antoenche | 20.04.2015 15:21 | Code:
00:45:22.0521 0x07b4 TDSS rootkit removing tool 3.0.0.44 Jan 22 2015 08:27:04
00:45:29.0447 0x07b4 ============================================================
00:45:29.0447 0x07b4 Current date / time: 2015/04/20 00:45:29.0447
00:45:29.0447 0x07b4 SystemInfo:
00:45:29.0447 0x07b4
00:45:29.0447 0x07b4 OS Version: 6.1.7601 ServicePack: 1.0
00:45:29.0447 0x07b4 Product type: Workstation
00:45:29.0447 0x07b4 ComputerName: MASTER-PC
00:45:29.0447 0x07b4 UserName: Master
00:45:29.0447 0x07b4 Windows directory: C:\Windows
00:45:29.0448 0x07b4 System windows directory: C:\Windows
00:45:29.0448 0x07b4 Processor architecture: Intel x86
00:45:29.0448 0x07b4 Number of processors: 2
00:45:29.0448 0x07b4 Page size: 0x1000
00:45:29.0448 0x07b4 Boot type: Normal boot
00:45:29.0448 0x07b4 ============================================================
00:45:32.0470 0x07b4 KLMD registered as C:\Windows\system32\drivers\14634016.sys
00:45:33.0302 0x07b4 System UUID: {4ADF985F-2533-AD4C-58AE-7122526B94BC}
00:45:35.0058 0x07b4 Drive \Device\Harddisk0\DR0 - Size: 0xAEA8CDE000 ( 698.64 Gb ), SectorSize: 0x200, Cylinders: 0x16441, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
00:45:35.0060 0x07b4 ============================================================
00:45:35.0060 0x07b4 \Device\Harddisk0\DR0:
00:45:35.0060 0x07b4 MBR partitions:
00:45:35.0060 0x07b4 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xAF000
00:45:35.0060 0x07b4 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xAF800, BlocksNum 0x3CFE1000
00:45:35.0060 0x07b4 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x3D090800, BlocksNum 0x1A4B4800
00:45:35.0060 0x07b4 ============================================================
00:45:35.0119 0x07b4 C: <-> \Device\Harddisk0\DR0\Partition2
00:45:35.0189 0x07b4 Z: <-> \Device\Harddisk0\DR0\Partition3
00:45:35.0189 0x07b4 ============================================================
00:45:35.0189 0x07b4 Initialize success
00:45:35.0189 0x07b4 ============================================================
00:48:06.0439 0x14e8 ============================================================
00:48:06.0439 0x14e8 Scan started
00:48:06.0439 0x14e8 Mode: Manual; SigCheck; TDLFS;
00:48:06.0439 0x14e8 ============================================================
00:48:06.0439 0x14e8 KSN ping started
00:48:12.0020 0x14e8 KSN ping finished: true
00:48:13.0302 0x14e8 ================ Scan system memory ========================
00:48:13.0302 0x14e8 System memory - ok
00:48:13.0312 0x14e8 ================ Scan services =============================
00:48:13.0472 0x14e8 [ 8A50AABA4922F5B305A2B1718D9CB1C5, ED0CA7DB106A71899B9DC1511AFDA1F40E6734EED9A579FBE7C9E0965BF37518 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
00:48:13.0632 0x14e8 1394ohci - ok
00:48:13.0674 0x14e8 [ 626AA11C23F57A5717F709A096A1A64D, 4C2A8FA3CBBD722E1107047644E8CE26C05347FD22BF9C29E576DEB6BE7CCFA0 ] ACPI C:\Windows\system32\drivers\ACPI.sys
00:48:13.0714 0x14e8 ACPI - ok
00:48:13.0734 0x14e8 [ 1EFBC664ABFF416D1D07DB115DCB264F, BF94D069D692140B792DBF4FD3CB0127D27C26CC5BFB6B0C28A8B6346767EE58 ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
00:48:13.0814 0x14e8 AcpiPmi - ok
00:48:13.0895 0x14e8 [ 4C72FDD915D62EAEF149BD9C73AB9CF4, 8EA45A1B88DFD819F0ADA3AF36D464E1BF52574269592370E0CC8D0490680E1F ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
00:48:13.0915 0x14e8 AdobeARMservice - ok
00:48:13.0995 0x14e8 [ B04A4810C6CC205F9DC72DC22E4AB236, 547321F5C28C80D4818372D65E2A33D4BAC593015DD6613B24586FE4B4A95D5D ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
00:48:14.0025 0x14e8 AdobeFlashPlayerUpdateSvc - ok
00:48:14.0076 0x14e8 [ 21E785EBD7DC90A06391141AAC7892FB, A2D3D764C5E6DC0AD5AAF48485FFB8B121D2A40DC08ECF2D2CB92278A1002B25 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
00:48:14.0116 0x14e8 adp94xx - ok
00:48:14.0146 0x14e8 [ 0C676BC278D5B59FF5ABD57BBE9123F2, 339E8A433D186BAAB6FCB44C82CC9FB6FCD63C87981449494CBEB2072CB6B7BB ] adpahci C:\Windows\system32\drivers\adpahci.sys
00:48:14.0176 0x14e8 adpahci - ok
00:48:14.0226 0x14e8 [ 7C7B5EE4B7B822EC85321FE23A27DB33, A934AFB71D439555E6376DA9B34F82E8D39A300A4547BE9AC9311F6A3C36270C ] adpu320 C:\Windows\system32\drivers\adpu320.sys
00:48:14.0246 0x14e8 adpu320 - ok
00:48:14.0276 0x14e8 [ 8B5EEFEEC1E6D1A72A06C526628AD161, 026CDF4C96F4D493E7BABF79A14C4B0B5ADCCEF0B081FFFA2E3B243B2414167F ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
00:48:14.0448 0x14e8 AeLookupSvc - ok
00:48:14.0497 0x14e8 [ 9876CB32F95AB3E7B56A86B8465399BE, 93A734D316EFF42AE92C156D934DEC9156C7B562C66ED96B578D58893394CD95 ] AFD C:\Windows\system32\drivers\afd.sys
00:48:14.0537 0x14e8 AFD - ok
00:48:14.0607 0x14e8 [ 7E10E3BB9B258AD8A9300F91214D67B9, CE5FAD7BF78234B64EAADF64DB23F3C342AADB9C5E3B0168E57863F494F30318 ] AgereSoftModem C:\Windows\system32\DRIVERS\AGRSM.sys
00:48:14.0707 0x14e8 AgereSoftModem - ok
00:48:14.0757 0x14e8 [ 507812C3054C21CEF746B6EE3D04DD6E, D7E59350AC338AD229E3D10C76E32AE16D120311B263714A9CD94AB538633B0E ] agp440 C:\Windows\system32\drivers\agp440.sys
00:48:14.0777 0x14e8 agp440 - ok
00:48:14.0807 0x14e8 [ 8B30250D573A8F6B4BD23195160D8707, 64EC289AFCD63D84EAFD9D81C50D0A77BCC79A1EFF32C50B2776BB0C0151757D ] aic78xx C:\Windows\system32\drivers\djsvs.sys
00:48:14.0827 0x14e8 aic78xx - ok
00:48:14.0877 0x14e8 [ 18A54E132947CD98FEA9ACCC57F98F13, 9D39AF972785E49F0DD12C4BAEF39A79CD69F098886BF152AF1B7CCE2E902115 ] ALG C:\Windows\System32\alg.exe
00:48:14.0937 0x14e8 ALG - ok
00:48:14.0967 0x14e8 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44, 1D1AA8F50935D976C29DE7A84708CADBBBDD936F0DD2C059E820F0D21367B3B6 ] aliide C:\Windows\system32\drivers\aliide.sys
00:48:14.0987 0x14e8 aliide - ok
00:48:15.0007 0x14e8 [ 3C6600A0696E90A463771C7422E23AB5, 370B33DC1C25B981628A318BAE434A78A5F0A0DA93C2896DC7A3D7B87AE1A5E7 ] amdagp C:\Windows\system32\drivers\amdagp.sys
00:48:15.0027 0x14e8 amdagp - ok
00:48:15.0047 0x14e8 [ CD5914170297126B6266860198D1D4F0, 2239FCBD1A7EC27CE4F10DA36AE6BD6CCB87E5128C82CA71B84BFE5AF5602A60 ] amdide C:\Windows\system32\drivers\amdide.sys
00:48:15.0070 0x14e8 amdide - ok
00:48:15.0088 0x14e8 [ 00DDA200D71BAC534BF56A9DB5DFD666, CA316B1FFD85BA1CF8664B3229DA1F238A5341E016059F7ED89702324CFD124B ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
00:48:15.0168 0x14e8 AmdK8 - ok
00:48:15.0198 0x14e8 [ 3CBF30F5370FDA40DD3E87DF38EA53B6, 7EACF1743367BE805357B6FD10F8F99E9B1C301FE3782D77719347B13DFA65EC ] AmdPPM C:\Windows\system32\drivers\amdppm.sys
00:48:15.0238 0x14e8 AmdPPM - ok
00:48:15.0298 0x14e8 [ D320BF87125326F996D4904FE24300FC, F767D8C5C58D57202905D829F7AE1B1FF33937F407FDCE4C90E32A6638F27416 ] amdsata C:\Windows\system32\drivers\amdsata.sys
00:48:15.0318 0x14e8 amdsata - ok
00:48:15.0368 0x14e8 [ EA43AF0C423FF267355F74E7A53BDABA, 3F1335909AB0281A2FBDD7AD90E18309E091656CD32B48894B992789D8C61DB4 ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
00:48:15.0388 0x14e8 amdsbs - ok
00:48:15.0408 0x14e8 [ 46387FB17B086D16DEA267D5BE23A2F2, 8B8AC61B91F154B4EB5CC6DECB5FCCEBA8B42EFE94859947136AD06681EA8ED0 ] amdxata C:\Windows\system32\drivers\amdxata.sys
00:48:15.0428 0x14e8 amdxata - ok
00:48:15.0478 0x14e8 [ 91442A511F69C5045CACE15648AB7F3C, 424E8BEFF2665D63A55084B7CEBD89BFC499CBF9FDCC0844AC4B9AF43EE0D09C ] AppID C:\Windows\system32\drivers\appid.sys
00:48:15.0548 0x14e8 AppID - ok
00:48:15.0598 0x14e8 [ 13B3D3851102C7D097DDA7449A9700F7, DC74AD03F0DFDC0301EC28DDDB09BB06EDF601F9A5851DADD02A8099C575908E ] AppIDSvc C:\Windows\System32\appidsvc.dll
00:48:15.0638 0x14e8 AppIDSvc - ok
00:48:15.0698 0x14e8 [ 2C3479170F830503C55FB9ADFDA737A1, FCCFC5C3BB01A0CDA7FF94DED613A2ED492B509141FF75B69E82C4D25ED573AF ] Appinfo C:\Windows\System32\appinfo.dll
00:48:15.0768 0x14e8 Appinfo - ok
00:48:15.0798 0x14e8 [ 635584D0EBD27BFBCAEFD64347A163CE, B6DF385806C3715F49CBF2D755A4C4F2C634AB6B6C61CBE805A3DFA77A4351C9 ] AppMgmt C:\Windows\System32\appmgmts.dll
00:48:15.0858 0x14e8 AppMgmt - ok
00:48:15.0898 0x14e8 [ 2932004F49677BD84DBC72EDB754FFB3, 73F84582244AC53994A2F4499A119B4A84A6BF7FD3046C29A8080C763DE540B8 ] arc C:\Windows\system32\drivers\arc.sys
00:48:15.0918 0x14e8 arc - ok
00:48:15.0928 0x14e8 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7, F7C9C3B4F2C816F57A43B2921672858C291054220BADE291044343778216F6BA ] arcsas C:\Windows\system32\drivers\arcsas.sys
00:48:15.0948 0x14e8 arcsas - ok
00:48:16.0058 0x14e8 [ 537B2948976F5D9B5767B74A63EBB395, 1A14F8B582E74AD15B612EDA5B707AA3CB0B2A107ED14572B4232EAA7383B634 ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
00:48:16.0078 0x14e8 aspnet_state - ok
00:48:16.0108 0x14e8 [ FE99FCB91E93BC4A7E222928A06411DE, C0F9A2A6324B17D435A7C62EB133E3E529D5622ED83C65E48F092CAB79D9A787 ] aswHwid C:\Windows\system32\drivers\aswHwid.sys
00:48:16.0148 0x14e8 aswHwid - ok
00:48:16.0178 0x14e8 [ 5D70C1C6C61C5A034BD086AD219A0237, 318C3CC5AF2A4B99C6C3938B36C95ECA63EABC5E93A2A3D7C729BA0BF191CDF1 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
00:48:16.0198 0x14e8 aswMonFlt - ok
00:48:16.0228 0x14e8 [ 456106F51D03D99A8C65BFC0E37E3D0B, AC616957C299DF452E37ACB1C77F20A50AD4B23AD07BF09951817EF8B460A6D6 ] aswRdr C:\Windows\system32\drivers\aswRdr2.sys
00:48:16.0248 0x14e8 aswRdr - ok
00:48:16.0288 0x14e8 [ 74E84C8CEB52042E8A1EA3104D151843, B9D1ADC6A0FF31EE18E2EECCCC3D98C41FAE9E37295A0F555DAB59D0B6028A6E ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
00:48:16.0298 0x14e8 aswRvrt - ok
00:48:16.0398 0x14e8 [ 48FA0C8E04A37A619C894A1C02D5AB96, F79C7252D0C578F827EED28630D97F2B5E3B361F920AF626343D8A71CDD86288 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
00:48:16.0438 0x14e8 aswSnx - ok
00:48:16.0508 0x14e8 [ 2AB454C9C10C427738426C06D3749361, BC604BC9006CF52520FA962055F391A806B7452639640F13516B151E34517643 ] aswSP C:\Windows\system32\drivers\aswSP.sys
00:48:16.0538 0x14e8 aswSP - ok
00:48:16.0578 0x14e8 [ F7D2CE852966935E2F85C3DB4D50D3A5, BE41E9849380BC047B145B8AC7A402C223A901D39CA349F5D2A070C890B7DCE6 ] aswStm C:\Windows\system32\drivers\aswStm.sys
00:48:16.0598 0x14e8 aswStm - ok
00:48:16.0648 0x14e8 [ 0AE22EAD6B30E448160338E708BCB71D, 4657A7C60635B916FFBC0A731D52E944FDDE6B052AD0DBD0848C3C7A5C15DD0D ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
00:48:16.0678 0x14e8 aswVmm - ok
00:48:16.0708 0x14e8 [ ADD2ADE1C2B285AB8378D2DAAF991481, 7965A705F37924C0EC7A934E64E89C5DF4069816E2EEA3509E0AC90F78910519 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
00:48:16.0848 0x14e8 AsyncMac - ok
00:48:16.0868 0x14e8 [ 338C86357871C167A96AB976519BF59E, F28CC534523D1701B0552F5D7E18E88369C4218BDB1F69110C3E31D395884AD6 ] atapi C:\Windows\system32\drivers\atapi.sys
00:48:16.0888 0x14e8 atapi - ok
00:48:16.0958 0x14e8 [ AC4ADAC154563AB41CC79B0257BC685A, 31F8801FB934465990EF92C124EBEB3A356C74D4D73AE2C42B68174325E06AC7 ] athr C:\Windows\system32\DRIVERS\athr.sys
00:48:17.0058 0x14e8 athr - ok
00:48:17.0138 0x14e8 [ 16D54687850F162F43FF0210EF41F5A0, E0B1360983A2482E8DA916AF8C862D460964B25E4DAB7FF64476CBB16A0F11F2 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
00:48:17.0228 0x14e8 AudioEndpointBuilder - ok
00:48:17.0248 0x14e8 [ 16D54687850F162F43FF0210EF41F5A0, E0B1360983A2482E8DA916AF8C862D460964B25E4DAB7FF64476CBB16A0F11F2 ] Audiosrv C:\Windows\System32\Audiosrv.dll
00:48:17.0298 0x14e8 Audiosrv - ok
00:48:17.0368 0x14e8 [ 210A326658D72D7F2EE2267F3D9C44D4, 25BC620209B5F4BCF5C3F323290E41255F68660F3DFF901FA5A78423A7293D73 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
00:48:17.0398 0x14e8 avast! Antivirus - ok
00:48:17.0658 0x14e8 [ 5019A83BE87FD8B60F7333901BFD35E5, 674DF51CAA1B6C0BC9CA9755B3BC5A9A71C583BD7C7A2826BD280E107B855092 ] AvastVBoxSvc C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
00:48:17.0778 0x14e8 AvastVBoxSvc - ok
00:48:17.0818 0x14e8 [ 265F325D92B7EA72FF41B578C18282B7, 12F28B8C556DC3DC4CFF6E79AE2D5EDAF1AA9E0299388CAC233046DB22F3A644 ] AxInstSV C:\Windows\System32\AxInstSV.dll
