Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Malware: [email protected], [email protected], [email protected], [email protected], etc. [Solved]


  • This topic is locked This topic is locked

#1
Euler

Euler

    New Member

  • Member
  • Pip
  • 6 posts
Hi all! I wish we could be meeting under better circumstances. Recently my Symantec Anti-virus software has been popping up every 5 minutes or so saying that it's blocking the following Trojans from running:

[email protected]
[email protected]
[email protected]
[email protected]
[email protected]
[email protected]

I download and ran OTL by Oldtimer, and it generated the following log.:

OTL logfile created on: 9/21/2013 3:02:59 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Nate\Desktop
64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16686)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

15.95 Gb Total Physical Memory | 11.81 Gb Available Physical Memory | 74.03% Memory free
31.90 Gb Paging File | 27.17 Gb Available in Paging File | 85.16% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 931.51 Gb Total Space | 855.05 Gb Free Space | 91.79% Space Free | Partition Type: NTFS
Drive E: | 931.51 Gb Total Space | 842.41 Gb Free Space | 90.43% Space Free | Partition Type: NTFS
Drive X: | 1862.90 Gb Total Space | 1729.50 Gb Free Space | 92.84% Space Free | Partition Type: exFAT

Computer Name: EULER | User Name: Nate | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2013/09/21 14:57:56 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Nate\Desktop\OTL.com
PRC - [2013/09/16 23:21:30 | 000,829,392 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2013/08/22 14:00:04 | 000,220,504 | ---- | M] (Garmin Ltd or its subsidiaries) -- C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
PRC - [2013/05/25 10:21:32 | 000,201,104 | ---- | M] (Symantec Corporation) -- C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SavUI.exe
PRC - [2013/05/25 10:21:30 | 000,144,368 | ---- | M] (Symantec Corporation) -- C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccSvcHst.exe
PRC - [2013/05/11 06:37:26 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013/03/10 13:08:47 | 000,088,984 | ---- | M] (Elaborate Bytes AG) -- C:\Program Files (x86)\VirtualCloneDrive\VCDDaemon.exe
PRC - [2012/01/26 17:07:52 | 001,058,400 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
PRC - [2009/05/14 17:07:14 | 000,759,048 | ---- | M] (ABBYY) -- C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe


========== Modules (No Company Name) ==========

MOD - [2013/09/16 23:21:27 | 000,410,576 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\ppgooglenaclpluginchrome.dll
MOD - [2013/09/16 23:21:26 | 013,611,984 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\PepperFlash\pepflashplayer.dll
MOD - [2013/09/16 23:21:25 | 004,053,456 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\pdf.dll
MOD - [2013/09/16 23:20:34 | 000,709,584 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\libglesv2.dll
MOD - [2013/09/16 23:20:33 | 000,099,792 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\libegl.dll
MOD - [2013/09/16 23:20:31 | 001,604,560 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\ffmpegsumo.dll
MOD - [2010/11/20 23:24:09 | 000,232,448 | ---- | M] () -- \\?\globalroot\systemroot\syswow64\mswsock.DLL
MOD - [2010/11/20 23:24:09 | 000,232,448 | ---- | M] () -- \\.\globalroot\systemroot\syswow64\mswsock.dll


========== Services (SafeList) ==========

SRV:64bit: - [2012/12/19 15:56:00 | 000,240,640 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2012/12/19 15:32:12 | 000,361,984 | ---- | M] (Advanced Micro Devices, Inc.) [Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe -- (AMD FUEL Service)
SRV:64bit: - [2012/05/10 14:00:00 | 000,608,864 | ---- | M] (SEIKO EPSON CORPORATION) [Auto | Running] -- C:\Program Files\EPSON\EpsonCustomerParticipation\EPCP.exe -- (EpsonCustomerParticipation)
SRV:64bit: - [2011/12/12 00:00:00 | 000,135,824 | ---- | M] (Seiko Epson Corporation) [Auto | Running] -- C:\Windows\SysNative\escsvc64.exe -- (EpsonScanSvc)
SRV:64bit: - [2009/07/13 21:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2013/08/22 14:00:04 | 000,220,504 | ---- | M] (Garmin Ltd or its subsidiaries) [Auto | Running] -- C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe -- (Garmin Core Update Service)
SRV - [2013/05/25 10:21:36 | 002,316,184 | ---- | M] (Symantec Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\Smc.exe -- (SmcService)
SRV - [2013/05/25 10:21:36 | 000,334,736 | ---- | M] (Symantec Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\snac64.exe -- (SNAC)
SRV - [2013/05/25 10:21:30 | 000,144,368 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccSvcHst.exe -- (SepMasterService)
SRV - [2013/05/11 06:37:26 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/06/10 17:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009/05/14 17:07:14 | 000,759,048 | ---- | M] (ABBYY) [Auto | Running] -- C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe -- (ABBYY.Licensing.FineReader.Sprint.9.0)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2013/08/21 09:38:36 | 000,231,376 | ---- | M] (TrueCrypt Foundation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\truecrypt.sys -- (truecrypt)
DRV:64bit: - [2013/08/20 21:05:09 | 000,177,312 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SYMEVENT64x86.SYS -- (SymEvent)
DRV:64bit: - [2013/05/25 10:21:40 | 001,139,800 | ---- | M] (Symantec Corporation) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\SEP\0C010BB9\00A5.105\x64\SymEFA64.sys -- (SymEFA)
DRV:64bit: - [2013/05/25 10:21:40 | 000,433,752 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\SEP\0C010BB9\00A5.105\x64\symnets.sys -- (SYMNETS)
DRV:64bit: - [2013/05/25 10:21:38 | 000,796,760 | ---- | M] (Symantec Corporation) [File_System | System | Running] -- C:\Windows\SysNative\drivers\SEP\0C010BB9\00A5.105\x64\srtsp64.sys -- (SRTSP)
DRV:64bit: - [2013/05/25 10:21:38 | 000,493,656 | ---- | M] (Symantec Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\SEP\0C010BB9\00A5.105\x64\SymDS64.sys -- (SymDS)
DRV:64bit: - [2013/05/25 10:21:38 | 000,224,416 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\SEP\0C010BB9\00A5.105\x64\Ironx64.sys -- (SymIRON)
DRV:64bit: - [2013/05/25 10:21:38 | 000,169,048 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\SEP\0C010BB9\00A5.105\x64\ccSetx64.sys -- (ccSettings_{E1A40A89-2B89-44FA-9E96-395B7D7F03AC})
DRV:64bit: - [2013/05/25 10:21:38 | 000,036,952 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\SEP\0C010BB9\00A5.105\x64\srtspx64.sys -- (SRTSPX)
DRV:64bit: - [2013/03/10 20:49:12 | 000,036,352 | ---- | M] (Elaborate Bytes AG) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VClone.sys -- (VClone)
DRV:64bit: - [2013/03/04 08:24:27 | 000,040,344 | ---- | M] (Elaborate Bytes AG) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\ElbyCDIO.sys -- (ElbyCDIO)
DRV:64bit: - [2012/12/19 16:48:48 | 011,278,336 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2012/12/19 15:32:54 | 000,552,960 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2012/11/06 07:11:52 | 000,096,256 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2012/05/02 12:31:56 | 000,403,232 | ---- | M] (ASMedia Technology Inc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\asmtxhci.sys -- (asmtxhci)
DRV:64bit: - [2012/05/02 12:31:56 | 000,134,944 | ---- | M] (ASMedia Technology Inc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\asmthub3.sys -- (asmthub3)
DRV:64bit: - [2012/04/09 09:13:58 | 000,057,472 | ---- | M] (Advanced Micro Devices) [Kernel | Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys -- (AODDriver4.2)
DRV:64bit: - [2012/03/01 02:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012/02/16 01:42:00 | 000,676,968 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2010/11/28 16:50:38 | 000,044,672 | R--- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbfilter.sys -- (usbfilter)
DRV:64bit: - [2010/11/20 23:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010/11/20 23:23:48 | 000,071,168 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dmvsc.sys -- (dmvsc)
DRV:64bit: - [2010/11/20 23:23:47 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2010/11/20 23:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/11/20 23:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2010/11/20 23:23:47 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010/09/30 15:00:06 | 000,180,736 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nusb3xhc.sys -- (nusb3xhc)
DRV:64bit: - [2010/09/30 15:00:06 | 000,080,384 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nusb3hub.sys -- (nusb3hub)
DRV:64bit: - [2009/07/13 21:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 21:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 21:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/10 16:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 16:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 16:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 16:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV - [2013/09/13 22:50:52 | 001,393,240 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\BASHDefs\20130913.014\BHDrvx64.sys -- (BHDrvx64)
DRV - [2013/08/29 08:51:03 | 002,099,288 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\VirusDefs\20130920.023\ex64.sys -- (NAVEX15)
DRV - [2013/08/29 08:51:03 | 000,126,040 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\VirusDefs\20130920.023\eng64.sys -- (NAVENG)
DRV - [2013/08/27 21:38:49 | 000,484,952 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys -- (eeCtrl)
DRV - [2013/08/27 21:38:49 | 000,140,376 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv)
DRV - [2013/08/16 19:07:24 | 000,513,184 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\IPSDefs\20130921.011\IDSviA64.sys -- (IDSVia64)
DRV - [2009/07/13 21:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.dell.com
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...Box&FORM=IE8SRC
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


========== FireFox ==========

FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.25.2: C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.25.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.8: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\IPSFFPlgn\ [2013/08/20 21:05:24 | 000,000,000 | ---D | M]


========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter}
CHR - homepage: http://www.google.com
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Disabled) = C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\gcswf32.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll
CHR - plugin: Java™ Platform SE 7 U25 (Enabled) = C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
CHR - plugin: Java Deployment Toolkit 7.0.250.17 (Enabled) = C:\Windows\SysWOW64\npDeployJava1.dll
CHR - plugin: VLC Web Plugin (Enabled) = C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
CHR - Extension: YouTube = C:\Users\Nate\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_1\
CHR - Extension: Google Search = C:\Users\Nate\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\
CHR - Extension: Chrome In-App Payments service = C:\Users\Nate\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_0\
CHR - Extension: Gmail = C:\Users\Nate\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_2\

O1 HOSTS File: ([2009/06/10 17:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2:64bit: - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (Symantec Vulnerability Protection) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\IPS\IPSBHO.dll (Symantec Corporation)
O2 - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [EEventManager] C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (SEIKO EPSON CORPORATION)
O4 - HKLM..\Run: [FUFAXRCV] C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe (SEIKO EPSON CORPORATION)
O4 - HKLM..\Run: [FUFAXSTM] C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe (SEIKO EPSON CORPORATION)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [VirtualCloneDrive] C:\Program Files (x86)\VirtualCloneDrive\VCDDaemon.exe (Elaborate Bytes AG)
O4 - HKCU..\Run: [EPLTarget\P0000000000000000] C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIJJE.EXE /EPT "EPLTarget\P0000000000000000" /M "WF-3520 Series" File not found
O4 - HKCU..\Run: [GarminExpressTrayApp] C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe (Garmin Ltd or its subsidiaries)
O4 - HKCU..\Run: [Google Update] Reg Error: Value error. File not found
O4 - Startup: C:\Users\Nate\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Epson all-in-one Registration.lnk = File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - mmswsock.dll File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - mmswsock.dll File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - mmswsock.dll File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - mmswsock.dll File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000005 - mmswsock.dll File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000006 - mmswsock.dll File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000007 - mmswsock.dll File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000008 - mmswsock.dll File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000009 - mmswsock.dll File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000010 - mmswsock.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - %SystemRoot%\System32\winrnr.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - %SystemRoot%\System32\winrnr.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - %SystemRoot%\System32\winrnr.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - %SystemRoot%\System32\winrnr.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - %SystemRoot%\System32\winrnr.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - %SystemRoot%\System32\winrnr.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - %SystemRoot%\System32\winrnr.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - %SystemRoot%\System32\winrnr.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - %SystemRoot%\System32\winrnr.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - %SystemRoot%\System32\winrnr.dll File not found
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{54E1D15A-0B5A-4EC0-A2DB-2A74C13E00C9}: DhcpNameServer = 192.168.2.1
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2012/07/16 18:33:00 | 000,000,032 | -H-- | M] () - E:\Autorun.inf -- [ NTFS ]
O33 - MountPoints2\{91daf645-1b7b-11e3-a938-d43d7e9e548c}\Shell - "" = AutoRun
O33 - MountPoints2\{91daf645-1b7b-11e3-a938-d43d7e9e548c}\Shell\AutoRun\command - "" = F:\setup.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2013/09/21 14:57:56 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Nate\Desktop\OTL.com
[2013/09/20 18:47:45 | 000,000,000 | ---D | C] -- C:\Users\Nate\AppData\Roaming\BitTorrent
[2013/09/20 18:28:23 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Macromed
[2013/09/18 20:47:47 | 000,000,000 | R--D | C] -- C:\Users\Nate\Documents\Scanned Documents
[2013/09/18 20:47:47 | 000,000,000 | ---D | C] -- C:\Users\Nate\Documents\Fax
[2013/09/18 11:08:24 | 000,000,000 | ---D | C] -- C:\Users\Nate\AppData\Roaming\Subversion
[2013/09/18 11:08:20 | 000,000,000 | ---D | C] -- C:\Users\Nate\Documents\MATLAB
[2013/09/18 11:07:48 | 000,000,000 | ---D | C] -- C:\Users\Nate\AppData\Roaming\MathWorks
[2013/09/18 11:04:20 | 000,000,000 | ---D | C] -- C:\Users\Nate\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Windows Performance Toolkit
[2013/09/18 11:04:20 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Windows Performance Toolkit
[2013/09/18 11:03:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Debugging Tools for Windows (x64)
[2013/09/18 11:03:52 | 000,000,000 | ---D | C] -- C:\Program Files\Debugging Tools for Windows (x64)
[2013/09/18 11:03:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Application Verifier
[2013/09/18 11:03:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Application Verifier
[2013/09/18 11:03:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Application Verifier (x64)
[2013/09/18 11:03:22 | 000,000,000 | ---D | C] -- C:\Program Files\Application Verifier (x64)
[2013/09/18 10:57:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Windows SDK v7.1
[2013/09/18 10:57:21 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SDKs
[2013/09/18 10:53:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MATLAB
[2013/09/18 10:40:09 | 000,000,000 | ---D | C] -- C:\Program Files\MATLAB
[2013/09/15 17:06:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VirtualCloneDrive
[2013/09/15 17:06:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes
[2013/09/11 21:02:08 | 000,000,000 | ---D | C] -- C:\Users\Nate\Documents\Latex
[2013/09/07 12:05:23 | 000,000,000 | ---D | C] -- C:\Users\Nate\Desktop\Unleashed-server
[2013/09/07 11:52:00 | 000,000,000 | ---D | C] -- C:\Users\Nate\Desktop\config
[2013/09/07 11:48:39 | 000,000,000 | ---D | C] -- C:\Users\Nate\Desktop\FTB
[2013/09/07 11:38:23 | 000,000,000 | ---D | C] -- C:\Users\Nate\AppData\Roaming\ftblauncher
[2013/09/07 10:41:24 | 000,000,000 | ---D | C] -- C:\Users\Nate\AppData\Roaming\.techniclauncher
[2013/09/07 10:39:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
[2013/09/07 10:39:30 | 000,000,000 | ---D | C] -- C:\Program Files\7-Zip
[2013/09/07 10:03:51 | 000,052,736 | ---- | C] (Technic) -- C:\Users\Nate\Desktop\TechnicLauncher.exe
[2013/09/07 09:56:03 | 000,000,000 | ---D | C] -- C:\Users\Nate\AppData\Local\gtk-2.0
[2013/09/07 09:27:41 | 000,000,000 | ---D | C] -- C:\Users\Nate\.thumbnails
[2013/09/05 08:38:12 | 000,000,000 | ---D | C] -- C:\Users\Nate\AppData\Local\gegl-0.2
[2013/09/05 08:38:12 | 000,000,000 | ---D | C] -- C:\Users\Nate\.gimp-2.8
[2013/09/05 08:34:36 | 000,000,000 | ---D | C] -- C:\Program Files\GIMP 2
[2013/09/05 08:34:33 | 000,000,000 | ---D | C] -- C:\Users\Nate\AppData\Local\Programs
[2013/09/04 13:00:55 | 000,000,000 | ---D | C] -- C:\Users\Nate\AppData\Roaming\MiKTeX
[2013/09/04 13:00:54 | 000,000,000 | ---D | C] -- C:\Users\Nate\AppData\Local\MiKTeX
[2013/09/04 12:59:55 | 000,000,000 | ---D | C] -- C:\Users\Nate\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Texmaker
[2013/09/04 12:59:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Texmaker
[2013/09/04 12:59:31 | 000,000,000 | ---D | C] -- C:\Users\Nate\Documents\Godfrey
[2013/09/04 12:57:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiKTeX 2.9
[2013/09/04 12:56:25 | 000,000,000 | ---D | C] -- C:\ProgramData\MiKTeX
[2013/09/04 12:55:42 | 000,000,000 | ---D | C] -- C:\Program Files\MiKTeX 2.9
[2013/09/04 11:58:33 | 000,000,000 | ---D | C] -- C:\Users\Nate\AppData\Roaming\xm1
[2013/09/04 11:57:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Texmaker
[2013/09/02 16:05:14 | 000,000,000 | ---D | C] -- C:\Users\Nate\Documents\Garmin
[2013/09/02 16:04:18 | 000,000,000 | ---D | C] -- C:\Users\Nate\AppData\Roaming\Garmin
[2013/09/02 16:02:42 | 000,000,000 | ---D | C] -- C:\Users\Nate\AppData\Local\Garmin
[2013/09/02 16:02:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin
[2013/09/02 16:02:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Garmin
[2013/09/02 16:02:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Garmin
[2013/09/02 15:59:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Package Cache
[2013/08/29 18:22:40 | 000,000,000 | ---D | C] -- C:\Users\Nate\Documents\Cornell
[2013/08/29 08:28:19 | 000,000,000 | ---D | C] -- C:\Windows\Minidump
[2013/08/22 23:09:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSXML 4.0

========== Files - Modified Within 30 Days ==========

[2013/09/21 15:03:15 | 005,128,554 | ---- | M] (Swearware) -- C:\Users\Nate\Desktop\ComboFix.exe
[2013/09/21 14:57:56 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Nate\Desktop\OTL.com
[2013/09/21 14:31:00 | 000,000,894 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2013/09/21 13:04:03 | 000,000,544 | ---- | M] () -- C:\Windows\tasks\MATLAB R2013a Startup Accelerator.job
[2013/09/21 00:24:05 | 000,030,112 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013/09/21 00:24:05 | 000,030,112 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013/09/21 00:21:09 | 000,726,126 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013/09/21 00:21:09 | 000,623,940 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013/09/21 00:21:09 | 000,106,316 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013/09/21 00:18:01 | 000,000,890 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2013/09/21 00:16:52 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013/09/21 00:16:39 | 4255,252,478 | -HS- | M] () -- C:\hiberfil.sys
[2013/09/17 14:15:12 | 000,003,932 | ---- | M] () -- C:\Users\Nate\AppData\Local\recently-used.xbel
[2013/09/17 13:58:33 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
[2013/09/13 15:31:08 | 000,517,754 | ---- | M] () -- C:\Users\Nate\Desktop\FTB_Launcher.exe
[2013/09/12 03:19:23 | 000,274,320 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013/09/07 10:03:52 | 000,052,736 | ---- | M] (Technic) -- C:\Users\Nate\Desktop\TechnicLauncher.exe
[2013/09/05 08:10:20 | 000,002,279 | ---- | M] () -- C:\Users\Nate\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2013/09/04 12:59:55 | 000,000,987 | ---- | M] () -- C:\Users\Nate\Desktop\Texmaker.lnk
[2013/08/29 08:28:12 | 527,452,303 | ---- | M] () -- C:\Windows\MEMORY.DMP

========== Files Created - No Company Name ==========

[2013/09/18 10:53:28 | 000,001,295 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MATLAB R2013a.lnk
[2013/09/18 10:52:00 | 000,000,544 | ---- | C] () -- C:\Windows\tasks\MATLAB R2013a Startup Accelerator.job
[2013/09/17 14:15:12 | 000,003,932 | ---- | C] () -- C:\Users\Nate\AppData\Local\recently-used.xbel
[2013/09/17 13:58:33 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
[2013/09/07 11:38:16 | 000,517,754 | ---- | C] () -- C:\Users\Nate\Desktop\FTB_Launcher.exe
[2013/09/05 08:34:55 | 000,000,892 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk
[2013/09/04 12:59:55 | 000,000,987 | ---- | C] () -- C:\Users\Nate\Desktop\Texmaker.lnk
[2013/08/29 08:28:12 | 527,452,303 | ---- | C] () -- C:\Windows\MEMORY.DMP
[2013/08/21 15:37:01 | 000,000,126 | ---- | C] () -- C:\Windows\QUICKEN.INI
[2013/08/21 15:31:58 | 000,000,045 | ---- | C] () -- C:\Windows\WF-3520.ini
[2013/08/20 20:35:59 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2013/08/20 20:31:23 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
[2013/08/20 20:31:23 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
[2013/08/20 20:31:23 | 000,003,917 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2012/05/02 13:58:10 | 000,029,184 | ---- | C] () -- C:\Windows\SysWow64\kdbsdk32.dll

========== ZeroAccess Check ==========

[2009/07/14 00:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[2013/09/21 00:17:02 | 000,005,632 | -HS- | M] () -- C:\Windows\assembly\GAC_32\Desktop.ini
[2013/09/21 00:17:02 | 000,007,168 | -HS- | M] () -- C:\Windows\assembly\GAC_64\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013/07/25 22:24:57 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/07/25 21:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 21:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 23:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 21:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2013/09/07 12:16:41 | 000,000,000 | ---D | M] -- C:\Users\Nate\AppData\Roaming\.minecraft
[2013/09/07 20:37:51 | 000,000,000 | ---D | M] -- C:\Users\Nate\AppData\Roaming\.techniclauncher
[2013/09/21 00:15:51 | 000,000,000 | ---D | M] -- C:\Users\Nate\AppData\Roaming\BitTorrent
[2013/09/19 22:48:11 | 000,000,000 | ---D | M] -- C:\Users\Nate\AppData\Roaming\Epson
[2013/09/13 15:31:09 | 000,000,000 | ---D | M] -- C:\Users\Nate\AppData\Roaming\ftblauncher
[2013/09/02 16:04:18 | 000,000,000 | ---D | M] -- C:\Users\Nate\AppData\Roaming\Garmin
[2013/08/21 15:32:03 | 000,000,000 | ---D | M] -- C:\Users\Nate\AppData\Roaming\Leadertech
[2013/09/18 11:08:24 | 000,000,000 | ---D | M] -- C:\Users\Nate\AppData\Roaming\Subversion
[2013/08/21 15:17:06 | 000,000,000 | ---D | M] -- C:\Users\Nate\AppData\Roaming\TrueCrypt
[2013/09/04 11:58:33 | 000,000,000 | ---D | M] -- C:\Users\Nate\AppData\Roaming\xm1

========== Purity Check ==========



< End of report >


I would appreciate any help you could offer. Thanks!
  • 0

Advertisements


#2
Phel

Phel

    Trusted Helper

  • Malware Removal
  • 1,386 posts
Hello, Euler and welcome to GeeksToGo!

You can call me Phel and this time I will try to help you with your trouble.

Please, spend some time to read these instructions carefully before we start. They contain very useful information.

  • Please, stay with us until the end. I know, Malware Removal isn't very fast procedure, it usually has multiple steps, but you should stay here till your computer will be absolutely clean from malware. If your main problem is solved, that doesn't mean that another malware isn't left in your computer. Your patience will be rewarded with absolutely clean computer. :)
  • Please, let me know, if you don't understand something. It is really important to understand every instruction. If you are in doubt, how to follow one or another instruction - feel free to ask me, how to do that. I am always glad to help you with that.
  • Please, don't fix anything by yourself. Please, don't run any tools unless they are required. Trying multiple tools in hope that one of them will help can lead to unrecoverable consequences. Sometimes malware removal tools, used without supervision, can harm your computer more than malware itself.
  • Please, feel free to notify me about changes in your PC's behavior. It's really interesting for me to know, how your computer is running after each portion of fixes.
  • Please note, that I'm currently in training. It doesn't mean that my help will be worse than expert help. My posts are carefully checked by experts before they are posted. Please note, that my replies sometimes can come with delays. However, usually it takes less than 24 hours to revise my message by expert and post to you it.
  • Finally, enjoy the fight! ;)
Okay, please, wait for a while now, I'm analyzing your log. I will post next instructions to you as soon as it's possible.
  • 0

#3
Euler

Euler

    New Member

  • Topic Starter
  • Member
  • Pip
  • 6 posts
Hey Phel! Thanks for the help. I've seen other people resolve this problem, but the specifics are a little out of my depth. I look forward to your help.
  • 0

#4
Phel

Phel

    Trusted Helper

  • Malware Removal
  • 1,386 posts
Warning! Your computer is infected with Backdoor.

What is Backdoor?

Backdoor is malware, which allows another person to remotely control your computer, so this infection can execute files, download files from the internet or steal your data.

How can you deal with this infection?

We can clean this infection. However, we aren't sure, that you can trust your computer even after removal of this infection. So, there is only one way to completely remove this infection - format your hard drive and reinstall Windows.

Please, read info here to learn more, why you need to reinstall Windows.

So, If you decided to format hard drive and reinstall Windows, please, let me know about it. If you didn't, please, follow these steps:

Please download the latest version of TDSSKiller from here and save it to your Desktop.
  • Doubleclick on TDSSKiller.exe to run the application, then click on Change parameters.
    Posted Image
  • Put a checkmark beside loaded modules.
    Posted Image
  • A reboot will be needed to apply the changes. Do it.
  • TDSSKiller will launch automatically after the reboot. Also your computer may seem very slow and unusable. This is normal. Give it enough time to load your background programs.
  • Then click on Change parameters in TDSSKiller.
  • Check all boxes then click OK.
    Posted Image
  • Click the Start Scan button.
    Posted Image
  • The scan should take no longer than 2 minutes.
  • If a suspicious object is detected, the default action will be Skip, click on Continue.
    Posted Image
  • If malicious objects are found, they will show in the Scan results - Select action for found objects and offer three options.
    Ensure Cure (default) is selected, then click Continue > Reboot now to finish the cleaning process.
    Posted Image
    Note: If Cure is not available, please choose Skip instead, do not choose Delete unless instructed.
  • A report will be created in your root directory, (usually C:\ folder) in the form of "TDSSKiller.[Version]_[Date]_[Time]_log.txt". Please copy and paste the contents of that file here.

  • 0

#5
Euler

Euler

    New Member

  • Topic Starter
  • Member
  • Pip
  • 6 posts
I'll try the steps you outlined above and see how it goes. If the problem persists, then I'll re-install Windows.
  • 0

#6
Euler

Euler

    New Member

  • Topic Starter
  • Member
  • Pip
  • 6 posts
Here's the log:

