20:17:24.0682 0x04a4 TDSS rootkit removing tool 3.1.0.28 Apr 9 2019 21:11:46 20:17:30.0336 0x04a4 ============================================================ 20:17:30.0340 0x04a4 Current date / time: 2022/01/24 20:17:30.0336 20:17:30.0340 0x04a4 SystemInfo: 20:17:30.0340 0x04a4 20:17:30.0341 0x04a4 OS Version: 6.1.7601 ServicePack: 1.0 20:17:30.0341 0x04a4 Product type: Workstation 20:17:30.0342 0x04a4 ComputerName: VIT2600 20:17:30.0343 0x04a4 UserName: ThEspectrum 20:17:30.0343 0x04a4 Windows directory: C:\Windows 20:17:30.0343 0x04a4 System windows directory: C:\Windows 20:17:30.0343 0x04a4 Processor architecture: Intel x86 20:17:30.0343 0x04a4 Number of processors: 2 20:17:30.0343 0x04a4 Page size: 0x1000 20:17:30.0343 0x04a4 Boot type: Normal boot 20:17:30.0343 0x04a4 CodeIntegrityOptions = 0x00000000 20:17:30.0343 0x04a4 ============================================================ 20:17:32.0175 0x04a4 KLMD registered as C:\Windows\system32\drivers\85492302.sys 20:17:32.0175 0x04a4 KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 7601.24384, osProperties = 0x0 20:17:33.0037 0x04a4 System UUID: {0E421D51-0EB5-1FD8-1E09-798305FC2C4A} 20:17:34.0597 0x04a4 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050 20:17:34.0603 0x04a4 Drive \Device\Harddisk1\DR1 - Size: 0x1D11B0000 ( 7.27 Gb ), SectorSize: 0x200, Cylinders: 0x3B4, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W' 20:17:34.0605 0x04a4 ============================================================ 20:17:34.0605 0x04a4 \Device\Harddisk0\DR0: 20:17:34.0623 0x04a4 MBR partitions: 20:17:34.0623 0x04a4 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xE6ED000 20:17:34.0623 0x04a4 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xE6ED800, BlocksNum 0xE8E1000 20:17:34.0623 0x04a4 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x1CFCE800, BlocksNum 0x16FCC800 20:17:34.0623 0x04a4 \Device\Harddisk0\DR0\Partition4: MBR, Type 0x7, StartLBA 0x33F9B000, BlocksNum 0x63EA800 20:17:34.0624 0x04a4 \Device\Harddisk1\DR1: 20:17:34.0624 0x04a4 MBR partitions: 20:17:34.0624 0x04a4 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xE88580 20:17:34.0625 0x04a4 ============================================================ 20:17:34.0778 0x04a4 C: <-> \Device\Harddisk0\DR0\Partition1 20:17:34.0844 0x04a4 D: <-> \Device\Harddisk0\DR0\Partition2 20:17:34.0873 0x04a4 E: <-> \Device\Harddisk0\DR0\Partition3 20:17:34.0900 0x04a4 F: <-> \Device\Harddisk0\DR0\Partition4 20:17:34.0900 0x04a4 ============================================================ 20:17:34.0900 0x04a4 Initialize success 20:17:34.0900 0x04a4 ============================================================ 20:20:56.0834 0x0bec ============================================================ 20:20:56.0834 0x0bec Scan started 20:20:56.0834 0x0bec Mode: Manual; 20:20:56.0835 0x0bec ============================================================ 20:20:56.0835 0x0bec KSN ping started 20:21:11.0093 0x0bec KSN ping finished: true 20:21:12.0517 0x0bec ================ Scan BIOS ================================= 20:21:12.0518 0x0bec BIOS info: vendor = American Megatrends Inc., version = 080015 , releaseDate = 11/19/2009 20:21:12.0519 0x0bec Base board info: manufacturer = langchao, product = To Be Filled By O.E.M., version = To Be Filled By O.E.M. 20:21:13.0835 0x0bec [ 0F37C0E3C663F09827D216F5E7C330D6, 4A238A2721831174F6436D88FE76598FB15824E3C9A360D5F2E019B68A0E8244 ] BIOS 20:21:13.0835 0x0bec BIOS - ok 20:21:13.0835 0x0bec ================ Scan system memory ======================== 20:21:13.0838 0x0bec System memory - ok 20:21:13.0841 0x0bec ================ Scan services ============================= 20:21:14.0129 0x0bec [ 1B133875B8AA8AC48969BD3458AFE9F5, 01753BDD47F3F9BC0E0D23A069B9C56D4AE6A6B6295BC19B95AE245D25B12744 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys 20:21:14.0139 0x0bec 1394ohci - ok 20:21:14.0184 0x0bec [ CEA80C80BED809AA0DA6FEBC04733349, AE69C142DC2210A4AE657C23CEA4A6E7CB32C4F4EBA039414123CAC52157509B ] ACPI C:\Windows\system32\drivers\ACPI.sys 20:21:14.0191 0x0bec ACPI - ok 20:21:14.0198 0x0bec [ 1EFBC664ABFF416D1D07DB115DCB264F, BF94D069D692140B792DBF4FD3CB0127D27C26CC5BFB6B0C28A8B6346767EE58 ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys 20:21:14.0200 0x0bec AcpiPmi - ok 20:21:14.0225 0x0bec [ 21E785EBD7DC90A06391141AAC7892FB, A2D3D764C5E6DC0AD5AAF48485FFB8B121D2A40DC08ECF2D2CB92278A1002B25 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys 20:21:14.0235 0x0bec adp94xx - ok 20:21:14.0248 0x0bec [ 0C676BC278D5B59FF5ABD57BBE9123F2, 339E8A433D186BAAB6FCB44C82CC9FB6FCD63C87981449494CBEB2072CB6B7BB ] adpahci C:\Windows\system32\drivers\adpahci.sys 20:21:14.0256 0x0bec adpahci - ok 20:21:14.0270 0x0bec [ 7C7B5EE4B7B822EC85321FE23A27DB33, A934AFB71D439555E6376DA9B34F82E8D39A300A4547BE9AC9311F6A3C36270C ] adpu320 C:\Windows\system32\drivers\adpu320.sys 20:21:14.0275 0x0bec adpu320 - ok 20:21:14.0323 0x0bec [ 8B5EEFEEC1E6D1A72A06C526628AD161, 026CDF4C96F4D493E7BABF79A14C4B0B5ADCCEF0B081FFFA2E3B243B2414167F ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 20:21:14.0326 0x0bec AeLookupSvc - ok 20:21:14.0363 0x0bec [ F582FC7976F1248AC5FBD6875C626B41, E65532B4E9924ECFF892C0A62312CBC070BFF7B1C4737E6CF8C4ED638BCD030F ] AFD C:\Windows\system32\drivers\afd.sys 20:21:14.0371 0x0bec AFD - ok 20:21:14.0378 0x0bec [ 507812C3054C21CEF746B6EE3D04DD6E, D7E59350AC338AD229E3D10C76E32AE16D120311B263714A9CD94AB538633B0E ] agp440 C:\Windows\system32\drivers\agp440.sys 20:21:14.0381 0x0bec agp440 - ok 20:21:14.0395 0x0bec [ 8B30250D573A8F6B4BD23195160D8707, 64EC289AFCD63D84EAFD9D81C50D0A77BCC79A1EFF32C50B2776BB0C0151757D ] aic78xx C:\Windows\system32\drivers\djsvs.sys 20:21:14.0399 0x0bec aic78xx - ok 20:21:14.0405 0x0bec [ 18A54E132947CD98FEA9ACCC57F98F13, 9D39AF972785E49F0DD12C4BAEF39A79CD69F098886BF152AF1B7CCE2E902115 ] ALG C:\Windows\System32\alg.exe 20:21:14.0407 0x0bec ALG - ok 20:21:14.0424 0x0bec [ 0D40BCF52EA90FC7DF2AEAB6503DEA44, 1D1AA8F50935D976C29DE7A84708CADBBBDD936F0DD2C059E820F0D21367B3B6 ] aliide C:\Windows\system32\drivers\aliide.sys 20:21:14.0427 0x0bec aliide - ok 20:21:14.0437 0x0bec [ 3C6600A0696E90A463771C7422E23AB5, 370B33DC1C25B981628A318BAE434A78A5F0A0DA93C2896DC7A3D7B87AE1A5E7 ] amdagp C:\Windows\system32\drivers\amdagp.sys 20:21:14.0439 0x0bec amdagp - ok 20:21:14.0445 0x0bec [ CD5914170297126B6266860198D1D4F0, 2239FCBD1A7EC27CE4F10DA36AE6BD6CCB87E5128C82CA71B84BFE5AF5602A60 ] amdide C:\Windows\system32\drivers\amdide.sys 20:21:14.0447 0x0bec amdide - ok 20:21:14.0460 0x0bec [ 96EE4379364D0AFA71AF291D385CF479, 5D1799DC32D31C1ED4313A22DC281B988A05C0D809975511FB5D354ED5A0C7B3 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys 20:21:14.0463 0x0bec AmdK8 - ok 20:21:14.0469 0x0bec [ BAE0787A4CEF9D86C6BB94F4A43CBE8A, 4C78B06AA982857CEF71F03D336BB02DA2451629CCA07A04944AA666CC3F1E68 ] AmdPPM C:\Windows\system32\drivers\amdppm.sys 20:21:14.0472 0x0bec AmdPPM - ok 20:21:14.0491 0x0bec [ E7F4D42D8076EC60E21715CD11743A0D, 91AC020A70964F8783C999BDE8AB8391A3FA3AFC1CD4BC52A43625A2010A53E7 ] amdsata C:\Windows\system32\drivers\amdsata.sys 20:21:14.0494 0x0bec amdsata - ok 20:21:14.0504 0x0bec [ EA43AF0C423FF267355F74E7A53BDABA, 3F1335909AB0281A2FBDD7AD90E18309E091656CD32B48894B992789D8C61DB4 ] amdsbs C:\Windows\system32\drivers\amdsbs.sys 20:21:14.0508 0x0bec amdsbs - ok 20:21:14.0523 0x0bec [ 146459D2B08BFDCBFA856D9947043C81, AC7F2069717601F949B0968EA651899D497170A93B84281B66D3CE5C382DDECB ] amdxata C:\Windows\system32\drivers\amdxata.sys 20:21:14.0528 0x0bec amdxata - ok 20:21:14.0535 0x0bec [ ED3B6F7CE10C43B307BEEA12814AECC5, 74C929506A1852CF89CEC2DAB7502074FB9E43B0B53CCA4E88C84B46C4570C5A ] AppID C:\Windows\system32\drivers\appid.sys 20:21:14.0538 0x0bec AppID - ok 20:21:14.0559 0x0bec [ DD4DED3553186F4BE19DCC6EC63CE4B5, D7FB1975FDA0C5A9005111B5009FD5B7F2ADAF83C5B4DFE724A82C0A25D14260 ] AppIDSvc C:\Windows\System32\appidsvc.dll 20:21:14.0564 0x0bec AppIDSvc - ok 20:21:14.0570 0x0bec [ 5EDA6BA186D1B05D5EF4E96F81F3F3EF, B815998ED90E4AC8F4394992082E1F05076CA07C868A15E616C291DCAAF8A000 ] Appinfo C:\Windows\System32\appinfo.dll 20:21:14.0573 0x0bec Appinfo - ok 20:21:14.0736 0x0bec [ 2ABD12577DA56328B38E3F8ACD755BFC, 00D8DE52F5D5DD3806857DC2C2607973A58E7F8F61C0FA6E534BD320DDE958B6 ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe 20:21:14.0741 0x0bec Apple Mobile Device - ok 20:21:14.0777 0x0bec [ A45D184DF6A8803DA13A0B329517A64A, C1D16B60A6D69689AE951DC3D6884ED2E233D144B3FC0B86BC1C50AAAAA01ED2 ] AppMgmt C:\Windows\System32\appmgmts.dll 20:21:14.0786 0x0bec AppMgmt - ok 20:21:14.0832 0x0bec [ 2932004F49677BD84DBC72EDB754FFB3, 73F84582244AC53994A2F4499A119B4A84A6BF7FD3046C29A8080C763DE540B8 ] arc C:\Windows\system32\drivers\arc.sys 20:21:14.0838 0x0bec arc - ok 20:21:14.0849 0x0bec [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7, F7C9C3B4F2C816F57A43B2921672858C291054220BADE291044343778216F6BA ] arcsas C:\Windows\system32\drivers\arcsas.sys 20:21:14.0855 0x0bec arcsas - ok 20:21:15.0036 0x0bec [ 93AF33BC056D2E4BBDAF5E74E81B0519, 607BF7BCD1CF9F023CE6DCA867CE1EC30A1D23915BCC618E28E6619E81FA9EDB ] aspnet_state C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe 20:21:15.0042 0x0bec aspnet_state - ok 20:21:15.0066 0x0bec [ ADD2ADE1C2B285AB8378D2DAAF991481, 7965A705F37924C0EC7A934E64E89C5DF4069816E2EEA3509E0AC90F78910519 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 20:21:15.0069 0x0bec AsyncMac - ok 20:21:15.0087 0x0bec [ 338C86357871C167A96AB976519BF59E, F28CC534523D1701B0552F5D7E18E88369C4218BDB1F69110C3E31D395884AD6 ] atapi C:\Windows\system32\drivers\atapi.sys 20:21:15.0089 0x0bec atapi - ok 20:21:15.0172 0x0bec [ 76BAB0C824E2D05B940C4DD40A9B08BF, 237C60123F5AFF06C20757E2791C0CA383DE094DB634C239E375639B1B923844 ] athr C:\Windows\system32\DRIVERS\athr.sys 20:21:15.0214 0x0bec athr - ok 20:21:15.0256 0x0bec [ E4C428E0D27D531475EFC50DAB4004D7, 4218279404EB3F0D73BCA17307093E4719C1BC365279DC286FD9D00978B7A63F ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 20:21:15.0277 0x0bec AudioEndpointBuilder - ok 20:21:15.0297 0x0bec [ E4C428E0D27D531475EFC50DAB4004D7, 4218279404EB3F0D73BCA17307093E4719C1BC365279DC286FD9D00978B7A63F ] Audiosrv C:\Windows\System32\Audiosrv.dll 20:21:15.0306 0x0bec Audiosrv - ok 20:21:15.0329 0x0bec [ 6E30D02AAC9CAC84F421622E3A2F6178, 229DC527C1D6C778BCA2C855A2A6F6D2C4B0F4F6DE56C886B3AAD26E3347952C ] AxInstSV C:\Windows\System32\AxInstSV.dll 20:21:15.0333 0x0bec AxInstSV - ok 20:21:15.0353 0x0bec [ 1A231ABEC60FD316EC54C66715543CEC, 09E2897BA80737997A286EA5408C03DD3CC0EBACD24CB391C2455B6D4BE7D67E ] b06bdrv C:\Windows\system32\drivers\bxvbdx.sys 20:21:15.0374 0x0bec b06bdrv - ok 20:21:15.0386 0x0bec [ BD8869EB9CDE6BBE4508D869929869EE, F4363A12EBFDBB89C69FD59B22F9EE05BADA07D477A1DF2DE01F59D6EE496543 ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys 20:21:15.0392 0x0bec b57nd60x - ok 20:21:15.0433 0x0bec [ EE1E9C3BB8228AE423DD38DB69128E71, ED54FD9795F3A4D32F02BED6052AD9404409A05644CDBEBFF19C662D104DA95A ] BDESVC C:\Windows\System32\bdesvc.dll 20:21:15.0436 0x0bec BDESVC - ok 20:21:15.0442 0x0bec [ 505506526A9D467307B3C393DEDAF858, 8AD6F1492E357F57CF42261497BA29122045D4FC0DCC9669AA5AC9B2A4BABFA4 ] Beep C:\Windows\system32\drivers\Beep.sys 20:21:15.0444 0x0bec Beep - ok 20:21:15.0477 0x0bec [ 1E2BAC209D184BB851E1A187D8A29136, 