00:48:17.0878 0x14e8 AxInstSV - ok
00:48:17.0938 0x14e8 [ 1A231ABEC60FD316EC54C66715543CEC, 09E2897BA80737997A286EA5408C03DD3CC0EBACD24CB391C2455B6D4BE7D67E ] b06bdrv C:\Windows\system32\drivers\bxvbdx.sys
00:48:18.0018 0x14e8 b06bdrv - ok
00:48:18.0048 0x14e8 [ BD8869EB9CDE6BBE4508D869929869EE, F4363A12EBFDBB89C69FD59B22F9EE05BADA07D477A1DF2DE01F59D6EE496543 ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys
00:48:18.0078 0x14e8 b57nd60x - ok
00:48:18.0118 0x14e8 [ EE1E9C3BB8228AE423DD38DB69128E71, ED54FD9795F3A4D32F02BED6052AD9404409A05644CDBEBFF19C662D104DA95A ] BDESVC C:\Windows\System32\bdesvc.dll
00:48:18.0169 0x14e8 BDESVC - ok
00:48:18.0199 0x14e8 [ 238C246A6DF475A68A2B612D8D67222B, 6AEAE1EF654CE11CCE4258417571BFFC75CC0DD2CA0F101C751D8B1218D0050E ] Beep C:\Windows\system32\drivers\Beep.sys
00:48:18.0269 0x14e8 Beep - ok
00:48:18.0329 0x14e8 [ 438F356EC8DE23FDA2293DE0FD81F9DA, 345D6759687462EB0274F9BC761EE4DD37D1CB32FF68ACA2A40DBF0A8DD5312B ] BFE C:\Windows\System32\bfe.dll
00:48:18.0389 0x14e8 BFE - ok
00:48:18.0429 0x14e8 [ EA523DCFD5A39BEA92AE83DA2CA6E4A3, 2076A9B78404E10014C5F252F7AD15575C1E52C7D24B45C8444FDA29689C8F88 ] BITS C:\Windows\System32\qmgr.dll
00:48:18.0509 0x14e8 BITS - ok
00:48:18.0559 0x14e8 [ 2287078ED48FCFC477B05B20CF38F36F, 55BCA6174E6034A8D61CBE4126B2F1989F6052BFA624BEA9C0A0A664AEC74521 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
00:48:18.0589 0x14e8 blbdrive - ok
00:48:18.0599 0x14e8 [ 8F2DA3028D5FCBD1A060A3DE64CD6506, E234672E9CFE1A95AD2E78E306E41E010B870221E6EBBC0E2B0BE2FA5CE0CD76 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
00:48:18.0729 0x14e8 bowser - ok
00:48:18.0749 0x14e8 [ 9F9ACC7F7CCDE8A15C282D3F88B43309, A9131334BD9CF8FD60BA9D54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
00:48:18.0789 0x14e8 BrFiltLo - ok
00:48:18.0819 0x14e8 [ 56801AD62213A41F6497F96DEE83755A, 0DEB8318FB47DF6473C171C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
00:48:18.0869 0x14e8 BrFiltUp - ok
00:48:18.0919 0x14e8 [ 3DAA727B5B0A45039B0E1C9A211B8400, 903B51E75F0C503A0E255120F53BF51B047B219FEC1E15F2F1D02DDD562FC73B ] Browser C:\Windows\System32\browser.dll
00:48:18.0989 0x14e8 Browser - ok
00:48:19.0029 0x14e8 [ 845B8CE732E67F3B4133164868C666EA, 9309B094CD9B5EBC46295A5EB806BED472C3CEDE3B5F6F497EBDABA496A2A27F ] Brserid C:\Windows\System32\Drivers\Brserid.sys
00:48:19.0069 0x14e8 Brserid - ok
00:48:19.0099 0x14e8 [ 203F0B1E73ADADBBB7B7B1FABD901F6B, 782FA7B26940FE479C49C9BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
00:48:19.0139 0x14e8 BrSerWdm - ok
00:48:19.0169 0x14e8 [ BD456606156BA17E60A04E18016AE54B, DFBDC9DA6A3EA40BACFF204BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
00:48:19.0189 0x14e8 BrUsbMdm - ok
00:48:19.0199 0x14e8 [ AF72ED54503F717A43268B3CC5FAEC2E, 4A638669B0C30B1BDED242A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
00:48:19.0229 0x14e8 BrUsbSer - ok
00:48:19.0259 0x14e8 [ ED3DF7C56CE0084EB2034432FC56565A, B5B75E002E7BC0209582C635CCCA26DB569BDB23C33A126634E00C6434BF941B ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
00:48:19.0299 0x14e8 BTHMODEM - ok
00:48:19.0359 0x14e8 [ 1DF19C96EEF6C29D1C3E1A8678E07190, 1F4BB161FF3A1C5B1465BB52F3520FEDB7ACB1FAA132466F07D16DB8E394AEA5 ] bthserv C:\Windows\system32\bthserv.dll
00:48:19.0399 0x14e8 bthserv - ok
00:48:19.0419 0x14e8 [ 77EA11B065E0A8AB902D78145CA51E10, 160EB3BBE9E5F3CC4A02584E6F2576A812C7565B940D74838B983F1EE51FA73A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
00:48:19.0459 0x14e8 cdfs - ok
00:48:19.0499 0x14e8 [ BEF6CE8C3BFA3C849E9818712BF83D3E, 3087390DBD053EC8250C58C40450963EC1E248CB76F506C35F41669835185BED ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
00:48:19.0549 0x14e8 cdrom - ok
00:48:19.0589 0x14e8 [ 259EC3D223CB447141499BC305F0E384, D15B7B3FCA1F52A4195EE41A9A5F0BD7485D3BA6F4063545B6836749FBD994AD ] CertPropSvc C:\Windows\System32\certprop.dll
00:48:19.0659 0x14e8 CertPropSvc - ok
00:48:19.0689 0x14e8 [ 3FE3FE94A34DF6FB06E6418D0F6A0060, 6B3A2A26609A75B690D4C0B3059E40822F3B3DB08943F58EC496BABDA7D0A735 ] circlass C:\Windows\system32\drivers\circlass.sys
00:48:19.0729 0x14e8 circlass - ok
00:48:19.0759 0x14e8 [ 33A60554882FDF59CDA3E1806370BBA1, 3DE5451E1CB84AAEBD03F54BEFC670C401447B4881A8B022748B6ECF0F500F01 ] CLFS C:\Windows\system32\CLFS.sys
00:48:19.0789 0x14e8 CLFS - ok
00:48:19.0849 0x14e8 [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
00:48:19.0869 0x14e8 clr_optimization_v2.0.50727_32 - ok
00:48:19.0909 0x14e8 [ F5AB4D2E36625F355E81539239765107, 48E6AD65EEFD6C54F938F5753EF58377CDA77ADBB41CD8635F0040D61EFB92A4 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
00:48:19.0939 0x14e8 clr_optimization_v4.0.30319_32 - ok
00:48:19.0959 0x14e8 [ DEA805815E587DAD1DD2C502220B5616, 2D6A7668C95352B818F5EC59FF462894935833D34190257DA9CAC7E67FD3631C ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
00:48:19.0999 0x14e8 CmBatt - ok
00:48:20.0019 0x14e8 [ C537B1DB64D495B9B4717B4D6D9EDBF2, 400EEFE662DE117C9CC956E4CBD5E98F28F962E7447CD93E8A78FDD8CA39EB4B ] cmdide C:\Windows\system32\drivers\cmdide.sys
00:48:20.0039 0x14e8 cmdide - ok
00:48:20.0079 0x14e8 [ 8ADF8A3E63601BD185DE6BB459AF47F5, CCB06AFA9668CE934D899AA3FF505FF2EC0F5B640B388BD3172B9DC27940EAB6 ] CNG C:\Windows\system32\Drivers\cng.sys
00:48:20.0119 0x14e8 CNG - ok
00:48:20.0149 0x14e8 [ A6023D3823C37043986713F118A89BEE, FAC239A7FA6251C7EDFFA34B4BAE3910B8BC0BD4A3574B6DB6931A8D691E207B ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
00:48:20.0159 0x14e8 Compbatt - ok
00:48:20.0189 0x14e8 [ CBE8C58A8579CFE5FCCF809E6F114E89, AC083A1C649EBA18C59FCC1772D0784B10E2B8C63094E3C14388E147DBC3F6DF ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
00:48:20.0229 0x14e8 CompositeBus - ok
00:48:20.0249 0x14e8 COMSysApp - ok
00:48:20.0279 0x14e8 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1, 6FC323217D82EF661BA0E3F949B61B05BB5235D1A69C81D24876C2153FAECEF6 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
00:48:20.0299 0x14e8 crcdisk - ok
00:48:20.0349 0x14e8 [ B97E16D36DB7B7DD22C97857506FA58A, 30D14F68904379B8B57B1EEB37B5986A831D3F767918ACD9E29D479F38B9F289 ] CryptSvc C:\Windows\system32\cryptsvc.dll
00:48:20.0369 0x14e8 CryptSvc - ok
00:48:20.0419 0x14e8 [ 5FF6C9CBF6ED55815E1D78AEE0E2147A, C80F16B0266430DAF4B24BD3D47AEFBD53CAB84111261455629B0296B7EFE077 ] CSC C:\Windows\system32\drivers\csc.sys
00:48:20.0499 0x14e8 CSC - ok
00:48:20.0539 0x14e8 [ 07D0AEFBC8CF6792D58732D4816BF9CA, 6EFB2C9B04CBECB3E33C686A86B49749731713443C124888B18DAB000CED56F9 ] CscService C:\Windows\System32\cscsvc.dll
00:48:20.0599 0x14e8 CscService - ok
00:48:20.0689 0x14e8 [ 33578385EBDFD7F34A537214AAE72199, E0C0E335F40EF2DE397283A13F861785BA65BAE78FCCC56A83A4F89329CF4624 ] DcomLaunch C:\Windows\system32\rpcss.dll
00:48:20.0809 0x14e8 DcomLaunch - ok
00:48:20.0839 0x14e8 [ 8D6E10A2D9A5EED59562D9B82CF804E1, 888F9650F4E872BA8F4E0C27E38A6672A561042B17EBA40E306A22357965B0AD ] defragsvc C:\Windows\System32\defragsvc.dll
00:48:20.0879 0x14e8 defragsvc - ok
00:48:20.0909 0x14e8 [ A68D56AA77520C21EEBD847BCEAF22D7, 7FCBFB429BDD8EB984416C2192F137BEF403B78BACFBB087976452645B99EDCD ] DfsC C:\Windows\system32\Drivers\dfsc.sys
00:48:20.0959 0x14e8 DfsC - ok
00:48:21.0009 0x14e8 [ D15A9EC21684156287CC08301F2775C2, AAB26C7A2382E6BF2E1B271281204D564ACDAAE9BC0220B28C30D8C3C222D977 ] Dhcp C:\Windows\system32\dhcpcore.dll
00:48:21.0069 0x14e8 Dhcp - ok
00:48:21.0099 0x14e8 [ 8A9B39FBDF6D6B2AD2074174F9760935, B4252AB086646984CCF11879BC42CDFE7F081735B58EE23DE825DF4DF87D4E47 ] discache C:\Windows\system32\drivers\discache.sys
00:48:21.0169 0x14e8 discache - ok
00:48:21.0199 0x14e8 [ 565003F326F99802E68CA78F2A68E9FF, ABC42B24DBA4FFC411120E09278EF26AF56CCAB463B69B4BD6C530B4A07063D2 ] Disk C:\Windows\system32\drivers\disk.sys
00:48:21.0219 0x14e8 Disk - ok
00:48:21.0269 0x14e8 [ 2A958EF85DB1B61FFCA65044FA4BCE9E, C83511685EE1CE85A5ADF9B5BE96C375A521601F66024BDC3EE044C0B6E85D69 ] dmvsc C:\Windows\system32\drivers\dmvsc.sys
00:48:21.0349 0x14e8 dmvsc - ok
00:48:21.0379 0x14e8 [ 25E1340A2A65096C084C52E6BF035405, D72EE78F74DE9EBBCBE583C653CFAEB33545B081EFA587E4D43105A3BBD8A944 ] Dnscache C:\Windows\System32\dnsrslvr.dll
00:48:21.0429 0x14e8 Dnscache - ok
00:48:21.0469 0x14e8 [ 19C122DDDD142E2167EB1C503996B812, 239191D62025034A681ED3CC0B305837AE72CAC11382DA830FC5B3AD075D5D07 ] dot3svc C:\Windows\System32\dot3svc.dll
00:48:21.0539 0x14e8 dot3svc - ok
00:48:21.0599 0x14e8 [ 8EC04CA86F1D68DA9E11952EB85973D6, 2E3FBC2D683D1274E8BC45EEEA87D43B77EDDCAAF0D453296D9FDA6B9D717071 ] DPS C:\Windows\system32\dps.dll
00:48:21.0679 0x14e8 DPS - ok
00:48:21.0699 0x14e8 [ B918E7C5F9BF77202F89E1A9539F2EB4, C589A37DE50BBEF22E2DAA9682EA43147F614AA1AF7DAAA942BA5FC192313A0B ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
00:48:21.0759 0x14e8 drmkaud - ok
00:48:21.0809 0x14e8 [ 3583A5A8CC2E682BFFBD4630D0FEC08B, FD0F184B358FCECAA763444B414074BEF4E871EB7527D88385519FC158435C72 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
00:48:21.0859 0x14e8 DXGKrnl - ok
00:48:21.0899 0x14e8 [ 8600142FA91C1B96367D3300AD0F3F3A, 5713625E27DF11FAAFDA7AC79899A6AD813166E167088FA990EC5DE87DBE83DF ] EapHost C:\Windows\System32\eapsvc.dll
00:48:21.0959 0x14e8 EapHost - ok
00:48:22.0119 0x14e8 [ 024E1B5CAC09731E4D868E64DBFB4AB0, AB0826A74BBEE5B7A1B035861B665C79BC98305CFC7D82BEF420558FBD3EE994 ] ebdrv C:\Windows\system32\drivers\evbdx.sys
00:48:22.0279 0x14e8 ebdrv - ok
00:48:22.0319 0x14e8 [ 3228BE5229F9EEFB18654A56B016F642, F998A193BBA4B518091C402745AB43A6A9B24C043697FE8685839BE9CCA2EDF9 ] EFS C:\Windows\System32\lsass.exe
00:48:22.0379 0x14e8 EFS - ok
00:48:22.0449 0x14e8 [ A8C362018EFC87BEB013EE28F29C0863, 07971C681FBD391C0BA0172618AF8AD77520182207F1C57F134B34D6A113857F ] ehRecvr C:\Windows\ehome\ehRecvr.exe
00:48:22.0509 0x14e8 ehRecvr - ok
00:48:22.0539 0x14e8 [ D389BFF34F80CAEDE417BF9D1507996A, 12859B9925D7A4631DE61A820922F43F56ED23C2AF014CBF36322685E5CF641E ] ehSched C:\Windows\ehome\ehsched.exe
00:48:22.0579 0x14e8 ehSched - ok
00:48:22.0639 0x14e8 [ 0ED67910C8C326796FAA00B2BF6D9D3C, 97FAA7627A162B0AEC15545E0165D13355D535B4157604BB87F8EEB72ECD24A8 ] elxstor C:\Windows\system32\drivers\elxstor.sys
00:48:22.0669 0x14e8 elxstor - ok
00:48:22.0689 0x14e8 [ 8FC3208352DD3912C94367A206AB3F11, 69B65C12BDADD4B730508674B1B77C5496612B4ACCC447DB9AFE49ADEA8CBF02 ] ErrDev C:\Windows\system32\drivers\errdev.sys
00:48:22.0749 0x14e8 ErrDev - ok
00:48:22.0799 0x14e8 [ F6916EFC29D9953D5D0DF06882AE8E16, ED41893960018D5EC2F7829B1DE4B6967D9FD074D60B11B9EB854E3E0948EC24 ] EventSystem C:\Windows\system32\es.dll
00:48:22.0859 0x14e8 EventSystem - ok
00:48:22.0889 0x14e8 [ 2DC9108D74081149CC8B651D3A26207F, 75CB47923A867DDAC512701CE71DFCFC340FC3A2E27F4255D0836A1FBC463176 ] exfat C:\Windows\system32\drivers\exfat.sys
00:48:22.0939 0x14e8 exfat - ok
00:48:22.0969 0x14e8 [ 7E0AB74553476622FB6AE36F73D97D35, 41463A255FDA1D550B3385EC7C73ABC343B1BBBE9CEE4DF9F2A8B3E7338C4947 ] fastfat C:\Windows\system32\drivers\fastfat.sys
00:48:23.0009 0x14e8 fastfat - ok
00:48:23.0059 0x14e8 [ 967EA5B213E9984CBE270205DF37755B, 43153E23210B03FAE16897D62D55B8742F834EDC695F8401EAB5DE307F62602D ] Fax C:\Windows\system32\fxssvc.exe
00:48:23.0149 0x14e8 Fax - ok
00:48:23.0199 0x14e8 [ E817A017F82DF2A1F8CFDBDA29388B29, 4CC9320A21E6FEA2D16C48D6BEA14391B695BD541A3C5FDDAEEE086A414FC837 ] fdc C:\Windows\system32\drivers\fdc.sys
00:48:23.0229 0x14e8 fdc - ok
00:48:23.0269 0x14e8 [ F3222C893BD2F5821A0179E5C71E88FB, A85B947249DBB986358CCD4B158DD58A9301F074F3C6CCCDEF2D01F432E59D1B ] fdPHost C:\Windows\system32\fdPHost.dll
00:48:23.0319 0x14e8 fdPHost - ok
00:48:23.0339 0x14e8 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B, 0E76C29D2A974A3F2FBFCB63D066D4136B78E02F6B1F579B1865CA7A76193987 ] FDResPub C:\Windows\system32\fdrespub.dll
00:48:23.0399 0x14e8 FDResPub - ok
