.0434 0x3784 vmicheartbeat - ok
22:32:30.0442 0x3784 [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmickvpexchange C:\WINDOWS\System32\icsvc.dll
22:32:30.0449 0x3784 vmickvpexchange - ok
22:32:30.0458 0x3784 [ DB7FB1DA7E1564EACBADD436191309C5, B567DFB5828D64A2A199C16538F3557696C3381B858420F23EABC757FDC341C2 ] vmicrdv C:\WINDOWS\System32\icsvcext.dll
22:32:30.0466 0x3784 vmicrdv - ok
22:32:30.0475 0x3784 [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmicshutdown C:\WINDOWS\System32\icsvc.dll
22:32:30.0482 0x3784 vmicshutdown - ok
22:32:30.0490 0x3784 [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmictimesync C:\WINDOWS\System32\icsvc.dll
22:32:30.0497 0x3784 vmictimesync - ok
22:32:30.0506 0x3784 [ E4F5E83951810583FE8C2423772171DF, B2C7D44AA3F578C8E5B0A6FD8002BA554BAA4492FDFCFAED9D581C3ACD05D620 ] vmicvmsession C:\WINDOWS\System32\icsvc.dll
22:32:30.0514 0x3784 vmicvmsession - ok
22:32:30.0525 0x3784 [ DB7FB1DA7E1564EACBADD436191309C5, B567DFB5828D64A2A199C16538F3557696C3381B858420F23EABC757FDC341C2 ] vmicvss C:\WINDOWS\System32\icsvcext.dll
22:32:30.0533 0x3784 vmicvss - ok
22:32:30.0537 0x3784 volmgr - ok
22:32:30.0543 0x3784 volmgrx - ok
22:32:30.0548 0x3784 volsnap - ok
22:32:30.0552 0x3784 volume - ok
22:32:30.0557 0x3784 [ CB90DACF9194DD9D60A2C1DBFBC1E0D1, BE454495C79857FD8DF4ABAF5BDB7D076467BBC27B31E87FA9D920F2001B670D ] vpci C:\WINDOWS\System32\drivers\vpci.sys
22:32:30.0560 0x3784 vpci - ok
22:32:30.0580 0x3784 [ 7AE0B2F48B374DB0F423C9807BCC4F1F, 541D692295427CA3BF9AB66D7185AD4154D2618E5554D7E145B2ED8B1AA4AC98 ] vpnagent C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe
22:32:30.0591 0x3784 vpnagent - ok
22:32:30.0598 0x3784 [ 0F42C39016F82F345C0F2DB2D5B90EB4, 2E957E72BB8D0293F61FA7385BA9400DF7759E1E3D35FE24F3877A6460988F4D ] vpnva C:\WINDOWS\System32\drivers\vpnva64-6.sys
22:32:30.0599 0x3784 vpnva - ok
22:32:30.0603 0x3784 vsmraid - ok
22:32:30.0607 0x3784 VSS - ok
22:32:30.0612 0x3784 VSTXRAID - ok
22:32:30.0616 0x3784 vwifibus - ok
22:32:30.0620 0x3784 vwififlt - ok
22:32:30.0625 0x3784 vwifimp - ok
22:32:30.0629 0x3784 W32Time - ok
22:32:30.0641 0x3784 [ 1C8447EFBC2B36B1CFE889E519F46A6E, 2601185B01909682FB921400C26BE6391AC93F72E84E70E2F49B4059987E191E ] WaaSMedicSvc C:\WINDOWS\System32\WaaSMedicSvc.dll
22:32:30.0654 0x3784 WaaSMedicSvc - ok
22:32:30.0659 0x3784 WacomPen - ok
22:32:30.0672 0x3784 [ 25FAB8A2CFFA21FDB472AB3AE6C17A57, C97E651111643F32FD5B94BEDA31D62E6FF83CA0644FFE8BA98463EC9EA6EF9B ] WalletService C:\WINDOWS\system32\WalletService.dll
22:32:30.0687 0x3784 WalletService - ok
22:32:30.0692 0x3784 wanarp - ok
22:32:30.0697 0x3784 wanarpv6 - ok
22:32:30.0702 0x3784 [ 395447583F42FD840520EE87AE439D74, 984AE1EE8BA3B8926C6FC94BC22DE9061C90C15135EA56D0F16C1D3C4EF8DAF8 ] WarpJITSvc C:\WINDOWS\System32\Windows.WARP.JITService.dll
