Librarios | 17.05.2016 13:14 | TDSS-Killer Logfile pt. 2 Code:
13:51:01.0533 0x22ec NgcSvc - ok
13:51:01.0602 0x22ec [ 1B8F07B59F7DAE02264FB8A16088C467, 1795DA9F72C34A9F47D9AAF5E95D40C3296948EB89D9600679AB4660671A5C65 ] NlaSvc C:\WINDOWS\System32\nlasvc.dll
13:51:01.0718 0x22ec NlaSvc - ok
13:51:01.0772 0x22ec [ 465DC580170CD844206D7E3EF1DBF2A1, 5A14001029BE154C708CCA34449B280905DB79978FC7F0BE0CF20B20E47752CF ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
13:51:01.0834 0x22ec Npfs - ok
13:51:01.0872 0x22ec [ 29395C214D2CD4C81F73166AB988A797, 3631EB2EA17E455ECD151C0BC9A3DF6EC87C75B15DC9B607CFB68D7C463E04B7 ] npsvctrig C:\WINDOWS\System32\drivers\npsvctrig.sys
13:51:01.0951 0x22ec npsvctrig - ok
13:51:01.0971 0x22ec [ AF8B7848E102A83AAECCD24B181CEBE5, B2AAE3567EE3A7975CDFCB3FE41D33C74D4486BFF35FF56E0516A01C744BA52B ] nsi C:\WINDOWS\system32\nsisvc.dll
13:51:02.0020 0x22ec nsi - ok
13:51:02.0035 0x22ec [ 2871225495F832A8C8A7DD1A17EDB3DC, 2F6664C7F5FB2341B2AAF3C5A258FA0D7AEEE447562D7F39FD5A4EE905C18C6D ] nsiproxy C:\WINDOWS\system32\drivers\nsiproxy.sys
13:51:02.0073 0x22ec nsiproxy - ok
13:51:02.0274 0x22ec [ 19BD8A88AAC580592668B070AC0727D9, 60DB84895C40E6412BEB2D0E4D7F05891446B9DE992D70579CC90BA3FB27FC01 ] NTFS C:\WINDOWS\system32\drivers\NTFS.sys
13:51:02.0537 0x22ec NTFS - ok
13:51:02.0574 0x22ec [ 6DBD703320484C37CEA9E4E2D266A8CE, 85D6F73C0E3FDE16829C9BC0D13DD89E64183EAE02F84607F6B8440CB7F366E6 ] Null C:\WINDOWS\system32\drivers\Null.sys
13:51:02.0621 0x22ec Null - ok
13:51:03.0447 0x22ec [ DF0BB2C179476D312B7BC0056CEC50A6, 64CC3201FA903E0EC9C99BE167C439C14A4C9AC2A88898B64789EEB381DB97B6 ] nvlddmkm C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys
13:51:04.0583 0x22ec nvlddmkm - ok
13:51:04.0639 0x22ec [ 2328DC3622412EE112868645DA013075, 361A3D2FDE53F5EAF3068A64F7848020C62B256C3F08BE5F863544A0747DD2D6 ] nvpciflt C:\WINDOWS\system32\DRIVERS\nvpciflt.sys
13:51:04.0654 0x22ec nvpciflt - ok
13:51:04.0701 0x22ec [ 604D27CC38CC23493F218D0BB834B3FF, EF5E5759CCF16DD97271C82DAF47FB2086EBCA5DE7D05177B70CA1197B95F41E ] nvraid C:\WINDOWS\system32\drivers\nvraid.sys
13:51:04.0738 0x22ec nvraid - ok
13:51:04.0770 0x22ec [ 8B50D897657AB4A15FD9E251BBF7D107, 36036130DD46D9BF105AC7176E219F3BE7D1168A660A0F8DFF76F61FBFA4B417 ] nvstor C:\WINDOWS\system32\drivers\nvstor.sys
13:51:04.0839 0x22ec nvstor - ok
13:51:04.0955 0x22ec [ DFCCA437717EACA8418F47992A41B39A, E587A629B894EE6A16AC414747D492FFC6B6E9F051B40F7D25F0D4406E2FF919 ] nvsvc C:\WINDOWS\system32\nvvsvc.exe
13:51:05.0102 0x22ec nvsvc - ok
13:51:05.0340 0x22ec [ 03AA7307C0D92D38D7AF90E181736B8D, 9484B09BDCC143C22A70C4C02CB619FB1C9922238C045B406620425F041A1920 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
13:51:05.0580 0x22ec nvUpdatusService - ok
13:51:05.0623 0x22ec [ 31F990B2B6B91E9D7A667405CE12FCB1, 907E095D1E83CDAFF34BE789FC41CDD7BB4DEE23261E1D03C1CF0D4D030534AC ] nv_agp C:\WINDOWS\system32\drivers\nv_agp.sys
13:51:05.0672 0x22ec nv_agp - ok
13:51:05.0745 0x22ec [ 7F3A0D052B8E00E730316210B1DD092F, 14BD026EA759F6C81ED6B4DBB04E0584B7F6456725503FC73CD4347B7743005F ] OneSyncSvc C:\WINDOWS\System32\APHostService.dll
13:51:05.0845 0x22ec OneSyncSvc - ok
13:51:06.0177 0x22ec [ D21292345D9791CAFF94B960E574E206, 78961043FC24810D45E824320A682F037CC26D7FF7178F7ECB03C9A574BDD318 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
13:51:06.0231 0x22ec ose - ok
13:51:06.0673 0x22ec [ FE9C0029E1AF26350D9985D00520E5C8, 967079CCF7B2CBD4B48C9F076675C26AF93A1CEC26C96811F279414E34004EE6 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
13:51:07.0403 0x22ec osppsvc - ok
13:51:07.0500 0x22ec [ 334131C162B118EF49930D41B0E17825, 10EF08870B6E118AED2E0E3F45E06BA8A485439823BE98F44E34E7D2B65AA2EF ] p2pimsvc C:\WINDOWS\system32\pnrpsvc.dll
13:51:07.0599 0x22ec p2pimsvc - ok
13:51:07.0651 0x22ec [ 4A5634915AF62C983E08425905D0C04C, 09BC3F7AD9F79C5FF59520933D06FE155AC21CD0ABAFE66B81C9F87D83A2339F ] p2psvc C:\WINDOWS\system32\p2psvc.dll
13:51:07.0767 0x22ec p2psvc - ok
13:51:07.0835 0x22ec [ 7D0FC96264C0F8F2C1321E33E8EB646C, 82A06437B9B096BCCF5CE31BDF3539696E2E41DFA9870C358566EEE2F7D3B447 ] Parport C:\WINDOWS\System32\drivers\parport.sys
13:51:07.0882 0x22ec Parport - ok
13:51:07.0920 0x22ec [ 24AC0FD10325FBC2303B29A5F237AEB0, D94B26A36EBE4EFE8EA270FA6600811206830480BE953809F74FAB80628DF879 ] partmgr C:\WINDOWS\system32\drivers\partmgr.sys
13:51:07.0967 0x22ec partmgr - ok
13:51:08.0051 0x22ec [ 0ECA2ADD5FBCE73183A68935C71B40B7, 08CC5F2F10D1DD1A1396CC29196314003491D3AF3DE59CADB281F252577F1860 ] PcaSvc C:\WINDOWS\System32\pcasvc.dll
13:51:08.0151 0x22ec PcaSvc - ok
13:51:08.0204 0x22ec [ CFFE69B6C276A3418687109EA8AC9E7D, A516B2F4BFB0CD8B38219E3BF783C0BD99CD9EA1BACBE2284987F6DC0976BD36 ] pci C:\WINDOWS\system32\drivers\pci.sys
13:51:08.0283 0x22ec pci - ok
13:51:08.0320 0x22ec [ 2B4D98DF0CA57FB9536DBC80D2449D1F, AB34FA8585A20854369C0FAEB18BF5C7734D7E3C791F644B0576E40D609FCD09 ] pciide C:\WINDOWS\system32\drivers\pciide.sys
13:51:08.0367 0x22ec pciide - ok
13:51:08.0405 0x22ec [ F4D5793BF2E58AF15C6CF2FEEF9E73EB, 9B5A40AF8838063F8F0A2B1480B39A2711AAE78BD972CDA60CCA0EB2BA211A87 ] pcmcia C:\WINDOWS\system32\drivers\pcmcia.sys
13:51:08.0452 0x22ec pcmcia - ok
13:51:08.0467 0x22ec [ 22A53744CEEADFFFD33BA010FAD95229, 30B775EC9795105B8BF785BD63115C160955E7EFF74B995D3EC288138D1825A3 ] pcw C:\WINDOWS\system32\drivers\pcw.sys
13:51:08.0505 0x22ec pcw - ok
13:51:08.0537 0x22ec [ 67B9684B8272D5EBD1CCBB1DBD425EC8, 09BE2A2EB3A71E594D08B8D817820965DEEAD283029EBB0B74CCC658A2706233 ] pdc C:\WINDOWS\system32\drivers\pdc.sys
13:51:08.0583 0x22ec pdc - ok
13:51:08.0684 0x22ec [ E2F8376F9731D12A009C522036C6073A, 5B8B68D3C013AAA8ED368C97042984C35E8D023542DBA404E7A03E89F2357E66 ] PEAUTH C:\WINDOWS\system32\drivers\peauth.sys
13:51:08.0853 0x22ec PEAUTH - ok
13:51:08.0903 0x22ec [ 1398A85E59698067CBBE1D66A9C13ADF, E3609F183068BFAED756B2F9237181D60A6F6D78691248B8BF5B0AEB6A367E3D ] percsas2i C:\WINDOWS\system32\drivers\percsas2i.sys
13:51:08.0937 0x22ec percsas2i - ok
13:51:08.0969 0x22ec [ 35F7C7AD709D909D618D9EDF987FC3ED, EE713E33688E74C5A2546CC58EBD8EA8F8116F25E42DCF8DA21DCBC7C7590E0E ] percsas3i C:\WINDOWS\system32\drivers\percsas3i.sys
13:51:09.0022 0x22ec percsas3i - ok
13:51:09.0168 0x22ec [ 0DAF7B7D85F7AF38E29161460899C63F, F2609F2BD02C714857F5D5E6EF580643429C54E175AA72D38467F8F3A4E7F59F ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe
13:51:09.0222 0x22ec PerfHost - ok
13:51:09.0338 0x22ec [ 57606281E23B0F53347527691E947B2B, 7030182E706CEBE6BD52BDC71CA8F2230AD445AE6554188E76F09A5E2612BD2E ] PhoneSvc C:\WINDOWS\System32\PhoneService.dll
13:51:09.0506 0x22ec PhoneSvc - ok
13:51:09.0538 0x22ec [ 04F7878E7017105AB782353231561749, FB2811D98216720D4FDF0AC0EDF16C6CD33D7224B4CAFA752B4D2A839E6DD88A ] PimIndexMaintenanceSvc C:\WINDOWS\System32\PimIndexMaintenance.dll
13:51:09.0623 0x22ec PimIndexMaintenanceSvc - ok
13:51:10.0008 0x22ec [ A546F72EFFE5CBBC98003A0CA19DA0F8, 89AE396676A37D851F46427E421E8E8ED5B4BADC33023F1E215CC352A4110F44 ] pla C:\WINDOWS\system32\pla.dll
13:51:10.0302 0x22ec pla - ok
13:51:10.0355 0x22ec [ 15BA68662CED4B0618010A54478E18E5, 1B913BFA7AA11F3A82D80E95FC4857B810D341F9E68545710F90EBE44DAC1DF8 ] PlugPlay C:\WINDOWS\system32\umpnpmgr.dll
13:51:10.0440 0x22ec PlugPlay - ok
13:51:10.0471 0x22ec [ 6BF7093B27EA90FD9222845D19C1BE5F, CF8A6764BB6B369258F21FD303E4CAE08632195620A0BD66B62F62F5D7B762B8 ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll
13:51:10.0509 0x22ec PNRPAutoReg - ok
13:51:10.0556 0x22ec [ 334131C162B118EF49930D41B0E17825, 10EF08870B6E118AED2E0E3F45E06BA8A485439823BE98F44E34E7D2B65AA2EF ] PNRPsvc C:\WINDOWS\system32\pnrpsvc.dll
13:51:10.0672 0x22ec PNRPsvc - ok
13:51:10.0740 0x22ec [ 5A91C28F99043215121499257468C4BD, 816D2AEBA29B8A050747E01CE11EB12A05C1CDDF91835C44BBB6A7B9D348B15A ] PolicyAgent C:\WINDOWS\System32\ipsecsvc.dll
13:51:10.0856 0x22ec PolicyAgent - ok
13:51:10.0908 0x22ec [ AE3B1056FC1795F18D990C4908A6ECBF, 1C41F7714EBF54DF358D9B19D6AFE7281D3EABE20038B568A12031B76E1D50D9 ] Power C:\WINDOWS\system32\umpo.dll
13:51:10.0972 0x22ec Power - ok
13:51:11.0026 0x22ec [ 5BA6B9AD03B81546BA64E488C4EF9D17, C43442577685FA1A7C32094B2F14FC92BA6B511FD9FDBA6FD82473A1B165FC61 ] PptpMiniport C:\WINDOWS\System32\drivers\raspptp.sys
13:51:11.0108 0x22ec PptpMiniport - ok
13:51:11.0435 0x22ec [ 959F94AD1255BC749884EDDD14EC29C4, 2CD6DA9778EA36FA0B4080F6DB1C634712238E014E47546403CD3CDB35A1DCA8 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
13:51:11.0869 0x22ec PrintNotify - ok
