| 
 Dann nochmal der zweite Durchlauf, wo jedoch nichts mehr gefunden wurde und der dazugehörige Log:  Code: 
 Malwarebytes Anti-Rootkit BETA 1.9.3.1001www.malwarebytes.org
 
 Database version:
 main:    v2015.09.21.06
 rootkit: v2015.09.18.01
 
 Windows 7 Service Pack 1 x86 NTFS
 Internet Explorer 11.0.9600.18015
 Tom :: TOM-PC [administrator]
 
 21.09.2015 21:47:14
 mbar-log-2015-09-21 (21-47-14).txt
 
 Scan type: Quick scan
 Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
 Scan options disabled:
 Kernel memory modifications detected. Deep Anti-Rootkit Scan engaged.
 Objects scanned: 482100
 Time elapsed: 1 hour(s), 15 minute(s), 51 second(s)
 
 Memory Processes Detected: 0
 (No malicious items detected)
 
 Memory Modules Detected: 0
 (No malicious items detected)
 
 Registry Keys Detected: 0
 (No malicious items detected)
 
 Registry Values Detected: 0
 (No malicious items detected)
 
 Registry Data Items Detected: 0
 (No malicious items detected)
 
 Folders Detected: 0
 (No malicious items detected)
 
 Files Detected: 0
 (No malicious items detected)
 
 Physical Sectors Detected: 0
 (No malicious items detected)
 
 (end)
 Abschließend der Log von TDSSKiller:    Code: 
 17:07:50.0467 0x2d24  TDSS rootkit removing tool 3.1.0.5 Jul 24 2015 12:29:5717:08:04.0092 0x2d24  ============================================================
 17:08:04.0092 0x2d24  Current date / time: 2015/09/22 17:08:04.0092
 17:08:04.0092 0x2d24  SystemInfo:
 17:08:04.0092 0x2d24
 17:08:04.0092 0x2d24  OS Version: 6.1.7601 ServicePack: 1.0
 17:08:04.0092 0x2d24  Product type: Workstation
 17:08:04.0092 0x2d24  ComputerName: TOM-PC
 17:08:04.0092 0x2d24  UserName: Tom
 17:08:04.0092 0x2d24  Windows directory: C:\Windows
 17:08:04.0092 0x2d24  System windows directory: C:\Windows
 17:08:04.0092 0x2d24  Processor architecture: Intel x86
 17:08:04.0092 0x2d24  Number of processors: 2
 17:08:04.0092 0x2d24  Page size: 0x1000
 17:08:04.0092 0x2d24  Boot type: Normal boot
 17:08:04.0092 0x2d24  ============================================================
 17:08:06.0595 0x2d24  KLMD registered as C:\Windows\system32\drivers\21128307.sys
 17:08:07.0105 0x2d24  System UUID: {41E80AEA-1A26-5AA2-5401-A7B392501519}
 17:08:08.0183 0x2d24  Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 ( 232.89 Gb ), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
 17:08:08.0183 0x2d24  ============================================================
 17:08:08.0183 0x2d24  \Device\Harddisk0\DR0:
 17:08:08.0183 0x2d24  MBR partitions:
 17:08:08.0183 0x2d24  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1385000, BlocksNum 0x1B7C4000
 17:08:08.0183 0x2d24  ============================================================
 17:08:08.0214 0x2d24  C: <-> \Device\Harddisk0\DR0\Partition1
 17:08:08.0214 0x2d24  ============================================================
 17:08:08.0214 0x2d24  Initialize success
 17:08:08.0214 0x2d24  ============================================================
 17:08:40.0568 0x2e08  ============================================================
 17:08:40.0568 0x2e08  Scan started
 17:08:40.0568 0x2e08  Mode: Manual; SigCheck; TDLFS;
 17:08:40.0568 0x2e08  ============================================================
 17:08:40.0568 0x2e08  KSN ping started
 17:08:54.0258 0x2e08  KSN ping finished: true
 17:08:55.0350 0x2e08  ================ Scan system memory ========================
 17:08:55.0350 0x2e08  System memory - ok
 17:08:55.0350 0x2e08  ================ Scan services =============================
 17:08:55.0522 0x2e08  [ 1B133875B8AA8AC48969BD3458AFE9F5, 01753BDD47F3F9BC0E0D23A069B9C56D4AE6A6B6295BC19B95AE245D25B12744 ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
 17:08:55.0709 0x2e08  1394ohci - ok
 17:08:55.0768 0x2e08  [ CEA80C80BED809AA0DA6FEBC04733349, AE69C142DC2210A4AE657C23CEA4A6E7CB32C4F4EBA039414123CAC52157509B ] ACPI            C:\Windows\system32\drivers\ACPI.sys
 17:08:55.0799 0x2e08  ACPI - ok
 17:08:55.0815 0x2e08  [ 1EFBC664ABFF416D1D07DB115DCB264F, BF94D069D692140B792DBF4FD3CB0127D27C26CC5BFB6B0C28A8B6346767EE58 ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
 17:08:55.0908 0x2e08  AcpiPmi - ok
 17:08:56.0033 0x2e08  [ 013697369EAFFA675D0671607F036020, 65611C775AC4681E46A6565E5A7A4FF3363C66EBDC98C4C58AFB365D40BE23B6 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
 17:08:56.0049 0x2e08  AdobeARMservice - ok
 17:08:56.0142 0x2e08  [ 368290D0A612D62DA6F3D798B1BB8FE7, D573BF8543F37BC51B88A2473EDFD28AFBCCC446E8CADD54A90FA48D8739D222 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
 17:08:56.0167 0x2e08  AdobeFlashPlayerUpdateSvc - ok
 17:08:56.0201 0x2e08  [ 21E785EBD7DC90A06391141AAC7892FB, A2D3D764C5E6DC0AD5AAF48485FFB8B121D2A40DC08ECF2D2CB92278A1002B25 ] adp94xx         C:\Windows\system32\DRIVERS\adp94xx.sys
 17:08:56.0233 0x2e08  adp94xx - ok
 17:08:56.0279 0x2e08  [ 0C676BC278D5B59FF5ABD57BBE9123F2, 339E8A433D186BAAB6FCB44C82CC9FB6FCD63C87981449494CBEB2072CB6B7BB ] adpahci         C:\Windows\system32\DRIVERS\adpahci.sys
 17:08:56.0295 0x2e08  adpahci - ok
 17:08:56.0326 0x2e08  [ 7C7B5EE4B7B822EC85321FE23A27DB33, A934AFB71D439555E6376DA9B34F82E8D39A300A4547BE9AC9311F6A3C36270C ] adpu320         C:\Windows\system32\DRIVERS\adpu320.sys
 17:08:56.0342 0x2e08  adpu320 - ok
 17:08:56.0373 0x2e08  [ 12E6A172D72AFC626727B8635DD17E39, 33B3D109C39DF6EA86AFC3C89A93657906E981D3D22FF854401BC7326990CC08 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
 17:08:56.0451 0x2e08  AeLookupSvc - ok
 17:08:56.0482 0x2e08  [ D0B388DA1D111A34366E04EB4A5DD156, 60D226F027F4025CC032CAFF73A80FAFB5FA75445654FDCF80CA8C0419C6E938 ] AFD             C:\Windows\system32\drivers\afd.sys
 17:08:56.0545 0x2e08  AFD - ok
 17:08:56.0576 0x2e08  [ 507812C3054C21CEF746B6EE3D04DD6E, D7E59350AC338AD229E3D10C76E32AE16D120311B263714A9CD94AB538633B0E ] agp440          C:\Windows\system32\drivers\agp440.sys
 17:08:56.0591 0x2e08  agp440 - ok
 17:08:56.0623 0x2e08  [ 8B30250D573A8F6B4BD23195160D8707, 64EC289AFCD63D84EAFD9D81C50D0A77BCC79A1EFF32C50B2776BB0C0151757D ] aic78xx         C:\Windows\system32\DRIVERS\djsvs.sys
 17:08:56.0638 0x2e08  aic78xx - ok
 17:08:56.0669 0x2e08  [ 18A54E132947CD98FEA9ACCC57F98F13, 9D39AF972785E49F0DD12C4BAEF39A79CD69F098886BF152AF1B7CCE2E902115 ] ALG             C:\Windows\System32\alg.exe
 17:08:56.0739 0x2e08  ALG - ok
 17:08:56.0767 0x2e08  [ 0D40BCF52EA90FC7DF2AEAB6503DEA44, 1D1AA8F50935D976C29DE7A84708CADBBBDD936F0DD2C059E820F0D21367B3B6 ] aliide          C:\Windows\system32\drivers\aliide.sys
 17:08:56.0784 0x2e08  aliide - ok
 17:08:56.0799 0x2e08  [ 3C6600A0696E90A463771C7422E23AB5, 370B33DC1C25B981628A318BAE434A78A5F0A0DA93C2896DC7A3D7B87AE1A5E7 ] amdagp          C:\Windows\system32\drivers\amdagp.sys
 17:08:56.0817 0x2e08  amdagp - ok
 17:08:56.0845 0x2e08  [ CD5914170297126B6266860198D1D4F0, 2239FCBD1A7EC27CE4F10DA36AE6BD6CCB87E5128C82CA71B84BFE5AF5602A60 ] amdide          C:\Windows\system32\drivers\amdide.sys
 17:08:56.0862 0x2e08  amdide - ok
 17:08:56.0882 0x2e08  [ 00DDA200D71BAC534BF56A9DB5DFD666, CA316B1FFD85BA1CF8664B3229DA1F238A5341E016059F7ED89702324CFD124B ] AmdK8           C:\Windows\system32\DRIVERS\amdk8.sys
 17:08:56.0948 0x2e08  AmdK8 - ok
 17:08:56.0955 0x2e08  [ 3CBF30F5370FDA40DD3E87DF38EA53B6, 7EACF1743367BE805357B6FD10F8F99E9B1C301FE3782D77719347B13DFA65EC ] AmdPPM          C:\Windows\system32\DRIVERS\amdppm.sys
 17:08:57.0003 0x2e08  AmdPPM - ok
 17:08:57.0036 0x2e08  [ D320BF87125326F996D4904FE24300FC, F767D8C5C58D57202905D829F7AE1B1FF33937F407FDCE4C90E32A6638F27416 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
 17:08:57.0053 0x2e08  amdsata - ok
 17:08:57.0068 0x2e08  [ EA43AF0C423FF267355F74E7A53BDABA, 3F1335909AB0281A2FBDD7AD90E18309E091656CD32B48894B992789D8C61DB4 ] amdsbs          C:\Windows\system32\DRIVERS\amdsbs.sys
 17:08:57.0084 0x2e08  amdsbs - ok
 17:08:57.0100 0x2e08  [ 46387FB17B086D16DEA267D5BE23A2F2, 8B8AC61B91F154B4EB5CC6DECB5FCCEBA8B42EFE94859947136AD06681EA8ED0 ] amdxata         C:\Windows\system32\drivers\amdxata.sys
 17:08:57.0115 0x2e08  amdxata - ok
 17:08:57.0131 0x2e08  Amdxidtun - ok
 17:08:57.0256 0x2e08  [ 9FE1AC875A7AD7B7FF28FEC8B754968D, EEE04D4073E49332C85028B62E8A035EAA2284526A3F3820133492C8F8CBA3D5 ] AntiVirMailService C:\Program Files\Avira\AntiVir Desktop\avmailc7.exe
 17:08:57.0318 0x2e08  AntiVirMailService - ok
 17:08:57.0396 0x2e08  [ E20B4F23EB153635D67944F63454EC84, FEE76A74767CDB33415C64F08AE1FF248F505AF22C1F1BA1EBB5CC6A75E3926F ] AntiVirSchedulerService C:\Program Files\Avira\AntiVir Desktop\sched.exe
 17:08:57.0427 0x2e08  AntiVirSchedulerService - ok
 17:08:57.0490 0x2e08  [ E20B4F23EB153635D67944F63454EC84, FEE76A74767CDB33415C64F08AE1FF248F505AF22C1F1BA1EBB5CC6A75E3926F ] AntiVirService  C:\Program Files\Avira\AntiVir Desktop\avguard.exe
 17:08:57.0505 0x2e08  AntiVirService - ok
 17:08:57.0599 0x2e08  [ D9A8EE3F4A1E604B9315B34A5AA4569E, 287BA8FA1949646E03D39F36F50C016251358A8A454EE19D249E76A723F1455E ] AntiVirWebService C:\Program Files\Avira\AntiVir Desktop\avwebg7.exe
 17:08:57.0677 0x2e08  AntiVirWebService - ok
 17:08:57.0724 0x2e08  [ C532028F7EFF8831BE6B5E3C417E07FA, 9D3C91F4DE0456F2BD4BAB044A3281F895A8EBF259F15E3BA6299965F5B8ABED ] AppID           C:\Windows\system32\drivers\appid.sys
 17:08:57.0770 0x2e08  AppID - ok
 17:08:57.0786 0x2e08  [ 7A152F43A6B25D63D1279511258FE381, 416B592DAB9ECA4AEBD336F35AC622FA240E229F31BFB52E6084BAA48CC6F397 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
 17:08:57.0833 0x2e08  AppIDSvc - ok
 17:08:57.0864 0x2e08  [ 133A7896E643D139443B47FDBFA327C7, 371FC602B531DF1EFDCEEC3A2F5497A0D0BE7F558B0583F572862C69A65BD454 ] Appinfo         C:\Windows\System32\appinfo.dll
 17:08:57.0926 0x2e08  Appinfo - ok
 17:08:57.0958 0x2e08  [ A45D184DF6A8803DA13A0B329517A64A, C1D16B60A6D69689AE951DC3D6884ED2E233D144B3FC0B86BC1C50AAAAA01ED2 ] AppMgmt         C:\Windows\System32\appmgmts.dll
 17:08:58.0020 0x2e08  AppMgmt - ok
 17:08:58.0051 0x2e08  [ 2932004F49677BD84DBC72EDB754FFB3, 73F84582244AC53994A2F4499A119B4A84A6BF7FD3046C29A8080C763DE540B8 ] arc             C:\Windows\system32\DRIVERS\arc.sys
 17:08:58.0082 0x2e08  arc - ok
 17:08:58.0098 0x2e08  [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7, F7C9C3B4F2C816F57A43B2921672858C291054220BADE291044343778216F6BA ] arcsas          C:\Windows\system32\DRIVERS\arcsas.sys
 17:08:58.0114 0x2e08  arcsas - ok
 17:08:58.0223 0x2e08  [ 9D768C43FEF254DD50B1DBF8AD5C4C0B, A50854EA5C08605133B8BB4DFDC6090357C5665314AA72E0BFA1E07D4E451F09 ] aspnet_state    C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
 17:08:58.0254 0x2e08  aspnet_state - ok
 17:08:58.0285 0x2e08  [ ADD2ADE1C2B285AB8378D2DAAF991481, 7965A705F37924C0EC7A934E64E89C5DF4069816E2EEA3509E0AC90F78910519 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
 17:08:58.0439 0x2e08  AsyncMac - ok
 17:08:58.0468 0x2e08  [ 338C86357871C167A96AB976519BF59E, F28CC534523D1701B0552F5D7E18E88369C4218BDB1F69110C3E31D395884AD6 ] atapi           C:\Windows\system32\drivers\atapi.sys
 17:08:58.0484 0x2e08  atapi - ok
 17:08:58.0515 0x2e08  [ C1619A13B10CAC5038BF7129F57D8DE3, 9F71EA6C844650658938E68CCC1383F92D37C68E46E08461A8351491185BA791 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
 17:08:58.0609 0x2e08  AudioEndpointBuilder - ok
 17:08:58.0640 0x2e08  [ C1619A13B10CAC5038BF7129F57D8DE3, 9F71EA6C844650658938E68CCC1383F92D37C68E46E08461A8351491185BA791 ] Audiosrv        C:\Windows\System32\Audiosrv.dll
 17:08:58.0671 0x2e08  Audiosrv - ok
 17:08:58.0734 0x2e08  [ 0FFC36573D7541155F84AC8F8F9D87A6, 50CE44B544CF365C4E99133C69582154C58DEB263892E3EF02C9886C8D652F60 ] avgntflt        C:\Windows\system32\DRIVERS\avgntflt.sys
 17:08:58.0749 0x2e08  avgntflt - ok
 17:08:58.0796 0x2e08  [ 06AEB065AC25A2CFF80E1DF0303EC55B, EE913D669741B3F844AFEEFCF232D2D2C94081BCB39F79D81D7A7133DBC57252 ] avgtp           C:\Windows\system32\drivers\avgtpx86.sys
 17:08:58.0812 0x2e08  avgtp - ok
 17:08:58.0843 0x2e08  [ B9D3418110A6B4EAADCB2BD1A8CEC617, 2252E518FB0A69699ECF7A940A20E9D77822F7FF7CE14FE5E30E4DDB34546D56 ] avipbb          C:\Windows\system32\DRIVERS\avipbb.sys
 17:08:58.0858 0x2e08  avipbb - ok
 17:08:58.0890 0x2e08  [ F80F5DCA8A5D9D93CC5BE933D20CAF05, 2AFBB2D62127FACBCABBB3E78F3568A6BA016ED4A97A1490BAA29A1EFB7A4408 ] avkmgr          C:\Windows\system32\DRIVERS\avkmgr.sys
 17:08:58.0905 0x2e08  avkmgr - ok
 17:08:58.0999 0x2e08  [ 3303FB85532093FC6723632B5947E8C4, F8301069A8EAD7303CAE5B7CAE3F119747E7B7B4402178018EB5254087238A42 ] avnetflt        C:\Windows\system32\DRIVERS\avnetflt.sys
 17:08:59.0014 0x2e08  avnetflt - ok
 17:08:59.0046 0x2e08  [ 6E30D02AAC9CAC84F421622E3A2F6178, 229DC527C1D6C778BCA2C855A2A6F6D2C4B0F4F6DE56C886B3AAD26E3347952C ] AxInstSV        C:\Windows\System32\AxInstSV.dll
 17:08:59.0139 0x2e08  AxInstSV - ok
 17:08:59.0190 0x2e08  [ 1A231ABEC60FD316EC54C66715543CEC, 09E2897BA80737997A286EA5408C03DD3CC0EBACD24CB391C2455B6D4BE7D67E ] b06bdrv         C:\Windows\system32\DRIVERS\bxvbdx.sys
 17:08:59.0259 0x2e08  b06bdrv - ok
 17:08:59.0275 0x2e08  [ BD8869EB9CDE6BBE4508D869929869EE, F4363A12EBFDBB89C69FD59B22F9EE05BADA07D477A1DF2DE01F59D6EE496543 ] b57nd60x        C:\Windows\system32\DRIVERS\b57nd60x.sys
 17:08:59.0337 0x2e08  b57nd60x - ok
 17:08:59.0384 0x2e08  [ EE1E9C3BB8228AE423DD38DB69128E71, ED54FD9795F3A4D32F02BED6052AD9404409A05644CDBEBFF19C662D104DA95A ] BDESVC          C:\Windows\System32\bdesvc.dll
 17:08:59.0446 0x2e08  BDESVC - ok
 17:08:59.0462 0x2e08  [ 505506526A9D467307B3C393DEDAF858, 8AD6F1492E357F57CF42261497BA29122045D4FC0DCC9669AA5AC9B2A4BABFA4 ] Beep            C:\Windows\system32\drivers\Beep.sys
 17:08:59.0509 0x2e08  Beep - ok
 17:08:59.0587 0x2e08  [ 1E2BAC209D184BB851E1A187D8A29136, 53933C938DA5126986FFF2918C1F522ABE93ABAB460AE32E4453161C2F7B68DF ] BFE             C:\Windows\System32\bfe.dll
 17:08:59.0649 0x2e08  BFE - ok
 17:08:59.0720 0x2e08  [ E585445D5021971FAE10393F0F1C3961, 178C008A9A0A6BFDA65EB0B98C510271360AD4474F22F13594F5EB60AA4E1CF5 ] BITS            C:\Windows\System32\qmgr.dll
 17:08:59.0878 0x2e08  BITS - ok
 17:08:59.0894 0x2e08  [ 2287078ED48FCFC477B05B20CF38F36F, 55BCA6174E6034A8D61CBE4126B2F1989F6052BFA624BEA9C0A0A664AEC74521 ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
 17:08:59.0925 0x2e08  blbdrive - ok
 17:08:59.0956 0x2e08  [ 8F2DA3028D5FCBD1A060A3DE64CD6506, E234672E9CFE1A95AD2E78E306E41E010B870221E6EBBC0E2B0BE2FA5CE0CD76 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
 17:09:00.0030 0x2e08  bowser - ok