22:32:30.0710 0x3784 WarpJITSvc - ok
22:32:30.0716 0x3784 wbengine - ok
22:32:30.0720 0x3784 WbioSrvc - ok
22:32:30.0728 0x3784 [ 8A304D6CDC067922448CBA1EBB9FFCA8, DE40DD3A32DFF22C477F38B5E2224D55B8CCF2499EFFE0A8E9923728295BAEC1 ] wcifs C:\WINDOWS\system32\drivers\wcifs.sys
22:32:30.0732 0x3784 wcifs - ok
22:32:30.0769 0x3784 [ 2BCA9BABB5CEC329E604AE9C1DBA9D5B, 315C72B80A5E6278A725E7BD2DE0C8A2751C2A3F9B4D82F7A034B1ADDE687507 ] Wcmsvc C:\WINDOWS\System32\wcmsvc.dll
22:32:30.0792 0x3784 Wcmsvc - ok
22:32:30.0798 0x3784 wcncsvc - ok
22:32:30.0803 0x3784 [ FCA1B5465213EF4DE373A1F7E76D260E, 2548A9D11027871AD0290FDADF1E42E828E6120ECE925B12BAB3F09E25172489 ] wcnfs C:\WINDOWS\system32\drivers\wcnfs.sys
22:32:30.0806 0x3784 wcnfs - ok
22:32:30.0812 0x3784 [ 9BD1C97BAED4B916C95D4E107B3D9812, 722456319EBA63AC6EB21B6A99F4FC928F58AA972DF227EDF0982BC51F4DE86D ] WdBoot C:\WINDOWS\system32\drivers\WdBoot.sys
22:32:30.0814 0x3784 WdBoot - ok
22:32:30.0818 0x3784 Wdf01000 - ok
22:32:30.0829 0x3784 [ D25D9930BFD78A09B8FD4A7504C6F57A, 9D94BC1368A73B06312ED9016482534EA64F7005C85AAB240ED619FDD19E7F4C ] WdFilter C:\WINDOWS\system32\drivers\WdFilter.sys
22:32:30.0835 0x3784 WdFilter - ok
22:32:30.0841 0x3784 [ 067D1A81B4708CA97523709FDF57B728, CA331223250B37E7D2D8B04640EDF279F7FD7336017181ECF2D3E4F82E370F97 ] WdiServiceHost C:\WINDOWS\system32\wdi.dll
22:32:30.0849 0x3784 WdiServiceHost - ok
22:32:30.0854 0x3784 [ 067D1A81B4708CA97523709FDF57B728, CA331223250B37E7D2D8B04640EDF279F7FD7336017181ECF2D3E4F82E370F97 ] WdiSystemHost C:\WINDOWS\system32\wdi.dll
22:32:30.0863 0x3784 WdiSystemHost - ok
22:32:30.0866 0x3784 wdiwifi - ok
22:32:30.0870 0x3784 [ EAF4FB729E94561EE31BDE5BEF869C65, 73290250B565E0A3F453BC45E69FF16A1D964E372A15401A2D3E2CDEB4670B38 ] WdmCompanionFilter C:\WINDOWS\system32\drivers\WdmCompanionFilter.sys
22:32:30.0871 0x3784 WdmCompanionFilter - ok
22:32:30.0879 0x3784 [ 8542EAE47D35CB658614C1813C7599A2, 67AEB01B5D4E6CA8C669EFB12A7876A378CEA4CAE2810DD790D2DAC5F07D6E52 ] wdm_usb C:\WINDOWS\system32\DRIVERS\usb2ser.sys
22:32:30.0883 0x3784 wdm_usb - ok
22:32:30.0888 0x3784 [ 54E97FEADEEFF973797EB878DC0D2850, A7ABD9E8B94DA19328BB9BF498D64603C6147BE998C40A6F0F8C2E0716CBFC95 ] WdNisDrv C:\WINDOWS\system32\Drivers\WdNisDrv.sys
22:32:30.0891 0x3784 WdNisDrv - ok
22:32:30.0895 0x3784 WdNisSvc - ok
22:32:30.0903 0x3784 [ BDCC510E85F7AF152E2DFF030A526EA2, 67830B42DE20EBB30DD33093F30FBA166B27D3C1F25B52DABE1BC436671A1882 ] WebClient C:\WINDOWS\System32\webclnt.dll
22:32:30.0915 0x3784 WebClient - ok
22:32:30.0923 0x3784 [ 506F0A1CCABF4428733CF854BCBB6832, 859A7E21ABB93A0AD538AAF93D32E31B961EA6012C24567B4C76A9ED8FD4AD46 ] Wecsvc C:\WINDOWS\system32\wecsvc.dll