13:51:12.0018 0x22ec [ 21AECFF3EB5748CBE12538A2500EFDE5, A1679F21363E99E3698B9C6F7E7E3BB2877D47089BC381AF0C51B1DD8B24325B ] Processor C:\WINDOWS\System32\drivers\processr.sys
13:51:12.0072 0x22ec Processor - ok
13:51:12.0134 0x22ec [ 7E0078F1EFEB6F8F47CF85C1D73C7EBC, 831BC3CE72F29AD259DEE7121D6F785CE0A8462CFB69DD7FB1F3BDAF16CDBF3E ] ProfSvc C:\WINDOWS\system32\profsvc.dll
13:51:12.0219 0x22ec ProfSvc - ok
13:51:12.0254 0x22ec [ 596FB6C5A72F34B7566930985E543806, 870B43783DB4CF845FA72BC5E40CE76BE6DFC66FE9E9B4B0A52D6B7FE7EA65FC ] Psched C:\WINDOWS\system32\drivers\pacer.sys
13:51:12.0304 0x22ec Psched - ok
13:51:12.0356 0x22ec [ D8EB393983B644879DE0546122CC16DF, 4A11DDFB016B560E770660183AF1ADA4831D97DAEAF560E60259F81F2727CBFC ] ptun0901 C:\WINDOWS\System32\drivers\ptun0901.sys
13:51:12.0388 0x22ec ptun0901 - ok
13:51:12.0457 0x22ec [ E84F66BA185934C166F8DF0FA8F88455, 2E0380E98DA29B3F43FB3FE0E1ECA52B3C9AEF54CE982D5514F70FAE81758449 ] QWAVE C:\WINDOWS\system32\qwave.dll
13:51:12.0556 0x22ec QWAVE - ok
13:51:12.0604 0x22ec [ CFBA9C976CBF6796E5DC39EF59984021, A1C956AD828FC70ED92D702516E0F88A4BDAF8C93C571D7CA20F1695FD8E70C2 ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys
13:51:12.0635 0x22ec QWAVEdrv - ok
13:51:12.0657 0x22ec [ 7B2AD8C55217B514C14281AB97B4E21D, A1E295897B864B9C0177FF1C502EB060084A1783C0E7E53636291F901C2E2AA8 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
13:51:12.0704 0x22ec RasAcd - ok
13:51:12.0757 0x22ec [ E15A9CE1E2E7D1C8DF97A4FC1FFE6289, 44B53418D6BC51ACC567CF6917A0981889B44AE420489C9C03F5A30418B37267 ] RasAgileVpn C:\WINDOWS\System32\drivers\AgileVpn.sys
13:51:12.0820 0x22ec RasAgileVpn - ok
13:51:12.0873 0x22ec [ D60BA4C76D194472D6602FF3D2D51ADE, 01272663897685C75FFBC3F1C0CFDB8D0E1A58182049E0B607D634536A8F6400 ] RasAuto C:\WINDOWS\System32\rasauto.dll
13:51:12.0955 0x22ec RasAuto - ok
13:51:13.0005 0x22ec [ E3C82823B22463BC38AA4F8ADA852624, FF601B117F4003E2CC65B6143C2A270331EB257EE82B3BC020247D1AB1CD625F ] Rasl2tp C:\WINDOWS\System32\drivers\rasl2tp.sys
13:51:13.0089 0x22ec Rasl2tp - ok
13:51:13.0174 0x22ec [ 3655D86C5E2982B131FC0935DE24F98F, 0386B31FECDDED77450609A807097B2307361CB59B236DEC41037BDC95897463 ] RasMan C:\WINDOWS\System32\rasmans.dll
13:51:13.0337 0x22ec RasMan - ok
13:51:13.0375 0x22ec [ 3369023EB5790A75BA7DABA14B75D922, 36B63D5B74FDC932AAF1A876514024602D2F3EAF2CA33D1247CBA1E52FDB0418 ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
13:51:13.0422 0x22ec RasPppoe - ok
13:51:13.0475 0x22ec [ 1E32A8CD65C4AD0A827CFEB13034DA29, 5D9A92E13020D994CCD39F701BACAFE2177A40A9CC89649441B91E3F3DECD911 ] RasSstp C:\WINDOWS\System32\drivers\rassstp.sys
13:51:13.0537 0x22ec RasSstp - ok
13:51:13.0591 0x22ec [ 2B648363E4C5E34B469C58596F377DD9, 30F82770468BBA562CEA0E9E39B24ACEFBE022343D0180C82E2ACE8957B73E44 ] rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
13:51:13.0691 0x22ec rdbss - ok
13:51:13.0738 0x22ec [ D0221C13960E274CC539D72D5A842ED0, A5A961506B9D7429D97D0635FD69E74736C0E8405487E1D22BB5CD978A60044C ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys
13:51:13.0776 0x22ec rdpbus - ok
13:51:13.0822 0x22ec [ 1DC2CC74B51E4DC4CD5A20C1021E4010, 46B7D17EE27439F2191504D1C6F6C70B2540BD4F2261DBB1F4BE783BEA99B04C ] RDPDR C:\WINDOWS\system32\drivers\rdpdr.sys
13:51:13.0891 0x22ec RDPDR - ok
13:51:13.0923 0x22ec [ 177DF954D0DEC0465A380C75F6E7F65F, 6B30C78223029BD5DBA586BF961968F85762209BA55CD031460A215B20F93AB2 ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys
13:51:13.0960 0x22ec RdpVideoMiniport - ok
13:51:14.0007 0x22ec [ 5D1680871054D2B0B8A971BC8AB3B837, 9CAB0B2E3857829D34A82A78B120D07E292D4D5060168D964295EB23339B7DE7 ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys
13:51:14.0092 0x22ec rdyboost - ok
13:51:14.0177 0x22ec [ 341E6830DA70F65730300DAB4CB0B490, 341EC8DB5E39963EF89E726F08730AFB2356C3BAD71CCE9EECCAB4D9B31C4863 ] ReFSv1 C:\WINDOWS\system32\drivers\ReFSv1.sys
13:51:14.0308 0x22ec ReFSv1 - ok
13:51:14.0408 0x22ec [ 8355BCA85B0928382DFCDD02FCD1681A, F306F038DA09C8D2095C311818E2F991B55BCD96B40B95D2A53A60EA6AC37014 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
13:51:14.0561 0x22ec RemoteAccess - ok
13:51:14.0624 0x22ec [ 2C82F4DCABAB389CEBB1C9E86C715C9C, 70354621D3D467616A419A818C54D2C89EA013C5050BA9944E3A7A4F25CAD6BA ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
13:51:14.0709 0x22ec RemoteRegistry - ok
13:51:14.0808 0x22ec [ CFF943806EBAD5CFAC26FD3DF304E79F, 4992AFB7CE3E2117A11B97FD92ED2EC02183D461F89179B6EA42C8F5AC973374 ] RetailDemo C:\WINDOWS\system32\RDXService.dll
13:51:15.0040 0x22ec RetailDemo - ok
13:51:15.0109 0x22ec [ 176D8470B15CD9080861594F9A33FA01, CFB66D7FEB9465985C2866D64EA03B7E7BE830DCF6C02B3FE2244D7F7E5343E2 ] RpcEptMapper C:\WINDOWS\System32\RpcEpMap.dll
13:51:15.0178 0x22ec RpcEptMapper - ok
13:51:15.0241 0x22ec [ 1A563653DAEDFE4CA81936E0D2FD8B56, 308B0DFEBA63333D407093C449A08ABFECE118C9274100809356BDAF7FA32EB6 ] RpcLocator C:\WINDOWS\system32\locator.exe
13:51:15.0279 0x22ec RpcLocator - ok
13:51:15.0363 0x22ec [ B339861C6A2A86FBCA67C2006B461473, 228ADC8A8603C0A4342C6CBC6F2CC919271D42391365061AF660E0D7151C66A4 ] RpcSs C:\WINDOWS\system32\rpcss.dll
13:51:15.0513 0x22ec RpcSs - ok
13:51:15.0560 0x22ec [ 0AC5FCDC29ED97ECDEF1276425EE2059, 8A12D1732D4AA18A9ED8416F4D4A49B81CE7C4C86ABCEE8FF28A16EA61993CFE ] rspndr C:\WINDOWS\system32\drivers\rspndr.sys
13:51:15.0629 0x22ec rspndr - ok
13:51:15.0714 0x22ec [ 3940780911A7BD1793B7CEEC9E4429C2, 539511D26D2EE348F80D9EFA414FD731983B14D8218E498217E7A0A0E439E41C ] RTSUER C:\WINDOWS\system32\Drivers\RtsUer.sys
13:51:15.0792 0x22ec RTSUER - ok
13:51:15.0846 0x22ec [ 044890BB0D6CF1E23C1087234D320509, FA6C79D24BE4ACCFAC617D2850B922BFAA7C2766AE625C725F3ACF43C934EFAF ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys
13:51:15.0877 0x22ec s3cap - ok
13:51:15.0930 0x22ec [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] SamSs C:\WINDOWS\system32\lsass.exe
13:51:15.0977 0x22ec SamSs - ok
13:51:16.0015 0x22ec [ 530F797129776AA7E81994783A97E2AD, F131EF036702C6E741E5A6851AE07E81043CE8BAEED0768838C0F31CE14FEC1A ] sbp2port C:\WINDOWS\system32\drivers\sbp2port.sys
13:51:16.0062 0x22ec sbp2port - ok
13:51:16.0131 0x22ec [ 0C12493B333B96797AFC5F3C7831C051, BEE786D7ED14221B1A9450060597393AC44116D776B913E045B5F6066D720F74 ] SCardSvr C:\WINDOWS\System32\SCardSvr.dll
13:51:16.0231 0x22ec SCardSvr - ok
13:51:16.0262 0x22ec [ 40110802D217FE1CB581D9A70B1FD16F, CCB920593CCC6663676039F3F731536DFEF535C3F715F6DB6F34D0D733BEF89B ] ScDeviceEnum C:\WINDOWS\System32\ScDeviceEnum.dll
13:51:16.0363 0x22ec ScDeviceEnum - ok
13:51:16.0421 0x22ec [ 9B6B1D4DB35A3D9BEAF023BC95E1F49D, CA44124CA3E9958FB77A891CD234A993B63E8AC6632AE801CDEC6666267E7C7E ] scfilter C:\WINDOWS\system32\DRIVERS\scfilter.sys
13:51:16.0468 0x22ec scfilter - ok
13:51:16.0584 0x22ec [ EA195B8BC11C1CDB313CFD456EFFA0E9, EEDF349C59ED0645B04040707906BB4496527243858C2A6BE46BE7029B4A7F37 ] Schedule C:\WINDOWS\system32\schedsvc.dll
13:51:16.0785 0x22ec Schedule - ok
13:51:16.0854 0x22ec [ 4E9158CECF77A029AB98E8FBB43FCED5, AFF8BDB8F8F8DDF4FC0D65712E031DC360856CD3CE5C8A4C8FF960388F37462F ] SCPolicySvc C:\WINDOWS\System32\certprop.dll
13:51:16.0938 0x22ec SCPolicySvc - ok
13:51:17.0001 0x22ec [ B24408471C1BCB17FC44F5B47EA8DEA3, 1CFE07C793F2A3D883E9071B8703C01A7619C8C0A02AAEBAA1130F36654AFD4F ] sdbus C:\WINDOWS\System32\drivers\sdbus.sys
13:51:17.0085 0x22ec sdbus - ok
13:51:17.0139 0x22ec [ 811EC0B1221402FCED0BA37E112BF627, 366EB8AF04C603BED6CF53652CC937099B247D5DD8C58D699D0D8DA22F8FDD51 ] SDRSVC C:\WINDOWS\System32\SDRSVC.dll
13:51:17.0223 0x22ec SDRSVC - ok
13:51:17.0255 0x22ec [ DE6D7DC78D956928F59F7415A0F41E13, C0F8EEED29BF63A0D8FB5A0286C1C768BFEF598EC52715D910B5BB1A76231805 ] sdstor C:\WINDOWS\System32\drivers\sdstor.sys
13:51:17.0301 0x22ec sdstor - ok
13:51:17.0339 0x22ec [ EBD07BD20B5E0E92A398566EF8720F79, 8A88C861D4113B9938C32CBD28FD3D7F1C3133E700E23E17F5DFD7B26CCDA04A ] seclogon C:\WINDOWS\system32\seclogon.dll
13:51:17.0402 0x22ec seclogon - ok
13:51:17.0424 0x22ec [ B7B9EEBCB7466338403A75D15AC120D7, B8F79DA71F8CD0F30983F7D92B625A431C212DD543DE2B3DC03EC5A68C41B00D ] SENS C:\WINDOWS\System32\sens.dll
13:51:17.0502 0x22ec SENS - ok
13:51:17.0640 0x22ec [ D14DD7D766664F880FECF44CE6017966, ECF966E3ACF4EBD5A3259468A076619A539E35F1B97AB6A98FBD7882F1FBBBAB ] SensorDataService C:\WINDOWS\System32\SensorDataService.exe
13:51:17.0903 0x22ec SensorDataService - ok
13:51:17.0972 0x22ec [ 45D26646E3AD737E5DE3DB91CCCE7DBA, B05AB32700998C8347BC5797B18EB97F303FCB2302BED852348F2703DEDE72F9 ] SensorService C:\WINDOWS\system32\SensorService.dll
13:51:18.0088 0x22ec SensorService - ok