17:47:21.0433 3776 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
17:47:22.0041 3776 ============================================================
17:47:22.0041 3776 Current date / time: 2013/09/21 17:47:22.0041
17:47:22.0041 3776 SystemInfo:
17:47:22.0041 3776
17:47:22.0041 3776 OS Version: 6.1.7601 ServicePack: 1.0
17:47:22.0041 3776 Product type: Workstation
17:47:22.0041 3776 ComputerName: EULER
17:47:22.0041 3776 UserName: Nate
17:47:22.0041 3776 Windows directory: C:\Windows
17:47:22.0041 3776 System windows directory: C:\Windows
17:47:22.0041 3776 Running under WOW64
17:47:22.0041 3776 Processor architecture: Intel x64
17:47:22.0041 3776 Number of processors: 8
17:47:22.0041 3776 Page size: 0x1000
17:47:22.0041 3776 Boot type: Normal boot
17:47:22.0041 3776 ============================================================
17:47:36.0095 3776 BG loaded
17:47:36.0563 3776 Drive \Device\Harddisk0\DR0 - Size: 0x1D1C1116000 (1863.02 Gb), SectorSize: 0x200, Cylinders: 0x3B601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
17:47:36.0594 3776 Drive \Device\Harddisk1\DR1 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
17:47:36.0609 3776 Drive \Device\Harddisk2\DR2 - Size: 0xE8E0DB5E00 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
17:47:36.0937 3776 ============================================================
17:47:36.0937 3776 \Device\Harddisk0\DR0:
17:47:36.0937 3776 MBR partitions:
17:47:36.0937 3776 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
17:47:36.0937 3776 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0xE8DD5000
17:47:36.0937 3776 \Device\Harddisk1\DR1:
17:47:36.0953 3776 MBR partitions:
17:47:36.0953 3776 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x74705800
17:47:36.0953 3776 \Device\Harddisk2\DR2:
17:47:36.0953 3776 MBR partitions:
17:47:36.0953 3776 \Device\Harddisk2\DR2\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x747065AC
17:47:36.0953 3776 ============================================================
17:47:37.0062 3776 C: <-> \Device\Harddisk1\DR1\Partition1
17:47:37.0077 3776 E: <-> \Device\Harddisk2\DR2\Partition1
17:47:37.0077 3776 X: <-> \Device\Harddisk0\DR0\Partition2
17:47:37.0077 3776 ============================================================
17:47:37.0077 3776 Initialize success
17:47:37.0077 3776 ============================================================
17:49:15.0683 3700 ============================================================
17:49:15.0683 3700 Scan started
17:49:15.0683 3700 Mode: Manual; SigCheck; TDLFS;
17:49:15.0683 3700 ============================================================
17:49:16.0367 3700 ================ Scan system memory ========================
17:49:16.0367 3700 System memory - ok
17:49:16.0369 3700 ================ Scan services =============================
17:49:16.0663 3700 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
17:49:16.0730 3700 1394ohci - ok
17:49:16.0807 3700 [ B33CF4DE909A5B30F526D82053A63C8E ] ABBYY.Licensing.FineReader.Sprint.9.0 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
17:49:16.0829 3700 ABBYY.Licensing.FineReader.Sprint.9.0 - ok
17:49:16.0856 3700 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
17:49:16.0868 3700 ACPI - ok
17:49:16.0872 3700 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
17:49:16.0914 3700 AcpiPmi - ok
17:49:16.0940 3700 [ ADDA5E1951B90D3D23C56D3CF0622ADC ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
17:49:16.0948 3700 AdobeARMservice - ok
17:49:16.0964 3700 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
17:49:16.0995 3700 adp94xx - ok
17:49:17.0049 3700 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\drivers\adpahci.sys
17:49:17.0068 3700 adpahci - ok
17:49:17.0085 3700 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
17:49:17.0096 3700 adpu320 - ok
17:49:17.0116 3700 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
17:49:17.0201 3700 AeLookupSvc - ok
17:49:17.0225 3700 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys
17:49:17.0255 3700 AFD - ok
17:49:17.0273 3700 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
17:49:17.0283 3700 agp440 - ok
17:49:17.0296 3700 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
17:49:17.0338 3700 ALG - ok
17:49:17.0341 3700 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
17:49:17.0349 3700 aliide - ok
17:49:17.0366 3700 [ 4EAAAAB8759644D572522FBCDD196A13 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
17:49:17.0413 3700 AMD External Events Utility - ok
17:49:17.0486 3700 AMD FUEL Service - ok
17:49:17.0494 3700 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
17:49:17.0503 3700 amdide - ok
17:49:17.0515 3700 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
17:49:17.0569 3700 AmdK8 - ok
17:49:17.0740 3700 [ 22A14DF59FB8D0BE918C597988AF4296 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
17:49:17.0862 3700 amdkmdag - ok
17:49:17.0905 3700 [ EE22D3ED6D55A855E709F811CCCA97ED ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
17:49:17.0947 3700 amdkmdap - ok
17:49:17.0963 3700 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
17:49:18.0012 3700 AmdPPM - ok
17:49:18.0045 3700 [ 6EC6D772EAE38DC17C14AED9B178D24B ] amdsata C:\Windows\system32\drivers\amdsata.sys
17:49:18.0071 3700 amdsata - ok
17:49:18.0089 3700 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
17:49:18.0105 3700 amdsbs - ok
17:49:18.0121 3700 [ 1142A21DB581A84EA5597B03A26EBAA0 ] amdxata C:\Windows\system32\drivers\amdxata.sys
17:49:18.0130 3700 amdxata - ok
17:49:18.0150 3700 [ 5A528A540B1AEE8B1C77ED65094E8CDF ] AODDriver4.2 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys
17:49:18.0163 3700 AODDriver4.2 - ok
17:49:18.0179 3700 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
17:49:18.0321 3700 AppID - ok
17:49:18.0340 3700 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
17:49:18.0380 3700 AppIDSvc - ok
17:49:18.0406 3700 [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo C:\Windows\System32\appinfo.dll
17:49:18.0442 3700 Appinfo - ok
17:49:18.0459 3700 [ 4ABA3E75A76195A3E38ED2766C962899 ] AppMgmt C:\Windows\System32\appmgmts.dll
17:49:18.0535 3700 AppMgmt - ok
17:49:18.0575 3700 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\drivers\arc.sys
17:49:18.0599 3700 arc - ok
17:49:18.0639 3700 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\drivers\arcsas.sys
17:49:18.0649 3700 arcsas - ok
17:49:18.0680 3700 [ 7F0DB399731DAA70042D094D2C11DDCA ] asmthub3 C:\Windows\system32\DRIVERS\asmthub3.sys
17:49:18.0689 3700 asmthub3 - ok
17:49:18.0708 3700 [ 49DB39B0A504779B0D89555F684BA84E ] asmtxhci C:\Windows\system32\DRIVERS\asmtxhci.sys
17:49:18.0719 3700 asmtxhci - ok
17:49:18.0723 3700 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
17:49:18.0756 3700 AsyncMac - ok
17:49:18.0763 3700 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
17:49:18.0771 3700 atapi - ok
17:49:18.0781 3700 [ 437F55435623D4D54D36197F5AD8B435 ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW76.sys
17:49:18.0798 3700 AtiHDAudioService - ok
17:49:18.0882 3700 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
17:49:18.0911 3700 AudioEndpointBuilder - ok
17:49:18.0969 3700 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
17:49:19.0016 3700 AudioSrv - ok
17:49:19.0020 3700 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
17:49:19.0070 3700 AxInstSV - ok
17:49:19.0082 3700 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
17:49:19.0115 3700 b06bdrv - ok
17:49:19.0134 3700 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
17:49:19.0148 3700 b57nd60a - ok
17:49:19.0158 3700 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
17:49:19.0178 3700 BDESVC - ok
17:49:19.0184 3700 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
17:49:19.0208 3700 Beep - ok
17:49:19.0444 3700 [ 6E10DB69DB1AA96207F4B14B18FF12F8 ] BHDrvx64 C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\BASHDefs\20130913.014\BHDrvx64.sys
17:49:19.0465 3700 BHDrvx64 - ok
17:49:19.0492 3700 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll
17:49:19.0523 3700 BITS - ok
17:49:19.0530 3700 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
17:49:19.0540 3700 blbdrive - ok
17:49:19.0556 3700 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
17:49:19.0584 3700 bowser - ok
17:49:19.0587 3700 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
17:49:19.0603 3700 BrFiltLo - ok
17:49:19.0612 3700 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
17:49:19.0623 3700 BrFiltUp - ok
17:49:19.0645 3700 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
17:49:19.0663 3700 Browser - ok
17:49:19.0674 3700 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
17:49:19.0694 3700 Brserid - ok
17:49:19.0697 3700 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
17:49:19.0715 3700 BrSerWdm - ok
17:49:19.0718 3700 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
17:49:19.0729 3700 BrUsbMdm - ok
17:49:19.0731 3700 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
17:49:19.0740 3700 BrUsbSer - ok
17:49:19.0743 3700 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
17:49:19.0755 3700 BTHMODEM - ok
17:49:19.0770 3700 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
17:49:19.0802 3700 bthserv - ok
17:49:19.0867 3700 [ 56685951208AC81CF923B9B08BEDF3B7 ] ccSettings_{E1A40A89-2B89-44FA-9E96-395B7D7F03AC} C:\Windows\system32\Drivers\SEP\0C010BB9\00A5.105\x64\ccSetx64.sys
17:49:19.0876 3700 ccSettings_{E1A40A89-2B89-44FA-9E96-395B7D7F03AC} - ok
17:49:19.0925 3700 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
17:49:19.0955 3700 cdfs - ok
17:49:20.0006 3700 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
17:49:20.0020 3700 cdrom - ok
17:49:20.0072 3700 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
17:49:20.0105 3700 CertPropSvc - ok
17:49:20.0133 3700 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\drivers\circlass.sys
17:49:20.0149 3700 circlass - ok
17:49:20.0221 3700 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
17:49:20.0245 3700 CLFS - ok
17:49:20.0369 3700 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
17:49:20.0380 3700 clr_optimization_v2.0.50727_32 - ok
17:49:20.0419 3700 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
17:49:20.0444 3700 clr_optimization_v2.0.50727_64 - ok
17:49:21.0190 3700 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
17:49:21.0235 3700 clr_optimization_v4.0.30319_32 - ok
17:49:21.0255 3700 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
17:49:21.0264 3700 clr_optimization_v4.0.30319_64 - ok
17:49:21.0275 3700 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
17:49:21.0287 3700 CmBatt - ok
17:49:21.0290 3700 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
17:49:21.0298 3700 cmdide - ok
17:49:21.0319 3700 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\Windows\system32\Drivers\cng.sys
17:49:21.0338 3700 CNG - ok
17:49:21.0347 3700 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
17:49:21.0356 3700 Compbatt - ok
17:49:21.0363 3700 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
17:49:21.0383 3700 CompositeBus - ok
17:49:21.0385 3700 COMSysApp - ok
17:49:21.0390 3700 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
17:49:21.0406 3700 crcdisk - ok
17:49:21.0430 3700 [ 6B400F211BEE880A37A1ED0368776BF4 ] CryptSvc C:\Windows\system32\cryptsvc.dll
17:49:21.0454 3700 CryptSvc - ok
17:49:21.0473 3700 [ 54DA3DFD29ED9F1619B6F53F3CE55E49 ] CSC C:\Windows\system32\drivers\csc.sys
17:49:21.0503 3700 CSC - ok
17:49:21.0518 3700 [ 3AB183AB4D2C79DCF459CD2C1266B043 ] CscService C:\Windows\System32\cscsvc.dll
17:49:21.0537 3700 CscService - ok
17:49:21.0563 3700 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
17:49:21.0594 3700 DcomLaunch - ok
17:49:21.0649 3700 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
17:49:21.0679 3700 defragsvc - ok
17:49:21.0691 3700 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
17:49:21.0720 3700 DfsC - ok
17:49:21.0760 3700 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
17:49:21.0791 3700 Dhcp - ok
17:49:21.0804 3700 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
17:49:21.0837 3700 discache - ok
17:49:21.0900 3700 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\drivers\disk.sys
17:49:21.0918 3700 Disk - ok
17:49:21.0934 3700 [ 5DB085A8A6600BE6401F2B24EECB5415 ] dmvsc C:\Windows\system32\drivers\dmvsc.sys
17:49:21.0959 3700 dmvsc - ok
17:49:21.0977 3700 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
17:49:22.0000 3700 Dnscache - ok
17:49:22.0019 3700 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
17:49:22.0049 3700 dot3svc - ok
17:49:22.0062 3700 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
17:49:22.0098 3700 DPS - ok
17:49:22.0118 3700 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
17:49:22.0134 3700 drmkaud - ok
17:49:22.0156 3700 [ AF2E16242AA723F68F461B6EAE2EAD3D ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
17:49:22.0174 3700 DXGKrnl - ok
17:49:22.0206 3700 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
17:49:22.0257 3700 EapHost - ok
17:49:22.0339 3700 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\drivers\evbda.sys
17:49:22.0427 3700 ebdrv - ok
17:49:22.0467 3700 [ A2DA3D8E0B336E13F7A155B5789B58CF ] eeCtrl C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys
17:49:22.0479 3700 eeCtrl - ok
17:49:22.0496 3700 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
17:49:22.0533 3700 EFS - ok
17:49:22.0612 3700 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
17:49:22.0657 3700 ehRecvr - ok
17:49:22.0661 3700 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
17:49:22.0672 3700 ehSched - ok
17:49:22.0699 3700 [ BE2902E13CA69383F449B6BF927844FB ] ElbyCDIO C:\Windows\system32\Drivers\ElbyCDIO.sys
17:49:22.0707 3700 ElbyCDIO - ok
17:49:22.0737 3700 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\drivers\elxstor.sys
17:49:22.0752 3700 elxstor - ok
17:49:22.0814 3700 [ 1E0764A8A8F39BAAEB271DA597422584 ] EpsonCustomerParticipation C:\Program Files\EPSON\EpsonCustomerParticipation\EPCP.exe
17:49:22.0828 3700 EpsonCustomerParticipation - ok
17:49:22.0854 3700 [ 20ECD0A490A121CB34F553FAD1DBBD39 ] EpsonScanSvc C:\Windows\system32\EscSvc64.exe
17:49:22.0862 3700 EpsonScanSvc - ok
17:49:22.0876 3700 [ 23C3061D2F7F8BCB6140A098447035B4 ] EraserUtilRebootDrv C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
17:49:22.0885 3700 EraserUtilRebootDrv - ok
17:49:22.0888 3700 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
17:49:22.0905 3700 ErrDev - ok
17:49:22.0926 3700 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
17:49:22.0957 3700 EventSystem - ok
17:49:22.0985 3700 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
17:49:23.0009 3700 exfat - ok
17:49:23.0044 3700 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
17:49:23.0083 3700 fastfat - ok
17:49:23.0113 3700 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
17:49:23.0137 3700 Fax - ok
17:49:23.0146 3700 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\drivers\fdc.sys
17:49:23.0162 3700 fdc - ok
17:49:23.0175 3700 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
17:49:23.0206 3700 fdPHost - ok
17:49:23.0236 3700 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
17:49:23.0260 3700 FDResPub - ok
17:49:23.0294 3700 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
17:49:23.0311 3700 FileInfo - ok
17:49:23.0320 3700 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
17:49:23.0344 3700 Filetrace - ok
17:49:23.0390 3700 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
17:49:23.0399 3700 flpydisk - ok
17:49:23.0403 3700 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
17:49:23.0414 3700 FltMgr - ok
17:49:23.0464 3700 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\Windows\system32\FntCache.dll
17:49:23.0490 3700 FontCache - ok
17:49:23.0525 3700 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
17:49:23.0533 3700 FontCache3.0.0.0 - ok
17:49:23.0543 3700 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
17:49:23.0552 3700 FsDepends - ok
17:49:23.0570 3700 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
17:49:23.0578 3700 Fs_Rec - ok
17:49:23.0582 3700 [ 1F7B25B858FA27015169FE95E54108ED ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
17:49:23.0595 3700 fvevol - ok
17:49:23.0623 3700 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
17:49:23.0633 3700 gagp30kx - ok
17:49:23.0773 3700 [ CFD54D70F76E84E1E737AE1140FBC5C0 ] Garmin Core Update Service C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
17:49:23.0782 3700 Garmin Core Update Service - ok
17:49:23.0795 3700 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
17:49:23.0825 3700 gpsvc - ok
17:49:23.0883 3700 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
17:49:23.0891 3700 gupdate - ok
17:49:23.0894 3700 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
17:49:23.0902 3700 gupdatem - ok
17:49:23.0915 3700 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
17:49:23.0939 3700 hcw85cir - ok
17:49:23.0956 3700 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
17:49:23.0977 3700 HdAudAddService - ok
17:49:23.0984 3700 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
17:49:24.0006 3700 HDAudBus - ok
17:49:24.0012 3700 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
17:49:24.0022 3700 HidBatt - ok
17:49:24.0035 3700 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\drivers\hidbth.sys
17:49:24.0047 3700 HidBth - ok
17:49:24.0053 3700 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\drivers\hidir.sys
17:49:24.0064 3700 HidIr - ok
17:49:24.0067 3700 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll
17:49:24.0092 3700 hidserv - ok
17:49:24.0106 3700 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
17:49:24.0115 3700 HidUsb - ok
17:49:24.0153 3700 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
17:49:24.0183 3700 hkmsvc - ok
17:49:24.0195 3700 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
17:49:24.0209 3700 HomeGroupListener - ok
17:49:24.0222 3700 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
17:49:24.0244 3700 HomeGroupProvider - ok
17:49:24.0254 3700 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
17:49:24.0264 3700 HpSAMD - ok
17:49:24.0281 3700 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
17:49:24.0313 3700 HTTP - ok
17:49:24.0321 3700 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
17:49:24.0330 3700 hwpolicy - ok
17:49:24.0343 3700 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
17:49:24.0354 3700 i8042prt - ok
17:49:24.0373 3700 [ 3DF4395A7CF8B7A72A5F4606366B8C2D ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
17:49:24.0387 3700 iaStorV - ok
17:49:24.0421 3700 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
17:49:24.0440 3700 idsvc - ok
17:49:24.0489 3700 [ A48928D4CCA6F8B731989DB08CF2C0AB ] IDSVia64 C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\IPSDefs\20130921.011\IDSvia64.sys
17:49:24.0501 3700 IDSVia64 - ok
17:49:24.0504 3700 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\drivers\iirsp.sys
17:49:24.0513 3700 iirsp - ok
17:49:24.0547 3700 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
17:49:24.0584 3700 IKEEXT - ok
17:49:24.0662 3700 [ E4FD2A81EF844C01E3BA6FBED1644A23 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
17:49:24.0714 3700 IntcAzAudAddService - ok
17:49:24.0732 3700 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
17:49:24.0741 3700 intelide - ok
17:49:24.0754 3700 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\drivers\intelppm.sys
17:49:24.0771 3700 intelppm - ok
17:49:24.0782 3700 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
17:49:24.0816 3700 IPBusEnum - ok
17:49:24.0819 3700 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
17:49:24.0843 3700 IpFilterDriver - ok
17:49:24.0846 3700 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
17:49:24.0874 3700 IPMIDRV - ok
17:49:24.0890 3700 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
17:49:24.0940 3700 IPNAT - ok
17:49:24.0964 3700 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
17:49:24.0976 3700 IRENUM - ok
17:49:24.0983 3700 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
17:49:24.0993 3700 isapnp - ok
17:49:25.0014 3700 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
17:49:25.0028 3700 iScsiPrt - ok
17:49:25.0035 3700 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
17:49:25.0044 3700 kbdclass - ok
17:49:25.0052 3700 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
17:49:25.0067 3700 kbdhid - ok
17:49:25.0079 3700 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
17:49:25.0088 3700 KeyIso - ok
17:49:25.0098 3700 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
17:49:25.0108 3700 KSecDD - ok
17:49:25.0116 3700 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
17:49:25.0126 3700 KSecPkg - ok
17:49:25.0133 3700 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
17:49:25.0168 3700 ksthunk - ok
17:49:25.0189 3700 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
17:49:25.0225 3700 KtmRm - ok
17:49:25.0245 3700 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll
17:49:25.0274 3700 LanmanServer - ok
17:49:25.0290 3700 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
17:49:25.0315 3700 LanmanWorkstation - ok
17:49:25.0319 3700 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
17:49:25.0351 3700 lltdio - ok
17:49:25.0367 3700 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
17:49:25.0394 3700 lltdsvc - ok
17:49:25.0406 3700 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
17:49:25.0430 3700 lmhosts - ok
17:49:25.0435 3700 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
17:49:25.0445 3700 LSI_FC - ok
17:49:25.0459 3700 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
17:49:25.0469 3700 LSI_SAS - ok
17:49:25.0472 3700 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
17:49:25.0482 3700 LSI_SAS2 - ok
17:49:25.0485 3700 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
17:49:25.0494 3700 LSI_SCSI - ok
17:49:25.0505 3700 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
17:49:25.0530 3700 luafv - ok
17:49:25.0551 3700 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
17:49:25.0563 3700 Mcx2Svc - ok
17:49:25.0569 3700 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\drivers\megasas.sys
17:49:25.0578 3700 megasas - ok
17:49:25.0593 3700 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
17:49:25.0605 3700 MegaSR - ok
17:49:25.0616 3700 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
17:49:25.0649 3700 MMCSS - ok
17:49:25.0655 3700 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
17:49:25.0680 3700 Modem - ok
17:49:25.0694 3700 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
17:49:25.0713 3700 monitor - ok
17:49:25.0723 3700 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
17:49:25.0731 3700 mouclass - ok
17:49:25.0739 3700 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
17:49:25.0749 3700 mouhid - ok
17:49:25.0752 3700 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
17:49:25.0762 3700 mountmgr - ok
17:49:25.0766 3700 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
17:49:25.0776 3700 mpio - ok
17:49:25.0785 3700 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
17:49:25.0811 3700 mpsdrv - ok
17:49:25.0822 3700 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
17:49:25.0836 3700 MRxDAV - ok
17:49:25.0854 3700 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
17:49:25.0870 3700 mrxsmb - ok
17:49:25.0876 3700 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
17:49:25.0886 3700 mrxsmb10 - ok
17:49:25.0890 3700 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
17:49:25.0899 3700 mrxsmb20 - ok
17:49:25.0902 3700 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
17:49:25.0911 3700 msahci - ok
17:49:25.0927 3700 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
17:49:25.0937 3700 msdsm - ok
17:49:25.0952 3700 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
17:49:25.0964 3700 MSDTC - ok
17:49:25.0969 3700 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
17:49:25.0993 3700 Msfs - ok
17:49:26.0002 3700 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
17:49:26.0027 3700 mshidkmdf - ok
17:49:26.0029 3700 MSICDSetup - ok
17:49:26.0032 3700 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
17:49:26.0040 3700 msisadrv - ok
17:49:26.0057 3700 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
17:49:26.0083 3700 MSiSCSI - ok
17:49:26.0085 3700 msiserver - ok
17:49:26.0088 3700 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
17:49:26.0114 3700 MSKSSRV - ok
17:49:26.0116 3700 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
17:49:26.0140 3700 MSPCLOCK - ok
17:49:26.0143 3700 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
17:49:26.0168 3700 MSPQM - ok
17:49:26.0173 3700 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
17:49:26.0186 3700 MsRPC - ok
17:49:26.0193 3700 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
17:49:26.0202 3700 mssmbios - ok
17:49:26.0209 3700 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
17:49:26.0233 3700 MSTEE - ok
17:49:26.0242 3700 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
17:49:26.0252 3700 MTConfig - ok
17:49:26.0255 3700 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
17:49:26.0264 3700 Mup - ok
17:49:26.0282 3700 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
17:49:26.0308 3700 napagent - ok
17:49:26.0320 3700 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
17:49:26.0336 3700 NativeWifiP - ok
17:49:26.0390 3700 [ 702E07EC32F96ACDB873E9A5465D4401 ] NAVENG C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\VirusDefs\20130920.023\ENG64.SYS
17:49:26.0398 3700 NAVENG - ok
17:49:26.0458 3700 [ 302EA314A1AF0D7CEF0A3D0195F79561 ] NAVEX15 C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\VirusDefs\20130920.023\EX64.SYS
17:49:26.0487 3700 NAVEX15 - ok
17:49:26.0508 3700 [ 79B47FD40D9A817E932F9D26FAC0A81C ] NDIS C:\Windows\system32\drivers\ndis.sys
17:49:26.0538 3700 NDIS - ok
17:49:26.0552 3700 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
17:49:26.0579 3700 NdisCap - ok
17:49:26.0589 3700 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
17:49:26.0613 3700 NdisTapi - ok
17:49:26.0616 3700 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
17:49:26.0640 3700 Ndisuio - ok
17:49:26.0648 3700 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
17:49:26.0677 3700 NdisWan - ok
17:49:26.0680 3700 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
17:49:26.0703 3700 NDProxy - ok
17:49:26.0707 3700 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
17:49:26.0738 3700 NetBIOS - ok
17:49:26.0751 3700 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
17:49:26.0776 3700 NetBT - ok
17:49:26.0788 3700 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
17:49:26.0797 3700 Netlogon - ok
17:49:26.0822 3700 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
17:49:26.0849 3700 Netman - ok
17:49:26.0864 3700 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
17:49:26.0891 3700 netprofm - ok
17:49:26.0907 3700 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
17:49:26.0923 3700 NetTcpPortSharing - ok
17:49:26.0938 3700 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
17:49:26.0947 3700 nfrd960 - ok
17:49:26.0962 3700 [ 1EE99A89CC788ADA662441D1E9830529 ] NlaSvc C:\Windows\System32\nlasvc.dll
17:49:26.0995 3700 NlaSvc - ok
17:49:26.0998 3700 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
17:49:27.0022 3700 Npfs - ok
17:49:27.0031 3700 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
17:49:27.0067 3700 nsi - ok
17:49:27.0075 3700 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
17:49:27.0100 3700 nsiproxy - ok
17:49:27.0199 3700 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
17:49:27.0257 3700 Ntfs - ok
17:49:27.0272 3700 NTIOLib_1_0_3 - ok
17:49:27.0274 3700 NTIOLib_1_0_C - ok
17:49:27.0291 3700 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
17:49:27.0315 3700 Null - ok
17:49:27.0347 3700 [ 786DB821BFD57C0551DBBE4F75384A7D ] nusb3hub C:\Windows\system32\drivers\nusb3hub.sys
17:49:27.0451 3700 nusb3hub - ok
17:49:27.0469 3700 [ DAA8005CAF745042BB427A1ED7433354 ] nusb3xhc C:\Windows\system32\drivers\nusb3xhc.sys
17:49:27.0516 3700 nusb3xhc - ok
17:49:27.0561 3700 [ 5D9FD91F3D38DC9DA01E3CB5FA89CD48 ] nvraid C:\Windows\system32\drivers\nvraid.sys
17:49:27.0588 3700 nvraid - ok
17:49:27.0593 3700 [ F7CD50FE7139F07E77DA8AC8033D1832 ] nvstor C:\Windows\system32\drivers\nvstor.sys
17:49:27.0608 3700 nvstor - ok
17:49:27.0612 3700 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
17:49:27.0624 3700 nv_agp - ok
17:49:27.0637 3700 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
17:49:27.0647 3700 ohci1394 - ok
17:49:27.0664 3700 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
17:49:27.0700 3700 p2pimsvc - ok
17:49:27.0721 3700 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
17:49:27.0735 3700 p2psvc - ok
17:49:27.0747 3700 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\drivers\parport.sys
17:49:27.0758 3700 Parport - ok
17:49:27.0773 3700 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
17:49:27.0783 3700 partmgr - ok
17:49:27.0787 3700 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
17:49:27.0797 3700 pci - ok
17:49:27.0803 3700 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
17:49:27.0811 3700 pciide - ok
17:49:27.0837 3700 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
17:49:27.0848 3700 pcmcia - ok
17:49:27.0851 3700 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
17:49:27.0860 3700 pcw - ok
17:49:27.0877 3700 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
17:49:27.0906 3700 PEAUTH - ok
17:49:27.0942 3700 [ B9B0A4299DD2D76A4243F75FD54DC680 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
17:49:27.0979 3700 PeerDistSvc - ok
17:49:29.0210 3700 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
17:49:29.0227 3700 PerfHost - ok
17:49:29.0254 3700 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
17:49:29.0300 3700 pla - ok
17:49:29.0322 3700 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
17:49:29.0353 3700 PlugPlay - ok
17:49:29.0362 3700 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
17:49:29.0383 3700 PNRPAutoReg - ok
17:49:29.0388 3700 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
17:49:29.0399 3700 PNRPsvc - ok
17:49:29.0424 3700 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
17:49:29.0459 3700 Power - ok
17:49:29.0470 3700 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
17:49:29.0497 3700 PptpMiniport - ok
17:49:29.0507 3700 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\drivers\processr.sys
17:49:29.0525 3700 Processor - ok
17:49:29.0540 3700 [ 5C78838B4D166D1A27DB3A8A820C799A ] ProfSvc C:\Windows\system32\profsvc.dll
17:49:29.0565 3700 ProfSvc - ok
17:49:29.0568 3700 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
17:49:29.0577 3700 ProtectedStorage - ok
17:49:29.0588 3700 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
17:49:29.0612 3700 Psched - ok
17:49:29.0644 3700 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
17:49:29.0678 3700 ql2300 - ok
17:49:29.0705 3700 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
17:49:29.0717 3700 ql40xx - ok
17:49:29.0749 3700 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
17:49:29.0766 3700 QWAVE - ok
17:49:29.0808 3700 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
17:49:29.0826 3700 QWAVEdrv - ok
17:49:29.0843 3700 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
17:49:29.0872 3700 RasAcd - ok
17:49:29.0900 3700 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
17:49:29.0924 3700 RasAgileVpn - ok
17:49:29.0936 3700 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
17:49:29.0964 3700 RasAuto - ok
17:49:29.0999 3700 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
17:49:30.0060 3700 Rasl2tp - ok
17:49:30.0107 3700 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
17:49:30.0139 3700 RasMan - ok
17:49:30.0170 3700 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
17:49:30.0238 3700 RasPppoe - ok
17:49:30.0488 3700 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
17:49:30.0705 3700 RasSstp - ok
17:49:30.0758 3700 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
17:49:30.0793 3700 rdbss - ok
17:49:30.0816 3700 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
17:49:30.0836 3700 rdpbus - ok
17:49:30.0848 3700 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
17:49:30.0885 3700 RDPCDD - ok
17:49:30.0913 3700 [ 1B6163C503398B23FF8B939C67747683 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
17:49:30.0948 3700 RDPDR - ok
17:49:30.0969 3700 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
17:49:31.0028 3700 RDPENCDD - ok
17:49:31.0064 3700 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
17:49:31.0088 3700 RDPREFMP - ok
17:49:31.0119 3700 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
17:49:31.0144 3700 RDPWD - ok
17:49:31.0152 3700 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
17:49:31.0163 3700 rdyboost - ok
17:49:31.0192 3700 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
17:49:31.0230 3700 RemoteRegistry - ok
17:49:31.0251 3700 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
17:49:31.0286 3700 RpcEptMapper - ok
17:49:31.0313 3700 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
17:49:31.0323 3700 RpcLocator - ok
17:49:31.0329 3700 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
17:49:31.0357 3700 RpcSs - ok
17:49:31.0376 3700 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
17:49:31.0400 3700 rspndr - ok
17:49:31.0488 3700 [ 39A719875F572241C585A629EE62EB14 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
17:49:31.0504 3700 RTL8167 - ok
17:49:31.0522 3700 [ E60C0A09F997826C7627B244195AB581 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
17:49:31.0543 3700 s3cap - ok
17:49:31.0554 3700 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
17:49:31.0563 3700 SamSs - ok
17:49:31.0570 3700 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
17:49:31.0580 3700 sbp2port - ok
17:49:31.0599 3700 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
17:49:31.0625 3700 SCardSvr - ok
17:49:31.0639 3700 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
17:49:31.0670 3700 scfilter - ok
17:49:31.0707 3700 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
17:49:31.0744 3700 Schedule - ok
17:49:31.0781 3700 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
17:49:31.0804 3700 SCPolicySvc - ok
17:49:31.0832 3700 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
17:49:31.0849 3700 SDRSVC - ok
17:49:31.0865 3700 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
17:49:31.0893 3700 secdrv - ok
17:49:31.0924 3700 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
17:49:31.0949 3700 seclogon - ok
17:49:32.0003 3700 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
17:49:32.0037 3700 SENS - ok
17:49:32.0066 3700 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
17:49:32.0096 3700 SensrSvc - ok
17:49:32.0148 3700 [ 94E826672988FBCE0979F7800EB770C9 ] SepMasterService C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccSvcHst.exe
17:49:32.0156 3700 SepMasterService - ok
17:49:32.0163 3700 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
17:49:32.0177 3700 Serenum - ok
17:49:32.0188 3700 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
17:49:32.0204 3700 Serial - ok
17:49:32.0215 3700 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\drivers\sermouse.sys
17:49:32.0230 3700 sermouse - ok
17:49:32.0241 3700 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
17:49:32.0274 3700 SessionEnv - ok
17:49:32.0277 3700 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
17:49:32.0289 3700 sffdisk - ok
17:49:32.0292 3700 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
17:49:32.0304 3700 sffp_mmc - ok
17:49:32.0306 3700 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
17:49:32.0318 3700 sffp_sd - ok
17:49:32.0350 3700 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
17:49:32.0361 3700 sfloppy - ok
17:49:32.0388 3700 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
17:49:32.0415 3700 ShellHWDetection - ok