22:32:30.0933 0x3784 Wecsvc - ok
22:32:30.0938 0x3784 [ D8D727E8311C86B2A993A9006A453BAC, AD6C93F5ED51C621841DF68A25D5932578FADB83689FB668D056F316A8AA749D ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll
22:32:30.0947 0x3784 WEPHOSTSVC - ok
22:32:30.0954 0x3784 [ 30B4568D058E17500E7BF88AECEDF3F1, 612597DFAF63E55ACB80789483CBCF0E5AC5FF7607C478C61E5A86D77B169E9E ] wercplsupport C:\WINDOWS\System32\wercplsupport.dll
22:32:30.0964 0x3784 wercplsupport - ok
22:32:30.0968 0x3784 WerSvc - ok
22:32:30.0983 0x3784 [ 0427A785512BB39BEA530DC5367A9A03, 8ED29AE0FDB65D4E1D8CD3FA1783D74EF7B01AB30DD1090C917A74AC88FD4C3E ] WFDSConMgrSvc C:\WINDOWS\System32\wfdsconmgrsvc.dll
22:32:30.0998 0x3784 WFDSConMgrSvc - ok
22:32:31.0002 0x3784 WFPLWFS - ok
22:32:31.0008 0x3784 [ 752F5931696914DF2EC0B27275C38458, 83415E7BE50D9548785FBF6550FA679E425B5990F303E2D74513275A5E1DC828 ] WiaRpc C:\WINDOWS\System32\wiarpc.dll
22:32:31.0016 0x3784 WiaRpc - ok
22:32:31.0020 0x3784 WIMMount - ok
22:32:31.0031 0x3784 [ EC7C1A7397988EFAF37BF685CA25525D, 50DA7D63CDE618D6426649AED250CEBE229CBBAC718C4E3CD882D816839B4CE9 ] WindowsTrustedRT C:\WINDOWS\system32\drivers\WindowsTrustedRT.sys
22:32:31.0033 0x3784 WindowsTrustedRT - ok
22:32:31.0037 0x3784 [ 5F0EDDA201630E132C2251BC9DA85023, 842B5CBA8C33616345EDC2F91B560416AAEAAB15A8CE1F36978B251CE4CBDA16 ] WindowsTrustedRTProxy C:\WINDOWS\system32\drivers\WindowsTrustedRTProxy.sys
22:32:31.0039 0x3784 WindowsTrustedRTProxy - ok
22:32:31.0044 0x3784 WinHttpAutoProxySvc - ok
22:32:31.0048 0x3784 WinMad - ok
22:32:31.0055 0x3784 Winmgmt - ok
22:32:31.0070 0x3784 [ 48194110C410B335AC985D9194275A1C, 1CE64B9DD2DB4CCB3916AA4F4C5F8C71C647ABF7845D284019725761138B8A8B ] WinNat C:\WINDOWS\system32\drivers\winnat.sys
22:32:31.0074 0x3784 WinNat - ok
22:32:31.0123 0x3784 [ C57185CC62AA13E4F5A989D904CC9A16, 993F27F710148335C4244AB74D4B1D232DEDB0E3D82E39093A1E422C72283D31 ] WinRM C:\WINDOWS\system32\WsmSvc.dll
22:32:31.0174 0x3784 WinRM - ok
22:32:31.0189 0x3784 [ 6FA3D810FE082001B16ADE19829F1E8E, 64B420FC14AB3194D4D2907EA5BE741456928E7E3CB9CBA50FEB8677A43B1971 ] WINUSB C:\WINDOWS\System32\drivers\WinUSB.SYS
22:32:31.0193 0x3784 WINUSB - ok
22:32:31.0197 0x3784 WinVerbs - ok
22:32:31.0200 0x3784 wisvc - ok
22:32:31.0205 0x3784 WlanSvc - ok
22:32:31.0211 0x3784 wlidsvc - ok
22:32:31.0242 0x3784 [ 59F6A50CD336D0ADD22E3F1FC0D73957, A62469B30325965735FE76AE7D83E5D829AE09D7F0996CC0B42604E68426B088 ] wlpasvc C:\WINDOWS\System32\lpasvc.dll
22:32:31.0271 0x3784 wlpasvc - ok
22:32:31.0276 0x3784 WmiAcpi - ok
22:32:31.0283 0x3784 wmiApSrv - ok
22:32:31.0286 0x3784 WMPNetworkSvc - ok
22:32:31.0297 0x3784 [ E122AD60BF4D7E4B28CCBABF33B28C1F, 1ABABE62FCC1B1A837540EE66F3EB0CE062962F05247002D61CFDE6ABB8E7E87 ] Wof C:\WINDOWS\system32\drivers\Wof.sys
