18:19:29.0146 0x2918 TDSS rootkit removing tool 3.1.0.28 Apr 9 2019 21:11:46 18:19:29.0146 0x2918 UEFI system 18:19:29.0894 0x2918 ============================================================ 18:19:29.0894 0x2918 Current date / time: 2022/06/17 18:19:29.0894 18:19:29.0895 0x2918 SystemInfo: 18:19:29.0895 0x2918 18:19:29.0895 0x2918 OS Version: 10.0.19044 ServicePack: 0.0 18:19:29.0895 0x2918 Product type: Workstation 18:19:29.0895 0x2918 ComputerName: 18:19:29.0895 0x2918 UserName: 18:19:29.0895 0x2918 Windows directory: C:\WINDOWS 18:19:29.0895 0x2918 System windows directory: C:\WINDOWS 18:19:29.0895 0x2918 Running under WOW64 18:19:29.0895 0x2918 Processor architecture: Intel x64 18:19:29.0895 0x2918 Number of processors: 4 18:19:29.0895 0x2918 Page size: 0x1000 18:19:29.0895 0x2918 Boot type: Normal boot 18:19:29.0895 0x2918 CodeIntegrityOptions = 0x0000C001 18:19:29.0895 0x2918 ============================================================ 18:19:29.0897 0x2918 KLMD ARK init status: drvProperties = 0xEF0F02, osBuild = 19041.0, osProperties = 0x1D 18:19:29.0897 0x2918 KLMD BG init status: drvProperties = 0xEF0F02, osBuild = 19041.0, osProperties = 0x1D 18:19:29.0897 0x2918 BG loaded 18:19:30.0330 0x2918 System UUID: {DAEA83A5-4D53-83B0-913D-66E3BB885E86} 18:19:30.0829 0x2918 !crdlk 18:19:31.0036 0x2918 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'A' 18:19:31.0065 0x2918 ============================================================ 18:19:31.0065 0x2918 \Device\Harddisk0\DR0: 18:19:31.0099 0x2918 GPT partitions: 18:19:31.0100 0x2918 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {3B523CBC-B436-4DE1-B346-10F4A3AD745A}, Name: EFI system partition, StartLBA 0x800, BlocksNum 0x32000 18:19:31.0100 0x2918 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {9602C81E-8BAB-4EBF-9641-608637504F0C}, Name: Microsoft reserved partition, StartLBA 0x32800, BlocksNum 0x8000 18:19:31.0100 0x2918 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {239EA765-5026-4DD0-9FBE-6A7A40C452CE}, Name: Basic data partition, StartLBA 0x3A800, BlocksNum 0x3A262877 18:19:31.0101 0x2918 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {D8236469-4975-4CA6-9D46-C542598CD169}, Name: Basic data partition, StartLBA 0x3A29D077, BlocksNum 0x200000 18:19:31.0101 0x2918 \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {021F3ED6-518F-4F17-8AC3-932D9D5F0576}, Name: Basic data partition, StartLBA 0x3A49D077, BlocksNum 0x3A266738 18:19:31.0103 0x2918 MBR partitions: 18:19:31.0103 0x2918 ============================================================ 18:19:31.0174 0x2918 C: <-> \Device\Harddisk0\DR0\Partition3 18:19:31.0752 0x2918 D: <-> \Device\Harddisk0\DR0\Partition5 18:19:31.0753 0x2918 ============================================================ 18:19:31.0753 0x2918 Initialize success 18:19:31.0753 0x2918 ============================================================ 18:20:23.0657 0x336c ============================================================ 18:20:23.0657 0x336c Scan started 18:20:23.0657 0x336c Mode: Manual; SigCheck; TDLFS; 18:20:23.0657 0x336c ============================================================ 18:20:23.0657 0x336c KSN ping started 18:20:23.0816 0x336c KSN ping finished: true 18:20:46.0623 0x336c ================ Scan BIOS ================================= 18:20:46.0624 0x336c BIOS info: vendor = Acer, version = R02-B1, releaseDate = 06/19/2018 18:20:46.0624 0x336c Base board info: manufacturer = Acer, product = Veriton X2640G(KBL), version = V:1.0 18:20:51.0941 0x336c [ 50C976B7C190D836A308593F4BA67647, 94CDCF1B395EB072B00571598A16A6D153F49689A62CB937B8C31F08DD170D07 ] BIOS 18:20:52.0010 0x336c BIOS - ok 18:20:52.0012 0x336c ================ Scan system memory ======================== 18:20:52.0014 0x336c System memory - ok 18:20:52.0015 0x336c ================ Scan services ============================= 18:20:58.0311 0x336c 1394ohci - ok 18:20:58.0321 0x336c 3ware - ok 18:20:58.0727 0x336c AarSvc - ok 18:20:59.0350 0x336c ACPI - ok 18:20:59.0386 0x336c AcpiDev - ok 18:20:59.0390 0x336c acpiex - ok 18:20:59.0397 0x336c acpipagr - ok 18:20:59.0615 0x336c [ 33B5ED555018128792AFFCDC9AF7AFD2, 1E7C5FADA2486EE31289A4BEFB70AEA173190671C64995441651903CF31E5033 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys 18:21:02.0407 0x336c AcpiPmi - ok 18:21:02.0552 0x336c acpitime - ok 18:21:02.0691 0x336c Acx01000 - ok 18:21:03.0607 0x336c [ 437A1C97D7A8A11006C4458408DE4A9E, 8771A5C865FBD2B1FF9315665BB17A87B3D22C237A35A1A22B72C64326A48700 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 18:21:03.0631 0x336c AdobeARMservice - ok 18:21:03.0685 0x336c ADP80XX - ok 18:21:03.0833 0x336c AFD - ok 18:21:03.0889 0x336c afunix - ok 18:21:04.0098 0x336c AgSvc - ok 18:21:04.0175 0x336c ahcache - ok 18:21:04.0218 0x336c [ 526FE18DB976D9A1AE19FBC53FA690B1, 4E2623243A9BB61F7211E591C24EDB70B07974A7FA21E3F14C683F27E975777F ] AJRouter C:\WINDOWS\System32\AJRouter.dll 18:21:08.0512 0x336c AJRouter - ok 18:21:08.0779 0x336c ALG - ok 18:21:08.0810 0x336c amdgpio2 - ok 18:21:08.0824 0x336c amdi2c - ok 18:21:08.0924 0x336c AmdK8 - ok 18:21:08.0940 0x336c AmdPPM - ok 18:21:08.0955 0x336c amdsata - ok 18:21:08.0966 0x336c amdsbs - ok 18:21:08.0971 0x336c amdxata - ok 18:21:09.0160 0x336c [ 5E17639CD0BA70FD2B22B1D054343AC8, C2F18FE1C706C9312F19B531FB374216FD52AAD279754A6BB8E143E271A39ACE ] AnyDesk C:\Program Files (x86)\AnyDesk\AnyDesk.exe 18:21:09.0233 0x336c AnyDesk - ok 18:21:09.0268 0x336c APLI Master AutoUpdater - ok 18:21:09.0512 0x336c AppID - ok 18:21:09.0775 0x336c AppIDSvc - ok 18:21:10.0318 0x336c Appinfo - ok 18:21:10.0436 0x336c applockerfltr - ok 18:21:10.0794 0x336c AppMgmt - ok 18:21:10.0860 0x336c AppReadiness - ok 18:21:11.0001 0x336c AppVClient - ok 18:21:11.0206 0x336c AppvStrm - ok 18:21:11.0231 0x336c AppvVemgr - ok 18:21:11.0236 0x336c AppvVfs - ok 18:21:11.0384 0x336c AppXSvc - ok 18:21:11.0469 0x336c arcsas - ok 18:21:11.0667 0x336c AssignedAccessManagerSvc - ok 18:21:11.0674 0x336c AsyncMac - ok 18:21:12.0013 0x336c atapi - ok 18:21:12.0338 0x336c AudioEndpointBuilder - ok 18:21:12.0594 0x336c Audiosrv - ok 18:21:12.0923 0x336c autotimesvc - ok 18:21:14.0655 0x336c [ DAD2B7166FEBC2890CDFC5513CA27663, 0A25E1F491B1428AC84D26FABD56E2BF1DA7708FE7BD9A7AAD4F7BF39C7B5742 ] AVG Antivirus C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe 18:21:14.0678 0x336c AVG Antivirus - ok 18:21:14.0814 0x336c [ 36165AA2B1DCCDEF21B906E297A171A2, 78AC2AF702B8936C023D0B4ECC78237B0AF31FB1972E9A393D3D764B7C3EC985 ] AVG Tools C:\Program Files (x86)\AVG\Antivirus\avgToolsSvc.exe 18:21:14.0881 0x336c AVG Tools - ok 18:21:18.0989 0x336c [ A62E5458FE1DCD1E217015A4A4E3B95D, 8FD943B72D5A672739F12103B821328F9051599237273D562F023883734FB1D1 ] avgArDisk C:\WINDOWS\system32\drivers\avgArDisk.sys 18:21:20.0504 0x336c avgArDisk - ok 18:21:20.0695 0x336c [ D651EE6C3ACD5464561B76CFCBFD6DED, 0BC32711498861A515E4EA0D496DED17959881F89094FF98887A235BAF62045D ] avgArPot C:\WINDOWS\system32\drivers\avgArPot.sys 18:21:21.0094 0x336c avgArPot - ok 18:21:22.0492 0x336c [ 8E4A5481C29CE532C94E6F2F88C83E7B, 5BEE1E4DE2A02A297CEF169F750D34A3FB8463E4502F9595D6C42BAEC3A0E987 ] avgbIDSAgent C:\Program Files (x86)\AVG\Antivirus\aswidsagent.exe 18:21:23.0223 0x336c avgbIDSAgent - ok 18:21:28.0449 0x336c [ 8DB3EE6885CDA60E5903E85856FDA4A9, 40B83FA3EE99F0403308BEECA29BD9B8D6F3DF3D06B69B07F81132BDD4EB2200 ] avgbidsdriver C:\WINDOWS\system32\drivers\avgbidsdriver.sys 18:21:30.0018 0x336c avgbidsdriver - ok 18:21:30.0149 0x336c [ DE150257F099D2499C2F63004DAAF596, C97A3D1139D1CA2CD73ED30179772BFBBCDA159F69DB8130FB2DEFD73B660C04 ] avgbidsh C:\WINDOWS\system32\drivers\avgbidsh.sys 18:21:30.0436 0x336c avgbidsh - ok 18:21:30.0509 0x336c [ 0170DD393BF1716B6121FF8B1F33C132, 467A3599521A439B6310F44CF55E66C34C6C348AA04A9F98552B0604E7BB6722 ] avgbuniv C:\WINDOWS\system32\drivers\avgbuniv.sys 18:21:30.0915 0x336c avgbuniv - ok 18:21:30.0961 0x336c [ 6F8ECE4248AB344EB018B7DDCAEEACE3, 871191CF999816108047749E67A35225E2BD271C4B482C7F6E412DDA41C0C458 ] avgElam C:\WINDOWS\system32\drivers\avgElam.sys 18:21:31.0216 0x336c avgElam - ok 18:21:31.0282 0x336c [ FCA3E9C4B2E44E350F4DBF84A1B06140, C113DFD973760F62EC6BE7830E1A79A8891C153C06238BA2471DC6D985361F67 ] avgKbd C:\WINDOWS\system32\drivers\avgKbd.sys 18:21:31.0718 0x336c avgKbd - ok 18:21:31.0762 0x336c [ D39E728959051932F10E1AF3F4707443, 4E866F48405091490A2564F8DABB2D9C26EFA8BED8567186313009638FADA789 ] avgMonFlt C:\WINDOWS\system32\drivers\avgMonFlt.sys 18:21:32.0043 0x336c avgMonFlt - ok 18:21:32.0093 0x336c [ 027179FB5E63D73526847C4B2FCA47C4, AD9197DF038BBB4768BA3254683F858564195869BF20A2AF33664BE2B8902495 ] avgNetHub C:\WINDOWS\system32\drivers\avgNetHub.sys 18:21:32.0537 0x336c avgNetHub - ok 18:21:32.0598 0x336c [ C385FCD3C7DF6816A8B0CFA9C2687A46, 888D7145E6B4F153396651BC34ECF8B77B1E82249702D8AFA769AED75B448135 ] avgRdr C:\WINDOWS\system32\drivers\avgRdr2.sys 18:21:33.0049 0x336c avgRdr - ok 18:21:33.0101 0x336c [ 2A98F58FF78A8DCE1A578B4DB78EA67D, 3BE7FF3C4E291DD10950278EDA08FC202FA400BB17B8DF3C891E3EF3DE02005A ] avgRvrt C:\WINDOWS\system32\drivers\avgRvrt.sys 18:21:33.0312 0x336c avgRvrt - ok 18:21:33.0437 0x336c [ 7A72784F9E1F7DAB884F4A44E574DC1B, 38509530467B6A7E523FCADA7810670895F3492D29975C1F6F822F1F65369081 ] avgSnx C:\WINDOWS\system32\drivers\avgSnx.sys 18:21:33.0631 0x336c avgSnx - ok 18:21:33.0681 0x336c [ E754F86882EAFCE2C19221AF3C6FD091, 2800A1562FDB0A66D3E28C52158EF6F16B355612ED3F43C69E716D1AC97C891D ] avgSP C:\WINDOWS\system32\drivers\avgSP.sys 18:21:33.0933 0x336c avgSP - ok 18:21:33.0982 0x336c [ F285B332DC6C7E0EAA52934CBF77B482, D2664AB02B7CA648C4252C88BE0B5AC27D473E421231438402EDF1A800BB4121 ] avgStm C:\WINDOWS\system32\drivers\avgStm.sys 18:21:34.0099 0x336c avgStm - ok 18:21:34.0180 0x336c [ 2ACB948701A8ED3A4F1172F5500CB323, 29F19387145E1F9F98C7CBA374289424F2BD5A7158AA622F0AC9BA558224323C ] avgVmm C:\WINDOWS\system32\drivers\avgVmm.sys 18:21:34.0467 0x336c avgVmm - ok 18:21:35.0384 0x336c [ 75CA8458D560E6F26A7EE0475E650458, CF9C722DE59B6A7EBBA99620E45693F6F9AFFA8BE26A361FB5D6662E539DAC3A ] AvgWscReporter C:\Program Files (x86)\AVG\Antivirus\wsc_proxy.exe 18:21:35.0392 0x336c AvgWscReporter - ok 18:21:39.0038 0x336c AxInstSV - ok 18:21:39.0434 0x336c b06bdrv - ok 18:21:39.0524 0x336c [ 26E2320D24C66EB72B36EB71EBEF2558, 7D06B6499FE915480DF4DAD658281C8B85F7AD71F49B089A270AE0B45713F2E9 ] bam C:\WINDOWS\system32\drivers\bam.sys 18:21:40.0043 0x336c bam - ok 18:21:40.0699 0x336c BasicDisplay - ok 18:21:45.0398 0x336c BasicRender - ok 18:21:49.0536 0x336c BcastDVRUserService - ok 18:21:49.0950 0x336c [ 739D089777D2B66DBE7201E5EA4BA2D7, 9AD12E18A042C5B8EFB19297BC2E7BD1FEF75A138FEFB64C6BF0261FD3E53AB1 ] bcmfn2 C:\WINDOWS\System32\drivers\bcmfn2.sys 18:21:50.0802 0x336c bcmfn2 - ok 18:21:50.0865 0x336c BDESVC - ok 18:21:50.0941 0x336c [ 4280B427B81EB8C265F3206E2298761E, 121AF03BBE6ECC1622C2540805A30AE9555EB5D5FE25B55939C045ECE7FC37EB ] Beep C:\WINDOWS\system32\drivers\Beep.sys 18:21:52.0035 0x336c Beep - ok 18:21:52.0106 0x336c BFE - ok 18:21:52.0122 0x336c bindflt - ok 18:21:52.0199 0x336c BITS - ok 18:21:52.0244 0x336c BluetoothUserService - ok 18:21:52.0356 0x336c bowser - ok 18:21:52.0435 0x336c BrokerInfrastructure - ok 18:21:52.0480 0x336c Browser - ok 18:21:52.0546 0x336c BTAGService - ok 18:21:52.0621 0x336c [ 2956421DEB707AD4BA2EB74E4C0AAB36, EA643E6B89115BCAEC222BDD83A0478B84CAA4BF2C0F337463C3D954AD1985C0 ] BthA2dp C:\WINDOWS\System32\drivers\BthA2dp.sys 18:21:53.0216 0x336c BthA2dp - ok 18:21:53.0328 0x336c BthAvctpSvc - ok 18:21:53.0400 0x336c BthEnum - ok 18:21:53.0542 0x336c [ E7695E8EC994918210016D67D4E2512B, 4EEC1DEA3295DD5D292B1425CE34904A787ADEE0F5B0500CE3C9BC09230E8B41 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys 18:21:53.0845 0x336c BthHFEnum - ok 18:21:54.0007 0x336c BthLEEnum - ok 18:21:54.0017 0x336c BthMini - ok 18:21:54.0109 0x336c [ 11D609CC74F0EB1DF6C0171331CDE9A1, 9412DC92F16C0B8A937D6FB1AD83D7169F4EC0F08FAE0E2B244346428CE99EE1 ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys 18:21:54.0380 0x336c BTHMODEM - ok 18:21:54.0412 0x336c BTHPORT - ok 18:21:54.0502 0x336c [ D293AC628357F2F75B8579087F732970, 1E536D8863D695944214D55E9B0B4BFE04F705DB7ECA18A0CF8B37AAF4893B1E ] bthserv C:\WINDOWS\system32\bthserv.dll 18:22:04.0222 0x336c bthserv - ok 18:22:04.0408 0x336c BTHUSB - ok 18:22:04.0682 0x336c bttflt - ok 18:22:04.0692 0x336c buttonconverter - ok 18:22:05.0155 0x336c [ E7690568D2A5FA3D4E6D28B42358A122, CDBD820B6D383EC0A8151EA4300435C2BAD085EC55DB185C5E16CAF961443888 ] CAD C:\WINDOWS\System32\drivers\CAD.sys 18:22:05.0509 0x336c CAD - ok 18:22:06.0037 0x336c camsvc - ok 18:22:06.0193 0x336c CaptureService - ok 18:22:06.0499 0x336c cbdhsvc - ok 18:22:06.0667 0x336c cdfs - ok 18:22:06.0742 0x336c CDPSvc - ok 18:22:06.0814 0x336c CDPUserSvc - ok 18:22:07.0025 0x336c cdrom - ok 18:22:07.0295 0x336c CertPropSvc - ok 18:22:07.0332 0x336c cht4iscsi - ok 18:22:07.0359 0x336c cht4vbd - ok 18:22:07.0632 0x336c CimFS - ok 18:22:08.0017 0x336c [ 115CC1E142CE29C9006D59943108DF47, 564FA08C5BEC6DAF1A83C80C9139A6E1AA7E05D251DB3BA379B57C9FDAE83E1B ] circlass C:\WINDOWS\System32\drivers\circlass.sys 18:22:09.0173 0x336c circlass - ok 18:22:09.0279 0x336c CldFlt - ok 18:22:09.0328 0x336c CLFS - ok 18:22:09.0405 0x336c ClipSVC - ok 18:22:09.0880 0x336c cloudidsvc - ok 18:22:10.0107 0x336c CmBatt - ok 18:22:10.0161 0x336c CNG - ok 18:22:10.0300 0x336c [ A46B4D1484227900F7615FE2A569D828, A06B8002E7A708890222C777DDF8B67FED7015C0943C1FC4F9036E9F9DC14494 ] cnghwassist C:\WINDOWS\system32\DRIVERS\cnghwassist.sys 18:22:10.0562 0x336c cnghwassist - ok 18:22:12.0035 0x336c [ 99392FDADF3CE5EB47403E5A52866E6F, 63CEF51971EB85D9823CE9A95F1ED9907D20525ED8E32230068CC36E9082A8C3 ] CompositeBus C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_7500cffa210c6946\CompositeBus.sys 18:22:12.0516 0x336c CompositeBus - ok 18:22:16.0217 0x336c COMSysApp - ok 18:22:16.0645 0x336c condrv - ok 18:22:16.0783 0x336c ConsentUxUserSvc - ok 18:22:17.0190 0x336c CoreMessagingRegistrar - ok 18:22:17.0949 0x336c [ DF4A5C4A898EBA720D135D08CCE7DEBA, 09072871FFEAD56FBE14B179C36FD63E03DC0BBACC998EF8BDF6714A45986E77 ] cphs C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_68587200595f2fbd\IntelCpHeciSvc.exe 18:22:18.0002 0x336c cphs - ok 18:22:22.0200 0x336c [ E25F3947750906C921F604ADBEC214BC, EC9246E567236CDF04D21601282946FF611835C05686409882B166B9AE85623E ] cplspcon C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_68587200595f2fbd\IntelCpHDCPSvc.exe 18:22:22.0546 0x336c cplspcon - ok 18:22:26.0571 0x336c CredentialEnrollmentManagerUserSvc - ok 18:22:26.0578 0x336c CredentialEnrollmentManagerUserSvc_d6a31 - ok 18:22:26.0661 0x336c CryptSvc - ok 18:22:27.0419 0x336c CSC - ok 18:22:27.0761 0x336c CscService - ok 18:22:27.0821 0x336c dam - ok 18:22:28.0251 0x336c [ 8AD76E0B347BB690697535CE95B1C656, 7655221B493047C61285E1DE78807D0584920B0D14D150E2487DA9728B1926F3 ] dbupdate C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe 18:22:28.0272 0x336c dbupdate - ok 18:22:28.0284 0x336c [ 8AD76E0B347BB690697535CE95B1C656, 7655221B493047C61285E1DE78807D0584920B0D14D150E2487DA9728B1926F3 ] dbupdatem C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe 18:22:28.0292 0x336c dbupdatem - ok 18:22:28.0519 0x336c [ BDCC9188A9454010D1AA1F437D417A94, 231298C59B25D532C58DCEF2488B69F8DE0E1542D73DFDC2D9C10DE0A3767354 ] DbxSvc C:\WINDOWS\system32\DbxSvc.exe 18:22:41.0654 0x336c DbxSvc - ok 18:22:41.0719 0x336c DcomLaunch - ok 18:22:41.0863 0x336c defragsvc - ok 18:22:41.0938 0x336c DeviceAssociationBrokerSvc - ok 18:22:42.0182 0x336c DeviceAssociationService - ok 18:22:42.0326 0x336c DeviceInstall - ok 18:22:42.0625 0x336c DevicePickerUserSvc - ok 18:22:42.0840 0x336c DevicesFlowUserSvc - ok 18:22:43.0010 0x336c [ F8BE99B9EA9B110F7CB3F46BA844C1FF, EABF953864C0AE4FB6426C0B7E92DD81EE4A8852081F9D2EA02B61D4C8DB6188 ] DevQueryBroker C:\WINDOWS\system32\DevQueryBroker.dll 18:23:14.0587 0x336c DevQueryBroker - ok 18:23:14.0615 0x336c Dfsc - ok 18:23:14.0666 0x336c Dhcp - ok 18:23:14.0754 0x336c diagnosticshub.standardcollector.service - ok 18:23:14.0787 0x336c diagsvc - ok 18:23:14.0819 0x336c DiagTrack - ok 18:23:14.0861 0x336c DialogBlockingService - ok 18:23:15.0156 0x336c [ 0B483D40E6A9F57C18872851BC9C2131, D12262DF353AF5522D70FC35564DB813185AB0ECB58DCF71E5E183D78ACDB8BC ] Disc Soft Lite Bus Service C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe 18:23:15.0281 0x336c Disc Soft Lite Bus Service - ok 18:23:15.0447 0x336c disk - ok 18:23:15.0487 0x336c DispBrokerDesktopSvc - ok 18:23:15.0811 0x336c DisplayEnhancementService - ok 18:23:15.0958 0x336c DmEnrollmentSvc - ok 18:23:16.0079 0x336c dmvsc - ok 18:23:16.0143 