17:49:32.0418 3700 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
17:49:32.0427 3700 SiSRaid2 - ok
17:49:32.0469 3700 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
17:49:32.0478 3700 SiSRaid4 - ok
17:49:32.0481 3700 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
17:49:32.0517 3700 Smb - ok
17:49:32.0623 3700 [ 12627BC6B9125E93338B030E5F3FE322 ] SmcService C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\Smc.exe
17:49:32.0656 3700 SmcService - ok
17:49:32.0696 3700 [ A2E01BE605FB5696D8561883582710BA ] SNAC C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\snac64.exe
17:49:32.0708 3700 SNAC - ok
17:49:32.0722 3700 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
17:49:32.0742 3700 SNMPTRAP - ok
17:49:32.0752 3700 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
17:49:32.0761 3700 spldr - ok
17:49:32.0772 3700 [ B96C17B5DC1424D56EEA3A99E97428CD ] Spooler C:\Windows\System32\spoolsv.exe
17:49:32.0799 3700 Spooler - ok
17:49:32.0865 3700 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
17:49:32.0916 3700 sppsvc - ok
17:49:32.0959 3700 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
17:49:32.0985 3700 sppuinotify - ok
17:49:33.0065 3700 [ 193154DCA42A098683BBC693CF0DCBF6 ] SRTSP C:\Windows\system32\Drivers\SEP\0C010BB9\00A5.105\x64\SRTSP64.SYS
17:49:33.0080 3700 SRTSP - ok
17:49:33.0093 3700 [ 0E76CEF892C45734F7AED09FDDF35D4D ] SRTSPX C:\Windows\system32\Drivers\SEP\0C010BB9\00A5.105\x64\SRTSPX64.SYS
17:49:33.0100 3700 SRTSPX - ok
17:49:33.0123 3700 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
17:49:33.0148 3700 srv - ok
17:49:33.0154 3700 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
17:49:33.0179 3700 srv2 - ok
17:49:33.0183 3700 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
17:49:33.0192 3700 srvnet - ok
17:49:33.0197 3700 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
17:49:33.0224 3700 SSDPSRV - ok
17:49:33.0231 3700 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
17:49:33.0257 3700 SstpSvc - ok
17:49:33.0263 3700 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\drivers\stexstor.sys
17:49:33.0271 3700 stexstor - ok
17:49:33.0287 3700 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
17:49:33.0304 3700 stisvc - ok
17:49:33.0321 3700 [ 7785DC213270D2FC066538DAF94087E7 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
17:49:33.0330 3700 storflt - ok
17:49:33.0354 3700 [ C40841817EF57D491F22EB103DA587CC ] StorSvc C:\Windows\system32\storsvc.dll
17:49:33.0378 3700 StorSvc - ok
17:49:33.0393 3700 [ D34E4943D5AC096C8EDEEBFD80D76E23 ] storvsc C:\Windows\system32\drivers\storvsc.sys
17:49:33.0402 3700 storvsc - ok
17:49:33.0416 3700 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
17:49:33.0424 3700 swenum - ok
17:49:33.0441 3700 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
17:49:33.0482 3700 swprv - ok
17:49:33.0508 3700 [ E174C8BC572E93AEEE1036DEDAC5F225 ] SymDS C:\Windows\system32\Drivers\SEP\0C010BB9\00A5.105\x64\SYMDS64.SYS
17:49:33.0521 3700 SymDS - ok
17:49:33.0552 3700 [ 599872BAD7CFB45C7CE47CDED4B726D8 ] SymEFA C:\Windows\system32\Drivers\SEP\0C010BB9\00A5.105\x64\SYMEFA64.SYS
17:49:33.0583 3700 SymEFA - ok
17:49:33.0606 3700 [ F19E5E37ED8134B9E5F6287F2D3A75D7 ] SymEvent C:\Windows\system32\Drivers\SYMEVENT64x86.SYS
17:49:33.0615 3700 SymEvent - ok
17:49:33.0636 3700 [ ADF37F1A715D6C56C8E065FD8569A9A4 ] SymIRON C:\Windows\system32\Drivers\SEP\0C010BB9\00A5.105\x64\Ironx64.SYS
17:49:33.0646 3700 SymIRON - ok
17:49:33.0667 3700 [ 9CDCA70485BD6B9D230365F67C31F132 ] SYMNETS C:\Windows\system32\Drivers\SEP\0C010BB9\00A5.105\x64\SYMNETS.SYS
17:49:33.0679 3700 SYMNETS - ok
17:49:33.0708 3700 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
17:49:33.0738 3700 SysMain - ok
17:49:33.0751 3700 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
17:49:33.0766 3700 TabletInputService - ok
17:49:33.0775 3700 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
17:49:33.0809 3700 TapiSrv - ok
17:49:33.0823 3700 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
17:49:33.0848 3700 TBS - ok
17:49:33.0948 3700 [ DB74544B75566C974815E79A62433F29 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
17:49:34.0003 3700 Tcpip - ok
17:49:34.0059 3700 [ DB74544B75566C974815E79A62433F29 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
17:49:34.0086 3700 TCPIP6 - ok
17:49:34.0099 3700 [ DF687E3D8836BFB04FCC0615BF15A519 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
17:49:34.0144 3700 tcpipreg - ok
17:49:34.0167 3700 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
17:49:34.0204 3700 TDPIPE - ok
17:49:34.0230 3700 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
17:49:34.0248 3700 TDTCP - ok
17:49:34.0276 3700 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
17:49:34.0300 3700 tdx - ok
17:49:34.0314 3700 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
17:49:34.0323 3700 TermDD - ok
17:49:34.0347 3700 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
17:49:34.0394 3700 TermService - ok
17:49:34.0404 3700 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
17:49:34.0417 3700 Themes - ok
17:49:34.0434 3700 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
17:49:34.0459 3700 THREADORDER - ok
17:49:34.0469 3700 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
17:49:34.0501 3700 TrkWks - ok
17:49:34.0535 3700 [ 370A6907DDF79532A39319492B1FA38A ] truecrypt C:\Windows\system32\drivers\truecrypt.sys
17:49:34.0545 3700 truecrypt - ok
17:49:34.0582 3700 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
17:49:34.0617 3700 TrustedInstaller - ok
17:49:34.0635 3700 [ 4CE278FC9671BA81A138D70823FCAA09 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
17:49:34.0659 3700 tssecsrv - ok
17:49:34.0670 3700 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
17:49:34.0692 3700 TsUsbFlt - ok
17:49:34.0695 3700 [ 9CC2CCAE8A84820EAECB886D477CBCB8 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
17:49:34.0710 3700 TsUsbGD - ok
17:49:34.0719 3700 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
17:49:34.0743 3700 tunnel - ok
17:49:34.0764 3700 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
17:49:34.0774 3700 uagp35 - ok
17:49:34.0784 3700 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
17:49:34.0814 3700 udfs - ok
17:49:34.0823 3700 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
17:49:34.0834 3700 UI0Detect - ok
17:49:34.0837 3700 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
17:49:34.0847 3700 uliagpkx - ok
17:49:34.0859 3700 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
17:49:34.0876 3700 umbus - ok
17:49:34.0879 3700 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\drivers\umpass.sys
17:49:34.0896 3700 UmPass - ok
17:49:34.0917 3700 [ A293DCD756D04D8492A750D03B9A297C ] UmRdpService C:\Windows\System32\umrdp.dll
17:49:34.0936 3700 UmRdpService - ok
17:49:34.0953 3700 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
17:49:34.0987 3700 upnphost - ok
17:49:35.0003 3700 [ 481DFF26B4DCA8F4CBAC1F7DCE1D6829 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
17:49:35.0013 3700 usbccgp - ok
17:49:35.0016 3700 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys
17:49:35.0029 3700 usbcir - ok
17:49:35.0058 3700 [ 74EE782B1D9C241EFE425565854C661C ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
17:49:35.0068 3700 usbehci - ok
17:49:35.0091 3700 [ 76E2FFAD301490BA27B947C6507752FB ] usbfilter C:\Windows\system32\DRIVERS\usbfilter.sys
17:49:35.0098 3700 usbfilter - ok
17:49:35.0114 3700 [ DC96BD9CCB8403251BCF25047573558E ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
17:49:35.0137 3700 usbhub - ok
17:49:35.0143 3700 [ 58E546BBAF87664FC57E0F6081E4F609 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
17:49:35.0152 3700 usbohci - ok
17:49:35.0162 3700 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
17:49:35.0183 3700 usbprint - ok
17:49:35.0201 3700 [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
17:49:35.0213 3700 usbscan - ok
17:49:35.0221 3700 [ D76510CFA0FC09023077F22C2F979D86 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
17:49:35.0233 3700 USBSTOR - ok
17:49:35.0240 3700 [ 81FB2216D3A60D1284455D511797DB3D ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
17:49:35.0251 3700 usbuhci - ok
17:49:35.0261 3700 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
17:49:35.0286 3700 UxSms - ok
17:49:35.0297 3700 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe
17:49:35.0306 3700 VaultSvc - ok
17:49:35.0325 3700 [ 3EEBF3C348C3DEB4CF6F10F2E6E222CD ] VClone C:\Windows\system32\DRIVERS\VClone.sys
17:49:35.0333 3700 VClone - ok
17:49:35.0344 3700 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
17:49:35.0353 3700 vdrvroot - ok
17:49:35.0369 3700 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
17:49:35.0405 3700 vds - ok
17:49:35.0416 3700 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
17:49:35.0428 3700 vga - ok
17:49:35.0434 3700 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
17:49:35.0465 3700 VgaSave - ok
17:49:35.0477 3700 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
17:49:35.0488 3700 vhdmp - ok
17:49:35.0491 3700 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
17:49:35.0501 3700 viaide - ok
17:49:35.0523 3700 [ 86EA3E79AE350FEA5331A1303054005F ] vmbus C:\Windows\system32\drivers\vmbus.sys
17:49:35.0534 3700 vmbus - ok
17:49:35.0537 3700 [ 7DE90B48F210D29649380545DB45A187 ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
17:49:35.0547 3700 VMBusHID - ok
17:49:35.0550 3700 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
17:49:35.0559 3700 volmgr - ok
17:49:35.0572 3700 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
17:49:35.0586 3700 volmgrx - ok
17:49:35.0590 3700 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
17:49:35.0603 3700 volsnap - ok
17:49:35.0620 3700 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
17:49:35.0631 3700 vsmraid - ok
17:49:35.0661 3700 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
17:49:35.0715 3700 VSS - ok
17:49:35.0728 3700 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
17:49:35.0750 3700 vwifibus - ok
17:49:35.0755 3700 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
17:49:35.0784 3700 W32Time - ok
17:49:35.0796 3700 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\drivers\wacompen.sys
17:49:35.0814 3700 WacomPen - ok
17:49:35.0827 3700 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
17:49:35.0860 3700 WANARP - ok
17:49:35.0863 3700 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
17:49:35.0886 3700 Wanarpv6 - ok
17:49:35.0923 3700 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
17:49:36.0024 3700 WatAdminSvc - ok
17:49:36.0048 3700 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
17:49:36.0100 3700 wbengine - ok
17:49:36.0107 3700 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
17:49:36.0128 3700 WbioSrvc - ok
17:49:36.0137 3700 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
17:49:36.0155 3700 wcncsvc - ok
17:49:36.0164 3700 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
17:49:36.0186 3700 WcsPlugInService - ok
17:49:36.0198 3700 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\drivers\wd.sys
17:49:36.0207 3700 Wd - ok
17:49:36.0214 3700 [ 441BD2D7B4F98134C3A4F9FA570FD250 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
17:49:36.0231 3700 Wdf01000 - ok
17:49:36.0250 3700 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
17:49:36.0320 3700 WdiServiceHost - ok
17:49:36.0322 3700 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
17:49:36.0336 3700 WdiSystemHost - ok
17:49:36.0341 3700 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll
17:49:36.0357 3700 WebClient - ok
17:49:36.0361 3700 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
17:49:36.0389 3700 Wecsvc - ok
17:49:36.0397 3700 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
17:49:36.0421 3700 wercplsupport - ok
17:49:36.0429 3700 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
17:49:36.0455 3700 WerSvc - ok
17:49:36.0463 3700 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
17:49:36.0487 3700 WfpLwf - ok
17:49:36.0490 3700 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
17:49:36.0498 3700 WIMMount - ok
17:49:36.0501 3700 WinHttpAutoProxySvc - ok
17:49:36.0711 3700 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
17:49:36.0753 3700 Winmgmt - ok
17:49:36.0836 3700 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
17:49:36.0911 3700 WinRM - ok
17:49:36.0931 3700 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
17:49:36.0943 3700 WinUsb - ok
17:49:36.0971 3700 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
17:49:36.0999 3700 Wlansvc - ok
17:49:37.0009 3700 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
17:49:37.0019 3700 WmiAcpi - ok
17:49:37.0034 3700 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
17:49:37.0054 3700 wmiApSrv - ok
17:49:37.0071 3700 WMPNetworkSvc - ok
17:49:37.0096 3700 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
17:49:37.0121 3700 WPCSvc - ok
17:49:37.0138 3700 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
17:49:37.0178 3700 WPDBusEnum - ok
17:49:37.0188 3700 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
17:49:37.0213 3700 ws2ifsl - ok
17:49:37.0215 3700 WSearch - ok
17:49:37.0388 3700 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
17:49:37.0432 3700 wuauserv - ok
17:49:37.0445 3700 [ D3381DC54C34D79B22CEE0D65BA91B7C ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
17:49:37.0481 3700 WudfPf - ok
17:49:37.0511 3700 [ CF8D590BE3373029D57AF80914190682 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
17:49:37.0555 3700 WUDFRd - ok
17:49:37.0582 3700 [ 7A95C95B6C4CF292D689106BCAE49543 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
17:49:37.0607 3700 wudfsvc - ok
17:49:37.0656 3700 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\Windows\System32\wwansvc.dll
17:49:37.0686 3700 WwanSvc - ok
17:49:37.0796 3700 [ 199AB17FE18AB8AFC25205D1C9B0A13B ] etadpug C:\Program Files (x86)\Google\Desktop\Install\{d73be368-404e-0f1a-fb7f-ced1fff1f379}\ \...\ﯹ๛\{d73be368-404e-0f1a-fb7f-ced1fff1f379}\GoogleUpdate.exe
17:49:37.0829 3700 etadpug ( UnsignedFile.Multi.Generic ) - warning
17:49:37.0829 3700 etadpug - detected UnsignedFile.Multi.Generic (1)
17:49:37.0829 3700 ================ Scan global ===============================
17:49:37.0857 3700 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
17:49:37.0913 3700 [ 88EDD0B34EED542745931E581AD21A32 ] C:\Windows\system32\winsrv.dll
17:49:37.0938 3700 [ 88EDD0B34EED542745931E581AD21A32 ] C:\Windows\system32\winsrv.dll
17:49:37.0966 3700 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
17:49:38.0014 3700 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
17:49:38.0016 3700 [Global] - ok
17:49:38.0016 3700 ================ Scan MBR ==================================
17:49:38.0020 3700 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
17:49:39.0311 3700 \Device\Harddisk0\DR0 - ok
17:49:39.0319 3700 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
17:49:39.0951 3700 \Device\Harddisk1\DR1 - ok
17:49:39.0955 3700 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk2\DR2
17:49:40.0366 3700 \Device\Harddisk2\DR2 - ok
17:49:40.0366 3700 ================ Scan VBR ==================================
17:49:40.0386 3700 [ 07513EC9159999A5ECE99FFBD721A558 ] \Device\Harddisk0\DR0\Partition1
17:49:40.0388 3700 \Device\Harddisk0\DR0\Partition1 - ok
17:49:40.0390 3700 [ 3175E9AC19E6F6205A8DC031ABABFE34 ] \Device\Harddisk0\DR0\Partition2
17:49:40.0391 3700 \Device\Harddisk0\DR0\Partition2 - ok
17:49:40.0424 3700 [ 27AA8D1089BBC2D13895675524DB8D69 ] \Device\Harddisk1\DR1\Partition1
17:49:40.0435 3700 \Device\Harddisk1\DR1\Partition1 - ok
17:49:40.0438 3700 [ 2FA5D91A30A0C77A81D1F30AC5C6FCA8 ] \Device\Harddisk2\DR2\Partition1
17:49:40.0440 3700 \Device\Harddisk2\DR2\Partition1 - ok
17:49:40.0440 3700 ================ Scan active images ========================
17:49:40.0442 3700 [ 02062C0B390B7729EDC9E69C680A6F3C ] C:\Windows\System32\drivers\atapi.sys
17:49:40.0442 3700 C:\Windows\System32\drivers\atapi.sys - ok
17:49:40.0444 3700 [ 3E588B60EC061686BA05D33574A344C6 ] C:\Windows\System32\drivers\crashdmp.sys
17:49:40.0444 3700 C:\Windows\System32\drivers\crashdmp.sys - ok
17:49:40.0447 3700 [ 839B5FE3D48E9F35B22C21A3D5103F6C ] C:\Windows\System32\drivers\Dumpata.sys
17:49:40.0447 3700 C:\Windows\System32\drivers\Dumpata.sys - ok
17:49:40.0449 3700 [ 814DB88F2641691575A455CF25354098 ] C:\Windows\System32\drivers\dumpfve.sys
17:49:40.0449 3700 C:\Windows\System32\drivers\dumpfve.sys - ok
17:49:40.0452 3700 [ F036CE71586E93D94DAB220D7BDF4416 ] C:\Windows\System32\drivers\cdrom.sys
17:49:40.0452 3700 C:\Windows\System32\drivers\cdrom.sys - ok
17:49:40.0454 3700 [ 56685951208AC81CF923B9B08BEDF3B7 ] C:\Windows\System32\drivers\SEP\0C010BB9\00A5.105\x64\ccSetx64.sys
17:49:40.0454 3700 C:\Windows\System32\drivers\SEP\0C010BB9\00A5.105\x64\ccSetx64.sys - ok
17:49:40.0457 3700 [ 193154DCA42A098683BBC693CF0DCBF6 ] C:\Windows\System32\drivers\SEP\0C010BB9\00A5.105\x64\srtsp64.sys
17:49:40.0457 3700 C:\Windows\System32\drivers\SEP\0C010BB9\00A5.105\x64\srtsp64.sys - ok
17:49:40.0459 3700 [ 0E76CEF892C45734F7AED09FDDF35D4D ] C:\Windows\System32\drivers\SEP\0C010BB9\00A5.105\x64\srtspx64.sys
17:49:40.0460 3700 C:\Windows\System32\drivers\SEP\0C010BB9\00A5.105\x64\srtspx64.sys - ok
17:49:40.0462 3700 [ ADF37F1A715D6C56C8E065FD8569A9A4 ] C:\Windows\System32\drivers\SEP\0C010BB9\00A5.105\x64\Ironx64.sys
17:49:40.0462 3700 C:\Windows\System32\drivers\SEP\0C010BB9\00A5.105\x64\Ironx64.sys - ok
17:49:40.0465 3700 [ F19E5E37ED8134B9E5F6287F2D3A75D7 ] C:\Windows\System32\drivers\SYMEVENT64x86.SYS
17:49:40.0465 3700 C:\Windows\System32\drivers\SYMEVENT64x86.SYS - ok
17:49:40.0467 3700 [ 302EA314A1AF0D7CEF0A3D0195F79561 ] C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\VirusDefs\20130920.023\ex64.sys
17:49:40.0467 3700 C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\VirusDefs\20130920.023\ex64.sys - ok
17:49:40.0470 3700 [ 702E07EC32F96ACDB873E9A5465D4401 ] C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\VirusDefs\20130920.023\eng64.sys
17:49:40.0470 3700 C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\VirusDefs\20130920.023\eng64.sys - ok
17:49:40.0473 3700 [ 16A47CE2DECC9B099349A5F840654746 ] C:\Windows\System32\drivers\beep.sys
17:49:40.0473 3700 C:\Windows\System32\drivers\beep.sys - ok
17:49:40.0475 3700 [ 9899284589F75FA8724FF3D16AED75C1 ] C:\Windows\System32\drivers\null.sys
17:49:40.0475 3700 C:\Windows\System32\drivers\null.sys - ok
17:49:40.0478 3700 [ CEA6CC257FC9B7715F1C2B4849286D24 ] C:\Windows\System32\drivers\RDPCDD.sys
17:49:40.0478 3700 C:\Windows\System32\drivers\RDPCDD.sys - ok
17:49:40.0480 3700 [ BB5971A4F00659529A5C44831AF22365 ] C:\Windows\System32\drivers\RDPENCDD.sys
17:49:40.0480 3700 C:\Windows\System32\drivers\RDPENCDD.sys - ok
17:49:40.0483 3700 [ 216F3FA57533D98E1F74DED70113177A ] C:\Windows\System32\drivers\RDPREFMP.sys
17:49:40.0483 3700 C:\Windows\System32\drivers\RDPREFMP.sys - ok
17:49:40.0485 3700 [ 53E92A310193CB3C03BEA963DE7D9CFC ] C:\Windows\System32\drivers\vga.sys
17:49:40.0485 3700 C:\Windows\System32\drivers\vga.sys - ok
17:49:40.0488 3700 [ E7353D59C9842BC7299FAEB7E7E09340 ] C:\Windows\System32\drivers\videoprt.sys
17:49:40.0488 3700 C:\Windows\System32\drivers\videoprt.sys - ok
17:49:40.0490 3700 [ FC438D1430B28618E2D0C7C332A710AD ] C:\Windows\System32\drivers\watchdog.sys
17:49:40.0490 3700 C:\Windows\System32\drivers\watchdog.sys - ok
17:49:40.0493 3700 [ 1C7857B62DE5994A75B054A9FD4C3825 ] C:\Windows\System32\drivers\afd.sys
17:49:40.0493 3700 C:\Windows\System32\drivers\afd.sys - ok
17:49:40.0495 3700 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] C:\Windows\System32\drivers\msfs.sys
17:49:40.0495 3700 C:\Windows\System32\drivers\msfs.sys - ok
17:49:40.0497 3700 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] C:\Windows\System32\drivers\npfs.sys
17:49:40.0497 3700 C:\Windows\System32\drivers\npfs.sys - ok
17:49:40.0500 3700 [ 6F020A220388ECA0AB6062DC27BD16B6 ] C:\Windows\System32\drivers\tdi.sys
17:49:40.0500 3700 C:\Windows\System32\drivers\tdi.sys - ok
17:49:40.0502 3700 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] C:\Windows\System32\drivers\tdx.sys
17:49:40.0502 3700 C:\Windows\System32\drivers\tdx.sys - ok
17:49:40.0505 3700 [ 86743D9F5D2B1048062B14B1D84501C4 ] C:\Windows\System32\drivers\netbios.sys
17:49:40.0505 3700 C:\Windows\System32\drivers\netbios.sys - ok
17:49:40.0507 3700 [ 09594D1089C523423B32A4229263F068 ] C:\Windows\System32\drivers\netbt.sys
17:49:40.0507 3700 C:\Windows\System32\drivers\netbt.sys - ok
17:49:40.0510 3700 [ 0557CF5A2556BD58E26384169D72438D ] C:\Windows\System32\drivers\pacer.sys
17:49:40.0510 3700 C:\Windows\System32\drivers\pacer.sys - ok
17:49:40.0512 3700 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] C:\Windows\System32\drivers\serial.sys
17:49:40.0512 3700 C:\Windows\System32\drivers\serial.sys - ok
17:49:40.0515 3700 [ 356AFD78A6ED4457169241AC3965230C ] C:\Windows\System32\drivers\wanarp.sys
17:49:40.0515 3700 C:\Windows\System32\drivers\wanarp.sys - ok
17:49:40.0517 3700 [ 611B23304BF067451A9FDEE01FBDD725 ] C:\Windows\System32\drivers\wfplwf.sys
17:49:40.0517 3700 C:\Windows\System32\drivers\wfplwf.sys - ok
17:49:40.0520 3700 [ 370A6907DDF79532A39319492B1FA38A ] C:\Windows\System32\drivers\truecrypt.sys
17:49:40.0520 3700 C:\Windows\System32\drivers\truecrypt.sys - ok
17:49:40.0522 3700 [ 9CDCA70485BD6B9D230365F67C31F132 ] C:\Windows\System32\drivers\SEP\0C010BB9\00A5.105\x64\symnets.sys
17:49:40.0522 3700 C:\Windows\System32\drivers\SEP\0C010BB9\00A5.105\x64\symnets.sys - ok
17:49:40.0525 3700 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] C:\Windows\System32\drivers\termdd.sys
17:49:40.0525 3700 C:\Windows\System32\drivers\termdd.sys - ok
17:49:40.0527 3700 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] C:\Windows\System32\drivers\mssmbios.sys
17:49:40.0527 3700 C:\Windows\System32\drivers\mssmbios.sys - ok
17:49:40.0530 3700 [ E7F5AE18AF4168178A642A9247C63001 ] C:\Windows\System32\drivers\nsiproxy.sys
17:49:40.0530 3700 C:\Windows\System32\drivers\nsiproxy.sys - ok
17:49:40.0532 3700 [ 77F665941019A1594D887A74F301FA2F ] C:\Windows\System32\drivers\rdbss.sys
17:49:40.0532 3700 C:\Windows\System32\drivers\rdbss.sys - ok
17:49:40.0535 3700 [ A48928D4CCA6F8B731989DB08CF2C0AB ] C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\IPSDefs\20130921.011\IDSviA64.sys
17:49:40.0535 3700 C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\IPSDefs\20130921.011\IDSviA64.sys - ok
17:49:40.0538 3700 [ BE2902E13CA69383F449B6BF927844FB ] C:\Windows\System32\drivers\ElbyCDIO.sys
17:49:40.0538 3700 C:\Windows\System32\drivers\ElbyCDIO.sys - ok
17:49:40.0540 3700 [ A2DA3D8E0B336E13F7A155B5789B58CF ] C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys
17:49:40.0540 3700 C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys - ok
17:49:40.0543 3700 [ 23C3061D2F7F8BCB6140A098447035B4 ] C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
17:49:40.0543 3700 C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys - ok
17:49:40.0545 3700 [ 13096B05847EC78F0977F2C0F79E9AB3 ] C:\Windows\System32\drivers\discache.sys
17:49:40.0545 3700 C:\Windows\System32\drivers\discache.sys - ok
17:49:40.0548 3700 [ 61583EE3C3A17003C4ACD0475646B4D3 ] C:\Windows\System32\drivers\blbdrive.sys
17:49:40.0548 3700 C:\Windows\System32\drivers\blbdrive.sys - ok
17:49:40.0550 3700 [ 54DA3DFD29ED9F1619B6F53F3CE55E49 ] C:\Windows\System32\drivers\csc.sys
17:49:40.0550 3700 C:\Windows\System32\drivers\csc.sys - ok
17:49:40.0553 3700 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] C:\Windows\System32\drivers\dfsc.sys
17:49:40.0553 3700 C:\Windows\System32\drivers\dfsc.sys - ok
17:49:40.0555 3700 [ 6E10DB69DB1AA96207F4B14B18FF12F8 ] C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\BASHDefs\20130913.014\BHDrvx64.sys
17:49:40.0555 3700 C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\BASHDefs\20130913.014\BHDrvx64.sys - ok
17:49:40.0558 3700 [ 3566A8DAAFA27AF944F5D705EAA64894 ] C:\Windows\System32\drivers\tunnel.sys
17:49:40.0558 3700 C:\Windows\System32\drivers\tunnel.sys - ok
17:49:40.0561 3700 [ EE22D3ED6D55A855E709F811CCCA97ED ] C:\Windows\System32\drivers\atikmpag.sys
17:49:40.0561 3700 C:\Windows\System32\drivers\atikmpag.sys - ok
17:49:40.0563 3700 [ 22A14DF59FB8D0BE918C597988AF4296 ] C:\Windows\System32\drivers\atikmdag.sys
17:49:40.0563 3700 C:\Windows\System32\drivers\atikmdag.sys - ok
17:49:40.0565 3700 [ AF2E16242AA723F68F461B6EAE2EAD3D ] C:\Windows\System32\drivers\dxgkrnl.sys
17:49:40.0565 3700 C:\Windows\System32\drivers\dxgkrnl.sys - ok
17:49:40.0568 3700 [ 1F04CFB79DD5FB7694468CE3FB3DCC31 ] C:\Windows\System32\drivers\dxgmms1.sys
17:49:40.0568 3700 C:\Windows\System32\drivers\dxgmms1.sys - ok
17:49:40.0570 3700 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] C:\Windows\System32\drivers\hdaudbus.sys
17:49:40.0570 3700 C:\Windows\System32\drivers\hdaudbus.sys - ok
17:49:40.0573 3700 [ 49DB39B0A504779B0D89555F684BA84E ] C:\Windows\System32\drivers\asmtxhci.sys
17:49:40.0573 3700 C:\Windows\System32\drivers\asmtxhci.sys - ok
17:49:40.0575 3700 [ 76E2FFAD301490BA27B947C6507752FB ] C:\Windows\System32\drivers\usbfilter.sys
17:49:40.0575 3700 C:\Windows\System32\drivers\usbfilter.sys - ok
17:49:40.0578 3700 [ 58E546BBAF87664FC57E0F6081E4F609 ] C:\Windows\System32\drivers\usbohci.sys
17:49:40.0578 3700 C:\Windows\System32\drivers\usbohci.sys - ok
17:49:40.0580 3700 [ B6D64EE607637301FF8C33139B4950DE ] C:\Windows\System32\drivers\usbport.sys
17:49:40.0580 3700 C:\Windows\System32\drivers\usbport.sys - ok
17:49:40.0583 3700 [ 39A719875F572241C585A629EE62EB14 ] C:\Windows\System32\drivers\Rt64win7.sys
17:49:40.0583 3700 C:\Windows\System32\drivers\Rt64win7.sys - ok
17:49:40.0585 3700 [ CB624C0035412AF0DEBEC78C41F5CA1B ] C:\Windows\System32\drivers\serenum.sys
17:49:40.0585 3700 C:\Windows\System32\drivers\serenum.sys - ok
17:49:40.0588 3700 [ 74EE782B1D9C241EFE425565854C661C ] C:\Windows\System32\drivers\usbehci.sys
17:49:40.0588 3700 C:\Windows\System32\drivers\usbehci.sys - ok
17:49:40.0590 3700 [ F6FF8944478594D0E414D3F048F0D778 ] C:\Windows\System32\drivers\wmiacpi.sys
17:49:40.0590 3700 C:\Windows\System32\drivers\wmiacpi.sys - ok
17:49:40.0593 3700 [ 7ECFF9B22276B73F43A99A15A6094E90 ] C:\Windows\System32\drivers\agilevpn.sys
17:49:40.0593 3700 C:\Windows\System32\drivers\agilevpn.sys - ok
17:49:40.0595 3700 [ 1E56388B3FE0D031C44144EB8C4D6217 ] C:\Windows\System32\drivers\amdppm.sys
17:49:40.0595 3700 C:\Windows\System32\drivers\amdppm.sys - ok
17:49:40.0598 3700 [ 03EDB043586CCEBA243D689BDDA370A8 ] C:\Windows\System32\drivers\CompositeBus.sys
17:49:40.0598 3700 C:\Windows\System32\drivers\CompositeBus.sys - ok
17:49:40.0600 3700 [ 30639C932D9FEF22B31268FE25A1B6E5 ] C:\Windows\System32\drivers\ndistapi.sys
17:49:40.0600 3700 C:\Windows\System32\drivers\ndistapi.sys - ok
17:49:40.0603 3700 [ 53F7305169863F0A2BDDC49E116C2E11 ] C:\Windows\System32\drivers\ndiswan.sys
17:49:40.0603 3700 C:\Windows\System32\drivers\ndiswan.sys - ok
17:49:40.0605 3700 [ 471815800AE33E6F1C32FB1B97C490CA ] C:\Windows\System32\drivers\rasl2tp.sys
17:49:40.0605 3700 C:\Windows\System32\drivers\rasl2tp.sys - ok
17:49:40.0608 3700 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] C:\Windows\System32\drivers\kbdclass.sys
17:49:40.0608 3700 C:\Windows\System32\drivers\kbdclass.sys - ok
17:49:40.0610 3700 [ 7D27EA49F3C1F687D357E77A470AEA99 ] C:\Windows\System32\drivers\mouclass.sys
17:49:40.0610 3700 C:\Windows\System32\drivers\mouclass.sys - ok
17:49:40.0613 3700 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] C:\Windows\System32\drivers\raspppoe.sys
17:49:40.0613 3700 C:\Windows\System32\drivers\raspppoe.sys - ok
17:49:40.0615 3700 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] C:\Windows\System32\drivers\raspptp.sys
17:49:40.0615 3700 C:\Windows\System32\drivers\raspptp.sys - ok
17:49:40.0618 3700 [ E8B1E447B008D07FF47D016C2B0EEECB ] C:\Windows\System32\drivers\rassstp.sys
17:49:40.0618 3700 C:\Windows\System32\drivers\rassstp.sys - ok
17:49:40.0620 3700 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] C:\Windows\System32\drivers\rdpbus.sys
17:49:40.0620 3700 C:\Windows\System32\drivers\rdpbus.sys - ok
17:49:40.0623 3700 [ 24FBF5CC5C04150073C315A7C83521EE ] C:\Windows\System32\drivers\ks.sys
17:49:40.0623 3700 C:\Windows\System32\drivers\ks.sys - ok
17:49:40.0625 3700 [ 1B1E264203D4EF9D3DA1987AD70355AB ] C:\Windows\System32\drivers\scsiport.sys
17:49:40.0625 3700 C:\Windows\System32\drivers\scsiport.sys - ok
17:49:40.0628 3700 [ 3EEBF3C348C3DEB4CF6F10F2E6E222CD ] C:\Windows\System32\drivers\VClone.sys
17:49:40.0628 3700 C:\Windows\System32\drivers\VClone.sys - ok
17:49:40.0630 3700 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] C:\Windows\System32\drivers\swenum.sys
17:49:40.0630 3700 C:\Windows\System32\drivers\swenum.sys - ok
17:49:40.0633 3700 [ DC54A574663A895C8763AF0FA1FF7561 ] C:\Windows\System32\drivers\umbus.sys
17:49:40.0633 3700 C:\Windows\System32\drivers\umbus.sys - ok
17:49:40.0635 3700 [ 5B79D52A0388D8DEC5BF68411EA05A02 ] C:\Windows\System32\ntdll.dll
17:49:40.0635 3700 C:\Windows\System32\ntdll.dll - ok
17:49:40.0637 3700 [ F0970A4BC8395659C22BF53D0FADF16F ] C:\Windows\System32\smss.exe
17:49:40.0637 3700 C:\Windows\System32\smss.exe - ok
17:49:40.0640 3700 [ 3B536A8BEC3B4F23FFDFD78B11A2AB93 ] C:\Windows\System32\autochk.exe
17:49:40.0640 3700 C:\Windows\System32\autochk.exe - ok
17:49:40.0642 3700 [ A510C654EC00C1E9BDD91EEB3A59823B ] C:\Windows\System32\drivers\exfat.sys
17:49:40.0642 3700 C:\Windows\System32\drivers\exfat.sys - ok
17:49:40.0645 3700 [ DC96BD9CCB8403251BCF25047573558E ] C:\Windows\System32\drivers\usbhub.sys
17:49:40.0645 3700 C:\Windows\System32\drivers\usbhub.sys - ok
17:49:40.0647 3700 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] C:\Windows\System32\drivers\ndproxy.sys
17:49:40.0647 3700 C:\Windows\System32\drivers\ndproxy.sys - ok
17:49:40.0650 3700 [ AAFA952E774DDDB0956D3BDFAE5B5B99 ] C:\Windows\System32\wininet.dll
17:49:40.0650 3700 C:\Windows\System32\wininet.dll - ok
17:49:40.0652 3700 [ 35552F806607A86E65B6047BF695D34B ] C:\Windows\System32\urlmon.dll
17:49:40.0652 3700 C:\Windows\System32\urlmon.dll - ok
17:49:40.0655 3700 [ D8973E71F1B35CD3F3DEA7C12D49D0F0 ] C:\Windows\System32\kernel32.dll
17:49:40.0655 3700 C:\Windows\System32\kernel32.dll - ok
17:49:40.0657 3700 [ D87E1E59C73C1F98D5DED5B3850C40F5 ] C:\Windows\System32\psapi.dll
17:49:40.0657 3700 C:\Windows\System32\psapi.dll - ok
17:49:40.0659 3700 [ 437F55435623D4D54D36197F5AD8B435 ] C:\Windows\System32\drivers\AtihdW76.sys
17:49:40.0659 3700 C:\Windows\System32\drivers\AtihdW76.sys - ok
17:49:40.0662 3700 [ 21D26064AEDB4988F785BB4A3A2C051E ] C:\Windows\System32\drivers\drmk.sys
17:49:40.0662 3700 C:\Windows\System32\drivers\drmk.sys - ok
17:49:40.0664 3700 [ 32E11315B5126921FFD9074840EF13D3 ] C:\Windows\System32\drivers\portcls.sys
17:49:40.0664 3700 C:\Windows\System32\drivers\portcls.sys - ok
17:49:40.0667 3700 [ 6869281E78CB31A43E969F06B57347C4 ] C:\Windows\System32\drivers\ksthunk.sys
17:49:40.0667 3700 C:\Windows\System32\drivers\ksthunk.sys - ok
17:49:40.0669 3700 [ E4FD2A81EF844C01E3BA6FBED1644A23 ] C:\Windows\System32\drivers\RTKVHD64.sys
17:49:40.0669 3700 C:\Windows\System32\drivers\RTKVHD64.sys - ok
17:49:40.0672 3700 [ F7CE0C81C545364020ED8203CF0A633E ] C:\Windows\System32\difxapi.dll
17:49:40.0672 3700 C:\Windows\System32\difxapi.dll - ok
17:49:40.0674 3700 [ 7F0DB399731DAA70042D094D2C11DDCA ] C:\Windows\System32\drivers\asmthub3.sys
17:49:40.0674 3700 C:\Windows\System32\drivers\asmthub3.sys - ok
17:49:40.0677 3700 [ 8E9898BF21FF4232EE07BD5D1D1C6281 ] C:\Windows\System32\iertutil.dll
17:49:40.0677 3700 C:\Windows\System32\iertutil.dll - ok
17:49:40.0679 3700 [ A1BE6A720D02E37F72E9CD89AE9CB3CF ] C:\Windows\System32\imagehlp.dll
17:49:40.0679 3700 C:\Windows\System32\imagehlp.dll - ok
17:49:40.0681 3700 [ 25983DE69B57142039AC8D95E71CD9C9 ] C:\Windows\System32\clbcatq.dll
17:49:40.0681 3700 C:\Windows\System32\clbcatq.dll - ok
17:49:40.0683 3700 [ 9835E63E09F824D22B689D2BB789BAB9 ] C:\Windows\System32\comdlg32.dll
17:49:40.0683 3700 C:\Windows\System32\comdlg32.dll - ok
17:49:40.0685 3700 [ C391FC68282A000CDF953F8B6B55D2EF ] C:\Windows\System32\msvcrt.dll
17:49:40.0685 3700 C:\Windows\System32\msvcrt.dll - ok
17:49:40.0688 3700 [ 044FE45FFD6AD40E3BBBE60B7F41BABE ] C:\Windows\System32\nsi.dll
17:49:40.0688 3700 C:\Windows\System32\nsi.dll - ok
17:49:40.0690 3700 [ 4BBFA57F594F7E8A8EDC8F377184C3F0 ] C:\Windows\System32\ws2_32.dll
17:49:40.0690 3700 C:\Windows\System32\ws2_32.dll - ok
17:49:40.0692 3700 [ AD662B34B161198B9D66A564EDDA7D43 ] C:\Windows\System32\shell32.dll
17:49:40.0692 3700 C:\Windows\System32\shell32.dll - ok
17:49:40.0695 3700 [ C431EAF5CAA1C82CAC2534A2EAB348A3 ] C:\Windows\System32\msctf.dll
17:49:40.0695 3700 C:\Windows\System32\msctf.dll - ok
17:49:40.0697 3700 [ AA2C08CE85653B1A0D2E4AB407FA176C ] C:\Windows\System32\imm32.dll
17:49:40.0697 3700 C:\Windows\System32\imm32.dll - ok
17:49:40.0699 3700 [ EAF32CB8C1F810E4715B4DFBE785C7FF ] C:\Windows\System32\shlwapi.dll
17:49:40.0699 3700 C:\Windows\System32\shlwapi.dll - ok
17:49:40.0702 3700 [ 2F8B1E3EE3545D3B5A8D56FA1AE07B65 ] C:\Windows\System32\usp10.dll
17:49:40.0702 3700 C:\Windows\System32\usp10.dll - ok
17:49:40.0704 3700 [ 6C60B5ACA7442EFB794082CDACFC001C ] C:\Windows\System32\ole32.dll
17:49:40.0704 3700 C:\Windows\System32\ole32.dll - ok
17:49:40.0706 3700 [ C06B32165E23A72A898B7A89679AD754 ] C:\Windows\System32\oleaut32.dll
17:49:40.0706 3700 C:\Windows\System32\oleaut32.dll - ok
17:49:40.0709 3700 [ FE70103391A64039A921DBFFF9C7AB1B ] C:\Windows\System32\user32.dll
17:49:40.0709 3700 C:\Windows\System32\user32.dll - ok
17:49:40.0711 3700 [ 28C0B5024F5C5A438E78B188CFC81B7F ] C:\Windows\System32\normaliz.dll
17:49:40.0711 3700 C:\Windows\System32\normaliz.dll - ok
17:49:40.0714 3700 [ 5D8E6C95156ED1F79A63D1EADE6F9ED5 ] C:\Windows\System32\setupapi.dll
17:49:40.0714 3700 C:\Windows\System32\setupapi.dll - ok
17:49:40.0716 3700 [ 6DF46D2BD74E3DA1B45F08F10D172732 ] C:\Windows\System32\advapi32.dll
17:49:40.0716 3700 C:\Windows\System32\advapi32.dll - ok
17:49:40.0718 3700 [ 4E4FFB09D895AA000DD56D1404F69A7E ] C:\Windows\System32\Wldap32.dll
17:49:40.0719 3700 C:\Windows\System32\Wldap32.dll - ok
17:49:40.0721 3700 [ 1084AA52CCC324EA54C7121FA24C2221 ] C:\Windows\System32\gdi32.dll
17:49:40.0721 3700 C:\Windows\System32\gdi32.dll - ok
17:49:40.0723 3700 [ 83404DCBCE4925B6A5A77C5170F46D86 ] C:\Windows\System32\sechost.dll
17:49:40.0723 3700 C:\Windows\System32\sechost.dll - ok
17:49:40.0726 3700 [ 72723D3E4781BADC62C3180C137E7B23 ] C:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll
17:49:40.0726 3700 C:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll - ok
17:49:40.0728 3700 [ B22C00ED0491FD7B8803D7DDE2849F4C ] C:\Windows\System32\KernelBase.dll
17:49:40.0728 3700 C:\Windows\System32\KernelBase.dll - ok
17:49:40.0731 3700 [ D202223587518B13D72D68937B7E3F70 ] C:\Windows\System32\lpk.dll
17:49:40.0731 3700 C:\Windows\System32\lpk.dll - ok
17:49:40.0733 3700 [ 26036E228D2467DE6975AD819C22C043 ] C:\Windows\System32\rpcrt4.dll
17:49:40.0733 3700 C:\Windows\System32\rpcrt4.dll - ok
17:49:40.0736 3700 [ F49E92B50CED5C9F1725D3C0329FD933 ] C:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll
17:49:40.0736 3700 C:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll - ok
17:49:40.0738 3700 [ 64A4AB126E24FD3F58EBE64852773DB5 ] C:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll
17:49:40.0738 3700 C:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll - ok
17:49:40.0741 3700 [ 0E6FBF19D9DFBB77316C23DF91F8A101 ] C:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll
17:49:40.0741 3700 C:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll - ok
17:49:40.0743 3700 [ 287998A9BA0140ABB59792CDEB2F8483 ] C:\Windows\System32\crypt32.dll
17:49:40.0743 3700 C:\Windows\System32\crypt32.dll - ok
17:49:40.0746 3700 [ 06FEC9E8117103BB1141A560E98077DA ] C:\Windows\System32\devobj.dll