13:51:18.0156 0x22ec [ 7363A65C738F5A5292D7BDBE55D8C3C2, C53C10A0AE58613DFCC91E62E004D9B188E4793C2A19B4BE871A705EEE77048E ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll
13:51:18.0226 0x22ec SensrSvc - ok
13:51:18.0272 0x22ec [ 67585C295FF2D221679E376B68893B35, 4B5E9A8DA8C6F7B1F7129F80A0603503D467E5650306FB4C309977D74037E46B ] SerCx C:\WINDOWS\system32\drivers\SerCx.sys
13:51:18.0326 0x22ec SerCx - ok
13:51:18.0388 0x22ec [ B8C4852CBCAAC1374C08EC7445443824, DDE577A81B3E11B5B56096317BC47AA6E286573042407B96A9D29BE981F3FA4D ] SerCx2 C:\WINDOWS\system32\drivers\SerCx2.sys
13:51:18.0442 0x22ec SerCx2 - ok
13:51:18.0489 0x22ec [ D3A103944A8FCD78FD48B2B19092790C, 252DB8395DA8639E748658D3BE7863C1700E27AA5C41BB700CFCE193FE3F04E9 ] Serenum C:\WINDOWS\System32\drivers\serenum.sys
13:51:18.0542 0x22ec Serenum - ok
13:51:18.0573 0x22ec [ 249A563C48DFD9E42A37587653E003BB, D022FAE2B7AC9D99B9F230A4DF0B045891588162587E1F468B5E05C8DA98AA9A ] Serial C:\WINDOWS\System32\drivers\serial.sys
13:51:18.0627 0x22ec Serial - ok
13:51:18.0673 0x22ec [ 0F5B43074AE731D2C6F061241C9D84A6, 05CFEB30A4FC11441552D37687608C8C2FD6DC2F2266AE9D6526753E26283DE6 ] sermouse C:\WINDOWS\System32\drivers\sermouse.sys
13:51:18.0722 0x22ec sermouse - ok
13:51:18.0821 0x22ec [ CD90E445F6458512A5BA884D561EFCF1, E792FAB8AFF4126C1977024060842D788A06475139782896AFD7B39C85FCDF3F ] SessionEnv C:\WINDOWS\system32\sessenv.dll
13:51:18.0927 0x22ec SessionEnv - ok
13:51:18.0959 0x22ec [ D9FE59276BD56A9643C32D5FACE2F251, 591862D868A545F468496DE97DEE42C9DB3AFBFC0881CBA79EB6641A254AF033 ] sfloppy C:\WINDOWS\System32\drivers\sfloppy.sys
13:51:19.0028 0x22ec sfloppy - ok
13:51:19.0090 0x22ec [ F8083C536BEDE61AFB4069D8A8C16DA7, 13AADAD7B5582911B8ABBE0CF7132CC517F7413A361CCF8ED502F803D061FFA3 ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
13:51:19.0206 0x22ec SharedAccess - ok
13:51:19.0329 0x22ec [ AE6E4D3172FBF45B944668CB3998B8A8, E7D7F98CB464C236A17069987F7B678D7688D9D577334151EF09DF5C6F22AFFC ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
13:51:19.0491 0x22ec ShellHWDetection - ok
13:51:19.0545 0x22ec [ ABBE803FE0BDAE0E5BE74DDEFBE62F23, 5009F489F7A6D66628C23A0FA3D7632399D0AD72BD11A1B70D7E768ED507377D ] SiSRaid2 C:\WINDOWS\system32\drivers\SiSRaid2.sys
13:51:19.0576 0x22ec SiSRaid2 - ok
13:51:19.0607 0x22ec [ 6043DF55CFE3C7ACF477645FA64DEA98, 0E18EF8EC589841BC319C17FBABA7383FD247C9441ABF64A0D830976F3E611AE ] SiSRaid4 C:\WINDOWS\system32\drivers\sisraid4.sys
13:51:19.0646 0x22ec SiSRaid4 - ok
13:51:19.0708 0x22ec [ B922D32039A3B5991E64429EC4EE52A9, 5EB7EB1F6D2C25F06044D8CA9F3BA0471FB40C8C96432BDC2C80CC36DC49BA0B ] smphost C:\WINDOWS\System32\smphost.dll
13:51:19.0777 0x22ec smphost - ok
13:51:19.0846 0x22ec [ F07301C282AA222C33F8C28B4F545275, 2938943A3A62B33C8296DF3B57897D32293F5395A5E2A01C76B0160A98C12520 ] SmsRouter C:\WINDOWS\system32\SmsRouterSvc.dll
13:51:20.0009 0x22ec SmsRouter - ok
13:51:20.0078 0x22ec [ 0B6BECB2651EF947249CDC3715E8B9CC, EB7281AF3529DE16FE8CD0C0C0C8877641865A5864D58628DBAB865B510B0D0B ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe
13:51:20.0131 0x22ec SNMPTRAP - ok
13:51:20.0229 0x22ec [ 1A6CB30F0EFC1632E6F1B852CA892583, 0E6BDCEE837AEC3D02C437478143C75550C94A50E36895DDB095F54A2FA18E2A ] spaceport C:\WINDOWS\system32\drivers\spaceport.sys
13:51:20.0332 0x22ec spaceport - ok
13:51:20.0363 0x22ec [ E1C158F6C00359278727A2CEE5D2ED71, 1591F942C6DD99D3BA7FD4D72D957864117B2263F205468A15F1D1417C6F799D ] SpbCx C:\WINDOWS\system32\drivers\SpbCx.sys
13:51:20.0410 0x22ec SpbCx - ok
13:51:20.0510 0x22ec [ D1241DFC397FA8CCFB4BB4B63AAD31AC, F8C57C2F7CA8B6D8FEE1505A143A3FECF502C8DCFFC375F9C8848A87D9714C9E ] Spooler C:\WINDOWS\System32\spoolsv.exe
13:51:20.0679 0x22ec Spooler - ok
13:51:21.0231 0x22ec [ 7C58AFEC26E9F7730A8AA7FD40225937, 546EAD8889F2A1BB6DCCB7781976B975F34DA1C9047F95FEAA52CF38EC60C6DD ] sppsvc C:\WINDOWS\system32\sppsvc.exe
13:51:22.0149 0x22ec sppsvc - ok
13:51:22.0381 0x22ec [ ACC1709EC7FE6EB8999DBC91C50C2B34, 83ABF51751A264291C53A32B86239A607361E56CB045CD2CBE6E41DBB8A01F54 ] srv C:\WINDOWS\system32\DRIVERS\srv.sys
13:51:22.0498 0x22ec srv - ok
13:51:22.0551 0x22ec [ AFBCFC946FAE7483E27BD316D03F94A5, CC9478EA717E85C38304957E923997821DFE2A995D7C8DF98C15267D952BEFBE ] srv2 C:\WINDOWS\system32\DRIVERS\srv2.sys
13:51:22.0682 0x22ec srv2 - ok
13:51:22.0751 0x22ec [ 107C1EBE79710E4A759449BD6604245A, 963D693F4E61EDC7B3AA9006CC274D56E577CE0035A61DDB2A6DE72116D5C52B ] srvnet C:\WINDOWS\system32\DRIVERS\srvnet.sys
13:51:22.0836 0x22ec srvnet - ok
13:51:22.0905 0x22ec [ 8C1786C073A496B8C0C8A5450A4FFD5B, 13BF3B42A63CE6C461259D4CE767FB0DE1F10433512A11D2B2C033E36E652542 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
13:51:23.0052 0x22ec SSDPSRV - ok
13:51:23.0128 0x22ec [ 217A982201052EFC8C3C0C88D229791C, 11509E3446ED7B75C9A05CDC4A7AF18926CB463E0D98BAE1CD5DB43E88F94F90 ] SstpSvc C:\WINDOWS\system32\sstpsvc.dll
13:51:23.0203 0x22ec SstpSvc - ok
13:51:23.0255 0x22ec [ 37680AECA1BF2D430719A297F68ECD49, 64E6A2C077316CE4807F2F480324F4011003686F698CCB0AA93C659DAAE1FAB5 ] ssudmdm C:\WINDOWS\system32\DRIVERS\ssudmdm.sys
13:51:23.0287 0x22ec ssudmdm - ok
13:51:23.0419 0x22ec [ 7DB9E612A2742ACEAB080B882E83141C, FFD1FA36E732F55223F3F4B5F845331DBB3073B023C2C5BF51A0E7680DEE7FA7 ] ss_conn_service C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe
13:51:23.0519 0x22ec ss_conn_service - ok
13:51:23.0794 0x22ec [ 58863C57E4598C4F9DA967C5C36CFA5D, BB34FBC324E84E05128258CE3755241ECB63F7F2AE7F96716AC373931FAF92A8 ] StateRepository C:\WINDOWS\system32\windows.staterepository.dll
13:51:24.0185 0x22ec StateRepository - ok
13:51:24.0285 0x22ec [ B7368B1BF6C20922DFEDF0A35F69EEEF, 818AC8059D55A6567286C4466A5DBE96AEE4A8F799098B59022FFCA85C99F3CB ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
13:51:24.0332 0x22ec Stereo Service - ok
13:51:24.0369 0x22ec [ CCDA497C880AD16D87EDFAEFCFB2EDF5, 622599AA35ACFF0375DA252210BE42E7E90F30EDFEFF2F62FDB14AE6E45B5F88 ] stexstor C:\WINDOWS\system32\drivers\stexstor.sys
13:51:24.0401 0x22ec stexstor - ok
13:51:24.0448 0x22ec [ 2834415C4EDD6CE35CB3CFEC50E08469, 28426616C709457DF38B5E2B4B9666C1255B81D2097589A95AAABD1BFACD302A ] StillCam C:\WINDOWS\system32\DRIVERS\serscan.sys
13:51:24.0501 0x22ec StillCam - ok
13:51:24.0601 0x22ec [ 75476CAA8FA0A4E573948CDE8C7F0304, 68C4405CACA77AEED71761875A9AF60BCFBDD39E356BEA1BA8226E099BAA5FA4 ] stisvc C:\WINDOWS\System32\wiaservc.dll
13:51:24.0733 0x22ec stisvc - ok
13:51:24.0771 0x22ec [ BF8EA6FC3358C2F69678E3E94F764F84, D274DAD7B5756DD49CA44277C73497F1EC465C8E365CC730CD194932C3825920 ] storahci C:\WINDOWS\system32\drivers\storahci.sys
13:51:24.0817 0x22ec storahci - ok
13:51:24.0871 0x22ec [ 32FF460DA8C1F370F5C08B7654899B73, 0C9D5D38D033109BA672ABAFEF0F0CD295E9FFA108ACFCA9044429D9B2CA9057 ] storflt C:\WINDOWS\system32\drivers\vmstorfl.sys
13:51:24.0917 0x22ec storflt - ok
13:51:24.0933 0x22ec [ CC21DB3EF619B9480FE31A4EFE92CBEB, 256EFCA2F231F41D34250E1460BF88894D943EAE83A0B153FCADE700AB4DE11E ] stornvme C:\WINDOWS\system32\drivers\stornvme.sys
13:51:24.0986 0x22ec stornvme - ok
13:51:25.0018 0x22ec [ 390B8A75768E2689586539C224520895, D72F52E6D7AC5DC318FF9C1DF1F4E8A435D65B6BB59D7F1642222EC026BC54DB ] storqosflt C:\WINDOWS\system32\drivers\storqosflt.sys
13:51:25.0087 0x22ec storqosflt - ok
13:51:25.0171 0x22ec [ FE42F8A07885E518ED1E846C93E4B78C, 264B21A5E07654F159A3E324F3B38A8C11AF619F61B5779A46367DD99EBD00A6 ] StorSvc C:\WINDOWS\system32\storsvc.dll
13:51:25.0319 0x22ec StorSvc - ok
13:51:25.0350 0x22ec [ 770A92D9D3A0BF61C97C3AFCB36847D9, 21A8CC3F8E63B971C4FF8DDED5C7032E093A7B0F16E2128A9BD2E890BA76A1D9 ] storufs C:\WINDOWS\system32\drivers\storufs.sys
13:51:25.0388 0x22ec storufs - ok
13:51:25.0403 0x22ec [ 736A2418E3E7F3DB3CF6EB0A55D1D581, 2D3BBC4E0C7B51EDE7479A978E4BCD5F47A7257745179F01D2D9ECFD83CCCC82 ] storvsc C:\WINDOWS\system32\drivers\storvsc.sys
13:51:25.0450 0x22ec storvsc - ok
13:51:25.0488 0x22ec [ FA8F6E3AD3F92B35D2673CC9FD20429C, 62F81CBACF7E16FEF9DE3BE95FA5C9BDB51BAE4667AE5AE71399864A390FF6D5 ] svsvc C:\WINDOWS\system32\svsvc.dll
13:51:25.0550 0x22ec svsvc - ok
13:51:25.0604 0x22ec [ BD98B0225BCD49E8A62F4F8EE1D1F613, CDAD11969B2DA417079547724BECC3DB4FC4711B3C01590EB0D02774B69B6D90 ] swenum C:\WINDOWS\System32\drivers\swenum.sys
13:51:25.0651 0x22ec swenum - ok
13:51:25.0773 0x22ec [ F577910A133A592234EBAAD3F3AFA258, 36F514740EE2D2B2F7ABFFFA13D575233EC4CE774EB58BF889C09930FEF1F443 ] SwitchBoard C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
13:51:25.0905 0x22ec SwitchBoard - detected UnsignedFile.Multi.Generic ( 1 )
13:51:29.0274 0x22ec Detect skipped due to KSN trusted
13:51:29.0274 0x22ec SwitchBoard - ok