53933C938DA5126986FFF2918C1F522ABE93ABAB460AE32E4453161C2F7B68DF ] BFE C:\Windows\System32\bfe.dll 20:21:15.0489 0x0bec BFE - ok 20:21:15.0524 0x0bec [ E585445D5021971FAE10393F0F1C3961, 178C008A9A0A6BFDA65EB0B98C510271360AD4474F22F13594F5EB60AA4E1CF5 ] BITS C:\Windows\System32\qmgr.dll 20:21:15.0566 0x0bec BITS - ok 20:21:15.0586 0x0bec [ 2287078ED48FCFC477B05B20CF38F36F, 55BCA6174E6034A8D61CBE4126B2F1989F6052BFA624BEA9C0A0A664AEC74521 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys 20:21:15.0589 0x0bec blbdrive - ok 20:21:15.0611 0x0bec [ 28AF7D4427868B7CE4C00CAB1864C7F6, AAE5303878AF0F7AA18069A8FCD99639EBC34622B456AF86C5E4F27858196E06 ] bowser C:\Windows\system32\DRIVERS\bowser.sys 20:21:15.0614 0x0bec bowser - ok 20:21:15.0619 0x0bec [ 9F9ACC7F7CCDE8A15C282D3F88B43309, A9131334BD9CF8FD60BA9D54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys 20:21:15.0622 0x0bec BrFiltLo - ok 20:21:15.0627 0x0bec [ 56801AD62213A41F6497F96DEE83755A, 0DEB8318FB47DF6473C171C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys 20:21:15.0630 0x0bec BrFiltUp - ok 20:21:15.0648 0x0bec [ 6E11F33D14D020F58D5E02E4D67DFA19, 9563E4E8CE769B7619745F6F6DE618389A1595785023BF1F295AD8301B27F0AF ] Browser C:\Windows\System32\browser.dll 20:21:15.0652 0x0bec Browser - ok 20:21:15.0675 0x0bec [ 845B8CE732E67F3B4133164868C666EA, 9309B094CD9B5EBC46295A5EB806BED472C3CEDE3B5F6F497EBDABA496A2A27F ] Brserid C:\Windows\System32\Drivers\Brserid.sys 20:21:15.0683 0x0bec Brserid - ok 20:21:15.0690 0x0bec [ 203F0B1E73ADADBBB7B7B1FABD901F6B, 782FA7B26940FE479C49C9BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 20:21:15.0693 0x0bec BrSerWdm - ok 20:21:15.0699 0x0bec [ BD456606156BA17E60A04E18016AE54B, DFBDC9DA6A3EA40BACFF204BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 20:21:15.0701 0x0bec BrUsbMdm - ok 20:21:15.0707 0x0bec [ AF72ED54503F717A43268B3CC5FAEC2E, 4A638669B0C30B1BDED242A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 20:21:15.0710 0x0bec BrUsbSer - ok 20:21:15.0717 0x0bec [ ED3DF7C56CE0084EB2034432FC56565A, B5B75E002E7BC0209582C635CCCA26DB569BDB23C33A126634E00C6434BF941B ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys 20:21:15.0719 0x0bec BTHMODEM - ok 20:21:15.0738 0x0bec [ 1DF19C96EEF6C29D1C3E1A8678E07190, 1F4BB161FF3A1C5B1465BB52F3520FEDB7ACB1FAA132466F07D16DB8E394AEA5 ] bthserv C:\Windows\system32\bthserv.dll 20:21:15.0741 0x0bec bthserv - ok 20:21:15.0755 0x0bec [ 77EA11B065E0A8AB902D78145CA51E10, 160EB3BBE9E5F3CC4A02584E6F2576A812C7565B940D74838B983F1EE51FA73A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 20:21:15.0758 0x0bec cdfs - ok 20:21:15.0766 0x0bec [ BE167ED0FDB9C1FA1133953C18D5A6C9, E26A851CA13E7300F977E5B20FA5D25FD0E1442AB6AD5DB58BBDB2DAAD87027C ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys 20:21:15.0770 0x0bec cdrom - ok 20:21:15.0789 0x0bec [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] CertPropSvc C:\Windows\System32\certprop.dll 20:21:15.0793 0x0bec CertPropSvc - ok 20:21:15.0807 0x0bec [ 3FE3FE94A34DF6FB06E6418D0F6A0060, 6B3A2A26609A75B690D4C0B3059E40822F3B3DB08943F58EC496BABDA7D0A735 ] circlass C:\Windows\system32\drivers\circlass.sys 20:21:15.0810 0x0bec circlass - ok 20:21:15.0834 0x0bec [ 000B58009E5D0962C0A71D6477029A3F, 2696398A42B399AEE9F9F0FB26610BB9F50F9EC784EC80F78FF6DD3D6E892ADA ] CLFS C:\Windows\system32\CLFS.sys 20:21:15.0841 0x0bec CLFS - ok 20:21:15.0987 0x0bec [ D88040F816FDA31C3B466F0FA0918F29, 39D3630E623DA25B8444B6D3AAAB16B98E7E289C5619E19A85D47B74C71449F3 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 20:21:16.0007 0x0bec clr_optimization_v2.0.50727_32 - ok 20:21:16.0036 0x0bec [ 04F9B6FF914C125A6E4424F9C9C7542B, CFF307BBDD61F6BF50EC9415895ECAA0AB423DC4DA5FA46EDF09CF21271FE69E ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 20:21:16.0077 0x0bec clr_optimization_v4.0.30319_32 - ok 20:21:16.0104 0x0bec [ DEA805815E587DAD1DD2C502220B5616, 2D6A7668C95352B818F5EC59FF462894935833D34190257DA9CAC7E67FD3631C ] CmBatt C:\Windows\system32\drivers\CmBatt.sys 20:21:16.0107 0x0bec CmBatt - ok 20:21:16.0116 0x0bec [ C537B1DB64D495B9B4717B4D6D9EDBF2, 400EEFE662DE117C9CC956E4CBD5E98F28F962E7447CD93E8A78FDD8CA39EB4B ] cmdide C:\Windows\system32\drivers\cmdide.sys 20:21:16.0119 0x0bec cmdide - ok 20:21:16.0154 0x0bec [ 242BBB59D4B69250BE7648681149EAEF, 932AD24D794F0A1D93C8160D37A878EA5C9FECEEE39033DA68DA69F572093D68 ] CNG C:\Windows\system32\Drivers\cng.sys 20:21:16.0175 0x0bec CNG - ok 20:21:16.0188 0x0bec [ A6023D3823C37043986713F118A89BEE, FAC239A7FA6251C7EDFFA34B4BAE3910B8BC0BD4A3574B6DB6931A8D691E207B ] Compbatt C:\Windows\system32\drivers\compbatt.sys 20:21:16.0192 0x0bec Compbatt - ok 20:21:16.0198 0x0bec [ CBE8C58A8579CFE5FCCF809E6F114E89, AC083A1C649EBA18C59FCC1772D0784B10E2B8C63094E3C14388E147DBC3F6DF ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys 20:21:16.0201 0x0bec CompositeBus - ok 20:21:16.0206 0x0bec COMSysApp - ok 20:21:16.0213 0x0bec [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1, 6FC323217D82EF661BA0E3F949B61B05BB5235D1A69C81D24876C2153FAECEF6 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys 20:21:16.0216 0x0bec crcdisk - ok 20:21:16.0278 0x0bec [ 3416FAA2F410343666AE31B7B5A9309D, 7C558A10745EE2D2359912B762679DC721B25EEB9810F362464FB02D497BE8E2 ] CryptSvc C:\Windows\system32\cryptsvc.dll 20:21:16.0286 0x0bec CryptSvc - ok 20:21:16.0320 0x0bec [ 3C2177A897B4CA2788C6FB0C3FD81D4B, 98575CBD0664586E6211D02E71BDD52CBAA149A1658573550E29E74E5F7B1553 ] CSC C:\Windows\system32\drivers\csc.sys 20:21:16.0351 0x0bec CSC - ok 20:21:16.0373 0x0bec [ 15F93B37F6801943360D9EB42485D5D3, DD6838C6496CB15F8BB57A6596F6A64ADD9C36B09F062295699131232712B558 ] CscService C:\Windows\System32\cscsvc.dll 20:21:16.0390 0x0bec CscService - ok 20:21:16.0437 0x0bec [ 0395B42B3885269C039C6705D5A49BE3, A87697AFC9D4478DCD0A0053DBE378F3F84961BCF1A911DBB4161EEB350CB064 ] DcomLaunch C:\Windows\system32\rpcss.dll 20:21:16.0458 0x0bec DcomLaunch - ok 20:21:16.0533 0x0bec [ 8D6E10A2D9A5EED59562D9B82CF804E1, 888F9650F4E872BA8F4E0C27E38A6672A561042B17EBA40E306A22357965B0AD ] defragsvc C:\Windows\System32\defragsvc.dll 20:21:16.0541 0x0bec defragsvc - ok 20:21:16.0561 0x0bec [ EA9DBD76CE9254C77BAAB4339DD4C4FB, ECEE6EB8CFE1BD20BC7B6ED29A1624DDC3E22A37A56BA43B9B14E37D4003B72D ] DfsC C:\Windows\system32\Drivers\dfsc.sys 20:21:16.0565 0x0bec DfsC - ok 20:21:16.0585 0x0bec [ E9E01EB683C132F7FA27CD607B8A2B63, 4D9037B458C522874619143A4176BCED42472C68933E6E83D37B67242706F3C4 ] Dhcp C:\Windows\system32\dhcpcore.dll 20:21:16.0594 0x0bec Dhcp - ok 20:21:16.0630 0x0bec [ 1A050B0274BFB3890703D490F330C0DA, 79D74F4679A2EE040FAAF4D0392A9311239A10A5F8A5CCB48656C6F89B6D62FB ] discache C:\Windows\system32\drivers\discache.sys 20:21:16.0632 0x0bec discache - ok 20:21:16.0638 0x0bec [ 565003F326F99802E68CA78F2A68E9FF, ABC42B24DBA4FFC411120E09278EF26AF56CCAB463B69B4BD6C530B4A07063D2 ] Disk C:\Windows\system32\drivers\disk.sys 20:21:16.0641 0x0bec Disk - ok 20:21:16.0667 0x0bec [ 2A958EF85DB1B61FFCA65044FA4BCE9E, C83511685EE1CE85A5ADF9B5BE96C375A521601F66024BDC3EE044C0B6E85D69 ] dmvsc C:\Windows\system32\drivers\dmvsc.sys 20:21:16.0670 0x0bec dmvsc - ok 20:21:16.0699 0x0bec [ 2FE30D71919C51131405797620E0A714, 16060DDC32EF95EB6E37B91D50A96AB53CB0DEBB3DFDCB31975D16361092ABA5 ] Dnscache C:\Windows\System32\dnsrslvr.dll 20:21:16.0704 0x0bec Dnscache - ok 20:21:16.0721 0x0bec [ 366BA8FB4B7BB7435E3B9EACB3843F67, 65B7C61ACF34F1F0149045AA9E09A3F917A927963237A385A914D0B80551DC31 ] dot3svc C:\Windows\System32\dot3svc.dll 20:21:16.0727 0x0bec dot3svc - ok 20:21:16.0744 0x0bec [ 8EC04CA86F1D68DA9E11952EB85973D6, 2E3FBC2D683D1274E8BC45EEEA87D43B77EDDCAAF0D453296D9FDA6B9D717071 ] DPS C:\Windows\system32\dps.dll 20:21:16.0749 0x0bec DPS - ok 20:21:16.0790 0x0bec [ B918E7C5F9BF77202F89E1A9539F2EB4, C589A37DE50BBEF22E2DAA9682EA43147F614AA1AF7DAAA942BA5FC192313A0B ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 20:21:16.0793 0x0bec drmkaud - ok 20:21:16.0843 0x0bec [ 897AE9430D037B056CF76A49CF588542, 02767A3CF7AFF9ECF251808DF2B3B4CABFBDF3EF59E15498B0985298991D8B91 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 20:21:16.0873 0x0bec DXGKrnl - ok 20:21:16.0897 0x0bec [ 8600142FA91C1B96367D3300AD0F3F3A, 5713625E27DF11FAAFDA7AC79899A6AD813166E167088FA990EC5DE87DBE83DF ] EapHost C:\Windows\System32\eapsvc.dll 20:21:16.0901 0x0bec EapHost - ok 20:21:17.0064 0x0bec [ 024E1B5CAC09731E4D868E64DBFB4AB0, AB0826A74BBEE5B7A1B035861B665C79BC98305CFC7D82BEF420558FBD3EE994 ] ebdrv C:\Windows\system32\drivers\evbdx.sys 20:21:17.0177 0x0bec ebdrv - ok 20:21:17.0209 0x0bec [ B9417E776D0899ADA8BBDD44EB735251, 0C12DB641B0B164A5EA3F91575249A1251A50640F1C0950C7FBACD63523294CD ] EFS C:\Windows\System32\lsass.exe 20:21:17.0212 0x0bec EFS - ok 20:21:17.0295 0x0bec [ A8C362018EFC87BEB013EE28F29C0863, 07971C681FBD391C0BA0172618AF8AD77520182207F1C57F134B34D6A113857F ] ehRecvr C:\Windows\ehome\ehRecvr.exe 20:21:17.0324 0x0bec ehRecvr - ok 20:21:17.0332 0x0bec [ D389BFF34F80CAEDE417BF9D1507996A, 12859B9925D7A4631DE61A820922F43F56ED23C2AF014CBF36322685E5CF641E ] ehSched C:\Windows\ehome\ehsched.exe 20:21:17.0336 0x0bec ehSched - ok 20:21:17.0358 0x0bec [ 0ED67910C8C326796FAA00B2BF6D9D3C, 97FAA7627A162B0AEC15545E0165D13355D535B4157604BB87F8EEB72ECD24A8 ] elxstor C:\Windows\system32\drivers\elxstor.sys 20:21:17.0370 0x0bec elxstor - ok 20:21:17.0376 0x0bec [ 8FC3208352DD3912C94367A206AB3F11, 69B65C12BDADD4B730508674B1B77C5496612B4ACCC447DB9AFE49ADEA8CBF02 ] ErrDev C:\Windows\system32\drivers\errdev.sys 20:21:17.0378 0x0bec ErrDev - ok 20:21:17.0455 0x0bec [ 67456CC9C1EF0E9EA8EE86969BDA31E3, 0F5CAA3C2923950C3300A15913849D15B571FE39C5314D1AD9D01F5DCB2086C6 ] ESProtectionDriver C:\Windows\system32\drivers\mbae.sys 20:21:17.0463 0x0bec ESProtectionDriver - ok 20:21:17.0523 0x0bec [ F6916EFC29D9953D5D0DF06882AE8E16, ED41893960018D5EC2F7829B1DE4B6967D9FD074D60B11B9EB854E3E0948EC24 ] EventSystem C:\Windows\system32\es.dll 20:21:17.0544 0x0bec EventSystem - ok 20:21:17.0562 0x0bec [ 53E8732CC70CC0991839DF9FC8996E4A, D14F6CAAF1F71647F12C6BDF1CD3EE7ADFAB0B292760AC197B876F0868853A72 ] exfat C:\Windows\system32\drivers\exfat.sys 20:21:17.0567 0x0bec exfat - ok 20:21:17.0591 0x0bec [ 24F422E5D7517FEBDA2324116F1A7BE6, 3D54FFB59F7E4F9CC1189D8808B1F17EE7C4A6DE2A13C74CA5B6A47D5E759C53 ] fastfat C:\Windows\system32\drivers\fastfat.sys 20:21:17.0596 0x0bec fastfat - ok 20:21:17.0628 0x0bec [ 967EA5B213E9984CBE270205DF37755B, 43153E23210B03FAE16897D62D55B8742F834EDC695F8401EAB5DE307F62602D ] Fax C:\Windows\system32\fxssvc.exe 20:21:17.0649 0x0bec Fax - ok 20:21:17.0676 0x0bec [ E817A017F82DF2A1F8CFDBDA29388B29, 4CC9320A21E6FEA2D16C48D6BEA14391B695BD541A3C5FDDAEEE086A414FC837 ] fdc C:\Windows\system32\drivers\fdc.sys 20:21:17.0678 0x0bec fdc - ok 20:21:17.0688 0x0bec [ F3222C893BD2F5821A0179E5C71E88FB, A85B947249DBB986358CCD4B158DD58A9301F074F3C6CCCDEF2D01F432E59D1B ] fdPHost C:\Windows\system32\fdPHost.dll 20:21:17.0692 0x0bec fdPHost - ok 20:21:17.0703 0x0bec [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B, 0E76C29D2A974A3F2FBFCB63D066D4136B78E02F6B1F579B1865CA7A76193987 ] FDResPub C:\Windows\system32\fdrespub.dll 20:21:17.0706 0x0bec FDResPub - ok 20:21:17.0712 0x0bec [ 6CF00369C97F3CF563BE99BE983D13D8, F65F35324A2FB9DFB533B1C4D089D990CC242218FE83414329D07B786D8EFF33 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 20:21:17.0716 0x0bec FileInfo - ok 20:21:17.0721 0x0bec [ 87907AA70CB3C56600F1C2FB8841579B, CA1CD82A1CD453617CE5EA431A1836997F14E3580554E8A516D9FE1E9926D979 ] flpydisk C:\Windows\system32\drivers\flpydisk.sys 20:21:17.0724 0x0bec flpydisk - ok 20:21:17.0742 0x0bec [ 7520EC808E0C35E0EE6F841294316653, 6EC65511B4838A7172A8F89E35C2F9DF4F0BFCE3BE12EDA790F3EB567102FF67 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 20:21:17.0748 0x0bec FltMgr - ok 20:21:17.0801 0x0bec [ B5259B75BFDE00A5CDFD8D70444C8E3C, 3526602AA212B43351644AFB91E0D9CEFB778461BAAD2331B6BBF76FB14EEE86 ] FontCache C:\Windows\system32\FntCache.dll 20:21:17.0833 0x0bec FontCache - ok 20:21:17.0878 0x0bec [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F, DBED26852B99B362152DA9CD4F31A1883EF6F9B496F3CF3772A197BA72DB61DA ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe 20:21:17.0882 0x0bec FontCache3.0.0.0 - ok 20:21:17.0888 0x0bec [ 1A16B57943853E598CFF37FE2B8CBF1D, 87609F46F3B8123552141FD70866E895220B1BBD92BC2B580CAF49201AA0197E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 20:21:17.0891 0x0bec FsDepends - ok 20:21:17.0898 0x0bec [ A574B4360E438977038AAE4BF60D79A2, 7255CCDDDAC4853FA72E6487408C4B7390CBA37549CE952929B2A9CF3327C616 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 20:21:17.0900 0x0bec Fs_Rec - ok 20:21:17.0910 0x0bec [ 8A73E79089B282100B9393B644CB853B, 844DC5AADFABBD050B967904B796BA06BFD64C9112616EA26229D084F8B3AD41 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 20:21:17.0915 0x0bec fvevol - ok 20:21:17.0927 0x0bec [ 65EE0C7A58B65E74AE05637418153938, 0E1A398ADD8411AF4CCC3344D67BE1B261320C58328BD5C5855A357476FAEBEF ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys 20:21:17.0930 0x0bec gagp30kx - ok 20:21:18.0074 0x0bec [ AA5F9EE0F29A0CC4AF4CDAF20C3FD2CF, B6D80F4746036241A1887D7536F90D0D9DF64DBD3A58948E2A1BAFECB4D809DE ] GoogleChromeElevationService C:\Program Files\Google\Chrome\Application\97.0.4692.71\elevation_service.exe 20:21:18.0116 0x0bec GoogleChromeElevationService - ok 20:21:18.0159 0x0bec [ E897EAF5ED6BA41E081060C9B447A673, A428DC68516F19C6C53A8B62E4BDB2587E70FB751B9D77700B6B147D347DA157 ] gpsvc C:\Windows\System32\gpsvc.dll 20:21:18.0181 0x0bec gpsvc - ok 20:21:18.0227 0x0bec [ 0BCA3F16DD527B4150648EC1E36CB22A, B60E92004D394D0B14A8953A2BA29951C79F2F8A6C94F495E3153DFBBEF115B6 ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe 20:21:18.0236 0x0bec gupdate - ok 20:21:18.0247 0x0bec [ 0BCA3F16DD527B4150648EC1E36CB22A, B60E92004D394D0B14A8953A2BA29951C79F2F8A6C94F495E3153DFBBEF115B6 ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe 20:21:18.0253 0x0bec gupdatem - ok 20:21:18.0264 0x0bec [ C44E3C2BAB6837DB337DDEE7544736DB, 88A24FF7D2FECCEAFFD421B2039A0FB623DA47A6B220B80EF1E52DD26D9E222D ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 20:21:18.0268 0x0bec hcw85cir - ok 20:21:18.0316 0x0bec [ A5EF29D5315111C80A5C1ABAD14C8972, A181DA72E946F121C3F4A19438C547B0BFD15138AB1DB5465945EC89DF1F6B0A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 20:21:18.0325 0x0bec HdAudAddService - ok 20:21:18.0333 0x0bec [ 9036377B8A6C15DC2EEC53E489D159B5, 1E56D2ACFE92E6DF96D755B05C63D580EED82C210F075C8623E138BEE6BCD41B ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys 20:21:18.0337 0x0bec HDAudBus - ok 20:21:18.0347 0x0bec [ 1D58A7F3E11A9731D0EAAAA8405ACC36, 7056FA18B86FBD52C4A6092D80476C02553EA053D6A0BEDB01A2FA5E152D5215 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys 20:21:18.0349 0x0bec HidBatt - ok 20:21:18.0357 0x0bec [ 89448F40E6DF260C206A193A4683BA78, 71E0FCC32AE6FF8DFF420DB0383D6A200E1EAE14BD2E32453F92CE18B31C1F3C ] HidBth C:\Windows\system32\drivers\hidbth.sys 20:21:18.0360 0x0bec HidBth - ok 20:21:18.0371 0x0bec [ CF50B4CF4A4F229B9F3C08351F99CA5E, B97843620AF80FF0EC8F2C438255C0A42A756C6314FAF3DEF415DE16E14C108F ] HidIr C:\Windows\system32\drivers\hidir.sys 20:21:18.0374 0x0bec HidIr - ok 20:21:18.0407 0x0bec [ 2BC6F6A1992B3A77F5F41432CA6B3B6B, 2AF3312F1C8C8923C0A29AA5DAE57CE269417E53DEA2F0CCCC8DB57029698FE1 ] hidserv C:\Windows\system32\hidserv.dll 20:21:18.0410 0x0bec hidserv - ok 20:21:18.0431 0x0bec [ 10C19F8290891AF023EAEC0832E1EB4D, E208553029488A6EE2F5216CC9FE5F93E9931A94C0D0625253BB159E30642853 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys 20:21:18.0433 0x0bec HidUsb - ok 20:21:18.0451 0x0bec [ 196B4E3F4CCCC24AF836CE58FACBB699, 7A2E1F603A073421FA0987EFB96647F1F0F2D4E0C82AA62EBC041585DA811DAF ] hkmsvc C:\Windows\system32\kmsvc.dll 20:21:18.0455 0x0bec hkmsvc - ok 20:21:18.0475 0x0bec [ 6658F4404DE03D75FE3BA09F7ABA6A30, E51D9C1580A283EB862F09B73AAE1B647DD683A53F3DD99834222F12DD15E40F ] HomeGroupListener C:\Windows\system32\ListSvc.dll 20:21:18.0482 0x0bec HomeGroupListener - ok 20:21:18.0513 0x0bec [ DBC02D918FFF1CAD628ACBE0C0EAA8E8, 02121800D9062692C102475876AE8143EBE46D855E8328B8CDCFE6A2F0D19696 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 20:21:18.0520 0x0bec HomeGroupProvider - ok 20:21:18.0537 0x0bec [ 295FDC419039090EB8B49FFDBB374549, 670E8015FD374640C6570F56F7FE8DE4D8F92E7A8072F5D1B2B95D0BD699CEF7 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys 20:21:18.0541 0x0bec HpSAMD - ok 20:21:18.0580 0x0bec [ 2F50E2780F16E00369F1311B086C3E42, F3FAE2D965D055810775B7AAE7BF1C4C39961A64E42B345FC604D32F3AC7E7DA ] HTTP C:\Windows\system32\drivers\HTTP.sys 20:21:18.0601 0x0bec HTTP - ok 20:21:18.0612 0x0bec [ 0C4E035C7F105F1299258C90886C64C5, CFB4FBE7B28058E6D3E6E508CF3C1645F6AAE0AFEB4C5364835B9C42311DF0D4 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 20:21:18.0614 0x0bec hwpolicy - ok 20:21:18.0622 0x0bec [ F151F0BDC47F4A28B1B20A0818EA36D6, 84B24B5796D9F70A8C37773F5484A4606CC7908370CCD942627ACBEDC4952D79 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys 20:21:18.0625 0x0bec i8042prt - ok 20:21:18.0645 0x0bec [ A3CAE5D281DB4CFF7CFF8233507EE5AD, 2666107220B9F301193F2CF85A3D6B09E6E42CC150152D10A8886E47A3FD9B0D ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 20:21:18.0654 0x0bec iaStorV - ok 20:21:18.0710 0x0bec [ 96B72A03AEC15FFF7728AECBA4BD40F7, 0E762846FB25FD75F07A47C3D5EDC0702E435149D916B11D2F698D71F88E8375 ] IDMWFP C:\Windows\system32\DRIVERS\idmwfp.sys 20:21:18.0715 0x0bec IDMWFP - ok 20:21:18.0825 0x0bec [ C521D7EB6497BB1AF6AFA89E322FB43C, BDDCFCBB5B76A9295669B5AC9F732D6127199ED5C300770B554C4E4794F66BB7 ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe 20:21:18.0854 0x0bec idsvc - ok 20:21:18.0862 0x0bec IEEtwCollectorService - ok 20:21:19.0160 0x0bec [ 1EC36A3CA56B0A31B4920399EE6D77EB, 8FE6F396855729A937C6BD9DE5DAFE200E87CAD2FE3A745625E58A8B9437CD1A ] igfx C:\Windows\system32\DRIVERS\igdkmd32.sys 20:21:19.0425 0x0bec igfx - ok 20:21:19.0475 0x0bec [ 4173FF5708F3236CF25195FECD742915, 0A9C0701DF6EAC6602BE342FC13C7950EF04BB5BDF7D96C2C5DABBD2A29AA55D ] iirsp C:\Windows\system32\drivers\iirsp.sys 20:21:19.0478 0x0bec iirsp - ok 20:21:19.0539 0x0bec [ F95622F161474511B8D80D6B093AA610, F2320E25EB9B4AA9A8366BD3AA23EABEBE111A5610D3A62EBA47D90427D5BC26 ] IKEEXT C:\Windows\System32\ikeext.dll 20:21:19.0571 0x0bec IKEEXT - ok 20:21:19.0739 0x0bec [ F4427E5DF32CDE359B2E2E5512D18001, 37660CB81A656F793224381E145CFE6D173EFBA3C58E17669E34D5BA239FF776 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys 20:21:19.0828 0x0bec IntcAzAudAddService - ok 20:21:19.0843 0x0bec [ A0F12F2C9BA6C72F3987CE780E77C130, 5F53DF8BE1621AA7DFB655CFD9C95E0AFA1AD3CE2E290E19D7B7FB3C6E380034 ] intelide C:\Windows\system32\drivers\intelide.sys 20:21:19.0846 0x0bec intelide - ok 20:21:19.0866 0x0bec [ 2058A5466A0CFE5BE29F5EE17A246992, E2754FF659840B5FEA6CDEEEC710539A073409A9E08F66B9FEDE597BAFD79A63 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys 20:21:19.0869 0x0bec intelppm - ok 20:21:19.0889 0x0bec [ ACB364B9075A45C0736E5C47BE5CAE19, 202F77C659103D2D0E787B8CB0A23BE32EA5AA2E6B3B0A0F0A8DFA906AB3C0C0 ] IPBusEnum C:\Windows\system32\ipbusenum.dll 20:21:19.0893 0x0bec IPBusEnum - ok 20:21:19.0900 0x0bec [ 709D1761D3B19A932FF0238EA6D50200, 0A9D2C3A6E91CA45540555B40CB4E2DF3EBE98C1D164C4EECEE20C86782F5823 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 20:21:19.0904 0x0bec IpFilterDriver - ok 20:21:19.0932 0x0bec [ 4D65A07B795D6674312F879D09AA7663, 8D72FE0B51A6FF71F85D2602DB3AE91C8749F70869B6789552F047BA81411EDA ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 20:21:19.0953 0x0bec iphlpsvc - ok 20:21:19.0966 0x0bec [ 4BD7134618C1D2A27466A099062547BF, 20284ABEF4433A59E2981F4143CAEC67DC990864FE0B9E3DC70EE0B88539E964 ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys 20:21:19.0969 0x0bec IPMIDRV - ok 20:21:19.0977 0x0bec [ A5FA468D67ABCDAA36264E463A7BB0CD, EDB828D596E43372F97DAE1AADA46428C4C45FB80646DDC64FAD5F25C826CF63 ] IPNAT C:\Windows\system32\drivers\ipnat.sys 20:21:19.0980 0x0bec IPNAT - ok 20:21:20.0042 0x0bec [ 4D3B7EECF980EB577B73F539A121DD42, 18C37884A5CDAC31FDE00F2FA94930572D72954423FC2BDBF4D0D98BFF4BC7B3 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe 20:21:20.0063 0x0bec iPod Service - ok 20:21:20.0071 0x0bec [ 42996CFF20A3084A56017B7902307E9F, 688176DAB91BE569280E4822E4C5BDE755794D293591C53F8047AD59C441751D ] IRENUM C:\Windows\system32\drivers\irenum.sys 20:21:20.0073 0x0bec IRENUM - ok 20:21:20.0090 0x0bec [ 1F32BB6B38F62F7DF1A7AB7292638A35, 86522358680FBB1CEBC56B4D139290689BB0F71A3EC78CE883E4D75D0B37586F ] isapnp C:\Windows\system32\drivers\isapnp.sys 20:21:20.0093 0x0bec isapnp - ok 20:21:20.0109 0x0bec [ CB7A9ABB12B8415BCE5D74994C7BA3AE, 464BFF3F5EEE985BE075E23E1813F5CB82A9A0771A92C6D889B13B867BCDF647 ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys 20:21:20.0115 0x0bec iScsiPrt - ok 20:21:20.0122 0x0bec [ ADEF52CA1AEAE82B50DF86B56413107E, A3AE1E96B04AC81665ABBD3CB267DFB3F78376DAE18FB0DBD447908DDAAA22D2 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys 20:21:20.0125 0x0bec kbdclass - ok 20:21:20.0132 0x0bec [ 9E3CED91863E6EE98C24794D05E27A71, 90CF59F20E14E4A5A793266805E82BF7AE1F0CF4C7BAB1FD2EEF3B53C5DF770F ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys 20:21:20.0135 0x0bec kbdhid - ok 20:21:20.0148 0x0bec [ B9417E776D0899ADA8BBDD44EB735251, 0C12DB641B0B164A5EA3F91575249A1251A50640F1C0950C7FBACD63523294CD ] KeyIso C:\Windows\system32\lsass.exe 20:21:20.0151 0x0bec KeyIso - ok 20:21:20.0174 0x0bec [ 4635935FC972C582632BF45C26BFCB0E, ABD4AFD71B3C2BD3F741BBE3CEC52C4FA63AC78D353101D2E7DC4DE2725D1CA1 ] KMService C:\Windows\system32\srvany.exe 20:21:20.0190 0x0bec KMService - ok 20:21:20.0197 0x0bec [ C8F483098D4B95C26EBEEA0197BF61C3, 7FAC1CD9CA0DE7EFDB8B202CCC6DD65EE34055A0A8300053E1BA94E550852ADE ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 20:21:20.0200 0x0bec KSecDD - ok 20:21:20.0229 0x0bec [ A98E6C0A49DBD44459E35B432E488CFF, 2B3DE44799079CACD56636B1CF25718C75D8F0D0DBDA2B0BBB0518B4C7CFCE18 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 20:21:20.0234 0x0bec KSecPkg - ok 20:21:20.0282 0x0bec [ 89A7B9CC98D0D80C6F31B91C0A310FCD, 4583CAEEE0D50C0C7CE955E533FDA063CDC37B69033D41EF22EF1BA242E4C747 ] KtmRm C:\Windows\system32\msdtckrm.dll 20:21:20.0293 0x0bec KtmRm - ok 20:21:20.0360 0x0bec [ F0FAA73159789FC98B30B059A98E256E, BFD2A44703C4521CC608ED541C38370D1F07AEC0F2148B528C8CB43502F8ABD7 ] LanmanServer C:\Windows\system32\srvsvc.dll 20:21:20.0381 0x0bec LanmanServer - ok 20:21:20.0413 0x0bec [ 58405E4F68BA8E4057C6E914F326ABA2, C3E6519A1A38F1B3597D4391E42ABFE8F1F5E86256C4B3BD876CDAD9BB68B0A6 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 