17:49:40.0746 3700 C:\Windows\System32\devobj.dll - ok
17:49:40.0748 3700 [ 959041D7014C97133D859B45BCA0FC58 ] C:\Windows\System32\wintrust.dll
17:49:40.0748 3700 C:\Windows\System32\wintrust.dll - ok
17:49:40.0750 3700 [ 2477A28081BDAEE622CF045ACF8EE124 ] C:\Windows\System32\cfgmgr32.dll
17:49:40.0751 3700 C:\Windows\System32\cfgmgr32.dll - ok
17:49:40.0753 3700 [ 14DFDEAF4E589ED3F1FF187A86B9408C ] C:\Windows\System32\comctl32.dll
17:49:40.0753 3700 C:\Windows\System32\comctl32.dll - ok
17:49:40.0755 3700 [ AFC3DB5C6EB8CA8017DDB81D6C0AD02A ] C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
17:49:40.0755 3700 C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll - ok
17:49:40.0758 3700 [ 9094039A00485F71C4DE64BF51F64C46 ] C:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll
17:49:40.0758 3700 C:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll - ok
17:49:40.0760 3700 [ 884415BD4269C02EAF8E2613BF85500D ] C:\Windows\System32\msasn1.dll
17:49:40.0760 3700 C:\Windows\System32\msasn1.dll - ok
17:49:40.0763 3700 [ 9C278785347BCC991F8EA2999D90F58D ] C:\Windows\SysWOW64\normaliz.dll
17:49:40.0763 3700 C:\Windows\SysWOW64\normaliz.dll - ok
17:49:40.0765 3700 [ 481DFF26B4DCA8F4CBAC1F7DCE1D6829 ] C:\Windows\System32\drivers\usbccgp.sys
17:49:40.0765 3700 C:\Windows\System32\drivers\usbccgp.sys - ok
17:49:40.0768 3700 [ 63C8D74BED9F80F4DD0AA7A3101EB639 ] C:\Windows\System32\drivers\usbd.sys
17:49:40.0768 3700 C:\Windows\System32\drivers\usbd.sys - ok
17:49:40.0770 3700 [ 49EE2E52E6CD03947DAD72F65367BE06 ] C:\Windows\System32\drivers\hidparse.sys
17:49:40.0770 3700 C:\Windows\System32\drivers\hidparse.sys - ok
17:49:40.0772 3700 [ 8B0E40E7E8BBF5ACF390465609D89FF1 ] C:\Windows\System32\drivers\hidclass.sys
17:49:40.0772 3700 C:\Windows\System32\drivers\hidclass.sys - ok
17:49:40.0775 3700 [ 9592090A7E2B61CD582B612B6DF70536 ] C:\Windows\System32\drivers\hidusb.sys
17:49:40.0775 3700 C:\Windows\System32\drivers\hidusb.sys - ok
17:49:40.0778 3700 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] C:\Windows\System32\drivers\mouhid.sys
17:49:40.0778 3700 C:\Windows\System32\drivers\mouhid.sys - ok
17:49:40.0780 3700 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] C:\Windows\System32\drivers\kbdhid.sys
17:49:40.0780 3700 C:\Windows\System32\drivers\kbdhid.sys - ok
17:49:40.0782 3700 [ BF24D6F2ED97FE830BFD52B246F98E67 ] C:\Windows\System32\drivers\dxapi.sys
17:49:40.0782 3700 C:\Windows\System32\drivers\dxapi.sys - ok
17:49:40.0785 3700 [ 42A88ECF903BFE11411D188DCE830E84 ] C:\Windows\System32\win32k.sys
17:49:40.0785 3700 C:\Windows\System32\win32k.sys - ok
17:49:40.0787 3700 [ D76510CFA0FC09023077F22C2F979D86 ] C:\Windows\System32\drivers\USBSTOR.SYS
17:49:40.0787 3700 C:\Windows\System32\drivers\USBSTOR.SYS - ok
17:49:40.0790 3700 [ 60C2862B4BF0FD9F582EF344C2B1EC72 ] C:\Windows\System32\csrss.exe
17:49:40.0790 3700 C:\Windows\System32\csrss.exe - ok
17:49:40.0792 3700 [ 216BABD555BC550952320EEA89C25DDF ] C:\Windows\System32\csrsrv.dll
17:49:40.0792 3700 C:\Windows\System32\csrsrv.dll - ok
17:49:40.0795 3700 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\System32\basesrv.dll
17:49:40.0795 3700 C:\Windows\System32\basesrv.dll - ok
17:49:40.0797 3700 [ 88EDD0B34EED542745931E581AD21A32 ] C:\Windows\System32\winsrv.dll
17:49:40.0797 3700 C:\Windows\System32\winsrv.dll - ok
17:49:40.0799 3700 [ B03D591DC7DA45ECE20B3B467E6AADAA ] C:\Windows\System32\drivers\monitor.sys
17:49:40.0799 3700 C:\Windows\System32\drivers\monitor.sys - ok
17:49:40.0802 3700 [ F29FE765E1448EF371CFE05BFAC74ADB ] C:\Windows\System32\tsddd.dll
17:49:40.0802 3700 C:\Windows\System32\tsddd.dll - ok
17:49:40.0804 3700 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\System32\sxssrv.dll
17:49:40.0804 3700 C:\Windows\System32\sxssrv.dll - ok
17:49:40.0806 3700 [ 2C942733A5983DD4502219FF37C7EBC7 ] C:\Windows\System32\profapi.dll
17:49:40.0806 3700 C:\Windows\System32\profapi.dll - ok
17:49:40.0809 3700 [ 94355C28C1970635A31B3FE52EB7CEBA ] C:\Windows\System32\wininit.exe
17:49:40.0809 3700 C:\Windows\System32\wininit.exe - ok
17:49:40.0811 3700 [ 78523A26F5604C0568FE9D1CE86E36F4 ] C:\Windows\System32\KBDUS.DLL
17:49:40.0811 3700 C:\Windows\System32\KBDUS.DLL - ok
17:49:40.0814 3700 [ C2A8CB1275ECB85D246A9ECC02A728E3 ] C:\Windows\System32\RpcRtRemote.dll
17:49:40.0814 3700 C:\Windows\System32\RpcRtRemote.dll - ok
17:49:40.0816 3700 [ 943F527DF79E6B400104341AA7023C75 ] C:\Windows\System32\cdd.dll
17:49:40.0816 3700 C:\Windows\System32\cdd.dll - ok
17:49:40.0818 3700 [ B26B1801356760841C3BC69F9F91537F ] C:\Windows\System32\WlS0WndH.dll
17:49:40.0818 3700 C:\Windows\System32\WlS0WndH.dll - ok
17:49:40.0821 3700 [ 9CEAD32E79A62150FE9F8557E58E008B ] C:\Windows\System32\sxs.dll
17:49:40.0821 3700 C:\Windows\System32\sxs.dll - ok
17:49:40.0823 3700 [ 784FA3DF338E2E8F5F0389D6FAC428AF ] C:\Windows\System32\cryptbase.dll
17:49:40.0823 3700 C:\Windows\System32\cryptbase.dll - ok
17:49:40.0826 3700 [ 90499F3163A9F815CF196A205EA3CD5D ] C:\Windows\System32\apphelp.dll
17:49:40.0826 3700 C:\Windows\System32\apphelp.dll - ok
17:49:40.0828 3700 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\System32\services.exe
17:49:40.0828 3700 C:\Windows\System32\services.exe - ok
17:49:40.0830 3700 [ 66A6063D0BAAD3F7B2B9868859E0743B ] C:\Windows\System32\lsasrv.dll
17:49:40.0830 3700 C:\Windows\System32\lsasrv.dll - ok
17:49:40.0833 3700 [ C118A82CD78818C29AB228366EBF81C3 ] C:\Windows\System32\lsass.exe
17:49:40.0833 3700 C:\Windows\System32\lsass.exe - ok
17:49:40.0835 3700 [ 3A0CE5FE781708CD6ABD55313607EC8B ] C:\Windows\System32\sspisrv.dll
17:49:40.0835 3700 C:\Windows\System32\sspisrv.dll - ok
17:49:40.0838 3700 [ 9662EE182644511439F1C53745DC1C88 ] C:\Windows\System32\lsm.exe
17:49:40.0838 3700 C:\Windows\System32\lsm.exe - ok
17:49:40.0840 3700 [ B66BC8B20B7F33975865B1DF99783FD8 ] C:\Windows\System32\sspicli.dll
17:49:40.0840 3700 C:\Windows\System32\sspicli.dll - ok
17:49:40.0843 3700 [ A744BA6E04C8AA4592818178DBF89521 ] C:\Windows\System32\samsrv.dll
17:49:40.0843 3700 C:\Windows\System32\samsrv.dll - ok
17:49:40.0845 3700 [ BBCDF350817BA86416C0F06B6981BE8D ] C:\Windows\System32\scesrv.dll
17:49:40.0845 3700 C:\Windows\System32\scesrv.dll - ok
17:49:40.0847 3700 [ E914A50A151DFFE63D3935226DB5E2C1 ] C:\Windows\System32\scext.dll
17:49:40.0847 3700 C:\Windows\System32\scext.dll - ok
17:49:40.0850 3700 [ 0144D8D75A0B12938AEEE859E3310A46 ] C:\Windows\System32\secur32.dll
17:49:40.0850 3700 C:\Windows\System32\secur32.dll - ok
17:49:40.0852 3700 [ 68083118797CAF30FB2EA3E71494D67E ] C:\Windows\System32\sysntfy.dll
17:49:40.0852 3700 C:\Windows\System32\sysntfy.dll - ok
17:49:40.0854 3700 [ DEE7267C5D232A3B816866872CE199E6 ] C:\Windows\System32\wmsgapi.dll
17:49:40.0854 3700 C:\Windows\System32\wmsgapi.dll - ok
17:49:40.0857 3700 [ 3A061472B38233BAFF9CFEFF2E49C46B ] C:\Windows\System32\cryptdll.dll
17:49:40.0857 3700 C:\Windows\System32\cryptdll.dll - ok
17:49:40.0859 3700 [ 3A9C9BAF610B0DD4967086040B3B62A9 ] C:\Windows\System32\srvcli.dll
17:49:40.0859 3700 C:\Windows\System32\srvcli.dll - ok
17:49:40.0862 3700 [ 3C073B0C596A0AF84933E7406766B040 ] C:\Windows\System32\wevtapi.dll
17:49:40.0862 3700 C:\Windows\System32\wevtapi.dll - ok
17:49:40.0864 3700 [ 7FBEBD2229EA5FD48D41B199EC2D541C ] C:\Windows\System32\authz.dll
17:49:40.0864 3700 C:\Windows\System32\authz.dll - ok
17:49:40.0867 3700 [ 86FE1B1F8FD42CD0DB641AB1CDB13093 ] C:\Windows\System32\cngaudit.dll
17:49:40.0867 3700 C:\Windows\System32\cngaudit.dll - ok
17:49:40.0869 3700 [ B9A95365E52F421A20E1501935FADDA5 ] C:\Windows\System32\bcrypt.dll
17:49:40.0869 3700 C:\Windows\System32\bcrypt.dll - ok
17:49:40.0871 3700 [ 5F3307352216618221A17CFEF273EEE2 ] C:\Windows\System32\ncrypt.dll
17:49:40.0871 3700 C:\Windows\System32\ncrypt.dll - ok
17:49:40.0874 3700 [ 02B64609F865A39365FF88580DF11738 ] C:\Windows\System32\msprivs.dll
17:49:40.0874 3700 C:\Windows\System32\msprivs.dll - ok
17:49:40.0876 3700 [ C6505DE3561537BA1004D638C2F93F2F ] C:\Windows\System32\netjoin.dll
17:49:40.0876 3700 C:\Windows\System32\netjoin.dll - ok
17:49:40.0878 3700 [ 50532FCD7ECF02DD169CE5C485F02534 ] C:\Windows\System32\negoexts.dll
17:49:40.0878 3700 C:\Windows\System32\negoexts.dll - ok
17:49:40.0881 3700 [ D0C2FBB6D97416B0166478FC7AE2B212 ] C:\Windows\System32\cryptsp.dll
17:49:40.0881 3700 C:\Windows\System32\cryptsp.dll - ok
17:49:40.0883 3700 [ 44E1A196DFCB53B01FE4B855C3B56A15 ] C:\Windows\System32\kerberos.dll
17:49:40.0883 3700 C:\Windows\System32\kerberos.dll - ok
17:49:40.0886 3700 [ 1D5185A4C7E6695431AE4B55C3D7D333 ] C:\Windows\System32\mswsock.dll
17:49:40.0886 3700 C:\Windows\System32\mswsock.dll - ok
17:49:40.0888 3700 [ EF12B8385AA2849999008A977918F96B ] C:\Windows\System32\msv1_0.dll
17:49:40.0888 3700 C:\Windows\System32\msv1_0.dll - ok
17:49:40.0891 3700 [ 1151B1BAA6F350B1DB6598E0FEA7C457 ] C:\Windows\System32\winlogon.exe
17:49:40.0891 3700 C:\Windows\System32\winlogon.exe - ok
17:49:40.0893 3700 [ EC7CBFF96B05ECF3D366355B3C64ADCF ] C:\Windows\System32\wship6.dll
17:49:40.0893 3700 C:\Windows\System32\wship6.dll - ok
17:49:40.0896 3700 [ AA339DD8BB128EF66660DFBBB59043D3 ] C:\Windows\System32\netlogon.dll
17:49:40.0896 3700 C:\Windows\System32\netlogon.dll - ok
17:49:40.0898 3700 [ 492D07D79E7024CA310867B526D9636D ] C:\Windows\System32\dnsapi.dll
17:49:40.0898 3700 C:\Windows\System32\dnsapi.dll - ok
17:49:40.0900 3700 [ 8FFE297B8449386E7B6851458B6E474E ] C:\Windows\System32\logoncli.dll
17:49:40.0900 3700 C:\Windows\System32\logoncli.dll - ok
17:49:40.0903 3700 [ 1573C45E65DE32B1BC3572634F8F1E8E ] C:\Windows\System32\schannel.dll
17:49:40.0903 3700 C:\Windows\System32\schannel.dll - ok
17:49:40.0905 3700 [ 95FB6CA4374E343DDD653FCC43F9D26B ] C:\Windows\System32\wdigest.dll
17:49:40.0906 3700 C:\Windows\System32\wdigest.dll - ok
17:49:40.0908 3700 [ 0D9764D58C5EFD672B7184854B152E5E ] C:\Windows\System32\winsta.dll
17:49:40.0908 3700 C:\Windows\System32\winsta.dll - ok
17:49:40.0910 3700 [ E08088A97F95345E181C3DFCE2C615EF ] C:\Windows\System32\pku2u.dll
17:49:40.0910 3700 C:\Windows\System32\pku2u.dll - ok
17:49:40.0913 3700 [ 5D8874A8C11DDDDE29E12DE0E2013493 ] C:\Windows\System32\rsaenh.dll
17:49:40.0913 3700 C:\Windows\System32\rsaenh.dll - ok
17:49:40.0915 3700 [ 8A25506B6948EFBD5A7F37E53CCD36D9 ] C:\Windows\System32\TSpkg.dll
17:49:40.0915 3700 C:\Windows\System32\TSpkg.dll - ok
17:49:40.0917 3700 [ D6C7780A364C6BBACFA796BAB9F1B374 ] C:\Windows\System32\bcryptprimitives.dll
17:49:40.0917 3700 C:\Windows\System32\bcryptprimitives.dll - ok
17:49:40.0920 3700 [ 90BDEFC5DF334E5100EAA781D798DE1A ] C:\Windows\System32\efslsaext.dll
17:49:40.0920 3700 C:\Windows\System32\efslsaext.dll - ok
17:49:40.0922 3700 [ 52D3D5E3586988D4D9E34ACAAC33105C ] C:\Windows\System32\credssp.dll
17:49:40.0922 3700 C:\Windows\System32\credssp.dll - ok
17:49:40.0925 3700 [ ED78427259134C63ED69804D2132B86C ] C:\Windows\System32\scecli.dll
17:49:40.0925 3700 C:\Windows\System32\scecli.dll - ok
17:49:40.0927 3700 [ 7CC7DF5B654DA579613F811D8C637E29 ] C:\Windows\System32\ubpm.dll
17:49:40.0927 3700 C:\Windows\System32\ubpm.dll - ok
17:49:40.0930 3700 [ C78655BC80301D76ED4FEF1C1EA40A7D ] C:\Windows\System32\svchost.exe
17:49:40.0930 3700 C:\Windows\System32\svchost.exe - ok
17:49:40.0932 3700 [ 25FBDEF06C4D92815B353F6E792C8129 ] C:\Windows\System32\umpnpmgr.dll
17:49:40.0932 3700 C:\Windows\System32\umpnpmgr.dll - ok
17:49:40.0934 3700 [ CD1B5AD07E5F7FEF30E055DCC9E96180 ] C:\Windows\System32\devrtl.dll
17:49:40.0934 3700 C:\Windows\System32\devrtl.dll - ok
17:49:40.0936 3700 [ E6EB44ABAAF1F330119F854856C53EBE ] C:\Windows\System32\SPInf.dll
17:49:40.0936 3700 C:\Windows\System32\SPInf.dll - ok
17:49:40.0939 3700 [ 9C9307C95671AC962F3D6EB3A4A89BAE ] C:\Windows\System32\gpapi.dll
17:49:40.0939 3700 C:\Windows\System32\gpapi.dll - ok
17:49:40.0941 3700 [ F6C011B46FAEEF33536B2E80F48B5CBE ] C:\Windows\System32\pcwum.dll
17:49:40.0941 3700 C:\Windows\System32\pcwum.dll - ok
17:49:40.0943 3700 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] C:\Windows\System32\umpo.dll
17:49:40.0943 3700 C:\Windows\System32\umpo.dll - ok
17:49:40.0946 3700 [ 7A17485DC7D8A7AC81321A42CD034519 ] C:\Windows\System32\userenv.dll
17:49:40.0946 3700 C:\Windows\System32\userenv.dll - ok
17:49:40.0948 3700 [ 716175021BDA290504CE434273F666BC ] C:\Windows\System32\powrprof.dll
17:49:40.0948 3700 C:\Windows\System32\powrprof.dll - ok
17:49:40.0951 3700 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] C:\Windows\System32\drivers\luafv.sys
17:49:40.0951 3700 C:\Windows\System32\drivers\luafv.sys - ok
17:49:40.0953 3700 [ D3381DC54C34D79B22CEE0D65BA91B7C ] C:\Windows\System32\drivers\WUDFPf.sys
17:49:40.0953 3700 C:\Windows\System32\drivers\WUDFPf.sys - ok
17:49:40.0955 3700 [ 5C627D1B1138676C0A7AB2C2C190D123 ] C:\Windows\System32\rpcss.dll
17:49:40.0956 3700 C:\Windows\System32\rpcss.dll - ok
17:49:40.0958 3700 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] C:\Windows\System32\RpcEpMap.dll
17:49:40.0958 3700 C:\Windows\System32\RpcEpMap.dll - ok
17:49:40.0960 3700 [ 16E964ABF6D1E0F0CC7822FCA9BA754D ] C:\Windows\System32\wshqos.dll
17:49:40.0960 3700 C:\Windows\System32\wshqos.dll - ok
17:49:40.0963 3700 [ 31559F3244C6BC00A52030CAA83B6B91 ] C:\Windows\System32\WSHTCPIP.DLL
17:49:40.0963 3700 C:\Windows\System32\WSHTCPIP.DLL - ok
17:49:40.0965 3700 [ 9AD9E06F8656F296D91FAE8EE5B95A27 ] C:\Windows\System32\FirewallAPI.dll
17:49:40.0965 3700 C:\Windows\System32\FirewallAPI.dll - ok
17:49:40.0968 3700 [ 4EAAAAB8759644D572522FBCDD196A13 ] C:\Windows\System32\atiesrxx.exe
17:49:40.0968 3700 C:\Windows\System32\atiesrxx.exe - ok
17:49:40.0970 3700 [ 3EF480BFED1B5947A32585E30A58D4ED ] C:\Windows\System32\authui.dll
17:49:40.0970 3700 C:\Windows\System32\authui.dll - ok
17:49:40.0973 3700 [ 715F03B4C7223349768013EA95D9E5B7 ] C:\Windows\System32\LogonUI.exe
17:49:40.0973 3700 C:\Windows\System32\LogonUI.exe - ok
17:49:40.0975 3700 [ BD3674BE7FC9D8D3732C83E8499576ED ] C:\Windows\System32\wtsapi32.dll
17:49:40.0975 3700 C:\Windows\System32\wtsapi32.dll - ok
17:49:40.0978 3700 [ 94E026870A55AAEAFF7853C1754091E9 ] C:\Windows\System32\version.dll
17:49:40.0978 3700 C:\Windows\System32\version.dll - ok
17:49:40.0980 3700 [ 6011714C8C5C55CBFFAD24D61E879FBD ] C:\Windows\System32\wevtsvc.dll
17:49:40.0980 3700 C:\Windows\System32\wevtsvc.dll - ok
17:49:40.0983 3700 [ F23FEF6D569FCE88671949894A8BECF1 ] C:\Windows\System32\audiosrv.dll
17:49:40.0983 3700 C:\Windows\System32\audiosrv.dll - ok
17:49:40.0985 3700 [ 227E2C382A1E02F8D4965E664D3BBE43 ] C:\Windows\System32\MMDevAPI.dll
17:49:40.0985 3700 C:\Windows\System32\MMDevAPI.dll - ok
17:49:40.0987 3700 [ 78A1E65207484B7F8D3217507745F47C ] C:\Windows\System32\avrt.dll
17:49:40.0987 3700 C:\Windows\System32\avrt.dll - ok
17:49:40.0990 3700 [ E40E80D0304A73E8D269F7141D77250B ] C:\Windows\System32\mmcss.dll
17:49:40.0990 3700 C:\Windows\System32\mmcss.dll - ok
17:49:40.0992 3700 [ F06BB4E336EA57511FDBAFAFCC47DE62 ] C:\Windows\System32\propsys.dll
17:49:40.0992 3700 C:\Windows\System32\propsys.dll - ok
17:49:40.0995 3700 [ B3BFBD758506ECB50C5804AAA76318F9 ] C:\Windows\System32\cryptui.dll
17:49:40.0995 3700 C:\Windows\System32\cryptui.dll - ok
17:49:40.0997 3700 [ D5CCA1453B98A5801E6D5FF0FF89DC6C ] C:\Windows\System32\audiodg.exe
17:49:40.0997 3700 C:\Windows\System32\audiodg.exe - ok
17:49:41.0000 3700 [ 7FA8FDC2C2A27817FD0F624E78D3B50C ] C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac\comctl32.dll
17:49:41.0000 3700 C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac\comctl32.dll - ok
17:49:41.0002 3700 [ 1F4492FE41767CDB8B89D17655847CDD ] C:\Windows\System32\ntmarta.dll
17:49:41.0003 3700 C:\Windows\System32\ntmarta.dll - ok
17:49:41.0005 3700 [ 5B3EBFC3DA142324B388DDCC4465E1FF ] C:\Windows\System32\samlib.dll
17:49:41.0005 3700 C:\Windows\System32\samlib.dll - ok
17:49:41.0007 3700 [ 4E9C2DB10F7E6AE91BF761139D4B745B ] C:\Windows\System32\shacct.dll
17:49:41.0007 3700 C:\Windows\System32\shacct.dll - ok
17:49:41.0010 3700 [ D29E998E8277666982B4F0303BF4E7AF ] C:\Windows\System32\uxtheme.dll
17:49:41.0010 3700 C:\Windows\System32\uxtheme.dll - ok
17:49:41.0012 3700 [ C4C183E6551084039EC862DA1C945E3D ] C:\Windows\System32\FntCache.dll
17:49:41.0012 3700 C:\Windows\System32\FntCache.dll - ok
17:49:41.0014 3700 [ 5C78838B4D166D1A27DB3A8A820C799A ] C:\Windows\System32\profsvc.dll
17:49:41.0014 3700 C:\Windows\System32\profsvc.dll - ok
17:49:41.0017 3700 [ 588CD0C78A7FAAE4186B5EEA0AF3ED67 ] C:\Windows\System32\adtschema.dll
17:49:41.0017 3700 C:\Windows\System32\adtschema.dll - ok
17:49:41.0019 3700 [ 18CAAF21CBA3EAEE17BBA5D3807F29B8 ] C:\Windows\winsxs\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_2b25b14c71ebf230\GdiPlus.dll
17:49:41.0019 3700 C:\Windows\winsxs\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_2b25b14c71ebf230\GdiPlus.dll - ok
17:49:41.0022 3700 [ 50544D04AD845C43130B70212EC05CCD ] C:\Windows\System32\microsoft-windows-kernel-power-events.dll
17:49:41.0022 3700 C:\Windows\System32\microsoft-windows-kernel-power-events.dll - ok
17:49:41.0025 3700 [ 3CB6A7286422C72C34DAB54A5DFF1A34 ] C:\Windows\System32\dui70.dll
17:49:41.0025 3700 C:\Windows\System32\dui70.dll - ok
17:49:41.0027 3700 [ 8CCDE014A4CDF84564E03ACE064CA753 ] C:\Windows\System32\duser.dll
17:49:41.0027 3700 C:\Windows\System32\duser.dll - ok
17:49:41.0030 3700 [ 896F15A6434D93EDB42519D5E18E6B50 ] C:\Windows\System32\hid.dll
17:49:41.0030 3700 C:\Windows\System32\hid.dll - ok
17:49:41.0032 3700 [ D7F1EF374A90709B31591823B002F918 ] C:\Windows\System32\SndVolSSO.dll
17:49:41.0032 3700 C:\Windows\System32\SndVolSSO.dll - ok
17:49:41.0034 3700 [ DA1B7075260F3872585BFCDD668C648B ] C:\Windows\System32\dwmapi.dll
17:49:41.0034 3700 C:\Windows\System32\dwmapi.dll - ok
17:49:41.0037 3700 [ D6F630C1FD7F436316093AE500363B19 ] C:\Windows\System32\xmllite.dll
17:49:41.0037 3700 C:\Windows\System32\xmllite.dll - ok
17:49:41.0039 3700 [ BDDF242A49E7B7DC5CCEC291BCE53ACB ] C:\Windows\System32\WindowsCodecs.dll
17:49:41.0039 3700 C:\Windows\System32\WindowsCodecs.dll - ok
17:49:41.0042 3700 [ C2762A57DF0EE85E63CE4893C5215313 ] C:\Windows\System32\VaultCredProvider.dll
17:49:41.0042 3700 C:\Windows\System32\VaultCredProvider.dll - ok
17:49:41.0044 3700 [ 9F2BACD5E1776A4BB7CC0EC3C3A4F96D ] C:\Windows\System32\winbrand.dll
17:49:41.0044 3700 C:\Windows\System32\winbrand.dll - ok
17:49:41.0047 3700 [ CA2985996BB49924B677113DF95CFEA7 ] C:\Windows\System32\SmartcardCredentialProvider.dll
17:49:41.0047 3700 C:\Windows\System32\SmartcardCredentialProvider.dll - ok
17:49:41.0049 3700 [ BF352E73615F5461AA6884472435A544 ] C:\Windows\System32\BioCredProv.dll
17:49:41.0049 3700 C:\Windows\System32\BioCredProv.dll - ok
17:49:41.0052 3700 [ 796B8123A7859AFD3A4AE10514DBAEB5 ] C:\Windows\System32\winbio.dll
17:49:41.0052 3700 C:\Windows\System32\winbio.dll - ok
17:49:41.0054 3700 [ CC0AB40F02D2C2A12209715A3C1B07B8 ] C:\Windows\System32\credui.dll
17:49:41.0054 3700 C:\Windows\System32\credui.dll - ok
17:49:41.0056 3700 [ 44B9C66177651F3F53C87B665D58D17A ] C:\Windows\System32\vaultcli.dll
17:49:41.0056 3700 C:\Windows\System32\vaultcli.dll - ok
17:49:41.0059 3700 [ 972C3301DB3DA91AE06A95F6B4160B1B ] C:\Windows\System32\certCredProvider.dll
17:49:41.0059 3700 C:\Windows\System32\certCredProvider.dll - ok
17:49:41.0061 3700 [ EEEA40F0EDB0A6E5359E539E15D0BC77 ] C:\Windows\System32\netapi32.dll
17:49:41.0061 3700 C:\Windows\System32\netapi32.dll - ok
17:49:41.0064 3700 [ 6CECA4C6A489C9B2E6073AFDAAE3F607 ] C:\Windows\System32\netutils.dll
17:49:41.0064 3700 C:\Windows\System32\netutils.dll - ok
17:49:41.0066 3700 [ 87FA0C48C3B2E9FEE518818FE26B15B5 ] C:\Windows\System32\rasplap.dll
17:49:41.0066 3700 C:\Windows\System32\rasplap.dll - ok
17:49:41.0069 3700 [ FC51229C7D4AFA0D6F186133728B95AB ] C:\Windows\System32\samcli.dll
17:49:41.0069 3700 C:\Windows\System32\samcli.dll - ok
17:49:41.0071 3700 [ 3C91392D448F6E5D525A85B7550D8BA9 ] C:\Windows\System32\wkscli.dll
17:49:41.0071 3700 C:\Windows\System32\wkscli.dll - ok
17:49:41.0074 3700 [ 019CD868461B646E09BDF04474C19341 ] C:\Windows\System32\rasapi32.dll
17:49:41.0074 3700 C:\Windows\System32\rasapi32.dll - ok
17:49:41.0076 3700 [ B28DEEC597C8DEB70C744C7CF9210E3E ] C:\Windows\System32\rasman.dll
17:49:41.0076 3700 C:\Windows\System32\rasman.dll - ok
17:49:41.0078 3700 [ B53C4B69B695EDA1B7E41D35CA4244E2 ] C:\Windows\System32\rtutils.dll
17:49:41.0078 3700 C:\Windows\System32\rtutils.dll - ok
17:49:41.0081 3700 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] C:\Windows\System32\gpsvc.dll
17:49:41.0081 3700 C:\Windows\System32\gpsvc.dll - ok
17:49:41.0083 3700 [ EF2AE43BCD46ABB13FC3E5B2B1935C73 ] C:\Windows\System32\winmm.dll
17:49:41.0083 3700 C:\Windows\System32\winmm.dll - ok
17:49:41.0086 3700 [ 2DF36F15B2BC1571A6A542A3C2107920 ] C:\Windows\System32\nlaapi.dll
17:49:41.0086 3700 C:\Windows\System32\nlaapi.dll - ok
17:49:41.0088 3700 [ F0344071948D1A1FA732231785A0664C ] C:\Windows\System32\themeservice.dll
17:49:41.0088 3700 C:\Windows\System32\themeservice.dll - ok
17:49:41.0090 3700 [ 58775492FFD419248B08325E583C527F ] C:\Windows\System32\atl.dll
17:49:41.0090 3700 C:\Windows\System32\atl.dll - ok
17:49:41.0093 3700 [ A77BE7CB3222B4FB0AC6C71D1C2698D4 ] C:\Windows\System32\dsrole.dll
17:49:41.0093 3700 C:\Windows\System32\dsrole.dll - ok
17:49:41.0095 3700 [ BE097F5BB10F9079FCEB2DC4E7E20F02 ] C:\Windows\System32\slc.dll
17:49:41.0095 3700 C:\Windows\System32\slc.dll - ok
17:49:41.0097 3700 [ 4166F82BE4D24938977DD1746BE9B8A0 ] C:\Windows\System32\es.dll
17:49:41.0097 3700 C:\Windows\System32\es.dll - ok
17:49:41.0100 3700 [ 1A47D52E303B7543E4E6026595B95422 ] C:\Windows\System32\comres.dll
17:49:41.0100 3700 C:\Windows\System32\comres.dll - ok
17:49:41.0102 3700 [ C32AB8FA018EF34C0F113BD501436D21 ] C:\Windows\System32\Sens.dll
17:49:41.0102 3700 C:\Windows\System32\Sens.dll - ok
17:49:41.0104 3700 [ 8560FFFC8EB3A806DCD4F82252CFC8C6 ] C:\Windows\System32\ksuser.dll
17:49:41.0104 3700 C:\Windows\System32\ksuser.dll - ok
17:49:41.0107 3700 [ 1473768973453DE50DC738C2955FC4DD ] C:\Windows\System32\wdmaud.drv
17:49:41.0107 3700 C:\Windows\System32\wdmaud.drv - ok
17:49:41.0109 3700 [ 9BC8610C32C96A2983A65DC21CAFA921 ] C:\Windows\System32\UXInit.dll
17:49:41.0109 3700 C:\Windows\System32\UXInit.dll - ok
17:49:41.0111 3700 [ DC220AE6F64819099F7EBD6F137E32E7 ] C:\Windows\System32\AudioSes.dll
17:49:41.0111 3700 C:\Windows\System32\AudioSes.dll - ok
17:49:41.0114 3700 [ CA2A0750ED830678997695FF61B04C30 ] C:\Windows\System32\midimap.dll
17:49:41.0114 3700 C:\Windows\System32\midimap.dll - ok
17:49:41.0116 3700 [ 10AC5CE9F78DC281A1BBD9B8CC587B8A ] C:\Windows\System32\msacm32.dll
17:49:41.0116 3700 C:\Windows\System32\msacm32.dll - ok
17:49:41.0119 3700 [ 1B7C3A37362C7B2890168C5FC61C8D9B ] C:\Windows\System32\msacm32.drv
17:49:41.0119 3700 C:\Windows\System32\msacm32.drv - ok
17:49:41.0121 3700 [ 5EDBB34736DD7AC1A73CF8792A835E10 ] C:\Windows\System32\AudioEng.dll
17:49:41.0121 3700 C:\Windows\System32\AudioEng.dll - ok
17:49:41.0124 3700 [ C1395286B822E306B4FE1568A8A77813 ] C:\Windows\System32\AUDIOKSE.dll
17:49:41.0124 3700 C:\Windows\System32\AUDIOKSE.dll - ok
17:49:41.0126 3700 [ 20F94A353C59275ADC89642406558097 ] C:\Windows\System32\RtkAPO64.dll
17:49:41.0126 3700 C:\Windows\System32\RtkAPO64.dll - ok
17:49:41.0128 3700 [ DA6B67270FD9DB3697B20FCE94950741 ] C:\Windows\System32\drivers\fltMgr.sys
17:49:41.0128 3700 C:\Windows\System32\drivers\fltMgr.sys - ok
17:49:41.0131 3700 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] C:\Windows\System32\netprofm.dll
17:49:41.0131 3700 C:\Windows\System32\netprofm.dll - ok
17:49:41.0133 3700 [ A3DB3C17EE6CAE65D53602B4E80BCCBC ] C:\Windows\System32\PSHED.DLL
17:49:41.0133 3700 C:\Windows\System32\PSHED.DLL - ok
17:49:41.0136 3700 [ B0945E538CF906BBDDC5A11C8EE868CC ] C:\Windows\System32\microsoft-windows-kernel-processor-power-events.dll
17:49:41.0136 3700 C:\Windows\System32\microsoft-windows-kernel-processor-power-events.dll - ok
17:49:41.0138 3700 [ 3AB183AB4D2C79DCF459CD2C1266B043 ] C:\Windows\System32\cscsvc.dll
17:49:41.0138 3700 C:\Windows\System32\cscsvc.dll - ok
17:49:41.0141 3700 [ 29910D50542B1AA0F162EF3339C61B6D ] C:\Windows\System32\PeerDist.dll
17:49:41.0141 3700 C:\Windows\System32\PeerDist.dll - ok
17:49:41.0143 3700 [ BAAFAF9CEAEC0B73C2A3550A01F6CECB ] C:\Windows\System32\taskschd.dll
17:49:41.0143 3700 C:\Windows\System32\taskschd.dll - ok
17:49:41.0145 3700 [ 862596399AAFD2A21DB2AF9270CD4F70 ] C:\Windows\System32\mstask.dll
17:49:41.0145 3700 C:\Windows\System32\mstask.dll - ok
17:49:41.0148 3700 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] C:\Windows\System32\uxsms.dll
17:49:41.0148 3700 C:\Windows\System32\uxsms.dll - ok
17:49:41.0150 3700 [ 80E69670BDA10F32A941BA7358E33012 ] C:\Windows\System32\WUDFPlatform.dll
17:49:41.0150 3700 C:\Windows\System32\WUDFPlatform.dll - ok
17:49:41.0152 3700 [ 7A95C95B6C4CF292D689106BCAE49543 ] C:\Windows\System32\WUDFSvc.dll
17:49:41.0152 3700 C:\Windows\System32\WUDFSvc.dll - ok
17:49:41.0155 3700 [ 1538831CF8AD2979A04C423779465827 ] C:\Windows\System32\drivers\lltdio.sys
17:49:41.0155 3700 C:\Windows\System32\drivers\lltdio.sys - ok
17:49:41.0157 3700 [ DDC86E4F8E7456261E637E3552E804FF ] C:\Windows\System32\drivers\rspndr.sys
17:49:41.0157 3700 C:\Windows\System32\drivers\rspndr.sys - ok
17:49:41.0160 3700 [ D54BFDF3E0C953F823B3D0BFE4732528 ] C:\Windows\System32\nsisvc.dll
17:49:41.0160 3700 C:\Windows\System32\nsisvc.dll - ok
17:49:41.0162 3700 [ 5AA945234E9D4CCE4F715276B9AA712C ] C:\Windows\System32\imageres.dll
17:49:41.0162 3700 C:\Windows\System32\imageres.dll - ok
17:49:41.0164 3700 [ 6F3C559B82F2912354BE5B098744CC8C ] C:\Windows\System32\WMALFXGFXDSP.dll
17:49:41.0164 3700 C:\Windows\System32\WMALFXGFXDSP.dll - ok
17:49:41.0167 3700 [ 54B5DCD55B223BC5DF50B82E1E9E86B1 ] C:\Windows\System32\mfplat.dll
17:49:41.0167 3700 C:\Windows\System32\mfplat.dll - ok
17:49:41.0169 3700 [ 0620FE89F70FC0895DC312EEBAA62B06 ] C:\Windows\System32\atieclxx.exe
17:49:41.0169 3700 C:\Windows\System32\atieclxx.exe - ok
17:49:41.0172 3700 [ 500CE062629FB734989AEEC2A23A6CD8 ] C:\Windows\System32\atiadlxx.dll
17:49:41.0172 3700 C:\Windows\System32\atiadlxx.dll - ok
17:49:41.0174 3700 [ 2B81776DA02017A37FE26C662827470E ] C:\Windows\System32\IPHLPAPI.DLL
17:49:41.0174 3700 C:\Windows\System32\IPHLPAPI.DLL - ok
17:49:41.0176 3700 [ 4C9210E8F4E052F6A4EB87716DA0C24C ] C:\Windows\System32\winnsi.dll
17:49:41.0177 3700 C:\Windows\System32\winnsi.dll - ok
17:49:41.0179 3700 [ F993A32249B66C9D622EA5592A8B76B8 ] C:\Windows\System32\lmhsvc.dll
17:49:41.0179 3700 C:\Windows\System32\lmhsvc.dll - ok
17:49:41.0181 3700 [ B73A6E4B319AFFE64582AC5C1801BB3F ] C:\Windows\System32\nrpsrv.dll
17:49:41.0181 3700 C:\Windows\System32\nrpsrv.dll - ok
17:49:41.0183 3700 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] C:\Windows\System32\dhcpcore.dll
17:49:41.0183 3700 C:\Windows\System32\dhcpcore.dll - ok
17:49:41.0185 3700 [ 71C7B65B6557B75B99907E76956AE4B8 ] C:\Windows\System32\dhcpcore6.dll
17:49:41.0185 3700 C:\Windows\System32\dhcpcore6.dll - ok
17:49:41.0188 3700 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] C:\Windows\System32\dnsrslvr.dll
17:49:41.0188 3700 C:\Windows\System32\dnsrslvr.dll - ok
17:49:41.0190 3700 [ 0040C486584A8E582C861CFB57AB5387 ] C:\Windows\System32\FWPUCLNT.DLL
17:49:41.0190 3700 C:\Windows\System32\FWPUCLNT.DLL - ok
17:49:41.0192 3700 [ 885D0942E0F28DB90919BE3129ECF279 ] C:\Windows\System32\dnsext.dll
17:49:41.0192 3700 C:\Windows\System32\dnsext.dll - ok
17:49:41.0195 3700 [ F568F7C08458D69E4FCD8675BBB107E4 ] C:\Windows\System32\dhcpcsvc.dll
17:49:41.0195 3700 C:\Windows\System32\dhcpcsvc.dll - ok
17:49:41.0197 3700 [ 4CBCC37856EA2039C27A2FB661DDA0E5 ] C:\Windows\System32\dhcpcsvc6.dll
17:49:41.0197 3700 C:\Windows\System32\dhcpcsvc6.dll - ok
17:49:41.0199 3700 [ AAF932B4011D14052955D4B212A4DA8D ] C:\Windows\System32\shsvcs.dll
17:49:41.0199 3700 C:\Windows\System32\shsvcs.dll - ok
17:49:41.0202 3700 [ 262F6592C3299C005FD6BEC90FC4463A ] C:\Windows\System32\schedsvc.dll
17:49:41.0202 3700 C:\Windows\System32\schedsvc.dll - ok
17:49:41.0204 3700 [ BC414631876B2F28B8DAB08E849C12C5 ] C:\Windows\System32\ktmw32.dll
17:49:41.0204 3700 C:\Windows\System32\ktmw32.dll - ok
17:49:41.0206 3700 [ 945E54F23C72D37B8CD1987AF0DB63BF ] C:\Windows\System32\fveapi.dll
17:49:41.0207 3700 C:\Windows\System32\fveapi.dll - ok
17:49:41.0209 3700 [ 891ECFD08E2C538B7948CBC45106D697 ] C:\Windows\System32\fvecerts.dll
17:49:41.0209 3700 C:\Windows\System32\fvecerts.dll - ok
17:49:41.0211 3700 [ 694865362F0965779F92BCFE97712323 ] C:\Windows\System32\tbs.dll
17:49:41.0211 3700 C:\Windows\System32\tbs.dll - ok
17:49:41.0214 3700 [ 8269210DAF3B12BC8300631B28A2A442 ] C:\Windows\System32\wiarpc.dll
17:49:41.0214 3700 C:\Windows\System32\wiarpc.dll - ok
17:49:41.0216 3700 [ 6DC4A7242F565C9E9C9CCC7BB0FA75C7 ] C:\Windows\System32\taskcomp.dll
17:49:41.0216 3700 C:\Windows\System32\taskcomp.dll - ok
17:49:41.0218 3700 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] C:\Windows\System32\drivers\http.sys
17:49:41.0218 3700 C:\Windows\System32\drivers\http.sys - ok
17:49:41.0221 3700 [ B96C17B5DC1424D56EEA3A99E97428CD ] C:\Windows\System32\spoolsv.exe
17:49:41.0221 3700 C:\Windows\System32\spoolsv.exe - ok
17:49:41.0223 3700 [ 6C02A83164F5CC0A262F4199F0871CF5 ] C:\Windows\System32\drivers\bowser.sys
17:49:41.0223 3700 C:\Windows\System32\drivers\bowser.sys - ok
17:49:41.0226 3700 [ A5D9106A73DC88564C825D317CAC68AC ] C:\Windows\System32\drivers\mrxsmb.sys
17:49:41.0226 3700 C:\Windows\System32\drivers\mrxsmb.sys - ok
17:49:41.0228 3700 [ D711B3C1D5F42C0C2415687BE09FC163 ] C:\Windows\System32\drivers\mrxsmb10.sys
17:49:41.0228 3700 C:\Windows\System32\drivers\mrxsmb10.sys - ok
17:49:41.0231 3700 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] C:\Windows\System32\drivers\mrxsmb20.sys
17:49:41.0231 3700 C:\Windows\System32\drivers\mrxsmb20.sys - ok
17:49:41.0233 3700 [ 851A1382EED3E3A7476DB004F4EE3E1A ] C:\Windows\System32\wkssvc.dll
17:49:41.0233 3700 C:\Windows\System32\wkssvc.dll - ok
17:49:41.0236 3700 [ B33CF4DE909A5B30F526D82053A63C8E ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
17:49:41.0236 3700 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe - ok
17:49:41.0238 3700 [ 0184CC60AB10C8124D69AFB332C6AF1C ] C:\Windows\SysWOW64\ntdll.dll
17:49:41.0238 3700 C:\Windows\SysWOW64\ntdll.dll - ok
17:49:41.0240 3700 [ AA913C4E63B6F3F52E20BC9932205BCC ] C:\Windows\System32\wow64.dll
17:49:41.0240 3700 C:\Windows\System32\wow64.dll - ok
17:49:41.0243 3700 [ 9209EA3F29DFC339A87EFD604E035FE4 ] C:\Windows\System32\wow64win.dll
17:49:41.0243 3700 C:\Windows\System32\wow64win.dll - ok
17:49:41.0245 3700 [ 659D71E315FB40FFE9AD46CB0588BEB1 ] C:\Windows\System32\wow64cpu.dll
17:49:41.0245 3700 C:\Windows\System32\wow64cpu.dll - ok
17:49:41.0247 3700 [ 365A5034093AD9E04F433046C4CDF6AB ] C:\Windows\SysWOW64\kernel32.dll
17:49:41.0248 3700 C:\Windows\SysWOW64\kernel32.dll - ok
17:49:41.0250 3700 [ 1B7343C3765638D4D17CB925F84F8ABE ] C:\Windows\SysWOW64\KernelBase.dll
17:49:41.0250 3700 C:\Windows\SysWOW64\KernelBase.dll - ok
17:49:41.0252 3700 [ 5E0DB2D8B2750543CD2EBB9EA8E6CDD3 ] C:\Windows\SysWOW64\user32.dll
17:49:41.0252 3700 C:\Windows\SysWOW64\user32.dll - ok
17:49:41.0255 3700 [ D6D3AD7BF1D6F6CE9547613ED5E170A2 ] C:\Windows\SysWOW64\gdi32.dll
17:49:41.0255 3700 C:\Windows\SysWOW64\gdi32.dll - ok
17:49:41.0257 3700 [ 384721EF4024890092625E20CADFAF85 ] C:\Windows\SysWOW64\lpk.dll
17:49:41.0257 3700 C:\Windows\SysWOW64\lpk.dll - ok
17:49:41.0259 3700 [ 804AAAFEBB3AD5F49334DD906BCB1DE5 ] C:\Windows\SysWOW64\usp10.dll
17:49:41.0259 3700 C:\Windows\SysWOW64\usp10.dll - ok
17:49:41.0262 3700 [ 9DC80A8AAAAAC397BDAB3C67165A824E ] C:\Windows\SysWOW64\msvcrt.dll
17:49:41.0262 3700 C:\Windows\SysWOW64\msvcrt.dll - ok
17:49:41.0264 3700 [ 95E2376B3323F062EB562B8586D0F14A ] C:\Windows\SysWOW64\advapi32.dll
17:49:41.0264 3700 C:\Windows\SysWOW64\advapi32.dll - ok
17:49:41.0267 3700 [ F08F6FCD09F9BE94C37ACC1B344685FF ] C:\Windows\SysWOW64\cryptbase.dll
17:49:41.0267 3700 C:\Windows\SysWOW64\cryptbase.dll - ok
17:49:41.0269 3700 [ 928CF7268086631F54C3D8E17238C6DD ] C:\Windows\SysWOW64\ole32.dll
17:49:41.0269 3700 C:\Windows\SysWOW64\ole32.dll - ok
17:49:41.0271 3700 [ 4DC999CED9429939D75682EBD7D48901 ] C:\Windows\SysWOW64\rpcrt4.dll
17:49:41.0271 3700 C:\Windows\SysWOW64\rpcrt4.dll - ok
17:49:41.0274 3700 [ CFC97F07904067A1E5FAE195D534DA3A ] C:\Windows\SysWOW64\sechost.dll
17:49:41.0274 3700 C:\Windows\SysWOW64\sechost.dll - ok
17:49:41.0276 3700 [ EDA7AD21DF8945528F01F0A86D69E524 ] C:\Windows\SysWOW64\sspicli.dll
17:49:41.0276 3700 C:\Windows\SysWOW64\sspicli.dll - ok
17:49:41.0279 3700 [ BE8BD75FD8BE17B95365619D0B34CDBC ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\FineObj.dll
17:49:41.0279 3700 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\FineObj.dll - ok
17:49:41.0281 3700 [ 6C765E82B57F2E66CE9C54AC238471D9 ] C:\Windows\SysWOW64\oleaut32.dll
17:49:41.0281 3700 C:\Windows\SysWOW64\oleaut32.dll - ok
17:49:41.0284 3700 [ E02781D4871844DCD30DF1D69A650F78 ] C:\Windows\SysWOW64\shell32.dll
17:49:41.0284 3700 C:\Windows\SysWOW64\shell32.dll - ok
17:49:41.0286 3700 [ 8CC3C111D653E96F3EA1590891491D71 ] C:\Windows\SysWOW64\shlwapi.dll
17:49:41.0286 3700 C:\Windows\SysWOW64\shlwapi.dll - ok
17:49:41.0289 3700 [ 86F1895AE8C5E8B17D99ECE768A70732 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\msvcr71.dll
17:49:41.0289 3700 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\msvcr71.dll - ok
17:49:41.0292 3700 [ 39D3E26AC0C684BCBEA6D2EA99035440 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\FineNet.dll
17:49:41.0292 3700 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\FineNet.dll - ok
17:49:41.0294 3700 [ 2FCA0D2C59A855C54BAFA22AA329DF0F ] C:\Windows\SysWOW64\netapi32.dll
17:49:41.0294 3700 C:\Windows\SysWOW64\netapi32.dll - ok
17:49:41.0297 3700 [ 20B3934DB73EABA2B49B7177873CB81F ] C:\Windows\SysWOW64\netutils.dll
17:49:41.0297 3700 C:\Windows\SysWOW64\netutils.dll - ok
17:49:41.0299 3700 [ 5CCDCD40E732D54E0F7451AC66AC1C87 ] C:\Windows\SysWOW64\srvcli.dll
17:49:41.0299 3700 C:\Windows\SysWOW64\srvcli.dll - ok
17:49:41.0301 3700 [ 68ECCA523ED760AAFC03C5D587569859 ] C:\Windows\SysWOW64\samcli.dll
17:49:41.0301 3700 C:\Windows\SysWOW64\samcli.dll - ok
17:49:41.0304 3700 [ 535F6263035F2530A62D5D64EF6E73D3 ] C:\Windows\SysWOW64\wininet.dll
17:49:41.0304 3700 C:\Windows\SysWOW64\wininet.dll - ok
17:49:41.0306 3700 [ E5A4A1326A02F8E7B59E6C3270CE7202 ] C:\Windows\SysWOW64\wkscli.dll
17:49:41.0306 3700 C:\Windows\SysWOW64\wkscli.dll - ok
17:49:41.0309 3700 [ 589CBC4989F750E1DA35625AB481CF43 ] C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
17:49:41.0309 3700 C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll - ok
17:49:41.0311 3700 [ 6A13B4F3B3F575F1E24B877B9359AABA ] C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
17:49:41.0311 3700 C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll - ok
17:49:41.0314 3700 [ 2E33DFD10F28F86C3FC40EE123CC3904 ] C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
17:49:41.0314 3700 C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll - ok
17:49:41.0317 3700 [ 6951562DC4625EEFC6EACD52AD165866 ] C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
17:49:41.0317 3700 C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll - ok
17:49:41.0319 3700 [ 3BE0D923AA45A4DBE091C2D84F0B4FE7 ] C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
17:49:41.0319 3700 C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll - ok
17:49:41.0322 3700 [ 281A720B0A984E325599EE1F0342E8FB ] C:\Windows\SysWOW64\iertutil.dll
17:49:41.0322 3700 C:\Windows\SysWOW64\iertutil.dll - ok
17:49:41.0324 3700 [ 702254574E7E52052DE39408457B7149 ] C:\Windows\SysWOW64\version.dll
17:49:41.0324 3700 C:\Windows\SysWOW64\version.dll - ok
17:49:41.0327 3700 [ DB8AA8CCA66DBD641C2B942ED5C15CE5 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\AbbyyZlib.dll
17:49:41.0327 3700 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\AbbyyZlib.dll - ok