13:51:29.0362 0x22ec [ 22E539A9B96C66A713583EC017562616, 210DA61DFC7AA9AD23277D9CC0239B781F4EABD322D0803AEC9434D68B81FABD ] swprv C:\WINDOWS\System32\swprv.dll
13:51:29.0491 0x22ec swprv - ok
13:51:29.0545 0x22ec [ CAE4B27B469C583131EA5AAE622F5D76, 3979006EB22489D1AAD2EC2E9F32C286EEDCDB83B37B97E58BA831263EC33B84 ] Synth3dVsc C:\WINDOWS\System32\drivers\Synth3dVsc.sys
13:51:29.0592 0x22ec Synth3dVsc - ok
13:51:29.0730 0x22ec [ 34A3EB84B2A830E6F450B8F885AE4E6E, E61AC6D17B815CB71F26D71CA3CCAFD9E66A170E3ED2E64A4F20D097A0C683B5 ] SysMain C:\WINDOWS\system32\sysmain.dll
13:51:29.0946 0x22ec SysMain - ok
13:51:30.0008 0x22ec [ AF2C8D7C1D4DCFD5C31501F009DF42B7, 3DDF9353F014EE99B031BBC969620CA07647FBB8D78EB4697C8D633021B46B11 ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll
13:51:30.0139 0x22ec SystemEventsBroker - ok
13:51:30.0188 0x22ec [ 6979A147C0D5C5CAB621ADC394D32B80, C30B8E3D271A1591D965559EA4A11A1BE63A34D832ED53B26CE91799C888DF77 ] TabletInputService C:\WINDOWS\System32\TabSvc.dll
13:51:30.0257 0x22ec TabletInputService - ok
13:51:30.0304 0x22ec [ 3C32FF010F869BC184DF71290477384E, 55CFCEC7F026C6E2E96A2FBE846AB513BB12BB0348735274FE1B71AF019C837B ] tap0901 C:\WINDOWS\system32\DRIVERS\tap0901.sys
13:51:30.0341 0x22ec tap0901 - ok
13:51:30.0373 0x22ec [ 3A7CABF7DE8F1325BE8F46685469AEC3, 03B2FDEA5E10B9584EFC4ED22D6C2529322FBEF0DFEC60FE12FCE5C4A2E42F9C ] taphss6 C:\WINDOWS\system32\DRIVERS\taphss6.sys
13:51:30.0404 0x22ec taphss6 - ok
13:51:30.0442 0x22ec [ 86B62FC8CB89946446F9B24FE49A66FD, 7B095310D1C78B82E5ACAC4713E101DD1323A3CF6FB39218C2E78ABE2B0385B5 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
13:51:30.0542 0x22ec TapiSrv - ok
13:51:30.0589 0x22ec [ 927D0CDB3F96EFC1E98FB1A2C9FB67AD, 58F14DAA0EA21EA2F2A1D3D62C88BD8E5A0E0EF498B7B8D367BEEADE6A46843C ] tapoas C:\WINDOWS\system32\DRIVERS\tapoas.sys
13:51:30.0642 0x22ec tapoas - ok
13:51:30.0843 0x22ec [ 083A727D784009F9CCFB120C7841B7AF, 14242ECC3EB17154AD856A2C5229324BA6914291F4E2CD93E6AE251A31130448 ] Tcpip C:\WINDOWS\system32\drivers\tcpip.sys
13:51:31.0174 0x22ec Tcpip - ok
13:51:31.0382 0x22ec [ 083A727D784009F9CCFB120C7841B7AF, 14242ECC3EB17154AD856A2C5229324BA6914291F4E2CD93E6AE251A31130448 ] Tcpip6 C:\WINDOWS\system32\drivers\tcpip.sys
13:51:31.0636 0x0450 Object required for P2P: [ 807A6636828E5F43C10A01474B8907EE ] MSDTC
13:51:31.0683 0x22ec Tcpip6 - ok
13:51:31.0752 0x22ec [ 17F37EC9042D84561C550620643D9A85, B01620BA319A1383D403E6E50C7724879520F3267654556D975CAFFF91A82C78 ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys
13:51:31.0805 0x22ec tcpipreg - ok
13:51:31.0868 0x22ec [ 91D3F2A6253EF83EFBD7903028F58C4D, C15768CCCF734093B0F8A5E76882B35927B716E4F14D91ACEE897E1C078D43D1 ] tdx C:\WINDOWS\system32\DRIVERS\tdx.sys
13:51:31.0921 0x22ec tdx - ok
13:51:31.0952 0x22ec [ E730D0EB1B84EBC98423FC8D285EDBC0, 442DD433F9D22304E64EC7ACFC4E04892D4D92D8AC545A3530FC932A2EEC4767 ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys
13:51:32.0006 0x22ec terminpt - ok
13:51:32.0106 0x22ec [ 14307D4801C8CEF0A615907C09E886B3, C7F34C294D70DE689F673E0B5E9253B27EFEBBE6FA38B68B3B0B0374A896407E ] TermService C:\WINDOWS\System32\termsrv.dll
13:51:32.0306 0x22ec TermService - ok
13:51:32.0337 0x22ec [ D009D1BC14FD5F2AC93D1878735F6C39, D8BCE505B66E05BC00075E46B38359CA4D0FA484EB7981A74221885E8A1FFB87 ] Themes C:\WINDOWS\system32\themeservice.dll
13:51:32.0422 0x22ec Themes - ok
13:51:32.0485 0x22ec [ 5F27DE2082E16D4C1D6C627C8ECBD341, 08DA3EB3EF2B2006B6F9F2C8C149DF55DE6738975D556206A814096CAB5C1411 ] TieringEngineService C:\WINDOWS\system32\TieringEngineService.exe
13:51:32.0589 0x22ec TieringEngineService - ok
13:51:32.0658 0x22ec [ 82BC3D304654F8EBEFABDDC2AD70AFE3, 466334A46F6579E7C3F619B15243B270AACE9D04FE06E5228B4759FD619BDDD9 ] tiledatamodelsvc C:\WINDOWS\system32\tileobjserver.dll
13:51:32.0812 0x22ec tiledatamodelsvc - ok
13:51:32.0859 0x22ec [ 7E81E3E0D7F83BFE3C3975020B6C7F12, 316F9415646CC7A4E9A5F1E07310D433457E623B3E589543E4A6C73C4F77712C ] TimeBroker C:\WINDOWS\System32\TimeBrokerServer.dll
13:51:32.0944 0x22ec TimeBroker - ok
13:51:33.0012 0x22ec [ 169B0A246067457FEF8A18EED7EED9D5, BF5AC0CB29E1E456253B881CD0608B578D7343E9DFE1738A14598D1DFFE1AB66 ] TPM C:\WINDOWS\System32\drivers\tpm.sys
13:51:33.0091 0x22ec TPM - ok
13:51:33.0129 0x22ec [ AA84AF93CE5AF1F05838B51D20295419, 85B3EE773C691EEDFA080CD9C59D31CB58A5BC577AEE91A929F5DFBE1368AB6D ] TrkWks C:\WINDOWS\System32\trkwks.dll
13:51:33.0213 0x22ec TrkWks - ok
13:51:33.0291 0x22ec [ E50DD57F496CED8873FA3E7D38BCCD42, 36B95F6F2CF48078C6B19FB452C87BB07E95C8804A5C6B526D349AC6227CAB26 ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe
13:51:33.0360 0x22ec TrustedInstaller - ok
13:51:33.0411 0x22ec [ 48E828C66AB016E48F2CB4DD585315FD, 063809B610F6B177B65D62D12605FB94F108DB26A9FD3067E6D6C51F0D92E774 ] tsusbflt C:\WINDOWS\system32\drivers\TsUsbFlt.sys
13:51:33.0476 0x22ec tsusbflt - ok
13:51:33.0514 0x22ec [ 267C76EE60736EA5A1811A53FA02AABE, 28D4C4CB972534204B8336D0403B70E4EFE4F8369ABDE7401FFCCF7D4E3EA165 ] TsUsbGD C:\WINDOWS\System32\drivers\TsUsbGD.sys
13:51:33.0561 0x22ec TsUsbGD - ok
13:51:33.0592 0x22ec [ 8CE72F094B822AD5EE9C3A3AFC0C16B6, 827CCD849544E1DA364B03DBC82A848D2F93AD32BA14ED52709C609BC70CE5CA ] tunnel C:\WINDOWS\System32\drivers\tunnel.sys
13:51:33.0677 0x22ec tunnel - ok
13:51:33.0714 0x22ec [ 56C238ACFE4CB020D3E38508249039EA, 172868080F07D98175229A02410FE751B5958ED5A3D567D4AE5736F4025DF432 ] tzautoupdate C:\WINDOWS\system32\tzautoupdate.dll
13:51:33.0777 0x22ec tzautoupdate - ok
13:51:33.0813 0x22ec [ 42C546414F80BD6C0137FC3A106F8A69, 067FFCAF0059935851888BD984E848E4E1A6CC1941A8F4534067CCF0B2A3B2E6 ] uagp35 C:\WINDOWS\system32\drivers\uagp35.sys
13:51:33.0846 0x22ec uagp35 - ok
13:51:33.0915 0x22ec [ 1686DBC81748B096232B15F16C302985, 63D72D1838C42A95599AF3C0B19A069E310ADB091208011D7D6FBAC968D1A59A ] UASPStor C:\WINDOWS\System32\drivers\uaspstor.sys
13:51:33.0962 0x22ec UASPStor - ok
13:51:33.0993 0x22ec [ 82D3B1F4D80057826AA649D78147DE36, 344A738F6866BFD3095BB802206DDB2F9E9AD89DC39CAA7DE96455F410683829 ] UcmCx0101 C:\WINDOWS\system32\Drivers\UcmCx.sys
13:51:34.0062 0x22ec UcmCx0101 - ok
13:51:34.0077 0x22ec [ 1C95F7CE37D9EFB90EBE987A9712356C, B9EE7743ADA50276F05D735C5C29E44039D630A7DC93766A0EAF400DA037E4AF ] UcmUcsi C:\WINDOWS\System32\drivers\UcmUcsi.sys
13:51:34.0131 0x22ec UcmUcsi - ok
13:51:34.0162 0x22ec [ AED081772091C98173905E2DF28C223B, 08541CF3354EBB634BD590E0019128F70A6FCA9075B7E785A9E9BD82EC234DD3 ] Ucx01000 C:\WINDOWS\system32\drivers\ucx01000.sys
13:51:34.0231 0x22ec Ucx01000 - ok
13:51:34.0262 0x22ec [ DCA34A111C29E4578DF2B8CEA3C7CDBD, 86BCE4C8EC228724D5896067A85A4768B6069D10A482ECC51A8F828DBD3880C9 ] UdeCx C:\WINDOWS\system32\drivers\udecx.sys
13:51:34.0309 0x22ec UdeCx - ok
13:51:34.0363 0x22ec [ 718A956AE00CE086F381044AB66CC29C, E4EED1600C72CECE1D4507827C329A93D356BBA027470FCF6C4B5C1651DED643 ] udfs C:\WINDOWS\system32\DRIVERS\udfs.sys
13:51:34.0479 0x22ec udfs - ok
13:51:34.0494 0x22ec [ BA760F8E66428BA9FF1E8BFBC6248136, BE7DCBB293B12672CB3653E640C46F669BD738D320F34F4FA4A26F6B248561F0 ] UEFI C:\WINDOWS\System32\drivers\UEFI.sys
13:51:34.0547 0x22ec UEFI - ok
13:51:34.0594 0x22ec [ 28B8E1C6CBCF9FFE2FABFF3160C26ADF, 1C90E6C4E17C9B5555151943970BB6CC196E7EFC6665D9B9DCBB1EC51C70C715 ] Ufx01000 C:\WINDOWS\system32\drivers\ufx01000.sys
13:51:34.0664 0x22ec Ufx01000 - ok
13:51:34.0695 0x22ec [ 2B1DABA97DDF5365FC66EE7DEDD86A13, 2FF3355862938B37EE63FCA149415CE5032BF54747B07517BB21460733B65AD8 ] UfxChipidea C:\WINDOWS\System32\drivers\UfxChipidea.sys
13:51:34.0733 0x22ec UfxChipidea - ok
13:51:34.0780 0x22ec [ 2A87EA182EA333D79AA0B03833EA67F2, 227792A8B4E63CF60A3DEECF829448C8FD59A40DEF3F42414E432820F8D34F64 ] ufxsynopsys C:\WINDOWS\System32\drivers\ufxsynopsys.sys
13:51:34.0817 0x22ec ufxsynopsys - ok
13:51:34.0880 0x22ec [ 63451BD694651307254B8DD37A3D79C7, C781E2D876AF42D5972CCDCF86B7A59F6AF8AF0C6350647F3FA1B209119B5EF9 ] UI0Detect C:\WINDOWS\system32\UI0Detect.exe
13:51:34.0949 0x22ec UI0Detect - ok
13:51:34.0996 0x22ec [ 6DE78C04BF32ECA7AF3064F53687C9A5, 164D3BB24EBA3EAF613799928063FE75220A4E583D985F53A895017782C18600 ] uliagpkx C:\WINDOWS\system32\drivers\uliagpkx.sys
13:51:35.0049 0x22ec uliagpkx - ok
13:51:35.0080 0x22ec [ 67D1E0E6E4D5D33AF0AEF0E33B4DA0F4, BA2E6F16B6B3B54C943F1E7B9F79A6D1332A7ED228D754CC5AE70E3CD78B1F37 ] umbus C:\WINDOWS\System32\drivers\umbus.sys
13:51:35.0096 0x0450 Object send P2P result: true
13:51:35.0149 0x0450 Object required for P2P: [ 7C58AFEC26E9F7730A8AA7FD40225937 ] sppsvc
13:51:35.0181 0x22ec umbus - ok
