TDSKiller 09:37:01.0146 0x1d3c TDSS rootkit removing tool 3.1.0.28 Apr 9 2019 21:11:46 09:37:02.0177 0x1d3c ============================================================ 09:37:02.0177 0x1d3c Current date / time: 2021/12/30 09:37:02.0177 09:37:02.0177 0x1d3c SystemInfo: 09:37:02.0177 0x1d3c 09:37:02.0177 0x1d3c OS Version: 10.0.19043 ServicePack: 0.0 09:37:02.0177 0x1d3c Product type: Workstation 09:37:02.0177 0x1d3c ComputerName: DESKTOP-RLQ6923 09:37:02.0177 0x1d3c UserName: Spices 09:37:02.0177 0x1d3c Windows directory: C:\WINDOWS 09:37:02.0177 0x1d3c System windows directory: C:\WINDOWS 09:37:02.0177 0x1d3c Running under WOW64 09:37:02.0177 0x1d3c Processor architecture: Intel x64 09:37:02.0177 0x1d3c Number of processors: 8 09:37:02.0177 0x1d3c Page size: 0x1000 09:37:02.0177 0x1d3c Boot type: Normal boot 09:37:02.0177 0x1d3c CodeIntegrityOptions = 0x00000001 09:37:02.0177 0x1d3c ============================================================ 09:37:02.0177 0x1d3c KLMD ARK init status: drvProperties = 0xEF0F02, osBuild = 19041.0, osProperties = 0x1D 09:37:02.0177 0x1d3c KLMD BG init status: drvProperties = 0xEF0F02, osBuild = 19041.0, osProperties = 0x1D 09:37:02.0177 0x1d3c BG loaded 09:37:02.0255 0x1d3c System UUID: {0B2F26F2-D2BB-C085-AC75-47DA5123A14E} 09:37:02.0490 0x1d3c !crdlk 09:37:02.0490 0x1d3c Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'A' 09:37:02.0521 0x1d3c Drive \Device\Harddisk1\DR1 - Size: 0x12A1F16000 ( 74.53 Gb ), SectorSize: 0x200, Cylinders: 0x2601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W' 09:37:02.0552 0x1d3c Drive \Device\Harddisk2\DR2 - Size: 0x1E0000000 ( 7.50 Gb ), SectorSize: 0x200, Cylinders: 0x3D3, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W' 09:37:02.0552 0x1d3c ============================================================ 09:37:02.0552 0x1d3c \Device\Harddisk0\DR0: 09:37:02.0552 0x1d3c MBR partitions: 09:37:02.0552 0x1d3c \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x112800 09:37:02.0552 0x1d3c \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x113000, BlocksNum 0x744EFA19 09:37:02.0552 0x1d3c \Device\Harddisk1\DR1: 09:37:02.0552 0x1d3c MBR partitions: 09:37:02.0552 0x1d3c \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x950E800 09:37:02.0552 0x1d3c \Device\Harddisk2\DR2: 09:37:02.0552 0x1d3c MBR partitions: 09:37:02.0552 0x1d3c \Device\Harddisk2\DR2\Partition1: MBR, Type 0xC, StartLBA 0x20, BlocksNum 0xEFFF00 09:37:02.0552 0x1d3c ============================================================ 09:37:02.0568 0x1d3c C: <-> \Device\Harddisk0\DR0\Partition2 09:37:02.0568 0x1d3c E: <-> \Device\Harddisk1\DR1\Partition1 09:37:02.0568 0x1d3c ============================================================ 09:37:02.0568 0x1d3c Initialize success 09:37:02.0568 0x1d3c ============================================================ 09:43:49.0035 0x2654 ============================================================ 09:43:49.0035 0x2654 Scan started 09:43:49.0035 0x2654 Mode: Manual; 09:43:49.0035 0x2654 ============================================================ 09:43:49.0035 0x2654 KSN ping started 09:43:49.0172 0x2654 KSN ping finished: true 09:43:50.0118 0x2654 ================ Scan BIOS ================================= 09:43:50.0119 0x2654 BIOS info: vendor = Dell Inc., version = A07, releaseDate = 09/10/2011 09:43:50.0119 0x2654 Base board info: manufacturer = Dell Inc., product = 0VNP2H, version = A00 09:43:54.0839 0x2654 [ C72598E7299FDDCB1FD0561D7C5D977D, 5517D1823C1F4D55FEADD48A5232B308EF8DC99FFCB8D49B20224CB5570DB62B ] BIOS 09:43:54.0839 0x2654 BIOS - ok 09:43:54.0841 0x2654 ================ Scan system memory ======================== 09:43:54.0843 0x2654 System memory - ok 09:43:54.0845 0x2654 ================ Scan services ============================= 09:43:54.0901 0x2654 1394ohci - ok 09:43:54.0906 0x2654 3ware - ok 09:43:54.0912 0x2654 AarSvc - ok 09:43:54.0922 0x2654 ACPI - ok 09:43:54.0928 0x2654 AcpiDev - ok 09:43:54.0933 0x2654 acpiex - ok 09:43:54.0939 0x2654 acpipagr - ok 09:43:54.0946 0x2654 [ 33B5ED555018128792AFFCDC9AF7AFD2, 1E7C5FADA2486EE31289A4BEFB70AEA173190671C64995441651903CF31E5033 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys 09:43:54.0948 0x2654 AcpiPmi - ok 09:43:54.0959 0x2654 acpitime - ok 09:43:54.0963 0x2654 Acx01000 - ok 09:43:54.0973 0x2654 [ AD1F754E82CEDCC88FFD491571DEB6E6, 5C1AC9CE1380313A807D7B47E2FFA694658DB437E28C6AF1FA80EB7C2A3A1746 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 09:43:54.0977 0x2654 AdobeARMservice - ok 09:43:54.0984 0x2654 ADP80XX - ok 09:43:54.0993 0x2654 AFD - ok 09:43:54.0999 0x2654 afunix - ok 09:43:55.0005 0x2654 ahcache - ok 09:43:55.0012 0x2654 [ 526FE18DB976D9A1AE19FBC53FA690B1, 4E2623243A9BB61F7211E591C24EDB70B07974A7FA21E3F14C683F27E975777F ] AJRouter C:\WINDOWS\System32\AJRouter.dll 09:43:55.0023 0x2654 AJRouter - ok 09:43:55.0029 0x2654 ALG - ok 09:43:55.0033 0x2654 amdgpio2 - ok 09:43:55.0039 0x2654 amdi2c - ok 09:43:55.0045 0x2654 AmdK8 - ok 09:43:55.0049 0x2654 AmdPPM - ok 09:43:55.0054 0x2654 amdsata - ok 09:43:55.0060 0x2654 amdsbs - ok 09:43:55.0065 0x2654 amdxata - ok 09:43:55.0070 0x2654 AppID - ok 09:43:55.0076 0x2654 AppIDSvc - ok 09:43:55.0081 0x2654 Appinfo - ok 09:43:55.0087 0x2654 [ DA8376E75670EB1E25422AD6AFA967F8, 61C6533DADAD5C47BDCF996297E69501092FFB0D1F1DCC2AC6DF92E6043D5B43 ] AppleLowerFilter C:\WINDOWS\System32\drivers\AppleLowerFilter.sys 09:43:55.0088 0x2654 AppleLowerFilter - ok 09:43:55.0094 0x2654 applockerfltr - ok 09:43:55.0098 0x2654 AppMgmt - ok 09:43:55.0103 0x2654 AppReadiness - ok 09:43:55.0109 0x2654 AppVClient - ok 09:43:55.0114 0x2654 AppvStrm - ok 09:43:55.0119 0x2654 AppvVemgr - ok 09:43:55.0124 0x2654 AppvVfs - ok 09:43:55.0130 0x2654 AppXSvc - ok 09:43:55.0134 0x2654 arcsas - ok 09:43:55.0140 0x2654 AssignedAccessManagerSvc - ok 09:43:55.0146 0x2654 AsyncMac - ok 09:43:55.0150 0x2654 atapi - ok 09:43:55.0157 0x2654 AudioEndpointBuilder - ok 09:43:55.0163 0x2654 Audiosrv - ok 09:43:55.0167 0x2654 autotimesvc - ok 09:43:55.0174 0x2654 AxInstSV - ok 09:43:55.0180 0x2654 b06bdrv - ok 09:43:55.0186 0x2654 [ 26E2320D24C66EB72B36EB71EBEF2558, 7D06B6499FE915480DF4DAD658281C8B85F7AD71F49B089A270AE0B45713F2E9 ] bam C:\WINDOWS\system32\drivers\bam.sys 09:43:55.0190 0x2654 bam - ok 09:43:55.0200 0x2654 BasicDisplay - ok 09:43:55.0205 0x2654 BasicRender - ok 09:43:55.0214 0x2654 BcastDVRUserService - ok 09:43:55.0221 0x2654 [ 739D089777D2B66DBE7201E5EA4BA2D7, 9AD12E18A042C5B8EFB19297BC2E7BD1FEF75A138FEFB64C6BF0261FD3E53AB1 ] bcmfn2 C:\WINDOWS\System32\drivers\bcmfn2.sys 09:43:55.0223 0x2654 bcmfn2 - ok 09:43:55.0228 0x2654 BDESVC - ok 09:43:55.0232 0x2654 [ 4280B427B81EB8C265F3206E2298761E, 121AF03BBE6ECC1622C2540805A30AE9555EB5D5FE25B55939C045ECE7FC37EB ] Beep C:\WINDOWS\system32\drivers\Beep.sys 09:43:55.0234 0x2654 Beep - ok 09:43:55.0239 0x2654 BFE - ok 09:43:55.0244 0x2654 bindflt - ok 09:43:55.0249 0x2654 BITS - ok 09:43:55.0254 0x2654 BluetoothUserService - ok 09:43:55.0262 0x2654 bowser - ok 09:43:55.0267 0x2654 BrokerInfrastructure - ok 09:43:55.0272 0x2654 BTAGService - ok 09:43:55.0282 0x2654 [ 7F09708B8C651A0C0E2A2725136BA254, 0442A18BBED4E323265C66561C8F8C171D8E934E9089C12B94D1DFDBB057B737 ] BthA2dp C:\WINDOWS\System32\drivers\BthA2dp.sys 09:43:55.0288 0x2654 BthA2dp - ok 09:43:55.0294 0x2654 BthAvctpSvc - ok 09:43:55.0298 0x2654 BthEnum - ok 09:43:55.0306 0x2654 [ 7AE44E94C6B1DF488AA309824DEAD643, 91C72C54142A0D4E5A5F33268850CEB8315AA30C2F0B74A9FFA962887ABAC797 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys 09:43:55.0310 0x2654 BthHFEnum - ok 09:43:55.0315 0x2654 BthLEEnum - ok 09:43:55.0319 0x2654 BthMini - ok 09:43:55.0327 0x2654 [ 11D609CC74F0EB1DF6C0171331CDE9A1, 9412DC92F16C0B8A937D6FB1AD83D7169F4EC0F08FAE0E2B244346428CE99EE1 ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys 09:43:55.0329 0x2654 BTHMODEM - ok 09:43:55.0334 0x2654 BTHPORT - ok 09:43:55.0343 0x2654 [ D293AC628357F2F75B8579087F732970, 1E536D8863D695944214D55E9B0B4BFE04F705DB7ECA18A0CF8B37AAF4893B1E ] bthserv C:\WINDOWS\system32\bthserv.dll 09:43:55.0373 0x2654 bthserv - ok 09:43:55.0378 0x2654 BTHUSB - ok 09:43:55.0382 0x2654 bttflt - ok 09:43:55.0387 0x2654 buttonconverter - ok 09:43:55.0395 0x2654 [ E7690568D2A5FA3D4E6D28B42358A122, CDBD820B6D383EC0A8151EA4300435C2BAD085EC55DB185C5E16CAF961443888 ] CAD C:\WINDOWS\System32\drivers\CAD.sys 09:43:55.0398 0x2654 CAD - ok 09:43:55.0403 0x2654 camsvc - ok 09:43:55.0408 0x2654 CaptureService - ok 09:43:55.0415 0x2654 cbdhsvc - ok 09:43:55.0426 0x2654 [ 9852956AF008344D9314DE6D566DC631, 671B93D9C7704415D0ED761419803A7CAFA1BDF263BEC11EA0FB19D54E8C1981 ] ccleaner C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe 09:43:55.0430 0x2654 ccleaner - ok 09:43:55.0463 0x2654 [ 8568E3968A1E185893C7B25EE566C9BC, 56D80FA3015DC0AD2D4608C9255163B85DC3F503012AC1A35ECF895EE6E7CAF0 ] CCleanerBrowserElevationService C:\Program Files (x86)\CCleaner Browser\Application\96.1.13589.113\elevation_service.exe 09:43:55.0491 0x2654 CCleanerBrowserElevationService - ok 09:43:55.0498 0x2654 [ 9852956AF008344D9314DE6D566DC631, 671B93D9C7704415D0ED761419803A7CAFA1BDF263BEC11EA0FB19D54E8C1981 ] ccleanerm C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe 09:43:55.0501 0x2654 ccleanerm - ok 09:43:55.0505 0x2654 cdfs - ok 09:43:55.0510 0x2654 CDPSvc - ok 09:43:55.0514 0x2654 CDPUserSvc - ok 09:43:55.0521 0x2654 cdrom - ok 09:43:55.0528 0x2654 CertPropSvc - ok 09:43:55.0532 0x2654 cht4iscsi - ok 09:43:55.0537 0x2654 cht4vbd - ok 09:43:55.0542 0x2654 CimFS - ok 09:43:55.0547 0x2654 [ 115CC1E142CE29C9006D59943108DF47, 564FA08C5BEC6DAF1A83C80C9139A6E1AA7E05D251DB3BA379B57C9FDAE83E1B ] circlass C:\WINDOWS\System32\drivers\circlass.sys 09:43:55.0550 0x2654 circlass - ok 09:43:55.0554 0x2654 CldFlt - ok 09:43:55.0560 0x2654 CLFS - ok 09:43:55.0759 0x2654 [ 67ABAB5BDBF1738078EE8609519AE756, 2853F7F6E6585DBCF1FBE727216E841C505EEC5BAD16A10ADB2EC76FD25B0F3C ] ClickToRunSvc C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe 09:43:55.0938 0x2654 ClickToRunSvc - ok 09:43:55.0950 0x2654 ClipSVC - ok 09:43:55.0955 0x2654 cloudidsvc - ok 09:43:55.0971 0x2654 CmBatt - ok 09:43:55.0981 0x2654 CNG - ok 09:43:55.0992 0x2654 [ A46B4D1484227900F7615FE2A569D828, A06B8002E7A708890222C777DDF8B67FED7015C0943C1FC4F9036E9F9DC14494 ] cnghwassist C:\WINDOWS\system32\DRIVERS\cnghwassist.sys 09:43:55.0996 0x2654 cnghwassist - ok 09:43:56.0005 0x2654 [ 99392FDADF3CE5EB47403E5A52866E6F, 63CEF51971EB85D9823CE9A95F1ED9907D20525ED8E32230068CC36E9082A8C3 ] CompositeBus C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_7500cffa210c6946\CompositeBus.sys 09:43:56.0008 0x2654 CompositeBus - ok 09:43:56.0017 0x2654 COMSysApp - ok 09:43:56.0027 0x2654 condrv - ok 09:43:56.0032 0x2654 ConsentUxUserSvc - ok 09:43:56.0039 0x2654 CoreMessagingRegistrar - ok 09:43:56.0060 0x2654 [ 5D19617245C798A0EED86D4D36B8C6E8, 90AB9125B1A56134489E81CE5AEE1F2C7005BE505E52603B1A884A2B8C3C4735 ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe 09:43:56.0177 0x2654 cphs - ok 09:43:56.0186 0x2654 CredentialEnrollmentManagerUserSvc - ok 09:43:56.0189 0x2654 CredentialEnrollmentManagerUserSvc_62b7b - ok 09:43:56.0196 0x2654 CryptSvc - ok 09:43:56.0201 0x2654 CSC - ok 09:43:56.0207 0x2654 CscService - ok 09:43:56.0213 0x2654 dam - ok 09:43:56.0221 0x2654 DcomLaunch - ok 09:43:56.0227 0x2654 defragsvc - ok 09:43:56.0232 0x2654 DeviceAssociationBrokerSvc - ok 09:43:56.0239 0x2654 DeviceAssociationService - ok 09:43:56.0246 0x2654 DeviceInstall - ok 09:43:56.0250 0x2654 DevicePickerUserSvc - ok 09:43:56.0259 0x2654 DevicesFlowUserSvc - ok 09:43:56.0267 0x2654 [ F8BE99B9EA9B110F7CB3F46BA844C1FF, EABF953864C0AE4FB6426C0B7E92DD81EE4A8852081F9D2EA02B61D4C8DB6188 ] DevQueryBroker C:\WINDOWS\system32\DevQueryBroker.dll 09:43:56.0317 0x2654 DevQueryBroker - ok 09:43:56.0321 0x2654 Dfsc - ok 09:43:56.0325 0x2654 Dhcp - ok 09:43:56.0330 0x2654 diagnosticshub.standardcollector.service - ok 09:43:56.0335 0x2654 diagsvc - ok 09:43:56.0341 0x2654 DiagTrack - ok 09:43:56.0347 0x2654 DialogBlockingService - ok 09:43:56.0352 0x2654 disk - ok 09:43:56.0357 0x2654 DispBrokerDesktopSvc - ok 09:43:56.0363 0x2654 DisplayEnhancementService - ok 09:43:56.0368 0x2654 DmEnrollmentSvc - ok 09:43:56.0374 0x2654 dmvsc - ok 09:43:56.0381 0x2654 [ 2E8A026D6680C301ADF6D4B301A4CE8B, 2FDB34E2A61457308B0FEC938A2D6351F63D02BB67DC87FE4F2534E0048C8E89 ] dmwappushservice C:\WINDOWS\system32\dmwappushsvc.dll 09:43:56.0392 0x2654 dmwappushservice - ok 09:43:56.0396 0x2654 Dnscache - ok 09:43:56.0403 0x2654 dot3svc - ok 09:43:56.0412 0x2654 [ 9E65C33CB7FB50453F7F4407070EAF53, A8707BD19D584DAECA39990A2E791194140AFCA4FCE31F23CC7E931DF8C17361 ] DPS C:\WINDOWS\system32\dps.dll 09:43:56.0422 0x2654 DPS - ok 09:43:56.0428 0x2654 drmkaud - ok 09:43:56.0433 0x2654 DsmSvc - ok 09:43:56.0438 0x2654 DsSvc - ok 09:43:56.0449 0x2654 [ 81DF23EC4009D307479D5C169539CD67, 65AEE1E876CBE801A763F14930D15CF2E6A10697620B5903AA04BA30585A5676 ] DusmSvc C:\WINDOWS\System32\dusmsvc.dll 09:43:56.0459 0x2654 DusmSvc - ok 09:43:56.0463 0x2654 DXGKrnl - ok 09:43:56.0477 0x2654 [ 40C02799EE2421B0BE402D972CDC49CA, CB34EE412516D97B6F0831BE6B0AB9DBFAA6CC9A949183C96EF985D9DD264743 ] e1cexpress C:\WINDOWS\system32\DRIVERS\e1c65x64.sys 09:43:56.0487 0x2654 e1cexpress - ok 09:43:56.0496 0x2654 [ EC473A7AD03C7DE06505B1A9F9185C4C, D1BB3D554F8C1D004E5153BF927D2051587F3273265FCE595D918F8A7EA504BA ] eamonm C:\WINDOWS\system32\DRIVERS\eamonm.sys 09:43:56.0501 0x2654 eamonm - ok 09:43:56.0505 0x2654 Eaphost - ok 09:43:56.0511 0x2654 ebdrv - ok 09:43:56.0518 0x2654 [ 45A4485A2FE33070B58B4D2DFD420C2A, 772C77BE06EE0B609969E1974819FC11C3B2CBF3399A96DA8671B7A25324F1FD ] edevmon C:\WINDOWS\system32\DRIVERS\edevmon.sys 09:43:56.0521 0x2654 edevmon - ok 09:43:56.0532 0x2654 [ D21437C262283650E8349AFA573AC03A, 9C256D462F0640855E1AB3D2C658CB4EDD7E061EB2782FD03481196D5ED93DB5 ] edgeupdate C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe 09:43:56.0536 0x2654 edgeupdate - ok 09:43:56.0547 0x2654 [ D21437C262283650E8349AFA573AC03A, 9C256D462F0640855E1AB3D2C658CB4EDD7E061EB2782FD03481196D5ED93DB5 ] edgeupdatem C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe 09:43:56.0550 0x2654 edgeupdatem - ok 09:43:56.0556 0x2654 [ 3026ABB1E11D5192144478C404E5A7FB, D3AFB69D7C5200BBBBC16A45E2E89C42DA8A262316AA88DB9AE62FCA24D50668 ] eelam C:\WINDOWS\system32\DRIVERS\eelam.sys 09:43:56.0558 0x2654 eelam - ok 09:43:56.0563 0x2654 EFS - ok 09:43:56.0570 0x2654 [ CEFBF0B9AA63CA3628DD07C2C79E4D98, C160EEE41EEB382874B42308788BA74E1397B17F65FF048924E7378817967D95 ] ehdrv C:\WINDOWS\system32\DRIVERS\ehdrv.sys 