 17:09:00.0062 0x2e08  [ 9F9ACC7F7CCDE8A15C282D3F88B43309, A9131334BD9CF8FD60BA9D54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo        C:\Windows\system32\DRIVERS\BrFiltLo.sys
 17:09:00.0155 0x2e08  BrFiltLo - ok
 17:09:00.0155 0x2e08  [ 56801AD62213A41F6497F96DEE83755A, 0DEB8318FB47DF6473C171C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp        C:\Windows\system32\DRIVERS\BrFiltUp.sys
 17:09:00.0202 0x2e08  BrFiltUp - ok
 17:09:00.0233 0x2e08  [ 77361D72A04F18809D0EFB6CCEB74D4B, 55E7DB65BB29FF421F138CDFF05E5ECFFC7C8862FAA68F6179A3BA9D6B69AE64 ] Bridge          C:\Windows\system32\DRIVERS\bridge.sys
 17:09:00.0280 0x2e08  Bridge - ok
 17:09:00.0296 0x2e08  [ 77361D72A04F18809D0EFB6CCEB74D4B, 55E7DB65BB29FF421F138CDFF05E5ECFFC7C8862FAA68F6179A3BA9D6B69AE64 ] BridgeMP        C:\Windows\system32\DRIVERS\bridge.sys
 17:09:00.0327 0x2e08  BridgeMP - ok
 17:09:00.0374 0x2e08  [ 3DAA727B5B0A45039B0E1C9A211B8400, 903B51E75F0C503A0E255120F53BF51B047B219FEC1E15F2F1D02DDD562FC73B ] Browser         C:\Windows\System32\browser.dll
 17:09:00.0405 0x2e08  Browser - ok
 17:09:00.0420 0x2e08  [ 845B8CE732E67F3B4133164868C666EA, 9309B094CD9B5EBC46295A5EB806BED472C3CEDE3B5F6F497EBDABA496A2A27F ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
 17:09:00.0498 0x2e08  Brserid - ok
 17:09:00.0514 0x2e08  [ 203F0B1E73ADADBBB7B7B1FABD901F6B, 782FA7B26940FE479C49C9BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
 17:09:00.0545 0x2e08  BrSerWdm - ok
 17:09:00.0576 0x2e08  [ BD456606156BA17E60A04E18016AE54B, DFBDC9DA6A3EA40BACFF204BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
 17:09:00.0608 0x2e08  BrUsbMdm - ok
 17:09:00.0623 0x2e08  [ AF72ED54503F717A43268B3CC5FAEC2E, 4A638669B0C30B1BDED242A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
 17:09:00.0670 0x2e08  BrUsbSer - ok
 17:09:00.0717 0x2e08  [ 2865A5C8E98C70C605F417908CEBB3A4, B1C5AC228BD7072AF8668C009C6CDC13EE9FCB9481F57524300F37C40BF1E935 ] BthEnum         C:\Windows\system32\drivers\BthEnum.sys
 17:09:00.0779 0x2e08  BthEnum - ok
 17:09:00.0795 0x2e08  [ ED3DF7C56CE0084EB2034432FC56565A, B5B75E002E7BC0209582C635CCCA26DB569BDB23C33A126634E00C6434BF941B ] BTHMODEM        C:\Windows\system32\DRIVERS\bthmodem.sys
 17:09:00.0842 0x2e08  BTHMODEM - ok
 17:09:00.0888 0x2e08  [ AD1872E5829E8A2C3B5B4B641C3EAB0E, 8C2DBCAC08DDB41E2B44E257C55FA2D0272959B308EFF9EAF5FF9AE1E4A0AA39 ] BthPan          C:\Windows\system32\DRIVERS\bthpan.sys
 17:09:00.0935 0x2e08  BthPan - ok
 17:09:00.0984 0x2e08  [ 1153DE2E4F5941E10C399CB5592F78A1, 2B88AF246D62F72FA9F5B921B0375AE59A0F263672472D5EC9FDB5CA5EF51C31 ] BTHPORT         C:\Windows\System32\Drivers\BTHport.sys
 17:09:01.0046 0x2e08  BTHPORT - ok
 17:09:01.0093 0x2e08  [ 1DF19C96EEF6C29D1C3E1A8678E07190, 1F4BB161FF3A1C5B1465BB52F3520FEDB7ACB1FAA132466F07D16DB8E394AEA5 ] bthserv         C:\Windows\system32\bthserv.dll
 17:09:01.0140 0x2e08  bthserv - ok
 17:09:01.0186 0x2e08  [ C81E9413A25A439F436B1D4B6A0CF9E9, A4C290163207AED22C70C7F90B28F6FC24892889643D60D915059405AC5A4A72 ] BTHUSB          C:\Windows\System32\Drivers\BTHUSB.sys
 17:09:01.0202 0x2e08  BTHUSB - ok
 17:09:01.0233 0x2e08  [ 77EA11B065E0A8AB902D78145CA51E10, 160EB3BBE9E5F3CC4A02584E6F2576A812C7565B940D74838B983F1EE51FA73A ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
 17:09:01.0280 0x2e08  cdfs - ok
 17:09:01.0326 0x2e08  [ BE167ED0FDB9C1FA1133953C18D5A6C9, E26A851CA13E7300F977E5B20FA5D25FD0E1442AB6AD5DB58BBDB2DAAD87027C ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
 17:09:01.0373 0x2e08  cdrom - ok
 17:09:01.0404 0x2e08  [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] CertPropSvc     C:\Windows\System32\certprop.dll
 17:09:01.0451 0x2e08  CertPropSvc - ok
 17:09:01.0498 0x2e08  [ 3FE3FE94A34DF6FB06E6418D0F6A0060, 6B3A2A26609A75B690D4C0B3059E40822F3B3DB08943F58EC496BABDA7D0A735 ] circlass        C:\Windows\system32\DRIVERS\circlass.sys
 17:09:01.0545 0x2e08  circlass - ok
 17:09:01.0576 0x2e08  [ 33A60554882FDF59CDA3E1806370BBA1, 3DE5451E1CB84AAEBD03F54BEFC670C401447B4881A8B022748B6ECF0F500F01 ] CLFS            C:\Windows\system32\CLFS.sys
 17:09:01.0592 0x2e08  CLFS - ok
 17:09:01.0654 0x2e08  [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
 17:09:01.0670 0x2e08  clr_optimization_v2.0.50727_32 - ok
 17:09:01.0725 0x2e08  [ E87213F37A13E2B54391E40934F071D0, 7EB221127EFB5BF158FB03D18EFDA2C55FB6CE3D1A1FE69C01D70DBED02C87E5 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
 17:09:01.0747 0x2e08  clr_optimization_v4.0.30319_32 - ok
 17:09:01.0762 0x2e08  [ DEA805815E587DAD1DD2C502220B5616, 2D6A7668C95352B818F5EC59FF462894935833D34190257DA9CAC7E67FD3631C ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
 17:09:01.0799 0x2e08  CmBatt - ok
 17:09:01.0833 0x2e08  [ C537B1DB64D495B9B4717B4D6D9EDBF2, 400EEFE662DE117C9CC956E4CBD5E98F28F962E7447CD93E8A78FDD8CA39EB4B ] cmdide          C:\Windows\system32\drivers\cmdide.sys
 17:09:01.0849 0x2e08  cmdide - ok
 17:09:01.0911 0x2e08  [ 3051724F223EA48968B19567DE2A81F4, DCC27DE1B2B35866FC6DBDE95A368E7D0D346B6C3F31D0BACA63DD39B0A8874E ] CNG             C:\Windows\system32\Drivers\cng.sys
 17:09:01.0958 0x2e08  CNG - ok
 17:09:01.0974 0x2e08  [ A6023D3823C37043986713F118A89BEE, FAC239A7FA6251C7EDFFA34B4BAE3910B8BC0BD4A3574B6DB6931A8D691E207B ] Compbatt        C:\Windows\system32\DRIVERS\compbatt.sys
 17:09:01.0989 0x2e08  Compbatt - ok
 17:09:02.0021 0x2e08  [ CBE8C58A8579CFE5FCCF809E6F114E89, AC083A1C649EBA18C59FCC1772D0784B10E2B8C63094E3C14388E147DBC3F6DF ] CompositeBus    C:\Windows\system32\drivers\CompositeBus.sys
 17:09:02.0052 0x2e08  CompositeBus - ok
 17:09:02.0052 0x2e08  COMSysApp - ok
 17:09:02.0083 0x2e08  [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1, 6FC323217D82EF661BA0E3F949B61B05BB5235D1A69C81D24876C2153FAECEF6 ] crcdisk         C:\Windows\system32\DRIVERS\crcdisk.sys
 17:09:02.0114 0x2e08  crcdisk - ok
 17:09:02.0161 0x2e08  [ 33F67BBCC3C0499D3F3382473114CFA8, FDDCC41CE005B7C1BEBB6F4ACA9A3F10E5972792ADFD7D294E70A0B781460981 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
 17:09:02.0192 0x2e08  CryptSvc - ok
 17:09:02.0239 0x2e08  [ 3C2177A897B4CA2788C6FB0C3FD81D4B, 98575CBD0664586E6211D02E71BDD52CBAA149A1658573550E29E74E5F7B1553 ] CSC             C:\Windows\system32\drivers\csc.sys
 17:09:02.0321 0x2e08  CSC - ok
 17:09:02.0359 0x2e08  [ 15F93B37F6801943360D9EB42485D5D3, DD6838C6496CB15F8BB57A6596F6A64ADD9C36B09F062295699131232712B558 ] CscService      C:\Windows\System32\cscsvc.dll
 17:09:02.0423 0x2e08  CscService - ok
 17:09:02.0490 0x2e08  [ 90F8539FA0DE4AAFE4FDBE7F95D6A512, 8F788EB5788CC04D53728FADF72114E0A12CC6F66B6A84EA7C7293722AC76137 ] dc3d            C:\Windows\system32\DRIVERS\dc3d.sys
 17:09:02.0506 0x2e08  dc3d - ok
 17:09:02.0545 0x2e08  [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] DcomLaunch      C:\Windows\system32\rpcss.dll
 17:09:02.0594 0x2e08  DcomLaunch - ok
 17:09:02.0618 0x2e08  [ 8D6E10A2D9A5EED59562D9B82CF804E1, 888F9650F4E872BA8F4E0C27E38A6672A561042B17EBA40E306A22357965B0AD ] defragsvc       C:\Windows\System32\defragsvc.dll
 17:09:02.0681 0x2e08  defragsvc - ok
 17:09:02.0712 0x2e08  [ F024449C97EC1E464AAFFDA18593DB88, 7EF1E241892E098A472BCA14C724DFF1AACCF190954AF1C4A38B6D542CC74BD2 ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
 17:09:02.0774 0x2e08  DfsC - ok
 17:09:02.0805 0x2e08  [ E9E01EB683C132F7FA27CD607B8A2B63, 4D9037B458C522874619143A4176BCED42472C68933E6E83D37B67242706F3C4 ] Dhcp            C:\Windows\system32\dhcpcore.dll
 17:09:02.0837 0x2e08  Dhcp - ok
 17:09:02.0946 0x2e08  [ 0A3386E3CF9C5D089D695AC5A35F4C6F, D610071493EB95FCE39E24C457A0B5BBA131193159E43FDC1E8EDABB9C7AB81A ] DiagTrack       C:\Windows\system32\diagtrack.dll
 17:09:03.0039 0x2e08  DiagTrack - ok
 17:09:03.0071 0x2e08  [ 1A050B0274BFB3890703D490F330C0DA, 79D74F4679A2EE040FAAF4D0392A9311239A10A5F8A5CCB48656C6F89B6D62FB ] discache        C:\Windows\system32\drivers\discache.sys
 17:09:03.0117 0x2e08  discache - ok
 17:09:03.0133 0x2e08  [ 565003F326F99802E68CA78F2A68E9FF, ABC42B24DBA4FFC411120E09278EF26AF56CCAB463B69B4BD6C530B4A07063D2 ] Disk            C:\Windows\system32\DRIVERS\disk.sys
 17:09:03.0149 0x2e08  Disk - ok
 17:09:03.0180 0x2e08  [ 33EF4861F19A0736B11314AAD9AE28D0, 4C4B84365D85758E3263B88F157D8B086B392C6F1EA5F0F3DB6BF87EF90248EC ] Dnscache        C:\Windows\System32\dnsrslvr.dll
 17:09:03.0242 0x2e08  Dnscache - ok
 17:09:03.0273 0x2e08  [ 366BA8FB4B7BB7435E3B9EACB3843F67, 65B7C61ACF34F1F0149045AA9E09A3F917A927963237A385A914D0B80551DC31 ] dot3svc         C:\Windows\System32\dot3svc.dll
 17:09:03.0336 0x2e08  dot3svc - ok
 17:09:03.0367 0x2e08  [ 8EC04CA86F1D68DA9E11952EB85973D6, 2E3FBC2D683D1274E8BC45EEEA87D43B77EDDCAAF0D453296D9FDA6B9D717071 ] DPS             C:\Windows\system32\dps.dll
 17:09:03.0429 0x2e08  DPS - ok
 17:09:03.0476 0x2e08  [ B918E7C5F9BF77202F89E1A9539F2EB4, C589A37DE50BBEF22E2DAA9682EA43147F614AA1AF7DAAA942BA5FC192313A0B ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
 17:09:03.0539 0x2e08  drmkaud - ok
 17:09:03.0601 0x2e08  [ 3583A5A8CC2E682BFFBD4630D0FEC08B, FD0F184B358FCECAA763444B414074BEF4E871EB7527D88385519FC158435C72 ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
 17:09:03.0648 0x2e08  DXGKrnl - ok
 17:09:03.0679 0x2e08  [ 8600142FA91C1B96367D3300AD0F3F3A, 5713625E27DF11FAAFDA7AC79899A6AD813166E167088FA990EC5DE87DBE83DF ] EapHost         C:\Windows\System32\eapsvc.dll
 17:09:03.0741 0x2e08  EapHost - ok
 17:09:03.0882 0x2e08  [ 024E1B5CAC09731E4D868E64DBFB4AB0, AB0826A74BBEE5B7A1B035861B665C79BC98305CFC7D82BEF420558FBD3EE994 ] ebdrv           C:\Windows\system32\DRIVERS\evbdx.sys
 17:09:04.0069 0x2e08  ebdrv - ok
 17:09:04.0178 0x2e08  [ 88142648ED929E6D2178CC3B8C13C00F, 7E6B6B2CF61C56FBF8F2A96BDA2E9506467A9A883BFD3BEA78A4F500851E76DB ] EFS             C:\Windows\System32\lsass.exe
 17:09:04.0241 0x2e08  EFS - ok
 17:09:04.0319 0x2e08  [ A8C362018EFC87BEB013EE28F29C0863, 07971C681FBD391C0BA0172618AF8AD77520182207F1C57F134B34D6A113857F ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
 17:09:04.0397 0x2e08  ehRecvr - ok
 17:09:04.0428 0x2e08  [ D389BFF34F80CAEDE417BF9D1507996A, 12859B9925D7A4631DE61A820922F43F56ED23C2AF014CBF36322685E5CF641E ] ehSched         C:\Windows\ehome\ehsched.exe
 17:09:04.0490 0x2e08  ehSched - ok
 17:09:04.0537 0x2e08  [ CE37E3D51912E59C80C6D84337C0B4CD, CE15CFFCF1D099DC6B9423746DDADCAE6BAFFCF037DD9F3FF154A8E69022A861 ] ElbyCDFL        C:\Windows\system32\Drivers\ElbyCDFL.sys
 17:09:04.0568 0x2e08  ElbyCDFL - ok
 17:09:04.0631 0x2e08  [ 178CC9403816C082D22A1D47FA1F9C85, B9AD7199C00D477EBBC15F2DCF78A6BA60C2670DAD0EF0994CEBCCB19111F890 ] ElbyCDIO        C:\Windows\system32\Drivers\ElbyCDIO.sys
 17:09:04.0662 0x2e08  ElbyCDIO - ok
 17:09:04.0693 0x2e08  [ 0ED67910C8C326796FAA00B2BF6D9D3C, 97FAA7627A162B0AEC15545E0165D13355D535B4157604BB87F8EEB72ECD24A8 ] elxstor         C:\Windows\system32\DRIVERS\elxstor.sys
 17:09:04.0740 0x2e08  elxstor - ok
 17:09:04.0771 0x2e08  [ 8FC3208352DD3912C94367A206AB3F11, 69B65C12BDADD4B730508674B1B77C5496612B4ACCC447DB9AFE49ADEA8CBF02 ] ErrDev          C:\Windows\system32\drivers\errdev.sys
 17:09:04.0802 0x2e08  ErrDev - ok
 17:09:04.0865 0x2e08  [ F6916EFC29D9953D5D0DF06882AE8E16, ED41893960018D5EC2F7829B1DE4B6967D9FD074D60B11B9EB854E3E0948EC24 ] EventSystem     C:\Windows\system32\es.dll
 17:09:04.0911 0x2e08  EventSystem - ok
 17:09:04.0943 0x2e08  [ 2DC9108D74081149CC8B651D3A26207F, 75CB47923A867DDAC512701CE71DFCFC340FC3A2E27F4255D0836A1FBC463176 ] exfat           C:\Windows\system32\drivers\exfat.sys
 17:09:04.0974 0x2e08  exfat - ok
 17:09:05.0005 0x2e08  [ 7E0AB74553476622FB6AE36F73D97D35, 41463A255FDA1D550B3385EC7C73ABC343B1BBBE9CEE4DF9F2A8B3E7338C4947 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
 17:09:05.0052 0x2e08  fastfat - ok
 17:09:05.0114 0x2e08  [ 967EA5B213E9984CBE270205DF37755B, 43153E23210B03FAE16897D62D55B8742F834EDC695F8401EAB5DE307F62602D ] Fax             C:\Windows\system32\fxssvc.exe
 17:09:05.0177 0x2e08  Fax - ok
 17:09:05.0192 0x2e08  [ E817A017F82DF2A1F8CFDBDA29388B29, 4CC9320A21E6FEA2D16C48D6BEA14391B695BD541A3C5FDDAEEE086A414FC837 ] fdc             C:\Windows\system32\DRIVERS\fdc.sys
 17:09:05.0223 0x2e08  fdc - ok
 17:09:05.0270 0x2e08  [ F3222C893BD2F5821A0179E5C71E88FB, A85B947249DBB986358CCD4B158DD58A9301F074F3C6CCCDEF2D01F432E59D1B ] fdPHost         C:\Windows\system32\fdPHost.dll
 17:09:05.0317 0x2e08  fdPHost - ok
 17:09:05.0333 0x2e08  [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B, 0E76C29D2A974A3F2FBFCB63D066D4136B78E02F6B1F579B1865CA7A76193987 ] FDResPub        C:\Windows\system32\fdrespub.dll
 17:09:05.0395 0x2e08  FDResPub - ok
 17:09:05.0411 0x2e08  [ 6CF00369C97F3CF563BE99BE983D13D8, F65F35324A2FB9DFB533B1C4D089D990CC242218FE83414329D07B786D8EFF33 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
 17:09:05.0426 0x2e08  FileInfo - ok
 17:09:05.0442 0x2e08  [ 42C51DC94C91DA21CB9196EB64C45DB9, 388C68D12ECC8FFE3116FEAAF4DB7B80CF4A3F97E935788DD21C6ADE2369F635 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
 17:09:05.0489 0x2e08  Filetrace - ok
 17:09:05.0520 0x2e08  [ 87907AA70CB3C56600F1C2FB8841579B, CA1CD82A1CD453617CE5EA431A1836997F14E3580554E8A516D9FE1E9926D979 ] flpydisk        C:\Windows\system32\DRIVERS\flpydisk.sys
 17:09:05.0551 0x2e08  flpydisk - ok
 17:09:05.0598 0x2e08  [ 7520EC808E0C35E0EE6F841294316653, 6EC65511B4838A7172A8F89E35C2F9DF4F0BFCE3BE12EDA790F3EB567102FF67 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
 17:09:05.0613 0x2e08  FltMgr - ok
 17:09:05.0691 0x2e08  [ 37DE123FE4276D8EC7F3C5B10C236238, 93CA47B9A96D904DD177FC0E04DECDF13756C8FA3C7613913DB4BF29A70ECE96 ] FontCache       C:\Windows\system32\FntCache.dll
 17:09:05.0785 0x2e08  FontCache - ok
 17:09:05.0847 0x2e08  [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F, DBED26852B99B362152DA9CD4F31A1883EF6F9B496F3CF3772A197BA72DB61DA ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
 17:09:05.0863 0x2e08  FontCache3.0.0.0 - ok
 17:09:05.0894 0x2e08  [ 1A16B57943853E598CFF37FE2B8CBF1D, 87609F46F3B8123552141FD70866E895220B1BBD92BC2B580CAF49201AA0197E ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
 17:09:05.0925 0x2e08  FsDepends - ok
 17:09:05.0988 0x2e08  [ 2B3BF55BA74EB8118F67AB2B450B8EA9, 6D09D75105FE374E0865A2E5C1F9460AF938B6F62604F0C97B31ED9ADD4AFF4E ] fssfltr         C:\Windows\system32\DRIVERS\fssfltr.sys
 17:09:06.0003 0x2e08  fssfltr - ok
 17:09:06.0159 0x2e08  [ B6AB40819ECEC4BA07266EC0EBBC85A7, 71D385043720B622305FD64BD1187C6FFD7191C30794F95629CF6BFDC0A25BA2 ] fsssvc          C:\Program Files\Windows Live\Family Safety\fsssvc.exe
 17:09:06.0253 0x2e08  fsssvc - ok