13:51:35.0196 0x22ec [ 11680607944A719EF20E0E740785712A, 1567C2B3AAD702DCC2DC9C6B7B92EE5B681C06701A39DAC3AA7E2BE9E1E04F47 ] UmPass C:\WINDOWS\System32\drivers\umpass.sys
13:51:35.0273 0x22ec UmPass - ok
13:51:35.0319 0x22ec [ FD949725D9EB52C0B87435CDE1134668, 96E2B3D3379E9AE225E5A4C5251207F1E7DA573901F4F026758EDE9FAEF4F2C5 ] UmRdpService C:\WINDOWS\System32\umrdp.dll
13:51:35.0397 0x22ec UmRdpService - ok
13:51:35.0520 0x22ec [ CB902A15DD21B363FECA5DCCF34F5C57, 6A0836A12A410EBD5C667982852B58CA9E9EDB11EA666C413CC0F811E01A549D ] UnistoreSvc C:\WINDOWS\System32\unistore.dll
13:51:35.0699 0x22ec UnistoreSvc - ok
13:51:36.0270 0x22ec [ 7E5E1603D0FF2D240AE70295C5C3FEFC, 1E5F8E415ACE3C6DFBE636473DBE051329174F2A085516B6FC1515A54014D02B ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
13:51:36.0539 0x22ec UNS - ok
13:51:36.0624 0x22ec [ B85A8CF2BE74DFF1E80097AC94584112, B1DBACC33A4143FEE2CF54E567590A69580312AD7A053BCC85B487C4D451FBDA ] upnphost C:\WINDOWS\System32\upnphost.dll
13:51:36.0740 0x22ec upnphost - ok
13:51:36.0787 0x22ec [ 2410A0C20D21A25E6C01979FA886BE90, DD3F92D8CF110D47B9E36BA0EB10EB34C0FDD28FE0D57E4B60F9326703388F75 ] UrsChipidea C:\WINDOWS\System32\drivers\urschipidea.sys
13:51:36.0825 0x22ec UrsChipidea - ok
13:51:36.0871 0x22ec [ 6E59CE43B6BA5AA1ADCF36A4DBBB92BB, 647D66775A90F67D803043DE8C8AE8BC2F7A042A8DCF9C95BF5458C79609481B ] UrsCx01000 C:\WINDOWS\system32\drivers\urscx01000.sys
13:51:36.0940 0x22ec UrsCx01000 - ok
13:51:36.0972 0x22ec [ E8A59FA109A22FC07E44BDFCC9727DBD, 0DC5928C0FF7E5B38917660D6EFECCC22172DB0BB9B23216F33E750790529C16 ] UrsSynopsys C:\WINDOWS\System32\drivers\urssynopsys.sys
13:51:37.0019 0x22ec UrsSynopsys - ok
13:51:37.0056 0x22ec [ D8A44550ECE102B6443F5D54DCE7DAB3, 97F5AE7B17DAC4A4F3186C77116BC8E49874FB0018C99D8E2CDA29D89E8B0912 ] usbccgp C:\WINDOWS\System32\drivers\usbccgp.sys
13:51:37.0125 0x22ec usbccgp - ok
13:51:37.0157 0x22ec [ 66B3D22DAB5312FF238ABF5C6D9F8FAB, 4A644AFC1C27D692D352BEB8801398A00EA5B4055476063AF905A0A46DDBF8BB ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys
13:51:37.0226 0x22ec usbcir - ok
13:51:37.0288 0x22ec [ 3E4F20DB902D2E2914F3FF3DB9772200, F3D32BE06A26164B5F6E8DB67160D1DBBDC6D14666EEF84EA43C78CB7706E31C ] usbehci C:\WINDOWS\System32\drivers\usbehci.sys
13:51:37.0326 0x22ec usbehci - ok
13:51:37.0388 0x22ec [ 41F7F00D76904416EF1F9EFA1A4C37A2, 7A4250EB2E2E0037B3AE1480C13B229ECFF5C575E68E4F934EE011DB1833B46A ] usbhub C:\WINDOWS\System32\drivers\usbhub.sys
13:51:37.0473 0x22ec usbhub - ok
13:51:37.0527 0x22ec [ E7463CE8579A0418A98BE9BE42C647D7, 923CD51C82FCF9DC4E9EEA99E53634EE07EBF62FB5DFC337F01309D7D5C7622C ] USBHUB3 C:\WINDOWS\System32\drivers\UsbHub3.sys
13:51:37.0642 0x22ec USBHUB3 - ok
13:51:37.0674 0x22ec [ DAB35CCA86F5FBE77D870A40089BC4A1, 4A47D59D882D0F2B93F2EE7F10995E7D68B58009434E2CBD04C659E0D1F059D8 ] usbohci C:\WINDOWS\System32\drivers\usbohci.sys
13:51:37.0727 0x22ec usbohci - ok
13:51:37.0743 0x0450 Object send P2P result: true
13:51:37.0743 0x22ec [ 21162F65C7756AAECAEBED9E67D0A5FE, DE3B43964171DB5B0464DA5E7A674A5D200A8695E6EF1AE2030681066ABA2688 ] usbprint C:\WINDOWS\System32\drivers\usbprint.sys
13:51:37.0790 0x22ec usbprint - ok
13:51:37.0843 0x22ec [ 4AAD6547953D373A1EB5B2DF583D868B, 4E3DCEC9644550996C314FCC39F885DDE4AA7AD821B8596D96C5BEA5D60795F7 ] usbser C:\WINDOWS\System32\drivers\usbser.sys
13:51:37.0890 0x22ec usbser - ok
13:51:37.0928 0x22ec [ 8949F77132A4F8F3BA17C6727099F002, 86AD4A2263B34983335180FDAE775D1744E042D2A11300D27DF546F15F285A25 ] USBSTOR C:\WINDOWS\System32\drivers\USBSTOR.SYS
13:51:37.0974 0x22ec USBSTOR - ok
13:51:38.0006 0x22ec [ 8B3E458A8851F9A3B2109B1680EE1159, 753AC8F82F65564F00EA2F60B43E4B815FEAABE0DA35B6356210A5F4B1CA3EFC ] usbuhci C:\WINDOWS\System32\drivers\usbuhci.sys
13:51:38.0043 0x22ec usbuhci - ok
13:51:38.0106 0x22ec [ 9E9D58F5E1702955B2F4D62996F80E8E, 6C21C250B9D98346D0D5CB7D6C11AB120A1D195C28313BDB0CE532663F0114E2 ] USBXHCI C:\WINDOWS\System32\drivers\USBXHCI.SYS
13:51:38.0175 0x22ec USBXHCI - ok
13:51:38.0329 0x22ec [ 2771EBB565F5C121E66060B173991D4D, 1EB34A6262A18E47ADCA392FDB2D58E8428A1CA43EB4196D76A897F74A03CA7F ] UserDataSvc C:\WINDOWS\System32\userdataservice.dll
13:51:38.0576 0x22ec UserDataSvc - ok
13:51:39.0162 0x22ec [ 36EC82F0E399F36BD25F593D63DC144A, 2A9E916A098ACD5A5074A5FD053ECAB027A0932A348C728F20CD63EF16289533 ] UserManager C:\WINDOWS\System32\usermgr.dll
13:51:39.0346 0x22ec UserManager - ok
13:51:39.0426 0x22ec [ 05F4CB5991D897E4253BF61FA5E828F8, 25B5B6751B4455491E9A050DF5C12F788B5677F70FB4844E0BF851090AC1F74C ] UsoSvc C:\WINDOWS\system32\usocore.dll
13:51:39.0547 0x22ec UsoSvc - ok
13:51:39.0578 0x22ec [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] VaultSvc C:\WINDOWS\system32\lsass.exe
13:51:39.0627 0x22ec VaultSvc - ok
13:51:39.0678 0x22ec [ E1BE37312785A71862516F66B3FD24CE, D248C513DBEACB192653C6E46809209F341771B146544BBF43B86369280B4F8B ] vdrvroot C:\WINDOWS\system32\drivers\vdrvroot.sys
13:51:39.0709 0x22ec vdrvroot - ok
13:51:39.0810 0x22ec [ 67A6E949395A09914AD8B38FE14B8D15, 593F2FAA880B2E0468F98BD58B5214A170E5890907B25294D7A47C66505A3D45 ] vds C:\WINDOWS\System32\vds.exe
13:51:39.0973 0x22ec vds - ok
13:51:40.0020 0x22ec [ E42C0F2850735FF9D908B9DB581E6314, E2204A56BF37FC57CD2ED96E3F908882D72B4BFF1BFB97C5172C851F1E4F9650 ] VerifierExt C:\WINDOWS\system32\drivers\VerifierExt.sys
13:51:40.0089 0x22ec VerifierExt - ok
13:51:40.0174 0x22ec [ EC15FD6A28757793E2DA394CD94ABD52, DC758BBEE9C6952D7B3F7171EF67B037B4068E88189A2C4A894122D1D1209468 ] vhdmp C:\WINDOWS\System32\drivers\vhdmp.sys
13:51:40.0289 0x22ec vhdmp - ok
13:51:40.0321 0x22ec [ D0C9632C350F46786643A069251BC249, CF65BA0D3F3D2B821C10E2D4F53F5B6BF6236CA9767419392A561CFA79254C3B ] vhf C:\WINDOWS\System32\drivers\vhf.sys
13:51:40.0358 0x22ec vhf - ok
13:51:40.0390 0x22ec [ E886CB75DA2B6EB35469EF10135624C7, 3AFC59A0709B984F517A918D5BBEBEB1C80001BEC87C133447DCEAEDE00E516D ] vmbus C:\WINDOWS\system32\drivers\vmbus.sys
13:51:40.0443 0x22ec vmbus - ok
13:51:40.0459 0x22ec [ 46D2EC27820EC0F798F85821E53C2942, D298A7D6AC16F76A069F843C8DD323ECB340D361733CB9B076BCDE8FC5F1FEFC ] VMBusHID C:\WINDOWS\System32\drivers\VMBusHID.sys
13:51:40.0506 0x22ec VMBusHID - ok
13:51:40.0590 0x22ec [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicguestinterface C:\WINDOWS\System32\ICSvc.dll
13:51:40.0722 0x22ec vmicguestinterface - ok
13:51:40.0775 0x22ec [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicheartbeat C:\WINDOWS\System32\ICSvc.dll
13:51:40.0875 0x22ec vmicheartbeat - ok
13:51:40.0922 0x22ec [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll
13:51:41.0022 0x22ec vmickvpexchange - ok
13:51:41.0091 0x22ec [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicrdv C:\WINDOWS\System32\ICSvc.dll
13:51:41.0192 0x22ec vmicrdv - ok
13:51:41.0245 0x22ec [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicshutdown C:\WINDOWS\System32\ICSvc.dll
13:51:41.0341 0x22ec vmicshutdown - ok
13:51:41.0377 0x22ec [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmictimesync C:\WINDOWS\System32\ICSvc.dll
13:51:41.0477 0x22ec vmictimesync - ok
13:51:41.0524 0x22ec [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicvmsession C:\WINDOWS\System32\ICSvc.dll
13:51:41.0608 0x22ec vmicvmsession - ok
13:51:41.0677 0x22ec [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicvss C:\WINDOWS\System32\ICSvc.dll
13:51:41.0746 0x22ec vmicvss - ok
13:51:41.0809 0x22ec [ B9265F47E7A354BAAA0AF5CBA3F8F7CE, F836E7BEDC7CAB1C01225164D171A0210D8F909F52992E4C0BF3C92B365BCD52 ] volmgr C:\WINDOWS\system32\drivers\volmgr.sys
13:51:41.0845 0x22ec volmgr - ok
13:51:41.0878 0x22ec [ BEE9C8B72AB752B794F69C2B9B3678AA, 49A5093C26F3CDCD60577F7F2D7F936C7B2BD010B27F2C49A7B6AA41E42DF98D ] volmgrx C:\WINDOWS\system32\drivers\volmgrx.sys
13:51:41.0925 0x22ec volmgrx - ok
13:51:41.0978 0x22ec [ E1F91A727A04C9F8199D04FF3BBBF63C, 076CAEE621DBF7DE24ED92BA239C440879FDB674CF3213DF3E35AEC03D0D2031 ] volsnap C:\WINDOWS\system32\drivers\volsnap.sys
13:51:42.0047 0x22ec volsnap - ok
13:51:42.0078 0x22ec [ F7B1B1101271E31F43CC76E890704F51, 2282D82B220C3D13FF980ED8E40443C83816D3DA9557EACEA137873F92BB9CF4 ] vpci C:\WINDOWS\System32\drivers\vpci.sys
13:51:42.0109 0x22ec vpci - ok
13:51:42.0147 0x22ec [ D48ED0A08BD2FD25A833E6AC99623091, 6CA7580878D3893E14B4938023A00CDFC9BE215A0CE4ED59A94F95DFD9FDF4D8 ] vsmraid C:\WINDOWS\system32\drivers\vsmraid.sys
13:51:42.0194 0x22ec vsmraid - ok
13:51:42.0346 0x22ec [ 4CF5A1E0C4FCA956ACD6C654E2A8610E, 57F3C7200C25E8717AF92AF2ED7615C6605179D3514B432220FA6EA94CAB4F2E ] VSS C:\WINDOWS\system32\vssvc.exe
13:51:42.0595 0x22ec VSS - ok