20:21:20.0423 0x0bec LanmanWorkstation - ok 20:21:20.0453 0x0bec [ F7611EC07349979DA9B0AE1F18CCC7A6, 879AA7A391966F00761CA039C25EBC62F6712DD5461694911EEC673E12DE103E ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 20:21:20.0458 0x0bec lltdio - ok 20:21:20.0484 0x0bec [ 5700673E13A2117FA3B9020C852C01E2, 6684A2905EE8C438F2A64BE47E51A54D287B08DEFB8E0AE7FC2809D845EE3C5F ] lltdsvc C:\Windows\System32\lltdsvc.dll 20:21:20.0496 0x0bec lltdsvc - ok 20:21:20.0509 0x0bec [ 55CA01BA19D0006C8F2639B6C045E08B, 4DBBDC820C514DB18CC13F8EE178F8C4E39C295C6E3C255416C235553CE7BDC1 ] lmhosts C:\Windows\System32\lmhsvc.dll 20:21:20.0512 0x0bec lmhosts - ok 20:21:20.0523 0x0bec [ EB119A53CCF2ACC000AC71B065B78FEF, 1FD60735C4945AE565C223F0B47EAF9602D8777E3D15600914C1A9D761215AF9 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys 20:21:20.0526 0x0bec LSI_FC - ok 20:21:20.0534 0x0bec [ 8ADE1C877256A22E49B75D1CC9161F9C, 3D64F233DC866537E50549A7C1A2B40A954055B22F0BDA39825B04C38C607CB7 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys 20:21:20.0537 0x0bec LSI_SAS - ok 20:21:20.0545 0x0bec [ DC9DC3D3DAA0E276FD2EC262E38B11E9, A264990857CBC74036799E17A087130626C0A09BE19879019BAF2D761C62AECC ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys 20:21:20.0548 0x0bec LSI_SAS2 - ok 20:21:20.0561 0x0bec [ 0A036C7D7CAB643A7F07135AC47E0524, 2F662D07FCB74B8D493156DB555EAA90A47E93CF14C7B30039D2FE47EB8682B8 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys 20:21:20.0564 0x0bec LSI_SCSI - ok 20:21:20.0576 0x0bec [ 4BA509FEF4DB0B683C46821ACDF20B9E, 89545321811222862E4FFF46B33EA9EA4D260C8B478222F754AB53B8406F2EC4 ] luafv C:\Windows\system32\drivers\luafv.sys 20:21:20.0579 0x0bec luafv - ok 20:21:20.0643 0x0bec [ 09440FAFCBE7589907655685C4154186, 90F0063605AE800823F8B0748E2301D87BEEA4D140C333C3376014BC913B684A ] MBAMChameleon C:\Windows\System32\Drivers\MbamChameleon.sys 20:21:20.0649 0x0bec MBAMChameleon - ok 20:21:20.0721 0x0bec [ ED18C2ED94B09249146926776415BBBF, 47B7CC2BFB38C404FE7CCC34C765CB08D4A60A1CD95FF848F868009BD396590A ] MBAMFarflt C:\Windows\system32\DRIVERS\farflt.sys 20:21:20.0729 0x0bec MBAMFarflt - ok 20:21:20.0747 0x0bec [ 0E53CD10DD4F5CF0C5DBA1495C2E59B3, D81A2062101B7CBEA83B1B04B1EB16228C0B3F963B338F5D6256A8C2A73B4972 ] MBAMProtection C:\Windows\system32\DRIVERS\mbam.sys 20:21:20.0750 0x0bec MBAMProtection - ok 20:21:21.0064 0x0bec [ 3387830914B19AEA1193B2FF518E0FA5, A7F529E2A2385FB36EF9FAC04CF93FEF7B694DD400B1F10BF6C2440F5C81ACE4 ] MBAMService C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe 20:21:21.0177 0x0bec MBAMService - ok 20:21:21.0247 0x0bec [ 0E933805AE9B61865D22D1D756B3F332, C9FC479C9487E80D44B50D0C53CA98DA8C52F4B9D953EF97A42A06BD75EDB96A ] MBAMSwissArmy C:\Windows\System32\Drivers\mbamswissarmy.sys 20:21:21.0253 0x0bec MBAMSwissArmy - ok 20:21:21.0279 0x0bec [ FB40B61ABAC5D3EC9B0A26358A6B73C3, 4E525943C00A145479BB641DB7C87719BEF2B184C9F3D18E36AFD9584352F0FC ] MBAMWebProtection C:\Windows\system32\DRIVERS\mwac.sys 20:21:21.0283 0x0bec MBAMWebProtection - ok 20:21:21.0309 0x0bec [ BFB9EE8EE977EFE85D1A3105ABEF6DD1, D2A84EBF0C0B7A14AD432FD2EF43CC12300027AEA3FA4075659FB088AB62B588 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 20:21:21.0314 0x0bec Mcx2Svc - ok 20:21:21.0344 0x0bec [ 0FFF5B045293002AB38EB1FD1FC2FB74, 49071B565FD5B2DE43EC00D8518C3BE70843F38919E82F13104B8C1FAFB20374 ] megasas C:\Windows\system32\drivers\megasas.sys 20:21:21.0347 0x0bec megasas - ok 20:21:21.0362 0x0bec [ DCBAB2920C75F390CAF1D29F675D03D6, 85C3A7A010BEA5E3C6179161B295F2CB900A6A214833A5F87A4327392880E2BB ] MegaSR C:\Windows\system32\drivers\MegaSR.sys 20:21:21.0369 0x0bec MegaSR - ok 20:21:21.0406 0x0bec [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] MMCSS C:\Windows\system32\mmcss.dll 20:21:21.0410 0x0bec MMCSS - ok 20:21:21.0417 0x0bec [ F001861E5700EE84E2D4E52C712F4964, F4DC5AEED6F34D76CCEF360862CC47EF71097BE0813C8CE04EE5F0DB387DFFAE ] Modem C:\Windows\system32\drivers\modem.sys 20:21:21.0419 0x0bec Modem - ok 20:21:21.0426 0x0bec [ 79D10964DE86B292320E9DFE02282A23, 52714827B7EEDACA55326A4E4F6158D4942DFAA3BACDE303A2F569BF3F4FAA72 ] monitor C:\Windows\system32\DRIVERS\monitor.sys 20:21:21.0428 0x0bec monitor - ok 20:21:21.0443 0x0bec [ FB18CC1D4C2E716B6B903B0AC0CC0609, F10CCA63493782B16DE6B96B94A27078DBE68AECEF34FDF840CFF86D2C6E3C5E ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys 20:21:21.0446 0x0bec mouclass - ok 20:21:21.0464 0x0bec [ 2C388D2CD01C9042596CF3C8F3C7B24D, B2FB72272BB01AEDA4047B57C943B7E9BD8A6497854F8CC34672AAA592D0A703 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 20:21:21.0466 0x0bec mouhid - ok 20:21:21.0486 0x0bec [ 90AC6E11AC92B6A6B97179F0E5347AD8, D077DA1A6EBC21A8D131C2FCA178DDF01B3B3D87D7C39D02EBDABBA3BF015B35 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 20:21:21.0490 0x0bec mountmgr - ok 20:21:21.0498 0x0bec [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0, D3D903EEA465D77345AAC9B9F02CDEADF4831212EA2DE4FCA33BEE26EBB47420 ] mpio C:\Windows\system32\drivers\mpio.sys 20:21:21.0502 0x0bec mpio - ok 20:21:21.0509 0x0bec [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0, 1D6DCFA0E56C3E55B6AED819176E751502F863BA0FCF4F0B3253A81D208141A2 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 20:21:21.0512 0x0bec mpsdrv - ok 20:21:21.0540 0x0bec [ 9835584E999D25004E1EE8E5F3E3B881, 71798B0CBE9AE69F1F29B845319019C69EC7F415CBABB3B87DDE92C360675021 ] MpsSvc C:\Windows\system32\mpssvc.dll 20:21:21.0561 0x0bec MpsSvc - ok 20:21:21.0584 0x0bec [ 06AC0310138E4B2C35AF7344D18BC686, FCDB6CC851EC47F92FFF764717A44FF5D5D0E179C215B3C6E77FB9BEA4DE1908 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 20:21:21.0588 0x0bec MRxDAV - ok 20:21:21.0596 0x0bec [ CC5A4F43C7E1008C6B6D151991066979, 42FB110338A1B0E1A6529B35A061AF61D2451E307D2B193D26541E723598763A ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 20:21:21.0601 0x0bec mrxsmb - ok 20:21:21.0619 0x0bec [ AF47AF7616D3C982CDE7F58DF108E047, 5AF2B2F62107EBEB17177AF49FB1F4DF241289EC7A2FFF9BDFDD2ECF3BF89B83 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 20:21:21.0625 0x0bec mrxsmb10 - ok 20:21:21.0633 0x0bec [ FE04F80278C5A91EEA5C070DDE0F7B4F, 183564D7A91A21D16DB4FC7B61CD1B6BBC83084247E7B4B4F0B70B9BCE47BC0C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 20:21:21.0636 0x0bec mrxsmb20 - ok 20:21:21.0676 0x0bec [ 012C5F4E9349E711E11E0F19A8589F0A, 208B92DFCF7AD43202660FBBC9FF5E03AEDBEE38178FF3628EB74CB6CD37C584 ] msahci C:\Windows\system32\drivers\msahci.sys 20:21:21.0678 0x0bec msahci - ok 20:21:21.0686 0x0bec [ 55055F8AD8BE27A64C831322A780A228, C2C9FD1F61302997117B1CD0835E8234405BB80084065ED05363B77868397304 ] msdsm C:\Windows\system32\drivers\msdsm.sys 20:21:21.0690 0x0bec msdsm - ok 20:21:21.0711 0x0bec [ E1BCE74A3BD9902B72599C0192A07E27, 5162EB623FE64E9DFEAC6CA2410EFA1314E62EC13207FFBFED2D61AA887603C4 ] MSDTC C:\Windows\System32\msdtc.exe 20:21:21.0717 0x0bec MSDTC - ok 20:21:21.0739 0x0bec [ DAEFB28E3AF5A76ABCC2C3078C07327F, 6EB558532400B489763BAE7203538DE5F196282A8CB46A1B31D59120FC5AFCEF ] Msfs C:\Windows\system32\drivers\Msfs.sys 20:21:21.0741 0x0bec Msfs - ok 20:21:21.0746 0x0bec [ 3E1E5767043C5AF9367F0056295E9F84, B2EDFECD3C14E4FE1BA87D9A86334043A9BD696A554EBD186DA7EAEB2EBD4F70 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 20:21:21.0749 0x0bec mshidkmdf - ok 20:21:21.0756 0x0bec [ 0A4E5757AE09FA9622E3158CC1AEF114, ED574E420E57374E328C7C526504ECA569C164287966F06019EC207CB17F2C54 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 20:21:21.0758 0x0bec msisadrv - ok 20:21:21.0798 0x0bec [ 90F7D9E6B6F27E1A707D4A297F077828, BEFC220EAA7307849600748842ACB9254A6A91158812D9B23EFAF912C498BA7F ] MSiSCSI C:\Windows\system32\iscsiexe.dll 20:21:21.0803 0x0bec MSiSCSI - ok 20:21:21.0808 0x0bec msiserver - ok 20:21:21.0844 0x0bec [ 8C0860D6366AAFFB6C5BB9DF9448E631, 949C5A14E57F2D7385543C17C3485E7ADE36EA2016F6E0A1866571D2EDE90A77 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 20:21:21.0865 0x0bec MSKSSRV - ok 20:21:21.0916 0x0bec [ 3EA8B949F963562CEDBB549EAC0C11CE, 1B0B2F16A1790282504F3C548D47C3281EFB440D5D9711A1EF76D6371B768D2D ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 20:21:21.0961 0x0bec MSPCLOCK - ok 20:21:21.0987 0x0bec [ F456E973590D663B1073E9C463B40932, 48BA6D5580EE7B6A4C06E04772FD35B51779553FC0DD6C5C30DD8B5DEEB25B11 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 20:21:22.0003 0x0bec MSPQM - ok 20:21:22.0033 0x0bec [ 0E008FC4819D238C51D7C93E7B41E560, 141FCEBDD05874407EAEC35A9DCD3BB16F2A428F23E55487D6A5DBFCADBF10D2 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 20:21:22.0063 0x0bec MsRPC - ok 20:21:22.0102 0x0bec [ FC6B9FF600CC585EA38B12589BD4E246, F05DB01AE1955D2468CE6B51E51998B111CA3B0BDEED090EE6B99B625CBA564A ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys 20:21:22.0132 0x0bec mssmbios - ok 20:21:22.0137 0x0bec [ B42C6B921F61A6E55159B8BE6CD54A36, 6BB0A7BE005B8F281E551D1B8046CE4202372BC7AE0161881C858BFAC675FE1C ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 20:21:22.0141 0x0bec MSTEE - ok 20:21:22.0148 0x0bec [ 33599130F44E1F34631CEA241DE8AC84, E15B31D1AFDC8DC6D2B21D4215796A99ECC69EEDBB06CEED01AECC3C99A44C8B ] MTConfig C:\Windows\system32\drivers\MTConfig.sys 20:21:22.0151 0x0bec MTConfig - ok 20:21:22.0157 0x0bec [ 159FAD02F64E6381758C990F753BCC80, E55AB01DCFA95ECAB24A2A9656E28FF9D064BA08B3D82DC8AA42F5991BA09598 ] Mup C:\Windows\system32\Drivers\mup.sys 20:21:22.0160 0x0bec Mup - ok 20:21:22.0203 0x0bec [ 61D57A5D7C6D9AFE10E77DAE6E1B445E, D252248532142E9E2332DA693BC51B795102CA938B568FF04981E98B19BFBC5C ] napagent C:\Windows\system32\qagentRT.dll 20:21:22.0214 0x0bec napagent - ok 20:21:22.0232 0x0bec [ 5F2B9CD280C48A8015AD70FCF4DFB758, F50D118BDCE35654CCA153CA2FC9123D014038494FBCBAFE0514D956DCB2D44D ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 20:21:22.0240 0x0bec NativeWifiP - ok 20:21:22.0291 0x0bec [ E7C54812A2AAF43316EB6930C1FFA108, C8A6FC1957FA29A3B372132FEA9145538BC767044A11D77316D3D1A3EAA60630 ] NDIS C:\Windows\system32\drivers\ndis.sys 20:21:22.0309 0x0bec NDIS - ok 20:21:22.0316 0x0bec [ 0E1787AA6C9191D3D319E8BAFE86F80C, F535022747355B2C66424BDA892D7DCB820C2EB8EE05BAE5BC6D1B1D65186278 ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 20:21:22.0319 0x0bec NdisCap - ok 20:21:22.0370 0x0bec [ 9C82D6860864D70D3D2D35FD612584D7, 69E4415021D3D9761F04F9BD432FEE86C4E61F772D9584A9090AB55AEC1E9F47 ] ndisrd C:\Windows\system32\DRIVERS\ndisrd.sys 20:21:22.0375 0x0bec ndisrd - ok 20:21:22.0381 0x0bec [ E4A8AEC125A2E43A9E32AFEEA7C9C888, 6EA181117126FC70B3C1DD1AC73CC26D1603A2CF49E47F66623E2C9489C49B55 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 20:21:22.0385 0x0bec NdisTapi - ok 20:21:22.0391 0x0bec [ D8A65DAFB3EB41CBB622745676FCD072, 874D3C3D247C4A309DA813DB1D2EDB0037D3C489824BD5FE95B0C20699764EF7 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 20:21:22.0394 0x0bec Ndisuio - ok 20:21:22.0403 0x0bec [ 38FBE267E7E6983311179230FACB1017, CFD1CBCA59650795C030DB30E5795B37C11C736E14003AE1DAB081BA5C0C9B14 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 20:21:22.0407 0x0bec NdisWan - ok 20:21:22.0414 0x0bec [ A4BDC541E69674FBFF1A8FF00BE913F2, 18CCFD063E9870B8B6958715BC0414C4D920AE63528EA1E9D7E30F7138918FFA ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 20:21:22.0418 0x0bec NDProxy - ok 20:21:22.0437 0x0bec [ 