17:49:41.0329 3700 [ A6F09E5669D9A19035F6D942CAA15882 ] C:\Windows\SysWOW64\imm32.dll
17:49:41.0329 3700 C:\Windows\SysWOW64\imm32.dll - ok
17:49:41.0332 3700 [ C9618BC9B2B0FD7C1138D8774795A79B ] C:\Windows\SysWOW64\msctf.dll
17:49:41.0332 3700 C:\Windows\SysWOW64\msctf.dll - ok
17:49:41.0334 3700 [ FD50B596A5C2FC595AAE0D5A791B939A ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensingShared.dll
17:49:41.0334 3700 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensingShared.dll - ok
17:49:41.0337 3700 [ C733D233B623B7FFCE5031E4B756EE26 ] C:\Windows\SysWOW64\profapi.dll
17:49:41.0337 3700 C:\Windows\SysWOW64\profapi.dll - ok
17:49:41.0339 3700 [ 539C49CEBB3C50957AC8A09D95ECD880 ] C:\Windows\SysWOW64\shfolder.dll
17:49:41.0339 3700 C:\Windows\SysWOW64\shfolder.dll - ok
17:49:41.0342 3700 [ 2DE87B444AA507D6DD2BA2FE739B047C ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing0.dll
17:49:41.0342 3700 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing0.dll - ok
17:49:41.0345 3700 [ 803260C5EE2EE9289C6D53087EC50017 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing1.dll
17:49:41.0345 3700 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing1.dll - ok
17:49:41.0347 3700 [ BEDE8BC1F0FE794829269C115C1A588E ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing13.dll
17:49:41.0347 3700 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing13.dll - ok
17:49:41.0350 3700 [ AEFD4172AAC818D987D26EDAF4A3B7C5 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing14.dll
17:49:41.0350 3700 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing14.dll - ok
17:49:41.0353 3700 [ 81DA9DF8C65BBB4CA871B5E2728674D5 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing15.dll
17:49:41.0353 3700 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing15.dll - ok
17:49:41.0356 3700 [ 08E688BEE5FEF9214B9BB15CFB36E23A ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing16.dll
17:49:41.0356 3700 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing16.dll - ok
17:49:41.0359 3700 [ F5E2D6E3FF6238893215585A04192AD7 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing17.dll
17:49:41.0359 3700 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing17.dll - ok
17:49:41.0361 3700 [ 9EF03D654D3AE8DA10F2D089B859337E ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing2.dll
17:49:41.0362 3700 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing2.dll - ok
17:49:41.0364 3700 [ D7EE31A22CA2781FC6EBD12C831F6B59 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing23.dll
17:49:41.0364 3700 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing23.dll - ok
17:49:41.0367 3700 [ 74BAF2D00BD902B80D69BE42A61F83DD ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing24.dll
17:49:41.0367 3700 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing24.dll - ok
17:49:41.0370 3700 [ 42E2F8798B445F76671C88C155C1F18D ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing26.dll
17:49:41.0370 3700 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing26.dll - ok
17:49:41.0373 3700 [ 239935CF6E2A2D464AB66E51EB067D66 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing3.dll
17:49:41.0373 3700 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing3.dll - ok
17:49:41.0375 3700 [ 1AA94A15B0CE226341F4D731225D924C ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing5.dll
17:49:41.0375 3700 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing5.dll - ok
17:49:41.0378 3700 [ F85AF7D697A2E3C9E69380C7AABA8F69 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing6.dll
17:49:41.0378 3700 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing6.dll - ok
17:49:41.0381 3700 [ 7E13358593468500BDE154C5C497EC1A ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing63.dll
17:49:41.0381 3700 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing63.dll - ok
17:49:41.0384 3700 [ 80D7A6E0EA9845F8D20E932DAFA4AC60 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing64.dll
17:49:41.0384 3700 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing64.dll - ok
17:49:41.0386 3700 [ 28A3EED9BB0A781677E8F28BA4040FF6 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing65.dll
17:49:41.0386 3700 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing65.dll - ok
17:49:41.0389 3700 [ C70FDA0C297D51B0A42E7AA322856541 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing69.dll
17:49:41.0389 3700 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing69.dll - ok
17:49:41.0392 3700 [ F1B54578D13C99842EC23238284162F9 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing7.dll
17:49:41.0392 3700 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing7.dll - ok
17:49:41.0395 3700 [ 5997D769CDB108390DCFAEBF442BF816 ] C:\Windows\SysWOW64\RpcRtRemote.dll
17:49:41.0395 3700 C:\Windows\SysWOW64\RpcRtRemote.dll - ok
17:49:41.0397 3700 [ ADDA5E1951B90D3D23C56D3CF0622ADC ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
17:49:41.0397 3700 C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe - ok
17:49:41.0400 3700 [ AE8EB083B050E17A7D6EB5E28AECDDD6 ] C:\Windows\SysWOW64\crypt32.dll
17:49:41.0400 3700 C:\Windows\SysWOW64\crypt32.dll - ok
17:49:41.0402 3700 [ 938F39B50BAFE13D6F58C7790682C010 ] C:\Windows\SysWOW64\msasn1.dll
17:49:41.0402 3700 C:\Windows\SysWOW64\msasn1.dll - ok
17:49:41.0405 3700 [ 68EAAEDF0365168B804E8728368FA946 ] C:\Windows\SysWOW64\wintrust.dll
17:49:41.0405 3700 C:\Windows\SysWOW64\wintrust.dll - ok
17:49:41.0407 3700 [ B3892E6DA8E2C8CE4B0A9D3EB9A185E5 ] C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4940_none_50916076bcb9a742\msvcr90.dll
17:49:41.0407 3700 C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4940_none_50916076bcb9a742\msvcr90.dll - ok
17:49:41.0410 3700 [ A567B70468A04F4BA64339D1CAF78E58 ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
17:49:41.0410 3700 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe - ok
17:49:41.0412 3700 [ CAED4A65CAF1EF80AA81E9B135326658 ] C:\Windows\System32\msvcp100.dll
17:49:41.0412 3700 C:\Windows\System32\msvcp100.dll - ok
17:49:41.0415 3700 [ AED6D63CFA5A3EF7021AF9C457FEE994 ] C:\Windows\System32\msvcr100.dll
17:49:41.0415 3700 C:\Windows\System32\msvcr100.dll - ok
17:49:41.0417 3700 [ 5A528A540B1AEE8B1C77ED65094E8CDF ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys
17:49:41.0417 3700 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys - ok
17:49:41.0420 3700 [ 6AF588B2525F7AF76BB8B1DD7D59C4BC ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\device.dll
17:49:41.0420 3700 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\device.dll - ok
17:49:41.0422 3700 [ 671A40A97B7105D802A61D05E5477748 ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll
17:49:41.0422 3700 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll - ok
17:49:41.0425 3700 [ 6B400F211BEE880A37A1ED0368776BF4 ] C:\Windows\System32\cryptsvc.dll
17:49:41.0425 3700 C:\Windows\System32\cryptsvc.dll - ok
17:49:41.0427 3700 [ A6B726DCA228F7878E38368A1BDC68BE ] C:\Windows\System32\cryptnet.dll
17:49:41.0427 3700 C:\Windows\System32\cryptnet.dll - ok
17:49:41.0430 3700 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] C:\Windows\System32\dps.dll
17:49:41.0430 3700 C:\Windows\System32\dps.dll - ok
17:49:41.0432 3700 [ A8704A10FFDE468F4AB18EBF82A9A86F ] C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_88e41e092fab0294\msvcp80.dll
17:49:41.0432 3700 C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_88e41e092fab0294\msvcp80.dll - ok
17:49:41.0434 3700 [ 1E0764A8A8F39BAAEB271DA597422584 ] C:\Program Files\EPSON\EpsonCustomerParticipation\EPCP.exe
17:49:41.0434 3700 C:\Program Files\EPSON\EpsonCustomerParticipation\EPCP.exe - ok
17:49:41.0436 3700 [ 0015ACFBBDD164A8A730009908868CA7 ] C:\Windows\System32\winspool.drv
17:49:41.0436 3700 C:\Windows\System32\winspool.drv - ok
17:49:41.0439 3700 [ EC6BA7C92FA5B2AA4AFDF4DF22AEDAB7 ] C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_88e41e092fab0294\msvcr80.dll
17:49:41.0439 3700 C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_88e41e092fab0294\msvcr80.dll - ok
17:49:41.0441 3700 [ 0E059FCB8F61BFC50014537564A9B26A ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\platform.dll
17:49:41.0441 3700 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\platform.dll - ok
17:49:41.0444 3700 [ 371948BC5911ABA06168FAC91ED25F06 ] C:\Windows\System32\msxml3.dll
17:49:41.0444 3700 C:\Windows\System32\msxml3.dll - ok
17:49:41.0446 3700 [ FB4045578F5180BDB1963AB352B78548 ] C:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
17:49:41.0446 3700 C:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll - ok
17:49:41.0449 3700 [ 0D2B530F060C050265D67C191C8A89DE ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
17:49:41.0449 3700 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll - ok
17:49:41.0451 3700 [ 357BE883C5236BFC7341CB9E82308908 ] C:\Windows\System32\wlanapi.dll
17:49:41.0451 3700 C:\Windows\System32\wlanapi.dll - ok
17:49:41.0454 3700 [ 7F1B4C6FF3B85F9ADF74055187B8A22C ] C:\Windows\System32\wlanutil.dll
17:49:41.0454 3700 C:\Windows\System32\wlanutil.dll - ok
17:49:41.0456 3700 [ 0E2F58F6E698EDCB9E58FAD0CBCD0567 ] C:\Windows\System32\vssapi.dll
17:49:41.0456 3700 C:\Windows\System32\vssapi.dll - ok
17:49:41.0459 3700 [ 287923557447D7E4BDD7E65B1F0F5428 ] C:\Windows\System32\vsstrace.dll
17:49:41.0459 3700 C:\Windows\System32\vsstrace.dll - ok
17:49:41.0461 3700 [ 58F4493BF748A3A89689997B7BD00E95 ] C:\Windows\System32\winhttp.dll
17:49:41.0461 3700 C:\Windows\System32\winhttp.dll - ok
17:49:41.0463 3700 [ 603EBD34E216C5654A2D774EAC98D278 ] C:\Windows\System32\webio.dll
17:49:41.0463 3700 C:\Windows\System32\webio.dll - ok
17:49:41.0466 3700 [ 88351B29B622B30962D2FEB6CA8D860B ] C:\Windows\System32\rasadhlp.dll
17:49:41.0466 3700 C:\Windows\System32\rasadhlp.dll - ok
17:49:41.0468 3700 [ 45CFBFA8EDC3DF4E2B7FB0D0260FE051 ] C:\Windows\System32\localspl.dll
17:49:41.0468 3700 C:\Windows\System32\localspl.dll - ok
17:49:41.0470 3700 [ 9FCA3A84338ADEF2AFF67CDA46EF8539 ] C:\Windows\System32\umb.dll
17:49:41.0470 3700 C:\Windows\System32\umb.dll - ok
17:49:41.0473 3700 [ CFD54D70F76E84E1E737AE1140FBC5C0 ] C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
17:49:41.0473 3700 C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe - ok
17:49:41.0476 3700 [ D83947A58613E9091B4C9CC0F1546A8D ] C:\Windows\SysWOW64\mscoree.dll
17:49:41.0476 3700 C:\Windows\SysWOW64\mscoree.dll - ok
17:49:41.0478 3700 [ 83BA5E873164A3711B44052F58C8FE9F ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll
17:49:41.0478 3700 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll - ok
17:49:41.0481 3700 [ 3285481F5C12305CA104A6C493CA5A0B ] C:\Windows\System32\spoolss.dll
17:49:41.0481 3700 C:\Windows\System32\spoolss.dll - ok
17:49:41.0483 3700 [ C5AC93CF3BA30D367FB49148A2B673B9 ] C:\Windows\System32\PrintIsolationProxy.dll
17:49:41.0483 3700 C:\Windows\System32\PrintIsolationProxy.dll - ok
17:49:41.0486 3700 [ B20B18DF8EB3C821E071541FC3DFF1AB ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\clr.dll
17:49:41.0486 3700 C:\Windows\Microsoft.NET\Framework\v4.0.30319\clr.dll - ok
17:49:41.0488 3700 [ EC03B2D63A9A3AB25A7062CC9036F453 ] C:\Windows\System32\E_YLMJJE.DLL
17:49:41.0488 3700 C:\Windows\System32\E_YLMJJE.DLL - ok
17:49:41.0491 3700 [ D1690C013B8F6B5A7955B589D7644B3E ] C:\Windows\System32\enppmon.dll
17:49:41.0491 3700 C:\Windows\System32\enppmon.dll - ok
17:49:41.0493 3700 [ 1658E808E4D4889C66DE47EC87F1DED1 ] C:\Windows\System32\msvcp60.dll
17:49:41.0493 3700 C:\Windows\System32\msvcp60.dll - ok
17:49:41.0495 3700 [ 81D38F895C26BD9EE13C230AA67F2F94 ] C:\Windows\System32\enpres.dll
17:49:41.0495 3700 C:\Windows\System32\enpres.dll - ok
17:49:41.0498 3700 [ 19E41CCCEE697CC9465396B370929792 ] C:\Windows\System32\FXSMON.dll
17:49:41.0498 3700 C:\Windows\System32\FXSMON.dll - ok
17:49:41.0500 3700 [ 32A3C8600AF124CBAAD845F13CFAE3CB ] C:\Windows\System32\tcpmon.dll
17:49:41.0500 3700 C:\Windows\System32\tcpmon.dll - ok
17:49:41.0502 3700 [ 93518C6EDE0B61BCBD02BDB02BD05FEE ] C:\Windows\System32\snmpapi.dll
17:49:41.0502 3700 C:\Windows\System32\snmpapi.dll - ok
17:49:41.0505 3700 [ E5F7C30EDF0892667933BE879F067D67 ] C:\Windows\SysWOW64\msvcr100_clr0400.dll
17:49:41.0505 3700 C:\Windows\SysWOW64\msvcr100_clr0400.dll - ok
17:49:41.0507 3700 [ 9CCDA677011F4A5C54376CF520575097 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\cf58670896c5313b9b52f026f4455a5d\mscorlib.ni.dll
17:49:41.0507 3700 C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\cf58670896c5313b9b52f026f4455a5d\mscorlib.ni.dll - ok
17:49:41.0510 3700 [ A7A7DA4D6C44660852D058635B83B108 ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\nlssorting.dll
17:49:41.0510 3700 C:\Windows\Microsoft.NET\Framework\v4.0.30319\nlssorting.dll - ok
17:49:41.0513 3700 [ C5EE094B0D4A2A8119AC29622D54B329 ] C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreLibrary.dll
17:49:41.0513 3700 C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreLibrary.dll - ok
17:49:41.0515 3700 [ FFF9D00CF16397C64317F213484F94BD ] C:\Windows\System32\wsnmp32.dll
17:49:41.0515 3700 C:\Windows\System32\wsnmp32.dll - ok
17:49:41.0518 3700 [ 99B91C5D2FCEF218CAD3600ECB62A799 ] C:\Windows\System32\msxml6.dll
17:49:41.0518 3700 C:\Windows\System32\msxml6.dll - ok
17:49:41.0520 3700 [ DF72A9936D0C3F517083119648814B09 ] C:\Windows\System32\usbmon.dll
17:49:41.0520 3700 C:\Windows\System32\usbmon.dll - ok
17:49:41.0522 3700 [ F1B205F932F62F94506A5F332C895DAF ] C:\Windows\System32\WSDApi.dll
17:49:41.0522 3700 C:\Windows\System32\WSDApi.dll - ok
17:49:41.0525 3700 [ A1D7E3ADCDB07DDB6F423862DCB1A52B ] C:\Windows\System32\WSDMon.dll
17:49:41.0525 3700 C:\Windows\System32\WSDMon.dll - ok
17:49:41.0527 3700 [ C55516D98DD5D8F0153C2A9B4227DA86 ] C:\Windows\System32\webservices.dll
17:49:41.0527 3700 C:\Windows\System32\webservices.dll - ok
17:49:41.0529 3700 [ 4581716B4BF76ACFD8E167EB0B26D82A ] C:\Windows\System32\fdPnp.dll
17:49:41.0529 3700 C:\Windows\System32\fdPnp.dll - ok
17:49:41.0532 3700 [ B5055B51BAA0FD0A736A88653DA3C1C0 ] C:\Windows\System32\fundisc.dll
17:49:41.0532 3700 C:\Windows\System32\fundisc.dll - ok
17:49:41.0534 3700 [ 1D626FE2E13C1CE49CA0136CFF214E93 ] C:\Windows\System32\spool\prtprocs\x64\winprint.dll
17:49:41.0534 3700 C:\Windows\System32\spool\prtprocs\x64\winprint.dll - ok
17:49:41.0537 3700 [ 67CF11E00D026A5C0C88EA5F84D501E5 ] C:\Windows\System32\win32spl.dll
17:49:41.0537 3700 C:\Windows\System32\win32spl.dll - ok
17:49:41.0539 3700 [ 507D5567A0A4EE86C4B0CE2CE1777025 ] C:\Windows\System32\inetpp.dll
17:49:41.0539 3700 C:\Windows\System32\inetpp.dll - ok
17:49:41.0541 3700 [ 1BF0CB861A48FEB1638228760750F3CB ] C:\Windows\System32\cscapi.dll
17:49:41.0541 3700 C:\Windows\System32\cscapi.dll - ok
17:49:41.0544 3700 [ D7623880851662CA53DABFBEA70D918D ] C:\Windows\System32\spool\drivers\x64\3\EFXGI09A.DLL
17:49:41.0544 3700 C:\Windows\System32\spool\drivers\x64\3\EFXGI09A.DLL - ok
17:49:41.0546 3700 [ 3B809816F75EB7235ACF1C3B584B1F31 ] C:\Windows\System32\spool\drivers\x64\3\EFXMI09A.DLL
17:49:41.0546 3700 C:\Windows\System32\spool\drivers\x64\3\EFXMI09A.DLL - ok
17:49:41.0549 3700 [ 9E22608ED14099113117515E8D31B224 ] C:\Windows\System32\spool\drivers\x64\3\EFXUI09A.DLL
17:49:41.0549 3700 C:\Windows\System32\spool\drivers\x64\3\EFXUI09A.DLL - ok
17:49:41.0552 3700 [ 14DFDEAF4E589ED3F1FF187A86B9408C ] C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_a4d6a923711520a9\comctl32.dll
17:49:41.0552 3700 C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_a4d6a923711520a9\comctl32.dll - ok
17:49:41.0554 3700 [ 29D8A3F28222C72606901852ACD20D73 ] C:\Windows\System32\spool\drivers\x64\3\E_YMAIJJE.DLL
17:49:41.0554 3700 C:\Windows\System32\spool\drivers\x64\3\E_YMAIJJE.DLL - ok
17:49:41.0557 3700 [ 1834B31C749B86DAC233BBBA1C03BC48 ] C:\Windows\System32\mscms.dll
17:49:41.0557 3700 C:\Windows\System32\mscms.dll - ok
17:49:41.0559 3700 [ D87CCB226760B2642FDC1FE95E976F58 ] C:\Windows\System32\spool\drivers\x64\3\E_YUICJJE.DLL
17:49:41.0559 3700 C:\Windows\System32\spool\drivers\x64\3\E_YUICJJE.DLL - ok
17:49:41.0562 3700 [ 6E3754AFF0B2DC3208D53E306EF6FD45 ] C:\Windows\System32\spool\drivers\x64\3\E_YAUDJJE.DLL
17:49:41.0562 3700 C:\Windows\System32\spool\drivers\x64\3\E_YAUDJJE.DLL - ok
17:49:41.0564 3700 [ 20D6830A18E4892C06BF3DA5D66FF52E ] C:\Windows\System32\spool\drivers\x64\3\E_YASKJJE.DLL
17:49:41.0564 3700 C:\Windows\System32\spool\drivers\x64\3\E_YASKJJE.DLL - ok
17:49:41.0567 3700 [ 585515DFBBA950F12AB540FF050728AE ] C:\Windows\System32\spool\drivers\x64\3\E_YAPRJJE.DLL
17:49:41.0567 3700 C:\Windows\System32\spool\drivers\x64\3\E_YAPRJJE.DLL - ok
17:49:41.0569 3700 [ 1602F47B844CE9D1A99483EC33449096 ] C:\Windows\System32\spool\drivers\x64\3\E_YABRJJE.DLL
17:49:41.0569 3700 C:\Windows\System32\spool\drivers\x64\3\E_YABRJJE.DLL - ok
17:49:41.0572 3700 [ 6CEF7856A3EFAC59470F6208F0F585CE ] C:\Windows\System32\mpr.dll
17:49:41.0572 3700 C:\Windows\System32\mpr.dll - ok
17:49:41.0574 3700 [ 4C5F631BE4BA554D482FFE85133C0EC5 ] C:\Windows\System32\spool\drivers\x64\3\E_YBA7JJE.DLL
17:49:41.0574 3700 C:\Windows\System32\spool\drivers\x64\3\E_YBA7JJE.DLL - ok
17:49:41.0577 3700 [ 9FA56171C452530E2F51E3238B52140B ] C:\Windows\System32\bidispl.dll
17:49:41.0577 3700 C:\Windows\System32\bidispl.dll - ok
17:49:41.0579 3700 [ B3E76A119F522F981D672DD93ED74081 ] C:\Windows\System32\spool\drivers\x64\3\E_YBL6JJE.DLL
17:49:41.0579 3700 C:\Windows\System32\spool\drivers\x64\3\E_YBL6JJE.DLL - ok
17:49:41.0582 3700 [ DCBE1AFE0383E64FE4E789CA9E80CF79 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System\de853615c8224ba5d9aa9b76276c6d98\System.ni.dll
17:49:41.0582 3700 C:\Windows\assembly\NativeImages_v4.0.30319_32\System\de853615c8224ba5d9aa9b76276c6d98\System.ni.dll - ok
17:49:41.0584 3700 [ DF9B9E5C97963E911BF17D51D181C967 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\608aa2db27d45e63a4863f1f1d06897a\System.Core.ni.dll
17:49:41.0584 3700 C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\608aa2db27d45e63a4863f1f1d06897a\System.Core.ni.dll - ok
17:49:41.0587 3700 [ 8B2D2493FD90245987AC55CFA30A597B ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml.Linq\5a915118b87f01496efcfc9be1284e32\System.Xml.Linq.ni.dll
17:49:41.0587 3700 C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml.Linq\5a915118b87f01496efcfc9be1284e32\System.Xml.Linq.ni.dll - ok
17:49:41.0590 3700 [ 07BBB3CBB86D2626B46BC1D210C4781B ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\clrjit.dll
17:49:41.0590 3700 C:\Windows\Microsoft.NET\Framework\v4.0.30319\clrjit.dll - ok
17:49:41.0593 3700 [ B1DF0C6CFFB34991017FE89AB6AA2FBB ] C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.Device.Detection.dll
17:49:41.0593 3700 C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.Device.Detection.dll - ok
17:49:41.0595 3700 [ 622EBA8B43449B4C5AA4FE429EFE4ABB ] C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.Device.Detection.DotNet.dll
17:49:41.0595 3700 C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.Device.Detection.DotNet.dll - ok
17:49:41.0598 3700 [ 2F4534AF9291E9F73107F8D9B1DFB290 ] C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.Device.DataTypes.dll
17:49:41.0598 3700 C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.Device.DataTypes.dll - ok
17:49:41.0601 3700 [ E643D96DAB88B5216B92121FE1369029 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceProce#\7bf3e4deef4483205017aa7b13194845\System.ServiceProcess.ni.dll
17:49:41.0601 3700 C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceProce#\7bf3e4deef4483205017aa7b13194845\System.ServiceProcess.ni.dll - ok
17:49:41.0604 3700 [ ECAC4B0E50F934BD91DF150950D638FB ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\884bcbd22130ebeb1211bc7bcc3910c9\System.Xml.ni.dll
17:49:41.0604 3700 C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\884bcbd22130ebeb1211bc7bcc3910c9\System.Xml.ni.dll - ok
17:49:41.0606 3700 [ 1098A9E2CCF20264B9DCCC38CB26E42B ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Security\121e3bb63d1d2d2487c855819263ed7c\System.Security.ni.dll
17:49:41.0606 3700 C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Security\121e3bb63d1d2d2487c855819263ed7c\System.Security.ni.dll - ok
17:49:41.0609 3700 [ F59880AA23F3A1FA5005A94B9A893F5F ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\df40dab689e9d8febfb943599ba79f8d\System.Configuration.ni.dll
17:49:41.0609 3700 C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\df40dab689e9d8febfb943599ba79f8d\System.Configuration.ni.dll - ok
17:49:41.0612 3700 [ 68769C3356B3BE5D1C732C97B9A80D6E ] C:\Windows\System32\drivers\PEAuth.sys
17:49:41.0612 3700 C:\Windows\System32\drivers\PEAuth.sys - ok
17:49:41.0614 3700 [ 1EE99A89CC788ADA662441D1E9830529 ] C:\Windows\System32\nlasvc.dll
17:49:41.0614 3700 C:\Windows\System32\nlasvc.dll - ok
17:49:41.0616 3700 [ 4A435F95B940E93A88FEC144BD409789 ] C:\Windows\System32\ncsi.dll
17:49:41.0616 3700 C:\Windows\System32\ncsi.dll - ok
17:49:41.0619 3700 [ 3EA8A16169C26AFBEB544E0E48421186 ] C:\Windows\System32\drivers\secdrv.sys
17:49:41.0619 3700 C:\Windows\System32\drivers\secdrv.sys - ok
17:49:41.0621 3700 [ 2BBF3FDB70B8965DFA0258CBAB41ECCE ] C:\Windows\System32\ssdpapi.dll
17:49:41.0621 3700 C:\Windows\System32\ssdpapi.dll - ok
17:49:41.0624 3700 [ E5D91D6B81A293AB6854CAD112240A4B ] C:\Windows\SysWOW64\urlmon.dll
17:49:41.0624 3700 C:\Windows\SysWOW64\urlmon.dll - ok
17:49:41.0626 3700 [ 1C60E09CA1C3A045BC4D367F67C915B7 ] C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
17:49:41.0626 3700 C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll - ok
17:49:41.0629 3700 [ D8A5C0BD230AA48EFDC812A04A939C2B ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel\d20af86c18f09e2353bbc4371e1b503b\System.ServiceModel.ni.dll
17:49:41.0629 3700 C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel\d20af86c18f09e2353bbc4371e1b503b\System.ServiceModel.ni.dll - ok
17:49:41.0631 3700 [ 919001D2BB17DF06CA3F8AC16AD039F6 ] C:\Windows\SysWOW64\sxs.dll
17:49:41.0631 3700 C:\Windows\SysWOW64\sxs.dll - ok
17:49:41.0634 3700 [ FF5688D309347F2720911D8796912834 ] C:\Windows\SysWOW64\clbcatq.dll
17:49:41.0634 3700 C:\Windows\SysWOW64\clbcatq.dll - ok
17:49:41.0636 3700 [ E98278865E8DABA21CFE5FE4BE34210A ] C:\Windows\SysWOW64\PortableDeviceApi.dll
17:49:41.0636 3700 C:\Windows\SysWOW64\PortableDeviceApi.dll - ok
17:49:41.0638 3700 [ F93674263F6B07C77956E966953242D9 ] C:\Windows\SysWOW64\secur32.dll
17:49:41.0638 3700 C:\Windows\SysWOW64\secur32.dll - ok
17:49:41.0641 3700 [ 5C4FABFF69F08B6883A343077D4DB205 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Dura#\bf48012cbb705133bf54b082cebc2110\System.Runtime.DurableInstancing.ni.dll
17:49:41.0641 3700 C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Dura#\bf48012cbb705133bf54b082cebc2110\System.Runtime.DurableInstancing.ni.dll - ok
17:49:41.0644 3700 [ 49ACA548B2423F1C67898E6AC719A9A6 ] C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
17:49:41.0644 3700 C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll - ok
17:49:41.0646 3700 [ 7321F18D1F820612ED0E9F2D4B578A7E ] C:\Windows\SysWOW64\cryptsp.dll
17:49:41.0646 3700 C:\Windows\SysWOW64\cryptsp.dll - ok
17:49:41.0649 3700 [ 10FB16B50AFFDA6D44588F3C445DC273 ] C:\Windows\SysWOW64\setupapi.dll
17:49:41.0649 3700 C:\Windows\SysWOW64\setupapi.dll - ok
17:49:41.0651 3700 [ F436E847FA799ECD75AD8C313673F450 ] C:\Windows\SysWOW64\cfgmgr32.dll
17:49:41.0651 3700 C:\Windows\SysWOW64\cfgmgr32.dll - ok
17:49:41.0654 3700 [ 2EEFF4502F5E13B1BED4A04CCAD64C08 ] C:\Windows\SysWOW64\devobj.dll
17:49:41.0654 3700 C:\Windows\SysWOW64\devobj.dll - ok
17:49:41.0656 3700 [ 839F96DBAAFD3353E0B248A5E0BD2A51 ] C:\Windows\SysWOW64\rasapi32.dll
17:49:41.0656 3700 C:\Windows\SysWOW64\rasapi32.dll - ok
17:49:41.0658 3700 [ ED8EC63F7522DF4852147C84EC62C36A ] C:\Windows\SysWOW64\rsaenh.dll
17:49:41.0659 3700 C:\Windows\SysWOW64\rsaenh.dll - ok
17:49:41.0661 3700 [ 6377051C63D5552A311935C67E9FDFDC ] C:\Windows\SysWOW64\nsi.dll
17:49:41.0661 3700 C:\Windows\SysWOW64\nsi.dll - ok
17:49:41.0663 3700 [ FFA7172354B9256DBB2CDD75F16F33FE ] C:\Windows\SysWOW64\rasman.dll
17:49:41.0663 3700 C:\Windows\SysWOW64\rasman.dll - ok
17:49:41.0665 3700 [ 0915C4DB6DBC3BB9E11B7ECBBE4B7159 ] C:\Windows\SysWOW64\rtutils.dll
17:49:41.0666 3700 C:\Windows\SysWOW64\rtutils.dll - ok
17:49:41.0668 3700 [ 7FF15A4F092CD4A96055BA69F903E3E9 ] C:\Windows\SysWOW64\ws2_32.dll
17:49:41.0668 3700 C:\Windows\SysWOW64\ws2_32.dll - ok
17:49:41.0670 3700 [ F383C4604036A25061089C49719E82B3 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\SMDiagnostics\78329ab1c7f5e92c6f2462188ad1de79\SMDiagnostics.ni.dll
17:49:41.0670 3700 C:\Windows\assembly\NativeImages_v4.0.30319_32\SMDiagnostics\78329ab1c7f5e92c6f2462188ad1de79\SMDiagnostics.ni.dll - ok
17:49:41.0673 3700 [ 8999B8631C7FD9F7F9EC3CAFD953BA24 ] C:\Windows\SysWOW64\mswsock.dll
17:49:41.0673 3700 C:\Windows\SysWOW64\mswsock.dll - ok
17:49:41.0675 3700 [ 73E8667A19FEEDD856DF2695E9E511D4 ] C:\Windows\SysWOW64\wship6.dll
17:49:41.0675 3700 C:\Windows\SysWOW64\wship6.dll - ok
17:49:41.0678 3700 [ EE5C8E27C37B79CB54A2FCEEED2DC262 ] C:\Windows\SysWOW64\WSHTCPIP.DLL
17:49:41.0678 3700 C:\Windows\SysWOW64\WSHTCPIP.DLL - ok
17:49:41.0680 3700 [ C3BCE121D7260AC64DD256531937C014 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\d08de14fbde0cff1f051d06d4b9844d3\System.Runtime.Serialization.ni.dll
17:49:41.0680 3700 C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\d08de14fbde0cff1f051d06d4b9844d3\System.Runtime.Serialization.ni.dll - ok
17:49:41.0683 3700 [ CA9F7888B524D8100B977C81F44C3234 ] C:\Windows\SysWOW64\winhttp.dll
17:49:41.0683 3700 C:\Windows\SysWOW64\winhttp.dll - ok
17:49:41.0685 3700 [ FB19FC5951A88F3C523E35C2C98D23C0 ] C:\Windows\SysWOW64\webio.dll
17:49:41.0685 3700 C:\Windows\SysWOW64\webio.dll - ok
17:49:41.0687 3700 [ 4E5FE39C1076D115EC8BFCFE14D75B80 ] C:\Windows\SysWOW64\credssp.dll
17:49:41.0687 3700 C:\Windows\SysWOW64\credssp.dll - ok
17:49:41.0689 3700 [ 9A85ABCE0FDD1AF8E79E731EB0B679F3 ] C:\Windows\SysWOW64\dhcpcsvc.dll
17:49:41.0689 3700 C:\Windows\SysWOW64\dhcpcsvc.dll - ok
17:49:41.0692 3700 [ 29CA5974FAB0E8AE4AA7814FE05CF832 ] C:\Windows\SysWOW64\dhcpcsvc6.dll
17:49:41.0692 3700 C:\Windows\SysWOW64\dhcpcsvc6.dll - ok
17:49:41.0695 3700 [ A90DC9ABD65DB1A8902F361103029952 ] C:\Windows\SysWOW64\IPHLPAPI.DLL
17:49:41.0695 3700 C:\Windows\SysWOW64\IPHLPAPI.DLL - ok
17:49:41.0697 3700 [ CFF35B879D1618D42C86644C717BA947 ] C:\Windows\SysWOW64\winnsi.dll
17:49:41.0697 3700 C:\Windows\SysWOW64\winnsi.dll - ok
17:49:41.0699 3700 [ B40420876B9288E0A1C8CCA8A84E5DC9 ] C:\Windows\SysWOW64\dnsapi.dll
17:49:41.0699 3700 C:\Windows\SysWOW64\dnsapi.dll - ok
17:49:41.0702 3700 [ FE172FF80664EE48A93E4AF45CC6DB31 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\9362b6b1ee107e4f5e19da7097c84e44\System.ServiceModel.Discovery.ni.dll
17:49:41.0702 3700 C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\9362b6b1ee107e4f5e19da7097c84e44\System.ServiceModel.Discovery.ni.dll - ok
17:49:41.0704 3700 [ ED6EE83D61EBC683C2CD8E899EA6FEBE ] C:\Windows\SysWOW64\rasadhlp.dll
17:49:41.0705 3700 C:\Windows\SysWOW64\rasadhlp.dll - ok
17:49:41.0707 3700 [ 36BA65E12A48A74DF981FF92323E51A0 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\9548a9f2685b48a84813f931eb071220\System.ServiceModel.Activities.ni.dll
17:49:41.0707 3700 C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\9548a9f2685b48a84813f931eb071220\System.ServiceModel.Activities.ni.dll - ok
17:49:41.0710 3700 [ 0B0FF83AAFC92D6951E5BF77789DF26D ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\40e4a618d5c3311fae289ec03e9e1e36\System.ServiceModel.Routing.ni.dll
17:49:41.0710 3700 C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\40e4a618d5c3311fae289ec03e9e1e36\System.ServiceModel.Routing.ni.dll - ok
17:49:41.0713 3700 [ F206236C5D7A5641E6ECA55841D5EC49 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\827915cf80971f92399e8adf3ac4e46c\System.ServiceModel.Channels.ni.dll
17:49:41.0713 3700 C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\827915cf80971f92399e8adf3ac4e46c\System.ServiceModel.Channels.ni.dll - ok
17:49:41.0715 3700 [ C85CFAF3C1B7E93B530209ECA0E558FA ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.IdentityModel\3e5c5e5270398f65b20ca577e7f90c34\System.IdentityModel.ni.dll
17:49:41.0715 3700 C:\Windows\assembly\NativeImages_v4.0.30319_32\System.IdentityModel\3e5c5e5270398f65b20ca577e7f90c34\System.IdentityModel.ni.dll - ok
17:49:41.0718 3700 [ 5893EBDCE371174AC89ECD7731DD6D77 ] C:\Windows\SysWOW64\pcwum.dll
17:49:41.0718 3700 C:\Windows\SysWOW64\pcwum.dll - ok
17:49:41.0720 3700 [ 03A03A453F1AAAE0C73AAAF895321C7A ] C:\Windows\SysWOW64\FWPUCLNT.DLL
17:49:41.0720 3700 C:\Windows\SysWOW64\FWPUCLNT.DLL - ok
17:49:41.0723 3700 [ FB83E56708103345BFDB8A2B7FF7BBA7 ] C:\Program Files (x86)\Garmin\Core Update Service\Ionic.Zip.dll
17:49:41.0723 3700 C:\Program Files (x86)\Garmin\Core Update Service\Ionic.Zip.dll - ok
17:49:41.0725 3700 [ 94E826672988FBCE0979F7800EB770C9 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccSvcHst.exe
17:49:41.0725 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccSvcHst.exe - ok
17:49:41.0728 3700 [ E3C817F7FE44CC870ECDBCBC3EA36132 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\msvcp100.dll
17:49:41.0728 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\msvcp100.dll - ok
17:49:41.0731 3700 [ BF38660A9125935658CFA3E53FDC7D65 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\msvcr100.dll
17:49:41.0731 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\msvcr100.dll - ok
17:49:41.0733 3700 [ A7C8906C3EEC2DFD1CC7476801B363A1 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccL120U.dll
17:49:41.0733 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccL120U.dll - ok
17:49:41.0736 3700 [ A543AC1F7138376D778D630A35FCBC4C ] C:\Windows\SysWOW64\psapi.dll
17:49:41.0736 3700 C:\Windows\SysWOW64\psapi.dll - ok
17:49:41.0738 3700 [ 7CD7D0D58B6BD225B02FC52B15469673 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccSvc.dll
17:49:41.0738 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccSvc.dll - ok
17:49:41.0741 3700 [ B50D0D3E0CC2A23AA32077E2481E730B ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccVrTrst.dll
17:49:41.0741 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccVrTrst.dll - ok
17:49:41.0744 3700 [ 3ECC194DFEA426A3F3B4ECFDB8454F14 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\EFACli.dll
17:49:41.0744 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\EFACli.dll - ok
17:49:41.0747 3700 [ 5AC15085D8E4E21EEE1C2705D3969005 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\srtsp32.dll
17:49:41.0747 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\srtsp32.dll - ok
17:49:41.0749 3700 [ 27E461F0BE5BFF5FC737328F749538C3 ] C:\Windows\System32\drivers\srvnet.sys
17:49:41.0749 3700 C:\Windows\System32\drivers\srvnet.sys - ok
17:49:41.0752 3700 [ DF687E3D8836BFB04FCC0615BF15A519 ] C:\Windows\System32\drivers\tcpipreg.sys
17:49:41.0752 3700 C:\Windows\System32\drivers\tcpipreg.sys - ok
17:49:41.0754 3700 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] C:\Windows\System32\sysmain.dll
17:49:41.0754 3700 C:\Windows\System32\sysmain.dll - ok
17:49:41.0757 3700 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] C:\Windows\System32\wiaservc.dll
17:49:41.0757 3700 C:\Windows\System32\wiaservc.dll - ok
17:49:41.0759 3700 [ 4FB25F3CFB03C5CBC72029465D83D138 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccIPC.dll
17:49:41.0759 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccIPC.dll - ok
17:49:41.0762 3700 [ 7DB5AA22A8A8E5C2D335F44853C1F6DE ] C:\Windows\System32\wbemcomn.dll
17:49:41.0762 3700 C:\Windows\System32\wbemcomn.dll - ok
17:49:41.0764 3700 [ 19B07E7E8915D701225DA41CB3877306 ] C:\Windows\System32\wbem\WMIsvc.dll
17:49:41.0764 3700 C:\Windows\System32\wbem\WMIsvc.dll - ok
17:49:41.0767 3700 [ 816DAFEC5673BA67EFFAE2AB9916BDC3 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccSet.dll
17:49:41.0767 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccSet.dll - ok
17:49:41.0770 3700 [ E5DBDEC4C592E1A35AF134775ED8AA20 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\sms.dll
17:49:41.0770 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\sms.dll - ok
17:49:41.0772 3700 [ 6A6B2EE4565A178035BE2A4FF6F2C968 ] C:\Windows\SysWOW64\wtsapi32.dll
17:49:41.0772 3700 C:\Windows\SysWOW64\wtsapi32.dll - ok
17:49:41.0775 3700 [ F8CE582B4B579EA66C740D7234285353 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\sis.dll
17:49:41.0775 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\sis.dll - ok
17:49:41.0777 3700 [ 0364256B4A2A93A8C8CDA6B3B5A0EFF5 ] C:\Windows\System32\wiatrace.dll
17:49:41.0777 3700 C:\Windows\System32\wiatrace.dll - ok
17:49:41.0779 3700 [ 0255C22D99602534F15CBB8D9B6F152F ] C:\Windows\System32\wbem\WinMgmtR.dll
17:49:41.0780 3700 C:\Windows\System32\wbem\WinMgmtR.dll - ok
17:49:41.0782 3700 [ 0C52762C606BCF6A377D5E4688191A6B ] C:\Windows\System32\wbem\WmiDcPrv.dll
17:49:41.0782 3700 C:\Windows\System32\wbem\WmiDcPrv.dll - ok
17:49:41.0784 3700 [ 21D3A18769EC2C4E56756D04E989A221 ] C:\Windows\SysWOW64\msxml3.dll
17:49:41.0784 3700 C:\Windows\SysWOW64\msxml3.dll - ok
17:49:41.0787 3700 [ DF13A51A5C591887D2EC6AE64CEED0FA ] C:\Windows\SysWOW64\wsock32.dll
17:49:41.0787 3700 C:\Windows\SysWOW64\wsock32.dll - ok
17:49:41.0789 3700 [ A3F5E8EC1316C3E2562B82694A251C9E ] C:\Windows\System32\wbem\fastprox.dll
17:49:41.0789 3700 C:\Windows\System32\wbem\fastprox.dll - ok
17:49:41.0792 3700 [ 199AB17FE18AB8AFC25205D1C9B0A13B ] C:\Program Files (x86)\Google\Desktop\Install\{d73be368-404e-0f1a-fb7f-ced1fff1f379}\ \...\ﯹ๛\{d73be368-404e-0f1a-fb7f-ced1fff1f379}\GoogleUpdate.exe
17:49:41.0792 3700 C:\Program Files (x86)\Google\Desktop\Install\{d73be368-404e-0f1a-fb7f-ced1fff1f379}\ \...\ﯹ๛\{d73be368-404e-0f1a-fb7f-ced1fff1f379}\GoogleUpdate.exe - ok
17:49:41.0795 3700 [ EE26D130808D16C0E417BBBED0451B34 ] C:\Windows\System32\ntdsapi.dll
17:49:41.0795 3700 C:\Windows\System32\ntdsapi.dll - ok
17:49:41.0797 3700 [ 7E7AFD841694F6AC397E99D75CEAD49D ] C:\Windows\System32\trkwks.dll
17:49:41.0797 3700 C:\Windows\System32\trkwks.dll - ok
17:49:41.0799 3700 [ 666A60F6F5E719856FF6254E0966EFF7 ] C:\Windows\System32\wbem\wbemprox.dll
17:49:41.0799 3700 C:\Windows\System32\wbem\wbemprox.dll - ok
17:49:41.0802 3700 [ 5EB55F661DEBF156E126160BCD4D89F8 ] C:\Windows\System32\wbem\wbemcore.dll
17:49:41.0802 3700 C:\Windows\System32\wbem\wbemcore.dll - ok
17:49:41.0804 3700 [ 007863E45F25AA47A4C30D0930BBFD85 ] C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
17:49:41.0804 3700 C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll - ok
17:49:41.0807 3700 [ D131BD5DC39A2694656EA8C773F8CB77 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccGEvt.dll
17:49:41.0807 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccGEvt.dll - ok
17:49:41.0810 3700 [ D1DE1EAFDE97BE41CF6585027FF3E732 ] C:\Windows\SysWOW64\comdlg32.dll
17:49:41.0810 3700 C:\Windows\SysWOW64\comdlg32.dll - ok
17:49:41.0812 3700 [ 0DD0497297BC5A606432F4DA5E624A61 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccGLog.dll
17:49:41.0812 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccGLog.dll - ok
17:49:41.0815 3700 [ A3E6BA2C64913C16029AE17D68072A4F ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccJobMgr.dll
17:49:41.0815 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccJobMgr.dll - ok
17:49:41.0818 3700 [ 418E881201583A3039D81F43E39E6C78 ] C:\Windows\SysWOW64\winsta.dll
17:49:41.0818 3700 C:\Windows\SysWOW64\winsta.dll - ok
17:49:41.0820 3700 [ 14961B8CCCA3D03234E39B161AEA692A ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccEmlPxy.dll
17:49:41.0820 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccEmlPxy.dll - ok
17:49:41.0823 3700 [ F689B4C15140D802CACBA21AC1E0A2C0 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccSubEng.dll
17:49:41.0823 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccSubEng.dll - ok
17:49:41.0826 3700 [ 08DFDBD2FD4EA951DC46B1C7661ED35A ] C:\Windows\SysWOW64\powrprof.dll
17:49:41.0826 3700 C:\Windows\SysWOW64\powrprof.dll - ok
17:49:41.0828 3700 [ 5EF7761935485FFDBB78628AA680FE8B ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\Iron.dll