13:51:42.0698 0x22ec [ 79F4D90FAA0ACC1866F2F3E03E39CA89, EE08BCBF29A7E4AFFF520B8DF067281425F433EC275F8C86CE8F20F000E92E3D ] vssbrigde64 C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\x64\vssbridge64.exe
13:51:42.0729 0x22ec vssbrigde64 - ok
13:51:42.0799 0x22ec [ 6990D4AFDF545669D4E6C232F26DE1FB, 9B8F99A035188FD96BA79E935E8EF387BEA2223ECA0B74CF64AB993DABAA5722 ] VSTXRAID C:\WINDOWS\system32\drivers\vstxraid.sys
13:51:42.0868 0x22ec VSTXRAID - ok
13:51:42.0915 0x22ec [ 1EE11F0508C58EF081F4176E66D6970B, 9069B3FC8850C7CF617909C6DBFC3753FEB59A9E708379CC57190F4097FB374E ] vwifibus C:\WINDOWS\System32\drivers\vwifibus.sys
13:51:42.0968 0x22ec vwifibus - ok
13:51:42.0999 0x22ec [ 938E4EF58E42D252B742B0E243011B90, AC0C21FBAF15924CB271CA43ACB7A86287936C78B4852BCFC59EC7EC703E036C ] vwififlt C:\WINDOWS\system32\drivers\vwififlt.sys
13:51:43.0068 0x22ec vwififlt - ok
13:51:43.0115 0x22ec [ 3BE5AAC930447FD18D4A8255A2FEC95C, A517357188FE4A5BD98A3CDB2165ACCE96CCE4BE2B90DDBEAF70B6DDF393F506 ] vwifimp C:\WINDOWS\System32\drivers\vwifimp.sys
13:51:43.0225 0x22ec vwifimp - ok
13:51:43.0294 0x22ec [ 48C1A256591297C43ECFC4E30D144EAA, 8E66833ED2CEB6D7E499EB2E4282B4F9DFA28B6D21757BB88EC52FD069D7FACE ] W32Time C:\WINDOWS\system32\w32time.dll
13:51:43.0441 0x22ec W32Time - ok
13:51:43.0510 0x22ec [ CDA9A00B16808D7A5BBB66287B89EE21, B25F98F26B0153E5DD5C744539CB6ACAFAA13E0F7B5D140C1844158B79BC9006 ] w3logsvc C:\WINDOWS\system32\inetsrv\w3logsvc.dll
13:51:43.0561 0x22ec w3logsvc - ok
13:51:43.0642 0x22ec [ 1430B095A4DF52C04BDBC31C861C9324, B686C97D13CE966D44A7695BE78A4501F96CF8E69B24AFFE6C8E643132BB8861 ] W3SVC C:\WINDOWS\system32\inetsrv\iisw3adm.dll
13:51:43.0766 0x22ec W3SVC - ok
13:51:43.0802 0x22ec [ 00C27B64C758C111E5D78A70DE6CA2B6, C99761B9B671B3A1FF1C52796CCA3F4F825BF50D9657D13B551E849CDD82055D ] WacomPen C:\WINDOWS\System32\drivers\wacompen.sys
13:51:43.0845 0x22ec WacomPen - ok
13:51:43.0912 0x22ec [ D76D1AC4F2C642D09A68227D129A4726, D14D6C4D94E9660848C74B220359683D91A4A3D70750E781A20B6D86D46794CE ] WalletService C:\WINDOWS\system32\WalletService.dll
13:51:44.0030 0x22ec WalletService - ok
13:51:44.0061 0x22ec [ 8CB53620B2C2F0641DD7563EA0FDF491, D62FE75C908409A54949F0E3C39558DC7A8F11AF7496ED7B0872D80D08CB67A7 ] wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
13:51:44.0114 0x22ec wanarp - ok
13:51:44.0130 0x22ec [ 8CB53620B2C2F0641DD7563EA0FDF491, D62FE75C908409A54949F0E3C39558DC7A8F11AF7496ED7B0872D80D08CB67A7 ] wanarpv6 C:\WINDOWS\system32\DRIVERS\wanarp.sys
13:51:44.0193 0x22ec wanarpv6 - ok
13:51:44.0262 0x22ec [ 1430B095A4DF52C04BDBC31C861C9324, B686C97D13CE966D44A7695BE78A4501F96CF8E69B24AFFE6C8E643132BB8861 ] WAS C:\WINDOWS\system32\inetsrv\iisw3adm.dll
13:51:44.0362 0x22ec WAS - ok
13:51:44.0537 0x22ec [ 2598BBF11C9E7D0885DCA52E7FD5BCBD, 46B1FB080A2CD88C89A0EB8BA2594A1FA2C341ED77A6C6835CBFFE42907FAC55 ] wbengine C:\WINDOWS\system32\wbengine.exe
13:51:44.0785 0x22ec wbengine - ok
13:51:44.0870 0x22ec [ 642EFABF900374FA85639D83B5533AFD, 292692D6AAC2A785D237ADFBC7CA3D379E8FC79FA366A8CE7D06F5CA5CE6866B ] WbioSrvc C:\WINDOWS\System32\wbiosrvc.dll
13:51:45.0023 0x22ec WbioSrvc - ok
13:51:45.0101 0x22ec [ 0BF8D8C7EC9FB15D6480A12101E88B71, E7BC6A4E53D8C9D73BF83097DFE43ED8038B7BED0AE56E5AF7983F74562F15A3 ] Wcmsvc C:\WINDOWS\System32\wcmsvc.dll
13:51:45.0255 0x22ec Wcmsvc - ok
13:51:45.0358 0x22ec [ 53A036CED1270F2459E708A05922FD49, 2F281A72E4B0408DE6C8153F5988C9AA38591FB1E72558767D389637D0666A85 ] wcncsvc C:\WINDOWS\System32\wcncsvc.dll
13:51:45.0474 0x22ec wcncsvc - ok
13:51:45.0506 0x22ec [ 965B6197A659782B6A0F68411A180AAD, 5541AB78B71E4FA655BCBF2D80D574B2A3B4AA8871F65D26620BDE549FA5459A ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll
13:51:45.0559 0x22ec WcsPlugInService - ok
13:51:45.0574 0x22ec [ 069D3D6E20AD753B34FCE856F0436869, CF8C12295DDAA56E7350019AADBA533D7857CFB3F20DEE14E557963645A9331B ] WdBoot C:\WINDOWS\system32\drivers\WdBoot.sys
13:51:45.0627 0x22ec WdBoot - ok
13:51:45.0744 0x22ec [ 6CC727E94CD84E9720FDCDA8089CABCC, BCF66056B06DED6BC2D329E910FCD3E685D627BAD3B5D7F4B0E970B45CD9CEF4 ] Wdf01000 C:\WINDOWS\system32\drivers\Wdf01000.sys
13:51:45.0844 0x22ec Wdf01000 - ok
13:51:45.0924 0x22ec [ E3E97151A1D1E87BB2D5371F66C5F169, 0ED0B9852FE0533816F5EE2F06045B3964A00FD749A7011DB3C663AB6FA369E2 ] WdFilter C:\WINDOWS\system32\drivers\WdFilter.sys
13:51:45.0993 0x22ec WdFilter - ok
13:51:46.0044 0x22ec [ 75DC67553051103547B693898CB32D08, 4FCF2C3DBBE85461364B1F3A3F3629B52C8664487D30142D15937A4C96EF6A8F ] WdiServiceHost C:\WINDOWS\system32\wdi.dll
13:51:46.0129 0x22ec WdiServiceHost - ok
13:51:46.0144 0x22ec [ 75DC67553051103547B693898CB32D08, 4FCF2C3DBBE85461364B1F3A3F3629B52C8664487D30142D15937A4C96EF6A8F ] WdiSystemHost C:\WINDOWS\system32\wdi.dll
13:51:46.0229 0x22ec WdiSystemHost - ok
13:51:46.0307 0x22ec [ 2BC2E99623119521EEF7910A11D0FDE0, 3F3E48A79534F0F65F961D9B170D534562E04901B630127B16DF02E6D42F2BBF ] wdiwifi C:\WINDOWS\system32\DRIVERS\wdiwifi.sys
13:51:46.0447 0x22ec wdiwifi - ok
13:51:46.0478 0x22ec [ 07B043160399AF4009054E2EA3464BF4, 8D652D7CD75F8FB2B5414155355F0C970015914E1AC6522DBB8387BB8662F542 ] WdNisDrv C:\WINDOWS\system32\Drivers\WdNisDrv.sys
13:51:46.0532 0x22ec WdNisDrv - ok
13:51:46.0547 0x22ec WdNisSvc - ok
13:51:46.0602 0x22ec [ 9972D395DBD05D91DA5EDADEB9325680, 9382D846793F285721A1A0FED42F914035A53D856B902FADB0B7144C471BDA91 ] WebClient C:\WINDOWS\System32\webclnt.dll
13:51:46.0710 0x22ec WebClient - ok
13:51:46.0763 0x22ec [ B6BF579761489720BCE787F723F596E5, 879B17F6A4F23F5E85A09126B7B407955DDCEB1BA4A8FFC0A418B7F47311C056 ] Wecsvc C:\WINDOWS\system32\wecsvc.dll
13:51:46.0848 0x22ec Wecsvc - ok
13:51:46.0879 0x22ec [ 10C9CF8771A2A87F575F9FB56821474E, 15E3DFFE9CF6777F67E426ECF797D2DF743EA152DEE336DCC9C2F92A0E6EB9A3 ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll
13:51:46.0933 0x22ec WEPHOSTSVC - ok
13:51:46.0980 0x22ec [ 357C083FE35D030D991D163AAF622A06, F301852D49DBDEF0D28F56CD74CBDC71CA003EBD07D3F46EA5C870DC1BD07896 ] wercplsupport C:\WINDOWS\System32\wercplsupport.dll
13:51:47.0064 0x22ec wercplsupport - ok
13:51:47.0111 0x22ec [ 2235AF716D15D9DFE4C59DC2AC0C440C, 2DCFCEBEA77E7E40CEF9A785BE1A794B390B36E40FBCF49B494F9CEA3F6A28C4 ] WerSvc C:\WINDOWS\System32\WerSvc.dll
13:51:47.0233 0x22ec WerSvc - ok
13:51:47.0265 0x22ec [ C11272713719922DE5711094333BD166, 61D4F07E02AECF04964FF51EEA31069A2B0EAA549AD2B29B5FD3E1E6BB543593 ] WFPLWFS C:\WINDOWS\system32\drivers\wfplwfs.sys
13:51:47.0333 0x22ec WFPLWFS - ok
13:51:47.0365 0x22ec [ 205A1FAE910F5C493D236245850BB62A, DBA4D1D734BAA3CDEB8A7F9C81A8DAA88CEA55AF5C4C5908E76FB8E522C5EC8A ] WiaRpc C:\WINDOWS\System32\wiarpc.dll
13:51:47.0412 0x22ec WiaRpc - ok
13:51:47.0465 0x22ec [ EF536C54AB9281FDC4E83B07279FCFC4, 22E4F133170682EE14413CA8FDC2DBE73AB31960D6ACB728A6B398229FDDFD3B ] WIMMount C:\WINDOWS\system32\drivers\wimmount.sys
13:51:47.0496 0x22ec WIMMount - ok
13:51:47.0512 0x22ec WinDefend - ok
13:51:47.0581 0x22ec [ D8966A76408107224C6013993135DD78, 6159F69BC26FF817078E68C70E6DFC9075FEBF9EF9F4F046C7A65BC377544AE6 ] WindowsTrustedRT C:\WINDOWS\system32\drivers\WindowsTrustedRT.sys
13:51:47.0634 0x22ec WindowsTrustedRT - ok
13:51:47.0650 0x22ec [ 8B102A7B6CE326FD4208CC7C2D183343, E47C1D76CBFD2A382C3A7BB048D752FB6DD4616FADDEB1C3ADD5DDAE149742AF ] WindowsTrustedRTProxy C:\WINDOWS\system32\drivers\WindowsTrustedRTProxy.sys
13:51:47.0697 0x22ec WindowsTrustedRTProxy - ok
13:51:47.0797 0x22ec [ FFD04E8263FC9CDB89BAD8C27C337223, 7021161D354F1536DA261D001524B92301466631DCFA161A7C6355AAC86BBE40 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll
13:51:47.0966 0x22ec WinHttpAutoProxySvc - ok
13:51:48.0022 0x22ec [ 4A53441C1C4D2878BEF27E381138BB2D, C221E74491E6FD2AF472B53876B46788D5CF62F4E645457F3B3816FD0ED2BAA1 ] WinMad C:\WINDOWS\System32\drivers\winmad.sys
13:51:48.0053 0x22ec WinMad - ok
13:51:48.0153 0x22ec [ 1033C37122C7404C3B926ADF84874832, 163B3A7112F13AE7BB2655A28C6B19AF9B263F2AD2FF1B75314BE3E2B9118903 ] Winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
13:51:48.0240 0x22ec Winmgmt - ok
13:51:48.0495 0x22ec [ 703D0F62C5AA4D08EE8756516C0D125D, 02015A5E62490C11EC968160C528C2AFD1D7194AACA27F407B06EB462657511F ] WinRM C:\WINDOWS\system32\WsmSvc.dll
13:51:48.0903 0x22ec WinRM - ok
13:51:49.0079 0x22ec [ 260907CE034FE327AC99BDA4153AB22F, B96501F43248713C2E153B9D22B78D51412A3C6989A2FB5F53A406C6CDC98D30 ] WINUSB C:\WINDOWS\System32\drivers\WinUSB.SYS
13:51:49.0148 0x22ec WINUSB - ok
13:51:49.0164 0x22ec [ 40A3E8D729F458B2C9A8BD9380FF83D5, CD42FFC138969EF8C9588FD113F0B9A98FBA282D46A5B6BCFA765F55ED6E97A1 ] WinVerbs C:\WINDOWS\System32\drivers\winverbs.sys