 17:09:06.0284 0x2e08  [ 7DAE5EBCC80E45D3253F4923DC424D05, 8A2C4D5591509B0B0A44583520617A9AE34F32BB6E68A012A7D7870ED24F703A ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
 17:09:06.0300 0x2e08  Fs_Rec - ok
 17:09:06.0347 0x2e08  [ E306A24D9694C724FA2491278BF50FDB, 1D246B9C28550640EACBF8CF9DC980FD75106B92832D392FEBEF0C7012353091 ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
 17:09:06.0362 0x2e08  fvevol - ok
 17:09:06.0393 0x2e08  [ 65EE0C7A58B65E74AE05637418153938, 0E1A398ADD8411AF4CCC3344D67BE1B261320C58328BD5C5855A357476FAEBEF ] gagp30kx        C:\Windows\system32\DRIVERS\gagp30kx.sys
 17:09:06.0409 0x2e08  gagp30kx - ok
 17:09:06.0440 0x2e08  [ 007AEA2E06E7CEF7372E40C277163959, 805906ADC7C5473B767932A552FEC7500D0F3F7CB45D8DEFE6A1567F2038EF88 ] ggflt           C:\Windows\system32\DRIVERS\ggflt.sys
 17:09:06.0456 0x2e08  ggflt - ok
 17:09:06.0471 0x2e08  [ C73DE35960CA75C5AB4AE636B127C64E, 0C22EECD64CC06AB820ED6A2E76FBC7AB072379FD14837CF95BA3EF105ABB745 ] ggsemc          C:\Windows\system32\DRIVERS\ggsemc.sys
 17:09:06.0487 0x2e08  ggsemc - ok
 17:09:06.0549 0x2e08  [ E897EAF5ED6BA41E081060C9B447A673, A428DC68516F19C6C53A8B62E4BDB2587E70FB751B9D77700B6B147D347DA157 ] gpsvc           C:\Windows\System32\gpsvc.dll
 17:09:06.0627 0x2e08  gpsvc - ok
 17:09:06.0705 0x2e08  [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdate         C:\Program Files\Google\Update\GoogleUpdate.exe
 17:09:06.0721 0x2e08  gupdate - ok
 17:09:06.0737 0x2e08  [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdatem        C:\Program Files\Google\Update\GoogleUpdate.exe
 17:09:06.0752 0x2e08  gupdatem - ok
 17:09:06.0768 0x2e08  [ C44E3C2BAB6837DB337DDEE7544736DB, 88A24FF7D2FECCEAFFD421B2039A0FB623DA47A6B220B80EF1E52DD26D9E222D ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
 17:09:06.0830 0x2e08  hcw85cir - ok
 17:09:06.0861 0x2e08  [ A5EF29D5315111C80A5C1ABAD14C8972, A181DA72E946F121C3F4A19438C547B0BFD15138AB1DB5465945EC89DF1F6B0A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
 17:09:06.0893 0x2e08  HdAudAddService - ok
 17:09:06.0908 0x2e08  [ 9036377B8A6C15DC2EEC53E489D159B5, 1E56D2ACFE92E6DF96D755B05C63D580EED82C210F075C8623E138BEE6BCD41B ] HDAudBus        C:\Windows\system32\drivers\HDAudBus.sys
 17:09:06.0924 0x2e08  HDAudBus - ok
 17:09:06.0955 0x2e08  [ 1D58A7F3E11A9731D0EAAAA8405ACC36, 7056FA18B86FBD52C4A6092D80476C02553EA053D6A0BEDB01A2FA5E152D5215 ] HidBatt         C:\Windows\system32\DRIVERS\HidBatt.sys
 17:09:07.0002 0x2e08  HidBatt - ok
 17:09:07.0017 0x2e08  [ 89448F40E6DF260C206A193A4683BA78, 71E0FCC32AE6FF8DFF420DB0383D6A200E1EAE14BD2E32453F92CE18B31C1F3C ] HidBth          C:\Windows\system32\DRIVERS\hidbth.sys
 17:09:07.0064 0x2e08  HidBth - ok
 17:09:07.0095 0x2e08  [ CF50B4CF4A4F229B9F3C08351F99CA5E, B97843620AF80FF0EC8F2C438255C0A42A756C6314FAF3DEF415DE16E14C108F ] HidIr           C:\Windows\system32\DRIVERS\hidir.sys
 17:09:07.0142 0x2e08  HidIr - ok
 17:09:07.0173 0x2e08  [ 2BC6F6A1992B3A77F5F41432CA6B3B6B, 2AF3312F1C8C8923C0A29AA5DAE57CE269417E53DEA2F0CCCC8DB57029698FE1 ] hidserv         C:\Windows\system32\hidserv.dll
 17:09:07.0220 0x2e08  hidserv - ok
 17:09:07.0267 0x2e08  [ 10C19F8290891AF023EAEC0832E1EB4D, E208553029488A6EE2F5216CC9FE5F93E9931A94C0D0625253BB159E30642853 ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
 17:09:07.0314 0x2e08  HidUsb - ok
 17:09:07.0345 0x2e08  [ 196B4E3F4CCCC24AF836CE58FACBB699, 7A2E1F603A073421FA0987EFB96647F1F0F2D4E0C82AA62EBC041585DA811DAF ] hkmsvc          C:\Windows\system32\kmsvc.dll
 17:09:07.0407 0x2e08  hkmsvc - ok
 17:09:07.0439 0x2e08  [ 6658F4404DE03D75FE3BA09F7ABA6A30, E51D9C1580A283EB862F09B73AAE1B647DD683A53F3DD99834222F12DD15E40F ] HomeGroupListener C:\Windows\system32\ListSvc.dll
 17:09:07.0470 0x2e08  HomeGroupListener - ok
 17:09:07.0517 0x2e08  [ DBC02D918FFF1CAD628ACBE0C0EAA8E8, 02121800D9062692C102475876AE8143EBE46D855E8328B8CDCFE6A2F0D19696 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
 17:09:07.0563 0x2e08  HomeGroupProvider - ok
 17:09:07.0595 0x2e08  [ 295FDC419039090EB8B49FFDBB374549, 670E8015FD374640C6570F56F7FE8DE4D8F92E7A8072F5D1B2B95D0BD699CEF7 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
 17:09:07.0610 0x2e08  HpSAMD - ok
 17:09:07.0673 0x2e08  [ 487569E5DA56A5A432FF8AF6D3599CF9, 7C974D8379C60B4F69A20B01876C49181B0A63AC318C4BD0A21DABFF27A15C9D ] HTTP            C:\Windows\system32\drivers\HTTP.sys
 17:09:07.0719 0x2e08  HTTP - ok
 17:09:07.0751 0x2e08  [ 0C4E035C7F105F1299258C90886C64C5, CFB4FBE7B28058E6D3E6E508CF3C1645F6AAE0AFEB4C5364835B9C42311DF0D4 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
 17:09:07.0766 0x2e08  hwpolicy - ok
 17:09:07.0782 0x2e08  [ F151F0BDC47F4A28B1B20A0818EA36D6, 84B24B5796D9F70A8C37773F5484A4606CC7908370CCD942627ACBEDC4952D79 ] i8042prt        C:\Windows\system32\drivers\i8042prt.sys
 17:09:07.0829 0x2e08  i8042prt - ok
 17:09:07.0860 0x2e08  [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E, 72870092A80C6DAE0105025B0ED8B607E98BA81E59298364A7FE4C9C56C68FF0 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
 17:09:07.0891 0x2e08  iaStorV - ok
 17:09:07.0953 0x2e08  [ 1CF03C69B49ACB70C722DF92755C0C8C, C227850C133F29BB9DED91A26A22AE077FD69629CEF35B67D305F016C4BDAA81 ] IDriverT        C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
 17:09:07.0985 0x2e08  IDriverT - detected UnsignedFile.Multi.Generic ( 1 )
 17:09:10.0498 0x2e08  Detect skipped due to KSN trusted
 17:09:10.0498 0x2e08  IDriverT - ok
 17:09:10.0598 0x2e08  [ 3E9213A2A050BF429E91898C90F8B4E3, D80ABE5691087661B19F01927B631CB8C5291120B814B6F863F046E0D643E9E4 ] idsvc           C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
 17:09:10.0672 0x2e08  idsvc - ok
 17:09:10.0719 0x2e08  IEEtwCollectorService - ok
 17:09:10.0750 0x2e08  [ 4173FF5708F3236CF25195FECD742915, 0A9C0701DF6EAC6602BE342FC13C7950EF04BB5BDF7D96C2C5DABBD2A29AA55D ] iirsp           C:\Windows\system32\DRIVERS\iirsp.sys
 17:09:10.0766 0x2e08  iirsp - ok
 17:09:10.0828 0x2e08  [ B9C54120F46392100478F58F374E5709, A28EE8B0988F580D5984E815FC78DF41B169260814234AA0E453375542D0957B ] IKEEXT          C:\Windows\System32\ikeext.dll
 17:09:10.0875 0x2e08  IKEEXT - ok
 17:09:10.0890 0x2e08  IntcAzAudAddService - ok
 17:09:10.0906 0x2e08  [ A0F12F2C9BA6C72F3987CE780E77C130, 5F53DF8BE1621AA7DFB655CFD9C95E0AFA1AD3CE2E290E19D7B7FB3C6E380034 ] intelide        C:\Windows\system32\drivers\intelide.sys
 17:09:10.0922 0x2e08  intelide - ok
 17:09:10.0937 0x2e08  [ 3B514D27BFC4ACCB4037BC6685F766E0, F12D7AC62F8550E6F33B28AD751D8413AB7FFEF963242D99FFA76CE8A48B027A ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
 17:09:10.0971 0x2e08  intelppm - ok
 17:09:11.0024 0x2e08  [ ACB364B9075A45C0736E5C47BE5CAE19, 202F77C659103D2D0E787B8CB0A23BE32EA5AA2E6B3B0A0F0A8DFA906AB3C0C0 ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
 17:09:11.0076 0x2e08  IPBusEnum - ok
 17:09:11.0100 0x2e08  [ 709D1761D3B19A932FF0238EA6D50200, 0A9D2C3A6E91CA45540555B40CB4E2DF3EBE98C1D164C4EECEE20C86782F5823 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
 17:09:11.0149 0x2e08  IpFilterDriver - ok
 17:09:11.0208 0x2e08  [ 58F67245D041FBE7AF88F4EAF79DF0FA, 67468D6A46FF4D87AD321BFEA42F2FC843D09AA292A119C76D4D795D06028F96 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
 17:09:11.0279 0x2e08  iphlpsvc - ok
 17:09:11.0308 0x2e08  [ 4BD7134618C1D2A27466A099062547BF, 20284ABEF4433A59E2981F4143CAEC67DC990864FE0B9E3DC70EE0B88539E964 ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
 17:09:11.0334 0x2e08  IPMIDRV - ok
 17:09:11.0381 0x2e08  [ A5FA468D67ABCDAA36264E463A7BB0CD, EDB828D596E43372F97DAE1AADA46428C4C45FB80646DDC64FAD5F25C826CF63 ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
 17:09:11.0428 0x2e08  IPNAT - ok
 17:09:11.0459 0x2e08  [ 42996CFF20A3084A56017B7902307E9F, 688176DAB91BE569280E4822E4C5BDE755794D293591C53F8047AD59C441751D ] IRENUM          C:\Windows\system32\drivers\irenum.sys
 17:09:11.0521 0x2e08  IRENUM - ok
 17:09:11.0568 0x2e08  [ 1F32BB6B38F62F7DF1A7AB7292638A35, 86522358680FBB1CEBC56B4D139290689BB0F71A3EC78CE883E4D75D0B37586F ] isapnp          C:\Windows\system32\drivers\isapnp.sys
 17:09:11.0584 0x2e08  isapnp - ok
 17:09:11.0636 0x2e08  [ EB34CE31FABD4DC4343FD2AD16D2CAF9, D21C91227A15DA89ECF522345D0AB80B3B7FC24A230596DABDB8BD3B7554CE8C ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
 17:09:11.0654 0x2e08  iScsiPrt - ok
 17:09:11.0670 0x2e08  [ ADEF52CA1AEAE82B50DF86B56413107E, A3AE1E96B04AC81665ABBD3CB267DFB3F78376DAE18FB0DBD447908DDAAA22D2 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
 17:09:11.0701 0x2e08  kbdclass - ok
 17:09:11.0701 0x2e08  [ 9E3CED91863E6EE98C24794D05E27A71, 90CF59F20E14E4A5A793266805E82BF7AE1F0CF4C7BAB1FD2EEF3B53C5DF770F ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
 17:09:11.0732 0x2e08  kbdhid - ok
 17:09:11.0732 0x2e08  [ 88142648ED929E6D2178CC3B8C13C00F, 7E6B6B2CF61C56FBF8F2A96BDA2E9506467A9A883BFD3BEA78A4F500851E76DB ] KeyIso          C:\Windows\system32\lsass.exe
 17:09:11.0764 0x2e08  KeyIso - ok
 17:09:11.0795 0x2e08  [ 88246FD556E98BF416AC00C418B83D1D, 917EC561EB1C4D8D736DFDCD8456389B3DB0E8CB5AE900FB507F7F1550048BAD ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
 17:09:11.0810 0x2e08  KSecDD - ok
 17:09:11.0842 0x2e08  [ C41140DBF0BEA35E480A9CF9823B2B08, 142C4EB8AF27C9B649F24BEECFA1FD3E2B160BC8E8172A04526B73BB157CAD3A ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
 17:09:11.0857 0x2e08  KSecPkg - ok
 17:09:11.0888 0x2e08  [ 89A7B9CC98D0D80C6F31B91C0A310FCD, 4583CAEEE0D50C0C7CE955E533FDA063CDC37B69033D41EF22EF1BA242E4C747 ] KtmRm           C:\Windows\system32\msdtckrm.dll
 17:09:11.0966 0x2e08  KtmRm - ok
 17:09:12.0013 0x2e08  [ D64AF876D53ECA3668BB97B51B4E70AB, D5C07C019BFEAFBEDC29AB5060356A3B07449712B21B50E03378BEF04AF180F9 ] LanmanServer    C:\Windows\system32\srvsvc.dll
 17:09:12.0044 0x2e08  LanmanServer - ok
 17:09:12.0060 0x2e08  [ 58405E4F68BA8E4057C6E914F326ABA2, C3E6519A1A38F1B3597D4391E42ABFE8F1F5E86256C4B3BD876CDAD9BB68B0A6 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
 17:09:12.0126 0x2e08  LanmanWorkstation - ok
 17:09:12.0161 0x2e08  [ F7611EC07349979DA9B0AE1F18CCC7A6, 879AA7A391966F00761CA039C25EBC62F6712DD5461694911EEC673E12DE103E ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
 17:09:12.0215 0x2e08  lltdio - ok
 17:09:12.0264 0x2e08  [ 5700673E13A2117FA3B9020C852C01E2, 6684A2905EE8C438F2A64BE47E51A54D287B08DEFB8E0AE7FC2809D845EE3C5F ] lltdsvc         C:\Windows\System32\lltdsvc.dll
 17:09:12.0322 0x2e08  lltdsvc - ok
 17:09:12.0345 0x2e08  [ 55CA01BA19D0006C8F2639B6C045E08B, 4DBBDC820C514DB18CC13F8EE178F8C4E39C295C6E3C255416C235553CE7BDC1 ] lmhosts         C:\Windows\System32\lmhsvc.dll
 17:09:12.0402 0x2e08  lmhosts - ok
 17:09:12.0434 0x2e08  [ EB119A53CCF2ACC000AC71B065B78FEF, 1FD60735C4945AE565C223F0B47EAF9602D8777E3D15600914C1A9D761215AF9 ] LSI_FC          C:\Windows\system32\DRIVERS\lsi_fc.sys
 17:09:12.0453 0x2e08  LSI_FC - ok
 17:09:12.0468 0x2e08  [ 8ADE1C877256A22E49B75D1CC9161F9C, 3D64F233DC866537E50549A7C1A2B40A954055B22F0BDA39825B04C38C607CB7 ] LSI_SAS         C:\Windows\system32\DRIVERS\lsi_sas.sys
 17:09:12.0484 0x2e08  LSI_SAS - ok
 17:09:12.0500 0x2e08  [ DC9DC3D3DAA0E276FD2EC262E38B11E9, A264990857CBC74036799E17A087130626C0A09BE19879019BAF2D761C62AECC ] LSI_SAS2        C:\Windows\system32\DRIVERS\lsi_sas2.sys
 17:09:12.0515 0x2e08  LSI_SAS2 - ok
 17:09:12.0531 0x2e08  [ 0A036C7D7CAB643A7F07135AC47E0524, 2F662D07FCB74B8D493156DB555EAA90A47E93CF14C7B30039D2FE47EB8682B8 ] LSI_SCSI        C:\Windows\system32\DRIVERS\lsi_scsi.sys
 17:09:12.0562 0x2e08  LSI_SCSI - ok
 17:09:12.0578 0x2e08  [ 6703E366CC18D3B6E534F5CF7DF39CEE, 7396B9AF938284D99EC51206A7B2FA4A0DC10A493DCE6707818B03A7473782C4 ] luafv           C:\Windows\system32\drivers\luafv.sys
 17:09:12.0609 0x2e08  luafv - ok
 17:09:12.0656 0x2e08  [ FDBDEDB746A33BAFC17394D1960ADEAF, 6280BD2559A3A0D058BAAF0BB3719F4BEE5841EC9901452CB6D8319666901876 ] mbamchameleon   C:\Windows\system32\drivers\mbamchameleon.sys
 17:09:12.0687 0x2e08  mbamchameleon - ok
 17:09:12.0734 0x2e08  [ BFB9EE8EE977EFE85D1A3105ABEF6DD1, D2A84EBF0C0B7A14AD432FD2EF43CC12300027AEA3FA4075659FB088AB62B588 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
 17:09:12.0765 0x2e08  Mcx2Svc - ok
 17:09:12.0765 0x2e08  mdmxsdk - ok
 17:09:12.0780 0x2e08  [ 0FFF5B045293002AB38EB1FD1FC2FB74, 49071B565FD5B2DE43EC00D8518C3BE70843F38919E82F13104B8C1FAFB20374 ] megasas         C:\Windows\system32\DRIVERS\megasas.sys
 17:09:12.0796 0x2e08  megasas - ok
 17:09:12.0827 0x2e08  [ DCBAB2920C75F390CAF1D29F675D03D6, 85C3A7A010BEA5E3C6179161B295F2CB900A6A214833A5F87A4327392880E2BB ] MegaSR          C:\Windows\system32\DRIVERS\MegaSR.sys
 17:09:12.0843 0x2e08  MegaSR - ok
 17:09:12.0936 0x2e08  Microsoft SharePoint Workspace Audit Service - ok
 17:09:12.0968 0x2e08  [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] MMCSS           C:\Windows\system32\mmcss.dll
 17:09:12.0999 0x2e08  MMCSS - ok
 17:09:13.0014 0x2e08  [ F001861E5700EE84E2D4E52C712F4964, F4DC5AEED6F34D76CCEF360862CC47EF71097BE0813C8CE04EE5F0DB387DFFAE ] Modem           C:\Windows\system32\drivers\modem.sys
 17:09:13.0061 0x2e08  Modem - ok
 17:09:13.0092 0x2e08  [ 79D10964DE86B292320E9DFE02282A23, 52714827B7EEDACA55326A4E4F6158D4942DFAA3BACDE303A2F569BF3F4FAA72 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
 17:09:13.0139 0x2e08  monitor - ok
 17:09:13.0170 0x2e08  [ FB18CC1D4C2E716B6B903B0AC0CC0609, F10CCA63493782B16DE6B96B94A27078DBE68AECEF34FDF840CFF86D2C6E3C5E ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
 17:09:13.0186 0x2e08  mouclass - ok
 17:09:13.0202 0x2e08  [ 2C388D2CD01C9042596CF3C8F3C7B24D, B2FB72272BB01AEDA4047B57C943B7E9BD8A6497854F8CC34672AAA592D0A703 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
 17:09:13.0248 0x2e08  mouhid - ok
 17:09:13.0295 0x2e08  [ BAD9C0366134BA181514E9263C8CE606, 7976B2D3DC283ACDBC21C7D197C0E2A650E6555F6569283302766B17D736BDB8 ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
 17:09:13.0311 0x2e08  mountmgr - ok
 17:09:13.0373 0x2e08  [ 96AA8BA23142CC8E2B30F3CAE0C80254, C65380761373DAD16425211FBA0B4E15F260F79A1FF328B1314076D732EE6F0E ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
 17:09:13.0389 0x2e08  MozillaMaintenance - ok
 17:09:13.0420 0x2e08  [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0, D3D903EEA465D77345AAC9B9F02CDEADF4831212EA2DE4FCA33BEE26EBB47420 ] mpio            C:\Windows\system32\drivers\mpio.sys
 17:09:13.0451 0x2e08  mpio - ok
 17:09:13.0467 0x2e08  [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0, 1D6DCFA0E56C3E55B6AED819176E751502F863BA0FCF4F0B3253A81D208141A2 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