00:48:23.0419 0x14e8 [ 6CF00369C97F3CF563BE99BE983D13D8, F65F35324A2FB9DFB533B1C4D089D990CC242218FE83414329D07B786D8EFF33 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
00:48:23.0439 0x14e8 FileInfo - ok
00:48:23.0459 0x14e8 [ 42C51DC94C91DA21CB9196EB64C45DB9, 388C68D12ECC8FFE3116FEAAF4DB7B80CF4A3F97E935788DD21C6ADE2369F635 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
00:48:23.0499 0x14e8 Filetrace - ok
00:48:23.0519 0x14e8 [ 87907AA70CB3C56600F1C2FB8841579B, CA1CD82A1CD453617CE5EA431A1836997F14E3580554E8A516D9FE1E9926D979 ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
00:48:23.0559 0x14e8 flpydisk - ok
00:48:23.0599 0x14e8 [ CF249C5C38F631A859D0051DBFF919E4, 54E0802566AF74373189527A305AD69DC6FFD0ED5834B53E773AEA8F8AE7EDF8 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
00:48:23.0629 0x14e8 FltMgr - ok
00:48:23.0679 0x14e8 [ E12C4928B32ACE04610259647F072635, B71B9C2DF45F33C4DAC88435129B08B0BCDBBE82E8C3AD0A95F00137CC8B619F ] FontCache C:\Windows\system32\FntCache.dll
00:48:23.0789 0x14e8 FontCache - ok
00:48:23.0849 0x14e8 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F, DBED26852B99B362152DA9CD4F31A1883EF6F9B496F3CF3772A197BA72DB61DA ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
00:48:23.0869 0x14e8 FontCache3.0.0.0 - ok
00:48:23.0899 0x14e8 [ 1A16B57943853E598CFF37FE2B8CBF1D, 87609F46F3B8123552141FD70866E895220B1BBD92BC2B580CAF49201AA0197E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
00:48:23.0919 0x14e8 FsDepends - ok
00:48:23.0939 0x14e8 [ 7DAE5EBCC80E45D3253F4923DC424D05, 8A2C4D5591509B0B0A44583520617A9AE34F32BB6E68A012A7D7870ED24F703A ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
00:48:23.0959 0x14e8 Fs_Rec - ok
00:48:24.0009 0x14e8 [ E306A24D9694C724FA2491278BF50FDB, 1D246B9C28550640EACBF8CF9DC980FD75106B92832D392FEBEF0C7012353091 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
00:48:24.0039 0x14e8 fvevol - ok
00:48:24.0080 0x14e8 [ 65EE0C7A58B65E74AE05637418153938, 0E1A398ADD8411AF4CCC3344D67BE1B261320C58328BD5C5855A357476FAEBEF ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
00:48:24.0100 0x14e8 gagp30kx - ok
00:48:24.0148 0x14e8 [ B7995D6E7ECEB76E9AF5BF5A73752E50, 58243410FB5ED2AC5DBE546BFB29CA36446586ED8003D658B175D7A1F855E16A ] gpsvc C:\Windows\System32\gpsvc.dll
00:48:24.0211 0x14e8 gpsvc - ok
00:48:24.0271 0x14e8 [ CEC45180029F1012054A41CEEEA9CEAB, FCE330FB9E4A9BA0BD1C31D94A5A73034175DB5FF4115009B3B3FFE327E31995 ] grmnusb C:\Windows\system32\drivers\grmnusb.sys
00:48:24.0281 0x14e8 grmnusb - ok
00:48:24.0361 0x14e8 [ F172AD4E906D97ED8F071896FC6789DC, FC10B3CE3DB0D3BF84DFD28E900EB6A11EDAAE32AC50F23CB03AACC6AA496911 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
00:48:24.0381 0x14e8 gupdate - ok
00:48:24.0411 0x14e8 [ F172AD4E906D97ED8F071896FC6789DC, FC10B3CE3DB0D3BF84DFD28E900EB6A11EDAAE32AC50F23CB03AACC6AA496911 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
00:48:24.0421 0x14e8 gupdatem - ok
00:48:24.0453 0x14e8 [ C44E3C2BAB6837DB337DDEE7544736DB, 88A24FF7D2FECCEAFFD421B2039A0FB623DA47A6B220B80EF1E52DD26D9E222D ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
00:48:24.0522 0x14e8 hcw85cir - ok
00:48:24.0552 0x14e8 [ 4CD454F6F1DA9E24BE5DEE8E393EA5CD, 99E90D3F21DBF8B2FB049EBC277A60071496491876B2928B44D495BD431ABD68 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
00:48:24.0632 0x14e8 HdAudAddService - ok
00:48:24.0662 0x14e8 [ 30772B7BC7EA7FE648CE22DEC2A870F1, 71871900DA082C711690132A7BC4363B2B3A665E0449FE455322835CEEE05CB8 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
00:48:24.0722 0x14e8 HDAudBus - ok
00:48:24.0752 0x14e8 [ 1D58A7F3E11A9731D0EAAAA8405ACC36, 7056FA18B86FBD52C4A6092D80476C02553EA053D6A0BEDB01A2FA5E152D5215 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
00:48:24.0782 0x14e8 HidBatt - ok
00:48:24.0822 0x14e8 [ 72B8842C548A9584329690867FCA8B0E, 003351B4AA893738ED0440601A51C9CCE72972F94188C9DB00097D511BCAAC3C ] HidBth C:\Windows\system32\drivers\hidbth.sys
00:48:24.0892 0x14e8 HidBth - ok
00:48:24.0932 0x14e8 [ CF50B4CF4A4F229B9F3C08351F99CA5E, B97843620AF80FF0EC8F2C438255C0A42A756C6314FAF3DEF415DE16E14C108F ] HidIr C:\Windows\system32\drivers\hidir.sys
00:48:24.0972 0x14e8 HidIr - ok
00:48:25.0012 0x14e8 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B, 2AF3312F1C8C8923C0A29AA5DAE57CE269417E53DEA2F0CCCC8DB57029698FE1 ] hidserv C:\Windows\system32\hidserv.dll
00:48:25.0072 0x14e8 hidserv - ok
00:48:25.0112 0x14e8 [ 10C19F8290891AF023EAEC0832E1EB4D, E208553029488A6EE2F5216CC9FE5F93E9931A94C0D0625253BB159E30642853 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
00:48:25.0182 0x14e8 HidUsb - ok
00:48:25.0212 0x14e8 [ 196B4E3F4CCCC24AF836CE58FACBB699, 7A2E1F603A073421FA0987EFB96647F1F0F2D4E0C82AA62EBC041585DA811DAF ] hkmsvc C:\Windows\system32\kmsvc.dll
00:48:25.0252 0x14e8 hkmsvc - ok
00:48:25.0282 0x14e8 [ 6658F4404DE03D75FE3BA09F7ABA6A30, E51D9C1580A283EB862F09B73AAE1B647DD683A53F3DD99834222F12DD15E40F ] HomeGroupListener C:\Windows\system32\ListSvc.dll
00:48:25.0352 0x14e8 HomeGroupListener - ok
00:48:25.0382 0x14e8 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8, 02121800D9062692C102475876AE8143EBE46D855E8328B8CDCFE6A2F0D19696 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
00:48:25.0412 0x14e8 HomeGroupProvider - ok
00:48:25.0432 0x14e8 [ 295FDC419039090EB8B49FFDBB374549, 670E8015FD374640C6570F56F7FE8DE4D8F92E7A8072F5D1B2B95D0BD699CEF7 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
00:48:25.0452 0x14e8 HpSAMD - ok
00:48:25.0512 0x14e8 [ 5E714D8DE046CA462986E0DB79B027F8, ED9CB585C18FD716C37455AD5EE594552B21AAF5F5ECA68044C74AACDA1F4A9C ] HTTP C:\Windows\system32\drivers\HTTP.sys
00:48:25.0572 0x14e8 HTTP - ok
00:48:25.0592 0x14e8 [ 0C4E035C7F105F1299258C90886C64C5, CFB4FBE7B28058E6D3E6E508CF3C1645F6AAE0AFEB4C5364835B9C42311DF0D4 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
00:48:25.0612 0x14e8 hwpolicy - ok
00:48:25.0642 0x14e8 [ F151F0BDC47F4A28B1B20A0818EA36D6, 84B24B5796D9F70A8C37773F5484A4606CC7908370CCD942627ACBEDC4952D79 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
00:48:25.0692 0x14e8 i8042prt - ok
00:48:25.0752 0x14e8 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E, 72870092A80C6DAE0105025B0ED8B607E98BA81E59298364A7FE4C9C56C68FF0 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
00:48:25.0782 0x14e8 iaStorV - ok
00:48:25.0872 0x14e8 [ 3E9213A2A050BF429E91898C90F8B4E3, D80ABE5691087661B19F01927B631CB8C5291120B814B6F863F046E0D643E9E4 ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
00:48:25.0922 0x14e8 idsvc - ok
00:48:25.0922 0x14e8 IEEtwCollectorService - ok
00:48:26.0312 0x14e8 [ DCE0B53570703CCE580D066F89EF58CD, C5C2C4F51F2DB2BB6E7F1218472AEAAD996514AB99EA84946A473CB7A64D9E15 ] igfx C:\Windows\system32\DRIVERS\igdkmd32.sys
00:48:26.0802 0x14e8 igfx - ok
00:48:26.0862 0x14e8 [ 4173FF5708F3236CF25195FECD742915, 0A9C0701DF6EAC6602BE342FC13C7950EF04BB5BDF7D96C2C5DABBD2A29AA55D ] iirsp C:\Windows\system32\drivers\iirsp.sys
00:48:26.0882 0x14e8 iirsp - ok
00:48:26.0952 0x14e8 [ C60524785602ABFBBE91B231536D02D6, 40B98872166B555E23D2DB820DCE7194CA544AA1DC7A4C3EEDA0639430BF3264 ] IKEEXT C:\Windows\System32\ikeext.dll
00:48:27.0012 0x14e8 IKEEXT - ok
00:48:27.0042 0x14e8 [ A0F12F2C9BA6C72F3987CE780E77C130, 5F53DF8BE1621AA7DFB655CFD9C95E0AFA1AD3CE2E290E19D7B7FB3C6E380034 ] intelide C:\Windows\system32\drivers\intelide.sys
00:48:27.0062 0x14e8 intelide - ok
00:48:27.0082 0x14e8 [ 3B514D27BFC4ACCB4037BC6685F766E0, F12D7AC62F8550E6F33B28AD751D8413AB7FFEF963242D99FFA76CE8A48B027A ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
00:48:27.0122 0x14e8 intelppm - ok
00:48:27.0142 0x14e8 [ ACB364B9075A45C0736E5C47BE5CAE19, 202F77C659103D2D0E787B8CB0A23BE32EA5AA2E6B3B0A0F0A8DFA906AB3C0C0 ] IPBusEnum C:\Windows\system32\ipbusenum.dll
00:48:27.0202 0x14e8 IPBusEnum - ok
00:48:27.0222 0x14e8 [ 709D1761D3B19A932FF0238EA6D50200, 0A9D2C3A6E91CA45540555B40CB4E2DF3EBE98C1D164C4EECEE20C86782F5823 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
00:48:27.0282 0x14e8 IpFilterDriver - ok
00:48:27.0332 0x14e8 [ 7D723B622E50A39809A72B5D39B353C9, C18D762E75D251E85E06C7F0147C05AC501757A68BC6480E7E47DF45BF233F6D ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
00:48:27.0402 0x14e8 iphlpsvc - ok
00:48:27.0432 0x14e8 [ EB4072E6A7A48195DC0169B810B9F33A, 65CCDDD7EB3A6073BD86CE5C50A895C51DD561866EB218F74E91DA42960962B8 ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
00:48:27.0502 0x14e8 IPMIDRV - ok
00:48:27.0522 0x14e8 [ 421F9E52D9CCE656313172542EAB645E, 2AA941C9F674854595F66C3E1EAA0389E4CB3501B2362A58112EB8D40DDE1C79 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
00:48:27.0562 0x14e8 IPNAT - ok
00:48:27.0602 0x14e8 [ 42996CFF20A3084A56017B7902307E9F, 688176DAB91BE569280E4822E4C5BDE755794D293591C53F8047AD59C441751D ] IRENUM C:\Windows\system32\drivers\irenum.sys
00:48:27.0652 0x14e8 IRENUM - ok
00:48:27.0672 0x14e8 [ 1F32BB6B38F62F7DF1A7AB7292638A35, 86522358680FBB1CEBC56B4D139290689BB0F71A3EC78CE883E4D75D0B37586F ] isapnp C:\Windows\system32\drivers\isapnp.sys
00:48:27.0692 0x14e8 isapnp - ok
00:48:27.0732 0x14e8 [ EB34CE31FABD4DC4343FD2AD16D2CAF9, D21C91227A15DA89ECF522345D0AB80B3B7FC24A230596DABDB8BD3B7554CE8C ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
00:48:27.0752 0x14e8 iScsiPrt - ok
00:48:27.0802 0x14e8 [ ADEF52CA1AEAE82B50DF86B56413107E, A3AE1E96B04AC81665ABBD3CB267DFB3F78376DAE18FB0DBD447908DDAAA22D2 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
00:48:27.0822 0x14e8 kbdclass - ok
00:48:27.0862 0x14e8 [ B14B8FCC1921AF53A10F06F93AB618B1, 1A100452F4AA26840826F9DF728BFBD85AF75427AD3CB7C4FCCFC432CBA5651C ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
00:48:27.0902 0x14e8 kbdhid - ok
00:48:27.0912 0x14e8 [ 3228BE5229F9EEFB18654A56B016F642, F998A193BBA4B518091C402745AB43A6A9B24C043697FE8685839BE9CCA2EDF9 ] KeyIso C:\Windows\system32\lsass.exe
00:48:27.0942 0x14e8 KeyIso - ok
00:48:27.0982 0x14e8 [ D5F488B1A0B2A644C7D56D7089544A45, EE2E61FE5A7B1C4209F0180982E69D7855AD3550DF919C6680EB5877D61AA7BD ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
00:48:28.0002 0x14e8 KSecDD - ok
00:48:28.0022 0x14e8 [ DB10BBCC3178FAD541482CE25B38CF8F, FF4BD8C696A90A6CBFC3A5A562ADC6B7ED5EAEEBF0DC2A47F4DFFE51FF5A7C55 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
00:48:28.0042 0x14e8 KSecPkg - ok
00:48:28.0092 0x14e8 [ 89A7B9CC98D0D80C6F31B91C0A310FCD, 4583CAEEE0D50C0C7CE955E533FDA063CDC37B69033D41EF22EF1BA242E4C747 ] KtmRm C:\Windows\system32\msdtckrm.dll
00:48:28.0142 0x14e8 KtmRm - ok
00:48:28.0232 0x14e8 [ F12596B0BE027DFA0906B11135F7CE0C, FAD19B5D551A425A092D910C357BDAB3118AAA543980C92E1AE13900581E8110 ] LanmanServer C:\Windows\system32\srvsvc.dll
00:48:28.0282 0x14e8 LanmanServer - ok
00:48:28.0472 0x14e8 [ D7A99DDCC6D9BF611B3F299996C122C3, 4BD43DA421C3FB75432081840B240A4D28F18916C01C61B94E12E2CBE1B8FF57 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
00:48:28.0562 0x14e8 LanmanWorkstation - ok
00:48:28.0612 0x14e8 [ F7611EC07349979DA9B0AE1F18CCC7A6, 879AA7A391966F00761CA039C25EBC62F6712DD5461694911EEC673E12DE103E ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
00:48:28.0662 0x14e8 lltdio - ok
00:48:28.0692 0x14e8 [ 5700673E13A2117FA3B9020C852C01E2, 6684A2905EE8C438F2A64BE47E51A54D287B08DEFB8E0AE7FC2809D845EE3C5F ] lltdsvc C:\Windows\System32\lltdsvc.dll
00:48:28.0753 0x14e8 lltdsvc - ok
00:48:28.0783 0x14e8 [ 55CA01BA19D0006C8F2639B6C045E08B, 4DBBDC820C514DB18CC13F8EE178F8C4E39C295C6E3C255416C235553CE7BDC1 ] lmhosts C:\Windows\System32\lmhsvc.dll
00:48:28.0813 0x14e8 lmhosts - ok
00:48:28.0853 0x14e8 [ EB119A53CCF2ACC000AC71B065B78FEF, 1FD60735C4945AE565C223F0B47EAF9602D8777E3D15600914C1A9D761215AF9 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
00:48:28.0873 0x14e8 LSI_FC - ok
00:48:28.0913 0x14e8 [ 8ADE1C877256A22E49B75D1CC9161F9C, 3D64F233DC866537E50549A7C1A2B40A954055B22F0BDA39825B04C38C607CB7 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