13:51:49.0232 0x22ec WinVerbs - ok
13:51:49.0264 0x22ec [ 2E1D1B7FED9042CDBAD4A053F7F86A44, DA32D1E01DFA6D7BEF10DFB014E62490BD35994628F93C1EC9F65735AD3F58C1 ] WiseFS C:\Windows\WiseFs64.sys
13:51:49.0280 0x22ec WiseFS - detected UnsignedFile.Multi.Generic ( 1 )
13:51:51.0666 0x22ec Detect skipped due to KSN trusted
13:51:51.0666 0x22ec WiseFS - ok
13:51:51.0765 0x22ec [ 4C69A8E2E159C1C59BC4B688E9DD7F8C, 235C7A41425846EFE4966490EB7F72AA768B3FE1665843BF58520DDBD6822A74 ] WisLMSvc C:\Program Files (x86)\Launch Manager\WisLMSvc.exe
13:51:51.0788 0x22ec WisLMSvc - ok
13:51:51.0994 0x22ec [ 453740989239803FE363FF8B40EA2E08, 25499705627C38D3431B3C336E0CF3BF55ABB0C461B88DA6D3767CAAE1E2B893 ] WlanSvc C:\WINDOWS\System32\wlansvc.dll
13:51:52.0352 0x22ec WlanSvc - ok
13:51:52.0537 0x22ec [ E48BBF1363F843E030757EC190DD33E6, B37199495115ED423BA99B7317377CE865BB482D4E847861E871480AC49D4A84 ] wlidsvc C:\WINDOWS\system32\wlidsvc.dll
13:51:52.0878 0x22ec wlidsvc - ok
13:51:52.0909 0x22ec [ 8F010BF65238F3F822D22BA12831796E, 2CA830F259B742D2F5CDD0437960BF512D40FB4A4C2342E3BABB38D468F79694 ] WmiAcpi C:\WINDOWS\System32\drivers\wmiacpi.sys
13:51:52.0962 0x22ec WmiAcpi - ok
13:51:53.0025 0x22ec [ 74ACA5A7880C1F0BB9D60E32E1705A70, A89817BCCBFF94D7394614DA81D1C6C4F53AF47A539E674EEF6DC3FC496BF702 ] wmiApSrv C:\WINDOWS\system32\wbem\WmiApSrv.exe
13:51:53.0125 0x22ec wmiApSrv - ok
13:51:53.0163 0x22ec WMPNetworkSvc - ok
13:51:53.0210 0x22ec [ 2A9650FCC696DB28E45EA8B33B99B8E6, FBEBC6C05D50F578C6EEE0A7285EBE1DEADB08DD21FA3232630FD8D5A68FC3FB ] Wof C:\WINDOWS\system32\drivers\Wof.sys
13:51:53.0263 0x22ec Wof - ok
13:51:53.0464 0x22ec [ 4090C6738AA92B428220857B4D44F638, 4A3EE47494051E5BA8393F2AC8226EF434DA3AA1895CF4BADC9BC1BC378647C6 ] workfolderssvc C:\WINDOWS\system32\workfolderssvc.dll
13:51:53.0764 0x22ec workfolderssvc - ok
13:51:53.0811 0x22ec [ 22C52D7EE7C7D0E02C8EFD8CAE8E3A71, 126605A12CEC9CC07DE3050F12E43CECABEAF0D00DF12300AF70F34700F7FE8E ] wpcfltr C:\WINDOWS\system32\DRIVERS\wpcfltr.sys
13:51:53.0843 0x22ec wpcfltr - ok
13:51:53.0896 0x22ec [ 45FA01F8B7971ACB65202038E34D04A3, 9B2C2ABC7DB716295B0BD0AF04DA08E6B4200D7CF1C7DB59DD8FD8FEBD56D94C ] WPDBusEnum C:\WINDOWS\system32\wpdbusenum.dll
13:51:53.0981 0x22ec WPDBusEnum - ok
13:51:54.0012 0x22ec [ 1C08E424CBDD5065BB7266F8C048C1B1, 0452C85EDA6CBAB75C2617886C5D8117ED25D91F1BE0F8377B08D55B6629B028 ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys
13:51:54.0043 0x22ec WpdUpFltr - ok
13:51:54.0112 0x22ec [ 2C6EEFFBB7FB1C51CCD3737C77AB9109, 8C2ED309FAF4312512E7BCCBBC51B1353603A3499077A1DE21991F0692AF1620 ] WpnService C:\WINDOWS\system32\WpnService.dll
13:51:54.0166 0x22ec WpnService - ok
13:51:54.0197 0x22ec [ 638B43D39A3D0B47024555CF1095E6F1, C7EA0A6ED227A5256EB02CA76FEC538DF196B8DC38DA2A567757D2B221C9473E ] ws2ifsl C:\WINDOWS\system32\drivers\ws2ifsl.sys
13:51:54.0244 0x22ec ws2ifsl - ok
13:51:54.0297 0x22ec [ 9C17CF2D05F8DA5AC66880B6BEE64E7D, 8930079A1AFA97657BE567038EE57C988D3DE9A6C24EA46160E2974837082535 ] wscsvc C:\WINDOWS\System32\wscsvc.dll
13:51:54.0382 0x22ec wscsvc - ok
13:51:54.0397 0x22ec WSearch - ok
13:51:54.0698 0x22ec [ 6E04BBE242E2889B37300C4DF5CE1126, FBDAEAC62C48A4FC5EF412AE47FF10590AE83E8871412F76F6F9BAE910542DFA ] WSService C:\WINDOWS\System32\WSService.dll
13:51:55.0124 0x22ec WSService - ok
13:51:55.0457 0x22ec [ 8A88DBA247BFF23BD284C2189F41FDA5, 86A617CB7C7473306DA2889AA30B488ABB9B824F7DCA31AA675DA6EB3974887C ] wuauserv C:\WINDOWS\system32\wuaueng.dll
13:51:55.0827 0x22ec wuauserv - ok
13:51:55.0889 0x22ec [ A928F25CB62232F413EE655352856E10, 1D2B278A24DDDE8792ADE7649FF90A98E186B79F13AA296C30E4180293BE906A ] WudfPf C:\WINDOWS\system32\drivers\WudfPf.sys
13:51:55.0942 0x22ec WudfPf - ok
13:51:55.0974 0x22ec [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFRd C:\WINDOWS\system32\drivers\WudfRd.sys
13:51:56.0058 0x22ec WUDFRd - ok
13:51:56.0111 0x22ec [ 1336DA39FE006EAB2733CA4DE5B3560C, F0D6C71ADCB66D4D14EC6D09FD43F5521A3A8CA53F248DFD01696FB4F033BE77 ] wudfsvc C:\WINDOWS\System32\WUDFSvc.dll
13:51:56.0175 0x22ec wudfsvc - ok
13:51:56.0227 0x22ec [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFWpdFs C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
13:51:56.0290 0x22ec WUDFWpdFs - ok
13:51:56.0327 0x22ec [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFWpdMtp C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
13:51:56.0390 0x22ec WUDFWpdMtp - ok
13:51:56.0528 0x22ec [ 5DA95027DF2317174E8C39B4A8D1FCD8, 99B356411CB08B8BCCF2348DBF1FD5D4F417EA509D9C7CE23E5877C333F4D304 ] WwanSvc C:\WINDOWS\System32\wwansvc.dll
13:51:56.0744 0x22ec WwanSvc - ok
13:51:56.0844 0x22ec [ 5DFAF8BE5A3CABAABF6795BC09EB7876, 1AFD0BC50EA5C2CCB2874E97FE5205175C80849BD6C9BDAF9FBC49174D478997 ] XblAuthManager C:\WINDOWS\System32\XblAuthManager.dll
13:51:57.0014 0x22ec XblAuthManager - ok
13:51:57.0161 0x22ec [ 7118498F6E48758A2EF5A7D1982E2B62, 1FF75AE64CB6DB263E8B35515E092B325AA71A6B2210F8F2B0AD087B3BA33345 ] XblGameSave C:\WINDOWS\System32\XblGameSave.dll
13:51:57.0393 0x22ec XblGameSave - ok
13:51:57.0446 0x22ec [ F279536122B83FD0D8E158AA753E1B7C, 6A542F28E24B30DBDC2EEE24DA33C2F4ADB3596AEDDD71DC1495DD40577CE4BB ] xboxgip C:\WINDOWS\System32\drivers\xboxgip.sys
13:51:57.0546 0x22ec xboxgip - ok
13:51:57.0662 0x22ec [ 69E727F94BEA64E66C284F3C482F33E6, B3E0F287E7A251E0FC17C41089C45737027E54F0213BDE847356AC882B4D3700 ] XboxNetApiSvc C:\WINDOWS\system32\XboxNetApiSvc.dll
13:51:57.0863 0x22ec XboxNetApiSvc - ok
13:51:57.0910 0x22ec [ DA0807D87A62D076C29C4E30F1E84F46, CA3079350038091AEE04D4DA7C06865E9DB3095120AE61AAB575AA77E86A6223 ] xinputhid C:\WINDOWS\System32\drivers\xinputhid.sys
13:51:57.0963 0x22ec xinputhid - ok
13:51:57.0963 0x22ec ================ Scan global ===============================
13:51:58.0047 0x22ec [ 82E25186617BA6C15010F0D47C705705, 5BF9E38918E6EAE86448137E2D120B80318AA1143CDDF539A2BFBEE227646816 ] C:\WINDOWS\system32\basesrv.dll
13:51:58.0117 0x22ec [ E2899695BD30B5F93EC626EBBEF2CB69, B190D2903A109D2C146D881F90769060A0E971942F4AA61AEAD81861032D89C3 ] C:\WINDOWS\system32\winsrv.dll
13:51:58.0195 0x22ec [ 09E92888FFF86F3334E59778724DCA6F, 2344763B52395EF565A9DE5F55BEDCA026AD2E8072FFD06F826BF366B3BA2AB4 ] C:\WINDOWS\system32\sxssrv.dll
13:51:58.0252 0x22ec [ 6FF8248F3A9D69A095C7F3F42BC29CB2, 9077B1AA0AFB8DB329FDED0E51085DE1C51B22A986162F29037FCA404A80D512 ] C:\WINDOWS\system32\services.exe
13:51:58.0283 0x22ec [ Global ] - ok
13:51:58.0283 0x22ec ================ Scan MBR ==================================
13:51:58.0299 0x22ec [ EB2571B16B316C9FE5AA1C4797FF61EE ] \Device\Harddisk0\DR0
13:52:03.0920 0x12b4 Object required for P2P: [ 34A3EB84B2A830E6F450B8F885AE4E6E ] SysMain
13:52:05.0223 0x22ec \Device\Harddisk0\DR0 - ok
13:52:05.0223 0x22ec ================ Scan VBR ==================================
13:52:05.0223 0x22ec [ 6A903CA563214361E00BF5C5D5C3D2A6 ] \Device\Harddisk0\DR0\Partition1
13:52:05.0270 0x22ec \Device\Harddisk0\DR0\Partition1 - ok
13:52:05.0286 0x22ec [ 8B891B889BC9C16081C131209EBF0F77 ] \Device\Harddisk0\DR0\Partition2
13:52:05.0286 0x22ec \Device\Harddisk0\DR0\Partition2 - ok
13:52:05.0323 0x22ec [ 44A1A062C90E4C06B60942525CB5811B ] \Device\Harddisk0\DR0\Partition3
13:52:05.0323 0x22ec \Device\Harddisk0\DR0\Partition3 - ok
13:52:05.0323 0x22ec ================ Scan generic autorun ======================
13:52:05.0370 0x22ec fspuip - ok
13:52:06.0284 0x22ec [ 10E268B0D4AA2ECED79BE1A327A16A61, 460AF4A72F44F2EC3C726353BADA4294BB3736FA1131C83D9AFDCF1F318FD60F ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
13:52:07.0398 0x12b4 Object send P2P result: true
13:52:07.0430 0x12b4 Object required for P2P: [ 4CF5A1E0C4FCA956ACD6C654E2A8610E ] VSS
13:52:07.0684 0x22ec RTHDVCPL - ok
13:52:07.0901 0x22ec [ E897F9B62E611D59FDFAB82FC829B93A, E11E1A488D461105104E7FFD9F8219BDD231807FE33600233BEF11A432E138FD ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
13:52:08.0147 0x22ec RtHDVBg_Dolby - ok
13:52:08.0182 0x22ec [ 0C3154D0620F974AD5C4E8D87626C8CF, 4E6B751F9C0D5D4833A12166BC5142E0A7402E98D00F570926ED9CA0936A8007 ] C:\WINDOWS\system32\igfxtray.exe
13:52:08.0231 0x22ec IgfxTray - ok
13:52:08.0278 0x22ec [ E4AA3D28753EF9DB333FE40079993B09, ECC60BAA7D21EF97CDA17F45277FBFE52B2169155DDB157E34A7AE2EC1BEC185 ] C:\WINDOWS\system32\hkcmd.exe
13:52:08.0357 0x22ec HotKeysCmds - ok
13:52:08.0410 0x22ec [ CF40080765D6F66FA93318C0DB6C7D1F, 015EE5BE439DAC6D3F7C7471EEF554C11F28947492E3F7AA14BB72622C327DCD ] C:\WINDOWS\system32\igfxpers.exe
13:52:08.0472 0x22ec Persistence - ok
13:52:08.0573 0x22ec [ 63B913AAB1244D8DED54CF0EFC8A56BD, 639830E9ECB004F09EA968EDF68C0037B5DFF7CCFF007DE5D11DEF2166707341 ] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe
13:52:08.0642 0x22ec AdobeAAMUpdater-1.0 - ok
13:52:08.0690 0x22ec [ 9BE365E0380829A96B11237B91356CAF, 92E6858275354E1B455AE2EB11F8FDEBE00DB874083B2BD64CCB49B89301AAB0 ] C:\Program Files (x86)\Launch Manager\HotkeyApp.exe
13:52:08.0727 0x22ec HotkeyApp - ok
13:52:08.0759 0x22ec [ DFA1067EA4157BCCCFD48F052066A076, 5E5B60C20CFF1F3F9D45588B0E0AEB59C3F4C11089CCB52AA92890773BAA081F ] C:\Program Files (x86)\Launch Manager\OSD.exe
13:52:08.0828 0x22ec LMgrVolOSD - ok
13:52:08.0859 0x22ec [ 70CE12FE6D58F4E2DDDECC1FEDCFF96C, B1CADC4B8E7A3A6D27BF9FA227902F15305532FD3D180DAC2C512E4153A4BC39 ] C:\Program Files (x86)\Launch Manager\Wbutton.exe
13:52:08.0928 0x22ec Wbutton - ok
13:52:08.0997 0x22ec [ 34D296AFC913E302953C70463EF09A48, BC413307CBC56C039EE8A05B51A56E14EF59678FBB33815AEB320078056C8CE7 ] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
13:52:09.0028 0x22ec HP Software Update - ok
13:52:09.0742 0x22ec [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe
13:52:10.0552 0x22ec OneDriveSetup - ok
13:52:10.0880 0x12b4 Object send P2P result: true
13:52:11.0161 0x22ec [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe
13:52:11.0836 0x22ec OneDriveSetup - ok
13:52:12.0451 0x22ec [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe
13:52:13.0021 0x22ec OneDriveSetup - ok
13:52:13.0052 0x22ec Sidebar - ok
13:52:13.0137 0x22ec [ CB396B37F21C205F00ACE39CF999295A, FD8CB2426D4B9F13480DD823F0479E75316F6486262E88E420398A2C7AB91F57 ] C:\Program Files (x86)\Windows Mail\wab.exe
13:52:13.0537 0x22ec WAB Migrate - ok
13:52:13.0769 0x22ec [ 8E3A4D64A060C5CAA90F3B0C15A7DFE9, 62CEE1449AF368A5FA16DDF9690526965C32979564CF66BD8B3BB534110A910C ] C:\Users\VanessaundUwe\AppData\Roaming\Spotify\SpotifyWebHelper.exe
13:52:13.0938 0x22ec Spotify Web Helper - ok
13:52:14.0595 0x22ec [ 79B65FCC2AC6169B0B898F2894C61221, 5D4801D5D3C8E60F02D93E07B0068471C37B7E25359786A868DBC391D9E4E9DD ] C:\Program Files\CCleaner\CCleaner64.exe
13:52:15.0493 0x22ec CCleaner Monitoring - ok
13:52:15.0859 0x22ec [ B98194D75819C598E4FD574F5AC67537, CE036D8141007D2FDF15879B3F5AA6C4E2A34A2B3ACD40970AC33C33FA6518AD ] C:\Program Files\DAEMON Tools Lite\DTAgent.exe
13:52:16.0294 0x22ec DAEMON Tools Lite Automount - ok
13:52:16.0598 0x22ec [ F9387D080BF8566354CDB0445AB8F87B, 4EE5D4A15E2D3DF578FA0370449C0894166B1B2998B63D9F02A994845350B86A ] C:\Users\VanessaundUwe\AppData\Local\Microsoft\OneDrive\OneDrive.exe
13:52:16.0665 0x22ec OneDrive - ok
13:52:17.0203 0x22ec [ 96C06D6C65559D1B7D6C5A62288725EE, 61CCCA9248742414AAE8973DF121CE2E7EC1385D219E3F3D306EAA3A2989C28C ] C:\Users\VanessaundUwe\AppData\Roaming\Spotify\Spotify.exe
13:52:18.0007 0x22ec Spotify - ok
13:52:18.0370 0x22ec [ EAD8BFF3BF75C7D0B28527303EA13933, 4832257495F3366202411545986611FB785C5480BC13CAFBFB877F78FF0DE9F5 ] C:\Program Files\HP\HP OfficeJet 3830 series\Bin\ScanToPCActivationApp.exe
13:52:18.0718 0x22ec HP OfficeJet 3830 series (NET) - ok
13:52:18.0830 0x22ec [ DC54B039458C66E12299ED2838E8175E, 94550869D7C3844198810DF121C670F0ED195D5C8FC9D56AD0D1B62C43834388 ] C:\ProgramData\class-3\class-47.exe
13:52:18.0984 0x22ec class-2 - detected UnsignedFile.Multi.Generic ( 1 )
13:52:22.0585 0x22ec class-2 ( UnsignedFile.Multi.Generic ) - warning
13:52:24.0771 0x1de8 Object required for P2P: [ 8E3A4D64A060C5CAA90F3B0C15A7DFE9 ] C:\Users\VanessaundUwe\AppData\Roaming\Spotify\SpotifyWebHelper.exe
13:52:25.0279 0x22ec [ 41E25E514D90E9C8BC570484DBAFF62B, E6C49F7CE186DC4C9DA2C393469B070C0F1B95A01D281AE2B89538DA453D1583 ] C:\WINDOWS\system32\cmd.exe
13:52:25.0433 0x22ec Uninstall C:\Users\VanessaundUwe\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64 - ok
13:52:25.0480 0x22ec [ 41E25E514D90E9C8BC570484DBAFF62B, E6C49F7CE186DC4C9DA2C393469B070C0F1B95A01D281AE2B89538DA453D1583 ] C:\WINDOWS\system32\cmd.exe
13:52:25.0580 0x22ec Uninstall C:\Users\VanessaundUwe\AppData\Local\Microsoft\OneDrive\17.3.5892.0626 - ok
13:52:25.0634 0x22ec [ 41E25E514D90E9C8BC570484DBAFF62B, E6C49F7CE186DC4C9DA2C393469B070C0F1B95A01D281AE2B89538DA453D1583 ] C:\WINDOWS\system32\cmd.exe
13:52:25.0712 0x22ec Uninstall C:\Users\VanessaundUwe\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64 - ok
13:52:25.0765 0x22ec [ 41E25E514D90E9C8BC570484DBAFF62B, E6C49F7CE186DC4C9DA2C393469B070C0F1B95A01D281AE2B89538DA453D1583 ] C:\WINDOWS\system32\cmd.exe
13:52:25.0850 0x22ec Uninstall C:\Users\VanessaundUwe\AppData\Local\Microsoft\OneDrive\17.3.6281.1202 - ok
13:52:25.0897 0x22ec [ 41E25E514D90E9C8BC570484DBAFF62B, E6C49F7CE186DC4C9DA2C393469B070C0F1B95A01D281AE2B89538DA453D1583 ] C:\WINDOWS\system32\cmd.exe
13:52:25.0981 0x22ec Uninstall C:\Users\VanessaundUwe\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64 - ok
13:52:26.0182 0x22ec [ 41E25E514D90E9C8BC570484DBAFF62B, E6C49F7CE186DC4C9DA2C393469B070C0F1B95A01D281AE2B89538DA453D1583 ] C:\WINDOWS\system32\cmd.exe
13:52:26.0267 0x22ec Uninstall C:\Users\VanessaundUwe\AppData\Local\Microsoft\OneDrive\17.3.6301.0127 - ok
13:52:26.0515 0x22ec [ 53A997A49E1B38823EAEA2643B121356, 4BA2D1D7367515B976E04E800A8E1A2AA1D2378CDB8BD1AF42B020460F15915A ] C:\Users\VanessaundUwe\AppData\Roaming\bionics-3\bionics-53.exe
13:52:26.0637 0x22ec bionics-5 - detected UnsignedFile.Multi.Generic ( 1 )
13:52:27.0262 0x1de8 Object send P2P result: true
13:52:27.0262 0x1de8 Object required for P2P: [ 79B65FCC2AC6169B0B898F2894C61221 ] C:\Program Files\CCleaner\CCleaner64.exe
13:52:29.0984 0x22ec bionics-5 ( UnsignedFile.Multi.Generic ) - warning
13:52:30.0812 0x1de8 Object send P2P result: true
13:52:30.0812 0x1de8 Object required for P2P: [ 96C06D6C65559D1B7D6C5A62288725EE ] C:\Users\VanessaundUwe\AppData\Roaming\Spotify\Spotify.exe
13:52:31.0770 0x1668 Object required for P2P: [ 41E25E514D90E9C8BC570484DBAFF62B ] C:\WINDOWS\system32\cmd.exe
13:52:34.0235 0x1668 Object send P2P result: true
13:52:34.0235 0x1668 Object required for P2P: [ 41E25E514D90E9C8BC570484DBAFF62B ] C:\WINDOWS\system32\cmd.exe
13:52:34.0382 0x1de8 Object send P2P result: true
13:52:36.0694 0x1668 Object send P2P result: true
13:52:36.0694 0x1668 Object required for P2P: [ 41E25E514D90E9C8BC570484DBAFF62B ] C:\WINDOWS\system32\cmd.exe
13:52:40.0161 0x1668 Object send P2P result: true
13:52:40.0161 0x1668 Object required for P2P: [ 41E25E514D90E9C8BC570484DBAFF62B ] C:\WINDOWS\system32\cmd.exe
13:52:42.0366 0x22ec Waiting for KSN requests completion. In queue: 3
13:52:43.0377 0x22ec Waiting for KSN requests completion. In queue: 3
13:52:43.0625 0x1668 Object send P2P result: true
13:52:43.0625 0x1668 Object required for P2P: [ 41E25E514D90E9C8BC570484DBAFF62B ] C:\WINDOWS\system32\cmd.exe
13:52:44.0380 0x22ec Waiting for KSN requests completion. In queue: 2
13:52:45.0389 0x22ec Waiting for KSN requests completion. In queue: 2
13:52:46.0393 0x22ec Waiting for KSN requests completion. In queue: 2
13:52:47.0082 0x1668 Object send P2P result: true
13:52:47.0082 0x1668 Object required for P2P: [ 41E25E514D90E9C8BC570484DBAFF62B ] C:\WINDOWS\system32\cmd.exe
13:52:47.0401 0x22ec Waiting for KSN requests completion. In queue: 1
13:52:48.0414 0x22ec Waiting for KSN requests completion. In queue: 1
13:52:49.0415 0x22ec Waiting for KSN requests completion. In queue: 1
13:52:50.0430 0x22ec Waiting for KSN requests completion. In queue: 1
13:52:50.0546 0x1668 Object send P2P result: true
13:52:51.0631 0x22ec AV detected via SS2: Kaspersky Anti-Virus, C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\wmiav.exe ( 16.0.0.614 ), 0x41000 ( enabled : updated )
13:52:51.0663 0x22ec AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.9.10586.0 ), 0x60100 ( disabled : updated )
13:52:51.0678 0x22ec FW detected via SS2: Kaspersky Anti-Virus, C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\wmiav.exe ( 16.0.0.614 ), 0x40010 ( disabled )
13:52:51.0709 0x22ec Win FW state via NFP2: enabled ( trusted )
13:53:04.0085 0x22ec ============================================================
13:53:04.0085 0x22ec Scan finished
13:53:04.0085 0x22ec ============================================================
13:53:04.0100 0x2a44 Detected object count: 2
13:53:04.0100 0x2a44 Actual detected object count: 2
13:54:57.0320 0x2a44 class-2 ( UnsignedFile.Multi.Generic ) - skipped by user
13:54:57.0320 0x2a44 class-2 ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:54:57.0320 0x2a44 bionics-5 ( UnsignedFile.Multi.Generic ) - skipped by user
13:54:57.0320 0x2a44 bionics-5 ( UnsignedFile.Multi.Generic ) - User select action: Skip
13:57:03.0809 0x0e20 Deinitialize success |