 17:09:13.0514 0x2e08  mpsdrv - ok
 17:09:13.0576 0x2e08  [ 9835584E999D25004E1EE8E5F3E3B881, 71798B0CBE9AE69F1F29B845319019C69EC7F415CBABB3B87DDE92C360675021 ] MpsSvc          C:\Windows\system32\mpssvc.dll
 17:09:13.0670 0x2e08  MpsSvc - ok
 17:09:13.0716 0x2e08  [ 03F899F521D2AAED1C55008F734DF252, 4E56A51476A13F5630719018037B1F63DF9ACEA1CFE782AF04E669BD696954C5 ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
 17:09:13.0763 0x2e08  MRxDAV - ok
 17:09:13.0810 0x2e08  [ BAF4E2BE25E8EDFDAA98AA17D92E3C35, 1C7C7A7217962BE8338F8F989A2DBA2C0FD8A1CCC4E773EA5D02F291C2AF0BCA ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
 17:09:13.0872 0x2e08  mrxsmb - ok
 17:09:13.0919 0x2e08  [ 300E85A19AFD4DF992AB6297C6E64CA1, B794DC07336DA64ECB8F6F695978C5B67FBFC7D1B60F3AD94D970FC9DE05A095 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
 17:09:13.0966 0x2e08  mrxsmb10 - ok
 17:09:14.0028 0x2e08  [ 70EF9F86474BA28A6898228E1C9ABDCB, 5BCCE0A1D33F7A0780350F3AA870468DB7B51F4FBA267AF663BC946B2259E0F8 ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
 17:09:14.0044 0x2e08  mrxsmb20 - ok
 17:09:14.0075 0x2e08  [ 012C5F4E9349E711E11E0F19A8589F0A, 208B92DFCF7AD43202660FBBC9FF5E03AEDBEE38178FF3628EB74CB6CD37C584 ] msahci          C:\Windows\system32\drivers\msahci.sys
 17:09:14.0091 0x2e08  msahci - ok
 17:09:14.0122 0x2e08  [ 55055F8AD8BE27A64C831322A780A228, C2C9FD1F61302997117B1CD0835E8234405BB80084065ED05363B77868397304 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
 17:09:14.0153 0x2e08  msdsm - ok
 17:09:14.0169 0x2e08  [ E1BCE74A3BD9902B72599C0192A07E27, 5162EB623FE64E9DFEAC6CA2410EFA1314E62EC13207FFBFED2D61AA887603C4 ] MSDTC           C:\Windows\System32\msdtc.exe
 17:09:14.0216 0x2e08  MSDTC - ok
 17:09:14.0262 0x2e08  [ DAEFB28E3AF5A76ABCC2C3078C07327F, 6EB558532400B489763BAE7203538DE5F196282A8CB46A1B31D59120FC5AFCEF ] Msfs            C:\Windows\system32\drivers\Msfs.sys
 17:09:14.0309 0x2e08  Msfs - ok
 17:09:14.0340 0x2e08  [ 3E1E5767043C5AF9367F0056295E9F84, B2EDFECD3C14E4FE1BA87D9A86334043A9BD696A554EBD186DA7EAEB2EBD4F70 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
 17:09:14.0387 0x2e08  mshidkmdf - ok
 17:09:14.0418 0x2e08  [ 0A4E5757AE09FA9622E3158CC1AEF114, ED574E420E57374E328C7C526504ECA569C164287966F06019EC207CB17F2C54 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
 17:09:14.0434 0x2e08  msisadrv - ok
 17:09:14.0465 0x2e08  [ 90F7D9E6B6F27E1A707D4A297F077828, BEFC220EAA7307849600748842ACB9254A6A91158812D9B23EFAF912C498BA7F ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
 17:09:14.0528 0x2e08  MSiSCSI - ok
 17:09:14.0528 0x2e08  msiserver - ok
 17:09:14.0559 0x2e08  [ 8C0860D6366AAFFB6C5BB9DF9448E631, 949C5A14E57F2D7385543C17C3485E7ADE36EA2016F6E0A1866571D2EDE90A77 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
 17:09:14.0590 0x2e08  MSKSSRV - ok
 17:09:14.0621 0x2e08  [ 3EA8B949F963562CEDBB549EAC0C11CE, 1B0B2F16A1790282504F3C548D47C3281EFB440D5D9711A1EF76D6371B768D2D ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
 17:09:14.0668 0x2e08  MSPCLOCK - ok
 17:09:14.0668 0x2e08  [ F456E973590D663B1073E9C463B40932, 48BA6D5580EE7B6A4C06E04772FD35B51779553FC0DD6C5C30DD8B5DEEB25B11 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
 17:09:14.0715 0x2e08  MSPQM - ok
 17:09:14.0746 0x2e08  [ 0E008FC4819D238C51D7C93E7B41E560, 141FCEBDD05874407EAEC35A9DCD3BB16F2A428F23E55487D6A5DBFCADBF10D2 ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
 17:09:14.0762 0x2e08  MsRPC - ok
 17:09:14.0793 0x2e08  [ FC6B9FF600CC585EA38B12589BD4E246, F05DB01AE1955D2468CE6B51E51998B111CA3B0BDEED090EE6B99B625CBA564A ] mssmbios        C:\Windows\system32\drivers\mssmbios.sys
 17:09:14.0808 0x2e08  mssmbios - ok
 17:09:14.0808 0x2e08  [ B42C6B921F61A6E55159B8BE6CD54A36, 6BB0A7BE005B8F281E551D1B8046CE4202372BC7AE0161881C858BFAC675FE1C ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
 17:09:14.0871 0x2e08  MSTEE - ok
 17:09:14.0902 0x2e08  [ 33599130F44E1F34631CEA241DE8AC84, E15B31D1AFDC8DC6D2B21D4215796A99ECC69EEDBB06CEED01AECC3C99A44C8B ] MTConfig        C:\Windows\system32\DRIVERS\MTConfig.sys
 17:09:14.0949 0x2e08  MTConfig - ok
 17:09:14.0980 0x2e08  [ 159FAD02F64E6381758C990F753BCC80, E55AB01DCFA95ECAB24A2A9656E28FF9D064BA08B3D82DC8AA42F5991BA09598 ] Mup             C:\Windows\system32\Drivers\mup.sys
 17:09:14.0996 0x2e08  Mup - ok
 17:09:15.0058 0x2e08  [ 61D57A5D7C6D9AFE10E77DAE6E1B445E, D252248532142E9E2332DA693BC51B795102CA938B568FF04981E98B19BFBC5C ] napagent        C:\Windows\system32\qagentRT.dll
 17:09:15.0120 0x2e08  napagent - ok
 17:09:15.0152 0x2e08  [ 26384429FCD85D83746F63E798AB1480, 957C115C263A4B4DC854558B43ECE632D8E2BCCB744E23A01EBA7476BA2E7FFB ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
 17:09:15.0183 0x2e08  NativeWifiP - ok
 17:09:15.0276 0x2e08  [ 934BB0D23A25C8C136570800A5A149B6, 15D99CE4E970FECE257F6D69810F8104720B26D8DC3787BC38CC8692ACEABD37 ] NAUpdate        C:\Program Files\Nero\Update\NASvc.exe
 17:09:15.0323 0x2e08  NAUpdate - ok
 17:09:15.0370 0x2e08  [ 0AE25530894A934C6CA600865C6E9D7C, CA3499687E6CC35FEA1D5B6EDA34E4ADA45FA05D025A5A8B80F98BCB44090DC7 ] NBVol           C:\Windows\system32\DRIVERS\NBVol.sys
 17:09:15.0386 0x2e08  NBVol - ok
 17:09:15.0417 0x2e08  [ 1DDCEF3039C9D90AF3529DEE6699967D, 2F67FB358DB8DA4CAFD65A04DF35976C4C989A3B4DAED63E9752355DAE9EDE5E ] NBVolUp         C:\Windows\system32\DRIVERS\NBVolUp.sys
 17:09:15.0432 0x2e08  NBVolUp - ok
 17:09:15.0495 0x2e08  [ 8C9C922D71F1CD4DEF73F186416B7896, 15FF43CD90C7913F83B35F2E7986561584588E8A45196EBD965C3A355836A9C7 ] NDIS            C:\Windows\system32\drivers\ndis.sys
 17:09:15.0542 0x2e08  NDIS - ok
 17:09:15.0573 0x2e08  [ 0E1787AA6C9191D3D319E8BAFE86F80C, F535022747355B2C66424BDA892D7DCB820C2EB8EE05BAE5BC6D1B1D65186278 ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
 17:09:15.0604 0x2e08  NdisCap - ok
 17:09:15.0635 0x2e08  [ E4A8AEC125A2E43A9E32AFEEA7C9C888, 6EA181117126FC70B3C1DD1AC73CC26D1603A2CF49E47F66623E2C9489C49B55 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
 17:09:15.0682 0x2e08  NdisTapi - ok
 17:09:15.0713 0x2e08  [ D8A65DAFB3EB41CBB622745676FCD072, 874D3C3D247C4A309DA813DB1D2EDB0037D3C489824BD5FE95B0C20699764EF7 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
 17:09:15.0760 0x2e08  Ndisuio - ok
 17:09:15.0791 0x2e08  [ 38FBE267E7E6983311179230FACB1017, CFD1CBCA59650795C030DB30E5795B37C11C736E14003AE1DAB081BA5C0C9B14 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
 17:09:15.0838 0x2e08  NdisWan - ok
 17:09:15.0869 0x2e08  [ A4BDC541E69674FBFF1A8FF00BE913F2, 18CCFD063E9870B8B6958715BC0414C4D920AE63528EA1E9D7E30F7138918FFA ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
 17:09:15.0916 0x2e08  NDProxy - ok
 17:09:15.0947 0x2e08  [ 1352E1648213551923A0A822E441553C, F9BCA299249D8E1ADF88F54554F72428E267E39911143F4C99DFF562F0EE4E70 ] Netaapl         C:\Windows\system32\DRIVERS\netaapl.sys
 17:09:15.0963 0x2e08  Netaapl - detected UnsignedFile.Multi.Generic ( 1 )
 17:09:18.0432 0x2e08  Detect skipped due to KSN trusted
 17:09:18.0432 0x2e08  Netaapl - ok
 17:09:18.0495 0x2e08  [ 80B275B1CE3B0E79909DB7B39AF74D51, 75B406B0D9D28239D4EB2A298419A5F78A58237D88C5FD688EF1DFFAFACCF796 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
 17:09:18.0541 0x2e08  NetBIOS - ok
 17:09:18.0573 0x2e08  [ 280122DDCF04B378EDD1AD54D71C1E54, F98B2ADE34F7E67C7C06C1D0FFB80ECBC353D044D4B4784CD952910345DC2ED0 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
 17:09:18.0619 0x2e08  NetBT - ok
 17:09:18.0651 0x2e08  [ 88142648ED929E6D2178CC3B8C13C00F, 7E6B6B2CF61C56FBF8F2A96BDA2E9506467A9A883BFD3BEA78A4F500851E76DB ] Netlogon        C:\Windows\system32\lsass.exe
 17:09:18.0682 0x2e08  Netlogon - ok
 17:09:18.0729 0x2e08  [ 7CCCFCA7510684768DA22092D1FA4DB2, BB9E4F8FABBF596D888E6D303CB54A336D9DFF95B36AEA9369D2ED787DDC4B5D ] Netman          C:\Windows\System32\netman.dll
 17:09:18.0791 0x2e08  Netman - ok
 17:09:18.0838 0x2e08  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
 17:09:18.0853 0x2e08  NetMsmqActivator - ok
 17:09:18.0885 0x2e08  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
 17:09:18.0900 0x2e08  NetPipeActivator - ok
 17:09:18.0931 0x2e08  [ 8C338238C16777A802D6A9211EB2BA50, 0D08A47CD403EDA5E8CAD7409BBBBCDC29A9861D2DC41D42B68B22B1AA1EBDD6 ] netprofm        C:\Windows\System32\netprofm.dll
 17:09:18.0994 0x2e08  netprofm - ok
 17:09:19.0009 0x2e08  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
 17:09:19.0025 0x2e08  NetTcpActivator - ok
 17:09:19.0041 0x2e08  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
 17:09:19.0072 0x2e08  NetTcpPortSharing - ok
 17:09:19.0259 0x2e08  [ 58218EC6B61B1169CF54AAB0D00F5FE2, B76ABB2AD78CE68D30F0F08563B0593D658298CDCF1B138B6E9FB0D64CBCC3C2 ] netw5v32        C:\Windows\system32\DRIVERS\netw5v32.sys
 17:09:19.0462 0x2e08  netw5v32 - ok
 17:09:19.0571 0x2e08  [ 1D85C4B390B0EE09C7A46B91EFB2C097, 6A8850B151E88EE371F3CC543A946302DDF9494908D684B8B0C706A42CC54348 ] nfrd960         C:\Windows\system32\DRIVERS\nfrd960.sys
 17:09:19.0603 0x2e08  nfrd960 - ok
 17:09:19.0644 0x2e08  [ F115C5CD29E512F18BD7138A094B77E5, 90C2CE8B256EE9AABF674ADDE7F85E91DAF48EA368452D03C187A4AE027D4E39 ] NlaSvc          C:\Windows\System32\nlasvc.dll
 17:09:19.0710 0x2e08  NlaSvc - ok
 17:09:19.0723 0x2e08  [ 1DB262A9F8C087E8153D89BEF3D2235F, A51EE5D5AD3CD76B74BEA9C66C462608BF3B50C53DAA4110A75DB10495A8C101 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
 17:09:19.0780 0x2e08  Npfs - ok
 17:09:19.0818 0x2e08  [ BA387E955E890C8A88306D9B8D06BF17, 3477BD9686C5777A93251C154512671AAA7533B18C536DF51F7B1D6D28E7F8A5 ] nsi             C:\Windows\system32\nsisvc.dll
 17:09:19.0850 0x2e08  nsi - ok
 17:09:19.0866 0x2e08  [ E9A0A4D07E53D8FEA2BB8387A3293C58, 690CAD6C4E35ECC1172A2E1FD3933DF73158B3BF42CB21244269612A53DE4D7A ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
 17:09:19.0912 0x2e08  nsiproxy - ok
 17:09:19.0990 0x2e08  [ C8DFF8D07755A66C7A4A738930F0FEAC, A2CC58312CE57988ABD976155BE91F558DCEC4C23481C6FBE64B361D511A36EA ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
 17:09:20.0084 0x2e08  Ntfs - ok
 17:09:20.0100 0x2e08  [ F9756A98D69098DCA8945D62858A812C, 572ADBFCFDE2030B34A013AADC14DBC144EB3F34D06991E2464A3EA9605BC045 ] Null            C:\Windows\system32\drivers\Null.sys
 17:09:20.0146 0x2e08  Null - ok
 17:09:20.0193 0x2e08  [ 7F5D69A031BE0E7BDFB8126E1A212417, E0ECC8D47D9385FC97B962A72F435A94F9AAF88694E84EE8AF7F3D0EBD2C15DC ] nuvotoncir      C:\Windows\system32\DRIVERS\nuvotoncir.sys
 17:09:20.0209 0x2e08  nuvotoncir - detected UnsignedFile.Multi.Generic ( 1 )
 17:09:22.0654 0x2e08  Detect skipped due to KSN trusted
 17:09:22.0654 0x2e08  nuvotoncir - ok
 17:09:23.0151 0x2e08  [ 0A1B502CBC8230DA74BEFBAADDB58916, 14BDE0A5829D1CC7E93B60676243DD0641D5FA08CE46936450CD3A67F94EA560 ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
 17:09:23.0669 0x2e08  nvlddmkm - ok
 17:09:23.0731 0x2e08  [ B3E25EE28883877076E0E1FF877D02E0, 402B6FED6FBBF645190396DC141141EF52DD059DABD01F8AC9CF01D23664070C ] nvraid          C:\Windows\system32\drivers\nvraid.sys
 17:09:23.0763 0x2e08  nvraid - ok
 17:09:23.0794 0x2e08  [ 4380E59A170D88C4F1022EFF6719A8A4, 93EDB3F4CDBF53C9C1970DD29AB146E390695C568180847BA8903F5FBEABCFF2 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
 17:09:23.0809 0x2e08  nvstor - ok
 17:09:23.0919 0x2e08  [ EB5A13F9139F20AD71ADF4BF79C3AA29, D473E03B3B69AC0A35FF1CD8B85C088DCCCBAA5DA52C18737B6AC873EF1F1BC7 ] nvsvc           C:\Windows\system32\nvvsvc.exe
 17:09:23.0965 0x2e08  nvsvc - ok
 17:09:24.0059 0x2e08  [ 0629259E3AF6BB0534FCECA208973404, E5DDA62D5D21D5D11A711BBFC5B839B59E336997C0C9A32A0B04AC9FBB6472D4 ] nvUpdatusService C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
 17:09:24.0137 0x2e08  nvUpdatusService - ok
 17:09:24.0153 0x2e08  [ 5A0983915F02BAE73267CC2A041F717D, D83461D74597BF2BE042FEFCC27FCD18BF63CB8135B0666D731D50951C3468A8 ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
 17:09:24.0184 0x2e08  nv_agp - ok
 17:09:24.0215 0x2e08  [ 08A70A1F2CDDE9BB49B885CB817A66EB, 0BB98123B544124B144F3E95D77E01E973D060B8B2302503FF24ABBBE803EB63 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
 17:09:24.0262 0x2e08  ohci1394 - ok
 17:09:24.0309 0x2e08  [ 9D10F99A6712E28F8ACD5641E3A7EA6B, 70964A0ED9011EA94044E15FA77EDD9CF535CC79ED8E03A3721FF007E69595CC ] ose             C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
 17:09:24.0324 0x2e08  ose - ok
 17:09:24.0558 0x2e08  [ 358A9CCA612C68EB2F07DDAD4CE1D8D7, F342100E2E9001F11FDF93F856B50FA43F9B85D2C6B5706EC0433E77206498DA ] osppsvc         C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
 17:09:24.0792 0x2e08  osppsvc - ok
 17:09:24.0855 0x2e08  [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
 17:09:24.0933 0x2e08  p2pimsvc - ok
 17:09:24.0964 0x2e08  [ 59C3DDD501E39E006DAC31BF55150D91, E02B63AB7F34CF6FF3F644AF354D10004E6F50014E03172D80BD78934EF71EF1 ] p2psvc          C:\Windows\system32\p2psvc.dll
 17:09:25.0026 0x2e08  p2psvc - ok
 17:09:25.0073 0x2e08  [ 2EA877ED5DD9713C5AC74E8EA7348D14, 14BA3722CE5F8FF07F2D97DCDD6558EB49C9B02E5E6FAD6D9F18D354733EFECE ] Parport         C:\Windows\system32\DRIVERS\parport.sys
 17:09:25.0120 0x2e08  Parport - ok
 17:09:25.0151 0x2e08  [ 3F34A1B4C5F6475F320C275E63AFCE9B, 31295D5121C0C3F2085E0EEBA260EEE4CA003993C026E2F81986D19158036E6B ] partmgr         C:\Windows\system32\drivers\partmgr.sys
 17:09:25.0182 0x2e08  partmgr - ok
 17:09:25.0198 0x2e08  [ EB0A59F29C19B86479D36B35983DAADC, AC09AFE7F13BE4079D01383BAC44091997E1AAF6512C9673A42B9E3780EB08A8 ] Parvdm          C:\Windows\system32\DRIVERS\parvdm.sys
 17:09:25.0229 0x2e08  Parvdm - ok
 17:09:25.0291 0x2e08  [ 52954BE460EC6C54C0ACB2B3B126FFC6, 9F9878EC5ABC74C5A8EE8E1D940F0934F081895B07D844F42F80A638FE713F7B ] PcaSvc          C:\Windows\System32\pcasvc.dll
 17:09:25.0354 0x2e08  PcaSvc - ok
 17:09:25.0369 0x2e08  [ 673E55C3498EB970088E812EA820AA8F, 1F81315664B8CBFDD569416C0ECCE4C6251F34577313A0858AB46609781303B5 ] pci             C:\Windows\system32\drivers\pci.sys
 17:09:25.0401 0x2e08  pci - ok
 17:09:25.0432 0x2e08  [ AFE86F419014DB4E5593F69FFE26CE0A, CAF36E61BE7B511D3A03A65FF5A3017CEE4D2F53005B410F2D4A2AAE9FED4C00 ] pciide          C:\Windows\system32\drivers\pciide.sys
 17:09:25.0447 0x2e08  pciide - ok
 17:09:25.0463 0x2e08  [ F396431B31693E71E8A80687EF523506, BC614FC21E029E2497F1CCE3131BBD295B827F2310762B47D5BBC7703D80554B ] pcmcia          C:\Windows\system32\DRIVERS\pcmcia.sys
 17:09:25.0494 0x2e08  pcmcia - ok