22:32:31.0300 0x3784 Wof - ok
22:32:31.0347 0x3784 [ 0D3303BDBC591ECF113601D7853A1AA7, 437CF89541696E0B1A8056F4A5189642FC76D762113ED4F71458AF4D72FC3E9A ] workfolderssvc C:\WINDOWS\system32\workfolderssvc.dll
22:32:31.0387 0x3784 workfolderssvc - ok
22:32:31.0395 0x3784 WpcMonSvc - ok
22:32:31.0400 0x3784 [ 25180559693250D7B7FF16A6BE7AC9BE, 1872BC298C3ED6A204B3BA2AB13D08EB9DAE5B30B7F83CA7A67BFDECA8D043AD ] WPDBusEnum C:\WINDOWS\system32\wpdbusenum.dll
22:32:31.0412 0x3784 WPDBusEnum - ok
22:32:31.0420 0x3784 [ 15C1131EA0216F799C86B03EDAE0BE45, 39F50C084407BC3B498714B74DDA5D63E0539681F324A18ABBED3CD0DE5D52AA ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys
22:32:31.0421 0x3784 WpdUpFltr - ok
22:32:31.0431 0x3784 [ 096969606BB5C4822AB020081EA07FC5, 522F372834B0497215F45ACBC417DA10DCE45C6D3C7099E47BBA18700C294B22 ] WpnService C:\WINDOWS\system32\WpnService.dll
22:32:31.0442 0x3784 WpnService - ok
22:32:31.0448 0x3784 [ 8B694BC50D2D2B98311283CFE5B40EE6, 734F8985CAD99E8635ACF09309D958D2B7FB05C6FF54DBE3623DC071BECE3413 ] WpnUserService C:\WINDOWS\System32\WpnUserService.dll
22:32:31.0459 0x3784 WpnUserService - ok
22:32:31.0467 0x3784 ws2ifsl - ok
22:32:31.0476 0x3784 [ DCB549367EB94CD8AFAA28E3F77F6493, 9FD2C6E03F398E76403502CFC94EB8EBD2F90ED5E95ABA5E86C1B7F63601C43C ] wscsvc C:\WINDOWS\System32\wscsvc.dll
22:32:31.0487 0x3784 wscsvc - ok
22:32:31.0492 0x3784 WSearch - ok
22:32:31.0502 0x3784 [ 813DC18CC654CFB1875074139B0FEFD3, 87901841AFD9224BFEC06A712BE3C2371E16D3571210D4792F91034A2B926A06 ] WudfPf C:\WINDOWS\system32\drivers\WudfPf.sys
22:32:31.0504 0x3784 WudfPf - ok
22:32:31.0515 0x3784 [ FB64BAD6DEDB27EA39B03685AC0A8EB4, CEDCB71F5FC8BAFF69948960F69A46E3A41CDF81304495AFF41088E5B4E9EB1D ] WUDFRd C:\WINDOWS\System32\drivers\WUDFRd.sys
22:32:31.0519 0x3784 WUDFRd - ok
22:32:31.0529 0x3784 [ FB64BAD6DEDB27EA39B03685AC0A8EB4, CEDCB71F5FC8BAFF69948960F69A46E3A41CDF81304495AFF41088E5B4E9EB1D ] WUDFWpdFs C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
22:32:31.0533 0x3784 WUDFWpdFs - ok
22:32:31.0541 0x3784 [ FB64BAD6DEDB27EA39B03685AC0A8EB4, CEDCB71F5FC8BAFF69948960F69A46E3A41CDF81304495AFF41088E5B4E9EB1D ] WUDFWpdMtp C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
22:32:31.0546 0x3784 WUDFWpdMtp - ok
22:32:31.0584 0x3784 [ FAFE3B08208AA28C82BC42731B4EEBE8, 333D9CBE6B3492BC30A7B64C1F83494B38AD2CE7C832C1D68FEBD2EB8029230D ] WwanSvc C:\WINDOWS\System32\wwansvc.dll
22:32:31.0620 0x3784 WwanSvc - ok
22:32:31.0628 0x3784 [ 51D3A1E2285E2E931A553281BBA10E81, 8B371AF5E7717C53780A5C2F68400412C4DB0F01AC6551476FF062B83A7D0AC8 ] xbgm C:\WINDOWS\system32\xbgmsvc.exe
22:32:31.0636 0x3784 xbgm - ok