09:43:56.0575 0x2654 ehdrv - ok 09:43:56.0579 0x2654 EhStorClass - ok 09:43:56.0584 0x2654 EhStorTcgDrv - ok 09:43:56.0593 0x2654 [ 5EFD4210E665A54F1864729D4F55252E, 25D48248C4DBE7D3FBEA898634D9EA4CC7B64A491F20E204067C9CAC3BA9913D ] ekbdflt C:\WINDOWS\system32\DRIVERS\ekbdflt.sys 09:43:56.0595 0x2654 ekbdflt - ok 09:43:56.0650 0x2654 [ BC094DAD16B4B6290CAD21A6CEF93407, 6491F51577776353CD4D6E536E611F8006C5B08C70B55B86E3BE052758C74F2F ] ekrn C:\Program Files\ESET\ESET Security\ekrn.exe 09:43:56.0695 0x2654 ekrn - ok 09:43:56.0753 0x2654 [ BC094DAD16B4B6290CAD21A6CEF93407, 6491F51577776353CD4D6E536E611F8006C5B08C70B55B86E3BE052758C74F2F ] ekrnEpfw C:\Program Files\ESET\ESET Security\ekrn.exe 09:43:56.0796 0x2654 ekrnEpfw - ok 09:43:56.0804 0x2654 embeddedmode - ok 09:43:56.0809 0x2654 EntAppSvc - ok 09:43:56.0815 0x2654 [ CB6A93A223B317E6CFAD9EED580F847F, 375004BFB811981F6DDF3DA43A77502FE166D34E41FF65203AC889CE3AD1A794 ] epfw C:\WINDOWS\system32\DRIVERS\epfw.sys 09:43:56.0819 0x2654 epfw - ok 09:43:56.0827 0x2654 [ 38133DA46696380A6628F9E570FAD5A8, CC0F94D3873C1FB13278445DE42370CBAF0F5BA0AFCC3F8F9410256B90C9E3FE ] epfwwfp C:\WINDOWS\system32\DRIVERS\epfwwfp.sys 09:43:56.0830 0x2654 epfwwfp - ok 09:43:56.0834 0x2654 ErrDev - ok 09:43:56.0842 0x2654 EventLog - ok 09:43:56.0847 0x2654 EventSystem - ok 09:43:56.0853 0x2654 exfat - ok 09:43:56.0858 0x2654 fastfat - ok 09:43:56.0865 0x2654 Fax - ok 09:43:56.0870 0x2654 fdc - ok 09:43:56.0876 0x2654 [ 0439B82F6034ADA3E71C0C9F169082BD, 0918728669077235B2F2DB7EE22CE819FA570D8A7A497BA5F11E76774EA75099 ] fdPHost C:\WINDOWS\system32\fdPHost.dll 09:43:56.0898 0x2654 fdPHost - ok 09:43:56.0904 0x2654 [ AD64C91B3CC71226785DCE688842E5AB, 056E1091468D268E7970045AB329EB3DFF48BB6B22448046A14C309678847B6E ] FDResPub C:\WINDOWS\system32\fdrespub.dll 09:43:56.0909 0x2654 FDResPub - ok 09:43:56.0914 0x2654 fhsvc - ok 09:43:56.0920 0x2654 [ 8E59D944EE4EFAED65A341A71297C4CD, CFFFD7007AB7FB04ECB44D0079BFE8EEB53AECC988135199C388AF425EBCF2AD ] FileCrypt C:\WINDOWS\system32\drivers\filecrypt.sys 09:43:56.0922 0x2654 FileCrypt - ok 09:43:56.0928 0x2654 FileInfo - ok 09:43:56.0932 0x2654 Filetrace - ok 09:43:56.0937 0x2654 flpydisk - ok 09:43:56.0944 0x2654 FltMgr - ok 09:43:56.0948 0x2654 FontCache - ok 09:43:56.0957 0x2654 FontCache3.0.0.0 - ok 09:43:56.0962 0x2654 FrameServer - ok 09:43:56.0966 0x2654 FsDepends - ok 09:43:56.0975 0x2654 Fs_Rec - ok 09:43:56.0979 0x2654 fvevol - ok 09:43:56.0988 0x2654 [ A1E06E4E8CB863C74DE428D4D6681185, DA46502C009FD4C847A547610DEE2684A5A583467BF76009BD46104AAE2F6B1B ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys 09:43:56.0992 0x2654 gencounter - ok 09:43:57.0001 0x2654 genericusbfn - ok 09:43:57.0029 0x2654 [ 87F6F0181589F69B2F8EA50EF176B643, 9ACAC7AE3BBB68D232079197BEF5BEDEEA7A6DB2AFDE3AA644266C15CB352104 ] GoogleChromeElevationService C:\Program Files\Google\Chrome\Application\96.0.4664.110\elevation_service.exe 09:43:57.0052 0x2654 GoogleChromeElevationService - ok 09:43:57.0064 0x2654 [ 058716AC41A50E66810C8663D22839B3, 9E77D6F2F5904100464B7C8DD3C6D5A4A743793D0C83EAF5E7F9E88F0A914659 ] googledrivefs3525 C:\WINDOWS\system32\DRIVERS\googledrivefs3525.sys 09:43:57.0071 0x2654 googledrivefs3525 - ok 09:43:57.0084 0x2654 [ 859D184F8BAC576D62F05512562073D3, D9DF282C513F6B162D373DA16313AB76CC176F6FAF4278C150A50A1A40C70DD7 ] googledrivefs3688 C:\WINDOWS\system32\DRIVERS\googledrivefs3688.sys 09:43:57.0091 0x2654 googledrivefs3688 - ok 09:43:57.0095 0x2654 GPIOClx0101 - ok 09:43:57.0100 0x2654 gpsvc - ok 09:43:57.0106 0x2654 [ 8C06046B6A8C1ACDAEA15682058FDFB4, 3E0CC301249B7D8D5BEB932F4DFD1EAB8037679EC153772F63B430713903B0AC ] GpuEnergyDrv C:\WINDOWS\system32\drivers\gpuenergydrv.sys 09:43:57.0108 0x2654 GpuEnergyDrv - ok 09:43:57.0114 0x2654 GraphicsPerfSvc - ok 09:43:57.0122 0x2654 [ 605CCC9CE1839BC5583017DF7CAE27A6, F1F67830FC3531DFBDAF5315F59422438AB9F243D89491AC75D1818E7ED98B5D ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 09:43:57.0126 0x2654 gupdate - ok 09:43:57.0131 0x2654 [ 605CCC9CE1839BC5583017DF7CAE27A6, F1F67830FC3531DFBDAF5315F59422438AB9F243D89491AC75D1818E7ED98B5D ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 09:43:57.0134 0x2654 gupdatem - ok 09:43:57.0139 0x2654 HdAudAddService - ok 09:43:57.0146 0x2654 HDAudBus - ok 09:43:57.0184 0x2654 [ B9346EC7AFF954BB77B43CCE5A0DF6FD, 860C87490EB9AC32A763829C3A47AB422535E18CEE2ECB71E2AEB9DDC4A579C6 ] HfcDisableService C:\WINDOWS\System32\DriverStore\FileRepository\iastorac.inf_amd64_ecb9604542bb4ba6\HfcDisableService.exe 09:43:57.0216 0x2654 HfcDisableService - ok 09:43:57.0222 0x2654 HidBatt - ok 09:43:57.0227 0x2654 HidBth - ok 09:43:57.0232 0x2654 hidi2c - ok 09:43:57.0237 0x2654 hidinterrupt - ok 09:43:57.0245 0x2654 [ 6B46E3061EC0523CB46ED28060FCD946, 6089305AF73CC584963865482448CD5CA4252EC9BD3E72AF16D45E4F95C3EBF2 ] HidIr C:\WINDOWS\System32\drivers\hidir.sys 09:43:57.0247 0x2654 HidIr - ok 09:43:57.0252 0x2654 hidserv - ok 09:43:57.0259 0x2654 hidspi - ok 09:43:57.0263 0x2654 HidUsb - ok 09:43:57.0278 0x2654 [ 57F340611F7B92BC2EF6D389A5DEB73C, 12EFE0D782D4A74651D6F15D151CC450FE7B250B41573D0F608F3DF16CF9785E ] HPPrintScanDoctorService C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe 09:43:57.0285 0x2654 HPPrintScanDoctorService - ok 09:43:57.0292 0x2654 HpSAMD - ok 09:43:57.0298 0x2654 HTTP - ok 09:43:57.0304 0x2654 [ 849A66D34BC2DAD0044FAC2FEE1AF956, A5F6858AA556D9180C303EA3ED02EB6D6D8EB55A100B3918654281A01198D8E8 ] hvcrash C:\WINDOWS\System32\drivers\hvcrash.sys 09:43:57.0306 0x2654 hvcrash - ok 09:43:57.0311 0x2654 [ 855F55BB462B7D8B6BC31A94A592DF3D, 776C772E69CF9D81D8511201813DD79F2106DC7D2547B4FA700432AE9B73C202 ] HvHost C:\WINDOWS\System32\hvhostsvc.dll 09:43:57.0336 0x2654 HvHost - ok 09:43:57.0341 0x2654 hvservice - ok 09:43:57.0346 0x2654 [ 5DC7DFED5FEDD923B874B51D0C6752BB, 69714A8B74EB02282572B34E156051FFC10693B816905CE18A8C6C8CCB95B846 ] HwNClx0101 C:\WINDOWS\system32\Drivers\mshwnclx.sys 09:43:57.0349 0x2654 HwNClx0101 - ok 09:43:57.0355 0x2654 hwpolicy - ok 09:43:57.0362 0x2654 hyperkbd - ok 09:43:57.0366 0x2654 HyperVideo - ok 09:43:57.0372 0x2654 i8042prt - ok 09:43:57.0379 0x2654 iagpio - ok 09:43:57.0384 0x2654 iai2c - ok 09:43:57.0388 0x2654 iaLPSS2i_GPIO2 - ok 09:43:57.0396 0x2654 iaLPSS2i_GPIO2_BXT_P - ok 09:43:57.0400 0x2654 iaLPSS2i_GPIO2_CNL - ok 09:43:57.0407 0x2654 iaLPSS2i_GPIO2_GLK - ok 09:43:57.0413 0x2654 iaLPSS2i_I2C - ok 09:43:57.0418 0x2654 iaLPSS2i_I2C_BXT_P - ok 09:43:57.0424 0x2654 iaLPSS2i_I2C_CNL - ok 09:43:57.0429 0x2654 iaLPSS2i_I2C_GLK - ok 09:43:57.0434 0x2654 iaLPSSi_GPIO - ok 09:43:57.0440 0x2654 iaLPSSi_I2C - ok 09:43:57.0464 0x2654 [ 1910AA9F3343925B0C900C7A424C4E0C, 4F8BB4D51FBC3CAB6532C602B6D46630C7270D05098CB87E5D9D13385C4DF359 ] iaStorAC C:\WINDOWS\system32\drivers\iaStorAC.sys 09:43:57.0482 0x2654 iaStorAC - ok 09:43:57.0490 0x2654 [ FCC320C72B5E8336932FD5C166756E13, 8149E66E3641F28F325A4BBE25176A6E515CFAB7AA256310789B730AE4E43AC2 ] iaStorAfs C:\WINDOWS\System32\drivers\iaStorAfs.sys 09:43:57.0493 0x2654 iaStorAfs - ok 09:43:57.0543 0x2654 [ 8395340EEB68C394EF5596421EDC23FF, FD2B6D04CBB5B7E087B1924CA7B4C4F01F9D45AE4DD3EAAD426C623034DD5A6C ] iaStorAfsService C:\WINDOWS\System32\iaStorAfsService.exe 09:43:57.0593 0x2654 iaStorAfsService - ok 09:43:57.0601 0x2654 iaStorAVC - ok 09:43:57.0606 0x2654 iaStorV - ok 09:43:57.0610 0x2654 ibbus - ok 09:43:57.0615 0x2654 icssvc - ok 09:43:57.0704 0x2654 [ 226EAECA4F21F899E3F0C95297678A0B, DC18AAE3F1505C9BECB75218F4CCCD8DC6E1C6258EDA9A57B57028246EF346FA ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys 09:43:57.0795 0x2654 igfx - ok 09:43:57.0803 0x2654 IKEEXT - ok 09:43:57.0809 0x2654 IndirectKmd - ok 09:43:57.0816 0x2654 InstallService - ok 09:43:57.0822 0x2654 intelide - ok 09:43:57.0828 0x2654 intelpep - ok 09:43:57.0834 0x2654 [ AECBF5BE2F9A2A50B978E0BF31041A81, A62F436C66DEFEB438A7891857DFB830995714A7E4FE4BDCA6B4EB1606BD2101 ] intelpmax C:\WINDOWS\System32\drivers\intelpmax.sys 09:43:57.0836 0x2654 intelpmax - ok 09:43:57.0843 0x2654 intelppm - ok 09:43:57.0848 0x2654 iorate - ok 09:43:57.0853 0x2654 IpFilterDriver - ok 09:43:57.0860 0x2654 iphlpsvc - ok 09:43:57.0865 0x2654 IPMIDRV - ok 09:43:57.0874 0x2654 [ F63572DF4295C78B3F7036AEDA878176, B71EB3CC4EC95BC9A3FA217736C6C36C756935714D7E16E34C05D913B829CB9C ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys 09:43:57.0879 0x2654 IPNAT - ok 09:43:57.0887 0x2654 [ B5B6D1F86E40E785D6650DB923DB6BEA, 7A2D92A2274E0379B5FA6351D18E2F0DD55960BB783EA3528FE9E303E1A4256D ] IPT C:\WINDOWS\System32\drivers\ipt.sys 09:43:57.0890 0x2654 IPT - ok 09:43:57.0896 0x2654 [ 77494E26B28465D2A09B9455F8A3B34E, B778D4BC71A5F5CF687175CA53AC342E4740156D4B96E6E96D918BD46C2C1459 ] IpxlatCfgSvc C:\WINDOWS\System32\IpxlatCfg.dll 09:43:57.0908 0x2654 IpxlatCfgSvc - ok 09:43:57.0913 0x2654 isapnp - ok 09:43:57.0917 0x2654 iScsiPrt - ok 09:43:57.0925 0x2654 ItSas35i - ok 09:43:57.0929 0x2654 kbdclass - ok 09:43:57.0934 0x2654 kbdhid - ok 09:43:57.0940 0x2654 kbldfltr - ok 09:43:57.0945 0x2654 kdnic - ok 09:43:57.0949 0x2654 KeyIso - ok 09:43:57.0954 0x2654 KSecDD - ok 09:43:57.0963 0x2654 KSecPkg - ok 09:43:57.0969 0x2654 ksthunk - ok 09:43:57.0983 0x2654 [ DAE67BD7EC6ED569438F5CA38BFBB458, 672CA98525D6DD799A01A3BC3A62AB7B4544D62ECEB3615FAC05BFB97B389D23 ] KtmRm C:\WINDOWS\system32\msdtckrm.dll 09:43:58.0035 0x2654 KtmRm - ok 09:43:58.0039 0x2654 LanmanServer - ok 09:43:58.0044 0x2654 LanmanWorkstation - ok 09:43:58.0053 0x2654 [ A997488F4EDAAD59C748CF9FB1D9DAC0, A0B145041F984DD4E0A6F8D0E9C8363DA6F2DA7460E140F028C320CEAC03759C ] lfsvc C:\WINDOWS\System32\lfsvc.dll 09:43:58.0061 0x2654 lfsvc - ok 09:43:58.0068 0x2654 LicenseManager - ok 09:43:58.0075 0x2654 [ 78779BD92081CB27967E77561683AFBE, 05EC91E194336D1BB1EE323E70FAC54F6DC0CEF53FD4925F394399531A37A0DD ] lltdio C:\WINDOWS\system32\drivers\lltdio.sys 09:43:58.0079 0x2654 lltdio - ok 09:43:58.0088 0x2654 lltdsvc - ok 09:43:58.0094 0x2654 lmhosts - ok 09:43:58.0101 0x2654 LSI_SAS - ok 09:43:58.0105 0x2654 LSI_SAS2i - ok 09:43:58.0111 0x2654 LSI_SAS3i - ok 09:43:58.0116 0x2654 LSI_SSS - ok 09:43:58.0121 0x2654 LSM - ok 09:43:58.0127 0x2654 luafv - ok 09:43:58.0132 0x2654 LxpSvc - ok 09:43:58.0139 0x2654 [ AE03D8F1B7863268EAED2FE0105ED75F, F5172A1A3E24FC5271FCB0118861EA0EC33AA8ABB01AE9CAD50E2F032B92486C ] MapsBroker C:\WINDOWS\System32\moshost.dll 09:43:58.0147 0x2654 MapsBroker - ok 09:43:58.0151 0x2654 mausbhost - ok 09:43:58.0156 0x2654 mausbip - ok 09:43:58.0165 0x2654 [ BF46AFE0CC03D9A5883E74438170B841, 43309A4DBCF15F09AB3066E96C498785C4F41DBCA8467B0385FCA467AE370980 ] MbamElam C:\WINDOWS\system32\DRIVERS\MbamElam.sys 09:43:58.0166 0x2654 MbamElam - ok 09:43:58.0294 0x2654 [ 92B16C970C547095D8378D5F0F5069D0, 6487967112232A05937B40A0FAD5BFFFBFAE9B6A8B0551E70EEEEA445CE2BB3F ] MBAMService C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe 09:43:58.0424 0x2654 MBAMService - ok 09:43:58.0438 0x2654 [ 0B17A8F4956ABD5FA1A0851B59FF960E, 1B62082ACA96EF78A61AFDB33EF77260292C5D08E5E35B56F7F8F0A3A837ED9B ] MBAMSwissArmy C:\WINDOWS\System32\Drivers\mbamswissarmy.sys 09:43:58.0443 0x2654 MBAMSwissArmy - ok 09:43:58.0447 0x2654 MbbCx - ok 09:43:58.0454 0x2654 megasas - ok 09:43:58.0459 0x2654 megasas2i - ok 09:43:58.0464 0x2654 megasas35i - ok 09:43:58.0469 0x2654 megasr - ok 09:43:58.0480 0x2654 [ 6D1671CB2E5402F01D2F13ECF764CAA1, 4778630F602FE8F9B9112DC5BB7A179632000D10D80C28E93711404108FCC6E0 ] MEIx64 C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys 09:43:58.0485 0x2654 MEIx64 - ok 09:43:58.0494 0x2654 MessagingService - ok 09:43:58.0502 0x2654 MicrosoftEdgeElevationService - ok 09:43:58.0509 0x2654 [ B74FFC6301B3312A9F59E04E487BC72A, 76F71824E80D10EB71BEDE5EE3A64CAD7CAC3DDFBB6670D1537E6B75FF0217E9 ] Microsoft_Bluetooth_AvrcpTransport C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys 09:43:58.0512 0x2654 Microsoft_Bluetooth_AvrcpTransport - ok 09:43:58.0517 0x2654 MixedRealityOpenXRSvc - ok 09:43:58.0523 0x2654 mlx4_bus - ok 09:43:58.0529 0x2654 MMCSS - ok 09:43:58.0534 0x2654 Modem - ok 09:43:58.0542 0x2654 monitor - ok 09:43:58.0547 0x2654 mouclass - ok 09:43:58.0552 0x2654 mouhid - ok 09:43:58.0558 0x2654 mountmgr - ok 09:43:58.0564 0x2654 mpsdrv - ok 09:43:58.0570 0x2654 mpssvc - ok 09:43:58.0576 0x2654 MRxDAV - ok 09:43:58.0581 0x2654 mrxsmb - ok 09:43:58.0587 0x2654 mrxsmb20 - ok 09:43:58.0596 0x2654 [ E587396A4C8151ABBF13A96C4465DE31, A3AA5D51E34657479CFCDC3DBB7821B7255F7CB57D5686B7F709A7953AD537EB ] MsBridge C:\WINDOWS\system32\drivers\bridge.sys 09:43:58.0599 0x2654 MsBridge - ok 09:43:58.0608 0x2654 [ 2EF846AC66E181BE820B513DBC15B5D2, EDFE71025C352D0DABEC7B9506C5945BB0EC11F8DB540DB8CB1116C2EA1648A8 ] MSDTC C:\WINDOWS\System32\msdtc.exe 09:43:58.0616 0x2654 MSDTC - ok 09:43:58.0627 0x2654 Msfs - ok 09:43:58.0634 0x2654 [ 6092FD060EC4132A799BDAD61845DDB7, B45F9D3A71FC8A73AED3C5B8CF6F14A25EBDD3D4D47C9F39FFCD75C7D22F4A9E ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys 09:43:58.0636 0x2654 msgpiowin32 - ok 09:43:58.0642 0x2654 mshidkmdf - ok 09:43:58.0647 0x2654 [ 9E90FE6DF363D2427A5C773120E7B27D, 1FDB7E28CCAF757603C4B754E1AC9C470E5E60E85DE067375902F108F5E34608 ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys 09:43:58.0649 0x2654 mshidumdf - ok 09:43:58.0654 0x2654 msisadrv - ok 09:43:58.0660 0x2654 MSiSCSI - ok 09:43:58.0666 0x2654 msiserver - ok 09:43:58.0672 0x2654 MsKeyboardFilter - ok 09:43:58.0678 0x2654 MSKSSRV - ok 09:43:58.0684 0x2654 [ 9FB5040C8CEAE4C32B7884ECBBCAFDAF, 0EC3E53C5B1B202440DE22A5BF7E1EBE9AF5BBB6BA69DB9D018A6D8EC97B477E ] MsLldp C:\WINDOWS\system32\drivers\mslldp.sys 09:43:58.0687 0x2654 MsLldp - ok 09:43:58.0693 0x2654 MSPCLOCK - ok 09:43:58.0697 0x2654 MSPQM - ok 09:43:58.0702 0x2654 MsQuic - ok 09:43:58.0708 0x2654 MsRPC - ok 09:43:58.0715 0x2654 MsSecFlt - ok 09:43:58.0720 0x2654 mssmbios - ok 09:43:58.0725 0x2654 MSTEE - ok 09:43:58.0732 0x2654 MTConfig - ok 09:43:58.0737 0x2654 Mup - ok 09:43:58.0744 0x2654 mvumis - ok 09:43:58.0752 0x2654 NativeWifiP - ok 09:43:58.0759 0x2654 NaturalAuthentication - ok 09:43:58.0767 0x2654 [ D47A20839608B8213065D7AFC8C42195, 7B0187BE9705ED2F925616C13B3744BAC0A9C96B21BE503D96BC9EE7EE125B33 ] NcaSvc C:\WINDOWS\System32\ncasvc.dll 09:43:58.0786 0x2654 NcaSvc - ok 09:43:58.0793 0x2654 NcbService - ok 09:43:58.0799 0x2654 [ 8C938E851CDF2CE30BBEA14555B61820, F853F526C811893BD40B1124BAEC543099381E7BF091729B6A6665DF3CE10B94 ] NcdAutoSetup C:\WINDOWS\System32\NcdAutoSetup.dll 09:43:58.0806 0x2654 NcdAutoSetup - ok 09:43:58.0811 0x2654 ndfltr - ok 09:43:58.0815 0x2654 NDIS - ok 09:43:58.0821 0x2654 [ 6BEC0929C7A7BF2A7C44F585ECC7DAEB, 