 17:09:25.0494 0x2e08  [ 250F6B43D2B613172035C6747AEEB19F, A91F15B133F2619912CF750E6F3662E011CD0FA4B9477CE532CE3196D23307D9 ] pcw             C:\Windows\system32\drivers\pcw.sys
 17:09:25.0510 0x2e08  pcw - ok
 17:09:25.0557 0x2e08  [ AEBC369F7DC72AB3F5B9BDF34FA0D43F, 2A819154AC6C23E97C583D90B4D0C112188B7AE9D8D9B3F88811BFCED124E551 ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
 17:09:25.0635 0x2e08  PEAUTH - ok
 17:09:25.0713 0x2e08  [ AF4D64D2A57B9772CF3801950B8058A6, C9C493A3775E6E1660CE5DF75DA574D0C04245FB88CF41B96217A725359C350D ] PeerDistSvc     C:\Windows\system32\peerdistsvc.dll
 17:09:25.0822 0x2e08  PeerDistSvc - ok
 17:09:25.0915 0x2e08  [ 414BBA67A3DED1D28437EB66AEB8A720, D6DF254E2615FA402044824DCD9004F579FC0DF74B90E44C99D5F0253CF8AD88 ] pla             C:\Windows\system32\pla.dll
 17:09:26.0040 0x2e08  pla - ok
 17:09:26.0118 0x2e08  [ EC7BC28D207DA09E79B3E9FAF8B232CA, A42F8F69C3CD753D787A5D558659DEA2CC306C896D75B8C82549219CF654504F ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
 17:09:26.0165 0x2e08  PlugPlay - ok
 17:09:26.0181 0x2e08  [ 3A2BDD76E7D2A5F40A7174793D1BA794, 029EE2C2F71AEC7906600EEC4F855DC5648C1ECF53F11426079B04591F24D067 ] PnkBstrA        C:\Windows\system32\PnkBstrA.exe
 17:09:26.0196 0x2e08  PnkBstrA - ok
 17:09:26.0243 0x2e08  [ 63FF8572611249931EB16BB8EED6AFC8, 9732CCBCB93A7A4BEC88812B952C20244479E9BD781240C195E57F09E619EA33 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
 17:09:26.0305 0x2e08  PNRPAutoReg - ok
 17:09:26.0337 0x2e08  [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
 17:09:26.0352 0x2e08  PNRPsvc - ok
 17:09:26.0399 0x2e08  [ 896D916DE06F5502D301E8C4DC442AE8, 7B5C5FA075BA680B990A0A78A690CF2DE04EF7EB1457781E38D0EE4A95CEFDCA ] Point32         C:\Windows\system32\DRIVERS\point32.sys
 17:09:26.0415 0x2e08  Point32 - ok
 17:09:26.0461 0x2e08  [ 53946B69BA0836BD95B03759530C81EC, 7F14A34635354CCA0F5342C8D9DF5A6AA1B94F6A508BD8834029E9BACF252920 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
 17:09:26.0524 0x2e08  PolicyAgent - ok
 17:09:26.0571 0x2e08  [ F87D30E72E03D579A5199CCB3831D6EA, B09328E89954584F97908FA5946376BA990B8C650DABCBF3CA3B08719937C694 ] Power           C:\Windows\system32\umpo.dll
 17:09:26.0633 0x2e08  Power - ok
 17:09:26.0664 0x2e08  [ 631E3E205AD6D86F2AED6A4A8E69F2DB, 1D3BF0CFC37D91A3A56246920B9CF1084E78A055D56E85A773417809C58C8065 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
 17:09:26.0695 0x2e08  PptpMiniport - ok
 17:09:26.0742 0x2e08  [ 85B1E3A0C7585BC4AAE6899EC6FCF011, 1E067113C146D6842D7FB04007F363D6FB7783C6BC7C9AB6614E44075C4F86C3 ] Processor       C:\Windows\system32\DRIVERS\processr.sys
 17:09:26.0773 0x2e08  Processor - ok
 17:09:26.0820 0x2e08  [ FD9692A3D31E021207D3C2A9DDDC2BE3, 5295EFAD9BD4B59996935A41825392C12A4C968D161BEEA37797F90AF8E54229 ] ProfSvc         C:\Windows\system32\profsvc.dll
 17:09:26.0851 0x2e08  ProfSvc - ok
 17:09:26.0867 0x2e08  [ 88142648ED929E6D2178CC3B8C13C00F, 7E6B6B2CF61C56FBF8F2A96BDA2E9506467A9A883BFD3BEA78A4F500851E76DB ] ProtectedStorage C:\Windows\system32\lsass.exe
 17:09:26.0898 0x2e08  ProtectedStorage - ok
 17:09:26.0914 0x2e08  [ 6270CCAE2A86DE6D146529FE55B3246A, 463209CBAF1B0E269DC8FC6FBDEE5BB7E5ADB5D3F024930BFD0B97E0A9678883 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
 17:09:26.0976 0x2e08  Psched - ok
 17:09:27.0054 0x2e08  [ AB95ECF1F6659A60DDC166D8315B0751, 0ED6D3460D28978BADF31B930DBB3298A6A10EFF8883763EABA0E36A21A0E83D ] ql2300          C:\Windows\system32\DRIVERS\ql2300.sys
 17:09:27.0132 0x2e08  ql2300 - ok
 17:09:27.0148 0x2e08  [ B4DD51DD25182244B86737DC51AF2270, 7E62B04F054A6330B7F9968222523BDE8F3EE47A11D17E6C0E2D5ACDC07B9E6B ] ql40xx          C:\Windows\system32\DRIVERS\ql40xx.sys
 17:09:27.0179 0x2e08  ql40xx - ok
 17:09:27.0210 0x2e08  [ 31AC809E7707EB580B2BDB760390765A, A8481FD19A0F778F5591B7676F591F664ADC68B6867E663C0F9564173F4AC909 ] QWAVE           C:\Windows\system32\qwave.dll
 17:09:27.0273 0x2e08  QWAVE - ok
 17:09:27.0304 0x2e08  [ 584078CA1B95CA72DF2A27C336F9719D, 836F115C92D343463C14A9DE39648C1EFA7C7EE4720F5C692EE0F68B84830121 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
 17:09:27.0319 0x2e08  QWAVEdrv - ok
 17:09:27.0335 0x2e08  [ 30A81B53C766D0133BB86D234E5556AB, 726C6B83B5ACAA84CAB1689B6DD6DDAE3199D61A57B5D7B5B5A0F62FCF838090 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
 17:09:27.0397 0x2e08  RasAcd - ok
 17:09:27.0429 0x2e08  [ 57EC4AEF73660166074D8F7F31C0D4FD, C66B425EC4DB5E7FD289AE631C9B019EB16717C55E80FAE964BB22203E4AACEF ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
 17:09:27.0475 0x2e08  RasAgileVpn - ok
 17:09:27.0522 0x2e08  [ A60F1839849C0C00739787FD5EC03F13, B210DFA5A843CF1DA73635F168E2EA5052CBED15C664F8523CDFB34CA165D0E0 ] RasAuto         C:\Windows\System32\rasauto.dll
 17:09:27.0553 0x2e08  RasAuto - ok
 17:09:27.0569 0x2e08  [ D9F91EAFEC2815365CBE6D167E4E332A, 8350457A39D141C13807E7DB5A8D4113197C4016F7744B9993391F4AEA0C4A5C ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
 17:09:27.0616 0x2e08  Rasl2tp - ok
 17:09:27.0647 0x2e08  [ CB9E04DC05EACF5B9A36CA276D475006, 4D8C0AEF1D4F84F375AD2BAF786C9F6C52316A3E655B913449E71AD7C0FCA56E ] RasMan          C:\Windows\System32\rasmans.dll
 17:09:27.0694 0x2e08  RasMan - ok
 17:09:27.0709 0x2e08  [ 0FE8B15916307A6AC12BFB6A63E45507, 64119474DE7499E6E8B82E78BBD50074B3AA70B3E8329089FAE9B7F29919004E ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
 17:09:27.0772 0x2e08  RasPppoe - ok
 17:09:27.0787 0x2e08  [ 44101F495A83EA6401D886E7FD70096B, 56A0CE5C89870752B9B2AB795C1A248CA28209E049B2F20CCA0308CBE2488A0A ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
 17:09:27.0834 0x2e08  RasSstp - ok
 17:09:27.0881 0x2e08  [ D528BC58A489409BA40334EBF96A311B, C71E9A4B101DB6C3183B9F97B9098D73D6FE1B12C05C2EB3CE8A8041BEE6BA61 ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
 17:09:27.0943 0x2e08  rdbss - ok
 17:09:27.0975 0x2e08  [ 0D8F05481CB76E70E1DA06EE9F0DA9DF, 2AFCBE3237D27AFBF095F91F1FCCA63E6890F34A9E4F00E5C34C92394CDA89FB ] rdpbus          C:\Windows\system32\DRIVERS\rdpbus.sys
 17:09:27.0990 0x2e08  rdpbus - ok
 17:09:28.0037 0x2e08  [ 23DAE03F29D253AE74C44F99E515F9A1, 8FED93D10B2062F0526FE3508101F8FCF8F72DEB90AFB472EB7CBAE83A0EC430 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
 17:09:28.0068 0x2e08  RDPCDD - ok
 17:09:28.0131 0x2e08  [ B973FCFC50DC1434E1970A146F7E3885, BE797E5F5AE34D37F8DA1134CE94DD14DBE36D2BC405B97E992E2257848B7CA9 ] RDPDR           C:\Windows\system32\drivers\rdpdr.sys
 17:09:28.0177 0x2e08  RDPDR - ok
 17:09:28.0209 0x2e08  [ 5A53CA1598DD4156D44196D200C94B8A, 8112FE14FEC94C67B1C5BDE4171E37584F1D0098D2C557C9E4BDD3E0291E25E4 ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
 17:09:28.0271 0x2e08  RDPENCDD - ok
 17:09:28.0302 0x2e08  [ 44B0A53CD4F27D50ED461DAE0C0B4E1F, CDA80B08E67AD034081C0C920CD66147689F1844403CBC552F65005E7C011A91 ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
 17:09:28.0349 0x2e08  RDPREFMP - ok
 17:09:28.0380 0x2e08  [ EAC76854C359D2534B25296AE425410D, B813FFD395AC0B969C56FD8B8D04DF6E72C39C8C2E714B03747A20D5723D58DD ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
 17:09:28.0458 0x2e08  RdpVideoMiniport - ok
 17:09:28.0505 0x2e08  [ CD9214A6AE17D188D17C3CF8CB9CC693, 2E16FF1F7446F0600D6519010FD05A30B94D97167C16B3E7FC396A97D8139D60 ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
 17:09:28.0536 0x2e08  RDPWD - ok
 17:09:28.0567 0x2e08  [ 518395321DC96FE2C9F0E96AC743B656, 5F6A0880B4F3EE7196259EA362DA9554B0687B0236F9A8E5CF7A4A77F01F1776 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
 17:09:28.0599 0x2e08  rdyboost - ok
 17:09:28.0645 0x2e08  [ 7B5E1419717FAC363A31CC302895217A, 048B96B127CC20833948DAE53C59886D5C725ECA7A744424A01339447D2DDC32 ] RemoteAccess    C:\Windows\System32\mprdim.dll
 17:09:28.0692 0x2e08  RemoteAccess - ok
 17:09:28.0739 0x2e08  [ CB9A8683F4EF2BF99E123D79950D7935, B9FA3E7E91E76D975CF40BFA37909E50F29CC13AB1399007884710651827E9AA ] RemoteRegistry  C:\Windows\system32\regsvc.dll
 17:09:28.0786 0x2e08  RemoteRegistry - ok
 17:09:28.0833 0x2e08  [ CB928D9E6DAF51879DD6BA8D02F01321, DFD263B67DDF98AE09AF6D6986CBC7BE3206BCE8403AAC51BCF9459E78233D12 ] RFCOMM          C:\Windows\system32\DRIVERS\rfcomm.sys
 17:09:28.0879 0x2e08  RFCOMM - ok
 17:09:28.0911 0x2e08  [ 7A6648B61661B1421FFAB762E391E33F, D1CDEE8C53EF3D6E72DB4C1D9DD351BFE9804BB0BE1419245B4ABE16679FC5A2 ] rimmptsk        C:\Windows\system32\DRIVERS\rimmptsk.sys
 17:09:28.0957 0x2e08  rimmptsk - ok
 17:09:28.0973 0x2e08  [ D0A35B7670AA3558EAAB483F64446496, F70976D0214D3D52CCCE552EBC93548A39458B1F8C2D9D1257C4892BF85393E3 ] rimsptsk        C:\Windows\system32\DRIVERS\rimsptsk.sys
 17:09:29.0004 0x2e08  rimsptsk - ok
 17:09:29.0035 0x2e08  [ 6C1F93C0760C9F79A1869D07233DF39D, 70DD037E76F6E89CE9630175772707BB8588324058079B5F18C505B31306BACE ] rismxdp         C:\Windows\system32\DRIVERS\rixdptsk.sys
 17:09:29.0067 0x2e08  rismxdp - ok
 17:09:29.0098 0x2e08  [ 78D072F35BC45D9E4E1B61895C152234, 80C924EE1156B4E3172E83DCB9C60817E87885FB9377647E0BF90153E415B1CA ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
 17:09:29.0160 0x2e08  RpcEptMapper - ok
 17:09:29.0191 0x2e08  [ 94D36C0E44677DD26981D2BFEEF2A29D, D77A93AC60536F3706E8A0154C0C2199E888B7748C84DB7437254FF175F4DF55 ] RpcLocator      C:\Windows\system32\locator.exe
 17:09:29.0223 0x2e08  RpcLocator - ok
 17:09:29.0269 0x2e08  [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] RpcSs           C:\Windows\system32\rpcss.dll
 17:09:29.0301 0x2e08  RpcSs - ok
 17:09:29.0332 0x2e08  [ 032B0D36AD92B582D869879F5AF5B928, 0F8F18A6A0A689957B886D9368015889091094EDA18BE532093F06A70A7CE184 ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
 17:09:29.0394 0x2e08  rspndr - ok
 17:09:29.0425 0x2e08  [ 7FA7F2E249A5DCBB7970630E15E1F482, 9633B193F3FDA67BC551C6DCA4788AB83E9F45F77763EE579D02FE5D6B80DEDF ] s3cap           C:\Windows\system32\drivers\vms3cap.sys
 17:09:29.0472 0x2e08  s3cap - ok
 17:09:29.0488 0x2e08  [ 88142648ED929E6D2178CC3B8C13C00F, 7E6B6B2CF61C56FBF8F2A96BDA2E9506467A9A883BFD3BEA78A4F500851E76DB ] SamSs           C:\Windows\system32\lsass.exe
 17:09:29.0535 0x2e08  SamSs - ok
 17:09:29.0550 0x2e08  [ 05D860DA1040F111503AC416CCEF2BCA, DAE2F37D09A5A42F945BC8E27E4EA2303521081783A80CEE7FEE7C5A1C2CFC5E ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
 17:09:29.0581 0x2e08  sbp2port - ok
 17:09:29.0613 0x2e08  [ 8FC518FFE9519C2631D37515A68009C4, 21E10585470CF9FC3BD1977F8A426686CD2FA6BD2094B9E3594B21C7C4541D25 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
 17:09:29.0659 0x2e08  SCardSvr - ok
 17:09:29.0675 0x2e08  [ 0693B5EC673E34DC147E195779A4DCF6, AF1B56FBF3ADABF94CD9DBA67586B8746DE135151F6B3D1B0EE315BC1E2DB670 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
 17:09:29.0722 0x2e08  scfilter - ok
 17:09:29.0784 0x2e08  [ 9060B8D5BCD5F2B019249F85E3D811F3, 7FB32AB7FE118462988321B9230074DAA960B587417EB463187539C3215445AE ] Schedule        C:\Windows\system32\schedsvc.dll
 17:09:29.0878 0x2e08  Schedule - ok
 17:09:29.0925 0x2e08  [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] SCPolicySvc     C:\Windows\System32\certprop.dll
 17:09:29.0956 0x2e08  SCPolicySvc - ok
 17:09:29.0987 0x2e08  [ 0328BE1C7F1CBA23848179F8762E391C, EA80853F04BAE6F46F658B3EFED34BFDDE20E6F2BDA349EBC17EC75DFF19855D ] sdbus           C:\Windows\system32\drivers\sdbus.sys
 17:09:30.0018 0x2e08  sdbus - ok
 17:09:30.0049 0x2e08  [ 08236C4BCE5EDD0A0318A438AF28E0F7, 77727F963F63C4CEC11E7AAD5FB3836179701D512CA9436C3170B9E6A4E5F888 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
 17:09:30.0096 0x2e08  SDRSVC - ok
 17:09:30.0127 0x2e08  [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv          C:\Windows\system32\drivers\secdrv.sys
 17:09:30.0159 0x2e08  secdrv - ok
 17:09:30.0174 0x2e08  [ A59B3A4442C52060CC7A85293AA3546F, 1776D6DEE51991149265AAF39E17065E301C5FA1FF4068653DC0010B9B27185D ] seclogon        C:\Windows\system32\seclogon.dll
 17:09:30.0237 0x2e08  seclogon - ok
 17:09:30.0382 0x2e08  [ A1DA2F0B5BE2B37251611FB5CA7D60BD, 6D46C6CB584145A37C55A85B1A56A67FA0CA7DA90A9F6E5A6AC9CD676FE0A7ED ] second_harmonic C:\Windows\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\class_b\supervisor.exe
 17:09:30.0414 0x2e08  second_harmonic - detected UnsignedFile.Multi.Generic ( 1 )
 17:09:32.0941 0x2e08  second_harmonic ( UnsignedFile.Multi.Generic ) - warning
 17:09:35.0521 0x2e08  [ DCB7FCDCC97F87360F75D77425B81737, F8289AF2C458C167038EEFE613EE5E3D6D5B3308B8784168374BC81C47891CE5 ] SENS            C:\Windows\System32\sens.dll
 17:09:35.0567 0x2e08  SENS - ok
 17:09:35.0583 0x2e08  [ 50087FE1EE447009C9CC2997B90DE53F, B5E6CF1D991F87C29C5E28198E0962E31FFB499A46C3BD43FC20391693389959 ] SensrSvc        C:\Windows\system32\sensrsvc.dll
 17:09:35.0614 0x2e08  SensrSvc - ok
 17:09:35.0630 0x2e08  [ 9AD8B8B515E3DF6ACD4212EF465DE2D1, E2F019BCD1446236D078D46065DD151DD068778F33BE2F1E8A0CC1EA2F954E86 ] Serenum         C:\Windows\system32\DRIVERS\serenum.sys
 17:09:35.0645 0x2e08  Serenum - ok
 17:09:35.0677 0x2e08  [ 5FB7FCEA0490D821F26F39CC5EA3D1E2, A26DB2EB9F3E2509B4EBA949DB97595CC32332D9321DF68283BFC102E66D766F ] Serial          C:\Windows\system32\DRIVERS\serial.sys
 17:09:35.0723 0x2e08  Serial - ok
 17:09:35.0755 0x2e08  [ 79BFFB520327FF916A582DFEA17AA813, 7A2A9D69BE02228591186A9F4453D4B5FD98837CA422C873C48040170E8BD18C ] sermouse        C:\Windows\system32\DRIVERS\sermouse.sys
 17:09:35.0786 0x2e08  sermouse - ok
 17:09:35.0848 0x2e08  [ 4AE380F39A0032EAB7DD953030B26D28, C8F5F2DD59574E966FDF3057867BB959A554BAB6FD5DC6F1427094A6BC2B2809 ] SessionEnv      C:\Windows\system32\sessenv.dll
 17:09:35.0879 0x2e08  SessionEnv - ok
 17:09:35.0942 0x2e08  [ 4C0D673281178CB496011A2E28571FC8, 14CFB50F3EA987C4485475B2E5EC85C137949911495245F29FE64723C909C9E8 ] sfdrv01         C:\Windows\system32\drivers\sfdrv01.sys
 17:09:35.0973 0x2e08  sfdrv01 - detected UnsignedFile.Multi.Generic ( 1 )
 17:09:38.0401 0x2e08  Detect skipped due to KSN trusted
 17:09:38.0401 0x2e08  sfdrv01 - ok
 17:09:38.0475 0x2e08  [ 9F976E1EB233DF46FCE808D9DEA3EB9C, 6A5C53F27F8BCA85CE206EE7D196176F67EC6FFA5D4830373A20792C149B5E75 ] sffdisk         C:\Windows\system32\DRIVERS\sffdisk.sys
 17:09:38.0506 0x2e08  sffdisk - ok
 17:09:38.0537 0x2e08  [ 932A68EE27833CFD57C1639D375F2731, 11D6B98FBEEE2B9C7B06EF7091857BBD3B349077997D6261D66280668FD1B5C3 ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
 17:09:38.0568 0x2e08  sffp_mmc - ok
 17:09:38.0599 0x2e08  [ 6D4CCAEDC018F1CF52866BBBAA235982, AAC41F5C97B3FE5A3DC0838457EB8CC9BB71FCA16D3EDBB67D603F0A9D46C131 ] sffp_sd         C:\Windows\system32\DRIVERS\sffp_sd.sys
 17:09:38.0631 0x2e08  sffp_sd - ok