00:48:28.0933 0x14e8 LSI_SAS - ok
00:48:28.0983 0x14e8 [ DC9DC3D3DAA0E276FD2EC262E38B11E9, A264990857CBC74036799E17A087130626C0A09BE19879019BAF2D761C62AECC ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
00:48:29.0003 0x14e8 LSI_SAS2 - ok
00:48:29.0013 0x14e8 [ 0A036C7D7CAB643A7F07135AC47E0524, 2F662D07FCB74B8D493156DB555EAA90A47E93CF14C7B30039D2FE47EB8682B8 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
00:48:29.0033 0x14e8 LSI_SCSI - ok
00:48:29.0063 0x14e8 [ 6703E366CC18D3B6E534F5CF7DF39CEE, 7396B9AF938284D99EC51206A7B2FA4A0DC10A493DCE6707818B03A7473782C4 ] luafv C:\Windows\system32\drivers\luafv.sys
00:48:29.0113 0x14e8 luafv - ok
00:48:29.0173 0x14e8 [ ED643E777BA3F7151EF3F0FB6BE4F7F0, 94B96367ECF2140299F36D93C00C9FE666953BEA6A1253EEEAAC439A682D38CA ] LVRS C:\Windows\system32\DRIVERS\lvrs.sys
00:48:29.0203 0x14e8 LVRS - ok
00:48:29.0424 0x14e8 [ 5BC80451109A8DD7F2DDD35BCE2929A3, F97BAD2D43D1E199841BAE5707424B49B4451CD486F249646E898FC7CC7AB4C8 ] LVUVC C:\Windows\system32\DRIVERS\lvuvc.sys
00:48:29.0634 0x14e8 LVUVC - ok
00:48:29.0674 0x14e8 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1, D2A84EBF0C0B7A14AD432FD2EF43CC12300027AEA3FA4075659FB088AB62B588 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
00:48:29.0704 0x14e8 Mcx2Svc - ok
00:48:29.0734 0x14e8 [ 0FFF5B045293002AB38EB1FD1FC2FB74, 49071B565FD5B2DE43EC00D8518C3BE70843F38919E82F13104B8C1FAFB20374 ] megasas C:\Windows\system32\drivers\megasas.sys
00:48:29.0744 0x14e8 megasas - ok
00:48:29.0774 0x14e8 [ DCBAB2920C75F390CAF1D29F675D03D6, 85C3A7A010BEA5E3C6179161B295F2CB900A6A214833A5F87A4327392880E2BB ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
00:48:29.0804 0x14e8 MegaSR - ok
00:48:29.0884 0x14e8 [ 123271BD5237AB991DC5C21FDF8835EB, 004F8F9228EE291A0E36CE33078D572D61733516F9AA5CFC832AF204C6869E89 ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
00:48:29.0904 0x14e8 Microsoft Office Groove Audit Service - ok
00:48:29.0934 0x14e8 [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] MMCSS C:\Windows\system32\mmcss.dll
00:48:29.0994 0x14e8 MMCSS - ok
00:48:30.0014 0x14e8 [ C6A81F138F297CC7E653EFC059CCA033, 188B5EF3681CEF68A5DBBFD20D17F5BBCC619DEE8179A8FF8CC5808FC6148F05 ] Modem C:\Windows\system32\drivers\modem.sys
00:48:30.0064 0x14e8 Modem - ok
00:48:30.0104 0x14e8 [ ECD728B0B214A1213C3DB9C4B84D9C3C, 836861F3954C32452BA246ED45F4D747F56FD594E565D79783ED4A2CE6CD20B5 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
00:48:30.0164 0x14e8 monitor - ok
00:48:30.0184 0x14e8 [ FB18CC1D4C2E716B6B903B0AC0CC0609, F10CCA63493782B16DE6B96B94A27078DBE68AECEF34FDF840CFF86D2C6E3C5E ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
00:48:30.0204 0x14e8 mouclass - ok
00:48:30.0224 0x14e8 [ 2C388D2CD01C9042596CF3C8F3C7B24D, B2FB72272BB01AEDA4047B57C943B7E9BD8A6497854F8CC34672AAA592D0A703 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
00:48:30.0264 0x14e8 mouhid - ok
00:48:30.0294 0x14e8 [ B4867EA6A6BC23EBE4DB0839ED3E3DC2, 2CE7BC0C04DD28271D95C68C3918329AA7C75449514B30E1B0B9EEB47461F5D9 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
00:48:30.0314 0x14e8 mountmgr - ok
00:48:30.0384 0x14e8 [ 269BDB3CB77EB77BABE2862BEAB1F208, EC693365C73D59244CB77E181042128A9901BA5C1109CD4F1B9A2008DF1F9582 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
00:48:30.0414 0x14e8 MozillaMaintenance - ok
00:48:30.0474 0x14e8 [ 7D2484C4995A3DB47345EFED2A0B579E, 55B3CDE0BEF743874793679692A6C744B2771C85A0FEE1904F28A51EEE9C0CEB ] MpFilter C:\Windows\system32\DRIVERS\MpFilter.sys
00:48:30.0504 0x14e8 MpFilter - ok
00:48:30.0534 0x14e8 [ 9CD8ABEFFC2B702E41A511270C302F06, BDAAECB9C1AA513264AC9726F81663EEC5BCD0BE467D9465EB9A7B667189B28E ] mpio C:\Windows\system32\drivers\mpio.sys
00:48:30.0554 0x14e8 mpio - ok
00:48:30.0724 0x14e8 [ 65C34426C83EFA32D48380A97717997B, CD7EB6BFBB0BE382BA21055460D9A72323F09AF3194A22D8EDB28D5DB3BAE8E7 ] MpKsla5138858 c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{C210B24F-D116-4A6B-B10F-4DB4E3754697}\MpKsla5138858.sys
00:48:30.0744 0x14e8 MpKsla5138858 - ok
00:48:30.0774 0x14e8 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0, 1D6DCFA0E56C3E55B6AED819176E751502F863BA0FCF4F0B3253A81D208141A2 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
00:48:30.0834 0x14e8 mpsdrv - ok
00:48:30.0874 0x14e8 [ 9835584E999D25004E1EE8E5F3E3B881, 71798B0CBE9AE69F1F29B845319019C69EC7F415CBABB3B87DDE92C360675021 ] MpsSvc C:\Windows\system32\mpssvc.dll
00:48:30.0934 0x14e8 MpsSvc - ok
00:48:30.0974 0x14e8 [ 1C3EBF74425637371DD208B67381A949, 0E4E7C1DDCCC4435FA26889B0F9C13EDE863FC506C71E26A90479E180DE0ADC4 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
00:48:31.0024 0x14e8 MRxDAV - ok
00:48:31.0034 0x14e8 [ 62CCCF763C73FAFBE327DA8B9A817121, 670D55454C423F7F2C1C6C792AD33E6D6C8BBC38860850BB95C5348CD70610C2 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
00:48:31.0074 0x14e8 mrxsmb - ok
00:48:31.0104 0x14e8 [ DE07ED110AD71EA752F8B0D0305CDA50, 95F86ADA0F51EFCC4D1D73E735709EAD5E24329FE754D2B072D3C1EF3E62687A ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
00:48:31.0144 0x14e8 mrxsmb10 - ok
00:48:31.0164 0x14e8 [ C2F6536496040F13E8C7CEE02659012B, 69A8BD08A5C39D76415939343EB22F9465C2BCEE1A998845A618A7C2A90C1441 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
00:48:31.0214 0x14e8 mrxsmb20 - ok
00:48:31.0244 0x14e8 [ 012C5F4E9349E711E11E0F19A8589F0A, 208B92DFCF7AD43202660FBBC9FF5E03AEDBEE38178FF3628EB74CB6CD37C584 ] msahci C:\Windows\system32\drivers\msahci.sys
00:48:31.0254 0x14e8 msahci - ok
00:48:31.0274 0x14e8 [ CDE433700C3FEF17A5824FB0CD77795B, 9252A36E351621FBD04E2E188EA9F2FFEC3C6FCC60480132CF575B56DE5DA030 ] msdsm C:\Windows\system32\drivers\msdsm.sys
00:48:31.0294 0x14e8 msdsm - ok
00:48:31.0334 0x14e8 [ E1BCE74A3BD9902B72599C0192A07E27, 5162EB623FE64E9DFEAC6CA2410EFA1314E62EC13207FFBFED2D61AA887603C4 ] MSDTC C:\Windows\System32\msdtc.exe
00:48:31.0354 0x14e8 MSDTC - ok
00:48:31.0394 0x14e8 [ DAEFB28E3AF5A76ABCC2C3078C07327F, 6EB558532400B489763BAE7203538DE5F196282A8CB46A1B31D59120FC5AFCEF ] Msfs C:\Windows\system32\drivers\Msfs.sys
00:48:31.0434 0x14e8 Msfs - ok
00:48:31.0454 0x14e8 [ 3E1E5767043C5AF9367F0056295E9F84, B2EDFECD3C14E4FE1BA87D9A86334043A9BD696A554EBD186DA7EAEB2EBD4F70 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
00:48:31.0504 0x14e8 mshidkmdf - ok
00:48:31.0534 0x14e8 [ 0A4E5757AE09FA9622E3158CC1AEF114, ED574E420E57374E328C7C526504ECA569C164287966F06019EC207CB17F2C54 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
00:48:31.0544 0x14e8 msisadrv - ok
00:48:31.0584 0x14e8 [ 90F7D9E6B6F27E1A707D4A297F077828, BEFC220EAA7307849600748842ACB9254A6A91158812D9B23EFAF912C498BA7F ] MSiSCSI C:\Windows\system32\iscsiexe.dll
00:48:31.0644 0x14e8 MSiSCSI - ok
00:48:31.0644 0x14e8 msiserver - ok
00:48:31.0684 0x14e8 [ 8C0860D6366AAFFB6C5BB9DF9448E631, 949C5A14E57F2D7385543C17C3485E7ADE36EA2016F6E0A1866571D2EDE90A77 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
00:48:31.0724 0x14e8 MSKSSRV - ok
00:48:31.0794 0x14e8 [ F26F7A5B18C717E57E3B6B306ABEC00B, 4C49C67A48F6B77E38A7FD28C960C92DFF371ACF0722C6EE4DF5F4B382937870 ] MsMpSvc c:\Program Files\Microsoft Security Client\MsMpEng.exe
00:48:31.0814 0x14e8 MsMpSvc - ok
00:48:31.0864 0x14e8 [ 3EA8B949F963562CEDBB549EAC0C11CE, 1B0B2F16A1790282504F3C548D47C3281EFB440D5D9711A1EF76D6371B768D2D ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
00:48:31.0914 0x14e8 MSPCLOCK - ok
00:48:31.0964 0x14e8 [ F456E973590D663B1073E9C463B40932, 48BA6D5580EE7B6A4C06E04772FD35B51779553FC0DD6C5C30DD8B5DEEB25B11 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
00:48:31.0994 0x14e8 MSPQM - ok
00:48:32.0024 0x14e8 [ 0E008FC4819D238C51D7C93E7B41E560, 141FCEBDD05874407EAEC35A9DCD3BB16F2A428F23E55487D6A5DBFCADBF10D2 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
00:48:32.0044 0x14e8 MsRPC - ok
00:48:32.0074 0x14e8 [ FC6B9FF600CC585EA38B12589BD4E246, F05DB01AE1955D2468CE6B51E51998B111CA3B0BDEED090EE6B99B625CBA564A ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
00:48:32.0084 0x14e8 mssmbios - ok
00:48:32.0104 0x14e8 [ B42C6B921F61A6E55159B8BE6CD54A36, 6BB0A7BE005B8F281E551D1B8046CE4202372BC7AE0161881C858BFAC675FE1C ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
00:48:32.0154 0x14e8 MSTEE - ok
00:48:32.0174 0x14e8 [ 33599130F44E1F34631CEA241DE8AC84, E15B31D1AFDC8DC6D2B21D4215796A99ECC69EEDBB06CEED01AECC3C99A44C8B ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
00:48:32.0194 0x14e8 MTConfig - ok
00:48:32.0214 0x14e8 [ 159FAD02F64E6381758C990F753BCC80, E55AB01DCFA95ECAB24A2A9656E28FF9D064BA08B3D82DC8AA42F5991BA09598 ] Mup C:\Windows\system32\Drivers\mup.sys
00:48:32.0234 0x14e8 Mup - ok
00:48:32.0284 0x14e8 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E, D252248532142E9E2332DA693BC51B795102CA938B568FF04981E98B19BFBC5C ] napagent C:\Windows\system32\qagentRT.dll
00:48:32.0334 0x14e8 napagent - ok
00:48:32.0384 0x14e8 [ D54EC516A13DB6489A84FC3910A6F42F, 944DE894B4534C4037DCD95B5C9684B03412AD5C364DC5CA13C4CF90BAC136DE ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
00:48:32.0424 0x14e8 NativeWifiP - ok
00:48:32.0464 0x14e8 [ F848DDA74187457A6D9F09DBC01DC37C, 7AECBFAC3D078C8569EFD284C71C29567668E0C36D6487F259EB0B939756C658 ] NDIS C:\Windows\system32\drivers\ndis.sys
00:48:32.0504 0x14e8 NDIS - ok
00:48:32.0554 0x14e8 [ 0E1787AA6C9191D3D319E8BAFE86F80C, F535022747355B2C66424BDA892D7DCB820C2EB8EE05BAE5BC6D1B1D65186278 ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
00:48:32.0584 0x14e8 NdisCap - ok
00:48:32.0604 0x14e8 [ E4A8AEC125A2E43A9E32AFEEA7C9C888, 6EA181117126FC70B3C1DD1AC73CC26D1603A2CF49E47F66623E2C9489C49B55 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
00:48:32.0674 0x14e8 NdisTapi - ok
00:48:32.0694 0x14e8 [ 520B68DD11C0749D5B9A7F736CB6DE5E, 154F68D60994F9CF071263BC96D541CE3C8FB636E90EFE89FA97E2AB36991CB0 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
00:48:32.0714 0x14e8 Ndisuio - ok
00:48:32.0744 0x14e8 [ 38FBE267E7E6983311179230FACB1017, CFD1CBCA59650795C030DB30E5795B37C11C736E14003AE1DAB081BA5C0C9B14 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
00:48:32.0804 0x14e8 NdisWan - ok
00:48:32.0834 0x14e8 [ ECD606C540D14EC502300AE5A8BA93DD, 55F43240442C42CA70905D54932DCC88999191A70359FF431E9E06761AE137E4 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
00:48:32.0854 0x14e8 NDProxy - ok
00:48:32.0895 0x14e8 [ 6C6B33F552330F7E97F873E950839BD9, C4A2A688998F2547150ECE11B89F32FA627C52F96D33C780BF1E82C65A901F50 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
00:48:32.0945 0x14e8 NetBIOS - ok
00:48:32.0975 0x14e8 [ 280122DDCF04B378EDD1AD54D71C1E54, F98B2ADE34F7E67C7C06C1D0FFB80ECBC353D044D4B4784CD952910345DC2ED0 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
00:48:33.0015 0x14e8 NetBT - ok
00:48:33.0035 0x14e8 [ 3228BE5229F9EEFB18654A56B016F642, F998A193BBA4B518091C402745AB43A6A9B24C043697FE8685839BE9CCA2EDF9 ] Netlogon C:\Windows\system32\lsass.exe
00:48:33.0065 0x14e8 Netlogon - ok
00:48:33.0095 0x14e8 [ 7CCCFCA7510684768DA22092D1FA4DB2, BB9E4F8FABBF596D888E6D303CB54A336D9DFF95B36AEA9369D2ED787DDC4B5D ] Netman C:\Windows\System32\netman.dll
00:48:33.0155 0x14e8 Netman - ok
00:48:33.0225 0x14e8 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
00:48:33.0245 0x14e8 NetMsmqActivator - ok
00:48:33.0255 0x14e8 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
00:48:33.0285 0x14e8 NetPipeActivator - ok
00:48:33.0316 0x14e8 [ 8C338238C16777A802D6A9211EB2BA50, 0D08A47CD403EDA5E8CAD7409BBBBCDC29A9861D2DC41D42B68B22B1AA1EBDD6 ] netprofm C:\Windows\System32\netprofm.dll
00:48:33.0366 0x14e8 netprofm - ok
00:48:33.0396 0x14e8 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
00:48:33.0426 0x14e8 NetTcpActivator - ok
00:48:33.0436 0x14e8 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
00:48:33.0456 0x14e8 NetTcpPortSharing - ok
00:48:33.0486 0x14e8 [ 1D85C4B390B0EE09C7A46B91EFB2C097, 6A8850B151E88EE371F3CC543A946302DDF9494908D684B8B0C706A42CC54348 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
00:48:33.0506 0x14e8 nfrd960 - ok
00:48:33.0566 0x14e8 [ 94B8279FC0E27A8253944DFA47FC4A83, D799003BD163200F7DE0EC882756EF08AA70C45BF0518E3BC6DB8B8FB74BF663 ] NisDrv C:\Windows\system32\DRIVERS\NisDrvWFP.sys
00:48:33.0586 0x14e8 NisDrv - ok
00:48:33.0636 0x14e8 [ 1452F52471F2DC1515DD6C35B42FF06E, 57A2858B24D0C9C229A4C76F85DB453E867921C2B4E41835211C4EB5EBE99DE8 ] NisSrv c:\Program Files\Microsoft Security Client\NisSrv.exe
00:48:33.0666 0x14e8 NisSrv - ok
00:48:33.0696 0x14e8 [ AA8E25A6ED527C64F12AA06857B344D4, 6B5A5FC0785F18DE70C68EDE9BCB7BF2A38979E263798DFEA49C9B2E957FA8B6 ] NlaSvc C:\Windows\System32\nlasvc.dll
00:48:33.0756 0x14e8 NlaSvc - ok
00:48:33.0776 0x14e8 [ 1DB262A9F8C087E8153D89BEF3D2235F, A51EE5D5AD3CD76B74BEA9C66C462608BF3B50C53DAA4110A75DB10495A8C101 ] Npfs C:\Windows\system32\drivers\Npfs.sys
00:48:33.0806 0x14e8 Npfs - ok
00:48:33.0836 0x14e8 [ 0196AEF66DA33F308D1D742AAB634063, 5B14D9C415AE105420D523BD84C0919E45E75AB29BBFD463DC3D1A1154AB9561 ] nsi C:\Windows\system32\nsisvc.dll
00:48:33.0896 0x14e8 nsi - ok
00:48:33.0906 0x14e8 [ E9A0A4D07E53D8FEA2BB8387A3293C58, 690CAD6C4E35ECC1172A2E1FD3933DF73158B3BF42CB21244269612A53DE4D7A ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
00:48:33.0936 0x14e8 nsiproxy - ok
00:48:34.0026 0x14e8 [ 90EE3C4BD199287D2630C5232F459367, E517FCCCA5BE615C439F814823B5A06295635844E81B6B827E63A9A6308593FC ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
00:48:34.0086 0x14e8 Ntfs - ok
00:48:34.0116 0x14e8 [ F9756A98D69098DCA8945D62858A812C, 572ADBFCFDE2030B34A013AADC14DBC144EB3F34D06991E2464A3EA9605BC045 ] Null C:\Windows\system32\drivers\Null.sys
00:48:34.0176 0x14e8 Null - ok
00:48:34.0216 0x14e8 [ B3E25EE28883877076E0E1FF877D02E0, 402B6FED6FBBF645190396DC141141EF52DD059DABD01F8AC9CF01D23664070C ] nvraid C:\Windows\system32\drivers\nvraid.sys
00:48:34.0236 0x14e8 nvraid - ok
00:48:34.0266 0x14e8 [ 4380E59A170D88C4F1022EFF6719A8A4, 93EDB3F4CDBF53C9C1970DD29AB146E390695C568180847BA8903F5FBEABCFF2 ] nvstor C:\Windows\system32\drivers\nvstor.sys
00:48:34.0286 0x14e8 nvstor - ok
00:48:34.0327 0x14e8 [ 5A0983915F02BAE73267CC2A041F717D, D83461D74597BF2BE042FEFCC27FCD18BF63CB8135B0666D731D50951C3468A8 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
00:48:34.0347 0x14e8 nv_agp - ok
00:48:34.0418 0x14e8 [ 785F487A64950F3CB8E9F16253BA3B7B, 02445344BD214370A6D48B1CA04921D8EFCB13E676B5648266DD0E076C0822B6 ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
00:48:34.0458 0x14e8 odserv - ok
00:48:34.0488 0x14e8 [ 08A70A1F2CDDE9BB49B885CB817A66EB, 0BB98123B544124B144F3E95D77E01E973D060B8B2302503FF24ABBBE803EB63 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
00:48:34.0548 0x14e8 ohci1394 - ok
00:48:34.0588 0x14e8 [ 5A432A042DAE460ABE7199B758E8606C, 6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71 ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
00:48:34.0608 0x14e8 ose - ok
00:48:34.0648 0x14e8 [ 38BEA463EF49BC314C1167E5246E48A9, 51371E412515292E53876B59268140727E66A1F3F2CCC88DDDED7B2340525C51 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
00:48:34.0718 0x14e8 p2pimsvc - ok
00:48:34.0758 0x14e8 [ A664AFCAC636466AFBE7C16F9841A4BA, 362217991E4BF5B1683A7594E95FE8D813167462E68573251B78624D24E4AF34 ] p2psvc C:\Windows\system32\p2psvc.dll
00:48:34.0818 0x14e8 p2psvc - ok
00:48:34.0848 0x14e8 [ 2EA877ED5DD9713C5AC74E8EA7348D14, 14BA3722CE5F8FF07F2D97DCDD6558EB49C9B02E5E6FAD6D9F18D354733EFECE ] Parport C:\Windows\system32\drivers\parport.sys
00:48:34.0898 0x14e8 Parport - ok
00:48:34.0918 0x14e8 [ 3F34A1B4C5F6475F320C275E63AFCE9B, 31295D5121C0C3F2085E0EEBA260EEE4CA003993C026E2F81986D19158036E6B ] partmgr C:\Windows\system32\drivers\partmgr.sys
00:48:34.0938 0x14e8 partmgr - ok
00:48:34.0968 0x14e8 [ EB0A59F29C19B86479D36B35983DAADC, AC09AFE7F13BE4079D01383BAC44091997E1AAF6512C9673A42B9E3780EB08A8 ] Parvdm C:\Windows\system32\drivers\parvdm.sys
00:48:35.0008 0x14e8 Parvdm - ok
00:48:35.0058 0x14e8 [ 52954BE460EC6C54C0ACB2B3B126FFC6, 9F9878EC5ABC74C5A8EE8E1D940F0934F081895B07D844F42F80A638FE713F7B ] PcaSvc C:\Windows\System32\pcasvc.dll
00:48:35.0118 0x14e8 PcaSvc - ok
00:48:35.0148 0x14e8 [ 2992E238EB7B027FAB869916568D43C7, DAE4466D17BFDBE52843CCACFB7507E75DD3425373E8059E26E5CFC050116C55 ] pci C:\Windows\system32\drivers\pci.sys
00:48:35.0168 0x14e8 pci - ok
00:48:35.0198 0x14e8 [ AFE86F419014DB4E5593F69FFE26CE0A, CAF36E61BE7B511D3A03A65FF5A3017CEE4D2F53005B410F2D4A2AAE9FED4C00 ] pciide C:\Windows\system32\drivers\pciide.sys
00:48:35.0218 0x14e8 pciide - ok
00:48:35.0238 0x14e8 [ F396431B31693E71E8A80687EF523506, BC614FC21E029E2497F1CCE3131BBD295B827F2310762B47D5BBC7703D80554B ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
00:48:35.0268 0x14e8 pcmcia - ok
00:48:35.0288 0x14e8 [ 250F6B43D2B613172035C6747AEEB19F, A91F15B133F2619912CF750E6F3662E011CD0FA4B9477CE532CE3196D23307D9 ] pcw C:\Windows\system32\drivers\pcw.sys
00:48:35.0308 0x14e8 pcw - ok
00:48:35.0368 0x14e8 [ AEBC369F7DC72AB3F5B9BDF34FA0D43F, 2A819154AC6C23E97C583D90B4D0C112188B7AE9D8D9B3F88811BFCED124E551 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
00:48:35.0408 0x14e8 PEAUTH - ok
00:48:35.0478 0x14e8 [ AF4D64D2A57B9772CF3801950B8058A6, C9C493A3775E6E1660CE5DF75DA574D0C04245FB88CF41B96217A725359C350D ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
00:48:35.0588 0x14e8 PeerDistSvc - ok
00:48:35.0678 0x14e8 [ 414BBA67A3DED1D28437EB66AEB8A720, D6DF254E2615FA402044824DCD9004F579FC0DF74B90E44C99D5F0253CF8AD88 ] pla C:\Windows\system32\pla.dll
00:48:35.0778 0x14e8 pla - ok
00:48:35.0858 0x14e8 [ 230281722094B3DCD0AA7B97D2967002, 896899F2509072A5B0E83F40DF35F1C4880C14FB8F7C894DA6D07815D900D07F ] PlugPlay C:\Windows\system32\umpnpmgr.dll
00:48:35.0928 0x14e8 PlugPlay - ok
00:48:35.0958 0x14e8 [ 63FF8572611249931EB16BB8EED6AFC8, 9732CCBCB93A7A4BEC88812B952C20244479E9BD781240C195E57F09E619EA33 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
00:48:35.0988 0x14e8 PNRPAutoReg - ok
00:48:36.0018 0x14e8 [ 38BEA463EF49BC314C1167E5246E48A9, 51371E412515292E53876B59268140727E66A1F3F2CCC88DDDED7B2340525C51 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
00:48:36.0058 0x14e8 PNRPsvc - ok
00:48:36.0098 0x14e8 [ 53946B69BA0836BD95B03759530C81EC, 7F14A34635354CCA0F5342C8D9DF5A6AA1B94F6A508BD8834029E9BACF252920 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
00:48:36.0168 0x14e8 PolicyAgent - ok
00:48:36.0208 0x14e8 [ 7848B8F4C4E94B1BACE11A4427A86573, DFA4B89C05B998071772A65CD44E91DB8F20976E8DB815175D11DC433EEC56CA ] Power C:\Windows\system32\umpo.dll
00:48:36.0238 0x14e8 Power - ok
00:48:36.0278 0x14e8 [ 114878150AE786B29F89E861D99CF2DF, B930E23659060FCA2986C82998BD745E40B5DCD5144D78BB8038834FCD04A7E0 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
00:48:36.0318 0x14e8 PptpMiniport - ok
00:48:36.0348 0x14e8 [ 85B1E3A0C7585BC4AAE6899EC6FCF011, 1E067113C146D6842D7FB04007F363D6FB7783C6BC7C9AB6614E44075C4F86C3 ] Processor C:\Windows\system32\drivers\processr.sys
00:48:36.0368 0x14e8 Processor - ok
00:48:36.0408 0x14e8 [ EC1C7DD0512A6588ACF3AAF297E2297D, 1A3F92EFF3EA6D67DDA77C0DADDACB5AD79288EF77854C166174E8601E1788F8 ] ProfSvc C:\Windows\system32\profsvc.dll
00:48:36.0508 0x14e8 ProfSvc - ok
00:48:36.0528 0x14e8 [ 3228BE5229F9EEFB18654A56B016F642, F998A193BBA4B518091C402745AB43A6A9B24C043697FE8685839BE9CCA2EDF9 ] ProtectedStorage C:\Windows\system32\lsass.exe
00:48:36.0548 0x14e8 ProtectedStorage - ok
00:48:36.0568 0x14e8 [ 6270CCAE2A86DE6D146529FE55B3246A, 463209CBAF1B0E269DC8FC6FBDEE5BB7E5ADB5D3F024930BFD0B97E0A9678883 ] Psched C:\Windows\system32\DRIVERS\pacer.sys
00:48:36.0628 0x14e8 Psched - ok
00:48:36.0708 0x14e8 [ AB95ECF1F6659A60DDC166D8315B0751, 0ED6D3460D28978BADF31B930DBB3298A6A10EFF8883763EABA0E36A21A0E83D ] ql2300 C:\Windows\system32\drivers\ql2300.sys
00:48:36.0778 0x14e8 ql2300 - ok
00:48:36.0808 0x14e8 [ B4DD51DD25182244B86737DC51AF2270, 7E62B04F054A6330B7F9968222523BDE8F3EE47A11D17E6C0E2D5ACDC07B9E6B ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
00:48:36.0828 0x14e8 ql40xx - ok
00:48:36.0868 0x14e8 [ 31AC809E7707EB580B2BDB760390765A, A8481FD19A0F778F5591B7676F591F664ADC68B6867E663C0F9564173F4AC909 ] QWAVE C:\Windows\system32\qwave.dll
00:48:36.0928 0x14e8 QWAVE - ok
00:48:36.0958 0x14e8 [ 584078CA1B95CA72DF2A27C336F9719D, 836F115C92D343463C14A9DE39648C1EFA7C7EE4720F5C692EE0F68B84830121 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
00:48:36.0998 0x14e8 QWAVEdrv - ok
00:48:37.0018 0x14e8 [ 30A81B53C766D0133BB86D234E5556AB, 726C6B83B5ACAA84CAB1689B6DD6DDAE3199D61A57B5D7B5B5A0F62FCF838090 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
00:48:37.0058 0x14e8 RasAcd - ok
00:48:37.0097 0x14e8 [ 57EC4AEF73660166074D8F7F31C0D4FD, C66B425EC4DB5E7FD289AE631C9B019EB16717C55E80FAE964BB22203E4AACEF ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
00:48:37.0119 0x14e8 RasAgileVpn - ok
00:48:37.0149 0x14e8 [ A60F1839849C0C00739787FD5EC03F13, B210DFA5A843CF1DA73635F168E2EA5052CBED15C664F8523CDFB34CA165D0E0 ] RasAuto C:\Windows\System32\rasauto.dll
00:48:37.0189 0x14e8 RasAuto - ok
00:48:37.0229 0x14e8 [ D9F91EAFEC2815365CBE6D167E4E332A, 8350457A39D141C13807E7DB5A8D4113197C4016F7744B9993391F4AEA0C4A5C ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
00:48:37.0269 0x14e8 Rasl2tp - ok
00:48:37.0299 0x14e8 [ 6FC300AA1889B4B23D6BA41235E2AC74, A1DFC2B265F5ACEDE8246D5399046B31F6D86512FFF8DBBF0ED12C50D687D686 ] RasMan C:\Windows\System32\rasmans.dll
00:48:37.0359 0x14e8 RasMan - ok
00:48:37.0399 0x14e8 [ C4AACCECA39AF598DCDB3D9304067569, 73F9ED969135567D62AC02F8310C24DE483558D00741F90F1BF6B7F26971E8E6 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
00:48:37.0459 0x14e8 RasPppoe - ok
00:48:37.0509 0x14e8 [ 44101F495A83EA6401D886E7FD70096B, 56A0CE5C89870752B9B2AB795C1A248CA28209E049B2F20CCA0308CBE2488A0A ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
00:48:37.0559 0x14e8 RasSstp - ok
00:48:37.0599 0x14e8 [ 4584DD16F7AA61812FB2E7EE7A5AD488, 9F7A4C79DE2CD43C65818285E859C148ABF336D1A0BA43ACF73249706D01096D ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
00:48:37.0659 0x14e8 rdbss - ok
00:48:37.0689 0x14e8 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF, 2AFCBE3237D27AFBF095F91F1FCCA63E6890F34A9E4F00E5C34C92394CDA89FB ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
00:48:37.0719 0x14e8 rdpbus - ok
00:48:37.0739 0x14e8 [ 23DAE03F29D253AE74C44F99E515F9A1, 8FED93D10B2062F0526FE3508101F8FCF8F72DEB90AFB472EB7CBAE83A0EC430 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
00:48:37.0769 0x14e8 RDPCDD - ok
00:48:37.0799 0x14e8 [ 536C8C9848E95A74C75BDE1B702CA0E7, 4A4C451D835F632E3A1121B0D437DD97A442DCBFCDAFC6DF0C2DBE459776E919 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
00:48:37.0869 0x14e8 RDPDR - ok
00:48:37.0909 0x14e8 [ 5A53CA1598DD4156D44196D200C94B8A, 8112FE14FEC94C67B1C5BDE4171E37584F1D0098D2C557C9E4BDD3E0291E25E4 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
00:48:37.0969 0x14e8 RDPENCDD - ok
00:48:37.0989 0x14e8 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F, CDA80B08E67AD034081C0C920CD66147689F1844403CBC552F65005E7C011A91 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
00:48:38.0039 0x14e8 RDPREFMP - ok
00:48:38.0119 0x14e8 [ 65375DF758CA1872AB7EBBBA457FD5E6, 8AC7681F51277E799C22FF95FA0B833E9E260D37C0416319FF05B66FB3948005 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
00:48:38.0199 0x14e8 RdpVideoMiniport - ok
00:48:38.0229 0x14e8 [ E1E18E2987072861707681A0E6D16F21, 3EBC2ADC93F9A94174CECF257D15FDC4A003FC8852C08F8C08CEF9D73A6CE3FF ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
00:48:38.0299 0x14e8 RDPWD - ok
00:48:38.0349 0x14e8 [ 12DB635221AF40AD8ED316F07AC7844B, 70E98E581A67DA5F0679DFB4127E5EBA7CC4569A36FC9EFC89ACD716DA71238F ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
00:48:38.0369 0x14e8 rdyboost - ok
00:48:38.0399 0x14e8 [ 7B5E1419717FAC363A31CC302895217A, 048B96B127CC20833948DAE53C59886D5C725ECA7A744424A01339447D2DDC32 ] RemoteAccess C:\Windows\System32\mprdim.dll
00:48:38.0439 0x14e8 RemoteAccess - ok
00:48:38.0509 0x14e8 [ 4DFB81848CB00D19940C07939DE8AC71, F452452DB1D17C3292B0D48EC6875B1BFF87CFD06A8E258E565A86C0CF6FDCEC ] RemoteRegistry C:\Windows\system32\regsvc.dll
00:48:38.0539 0x14e8 RemoteRegistry - ok
00:48:38.0579 0x14e8 [ 78D072F35BC45D9E4E1B61895C152234, 80C924EE1156B4E3172E83DCB9C60817E87885FB9377647E0BF90153E415B1CA ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
00:48:38.0639 0x14e8 RpcEptMapper - ok
00:48:38.0679 0x14e8 [ 94D36C0E44677DD26981D2BFEEF2A29D, D77A93AC60536F3706E8A0154C0C2199E888B7748C84DB7437254FF175F4DF55 ] RpcLocator C:\Windows\system32\locator.exe
00:48:38.0709 0x14e8 RpcLocator - ok
00:48:38.0729 0x14e8 [ 33578385EBDFD7F34A537214AAE72199, E0C0E335F40EF2DE397283A13F861785BA65BAE78FCCC56A83A4F89329CF4624 ] RpcSs C:\Windows\system32\rpcss.dll
00:48:38.0769 0x14e8 RpcSs - ok
00:48:38.0809 0x14e8 [ 032B0D36AD92B582D869879F5AF5B928, 0F8F18A6A0A689957B886D9368015889091094EDA18BE532093F06A70A7CE184 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
00:48:38.0859 0x14e8 rspndr - ok
00:48:38.0929 0x14e8 [ 5283B9A27FF230F2FF70D92451FF409A, B8BAC70E1DE4485C79CA7B47D4DCFE0223CECEA8ED75CE4F128D47051F95FE5D ] RTL8167 C:\Windows\system32\DRIVERS\Rt86win7.sys
00:48:38.0959 0x14e8 RTL8167 - ok
00:48:38.0989 0x14e8 [ 7FA7F2E249A5DCBB7970630E15E1F482, 9633B193F3FDA67BC551C6DCA4788AB83E9F45F77763EE579D02FE5D6B80DEDF ] s3cap C:\Windows\system32\drivers\vms3cap.sys
00:48:39.0009 0x14e8 s3cap - ok
00:48:39.0029 0x14e8 [ 3228BE5229F9EEFB18654A56B016F642, F998A193BBA4B518091C402745AB43A6A9B24C043697FE8685839BE9CCA2EDF9 ] SamSs C:\Windows\system32\lsass.exe
00:48:39.0049 0x14e8 SamSs - ok
00:48:39.0079 0x14e8 [ 05D860DA1040F111503AC416CCEF2BCA, DAE2F37D09A5A42F945BC8E27E4EA2303521081783A80CEE7FEE7C5A1C2CFC5E ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
00:48:39.0099 0x14e8 sbp2port - ok
00:48:39.0170 0x14e8 [ B3E009A37A0EB27EEF66C43DD28A6858, 0E2B7C7A2F754B8C7D7675EEE2449B8213FCC5BA4F9B327909E9C8D38D904FAB ] SCardSvr C:\Windows\System32\SCardSvr.dll
00:48:39.0220 0x14e8 SCardSvr - ok
00:48:39.0250 0x14e8 [ 9D2FF370BD3840C91069B955D0172E0D, 0B70F01B8E409623BEF195AF4C9FE83EB3C5B3A6767DB93677B9E8629930C84E ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
00:48:39.0290 0x14e8 scfilter - ok
00:48:39.0420 0x14e8 [ 30D076DB27313DF6058094BADF97629A, E679185DC7F0D62DFEEB18B4DD28DF886E262A4302DBDE8E5127B3BE30E25547 ] Schedule C:\Windows\system32\schedsvc.dll
00:48:39.0471 0x14e8 Schedule - ok
00:48:39.0501 0x14e8 [ 259EC3D223CB447141499BC305F0E384, D15B7B3FCA1F52A4195EE41A9A5F0BD7485D3BA6F4063545B6836749FBD994AD ] SCPolicySvc C:\Windows\System32\certprop.dll
00:48:39.0521 0x14e8 SCPolicySvc - ok
00:48:39.0551 0x14e8 [ 08236C4BCE5EDD0A0318A438AF28E0F7, 77727F963F63C4CEC11E7AAD5FB3836179701D512CA9436C3170B9E6A4E5F888 ] SDRSVC C:\Windows\System32\SDRSVC.dll
00:48:39.0601 0x14e8 SDRSVC - ok
00:48:39.0641 0x14e8 [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv C:\Windows\system32\drivers\secdrv.sys
00:48:39.0671 0x14e8 secdrv - ok
00:48:39.0691 0x14e8 [ 807CD05B5E9D1D8181CE420889CFF957, 1306363CB4BEC0EAE8645853066F85EE5ABBFFD1CE26FB4BD399DDDDD94F1608 ] seclogon C:\Windows\system32\seclogon.dll
00:48:39.0761 0x14e8 seclogon - ok
00:48:39.0781 0x14e8 [ DCB7FCDCC97F87360F75D77425B81737, F8289AF2C458C167038EEFE613EE5E3D6D5B3308B8784168374BC81C47891CE5 ] SENS C:\Windows\System32\sens.dll
00:48:39.0831 0x14e8 SENS - ok
00:48:39.0841 0x14e8 [ 50087FE1EE447009C9CC2997B90DE53F, B5E6CF1D991F87C29C5E28198E0962E31FFB499A46C3BD43FC20391693389959 ] SensrSvc C:\Windows\system32\sensrsvc.dll
00:48:39.0901 0x14e8 SensrSvc - ok
00:48:39.0921 0x14e8 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1, E2F019BCD1446236D078D46065DD151DD068778F33BE2F1E8A0CC1EA2F954E86 ] Serenum C:\Windows\system32\drivers\serenum.sys
00:48:39.0951 0x14e8 Serenum - ok
00:48:39.0981 0x14e8 [ 898CF5ACE9C1C223594803523B15C368, FE2CC0DB7586E93F0A8964F24E5C646664C4A7A76C3E5900E3C44338CAB1FC41 ] Serial C:\Windows\system32\drivers\serial.sys
00:48:40.0011 0x14e8 Serial - ok
00:48:40.0041 0x14e8 [ 79BFFB520327FF916A582DFEA17AA813, 7A2A9D69BE02228591186A9F4453D4B5FD98837CA422C873C48040170E8BD18C ] sermouse C:\Windows\system32\drivers\sermouse.sys
00:48:40.0081 0x14e8 sermouse - ok
00:48:40.0181 0x14e8 [ 4CBD143D469225CE084A37D18F8F51E8, E03DC3368A29CCB4987D327916FCF8B1D948CB9239E15E65CB4AF1DE87E3F15D ] SessionEnv C:\Windows\system32\sessenv.dll
00:48:40.0221 0x14e8 SessionEnv - ok
00:48:40.0241 0x14e8 [ 443DF3806153CBC2D130AEF3D957E65D, A9DDB22326E5784B8D7638048EAC7663E089C0F931AFFDFB89E1128BB0FFC08A ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
00:48:40.0301 0x14e8 sffdisk - ok
00:48:40.0311 0x14e8 [ 9833AC87D04B23A01E00F5FD34F95DC6, A6330BB8AA17AE3F68638CF93332DEEAE88FFAFBEEBB0364B373477EEF5D8A63 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
00:48:40.0341 0x14e8 sffp_mmc - ok
00:48:40.0371 0x14e8 [ 23F738EE587C23F54AB03992281C66C4, 06F73CB64C7B719F11FCB25DCFA8097AEAA6864C506603C4C0AE2939DB920FF1 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
00:48:40.0411 0x14e8 sffp_sd - ok
00:48:40.0441 0x14e8 [ DB96666CC8312EBC45032F30B007A547, C3AE60FC65A36E96E0D2CC6E184481D70F91A19DC3E2E17E2873DD670A592DD7 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
00:48:40.0481 0x14e8 sfloppy - ok
00:48:40.0531 0x14e8 [ 9397D1544246B68B973CC272188E4CA0, E7FF7FD73F25B21FDB0646C83B56D6BBA029C26F0CD03B0995010A0B646A850C ] SharedAccess C:\Windows\System32\ipnathlp.dll
00:48:40.0581 0x14e8 SharedAccess - ok
00:48:40.0681 0x14e8 [ C99E91D09029514F07586307A75A95A6, 462B1D7C497DC7AE70FD8AEB28E33B6B3E5529868E77B4AC64046A57AF41D862 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
00:48:40.0731 0x14e8 ShellHWDetection - ok
00:48:40.0771 0x14e8 [ 2565CAC0DC9FE0371BDCE60832582B2E, 1A775214E86B83C2F1799F12D71077D81C89AD32734A248BA88787B7F104B79D ] sisagp C:\Windows\system32\drivers\sisagp.sys
00:48:40.0791 0x14e8 sisagp - ok
00:48:40.0811 0x14e8 [ A9F0486851BECB6DDA1D89D381E71055, 7E909538AB758C18AC2CCBFFEE17BA36FA6ED2E674AA70924AA87AC61375FF35 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
00:48:40.0831 0x14e8 SiSRaid2 - ok
00:48:40.0851 0x14e8 [ 3727097B55738E2F554972C3BE5BC1AA, 75D52A596A298C33EC79A3B0B80F25492C08A182ABC679401502DA9597687566 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
00:48:40.0871 0x14e8 SiSRaid4 - ok
00:48:40.0931 0x14e8 [ 704B4F81729F676BBF034529FC334D82, 1E50DAF97836807A500284385D99272780A8B69CA88761250451060B207824F8 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
00:48:40.0961 0x14e8 SkypeUpdate - ok
00:48:40.0981 0x14e8 [ 3E21C083B8A01CB70BA1F09303010FCE, 803F8F91299C387110F34A49340E7136AAE91B418E2977A36285EA8F432FF197 ] Smb C:\Windows\system32\DRIVERS\smb.sys
00:48:41.0021 0x14e8 Smb - ok
00:48:41.0061 0x14e8 [ 6A984831644ECA1A33FFEAE4126F4F37, 753E23D2B33D47C52C05D892B052CFD96D93B97FB6E9FCB58EF1E4C4A125BF78 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
00:48:41.0111 0x14e8 SNMPTRAP - ok
00:48:41.0131 0x14e8 [ 95CF1AE7527FB70F7816563CBC09D942, CE8BACB91A5A86CBCE82619C6C1873B4D7593B00CED3B522E41B8F7F6258CC65 ] spldr C:\Windows\system32\drivers\spldr.sys
00:48:41.0141 0x14e8 spldr - ok
00:48:41.0261 0x14e8 [ 0D6DD295BD8E5BB0EC0EC6ECC99E4322, 5E31FEB643B0E6E8B24A57F0A98333D9CE0517053407B5AEFDE6791E27B6CE43 ] Spooler C:\Windows\System32\spoolsv.exe
00:48:41.0311 0x14e8 Spooler - ok
00:48:41.0461 0x14e8 [ 5256FE271954314920D0B324395B0888, 97273C9D0D502384B029BF547B4CE57FB794A65638148398C9E25E8152F6B820 ] sppsvc C:\Windows\system32\sppsvc.exe
00:48:41.0661 0x14e8 sppsvc - ok
00:48:41.0701 0x14e8 [ B0180B20B065D89232A78A40FE56EAA6, 4D045B23AD58A8822BE9F20119744A8D47455469D54494745CEB099951DA60FF ] sppuinotify C:\Windows\system32\sppuinotify.dll
00:48:41.0741 0x14e8 sppuinotify - ok
00:48:41.0761 0x14e8 [ BF600D93FFDE09854F4EE0D2BF4ACC5B, C5502078841B2B99A8F70A3C299CDFCFE55D121CF67F19B179DC845D284BB83E ] srv C:\Windows\system32\DRIVERS\srv.sys
00:48:41.0801 0x14e8 srv - ok
00:48:41.0831 0x14e8 [ E65722ECAF13A527F38B9CC1B7BCEA66, 74361CA2291C9F23281F5A74AC63C19A794BC402F91286A58327143C213CA93B ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
00:48:41.0871 0x14e8 srv2 - ok
00:48:41.0901 0x14e8 [ 6D53626DBEE9E24F380188022C50E694, D9009E174D5D6BF132EA780C6C3795F4993257C04BC36A3E365AEEF54A3BE326 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
00:48:41.0921 0x14e8 srvnet - ok
00:48:41.0961 0x14e8 [ D887C9FD02AC9FA880F6E5027A43E118, F38BAD90EC791368C37C21090302708D2DFB83ECE9096609AD9AA667B2E5592E ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
00:48:42.0011 0x14e8 SSDPSRV - ok
00:48:42.0031 0x14e8 [ D318F23BE45D5E3A107469EB64815B50, D74355E6FF215AA8CE53BC9DF16AF2740F2FC2FD754939478A3608BDA8C6DDA0 ] SstpSvc C:\Windows\system32\sstpsvc.dll
00:48:42.0091 0x14e8 SstpSvc - ok
00:48:42.0111 0x14e8 [ DB32D325C192B801DF274BFD12A7E72B, F089DBA719E22BC269720A6B840B873A4AF5639745DB0C3DBC8BD2F2839A1ABA ] stexstor C:\Windows\system32\drivers\stexstor.sys
00:48:42.0131 0x14e8 stexstor - ok
00:48:42.0171 0x14e8 [ E1FB3706030FB4578A0D72C2FC3689E4, A62EC9AA4514CAF2A10C0A3AEF7A36F593A7E7DA370A3F130C24E1B612E19427 ] StiSvc C:\Windows\System32\wiaservc.dll
00:48:42.0231 0x14e8 StiSvc - ok
00:48:42.0267 0x14e8 [ 472AF0311073DCECEAA8FA18BA2BDF89, 089414057EB2047E42C96C1ACE79D509967461DC5A4D2836F63C04268637A3FC ] storflt C:\Windows\system32\drivers\vmstorfl.sys
00:48:42.0288 0x14e8 storflt - ok
00:48:42.0302 0x14e8 [ 0BF669F0A910BEDA4A32258D363AF2A5, 83EEBACDE4F69A2866B69CAA633F5C8B3CB01D88CEDB01B6EA5988E0A25CEE47 ] StorSvc C:\Windows\system32\storsvc.dll
00:48:42.0372 0x14e8 StorSvc - ok
00:48:42.0402 0x14e8 [ DCAFFD62259E0BDB433DD67B5BB37619, CBD12FF9BBF33D18B0F3D322B12EC62E7DF3BF45C6AD43D2E91FF4C4762E05D0 ] storvsc C:\Windows\system32\drivers\storvsc.sys
00:48:42.0422 0x14e8 storvsc - ok
00:48:42.0452 0x14e8 [ E58C78A848ADD9610A4DB6D214AF5224, 1575A90EB22A4FB066459BDA00C6CAC10198C3C8C74493721EC6D34B51F50426 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
00:48:42.0472 0x14e8 swenum - ok
00:48:42.0522 0x14e8 [ FFD86109265395CEC3096F5C25B2D383, 13A0848B3DF6D7DED0D315497E0B23DC1ACBE8365F58E9EE71840E9BDA31B82C ] swprv C:\Windows\System32\swprv.dll
00:48:42.0552 0x14e8 swprv - ok
00:48:42.0592 0x14e8 [ 70534D1E4F9AC990536D5FB5B550B3DE, BD7F52FAD8FDF7F5FE37B6E6101D1386816F371894DD46D799FF4107F98134A1 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
00:48:42.0612 0x14e8 SynTP - ok
00:48:42.0682 0x14e8 [ CB75AC5F4F434E9C1ED3DE09124D7B20, FB795861FE5CE0328C0C408F9AD3F4283C223224D859C7DF00F43C9C3970D7C3 ] SysMain C:\Windows\system32\sysmain.dll
00:48:42.0762 0x14e8 SysMain - ok
00:48:42.0812 0x14e8 [ 763FECDC3D30C815FE72DD57936C6CD1, 1A62C7E63E426D56894F4121C75D9C60FC9A14469ADBD0D6F0B94B8DE48CDA3E ] TabletInputService C:\Windows\System32\TabSvc.dll
00:48:42.0852 0x14e8 TabletInputService - ok
00:48:42.0882 0x14e8 [ 2596851697EA2F9D2F121F56C6302A36, 9F6AF701C65943E89F3ECBC6EB89944EC37073739D795297BB3EC1377ACF9DFC ] TapiSrv C:\Windows\System32\tapisrv.dll
00:48:42.0932 0x14e8 TapiSrv - ok
00:48:42.0952 0x14e8 [ B799D9FDB26111737F58288D8DC172D9, 409A60819A4305699E2E492A6190637FAAEBD19E745A5DB2A5D6977106C86591 ] TBS C:\Windows\System32\tbssvc.dll
00:48:43.0022 0x14e8 TBS - ok
00:48:43.0092 0x14e8 [ EA47AB18E289333AB94397D77CA6E3A1, 3DCC320487EA6045B046E332BA751FA43EB45A95F9F61D5A7B7184948DD59E90 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
00:48:43.0162 0x14e8 Tcpip - ok
00:48:43.0252 0x14e8 [ EA47AB18E289333AB94397D77CA6E3A1, 3DCC320487EA6045B046E332BA751FA43EB45A95F9F61D5A7B7184948DD59E90 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