5F6395268CBD26A4B90960479040C114B2C8A3F24C188C2D5F62D6AB43A637D1 ] NdisCap C:\WINDOWS\system32\drivers\ndiscap.sys 09:43:58.0828 0x2654 NdisCap - ok 09:43:58.0832 0x2654 NdisImPlatform - ok 09:43:58.0840 0x2654 NdisTapi - ok 09:43:58.0844 0x2654 Ndisuio - ok 09:43:58.0850 0x2654 NdisVirtualBus - ok 09:43:58.0856 0x2654 NdisWan - ok 09:43:58.0861 0x2654 ndiswanlegacy - ok 09:43:58.0867 0x2654 [ 33CDAEDC7CBE8339A8324CEC2461BFB4, DAAEACDB4506D2BDDED61957D92FB4983E11D9CE6E7B25119B4CBFB431C945F4 ] NDKPing C:\WINDOWS\system32\drivers\NDKPing.sys 09:43:58.0873 0x2654 NDKPing - ok 09:43:58.0878 0x2654 ndproxy - ok 09:43:58.0885 0x2654 [ 77621E74FD79B267071A0D12C643A48A, 8228B7D1237A0FFABCCC150B299EA494C8F0CB4CCB51AB0DBFF08CBAA9EFC4BB ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys 09:43:58.0890 0x2654 Ndu - ok 09:43:58.0895 0x2654 NetAdapterCx - ok 09:43:58.0899 0x2654 NetBIOS - ok 09:43:58.0909 0x2654 NetBT - ok 09:43:58.0914 0x2654 Netlogon - ok 09:43:58.0920 0x2654 Netman - ok 09:43:58.0926 0x2654 netprofm - ok 09:43:58.0935 0x2654 NetSetupSvc - ok 09:43:58.0944 0x2654 [ B9D455C60292DF5FCB064834CA5802AA, 75DCE4E5FA08CCEAF4D3D30FE8E26903FCDD14CC852E820F63B40F374C706DBD ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 09:43:58.0953 0x2654 NetTcpPortSharing - ok 09:43:58.0959 0x2654 netvsc - ok 09:43:58.0966 0x2654 NgcCtnrSvc - ok 09:43:58.0971 0x2654 NgcSvc - ok 09:43:58.0977 0x2654 NlaSvc - ok 09:43:58.0982 0x2654 Npfs - ok 09:43:58.0987 0x2654 npsvctrig - ok 09:43:58.0993 0x2654 nsi - ok 09:43:58.0998 0x2654 nsiproxy - ok 09:43:59.0006 0x2654 Ntfs - ok 09:43:59.0013 0x2654 Null - ok 09:43:59.0017 0x2654 nvdimm - ok 09:43:59.0022 0x2654 nvraid - ok 09:43:59.0028 0x2654 nvstor - ok 09:43:59.0037 0x2654 OneSyncSvc - ok 09:43:59.0049 0x2654 [ 62EB907977348EFFBCF671A31B911089, 95F7521556593B9DD4CB39D3521B8F10AF37C4414E48AF124C116D7F55B60CB8 ] ose c:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 09:43:59.0054 0x2654 ose - ok 09:43:59.0065 0x2654 p2pimsvc - ok 09:43:59.0077 0x2654 [ DA97CD5815EC123BC88382C08D465B9E, 46F5EA2E3D590FB10E14BC811612B6EF87C805B359A652D2C6BFE4840D5D6AA2 ] p2psvc C:\WINDOWS\system32\p2psvc.dll 09:43:59.0107 0x2654 p2psvc - ok 09:43:59.0112 0x2654 Parport - ok 09:43:59.0116 0x2654 partmgr - ok 09:43:59.0124 0x2654 PcaSvc - ok 09:43:59.0129 0x2654 pci - ok 09:43:59.0133 0x2654 pciide - ok 09:43:59.0140 0x2654 pcmcia - ok 09:43:59.0145 0x2654 pcw - ok 09:43:59.0150 0x2654 pdc - ok 09:43:59.0160 0x2654 PEAUTH - ok 09:43:59.0164 0x2654 PeerDistSvc - ok 09:43:59.0173 0x2654 perceptionsimulation - ok 09:43:59.0178 0x2654 percsas2i - ok 09:43:59.0186 0x2654 percsas3i - ok 09:43:59.0203 0x2654 [ 2FC7CFCEDBF7E038351C7CEB1036D2E1, 41D7DA706F0CF613DF768B6795CD09C5C1035F9F101051FB58F5042EB4352DB6 ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe 09:43:59.0282 0x2654 PerfHost - ok 09:43:59.0292 0x2654 PhoneSvc - ok 09:43:59.0301 0x2654 PimIndexMaintenanceSvc - ok 09:43:59.0313 0x2654 PktMon - ok 09:43:59.0343 0x2654 [ 9E431A5D697432DD6F4DB48C9A185104, 44C16E194258C9143A45F4022F9C5DE229E217D6FF7F944F105FE631BE9EF4A7 ] pla C:\WINDOWS\system32\pla.dll 09:43:59.0386 0x2654 pla - ok 09:43:59.0394 0x2654 PlugPlay - ok 09:43:59.0401 0x2654 pmem - ok 09:43:59.0409 0x2654 [ 2769F200292C0F941A10BD60C33EA4A6, B8345C32585C45E6248D7194B1071F2B8617718E7C9B270AAF44C132D029DB4C ] PNPMEM C:\WINDOWS\System32\drivers\pnpmem.sys 09:43:59.0411 0x2654 PNPMEM - ok 09:43:59.0416 0x2654 [ 6AAAC8AD69AEFBE5FE04738B687EE85E, 83427082298E2FC021D5D39A43DB4A5783D95213F2CA8D3A997DB6C815BD9CB2 ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll 09:43:59.0426 0x2654 PNRPAutoReg - ok 09:43:59.0430 0x2654 PNRPsvc - ok 09:43:59.0437 0x2654 PolicyAgent - ok 09:43:59.0487 0x2654 portcfg - ok 09:43:59.0494 0x2654 Power - ok 09:43:59.0499 0x2654 PptpMiniport - ok 09:43:59.0565 0x2654 [ 127682EFCBC718AE83C591CF12EDBE9E, EDA3BBCA39385ECFC53D6726E2E0311F86033F2E29BB2744A92339947D2498BD ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll 09:43:59.0621 0x2654 PrintNotify - ok 09:43:59.0630 0x2654 PrintWorkflowUserSvc - ok 09:43:59.0637 0x2654 Processor - ok 09:43:59.0642 0x2654 ProfSvc - ok 09:43:59.0646 0x2654 Psched - ok 09:43:59.0653 0x2654 PushToInstall - ok 09:43:59.0660 0x2654 [ 17107FA24BCFC328F68628E34FE57AC7, A3C38A490723948E91009FBE708741B86B4CE2D1DC379028507E2F27651E6CBC ] QBCFMonitorService C:\Program Files (x86)\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe 09:43:59.0661 0x2654 QBCFMonitorService - ok 09:43:59.0667 0x2654 [ 9EE9AA5D1FB3F3B99467A20B03B47C5D, 5C43150DF7FC7786DD7568219860BEC89460EE13889B37F01A6D15D4059EC146 ] QBFCService C:\Program Files (x86)\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe 09:43:59.0669 0x2654 QBFCService - ok 09:43:59.0695 0x2654 [ 22FA9963F28401CC21DF9017385DCE7A, 0A1D44FAE5C1A3ED796002C0D9D765C962A5F3C2C4C13814E8B593844137E486 ] QBVSS C:\Program Files (x86)\Common Files\Intuit\DataProtect\QBIDPService.exe 09:43:59.0722 0x2654 QBVSS - ok 09:43:59.0731 0x2654 QuickBooksDB27 - ok 09:43:59.0740 0x2654 [ 2F3808790D517E5E5E6ABF7177875C02, BE1A79A6498697EB86FC29638324A853197B49BC06AE3EB1130793F710926998 ] QWAVE C:\WINDOWS\system32\qwave.dll 09:43:59.0758 0x2654 QWAVE - ok 09:43:59.0765 0x2654 [ CE51A9A997D2830C6C64A36D7F8D8879, 706D683CAF92C259C121222446D34ED43F6E8872407C3615E2ED118ACD24D21D ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys 09:43:59.0767 0x2654 QWAVEdrv - ok 09:43:59.0772 0x2654 Ramdisk - ok 09:43:59.0778 0x2654 RasAcd - ok 09:43:59.0783 0x2654 RasAgileVpn - ok 09:43:59.0789 0x2654 RasAuto - ok 09:43:59.0795 0x2654 Rasl2tp - ok 09:43:59.0802 0x2654 RasMan - ok 09:43:59.0809 0x2654 RasPppoe - ok 09:43:59.0815 0x2654 RasSstp - ok 09:43:59.0821 0x2654 rdbss - ok 09:43:59.0830 0x2654 [ B7BAD23CA994EFF8EA11261626326004, 056495FB4A54984CE9D28D7B45550990D4A4B0736669F0F69138BEF51A695EFA ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys 09:43:59.0832 0x2654 rdpbus - ok 09:43:59.0838 0x2654 RDPDR - ok 09:43:59.0851 0x2654 RdpVideoMiniport - ok 09:43:59.0862 0x2654 [ B4A6F3BFB5A07DAF4E18C14A6337A226, F906865E349390D24A3DCBC563154BBB9F307B97361832BE93BC9D44A9F3B486 ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys 09:43:59.0868 0x2654 rdyboost - ok 09:43:59.0874 0x2654 ReFS - ok 09:43:59.0879 0x2654 ReFSv1 - ok 09:43:59.0885 0x2654 RemoteAccess - ok 09:43:59.0894 0x2654 [ 58B3C0A2B0C130838588EF519ADCE495, 60360DD8EA1802C8F95EB93531FF9666BE1148253E6A1BD706D4CA98955C0F6E ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll 09:43:59.0912 0x2654 RemoteRegistry - ok 09:43:59.0918 0x2654 RetailDemo - ok 09:43:59.0928 0x2654 [ D2EE9CCE0187C616E50D61EB30ECA262, 825C918D22FC8DBF3EE9BDB41D121A0AC3CCBFFBA147E2B26F0197552E0675DE ] RFCOMM C:\WINDOWS\System32\drivers\rfcomm.sys 09:43:59.0933 0x2654 RFCOMM - ok 09:43:59.0941 0x2654 [ 4DD0EFE49F0C020DAFEAE6F5F231362C, DF04978AF6CD34C8251B3DDE381CD77518684DCB1D2B16BD2DAFEE63AC9D5858 ] rhproxy C:\WINDOWS\System32\drivers\rhproxy.sys 09:43:59.0945 0x2654 rhproxy - ok 09:43:59.0950 0x2654 RmSvc - ok 09:43:59.0955 0x2654 RpcEptMapper - ok 09:43:59.0961 0x2654 [ D45676C47616B9ABBFAEC97DD3B240A8, E13985D667F66B7A0082356F23270F61A57B8C2DD211B1E09D66D7970D7B4D6A ] RpcLocator C:\WINDOWS\system32\locator.exe 09:43:59.0967 0x2654 RpcLocator - ok 09:43:59.0972 0x2654 RpcSs - ok 09:43:59.0980 0x2654 [ EABD30C39742A79913B595A5B6F809D4, 9067160F566220A2B21FEEE181729A796A3F3EECF75FFB75815BE5CCC7BBA64F ] rspndr C:\WINDOWS\system32\drivers\rspndr.sys 09:43:59.0983 0x2654 rspndr - ok 09:44:00.0028 0x2654 [ 7870D23C1E8AE7C8E140BD9B991700F5, F343A36A986AF1EA751606DE938292A9C130AFEDD3AE174E08212739266F1A66 ] RstMwService C:\WINDOWS\System32\DriverStore\FileRepository\iastorac.inf_amd64_ecb9604542bb4ba6\RstMwService.exe 09:44:00.0063 0x2654 RstMwService - ok 09:44:00.0073 0x2654 [ 5914CC0C1E99A3C1711BDB1E224526D1, 54BB8636F27282B396D487B3FEA8BD73F2F6FE6DA4DE8D718EE498F75A6A5DCE ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys 09:44:00.0075 0x2654 s3cap - ok 09:44:00.0079 0x2654 SamSs - ok 09:44:00.0085 0x2654 sbp2port - ok 09:44:00.0094 0x2654 SCardSvr - ok 09:44:00.0099 0x2654 ScDeviceEnum - ok 09:44:00.0105 0x2654 scfilter - ok 09:44:00.0112 0x2654 Schedule - ok 09:44:00.0117 0x2654 scmbus - ok 09:44:00.0125 0x2654 SCPolicySvc - ok 09:44:00.0130 0x2654 sdbus - ok 09:44:00.0137 0x2654 [ 3200667DB433F0A2032FAF4DC02E2089, 5E940CA63AD21CEA08C334AC61D985BAFDBA7DCB2D388F355B5C72EFA3E23E0A ] SDFRd C:\WINDOWS\System32\drivers\SDFRd.sys 09:44:00.0140 0x2654 SDFRd - ok 09:44:00.0145 0x2654 SDRSVC - ok 09:44:00.0195 0x2654 [ E3986BEA86CAC67F8C3ADD1D51B2C450, 501F5C5574F5564B44B4D04E4A276B284F4DCCF08677302AFD7F4C3A4178623A ] SDScannerService C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe 09:44:00.0238 0x2654 SDScannerService - ok 09:44:00.0245 0x2654 sdstor - ok 09:44:00.0322 0x2654 [ BFE605027616E371A6501300FC557138, 0D33AEB6674093B8C374DCAD8375B97B278E7CB93A953161E696F8BD125CD352 ] SDUpdateService C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe 09:44:00.0394 0x2654 SDUpdateService - ok 09:44:00.0417 0x2654 [ FCC850AEF12628C2B8F5A8AC370FB4DE, 5F2B5E067F37EE41CDD7BE392525DCBD44BBBCA9C634F0286381BA99BB507FFD ] SDWSCService C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe 09:44:00.0432 0x2654 SDWSCService - ok 09:44:00.0440 0x2654 [ 016706A76857F914C99D2472B1E79BF9, 39A114EB591E243E0429DA7279413F046626DE7B52E057DDBCD26A0A1BF327FB ] seclogon C:\WINDOWS\system32\seclogon.dll 09:44:00.0457 0x2654 seclogon - ok 09:44:00.0462 0x2654 SecurityHealthService - ok 09:44:00.0467 0x2654 SEMgrSvc - ok 09:44:00.0475 0x2654 [ 1EA7972A4C7163FF1D3EFE9988404D4E, 56A94B1617815C1E8A79D832B0F0CBA683C3080105CC4C87DBB9B8EAB4CD2690 ] SENS C:\WINDOWS\System32\sens.dll 09:44:00.0484 0x2654 SENS - ok 09:44:00.0488 0x2654 Sense - ok 09:44:00.0495 0x2654 SensorDataService - ok 09:44:00.0502 0x2654 SensorService - ok 09:44:00.0511 0x2654 [ 0BCFFAD6F3B180DD60C941B01768F733, A0B73C1BF636F14504B69606999287B6FE148C958A4F6E31E9022FF129A048E0 ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll 09:44:00.0525 0x2654 SensrSvc - ok 09:44:00.0530 0x2654 SerCx - ok 09:44:00.0536 0x2654 SerCx2 - ok 09:44:00.0543 0x2654 Serenum - ok 09:44:00.0548 0x2654 Serial - ok 09:44:00.0554 0x2654 sermouse - ok 09:44:00.0570 0x2654 SessionEnv - ok 09:44:00.0576 0x2654 sfloppy - ok 09:44:00.0583 0x2654 [ C05648C2BE6176BE557D9C7F02916388, C65D8FEDDCD9A52B04F42C64DAD2A499BF51246D36042E8DC09DD04C4C0B7BEE ] SgrmAgent C:\WINDOWS\system32\drivers\SgrmAgent.sys 09:44:00.0586 0x2654 SgrmAgent - ok 09:44:00.0592 0x2654 SgrmBroker - ok 09:44:00.0598 0x2654 SharedAccess - ok 09:44:00.0605 0x2654 SharedRealitySvc - ok 09:44:00.0617 0x2654 [ BE44F2B19C4F61FED874C7FE26DF92AA, 07888C7575A1D7D46AE375B1CE6C13665CCEE0F0672EA8FDE71B955B5BC0EA70 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll 09:44:00.0641 0x2654 ShellHWDetection - ok 09:44:00.0646 0x2654 shpamsvc - ok 09:44:00.0652 0x2654 SiSRaid2 - ok 09:44:00.0658 0x2654 SiSRaid4 - ok 09:44:00.0663 0x2654 SmartSAMD - ok 09:44:00.0672 0x2654 [ FF75E3F42E77904238AED44E4E03BAEF, 535013A9E3324198E1016963EBF306F3D34583F7031EE753EC6095B15E2D492C ] smbdirect C:\WINDOWS\system32\DRIVERS\smbdirect.sys 09:44:00.0678 0x2654 smbdirect - ok 09:44:00.0683 0x2654 smphost - ok 09:44:00.0690 0x2654 SmsRouter - ok 09:44:00.0702 0x2654 [ 1971BBC71602B928CF9257759E3C05E8, 9D665698FF26ED333AD385B4B7A6C0F2B6806371D278E281FA4188002A5317E8 ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe 09:44:00.0713 0x2654 SNMPTRAP - ok 09:44:00.0718 0x2654 [ 27B7D9E872939EBB34C30343F991893D, 879AFDC8C50487ED0D3CB58C70A206E185F94BE75C25C31C387F3F08740771F9 ] spaceparser C:\WINDOWS\system32\drivers\spaceparser.sys 09:44:00.0721 0x2654 spaceparser - ok 09:44:00.0727 0x2654 spaceport - ok 09:44:00.0734 0x2654 [ AB3BDEC793187CEDF1229AC98BB7DEDF, D2EA0C5FC534C89310207AA26A8816B30FEEF3F2708A067D8BB93D3CFF9C3936 ] SpatialGraphFilter C:\WINDOWS\system32\drivers\SpatialGraphFilter.sys 09:44:00.0737 0x2654 SpatialGraphFilter - ok 09:44:00.0744 0x2654 SpbCx - ok 09:44:00.0751 0x2654 spectrum - ok 09:44:00.0757 0x2654 Spooler - ok 09:44:00.0764 0x2654 sppsvc - ok 09:44:00.0769 0x2654 [ BE54E9691DCBDC7F010E647A464977AE, 8F9C363FF49A586B3A45A700289385BCB452EB16A82D5BA9375C53665FB85AA3 ] Spybot3ELAM C:\WINDOWS\system32\drivers\Spybot3ELAM.sys 09:44:00.0771 0x2654 Spybot3ELAM - ok 09:44:00.0780 0x2654 srv2 - ok 09:44:00.0785 0x2654 srvnet - ok 09:44:00.0793 0x2654 SSDPSRV - ok 09:44:00.0799 0x2654 ssh-agent - ok 09:44:00.0805 0x2654 SstpSvc - ok 09:44:00.0812 0x2654 StateRepository - ok 09:44:00.0817 0x2654 stexstor - ok 09:44:00.0824 0x2654 [ EE15AB566FA03A414C9FF82CAC713253, 4B53AAF2FC0F31A1CFA1AA1B418E7D6C7E28EC339A6A67974DE9E79CB1B71457 ] StillCam C:\WINDOWS\system32\DRIVERS\serscan.sys 09:44:00.0827 0x2654 StillCam - ok 09:44:00.0832 0x2654 stisvc - ok 09:44:00.0838 0x2654 storahci - ok 09:44:00.0844 0x2654 storflt - ok 09:44:00.0849 0x2654 stornvme - ok 09:44:00.0855 0x2654 storqosflt - ok 09:44:00.0862 0x2654 StorSvc - ok 09:44:00.0867 0x2654 storufs - ok 09:44:00.0874 0x2654 storvsc - ok 09:44:00.0881 0x2654 svsvc - ok 09:44:00.0887 0x2654 swenum - ok 09:44:00.0894 0x2654 swprv - ok 09:44:00.0900 0x2654 Synth3dVsc - ok 09:44:00.0905 0x2654 SysMain - ok 09:44:00.0912 0x2654 SystemEventsBroker - ok 09:44:00.0919 0x2654 TabletInputService - ok 09:44:00.0925 0x2654 TapiSrv - ok 09:44:00.0931 0x2654 Tcpip - ok 09:44:00.0938 0x2654 Tcpip6 - ok 09:44:00.0948 0x2654 [ 57BE670CF1D93717B628271B404D658A, EDD4C58EDAB985C87D6101D9CA5620146EE2BB8A1B899C635DD4CD36541DD46E ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys 09:44:00.0951 0x2654 tcpipreg - ok 09:44:00.0960 0x2654 tdx - ok 09:44:01.0170 0x2654 [ 13654289C46270544AED9BD829D1969A, 597B4D6C4E3557708564AFA07F07580EC37AE91A4FC8947BBB13FBFE407EC3D8 ] TeamViewer C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe 09:44:01.0342 0x2654 TeamViewer - ok 09:44:01.0356 0x2654 Telemetry - ok 09:44:01.0361 0x2654 [ C225B94F2B27AC97C3E66C0550AEA249, 6F88375DD12A648B77BB6EB4BE527FF6678EE76A2059DB5B4CC971CDB31D0DB8 ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys 09:44:01.0364 0x2654 terminpt - ok 09:44:01.0370 0x2654 TermService - ok 09:44:01.0377 0x2654 [ 8EC4197962A0349DFFBDC11586099DB8, 8DD5348A4983C376F63E6B209227D4D02300555F8C80A0E0DB2EA16074ABC334 ] Themes C:\WINDOWS\system32\themeservice.dll 09:44:01.0401 0x2654 Themes - ok 09:44:01.0408 0x2654 TieringEngineService - ok 09:44:01.0415 0x2654 TimeBrokerSvc - ok 09:44:01.0420 0x2654 TokenBroker - ok 09:44:01.0427 0x2654 TPM - ok 09:44:01.0434 0x2654 [ 62636F77E0C51D59F043D9197C897AD4, F121E79E0A15ED6E362D7DEF72F9C1D2D5CC50BBEC3541DFAB91691BC3AFB191 ] TrkWks C:\WINDOWS\System32\trkwks.dll 09:44:01.0447 0x2654 TrkWks - ok 09:44:01.0453 0x2654 TroubleshootingSvc - ok 09:44:01.0459 0x2654 TrustedInstaller - ok 09:44:01.0468 0x2654 [ F613A8618CC19DD96D1E0C81C5DCB7D1, AD6DE675AC033BE6BF75FF6303EAED4B5C672689D3AEC6DB94816D60E19B7030 ] TsUsbFlt C:\WINDOWS\system32\drivers\tsusbflt.sys 09:44:01.0471 0x2654 TsUsbFlt - ok 09:44:01.0478 0x2654 TsUsbGD - ok 09:44:01.0483 0x2654 tsusbhub - ok 09:44:01.0491 0x2654 [ 6244FD1056BF170E38245B4B9042BFDF, C32908B3C5800CD52EF9BDD26C77B8162831CFD19DBF1D399941B17FB909AD94 ] tunnel C:\WINDOWS\system32\drivers\tunnel.sys 09:44:01.0495 0x2654 tunnel - ok 09:44:01.0500 0x2654 tzautoupdate - ok 09:44:01.0507 0x2654 UASPStor - ok 09:44:01.0512 0x2654 UcmCx0101 - ok 09:44:01.0521 0x2654 [ 229B33B8499F4F2AAB1F3B590423611F, E70A2D9EEEF0C6894A0DB7990CFF6ECE3B8F389FD30B7B1949FCBDD3300B6148 ] UcmTcpciCx0101 C:\WINDOWS\system32\Drivers\UcmTcpciCx.sys 09:44:01.0527 0x2654 UcmTcpciCx0101 - ok 09:44:01.0533 0x2654 [ 7FDC3A6FD8547468CE554C8821640103, 3626760AEE42EE36E047DA6899A81E0646DFBA344A234270EAE5D635F049BE37 ] UcmUcsiAcpiClient C:\WINDOWS\System32\drivers\UcmUcsiAcpiClient.sys 09:44:01.0536 0x2654 UcmUcsiAcpiClient - ok 09:44:01.0543 0x2654 UcmUcsiCx0101 - ok 09:44:01.0549 0x2654 Ucx01000 - ok 09:44:01.0556 0x2654 UdeCx - ok 09:44:01.0562 0x2654 udfs - ok 09:44:01.0568 0x2654 UdkUserSvc - ok 09:44:01.0578 0x2654 UEFI - ok 09:44:01.0583 0x2654 UevAgentDriver - ok 09:44:01.0589 0x2654 UevAgentService - ok 09:44:01.0595 0x2654 Ufx01000 - ok 09:44:01.0602 0x2654 UfxChipidea - ok 09:44:01.0608 0x2654 ufxsynopsys - ok 09:44:01.0627 0x2654 [ 3CE7ADECE2CDAD638CFC04A685D132D3, CFC126A7F129D8D24511B500411FDDB07D0608F5DE838424CDF6C35AEBAF7ABE ] uhssvc C:\Program Files\Microsoft Update Health Tools\uhssvc.exe 09:44:01.0634 0x2654 uhssvc - ok 09:44:01.0641 0x2654 umbus - ok 09:44:01.0647 0x2654 UmPass - ok 09:44:01.0653 0x2654 UmRdpService - ok 09:44:01.0660 0x2654 UnistoreSvc - ok 09:44:01.0674 0x2654 upnphost - ok 09:44:01.0680 0x2654 [ 5C33B91675BE0C9693358C1AAA723D20, A5BB54ABBB0F7B13ACCA0997F567A81395688C6D68EB87F67F688737DC16918F ] UrsChipidea C:\WINDOWS\System32\DriverStore\FileRepository\urschipidea.inf_amd64_78ad1c14e33df968\urschipidea.sys 09:44:01.0682 0x2654 UrsChipidea - ok 09:44:01.0688 0x2654 [ ADFAB87405AE22290E24D0E8E6141AF1, BC0982BEFE4CABEA1E260C8A3266EA18A4CA158A07D1C5176890A04CC3B6A84A ] UrsCx01000 C:\WINDOWS\system32\drivers\urscx01000.sys 09:44:01.0693 0x2654 UrsCx01000 - ok 09:44:01.0698 0x2654 [ BBDE7BF496327115DD744E7D4105C7BC, 5A8CC47603A1C9D58A30A5E897F1BCDC56199B08317B9FF319D469D6DD6CAAF0 ] UrsSynopsys C:\WINDOWS\System32\DriverStore\FileRepository\urssynopsys.inf_amd64_057fa37902020500\urssynopsys.sys 09:44:01.0700 0x2654 UrsSynopsys - ok 09:44:01.0706 0x2654 usbaudio - ok 09:44:01.0716 0x2654 [ FB9F25ACEBCBAEABFE30CACCB17D4EE6, 7D38FA294DA179E5535E3E481746F07E2AE47CE57192C2D1C5B780B583FD9C6D ] usbaudio2 C:\WINDOWS\System32\drivers\usbaudio2.sys 09:44:01.0722 0x2654 usbaudio2 - ok 09:44:01.0729 0x2654 usbccgp - ok 09:44:01.0735 0x2654 [ 11561FC5BAA2DEB5AC8B179B591A882E, 2AD595BF4ABC146D8F533981848FF8271E983038566937BEB48A6A8F09BC60FB ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys 09:44:01.0739 0x2654 usbcir - ok 09:44:01.0745 0x2654 usbehci - ok 09:44:01.0750 0x2654 usbhub - ok 09:44:01.0756 0x2654 USBHUB3 - ok 09:44:01.0763 0x2654 usbohci - ok 09:44:01.0768 0x2654 usbprint - ok 09:44:01.0775 0x2654 [ 4D073745FA6C40483A3EF02225D20B19, 3FE72BE1BD429697DB8142A582455CD3341DE798D32EA780ACFA01904437A0D7 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys 09:44:01.0778 0x2654 usbscan - ok 09:44:01.0784 0x2654 usbser - ok 09:44:01.0790 0x2654 USBSTOR - ok 09:44:01.0797 0x2654 usbuhci - ok 09:44:01.0803 0x2654 USBXHCI - ok 09:44:01.0811 0x2654 UserDataSvc - ok 09:44:01.0820 0x2654 UserManager - ok 09:44:01.0827 0x2654 UsoSvc - ok 09:44:01.0832 0x2654 VacSvc - ok 09:44:01.0837 0x2654 VaultSvc - ok 09:44:01.0844 0x2654 vdrvroot - ok 09:44:01.0850 0x2654 vds - ok 09:44:01.0858 0x2654 VerifierExt - ok 09:44:01.0864 0x2654 vhdmp - ok 09:44:01.0870 0x2654 vhf - ok 09:44:01.0877 0x2654 Vid - ok 09:44:01.0883 0x2654 [ B37F0BF662BB504F0A9C247F24C281AD, 6281D573D9AD9AA204778C3823737726E882B17657B23CF5458C012FF7990E52 ] VirtualRender C:\WINDOWS\System32\DriverStore\FileRepository\vrd.inf_amd64_81fbd405ff2470fc\vrd.sys 09:44:01.0885 0x2654 VirtualRender - ok 09:44:01.0891 0x2654 vmbus - ok 09:44:01.0897 0x2654 VMBusHID - ok 09:44:01.0904 0x2654 [ E5BB075B6B5A1DA3C3F48CA5DFF54E77, E13E8F9523F51F976084561C9D0A843CAF550FA233521FF13FFE1C5634CA6472 ] vmgid C:\WINDOWS\System32\drivers\vmgid.sys 09:44:01.0907 0x2654 vmgid - ok 09:44:01.0913 0x2654 vmicguestinterface - ok 09:44:01.0919 0x2654 vmicheartbeat - ok 09:44:01.0925 0x2654 vmickvpexchange - ok 09:44:01.0932 0x2654 vmicrdv - ok 09:44:01.0939 0x2654 vmicshutdown - ok 09:44:01.0946 0x2654 vmictimesync - ok 09:44:01.0951 0x2654 vmicvmsession - ok 09:44:01.0958 0x2654 vmicvss - ok 09:44:01.0964 0x2654 volmgr - ok 09:44:01.0970 0x2654 volmgrx - ok 09:44:01.0977 0x2654 volsnap - ok 09:44:01.0982 0x2654 volume - ok 09:44:01.0990 0x2654 [ A37A7788DABE4FF6E33FE50D7A33D8E8, 9E99D9D27BA3DFA6F89C77B9AD91BE495F15E4F612BB63B209157DFA13BCD7E0 ] vpci C:\WINDOWS\system32\drivers\vpci.sys 09:44:01.0993 0x2654 vpci - ok 09:44:01.0999 0x2654 vsmraid - ok 09:44:02.0004 0x2654 VSS - ok 09:44:02.0010 0x2654 VSTXRAID - ok 09:44:02.0016 0x2654 vwifibus - ok 09:44:02.0023 0x2654 vwififlt - ok 09:44:02.0029 0x2654 W32Time - ok 09:44:02.0036 0x2654 WaaSMedicSvc - ok 09:44:02.0041 0x2654 WacomPen - ok 09:44:02.0049 0x2654 WalletService - ok 09:44:02.0054 0x2654 wanarp - ok 09:44:02.0060 0x2654 wanarpv6 - ok 09:44:02.0069 0x2654 [ 8449398F11D49864117105679B539816, 8FD3B9C72066D6A983D062DE72EEF9769339EACBF4E0D303B9E12343C9D5DE6C ] WarpJITSvc C:\WINDOWS\System32\Windows.WARP.JITService.dll 09:44:02.0116 0x2654 WarpJITSvc - ok 09:44:02.0121 0x2654 wbengine - ok 09:44:02.0127 0x2654 WbioSrvc - ok 09:44:02.0133 0x2654 wcifs - ok 09:44:02.0140 0x2654 Wcmsvc - ok 09:44:02.0148 0x2654 wcncsvc - ok 09:44:02.0154 0x2654 wcnfs - ok 09:44:02.0163 0x2654 WdBoot - ok 09:44:02.0169 0x2654 Wdf01000 - ok 09:44:02.0175 0x2654 WdFilter - ok 09:44:02.0183 0x2654 [ BB37AF6E45E0F69222E057A74B4AFE1E, 4662064205BEC0DB7B10F1412E0A09A6E5E3B16DE443AEF7F79ACA3ACE24A51D ] WdiServiceHost C:\WINDOWS\system32\wdi.dll 09:44:02.0195 0x2654 WdiServiceHost - ok 09:44:02.0201 0x2654 [ BB37AF6E45E0F69222E057A74B4AFE1E, 4662064205BEC0DB7B10F1412E0A09A6E5E3B16DE443AEF7F79ACA3ACE24A51D ] WdiSystemHost C:\WINDOWS\system32\wdi.dll 09:44:02.0212 0x2654 WdiSystemHost - ok 09:44:02.0217 0x2654 wdiwifi - ok 09:44:02.0224 0x2654 [ A6C92A5F2982EBB8788E0690C19048C4, 85C54A99DD43DC1FAC7FD2A31288CEC7501F795DE8FA86857790F4CCD5AF7C18 ] WdmCompanionFilter C:\WINDOWS\system32\drivers\WdmCompanionFilter.sys 09:44:02.0227 0x2654 WdmCompanionFilter - ok 09:44:02.0232 0x2654 WdNisDrv - ok 09:44:02.0241 0x2654 WdNisSvc - ok 09:44:02.0247 0x2654 WebClient - ok 09:44:02.0253 0x2654 Wecsvc - ok 09:44:02.0261 0x2654 [ CBA85827716DE89106F8E4AD7430620C, EF2FEAD68FE003DAC52BC2098962F397DF80B7DCD79A8F45012A050C7C0E2DB1 ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll 09:44:02.0270 0x2654 WEPHOSTSVC - ok 09:44:02.0277 0x2654 wercplsupport - ok 09:44:02.0282 0x2654 WerSvc - ok 09:44:02.0288 0x2654 WFDSConMgrSvc - ok 09:44:02.0294 0x2654 WFPLWFS - ok 09:44:02.0300 0x2654 WiaRpc - ok 09:44:02.0309 0x2654 WIMMount - ok 09:44:02.0314 0x2654 WinDefend - ok 09:44:02.0329 0x2654 [ B434A84F46C70F4E67B70ED70F024B7F, 64EEB8093BA2590E83D83C5AF7C2A025B88AF5681143BCA83671104266FEEA99 ] WindowsTrustedRT C:\WINDOWS\system32\drivers\WindowsTrustedRT.sys 09:44:02.0332 0x2654 WindowsTrustedRT - ok 09:44:02.0338 0x2654 [ 982774B74EE1419D641CEB66E394A4BA, 090C4CE6B76B3904B5AE73E4F1EEBCE619194C358874D7584537012F954C54BE ] WindowsTrustedRTProxy C:\WINDOWS\system32\drivers\WindowsTrustedRTProxy.sys 09:44:02.0340 0x2654 WindowsTrustedRTProxy - ok 09:44:02.0346 0x2654 WinHttpAutoProxySvc - ok 09:44:02.0352 0x2654 WinMad - ok 09:44:02.0361 0x2654 Winmgmt - ok 09:44:02.0366 0x2654 WinNat - ok 09:44:02.0372 0x2654 WinRM - ok 09:44:02.0387 0x2654 [ 91D3DC62C6EDDB6554CE14C0E0B4290F, 6F8F89B350FC6BC0D23A50C593F02514854AB7D6CD234D8C8AD4B5DDDD586BA0 ] WINUSB C:\WINDOWS\System32\drivers\WinUsb.sys 09:44:02.0391 0x2654 WINUSB - ok 09:44:02.0396 0x2654 WinVerbs - ok 09:44:02.0403 0x2654 wisvc - ok 09:44:02.0410 0x2654 WlanSvc - ok 09:44:02.0416 0x2654 wlidsvc - ok 09:44:02.0422 0x2654 wlpasvc - ok 09:44:02.0429 0x2654 WManSvc - ok 09:44:02.0435 0x2654 WmiAcpi - ok 09:44:02.0444 0x2654 wmiApSrv - ok 09:44:02.0450 0x2654 WMPNetworkSvc - ok 09:44:02.0455 0x2654 Wof - ok 09:44:02.0467 0x2654 workfolderssvc - ok 09:44:02.0474 0x2654 WpcMonSvc - ok 09:44:02.0480 0x2654 WPDBusEnum - ok 09:44:02.0486 0x2654 [ 024924C9E79F51560B9133EEAB866BBF, F4D464BC02C7B96EF72AA9229A99A1AD32F56390F97972C33525EF0D85304261 ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys 09:44:02.0489 0x2654 WpdUpFltr - ok 09:44:02.0497 0x2654 WpnService - ok 09:44:02.0503 0x2654 WpnUserService - ok 09:44:02.0514 0x2654 ws2ifsl - ok 09:44:02.0520 0x2654 wscsvc - ok 09:44:02.0526 0x2654 [ 3B974B8EAED22593AC3B946C694E08D9, 96A41C32F8724EAB8B2E88D1A21AB5B725616759E1FB731DEC0562F871ED7AB3 ] WSDPrintDevice C:\WINDOWS\System32\drivers\WSDPrint.sys 09:44:02.0529 0x2654 WSDPrintDevice - ok 09:44:02.0534 0x2654 WSDScan - ok 09:44:02.0543 0x2654 WSearch - ok 09:44:02.0552 0x2654 wuauserv - ok 09:44:02.0563 0x2654 [ 7FC0072ECE3F5F860990EF4E10D3F8F4, 15444A3E540EAD214A674FF0EB99CD42899D6A1139E59D69DE1C2B6BA364A9E0 ] WudfPf C:\WINDOWS\system32\drivers\WudfPf.sys 09:44:02.0568 0x2654 WudfPf - ok 09:44:02.0580 0x2654 [ 24B093F34B25076A2A6605DDAC8A629B, 64BEEA0C054C91AD2CEB9F6B9238A8ED3696FC20B8CC4753D88B8BC482D766C0 ] WUDFRd C:\WINDOWS\System32\drivers\WUDFRd.sys 09:44:02.0587 0x2654 WUDFRd - ok 09:44:02.0598 0x2654 [ 24B093F34B25076A2A6605DDAC8A629B, 64BEEA0C054C91AD2CEB9F6B9238A8ED3696FC20B8CC4753D88B8BC482D766C0 ] WUDFWpdFs C:\WINDOWS\system32\DRIVERS\WUDFRd.sys 09:44:02.0604 0x2654 WUDFWpdFs - ok 09:44:02.0616 0x2654 [ 24B093F34B25076A2A6605DDAC8A629B, 64BEEA0C054C91AD2CEB9F6B9238A8ED3696FC20B8CC4753D88B8BC482D766C0 ] WUDFWpdMtp C:\WINDOWS\System32\drivers\WUDFRd.sys 09:44:02.0622 0x2654 WUDFWpdMtp - ok 09:44:02.0629 0x2654 WwanSvc - ok 09:44:02.0637 0x2654 XblAuthManager - ok 09:44:02.0643 0x2654 XblGameSave - ok 09:44:02.0648 0x2654 xboxgip - ok 09:44:02.0655 0x2654 XboxGipSvc - ok 09:44:02.0662 0x2654 XboxNetApiSvc - ok 09:44:02.0667 0x2654 xinputhid - ok 09:44:02.0672 0x2654 ================ Scan global =============================== 09:44:02.0682 0x2654 [ Global ] - ok 09:44:02.0683 0x2654 ================ Scan MBR ================================== 09:44:02.0686 0x2654 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 09:44:02.0734 0x2654 \Device\Harddisk0\DR0 - ok 09:44:02.0740 0x2654 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk1\DR1 09:44:02.0746 0x2654 \Device\Harddisk1\DR1 - ok 09:44:02.0751 0x2654 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk2\DR2 09:44:02.0755 0x2654 \Device\Harddisk2\DR2 - ok 09:44:02.0756 0x2654 ================ Scan VBR ================================== 09:44:02.0759 0x2654 [ 073DCDDBC269F198E196DCF718AE0BD6 ] \Device\Harddisk0\DR0\Partition1 09:44:02.0760 0x2654 \Device\Harddisk0\DR0\Partition1 - ok 09:44:02.0763 0x2654 [ C0BE6F2528E1B7D3BD00F8D5FF836813 ] \Device\Harddisk0\DR0\Partition2 09:44:02.0765 0x2654 \Device\Harddisk0\DR0\Partition2 - ok 09:44:02.0769 0x2654 [ E1EEFB2C51447F6E61B2013BC395F2D6 ] \Device\Harddisk1\DR1\Partition1 09:44:02.0771 0x2654 \Device\Harddisk1\DR1\Partition1 - ok 09:44:02.0777 0x2654 [ 759138544FD64A40407E0D9093AAC955 ] \Device\Harddisk2\DR2\Partition1 09:44:02.0778 0x2654 \Device\Harddisk2\DR2\Partition1 - ok 09:44:02.0779 0x2654 ================ Scan active images ======================== 09:44:02.0779 0x2654 ================ Scan generic autorun ====================== 09:44:02.0784 0x2654 [ 783C99AFD4C2AE6950FA5694389D2CFA, 570B37A7A3FFDAFCCECCC33CBC1968FEB857B73CA3CB4DFFEDC2E67E9ABD0878 ] C:\WINDOWS\system32\SecurityHealthSystray.exe 09:44:02.0794 0x2654 SecurityHealth - ok 09:44:02.0801 0x2654 [ 3402BBBC16E909985C4F184EB247E9BD, 715806A02C33060C3A20AA1387AC656D92A217115123A2BA16DBE4B37C31880F ] C:\WINDOWS\system32\igfxtray.exe 09:44:02.0808 0x2654 IgfxTray - ok 09:44:02.0819 0x2654 [ 22BF0CCB64AAE89004355E924E0AD463, BA8FA7DCFAD8396C7A2DB583FF6118361F959040837215FD5198D8D0A4D7E9B6 ] C:\WINDOWS\system32\hkcmd.exe 09:44:02.0830 0x2654 HotKeysCmds - ok 09:44:02.0842 0x2654 [ FDA7C3D4227097EC5B45BF9E769B5427, C8A41A3EA957A64CECD17B6E5AFAE2775541C0838CE27FD759031B84180FBFA0 ] C:\WINDOWS\system32\igfxpers.exe 09:44:02.0853 0x2654 Persistence - ok 09:44:02.0870 0x2654 [ 76BEC0984FBD2BEC624B213D5B10C9AD, 97EB0836D032392E88C520DB0F6814E4934C0D4C730C9E5399FDF704F7E28327 ] C:\Program Files\ESET\ESET Security\ecmds.exe 09:44:02.0874 0x2654 egui - ok 09:44:02.0887 0x2654 [ 7F60E46E2447C4C6A94FD1E3BC4FAACF, 6D2954F1667280998ADCEBDE35A9D7A9F5173BC8602976A033F934101B84CAD5 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe 09:44:02.0898 0x2654 SunJavaUpdateSched - ok 09:44:03.0011 0x2654 [ D08B0C3965E0BD9D7D2EAC7E8AB22CD8, DAF77C8CC21874CA1AD43566A4F2CB546DC0FB1EDFE4690C0BC09C4880E16630 ] C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe 09:44:03.0116 0x2654 SDTray - ok 09:44:03.0129 0x2654 OneDriveSetup - ok 09:44:03.0134 0x2654 GoogleDriveFS - ok 09:44:03.0139 0x2654 OneDriveSetup - ok 09:44:03.0144 0x2654 GoogleDriveFS - ok 09:44:03.0149 0x2654 GoogleDriveSync - ok 09:44:03.0195 0x2654 [ 0A4396A437CE3DF19FB2FF50D4DC068F, 01A5F019A0D150A6F8C51E4EF1D7AAD1BE4DB6B2BDD9D4E97434C047B621CB14 ] C:\Users\Spices\AppData\Local\Microsoft\Teams\Update.exe 09:44:03.0223 0x2654 com.squirrel.Teams.Teams - ok 09:44:03.0228 0x2654 CCleaner Smart Cleaning - ok 09:44:03.0273 0x2654 [ BFE63F4ABEF763E787EE1001F1F2746E, 202BFA4D035FAEF64660E21828298ABCF87D50C17A0FF4A21D8A17A656EB6E7D ] C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe 09:44:03.0311 0x2654 CCleanerBrowserAutoLaunch_EBA6280FE373BC45FCF9CDB43D2FE029 - ok 09:44:03.0319 0x2654 GoogleDriveFS - ok 09:44:03.0327 0x2654 prueba - ok 09:44:03.0329 0x2654 OneDrive - ok 09:44:03.0333 0x2654 OneDriveSetup - ok 09:44:03.0339 0x2654 GoogleDriveFS - ok 09:44:03.0353 0x2654 [ 251E51E2FEDCE8BB82763D39D631EF89, 2682086ACE1970D5573F971669591B731F87D749406927BD7A7A4B58C3C662E9 ] C:\Program Files (x86)\Windows Mail\wab.exe 