21:12:13.0758 0x2554 TDSS rootkit removing tool 3.1.0.28 Apr 9 2019 21:11:46 21:12:13.0758 0x2554 UEFI system 21:12:14.0167 0x2554 ============================================================ 21:12:14.0168 0x2554 Current date / time: 2022/05/09 21:12:14.0167 21:12:14.0168 0x2554 SystemInfo: 21:12:14.0168 0x2554 21:12:14.0168 0x2554 OS Version: 10.0.19044 ServicePack: 0.0 21:12:14.0168 0x2554 Product type: Workstation 21:12:14.0168 0x2554 ComputerName: ALVAROMARTIN-PC 21:12:14.0168 0x2554 UserName: JOSEMANUEL 21:12:14.0168 0x2554 Windows directory: C:\WINDOWS 21:12:14.0168 0x2554 System windows directory: C:\WINDOWS 21:12:14.0168 0x2554 Running under WOW64 21:12:14.0168 0x2554 Processor architecture: Intel x64 21:12:14.0168 0x2554 Number of processors: 8 21:12:14.0168 0x2554 Page size: 0x1000 21:12:14.0168 0x2554 Boot type: Normal boot 21:12:14.0168 0x2554 CodeIntegrityOptions = 0x0000C001 21:12:14.0168 0x2554 ============================================================ 21:12:14.0171 0x2554 KLMD ARK init status: drvProperties = 0xEF0F02, osBuild = 19041.0, osProperties = 0x1D 21:12:14.0172 0x2554 KLMD BG init status: drvProperties = 0xEF0F02, osBuild = 19041.0, osProperties = 0x1D 21:12:14.0172 0x2554 BG loaded 21:12:14.0462 0x2554 System UUID: {70F49D0D-D0F0-0471-7DE4-991410005C79} 21:12:15.0107 0x2554 !crdlk 21:12:15.0110 0x2554 Drive \Device\Harddisk0\DR0 - Size: 0x1DCF856000 ( 119.24 Gb ), SectorSize: 0x200, Cylinders: 0x3CCE, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'A' 21:12:15.0121 0x2554 Drive \Device\Harddisk1\DR1 - Size: 0x3A9800000 ( 14.65 Gb ), SectorSize: 0x200, Cylinders: 0x778, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W' 21:12:15.0122 0x2554 ============================================================ 21:12:15.0122 0x2554 \Device\Harddisk0\DR0: 21:12:15.0122 0x2554 GPT partitions: 21:12:15.0123 0x2554 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {4F1AF374-2872-45A6-9E78-B9EB74866DDA}, Name: EFI system partition, StartLBA 0x800, BlocksNum 0x82000 21:12:15.0123 0x2554 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {94FCCBA4-4A72-4048-9247-ACC058BAB1B0}, Name: Microsoft reserved partition, StartLBA 0x82800, BlocksNum 0x8000 21:12:15.0123 0x2554 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {085F8E6B-D231-4357-8344-5719F5B23093}, Name: Basic data partition, StartLBA 0x8A800, BlocksNum 0xEC04800 21:12:15.0123 0x2554 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {766C9882-4979-44B5-8C25-B9435AAAACDA}, Name: Basic data partition, StartLBA 0xEC8F000, BlocksNum 0x1EA000 21:12:15.0123 0x2554 MBR partitions: 21:12:15.0123 0x2554 \Device\Harddisk1\DR1: 21:12:15.0124 0x2554 MBR partitions: 21:12:15.0124 0x2554 \Device\Harddisk1\DR1\Partition1: MBR, Type 0xC, StartLBA 0x80, BlocksNum 0x1D4BF80 21:12:15.0124 0x2554 ============================================================ 21:12:15.0125 0x2554 C: <-> \Device\Harddisk0\DR0\Partition3 21:12:15.0125 0x2554 ============================================================ 21:12:15.0125 0x2554 Initialize success 21:12:15.0125 0x2554 ============================================================ 21:13:24.0978 0x3014 ============================================================ 21:13:24.0978 0x3014 Scan started 21:13:24.0978 0x3014 Mode: Manual; SigCheck; TDLFS; 21:13:24.0978 0x3014 ============================================================ 21:13:24.0978 0x3014 KSN ping started 21:13:25.0038 0x3014 KSN ping finished: true 21:13:25.0478 0x3014 ================ Scan BIOS ================================= 21:13:25.0479 0x3014 BIOS info: vendor = Insyde, version = F.33, releaseDate = 12/08/2017 21:13:25.0479 0x3014 Base board info: manufacturer = HP, product = 832A, version = 23.47 21:13:27.0600 0x3014 [ 09A32D55AF074128459E0D4779279903, 1D394CE168CC88B6BC3E62F36054F39964E7A1E9E49A53470CC7B96B76379EDB ] BIOS 21:13:27.0600 0x3014 BIOS - ok 21:13:27.0601 0x3014 ================ Scan system memory ======================== 21:13:27.0603 0x3014 System memory - ok 21:13:27.0606 0x3014 ================ Scan services ============================= 21:13:27.0659 0x3014 1394ohci - ok 21:13:27.0662 0x3014 3ware - ok 21:13:27.0674 0x3014 [ 812F71D780D24EDF3D1B6A6553C82C73, 2A8E05E908A123D6BDDC8D9FA48DD00579380F4009E29BC80E16CD1C65C585B2 ] 9c4baac1 C:\WINDOWS\system32\Drivers\9c4baac1.sys 21:13:27.0732 0x3014 9c4baac1 - ok 21:13:27.0749 0x3014 AarSvc - ok 21:13:27.0757 0x3014 ACPI - ok 21:13:27.0761 0x3014 AcpiDev - ok 21:13:27.0765 0x3014 acpiex - ok 21:13:27.0773 0x3014 acpipagr - ok 21:13:27.0778 0x3014 [ 33B5ED555018128792AFFCDC9AF7AFD2, 1E7C5FADA2486EE31289A4BEFB70AEA173190671C64995441651903CF31E5033 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys 21:13:27.0804 0x3014 AcpiPmi - ok 21:13:27.0808 0x3014 acpitime - ok 21:13:27.0812 0x3014 Acx01000 - ok 21:13:27.0822 0x3014 [ 437A1C97D7A8A11006C4458408DE4A9E, 8771A5C865FBD2B1FF9315665BB17A87B3D22C237A35A1A22B72C64326A48700 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 21:13:27.0833 0x3014 AdobeARMservice - ok 21:13:27.0841 0x3014 ADP80XX - ok 21:13:27.0847 0x3014 AFD - ok 21:13:27.0855 0x3014 afunix - ok 21:13:27.0860 0x3014 ahcache - ok 21:13:27.0866 0x3014 [ 526FE18DB976D9A1AE19FBC53FA690B1, 4E2623243A9BB61F7211E591C24EDB70B07974A7FA21E3F14C683F27E975777F ] AJRouter C:\WINDOWS\System32\AJRouter.dll 21:13:27.0903 0x3014 AJRouter - ok 21:13:27.0907 0x3014 ALG - ok 21:13:27.0911 0x3014 amdgpio2 - ok 21:13:27.0918 0x3014 amdi2c - ok 21:13:27.0924 0x3014 AmdK8 - ok 21:13:27.0927 0x3014 AmdPPM - ok 21:13:27.0934 0x3014 amdsata - ok 21:13:27.0940 0x3014 amdsbs - ok 21:13:27.0944 0x3014 amdxata - ok 21:13:27.0952 0x3014 [ 929D8C927E33378726CCAB85B67394A4, 8420A6D78FE94305C1F15FFADA20ADDEA141CAC98210B312AAB4C7BF45B138FE ] AppHostSvc C:\WINDOWS\system32\inetsrv\apphostsvc.dll 21:13:27.0978 0x3014 AppHostSvc - ok 21:13:27.0985 0x3014 AppID - ok 21:13:27.0991 0x3014 AppIDSvc - ok 21:13:27.0994 0x3014 Appinfo - ok 21:13:28.0000 0x3014 [ DA8376E75670EB1E25422AD6AFA967F8, 61C6533DADAD5C47BDCF996297E69501092FFB0D1F1DCC2AC6DF92E6043D5B43 ] AppleLowerFilter C:\WINDOWS\System32\drivers\AppleLowerFilter.sys 21:13:28.0016 0x3014 AppleLowerFilter - ok 21:13:28.0022 0x3014 applockerfltr - ok 21:13:28.0098 0x3014 AppReadiness - ok 21:13:28.0103 0x3014 AppXSvc - ok 21:13:28.0107 0x3014 arcsas - ok 21:13:28.0128 0x3014 [ E521372979F4F1AB092B6FC18EAF76F6, 64FAE007652F3F416E3F700BD4C80BFCA19B5076ABB231A549167A2C7D9A5A1A ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe 21:13:28.0143 0x3014 aspnet_state - ok 21:13:28.0147 0x3014 AsyncMac - ok 21:13:28.0156 0x3014 atapi - ok 21:13:28.0161 0x3014 AudioEndpointBuilder - ok 21:13:28.0166 0x3014 Audiosrv - ok 21:13:28.0175 0x3014 autotimesvc - ok 21:13:28.0181 0x3014 AxInstSV - ok 21:13:28.0190 0x3014 b06bdrv - ok 21:13:28.0195 0x3014 [ 26E2320D24C66EB72B36EB71EBEF2558, 7D06B6499FE915480DF4DAD658281C8B85F7AD71F49B089A270AE0B45713F2E9 ] bam C:\WINDOWS\system32\drivers\bam.sys 21:13:28.0206 0x3014 bam - ok 21:13:28.0222 0x3014 BasicDisplay - ok 21:13:28.0225 0x3014 BasicRender - ok 21:13:28.0233 0x3014 BcastDVRUserService - ok 21:13:28.0244 0x3014 [ 739D089777D2B66DBE7201E5EA4BA2D7, 9AD12E18A042C5B8EFB19297BC2E7BD1FEF75A138FEFB64C6BF0261FD3E53AB1 ] bcmfn2 C:\WINDOWS\System32\drivers\bcmfn2.sys 21:13:28.0267 0x3014 bcmfn2 - ok 21:13:28.0273 0x3014 BDESVC - ok 21:13:28.0276 0x3014 [ 4280B427B81EB8C265F3206E2298761E, 121AF03BBE6ECC1622C2540805A30AE9555EB5D5FE25B55939C045ECE7FC37EB ] Beep C:\WINDOWS\system32\drivers\Beep.sys 21:13:28.0304 