00:48:43.0316 0x14e8 TCPIP6 - ok
00:48:43.0333 0x14e8 [ 3982260E8F2EF94C130FFC45D9093428, 50D881D87F816F50E41F8854B7AAF7EBB71662A359849C0436CFE2A8411D9021 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
00:48:43.0373 0x14e8 tcpipreg - ok
00:48:43.0413 0x14e8 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2, 879E2827354BB21573AC6A7CCEB746D44214540687E6882FFCB4089546FBD954 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
00:48:43.0483 0x14e8 TDPIPE - ok
00:48:43.0513 0x14e8 [ 2C2C5AFE7EE4F620D69C23C0617651A8, E828D974C3F9D7004A030C3AD448096C736FDB4C4C1707D043E567D08C845103 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
00:48:43.0533 0x14e8 TDTCP - ok
00:48:43.0563 0x14e8 [ D4EB5D50A5171245223ED7BC6427FBCD, 935F870F73D6DBA23DA4628A0F1771A74F09CCE593D0B53B1057622E2D2B1FEE ] tdx C:\Windows\system32\DRIVERS\tdx.sys
00:48:43.0603 0x14e8 tdx - ok
00:48:43.0633 0x14e8 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20, 0D81B427720637882077C5024D738191F858FC734ED040697872D906351EF663 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
00:48:43.0653 0x14e8 TermDD - ok
00:48:43.0683 0x14e8 [ E951866BAC5A23403F62A349EDBB6EEB, BE6FB3C09D1CF8952B4D041F45B4DEE53D78EE7D27A5135012BC92B2F7CFBEA3 ] terminpt C:\Windows\system32\drivers\terminpt.sys
00:48:43.0713 0x14e8 terminpt - ok
00:48:43.0773 0x14e8 [ DD01319264B6D19E379BDD079A27DA91, 81A9B57BF5002C500D9C7AAA41ACAE388895FAEC0B693E0BE84703A7C534F0B3 ] TermService C:\Windows\System32\termsrv.dll
00:48:43.0833 0x14e8 TermService - ok
00:48:43.0863 0x14e8 [ 42FB6AFD6B79D9FE07381609172E7CA4, B57C85091209A2FAD19ED490B8FA7FC98F12911F9C9CACE9AF1E540780CE6700 ] Themes C:\Windows\system32\themeservice.dll
00:48:43.0893 0x14e8 Themes - ok
00:48:43.0903 0x14e8 [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] THREADORDER C:\Windows\system32\mmcss.dll
00:48:43.0953 0x14e8 THREADORDER - ok
00:48:43.0963 0x14e8 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A, 532A3A812578B2DFD83001DE66FC73689D79EC729409EB572E07E6D65B281712 ] TrkWks C:\Windows\System32\trkwks.dll
00:48:44.0013 0x14e8 TrkWks - ok
00:48:44.0073 0x14e8 [ 2C49B175AEE1D4364B91B531417FE583, 6C7995E18F84E465C376D1D5F153C15ACB66CDEA86EE5BF186677F572E7E129B ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
00:48:44.0123 0x14e8 TrustedInstaller - ok
00:48:44.0153 0x14e8 [ E10601CF12F9E619BC16A40E962954E9, 7B4697ECC6DDD0A86FEB626B48CAB59BC41B4DDAC7287C8B5F938671DF881D5D ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
00:48:44.0173 0x14e8 tssecsrv - ok
00:48:44.0193 0x14e8 [ C6A5FBD4977305E1FA23E02C042DB463, A6EB5E4B8051A258D40A385609E930318EAA3494C8466F48542B806FE6A7C47A ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
00:48:44.0263 0x14e8 TsUsbFlt - ok
00:48:44.0273 0x14e8 [ 7E6E0797EB91F1D63641058416044313, 3A681A337DFCE9108B73CC4707462114E8D534C52BF8C8E226C0B31326FF24D5 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
00:48:44.0313 0x14e8 TsUsbGD - ok
00:48:44.0363 0x14e8 [ AADA460B752B109B4F19FD3C5FF6B8F9, A90D9DB1B614FAA74D84D233E6D1960231C2766724BB1FF7227FA63EC657673B ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
00:48:44.0393 0x14e8 tunnel - ok
00:48:44.0433 0x14e8 [ 792A8B80F8188ABA4B2BE271583F3E46, BFE96D13926F3CB7D807CEBB5E190736B742EB5C93F7FED08AA5D145F4B6A874 ] TVALZ C:\Windows\system32\DRIVERS\TVALZ_O.SYS
00:48:44.0453 0x14e8 TVALZ - ok
00:48:44.0483 0x14e8 [ 750FBCB269F4D7DD2E420C56B795DB6D, E1A95C59148FE463539C34336FD0E74B31A33B8AB2B8E34AA10349C3347471D7 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
00:48:44.0503 0x14e8 uagp35 - ok
00:48:44.0535 0x14e8 [ AB17A89EB6058B8B4D967947A0EF1193, 8FBBF2EA2320C1AABDC2F4C36C46936BA544F6A93D8C32CD597A1F15FF1AACC0 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
00:48:44.0594 0x14e8 udfs - ok
00:48:44.0624 0x14e8 [ 8344FD4FCE927880AA1AA7681D4927E5, 1B54EFA60A221E2B9FFE59BB41C7E7D8B5AC6826F1C5577456D81371D464255A ] UI0Detect C:\Windows\system32\UI0Detect.exe
00:48:44.0644 0x14e8 UI0Detect - ok
00:48:44.0674 0x14e8 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880, 5D96D90FDF68AE470CC92CA9DF9DA2C05A53EF455A5A109DBBF7C96F3238257C ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
00:48:44.0684 0x14e8 uliagpkx - ok
00:48:44.0734 0x14e8 [ D295BED4B898F0FD999FCFA9B32B071B, D4130DB4AE76EE6DC0B8E7A4FEF5CB8B26EBD822C21021F6FA78FD29C1E211C2 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
00:48:44.0774 0x14e8 umbus - ok
00:48:44.0804 0x14e8 [ 7550AD0C6998BA1CB4843E920EE0FEAC, 24C001E422C3B3B920CDCF6003A3179CE464DE4284775403DD5122EF9780460D ] UmPass C:\Windows\system32\drivers\umpass.sys
00:48:44.0834 0x14e8 UmPass - ok
00:48:44.0894 0x14e8 [ AF0BB6DBE080EBB69F2519306A8B0B61, EA664A73D371A9C565B00579F41C8FD872E24806DD352C97D9BB61E4A87CFD51 ] UmRdpService C:\Windows\System32\umrdp.dll
00:48:44.0974 0x14e8 UmRdpService - ok
00:48:45.0054 0x14e8 [ 67A95B9D129ED5399E7965CD09CF30E7, F1F2F684146F1CCB293BB9871117B8CFC1D04588A830F67CE5D3F0D034D93B2A ] UMVPFSrv C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
00:48:45.0084 0x14e8 UMVPFSrv - ok
00:48:45.0114 0x14e8 [ 833FBB672460EFCE8011D262175FAD33, C0C3067A305993CBF056C229771CB0593DD60C9C7AC5130FF1CA610BCA812AB5 ] upnphost C:\Windows\System32\upnphost.dll
00:48:45.0164 0x14e8 upnphost - ok
00:48:45.0234 0x14e8 [ A1977C315BF5691DA99235AA4A6907AF, 34B52FBA83F0E1C6B001D0AD1808B00152F731D18AAECC3C53B9918AA89BACEC ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
00:48:45.0264 0x14e8 usbaudio - ok
00:48:45.0284 0x14e8 [ 53440D945FBCBEE59B5C6911386F1569, 7355729CC03B7CCE9707D1BC2BD7EF85E981FE296FAEE996043A0F0F36F2C7B3 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
00:48:45.0334 0x14e8 usbccgp - ok
00:48:45.0374 0x14e8 [ 2352AB5F9F8F097BF9D41D5A4718A041, 25BC7828C625B9B2A5110C25B230C5828CEC18EC97ECF9EC4745E8930CBF472C ] usbcir C:\Windows\system32\drivers\usbcir.sys
00:48:45.0414 0x14e8 usbcir - ok
00:48:45.0444 0x14e8 [ 5D5DFF99C63E85B8F407A2FF2880A451, B60907C15050C69B34ACDDF57982A5AD5F6C3F525C0EBD2425547A733D0FE93E ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
00:48:45.0474 0x14e8 usbehci - ok
00:48:45.0534 0x14e8 [ 355FA8DCE2B10C2888CB5B87C6EA4775, 63F4B98BA12BD7072F333C37C92CEEF32807AE7FAA0DFB0344B964957DEB6D33 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
00:48:45.0574 0x14e8 usbhub - ok
00:48:45.0594 0x14e8 [ EAFE2407B2C6F709470D90473850B76A, A6E4FA1EF5C4954FE8B57C44F941609F5E7C747E5BECDF7C49FEB9608D4179EB ] usbohci C:\Windows\system32\drivers\usbohci.sys
00:48:45.0614 0x14e8 usbohci - ok
00:48:45.0644 0x14e8 [ 797D862FE0875E75C7CC4C1AD7B30252, 1BBE745E4C85F8911076F6032ACD7A35FAC048D3CB1500C64E08D8B2C70A1069 ] usbprint C:\Windows\system32\drivers\usbprint.sys
00:48:45.0684 0x14e8 usbprint - ok
00:48:45.0724 0x14e8 [ 353FBF4AE9EF467BE8A2FDA7935F63CB, F399B49A72B2A72A4318C1870EE9D504FB8E7FB1C70BAA95374DC7BE457DDD05 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
00:48:45.0774 0x14e8 USBSTOR - ok
00:48:45.0804 0x14e8 [ DBAC5F8281F6B50E001A4CEECDEFC5FA, FA0EB55BB306C2BDF4488C39F4E1F9556EADFE8EB9E2989EE73225B4A87E25FE ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys
00:48:45.0844 0x14e8 usbuhci - ok
00:48:45.0924 0x14e8 [ 4B402EEED9D65DF4B43877C5ED0010B2, 838B786AC14A6987279451BF74AEC324C680DD564504E943AF0DD65D472A76D2 ] UxSms C:\Windows\System32\uxsms.dll
00:48:45.0974 0x14e8 UxSms - ok
00:48:45.0984 0x14e8 [ 3228BE5229F9EEFB18654A56B016F642, F998A193BBA4B518091C402745AB43A6A9B24C043697FE8685839BE9CCA2EDF9 ] VaultSvc C:\Windows\system32\lsass.exe
00:48:46.0004 0x14e8 VaultSvc - ok
00:48:46.0124 0x14e8 [ EA9ADB96A31020D4D3E5167FE31427DE, 5635513F58CF89AF87B7A5CE570B348A932C5C74D3FBAF575D708198B174D641 ] VBoxAswDrv C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys
00:48:46.0144 0x14e8 VBoxAswDrv - ok
00:48:46.0174 0x14e8 [ A059C4C3EDB09E07D21A8E5C0AABD3CB, BDD3729B49DF2E2FC72FFEF9D10235B481A671DE5A721B6B9A80873B7A343F07 ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
00:48:46.0194 0x14e8 vdrvroot - ok
00:48:46.0284 0x14e8 [ BBBC319CFA02DC814EC424F6428AA22C, 23E520DD36404EDCC51552608BF17903121AC7121334A5BA9F242D3CD3926A82 ] vds C:\Windows\System32\vds.exe
00:48:46.0334 0x14e8 vds - ok
00:48:46.0364 0x14e8 [ 17C408214EA61696CEC9C66E388B14F3, 829C0416672E2B2DFABCFE641E7F281F41E8DBB3C0EF11C7784CB9BB94F87E97 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
00:48:46.0436 0x14e8 vga - ok
00:48:46.0462 0x14e8 [ 8E38096AD5C8570A6F1570A61E251561, 4DBA3C1397A2203548F45F006E66D99F837903F601ABBCE2304754F783CA8A39 ] VgaSave C:\Windows\System32\drivers\vga.sys
00:48:46.0505 0x14e8 VgaSave - ok
00:48:46.0525 0x14e8 [ 83E0DF11DA7628BA6625B7F92E6E0EDA, 60A1FFF5AB25AB17E727EE45B670769D840F158537DC2D6427F6080D806D4177 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
00:48:46.0545 0x14e8 vhdmp - ok
00:48:46.0595 0x14e8 [ C829317A37B4BEA8F39735D4B076E923, 55D1796AE750071E1E05BD7702B6C355CCFFE27B4C00E93E7044C3184732B497 ] viaagp C:\Windows\system32\drivers\viaagp.sys
00:48:46.0615 0x14e8 viaagp - ok
00:48:46.0615 0x14e8 [ E02F079A6AA107F06B16549C6E5C7B74, B530DCE3EE4F285B3D5F69F7148D17E016D54F04E6F93706B829A34567748788 ] ViaC7 C:\Windows\system32\drivers\viac7.sys
00:48:46.0645 0x14e8 ViaC7 - ok
00:48:46.0655 0x14e8 [ E43574F6A56A0EE11809B48C09E4FD3C, 3687BF638E21C00E62ABFED70D728B91ADA08F7164CA898E654F31DA196589E9 ] viaide C:\Windows\system32\drivers\viaide.sys
00:48:46.0675 0x14e8 viaide - ok
00:48:46.0705 0x14e8 [ C2F2911156FDC7817C52829C86DA494E, FE499F189B5016FCE0018AA3DE3970B72275B7B15F3D4D608117F6DDEC6B90DC ] vmbus C:\Windows\system32\drivers\vmbus.sys
00:48:46.0735 0x14e8 vmbus - ok
00:48:46.0755 0x14e8 [ D4D77455211E204F370D08F4963063CE, 2018B2A84C73E0834200A594C02A9D28C74906F126DAD3CCDDFC9CD9A61669E2 ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
00:48:46.0775 0x14e8 VMBusHID - ok
00:48:46.0805 0x14e8 [ 59CC7B8DB9D78BB8FEF252E3791050E0, D950A6E23024D1ECC003BDDAD445542B312135DD9B6AAABF3B9E7DBCE401C766 ] volmgr C:\Windows\system32\drivers\volmgr.sys
00:48:46.0815 0x14e8 volmgr - ok
00:48:46.0845 0x14e8 [ 670B6D02548BC93F54CDE5979560A7B8, 50609AE33951EA9C25A0AE77EE12445D1C300D4F03DCFD2169E73A1132BFC469 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
00:48:46.0875 0x14e8 volmgrx - ok
00:48:46.0895 0x14e8 [ 887372662411CE475D9274395BADBD35, 020222500AF538F76428A176E5493FCB05970B45A48040BA55A3F625796455A4 ] volsnap C:\Windows\system32\drivers\volsnap.sys
00:48:46.0925 0x14e8 volsnap - ok
00:48:46.0965 0x14e8 [ 9DFA0CC2F8855A04816729651175B631, 37FD9E43A2A3F125E94A315FB4CD8A1B5499A5FD74806EB2D1E5DA88C070D3A3 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
00:48:46.0985 0x14e8 vsmraid - ok
00:48:47.0155 0x14e8 [ DD8FED23DF3F0AE0D73E8693324D59F9, 92D4BC5ED1B2FEF8D1FBEE3D434BA20165C20E530903A7B92540B2B6B6895617 ] VSS C:\Windows\system32\vssvc.exe
00:48:47.0265 0x14e8 VSS - ok
00:48:47.0285 0x14e8 [ 90567B1E658001E79D7C8BBD3DDE5AA6, EFC23BEEA7F54A2DC56CB523DAD1AF0358D904C5278BF08873910E2DB3F13557 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
00:48:47.0325 0x14e8 vwifibus - ok
00:48:47.0355 0x14e8 [ 484F0E7A0CF612E5D9DFE2049F582FE3, 8F9804C1B5F14BB29BBA6D96E59B7AAAA03ACFE34E62C9CD4F792A525F835A2A ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
00:48:47.0375 0x14e8 vwififlt - ok
00:48:47.0485 0x14e8 [ C5A527C40AD0E5CFE52EAEDDD46ED23F, 43769E9A2592A0483B8C1A343360FE79F2A4329750A13AB1D2732F02B7C3BF46 ] W32Time C:\Windows\system32\w32time.dll
00:48:47.0545 0x14e8 W32Time - ok
00:48:47.0585 0x14e8 [ DE3721E89C653AA281428C8A69745D90, 501C78056ED4295625D8A5412025FD2F0CA24077044D3A5800BA79DF3D946516 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
00:48:47.0625 0x14e8 WacomPen - ok
00:48:47.0665 0x14e8 [ A15B986262C3A3B0D8AF101E5D6C2E7F, 7CC1AE58276E7F864F1F0BD2B854666DB3F2260094B5F110BB31910101278589 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
00:48:47.0695 0x14e8 WANARP - ok
00:48:47.0695 0x14e8 [ A15B986262C3A3B0D8AF101E5D6C2E7F, 7CC1AE58276E7F864F1F0BD2B854666DB3F2260094B5F110BB31910101278589 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
00:48:47.0725 0x14e8 Wanarpv6 - ok
00:48:47.0895 0x14e8 [ E7DA95E73F04EF2D7155171C50C7EA74, EF221E6D63DC5319FC8A2FEFABD912D300B2C98D3C899A6C33E4EC658C3B5C9B ] wbengine C:\Windows\system32\wbengine.exe
00:48:47.0985 0x14e8 wbengine - ok
00:48:48.0015 0x14e8 [ F3A695267AAFE4E3464D12AE7C06D12C, 2A4807ACAB0FC7024C06A11B8FA793713C610EE05222944B35A4AB8C622E51AD ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
00:48:48.0075 0x14e8 WbioSrvc - ok
00:48:48.0105 0x14e8 [ 34EEE0DFAADB4F691D6D5308A51315DC, A040A03E25A0C78B9E26F86C2DF95BCAF8E7EC90183CEB295615D3265350EBEE ] wcncsvc C:\Windows\System32\wcncsvc.dll
00:48:48.0165 0x14e8 wcncsvc - ok
00:48:48.0185 0x14e8 [ 5D930B6357A6D2AF4D7653BDABBF352F, 677FF2ED14EE0B0CAA710DA81556CC16D5971DAB10E7C7432D167A87CA6F0EAA ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
00:48:48.0245 0x14e8 WcsPlugInService - ok
00:48:48.0275 0x14e8 [ 1112A9BADACB47B7C0BB0392E3158DFF, 1AE2AFA125973571F91E6945FE8A735F63D76EBB250A0075D98C580167FD9ED4 ] Wd C:\Windows\system32\drivers\wd.sys
00:48:48.0295 0x14e8 Wd - ok
00:48:48.0355 0x14e8 [ CF68C54937BACCC0DA9A056FFA2A3988, 4D1FD6CEDA7A00D8F496916F6EE127B41C8875585C9AECAEBB0FC1B6F5E1312F ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
00:48:48.0385 0x14e8 Wdf01000 - ok
00:48:48.0435 0x14e8 [ DDE994E9159497D0D5AB2CDF66D1EAD6, 49BEDECA469C47E7622542D3B9BCD31ECDDAA27838495EC5C2F1338E33FEA877 ] WdiServiceHost C:\Windows\system32\wdi.dll
00:48:48.0465 0x14e8 WdiServiceHost - ok
00:48:48.0475 0x14e8 [ DDE994E9159497D0D5AB2CDF66D1EAD6, 49BEDECA469C47E7622542D3B9BCD31ECDDAA27838495EC5C2F1338E33FEA877 ] WdiSystemHost C:\Windows\system32\wdi.dll
00:48:48.0505 0x14e8 WdiSystemHost - ok
00:48:48.0535 0x14e8 [ 049FAF4EE26617B4CFCE3C4F45953C16, 0F5CA2303FD8A3A2B6D13BC12D9FA04FFBB515EBF10AFBEBF3C6157B151C026A ] WebClient C:\Windows\System32\webclnt.dll
00:48:48.0585 0x14e8 WebClient - ok
00:48:48.0615 0x14e8 [ 760F0AFE937A77CFF27153206534F275, A53940BA28854486FF18F16B98A3314B36322B0B6EFB54D08B921315BEB0ADD5 ] Wecsvc C:\Windows\system32\wecsvc.dll
00:48:48.0665 0x14e8 Wecsvc - ok
00:48:48.0685 0x14e8 [ AC804569BB2364FB6017370258A4091B, 1856F354146A5946F3E7D0DD09726FC8A3502B0F0776FEADDF10669C81CC28E2 ] wercplsupport C:\Windows\System32\wercplsupport.dll
00:48:48.0725 0x14e8 wercplsupport - ok
00:48:48.0765 0x14e8 [ 08E420D873E4FD85241EE2421B02C4A4, E1E9436EB096FF7DE9A76DA6217035257EF9FC7565DDB9016DCA3859E7F1EF0F ] WerSvc C:\Windows\System32\WerSvc.dll
00:48:48.0805 0x14e8 WerSvc - ok
00:48:48.0845 0x14e8 [ E8FC2B7A768EDBA47103D7EFD05F60D7, 0972AA0FF6DC3E74D79D9AB21B70D549C9B3DE2AC3C1F4665ABA32A387BB2432 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
00:48:48.0865 0x14e8 WfpLwf - ok
00:48:48.0895 0x14e8 [ 5CF95B35E59E2A38023836FFF31BE64C, CEA21302B3E855EE592810D4E0DE10E47A47A393064C435463CD54598735CD8D ] WIMMount C:\Windows\system32\drivers\wimmount.sys
00:48:48.0915 0x14e8 WIMMount - ok
00:48:48.0985 0x14e8 [ 082CF481F659FAE0DE51AD060881EB47, BB67D2AF0BB9192D4CCF66C23D80CE5A1B38715556D94E2561DBF8F805FA30A5 ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
00:48:49.0065 0x14e8 WinDefend - ok
00:48:49.0075 0x14e8 WinHttpAutoProxySvc - ok
00:48:49.0125 0x14e8 [ F62E510B6AD4C21EB9FE8668ED251826, FA3E5CAC3E67E49377320CFBE4646585E6B62168292768FEA81E4623F9166890 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
00:48:49.0185 0x14e8 Winmgmt - ok
00:48:49.0255 0x14e8 [ AD61501AB6BFAECBF94EBB28BDF4B45B, C54F11AFB02C38FB2462BEBA14A36AEC015C9EE72969FFC5311AA9AFC971E4CB ] WinRM C:\Windows\system32\WsmSvc.dll
00:48:49.0355 0x14e8 WinRM - ok
00:48:49.0415 0x14e8 [ A67E5F9A400F3BD1BE3D80613B45F708, E170A8BD31A779403DC9C43ED6483DA8E186512D3EE700B87F6BA292E284E367 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
00:48:49.0435 0x14e8 WinUsb - ok
00:48:49.0515 0x14e8 [ 16935C98FF639D185086A3529B1F2067, E9C6B73A572A04FCE9B1B0E6815F941B10332D9A6D55B92927C2B1275F119091 ] Wlansvc C:\Windows\System32\wlansvc.dll
00:48:49.0585 0x14e8 Wlansvc - ok
00:48:49.0605 0x14e8 [ 0217679B8FCA58714C3BF2726D2CA84E, 4494984B922DCF24D37BCD0E6831CEBD07D1CA49235D04E821D17ED3DF84ED2A ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
00:48:49.0635 0x14e8 WmiAcpi - ok
00:48:49.0676 0x14e8 [ 6EB6B66517B048D87DC1856DDF1F4C3F, EBB534C4829477C70062ADBB5626236B02FE563A544C53FA255E79F3CA170FE8 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
00:48:49.0716 0x14e8 wmiApSrv - ok
00:48:49.0826 0x14e8 [ 3B40D3A61AA8C21B88AE57C58AB3122E, 6C67DCB007C3CDF2EB0BBF5FD89C32CD7800C20F7166872F8C387BE262C5CD21 ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
00:48:49.0936 0x14e8 WMPNetworkSvc - ok
00:48:49.0966 0x14e8 [ A2F0EC770A92F2B3F9DE6D518E11409C, 6838F2148B11285E00DC449D51F8AD85AAE57694E89BA2C607B87AC1C650D845 ] WPCSvc C:\Windows\System32\wpcsvc.dll
00:48:50.0016 0x14e8 WPCSvc - ok
00:48:50.0226 0x14e8 [ 73093D0F09ABF0DA4BBD3163102C20C3, 67DE883616895A697785CD44C8E55E543E404F91FF197A2CCF808477593DF6A0 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
00:48:50.0286 0x14e8 WPDBusEnum - ok
00:48:50.0306 0x14e8 [ 6DB3276587B853BF886B69528FDB048C, 9972FF6DF0DF6F86D1E9BCEF4C29064748B217DA196B0633C30D3D580144951C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
00:48:50.0346 0x14e8 ws2ifsl - ok
00:48:50.0376 0x14e8 [ 6F5D49EFE0E7164E03AE773A3FE25340, 15B6AFF7455538189A96F8863CC995A271E02C6FBDAC15B037D44DDA65E61339 ] wscsvc C:\Windows\System32\wscsvc.dll
00:48:50.0426 0x14e8 wscsvc - ok
00:48:50.0436 0x14e8 WSearch - ok
00:48:50.0546 0x14e8 [ 7E5C454A3F986FEBAD075DB8D915917E, 9E9147DDACD075958689523130DB92FC4ED0E38433461D8AB8792BCFBD9376DA ] wuauserv C:\Windows\system32\wuaueng.dll
00:48:50.0666 0x14e8 wuauserv - ok
00:48:50.0686 0x14e8 [ 06E6F32C8D0A3F66D956F57B43A2E070, 9A6BD96A28294B0372F16E13D652FD603308F64B74A56E41E0C68C5E8011F943 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
00:48:50.0716 0x14e8 WudfPf - ok
00:48:50.0756 0x14e8 [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
00:48:50.0786 0x14e8 WUDFRd - ok
00:48:50.0956 0x14e8 [ FE47B7BC8EA320C2D9B5E5BF6E303765, 34518DBD1E9EA6E5DA62273B18613761E1D9C6B4E074A93C6D639FBAF02222EA ] wudfsvc C:\Windows\System32\WUDFSvc.dll
00:48:50.0986 0x14e8 wudfsvc - ok
00:48:51.0016 0x14e8 [ 7CC38741B8F68F1E0D5D79DA6123666A, F90D2DA1C9AFB506C381CD386E1430931B5F81813FEDFD720F87FBC54E7A00DA ] WwanSvc C:\Windows\System32\wwansvc.dll
00:48:51.0086 0x14e8 WwanSvc - ok
00:48:51.0116 0x14e8 ================ Scan global ===============================
00:48:51.0136 0x14e8 [ DAB748AE0439955ED2FA22357533DDDB, 73EDD402C7479DDCE1998D0C7E99E1EC2974F64EFC33A851439CC85D09EDCDF9 ] C:\Windows\system32\basesrv.dll
00:48:51.0166 0x14e8 [ 51683BC83B84C3EBBB0D2699E97D9F4E, 9DD5297825FC284281A0CB2BB01627857CCB81015CB79F29337059970266197D ] C:\Windows\system32\winsrv.dll
00:48:51.0186 0x14e8 [ 51683BC83B84C3EBBB0D2699E97D9F4E, 9DD5297825FC284281A0CB2BB01627857CCB81015CB79F29337059970266197D ] C:\Windows\system32\winsrv.dll
00:48:51.0226 0x14e8 [ 364455805E64882844EE9ACB72522830, 906561DBBB33F744844CF27E456226044C85DF0FCFD26DE1FD11E09E2CFA6F8F ] C:\Windows\system32\sxssrv.dll
00:48:51.0266 0x14e8 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6, D7BC4ED605B32274B45328FD9914FB0E7B90D869A38F0E6F94FB1BF4E9E2B407 ] C:\Windows\system32\services.exe
00:48:51.0276 0x14e8 [ Global ] - ok
00:48:51.0276 0x14e8 ================ Scan MBR ==================================
00:48:51.0286 0x14e8 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
00:48:52.0586 0x14e8 \Device\Harddisk0\DR0 - ok
00:48:52.0586 0x14e8 ================ Scan VBR ==================================
00:48:52.0596 0x14e8 [ FD79DBE98DB7985DAE115784C6A24162 ] \Device\Harddisk0\DR0\Partition1
00:48:52.0596 0x14e8 \Device\Harddisk0\DR0\Partition1 - ok
00:48:52.0616 0x14e8 [ 14E8447E9D6952996E1D537EBC5BE349 ] \Device\Harddisk0\DR0\Partition2
00:48:52.0666 0x14e8 \Device\Harddisk0\DR0\Partition2 - ok
00:48:52.0686 0x14e8 [ AA83E8DCF9551212DCDA17B3E60C10D4 ] \Device\Harddisk0\DR0\Partition3
00:48:52.0696 0x14e8 \Device\Harddisk0\DR0\Partition3 - ok
00:48:52.0696 0x14e8 ================ Scan generic autorun ======================
00:48:52.0736 0x14e8 [ 2C1B1E9174D94E9F6EE3CF373ABAB7DD, 729D283DF70F727824EBCA223D5E5B27D16E3E2B5312B1B34CAE1E763192D7B5 ] C:\Windows\system32\igfxtray.exe
00:48:52.0756 0x14e8 IgfxTray - ok
00:48:52.0766 0x14e8 [ 87D78CF6365BDDACBE9D34B60FE0E23B, 4561DE7171FD9035FEDF7EEA059859732996A5E72364D0D9F230563A1A6AE3D4 ] C:\Windows\system32\hkcmd.exe
00:48:52.0796 0x14e8 HotKeysCmds - ok
00:48:52.0817 0x14e8 [ 89D3DE5E2C77DCD99C56F0E46310AEA0, 02E1B2353E5D5F65D7968698AFE079A4DF11C230F6213C07D128F47147BACA29 ] C:\Windows\system32\igfxpers.exe
00:48:52.0840 0x14e8 Persistence - ok
00:48:52.0917 0x14e8 [ 6E240D6C2F0DB74BED13AD723D3AB0A1, 99811F1EF27E0B6DDCF79DD07F49931FD55788407AB48C019C1E1B7592919614 ] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
00:48:52.0967 0x14e8 SynTPEnh - ok
00:48:53.0047 0x14e8 [ 07A37CB5C5A01E73FB69F138FAE2DB0E, 9E8B5D78D7EAB8FA35133763EDA91AFE5CDEE275D604F02CDB56FB00A0D5AA0F ] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
00:48:53.0097 0x14e8 Adobe ARM - ok
00:48:53.0167 0x14e8 [ BBD1BA710A00842064BA038570C13CB2, 155FABD8323C95932C9F552E8827A87356E9FCED471B8F5E06466F920EEB56A4 ] c:\Program Files\Microsoft Security Client\msseces.exe
00:48:53.0217 0x14e8 MSC - ok
00:48:53.0287 0x14e8 [ 0E34B7BB1FCF22BCC1E394D16F9E992B, 382CA8E6BAC301E2F277F8EDA03D263FF71272796A8EED582C36294EEE9191F9 ] C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
00:48:53.0307 0x14e8 GrooveMonitor - ok
00:48:53.0567 0x14e8 [ 06964B7DE858BB6317164BF184E9C766, ADE3D2A7256A8F3F11B6E35979413850EB22B9BBADCE3EC73BE04A1622512126 ] C:\Program Files\AVAST Software\Avast\AvastUI.exe
00:48:53.0787 0x14e8 AvastUI.exe - ok
00:48:53.0867 0x14e8 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\Sidebar.exe
00:48:53.0987 0x14e8 Sidebar - ok
00:48:54.0027 0x14e8 [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
00:48:54.0057 0x14e8 mctadmin - ok
00:48:54.0117 0x14e8 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\Sidebar.exe
00:48:54.0177 0x14e8 Sidebar - ok
00:48:54.0187 0x14e8 [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
00:48:54.0217 0x14e8 mctadmin - ok
00:48:54.0257 0x14e8 Skype - ok
00:48:54.0257 0x14e8 Waiting for KSN requests completion. In queue: 96
00:48:55.0257 0x14e8 Waiting for KSN requests completion. In queue: 96
00:48:56.0257 0x14e8 Waiting for KSN requests completion. In queue: 96
00:48:57.0287 0x14e8 AV detected via SS2: Microsoft Security Essentials, C:\Program Files\Microsoft Security Client\msseces.exe ( 4.7.205.0 ), 0x61000 ( enabled : updated )
00:48:57.0357 0x14e8 AV detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 10.2.2215.880 ), 0x42000 ( disabled : updated )
00:48:57.0407 0x14e8 Win FW state via NFP2: enabled
00:48:59.0827 0x14e8 ============================================================
00:48:59.0827 0x14e8 Scan finished
00:48:59.0827 0x14e8 ============================================================
00:48:59.0837 0x0278 Detected object count: 0
00:48:59.0837 0x0278 Actual detected object count: 0 Code:
Malwarebytes Anti-Rootkit BETA 1.09.1.1004
www.malwarebytes.org
Database version:
main: v2015.04.19.05
rootkit: v2015.03.31.01
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 11.0.9600.17728
Master :: MASTER-PC [administrator]
20.04.2015 00:16:46
mbar-log-2015-04-20 (00-16-46).txt
Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled:
Objects scanned: 312354
Time elapsed: 27 minute(s), 20 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 0
(No malicious items detected)
Physical Sectors Detected: 0
(No malicious items detected)
(end) |