17:49:41.0828 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\Iron.dll - ok
17:49:41.0831 3700 [ 042536B25F730AFC930D1833F8A3E750 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\LuSvc.dll
17:49:41.0831 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\LuSvc.dll - ok
17:49:41.0834 3700 [ 1856213A31E6AFDDEB1A014CD49AC98B ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SNDSvc.dll
17:49:41.0834 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SNDSvc.dll - ok
17:49:41.0837 3700 [ 6E357D1217E29A42E78CAD392AE594F3 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SymRedir.dll
17:49:41.0837 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SymRedir.dll - ok
17:49:41.0839 3700 [ 4521C7BB2E6AA9BCC20C631907211F91 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SymRdrSv.dll
17:49:41.0839 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SymRdrSv.dll - ok
17:49:41.0842 3700 [ 1FD37C00535502429DD964EC53D66FB8 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\BHSvcPlg.dll
17:49:41.0842 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\BHSvcPlg.dll - ok
17:49:41.0845 3700 [ 374563E55940393ADB98572F32B77C1A ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\EimLoader.dll
17:49:41.0845 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\EimLoader.dll - ok
17:49:41.0848 3700 [ C5D664FCEFE3B7E1541B38529A9E994A ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\IPSPlug.dll
17:49:41.0848 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\IPSPlug.dll - ok
17:49:41.0850 3700 [ BDAC1AA64495D0F7E1FF810EBBF1F018 ] C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_ec83dffa859149af\comctl32.dll
17:49:41.0850 3700 C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_ec83dffa859149af\comctl32.dll - ok
17:49:41.0853 3700 [ 6C623705180C69AA02B73EA65F307726 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\AVHostPlugin.dll
17:49:41.0853 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\AVHostPlugin.dll - ok
17:49:41.0856 3700 [ 4EE45E0E773AA15939FF02A0622AFEDA ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\DefUtDCD.dll
17:49:41.0856 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\DefUtDCD.dll - ok
17:49:41.0858 3700 [ 38B13C0DF479DBA23ECFA815159BA86E ] C:\Windows\SysWOW64\ktmw32.dll
17:49:41.0858 3700 C:\Windows\SysWOW64\ktmw32.dll - ok
17:49:41.0861 3700 [ 514072217C24FAEA4C3D1FCE257BEF3D ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\i2ldvp3.dll
17:49:41.0861 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\i2ldvp3.dll - ok
17:49:41.0863 3700 [ 521B748A7F9923302CA18B7E6AA2EEAE ] C:\Windows\SysWOW64\activeds.dll
17:49:41.0863 3700 C:\Windows\SysWOW64\activeds.dll - ok
17:49:41.0866 3700 [ 087D8668C71634A3A3761135ABF16EEE ] C:\Windows\System32\wbem\esscli.dll
17:49:41.0866 3700 C:\Windows\System32\wbem\esscli.dll - ok
17:49:41.0868 3700 [ 85683DF1F917E4D7F6BE1A04986BF1C8 ] C:\Windows\SysWOW64\msacm32.dll
17:49:41.0868 3700 C:\Windows\SysWOW64\msacm32.dll - ok
17:49:41.0871 3700 [ 51F5CC1E7DA3D9C664C2D0D61F315E06 ] C:\Windows\SysWOW64\adsldpc.dll
17:49:41.0871 3700 C:\Windows\SysWOW64\adsldpc.dll - ok
17:49:41.0873 3700 [ D5AEFAD57C08349A4393D987DF7C715D ] C:\Windows\SysWOW64\winmm.dll
17:49:41.0873 3700 C:\Windows\SysWOW64\winmm.dll - ok
17:49:41.0875 3700 [ A8BB45F9ECAD993461E0FEF8E2A99152 ] C:\Windows\SysWOW64\Wldap32.dll
17:49:41.0875 3700 C:\Windows\SysWOW64\Wldap32.dll - ok
17:49:41.0877 3700 [ 295657F93F6B19DEEA804048E1CB4FF9 ] C:\Windows\System32\lz32.dll
17:49:41.0877 3700 C:\Windows\System32\lz32.dll - ok
17:49:41.0880 3700 [ 20ECD0A490A121CB34F553FAD1DBBD39 ] C:\Windows\System32\escsvc64.exe
17:49:41.0880 3700 C:\Windows\System32\escsvc64.exe - ok
17:49:41.0882 3700 [ 718B6F51AB7F6FE2988A36868F9AD3AB ] C:\Windows\System32\wbem\wbemsvc.dll
17:49:41.0882 3700 C:\Windows\System32\wbem\wbemsvc.dll - ok
17:49:41.0885 3700 [ 0AB34456654C283DAA13B8D2BA21439B ] C:\Windows\System32\wbem\repdrvfs.dll
17:49:41.0885 3700 C:\Windows\System32\wbem\repdrvfs.dll - ok
17:49:41.0887 3700 [ 0143DB80DACFB7C2B5B7009ED9063353 ] C:\Windows\System32\wbem\wmiutils.dll
17:49:41.0887 3700 C:\Windows\System32\wbem\wmiutils.dll - ok
17:49:41.0890 3700 [ 4A4C29D1B242F7497005F0001D40E01B ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\LicenseMan.dll
17:49:41.0890 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\LicenseMan.dll - ok
17:49:41.0892 3700 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] C:\Windows\System32\drivers\srv2.sys
17:49:41.0892 3700 C:\Windows\System32\drivers\srv2.sys - ok
17:49:41.0895 3700 [ F10E5311E5093FA3C00FF88C54C32FCA ] C:\Windows\SysWOW64\atl.dll
17:49:41.0895 3700 C:\Windows\SysWOW64\atl.dll - ok
17:49:41.0897 3700 [ E7403B32678648C34AF8B4DCEF10B187 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ducclib.dll
17:49:41.0897 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ducclib.dll - ok
17:49:41.0900 3700 [ 8E7FC66E51149CC08BCF2B7C620146D4 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\AgentCore.dll
17:49:41.0900 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\AgentCore.dll - ok
17:49:41.0903 3700 [ 60CC3B231AF7B457FE09F730362ACD40 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\ActaRes.dll
17:49:41.0903 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\ActaRes.dll - ok
17:49:41.0905 3700 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] C:\Windows\System32\drivers\srv.sys
17:49:41.0905 3700 C:\Windows\System32\drivers\srv.sys - ok
17:49:41.0908 3700 [ 09362D91CF5631EBB1C99276E1DCDAF2 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\DSCli.dll
17:49:41.0908 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\DSCli.dll - ok
17:49:41.0910 3700 [ 03C56FF2FE375430DCAD45E4BB8651B5 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\DataMan.dll
17:49:41.0911 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\DataMan.dll - ok
17:49:41.0913 3700 [ 2F3EBAFA6E5CEFC89D2C0F3737C973C3 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\PScanRes.dll
17:49:41.0913 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\PScanRes.dll - ok
17:49:41.0916 3700 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] C:\Windows\System32\browser.dll
17:49:41.0916 3700 C:\Windows\System32\browser.dll - ok
17:49:41.0918 3700 [ 81749E073AC5857B044A686B406E5244 ] C:\Windows\System32\clusapi.dll
17:49:41.0918 3700 C:\Windows\System32\clusapi.dll - ok
17:49:41.0920 3700 [ CFEFA40DDE34659BE5211966EAD86437 ] C:\Windows\System32\netmsg.dll
17:49:41.0920 3700 C:\Windows\System32\netmsg.dll - ok
17:49:41.0923 3700 [ D9F42719019740BAA6D1C6D536CBDAA6 ] C:\Windows\System32\srvsvc.dll
17:49:41.0923 3700 C:\Windows\System32\srvsvc.dll - ok
17:49:41.0925 3700 [ FF80CAD87555E8E4D2CFD7B9058343F8 ] C:\Windows\System32\sscore.dll
17:49:41.0925 3700 C:\Windows\System32\sscore.dll - ok
17:49:41.0927 3700 [ BF6D6ED5FADCEEE885BD0144ECF1BA27 ] C:\Windows\SysWOW64\ncrypt.dll
17:49:41.0927 3700 C:\Windows\SysWOW64\ncrypt.dll - ok
17:49:41.0930 3700 [ 344FCC9850C3A8A3B4D3C65151AF8E4C ] C:\Windows\System32\resutils.dll
17:49:41.0930 3700 C:\Windows\System32\resutils.dll - ok
17:49:41.0932 3700 [ CE71B9119A258EDD0A05B37D7B0F92E3 ] C:\Windows\SysWOW64\bcrypt.dll
17:49:41.0932 3700 C:\Windows\SysWOW64\bcrypt.dll - ok
17:49:41.0935 3700 [ 704314FD398C81D5F342CAA5DF7B7F21 ] C:\Windows\SysWOW64\wbemcomn.dll
17:49:41.0935 3700 C:\Windows\SysWOW64\wbemcomn.dll - ok
17:49:41.0937 3700 [ C5B0324DB461559ADD070E632A6919FA ] C:\Windows\SysWOW64\wbem\wbemprox.dll
17:49:41.0937 3700 C:\Windows\SysWOW64\wbem\wbemprox.dll - ok
17:49:41.0939 3700 [ DDD0357A92FA843EFF8915ED17253D6C ] C:\Windows\System32\wbem\WmiPrvSD.dll
17:49:41.0939 3700 C:\Windows\System32\wbem\WmiPrvSD.dll - ok
17:49:41.0941 3700 [ E8449FE262D7406BCB2AC2A45C53EC5F ] C:\Windows\SysWOW64\bcryptprimitives.dll
17:49:41.0941 3700 C:\Windows\SysWOW64\bcryptprimitives.dll - ok
17:49:41.0944 3700 [ 7BE3DC7D8383190C0666E158862B71D6 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\CidsEimProxy.dll
17:49:41.0944 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\CidsEimProxy.dll - ok
17:49:41.0946 3700 [ D41FEBD098234F02485A4EA98D4730A4 ] C:\Windows\System32\ncobjapi.dll
17:49:41.0946 3700 C:\Windows\System32\ncobjapi.dll - ok
17:49:41.0949 3700 [ 6F40D6FB05E0C1E5402812B426971AF0 ] C:\Windows\System32\wbem\wbemess.dll
17:49:41.0949 3700 C:\Windows\System32\wbem\wbemess.dll - ok
17:49:41.0951 3700 [ 465BEA35F7ED4A4A57686DEA7EA10F47 ] C:\Windows\SysWOW64\cscapi.dll
17:49:41.0951 3700 C:\Windows\SysWOW64\cscapi.dll - ok
17:49:41.0954 3700 [ CFC7D8289D2B5F3CF8D16E2DB7F93D4A ] C:\Windows\SysWOW64\wbem\fastprox.dll
17:49:41.0954 3700 C:\Windows\SysWOW64\wbem\fastprox.dll - ok
17:49:41.0956 3700 [ 776AE0564F8B1C282E331FD95A1BDC5F ] C:\Windows\SysWOW64\wbem\wbemsvc.dll
17:49:41.0956 3700 C:\Windows\SysWOW64\wbem\wbemsvc.dll - ok
17:49:41.0959 3700 [ E3E811471DE781900FF21C1FD84E941E ] C:\Windows\SysWOW64\ntdsapi.dll
17:49:41.0959 3700 C:\Windows\SysWOW64\ntdsapi.dll - ok
17:49:41.0961 3700 [ 619A67C9F617B7E69315BB28ECD5E1DF ] C:\Windows\System32\wbem\WmiPrvSE.exe
17:49:41.0961 3700 C:\Windows\System32\wbem\WmiPrvSE.exe - ok
17:49:41.0964 3700 [ 6607C2182C6A53ED983813AFE2F85768 ] C:\Windows\System32\wbem\cimwin32.dll
17:49:41.0964 3700 C:\Windows\System32\wbem\cimwin32.dll - ok
17:49:41.0966 3700 [ 12627BC6B9125E93338B030E5F3FE322 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\Smc.exe
17:49:41.0966 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\Smc.exe - ok
17:49:41.0969 3700 [ 6A16BCE3C09496650BE881C467611653 ] C:\Windows\System32\msi.dll
17:49:41.0969 3700 C:\Windows\System32\msi.dll - ok
17:49:41.0971 3700 [ CA3A6F3C9C963DA7BE8964848D739E9C ] C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\BASHDefs\20130913.014\BHEngine.dll
17:49:41.0971 3700 C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\BASHDefs\20130913.014\BHEngine.dll - ok
17:49:41.0974 3700 [ 3FD15B4611D9BDA3F8013548C0ECAECA ] C:\Windows\SysWOW64\ntmarta.dll
17:49:41.0974 3700 C:\Windows\SysWOW64\ntmarta.dll - ok
17:49:41.0976 3700 [ AE5B90EC199CF7C45240FDFDDEC4446A ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\ccL120U.dll
17:49:41.0976 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\ccL120U.dll - ok
17:49:41.0979 3700 [ 76168DD534E0ADF0F30F0CA809525FCE ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\mfc100u.dll
17:49:41.0979 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\mfc100u.dll - ok
17:49:41.0982 3700 [ 4F096D96285E06CD51AEF7D2D3DE04DA ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\msvcp100.dll
17:49:41.0982 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\msvcp100.dll - ok
17:49:41.0985 3700 [ DF3CA8D16BDED6A54977B30E66864D33 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\msvcr100.dll
17:49:41.0985 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\msvcr100.dll - ok
17:49:41.0987 3700 [ B07EA805759F85183ABC6DF868FCA092 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\SymDeltaDll.dll
17:49:41.0987 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\SymDeltaDll.dll - ok
17:49:41.0990 3700 [ 352B3DC62A0D259A82A052238425C872 ] C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
17:49:41.0990 3700 C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll - ok
17:49:41.0992 3700 [ 2E483EC51216B52C711C7EC642798BB7 ] C:\Windows\System32\sti.dll
17:49:41.0992 3700 C:\Windows\System32\sti.dll - ok
17:49:41.0995 3700 [ E424B3EF666B184CEE0B6871AAA8C9F6 ] C:\Windows\System32\msimg32.dll
17:49:41.0995 3700 C:\Windows\System32\msimg32.dll - ok
17:49:41.0997 3700 [ 1484B9EBF567346582DE571B0E164AE0 ] C:\Windows\System32\framedynos.dll
17:49:41.0997 3700 C:\Windows\System32\framedynos.dll - ok
17:49:42.0000 3700 [ C00DB14550E4BD49737F311C644E45FF ] C:\Windows\System32\wmi.dll
17:49:42.0000 3700 C:\Windows\System32\wmi.dll - ok
17:49:42.0002 3700 [ 012787CEB35505EB78DF82E0A0072888 ] C:\Windows\System32\browcli.dll
17:49:42.0002 3700 C:\Windows\System32\browcli.dll - ok
17:49:42.0004 3700 [ C4BFE4B61086416B0529212F92BCE081 ] C:\Windows\System32\schedcli.dll
17:49:42.0004 3700 C:\Windows\System32\schedcli.dll - ok
17:49:42.0007 3700 [ 5F4342C36142C4BC8736776283089A58 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\mfc100.dll
17:49:42.0007 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\mfc100.dll - ok
17:49:42.0010 3700 [ AC66D4B80C1B47F81796B701800505CE ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\SyLog.dll
17:49:42.0010 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\SyLog.dll - ok
17:49:42.0012 3700 [ 5D64FA463639E102BE37F3E898B98518 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ProfileManagementClient.dll
17:49:42.0013 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ProfileManagementClient.dll - ok
17:49:42.0015 3700 [ 6555E693B7832229D711DF80F66E4339 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SubmissionsEim.dll
17:49:42.0015 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SubmissionsEim.dll - ok
17:49:42.0018 3700 [ 14D289F63D9538306CB560C4CD12172F ] C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\IPSDefs\20130921.011\IDSxpx86.dll
17:49:42.0018 3700 C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\IPSDefs\20130921.011\IDSxpx86.dll - ok
17:49:42.0021 3700 [ 18F2D656D28363939DEE16ADE2F7F127 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\BHClient.dll
17:49:42.0021 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\BHClient.dll - ok
17:49:42.0023 3700 [ 421C40C14682639CF5B7EA9D482FAFA2 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\GEDataStore.dll
17:49:42.0023 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\GEDataStore.dll - ok
17:49:42.0026 3700 [ 996C6E958FD4981C2C44F3C754A23F44 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\IDSaux.dll
17:49:42.0026 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\IDSaux.dll - ok
17:49:42.0029 3700 [ 5D50BB423CCC09BCABFE9BD5551BFA08 ] C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\IPSDefs\20130921.011\IPSFFPl.dll
17:49:42.0029 3700 C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\IPSDefs\20130921.011\IPSFFPl.dll - ok
17:49:42.0031 3700 [ 4449D23E8F197862F1B16F1E6C89C36C ] C:\Windows\System32\diagperf.dll
17:49:42.0032 3700 C:\Windows\System32\diagperf.dll - ok
17:49:42.0034 3700 [ BF4AC709BE5BF64F331F5D67773A0C82 ] C:\Windows\System32\perftrack.dll
17:49:42.0034 3700 C:\Windows\System32\perftrack.dll - ok
17:49:42.0036 3700 [ BF1FC3F79B863C914687A737C2F3D681 ] C:\Windows\System32\wdi.dll
17:49:42.0036 3700 C:\Windows\System32\wdi.dll - ok
17:49:42.0039 3700 [ 93221146D4EBBF314C29B23CD6CC391D ] C:\Windows\System32\wpdbusenum.dll
17:49:42.0039 3700 C:\Windows\System32\wpdbusenum.dll - ok
17:49:42.0041 3700 [ BD9EB3958F213F96B97B1D897DEE006D ] C:\Windows\System32\hidserv.dll
17:49:42.0041 3700 C:\Windows\System32\hidserv.dll - ok
17:49:42.0043 3700 [ E64D9EC8018C55873B40FDEE9DBEF5B3 ] C:\Windows\System32\PortableDeviceApi.dll
17:49:42.0043 3700 C:\Windows\System32\PortableDeviceApi.dll - ok
17:49:42.0046 3700 [ 1727B2A2F379A32B864C096FA794AADC ] C:\Windows\System32\aepic.dll
17:49:42.0046 3700 C:\Windows\System32\aepic.dll - ok
17:49:42.0048 3700 [ 9719E3D834F5C8C43F56A93DFA497023 ] C:\Windows\System32\pnpts.dll
17:49:42.0048 3700 C:\Windows\System32\pnpts.dll - ok
17:49:42.0051 3700 [ AFA79C343F9D1555F7E5D5FA70BB2A14 ] C:\Windows\System32\PortableDeviceConnectApi.dll
17:49:42.0051 3700 C:\Windows\System32\PortableDeviceConnectApi.dll - ok
17:49:42.0053 3700 [ C6DCD1D11ED6827F05C00773C3E7053C ] C:\Windows\System32\sfc.dll
17:49:42.0053 3700 C:\Windows\System32\sfc.dll - ok
17:49:42.0055 3700 [ E811F8510B133E70CF6E509FB809824F ] C:\Windows\System32\wdiasqmmodule.dll
17:49:42.0055 3700 C:\Windows\System32\wdiasqmmodule.dll - ok
17:49:42.0058 3700 [ 9689A9C7F7C2A1A423CDA2C3B43FFF65 ] C:\Windows\System32\wer.dll
17:49:42.0058 3700 C:\Windows\System32\wer.dll - ok
17:49:42.0060 3700 [ 895C9AB0A855547445C4181195230757 ] C:\Windows\System32\sfc_os.dll
17:49:42.0060 3700 C:\Windows\System32\sfc_os.dll - ok
17:49:42.0062 3700 [ 639774C9ACD063F028F6084ABF5593AD ] C:\Windows\System32\taskhost.exe
17:49:42.0062 3700 C:\Windows\System32\taskhost.exe - ok
17:49:42.0065 3700 [ E629F1A051C82795DDFFD3E8D4855811 ] C:\Windows\System32\dimsjob.dll
17:49:42.0065 3700 C:\Windows\System32\dimsjob.dll - ok
17:49:42.0067 3700 [ F7073C962C4FB7C415565DDE109DE49F ] C:\Windows\System32\npmproxy.dll
17:49:42.0067 3700 C:\Windows\System32\npmproxy.dll - ok
17:49:42.0070 3700 [ 1581668D9F005B69B0D31D869DC7821A ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\ccSet.dll
17:49:42.0070 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\ccSet.dll - ok
17:49:42.0073 3700 [ 5B0F305B7F26CD7DB43087223A7262B0 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\ccVrTrst.dll
17:49:42.0073 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\ccVrTrst.dll - ok
17:49:42.0075 3700 [ A64FD422D01E71057B65B448C835D4E7 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\EFACli64.dll
17:49:42.0075 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\EFACli64.dll - ok
17:49:42.0078 3700 [ EDDFB6433B6FBD86FA8741472F0875A2 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\AgentCore.dll
17:49:42.0078 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\AgentCore.dll - ok
17:49:42.0081 3700 [ 802CE385DA3D1323157218F1E6E9657A ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\SmcRes.dll
17:49:42.0081 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\SmcRes.dll - ok
17:49:42.0083 3700 [ 616F99FA7387629E215788DD7767D116 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\DataMan.dll
17:49:42.0083 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\DataMan.dll - ok
17:49:42.0086 3700 [ EEB5825BB81AB1593DBDA1F87E1B0A38 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\ccIPC.dll
17:49:42.0086 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\ccIPC.dll - ok
17:49:42.0089 3700 [ D26DBF27C0B18745F465D16B4B2601C7 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\SyLink.dll
17:49:42.0089 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\SyLink.dll - ok
17:49:42.0092 3700 [ 4AF6119AE3CBD96AD3618B4A64B0C074 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\Netport.dll
17:49:42.0092 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\Netport.dll - ok
17:49:42.0094 3700 [ 14DA25182DF356C3002701E91CA4946D ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\LicenseMan64.dll
17:49:42.0094 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\LicenseMan64.dll - ok
17:49:42.0097 3700 [ 4A288A74CF84FA2D8437CA66135FE244 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\Trident.dll
17:49:42.0097 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\Trident.dll - ok
17:49:42.0100 3700 [ B114FFCE428C9DFFD4E403920480166E ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\SgHI.dll
17:49:42.0100 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\SgHI.dll - ok
17:49:42.0102 3700 [ 5D50BB423CCC09BCABFE9BD5551BFA08 ] C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\IPSFFPlgn\components\IPSFFPl.dll
17:49:42.0102 3700 C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\IPSFFPlgn\components\IPSFFPl.dll - ok
17:49:42.0105 3700 [ EC97F812B31D0B3FD8C2BFB782D4AEC5 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\sfConfig.dll
17:49:42.0105 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\sfConfig.dll - ok
17:49:42.0108 3700 [ 53C2247977B7E1A8B1CC68163AA72842 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\SpNet.dll
17:49:42.0108 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\SpNet.dll - ok
17:49:42.0110 3700 [ 41EAB1BC92287E9380DD836915B36A72 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\tseConfig.dll
17:49:42.0110 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\tseConfig.dll - ok
17:49:42.0113 3700 [ 998D3FE8111B737A3554FF4B745E0E01 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\NacManager.plg
17:49:42.0113 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\NacManager.plg - ok
17:49:42.0116 3700 [ 5B868546008D7B6233EA22750A364776 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\TseConfigRes.dll
17:49:42.0116 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\TseConfigRes.dll - ok
17:49:42.0119 3700 [ 7BEFF0DB8679FF06E8446DE45726A508 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\AtpiMan.plg
17:49:42.0119 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\AtpiMan.plg - ok
17:49:42.0121 3700 [ E9749D143FC78DCA3BEFFB84B562DDDC ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\AVMan.plg
17:49:42.0121 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\AVMan.plg - ok
17:49:42.0124 3700 [ 6A5172CE1FDC2D3C7EB3DFF846232791 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\BashMan.plg
17:49:42.0124 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\BashMan.plg - ok
17:49:42.0127 3700 [ D10504B30C56228F6D282225A7253F73 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\CidsMan.plg
17:49:42.0127 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\CidsMan.plg - ok
17:49:42.0129 3700 [ BA408A82BCE811E64DE8F4B3EEF6D56B ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\CommonMan.plg
17:49:42.0129 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\CommonMan.plg - ok
17:49:42.0132 3700 [ 203C6D8F17AC726323E7B7063A93E16B ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\GUProxy.plg
17:49:42.0132 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\GUProxy.plg - ok
17:49:42.0135 3700 [ 134BA07BA5BE59FF4E3EF5639A0E9150 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\LocalRep.plg
17:49:42.0135 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\LocalRep.plg - ok
17:49:42.0138 3700 [ 6DE6D7CC8C4F1C59EEB068C3978FD49D ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\LUMan.plg
17:49:42.0138 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\LUMan.plg - ok
17:49:42.0140 3700 [ 47D48BD0A7B9EBDB590191373DD0A310 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\ProfileMgrMan.plg
17:49:42.0140 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\ProfileMgrMan.plg - ok
17:49:42.0143 3700 [ 62FA55975BDDA6D18C228C6BD4517DD0 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\RebootMgrMan.plg
17:49:42.0143 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\RebootMgrMan.plg - ok
17:49:42.0146 3700 [ 5F443D7D7992D7FFEE3715B0E0CDD379 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\RepMgtMan.plg
17:49:42.0146 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\RepMgtMan.plg - ok
17:49:42.0149 3700 [ C7E0778BC561F8D8541A14E2CA479DA7 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\ProfileManagement.dll
17:49:42.0149 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\ProfileManagement.dll - ok
17:49:42.0151 3700 [ F54295FEA868B9D652472CF5B6980951 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\SubmissionsMan.plg
17:49:42.0151 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\SubmissionsMan.plg - ok
17:49:42.0154 3700 [ 47F2A6BDA66C2173F0E055772C94EE26 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\AvPluginImpl.dll
17:49:42.0154 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\AvPluginImpl.dll - ok
17:49:42.0157 3700 [ 537F1A601972A9D8FE6431991215E97B ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\AVManRes.dll
17:49:42.0157 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\AVManRes.dll - ok
17:49:42.0160 3700 [ 3BC2EB8057EF47C661C88D6890337AD2 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\dec_abi.dll
17:49:42.0160 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\dec_abi.dll - ok
17:49:42.0162 3700 [ 474C5D24F77A1B3841AAFFC259E9D309 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\LueEim.dll
17:49:42.0162 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\LueEim.dll - ok
17:49:42.0165 3700 [ 0F144F26A6F3828CDF6119EBDF0109C6 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SymDeltaDll.dll
17:49:42.0165 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SymDeltaDll.dll - ok
17:49:42.0168 3700 [ F32077DF74EFD435A1DCDF415E189DF1 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\mfc100u.dll
17:49:42.0168 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\mfc100u.dll - ok
17:49:42.0170 3700 [ 18AB2E5A40064ED5F7791AC5946A90F3 ] C:\Windows\SysWOW64\msimg32.dll
17:49:42.0170 3700 C:\Windows\SysWOW64\msimg32.dll - ok
17:49:42.0173 3700 [ 43964FA89CCF97BA6BE34D69455AC65F ] C:\Windows\SysWOW64\uxtheme.dll
17:49:42.0173 3700 C:\Windows\SysWOW64\uxtheme.dll - ok
17:49:42.0175 3700 [ ACB79B55C1326E51E87F9753A64F4B2C ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\AtpiEim.dll
17:49:42.0175 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\AtpiEim.dll - ok
17:49:42.0178 3700 [ 39C5F32747B3414D1BB216FDB1DEFC58 ] C:\Windows\SysWOW64\dwmapi.dll
17:49:42.0178 3700 C:\Windows\SysWOW64\dwmapi.dll - ok
17:49:42.0180 3700 [ AE74707C5F4FB8967575484E8A477B54 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccScanw.dll
17:49:42.0180 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccScanw.dll - ok
17:49:42.0183 3700 [ F890C197ADF21D08DBA4643C9AA54B9F ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ecmldr32.DLL
17:49:42.0183 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ecmldr32.DLL - ok
17:49:42.0186 3700 [ CB79E37A0B14C10DA1646637D3C02737 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\RepMgtTim.dll
17:49:42.0186 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\RepMgtTim.dll - ok
17:49:42.0187 3700 [ BFB5BCC2AB946F7FAF868FF66EAAD5F1 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\BashEim.dll
17:49:42.0187 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\BashEim.dll - ok
17:49:42.0190 3700 [ F3B5775BA62829CC8D815F4EC5ABA20D ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\CIdsEim.dll
17:49:42.0190 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\CIdsEim.dll - ok
17:49:42.0193 3700 [ 456D390DFC5320D4A6EA50D32C0C4BC7 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\LueEimProxy.dll
17:49:42.0193 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\LueEimProxy.dll - ok
17:49:42.0195 3700 [ A8CDF3768604FF95B54669E20053D569 ] C:\Windows\SysWOW64\wscapi.dll
17:49:42.0195 3700 C:\Windows\SysWOW64\wscapi.dll - ok
17:49:42.0198 3700 [ 8258362DDB18B644A82D8B5061AD9426 ] C:\Windows\SysWOW64\wscisvif.dll
17:49:42.0198 3700 C:\Windows\SysWOW64\wscisvif.dll - ok
17:49:42.0200 3700 [ 7DF186D86CF8C571A12AAB788C777F84 ] C:\Windows\SysWOW64\wscproxystub.dll
17:49:42.0200 3700 C:\Windows\SysWOW64\wscproxystub.dll - ok
17:49:42.0203 3700 [ FD766947D4F237BD440319609F8E1590 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\AtpiEimProxy.dll
17:49:42.0203 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\AtpiEimProxy.dll - ok
17:49:42.0205 3700 [ 5A55E3E6F53592F8170623DEFA2B7954 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\atl100.dll
17:49:42.0205 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\atl100.dll - ok
17:49:42.0208 3700 [ CF6850A72BEB4845A3BFFB3F5E8014B2 ] C:\Windows\System32\pdh.dll
17:49:42.0208 3700 C:\Windows\System32\pdh.dll - ok
17:49:42.0210 3700 [ 3D8842004EC1C798B1D02FD34710FF29 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\GUProxyRes.dll
17:49:42.0210 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\GUProxyRes.dll - ok
17:49:42.0213 3700 [ 220BA338EF01986AC7506798FB366667 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\LUManRes.dll
17:49:42.0213 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\LUManRes.dll - ok
17:49:42.0216 3700 [ B5942029303BF53ED0CDCB807E8C42AB ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\AtpiEimProxy.dll
17:49:42.0216 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\AtpiEimProxy.dll - ok
17:49:42.0219 3700 [ 812A2CABD279635303ED999F7651FC81 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\BashEimProxy.dll
17:49:42.0219 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\BashEimProxy.dll - ok
17:49:42.0221 3700 [ 988020CAF62714CD0781E1152C681853 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\LueEimProxy.dll
17:49:42.0221 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\LueEimProxy.dll - ok
17:49:42.0224 3700 [ D6BC871168DF55E6F49C5388593FCCEA ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\CIDSManRes.dll
17:49:42.0224 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\CIDSManRes.dll - ok
17:49:42.0227 3700 [ AEC1FCE9C31DA6199F5A9431C4A78AF4 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\ccSvc.dll
17:49:42.0227 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\ccSvc.dll - ok
17:49:42.0230 3700 [ B3644D3D040D03E412AED30BF7F34FEA ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\CidsEimProxy.dll
17:49:42.0230 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\CidsEimProxy.dll - ok
17:49:42.0232 3700 [ 0B02D8B9047D12F26B83447E3B086A5F ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\RebootMgrEimProxy.dll
17:49:42.0233 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\RebootMgrEimProxy.dll - ok
17:49:42.0235 3700 [ C021EA33E331DC414CD71B850247209A ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\srtsp64.dll
17:49:42.0235 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\srtsp64.dll - ok
17:49:42.0238 3700 [ F2E057700786CD6CA865037869F8EBE2 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\RebootMgrEim.dll
17:49:42.0238 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\RebootMgrEim.dll - ok
17:49:42.0241 3700 [ 22FCE6C6C33102122DA867A87DF2171E ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\RebootMgrEimRes.dll
17:49:42.0241 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\RebootMgrEimRes.dll - ok
17:49:42.0243 3700 [ 8D42359D97587CD123FA605AB6651624 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\RepMgtEimProxy.dll
17:49:42.0244 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\RepMgtEimProxy.dll - ok
17:49:42.0246 3700 [ D3C0D267874C3DA979FFC44DA043BA4A ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\SubmissionsEimProxy.dll
17:49:42.0246 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\SubmissionsEimProxy.dll - ok
17:49:42.0249 3700 [ EB9011052056BD6A2F36B8DE4954FDD2 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\NacManagerRes.dll
17:49:42.0249 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\NacManagerRes.dll - ok
17:49:42.0251 3700 [ 4420488D25A5947C8791DF10C204FA81 ] C:\Windows\System32\winver.exe
17:49:42.0251 3700 C:\Windows\System32\winver.exe - ok
17:49:42.0254 3700 [ CA8603DB2B572B134F39743451BDF0BD ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\DefUtDCD.dll
17:49:42.0254 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\DefUtDCD.dll - ok
17:49:42.0256 3700 [ 90CC31E54E79E9E5800FFF3CCF2FC5DB ] C:\Windows\System32\inetmib1.dll
17:49:42.0256 3700 C:\Windows\System32\inetmib1.dll - ok
17:49:42.0259 3700 [ 695BD218AC84FF90117A5FF6BDF37875 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\ducclib.dll
17:49:42.0259 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\ducclib.dll - ok
17:49:42.0262 3700 [ 272FFECC7BE04866562047A95BF0BE5B ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\SgHIRes.dll
17:49:42.0262 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\SgHIRes.dll - ok
17:49:42.0265 3700 [ ED5CD20AE6C9E7BF58C3EBCB46560B1D ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\SpNetRes.dll
17:49:42.0265 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\SpNetRes.dll - ok
17:49:42.0267 3700 [ 934D8E81007FB5C2C1DD9595B5EA9331 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\SyLinkSymInterfaceProxy.dll
17:49:42.0267 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\SyLinkSymInterfaceProxy.dll - ok
17:49:42.0270 3700 [ D034C2D37E9FB68154639F72670B6DF2 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\SEPPolicyMonitor.dll
17:49:42.0270 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\SEPPolicyMonitor.dll - ok
17:49:42.0272 3700 [ CBB5F2DB64C0E8057E961C5B07B66C62 ] C:\Windows\assembly\GAC_64\Desktop.ini
17:49:42.0273 3700 C:\Windows\assembly\GAC_64\Desktop.ini - ok
17:49:42.0275 3700 [ 58A0CDABEA255616827B1C22C9994466 ] C:\Windows\System32\NapiNSP.dll
17:49:42.0275 3700 C:\Windows\System32\NapiNSP.dll - ok
17:49:42.0277 3700 [ 613C8CE10A5FDE582BA5FA64C4D56AAA ] C:\Windows\System32\pnrpnsp.dll
17:49:42.0277 3700 C:\Windows\System32\pnrpnsp.dll - ok
17:49:42.0280 3700 [ 2E2072EB48238FCA8FBB7A9F5FABAC45 ] C:\Windows\System32\winrnr.dll
17:49:42.0280 3700 C:\Windows\System32\winrnr.dll - ok
17:49:42.0282 3700 [ 923684C0CB0AFBD9EDA4FD1D63125D3F ] C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\VirusDefs\20130920.023\ECMSVR32.DLL
17:49:42.0282 3700 C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\VirusDefs\20130920.023\ECMSVR32.DLL - ok
17:49:42.0285 3700 [ 4050B6A101DEC9DCCD54232C532B4025 ] C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\VirusDefs\20130920.023\NAVEX32A.DLL
17:49:42.0285 3700 C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\VirusDefs\20130920.023\NAVEX32A.DLL - ok
17:49:42.0288 3700 [ A3B428B0BF267F11D7D585FAC0A8FC3C ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\ProfileManagementClient.dll
17:49:42.0288 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\ProfileManagementClient.dll - ok
17:49:42.0291 3700 [ EB1C17E23D86459AFDD5ED647AD1513C ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\SyLinkRes.dll
17:49:42.0291 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\SyLinkRes.dll - ok
17:49:42.0293 3700 [ 8C22601379AA425E7A7E4B947EC87F8C ] C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\VirusDefs\20130920.023\NAVENG32.DLL
17:49:42.0293 3700 C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\VirusDefs\20130920.023\NAVENG32.DLL - ok
17:49:42.0296 3700 [ A64B5B7EF3FB98014CF940EFB74C0DB2 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\IMail.dll
17:49:42.0296 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\IMail.dll - ok
17:49:42.0299 3700 [ B1F39741935B36B5C72B19BF233E529F ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\IMailRes.dll
17:49:42.0299 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\IMailRes.dll - ok
17:49:42.0301 3700 [ B8C6D562FD81EE8B2998B28D9F6D1F45 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\SmcImpl.dll
17:49:42.0301 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64\SmcImpl.dll - ok
17:49:42.0304 3700 [ 9A72EEBCCAEEF48D1A2117A1CA336EB1 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\vpmsece.dll
17:49:42.0304 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\vpmsece.dll - ok
17:49:42.0307 3700 [ BF83922CB56A743E7DCEF1DC963E76C0 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\vpmseceRes.dll
17:49:42.0307 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\vpmseceRes.dll - ok
17:49:42.0309 3700 [ 893C44082C97F7AED3E7C180FA1F93D8 ] C:\Windows\System32\mpnotify.exe
17:49:42.0310 3700 C:\Windows\System32\mpnotify.exe - ok
17:49:42.0312 3700 [ E1B22739C933BE33F53DB58C5393ADD3 ] C:\Windows\System32\Apphlpdm.dll
17:49:42.0312 3700 C:\Windows\System32\Apphlpdm.dll - ok
17:49:42.0315 3700 [ 71AFA08152D88F206F337F1895C31D3F ] C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\VirusDefs\20130920.023\cceraser.dll
17:49:42.0315 3700 C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\VirusDefs\20130920.023\cceraser.dll - ok
17:49:42.0317 3700 [ 06ACC1F60B70E3223159770CB21C1E6C ] C:\Windows\assembly\GAC_32\Desktop.ini
17:49:42.0317 3700 C:\Windows\assembly\GAC_32\Desktop.ini - ok
17:49:42.0320 3700 [ 0B7E85364CB878E2AD531DB7B601A9E5 ] C:\Windows\SysWOW64\NapiNSP.dll
17:49:42.0320 3700 C:\Windows\SysWOW64\NapiNSP.dll - ok
17:49:42.0322 3700 [ 5CF640EDDB1E40A5AB1BB743BCDEC610 ] C:\Windows\SysWOW64\pnrpnsp.dll
17:49:42.0322 3700 C:\Windows\SysWOW64\pnrpnsp.dll - ok
17:49:42.0324 3700 [ 5DF5D8CFD9B9573FA3B2C89D9061A240 ] C:\Windows\SysWOW64\winrnr.dll
17:49:42.0324 3700 C:\Windows\SysWOW64\winrnr.dll - ok
17:49:42.0327 3700 [ A2DA3D8E0B336E13F7A155B5789B58CF ] C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\VirusDefs\20130920.023\eeCtrl64.sys
17:49:42.0327 3700 C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Data\Definitions\VirusDefs\20130920.023\eeCtrl64.sys - ok
17:49:42.0329 3700 [ 60D37294E7E8E0872474C43035435764 ] C:\Windows\System32\snacnp.dll
17:49:42.0329 3700 C:\Windows\System32\snacnp.dll - ok