22:32:31.0661 0x3784 [ DB952AD196A9548CF5235A71E5197F3F, 6C51EB14B2808665FCB999F376A97018F6B0A91EE6E63A25C044EA59A5713EE1 ] XblAuthManager C:\WINDOWS\System32\XblAuthManager.dll
22:32:31.0688 0x3784 XblAuthManager - ok
22:32:31.0720 0x3784 [ 8C0DD7BFFF5A81AEC26AD720057F5451, 4503D4DD540DB9977BBFF3BF7E92BE9778578B769972CF8A54AF0F1FF5C79BF5 ] XblGameSave C:\WINDOWS\System32\XblGameSave.dll
22:32:31.0755 0x3784 XblGameSave - ok
22:32:31.0767 0x3784 [ 0AA38B54EB292CB3EB13FFF948473DBA, C5256ABC0A4A2117EC6F1C88B5BFDBECAE673AD47639A274BFFF92A46452E9B0 ] xboxgip C:\WINDOWS\System32\drivers\xboxgip.sys
22:32:31.0772 0x3784 xboxgip - ok
22:32:31.0779 0x3784 [ C7FEC5C0377E5598BA919B29731CA45F, C153C62742B6F981905AEF7C464761E5894260F26EE164968B21D93979376378 ] XboxGipSvc C:\WINDOWS\System32\XboxGipSvc.dll
22:32:31.0787 0x3784 XboxGipSvc - ok
22:32:31.0814 0x3784 [ 3A94BD93CD2D9C34725D924230B502A5, 87AF2061D348FFFA190D0E50E6860903BED46968CF64B7765D8D80127C702E6A ] XboxNetApiSvc C:\WINDOWS\system32\XboxNetApiSvc.dll
22:32:31.0842 0x3784 XboxNetApiSvc - ok
22:32:31.0849 0x3784 [ CE1F78B5C1F14F74242008B2B3153FA2, 682D1F32DD1BBEB031D5129CE40D9C77D3C6CF4FB5979F1918B2482AF617B5BE ] xinputhid C:\WINDOWS\System32\drivers\xinputhid.sys
22:32:31.0851 0x3784 xinputhid - ok
22:32:31.0866 0x3784 [ 3C68ADDE2437FB45CFE71FD8C33C4919, 7F19F51F3664BE5FDD79BCF216DF8D1D1BC3015D522E989DD592BFA1AB3DFE8B ] YSDrv C:\Program Files (x86)\Bignox\BigNoxVM\RT\YSDrv.sys
22:32:31.0872 0x3784 YSDrv - ok
22:32:31.0944 0x3784 [ 1EBEA7CCAB778865336E4F6C79E807D6, A95FE0B9622E9390CB3482E18846C4EE8ECE67905F4CB6D239BCACC16679A5C4 ] ZeroConfigService C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
22:32:32.0003 0x3784 ZeroConfigService - ok
22:32:32.0009 0x3784 ================ Scan global ===============================
22:32:32.0023 0x3784 [ Global ] - ok
22:32:32.0024 0x3784 ================ Scan MBR ==================================
22:32:32.0026 0x3784 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
22:32:32.0034 0x3784 \Device\Harddisk0\DR0 - ok
22:32:32.0036 0x3784 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk1\DR1
22:32:32.0041 0x3784 \Device\Harddisk1\DR1 - ok
22:32:32.0042 0x3784 ================ Scan VBR ==================================
22:32:32.0044 0x3784 [ DF911AD26D6AD77D910F0D2F6365A0E3 ] \Device\Harddisk0\DR0\Partition1
22:32:32.0045 0x3784 \Device\Harddisk0\DR0\Partition1 - ok
22:32:32.0047 0x3784 [ D797F3B4113DB4D8FE8B976E455F024C ] \Device\Harddisk0\DR0\Partition2
22:32:32.0048 0x3784 \Device\Harddisk0\DR0\Partition2 - ok
22:32:32.0051 0x3784 [ 5D4A449D7585BB685981813AA82E4778 ] \Device\Harddisk1\DR1\Partition1
22:32:32.0052 0x3784 \Device\Harddisk1\DR1\Partition1 - ok
22:32:32.0053 0x3784 [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk1\DR1\Partition2