0x3014 Beep - ok 21:13:28.0308 0x3014 BFE - ok 21:13:28.0311 0x3014 bindflt - ok 21:13:28.0318 0x3014 BITS - ok 21:13:28.0324 0x3014 BluetoothUserService - ok 21:13:28.0338 0x3014 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe 21:13:28.0354 0x3014 Bonjour Service - ok 21:13:28.0358 0x3014 bowser - ok 21:13:28.0362 0x3014 BrokerInfrastructure - ok 21:13:28.0368 0x3014 Browser - ok 21:13:28.0378 0x3014 [ DB109DA005B6FE2A350C5DD7CA768DFD, 241A0BFAEFB1B165C00EE75E8CA382B5935F5DF447DAD5AE9022B2B78317668E ] BrYNSvc C:\Program Files (x86)\Browny02\BrYNSvc.exe 21:13:28.0393 0x3014 BrYNSvc - detected UnsignedFile.Multi.Generic ( 1 ) 21:13:28.0499 0x3014 Detect skipped due to KSN trusted 21:13:28.0499 0x3014 BrYNSvc - ok 21:13:28.0515 0x3014 BTAGService - ok 21:13:28.0528 0x3014 BthA2dp - ok 21:13:28.0549 0x3014 BthAvctpSvc - ok 21:13:28.0559 0x3014 BthEnum - ok 21:13:28.0569 0x3014 BthHFAud - ok 21:13:28.0579 0x3014 BthHFEnum - ok 21:13:28.0587 0x3014 BthLEEnum - ok 21:13:28.0591 0x3014 BthMini - ok 21:13:28.0599 0x3014 [ 11D609CC74F0EB1DF6C0171331CDE9A1, 9412DC92F16C0B8A937D6FB1AD83D7169F4EC0F08FAE0E2B244346428CE99EE1 ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys 21:13:28.0612 0x3014 BTHMODEM - ok 21:13:28.0622 0x3014 [ 3AB6DD0A13F9AA1BC6A71E942CC45770, C39E471BD757CA12635F283FFC4407989447739D36830E81E8DD3E63E363B3D7 ] BthPan C:\WINDOWS\System32\drivers\bthpan.sys 21:13:28.0652 0x3014 BthPan - ok 21:13:28.0655 0x3014 BTHPORT - ok 21:13:28.0663 0x3014 [ D293AC628357F2F75B8579087F732970, 1E536D8863D695944214D55E9B0B4BFE04F705DB7ECA18A0CF8B37AAF4893B1E ] bthserv C:\WINDOWS\system32\bthserv.dll 21:13:28.0698 0x3014 bthserv - ok 21:13:28.0702 0x3014 BTHUSB - ok 21:13:28.0708 0x3014 bttflt - ok 21:13:28.0714 0x3014 buttonconverter - ok 21:13:28.0723 0x3014 [ E7690568D2A5FA3D4E6D28B42358A122, CDBD820B6D383EC0A8151EA4300435C2BAD085EC55DB185C5E16CAF961443888 ] CAD C:\WINDOWS\System32\drivers\CAD.sys 21:13:28.0733 0x3014 CAD - ok 21:13:28.0738 0x3014 camsvc - ok 21:13:28.0743 0x3014 CaptureService - ok 21:13:28.0755 0x3014 cbdhsvc - ok 21:13:28.0769 0x3014 cdfs - ok 21:13:28.0776 0x3014 CDPSvc - ok 21:13:28.0781 0x3014 CDPUserSvc - ok 21:13:28.0799 0x3014 cdrom - ok 21:13:28.0805 0x3014 CertPropSvc - ok 21:13:28.0811 0x3014 cht4iscsi - ok 21:13:28.0818 0x3014 cht4vbd - ok 21:13:28.0825 0x3014 CimFS - ok 21:13:28.0833 0x3014 [ 115CC1E142CE29C9006D59943108DF47, 564FA08C5BEC6DAF1A83C80C9139A6E1AA7E05D251DB3BA379B57C9FDAE83E1B ] circlass C:\WINDOWS\System32\drivers\circlass.sys 21:13:28.0850 0x3014 circlass - ok 21:13:28.0858 0x3014 CldFlt - ok 21:13:28.0863 0x3014 CLFS - ok 21:13:28.0871 0x3014 ClipSVC - ok 21:13:28.0891 0x3014 CmBatt - ok 21:13:28.0900 0x3014 CNG - ok 21:13:28.0908 0x3014 [ A46B4D1484227900F7615FE2A569D828, A06B8002E7A708890222C777DDF8B67FED7015C0943C1FC4F9036E9F9DC14494 ] cnghwassist C:\WINDOWS\system32\DRIVERS\cnghwassist.sys 21:13:28.0918 0x3014 cnghwassist - ok 21:13:28.0926 0x3014 [ 99392FDADF3CE5EB47403E5A52866E6F, 63CEF51971EB85D9823CE9A95F1ED9907D20525ED8E32230068CC36E9082A8C3 ] CompositeBus C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_7500cffa210c6946\CompositeBus.sys 21:13:28.0938 0x3014 CompositeBus - ok 21:13:28.0942 0x3014 COMSysApp - ok 21:13:28.0949 0x3014 condrv - ok 21:13:28.0957 0x3014 ConsentUxUserSvc - ok 21:13:28.0964 0x3014 CoreMessagingRegistrar - ok 21:13:28.0979 0x3014 [ A32E9041578ECB20CDD873AF3BE5DF52, 394BC6E82335F48628240DEC5443A1FF72B9F2F0C20127C899FCB86BE7ADBF09 ] cphs C:\WINDOWS\System32\DriverStore\FileRepository\ki135422.inf_amd64_819df826076efbf4\IntelCpHeciSvc.exe 21:13:29.0010 0x3014 cphs - ok 21:13:29.0025 0x3014 [ 0A7D8BA7CA3D1C5608A9B0E97A45988A, A7C6C780F89AFE6C04EE8B24E01AFAC7D8FE9DB5BCBAB73CDD7241F479EC0E97 ] cplspcon C:\WINDOWS\System32\DriverStore\FileRepository\ki135422.inf_amd64_819df826076efbf4\IntelCpHDCPSvc.exe 21:13:29.0048 0x3014 cplspcon - ok 21:13:29.0055 0x3014 CredentialEnrollmentManagerUserSvc - ok 21:13:29.0059 0x3014 CredentialEnrollmentManagerUserSvc_b199c - ok 21:13:29.0069 0x3014 CryptSvc - ok 21:13:29.0081 0x3014 dam - ok 21:13:29.0090 0x3014 DcomLaunch - ok 21:13:29.0096 0x3014 defragsvc - ok 21:13:29.0108 0x3014 DeviceAssociationBrokerSvc - ok 21:13:29.0123 0x3014 DeviceAssociationService - ok 21:13:29.0130 0x3014 DeviceInstall - ok 21:13:29.0139 0x3014 DevicePickerUserSvc - ok 21:13:29.0154 0x3014 DevicesFlowUserSvc - ok 21:13:29.0168 0x3014 [ F8BE99B9EA9B110F7CB3F46BA844C1FF, EABF953864C0AE4FB6426C0B7E92DD81EE4A8852081F9D2EA02B61D4C8DB6188 ] DevQueryBroker C:\WINDOWS\system32\DevQueryBroker.dll 21:13:29.0228 0x3014 DevQueryBroker - ok 21:13:29.0233 0x3014 Dfsc - ok 21:13:29.0239 0x3014 Dhcp - ok 21:13:29.0244 0x3014 diagnosticshub.standardcollector.service - ok 21:13:29.0251 0x3014 diagsvc - ok 21:13:29.0260 0x3014 DiagTrack - ok 21:13:29.0268 0x3014 disk - ok 21:13:29.0272 0x3014 DispBrokerDesktopSvc - ok 21:13:29.0277 0x3014 DisplayEnhancementService - ok 21:13:29.0283 0x3014 DmEnrollmentSvc - ok 21:13:29.0289 0x3014 dmvsc - ok 21:13:29.0293 0x3014 [ 2E8A026D6680C301ADF6D4B301A4CE8B, 2FDB34E2A61457308B0FEC938A2D6351F63D02BB67DC87FE4F2534E0048C8E89 ] dmwappushservice C:\WINDOWS\system32\dmwappushsvc.dll 21:13:29.0327 0x3014 dmwappushservice - ok 21:13:29.0330 0x3014 Dnscache - ok 21:13:29.0336 0x3014 dot3svc - ok 21:13:29.0340 0x3014 [ 0BD906A79F9CE3013F7D9D0AC45F9F9D, 2F7D5082E7E226D5EBEA164A8ACEE0A447C96EB1829224A6EFA3E7B4EFEE1D14 ] Dot4Print C:\WINDOWS\System32\drivers\Dot4Prt.sys 21:13:29.0345 0x3014 Dot4Print - ok 21:13:29.0355 0x3014 [ 9E65C33CB7FB50453F7F4407070EAF53, A8707BD19D584DAECA39990A2E791194140AFCA4FCE31F23CC7E931DF8C17361 ] DPS C:\WINDOWS\system32\dps.dll 21:13:29.0384 0x3014 DPS - ok 21:13:29.0391 0x3014 [ 913C55852754A502A586B745D6B7E898, 7D5FE24D092C6BDD5EC7433CC65D493C53C4F0E4BBB7D3504EC14BF211B9BF54 ] dptf_cpu C:\WINDOWS\System32\drivers\dptf_cpu.sys 21:13:29.0402 0x3014 dptf_cpu - ok 21:13:29.0407 0x3014 drmkaud - ok 21:13:29.0412 0x3014 DsmSvc - ok 21:13:29.0423 0x3014 DsSvc - ok 21:13:29.0434 0x3014 [ 81DF23EC4009D307479D5C169539CD67, 65AEE1E876CBE801A763F14930D15CF2E6A10697620B5903AA04BA30585A5676 ] DusmSvc C:\WINDOWS\System32\dusmsvc.dll 21:13:29.0467 0x3014 DusmSvc - ok 21:13:29.0473 0x3014 DXGKrnl - ok 21:13:29.0477 0x3014 Eaphost - ok 21:13:29.0485 0x3014 ebdrv - ok 21:13:29.0495 0x3014 [ D21437C262283650E8349AFA573AC03A, 9C256D462F0640855E1AB3D2C658CB4EDD7E061EB2782FD03481196D5ED93DB5 ] edgeupdate C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe 21:13:29.0510 0x3014 edgeupdate - ok 21:13:29.0517 0x3014 [ D21437C262283650E8349AFA573AC03A, 9C256D462F0640855E1AB3D2C658CB4EDD7E061EB2782FD03481196D5ED93DB5 ] edgeupdatem C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe 21:13:29.0529 0x3014 edgeupdatem - ok 21:13:29.0535 0x3014 EFS - ok 21:13:29.0543 0x3014 EhStorClass - ok 21:13:29.0550 0x3014 EhStorTcgDrv - ok 21:13:29.0557 0x3014 embeddedmode - ok 21:13:29.0561 0x3014 EntAppSvc - ok 21:13:29.0570 0x3014 ErrDev - ok 21:13:29.0618 0x3014 [ A8DE16EB4F3D5028789B4DE01EE89C2C, F609511D93BD4D5D2FE5969B0C8787ABC0F498C4E8B45C7E604322C5E8DDC816 ] esifsvc C:\WINDOWS\system32\Intel\DPTF\esif_uf.exe 21:13:29.0663 0x3014 esifsvc - ok 21:13:29.0674 0x3014 [ 14276117BB46BFA6BC7F6ABBDB46629A, 4EEE41FAF92CBBA87617FDBCF4E291BF7147B9430439E65AB2A822B5569B921B ] esif_lf C:\WINDOWS\system32\DRIVERS\esif_lf.sys 21:13:29.0690 0x3014 esif_lf - ok 21:13:29.0694 0x3014 EventLog - ok 21:13:29.0700 0x3014 EventSystem - ok 21:13:29.0720 0x3014 [ F70A099BC16564F178EDA982377911D5, 