09:44:03.0364 0x2654 WAB Migrate - ok 09:44:03.0365 0x2654 Waiting for KSN requests completion. In queue: 130 09:44:04.0403 0x2654 AV detected via SS2: Spybot - Search and Destroy, C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe ( 2.8.66.0 ), 0x60010 ( disabled : outofdate ) 09:44:04.0404 0x2654 AV detected via SS2: ESET Security, C:\Program Files\ESET\ESET Security\ecmds.exe ( 15.0.21.0 ), 0x41000 ( enabled : updated ) 09:44:04.0404 0x2654 AV detected via SS2: Windows Defender, windowsdefender:// ( ), 0x60100 ( disabled : updated ) 09:44:04.0404 0x2654 AV detected via SS2: AVG Antivirus, C:\Program Files\AVG\Antivirus\wsc_proxy.exe ( ), 0x41000 ( enabled : updated ) 09:44:04.0405 0x2654 FW detected via SS2: AVG Antivirus, C:\Program Files\AVG\Antivirus\wsc_proxy.exe ( ), 0x41000 ( enabled ) 09:44:04.0406 0x2654 FW detected via SS2: ESET Firewall, C:\Program Files\ESET\ESET Security\ecmds.exe ( 15.0.21.0 ), 0x41000 ( enabled ) 09:44:04.0725 0x2654 ============================================================ 09:44:04.0725 0x2654 Scan finished 09:44:04.0725 0x2654 ============================================================ 09:44:04.0737 0x2690 Detected object count: 0 09:44:04.0737 0x2690 Actual detected object count: 0 09:44:23.0605 0x0dd8 ============================================================ 09:44:23.0605 0x0dd8 Scan started 09:44:23.0605 0x0dd8 Mode: Manual; SigCheck; TDLFS; 09:44:23.0605 0x0dd8 ============================================================ 09:44:23.0605 0x0dd8 KSN ping started 09:44:23.0754 0x0dd8 KSN ping finished: true 09:44:23.0979 0x0dd8 ================ Scan BIOS ================================= 09:44:23.0981 0x0dd8 BIOS info: vendor = Dell Inc., version = A07, releaseDate = 09/10/2011 09:44:23.0981 0x0dd8 Base board info: manufacturer = Dell Inc., product = 0VNP2H, version = A00 09:44:28.0671 0x0dd8 [ C72598E7299FDDCB1FD0561D7C5D977D, 5517D1823C1F4D55FEADD48A5232B308EF8DC99FFCB8D49B20224CB5570DB62B ] BIOS 09:44:28.0671 0x0dd8 BIOS - ok 09:44:28.0672 0x0dd8 ================ Scan system memory ======================== 09:44:28.0674 0x0dd8 System memory - ok 09:44:28.0677 0x0dd8 ================ Scan services ============================= 09:44:28.0729 0x0dd8 1394ohci - ok 09:44:28.0733 0x0dd8 3ware - ok 09:44:28.0739 0x0dd8 AarSvc - ok 09:44:28.0748 0x0dd8 ACPI - ok 09:44:28.0752 0x0dd8 AcpiDev - ok 09:44:28.0759 0x0dd8 acpiex - ok 09:44:28.0763 0x0dd8 acpipagr - ok 09:44:28.0769 0x0dd8 [ 33B5ED555018128792AFFCDC9AF7AFD2, 1E7C5FADA2486EE31289A4BEFB70AEA173190671C64995441651903CF31E5033 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys 09:44:28.0819 0x0dd8 AcpiPmi - ok 09:44:28.0824 0x0dd8 acpitime - ok 09:44:28.0828 0x0dd8 Acx01000 - ok 09:44:28.0837 0x0dd8 [ AD1F754E82CEDCC88FFD491571DEB6E6, 5C1AC9CE1380313A807D7B47E2FFA694658DB437E28C6AF1FA80EB7C2A3A1746 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 09:44:28.0852 0x0dd8 AdobeARMservice - ok 09:44:28.0860 0x0dd8 ADP80XX - ok 09:44:28.0867 0x0dd8 AFD - ok 09:44:28.0872 0x0dd8 afunix - ok 09:44:28.0879 0x0dd8 ahcache - ok 09:44:28.0884 0x0dd8 [ 526FE18DB976D9A1AE19FBC53FA690B1, 4E2623243A9BB61F7211E591C24EDB70B07974A7FA21E3F14C683F27E975777F ] AJRouter C:\WINDOWS\System32\AJRouter.dll 09:44:28.0911 0x0dd8 AJRouter - ok 09:44:28.0918 0x0dd8 ALG - ok 09:44:28.0924 0x0dd8 amdgpio2 - ok 09:44:28.0931 0x0dd8 amdi2c - ok 09:44:28.0935 0x0dd8 AmdK8 - ok 09:44:28.0939 0x0dd8 AmdPPM - ok 09:44:28.0944 0x0dd8 amdsata - ok 09:44:28.0949 0x0dd8 amdsbs - ok 09:44:28.0954 0x0dd8 amdxata - ok 09:44:28.0960 0x0dd8 AppID - ok 09:44:28.0965 0x0dd8 AppIDSvc - ok 09:44:28.0970 0x0dd8 Appinfo - ok 09:44:28.0977 0x0dd8 [ DA8376E75670EB1E25422AD6AFA967F8, 61C6533DADAD5C47BDCF996297E69501092FFB0D1F1DCC2AC6DF92E6043D5B43 ] AppleLowerFilter C:\WINDOWS\System32\drivers\AppleLowerFilter.sys 09:44:29.0006 0x0dd8 AppleLowerFilter - ok 09:44:29.0011 0x0dd8 applockerfltr - ok 09:44:29.0015 0x0dd8 AppMgmt - ok 09:44:29.0020 0x0dd8 AppReadiness - ok 09:44:29.0024 0x0dd8 AppVClient - ok 09:44:29.0028 0x0dd8 AppvStrm - ok 09:44:29.0033 0x0dd8 AppvVemgr - ok 09:44:29.0038 0x0dd8 AppvVfs - ok 09:44:29.0045 0x0dd8 AppXSvc - ok 09:44:29.0050 0x0dd8 arcsas - ok 09:44:29.0055 0x0dd8 AssignedAccessManagerSvc - ok 09:44:29.0059 0x0dd8 AsyncMac - ok 09:44:29.0064 0x0dd8 atapi - ok 09:44:29.0069 0x0dd8 AudioEndpointBuilder - ok 09:44:29.0074 0x0dd8 Audiosrv - ok 09:44:29.0080 0x0dd8 autotimesvc - ok 09:44:29.0084 0x0dd8 AxInstSV - ok 09:44:29.0092 0x0dd8 b06bdrv - ok 09:44:29.0098 0x0dd8 [ 26E2320D24C66EB72B36EB71EBEF2558, 7D06B6499FE915480DF4DAD658281C8B85F7AD71F49B089A270AE0B45713F2E9 ] bam C:\WINDOWS\system32\drivers\bam.sys 09:44:29.0112 0x0dd8 bam - ok 09:44:29.0121 0x0dd8 BasicDisplay - ok 09:44:29.0127 0x0dd8 BasicRender - ok 09:44:29.0134 0x0dd8 BcastDVRUserService - ok 09:44:29.0143 0x0dd8 [ 739D089777D2B66DBE7201E5EA4BA2D7, 9AD12E18A042C5B8EFB19297BC2E7BD1FEF75A138FEFB64C6BF0261FD3E53AB1 ] bcmfn2 C:\WINDOWS\System32\drivers\bcmfn2.sys 09:44:29.0163 0x0dd8 bcmfn2 - ok 09:44:29.0168 0x0dd8 BDESVC - ok 09:44:29.0174 0x0dd8 [ 4280B427B81EB8C265F3206E2298761E, 121AF03BBE6ECC1622C2540805A30AE9555EB5D5FE25B55939C045ECE7FC37EB ] Beep C:\WINDOWS\system32\drivers\Beep.sys 09:44:29.0193 0x0dd8 Beep - ok 09:44:29.0197 0x0dd8 BFE - ok 09:44:29.0202 0x0dd8 bindflt - ok 09:44:29.0208 0x0dd8 BITS - ok 09:44:29.0213 0x0dd8 BluetoothUserService - ok 09:44:29.0222 0x0dd8 bowser - ok 09:44:29.0228 0x0dd8 BrokerInfrastructure - ok 09:44:29.0232 0x0dd8 BTAGService - ok 09:44:29.0242 0x0dd8 [ 7F09708B8C651A0C0E2A2725136BA254, 0442A18BBED4E323265C66561C8F8C171D8E934E9089C12B94D1DFDBB057B737 ] BthA2dp C:\WINDOWS\System32\drivers\BthA2dp.sys 09:44:29.0259 0x0dd8 BthA2dp - detected UnsignedFile.Multi.Generic ( 1 ) 09:44:29.0259 0x0dd8 Detect skipped due to KSN trusted 09:44:29.0259 0x0dd8 BthA2dp - ok 09:44:29.0263 0x0dd8 BthAvctpSvc - ok 09:44:29.0268 0x0dd8 BthEnum - ok 09:44:29.0277 0x0dd8 [ 7AE44E94C6B1DF488AA309824DEAD643, 91C72C54142A0D4E5A5F33268850CEB8315AA30C2F0B74A9FFA962887ABAC797 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys 09:44:29.0287 0x0dd8 BthHFEnum - detected UnsignedFile.Multi.Generic ( 1 ) 09:44:29.0287 0x0dd8 Detect skipped due to KSN trusted 09:44:29.0287 0x0dd8 BthHFEnum - ok 09:44:29.0293 0x0dd8 BthLEEnum - ok 09:44:29.0297 0x0dd8 BthMini - ok 09:44:29.0304 0x0dd8 [ 11D609CC74F0EB1DF6C0171331CDE9A1, 9412DC92F16C0B8A937D6FB1AD83D7169F4EC0F08FAE0E2B244346428CE99EE1 ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys 09:44:29.0322 0x0dd8 BTHMODEM - ok 09:44:29.0327 0x0dd8 BTHPORT - ok 09:44:29.0335 0x0dd8 [ D293AC628357F2F75B8579087F732970, 1E536D8863D695944214D55E9B0B4BFE04F705DB7ECA18A0CF8B37AAF4893B1E ] bthserv C:\WINDOWS\system32\bthserv.dll 09:44:29.0376 0x0dd8 bthserv - ok 09:44:29.0381 0x0dd8 BTHUSB - ok 09:44:29.0386 0x0dd8 bttflt - ok 09:44:29.0392 0x0dd8 buttonconverter - ok 09:44:29.0398 0x0dd8 [ E7690568D2A5FA3D4E6D28B42358A122, CDBD820B6D383EC0A8151EA4300435C2BAD085EC55DB185C5E16CAF961443888 ] CAD C:\WINDOWS\System32\drivers\CAD.sys 09:44:29.0411 0x0dd8 CAD - ok 09:44:29.0416 0x0dd8 camsvc - ok 09:44:29.0422 0x0dd8 CaptureService - ok 09:44:29.0430 0x0dd8 cbdhsvc - ok 09:44:29.0440 0x0dd8 [ 9852956AF008344D9314DE6D566DC631, 671B93D9C7704415D0ED761419803A7CAFA1BDF263BEC11EA0FB19D54E8C1981 ] ccleaner C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe 09:44:29.0461 0x0dd8 ccleaner - ok 09:44:29.0492 0x0dd8 [ 8568E3968A1E185893C7B25EE566C9BC, 56D80FA3015DC0AD2D4608C9255163B85DC3F503012AC1A35ECF895EE6E7CAF0 ] CCleanerBrowserElevationService C:\Program Files (x86)\CCleaner Browser\Application\96.1.13589.113\elevation_service.exe 09:44:29.0541 0x0dd8 CCleanerBrowserElevationService - ok 09:44:29.0549 0x0dd8 [ 9852956AF008344D9314DE6D566DC631, 671B93D9C7704415D0ED761419803A7CAFA1BDF263BEC11EA0FB19D54E8C1981 ] ccleanerm C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe 09:44:29.0561 0x0dd8 ccleanerm - ok 09:44:29.0565 0x0dd8 cdfs - ok 09:44:29.0571 0x0dd8 CDPSvc - ok 09:44:29.0577 0x0dd8 CDPUserSvc - ok 09:44:29.0585 0x0dd8 cdrom - ok 09:44:29.0591 0x0dd8 CertPropSvc - ok 09:44:29.0597 0x0dd8 cht4iscsi - ok 09:44:29.0602 0x0dd8 cht4vbd - ok 09:44:29.0607 0x0dd8 CimFS - ok 09:44:29.0614 0x0dd8 [ 115CC1E142CE29C9006D59943108DF47, 564FA08C5BEC6DAF1A83C80C9139A6E1AA7E05D251DB3BA379B57C9FDAE83E1B ] circlass C:\WINDOWS\System32\drivers\circlass.sys 09:44:29.0630 0x0dd8 circlass - ok 09:44:29.0635 0x0dd8 CldFlt - ok 09:44:29.0641 0x0dd8 CLFS - ok 09:44:29.0840 0x0dd8 [ 67ABAB5BDBF1738078EE8609519AE756, 2853F7F6E6585DBCF1FBE727216E841C505EEC5BAD16A10ADB2EC76FD25B0F3C ] ClickToRunSvc C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe 09:44:30.0123 0x0dd8 ClickToRunSvc - ok 09:44:30.0155 0x0dd8 ClipSVC - ok 09:44:30.0159 0x0dd8 cloudidsvc - ok 09:44:30.0172 0x0dd8 CmBatt - ok 09:44:30.0178 0x0dd8 CNG - ok 09:44:30.0184 0x0dd8 [ A46B4D1484227900F7615FE2A569D828, A06B8002E7A708890222C777DDF8B67FED7015C0943C1FC4F9036E9F9DC14494 ] cnghwassist C:\WINDOWS\system32\DRIVERS\cnghwassist.sys 09:44:30.0196 0x0dd8 cnghwassist - ok 09:44:30.0202 0x0dd8 [ 99392FDADF3CE5EB47403E5A52866E6F, 63CEF51971EB85D9823CE9A95F1ED9907D20525ED8E32230068CC36E9082A8C3 ] CompositeBus C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_7500cffa210c6946\CompositeBus.sys 09:44:30.0218 0x0dd8 CompositeBus - ok 09:44:30.0223 0x0dd8 COMSysApp - ok 09:44:30.0229 0x0dd8 condrv - ok 09:44:30.0235 0x0dd8 ConsentUxUserSvc - ok 09:44:30.0243 0x0dd8 CoreMessagingRegistrar - ok 09:44:30.0261 0x0dd8 [ 5D19617245C798A0EED86D4D36B8C6E8, 90AB9125B1A56134489E81CE5AEE1F2C7005BE505E52603B1A884A2B8C3C4735 ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe 09:44:30.0282 0x0dd8 cphs - ok 09:44:30.0295 0x0dd8 CredentialEnrollmentManagerUserSvc - ok 09:44:30.0299 0x0dd8 CredentialEnrollmentManagerUserSvc_62b7b - ok 09:44:30.0308 0x0dd8 CryptSvc - ok 09:44:30.0313 0x0dd8 CSC - ok 09:44:30.0319 0x0dd8 CscService - ok 09:44:30.0325 0x0dd8 dam - ok 09:44:30.0332 0x0dd8 DcomLaunch - ok 09:44:30.0338 0x0dd8 defragsvc - ok 09:44:30.0345 0x0dd8 DeviceAssociationBrokerSvc - ok 09:44:30.0352 0x0dd8 DeviceAssociationService - ok 09:44:30.0357 0x0dd8 DeviceInstall - ok 09:44:30.0361 0x0dd8 DevicePickerUserSvc - ok 09:44:30.0369 0x0dd8 DevicesFlowUserSvc - ok 09:44:30.0379 0x0dd8 [ F8BE99B9EA9B110F7CB3F46BA844C1FF, EABF953864C0AE4FB6426C0B7E92DD81EE4A8852081F9D2EA02B61D4C8DB6188 ] DevQueryBroker C:\WINDOWS\system32\DevQueryBroker.dll 09:44:30.0409 0x0dd8 DevQueryBroker - ok 09:44:30.0414 0x0dd8 Dfsc - ok 09:44:30.0419 0x0dd8 Dhcp - ok 09:44:30.0426 0x0dd8 diagnosticshub.standardcollector.service - ok 09:44:30.0431 0x0dd8 diagsvc - ok 09:44:30.0436 0x0dd8 DiagTrack - ok 09:44:30.0443 0x0dd8 DialogBlockingService - ok 09:44:30.0448 0x0dd8 disk - ok 09:44:30.0453 0x0dd8 DispBrokerDesktopSvc - ok 09:44:30.0459 0x0dd8 DisplayEnhancementService - ok 09:44:30.0464 0x0dd8 DmEnrollmentSvc - ok 09:44:30.0469 0x0dd8 dmvsc - ok 09:44:30.0475 0x0dd8 [ 2E8A026D6680C301ADF6D4B301A4CE8B, 2FDB34E2A61457308B0FEC938A2D6351F63D02BB67DC87FE4F2534E0048C8E89 ] dmwappushservice C:\WINDOWS\system32\dmwappushsvc.dll 09:44:30.0501 0x0dd8 dmwappushservice - ok 09:44:30.0507 0x0dd8 Dnscache - ok 09:44:30.0514 0x0dd8 dot3svc - ok 09:44:30.0522 0x0dd8 [ 9E65C33CB7FB50453F7F4407070EAF53, A8707BD19D584DAECA39990A2E791194140AFCA4FCE31F23CC7E931DF8C17361 ] DPS C:\WINDOWS\system32\dps.dll 09:44:30.0549 0x0dd8 DPS - ok 09:44:30.0554 0x0dd8 drmkaud - ok 09:44:30.0561 0x0dd8 DsmSvc - ok 09:44:30.0566 0x0dd8 DsSvc - ok 09:44:30.0577 0x0dd8 [ 81DF23EC4009D307479D5C169539CD67, 65AEE1E876CBE801A763F14930D15CF2E6A10697620B5903AA04BA30585A5676 ] DusmSvc C:\WINDOWS\System32\dusmsvc.dll 09:44:30.0609 0x0dd8 DusmSvc - ok 09:44:30.0613 0x0dd8 DXGKrnl - ok 09:44:30.0626 0x0dd8 [ 40C02799EE2421B0BE402D972CDC49CA, CB34EE412516D97B6F0831BE6B0AB9DBFAA6CC9A949183C96EF985D9DD264743 ] e1cexpress C:\WINDOWS\system32\DRIVERS\e1c65x64.sys 09:44:30.0647 0x0dd8 e1cexpress - ok 09:44:30.0656 0x0dd8 [ EC473A7AD03C7DE06505B1A9F9185C4C, D1BB3D554F8C1D004E5153BF927D2051587F3273265FCE595D918F8A7EA504BA ] eamonm C:\WINDOWS\system32\DRIVERS\eamonm.sys 09:44:30.0671 0x0dd8 eamonm - ok 09:44:30.0675 0x0dd8 Eaphost - ok 09:44:30.0679 0x0dd8 ebdrv - ok 09:44:30.0686 0x0dd8 [ 45A4485A2FE33070B58B4D2DFD420C2A, 772C77BE06EE0B609969E1974819FC11C3B2CBF3399A96DA8671B7A25324F1FD ] edevmon C:\WINDOWS\system32\DRIVERS\edevmon.sys 09:44:30.0699 0x0dd8 edevmon - ok 09:44:30.0709 0x0dd8 [ D21437C262283650E8349AFA573AC03A, 9C256D462F0640855E1AB3D2C658CB4EDD7E061EB2782FD03481196D5ED93DB5 ] edgeupdate C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe 09:44:30.0728 0x0dd8 edgeupdate - ok 09:44:30.0735 0x0dd8 [ D21437C262283650E8349AFA573AC03A, 9C256D462F0640855E1AB3D2C658CB4EDD7E061EB2782FD03481196D5ED93DB5 ] edgeupdatem C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe 09:44:30.0750 0x0dd8 edgeupdatem - ok 09:44:30.0755 0x0dd8 [ 3026ABB1E11D5192144478C404E5A7FB, D3AFB69D7C5200BBBBC16A45E2E89C42DA8A262316AA88DB9AE62FCA24D50668 ] eelam C:\WINDOWS\system32\DRIVERS\eelam.sys 09:44:30.0768 0x0dd8 eelam - ok 09:44:30.0774 0x0dd8 EFS - ok 09:44:30.0782 0x0dd8 [ CEFBF0B9AA63CA3628DD07C2C79E4D98, C160EEE41EEB382874B42308788BA74E1397B17F65FF048924E7378817967D95 ] ehdrv C:\WINDOWS\system32\DRIVERS\ehdrv.sys 09:44:30.0796 0x0dd8 ehdrv - ok 09:44:30.0801 0x0dd8 EhStorClass - ok 09:44:30.0805 0x0dd8 EhStorTcgDrv - ok 09:44:30.0813 0x0dd8 [ 5EFD4210E665A54F1864729D4F55252E, 25D48248C4DBE7D3FBEA898634D9EA4CC7B64A491F20E204067C9CAC3BA9913D ] ekbdflt C:\WINDOWS\system32\DRIVERS\ekbdflt.sys 09:44:30.0837 0x0dd8 ekbdflt - ok 09:44:30.0893 0x0dd8 [ BC094DAD16B4B6290CAD21A6CEF93407, 6491F51577776353CD4D6E536E611F8006C5B08C70B55B86E3BE052758C74F2F ] ekrn C:\Program Files\ESET\ESET Security\ekrn.exe 09:44:30.0975 0x0dd8 ekrn - ok 09:44:31.0028 0x0dd8 [ BC094DAD16B4B6290CAD21A6CEF93407, 6491F51577776353CD4D6E536E611F8006C5B08C70B55B86E3BE052758C74F2F ] ekrnEpfw C:\Program Files\ESET\ESET Security\ekrn.exe 09:44:31.0109 0x0dd8 ekrnEpfw - ok 09:44:31.0117 0x0dd8 embeddedmode - ok 09:44:31.0121 0x0dd8 EntAppSvc - ok 09:44:31.0126 0x0dd8 [ CB6A93A223B317E6CFAD9EED580F847F, 375004BFB811981F6DDF3DA43A77502FE166D34E41FF65203AC889CE3AD1A794 ] epfw C:\WINDOWS\system32\DRIVERS\epfw.sys 09:44:31.0136 0x0dd8 epfw - ok 09:44:31.0144 0x0dd8 [ 38133DA46696380A6628F9E570FAD5A8, CC0F94D3873C1FB13278445DE42370CBAF0F5BA0AFCC3F8F9410256B90C9E3FE ] epfwwfp C:\WINDOWS\system32\DRIVERS\epfwwfp.sys 09:44:31.0156 0x0dd8 epfwwfp - ok 09:44:31.0161 0x0dd8 ErrDev - ok 09:44:31.0168 0x0dd8 EventLog - ok 09:44:31.0174 0x0dd8 EventSystem - ok 