 17:09:38.0678 0x2e08  [ 15BE2B5E4DC5B8623CF167720682ABC9, FAECDC0DCB6EACE8130B278E2FB84B9523AB10329A00B24043B9C76867B917F0 ] sfhlp02         C:\Windows\system32\drivers\sfhlp02.sys
 17:09:38.0693 0x2e08  sfhlp02 - detected UnsignedFile.Multi.Generic ( 1 )
 17:09:41.0161 0x2e08  Detect skipped due to KSN trusted
 17:09:41.0161 0x2e08  sfhlp02 - ok
 17:09:41.0223 0x2e08  [ DB96666CC8312EBC45032F30B007A547, C3AE60FC65A36E96E0D2CC6E184481D70F91A19DC3E2E17E2873DD670A592DD7 ] sfloppy         C:\Windows\system32\DRIVERS\sfloppy.sys
 17:09:41.0254 0x2e08  sfloppy - ok
 17:09:41.0317 0x2e08  [ EFEBBC1D13FDB77A6AF4EDDFC7232EDF, 32888536C6E632DF78EC09A4CFB990B08ED75DB049DDF2612F548CC8FEB8D503 ] sfsync02        C:\Windows\system32\drivers\sfsync02.sys
 17:09:41.0348 0x2e08  sfsync02 - detected UnsignedFile.Multi.Generic ( 1 )
 17:09:43.0860 0x2e08  Detect skipped due to KSN trusted
 17:09:43.0860 0x2e08  sfsync02 - ok
 17:09:43.0963 0x2e08  [ D5A7E09D2C6A702809E49190D52ADC9F, 7B3226A7C8C954A04B4543AFAA3079AA9A306E00CBD81346F952B40804608A87 ] sfvfs02         C:\Windows\system32\drivers\sfvfs02.sys
 17:09:43.0963 0x2e08  sfvfs02 - detected UnsignedFile.Multi.Generic ( 1 )
 17:09:46.0420 0x2e08  Detect skipped due to KSN trusted
 17:09:46.0420 0x2e08  sfvfs02 - ok
 17:09:46.0541 0x2e08  [ D1A079A0DE2EA524513B6930C24527A2, E2BC16DBCF38841EECD49C6FA1A9AC89C17F332F12606CA826F058E995E1B83D ] SharedAccess    C:\Windows\System32\ipnathlp.dll
 17:09:46.0587 0x2e08  SharedAccess - ok
 17:09:46.0648 0x2e08  [ 414DA952A35BF5D50192E28263B40577, 9C9BAFB9880DA6CC728506A142BE124E186219610DCC3460657A3CA93C865DF1 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
 17:09:46.0693 0x2e08  ShellHWDetection - ok
 17:09:46.0717 0x2e08  [ 2565CAC0DC9FE0371BDCE60832582B2E, 1A775214E86B83C2F1799F12D71077D81C89AD32734A248BA88787B7F104B79D ] sisagp          C:\Windows\system32\drivers\sisagp.sys
 17:09:46.0736 0x2e08  sisagp - ok
 17:09:46.0763 0x2e08  [ A9F0486851BECB6DDA1D89D381E71055, 7E909538AB758C18AC2CCBFFEE17BA36FA6ED2E674AA70924AA87AC61375FF35 ] SiSRaid2        C:\Windows\system32\DRIVERS\SiSRaid2.sys
 17:09:46.0783 0x2e08  SiSRaid2 - ok
 17:09:46.0809 0x2e08  [ 3727097B55738E2F554972C3BE5BC1AA, 75D52A596A298C33EC79A3B0B80F25492C08A182ABC679401502DA9597687566 ] SiSRaid4        C:\Windows\system32\DRIVERS\sisraid4.sys
 17:09:46.0829 0x2e08  SiSRaid4 - ok
 17:09:46.0854 0x2e08  [ 3E21C083B8A01CB70BA1F09303010FCE, 803F8F91299C387110F34A49340E7136AAE91B418E2977A36285EA8F432FF197 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
 17:09:46.0890 0x2e08  Smb - ok
 17:09:46.0937 0x2e08  [ 6A984831644ECA1A33FFEAE4126F4F37, 753E23D2B33D47C52C05D892B052CFD96D93B97FB6E9FCB58EF1E4C4A125BF78 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
 17:09:46.0980 0x2e08  SNMPTRAP - ok
 17:09:46.0997 0x2e08  [ 95CF1AE7527FB70F7816563CBC09D942, CE8BACB91A5A86CBCE82619C6C1873B4D7593B00CED3B522E41B8F7F6258CC65 ] spldr           C:\Windows\system32\drivers\spldr.sys
 17:09:47.0012 0x2e08  spldr - ok
 17:09:47.0059 0x2e08  [ 9AEA093B8F9C37CF45538382CABA2475, CC63239C412067AA72318ADB8BB80BCDF2CA60DA05D814D32753C92508BC16A8 ] Spooler         C:\Windows\System32\spoolsv.exe
 17:09:47.0106 0x2e08  Spooler - ok
 17:09:47.0262 0x2e08  [ CF87A1DE791347E75B98885214CED2B8, 7AF4E03D751C951A4E5FBA28200DABFE6B3BF055490163EEEEA84EBA4D0F368A ] sppsvc          C:\Windows\system32\sppsvc.exe
 17:09:47.0422 0x2e08  sppsvc - ok
 17:09:47.0480 0x2e08  [ B0180B20B065D89232A78A40FE56EAA6, 4D045B23AD58A8822BE9F20119744A8D47455469D54494745CEB099951DA60FF ] sppuinotify     C:\Windows\system32\sppuinotify.dll
 17:09:47.0531 0x2e08  sppuinotify - ok
 17:09:47.0598 0x2e08  [ CDDDEC541BC3C96F91ECB48759673505, B030FFA02832317AC5626BF1BF8A4A95A5992C9A6E81BC1C002D5F4D667C27FB ] sptd            C:\Windows\system32\Drivers\sptd.sys
 17:09:47.0599 0x2e08  Suspicious file ( NoAccess ): C:\Windows\system32\Drivers\sptd.sys. md5: CDDDEC541BC3C96F91ECB48759673505, sha256: B030FFA02832317AC5626BF1BF8A4A95A5992C9A6E81BC1C002D5F4D667C27FB
 17:09:47.0604 0x2e08  sptd - detected LockedFile.Multi.Generic ( 1 )
 17:09:50.0086 0x2e08  Detect skipped due to KSN trusted
 17:09:50.0086 0x2e08  sptd - ok
 17:09:50.0148 0x2e08  [ E4C2764065D66EA1D2D3EBC28FE99C46, 043AEF06A23069DD17675955C834690A5FD8F1948A05B3969F977E823C4E25F5 ] srv             C:\Windows\system32\DRIVERS\srv.sys
 17:09:50.0195 0x2e08  srv - ok
 17:09:50.0210 0x2e08  [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB, 4DF31206DF8F33C2975E23C7257ED930C4EDA8BC4E246D8FDA130BB583083ED0 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
 17:09:50.0257 0x2e08  srv2 - ok
 17:09:50.0320 0x2e08  [ E00FDFAFF025E94F9821153750C35A6D, 6ECDC5F314A29B859B0DCB7FF114CACE0718612556299B16412C21F9539DC9B5 ] SrvHsfHDA       C:\Windows\system32\DRIVERS\VSTAZL3.SYS
 17:09:50.0366 0x2e08  SrvHsfHDA - ok
 17:09:50.0413 0x2e08  [ CEB4E3B6890E1E42DCA6694D9E59E1A0, 00D841690A88F1051A238F67AACCE905E8A59C86070F215A8D31FA3E68C6BF35 ] SrvHsfV92       C:\Windows\system32\DRIVERS\VSTDPV3.SYS
 17:09:50.0491 0x2e08  SrvHsfV92 - ok
 17:09:50.0538 0x2e08  [ BC0C7EA89194C299F051C24119000E17, F5FB21F7AD7370F3D5DF7C23F33118ECF19865B995AF12E9A8A8D893E7E6264F ] SrvHsfWinac     C:\Windows\system32\DRIVERS\VSTCNXT3.SYS
 17:09:50.0569 0x2e08  SrvHsfWinac - ok
 17:09:50.0600 0x2e08  [ BE6BD660CAA6F291AE06A718A4FA8ABC, CD38939CFBA80B882D38099194FC1EBAE15A9D27A4D941DD03C55EC745E52E59 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
 17:09:50.0632 0x2e08  srvnet - ok
 17:09:50.0678 0x2e08  [ D887C9FD02AC9FA880F6E5027A43E118, F38BAD90EC791368C37C21090302708D2DFB83ECE9096609AD9AA667B2E5592E ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
 17:09:50.0725 0x2e08  SSDPSRV - ok
 17:09:50.0756 0x2e08  [ 424566865D82AA4BD8D6546C1F2065FA, 37B4C04C7C0EE0F3347A9E9F35B095478299F7324CA87AAE487BF989B0E6AE03 ] ssmdrv          C:\Windows\system32\DRIVERS\ssmdrv.sys
 17:09:50.0772 0x2e08  ssmdrv - ok
 17:09:50.0834 0x2e08  [ D318F23BE45D5E3A107469EB64815B50, D74355E6FF215AA8CE53BC9DF16AF2740F2FC2FD754939478A3608BDA8C6DDA0 ] SstpSvc         C:\Windows\system32\sstpsvc.dll
 17:09:50.0866 0x2e08  SstpSvc - ok
 17:09:50.0866 0x2e08  Steam Client Service - ok
 17:09:50.0897 0x2e08  [ DB32D325C192B801DF274BFD12A7E72B, F089DBA719E22BC269720A6B840B873A4AF5639745DB0C3DBC8BD2F2839A1ABA ] stexstor        C:\Windows\system32\DRIVERS\stexstor.sys
 17:09:50.0912 0x2e08  stexstor - ok
 17:09:50.0959 0x2e08  [ E1FB3706030FB4578A0D72C2FC3689E4, A62EC9AA4514CAF2A10C0A3AEF7A36F593A7E7DA370A3F130C24E1B612E19427 ] StiSvc          C:\Windows\System32\wiaservc.dll
 17:09:51.0022 0x2e08  StiSvc - ok
 17:09:51.0068 0x2e08  [ 472AF0311073DCECEAA8FA18BA2BDF89, 089414057EB2047E42C96C1ACE79D509967461DC5A4D2836F63C04268637A3FC ] storflt         C:\Windows\system32\drivers\vmstorfl.sys
 17:09:51.0084 0x2e08  storflt - ok
 17:09:51.0115 0x2e08  [ DCAFFD62259E0BDB433DD67B5BB37619, CBD12FF9BBF33D18B0F3D322B12EC62E7DF3BF45C6AD43D2E91FF4C4762E05D0 ] storvsc         C:\Windows\system32\drivers\storvsc.sys
 17:09:51.0131 0x2e08  storvsc - ok
 17:09:51.0146 0x2e08  [ E58C78A848ADD9610A4DB6D214AF5224, 1575A90EB22A4FB066459BDA00C6CAC10198C3C8C74493721EC6D34B51F50426 ] swenum          C:\Windows\system32\drivers\swenum.sys
 17:09:51.0162 0x2e08  swenum - ok
 17:09:51.0193 0x2e08  [ A28BD92DF340E57B024BA433165D34D7, 889CC7FF143C3549982128473FF927CD80CF36485A347EF399C1271C8CE12CE4 ] swprv           C:\Windows\System32\swprv.dll
 17:09:51.0256 0x2e08  swprv - ok
 17:09:51.0256 0x2e08  Synth3dVsc - ok
 17:09:51.0334 0x2e08  [ 4EE25AC85AFC3FD67D9F57ECDF566FF2, F1BFF1FB655F31B97FA9C6A49D433EFD33D8A35F6B28B4D83E45C27A05A86228 ] SysMain         C:\Windows\system32\sysmain.dll
 17:09:51.0443 0x2e08  SysMain - ok
 17:09:51.0474 0x2e08  [ 763FECDC3D30C815FE72DD57936C6CD1, 1A62C7E63E426D56894F4121C75D9C60FC9A14469ADBD0D6F0B94B8DE48CDA3E ] TabletInputService C:\Windows\System32\TabSvc.dll
 17:09:51.0505 0x2e08  TabletInputService - ok
 17:09:51.0536 0x2e08  [ 613BF4820361543956909043A265C6AC, FCFF02E466D2501630B452627FB218C01E5245A0921EE3D2117E7FD63AC7E98E ] TapiSrv         C:\Windows\System32\tapisrv.dll
 17:09:51.0599 0x2e08  TapiSrv - ok
 17:09:51.0646 0x2e08  [ B799D9FDB26111737F58288D8DC172D9, 409A60819A4305699E2E492A6190637FAAEBD19E745A5DB2A5D6977106C86591 ] TBS             C:\Windows\System32\tbssvc.dll
 17:09:51.0692 0x2e08  TBS - ok
 17:09:51.0770 0x2e08  [ 5579DD18546999F5D0EC39D018726C6B, 82432BACEE75C34F21222D9CC1607223C2940947118A63DB239777A4B1442AD3 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
 17:09:51.0848 0x2e08  Tcpip - ok
 17:09:51.0911 0x2e08  [ 5579DD18546999F5D0EC39D018726C6B, 82432BACEE75C34F21222D9CC1607223C2940947118A63DB239777A4B1442AD3 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
 17:09:51.0958 0x2e08  TCPIP6 - ok
 17:09:52.0004 0x2e08  [ 3EEBD3BD93DA46A26E89893C7AB2FF3B, 2C7204DCD2BCBC6A250FF0F6477616F327AF41FDB7CABE69E5C357361009FB4E ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
 17:09:52.0020 0x2e08  tcpipreg - ok
 17:09:52.0067 0x2e08  [ 1CB91B2BD8F6DD367DFC2EF26FD751B2, 879E2827354BB21573AC6A7CCEB746D44214540687E6882FFCB4089546FBD954 ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
 17:09:52.0098 0x2e08  TDPIPE - ok
 17:09:52.0129 0x2e08  [ 2C2C5AFE7EE4F620D69C23C0617651A8, E828D974C3F9D7004A030C3AD448096C736FDB4C4C1707D043E567D08C845103 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
 17:09:52.0145 0x2e08  TDTCP - ok
 17:09:52.0176 0x2e08  [ 7FE680A3DFA421C4A8E4879AE4C5AAB0, A4C64E155AB2843823CD3586756BA7681CFDEA50812095468221503BBAD30DCD ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
 17:09:52.0238 0x2e08  tdx - ok
 17:09:52.0254 0x2e08  [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20, 0D81B427720637882077C5024D738191F858FC734ED040697872D906351EF663 ] TermDD          C:\Windows\system32\drivers\termdd.sys
 17:09:52.0270 0x2e08  TermDD - ok
 17:09:52.0332 0x2e08  [ FCFD4F50419B4BC72E80066DA10D2E54, 7C2314A57A404525F0444986332DBAE0964A3359374671598387051D7AAE72AE ] TermService     C:\Windows\System32\termsrv.dll
 17:09:52.0394 0x2e08  TermService - ok
 17:09:52.0426 0x2e08  [ 42FB6AFD6B79D9FE07381609172E7CA4, B57C85091209A2FAD19ED490B8FA7FC98F12911F9C9CACE9AF1E540780CE6700 ] Themes          C:\Windows\system32\themeservice.dll
 17:09:52.0472 0x2e08  Themes - ok
 17:09:52.0472 0x2e08  [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] THREADORDER     C:\Windows\system32\mmcss.dll
 17:09:52.0519 0x2e08  THREADORDER - ok
 17:09:52.0535 0x2e08  [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A, 532A3A812578B2DFD83001DE66FC73689D79EC729409EB572E07E6D65B281712 ] TrkWks          C:\Windows\System32\trkwks.dll
 17:09:52.0597 0x2e08  TrkWks - ok
 17:09:52.0660 0x2e08  [ 2C49B175AEE1D4364B91B531417FE583, 6C7995E18F84E465C376D1D5F153C15ACB66CDEA86EE5BF186677F572E7E129B ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
 17:09:52.0706 0x2e08  TrustedInstaller - ok
 17:09:52.0738 0x2e08  [ 6C5139E4283249518F7743D7043775B3, 58684E8C90EBAC65459A97C905CDCFE3A915CFF7E8E96071DE1AC3489F85E67F ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
 17:09:52.0753 0x2e08  tssecsrv - ok
 17:09:52.0816 0x2e08  [ FD1D6C73E6333BE727CBCC6054247654, 6F7B9AE1A5986204DB3348D13B303F30FC17624939DA74D6BD114FAEED0FB30E ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
 17:09:52.0862 0x2e08  TsUsbFlt - ok
 17:09:52.0862 0x2e08  tsusbhub - ok
 17:09:52.0909 0x2e08  [ CDDB80CAE568A7068F2C4440390D4B68, ED9D3E46C1BCF9E00D353014DD5ED893EC8949F213317776D8244D92EB9E1F08 ] TT1724ht        C:\Windows\system32\drivers\TT1724ht.sys
 17:09:52.0925 0x2e08  TT1724ht - ok
 17:09:52.0956 0x2e08  [ 1155503966912F49B2AFD2E58C5E5856, 10F21DB4AE466B7905BBED0F60DA725F1AB61C85DABAD8585E68D5288DBF7DE4 ] TT1724sa        C:\Windows\system32\drivers\TT1724sa.sys
 17:09:52.0987 0x2e08  TT1724sa - ok
 17:09:53.0268 0x2e08  [ AF5F31156EE89D35AD6EC3179A805D23, 92CF2FF24963589157DCD6F79A75D9918EC4C002E9C1CD74A14BE084E833DA88 ] TuneUp.UtilitiesSvc C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe
 17:09:53.0330 0x2e08  TuneUp.UtilitiesSvc - ok
 17:09:53.0362 0x2e08  [ F2107C9D85EC0DF116939CCCE06AE697, 4608E3D0CA0B252130B4DF2505DB4D89635C327A343B470FCB81B8B02CD9FA44 ] TuneUpUtilitiesDrv C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesDriver32.sys
 17:09:53.0377 0x2e08  TuneUpUtilitiesDrv - ok
 17:09:53.0424 0x2e08  [ B2FA25D9B17A68BB93D58B0556E8C90D, 0146931B733CAB1CD87F94C35F97E110D6ED6C55EAFF03345400A29AEDE99BDE ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
 17:09:53.0455 0x2e08  tunnel - ok
 17:09:53.0471 0x2e08  uafilter - ok
 17:09:53.0502 0x2e08  [ 750FBCB269F4D7DD2E420C56B795DB6D, E1A95C59148FE463539C34336FD0E74B31A33B8AB2B8E34AA10349C3347471D7 ] uagp35          C:\Windows\system32\DRIVERS\uagp35.sys
 17:09:53.0518 0x2e08  uagp35 - ok
 17:09:53.0564 0x2e08  [ EE43346C7E4B5E63E54F927BABBB32FF, BAD6FC3BEE45E644D5A6A0A31428F5B2AEC72A0AA0C74EF8177B1FE23EEF3AA9 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
 17:09:53.0596 0x2e08  udfs - ok
 17:09:53.0642 0x2e08  [ 8344FD4FCE927880AA1AA7681D4927E5, 1B54EFA60A221E2B9FFE59BB41C7E7D8B5AC6826F1C5577456D81371D464255A ] UI0Detect       C:\Windows\system32\UI0Detect.exe
 17:09:53.0689 0x2e08  UI0Detect - ok
 17:09:53.0736 0x2e08  [ 44E8048ACE47BEFBFDC2E9BE4CBC8880, 5D96D90FDF68AE470CC92CA9DF9DA2C05A53EF455A5A109DBBF7C96F3238257C ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
 17:09:53.0752 0x2e08  uliagpkx - ok
 17:09:53.0783 0x2e08  [ D295BED4B898F0FD999FCFA9B32B071B, D4130DB4AE76EE6DC0B8E7A4FEF5CB8B26EBD822C21021F6FA78FD29C1E211C2 ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
 17:09:53.0830 0x2e08  umbus - ok
 17:09:53.0845 0x2e08  [ 7550AD0C6998BA1CB4843E920EE0FEAC, 24C001E422C3B3B920CDCF6003A3179CE464DE4284775403DD5122EF9780460D ] UmPass          C:\Windows\system32\DRIVERS\umpass.sys
 17:09:53.0892 0x2e08  UmPass - ok
 17:09:53.0939 0x2e08  [ 409994A8EACEEE4E328749C0353527A0, FFC57B647147DE2957A7DE4B330CC534DE7AC892A2FCE3BB164F7A516CAB1B56 ] UmRdpService    C:\Windows\System32\umrdp.dll
 17:09:53.0986 0x2e08  UmRdpService - ok
 17:09:54.0017 0x2e08  [ 833FBB672460EFCE8011D262175FAD33, C0C3067A305993CBF056C229771CB0593DD60C9C7AC5130FF1CA610BCA812AB5 ] upnphost        C:\Windows\System32\upnphost.dll
 17:09:54.0079 0x2e08  upnphost - ok
 17:09:54.0126 0x2e08  [ 83CAFCB53201BBAC04D822F32438E244, E3F6FDE4D429FB630B19417DD9752A2CE9F6C9FD58918D714B5438A3D4136853 ] USBAAPL         C:\Windows\system32\Drivers\usbaapl.sys
 17:09:54.0157 0x2e08  USBAAPL - detected UnsignedFile.Multi.Generic ( 1 )