5F212EE1EA8D1E8DEEA158855E9A584313E6C8F147FD359946DCAD0786CF66E6 ] EvtEng C:\Program Files\Intel\WiFi\bin\EvtEng.exe 21:13:29.0743 0x3014 EvtEng - ok 21:13:29.0748 0x3014 exfat - ok 21:13:29.0753 0x3014 fastfat - ok 21:13:29.0758 0x3014 Fax - ok 21:13:29.0764 0x3014 fdc - ok 21:13:29.0772 0x3014 [ 0439B82F6034ADA3E71C0C9F169082BD, 0918728669077235B2F2DB7EE22CE819FA570D8A7A497BA5F11E76774EA75099 ] fdPHost C:\WINDOWS\system32\fdPHost.dll 21:13:29.0799 0x3014 fdPHost - ok 21:13:29.0805 0x3014 [ AD64C91B3CC71226785DCE688842E5AB, 056E1091468D268E7970045AB329EB3DFF48BB6B22448046A14C309678847B6E ] FDResPub C:\WINDOWS\system32\fdrespub.dll 21:13:29.0822 0x3014 FDResPub - ok 21:13:29.0826 0x3014 fhsvc - ok 21:13:29.0833 0x3014 [ 8E59D944EE4EFAED65A341A71297C4CD, CFFFD7007AB7FB04ECB44D0079BFE8EEB53AECC988135199C388AF425EBCF2AD ] FileCrypt C:\WINDOWS\system32\drivers\filecrypt.sys 21:13:29.0845 0x3014 FileCrypt - ok 21:13:29.0854 0x3014 FileInfo - ok 21:13:29.0862 0x3014 Filetrace - ok 21:13:29.0873 0x3014 flpydisk - ok 21:13:29.0878 0x3014 FltMgr - ok 21:13:29.0885 0x3014 FontCache - ok 21:13:29.0892 0x3014 FontCache3.0.0.0 - ok 21:13:29.0898 0x3014 FrameServer - ok 21:13:29.0906 0x3014 FsDepends - ok 21:13:29.0911 0x3014 Fs_Rec - ok 21:13:29.0918 0x3014 fvevol - ok 21:13:29.0925 0x3014 [ A1E06E4E8CB863C74DE428D4D6681185, DA46502C009FD4C847A547610DEE2684A5A583467BF76009BD46104AAE2F6B1B ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys 21:13:29.0936 0x3014 gencounter - ok 21:13:29.0940 0x3014 genericusbfn - ok 21:13:29.0970 0x3014 [ 66CB8A48C453648F7FB7B82EE55400ED, CB4C24AA3CECDBB156F662311558225BC5F522AACD85945BF848E05A2E341C58 ] GoogleChromeElevationService C:\Program Files (x86)\Google\Chrome\Application\101.0.4951.54\elevation_service.exe 21:13:30.0019 0x3014 GoogleChromeElevationService - ok 21:13:30.0026 0x3014 GPIOClx0101 - ok 21:13:30.0035 0x3014 gpsvc - ok 21:13:30.0043 0x3014 [ 8C06046B6A8C1ACDAEA15682058FDFB4, 3E0CC301249B7D8D5BEB932F4DFD1EAB8037679EC153772F63B430713903B0AC ] GpuEnergyDrv C:\WINDOWS\system32\drivers\gpuenergydrv.sys 21:13:30.0071 0x3014 GpuEnergyDrv - ok 21:13:30.0078 0x3014 GraphicsPerfSvc - ok 21:13:30.0087 0x3014 [ 79B804E8A81BFD9C6A3749B4F3EE86E2, BFBDD26604FC653E01976EF23C92CF7ADB59F9E80F47350F1A72B7876BBED60A ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 21:13:30.0095 0x3014 gupdate - ok 21:13:30.0102 0x3014 [ 79B804E8A81BFD9C6A3749B4F3EE86E2, BFBDD26604FC653E01976EF23C92CF7ADB59F9E80F47350F1A72B7876BBED60A ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 21:13:30.0109 0x3014 gupdatem - ok 21:13:30.0114 0x3014 HdAudAddService - ok 21:13:30.0121 0x3014 HDAudBus - ok 21:13:30.0125 0x3014 HidBatt - ok 21:13:30.0129 0x3014 HidBth - ok 21:13:30.0137 0x3014 hidi2c - ok 21:13:30.0142 0x3014 hidinterrupt - ok 21:13:30.0148 0x3014 [ 6B46E3061EC0523CB46ED28060FCD946, 6089305AF73CC584963865482448CD5CA4252EC9BD3E72AF16D45E4F95C3EBF2 ] HidIr C:\WINDOWS\System32\drivers\hidir.sys 21:13:30.0163 0x3014 HidIr - ok 21:13:30.0171 0x3014 hidserv - ok 21:13:30.0179 0x3014 hidspi - ok 21:13:30.0188 0x3014 HidUsb - ok 21:13:30.0198 0x3014 HP Comm Recover - ok 21:13:30.0206 0x3014 HPJumpStartBridge - ok 21:13:30.0229 0x3014 [ 0E0E87820BB4431B176A00FB95B5503F, 91D35BEDEAEFA32F8B6A31318E70B954CFA1AFA74D02E3918FEF8135C82C57B3 ] hpqcaslwmiex C:\Program Files (x86)\HP\Shared\hpqwmiex.exe 21:13:30.0258 0x3014 hpqcaslwmiex - ok 21:13:30.0264 0x3014 HpSAMD - ok 21:13:30.0267 0x3014 HPSupportSolutionsFrameworkService - ok 21:13:30.0282 0x3014 [ 8C433B757234147A90650869CB856C80, F691956F9852D6C8900AECF7FCB4CA8D1EAF3412CAC746AED3CF9D5BD601683C ] HPWMISVC c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe 21:13:30.0305 0x3014 HPWMISVC - ok 21:13:30.0310 0x3014 HTTP - ok 21:13:30.0315 0x3014 [ 849A66D34BC2DAD0044FAC2FEE1AF956, A5F6858AA556D9180C303EA3ED02EB6D6D8EB55A100B3918654281A01198D8E8 ] hvcrash C:\WINDOWS\System32\drivers\hvcrash.sys 21:13:30.0324 0x3014 hvcrash - ok 21:13:30.0329 0x3014 [ 855F55BB462B7D8B6BC31A94A592DF3D, 776C772E69CF9D81D8511201813DD79F2106DC7D2547B4FA700432AE9B73C202 ] HvHost C:\WINDOWS\System32\hvhostsvc.dll 21:13:30.0354 0x3014 HvHost - ok 21:13:30.0358 0x3014 hvservice - ok 21:13:30.0365 0x3014 [ 5DC7DFED5FEDD923B874B51D0C6752BB, 69714A8B74EB02282572B34E156051FFC10693B816905CE18A8C6C8CCB95B846 ] HwNClx0101 C:\WINDOWS\system32\Drivers\mshwnclx.sys 21:13:30.0380 0x3014 HwNClx0101 - ok 21:13:30.0388 0x3014 hwpolicy - ok 21:13:30.0393 0x3014 hyperkbd - ok 21:13:30.0402 0x3014 HyperVideo - ok 21:13:30.0409 0x3014 i8042prt - ok 21:13:30.0413 0x3014 iagpio - ok 21:13:30.0420 0x3014 iai2c - ok 21:13:30.0426 0x3014 iaLPSS2i_GPIO2 - ok 21:13:30.0431 0x3014 iaLPSS2i_GPIO2_BXT_P - ok 21:13:30.0439 0x3014 iaLPSS2i_GPIO2_CNL - ok 21:13:30.0444 0x3014 iaLPSS2i_GPIO2_GLK - ok 21:13:30.0451 0x3014 iaLPSS2i_I2C - ok 21:13:30.0457 0x3014 iaLPSS2i_I2C_BXT_P - ok 21:13:30.0462 0x3014 iaLPSS2i_I2C_CNL - ok 21:13:30.0471 0x3014 iaLPSS2i_I2C_GLK - ok 21:13:30.0477 0x3014 iaLPSSi_GPIO - ok 21:13:30.0485 0x3014 iaLPSSi_I2C - ok 21:13:30.0507 0x3014 [ 9460C28EAE5A0A6A2538CCE78A5AF7C7, 91F7C32F72386EA3B2210019EE0F4A7CC5AC715994409E4C5F922DFE803FEBC4 ] iaStorAC C:\WINDOWS\system32\drivers\iaStorAC.sys 21:13:30.0540 0x3014 iaStorAC - ok 21:13:30.0545 0x3014 iaStorAVC - ok 21:13:30.0552 0x3014 iaStorV - ok 21:13:30.0558 0x3014 ibbus - ok 21:13:30.0562 0x3014 ibtsiva - ok 21:13:30.0574 0x3014 [ 1E6BB079075644D9CD54C6ADA779D143, 1EA76904F285A6A39FC41763164C05506FF023198B53EED21F5D6D1432913522 ] ibtusb C:\WINDOWS\System32\DriverStore\FileRepository\ibtusb.inf_amd64_da5167bdd66ed8f1\ibtusb.sys 21:13:30.0589 0x3014 ibtusb - ok 21:13:30.0594 0x3014 [ 0FEB54315573AECF3CB8112B9151B144, CF7E71A1AE5180952FB700A0FBAEDF5067AACC692E2CC475ACE354420064470C ] ICCWDT C:\WINDOWS\System32\drivers\ICCWDT.sys 21:13:30.0605 0x3014 ICCWDT - ok 21:13:30.0609 0x3014 icssvc - ok 21:13:30.0614 0x3014 igfx - ok 21:13:30.0627 0x3014 [ C240F04C7E1F36B27D2E878DE38AE1EC, F170A00293B47F90EB1038B2C6193FAD6D2BAE90D2343CF91CE660775A81B3ED ] igfxCUIService2.0.0.0 C:\WINDOWS\System32\DriverStore\FileRepository\ki135422.inf_amd64_819df826076efbf4\igfxCUIService.exe 21:13:30.0643 0x3014 igfxCUIService2.0.0.0 - ok 21:13:30.0647 0x3014 IKEEXT - ok 21:13:30.0654 0x3014 IndirectKmd - ok 21:13:30.0662 0x3014 InstallService - ok 21:13:30.0770 0x3014 [ EC765E4F4AB6088B2065DA9E4C221039, 7010510201D50333213EF2752184B562D7DD292BAE058B5F0332AAE68BCE0327 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys 21:13:30.0905 0x3014 IntcAzAudAddService - ok 21:13:30.0919 0x3014 [ 2F6F287B8E0FE80F4F9C8DB1400B66FD, BE978065DEAE053D73744DBC506788B551D0A65336078BBEAADC9B1946F4C25E ] IntcDAud C:\WINDOWS\System32\DriverStore\FileRepository\intcdaud.inf_amd64_d148a0ef920e06c0\IntcDAud.sys 21:13:30.0935 0x3014 IntcDAud - ok 21:13:30.0954 0x3014 [ BB32C8AD10E10C384EA6C02BB26F956A, 1B1C46182B3829BB96800F833F932AB19A3C8515770549443AA3872D6C9C4C28 ] Intel(R) Capability Licensing Service TCP IP Interface C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\SocketHeciServer.exe 21:13:30.0980 0x3014 Intel(R) Capability Licensing Service TCP IP Interface - ok 21:13:30.0995 0x3014 [ B4675C07F9CC7A40F6818EB60D221C9D, 2CCFD4CCD1BADD4DA0C2D63CA19C20672D1DA072E203BB37D174B6A0F67A2704 ] Intel(R) TPM Provisioning Service C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\TPMProvisioningService.exe 21:13:31.0018 0x3014 Intel(R) TPM Provisioning Service - ok 21:13:31.0024 0x3014 intelide - ok 21:13:31.0029 0x3014 intelpep - ok 21:13:31.0035 0x3014 [ AECBF5BE2F9A2A50B978E0BF31041A81, A62F436C66DEFEB438A7891857DFB830995714A7E4FE4BDCA6B4EB1606BD2101 ] intelpmax C:\WINDOWS\System32\drivers\intelpmax.sys 21:13:31.0050 0x3014 intelpmax - ok 21:13:31.0058 0x3014 intelppm - ok 21:13:31.0066 0x3014 iorate - ok 21:13:31.0075 0x3014 IpFilterDriver - ok 21:13:31.0082 0x3014 iphlpsvc - ok 21:13:31.0090 0x3014 IPMIDRV - ok 21:13:31.0099 0x3014 [ F63572DF4295C78B3F7036AEDA878176, B71EB3CC4EC95BC9A3FA217736C6C36C756935714D7E16E34C05D913B829CB9C ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys 21:13:31.0118 0x3014 IPNAT - ok 21:13:31.0126 0x3014 [ B5B6D1F86E40E785D6650DB923DB6BEA, 7A2D92A2274E0379B5FA6351D18E2F0DD55960BB783EA3528FE9E303E1A4256D ] IPT C:\WINDOWS\System32\drivers\ipt.sys 21:13:31.0135 0x3014 IPT - ok 21:13:31.0140 0x3014 [ 77494E26B28465D2A09B9455F8A3B34E, B778D4BC71A5F5CF687175CA53AC342E4740156D4B96E6E96D918BD46C2C1459 ] IpxlatCfgSvc C:\WINDOWS\System32\IpxlatCfg.dll 21:13:31.0170 0x3014 IpxlatCfgSvc - ok 21:13:31.0174 0x3014 isapnp - ok 21:13:31.0178 0x3014 iScsiPrt - ok 21:13:31.0185 0x3014 ItSas35i - ok 21:13:31.0202 0x3014 [ B51AE7EE399283B472F9D861FD3B99A4, B764792EDF4949BDA489B99320B01B9C4B9909B3CB4EEA7703362830DC057645 ] jhi_service C:\WINDOWS\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe 21:13:31.0223 0x3014 jhi_service - ok 21:13:31.0228 0x3014 kbdclass - ok 21:13:31.0234 0x3014 kbdhid - ok 21:13:31.0241 0x3014 kdnic - ok 21:13:31.0245 0x3014 KeyIso - ok 21:13:31.0255 0x3014 [ 22A3D933BCA83971131521527B5F1DF7, 47498231D65F56AEAC73184F07B9CB946FB243FA1D1FC787F82BDA8999BE5E32 ] klupd_9c4baac1a_arkmon_22A3D933 C:\KVRT2020_Data\Temp\22A3D933BCA83971131521527B5F1DF7\klupd_9c4baac1a_arkmon.sys 21:13:31.0295 0x3014 klupd_9c4baac1a_arkmon_22A3D933 - ok 21:13:31.0299 0x3014 KSecDD - ok 21:13:31.0302 0x3014 KSecPkg - ok 21:13:31.0306 0x3014 ksthunk - ok 21:13:31.0316 0x3014 [ DAE67BD7EC6ED569438F5CA38BFBB458, 672CA98525D6DD799A01A3BC3A62AB7B4544D62ECEB3615FAC05BFB97B389D23 ] KtmRm C:\WINDOWS\system32\msdtckrm.dll 21:13:31.0375 0x3014 KtmRm - ok 21:13:31.0379 0x3014 LanmanServer - ok 21:13:31.0386 0x3014 LanmanWorkstation - ok 21:13:31.0392 0x3014 [ A997488F4EDAAD59C748CF9FB1D9DAC0, A0B145041F984DD4E0A6F8D0E9C8363DA6F2DA7460E140F028C320CEAC03759C ] lfsvc C:\WINDOWS\System32\lfsvc.dll 21:13:31.0411 0x3014 lfsvc - ok 21:13:31.0415 0x3014 LicenseManager - ok 21:13:31.0424 0x3014 [ 78779BD92081CB27967E77561683AFBE, 05EC91E194336D1BB1EE323E70FAC54F6DC0CEF53FD4925F394399531A37A0DD ] lltdio C:\WINDOWS\system32\drivers\lltdio.sys 21:13:31.0439 0x3014 lltdio - ok 21:13:31.0444 0x3014 lltdsvc - ok 21:13:31.0448 0x3014 lmhosts - ok 21:13:31.0512 0x3014 [ 3EA726927781374110A7176DC0640838, 4B51BB1708809FC435C164323EF29342F2500AC135C69E2F312B0F5475A9FA02 ] LMS C:\WINDOWS\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe 21:13:31.0602 0x3014 LMS - ok 21:13:31.0615 0x3014 LSI_SAS - ok 21:13:31.0620 0x3014 LSI_SAS2i - ok 21:13:31.0624 0x3014 LSI_SAS3i - ok 21:13:31.0627 0x3014 LSI_SSS - ok 21:13:31.0634 0x3014 LSM - ok 21:13:31.0639 0x3014 luafv - ok 21:13:31.0643 0x3014 LxpSvc - ok 21:13:31.0649 0x3014 [ AE03D8F1B7863268EAED2FE0105ED75F, F5172A1A3E24FC5271FCB0118861EA0EC33AA8ABB01AE9CAD50E2F032B92486C ] MapsBroker C:\WINDOWS\System32\moshost.dll 21:13:31.0669 0x3014 MapsBroker - ok 21:13:31.0673 0x3014 mausbhost - ok 21:13:31.0677 0x3014 mausbip - ok 21:13:31.0686 0x3014 [ 6A21162E1C8A9F65787B14BC439EB077, 8B7990E1C676F53918E41F6B18B20179D77E598352D9243B05E2EA22B2D9E4FE ] MBAMChameleon C:\WINDOWS\System32\Drivers\MbamChameleon.sys 21:13:31.0724 0x3014 MBAMChameleon - ok 21:13:31.0728 0x3014 [ 9E77C51E14FA9A323EE1635DC74ECC07, B5619D758AE6A65C1663F065E53E6B68A00511E7D7ACCB3E07ED94BFD0B1EDE0 ] MbamElam C:\WINDOWS\system32\DRIVERS\MbamElam.sys 21:13:31.0739 0x3014 MbamElam - ok 21:13:31.0861 0x3014 [ 8D9715AC602DC4A217C08DA625F77C6E, 1AA6225752B853FEE0B00BB239B57142F29B3D4278B292D3C79508C79ED8B1E7 ] MBAMService C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe 21:13:32.0006 0x3014 MBAMService - ok 21:13:32.0026 0x3014 [ D3C2F03EC84F2A89B3C97763D225F730, E0A0127C0EFA0D8A6449FE2432F22DC5D906D7FFCBD3EDD1825446AD14195819 ] MBAMSwissArmy C:\WINDOWS\System32\Drivers\mbamswissarmy.sys 21:13:32.0038 0x3014 MBAMSwissArmy - ok 21:13:32.0042 0x3014 MbbCx - ok 21:13:32.0046 0x3014 megasas - ok 21:13:32.0052 0x3014 megasas2i - ok 21:13:32.0058 0x3014 megasas35i - ok 21:13:32.0061 0x3014 megasr - ok 21:13:32.0073 0x3014 [ F27727AA7412C4336B06C4397DE5A48B, B87BAA09CDD710A168561B7E3639E4502F6428316E5E459B50A968EDDDAA2D98 ] MEIx64 C:\WINDOWS\System32\DriverStore\FileRepository\heci.inf_amd64_d01e7c2e2b4c1b72\x64\TeeDriverW10x64.sys 21:13:32.0087 0x3014 MEIx64 - ok 21:13:32.0091 0x3014 MessagingService - ok 21:13:32.0099 0x3014 MicrosoftEdgeElevationService - ok 21:13:32.0107 0x3014 [ B74FFC6301B3312A9F59E04E487BC72A, 76F71824E80D10EB71BEDE5EE3A64CAD7CAC3DDFBB6670D1537E6B75FF0217E9 ] Microsoft_Bluetooth_AvrcpTransport C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys 21:13:32.0119 0x3014 Microsoft_Bluetooth_AvrcpTransport - ok 21:13:32.0124 0x3014 MixedRealityOpenXRSvc - ok 21:13:32.0128 0x3014 mlx4_bus - ok 21:13:32.0134 0x3014 MMCSS - ok 21:13:32.0140 0x3014 Modem - ok 21:13:32.0144 0x3014 monitor - ok 21:13:32.0151 0x3014 mouclass - ok 21:13:32.0159 0x3014 mouhid - ok 21:13:32.0164 0x3014 mountmgr - ok 21:13:32.0175 0x3014 [ 97D3A85D7EF930E7035DAAC1622AD407, FFF1FB59F4219B8D46FCB16C8A719F7A9442351FEC788E2C6D790F899B2191FB ] MpKsl9a7a016f C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F34D059E-2B97-43C0-B7B7-B021B709C2E8}\MpKslDrv.sys 21:13:32.0204 0x3014 MpKsl9a7a016f - ok 21:13:32.0212 0x3014 mpsdrv - ok 21:13:32.0223 0x3014 mpssvc - ok 21:13:32.0231 0x3014 MRxDAV - ok 21:13:32.0239 0x3014 mrxsmb - ok 21:13:32.0244 0x3014 mrxsmb10 - ok 21:13:32.0252 0x3014 mrxsmb20 - ok 21:13:32.0260 0x3014 [ E587396A4C8151ABBF13A96C4465DE31, A3AA5D51E34657479CFCDC3DBB7821B7255F7CB57D5686B7F709A7953AD537EB ] MsBridge C:\WINDOWS\system32\drivers\bridge.sys 21:13:32.0286 0x3014 MsBridge - ok 21:13:32.0293 0x3014 [ 2EF846AC66E181BE820B513DBC15B5D2, EDFE71025C352D0DABEC7B9506C5945BB0EC11F8DB540DB8CB1116C2EA1648A8 ] MSDTC C:\WINDOWS\System32\msdtc.exe 21:13:32.0313 0x3014 MSDTC - ok 21:13:32.0325 0x3014 Msfs - ok 21:13:32.0331 0x3014 [ 6092FD060EC4132A799BDAD61845DDB7, B45F9D3A71FC8A73AED3C5B8CF6F14A25EBDD3D4D47C9F39FFCD75C7D22F4A9E ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys 21:13:32.0340 0x3014 msgpiowin32 - ok 21:13:32.0344 0x3014 mshidkmdf - ok 21:13:32.0350 0x3014 [ 9E90FE6DF363D2427A5C773120E7B27D, 1FDB7E28CCAF757603C4B754E1AC9C470E5E60E85DE067375902F108F5E34608 ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys 21:13:32.0375 0x3014 mshidumdf - ok 21:13:32.0379 0x3014 msisadrv - ok 21:13:32.0384 0x3014 MSiSCSI - ok 21:13:32.0390 0x3014 msiserver - ok 21:13:32.0394 0x3014 MSKSSRV - ok 21:13:32.0400 0x3014 [ 9FB5040C8CEAE4C32B7884ECBBCAFDAF, 0EC3E53C5B1B202440DE22A5BF7E1EBE9AF5BBB6BA69DB9D018A6D8EC97B477E ] MsLldp C:\WINDOWS\system32\drivers\mslldp.sys 21:13:32.0423 0x3014 MsLldp - ok 21:13:32.0426 0x3014 MSPCLOCK - ok 21:13:32.0431 0x3014 MSPQM - ok 21:13:32.0438 0x3014 MsQuic - ok 21:13:32.0442 0x3014 MsRPC - ok 21:13:32.0448 0x3014 mssmbios - ok 21:13:32.0455 0x3014 MSTEE - ok 21:13:32.0459 0x3014 MTConfig - ok 21:13:32.0463 0x3014 Mup - ok 21:13:32.0473 0x3014 mvumis - ok 21:13:32.0485 0x3014 [ E737011E12F3D350202E130EF0F5EBC7, 85F4576C6468CA8A6BDFBBF566138C6E28D516418E18B8CED6649B8912A141B8 ] MyWiFiDHCPDNS