09:44:31.0179 0x0dd8 exfat - ok 09:44:31.0183 0x0dd8 fastfat - ok 09:44:31.0188 0x0dd8 Fax - ok 09:44:31.0195 0x0dd8 fdc - ok 09:44:31.0199 0x0dd8 [ 0439B82F6034ADA3E71C0C9F169082BD, 0918728669077235B2F2DB7EE22CE819FA570D8A7A497BA5F11E76774EA75099 ] fdPHost C:\WINDOWS\system32\fdPHost.dll 09:44:31.0220 0x0dd8 fdPHost - ok 09:44:31.0226 0x0dd8 [ AD64C91B3CC71226785DCE688842E5AB, 056E1091468D268E7970045AB329EB3DFF48BB6B22448046A14C309678847B6E ] FDResPub C:\WINDOWS\system32\fdrespub.dll 09:44:31.0245 0x0dd8 FDResPub - ok 09:44:31.0249 0x0dd8 fhsvc - ok 09:44:31.0255 0x0dd8 [ 8E59D944EE4EFAED65A341A71297C4CD, CFFFD7007AB7FB04ECB44D0079BFE8EEB53AECC988135199C388AF425EBCF2AD ] FileCrypt C:\WINDOWS\system32\drivers\filecrypt.sys 09:44:31.0271 0x0dd8 FileCrypt - ok 09:44:31.0278 0x0dd8 FileInfo - ok 09:44:31.0282 0x0dd8 Filetrace - ok 09:44:31.0287 0x0dd8 flpydisk - ok 09:44:31.0294 0x0dd8 FltMgr - ok 09:44:31.0298 0x0dd8 FontCache - ok 09:44:31.0305 0x0dd8 FontCache3.0.0.0 - ok 09:44:31.0310 0x0dd8 FrameServer - ok 09:44:31.0315 0x0dd8 FsDepends - ok 09:44:31.0320 0x0dd8 Fs_Rec - ok 09:44:31.0326 0x0dd8 fvevol - ok 09:44:31.0332 0x0dd8 [ A1E06E4E8CB863C74DE428D4D6681185, DA46502C009FD4C847A547610DEE2684A5A583467BF76009BD46104AAE2F6B1B ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys 09:44:31.0345 0x0dd8 gencounter - ok 09:44:31.0354 0x0dd8 genericusbfn - ok 09:44:31.0382 0x0dd8 [ 87F6F0181589F69B2F8EA50EF176B643, 9ACAC7AE3BBB68D232079197BEF5BEDEEA7A6DB2AFDE3AA644266C15CB352104 ] GoogleChromeElevationService C:\Program Files\Google\Chrome\Application\96.0.4664.110\elevation_service.exe 09:44:31.0425 0x0dd8 GoogleChromeElevationService - ok 09:44:31.0437 0x0dd8 [ 058716AC41A50E66810C8663D22839B3, 9E77D6F2F5904100464B7C8DD3C6D5A4A743793D0C83EAF5E7F9E88F0A914659 ] googledrivefs3525 C:\WINDOWS\system32\DRIVERS\googledrivefs3525.sys 09:44:31.0456 0x0dd8 googledrivefs3525 - ok 09:44:31.0468 0x0dd8 [ 859D184F8BAC576D62F05512562073D3, D9DF282C513F6B162D373DA16313AB76CC176F6FAF4278C150A50A1A40C70DD7 ] googledrivefs3688 C:\WINDOWS\system32\DRIVERS\googledrivefs3688.sys 09:44:31.0498 0x0dd8 googledrivefs3688 - ok 09:44:31.0503 0x0dd8 GPIOClx0101 - ok 09:44:31.0507 0x0dd8 gpsvc - ok 09:44:31.0512 0x0dd8 [ 8C06046B6A8C1ACDAEA15682058FDFB4, 3E0CC301249B7D8D5BEB932F4DFD1EAB8037679EC153772F63B430713903B0AC ] GpuEnergyDrv C:\WINDOWS\system32\drivers\gpuenergydrv.sys 09:44:31.0528 0x0dd8 GpuEnergyDrv - ok 09:44:31.0532 0x0dd8 GraphicsPerfSvc - ok 09:44:31.0540 0x0dd8 [ 605CCC9CE1839BC5583017DF7CAE27A6, F1F67830FC3531DFBDAF5315F59422438AB9F243D89491AC75D1818E7ED98B5D ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 09:44:31.0552 0x0dd8 gupdate - ok 09:44:31.0559 0x0dd8 [ 605CCC9CE1839BC5583017DF7CAE27A6, F1F67830FC3531DFBDAF5315F59422438AB9F243D89491AC75D1818E7ED98B5D ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 09:44:31.0569 0x0dd8 gupdatem - ok 09:44:31.0574 0x0dd8 HdAudAddService - ok 09:44:31.0580 0x0dd8 HDAudBus - ok 09:44:31.0615 0x0dd8 [ B9346EC7AFF954BB77B43CCE5A0DF6FD, 860C87490EB9AC32A763829C3A47AB422535E18CEE2ECB71E2AEB9DDC4A579C6 ] HfcDisableService C:\WINDOWS\System32\DriverStore\FileRepository\iastorac.inf_amd64_ecb9604542bb4ba6\HfcDisableService.exe 09:44:31.0672 0x0dd8 HfcDisableService - ok 09:44:31.0678 0x0dd8 HidBatt - ok 09:44:31.0682 0x0dd8 HidBth - ok 09:44:31.0688 0x0dd8 hidi2c - ok 09:44:31.0694 0x0dd8 hidinterrupt - ok 09:44:31.0701 0x0dd8 [ 6B46E3061EC0523CB46ED28060FCD946, 6089305AF73CC584963865482448CD5CA4252EC9BD3E72AF16D45E4F95C3EBF2 ] HidIr C:\WINDOWS\System32\drivers\hidir.sys 09:44:31.0717 0x0dd8 HidIr - ok 09:44:31.0721 0x0dd8 hidserv - ok 09:44:31.0727 0x0dd8 hidspi - ok 09:44:31.0732 0x0dd8 HidUsb - ok 09:44:31.0748 0x0dd8 [ 57F340611F7B92BC2EF6D389A5DEB73C, 12EFE0D782D4A74651D6F15D151CC450FE7B250B41573D0F608F3DF16CF9785E ] HPPrintScanDoctorService C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe 09:44:31.0765 0x0dd8 HPPrintScanDoctorService - ok 09:44:31.0770 0x0dd8 HpSAMD - ok 09:44:31.0774 0x0dd8 HTTP - ok 09:44:31.0780 0x0dd8 [ 849A66D34BC2DAD0044FAC2FEE1AF956, A5F6858AA556D9180C303EA3ED02EB6D6D8EB55A100B3918654281A01198D8E8 ] hvcrash C:\WINDOWS\System32\drivers\hvcrash.sys 09:44:31.0792 0x0dd8 hvcrash - ok 09:44:31.0797 0x0dd8 [ 855F55BB462B7D8B6BC31A94A592DF3D, 776C772E69CF9D81D8511201813DD79F2106DC7D2547B4FA700432AE9B73C202 ] HvHost C:\WINDOWS\System32\hvhostsvc.dll 09:44:31.0812 0x0dd8 HvHost - ok 09:44:31.0818 0x0dd8 hvservice - ok 09:44:31.0825 0x0dd8 [ 5DC7DFED5FEDD923B874B51D0C6752BB, 69714A8B74EB02282572B34E156051FFC10693B816905CE18A8C6C8CCB95B846 ] HwNClx0101 C:\WINDOWS\system32\Drivers\mshwnclx.sys 09:44:31.0841 0x0dd8 HwNClx0101 - ok 09:44:31.0845 0x0dd8 hwpolicy - ok 09:44:31.0850 0x0dd8 hyperkbd - ok 09:44:31.0855 0x0dd8 HyperVideo - ok 09:44:31.0862 0x0dd8 i8042prt - ok 09:44:31.0866 0x0dd8 iagpio - ok 09:44:31.0871 0x0dd8 iai2c - ok 09:44:31.0877 0x0dd8 iaLPSS2i_GPIO2 - ok 09:44:31.0883 0x0dd8 iaLPSS2i_GPIO2_BXT_P - ok 09:44:31.0888 0x0dd8 iaLPSS2i_GPIO2_CNL - ok 09:44:31.0892 0x0dd8 iaLPSS2i_GPIO2_GLK - ok 09:44:31.0897 0x0dd8 iaLPSS2i_I2C - ok 09:44:31.0901 0x0dd8 iaLPSS2i_I2C_BXT_P - ok 09:44:31.0907 0x0dd8 iaLPSS2i_I2C_CNL - ok 09:44:31.0912 0x0dd8 iaLPSS2i_I2C_GLK - ok 09:44:31.0917 0x0dd8 iaLPSSi_GPIO - ok 09:44:31.0922 0x0dd8 iaLPSSi_I2C - ok 09:44:31.0947 0x0dd8 [ 1910AA9F3343925B0C900C7A424C4E0C, 4F8BB4D51FBC3CAB6532C602B6D46630C7270D05098CB87E5D9D13385C4DF359 ] iaStorAC C:\WINDOWS\system32\drivers\iaStorAC.sys 09:44:31.0982 0x0dd8 iaStorAC - ok 09:44:31.0988 0x0dd8 [ FCC320C72B5E8336932FD5C166756E13, 8149E66E3641F28F325A4BBE25176A6E515CFAB7AA256310789B730AE4E43AC2 ] iaStorAfs C:\WINDOWS\System32\drivers\iaStorAfs.sys 09:44:31.0999 0x0dd8 iaStorAfs - ok 09:44:32.0049 0x0dd8 [ 8395340EEB68C394EF5596421EDC23FF, FD2B6D04CBB5B7E087B1924CA7B4C4F01F9D45AE4DD3EAAD426C623034DD5A6C ] iaStorAfsService C:\WINDOWS\System32\iaStorAfsService.exe 09:44:32.0128 0x0dd8 iaStorAfsService - ok 09:44:32.0137 0x0dd8 iaStorAVC - ok 09:44:32.0141 0x0dd8 iaStorV - ok 09:44:32.0146 0x0dd8 ibbus - ok 09:44:32.0151 0x0dd8 icssvc - ok 09:44:32.0239 0x0dd8 [ 226EAECA4F21F899E3F0C95297678A0B, DC18AAE3F1505C9BECB75218F4CCCD8DC6E1C6258EDA9A57B57028246EF346FA ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys 09:44:32.0374 0x0dd8 igfx - ok 09:44:32.0383 0x0dd8 IKEEXT - ok 09:44:32.0387 0x0dd8 IndirectKmd - ok 09:44:32.0394 0x0dd8 InstallService - ok 09:44:32.0399 0x0dd8 intelide - ok 09:44:32.0404 0x0dd8 intelpep - ok 09:44:32.0412 0x0dd8 [ AECBF5BE2F9A2A50B978E0BF31041A81, A62F436C66DEFEB438A7891857DFB830995714A7E4FE4BDCA6B4EB1606BD2101 ] intelpmax C:\WINDOWS\System32\drivers\intelpmax.sys 09:44:32.0437 0x0dd8 intelpmax - ok 09:44:32.0443 0x0dd8 intelppm - ok 09:44:32.0447 0x0dd8 iorate - ok 09:44:32.0452 0x0dd8 IpFilterDriver - ok 09:44:32.0457 0x0dd8 iphlpsvc - ok 09:44:32.0461 0x0dd8 IPMIDRV - ok 09:44:32.0469 0x0dd8 [ F63572DF4295C78B3F7036AEDA878176, B71EB3CC4EC95BC9A3FA217736C6C36C756935714D7E16E34C05D913B829CB9C ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys 09:44:32.0492 0x0dd8 IPNAT - ok 09:44:32.0497 0x0dd8 [ B5B6D1F86E40E785D6650DB923DB6BEA, 7A2D92A2274E0379B5FA6351D18E2F0DD55960BB783EA3528FE9E303E1A4256D ] IPT C:\WINDOWS\System32\drivers\ipt.sys 09:44:32.0510 0x0dd8 IPT - ok 09:44:32.0515 0x0dd8 [ 77494E26B28465D2A09B9455F8A3B34E, B778D4BC71A5F5CF687175CA53AC342E4740156D4B96E6E96D918BD46C2C1459 ] IpxlatCfgSvc C:\WINDOWS\System32\IpxlatCfg.dll 09:44:32.0537 0x0dd8 IpxlatCfgSvc - ok 09:44:32.0543 0x0dd8 isapnp - ok 09:44:32.0548 0x0dd8 iScsiPrt - ok 09:44:32.0552 0x0dd8 ItSas35i - ok 09:44:32.0556 0x0dd8 kbdclass - ok 09:44:32.0561 0x0dd8 kbdhid - ok 09:44:32.0565 0x0dd8 kbldfltr - ok 09:44:32.0570 0x0dd8 kdnic - ok 09:44:32.0577 0x0dd8 KeyIso - ok 09:44:32.0581 0x0dd8 KSecDD - ok 09:44:32.0587 0x0dd8 KSecPkg - ok 09:44:32.0594 0x0dd8 ksthunk - ok 09:44:32.0605 0x0dd8 [ DAE67BD7EC6ED569438F5CA38BFBB458, 672CA98525D6DD799A01A3BC3A62AB7B4544D62ECEB3615FAC05BFB97B389D23 ] KtmRm C:\WINDOWS\system32\msdtckrm.dll 09:44:32.0637 0x0dd8 KtmRm - ok 09:44:32.0644 0x0dd8 LanmanServer - ok 09:44:32.0648 0x0dd8 LanmanWorkstation - ok 09:44:32.0656 0x0dd8 [ A997488F4EDAAD59C748CF9FB1D9DAC0, A0B145041F984DD4E0A6F8D0E9C8363DA6F2DA7460E140F028C320CEAC03759C ] lfsvc C:\WINDOWS\System32\lfsvc.dll 09:44:32.0677 0x0dd8 lfsvc - ok 09:44:32.0681 0x0dd8 LicenseManager - ok 09:44:32.0688 0x0dd8 [ 78779BD92081CB27967E77561683AFBE, 05EC91E194336D1BB1EE323E70FAC54F6DC0CEF53FD4925F394399531A37A0DD ] lltdio C:\WINDOWS\system32\drivers\lltdio.sys 09:44:32.0708 0x0dd8 lltdio - ok 09:44:32.0712 0x0dd8 lltdsvc - ok 09:44:32.0716 0x0dd8 lmhosts - ok 09:44:32.0724 0x0dd8 LSI_SAS - ok 09:44:32.0729 0x0dd8 LSI_SAS2i - ok 09:44:32.0734 0x0dd8 LSI_SAS3i - ok 09:44:32.0741 0x0dd8 LSI_SSS - ok 09:44:32.0746 0x0dd8 LSM - ok 09:44:32.0751 0x0dd8 luafv - ok 09:44:32.0756 0x0dd8 LxpSvc - ok 09:44:32.0763 0x0dd8 [ AE03D8F1B7863268EAED2FE0105ED75F, F5172A1A3E24FC5271FCB0118861EA0EC33AA8ABB01AE9CAD50E2F032B92486C ] MapsBroker C:\WINDOWS\System32\moshost.dll 09:44:32.0785 0x0dd8 MapsBroker - ok 09:44:32.0793 0x0dd8 mausbhost - ok 09:44:32.0797 0x0dd8 mausbip - ok 09:44:32.0805 0x0dd8 [ BF46AFE0CC03D9A5883E74438170B841, 43309A4DBCF15F09AB3066E96C498785C4F41DBCA8467B0385FCA467AE370980 ] MbamElam C:\WINDOWS\system32\DRIVERS\MbamElam.sys 09:44:32.0817 0x0dd8 MbamElam - ok 09:44:32.0943 0x0dd8 [ 92B16C970C547095D8378D5F0F5069D0, 6487967112232A05937B40A0FAD5BFFFBFAE9B6A8B0551E70EEEEA445CE2BB3F ] MBAMService C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe 09:44:33.0131 0x0dd8 MBAMService - ok 09:44:33.0145 0x0dd8 [ 0B17A8F4956ABD5FA1A0851B59FF960E, 1B62082ACA96EF78A61AFDB33EF77260292C5D08E5E35B56F7F8F0A3A837ED9B ] MBAMSwissArmy C:\WINDOWS\System32\Drivers\mbamswissarmy.sys 09:44:33.0159 0x0dd8 MBAMSwissArmy - ok 09:44:33.0164 0x0dd8 MbbCx - ok 09:44:33.0169 0x0dd8 megasas - ok 09:44:33.0175 0x0dd8 megasas2i - ok 09:44:33.0180 0x0dd8 megasas35i - ok 09:44:33.0186 0x0dd8 megasr - ok 09:44:33.0196 0x0dd8 [ 6D1671CB2E5402F01D2F13ECF764CAA1, 4778630F602FE8F9B9112DC5BB7A179632000D10D80C28E93711404108FCC6E0 ] MEIx64 C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys 09:44:33.0211 0x0dd8 MEIx64 - ok 09:44:33.0216 0x0dd8 MessagingService - ok 09:44:33.0225 0x0dd8 MicrosoftEdgeElevationService - ok 09:44:33.0231 0x0dd8 [ B74FFC6301B3312A9F59E04E487BC72A, 76F71824E80D10EB71BEDE5EE3A64CAD7CAC3DDFBB6670D1537E6B75FF0217E9 ] Microsoft_Bluetooth_AvrcpTransport C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys 09:44:33.0247 0x0dd8 Microsoft_Bluetooth_AvrcpTransport - ok 09:44:33.0253 0x0dd8 MixedRealityOpenXRSvc - ok 09:44:33.0258 0x0dd8 mlx4_bus - ok 09:44:33.0263 0x0dd8 MMCSS - ok 09:44:33.0268 0x0dd8 Modem - ok 09:44:33.0274 0x0dd8 monitor - ok 09:44:33.0280 0x0dd8 mouclass - ok 09:44:33.0285 0x0dd8 mouhid - ok 09:44:33.0291 0x0dd8 mountmgr - ok 09:44:33.0299 0x0dd8 mpsdrv - ok 09:44:33.0305 0x0dd8 mpssvc - ok 09:44:33.0310 0x0dd8 MRxDAV - ok 09:44:33.0315 0x0dd8 mrxsmb - ok 09:44:33.0320 0x0dd8 mrxsmb20 - ok 09:44:33.0328 0x0dd8 [ E587396A4C8151ABBF13A96C4465DE31, A3AA5D51E34657479CFCDC3DBB7821B7255F7CB57D5686B7F709A7953AD537EB ] MsBridge C:\WINDOWS\system32\drivers\bridge.sys 09:44:33.0352 0x0dd8 MsBridge - ok 09:44:33.0360 0x0dd8 [ 2EF846AC66E181BE820B513DBC15B5D2, EDFE71025C352D0DABEC7B9506C5945BB0EC11F8DB540DB8CB1116C2EA1648A8 ] MSDTC C:\WINDOWS\System32\msdtc.exe 09:44:33.0382 0x0dd8 MSDTC - ok 09:44:33.0392 0x0dd8 Msfs - ok 09:44:33.0398 0x0dd8 [ 6092FD060EC4132A799BDAD61845DDB7, B45F9D3A71FC8A73AED3C5B8CF6F14A25EBDD3D4D47C9F39FFCD75C7D22F4A9E ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys 09:44:33.0411 0x0dd8 msgpiowin32 - ok 09:44:33.0415 0x0dd8 mshidkmdf - ok 09:44:33.0420 0x0dd8 [ 9E90FE6DF363D2427A5C773120E7B27D, 1FDB7E28CCAF757603C4B754E1AC9C470E5E60E85DE067375902F108F5E34608 ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys 09:44:33.0442 0x0dd8 mshidumdf - ok 09:44:33.0446 0x0dd8 msisadrv - ok 09:44:33.0452 0x0dd8 MSiSCSI - ok 09:44:33.0458 0x0dd8 msiserver - ok 09:44:33.0464 0x0dd8 MsKeyboardFilter - ok 09:44:33.0468 0x0dd8 MSKSSRV - ok 09:44:33.0476 0x0dd8 [ 9FB5040C8CEAE4C32B7884ECBBCAFDAF, 0EC3E53C5B1B202440DE22A5BF7E1EBE9AF5BBB6BA69DB9D018A6D8EC97B477E ] MsLldp C:\WINDOWS\system32\drivers\mslldp.sys 09:44:33.0494 0x0dd8 MsLldp - ok 09:44:33.0499 0x0dd8 MSPCLOCK - ok 09:44:33.0503 0x0dd8 MSPQM - ok 09:44:33.0510 0x0dd8 MsQuic - ok 09:44:33.0514 0x0dd8 MsRPC - ok 09:44:33.0521 0x0dd8 MsSecFlt - ok 09:44:33.0527 0x0dd8 mssmbios - ok 09:44:33.0531 0x0dd8 MSTEE - ok 09:44:33.0537 0x0dd8 MTConfig - ok 09:44:33.0543 0x0dd8 Mup - ok 09:44:33.0547 0x0dd8 mvumis - ok 09:44:33.0555 0x0dd8 NativeWifiP - ok 09:44:33.0562 0x0dd8 NaturalAuthentication - ok 09:44:33.0569 0x0dd8 [ D47A20839608B8213065D7AFC8C42195, 7B0187BE9705ED2F925616C13B3744BAC0A9C96B21BE503D96BC9EE7EE125B33 ] NcaSvc C:\WINDOWS\System32\ncasvc.dll 09:44:33.0595 0x0dd8 NcaSvc - ok 09:44:33.0600 0x0dd8 NcbService - ok 09:44:33.0606 0x0dd8 [ 8C938E851CDF2CE30BBEA14555B61820, F853F526C811893BD40B1124BAEC543099381E7BF091729B6A6665DF3CE10B94 ] NcdAutoSetup C:\WINDOWS\System32\NcdAutoSetup.dll 09:44:33.0632 0x0dd8 NcdAutoSetup - ok 09:44:33.0636 0x0dd8 ndfltr - ok 09:44:33.0642 0x0dd8 NDIS - ok 09:44:33.0649 0x0dd8 [ 6BEC0929C7A7BF2A7C44F585ECC7DAEB, 5F6395268CBD26A4B90960479040C114B2C8A3F24C188C2D5F62D6AB43A637D1 ] NdisCap C:\WINDOWS\system32\drivers\ndiscap.sys 09:44:33.0665 0x0dd8 NdisCap - ok 09:44:33.0669 0x0dd8 NdisImPlatform - ok 09:44:33.0675 0x0dd8 NdisTapi - ok 09:44:33.0680 0x0dd8 Ndisuio - ok 09:44:33.0686 0x0dd8 NdisVirtualBus - ok 09:44:33.0691 0x0dd8 NdisWan - ok 09:44:33.0697 0x0dd8 ndiswanlegacy - ok 09:44:33.0703 0x0dd8 [ 33CDAEDC7CBE8339A8324CEC2461BFB4, DAAEACDB4506D2BDDED61957D92FB4983E11D9CE6E7B25119B4CBFB431C945F4 ] NDKPing C:\WINDOWS\system32\drivers\NDKPing.sys 09:44:33.0716 0x0dd8 NDKPing - ok 09:44:33.0720 0x0dd8 ndproxy - ok 09:44:33.0729 0x0dd8 [ 77621E74FD79B267071A0D12C643A48A, 8228B7D1237A0FFABCCC150B299EA494C8F0CB4CCB51AB0DBFF08CBAA9EFC4BB ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys 09:44:33.0747 0x0dd8 Ndu - ok 09:44:33.0751 0x0dd8 NetAdapterCx - ok 09:44:33.0756 0x0dd8 NetBIOS - ok 09:44:33.0763 0x0dd8 NetBT - ok 09:44:33.0768 0x0dd8 Netlogon - ok 09:44:33.0776 0x0dd8 Netman - ok 09:44:33.0781 0x0dd8 netprofm - ok 09:44:33.0786 0x0dd8 NetSetupSvc - ok 09:44:33.0797 0x0dd8 [ B9D455C60292DF5FCB064834CA5802AA, 75DCE4E5FA08CCEAF4D3D30FE8E26903FCDD14CC852E820F63B40F374C706DBD ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 09:44:33.0822 0x0dd8 NetTcpPortSharing - ok 09:44:33.0828 0x0dd8 netvsc - ok 