0x336c [ 2E8A026D6680C301ADF6D4B301A4CE8B, 2FDB34E2A61457308B0FEC938A2D6351F63D02BB67DC87FE4F2534E0048C8E89 ] dmwappushservice C:\WINDOWS\system32\dmwappushsvc.dll 18:23:17.0546 0x336c dmwappushservice - ok 18:23:17.0627 0x336c Dnscache - ok 18:23:17.0704 0x336c dot3svc - ok 18:23:17.0764 0x336c [ 9E65C33CB7FB50453F7F4407070EAF53, A8707BD19D584DAECA39990A2E791194140AFCA4FCE31F23CC7E931DF8C17361 ] DPS C:\WINDOWS\system32\dps.dll 18:23:18.0235 0x336c DPS - ok 18:23:18.0299 0x336c drmkaud - ok 18:23:18.0447 0x336c [ 6B07569819ECA5770BAE048EBE982155, 04BF3E17E84E54786FFBF8F8125D4AE992D442715E4B5BFB11A6831E2B6431B5 ] DSAService C:\Program Files (x86)\Intel Driver and Support Assistant\DSAService.exe 18:23:18.0481 0x336c DSAService - ok 18:23:18.0557 0x336c DsmSvc - ok 18:23:18.0614 0x336c DsSvc - ok 18:23:18.0676 0x336c [ 9E101F28BB8422848C524E8311E9C0D6, EC601CE7FA6B1B20711993079E5B8323357E9EBB2C40B896DEC2315EBA74D958 ] dtlitescsibus C:\WINDOWS\System32\drivers\dtlitescsibus.sys 18:23:18.0735 0x336c dtlitescsibus - ok 18:23:18.0779 0x336c [ 1F9F0C5C668AB9AE89FBC1A29ACC4AE0, DA09C5C764E200838AE12B5BB2673A6C05FE27A57BAAFE9EC9B4D31671D8F605 ] dtliteusbbus C:\WINDOWS\System32\drivers\dtliteusbbus.sys 18:23:18.0814 0x336c dtliteusbbus - ok 18:23:18.0877 0x336c [ 81DF23EC4009D307479D5C169539CD67, 65AEE1E876CBE801A763F14930D15CF2E6A10697620B5903AA04BA30585A5676 ] DusmSvc C:\WINDOWS\System32\dusmsvc.dll 18:23:20.0702 0x336c DusmSvc - ok 18:23:20.0764 0x336c DXGKrnl - ok 18:23:20.0795 0x336c Eaphost - ok 18:23:21.0238 0x336c ebdrv - ok 18:23:21.0418 0x336c [ F5801470145FE1B446E98E7709311271, A0628836960198F937F134E8A9C12A5EA38D682DA3DD5E026170DFBC3EAA992E ] edgeupdate C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe 18:23:21.0553 0x336c edgeupdate - ok 18:23:21.0564 0x336c [ F5801470145FE1B446E98E7709311271, A0628836960198F937F134E8A9C12A5EA38D682DA3DD5E026170DFBC3EAA992E ] edgeupdatem C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe 18:23:21.0580 0x336c edgeupdatem - ok 18:23:21.0622 0x336c EFS - ok 18:23:21.0688 0x336c EhStorClass - ok 18:23:21.0708 0x336c EhStorTcgDrv - ok 18:23:21.0973 0x336c embeddedmode - ok 18:23:22.0176 0x336c EntAppSvc - ok 18:23:22.0326 0x336c [ BFC9A7F0F540829D2ACE36584DD42F80, 93DB8CD820EF0D54D1CC90B0B5D61838598025A3485318A9C8182495AC611B3A ] EPSON TM Parallel Port Driver C:\WINDOWS\System32\drivers\tmlpt.sys 18:23:22.0408 0x336c EPSON TM Parallel Port Driver - ok 18:23:22.0490 0x336c [ B7F4E8BAB46EA36E7E001084CF1A9C5C, CC88BE9A7FF657353C4FBDBA44E9E508D3A8BBE84685557ED5A6A3CF1BC2035A ] EpsonPOSLog C:\Program Files (x86)\EPSON\EPSON Advanced Printer Driver 4\EpsonPHLog.exe 18:23:22.0707 0x336c EpsonPOSLog - detected UnsignedFile.Multi.Generic ( 1 ) 18:23:22.0960 0x336c Detect skipped due to KSN trusted 18:23:22.0960 0x336c EpsonPOSLog - ok 18:23:23.0044 0x336c [ E54DC9984D085C8099EF0FE50476EE0D, DDC8234F9D6AFDD23EACE47F2E6FC01352E1377FA29697414869BCD81E3EAE4B ] EpsonPOSPort C:\Program Files (x86)\EPSON\EPSON Advanced Printer Driver 4\EpsonPH.exe 18:23:23.0253 0x336c EpsonPOSPort - detected UnsignedFile.Multi.Generic ( 1 ) 18:23:23.0508 0x336c Detect skipped due to KSN trusted 18:23:23.0509 0x336c EpsonPOSPort - ok 18:23:23.0537 0x336c ErrDev - ok 18:23:23.0860 0x336c [ 63655C161F5F4DD15D2858D8696E1064, 5593AC47BB2D88599548B2D501218BC9311B05EF9AB9FC05BAC8983A00A03668 ] ESRV_SVC_QUEENCREEK C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe 18:23:23.0922 0x336c ESRV_SVC_QUEENCREEK - ok 18:23:24.0443 0x336c EventLog - ok 18:23:24.0615 0x336c EventSystem - ok 18:23:24.0667 0x336c exfat - ok 18:23:24.0672 0x336c fastfat - ok 18:23:24.0779 0x336c Fax - ok 18:23:25.0128 0x336c fdc - ok 18:23:25.0376 0x336c [ 0439B82F6034ADA3E71C0C9F169082BD, 0918728669077235B2F2DB7EE22CE819FA570D8A7A497BA5F11E76774EA75099 ] fdPHost C:\WINDOWS\system32\fdPHost.dll 18:23:29.0984 0x336c fdPHost - ok 18:23:30.0060 0x336c [ AD64C91B3CC71226785DCE688842E5AB, 056E1091468D268E7970045AB329EB3DFF48BB6B22448046A14C309678847B6E ] FDResPub C:\WINDOWS\system32\fdrespub.dll 18:23:30.0114 0x336c FDResPub - ok 18:23:30.0256 0x336c fhsvc - ok 18:23:30.0340 0x336c [ 8E59D944EE4EFAED65A341A71297C4CD, CFFFD7007AB7FB04ECB44D0079BFE8EEB53AECC988135199C388AF425EBCF2AD ] FileCrypt C:\WINDOWS\system32\drivers\filecrypt.sys 18:23:30.0450 0x336c FileCrypt - ok 18:23:30.0455 0x336c FileInfo - ok 18:23:30.0495 0x336c Filetrace - ok 18:23:30.0499 0x336c flpydisk - ok 18:23:30.0570 0x336c FltMgr - ok 18:23:30.0709 0x336c FontCache - ok 18:23:31.0544 0x336c FontCache3.0.0.0 - ok 18:23:31.0723 0x336c FrameServer - ok 18:23:31.0829 0x336c FsDepends - ok 18:23:31.0921 0x336c Fs_Rec - ok 18:23:32.0000 0x336c fvevol - ok 18:23:32.0150 0x336c [ A1E06E4E8CB863C74DE428D4D6681185, DA46502C009FD4C847A547610DEE2684A5A583467BF76009BD46104AAE2F6B1B ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys 18:23:32.0194 0x336c gencounter - ok 18:23:32.0878 0x336c genericusbfn - ok 18:23:33.0238 0x336c [ 1787D90390CEF982B4AC730A8270FD39, B05C155A3CB933E4FD1F1E82916BA482C4F317239205B32551FF44CC5A479C05 ] GoogleChromeElevationService C:\Program Files (x86)\Google\Chrome\Application\102.0.5005.115\elevation_service.exe 18:23:33.0337 0x336c GoogleChromeElevationService - ok 18:23:36.0995 0x336c [ EE0B8108AF7B2BB93585D3635C753331, 4ABF73FB2632889A918372266F2EBCADE966F5FDF18716EC917073C31FF110AC ] googledrivefs3758 C:\WINDOWS\system32\DRIVERS\googledrivefs3758.sys 18:23:37.0046 0x336c googledrivefs3758 - ok 18:23:37.0775 0x336c GPIOClx0101 - ok 18:23:38.0310 0x336c gpsvc - ok 18:23:38.0440 0x336c [ 8C06046B6A8C1ACDAEA15682058FDFB4, 3E0CC301249B7D8D5BEB932F4DFD1EAB8037679EC153772F63B430713903B0AC ] GpuEnergyDrv C:\WINDOWS\system32\drivers\gpuenergydrv.sys 18:23:38.0618 0x336c GpuEnergyDrv - ok 18:23:38.0827 0x336c GraphicsPerfSvc - ok 18:23:39.0078 0x336c [ 0545A3EB959CFA4790D267BFB8C1ACA4, 69061E33ACB7587D773D05000390F9101F71DFD6EED7973B551594EAF3F04193 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 18:23:39.0110 0x336c gupdate - ok 18:23:39.0121 0x336c [ 0545A3EB959CFA4790D267BFB8C1ACA4, 69061E33ACB7587D773D05000390F9101F71DFD6EED7973B551594EAF3F04193 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 18:23:39.0138 0x336c gupdatem - ok 18:23:39.0444 0x336c HdAudAddService - ok 18:23:39.0676 0x336c HDAudBus - ok 18:23:39.0836 0x336c HidBatt - ok 18:23:40.0156 0x336c HidBth - ok 18:23:40.0215 0x336c hidi2c - ok 18:23:40.0222 0x336c hidinterrupt - ok 18:23:40.0500 0x336c [ 6B46E3061EC0523CB46ED28060FCD946, 6089305AF73CC584963865482448CD5CA4252EC9BD3E72AF16D45E4F95C3EBF2 ] HidIr C:\WINDOWS\System32\drivers\hidir.sys 18:23:40.0574 0x336c HidIr - ok 18:23:40.0905 0x336c hidserv - ok 18:23:41.0377 0x336c hidspi - ok 18:23:41.0739 0x336c HidUsb - ok 18:23:41.0760 0x336c HpSAMD - ok 18:23:41.0911 0x336c HTTP - ok 18:23:42.0066 0x336c [ 9CEE2BBB060DC4B7062BE4461774A7A0, BBE3AEE1B5FF27871E6E2F3BFAF17C5DB646A9491576E348D3BDE93C17F05D18 ] HuaweiHiSuiteService64.exe C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe 18:23:42.0352 0x336c HuaweiHiSuiteService64.exe - detected UnsignedFile.Multi.Generic ( 1 ) 18:23:42.0583 0x336c Detect skipped due to KSN trusted 18:23:42.0584 0x336c HuaweiHiSuiteService64.exe - ok 18:23:42.0689 0x336c [ 849A66D34BC2DAD0044FAC2FEE1AF956, A5F6858AA556D9180C303EA3ED02EB6D6D8EB55A100B3918654281A01198D8E8 ] hvcrash C:\WINDOWS\System32\drivers\hvcrash.sys 18:23:42.0733 0x336c hvcrash - ok 18:23:42.0855 0x336c [ 855F55BB462B7D8B6BC31A94A592DF3D, 776C772E69CF9D81D8511201813DD79F2106DC7D2547B4FA700432AE9B73C202 ] HvHost C:\WINDOWS\System32\hvhostsvc.dll 18:23:48.0771 0x336c HvHost - ok 18:23:48.0818 0x336c hvservice - ok 18:23:48.0967 0x336c [ 5DC7DFED5FEDD923B874B51D0C6752BB, 69714A8B74EB02282572B34E156051FFC10693B816905CE18A8C6C8CCB95B846 ] HwNClx0101 C:\WINDOWS\system32\Drivers\mshwnclx.sys 18:23:49.0567 0x336c HwNClx0101 - ok 18:23:49.0656 0x336c hwpolicy - ok 18:23:49.0794 0x336c hyperkbd - ok 18:23:49.0803 0x336c HyperVideo - ok 18:23:49.0831 0x336c i8042prt - ok 18:23:49.0838 0x336c iagpio - ok 18:23:49.0844 0x336c iai2c - ok 18:23:49.0850 0x336c iaLPSS2i_GPIO2 - ok 18:23:49.0902 0x336c iaLPSS2i_GPIO2_BXT_P - ok 18:23:49.0907 0x336c iaLPSS2i_GPIO2_CNL - ok 18:23:49.0961 0x336c iaLPSS2i_GPIO2_GLK - ok 18:23:49.0969 0x336c iaLPSS2i_I2C - ok 18:23:49.0974 0x336c iaLPSS2i_I2C_BXT_P - ok 18:23:49.0980 0x336c