80B275B1CE3B0E79909DB7B39AF74D51, 75B406B0D9D28239D4EB2A298419A5F78A58237D88C5FD688EF1DFFAFACCF796 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 20:21:22.0439 0x0bec NetBIOS - ok 20:21:22.0455 0x0bec [ 2E226E666C6E11DC8C850071A90BE2DC, 5BE2ADBBEA0E5C20031FADB85461D6F68788095B6553B4EBC7A031D7EE1995AD ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 20:21:22.0461 0x0bec NetBT - ok 20:21:22.0477 0x0bec [ B9417E776D0899ADA8BBDD44EB735251, 0C12DB641B0B164A5EA3F91575249A1251A50640F1C0950C7FBACD63523294CD ] Netlogon C:\Windows\system32\lsass.exe 20:21:22.0480 0x0bec Netlogon - ok 20:21:22.0505 0x0bec [ 7CCCFCA7510684768DA22092D1FA4DB2, BB9E4F8FABBF596D888E6D303CB54A336D9DFF95B36AEA9369D2ED787DDC4B5D ] Netman C:\Windows\System32\netman.dll 20:21:22.0515 0x0bec Netman - ok 20:21:22.0547 0x0bec [ F2DAF801C4E356E6BE14F5C3A6EED943, BE90128B9FFE79D9E4E9FCE22A289353879991EBDB407A0302D3E87CFA05C312 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe 20:21:22.0563 0x0bec NetMsmqActivator - ok 20:21:22.0570 0x0bec [ F2DAF801C4E356E6BE14F5C3A6EED943, BE90128B9FFE79D9E4E9FCE22A289353879991EBDB407A0302D3E87CFA05C312 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe 20:21:22.0574 0x0bec NetPipeActivator - ok 20:21:22.0618 0x0bec [ 8C338238C16777A802D6A9211EB2BA50, 0D08A47CD403EDA5E8CAD7409BBBBCDC29A9861D2DC41D42B68B22B1AA1EBDD6 ] netprofm C:\Windows\System32\netprofm.dll 20:21:22.0629 0x0bec netprofm - ok 20:21:22.0637 0x0bec [ F2DAF801C4E356E6BE14F5C3A6EED943, BE90128B9FFE79D9E4E9FCE22A289353879991EBDB407A0302D3E87CFA05C312 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe 20:21:22.0640 0x0bec NetTcpActivator - ok 20:21:22.0648 0x0bec [ F2DAF801C4E356E6BE14F5C3A6EED943, BE90128B9FFE79D9E4E9FCE22A289353879991EBDB407A0302D3E87CFA05C312 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe 20:21:22.0651 0x0bec NetTcpPortSharing - ok 20:21:22.0666 0x0bec [ 1D85C4B390B0EE09C7A46B91EFB2C097, 6A8850B151E88EE371F3CC543A946302DDF9494908D684B8B0C706A42CC54348 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys 20:21:22.0669 0x0bec nfrd960 - ok 20:21:22.0689 0x0bec [ 912084381D30D8B89EC4E293053F4710, 99B8CD043DF531D4B9725ED167F63CED220608B2FED3EE8250C217D15762DFD7 ] NlaSvc C:\Windows\System32\nlasvc.dll 20:21:22.0697 0x0bec NlaSvc - ok 20:21:22.0703 0x0bec [ 450DE38FC8AED4415A0F7F2E48A82CAD, 622A3FD313B847E0452BF1BF596BA3155ACA1910303DE3B0F2A237FF66749827 ] Npfs C:\Windows\system32\drivers\Npfs.sys 20:21:22.0706 0x0bec Npfs - ok 20:21:22.0735 0x0bec [ 6937652377C07F86EF195F1BF5423143, 02F109ABC3543296E70541367A7A6103F38704DAF9A5CDBA2D798EF5592CF663 ] nsi C:\Windows\system32\nsisvc.dll 20:21:22.0738 0x0bec nsi - ok 20:21:22.0744 0x0bec [ C68AA651F93450ECA51A60D45A8E266C, 0AF79071CE5007F968D4028158200312F0C6B6A2114CF0990A638DBFE897E009 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 20:21:22.0748 0x0bec nsiproxy - ok 20:21:22.0806 0x0bec [ F2CBF48566BB13240D39543F445460F9, DB86B7E352EACA2306DA25F900AE66BB8F30B43F567A6942C2E54596BADF3B29 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 20:21:22.0850 0x0bec Ntfs - ok 20:21:22.0870 0x0bec [ F9756A98D69098DCA8945D62858A812C, 572ADBFCFDE2030B34A013AADC14DBC144EB3F34D06991E2464A3EA9605BC045 ] Null C:\Windows\system32\drivers\Null.sys 20:21:22.0874 0x0bec Null - ok 20:21:22.0884 0x0bec [ AF2EEC9580C1D32FB7EAF105D9784061, 6DAAE3BCA048ACD7FFD26A65C793C461933179070F03855FE3DC3C01F968163A ] nvraid C:\Windows\system32\drivers\nvraid.sys 20:21:22.0889 0x0bec nvraid - ok 20:21:22.0909 0x0bec [ 9283C58EBAA2618F93482EB5DABCEC82, 0BC119D4EAFDEA879E4C1CFBA5402499DBD1970EDF963C6D2034D4867C34D15E ] nvstor C:\Windows\system32\drivers\nvstor.sys 20:21:22.0915 0x0bec nvstor - ok 20:21:22.0922 0x0bec [ 5A0983915F02BAE73267CC2A041F717D, D83461D74597BF2BE042FEFCC27FCD18BF63CB8135B0666D731D50951C3468A8 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 20:21:22.0926 0x0bec nv_agp - ok 20:21:22.0974 0x0bec [ 08A70A1F2CDDE9BB49B885CB817A66EB, 0BB98123B544124B144F3E95D77E01E973D060B8B2302503FF24ABBBE803EB63 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys 20:21:22.0980 0x0bec ohci1394 - ok 20:21:23.0076 0x0bec [ 9D10F99A6712E28F8ACD5641E3A7EA6B, 70964A0ED9011EA94044E15FA77EDD9CF535CC79ED8E03A3721FF007E69595CC ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE 20:21:23.0127 0x0bec ose - ok 20:21:23.0320 0x0bec [ 358A9CCA612C68EB2F07DDAD4CE1D8D7, F342100E2E9001F11FDF93F856B50FA43F9B85D2C6B5706EC0433E77206498DA ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE 20:21:23.0470 0x0bec osppsvc - ok 20:21:23.0536 0x0bec [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 20:21:23.0560 0x0bec p2pimsvc - ok 20:21:23.0597 0x0bec [ 59C3DDD501E39E006DAC31BF55150D91, E02B63AB7F34CF6FF3F644AF354D10004E6F50014E03172D80BD78934EF71EF1 ] p2psvc C:\Windows\system32\p2psvc.dll 20:21:23.0608 0x0bec p2psvc - ok 20:21:23.0647 0x0bec [ 2EA877ED5DD9713C5AC74E8EA7348D14, 14BA3722CE5F8FF07F2D97DCDD6558EB49C9B02E5E6FAD6D9F18D354733EFECE ] Parport C:\Windows\system32\DRIVERS\parport.sys 20:21:23.0650 0x0bec Parport - ok 20:21:23.0657 0x0bec [ BF8F6AF06DA75B336F07E23AEF97D93B, 2F2C4314872732550A112BFF2F803484D4A3D697F0D69D352350CE208FD8A1A4 ] partmgr C:\Windows\system32\drivers\partmgr.sys 20:21:23.0660 0x0bec partmgr - ok 20:21:23.0666 0x0bec [ EB0A59F29C19B86479D36B35983DAADC, AC09AFE7F13BE4079D01383BAC44091997E1AAF6512C9673A42B9E3780EB08A8 ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys 20:21:23.0668 0x0bec Parvdm - ok 20:21:23.0693 0x0bec [ 3B0F199839734F85FB6A9F5643FDA736, 903467906DFF832D88584825F3B8068036596A98F757CE913FC248EBFEE9DAD8 ] PcaSvc C:\Windows\System32\pcasvc.dll 20:21:23.0699 0x0bec PcaSvc - ok 20:21:23.0712 0x0bec [ 673E55C3498EB970088E812EA820AA8F, 1F81315664B8CBFDD569416C0ECCE4C6251F34577313A0858AB46609781303B5 ] pci C:\Windows\system32\drivers\pci.sys 20:21:23.0723 0x0bec pci - ok 20:21:23.0728 0x0bec [ AFE86F419014DB4E5593F69FFE26CE0A, CAF36E61BE7B511D3A03A65FF5A3017CEE4D2F53005B410F2D4A2AAE9FED4C00 ] pciide C:\Windows\system32\drivers\pciide.sys 20:21:23.0731 0x0bec pciide - ok 20:21:23.0740 0x0bec [ F396431B31693E71E8A80687EF523506, BC614FC21E029E2497F1CCE3131BBD295B827F2310762B47D5BBC7703D80554B ] pcmcia C:\Windows\system32\drivers\pcmcia.sys 20:21:23.0746 0x0bec pcmcia - ok 20:21:23.0753 0x0bec [ 250F6B43D2B613172035C6747AEEB19F, A91F15B133F2619912CF750E6F3662E011CD0FA4B9477CE532CE3196D23307D9 ] pcw C:\Windows\system32\drivers\pcw.sys 20:21:23.0756 0x0bec pcw - ok 20:21:23.0782 0x0bec [ CEFBE4F0A011027A978F491815AA6849, EC0B4063D1CF24F0F4A4EA86E4DE2068DB71139445041E567A46947335487AC3 ] PEAUTH C:\Windows\system32\drivers\peauth.sys 20:21:23.0803 0x0bec PEAUTH - ok 20:21:23.0852 0x0bec [ AF4D64D2A57B9772CF3801950B8058A6, C9C493A3775E6E1660CE5DF75DA574D0C04245FB88CF41B96217A725359C350D ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll 20:21:23.0883 0x0bec PeerDistSvc - ok 20:21:23.0952 0x0bec [ 09B61B4894B05723BACE59F46EF892D4, 1BEA7E4A38935C2F1DF4AF503704E4B3A19B0E5658D83F5C36013DF0D6F3BC6D ] pla C:\Windows\system32\pla.dll 20:21:24.0003 0x0bec pla - ok 20:21:24.0061 0x0bec [ 92DC6E68D2C856C5C2F21AE9E22112B8, EFAA27886A05E57E629A9EFC3671D9D64144795EDF55438A676F5B43E59BE3FC ] PlugPlay C:\Windows\system32\umpnpmgr.dll 20:21:24.0082 0x0bec PlugPlay - ok 20:21:24.0095 0x0bec [ 63FF8572611249931EB16BB8EED6AFC8, 9732CCBCB93A7A4BEC88812B952C20244479E9BD781240C195E57F09E619EA33 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 20:21:24.0102 0x0bec PNRPAutoReg - ok 20:21:24.0113 0x0bec [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 20:21:24.0120 0x0bec PNRPsvc - ok 20:21:24.0156 0x0bec [ 53946B69BA0836BD95B03759530C81EC, 7F14A34635354CCA0F5342C8D9DF5A6AA1B94F6A508BD8834029E9BACF252920 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 20:21:24.0166 0x0bec PolicyAgent - ok 20:21:24.0176 0x0bec [ F87D30E72E03D579A5199CCB3831D6EA, B09328E89954584F97908FA5946376BA990B8C650DABCBF3CA3B08719937C694 ] Power C:\Windows\system32\umpo.dll 20:21:24.0182 0x0bec Power - ok 20:21:24.0209 0x0bec [ 631E3E205AD6D86F2AED6A4A8E69F2DB, 1D3BF0CFC37D91A3A56246920B9CF1084E78A055D56E85A773417809C58C8065 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 20:21:24.0213 0x0bec PptpMiniport - ok 20:21:24.0228 0x0bec [ FAF8689C5BB1D93A5DC610046CB96366, F57BBB7566F900AA35A38418A2971B714D7F989424F998D4BF459A4DD5C23076 ] Processor C:\Windows\system32\drivers\processr.sys 20:21:24.0231 0x0bec Processor - ok 20:21:24.0280 0x0bec [ 43CA4CCC22D52FB58E8988F0198851D0, DF67BD70D9D82677AE61244B4E54677A5008A7F5EB531DF2A7E7D33F1658EA78 ] ProfSvc C:\Windows\system32\profsvc.dll 20:21:24.0289 0x0bec ProfSvc - ok 20:21:24.0308 0x0bec [ B9417E776D0899ADA8BBDD44EB735251, 0C12DB641B0B164A5EA3F91575249A1251A50640F1C0950C7FBACD63523294CD ] ProtectedStorage C:\Windows\system32\lsass.exe 20:21:24.0311 0x0bec ProtectedStorage - ok 20:21:24.0327 0x0bec [ 6270CCAE2A86DE6D146529FE55B3246A, 463209CBAF1B0E269DC8FC6FBDEE5BB7E5ADB5D3F024930BFD0B97E0A9678883 ] Psched C:\Windows\system32\DRIVERS\pacer.sys 20:21:24.0331 0x0bec Psched - ok 20:21:24.0412 0x0bec [ AB95ECF1F6659A60DDC166D8315B0751, 0ED6D3460D28978BADF31B930DBB3298A6A10EFF8883763EABA0E36A21A0E83D ] ql2300 C:\Windows\system32\drivers\ql2300.sys 20:21:24.0533 0x0bec ql2300 - ok 20:21:24.0544 0x0bec [ B4DD51DD25182244B86737DC51AF2270, 7E62B04F054A6330B7F9968222523BDE8F3EE47A11D17E6C0E2D5ACDC07B9E6B ] ql40xx C:\Windows\system32\drivers\ql40xx.sys 20:21:24.0548 0x0bec ql40xx - ok 20:21:24.0562 0x0bec [ 31AC809E7707EB580B2BDB760390765A, A8481FD19A0F778F5591B7676F591F664ADC68B6867E663C0F9564173F4AC909 ] QWAVE C:\Windows\system32\qwave.dll 20:21:24.0570 0x0bec QWAVE - ok 20:21:24.0578 0x0bec [ 584078CA1B95CA72DF2A27C336F9719D, 836F115C92D343463C14A9DE39648C1EFA7C7EE4720F5C692EE0F68B84830121 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 20:21:24.0581 0x0bec QWAVEdrv - ok 20:21:24.0586 0x0bec [ 30A81B53C766D0133BB86D234E5556AB, 726C6B83B5ACAA84CAB1689B6DD6DDAE3199D61A57B5D7B5B5A0F62FCF838090 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 20:21:24.0588 0x0bec RasAcd - ok 20:21:24.0605 0x0bec [ 57EC4AEF73660166074D8F7F31C0D4FD, C66B425EC4DB5E7FD289AE631C9B019EB16717C55E80FAE964BB22203E4AACEF ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 20:21:24.0607 0x0bec RasAgileVpn - ok 20:21:24.0629 0x0bec [ A60F1839849C0C00739787FD5EC03F13, B210DFA5A843CF1DA73635F168E2EA5052CBED15C664F8523CDFB34CA165D0E0 ] RasAuto C:\Windows\System32\rasauto.dll 20:21:24.0635 0x0bec RasAuto - ok 20:21:24.0641 0x0bec [ D9F91EAFEC2815365CBE6D167E4E332A, 8350457A39D141C13807E7DB5A8D4113197C4016F7744B9993391F4AEA0C4A5C ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 20:21:24.0644 0x0bec Rasl2tp - ok 20:21:24.0666 0x0bec [ CB9E04DC05EACF5B9A36CA276D475006, 4D8C0AEF1D4F84F375AD2BAF786C9F6C52316A3E655B913449E71AD7C0FCA56E ] RasMan C:\Windows\System32\rasmans.dll 20:21:24.0675 0x0bec RasMan - ok 20:21:24.0685 0x0bec [ 0FE8B15916307A6AC12BFB6A63E45507, 64119474DE7499E6E8B82E78BBD50074B3AA70B3E8329089FAE9B7F29919004E ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 20:21:24.0688 0x0bec RasPppoe - ok 20:21:24.0695 0x0bec [ 44101F495A83EA6401D886E7FD70096B, 56A0CE5C89870752B9B2AB795C1A248CA28209E049B2F20CCA0308CBE2488A0A ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 20:21:24.0698 0x0bec RasSstp - ok 20:21:24.0716 0x0bec [ 