09:44:33.0833 0x0dd8 NgcCtnrSvc - ok 09:44:33.0838 0x0dd8 NgcSvc - ok 09:44:33.0843 0x0dd8 NlaSvc - ok 09:44:33.0847 0x0dd8 Npfs - ok 09:44:33.0851 0x0dd8 npsvctrig - ok 09:44:33.0857 0x0dd8 nsi - ok 09:44:33.0863 0x0dd8 nsiproxy - ok 09:44:33.0872 0x0dd8 Ntfs - ok 09:44:33.0878 0x0dd8 Null - ok 09:44:33.0882 0x0dd8 nvdimm - ok 09:44:33.0888 0x0dd8 nvraid - ok 09:44:33.0894 0x0dd8 nvstor - ok 09:44:33.0899 0x0dd8 OneSyncSvc - ok 09:44:33.0911 0x0dd8 [ 62EB907977348EFFBCF671A31B911089, 95F7521556593B9DD4CB39D3521B8F10AF37C4414E48AF124C116D7F55B60CB8 ] ose c:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 09:44:33.0928 0x0dd8 ose - ok 09:44:33.0936 0x0dd8 p2pimsvc - ok 09:44:33.0948 0x0dd8 [ DA97CD5815EC123BC88382C08D465B9E, 46F5EA2E3D590FB10E14BC811612B6EF87C805B359A652D2C6BFE4840D5D6AA2 ] p2psvc C:\WINDOWS\system32\p2psvc.dll 09:44:33.0979 0x0dd8 p2psvc - ok 09:44:33.0984 0x0dd8 Parport - ok 09:44:33.0988 0x0dd8 partmgr - ok 09:44:33.0994 0x0dd8 PcaSvc - ok 09:44:33.0999 0x0dd8 pci - ok 09:44:34.0004 0x0dd8 pciide - ok 09:44:34.0011 0x0dd8 pcmcia - ok 09:44:34.0016 0x0dd8 pcw - ok 09:44:34.0022 0x0dd8 pdc - ok 09:44:34.0028 0x0dd8 PEAUTH - ok 09:44:34.0034 0x0dd8 PeerDistSvc - ok 09:44:34.0040 0x0dd8 perceptionsimulation - ok 09:44:34.0046 0x0dd8 percsas2i - ok 09:44:34.0052 0x0dd8 percsas3i - ok 09:44:34.0066 0x0dd8 [ 2FC7CFCEDBF7E038351C7CEB1036D2E1, 41D7DA706F0CF613DF768B6795CD09C5C1035F9F101051FB58F5042EB4352DB6 ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe 09:44:34.0097 0x0dd8 PerfHost - ok 09:44:34.0108 0x0dd8 PhoneSvc - ok 09:44:34.0113 0x0dd8 PimIndexMaintenanceSvc - ok 09:44:34.0120 0x0dd8 PktMon - ok 09:44:34.0150 0x0dd8 [ 9E431A5D697432DD6F4DB48C9A185104, 44C16E194258C9143A45F4022F9C5DE229E217D6FF7F944F105FE631BE9EF4A7 ] pla C:\WINDOWS\system32\pla.dll 09:44:34.0218 0x0dd8 pla - ok 09:44:34.0224 0x0dd8 PlugPlay - ok 09:44:34.0229 0x0dd8 pmem - ok 09:44:34.0234 0x0dd8 [ 2769F200292C0F941A10BD60C33EA4A6, B8345C32585C45E6248D7194B1071F2B8617718E7C9B270AAF44C132D029DB4C ] PNPMEM C:\WINDOWS\System32\drivers\pnpmem.sys 09:44:34.0249 0x0dd8 PNPMEM - ok 09:44:34.0255 0x0dd8 [ 6AAAC8AD69AEFBE5FE04738B687EE85E, 83427082298E2FC021D5D39A43DB4A5783D95213F2CA8D3A997DB6C815BD9CB2 ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll 09:44:34.0275 0x0dd8 PNRPAutoReg - ok 09:44:34.0279 0x0dd8 PNRPsvc - ok 09:44:34.0285 0x0dd8 PolicyAgent - ok 09:44:34.0291 0x0dd8 portcfg - ok 09:44:34.0299 0x0dd8 Power - ok 09:44:34.0304 0x0dd8 PptpMiniport - ok 09:44:34.0367 0x0dd8 [ 127682EFCBC718AE83C591CF12EDBE9E, EDA3BBCA39385ECFC53D6726E2E0311F86033F2E29BB2744A92339947D2498BD ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll 09:44:34.0485 0x0dd8 PrintNotify - ok 09:44:34.0492 0x0dd8 PrintWorkflowUserSvc - ok 09:44:34.0499 0x0dd8 Processor - ok 09:44:34.0504 0x0dd8 ProfSvc - ok 09:44:34.0510 0x0dd8 Psched - ok 09:44:34.0516 0x0dd8 PushToInstall - ok 09:44:34.0522 0x0dd8 [ 17107FA24BCFC328F68628E34FE57AC7, A3C38A490723948E91009FBE708741B86B4CE2D1DC379028507E2F27651E6CBC ] QBCFMonitorService C:\Program Files (x86)\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe 09:44:34.0533 0x0dd8 QBCFMonitorService - ok 09:44:34.0540 0x0dd8 [ 9EE9AA5D1FB3F3B99467A20B03B47C5D, 5C43150DF7FC7786DD7568219860BEC89460EE13889B37F01A6D15D4059EC146 ] QBFCService C:\Program Files (x86)\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe 09:44:34.0567 0x0dd8 QBFCService - detected UnsignedFile.Multi.Generic ( 1 ) 09:44:34.0567 0x0dd8 Detect skipped due to KSN trusted 09:44:34.0567 0x0dd8 QBFCService - ok 09:44:34.0592 0x0dd8 [ 22FA9963F28401CC21DF9017385DCE7A, 0A1D44FAE5C1A3ED796002C0D9D765C962A5F3C2C4C13814E8B593844137E486 ] QBVSS C:\Program Files (x86)\Common Files\Intuit\DataProtect\QBIDPService.exe 09:44:34.0625 0x0dd8 QBVSS - ok 09:44:34.0633 0x0dd8 QuickBooksDB27 - ok 09:44:34.0644 0x0dd8 [ 2F3808790D517E5E5E6ABF7177875C02, BE1A79A6498697EB86FC29638324A853197B49BC06AE3EB1130793F710926998 ] QWAVE C:\WINDOWS\system32\qwave.dll 09:44:34.0675 0x0dd8 QWAVE - ok 09:44:34.0681 0x0dd8 [ CE51A9A997D2830C6C64A36D7F8D8879, 706D683CAF92C259C121222446D34ED43F6E8872407C3615E2ED118ACD24D21D ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys 09:44:34.0696 0x0dd8 QWAVEdrv - ok 09:44:34.0700 0x0dd8 Ramdisk - ok 09:44:34.0707 0x0dd8 RasAcd - ok 09:44:34.0713 0x0dd8 RasAgileVpn - ok 09:44:34.0719 0x0dd8 RasAuto - ok 09:44:34.0725 0x0dd8 Rasl2tp - ok 09:44:34.0732 0x0dd8 RasMan - ok 09:44:34.0736 0x0dd8 RasPppoe - ok 09:44:34.0743 0x0dd8 RasSstp - ok 09:44:34.0748 0x0dd8 rdbss - ok 09:44:34.0756 0x0dd8 [ B7BAD23CA994EFF8EA11261626326004, 056495FB4A54984CE9D28D7B45550990D4A4B0736669F0F69138BEF51A695EFA ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys 09:44:34.0770 0x0dd8 rdpbus - ok 09:44:34.0777 0x0dd8 RDPDR - ok 09:44:34.0787 0x0dd8 RdpVideoMiniport - ok 09:44:34.0798 0x0dd8 [ B4A6F3BFB5A07DAF4E18C14A6337A226, F906865E349390D24A3DCBC563154BBB9F307B97361832BE93BC9D44A9F3B486 ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys 09:44:34.0817 0x0dd8 rdyboost - ok 09:44:34.0823 0x0dd8 ReFS - ok 09:44:34.0830 0x0dd8 ReFSv1 - ok 09:44:34.0836 0x0dd8 RemoteAccess - ok 09:44:34.0845 0x0dd8 [ 58B3C0A2B0C130838588EF519ADCE495, 60360DD8EA1802C8F95EB93531FF9666BE1148253E6A1BD706D4CA98955C0F6E ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll 09:44:34.0870 0x0dd8 RemoteRegistry - ok 09:44:34.0877 0x0dd8 RetailDemo - ok 09:44:34.0885 0x0dd8 [ D2EE9CCE0187C616E50D61EB30ECA262, 825C918D22FC8DBF3EE9BDB41D121A0AC3CCBFFBA147E2B26F0197552E0675DE ] RFCOMM C:\WINDOWS\System32\drivers\rfcomm.sys 09:44:34.0908 0x0dd8 RFCOMM - ok 09:44:34.0914 0x0dd8 [ 4DD0EFE49F0C020DAFEAE6F5F231362C, DF04978AF6CD34C8251B3DDE381CD77518684DCB1D2B16BD2DAFEE63AC9D5858 ] rhproxy C:\WINDOWS\System32\drivers\rhproxy.sys 09:44:34.0932 0x0dd8 rhproxy - ok 09:44:34.0939 0x0dd8 RmSvc - ok 09:44:34.0945 0x0dd8 RpcEptMapper - ok 09:44:34.0951 0x0dd8 [ D45676C47616B9ABBFAEC97DD3B240A8, E13985D667F66B7A0082356F23270F61A57B8C2DD211B1E09D66D7970D7B4D6A ] RpcLocator C:\WINDOWS\system32\locator.exe 09:44:34.0970 0x0dd8 RpcLocator - ok 09:44:34.0976 0x0dd8 RpcSs - ok 09:44:34.0983 0x0dd8 [ EABD30C39742A79913B595A5B6F809D4, 9067160F566220A2B21FEEE181729A796A3F3EECF75FFB75815BE5CCC7BBA64F ] rspndr C:\WINDOWS\system32\drivers\rspndr.sys 09:44:35.0002 0x0dd8 rspndr - ok 09:44:35.0046 0x0dd8 [ 7870D23C1E8AE7C8E140BD9B991700F5, F343A36A986AF1EA751606DE938292A9C130AFEDD3AE174E08212739266F1A66 ] RstMwService C:\WINDOWS\System32\DriverStore\FileRepository\iastorac.inf_amd64_ecb9604542bb4ba6\RstMwService.exe 09:44:35.0105 0x0dd8 RstMwService - ok 09:44:35.0113 0x0dd8 [ 5914CC0C1E99A3C1711BDB1E224526D1, 54BB8636F27282B396D487B3FEA8BD73F2F6FE6DA4DE8D718EE498F75A6A5DCE ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys 09:44:35.0126 0x0dd8 s3cap - ok 09:44:35.0130 0x0dd8 SamSs - ok 09:44:35.0136 0x0dd8 sbp2port - ok 09:44:35.0142 0x0dd8 SCardSvr - ok 09:44:35.0148 0x0dd8 ScDeviceEnum - ok 09:44:35.0153 0x0dd8 scfilter - ok 09:44:35.0160 0x0dd8 Schedule - ok 09:44:35.0165 0x0dd8 scmbus - ok 09:44:35.0170 0x0dd8 SCPolicySvc - ok 09:44:35.0176 0x0dd8 sdbus - ok 09:44:35.0182 0x0dd8 [ 3200667DB433F0A2032FAF4DC02E2089, 5E940CA63AD21CEA08C334AC61D985BAFDBA7DCB2D388F355B5C72EFA3E23E0A ] SDFRd C:\WINDOWS\System32\drivers\SDFRd.sys 09:44:35.0194 0x0dd8 SDFRd - ok 09:44:35.0199 0x0dd8 SDRSVC - ok 09:44:35.0248 0x0dd8 [ E3986BEA86CAC67F8C3ADD1D51B2C450, 501F5C5574F5564B44B4D04E4A276B284F4DCCF08677302AFD7F4C3A4178623A ] SDScannerService C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe 09:44:35.0315 0x0dd8 SDScannerService - ok 09:44:35.0321 0x0dd8 sdstor - ok 09:44:35.0394 0x0dd8 [ BFE605027616E371A6501300FC557138, 0D33AEB6674093B8C374DCAD8375B97B278E7CB93A953161E696F8BD125CD352 ] SDUpdateService C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe 09:44:35.0508 0x0dd8 SDUpdateService - ok 09:44:35.0530 0x0dd8 [ FCC850AEF12628C2B8F5A8AC370FB4DE, 5F2B5E067F37EE41CDD7BE392525DCBD44BBBCA9C634F0286381BA99BB507FFD ] SDWSCService C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe 09:44:35.0561 0x0dd8 SDWSCService - ok 09:44:35.0568 0x0dd8 [ 016706A76857F914C99D2472B1E79BF9, 39A114EB591E243E0429DA7279413F046626DE7B52E057DDBCD26A0A1BF327FB ] seclogon C:\WINDOWS\system32\seclogon.dll 09:44:35.0589 0x0dd8 seclogon - ok 09:44:35.0595 0x0dd8 SecurityHealthService - ok 09:44:35.0600 0x0dd8 SEMgrSvc - ok 09:44:35.0607 0x0dd8 [ 1EA7972A4C7163FF1D3EFE9988404D4E, 56A94B1617815C1E8A79D832B0F0CBA683C3080105CC4C87DBB9B8EAB4CD2690 ] SENS C:\WINDOWS\System32\sens.dll 09:44:35.0633 0x0dd8 SENS - ok 09:44:35.0638 0x0dd8 Sense - ok 09:44:35.0645 0x0dd8 SensorDataService - ok 09:44:35.0650 0x0dd8 SensorService - ok 09:44:35.0659 0x0dd8 [ 0BCFFAD6F3B180DD60C941B01768F733, A0B73C1BF636F14504B69606999287B6FE148C958A4F6E31E9022FF129A048E0 ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll 09:44:35.0686 0x0dd8 SensrSvc - ok 09:44:35.0691 0x0dd8 SerCx - ok 09:44:35.0697 0x0dd8 SerCx2 - ok 09:44:35.0702 0x0dd8 Serenum - ok 09:44:35.0706 0x0dd8 Serial - ok 09:44:35.0711 0x0dd8 sermouse - ok 09:44:35.0725 0x0dd8 SessionEnv - ok 09:44:35.0731 0x0dd8 sfloppy - ok 09:44:35.0737 0x0dd8 [ C05648C2BE6176BE557D9C7F02916388, C65D8FEDDCD9A52B04F42C64DAD2A499BF51246D36042E8DC09DD04C4C0B7BEE ] SgrmAgent C:\WINDOWS\system32\drivers\SgrmAgent.sys 09:44:35.0752 0x0dd8 SgrmAgent - ok 09:44:35.0757 0x0dd8 SgrmBroker - ok 09:44:35.0764 0x0dd8 SharedAccess - ok 09:44:35.0770 0x0dd8 SharedRealitySvc - ok 09:44:35.0780 0x0dd8 [ BE44F2B19C4F61FED874C7FE26DF92AA, 07888C7575A1D7D46AE375B1CE6C13665CCEE0F0672EA8FDE71B955B5BC0EA70 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll 09:44:35.0808 0x0dd8 ShellHWDetection - ok 09:44:35.0814 0x0dd8 shpamsvc - ok 09:44:35.0819 0x0dd8 SiSRaid2 - ok 09:44:35.0825 0x0dd8 SiSRaid4 - ok 09:44:35.0831 0x0dd8 SmartSAMD - ok 09:44:35.0839 0x0dd8 [ FF75E3F42E77904238AED44E4E03BAEF, 535013A9E3324198E1016963EBF306F3D34583F7031EE753EC6095B15E2D492C ] smbdirect C:\WINDOWS\system32\DRIVERS\smbdirect.sys 09:44:35.0860 0x0dd8 smbdirect - ok 09:44:35.0865 0x0dd8 smphost - ok 09:44:35.0871 0x0dd8 SmsRouter - ok 09:44:35.0884 0x0dd8 [ 1971BBC71602B928CF9257759E3C05E8, 9D665698FF26ED333AD385B4B7A6C0F2B6806371D278E281FA4188002A5317E8 ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe 09:44:35.0908 0x0dd8 SNMPTRAP - ok 09:44:35.0913 0x0dd8 [ 27B7D9E872939EBB34C30343F991893D, 879AFDC8C50487ED0D3CB58C70A206E185F94BE75C25C31C387F3F08740771F9 ] spaceparser C:\WINDOWS\system32\drivers\spaceparser.sys 09:44:35.0929 0x0dd8 spaceparser - ok 09:44:35.0933 0x0dd8 spaceport - ok 09:44:35.0940 0x0dd8 [ AB3BDEC793187CEDF1229AC98BB7DEDF, D2EA0C5FC534C89310207AA26A8816B30FEEF3F2708A067D8BB93D3CFF9C3936 ] SpatialGraphFilter C:\WINDOWS\system32\drivers\SpatialGraphFilter.sys 09:44:35.0954 0x0dd8 SpatialGraphFilter - ok 09:44:35.0959 0x0dd8 SpbCx - ok 09:44:35.0965 0x0dd8 spectrum - ok 09:44:35.0971 0x0dd8 Spooler - ok 09:44:35.0977 0x0dd8 sppsvc - ok 09:44:35.0982 0x0dd8 [ BE54E9691DCBDC7F010E647A464977AE, 8F9C363FF49A586B3A45A700289385BCB452EB16A82D5BA9375C53665FB85AA3 ] Spybot3ELAM C:\WINDOWS\system32\drivers\Spybot3ELAM.sys 09:44:35.0995 0x0dd8 Spybot3ELAM - ok 09:44:36.0002 0x0dd8 srv2 - ok 09:44:36.0009 0x0dd8 srvnet - ok 09:44:36.0015 0x0dd8 SSDPSRV - ok 09:44:36.0021 0x0dd8 ssh-agent - ok 09:44:36.0027 0x0dd8 SstpSvc - ok 09:44:36.0032 0x0dd8 StateRepository - ok 09:44:36.0038 0x0dd8 stexstor - ok 09:44:36.0044 0x0dd8 [ EE15AB566FA03A414C9FF82CAC713253, 4B53AAF2FC0F31A1CFA1AA1B418E7D6C7E28EC339A6A67974DE9E79CB1B71457 ] StillCam C:\WINDOWS\system32\DRIVERS\serscan.sys 09:44:36.0058 0x0dd8 StillCam - ok 09:44:36.0063 0x0dd8 stisvc - ok 09:44:36.0069 0x0dd8 storahci - ok 09:44:36.0075 0x0dd8 storflt - ok 09:44:36.0080 0x0dd8 stornvme - ok 09:44:36.0087 0x0dd8 storqosflt - ok 09:44:36.0094 0x0dd8 StorSvc - ok 09:44:36.0099 0x0dd8 storufs - ok 09:44:36.0104 0x0dd8 storvsc - ok 09:44:36.0111 0x0dd8 svsvc - ok 09:44:36.0116 0x0dd8 swenum - ok 09:44:36.0122 0x0dd8 swprv - ok 09:44:36.0128 0x0dd8 Synth3dVsc - ok 09:44:36.0133 0x0dd8 SysMain - ok 09:44:36.0139 0x0dd8 SystemEventsBroker - ok 09:44:36.0145 0x0dd8 TabletInputService - ok 09:44:36.0151 0x0dd8 TapiSrv - ok 09:44:36.0156 0x0dd8 Tcpip - ok 09:44:36.0164 0x0dd8 Tcpip6 - ok 09:44:36.0173 0x0dd8 [ 57BE670CF1D93717B628271B404D658A, EDD4C58EDAB985C87D6101D9CA5620146EE2BB8A1B899C635DD4CD36541DD46E ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys 09:44:36.0190 0x0dd8 tcpipreg - ok 09:44:36.0199 0x0dd8 tdx - ok 09:44:36.0408 0x0dd8 [ 13654289C46270544AED9BD829D1969A, 597B4D6C4E3557708564AFA07F07580EC37AE91A4FC8947BBB13FBFE407EC3D8 ] TeamViewer C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe 09:44:36.0670 0x0dd8 TeamViewer - ok 09:44:36.0684 0x0dd8 Telemetry - ok 09:44:36.0690 0x0dd8 [ C225B94F2B27AC97C3E66C0550AEA249, 6F88375DD12A648B77BB6EB4BE527FF6678EE76A2059DB5B4CC971CDB31D0DB8 ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys 09:44:36.0702 0x0dd8 terminpt - ok 09:44:36.0709 0x0dd8 TermService - ok 09:44:36.0716 0x0dd8 [ 8EC4197962A0349DFFBDC11586099DB8, 8DD5348A4983C376F63E6B209227D4D02300555F8C80A0E0DB2EA16074ABC334 ] Themes C:\WINDOWS\system32\themeservice.dll 09:44:36.0742 0x0dd8 Themes - ok 09:44:36.0747 0x0dd8 TieringEngineService - ok 09:44:36.0753 0x0dd8 TimeBrokerSvc - ok 09:44:36.0758 0x0dd8 TokenBroker - ok 09:44:36.0763 0x0dd8 TPM - ok 09:44:36.0770 0x0dd8 [ 62636F77E0C51D59F043D9197C897AD4, F121E79E0A15ED6E362D7DEF72F9C1D2D5CC50BBEC3541DFAB91691BC3AFB191 ] TrkWks C:\WINDOWS\System32\trkwks.dll 09:44:36.0796 0x0dd8 TrkWks - ok 09:44:36.0801 0x0dd8 TroubleshootingSvc - ok 09:44:36.0807 0x0dd8 TrustedInstaller - ok 09:44:36.0817 0x0dd8 [ F613A8618CC19DD96D1E0C81C5DCB7D1, AD6DE675AC033BE6BF75FF6303EAED4B5C672689D3AEC6DB94816D60E19B7030 ] TsUsbFlt C:\WINDOWS\system32\drivers\tsusbflt.sys 09:44:36.0835 0x0dd8 TsUsbFlt - ok 09:44:36.0840 0x0dd8 TsUsbGD - ok 09:44:36.0847 0x0dd8 tsusbhub - ok 09:44:36.0855 0x0dd8 [ 6244FD1056BF170E38245B4B9042BFDF, C32908B3C5800CD52EF9BDD26C77B8162831CFD19DBF1D399941B17FB909AD94 ] tunnel C:\WINDOWS\system32\drivers\tunnel.sys 09:44:36.0875 0x0dd8 tunnel - ok 09:44:36.0881 0x0dd8 tzautoupdate - ok 09:44:36.0887 0x0dd8 UASPStor - ok 09:44:36.0893 0x0dd8 UcmCx0101 - ok 09:44:36.0902 0x0dd8 [ 229B33B8499F4F2AAB1F3B590423611F, E70A2D9EEEF0C6894A0DB7990CFF6ECE3B8F389FD30B7B1949FCBDD3300B6148 ] UcmTcpciCx0101 C:\WINDOWS\system32\Drivers\UcmTcpciCx.sys 09:44:36.0924 0x0dd8 UcmTcpciCx0101 - ok 09:44:36.0931 0x0dd8 [ 7FDC3A6FD8547468CE554C8821640103, 3626760AEE42EE36E047DA6899A81E0646DFBA344A234270EAE5D635F049BE37 ] UcmUcsiAcpiClient