iaLPSS2i_I2C_CNL - ok 18:23:50.0019 0x336c iaLPSS2i_I2C_GLK - ok 18:23:50.0026 0x336c iaLPSSi_GPIO - ok 18:23:50.0034 0x336c iaLPSSi_I2C - ok 18:23:50.0152 0x336c [ 7675D8E247732F45F60AA450BA2C207D, DBB591E56BBF9A93BE66A993D143A97964CC628457CF47EB5231D0DF62B59ADE ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys 18:23:50.0508 0x336c iaStorA - ok 18:23:50.0516 0x336c iaStorAVC - ok 18:23:50.0577 0x336c iaStorV - ok 18:23:50.0598 0x336c ibbus - ok 18:23:50.0659 0x336c icssvc - ok 18:23:51.0815 0x336c [ A7D8EED57EB6D9E5BBD79B88961F1FB9, C1F136199F77D8B3128CC2D225EDE546999F1BD62A793BA9AF461137BC5A5187 ] igfx C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_68587200595f2fbd\igdkmd64.sys 18:23:52.0256 0x336c igfx - ok 18:23:56.0114 0x336c [ C7EB8F5EF949B3C77EEA18D443F34D55, F09214B250FE12429AD39FB901CC4DBB9BF55594AA453694A9FEADA2D77B7C3B ] igfxCUIService2.0.0.0 C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_68587200595f2fbd\igfxCUIService.exe 18:23:56.0145 0x336c igfxCUIService2.0.0.0 - ok 18:23:57.0930 0x336c IKEEXT - ok 18:23:58.0049 0x336c IndirectKmd - ok 18:23:58.0104 0x336c InstallService - ok 18:23:58.0277 0x336c [ 61B8FBA1BFC929C5257ABA0B620CA19B, 9689A7143F39988C29D378C7F10115AC3753B6AECD1DE1EAF4D6C11C0FF9B768 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys 18:23:58.0654 0x336c IntcAzAudAddService - ok 18:23:58.0727 0x336c [ FE75DD998A34398839C006465609BC04, 875BCC2EE8FD4F5022AB166CCE66FEA03A49FCFE1ADFA2936080781AE9B23810 ] IntcDAud C:\WINDOWS\System32\drivers\IntcDAud.sys 18:23:58.0831 0x336c IntcDAud - ok 18:23:59.0106 0x336c [ AEA02F1F43503A5E10C92246A0B70DBD, 9717788B0D3E69071042A6D3EFB431F7466F76805F762BF22A32314FF3C21D84 ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe 18:23:59.0185 0x336c Intel(R) Capability Licensing Service TCP IP Interface - ok 18:23:59.0248 0x336c [ 77F8F2FF87EE24F2C028F819DBBF6D02, EA9C127C03747F8867A99D9F244722226E6697BF0018A6CFB2DE0D1E3D1C4D75 ] Intel(R) Online Connect C:\Program Files\Intel\Intel(R) Online Connect\ioc.exe 18:23:59.0274 0x336c Intel(R) Online Connect - ok 18:23:59.0283 0x336c [ 748C557130566EC181840D565C1B26BB, E998C0E779C731142C56BEAC42C8FE4BBF60AAC4D9A133572D0AF5018B005FE9 ] Intel(R) Online Connect Helper C:\Program Files\Intel\Intel(R) Online Connect\iocHelperService.exe 18:23:59.0303 0x336c Intel(R) Online Connect Helper - ok 18:23:59.0524 0x336c [ 5342C63C2E8540E123169377AD80C7CE, 8EE78A90DE0DA508569D9B03371381CC2A5DD91FE15D38FEB3559B7DD2E4E605 ] Intel(R) Online Connect Software Asset Manager C:\Program Files (x86)\Intel\Intel(R) Online Connect Access\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe 18:23:59.0568 0x336c Intel(R) Online Connect Software Asset Manager - ok 18:23:59.0668 0x336c [ D737E59752DCE9D0B697E233784F9114, 62E2F932F69527CD8A2EA8ED989BCF533FBF54AF8C6BF415FFCFD216E880A650 ] Intel(R) SUR QC SAM C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe 18:23:59.0713 0x336c Intel(R) SUR QC SAM - ok 18:23:59.0769 0x336c [ 380284CCAA213A086211700F00F86280, EA6D9602E7FF69FDABD32FD00AA92FBE5E7314F51B81C5B2B1A437A837F95FBE ] Intel(R) TechnologyAccessLegacyCSLoader C:\Program Files\Intel\Intel(R) Online Connect Access\LegacyCsLoaderService.exe 18:23:59.0817 0x336c Intel(R) TechnologyAccessLegacyCSLoader - ok 18:23:59.0860 0x336c [ D50232AC065B5FC0DB237A8D61801006, D6074EC8EFF8B2D43F8FC3B6251ACF554A6B9FFBA6131782F8B58152472E20E3 ] Intel(R) TechnologyAccessService C:\Program Files\Intel\Intel(R) Online Connect Access\IntelTechnologyAccessService.exe 18:23:59.0885 0x336c Intel(R) TechnologyAccessService - ok 18:24:02.0579 0x336c intelide - ok 18:24:02.0612 0x336c intelpep - ok 18:24:02.0680 0x336c [ AECBF5BE2F9A2A50B978E0BF31041A81, A62F436C66DEFEB438A7891857DFB830995714A7E4FE4BDCA6B4EB1606BD2101 ] intelpmax C:\WINDOWS\System32\drivers\intelpmax.sys 18:24:02.0867 0x336c intelpmax - ok 18:24:02.0912 0x336c intelppm - ok 18:24:02.0929 0x336c iorate - ok 18:24:02.0949 0x336c IpFilterDriver - ok 18:24:02.0987 0x336c iphlpsvc - ok 18:24:03.0056 0x336c IPMIDRV - ok 18:24:03.0080 0x336c IPNAT - ok 18:24:03.0124 0x336c [ B5B6D1F86E40E785D6650DB923DB6BEA, 7A2D92A2274E0379B5FA6351D18E2F0DD55960BB783EA3528FE9E303E1A4256D ] IPT C:\WINDOWS\System32\drivers\ipt.sys 18:24:03.0269 0x336c IPT - ok 18:24:03.0349 0x336c [ 77494E26B28465D2A09B9455F8A3B34E, B778D4BC71A5F5CF687175CA53AC342E4740156D4B96E6E96D918BD46C2C1459 ] IpxlatCfgSvc C:\WINDOWS\System32\IpxlatCfg.dll 18:24:04.0697 0x336c IpxlatCfgSvc - ok 18:24:04.0743 0x336c isapnp - ok 18:24:04.0790 0x336c iScsiPrt - ok 18:24:04.0852 0x336c ItSas35i - ok 18:24:05.0049 0x336c [ E4B5C1BD85645C040781510870FE96F0, 602615454579C0D6226018D236293BEC60E903D1AE16BDEAB809BD1A060AD007 ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe 18:24:05.0077 0x336c jhi_service - ok 18:24:05.0089 0x336c kbdclass - ok 18:24:05.0096 0x336c kbdhid - ok 18:24:05.0120 0x336c kbldfltr - ok 18:24:05.0124 0x336c kdnic - ok 18:24:05.0152 0x336c KeyIso - ok 18:24:05.0163 0x336c KSecDD - ok 18:24:05.0189 0x336c KSecPkg - ok 18:24:05.0206 0x336c ksthunk - ok 18:24:05.0244 0x336c [ DAE67BD7EC6ED569438F5CA38BFBB458, 672CA98525D6DD799A01A3BC3A62AB7B4544D62ECEB3615FAC05BFB97B389D23 ] KtmRm C:\WINDOWS\system32\msdtckrm.dll 18:24:11.0816 0x336c KtmRm - ok 18:24:11.0836 0x336c LanmanServer - ok 18:24:11.0854 0x336c LanmanWorkstation - ok 18:24:11.0949 0x336c [ A997488F4EDAAD59C748CF9FB1D9DAC0, A0B145041F984DD4E0A6F8D0E9C8363DA6F2DA7460E140F028C320CEAC03759C ] lfsvc C:\WINDOWS\System32\lfsvc.dll 18:24:12.0005 0x336c lfsvc - ok 18:24:12.0051 0x336c LicenseManager - ok 18:24:12.0099 0x336c [ 78779BD92081CB27967E77561683AFBE, 05EC91E194336D1BB1EE323E70FAC54F6DC0CEF53FD4925F394399531A37A0DD ] lltdio C:\WINDOWS\system32\drivers\lltdio.sys 18:24:12.0348 0x336c lltdio - ok 18:24:12.0412 0x336c lltdsvc - ok 18:24:12.0456 0x336c lmhosts - ok 18:24:12.0638 0x336c [ 836A0D43C98F54DE127E95CC40035E30, D9CC6688C2E57E8D08FBD791DD53F19C56A922D1B858D1AD00C617C7EA2A16EE ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe 18:24:12.0670 0x336c LMS - ok 18:24:12.0701 0x336c LSI_SAS - ok 18:24:12.0705 0x336c LSI_SAS2i - ok 18:24:12.0710 0x336c LSI_SAS3i - ok 18:24:12.0715 0x336c LSI_SSS - ok 18:24:12.0753 0x336c LSM - ok 18:24:12.0805 0x336c luafv - ok 18:24:12.0837 0x336c LxpSvc - ok 18:24:12.0926 0x336c [ AE03D8F1B7863268EAED2FE0105ED75F, F5172A1A3E24FC5271FCB0118861EA0EC33AA8ABB01AE9CAD50E2F032B92486C ] MapsBroker C:\WINDOWS\System32\moshost.dll 18:24:12.0997 0x336c MapsBroker - ok 18:24:13.0013 0x336c mausbhost - ok 18:24:13.0022 0x336c mausbip - ok 18:24:13.0085 0x336c [ 6A21162E1C8A9F65787B14BC439EB077, 8B7990E1C676F53918E41F6B18B20179D77E598352D9243B05E2EA22B2D9E4FE ] MBAMChameleon C:\WINDOWS\System32\Drivers\MbamChameleon.sys 18:24:13.0382 0x336c MBAMChameleon - ok 18:24:13.0427 0x336c [ 9E77C51E14FA9A323EE1635DC74ECC07, B5619D758AE6A65C1663F065E53E6B68A00511E7D7ACCB3E07ED94BFD0B1EDE0 ] MbamElam C:\WINDOWS\system32\DRIVERS\MbamElam.sys 18:24:13.0618 0x336c MbamElam - ok 18:24:13.0955 0x336c [ 0C36E7F85B910C6346355A1DD86F9D1E, 1BE288560186EC30A150295DA6F13C15C73DFC7E3FDB866F66BE68D749E12BCC ] MBAMService C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe 18:24:14.0128 0x336c MBAMService - ok 18:24:14.0257 0x336c [ 1DC6D344EE9B6B024BA23278891DB9A5, 823E1C7321E177B006C1F3FD1EC8B99607A12D2C3C321F3A6CBBCF7030B6C240 ] MBAMSwissArmy C:\WINDOWS\System32\Drivers\mbamswissarmy.sys 18:24:14.0525 0x336c MBAMSwissArmy - ok 18:24:14.0542 0x336c MbbCx - ok 18:24:14.0576 0x336c megasas - ok 18:24:14.0619 0x336c megasas2i - ok 18:24:14.0624 0x336c megasas35i - ok 18:24:14.0631 0x336c megasr - ok 18:24:14.0653 0x336c [ F1E754DEEB3369BCCE2228D5C10DE101, ECC894FCF4C3F2364883BA55242C432E9E416D93E71B67985DF24ECB39F9BAC4 ] MEIx64 C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys 18:24:14.0851 0x336c MEIx64 - ok 18:24:14.0913 0x336c MessagingService - ok 18:24:15.0172 0x336c [ FAFE367D032ED82E9332B4C741A20216, 7B123766E360570E0FCB211835B7910D6A1806C25A06BCA9227AB9E993376CA8 ] Microsoft Office Groove Audit Service C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe 18:24:15.0230 0x336c Microsoft Office Groove Audit Service - ok 18:24:15.0405 0x336c MicrosoftEdgeElevationService - ok 18:24:15.0531 0x336c [ B74FFC6301B3312A9F59E04E487BC72A, 76F71824E80D10EB71BEDE5EE3A64CAD7CAC3DDFBB6670D1537E6B75FF0217E9 ] Microsoft_Bluetooth_AvrcpTransport C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys 18:24:15.0707 0x336c Microsoft_Bluetooth_AvrcpTransport - ok 18:24:15.0782 0x336c MixedRealityOpenXRSvc - ok 18:24:15.0851 0x336c mlx4_bus - ok 18:24:15.0904 0x336c MMCSS - ok 18:24:15.0956 0x336c Modem - ok 18:24:15.0989 0x336c monitor - ok 18:24:16.0007 0x336c mouclass - ok 18:24:16.0016 0x336c mouhid - ok 18:24:16.0024 0x336c mountmgr - ok 18:24:16.0045 0x336c [ 1318EAAE9950545CAAE6F49FB3C55A12, F74E393715B15585F2466AF4223CA609EC51E1190EC17EB91A271CA5DEAD64FE ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 18:24:16.0073 0x336c MozillaMaintenance - ok 18:24:16.0077 0x336c mpsdrv - ok 18:24:16.0113 0x336c mpssvc - ok 18:24:16.0174 0x336c MRxDAV - ok 18:24:16.0214 0x336c mrxsmb - ok 18:24:16.0265 0x336c mrxsmb10 - ok 18:24:16.0273 0x336c mrxsmb20 - ok 18:24:16.0335 0x336c [ E587396A4C8151ABBF13A96C4465DE31, A3AA5D51E34657479CFCDC3DBB7821B7255F7CB57D5686B7F709A7953AD537EB ] MsBridge C:\WINDOWS\system32\drivers\bridge.sys 18:24:16.0705 0x336c MsBridge - ok 18:24:16.0797 0x336c [ 2EF846AC66E181BE820B513DBC15B5D2, EDFE71025C352D0DABEC7B9506C5945BB0EC11F8DB540DB8CB1116C2EA1648A8 ] MSDTC C:\WINDOWS\System32\msdtc.exe 18:24:16.0868 0x336c MSDTC - ok 18:24:16.0885 0x336c Msfs - ok 18:24:16.0949 0x336c [ 6092FD060EC4132A799BDAD61845DDB7, B45F9D3A71FC8A73AED3C5B8CF6F14A25EBDD3D4D47C9F39FFCD75C7D22F4A9E ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys 18:24:17.0095 0x336c msgpiowin32 - ok 18:24:17.0118 0x336c mshidkmdf - ok 18:24:17.0210 0x336c [ 9E90FE6DF363D2427A5C773120E7B27D, 1FDB7E28CCAF757603C4B754E1AC9C470E5E60E85DE067375902F108F5E34608 ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys 18:24:17.0513 0x336c mshidumdf - ok 18:24:17.0702 0x336c msisadrv - ok 18:24:17.0765 0x336c MSiSCSI - ok 18:24:17.0774 0x336c msiserver - ok 18:24:17.0834 0x336c MsKeyboardFilter - ok 18:24:17.0928 0x336c MSKSSRV - ok 18:24:18.0015 0x336c [ 9FB5040C8CEAE4C32B7884ECBBCAFDAF, 0EC3E53C5B1B202440DE22A5BF7E1EBE9AF5BBB6BA69DB9D018A6D8EC97B477E ] MsLldp C:\WINDOWS\system32\drivers\mslldp.sys 18:24:18.0740 0x336c MsLldp - ok 18:24:18.0768 0x336c MSPCLOCK - ok 18:24:18.0796 0x336c MSPQM - ok 18:24:18.0865 0x336c MsQuic - ok 18:24:18.0942 0x336c MsRPC - ok 18:24:18.0986 0x336c MsSecFlt - ok 18:24:19.0026 0x336c mssmbios - ok 18:24:19.0036 0x336c MSTEE - ok 18:24:19.0047 0x336c MTConfig - ok 18:24:19.0070 0x336c Mup - ok 18:24:19.0081 0x336c mvumis - ok 18:24:19.0183 0x336c NativeWifiP - ok 18:24:19.0222 0x336c NaturalAuthentication - ok 18:24:19.0288 0x336c [ D47A20839608B8213065D7AFC8C42195, 7B0187BE9705ED2F925616C13B3744BAC0A9C96B21BE503D96BC9EE7EE125B33 ] NcaSvc C:\WINDOWS\System32\ncasvc.dll 18:24:20.0869 0x336c NcaSvc - ok 18:24:20.0936 0x336c NcbService - ok 18:24:21.0009 0x336c [ 8C938E851CDF2CE30BBEA14555B61820, F853F526C811893BD40B1124BAEC543099381E7BF091729B6A6665DF3CE10B94 ] NcdAutoSetup C:\WINDOWS\System32\NcdAutoSetup.dll 18:24:21.0339 0x336c NcdAutoSetup - ok 18:24:21.0368 0x336c ndfltr - ok 18:24:21.0428 0x336c NDIS - ok 18:24:21.0483 0x336c [ 6BEC0929C7A7BF2A7C44F585ECC7DAEB, 5F6395268CBD26A4B90960479040C114B2C8A3F24C188C2D5F62D6AB43A637D1 ] NdisCap C:\WINDOWS\system32\drivers\ndiscap.sys 18:24:21.0640 0x336c NdisCap - ok 18:24:21.0679 0x336c NdisImPlatform - ok 18:24:21.0727 0x336c [ 7AAE5671C49AC344B1B83EC893D5B7CD, A4303F773E9FDF2BABFDB73223AF647EA25E26AF8155D0CC4A46D2199778E0D9 ] ndisrd C:\WINDOWS\system32\DRIVERS\ndisrfl.sys 18:24:21.0857 0x336c ndisrd - ok 18:24:21.0925 0x336c NdisTapi - ok 18:24:21.0938 0x336c Ndisuio - ok 18:24:21.0949 0x336c NdisVirtualBus - ok 18:24:21.0977 0x336c NdisWan - ok 18:24:21.0982 0x336c ndiswanlegacy - ok 18:24:22.0041 0x336c [ 33CDAEDC7CBE8339A8324CEC2461BFB4, DAAEACDB4506D2BDDED61957D92FB4983E11D9CE6E7B25119B4CBFB431C945F4 ] NDKPing C:\WINDOWS\system32\drivers\NDKPing.sys 18:24:22.0089 0x336c NDKPing - ok 18:24:22.0094 0x336c ndproxy - ok 18:24:22.0160 0x336c [ 77621E74FD79B267071A0D12C643A48A, 8228B7D1237A0FFABCCC150B299EA494C8F0CB4CCB51AB0DBFF08CBAA9EFC4BB ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys 18:24:22.0309 0x336c Ndu - ok 18:24:22.0329 0x336c NetAdapterCx - ok 18:24:22.0352 0x336c NetBIOS - ok 18:24:22.0364 0x336c NetBT - ok 18:24:22.0410 0x336c Netlogon - ok 18:24:22.0467 0x336c Netman - ok 18:24:22.0500 0x336c netprofm - ok 18:24:22.0531 0x336c NetSetupSvc - ok 18:24:22.0732 0x336c [ B9D455C60292DF5FCB064834CA5802AA, 75DCE4E5FA08CCEAF4D3D30FE8E26903FCDD14CC852E820F63B40F374C706DBD ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 18:24:23.0351 0x336c NetTcpPortSharing - ok 18:24:23.0506 0x336c netvsc - ok 18:24:23.0567 0x336c NgcCtnrSvc - ok 18:24:23.0584 0x336c NgcSvc - ok 18:24:23.0647 0x336c NlaSvc - ok 18:24:23.0666 0x336c Npfs - ok 18:24:23.0693 0x336c npsvctrig - ok 18:24:23.0775 0x336c nsi - ok 18:24:23.0794 0x336c nsiproxy - ok 18:24:23.0812 0x336c Ntfs - ok 18:24:23.0824 0x336c Null - ok 18:24:23.0836 0x336c nvdimm - ok 18:24:23.0841 0x336c nvraid - ok 18:24:23.0854 0x336c nvstor - ok 18:24:23.0988 0x336c [ 84DE1DD996B48B05ACE31AD015FA108A, 4B9D1E4EF83ECED6C77F23D9879C124534F7053D7423E3A2D0F67A4A720CEA94 ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE 18:24:24.0018 0x336c odserv - ok 18:24:24.0045 0x336c OneSyncSvc - ok 18:24:24.0090 0x336c [ 5A432A042DAE460ABE7199B758E8606C, 6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 18:24:24.0108 0x336c ose - ok 18:24:24.0166 0x336c p2pimsvc - ok 18:24:24.0214 0x336c p2psvc - ok 18:24:24.0223 0x336c Parport - ok 18:24:24.0261 0x336c partmgr - ok 18:24:24.0319 0x336c PcaSvc - ok 18:24:24.0373 0x336c pci - ok 18:24:24.0412 0x336c pciide - ok 18:24:24.0430 0x336c pcmcia - ok 18:24:24.0457 0x336c pcw - ok 18:24:24.0471 0x336c pdc - ok 18:24:24.0498 0x336c PEAUTH - ok 18:24:24.0541 0x336c PeerDistSvc - ok 18:24:24.0684 0x336c perceptionsimulation - ok 18:24:24.0718 0x336c percsas2i - ok 18:24:24.0729 0x336c percsas3i - ok 18:24:25.0052 0x336c [ 2FC7CFCEDBF7E038351C7CEB1036D2E1, 41D7DA706F0CF613DF768B6795CD09C5C1035F9F101051FB58F5042EB4352DB6 ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe 18:24:43.0684 0x336c PerfHost - ok 18:24:45.0466 0x336c PhoneSvc - ok 18:24:45.0561 0x336c PimIndexMaintenanceSvc - ok 18:24:45.0794 0x336c PktMon - ok 18:24:45.0912 0x336c [ 9E431A5D697432DD6F4DB48C9A185104, 44C16E194258C9143A45F4022F9C5DE229E217D6FF7F944F105FE631BE9EF4A7 ] pla C:\WINDOWS\system32\pla.dll 18:24:50.0766 0x336c pla - ok 18:24:50.0795 0x336c PlugPlay - ok 18:24:50.0828 0x336c pmem - ok 18:24:50.0898 0x336c [ 2769F200292C0F941A10BD60C33EA4A6, B8345C32585C45E6248D7194B1071F2B8617718E7C9B270AAF44C132D029DB4C ] PNPMEM C:\WINDOWS\System32\drivers\pnpmem.sys 18:24:51.0100 0x336c PNPMEM - ok 18:24:51.0123 0x336c [ 6AAAC8AD69AEFBE5FE04738B687EE85E, 83427082298E2FC021D5D39A43DB4A5783D95213F2CA8D3A997DB6C815BD9CB2 ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll 18:24:51.0610 0x336c PNRPAutoReg - ok 18:24:51.0673 0x336c PNRPsvc - ok 18:24:51.0727 0x336c PolicyAgent - ok 18:24:51.0767 0x336c portcfg - ok 18:24:51.0833 0x336c Power - ok 18:24:51.0844 0x336c PptpMiniport - ok 18:24:52.0149 0x336c [ 3127E95DA937135CD3D3219C40956072, E6B6A97A79D8389EFC51EBAFF1007D4DACFAB0C142BC189C66CD2E6FFF8DC65E ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll 18:24:52.0309 0x336c PrintNotify - ok 18:24:52.0478 0x336c PrintWorkflowUserSvc - ok 18:24:52.0536 0x336c Processor - ok 18:24:52.0589 0x336c ProfSvc - ok 18:24:52.0682 0x336c Psched - ok 18:24:52.0757 0x336c PushToInstall - ok 18:24:52.0783 0x336c QWAVE - ok 18:24:52.0843 0x336c [ CE51A9A997D2830C6C64A36D7F8D8879, 706D683CAF92C259C121222446D34ED43F6E8872407C3615E2ED118ACD24D21D ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys 18:24:53.0223 0x336c QWAVEdrv - ok 18:24:53.0259 0x336c Ramdisk - ok 18:24:53.0288 0x336c RasAcd - ok 18:24:53.0300 0x336c RasAgileVpn - ok 18:24:53.0340 0x336c RasAuto - ok 18:24:53.0367 0x336c Rasl2tp - ok 18:24:53.0444 0x336c RasMan - ok 18:24:53.0459 0x336c RasPppoe - ok 18:24:53.0505 0x336c RasSstp - ok 18:24:53.0550 0x336c rdbss - ok 18:24:53.0633 0x336c [ B7BAD23CA994EFF8EA11261626326004, 056495FB4A54984CE9D28D7B45550990D4A4B0736669F0F69138BEF51A695EFA ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys 18:24:53.0959 0x336c rdpbus - ok 18:24:53.0978 0x336c RDPDR - ok 18:24:54.0039 0x336c RdpVideoMiniport - ok 18:24:54.0120 0x336c [ B4A6F3BFB5A07DAF4E18C14A6337A226, F906865E349390D24A3DCBC563154BBB9F307B97361832BE93BC9D44A9F3B486 ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys 18:24:54.0297 0x336c rdyboost - ok 18:24:54.0361 0x336c ReFS - ok 18:24:54.0397 0x336c ReFSv1 - ok 18:24:54.0458 0x336c RemoteAccess - ok 18:24:54.0524 0x336c [ 58B3C0A2B0C130838588EF519ADCE495, 60360DD8EA1802C8F95EB93531FF9666BE1148253E6A1BD706D4CA98955C0F6E ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll 18:24:57.0862 0x336c RemoteRegistry - ok 18:24:57.0869 0x336c RetailDemo - ok 18:24:57.0907 0x336c [ D2EE9CCE0187C616E50D61EB30ECA262, 825C918D22FC8DBF3EE9BDB41D121A0AC3CCBFFBA147E2B26F0197552E0675DE ] RFCOMM C:\WINDOWS\System32\drivers\rfcomm.sys 18:24:58.0084 0x336c RFCOMM - ok 18:24:58.0143 0x336c [ 4DD0EFE49F0C020DAFEAE6F5F231362C, DF04978AF6CD34C8251B3DDE381CD77518684DCB1D2B16BD2DAFEE63AC9D5858 ] rhproxy C:\WINDOWS\System32\drivers\rhproxy.sys 18:24:58.0359 0x336c rhproxy - ok 18:24:58.0378 0x336c RmSvc - ok 18:24:58.0538 0x336c [ 1F3C1D805E70721BFB8C639183C09F6A, B01B4E4799F6C7C10F25DC3F9F3A6EBA0D0BDC4B9A96BB79D23C0292B030541A ] RMUCS12-64 C:\Program Files\Common Files\Liant Shared\rmucs12.exe 18:24:58.0572 0x336c RMUCS12-64 - ok 18:24:58.0617 0x336c RpcEptMapper - ok 18:24:58.0700 0x336c [ D45676C47616B9ABBFAEC97DD3B240A8, E13985D667F66B7A0082356F23270F61A57B8C2DD211B1E09D66D7970D7B4D6A ] RpcLocator C:\WINDOWS\system32\locator.exe 18:24:58.0954 0x336c RpcLocator - ok 18:24:59.0003 0x336c RpcSs - ok 18:24:59.0064 0x336c [ EABD30C39742A79913B595A5B6F809D4, 9067160F566220A2B21FEEE181729A796A3F3EECF75FFB75815BE5CCC7BBA64F ] rspndr C:\WINDOWS\system32\drivers\rspndr.sys 18:24:59.0247 0x336c rspndr - ok 18:24:59.0341 0x336c [ 765B5CE0E3FDFF6A03F9DC30007FEADE, 6666391FCAA490530D828A58A6BF56CD3560A5287D90AA704DECCD35B211FA30 ] rt640x64 C:\WINDOWS\System32\drivers\rt640x64.sys 18:24:59.0513 0x336c rt640x64 - ok 18:24:59.0562 0x336c [ F9DC4ADA03F787FBDAE942D2FFB8128E, FEF8201ED85CA52709C89C586B090D73AA46CB834A760A6200C0ABE6699FECDA ] RTSUER C:\WINDOWS\system32\Drivers\RtsUer.sys 18:24:59.0765 0x336c RTSUER - ok 18:24:59.0836 0x336c [ 5914CC0C1E99A3C1711BDB1E224526D1, 54BB8636F27282B396D487B3FEA8BD73F2F6FE6DA4DE8D718EE498F75A6A5DCE ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys 18:25:00.0073 0x336c s3cap - ok 18:25:00.0233 0x336c [ 735E6120254467257411E12BE99B3423, E0FBB1EAB747BAAAC839CFF321817F771031279BF79CD3CBE11D67B5423E5857 ] Sage AutoUpdate Manager Service C:\Program Files (x86)\Common Files\Sage\Central\AutoUpdateClient\Sage.Central.AutoUpdateManager.Service.exe 18:25:00.0348 0x336c Sage AutoUpdate Manager Service - detected UnsignedFile.Multi.Generic ( 1 ) 18:25:00.0593 0x336c Detect skipped due to KSN trusted 18:25:00.0593 0x336c Sage AutoUpdate Manager Service - ok 18:25:00.0641 0x336c SamSs - ok 18:25:00.0711 0x336c sbp2port - ok 18:25:00.0785 0x336c SCardSvr - ok 18:25:00.0819 0x336c ScDeviceEnum - ok 18:25:00.0835 0x336c scfilter - ok 18:25:00.0892 0x336c Schedule - ok 18:25:00.0928 0x336c scmbus - ok 18:25:00.0969 0x336c SCPolicySvc - ok 18:25:01.0056 0x336c sdbus - ok 18:25:01.0103 0x336c [ 3200667DB433F0A2032FAF4DC02E2089, 5E940CA63AD21CEA08C334AC61D985BAFDBA7DCB2D388F355B5C72EFA3E23E0A ] SDFRd C:\WINDOWS\System32\drivers\SDFRd.sys 18:25:01.0298 0x336c SDFRd - ok 18:25:01.0369 0x336c SDRSVC - ok 18:25:01.0410 0x336c sdstor - ok 18:25:01.0485 0x336c [ 016706A76857F914C99D2472B1E79BF9, 39A114EB591E243E0429DA7279413F046626DE7B52E057DDBCD26A0A1BF327FB ] seclogon C:\WINDOWS\system32\seclogon.dll 18:25:02.0959 0x336c seclogon - ok 18:25:03.0035 0x336c SecurityHealthService - ok 18:25:03.0070 0x336c [ FE4285DA23E7F02EDC54166E8BD337C2, 59E0C8A765F3BDB00E1E3E6C40F470C919C52545D313B001BB1E30F252FB812E ] semav6msr64 C:\WINDOWS\system32\drivers\semav6msr64.sys 18:25:03.0272 0x336c semav6msr64 - ok 18:25:03.0304 0x336c SEMgrSvc - ok 18:25:03.0373 0x336c [ 1EA7972A4C7163FF1D3EFE9988404D4E, 56A94B1617815C1E8A79D832B0F0CBA683C3080105CC4C87DBB9B8EAB4CD2690 ] SENS C:\WINDOWS\System32\sens.dll 18:25:03.0723 0x336c SENS - ok 18:25:03.0882 0x336c Sense - ok 18:25:04.0017 0x336c SensorDataService - ok 18:25:04.0090 0x336c SensorService - ok 18:25:04.0155 0x336c [ 0BCFFAD6F3B180DD60C941B01768F733, A0B73C1BF636F14504B69606999287B6FE148C958A4F6E31E9022FF129A048E0 ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll 18:25:04.0611 0x336c SensrSvc - ok 18:25:04.0641 0x336c SerCx - ok 18:25:04.0655 0x336c SerCx2 - ok 18:25:04.0674 0x336c Serenum - ok 18:25:04.0689 0x336c Serial - ok 18:25:04.0695 0x336c sermouse - ok 18:25:04.0732 0x336c SessionEnv - ok 18:25:04.0754 0x336c sfloppy - ok 18:25:04.0802 0x336c [ C05648C2BE6176BE557D9C7F02916388, C65D8FEDDCD9A52B04F42C64DAD2A499BF51246D36042E8DC09DD04C4C0B7BEE ] SgrmAgent C:\WINDOWS\system32\drivers\SgrmAgent.sys 18:25:05.0000 0x336c SgrmAgent - ok 18:25:05.0090 0x336c SgrmBroker - ok 18:25:05.0201 0x336c SharedAccess - ok 18:25:05.0280 0x336c SharedRealitySvc - ok 18:25:05.0379 0x336c ShellHWDetection - ok 18:25:05.0486 0x336c shpamsvc - ok 18:25:05.0505 0x336c SiSRaid2 - ok 18:25:05.0515 0x336c SiSRaid4 - ok 18:25:05.0538 0x336c SmartSAMD - ok 18:25:05.0609 0x336c smphost - ok 18:25:05.0664 0x336c SmsRouter - ok 18:25:05.0733 0x336c [ 1971BBC71602B928CF9257759E3C05E8, 9D665698FF26ED333AD385B4B7A6C0F2B6806371D278E281FA4188002A5317E8 ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe 18:25:08.0278 0x336c SNMPTRAP - ok 18:25:08.0367 0x336c [ 27B7D9E872939EBB34C30343F991893D, 879AFDC8C50487ED0D3CB58C70A206E185F94BE75C25C31C387F3F08740771F9 ] spaceparser C:\WINDOWS\system32\drivers\spaceparser.sys 18:25:08.0529 0x336c spaceparser - ok 18:25:08.0559 0x336c spaceport - ok 18:25:08.0608 0x336c [ AB3BDEC793187CEDF1229AC98BB7DEDF, D2EA0C5FC534C89310207AA26A8816B30FEEF3F2708A067D8BB93D3CFF9C3936 ] SpatialGraphFilter C:\WINDOWS\system32\drivers\SpatialGraphFilter.sys 18:25:08.0688 0x336c SpatialGraphFilter - ok 18:25:08.0708 0x336c SpbCx - ok 18:25:08.0755 0x336c spectrum - ok 18:25:08.0793 0x336c Spooler - ok 18:25:08.0814 0x336c sppsvc - ok 18:25:08.0843 0x336c srv - ok 18:25:08.0856 0x336c srv2 - ok 18:25:08.0889 0x336c srvnet - ok 18:25:08.0973 0x336c SSDPSRV - ok 18:25:09.0054 0x336c ssh-agent - ok 18:25:09.0107 0x336c SstpSvc - ok 18:25:09.0237 0x336c [ 64A51071CBAC059A0414D5E93A68E5F4, 5C7BB72885B0083DCA5F7607598099EFB4BB6B25ACFE4413E59431B2C735F87C ] ss_conn_launcher_service C:\WINDOWS\System32\Samsung\EasySetup\ss_conn_launcher.exe 18:25:09.0297 0x336c ss_conn_launcher_service - ok 18:25:09.0361 0x336c [ 8A5C17FE89FB6D646477C13EAAD02FCB, 952738CF79524AEB4D5460E8441FC47866B6EF19C9F117BB402921FC4C344ABE ] ss_conn_usb_driver2 C:\WINDOWS\System32\Drivers\ss_conn_usb_driver2.sys 18:25:09.0690 0x336c ss_conn_usb_driver2 - ok 18:25:09.0769 0x336c StateRepository - ok 18:25:09.0815 0x336c stexstor - ok 18:25:09.0885 0x336c stisvc - ok 18:25:09.0992 0x336c storahci - ok 18:25:10.0048 0x336c storflt - ok 18:25:10.0104 0x336c stornvme - ok 18:25:10.0122 0x336c storqosflt - ok 18:25:10.0192 0x336c StorSvc - ok 18:25:10.0230 0x336c storufs - ok 18:25:10.0252 0x336c storvsc - ok 18:25:10.0290 0x336c svsvc - ok 18:25:10.0631 0x336c swenum - ok 18:25:12.0988 0x336c swprv - ok 18:25:13.0523 0x336c Synth3dVsc - ok 18:25:13.0592 0x336c SysMain - ok 18:25:13.0644 0x336c SystemEventsBroker - ok 18:25:14.0001 0x336c [ AD29A238EE93EE4B376BBBB564BC4A82, EA59F9914C4360BCF3D01B440AD5C00937795AEA76A513D12226A1FF2715CB5D ] SystemUsageReportSvc_QUEENCREEK C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe 18:25:14.0034 0x336c SystemUsageReportSvc_QUEENCREEK - ok 18:25:14.0081 0x336c TabletInputService - ok 18:25:14.0124 0x336c TapiSrv - ok 18:25:14.0147 0x336c Tcpip - ok 18:25:14.0154 0x336c Tcpip6 - ok 18:25:14.0195 0x336c [ 57BE670CF1D93717B628271B404D658A, EDD4C58EDAB985C87D6101D9CA5620146EE2BB8A1B899C635DD4CD36541DD46E ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys 18:25:14.0388 0x336c tcpipreg - ok 18:25:14.0432 0x336c tdx - ok 18:25:14.0984 0x336c [ 846961CE23C471DD6A893DE3E08E0DFA, 136A01FED8FCD5CD7343853AB1A78D2A1551F2CCBE785FB801C4050F199E553C ] TeamViewer C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe 18:25:15.0370 0x336c TeamViewer - ok 18:25:15.0888 0x336c Telemetry - ok 18:25:15.0941 0x336c [ C225B94F2B27AC97C3E66C0550AEA249, 