C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe 21:13:32.0495 0x3014 MyWiFiDHCPDNS - ok 21:13:32.0505 0x3014 NativeWifiP - ok 21:13:32.0510 0x3014 NaturalAuthentication - ok 21:13:32.0518 0x3014 [ D47A20839608B8213065D7AFC8C42195, 7B0187BE9705ED2F925616C13B3744BAC0A9C96B21BE503D96BC9EE7EE125B33 ] NcaSvc C:\WINDOWS\System32\ncasvc.dll 21:13:32.0557 0x3014 NcaSvc - ok 21:13:32.0561 0x3014 NcbService - ok 21:13:32.0569 0x3014 [ 8C938E851CDF2CE30BBEA14555B61820, F853F526C811893BD40B1124BAEC543099381E7BF091729B6A6665DF3CE10B94 ] NcdAutoSetup C:\WINDOWS\System32\NcdAutoSetup.dll 21:13:32.0594 0x3014 NcdAutoSetup - ok 21:13:32.0601 0x3014 ndfltr - ok 21:13:32.0608 0x3014 NDIS - ok 21:13:32.0613 0x3014 [ 6BEC0929C7A7BF2A7C44F585ECC7DAEB, 5F6395268CBD26A4B90960479040C114B2C8A3F24C188C2D5F62D6AB43A637D1 ] NdisCap C:\WINDOWS\system32\drivers\ndiscap.sys 21:13:32.0626 0x3014 NdisCap - ok 21:13:32.0629 0x3014 NdisImPlatform - ok 21:13:32.0635 0x3014 NdisTapi - ok 21:13:32.0641 0x3014 Ndisuio - ok 21:13:32.0645 0x3014 NdisVirtualBus - ok 21:13:32.0653 0x3014 NdisWan - ok 21:13:32.0657 0x3014 ndiswanlegacy - ok 21:13:32.0663 0x3014 [ 33CDAEDC7CBE8339A8324CEC2461BFB4, DAAEACDB4506D2BDDED61957D92FB4983E11D9CE6E7B25119B4CBFB431C945F4 ] NDKPing C:\WINDOWS\system32\drivers\NDKPing.sys 21:13:32.0673 0x3014 NDKPing - ok 21:13:32.0676 0x3014 ndproxy - ok 21:13:32.0683 0x3014 [ 77621E74FD79B267071A0D12C643A48A, 8228B7D1237A0FFABCCC150B299EA494C8F0CB4CCB51AB0DBFF08CBAA9EFC4BB ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys 21:13:32.0699 0x3014 Ndu - ok 21:13:32.0704 0x3014 NetAdapterCx - ok 21:13:32.0708 0x3014 NetBIOS - ok 21:13:32.0717 0x3014 NetBT - ok 21:13:32.0722 0x3014 Netlogon - ok 21:13:32.0726 0x3014 Netman - ok 21:13:32.0730 0x3014 netprofm - ok 21:13:32.0737 0x3014 NetSetupSvc - ok 21:13:32.0747 0x3014 [ B9D455C60292DF5FCB064834CA5802AA, 75DCE4E5FA08CCEAF4D3D30FE8E26903FCDD14CC852E820F63B40F374C706DBD ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 21:13:32.0759 0x3014 NetTcpPortSharing - ok 21:13:32.0763 0x3014 netvsc - ok 21:13:32.0894 0x3014 [ E52AE25649C812C200309BDF25E27667, 6477AC5399D5201DDD314F4DC35AD3B938E2A947D913A29B9C47DAE1DD072B66 ] Netwtw04 C:\WINDOWS\System32\drivers\Netwtw04.sys 21:13:33.0098 0x3014 Netwtw04 - ok 21:13:33.0113 0x3014 NgcCtnrSvc - ok 21:13:33.0119 0x3014 NgcSvc - ok 21:13:33.0124 0x3014 NlaSvc - ok 21:13:33.0128 0x3014 Npfs - ok 21:13:33.0135 0x3014 npsvctrig - ok 21:13:33.0141 0x3014 nsi - ok 21:13:33.0146 0x3014 nsiproxy - ok 21:13:33.0157 0x3014 Ntfs - ok 21:13:33.0161 0x3014 Null - ok 21:13:33.0167 0x3014 nvdimm - ok 21:13:33.0176 0x3014 nvraid - ok 21:13:33.0180 0x3014 nvstor - ok 21:13:33.0188 0x3014 OneSyncSvc - ok 21:13:33.0199 0x3014 [ 30B5F9FB0C35AE6B4A0851D24CE2EE8B, 0340E77E8EC2ADC21B8DDD9C9CC95B3F4BCAFD54618A333C72D7D9587D593B83 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 21:13:33.0210 0x3014 ose - ok 21:13:33.0220 0x3014 [ E0406C2951A24073AB920705A9CC9D59, D4865B7B9812CEAB1D18F7FFE3C6AAA90538C91E4A6B61199F84B9A5BE5A6D3D ] osrss C:\WINDOWS\system32\osrss.dll 21:13:33.0242 0x3014 osrss - ok 21:13:33.0249 0x3014 p2pimsvc - ok 21:13:33.0262 0x3014 [ DA97CD5815EC123BC88382C08D465B9E, 46F5EA2E3D590FB10E14BC811612B6EF87C805B359A652D2C6BFE4840D5D6AA2 ] p2psvc C:\WINDOWS\system32\p2psvc.dll 21:13:33.0292 0x3014 p2psvc - ok 21:13:33.0296 0x3014 Parport - ok 21:13:33.0304 0x3014 partmgr - ok 21:13:33.0309 0x3014 PcaSvc - ok 21:13:33.0312 0x3014 pci - ok 21:13:33.0321 0x3014 pciide - ok 21:13:33.0326 0x3014 pcmcia - ok 21:13:33.0332 0x3014 pcw - ok 21:13:33.0338 0x3014 pdc - ok 21:13:33.0343 0x3014 PEAUTH - ok 21:13:33.0348 0x3014 perceptionsimulation - ok 21:13:33.0355 0x3014 percsas2i - ok 21:13:33.0360 0x3014 percsas3i - ok 21:13:33.0380 0x3014 [ 2FC7CFCEDBF7E038351C7CEB1036D2E1, 41D7DA706F0CF613DF768B6795CD09C5C1035F9F101051FB58F5042EB4352DB6 ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe 21:13:33.0508 0x3014 PerfHost - ok 21:13:33.0523 0x3014 PhoneSvc - ok 21:13:33.0527 0x3014 PimIndexMaintenanceSvc - ok 21:13:33.0537 0x3014 PktMon - ok 21:13:33.0564 0x3014 [ 9E431A5D697432DD6F4DB48C9A185104, 44C16E194258C9143A45F4022F9C5DE229E217D6FF7F944F105FE631BE9EF4A7 ] pla C:\WINDOWS\system32\pla.dll 21:13:33.0636 0x3014 pla - ok 21:13:33.0642 0x3014 PlugPlay - ok 21:13:33.0648 0x3014 pmem - ok 21:13:33.0660 0x3014 [ 2769F200292C0F941A10BD60C33EA4A6, B8345C32585C45E6248D7194B1071F2B8617718E7C9B270AAF44C132D029DB4C ] PNPMEM C:\WINDOWS\System32\drivers\pnpmem.sys 21:13:33.0684 0x3014 PNPMEM - ok 21:13:33.0696 0x3014 [ 6AAAC8AD69AEFBE5FE04738B687EE85E, 83427082298E2FC021D5D39A43DB4A5783D95213F2CA8D3A997DB6C815BD9CB2 ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll 21:13:33.0720 0x3014 PNRPAutoReg - ok 21:13:33.0724 0x3014 PNRPsvc - ok 21:13:33.0729 0x3014 PolicyAgent - ok 21:13:33.0738 0x3014 portcfg - ok 21:13:33.0744 0x3014 Power - ok 21:13:33.0751 0x3014 PptpMiniport - ok 21:13:33.0826 0x3014 [ E34977367F3FC088AE2740D86AE968C9, 4CCA56D00747AA1E8F2DC9A9EAB2E53B950A24E1A6DDBF92A91655D9412F512E ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll 21:13:33.0942 0x3014 PrintNotify - ok 21:13:33.0949 0x3014 PrintWorkflowUserSvc - ok 21:13:33.0955 0x3014 Processor - ok 21:13:33.0959 0x3014 ProfSvc - ok 21:13:33.0963 0x3014 Psched - ok 21:13:33.0970 0x3014 PushToInstall - ok 21:13:33.0979 0x3014 [ 2F3808790D517E5E5E6ABF7177875C02, BE1A79A6498697EB86FC29638324A853197B49BC06AE3EB1130793F710926998 ] QWAVE C:\WINDOWS\system32\qwave.dll 21:13:34.0023 0x3014 QWAVE - ok 21:13:34.0028 0x3014 [ CE51A9A997D2830C6C64A36D7F8D8879, 706D683CAF92C259C121222446D34ED43F6E8872407C3615E2ED118ACD24D21D ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys 21:13:34.0042 0x3014 QWAVEdrv - ok 21:13:34.0045 0x3014 Ramdisk - ok 21:13:34.0055 0x3014 RasAcd - ok 21:13:34.0060 0x3014 RasAgileVpn - ok 21:13:34.0065 0x3014 RasAuto - ok 21:13:34.0071 0x3014 Rasl2tp - ok 21:13:34.0076 0x3014 RasMan - ok 21:13:34.0081 0x3014 RasPppoe - ok 21:13:34.0088 0x3014 RasSstp - ok 21:13:34.0093 0x3014 rdbss - ok 21:13:34.0102 0x3014 [ B7BAD23CA994EFF8EA11261626326004, 056495FB4A54984CE9D28D7B45550990D4A4B0736669F0F69138BEF51A695EFA ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys 21:13:34.0120 0x3014 rdpbus - ok 21:13:34.0124 0x3014 RDPDR - ok 21:13:34.0136 0x3014 RdpVideoMiniport - ok 21:13:34.0145 0x3014 [ B4A6F3BFB5A07DAF4E18C14A6337A226, F906865E349390D24A3DCBC563154BBB9F307B97361832BE93BC9D44A9F3B486 ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys 21:13:34.0159 0x3014 rdyboost - ok 21:13:34.0164 0x3014 ReFS - ok 21:13:34.0171 0x3014 ReFSv1 - ok 21:13:34.0179 0x3014 [ 0402ED31C7EF3D5A5BAA110AC3A141D8, 872AB8C6C31911B042267A329E4D86AD9FB444F0E6A753A7050EEE68FC9229DE ] RegSrvc C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe 21:13:34.0188 0x3014 RegSrvc - ok 21:13:34.0195 0x3014 RemoteAccess - ok 21:13:34.0206 0x3014 [ 58B3C0A2B0C130838588EF519ADCE495, 60360DD8EA1802C8F95EB93531FF9666BE1148253E6A1BD706D4CA98955C0F6E ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll 21:13:34.0234 0x3014 RemoteRegistry - ok 21:13:34.0239 0x3014 RetailDemo - ok 21:13:34.0247 0x3014 [ D2EE9CCE0187C616E50D61EB30ECA262, 825C918D22FC8DBF3EE9BDB41D121A0AC3CCBFFBA147E2B26F0197552E0675DE ] RFCOMM C:\WINDOWS\System32\drivers\rfcomm.sys 21:13:34.0268 0x3014 RFCOMM - ok 21:13:34.0277 0x3014 [ 4DD0EFE49F0C020DAFEAE6F5F231362C, DF04978AF6CD34C8251B3DDE381CD77518684DCB1D2B16BD2DAFEE63AC9D5858 ] rhproxy C:\WINDOWS\System32\drivers\rhproxy.sys 21:13:34.0290 0x3014 rhproxy - ok 21:13:34.0294 0x3014 RmSvc - ok 21:13:34.0303 0x3014 RpcEptMapper - ok 21:13:34.0310 0x3014 [ D45676C47616B9ABBFAEC97DD3B240A8, E13985D667F66B7A0082356F23270F61A57B8C2DD211B1E09D66D7970D7B4D6A ] RpcLocator C:\WINDOWS\system32\locator.exe 21:13:34.0335 0x3014 RpcLocator - ok 21:13:34.0340 0x3014 RpcSs - ok 21:13:34.0346 0x3014 [ EABD30C39742A79913B595A5B6F809D4, 9067160F566220A2B21FEEE181729A796A3F3EECF75FFB75815BE5CCC7BBA64F ] rspndr C:\WINDOWS\system32\drivers\rspndr.sys 21:13:34.0362 0x3014 rspndr - ok 21:13:34.0384 0x3014 [ 88DF73053468633EA476B07AAC9DE895, 1430B5575C196DDCDC1947154F45000F3CA758A483987D62024AE47D854870DE ] rt640x64 C:\WINDOWS\System32\drivers\rt640x64.sys 21:13:34.0410 0x3014 rt640x64 - ok 21:13:34.0419 0x3014 [ 452748ADF08F904E38E1245EDFE95EE0, 167A35B0B528D7747271BF46C0AF57D3B93E14751B112A9BDD8FE3C19292685C ] RtkAudioService C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe 21:13:34.0430 0x3014 RtkAudioService - ok 21:13:34.0445 0x3014 [ 4EB99484BA0119B13BDCE8EFFAD7B6E2, 543E347B61EB4277A19FF08059C3FF4CE641D357533A79445D14AA70A457E5F5 ] RTSUER C:\WINDOWS\system32\Drivers\RtsUer.sys 21:13:34.0458 0x3014 RTSUER - ok 21:13:34.0463 0x3014 [ 5914CC0C1E99A3C1711BDB1E224526D1, 54BB8636F27282B396D487B3FEA8BD73F2F6FE6DA4DE8D718EE498F75A6A5DCE ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys 21:13:34.0473 0x3014 s3cap - ok 21:13:34.0477 0x3014 SamSs - ok 21:13:34.0484 0x3014 sbp2port - ok 21:13:34.0490 0x3014 SCardSvr - ok 21:13:34.0494 0x3014 ScDeviceEnum - ok 21:13:34.0502 0x3014 scfilter - ok 21:13:34.0508 0x3014 Schedule - ok 21:13:34.0512 0x3014 scmbus - ok 21:13:34.0519 0x3014 SCPolicySvc - ok 21:13:34.0525 0x3014 sdbus - ok 21:13:34.0530 0x3014 [ 3200667DB433F0A2032FAF4DC02E2089, 5E940CA63AD21CEA08C334AC61D985BAFDBA7DCB2D388F355B5C72EFA3E23E0A ] SDFRd C:\WINDOWS\System32\drivers\SDFRd.sys 21:13:34.0539 0x3014 SDFRd - ok 21:13:34.0545 0x3014 SDRSVC - ok 21:13:34.0552 0x3014 sdstor - ok 21:13:34.0558 0x3014 [ 016706A76857F914C99D2472B1E79BF9, 39A114EB591E243E0429DA7279413F046626DE7B52E057DDBCD26A0A1BF327FB ] seclogon C:\WINDOWS\system32\seclogon.dll 21:13:34.0586 0x3014 seclogon - ok 21:13:34.0590 0x3014 SecurityHealthService - ok 21:13:34.0595 0x3014 SEMgrSvc - ok 21:13:34.0604 0x3014 [ 1EA7972A4C7163FF1D3EFE9988404D4E, 56A94B1617815C1E8A79D832B0F0CBA683C3080105CC4C87DBB9B8EAB4CD2690 ] SENS C:\WINDOWS\System32\sens.dll 21:13:34.0637 0x3014 SENS - ok 21:13:34.0643 0x3014 SensorDataService - ok 21:13:34.0647 0x3014 SensorService - ok 21:13:34.0657 0x3014 [ 0BCFFAD6F3B180DD60C941B01768F733, A0B73C1BF636F14504B69606999287B6FE148C958A4F6E31E9022FF129A048E0 ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll 21:13:34.0681 0x3014 SensrSvc - ok 21:13:34.0688 0x3014 SerCx - ok 21:13:34.0693 0x3014 SerCx2 - ok 21:13:34.0700 0x3014 Serenum - ok 21:13:34.0709 0x3014 Serial - ok 21:13:34.0714 0x3014 sermouse - ok 21:13:34.0729 0x3014 SessionEnv - ok 21:13:34.0737 0x3014 sfloppy - ok 21:13:34.0744 0x3014 [ C05648C2BE6176BE557D9C7F02916388, C65D8FEDDCD9A52B04F42C64DAD2A499BF51246D36042E8DC09DD04C4C0B7BEE ] SgrmAgent C:\WINDOWS\system32\drivers\SgrmAgent.sys 21:13:34.0756 0x3014 SgrmAgent - ok 21:13:34.0760 0x3014 SgrmBroker - ok 21:13:34.0766 0x3014 SharedAccess - ok 21:13:34.0775 0x3014 SharedRealitySvc - ok 21:13:34.0788 0x3014 [ BE44F2B19C4F61FED874C7FE26DF92AA, 07888C7575A1D7D46AE375B1CE6C13665CCEE0F0672EA8FDE71B955B5BC0EA70 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll 21:13:34.0821 0x3014 ShellHWDetection - ok 21:13:34.0828 0x3014 shpamsvc - ok 21:13:34.0835 0x3014 SiSRaid2 - ok 21:13:34.0840 0x3014 SiSRaid4 - ok 21:13:34.0848 0x3014 SmartSAMD - ok 21:13:34.0856 0x3014 [ EDEA03CAFC18E3B7C95AE95E7B2CBE12, DA97CE4DAF76D4C1C33B93427099E7B14ADBB1707A40407B3E4BC6BE4C74CA8B ] SmbDrv C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys 21:13:34.0865 0x3014 SmbDrv - ok 21:13:34.0872 0x3014 [ 3A63FA81423A0AD34D67E3EB7F43785D, 2539D0934C06FBAB9A7ADA397B9180CB18DE6B29AC659D69683B876C1B01CA6B ] SmbDrvI C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys 21:13:34.0879 0x3014 SmbDrvI - ok 21:13:34.0886 0x3014 smphost - ok 21:13:34.0892 0x3014 SmsRouter - ok 21:13:34.0905 0x3014 [ 1971BBC71602B928CF9257759E3C05E8, 9D665698FF26ED333AD385B4B7A6C0F2B6806371D278E281FA4188002A5317E8 ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe 21:13:34.0926 0x3014 SNMPTRAP - ok 21:13:34.0931 0x3014 [ 27B7D9E872939EBB34C30343F991893D, 879AFDC8C50487ED0D3CB58C70A206E185F94BE75C25C31C387F3F08740771F9 ] spaceparser C:\WINDOWS\system32\drivers\spaceparser.sys 21:13:34.0945 0x3014 spaceparser - ok 21:13:34.0952 0x3014 spaceport - ok 21:13:34.0959 0x3014 [ AB3BDEC793187CEDF1229AC98BB7DEDF, D2EA0C5FC534C89310207AA26A8816B30FEEF3F2708A067D8BB93D3CFF9C3936 ] SpatialGraphFilter C:\WINDOWS\system32\drivers\SpatialGraphFilter.sys 21:13:34.0969 0x3014 SpatialGraphFilter - ok 21:13:34.0973 0x3014 SpbCx - ok 21:13:34.0978 0x3014 spectrum - ok 21:13:34.0986 0x3014 Spooler - ok 21:13:34.0991 0x3014 sppsvc - ok 21:13:34.0995 0x3014 srv2 - ok 21:13:35.0001 0x3014 srvnet - ok 21:13:35.0011 0x3014 SSDPSRV - ok 21:13:35.0017 0x3014 ssh-agent - ok 21:13:35.0024 0x3014 SstpSvc - ok 21:13:35.0029 0x3014 StateRepository - ok 21:13:35.0037 0x3014 stexstor - ok 21:13:35.0043 0x3014 [ EE15AB566FA03A414C9FF82CAC713253, 4B53AAF2FC0F31A1CFA1AA1B418E7D6C7E28EC339A6A67974DE9E79CB1B71457 ] StillCam C:\WINDOWS\system32\DRIVERS\serscan.sys 21:13:35.0054 0x3014 StillCam - ok 21:13:35.0058 0x3014 stisvc - ok 21:13:35.0063 0x3014 storahci - ok 21:13:35.0069 0x3014 storflt - ok 21:13:35.0075 0x3014 stornvme - ok 21:13:35.0079 0x3014 storqosflt - ok 21:13:35.0086 0x3014 StorSvc - ok 21:13:35.0092 0x3014 storufs - ok 21:13:35.0097 0x3014 storvsc - ok 21:13:35.0104 0x3014 svsvc - ok 21:13:35.0117 0x3014 swenum - ok 21:13:35.0122 0x3014 swprv - ok 21:13:35.0126 0x3014 Synth3dVsc - ok 21:13:35.0144 0x3014 [ 878C40195DDC923E01AE73F45E2DE3C7, C374CC95A959255639824AB45E4E1DC2E6D41D0124B2685BA3A232830C6F2240 ] SynTP C:\WINDOWS\System32\drivers\SynTP.sys 21:13:35.0168 0x3014 SynTP - ok 21:13:35.0180 0x3014 [ A00BC500C282FC5F5E172736F205903A, C0F2BB4C79590D18ECD6C9CC8DA4B2BDED4B8180EC26375B22478D414791DEA6 ] SynTPEnhService C:\WINDOWS\System32\SynTPEnhService.exe 21:13:35.0208 0x3014 SynTPEnhService - ok 21:13:35.0213 0x3014 SysMain - ok 21:13:35.0219 0x3014 SystemEventsBroker - ok 21:13:35.0224 0x3014 TabletInputService - ok 21:13:35.0233 0x3014 TapiSrv - ok 21:13:35.0241 0x3014 Tcpip - ok 21:13:35.0251 0x3014 Tcpip6 - ok 21:13:35.0263 0x3014 [ 57BE670CF1D93717B628271B404D658A, EDD4C58EDAB985C87D6101D9CA5620146EE2BB8A1B899C635DD4CD36541DD46E ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys 21:13:35.0279 0x3014 tcpipreg - ok 21:13:35.0290 0x3014 tdx - ok 21:13:35.0491 0x3014 [ D97735F08C9D45A73D68C95E63E5B053, 4A2018379A238ED37EA065154C92FA5819137142C8E9B570CB24C66F60B18BA3 ] TeamViewer C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe 21:13:35.0749 0x3014 TeamViewer - ok 21:13:35.0764 0x3014 Telemetry - ok 21:13:35.0773 0x3014 [ C225B94F2B27AC97C3E66C0550AEA249, 6F88375DD12A648B77BB6EB4BE527FF6678EE76A2059DB5B4CC971CDB31D0DB8 ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys 21:13:35.0787 0x3014 terminpt - ok 21:13:35.0795 0x3014 TermService - ok 21:13:35.0807 0x3014 [ 8EC4197962A0349DFFBDC11586099DB8, 8DD5348A4983C376F63E6B209227D4D02300555F8C80A0E0DB2EA16074ABC334 ] Themes C:\WINDOWS\system32\themeservice.dll 21:13:35.0840 0x3014 Themes - ok 21:13:35.0846 0x3014 TieringEngineService - ok 21:13:35.0853 0x3014 TimeBrokerSvc - ok 21:13:35.0859 0x3014 TokenBroker - ok 21:13:35.0867 0x3014 TPM - ok 21:13:35.0876 0x3014 TrkWks - ok 21:13:35.0886 0x3014 TroubleshootingSvc - ok 21:13:35.0892 0x3014 TrustedInstaller - ok 21:13:35.0903 0x3014 [ F613A8618CC19DD96D1E0C81C5DCB7D1, AD6DE675AC033BE6BF75FF6303EAED4B5C672689D3AEC6DB94816D60E19B7030 ] TsUsbFlt C:\WINDOWS\system32\drivers\tsusbflt.sys 21:13:35.0917 0x3014 TsUsbFlt - ok 21:13:35.0923 0x3014 TsUsbGD - ok 21:13:35.0931 0x3014 [ 6244FD1056BF170E38245B4B9042BFDF, C32908B3C5800CD52EF9BDD26C77B8162831CFD19DBF1D399941B17FB909AD94 ] tunnel C:\WINDOWS\system32\drivers\tunnel.sys 21:13:35.0948 0x3014 tunnel - ok 21:13:35.0954 0x3014 tzautoupdate - ok 21:13:35.0960 0x3014 UASPStor - ok 21:13:35.0967 0x3014 UcmCx0101 - ok 21:13:35.0977 0x3014 [ 229B33B8499F4F2AAB1F3B590423611F, E70A2D9EEEF0C6894A0DB7990CFF6ECE3B8F389FD30B7B1949FCBDD3300B6148 ] UcmTcpciCx0101 C:\WINDOWS\system32\Drivers\UcmTcpciCx.sys 21:13:35.0995 0x3014 UcmTcpciCx0101 - ok 21:13:36.0001 0x3014 [ 7FDC3A6FD8547468CE554C8821640103, 3626760AEE42EE36E047DA6899A81E0646DFBA344A234270EAE5D635F049BE37 ] UcmUcsiAcpiClient C:\WINDOWS\System32\drivers\UcmUcsiAcpiClient.sys 21:13:36.0017 0x3014 UcmUcsiAcpiClient - ok 21:13:36.0022 0x3014 UcmUcsiCx0101 - ok 21:13:36.0026 0x3014 Ucx01000 - ok 21:13:36.0031 0x3014 UdeCx - ok 21:13:36.0038 0x3014 udfs - ok 21:13:36.0043 0x3014 UdkUserSvc - ok 21:13:36.0051 0x3014 UEFI - ok 21:13:36.0058 0x3014 Ufx01000 - ok 21:13:36.0063 0x3014 UfxChipidea - ok 21:13:36.0070 0x3014 ufxsynopsys - ok 21:13:36.0085 0x3014 [ 13B9189CA51D925FF78151A0E14C40CE, 78AEDD6D13C45B2E080BC26527CCF3BDABF764A2108249BA8B3AC4387C6A6376 ] uhssvc C:\Program Files\Microsoft Update Health Tools\uhssvc.exe 21:13:36.0102 0x3014 uhssvc - ok 21:13:36.0106 0x3014 umbus - ok 21:13:36.0110 0x3014 UmPass - ok 21:13:36.0116 0x3014 UmRdpService - ok 21:13:36.0123 0x3014 UnistoreSvc - ok 21:13:36.0131 0x3014 upnphost - ok 21:13:36.0141 0x3014 [ 5C33B91675BE0C9693358C1AAA723D20, A5BB54ABBB0F7B13ACCA0997F567A81395688C6D68EB87F67F688737DC16918F ] UrsChipidea C:\WINDOWS\System32\DriverStore\FileRepository\urschipidea.inf_amd64_78ad1c14e33df968\urschipidea.sys 21:13:36.0148 0x3014 UrsChipidea - ok 21:13:36.0156 0x3014 [ ADFAB87405AE22290E24D0E8E6141AF1, BC0982BEFE4CABEA1E260C8A3266EA18A4CA158A07D1C5176890A04CC3B6A84A ] UrsCx01000 C:\WINDOWS\system32\drivers\urscx01000.sys 21:13:36.0165 0x3014 UrsCx01000 - ok 21:13:36.0172 0x3014 [ BBDE7BF496327115DD744E7D4105C7BC, 5A8CC47603A1C9D58A30A5E897F1BCDC56199B08317B9FF319D469D6DD6CAAF0 ] UrsSynopsys C:\WINDOWS\System32\DriverStore\FileRepository\urssynopsys.inf_amd64_057fa37902020500\urssynopsys.sys 21:13:36.0179 0x3014 UrsSynopsys - ok 21:13:36.0185 0x3014 usbaudio - ok 21:13:36.0196 0x3014 [ FB9F25ACEBCBAEABFE30CACCB17D4EE6, 7D38FA294DA179E5535E3E481746F07E2AE47CE57192C2D1C5B780B583FD9C6D ] usbaudio2 C:\WINDOWS\System32\drivers\usbaudio2.sys 21:13:36.0215 0x3014 usbaudio2 - ok 21:13:36.0220 0x3014 usbccgp - ok 21:13:36.0227 0x3014 [ 11561FC5BAA2DEB5AC8B179B591A882E, 2AD595BF4ABC146D8F533981848FF8271E983038566937BEB48A6A8F09BC60FB ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys 21:13:36.0241 0x3014 usbcir - ok 21:13:36.0245 0x3014 usbehci - ok 21:13:36.0251 0x3014 usbhub - ok 21:13:36.0259 0x3014 USBHUB3 - ok 21:13:36.0264 0x3014 usbohci - ok 21:13:36.0271 0x3014 usbprint - ok 21:13:36.0275 0x3014 usbser - ok 21:13:36.0281 0x3014 USBSTOR - ok 21:13:36.0289 0x3014 usbuhci - ok 21:13:36.0294 0x3014 usbvideo - ok 21:13:36.0301 0x3014 USBXHCI - ok 21:13:36.0307 0x3014 UserDataSvc - ok 21:13:36.0314 0x3014 UserManager - ok 21:13:36.0323 0x3014 UsoSvc - ok 21:13:36.0329 0x3014 VacSvc - ok 21:13:36.0336 0x3014 VaultSvc - ok 21:13:36.0342 0x3014 vdrvroot - ok 21:13:36.0348 0x3014 vds - ok 21:13:36.0355 0x3014 VerifierExt - ok 21:13:36.0360 0x3014 vhdmp - ok 21:13:36.0365 0x3014 vhf - ok 21:13:36.0372 0x3014 Vid - ok 21:13:36.0377 0x3014 [ B37F0BF662BB504F0A9C247F24C281AD, 6281D573D9AD9AA204778C3823737726E882B17657B23CF5458C012FF7990E52 ] VirtualRender C:\WINDOWS\System32\DriverStore\FileRepository\vrd.inf_amd64_81fbd405ff2470fc\vrd.sys 21:13:36.0395 0x3014 VirtualRender - ok 21:13:36.0401 0x3014 vmbus - ok 21:13:36.0407 0x3014 VMBusHID - ok 21:13:36.0412 0x3014 [ E5BB075B6B5A1DA3C3F48CA5DFF54E77, E13E8F9523F51F976084561C9D0A843CAF550FA233521FF13FFE1C5634CA6472 ] vmgid C:\WINDOWS\System32\drivers\vmgid.sys 21:13:36.0423 0x3014 vmgid - ok 21:13:36.0427 0x3014 vmicguestinterface - ok 21:13:36.0434 0x3014 vmicheartbeat - ok 21:13:36.0440 0x3014 vmickvpexchange - ok 21:13:36.0445 0x3014 vmicrdv - ok 21:13:36.0452 0x3014 vmicshutdown - ok 21:13:36.0460 0x3014 vmictimesync - ok 21:13:36.0467 0x3014 vmicvmsession - ok 21:13:36.0473 0x3014 vmicvss - ok 21:13:36.0478 0x3014 volmgr - ok 21:13:36.0485 0x3014 volmgrx - ok 21:13:36.0491 0x3014 volsnap - ok 21:13:36.0496 0x3014 volume - ok 21:13:36.0505 0x3014 [ A37A7788DABE4FF6E33FE50D7A33D8E8, 9E99D9D27BA3DFA6F89C77B9AD91BE495F15E4F612BB63B209157DFA13BCD7E0 ] vpci C:\WINDOWS\system32\drivers\vpci.sys 21:13:36.0516 0x3014 vpci - ok 21:13:36.0522 0x3014 vsmraid - ok 21:13:36.0527 0x3014 VSS - ok 21:13:36.0533 0x3014 VSTXRAID - ok 21:13:36.0539 0x3014 vwifibus - ok 21:13:36.0545 0x3014 vwififlt - ok 21:13:36.0551 0x3014 vwifimp - ok 21:13:36.0559 0x3014 W32Time - ok 21:13:36.0565 0x3014 w3logsvc - ok 21:13:36.0572 0x3014 WaaSMedicSvc - ok 21:13:36.0576 0x3014 WacomPen - ok 21:13:36.0582 0x3014 WalletService - ok 21:13:36.0589 0x3014 wanarp - ok 21:13:36.0594 0x3014 wanarpv6 - ok 21:13:36.0602 0x3014 [ 8449398F11D49864117105679B539816, 8FD3B9C72066D6A983D062DE72EEF9769339EACBF4E0D303B9E12343C9D5DE6C ] WarpJITSvc C:\WINDOWS\System32\Windows.WARP.JITService.dll 21:13:36.0664 0x3014 WarpJITSvc - ok 21:13:36.0669 0x3014 WAS - ok 21:13:36.0674 0x3014 wbengine - ok 21:13:36.0680 0x3014 WbioSrvc - ok 21:13:36.0688 0x3014 wcifs - ok 21:13:36.0694 0x3014 Wcmsvc - ok 21:13:36.0702 0x3014 wcncsvc - ok 21:13:36.0710 0x3014 wcnfs - ok 21:13:36.0719 0x3014 WdBoot - ok 21:13:36.0726 0x3014 Wdf01000 - ok 21:13:36.0733 0x3014 WdFilter - ok 21:13:36.0742 0x3014 [ BB37AF6E45E0F69222E057A74B4AFE1E, 4662064205BEC0DB7B10F1412E0A09A6E5E3B16DE443AEF7F79ACA3ACE24A51D ] WdiServiceHost C:\WINDOWS\system32\wdi.dll 21:13:36.0765 0x3014 WdiServiceHost - ok 21:13:36.0774 0x3014 [ BB37AF6E45E0F69222E057A74B4AFE1E, 4662064205BEC0DB7B10F1412E0A09A6E5E3B16DE443AEF7F79ACA3ACE24A51D ] WdiSystemHost C:\WINDOWS\system32\wdi.dll 21:13:36.0801 0x3014 WdiSystemHost - ok 21:13:36.0809 0x3014 wdiwifi - ok 21:13:36.0816 0x3014 [ A6C92A5F2982EBB8788E0690C19048C4, 85C54A99DD43DC1FAC7FD2A31288CEC7501F795DE8FA86857790F4CCD5AF7C18 ] WdmCompanionFilter C:\WINDOWS\system32\drivers\WdmCompanionFilter.sys 21:13:36.0827 0x3014 WdmCompanionFilter - ok 21:13:36.0834 0x3014 WdNisDrv - ok 21:13:36.0845 0x3014 WdNisSvc - ok 21:13:36.0853 0x3014 WebClient - ok 21:13:36.0860 0x3014 Wecsvc - ok 21:13:36.0868 0x3014 [ CBA85827716DE89106F8E4AD7430620C, EF2FEAD68FE003DAC52BC2098962F397DF80B7DCD79A8F45012A050C7C0E2DB1 ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll 21:13:36.0890 0x3014 WEPHOSTSVC - ok 21:13:36.0895 0x3014 wercplsupport - ok 21:13:36.0907 0x3014 WerSvc - ok 21:13:36.0913 0x3014 WFDSConMgrSvc - ok 21:13:36.0921 0x3014 WFPLWFS - ok 21:13:36.0928 0x3014 WiaRpc - ok 21:13:36.0937 0x3014 WIMMount - ok 21:13:36.0942 0x3014 WinDefend - ok 21:13:36.0959 0x3014 [ B434A84F46C70F4E67B70ED70F024B7F, 64EEB8093BA2590E83D83C5AF7C2A025B88AF5681143BCA83671104266FEEA99 ] WindowsTrustedRT C:\WINDOWS\system32\drivers\WindowsTrustedRT.sys 21:13:36.0971 0x3014 WindowsTrustedRT - ok 21:13:36.0976 0x3014 [ 982774B74EE1419D641CEB66E394A4BA, 090C4CE6B76B3904B5AE73E4F1EEBCE619194C358874D7584537012F954C54BE ] WindowsTrustedRTProxy C:\WINDOWS\system32\drivers\WindowsTrustedRTProxy.sys 21:13:36.0987 0x3014 WindowsTrustedRTProxy - ok 21:13:36.0993 0x3014 WinHttpAutoProxySvc - ok 21:13:36.0999 0x3014 WinMad - ok 21:13:37.0009 0x3014 Winmgmt - ok 21:13:37.0016 0x3014 WinNat - ok 21:13:37.0022 0x3014 WinRM - ok 21:13:37.0040 0x3014 [ 91D3DC62C6EDDB6554CE14C0E0B4290F, 6F8F89B350FC6BC0D23A50C593F02514854AB7D6CD234D8C8AD4B5DDDD586BA0 ] WINUSB C:\WINDOWS\System32\drivers\WinUSB.SYS 21:13:37.0059 0x3014 WINUSB - ok 21:13:37.0064 0x3014 WinVerbs - ok 21:13:37.0072 0x3014 [ 2247DC55BBDC119E1F1E1D82C747736C, 1D70BB1B93B666D7E61E080A793B17D657BF4383241F52C66118357709449F91 ] WirelessButtonDriver64 C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys 21:13:37.0082 0x3014 WirelessButtonDriver64 - ok 21:13:37.0090 0x3014 wisvc - ok 21:13:37.0098 0x3014 WlanSvc - ok 21:13:37.0108 0x3014 wlidsvc - ok 21:13:37.0116 0x3014 wlpasvc - ok 21:13:37.0123 0x3014 WManSvc - ok 21:13:37.0127 0x3014 WmiAcpi - ok 21:13:37.0137 0x3014 wmiApSrv - ok 21:13:37.0142 0x3014 WMPNetworkSvc - ok 21:13:37.0149 0x3014 Wof - ok 21:13:37.0159 0x3014 workfolderssvc - ok 21:13:37.0165 0x3014 WpcMonSvc - ok 21:13:37.0172 0x3014 WPDBusEnum - ok 21:13:37.0178 0x3014 [ 024924C9E79F51560B9133EEAB866BBF, F4D464BC02C7B96EF72AA9229A99A1AD32F56390F97972C33525EF0D85304261 ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys 21:13:37.0189 0x3014 WpdUpFltr - ok 21:13:37.0195 0x3014 WpnService - ok 21:13:37.0202 0x3014 WpnUserService - ok 21:13:37.0211 0x3014 ws2ifsl - ok 21:13:37.0218 0x3014 wscsvc - ok 21:13:37.0225 0x3014 [ 3B974B8EAED22593AC3B946C694E08D9, 96A41C32F8724EAB8B2E88D1A21AB5B725616759E1FB731DEC0562F871ED7AB3 ] WSDPrintDevice C:\WINDOWS\System32\drivers\WSDPrint.sys 21:13:37.0238 0x3014 WSDPrintDevice - ok 21:13:37.0242 0x3014 WSDScan - ok 21:13:37.0252 0x3014 WSearch - ok 21:13:37.0263 0x3014 wuauserv - ok 21:13:37.0271 0x3014 WudfPf - ok 21:13:37.0277 0x3014 WUDFRd - ok 21:13:37.0284 0x3014 WUDFWpdFs - ok 21:13:37.0292 0x3014 WUDFWpdMtp - ok 21:13:37.0300 0x3014 WwanSvc - ok 21:13:37.0308 0x3014 XblAuthManager - ok 21:13:37.0315 0x3014 XblGameSave - ok 21:13:37.0321 0x3014 xboxgip - ok 21:13:37.0327 0x3014 XboxGipSvc - ok 21:13:37.0334 0x3014 XboxNetApiSvc - ok 21:13:37.0341 0x3014 xinputhid - ok 21:13:37.0361 0x3014 [ 8A765F33C2B61D0B505150708A1D1385, 7F3FA647507D3E50496FED4E7516D2F08650D480A3208C8492D38286124B8D24 ] XTU3SERVICE C:\WINDOWS\SysWOW64\XtuService.exe 21:13:37.0441 0x3014 XTU3SERVICE - ok 21:13:37.0446 0x3014 [ 63EB83E566C4D0AADB429D3C19FE9118, 811B464FDCEE8628B3A0A57E96B681B94C4FD5FF2D0D7B4895D58AD3687E158B ] XTUComponent C:\WINDOWS\System32\drivers\iocbios2.sys 21:13:37.0454 0x3014 XTUComponent - ok 21:13:37.0521 0x3014 [ 86DAAF947ED2B8E5C4CCA9749FE25522, 7B1ADBDA906A3ACB9D9F972C634D98D4F1EB5252836A3564A5C4736781332BAC ] ZeroConfigService C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe 21:13:37.0602 0x3014 ZeroConfigService - ok 21:13:37.0606 0x3014 ================ Scan global =============================== 21:13:37.0619 0x3014 [ Global ] - ok 21:13:37.0620 0x3014 ================ Scan MBR ================================== 21:13:37.0622 0x3014 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0 21:13:37.0653 0x3014 \Device\Harddisk0\DR0 - ok 21:13:37.0658 0x3014 [ 6C7E72F5323B67C76976266FED3273CC ] \Device\Harddisk1\DR1 21:13:37.0844 0x3014 \Device\Harddisk1\DR1 - ok 21:13:37.0846 0x3014 ================ Scan VBR ================================== 21:13:37.0851 0x3014 [ 028A056EE335E494F38AC762A9666098 ] \Device\Harddisk0\DR0\Partition1 21:13:37.0853 0x3014 \Device\Harddisk0\DR0\Partition1 - ok 21:13:37.0863 0x3014 [ 8CD93323048542AE677F55C0670117ED ] \Device\Harddisk0\DR0\Partition2 21:13:37.0863 0x3014 \Device\Harddisk0\DR0\Partition2 - ok 21:13:37.0874 0x3014 [ B3F6C064853022260C5A1B3A3032DBE5 ] \Device\Harddisk0\DR0\Partition3 21:13:37.0876 0x3014 \Device\Harddisk0\DR0\Partition3 - ok 21:13:37.0880 0x3014 [ AA5E26703116DBC8B9CF4DD3E45F0C73 ] \Device\Harddisk0\DR0\Partition4 21:13:37.0882 0x3014 \Device\Harddisk0\DR0\Partition4 - ok 21:13:37.0890 0x3014 [ E4DD70F4A76BB4EC964031AE4EA4BF5E ] \Device\Harddisk1\DR1\Partition1 21:13:37.0891 0x3014 \Device\Harddisk1\DR1\Partition1 - ok 21:13:37.0892 0x3014 ================ Scan active images ======================== 21:13:37.0892 0x3014 ================ Scan generic autorun ====================== 21:13:37.0896 0x3014 [ 783C99AFD4C2AE6950FA5694389D2CFA, 570B37A7A3FFDAFCCECCC33CBC1968FEB857B73CA3CB4DFFEDC2E67E9ABD0878 ] C:\WINDOWS\system32\SecurityHealthSystray.exe 21:13:37.0935 0x3014 SecurityHealth - ok 21:13:38.0099 0x3014 [ BC34034EA0586AF41446D6D3FCA74C71, 3C7B34B42C180DA1989A19F8EE941D544DFF80D5AB22718D9BD7E319869179D5 ] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe 21:13:38.0300 0x3014 RTHDVCPL - ok 21:13:38.0328 0x3014 [ F5B17F5E81E73F769AE93B74B20BBB8B, B1BA083715202099256CA273361DFA0F6748EA87979EEF5A3D464DF8DA557CD9 ] C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe 21:13:38.0349 0x3014 HPMessageService - ok 21:13:38.0358 0x3014 [ 5D666FC778E7754CC7103402D814809B, 7E9B205B74440D455155014EE8D6FD0D1C647B016D72A28F16709F50BC005D3F ] C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe 21:13:38.0370 0x3014 ControlCenter4 - detected UnsignedFile.Multi.Generic ( 1 ) 21:13:38.0455 0x3014 Detect skipped due to KSN trusted 21:13:38.0455 0x3014 ControlCenter4 - ok 21:13:38.0529 0x3014 [ 63E9C23A386FFFA84B5E03BFF9B628F0, A370962791EFC4B10548AAD31F89A2B288FBD5BDBF5749323C2D98C14DFB8B49 ] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe 21:13:38.0624 0x3014 BrStsMon00 - detected UnsignedFile.Multi.Generic ( 1 ) 21:13:38.0719 0x3014 Detect skipped due to KSN trusted 21:13:38.0719 0x3014 BrStsMon00 - ok 21:13:38.0735 0x3014 [ 34D296AFC913E302953C70463EF09A48, BC413307CBC56C039EE8A05B51A56E14EF59678FBB33815AEB320078056C8CE7 ] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe 21:13:38.0755 0x3014 HP Software Update - ok 21:13:38.0761 0x3014 OneDriveSetup - ok 21:13:38.0792 0x3014 [ 251E51E2FEDCE8BB82763D39D631EF89, 2682086ACE1970D5573F971669591B731F87D749406927BD7A7A4B58C3C662E9 ] C:\Program Files (x86)\Windows Mail\wab.exe 21:13:38.0862 0x3014 WAB Migrate - ok 21:13:38.0866 0x3014 OneDriveSetup - ok 21:13:38.0880 0x3014 [ 251E51E2FEDCE8BB82763D39D631EF89, 2682086ACE1970D5573F971669591B731F87D749406927BD7A7A4B58C3C662E9 ] C:\Program Files (x86)\Windows Mail\wab.exe 21:13:38.0904 0x3014 WAB Migrate - ok 21:13:38.0913 0x3014 OneDrive - ok 21:13:38.0967 0x3014 [ 438821103A8E0B5FA723D1A899887D64, B763817994B122AFB9EBCC83E40B80163F9E38C5EB3B49ABF121B7214ED3137B ] C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe 21:13:39.0044 0x3014 MicrosoftEdgeAutoLaunch_A3544E1594788BCC80FA59952582A09B - ok 21:13:39.0047 0x3014 Waiting for KSN requests completion. In queue: 158 21:13:40.0075 0x3014 AV detected via SS2: Windows Defender, windowsdefender:// ( ), 0x61100 ( enabled : updated ) 21:13:40.0086 0x3014 Win FW state via NFP2: enabled ( trusted ) 21:13:40.0140 0x3014 ============================================================ 21:13:40.0140 0x3014 Scan finished 21:13:40.0140 0x3014 ============================================================ 21:13:40.0153 0x22c0 Detected object count: 0 21:13:40.0153 0x22c0 Actual detected object count: 0