856D4FDA0F2FACEDD68ED8B6C52BCA14, BE3E606B82CE843151810539BF6C43FA0F9F8BB22F8089DB4B0888630C3DDE2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 20:21:24.0723 0x0bec rdbss - ok 20:21:24.0729 0x0bec [ 0D8F05481CB76E70E1DA06EE9F0DA9DF, 2AFCBE3237D27AFBF095F91F1FCCA63E6890F34A9E4F00E5C34C92394CDA89FB ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys 20:21:24.0732 0x0bec rdpbus - ok 20:21:24.0737 0x0bec [ 23DAE03F29D253AE74C44F99E515F9A1, 8FED93D10B2062F0526FE3508101F8FCF8F72DEB90AFB472EB7CBAE83A0EC430 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 20:21:24.0739 0x0bec RDPCDD - ok 20:21:24.0762 0x0bec [ B973FCFC50DC1434E1970A146F7E3885, BE797E5F5AE34D37F8DA1134CE94DD14DBE36D2BC405B97E992E2257848B7CA9 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys 20:21:24.0768 0x0bec RDPDR - ok 20:21:24.0773 0x0bec [ 5A53CA1598DD4156D44196D200C94B8A, 8112FE14FEC94C67B1C5BDE4171E37584F1D0098D2C557C9E4BDD3E0291E25E4 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 20:21:24.0775 0x0bec RDPENCDD - ok 20:21:24.0784 0x0bec [ 44B0A53CD4F27D50ED461DAE0C0B4E1F, CDA80B08E67AD034081C0C920CD66147689F1844403CBC552F65005E7C011A91 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 20:21:24.0786 0x0bec RDPREFMP - ok 20:21:24.0796 0x0bec [ 288B06960D78428FF89E811632684E20, 82FB13C2749637E172381C9C205080921A45453191B6246C5D3FE946A06D17F5 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 20:21:24.0801 0x0bec RDPWD - ok 20:21:24.0810 0x0bec [ 518395321DC96FE2C9F0E96AC743B656, 5F6A0880B4F3EE7196259EA362DA9554B0687B0236F9A8E5CF7A4A77F01F1776 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 20:21:24.0816 0x0bec rdyboost - ok 20:21:24.0837 0x0bec [ 149FE64A2BD27129CB731D09AF4ACDDE, 3B8E21A8E97348EC96EF24286EB6CF7EE517AD9C271D0E4EF918153D577E48F1 ] RemoteAccess C:\Windows\System32\mprdim.dll 20:21:24.0841 0x0bec RemoteAccess - ok 20:21:24.0863 0x0bec [ CB9A8683F4EF2BF99E123D79950D7935, B9FA3E7E91E76D975CF40BFA37909E50F29CC13AB1399007884710651827E9AA ] RemoteRegistry C:\Windows\system32\regsvc.dll 20:21:24.0869 0x0bec RemoteRegistry - ok 20:21:24.0890 0x0bec [ 78D072F35BC45D9E4E1B61895C152234, 80C924EE1156B4E3172E83DCB9C60817E87885FB9377647E0BF90153E415B1CA ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 20:21:24.0895 0x0bec RpcEptMapper - ok 20:21:24.0922 0x0bec [ 94D36C0E44677DD26981D2BFEEF2A29D, D77A93AC60536F3706E8A0154C0C2199E888B7748C84DB7437254FF175F4DF55 ] RpcLocator C:\Windows\system32\locator.exe 20:21:24.0925 0x0bec RpcLocator - ok 20:21:24.0949 0x0bec [ 0395B42B3885269C039C6705D5A49BE3, A87697AFC9D4478DCD0A0053DBE378F3F84961BCF1A911DBB4161EEB350CB064 ] RpcSs C:\Windows\system32\rpcss.dll 20:21:24.0958 0x0bec RpcSs - ok 20:21:24.0972 0x0bec [ 032B0D36AD92B582D869879F5AF5B928, 0F8F18A6A0A689957B886D9368015889091094EDA18BE532093F06A70A7CE184 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 20:21:24.0976 0x0bec rspndr - ok 20:21:25.0014 0x0bec [ 7DFD48E24479B68B258D8770121155A0, 3B5F7309403C46855DB888CF2058B07C9029690DBC7FB3224BAC7BE5547D2D57 ] RTL8167 C:\Windows\system32\DRIVERS\Rt86win7.sys 20:21:25.0019 0x0bec RTL8167 - ok 20:21:25.0044 0x0bec [ 7FA7F2E249A5DCBB7970630E15E1F482, 9633B193F3FDA67BC551C6DCA4788AB83E9F45F77763EE579D02FE5D6B80DEDF ] s3cap C:\Windows\system32\drivers\vms3cap.sys 20:21:25.0047 0x0bec s3cap - ok 20:21:25.0061 0x0bec [ B9417E776D0899ADA8BBDD44EB735251, 0C12DB641B0B164A5EA3F91575249A1251A50640F1C0950C7FBACD63523294CD ] SamSs C:\Windows\system32\lsass.exe 20:21:25.0064 0x0bec SamSs - ok 20:21:25.0070 0x0bec [ 05D860DA1040F111503AC416CCEF2BCA, DAE2F37D09A5A42F945BC8E27E4EA2303521081783A80CEE7FEE7C5A1C2CFC5E ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 20:21:25.0073 0x0bec sbp2port - ok 20:21:25.0089 0x0bec [ 8FC518FFE9519C2631D37515A68009C4, 21E10585470CF9FC3BD1977F8A426686CD2FA6BD2094B9E3594B21C7C4541D25 ] SCardSvr C:\Windows\System32\SCardSvr.dll 20:21:25.0096 0x0bec SCardSvr - ok 20:21:25.0102 0x0bec [ 0693B5EC673E34DC147E195779A4DCF6, AF1B56FBF3ADABF94CD9DBA67586B8746DE135151F6B3D1B0EE315BC1E2DB670 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 20:21:25.0104 0x0bec scfilter - ok 20:21:25.0137 0x0bec [ A04BB13F8A72F8B6E8B4071723E4E336, E63287FF71C39CBF64C3347C455324C8437F9CF398153E269543588B65389502 ] Schedule C:\Windows\system32\schedsvc.dll 20:21:25.0168 0x0bec Schedule - ok 20:21:25.0208 0x0bec [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] SCPolicySvc C:\Windows\System32\certprop.dll 20:21:25.0210 0x0bec SCPolicySvc - ok 20:21:25.0241 0x0bec [ 08236C4BCE5EDD0A0318A438AF28E0F7, 77727F963F63C4CEC11E7AAD5FB3836179701D512CA9436C3170B9E6A4E5F888 ] SDRSVC C:\Windows\System32\SDRSVC.dll 20:21:25.0247 0x0bec SDRSVC - ok 20:21:25.0260 0x0bec [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv C:\Windows\system32\drivers\secdrv.sys 20:21:25.0262 0x0bec secdrv - ok 20:21:25.0276 0x0bec [ A59B3A4442C52060CC7A85293AA3546F, 1776D6DEE51991149265AAF39E17065E301C5FA1FF4068653DC0010B9B27185D ] seclogon C:\Windows\system32\seclogon.dll 20:21:25.0280 0x0bec seclogon - ok 20:21:25.0298 0x0bec [ DCB7FCDCC97F87360F75D77425B81737, F8289AF2C458C167038EEFE613EE5E3D6D5B3308B8784168374BC81C47891CE5 ] SENS C:\Windows\System32\sens.dll 20:21:25.0302 0x0bec SENS - ok 20:21:25.0326 0x0bec [ 50087FE1EE447009C9CC2997B90DE53F, B5E6CF1D991F87C29C5E28198E0962E31FFB499A46C3BD43FC20391693389959 ] SensrSvc C:\Windows\system32\sensrsvc.dll 20:21:25.0330 0x0bec SensrSvc - ok 20:21:25.0350 0x0bec [ 9AD8B8B515E3DF6ACD4212EF465DE2D1, E2F019BCD1446236D078D46065DD151DD068778F33BE2F1E8A0CC1EA2F954E86 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys 20:21:25.0353 0x0bec Serenum - ok 20:21:25.0359 0x0bec [ 5FB7FCEA0490D821F26F39CC5EA3D1E2, A26DB2EB9F3E2509B4EBA949DB97595CC32332D9321DF68283BFC102E66D766F ] Serial C:\Windows\system32\DRIVERS\serial.sys 20:21:25.0363 0x0bec Serial - ok 20:21:25.0369 0x0bec [ 79BFFB520327FF916A582DFEA17AA813, 7A2A9D69BE02228591186A9F4453D4B5FD98837CA422C873C48040170E8BD18C ] sermouse C:\Windows\system32\drivers\sermouse.sys 20:21:25.0372 0x0bec sermouse - ok 20:21:25.0405 0x0bec [ 4AE380F39A0032EAB7DD953030B26D28, C8F5F2DD59574E966FDF3057867BB959A554BAB6FD5DC6F1427094A6BC2B2809 ] SessionEnv C:\Windows\system32\sessenv.dll 20:21:25.0411 0x0bec SessionEnv - ok 20:21:25.0417 0x0bec [ 9F976E1EB233DF46FCE808D9DEA3EB9C, 6A5C53F27F8BCA85CE206EE7D196176F67EC6FFA5D4830373A20792C149B5E75 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 20:21:25.0419 0x0bec sffdisk - ok 20:21:25.0435 0x0bec [ 932A68EE27833CFD57C1639D375F2731, 11D6B98FBEEE2B9C7B06EF7091857BBD3B349077997D6261D66280668FD1B5C3 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 20:21:25.0437 0x0bec sffp_mmc - ok 20:21:25.0442 0x0bec [ 6D4CCAEDC018F1CF52866BBBAA235982, AAC41F5C97B3FE5A3DC0838457EB8CC9BB71FCA16D3EDBB67D603F0A9D46C131 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 20:21:25.0445 0x0bec sffp_sd - ok 20:21:25.0451 0x0bec [ DB96666CC8312EBC45032F30B007A547, C3AE60FC65A36E96E0D2CC6E184481D70F91A19DC3E2E17E2873DD670A592DD7 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys 20:21:25.0453 0x0bec sfloppy - ok 20:21:25.0495 0x0bec [ D1A079A0DE2EA524513B6930C24527A2, E2BC16DBCF38841EECD49C6FA1A9AC89C17F332F12606CA826F058E995E1B83D ] SharedAccess C:\Windows\System32\ipnathlp.dll 20:21:25.0504 0x0bec SharedAccess - ok 20:21:25.0558 0x0bec [ 414DA952A35BF5D50192E28263B40577, 9C9BAFB9880DA6CC728506A142BE124E186219610DCC3460657A3CA93C865DF1 ] ShellHWDetection C:\Windows\System32\shsvcs.dll 20:21:25.0568 0x0bec ShellHWDetection - ok 20:21:25.0574 0x0bec [ 2565CAC0DC9FE0371BDCE60832582B2E, 1A775214E86B83C2F1799F12D71077D81C89AD32734A248BA88787B7F104B79D ] sisagp C:\Windows\system32\drivers\sisagp.sys 20:21:25.0577 0x0bec sisagp - ok 20:21:25.0590 0x0bec [ A9F0486851BECB6DDA1D89D381E71055, 7E909538AB758C18AC2CCBFFEE17BA36FA6ED2E674AA70924AA87AC61375FF35 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys 20:21:25.0592 0x0bec SiSRaid2 - ok 20:21:25.0600 0x0bec [ 3727097B55738E2F554972C3BE5BC1AA, 75D52A596A298C33EC79A3B0B80F25492C08A182ABC679401502DA9597687566 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys 20:21:25.0604 0x0bec SiSRaid4 - ok 20:21:25.0611 0x0bec [ 3E21C083B8A01CB70BA1F09303010FCE, 803F8F91299C387110F34A49340E7136AAE91B418E2977A36285EA8F432FF197 ] Smb C:\Windows\system32\DRIVERS\smb.sys 20:21:25.0614 0x0bec Smb - ok 20:21:25.0656 0x0bec [ 6A984831644ECA1A33FFEAE4126F4F37, 753E23D2B33D47C52C05D892B052CFD96D93B97FB6E9FCB58EF1E4C4A125BF78 ] SNMPTRAP C:\Windows\System32\snmptrap.exe 20:21:25.0660 0x0bec SNMPTRAP - ok 20:21:25.0666 0x0bec [ 95CF1AE7527FB70F7816563CBC09D942, CE8BACB91A5A86CBCE82619C6C1873B4D7593B00CED3B522E41B8F7F6258CC65 ] spldr C:\Windows\system32\drivers\spldr.sys 20:21:25.0669 0x0bec spldr - ok 20:21:25.0686 0x0bec [ 866A43013535DC8587C258E43579C764, B2BE846B5167A2ECD1E30C69A81385FCC6EAE6033394D08458A5583D311C4D82 ] Spooler C:\Windows\System32\spoolsv.exe 20:21:25.0697 0x0bec Spooler - ok 20:21:25.0798 0x0bec [ CF87A1DE791347E75B98885214CED2B8, 7AF4E03D751C951A4E5FBA28200DABFE6B3BF055490163EEEEA84EBA4D0F368A ] sppsvc C:\Windows\system32\sppsvc.exe 20:21:25.0907 0x0bec sppsvc - ok 20:21:25.0922 0x0bec [ B0180B20B065D89232A78A40FE56EAA6, 4D045B23AD58A8822BE9F20119744A8D47455469D54494745CEB099951DA60FF ] sppuinotify C:\Windows\system32\sppuinotify.dll 20:21:25.0927 0x0bec sppuinotify - ok 20:21:25.0952 0x0bec [ 249ACC0C536522F6DAFB0504F91F4BD3, E385473192398943F15C4C01B421C7C7D65872481D6A75DB96E855876FC9003E ] srv C:\Windows\system32\DRIVERS\srv.sys 20:21:25.0961 0x0bec srv - ok 20:21:25.0973 0x0bec [ 10914CB303D6FE03A9EDD9B36E3F467E, CC3B4A494B20841D78E595479BDD68A3508CF419F1E835B5366E979387546358 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 20:21:25.0982 0x0bec srv2 - ok 20:21:25.0991 0x0bec [ 62D3D4F139F9AFCABA3EF875E508A208, C80428A5A126B80DA07927FCBDF42B77D3E45296265F89D50FE6593658D791F4 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 20:21:25.0995 0x0bec srvnet - ok 20:21:26.0010 0x0bec [ D887C9FD02AC9FA880F6E5027A43E118, F38BAD90EC791368C37C21090302708D2DFB83ECE9096609AD9AA667B2E5592E ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 20:21:26.0018 0x0bec SSDPSRV - ok 20:21:26.0025 0x0bec [ D318F23BE45D5E3A107469EB64815B50, D74355E6FF215AA8CE53BC9DF16AF2740F2FC2FD754939478A3608BDA8C6DDA0 ] SstpSvc C:\Windows\system32\sstpsvc.dll 20:21:26.0030 0x0bec SstpSvc - ok 20:21:26.0039 0x0bec [ DB32D325C192B801DF274BFD12A7E72B, F089DBA719E22BC269720A6B840B873A4AF5639745DB0C3DBC8BD2F2839A1ABA ] stexstor C:\Windows\system32\drivers\stexstor.sys 20:21:26.0042 0x0bec stexstor - ok 20:21:26.0074 0x0bec [ E1FB3706030FB4578A0D72C2FC3689E4, A62EC9AA4514CAF2A10C0A3AEF7A36F593A7E7DA370A3F130C24E1B612E19427 ] StiSvc C:\Windows\System32\wiaservc.dll 20:21:26.0095 0x0bec StiSvc - ok 20:21:26.0118 0x0bec [ 472AF0311073DCECEAA8FA18BA2BDF89, 089414057EB2047E42C96C1ACE79D509967461DC5A4D2836F63C04268637A3FC ] storflt C:\Windows\system32\drivers\vmstorfl.sys 20:21:26.0121 0x0bec storflt - ok 20:21:26.0138 0x0bec [ 0BF669F0A910BEDA4A32258D363AF2A5, 83EEBACDE4F69A2866B69CAA633F5C8B3CB01D88CEDB01B6EA5988E0A25CEE47 ] StorSvc C:\Windows\system32\storsvc.dll 20:21:26.0142 0x0bec StorSvc - ok 20:21:26.0181 0x0bec [ DCAFFD62259E0BDB433DD67B5BB37619, CBD12FF9BBF33D18B0F3D322B12EC62E7DF3BF45C6AD43D2E91FF4C4762E05D0 ] storvsc C:\Windows\system32\drivers\storvsc.sys 20:21:26.0184 0x0bec storvsc - ok 20:21:26.0195 0x0bec [ E58C78A848ADD9610A4DB6D214AF5224, 1575A90EB22A4FB066459BDA00C6CAC10198C3C8C74493721EC6D34B51F50426 ] swenum C:\Windows\system32\DRIVERS\swenum.sys 20:21:26.0197 0x0bec swenum - ok 20:21:26.0234 0x0bec [ A28BD92DF340E57B024BA433165D34D7, 889CC7FF143C3549982128473FF927CD80CF36485A347EF399C1271C8CE12CE4 ] swprv C:\Windows\System32\swprv.dll 20:21:26.0244 0x0bec swprv - ok 20:21:26.0293 0x0bec [ 36650D618CA34C9D357DFD3D89B2C56F, 7C3774E53DCF32CB3A4B3504E32D2A651E18467FA0A6AC4C7993C696741B704B ] SysMain C:\Windows\system32\sysmain.dll 20:21:26.0388 0x0bec SysMain - ok 20:21:26.0447 0x0bec [ 763FECDC3D30C815FE72DD57936C6CD1, 1A62C7E63E426D56894F4121C75D9C60FC9A14469ADBD0D6F0B94B8DE48CDA3E ] TabletInputService C:\Windows\System32\TabSvc.dll 20:21:26.0456 0x0bec TabletInputService - ok 20:21:26.0497 0x0bec [ 613BF4820361543956909043A265C6AC, FCFF02E466D2501630B452627FB218C01E5245A0921EE3D2117E7FD63AC7E98E ] TapiSrv C:\Windows\System32\tapisrv.dll 20:21:26.0514 0x0bec TapiSrv - ok 20:21:26.0529 0x0bec [ B799D9FDB26111737F58288D8DC172D9, 409A60819A4305699E2E492A6190637FAAEBD19E745A5DB2A5D6977106C86591 ] TBS C:\Windows\System32\tbssvc.dll 20:21:26.0535 0x0bec TBS - ok 20:21:26.0593 0x0bec [ C25848DB4A86839A7EDD1077F62AD980, C0C6AADA83BD21DF1243B2BEBA83AC295F49B5C02B2639EF473BBDD3A31AF4C5 ] Tcpip C:\Windows\system32\drivers\tcpip.sys 20:21:26.0641 0x0bec Tcpip - ok 20:21:26.0690 0x0bec [ C25848DB4A86839A7EDD1077F62AD980, C0C6AADA83BD21DF1243B2BEBA83AC295F49B5C02B2639EF473BBDD3A31AF4C5 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 20:21:26.0713 0x0bec TCPIP6 - ok 20:21:26.0747 0x0bec [ CCA24162E055C3714CE5A88B100C64ED, 9B7712E793B9478BA7A1EF71EA9CC03CCB9C4004C54EAA911F158958519EDCD9 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 20:21:26.0750 0x0bec tcpipreg - ok 20:21:26.0758 0x0bec [ 1CB91B2BD8F6DD367DFC2EF26FD751B2, 879E2827354BB21573AC6A7CCEB746D44214540687E6882FFCB4089546FBD954 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 20:21:26.0761 0x0bec TDPIPE - ok 20:21:26.0767 0x0bec [ 2C10395BAA4847F83042813C515CC289, CBC058AE2EB6AA5905F9D2EF52573E1C06330462952E6D6E7083F8DB2C441E3E ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 20:21:26.0770 0x0bec TDTCP - ok 20:21:26.0790 0x0bec [ 8F143F86FDD8CF4F7BD25973C5983F9D, D3ECB70C5ACAFB6C07CB2104FBEA3FA965299F1BE84D33334DB0FAAA88F738A5 ] tdx C:\Windows\system32\DRIVERS\tdx.sys 20:21:26.0793 0x0bec tdx - ok 20:21:26.0800 0x0bec [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20, 0D81B427720637882077C5024D738191F858FC734ED040697872D906351EF663 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys 20:21:26.0803 0x0bec TermDD - ok 20:21:26.0832 0x0bec [ 382C804C92811BE57829D8E550A900E2, 5F52C2E7902024CF1C9CC0069F411C3F19CCA3DB209F437FA0F3932D4898EB50 ] TermService C:\Windows\System32\termsrv.dll 20:21:26.0853 0x0bec TermService - ok 20:21:26.0877 0x0bec [ 59CFDA4EACB3788F8B17F87B49B0AC0E, 653CE0697A31BA79BE1094601BA3A94912B368E29212AF79288B010D45AD7658 ] Themes C:\Windows\system32\themeservice.dll 20:21:26.0881 0x0bec Themes - ok 20:21:26.0920 0x0bec [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] THREADORDER C:\Windows\system32\mmcss.dll 20:21:26.0923 0x0bec THREADORDER - ok 20:21:26.0934 0x0bec [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A, 532A3A812578B2DFD83001DE66FC73689D79EC729409EB572E07E6D65B281712 ] TrkWks C:\Windows\System32\trkwks.dll 20:21:26.0940 0x0bec TrkWks - ok 20:21:26.0989 0x0bec [ 2C49B175AEE1D4364B91B531417FE583, 6C7995E18F84E465C376D1D5F153C15ACB66CDEA86EE5BF186677F572E7E129B ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 20:21:26.0999 0x0bec TrustedInstaller - ok 20:21:27.0023 0x0bec [ 6841C85446F906E4584D43A70484E318, 5B1FD34DC82EC534F4527A4019F3BC910147CA3A54E3F36984C0712307329089 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 20:21:27.0025 0x0bec tssecsrv - ok 20:21:27.0045 0x0bec [ FD1D6C73E6333BE727CBCC6054247654, 6F7B9AE1A5986204DB3348D13B303F30FC17624939DA74D6BD114FAEED0FB30E ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys 20:21:27.0048 0x0bec TsUsbFlt - ok 20:21:27.0060 0x0bec [ 01246F0BAAD7B68EC0F472AA41E33282, 51F975AF029AD015576FFFA3E88F5DBB8B40C7CD30ECDEDE8AFABCB08C954199 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys 20:21:27.0062 0x0bec TsUsbGD - ok 20:21:27.0070 0x0bec [ B2FA25D9B17A68BB93D58B0556E8C90D, 0146931B733CAB1CD87F94C35F97E110D6ED6C55EAFF03345400A29AEDE99BDE ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 20:21:27.0074 0x0bec tunnel - ok 20:21:27.0081 0x0bec [ 750FBCB269F4D7DD2E420C56B795DB6D, E1A95C59148FE463539C34336FD0E74B31A33B8AB2B8E34AA10349C3347471D7 ] uagp35 C:\Windows\system32\drivers\uagp35.sys 20:21:27.0084 0x0bec uagp35 - ok 20:21:27.0103 0x0bec [ EE43346C7E4B5E63E54F927BABBB32FF, BAD6FC3BEE45E644D5A6A0A31428F5B2AEC72A0AA0C74EF8177B1FE23EEF3AA9 ] udfs C:\Windows\system32\DRIVERS\udfs.sys 20:21:27.0110 0x0bec udfs - ok 20:21:27.0128 0x0bec [ 8344FD4FCE927880AA1AA7681D4927E5, 1B54EFA60A221E2B9FFE59BB41C7E7D8B5AC6826F1C5577456D81371D464255A ] UI0Detect C:\Windows\system32\UI0Detect.exe 20:21:27.0133 0x0bec UI0Detect - ok 20:21:27.0156 0x0bec [ 44E8048ACE47BEFBFDC2E9BE4CBC8880, 5D96D90FDF68AE470CC92CA9DF9DA2C05A53EF455A5A109DBBF7C96F3238257C ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 20:21:27.0176 0x0bec uliagpkx - ok 20:21:27.0201 0x0bec [ D295BED4B898F0FD999FCFA9B32B071B, D4130DB4AE76EE6DC0B8E7A4FEF5CB8B26EBD822C21021F6FA78FD29C1E211C2 ] umbus C:\Windows\system32\DRIVERS\umbus.sys 20:21:27.0252 0x0bec umbus - ok 20:21:27.0260 0x0bec [ 7550AD0C6998BA1CB4843E920EE0FEAC, 24C001E422C3B3B920CDCF6003A3179CE464DE4284775403DD5122EF9780460D ] UmPass C:\Windows\system32\drivers\umpass.sys 20:21:27.0264 0x0bec UmPass - ok 20:21:27.0312 0x0bec [ 409994A8EACEEE4E328749C0353527A0, FFC57B647147DE2957A7DE4B330CC534DE7AC892A2FCE3BB164F7A516CAB1B56 ] UmRdpService C:\Windows\System32\umrdp.dll 20:21:27.0322 0x0bec UmRdpService - ok 20:21:27.0340 0x0bec [ 833FBB672460EFCE8011D262175FAD33, C0C3067A305993CBF056C229771CB0593DD60C9C7AC5130FF1CA610BCA812AB5 ] upnphost C:\Windows\System32\upnphost.dll 20:21:27.0359 0x0bec upnphost - ok 20:21:27.0403 0x0bec [ 1D9F2BD026E8E2D45033A4DF3F16B78C, 72603E0A614F382AF69972F0930FD168B805922599DB9A7410B20CB391A9B933 ] usbaudio C:\Windows\system32\drivers\usbaudio.sys 20:21:27.0407 0x0bec usbaudio - ok 20:21:27.0439 0x0bec [ 87632869F4350B7CE711B356B1936B2B, 9E67211ACFC637F8C6B6AD5BE9CC61B69FEDF73408A1B678818200CFB0A0E585 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys 20:21:27.0443 0x0bec usbccgp - ok 20:21:27.0457 0x0bec [ 04EC7CEC62EC3B6D9354EEE93327FC82, 6CB41D8644618A5F701F6CA91FB65BB94AA83EA48992133B5262DC539B334B2E ] usbcir C:\Windows\system32\drivers\usbcir.sys 20:21:27.0461 0x0bec usbcir - ok 20:21:27.0483 0x0bec [ EF8127E7E612694F4E8FFDA37D9D00E4, 15E05CD77B1411728A314267FCDC1A1B32E5D003DB9E6D216025149AF2006D4E ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys 20:21:27.0485 0x0bec usbehci - ok 20:21:27.0508 0x0bec [ 711E9F7CA6F9A2351F4F97F31004E589, DD9CFE415A95A1BA96A0108B7DD05E07861DFB28E6A08E024C32DAF208B5FB11 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 20:21:27.0516 0x0bec usbhub - ok 20:21:27.0521 0x0bec [ 831F708F06CD5BF3933FBDFB388C606D, 9EE74338CF3FFD54B71AECBFD2CCC78512C92860A43663CE9A253150C332D881 ] usbohci C:\Windows\system32\drivers\usbohci.sys 20:21:27.0524 0x0bec usbohci - ok 20:21:27.0539 0x0bec [ 797D862FE0875E75C7CC4C1AD7B30252, 1BBE745E4C85F8911076F6032ACD7A35FAC048D3CB1500C64E08D8B2C70A1069 ] usbprint C:\Windows\system32\drivers\usbprint.sys 20:21:27.0542 0x0bec usbprint - ok 20:21:27.0550 0x0bec [ BF63EBFC6979FEFB2BC03DF7989A0C1A, AFEF764A3E5D52CDBB5074F0E87F2B5EBCDF8D9B6E8F88EE235602B80145BE31 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 20:21:27.0553 0x0bec USBSTOR - ok 20:21:27.0558 0x0bec [ 89BDF895EB76E3EC1C02EEF5AA18928D, 9CF4C787E75D59A713BCA2C1191A2492110B79F298AABC4608745125529D4DE3 ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys 20:21:27.0562 0x0bec usbuhci - ok 20:21:27.0579 0x0bec [ 45F4E7BF43DB40A6C6B4D92C76CBC3F2, F9B72DE82078FDB5551D48988190F46EECA9B99655C591B7865FEA1AFB31F637 ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys 20:21:27.0585 0x0bec usbvideo - ok 20:21:27.0623 0x0bec [ 081E6E1C91AEC36758902A9F727CD23C, 9FDAA17A3B99067E035E5D76305427F15FFDBC5D304B2BB78AFC6463EDDE1A75 ] UxSms C:\Windows\System32\uxsms.dll 20:21:27.0627 0x0bec UxSms - ok 20:21:27.0645 0x0bec [ B9417E776D0899ADA8BBDD44EB735251, 0C12DB641B0B164A5EA3F91575249A1251A50640F1C0950C7FBACD63523294CD ] VaultSvc C:\Windows\system32\lsass.exe 20:21:27.0648 0x0bec VaultSvc - ok 20:21:27.0665 0x0bec [ A059C4C3EDB09E07D21A8E5C0AABD3CB, BDD3729B49DF2E2FC72FFEF9D10235B481A671DE5A721B6B9A80873B7A343F07 ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys 20:21:27.0668 0x0bec vdrvroot - ok 20:21:27.0690 0x0bec [ C3CD30495687C2A2F66A65CA6FD89BE9, 582E4706C1D6A151020D14B26C7BF166F4E42BDD6E410F30EC452469270C5E9B ] vds C:\Windows\System32\vds.exe 20:21:27.0711 0x0bec vds - ok 20:21:27.0717 0x0bec [ 17C408214EA61696CEC9C66E388B14F3, 829C0416672E2B2DFABCFE641E7F281F41E8DBB3C0EF11C7784CB9BB94F87E97 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 20:21:27.0719 0x0bec vga - ok 20:21:27.0725 0x0bec [ 8E38096AD5C8570A6F1570A61E251561, 4DBA3C1397A2203548F45F006E66D99F837903F601ABBCE2304754F783CA8A39 ] VgaSave C:\Windows\System32\drivers\vga.sys 20:21:27.0727 0x0bec VgaSave - ok 20:21:27.0741 0x0bec [ 5461686CCA2FDA57B024547733AB42E3, 2721D0659AA890172FCAD4EC4D926B58ACD0EE4887DA51545DC7237420D5BF84 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys 20:21:27.0747 0x0bec vhdmp - ok 20:21:27.0753 0x0bec [ C829317A37B4BEA8F39735D4B076E923, 55D1796AE750071E1E05BD7702B6C355CCFFE27B4C00E93E7044C3184732B497 ] viaagp C:\Windows\system32\drivers\viaagp.sys 20:21:27.0756 0x0bec viaagp - ok 20:21:27.0776 0x0bec [ 3B8D59C84A048807ADC57429DF6CE775, 0B3A98C7995C301FD0A5C3FEC7D36C77989192013F103336CED30FE7CE613E04 ] ViaC7 C:\Windows\system32\drivers\viac7.sys 20:21:27.0779 0x0bec ViaC7 - ok 20:21:27.0785 0x0bec [ E43574F6A56A0EE11809B48C09E4FD3C, 3687BF638E21C00E62ABFED70D728B91ADA08F7164CA898E654F31DA196589E9 ] viaide C:\Windows\system32\drivers\viaide.sys 20:21:27.0788 0x0bec viaide - ok 20:21:27.0809 0x0bec [ C2F2911156FDC7817C52829C86DA494E, FE499F189B5016FCE0018AA3DE3970B72275B7B15F3D4D608117F6DDEC6B90DC ] vmbus C:\Windows\system32\drivers\vmbus.sys 20:21:27.0814 0x0bec vmbus - ok 20:21:27.0823 0x0bec [ D4D77455211E204F370D08F4963063CE, 2018B2A84C73E0834200A594C02A9D28C74906F126DAD3CCDDFC9CD9A61669E2 ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys 20:21:27.0825 0x0bec VMBusHID - ok 20:21:27.0832 0x0bec [ 4C63E00F2F4B5F86AB48A58CD990F212, 9796BD4B9CFEEEAF57C5E332A732EFC2770B21F9B35301A5D202F5FC52C1E035 ] volmgr C:\Windows\system32\drivers\volmgr.sys 20:21:27.0835 0x0bec volmgr - ok 20:21:27.0864 0x0bec [ 21D83DD717E8D681364A5E44A5459717, 2D938D07132A2D37FB164CA322A93951729D6AF65BA8BAF8493D02B203F13243 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 20:21:27.0872 0x0bec volmgrx - ok 20:21:27.0896 0x0bec [ F497F67932C6FA693D7DE2780631CFE7, DAE544ED99D2CF570DA31343BD87D2F856D0D13529656D38E1BF854C77F017F6 ] volsnap C:\Windows\system32\drivers\volsnap.sys 20:21:27.0903 0x0bec volsnap - ok 20:21:27.0913 0x0bec [ 9DFA0CC2F8855A04816729651175B631, 37FD9E43A2A3F125E94A315FB4CD8A1B5499A5FD74806EB2D1E5DA88C070D3A3 