C:\WINDOWS\System32\drivers\UcmUcsiAcpiClient.sys 09:44:36.0947 0x0dd8 UcmUcsiAcpiClient - ok 09:44:36.0952 0x0dd8 UcmUcsiCx0101 - ok 09:44:36.0959 0x0dd8 Ucx01000 - ok 09:44:36.0965 0x0dd8 UdeCx - ok 09:44:36.0970 0x0dd8 udfs - ok 09:44:36.0978 0x0dd8 UdkUserSvc - ok 09:44:36.0986 0x0dd8 UEFI - ok 09:44:36.0993 0x0dd8 UevAgentDriver - ok 09:44:36.0999 0x0dd8 UevAgentService - ok 09:44:37.0005 0x0dd8 Ufx01000 - ok 09:44:37.0011 0x0dd8 UfxChipidea - ok 09:44:37.0017 0x0dd8 ufxsynopsys - ok 09:44:37.0034 0x0dd8 [ 3CE7ADECE2CDAD638CFC04A685D132D3, CFC126A7F129D8D24511B500411FDDB07D0608F5DE838424CDF6C35AEBAF7ABE ] uhssvc C:\Program Files\Microsoft Update Health Tools\uhssvc.exe 09:44:37.0053 0x0dd8 uhssvc - ok 09:44:37.0060 0x0dd8 umbus - ok 09:44:37.0066 0x0dd8 UmPass - ok 09:44:37.0072 0x0dd8 UmRdpService - ok 09:44:37.0078 0x0dd8 UnistoreSvc - ok 09:44:37.0087 0x0dd8 upnphost - ok 09:44:37.0094 0x0dd8 [ 5C33B91675BE0C9693358C1AAA723D20, A5BB54ABBB0F7B13ACCA0997F567A81395688C6D68EB87F67F688737DC16918F ] UrsChipidea C:\WINDOWS\System32\DriverStore\FileRepository\urschipidea.inf_amd64_78ad1c14e33df968\urschipidea.sys 09:44:37.0104 0x0dd8 UrsChipidea - ok 09:44:37.0112 0x0dd8 [ ADFAB87405AE22290E24D0E8E6141AF1, BC0982BEFE4CABEA1E260C8A3266EA18A4CA158A07D1C5176890A04CC3B6A84A ] UrsCx01000 C:\WINDOWS\system32\drivers\urscx01000.sys 09:44:37.0136 0x0dd8 UrsCx01000 - ok 09:44:37.0143 0x0dd8 [ BBDE7BF496327115DD744E7D4105C7BC, 5A8CC47603A1C9D58A30A5E897F1BCDC56199B08317B9FF319D469D6DD6CAAF0 ] UrsSynopsys C:\WINDOWS\System32\DriverStore\FileRepository\urssynopsys.inf_amd64_057fa37902020500\urssynopsys.sys 09:44:37.0153 0x0dd8 UrsSynopsys - ok 09:44:37.0158 0x0dd8 usbaudio - ok 09:44:37.0168 0x0dd8 [ FB9F25ACEBCBAEABFE30CACCB17D4EE6, 7D38FA294DA179E5535E3E481746F07E2AE47CE57192C2D1C5B780B583FD9C6D ] usbaudio2 C:\WINDOWS\System32\drivers\usbaudio2.sys 09:44:37.0192 0x0dd8 usbaudio2 - ok 09:44:37.0197 0x0dd8 usbccgp - ok 09:44:37.0204 0x0dd8 [ 11561FC5BAA2DEB5AC8B179B591A882E, 2AD595BF4ABC146D8F533981848FF8271E983038566937BEB48A6A8F09BC60FB ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys 09:44:37.0221 0x0dd8 usbcir - ok 09:44:37.0227 0x0dd8 usbehci - ok 09:44:37.0232 0x0dd8 usbhub - ok 09:44:37.0238 0x0dd8 USBHUB3 - ok 09:44:37.0244 0x0dd8 usbohci - ok 09:44:37.0249 0x0dd8 usbprint - ok 09:44:37.0256 0x0dd8 [ 4D073745FA6C40483A3EF02225D20B19, 3FE72BE1BD429697DB8142A582455CD3341DE798D32EA780ACFA01904437A0D7 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys 09:44:37.0272 0x0dd8 usbscan - ok 09:44:37.0278 0x0dd8 usbser - ok 09:44:37.0284 0x0dd8 USBSTOR - ok 09:44:37.0289 0x0dd8 usbuhci - ok 09:44:37.0296 0x0dd8 USBXHCI - ok 09:44:37.0302 0x0dd8 UserDataSvc - ok 09:44:37.0311 0x0dd8 UserManager - ok 09:44:37.0316 0x0dd8 UsoSvc - ok 09:44:37.0322 0x0dd8 VacSvc - ok 09:44:37.0328 0x0dd8 VaultSvc - ok 09:44:37.0333 0x0dd8 vdrvroot - ok 09:44:37.0339 0x0dd8 vds - ok 09:44:37.0345 0x0dd8 VerifierExt - ok 09:44:37.0351 0x0dd8 vhdmp - ok 09:44:37.0357 0x0dd8 vhf - ok 09:44:37.0363 0x0dd8 Vid - ok 09:44:37.0370 0x0dd8 [ B37F0BF662BB504F0A9C247F24C281AD, 6281D573D9AD9AA204778C3823737726E882B17657B23CF5458C012FF7990E52 ] VirtualRender C:\WINDOWS\System32\DriverStore\FileRepository\vrd.inf_amd64_81fbd405ff2470fc\vrd.sys 09:44:37.0386 0x0dd8 VirtualRender - ok 09:44:37.0392 0x0dd8 vmbus - ok 09:44:37.0397 0x0dd8 VMBusHID - ok 09:44:37.0403 0x0dd8 [ E5BB075B6B5A1DA3C3F48CA5DFF54E77, E13E8F9523F51F976084561C9D0A843CAF550FA233521FF13FFE1C5634CA6472 ] vmgid C:\WINDOWS\System32\drivers\vmgid.sys 09:44:37.0416 0x0dd8 vmgid - ok 09:44:37.0422 0x0dd8 vmicguestinterface - ok 09:44:37.0427 0x0dd8 vmicheartbeat - ok 09:44:37.0433 0x0dd8 vmickvpexchange - ok 09:44:37.0439 0x0dd8 vmicrdv - ok 09:44:37.0445 0x0dd8 vmicshutdown - ok 09:44:37.0451 0x0dd8 vmictimesync - ok 09:44:37.0456 0x0dd8 vmicvmsession - ok 09:44:37.0463 0x0dd8 vmicvss - ok 09:44:37.0469 0x0dd8 volmgr - ok 09:44:37.0475 0x0dd8 volmgrx - ok 09:44:37.0481 0x0dd8 volsnap - ok 09:44:37.0486 0x0dd8 volume - ok 09:44:37.0494 0x0dd8 [ A37A7788DABE4FF6E33FE50D7A33D8E8, 9E99D9D27BA3DFA6F89C77B9AD91BE495F15E4F612BB63B209157DFA13BCD7E0 ] vpci C:\WINDOWS\system32\drivers\vpci.sys 09:44:37.0508 0x0dd8 vpci - ok 09:44:37.0513 0x0dd8 vsmraid - ok 09:44:37.0519 0x0dd8 VSS - ok 09:44:37.0524 0x0dd8 VSTXRAID - ok 09:44:37.0530 0x0dd8 vwifibus - ok 09:44:37.0536 0x0dd8 vwififlt - ok 09:44:37.0542 0x0dd8 W32Time - ok 09:44:37.0549 0x0dd8 WaaSMedicSvc - ok 09:44:37.0555 0x0dd8 WacomPen - ok 09:44:37.0562 0x0dd8 WalletService - ok 09:44:37.0567 0x0dd8 wanarp - ok 09:44:37.0572 0x0dd8 wanarpv6 - ok 09:44:37.0580 0x0dd8 [ 8449398F11D49864117105679B539816, 8FD3B9C72066D6A983D062DE72EEF9769339EACBF4E0D303B9E12343C9D5DE6C ] WarpJITSvc C:\WINDOWS\System32\Windows.WARP.JITService.dll 09:44:37.0613 0x0dd8 WarpJITSvc - ok 09:44:37.0619 0x0dd8 wbengine - ok 09:44:37.0625 0x0dd8 WbioSrvc - ok 09:44:37.0630 0x0dd8 wcifs - ok 09:44:37.0637 0x0dd8 Wcmsvc - ok 09:44:37.0644 0x0dd8 wcncsvc - ok 09:44:37.0649 0x0dd8 wcnfs - ok 09:44:37.0655 0x0dd8 WdBoot - ok 09:44:37.0661 0x0dd8 Wdf01000 - ok 09:44:37.0666 0x0dd8 WdFilter - ok 09:44:37.0674 0x0dd8 [ BB37AF6E45E0F69222E057A74B4AFE1E, 4662064205BEC0DB7B10F1412E0A09A6E5E3B16DE443AEF7F79ACA3ACE24A51D ] WdiServiceHost C:\WINDOWS\system32\wdi.dll 09:44:37.0701 0x0dd8 WdiServiceHost - ok 09:44:37.0708 0x0dd8 [ BB37AF6E45E0F69222E057A74B4AFE1E, 4662064205BEC0DB7B10F1412E0A09A6E5E3B16DE443AEF7F79ACA3ACE24A51D ] WdiSystemHost C:\WINDOWS\system32\wdi.dll 09:44:37.0731 0x0dd8 WdiSystemHost - ok 09:44:37.0737 0x0dd8 wdiwifi - ok 09:44:37.0745 0x0dd8 [ A6C92A5F2982EBB8788E0690C19048C4, 85C54A99DD43DC1FAC7FD2A31288CEC7501F795DE8FA86857790F4CCD5AF7C18 ] WdmCompanionFilter C:\WINDOWS\system32\drivers\WdmCompanionFilter.sys 09:44:37.0756 0x0dd8 WdmCompanionFilter - ok 09:44:37.0761 0x0dd8 WdNisDrv - ok 09:44:37.0770 0x0dd8 WdNisSvc - ok 09:44:37.0776 0x0dd8 WebClient - ok 09:44:37.0783 0x0dd8 Wecsvc - ok 09:44:37.0790 0x0dd8 [ CBA85827716DE89106F8E4AD7430620C, EF2FEAD68FE003DAC52BC2098962F397DF80B7DCD79A8F45012A050C7C0E2DB1 ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll 09:44:37.0813 0x0dd8 WEPHOSTSVC - ok 09:44:37.0819 0x0dd8 wercplsupport - ok 09:44:37.0826 0x0dd8 WerSvc - ok 09:44:37.0832 0x0dd8 WFDSConMgrSvc - ok 09:44:37.0838 0x0dd8 WFPLWFS - ok 09:44:37.0844 0x0dd8 WiaRpc - ok 09:44:37.0849 0x0dd8 WIMMount - ok 09:44:37.0855 0x0dd8 WinDefend - ok 09:44:37.0869 0x0dd8 [ B434A84F46C70F4E67B70ED70F024B7F, 64EEB8093BA2590E83D83C5AF7C2A025B88AF5681143BCA83671104266FEEA99 ] WindowsTrustedRT C:\WINDOWS\system32\drivers\WindowsTrustedRT.sys 09:44:37.0883 0x0dd8 WindowsTrustedRT - ok 09:44:37.0889 0x0dd8 [ 982774B74EE1419D641CEB66E394A4BA, 090C4CE6B76B3904B5AE73E4F1EEBCE619194C358874D7584537012F954C54BE ] WindowsTrustedRTProxy C:\WINDOWS\system32\drivers\WindowsTrustedRTProxy.sys 09:44:37.0902 0x0dd8 WindowsTrustedRTProxy - ok 09:44:37.0909 0x0dd8 WinHttpAutoProxySvc - ok 09:44:37.0915 0x0dd8 WinMad - ok 09:44:37.0924 0x0dd8 Winmgmt - ok 09:44:37.0930 0x0dd8 WinNat - ok 09:44:37.0937 0x0dd8 WinRM - ok 09:44:37.0952 0x0dd8 [ 91D3DC62C6EDDB6554CE14C0E0B4290F, 6F8F89B350FC6BC0D23A50C593F02514854AB7D6CD234D8C8AD4B5DDDD586BA0 ] WINUSB C:\WINDOWS\System32\drivers\WinUsb.sys 09:44:37.0971 0x0dd8 WINUSB - ok 09:44:37.0976 0x0dd8 WinVerbs - ok 09:44:37.0982 0x0dd8 wisvc - ok 09:44:37.0989 0x0dd8 WlanSvc - ok 09:44:37.0995 0x0dd8 wlidsvc - ok 09:44:38.0001 0x0dd8 wlpasvc - ok 09:44:38.0008 0x0dd8 WManSvc - ok 09:44:38.0014 0x0dd8 WmiAcpi - ok 09:44:38.0024 0x0dd8 wmiApSrv - ok 09:44:38.0030 0x0dd8 WMPNetworkSvc - ok 09:44:38.0036 0x0dd8 Wof - ok 09:44:38.0046 0x0dd8 workfolderssvc - ok 09:44:38.0052 0x0dd8 WpcMonSvc - ok 09:44:38.0058 0x0dd8 WPDBusEnum - ok 09:44:38.0065 0x0dd8 [ 024924C9E79F51560B9133EEAB866BBF, F4D464BC02C7B96EF72AA9229A99A1AD32F56390F97972C33525EF0D85304261 ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys 09:44:38.0078 0x0dd8 WpdUpFltr - ok 09:44:38.0083 0x0dd8 WpnService - ok 09:44:38.0089 0x0dd8 WpnUserService - ok 09:44:38.0099 0x0dd8 ws2ifsl - ok 09:44:38.0106 0x0dd8 wscsvc - ok 09:44:38.0113 0x0dd8 [ 3B974B8EAED22593AC3B946C694E08D9, 96A41C32F8724EAB8B2E88D1A21AB5B725616759E1FB731DEC0562F871ED7AB3 ] WSDPrintDevice C:\WINDOWS\System32\drivers\WSDPrint.sys 09:44:38.0129 0x0dd8 WSDPrintDevice - ok 09:44:38.0134 0x0dd8 WSDScan - ok 09:44:38.0140 0x0dd8 WSearch - ok 09:44:38.0152 0x0dd8 wuauserv - ok 09:44:38.0161 0x0dd8 [ 7FC0072ECE3F5F860990EF4E10D3F8F4, 15444A3E540EAD214A674FF0EB99CD42899D6A1139E59D69DE1C2B6BA364A9E0 ] WudfPf C:\WINDOWS\system32\drivers\WudfPf.sys 09:44:38.0186 0x0dd8 WudfPf - ok 09:44:38.0197 0x0dd8 [ 24B093F34B25076A2A6605DDAC8A629B, 64BEEA0C054C91AD2CEB9F6B9238A8ED3696FC20B8CC4753D88B8BC482D766C0 ] WUDFRd C:\WINDOWS\System32\drivers\WUDFRd.sys 09:44:38.0221 0x0dd8 WUDFRd - ok 09:44:38.0233 0x0dd8 [ 24B093F34B25076A2A6605DDAC8A629B, 64BEEA0C054C91AD2CEB9F6B9238A8ED3696FC20B8CC4753D88B8BC482D766C0 ] WUDFWpdFs C:\WINDOWS\system32\DRIVERS\WUDFRd.sys 09:44:38.0258 0x0dd8 WUDFWpdFs - ok 09:44:38.0269 0x0dd8 [ 24B093F34B25076A2A6605DDAC8A629B, 64BEEA0C054C91AD2CEB9F6B9238A8ED3696FC20B8CC4753D88B8BC482D766C0 ] WUDFWpdMtp C:\WINDOWS\System32\drivers\WUDFRd.sys 09:44:38.0292 0x0dd8 WUDFWpdMtp - ok 09:44:38.0298 0x0dd8 WwanSvc - ok 09:44:38.0304 0x0dd8 XblAuthManager - ok 09:44:38.0309 0x0dd8 XblGameSave - ok 09:44:38.0315 0x0dd8 xboxgip - ok 09:44:38.0321 0x0dd8 XboxGipSvc - ok 09:44:38.0328 0x0dd8 XboxNetApiSvc - ok 09:44:38.0334 0x0dd8 xinputhid - ok 09:44:38.0339 0x0dd8 ================ Scan global =============================== 09:44:38.0349 0x0dd8 [ Global ] - ok 09:44:38.0350 0x0dd8 ================ Scan MBR ================================== 09:44:38.0353 0x0dd8 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 09:44:38.0415 0x0dd8 \Device\Harddisk0\DR0 - ok 09:44:38.0420 0x0dd8 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk1\DR1 09:44:38.0825 0x0dd8 \Device\Harddisk1\DR1 - ok 09:44:38.0834 0x0dd8 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk2\DR2 09:44:38.0971 0x0dd8 \Device\Harddisk2\DR2 - ok 09:44:38.0972 0x0dd8 ================ Scan VBR ================================== 09:44:38.0994 0x0dd8 [ 073DCDDBC269F198E196DCF718AE0BD6 ] \Device\Harddisk0\DR0\Partition1 09:44:38.0996 0x0dd8 \Device\Harddisk0\DR0\Partition1 - ok 09:44:38.0999 0x0dd8 [ C0BE6F2528E1B7D3BD00F8D5FF836813 ] \Device\Harddisk0\DR0\Partition2 09:44:39.0001 0x0dd8 \Device\Harddisk0\DR0\Partition2 - ok 09:44:39.0005 0x0dd8 [ E1EEFB2C51447F6E61B2013BC395F2D6 ] \Device\Harddisk1\DR1\Partition1 09:44:39.0008 0x0dd8 \Device\Harddisk1\DR1\Partition1 - ok 09:44:39.0013 0x0dd8 [ 759138544FD64A40407E0D9093AAC955 ] \Device\Harddisk2\DR2\Partition1 09:44:39.0014 0x0dd8 \Device\Harddisk2\DR2\Partition1 - ok 09:44:39.0015 0x0dd8 ================ Scan active images ======================== 09:44:39.0015 0x0dd8 ================ Scan generic autorun ====================== 09:44:39.0023 0x0dd8 [ 783C99AFD4C2AE6950FA5694389D2CFA, 570B37A7A3FFDAFCCECCC33CBC1968FEB857B73CA3CB4DFFEDC2E67E9ABD0878 ] C:\WINDOWS\system32\SecurityHealthSystray.exe 09:44:39.0069 0x0dd8 SecurityHealth - ok 09:44:39.0078 0x0dd8 [ 3402BBBC16E909985C4F184EB247E9BD, 715806A02C33060C3A20AA1387AC656D92A217115123A2BA16DBE4B37C31880F ] C:\WINDOWS\system32\igfxtray.exe 09:44:39.0104 0x0dd8 IgfxTray - ok 09:44:39.0115 0x0dd8 [ 22BF0CCB64AAE89004355E924E0AD463, BA8FA7DCFAD8396C7A2DB583FF6118361F959040837215FD5198D8D0A4D7E9B6 ] C:\WINDOWS\system32\hkcmd.exe 09:44:39.0135 0x0dd8 HotKeysCmds - ok 09:44:39.0147 0x0dd8 [ FDA7C3D4227097EC5B45BF9E769B5427, C8A41A3EA957A64CECD17B6E5AFAE2775541C0838CE27FD759031B84180FBFA0 ] C:\WINDOWS\system32\igfxpers.exe 09:44:39.0169 0x0dd8 Persistence - ok 09:44:39.0178 0x0dd8 [ 76BEC0984FBD2BEC624B213D5B10C9AD, 97EB0836D032392E88C520DB0F6814E4934C0D4C730C9E5399FDF704F7E28327 ] C:\Program Files\ESET\ESET Security\ecmds.exe 09:44:39.0191 0x0dd8 egui - ok 09:44:39.0204 0x0dd8 [ 7F60E46E2447C4C6A94FD1E3BC4FAACF, 6D2954F1667280998ADCEBDE35A9D7A9F5173BC8602976A033F934101B84CAD5 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe 09:44:39.0225 0x0dd8 SunJavaUpdateSched - ok 09:44:39.0330 0x0dd8 [ D08B0C3965E0BD9D7D2EAC7E8AB22CD8, DAF77C8CC21874CA1AD43566A4F2CB546DC0FB1EDFE4690C0BC09C4880E16630 ] C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe 09:44:39.0476 0x0dd8 SDTray - ok 09:44:39.0489 0x0dd8 OneDriveSetup - ok 09:44:39.0494 0x0dd8 GoogleDriveFS - ok 09:44:39.0498 0x0dd8 OneDriveSetup - ok 09:44:39.0504 0x0dd8 GoogleDriveFS - ok 09:44:39.0510 0x0dd8 GoogleDriveSync - ok 09:44:39.0547 0x0dd8 [ 0A4396A437CE3DF19FB2FF50D4DC068F, 01A5F019A0D150A6F8C51E4EF1D7AAD1BE4DB6B2BDD9D4E97434C047B621CB14 ] C:\Users\Spices\AppData\Local\Microsoft\Teams\Update.exe 09:44:39.0598 0x0dd8 com.squirrel.Teams.Teams - ok 09:44:39.0603 0x0dd8 CCleaner Smart Cleaning - ok 09:44:39.0646 0x0dd8 [ BFE63F4ABEF763E787EE1001F1F2746E, 202BFA4D035FAEF64660E21828298ABCF87D50C17A0FF4A21D8A17A656EB6E7D ] C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe 09:44:39.0712 0x0dd8 CCleanerBrowserAutoLaunch_EBA6280FE373BC45FCF9CDB43D2FE029 - ok 09:44:39.0717 0x0dd8 GoogleDriveFS - ok 09:44:39.0726 0x0dd8 prueba - ok 09:44:39.0728 0x0dd8 OneDrive - ok 09:44:39.0732 0x0dd8 OneDriveSetup - ok 09:44:39.0737 0x0dd8 GoogleDriveFS - ok 09:44:39.0751 0x0dd8 [ 251E51E2FEDCE8BB82763D39D631EF89, 2682086ACE1970D5573F971669591B731F87D749406927BD7A7A4B58C3C662E9 ] C:\Program Files (x86)\Windows Mail\wab.exe 09:44:39.0797 0x0dd8 WAB Migrate - ok 09:44:39.0802 0x0dd8 AV detected via SS2: Spybot - Search and Destroy, C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe ( 2.8.66.0 ), 0x60010 ( disabled : outofdate ) 09:44:39.0803 0x0dd8 AV detected via SS2: ESET Security, C:\Program Files\ESET\ESET Security\ecmds.exe ( 15.0.21.0 ), 0x41000 ( enabled : updated ) 09:44:39.0803 0x0dd8 AV detected via SS2: Windows Defender, windowsdefender:// ( ), 0x60100 ( disabled : updated ) 09:44:39.0803 0x0dd8 AV detected via SS2: AVG Antivirus, C:\Program Files\AVG\Antivirus\wsc_proxy.exe ( ), 0x41000 ( enabled : updated ) 09:44:39.0804 0x0dd8 FW detected via SS2: AVG Antivirus, C:\Program Files\AVG\Antivirus\wsc_proxy.exe ( ), 0x41000 ( enabled ) 09:44:39.0804 0x0dd8 FW detected via SS2: ESET Firewall, C:\Program Files\ESET\ESET Security\ecmds.exe ( 15.0.21.0 ), 0x41000 ( enabled ) 09:44:40.0097 0x0dd8 ============================================================ 09:44:40.0097 0x0dd8 Scan finished 09:44:40.0097 0x0dd8 ============================================================ 09:44:40.0120 0x1f44 Detected object count: 0 09:44:40.0120 0x1f44 Actual detected object count: 0