22:32:32.0054 0x3784 \Device\Harddisk1\DR1\Partition2 - ok
22:32:32.0059 0x3784 [ 892200FF57E3E149C7E74953CAFED1ED ] \Device\Harddisk1\DR1\Partition3
22:32:32.0060 0x3784 \Device\Harddisk1\DR1\Partition3 - ok
22:32:32.0063 0x3784 [ E62DE48BB29D2CE86A1328B87EFAE779 ] \Device\Harddisk1\DR1\Partition4
22:32:32.0065 0x3784 \Device\Harddisk1\DR1\Partition4 - ok
22:32:32.0067 0x3784 [ B5FE3401605610FF0EB06614D298A41A ] \Device\Harddisk1\DR1\Partition5
22:32:32.0068 0x3784 \Device\Harddisk1\DR1\Partition5 - ok
22:32:32.0068 0x3784 ================ Scan generic autorun ======================
22:32:32.0068 0x3784 SecurityHealth - ok
22:32:32.0069 0x3784 ETDCtrl - ok
22:32:32.0353 0x3784 [ 8F16BC456BAA770C0FCC1CD7D3998A1B, 089AF447DC487F4B2D09E0F30E634C63EFD1913628219F3242E638536D922248 ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
22:32:32.0610 0x3784 RTHDVCPL - ok
22:32:32.0652 0x3784 [ 59582ECA7AEC295A61BF79EC651BD89A, E086E8022F5363F9D6D94123854E8570E60C93D0AF84E0CCE4CD1602EB7863EB ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
22:32:32.0675 0x3784 RtHDVBg_Dolby - ok
22:32:32.0682 0x3784 [ A8012BE61DC9CEFA5C41C2DA995812BD, 63D64926B700AD5378C7A719CD71906382EAAA1BE3CB2EE22D9A63D13E12C272 ] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe
22:32:32.0683 0x3784 IAStorIcon - ok
22:32:32.0698 0x3784 [ 5DB2D863BEECABABE5AFBD36AD055919, EDA57E210834275DD78650C55267F1EB55BB03964D0BCB8C87CCB5CCE290AE51 ] C:\Program Files\Dolby\Dolby DAX2\DAX2_APP\DolbyDAX2TrayIcon.exe
22:32:32.0706 0x3784 DAX2_APP - ok
22:32:32.0710 0x3784 Discord - ok
22:32:32.0793 0x3784 [ E67118779196D1FDB49899709B62CBD5, E2891E34735C29018831818A58DA40900179A90A68FC92C6C903C57947AF73FC ] C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
22:32:32.0843 0x3784 Dropbox - ok
22:32:32.0871 0x3784 [ 4FE439A1651F4E2F74022253ADD1C925, 8D855B05D3FF5C840A30A5E00CB0ED9D774C84C9BA11B7657CEB3CC2E3F4C145 ] C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe
22:32:32.0891 0x3784 Cisco AnyConnect Secure Mobility Agent for Windows - ok
22:32:33.0256 0x3784 [ 450FDD861FD582026BDCE55FCB2162C4, 91166DBAEE6A0D97ABA5EED352D06078870A265E736ED491C666CB6A8559BEB2 ] C:\Windows\SysWOW64\OneDriveSetup.exe
22:32:33.0544 0x3784 OneDriveSetup - ok
22:32:33.0573 0x3784 [ FC7536F076D2F1660AC072E54A86B2F1, B36F3E9976F59EC137F8618C7EDF4ED0B35AC65497CA27D69835048E6E277040 ] C:\Program Files (x86)\Windows Mail\wab.exe
22:32:33.0580 0x3784 WAB Migrate - ok
22:32:33.0936 0x3784 [ 450FDD861FD582026BDCE55FCB2162C4, 91166DBAEE6A0D97ABA5EED352D06078870A265E736ED491C666CB6A8559BEB2 ] C:\Windows\SysWOW64\OneDriveSetup.exe
22:32:34.0224 0x3784 OneDriveSetup - ok
22:32:34.0255 0x3784 [ FC7536F076D2F1660AC072E54A86B2F1, B36F3E9976F59EC137F8618C7EDF4ED0B35AC65497CA27D69835048E6E277040 ] C:\Program Files (x86)\Windows Mail\wab.exe