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys 20:21:27.0918 0x0bec vsmraid - ok 20:21:27.0962 0x0bec [ 209A3B1901B83AEB8527ED211CCE9E4C, 1A431F6409F8E0531F600F8F988ECECECB902DA26BBAAF1DE74A5CAC29A7CB44 ] VSS C:\Windows\system32\vssvc.exe 20:21:28.0003 0x0bec VSS - ok 20:21:28.0013 0x0bec [ 90567B1E658001E79D7C8BBD3DDE5AA6, EFC23BEEA7F54A2DC56CB523DAD1AF0358D904C5278BF08873910E2DB3F13557 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys 20:21:28.0015 0x0bec vwifibus - ok 20:21:28.0033 0x0bec [ 7090D3436EEB4E7DA3373090A23448F7, 3A130B28F2BFA7DCEC8596C4CE4E187B019F5ECF1AAC8DD1BBDE9CBD2428FEC2 ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys 20:21:28.0036 0x0bec vwififlt - ok 20:21:28.0057 0x0bec [ A3F04CBEA6C2A10E6CB01F8B47611882, 32AFE18B07FECA30BC95831A5DC94C784E543784DF16165334A777DC84E91EF3 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys 20:21:28.0059 0x0bec vwifimp - ok 20:21:28.0089 0x0bec [ 55187FD710E27D5095D10A472C8BAF1C, AE298E2D3BA366BCBDC092C717214C181E8843FA564A6DFB07FC3238A5A68DC3 ] W32Time C:\Windows\system32\w32time.dll 20:21:28.0099 0x0bec W32Time - ok 20:21:28.0107 0x0bec [ DE3721E89C653AA281428C8A69745D90, 501C78056ED4295625D8A5412025FD2F0CA24077044D3A5800BA79DF3D946516 ] WacomPen C:\Windows\system32\drivers\wacompen.sys 20:21:28.0110 0x0bec WacomPen - ok 20:21:28.0117 0x0bec [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 20:21:28.0121 0x0bec WANARP - ok 20:21:28.0126 0x0bec [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 20:21:28.0128 0x0bec Wanarpv6 - ok 20:21:28.0183 0x0bec [ 691E3285E53DCA558E1A84667F13E15A, 12EDB66EF8FC100402BEA221F354D3BD5542F6DDF715B6E7D873D6BAE7E3D329 ] wbengine C:\Windows\system32\wbengine.exe 20:21:28.0224 0x0bec wbengine - ok 20:21:28.0251 0x0bec [ 34EEE0DFAADB4F691D6D5308A51315DC, A040A03E25A0C78B9E26F86C2DF95BCAF8E7EC90183CEB295615D3265350EBEE ] wcncsvc C:\Windows\System32\wcncsvc.dll 20:21:28.0266 0x0bec wcncsvc - ok 20:21:28.0295 0x0bec [ D9DF5C53DFE502D88A726DD6EFB3CCC3, 2804FA28CEF1A15C1E1BAAB440F7546A497C3B894313521750380F789678BC0C ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 20:21:28.0299 0x0bec WcsPlugInService - ok 20:21:28.0305 0x0bec [ 1112A9BADACB47B7C0BB0392E3158DFF, 1AE2AFA125973571F91E6945FE8A735F63D76EBB250A0075D98C580167FD9ED4 ] Wd C:\Windows\system32\drivers\wd.sys 20:21:28.0307 0x0bec Wd - ok 20:21:28.0355 0x0bec [ 9950E3D0F08141C7E89E64456AE7DC73, DE4B96812B305A63F5874BBF2DC40354FB45B3D96C1D33436E677099760BA448 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 20:21:28.0376 0x0bec Wdf01000 - ok 20:21:28.0392 0x0bec [ 46EF9DC96265FD0B423DB72E7C38C2A5, 43801A51FB0E45CFFC73DF6441B54A75FC2FEAF5E0424DFE7AB04FC26CF6CD16 ] WdiServiceHost C:\Windows\system32\wdi.dll 20:21:28.0398 0x0bec WdiServiceHost - ok 20:21:28.0403 0x0bec [ 46EF9DC96265FD0B423DB72E7C38C2A5, 43801A51FB0E45CFFC73DF6441B54A75FC2FEAF5E0424DFE7AB04FC26CF6CD16 ] WdiSystemHost C:\Windows\system32\wdi.dll 20:21:28.0408 0x0bec WdiSystemHost - ok 20:21:28.0431 0x0bec [ DC54D7A40B6E18E5C7F592F836D163FF, 436AF3B94EAE6CBD2516A63235AE1D6EC4F1FCAA0F974A9672BB5AB2A846BB2C ] WebClient C:\Windows\System32\webclnt.dll 20:21:28.0440 0x0bec WebClient - ok 20:21:28.0456 0x0bec [ 760F0AFE937A77CFF27153206534F275, A53940BA28854486FF18F16B98A3314B36322B0B6EFB54D08B921315BEB0ADD5 ] Wecsvc C:\Windows\system32\wecsvc.dll 20:21:28.0463 0x0bec Wecsvc - ok 20:21:28.0469 0x0bec [ 8B9A943F3B53861F2BFAF6C186168F79, 88E2F79F32AFBA17CB8377A508B83A1EC2315E9F3A365F591C87FE4525AA6713 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 20:21:28.0471 0x0bec WfpLwf - ok 20:21:28.0490 0x0bec [ 5CF95B35E59E2A38023836FFF31BE64C, CEA21302B3E855EE592810D4E0DE10E47A47A393064C435463CD54598735CD8D ] WIMMount C:\Windows\system32\drivers\wimmount.sys 20:21:28.0492 0x0bec WIMMount - ok 20:21:28.0501 0x0bec WinHttpAutoProxySvc - ok 20:21:28.0590 0x0bec [ F62E510B6AD4C21EB9FE8668ED251826, FA3E5CAC3E67E49377320CFBE4646585E6B62168292768FEA81E4623F9166890 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 20:21:28.0600 0x0bec Winmgmt - ok 20:21:28.0664 0x0bec [ 8949A93520F7008C3B7AD320A0EEA267, F77C6BF73B300347FEB3D02C7A1F98807546D95E10E499D385B7F00D1366CC59 ] WinRM C:\Windows\system32\WsmSvc.dll 20:21:28.0707 0x0bec WinRM - ok 20:21:28.0751 0x0bec [ BB5D5249C49DB0D9B08AFB220019E1CF, 5DD01888BC303891FC5690D3F4EA795F185B934D985FC0F48DC30CC0718E5123 ] Wlansvc C:\Windows\System32\wlansvc.dll 20:21:28.0782 0x0bec Wlansvc - ok 20:21:28.0789 0x0bec [ 0217679B8FCA58714C3BF2726D2CA84E, 4494984B922DCF24D37BCD0E6831CEBD07D1CA49235D04E821D17ED3DF84ED2A ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys 20:21:28.0791 0x0bec WmiAcpi - ok 20:21:28.0817 0x0bec [ 6EB6B66517B048D87DC1856DDF1F4C3F, EBB534C4829477C70062ADBB5626236B02FE563A544C53FA255E79F3CA170FE8 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 20:21:28.0822 0x0bec wmiApSrv - ok 20:21:28.0881 0x0bec [ 3B40D3A61AA8C21B88AE57C58AB3122E, 6C67DCB007C3CDF2EB0BBF5FD89C32CD7800C20F7166872F8C387BE262C5CD21 ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe 20:21:28.0906 0x0bec WMPNetworkSvc - ok 20:21:28.0942 0x0bec [ AA53356D60AF47EACC85BC617A4F3F66, 155CB8112AA382D841C1891750FF29EF4F1BF716CD9CDF0F2243209E2CCCAC98 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 20:21:28.0948 0x0bec WPDBusEnum - ok 20:21:28.0962 0x0bec [ 6DB3276587B853BF886B69528FDB048C, 9972FF6DF0DF6F86D1E9BCEF4C29064748B217DA196B0633C30D3D580144951C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 20:21:28.0965 0x0bec ws2ifsl - ok 20:21:28.0970 0x0bec WSearch - ok 20:21:29.0072 0x0bec [ 8E6E93DFE1C8C1732E4B2C843CE4ABA5, 354C2BC424D92AE09EADBCAD92299C392C57AFB543EAC1B0F7675A907E9BCEE5 ] wuauserv C:\Windows\system32\wuaueng.dll 20:21:29.0140 0x0bec wuauserv - ok 20:21:29.0152 0x0bec [ E714A1C0354636837E20CCBF00888EE7, 0E31F0DB0AA318E3B0DACD26C0D3B11519B42F2A996AE580BE67FA8B3C42C436 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 20:21:29.0156 0x0bec WudfPf - ok 20:21:29.0166 0x0bec [ 1023EE888C9B47178C5293ED5336AB69, 62221C80C3F719A585266247482A64F7CB2F5EF69AFA8FA07D563CA2B0A37561 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 20:21:29.0170 0x0bec WUDFRd - ok 20:21:29.0184 0x0bec [ 8D1E1E529A2C9E9B6A85B55A345F7629, 64B637CFE2AF58A4F7CE6D8C3D603F8EFD527500F7137E0A37840313C712CA93 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 20:21:29.0189 0x0bec wudfsvc - ok 20:21:29.0206 0x0bec [ FF2D745B560F7C71B31F30F4D49F73D2, B2FBF7E5F58E34AC64FE6CF65800F1F07939279203BDE89375FAC92B884A4F37 ] WwanSvc C:\Windows\System32\wwansvc.dll 20:21:29.0215 0x0bec WwanSvc - ok 20:21:29.0238 0x0bec ================ Scan global =============================== 20:21:29.0268 0x0bec [ DAB748AE0439955ED2FA22357533DDDB, 73EDD402C7479DDCE1998D0C7E99E1EC2974F64EFC33A851439CC85D09EDCDF9 ] C:\Windows\system32\basesrv.dll 20:21:29.0283 0x0bec [ FB6CA5816FF34B23138250F72ACE5BD1, 0C74E99533035D2B7832C7C8642AA762E2445D99B6C3FBA750CAA7F37C920455 ] C:\Windows\system32\winsrv.dll 20:21:29.0296 0x0bec [ FB6CA5816FF34B23138250F72ACE5BD1, 0C74E99533035D2B7832C7C8642AA762E2445D99B6C3FBA750CAA7F37C920455 ] C:\Windows\system32\winsrv.dll 20:21:29.0327 0x0bec [ 364455805E64882844EE9ACB72522830, 906561DBBB33F744844CF27E456226044C85DF0FCFD26DE1FD11E09E2CFA6F8F ] C:\Windows\system32\sxssrv.dll 20:21:29.0343 0x0bec [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6, D7BC4ED605B32274B45328FD9914FB0E7B90D869A38F0E6F94FB1BF4E9E2B407 ] C:\Windows\system32\services.exe 20:21:29.0352 0x0bec [ Global ] - ok 20:21:29.0352 0x0bec ================ Scan MBR ================================== 20:21:29.0361 0x0bec [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 20:21:29.0925 0x0bec \Device\Harddisk0\DR0 - ok 20:21:29.0932 0x0bec [ EF1D8B517E0BEA9CE5EAAC546B249695 ] \Device\Harddisk1\DR1 20:21:29.0937 0x0bec \Device\Harddisk1\DR1 - ok 20:21:29.0938 0x0bec ================ Scan VBR ================================== 20:21:29.0949 0x0bec [ 8DCDD30F568DFFA9414720F3DA50400C ] \Device\Harddisk0\DR0\Partition1 20:21:29.0951 0x0bec \Device\Harddisk0\DR0\Partition1 - ok 20:21:29.0955 0x0bec [ 8893C2E8280A2F7FA55D8A38AEB7DA01 ] \Device\Harddisk0\DR0\Partition2 20:21:29.0957 0x0bec \Device\Harddisk0\DR0\Partition2 - ok 20:21:29.0960 0x0bec [ 85FDC7B2C1778C1EF86C0D6514734CBC ] \Device\Harddisk0\DR0\Partition3 20:21:29.0962 0x0bec \Device\Harddisk0\DR0\Partition3 - ok 20:21:29.0995 0x0bec [ 541AFAE1C4EEBA9C57C854B2BC28F124 ] \Device\Harddisk0\DR0\Partition4 20:21:29.0998 0x0bec \Device\Harddisk0\DR0\Partition4 - ok 20:21:30.0002 0x0bec [ 4790581DC4EB8563A83B09E75A05A2C7 ] \Device\Harddisk1\DR1\Partition1 20:21:30.0006 0x0bec \Device\Harddisk1\DR1\Partition1 - ok 20:21:30.0007 0x0bec ================ Scan generic autorun ====================== 20:21:30.0048 0x0bec [ 6641B633A0A2618BC3739E0DCD6E1B9B, CF3FC356C921F7E33B2DBFF34816E6ECD4F0C0D48A03121E1F5EA06053E9D8B1 ] C:\Windows\system32\igfxtray.exe 20:21:30.0057 0x0bec IgfxTray - ok 20:21:30.0070 0x0bec [ 1B06D4DF241484C193CFDD89FB21E19A, 2412FD12521D21252ED3368A94C85F77D7B532BA5D3329B363B13CB7B15B1242 ] C:\Windows\system32\hkcmd.exe 20:21:30.0076 0x0bec HotKeysCmds - ok 20:21:30.0086 0x0bec [ B0010C958505273A76FAE4A089E1AACE, ABD5CE20D77B45E7F72DCDA18953AF7BF90868088906C5995FC13ABD8A30C347 ] C:\Windows\system32\igfxpers.exe 20:21:30.0091 0x0bec Persistence - ok 20:21:30.0372 0x0bec [ 59D29EF36C6712AAA8607E3484E75259, 48FFDE24C55FF45F8DA47A5D9D0E6ED8F375D683753A0CF0CCC9602D7332A55A ] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe 20:21:30.0609 0x0bec RtHDVCpl - ok 20:21:30.0735 0x0bec [ 901AA7A38CE13F14B6BBEC38C0595698, 1E95F2048E2A1782807D52E9816ED267355718E24D01FF07ACE73D965EDE388A ] C:\Program Files\Microsoft Office\Office14\BCSSync.exe 20:21:30.0740 0x0bec BCSSync - ok 20:21:30.0808 0x0bec [ C4CD3D55BD97DB1DA0CB62BD41941C29, F5BB5A49268A6C98A0ABC94AAB5FF08CD4B475823D05864431ADAFF51BE7F6BB ] C:\Program Files\iTunes\iTunesHelper.exe 20:21:30.0820 0x0bec iTunesHelper - ok 20:21:30.0871 0x0bec [ E97140424C378ACBD47DF493A6AB7235, 00F26F670AD6B03C465C4FC834DC993B551B8A8E73B603FE7B9CFFA893094A3D ] C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe 20:21:30.0875 0x0bec Adobe Reader Speed Launcher - ok 20:21:30.0946 0x0bec [ 3E04F1E482357B1FC8B088197C3D9FF8, 85524ADDC27ADC831EBBD24E079B412CFDC69E5F594BD153319087665A28D546 ] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe 20:21:30.0993 0x0bec Adobe ARM - ok 20:21:30.0996 0x0bec Sidebar - ok 20:21:31.0025 0x0bec [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe 20:21:31.0030 0x0bec mctadmin - ok 20:21:31.0030 0x0bec Sidebar - ok 20:21:31.0038 0x0bec [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe 20:21:31.0042 0x0bec mctadmin - ok 20:21:31.0043 0x0bec Waiting for KSN requests completion. In queue: 323 20:21:32.0046 0x0bec Waiting for KSN requests completion. In queue: 323 20:21:33.0046 0x0bec Waiting for KSN requests completion. In queue: 16 20:21:34.0046 0x0bec Waiting for KSN requests completion. In queue: 16 20:21:35.0164 0x0bec Win FW state via NFP2: disabled ( trusted ) 20:21:38.0374 0x0bec ============================================================ 20:21:38.0374 0x0bec Scan finished 20:21:38.0374 0x0bec ============================================================ 20:21:38.0388 0x0c78 Detected object count: 0 20:21:38.0388 0x0c78 Actual detected object count: 0