6F88375DD12A648B77BB6EB4BE527FF6678EE76A2059DB5B4CC971CDB31D0DB8 ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys 18:25:16.0456 0x336c terminpt - ok 18:25:16.0551 0x336c TermService - ok 18:25:16.0628 0x336c [ 8EC4197962A0349DFFBDC11586099DB8, 8DD5348A4983C376F63E6B209227D4D02300555F8C80A0E0DB2EA16074ABC334 ] Themes C:\WINDOWS\system32\themeservice.dll 18:25:21.0072 0x336c Themes - ok 18:25:21.0104 0x336c TieringEngineService - ok 18:25:21.0148 0x336c TimeBrokerSvc - ok 18:25:21.0197 0x336c TokenBroker - ok 18:25:21.0265 0x336c TPM - ok 18:25:21.0384 0x336c TrkWks - ok 18:25:21.0541 0x336c TroubleshootingSvc - ok 18:25:21.0694 0x336c TrustedInstaller - ok 18:25:21.0787 0x336c [ F613A8618CC19DD96D1E0C81C5DCB7D1, AD6DE675AC033BE6BF75FF6303EAED4B5C672689D3AEC6DB94816D60E19B7030 ] TsUsbFlt C:\WINDOWS\system32\drivers\tsusbflt.sys 18:25:22.0059 0x336c TsUsbFlt - ok 18:25:22.0119 0x336c TsUsbGD - ok 18:25:22.0370 0x336c tsusbhub - ok 18:25:22.0462 0x336c [ 6244FD1056BF170E38245B4B9042BFDF, C32908B3C5800CD52EF9BDD26C77B8162831CFD19DBF1D399941B17FB909AD94 ] tunnel C:\WINDOWS\system32\drivers\tunnel.sys 18:25:22.0704 0x336c tunnel - ok 18:25:22.0832 0x336c tzautoupdate - ok 18:25:22.0980 0x336c UASPStor - ok 18:25:23.0024 0x336c UcmCx0101 - ok 18:25:23.0118 0x336c [ 229B33B8499F4F2AAB1F3B590423611F, E70A2D9EEEF0C6894A0DB7990CFF6ECE3B8F389FD30B7B1949FCBDD3300B6148 ] UcmTcpciCx0101 C:\WINDOWS\system32\Drivers\UcmTcpciCx.sys 18:25:23.0356 0x336c UcmTcpciCx0101 - ok 18:25:23.0422 0x336c [ 7FDC3A6FD8547468CE554C8821640103, 3626760AEE42EE36E047DA6899A81E0646DFBA344A234270EAE5D635F049BE37 ] UcmUcsiAcpiClient C:\WINDOWS\System32\drivers\UcmUcsiAcpiClient.sys 18:25:23.0738 0x336c UcmUcsiAcpiClient - ok 18:25:23.0795 0x336c UcmUcsiCx0101 - ok 18:25:23.0840 0x336c Ucx01000 - ok 18:25:23.0850 0x336c UdeCx - ok 18:25:23.0860 0x336c udfs - ok 18:25:24.0019 0x336c UdkUserSvc - ok 18:25:24.0691 0x336c UEFI - ok 18:25:24.0843 0x336c UEIPSvc - ok 18:25:29.0092 0x336c UevAgentDriver - ok 18:25:29.0152 0x336c UevAgentService - ok 18:25:29.0223 0x336c Ufx01000 - ok 18:25:29.0798 0x336c UfxChipidea - ok 18:25:31.0989 0x336c ufxsynopsys - ok 18:25:32.0191 0x336c [ 13B9189CA51D925FF78151A0E14C40CE, 78AEDD6D13C45B2E080BC26527CCF3BDABF764A2108249BA8B3AC4387C6A6376 ] uhssvc C:\Program Files\Microsoft Update Health Tools\uhssvc.exe 18:25:32.0328 0x336c uhssvc - ok 18:25:32.0823 0x336c umbus - ok 18:25:35.0106 0x336c UmPass - ok 18:25:35.0157 0x336c UmRdpService - ok 18:25:35.0216 0x336c UnistoreSvc - ok 18:25:35.0270 0x336c upnphost - ok 18:25:35.0599 0x336c [ 5C33B91675BE0C9693358C1AAA723D20, A5BB54ABBB0F7B13ACCA0997F567A81395688C6D68EB87F67F688737DC16918F ] UrsChipidea C:\WINDOWS\System32\DriverStore\FileRepository\urschipidea.inf_amd64_78ad1c14e33df968\urschipidea.sys 18:25:35.0723 0x336c UrsChipidea - ok 18:25:37.0560 0x336c [ ADFAB87405AE22290E24D0E8E6141AF1, BC0982BEFE4CABEA1E260C8A3266EA18A4CA158A07D1C5176890A04CC3B6A84A ] UrsCx01000 C:\WINDOWS\system32\drivers\urscx01000.sys 18:25:37.0733 0x336c UrsCx01000 - ok 18:25:38.0196 0x336c [ BBDE7BF496327115DD744E7D4105C7BC, 5A8CC47603A1C9D58A30A5E897F1BCDC56199B08317B9FF319D469D6DD6CAAF0 ] UrsSynopsys C:\WINDOWS\System32\DriverStore\FileRepository\urssynopsys.inf_amd64_057fa37902020500\urssynopsys.sys 18:25:38.0343 0x336c UrsSynopsys - ok 18:25:41.0704 0x336c usbaudio - ok 18:25:41.0866 0x336c [ FB9F25ACEBCBAEABFE30CACCB17D4EE6, 7D38FA294DA179E5535E3E481746F07E2AE47CE57192C2D1C5B780B583FD9C6D ] usbaudio2 C:\WINDOWS\System32\drivers\usbaudio2.sys 18:25:42.0189 0x336c usbaudio2 - ok 18:25:42.0315 0x336c usbccgp - ok 18:25:42.0409 0x336c [ 11561FC5BAA2DEB5AC8B179B591A882E, 2AD595BF4ABC146D8F533981848FF8271E983038566937BEB48A6A8F09BC60FB ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys 18:25:42.0607 0x336c usbcir - ok 18:25:42.0672 0x336c usbehci - ok 18:25:42.0689 0x336c usbhub - ok 18:25:42.0723 0x336c USBHUB3 - ok 18:25:42.0737 0x336c usbohci - ok 18:25:42.0800 0x336c usbprint - ok 18:25:42.0846 0x336c usbser - ok 18:25:42.0962 0x336c USBSTOR - ok 18:25:42.0991 0x336c usbuhci - ok 18:25:43.0052 0x336c USBXHCI - ok 18:25:43.0135 0x336c UserDataSvc - ok 18:25:43.0194 0x336c UserManager - ok 18:25:43.0432 0x336c [ 63655C161F5F4DD15D2858D8696E1064, 5593AC47BB2D88599548B2D501218BC9311B05EF9AB9FC05BAC8983A00A03668 ] USER_ESRV_SVC_QUEENCREEK C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe 18:25:43.0454 0x336c USER_ESRV_SVC_QUEENCREEK - ok 18:25:43.0501 0x336c UsoSvc - ok 18:25:43.0561 0x336c VacSvc - ok 18:25:43.0623 0x336c VaultSvc - ok 18:25:43.0665 0x336c vdrvroot - ok 18:25:43.0716 0x336c vds - ok 18:25:43.0764 0x336c VerifierExt - ok 18:25:43.0836 0x336c vhdmp - ok 18:25:43.0857 0x336c vhf - ok 18:25:43.0895 0x336c Vid - ok 18:25:44.0207 0x336c [ B37F0BF662BB504F0A9C247F24C281AD, 6281D573D9AD9AA204778C3823737726E882B17657B23CF5458C012FF7990E52 ] VirtualRender C:\WINDOWS\System32\DriverStore\FileRepository\vrd.inf_amd64_81fbd405ff2470fc\vrd.sys 18:25:44.0621 0x336c VirtualRender - ok 18:25:46.0626 0x336c vmbus - ok 18:25:46.0697 0x336c VMBusHID - ok 18:25:46.0798 0x336c [ E5BB075B6B5A1DA3C3F48CA5DFF54E77, E13E8F9523F51F976084561C9D0A843CAF550FA233521FF13FFE1C5634CA6472 ] vmgid C:\WINDOWS\System32\drivers\vmgid.sys 18:25:46.0961 0x336c vmgid - ok 18:25:47.0131 0x336c vmicguestinterface - ok 18:25:47.0141 0x336c vmicheartbeat - ok 18:25:47.0145 0x336c vmickvpexchange - ok 18:25:47.0210 0x336c vmicrdv - ok 18:25:47.0215 0x336c vmicshutdown - ok 18:25:47.0221 0x336c vmictimesync - ok 18:25:47.0226 0x336c vmicvmsession - ok 18:25:47.0231 0x336c vmicvss - ok 18:25:47.0317 0x336c volmgr - ok 18:25:47.0327 0x336c volmgrx - ok 18:25:47.0351 0x336c volsnap - ok 18:25:47.0365 0x336c volume - ok 18:25:47.0422 0x336c [ A37A7788DABE4FF6E33FE50D7A33D8E8, 9E99D9D27BA3DFA6F89C77B9AD91BE495F15E4F612BB63B209157DFA13BCD7E0 ] vpci C:\WINDOWS\system32\drivers\vpci.sys 18:25:47.0656 0x336c vpci - ok 18:25:47.0661 0x336c vsmraid - ok 18:25:47.0716 0x336c VSS - ok 18:25:47.0747 0x336c VSTXRAID - ok 18:25:47.0786 0x336c vwifibus - ok 18:25:47.0839 0x336c vwififlt - ok 18:25:47.0907 0x336c W32Time - ok 18:25:48.0019 0x336c WaaSMedicSvc - ok 18:25:48.0065 0x336c WacomPen - ok 18:25:48.0142 0x336c WalletService - ok 18:25:48.0196 0x336c wanarp - ok 18:25:48.0211 0x336c wanarpv6 - ok 18:25:48.0277 0x336c [ 8449398F11D49864117105679B539816, 8FD3B9C72066D6A983D062DE72EEF9769339EACBF4E0D303B9E12343C9D5DE6C ] WarpJITSvc C:\WINDOWS\System32\Windows.WARP.JITService.dll 18:25:58.0308 0x336c WarpJITSvc - ok 18:25:58.0346 0x336c wbengine - ok 18:25:58.0396 0x336c WbioSrvc - ok 18:25:58.0413 0x336c wcifs - ok 18:25:58.0490 0x336c Wcmsvc - ok 18:25:58.0621 0x336c wcncsvc - ok 18:25:58.0732 0x336c wcnfs - ok 18:25:58.0860 0x336c [ 5925250BDDB94B0A5FA0E7FEED36C520, 0845344F7BFAA94AF90920A5346078E6261EEA3A1A77795DDA5B70B38609348B ] WdBoot C:\WINDOWS\system32\drivers\WdBoot.sys 18:25:59.0275 0x336c WdBoot - ok 18:25:59.0379 0x336c Wdf01000 - ok 18:25:59.0473 0x336c [ C150CD7072592B0BCBB7DACFFC6904CD, 0F4D31410401CC564A5D1FCEF5ED2898DAFB7418C1B39D746E88451CC3518ACA ] WdFilter C:\WINDOWS\system32\drivers\WdFilter.sys 18:25:59.0875 0x336c WdFilter - ok 18:25:59.0944 0x336c [ BB37AF6E45E0F69222E057A74B4AFE1E, 4662064205BEC0DB7B10F1412E0A09A6E5E3B16DE443AEF7F79ACA3ACE24A51D ] WdiServiceHost C:\WINDOWS\system32\wdi.dll 18:26:00.0050 0x336c WdiServiceHost - ok 18:26:00.0062 0x336c [ BB37AF6E45E0F69222E057A74B4AFE1E, 4662064205BEC0DB7B10F1412E0A09A6E5E3B16DE443AEF7F79ACA3ACE24A51D ] WdiSystemHost C:\WINDOWS\system32\wdi.dll 18:26:00.0086 0x336c WdiSystemHost - ok 18:26:00.0226 0x336c wdiwifi - ok 18:26:00.0290 0x336c [ A6C92A5F2982EBB8788E0690C19048C4, 85C54A99DD43DC1FAC7FD2A31288CEC7501F795DE8FA86857790F4CCD5AF7C18 ] WdmCompanionFilter C:\WINDOWS\system32\drivers\WdmCompanionFilter.sys 18:26:00.0439 0x336c WdmCompanionFilter - ok 18:26:00.0498 0x336c [ C5552A3A54408AB9A0DC341E21F5EF67, 67838896B7E04EBBE2AA089F09913789A5E8C4B7E7436397135F1F68BB86F03A ] WdNisDrv C:\WINDOWS\system32\Drivers\WdNisDrv.sys 18:26:00.0972 0x336c WdNisDrv - ok 18:26:01.0125 0x336c WdNisSvc - ok 18:26:01.0215 0x336c WebClient - ok 18:26:01.0314 0x336c Wecsvc - ok 18:26:01.0393 0x336c [ CBA85827716DE89106F8E4AD7430620C, EF2FEAD68FE003DAC52BC2098962F397DF80B7DCD79A8F45012A050C7C0E2DB1 ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll 18:26:01.0467 0x336c WEPHOSTSVC - ok 18:26:01.0520 0x336c wercplsupport - ok 18:26:01.0643 0x336c WerSvc - ok 18:26:01.0681 0x336c WFDSConMgrSvc - ok 18:26:01.0715 0x336c WFPLWFS - ok 18:26:01.0806 0x336c WiaRpc - ok 18:26:01.0859 0x336c WIMMount - ok 18:26:01.0865 0x336c WinDefend - ok 18:26:01.0947 0x336c [ B434A84F46C70F4E67B70ED70F024B7F, 64EEB8093BA2590E83D83C5AF7C2A025B88AF5681143BCA83671104266FEEA99 ] WindowsTrustedRT C:\WINDOWS\system32\drivers\WindowsTrustedRT.sys 18:26:02.0205 0x336c WindowsTrustedRT - ok 18:26:02.0307 0x336c [ 982774B74EE1419D641CEB66E394A4BA, 090C4CE6B76B3904B5AE73E4F1EEBCE619194C358874D7584537012F954C54BE ] WindowsTrustedRTProxy C:\WINDOWS\system32\drivers\WindowsTrustedRTProxy.sys 18:26:02.0592 0x336c WindowsTrustedRTProxy - ok 18:26:02.0649 0x336c WinHttpAutoProxySvc - ok 18:26:02.0696 0x336c WinMad - ok 18:26:02.0957 0x336c Winmgmt - ok 18:26:02.0983 0x336c WinNat - ok 18:26:03.0042 0x336c WinRM - ok 18:26:03.0294 0x336c [ 91D3DC62C6EDDB6554CE14C0E0B4290F, 6F8F89B350FC6BC0D23A50C593F02514854AB7D6CD234D8C8AD4B5DDDD586BA0 ] WINUSB C:\WINDOWS\System32\drivers\WinUsb.sys 18:26:03.0495 0x336c WINUSB - ok 18:26:03.0507 0x336c WinVerbs - ok 18:26:03.0556 0x336c wisvc - ok 18:26:03.0570 0x336c WlanSvc - ok 18:26:03.0593 0x336c wlidsvc - ok 18:26:03.0649 0x336c wlpasvc - ok 18:26:03.0667 0x336c WManSvc - ok 18:26:03.0705 0x336c WmiAcpi - ok 18:26:03.0834 0x336c wmiApSrv - ok 18:26:03.0905 0x336c WMPNetworkSvc - ok 18:26:04.0021 0x336c Wof - ok 18:26:04.0077 0x336c workfolderssvc - ok 18:26:04.0095 0x336c WpcMonSvc - ok 18:26:04.0154 0x336c WPDBusEnum - ok 18:26:04.0221 0x336c [ 024924C9E79F51560B9133EEAB866BBF, F4D464BC02C7B96EF72AA9229A99A1AD32F56390F97972C33525EF0D85304261 ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys 18:26:04.0386 0x336c WpdUpFltr - ok 18:26:04.0437 0x336c WpnService - ok 18:26:04.0451 0x336c WpnUserService - ok 18:26:04.0480 0x336c ws2ifsl - ok 18:26:04.0542 0x336c wscsvc - ok 18:26:04.0590 0x336c [ 3B974B8EAED22593AC3B946C694E08D9, 96A41C32F8724EAB8B2E88D1A21AB5B725616759E1FB731DEC0562F871ED7AB3 ] WSDPrintDevice C:\WINDOWS\System32\drivers\WSDPrint.sys 18:26:04.0802 0x336c WSDPrintDevice - ok 18:26:04.0861 0x336c WSDScan - ok 18:26:04.0871 0x336c WSearch - ok 18:26:04.0924 0x336c wuauserv - ok 18:26:04.0934 0x336c WudfPf - ok 18:26:04.0944 0x336c WUDFRd - ok 18:26:04.0952 0x336c WUDFWpdFs - ok 18:26:04.0959 0x336c WUDFWpdMtp - ok 18:26:05.0001 0x336c WwanSvc - ok 18:26:05.0028 0x336c XblAuthManager - ok 18:26:05.0060 0x336c XblGameSave - ok 18:26:05.0072 0x336c xboxgip - ok 18:26:05.0091 0x336c XboxGipSvc - ok 18:26:05.0106 0x336c XboxNetApiSvc - ok 18:26:05.0130 0x336c xinputhid - ok 18:26:05.0155 0x336c ================ Scan global =============================== 18:26:05.0361 0x336c [ Global ] - ok 18:26:05.0362 0x336c ================ Scan MBR ================================== 18:26:05.0383 0x336c [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0 18:26:05.0810 0x336c \Device\Harddisk0\DR0 - ok 18:26:05.0812 0x336c ================ Scan VBR ================================== 18:26:05.0855 0x336c [ EF7092BB136229C36AD1860D4658C2A8 ] \Device\Harddisk0\DR0\Partition1 18:26:05.0856 0x336c \Device\Harddisk0\DR0\Partition1 - ok 18:26:05.0878 0x336c [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk0\DR0\Partition2 18:26:05.0878 0x336c \Device\Harddisk0\DR0\Partition2 - ok 18:26:05.0915 0x336c [ 4DE6E21CED0B2D10FBFBF5F218141C22 ] \Device\Harddisk0\DR0\Partition3 18:26:05.0924 0x336c \Device\Harddisk0\DR0\Partition3 - ok 18:26:05.0956 0x336c [ C66A6AE8155A5E92541FF5F4CC823BB2 ] \Device\Harddisk0\DR0\Partition4 18:26:05.0982 0x336c \Device\Harddisk0\DR0\Partition4 - ok 18:26:06.0022 0x336c [ 5EA173E8747DBD9C5A0A069639348F82 ] \Device\Harddisk0\DR0\Partition5 18:26:06.0052 0x336c \Device\Harddisk0\DR0\Partition5 - ok 18:26:06.0053 0x336c ================ Scan active images ======================== 18:26:06.0053 0x336c ================ Scan generic autorun ====================== 18:26:06.0146 0x336c [ 783C99AFD4C2AE6950FA5694389D2CFA, 570B37A7A3FFDAFCCECCC33CBC1968FEB857B73CA3CB4DFFEDC2E67E9ABD0878 ] C:\WINDOWS\system32\SecurityHealthSystray.exe 18:26:06.0281 0x336c SecurityHealth - ok 18:26:06.0673 0x336c [ C256E3730B0D20C3ED2AA7F9D42E0323, 896699A2139100F47F5BA378A05A7387E3E2A501D68C9B4FA33C19C4A290ED88 ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe 18:26:07.0099 0x336c RTHDVCPL - ok 18:26:07.0605 0x336c [ 9148C7A76B3401AFCA0351A1790A5B46, 2C1A51D38D576859ED433B8AF3675052C990EA4914731C5B90B82D2188B507E1 ] C:\Program Files (x86)\AVG\Antivirus\AvLaunch.exe 18:26:07.0730 0x336c AVGUI.exe - ok 18:26:07.0932 0x336c [ 38D198A2DD54A67120040566A38103BA, 01604BD91A5B2C0DDC7B52036511F8219952626716E75979D8464F2C56BA0114 ] C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe 18:26:07.0963 0x336c GrooveMonitor - ok 18:26:08.0304 0x336c [ A350C2CB858546F2E1C8571F2CE407B0, FC1F7775F57E13B472A1DE73D9114FEC02C20E523762F29ADE3FE311790FAC72 ] C:\Program Files (x86)\Dropbox\Client\Dropbox.exe 18:26:08.0514 0x336c Dropbox - ok 18:26:08.0732 0x336c [ 14175BF4E313C54A6867337FB2A9E6AA, 2E2BC8D96984C55023A00C8B0A4543440ED149C4CF19575DEF6F31067C754734 ] C:\Program Files (x86)\Intel Driver and Support Assistant\DsaTray.exe 18:26:08.0758 0x336c DSATray - ok 18:26:09.0082 0x336c [ 5B6E8E09BE6401A7E022F52FDFCB2FF8, 471C556CF9405BBB380A8CEFE945C126B954B7C94F79CC72441B51F80141FC5E ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe 18:26:09.0106 0x336c SunJavaUpdateSched - ok 18:26:09.0640 0x336c [ 6C09FA2737A5AF3FD1206984117F3493, 31D89A33C49428593FD0C7DC0EA7BBF3D1F92C9DFDD7295AF2345A009D5D3482 ] C:\Program Files (x86)\EPSON\EPSON Advanced Printer Driver 4\Tools\EAPSV\EAPSV.EXE 18:26:10.0000 0x336c EpsonAPD4SV - ok 18:26:11.0171 0x336c OneDriveSetup - ok 18:26:11.0321 0x336c GoogleDriveFS - ok 18:26:11.0331 0x336c OneDriveSetup - ok 18:26:11.0337 0x336c GoogleDriveFS - ok 18:26:11.0343 0x336c OneDriveSetup - ok 18:26:11.0346 0x336c GoogleDriveFS - ok 18:26:11.0423 0x336c [ 251E51E2FEDCE8BB82763D39D631EF89, 2682086ACE1970D5573F971669591B731F87D749406927BD7A7A4B58C3C662E9 ] C:\Program Files (x86)\Windows Mail\wab.exe 18:26:11.0856 0x336c WAB Migrate - ok 18:26:12.0067 0x336c OneDrive - ok 18:26:12.0186 0x336c [ 21C4722B0504FBD152B888907338A4D7, D5C6EE3AE54D44A3144DA19C0B314B37005A00455E170A8F20C51EFFA879A974 ] C:\Program Files\DAEMON Tools Lite\DTAgent.exe 18:26:12.0223 0x336c DAEMON Tools Lite Automount - ok 18:26:12.0226 0x336c GoogleDriveFS - ok 18:26:12.0401 0x336c [ A862156C73A77340527B324FDBED312B, 11106DC8D51BE2D64204FB976A46F725A28EB779BABE180D3C1979F522B6E1B7 ] C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe 18:26:12.0576 0x336c MicrosoftEdgeAutoLaunch_67326D35CEA8D5FBB3A03DD42AA13B43 - ok 18:26:12.0580 0x336c OneDriveSetup - ok 18:26:12.0906 0x336c [ 00F30FDFDE3E276C1A731C2DF951D67E, 018E6933882FCC41EE96E198E6F7ECEFB53EC650B1044A58876B26EDE011158B ] C:\Users\Administrador\AppData\Local\Microsoft\OneDrive\OneDrive.exe 18:26:13.0195 0x336c OneDrive - ok 18:26:13.0329 0x336c [ A862156C73A77340527B324FDBED312B, 11106DC8D51BE2D64204FB976A46F725A28EB779BABE180D3C1979F522B6E1B7 ] C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe 18:26:13.0450 0x336c MicrosoftEdgeAutoLaunch_F051A690BAA67B3401A30F8EB7BB491E - ok 18:26:13.0453 0x336c GoogleDriveFS - ok 18:26:13.0455 0x336c Waiting for KSN requests completion. In queue: 26 18:26:14.0858 0x336c AV detected via SS2: Windows Defender, windowsdefender:// ( ), 0x60100 ( disabled : updated ) 18:26:14.0878 0x336c AV detected via SS2: AVG Antivirus, C:\Program Files (x86)\AVG\Antivirus\wsc_proxy.exe ( 21.4.6162.0 ), 0x41000 ( enabled : updated ) 18:26:14.0929 0x336c Win FW state via NFP2: enabled ( trusted ) 18:26:15.0125 0x336c ============================================================ 18:26:15.0125 0x336c Scan finished 18:26:15.0125 0x336c ============================================================ 18:26:15.0142 0x3364 Detected object count: 0 18:26:15.0142 0x3364 Actual detected object count: 0 18:27:18.0542 0x3968 ============================================================ 18:27:18.0542 0x3968 Scan started 18:27:18.0542 0x3968 Mode: Manual; SigCheck; TDLFS; 18:27:18.0542 0x3968 ============================================================ 18:27:18.0542 0x3968 KSN ping started 18:27:18.0718 0x3968 KSN ping finished: true