22:32:34.0263 0x3784 WAB Migrate - ok
22:32:34.0296 0x3784 [ C84B6E5F646590F201E88F2C0955285A, 1785CC39A455F3ED3D0BAB97C03ED80D58CE24157E00C3AAECD31C2C98AA9806 ] C:\Users\staub\AppData\Local\Microsoft\OneDrive\OneDrive.exe
22:32:34.0321 0x3784 OneDrive - ok
22:32:34.0384 0x3784 [ 036D82DD70A5D8B7A29BCDDF3E5C243D, E54A465BF2D70C93B440B05612C8F11B7CA8C8AEECB822E65E518DD862A00700 ] C:\Program Files (x86)\Steam\steam.exe
22:32:34.0428 0x3784 Steam - ok
22:32:34.0435 0x3784 Spotify - ok
22:32:34.0466 0x3784 [ 23686E6FA80E49F08715598A3EFF36BB, B7DC968ADB7DC2FCA1D67A3E6ECE0FF71DC5A909547249CB4A479093319BA7B5 ] C:\Program Files\CyberGhost 6\CyberGhost.exe
22:32:34.0486 0x3784 CyberGhost - ok
22:32:34.0493 0x3784 Discord - ok
22:32:34.0495 0x3784 Windscribe - ok
22:32:34.0496 0x3784 Windows Shutdown Assistant - ok
22:32:34.0845 0x3784 [ 450FDD861FD582026BDCE55FCB2162C4, 91166DBAEE6A0D97ABA5EED352D06078870A265E736ED491C666CB6A8559BEB2 ] C:\Windows\SysWOW64\OneDriveSetup.exe
22:32:35.0134 0x3784 OneDriveSetup - ok
22:32:35.0156 0x3784 Discord - ok
22:32:35.0186 0x3784 [ 10E204B6AEB476E50D07F22DFDFBF62D, AB189636BAB5020B671CBB763E245F27F60847405FC14BEA6E50285E60DC85ED ] C:\Users\enogh\AppData\Local\Microsoft\OneDrive\OneDrive.exe
22:32:35.0209 0x3784 OneDrive - ok
22:32:35.0223 0x3784 [ FC7536F076D2F1660AC072E54A86B2F1, B36F3E9976F59EC137F8618C7EDF4ED0B35AC65497CA27D69835048E6E277040 ] C:\Program Files (x86)\Windows Mail\wab.exe
22:32:35.0231 0x3784 WAB Migrate - ok
22:32:35.0606 0x3784 [ 450FDD861FD582026BDCE55FCB2162C4, 91166DBAEE6A0D97ABA5EED352D06078870A265E736ED491C666CB6A8559BEB2 ] C:\Windows\SysWOW64\OneDriveSetup.exe
22:32:35.0903 0x3784 OneDriveSetup - ok
22:32:36.0079 0x3784 [ 90029F7160037122DA12101C0C8850F7, DE4BFD8E60AC0222EACCA8BAC94562ED2B38CBEF569F8B927CCD197735655AC0 ] C:\Users\shima\AppData\Local\Microsoft\OneDrive\OneDrive.exe
22:32:36.0104 0x3784 OneDrive - ok
22:32:36.0120 0x3784 [ FC7536F076D2F1660AC072E54A86B2F1, B36F3E9976F59EC137F8618C7EDF4ED0B35AC65497CA27D69835048E6E277040 ] C:\Program Files (x86)\Windows Mail\wab.exe
22:32:36.0128 0x3784 WAB Migrate - ok
22:32:36.0130 0x3784 Waiting for KSN requests completion. In queue: 293
22:32:37.0164 0x3784 AV detected via SS2: Windows Defender, windowsdefender:// ( ), 0x60100 ( disabled : updated )
22:32:37.0174 0x3784 Win FW state via NFP2: enabled ( trusted )
22:32:37.0258 0x3784 ============================================================
22:32:37.0258 0x3784 Scan finished
22:32:37.0258 0x3784 ============================================================
22:32:37.0266 0x2148 Detected object count: 0
22:32:37.0266 0x2148 Actual detected object count: 0
22:32:40.0732 0x370c Deinitialize success |