17:49:42.0332 3700 [ DF3A11358F5E5DA3C2C351DA59A93A46 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\AVUtil.dll
17:49:42.0332 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\AVUtil.dll - ok
17:49:42.0334 3700 [ D15618A0FF8DBC2C5BF3726BACC75A0B ] C:\Windows\SysWOW64\userenv.dll
17:49:42.0334 3700 C:\Windows\SysWOW64\userenv.dll - ok
17:49:42.0337 3700 [ A8EDB86FC2A4D6D1285E4C70384AC35A ] C:\Windows\System32\dllhost.exe
17:49:42.0337 3700 C:\Windows\System32\dllhost.exe - ok
17:49:42.0339 3700 [ A0A2C1D812C231C9BFE119FDC68E341B ] C:\Windows\System32\IDStore.dll
17:49:42.0339 3700 C:\Windows\System32\IDStore.dll - ok
17:49:42.0342 3700 [ 46863C4CC5B68EB09EA2D5EEF0F1193A ] C:\Windows\System32\radardt.dll
17:49:42.0342 3700 C:\Windows\System32\radardt.dll - ok
17:49:42.0344 3700 [ 65EA57712340C09B1B0C427B4848AE05 ] C:\Windows\System32\taskeng.exe
17:49:42.0344 3700 C:\Windows\System32\taskeng.exe - ok
17:49:42.0347 3700 [ 863F793D15B4026B1A5FDECA873D4D84 ] C:\Windows\SysWOW64\apphelp.dll
17:49:42.0347 3700 C:\Windows\SysWOW64\apphelp.dll - ok
17:49:42.0349 3700 [ BAFE84E637BF7388C96EF48D4D3FDD53 ] C:\Windows\System32\userinit.exe
17:49:42.0349 3700 C:\Windows\System32\userinit.exe - ok
17:49:42.0352 3700 [ E284663B1A5EA1132998AE53C10D49FF ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SavUI.exe
17:49:42.0352 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SavUI.exe - ok
17:49:42.0354 3700 [ F162D5F5E845B9DC352DD1BAD8CEF1BC ] C:\Windows\System32\dwm.exe
17:49:42.0354 3700 C:\Windows\System32\dwm.exe - ok
17:49:42.0357 3700 [ A250AF807E73BBFEEB1286B5A1CD4BBE ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\SavUIRes.dll
17:49:42.0357 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\SavUIRes.dll - ok
17:49:42.0359 3700 [ AC4C51EB24AA95B77F705AB159189E24 ] C:\Windows\explorer.exe
17:49:42.0359 3700 C:\Windows\explorer.exe - ok
17:49:42.0361 3700 [ 805A52C5AE26C28E88FDD9BCCFE6F312 ] C:\Windows\System32\TSChannel.dll
17:49:42.0361 3700 C:\Windows\System32\TSChannel.dll - ok
17:49:42.0364 3700 [ D0F123534AF1EF0878DB90249AD046CB ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SavEmail.dll
17:49:42.0364 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SavEmail.dll - ok
17:49:42.0367 3700 [ 118606A24EFA10AD521375CDFA236B1A ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SymNeti.dll
17:49:42.0367 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SymNeti.dll - ok
17:49:42.0369 3700 [ 81F08948A0F1475894C99D4D19A158A8 ] C:\Windows\SysWOW64\wshqos.dll
17:49:42.0369 3700 C:\Windows\SysWOW64\wshqos.dll - ok
17:49:42.0372 3700 [ 2027C313D9711F27CEA86F2A1053A477 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\OutlookSessionPlugin.dll
17:49:42.0372 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\OutlookSessionPlugin.dll - ok
17:49:42.0374 3700 [ F02A533F517EB38333CB12A9E8963773 ] C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
17:49:42.0374 3700 C:\Program Files (x86)\Google\Update\GoogleUpdate.exe - ok
17:49:42.0377 3700 [ AE4D40BA1636576A5C29A071B0600DF2 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\RunOnceSessionPlugin.dll
17:49:42.0377 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\RunOnceSessionPlugin.dll - ok
17:49:42.0380 3700 [ 5A1C8002B0D450E5A50823D0EC3CE6F6 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SavEmailSesHlp.dll
17:49:42.0380 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SavEmailSesHlp.dll - ok
17:49:42.0383 3700 [ 68C13548227E4F25261AFA5966F2F179 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SAVSesHlp.dll
17:49:42.0383 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SAVSesHlp.dll - ok
17:49:42.0385 3700 [ BEE87E8D8E80D43EFDC6E8C2FE687976 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SAVStatusFinder.dll
17:49:42.0385 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SAVStatusFinder.dll - ok
17:49:42.0388 3700 [ E80E1C2E036404CBDC71917763B31A5C ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SEPSessionPlugin.dll
17:49:42.0388 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SEPSessionPlugin.dll - ok
17:49:42.0391 3700 [ EF84374D492E267654243E3B041EA69A ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\SAVSesHlpRes.dll
17:49:42.0391 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\SAVSesHlpRes.dll - ok
17:49:42.0393 3700 [ FCFCD1101C5DA23B4B95F93D02B2C169 ] C:\Windows\System32\dwmredir.dll
17:49:42.0393 3700 C:\Windows\System32\dwmredir.dll - ok
17:49:42.0395 3700 [ 06DCAF2DE0C1502F6F91A25C883558F1 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\SavEmailSesHlpRes.dll
17:49:42.0396 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\SavEmailSesHlpRes.dll - ok
17:49:42.0398 3700 [ F2DC9802130781D3E7DA859451110130 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\SEPSessionPluginRes.dll
17:49:42.0398 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\SEPSessionPluginRes.dll - ok
17:49:42.0401 3700 [ 94EEAC26F57811BD1AEFC164412F7FCE ] C:\Windows\System32\PlaySndSrv.dll
17:49:42.0401 3700 C:\Windows\System32\PlaySndSrv.dll - ok
17:49:42.0403 3700 [ 4BA77A5EF71C14C764B0ED4701683E3E ] C:\Windows\System32\dwmcore.dll
17:49:42.0403 3700 C:\Windows\System32\dwmcore.dll - ok
17:49:42.0406 3700 [ 45C37EB0E6638457A04380FA9AE8F6BD ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\scandlgs.dll
17:49:42.0406 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\scandlgs.dll - ok
17:49:42.0408 3700 [ 9BB99503D6A4DD62569EDE9E5E2672A5 ] C:\Windows\System32\HotStartUserAgent.dll
17:49:42.0408 3700 C:\Windows\System32\HotStartUserAgent.dll - ok
17:49:42.0411 3700 [ 1F1CA9E99DD5BF918BE0BF30B5A42FDA ] C:\Windows\System32\MsCtfMonitor.dll
17:49:42.0411 3700 C:\Windows\System32\MsCtfMonitor.dll - ok
17:49:42.0413 3700 [ F09A9A1AD21FE618C4C8B0A0D830C886 ] C:\Windows\System32\msutb.dll
17:49:42.0413 3700 C:\Windows\System32\msutb.dll - ok
17:49:42.0416 3700 [ 8A87B146BBB01D02353FCB3FA6AF4B71 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccAlert.dll
17:49:42.0416 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccAlert.dll - ok
17:49:42.0418 3700 [ FF60B8C5BBE73B0790B3332783B6FD81 ] C:\Program Files (x86)\Google\Update\1.3.21.153\goopdate.dll
17:49:42.0418 3700 C:\Program Files (x86)\Google\Update\1.3.21.153\goopdate.dll - ok
17:49:42.0421 3700 [ C133AE62121E94C19365D1A4C399A0A9 ] C:\Program Files\MATLAB\R2013a\bin\win64\MATLABStartupAccelerator.exe
17:49:42.0421 3700 C:\Program Files\MATLAB\R2013a\bin\win64\MATLABStartupAccelerator.exe - ok
17:49:42.0424 3700 [ F5CEF064C7E6D95DA86B9D064A56A969 ] C:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll
17:49:42.0424 3700 C:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll - ok
17:49:42.0426 3700 [ D63F0353F632FB1EDE724173BE6DB5B5 ] C:\Windows\System32\esent.dll
17:49:42.0426 3700 C:\Windows\System32\esent.dll - ok
17:49:42.0428 3700 [ B2DB6ABA2E292235749B80A9C3DFA867 ] C:\Windows\SysWOW64\imagehlp.dll
17:49:42.0429 3700 C:\Windows\SysWOW64\imagehlp.dll - ok
17:49:42.0431 3700 [ 9E21B23AA8FBB50469BC2F86DD67E35A ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\LicenseManRes.dll
17:49:42.0431 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\LicenseManRes.dll - ok
17:49:42.0434 3700 [ 0CE4D3BD306DA6D1F6F233C403F5B667 ] C:\Windows\SysWOW64\msi.dll
17:49:42.0434 3700 C:\Windows\SysWOW64\msi.dll - ok
17:49:42.0436 3700 [ 4F096D96285E06CD51AEF7D2D3DE04DA ] C:\Program Files\MATLAB\R2013a\bin\win64\msvcp100.dll
17:49:42.0436 3700 C:\Program Files\MATLAB\R2013a\bin\win64\msvcp100.dll - ok
17:49:42.0438 3700 [ 3596A49738163B9B932BF3504FC27858 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\Cliproxy.dll
17:49:42.0438 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\Cliproxy.dll - ok
17:49:42.0440 3700 [ B9A8CBCFCD3EC9D2EA4740AF347BF108 ] C:\Windows\SysWOW64\mpr.dll
17:49:42.0440 3700 C:\Windows\SysWOW64\mpr.dll - ok
17:49:42.0443 3700 [ 487F44B08EFEAF5AD087878357B9403D ] C:\Windows\SysWOW64\pdh.dll
17:49:42.0443 3700 C:\Windows\SysWOW64\pdh.dll - ok
17:49:42.0445 3700 [ 9AE80F6A66B30E3ED8CDF858CF28B11B ] C:\Windows\System32\d3d10_1.dll
17:49:42.0445 3700 C:\Windows\System32\d3d10_1.dll - ok
17:49:42.0447 3700 [ 63F72417CA38D8FC8F53709649B589E3 ] C:\Windows\System32\d3d10_1core.dll
17:49:42.0447 3700 C:\Windows\System32\d3d10_1core.dll - ok
17:49:42.0450 3700 [ 66EA0B8175DA66C9A35AE52EDF462649 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\HITrayStatus.dll
17:49:42.0450 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\HITrayStatus.dll - ok
17:49:42.0453 3700 [ 029EB7FADF7B93404A29621C54663F87 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\RebootMgrEimProxy.dll
17:49:42.0453 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\RebootMgrEimProxy.dll - ok
17:49:42.0455 3700 [ 5028DB569820565669BE8C20E7B09EFF ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SAVTrayStatus.dll
17:49:42.0455 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SAVTrayStatus.dll - ok
17:49:42.0458 3700 [ 00D2C06A552F782C1F16ACF77DB765A5 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\atl100.dll
17:49:42.0458 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\atl100.dll - ok
17:49:42.0461 3700 [ 274107E5D68C8ECA950630ECEBA4D50C ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ProtectionUtil.dll
17:49:42.0461 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ProtectionUtil.dll - ok
17:49:42.0463 3700 [ 7C20BF752BBE3C581191C9FE121B662E ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\ProtectionUtilRes.dll
17:49:42.0463 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\ProtectionUtilRes.dll - ok
17:49:42.0466 3700 [ 8C78265193887D2F49913C1472F5ED48 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ProtectionProviderPS.dll
17:49:42.0466 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ProtectionProviderPS.dll - ok
17:49:42.0469 3700 [ D4200C21C0C961A8C995DC3053AC5414 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SavMainUI.dll
17:49:42.0469 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SavMainUI.dll - ok
17:49:42.0471 3700 [ 84174CA0E190BB9D1EFD0F005FE13B35 ] C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\GdiPlus.dll
17:49:42.0471 3700 C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\GdiPlus.dll - ok
17:49:42.0474 3700 [ A807596CB3CB377A1A687C9734D67A37 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\mfc100.dll
17:49:42.0474 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\mfc100.dll - ok
17:49:42.0476 3700 [ 8DFB5752FCE145A6B295093C0A8BE131 ] C:\Windows\System32\dxgi.dll
17:49:42.0476 3700 C:\Windows\System32\dxgi.dll - ok
17:49:42.0479 3700 [ DF3CA8D16BDED6A54977B30E66864D33 ] C:\Program Files\MATLAB\R2013a\bin\win64\msvcr100.dll
17:49:42.0479 3700 C:\Program Files\MATLAB\R2013a\bin\win64\msvcr100.dll - ok
17:49:42.0481 3700 [ 4C92EB7535CAA1681A77D928FBF9771F ] C:\Windows\System32\d3d11.dll
17:49:42.0481 3700 C:\Windows\System32\d3d11.dll - ok
17:49:42.0483 3700 [ 94DFBB481BF51158B216E23C5C1C9D6E ] C:\Windows\System32\certcli.dll
17:49:42.0483 3700 C:\Windows\System32\certcli.dll - ok
17:49:42.0486 3700 [ 35CB97CBC3EDC463418ED4997AAB29B6 ] C:\Windows\System32\pautoenr.dll
17:49:42.0486 3700 C:\Windows\System32\pautoenr.dll - ok
17:49:42.0488 3700 [ 263B26106606A010CF877472B535E4BB ] C:\Windows\System32\CertEnroll.dll
17:49:42.0488 3700 C:\Windows\System32\CertEnroll.dll - ok
17:49:42.0491 3700 [ D1F1D20DADF0C6882306126026E54EE2 ] C:\Windows\System32\aticfx64.dll
17:49:42.0491 3700 C:\Windows\System32\aticfx64.dll - ok
17:49:42.0493 3700 [ EED05D42D91835064703E2318552ED25 ] C:\Windows\System32\ExplorerFrame.dll
17:49:42.0493 3700 C:\Windows\System32\ExplorerFrame.dll - ok
17:49:42.0496 3700 [ 77996D797488835BABC7113871B2C3E9 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\SavMainUIRes.dll
17:49:42.0496 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\SavMainUIRes.dll - ok
17:49:42.0498 3700 [ 53223B673A3FA2F9A4D1C31C8D3F6CD8 ] C:\Windows\SysWOW64\dbghelp.dll
17:49:42.0498 3700 C:\Windows\SysWOW64\dbghelp.dll - ok
17:49:42.0501 3700 [ 1E634854354D35496630467EA7CD8F21 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\rtvscanPS.dll
17:49:42.0501 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\rtvscanPS.dll - ok
17:49:42.0503 3700 [ 0FC1568DCC1C373D67F3DCDBA02761AD ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\HPPProtectionProviderUI.dll
17:49:42.0504 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\HPPProtectionProviderUI.dll - ok
17:49:42.0506 3700 [ 75877F2EBDD58B3F19E4F2AF0E922220 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\HPPProtectionProviderUIRes.dll
17:49:42.0506 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\HPPProtectionProviderUIRes.dll - ok
17:49:42.0509 3700 [ 26996ED56B852AC365F50E6DCD86F081 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\BashEimProxy.dll
17:49:42.0509 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\BashEimProxy.dll - ok
17:49:42.0511 3700 [ 73EBAB393FF246E6777DBB91D544132B ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SMCTrayStatus.dll
17:49:42.0511 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SMCTrayStatus.dll - ok
17:49:42.0514 3700 [ 92F89516EA496AFB6138B09D47B2B6E7 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\PTPTrayStatus.dll
17:49:42.0514 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\PTPTrayStatus.dll - ok
17:49:42.0517 3700 [ 1C045AA40FC86CAF02D64B6218DC1DD6 ] C:\Windows\System32\atiuxp64.dll
17:49:42.0517 3700 C:\Windows\System32\atiuxp64.dll - ok
17:49:42.0519 3700 [ 6935BD1DD8CD2149DAC2C395F33EFF08 ] C:\Windows\System32\atidxx64.dll
17:49:42.0519 3700 C:\Windows\System32\atidxx64.dll - ok
17:49:42.0522 3700 [ 8726802EA4FBFFA3FD54FD2449BF51D4 ] C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler.exe
17:49:42.0522 3700 C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler.exe - ok
17:49:42.0524 3700 [ 026FAA54891857280886AC52EC743D7F ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\CidsTrayStatus.dll
17:49:42.0524 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\CidsTrayStatus.dll - ok
17:49:42.0527 3700 [ 2C199A8779DC6D118D8E74C34C83329D ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SNACTrayStatus.dll
17:49:42.0527 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SNACTrayStatus.dll - ok
17:49:42.0530 3700 [ 024352FEEC9042260BB4CFB4D79A206B ] C:\Windows\System32\EhStorShell.dll
17:49:42.0530 3700 C:\Windows\System32\EhStorShell.dll - ok
17:49:42.0532 3700 [ B079C2629E54EF8C82F3644CE6C9BFFC ] C:\Windows\System32\adsldp.dll
17:49:42.0532 3700 C:\Windows\System32\adsldp.dll - ok
17:49:42.0534 3700 [ 32802C0F6FC7C8F561B9D91F52A46421 ] C:\Windows\System32\cscui.dll
17:49:42.0534 3700 C:\Windows\System32\cscui.dll - ok
17:49:42.0536 3700 [ 011F0B067E47612F57C4ECE377D9C9DF ] C:\Windows\System32\activeds.dll
17:49:42.0537 3700 C:\Windows\System32\activeds.dll - ok
17:49:42.0539 3700 [ D9A08472D8D0218A0AE2C9D9F63EA531 ] C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler64.exe
17:49:42.0539 3700 C:\Program Files (x86)\Google\Update\1.3.21.153\GoogleCrashHandler64.exe - ok
17:49:42.0542 3700 [ C5A99A4C0DC9F0F5A95BA0C83D30A549 ] C:\Windows\SysWOW64\mstask.dll
17:49:42.0542 3700 C:\Windows\SysWOW64\mstask.dll - ok
17:49:42.0544 3700 [ 05F620B4B2E7DEB9409C0C6A4FEDD2A4 ] C:\Windows\System32\adsldpc.dll
17:49:42.0544 3700 C:\Windows\System32\adsldpc.dll - ok
17:49:42.0546 3700 [ 7EE5F17A21D9A9101207DF4BC37B085D ] C:\Windows\System32\cscdll.dll
17:49:42.0546 3700 C:\Windows\System32\cscdll.dll - ok
17:49:42.0549 3700 [ A7A8CA53D9C9FD90C07AB0EB38E5316B ] C:\Windows\System32\dbghelp.dll
17:49:42.0549 3700 C:\Windows\System32\dbghelp.dll - ok
17:49:42.0551 3700 [ 7BBF670114373CE6A203FA155A9E0D0A ] C:\Windows\System32\ntshrui.dll
17:49:42.0551 3700 C:\Windows\System32\ntshrui.dll - ok
17:49:42.0554 3700 [ 1D63F4366288B8A7595397E27010FD44 ] C:\Windows\System32\IconCodecService.dll
17:49:42.0554 3700 C:\Windows\System32\IconCodecService.dll - ok
17:49:42.0556 3700 [ 9D2A2369AB4B08A4905FE72DB104498F ] C:\Windows\System32\appinfo.dll
17:49:42.0556 3700 C:\Windows\System32\appinfo.dll - ok
17:49:42.0559 3700 [ 875041F01286C2E11B7800DC620FBCE5 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\ScanDlgsRes.dll
17:49:42.0559 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\ScanDlgsRes.dll - ok
17:49:42.0561 3700 [ 7B5D676945C1320F4BF81F02742AD14C ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\LDVPCtls.ocx
17:49:42.0561 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\LDVPCtls.ocx - ok
17:49:42.0564 3700 [ 025E7DBDB98866ED3CB2D4DDA70B364D ] C:\Windows\System32\runonce.exe
17:49:42.0564 3700 C:\Windows\System32\runonce.exe - ok
17:49:42.0566 3700 [ D44741F65A1D71F65814A12CF6E2400A ] C:\Windows\SysWOW64\runonce.exe
17:49:42.0566 3700 C:\Windows\SysWOW64\runonce.exe - ok
17:49:42.0569 3700 [ 05E75C75637F2A4D7AD8F26777571815 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\LDVPCtlsRes.dll
17:49:42.0569 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\LDVPCtlsRes.dll - ok
17:49:42.0571 3700 [ 12C45E3CB6D65F73209549E2D02ECA7A ] C:\Windows\SysWOW64\propsys.dll
17:49:42.0571 3700 C:\Windows\SysWOW64\propsys.dll - ok
17:49:42.0574 3700 [ 49E5753D923F1AC63B22D3DCB0B47E00 ] C:\Windows\System32\uDWM.dll
17:49:42.0574 3700 C:\Windows\System32\uDWM.dll - ok
17:49:42.0576 3700 [ 63DEE308A9F186925C8D12FF68FE64DD ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\LueEimRes.dll
17:49:42.0576 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\LueEimRes.dll - ok
17:49:42.0579 3700 [ AD7B9C14083B52BC532FBA5948342B98 ] C:\Windows\SysWOW64\cmd.exe
17:49:42.0579 3700 C:\Windows\SysWOW64\cmd.exe - ok
17:49:42.0581 3700 [ 62B5F40FAA8D860E489FE7874B019F50 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\LuCtl.dll
17:49:42.0581 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\LuCtl.dll - ok
17:49:42.0584 3700 [ ECE6E717E77ED3E5600DC240855CCBB0 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\LuEng.dll
17:49:42.0584 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\LuEng.dll - ok
17:49:42.0587 3700 [ BF95EA5809E3BBF55370F7CB309FEBD0 ] C:\Windows\System32\conhost.exe
17:49:42.0587 3700 C:\Windows\System32\conhost.exe - ok
17:49:42.0589 3700 [ 326C7F76A29897A892AA7726E91C1C67 ] C:\Windows\SysWOW64\winbrand.dll
17:49:42.0589 3700 C:\Windows\SysWOW64\winbrand.dll - ok
17:49:42.0592 3700 [ 4B78B431F225FD8624C5655CB1DE7B61 ] C:\Windows\System32\aelupsvc.dll
17:49:42.0592 3700 C:\Windows\System32\aelupsvc.dll - ok
17:49:42.0594 3700 [ 4FCC53B82D91607FB9AE24E617108BB2 ] C:\Windows\SysWOW64\ieframe.dll
17:49:42.0594 3700 C:\Windows\SysWOW64\ieframe.dll - ok
17:49:42.0597 3700 [ 60F4AEFA103D421EA4A40E31409B4756 ] C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
17:49:42.0597 3700 C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll - ok
17:49:42.0599 3700 [ 2C4A87CA8C00E98EFDCFA2E8EC9A3503 ] C:\Windows\SysWOW64\shdocvw.dll
17:49:42.0599 3700 C:\Windows\SysWOW64\shdocvw.dll - ok
17:49:42.0602 3700 [ DC20161CDB7DE4E9D2D16AC077E177D2 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SEPPolicyMonitor.dll
17:49:42.0602 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\SEPPolicyMonitor.dll - ok
17:49:42.0604 3700 [ DED125544F8B972F7331B6C33EC0115A ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\SubmissionsEimRes.dll
17:49:42.0604 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\SubmissionsEimRes.dll - ok
17:49:42.0607 3700 [ 178A34E5554DCE485E1262DDF027960C ] C:\Users\Nate\AppData\Local\Temp\F879D3F2-2E79-4945-AA05-E04CF2B190B5.exe
17:49:42.0607 3700 C:\Users\Nate\AppData\Local\Temp\F879D3F2-2E79-4945-AA05-E04CF2B190B5.exe - ok
17:49:42.0610 3700 [ F3D38A8793770999A00E85FBE86642C0 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\CIdsEimRes.dll
17:49:42.0610 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\CIdsEimRes.dll - ok
17:49:42.0612 3700 [ 1097F3035BAF46CED8B332B3564C5108 ] C:\Windows\SysWOW64\gpapi.dll
17:49:42.0612 3700 C:\Windows\SysWOW64\gpapi.dll - ok
17:49:42.0615 3700 [ 7B851A8018B1EA00A69707A390004884 ] C:\Windows\SysWOW64\cryptnet.dll
17:49:42.0615 3700 C:\Windows\SysWOW64\cryptnet.dll - ok
17:49:42.0617 3700 [ 6F8E3B7B70E1BBA871212940C1FBDF60 ] C:\Windows\SysWOW64\SensApi.dll
17:49:42.0617 3700 C:\Windows\SysWOW64\SensApi.dll - ok
17:49:42.0620 3700 [ 3BCECD87AB4E6743BFB45B352AD1A529 ] C:\Windows\SysWOW64\WindowsCodecs.dll
17:49:42.0620 3700 C:\Windows\SysWOW64\WindowsCodecs.dll - ok
17:49:42.0622 3700 [ 846D0E4DB261CFAF363902E41498E961 ] C:\Windows\SysWOW64\EhStorShell.dll
17:49:42.0622 3700 C:\Windows\SysWOW64\EhStorShell.dll - ok
17:49:42.0624 3700 [ EB77DB354791A5932CA559B6F6374E95 ] C:\Windows\SysWOW64\ntshrui.dll
17:49:42.0624 3700 C:\Windows\SysWOW64\ntshrui.dll - ok
17:49:42.0627 3700 [ 8B74CEC6980D4816B0037AE9A27E538F ] C:\Windows\SysWOW64\slc.dll
17:49:42.0627 3700 C:\Windows\SysWOW64\slc.dll - ok
17:49:42.0629 3700 [ 827CB0D6C3F8057EA037FF271F8E9795 ] C:\Windows\SysWOW64\imageres.dll
17:49:42.0629 3700 C:\Windows\SysWOW64\imageres.dll - ok
17:49:42.0631 3700 [ 752F8E96BAB993517838315508FB82CB ] C:\Windows\SysWOW64\perfproc.dll
17:49:42.0631 3700 C:\Windows\SysWOW64\perfproc.dll - ok
17:49:42.0634 3700 [ B92E9318F7E4AEF633B8EC3A873565AF ] C:\Windows\SysWOW64\perfdisk.dll
17:49:42.0634 3700 C:\Windows\SysWOW64\perfdisk.dll - ok
17:49:42.0636 3700 [ 40CAEEE0EAF1B8569F7C8DF6420F2CB9 ] C:\Windows\SysWOW64\sfc.dll
17:49:42.0636 3700 C:\Windows\SysWOW64\sfc.dll - ok
17:49:42.0638 3700 [ 84799328D87B3091A3BDD251E1AD31F9 ] C:\Windows\SysWOW64\sfc_os.dll
17:49:42.0638 3700 C:\Windows\SysWOW64\sfc_os.dll - ok
17:49:42.0641 3700 [ 162D247E995EAEBF3EF4289069E1111C ] C:\Windows\SysWOW64\devrtl.dll
17:49:42.0641 3700 C:\Windows\SysWOW64\devrtl.dll - ok
17:49:42.0643 3700 [ 1FCB1A72BF5C784F7358E6BEF38E4571 ] C:\Windows\System32\timedate.cpl
17:49:42.0643 3700 C:\Windows\System32\timedate.cpl - ok
17:49:42.0645 3700 [ E6F0F82788E8BD0F7A616350EFA0761C ] C:\Windows\System32\actxprxy.dll
17:49:42.0645 3700 C:\Windows\System32\actxprxy.dll - ok
17:49:42.0648 3700 [ 23B001185B7C3CB1F4BDEB143E6B45B7 ] C:\Windows\System32\shdocvw.dll
17:49:42.0648 3700 C:\Windows\System32\shdocvw.dll - ok
17:49:42.0650 3700 [ A0A65D306A5490D2EB8E7DE66898ECFD ] C:\Windows\System32\linkinfo.dll
17:49:42.0650 3700 C:\Windows\System32\linkinfo.dll - ok
17:49:42.0653 3700 [ 3504B34CD2DE00BA3CC1A195F1B739BD ] C:\Windows\System32\gameux.dll
17:49:42.0653 3700 C:\Windows\System32\gameux.dll - ok
17:49:42.0655 3700 [ 1EAC1A8CA6874BF5B15E2EFB9A9A7B86 ] C:\Windows\System32\msftedit.dll
17:49:42.0655 3700 C:\Windows\System32\msftedit.dll - ok
17:49:42.0657 3700 [ 69754747274B76E7FAF287239333D7E6 ] C:\Windows\System32\msiltcfg.dll
17:49:42.0657 3700 C:\Windows\System32\msiltcfg.dll - ok
17:49:42.0660 3700 [ 112183DF91C9BAECB498E4A86ECDE598 ] C:\Windows\System32\msls31.dll
17:49:42.0660 3700 C:\Windows\System32\msls31.dll - ok
17:49:42.0662 3700 [ 7DBA84667DC18877AEF693E3543DFAD7 ] C:\Program Files\Common Files\Microsoft Shared\ink\tiptsf.dll
17:49:42.0662 3700 C:\Program Files\Common Files\Microsoft Shared\ink\tiptsf.dll - ok
17:49:42.0665 3700 [ 4C2C4640BF23AAFCF90519E0F34436CE ] C:\Windows\System32\DeviceCenter.dll
17:49:42.0665 3700 C:\Windows\System32\DeviceCenter.dll - ok
17:49:42.0667 3700 [ DB333A5F69B00A6B550901A5C854929F ] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
17:49:42.0667 3700 C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe - ok
17:49:42.0670 3700 [ 6ECE746BB283927604DA192CA0D1403D ] C:\Windows\System32\spool\drivers\x64\3\E_YATIJJE.EXE
17:49:42.0670 3700 C:\Windows\System32\spool\drivers\x64\3\E_YATIJJE.EXE - ok
17:49:42.0673 3700 [ 4561E1427C32B47DCC7ACF30F95A8775 ] C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe
17:49:42.0673 3700 C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe - ok
17:49:42.0675 3700 [ 24F4B480F335A6C724AF352253C5D98B ] C:\Windows\System32\thumbcache.dll
17:49:42.0675 3700 C:\Windows\System32\thumbcache.dll - ok
17:49:42.0678 3700 [ 04CB7C8FDC6D9640DD82A527208F72C4 ] C:\Windows\System32\UIAnimation.dll
17:49:42.0678 3700 C:\Windows\System32\UIAnimation.dll - ok
17:49:42.0680 3700 [ A08C010D859F8EB42BDD7E1D55B8CA27 ] C:\Windows\System32\mscoree.dll
17:49:42.0680 3700 C:\Windows\System32\mscoree.dll - ok
17:49:42.0683 3700 [ 199AB17FE18AB8AFC25205D1C9B0A13B ] C:\Users\Nate\AppData\Local\Google\Desktop\Install\{d73be368-404e-0f1a-fb7f-ced1fff1f379}\❤≸⋙\Ⱒ☠⍨\ﯹ๛\{d73be368-404e-0f1a-fb7f-ced1fff1f379}\GoogleUpdate.exe
17:49:42.0683 3700 C:\Users\Nate\AppData\Local\Google\Desktop\Install\{d73be368-404e-0f1a-fb7f-ced1fff1f379}\❤≸⋙\Ⱒ☠⍨\ﯹ๛\{d73be368-404e-0f1a-fb7f-ced1fff1f379}\GoogleUpdate.exe - ok
17:49:42.0686 3700 [ 405F4D32D2185F1F1BD753D8EEAFFB3A ] C:\Windows\System32\networkexplorer.dll
17:49:42.0686 3700 C:\Windows\System32\networkexplorer.dll - ok
17:49:42.0687 3700 [ 667224FF4FD48B182F574AA96E93267C ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscoreei.dll
17:49:42.0687 3700 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscoreei.dll - ok
17:49:42.0690 3700 [ 091449575D82921B94BBEAF5427E1C1E ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll
17:49:42.0690 3700 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll - ok
17:49:42.0693 3700 [ 4CB7CEE3F7540B0BEDBD158D75F06509 ] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
17:49:42.0693 3700 C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe - ok
17:49:42.0696 3700 [ D63797E8E7781EE1500A810CB6194FA6 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
17:49:42.0696 3700 C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe - ok
17:49:42.0698 3700 [ 9989169651234D5B9BF3C8FF0FC38974 ] C:\Windows\System32\spool\drivers\x64\3\E_YLMWJJE.DLL
17:49:42.0698 3700 C:\Windows\System32\spool\drivers\x64\3\E_YLMWJJE.DLL - ok
17:49:42.0701 3700 [ 324AC27A0DF6E9758EF4EB837F2EA7B0 ] C:\Windows\System32\spool\drivers\x64\3\E_YASRJJE.DLL
17:49:42.0701 3700 C:\Windows\System32\spool\drivers\x64\3\E_YASRJJE.DLL - ok
17:49:42.0703 3700 [ 86F33213C450FED3C7E32F9473415E7E ] C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
17:49:42.0703 3700 C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe - ok
17:49:42.0706 3700 [ DA6C4B5FEEEA4DC7162B5D0C055EB967 ] C:\Windows\System32\imaadp32.acm
17:49:42.0706 3700 C:\Windows\System32\imaadp32.acm - ok
17:49:42.0709 3700 [ 8608FB2C0383CDECD405E2611F04ED68 ] C:\Windows\SysWOW64\atiadlxy.dll
17:49:42.0709 3700 C:\Windows\SysWOW64\atiadlxy.dll - ok
17:49:42.0711 3700 [ 1C81E1BEA4847F406BBDB74D19721CE6 ] C:\Windows\System32\msg711.acm
17:49:42.0711 3700 C:\Windows\System32\msg711.acm - ok
17:49:42.0714 3700 [ 0B0E075EF0AE1CD8526D6D851E684224 ] C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXRCV.exe
17:49:42.0714 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXRCV.exe - ok
17:49:42.0716 3700 [ E5B9A2FA94D21C44DA2B898DC326B0C2 ] C:\Windows\System32\msgsm32.acm
17:49:42.0716 3700 C:\Windows\System32\msgsm32.acm - ok
17:49:42.0719 3700 [ 55436C4848E1EB25644C70EF78D53FF9 ] C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXSTM.exe
17:49:42.0719 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXSTM.exe - ok
17:49:42.0721 3700 [ 5046E55184021406C27E8D48A1B2C9D2 ] C:\Windows\System32\l3codeca.acm
17:49:42.0721 3700 C:\Windows\System32\l3codeca.acm - ok
17:49:42.0724 3700 [ 329FEB3452982A377726DEDAFE9BBDF0 ] C:\Windows\System32\msadp32.acm
17:49:42.0724 3700 C:\Windows\System32\msadp32.acm - ok
17:49:42.0726 3700 [ 242713213B95368F9A3C1563272C0028 ] C:\Windows\System32\spool\drivers\x64\3\E_YASOJJE.DLL
17:49:42.0726 3700 C:\Windows\System32\spool\drivers\x64\3\E_YASOJJE.DLL - ok
17:49:42.0729 3700 [ 7B201227AA04212E0D15752105678E3D ] C:\Program Files\Internet Explorer\ieproxy.dll
17:49:42.0729 3700 C:\Program Files\Internet Explorer\ieproxy.dll - ok
17:49:42.0731 3700 [ 1EBE9524683C7C4EED8B8BC93FB6FBCC ] C:\Windows\SysWOW64\fltLib.dll
17:49:42.0731 3700 C:\Windows\SysWOW64\fltLib.dll - ok
17:49:42.0733 3700 [ 9E4B0E7472B4CEBA9E17F440B8CB0AB8 ] C:\Windows\SysWOW64\winspool.drv
17:49:42.0734 3700 C:\Windows\SysWOW64\winspool.drv - ok
17:49:42.0736 3700 [ 1E09DFA4048196C9D3CC40C485A39422 ] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
17:49:42.0736 3700 C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe - ok
17:49:42.0738 3700 [ 936F728E04ACCF3F38801CFFCF1E3F40 ] C:\Windows\SysWOW64\oledlg.dll
17:49:42.0738 3700 C:\Windows\SysWOW64\oledlg.dll - ok
17:49:42.0741 3700 [ 9AB16E665D109F2B72A13B3C3EBA4860 ] C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXLDB.dll
17:49:42.0741 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXLDB.dll - ok
17:49:42.0743 3700 [ 5F639198C4137075DA50E61C23963C11 ] C:\Windows\System32\drprov.dll
17:49:42.0743 3700 C:\Windows\System32\drprov.dll - ok
17:49:42.0746 3700 [ 48BE298F7FD1BEF4D8FBACB04D8D95C4 ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
17:49:42.0746 3700 C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe - ok
17:49:42.0748 3700 [ BC566D17914B07ABAAB3A5A385CC3300 ] C:\Windows\System32\ntlanman.dll
17:49:42.0748 3700 C:\Windows\System32\ntlanman.dll - ok
17:49:42.0751 3700 [ 8E01332CC4B68BC6B5B7EFFE374442AA ] C:\Windows\SysWOW64\oleacc.dll
17:49:42.0751 3700 C:\Windows\SysWOW64\oleacc.dll - ok
17:49:42.0753 3700 [ B0B59E13EEC2FA1584DE87B72B56E370 ] C:\Program Files (x86)\EPSON Software\FAX Utility\Resource\FUCMNMSG.dll
17:49:42.0753 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\Resource\FUCMNMSG.dll - ok
17:49:42.0756 3700 [ B3A33600DCDFB84D7FBE09ADEB1C9B8A ] C:\Windows\System32\davclnt.dll
17:49:42.0756 3700 C:\Windows\System32\davclnt.dll - ok
17:49:42.0758 3700 [ 263E9A047D17CD50BAA9D3C02910D18D ] C:\Windows\System32\oledlg.dll
17:49:42.0758 3700 C:\Windows\System32\oledlg.dll - ok
17:49:42.0761 3700 [ 3BD79A1F6D2EA0FDDEA3F8914B2A6A0C ] C:\Program Files (x86)\VirtualCloneDrive\VCDDaemon.exe
17:49:42.0761 3700 C:\Program Files (x86)\VirtualCloneDrive\VCDDaemon.exe - ok
17:49:42.0763 3700 [ 45B24A357C801CE62052FE0CDC8BD4D2 ] C:\Windows\System32\davhlpr.dll
17:49:42.0763 3700 C:\Windows\System32\davhlpr.dll - ok
17:49:42.0766 3700 [ A88110E864EEB5B2334F645D00591AC3 ] C:\Program Files (x86)\EPSON Software\FAX Utility\Resource\FUFAXRCV.dll
17:49:42.0766 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\Resource\FUFAXRCV.dll - ok
17:49:42.0768 3700 [ 68F07A4750EEC27B4F6E85015798F26E ] C:\Windows\System32\spool\drivers\x64\3\E_YLGRJJE.DLL
17:49:42.0768 3700 C:\Windows\System32\spool\drivers\x64\3\E_YLGRJJE.DLL - ok
17:49:42.0771 3700 [ 4715F8F8CDBFFF2728BA38B789A1D7C7 ] C:\Windows\System32\wpdshext.dll
17:49:42.0771 3700 C:\Windows\System32\wpdshext.dll - ok
17:49:42.0773 3700 [ D995CBBC28A615659A8A0CE6A9C9856D ] C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXCFG.dll
17:49:42.0773 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXCFG.dll - ok
17:49:42.0776 3700 [ 760248FA64EFD7C18ADEB754C8AC89EB ] C:\Windows\SysWOW64\ElbyVCD.dll
17:49:42.0776 3700 C:\Windows\SysWOW64\ElbyVCD.dll - ok
17:49:42.0778 3700 [ ED14CE57B40A814C4A385EDB603CEC3A ] C:\Windows\SysWOW64\ElbyCDIO.dll
17:49:42.0778 3700 C:\Windows\SysWOW64\ElbyCDIO.dll - ok
17:49:42.0781 3700 [ 18BC58E7F9C49C2979642118B64A16EC ] C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXCSR.dll
17:49:42.0781 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXCSR.dll - ok
17:49:42.0783 3700 [ 7A6F66796DF720708FF522421F115C40 ] C:\Program Files (x86)\EPSON Software\FAX Utility\Library\FUDRVUTL.dll
17:49:42.0783 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\Library\FUDRVUTL.dll - ok
17:49:42.0786 3700 [ 2031DCC0083A134AF9451CD1402FFCE3 ] C:\Program Files (x86)\EPSON Software\Event Manager\LcMgr.dll
17:49:42.0786 3700 C:\Program Files (x86)\EPSON Software\Event Manager\LcMgr.dll - ok
17:49:42.0789 3700 [ C1070A91B14A4E12D90B1A421C72F88D ] C:\Program Files (x86)\EPSON Software\FAX Utility\FUSVCCLT.dll
17:49:42.0789 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\FUSVCCLT.dll - ok
17:49:42.0791 3700 [ 9076AB590F112D7230694B570498B410 ] C:\Program Files (x86)\EPSON Software\FAX Utility\FUIMGCDC.dll
17:49:42.0791 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\FUIMGCDC.dll - ok
17:49:42.0794 3700 [ 9110FFAD124283F37D38771BB60556AF ] C:\Windows\System32\dsound.dll
17:49:42.0794 3700 C:\Windows\System32\dsound.dll - ok
17:49:42.0796 3700 [ FF2AA9A817482AEC14980F07C94E26D0 ] C:\Program Files (x86)\EPSON Software\FAX Utility\EbpD4Fax.dll
17:49:42.0796 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\EbpD4Fax.dll - ok
17:49:42.0799 3700 [ 8815A00387ADE03CD685405E7ADB2552 ] C:\Program Files (x86)\EPSON Software\FAX Utility\FULEPP.dll
17:49:42.0799 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\FULEPP.dll - ok
17:49:42.0802 3700 [ 66CBA380C78A1D1649E9B6CC41763B02 ] C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe
17:49:42.0803 3700 C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe - ok
17:49:42.0805 3700 [ B846321446376F84C1065AAFF1D7BDB2 ] C:\Program Files (x86)\EPSON Software\FAX Utility\FUADRFIL.dll
17:49:42.0805 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\FUADRFIL.dll - ok
17:49:42.0807 3700 [ 0805289E121F3E3C458C970B08314EB2 ] C:\Windows\System32\RtkCfg64.dll
17:49:42.0807 3700 C:\Windows\System32\RtkCfg64.dll - ok
17:49:42.0810 3700 [ 8002143CF9031F2FC92888164E22DBEB ] C:\Program Files (x86)\EPSON Software\FAX Utility\Resource\FULEPPRes.dll
17:49:42.0810 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\Resource\FULEPPRes.dll - ok
17:49:42.0812 3700 [ E01A6CF39DF4929633302E9B47C71968 ] C:\Program Files (x86)\EPSON Software\FAX Utility\FUSTMMSG.dll
17:49:42.0813 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\FUSTMMSG.dll - ok
17:49:42.0815 3700 [ 803E0619BCC2996C6DE695B13877B899 ] C:\Program Files (x86)\EPSON Software\FAX Utility\FUVERDLG.dll
17:49:42.0815 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\FUVERDLG.dll - ok
17:49:42.0818 3700 [ 0385325946BF0B630EDF2CC6AD71C2BE ] C:\Program Files (x86)\EPSON Software\FAX Utility\Library\FUPRBDEV.dll
17:49:42.0818 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\Library\FUPRBDEV.dll - ok
17:49:42.0820 3700 [ 5D3B3BA5050EED0C75013DD9804335B9 ] C:\Program Files (x86)\EPSON Software\FAX Utility\Resource\FUFAXCFGRes.dll
17:49:42.0820 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\Resource\FUFAXCFGRes.dll - ok
17:49:42.0823 3700 [ 5DD9F33B754196CFB8CE8773ACC609EF ] C:\Program Files (x86)\EPSON Software\FAX Utility\fufaxtif.dll
17:49:42.0823 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\fufaxtif.dll - ok
17:49:42.0826 3700 [ 1207A51D603E98758013EFCB3E7FA742 ] C:\Program Files (x86)\EPSON Software\FAX Utility\Library\ENCM.dll
17:49:42.0826 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\Library\ENCM.dll - ok
17:49:42.0828 3700 [ F2A24E4AEC0F8D5DBAB10CB87A8EFED2 ] C:\Windows\SysWOW64\sti.dll
17:49:42.0828 3700 C:\Windows\SysWOW64\sti.dll - ok
17:49:42.0831 3700 [ 03AB2A2E426C2AD400AC8315226347F8 ] C:\Windows\System32\EhStorAPI.dll
17:49:42.0831 3700 C:\Windows\System32\EhStorAPI.dll - ok
17:49:42.0833 3700 [ 08F6335D55310C334B13B9616E61D13D ] C:\Windows\System32\ieframe.dll
17:49:42.0833 3700 C:\Windows\System32\ieframe.dll - ok
17:49:42.0836 3700 [ 51A34398C23DD48AA9614C2C7BFE222A ] C:\Program Files (x86)\EPSON Software\Event Manager\ScanEngine30.dll
17:49:42.0836 3700 C:\Program Files (x86)\EPSON Software\Event Manager\ScanEngine30.dll - ok
17:49:42.0838 3700 [ D3AF5CFA390814ACA3965B34CA2DDC5B ] C:\Program Files (x86)\EPSON Software\FAX Utility\Library\ENUTIL.dll
17:49:42.0838 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\Library\ENUTIL.dll - ok
17:49:42.0841 3700 [ 1A1CEF512F488D45BB624C148E53356D ] C:\Program Files (x86)\EPSON Software\Event Manager\ScnMgr10.dll
17:49:42.0841 3700 C:\Program Files (x86)\EPSON Software\Event Manager\ScnMgr10.dll - ok
17:49:42.0843 3700 [ 930C61F63FB900CEE15D4EEB98BD5238 ] C:\Program Files (x86)\EPSON Software\Event Manager\ScnCom10.dll
17:49:42.0843 3700 C:\Program Files (x86)\EPSON Software\Event Manager\ScnCom10.dll - ok
17:49:42.0846 3700 [ E79A397561EDED918DAF43563CD28372 ] C:\Program Files (x86)\EPSON Software\FAX Utility\Library\ENNW.dll
17:49:42.0846 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\Library\ENNW.dll - ok