 17:10:04.0171 0x2e08  USBAAPL ( UnsignedFile.Multi.Generic ) - warning
 17:10:07.0710 0x2e08  [ A1977C315BF5691DA99235AA4A6907AF, 34B52FBA83F0E1C6B001D0AD1808B00152F731D18AAECC3C53B9918AA89BACEC ] usbaudio        C:\Windows\system32\drivers\usbaudio.sys
 17:10:07.0741 0x2e08  usbaudio - ok
 17:10:07.0757 0x2e08  [ 0803FBA9FE829D61AE26EC0BCC910C46, 30D00E2C7DFC630C99C1599587D4F9C272BC30D444E07C961AA05BF84587806B ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
 17:10:07.0819 0x2e08  usbccgp - ok
 17:10:07.0913 0x2e08  [ 2352AB5F9F8F097BF9D41D5A4718A041, 25BC7828C625B9B2A5110C25B230C5828CEC18EC97ECF9EC4745E8930CBF472C ] usbcir          C:\Windows\system32\drivers\usbcir.sys
 17:10:07.0962 0x2e08  usbcir - ok
 17:10:07.0978 0x2e08  [ D40855F89B69305140BBD7E9A3BA2DA6, 745DC6D770666F6B19C2B6AA89C21D1A314732E291453BFA2367F9AF86F97C3C ] usbehci         C:\Windows\system32\DRIVERS\usbehci.sys
 17:10:08.0025 0x2e08  usbehci - ok
 17:10:08.0056 0x2e08  [ EDF2DF71C4F1E13A6AC75F5224DE655A, 1764D155C6B99201774B57195349304259232A12868ECFC2069CA49443EBDC2C ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
 17:10:08.0103 0x2e08  usbhub - ok
 17:10:08.0134 0x2e08  [ 9828C8D14CC2676421778F0DE638CF97, 479A28211FFB85190A01FAB0283B927588805D2C0CDB03F85F8F814B88E4F453 ] usbohci         C:\Windows\system32\drivers\usbohci.sys
 17:10:08.0150 0x2e08  usbohci - ok
 17:10:08.0181 0x2e08  [ 797D862FE0875E75C7CC4C1AD7B30252, 1BBE745E4C85F8911076F6032ACD7A35FAC048D3CB1500C64E08D8B2C70A1069 ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
 17:10:08.0196 0x2e08  usbprint - ok
 17:10:08.0243 0x2e08  [ F991AB9CC6B908DB552166768176896A, AD8E7A16B23B244B7F834622D4E38B5844193C6E31EF96F61E0E2EA16C945026 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
 17:10:08.0306 0x2e08  USBSTOR - ok
 17:10:08.0321 0x2e08  [ 800AABFD625EEFF899F7E5496BDE37AB, 3EB7ED07760CB348FCA9A06C2B838EF79B51A83C5F70A9C9EAAEAE54480067E2 ] usbuhci         C:\Windows\system32\DRIVERS\usbuhci.sys
 17:10:08.0352 0x2e08  usbuhci - ok
 17:10:08.0384 0x2e08  [ DE014425522610BEDCA3821BB8C0F1D5, D6FEA0DF07F89834AEEE8C02CC7FD41068D758B6CCECE2EEE5CF4B9DB646FA1E ] usbvideo        C:\Windows\System32\Drivers\usbvideo.sys
 17:10:08.0399 0x2e08  usbvideo - ok
 17:10:08.0445 0x2e08  [ AF77716205C97E902E6C5B78DECE2CCA, ED99EABED1C7F323EE2A76413E2B260F8EE1D76FDF1E60EE35136D060E756735 ] usb_rndisx      C:\Windows\system32\drivers\usb8023x.sys
 17:10:08.0496 0x2e08  usb_rndisx - ok
 17:10:08.0522 0x2e08  [ 081E6E1C91AEC36758902A9F727CD23C, 9FDAA17A3B99067E035E5D76305427F15FFDBC5D304B2BB78AFC6463EDDE1A75 ] UxSms           C:\Windows\System32\uxsms.dll
 17:10:08.0564 0x2e08  UxSms - ok
 17:10:08.0626 0x2e08  [ 6275822AC454A8A831D063841A4DBB5D, 8CB06BE21F0B902695C2846BA9E49327A07D691EBB37A81EF171805630411365 ] UxTuneUp        C:\Windows\System32\uxtuneup.dll
 17:10:08.0642 0x2e08  UxTuneUp - ok
 17:10:08.0657 0x2e08  [ 88142648ED929E6D2178CC3B8C13C00F, 7E6B6B2CF61C56FBF8F2A96BDA2E9506467A9A883BFD3BEA78A4F500851E76DB ] VaultSvc        C:\Windows\system32\lsass.exe
 17:10:08.0673 0x2e08  VaultSvc - ok
 17:10:08.0704 0x2e08  [ 1CDAA48CB2F7744B8D25650E050766A5, 97C7BDEAFFDAD337F4101860061BCCE6C519343B7EEEB72C3AD450B59DACCA66 ] VClone          C:\Windows\system32\DRIVERS\VClone.sys
 17:10:08.0737 0x2e08  VClone - ok
 17:10:08.0768 0x2e08  [ A059C4C3EDB09E07D21A8E5C0AABD3CB, BDD3729B49DF2E2FC72FFEF9D10235B481A671DE5A721B6B9A80873B7A343F07 ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
 17:10:08.0800 0x2e08  vdrvroot - ok
 17:10:08.0831 0x2e08  [ C3CD30495687C2A2F66A65CA6FD89BE9, 582E4706C1D6A151020D14B26C7BF166F4E42BDD6E410F30EC452469270C5E9B ] vds             C:\Windows\System32\vds.exe
 17:10:08.0893 0x2e08  vds - ok
 17:10:08.0924 0x2e08  [ 17C408214EA61696CEC9C66E388B14F3, 829C0416672E2B2DFABCFE641E7F281F41E8DBB3C0EF11C7784CB9BB94F87E97 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
 17:10:08.0971 0x2e08  vga - ok
 17:10:09.0002 0x2e08  [ 8E38096AD5C8570A6F1570A61E251561, 4DBA3C1397A2203548F45F006E66D99F837903F601ABBCE2304754F783CA8A39 ] VgaSave         C:\Windows\System32\drivers\vga.sys
 17:10:09.0041 0x2e08  VgaSave - ok
 17:10:09.0052 0x2e08  VGPU - ok
 17:10:09.0084 0x2e08  [ 5461686CCA2FDA57B024547733AB42E3, 2721D0659AA890172FCAD4EC4D926B58ACD0EE4887DA51545DC7237420D5BF84 ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
 17:10:09.0106 0x2e08  vhdmp - ok
 17:10:09.0126 0x2e08  [ C829317A37B4BEA8F39735D4B076E923, 55D1796AE750071E1E05BD7702B6C355CCFFE27B4C00E93E7044C3184732B497 ] viaagp          C:\Windows\system32\drivers\viaagp.sys
 17:10:09.0144 0x2e08  viaagp - ok
 17:10:09.0164 0x2e08  [ E02F079A6AA107F06B16549C6E5C7B74, B530DCE3EE4F285B3D5F69F7148D17E016D54F04E6F93706B829A34567748788 ] ViaC7           C:\Windows\system32\DRIVERS\viac7.sys
 17:10:09.0209 0x2e08  ViaC7 - ok
 17:10:09.0248 0x2e08  [ E43574F6A56A0EE11809B48C09E4FD3C, 3687BF638E21C00E62ABFED70D728B91ADA08F7164CA898E654F31DA196589E9 ] viaide          C:\Windows\system32\drivers\viaide.sys
 17:10:09.0265 0x2e08  viaide - ok
 17:10:09.0311 0x2e08  [ C2F2911156FDC7817C52829C86DA494E, FE499F189B5016FCE0018AA3DE3970B72275B7B15F3D4D608117F6DDEC6B90DC ] vmbus           C:\Windows\system32\drivers\vmbus.sys
 17:10:09.0332 0x2e08  vmbus - ok
 17:10:09.0366 0x2e08  [ D4D77455211E204F370D08F4963063CE, 2018B2A84C73E0834200A594C02A9D28C74906F126DAD3CCDDFC9CD9A61669E2 ] VMBusHID        C:\Windows\system32\drivers\VMBusHID.sys
 17:10:09.0382 0x2e08  VMBusHID - ok
 17:10:09.0413 0x2e08  [ 3B8F222B23917C041E4DA29CCC57E7D0, 2764C7A11FD5672FBF72CDD4331F1895B5084664919AD4FC855DFDD451403D4C ] vncmirror       C:\Windows\system32\DRIVERS\vncmirror.sys
 17:10:09.0444 0x2e08  vncmirror - ok
 17:10:09.0460 0x2e08  [ 4C63E00F2F4B5F86AB48A58CD990F212, 9796BD4B9CFEEEAF57C5E332A732EFC2770B21F9B35301A5D202F5FC52C1E035 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
 17:10:09.0475 0x2e08  volmgr - ok
 17:10:09.0491 0x2e08  [ B5BB72067DDDDBBFB04B2F89FF8C3C87, 65B9AD55F43940A5FDD88B6EC5034A7E375DF8E6F5F1AE6519A4BD6B7E992EBC ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
 17:10:09.0522 0x2e08  volmgrx - ok
 17:10:09.0569 0x2e08  [ F497F67932C6FA693D7DE2780631CFE7, DAE544ED99D2CF570DA31343BD87D2F856D0D13529656D38E1BF854C77F017F6 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
 17:10:09.0585 0x2e08  volsnap - ok
 17:10:09.0616 0x2e08  [ 9DFA0CC2F8855A04816729651175B631, 37FD9E43A2A3F125E94A315FB4CD8A1B5499A5FD74806EB2D1E5DA88C070D3A3 ] vsmraid         C:\Windows\system32\DRIVERS\vsmraid.sys
 17:10:09.0647 0x2e08  vsmraid - ok
 17:10:09.0709 0x2e08  [ 209A3B1901B83AEB8527ED211CCE9E4C, 1A431F6409F8E0531F600F8F988ECECECB902DA26BBAAF1DE74A5CAC29A7CB44 ] VSS             C:\Windows\system32\vssvc.exe
 17:10:09.0787 0x2e08  VSS - ok
 17:10:09.0834 0x2e08  vToolbarUpdater18.0.5 - ok
 17:10:09.0865 0x2e08  [ 90567B1E658001E79D7C8BBD3DDE5AA6, EFC23BEEA7F54A2DC56CB523DAD1AF0358D904C5278BF08873910E2DB3F13557 ] vwifibus        C:\Windows\System32\drivers\vwifibus.sys
 17:10:09.0912 0x2e08  vwifibus - ok
 17:10:09.0959 0x2e08  [ 55187FD710E27D5095D10A472C8BAF1C, AE298E2D3BA366BCBDC092C717214C181E8843FA564A6DFB07FC3238A5A68DC3 ] W32Time         C:\Windows\system32\w32time.dll
 17:10:10.0021 0x2e08  W32Time - ok
 17:10:10.0084 0x2e08  [ DE3721E89C653AA281428C8A69745D90, 501C78056ED4295625D8A5412025FD2F0CA24077044D3A5800BA79DF3D946516 ] WacomPen        C:\Windows\system32\DRIVERS\wacompen.sys
 17:10:10.0099 0x2e08  WacomPen - ok
 17:10:10.0146 0x2e08  [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
 17:10:10.0177 0x2e08  WANARP - ok
 17:10:10.0193 0x2e08  [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
 17:10:10.0224 0x2e08  Wanarpv6 - ok
 17:10:10.0630 0x2e08  [ 353A04C273EC58475D8633E75CCD5604, FFAE53B6B53AEFC9E8A10BF27480E072D74430276BEB532FE1D473E9616D8CE0 ] WatAdminSvc     C:\Windows\system32\Wat\WatAdminSvc.exe
 17:10:10.0708 0x2e08  WatAdminSvc - ok
 17:10:10.0786 0x2e08  [ 691E3285E53DCA558E1A84667F13E15A, 12EDB66EF8FC100402BEA221F354D3BD5542F6DDF715B6E7D873D6BAE7E3D329 ] wbengine        C:\Windows\system32\wbengine.exe
 17:10:10.0879 0x2e08  wbengine - ok
 17:10:10.0911 0x2e08  [ 9614B5D29DC76AC3C29F6D2D3AA70E67, A2FFB92F0030B4CD771E862DA575ECCF2F3A5B4B85858C1241A0C59262C0EC88 ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
 17:10:10.0942 0x2e08  WbioSrvc - ok
 17:10:11.0004 0x2e08  [ 34EEE0DFAADB4F691D6D5308A51315DC, A040A03E25A0C78B9E26F86C2DF95BCAF8E7EC90183CEB295615D3265350EBEE ] wcncsvc         C:\Windows\System32\wcncsvc.dll
 17:10:11.0035 0x2e08  wcncsvc - ok
 17:10:11.0051 0x2e08  [ 5D930B6357A6D2AF4D7653BDABBF352F, 677FF2ED14EE0B0CAA710DA81556CC16D5971DAB10E7C7432D167A87CA6F0EAA ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
 17:10:11.0129 0x2e08  WcsPlugInService - ok
 17:10:11.0145 0x2e08  [ 1112A9BADACB47B7C0BB0392E3158DFF, 1AE2AFA125973571F91E6945FE8A735F63D76EBB250A0075D98C580167FD9ED4 ] Wd              C:\Windows\system32\DRIVERS\wd.sys
 17:10:11.0160 0x2e08  Wd - ok
 17:10:11.0223 0x2e08  [ 25944D2CC49E0A6C581D02A74B7D6645, AF8FFAFEC07F1A6A3D4008E609E8E1D705A8DFCC7995C766E3946887203F7BEE ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
 17:10:11.0254 0x2e08  Wdf01000 - ok
 17:10:11.0301 0x2e08  [ DDE994E9159497D0D5AB2CDF66D1EAD6, 49BEDECA469C47E7622542D3B9BCD31ECDDAA27838495EC5C2F1338E33FEA877 ] WdiServiceHost  C:\Windows\system32\wdi.dll
 17:10:11.0332 0x2e08  WdiServiceHost - ok
 17:10:11.0347 0x2e08  [ DDE994E9159497D0D5AB2CDF66D1EAD6, 49BEDECA469C47E7622542D3B9BCD31ECDDAA27838495EC5C2F1338E33FEA877 ] WdiSystemHost   C:\Windows\system32\wdi.dll
 17:10:11.0363 0x2e08  WdiSystemHost - ok
 17:10:11.0410 0x2e08  [ 55C70654420DBF429604FD567E6F3CD3, 22191B049BCA76EF13AEDF8078E452E6B35E998A75AD63F14C542B541EA9F67D ] WebClient       C:\Windows\System32\webclnt.dll
 17:10:11.0488 0x2e08  WebClient - ok
 17:10:11.0519 0x2e08  [ 760F0AFE937A77CFF27153206534F275, A53940BA28854486FF18F16B98A3314B36322B0B6EFB54D08B921315BEB0ADD5 ] Wecsvc          C:\Windows\system32\wecsvc.dll
 17:10:11.0550 0x2e08  Wecsvc - ok
 17:10:11.0566 0x2e08  [ AC804569BB2364FB6017370258A4091B, 1856F354146A5946F3E7D0DD09726FC8A3502B0F0776FEADDF10669C81CC28E2 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
 17:10:11.0613 0x2e08  wercplsupport - ok
 17:10:11.0644 0x2e08  [ 08E420D873E4FD85241EE2421B02C4A4, E1E9436EB096FF7DE9A76DA6217035257EF9FC7565DDB9016DCA3859E7F1EF0F ] WerSvc          C:\Windows\System32\WerSvc.dll
 17:10:11.0706 0x2e08  WerSvc - ok
 17:10:11.0737 0x2e08  [ 8B9A943F3B53861F2BFAF6C186168F79, 88E2F79F32AFBA17CB8377A508B83A1EC2315E9F3A365F591C87FE4525AA6713 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
 17:10:11.0800 0x2e08  WfpLwf - ok
 17:10:11.0815 0x2e08  [ 5CF95B35E59E2A38023836FFF31BE64C, CEA21302B3E855EE592810D4E0DE10E47A47A393064C435463CD54598735CD8D ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
 17:10:11.0831 0x2e08  WIMMount - ok
 17:10:11.0862 0x2e08  [ 3FA87D56769838AAC82FAFC3E78FC732, E1D942D59A7EDB1768D39D87D637C6F87C84711D0776FF2C69161350D037663B ] winbondcir      C:\Windows\system32\DRIVERS\winbondcir.sys
 17:10:11.0909 0x2e08  winbondcir - ok
 17:10:11.0987 0x2e08  [ 082CF481F659FAE0DE51AD060881EB47, BB67D2AF0BB9192D4CCF66C23D80CE5A1B38715556D94E2561DBF8F805FA30A5 ] WinDefend       C:\Program Files\Windows Defender\mpsvc.dll
 17:10:12.0081 0x2e08  WinDefend - ok
 17:10:12.0112 0x2e08  WinHttpAutoProxySvc - ok
 17:10:12.0174 0x2e08  [ F62E510B6AD4C21EB9FE8668ED251826, FA3E5CAC3E67E49377320CFBE4646585E6B62168292768FEA81E4623F9166890 ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
 17:10:12.0205 0x2e08  Winmgmt - ok
 17:10:12.0283 0x2e08  [ 1DE9BD23AFA36150586C732D876D9B74, 32CF2C8EC18CFDA677AB72A182EB4B839DCC72BFCD6CA309BE2F434991CAE973 ] WinRM           C:\Windows\system32\WsmSvc.dll
 17:10:12.0361 0x2e08  WinRM - ok
 17:10:12.0439 0x2e08  [ A67E5F9A400F3BD1BE3D80613B45F708, E170A8BD31A779403DC9C43ED6483DA8E186512D3EE700B87F6BA292E284E367 ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
 17:10:12.0471 0x2e08  WinUsb - ok
 17:10:12.0549 0x2e08  [ 16935C98FF639D185086A3529B1F2067, E9C6B73A572A04FCE9B1B0E6815F941B10332D9A6D55B92927C2B1275F119091 ] Wlansvc         C:\Windows\System32\wlansvc.dll
 17:10:12.0642 0x2e08  Wlansvc - ok
 17:10:12.0767 0x2e08  [ 5E7C103F8475C4289847D15E129C20F7, C6325D3557545FA1DA26B0B1EA9A1C95AED1FA84A93BE29A771DAD9ECB00768B ] wlidsvc         C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
 17:10:12.0861 0x2e08  wlidsvc - ok
 17:10:12.0892 0x2e08  [ 0217679B8FCA58714C3BF2726D2CA84E, 4494984B922DCF24D37BCD0E6831CEBD07D1CA49235D04E821D17ED3DF84ED2A ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
 17:10:12.0907 0x2e08  WmiAcpi - ok
 17:10:12.0954 0x2e08  [ 6EB6B66517B048D87DC1856DDF1F4C3F, EBB534C4829477C70062ADBB5626236B02FE563A544C53FA255E79F3CA170FE8 ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
 17:10:12.0985 0x2e08  wmiApSrv - ok
 17:10:13.0095 0x2e08  [ 3B40D3A61AA8C21B88AE57C58AB3122E, 6C67DCB007C3CDF2EB0BBF5FD89C32CD7800C20F7166872F8C387BE262C5CD21 ] WMPNetworkSvc   C:\Program Files\Windows Media Player\wmpnetwk.exe
 17:10:13.0204 0x2e08  WMPNetworkSvc - ok
 17:10:13.0235 0x2e08  [ A2F0EC770A92F2B3F9DE6D518E11409C, 6838F2148B11285E00DC449D51F8AD85AAE57694E89BA2C607B87AC1C650D845 ] WPCSvc          C:\Windows\System32\wpcsvc.dll
 17:10:13.0266 0x2e08  WPCSvc - ok
 17:10:13.0313 0x2e08  [ AA53356D60AF47EACC85BC617A4F3F66, 155CB8112AA382D841C1891750FF29EF4F1BF716CD9CDF0F2243209E2CCCAC98 ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
 17:10:13.0344 0x2e08  WPDBusEnum - ok
 17:10:13.0375 0x2e08  [ 6DB3276587B853BF886B69528FDB048C, 9972FF6DF0DF6F86D1E9BCEF4C29064748B217DA196B0633C30D3D580144951C ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
 17:10:13.0407 0x2e08  ws2ifsl - ok
 17:10:13.0438 0x2e08  [ 6F5D49EFE0E7164E03AE773A3FE25340, 15B6AFF7455538189A96F8863CC995A271E02C6FBDAC15B037D44DDA65E61339 ] wscsvc          C:\Windows\System32\wscsvc.dll
 17:10:13.0453 0x2e08  wscsvc - ok
 17:10:13.0531 0x2e08  [ 553F6CCD7C58EB98D4A8FBDAF283D7A9, 71FBE50C470D1F54FDAADCECEC2CB021AE240CD59DE4E8EB5BCAA6E7F2F86560 ] WSDPrintDevice  C:\Windows\system32\DRIVERS\WSDPrint.sys
 17:10:13.0563 0x2e08  WSDPrintDevice - ok
 17:10:13.0578 0x2e08  WSearch - ok
 17:10:13.0703 0x2e08  [ 3EFC48CE17BE25D2F8C04C5A0FAE1F53, 6439396AE1C59966E3C0DF519956F9D25568155174004F9562F764CEF8A49802 ] wuauserv        C:\Windows\system32\wuaueng.dll
 17:10:13.0859 0x2e08  wuauserv - ok
 17:10:13.0906 0x2e08  [ 06E6F32C8D0A3F66D956F57B43A2E070, 9A6BD96A28294B0372F16E13D652FD603308F64B74A56E41E0C68C5E8011F943 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
 17:10:13.0937 0x2e08  WudfPf - ok
 17:10:13.0968 0x2e08  [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
 17:10:13.0999 0x2e08  WUDFRd - ok
 17:10:14.0015 0x2e08  [ FE47B7BC8EA320C2D9B5E5BF6E303765, 34518DBD1E9EA6E5DA62273B18613761E1D9C6B4E074A93C6D639FBAF02222EA ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
 17:10:14.0031 0x2e08  wudfsvc - ok
 17:10:14.0077 0x2e08  [ 7CC38741B8F68F1E0D5D79DA6123666A, F90D2DA1C9AFB506C381CD386E1430931B5F81813FEDFD720F87FBC54E7A00DA ] WwanSvc         C:\Windows\System32\wwansvc.dll
 17:10:14.0140 0x2e08  WwanSvc - ok
 17:10:14.0202 0x2e08  ================ Scan global ===============================
 17:10:14.0280 0x2e08  [ 5E7C5DE85AF978495C3A9A0B720B9811, 142CDEBED78E3BAEE8D2DBF6A97CE26313932024010548EC2E570CAE480AF7C3 ] C:\Windows\system32\basesrv.dll
 17:10:14.0311 0x2e08  [ A83DD77AC941A8B1B2652035EA589149, 8F879178E154B3F9F367FB3D6F9A21B129F36796CD3B6A76A9E7CFDD0F63332C ] C:\Windows\system32\winsrv.dll
 17:10:14.0343 0x2e08  [ A83DD77AC941A8B1B2652035EA589149, 8F879178E154B3F9F367FB3D6F9A21B129F36796CD3B6A76A9E7CFDD0F63332C ] C:\Windows\system32\winsrv.dll
 17:10:14.0374 0x2e08  [ 364455805E64882844EE9ACB72522830, 906561DBBB33F744844CF27E456226044C85DF0FCFD26DE1FD11E09E2CFA6F8F ] C:\Windows\system32\sxssrv.dll
 17:10:14.0421 0x2e08  [ 0780A42DBD7D9969F9BF4A19AA4285B5, 8EA41124A4E97732C5DAA616457FBA7111CB38986F3427FA776ED00BC1407171 ] C:\Windows\system32\services.exe
 17:10:14.0436 0x2e08  [ Global ] - ok
 17:10:14.0436 0x2e08  ================ Scan MBR ==================================
 17:10:14.0452 0x2e08  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
 17:10:15.0216 0x2e08  \Device\Harddisk0\DR0 - ok
 17:10:15.0216 0x2e08  ================ Scan VBR ==================================
 17:10:15.0216 0x2e08  [ 8C3313B3F522F6BAF75A69970BD63FCE ] \Device\Harddisk0\DR0\Partition1
 17:10:15.0232 0x2e08  \Device\Harddisk0\DR0\Partition1 - ok
 17:10:15.0232 0x2e08  ================ Scan generic autorun ======================
 17:10:15.0279 0x2e08  [ 2F2DF068BED6E62E4C007DF7446B4F19, 96FE78E2B8BD067B7378ECDF1E74939C71EFFBF09B2C184361650DBF4ED0FCC3 ] C:\Windows\PLFSetI.exe
 17:10:15.0279 0x2e08  PLFSetI - detected UnsignedFile.Multi.Generic ( 1 )
 17:10:17.0774 0x2e08  Detect skipped due to KSN trusted
 17:10:17.0774 0x2e08  PLFSetI - ok
 17:10:17.0899 0x2e08  [ 187F4C75A89E3F412322C94526320074, D78FA7EF93C8C7B4326A5B6DB04A92ADD091DF00658FA8731D07C5D3BE29ED04 ] C:\Program Files\Microsoft Office\Office14\BCSSync.exe
 17:10:17.0914 0x2e08  BCSSync - ok
 17:10:17.0992 0x2e08  [ 27F8A7A78773427E5D931628F89D6839, 61A312590322109BEA9EA70345E6FB40435D9BACE2B9CFF3ADF68C7B3D6FA163 ] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
 17:10:18.0039 0x2e08  avgnt - ok
 17:10:18.0039 0x2e08  RtHDVCpl - ok
 17:10:18.0086 0x2e08  Adobe Reader Speed Launcher - ok
 17:10:18.0133 0x2e08  [ 68B7A5320065FCC7F4DF5A0DC3281EA5, 1B0526C04F78A0F824C20AF92C887488A897A228A13DD8939C2E115039466C34 ] C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe
 17:10:18.0133 0x2e08  CloneCDTray - detected UnsignedFile.Multi.Generic ( 1 )
 17:10:20.0613 0x2e08  Detect skipped due to KSN trusted
 17:10:20.0613 0x2e08  CloneCDTray - ok
 17:10:20.0738 0x2e08  [ 1117B2F27B46C0247E68D56A99296A34, 5794F5EC4F84E0F6BEB616433CCFFC2D025F49D1C49B078E2EF3B8061DD336DB ] C:\ProgramData\Apple Computer\iTunes\bending\center_of_gravity.exe
 17:10:20.0785 0x2e08  amplitude_modulation - detected UnsignedFile.Multi.Generic ( 1 )
 17:10:23.0265 0x2e08  Detect turned to UDS exact due to KSN untrusted
 17:10:23.0265 0x2e08  amplitude_modulation ( UDS:DangerousObject.Multi.Generic ) - infected
 17:10:23.0265 0x2e08  Force sending object to P2P due to detect: C:\ProgramData\Apple Computer\iTunes\bending\center_of_gravity.exe
 17:10:25.0948 0x2e08  Object send P2P result: true
 17:10:28.0522 0x2e08  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\Sidebar.exe
 17:10:28.0616 0x2e08  Sidebar - ok
 17:10:28.0772 0x2e08  [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
 17:10:28.0803 0x2e08  mctadmin - ok
 17:10:28.0865 0x2e08  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\Sidebar.exe
 17:10:28.0912 0x2e08  Sidebar - ok
 17:10:28.0912 0x2e08  [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
 17:10:28.0943 0x2e08  mctadmin - ok
 17:10:28.0975 0x2e08  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\sidebar.exe
 17:10:29.0021 0x2e08  Sidebar - ok
 17:10:29.0162 0x2e08  [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] C:\Users\Tom\AppData\Local\Google\Update\GoogleUpdate.exe
 17:10:29.0177 0x2e08  Google Update - ok
 17:10:29.0224 0x2e08  [ 2F0EAAF91FC7A5C70D1F4BE9B18A1CF5, 6075E8ADD4136AC6497C1FE9CC937E6652FAD5024AED1CF901CE107078955C4F ] C:\Windows\System32\StikyNot.exe
 17:10:29.0271 0x2e08  RESTART_STICKY_NOTES - ok
 17:10:29.0380 0x2e08  [ C4DF44DD36792807FF4A7D896C575A4E, 9F41D45A90976A930491288D3350AE07DA38FAFC28EDDDA0873F2E12624D49ED ] C:\Users\Tom\AppData\Local\Temp\Sentencecouple\sentence-tie.exe
 17:10:29.0380 0x2e08  Suspicious file ( NoAccess ): C:\Users\Tom\AppData\Local\Temp\Sentencecouple\sentence-tie.exe. md5: C4DF44DD36792807FF4A7D896C575A4E, sha256: 9F41D45A90976A930491288D3350AE07DA38FAFC28EDDDA0873F2E12624D49ED
 17:10:29.0396 0x2e08  sentence-mess - detected Trojan-Spy.Win32.ZBot.gen ( 0 )
 17:10:31.0861 0x2e08  sentence-mess ( Trojan-Spy.Win32.ZBot.gen ) - infected
 17:10:31.0861 0x2e08  Force sending object to P2P due to detect: C:\Users\Tom\AppData\Local\Temp\Sentencecouple\sentence-tie.exe
 17:10:34.0419 0x2e08  Object send P2P result: true
 17:10:36.0931 0x2e08  [ 32CB46AB8F463B75406607DF499CF69A, 725B0ACE1885A51C38036E80FE44136FF58D81F4BADFD851CD5C49C80A6B82D0 ] C:\Users\Tom\AppData\Local\Temp\Linkpress\linkbend.exe
 17:10:36.0931 0x2e08  Suspicious file ( NoAccess ): C:\Users\Tom\AppData\Local\Temp\Linkpress\linkbend.exe. md5: 32CB46AB8F463B75406607DF499CF69A, sha256: 725B0ACE1885A51C38036E80FE44136FF58D81F4BADFD851CD5C49C80A6B82D0
 17:10:36.0946 0x2e08  link_doctor - detected Trojan-Spy.Win32.ZBot.gen ( 0 )
 17:10:39.0411 0x2e08  link_doctor ( Trojan-Spy.Win32.ZBot.gen ) - infected
 17:10:39.0411 0x2e08  Force sending object to P2P due to detect: C:\Users\Tom\AppData\Local\Temp\Linkpress\linkbend.exe
 17:10:41.0969 0x2e08  Object send P2P result: true
 17:10:44.0450 0x2e08  [ E318BEA29095CDDBB4250F50F82C50A5, 0DE75D79027150FE77A4E503C09AE67B622C5E80AA6840FB1C8FA64B3E4F47F0 ] C:\Users\Tom\AppData\Local\Temp\Government-closet\government-mouth.exe
 17:10:44.0450 0x2e08  Suspicious file ( NoAccess ): C:\Users\Tom\AppData\Local\Temp\Government-closet\government-mouth.exe. md5: E318BEA29095CDDBB4250F50F82C50A5, sha256: 0DE75D79027150FE77A4E503C09AE67B622C5E80AA6840FB1C8FA64B3E4F47F0
 17:10:44.0465 0x2e08  government-complain - detected Trojan-Spy.Win32.ZBot.gen ( 0 )
 17:10:46.0946 0x2e08  Object required for P2P: [ E318BEA29095CDDBB4250F50F82C50A5 ] C:\Users\Tom\AppData\Local\Temp\Government-closet\government-mouth.exe
 17:10:49.0489 0x2e08  Object send P2P result: true
 17:10:49.0489 0x2e08  government-complain ( Trojan-Spy.Win32.ZBot.gen ) - infected
 17:10:49.0489 0x2e08  Force sending object to P2P due to detect: C:\Users\Tom\AppData\Local\Temp\Government-closet\government-mouth.exe
 17:10:52.0047 0x2e08  Object send P2P result: true
 17:10:54.0496 0x2e08  [ C4DF44DD36792807FF4A7D896C575A4E, 9F41D45A90976A930491288D3350AE07DA38FAFC28EDDDA0873F2E12624D49ED ] C:\Users\Tom\AppData\Local\Temp\Sentencecouple\sentence-tie.exe
 17:10:54.0496 0x2e08  Suspicious file ( NoAccess ): C:\Users\Tom\AppData\Local\Temp\Sentencecouple\sentence-tie.exe. md5: C4DF44DD36792807FF4A7D896C575A4E, sha256: 9F41D45A90976A930491288D3350AE07DA38FAFC28EDDDA0873F2E12624D49ED
 17:10:54.0496 0x2e08  sentence-mess - detected Trojan-Spy.Win32.ZBot.gen ( 0 )
 17:10:54.0496 0x2e08  sentence-mess ( Trojan-Spy.Win32.ZBot.gen ) - infected
 17:10:54.0496 0x2e08  Force sending object to P2P due to detect: C:\Users\Tom\AppData\Local\Temp\Sentencecouple\sentence-tie.exe
 17:10:57.0070 0x2e08  Object send P2P result: true
 17:10:59.0566 0x2e08  [ 32CB46AB8F463B75406607DF499CF69A, 725B0ACE1885A51C38036E80FE44136FF58D81F4BADFD851CD5C49C80A6B82D0 ] C:\Users\Tom\AppData\Local\Temp\Linkpress\linkbend.exe
 17:10:59.0566 0x2e08  Suspicious file ( NoAccess ): C:\Users\Tom\AppData\Local\Temp\Linkpress\linkbend.exe. md5: 32CB46AB8F463B75406607DF499CF69A, sha256: 725B0ACE1885A51C38036E80FE44136FF58D81F4BADFD851CD5C49C80A6B82D0
 17:10:59.0566 0x2e08  link_doctor - detected Trojan-Spy.Win32.ZBot.gen ( 0 )
 17:10:59.0566 0x2e08  link_doctor ( Trojan-Spy.Win32.ZBot.gen ) - infected
 17:10:59.0566 0x2e08  Force sending object to P2P due to detect: C:\Users\Tom\AppData\Local\Temp\Linkpress\linkbend.exe
 17:11:02.0125 0x2e08  Object send P2P result: true
 17:11:04.0621 0x2e08  [ E318BEA29095CDDBB4250F50F82C50A5, 0DE75D79027150FE77A4E503C09AE67B622C5E80AA6840FB1C8FA64B3E4F47F0 ] C:\Users\Tom\AppData\Local\Temp\Government-closet\government-mouth.exe
 17:11:04.0621 0x2e08  Suspicious file ( NoAccess ): C:\Users\Tom\AppData\Local\Temp\Government-closet\government-mouth.exe. md5: E318BEA29095CDDBB4250F50F82C50A5, sha256: 0DE75D79027150FE77A4E503C09AE67B622C5E80AA6840FB1C8FA64B3E4F47F0
 17:11:04.0621 0x2e08  government-complain - detected Trojan-Spy.Win32.ZBot.gen ( 0 )
 17:11:04.0621 0x2e08  Object required for P2P: [ E318BEA29095CDDBB4250F50F82C50A5 ] C:\Users\Tom\AppData\Local\Temp\Government-closet\government-mouth.exe
 17:11:07.0179 0x2e08  Object send P2P result: true
 17:11:07.0179 0x2e08  government-complain ( Trojan-Spy.Win32.ZBot.gen ) - infected
 17:11:07.0179 0x2e08  Force sending object to P2P due to detect: C:\Users\Tom\AppData\Local\Temp\Government-closet\government-mouth.exe
 17:11:21.0016 0x2e08  Object send P2P result: true
 17:11:23.0871 0x2e08  [ 13D5CE17E15B3E2B25646F359D322A60, B9411CAEB8D87ACBEDAA7591674A25F670D2F9260337A2EF92B88B649EDEFF50 ] C:\ProgramData\Avira\Antivirus\IDX\international_telecomm\manganese_lithium.exe
 17:11:23.0887 0x2e08  artificial_intelligence - detected UnsignedFile.Multi.Generic ( 1 )
 17:11:26.0367 0x2e08  Object required for P2P: [ 13D5CE17E15B3E2B25646F359D322A60 ] C:\ProgramData\Avira\Antivirus\IDX\international_telecomm\manganese_lithium.exe
 17:11:28.0910 0x2e08  Object send P2P result: true
 17:11:28.0910 0x2e08  artificial_intelligence ( UnsignedFile.Multi.Generic ) - warning
 17:11:31.0426 0x2e08  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\Sidebar.exe
 17:11:31.0473 0x2e08  Sidebar - ok
 17:11:31.0489 0x2e08  AVG-Secure-Search-Update_JUNE2013_TB - ok
 17:11:31.0504 0x2e08  [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] C:\Users\Tom\AppData\Local\Google\Update\GoogleUpdate.exe
 17:11:31.0520 0x2e08  Google Update - ok
 17:11:31.0536 0x2e08  [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
 17:11:31.0567 0x2e08  mctadmin - ok
 17:11:31.0598 0x2e08  [ AD7B9C14083B52BC532FBA5948342B98, 17F746D82695FA9B35493B41859D39D786D32B23A9D2E00F4011DEC7A02402AE ] C:\Windows\system32\cmd.exe
 17:11:31.0661 0x2e08  Uninstall C:\Users\Tom\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910 - ok
 17:11:31.0723 0x2e08  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\Sidebar.exe
 17:11:31.0780 0x2e08  Sidebar - ok
 17:11:31.0782 0x2e08  AVG-Secure-Search-Update_JUNE2013_TB - ok
 17:11:31.0802 0x2e08  [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] C:\Users\Tom\AppData\Local\Google\Update\GoogleUpdate.exe
 17:11:31.0818 0x2e08  Google Update - ok
 17:11:31.0826 0x2e08  [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
 17:11:31.0851 0x2e08  mctadmin - ok
 17:11:31.0859 0x2e08  [ AD7B9C14083B52BC532FBA5948342B98, 17F746D82695FA9B35493B41859D39D786D32B23A9D2E00F4011DEC7A02402AE ] C:\Windows\system32\cmd.exe
 17:11:31.0910 0x2e08  Uninstall C:\Users\Tom\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910 - ok
 17:11:31.0911 0x2e08  Waiting for KSN requests completion. In queue: 2
 17:11:32.0912 0x2e08  Waiting for KSN requests completion. In queue: 2
 17:11:33.0912 0x2e08  Waiting for KSN requests completion. In queue: 2
 17:11:34.0990 0x2e08  AV detected via SS2: Avira Antivirus, C:\Program Files\Avira\AntiVir Desktop\wsctool.exe ( 15.0.12.420 ), 0x40000 ( disabled : updated )
 17:11:35.0068 0x2e08  Win FW state via NFP2: enabled ( trusted )
 17:11:37.0468 0x2e08  ============================================================
 17:11:37.0468 0x2e08  Scan finished
 17:11:37.0468 0x2e08  ============================================================
 17:11:37.0481 0x2e00  Detected object count: 10
 17:11:37.0481 0x2e00  Actual detected object count: 10
 17:12:11.0680 0x2e00  second_harmonic ( UnsignedFile.Multi.Generic ) - skipped by user
 17:12:11.0680 0x2e00  second_harmonic ( UnsignedFile.Multi.Generic ) - User select action: Skip
 17:12:11.0680 0x2e00  USBAAPL ( UnsignedFile.Multi.Generic ) - skipped by user
 17:12:11.0680 0x2e00  USBAAPL ( UnsignedFile.Multi.Generic ) - User select action: Skip
 17:12:11.0680 0x2e00  amplitude_modulation ( UDS:DangerousObject.Multi.Generic ) - skipped by user
 17:12:11.0680 0x2e00  amplitude_modulation ( UDS:DangerousObject.Multi.Generic ) - User select action: Skip
 17:12:11.0696 0x2e00  sentence-mess ( Trojan-Spy.Win32.ZBot.gen ) - skipped by user
 17:12:11.0696 0x2e00  sentence-mess ( Trojan-Spy.Win32.ZBot.gen ) - User select action: Skip
 17:12:11.0696 0x2e00  link_doctor ( Trojan-Spy.Win32.ZBot.gen ) - skipped by user
 17:12:11.0696 0x2e00  link_doctor ( Trojan-Spy.Win32.ZBot.gen ) - User select action: Skip
 17:12:11.0696 0x2e00  government-complain ( Trojan-Spy.Win32.ZBot.gen ) - skipped by user
 17:12:11.0696 0x2e00  government-complain ( Trojan-Spy.Win32.ZBot.gen ) - User select action: Skip
 17:12:11.0696 0x2e00  sentence-mess ( Trojan-Spy.Win32.ZBot.gen ) - skipped by user
 17:12:11.0696 0x2e00  sentence-mess ( Trojan-Spy.Win32.ZBot.gen ) - User select action: Skip
 17:12:11.0711 0x2e00  link_doctor ( Trojan-Spy.Win32.ZBot.gen ) - skipped by user
 17:12:11.0711 0x2e00  link_doctor ( Trojan-Spy.Win32.ZBot.gen ) - User select action: Skip
 17:12:11.0711 0x2e00  government-complain ( Trojan-Spy.Win32.ZBot.gen ) - skipped by user
 17:12:11.0711 0x2e00  government-complain ( Trojan-Spy.Win32.ZBot.gen ) - User select action: Skip
 17:12:11.0711 0x2e00  artificial_intelligence ( UnsignedFile.Multi.Generic ) - skipped by user
 17:12:11.0711 0x2e00  artificial_intelligence ( UnsignedFile.Multi.Generic ) - User select action: Skip
 Vielen Dank und Grüße Tom |