17:49:42.0849 3700 [ 903E85BA90D0A9D32368B200634B2B67 ] C:\Program Files (x86)\EPSON Software\Event Manager\ScnEps25.dll
17:49:42.0849 3700 C:\Program Files (x86)\EPSON Software\Event Manager\ScnEps25.dll - ok
17:49:42.0851 3700 [ CB21CD39637AC13F3455454B2F648257 ] C:\Windows\System32\msvcr100_clr0400.dll
17:49:42.0851 3700 C:\Windows\System32\msvcr100_clr0400.dll - ok
17:49:42.0854 3700 [ AF58E8CC1DAB877BFF3328108777D4B3 ] C:\Program Files (x86)\EPSON Software\FAX Utility\Library\FUDEVCOM.dll
17:49:42.0854 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\Library\FUDEVCOM.dll - ok
17:49:42.0856 3700 [ A9A8FED9CCEE587A956879F35394562C ] C:\Program Files (x86)\EPSON Software\FAX Utility\Library\FUSNMPUT.dll
17:49:42.0856 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\Library\FUSNMPUT.dll - ok
17:49:42.0859 3700 [ 163A95975E1D8819E653AA3E961371CA ] C:\Windows\twain_32.dll
17:49:42.0859 3700 C:\Windows\twain_32.dll - ok
17:49:42.0861 3700 [ 6357E2B68753A1F5CF4A68A25C4FD14A ] C:\Windows\SysWOW64\wsnmp32.dll
17:49:42.0861 3700 C:\Windows\SysWOW64\wsnmp32.dll - ok
17:49:42.0864 3700 [ 971559CD4D3FB291320A8EE2AABE3876 ] C:\Program Files (x86)\EPSON Software\FAX Utility\FUUSBHLP.dll
17:49:42.0864 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\FUUSBHLP.dll - ok
17:49:42.0866 3700 [ 0302B9F7322651E8E21FE0326A7CA37B ] C:\Program Files (x86)\EPSON Software\FAX Utility\Resource\FUFAXSTM.dll
17:49:42.0866 3700 C:\Program Files (x86)\EPSON Software\FAX Utility\Resource\FUFAXSTM.dll - ok
17:49:42.0869 3700 [ 8FB33235FBECF05F4D9A21A82E276C7B ] C:\Windows\assembly\NativeImages_v4.0.30319_64\mscorlib\cb653b6b8da0966098d70da98cba1ef3\mscorlib.ni.dll
17:49:42.0869 3700 C:\Windows\assembly\NativeImages_v4.0.30319_64\mscorlib\cb653b6b8da0966098d70da98cba1ef3\mscorlib.ni.dll - ok
17:49:42.0872 3700 [ 58B8702C20DE211D1FCB248D2FDD71D1 ] C:\Program Files (x86)\Adobe\Reader 11.0\Reader\reader_sl.exe
17:49:42.0872 3700 C:\Program Files (x86)\Adobe\Reader 11.0\Reader\reader_sl.exe - ok
17:49:42.0874 3700 [ E3C817F7FE44CC870ECDBCBC3EA36132 ] C:\Windows\SysWOW64\msvcp100.dll
17:49:42.0874 3700 C:\Windows\SysWOW64\msvcp100.dll - ok
17:49:42.0877 3700 [ 0E37FBFA79D349D672456923EC5FBBE3 ] C:\Windows\SysWOW64\msvcr100.dll
17:49:42.0877 3700 C:\Windows\SysWOW64\msvcr100.dll - ok
17:49:42.0879 3700 [ FB2BE4175BF06D592F2C95E5863CA198 ] C:\Windows\twain_32\escndv\wf3520.ds
17:49:42.0879 3700 C:\Windows\twain_32\escndv\wf3520.ds - ok
17:49:42.0881 3700 [ 0503D60AFCED7CB601C7CA70C08E8CAC ] C:\Windows\twain_32\wiatwain.ds
17:49:42.0881 3700 C:\Windows\twain_32\wiatwain.ds - ok
17:49:42.0884 3700 [ 80279007CAB3549A5999348BD0C23732 ] C:\Windows\SysWOW64\wiadss.dll
17:49:42.0884 3700 C:\Windows\SysWOW64\wiadss.dll - ok
17:49:42.0886 3700 [ B087F2B901570F6EF62F6C2E01A480F3 ] C:\Windows\SysWOW64\wiatrace.dll
17:49:42.0886 3700 C:\Windows\SysWOW64\wiatrace.dll - ok
17:49:42.0889 3700 [ 3B65DE77A896E55A2705B9C14254484C ] C:\Program Files (x86)\EPSON Software\Event Manager\EPNSM.dll
17:49:42.0889 3700 C:\Program Files (x86)\EPSON Software\Event Manager\EPNSM.dll - ok
17:49:42.0891 3700 [ 637124CDBFF5819CB8A8478838A33048 ] C:\Program Files (x86)\EPSON Software\Event Manager\ESPSUTL.dll
17:49:42.0891 3700 C:\Program Files (x86)\EPSON Software\Event Manager\ESPSUTL.dll - ok
17:49:42.0894 3700 [ 6D137963730144698CBD10F202E9F251 ] C:\Windows\System32\wersvc.dll
17:49:42.0894 3700 C:\Windows\System32\wersvc.dll - ok
17:49:42.0896 3700 [ F152755F131ADFE452D534F4E9383590 ] C:\Windows\System32\Faultrep.dll
17:49:42.0896 3700 C:\Windows\System32\Faultrep.dll - ok
17:49:42.0899 3700 [ 5FEAB868CAEDBBD1B7A145CA8261E4AA ] C:\Windows\SysWOW64\WerFault.exe
17:49:42.0899 3700 C:\Windows\SysWOW64\WerFault.exe - ok
17:49:42.0901 3700 [ 590D5C506044FE02FF7643E32FF9BDAC ] C:\Windows\SysWOW64\wer.dll
17:49:42.0901 3700 C:\Windows\SysWOW64\wer.dll - ok
17:49:42.0903 3700 [ 1E8D06AAE74FED674C1156B3FEA911C2 ] C:\Windows\SysWOW64\Faultrep.dll
17:49:42.0903 3700 C:\Windows\SysWOW64\Faultrep.dll - ok
17:49:42.0906 3700 [ 8E8C92DD50F6B34907813AFDC0C8F7DD ] C:\Windows\SysWOW64\dbgeng.dll
17:49:42.0906 3700 C:\Windows\SysWOW64\dbgeng.dll - ok
17:49:42.0908 3700 [ 9108540E866F75C7AF2B91DD921A8091 ] C:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll
17:49:42.0908 3700 C:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll - ok
17:49:42.0911 3700 [ C3761661C17C2248A9379A8FB89E3DE1 ] C:\Windows\System32\stobject.dll
17:49:42.0911 3700 C:\Windows\System32\stobject.dll - ok
17:49:42.0913 3700 [ F832EEEA97CDDA1AF577E721F652A0D1 ] C:\Windows\System32\batmeter.dll
17:49:42.0913 3700 C:\Windows\System32\batmeter.dll - ok
17:49:42.0915 3700 [ BB3C7E48088D37417EB37F1A9E3D2449 ] C:\Windows\SysWOW64\werui.dll
17:49:42.0916 3700 C:\Windows\SysWOW64\werui.dll - ok
17:49:42.0918 3700 [ 2D2A6EC8EAD30EC3ACE2FD6FB1B3E122 ] C:\Windows\System32\prnfldr.dll
17:49:42.0918 3700 C:\Windows\System32\prnfldr.dll - ok
17:49:42.0920 3700 [ EE06B85BC69F18826302348A2AD089E0 ] C:\Windows\SysWOW64\dui70.dll
17:49:42.0920 3700 C:\Windows\SysWOW64\dui70.dll - ok
17:49:42.0923 3700 [ 4E81439902079C348B61D7FF027FE147 ] C:\Windows\System32\StructuredQuery.dll
17:49:42.0923 3700 C:\Windows\System32\StructuredQuery.dll - ok
17:49:42.0925 3700 [ 8784236EED5079493DA9FC95B28B89F8 ] C:\Windows\System32\WerFault.exe
17:49:42.0925 3700 C:\Windows\System32\WerFault.exe - ok
17:49:42.0928 3700 [ 6E1F8165C365D35C8E3C045AF0CDD481 ] C:\Windows\SysWOW64\duser.dll
17:49:42.0928 3700 C:\Windows\SysWOW64\duser.dll - ok
17:49:42.0930 3700 [ 42A9CB6906D9A8BEDC83B57163E62924 ] C:\Windows\System32\DXP.dll
17:49:42.0930 3700 C:\Windows\System32\DXP.dll - ok
17:49:42.0932 3700 [ 102CF6879887BBE846A00C459E6D4ABC ] C:\Windows\SysWOW64\riched20.dll
17:49:42.0932 3700 C:\Windows\SysWOW64\riched20.dll - ok
17:49:42.0935 3700 [ 2BC7C9FD0A9F2C9AFC373F3AD1EE3891 ] C:\Windows\System32\Syncreg.dll
17:49:42.0935 3700 C:\Windows\System32\Syncreg.dll - ok
17:49:42.0937 3700 [ 7BF5EA753D4CC056B9462A02AC51B160 ] C:\Windows\SysWOW64\xmllite.dll
17:49:42.0937 3700 C:\Windows\SysWOW64\xmllite.dll - ok
17:49:42.0939 3700 [ C836175870E00ACC546066632E15BD10 ] C:\Windows\ehome\ehSSO.dll
17:49:42.0939 3700 C:\Windows\ehome\ehSSO.dll - ok
17:49:42.0941 3700 [ A42F2C1EB3B66C54FB3C7B79D30C1A6D ] C:\Windows\System32\netshell.dll
17:49:42.0941 3700 C:\Windows\System32\netshell.dll - ok
17:49:42.0943 3700 [ 75FAC614A3E3C18A0B8285BC4305E5D9 ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\nlssorting.dll
17:49:42.0943 3700 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\nlssorting.dll - ok
17:49:42.0946 3700 [ 3D3CBD1847F980FB03343A63671E7886 ] C:\Windows\SysWOW64\schannel.dll
17:49:42.0946 3700 C:\Windows\SysWOW64\schannel.dll - ok
17:49:42.0948 3700 [ 51621E4B29575A8CF429E6F6DA58A577 ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clrjit.dll
17:49:42.0948 3700 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clrjit.dll - ok
17:49:42.0951 3700 [ E7368F0A8D19445EAF5C5D0DBB8B8DAB ] C:\Windows\System32\AltTab.dll
17:49:42.0951 3700 C:\Windows\System32\AltTab.dll - ok
17:49:42.0953 3700 [ C8FDF0FA9E97E2FAAF3F814716AAA881 ] C:\Windows\System32\WPDShServiceObj.dll
17:49:42.0953 3700 C:\Windows\System32\WPDShServiceObj.dll - ok
17:49:42.0956 3700 [ F11A57E91FDAECFB41A5CB21EB1EBC8E ] C:\Windows\System32\dssenh.dll
17:49:42.0956 3700 C:\Windows\System32\dssenh.dll - ok
17:49:42.0958 3700 [ 4F3CD1C59EA71401E155C432BCECE180 ] C:\Windows\System32\PortableDeviceTypes.dll
17:49:42.0958 3700 C:\Windows\System32\PortableDeviceTypes.dll - ok
17:49:42.0961 3700 [ AD31942BDF3D594C404874613BC2FE4D ] C:\Windows\System32\SearchIndexer.exe
17:49:42.0961 3700 C:\Windows\System32\SearchIndexer.exe - ok
17:49:42.0963 3700 [ 10F815BE90A66AAFC6C713D1BD626064 ] C:\Windows\System32\pnidui.dll
17:49:42.0963 3700 C:\Windows\System32\pnidui.dll - ok
17:49:42.0966 3700 [ 75486926F2874772AFF158F0E451808E ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System\38cbf4b6872aa8f5e31d3421acdfd80d\System.ni.dll
17:49:42.0966 3700 C:\Windows\assembly\NativeImages_v4.0.30319_64\System\38cbf4b6872aa8f5e31d3421acdfd80d\System.ni.dll - ok
17:49:42.0968 3700 [ EDF4DEC1041EEAF78A0B1E16C1BB4CC4 ] C:\Windows\System32\fthsvc.dll
17:49:42.0968 3700 C:\Windows\System32\fthsvc.dll - ok
17:49:42.0970 3700 [ B9F0A4020AA98B7A20287BF7FE99A1FD ] C:\Windows\System32\QUTIL.DLL
17:49:42.0970 3700 C:\Windows\System32\QUTIL.DLL - ok
17:49:42.0973 3700 [ 234AFA322624B3203A2E720F08292B03 ] C:\Windows\System32\cscobj.dll
17:49:42.0973 3700 C:\Windows\System32\cscobj.dll - ok
17:49:42.0975 3700 [ 6C597496AB646EB9F31C68241050F771 ] C:\Windows\System32\tquery.dll
17:49:42.0975 3700 C:\Windows\System32\tquery.dll - ok
17:49:42.0977 3700 [ 92DBF0A4C9239169010FC6E07859C82E ] C:\Windows\System32\ActionCenter.dll
17:49:42.0978 3700 C:\Windows\System32\ActionCenter.dll - ok
17:49:42.0980 3700 [ F7A256EC899C72B4ECDD2C02CB592EFD ] C:\Windows\System32\bthprops.cpl
17:49:42.0980 3700 C:\Windows\System32\bthprops.cpl - ok
17:49:42.0982 3700 [ 8569E35D00F45972E506502EEE622BA4 ] C:\Windows\System32\srchadmin.dll
17:49:42.0982 3700 C:\Windows\System32\srchadmin.dll - ok
17:49:42.0985 3700 [ 017F5CE9BC2333FE0FB738B0A9C13C2F ] C:\Windows\System32\mssrch.dll
17:49:42.0985 3700 C:\Windows\System32\mssrch.dll - ok
17:49:42.0987 3700 [ 3121A79D13A61562BE9CC902CD46B542 ] C:\Windows\System32\msidle.dll
17:49:42.0987 3700 C:\Windows\System32\msidle.dll - ok
17:49:42.0989 3700 [ ACE1BB07E0377E37A2C514CD2EC119B1 ] C:\Windows\System32\mssprxy.dll
17:49:42.0990 3700 C:\Windows\System32\mssprxy.dll - ok
17:49:42.0992 3700 [ C9FB9038B15036CA28CF0B4BE2BED9BD ] C:\Windows\System32\en-US\tquery.dll.mui
17:49:42.0992 3700 C:\Windows\System32\en-US\tquery.dll.mui - ok
17:49:42.0994 3700 [ C746F3BF98E92FB137B5BD2B8B5925BD ] C:\Windows\System32\FXSST.dll
17:49:42.0994 3700 C:\Windows\System32\FXSST.dll - ok
17:49:42.0997 3700 [ 650CAEA856943E29F25A25D31E004B18 ] C:\Windows\System32\FXSAPI.dll
17:49:42.0997 3700 C:\Windows\System32\FXSAPI.dll - ok
17:49:42.0999 3700 [ C8E8B8239FCF17BEA10E751BE5854631 ] C:\Windows\System32\FXSRESM.dll
17:49:42.0999 3700 C:\Windows\System32\FXSRESM.dll - ok
17:49:43.0001 3700 [ 35CDC3C96C6BA6AC9566862C4DF56A4C ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Drawing\f9a3db5c12a423c8452e4bc33f3bf2d8\System.Drawing.ni.dll
17:49:43.0001 3700 C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Drawing\f9a3db5c12a423c8452e4bc33f3bf2d8\System.Drawing.ni.dll - ok
17:49:43.0004 3700 [ E9BAC164F1F309862DB4B3775804F720 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\WindowsBase\b4f9db815aed520472e98950f488a579\WindowsBase.ni.dll
17:49:43.0004 3700 C:\Windows\assembly\NativeImages_v4.0.30319_64\WindowsBase\b4f9db815aed520472e98950f488a579\WindowsBase.ni.dll - ok
17:49:43.0007 3700 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] C:\Windows\System32\FXSSVC.exe
17:49:43.0007 3700 C:\Windows\System32\FXSSVC.exe - ok
17:49:43.0009 3700 [ F146E2BA475893DD77B2370DC1211FC6 ] C:\Windows\System32\drivers\77206109.sys
17:49:43.0009 3700 C:\Windows\System32\drivers\77206109.sys - ok
17:49:43.0012 3700 [ 0B16DE822841F2DAED7B06E512E04972 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\RepMgtTimRes.dll
17:49:43.0012 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Res\1033\RepMgtTimRes.dll - ok
17:49:43.0015 3700 [ 2FA6EED953ED3B002EFCF60E8E89A360 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Forms\cd71b15b61c2aa1b324ca1b9e2a2ea5b\System.Windows.Forms.ni.dll
17:49:43.0015 3700 C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Forms\cd71b15b61c2aa1b324ca1b9e2a2ea5b\System.Windows.Forms.ni.dll - ok
17:49:43.0017 3700 [ E2A17BCC08D92F42E08AF6BA2F93ABA7 ] C:\Windows\SysWOW64\ExplorerFrame.dll
17:49:43.0017 3700 C:\Windows\SysWOW64\ExplorerFrame.dll - ok
17:49:43.0020 3700 [ C5BEB13551D5F1AC8BF08DAC285DEE01 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\PresentationCore\003aa67c1292c49e3f582fbaf9acf1be\PresentationCore.ni.dll
17:49:43.0020 3700 C:\Windows\assembly\NativeImages_v4.0.30319_64\PresentationCore\003aa67c1292c49e3f582fbaf9acf1be\PresentationCore.ni.dll - ok
17:49:43.0022 3700 [ B837D1528CE2E3CB79F09496BC08DDC6 ] C:\Windows\System32\SensApi.dll
17:49:43.0022 3700 C:\Windows\System32\SensApi.dll - ok
17:49:43.0025 3700 [ FA43D418BC945D27D0625B697B8442B5 ] C:\Windows\System32\cabinet.dll
17:49:43.0025 3700 C:\Windows\System32\cabinet.dll - ok
17:49:43.0027 3700 [ 92E0508D924512F63FFEEFE498CBD11F ] C:\Windows\System32\p2pcollab.dll
17:49:43.0027 3700 C:\Windows\System32\p2pcollab.dll - ok
17:49:43.0029 3700 [ 582AC6D9873E31DFA28A4547270862DD ] C:\Windows\System32\QAGENTRT.DLL
17:49:43.0029 3700 C:\Windows\System32\QAGENTRT.DLL - ok
17:49:43.0032 3700 [ 506A83A3BEEE9FCA09F0170DE9FC7D1B ] C:\Windows\System32\fveui.dll
17:49:43.0032 3700 C:\Windows\System32\fveui.dll - ok
17:49:43.0034 3700 [ BE1693B964FEEE264302BA894C820653 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\2e56d80570c378ec6af609d406c9ae5c\PresentationFramework.ni.dll
17:49:43.0034 3700 C:\Windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\2e56d80570c378ec6af609d406c9ae5c\PresentationFramework.ni.dll - ok
17:49:43.0037 3700 [ 82A7169DC7993E557EBE1A3738FAE1DE ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xaml\97b58d8732145eb6a771324da836f0f0\System.Xaml.ni.dll
17:49:43.0037 3700 C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xaml\97b58d8732145eb6a771324da836f0f0\System.Xaml.ni.dll - ok
17:49:43.0040 3700 [ 220159496484D34009DE71CA1A68E0D4 ] C:\Windows\System32\wbem\NCProv.dll
17:49:43.0040 3700 C:\Windows\System32\wbem\NCProv.dll - ok
17:49:43.0042 3700 [ 847D3AE376C0817161A14A82C8922A9E ] C:\Windows\System32\netman.dll
17:49:43.0042 3700 C:\Windows\System32\netman.dll - ok
17:49:43.0045 3700 [ 5F3920F6D76A39FED146D9E6BCCA8DA6 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\TrstZone.dll
17:49:43.0045 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\TrstZone.dll - ok
17:49:43.0047 3700 [ E7148BB584830E51AFD414CE9AEAE74C ] C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
17:49:43.0047 3700 C:\Program Files (x86)\Google\Chrome\Application\chrome.exe - ok
17:49:43.0050 3700 [ DD85F00EC31F77315AE992B7B0411D65 ] C:\Windows\System32\DWrite.dll
17:49:43.0050 3700 C:\Windows\System32\DWrite.dll - ok
17:49:43.0052 3700 [ D2155709E336C3BC15729EB87FEC6064 ] C:\Windows\System32\rasdlg.dll
17:49:43.0052 3700 C:\Windows\System32\rasdlg.dll - ok
17:49:43.0054 3700 [ 2DF29664ED261F0FC448E58F338F0671 ] C:\Windows\System32\mprapi.dll
17:49:43.0055 3700 C:\Windows\System32\mprapi.dll - ok
17:49:43.0057 3700 [ 03706015DB44368375AEBE6339490E66 ] C:\Windows\System32\netcfgx.dll
17:49:43.0057 3700 C:\Windows\System32\netcfgx.dll - ok
17:49:43.0059 3700 [ 3112355E597EAFF8E139D1B750E7934B ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WPF\wpfgfx_v0400.dll
17:49:43.0059 3700 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WPF\wpfgfx_v0400.dll - ok
17:49:43.0062 3700 [ F9AFD12BB4B1CFA5FCC0A5B37C604FD2 ] C:\Windows\System32\dot3api.dll
17:49:43.0062 3700 C:\Windows\System32\dot3api.dll - ok
17:49:43.0064 3700 [ C49E1DE6F866D7301F8A121A83E40CFD ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccSEBind.dll
17:49:43.0064 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ccSEBind.dll - ok
17:49:43.0067 3700 [ 0D753307D274F3688BD21C377B616700 ] C:\Windows\System32\eappcfg.dll
17:49:43.0067 3700 C:\Windows\System32\eappcfg.dll - ok
17:49:43.0069 3700 [ E4FCA0F99A41E460C84016DEFD31E6EF ] C:\Windows\System32\wlanhlp.dll
17:49:43.0069 3700 C:\Windows\System32\wlanhlp.dll - ok
17:49:43.0072 3700 [ 73FCB7919DEE80EE556F2E498594EBAE ] C:\Windows\System32\onex.dll
17:49:43.0072 3700 C:\Windows\System32\onex.dll - ok
17:49:43.0074 3700 [ 65522E77A1360DBC8D199DA3BF5EFFE4 ] C:\Windows\System32\eappprxy.dll
17:49:43.0074 3700 C:\Windows\System32\eappprxy.dll - ok
17:49:43.0077 3700 [ 3B367397320C26DBA890B260F80D1B1B ] C:\Windows\System32\hnetcfg.dll
17:49:43.0077 3700 C:\Windows\System32\hnetcfg.dll - ok
17:49:43.0079 3700 [ C4BCDEC7528651AD8D399C81AE06E7B5 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Remo#\0580573d7e9d6c0e6b2bb58a1b5fe5f4\System.Runtime.Remoting.ni.dll
17:49:43.0079 3700 C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Remo#\0580573d7e9d6c0e6b2bb58a1b5fe5f4\System.Runtime.Remoting.ni.dll - ok
17:49:43.0082 3700 [ BC0D4AFBE94D8E1F81C8926D805C3366 ] C:\Windows\System32\webcheck.dll
17:49:43.0082 3700 C:\Windows\System32\webcheck.dll - ok
17:49:43.0084 3700 [ EF313859E602190B31046F74FE008E7E ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\LUSub.dll
17:49:43.0084 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\LUSub.dll - ok
17:49:43.0087 3700 [ 8494E126F0B10180F3293AF861CE1F7A ] C:\Windows\System32\mlang.dll
17:49:43.0087 3700 C:\Windows\System32\mlang.dll - ok
17:49:43.0089 3700 [ 101797BA603D227946B4B5109867EB19 ] C:\Windows\System32\SyncCenter.dll
17:49:43.0089 3700 C:\Windows\System32\SyncCenter.dll - ok
17:49:43.0092 3700 [ 5EFEF1C4E271873C47492B65F5926511 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ReportSubmission.dll
17:49:43.0092 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\ReportSubmission.dll - ok
17:49:43.0095 3700 [ BF83B1B5DAD46A4A88A0CEDF36176F0E ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WPF\PresentationNative_v0400.dll
17:49:43.0095 3700 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WPF\PresentationNative_v0400.dll - ok
17:49:43.0097 3700 [ CDAD3376DFF3D9AC7FDCBE2B94B0D3C8 ] C:\Windows\System32\shfolder.dll
17:49:43.0097 3700 C:\Windows\System32\shfolder.dll - ok
17:49:43.0100 3700 [ 74CDE657245C114B98816E89B8D4CCD1 ] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
17:49:43.0100 3700 C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe - ok
17:49:43.0102 3700 [ 2F588D11FEAE6C3785ECA88C126D6BC2 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xml\d71664672edd04f493a8cf12c3303019\System.Xml.ni.dll
17:49:43.0102 3700 C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xml\d71664672edd04f493a8cf12c3303019\System.Xml.ni.dll - ok
17:49:43.0105 3700 [ 1DE0F5390560598609B9E79549AD131C ] C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\chrome.dll
17:49:43.0105 3700 C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\chrome.dll - ok
17:49:43.0107 3700 [ 5DA219F57A9076FB6FBD3C9C3713A672 ] C:\Windows\System32\WWanAPI.dll
17:49:43.0107 3700 C:\Windows\System32\WWanAPI.dll - ok
17:49:43.0110 3700 [ 62C7AACC746C9723468A8F2169ED3E85 ] C:\Windows\System32\wwapi.dll
17:49:43.0110 3700 C:\Windows\System32\wwapi.dll - ok
17:49:43.0112 3700 [ 8130391F82D52D36C0441F714136957F ] C:\Windows\System32\imapi2.dll
17:49:43.0112 3700 C:\Windows\System32\imapi2.dll - ok
17:49:43.0115 3700 [ 6B851E682A36453E1B1EE297FFB6E2AB ] C:\Windows\System32\QAGENT.DLL
17:49:43.0115 3700 C:\Windows\System32\QAGENT.DLL - ok
17:49:43.0117 3700 [ 6A5C1A8AC0B572679361026D0E900420 ] C:\Windows\System32\hgcpl.dll
17:49:43.0117 3700 C:\Windows\System32\hgcpl.dll - ok
17:49:43.0119 3700 [ 908ACB1F594274965A53926B10C81E89 ] C:\Windows\System32\provsvc.dll
17:49:43.0119 3700 C:\Windows\System32\provsvc.dll - ok
17:49:43.0122 3700 [ 53A3E5E135234F925B5F2FF729A733A0 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Configuration\cd54961311941c9b78206daf90177ea9\System.Configuration.ni.dll
17:49:43.0122 3700 C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Configuration\cd54961311941c9b78206daf90177ea9\System.Configuration.ni.dll - ok
17:49:43.0125 3700 [ 638DA17FACD0EE716EE1A076862F649E ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Core\e9031eb0f2e4b5a7be0550a5a807f253\System.Core.ni.dll
17:49:43.0125 3700 C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Core\e9031eb0f2e4b5a7be0550a5a807f253\System.Core.ni.dll - ok
17:49:43.0127 3700 [ BCEA795C51493DBF71D251CA496237B6 ] C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\icudt.dll
17:49:43.0127 3700 C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\icudt.dll - ok
17:49:43.0130 3700 [ 6550C9FF309CDA5F103F192B0D6D0E6D ] C:\Windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\5516952f66f039d116ca43e31ad8e423\PresentationFramework.Aero.ni.dll
17:49:43.0130 3700 C:\Windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\5516952f66f039d116ca43e31ad8e423\PresentationFramework.Aero.ni.dll - ok
17:49:43.0133 3700 [ 9102BA4D1F80C29B08D9BE4B7154FBAF ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel\c1b473e52b24ece316f9f72d3894e435\System.ServiceModel.ni.dll
17:49:43.0133 3700 C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel\c1b473e52b24ece316f9f72d3894e435\System.ServiceModel.ni.dll - ok
17:49:43.0135 3700 [ D6235C6EF5AD4CBBA9B3236ECE959E37 ] C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\msl.dll
17:49:43.0135 3700 C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin\msl.dll - ok
17:49:43.0138 3700 [ 71C4F42DC8DB668E826DA79462EA741E ] C:\Windows\SysWOW64\KBDUS.DLL
17:49:43.0138 3700 C:\Windows\SysWOW64\KBDUS.DLL - ok
17:49:43.0140 3700 [ C940F2F5C60B3727C5F18840735B229C ] C:\Windows\SysWOW64\AudioSes.dll
17:49:43.0140 3700 C:\Windows\SysWOW64\AudioSes.dll - ok
17:49:43.0143 3700 [ 243974EC02F7AE49E4179C54624143AB ] C:\Windows\SysWOW64\MMDevAPI.dll
17:49:43.0143 3700 C:\Windows\SysWOW64\MMDevAPI.dll - ok
17:49:43.0145 3700 [ 99D66187969E53540E8A7AA835C7D129 ] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MMLoadDrv.exe
17:49:43.0145 3700 C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MMLoadDrv.exe - ok
17:49:43.0148 3700 [ AA0AC5B8C45AF41D1215B156272FC869 ] C:\Windows\SysWOW64\aticfx32.dll
17:49:43.0148 3700 C:\Windows\SysWOW64\aticfx32.dll - ok
17:49:43.0150 3700 [ 47BD9C5E5A69FD39311C55690B9B3CF0 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\SMDiagnostics\e7d2ae7b9e8878d7e983ad4172fe142a\SMDiagnostics.ni.dll
17:49:43.0150 3700 C:\Windows\assembly\NativeImages_v4.0.30319_64\SMDiagnostics\e7d2ae7b9e8878d7e983ad4172fe142a\SMDiagnostics.ni.dll - ok
17:49:43.0153 3700 [ 6EF5F3F18413C367195F06E503AB86A6 ] C:\Windows\SysWOW64\d3d9.dll
17:49:43.0153 3700 C:\Windows\SysWOW64\d3d9.dll - ok
17:49:43.0155 3700 [ 1CBF15FDB0310345A68972EB5C5B948F ] C:\Windows\SysWOW64\mssprxy.dll
17:49:43.0155 3700 C:\Windows\SysWOW64\mssprxy.dll - ok
17:49:43.0158 3700 [ 1247D97437C71B81B0DF9BE298A420F2 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Dura#\cd5871abf9f510303afc1c20f12a726c\System.Runtime.DurableInstancing.ni.dll
17:49:43.0158 3700 C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Dura#\cd5871abf9f510303afc1c20f12a726c\System.Runtime.DurableInstancing.ni.dll - ok
17:49:43.0161 3700 [ 67EC459E42D3081DD8FD34356F7CAFC1 ] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\msvcr100.dll
17:49:43.0161 3700 C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\msvcr100.dll - ok
17:49:43.0163 3700 [ 77B1471A490B53B24EFE136F09F76550 ] C:\Windows\SysWOW64\d3d8thk.dll
17:49:43.0163 3700 C:\Windows\SysWOW64\d3d8thk.dll - ok
17:49:43.0165 3700 [ 0AE0C4955E1DE29CCDC9DA1B816FE5EE ] C:\Windows\SysWOW64\quartz.dll
17:49:43.0165 3700 C:\Windows\SysWOW64\quartz.dll - ok
17:49:43.0168 3700 [ 1F27643C4C626457FCE8F047AE1CD7E1 ] C:\Windows\SysWOW64\dxva2.dll
17:49:43.0168 3700 C:\Windows\SysWOW64\dxva2.dll - ok
17:49:43.0170 3700 [ 07E2D751F704885D6259E83C5ED9A74E ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\d234e4ab7b9e4c9449b2dc28c51e5ecf\System.Runtime.Serialization.ni.dll
17:49:43.0170 3700 C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\d234e4ab7b9e4c9449b2dc28c51e5ecf\System.Runtime.Serialization.ni.dll - ok
17:49:43.0172 3700 [ 236360CE5E4C3F063AC110533747C0A8 ] C:\Windows\SysWOW64\Wpc.dll
17:49:43.0172 3700 C:\Windows\SysWOW64\Wpc.dll - ok
17:49:43.0175 3700 [ 5D09A0DCE86829EB91A82EA13691CAC6 ] C:\Windows\SysWOW64\atiu9pag.dll
17:49:43.0175 3700 C:\Windows\SysWOW64\atiu9pag.dll - ok
17:49:43.0177 3700 [ 82C089EA2A3EEFADF3588EA71E8BDADA ] C:\Windows\SysWOW64\wevtapi.dll
17:49:43.0177 3700 C:\Windows\SysWOW64\wevtapi.dll - ok
17:49:43.0180 3700 [ EB9F220E8DC22310B199AE6A49B7E168 ] C:\Windows\SysWOW64\atiumdag.dll
17:49:43.0180 3700 C:\Windows\SysWOW64\atiumdag.dll - ok
17:49:43.0182 3700 [ FDBA1DEC4F9BE4274A00B9B850C63484 ] C:\Windows\SysWOW64\mf.dll
17:49:43.0182 3700 C:\Windows\SysWOW64\mf.dll - ok
17:49:43.0185 3700 [ F1A98831E152F650167FF8550ED7D6A7 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\ac6cc1bee61cd926ac269dbc730b9ebb\System.ServiceModel.Discovery.ni.dll
17:49:43.0185 3700 C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\ac6cc1bee61cd926ac269dbc730b9ebb\System.ServiceModel.Discovery.ni.dll - ok
17:49:43.0187 3700 [ C30A3E5DEEEBA22E782AC54C5AF5F352 ] C:\Windows\SysWOW64\samlib.dll
17:49:43.0187 3700 C:\Windows\SysWOW64\samlib.dll - ok
17:49:43.0189 3700 [ 2C90F628630646C705E126516AB6CFCD ] C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\pdf.dll
17:49:43.0189 3700 C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\pdf.dll - ok
17:49:43.0192 3700 [ 40B82688907A7DBA4DB3B5ADDE3EAB3B ] C:\Windows\SysWOW64\mfplat.dll
17:49:43.0192 3700 C:\Windows\SysWOW64\mfplat.dll - ok
17:49:43.0194 3700 [ 7F8678C59F188528D60104E697C2361E ] C:\Windows\SysWOW64\mscms.dll
17:49:43.0194 3700 C:\Windows\SysWOW64\mscms.dll - ok
17:49:43.0196 3700 [ 139D3AB6AA920C34C50CBFFB9EB7D222 ] C:\Windows\SysWOW64\avrt.dll
17:49:43.0196 3700 C:\Windows\SysWOW64\avrt.dll - ok
17:49:43.0199 3700 [ 9C67F6BBDA3881CFD02095160CF91576 ] C:\Windows\SysWOW64\ksuser.dll
17:49:43.0199 3700 C:\Windows\SysWOW64\ksuser.dll - ok
17:49:43.0201 3700 [ 2ADC7600CB02599BA36874FF1ECFDFF9 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\22d207bf6e9711cfd3ee502a821c9865\System.ServiceModel.Activities.ni.dll
17:49:43.0201 3700 C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\22d207bf6e9711cfd3ee502a821c9865\System.ServiceModel.Activities.ni.dll - ok
17:49:43.0204 3700 [ 600A65F922CCDCBB2D11467914241556 ] C:\Windows\SysWOW64\msmpeg2vdec.dll
17:49:43.0204 3700 C:\Windows\SysWOW64\msmpeg2vdec.dll - ok
17:49:43.0206 3700 [ 8FED0BDBD01554AA77DFB138E7ABB593 ] C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\ppgooglenaclpluginchrome.dll
17:49:43.0206 3700 C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\ppgooglenaclpluginchrome.dll - ok
17:49:43.0209 3700 [ C5A75EB48E2344ABDC162BDA79E16841 ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
17:49:43.0209 3700 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe - ok
17:49:43.0212 3700 [ F519A1138F69EFD690DF345C4979DED2 ] C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\libpeerconnection.dll
17:49:43.0212 3700 C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\libpeerconnection.dll - ok
17:49:43.0214 3700 [ 956A21E4F7329DE77B9D336099A0BA40 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\cd5803fbd73a49cd02b586c60c6a57fe\System.ServiceModel.Routing.ni.dll
17:49:43.0214 3700 C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\cd5803fbd73a49cd02b586c60c6a57fe\System.ServiceModel.Routing.ni.dll - ok
17:49:43.0217 3700 [ 53AF1750FD45DDD705C9B68C7DC58827 ] C:\Windows\SysWOW64\evr.dll
17:49:43.0217 3700 C:\Windows\SysWOW64\evr.dll - ok
17:49:43.0219 3700 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
17:49:43.0219 3700 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe - ok
17:49:43.0222 3700 [ DC537214CA8D228BD840CD95C31C0C44 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\43c6d14fea68ef18bc21d0f668ef0c85\System.ServiceModel.Channels.ni.dll
17:49:43.0222 3700 C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\43c6d14fea68ef18bc21d0f668ef0c85\System.ServiceModel.Channels.ni.dll - ok
17:49:43.0225 3700 [ 4C7144CD23B0C40F937D27EB9BA71D2D ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.IdentityModel\3d8df827d48d6d63fbfb1cd29695d458\System.IdentityModel.ni.dll
17:49:43.0225 3700 C:\Windows\assembly\NativeImages_v4.0.30319_64\System.IdentityModel\3d8df827d48d6d63fbfb1cd29695d458\System.IdentityModel.ni.dll - ok
17:49:43.0228 3700 [ 690AC6BBC42258593E829FB27A80575A ] C:\Program Files (x86)\Google\Update\1.3.21.153\goopdateres_en.dll
17:49:43.0228 3700 C:\Program Files (x86)\Google\Update\1.3.21.153\goopdateres_en.dll - ok
17:49:43.0230 3700 [ 2402608897A8BCBAC7469A7DB1C874DA ] C:\Windows\SysWOW64\atiumdva.dll
17:49:43.0230 3700 C:\Windows\SysWOW64\atiumdva.dll - ok
17:49:43.0233 3700 [ E17E0188BB90FAE42D83E98707EFA59C ] C:\Windows\System32\sppsvc.exe
17:49:43.0233 3700 C:\Windows\System32\sppsvc.exe - ok
17:49:43.0235 3700 [ 8E63531D3A6B9C2D26EF03797E8438B4 ] C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\ffmpegsumo.dll
17:49:43.0235 3700 C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\ffmpegsumo.dll - ok
17:49:43.0238 3700 [ E9F9A41866AD7308FBEEE64493B8C7C2 ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
17:49:43.0238 3700 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll - ok
17:49:43.0240 3700 [ EAB938099B3A39E9C5A9E69F486033C3 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xml.Linq\27a5c6ab509580180424d896d25b0320\System.Xml.Linq.ni.dll
17:49:43.0240 3700 C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xml.Linq\27a5c6ab509580180424d896d25b0320\System.Xml.Linq.ni.dll - ok
17:49:43.0243 3700 [ 5BF8E37FA1E25227480F9CD2ACA21FB6 ] C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\d3dcompiler_46.dll
17:49:43.0243 3700 C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\d3dcompiler_46.dll - ok
17:49:43.0246 3700 [ FFF95479C7AB1550F0750A5D01744211 ] C:\Windows\System32\drivers\spsys.sys
17:49:43.0246 3700 C:\Windows\System32\drivers\spsys.sys - ok
17:49:43.0248 3700 [ D638693D62352558F7A8CD42067D63A7 ] C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\libglesv2.dll
17:49:43.0248 3700 C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\libglesv2.dll - ok
17:49:43.0251 3700 [ 0D893F8D145D3B125B0226727C243A69 ] C:\Windows\System32\security.dll
17:49:43.0251 3700 C:\Windows\System32\security.dll - ok
17:49:43.0253 3700 [ 552B62F5E191F23E4F33A36ABF416402 ] C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\libegl.dll
17:49:43.0253 3700 C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\libegl.dll - ok
17:49:43.0256 3700 [ 4F6E72B34ED3DC53DCC5E8708E60B61F ] C:\Windows\SysWOW64\security.dll
17:49:43.0256 3700 C:\Windows\SysWOW64\security.dll - ok
17:49:43.0258 3700 [ 4C1E16B9A53102C8D6FBA587CBCB95DE ] C:\Windows\SysWOW64\msv1_0.dll
17:49:43.0258 3700 C:\Windows\SysWOW64\msv1_0.dll - ok
17:49:43.0260 3700 [ 1128637CAD49A8E3C8B5FA5D0A061525 ] C:\Windows\SysWOW64\cryptdll.dll
17:49:43.0260 3700 C:\Windows\SysWOW64\cryptdll.dll - ok
17:49:43.0263 3700 [ 5A68478291857DB3ACD84A80E1FE1C6C ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Transactions\102014a4f570b1dc944ff7eb8e1c6e2b\System.Transactions.ni.dll
17:49:43.0263 3700 C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Transactions\102014a4f570b1dc944ff7eb8e1c6e2b\System.Transactions.ni.dll - ok
17:49:43.0266 3700 [ 41962D5E18E9874390BC1F074571A6BB ] C:\Windows\Microsoft.NET\assembly\GAC_32\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll
17:49:43.0266 3700 C:\Windows\Microsoft.NET\assembly\GAC_32\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll - ok
17:49:43.0268 3700 [ 4C3DAEE652B005B483F16B8E9131C99D ] C:\Windows\System32\d3d9.dll
17:49:43.0268 3700 C:\Windows\System32\d3d9.dll - ok
17:49:43.0271 3700 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] C:\Windows\System32\wuaueng.dll
17:49:43.0271 3700 C:\Windows\System32\wuaueng.dll - ok
17:49:43.0273 3700 [ F6F22291024906E43D135A4B1705FEAC ] C:\Windows\System32\sppwinob.dll
17:49:43.0273 3700 C:\Windows\System32\sppwinob.dll - ok
17:49:43.0276 3700 [ 3044D07ABDF4BBEA27E2EE7B1E0C0C65 ] C:\Windows\System32\d3d8thk.dll
17:49:43.0276 3700 C:\Windows\System32\d3d8thk.dll - ok
17:49:43.0278 3700 [ 3DA9C887F25F1968D4E49C76BEF819AD ] C:\Windows\System32\atiu9p64.dll
17:49:43.0278 3700 C:\Windows\System32\atiu9p64.dll - ok
17:49:43.0281 3700 [ 4E338289BD68D11543D8E34313DB47F0 ] C:\Windows\System32\atiumd64.dll
17:49:43.0281 3700 C:\Windows\System32\atiumd64.dll - ok
17:49:43.0283 3700 [ 5987EA8A82C53359BCD2C29D6588583E ] C:\Windows\SysWOW64\linkinfo.dll
17:49:43.0283 3700 C:\Windows\SysWOW64\linkinfo.dll - ok
17:49:43.0285 3700 [ CAB32D558F7711E9A129B3A98A9D13A4 ] C:\Windows\System32\atiumd6a.dll
17:49:43.0285 3700 C:\Windows\System32\atiumd6a.dll - ok
17:49:43.0288 3700 [ 617F6EC0AC677C685479C1D0D1E76C6F ] C:\Windows\System32\mspatcha.dll
17:49:43.0288 3700 C:\Windows\System32\mspatcha.dll - ok
17:49:43.0290 3700 [ 51138BEEA3E2C21EC44D0932C71762A8 ] C:\Windows\SysWOW64\rundll32.exe
17:49:43.0290 3700 C:\Windows\SysWOW64\rundll32.exe - ok
17:49:43.0293 3700 [ 368B2BEE3F88BFB883D2C74A258DE6F6 ] C:\Windows\AppPatch\AcLayers.dll
17:49:43.0293 3700 C:\Windows\AppPatch\AcLayers.dll - ok
17:49:43.0295 3700 [ 66731FBCBBF8BBD0B89BD48C69D0C2ED ] C:\Windows\AppPatch\acwow64.dll
17:49:43.0295 3700 C:\Windows\AppPatch\acwow64.dll - ok
17:49:43.0298 3700 [ 07AD88DF9EF73215458867EFC1BFFE9E ] C:\Windows\System32\wbem\wmiprov.dll
17:49:43.0298 3700 C:\Windows\System32\wbem\wmiprov.dll - ok
17:49:43.0300 3700 [ 577234234E4AE08D63A8B490D0738D25 ] C:\Program Files\Internet Explorer\sqmapi.dll
17:49:43.0300 3700 C:\Program Files\Internet Explorer\sqmapi.dll - ok
17:49:43.0303 3700 [ 2B373B5F7E36B5ED5DA176D4400EF091 ] C:\Windows\System32\sppobjs.dll
17:49:43.0303 3700 C:\Windows\System32\sppobjs.dll - ok
17:49:43.0305 3700 [ 9B4D431459A9B935FB117F4EDDA236E8 ] C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll
17:49:43.0305 3700 C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll - ok
17:49:43.0308 3700 [ 148727EBD947CBC168C42A227D56DAB0 ] C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
17:49:43.0308 3700 C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll - ok
17:49:43.0310 3700 [ 101700E93EB905992B518256CB441829 ] C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll
17:49:43.0310 3700 C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll - ok
17:49:43.0313 3700 [ ABCB4A6EAB701C629378255ABCB308E5 ] C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
17:49:43.0313 3700 C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll - ok
17:49:43.0315 3700 [ 260488E2BC07C276D1EDD54CCA086809 ] C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
17:49:43.0315 3700 C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll - ok
17:49:43.0318 3700 [ D7324EB1EDCB8990F8522DE0311359E9 ] C:\Windows\SysWOW64\npDeployJava1.dll
17:49:43.0318 3700 C:\Windows\SysWOW64\npDeployJava1.dll - ok
17:49:43.0320 3700 [ E746ED90132C6B6313CE9179F56BD31D ] C:\Windows\System32\wups.dll
17:49:43.0320 3700 C:\Windows\System32\wups.dll - ok
17:49:43.0323 3700 [ 7FE0D0C8F53735EA17C9AE93EFE7AD5A ] C:\Windows\System32\wups2.dll
17:49:43.0323 3700 C:\Windows\System32\wups2.dll - ok
17:49:43.0325 3700 [ 769765CE2CC62867468CEA93969B2242 ] C:\Windows\System32\drivers\asyncmac.sys
17:49:43.0325 3700 C:\Windows\System32\drivers\asyncmac.sys - ok
17:49:43.0328 3700 [ D2958325C1AE1AE37A83334C6229E3BC ] C:\Windows\SysWOW64\actxprxy.dll
17:49:43.0328 3700 C:\Windows\SysWOW64\actxprxy.dll - ok
17:49:43.0329 3700 ============================================================
17:49:43.0329 3700 Scan finished
17:49:43.0329 3700 ============================================================
17:49:43.0335 1212 Detected object count: 1
17:49:43.0335 1212 Actual detected object count: 1
17:50:03.0643 1212 etadpug ( UnsignedFile.Multi.Generic ) - skipped by user
17:50:03.0643 1212 etadpug ( UnsignedFile.Multi.Generic ) - User select action: Skip


  • 0

#7
Euler

Euler

    New Member

  • Topic Starter
  • Member
  • Pip
  • 6 posts
Since it's been four hours, and I haven't gotten a response yet, I'm going to go ahead and re-install Windows.
  • 0

#8
Euler

Euler

    New Member

  • Topic Starter
  • Member
  • Pip
  • 6 posts
Successfully re-installed Windows. No more Issues.
  • 0

#9
Dakeyras

Dakeyras

    Anti-Malware Mammoth

  • Expert
  • 9,684 posts
Since this issue appears to be resolved ... this Topic has been closed. Glad we could help. :)

If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.

Everyone else please begin a New Topic.
  • 0






Similar Topics

1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP