Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Looking For a Trained Eye [Solved]


  • This topic is locked This topic is locked

#1
ttbcs

ttbcs

    Member

  • Member
  • PipPipPip
  • 102 posts
This is a friends computer. She said that Malwarebytes removed a virus. The computer was giving BSOD when she brought to me. Turned out to be a video driver. I'm looking for a skilled eye to make sure the computer is clean before returning it to her.

OTL logfile created on: 1/28/2014 11:24:48 AM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Nakaela BC\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16428)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.48 Gb Total Physical Memory | 1.20 Gb Available Physical Memory | 34.59% Memory free
6.96 Gb Paging File | 3.76 Gb Available in Paging File | 54.08% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 201.00 Gb Total Space | 127.99 Gb Free Space | 63.68% Space Free | Partition Type: NTFS
Drive D: | 77.10 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: NTFS

Computer Name: KAELABUG | User Name: Nakaela BC | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2014/01/28 11:20:31 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Nakaela BC\Desktop\OTL.exe
PRC - [2014/01/13 16:07:12 | 001,214,472 | ---- | M] (TorchMedia Inc.) -- C:\Users\Nakaela BC\AppData\Local\Torch\Update\TorchCrashHandler.exe
PRC - [2014/01/08 12:33:40 | 000,066,624 | ---- | M] (Raptr, Inc) -- C:\Program Files (x86)\Raptr\raptr.exe
PRC - [2014/01/08 12:33:40 | 000,046,144 | ---- | M] (Raptr, Inc) -- C:\Program Files (x86)\Raptr\raptr_im.exe
PRC - [2013/12/20 22:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013/12/06 06:47:20 | 001,229,528 | ---- | M] (Secunia) -- C:\Program Files (x86)\Secunia\PSI\psia.exe
PRC - [2013/12/06 06:47:20 | 000,662,232 | ---- | M] (Secunia) -- C:\Program Files (x86)\Secunia\PSI\sua.exe
PRC - [2013/10/21 21:07:30 | 003,018,800 | ---- | M] (Samsung Electronics CO., LTD.) -- C:\ProgramData\SAMSUNG\SW Update Service\SWMAgent.exe
PRC - [2012/05/30 20:55:26 | 001,112,968 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files (x86)\Samsung\Easy Settings\dmhkcore.exe
PRC - [2012/05/02 08:03:44 | 002,279,304 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files (x86)\Samsung\Easy Settings\SmartSetting.exe
PRC - [2012/04/25 13:18:10 | 000,784,264 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files (x86)\Samsung\Easy Settings\MovieColorEnhancer.exe
PRC - [2012/02/13 15:02:24 | 000,031,624 | ---- | M] () -- C:\Program Files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe
PRC - [2012/01/31 15:56:48 | 001,640,328 | ---- | M] (Samsung Electronics) -- C:\Program Files (x86)\Samsung\Easy Settings\EasySpeedUpManager.exe
PRC - [2011/08/16 23:19:18 | 000,136,488 | ---- | M] (CyberLink) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
PRC - [2011/07/15 17:16:16 | 000,146,592 | ---- | M] (Atheros) -- C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
PRC - [2010/09/19 19:24:42 | 000,087,336 | ---- | M] (CyberLink Corp.) -- C:\Program Files (x86)\CyberLink\Media+Player10\Media+Player10Serv.exe
PRC - [2009/11/01 21:21:26 | 000,103,720 | ---- | M] (CyberLink) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe


========== Modules (No Company Name) ==========

MOD - [2013/11/20 16:05:26 | 000,256,000 | ---- | M] () -- C:\Program Files (x86)\Raptr\amd_ags.dll
MOD - [2013/05/09 15:52:58 | 001,183,699 | ---- | M] () -- C:\Program Files (x86)\Raptr\liboscar.dll
MOD - [2013/05/09 15:52:58 | 000,483,306 | ---- | M] () -- C:\Program Files (x86)\Raptr\plugins\libicq.dll
MOD - [2013/05/09 15:52:56 | 000,495,680 | ---- | M] () -- C:\Program Files (x86)\Raptr\plugins\libaim.dll
MOD - [2013/05/03 10:57:16 | 001,640,221 | ---- | M] () -- C:\Program Files (x86)\Raptr\libjabber.dll
MOD - [2013/05/03 10:57:14 | 001,053,730 | ---- | M] () -- C:\Program Files (x86)\Raptr\libymsg.dll
MOD - [2013/05/03 10:57:06 | 000,655,356 | ---- | M] () -- C:\Program Files (x86)\Raptr\plugins\libirc.dll
MOD - [2013/05/03 10:57:04 | 000,603,326 | ---- | M] () -- C:\Program Files (x86)\Raptr\plugins\ssl-nss.dll
MOD - [2013/05/03 10:57:02 | 000,474,199 | ---- | M] () -- C:\Program Files (x86)\Raptr\plugins\ssl.dll
MOD - [2013/05/03 10:57:00 | 000,497,782 | ---- | M] () -- C:\Program Files (x86)\Raptr\plugins\libyahoojp.dll
MOD - [2013/05/03 10:56:50 | 001,306,387 | ---- | M] () -- C:\Program Files (x86)\Raptr\plugins\libmsn.dll
MOD - [2013/05/03 10:56:46 | 000,565,461 | ---- | M] () -- C:\Program Files (x86)\Raptr\plugins\libxmpp.dll
MOD - [2013/05/03 10:56:44 | 000,506,276 | ---- | M] () -- C:\Program Files (x86)\Raptr\plugins\libyahoo.dll
MOD - [2012/10/26 23:53:18 | 002,717,595 | ---- | M] () -- C:\Program Files (x86)\Raptr\heliotrope._purple.pyd
MOD - [2012/06/22 13:59:52 | 000,313,856 | ---- | M] () -- C:\Program Files (x86)\Raptr\PyQt4.QtWebKit.pyd
MOD - [2012/06/22 13:55:58 | 000,494,592 | ---- | M] () -- C:\Program Files (x86)\Raptr\PyQt4.QtNetwork.pyd
MOD - [2012/06/22 13:53:22 | 005,812,736 | ---- | M] () -- C:\Program Files (x86)\Raptr\PyQt4.QtGui.pyd
MOD - [2012/06/22 13:39:06 | 001,662,464 | ---- | M] () -- C:\Program Files (x86)\Raptr\PyQt4.QtCore.pyd
MOD - [2012/06/22 13:24:28 | 000,067,584 | ---- | M] () -- C:\Program Files (x86)\Raptr\sip.pyd
MOD - [2012/02/06 12:28:48 | 000,011,264 | ---- | M] () -- C:\Program Files (x86)\Raptr\Crypto.Util._counter.pyd
MOD - [2012/02/06 12:28:42 | 000,031,744 | ---- | M] () -- C:\Program Files (x86)\Raptr\Crypto.Cipher.AES.pyd
MOD - [2012/02/06 12:28:34 | 000,010,752 | ---- | M] () -- C:\Program Files (x86)\Raptr\Crypto.Random.OSRNG.winrandom.pyd
MOD - [2011/05/10 11:01:42 | 000,030,208 | ---- | M] () -- C:\Program Files (x86)\Raptr\simplejson._speedups.pyd
MOD - [2011/02/17 01:03:20 | 000,203,776 | ---- | M] () -- C:\Program Files (x86)\Samsung\Easy Settings\WinCRT.dll
MOD - [2011/02/15 10:17:28 | 001,213,633 | ---- | M] () -- C:\Program Files (x86)\Raptr\libxml2-2.dll
MOD - [2011/02/15 10:17:28 | 000,417,501 | ---- | M] () -- C:\Program Files (x86)\Raptr\sqlite3.dll
MOD - [2010/11/22 15:06:22 | 000,055,808 | ---- | M] () -- C:\Program Files (x86)\Raptr\zlib1.dll
MOD - [2010/11/22 14:57:34 | 000,167,936 | ---- | M] () -- C:\Program Files (x86)\Raptr\win32gui.pyd
MOD - [2010/11/22 14:57:34 | 000,111,104 | ---- | M] () -- C:\Program Files (x86)\Raptr\win32file.pyd
MOD - [2010/11/22 14:57:34 | 000,096,256 | ---- | M] () -- C:\Program Files (x86)\Raptr\win32api.pyd
MOD - [2010/11/22 14:57:34 | 000,036,352 | ---- | M] () -- C:\Program Files (x86)\Raptr\win32process.pyd
MOD - [2010/11/22 14:57:34 | 000,016,384 | ---- | M] () -- C:\Program Files (x86)\Raptr\win32trace.pyd
MOD - [2010/11/22 14:57:18 | 000,141,312 | ---- | M] () -- C:\Program Files (x86)\Raptr\gobject._gobject.pyd
MOD - [2010/11/22 14:56:56 | 000,354,304 | ---- | M] () -- C:\Program Files (x86)\Raptr\pythoncom26.dll
MOD - [2010/11/22 14:56:56 | 000,110,592 | ---- | M] () -- C:\Program Files (x86)\Raptr\pywintypes26.dll
MOD - [2010/11/22 14:56:26 | 000,324,608 | ---- | M] () -- C:\Program Files (x86)\Raptr\PIL._imaging.pyd
MOD - [2010/11/22 14:56:02 | 000,805,376 | ---- | M] () -- C:\Program Files (x86)\Raptr\_ssl.pyd
MOD - [2010/11/22 14:56:02 | 000,583,680 | ---- | M] () -- C:\Program Files (x86)\Raptr\unicodedata.pyd
MOD - [2010/11/22 14:56:02 | 000,356,864 | ---- | M] () -- C:\Program Files (x86)\Raptr\_hashlib.pyd
MOD - [2010/11/22 14:56:02 | 000,127,488 | ---- | M] () -- C:\Program Files (x86)\Raptr\pyexpat.pyd
MOD - [2010/11/22 14:56:02 | 000,124,928 | ---- | M] () -- C:\Program Files (x86)\Raptr\_elementtree.pyd
MOD - [2010/11/22 14:56:02 | 000,087,040 | ---- | M] () -- C:\Program Files (x86)\Raptr\_ctypes.pyd
MOD - [2010/11/22 14:56:02 | 000,044,544 | ---- | M] () -- C:\Program Files (x86)\Raptr\_sqlite3.pyd
MOD - [2010/11/22 14:56:02 | 000,043,008 | ---- | M] () -- C:\Program Files (x86)\Raptr\_socket.pyd
MOD - [2010/11/22 14:56:02 | 000,010,240 | ---- | M] () -- C:\Program Files (x86)\Raptr\select.pyd
MOD - [2010/11/22 14:56:02 | 000,009,216 | ---- | M] () -- C:\Program Files (x86)\Raptr\winsound.pyd
MOD - [2009/11/01 21:23:36 | 000,013,096 | ---- | M] () -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll
MOD - [2009/11/01 21:20:10 | 000,619,816 | ---- | M] () -- C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll
MOD - [2006/08/12 12:48:40 | 000,049,152 | ---- | M] () -- C:\Program Files (x86)\Samsung\Easy Settings\HookDllPS2.dll


========== Services (SafeList) ==========

SRV:64bit: - [2013/11/29 11:45:52 | 000,344,064 | ---- | M] (Advanced Micro Devices, Inc.) [Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe -- (AMD FUEL Service)
SRV:64bit: - [2013/11/29 08:34:42 | 000,239,616 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2013/11/26 01:18:09 | 000,111,616 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:64bit: - [2013/10/23 17:14:22 | 000,348,376 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- c:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV:64bit: - [2013/10/23 17:14:22 | 000,023,808 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV:64bit: - [2013/10/10 14:54:28 | 000,144,152 | ---- | M] (SUPERAntiSpyware.com) [Auto | Running] -- C:\Program Files\SUPERAntiSpyware\SASCore64.exe -- (!SASCORE)
SRV:64bit: - [2013/05/26 21:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2014/01/25 20:47:44 | 000,257,928 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014/01/13 16:07:12 | 001,214,472 | ---- | M] (TorchMedia Inc.) [Auto | Running] -- C:\Users\Nakaela BC\AppData\Local\Torch\Update\TorchCrashHandler.exe -- (TorchCrashHandler)
SRV - [2013/12/20 22:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2013/12/06 06:47:20 | 001,229,528 | ---- | M] (Secunia) [Auto | Running] -- C:\Program Files (x86)\Secunia\PSI\psia.exe -- (Secunia PSI Agent)
SRV - [2013/12/06 06:47:20 | 000,662,232 | ---- | M] (Secunia) [Auto | Running] -- C:\Program Files (x86)\Secunia\PSI\sua.exe -- (Secunia Update Agent)
SRV - [2013/12/05 11:36:33 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013/10/23 08:15:08 | 000,172,192 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013/10/21 21:07:30 | 003,018,800 | ---- | M] (Samsung Electronics CO., LTD.) [Auto | Running] -- C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe -- (SWUpdateService)
SRV - [2013/09/11 21:21:54 | 000,105,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2012/02/13 15:02:24 | 000,031,624 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe -- (SamsungDeviceConfigurationWinService)
SRV - [2011/07/15 17:16:16 | 000,146,592 | ---- | M] (Atheros) [Auto | Running] -- C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe -- (Atheros Bt&Wlan Coex Agent)
SRV - [2011/07/15 17:10:34 | 000,091,296 | ---- | M] (Atheros Commnucations) [Auto | Running] -- C:\Program Files (x86)\Bluetooth Suite\AdminService.exe -- (AtherosSvc)
SRV - [2010/05/31 22:31:28 | 002,804,568 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe -- (NOBU)
SRV - [2009/06/10 13:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2013/12/06 06:47:12 | 000,018,456 | ---- | M] (Secunia) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\psi_mf_amd64.sys -- (PSI)
DRV:64bit: - [2013/11/29 09:39:00 | 013,201,920 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2013/11/29 08:04:08 | 000,624,128 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2013/09/27 09:53:06 | 000,134,944 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv)
DRV:64bit: - [2013/09/24 06:53:50 | 000,094,208 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2013/09/19 23:05:02 | 000,059,648 | ---- | M] (Advanced Micro Devices) [Kernel | Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys -- (AODDriver4.2.0)
DRV:64bit: - [2012/08/23 06:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2012/08/23 06:08:26 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2012/08/23 06:07:35 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2012/02/29 22:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011/10/21 02:45:14 | 002,791,424 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:64bit: - [2011/09/08 03:04:52 | 000,013,824 | ---- | M] (SAMSUNG ELECTRONICS) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\SABI.sys -- (SABI)
DRV:64bit: - [2011/08/31 10:02:36 | 000,197,416 | ---- | M] (ELAN Microelectronics Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ETD.sys -- (ETD)
DRV:64bit: - [2011/08/17 12:44:46 | 000,053,376 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbfilter.sys -- (usbfilter)
DRV:64bit: - [2011/07/22 08:26:56 | 000,014,928 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys -- (SASDIFSV)
DRV:64bit: - [2011/07/15 17:13:34 | 000,289,440 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btfilter.sys -- (BtFilter)
DRV:64bit: - [2011/07/15 17:13:18 | 000,283,296 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btath_rcp.sys -- (BTATH_RCP)
DRV:64bit: - [2011/07/15 17:13:12 | 000,059,040 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btath_lwflt.sys -- (BTATH_LWFLT)
DRV:64bit: - [2011/07/15 17:13:08 | 000,166,048 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btath_hcrp.sys -- (BTATH_HCRP)
DRV:64bit: - [2011/07/15 17:13:02 | 000,036,000 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btath_flt.sys -- (AthBTPort)
DRV:64bit: - [2011/07/15 17:12:58 | 000,029,344 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btath_bus.sys -- (BTATH_BUS)
DRV:64bit: - [2011/07/15 17:12:52 | 000,109,216 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btath_avdt.sys -- (btath_avdt)
DRV:64bit: - [2011/07/15 17:12:46 | 000,259,744 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btath_a2dp.sys -- (BTATH_A2DP)
DRV:64bit: - [2011/07/12 13:55:18 | 000,012,368 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\saskutil64.sys -- (SASKUTIL)
DRV:64bit: - [2011/06/17 03:08:26 | 000,040,064 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amd_xata.sys -- (amd_xata)
DRV:64bit: - [2011/06/17 03:08:24 | 000,079,488 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amd_sata.sys -- (amd_sata)
DRV:64bit: - [2011/05/16 22:55:28 | 000,533,096 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2011/03/10 22:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/10 22:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010/11/20 19:23:47 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:64bit: - [2010/11/20 19:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2009/07/13 17:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 17:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 17:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/10 12:37:05 | 006,108,416 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2009/06/10 12:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 12:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 12:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 12:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV - [2011/10/24 12:35:45 | 000,015,144 | ---- | M] (Windows ® 2003 DDK 3790 provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\rtport.sys -- (rtport)
DRV - [2009/07/13 17:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}: "URL" = http://dts.search-re...q={searchTerms}

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = Preserve
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-US
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 31 12 A2 75 E9 19 CF 01 [binary data]
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...Box&FORM=IE11SR
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:26.0
FF - user.js - File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.51.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_43.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.51.2: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.2: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 26.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 26.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins

[2014/01/25 17:09:37 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Nakaela BC\AppData\Roaming\Mozilla\Extensions
[2014/01/25 17:08:40 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2014/01/25 17:08:40 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&xssi=t&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter},
CHR - Extension: Google Docs = C:\Users\Nakaela BC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\
CHR - Extension: Google Drive = C:\Users\Nakaela BC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: YouTube = C:\Users\Nakaela BC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: Google Search = C:\Users\Nakaela BC\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: Torch Share = C:\Users\Nakaela BC\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.3604_0\
CHR - Extension: Google Wallet = C:\Users\Nakaela BC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\
CHR - Extension: Gmail = C:\Users\Nakaela BC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\

O1 HOSTS File: ([2012/10/13 07:16:42 | 000,000,098 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2:64bit: - BHO: (no name) - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - No CLSID value found.
O2:64bit: - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2:64bit: - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (SteadyVideoBHO Class) - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files (x86)\AMD\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices)
O2 - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (CIESpeechBHO Class) - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3:64bit: - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
O4:64bit: - HKLM..\Run: [AthBtTray] C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe (Atheros Commnucations)
O4:64bit: - HKLM..\Run: [AtherosBtStack] C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe (Atheros Commnucations)
O4:64bit: - HKLM..\Run: [ETDCtrl] C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronics Corp.)
O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKCU..\Run: [Raptr] C:\Program Files (x86)\Raptr\raptrstub.exe (Raptr, Inc)
O4 - HKCU..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O9 - Extra 'Tools' menuitem : Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 68.105.28.12 68.105.29.12 68.105.28.11
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{74288AB8-3BA8-4B1F-9620-57BEE2A50D96}: DhcpNameServer = 68.105.28.12 68.105.29.12 68.105.28.11
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18:64bit: - Protocol\Filter\video/mp4 {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
O18:64bit: - Protocol\Filter\video/x-flv {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
O18 - Protocol\Filter\video/mp4 {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
O18 - Protocol\Filter\video/x-flv {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2014/01/25 08:24:28 | 000,000,000 | ---D | M] - C:\Autoruns -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2014/01/28 11:20:29 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Nakaela BC\Desktop\OTL.exe
[2014/01/28 11:03:40 | 000,000,000 | R--D | C] -- C:\Users\Nakaela BC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
[2014/01/27 18:33:56 | 000,000,000 | ---D | C] -- C:\Users\Nakaela BC\AppData\Local\AMD
[2014/01/27 18:33:49 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI
[2014/01/27 17:59:15 | 000,000,000 | ---D | C] -- C:\Users\Nakaela BC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved
[2014/01/27 17:58:53 | 000,000,000 | ---D | C] -- C:\Users\Nakaela BC\AppData\Roaming\library_dir
[2014/01/27 17:57:42 | 000,000,000 | ---D | C] -- C:\Users\Nakaela BC\AppData\Roaming\Raptr
[2014/01/27 17:57:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Raptr
[2014/01/27 17:57:31 | 000,000,000 | ---D | C] -- C:\ProgramData\AMD
[2014/01/27 17:57:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD AVT
[2014/01/27 17:57:24 | 000,000,000 | ---D | C] -- C:\Program Files\AMD
[2014/01/27 17:57:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD
[2014/01/27 17:57:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\ATI Technologies
[2014/01/27 17:55:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
[2014/01/27 17:39:40 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ATI Technologies
[2014/01/27 17:32:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Package Cache
[2014/01/27 17:31:29 | 000,000,000 | ---D | C] -- C:\Program Files\ATI Technologies
[2014/01/27 12:03:57 | 000,000,000 | ---D | C] -- C:\AMD
[2014/01/26 20:01:57 | 000,000,000 | ---D | C] -- C:\Users\Nakaela BC\AppData\Roaming\Atheros
[2014/01/26 20:01:21 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BT Program
[2014/01/26 20:01:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Atheros
[2014/01/26 20:01:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Bluetooth Suite
[2014/01/26 19:59:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Atheros
[2014/01/26 19:57:43 | 002,791,424 | ---- | C] (Atheros Communications, Inc.) -- C:\Windows\SysNative\drivers\athrx.sys
[2014/01/26 19:57:43 | 002,791,424 | ---- | C] (Atheros Communications, Inc.) -- C:\Windows\SysNative\athrx.sys
[2014/01/26 19:57:43 | 000,000,000 | ---D | C] -- C:\Windows\Options
[2014/01/26 19:57:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Atheros
[2014/01/26 19:49:51 | 000,058,880 | ---- | C] (AMD) -- C:\Windows\SysNative\coinst.dll
[2014/01/26 19:26:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2014/01/26 19:23:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Java
[2014/01/26 17:56:10 | 000,000,000 | ---D | C] -- C:\Users\Nakaela BC\AppData\Local\Diagnostics
[2014/01/25 21:12:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe
[2014/01/25 21:12:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Adobe
[2014/01/25 20:54:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Oracle
[2014/01/25 20:51:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
[2014/01/25 20:51:33 | 000,000,000 | ---D | C] -- C:\Program Files\Java
[2014/01/25 20:33:26 | 000,000,000 | ---D | C] -- C:\Users\Nakaela BC\AppData\Roaming\vlc
[2014/01/25 20:32:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
[2014/01/25 20:32:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VideoLAN
[2014/01/25 20:07:18 | 000,000,000 | ---D | C] -- C:\Users\Nakaela BC\AppData\Roaming\SUPERAntiSpyware.com
[2014/01/25 20:06:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
[2014/01/25 20:06:07 | 000,000,000 | ---D | C] -- C:\ProgramData\SUPERAntiSpyware.com
[2014/01/25 20:06:07 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2014/01/25 19:50:00 | 000,000,000 | ---D | C] -- C:\Users\Nakaela BC\AppData\Local\Skype
[2014/01/25 19:49:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2014/01/25 19:49:44 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype
[2014/01/25 19:49:41 | 000,000,000 | R--D | C] -- C:\Program Files (x86)\Skype
[2014/01/25 18:50:27 | 000,000,000 | ---D | C] -- C:\Users\Nakaela BC\AppData\Local\Secunia PSI
[2014/01/25 18:49:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Secunia
[2014/01/25 18:44:17 | 000,000,000 | ---D | C] -- C:\Users\Nakaela BC\AppData\Local\Macromedia
[2014/01/25 18:29:31 | 000,000,000 | ---D | C] -- C:\c7aa7f8a2d5f6a6e9116da6a93317d5f
[2014/01/25 18:06:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD APP
[2014/01/25 18:00:57 | 000,000,000 | ---D | C] -- C:\CIMTEMP
[2014/01/25 17:15:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Licenses
[2014/01/25 17:15:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpywareBlaster
[2014/01/25 17:14:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SpywareBlaster
[2014/01/25 17:11:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2014/01/25 17:09:23 | 000,000,000 | ---D | C] -- C:\Users\Nakaela BC\AppData\Roaming\Mozilla
[2014/01/25 17:09:23 | 000,000,000 | ---D | C] -- C:\Users\Nakaela BC\AppData\Local\Mozilla
[2014/01/25 17:09:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla
[2014/01/25 17:09:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service
[2014/01/25 17:08:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2014/01/25 16:45:01 | 000,000,000 | ---D | C] -- C:\Windows\Migration
[2014/01/25 08:24:22 | 000,000,000 | ---D | C] -- C:\Autoruns
[2014/01/22 20:43:30 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2014/01/21 21:52:52 | 000,000,000 | ---D | C] -- C:\Users\Nakaela BC\AppData\Local\Programs
[1 C:\Users\Nakaela BC\Documents\*.tmp files -> C:\Users\Nakaela BC\Documents\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2014/01/28 11:20:31 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Nakaela BC\Desktop\OTL.exe
[2014/01/28 11:11:38 | 000,000,906 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/01/28 11:10:29 | 000,021,200 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014/01/28 11:10:29 | 000,021,200 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014/01/28 11:05:10 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014/01/28 11:02:54 | 000,000,902 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/01/28 11:01:33 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014/01/28 11:01:13 | 3736,981,504 | -HS- | M] () -- C:\hiberfil.sys
[2014/01/27 18:55:43 | 000,002,198 | ---- | M] () -- C:\Windows\epplauncher.mif
[2014/01/27 15:14:55 | 000,004,320 | ---- | M] () -- C:\Users\Nakaela BC\Documents\cc_20140127_151449.reg
[2014/01/26 21:10:19 | 000,801,894 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2014/01/26 21:10:19 | 000,676,966 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2014/01/26 21:10:19 | 000,127,082 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2014/01/26 20:02:12 | 000,246,804 | ---- | M] () -- C:\Windows\SysNative\drivers\AtherosBt.bin
[2014/01/26 20:02:12 | 000,001,242 | ---- | M] () -- C:\Windows\SysNative\drivers\ramps_0x01020200_40_0x01.dfu
[2014/01/26 20:02:12 | 000,001,204 | ---- | M] () -- C:\Windows\SysNative\drivers\ramps_0x01020200_40_0x02.dfu
[2014/01/26 20:02:12 | 000,001,204 | ---- | M] () -- C:\Windows\SysNative\drivers\ramps_0x01020200_40.dfu
[2014/01/26 20:02:12 | 000,001,198 | ---- | M] () -- C:\Windows\SysNative\drivers\ramps_0x01020200_26.dfu
[2014/01/26 18:32:50 | 000,001,407 | ---- | M] () -- C:\Users\Nakaela BC\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2014/01/25 21:21:17 | 000,446,608 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2014/01/25 19:47:55 | 000,002,232 | ---- | M] () -- C:\Users\Nakaela BC\Application Data\Microsoft\Internet Explorer\Quick Launch\Torch.lnk
[2014/01/25 19:47:55 | 000,002,230 | ---- | M] () -- C:\Users\Nakaela BC\Desktop\Torch.lnk
[2014/01/25 19:27:39 | 000,001,876 | ---- | M] () -- C:\Users\Public\Desktop\Easy Settings.lnk
[2014/01/25 18:29:31 | 000,000,000 | -H-- | M] () -- C:\Windows\wusa.lock
[2014/01/25 18:28:12 | 000,002,476 | ---- | M] () -- C:\Windows\HotFixList.ini
[2014/01/25 17:52:13 | 000,000,258 | RHS- | M] () -- C:\ProgramData\ntuser.pol
[2014/01/25 17:35:59 | 000,002,073 | ---- | M] () -- C:\Users\Public\Desktop\Easy Support Center.lnk
[2014/01/25 17:23:40 | 000,001,946 | ---- | M] () -- C:\Users\Public\Desktop\SW Update.lnk
[2014/01/25 17:20:57 | 000,002,279 | ---- | M] () -- C:\Users\Nakaela BC\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2014/01/25 16:49:24 | 000,790,964 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2014/01/23 16:14:06 | 000,016,284 | ---- | M] () -- C:\Windows\SysWow64\ieuinit.inf
[2014/01/23 16:13:59 | 000,016,284 | ---- | M] () -- C:\Windows\SysNative\ieuinit.inf
[2014/01/23 15:37:54 | 000,006,512 | ---- | M] () -- C:\bootsqm.dat
[2014/01/21 18:23:25 | 000,001,032 | ---- | M] () -- C:\Users\Nakaela BC\Desktop\Dropbox.lnk
[1 C:\Users\Nakaela BC\Documents\*.tmp files -> C:\Users\Nakaela BC\Documents\*.tmp -> ]

========== Files Created - No Company Name ==========

[2014/01/27 15:14:53 | 000,004,320 | ---- | C] () -- C:\Users\Nakaela BC\Documents\cc_20140127_151449.reg
[2014/01/26 19:57:44 | 000,468,526 | ---- | C] () -- C:\Windows\SysNative\netathrx.inf
[2014/01/26 19:57:43 | 000,071,579 | ---- | C] () -- C:\Windows\SysNative\athrextx.cat
[2014/01/26 19:49:51 | 000,003,917 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2014/01/26 19:49:51 | 000,003,917 | ---- | C] () -- C:\Windows\SysNative\atipblag.dat
[2014/01/26 18:32:50 | 000,001,413 | ---- | C] () -- C:\Users\Nakaela BC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2014/01/26 18:32:50 | 000,001,407 | ---- | C] () -- C:\Users\Nakaela BC\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2014/01/25 21:19:10 | 000,446,608 | ---- | C] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2014/01/25 21:16:54 | 000,001,999 | ---- | C] () -- C:\Users\Nakaela BC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Update Checker.lnk
[2014/01/25 21:12:44 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
[2014/01/25 19:27:39 | 000,001,876 | ---- | C] () -- C:\Users\Public\Desktop\Easy Settings.lnk
[2014/01/25 18:50:00 | 000,001,069 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Secunia PSI.lnk
[2014/01/25 18:28:48 | 000,000,000 | -H-- | C] () -- C:\Windows\wusa.lock
[2014/01/25 17:35:59 | 000,002,073 | ---- | C] () -- C:\Users\Public\Desktop\Easy Support Center.lnk
[2014/01/25 17:11:55 | 000,002,279 | ---- | C] () -- C:\Users\Nakaela BC\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2014/01/25 17:09:17 | 000,001,159 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2014/01/23 16:14:06 | 000,016,284 | ---- | C] () -- C:\Windows\SysWow64\ieuinit.inf
[2014/01/23 16:13:59 | 000,016,284 | ---- | C] () -- C:\Windows\SysNative\ieuinit.inf
[2014/01/23 15:37:54 | 000,006,512 | ---- | C] () -- C:\bootsqm.dat
[2013/11/29 12:29:56 | 000,038,912 | ---- | C] () -- C:\Windows\SysWow64\kdbsdk32.dll
[2013/11/29 09:24:06 | 000,995,342 | ---- | C] () -- C:\Windows\SysWow64\amdocl_as32.exe
[2013/11/29 09:24:06 | 000,798,734 | ---- | C] () -- C:\Windows\SysWow64\amdocl_ld32.exe
[2013/11/29 08:19:14 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
[2013/11/29 08:19:14 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
[2013/05/28 17:45:57 | 000,003,584 | ---- | C] () -- C:\Users\Nakaela BC\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012/09/27 14:28:50 | 000,002,528 | ---- | C] () -- C:\Windows\FCIC.INI
[2012/09/24 15:11:42 | 000,790,964 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2012/06/25 14:09:29 | 000,000,258 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2012/06/25 11:01:03 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin

========== ZeroAccess Check ==========

[2009/07/13 20:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
"" = \\?\globalroot\Device\HarddiskVolume2\Users\Nakaela BC\AppData\Local\Temp\stnidun\snrpqpw\wow.dll

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013/07/25 18:24:57 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/07/25 17:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 17:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 19:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 17:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2012/01/05 14:38:45 | 000,000,000 | ---D | M] -- C:\Users\Nakaela BC\AppData\Roaming\Amazon
[2014/01/22 20:36:54 | 000,000,000 | ---D | M] -- C:\Users\Nakaela BC\AppData\Roaming\Dropbox
[2014/01/27 17:58:53 | 000,000,000 | ---D | M] -- C:\Users\Nakaela BC\AppData\Roaming\library_dir
[2012/06/25 11:29:42 | 000,000,000 | ---D | M] -- C:\Users\Nakaela BC\AppData\Roaming\MakeMusic
[2014/01/28 11:05:08 | 000,000,000 | ---D | M] -- C:\Users\Nakaela BC\AppData\Roaming\Raptr
[2012/12/13 18:07:19 | 000,000,000 | ---D | M] -- C:\Users\Nakaela BC\AppData\Roaming\TFP

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 119 bytes -> C:\ProgramData\Temp:5C321E34

< End of report >
  • 0

Advertisements


#2
maliprog

maliprog

    Trusted Helper

  • Malware Removal
  • 6,172 posts
Hello ttbcs and welcome to my office here at G2G! :)

My nick is maliprog and I'll be your technical support on this issue. Before we start please read my notes carefully:

NOTES:
  • Malware removal is NOT instantaneous, most infections require several courses of action to completely eradicate.
  • Absence of symptoms does not always mean the computer is clean
  • Kindly follow my instructions in the order posted. Order is crucial in cleaning process.
  • Please DO NOT run any scans or fix on your own without my direction.
  • Please read all of my response through at least once before attempting to follow the procedures described.
  • If there's anything you don't understand or isn't totally clear, please come back to me for clarification.
  • Please do not attach any log files to your replies unless I specifically ask you. Instead please copy and paste it to include the log in your reply.
  • You must reply within 3 days or your topic will be closed

Step 1

Please go to your Control Panel and uninstall TorchCrashHandler from your system.

Step 2

NOTE: This fix is custom made for this system only and for current system state! Don't try to run it on another system!

Please close all running programs and Run OTL
  • Under the Custom Scans/Fixes box at the bottom, paste in the following

    :OTL
    IE - HKLM\..\SearchScopes,DefaultScope = {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
    IE - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}: "URL" = http://dts.search-re...q={searchTerms}

    :Commands
    [purity]
    [Reboot]

  • Then click the Run Fix button at the top
  • Let the program run unhindered, reboot the PC when it is done
  • Post the fix log it produces in your next reply or you can find it in C:\_OTL\MovedFiles

Step 3

Download Virus Removal Tool from Here to your desktop

Run the programme you have just downloaded to your desktop (it will be randomly named )

First we will run a virus scan

Click the cog in the upper right
Posted Image


Select down to and including your main drive, once done select the Automatic scan tab and press Start Scan
Posted Image

Allow Virus Removal Tool to delete all infections found
Once it has finished select report tab (last tab)
Select Detected threads report from the left and press Save button
Save it to your desktop and attach to your next post

Step 4

Please don't forget to include these items in your reply:

  • OTL fix log
  • AVP log
It would be helpful if you could post each log in separate post using "Add Reply" button
  • 0

#3
ttbcs

ttbcs

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 102 posts
TorchCrashHandler does not show in my installed programs. The program Torch does. Is this the program that I should uninstall?
  • 0

#4
maliprog

maliprog

    Trusted Helper

  • Malware Removal
  • 6,172 posts
Hi ttbcs,

That should be the one. Official vendor should be TorchMedia Inc.
  • 0

#5
ttbcs

ttbcs

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 102 posts
Step 1: Uninstalled Torch

Step 2: Ran the Fix
========== OTL ==========
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}\ not found.
========== COMMANDS ==========

OTL by OldTimer - Version 3.2.69.0 log created on 01302014_060439

Step 3: Had a problem here. I ran the scan and it found and removed the problem "Cidox". The computer restarted but failed to boot. After waiting for several minutes I held the power button down to fore a reboot. The program ran again but I think I still got the report you asked for.

Status: Disinfected (events: 1)
1/30/2014 11:36:26 AM Disinfected Trojan program Rootkit.Boot.Cidox.b \Device\HarddiskVolume1 High
  • 0

#6
maliprog

maliprog

    Trusted Helper

  • Malware Removal
  • 6,172 posts
Hi ttbcs,

OK. Leave VRT for now. Let's try to remove rootkit that VRT report to us.

Download the latest version of TDSSKiller from here and save it to your Desktop.

  • Doubleclick on TDSSKiller.exe to run the application, then click on Change parameters.
  • Check the boxes beside:

    • Loaded modules

  • A reboot will be needed to apply the changes. Do it.
  • TDSSKiller will launch automatically after the reboot. Also your computer may seem very slow and unusable. This is normal. Give it enough time to load your background programs.
  • Then click on Change parameters in TDSSKiller.
  • Make sure to check:

    • Services and drivers
    • Boot sectors
    • Loaded modules
    • Verify Driver Digital Signature
    • Detect TDLFS file system

  • then click OK.
  • Click the Start Scan button to start the scan.
  • If a suspicious object is detected, the default action will be Skip
  • If malicious objects are found, they will show in the Scan results and offer three (3) options.
  • Ensure Cure is selected for malicious objects

    Posted Image
  • Click Continue then Reboot now to finish the cleaning process.
  • Note: If Cure is not available, please choose Skip instead, do not choose Delete unless instructed.
A report will be created in your root directory, (usually C:\\ folder) in the form of \"TDSSKiller.[Version]_[Date]_[Time]_log.txt\". Please copy and paste its contents on your next reply.
  • 0

#7
ttbcs

ttbcs

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 102 posts
06:36:43.0625 3940 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
06:36:50.0676 3940 ============================================================
06:36:50.0676 3940 Current date / time: 2014/01/31 06:36:50.0676
06:36:50.0676 3940 SystemInfo:
06:36:50.0676 3940
06:36:50.0676 3940 OS Version: 6.1.7601 ServicePack: 1.0
06:36:50.0676 3940 Product type: Workstation
06:36:50.0676 3940 ComputerName: KAELABUG
06:36:50.0676 3940 UserName: Nakaela BC
06:36:50.0676 3940 Windows directory: C:\Windows
06:36:50.0676 3940 System windows directory: C:\Windows
06:36:50.0676 3940 Running under WOW64
06:36:50.0676 3940 Processor architecture: Intel x64
06:36:50.0676 3940 Number of processors: 4
06:36:50.0676 3940 Page size: 0x1000
06:36:50.0676 3940 Boot type: Normal boot
06:36:50.0676 3940 ============================================================
06:36:52.0220 3940 BG loaded
06:36:55.0106 3940 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
06:36:55.0247 3940 ============================================================
06:36:55.0247 3940 \Device\Harddisk0\DR0:
06:36:55.0247 3940 MBR partitions:
06:36:55.0247 3940 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
06:36:55.0247 3940 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x19200000
06:36:55.0283 3940 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x19233000, BlocksNum 0x9A35800
06:36:55.0283 3940 ============================================================
06:36:55.0328 3940 C: <-> \Device\Harddisk0\DR0\Partition2
06:36:55.0408 3940 D: <-> \Device\Harddisk0\DR0\Partition3
06:36:55.0408 3940 ============================================================
06:36:55.0408 3940 Initialize success
06:36:55.0408 3940 ============================================================
06:37:22.0895 4312 ============================================================
06:37:22.0895 4312 Scan started
06:37:22.0895 4312 Mode: Manual; SigCheck; TDLFS;
06:37:22.0895 4312 ============================================================
06:37:25.0703 4312 ================ Scan system memory ========================
06:37:25.0703 4312 System memory - ok
06:37:25.0703 4312 ================ Scan services =============================
06:37:25.0890 4312 [ 620C92D6EEFA9853A3EAD41B5EB9B5FD ] !SASCORE C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
06:37:26.0077 4312 !SASCORE - ok
06:37:26.0889 4312 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
06:37:27.0045 4312 1394ohci - ok
06:37:27.0216 4312 [ E656FE10D6D27794AFA08136685A69E8 ] 53074327 C:\Windows\system32\DRIVERS\53074327.sys
06:37:27.0279 4312 53074327 - ok
06:37:27.0388 4312 [ 8ACBB0D11A99EF06BFFD09C5B4DF0925 ] 5415395drv C:\Windows\system32\DRIVERS\5415395drv.sys
06:37:27.0435 4312 5415395drv - ok
06:37:27.0481 4312 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
06:37:27.0544 4312 ACPI - ok
06:37:27.0559 4312 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
06:37:27.0731 4312 AcpiPmi - ok
06:37:27.0934 4312 [ B362181ED3771DC03B4141927C80F801 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
06:37:27.0949 4312 AdobeARMservice - ok
06:37:28.0651 4312 [ 2471BCB6E1388A3484E78243A1BE5F33 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
06:37:28.0698 4312 AdobeFlashPlayerUpdateSvc - ok
06:37:28.0776 4312 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
06:37:28.0807 4312 adp94xx - ok
06:37:28.0854 4312 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\drivers\adpahci.sys
06:37:28.0870 4312 adpahci - ok
06:37:28.0917 4312 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
06:37:28.0932 4312 adpu320 - ok
06:37:28.0995 4312 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
06:37:30.0570 4312 AeLookupSvc - ok
06:37:30.0633 4312 [ 79059559E89D06E8B80CE2944BE20228 ] AFD C:\Windows\system32\drivers\afd.sys
06:37:30.0711 4312 AFD - ok
06:37:30.0773 4312 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
06:37:30.0820 4312 agp440 - ok
06:37:30.0867 4312 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
06:37:30.0976 4312 ALG - ok
06:37:31.0007 4312 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
06:37:31.0023 4312 aliide - ok
06:37:31.0147 4312 [ D62189E5DDB3534658AD6FDAFCB4B174 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
06:37:31.0288 4312 AMD External Events Utility - ok
06:37:31.0397 4312 AMD FUEL Service - ok
06:37:31.0428 4312 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
06:37:31.0475 4312 amdide - ok
06:37:31.0522 4312 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
06:37:31.0615 4312 AmdK8 - ok
06:37:32.0271 4312 [ 2BF7F9033D6271642520070FDA35F7D3 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
06:37:32.0520 4312 amdkmdag - ok
06:37:32.0567 4312 [ 89B31E22D9AFA62EA2B7BB96AB753BC0 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
06:37:32.0661 4312 amdkmdap - ok
06:37:32.0739 4312 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
06:37:32.0832 4312 AmdPPM - ok
06:37:32.0895 4312 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
06:37:32.0941 4312 amdsata - ok
06:37:33.0019 4312 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
06:37:33.0051 4312 amdsbs - ok
06:37:33.0129 4312 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
06:37:33.0160 4312 amdxata - ok
06:37:33.0238 4312 [ BB4FE7889DB9CBBE61A308E99697F53C ] amd_sata C:\Windows\system32\drivers\amd_sata.sys
06:37:33.0238 4312 amd_sata - ok
06:37:33.0300 4312 [ 5631CBA53F1CBEA3F9E88348E6723391 ] amd_xata C:\Windows\system32\drivers\amd_xata.sys
06:37:33.0331 4312 amd_xata - ok
06:37:33.0487 4312 [ E8CCB797DAF80779C768BD3A9FC8FCAF ] AODDriver4.2.0 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys
06:37:33.0534 4312 AODDriver4.2.0 - ok
06:37:33.0565 4312 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
06:37:36.0451 4312 AppID - ok
06:37:36.0561 4312 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
06:37:36.0748 4312 AppIDSvc - ok
06:37:36.0873 4312 [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo C:\Windows\System32\appinfo.dll
06:37:36.0997 4312 Appinfo - ok
06:37:37.0153 4312 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\drivers\arc.sys
06:37:37.0200 4312 arc - ok
06:37:37.0231 4312 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\drivers\arcsas.sys
06:37:37.0263 4312 arcsas - ok
06:37:38.0043 4312 [ 9A262EDD17F8473B91B333D6B031A901 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
06:37:38.0355 4312 aspnet_state - ok
06:37:38.0386 4312 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
06:37:38.0479 4312 AsyncMac - ok
06:37:38.0557 4312 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
06:37:38.0589 4312 atapi - ok
06:37:38.0620 4312 [ EF3B9AD9D03047EBA1369732B2F55AFE ] AthBTPort C:\Windows\system32\DRIVERS\btath_flt.sys
06:37:38.0760 4312 AthBTPort - ok
06:37:39.0135 4312 [ 650F111D5CDA64C10AE4B9D1BA9D4FFF ] Atheros Bt&Wlan Coex Agent C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
06:37:39.0166 4312 Atheros Bt&Wlan Coex Agent ( UnsignedFile.Multi.Generic ) - warning
06:37:39.0166 4312 Atheros Bt&Wlan Coex Agent - detected UnsignedFile.Multi.Generic (1)
06:37:39.0322 4312 [ 88D8999350D12127438D57B54A432946 ] AtherosSvc C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
06:37:39.0431 4312 AtherosSvc ( UnsignedFile.Multi.Generic ) - warning
06:37:39.0431 4312 AtherosSvc - detected UnsignedFile.Multi.Generic (1)
06:37:39.0634 4312 [ 3660381F5EA18E14A06C98591B533AD6 ] athr C:\Windows\system32\DRIVERS\athrx.sys
06:37:40.0133 4312 athr - ok
06:37:40.0196 4312 [ 770A3B0D78232B0C1054495392A1FBA3 ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW76.sys
06:37:40.0320 4312 AtiHDAudioService - ok
06:37:40.0430 4312 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
06:37:40.0539 4312 AudioEndpointBuilder - ok
06:37:40.0570 4312 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
06:37:40.0617 4312 AudioSrv - ok
06:37:40.0695 4312 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
06:37:41.0584 4312 AxInstSV - ok
06:37:41.0678 4312 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
06:37:41.0818 4312 b06bdrv - ok
06:37:41.0865 4312 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
06:37:41.0943 4312 b57nd60a - ok
06:37:42.0036 4312 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
06:37:42.0130 4312 BDESVC - ok
06:37:42.0208 4312 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
06:37:42.0348 4312 Beep - ok
06:37:42.0489 4312 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
06:37:42.0660 4312 BFE - ok
06:37:42.0754 4312 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll
06:37:42.0848 4312 BITS - ok
06:37:42.0879 4312 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
06:37:42.0910 4312 blbdrive - ok
06:37:42.0941 4312 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
06:37:42.0988 4312 bowser - ok
06:37:43.0035 4312 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
06:37:43.0113 4312 BrFiltLo - ok
06:37:43.0128 4312 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
06:37:43.0144 4312 BrFiltUp - ok
06:37:43.0191 4312 [ 5C2F352A4E961D72518261257AAE204B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
06:37:43.0284 4312 BridgeMP - ok
06:37:43.0347 4312 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
06:37:43.0456 4312 Browser - ok
06:37:43.0487 4312 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
06:37:43.0628 4312 Brserid - ok
06:37:43.0737 4312 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
06:37:44.0142 4312 BrSerWdm - ok
06:37:44.0205 4312 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
06:37:44.0298 4312 BrUsbMdm - ok
06:37:44.0439 4312 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
06:37:44.0532 4312 BrUsbSer - ok
06:37:44.0657 4312 [ 72EA2FCD6456BFC6936EDA474EA08E48 ] BTATH_A2DP C:\Windows\system32\drivers\btath_a2dp.sys
06:37:44.0876 4312 BTATH_A2DP - ok
06:37:44.0969 4312 [ FFA0D38141FB7B93AFF465B82596D1EC ] btath_avdt C:\Windows\system32\drivers\btath_avdt.sys
06:37:45.0188 4312 btath_avdt - ok
06:37:45.0375 4312 [ A65A9B2C3A9985D8122B2B6D3D2F4C1B ] BTATH_BUS C:\Windows\system32\DRIVERS\btath_bus.sys
06:37:45.0453 4312 BTATH_BUS - ok
06:37:45.0546 4312 [ E95F7E9F4C8A88610F4142E60CF196BE ] BTATH_HCRP C:\Windows\system32\DRIVERS\btath_hcrp.sys
06:37:45.0734 4312 BTATH_HCRP - ok
06:37:45.0780 4312 [ 1A5C05524C0C503C87F930F154B7145D ] BTATH_LWFLT C:\Windows\system32\DRIVERS\btath_lwflt.sys
06:37:45.0858 4312 BTATH_LWFLT - ok
06:37:45.0952 4312 [ C2FD5B24F648DAC8143C51514307B0EC ] BTATH_RCP C:\Windows\system32\DRIVERS\btath_rcp.sys
06:37:46.0014 4312 BTATH_RCP - ok
06:37:46.0139 4312 [ 958F4AEC324A2BB0DC5B8F9197E779A0 ] BtFilter C:\Windows\system32\DRIVERS\btfilter.sys
06:37:46.0233 4312 BtFilter - ok
06:37:46.0311 4312 [ CF98190A94F62E405C8CB255018B2315 ] BthEnum C:\Windows\system32\DRIVERS\BthEnum.sys
06:37:46.0404 4312 BthEnum - ok
06:37:46.0467 4312 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
06:37:46.0560 4312 BTHMODEM - ok
06:37:46.0654 4312 [ 02DD601B708DD0667E1331FA8518E9FF ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
06:37:46.0732 4312 BthPan - ok
06:37:46.0826 4312 [ 738D0E9272F59EB7A1449C3EC118E6C4 ] BTHPORT C:\Windows\system32\Drivers\BTHport.sys
06:37:46.0935 4312 BTHPORT - ok
06:37:46.0997 4312 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
06:37:47.0122 4312 bthserv - ok
06:37:47.0169 4312 [ F188B7394D81010767B6DF3178519A37 ] BTHUSB C:\Windows\system32\Drivers\BTHUSB.sys
06:37:47.0262 4312 BTHUSB - ok
06:37:47.0309 4312 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
06:37:47.0481 4312 cdfs - ok
06:37:47.0543 4312 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
06:37:47.0590 4312 cdrom - ok
06:37:47.0637 4312 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
06:37:47.0668 4312 CertPropSvc - ok
06:37:47.0699 4312 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\drivers\circlass.sys
06:37:47.0746 4312 circlass - ok
06:37:47.0855 4312 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
06:37:47.0886 4312 CLFS - ok
06:37:48.0089 4312 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
06:37:48.0136 4312 clr_optimization_v2.0.50727_32 - ok
06:37:48.0323 4312 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
06:37:48.0370 4312 clr_optimization_v2.0.50727_64 - ok
06:37:48.0573 4312 [ E87213F37A13E2B54391E40934F071D0 ] clr_optimization_v4.0.30319_32 C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
06:37:49.0025 4312 clr_optimization_v4.0.30319_32 - ok
06:37:49.0072 4312 [ 4AEDAB50F83580D0B4D6CF78191F92AA ] clr_optimization_v4.0.30319_64 C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
06:37:49.0478 4312 clr_optimization_v4.0.30319_64 - ok
06:37:49.0509 4312 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
06:37:49.0540 4312 CmBatt - ok
06:37:49.0571 4312 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
06:37:49.0587 4312 cmdide - ok
06:37:49.0727 4312 [ EBF28856F69CF094A902F884CF989706 ] CNG C:\Windows\system32\Drivers\cng.sys
06:37:49.0790 4312 CNG - ok
06:37:49.0852 4312 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
06:37:49.0883 4312 Compbatt - ok
06:37:49.0930 4312 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
06:37:50.0008 4312 CompositeBus - ok
06:37:50.0008 4312 COMSysApp - ok
06:37:50.0039 4312 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
06:37:50.0055 4312 crcdisk - ok
06:37:50.0117 4312 [ 6B400F211BEE880A37A1ED0368776BF4 ] CryptSvc C:\Windows\system32\cryptsvc.dll
06:37:50.0211 4312 CryptSvc - ok
06:37:50.0304 4312 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
06:37:50.0414 4312 DcomLaunch - ok
06:37:50.0460 4312 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
06:37:50.0554 4312 defragsvc - ok
06:37:50.0585 4312 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
06:37:50.0663 4312 DfsC - ok
06:37:50.0694 4312 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
06:37:50.0804 4312 Dhcp - ok
06:37:50.0850 4312 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
06:37:50.0897 4312 discache - ok
06:37:50.0944 4312 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\drivers\disk.sys
06:37:50.0975 4312 Disk - ok
06:37:51.0022 4312 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
06:37:51.0084 4312 Dnscache - ok
06:37:51.0147 4312 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
06:37:51.0287 4312 dot3svc - ok
06:37:51.0318 4312 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
06:37:51.0381 4312 DPS - ok
06:37:51.0459 4312 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
06:37:51.0537 4312 drmkaud - ok
06:37:51.0615 4312 [ 88612F1CE3BF42256913BF6E61C70D52 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
06:37:51.0646 4312 DXGKrnl - ok
06:37:51.0708 4312 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
06:37:51.0786 4312 EapHost - ok
06:37:51.0974 4312 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\drivers\evbda.sys
06:37:52.0067 4312 ebdrv - ok
06:37:52.0176 4312 [ 4D71227301DD8D09097B9E4CC6527E5A ] EFS C:\Windows\System32\lsass.exe
06:37:52.0223 4312 EFS - ok
06:37:52.0379 4312 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
06:37:52.0535 4312 ehRecvr - ok
06:37:52.0551 4312 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
06:37:52.0598 4312 ehSched - ok
06:37:52.0691 4312 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\drivers\elxstor.sys
06:37:52.0738 4312 elxstor - ok
06:37:52.0738 4312 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
06:37:52.0800 4312 ErrDev - ok
06:37:52.0878 4312 [ FD0D922DE7D2AD9E98562CAA19A7CD2D ] ETD C:\Windows\system32\DRIVERS\ETD.sys
06:37:52.0910 4312 ETD - ok
06:37:52.0972 4312 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
06:37:53.0066 4312 EventSystem - ok
06:37:53.0112 4312 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
06:37:53.0190 4312 exfat - ok
06:37:53.0206 4312 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
06:37:53.0284 4312 fastfat - ok
06:37:53.0346 4312 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
06:37:53.0424 4312 Fax - ok
06:37:53.0440 4312 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\drivers\fdc.sys
06:37:53.0471 4312 fdc - ok
06:37:53.0565 4312 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
06:37:53.0705 4312 fdPHost - ok
06:37:53.0736 4312 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
06:37:53.0799 4312 FDResPub - ok
06:37:53.0830 4312 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
06:37:53.0877 4312 FileInfo - ok
06:37:53.0892 4312 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
06:37:53.0986 4312 Filetrace - ok
06:37:54.0048 4312 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
06:37:54.0095 4312 flpydisk - ok
06:37:54.0126 4312 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
06:37:54.0158 4312 FltMgr - ok
06:37:54.0267 4312 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\Windows\system32\FntCache.dll
06:37:54.0407 4312 FontCache - ok
06:37:54.0532 4312 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
06:37:54.0594 4312 FontCache3.0.0.0 - ok
06:37:54.0626 4312 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
06:37:54.0641 4312 FsDepends - ok
06:37:54.0704 4312 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
06:37:54.0719 4312 Fs_Rec - ok
06:37:54.0735 4312 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
06:37:54.0766 4312 fvevol - ok
06:37:54.0844 4312 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
06:37:54.0938 4312 gagp30kx - ok
06:37:55.0156 4312 [ 521A469CAF61F00E1DE081CC2099C1D6 ] GameConsoleService C:\Program Files (x86)\WildGames\Game Console - WildGames\GameConsoleService.exe
06:37:55.0203 4312 GameConsoleService - ok
06:37:55.0281 4312 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
06:37:55.0390 4312 gpsvc - ok
06:37:55.0530 4312 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
06:37:55.0562 4312 gupdate - ok
06:37:55.0577 4312 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
06:37:55.0593 4312 gupdatem - ok
06:37:55.0640 4312 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
06:37:55.0686 4312 hcw85cir - ok
06:37:55.0718 4312 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
06:37:55.0764 4312 HDAudBus - ok
06:37:55.0780 4312 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
06:37:55.0811 4312 HidBatt - ok
06:37:55.0842 4312 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\drivers\hidbth.sys
06:37:55.0905 4312 HidBth - ok
06:37:55.0920 4312 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\drivers\hidir.sys
06:37:55.0952 4312 HidIr - ok
06:37:55.0998 4312 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\System32\hidserv.dll
06:37:56.0076 4312 hidserv - ok
06:37:56.0108 4312 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\drivers\hidusb.sys
06:37:56.0139 4312 HidUsb - ok
06:37:56.0186 4312 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
06:37:56.0279 4312 hkmsvc - ok
06:37:56.0342 4312 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
06:37:56.0466 4312 HomeGroupListener - ok
06:37:56.0513 4312 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
06:37:56.0560 4312 HomeGroupProvider - ok
06:37:56.0591 4312 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
06:37:56.0607 4312 HpSAMD - ok
06:37:56.0654 4312 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
06:37:56.0732 4312 HTTP - ok
06:37:56.0825 4312 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
06:37:56.0841 4312 hwpolicy - ok
06:37:56.0903 4312 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
06:37:56.0919 4312 i8042prt - ok
06:37:56.0966 4312 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
06:37:56.0997 4312 iaStorV - ok
06:37:57.0153 4312 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
06:37:57.0231 4312 idsvc - ok
06:37:57.0278 4312 IEEtwCollectorService - ok
06:37:57.0574 4312 [ A87261EF1546325B559374F5689CF5BC ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys
06:37:57.0886 4312 igfx - ok
06:37:57.0995 4312 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\drivers\iirsp.sys
06:37:58.0026 4312 iirsp - ok
06:37:58.0120 4312 [ 344789398EC3EE5A4E00C52B31847946 ] IKEEXT C:\Windows\System32\ikeext.dll
06:37:58.0167 4312 IKEEXT - ok
06:37:58.0323 4312 [ 4BBB5A55EEB5EC11B20FCBB4CBB49357 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
06:37:58.0416 4312 IntcAzAudAddService - ok
06:37:58.0494 4312 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
06:37:58.0541 4312 intelide - ok
06:37:58.0697 4312 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\drivers\intelppm.sys
06:37:58.0838 4312 intelppm - ok
06:37:58.0900 4312 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
06:37:58.0978 4312 IPBusEnum - ok
06:37:59.0018 4312 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
06:37:59.0066 4312 IpFilterDriver - ok
06:37:59.0164 4312 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
06:37:59.0285 4312 iphlpsvc - ok
06:37:59.0324 4312 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
06:37:59.0366 4312 IPMIDRV - ok
06:37:59.0405 4312 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
06:37:59.0475 4312 IPNAT - ok
06:37:59.0591 4312 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
06:37:59.0683 4312 IRENUM - ok
06:37:59.0705 4312 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
06:37:59.0742 4312 isapnp - ok
06:37:59.0776 4312 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
06:37:59.0827 4312 iScsiPrt - ok
06:37:59.0844 4312 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
06:37:59.0864 4312 kbdclass - ok
06:37:59.0894 4312 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
06:37:59.0953 4312 kbdhid - ok
06:37:59.0989 4312 [ 4D71227301DD8D09097B9E4CC6527E5A ] KeyIso C:\Windows\system32\lsass.exe
06:38:00.0010 4312 KeyIso - ok
06:38:00.0047 4312 [ 8F489706472F7E9A06BAAA198703FA64 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
06:38:00.0075 4312 KSecDD - ok
06:38:00.0104 4312 [ 868A2CAAB12EFC7A021682BCA0EEC54C ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
06:38:00.0128 4312 KSecPkg - ok
06:38:00.0195 4312 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
06:38:00.0272 4312 ksthunk - ok
06:38:00.0405 4312 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
06:38:00.0562 4312 KtmRm - ok
06:38:00.0642 4312 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\System32\srvsvc.dll
06:38:00.0711 4312 LanmanServer - ok
06:38:00.0754 4312 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
06:38:00.0838 4312 LanmanWorkstation - ok
06:38:00.0878 4312 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
06:38:00.0948 4312 lltdio - ok
06:38:00.0989 4312 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
06:38:01.0103 4312 lltdsvc - ok
06:38:01.0127 4312 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
06:38:01.0181 4312 lmhosts - ok
06:38:01.0208 4312 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
06:38:01.0230 4312 LSI_FC - ok
06:38:01.0270 4312 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
06:38:01.0294 4312 LSI_SAS - ok
06:38:01.0323 4312 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
06:38:01.0360 4312 LSI_SAS2 - ok
06:38:01.0381 4312 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
06:38:01.0403 4312 LSI_SCSI - ok
06:38:01.0429 4312 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
06:38:01.0497 4312 luafv - ok
06:38:01.0541 4312 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
06:38:01.0602 4312 Mcx2Svc - ok
06:38:01.0644 4312 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\drivers\megasas.sys
06:38:01.0685 4312 megasas - ok
06:38:01.0712 4312 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
06:38:01.0739 4312 MegaSR - ok
06:38:01.0786 4312 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
06:38:01.0854 4312 MMCSS - ok
06:38:01.0908 4312 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
06:38:01.0987 4312 Modem - ok
06:38:02.0006 4312 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
06:38:02.0063 4312 monitor - ok
06:38:02.0095 4312 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
06:38:02.0113 4312 mouclass - ok
06:38:02.0125 4312 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
06:38:02.0197 4312 mouhid - ok
06:38:02.0223 4312 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
06:38:02.0246 4312 mountmgr - ok
06:38:02.0440 4312 [ 3B9398E0146855B1DC0E3D9769C80F01 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
06:38:02.0494 4312 MozillaMaintenance - ok
06:38:02.0560 4312 [ C6B88D62F20AC646C6BD5C032EC2FAF9 ] MpFilter C:\Windows\system32\DRIVERS\MpFilter.sys
06:38:02.0597 4312 MpFilter - ok
06:38:02.0633 4312 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
06:38:02.0683 4312 mpio - ok
06:38:02.0730 4312 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
06:38:02.0793 4312 mpsdrv - ok
06:38:02.0880 4312 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
06:38:02.0953 4312 MpsSvc - ok
06:38:03.0002 4312 [ 1A4F75E63C9FB84B85DFFC6B63FD5404 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
06:38:03.0056 4312 MRxDAV - ok
06:38:03.0200 4312 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
06:38:03.0288 4312 mrxsmb - ok
06:38:03.0327 4312 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
06:38:03.0349 4312 mrxsmb10 - ok
06:38:03.0392 4312 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
06:38:03.0424 4312 mrxsmb20 - ok
06:38:03.0460 4312 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
06:38:03.0481 4312 msahci - ok
06:38:03.0512 4312 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
06:38:03.0537 4312 msdsm - ok
06:38:03.0594 4312 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
06:38:03.0627 4312 MSDTC - ok
06:38:03.0689 4312 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
06:38:03.0736 4312 Msfs - ok
06:38:03.0767 4312 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
06:38:03.0830 4312 mshidkmdf - ok
06:38:03.0845 4312 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
06:38:03.0877 4312 msisadrv - ok
06:38:03.0892 4312 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
06:38:03.0986 4312 MSiSCSI - ok
06:38:03.0986 4312 msiserver - ok
06:38:04.0001 4312 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
06:38:04.0079 4312 MSKSSRV - ok
06:38:04.0173 4312 [ 7675E15D1B2180745E4DA4D26AAD7385 ] MsMpSvc c:\Program Files\Microsoft Security Client\MsMpEng.exe
06:38:04.0204 4312 MsMpSvc - ok
06:38:04.0220 4312 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
06:38:04.0298 4312 MSPCLOCK - ok
06:38:04.0345 4312 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
06:38:04.0423 4312 MSPQM - ok
06:38:04.0438 4312 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
06:38:04.0469 4312 MsRPC - ok
06:38:04.0485 4312 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
06:38:04.0503 4312 mssmbios - ok
06:38:04.0549 4312 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
06:38:04.0643 4312 MSTEE - ok
06:38:04.0674 4312 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
06:38:04.0752 4312 MTConfig - ok
06:38:04.0783 4312 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
06:38:04.0799 4312 Mup - ok
06:38:04.0846 4312 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
06:38:04.0986 4312 napagent - ok
06:38:05.0017 4312 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
06:38:05.0111 4312 NativeWifiP - ok
06:38:05.0173 4312 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys
06:38:05.0220 4312 NDIS - ok
06:38:05.0283 4312 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
06:38:05.0377 4312 NdisCap - ok
06:38:05.0408 4312 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
06:38:05.0455 4312 NdisTapi - ok
06:38:05.0502 4312 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
06:38:05.0580 4312 Ndisuio - ok
06:38:05.0611 4312 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
06:38:05.0689 4312 NdisWan - ok
06:38:05.0720 4312 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
06:38:05.0783 4312 NDProxy - ok
06:38:05.0798 4312 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
06:38:05.0876 4312 NetBIOS - ok
06:38:05.0892 4312 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
06:38:05.0939 4312 NetBT - ok
06:38:05.0954 4312 [ 4D71227301DD8D09097B9E4CC6527E5A ] Netlogon C:\Windows\system32\lsass.exe
06:38:05.0986 4312 Netlogon - ok
06:38:06.0032 4312 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
06:38:06.0095 4312 Netman - ok
06:38:06.0283 4312 [ 21318671BCAD3ACF16638F98D4D00973 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
06:38:06.0455 4312 NetMsmqActivator - ok
06:38:06.0533 4312 [ 21318671BCAD3ACF16638F98D4D00973 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
06:38:06.0579 4312 NetPipeActivator - ok
06:38:06.0642 4312 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
06:38:06.0720 4312 netprofm - ok
06:38:06.0923 4312 [ 21318671BCAD3ACF16638F98D4D00973 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
06:38:06.0969 4312 NetTcpActivator - ok
06:38:07.0094 4312 [ 21318671BCAD3ACF16638F98D4D00973 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
06:38:07.0110 4312 NetTcpPortSharing - ok
06:38:07.0219 4312 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
06:38:07.0235 4312 nfrd960 - ok
06:38:07.0313 4312 [ ACE8C64C57E4A711473C8BC10ADF692B ] NisDrv C:\Windows\system32\DRIVERS\NisDrvWFP.sys
06:38:07.0359 4312 NisDrv - ok
06:38:07.0375 4312 [ 6247E8B31ED0A9D6BC5A26276E49BEB3 ] NisSrv c:\Program Files\Microsoft Security Client\NisSrv.exe
06:38:07.0406 4312 NisSrv - ok
06:38:07.0437 4312 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll
06:38:07.0484 4312 NlaSvc - ok
06:38:07.0703 4312 [ 5839A8027D6D324A7CD494051A96628C ] NOBU C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
06:38:07.0843 4312 NOBU - ok
06:38:07.0874 4312 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
06:38:07.0921 4312 Npfs - ok
06:38:07.0952 4312 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
06:38:08.0015 4312 nsi - ok
06:38:08.0061 4312 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
06:38:08.0186 4312 nsiproxy - ok
06:38:08.0264 4312 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
06:38:08.0311 4312 Ntfs - ok
06:38:08.0358 4312 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
06:38:08.0421 4312 Null - ok
06:38:08.0468 4312 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
06:38:08.0499 4312 nvraid - ok
06:38:08.0515 4312 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
06:38:08.0546 4312 nvstor - ok
06:38:08.0562 4312 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
06:38:08.0593 4312 nv_agp - ok
06:38:08.0624 4312 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
06:38:08.0671 4312 ohci1394 - ok
06:38:08.0811 4312 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
06:38:08.0842 4312 ose - ok
06:38:09.0186 4312 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
06:38:09.0451 4312 osppsvc - ok
06:38:09.0498 4312 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
06:38:09.0560 4312 p2pimsvc - ok
06:38:09.0576 4312 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
06:38:09.0622 4312 p2psvc - ok
06:38:09.0669 4312 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\drivers\parport.sys
06:38:09.0700 4312 Parport - ok
06:38:09.0763 4312 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
06:38:09.0794 4312 partmgr - ok
06:38:09.0841 4312 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
06:38:09.0935 4312 PcaSvc - ok
06:38:09.0967 4312 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
06:38:09.0982 4312 pci - ok
06:38:10.0029 4312 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
06:38:10.0107 4312 pciide - ok
06:38:10.0138 4312 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
06:38:10.0169 4312 pcmcia - ok
06:38:10.0216 4312 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
06:38:10.0247 4312 pcw - ok
06:38:10.0279 4312 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
06:38:10.0357 4312 PEAUTH - ok
06:38:10.0653 4312 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
06:38:10.0747 4312 PerfHost - ok
06:38:10.0840 4312 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
06:38:10.0934 4312 pla - ok
06:38:10.0981 4312 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
06:38:11.0059 4312 PlugPlay - ok
06:38:11.0074 4312 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
06:38:11.0105 4312 PNRPAutoReg - ok
06:38:11.0137 4312 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
06:38:11.0152 4312 PNRPsvc - ok
06:38:11.0199 4312 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
06:38:11.0261 4312 PolicyAgent - ok
06:38:11.0293 4312 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
06:38:11.0355 4312 Power - ok
06:38:11.0386 4312 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
06:38:11.0480 4312 PptpMiniport - ok
06:38:11.0495 4312 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\drivers\processr.sys
06:38:11.0589 4312 Processor - ok
06:38:11.0651 4312 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
06:38:11.0714 4312 ProfSvc - ok
06:38:11.0729 4312 [ 4D71227301DD8D09097B9E4CC6527E5A ] ProtectedStorage C:\Windows\system32\lsass.exe
06:38:11.0745 4312 ProtectedStorage - ok
06:38:11.0776 4312 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
06:38:11.0839 4312 Psched - ok
06:38:12.0135 4312 [ DD3FD48D69F5FBBB21D46D1514C1C2DB ] PSI C:\Windows\system32\DRIVERS\psi_mf_amd64.sys
06:38:12.0182 4312 PSI - ok
06:38:12.0308 4312 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
06:38:12.0386 4312 ql2300 - ok
06:38:12.0448 4312 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
06:38:12.0464 4312 ql40xx - ok
06:38:12.0573 4312 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
06:38:12.0635 4312 QWAVE - ok
06:38:12.0682 4312 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
06:38:12.0776 4312 QWAVEdrv - ok
06:38:12.0822 4312 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
06:38:12.0900 4312 RasAcd - ok
06:38:12.0963 4312 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
06:38:13.0041 4312 RasAgileVpn - ok
06:38:13.0103 4312 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
06:38:13.0228 4312 RasAuto - ok
06:38:13.0368 4312 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
06:38:13.0431 4312 Rasl2tp - ok
06:38:13.0509 4312 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
06:38:13.0571 4312 RasMan - ok
06:38:13.0602 4312 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
06:38:13.0665 4312 RasPppoe - ok
06:38:13.0696 4312 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
06:38:13.0790 4312 RasSstp - ok
06:38:14.0523 4312 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
06:38:14.0741 4312 rdbss - ok
06:38:14.0819 4312 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\drivers\rdpbus.sys
06:38:14.0913 4312 rdpbus - ok
06:38:14.0944 4312 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
06:38:15.0022 4312 RDPCDD - ok
06:38:15.0069 4312 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
06:38:15.0162 4312 RDPENCDD - ok
06:38:15.0194 4312 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
06:38:15.0256 4312 RDPREFMP - ok
06:38:15.0459 4312 [ 313F68E1A3E6345A4F47A36B07062F34 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
06:38:15.0646 4312 RdpVideoMiniport - ok
06:38:15.0740 4312 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
06:38:15.0927 4312 RDPWD - ok
06:38:15.0958 4312 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
06:38:15.0974 4312 rdyboost - ok
06:38:16.0068 4312 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
06:38:16.0162 4312 RemoteAccess - ok
06:38:16.0193 4312 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
06:38:16.0287 4312 RemoteRegistry - ok
06:38:16.0333 4312 [ 3DD798846E2C28102B922C56E71B7932 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
06:38:16.0443 4312 RFCOMM - ok
06:38:16.0692 4312 [ F12A68ED55053940CADD59CA5E3468DD ] RichVideo C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
06:38:16.0817 4312 RichVideo ( UnsignedFile.Multi.Generic ) - warning
06:38:16.0817 4312 RichVideo - detected UnsignedFile.Multi.Generic (1)
06:38:16.0926 4312 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
06:38:16.0973 4312 RpcEptMapper - ok
06:38:17.0020 4312 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
06:38:17.0129 4312 RpcLocator - ok
06:38:17.0160 4312 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\System32\rpcss.dll
06:38:17.0207 4312 RpcSs - ok
06:38:17.0254 4312 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
06:38:17.0285 4312 rspndr - ok
06:38:17.0394 4312 [ E50CFB92986DCAB49DE93788FD695813 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
06:38:17.0441 4312 RTL8167 - ok
06:38:17.0535 4312 [ 4CA0DBA9E224473D664C25E411F5A3BD ] rtport C:\windows\SysWOW64\drivers\rtport.sys
06:38:17.0645 4312 rtport - ok
06:38:17.0692 4312 [ 62DB6CC4B0818F1B5F3441241B098F12 ] SABI C:\windows\system32\Drivers\SABI.sys
06:38:17.0754 4312 SABI - ok
06:38:17.0801 4312 [ 4D71227301DD8D09097B9E4CC6527E5A ] SamSs C:\Windows\system32\lsass.exe
06:38:17.0832 4312 SamSs - ok
06:38:18.0253 4312 [ 5E66ABD041D76C46CBF55AEF910FCA56 ] SamsungDeviceConfigurationWinService C:\Program Files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe
06:38:18.0269 4312 SamsungDeviceConfigurationWinService ( UnsignedFile.Multi.Generic ) - warning
06:38:18.0269 4312 SamsungDeviceConfigurationWinService - detected UnsignedFile.Multi.Generic (1)
06:38:18.0440 4312 [ 3289766038DB2CB14D07DC84392138D5 ] SASDIFSV C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS
06:38:18.0472 4312 SASDIFSV - ok
06:38:18.0503 4312 [ 58A38E75F3316A83C23DF6173D41F2B5 ] SASKUTIL C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS
06:38:18.0518 4312 SASKUTIL - ok
06:38:19.0049 4312 SBIOSIO - ok
06:38:19.0096 4312 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
06:38:19.0158 4312 sbp2port - ok
06:38:19.0252 4312 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
06:38:19.0361 4312 SCardSvr - ok
06:38:19.0408 4312 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
06:38:19.0470 4312 scfilter - ok
06:38:19.0642 4312 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
06:38:19.0720 4312 Schedule - ok
06:38:19.0766 4312 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
06:38:19.0813 4312 SCPolicySvc - ok
06:38:19.0955 4312 [ 111E0EBC0AD79CB0FA014B907B231CF0 ] sdbus C:\Windows\system32\DRIVERS\sdbus.sys
06:38:20.0017 4312 sdbus - ok
06:38:20.0079 4312 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
06:38:20.0173 4312 SDRSVC - ok
06:38:20.0235 4312 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
06:38:20.0329 4312 secdrv - ok
06:38:20.0360 4312 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
06:38:20.0423 4312 seclogon - ok
06:38:20.0813 4312 [ 398A81D590424441B2F5C5C08073CADB ] Secunia PSI Agent C:\Program Files (x86)\Secunia\PSI\PSIA.exe
06:38:20.0937 4312 Secunia PSI Agent - ok
06:38:21.0296 4312 [ 8C2D3A80FC90A860F0F24DEB67471481 ] Secunia Update Agent C:\Program Files (x86)\Secunia\PSI\sua.exe
06:38:21.0343 4312 Secunia Update Agent - ok
06:38:21.0421 4312 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\system32\sens.dll
06:38:21.0515 4312 SENS - ok
06:38:21.0608 4312 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
06:38:21.0827 4312 SensrSvc - ok
06:38:21.0889 4312 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\drivers\serenum.sys
06:38:21.0983 4312 Serenum - ok
06:38:22.0014 4312 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\drivers\serial.sys
06:38:22.0045 4312 Serial - ok
06:38:22.0092 4312 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\drivers\sermouse.sys
06:38:22.0154 4312 sermouse - ok
06:38:22.0310 4312 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
06:38:22.0373 4312 SessionEnv - ok
06:38:22.0451 4312 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
06:38:22.0529 4312 sffdisk - ok
06:38:22.0560 4312 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
06:38:22.0622 4312 sffp_mmc - ok
06:38:22.0638 4312 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
06:38:22.0685 4312 sffp_sd - ok
06:38:22.0700 4312 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
06:38:22.0778 4312 sfloppy - ok
06:38:23.0355 4312 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
06:38:23.0418 4312 SharedAccess - ok
06:38:23.0668 4312 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
06:38:23.0746 4312 ShellHWDetection - ok
06:38:23.0793 4312 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
06:38:23.0840 4312 SiSRaid2 - ok
06:38:23.0934 4312 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
06:38:23.0996 4312 SiSRaid4 - ok
06:38:24.0121 4312 [ 50D9949020E02B847CD48F1243FCB895 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
06:38:24.0152 4312 SkypeUpdate - ok
06:38:24.0246 4312 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
06:38:24.0324 4312 Smb - ok
06:38:24.0386 4312 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
06:38:24.0433 4312 SNMPTRAP - ok
06:38:24.0448 4312 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
06:38:24.0464 4312 spldr - ok
06:38:24.0511 4312 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
06:38:24.0558 4312 Spooler - ok
06:38:24.0870 4312 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
06:38:24.0979 4312 sppsvc - ok
06:38:25.0010 4312 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
06:38:25.0135 4312 sppuinotify - ok
06:38:25.0228 4312 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
06:38:25.0338 4312 srv - ok
06:38:25.0416 4312 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
06:38:25.0447 4312 srv2 - ok
06:38:25.0509 4312 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
06:38:25.0572 4312 srvnet - ok
06:38:25.0759 4312 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
06:38:25.0852 4312 SSDPSRV - ok
06:38:25.0930 4312 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
06:38:26.0008 4312 SstpSvc - ok
06:38:26.0118 4312 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\drivers\stexstor.sys
06:38:26.0211 4312 stexstor - ok
06:38:26.0336 4312 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
06:38:26.0383 4312 stisvc - ok
06:38:26.0445 4312 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
06:38:26.0492 4312 swenum - ok
06:38:26.0586 4312 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
06:38:26.0664 4312 swprv - ok
06:38:27.0022 4312 SWUpdateService - ok
06:38:27.0210 4312 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
06:38:27.0288 4312 SysMain - ok
06:38:27.0319 4312 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
06:38:27.0397 4312 TabletInputService - ok
06:38:27.0444 4312 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
06:38:27.0507 4312 TapiSrv - ok
06:38:27.0601 4312 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
06:38:27.0741 4312 TBS - ok
06:38:27.0991 4312 [ 40AF23633D197905F03AB5628C558C51 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
06:38:28.0069 4312 Tcpip - ok
06:38:28.0225 4312 [ 40AF23633D197905F03AB5628C558C51 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
06:38:28.0271 4312 TCPIP6 - ok
06:38:28.0334 4312 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
06:38:28.0349 4312 tcpipreg - ok
06:38:28.0412 4312 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
06:38:28.0505 4312 TDPIPE - ok
06:38:28.0568 4312 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
06:38:28.0615 4312 TDTCP - ok
06:38:28.0677 4312 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
06:38:28.0724 4312 tdx - ok
06:38:28.0802 4312 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
06:38:28.0817 4312 TermDD - ok
06:38:28.0942 4312 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
06:38:29.0022 4312 TermService - ok
06:38:29.0053 4312 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
06:38:29.0100 4312 Themes - ok
06:38:29.0163 4312 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
06:38:29.0209 4312 THREADORDER - ok
06:38:29.0272 4312 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
06:38:29.0365 4312 TrkWks - ok
06:38:29.0475 4312 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
06:38:29.0553 4312 TrustedInstaller - ok
06:38:29.0615 4312 [ 4CE278FC9671BA81A138D70823FCAA09 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
06:38:29.0693 4312 tssecsrv - ok
06:38:29.0724 4312 [ 17C6B51CBCCDED95B3CC14E22791F85E ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
06:38:29.0834 4312 TsUsbFlt - ok
06:38:29.0912 4312 [ AD64450A4ABE076F5CB34CC08EEACB07 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
06:38:29.0975 4312 TsUsbGD - ok
06:38:30.0006 4312 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
06:38:30.0053 4312 tunnel - ok
06:38:30.0100 4312 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
06:38:30.0131 4312 uagp35 - ok
06:38:30.0162 4312 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
06:38:30.0224 4312 udfs - ok
06:38:30.0271 4312 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
06:38:30.0334 4312 UI0Detect - ok
06:38:30.0365 4312 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
06:38:30.0396 4312 uliagpkx - ok
06:38:30.0412 4312 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
06:38:30.0427 4312 umbus - ok
06:38:30.0458 4312 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\drivers\umpass.sys
06:38:30.0505 4312 UmPass - ok
06:38:30.0536 4312 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
06:38:30.0630 4312 upnphost - ok
06:38:30.0661 4312 [ DCA68B0943D6FA415F0C56C92158A83A ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
06:38:30.0755 4312 usbccgp - ok
06:38:30.0802 4312 [ 80B0F7D5CCF86CEB5D402EAAF61FEC31 ] usbcir C:\Windows\system32\drivers\usbcir.sys
06:38:30.0911 4312 usbcir - ok
06:38:30.0942 4312 [ 18A85013A3E0F7E1755365D287443965 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
06:38:30.0973 4312 usbehci - ok
06:38:31.0036 4312 [ B7037444DC5138FC7D3D3968B4DE5C4B ] usbfilter C:\Windows\system32\DRIVERS\usbfilter.sys
06:38:34.0346 4312 usbfilter - ok
06:38:34.0393 4312 [ 8D1196CFBB223621F2C67D45710F25BA ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
06:38:34.0439 4312 usbhub - ok
06:38:34.0455 4312 [ 765A92D428A8DB88B960DA5A8D6089DC ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
06:38:34.0486 4312 usbohci - ok
06:38:34.0580 4312 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
06:38:34.0689 4312 usbprint - ok
06:38:34.0720 4312 [ 9661DA76B4531B2DA272ECCE25A8AF24 ] usbscan C:\Windows\system32\drivers\usbscan.sys
06:38:34.0861 4312 usbscan - ok
06:38:34.0939 4312 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
06:38:35.0032 4312 USBSTOR - ok
06:38:35.0063 4312 [ DD253AFC3BC6CBA412342DE60C3647F3 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
06:38:35.0095 4312 usbuhci - ok
06:38:35.0157 4312 [ 1F775DA4CF1A3A1834207E975A72E9D7 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
06:38:35.0204 4312 usbvideo - ok
06:38:35.0251 4312 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
06:38:35.0329 4312 UxSms - ok
06:38:35.0360 4312 [ 4D71227301DD8D09097B9E4CC6527E5A ] VaultSvc C:\Windows\system32\lsass.exe
06:38:35.0375 4312 VaultSvc - ok
06:38:35.0407 4312 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
06:38:35.0422 4312 vdrvroot - ok
06:38:35.0469 4312 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
06:38:35.0547 4312 vds - ok
06:38:35.0594 4312 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
06:38:35.0625 4312 vga - ok
06:38:35.0641 4312 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
06:38:35.0719 4312 VgaSave - ok
06:38:35.0781 4312 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
06:38:35.0812 4312 vhdmp - ok
06:38:35.0828 4312 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
06:38:35.0859 4312 viaide - ok
06:38:35.0875 4312 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
06:38:35.0921 4312 volmgr - ok
06:38:35.0984 4312 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
06:38:36.0031 4312 volmgrx - ok
06:38:36.0109 4312 [ DF8126BD41180351A093A3AD2FC8903B ] volsnap C:\Windows\system32\drivers\volsnap.sys
06:38:36.0155 4312 volsnap - ok
06:38:36.0187 4312 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
06:38:36.0218 4312 vsmraid - ok
06:38:36.0311 4312 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
06:38:36.0421 4312 VSS - ok
06:38:36.0436 4312 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
06:38:36.0514 4312 vwifibus - ok
06:38:36.0545 4312 [ 13A0DECD1794DE60A8427862C8669D27 ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
06:38:36.0577 4312 vwififlt - ok
06:38:36.0656 4312 [ 49003B357D101CDC474937437ECF5ABC ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys
06:38:36.0765 4312 vwifimp - ok
06:38:36.0796 4312 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
06:38:36.0858 4312 W32Time - ok
06:38:36.0936 4312 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\drivers\wacompen.sys
06:38:37.0014 4312 WacomPen - ok
06:38:37.0014 4312 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
06:38:37.0092 4312 WANARP - ok
06:38:37.0092 4312 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
06:38:37.0139 4312 Wanarpv6 - ok
06:38:37.0280 4312 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
06:38:37.0342 4312 WatAdminSvc - ok
06:38:37.0404 4312 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
06:38:37.0467 4312 wbengine - ok
06:38:37.0514 4312 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
06:38:37.0545 4312 WbioSrvc - ok
06:38:37.0560 4312 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
06:38:37.0623 4312 wcncsvc - ok
06:38:37.0685 4312 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
06:38:37.0748 4312 WcsPlugInService - ok
06:38:37.0794 4312 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\drivers\wd.sys
06:38:37.0810 4312 Wd - ok
06:38:37.0857 4312 [ E2C933EDBC389386EBE6D2BA953F43D8 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
06:38:37.0919 4312 Wdf01000 - ok
06:38:37.0950 4312 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
06:38:38.0248 4312 WdiServiceHost - ok
06:38:38.0248 4312 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
06:38:38.0279 4312 WdiSystemHost - ok
06:38:38.0326 4312 [ 0EB0E5D22B1760F2DBCE632F2DD7A54D ] WebClient C:\Windows\System32\webclnt.dll
06:38:38.0388 4312 WebClient - ok
06:38:38.0435 4312 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
06:38:38.0513 4312 Wecsvc - ok
06:38:38.0560 4312 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
06:38:38.0622 4312 wercplsupport - ok
06:38:38.0685 4312 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
06:38:38.0731 4312 WerSvc - ok
06:38:38.0825 4312 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
06:38:38.0887 4312 WfpLwf - ok
06:38:38.0903 4312 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
06:38:38.0934 4312 WIMMount - ok
06:38:39.0028 4312 WinDefend - ok
06:38:39.0043 4312 WinHttpAutoProxySvc - ok
06:38:39.0153 4312 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
06:38:39.0231 4312 Winmgmt - ok
06:38:39.0324 4312 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
06:38:39.0418 4312 WinRM - ok
06:38:39.0496 4312 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
06:38:39.0589 4312 WinUsb - ok
06:38:39.0683 4312 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
06:38:39.0745 4312 Wlansvc - ok
06:38:39.0808 4312 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
06:38:39.0823 4312 WmiAcpi - ok
06:38:39.0886 4312 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
06:38:39.0948 4312 wmiApSrv - ok
06:38:39.0995 4312 WMPNetworkSvc - ok
06:38:40.0042 4312 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
06:38:40.0104 4312 WPCSvc - ok
06:38:40.0120 4312 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
06:38:40.0151 4312 WPDBusEnum - ok
06:38:40.0167 4312 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
06:38:40.0229 4312 ws2ifsl - ok
06:38:40.0260 4312 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\system32\wscsvc.dll
06:38:40.0323 4312 wscsvc - ok
06:38:40.0323 4312 WSearch - ok
06:38:40.0480 4312 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
06:38:40.0542 4312 wuauserv - ok
06:38:40.0636 4312 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
06:38:40.0729 4312 WudfPf - ok
06:38:40.0760 4312 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
06:38:40.0792 4312 WUDFRd - ok
06:38:40.0807 4312 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
06:38:40.0854 4312 wudfsvc - ok
06:38:40.0885 4312 [ FE90B750AB808FB9DD8FBB428B5FF83B ] WwanSvc C:\Windows\System32\wwansvc.dll
06:38:40.0948 4312 WwanSvc - ok
06:38:41.0010 4312 ================ Scan global ===============================
06:38:41.0041 4312 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
06:38:41.0072 4312 [ 88EDD0B34EED542745931E581AD21A32 ] C:\Windows\system32\winsrv.dll
06:38:41.0088 4312 [ 88EDD0B34EED542745931E581AD21A32 ] C:\Windows\system32\winsrv.dll
06:38:41.0150 4312 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
06:38:41.0213 4312 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
06:38:41.0213 4312 [Global] - ok
06:38:41.0213 4312 ================ Scan MBR ==================================
06:38:41.0244 4312 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
06:38:44.0350 4312 \Device\Harddisk0\DR0 ( TDSS File System ) - warning
06:38:44.0350 4312 \Device\Harddisk0\DR0 - detected TDSS File System (1)
06:38:44.0350 4312 ================ Scan VBR ==================================
06:38:44.0382 4312 [ FF9617F02BA216AFE051E25B0C219F7B ] \Device\Harddisk0\DR0\Partition1
06:38:44.0413 4312 \Device\Harddisk0\DR0\Partition1 - ok
06:38:44.0444 4312 [ 14ABEFE37A948FA42AA55EDCA1196FF6 ] \Device\Harddisk0\DR0\Partition2
06:38:44.0475 4312 \Device\Harddisk0\DR0\Partition2 - ok
06:38:44.0506 4312 [ ACF4CFFD5581896CA10C980CEB9651B0 ] \Device\Harddisk0\DR0\Partition3
06:38:44.0506 4312 \Device\Harddisk0\DR0\Partition3 - ok
06:38:44.0506 4312 ================ Scan active images ========================
06:38:44.0522 4312 [ BB4FE7889DB9CBBE61A308E99697F53C ] C:\Windows\System32\drivers\amd_sata.sys
06:38:44.0522 4312 C:\Windows\System32\drivers\amd_sata.sys - ok
06:38:44.0522 4312 [ 3E588B60EC061686BA05D33574A344C6 ] C:\Windows\System32\drivers\crashdmp.sys
06:38:44.0522 4312 C:\Windows\System32\drivers\crashdmp.sys - ok
06:38:44.0522 4312 [ 9BBD8B5855BC6578957F82341F9CDE5A ] C:\Windows\System32\drivers\Diskdump.sys
06:38:44.0522 4312 C:\Windows\System32\drivers\Diskdump.sys - ok
06:38:44.0538 4312 [ 814DB88F2641691575A455CF25354098 ] C:\Windows\System32\drivers\dumpfve.sys
06:38:44.0538 4312 C:\Windows\System32\drivers\dumpfve.sys - ok
06:38:44.0538 4312 [ F036CE71586E93D94DAB220D7BDF4416 ] C:\Windows\System32\drivers\cdrom.sys
06:38:44.0538 4312 C:\Windows\System32\drivers\cdrom.sys - ok
06:38:44.0553 4312 [ 8ACBB0D11A99EF06BFFD09C5B4DF0925 ] C:\Windows\System32\drivers\5415395drv.sys
06:38:44.0553 4312 C:\Windows\System32\drivers\5415395drv.sys - ok
06:38:44.0553 4312 [ 16A47CE2DECC9B099349A5F840654746 ] C:\Windows\System32\drivers\beep.sys
06:38:44.0553 4312 C:\Windows\System32\drivers\beep.sys - ok
06:38:44.0553 4312 [ 9899284589F75FA8724FF3D16AED75C1 ] C:\Windows\System32\drivers\null.sys
06:38:44.0553 4312 C:\Windows\System32\drivers\null.sys - ok
06:38:44.0569 4312 [ E7353D59C9842BC7299FAEB7E7E09340 ] C:\Windows\System32\drivers\videoprt.sys
06:38:44.0569 4312 C:\Windows\System32\drivers\videoprt.sys - ok
06:38:44.0569 4312 [ FC438D1430B28618E2D0C7C332A710AD ] C:\Windows\System32\drivers\watchdog.sys
06:38:44.0569 4312 C:\Windows\System32\drivers\watchdog.sys - ok
06:38:44.0584 4312 [ CEA6CC257FC9B7715F1C2B4849286D24 ] C:\Windows\System32\drivers\RDPCDD.sys
06:38:44.0584 4312 C:\Windows\System32\drivers\RDPCDD.sys - ok
06:38:44.0584 4312 [ BB5971A4F00659529A5C44831AF22365 ] C:\Windows\System32\drivers\RDPENCDD.sys
06:38:44.0584 4312 C:\Windows\System32\drivers\RDPENCDD.sys - ok
06:38:44.0584 4312 [ 216F3FA57533D98E1F74DED70113177A ] C:\Windows\System32\drivers\RDPREFMP.sys
06:38:44.0584 4312 C:\Windows\System32\drivers\RDPREFMP.sys - ok
06:38:44.0600 4312 [ 53E92A310193CB3C03BEA963DE7D9CFC ] C:\Windows\System32\drivers\vga.sys
06:38:44.0600 4312 C:\Windows\System32\drivers\vga.sys - ok
06:38:44.0600 4312 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] C:\Windows\System32\drivers\msfs.sys
06:38:44.0600 4312 C:\Windows\System32\drivers\msfs.sys - ok
06:38:44.0616 4312 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] C:\Windows\System32\drivers\npfs.sys
06:38:44.0616 4312 C:\Windows\System32\drivers\npfs.sys - ok
06:38:44.0616 4312 [ 6F020A220388ECA0AB6062DC27BD16B6 ] C:\Windows\System32\drivers\tdi.sys
06:38:44.0616 4312 C:\Windows\System32\drivers\tdi.sys - ok
06:38:44.0631 4312 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] C:\Windows\System32\drivers\tdx.sys
06:38:44.0631 4312 C:\Windows\System32\drivers\tdx.sys - ok
06:38:44.0631 4312 [ 79059559E89D06E8B80CE2944BE20228 ] C:\Windows\System32\drivers\afd.sys
06:38:44.0631 4312 C:\Windows\System32\drivers\afd.sys - ok
06:38:44.0647 4312 [ 09594D1089C523423B32A4229263F068 ] C:\Windows\System32\drivers\netbt.sys
06:38:44.0647 4312 C:\Windows\System32\drivers\netbt.sys - ok
06:38:44.0647 4312 [ 86743D9F5D2B1048062B14B1D84501C4 ] C:\Windows\System32\drivers\netbios.sys
06:38:44.0647 4312 C:\Windows\System32\drivers\netbios.sys - ok
06:38:44.0662 4312 [ 0557CF5A2556BD58E26384169D72438D ] C:\Windows\System32\drivers\pacer.sys
06:38:44.0662 4312 C:\Windows\System32\drivers\pacer.sys - ok
06:38:44.0662 4312 [ 13A0DECD1794DE60A8427862C8669D27 ] C:\Windows\System32\drivers\vwififlt.sys
06:38:44.0662 4312 C:\Windows\System32\drivers\vwififlt.sys - ok
06:38:44.0662 4312 [ 611B23304BF067451A9FDEE01FBDD725 ] C:\Windows\System32\drivers\wfplwf.sys
06:38:44.0678 4312 C:\Windows\System32\drivers\wfplwf.sys - ok
06:38:44.0678 4312 [ 6BCC1D7D2FD2453957C5479A32364E52 ] C:\Windows\System32\drivers\ws2ifsl.sys
06:38:44.0678 4312 C:\Windows\System32\drivers\ws2ifsl.sys - ok
06:38:44.0678 4312 [ 58A38E75F3316A83C23DF6173D41F2B5 ] C:\Program Files\SUPERAntiSpyware\saskutil64.sys
06:38:44.0678 4312 C:\Program Files\SUPERAntiSpyware\saskutil64.sys - ok
06:38:44.0694 4312 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] C:\Windows\System32\drivers\termdd.sys
06:38:44.0694 4312 C:\Windows\System32\drivers\termdd.sys - ok
06:38:44.0694 4312 [ 356AFD78A6ED4457169241AC3965230C ] C:\Windows\System32\drivers\wanarp.sys
06:38:44.0694 4312 C:\Windows\System32\drivers\wanarp.sys - ok
06:38:44.0709 4312 [ 3289766038DB2CB14D07DC84392138D5 ] C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys
06:38:44.0709 4312 C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys - ok
06:38:44.0709 4312 [ 77F665941019A1594D887A74F301FA2F ] C:\Windows\System32\drivers\rdbss.sys
06:38:44.0709 4312 C:\Windows\System32\drivers\rdbss.sys - ok
06:38:44.0725 4312 [ 62DB6CC4B0818F1B5F3441241B098F12 ] C:\Windows\System32\drivers\SABI.sys
06:38:44.0725 4312 C:\Windows\System32\drivers\SABI.sys - ok
06:38:44.0725 4312 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] C:\Windows\System32\drivers\dfsc.sys
06:38:44.0725 4312 C:\Windows\System32\drivers\dfsc.sys - ok
06:38:44.0740 4312 [ 13096B05847EC78F0977F2C0F79E9AB3 ] C:\Windows\System32\drivers\discache.sys
06:38:44.0740 4312 C:\Windows\System32\drivers\discache.sys - ok
06:38:44.0740 4312 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] C:\Windows\System32\drivers\mssmbios.sys
06:38:44.0740 4312 C:\Windows\System32\drivers\mssmbios.sys - ok
06:38:44.0756 4312 [ E7F5AE18AF4168178A642A9247C63001 ] C:\Windows\System32\drivers\nsiproxy.sys
06:38:44.0756 4312 C:\Windows\System32\drivers\nsiproxy.sys - ok
06:38:44.0756 4312 [ 61583EE3C3A17003C4ACD0475646B4D3 ] C:\Windows\System32\drivers\blbdrive.sys
06:38:44.0756 4312 C:\Windows\System32\drivers\blbdrive.sys - ok
06:38:44.0756 4312 [ 3566A8DAAFA27AF944F5D705EAA64894 ] C:\Windows\System32\drivers\tunnel.sys
06:38:44.0756 4312 C:\Windows\System32\drivers\tunnel.sys - ok
06:38:44.0772 4312 [ CAAAC014C5C56A69F710B5F1B836DE22 ] C:\Windows\System32\ntdll.dll
06:38:44.0772 4312 C:\Windows\System32\ntdll.dll - ok
06:38:44.0772 4312 [ F0970A4BC8395659C22BF53D0FADF16F ] C:\Windows\System32\smss.exe
06:38:44.0772 4312 C:\Windows\System32\smss.exe - ok
06:38:44.0787 4312 [ 89B31E22D9AFA62EA2B7BB96AB753BC0 ] C:\Windows\System32\drivers\atikmpag.sys
06:38:44.0787 4312 C:\Windows\System32\drivers\atikmpag.sys - ok
06:38:44.0787 4312 [ 3B536A8BEC3B4F23FFDFD78B11A2AB93 ] C:\Windows\System32\autochk.exe
06:38:44.0787 4312 C:\Windows\System32\autochk.exe - ok
06:38:44.0803 4312 [ DBF99FD9CAF75CA66D042BD8D050FF71 ] C:\Windows\System32\usp10.dll
06:38:44.0803 4312 C:\Windows\System32\usp10.dll - ok
06:38:44.0803 4312 [ 6C60B5ACA7442EFB794082CDACFC001C ] C:\Windows\System32\ole32.dll
06:38:44.0803 4312 C:\Windows\System32\ole32.dll - ok
06:38:44.0803 4312 [ AA2C08CE85653B1A0D2E4AB407FA176C ] C:\Windows\System32\imm32.dll
06:38:44.0803 4312 C:\Windows\System32\imm32.dll - ok
06:38:44.0818 4312 [ C06B32165E23A72A898B7A89679AD754 ] C:\Windows\System32\oleaut32.dll
06:38:44.0818 4312 C:\Windows\System32\oleaut32.dll - ok
06:38:44.0818 4312 [ 26036E228D2467DE6975AD819C22C043 ] C:\Windows\System32\rpcrt4.dll
06:38:44.0818 4312 C:\Windows\System32\rpcrt4.dll - ok
06:38:44.0834 4312 [ C8CF11D73017CC588411FCB936891CF4 ] C:\Windows\System32\urlmon.dll
06:38:44.0834 4312 C:\Windows\System32\urlmon.dll - ok
06:38:44.0834 4312 [ 2BF7F9033D6271642520070FDA35F7D3 ] C:\Windows\System32\drivers\atikmdag.sys
06:38:44.0834 4312 C:\Windows\System32\drivers\atikmdag.sys - ok
06:38:44.0850 4312 [ 56325BB1FF19F2A5AC8713756AC41140 ] C:\Windows\System32\gdi32.dll
06:38:44.0850 4312 C:\Windows\System32\gdi32.dll - ok
06:38:44.0850 4312 [ F7CE0C81C545364020ED8203CF0A633E ] C:\Windows\System32\difxapi.dll
06:38:44.0850 4312 C:\Windows\System32\difxapi.dll - ok
06:38:44.0865 4312 [ 88612F1CE3BF42256913BF6E61C70D52 ] C:\Windows\System32\drivers\dxgkrnl.sys
06:38:44.0865 4312 C:\Windows\System32\drivers\dxgkrnl.sys - ok
06:38:44.0865 4312 [ 25983DE69B57142039AC8D95E71CD9C9 ] C:\Windows\System32\clbcatq.dll
06:38:44.0865 4312 C:\Windows\System32\clbcatq.dll - ok
06:38:44.0881 4312 [ 1F04CFB79DD5FB7694468CE3FB3DCC31 ] C:\Windows\System32\drivers\dxgmms1.sys
06:38:44.0881 4312 C:\Windows\System32\drivers\dxgmms1.sys - ok
06:38:44.0881 4312 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] C:\Windows\System32\drivers\hdaudbus.sys
06:38:44.0881 4312 C:\Windows\System32\drivers\hdaudbus.sys - ok
06:38:44.0896 4312 [ EAF32CB8C1F810E4715B4DFBE785C7FF ] C:\Windows\System32\shlwapi.dll
06:38:44.0896 4312 C:\Windows\System32\shlwapi.dll - ok
06:38:44.0896 4312 [ 9835E63E09F824D22B689D2BB789BAB9 ] C:\Windows\System32\comdlg32.dll
06:38:44.0896 4312 C:\Windows\System32\comdlg32.dll - ok
06:38:44.0912 4312 [ E50CFB92986DCAB49DE93788FD695813 ] C:\Windows\System32\drivers\Rt64win7.sys
06:38:44.0912 4312 C:\Windows\System32\drivers\Rt64win7.sys - ok
06:38:44.0912 4312 [ D87E1E59C73C1F98D5DED5B3850C40F5 ] C:\Windows\System32\psapi.dll
06:38:44.0912 4312 C:\Windows\System32\psapi.dll - ok
06:38:44.0928 4312 [ 4BBFA57F594F7E8A8EDC8F377184C3F0 ] C:\Windows\System32\ws2_32.dll
06:38:44.0928 4312 C:\Windows\System32\ws2_32.dll - ok
06:38:44.0928 4312 [ 12FEB33791920678F8433701C822BCFD ] C:\Windows\System32\drivers\usbport.sys
06:38:44.0928 4312 C:\Windows\System32\drivers\usbport.sys - ok
06:38:44.0943 4312 [ 5D8E6C95156ED1F79A63D1EADE6F9ED5 ] C:\Windows\System32\setupapi.dll
06:38:44.0943 4312 C:\Windows\System32\setupapi.dll - ok
06:38:44.0943 4312 [ 765A92D428A8DB88B960DA5A8D6089DC ] C:\Windows\System32\drivers\usbohci.sys
06:38:44.0943 4312 C:\Windows\System32\drivers\usbohci.sys - ok
06:38:44.0959 4312 [ B7037444DC5138FC7D3D3968B4DE5C4B ] C:\Windows\System32\drivers\usbfilter.sys
06:38:44.0959 4312 C:\Windows\System32\drivers\usbfilter.sys - ok
06:38:44.0959 4312 [ 18A85013A3E0F7E1755365D287443965 ] C:\Windows\System32\drivers\usbehci.sys
06:38:44.0959 4312 C:\Windows\System32\drivers\usbehci.sys - ok
06:38:44.0974 4312 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] C:\Windows\System32\drivers\i8042prt.sys
06:38:44.0974 4312 C:\Windows\System32\drivers\i8042prt.sys - ok
06:38:44.0974 4312 [ 28C0B5024F5C5A438E78B188CFC81B7F ] C:\Windows\System32\normaliz.dll
06:38:44.0974 4312 C:\Windows\System32\normaliz.dll - ok
06:38:44.0990 4312 [ 7016991D493B9F9FA492E75BD13D031D ] C:\Windows\System32\iertutil.dll
06:38:44.0990 4312 C:\Windows\System32\iertutil.dll - ok
06:38:45.0006 4312 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] C:\Windows\System32\drivers\kbdclass.sys
06:38:45.0006 4312 C:\Windows\System32\drivers\kbdclass.sys - ok
06:38:45.0006 4312 [ FD0D922DE7D2AD9E98562CAA19A7CD2D ] C:\Windows\System32\drivers\ETD.sys
06:38:45.0006 4312 C:\Windows\System32\drivers\ETD.sys - ok
06:38:45.0021 4312 [ 7D27EA49F3C1F687D357E77A470AEA99 ] C:\Windows\System32\drivers\mouclass.sys
06:38:45.0021 4312 C:\Windows\System32\drivers\mouclass.sys - ok
06:38:45.0021 4312 [ 111E0EBC0AD79CB0FA014B907B231CF0 ] C:\Windows\System32\drivers\sdbus.sys
06:38:45.0021 4312 C:\Windows\System32\drivers\sdbus.sys - ok
06:38:45.0037 4312 [ C391FC68282A000CDF953F8B6B55D2EF ] C:\Windows\System32\msvcrt.dll
06:38:45.0037 4312 C:\Windows\System32\msvcrt.dll - ok
06:38:45.0037 4312 [ AD662B34B161198B9D66A564EDDA7D43 ] C:\Windows\System32\shell32.dll
06:38:45.0037 4312 C:\Windows\System32\shell32.dll - ok
06:38:45.0052 4312 [ 3660381F5EA18E14A06C98591B533AD6 ] C:\Windows\System32\drivers\athrx.sys
06:38:45.0052 4312 C:\Windows\System32\drivers\athrx.sys - ok
06:38:45.0052 4312 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] C:\Windows\System32\drivers\vwifibus.sys
06:38:45.0052 4312 C:\Windows\System32\drivers\vwifibus.sys - ok
06:38:45.0068 4312 [ F6FF8944478594D0E414D3F048F0D778 ] C:\Windows\System32\drivers\wmiacpi.sys
06:38:45.0068 4312 C:\Windows\System32\drivers\wmiacpi.sys - ok
06:38:45.0068 4312 [ 0840155D0BDDF1190F84A663C284BD33 ] C:\Windows\System32\drivers\CmBatt.sys
06:38:45.0068 4312 C:\Windows\System32\drivers\CmBatt.sys - ok
06:38:45.0084 4312 [ 1E56388B3FE0D031C44144EB8C4D6217 ] C:\Windows\System32\drivers\amdppm.sys
06:38:45.0084 4312 C:\Windows\System32\drivers\amdppm.sys - ok
06:38:45.0084 4312 [ 03EDB043586CCEBA243D689BDDA370A8 ] C:\Windows\System32\drivers\CompositeBus.sys
06:38:45.0084 4312 C:\Windows\System32\drivers\CompositeBus.sys - ok
06:38:45.0099 4312 [ 7ECFF9B22276B73F43A99A15A6094E90 ] C:\Windows\System32\drivers\agilevpn.sys
06:38:45.0099 4312 C:\Windows\System32\drivers\agilevpn.sys - ok
06:38:45.0099 4312 [ 471815800AE33E6F1C32FB1B97C490CA ] C:\Windows\System32\drivers\rasl2tp.sys
06:38:45.0099 4312 C:\Windows\System32\drivers\rasl2tp.sys - ok
06:38:45.0115 4312 [ 30639C932D9FEF22B31268FE25A1B6E5 ] C:\Windows\System32\drivers\ndistapi.sys
06:38:45.0115 4312 C:\Windows\System32\drivers\ndistapi.sys - ok
06:38:45.0115 4312 [ 53F7305169863F0A2BDDC49E116C2E11 ] C:\Windows\System32\drivers\ndiswan.sys
06:38:45.0115 4312 C:\Windows\System32\drivers\ndiswan.sys - ok
06:38:45.0130 4312 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] C:\Windows\System32\drivers\raspppoe.sys
06:38:45.0130 4312 C:\Windows\System32\drivers\raspppoe.sys - ok
06:38:45.0130 4312 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] C:\Windows\System32\drivers\raspptp.sys
06:38:45.0130 4312 C:\Windows\System32\drivers\raspptp.sys - ok
06:38:45.0146 4312 [ E8B1E447B008D07FF47D016C2B0EEECB ] C:\Windows\System32\drivers\rassstp.sys
06:38:45.0146 4312 C:\Windows\System32\drivers\rassstp.sys - ok
06:38:45.0146 4312 [ 24FBF5CC5C04150073C315A7C83521EE ] C:\Windows\System32\drivers\ks.sys
06:38:45.0146 4312 C:\Windows\System32\drivers\ks.sys - ok
06:38:45.0162 4312 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] C:\Windows\System32\drivers\swenum.sys
06:38:45.0162 4312 C:\Windows\System32\drivers\swenum.sys - ok
06:38:45.0162 4312 [ A65A9B2C3A9985D8122B2B6D3D2F4C1B ] C:\Windows\System32\drivers\btath_bus.sys
06:38:45.0162 4312 C:\Windows\System32\drivers\btath_bus.sys - ok
06:38:45.0177 4312 [ DC54A574663A895C8763AF0FA1FF7561 ] C:\Windows\System32\drivers\umbus.sys
06:38:45.0177 4312 C:\Windows\System32\drivers\umbus.sys - ok
06:38:45.0177 4312 [ C431EAF5CAA1C82CAC2534A2EAB348A3 ] C:\Windows\System32\msctf.dll
06:38:45.0177 4312 C:\Windows\System32\msctf.dll - ok
06:38:45.0193 4312 [ B4F29F65AD3114051F01E9403346047F ] C:\Windows\System32\imagehlp.dll
06:38:45.0193 4312 C:\Windows\System32\imagehlp.dll - ok
06:38:45.0193 4312 [ D8973E71F1B35CD3F3DEA7C12D49D0F0 ] C:\Windows\System32\kernel32.dll
06:38:45.0193 4312 C:\Windows\System32\kernel32.dll - ok
06:38:45.0208 4312 [ 796B47A4B82EF1C39F13435B88834C48 ] C:\Windows\System32\lpk.dll
06:38:45.0208 4312 C:\Windows\System32\lpk.dll - ok
06:38:45.0208 4312 [ 63A580C88CFAF72A92550940054569EF ] C:\Windows\System32\advapi32.dll
06:38:45.0208 4312 C:\Windows\System32\advapi32.dll - ok
06:38:45.0224 4312 [ 83404DCBCE4925B6A5A77C5170F46D86 ] C:\Windows\System32\sechost.dll
06:38:45.0224 4312 C:\Windows\System32\sechost.dll - ok
06:38:45.0224 4312 [ 9B6678DB9C6A232C5A84D2FDFFF8B0E1 ] C:\Windows\System32\wininet.dll
06:38:45.0224 4312 C:\Windows\System32\wininet.dll - ok
06:38:45.0240 4312 [ FE70103391A64039A921DBFFF9C7AB1B ] C:\Windows\System32\user32.dll
06:38:45.0240 4312 C:\Windows\System32\user32.dll - ok
06:38:45.0240 4312 [ 044FE45FFD6AD40E3BBBE60B7F41BABE ] C:\Windows\System32\nsi.dll
06:38:45.0240 4312 C:\Windows\System32\nsi.dll - ok
06:38:45.0255 4312 [ 4E4FFB09D895AA000DD56D1404F69A7E ] C:\Windows\System32\Wldap32.dll
06:38:45.0255 4312 C:\Windows\System32\Wldap32.dll - ok
06:38:45.0255 4312 [ 8D1196CFBB223621F2C67D45710F25BA ] C:\Windows\System32\drivers\usbhub.sys
06:38:45.0255 4312 C:\Windows\System32\drivers\usbhub.sys - ok
06:38:45.0271 4312 [ 0E6FBF19D9DFBB77316C23DF91F8A101 ] C:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll
06:38:45.0271 4312 C:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll - ok
06:38:45.0271 4312 [ 2477A28081BDAEE622CF045ACF8EE124 ] C:\Windows\System32\cfgmgr32.dll
06:38:45.0271 4312 C:\Windows\System32\cfgmgr32.dll - ok
06:38:45.0286 4312 [ 9094039A00485F71C4DE64BF51F64C46 ] C:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll
06:38:45.0286 4312 C:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll - ok
06:38:45.0286 4312 [ B22C00ED0491FD7B8803D7DDE2849F4C ] C:\Windows\System32\KernelBase.dll
06:38:45.0286 4312 C:\Windows\System32\KernelBase.dll - ok
06:38:45.0302 4312 [ F49E92B50CED5C9F1725D3C0329FD933 ] C:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll
06:38:45.0302 4312 C:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll - ok
06:38:45.0302 4312 [ 959041D7014C97133D859B45BCA0FC58 ] C:\Windows\System32\wintrust.dll
06:38:45.0302 4312 C:\Windows\System32\wintrust.dll - ok
06:38:45.0318 4312 [ 64A4AB126E24FD3F58EBE64852773DB5 ] C:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll
06:38:45.0318 4312 C:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll - ok
06:38:45.0318 4312 [ AFC3DB5C6EB8CA8017DDB81D6C0AD02A ] C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
06:38:45.0318 4312 C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll - ok
06:38:45.0333 4312 [ 9028D1621C43DF8DFBD1C76860412A11 ] C:\Windows\System32\comctl32.dll
06:38:45.0333 4312 C:\Windows\System32\comctl32.dll - ok
06:38:45.0333 4312 [ 06FEC9E8117103BB1141A560E98077DA ] C:\Windows\System32\devobj.dll
06:38:45.0333 4312 C:\Windows\System32\devobj.dll - ok
06:38:45.0349 4312 [ 780F6ECC4F55D76C9730E6B6C9B31913 ] C:\Windows\System32\crypt32.dll
06:38:45.0349 4312 C:\Windows\System32\crypt32.dll - ok
06:38:45.0349 4312 [ 72723D3E4781BADC62C3180C137E7B23 ] C:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll
06:38:45.0349 4312 C:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll - ok
06:38:45.0364 4312 [ 884415BD4269C02EAF8E2613BF85500D ] C:\Windows\System32\msasn1.dll
06:38:45.0364 4312 C:\Windows\System32\msasn1.dll - ok
06:38:45.0364 4312 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] C:\Windows\System32\drivers\ndproxy.sys
06:38:45.0364 4312 C:\Windows\System32\drivers\ndproxy.sys - ok
06:38:45.0380 4312 [ 9C278785347BCC991F8EA2999D90F58D ] C:\Windows\SysWOW64\normaliz.dll
06:38:45.0380 4312 C:\Windows\SysWOW64\normaliz.dll - ok
06:38:45.0380 4312 [ E0D3CD5841E5C7BE7B94BA946AF1E498 ] C:\Windows\System32\drivers\drmk.sys
06:38:45.0380 4312 C:\Windows\System32\drivers\drmk.sys - ok
06:38:45.0396 4312 [ 1E0B4CBBA91C6B041A14ECC2186F7E24 ] C:\Windows\System32\drivers\portcls.sys
06:38:45.0396 4312 C:\Windows\System32\drivers\portcls.sys - ok
06:38:45.0396 4312 [ 770A3B0D78232B0C1054495392A1FBA3 ] C:\Windows\System32\drivers\AtihdW76.sys
06:38:45.0411 4312 C:\Windows\System32\drivers\AtihdW76.sys - ok
06:38:45.0411 4312 [ 6869281E78CB31A43E969F06B57347C4 ] C:\Windows\System32\drivers\ksthunk.sys
06:38:45.0411 4312 C:\Windows\System32\drivers\ksthunk.sys - ok
06:38:45.0427 4312 [ 4BBB5A55EEB5EC11B20FCBB4CBB49357 ] C:\Windows\System32\drivers\RTKVHD64.sys
06:38:45.0427 4312 C:\Windows\System32\drivers\RTKVHD64.sys - ok
06:38:45.0427 4312 [ BF24D6F2ED97FE830BFD52B246F98E67 ] C:\Windows\System32\drivers\dxapi.sys
06:38:45.0427 4312 C:\Windows\System32\drivers\dxapi.sys - ok
06:38:45.0442 4312 [ F2BF71FCEAB8FB8A691408C478E2FF4C ] C:\Windows\System32\win32k.sys
06:38:45.0442 4312 C:\Windows\System32\win32k.sys - ok
06:38:45.0442 4312 [ 60C2862B4BF0FD9F582EF344C2B1EC72 ] C:\Windows\System32\csrss.exe
06:38:45.0442 4312 C:\Windows\System32\csrss.exe - ok
06:38:45.0458 4312 [ 216BABD555BC550952320EEA89C25DDF ] C:\Windows\System32\csrsrv.dll
06:38:45.0458 4312 C:\Windows\System32\csrsrv.dll - ok
06:38:45.0458 4312 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\System32\basesrv.dll
06:38:45.0458 4312 C:\Windows\System32\basesrv.dll - ok
06:38:45.0474 4312 [ 958F4AEC324A2BB0DC5B8F9197E779A0 ] C:\Windows\System32\drivers\btfilter.sys
06:38:45.0474 4312 C:\Windows\System32\drivers\btfilter.sys - ok
06:38:45.0474 4312 [ 88EDD0B34EED542745931E581AD21A32 ] C:\Windows\System32\winsrv.dll
06:38:45.0474 4312 C:\Windows\System32\winsrv.dll - ok
06:38:45.0489 4312 [ 738D0E9272F59EB7A1449C3EC118E6C4 ] C:\Windows\System32\drivers\bthport.sys
06:38:45.0489 4312 C:\Windows\System32\drivers\bthport.sys - ok
06:38:45.0489 4312 [ F188B7394D81010767B6DF3178519A37 ] C:\Windows\System32\drivers\BTHUSB.SYS
06:38:45.0489 4312 C:\Windows\System32\drivers\BTHUSB.SYS - ok
06:38:45.0505 4312 [ FFA06EF43987ED0DD42AD59B260C0C78 ] C:\Windows\System32\drivers\usbd.sys
06:38:45.0505 4312 C:\Windows\System32\drivers\usbd.sys - ok
06:38:45.0505 4312 [ DCA68B0943D6FA415F0C56C92158A83A ] C:\Windows\System32\drivers\usbccgp.sys
06:38:45.0505 4312 C:\Windows\System32\drivers\usbccgp.sys - ok
06:38:45.0520 4312 [ 1F775DA4CF1A3A1834207E975A72E9D7 ] C:\Windows\System32\drivers\usbvideo.sys
06:38:45.0520 4312 C:\Windows\System32\drivers\usbvideo.sys - ok
06:38:45.0520 4312 [ 3DD798846E2C28102B922C56E71B7932 ] C:\Windows\System32\drivers\rfcomm.sys
06:38:45.0520 4312 C:\Windows\System32\drivers\rfcomm.sys - ok
06:38:45.0536 4312 [ CF98190A94F62E405C8CB255018B2315 ] C:\Windows\System32\drivers\bthenum.sys
06:38:45.0536 4312 C:\Windows\System32\drivers\bthenum.sys - ok
06:38:45.0536 4312 [ 02DD601B708DD0667E1331FA8518E9FF ] C:\Windows\System32\drivers\bthpan.sys
06:38:45.0536 4312 C:\Windows\System32\drivers\bthpan.sys - ok
06:38:45.0552 4312 [ 856E76B3641746ABBC2946BED1372098 ] C:\Windows\System32\drivers\hidparse.sys
06:38:45.0552 4312 C:\Windows\System32\drivers\hidparse.sys - ok
06:38:45.0552 4312 [ C2FD5B24F648DAC8143C51514307B0EC ] C:\Windows\System32\drivers\btath_rcp.sys
06:38:45.0552 4312 C:\Windows\System32\drivers\btath_rcp.sys - ok
06:38:45.0567 4312 [ 597C3699384E53CC59587ED50CCE5CA2 ] C:\Windows\System32\drivers\hidclass.sys
06:38:45.0567 4312 C:\Windows\System32\drivers\hidclass.sys - ok
06:38:45.0567 4312 [ FFA0D38141FB7B93AFF465B82596D1EC ] C:\Windows\System32\drivers\btath_avdt.sys
06:38:45.0567 4312 C:\Windows\System32\drivers\btath_avdt.sys - ok
06:38:45.0583 4312 [ 72EA2FCD6456BFC6936EDA474EA08E48 ] C:\Windows\System32\drivers\btath_a2dp.sys
06:38:45.0583 4312 C:\Windows\System32\drivers\btath_a2dp.sys - ok
06:38:45.0583 4312 [ E95F7E9F4C8A88610F4142E60CF196BE ] C:\Windows\System32\drivers\btath_hcrp.sys
06:38:45.0583 4312 C:\Windows\System32\drivers\btath_hcrp.sys - ok
06:38:45.0598 4312 [ EF3B9AD9D03047EBA1369732B2F55AFE ] C:\Windows\System32\drivers\btath_flt.sys
06:38:45.0598 4312 C:\Windows\System32\drivers\btath_flt.sys - ok
06:38:45.0598 4312 [ 1A5C05524C0C503C87F930F154B7145D ] C:\Windows\System32\drivers\btath_lwflt.sys
06:38:45.0598 4312 C:\Windows\System32\drivers\btath_lwflt.sys - ok
06:38:45.0614 4312 [ B03D591DC7DA45ECE20B3B467E6AADAA ] C:\Windows\System32\drivers\monitor.sys
06:38:45.0614 4312 C:\Windows\System32\drivers\monitor.sys - ok
06:38:45.0614 4312 [ F29FE765E1448EF371CFE05BFAC74ADB ] C:\Windows\System32\tsddd.dll
06:38:45.0614 4312 C:\Windows\System32\tsddd.dll - ok
06:38:45.0630 4312 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\System32\sxssrv.dll
06:38:45.0630 4312 C:\Windows\System32\sxssrv.dll - ok
06:38:45.0630 4312 [ 94355C28C1970635A31B3FE52EB7CEBA ] C:\Windows\System32\wininit.exe
06:38:45.0630 4312 C:\Windows\System32\wininit.exe - ok
06:38:45.0645 4312 [ 2C942733A5983DD4502219FF37C7EBC7 ] C:\Windows\System32\profapi.dll
06:38:45.0645 4312 C:\Windows\System32\profapi.dll - ok
06:38:45.0645 4312 [ C2A8CB1275ECB85D246A9ECC02A728E3 ] C:\Windows\System32\RpcRtRemote.dll
06:38:45.0645 4312 C:\Windows\System32\RpcRtRemote.dll - ok
06:38:45.0661 4312 [ 943F527DF79E6B400104341AA7023C75 ] C:\Windows\System32\cdd.dll
06:38:45.0661 4312 C:\Windows\System32\cdd.dll - ok
06:38:45.0661 4312 [ 78523A26F5604C0568FE9D1CE86E36F4 ] C:\Windows\System32\KBDUS.DLL
06:38:45.0661 4312 C:\Windows\System32\KBDUS.DLL - ok
06:38:45.0676 4312 [ 1151B1BAA6F350B1DB6598E0FEA7C457 ] C:\Windows\System32\winlogon.exe
06:38:45.0676 4312 C:\Windows\System32\winlogon.exe - ok
06:38:45.0676 4312 [ 0D9764D58C5EFD672B7184854B152E5E ] C:\Windows\System32\winsta.dll
06:38:45.0676 4312 C:\Windows\System32\winsta.dll - ok
06:38:45.0676 4312 [ B26B1801356760841C3BC69F9F91537F ] C:\Windows\System32\WlS0WndH.dll
06:38:45.0692 4312 C:\Windows\System32\WlS0WndH.dll - ok
06:38:45.0692 4312 [ 9CEAD32E79A62150FE9F8557E58E008B ] C:\Windows\System32\sxs.dll
06:38:45.0692 4312 C:\Windows\System32\sxs.dll - ok
06:38:45.0692 4312 [ 784FA3DF338E2E8F5F0389D6FAC428AF ] C:\Windows\System32\cryptbase.dll
06:38:45.0692 4312 C:\Windows\System32\cryptbase.dll - ok
06:38:45.0708 4312 [ 90499F3163A9F815CF196A205EA3CD5D ] C:\Windows\System32\apphelp.dll
06:38:45.0708 4312 C:\Windows\System32\apphelp.dll - ok
06:38:45.0708 4312 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\System32\services.exe
06:38:45.0708 4312 C:\Windows\System32\services.exe - ok
06:38:45.0723 4312 [ 4D71227301DD8D09097B9E4CC6527E5A ] C:\Windows\System32\lsass.exe
06:38:45.0723 4312 C:\Windows\System32\lsass.exe - ok
06:38:45.0723 4312 [ 9662EE182644511439F1C53745DC1C88 ] C:\Windows\System32\lsm.exe
06:38:45.0723 4312 C:\Windows\System32\lsm.exe - ok
06:38:45.0739 4312 [ 7C46EC9CCDE6E793713FA01DB2EB918E ] C:\Windows\System32\sspisrv.dll
06:38:45.0739 4312 C:\Windows\System32\sspisrv.dll - ok
06:38:45.0739 4312 [ B08EA91C774AA734E0B9881F85CD9F42 ] C:\Windows\System32\sspicli.dll
06:38:45.0739 4312 C:\Windows\System32\sspicli.dll - ok
06:38:45.0754 4312 [ 086F906B1D30C0A5D35FE0F6362DAB21 ] C:\Windows\System32\lsasrv.dll
06:38:45.0754 4312 C:\Windows\System32\lsasrv.dll - ok
06:38:45.0754 4312 [ E914A50A151DFFE63D3935226DB5E2C1 ] C:\Windows\System32\scext.dll
06:38:45.0754 4312 C:\Windows\System32\scext.dll - ok
06:38:45.0754 4312 [ 208EAAFF40DA400190AA0605C797BEA2 ] C:\Windows\System32\secur32.dll
06:38:45.0754 4312 C:\Windows\System32\secur32.dll - ok
06:38:45.0770 4312 [ BBCDF350817BA86416C0F06B6981BE8D ] C:\Windows\System32\scesrv.dll
06:38:45.0770 4312 C:\Windows\System32\scesrv.dll - ok
06:38:45.0770 4312 [ 68083118797CAF30FB2EA3E71494D67E ] C:\Windows\System32\sysntfy.dll
06:38:45.0770 4312 C:\Windows\System32\sysntfy.dll - ok
06:38:45.0786 4312 [ DEE7267C5D232A3B816866872CE199E6 ] C:\Windows\System32\wmsgapi.dll
06:38:45.0786 4312 C:\Windows\System32\wmsgapi.dll - ok
06:38:45.0786 4312 [ 3A9C9BAF610B0DD4967086040B3B62A9 ] C:\Windows\System32\srvcli.dll
06:38:45.0786 4312 C:\Windows\System32\srvcli.dll - ok
06:38:45.0786 4312 [ A744BA6E04C8AA4592818178DBF89521 ] C:\Windows\System32\samsrv.dll
06:38:45.0786 4312 C:\Windows\System32\samsrv.dll - ok
06:38:45.0802 4312 [ 3A061472B38233BAFF9CFEFF2E49C46B ] C:\Windows\System32\cryptdll.dll
06:38:45.0802 4312 C:\Windows\System32\cryptdll.dll - ok
06:38:45.0802 4312 [ 3C073B0C596A0AF84933E7406766B040 ] C:\Windows\System32\wevtapi.dll
06:38:45.0802 4312 C:\Windows\System32\wevtapi.dll - ok
06:38:45.0818 4312 [ 86FE1B1F8FD42CD0DB641AB1CDB13093 ] C:\Windows\System32\cngaudit.dll
06:38:45.0818 4312 C:\Windows\System32\cngaudit.dll - ok
06:38:45.0818 4312 [ 7FBEBD2229EA5FD48D41B199EC2D541C ] C:\Windows\System32\authz.dll
06:38:45.0818 4312 C:\Windows\System32\authz.dll - ok
06:38:45.0833 4312 [ 747B9BA5412422F27934CB21131F0A3E ] C:\Windows\System32\ncrypt.dll
06:38:45.0833 4312 C:\Windows\System32\ncrypt.dll - ok
06:38:45.0833 4312 [ B9A95365E52F421A20E1501935FADDA5 ] C:\Windows\System32\bcrypt.dll
06:38:45.0833 4312 C:\Windows\System32\bcrypt.dll - ok
06:38:45.0833 4312 [ 02B64609F865A39365FF88580DF11738 ] C:\Windows\System32\msprivs.dll
06:38:45.0833 4312 C:\Windows\System32\msprivs.dll - ok
06:38:45.0849 4312 [ C6505DE3561537BA1004D638C2F93F2F ] C:\Windows\System32\netjoin.dll
06:38:45.0849 4312 C:\Windows\System32\netjoin.dll - ok
06:38:45.0849 4312 [ 50532FCD7ECF02DD169CE5C485F02534 ] C:\Windows\System32\negoexts.dll
06:38:45.0849 4312 C:\Windows\System32\negoexts.dll - ok
06:38:45.0865 4312 [ 44E1A196DFCB53B01FE4B855C3B56A15 ] C:\Windows\System32\kerberos.dll
06:38:45.0865 4312 C:\Windows\System32\kerberos.dll - ok
06:38:45.0865 4312 [ D0C2FBB6D97416B0166478FC7AE2B212 ] C:\Windows\System32\cryptsp.dll
06:38:45.0865 4312 C:\Windows\System32\cryptsp.dll - ok
06:38:45.0880 4312 [ 9A9F9F1A77D6A80EE28B57664F00013E ] C:\Windows\System32\mswsock.dll
06:38:45.0880 4312 C:\Windows\System32\mswsock.dll - ok
06:38:45.0880 4312 [ EC7CBFF96B05ECF3D366355B3C64ADCF ] C:\Windows\System32\wship6.dll
06:38:45.0880 4312 C:\Windows\System32\wship6.dll - ok
06:38:45.0880 4312 [ EF12B8385AA2849999008A977918F96B ] C:\Windows\System32\msv1_0.dll
06:38:45.0880 4312 C:\Windows\System32\msv1_0.dll - ok
06:38:45.0896 4312 [ AA339DD8BB128EF66660DFBBB59043D3 ] C:\Windows\System32\netlogon.dll
06:38:45.0896 4312 C:\Windows\System32\netlogon.dll - ok
06:38:45.0896 4312 [ 492D07D79E7024CA310867B526D9636D ] C:\Windows\System32\dnsapi.dll
06:38:45.0896 4312 C:\Windows\System32\dnsapi.dll - ok
06:38:45.0911 4312 [ 8FFE297B8449386E7B6851458B6E474E ] C:\Windows\System32\logoncli.dll
06:38:45.0911 4312 C:\Windows\System32\logoncli.dll - ok
06:38:45.0911 4312 [ 31FFED18C7B836CEC1B559347E32E151 ] C:\Windows\System32\schannel.dll
06:38:45.0911 4312 C:\Windows\System32\schannel.dll - ok
06:38:45.0927 4312 [ 95FB6CA4374E343DDD653FCC43F9D26B ] C:\Windows\System32\wdigest.dll
06:38:45.0927 4312 C:\Windows\System32\wdigest.dll - ok
06:38:45.0927 4312 [ 5D8874A8C11DDDDE29E12DE0E2013493 ] C:\Windows\System32\rsaenh.dll
06:38:45.0927 4312 C:\Windows\System32\rsaenh.dll - ok
06:38:45.0943 4312 [ 8A25506B6948EFBD5A7F37E53CCD36D9 ] C:\Windows\System32\TSpkg.dll
06:38:45.0943 4312 C:\Windows\System32\TSpkg.dll - ok
06:38:45.0943 4312 [ E08088A97F95345E181C3DFCE2C615EF ] C:\Windows\System32\pku2u.dll
06:38:45.0943 4312 C:\Windows\System32\pku2u.dll - ok
06:38:45.0943 4312 [ D6C7780A364C6BBACFA796BAB9F1B374 ] C:\Windows\System32\bcryptprimitives.dll
06:38:45.0943 4312 C:\Windows\System32\bcryptprimitives.dll - ok
06:38:45.0958 4312 [ 90BDEFC5DF334E5100EAA781D798DE1A ] C:\Windows\System32\efslsaext.dll
06:38:45.0958 4312 C:\Windows\System32\efslsaext.dll - ok
06:38:45.0958 4312 [ 52D3D5E3586988D4D9E34ACAAC33105C ] C:\Windows\System32\credssp.dll
06:38:45.0958 4312 C:\Windows\System32\credssp.dll - ok
06:38:45.0974 4312 [ 7CC7DF5B654DA579613F811D8C637E29 ] C:\Windows\System32\ubpm.dll
06:38:45.0974 4312 C:\Windows\System32\ubpm.dll - ok
06:38:45.0974 4312 [ ED78427259134C63ED69804D2132B86C ] C:\Windows\System32\scecli.dll
06:38:45.0974 4312 C:\Windows\System32\scecli.dll - ok
06:38:45.0989 4312 [ 6F68F63794097E54F36474ED4384B759 ] C:\Windows\System32\svchost.exe
06:38:45.0989 4312 C:\Windows\System32\svchost.exe - ok
06:38:45.0989 4312 [ 25FBDEF06C4D92815B353F6E792C8129 ] C:\Windows\System32\umpnpmgr.dll
06:38:45.0989 4312 C:\Windows\System32\umpnpmgr.dll - ok
06:38:45.0989 4312 [ E6EB44ABAAF1F330119F854856C53EBE ] C:\Windows\System32\SPInf.dll
06:38:45.0989 4312 C:\Windows\System32\SPInf.dll - ok
06:38:46.0005 4312 [ CD1B5AD07E5F7FEF30E055DCC9E96180 ] C:\Windows\System32\devrtl.dll
06:38:46.0005 4312 C:\Windows\System32\devrtl.dll - ok
06:38:46.0005 4312 [ 7A17485DC7D8A7AC81321A42CD034519 ] C:\Windows\System32\userenv.dll
06:38:46.0005 4312 C:\Windows\System32\userenv.dll - ok
06:38:46.0021 4312 [ 9C9307C95671AC962F3D6EB3A4A89BAE ] C:\Windows\System32\gpapi.dll
06:38:46.0021 4312 C:\Windows\System32\gpapi.dll - ok
06:38:46.0021 4312 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] C:\Windows\System32\umpo.dll
06:38:46.0021 4312 C:\Windows\System32\umpo.dll - ok
06:38:46.0036 4312 [ F6C011B46FAEEF33536B2E80F48B5CBE ] C:\Windows\System32\pcwum.dll
06:38:46.0036 4312 C:\Windows\System32\pcwum.dll - ok
06:38:46.0036 4312 [ 716175021BDA290504CE434273F666BC ] C:\Windows\System32\powrprof.dll
06:38:46.0036 4312 C:\Windows\System32\powrprof.dll - ok
06:38:46.0052 4312 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] C:\Windows\System32\drivers\luafv.sys
06:38:46.0052 4312 C:\Windows\System32\drivers\luafv.sys - ok
06:38:46.0052 4312 [ 5C627D1B1138676C0A7AB2C2C190D123 ] C:\Windows\System32\rpcss.dll
06:38:46.0052 4312 C:\Windows\System32\rpcss.dll - ok
06:38:46.0052 4312 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] C:\Windows\System32\RpcEpMap.dll
06:38:46.0052 4312 C:\Windows\System32\RpcEpMap.dll - ok
06:38:46.0067 4312 [ 31559F3244C6BC00A52030CAA83B6B91 ] C:\Windows\System32\WSHTCPIP.DLL
06:38:46.0067 4312 C:\Windows\System32\WSHTCPIP.DLL - ok
06:38:46.0067 4312 [ 16E964ABF6D1E0F0CC7822FCA9BA754D ] C:\Windows\System32\wshqos.dll
06:38:46.0067 4312 C:\Windows\System32\wshqos.dll - ok
06:38:46.0083 4312 [ 9AD9E06F8656F296D91FAE8EE5B95A27 ] C:\Windows\System32\FirewallAPI.dll
06:38:46.0083 4312 C:\Windows\System32\FirewallAPI.dll - ok
06:38:46.0083 4312 [ 7675E15D1B2180745E4DA4D26AAD7385 ] C:\Program Files\Microsoft Security Client\MsMpEng.exe
06:38:46.0083 4312 C:\Program Files\Microsoft Security Client\MsMpEng.exe - ok
06:38:46.0099 4312 [ 8077537B1600AF493E7EE1A7A5C90799 ] C:\Program Files\Microsoft Security Client\MpSvc.dll
06:38:46.0099 4312 C:\Program Files\Microsoft Security Client\MpSvc.dll - ok
06:38:46.0099 4312 [ 715F03B4C7223349768013EA95D9E5B7 ] C:\Windows\System32\LogonUI.exe
06:38:46.0099 4312 C:\Windows\System32\LogonUI.exe - ok
06:38:46.0114 4312 [ 94E026870A55AAEAFF7853C1754091E9 ] C:\Windows\System32\version.dll
06:38:46.0114 4312 C:\Windows\System32\version.dll - ok
06:38:46.0114 4312 [ 34152997FB906895290E0199AC94B85F ] C:\Windows\System32\authui.dll
06:38:46.0114 4312 C:\Windows\System32\authui.dll - ok
06:38:46.0130 4312 [ BD3674BE7FC9D8D3732C83E8499576ED ] C:\Windows\System32\wtsapi32.dll
06:38:46.0130 4312 C:\Windows\System32\wtsapi32.dll - ok
06:38:46.0130 4312 [ 1C3588802EE33660E620A046A505A337 ] C:\Program Files\Microsoft Security Client\MpClient.dll
06:38:46.0130 4312 C:\Program Files\Microsoft Security Client\MpClient.dll - ok
06:38:46.0145 4312 [ B3BFBD758506ECB50C5804AAA76318F9 ] C:\Windows\System32\cryptui.dll
06:38:46.0145 4312 C:\Windows\System32\cryptui.dll - ok
06:38:46.0145 4312 [ 1F4492FE41767CDB8B89D17655847CDD ] C:\Windows\System32\ntmarta.dll
06:38:46.0145 4312 C:\Windows\System32\ntmarta.dll - ok
06:38:46.0161 4312 [ 7FA8FDC2C2A27817FD0F624E78D3B50C ] C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac\comctl32.dll
06:38:46.0161 4312 C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac\comctl32.dll - ok
06:38:46.0177 4312 [ 4E9C2DB10F7E6AE91BF761139D4B745B ] C:\Windows\System32\shacct.dll
06:38:46.0177 4312 C:\Windows\System32\shacct.dll - ok
06:38:46.0177 4312 [ 5B3EBFC3DA142324B388DDCC4465E1FF ] C:\Windows\System32\samlib.dll
06:38:46.0177 4312 C:\Windows\System32\samlib.dll - ok
06:38:46.0192 4312 [ F06BB4E336EA57511FDBAFAFCC47DE62 ] C:\Windows\System32\propsys.dll
06:38:46.0192 4312 C:\Windows\System32\propsys.dll - ok
06:38:46.0192 4312 [ D29E998E8277666982B4F0303BF4E7AF ] C:\Windows\System32\uxtheme.dll
06:38:46.0192 4312 C:\Windows\System32\uxtheme.dll - ok
06:38:46.0208 4312 [ 18CAAF21CBA3EAEE17BBA5D3807F29B8 ] C:\Windows\winsxs\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_2b25b14c71ebf230\GdiPlus.dll
06:38:46.0208 4312 C:\Windows\winsxs\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_2b25b14c71ebf230\GdiPlus.dll - ok
06:38:46.0208 4312 [ 3CB6A7286422C72C34DAB54A5DFF1A34 ] C:\Windows\System32\dui70.dll
06:38:46.0208 4312 C:\Windows\System32\dui70.dll - ok
06:38:46.0223 4312 [ 8CCDE014A4CDF84564E03ACE064CA753 ] C:\Windows\System32\duser.dll
06:38:46.0223 4312 C:\Windows\System32\duser.dll - ok
06:38:46.0223 4312 [ D7F1EF374A90709B31591823B002F918 ] C:\Windows\System32\SndVolSSO.dll
06:38:46.0223 4312 C:\Windows\System32\SndVolSSO.dll - ok
06:38:46.0239 4312 [ 896F15A6434D93EDB42519D5E18E6B50 ] C:\Windows\System32\hid.dll
06:38:46.0239 4312 C:\Windows\System32\hid.dll - ok
06:38:46.0239 4312 [ 227E2C382A1E02F8D4965E664D3BBE43 ] C:\Windows\System32\MMDevAPI.dll
06:38:46.0239 4312 C:\Windows\System32\MMDevAPI.dll - ok
06:38:46.0255 4312 [ DA1B7075260F3872585BFCDD668C648B ] C:\Windows\System32\dwmapi.dll
06:38:46.0255 4312 C:\Windows\System32\dwmapi.dll - ok
06:38:46.0255 4312 [ 6F8B48F3D343E4B186AB6A9E302B7E16 ] C:\Windows\System32\xmllite.dll
06:38:46.0255 4312 C:\Windows\System32\xmllite.dll - ok
06:38:46.0270 4312 [ 3D7BB6DD7A87B3E36E44CA94444247A8 ] C:\Windows\System32\WindowsCodecs.dll
06:38:46.0270 4312 C:\Windows\System32\WindowsCodecs.dll - ok
06:38:46.0270 4312 [ 93812FDC01AA864195816CD814445F95 ] C:\Program Files\Microsoft Security Client\SqmApi.dll
06:38:46.0270 4312 C:\Program Files\Microsoft Security Client\SqmApi.dll - ok
06:38:46.0286 4312 [ D68424A84A531FFA39FD8574AFBA9EE4 ] C:\Program Files\Microsoft Security Client\EppManifest.dll
06:38:46.0286 4312 C:\Program Files\Microsoft Security Client\EppManifest.dll - ok
06:38:46.0286 4312 [ D62189E5DDB3534658AD6FDAFCB4B174 ] C:\Windows\System32\atiesrxx.exe
06:38:46.0286 4312 C:\Windows\System32\atiesrxx.exe - ok
06:38:46.0301 4312 [ 9F2BACD5E1776A4BB7CC0EC3C3A4F96D ] C:\Windows\System32\winbrand.dll
06:38:46.0301 4312 C:\Windows\System32\winbrand.dll - ok
06:38:46.0301 4312 [ 6011714C8C5C55CBFFAD24D61E879FBD ] C:\Windows\System32\wevtsvc.dll
06:38:46.0301 4312 C:\Windows\System32\wevtsvc.dll - ok
06:38:46.0317 4312 [ C2762A57DF0EE85E63CE4893C5215313 ] C:\Windows\System32\VaultCredProvider.dll
06:38:46.0317 4312 C:\Windows\System32\VaultCredProvider.dll - ok
06:38:46.0317 4312 [ 8563BA40DF4F1E93A61B70E2C8B60CF8 ] C:\Windows\System32\SmartcardCredentialProvider.dll
06:38:46.0317 4312 C:\Windows\System32\SmartcardCredentialProvider.dll - ok
06:38:46.0333 4312 [ BF352E73615F5461AA6884472435A544 ] C:\Windows\System32\BioCredProv.dll
06:38:46.0333 4312 C:\Windows\System32\BioCredProv.dll - ok
06:38:46.0333 4312 [ 796B8123A7859AFD3A4AE10514DBAEB5 ] C:\Windows\System32\winbio.dll
06:38:46.0333 4312 C:\Windows\System32\winbio.dll - ok
06:38:46.0348 4312 [ 4403D5ECE7D8323CAF1207D1AA38FA01 ] C:\Windows\System32\credui.dll
06:38:46.0348 4312 C:\Windows\System32\credui.dll - ok
06:38:46.0348 4312 [ 4E0BDA8060201CA9AB68545E68C1E029 ] C:\Program Files\Microsoft Security Client\MpRTP.dll
06:38:46.0348 4312 C:\Program Files\Microsoft Security Client\MpRTP.dll - ok
06:38:46.0364 4312 [ 44B9C66177651F3F53C87B665D58D17A ] C:\Windows\System32\vaultcli.dll
06:38:46.0364 4312 C:\Windows\System32\vaultcli.dll - ok
06:38:46.0364 4312 [ EEEA40F0EDB0A6E5359E539E15D0BC77 ] C:\Windows\System32\netapi32.dll
06:38:46.0364 4312 C:\Windows\System32\netapi32.dll - ok
06:38:46.0379 4312 [ F23FEF6D569FCE88671949894A8BECF1 ] C:\Windows\System32\audiosrv.dll
06:38:46.0379 4312 C:\Windows\System32\audiosrv.dll - ok
06:38:46.0379 4312 [ C4C183E6551084039EC862DA1C945E3D ] C:\Windows\System32\FntCache.dll
06:38:46.0379 4312 C:\Windows\System32\FntCache.dll - ok
06:38:46.0395 4312 [ E40E80D0304A73E8D269F7141D77250B ] C:\Windows\System32\mmcss.dll
06:38:46.0395 4312 C:\Windows\System32\mmcss.dll - ok
06:38:46.0395 4312 [ 78A1E65207484B7F8D3217507745F47C ] C:\Windows\System32\avrt.dll
06:38:46.0395 4312 C:\Windows\System32\avrt.dll - ok
06:38:46.0411 4312 [ 6CECA4C6A489C9B2E6073AFDAAE3F607 ] C:\Windows\System32\netutils.dll
06:38:46.0411 4312 C:\Windows\System32\netutils.dll - ok
06:38:46.0411 4312 [ F3D202F53A222D5F6944D459B73CF967 ] C:\Windows\System32\fltLib.dll
06:38:46.0411 4312 C:\Windows\System32\fltLib.dll - ok
06:38:46.0426 4312 [ 3C91392D448F6E5D525A85B7550D8BA9 ] C:\Windows\System32\wkscli.dll
06:38:46.0426 4312 C:\Windows\System32\wkscli.dll - ok
06:38:46.0426 4312 [ E17D455BD1FC7E99994E5C19B1BC3A64 ] C:\Program Files\Microsoft Security Client\MsMpLics.dll
06:38:46.0426 4312 C:\Program Files\Microsoft Security Client\MsMpLics.dll - ok
06:38:46.0442 4312 [ FC51229C7D4AFA0D6F186133728B95AB ] C:\Windows\System32\samcli.dll
06:38:46.0442 4312 C:\Windows\System32\samcli.dll - ok
06:38:46.0442 4312 [ C6B88D62F20AC646C6BD5C032EC2FAF9 ] C:\Windows\System32\drivers\MpFilter.sys
06:38:46.0442 4312 C:\Windows\System32\drivers\MpFilter.sys - ok
06:38:46.0457 4312 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] C:\Windows\System32\profsvc.dll
06:38:46.0457 4312 C:\Windows\System32\profsvc.dll - ok
06:38:46.0457 4312 [ 972C3301DB3DA91AE06A95F6B4160B1B ] C:\Windows\System32\certCredProvider.dll
06:38:46.0457 4312 C:\Windows\System32\certCredProvider.dll - ok
06:38:46.0473 4312 [ A3786D1D86945AB951848607C7324DF4 ] C:\Program Files\Microsoft Security Client\NisIpsPlugin.dll
06:38:46.0473 4312 C:\Program Files\Microsoft Security Client\NisIpsPlugin.dll - ok
06:38:46.0473 4312 [ 87FA0C48C3B2E9FEE518818FE26B15B5 ] C:\Windows\System32\rasplap.dll
06:38:46.0473 4312 C:\Windows\System32\rasplap.dll - ok
06:38:46.0489 4312 [ D5CCA1453B98A5801E6D5FF0FF89DC6C ] C:\Windows\System32\audiodg.exe
06:38:46.0489 4312 C:\Windows\System32\audiodg.exe - ok
06:38:46.0489 4312 [ 019CD868461B646E09BDF04474C19341 ] C:\Windows\System32\rasapi32.dll
06:38:46.0489 4312 C:\Windows\System32\rasapi32.dll - ok
06:38:46.0504 4312 [ 588CD0C78A7FAAE4186B5EEA0AF3ED67 ] C:\Windows\System32\adtschema.dll
06:38:46.0504 4312 C:\Windows\System32\adtschema.dll - ok
06:38:46.0504 4312 [ B28DEEC597C8DEB70C744C7CF9210E3E ] C:\Windows\System32\rasman.dll
06:38:46.0504 4312 C:\Windows\System32\rasman.dll - ok
06:38:46.0504 4312 [ B53C4B69B695EDA1B7E41D35CA4244E2 ] C:\Windows\System32\rtutils.dll
06:38:46.0504 4312 C:\Windows\System32\rtutils.dll - ok
06:38:46.0520 4312 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] C:\Windows\System32\netprofm.dll
06:38:46.0520 4312 C:\Windows\System32\netprofm.dll - ok
06:38:46.0520 4312 [ 58775492FFD419248B08325E583C527F ] C:\Windows\System32\atl.dll
06:38:46.0520 4312 C:\Windows\System32\atl.dll - ok
06:38:46.0535 4312 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] C:\Windows\System32\gpsvc.dll
06:38:46.0535 4312 C:\Windows\System32\gpsvc.dll - ok
06:38:46.0535 4312 [ DA6B67270FD9DB3697B20FCE94950741 ] C:\Windows\System32\drivers\fltMgr.sys
06:38:46.0535 4312 C:\Windows\System32\drivers\fltMgr.sys - ok
06:38:46.0551 4312 [ F0344071948D1A1FA732231785A0664C ] C:\Windows\System32\themeservice.dll
06:38:46.0551 4312 C:\Windows\System32\themeservice.dll - ok
06:38:46.0551 4312 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] C:\Windows\System32\wlansvc.dll
06:38:46.0551 4312 C:\Windows\System32\wlansvc.dll - ok
06:38:46.0567 4312 [ 4166F82BE4D24938977DD1746BE9B8A0 ] C:\Windows\System32\es.dll
06:38:46.0567 4312 C:\Windows\System32\es.dll - ok
06:38:46.0567 4312 [ 46BB91A169B9B31FF44EB04C48EC1D41 ] C:\Windows\System32\nlaapi.dll
06:38:46.0567 4312 C:\Windows\System32\nlaapi.dll - ok
06:38:46.0582 4312 [ A77BE7CB3222B4FB0AC6C71D1C2698D4 ] C:\Windows\System32\dsrole.dll
06:38:46.0582 4312 C:\Windows\System32\dsrole.dll - ok
06:38:46.0582 4312 [ C32AB8FA018EF34C0F113BD501436D21 ] C:\Windows\System32\Sens.dll
06:38:46.0582 4312 C:\Windows\System32\Sens.dll - ok
06:38:46.0598 4312 [ BE097F5BB10F9079FCEB2DC4E7E20F02 ] C:\Windows\System32\slc.dll
06:38:46.0598 4312 C:\Windows\System32\slc.dll - ok
06:38:46.0598 4312 [ EF2AE43BCD46ABB13FC3E5B2B1935C73 ] C:\Windows\System32\winmm.dll
06:38:46.0598 4312 C:\Windows\System32\winmm.dll - ok
06:38:46.0613 4312 [ 9BC8610C32C96A2983A65DC21CAFA921 ] C:\Windows\System32\UXInit.dll
06:38:46.0613 4312 C:\Windows\System32\UXInit.dll - ok
06:38:46.0613 4312 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] C:\Windows\System32\uxsms.dll
06:38:46.0613 4312 C:\Windows\System32\uxsms.dll - ok
06:38:46.0629 4312 [ 1538831CF8AD2979A04C423779465827 ] C:\Windows\System32\drivers\lltdio.sys
06:38:46.0629 4312 C:\Windows\System32\drivers\lltdio.sys - ok
06:38:46.0629 4312 [ 1473768973453DE50DC738C2955FC4DD ] C:\Windows\System32\wdmaud.drv
06:38:46.0629 4312 C:\Windows\System32\wdmaud.drv - ok
06:38:46.0645 4312 [ 1A47D52E303B7543E4E6026595B95422 ] C:\Windows\System32\comres.dll
06:38:46.0645 4312 C:\Windows\System32\comres.dll - ok
06:38:46.0645 4312 [ F63389F8AF212C661906EFBD88EAD11F ] C:\Windows\System32\atieclxx.exe
06:38:46.0645 4312 C:\Windows\System32\atieclxx.exe - ok
06:38:46.0645 4312 [ 8560FFFC8EB3A806DCD4F82252CFC8C6 ] C:\Windows\System32\ksuser.dll
06:38:46.0645 4312 C:\Windows\System32\ksuser.dll - ok
06:38:46.0660 4312 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] C:\Windows\System32\drivers\nwifi.sys
06:38:46.0660 4312 C:\Windows\System32\drivers\nwifi.sys - ok
06:38:46.0660 4312 [ 136185F9FB2CC61E573E676AA5402356 ] C:\Windows\System32\drivers\ndisuio.sys
06:38:46.0660 4312 C:\Windows\System32\drivers\ndisuio.sys - ok
06:38:46.0676 4312 [ DDC86E4F8E7456261E637E3552E804FF ] C:\Windows\System32\drivers\rspndr.sys
06:38:46.0676 4312 C:\Windows\System32\drivers\rspndr.sys - ok
06:38:46.0676 4312 [ F6A7A8F97C80655B26E9016C7EE8157E ] C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{80BEF325-292A-450E-9ED7-64CA1E87CEC8}\mpengine.dll
06:38:46.0676 4312 C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{80BEF325-292A-450E-9ED7-64CA1E87CEC8}\mpengine.dll - ok
06:38:46.0691 4312 [ 50544D04AD845C43130B70212EC05CCD ] C:\Windows\System32\microsoft-windows-kernel-power-events.dll
06:38:46.0691 4312 C:\Windows\System32\microsoft-windows-kernel-power-events.dll - ok
06:38:46.0691 4312 [ 346041919B050C740F2FA14DFD13A0D3 ] C:\Windows\System32\atiadlxx.dll
06:38:46.0691 4312 C:\Windows\System32\atiadlxx.dll - ok
06:38:46.0707 4312 [ D54BFDF3E0C953F823B3D0BFE4732528 ] C:\Windows\System32\nsisvc.dll
06:38:46.0707 4312 C:\Windows\System32\nsisvc.dll - ok
06:38:46.0707 4312 [ F9EC845C5EECF20E9A67F9F805F2EF1F ] C:\Windows\System32\keyiso.dll
06:38:46.0707 4312 C:\Windows\System32\keyiso.dll - ok
06:38:46.0707 4312 [ F993A32249B66C9D622EA5592A8B76B8 ] C:\Windows\System32\lmhsvc.dll
06:38:46.0707 4312 C:\Windows\System32\lmhsvc.dll - ok
06:38:46.0723 4312 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] C:\Windows\System32\eapsvc.dll
06:38:46.0723 4312 C:\Windows\System32\eapsvc.dll - ok
06:38:46.0723 4312 [ DC220AE6F64819099F7EBD6F137E32E7 ] C:\Windows\System32\AudioSes.dll
06:38:46.0723 4312 C:\Windows\System32\AudioSes.dll - ok
06:38:46.0738 4312 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] C:\Windows\System32\dnsrslvr.dll
06:38:46.0738 4312 C:\Windows\System32\dnsrslvr.dll - ok
06:38:46.0738 4312 [ 2B81776DA02017A37FE26C662827470E ] C:\Windows\System32\IPHLPAPI.DLL
06:38:46.0738 4312 C:\Windows\System32\IPHLPAPI.DLL - ok
06:38:46.0754 4312 [ 87356377F31DA5F20A833811CD59499C ] C:\Windows\System32\eapphost.dll
06:38:46.0754 4312 C:\Windows\System32\eapphost.dll - ok
06:38:46.0754 4312 [ 4C9210E8F4E052F6A4EB87716DA0C24C ] C:\Windows\System32\winnsi.dll
06:38:46.0754 4312 C:\Windows\System32\winnsi.dll - ok
06:38:46.0754 4312 [ D07EB640618F96490DB88C3CE58DB608 ] C:\Windows\System32\FWPUCLNT.DLL
06:38:46.0754 4312 C:\Windows\System32\FWPUCLNT.DLL - ok
06:38:46.0769 4312 [ B73A6E4B319AFFE64582AC5C1801BB3F ] C:\Windows\System32\nrpsrv.dll
06:38:46.0769 4312 C:\Windows\System32\nrpsrv.dll - ok
06:38:46.0769 4312 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] C:\Windows\System32\MPSSVC.dll
06:38:46.0769 4312 C:\Windows\System32\MPSSVC.dll - ok
06:38:46.0785 4312 [ 1B7C3A37362C7B2890168C5FC61C8D9B ] C:\Windows\System32\msacm32.drv
06:38:46.0785 4312 C:\Windows\System32\msacm32.drv - ok
06:38:46.0785 4312 [ 10AC5CE9F78DC281A1BBD9B8CC587B8A ] C:\Windows\System32\msacm32.dll
06:38:46.0785 4312 C:\Windows\System32\msacm32.dll - ok
06:38:46.0785 4312 [ 9FCA3A84338ADEF2AFF67CDA46EF8539 ] C:\Windows\System32\umb.dll
06:38:46.0785 4312 C:\Windows\System32\umb.dll - ok
06:38:46.0801 4312 [ A648C4A06DE367065B24056D067B4460 ] C:\Windows\System32\wlanmsm.dll
06:38:46.0801 4312 C:\Windows\System32\wlanmsm.dll - ok
06:38:46.0801 4312 [ CA2A0750ED830678997695FF61B04C30 ] C:\Windows\System32\midimap.dll
06:38:46.0801 4312 C:\Windows\System32\midimap.dll - ok
06:38:46.0816 4312 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] C:\Windows\System32\dhcpcore.dll
06:38:46.0816 4312 C:\Windows\System32\dhcpcore.dll - ok
06:38:46.0816 4312 [ 885D0942E0F28DB90919BE3129ECF279 ] C:\Windows\System32\dnsext.dll
06:38:46.0816 4312 C:\Windows\System32\dnsext.dll - ok
06:38:46.0832 4312 [ CF636C92B762B26F0B39B38E92380A09 ] C:\Windows\System32\oleacc.dll
06:38:46.0832 4312 C:\Windows\System32\oleacc.dll - ok
06:38:46.0832 4312 [ 3CC16A849E6092E43909F48EF0E60306 ] C:\Windows\System32\dhcpcore6.dll
06:38:46.0832 4312 C:\Windows\System32\dhcpcore6.dll - ok
06:38:46.0847 4312 [ 06A1386B6E3A0CBC368665C1840906F4 ] C:\Windows\System32\wlansec.dll
06:38:46.0847 4312 C:\Windows\System32\wlansec.dll - ok
06:38:46.0847 4312 [ F568F7C08458D69E4FCD8675BBB107E4 ] C:\Windows\System32\dhcpcsvc.dll
06:38:46.0847 4312 C:\Windows\System32\dhcpcsvc.dll - ok
06:38:46.0863 4312 [ A3DB3C17EE6CAE65D53602B4E80BCCBC ] C:\Windows\System32\PSHED.DLL
06:38:46.0863 4312 C:\Windows\System32\PSHED.DLL - ok
06:38:46.0863 4312 [ 5EDBB34736DD7AC1A73CF8792A835E10 ] C:\Windows\System32\AudioEng.dll
06:38:46.0863 4312 C:\Windows\System32\AudioEng.dll - ok
06:38:46.0879 4312 [ 3C06D5A929B798D0B13F6481242A0FD2 ] C:\Windows\System32\dhcpcsvc6.dll
06:38:46.0879 4312 C:\Windows\System32\dhcpcsvc6.dll - ok
06:38:46.0879 4312 [ 73FCB7919DEE80EE556F2E498594EBAE ] C:\Windows\System32\onex.dll
06:38:46.0879 4312 C:\Windows\System32\onex.dll - ok
06:38:46.0879 4312 [ 019BDD35DE269CB98B22DE8923C2AA3B ] C:\Windows\System32\UIAutomationCore.dll
06:38:46.0879 4312 C:\Windows\System32\UIAutomationCore.dll - ok
06:38:46.0894 4312 [ 65522E77A1360DBC8D199DA3BF5EFFE4 ] C:\Windows\System32\eappprxy.dll
06:38:46.0894 4312 C:\Windows\System32\eappprxy.dll - ok
06:38:46.0894 4312 [ 0D753307D274F3688BD21C377B616700 ] C:\Windows\System32\eappcfg.dll
06:38:46.0894 4312 C:\Windows\System32\eappcfg.dll - ok
06:38:46.0910 4312 [ 730BF204A595D5B6D7DC57A247CC741C ] C:\Windows\System32\wlgpclnt.dll
06:38:46.0910 4312 C:\Windows\System32\wlgpclnt.dll - ok
06:38:46.0910 4312 [ C1395286B822E306B4FE1568A8A77813 ] C:\Windows\System32\AUDIOKSE.dll
06:38:46.0910 4312 C:\Windows\System32\AUDIOKSE.dll - ok
06:38:46.0925 4312 [ B0945E538CF906BBDDC5A11C8EE868CC ] C:\Windows\System32\microsoft-windows-kernel-processor-power-events.dll
06:38:46.0925 4312 C:\Windows\System32\microsoft-windows-kernel-processor-power-events.dll - ok
06:38:46.0925 4312 [ 97E43F324BE1503CB2FFB058534688DA ] C:\Windows\System32\l2gpstore.dll
06:38:46.0925 4312 C:\Windows\System32\l2gpstore.dll - ok
06:38:46.0941 4312 [ 7F1B4C6FF3B85F9ADF74055187B8A22C ] C:\Windows\System32\wlanutil.dll
06:38:46.0941 4312 C:\Windows\System32\wlanutil.dll - ok
06:38:46.0941 4312 [ 5AA945234E9D4CCE4F715276B9AA712C ] C:\Windows\System32\imageres.dll
06:38:46.0941 4312 C:\Windows\System32\imageres.dll - ok
06:38:46.0941 4312 [ 7D5645EE0EA77D539828433D9B95F5EB ] C:\Windows\System32\WinSCard.dll
06:38:46.0941 4312 C:\Windows\System32\WinSCard.dll - ok
06:38:46.0957 4312 [ 9B9F88813A3AB22F5678BF26A2F62F5D ] C:\Windows\System32\RtkAPO64.dll
06:38:46.0957 4312 C:\Windows\System32\RtkAPO64.dll - ok
06:38:46.0957 4312 [ 99B91C5D2FCEF218CAD3600ECB62A799 ] C:\Windows\System32\msxml6.dll
06:38:46.0957 4312 C:\Windows\System32\msxml6.dll - ok
06:38:46.0972 4312 [ 6F3C559B82F2912354BE5B098744CC8C ] C:\Windows\System32\WMALFXGFXDSP.dll
06:38:46.0972 4312 C:\Windows\System32\WMALFXGFXDSP.dll - ok
06:38:46.0972 4312 [ AAF932B4011D14052955D4B212A4DA8D ] C:\Windows\System32\shsvcs.dll
06:38:46.0972 4312 C:\Windows\System32\shsvcs.dll - ok
06:38:46.0988 4312 [ 03706015DB44368375AEBE6339490E66 ] C:\Windows\System32\netcfgx.dll
06:38:46.0988 4312 C:\Windows\System32\netcfgx.dll - ok
06:38:46.0988 4312 [ 7DF75678370425F58BB752E371819FF7 ] C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{80BEF325-292A-450E-9ED7-64CA1E87CEC8}\mpasbase.vdm
06:38:46.0988 4312 C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{80BEF325-292A-450E-9ED7-64CA1E87CEC8}\mpasbase.vdm - ok
06:38:46.0988 4312 [ 262F6592C3299C005FD6BEC90FC4463A ] C:\Windows\System32\schedsvc.dll
06:38:46.0988 4312 C:\Windows\System32\schedsvc.dll - ok
06:38:47.0003 4312 [ 49003B357D101CDC474937437ECF5ABC ] C:\Windows\System32\drivers\vwifimp.sys
06:38:47.0003 4312 C:\Windows\System32\drivers\vwifimp.sys - ok
06:38:47.0003 4312 [ BC414631876B2F28B8DAB08E849C12C5 ] C:\Windows\System32\ktmw32.dll
06:38:47.0003 4312 C:\Windows\System32\ktmw32.dll - ok
06:38:47.0019 4312 [ 54B5DCD55B223BC5DF50B82E1E9E86B1 ] C:\Windows\System32\mfplat.dll
06:38:47.0019 4312 C:\Windows\System32\mfplat.dll - ok
06:38:47.0019 4312 [ 945E54F23C72D37B8CD1987AF0DB63BF ] C:\Windows\System32\fveapi.dll
06:38:47.0019 4312 C:\Windows\System32\fveapi.dll - ok
06:38:47.0035 4312 [ 694865362F0965779F92BCFE97712323 ] C:\Windows\System32\tbs.dll
06:38:47.0035 4312 C:\Windows\System32\tbs.dll - ok
06:38:47.0035 4312 [ 891ECFD08E2C538B7948CBC45106D697 ] C:\Windows\System32\fvecerts.dll
06:38:47.0035 4312 C:\Windows\System32\fvecerts.dll - ok
06:38:47.0035 4312 [ 6DC4A7242F565C9E9C9CCC7BB0FA75C7 ] C:\Windows\System32\taskcomp.dll
06:38:47.0035 4312 C:\Windows\System32\taskcomp.dll - ok
06:38:47.0050 4312 [ F90B5FF6CD511C49C133DAB100F09DB4 ] C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{80BEF325-292A-450E-9ED7-64CA1E87CEC8}\mpasdlta.vdm
06:38:47.0050 4312 C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{80BEF325-292A-450E-9ED7-64CA1E87CEC8}\mpasdlta.vdm - ok
06:38:47.0050 4312 [ 8269210DAF3B12BC8300631B28A2A442 ] C:\Windows\System32\wiarpc.dll
06:38:47.0050 4312 C:\Windows\System32\wiarpc.dll - ok
06:38:47.0066 4312 [ 00000000000000000000000000000000 ] C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{80BEF325-292A-450E-9ED7-64CA1E87CEC8}\mpavbase.vdm
06:38:47.0066 4312 C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{80BEF325-292A-450E-9ED7-64CA1E87CEC8}\mpavbase.vdm - ok
06:38:47.0066 4312 [ 4BC9F52E9280F9257F6CD4D96F102453 ] C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{80BEF325-292A-450E-9ED7-64CA1E87CEC8}\mpavdlta.vdm
06:38:47.0066 4312 C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{80BEF325-292A-450E-9ED7-64CA1E87CEC8}\mpavdlta.vdm - ok
06:38:47.0081 4312 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] C:\Windows\System32\drivers\http.sys
06:38:47.0081 4312 C:\Windows\System32\drivers\http.sys - ok
06:38:47.0081 4312 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] C:\Windows\System32\spoolsv.exe
06:38:47.0081 4312 C:\Windows\System32\spoolsv.exe - ok
06:38:47.0097 4312 [ 82974D6A2FD19445CC5171FC378668A4 ] C:\Windows\System32\BFE.DLL
06:38:47.0097 4312 C:\Windows\System32\BFE.DLL - ok
06:38:47.0097 4312 [ 27E461F0BE5BFF5FC737328F749538C3 ] C:\Windows\System32\drivers\srvnet.sys
06:38:47.0097 4312 C:\Windows\System32\drivers\srvnet.sys - ok
06:38:47.0113 4312 [ 6C02A83164F5CC0A262F4199F0871CF5 ] C:\Windows\System32\drivers\bowser.sys
06:38:47.0113 4312 C:\Windows\System32\drivers\bowser.sys - ok
06:38:47.0113 4312 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] C:\Windows\System32\drivers\mpsdrv.sys
06:38:47.0113 4312 C:\Windows\System32\drivers\mpsdrv.sys - ok
06:38:47.0128 4312 [ 16B0A65F52531B769B891DC251ECC6C0 ] C:\Windows\System32\mshtml.dll
06:38:47.0128 4312 C:\Windows\System32\mshtml.dll - ok
06:38:47.0128 4312 [ C67F8A962B2534224D5908D16D2AD3CE ] C:\Windows\System32\wfapigp.dll
06:38:47.0128 4312 C:\Windows\System32\wfapigp.dll - ok
06:38:47.0128 4312 [ A5D9106A73DC88564C825D317CAC68AC ] C:\Windows\System32\drivers\mrxsmb.sys
06:38:47.0128 4312 C:\Windows\System32\drivers\mrxsmb.sys - ok
06:38:47.0144 4312 [ 1834B31C749B86DAC233BBBA1C03BC48 ] C:\Windows\System32\mscms.dll
06:38:47.0144 4312 C:\Windows\System32\mscms.dll - ok
06:38:47.0144 4312 [ D711B3C1D5F42C0C2415687BE09FC163 ] C:\Windows\System32\drivers\mrxsmb10.sys
06:38:47.0144 4312 C:\Windows\System32\drivers\mrxsmb10.sys - ok
06:38:47.0159 4312 [ 3AEAA8B561E63452C655DC0584922257 ] C:\Windows\System32\pcasvc.dll
06:38:47.0159 4312 C:\Windows\System32\pcasvc.dll - ok
06:38:47.0159 4312 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] C:\Windows\System32\drivers\mrxsmb20.sys
06:38:47.0159 4312 C:\Windows\System32\drivers\mrxsmb20.sys - ok
06:38:47.0175 4312 [ A8EDB86FC2A4D6D1285E4C70384AC35A ] C:\Windows\System32\dllhost.exe
06:38:47.0175 4312 C:\Windows\System32\dllhost.exe - ok
06:38:47.0175 4312 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] C:\Windows\System32\drivers\srv2.sys
06:38:47.0175 4312 C:\Windows\System32\drivers\srv2.sys - ok
06:38:47.0175 4312 [ 6313F223E817CC09AA41811DAA7F541D ] C:\Windows\System32\snmptrap.exe
06:38:47.0175 4312 C:\Windows\System32\snmptrap.exe - ok
06:38:47.0191 4312 [ 851A1382EED3E3A7476DB004F4EE3E1A ] C:\Windows\System32\wkssvc.dll
06:38:47.0191 4312 C:\Windows\System32\wkssvc.dll - ok
06:38:47.0191 4312 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] C:\Windows\System32\drivers\srv.sys
06:38:47.0191 4312 C:\Windows\System32\drivers\srv.sys - ok
06:38:47.0206 4312 [ 9028D1621C43DF8DFBD1C76860412A11 ] C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_a4d3b9377117c3df\comctl32.dll
06:38:47.0206 4312 C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_a4d3b9377117c3df\comctl32.dll - ok
06:38:47.0206 4312 [ D9F42719019740BAA6D1C6D536CBDAA6 ] C:\Windows\System32\srvsvc.dll
06:38:47.0206 4312 C:\Windows\System32\srvsvc.dll - ok
06:38:47.0206 4312 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] C:\Windows\System32\browser.dll
06:38:47.0206 4312 C:\Windows\System32\browser.dll - ok
06:38:47.0222 4312 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] C:\Windows\System32\sstpsvc.dll
06:38:47.0222 4312 C:\Windows\System32\sstpsvc.dll - ok
06:38:47.0222 4312 [ CFEFA40DDE34659BE5211966EAD86437 ] C:\Windows\System32\netmsg.dll
06:38:47.0222 4312 C:\Windows\System32\netmsg.dll - ok
06:38:47.0237 4312 [ A0A2C1D812C231C9BFE119FDC68E341B ] C:\Windows\System32\IDStore.dll
06:38:47.0237 4312 C:\Windows\System32\IDStore.dll - ok
06:38:47.0237 4312 [ 639774C9ACD063F028F6084ABF5593AD ] C:\Windows\System32\taskhost.exe
06:38:47.0237 4312 C:\Windows\System32\taskhost.exe - ok
06:38:47.0237 4312 [ 88351B29B622B30962D2FEB6CA8D860B ] C:\Windows\System32\rasadhlp.dll
06:38:47.0237 4312 C:\Windows\System32\rasadhlp.dll - ok
06:38:47.0253 4312 [ 45CFBFA8EDC3DF4E2B7FB0D0260FE051 ] C:\Windows\System32\localspl.dll
06:38:47.0253 4312 C:\Windows\System32\localspl.dll - ok
06:38:47.0253 4312 [ 908ACB1F594274965A53926B10C81E89 ] C:\Windows\System32\provsvc.dll
06:38:47.0253 4312 C:\Windows\System32\provsvc.dll - ok
06:38:47.0269 4312 [ FF80CAD87555E8E4D2CFD7B9058343F8 ] C:\Windows\System32\sscore.dll
06:38:47.0269 4312 C:\Windows\System32\sscore.dll - ok
06:38:47.0269 4312 [ 81749E073AC5857B044A686B406E5244 ] C:\Windows\System32\clusapi.dll
06:38:47.0269 4312 C:\Windows\System32\clusapi.dll - ok
06:38:47.0269 4312 [ 344FCC9850C3A8A3B4D3C65151AF8E4C ] C:\Windows\System32\resutils.dll
06:38:47.0269 4312 C:\Windows\System32\resutils.dll - ok
06:38:47.0284 4312 [ 23566F9723771108D2E6CD768AC27407 ] C:\Windows\System32\AtBroker.exe
06:38:47.0284 4312 C:\Windows\System32\AtBroker.exe - ok
06:38:47.0284 4312 [ 3285481F5C12305CA104A6C493CA5A0B ] C:\Windows\System32\spoolss.dll
06:38:47.0284 4312 C:\Windows\System32\spoolss.dll - ok
06:38:47.0300 4312 [ 1F1CA9E99DD5BF918BE0BF30B5A42FDA ] C:\Windows\System32\MsCtfMonitor.dll
06:38:47.0300 4312 C:\Windows\System32\MsCtfMonitor.dll - ok
06:38:47.0300 4312 [ 6CEF7856A3EFAC59470F6208F0F585CE ] C:\Windows\System32\mpr.dll
06:38:47.0300 4312 C:\Windows\System32\mpr.dll - ok
06:38:47.0315 4312 [ 0015ACFBBDD164A8A730009908868CA7 ] C:\Windows\System32\winspool.drv
06:38:47.0315 4312 C:\Windows\System32\winspool.drv - ok
06:38:47.0316 4312 [ F09A9A1AD21FE618C4C8B0A0D830C886 ] C:\Windows\System32\msutb.dll
06:38:47.0316 4312 C:\Windows\System32\msutb.dll - ok
06:38:47.0316 4312 [ E9A0777DCA9148157E0EF9B71D7DE353 ] C:\Windows\System32\RdpGroupPolicyExtension.dll
06:38:47.0316 4312 C:\Windows\System32\RdpGroupPolicyExtension.dll - ok
06:38:47.0332 4312 [ BAFE84E637BF7388C96EF48D4D3FDD53 ] C:\Windows\System32\userinit.exe
06:38:47.0332 4312 C:\Windows\System32\userinit.exe - ok
06:38:47.0332 4312 [ C5AC93CF3BA30D367FB49148A2B673B9 ] C:\Windows\System32\PrintIsolationProxy.dll
06:38:47.0332 4312 C:\Windows\System32\PrintIsolationProxy.dll - ok
06:38:47.0348 4312 [ 94EEAC26F57811BD1AEFC164412F7FCE ] C:\Windows\System32\PlaySndSrv.dll
06:38:47.0348 4312 C:\Windows\System32\PlaySndSrv.dll - ok
06:38:47.0348 4312 [ 9BB99503D6A4DD62569EDE9E5E2672A5 ] C:\Windows\System32\HotStartUserAgent.dll
06:38:47.0348 4312 C:\Windows\System32\HotStartUserAgent.dll - ok
06:38:47.0363 4312 [ 19E41CCCEE697CC9465396B370929792 ] C:\Windows\System32\FXSMON.dll
06:38:47.0363 4312 C:\Windows\System32\FXSMON.dll - ok
06:38:47.0363 4312 [ F5CEF064C7E6D95DA86B9D064A56A969 ] C:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll
06:38:47.0363 4312 C:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll - ok
06:38:47.0379 4312 [ F162D5F5E845B9DC352DD1BAD8CEF1BC ] C:\Windows\System32\dwm.exe
06:38:47.0379 4312 C:\Windows\System32\dwm.exe - ok
06:38:47.0379 4312 [ 62A0ED06E9FF55EEF51B27EC4839EE0B ] C:\Windows\System32\hpz3lw71.dll
06:38:47.0379 4312 C:\Windows\System32\hpz3lw71.dll - ok
06:38:47.0379 4312 [ 332FEAB1435662FC6C672E25BEB37BE3 ] C:\Windows\explorer.exe
06:38:47.0379 4312 C:\Windows\explorer.exe - ok
06:38:47.0394 4312 [ FCFCD1101C5DA23B4B95F93D02B2C169 ] C:\Windows\System32\dwmredir.dll
06:38:47.0394 4312 C:\Windows\System32\dwmredir.dll - ok
06:38:47.0394 4312 [ 32A3C8600AF124CBAAD845F13CFAE3CB ] C:\Windows\System32\tcpmon.dll
06:38:47.0394 4312 C:\Windows\System32\tcpmon.dll - ok
06:38:47.0410 4312 [ 522B0466ED967A0762E9AF5B37D8F40A ] C:\Windows\System32\esent.dll
06:38:47.0410 4312 C:\Windows\System32\esent.dll - ok
06:38:47.0426 4312 [ 4BA77A5EF71C14C764B0ED4701683E3E ] C:\Windows\System32\dwmcore.dll
06:38:47.0426 4312 C:\Windows\System32\dwmcore.dll - ok
06:38:47.0426 4312 [ 93518C6EDE0B61BCBD02BDB02BD05FEE ] C:\Windows\System32\snmpapi.dll
06:38:47.0426 4312 C:\Windows\System32\snmpapi.dll - ok
06:38:47.0441 4312 [ FFF9D00CF16397C64317F213484F94BD ] C:\Windows\System32\wsnmp32.dll
06:38:47.0441 4312 C:\Windows\System32\wsnmp32.dll - ok
06:38:47.0441 4312 [ DF72A9936D0C3F517083119648814B09 ] C:\Windows\System32\usbmon.dll
06:38:47.0441 4312 C:\Windows\System32\usbmon.dll - ok
06:38:47.0457 4312 [ A1D7E3ADCDB07DDB6F423862DCB1A52B ] C:\Windows\System32\WSDMon.dll
06:38:47.0457 4312 C:\Windows\System32\WSDMon.dll - ok
06:38:47.0472 4312 [ 9AE80F6A66B30E3ED8CDF858CF28B11B ] C:\Windows\System32\d3d10_1.dll
06:38:47.0472 4312 C:\Windows\System32\d3d10_1.dll - ok
06:38:47.0472 4312 [ F1B205F932F62F94506A5F332C895DAF ] C:\Windows\System32\WSDApi.dll
06:38:47.0472 4312 C:\Windows\System32\WSDApi.dll - ok
06:38:47.0488 4312 [ EED05D42D91835064703E2318552ED25 ] C:\Windows\System32\ExplorerFrame.dll
06:38:47.0488 4312 C:\Windows\System32\ExplorerFrame.dll - ok
06:38:47.0488 4312 [ 63F72417CA38D8FC8F53709649B589E3 ] C:\Windows\System32\d3d10_1core.dll
06:38:47.0488 4312 C:\Windows\System32\d3d10_1core.dll - ok
06:38:47.0488 4312 [ 8DFB5752FCE145A6B295093C0A8BE131 ] C:\Windows\System32\dxgi.dll
06:38:47.0488 4312 C:\Windows\System32\dxgi.dll - ok
06:38:47.0504 4312 [ C55516D98DD5D8F0153C2A9B4227DA86 ] C:\Windows\System32\webservices.dll
06:38:47.0504 4312 C:\Windows\System32\webservices.dll - ok
06:38:47.0504 4312 [ 4C92EB7535CAA1681A77D928FBF9771F ] C:\Windows\System32\d3d11.dll
06:38:47.0504 4312 C:\Windows\System32\d3d11.dll - ok
06:38:47.0519 4312 [ B5055B51BAA0FD0A736A88653DA3C1C0 ] C:\Windows\System32\fundisc.dll
06:38:47.0519 4312 C:\Windows\System32\fundisc.dll - ok
06:38:47.0519 4312 [ 4581716B4BF76ACFD8E167EB0B26D82A ] C:\Windows\System32\fdPnp.dll
06:38:47.0519 4312 C:\Windows\System32\fdPnp.dll - ok
06:38:47.0535 4312 [ 1D626FE2E13C1CE49CA0136CFF214E93 ] C:\Windows\System32\spool\prtprocs\x64\winprint.dll
06:38:47.0535 4312 C:\Windows\System32\spool\prtprocs\x64\winprint.dll - ok
06:38:47.0535 4312 [ 024352FEEC9042260BB4CFB4D79A206B ] C:\Windows\System32\EhStorShell.dll
06:38:47.0535 4312 C:\Windows\System32\EhStorShell.dll - ok
06:38:47.0550 4312 [ 6FB9BE56891EA4E85B4C9BDD4E9AFA69 ] C:\Windows\System32\spool\prtprocs\x64\hpzppw71.dll
06:38:47.0550 4312 C:\Windows\System32\spool\prtprocs\x64\hpzppw71.dll - ok
06:38:47.0550 4312 [ 65EA57712340C09B1B0C427B4848AE05 ] C:\Windows\System32\taskeng.exe
06:38:47.0550 4312 C:\Windows\System32\taskeng.exe - ok
06:38:47.0566 4312 [ 5F042BC3BDBE8EF7FEC77293199338D9 ] C:\Program Files (x86)\Google\Drive\googledrivesync64.dll
06:38:47.0566 4312 C:\Program Files (x86)\Google\Drive\googledrivesync64.dll - ok
06:38:47.0566 4312 [ 94EDF01B3A273E08E5A7A1F9E5EEBE13 ] C:\Windows\System32\aticfx64.dll
06:38:47.0566 4312 C:\Windows\System32\aticfx64.dll - ok
06:38:47.0582 4312 [ 67CF11E00D026A5C0C88EA5F84D501E5 ] C:\Windows\System32\win32spl.dll
06:38:47.0582 4312 C:\Windows\System32\win32spl.dll - ok
06:38:47.0582 4312 [ 241AF87821FDA0F5792037B779F49BE0 ] C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc251\msvcp90.dll
06:38:47.0582 4312 C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc251\msvcp90.dll - ok
06:38:47.0597 4312 [ 805A52C5AE26C28E88FDD9BCCFE6F312 ] C:\Windows\System32\TSChannel.dll
06:38:47.0597 4312 C:\Windows\System32\TSChannel.dll - ok
06:38:47.0597 4312 [ 507D5567A0A4EE86C4B0CE2CE1777025 ] C:\Windows\System32\inetpp.dll
06:38:47.0597 4312 C:\Windows\System32\inetpp.dll - ok
06:38:47.0613 4312 [ D233C7FEAE3FAA25F93A9E6B46815ADC ] C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc251\msvcr90.dll
06:38:47.0613 4312 C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc251\msvcr90.dll - ok
06:38:47.0613 4312 [ 037A719DAD50603202C978CD802623E4 ] C:\Windows\System32\ntshrui.dll
06:38:47.0613 4312 C:\Windows\System32\ntshrui.dll - ok
06:38:47.0613 4312 [ 1BF0CB861A48FEB1638228760750F3CB ] C:\Windows\System32\cscapi.dll
06:38:47.0613 4312 C:\Windows\System32\cscapi.dll - ok
06:38:47.0628 4312 [ 1D63F4366288B8A7595397E27010FD44 ] C:\Windows\System32\IconCodecService.dll
06:38:47.0628 4312 C:\Windows\System32\IconCodecService.dll - ok
06:38:47.0628 4312 [ 506708142BC63DABA64F2D3AD1DCD5BF ] C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
06:38:47.0628 4312 C:\Program Files (x86)\Google\Update\GoogleUpdate.exe - ok
06:38:47.0644 4312 [ A2B0924D50F4435FD389499047CE553A ] C:\Windows\SysWOW64\ntdll.dll
06:38:47.0644 4312 C:\Windows\SysWOW64\ntdll.dll - ok
06:38:47.0644 4312 [ 7EE6A03D9FA55C24099D5EFF81500ADE ] C:\Windows\System32\atiuxp64.dll
06:38:47.0644 4312 C:\Windows\System32\atiuxp64.dll - ok
06:38:47.0660 4312 [ 620C92D6EEFA9853A3EAD41B5EB9B5FD ] C:\Program Files\SUPERAntiSpyware\SASCore64.exe
06:38:47.0660 4312 C:\Program Files\SUPERAntiSpyware\SASCore64.exe - ok
06:38:47.0660 4312 [ B362181ED3771DC03B4141927C80F801 ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
06:38:47.0660 4312 C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe - ok
06:38:47.0675 4312 [ 9C4FAE4FE158E5FDBC01EE062BF89388 ] C:\Windows\System32\atidxx64.dll
06:38:47.0675 4312 C:\Windows\System32\atidxx64.dll - ok
06:38:47.0675 4312 [ 70833F5A59F65908698093889C34BCA2 ] C:\Windows\System32\wow64.dll
06:38:47.0675 4312 C:\Windows\System32\wow64.dll - ok
06:38:47.0691 4312 [ B26B5EB92C3D91885CC8595B03DFB3DB ] C:\Program Files\Microsoft Security Client\MpAsDesc.dll
06:38:47.0691 4312 C:\Program Files\Microsoft Security Client\MpAsDesc.dll - ok
06:38:47.0691 4312 [ 5674E21E82CFBEA36DDAD5DB285D6DBC ] C:\Windows\System32\wow64win.dll
06:38:47.0691 4312 C:\Windows\System32\wow64win.dll - ok
06:38:47.0691 4312 [ 3EE3AA76D8AB6D5644C4C8F34471CEB3 ] C:\Windows\System32\wow64cpu.dll
06:38:47.0691 4312 C:\Windows\System32\wow64cpu.dll - ok
06:38:47.0706 4312 [ 365A5034093AD9E04F433046C4CDF6AB ] C:\Windows\SysWOW64\kernel32.dll
06:38:47.0706 4312 C:\Windows\SysWOW64\kernel32.dll - ok
06:38:47.0706 4312 [ 42A93F9F75F2334631861C3106792761 ] C:\Program Files (x86)\Samsung\Easy Settings\WLANStartup.exe
06:38:47.0706 4312 C:\Program Files (x86)\Samsung\Easy Settings\WLANStartup.exe - ok
06:38:47.0722 4312 [ D67472125471784DE7147946EDA25FEB ] C:\Windows\SysWOW64\advapi32.dll
06:38:47.0722 4312 C:\Windows\SysWOW64\advapi32.dll - ok
06:38:47.0722 4312 [ 1B7343C3765638D4D17CB925F84F8ABE ] C:\Windows\SysWOW64\KernelBase.dll
06:38:47.0722 4312 C:\Windows\SysWOW64\KernelBase.dll - ok
06:38:47.0738 4312 [ 5E0DB2D8B2750543CD2EBB9EA8E6CDD3 ] C:\Windows\SysWOW64\user32.dll
06:38:47.0738 4312 C:\Windows\SysWOW64\user32.dll - ok
06:38:47.0738 4312 [ 9DC80A8AAAAAC397BDAB3C67165A824E ] C:\Windows\SysWOW64\msvcrt.dll
06:38:47.0738 4312 C:\Windows\SysWOW64\msvcrt.dll - ok
06:38:47.0738 4312 [ 56E3313690866F99CD17AA1342F64AE1 ] C:\Windows\SysWOW64\gdi32.dll
06:38:47.0738 4312 C:\Windows\SysWOW64\gdi32.dll - ok
06:38:47.0753 4312 [ 4DC999CED9429939D75682EBD7D48901 ] C:\Windows\SysWOW64\rpcrt4.dll
06:38:47.0753 4312 C:\Windows\SysWOW64\rpcrt4.dll - ok
06:38:47.0753 4312 [ CFC97F07904067A1E5FAE195D534DA3A ] C:\Windows\SysWOW64\sechost.dll
06:38:47.0753 4312 C:\Windows\SysWOW64\sechost.dll - ok
06:38:47.0769 4312 [ CC23295DA8F7B5C53F93804D2F5D30EB ] C:\Windows\SysWOW64\lpk.dll
06:38:47.0769 4312 C:\Windows\SysWOW64\lpk.dll - ok
06:38:47.0769 4312 [ B7230010D97787AF3D25E4C82F2B06B9 ] C:\Windows\SysWOW64\usp10.dll
06:38:47.0769 4312 C:\Windows\SysWOW64\usp10.dll - ok
06:38:47.0784 4312 [ B010CF886420EE29C2C276646721D255 ] C:\Windows\SysWOW64\wlanapi.dll
06:38:47.0784 4312 C:\Windows\SysWOW64\wlanapi.dll - ok
06:38:47.0784 4312 [ F08F6FCD09F9BE94C37ACC1B344685FF ] C:\Windows\SysWOW64\cryptbase.dll
06:38:47.0784 4312 C:\Windows\SysWOW64\cryptbase.dll - ok
06:38:47.0800 4312 [ 42B924C5F3924C1EB2539F22C10D7DF1 ] C:\Windows\SysWOW64\sspicli.dll
06:38:47.0800 4312 C:\Windows\SysWOW64\sspicli.dll - ok
06:38:47.0800 4312 [ 8CC3C111D653E96F3EA1590891491D71 ] C:\Windows\SysWOW64\shlwapi.dll
06:38:47.0800 4312 C:\Windows\SysWOW64\shlwapi.dll - ok
06:38:47.0816 4312 [ E02781D4871844DCD30DF1D69A650F78 ] C:\Windows\SysWOW64\shell32.dll
06:38:47.0816 4312 C:\Windows\SysWOW64\shell32.dll - ok
06:38:47.0816 4312 [ 1D6A771D1D702AE07919DB52C889A249 ] C:\Windows\SysWOW64\wlanutil.dll
06:38:47.0816 4312 C:\Windows\SysWOW64\wlanutil.dll - ok
06:38:47.0816 4312 [ A6F09E5669D9A19035F6D942CAA15882 ] C:\Windows\SysWOW64\imm32.dll
06:38:47.0816 4312 C:\Windows\SysWOW64\imm32.dll - ok
06:38:47.0831 4312 [ C9618BC9B2B0FD7C1138D8774795A79B ] C:\Windows\SysWOW64\msctf.dll
06:38:47.0831 4312 C:\Windows\SysWOW64\msctf.dll - ok
06:38:47.0831 4312 [ 18AB2E5A40064ED5F7791AC5946A90F3 ] C:\Windows\SysWOW64\msimg32.dll
06:38:47.0831 4312 C:\Windows\SysWOW64\msimg32.dll - ok
06:38:47.0847 4312 [ D1DE1EAFDE97BE41CF6585027FF3E732 ] C:\Windows\SysWOW64\comdlg32.dll
06:38:47.0847 4312 C:\Windows\SysWOW64\comdlg32.dll - ok
06:38:47.0847 4312 [ 218A400108F280428FA22282D3268BBC ] C:\Windows\System32\wscapi.dll
06:38:47.0847 4312 C:\Windows\System32\wscapi.dll - ok
06:38:47.0862 4312 [ 928CF7268086631F54C3D8E17238C6DD ] C:\Windows\SysWOW64\ole32.dll
06:38:47.0862 4312 C:\Windows\SysWOW64\ole32.dll - ok
06:38:47.0862 4312 [ 6C765E82B57F2E66CE9C54AC238471D9 ] C:\Windows\SysWOW64\oleaut32.dll
06:38:47.0862 4312 C:\Windows\SysWOW64\oleaut32.dll - ok
06:38:47.0878 4312 [ A7495E342A2EE0160812AC856C11F6CF ] C:\Program Files (x86)\Google\Update\1.3.22.3\goopdate.dll
06:38:47.0878 4312 C:\Program Files (x86)\Google\Update\1.3.22.3\goopdate.dll - ok
06:38:47.0878 4312 [ CC09E0C9A2D89C6E71D093DC8BD121B7 ] C:\Windows\SysWOW64\crypt32.dll
06:38:47.0878 4312 C:\Windows\SysWOW64\crypt32.dll - ok
06:38:47.0878 4312 [ A90DC9ABD65DB1A8902F361103029952 ] C:\Windows\SysWOW64\IPHLPAPI.DLL
06:38:47.0878 4312 C:\Windows\SysWOW64\IPHLPAPI.DLL - ok
06:38:47.0894 4312 [ 938F39B50BAFE13D6F58C7790682C010 ] C:\Windows\SysWOW64\msasn1.dll
06:38:47.0894 4312 C:\Windows\SysWOW64\msasn1.dll - ok
06:38:47.0894 4312 [ 6377051C63D5552A311935C67E9FDFDC ] C:\Windows\SysWOW64\nsi.dll
06:38:47.0894 4312 C:\Windows\SysWOW64\nsi.dll - ok
06:38:47.0909 4312 [ 68EAAEDF0365168B804E8728368FA946 ] C:\Windows\SysWOW64\wintrust.dll
06:38:47.0909 4312 C:\Windows\SysWOW64\wintrust.dll - ok
06:38:47.0909 4312 [ 2FCA0D2C59A855C54BAFA22AA329DF0F ] C:\Windows\SysWOW64\netapi32.dll
06:38:47.0909 4312 C:\Windows\SysWOW64\netapi32.dll - ok
06:38:47.0925 4312 [ 20B3934DB73EABA2B49B7177873CB81F ] C:\Windows\SysWOW64\netutils.dll
06:38:47.0925 4312 C:\Windows\SysWOW64\netutils.dll - ok
06:38:47.0925 4312 [ CFF35B879D1618D42C86644C717BA947 ] C:\Windows\SysWOW64\winnsi.dll
06:38:47.0925 4312 C:\Windows\SysWOW64\winnsi.dll - ok
06:38:47.0940 4312 [ 5CCDCD40E732D54E0F7451AC66AC1C87 ] C:\Windows\SysWOW64\srvcli.dll
06:38:47.0940 4312 C:\Windows\SysWOW64\srvcli.dll - ok
06:38:47.0940 4312 [ E5A4A1326A02F8E7B59E6C3270CE7202 ] C:\Windows\SysWOW64\wkscli.dll
06:38:47.0940 4312 C:\Windows\SysWOW64\wkscli.dll - ok
06:38:47.0940 4312 [ CDBE9690CF2B8409FACAD94FAC9479C9 ] C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcr90.dll
06:38:47.0940 4312 C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcr90.dll - ok
06:38:47.0956 4312 [ 75F5E1FE8D55CF8E577E0EC5F2290D3F ] C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\comctl32.dll
06:38:47.0956 4312 C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\comctl32.dll - ok
06:38:47.0956 4312 [ 352B3DC62A0D259A82A052238425C872 ] C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
06:38:47.0956 4312 C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll - ok
06:38:47.0972 4312 [ E7B9D5FF20FFDD4AAE2EF1D1B8C27A37 ] C:\Windows\SysWOW64\imagehlp.dll
06:38:47.0972 4312 C:\Windows\SysWOW64\imagehlp.dll - ok
06:38:47.0972 4312 [ A6C29DB53ECA94FA8591C5388D604B82 ] C:\Windows\SysWOW64\msi.dll
06:38:47.0972 4312 C:\Windows\SysWOW64\msi.dll - ok
06:38:47.0987 4312 [ 43964FA89CCF97BA6BE34D69455AC65F ] C:\Windows\SysWOW64\uxtheme.dll
06:38:47.0987 4312 C:\Windows\SysWOW64\uxtheme.dll - ok
06:38:47.0987 4312 [ 927FA6456AD6D7630F6854828D2FD16B ] C:\Windows\SysWOW64\wininet.dll
06:38:47.0987 4312 C:\Windows\SysWOW64\wininet.dll - ok
06:38:48.0003 4312 [ 589CBC4989F750E1DA35625AB481CF43 ] C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
06:38:48.0003 4312 C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll - ok
06:38:48.0003 4312 [ 2E33DFD10F28F86C3FC40EE123CC3904 ] C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
06:38:48.0003 4312 C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll - ok
06:38:48.0018 4312 [ 6951562DC4625EEFC6EACD52AD165866 ] C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
06:38:48.0018 4312 C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll - ok
06:38:48.0018 4312 [ 3BE0D923AA45A4DBE091C2D84F0B4FE7 ] C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
06:38:48.0018 4312 C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll - ok
06:38:48.0034 4312 [ B2E1F7B212502BB49AAD4EFAD37C5CF5 ] C:\Windows\SysWOW64\iertutil.dll
06:38:48.0034 4312 C:\Windows\SysWOW64\iertutil.dll - ok
06:38:48.0034 4312 [ 702254574E7E52052DE39408457B7149 ] C:\Windows\SysWOW64\version.dll
06:38:48.0034 4312 C:\Windows\SysWOW64\version.dll - ok
06:38:48.0034 4312 [ 6A13B4F3B3F575F1E24B877B9359AABA ] C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
06:38:48.0034 4312 C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll - ok
06:38:48.0050 4312 [ 9E4B0E7472B4CEBA9E17F440B8CB0AB8 ] C:\Windows\SysWOW64\winspool.drv
06:38:48.0050 4312 C:\Windows\SysWOW64\winspool.drv - ok
06:38:48.0050 4312 [ 84174CA0E190BB9D1EFD0F005FE13B35 ] C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\GdiPlus.dll
06:38:48.0050 4312 C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\GdiPlus.dll - ok
06:38:48.0065 4312 [ 8E01332CC4B68BC6B5B7EFFE374442AA ] C:\Windows\SysWOW64\oleacc.dll
06:38:48.0065 4312 C:\Windows\SysWOW64\oleacc.dll - ok
06:38:48.0065 4312 [ D5AEFAD57C08349A4393D987DF7C715D ] C:\Windows\SysWOW64\winmm.dll
06:38:48.0065 4312 C:\Windows\SysWOW64\winmm.dll - ok
06:38:48.0081 4312 [ 39C5F32747B3414D1BB216FDB1DEFC58 ] C:\Windows\SysWOW64\dwmapi.dll
06:38:48.0081 4312 C:\Windows\SysWOW64\dwmapi.dll - ok
06:38:48.0081 4312 [ 465BEA35F7ED4A4A57686DEA7EA10F47 ] C:\Windows\SysWOW64\cscapi.dll
06:38:48.0081 4312 C:\Windows\SysWOW64\cscapi.dll - ok
06:38:48.0096 4312 [ 3FD15B4611D9BDA3F8013548C0ECAECA ] C:\Windows\SysWOW64\ntmarta.dll
06:38:48.0096 4312 C:\Windows\SysWOW64\ntmarta.dll - ok
06:38:48.0096 4312 [ 49E5753D923F1AC63B22D3DCB0B47E00 ] C:\Windows\System32\uDWM.dll
06:38:48.0096 4312 C:\Windows\System32\uDWM.dll - ok
06:38:48.0112 4312 [ A8BB45F9ECAD993461E0FEF8E2A99152 ] C:\Windows\SysWOW64\Wldap32.dll
06:38:48.0112 4312 C:\Windows\SysWOW64\Wldap32.dll - ok
06:38:48.0112 4312 [ 53223B673A3FA2F9A4D1C31C8D3F6CD8 ] C:\Windows\SysWOW64\dbghelp.dll
06:38:48.0112 4312 C:\Windows\SysWOW64\dbghelp.dll - ok
06:38:48.0112 4312 [ 8A7A39430BB7F05B24167EDBBA096B71 ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
06:38:48.0112 4312 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe - ok
06:38:48.0128 4312 [ 349B1D5D8D1B5A7B10BCD01470BD5F64 ] C:\Windows\System32\msvcp110.dll
06:38:48.0128 4312 C:\Windows\System32\msvcp110.dll - ok
06:38:48.0128 4312 [ C72ABC6B7B90A61364B6DD889B5435F3 ] C:\Windows\System32\msvcr110.dll
06:38:48.0128 4312 C:\Windows\System32\msvcr110.dll - ok
06:38:48.0143 4312 [ CC973DF53E95799E6CAD5383EF76146F ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll
06:38:48.0143 4312 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll - ok
06:38:48.0143 4312 [ E8CCB797DAF80779C768BD3A9FC8FCAF ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys
06:38:48.0143 4312 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys - ok
06:38:48.0159 4312 [ 7ADC3AFDA583E907FD744CFB9FC20CC6 ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\device.dll
06:38:48.0159 4312 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\device.dll - ok
06:38:48.0159 4312 [ 465680BDE344CE4FF6646626AA3A9125 ] C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler.exe
06:38:48.0159 4312 C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler.exe - ok
06:38:48.0174 4312 [ 863F793D15B4026B1A5FDECA873D4D84 ] C:\Windows\SysWOW64\apphelp.dll
06:38:48.0174 4312 C:\Windows\SysWOW64\apphelp.dll - ok
06:38:48.0174 4312 [ 9CCBA5E2489E603BB1578D1D541252A8 ] C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler64.exe
06:38:48.0174 4312 C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler64.exe - ok
06:38:48.0190 4312 [ FF5688D309347F2720911D8796912834 ] C:\Windows\SysWOW64\clbcatq.dll
06:38:48.0190 4312 C:\Windows\SysWOW64\clbcatq.dll - ok
06:38:48.0190 4312 [ D15618A0FF8DBC2C5BF3726BACC75A0B ] C:\Windows\SysWOW64\userenv.dll
06:38:48.0190 4312 C:\Windows\SysWOW64\userenv.dll - ok
06:38:48.0206 4312 [ C5A99A4C0DC9F0F5A95BA0C83D30A549 ] C:\Windows\SysWOW64\mstask.dll
06:38:48.0206 4312 C:\Windows\SysWOW64\mstask.dll - ok
06:38:48.0206 4312 [ C733D233B623B7FFCE5031E4B756EE26 ] C:\Windows\SysWOW64\profapi.dll
06:38:48.0206 4312 C:\Windows\SysWOW64\profapi.dll - ok
06:38:48.0206 4312 [ A7A8CA53D9C9FD90C07AB0EB38E5316B ] C:\Windows\System32\dbghelp.dll
06:38:48.0206 4312 C:\Windows\System32\dbghelp.dll - ok
06:38:48.0221 4312 [ F59E095B0BEF0CEED72DB039DAC3CD68 ] C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_88e41e092fab0294\msvcp80.dll
06:38:48.0221 4312 C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_88e41e092fab0294\msvcp80.dll - ok
06:38:48.0221 4312 [ 8BC7F8F0B7AE856D910B3FDD895EC50E ] C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_88e41e092fab0294\msvcr80.dll
06:38:48.0221 4312 C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_88e41e092fab0294\msvcr80.dll - ok
06:38:48.0237 4312 [ 519B3C4A3DD43CF3B4BB10A20A1DD86E ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\platform.dll
06:38:48.0237 4312 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\platform.dll - ok
06:38:48.0237 4312 [ 371948BC5911ABA06168FAC91ED25F06 ] C:\Windows\System32\msxml3.dll
06:38:48.0237 4312 C:\Windows\System32\msxml3.dll - ok
06:38:48.0252 4312 [ FB4045578F5180BDB1963AB352B78548 ] C:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
06:38:48.0252 4312 C:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll - ok
06:38:48.0252 4312 [ 66C87DB880052104808507D6FA84D68E ] C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
06:38:48.0252 4312 C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL - ok
06:38:48.0252 4312 [ 7F6BBF7198F35E5BAF4CE1778AFCC96B ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
06:38:48.0252 4312 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll - ok
06:38:48.0268 4312 [ 357BE883C5236BFC7341CB9E82308908 ] C:\Windows\System32\wlanapi.dll
06:38:48.0268 4312 C:\Windows\System32\wlanapi.dll - ok
06:38:48.0268 4312 [ 650F111D5CDA64C10AE4B9D1BA9D4FFF ] C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
06:38:48.0268 4312 C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe - ok
06:38:48.0284 4312 [ C9564CF4976E7E96B4052737AA2492B4 ] C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcr80.dll
06:38:48.0284 4312 C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcr80.dll - ok
06:38:48.0284 4312 [ F436E847FA799ECD75AD8C313673F450 ] C:\Windows\SysWOW64\cfgmgr32.dll
06:38:48.0284 4312 C:\Windows\SysWOW64\cfgmgr32.dll - ok
06:38:48.0299 4312 [ E3D5E244807AD655787FCD25477CC1BC ] C:\Windows\SysWOW64\bthprops.cpl
06:38:48.0299 4312 C:\Windows\SysWOW64\bthprops.cpl - ok
06:38:48.0299 4312 [ 88D8999350D12127438D57B54A432946 ] C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
06:38:48.0299 4312 C:\Program Files (x86)\Bluetooth Suite\AdminService.exe - ok
06:38:48.0315 4312 [ 10FB16B50AFFDA6D44588F3C445DC273 ] C:\Windows\SysWOW64\setupapi.dll
06:38:48.0315 4312 C:\Windows\SysWOW64\setupapi.dll - ok
06:38:48.0315 4312 [ F7A256EC899C72B4ECDD2C02CB592EFD ] C:\Windows\System32\bthprops.cpl
06:38:48.0315 4312 C:\Windows\System32\bthprops.cpl - ok
06:38:48.0315 4312 [ 2EEFF4502F5E13B1BED4A04CCAD64C08 ] C:\Windows\SysWOW64\devobj.dll
06:38:48.0315 4312 C:\Windows\SysWOW64\devobj.dll - ok
06:38:48.0330 4312 [ B1FDCFFF7609E121C10751A669AB1611 ] C:\Windows\winsxs\amd64_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_8448b2bd328df189\mfc80u.dll
06:38:48.0330 4312 C:\Windows\winsxs\amd64_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_8448b2bd328df189\mfc80u.dll - ok
06:38:48.0330 4312 [ 442235AC4F20B195F932990CAE47408E ] C:\Windows\winsxs\amd64_microsoft.vc80.mfcloc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_bc20f59b0bdd1acd\mfc80ENU.dll
06:38:48.0330 4312 C:\Windows\winsxs\amd64_microsoft.vc80.mfcloc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_bc20f59b0bdd1acd\mfc80ENU.dll - ok
06:38:48.0346 4312 [ 6B400F211BEE880A37A1ED0368776BF4 ] C:\Windows\System32\cryptsvc.dll
06:38:48.0346 4312 C:\Windows\System32\cryptsvc.dll - ok
06:38:48.0346 4312 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] C:\Windows\System32\dps.dll
06:38:48.0346 4312 C:\Windows\System32\dps.dll - ok
06:38:48.0362 4312 [ 847D3AE376C0817161A14A82C8922A9E ] C:\Windows\System32\netman.dll
06:38:48.0362 4312 C:\Windows\System32\netman.dll - ok
06:38:48.0362 4312 [ 0C043B0ABBB5E14E68906AB80365395B ] C:\Windows\System32\efssvc.dll
06:38:48.0362 4312 C:\Windows\System32\efssvc.dll - ok
06:38:48.0377 4312 [ 344789398EC3EE5A4E00C52B31847946 ] C:\Windows\System32\IKEEXT.DLL
06:38:48.0377 4312 C:\Windows\System32\IKEEXT.DLL - ok
06:38:48.0377 4312 [ BAAFAF9CEAEC0B73C2A3550A01F6CECB ] C:\Windows\System32\taskschd.dll
06:38:48.0377 4312 C:\Windows\System32\taskschd.dll - ok
06:38:48.0377 4312 [ A6B726DCA228F7878E38368A1BDC68BE ] C:\Windows\System32\cryptnet.dll
06:38:48.0377 4312 C:\Windows\System32\cryptnet.dll - ok
06:38:48.0393 4312 [ ACE8C64C57E4A711473C8BC10ADF692B ] C:\Windows\System32\drivers\NisDrvWFP.sys
06:38:48.0393 4312 C:\Windows\System32\drivers\NisDrvWFP.sys - ok
06:38:48.0393 4312 [ 7F8E83B9466A0A002D4AB15C104062A7 ] C:\Windows\System32\efscore.dll
06:38:48.0393 4312 C:\Windows\System32\efscore.dll - ok
06:38:48.0408 4312 [ 8AD77806D336673F270DB31645267293 ] C:\Windows\System32\nlasvc.dll
06:38:48.0408 4312 C:\Windows\System32\nlasvc.dll - ok
06:38:48.0408 4312 [ 58283053C781AD3A579C95D7765C1FA0 ] C:\Windows\System32\efsutil.dll
06:38:48.0408 4312 C:\Windows\System32\efsutil.dll - ok
06:38:48.0424 4312 [ 1727B2A2F379A32B864C096FA794AADC ] C:\Windows\System32\aepic.dll
06:38:48.0424 4312 C:\Windows\System32\aepic.dll - ok
06:38:48.0424 4312 [ C6DCD1D11ED6827F05C00773C3E7053C ] C:\Windows\System32\sfc.dll
06:38:48.0424 4312 C:\Windows\System32\sfc.dll - ok
06:38:48.0424 4312 [ 77B5035BC6EDF4D1B6265391AECEE4C0 ] C:\Windows\System32\vpnikeapi.dll
06:38:48.0424 4312 C:\Windows\System32\vpnikeapi.dll - ok
06:38:48.0440 4312 [ D4FAC263861BAE06971C7F7D0A8EBF15 ] C:\Windows\System32\ncsi.dll
06:38:48.0440 4312 C:\Windows\System32\ncsi.dll - ok
06:38:48.0440 4312 [ 895C9AB0A855547445C4181195230757 ] C:\Windows\System32\sfc_os.dll
06:38:48.0440 4312 C:\Windows\System32\sfc_os.dll - ok
06:38:48.0455 4312 [ 68769C3356B3BE5D1C732C97B9A80D6E ] C:\Windows\System32\drivers\PEAuth.sys
06:38:48.0455 4312 C:\Windows\System32\drivers\PEAuth.sys - ok
06:38:48.0455 4312 [ 58F4493BF748A3A89689997B7BD00E95 ] C:\Windows\System32\winhttp.dll
06:38:48.0455 4312 C:\Windows\System32\winhttp.dll - ok
06:38:48.0471 4312 [ 603EBD34E216C5654A2D774EAC98D278 ] C:\Windows\System32\webio.dll
06:38:48.0471 4312 C:\Windows\System32\webio.dll - ok
06:38:48.0471 4312 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] C:\Windows\System32\IPSECSVC.DLL
06:38:48.0471 4312 C:\Windows\System32\IPSECSVC.DLL - ok
06:38:48.0471 4312 [ 0E2F58F6E698EDCB9E58FAD0CBCD0567 ] C:\Windows\System32\vssapi.dll
06:38:48.0471 4312 C:\Windows\System32\vssapi.dll - ok
06:38:48.0486 4312 [ F12A68ED55053940CADD59CA5E3468DD ] C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
06:38:48.0486 4312 C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe - ok
06:38:48.0486 4312 [ 7321F18D1F820612ED0E9F2D4B578A7E ] C:\Windows\SysWOW64\cryptsp.dll
06:38:48.0486 4312 C:\Windows\SysWOW64\cryptsp.dll - ok
06:38:48.0502 4312 [ 9BC93C9ACFA34DB5A41B89357B31E4ED ] C:\Windows\System32\FwRemoteSvr.dll
06:38:48.0502 4312 C:\Windows\System32\FwRemoteSvr.dll - ok
06:38:48.0502 4312 [ ED8EC63F7522DF4852147C84EC62C36A ] C:\Windows\SysWOW64\rsaenh.dll
06:38:48.0502 4312 C:\Windows\SysWOW64\rsaenh.dll - ok
06:38:48.0502 4312 [ 5997D769CDB108390DCFAEBF442BF816 ] C:\Windows\SysWOW64\RpcRtRemote.dll
06:38:48.0502 4312 C:\Windows\SysWOW64\RpcRtRemote.dll - ok
06:38:48.0518 4312 [ 5E66ABD041D76C46CBF55AEF910FCA56 ] C:\Program Files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe
06:38:48.0518 4312 C:\Program Files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe - ok
06:38:48.0518 4312 [ 4C39358EBDD2FFCD9132A30E1EC31E16 ] C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcp90.dll
06:38:48.0518 4312 C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcp90.dll - ok
06:38:48.0533 4312 [ B200A3535464E46658E9B95FDADB0834 ] C:\Program Files (x86)\Samsung\Easy Settings\dmhkcore.exe
06:38:48.0533 4312 C:\Program Files (x86)\Samsung\Easy Settings\dmhkcore.exe - ok
06:38:48.0533 4312 [ 3EA8A16169C26AFBEB544E0E48421186 ] C:\Windows\System32\drivers\secdrv.sys
06:38:48.0533 4312 C:\Windows\System32\drivers\secdrv.sys - ok
06:38:48.0549 4312 [ BC617A4E1B4FA8DF523A061739A0BD87 ] C:\Windows\System32\seclogon.dll
06:38:48.0549 4312 C:\Windows\System32\seclogon.dll - ok
06:38:48.0549 4312 [ 210FCACAF902B2CD47CF9FD17D846146 ] C:\Windows\System32\aeevts.dll
06:38:48.0549 4312 C:\Windows\System32\aeevts.dll - ok
06:38:48.0549 4312 [ 287923557447D7E4BDD7E65B1F0F5428 ] C:\Windows\System32\vsstrace.dll
06:38:48.0549 4312 C:\Windows\System32\vsstrace.dll - ok
06:38:48.0564 4312 [ 2BBF3FDB70B8965DFA0258CBAB41ECCE ] C:\Windows\System32\ssdpapi.dll
06:38:48.0564 4312 C:\Windows\System32\ssdpapi.dll - ok
06:38:48.0564 4312 [ B00F98FF6FE8682FF941BEB2559BF191 ] C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
06:38:48.0564 4312 C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe - ok
06:38:48.0580 4312 [ 0F16BEBA5BEA46511A73CF74356693BF ] C:\Program Files (x86)\Samsung\Easy Settings\SCCSpeedBoot.exe
06:38:48.0580 4312 C:\Program Files (x86)\Samsung\Easy Settings\SCCSpeedBoot.exe - ok
06:38:48.0580 4312 [ 57DCA6CE6F6DE6DE818654693B339ADC ] C:\Program Files (x86)\Samsung\Easy Settings\MovieColorEnhancer.exe
06:38:48.0580 4312 C:\Program Files (x86)\Samsung\Easy Settings\MovieColorEnhancer.exe - ok
06:38:48.0596 4312 [ 398A81D590424441B2F5C5C08073CADB ] C:\Program Files (x86)\Secunia\PSI\psia.exe
06:38:48.0596 4312 C:\Program Files (x86)\Secunia\PSI\psia.exe - ok
06:38:48.0596 4312 [ 08DFDBD2FD4EA951DC46B1C7661ED35A ] C:\Windows\SysWOW64\powrprof.dll
06:38:48.0596 4312 C:\Windows\SysWOW64\powrprof.dll - ok
06:38:48.0611 4312 [ D7E546DAF03DEED037D50CDF96C7CF7F ] C:\Program Files (x86)\Samsung\Easy Settings\SmartSetting.exe
06:38:48.0611 4312 C:\Program Files (x86)\Samsung\Easy Settings\SmartSetting.exe - ok
06:38:48.0611 4312 [ 936F728E04ACCF3F38801CFFCF1E3F40 ] C:\Windows\SysWOW64\oledlg.dll
06:38:48.0611 4312 C:\Windows\SysWOW64\oledlg.dll - ok
06:38:48.0611 4312 [ C5B0324DB461559ADD070E632A6919FA ] C:\Windows\SysWOW64\wbem\wbemprox.dll
06:38:48.0611 4312 C:\Windows\SysWOW64\wbem\wbemprox.dll - ok
06:38:48.0627 4312 [ 704314FD398C81D5F342CAA5DF7B7F21 ] C:\Windows\SysWOW64\wbemcomn.dll
06:38:48.0627 4312 C:\Windows\SysWOW64\wbemcomn.dll - ok
06:38:48.0627 4312 [ 7FF15A4F092CD4A96055BA69F903E3E9 ] C:\Windows\SysWOW64\ws2_32.dll
06:38:48.0627 4312 C:\Windows\SysWOW64\ws2_32.dll - ok
06:38:48.0642 4312 [ 487F44B08EFEAF5AD087878357B9403D ] C:\Windows\SysWOW64\pdh.dll
06:38:48.0642 4312 C:\Windows\SysWOW64\pdh.dll - ok
06:38:48.0642 4312 [ 5AB7CCCEB94C3C9ECE35142CCC527B0D ] C:\Program Files (x86)\Samsung\Easy Settings\EasySpeedUpManager.exe
06:38:48.0642 4312 C:\Program Files (x86)\Samsung\Easy Settings\EasySpeedUpManager.exe - ok
06:38:48.0658 4312 [ 6A6B2EE4565A178035BE2A4FF6F2C968 ] C:\Windows\SysWOW64\wtsapi32.dll
06:38:48.0658 4312 C:\Windows\SysWOW64\wtsapi32.dll - ok
06:38:48.0658 4312 [ C241F69831832B04B20D2632DFF8B900 ] C:\Program Files (x86)\Samsung\Easy Settings\SUS.dll
06:38:48.0658 4312 C:\Program Files (x86)\Samsung\Easy Settings\SUS.dll - ok
06:38:48.0674 4312 [ 845A13B2CEE718E81562FE94EE762D7D ] C:\Program Files (x86)\Samsung\Easy Settings\Sabi3.dll
06:38:48.0674 4312 C:\Program Files (x86)\Samsung\Easy Settings\Sabi3.dll - ok
06:38:48.0674 4312 [ A543AC1F7138376D778D630A35FCBC4C ] C:\Windows\SysWOW64\psapi.dll
06:38:48.0674 4312 C:\Windows\SysWOW64\psapi.dll - ok
06:38:48.0674 4312 [ 243974EC02F7AE49E4179C54624143AB ] C:\Windows\SysWOW64\MMDevAPI.dll
06:38:48.0674 4312 C:\Windows\SysWOW64\MMDevAPI.dll - ok
06:38:48.0689 4312 [ 12C45E3CB6D65F73209549E2D02ECA7A ] C:\Windows\SysWOW64\propsys.dll
06:38:48.0689 4312 C:\Windows\SysWOW64\propsys.dll - ok
06:38:48.0689 4312 [ C940F2F5C60B3727C5F18840735B229C ] C:\Windows\SysWOW64\AudioSes.dll
06:38:48.0689 4312 C:\Windows\SysWOW64\AudioSes.dll - ok
06:38:48.0705 4312 [ 372948BB5E41CE42341C4398DE572E56 ] C:\Windows\SysWOW64\secur32.dll
06:38:48.0705 4312 C:\Windows\SysWOW64\secur32.dll - ok
06:38:48.0705 4312 [ 1EBE9524683C7C4EED8B8BC93FB6FBCC ] C:\Windows\SysWOW64\fltLib.dll
06:38:48.0705 4312 C:\Windows\SysWOW64\fltLib.dll - ok
06:38:48.0720 4312 [ 779E142FE2159935E78C0FA2E190FF1E ] C:\Windows\SysWOW64\jscript.dll
06:38:48.0720 4312 C:\Windows\SysWOW64\jscript.dll - ok
06:38:48.0720 4312 [ 8C2D3A80FC90A860F0F24DEB67471481 ] C:\Program Files (x86)\Secunia\PSI\sua.exe
06:38:48.0720 4312 C:\Program Files (x86)\Secunia\PSI\sua.exe - ok
06:38:48.0736 4312 [ 68ECCA523ED760AAFC03C5D587569859 ] C:\Windows\SysWOW64\samcli.dll
06:38:48.0736 4312 C:\Windows\SysWOW64\samcli.dll - ok
06:38:48.0736 4312 [ 50D9949020E02B847CD48F1243FCB895 ] C:\Program Files (x86)\Skype\Updater\Updater.exe
06:38:48.0736 4312 C:\Program Files (x86)\Skype\Updater\Updater.exe - ok
06:38:48.0736 4312 [ 49ACA548B2423F1C67898E6AC719A9A6 ] C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
06:38:48.0736 4312 C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll - ok
06:38:48.0752 4312 [ 1C60E09CA1C3A045BC4D367F67C915B7 ] C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
06:38:48.0752 4312 C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll - ok
06:38:48.0752 4312 [ CA9F7888B524D8100B977C81F44C3234 ] C:\Windows\SysWOW64\winhttp.dll
06:38:48.0752 4312 C:\Windows\SysWOW64\winhttp.dll - ok
06:38:48.0767 4312 [ FB19FC5951A88F3C523E35C2C98D23C0 ] C:\Windows\SysWOW64\webio.dll
06:38:48.0767 4312 C:\Windows\SysWOW64\webio.dll - ok
06:38:48.0767 4312 [ E94C583CDE2348950155F2AF2876F34D ] C:\Windows\SysWOW64\mswsock.dll
06:38:48.0767 4312 C:\Windows\SysWOW64\mswsock.dll - ok
06:38:48.0783 4312 [ 73E8667A19FEEDD856DF2695E9E511D4 ] C:\Windows\SysWOW64\wship6.dll
06:38:48.0783 4312 C:\Windows\SysWOW64\wship6.dll - ok
06:38:48.0783 4312 [ B40420876B9288E0A1C8CCA8A84E5DC9 ] C:\Windows\SysWOW64\dnsapi.dll
06:38:48.0783 4312 C:\Windows\SysWOW64\dnsapi.dll - ok
06:38:48.0783 4312 [ 8C338238C16777A802D6A9211EB2BA50 ] C:\Windows\SysWOW64\netprofm.dll
06:38:48.0783 4312 C:\Windows\SysWOW64\netprofm.dll - ok
06:38:48.0798 4312 [ 0BA65122FFA7E37564EE86422DBF7AE8 ] C:\Windows\SysWOW64\nlaapi.dll
06:38:48.0798 4312 C:\Windows\SysWOW64\nlaapi.dll - ok
06:38:48.0798 4312 [ 9A85ABCE0FDD1AF8E79E731EB0B679F3 ] C:\Windows\SysWOW64\dhcpcsvc.dll
06:38:48.0798 4312 C:\Windows\SysWOW64\dhcpcsvc.dll - ok
06:38:48.0814 4312 [ EE5C8E27C37B79CB54A2FCEEED2DC262 ] C:\Windows\SysWOW64\WSHTCPIP.DLL
06:38:48.0814 4312 C:\Windows\SysWOW64\WSHTCPIP.DLL - ok
06:38:48.0814 4312 [ 81F6C1AE23B1C493D9E996C3103915D7 ] C:\Windows\SysWOW64\dhcpcsvc6.dll
06:38:48.0814 4312 C:\Windows\SysWOW64\dhcpcsvc6.dll - ok
06:38:48.0814 4312 [ ED6EE83D61EBC683C2CD8E899EA6FEBE ] C:\Windows\SysWOW64\rasadhlp.dll
06:38:48.0814 4312 C:\Windows\SysWOW64\rasadhlp.dll - ok
06:38:48.0830 4312 [ 5BB8C06EB5EA4BA22EE8A678F2D79B25 ] C:\Windows\SysWOW64\devenum.dll
06:38:48.0830 4312 C:\Windows\SysWOW64\devenum.dll - ok
06:38:48.0830 4312 [ BCEA9AB347E53BC03B2E36BE0B8BA0EF ] C:\Windows\System32\httpapi.dll
06:38:48.0830 4312 C:\Windows\System32\httpapi.dll - ok
06:38:48.0846 4312 [ 7069AAB8536F29ED7323140973A2894B ] C:\Windows\SysWOW64\msdmo.dll
06:38:48.0846 4312 C:\Windows\SysWOW64\msdmo.dll - ok
06:38:48.0846 4312 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] C:\Windows\System32\drivers\tcpipreg.sys
06:38:48.0846 4312 C:\Windows\System32\drivers\tcpipreg.sys - ok
06:38:48.0846 4312 [ 19B07E7E8915D701225DA41CB3877306 ] C:\Windows\System32\wbem\WMIsvc.dll
06:38:48.0846 4312 C:\Windows\System32\wbem\WMIsvc.dll - ok
06:38:48.0862 4312 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] C:\Windows\System32\sysmain.dll
06:38:48.0862 4312 C:\Windows\System32\sysmain.dll - ok
06:38:48.0862 4312 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] C:\Windows\System32\wiaservc.dll
06:38:48.0862 4312 C:\Windows\System32\wiaservc.dll - ok
06:38:48.0877 4312 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] C:\Windows\System32\tapisrv.dll
06:38:48.0877 4312 C:\Windows\System32\tapisrv.dll - ok
06:38:48.0877 4312 [ 7DB5AA22A8A8E5C2D335F44853C1F6DE ] C:\Windows\System32\wbemcomn.dll
06:38:48.0877 4312 C:\Windows\System32\wbemcomn.dll - ok
06:38:48.0877 4312 [ 0364256B4A2A93A8C8CDA6B3B5A0EFF5 ] C:\Windows\System32\wiatrace.dll
06:38:48.0877 4312 C:\Windows\System32\wiatrace.dll - ok
06:38:48.0893 4312 [ EE867A0870FC9E4972BA9EAAD35651E2 ] C:\Windows\System32\rasmans.dll
06:38:48.0893 4312 C:\Windows\System32\rasmans.dll - ok
06:38:48.0893 4312 [ 0C52762C606BCF6A377D5E4688191A6B ] C:\Windows\System32\wbem\WmiDcPrv.dll
06:38:48.0893 4312 C:\Windows\System32\wbem\WmiDcPrv.dll - ok
06:38:48.0909 4312 [ 44C96B48112EB24AE7764EBF1C527000 ] C:\Windows\System32\rastapi.dll
06:38:48.0909 4312 C:\Windows\System32\rastapi.dll - ok
06:38:48.0909 4312 [ A3F5E8EC1316C3E2562B82694A251C9E ] C:\Windows\System32\wbem\fastprox.dll
06:38:48.0909 4312 C:\Windows\System32\wbem\fastprox.dll - ok
06:38:48.0909 4312 [ FAFAE01E889DC9C05A6CA2138CFC220B ] C:\Windows\System32\tapi32.dll
06:38:48.0909 4312 C:\Windows\System32\tapi32.dll - ok
06:38:48.0924 4312 [ 08C2957BB30058E663720C5606885653 ] C:\Windows\System32\iphlpsvc.dll
06:38:48.0924 4312 C:\Windows\System32\iphlpsvc.dll - ok
06:38:48.0924 4312 [ 7E7AFD841694F6AC397E99D75CEAD49D ] C:\Windows\System32\trkwks.dll
06:38:48.0924 4312 C:\Windows\System32\trkwks.dll - ok
06:38:48.0940 4312 [ EE26D130808D16C0E417BBBED0451B34 ] C:\Windows\System32\ntdsapi.dll
06:38:48.0940 4312 C:\Windows\System32\ntdsapi.dll - ok
06:38:48.0940 4312 [ 27B9E163740A226B65E4B9E186117911 ] C:\Windows\System32\sqmapi.dll
06:38:48.0940 4312 C:\Windows\System32\sqmapi.dll - ok
06:38:48.0940 4312 [ 666A60F6F5E719856FF6254E0966EFF7 ] C:\Windows\System32\wbem\wbemprox.dll
06:38:48.0940 4312 C:\Windows\System32\wbem\wbemprox.dll - ok
06:38:48.0955 4312 [ 7B38D7916A7CD058C16A0A6CA5077901 ] C:\Windows\System32\wdscore.dll
06:38:48.0955 4312 C:\Windows\System32\wdscore.dll - ok
06:38:48.0955 4312 [ D2A0FFA75AB181B19B5EB93BB29C7686 ] C:\Windows\System32\unimdm.tsp
06:38:48.0955 4312 C:\Windows\System32\unimdm.tsp - ok
06:38:48.0971 4312 [ 0255C22D99602534F15CBB8D9B6F152F ] C:\Windows\System32\wbem\WinMgmtR.dll
06:38:48.0971 4312 C:\Windows\System32\wbem\WinMgmtR.dll - ok
06:38:48.0971 4312 [ 3B367397320C26DBA890B260F80D1B1B ] C:\Windows\System32\hnetcfg.dll
06:38:48.0971 4312 C:\Windows\System32\hnetcfg.dll - ok
06:38:48.0971 4312 [ 94B7DF336815B47236724019FAB24B7C ] C:\Windows\System32\uniplat.dll
06:38:48.0971 4312 C:\Windows\System32\uniplat.dll - ok
06:38:48.0987 4312 [ 41326DD08ACC0CDC5F8177AF96C066E8 ] C:\Windows\System32\kmddsp.tsp
06:38:48.0987 4312 C:\Windows\System32\kmddsp.tsp - ok
06:38:48.0987 4312 [ 7C1BAE7D23D4874FEE256A2B9C00E019 ] C:\Windows\System32\hidphone.tsp
06:38:48.0987 4312 C:\Windows\System32\hidphone.tsp - ok
06:38:49.0002 4312 [ 1D6BC2769DA66C1145F4DA5A65F52E61 ] C:\Windows\System32\ndptsp.tsp
06:38:49.0002 4312 C:\Windows\System32\ndptsp.tsp - ok
06:38:49.0002 4312 [ FEB91B4DA0D540865260A33838654FA3 ] C:\Windows\System32\nci.dll
06:38:49.0002 4312 C:\Windows\System32\nci.dll - ok
06:38:49.0002 4312 [ A717A35120DBAB5AB707AB40662AF9DD ] C:\Windows\System32\rasppp.dll
06:38:49.0002 4312 C:\Windows\System32\rasppp.dll - ok
06:38:49.0018 4312 [ 0FE5CD5F9C9248F42D1EF56E495B182E ] C:\Windows\System32\vpnike.dll
06:38:49.0018 4312 C:\Windows\System32\vpnike.dll - ok
06:38:49.0018 4312 [ 5EB55F661DEBF156E126160BCD4D89F8 ] C:\Windows\System32\wbem\wbemcore.dll
06:38:49.0018 4312 C:\Windows\System32\wbem\wbemcore.dll - ok
06:38:49.0033 4312 [ 087D8668C71634A3A3761135ABF16EEE ] C:\Windows\System32\wbem\esscli.dll
06:38:49.0033 4312 C:\Windows\System32\wbem\esscli.dll - ok
06:38:49.0033 4312 [ 718B6F51AB7F6FE2988A36868F9AD3AB ] C:\Windows\System32\wbem\wbemsvc.dll
06:38:49.0033 4312 C:\Windows\System32\wbem\wbemsvc.dll - ok
06:38:49.0033 4312 [ 6A84E68B538B8B04608BF2F0D426CE6F ] C:\Windows\System32\raschap.dll
06:38:49.0033 4312 C:\Windows\System32\raschap.dll - ok
06:38:49.0049 4312 [ 1498259FFF991A4135737080AA0679D1 ] C:\Program Files (x86)\Samsung\Easy Settings\HookDllPS2.dll
06:38:49.0049 4312 C:\Program Files (x86)\Samsung\Easy Settings\HookDllPS2.dll - ok
06:38:49.0049 4312 [ 776AE0564F8B1C282E331FD95A1BDC5F ] C:\Windows\SysWOW64\wbem\wbemsvc.dll
06:38:49.0049 4312 C:\Windows\SysWOW64\wbem\wbemsvc.dll - ok
06:38:49.0065 4312 [ E24FE90E9DE8D8AE70E59F7B01675DEF ] C:\Windows\SysWOW64\avicap32.dll
06:38:49.0065 4312 C:\Windows\SysWOW64\avicap32.dll - ok
06:38:49.0065 4312 [ 0763C5D8660436D4D961F72609E33BBE ] C:\Windows\SysWOW64\urlmon.dll
06:38:49.0065 4312 C:\Windows\SysWOW64\urlmon.dll - ok
06:38:49.0065 4312 [ 0143DB80DACFB7C2B5B7009ED9063353 ] C:\Windows\System32\wbem\wmiutils.dll
06:38:49.0065 4312 C:\Windows\System32\wbem\wmiutils.dll - ok
06:38:49.0080 4312 [ CFC7D8289D2B5F3CF8D16E2DB7F93D4A ] C:\Windows\SysWOW64\wbem\fastprox.dll
06:38:49.0080 4312 C:\Windows\SysWOW64\wbem\fastprox.dll - ok
06:38:49.0080 4312 [ C335EC1182AC10B188705554E0BC1186 ] C:\Windows\SysWOW64\msvfw32.dll
06:38:49.0080 4312 C:\Windows\SysWOW64\msvfw32.dll - ok
06:38:49.0096 4312 [ B95F6501A2F8B2E78C697FEC401970CE ] C:\Windows\System32\ipnathlp.dll
06:38:49.0096 4312 C:\Windows\System32\ipnathlp.dll - ok
06:38:49.0096 4312 [ 2DF29664ED261F0FC448E58F338F0671 ] C:\Windows\System32\mprapi.dll
06:38:49.0096 4312 C:\Windows\System32\mprapi.dll - ok
06:38:49.0096 4312 [ A42F2C1EB3B66C54FB3C7B79D30C1A6D ] C:\Windows\System32\netshell.dll
06:38:49.0096 4312 C:\Windows\System32\netshell.dll - ok
06:38:49.0111 4312 [ F0D0E883EBBDC7615DC9EDEA0FFB2817 ] C:\Windows\SysWOW64\FWPUCLNT.DLL
06:38:49.0111 4312 C:\Windows\SysWOW64\FWPUCLNT.DLL - ok
06:38:49.0111 4312 [ 81F08948A0F1475894C99D4D19A158A8 ] C:\Windows\SysWOW64\wshqos.dll
06:38:49.0111 4312 C:\Windows\SysWOW64\wshqos.dll - ok
06:38:49.0127 4312 [ 4E5FE39C1076D115EC8BFCFE14D75B80 ] C:\Windows\SysWOW64\credssp.dll
06:38:49.0127 4312 C:\Windows\SysWOW64\credssp.dll - ok
06:38:49.0127 4312 [ 0AB34456654C283DAA13B8D2BA21439B ] C:\Windows\System32\wbem\repdrvfs.dll
06:38:49.0127 4312 C:\Windows\System32\wbem\repdrvfs.dll - ok
06:38:49.0127 4312 [ AA6F6457116B559B76BC6A012CB4C293 ] C:\Windows\SysWOW64\schannel.dll
06:38:49.0127 4312 C:\Windows\SysWOW64\schannel.dll - ok
06:38:49.0143 4312 [ F11A57E91FDAECFB41A5CB21EB1EBC8E ] C:\Windows\System32\dssenh.dll
06:38:49.0143 4312 C:\Windows\System32\dssenh.dll - ok
06:38:49.0143 4312 [ DDD0357A92FA843EFF8915ED17253D6C ] C:\Windows\System32\wbem\WmiPrvSD.dll
06:38:49.0143 4312 C:\Windows\System32\wbem\WmiPrvSD.dll - ok
06:38:49.0158 4312 [ D41FEBD098234F02485A4EA98D4730A4 ] C:\Windows\System32\ncobjapi.dll
06:38:49.0158 4312 C:\Windows\System32\ncobjapi.dll - ok
06:38:49.0158 4312 [ AD7FB087A238883D1618F29F7BBBD584 ] C:\Windows\SysWOW64\ncrypt.dll
06:38:49.0158 4312 C:\Windows\SysWOW64\ncrypt.dll - ok
06:38:49.0174 4312 [ 6F40D6FB05E0C1E5402812B426971AF0 ] C:\Windows\System32\wbem\wbemess.dll
06:38:49.0174 4312 C:\Windows\System32\wbem\wbemess.dll - ok
06:38:49.0174 4312 [ CE71B9119A258EDD0A05B37D7B0F92E3 ] C:\Windows\SysWOW64\bcrypt.dll
06:38:49.0174 4312 C:\Windows\SysWOW64\bcrypt.dll - ok
06:38:49.0174 4312 [ E8449FE262D7406BCB2AC2A45C53EC5F ] C:\Windows\SysWOW64\bcryptprimitives.dll
06:38:49.0174 4312 C:\Windows\SysWOW64\bcryptprimitives.dll - ok
06:38:49.0189 4312 [ 1097F3035BAF46CED8B332B3564C5108 ] C:\Windows\SysWOW64\gpapi.dll
06:38:49.0189 4312 C:\Windows\SysWOW64\gpapi.dll - ok
06:38:49.0189 4312 [ 220159496484D34009DE71CA1A68E0D4 ] C:\Windows\System32\wbem\NCProv.dll
06:38:49.0189 4312 C:\Windows\System32\wbem\NCProv.dll - ok
06:38:49.0205 4312 [ 9D2A2369AB4B08A4905FE72DB104498F ] C:\Windows\System32\appinfo.dll
06:38:49.0205 4312 C:\Windows\System32\appinfo.dll - ok
06:38:49.0205 4312 [ BF1FC3F79B863C914687A737C2F3D681 ] C:\Windows\System32\wdi.dll
06:38:49.0205 4312 C:\Windows\System32\wdi.dll - ok
06:38:49.0221 4312 [ F7073C962C4FB7C415565DDE109DE49F ] C:\Windows\System32\npmproxy.dll
06:38:49.0221 4312 C:\Windows\System32\npmproxy.dll - ok
06:38:49.0221 4312 [ 15E298B5EC5B89C5994A59863969D9FF ] C:\Windows\SysWOW64\npmproxy.dll
06:38:49.0221 4312 C:\Windows\SysWOW64\npmproxy.dll - ok
06:38:49.0221 4312 [ 93221146D4EBBF314C29B23CD6CC391D ] C:\Windows\System32\wpdbusenum.dll
06:38:49.0221 4312 C:\Windows\System32\wpdbusenum.dll - ok
06:38:49.0236 4312 [ E64D9EC8018C55873B40FDEE9DBEF5B3 ] C:\Windows\System32\PortableDeviceApi.dll
06:38:49.0236 4312 C:\Windows\System32\PortableDeviceApi.dll - ok
06:38:49.0236 4312 [ AFA79C343F9D1555F7E5D5FA70BB2A14 ] C:\Windows\System32\PortableDeviceConnectApi.dll
06:38:49.0236 4312 C:\Windows\System32\PortableDeviceConnectApi.dll - ok
06:38:49.0252 4312 [ A3A2225177E5923B64A1DB9460576C35 ] C:\Program Files (x86)\Samsung\Easy Settings\GPSTurboModeDLL.dll
06:38:49.0252 4312 C:\Program Files (x86)\Samsung\Easy Settings\GPSTurboModeDLL.dll - ok
06:38:49.0252 4312 [ E3E811471DE781900FF21C1FD84E941E ] C:\Windows\SysWOW64\ntdsapi.dll
06:38:49.0252 4312 C:\Windows\SysWOW64\ntdsapi.dll - ok
06:38:49.0267 4312 [ 619A67C9F617B7E69315BB28ECD5E1DF ] C:\Windows\System32\wbem\WmiPrvSE.exe
06:38:49.0267 4312 C:\Windows\System32\wbem\WmiPrvSE.exe - ok
06:38:49.0267 4312 [ FF0C01F0BE71FA052E4409BE71263473 ] C:\Windows\SysWOW64\atipdlxx.dll
06:38:49.0267 4312 C:\Windows\SysWOW64\atipdlxx.dll - ok
06:38:49.0267 4312 [ 025E7DBDB98866ED3CB2D4DDA70B364D ] C:\Windows\System32\runonce.exe
06:38:49.0267 4312 C:\Windows\System32\runonce.exe - ok
06:38:49.0283 4312 [ 24498D084FAA7A459C91066EC241E1CE ] C:\Windows\SysWOW64\vfwwdm32.dll
06:38:49.0283 4312 C:\Windows\SysWOW64\vfwwdm32.dll - ok
06:38:49.0283 4312 [ 418E881201583A3039D81F43E39E6C78 ] C:\Windows\SysWOW64\winsta.dll
06:38:49.0283 4312 C:\Windows\SysWOW64\winsta.dll - ok
06:38:49.0299 4312 [ 4B638CE3DAA3A082E576C0DDF9D635D4 ] C:\Windows\SysWOW64\ieframe.dll
06:38:49.0299 4312 C:\Windows\SysWOW64\ieframe.dll - ok
06:38:49.0299 4312 [ 60F4AEFA103D421EA4A40E31409B4756 ] C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
06:38:49.0299 4312 C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll - ok
06:38:49.0314 4312 [ D2958325C1AE1AE37A83334C6229E3BC ] C:\Windows\SysWOW64\actxprxy.dll
06:38:49.0314 4312 C:\Windows\SysWOW64\actxprxy.dll - ok
06:38:49.0314 4312 [ 6247E8B31ED0A9D6BC5A26276E49BEB3 ] C:\Program Files\Microsoft Security Client\NisSrv.exe
06:38:49.0314 4312 C:\Program Files\Microsoft Security Client\NisSrv.exe - ok
06:38:49.0330 4312 [ D44741F65A1D71F65814A12CF6E2400A ] C:\Windows\SysWOW64\runonce.exe
06:38:49.0330 4312 C:\Windows\SysWOW64\runonce.exe - ok
06:38:49.0330 4312 [ 79AFFC7FEEA9CD2FEFEA5EF3B631A02C ] C:\Windows\System32\ndiscapCfg.dll
06:38:49.0330 4312 C:\Windows\System32\ndiscapCfg.dll - ok
06:38:49.0330 4312 [ 3D6AF45673C4B31CDECD7F80AF09D443 ] C:\Windows\System32\rascfg.dll
06:38:49.0330 4312 C:\Windows\System32\rascfg.dll - ok
06:38:49.0345 4312 [ 1CF21800E337F4039AAD4C94B4280EE4 ] C:\Windows\System32\mprmsg.dll
06:38:49.0345 4312 C:\Windows\System32\mprmsg.dll - ok
06:38:49.0345 4312 [ 55DE45B116711881C852D2841E4C84DD ] C:\Windows\System32\tcpipcfg.dll
06:38:49.0345 4312 C:\Windows\System32\tcpipcfg.dll - ok
06:38:49.0361 4312 [ 748849C42DEA24C723048E24BCA1BD55 ] C:\Windows\System32\wshbth.dll
06:38:49.0361 4312 C:\Windows\System32\wshbth.dll - ok
06:38:49.0361 4312 [ AC0C9CEA1218DAB1994AF8B28E680BD9 ] C:\Windows\System32\wlaninst.dll
06:38:49.0361 4312 C:\Windows\System32\wlaninst.dll - ok
06:38:49.0361 4312 [ 5A406C9C8E0880D3EABADC5DFD1ACDAE ] C:\Windows\System32\wwaninst.dll
06:38:49.0361 4312 C:\Windows\System32\wwaninst.dll - ok
06:38:49.0377 4312 [ DD81D91FF3B0763C392422865C9AC12E ] C:\Windows\System32\rundll32.exe
06:38:49.0377 4312 C:\Windows\System32\rundll32.exe - ok
06:38:49.0377 4312 [ 9EE6996E3D4EDDFBE7477CFBD14E9774 ] C:\Program Files (x86)\Samsung\Easy Settings\MobileAPset.exe
06:38:49.0377 4312 C:\Program Files (x86)\Samsung\Easy Settings\MobileAPset.exe - ok
06:38:49.0392 4312 [ 2E86A86838D79D3CED428162BBDAE80C ] C:\Program Files\Microsoft Security Client\NisLog.dll
06:38:49.0392 4312 C:\Program Files\Microsoft Security Client\NisLog.dll - ok
06:38:49.0392 4312 [ BD9EB3958F213F96B97B1D897DEE006D ] C:\Windows\System32\hidserv.dll
06:38:49.0392 4312 C:\Windows\System32\hidserv.dll - ok
06:38:49.0408 4312 [ E1B22739C933BE33F53DB58C5393ADD3 ] C:\Windows\System32\Apphlpdm.dll
06:38:49.0408 4312 C:\Windows\System32\Apphlpdm.dll - ok
06:38:49.0408 4312 [ 9689A9C7F7C2A1A423CDA2C3B43FFF65 ] C:\Windows\System32\wer.dll
06:38:49.0408 4312 C:\Windows\System32\wer.dll - ok
06:38:49.0408 4312 [ 4449D23E8F197862F1B16F1E6C89C36C ] C:\Windows\System32\diagperf.dll
06:38:49.0408 4312 C:\Windows\System32\diagperf.dll - ok
06:38:49.0423 4312 [ BF4AC709BE5BF64F331F5D67773A0C82 ] C:\Windows\System32\perftrack.dll
06:38:49.0423 4312 C:\Windows\System32\perftrack.dll - ok
06:38:49.0423 4312 [ DD3FD48D69F5FBBB21D46D1514C1C2DB ] C:\Windows\System32\drivers\psi_mf_amd64.sys
06:38:49.0423 4312 C:\Windows\System32\drivers\psi_mf_amd64.sys - ok
06:38:49.0439 4312 [ E629F1A051C82795DDFFD3E8D4855811 ] C:\Windows\System32\dimsjob.dll
06:38:49.0439 4312 C:\Windows\System32\dimsjob.dll - ok
06:38:49.0439 4312 [ 9719E3D834F5C8C43F56A93DFA497023 ] C:\Windows\System32\pnpts.dll
06:38:49.0439 4312 C:\Windows\System32\pnpts.dll - ok
06:38:49.0439 4312 [ 46863C4CC5B68EB09EA2D5EEF0F1193A ] C:\Windows\System32\radardt.dll
06:38:49.0439 4312 C:\Windows\System32\radardt.dll - ok
06:38:49.0455 4312 [ E811F8510B133E70CF6E509FB809824F ] C:\Windows\System32\wdiasqmmodule.dll
06:38:49.0455 4312 C:\Windows\System32\wdiasqmmodule.dll - ok
06:38:49.0455 4312 [ 35CB97CBC3EDC463418ED4997AAB29B6 ] C:\Windows\System32\pautoenr.dll
06:38:49.0455 4312 C:\Windows\System32\pautoenr.dll - ok
06:38:49.0470 4312 [ 6607C2182C6A53ED983813AFE2F85768 ] C:\Windows\System32\wbem\cimwin32.dll
06:38:49.0470 4312 C:\Windows\System32\wbem\cimwin32.dll - ok
06:38:49.0470 4312 [ 58A0CDABEA255616827B1C22C9994466 ] C:\Windows\System32\NapiNSP.dll
06:38:49.0470 4312 C:\Windows\System32\NapiNSP.dll - ok
06:38:49.0470 4312 [ E6F0F82788E8BD0F7A616350EFA0761C ] C:\Windows\System32\actxprxy.dll
06:38:49.0470 4312 C:\Windows\System32\actxprxy.dll - ok
06:38:49.0486 4312 [ 95F9C2976059462CBBF227F7AAB10DE9 ] C:\Windows\System32\bthserv.dll
06:38:49.0486 4312 C:\Windows\System32\bthserv.dll - ok
06:38:49.0486 4312 [ 94DFBB481BF51158B216E23C5C1C9D6E ] C:\Windows\System32\certcli.dll
06:38:49.0486 4312 C:\Windows\System32\certcli.dll - ok
06:38:49.0501 4312 [ 613C8CE10A5FDE582BA5FA64C4D56AAA ] C:\Windows\System32\pnrpnsp.dll
06:38:49.0501 4312 C:\Windows\System32\pnrpnsp.dll - ok
06:38:49.0501 4312 [ 2E2072EB48238FCA8FBB7A9F5FABAC45 ] C:\Windows\System32\winrnr.dll
06:38:49.0501 4312 C:\Windows\System32\winrnr.dll - ok
06:38:49.0501 4312 [ 263B26106606A010CF877472B535E4BB ] C:\Windows\System32\CertEnroll.dll
06:38:49.0501 4312 C:\Windows\System32\CertEnroll.dll - ok
06:38:49.0517 4312 [ 41E15DF500BC1FB86950C2312DE7600C ] C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{D81B94A9-3607-4F3A-935F-7F7C93C0A215}\gapaengine.dll
06:38:49.0517 4312 C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{D81B94A9-3607-4F3A-935F-7F7C93C0A215}\gapaengine.dll - ok
06:38:49.0517 4312 [ 1484B9EBF567346582DE571B0E164AE0 ] C:\Windows\System32\framedynos.dll
06:38:49.0517 4312 C:\Windows\System32\framedynos.dll - ok
06:38:49.0533 4312 [ AD7B9C14083B52BC532FBA5948342B98 ] C:\Windows\SysWOW64\cmd.exe
06:38:49.0533 4312 C:\Windows\SysWOW64\cmd.exe - ok
06:38:49.0533 4312 [ C00DB14550E4BD49737F311C644E45FF ] C:\Windows\System32\wmi.dll
06:38:49.0533 4312 C:\Windows\System32\wmi.dll - ok
06:38:49.0533 4312 [ 012787CEB35505EB78DF82E0A0072888 ] C:\Windows\System32\browcli.dll
06:38:49.0533 4312 C:\Windows\System32\browcli.dll - ok
06:38:49.0548 4312 [ DA85C611FA10003CCC0906CC6CD7AED0 ] C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{D81B94A9-3607-4F3A-935F-7F7C93C0A215}\nisfull.vdm
06:38:49.0548 4312 C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{D81B94A9-3607-4F3A-935F-7F7C93C0A215}\nisfull.vdm - ok
06:38:49.0548 4312 [ 92E0508D924512F63FFEEFE498CBD11F ] C:\Windows\System32\p2pcollab.dll
06:38:49.0548 4312 C:\Windows\System32\p2pcollab.dll - ok
06:38:49.0564 4312 [ 582AC6D9873E31DFA28A4547270862DD ] C:\Windows\System32\QAGENTRT.DLL
06:38:49.0564 4312 C:\Windows\System32\QAGENTRT.DLL - ok
06:38:49.0564 4312 [ 506A83A3BEEE9FCA09F0170DE9FC7D1B ] C:\Windows\System32\fveui.dll
06:38:49.0564 4312 C:\Windows\System32\fveui.dll - ok
06:38:49.0564 4312 [ C47F35CC6FA4F1BDBEF8F87AC1A46537 ] C:\Windows\System32\wuapi.dll
06:38:49.0564 4312 C:\Windows\System32\wuapi.dll - ok
06:38:49.0579 4312 [ FA43D418BC945D27D0625B697B8442B5 ] C:\Windows\System32\cabinet.dll
06:38:49.0579 4312 C:\Windows\System32\cabinet.dll - ok
06:38:49.0579 4312 [ 662BA98309818AF2C17D4E48BF4021C4 ] C:\Program Files\Windows Defender\MpClient.dll
06:38:49.0579 4312 C:\Program Files\Windows Defender\MpClient.dll - ok
06:38:49.0595 4312 [ E746ED90132C6B6313CE9179F56BD31D ] C:\Windows\System32\wups.dll
06:38:49.0595 4312 C:\Windows\System32\wups.dll - ok
06:38:49.0595 4312 [ CDAD3376DFF3D9AC7FDCBE2B94B0D3C8 ] C:\Windows\System32\shfolder.dll
06:38:49.0595 4312 C:\Windows\System32\shfolder.dll - ok
06:38:49.0595 4312 [ 6FA41E0C86EF049A12C05CA4BBA8F9AF ] C:\Windows\SysWOW64\perfos.dll
06:38:49.0595 4312 C:\Windows\SysWOW64\perfos.dll - ok
06:38:49.0611 4312 [ C4BFE4B61086416B0529212F92BCE081 ] C:\Windows\System32\schedcli.dll
06:38:49.0611 4312 C:\Windows\System32\schedcli.dll - ok
06:38:49.0611 4312 [ 081D5C1EE03B1A537B761FBAF6C5E6E0 ] C:\Program Files (x86)\Samsung\Easy Settings\WinCRT.dll
06:38:49.0611 4312 C:\Program Files (x86)\Samsung\Easy Settings\WinCRT.dll - ok
06:38:49.0626 4312 [ 8B90A2D9FDC21854614BF99A3B92CE9F ] C:\Program Files (x86)\Samsung\Easy Settings\SCCColorDll.dll
06:38:49.0626 4312 C:\Program Files (x86)\Samsung\Easy Settings\SCCColorDll.dll - ok
06:38:49.0626 4312 [ 5B2E4E90C04FB9AE9F2C5E99FF59B283 ] C:\Windows\SysWOW64\WindowsCodecs.dll
06:38:49.0626 4312 C:\Windows\SysWOW64\WindowsCodecs.dll - ok
06:38:49.0642 4312 [ BF95EA5809E3BBF55370F7CB309FEBD0 ] C:\Windows\System32\conhost.exe
06:38:49.0642 4312 C:\Windows\System32\conhost.exe - ok
06:38:49.0642 4312 [ 326C7F76A29897A892AA7726E91C1C67 ] C:\Windows\SysWOW64\winbrand.dll
06:38:49.0642 4312 C:\Windows\SysWOW64\winbrand.dll - ok
06:38:49.0642 4312 [ 4B78B431F225FD8624C5655CB1DE7B61 ] C:\Windows\System32\aelupsvc.dll
06:38:49.0642 4312 C:\Windows\System32\aelupsvc.dll - ok
06:38:49.0657 4312 [ 3EE970DF32D49E8C8D511C4C8E4AAA80 ] C:\Program Files\Samsung\S Agent\CommonAgent.exe
06:38:49.0657 4312 C:\Program Files\Samsung\S Agent\CommonAgent.exe - ok
06:38:49.0657 4312 [ DF0AE7F867A1D7C3A88DD6F1573923A9 ] C:\Program Files\Samsung\Easy Support Center\SamoyedAgent.exe
06:38:49.0657 4312 C:\Program Files\Samsung\Easy Support Center\SamoyedAgent.exe - ok
06:38:49.0673 4312 [ 048EA4B978851788E9F5E8E4F081DF7A ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
06:38:49.0673 4312 C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe - ok
06:38:49.0673 4312 [ 57B4D34232852BFE4453BE571DF90D21 ] C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
06:38:49.0673 4312 C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe - ok
06:38:49.0689 4312 [ E424B3EF666B184CEE0B6871AAA8C9F6 ] C:\Windows\System32\msimg32.dll
06:38:49.0689 4312 C:\Windows\System32\msimg32.dll - ok
06:38:49.0689 4312 [ 263E9A047D17CD50BAA9D3C02910D18D ] C:\Windows\System32\oledlg.dll
06:38:49.0689 4312 C:\Windows\System32\oledlg.dll - ok
06:38:49.0689 4312 [ 41E2A342FD3F6D1714EA1AD44C57238C ] C:\Program Files\Samsung\Easy Support Center\Sabi3.dll
06:38:49.0689 4312 C:\Program Files\Samsung\Easy Support Center\Sabi3.dll - ok
06:38:49.0704 4312 [ 2C7CF4D4A17B5765E23F6B82C16AF4EB ] C:\Program Files (x86)\CyberLink\Media+Player10\Media+Player10Serv.exe
06:38:49.0704 4312 C:\Program Files (x86)\CyberLink\Media+Player10\Media+Player10Serv.exe - ok
06:38:49.0704 4312 [ C3A5FFD57C2563204CD9351F0C7A0DEA ] C:\Program Files (x86)\CyberLink\Power2Go\msvcp71.dll
06:38:49.0704 4312 C:\Program Files (x86)\CyberLink\Power2Go\msvcp71.dll - ok
06:38:49.0720 4312 [ C64E9B1C9EA057DCECDCB98F34377811 ] C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
06:38:49.0720 4312 C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE - ok
06:38:49.0720 4312 [ F3B3B39E189C92C35C49A5DA23D57D38 ] C:\Program Files (x86)\CyberLink\Media+Player10\CLRCEngine3.dll
06:38:49.0720 4312 C:\Program Files (x86)\CyberLink\Media+Player10\CLRCEngine3.dll - ok
06:38:49.0735 4312 [ A1A6FC56A1D0DADC164637FE43C40605 ] C:\Program Files (x86)\CyberLink\Power2Go\msvcr71.dll
06:38:49.0735 4312 C:\Program Files (x86)\CyberLink\Power2Go\msvcr71.dll - ok
06:38:49.0735 4312 [ 6860E32B7335EC62295673AA2106A407 ] C:\Program Files\Microsoft Security Client\msseces.exe
06:38:49.0735 4312 C:\Program Files\Microsoft Security Client\msseces.exe - ok
06:38:49.0751 4312 [ 1020C0C4BAC624DAF56712EA6D5865CE ] C:\Program Files (x86)\CyberLink\Media+Player10\msvcr71.dll
06:38:49.0751 4312 C:\Program Files (x86)\CyberLink\Media+Player10\msvcr71.dll - ok
06:38:49.0751 4312 [ 6A5D0ED8F280AB8E312A4252472A14A4 ] C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll
06:38:49.0751 4312 C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll - ok
06:38:49.0767 4312 [ 6C4B2E1A25841077084EB9F76FF6FFA7 ] C:\Windows\SysWOW64\wmp.dll
06:38:49.0767 4312 C:\Windows\SysWOW64\wmp.dll - ok
06:38:49.0767 4312 [ 02DF0628BE8B64B84D50FBE53549AA3B ] C:\Windows\SysWOW64\wmploc.DLL
06:38:49.0767 4312 C:\Windows\SysWOW64\wmploc.DLL - ok
06:38:49.0782 4312 [ 6F8E3B7B70E1BBA871212940C1FBDF60 ] C:\Windows\SysWOW64\SensApi.dll
06:38:49.0782 4312 C:\Windows\SysWOW64\SensApi.dll - ok
06:38:49.0782 4312 [ CCDA8E6A2AC68FD417A8BB8D88CBFDAC ] C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe
06:38:49.0782 4312 C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe - ok
06:38:49.0782 4312 [ 58B8702C20DE211D1FCB248D2FDD71D1 ] C:\Program Files (x86)\Adobe\Reader 11.0\Reader\reader_sl.exe
06:38:49.0782 4312 C:\Program Files (x86)\Adobe\Reader 11.0\Reader\reader_sl.exe - ok
06:38:49.0798 4312 [ 2168E61B9E3B06EEB8B3EACDFDC4699B ] C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll
06:38:49.0798 4312 C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll - ok
06:38:49.0798 4312 [ 61CBB6C44CE94E0D1AB178330EF1C541 ] C:\Program Files (x86)\Microsoft Office\Office14\1033\ONINTL.DLL
06:38:49.0798 4312 C:\Program Files (x86)\Microsoft Office\Office14\1033\ONINTL.DLL - ok
06:38:49.0813 4312 [ E3C817F7FE44CC870ECDBCBC3EA36132 ] C:\Windows\SysWOW64\msvcp100.dll
06:38:49.0813 4312 C:\Windows\SysWOW64\msvcp100.dll - ok
06:38:49.0813 4312 [ BF38660A9125935658CFA3E53FDC7D65 ] C:\Windows\SysWOW64\msvcr100.dll
06:38:49.0813 4312 C:\Windows\SysWOW64\msvcr100.dll - ok
06:38:49.0829 4312 [ C9AEBF3A8363AC7FF23ACE4DFA9B6D82 ] C:\Program Files\Microsoft Security Client\MsMpRes.dll
06:38:49.0829 4312 C:\Program Files\Microsoft Security Client\MsMpRes.dll - ok
06:38:49.0829 4312 [ 4C1C47590F05CA16D99CBBE7442BCBF9 ] C:\Program Files\Samsung\S Agent\ToastX64.dll
06:38:49.0829 4312 C:\Program Files\Samsung\S Agent\ToastX64.dll - ok
06:38:49.0845 4312 [ 1EAC1A8CA6874BF5B15E2EFB9A9A7B86 ] C:\Windows\System32\msftedit.dll
06:38:49.0845 4312 C:\Windows\System32\msftedit.dll - ok
06:38:49.0845 4312 [ B837D1528CE2E3CB79F09496BC08DDC6 ] C:\Windows\System32\SensApi.dll
06:38:49.0845 4312 C:\Windows\System32\SensApi.dll - ok
06:38:49.0845 4312 [ 2C4A87CA8C00E98EFDCFA2E8EC9A3503 ] C:\Windows\SysWOW64\shdocvw.dll
06:38:49.0845 4312 C:\Windows\SysWOW64\shdocvw.dll - ok
06:38:49.0860 4312 [ 178A34E5554DCE485E1262DDF027960C ] C:\Users\Nakaela BC\AppData\Local\Temp\0708EC98-B08F-4D0A-AB78-6E50B717AD56.exe
06:38:49.0860 4312 C:\Users\Nakaela BC\AppData\Local\Temp\0708EC98-B08F-4D0A-AB78-6E50B717AD56.exe - ok
06:38:49.0860 4312 [ 7B851A8018B1EA00A69707A390004884 ] C:\Windows\SysWOW64\cryptnet.dll
06:38:49.0860 4312 C:\Windows\SysWOW64\cryptnet.dll - ok
06:38:49.0876 4312 [ 846D0E4DB261CFAF363902E41498E961 ] C:\Windows\SysWOW64\EhStorShell.dll
06:38:49.0876 4312 C:\Windows\SysWOW64\EhStorShell.dll - ok
06:38:49.0876 4312 [ 03F3B770DFBED6131653CEDA8CA780F0 ] C:\Windows\SysWOW64\ntshrui.dll
06:38:49.0876 4312 C:\Windows\SysWOW64\ntshrui.dll - ok
06:38:49.0891 4312 [ 8B74CEC6980D4816B0037AE9A27E538F ] C:\Windows\SysWOW64\slc.dll
06:38:49.0891 4312 C:\Windows\SysWOW64\slc.dll - ok
06:38:49.0891 4312 [ 827CB0D6C3F8057EA037FF271F8E9795 ] C:\Windows\SysWOW64\imageres.dll
06:38:49.0891 4312 C:\Windows\SysWOW64\imageres.dll - ok
06:38:49.0907 4312 [ 198803E5E93E29967DFB0BCFD0186151 ] C:\Windows\System32\spfileq.dll
06:38:49.0907 4312 C:\Windows\System32\spfileq.dll - ok
06:38:49.0907 4312 [ C72CDAF53EC908044113F38264D5B396 ] C:\Program Files (x86)\Samsung\Easy Settings\ExpressCacheRun64.exe
06:38:49.0907 4312 C:\Program Files (x86)\Samsung\Easy Settings\ExpressCacheRun64.exe - ok
06:38:49.0923 4312 [ 271B8112BE8AF626AE6A2658CCE8065B ] C:\Program Files (x86)\Samsung\Easy Settings\EBM\EasyBatteryMgr4.exe
06:38:49.0923 4312 C:\Program Files (x86)\Samsung\Easy Settings\EBM\EasyBatteryMgr4.exe - ok
06:38:49.0923 4312 [ A9F3BFC9345F49614D5859EC95B9E994 ] C:\Program Files\Windows Media Player\wmpnetwk.exe
06:38:49.0923 4312 C:\Program Files\Windows Media Player\wmpnetwk.exe - ok
06:38:49.0938 4312 [ E0B340996A41C9A75DFA3B99BBA9C500 ] C:\Windows\System32\SearchIndexer.exe
06:38:49.0938 4312 C:\Windows\System32\SearchIndexer.exe - ok
06:38:49.0938 4312 [ 5746BD7E255DD6A8AFA06F7C42C1BA41 ] C:\Windows\System32\cmd.exe
06:38:49.0938 4312 C:\Windows\System32\cmd.exe - ok
06:38:49.0954 4312 [ 98E7E971AB21A6EDD2323C0FB37B9A0F ] C:\Windows\SysWOW64\powercfg.exe
06:38:49.0954 4312 C:\Windows\SysWOW64\powercfg.exe - ok
06:38:49.0954 4312 [ 4AEDAB50F83580D0B4D6CF78191F92AA ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
06:38:49.0954 4312 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe - ok
06:38:49.0954 4312 [ E17E0188BB90FAE42D83E98707EFA59C ] C:\Windows\System32\sppsvc.exe
06:38:49.0954 4312 C:\Windows\System32\sppsvc.exe - ok
06:38:49.0969 4312 [ 40CAEEE0EAF1B8569F7C8DF6420F2CB9 ] C:\Windows\SysWOW64\sfc.dll
06:38:49.0969 4312 C:\Windows\SysWOW64\sfc.dll - ok
06:38:49.0969 4312 [ 84799328D87B3091A3BDD251E1AD31F9 ] C:\Windows\SysWOW64\sfc_os.dll
06:38:49.0969 4312 C:\Windows\SysWOW64\sfc_os.dll - ok
06:38:49.0985 4312 [ 162D247E995EAEBF3EF4289069E1111C ] C:\Windows\SysWOW64\devrtl.dll
06:38:49.0985 4312 C:\Windows\SysWOW64\devrtl.dll - ok
06:38:49.0985 4312 [ B9A8CBCFCD3EC9D2EA4740AF347BF108 ] C:\Windows\SysWOW64\mpr.dll
06:38:49.0985 4312 C:\Windows\SysWOW64\mpr.dll - ok
06:38:50.0001 4312 [ FB10715E4099AF9FA389C71873245226 ] C:\Windows\System32\timedate.cpl
06:38:50.0001 4312 C:\Windows\System32\timedate.cpl - ok
06:38:50.0001 4312 [ 23B001185B7C3CB1F4BDEB143E6B45B7 ] C:\Windows\System32\shdocvw.dll
06:38:50.0001 4312 C:\Windows\System32\shdocvw.dll - ok
06:38:50.0016 4312 [ A0A65D306A5490D2EB8E7DE66898ECFD ] C:\Windows\System32\linkinfo.dll
06:38:50.0016 4312 C:\Windows\System32\linkinfo.dll - ok
06:38:50.0016 4312 [ 2BCBA6052374959A30BD7948444DBB79 ] C:\Windows\System32\gameux.dll
06:38:50.0016 4312 C:\Windows\System32\gameux.dll - ok
06:38:50.0016 4312 [ 2EBD0C5B090125AECF017C57344C45AB ] C:\Windows\System32\msls31.dll
06:38:50.0016 4312 C:\Windows\System32\msls31.dll - ok
06:38:50.0032 4312 [ 7DBA84667DC18877AEF693E3543DFAD7 ] C:\Program Files\Common Files\Microsoft Shared\ink\tiptsf.dll
06:38:50.0032 4312 C:\Program Files\Common Files\Microsoft Shared\ink\tiptsf.dll - ok
06:38:50.0032 4312 [ 102CF6879887BBE846A00C459E6D4ABC ] C:\Windows\SysWOW64\riched20.dll
06:38:50.0032 4312 C:\Windows\SysWOW64\riched20.dll - ok
06:38:50.0047 4312 [ 3DE7064E794A84B8AFF55EEF59DD4280 ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
06:38:50.0047 4312 C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe - ok
06:38:50.0047 4312 [ 25A10B3E55C31A5EA93F22D358667967 ] C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
06:38:50.0047 4312 C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe - ok
06:38:50.0063 4312 [ 4C2C4640BF23AAFCF90519E0F34436CE ] C:\Windows\System32\DeviceCenter.dll
06:38:50.0063 4312 C:\Windows\System32\DeviceCenter.dll - ok
06:38:50.0063 4312 [ CDF085F6603CA9A97405C666B414F2CA ] C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
06:38:50.0063 4312 C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe - ok
06:38:50.0079 4312 [ 405F4D32D2185F1F1BD753D8EEAFFB3A ] C:\Windows\System32\networkexplorer.dll
06:38:50.0079 4312 C:\Windows\System32\networkexplorer.dll - ok
06:38:50.0079 4312 [ 5F639198C4137075DA50E61C23963C11 ] C:\Windows\System32\drprov.dll
06:38:50.0079 4312 C:\Windows\System32\drprov.dll - ok
06:38:50.0079 4312 [ EDF5C6A9F33FBD3D717D1B77A9864C64 ] C:\Windows\System32\ieframe.dll
06:38:50.0079 4312 C:\Windows\System32\ieframe.dll - ok
06:38:50.0094 4312 [ 9110FFAD124283F37D38771BB60556AF ] C:\Windows\System32\dsound.dll
06:38:50.0094 4312 C:\Windows\System32\dsound.dll - ok
06:38:50.0094 4312 [ 585FED4CDB8034B8B58AEB8008255817 ] C:\Windows\System32\opengl32.dll
06:38:50.0094 4312 C:\Windows\System32\opengl32.dll - ok
06:38:50.0110 4312 [ F2967C0A97C0EA67D79D7F557213950D ] C:\Windows\System32\glu32.dll
06:38:50.0110 4312 C:\Windows\System32\glu32.dll - ok
06:38:50.0110 4312 [ A6C09924C6730DE8DEED9890A12AA691 ] C:\Windows\System32\ddraw.dll
06:38:50.0110 4312 C:\Windows\System32\ddraw.dll - ok
06:38:50.0125 4312 [ A5ED9421B8D09ED4F57CDA386307713E ] C:\Windows\System32\dciman32.dll
06:38:50.0125 4312 C:\Windows\System32\dciman32.dll - ok
06:38:50.0125 4312 [ 60AA70268599AA1A9264CFF3731F2147 ] C:\Program Files (x86)\Bluetooth Suite\utils.dll
06:38:50.0125 4312 C:\Program Files (x86)\Bluetooth Suite\utils.dll - ok
06:38:50.0141 4312 [ 05BC583B124161231F37FE30B01B0567 ] C:\Program Files (x86)\Bluetooth Suite\athr_debug.dll
06:38:50.0141 4312 C:\Program Files (x86)\Bluetooth Suite\athr_debug.dll - ok
06:38:50.0141 4312 [ 0805289E121F3E3C458C970B08314EB2 ] C:\Windows\System32\RtkCfg64.dll
06:38:50.0141 4312 C:\Windows\System32\RtkCfg64.dll - ok
06:38:50.0157 4312 [ 0EEAAE1E5294D8E04E3B09C596A4FA4E ] C:\Program Files (x86)\Bluetooth Suite\phonebook.dll
06:38:50.0157 4312 C:\Program Files (x86)\Bluetooth Suite\phonebook.dll - ok
06:38:50.0157 4312 [ 7125C4A7DC781E0D3302B5A6E4779D99 ] C:\Program Files (x86)\Bluetooth Suite\goep.dll
06:38:50.0157 4312 C:\Program Files (x86)\Bluetooth Suite\goep.dll - ok
06:38:50.0157 4312 [ FDA421F51414B04728F92860E207F526 ] C:\Program Files (x86)\Bluetooth Suite\SesMgr.dll
06:38:50.0157 4312 C:\Program Files (x86)\Bluetooth Suite\SesMgr.dll - ok
06:38:50.0172 4312 [ F719FC3BA9AF4FB22D8B89B9B8A0358F ] C:\Program Files (x86)\Bluetooth Suite\OutLookLib.dll
06:38:50.0172 4312 C:\Program Files (x86)\Bluetooth Suite\OutLookLib.dll - ok
06:38:50.0172 4312 [ 92970BC778C1BB05B66C43F198F787E0 ] C:\Program Files (x86)\Bluetooth Suite\Handsfree.dll
06:38:50.0172 4312 C:\Program Files (x86)\Bluetooth Suite\Handsfree.dll - ok
06:38:50.0188 4312 [ 8253D6B6A1B35A13E864E8B237A9347F ] C:\Program Files (x86)\Bluetooth Suite\RfcommLib.dll
06:38:50.0188 4312 C:\Program Files (x86)\Bluetooth Suite\RfcommLib.dll - ok
06:38:50.0188 4312 [ 0622A7F39D02317E04EFB2CA948B5008 ] C:\Program Files (x86)\Bluetooth Suite\Sync.dll
06:38:50.0188 4312 C:\Program Files (x86)\Bluetooth Suite\Sync.dll - ok
06:38:50.0203 4312 [ FCF820A5589DA92C190C5575D9559B34 ] C:\Program Files (x86)\Bluetooth Suite\sim.dll
06:38:50.0203 4312 C:\Program Files (x86)\Bluetooth Suite\sim.dll - ok
06:38:50.0203 4312 [ 82C5A87B8C7474B462E264E0CDDD83C9 ] C:\Program Files (x86)\Bluetooth Suite\L2capLib.dll
06:38:50.0203 4312 C:\Program Files (x86)\Bluetooth Suite\L2capLib.dll - ok
06:38:50.0219 4312 [ 850BD2D2D9CB5894935C3B6333CAD6FD ] C:\Windows\System32\riched20.dll
06:38:50.0219 4312 C:\Windows\System32\riched20.dll - ok
06:38:50.0219 4312 [ 17F6F6ACE4F7137B1445ABE4892CFF11 ] C:\Program Files (x86)\Bluetooth Suite\BTBIP.dll
06:38:50.0219 4312 C:\Program Files (x86)\Bluetooth Suite\BTBIP.dll - ok
06:38:50.0235 4312 [ A20A12C1F7A233AF4FB44C2CDFC24FA0 ] C:\Program Files (x86)\Bluetooth Suite\BPP.dll
06:38:50.0235 4312 C:\Program Files (x86)\Bluetooth Suite\BPP.dll - ok
06:38:50.0235 4312 [ DB44BD008A346E70A13752D2B9EC6AE2 ] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
06:38:50.0235 4312 C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe - ok
06:38:50.0250 4312 [ 788ED2B45D2ECA27B07077DAD5939BE9 ] C:\Program Files (x86)\Bluetooth Suite\ShellContextExt.dll
06:38:50.0250 4312 C:\Program Files (x86)\Bluetooth Suite\ShellContextExt.dll - ok
06:38:50.0250 4312 [ 9108540E866F75C7AF2B91DD921A8091 ] C:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll
06:38:50.0250 4312 C:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll - ok
06:38:50.0266 4312 [ BC566D17914B07ABAAB3A5A385CC3300 ] C:\Windows\System32\ntlanman.dll
06:38:50.0266 4312 C:\Windows\System32\ntlanman.dll - ok
06:38:50.0266 4312 [ 4C29561053771FCAC07A1BED0A27308C ] C:\Program Files (x86)\Bluetooth Suite\BtCommonRes.dll
06:38:50.0266 4312 C:\Program Files (x86)\Bluetooth Suite\BtCommonRes.dll - ok
06:38:50.0281 4312 [ B32AB94A432289AC2DF77A3DCAD32EED ] C:\Windows\System32\davclnt.dll
06:38:50.0281 4312 C:\Windows\System32\davclnt.dll - ok
06:38:50.0281 4312 [ 45B24A357C801CE62052FE0CDC8BD4D2 ] C:\Windows\System32\davhlpr.dll
06:38:50.0281 4312 C:\Windows\System32\davhlpr.dll - ok
06:38:50.0281 4312 [ 69754747274B76E7FAF287239333D7E6 ] C:\Windows\System32\msiltcfg.dll
06:38:50.0281 4312 C:\Windows\System32\msiltcfg.dll - ok
06:38:50.0297 4312 [ 3C694CFA31CF8CA83E4A587F58C683F7 ] C:\Program Files (x86)\Raptr\raptrstub.exe
06:38:50.0297 4312 C:\Program Files (x86)\Raptr\raptrstub.exe - ok
06:38:50.0297 4312 [ 5EB6E9C8BE1ACC5830780E0F9A846255 ] C:\Windows\System32\msi.dll
06:38:50.0297 4312 C:\Windows\System32\msi.dll - ok
06:38:50.0313 4312 [ BE987D3547DD0B9CFAE7E6995770951B ] C:\Program Files (x86)\Raptr\python26.dll
06:38:50.0313 4312 C:\Program Files (x86)\Raptr\python26.dll - ok
06:38:50.0313 4312 [ 24F4B480F335A6C724AF352253C5D98B ] C:\Windows\System32\thumbcache.dll
06:38:50.0313 4312 C:\Windows\System32\thumbcache.dll - ok
06:38:50.0328 4312 [ C3761661C17C2248A9379A8FB89E3DE1 ] C:\Windows\System32\stobject.dll
06:38:50.0328 4312 C:\Windows\System32\stobject.dll - ok
06:38:50.0328 4312 [ F832EEEA97CDDA1AF577E721F652A0D1 ] C:\Windows\System32\batmeter.dll
06:38:50.0328 4312 C:\Windows\System32\batmeter.dll - ok
06:38:50.0328 4312 [ EA67A834E278675FD95B628F3B6704A8 ] C:\Program Files (x86)\Bluetooth Suite\AthCopyHook.dll
06:38:50.0328 4312 C:\Program Files (x86)\Bluetooth Suite\AthCopyHook.dll - ok
06:38:50.0344 4312 [ 2D2A6EC8EAD30EC3ACE2FD6FB1B3E122 ] C:\Windows\System32\prnfldr.dll
06:38:50.0344 4312 C:\Windows\System32\prnfldr.dll - ok
06:38:50.0344 4312 [ 2A436796758BF2555A26C770FE8A6FEE ] C:\Windows\System32\fdProxy.dll
06:38:50.0344 4312 C:\Windows\System32\fdProxy.dll - ok
06:38:50.0359 4312 [ 42A9CB6906D9A8BEDC83B57163E62924 ] C:\Windows\System32\DXP.dll
06:38:50.0359 4312 C:\Windows\System32\DXP.dll - ok
06:38:50.0359 4312 [ F146E2BA475893DD77B2370DC1211FC6 ] C:\Windows\System32\drivers\33068404.sys
06:38:50.0359 4312 C:\Windows\System32\drivers\33068404.sys - ok
06:38:50.0376 4312 [ 2BC7C9FD0A9F2C9AFC373F3AD1EE3891 ] C:\Windows\System32\Syncreg.dll
06:38:50.0376 4312 C:\Windows\System32\Syncreg.dll - ok
06:38:50.0376 4312 [ C836175870E00ACC546066632E15BD10 ] C:\Windows\ehome\ehSSO.dll
06:38:50.0376 4312 C:\Windows\ehome\ehSSO.dll - ok
06:38:50.0376 4312 [ C8FDF0FA9E97E2FAAF3F814716AAA881 ] C:\Windows\System32\WPDShServiceObj.dll
06:38:50.0376 4312 C:\Windows\System32\WPDShServiceObj.dll - ok
06:38:50.0392 4312 [ 4F3CD1C59EA71401E155C432BCECE180 ] C:\Windows\System32\PortableDeviceTypes.dll
06:38:50.0392 4312 C:\Windows\System32\PortableDeviceTypes.dll - ok
06:38:50.0392 4312 [ 5B6E8E09BE6401A7E022F52FDFCB2FF8 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
06:38:50.0392 4312 C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe - ok
06:38:50.0407 4312 [ 589DF683A6C81424A6CECE52ABF98A50 ] C:\Windows\System32\tquery.dll
06:38:50.0407 4312 C:\Windows\System32\tquery.dll - ok
06:38:50.0407 4312 [ 8569E35D00F45972E506502EEE622BA4 ] C:\Windows\System32\srchadmin.dll
06:38:50.0407 4312 C:\Windows\System32\srchadmin.dll - ok
06:38:50.0423 4312 [ E7368F0A8D19445EAF5C5D0DBB8B8DAB ] C:\Windows\System32\AltTab.dll
06:38:50.0423 4312 C:\Windows\System32\AltTab.dll - ok
06:38:50.0423 4312 [ 10F815BE90A66AAFC6C713D1BD626064 ] C:\Windows\System32\pnidui.dll
06:38:50.0423 4312 C:\Windows\System32\pnidui.dll - ok
06:38:50.0438 4312 [ 7568CC720ACE4D03B84AF97817E745EF ] C:\Windows\System32\mssrch.dll
06:38:50.0438 4312 C:\Windows\System32\mssrch.dll - ok
06:38:50.0438 4312 [ B9F0A4020AA98B7A20287BF7FE99A1FD ] C:\Windows\System32\QUTIL.DLL
06:38:50.0438 4312 C:\Windows\System32\QUTIL.DLL - ok
06:38:50.0438 4312 [ D2155709E336C3BC15729EB87FEC6064 ] C:\Windows\System32\rasdlg.dll
06:38:50.0438 4312 C:\Windows\System32\rasdlg.dll - ok
06:38:50.0454 4312 [ F9AFD12BB4B1CFA5FCC0A5B37C604FD2 ] C:\Windows\System32\dot3api.dll
06:38:50.0454 4312 C:\Windows\System32\dot3api.dll - ok
06:38:50.0454 4312 [ E4FCA0F99A41E460C84016DEFD31E6EF ] C:\Windows\System32\wlanhlp.dll
06:38:50.0454 4312 C:\Windows\System32\wlanhlp.dll - ok
06:38:50.0470 4312 [ 5DA219F57A9076FB6FBD3C9C3713A672 ] C:\Windows\System32\WWanAPI.dll
06:38:50.0470 4312 C:\Windows\System32\WWanAPI.dll - ok
06:38:50.0470 4312 [ 62C7AACC746C9723468A8F2169ED3E85 ] C:\Windows\System32\wwapi.dll
06:38:50.0470 4312 C:\Windows\System32\wwapi.dll - ok
06:38:50.0485 4312 [ 6B851E682A36453E1B1EE297FFB6E2AB ] C:\Windows\System32\QAGENT.DLL
06:38:50.0485 4312 C:\Windows\System32\QAGENT.DLL - ok
06:38:50.0485 4312 [ E2A17BCC08D92F42E08AF6BA2F93ABA7 ] C:\Windows\SysWOW64\ExplorerFrame.dll
06:38:50.0485 4312 C:\Windows\SysWOW64\ExplorerFrame.dll - ok
06:38:50.0501 4312 [ C746F3BF98E92FB137B5BD2B8B5925BD ] C:\Windows\System32\FXSST.dll
06:38:50.0501 4312 C:\Windows\System32\FXSST.dll - ok
06:38:50.0501 4312 [ E36112A8A6C7F840169A7E92C12F4203 ] C:\Windows\System32\wsock32.dll
06:38:50.0501 4312 C:\Windows\System32\wsock32.dll - ok
06:38:50.0516 4312 [ 862596399AAFD2A21DB2AF9270CD4F70 ] C:\Windows\System32\mstask.dll
06:38:50.0516 4312 C:\Windows\System32\mstask.dll - ok
06:38:50.0516 4312 [ 650CAEA856943E29F25A25D31E004B18 ] C:\Windows\System32\FXSAPI.dll
06:38:50.0516 4312 C:\Windows\System32\FXSAPI.dll - ok
06:38:50.0516 4312 [ 3B90A11B59DDE8FEF3BC851863B80A81 ] C:\Program Files (x86)\Raptr\_socket.pyd
06:38:50.0516 4312 C:\Program Files (x86)\Raptr\_socket.pyd - ok
06:38:50.0532 4312 [ C8E8B8239FCF17BEA10E751BE5854631 ] C:\Windows\System32\FXSRESM.dll
06:38:50.0532 4312 C:\Windows\System32\FXSRESM.dll - ok
06:38:50.0532 4312 [ 8B63E4BAD384A9F91E4BA4D677F6BECC ] C:\Program Files (x86)\Raptr\_ssl.pyd
06:38:50.0532 4312 C:\Program Files (x86)\Raptr\_ssl.pyd - ok
06:38:50.0548 4312 [ 526D928D13E0E141C01BA3799FD8338B ] C:\Program Files (x86)\Raptr\win32api.pyd
06:38:50.0548 4312 C:\Program Files (x86)\Raptr\win32api.pyd - ok
06:38:50.0548 4312 [ 6E1F8165C365D35C8E3C045AF0CDD481 ] C:\Windows\SysWOW64\duser.dll
06:38:50.0548 4312 C:\Windows\SysWOW64\duser.dll - ok
06:38:50.0563 4312 [ ABC5DCAC962AE8AF7AF214DD0D6D4FF6 ] C:\Program Files (x86)\Raptr\pywintypes26.dll
06:38:50.0563 4312 C:\Program Files (x86)\Raptr\pywintypes26.dll - ok
06:38:50.0563 4312 [ E282EA80BE94B90E656A475EFCAC89C2 ] C:\Program Files (x86)\Raptr\win32event.pyd
06:38:50.0563 4312 C:\Program Files (x86)\Raptr\win32event.pyd - ok
06:38:50.0579 4312 [ EE06B85BC69F18826302348A2AD089E0 ] C:\Windows\SysWOW64\dui70.dll
06:38:50.0579 4312 C:\Windows\SysWOW64\dui70.dll - ok
06:38:50.0579 4312 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] C:\Windows\System32\FXSSVC.exe
06:38:50.0579 4312 C:\Windows\System32\FXSSVC.exe - ok
06:38:50.0579 4312 [ 3121A79D13A61562BE9CC902CD46B542 ] C:\Windows\System32\msidle.dll
06:38:50.0579 4312 C:\Windows\System32\msidle.dll - ok
06:38:50.0594 4312 [ ACE1BB07E0377E37A2C514CD2EC119B1 ] C:\Windows\System32\mssprxy.dll
06:38:50.0594 4312 C:\Windows\System32\mssprxy.dll - ok
06:38:50.0594 4312 [ C9FB9038B15036CA28CF0B4BE2BED9BD ] C:\Windows\System32\en-US\tquery.dll.mui
06:38:50.0594 4312 C:\Windows\System32\en-US\tquery.dll.mui - ok
06:38:50.0610 4312 [ 04CB7C8FDC6D9640DD82A527208F72C4 ] C:\Windows\System32\UIAnimation.dll
06:38:50.0610 4312 C:\Windows\System32\UIAnimation.dll - ok
06:38:50.0610 4312 [ 64157EA5F19A15667E085B15B582D447 ] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe
06:38:50.0610 4312 C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe - ok
06:38:50.0626 4312 [ F00AE7B953ABEF1B53FBBA187DFC8238 ] C:\Windows\System32\webcheck.dll
06:38:50.0626 4312 C:\Windows\System32\webcheck.dll - ok
06:38:50.0626 4312 [ 101797BA603D227946B4B5109867EB19 ] C:\Windows\System32\SyncCenter.dll
06:38:50.0626 4312 C:\Windows\System32\SyncCenter.dll - ok
06:38:50.0641 4312 [ 6A5C1A8AC0B572679361026D0E900420 ] C:\Windows\System32\hgcpl.dll
06:38:50.0641 4312 C:\Windows\System32\hgcpl.dll - ok
06:38:50.0641 4312 [ 5BF6BA38B703DF5BBE18358A3188C929 ] C:\Program Files (x86)\Raptr\win32process.pyd
06:38:50.0641 4312 C:\Program Files (x86)\Raptr\win32process.pyd - ok
06:38:50.0641 4312 [ E46385187485A250CF15B6FD5833A89A ] C:\Program Files (x86)\Raptr\PyQt4.QtCore.pyd
06:38:50.0641 4312 C:\Program Files (x86)\Raptr\PyQt4.QtCore.pyd - ok
06:38:50.0657 4312 [ C7977540334A28EAC9B7D9B7B7F2DE18 ] C:\Program Files\SUPERAntiSpyware\SASCTXMN64.DLL
06:38:50.0657 4312 C:\Program Files\SUPERAntiSpyware\SASCTXMN64.DLL - ok
06:38:50.0657 4312 [ FB355B817AE641BBAE08607E58CB5CE2 ] C:\Windows\System32\hhctrl.ocx
06:38:50.0657 4312 C:\Windows\System32\hhctrl.ocx - ok
06:38:50.0672 4312 [ CF4A212E1936E320A63AAF4CF7C33B23 ] C:\Program Files (x86)\Bluetooth Suite\FileTransfer.dll
06:38:50.0672 4312 C:\Program Files (x86)\Bluetooth Suite\FileTransfer.dll - ok
06:38:50.0672 4312 [ 703BFA0A15BABDE62F8047C099F3D8CA ] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiamenu.dll
06:38:50.0672 4312 C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiamenu.dll - ok
06:38:50.0688 4312 [ B9A5ECE876790862A9BC76404E47EE9C ] C:\Program Files\Internet Explorer\sqmapi.dll
06:38:50.0688 4312 C:\Program Files\Internet Explorer\sqmapi.dll - ok
06:38:50.0688 4312 [ FA0D8BC72F70B045A2DE36121E34484D ] C:\Program Files (x86)\Raptr\QtCore4.dll
06:38:50.0688 4312 C:\Program Files (x86)\Raptr\QtCore4.dll - ok
06:38:50.0704 4312 [ B95F748C4F100DD0F6E8115CC0968670 ] C:\Windows\winsxs\amd64_microsoft.vc80.atl_1fc8b3b9a1e18e3b_8.0.50727.6195_none_8a1dd9552ed7f8d8\ATL80.dll
06:38:50.0704 4312 C:\Windows\winsxs\amd64_microsoft.vc80.atl_1fc8b3b9a1e18e3b_8.0.50727.6195_none_8a1dd9552ed7f8d8\ATL80.dll - ok
06:38:50.0704 4312 [ 6D137963730144698CBD10F202E9F251 ] C:\Windows\System32\wersvc.dll
06:38:50.0704 4312 C:\Windows\System32\wersvc.dll - ok
06:38:50.0719 4312 [ F152755F131ADFE452D534F4E9383590 ] C:\Windows\System32\Faultrep.dll
06:38:50.0719 4312 C:\Windows\System32\Faultrep.dll - ok
06:38:50.0719 4312 [ 8784236EED5079493DA9FC95B28B89F8 ] C:\Windows\System32\WerFault.exe
06:38:50.0719 4312 C:\Windows\System32\WerFault.exe - ok
06:38:50.0735 4312 [ 990EA3103E06D68CE0E755A9C3D70107 ] C:\Windows\System32\dbgeng.dll
06:38:50.0735 4312 C:\Windows\System32\dbgeng.dll - ok
06:38:50.0735 4312 [ CEE4E87A50FC154EE6EE5EA652B3A733 ] C:\Program Files (x86)\Raptr\sip.pyd
06:38:50.0735 4312 C:\Program Files (x86)\Raptr\sip.pyd - ok
06:38:50.0735 4312 [ 7A0C94D2D414BE326B95673C68F37BEA ] C:\Program Files\SUPERAntiSpyware\SSUpdate64.exe
06:38:50.0735 4312 C:\Program Files\SUPERAntiSpyware\SSUpdate64.exe - ok
06:38:50.0750 4312 [ EDF4DEC1041EEAF78A0B1E16C1BB4CC4 ] C:\Windows\System32\fthsvc.dll
06:38:50.0750 4312 C:\Windows\System32\fthsvc.dll - ok
06:38:50.0750 4312 [ 98F44786D74C2F7CD15709592AAFB9DB ] C:\Program Files (x86)\Raptr\PyQt4.QtGui.pyd
06:38:50.0750 4312 C:\Program Files (x86)\Raptr\PyQt4.QtGui.pyd - ok
06:38:50.0766 4312 [ 0819EF7DB96DAB8AC3DACE567ED1B99E ] C:\Windows\System32\werui.dll
06:38:50.0766 4312 C:\Windows\System32\werui.dll - ok
06:38:50.0766 4312 [ 981716D86BA53B87F9A4B9F837FC60C4 ] C:\Program Files\SUPERAntiSpyware\sas_enum_cookies.exe
06:38:50.0766 4312 C:\Program Files\SUPERAntiSpyware\sas_enum_cookies.exe - ok
06:38:50.0782 4312 [ 968309CD1F039A7230FF8A7757DBFDCF ] C:\Program Files (x86)\Raptr\QtGui4.dll
06:38:50.0782 4312 C:\Program Files (x86)\Raptr\QtGui4.dll - ok
06:38:50.0782 4312 [ 199E82CD1E48F599D07F1FDCDB35A915 ] C:\Program Files (x86)\Raptr\PIL._imaging.pyd
06:38:50.0782 4312 C:\Program Files (x86)\Raptr\PIL._imaging.pyd - ok
06:38:50.0797 4312 [ 7B641A6D4E69D28E6E63270231147C57 ] C:\Program Files (x86)\Raptr\_hashlib.pyd
06:38:50.0797 4312 C:\Program Files (x86)\Raptr\_hashlib.pyd - ok
06:38:50.0797 4312 [ EA7DB11FABB38A0483F235E142B16584 ] C:\Program Files (x86)\Raptr\_ctypes.pyd
06:38:50.0797 4312 C:\Program Files (x86)\Raptr\_ctypes.pyd - ok
06:38:50.0813 4312 [ 94CD8007843957C9A499F3B4ECBAF0D8 ] C:\Program Files (x86)\Raptr\win32file.pyd
06:38:50.0813 4312 C:\Program Files (x86)\Raptr\win32file.pyd - ok
06:38:50.0813 4312 [ 008A652929FF96FA9909985EFC9B66CB ] C:\PROGRA~2\Raptr\raptr.exe
06:38:50.0813 4312 C:\PROGRA~2\Raptr\raptr.exe - ok
06:38:50.0828 4312 [ E948D1D42DC68923ABD75EEB5BCCD1D3 ] C:\Windows\System32\consent.exe
06:38:50.0828 4312 C:\Windows\System32\consent.exe - ok
06:38:50.0828 4312 [ 2B1256EF429A215651F13314563E3A8B ] C:\PROGRA~2\Raptr\PyQt4.QtNetwork.pyd
06:38:50.0828 4312 C:\PROGRA~2\Raptr\PyQt4.QtNetwork.pyd - ok
06:38:50.0828 4312 [ 53976D44E52EE7FC392538DE6464E0A3 ] C:\PROGRA~2\Raptr\QtNetwork4.dll
06:38:50.0828 4312 C:\PROGRA~2\Raptr\QtNetwork4.dll - ok
06:38:50.0844 4312 [ 26D652191B51854E66084DDAEE69EC65 ] C:\Windows\System32\verifier.dll
06:38:50.0844 4312 C:\Windows\System32\verifier.dll - ok
06:38:50.0844 4312 [ 62D6F7F017D0B903AD890AEBC7EDB0B0 ] C:\PROGRA~2\Raptr\_elementtree.pyd
06:38:50.0844 4312 C:\PROGRA~2\Raptr\_elementtree.pyd - ok
06:38:50.0860 4312 [ 8A1C9CCC7C00970F4AECDCB202068BB2 ] C:\PROGRA~2\Raptr\pyexpat.pyd
06:38:50.0860 4312 C:\PROGRA~2\Raptr\pyexpat.pyd - ok
06:38:50.0860 4312 [ 6CD6E3646A393383327C1FBF5A48F0F4 ] C:\PROGRA~2\Raptr\Crypto.Cipher.AES.pyd
06:38:50.0860 4312 C:\PROGRA~2\Raptr\Crypto.Cipher.AES.pyd - ok
06:38:50.0875 4312 [ 7BDFB5889ED058B125CB86BABE69E9A9 ] C:\PROGRA~2\Raptr\Crypto.Random.OSRNG.winrandom.pyd
06:38:50.0875 4312 C:\PROGRA~2\Raptr\Crypto.Random.OSRNG.winrandom.pyd - ok
06:38:50.0875 4312 [ 949E40CC8D22FA4D35A24A1E46BF5DB1 ] C:\PROGRA~2\Raptr\Crypto.Util._counter.pyd
06:38:50.0875 4312 C:\PROGRA~2\Raptr\Crypto.Util._counter.pyd - ok
06:38:50.0875 4312 [ 55FBE975BF7D16C2E28388C09CF420A0 ] C:\PROGRA~2\Raptr\simplejson._speedups.pyd
06:38:50.0875 4312 C:\PROGRA~2\Raptr\simplejson._speedups.pyd - ok
06:38:50.0891 4312 [ 8EDA5A4475A69CD6B391CC1D58A581C4 ] C:\PROGRA~2\Raptr\PyQt4.QtWebKit.pyd
06:38:50.0891 4312 C:\PROGRA~2\Raptr\PyQt4.QtWebKit.pyd - ok
06:38:50.0891 4312 [ 52E7CAC470B6226096E02D9B216319C2 ] C:\PROGRA~2\Raptr\QtWebKit4.dll
06:38:50.0891 4312 C:\PROGRA~2\Raptr\QtWebKit4.dll - ok
06:38:50.0906 4312 [ AE6BDC230FB25FA61150FBDC274628BC ] C:\PROGRA~2\Raptr\_sqlite3.pyd
06:38:50.0906 4312 C:\PROGRA~2\Raptr\_sqlite3.pyd - ok
06:38:50.0906 4312 [ 7951811D345AD92685C54570803423E0 ] C:\PROGRA~2\Raptr\sqlite3.dll
06:38:50.0906 4312 C:\PROGRA~2\Raptr\sqlite3.dll - ok
06:38:50.0922 4312 [ 65EE7A7C20134DED91485AEF23C882D4 ] C:\PROGRA~2\Raptr\pythoncom26.dll
06:38:50.0922 4312 C:\PROGRA~2\Raptr\pythoncom26.dll - ok
06:38:50.0922 4312 [ 05C209DFDAC1FB8C7894EB0CE00654A7 ] C:\PROGRA~2\Raptr\win32trace.pyd
06:38:50.0922 4312 C:\PROGRA~2\Raptr\win32trace.pyd - ok
06:38:50.0938 4312 [ 79192ED88C8751714374B721A55B21E6 ] C:\PROGRA~2\Raptr\win32gui.pyd
06:38:50.0938 4312 C:\PROGRA~2\Raptr\win32gui.pyd - ok
06:38:50.0938 4312 [ 9918025831057681DB9E3515439ACAB2 ] C:\PROGRA~2\Raptr\winsound.pyd
06:38:50.0938 4312 C:\PROGRA~2\Raptr\winsound.pyd - ok
06:38:50.0938 4312 [ D1ED448F0DEA3F2737308EC035DB2CBD ] C:\PROGRA~2\Raptr\select.pyd
06:38:50.0938 4312 C:\PROGRA~2\Raptr\select.pyd - ok
06:38:50.0953 4312 [ DF13A51A5C591887D2EC6AE64CEED0FA ] C:\Windows\SysWOW64\wsock32.dll
06:38:50.0953 4312 C:\Windows\SysWOW64\wsock32.dll - ok
06:38:50.0953 4312 [ 8E7A61F0EB9A8DB3847757C8716DF4A6 ] C:\PROGRA~2\Raptr\ltc_host.dll
06:38:50.0953 4312 C:\PROGRA~2\Raptr\ltc_host.dll - ok
06:38:50.0969 4312 ============================================================
06:38:50.0969 4312 Scan finished
06:38:50.0969 4312 ============================================================
06:38:50.0984 4304 Detected object count: 5
06:38:50.0984 4304 Actual detected object count: 5
06:40:59.0679 4304 Atheros Bt&Wlan Coex Agent ( UnsignedFile.Multi.Generic ) - skipped by user
06:40:59.0679 4304 Atheros Bt&Wlan Coex Agent ( UnsignedFile.Multi.Generic ) - User select action: Skip
06:40:59.0679 4304 AtherosSvc ( UnsignedFile.Multi.Generic ) - skipped by user
06:40:59.0679 4304 AtherosSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
06:40:59.0695 4304 RichVideo ( UnsignedFile.Multi.Generic ) - skipped by user
06:40:59.0695 4304 RichVideo ( UnsignedFile.Multi.Generic ) - User select action: Skip
06:40:59.0695 4304 SamsungDeviceConfigurationWinService ( UnsignedFile.Multi.Generic ) - skipped by user
06:40:59.0695 4304 SamsungDeviceConfigurationWinService ( UnsignedFile.Multi.Generic ) - User select action: Skip
06:40:59.0695 4304 \Device\Harddisk0\DR0 ( TDSS File System ) - skipped by user
06:40:59.0695 4304 \Device\Harddisk0\DR0 ( TDSS File System ) - User select action: Skip
06:41:50.0766 3900 Deinitialize success

Just a note - VRT removed the threat it found at the end of the scan
  • 0

#8
ttbcs

ttbcs

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 102 posts
Hi maliprog,

Just a quick note to keep the threat active. Hope you are enjoying your weekend.
  • 0

#9
maliprog

maliprog

    Trusted Helper

  • Malware Removal
  • 6,172 posts
Hi ttbcs,

Sorry for delay. Weekend and stuff... :)

Please do another TDSSKiller and for \Device\Harddisk0\DR0 ( TDSS File System ) select Delete option.

Post the log and after this we will move on.
  • 0

#10
ttbcs

ttbcs

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 102 posts
15:13:47.0990 3644 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
15:13:55.0666 3644 ============================================================
15:13:55.0666 3644 Current date / time: 2014/02/03 15:13:55.0666
15:13:55.0666 3644 SystemInfo:
15:13:55.0666 3644
15:13:55.0666 3644 OS Version: 6.1.7601 ServicePack: 1.0
15:13:55.0666 3644 Product type: Workstation
15:13:55.0666 3644 ComputerName: KAELABUG
15:13:55.0666 3644 UserName: Nakaela BC
15:13:55.0666 3644 Windows directory: C:\Windows
15:13:55.0666 3644 System windows directory: C:\Windows
15:13:55.0666 3644 Running under WOW64
15:13:55.0666 3644 Processor architecture: Intel x64
15:13:55.0666 3644 Number of processors: 4
15:13:55.0666 3644 Page size: 0x1000
15:13:55.0666 3644 Boot type: Normal boot
15:13:55.0666 3644 ============================================================
15:14:09.0230 3644 BG loaded
15:14:11.0087 3644 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
15:14:11.0118 3644 ============================================================
15:14:11.0118 3644 \Device\Harddisk0\DR0:
15:14:11.0134 3644 MBR partitions:
15:14:11.0134 3644 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
15:14:11.0134 3644 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x19200000
15:14:11.0165 3644 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x19233000, BlocksNum 0x9A35800
15:14:11.0165 3644 ============================================================
15:14:11.0430 3644 C: <-> \Device\Harddisk0\DR0\Partition2
15:14:11.0617 3644 D: <-> \Device\Harddisk0\DR0\Partition3
15:14:11.0617 3644 ============================================================
15:14:11.0617 3644 Initialize success
15:14:11.0617 3644 ============================================================
15:14:30.0056 4396 ============================================================
15:14:30.0056 4396 Scan started
15:14:30.0056 4396 Mode: Manual; SigCheck; TDLFS;
15:14:30.0056 4396 ============================================================
15:14:33.0660 4396 ================ Scan system memory ========================
15:14:33.0660 4396 System memory - ok
15:14:33.0660 4396 ================ Scan services =============================
15:14:33.0769 4396 [ 620C92D6EEFA9853A3EAD41B5EB9B5FD ] !SASCORE C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
15:14:33.0910 4396 !SASCORE - ok
15:14:34.0627 4396 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
15:14:34.0752 4396 1394ohci - ok
15:14:34.0830 4396 [ E656FE10D6D27794AFA08136685A69E8 ] 53074327 C:\Windows\system32\DRIVERS\53074327.sys
15:14:34.0877 4396 53074327 - ok
15:14:34.0970 4396 [ 8ACBB0D11A99EF06BFFD09C5B4DF0925 ] 5415395drv C:\Windows\system32\DRIVERS\5415395drv.sys
15:14:35.0017 4396 5415395drv - ok
15:14:35.0064 4396 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
15:14:35.0095 4396 ACPI - ok
15:14:35.0126 4396 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
15:14:35.0236 4396 AcpiPmi - ok
15:14:35.0360 4396 [ B362181ED3771DC03B4141927C80F801 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
15:14:35.0392 4396 AdobeARMservice - ok
15:14:35.0719 4396 [ 2471BCB6E1388A3484E78243A1BE5F33 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
15:14:35.0766 4396 AdobeFlashPlayerUpdateSvc - ok
15:14:35.0828 4396 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
15:14:35.0875 4396 adp94xx - ok
15:14:35.0906 4396 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\drivers\adpahci.sys
15:14:35.0938 4396 adpahci - ok
15:14:35.0953 4396 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
15:14:35.0984 4396 adpu320 - ok
15:14:36.0016 4396 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
15:14:36.0250 4396 AeLookupSvc - ok
15:14:36.0296 4396 [ 79059559E89D06E8B80CE2944BE20228 ] AFD C:\Windows\system32\drivers\afd.sys
15:14:36.0406 4396 AFD - ok
15:14:36.0452 4396 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
15:14:36.0468 4396 agp440 - ok
15:14:36.0499 4396 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
15:14:36.0562 4396 ALG - ok
15:14:36.0608 4396 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
15:14:36.0624 4396 aliide - ok
15:14:36.0686 4396 [ D62189E5DDB3534658AD6FDAFCB4B174 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
15:14:36.0796 4396 AMD External Events Utility - ok
15:14:36.0858 4396 AMD FUEL Service - ok
15:14:36.0889 4396 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
15:14:36.0905 4396 amdide - ok
15:14:36.0936 4396 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
15:14:36.0983 4396 AmdK8 - ok
15:14:37.0373 4396 [ 2BF7F9033D6271642520070FDA35F7D3 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
15:14:37.0576 4396 amdkmdag - ok
15:14:37.0622 4396 [ 89B31E22D9AFA62EA2B7BB96AB753BC0 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
15:14:37.0716 4396 amdkmdap - ok
15:14:37.0763 4396 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
15:14:37.0810 4396 AmdPPM - ok
15:14:37.0841 4396 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
15:14:37.0856 4396 amdsata - ok
15:14:37.0888 4396 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
15:14:37.0919 4396 amdsbs - ok
15:14:37.0934 4396 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
15:14:37.0950 4396 amdxata - ok
15:14:37.0966 4396 [ BB4FE7889DB9CBBE61A308E99697F53C ] amd_sata C:\Windows\system32\drivers\amd_sata.sys
15:14:37.0981 4396 amd_sata - ok
15:14:38.0012 4396 [ 5631CBA53F1CBEA3F9E88348E6723391 ] amd_xata C:\Windows\system32\drivers\amd_xata.sys
15:14:38.0028 4396 amd_xata - ok
15:14:38.0106 4396 [ E8CCB797DAF80779C768BD3A9FC8FCAF ] AODDriver4.2.0 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys
15:14:38.0137 4396 AODDriver4.2.0 - ok
15:14:38.0184 4396 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
15:14:38.0449 4396 AppID - ok
15:14:38.0480 4396 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
15:14:38.0574 4396 AppIDSvc - ok
15:14:38.0605 4396 [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo C:\Windows\System32\appinfo.dll
15:14:38.0668 4396 Appinfo - ok
15:14:38.0714 4396 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\drivers\arc.sys
15:14:38.0746 4396 arc - ok
15:14:38.0777 4396 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\drivers\arcsas.sys
15:14:38.0792 4396 arcsas - ok
15:14:39.0245 4396 [ 9A262EDD17F8473B91B333D6B031A901 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
15:14:39.0354 4396 aspnet_state - ok
15:14:39.0370 4396 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
15:14:39.0432 4396 AsyncMac - ok
15:14:39.0479 4396 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
15:14:39.0510 4396 atapi - ok
15:14:39.0541 4396 [ EF3B9AD9D03047EBA1369732B2F55AFE ] AthBTPort C:\Windows\system32\DRIVERS\btath_flt.sys
15:14:39.0588 4396 AthBTPort - ok
15:14:39.0682 4396 [ 650F111D5CDA64C10AE4B9D1BA9D4FFF ] Atheros Bt&Wlan Coex Agent C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
15:14:42.0864 4396 Atheros Bt&Wlan Coex Agent ( UnsignedFile.Multi.Generic ) - warning
15:14:42.0864 4396 Atheros Bt&Wlan Coex Agent - detected UnsignedFile.Multi.Generic (1)
15:14:42.0926 4396 [ 88D8999350D12127438D57B54A432946 ] AtherosSvc C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
15:14:42.0973 4396 AtherosSvc ( UnsignedFile.Multi.Generic ) - warning
15:14:42.0973 4396 AtherosSvc - detected UnsignedFile.Multi.Generic (1)
15:14:43.0067 4396 [ 3660381F5EA18E14A06C98591B533AD6 ] athr C:\Windows\system32\DRIVERS\athrx.sys
15:14:43.0207 4396 athr - ok
15:14:43.0254 4396 [ 770A3B0D78232B0C1054495392A1FBA3 ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW76.sys
15:14:43.0332 4396 AtiHDAudioService - ok
15:14:43.0394 4396 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
15:14:43.0472 4396 AudioEndpointBuilder - ok
15:14:43.0488 4396 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
15:14:43.0535 4396 AudioSrv - ok
15:14:43.0582 4396 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
15:14:43.0706 4396 AxInstSV - ok
15:14:43.0753 4396 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
15:14:43.0800 4396 b06bdrv - ok
15:14:43.0831 4396 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
15:14:43.0878 4396 b57nd60a - ok
15:14:43.0925 4396 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
15:14:43.0972 4396 BDESVC - ok
15:14:44.0003 4396 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
15:14:44.0081 4396 Beep - ok
15:14:44.0128 4396 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
15:14:44.0159 4396 BFE - ok
15:14:44.0221 4396 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll
15:14:44.0299 4396 BITS - ok
15:14:44.0315 4396 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
15:14:44.0346 4396 blbdrive - ok
15:14:44.0377 4396 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
15:14:44.0440 4396 bowser - ok
15:14:44.0486 4396 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
15:14:44.0533 4396 BrFiltLo - ok
15:14:44.0549 4396 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
15:14:44.0564 4396 BrFiltUp - ok
15:14:44.0627 4396 [ 5C2F352A4E961D72518261257AAE204B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
15:14:44.0674 4396 BridgeMP - ok
15:14:44.0705 4396 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
15:14:44.0752 4396 Browser - ok
15:14:44.0767 4396 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
15:14:44.0814 4396 Brserid - ok
15:14:44.0830 4396 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
15:14:44.0876 4396 BrSerWdm - ok
15:14:44.0892 4396 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
15:14:44.0923 4396 BrUsbMdm - ok
15:14:44.0954 4396 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
15:14:44.0986 4396 BrUsbSer - ok
15:14:45.0017 4396 [ 72EA2FCD6456BFC6936EDA474EA08E48 ] BTATH_A2DP C:\Windows\system32\drivers\btath_a2dp.sys
15:14:45.0079 4396 BTATH_A2DP - ok
15:14:45.0110 4396 [ FFA0D38141FB7B93AFF465B82596D1EC ] btath_avdt C:\Windows\system32\drivers\btath_avdt.sys
15:14:45.0126 4396 btath_avdt - ok
15:14:45.0173 4396 [ A65A9B2C3A9985D8122B2B6D3D2F4C1B ] BTATH_BUS C:\Windows\system32\DRIVERS\btath_bus.sys
15:14:45.0188 4396 BTATH_BUS - ok
15:14:45.0220 4396 [ E95F7E9F4C8A88610F4142E60CF196BE ] BTATH_HCRP C:\Windows\system32\DRIVERS\btath_hcrp.sys
15:14:45.0251 4396 BTATH_HCRP - ok
15:14:45.0282 4396 [ 1A5C05524C0C503C87F930F154B7145D ] BTATH_LWFLT C:\Windows\system32\DRIVERS\btath_lwflt.sys
15:14:45.0313 4396 BTATH_LWFLT - ok
15:14:45.0344 4396 [ C2FD5B24F648DAC8143C51514307B0EC ] BTATH_RCP C:\Windows\system32\DRIVERS\btath_rcp.sys
15:14:45.0407 4396 BTATH_RCP - ok
15:14:45.0469 4396 [ 958F4AEC324A2BB0DC5B8F9197E779A0 ] BtFilter C:\Windows\system32\DRIVERS\btfilter.sys
15:14:45.0500 4396 BtFilter - ok
15:14:45.0547 4396 [ CF98190A94F62E405C8CB255018B2315 ] BthEnum C:\Windows\system32\DRIVERS\BthEnum.sys
15:14:45.0610 4396 BthEnum - ok
15:14:45.0641 4396 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
15:14:45.0672 4396 BTHMODEM - ok
15:14:45.0719 4396 [ 02DD601B708DD0667E1331FA8518E9FF ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
15:14:45.0781 4396 BthPan - ok
15:14:45.0812 4396 [ 738D0E9272F59EB7A1449C3EC118E6C4 ] BTHPORT C:\Windows\system32\Drivers\BTHport.sys
15:14:45.0859 4396 BTHPORT - ok
15:14:45.0890 4396 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
15:14:45.0953 4396 bthserv - ok
15:14:45.0968 4396 [ F188B7394D81010767B6DF3178519A37 ] BTHUSB C:\Windows\system32\Drivers\BTHUSB.sys
15:14:46.0000 4396 BTHUSB - ok
15:14:46.0015 4396 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
15:14:46.0093 4396 cdfs - ok
15:14:46.0140 4396 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
15:14:46.0171 4396 cdrom - ok
15:14:46.0202 4396 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
15:14:46.0249 4396 CertPropSvc - ok
15:14:46.0265 4396 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\drivers\circlass.sys
15:14:46.0312 4396 circlass - ok
15:14:46.0343 4396 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
15:14:46.0374 4396 CLFS - ok
15:14:46.0452 4396 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
15:14:46.0483 4396 clr_optimization_v2.0.50727_32 - ok
15:14:46.0561 4396 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
15:14:46.0592 4396 clr_optimization_v2.0.50727_64 - ok
15:14:46.0686 4396 [ E87213F37A13E2B54391E40934F071D0 ] clr_optimization_v4.0.30319_32 C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
15:14:46.0826 4396 clr_optimization_v4.0.30319_32 - ok
15:14:46.0842 4396 [ 4AEDAB50F83580D0B4D6CF78191F92AA ] clr_optimization_v4.0.30319_64 C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
15:14:46.0951 4396 clr_optimization_v4.0.30319_64 - ok
15:14:46.0982 4396 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
15:14:47.0029 4396 CmBatt - ok
15:14:47.0060 4396 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
15:14:47.0076 4396 cmdide - ok
15:14:47.0107 4396 [ EBF28856F69CF094A902F884CF989706 ] CNG C:\Windows\system32\Drivers\cng.sys
15:14:47.0154 4396 CNG - ok
15:14:47.0170 4396 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
15:14:47.0185 4396 Compbatt - ok
15:14:47.0201 4396 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
15:14:47.0232 4396 CompositeBus - ok
15:14:47.0248 4396 COMSysApp - ok
15:14:47.0263 4396 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
15:14:47.0279 4396 crcdisk - ok
15:14:47.0326 4396 [ 6B400F211BEE880A37A1ED0368776BF4 ] CryptSvc C:\Windows\system32\cryptsvc.dll
15:14:47.0357 4396 CryptSvc - ok
15:14:47.0404 4396 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
15:14:47.0482 4396 DcomLaunch - ok
15:14:47.0528 4396 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
15:14:47.0622 4396 defragsvc - ok
15:14:47.0653 4396 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
15:14:47.0731 4396 DfsC - ok
15:14:47.0762 4396 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
15:14:47.0794 4396 Dhcp - ok
15:14:47.0840 4396 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
15:14:47.0887 4396 discache - ok
15:14:47.0918 4396 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\drivers\disk.sys
15:14:47.0934 4396 Disk - ok
15:14:47.0965 4396 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
15:14:48.0028 4396 Dnscache - ok
15:14:48.0059 4396 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
15:14:48.0121 4396 dot3svc - ok
15:14:48.0137 4396 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
15:14:48.0199 4396 DPS - ok
15:14:48.0246 4396 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
15:14:48.0308 4396 drmkaud - ok
15:14:48.0355 4396 [ 88612F1CE3BF42256913BF6E61C70D52 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
15:14:48.0386 4396 DXGKrnl - ok
15:14:48.0418 4396 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
15:14:48.0480 4396 EapHost - ok
15:14:48.0589 4396 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\drivers\evbda.sys
15:14:48.0683 4396 ebdrv - ok
15:14:48.0698 4396 [ 4D71227301DD8D09097B9E4CC6527E5A ] EFS C:\Windows\System32\lsass.exe
15:14:48.0745 4396 EFS - ok
15:14:48.0823 4396 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
15:14:48.0870 4396 ehRecvr - ok
15:14:48.0901 4396 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
15:14:48.0932 4396 ehSched - ok
15:14:48.0979 4396 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\drivers\elxstor.sys
15:14:49.0010 4396 elxstor - ok
15:14:49.0026 4396 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
15:14:49.0057 4396 ErrDev - ok
15:14:49.0104 4396 [ FD0D922DE7D2AD9E98562CAA19A7CD2D ] ETD C:\Windows\system32\DRIVERS\ETD.sys
15:14:49.0120 4396 ETD - ok
15:14:49.0182 4396 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
15:14:49.0244 4396 EventSystem - ok
15:14:49.0260 4396 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
15:14:49.0322 4396 exfat - ok
15:14:49.0354 4396 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
15:14:49.0400 4396 fastfat - ok
15:14:49.0447 4396 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
15:14:49.0494 4396 Fax - ok
15:14:49.0510 4396 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\drivers\fdc.sys
15:14:49.0541 4396 fdc - ok
15:14:49.0588 4396 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
15:14:49.0697 4396 fdPHost - ok
15:14:49.0728 4396 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
15:14:49.0759 4396 FDResPub - ok
15:14:49.0775 4396 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
15:14:49.0806 4396 FileInfo - ok
15:14:49.0822 4396 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
15:14:49.0884 4396 Filetrace - ok
15:14:49.0900 4396 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
15:14:49.0915 4396 flpydisk - ok
15:14:49.0946 4396 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
15:14:49.0962 4396 FltMgr - ok
15:14:50.0040 4396 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\Windows\system32\FntCache.dll
15:14:50.0071 4396 FontCache - ok
15:14:50.0134 4396 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
15:14:50.0180 4396 FontCache3.0.0.0 - ok
15:14:50.0196 4396 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
15:14:50.0212 4396 FsDepends - ok
15:14:50.0243 4396 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
15:14:50.0258 4396 Fs_Rec - ok
15:14:50.0290 4396 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
15:14:50.0321 4396 fvevol - ok
15:14:50.0352 4396 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
15:14:50.0368 4396 gagp30kx - ok
15:14:50.0461 4396 [ 521A469CAF61F00E1DE081CC2099C1D6 ] GameConsoleService C:\Program Files (x86)\WildGames\Game Console - WildGames\GameConsoleService.exe
15:14:50.0492 4396 GameConsoleService - ok
15:14:50.0555 4396 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
15:14:50.0633 4396 gpsvc - ok
15:14:50.0711 4396 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
15:14:50.0726 4396 gupdate - ok
15:14:50.0742 4396 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
15:14:50.0758 4396 gupdatem - ok
15:14:50.0789 4396 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
15:14:50.0836 4396 hcw85cir - ok
15:14:50.0867 4396 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
15:14:50.0898 4396 HDAudBus - ok
15:14:50.0914 4396 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
15:14:50.0945 4396 HidBatt - ok
15:14:50.0976 4396 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\drivers\hidbth.sys
15:14:51.0007 4396 HidBth - ok
15:14:51.0023 4396 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\drivers\hidir.sys
15:14:51.0054 4396 HidIr - ok
15:14:51.0085 4396 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\System32\hidserv.dll
15:14:51.0163 4396 hidserv - ok
15:14:51.0194 4396 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\drivers\hidusb.sys
15:14:51.0226 4396 HidUsb - ok
15:14:51.0257 4396 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
15:14:51.0319 4396 hkmsvc - ok
15:14:51.0366 4396 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
15:14:51.0397 4396 HomeGroupListener - ok
15:14:51.0444 4396 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
15:14:51.0475 4396 HomeGroupProvider - ok
15:14:51.0491 4396 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
15:14:51.0522 4396 HpSAMD - ok
15:14:51.0553 4396 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
15:14:51.0616 4396 HTTP - ok
15:14:51.0631 4396 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
15:14:51.0647 4396 hwpolicy - ok
15:14:51.0662 4396 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
15:14:51.0678 4396 i8042prt - ok
15:14:51.0709 4396 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
15:14:51.0740 4396 iaStorV - ok
15:14:51.0818 4396 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
15:14:51.0850 4396 idsvc - ok
15:14:51.0881 4396 IEEtwCollectorService - ok
15:14:52.0052 4396 [ A87261EF1546325B559374F5689CF5BC ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys
15:14:52.0286 4396 igfx - ok
15:14:52.0318 4396 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\drivers\iirsp.sys
15:14:52.0333 4396 iirsp - ok
15:14:52.0380 4396 [ 344789398EC3EE5A4E00C52B31847946 ] IKEEXT C:\Windows\System32\ikeext.dll
15:14:52.0411 4396 IKEEXT - ok
15:14:52.0536 4396 [ 4BBB5A55EEB5EC11B20FCBB4CBB49357 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
15:14:52.0598 4396 IntcAzAudAddService - ok
15:14:52.0630 4396 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
15:14:52.0645 4396 intelide - ok
15:14:52.0676 4396 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\drivers\intelppm.sys
15:14:52.0723 4396 intelppm - ok
15:14:52.0754 4396 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
15:14:52.0801 4396 IPBusEnum - ok
15:14:52.0832 4396 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
15:14:52.0864 4396 IpFilterDriver - ok
15:14:52.0910 4396 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
15:14:52.0973 4396 iphlpsvc - ok
15:14:52.0988 4396 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
15:14:53.0004 4396 IPMIDRV - ok
15:14:53.0020 4396 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
15:14:53.0066 4396 IPNAT - ok
15:14:53.0082 4396 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
15:14:53.0113 4396 IRENUM - ok
15:14:53.0129 4396 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
15:14:53.0144 4396 isapnp - ok
15:14:53.0191 4396 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
15:14:53.0222 4396 iScsiPrt - ok
15:14:53.0238 4396 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
15:14:53.0254 4396 kbdclass - ok
15:14:53.0285 4396 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys
15:14:53.0316 4396 kbdhid - ok
15:14:53.0332 4396 [ 4D71227301DD8D09097B9E4CC6527E5A ] KeyIso C:\Windows\system32\lsass.exe
15:14:53.0347 4396 KeyIso - ok
15:14:53.0378 4396 [ 8F489706472F7E9A06BAAA198703FA64 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
15:14:53.0394 4396 KSecDD - ok
15:14:53.0410 4396 [ 868A2CAAB12EFC7A021682BCA0EEC54C ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
15:14:53.0441 4396 KSecPkg - ok
15:14:53.0441 4396 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
15:14:53.0503 4396 ksthunk - ok
15:14:53.0550 4396 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
15:14:53.0628 4396 KtmRm - ok
15:14:53.0675 4396 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\System32\srvsvc.dll
15:14:53.0737 4396 LanmanServer - ok
15:14:53.0768 4396 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
15:14:53.0831 4396 LanmanWorkstation - ok
15:14:53.0862 4396 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
15:14:53.0909 4396 lltdio - ok
15:14:53.0956 4396 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
15:14:54.0018 4396 lltdsvc - ok
15:14:54.0034 4396 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
15:14:54.0080 4396 lmhosts - ok
15:14:54.0112 4396 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
15:14:54.0127 4396 LSI_FC - ok
15:14:54.0158 4396 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
15:14:54.0174 4396 LSI_SAS - ok
15:14:54.0190 4396 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
15:14:54.0205 4396 LSI_SAS2 - ok
15:14:54.0221 4396 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
15:14:54.0236 4396 LSI_SCSI - ok
15:14:54.0268 4396 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
15:14:54.0314 4396 luafv - ok
15:14:54.0361 4396 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
15:14:54.0408 4396 Mcx2Svc - ok
15:14:54.0424 4396 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\drivers\megasas.sys
15:14:54.0439 4396 megasas - ok
15:14:54.0470 4396 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
15:14:54.0486 4396 MegaSR - ok
15:14:54.0517 4396 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
15:14:54.0595 4396 MMCSS - ok
15:14:54.0626 4396 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
15:14:54.0704 4396 Modem - ok
15:14:54.0720 4396 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
15:14:54.0767 4396 monitor - ok
15:14:54.0798 4396 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
15:14:54.0814 4396 mouclass - ok
15:14:54.0829 4396 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
15:14:54.0845 4396 mouhid - ok
15:14:54.0860 4396 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
15:14:54.0876 4396 mountmgr - ok
15:14:54.0954 4396 [ 3B9398E0146855B1DC0E3D9769C80F01 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
15:14:54.0985 4396 MozillaMaintenance - ok
15:14:55.0048 4396 [ C6B88D62F20AC646C6BD5C032EC2FAF9 ] MpFilter C:\Windows\system32\DRIVERS\MpFilter.sys
15:14:55.0079 4396 MpFilter - ok
15:14:55.0126 4396 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
15:14:55.0141 4396 mpio - ok
15:14:55.0157 4396 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
15:14:55.0204 4396 mpsdrv - ok
15:14:55.0297 4396 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
15:14:55.0360 4396 MpsSvc - ok
15:14:55.0406 4396 [ 1A4F75E63C9FB84B85DFFC6B63FD5404 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
15:14:55.0438 4396 MRxDAV - ok
15:14:55.0469 4396 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
15:14:55.0516 4396 mrxsmb - ok
15:14:55.0531 4396 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
15:14:55.0562 4396 mrxsmb10 - ok
15:14:55.0562 4396 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
15:14:55.0594 4396 mrxsmb20 - ok
15:14:55.0640 4396 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
15:14:55.0656 4396 msahci - ok
15:14:55.0703 4396 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
15:14:55.0718 4396 msdsm - ok
15:14:55.0765 4396 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
15:14:55.0859 4396 MSDTC - ok
15:14:55.0906 4396 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
15:14:55.0937 4396 Msfs - ok
15:14:55.0968 4396 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
15:14:56.0015 4396 mshidkmdf - ok
15:14:56.0030 4396 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
15:14:56.0062 4396 msisadrv - ok
15:14:56.0093 4396 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
15:14:56.0171 4396 MSiSCSI - ok
15:14:56.0186 4396 msiserver - ok
15:14:56.0202 4396 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
15:14:56.0264 4396 MSKSSRV - ok
15:14:56.0327 4396 [ 7675E15D1B2180745E4DA4D26AAD7385 ] MsMpSvc c:\Program Files\Microsoft Security Client\MsMpEng.exe
15:14:56.0342 4396 MsMpSvc - ok
15:14:56.0358 4396 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
15:14:56.0420 4396 MSPCLOCK - ok
15:14:56.0436 4396 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
15:14:56.0514 4396 MSPQM - ok
15:14:56.0561 4396 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
15:14:56.0576 4396 MsRPC - ok
15:14:56.0592 4396 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
15:14:56.0608 4396 mssmbios - ok
15:14:56.0639 4396 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
15:14:56.0686 4396 MSTEE - ok
15:14:56.0717 4396 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
15:14:56.0748 4396 MTConfig - ok
15:14:56.0779 4396 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
15:14:56.0795 4396 Mup - ok
15:14:56.0842 4396 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
15:14:56.0904 4396 napagent - ok
15:14:56.0951 4396 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
15:14:57.0013 4396 NativeWifiP - ok
15:14:57.0076 4396 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys
15:14:57.0122 4396 NDIS - ok
15:14:57.0169 4396 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
15:14:57.0263 4396 NdisCap - ok
15:14:57.0278 4396 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
15:14:57.0325 4396 NdisTapi - ok
15:14:57.0341 4396 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
15:14:57.0388 4396 Ndisuio - ok
15:14:57.0419 4396 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
15:14:57.0466 4396 NdisWan - ok
15:14:57.0497 4396 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
15:14:57.0559 4396 NDProxy - ok
15:14:57.0575 4396 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
15:14:57.0637 4396 NetBIOS - ok
15:14:57.0653 4396 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
15:14:57.0700 4396 NetBT - ok
15:14:57.0715 4396 [ 4D71227301DD8D09097B9E4CC6527E5A ] Netlogon C:\Windows\system32\lsass.exe
15:14:57.0731 4396 Netlogon - ok
15:14:57.0762 4396 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
15:14:57.0840 4396 Netman - ok
15:14:57.0887 4396 [ 21318671BCAD3ACF16638F98D4D00973 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
15:14:57.0965 4396 NetMsmqActivator - ok
15:14:57.0996 4396 [ 21318671BCAD3ACF16638F98D4D00973 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
15:14:58.0012 4396 NetPipeActivator - ok
15:14:58.0074 4396 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
15:14:58.0136 4396 netprofm - ok
15:14:58.0136 4396 [ 21318671BCAD3ACF16638F98D4D00973 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
15:14:58.0152 4396 NetTcpActivator - ok
15:14:58.0168 4396 [ 21318671BCAD3ACF16638F98D4D00973 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
15:14:58.0183 4396 NetTcpPortSharing - ok
15:14:58.0230 4396 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
15:14:58.0261 4396 nfrd960 - ok
15:14:58.0324 4396 [ ACE8C64C57E4A711473C8BC10ADF692B ] NisDrv C:\Windows\system32\DRIVERS\NisDrvWFP.sys
15:14:58.0355 4396 NisDrv - ok
15:14:58.0370 4396 [ 6247E8B31ED0A9D6BC5A26276E49BEB3 ] NisSrv c:\Program Files\Microsoft Security Client\NisSrv.exe
15:14:58.0402 4396 NisSrv - ok
15:14:58.0433 4396 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll
15:14:58.0480 4396 NlaSvc - ok
15:14:58.0620 4396 [ 5839A8027D6D324A7CD494051A96628C ] NOBU C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
15:14:58.0714 4396 NOBU - ok
15:14:58.0729 4396 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
15:14:58.0776 4396 Npfs - ok
15:14:58.0807 4396 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
15:14:58.0854 4396 nsi - ok
15:14:58.0885 4396 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
15:14:58.0963 4396 nsiproxy - ok
15:14:59.0041 4396 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
15:14:59.0104 4396 Ntfs - ok
15:14:59.0135 4396 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
15:14:59.0213 4396 Null - ok
15:14:59.0275 4396 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
15:14:59.0306 4396 nvraid - ok
15:14:59.0338 4396 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
15:14:59.0369 4396 nvstor - ok
15:14:59.0384 4396 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
15:14:59.0400 4396 nv_agp - ok
15:14:59.0416 4396 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
15:14:59.0431 4396 ohci1394 - ok
15:14:59.0556 4396 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
15:14:59.0587 4396 ose - ok
15:15:00.0149 4396 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
15:15:00.0476 4396 osppsvc - ok
15:15:00.0570 4396 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
15:15:00.0757 4396 p2pimsvc - ok
15:15:00.0866 4396 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
15:15:01.0022 4396 p2psvc - ok
15:15:01.0116 4396 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\drivers\parport.sys
15:15:01.0225 4396 Parport - ok
15:15:01.0334 4396 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
15:15:01.0412 4396 partmgr - ok
15:15:01.0490 4396 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
15:15:01.0646 4396 PcaSvc - ok
15:15:01.0724 4396 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
15:15:01.0756 4396 pci - ok
15:15:01.0787 4396 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
15:15:01.0802 4396 pciide - ok
15:15:01.0834 4396 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
15:15:01.0849 4396 pcmcia - ok
15:15:01.0880 4396 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
15:15:01.0896 4396 pcw - ok
15:15:01.0927 4396 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
15:15:02.0005 4396 PEAUTH - ok
15:15:02.0317 4396 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
15:15:02.0380 4396 PerfHost - ok
15:15:02.0520 4396 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
15:15:02.0614 4396 pla - ok
15:15:02.0676 4396 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
15:15:02.0738 4396 PlugPlay - ok
15:15:02.0770 4396 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
15:15:02.0816 4396 PNRPAutoReg - ok
15:15:02.0848 4396 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
15:15:02.0863 4396 PNRPsvc - ok
15:15:02.0926 4396 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
15:15:02.0988 4396 PolicyAgent - ok
15:15:03.0035 4396 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
15:15:03.0144 4396 Power - ok
15:15:03.0191 4396 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
15:15:03.0253 4396 PptpMiniport - ok
15:15:03.0284 4396 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\drivers\processr.sys
15:15:03.0331 4396 Processor - ok
15:15:03.0362 4396 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
15:15:03.0394 4396 ProfSvc - ok
15:15:03.0409 4396 [ 4D71227301DD8D09097B9E4CC6527E5A ] ProtectedStorage C:\Windows\system32\lsass.exe
15:15:03.0440 4396 ProtectedStorage - ok
15:15:03.0456 4396 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
15:15:03.0518 4396 Psched - ok
15:15:03.0596 4396 [ DD3FD48D69F5FBBB21D46D1514C1C2DB ] PSI C:\Windows\system32\DRIVERS\psi_mf_amd64.sys
15:15:03.0643 4396 PSI - ok
15:15:03.0721 4396 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
15:15:03.0784 4396 ql2300 - ok
15:15:03.0815 4396 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
15:15:03.0846 4396 ql40xx - ok
15:15:03.0893 4396 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
15:15:03.0955 4396 QWAVE - ok
15:15:03.0986 4396 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
15:15:04.0033 4396 QWAVEdrv - ok
15:15:04.0033 4396 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
15:15:04.0096 4396 RasAcd - ok
15:15:04.0127 4396 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
15:15:04.0205 4396 RasAgileVpn - ok
15:15:04.0220 4396 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
15:15:04.0298 4396 RasAuto - ok
15:15:04.0330 4396 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
15:15:04.0376 4396 Rasl2tp - ok
15:15:04.0423 4396 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
15:15:04.0470 4396 RasMan - ok
15:15:04.0486 4396 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
15:15:04.0548 4396 RasPppoe - ok
15:15:04.0564 4396 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
15:15:04.0610 4396 RasSstp - ok
15:15:04.0626 4396 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
15:15:04.0688 4396 rdbss - ok
15:15:04.0704 4396 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\drivers\rdpbus.sys
15:15:04.0751 4396 rdpbus - ok
15:15:04.0766 4396 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
15:15:04.0813 4396 RDPCDD - ok
15:15:04.0860 4396 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
15:15:04.0922 4396 RDPENCDD - ok
15:15:04.0938 4396 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
15:15:05.0000 4396 RDPREFMP - ok
15:15:05.0063 4396 [ 313F68E1A3E6345A4F47A36B07062F34 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
15:15:05.0156 4396 RdpVideoMiniport - ok
15:15:05.0172 4396 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
15:15:05.0219 4396 RDPWD - ok
15:15:05.0234 4396 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
15:15:05.0266 4396 rdyboost - ok
15:15:05.0328 4396 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
15:15:05.0422 4396 RemoteAccess - ok
15:15:05.0468 4396 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
15:15:05.0531 4396 RemoteRegistry - ok
15:15:05.0578 4396 [ 3DD798846E2C28102B922C56E71B7932 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
15:15:05.0640 4396 RFCOMM - ok
15:15:05.0796 4396 [ F12A68ED55053940CADD59CA5E3468DD ] RichVideo C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
15:15:05.0874 4396 RichVideo ( UnsignedFile.Multi.Generic ) - warning
15:15:05.0874 4396 RichVideo - detected UnsignedFile.Multi.Generic (1)
15:15:05.0936 4396 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
15:15:05.0999 4396 RpcEptMapper - ok
15:15:06.0030 4396 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
15:15:06.0092 4396 RpcLocator - ok
15:15:06.0124 4396 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\System32\rpcss.dll
15:15:06.0170 4396 RpcSs - ok
15:15:06.0217 4396 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
15:15:06.0264 4396 rspndr - ok
15:15:06.0311 4396 [ E50CFB92986DCAB49DE93788FD695813 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
15:15:06.0358 4396 RTL8167 - ok
15:15:06.0420 4396 [ 4CA0DBA9E224473D664C25E411F5A3BD ] rtport C:\windows\SysWOW64\drivers\rtport.sys
15:15:06.0467 4396 rtport - ok
15:15:06.0529 4396 [ 62DB6CC4B0818F1B5F3441241B098F12 ] SABI C:\windows\system32\Drivers\SABI.sys
15:15:06.0592 4396 SABI - ok
15:15:06.0607 4396 [ 4D71227301DD8D09097B9E4CC6527E5A ] SamSs C:\Windows\system32\lsass.exe
15:15:06.0623 4396 SamSs - ok
15:15:06.0779 4396 [ 5E66ABD041D76C46CBF55AEF910FCA56 ] SamsungDeviceConfigurationWinService C:\Program Files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe
15:15:06.0779 4396 SamsungDeviceConfigurationWinService ( UnsignedFile.Multi.Generic ) - warning
15:15:06.0779 4396 SamsungDeviceConfigurationWinService - detected UnsignedFile.Multi.Generic (1)
15:15:06.0826 4396 [ 3289766038DB2CB14D07DC84392138D5 ] SASDIFSV C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS
15:15:06.0841 4396 SASDIFSV - ok
15:15:06.0857 4396 [ 58A38E75F3316A83C23DF6173D41F2B5 ] SASKUTIL C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS
15:15:06.0857 4396 SASKUTIL - ok
15:15:07.0013 4396 SBIOSIO - ok
15:15:07.0044 4396 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
15:15:07.0075 4396 sbp2port - ok
15:15:07.0122 4396 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
15:15:07.0184 4396 SCardSvr - ok
15:15:07.0216 4396 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
15:15:07.0278 4396 scfilter - ok
15:15:07.0325 4396 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
15:15:07.0403 4396 Schedule - ok
15:15:07.0465 4396 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
15:15:07.0512 4396 SCPolicySvc - ok
15:15:07.0559 4396 [ 111E0EBC0AD79CB0FA014B907B231CF0 ] sdbus C:\Windows\system32\DRIVERS\sdbus.sys
15:15:07.0606 4396 sdbus - ok
15:15:07.0621 4396 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
15:15:07.0637 4396 SDRSVC - ok
15:15:07.0684 4396 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
15:15:07.0746 4396 secdrv - ok
15:15:07.0777 4396 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
15:15:07.0840 4396 seclogon - ok
15:15:07.0949 4396 [ 398A81D590424441B2F5C5C08073CADB ] Secunia PSI Agent C:\Program Files (x86)\Secunia\PSI\PSIA.exe
15:15:08.0074 4396 Secunia PSI Agent - ok
15:15:08.0120 4396 [ 8C2D3A80FC90A860F0F24DEB67471481 ] Secunia Update Agent C:\Program Files (x86)\Secunia\PSI\sua.exe
15:15:08.0152 4396 Secunia Update Agent - ok
15:15:08.0183 4396 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\system32\sens.dll
15:15:08.0261 4396 SENS - ok
15:15:08.0276 4396 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
15:15:08.0323 4396 SensrSvc - ok
15:15:08.0339 4396 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\drivers\serenum.sys
15:15:08.0386 4396 Serenum - ok
15:15:08.0432 4396 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\drivers\serial.sys
15:15:08.0510 4396 Serial - ok
15:15:08.0526 4396 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\drivers\sermouse.sys
15:15:08.0557 4396 sermouse - ok
15:15:08.0620 4396 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
15:15:08.0698 4396 SessionEnv - ok
15:15:08.0729 4396 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
15:15:08.0760 4396 sffdisk - ok
15:15:08.0791 4396 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
15:15:08.0822 4396 sffp_mmc - ok
15:15:08.0854 4396 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
15:15:08.0885 4396 sffp_sd - ok
15:15:08.0900 4396 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
15:15:08.0947 4396 sfloppy - ok
15:15:09.0041 4396 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
15:15:09.0119 4396 SharedAccess - ok
15:15:09.0181 4396 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
15:15:09.0259 4396 ShellHWDetection - ok
15:15:09.0322 4396 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
15:15:09.0337 4396 SiSRaid2 - ok
15:15:09.0353 4396 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
15:15:09.0368 4396 SiSRaid4 - ok
15:15:09.0400 4396 [ 50D9949020E02B847CD48F1243FCB895 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
15:15:09.0446 4396 SkypeUpdate - ok
15:15:09.0462 4396 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
15:15:09.0524 4396 Smb - ok
15:15:09.0556 4396 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
15:15:09.0587 4396 SNMPTRAP - ok
15:15:09.0618 4396 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
15:15:09.0634 4396 spldr - ok
15:15:09.0665 4396 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
15:15:09.0696 4396 Spooler - ok
15:15:09.0805 4396 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
15:15:09.0914 4396 sppsvc - ok
15:15:09.0946 4396 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
15:15:10.0024 4396 sppuinotify - ok
15:15:10.0086 4396 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
15:15:10.0133 4396 srv - ok
15:15:10.0164 4396 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
15:15:10.0180 4396 srv2 - ok
15:15:10.0195 4396 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
15:15:10.0242 4396 srvnet - ok
15:15:10.0258 4396 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
15:15:10.0320 4396 SSDPSRV - ok
15:15:10.0382 4396 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
15:15:10.0445 4396 SstpSvc - ok
15:15:10.0492 4396 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\drivers\stexstor.sys
15:15:10.0538 4396 stexstor - ok
15:15:10.0585 4396 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
15:15:10.0648 4396 stisvc - ok
15:15:10.0663 4396 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
15:15:10.0679 4396 swenum - ok
15:15:10.0710 4396 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
15:15:10.0804 4396 swprv - ok
15:15:10.0928 4396 SWUpdateService - ok
15:15:11.0053 4396 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
15:15:11.0116 4396 SysMain - ok
15:15:11.0147 4396 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
15:15:11.0178 4396 TabletInputService - ok
15:15:11.0209 4396 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
15:15:11.0272 4396 TapiSrv - ok
15:15:11.0303 4396 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
15:15:11.0365 4396 TBS - ok
15:15:11.0443 4396 [ 40AF23633D197905F03AB5628C558C51 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
15:15:11.0506 4396 Tcpip - ok
15:15:11.0552 4396 [ 40AF23633D197905F03AB5628C558C51 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
15:15:11.0599 4396 TCPIP6 - ok
15:15:11.0646 4396 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
15:15:11.0662 4396 tcpipreg - ok
15:15:11.0693 4396 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
15:15:11.0724 4396 TDPIPE - ok
15:15:11.0755 4396 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
15:15:11.0802 4396 TDTCP - ok
15:15:11.0833 4396 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
15:15:11.0880 4396 tdx - ok
15:15:11.0896 4396 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
15:15:11.0911 4396 TermDD - ok
15:15:11.0958 4396 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
15:15:12.0036 4396 TermService - ok
15:15:12.0052 4396 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
15:15:12.0098 4396 Themes - ok
15:15:12.0130 4396 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
15:15:12.0176 4396 THREADORDER - ok
15:15:12.0208 4396 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
15:15:12.0270 4396 TrkWks - ok
15:15:12.0364 4396 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
15:15:12.0426 4396 TrustedInstaller - ok
15:15:12.0473 4396 [ 4CE278FC9671BA81A138D70823FCAA09 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
15:15:12.0535 4396 tssecsrv - ok
15:15:12.0566 4396 [ 17C6B51CBCCDED95B3CC14E22791F85E ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
15:15:12.0613 4396 TsUsbFlt - ok
15:15:12.0644 4396 [ AD64450A4ABE076F5CB34CC08EEACB07 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
15:15:12.0691 4396 TsUsbGD - ok
15:15:12.0722 4396 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
15:15:12.0769 4396 tunnel - ok
15:15:12.0785 4396 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
15:15:12.0800 4396 uagp35 - ok
15:15:12.0816 4396 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
15:15:12.0878 4396 udfs - ok
15:15:12.0925 4396 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
15:15:12.0956 4396 UI0Detect - ok
15:15:12.0972 4396 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
15:15:12.0988 4396 uliagpkx - ok
15:15:13.0003 4396 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
15:15:13.0019 4396 umbus - ok
15:15:13.0050 4396 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\drivers\umpass.sys
15:15:13.0081 4396 UmPass - ok
15:15:13.0112 4396 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
15:15:13.0190 4396 upnphost - ok
15:15:13.0237 4396 [ DCA68B0943D6FA415F0C56C92158A83A ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
15:15:13.0300 4396 usbccgp - ok
15:15:13.0346 4396 [ 80B0F7D5CCF86CEB5D402EAAF61FEC31 ] usbcir C:\Windows\system32\drivers\usbcir.sys
15:15:13.0409 4396 usbcir - ok
15:15:13.0424 4396 [ 18A85013A3E0F7E1755365D287443965 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
15:15:13.0440 4396 usbehci - ok
15:15:13.0471 4396 [ B7037444DC5138FC7D3D3968B4DE5C4B ] usbfilter C:\Windows\system32\DRIVERS\usbfilter.sys
15:15:13.0487 4396 usbfilter - ok
15:15:13.0518 4396 [ 8D1196CFBB223621F2C67D45710F25BA ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
15:15:13.0565 4396 usbhub - ok
15:15:13.0580 4396 [ 765A92D428A8DB88B960DA5A8D6089DC ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
15:15:13.0596 4396 usbohci - ok
15:15:13.0627 4396 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
15:15:13.0674 4396 usbprint - ok
15:15:13.0721 4396 [ 9661DA76B4531B2DA272ECCE25A8AF24 ] usbscan C:\Windows\system32\drivers\usbscan.sys
15:15:13.0783 4396 usbscan - ok
15:15:13.0846 4396 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
15:15:13.0908 4396 USBSTOR - ok
15:15:13.0939 4396 [ DD253AFC3BC6CBA412342DE60C3647F3 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
15:15:13.0970 4396 usbuhci - ok
15:15:14.0002 4396 [ 1F775DA4CF1A3A1834207E975A72E9D7 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
15:15:14.0064 4396 usbvideo - ok
15:15:14.0111 4396 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
15:15:14.0204 4396 UxSms - ok
15:15:14.0220 4396 [ 4D71227301DD8D09097B9E4CC6527E5A ] VaultSvc C:\Windows\system32\lsass.exe
15:15:14.0236 4396 VaultSvc - ok
15:15:14.0282 4396 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
15:15:14.0314 4396 vdrvroot - ok
15:15:14.0329 4396 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
15:15:14.0392 4396 vds - ok
15:15:14.0407 4396 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
15:15:14.0438 4396 vga - ok
15:15:14.0454 4396 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
15:15:14.0532 4396 VgaSave - ok
15:15:14.0548 4396 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
15:15:14.0579 4396 vhdmp - ok
15:15:14.0594 4396 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
15:15:14.0610 4396 viaide - ok
15:15:14.0626 4396 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
15:15:14.0641 4396 volmgr - ok
15:15:14.0672 4396 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
15:15:14.0704 4396 volmgrx - ok
15:15:14.0735 4396 [ DF8126BD41180351A093A3AD2FC8903B ] volsnap C:\Windows\system32\drivers\volsnap.sys
15:15:14.0750 4396 volsnap - ok
15:15:14.0782 4396 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
15:15:14.0828 4396 vsmraid - ok
15:15:14.0891 4396 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
15:15:14.0969 4396 VSS - ok
15:15:15.0000 4396 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
15:15:15.0078 4396 vwifibus - ok
15:15:15.0109 4396 [ 13A0DECD1794DE60A8427862C8669D27 ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
15:15:15.0156 4396 vwififlt - ok
15:15:15.0187 4396 [ 49003B357D101CDC474937437ECF5ABC ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys
15:15:15.0218 4396 vwifimp - ok
15:15:15.0265 4396 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
15:15:15.0328 4396 W32Time - ok
15:15:15.0390 4396 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\drivers\wacompen.sys
15:15:15.0421 4396 WacomPen - ok
15:15:15.0452 4396 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
15:15:15.0515 4396 WANARP - ok
15:15:15.0515 4396 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
15:15:15.0562 4396 Wanarpv6 - ok
15:15:15.0624 4396 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
15:15:15.0686 4396 WatAdminSvc - ok
15:15:15.0764 4396 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
15:15:15.0827 4396 wbengine - ok
15:15:15.0858 4396 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
15:15:15.0874 4396 WbioSrvc - ok
15:15:15.0889 4396 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
15:15:15.0952 4396 wcncsvc - ok
15:15:15.0967 4396 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
15:15:15.0998 4396 WcsPlugInService - ok
15:15:16.0030 4396 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\drivers\wd.sys
15:15:16.0045 4396 Wd - ok
15:15:16.0092 4396 [ E2C933EDBC389386EBE6D2BA953F43D8 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
15:15:16.0123 4396 Wdf01000 - ok
15:15:16.0154 4396 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
15:15:16.0232 4396 WdiServiceHost - ok
15:15:16.0232 4396 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
15:15:16.0264 4396 WdiSystemHost - ok
15:15:16.0295 4396 [ 0EB0E5D22B1760F2DBCE632F2DD7A54D ] WebClient C:\Windows\System32\webclnt.dll
15:15:16.0342 4396 WebClient - ok
15:15:16.0373 4396 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
15:15:16.0435 4396 Wecsvc - ok
15:15:16.0466 4396 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
15:15:16.0513 4396 wercplsupport - ok
15:15:16.0529 4396 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
15:15:16.0576 4396 WerSvc - ok
15:15:16.0607 4396 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
15:15:16.0654 4396 WfpLwf - ok
15:15:16.0685 4396 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
15:15:16.0700 4396 WIMMount - ok
15:15:16.0763 4396 WinDefend - ok
15:15:16.0763 4396 WinHttpAutoProxySvc - ok
15:15:16.0888 4396 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
15:15:16.0966 4396 Winmgmt - ok
15:15:17.0044 4396 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
15:15:17.0106 4396 WinRM - ok
15:15:17.0137 4396 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
15:15:17.0200 4396 WinUsb - ok
15:15:17.0231 4396 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
15:15:17.0293 4396 Wlansvc - ok
15:15:17.0340 4396 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
15:15:17.0387 4396 WmiAcpi - ok
15:15:17.0434 4396 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
15:15:17.0480 4396 wmiApSrv - ok
15:15:17.0558 4396 WMPNetworkSvc - ok
15:15:17.0590 4396 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
15:15:17.0636 4396 WPCSvc - ok
15:15:17.0652 4396 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
15:15:17.0683 4396 WPDBusEnum - ok
15:15:17.0699 4396 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
15:15:17.0761 4396 ws2ifsl - ok
15:15:17.0777 4396 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\system32\wscsvc.dll
15:15:17.0808 4396 wscsvc - ok
15:15:17.0824 4396 WSearch - ok
15:15:17.0917 4396 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
15:15:17.0980 4396 wuauserv - ok
15:15:18.0011 4396 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
15:15:18.0058 4396 WudfPf - ok
15:15:18.0073 4396 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
15:15:18.0089 4396 WUDFRd - ok
15:15:18.0104 4396 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
15:15:18.0136 4396 wudfsvc - ok
15:15:18.0182 4396 [ FE90B750AB808FB9DD8FBB428B5FF83B ] WwanSvc C:\Windows\System32\wwansvc.dll
15:15:18.0214 4396 WwanSvc - ok
15:15:18.0260 4396 ================ Scan global ===============================
15:15:18.0307 4396 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
15:15:18.0338 4396 [ 88EDD0B34EED542745931E581AD21A32 ] C:\Windows\system32\winsrv.dll
15:15:18.0354 4396 [ 88EDD0B34EED542745931E581AD21A32 ] C:\Windows\system32\winsrv.dll
15:15:18.0401 4396 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
15:15:18.0448 4396 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
15:15:18.0448 4396 [Global] - ok
15:15:18.0448 4396 ================ Scan MBR ==================================
15:15:18.0463 4396 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
15:15:19.0306 4396 \Device\Harddisk0\DR0 ( TDSS File System ) - warning
15:15:19.0306 4396 \Device\Harddisk0\DR0 - detected TDSS File System (1)
15:15:19.0306 4396 ================ Scan VBR ==================================
15:15:19.0306 4396 [ FF9617F02BA216AFE051E25B0C219F7B ] \Device\Harddisk0\DR0\Partition1
15:15:19.0321 4396 \Device\Harddisk0\DR0\Partition1 - ok
15:15:19.0337 4396 [ 14ABEFE37A948FA42AA55EDCA1196FF6 ] \Device\Harddisk0\DR0\Partition2
15:15:19.0352 4396 \Device\Harddisk0\DR0\Partition2 - ok
15:15:19.0368 4396 [ ACF4CFFD5581896CA10C980CEB9651B0 ] \Device\Harddisk0\DR0\Partition3
15:15:19.0384 4396 \Device\Harddisk0\DR0\Partition3 - ok
15:15:19.0384 4396 ================ Scan active images ========================
15:15:19.0384 4396 [ 3E588B60EC061686BA05D33574A344C6 ] C:\Windows\System32\drivers\crashdmp.sys
15:15:19.0384 4396 C:\Windows\System32\drivers\crashdmp.sys - ok
15:15:19.0399 4396 [ 9BBD8B5855BC6578957F82341F9CDE5A ] C:\Windows\System32\drivers\Diskdump.sys
15:15:19.0399 4396 C:\Windows\System32\drivers\Diskdump.sys - ok
15:15:19.0415 4396 [ BB4FE7889DB9CBBE61A308E99697F53C ] C:\Windows\System32\drivers\amd_sata.sys
15:15:19.0415 4396 C:\Windows\System32\drivers\amd_sata.sys - ok
15:15:19.0415 4396 [ 814DB88F2641691575A455CF25354098 ] C:\Windows\System32\drivers\dumpfve.sys
15:15:19.0415 4396 C:\Windows\System32\drivers\dumpfve.sys - ok
15:15:19.0415 4396 [ F036CE71586E93D94DAB220D7BDF4416 ] C:\Windows\System32\drivers\cdrom.sys
15:15:19.0415 4396 C:\Windows\System32\drivers\cdrom.sys - ok
15:15:19.0430 4396 [ 8ACBB0D11A99EF06BFFD09C5B4DF0925 ] C:\Windows\System32\drivers\5415395drv.sys
15:15:19.0430 4396 C:\Windows\System32\drivers\5415395drv.sys - ok
15:15:19.0430 4396 [ 16A47CE2DECC9B099349A5F840654746 ] C:\Windows\System32\drivers\beep.sys
15:15:19.0430 4396 C:\Windows\System32\drivers\beep.sys - ok
15:15:19.0430 4396 [ 9899284589F75FA8724FF3D16AED75C1 ] C:\Windows\System32\drivers\null.sys
15:15:19.0446 4396 C:\Windows\System32\drivers\null.sys - ok
15:15:19.0446 4396 [ 53E92A310193CB3C03BEA963DE7D9CFC ] C:\Windows\System32\drivers\vga.sys
15:15:19.0446 4396 C:\Windows\System32\drivers\vga.sys - ok
15:15:19.0446 4396 [ E7353D59C9842BC7299FAEB7E7E09340 ] C:\Windows\System32\drivers\videoprt.sys
15:15:19.0446 4396 C:\Windows\System32\drivers\videoprt.sys - ok
15:15:19.0462 4396 [ FC438D1430B28618E2D0C7C332A710AD ] C:\Windows\System32\drivers\watchdog.sys
15:15:19.0462 4396 C:\Windows\System32\drivers\watchdog.sys - ok
15:15:19.0462 4396 [ CEA6CC257FC9B7715F1C2B4849286D24 ] C:\Windows\System32\drivers\RDPCDD.sys
15:15:19.0462 4396 C:\Windows\System32\drivers\RDPCDD.sys - ok
15:15:19.0462 4396 [ BB5971A4F00659529A5C44831AF22365 ] C:\Windows\System32\drivers\RDPENCDD.sys
15:15:19.0462 4396 C:\Windows\System32\drivers\RDPENCDD.sys - ok
15:15:19.0477 4396 [ 216F3FA57533D98E1F74DED70113177A ] C:\Windows\System32\drivers\RDPREFMP.sys
15:15:19.0477 4396 C:\Windows\System32\drivers\RDPREFMP.sys - ok
15:15:19.0477 4396 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] C:\Windows\System32\drivers\msfs.sys
15:15:19.0477 4396 C:\Windows\System32\drivers\msfs.sys - ok
15:15:19.0493 4396 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] C:\Windows\System32\drivers\npfs.sys
15:15:19.0493 4396 C:\Windows\System32\drivers\npfs.sys - ok
15:15:19.0493 4396 [ 6F020A220388ECA0AB6062DC27BD16B6 ] C:\Windows\System32\drivers\tdi.sys
15:15:19.0493 4396 C:\Windows\System32\drivers\tdi.sys - ok
15:15:19.0493 4396 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] C:\Windows\System32\drivers\tdx.sys
15:15:19.0493 4396 C:\Windows\System32\drivers\tdx.sys - ok
15:15:19.0508 4396 [ 79059559E89D06E8B80CE2944BE20228 ] C:\Windows\System32\drivers\afd.sys
15:15:19.0508 4396 C:\Windows\System32\drivers\afd.sys - ok
15:15:19.0508 4396 [ 09594D1089C523423B32A4229263F068 ] C:\Windows\System32\drivers\netbt.sys
15:15:19.0508 4396 C:\Windows\System32\drivers\netbt.sys - ok
15:15:19.0508 4396 [ 611B23304BF067451A9FDEE01FBDD725 ] C:\Windows\System32\drivers\wfplwf.sys
15:15:19.0508 4396 C:\Windows\System32\drivers\wfplwf.sys - ok
15:15:19.0524 4396 [ 6BCC1D7D2FD2453957C5479A32364E52 ] C:\Windows\System32\drivers\ws2ifsl.sys
15:15:19.0524 4396 C:\Windows\System32\drivers\ws2ifsl.sys - ok
15:15:19.0524 4396 [ 0557CF5A2556BD58E26384169D72438D ] C:\Windows\System32\drivers\pacer.sys
15:15:19.0524 4396 C:\Windows\System32\drivers\pacer.sys - ok
15:15:19.0540 4396 [ 86743D9F5D2B1048062B14B1D84501C4 ] C:\Windows\System32\drivers\netbios.sys
15:15:19.0540 4396 C:\Windows\System32\drivers\netbios.sys - ok
15:15:19.0540 4396 [ 13A0DECD1794DE60A8427862C8669D27 ] C:\Windows\System32\drivers\vwififlt.sys
15:15:19.0540 4396 C:\Windows\System32\drivers\vwififlt.sys - ok
15:15:19.0540 4396 [ 356AFD78A6ED4457169241AC3965230C ] C:\Windows\System32\drivers\wanarp.sys
15:15:19.0540 4396 C:\Windows\System32\drivers\wanarp.sys - ok
15:15:19.0555 4396 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] C:\Windows\System32\drivers\termdd.sys
15:15:19.0555 4396 C:\Windows\System32\drivers\termdd.sys - ok
15:15:19.0555 4396 [ 3289766038DB2CB14D07DC84392138D5 ] C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys
15:15:19.0555 4396 C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys - ok
15:15:19.0571 4396 [ 58A38E75F3316A83C23DF6173D41F2B5 ] C:\Program Files\SUPERAntiSpyware\saskutil64.sys
15:15:19.0571 4396 C:\Program Files\SUPERAntiSpyware\saskutil64.sys - ok
15:15:19.0571 4396 [ 62DB6CC4B0818F1B5F3441241B098F12 ] C:\Windows\System32\drivers\SABI.sys
15:15:19.0571 4396 C:\Windows\System32\drivers\SABI.sys - ok
15:15:19.0586 4396 [ E7F5AE18AF4168178A642A9247C63001 ] C:\Windows\System32\drivers\nsiproxy.sys
15:15:19.0586 4396 C:\Windows\System32\drivers\nsiproxy.sys - ok
15:15:19.0586 4396 [ 77F665941019A1594D887A74F301FA2F ] C:\Windows\System32\drivers\rdbss.sys
15:15:19.0586 4396 C:\Windows\System32\drivers\rdbss.sys - ok
15:15:19.0586 4396 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] C:\Windows\System32\drivers\mssmbios.sys
15:15:19.0586 4396 C:\Windows\System32\drivers\mssmbios.sys - ok
15:15:19.0602 4396 [ 61583EE3C3A17003C4ACD0475646B4D3 ] C:\Windows\System32\drivers\blbdrive.sys
15:15:19.0602 4396 C:\Windows\System32\drivers\blbdrive.sys - ok
15:15:19.0602 4396 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] C:\Windows\System32\drivers\dfsc.sys
15:15:19.0602 4396 C:\Windows\System32\drivers\dfsc.sys - ok
15:15:19.0618 4396 [ 13096B05847EC78F0977F2C0F79E9AB3 ] C:\Windows\System32\drivers\discache.sys
15:15:19.0618 4396 C:\Windows\System32\drivers\discache.sys - ok
15:15:19.0618 4396 [ 3566A8DAAFA27AF944F5D705EAA64894 ] C:\Windows\System32\drivers\tunnel.sys
15:15:19.0618 4396 C:\Windows\System32\drivers\tunnel.sys - ok
15:15:19.0618 4396 [ F0970A4BC8395659C22BF53D0FADF16F ] C:\Windows\System32\smss.exe
15:15:19.0618 4396 C:\Windows\System32\smss.exe - ok
15:15:19.0633 4396 [ CAAAC014C5C56A69F710B5F1B836DE22 ] C:\Windows\System32\ntdll.dll
15:15:19.0633 4396 C:\Windows\System32\ntdll.dll - ok
15:15:19.0633 4396 [ 89B31E22D9AFA62EA2B7BB96AB753BC0 ] C:\Windows\System32\drivers\atikmpag.sys
15:15:19.0633 4396 C:\Windows\System32\drivers\atikmpag.sys - ok
15:15:19.0633 4396 [ 3B536A8BEC3B4F23FFDFD78B11A2AB93 ] C:\Windows\System32\autochk.exe
15:15:19.0633 4396 C:\Windows\System32\autochk.exe - ok
15:15:19.0649 4396 [ 2BF7F9033D6271642520070FDA35F7D3 ] C:\Windows\System32\drivers\atikmdag.sys
15:15:19.0649 4396 C:\Windows\System32\drivers\atikmdag.sys - ok
15:15:19.0649 4396 [ EAF32CB8C1F810E4715B4DFBE785C7FF ] C:\Windows\System32\shlwapi.dll
15:15:19.0649 4396 C:\Windows\System32\shlwapi.dll - ok
15:15:19.0664 4396 [ 4BBFA57F594F7E8A8EDC8F377184C3F0 ] C:\Windows\System32\ws2_32.dll
15:15:19.0664 4396 C:\Windows\System32\ws2_32.dll - ok
15:15:19.0664 4396 [ D8973E71F1B35CD3F3DEA7C12D49D0F0 ] C:\Windows\System32\kernel32.dll
15:15:19.0664 4396 C:\Windows\System32\kernel32.dll - ok
15:15:19.0664 4396 [ 9835E63E09F824D22B689D2BB789BAB9 ] C:\Windows\System32\comdlg32.dll
15:15:19.0664 4396 C:\Windows\System32\comdlg32.dll - ok
15:15:19.0680 4396 [ B4F29F65AD3114051F01E9403346047F ] C:\Windows\System32\imagehlp.dll
15:15:19.0680 4396 C:\Windows\System32\imagehlp.dll - ok
15:15:19.0680 4396 [ F7CE0C81C545364020ED8203CF0A633E ] C:\Windows\System32\difxapi.dll
15:15:19.0680 4396 C:\Windows\System32\difxapi.dll - ok
15:15:19.0696 4396 [ 28C0B5024F5C5A438E78B188CFC81B7F ] C:\Windows\System32\normaliz.dll
15:15:19.0696 4396 C:\Windows\System32\normaliz.dll - ok
15:15:19.0696 4396 [ 9B6678DB9C6A232C5A84D2FDFFF8B0E1 ] C:\Windows\System32\wininet.dll
15:15:19.0696 4396 C:\Windows\System32\wininet.dll - ok
15:15:19.0696 4396 [ 4E4FFB09D895AA000DD56D1404F69A7E ] C:\Windows\System32\Wldap32.dll
15:15:19.0696 4396 C:\Windows\System32\Wldap32.dll - ok
15:15:19.0711 4396 [ C06B32165E23A72A898B7A89679AD754 ] C:\Windows\System32\oleaut32.dll
15:15:19.0711 4396 C:\Windows\System32\oleaut32.dll - ok
15:15:19.0711 4396 [ 7016991D493B9F9FA492E75BD13D031D ] C:\Windows\System32\iertutil.dll
15:15:19.0711 4396 C:\Windows\System32\iertutil.dll - ok
15:15:19.0711 4396 [ DBF99FD9CAF75CA66D042BD8D050FF71 ] C:\Windows\System32\usp10.dll
15:15:19.0711 4396 C:\Windows\System32\usp10.dll - ok
15:15:19.0727 4396 [ 044FE45FFD6AD40E3BBBE60B7F41BABE ] C:\Windows\System32\nsi.dll
15:15:19.0727 4396 C:\Windows\System32\nsi.dll - ok
15:15:19.0727 4396 [ AA2C08CE85653B1A0D2E4AB407FA176C ] C:\Windows\System32\imm32.dll
15:15:19.0727 4396 C:\Windows\System32\imm32.dll - ok
15:15:19.0742 4396 [ 83404DCBCE4925B6A5A77C5170F46D86 ] C:\Windows\System32\sechost.dll
15:15:19.0742 4396 C:\Windows\System32\sechost.dll - ok
15:15:19.0742 4396 [ FE70103391A64039A921DBFFF9C7AB1B ] C:\Windows\System32\user32.dll
15:15:19.0742 4396 C:\Windows\System32\user32.dll - ok
15:15:19.0742 4396 [ 6C60B5ACA7442EFB794082CDACFC001C ] C:\Windows\System32\ole32.dll
15:15:19.0742 4396 C:\Windows\System32\ole32.dll - ok
15:15:19.0758 4396 [ C391FC68282A000CDF953F8B6B55D2EF ] C:\Windows\System32\msvcrt.dll
15:15:19.0758 4396 C:\Windows\System32\msvcrt.dll - ok
15:15:19.0758 4396 [ 5D8E6C95156ED1F79A63D1EADE6F9ED5 ] C:\Windows\System32\setupapi.dll
15:15:19.0758 4396 C:\Windows\System32\setupapi.dll - ok
15:15:19.0758 4396 [ 25983DE69B57142039AC8D95E71CD9C9 ] C:\Windows\System32\clbcatq.dll
15:15:19.0758 4396 C:\Windows\System32\clbcatq.dll - ok
15:15:19.0774 4396 [ 63A580C88CFAF72A92550940054569EF ] C:\Windows\System32\advapi32.dll
15:15:19.0774 4396 C:\Windows\System32\advapi32.dll - ok
15:15:19.0774 4396 [ C431EAF5CAA1C82CAC2534A2EAB348A3 ] C:\Windows\System32\msctf.dll
15:15:19.0774 4396 C:\Windows\System32\msctf.dll - ok
15:15:19.0789 4396 [ D87E1E59C73C1F98D5DED5B3850C40F5 ] C:\Windows\System32\psapi.dll
15:15:19.0789 4396 C:\Windows\System32\psapi.dll - ok
15:15:19.0789 4396 [ 796B47A4B82EF1C39F13435B88834C48 ] C:\Windows\System32\lpk.dll
15:15:19.0789 4396 C:\Windows\System32\lpk.dll - ok
15:15:19.0789 4396 [ 26036E228D2467DE6975AD819C22C043 ] C:\Windows\System32\rpcrt4.dll
15:15:19.0789 4396 C:\Windows\System32\rpcrt4.dll - ok
15:15:19.0805 4396 [ 56325BB1FF19F2A5AC8713756AC41140 ] C:\Windows\System32\gdi32.dll
15:15:19.0805 4396 C:\Windows\System32\gdi32.dll - ok
15:15:19.0805 4396 [ AD662B34B161198B9D66A564EDDA7D43 ] C:\Windows\System32\shell32.dll
15:15:19.0805 4396 C:\Windows\System32\shell32.dll - ok
15:15:19.0805 4396 [ C8CF11D73017CC588411FCB936891CF4 ] C:\Windows\System32\urlmon.dll
15:15:19.0805 4396 C:\Windows\System32\urlmon.dll - ok
15:15:19.0820 4396 [ 0E6FBF19D9DFBB77316C23DF91F8A101 ] C:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll
15:15:19.0820 4396 C:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll - ok
15:15:19.0820 4396 [ AFC3DB5C6EB8CA8017DDB81D6C0AD02A ] C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
15:15:19.0820 4396 C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll - ok
15:15:19.0836 4396 [ 64A4AB126E24FD3F58EBE64852773DB5 ] C:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll
15:15:19.0836 4396 C:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll - ok
15:15:19.0836 4396 [ 72723D3E4781BADC62C3180C137E7B23 ] C:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll
15:15:19.0836 4396 C:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll - ok
15:15:19.0852 4396 [ 9094039A00485F71C4DE64BF51F64C46 ] C:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll
15:15:19.0852 4396 C:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll - ok
15:15:19.0852 4396 [ 780F6ECC4F55D76C9730E6B6C9B31913 ] C:\Windows\System32\crypt32.dll
15:15:19.0852 4396 C:\Windows\System32\crypt32.dll - ok
15:15:19.0852 4396 [ F49E92B50CED5C9F1725D3C0329FD933 ] C:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll
15:15:19.0852 4396 C:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll - ok
15:15:19.0867 4396 [ 06FEC9E8117103BB1141A560E98077DA ] C:\Windows\System32\devobj.dll
15:15:19.0867 4396 C:\Windows\System32\devobj.dll - ok
15:15:19.0867 4396 [ B22C00ED0491FD7B8803D7DDE2849F4C ] C:\Windows\System32\KernelBase.dll
15:15:19.0867 4396 C:\Windows\System32\KernelBase.dll - ok
15:15:19.0867 4396 [ 959041D7014C97133D859B45BCA0FC58 ] C:\Windows\System32\wintrust.dll
15:15:19.0867 4396 C:\Windows\System32\wintrust.dll - ok
15:15:19.0883 4396 [ 9028D1621C43DF8DFBD1C76860412A11 ] C:\Windows\System32\comctl32.dll
15:15:19.0883 4396 C:\Windows\System32\comctl32.dll - ok
15:15:19.0883 4396 [ 2477A28081BDAEE622CF045ACF8EE124 ] C:\Windows\System32\cfgmgr32.dll
15:15:19.0883 4396 C:\Windows\System32\cfgmgr32.dll - ok
15:15:19.0898 4396 [ 884415BD4269C02EAF8E2613BF85500D ] C:\Windows\System32\msasn1.dll
15:15:19.0898 4396 C:\Windows\System32\msasn1.dll - ok
15:15:19.0898 4396 [ 9C278785347BCC991F8EA2999D90F58D ] C:\Windows\SysWOW64\normaliz.dll
15:15:19.0898 4396 C:\Windows\SysWOW64\normaliz.dll - ok
15:15:19.0898 4396 [ 88612F1CE3BF42256913BF6E61C70D52 ] C:\Windows\System32\drivers\dxgkrnl.sys
15:15:19.0898 4396 C:\Windows\System32\drivers\dxgkrnl.sys - ok
15:15:19.0914 4396 [ 1F04CFB79DD5FB7694468CE3FB3DCC31 ] C:\Windows\System32\drivers\dxgmms1.sys
15:15:19.0914 4396 C:\Windows\System32\drivers\dxgmms1.sys - ok
15:15:19.0914 4396 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] C:\Windows\System32\drivers\hdaudbus.sys
15:15:19.0914 4396 C:\Windows\System32\drivers\hdaudbus.sys - ok
15:15:19.0914 4396 [ E50CFB92986DCAB49DE93788FD695813 ] C:\Windows\System32\drivers\Rt64win7.sys
15:15:19.0914 4396 C:\Windows\System32\drivers\Rt64win7.sys - ok
15:15:19.0930 4396 [ 12FEB33791920678F8433701C822BCFD ] C:\Windows\System32\drivers\usbport.sys
15:15:19.0930 4396 C:\Windows\System32\drivers\usbport.sys - ok
15:15:19.0930 4396 [ 765A92D428A8DB88B960DA5A8D6089DC ] C:\Windows\System32\drivers\usbohci.sys
15:15:19.0930 4396 C:\Windows\System32\drivers\usbohci.sys - ok
15:15:19.0945 4396 [ B7037444DC5138FC7D3D3968B4DE5C4B ] C:\Windows\System32\drivers\usbfilter.sys
15:15:19.0945 4396 C:\Windows\System32\drivers\usbfilter.sys - ok
15:15:19.0945 4396 [ 18A85013A3E0F7E1755365D287443965 ] C:\Windows\System32\drivers\usbehci.sys
15:15:19.0945 4396 C:\Windows\System32\drivers\usbehci.sys - ok
15:15:19.0945 4396 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] C:\Windows\System32\drivers\i8042prt.sys
15:15:19.0945 4396 C:\Windows\System32\drivers\i8042prt.sys - ok
15:15:19.0961 4396 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] C:\Windows\System32\drivers\kbdclass.sys
15:15:19.0961 4396 C:\Windows\System32\drivers\kbdclass.sys - ok
15:15:19.0961 4396 [ FD0D922DE7D2AD9E98562CAA19A7CD2D ] C:\Windows\System32\drivers\ETD.sys
15:15:19.0961 4396 C:\Windows\System32\drivers\ETD.sys - ok
15:15:19.0976 4396 [ 7D27EA49F3C1F687D357E77A470AEA99 ] C:\Windows\System32\drivers\mouclass.sys
15:15:19.0976 4396 C:\Windows\System32\drivers\mouclass.sys - ok
15:15:19.0976 4396 [ 111E0EBC0AD79CB0FA014B907B231CF0 ] C:\Windows\System32\drivers\sdbus.sys
15:15:19.0976 4396 C:\Windows\System32\drivers\sdbus.sys - ok
15:15:19.0976 4396 [ 3660381F5EA18E14A06C98591B533AD6 ] C:\Windows\System32\drivers\athrx.sys
15:15:19.0976 4396 C:\Windows\System32\drivers\athrx.sys - ok
15:15:19.0992 4396 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] C:\Windows\System32\drivers\vwifibus.sys
15:15:19.0992 4396 C:\Windows\System32\drivers\vwifibus.sys - ok
15:15:19.0992 4396 [ F6FF8944478594D0E414D3F048F0D778 ] C:\Windows\System32\drivers\wmiacpi.sys
15:15:19.0992 4396 C:\Windows\System32\drivers\wmiacpi.sys - ok
15:15:19.0992 4396 [ 0840155D0BDDF1190F84A663C284BD33 ] C:\Windows\System32\drivers\CmBatt.sys
15:15:19.0992 4396 C:\Windows\System32\drivers\CmBatt.sys - ok
15:15:20.0008 4396 [ 1E56388B3FE0D031C44144EB8C4D6217 ] C:\Windows\System32\drivers\amdppm.sys
15:15:20.0008 4396 C:\Windows\System32\drivers\amdppm.sys - ok
15:15:20.0008 4396 [ 03EDB043586CCEBA243D689BDDA370A8 ] C:\Windows\System32\drivers\CompositeBus.sys
15:15:20.0008 4396 C:\Windows\System32\drivers\CompositeBus.sys - ok
15:15:20.0023 4396 [ 7ECFF9B22276B73F43A99A15A6094E90 ] C:\Windows\System32\drivers\agilevpn.sys
15:15:20.0023 4396 C:\Windows\System32\drivers\agilevpn.sys - ok
15:15:20.0023 4396 [ 471815800AE33E6F1C32FB1B97C490CA ] C:\Windows\System32\drivers\rasl2tp.sys
15:15:20.0023 4396 C:\Windows\System32\drivers\rasl2tp.sys - ok
15:15:20.0023 4396 [ 30639C932D9FEF22B31268FE25A1B6E5 ] C:\Windows\System32\drivers\ndistapi.sys
15:15:20.0023 4396 C:\Windows\System32\drivers\ndistapi.sys - ok
15:15:20.0039 4396 [ 53F7305169863F0A2BDDC49E116C2E11 ] C:\Windows\System32\drivers\ndiswan.sys
15:15:20.0039 4396 C:\Windows\System32\drivers\ndiswan.sys - ok
15:15:20.0039 4396 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] C:\Windows\System32\drivers\raspppoe.sys
15:15:20.0039 4396 C:\Windows\System32\drivers\raspppoe.sys - ok
15:15:20.0054 4396 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] C:\Windows\System32\drivers\raspptp.sys
15:15:20.0054 4396 C:\Windows\System32\drivers\raspptp.sys - ok
15:15:20.0054 4396 [ E8B1E447B008D07FF47D016C2B0EEECB ] C:\Windows\System32\drivers\rassstp.sys
15:15:20.0054 4396 C:\Windows\System32\drivers\rassstp.sys - ok
15:15:20.0054 4396 [ 24FBF5CC5C04150073C315A7C83521EE ] C:\Windows\System32\drivers\ks.sys
15:15:20.0054 4396 C:\Windows\System32\drivers\ks.sys - ok
15:15:20.0070 4396 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] C:\Windows\System32\drivers\swenum.sys
15:15:20.0070 4396 C:\Windows\System32\drivers\swenum.sys - ok
15:15:20.0070 4396 [ A65A9B2C3A9985D8122B2B6D3D2F4C1B ] C:\Windows\System32\drivers\btath_bus.sys
15:15:20.0070 4396 C:\Windows\System32\drivers\btath_bus.sys - ok
15:15:20.0086 4396 [ DC54A574663A895C8763AF0FA1FF7561 ] C:\Windows\System32\drivers\umbus.sys
15:15:20.0086 4396 C:\Windows\System32\drivers\umbus.sys - ok
15:15:20.0086 4396 [ 8D1196CFBB223621F2C67D45710F25BA ] C:\Windows\System32\drivers\usbhub.sys
15:15:20.0086 4396 C:\Windows\System32\drivers\usbhub.sys - ok
15:15:20.0086 4396 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] C:\Windows\System32\drivers\ndproxy.sys
15:15:20.0086 4396 C:\Windows\System32\drivers\ndproxy.sys - ok
15:15:20.0101 4396 [ E0D3CD5841E5C7BE7B94BA946AF1E498 ] C:\Windows\System32\drivers\drmk.sys
15:15:20.0101 4396 C:\Windows\System32\drivers\drmk.sys - ok
15:15:20.0101 4396 [ 770A3B0D78232B0C1054495392A1FBA3 ] C:\Windows\System32\drivers\AtihdW76.sys
15:15:20.0101 4396 C:\Windows\System32\drivers\AtihdW76.sys - ok
15:15:20.0117 4396 [ 6869281E78CB31A43E969F06B57347C4 ] C:\Windows\System32\drivers\ksthunk.sys
15:15:20.0117 4396 C:\Windows\System32\drivers\ksthunk.sys - ok
15:15:20.0117 4396 [ 1E0B4CBBA91C6B041A14ECC2186F7E24 ] C:\Windows\System32\drivers\portcls.sys
15:15:20.0117 4396 C:\Windows\System32\drivers\portcls.sys - ok
15:15:20.0132 4396 [ 4BBB5A55EEB5EC11B20FCBB4CBB49357 ] C:\Windows\System32\drivers\RTKVHD64.sys
15:15:20.0132 4396 C:\Windows\System32\drivers\RTKVHD64.sys - ok
15:15:20.0132 4396 [ BF24D6F2ED97FE830BFD52B246F98E67 ] C:\Windows\System32\drivers\dxapi.sys
15:15:20.0132 4396 C:\Windows\System32\drivers\dxapi.sys - ok
15:15:20.0132 4396 [ F2BF71FCEAB8FB8A691408C478E2FF4C ] C:\Windows\System32\win32k.sys
15:15:20.0132 4396 C:\Windows\System32\win32k.sys - ok
15:15:20.0148 4396 [ 60C2862B4BF0FD9F582EF344C2B1EC72 ] C:\Windows\System32\csrss.exe
15:15:20.0148 4396 C:\Windows\System32\csrss.exe - ok
15:15:20.0148 4396 [ 216BABD555BC550952320EEA89C25DDF ] C:\Windows\System32\csrsrv.dll
15:15:20.0148 4396 C:\Windows\System32\csrsrv.dll - ok
15:15:20.0164 4396 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\System32\basesrv.dll
15:15:20.0164 4396 C:\Windows\System32\basesrv.dll - ok
15:15:20.0164 4396 [ 88EDD0B34EED542745931E581AD21A32 ] C:\Windows\System32\winsrv.dll
15:15:20.0164 4396 C:\Windows\System32\winsrv.dll - ok
15:15:20.0164 4396 [ 958F4AEC324A2BB0DC5B8F9197E779A0 ] C:\Windows\System32\drivers\btfilter.sys
15:15:20.0164 4396 C:\Windows\System32\drivers\btfilter.sys - ok
15:15:20.0179 4396 [ 738D0E9272F59EB7A1449C3EC118E6C4 ] C:\Windows\System32\drivers\bthport.sys
15:15:20.0179 4396 C:\Windows\System32\drivers\bthport.sys - ok
15:15:20.0179 4396 [ F188B7394D81010767B6DF3178519A37 ] C:\Windows\System32\drivers\BTHUSB.SYS
15:15:20.0179 4396 C:\Windows\System32\drivers\BTHUSB.SYS - ok
15:15:20.0195 4396 [ FFA06EF43987ED0DD42AD59B260C0C78 ] C:\Windows\System32\drivers\usbd.sys
15:15:20.0195 4396 C:\Windows\System32\drivers\usbd.sys - ok
15:15:20.0195 4396 [ DCA68B0943D6FA415F0C56C92158A83A ] C:\Windows\System32\drivers\usbccgp.sys
15:15:20.0195 4396 C:\Windows\System32\drivers\usbccgp.sys - ok
15:15:20.0195 4396 [ 1F775DA4CF1A3A1834207E975A72E9D7 ] C:\Windows\System32\drivers\usbvideo.sys
15:15:20.0195 4396 C:\Windows\System32\drivers\usbvideo.sys - ok
15:15:20.0210 4396 [ 3DD798846E2C28102B922C56E71B7932 ] C:\Windows\System32\drivers\rfcomm.sys
15:15:20.0210 4396 C:\Windows\System32\drivers\rfcomm.sys - ok
15:15:20.0210 4396 [ CF98190A94F62E405C8CB255018B2315 ] C:\Windows\System32\drivers\bthenum.sys
15:15:20.0210 4396 C:\Windows\System32\drivers\bthenum.sys - ok
15:15:20.0226 4396 [ 02DD601B708DD0667E1331FA8518E9FF ] C:\Windows\System32\drivers\bthpan.sys
15:15:20.0226 4396 C:\Windows\System32\drivers\bthpan.sys - ok
15:15:20.0226 4396 [ 856E76B3641746ABBC2946BED1372098 ] C:\Windows\System32\drivers\hidparse.sys
15:15:20.0226 4396 C:\Windows\System32\drivers\hidparse.sys - ok
15:15:20.0242 4396 [ 597C3699384E53CC59587ED50CCE5CA2 ] C:\Windows\System32\drivers\hidclass.sys
15:15:20.0242 4396 C:\Windows\System32\drivers\hidclass.sys - ok
15:15:20.0242 4396 [ C2FD5B24F648DAC8143C51514307B0EC ] C:\Windows\System32\drivers\btath_rcp.sys
15:15:20.0242 4396 C:\Windows\System32\drivers\btath_rcp.sys - ok
15:15:20.0242 4396 [ FFA0D38141FB7B93AFF465B82596D1EC ] C:\Windows\System32\drivers\btath_avdt.sys
15:15:20.0242 4396 C:\Windows\System32\drivers\btath_avdt.sys - ok
15:15:20.0257 4396 [ 72EA2FCD6456BFC6936EDA474EA08E48 ] C:\Windows\System32\drivers\btath_a2dp.sys
15:15:20.0257 4396 C:\Windows\System32\drivers\btath_a2dp.sys - ok
15:15:20.0257 4396 [ E95F7E9F4C8A88610F4142E60CF196BE ] C:\Windows\System32\drivers\btath_hcrp.sys
15:15:20.0257 4396 C:\Windows\System32\drivers\btath_hcrp.sys - ok
15:15:20.0273 4396 [ EF3B9AD9D03047EBA1369732B2F55AFE ] C:\Windows\System32\drivers\btath_flt.sys
15:15:20.0273 4396 C:\Windows\System32\drivers\btath_flt.sys - ok
15:15:20.0273 4396 [ 1A5C05524C0C503C87F930F154B7145D ] C:\Windows\System32\drivers\btath_lwflt.sys
15:15:20.0273 4396 C:\Windows\System32\drivers\btath_lwflt.sys - ok
15:15:20.0288 4396 [ B03D591DC7DA45ECE20B3B467E6AADAA ] C:\Windows\System32\drivers\monitor.sys
15:15:20.0288 4396 C:\Windows\System32\drivers\monitor.sys - ok
15:15:20.0288 4396 [ F29FE765E1448EF371CFE05BFAC74ADB ] C:\Windows\System32\tsddd.dll
15:15:20.0288 4396 C:\Windows\System32\tsddd.dll - ok
15:15:20.0288 4396 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\System32\sxssrv.dll
15:15:20.0288 4396 C:\Windows\System32\sxssrv.dll - ok
15:15:20.0304 4396 [ 2C942733A5983DD4502219FF37C7EBC7 ] C:\Windows\System32\profapi.dll
15:15:20.0304 4396 C:\Windows\System32\profapi.dll - ok
15:15:20.0304 4396 [ 94355C28C1970635A31B3FE52EB7CEBA ] C:\Windows\System32\wininit.exe
15:15:20.0304 4396 C:\Windows\System32\wininit.exe - ok
15:15:20.0304 4396 [ C2A8CB1275ECB85D246A9ECC02A728E3 ] C:\Windows\System32\RpcRtRemote.dll
15:15:20.0304 4396 C:\Windows\System32\RpcRtRemote.dll - ok
15:15:20.0320 4396 [ 78523A26F5604C0568FE9D1CE86E36F4 ] C:\Windows\System32\KBDUS.DLL
15:15:20.0320 4396 C:\Windows\System32\KBDUS.DLL - ok
15:15:20.0320 4396 [ 943F527DF79E6B400104341AA7023C75 ] C:\Windows\System32\cdd.dll
15:15:20.0320 4396 C:\Windows\System32\cdd.dll - ok
15:15:20.0335 4396 [ 1151B1BAA6F350B1DB6598E0FEA7C457 ] C:\Windows\System32\winlogon.exe
15:15:20.0335 4396 C:\Windows\System32\winlogon.exe - ok
15:15:20.0335 4396 [ 0D9764D58C5EFD672B7184854B152E5E ] C:\Windows\System32\winsta.dll
15:15:20.0335 4396 C:\Windows\System32\winsta.dll - ok
15:15:20.0335 4396 [ B26B1801356760841C3BC69F9F91537F ] C:\Windows\System32\WlS0WndH.dll
15:15:20.0335 4396 C:\Windows\System32\WlS0WndH.dll - ok
15:15:20.0351 4396 [ 9CEAD32E79A62150FE9F8557E58E008B ] C:\Windows\System32\sxs.dll
15:15:20.0351 4396 C:\Windows\System32\sxs.dll - ok
15:15:20.0351 4396 [ 784FA3DF338E2E8F5F0389D6FAC428AF ] C:\Windows\System32\cryptbase.dll
15:15:20.0351 4396 C:\Windows\System32\cryptbase.dll - ok
15:15:20.0366 4396 [ 90499F3163A9F815CF196A205EA3CD5D ] C:\Windows\System32\apphelp.dll
15:15:20.0366 4396 C:\Windows\System32\apphelp.dll - ok
15:15:20.0366 4396 [ 4D71227301DD8D09097B9E4CC6527E5A ] C:\Windows\System32\lsass.exe
15:15:20.0366 4396 C:\Windows\System32\lsass.exe - ok
15:15:20.0366 4396 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\System32\services.exe
15:15:20.0366 4396 C:\Windows\System32\services.exe - ok
15:15:20.0382 4396 [ 9662EE182644511439F1C53745DC1C88 ] C:\Windows\System32\lsm.exe
15:15:20.0382 4396 C:\Windows\System32\lsm.exe - ok
15:15:20.0382 4396 [ 7C46EC9CCDE6E793713FA01DB2EB918E ] C:\Windows\System32\sspisrv.dll
15:15:20.0382 4396 C:\Windows\System32\sspisrv.dll - ok
15:15:20.0398 4396 [ B08EA91C774AA734E0B9881F85CD9F42 ] C:\Windows\System32\sspicli.dll
15:15:20.0398 4396 C:\Windows\System32\sspicli.dll - ok
15:15:20.0398 4396 [ 68083118797CAF30FB2EA3E71494D67E ] C:\Windows\System32\sysntfy.dll
15:15:20.0398 4396 C:\Windows\System32\sysntfy.dll - ok
15:15:20.0398 4396 [ E914A50A151DFFE63D3935226DB5E2C1 ] C:\Windows\System32\scext.dll
15:15:20.0398 4396 C:\Windows\System32\scext.dll - ok
15:15:20.0413 4396 [ 208EAAFF40DA400190AA0605C797BEA2 ] C:\Windows\System32\secur32.dll
15:15:20.0413 4396 C:\Windows\System32\secur32.dll - ok
15:15:20.0413 4396 [ DEE7267C5D232A3B816866872CE199E6 ] C:\Windows\System32\wmsgapi.dll
15:15:20.0413 4396 C:\Windows\System32\wmsgapi.dll - ok
15:15:20.0413 4396 [ BBCDF350817BA86416C0F06B6981BE8D ] C:\Windows\System32\scesrv.dll
15:15:20.0413 4396 C:\Windows\System32\scesrv.dll - ok
15:15:20.0429 4396 [ 3A9C9BAF610B0DD4967086040B3B62A9 ] C:\Windows\System32\srvcli.dll
15:15:20.0429 4396 C:\Windows\System32\srvcli.dll - ok
15:15:20.0429 4396 [ 086F906B1D30C0A5D35FE0F6362DAB21 ] C:\Windows\System32\lsasrv.dll
15:15:20.0429 4396 C:\Windows\System32\lsasrv.dll - ok
15:15:20.0429 4396 [ A744BA6E04C8AA4592818178DBF89521 ] C:\Windows\System32\samsrv.dll
15:15:20.0429 4396 C:\Windows\System32\samsrv.dll - ok
15:15:20.0444 4396 [ 3A061472B38233BAFF9CFEFF2E49C46B ] C:\Windows\System32\cryptdll.dll
15:15:20.0444 4396 C:\Windows\System32\cryptdll.dll - ok
15:15:20.0444 4396 [ 3C073B0C596A0AF84933E7406766B040 ] C:\Windows\System32\wevtapi.dll
15:15:20.0444 4396 C:\Windows\System32\wevtapi.dll - ok
15:15:20.0460 4396 [ 7FBEBD2229EA5FD48D41B199EC2D541C ] C:\Windows\System32\authz.dll
15:15:20.0460 4396 C:\Windows\System32\authz.dll - ok
15:15:20.0460 4396 [ 86FE1B1F8FD42CD0DB641AB1CDB13093 ] C:\Windows\System32\cngaudit.dll
15:15:20.0460 4396 C:\Windows\System32\cngaudit.dll - ok
15:15:20.0460 4396 [ 747B9BA5412422F27934CB21131F0A3E ] C:\Windows\System32\ncrypt.dll
15:15:20.0460 4396 C:\Windows\System32\ncrypt.dll - ok
15:15:20.0476 4396 [ B9A95365E52F421A20E1501935FADDA5 ] C:\Windows\System32\bcrypt.dll
15:15:20.0476 4396 C:\Windows\System32\bcrypt.dll - ok
15:15:20.0476 4396 [ 02B64609F865A39365FF88580DF11738 ] C:\Windows\System32\msprivs.dll
15:15:20.0476 4396 C:\Windows\System32\msprivs.dll - ok
15:15:20.0491 4396 [ 50532FCD7ECF02DD169CE5C485F02534 ] C:\Windows\System32\negoexts.dll
15:15:20.0491 4396 C:\Windows\System32\negoexts.dll - ok
15:15:20.0491 4396 [ C6505DE3561537BA1004D638C2F93F2F ] C:\Windows\System32\netjoin.dll
15:15:20.0491 4396 C:\Windows\System32\netjoin.dll - ok
15:15:20.0491 4396 [ 44E1A196DFCB53B01FE4B855C3B56A15 ] C:\Windows\System32\kerberos.dll
15:15:20.0491 4396 C:\Windows\System32\kerberos.dll - ok
15:15:20.0507 4396 [ D0C2FBB6D97416B0166478FC7AE2B212 ] C:\Windows\System32\cryptsp.dll
15:15:20.0507 4396 C:\Windows\System32\cryptsp.dll - ok
15:15:20.0507 4396 [ 9A9F9F1A77D6A80EE28B57664F00013E ] C:\Windows\System32\mswsock.dll
15:15:20.0507 4396 C:\Windows\System32\mswsock.dll - ok
15:15:20.0507 4396 [ EC7CBFF96B05ECF3D366355B3C64ADCF ] C:\Windows\System32\wship6.dll
15:15:20.0507 4396 C:\Windows\System32\wship6.dll - ok
15:15:20.0522 4396 [ EF12B8385AA2849999008A977918F96B ] C:\Windows\System32\msv1_0.dll
15:15:20.0522 4396 C:\Windows\System32\msv1_0.dll - ok
15:15:20.0522 4396 [ AA339DD8BB128EF66660DFBBB59043D3 ] C:\Windows\System32\netlogon.dll
15:15:20.0522 4396 C:\Windows\System32\netlogon.dll - ok
15:15:20.0538 4396 [ 492D07D79E7024CA310867B526D9636D ] C:\Windows\System32\dnsapi.dll
15:15:20.0538 4396 C:\Windows\System32\dnsapi.dll - ok
15:15:20.0538 4396 [ 8FFE297B8449386E7B6851458B6E474E ] C:\Windows\System32\logoncli.dll
15:15:20.0538 4396 C:\Windows\System32\logoncli.dll - ok
15:15:20.0538 4396 [ 31FFED18C7B836CEC1B559347E32E151 ] C:\Windows\System32\schannel.dll
15:15:20.0538 4396 C:\Windows\System32\schannel.dll - ok
15:15:20.0554 4396 [ 95FB6CA4374E343DDD653FCC43F9D26B ] C:\Windows\System32\wdigest.dll
15:15:20.0554 4396 C:\Windows\System32\wdigest.dll - ok
15:15:20.0554 4396 [ 5D8874A8C11DDDDE29E12DE0E2013493 ] C:\Windows\System32\rsaenh.dll
15:15:20.0554 4396 C:\Windows\System32\rsaenh.dll - ok
15:15:20.0569 4396 [ 8A25506B6948EFBD5A7F37E53CCD36D9 ] C:\Windows\System32\TSpkg.dll
15:15:20.0569 4396 C:\Windows\System32\TSpkg.dll - ok
15:15:20.0569 4396 [ E08088A97F95345E181C3DFCE2C615EF ] C:\Windows\System32\pku2u.dll
15:15:20.0569 4396 C:\Windows\System32\pku2u.dll - ok
15:15:20.0569 4396 [ D6C7780A364C6BBACFA796BAB9F1B374 ] C:\Windows\System32\bcryptprimitives.dll
15:15:20.0569 4396 C:\Windows\System32\bcryptprimitives.dll - ok
15:15:20.0585 4396 [ 90BDEFC5DF334E5100EAA781D798DE1A ] C:\Windows\System32\efslsaext.dll
15:15:20.0585 4396 C:\Windows\System32\efslsaext.dll - ok
15:15:20.0585 4396 [ 52D3D5E3586988D4D9E34ACAAC33105C ] C:\Windows\System32\credssp.dll
15:15:20.0585 4396 C:\Windows\System32\credssp.dll - ok
15:15:20.0600 4396 [ 7CC7DF5B654DA579613F811D8C637E29 ] C:\Windows\System32\ubpm.dll
15:15:20.0600 4396 C:\Windows\System32\ubpm.dll - ok
15:15:20.0600 4396 [ ED78427259134C63ED69804D2132B86C ] C:\Windows\System32\scecli.dll
15:15:20.0600 4396 C:\Windows\System32\scecli.dll - ok
15:15:20.0600 4396 [ 6F68F63794097E54F36474ED4384B759 ] C:\Windows\System32\svchost.exe
15:15:20.0600 4396 C:\Windows\System32\svchost.exe - ok
15:15:20.0616 4396 [ 25FBDEF06C4D92815B353F6E792C8129 ] C:\Windows\System32\umpnpmgr.dll
15:15:20.0616 4396 C:\Windows\System32\umpnpmgr.dll - ok
15:15:20.0616 4396 [ E6EB44ABAAF1F330119F854856C53EBE ] C:\Windows\System32\SPInf.dll
15:15:20.0616 4396 C:\Windows\System32\SPInf.dll - ok
15:15:20.0632 4396 [ CD1B5AD07E5F7FEF30E055DCC9E96180 ] C:\Windows\System32\devrtl.dll
15:15:20.0632 4396 C:\Windows\System32\devrtl.dll - ok
15:15:20.0632 4396 [ 7A17485DC7D8A7AC81321A42CD034519 ] C:\Windows\System32\userenv.dll
15:15:20.0632 4396 C:\Windows\System32\userenv.dll - ok
15:15:20.0632 4396 [ 9C9307C95671AC962F3D6EB3A4A89BAE ] C:\Windows\System32\gpapi.dll
15:15:20.0647 4396 C:\Windows\System32\gpapi.dll - ok
15:15:20.0647 4396 [ F6C011B46FAEEF33536B2E80F48B5CBE ] C:\Windows\System32\pcwum.dll
15:15:20.0647 4396 C:\Windows\System32\pcwum.dll - ok
15:15:20.0647 4396 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] C:\Windows\System32\umpo.dll
15:15:20.0647 4396 C:\Windows\System32\umpo.dll - ok
15:15:20.0663 4396 [ 716175021BDA290504CE434273F666BC ] C:\Windows\System32\powrprof.dll
15:15:20.0663 4396 C:\Windows\System32\powrprof.dll - ok
15:15:20.0663 4396 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] C:\Windows\System32\drivers\luafv.sys
15:15:20.0663 4396 C:\Windows\System32\drivers\luafv.sys - ok
15:15:20.0663 4396 [ 5C627D1B1138676C0A7AB2C2C190D123 ] C:\Windows\System32\rpcss.dll
15:15:20.0663 4396 C:\Windows\System32\rpcss.dll - ok
15:15:20.0678 4396 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] C:\Windows\System32\RpcEpMap.dll
15:15:20.0678 4396 C:\Windows\System32\RpcEpMap.dll - ok
15:15:20.0678 4396 [ 31559F3244C6BC00A52030CAA83B6B91 ] C:\Windows\System32\WSHTCPIP.DLL
15:15:20.0678 4396 C:\Windows\System32\WSHTCPIP.DLL - ok
15:15:20.0694 4396 [ 16E964ABF6D1E0F0CC7822FCA9BA754D ] C:\Windows\System32\wshqos.dll
15:15:20.0694 4396 C:\Windows\System32\wshqos.dll - ok
15:15:20.0694 4396 [ 7675E15D1B2180745E4DA4D26AAD7385 ] C:\Program Files\Microsoft Security Client\MsMpEng.exe
15:15:20.0694 4396 C:\Program Files\Microsoft Security Client\MsMpEng.exe - ok
15:15:20.0694 4396 [ 8077537B1600AF493E7EE1A7A5C90799 ] C:\Program Files\Microsoft Security Client\MpSvc.dll
15:15:20.0694 4396 C:\Program Files\Microsoft Security Client\MpSvc.dll - ok
15:15:20.0710 4396 [ 9AD9E06F8656F296D91FAE8EE5B95A27 ] C:\Windows\System32\FirewallAPI.dll
15:15:20.0710 4396 C:\Windows\System32\FirewallAPI.dll - ok
15:15:20.0710 4396 [ 94E026870A55AAEAFF7853C1754091E9 ] C:\Windows\System32\version.dll
15:15:20.0710 4396 C:\Windows\System32\version.dll - ok
15:15:20.0710 4396 [ 715F03B4C7223349768013EA95D9E5B7 ] C:\Windows\System32\LogonUI.exe
15:15:20.0710 4396 C:\Windows\System32\LogonUI.exe - ok
15:15:20.0725 4396 [ BD3674BE7FC9D8D3732C83E8499576ED ] C:\Windows\System32\wtsapi32.dll
15:15:20.0725 4396 C:\Windows\System32\wtsapi32.dll - ok
15:15:20.0725 4396 [ 1C3588802EE33660E620A046A505A337 ] C:\Program Files\Microsoft Security Client\MpClient.dll
15:15:20.0725 4396 C:\Program Files\Microsoft Security Client\MpClient.dll - ok
15:15:20.0741 4396 [ 1F4492FE41767CDB8B89D17655847CDD ] C:\Windows\System32\ntmarta.dll
15:15:20.0741 4396 C:\Windows\System32\ntmarta.dll - ok
15:15:20.0741 4396 [ 34152997FB906895290E0199AC94B85F ] C:\Windows\System32\authui.dll
15:15:20.0741 4396 C:\Windows\System32\authui.dll - ok
15:15:20.0741 4396 [ B3BFBD758506ECB50C5804AAA76318F9 ] C:\Windows\System32\cryptui.dll
15:15:20.0741 4396 C:\Windows\System32\cryptui.dll - ok
15:15:20.0756 4396 [ 7FA8FDC2C2A27817FD0F624E78D3B50C ] C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac\comctl32.dll
15:15:20.0756 4396 C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac\comctl32.dll - ok
15:15:20.0756 4396 [ 93812FDC01AA864195816CD814445F95 ] C:\Program Files\Microsoft Security Client\SqmApi.dll
15:15:20.0756 4396 C:\Program Files\Microsoft Security Client\SqmApi.dll - ok
15:15:20.0772 4396 [ D68424A84A531FFA39FD8574AFBA9EE4 ] C:\Program Files\Microsoft Security Client\EppManifest.dll
15:15:20.0772 4396 C:\Program Files\Microsoft Security Client\EppManifest.dll - ok
15:15:20.0772 4396 [ D62189E5DDB3534658AD6FDAFCB4B174 ] C:\Windows\System32\atiesrxx.exe
15:15:20.0772 4396 C:\Windows\System32\atiesrxx.exe - ok
15:15:20.0772 4396 [ 6011714C8C5C55CBFFAD24D61E879FBD ] C:\Windows\System32\wevtsvc.dll
15:15:20.0772 4396 C:\Windows\System32\wevtsvc.dll - ok
15:15:20.0788 4396 [ 4E0BDA8060201CA9AB68545E68C1E029 ] C:\Program Files\Microsoft Security Client\MpRTP.dll
15:15:20.0788 4396 C:\Program Files\Microsoft Security Client\MpRTP.dll - ok
15:15:20.0788 4396 [ F3D202F53A222D5F6944D459B73CF967 ] C:\Windows\System32\fltLib.dll
15:15:20.0788 4396 C:\Windows\System32\fltLib.dll - ok
15:15:20.0803 4396 [ E17D455BD1FC7E99994E5C19B1BC3A64 ] C:\Program Files\Microsoft Security Client\MsMpLics.dll
15:15:20.0803 4396 C:\Program Files\Microsoft Security Client\MsMpLics.dll - ok
15:15:20.0803 4396 [ F23FEF6D569FCE88671949894A8BECF1 ] C:\Windows\System32\audiosrv.dll
15:15:20.0803 4396 C:\Windows\System32\audiosrv.dll - ok
15:15:20.0803 4396 [ 227E2C382A1E02F8D4965E664D3BBE43 ] C:\Windows\System32\MMDevAPI.dll
15:15:20.0803 4396 C:\Windows\System32\MMDevAPI.dll - ok
15:15:20.0819 4396 [ F06BB4E336EA57511FDBAFAFCC47DE62 ] C:\Windows\System32\propsys.dll
15:15:20.0819 4396 C:\Windows\System32\propsys.dll - ok
15:15:20.0819 4396 [ 78A1E65207484B7F8D3217507745F47C ] C:\Windows\System32\avrt.dll
15:15:20.0819 4396 C:\Windows\System32\avrt.dll - ok
15:15:20.0834 4396 [ C6B88D62F20AC646C6BD5C032EC2FAF9 ] C:\Windows\System32\drivers\MpFilter.sys
15:15:20.0834 4396 C:\Windows\System32\drivers\MpFilter.sys - ok
15:15:20.0834 4396 [ A3786D1D86945AB951848607C7324DF4 ] C:\Program Files\Microsoft Security Client\NisIpsPlugin.dll
15:15:20.0834 4396 C:\Program Files\Microsoft Security Client\NisIpsPlugin.dll - ok
15:15:20.0834 4396 [ F6A7A8F97C80655B26E9016C7EE8157E ] C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{96B973E3-6A40-4C14-8358-2CD3493E5CB2}\mpengine.dll
15:15:20.0834 4396 C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{96B973E3-6A40-4C14-8358-2CD3493E5CB2}\mpengine.dll - ok
15:15:20.0850 4396 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] C:\Windows\System32\wlansvc.dll
15:15:20.0850 4396 C:\Windows\System32\wlansvc.dll - ok
15:15:20.0850 4396 [ C4C183E6551084039EC862DA1C945E3D ] C:\Windows\System32\FntCache.dll
15:15:20.0850 4396 C:\Windows\System32\FntCache.dll - ok
15:15:20.0866 4396 [ 7DF75678370425F58BB752E371819FF7 ] C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{96B973E3-6A40-4C14-8358-2CD3493E5CB2}\mpasbase.vdm
15:15:20.0866 4396 C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{96B973E3-6A40-4C14-8358-2CD3493E5CB2}\mpasbase.vdm - ok
15:15:20.0866 4396 [ EBF6864B1E4D7DAD88F2917F8DB889E6 ] C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{96B973E3-6A40-4C14-8358-2CD3493E5CB2}\mpasdlta.vdm
15:15:20.0866 4396 C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{96B973E3-6A40-4C14-8358-2CD3493E5CB2}\mpasdlta.vdm - ok
15:15:20.0866 4396 [ E40E80D0304A73E8D269F7141D77250B ] C:\Windows\System32\mmcss.dll
15:15:20.0866 4396 C:\Windows\System32\mmcss.dll - ok
15:15:20.0881 4396 [ 5B3EBFC3DA142324B388DDCC4465E1FF ] C:\Windows\System32\samlib.dll
15:15:20.0881 4396 C:\Windows\System32\samlib.dll - ok
15:15:20.0881 4396 [ 4E9C2DB10F7E6AE91BF761139D4B745B ] C:\Windows\System32\shacct.dll
15:15:20.0881 4396 C:\Windows\System32\shacct.dll - ok
15:15:20.0897 4396 [ D29E998E8277666982B4F0303BF4E7AF ] C:\Windows\System32\uxtheme.dll
15:15:20.0897 4396 C:\Windows\System32\uxtheme.dll - ok
15:15:20.0897 4396 [ 18CAAF21CBA3EAEE17BBA5D3807F29B8 ] C:\Windows\winsxs\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_2b25b14c71ebf230\GdiPlus.dll
15:15:20.0897 4396 C:\Windows\winsxs\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_2b25b14c71ebf230\GdiPlus.dll - ok
15:15:20.0897 4396 [ 3CB6A7286422C72C34DAB54A5DFF1A34 ] C:\Windows\System32\dui70.dll
15:15:20.0897 4396 C:\Windows\System32\dui70.dll - ok
15:15:20.0912 4396 [ 8CCDE014A4CDF84564E03ACE064CA753 ] C:\Windows\System32\duser.dll
15:15:20.0912 4396 C:\Windows\System32\duser.dll - ok
15:15:20.0912 4396 [ D7F1EF374A90709B31591823B002F918 ] C:\Windows\System32\SndVolSSO.dll
15:15:20.0912 4396 C:\Windows\System32\SndVolSSO.dll - ok
15:15:20.0928 4396 [ 896F15A6434D93EDB42519D5E18E6B50 ] C:\Windows\System32\hid.dll
15:15:20.0928 4396 C:\Windows\System32\hid.dll - ok
15:15:20.0928 4396 [ DA1B7075260F3872585BFCDD668C648B ] C:\Windows\System32\dwmapi.dll
15:15:20.0928 4396 C:\Windows\System32\dwmapi.dll - ok
15:15:20.0928 4396 [ 6F8B48F3D343E4B186AB6A9E302B7E16 ] C:\Windows\System32\xmllite.dll
15:15:20.0928 4396 C:\Windows\System32\xmllite.dll - ok
15:15:20.0944 4396 [ 3D7BB6DD7A87B3E36E44CA94444247A8 ] C:\Windows\System32\WindowsCodecs.dll
15:15:20.0944 4396 C:\Windows\System32\WindowsCodecs.dll - ok
15:15:20.0944 4396 [ 9F2BACD5E1776A4BB7CC0EC3C3A4F96D ] C:\Windows\System32\winbrand.dll
15:15:20.0944 4396 C:\Windows\System32\winbrand.dll - ok
15:15:20.0959 4396 [ C2762A57DF0EE85E63CE4893C5215313 ] C:\Windows\System32\VaultCredProvider.dll
15:15:20.0959 4396 C:\Windows\System32\VaultCredProvider.dll - ok
15:15:20.0959 4396 [ 8563BA40DF4F1E93A61B70E2C8B60CF8 ] C:\Windows\System32\SmartcardCredentialProvider.dll
15:15:20.0959 4396 C:\Windows\System32\SmartcardCredentialProvider.dll - ok
15:15:20.0959 4396 [ BF352E73615F5461AA6884472435A544 ] C:\Windows\System32\BioCredProv.dll
15:15:20.0959 4396 C:\Windows\System32\BioCredProv.dll - ok
15:15:20.0975 4396 [ 796B8123A7859AFD3A4AE10514DBAEB5 ] C:\Windows\System32\winbio.dll
15:15:20.0975 4396 C:\Windows\System32\winbio.dll - ok
15:15:20.0975 4396 [ 4403D5ECE7D8323CAF1207D1AA38FA01 ] C:\Windows\System32\credui.dll
15:15:20.0975 4396 C:\Windows\System32\credui.dll - ok
15:15:20.0975 4396 [ EEEA40F0EDB0A6E5359E539E15D0BC77 ] C:\Windows\System32\netapi32.dll
15:15:20.0975 4396 C:\Windows\System32\netapi32.dll - ok
15:15:20.0990 4396 [ 44B9C66177651F3F53C87B665D58D17A ] C:\Windows\System32\vaultcli.dll
15:15:20.0990 4396 C:\Windows\System32\vaultcli.dll - ok
15:15:20.0990 4396 [ 6CECA4C6A489C9B2E6073AFDAAE3F607 ] C:\Windows\System32\netutils.dll
15:15:20.0990 4396 C:\Windows\System32\netutils.dll - ok
15:15:21.0006 4396 [ FC51229C7D4AFA0D6F186133728B95AB ] C:\Windows\System32\samcli.dll
15:15:21.0006 4396 C:\Windows\System32\samcli.dll - ok
15:15:21.0006 4396 [ 3C91392D448F6E5D525A85B7550D8BA9 ] C:\Windows\System32\wkscli.dll
15:15:21.0006 4396 C:\Windows\System32\wkscli.dll - ok
15:15:21.0006 4396 [ 972C3301DB3DA91AE06A95F6B4160B1B ] C:\Windows\System32\certCredProvider.dll
15:15:21.0006 4396 C:\Windows\System32\certCredProvider.dll - ok
15:15:21.0022 4396 [ 87FA0C48C3B2E9FEE518818FE26B15B5 ] C:\Windows\System32\rasplap.dll
15:15:21.0022 4396 C:\Windows\System32\rasplap.dll - ok
15:15:21.0022 4396 [ 019CD868461B646E09BDF04474C19341 ] C:\Windows\System32\rasapi32.dll
15:15:21.0022 4396 C:\Windows\System32\rasapi32.dll - ok
15:15:21.0022 4396 [ B28DEEC597C8DEB70C744C7CF9210E3E ] C:\Windows\System32\rasman.dll
15:15:21.0022 4396 C:\Windows\System32\rasman.dll - ok
15:15:21.0037 4396 [ B53C4B69B695EDA1B7E41D35CA4244E2 ] C:\Windows\System32\rtutils.dll
15:15:21.0037 4396 C:\Windows\System32\rtutils.dll - ok
15:15:21.0037 4396 [ CF636C92B762B26F0B39B38E92380A09 ] C:\Windows\System32\oleacc.dll
15:15:21.0037 4396 C:\Windows\System32\oleacc.dll - ok
15:15:21.0053 4396 [ 019BDD35DE269CB98B22DE8923C2AA3B ] C:\Windows\System32\UIAutomationCore.dll
15:15:21.0053 4396 C:\Windows\System32\UIAutomationCore.dll - ok
15:15:21.0053 4396 [ 00000000000000000000000000000000 ] C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{96B973E3-6A40-4C14-8358-2CD3493E5CB2}\mpavbase.vdm
15:15:21.0053 4396 C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{96B973E3-6A40-4C14-8358-2CD3493E5CB2}\mpavbase.vdm - ok
15:15:21.0053 4396 [ 0A09B51BFC3CC7CF85D7389F3FDFAC0B ] C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{96B973E3-6A40-4C14-8358-2CD3493E5CB2}\mpavdlta.vdm
15:15:21.0053 4396 C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{96B973E3-6A40-4C14-8358-2CD3493E5CB2}\mpavdlta.vdm - ok
15:15:21.0068 4396 [ 16B0A65F52531B769B891DC251ECC6C0 ] C:\Windows\System32\mshtml.dll
15:15:21.0068 4396 C:\Windows\System32\mshtml.dll - ok
15:15:21.0068 4396 [ 588CD0C78A7FAAE4186B5EEA0AF3ED67 ] C:\Windows\System32\adtschema.dll
15:15:21.0068 4396 C:\Windows\System32\adtschema.dll - ok
15:15:21.0084 4396 [ D5CCA1453B98A5801E6D5FF0FF89DC6C ] C:\Windows\System32\audiodg.exe
15:15:21.0084 4396 C:\Windows\System32\audiodg.exe - ok
15:15:21.0084 4396 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] C:\Windows\System32\netprofm.dll
15:15:21.0084 4396 C:\Windows\System32\netprofm.dll - ok
15:15:21.0084 4396 [ 50544D04AD845C43130B70212EC05CCD ] C:\Windows\System32\microsoft-windows-kernel-power-events.dll
15:15:21.0084 4396 C:\Windows\System32\microsoft-windows-kernel-power-events.dll - ok
15:15:21.0100 4396 [ EF2AE43BCD46ABB13FC3E5B2B1935C73 ] C:\Windows\System32\winmm.dll
15:15:21.0100 4396 C:\Windows\System32\winmm.dll - ok
15:15:21.0100 4396 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] C:\Windows\System32\gpsvc.dll
15:15:21.0100 4396 C:\Windows\System32\gpsvc.dll - ok
15:15:21.0115 4396 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] C:\Windows\System32\profsvc.dll
15:15:21.0115 4396 C:\Windows\System32\profsvc.dll - ok
15:15:21.0115 4396 [ 1473768973453DE50DC738C2955FC4DD ] C:\Windows\System32\wdmaud.drv
15:15:21.0115 4396 C:\Windows\System32\wdmaud.drv - ok
15:15:21.0115 4396 [ 58775492FFD419248B08325E583C527F ] C:\Windows\System32\atl.dll
15:15:21.0115 4396 C:\Windows\System32\atl.dll - ok
15:15:21.0131 4396 [ 8560FFFC8EB3A806DCD4F82252CFC8C6 ] C:\Windows\System32\ksuser.dll
15:15:21.0131 4396 C:\Windows\System32\ksuser.dll - ok
15:15:21.0131 4396 [ DC220AE6F64819099F7EBD6F137E32E7 ] C:\Windows\System32\AudioSes.dll
15:15:21.0131 4396 C:\Windows\System32\AudioSes.dll - ok
15:15:21.0146 4396 [ F0344071948D1A1FA732231785A0664C ] C:\Windows\System32\themeservice.dll
15:15:21.0146 4396 C:\Windows\System32\themeservice.dll - ok
15:15:21.0146 4396 [ 4166F82BE4D24938977DD1746BE9B8A0 ] C:\Windows\System32\es.dll
15:15:21.0146 4396 C:\Windows\System32\es.dll - ok
15:15:21.0146 4396 [ 1A47D52E303B7543E4E6026595B95422 ] C:\Windows\System32\comres.dll
15:15:21.0146 4396 C:\Windows\System32\comres.dll - ok
15:15:21.0162 4396 [ C32AB8FA018EF34C0F113BD501436D21 ] C:\Windows\System32\Sens.dll
15:15:21.0162 4396 C:\Windows\System32\Sens.dll - ok
15:15:21.0162 4396 [ 10AC5CE9F78DC281A1BBD9B8CC587B8A ] C:\Windows\System32\msacm32.dll
15:15:21.0162 4396 C:\Windows\System32\msacm32.dll - ok
15:15:21.0162 4396 [ 1B7C3A37362C7B2890168C5FC61C8D9B ] C:\Windows\System32\msacm32.drv
15:15:21.0162 4396 C:\Windows\System32\msacm32.drv - ok
15:15:21.0178 4396 [ CA2A0750ED830678997695FF61B04C30 ] C:\Windows\System32\midimap.dll
15:15:21.0178 4396 C:\Windows\System32\midimap.dll - ok
15:15:21.0178 4396 [ 46BB91A169B9B31FF44EB04C48EC1D41 ] C:\Windows\System32\nlaapi.dll
15:15:21.0178 4396 C:\Windows\System32\nlaapi.dll - ok
15:15:21.0193 4396 [ 1538831CF8AD2979A04C423779465827 ] C:\Windows\System32\drivers\lltdio.sys
15:15:21.0193 4396 C:\Windows\System32\drivers\lltdio.sys - ok
15:15:21.0193 4396 [ A77BE7CB3222B4FB0AC6C71D1C2698D4 ] C:\Windows\System32\dsrole.dll
15:15:21.0193 4396 C:\Windows\System32\dsrole.dll - ok
15:15:21.0193 4396 [ BE097F5BB10F9079FCEB2DC4E7E20F02 ] C:\Windows\System32\slc.dll
15:15:21.0193 4396 C:\Windows\System32\slc.dll - ok
15:15:21.0209 4396 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] C:\Windows\System32\uxsms.dll
15:15:21.0209 4396 C:\Windows\System32\uxsms.dll - ok
15:15:21.0209 4396 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] C:\Windows\System32\drivers\nwifi.sys
15:15:21.0209 4396 C:\Windows\System32\drivers\nwifi.sys - ok
15:15:21.0224 4396 [ 136185F9FB2CC61E573E676AA5402356 ] C:\Windows\System32\drivers\ndisuio.sys
15:15:21.0224 4396 C:\Windows\System32\drivers\ndisuio.sys - ok
15:15:21.0224 4396 [ DDC86E4F8E7456261E637E3552E804FF ] C:\Windows\System32\drivers\rspndr.sys
15:15:21.0224 4396 C:\Windows\System32\drivers\rspndr.sys - ok
15:15:21.0224 4396 [ 2B81776DA02017A37FE26C662827470E ] C:\Windows\System32\IPHLPAPI.DLL
15:15:21.0224 4396 C:\Windows\System32\IPHLPAPI.DLL - ok
15:15:21.0240 4396 [ F993A32249B66C9D622EA5592A8B76B8 ] C:\Windows\System32\lmhsvc.dll
15:15:21.0240 4396 C:\Windows\System32\lmhsvc.dll - ok
15:15:21.0240 4396 [ D54BFDF3E0C953F823B3D0BFE4732528 ] C:\Windows\System32\nsisvc.dll
15:15:21.0240 4396 C:\Windows\System32\nsisvc.dll - ok
15:15:21.0240 4396 [ F63389F8AF212C661906EFBD88EAD11F ] C:\Windows\System32\atieclxx.exe
15:15:21.0240 4396 C:\Windows\System32\atieclxx.exe - ok
15:15:21.0256 4396 [ 9BC8610C32C96A2983A65DC21CAFA921 ] C:\Windows\System32\UXInit.dll
15:15:21.0256 4396 C:\Windows\System32\UXInit.dll - ok
15:15:21.0256 4396 [ 4C9210E8F4E052F6A4EB87716DA0C24C ] C:\Windows\System32\winnsi.dll
15:15:21.0256 4396 C:\Windows\System32\winnsi.dll - ok
15:15:21.0256 4396 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] C:\Windows\System32\dhcpcore.dll
15:15:21.0256 4396 C:\Windows\System32\dhcpcore.dll - ok
15:15:21.0271 4396 [ B73A6E4B319AFFE64582AC5C1801BB3F ] C:\Windows\System32\nrpsrv.dll
15:15:21.0271 4396 C:\Windows\System32\nrpsrv.dll - ok
15:15:21.0271 4396 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] C:\Windows\System32\dnsrslvr.dll
15:15:21.0271 4396 C:\Windows\System32\dnsrslvr.dll - ok
15:15:21.0287 4396 [ F9EC845C5EECF20E9A67F9F805F2EF1F ] C:\Windows\System32\keyiso.dll
15:15:21.0287 4396 C:\Windows\System32\keyiso.dll - ok
15:15:21.0287 4396 [ 346041919B050C740F2FA14DFD13A0D3 ] C:\Windows\System32\atiadlxx.dll
15:15:21.0287 4396 C:\Windows\System32\atiadlxx.dll - ok
15:15:21.0287 4396 [ 3CC16A849E6092E43909F48EF0E60306 ] C:\Windows\System32\dhcpcore6.dll
15:15:21.0287 4396 C:\Windows\System32\dhcpcore6.dll - ok
15:15:21.0302 4396 [ 87356377F31DA5F20A833811CD59499C ] C:\Windows\System32\eapphost.dll
15:15:21.0302 4396 C:\Windows\System32\eapphost.dll - ok
15:15:21.0302 4396 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] C:\Windows\System32\eapsvc.dll
15:15:21.0302 4396 C:\Windows\System32\eapsvc.dll - ok
15:15:21.0302 4396 [ D07EB640618F96490DB88C3CE58DB608 ] C:\Windows\System32\FWPUCLNT.DLL
15:15:21.0302 4396 C:\Windows\System32\FWPUCLNT.DLL - ok
15:15:21.0318 4396 [ 9FCA3A84338ADEF2AFF67CDA46EF8539 ] C:\Windows\System32\umb.dll
15:15:21.0318 4396 C:\Windows\System32\umb.dll - ok
15:15:21.0318 4396 [ A648C4A06DE367065B24056D067B4460 ] C:\Windows\System32\wlanmsm.dll
15:15:21.0318 4396 C:\Windows\System32\wlanmsm.dll - ok
15:15:21.0334 4396 [ 885D0942E0F28DB90919BE3129ECF279 ] C:\Windows\System32\dnsext.dll
15:15:21.0334 4396 C:\Windows\System32\dnsext.dll - ok
15:15:21.0334 4396 [ F568F7C08458D69E4FCD8675BBB107E4 ] C:\Windows\System32\dhcpcsvc.dll
15:15:21.0334 4396 C:\Windows\System32\dhcpcsvc.dll - ok
15:15:21.0334 4396 [ 3C06D5A929B798D0B13F6481242A0FD2 ] C:\Windows\System32\dhcpcsvc6.dll
15:15:21.0334 4396 C:\Windows\System32\dhcpcsvc6.dll - ok
15:15:21.0349 4396 [ 5AA945234E9D4CCE4F715276B9AA712C ] C:\Windows\System32\imageres.dll
15:15:21.0349 4396 C:\Windows\System32\imageres.dll - ok
15:15:21.0349 4396 [ 06A1386B6E3A0CBC368665C1840906F4 ] C:\Windows\System32\wlansec.dll
15:15:21.0349 4396 C:\Windows\System32\wlansec.dll - ok
15:15:21.0349 4396 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] C:\Windows\System32\MPSSVC.dll
15:15:21.0349 4396 C:\Windows\System32\MPSSVC.dll - ok
15:15:21.0365 4396 [ DA6B67270FD9DB3697B20FCE94950741 ] C:\Windows\System32\drivers\fltMgr.sys
15:15:21.0365 4396 C:\Windows\System32\drivers\fltMgr.sys - ok
15:15:21.0365 4396 [ A3DB3C17EE6CAE65D53602B4E80BCCBC ] C:\Windows\System32\PSHED.DLL
15:15:21.0365 4396 C:\Windows\System32\PSHED.DLL - ok
15:15:21.0380 4396 [ 73FCB7919DEE80EE556F2E498594EBAE ] C:\Windows\System32\onex.dll
15:15:21.0380 4396 C:\Windows\System32\onex.dll - ok
15:15:21.0380 4396 [ 5EDBB34736DD7AC1A73CF8792A835E10 ] C:\Windows\System32\AudioEng.dll
15:15:21.0380 4396 C:\Windows\System32\AudioEng.dll - ok
15:15:21.0380 4396 [ B0945E538CF906BBDDC5A11C8EE868CC ] C:\Windows\System32\microsoft-windows-kernel-processor-power-events.dll
15:15:21.0380 4396 C:\Windows\System32\microsoft-windows-kernel-processor-power-events.dll - ok
15:15:21.0396 4396 [ 0D753307D274F3688BD21C377B616700 ] C:\Windows\System32\eappcfg.dll
15:15:21.0396 4396 C:\Windows\System32\eappcfg.dll - ok
15:15:21.0396 4396 [ 65522E77A1360DBC8D199DA3BF5EFFE4 ] C:\Windows\System32\eappprxy.dll
15:15:21.0396 4396 C:\Windows\System32\eappprxy.dll - ok
15:15:21.0412 4396 [ C1395286B822E306B4FE1568A8A77813 ] C:\Windows\System32\AUDIOKSE.dll
15:15:21.0412 4396 C:\Windows\System32\AUDIOKSE.dll - ok
15:15:21.0412 4396 [ 730BF204A595D5B6D7DC57A247CC741C ] C:\Windows\System32\wlgpclnt.dll
15:15:21.0412 4396 C:\Windows\System32\wlgpclnt.dll - ok
15:15:21.0412 4396 [ 97E43F324BE1503CB2FFB058534688DA ] C:\Windows\System32\l2gpstore.dll
15:15:21.0412 4396 C:\Windows\System32\l2gpstore.dll - ok
15:15:21.0427 4396 [ 7F1B4C6FF3B85F9ADF74055187B8A22C ] C:\Windows\System32\wlanutil.dll
15:15:21.0427 4396 C:\Windows\System32\wlanutil.dll - ok
15:15:21.0427 4396 [ 7D5645EE0EA77D539828433D9B95F5EB ] C:\Windows\System32\WinSCard.dll
15:15:21.0427 4396 C:\Windows\System32\WinSCard.dll - ok
15:15:21.0427 4396 [ 9B9F88813A3AB22F5678BF26A2F62F5D ] C:\Windows\System32\RtkAPO64.dll
15:15:21.0443 4396 C:\Windows\System32\RtkAPO64.dll - ok
15:15:21.0443 4396 [ 99B91C5D2FCEF218CAD3600ECB62A799 ] C:\Windows\System32\msxml6.dll
15:15:21.0443 4396 C:\Windows\System32\msxml6.dll - ok
15:15:21.0443 4396 [ B26B5EB92C3D91885CC8595B03DFB3DB ] C:\Program Files\Microsoft Security Client\MpAsDesc.dll
15:15:21.0443 4396 C:\Program Files\Microsoft Security Client\MpAsDesc.dll - ok
15:15:21.0458 4396 [ F5CEF064C7E6D95DA86B9D064A56A969 ] C:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll
15:15:21.0458 4396 C:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll - ok
15:15:21.0458 4396 [ 218A400108F280428FA22282D3268BBC ] C:\Windows\System32\wscapi.dll
15:15:21.0458 4396 C:\Windows\System32\wscapi.dll - ok
15:15:21.0458 4396 [ 6F3C559B82F2912354BE5B098744CC8C ] C:\Windows\System32\WMALFXGFXDSP.dll
15:15:21.0458 4396 C:\Windows\System32\WMALFXGFXDSP.dll - ok
15:15:21.0474 4396 [ AAF932B4011D14052955D4B212A4DA8D ] C:\Windows\System32\shsvcs.dll
15:15:21.0474 4396 C:\Windows\System32\shsvcs.dll - ok
15:15:21.0474 4396 [ 54B5DCD55B223BC5DF50B82E1E9E86B1 ] C:\Windows\System32\mfplat.dll
15:15:21.0474 4396 C:\Windows\System32\mfplat.dll - ok
15:15:21.0490 4396 [ 262F6592C3299C005FD6BEC90FC4463A ] C:\Windows\System32\schedsvc.dll
15:15:21.0490 4396 C:\Windows\System32\schedsvc.dll - ok
15:15:21.0490 4396 [ BC414631876B2F28B8DAB08E849C12C5 ] C:\Windows\System32\ktmw32.dll
15:15:21.0490 4396 C:\Windows\System32\ktmw32.dll - ok
15:15:21.0490 4396 [ 6DC4A7242F565C9E9C9CCC7BB0FA75C7 ] C:\Windows\System32\taskcomp.dll
15:15:21.0490 4396 C:\Windows\System32\taskcomp.dll - ok
15:15:21.0505 4396 [ 945E54F23C72D37B8CD1987AF0DB63BF ] C:\Windows\System32\fveapi.dll
15:15:21.0505 4396 C:\Windows\System32\fveapi.dll - ok
15:15:21.0505 4396 [ 891ECFD08E2C538B7948CBC45106D697 ] C:\Windows\System32\fvecerts.dll
15:15:21.0505 4396 C:\Windows\System32\fvecerts.dll - ok
15:15:21.0505 4396 [ 694865362F0965779F92BCFE97712323 ] C:\Windows\System32\tbs.dll
15:15:21.0505 4396 C:\Windows\System32\tbs.dll - ok
15:15:21.0521 4396 [ 8269210DAF3B12BC8300631B28A2A442 ] C:\Windows\System32\wiarpc.dll
15:15:21.0521 4396 C:\Windows\System32\wiarpc.dll - ok
15:15:21.0521 4396 [ 03706015DB44368375AEBE6339490E66 ] C:\Windows\System32\netcfgx.dll
15:15:21.0521 4396 C:\Windows\System32\netcfgx.dll - ok
15:15:21.0536 4396 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] C:\Windows\System32\drivers\http.sys
15:15:21.0536 4396 C:\Windows\System32\drivers\http.sys - ok
15:15:21.0536 4396 [ 49003B357D101CDC474937437ECF5ABC ] C:\Windows\System32\drivers\vwifimp.sys
15:15:21.0536 4396 C:\Windows\System32\drivers\vwifimp.sys - ok
15:15:21.0536 4396 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] C:\Windows\System32\spoolsv.exe
15:15:21.0536 4396 C:\Windows\System32\spoolsv.exe - ok
15:15:21.0552 4396 [ 82974D6A2FD19445CC5171FC378668A4 ] C:\Windows\System32\BFE.DLL
15:15:21.0552 4396 C:\Windows\System32\BFE.DLL - ok
15:15:21.0552 4396 [ 27E461F0BE5BFF5FC737328F749538C3 ] C:\Windows\System32\drivers\srvnet.sys
15:15:21.0552 4396 C:\Windows\System32\drivers\srvnet.sys - ok
15:15:21.0552 4396 [ 6C02A83164F5CC0A262F4199F0871CF5 ] C:\Windows\System32\drivers\bowser.sys
15:15:21.0552 4396 C:\Windows\System32\drivers\bowser.sys - ok
15:15:21.0568 4396 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] C:\Windows\System32\drivers\mpsdrv.sys
15:15:21.0568 4396 C:\Windows\System32\drivers\mpsdrv.sys - ok
15:15:21.0568 4396 [ A5D9106A73DC88564C825D317CAC68AC ] C:\Windows\System32\drivers\mrxsmb.sys
15:15:21.0568 4396 C:\Windows\System32\drivers\mrxsmb.sys - ok
15:15:21.0583 4396 [ D711B3C1D5F42C0C2415687BE09FC163 ] C:\Windows\System32\drivers\mrxsmb10.sys
15:15:21.0583 4396 C:\Windows\System32\drivers\mrxsmb10.sys - ok
15:15:21.0583 4396 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] C:\Windows\System32\drivers\mrxsmb20.sys
15:15:21.0583 4396 C:\Windows\System32\drivers\mrxsmb20.sys - ok
15:15:21.0583 4396 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] C:\Windows\System32\drivers\srv2.sys
15:15:21.0583 4396 C:\Windows\System32\drivers\srv2.sys - ok
15:15:21.0599 4396 [ C67F8A962B2534224D5908D16D2AD3CE ] C:\Windows\System32\wfapigp.dll
15:15:21.0599 4396 C:\Windows\System32\wfapigp.dll - ok
15:15:21.0599 4396 [ 851A1382EED3E3A7476DB004F4EE3E1A ] C:\Windows\System32\wkssvc.dll
15:15:21.0599 4396 C:\Windows\System32\wkssvc.dll - ok
15:15:21.0614 4396 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] C:\Windows\System32\drivers\srv.sys
15:15:21.0614 4396 C:\Windows\System32\drivers\srv.sys - ok
15:15:21.0614 4396 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] C:\Windows\System32\browser.dll
15:15:21.0614 4396 C:\Windows\System32\browser.dll - ok
15:15:21.0630 4396 [ D9F42719019740BAA6D1C6D536CBDAA6 ] C:\Windows\System32\srvsvc.dll
15:15:21.0630 4396 C:\Windows\System32\srvsvc.dll - ok
15:15:21.0630 4396 [ 1834B31C749B86DAC233BBBA1C03BC48 ] C:\Windows\System32\mscms.dll
15:15:21.0630 4396 C:\Windows\System32\mscms.dll - ok
15:15:21.0630 4396 [ CFEFA40DDE34659BE5211966EAD86437 ] C:\Windows\System32\netmsg.dll
15:15:21.0630 4396 C:\Windows\System32\netmsg.dll - ok
15:15:21.0646 4396 [ FF80CAD87555E8E4D2CFD7B9058343F8 ] C:\Windows\System32\sscore.dll
15:15:21.0646 4396 C:\Windows\System32\sscore.dll - ok
15:15:21.0646 4396 [ 3AEAA8B561E63452C655DC0584922257 ] C:\Windows\System32\pcasvc.dll
15:15:21.0646 4396 C:\Windows\System32\pcasvc.dll - ok
15:15:21.0661 4396 [ 6313F223E817CC09AA41811DAA7F541D ] C:\Windows\System32\snmptrap.exe
15:15:21.0661 4396 C:\Windows\System32\snmptrap.exe - ok
15:15:21.0661 4396 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] C:\Windows\System32\sstpsvc.dll
15:15:21.0661 4396 C:\Windows\System32\sstpsvc.dll - ok
15:15:21.0661 4396 [ 81749E073AC5857B044A686B406E5244 ] C:\Windows\System32\clusapi.dll
15:15:21.0661 4396 C:\Windows\System32\clusapi.dll - ok
15:15:21.0677 4396 [ 908ACB1F594274965A53926B10C81E89 ] C:\Windows\System32\provsvc.dll
15:15:21.0677 4396 C:\Windows\System32\provsvc.dll - ok
15:15:21.0677 4396 [ 344FCC9850C3A8A3B4D3C65151AF8E4C ] C:\Windows\System32\resutils.dll
15:15:21.0677 4396 C:\Windows\System32\resutils.dll - ok
15:15:21.0692 4396 [ E9A0777DCA9148157E0EF9B71D7DE353 ] C:\Windows\System32\RdpGroupPolicyExtension.dll
15:15:21.0692 4396 C:\Windows\System32\RdpGroupPolicyExtension.dll - ok
15:15:21.0692 4396 [ 0015ACFBBDD164A8A730009908868CA7 ] C:\Windows\System32\winspool.drv
15:15:21.0692 4396 C:\Windows\System32\winspool.drv - ok
15:15:21.0692 4396 [ 88351B29B622B30962D2FEB6CA8D860B ] C:\Windows\System32\rasadhlp.dll
15:15:21.0692 4396 C:\Windows\System32\rasadhlp.dll - ok
15:15:21.0708 4396 [ 45CFBFA8EDC3DF4E2B7FB0D0260FE051 ] C:\Windows\System32\localspl.dll
15:15:21.0708 4396 C:\Windows\System32\localspl.dll - ok
15:15:21.0708 4396 [ 3285481F5C12305CA104A6C493CA5A0B ] C:\Windows\System32\spoolss.dll
15:15:21.0708 4396 C:\Windows\System32\spoolss.dll - ok
15:15:21.0724 4396 [ 19E41CCCEE697CC9465396B370929792 ] C:\Windows\System32\FXSMON.dll
15:15:21.0724 4396 C:\Windows\System32\FXSMON.dll - ok
15:15:21.0724 4396 [ 62A0ED06E9FF55EEF51B27EC4839EE0B ] C:\Windows\System32\hpz3lw71.dll
15:15:21.0724 4396 C:\Windows\System32\hpz3lw71.dll - ok
15:15:21.0724 4396 [ C5AC93CF3BA30D367FB49148A2B673B9 ] C:\Windows\System32\PrintIsolationProxy.dll
15:15:21.0724 4396 C:\Windows\System32\PrintIsolationProxy.dll - ok
15:15:21.0739 4396 [ 32A3C8600AF124CBAAD845F13CFAE3CB ] C:\Windows\System32\tcpmon.dll
15:15:21.0739 4396 C:\Windows\System32\tcpmon.dll - ok
15:15:21.0739 4396 [ 93518C6EDE0B61BCBD02BDB02BD05FEE ] C:\Windows\System32\snmpapi.dll
15:15:21.0739 4396 C:\Windows\System32\snmpapi.dll - ok
15:15:21.0755 4396 [ FFF9D00CF16397C64317F213484F94BD ] C:\Windows\System32\wsnmp32.dll
15:15:21.0755 4396 C:\Windows\System32\wsnmp32.dll - ok
15:15:21.0755 4396 [ DF72A9936D0C3F517083119648814B09 ] C:\Windows\System32\usbmon.dll
15:15:21.0755 4396 C:\Windows\System32\usbmon.dll - ok
15:15:21.0755 4396 [ A1D7E3ADCDB07DDB6F423862DCB1A52B ] C:\Windows\System32\WSDMon.dll
15:15:21.0755 4396 C:\Windows\System32\WSDMon.dll - ok
15:15:21.0770 4396 [ F1B205F932F62F94506A5F332C895DAF ] C:\Windows\System32\WSDApi.dll
15:15:21.0770 4396 C:\Windows\System32\WSDApi.dll - ok
15:15:21.0770 4396 [ C55516D98DD5D8F0153C2A9B4227DA86 ] C:\Windows\System32\webservices.dll
15:15:21.0770 4396 C:\Windows\System32\webservices.dll - ok
15:15:21.0770 4396 [ B5055B51BAA0FD0A736A88653DA3C1C0 ] C:\Windows\System32\fundisc.dll
15:15:21.0770 4396 C:\Windows\System32\fundisc.dll - ok
15:15:21.0786 4396 [ 4581716B4BF76ACFD8E167EB0B26D82A ] C:\Windows\System32\fdPnp.dll
15:15:21.0786 4396 C:\Windows\System32\fdPnp.dll - ok
15:15:21.0786 4396 [ 1D626FE2E13C1CE49CA0136CFF214E93 ] C:\Windows\System32\spool\prtprocs\x64\winprint.dll
15:15:21.0786 4396 C:\Windows\System32\spool\prtprocs\x64\winprint.dll - ok
15:15:21.0802 4396 [ 6FB9BE56891EA4E85B4C9BDD4E9AFA69 ] C:\Windows\System32\spool\prtprocs\x64\hpzppw71.dll
15:15:21.0802 4396 C:\Windows\System32\spool\prtprocs\x64\hpzppw71.dll - ok
15:15:21.0802 4396 [ 67CF11E00D026A5C0C88EA5F84D501E5 ] C:\Windows\System32\win32spl.dll
15:15:21.0802 4396 C:\Windows\System32\win32spl.dll - ok
15:15:21.0802 4396 [ 507D5567A0A4EE86C4B0CE2CE1777025 ] C:\Windows\System32\inetpp.dll
15:15:21.0817 4396 C:\Windows\System32\inetpp.dll - ok
15:15:21.0817 4396 [ 1BF0CB861A48FEB1638228760750F3CB ] C:\Windows\System32\cscapi.dll
15:15:21.0817 4396 C:\Windows\System32\cscapi.dll - ok
15:15:21.0817 4396 [ 620C92D6EEFA9853A3EAD41B5EB9B5FD ] C:\Program Files\SUPERAntiSpyware\SASCore64.exe
15:15:21.0817 4396 C:\Program Files\SUPERAntiSpyware\SASCore64.exe - ok
15:15:21.0833 4396 [ B362181ED3771DC03B4141927C80F801 ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
15:15:21.0833 4396 C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe - ok
15:15:21.0833 4396 [ A2B0924D50F4435FD389499047CE553A ] C:\Windows\SysWOW64\ntdll.dll
15:15:21.0833 4396 C:\Windows\SysWOW64\ntdll.dll - ok
15:15:21.0833 4396 [ 70833F5A59F65908698093889C34BCA2 ] C:\Windows\System32\wow64.dll
15:15:21.0833 4396 C:\Windows\System32\wow64.dll - ok
15:15:21.0848 4396 [ 5674E21E82CFBEA36DDAD5DB285D6DBC ] C:\Windows\System32\wow64win.dll
15:15:21.0848 4396 C:\Windows\System32\wow64win.dll - ok
15:15:21.0848 4396 [ 3EE3AA76D8AB6D5644C4C8F34471CEB3 ] C:\Windows\System32\wow64cpu.dll
15:15:21.0848 4396 C:\Windows\System32\wow64cpu.dll - ok
15:15:21.0864 4396 [ 365A5034093AD9E04F433046C4CDF6AB ] C:\Windows\SysWOW64\kernel32.dll
15:15:21.0864 4396 C:\Windows\SysWOW64\kernel32.dll - ok
15:15:21.0864 4396 [ 1B7343C3765638D4D17CB925F84F8ABE ] C:\Windows\SysWOW64\KernelBase.dll
15:15:21.0864 4396 C:\Windows\SysWOW64\KernelBase.dll - ok
15:15:21.0864 4396 [ 5E0DB2D8B2750543CD2EBB9EA8E6CDD3 ] C:\Windows\SysWOW64\user32.dll
15:15:21.0864 4396 C:\Windows\SysWOW64\user32.dll - ok
15:15:21.0880 4396 [ 56E3313690866F99CD17AA1342F64AE1 ] C:\Windows\SysWOW64\gdi32.dll
15:15:21.0880 4396 C:\Windows\SysWOW64\gdi32.dll - ok
15:15:21.0880 4396 [ CC23295DA8F7B5C53F93804D2F5D30EB ] C:\Windows\SysWOW64\lpk.dll
15:15:21.0880 4396 C:\Windows\SysWOW64\lpk.dll - ok
15:15:21.0895 4396 [ B7230010D97787AF3D25E4C82F2B06B9 ] C:\Windows\SysWOW64\usp10.dll
15:15:21.0895 4396 C:\Windows\SysWOW64\usp10.dll - ok
15:15:21.0895 4396 [ 9DC80A8AAAAAC397BDAB3C67165A824E ] C:\Windows\SysWOW64\msvcrt.dll
15:15:21.0895 4396 C:\Windows\SysWOW64\msvcrt.dll - ok
15:15:21.0895 4396 [ D67472125471784DE7147946EDA25FEB ] C:\Windows\SysWOW64\advapi32.dll
15:15:21.0895 4396 C:\Windows\SysWOW64\advapi32.dll - ok
15:15:21.0911 4396 [ 4DC999CED9429939D75682EBD7D48901 ] C:\Windows\SysWOW64\rpcrt4.dll
15:15:21.0911 4396 C:\Windows\SysWOW64\rpcrt4.dll - ok
15:15:21.0911 4396 [ CFC97F07904067A1E5FAE195D534DA3A ] C:\Windows\SysWOW64\sechost.dll
15:15:21.0911 4396 C:\Windows\SysWOW64\sechost.dll - ok
15:15:21.0911 4396 [ F08F6FCD09F9BE94C37ACC1B344685FF ] C:\Windows\SysWOW64\cryptbase.dll
15:15:21.0911 4396 C:\Windows\SysWOW64\cryptbase.dll - ok
15:15:21.0926 4396 [ E02781D4871844DCD30DF1D69A650F78 ] C:\Windows\SysWOW64\shell32.dll
15:15:21.0926 4396 C:\Windows\SysWOW64\shell32.dll - ok
15:15:21.0926 4396 [ 42B924C5F3924C1EB2539F22C10D7DF1 ] C:\Windows\SysWOW64\sspicli.dll
15:15:21.0926 4396 C:\Windows\SysWOW64\sspicli.dll - ok
15:15:21.0942 4396 [ 8CC3C111D653E96F3EA1590891491D71 ] C:\Windows\SysWOW64\shlwapi.dll
15:15:21.0942 4396 C:\Windows\SysWOW64\shlwapi.dll - ok
15:15:21.0942 4396 [ 928CF7268086631F54C3D8E17238C6DD ] C:\Windows\SysWOW64\ole32.dll
15:15:21.0942 4396 C:\Windows\SysWOW64\ole32.dll - ok
15:15:21.0942 4396 [ 6C765E82B57F2E66CE9C54AC238471D9 ] C:\Windows\SysWOW64\oleaut32.dll
15:15:21.0942 4396 C:\Windows\SysWOW64\oleaut32.dll - ok
15:15:21.0958 4396 [ CC09E0C9A2D89C6E71D093DC8BD121B7 ] C:\Windows\SysWOW64\crypt32.dll
15:15:21.0958 4396 C:\Windows\SysWOW64\crypt32.dll - ok
15:15:21.0958 4396 [ 938F39B50BAFE13D6F58C7790682C010 ] C:\Windows\SysWOW64\msasn1.dll
15:15:21.0958 4396 C:\Windows\SysWOW64\msasn1.dll - ok
15:15:21.0973 4396 [ 68EAAEDF0365168B804E8728368FA946 ] C:\Windows\SysWOW64\wintrust.dll
15:15:21.0973 4396 C:\Windows\SysWOW64\wintrust.dll - ok
15:15:21.0973 4396 [ CDBE9690CF2B8409FACAD94FAC9479C9 ] C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcr90.dll
15:15:21.0973 4396 C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcr90.dll - ok
15:15:21.0973 4396 [ A6F09E5669D9A19035F6D942CAA15882 ] C:\Windows\SysWOW64\imm32.dll
15:15:21.0973 4396 C:\Windows\SysWOW64\imm32.dll - ok
15:15:21.0989 4396 [ C9618BC9B2B0FD7C1138D8774795A79B ] C:\Windows\SysWOW64\msctf.dll
15:15:21.0989 4396 C:\Windows\SysWOW64\msctf.dll - ok
15:15:21.0989 4396 [ 8A7A39430BB7F05B24167EDBBA096B71 ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
15:15:21.0989 4396 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe - ok
15:15:22.0004 4396 [ 349B1D5D8D1B5A7B10BCD01470BD5F64 ] C:\Windows\System32\msvcp110.dll
15:15:22.0004 4396 C:\Windows\System32\msvcp110.dll - ok
15:15:22.0004 4396 [ C72ABC6B7B90A61364B6DD889B5435F3 ] C:\Windows\System32\msvcr110.dll
15:15:22.0004 4396 C:\Windows\System32\msvcr110.dll - ok
15:15:22.0004 4396 [ E8CCB797DAF80779C768BD3A9FC8FCAF ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys
15:15:22.0004 4396 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys - ok
15:15:22.0020 4396 [ CC973DF53E95799E6CAD5383EF76146F ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll
15:15:22.0020 4396 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll - ok
15:15:22.0020 4396 [ 7ADC3AFDA583E907FD744CFB9FC20CC6 ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\device.dll
15:15:22.0020 4396 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\device.dll - ok
15:15:22.0020 4396 [ F59E095B0BEF0CEED72DB039DAC3CD68 ] C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_88e41e092fab0294\msvcp80.dll
15:15:22.0020 4396 C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_88e41e092fab0294\msvcp80.dll - ok
15:15:22.0036 4396 [ 8BC7F8F0B7AE856D910B3FDD895EC50E ] C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_88e41e092fab0294\msvcr80.dll
15:15:22.0036 4396 C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_88e41e092fab0294\msvcr80.dll - ok
15:15:22.0036 4396 [ 519B3C4A3DD43CF3B4BB10A20A1DD86E ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\platform.dll
15:15:22.0036 4396 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\platform.dll - ok
15:15:22.0051 4396 [ 371948BC5911ABA06168FAC91ED25F06 ] C:\Windows\System32\msxml3.dll
15:15:22.0051 4396 C:\Windows\System32\msxml3.dll - ok
15:15:22.0051 4396 [ FB4045578F5180BDB1963AB352B78548 ] C:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
15:15:22.0051 4396 C:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll - ok
15:15:22.0051 4396 [ 66C87DB880052104808507D6FA84D68E ] C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
15:15:22.0051 4396 C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL - ok
15:15:22.0067 4396 [ D233C7FEAE3FAA25F93A9E6B46815ADC ] C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc251\msvcr90.dll
15:15:22.0067 4396 C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc251\msvcr90.dll - ok
15:15:22.0067 4396 [ 7F6BBF7198F35E5BAF4CE1778AFCC96B ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
15:15:22.0067 4396 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll - ok
15:15:22.0082 4396 [ 357BE883C5236BFC7341CB9E82308908 ] C:\Windows\System32\wlanapi.dll
15:15:22.0082 4396 C:\Windows\System32\wlanapi.dll - ok
15:15:22.0082 4396 [ A8EDB86FC2A4D6D1285E4C70384AC35A ] C:\Windows\System32\dllhost.exe
15:15:22.0082 4396 C:\Windows\System32\dllhost.exe - ok
15:15:22.0082 4396 [ 9028D1621C43DF8DFBD1C76860412A11 ] C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_a4d3b9377117c3df\comctl32.dll
15:15:22.0082 4396 C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_a4d3b9377117c3df\comctl32.dll - ok
15:15:22.0098 4396 [ A0A2C1D812C231C9BFE119FDC68E341B ] C:\Windows\System32\IDStore.dll
15:15:22.0098 4396 C:\Windows\System32\IDStore.dll - ok
15:15:22.0098 4396 [ 639774C9ACD063F028F6084ABF5593AD ] C:\Windows\System32\taskhost.exe
15:15:22.0098 4396 C:\Windows\System32\taskhost.exe - ok
15:15:22.0114 4396 [ 65EA57712340C09B1B0C427B4848AE05 ] C:\Windows\System32\taskeng.exe
15:15:22.0114 4396 C:\Windows\System32\taskeng.exe - ok
15:15:22.0114 4396 [ 1F1CA9E99DD5BF918BE0BF30B5A42FDA ] C:\Windows\System32\MsCtfMonitor.dll
15:15:22.0114 4396 C:\Windows\System32\MsCtfMonitor.dll - ok
15:15:22.0114 4396 [ 23566F9723771108D2E6CD768AC27407 ] C:\Windows\System32\AtBroker.exe
15:15:22.0114 4396 C:\Windows\System32\AtBroker.exe - ok
15:15:22.0129 4396 [ 6CEF7856A3EFAC59470F6208F0F585CE ] C:\Windows\System32\mpr.dll
15:15:22.0129 4396 C:\Windows\System32\mpr.dll - ok
15:15:22.0129 4396 [ BAFE84E637BF7388C96EF48D4D3FDD53 ] C:\Windows\System32\userinit.exe
15:15:22.0129 4396 C:\Windows\System32\userinit.exe - ok
15:15:22.0145 4396 [ F162D5F5E845B9DC352DD1BAD8CEF1BC ] C:\Windows\System32\dwm.exe
15:15:22.0145 4396 C:\Windows\System32\dwm.exe - ok
15:15:22.0145 4396 [ FCFCD1101C5DA23B4B95F93D02B2C169 ] C:\Windows\System32\dwmredir.dll
15:15:22.0145 4396 C:\Windows\System32\dwmredir.dll - ok
15:15:22.0145 4396 [ F09A9A1AD21FE618C4C8B0A0D830C886 ] C:\Windows\System32\msutb.dll
15:15:22.0145 4396 C:\Windows\System32\msutb.dll - ok
15:15:22.0160 4396 [ 94EEAC26F57811BD1AEFC164412F7FCE ] C:\Windows\System32\PlaySndSrv.dll
15:15:22.0160 4396 C:\Windows\System32\PlaySndSrv.dll - ok
15:15:22.0160 4396 [ 9BB99503D6A4DD62569EDE9E5E2672A5 ] C:\Windows\System32\HotStartUserAgent.dll
15:15:22.0160 4396 C:\Windows\System32\HotStartUserAgent.dll - ok
15:15:22.0176 4396 [ 522B0466ED967A0762E9AF5B37D8F40A ] C:\Windows\System32\esent.dll
15:15:22.0176 4396 C:\Windows\System32\esent.dll - ok
15:15:22.0176 4396 [ 4BA77A5EF71C14C764B0ED4701683E3E ] C:\Windows\System32\dwmcore.dll
15:15:22.0176 4396 C:\Windows\System32\dwmcore.dll - ok
15:15:22.0176 4396 [ 332FEAB1435662FC6C672E25BEB37BE3 ] C:\Windows\explorer.exe
15:15:22.0176 4396 C:\Windows\explorer.exe - ok
15:15:22.0192 4396 [ 805A52C5AE26C28E88FDD9BCCFE6F312 ] C:\Windows\System32\TSChannel.dll
15:15:22.0192 4396 C:\Windows\System32\TSChannel.dll - ok
15:15:22.0192 4396 [ 9AE80F6A66B30E3ED8CDF858CF28B11B ] C:\Windows\System32\d3d10_1.dll
15:15:22.0192 4396 C:\Windows\System32\d3d10_1.dll - ok
15:15:22.0207 4396 [ 63F72417CA38D8FC8F53709649B589E3 ] C:\Windows\System32\d3d10_1core.dll
15:15:22.0207 4396 C:\Windows\System32\d3d10_1core.dll - ok
15:15:22.0207 4396 [ 8DFB5752FCE145A6B295093C0A8BE131 ] C:\Windows\System32\dxgi.dll
15:15:22.0207 4396 C:\Windows\System32\dxgi.dll - ok
15:15:22.0207 4396 [ 4C92EB7535CAA1681A77D928FBF9771F ] C:\Windows\System32\d3d11.dll
15:15:22.0207 4396 C:\Windows\System32\d3d11.dll - ok
15:15:22.0223 4396 [ 506708142BC63DABA64F2D3AD1DCD5BF ] C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
15:15:22.0223 4396 C:\Program Files (x86)\Google\Update\GoogleUpdate.exe - ok
15:15:22.0223 4396 [ A7495E342A2EE0160812AC856C11F6CF ] C:\Program Files (x86)\Google\Update\1.3.22.3\goopdate.dll
15:15:22.0223 4396 C:\Program Files (x86)\Google\Update\1.3.22.3\goopdate.dll - ok
15:15:22.0223 4396 [ A90DC9ABD65DB1A8902F361103029952 ] C:\Windows\SysWOW64\IPHLPAPI.DLL
15:15:22.0223 4396 C:\Windows\SysWOW64\IPHLPAPI.DLL - ok
15:15:22.0238 4396 [ 6377051C63D5552A311935C67E9FDFDC ] C:\Windows\SysWOW64\nsi.dll
15:15:22.0238 4396 C:\Windows\SysWOW64\nsi.dll - ok
15:15:22.0238 4396 [ 2FCA0D2C59A855C54BAFA22AA329DF0F ] C:\Windows\SysWOW64\netapi32.dll
15:15:22.0238 4396 C:\Windows\SysWOW64\netapi32.dll - ok
15:15:22.0254 4396 [ 20B3934DB73EABA2B49B7177873CB81F ] C:\Windows\SysWOW64\netutils.dll
15:15:22.0254 4396 C:\Windows\SysWOW64\netutils.dll - ok
15:15:22.0254 4396 [ 5CCDCD40E732D54E0F7451AC66AC1C87 ] C:\Windows\SysWOW64\srvcli.dll
15:15:22.0254 4396 C:\Windows\SysWOW64\srvcli.dll - ok
15:15:22.0254 4396 [ CFF35B879D1618D42C86644C717BA947 ] C:\Windows\SysWOW64\winnsi.dll
15:15:22.0254 4396 C:\Windows\SysWOW64\winnsi.dll - ok
15:15:22.0270 4396 [ E5A4A1326A02F8E7B59E6C3270CE7202 ] C:\Windows\SysWOW64\wkscli.dll
15:15:22.0270 4396 C:\Windows\SysWOW64\wkscli.dll - ok
15:15:22.0270 4396 [ 352B3DC62A0D259A82A052238425C872 ] C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
15:15:22.0270 4396 C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll - ok
15:15:22.0285 4396 [ E7B9D5FF20FFDD4AAE2EF1D1B8C27A37 ] C:\Windows\SysWOW64\imagehlp.dll
15:15:22.0285 4396 C:\Windows\SysWOW64\imagehlp.dll - ok
15:15:22.0285 4396 [ A6C29DB53ECA94FA8591C5388D604B82 ] C:\Windows\SysWOW64\msi.dll
15:15:22.0285 4396 C:\Windows\SysWOW64\msi.dll - ok
15:15:22.0285 4396 [ 18AB2E5A40064ED5F7791AC5946A90F3 ] C:\Windows\SysWOW64\msimg32.dll
15:15:22.0285 4396 C:\Windows\SysWOW64\msimg32.dll - ok
15:15:22.0301 4396 [ 43964FA89CCF97BA6BE34D69455AC65F ] C:\Windows\SysWOW64\uxtheme.dll
15:15:22.0301 4396 C:\Windows\SysWOW64\uxtheme.dll - ok
15:15:22.0301 4396 [ 927FA6456AD6D7630F6854828D2FD16B ] C:\Windows\SysWOW64\wininet.dll
15:15:22.0301 4396 C:\Windows\SysWOW64\wininet.dll - ok
15:15:22.0301 4396 [ 6951562DC4625EEFC6EACD52AD165866 ] C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
15:15:22.0301 4396 C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll - ok
15:15:22.0316 4396 [ 589CBC4989F750E1DA35625AB481CF43 ] C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
15:15:22.0316 4396 C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll - ok
15:15:22.0316 4396 [ 3BE0D923AA45A4DBE091C2D84F0B4FE7 ] C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
15:15:22.0316 4396 C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll - ok
15:15:22.0332 4396 [ 2E33DFD10F28F86C3FC40EE123CC3904 ] C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
15:15:22.0332 4396 C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll - ok
15:15:22.0332 4396 [ B2E1F7B212502BB49AAD4EFAD37C5CF5 ] C:\Windows\SysWOW64\iertutil.dll
15:15:22.0332 4396 C:\Windows\SysWOW64\iertutil.dll - ok
15:15:22.0332 4396 [ 702254574E7E52052DE39408457B7149 ] C:\Windows\SysWOW64\version.dll
15:15:22.0332 4396 C:\Windows\SysWOW64\version.dll - ok
15:15:22.0348 4396 [ 6A13B4F3B3F575F1E24B877B9359AABA ] C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
15:15:22.0348 4396 C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll - ok
15:15:22.0348 4396 [ 465BEA35F7ED4A4A57686DEA7EA10F47 ] C:\Windows\SysWOW64\cscapi.dll
15:15:22.0348 4396 C:\Windows\SysWOW64\cscapi.dll - ok
15:15:22.0363 4396 [ 3FD15B4611D9BDA3F8013548C0ECAECA ] C:\Windows\SysWOW64\ntmarta.dll
15:15:22.0363 4396 C:\Windows\SysWOW64\ntmarta.dll - ok
15:15:22.0363 4396 [ A8BB45F9ECAD993461E0FEF8E2A99152 ] C:\Windows\SysWOW64\Wldap32.dll
15:15:22.0363 4396 C:\Windows\SysWOW64\Wldap32.dll - ok
15:15:22.0363 4396 [ 53223B673A3FA2F9A4D1C31C8D3F6CD8 ] C:\Windows\SysWOW64\dbghelp.dll
15:15:22.0363 4396 C:\Windows\SysWOW64\dbghelp.dll - ok
15:15:22.0379 4396 [ 94EDF01B3A273E08E5A7A1F9E5EEBE13 ] C:\Windows\System32\aticfx64.dll
15:15:22.0379 4396 C:\Windows\System32\aticfx64.dll - ok
15:15:22.0379 4396 [ 7EE6A03D9FA55C24099D5EFF81500ADE ] C:\Windows\System32\atiuxp64.dll
15:15:22.0379 4396 C:\Windows\System32\atiuxp64.dll - ok
15:15:22.0379 4396 [ 9C4FAE4FE158E5FDBC01EE062BF89388 ] C:\Windows\System32\atidxx64.dll
15:15:22.0379 4396 C:\Windows\System32\atidxx64.dll - ok
15:15:22.0394 4396 [ 49E5753D923F1AC63B22D3DCB0B47E00 ] C:\Windows\System32\uDWM.dll
15:15:22.0394 4396 C:\Windows\System32\uDWM.dll - ok
15:15:22.0394 4396 [ 863F793D15B4026B1A5FDECA873D4D84 ] C:\Windows\SysWOW64\apphelp.dll
15:15:22.0394 4396 C:\Windows\SysWOW64\apphelp.dll - ok
15:15:22.0410 4396 [ 465680BDE344CE4FF6646626AA3A9125 ] C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler.exe
15:15:22.0410 4396 C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler.exe - ok
15:15:22.0410 4396 [ D15618A0FF8DBC2C5BF3726BACC75A0B ] C:\Windows\SysWOW64\userenv.dll
15:15:22.0410 4396 C:\Windows\SysWOW64\userenv.dll - ok
15:15:22.0410 4396 [ 9CCBA5E2489E603BB1578D1D541252A8 ] C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler64.exe
15:15:22.0410 4396 C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler64.exe - ok
15:15:22.0426 4396 [ FF5688D309347F2720911D8796912834 ] C:\Windows\SysWOW64\clbcatq.dll
15:15:22.0426 4396 C:\Windows\SysWOW64\clbcatq.dll - ok
15:15:22.0426 4396 [ C5A99A4C0DC9F0F5A95BA0C83D30A549 ] C:\Windows\SysWOW64\mstask.dll
15:15:22.0426 4396 C:\Windows\SysWOW64\mstask.dll - ok
15:15:22.0441 4396 [ C733D233B623B7FFCE5031E4B756EE26 ] C:\Windows\SysWOW64\profapi.dll
15:15:22.0441 4396 C:\Windows\SysWOW64\profapi.dll - ok
15:15:22.0441 4396 [ EED05D42D91835064703E2318552ED25 ] C:\Windows\System32\ExplorerFrame.dll
15:15:22.0441 4396 C:\Windows\System32\ExplorerFrame.dll - ok
15:15:22.0441 4396 [ 024352FEEC9042260BB4CFB4D79A206B ] C:\Windows\System32\EhStorShell.dll
15:15:22.0441 4396 C:\Windows\System32\EhStorShell.dll - ok
15:15:22.0457 4396 [ 5F042BC3BDBE8EF7FEC77293199338D9 ] C:\Program Files (x86)\Google\Drive\googledrivesync64.dll
15:15:22.0457 4396 C:\Program Files (x86)\Google\Drive\googledrivesync64.dll - ok
15:15:22.0457 4396 [ 241AF87821FDA0F5792037B779F49BE0 ] C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc251\msvcp90.dll
15:15:22.0457 4396 C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc251\msvcp90.dll - ok
15:15:22.0472 4396 [ 037A719DAD50603202C978CD802623E4 ] C:\Windows\System32\ntshrui.dll
15:15:22.0472 4396 C:\Windows\System32\ntshrui.dll - ok
15:15:22.0472 4396 [ 1D63F4366288B8A7595397E27010FD44 ] C:\Windows\System32\IconCodecService.dll
15:15:22.0472 4396 C:\Windows\System32\IconCodecService.dll - ok
15:15:22.0472 4396 [ A7A8CA53D9C9FD90C07AB0EB38E5316B ] C:\Windows\System32\dbghelp.dll
15:15:22.0472 4396 C:\Windows\System32\dbghelp.dll - ok
15:15:22.0488 4396 [ 650F111D5CDA64C10AE4B9D1BA9D4FFF ] C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
15:15:22.0488 4396 C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe - ok
15:15:22.0488 4396 [ C9564CF4976E7E96B4052737AA2492B4 ] C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcr80.dll
15:15:22.0488 4396 C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcr80.dll - ok
15:15:22.0504 4396 [ F436E847FA799ECD75AD8C313673F450 ] C:\Windows\SysWOW64\cfgmgr32.dll
15:15:22.0504 4396 C:\Windows\SysWOW64\cfgmgr32.dll - ok
15:15:22.0504 4396 [ B010CF886420EE29C2C276646721D255 ] C:\Windows\SysWOW64\wlanapi.dll
15:15:22.0504 4396 C:\Windows\SysWOW64\wlanapi.dll - ok
15:15:22.0504 4396 [ 1D6A771D1D702AE07919DB52C889A249 ] C:\Windows\SysWOW64\wlanutil.dll
15:15:22.0504 4396 C:\Windows\SysWOW64\wlanutil.dll - ok
15:15:22.0519 4396 [ 88D8999350D12127438D57B54A432946 ] C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
15:15:22.0519 4396 C:\Program Files (x86)\Bluetooth Suite\AdminService.exe - ok
15:15:22.0519 4396 [ E3D5E244807AD655787FCD25477CC1BC ] C:\Windows\SysWOW64\bthprops.cpl
15:15:22.0519 4396 C:\Windows\SysWOW64\bthprops.cpl - ok
15:15:22.0519 4396 [ 10FB16B50AFFDA6D44588F3C445DC273 ] C:\Windows\SysWOW64\setupapi.dll
15:15:22.0519 4396 C:\Windows\SysWOW64\setupapi.dll - ok
15:15:22.0535 4396 [ 2EEFF4502F5E13B1BED4A04CCAD64C08 ] C:\Windows\SysWOW64\devobj.dll
15:15:22.0535 4396 C:\Windows\SysWOW64\devobj.dll - ok
15:15:22.0535 4396 [ F7A256EC899C72B4ECDD2C02CB592EFD ] C:\Windows\System32\bthprops.cpl
15:15:22.0535 4396 C:\Windows\System32\bthprops.cpl - ok
15:15:22.0550 4396 [ B1FDCFFF7609E121C10751A669AB1611 ] C:\Windows\winsxs\amd64_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_8448b2bd328df189\mfc80u.dll
15:15:22.0550 4396 C:\Windows\winsxs\amd64_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_8448b2bd328df189\mfc80u.dll - ok
15:15:22.0550 4396 [ 442235AC4F20B195F932990CAE47408E ] C:\Windows\winsxs\amd64_microsoft.vc80.mfcloc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_bc20f59b0bdd1acd\mfc80ENU.dll
15:15:22.0550 4396 C:\Windows\winsxs\amd64_microsoft.vc80.mfcloc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_bc20f59b0bdd1acd\mfc80ENU.dll - ok
15:15:22.0550 4396 [ 6B400F211BEE880A37A1ED0368776BF4 ] C:\Windows\System32\cryptsvc.dll
15:15:22.0550 4396 C:\Windows\System32\cryptsvc.dll - ok
15:15:22.0566 4396 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] C:\Windows\System32\dps.dll
15:15:22.0566 4396 C:\Windows\System32\dps.dll - ok
15:15:22.0566 4396 [ 0C043B0ABBB5E14E68906AB80365395B ] C:\Windows\System32\efssvc.dll
15:15:22.0566 4396 C:\Windows\System32\efssvc.dll - ok
15:15:22.0566 4396 [ 344789398EC3EE5A4E00C52B31847946 ] C:\Windows\System32\IKEEXT.DLL
15:15:22.0566 4396 C:\Windows\System32\IKEEXT.DLL - ok
15:15:22.0582 4396 [ 847D3AE376C0817161A14A82C8922A9E ] C:\Windows\System32\netman.dll
15:15:22.0582 4396 C:\Windows\System32\netman.dll - ok
15:15:22.0582 4396 [ A6B726DCA228F7878E38368A1BDC68BE ] C:\Windows\System32\cryptnet.dll
15:15:22.0582 4396 C:\Windows\System32\cryptnet.dll - ok
15:15:22.0597 4396 [ ACE8C64C57E4A711473C8BC10ADF692B ] C:\Windows\System32\drivers\NisDrvWFP.sys
15:15:22.0597 4396 C:\Windows\System32\drivers\NisDrvWFP.sys - ok
15:15:22.0597 4396 [ 7F8E83B9466A0A002D4AB15C104062A7 ] C:\Windows\System32\efscore.dll
15:15:22.0597 4396 C:\Windows\System32\efscore.dll - ok
15:15:22.0597 4396 [ 58283053C781AD3A579C95D7765C1FA0 ] C:\Windows\System32\efsutil.dll
15:15:22.0597 4396 C:\Windows\System32\efsutil.dll - ok
15:15:22.0613 4396 [ BAAFAF9CEAEC0B73C2A3550A01F6CECB ] C:\Windows\System32\taskschd.dll
15:15:22.0613 4396 C:\Windows\System32\taskschd.dll - ok
15:15:22.0613 4396 [ 0E2F58F6E698EDCB9E58FAD0CBCD0567 ] C:\Windows\System32\vssapi.dll
15:15:22.0613 4396 C:\Windows\System32\vssapi.dll - ok
15:15:22.0628 4396 [ 287923557447D7E4BDD7E65B1F0F5428 ] C:\Windows\System32\vsstrace.dll
15:15:22.0628 4396 C:\Windows\System32\vsstrace.dll - ok
15:15:22.0628 4396 [ 8AD77806D336673F270DB31645267293 ] C:\Windows\System32\nlasvc.dll
15:15:22.0628 4396 C:\Windows\System32\nlasvc.dll - ok
15:15:22.0628 4396 [ 1727B2A2F379A32B864C096FA794AADC ] C:\Windows\System32\aepic.dll
15:15:22.0628 4396 C:\Windows\System32\aepic.dll - ok
15:15:22.0644 4396 [ C6DCD1D11ED6827F05C00773C3E7053C ] C:\Windows\System32\sfc.dll
15:15:22.0644 4396 C:\Windows\System32\sfc.dll - ok
15:15:22.0644 4396 [ 68769C3356B3BE5D1C732C97B9A80D6E ] C:\Windows\System32\drivers\PEAuth.sys
15:15:22.0644 4396 C:\Windows\System32\drivers\PEAuth.sys - ok
15:15:22.0660 4396 [ 895C9AB0A855547445C4181195230757 ] C:\Windows\System32\sfc_os.dll
15:15:22.0660 4396 C:\Windows\System32\sfc_os.dll - ok
15:15:22.0660 4396 [ D4FAC263861BAE06971C7F7D0A8EBF15 ] C:\Windows\System32\ncsi.dll
15:15:22.0660 4396 C:\Windows\System32\ncsi.dll - ok
15:15:22.0660 4396 [ 58F4493BF748A3A89689997B7BD00E95 ] C:\Windows\System32\winhttp.dll
15:15:22.0675 4396 C:\Windows\System32\winhttp.dll - ok
15:15:22.0675 4396 [ 210FCACAF902B2CD47CF9FD17D846146 ] C:\Windows\System32\aeevts.dll
15:15:22.0675 4396 C:\Windows\System32\aeevts.dll - ok
15:15:22.0675 4396 [ 603EBD34E216C5654A2D774EAC98D278 ] C:\Windows\System32\webio.dll
15:15:22.0675 4396 C:\Windows\System32\webio.dll - ok
15:15:22.0691 4396 [ 2BBF3FDB70B8965DFA0258CBAB41ECCE ] C:\Windows\System32\ssdpapi.dll
15:15:22.0691 4396 C:\Windows\System32\ssdpapi.dll - ok
15:15:22.0691 4396 [ 77B5035BC6EDF4D1B6265391AECEE4C0 ] C:\Windows\System32\vpnikeapi.dll
15:15:22.0691 4396 C:\Windows\System32\vpnikeapi.dll - ok
15:15:22.0706 4396 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] C:\Windows\System32\IPSECSVC.DLL
15:15:22.0706 4396 C:\Windows\System32\IPSECSVC.DLL - ok
15:15:22.0706 4396 [ 9BC93C9ACFA34DB5A41B89357B31E4ED ] C:\Windows\System32\FwRemoteSvr.dll
15:15:22.0706 4396 C:\Windows\System32\FwRemoteSvr.dll - ok
15:15:22.0706 4396 [ F12A68ED55053940CADD59CA5E3468DD ] C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
15:15:22.0706 4396 C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe - ok
15:15:22.0722 4396 [ 7321F18D1F820612ED0E9F2D4B578A7E ] C:\Windows\SysWOW64\cryptsp.dll
15:15:22.0722 4396 C:\Windows\SysWOW64\cryptsp.dll - ok
15:15:22.0722 4396 [ 5E66ABD041D76C46CBF55AEF910FCA56 ] C:\Program Files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe
15:15:22.0722 4396 C:\Program Files (x86)\Samsung\Easy Settings\SamsungDeviceConfiguration.exe - ok
15:15:22.0738 4396 [ 42A93F9F75F2334631861C3106792761 ] C:\Program Files (x86)\Samsung\Easy Settings\WLANStartup.exe
15:15:22.0738 4396 C:\Program Files (x86)\Samsung\Easy Settings\WLANStartup.exe - ok
15:15:22.0738 4396 [ D1DE1EAFDE97BE41CF6585027FF3E732 ] C:\Windows\SysWOW64\comdlg32.dll
15:15:22.0738 4396 C:\Windows\SysWOW64\comdlg32.dll - ok
15:15:22.0738 4396 [ 5997D769CDB108390DCFAEBF442BF816 ] C:\Windows\SysWOW64\RpcRtRemote.dll
15:15:22.0738 4396 C:\Windows\SysWOW64\RpcRtRemote.dll - ok
15:15:22.0753 4396 [ ED8EC63F7522DF4852147C84EC62C36A ] C:\Windows\SysWOW64\rsaenh.dll
15:15:22.0753 4396 C:\Windows\SysWOW64\rsaenh.dll - ok
15:15:22.0753 4396 [ 4C39358EBDD2FFCD9132A30E1EC31E16 ] C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcp90.dll
15:15:22.0753 4396 C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcp90.dll - ok
15:15:22.0769 4396 [ 3EA8A16169C26AFBEB544E0E48421186 ] C:\Windows\System32\drivers\secdrv.sys
15:15:22.0769 4396 C:\Windows\System32\drivers\secdrv.sys - ok
15:15:22.0769 4396 [ BC617A4E1B4FA8DF523A061739A0BD87 ] C:\Windows\System32\seclogon.dll
15:15:22.0769 4396 C:\Windows\System32\seclogon.dll - ok
15:15:22.0784 4396 [ 398A81D590424441B2F5C5C08073CADB ] C:\Program Files (x86)\Secunia\PSI\psia.exe
15:15:22.0784 4396 C:\Program Files (x86)\Secunia\PSI\psia.exe - ok
15:15:22.0784 4396 [ A543AC1F7138376D778D630A35FCBC4C ] C:\Windows\SysWOW64\psapi.dll
15:15:22.0784 4396 C:\Windows\SysWOW64\psapi.dll - ok
15:15:22.0784 4396 [ 372948BB5E41CE42341C4398DE572E56 ] C:\Windows\SysWOW64\secur32.dll
15:15:22.0784 4396 C:\Windows\SysWOW64\secur32.dll - ok
15:15:22.0800 4396 [ 1EBE9524683C7C4EED8B8BC93FB6FBCC ] C:\Windows\SysWOW64\fltLib.dll
15:15:22.0800 4396 C:\Windows\SysWOW64\fltLib.dll - ok
15:15:22.0800 4396 [ 779E142FE2159935E78C0FA2E190FF1E ] C:\Windows\SysWOW64\jscript.dll
15:15:22.0800 4396 C:\Windows\SysWOW64\jscript.dll - ok
15:15:22.0816 4396 [ 8C2D3A80FC90A860F0F24DEB67471481 ] C:\Program Files (x86)\Secunia\PSI\sua.exe
15:15:22.0816 4396 C:\Program Files (x86)\Secunia\PSI\sua.exe - ok
15:15:22.0816 4396 [ 75F5E1FE8D55CF8E577E0EC5F2290D3F ] C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\comctl32.dll
15:15:22.0816 4396 C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\comctl32.dll - ok
15:15:22.0816 4396 [ 68ECCA523ED760AAFC03C5D587569859 ] C:\Windows\SysWOW64\samcli.dll
15:15:22.0816 4396 C:\Windows\SysWOW64\samcli.dll - ok
15:15:22.0831 4396 [ 50D9949020E02B847CD48F1243FCB895 ] C:\Program Files (x86)\Skype\Updater\Updater.exe
15:15:22.0831 4396 C:\Program Files (x86)\Skype\Updater\Updater.exe - ok
15:15:22.0831 4396 [ 6A6B2EE4565A178035BE2A4FF6F2C968 ] C:\Windows\SysWOW64\wtsapi32.dll
15:15:22.0831 4396 C:\Windows\SysWOW64\wtsapi32.dll - ok
15:15:22.0847 4396 [ BCEA9AB347E53BC03B2E36BE0B8BA0EF ] C:\Windows\System32\httpapi.dll
15:15:22.0847 4396 C:\Windows\System32\httpapi.dll - ok
15:15:22.0847 4396 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] C:\Windows\System32\drivers\tcpipreg.sys
15:15:22.0847 4396 C:\Windows\System32\drivers\tcpipreg.sys - ok
15:15:22.0847 4396 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] C:\Windows\System32\sysmain.dll
15:15:22.0847 4396 C:\Windows\System32\sysmain.dll - ok
15:15:22.0862 4396 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] C:\Windows\System32\tapisrv.dll
15:15:22.0862 4396 C:\Windows\System32\tapisrv.dll - ok
15:15:22.0862 4396 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] C:\Windows\System32\wiaservc.dll
15:15:22.0862 4396 C:\Windows\System32\wiaservc.dll - ok
15:15:22.0878 4396 [ 19B07E7E8915D701225DA41CB3877306 ] C:\Windows\System32\wbem\WMIsvc.dll
15:15:22.0878 4396 C:\Windows\System32\wbem\WMIsvc.dll - ok
15:15:22.0878 4396 [ 7E7AFD841694F6AC397E99D75CEAD49D ] C:\Windows\System32\trkwks.dll
15:15:22.0878 4396 C:\Windows\System32\trkwks.dll - ok
15:15:22.0878 4396 [ 0364256B4A2A93A8C8CDA6B3B5A0EFF5 ] C:\Windows\System32\wiatrace.dll
15:15:22.0878 4396 C:\Windows\System32\wiatrace.dll - ok
15:15:22.0894 4396 [ 49ACA548B2423F1C67898E6AC719A9A6 ] C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
15:15:22.0894 4396 C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll - ok
15:15:22.0894 4396 [ 1C60E09CA1C3A045BC4D367F67C915B7 ] C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
15:15:22.0894 4396 C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll - ok
15:15:22.0909 4396 [ 7FF15A4F092CD4A96055BA69F903E3E9 ] C:\Windows\SysWOW64\ws2_32.dll
15:15:22.0909 4396 C:\Windows\SysWOW64\ws2_32.dll - ok
15:15:22.0909 4396 [ CA9F7888B524D8100B977C81F44C3234 ] C:\Windows\SysWOW64\winhttp.dll
15:15:22.0909 4396 C:\Windows\SysWOW64\winhttp.dll - ok
15:15:22.0909 4396 [ FB19FC5951A88F3C523E35C2C98D23C0 ] C:\Windows\SysWOW64\webio.dll
15:15:22.0909 4396 C:\Windows\SysWOW64\webio.dll - ok
15:15:22.0925 4396 [ E94C583CDE2348950155F2AF2876F34D ] C:\Windows\SysWOW64\mswsock.dll
15:15:22.0925 4396 C:\Windows\SysWOW64\mswsock.dll - ok
15:15:22.0925 4396 [ 73E8667A19FEEDD856DF2695E9E511D4 ] C:\Windows\SysWOW64\wship6.dll
15:15:22.0925 4396 C:\Windows\SysWOW64\wship6.dll - ok
15:15:22.0940 4396 [ 7DB5AA22A8A8E5C2D335F44853C1F6DE ] C:\Windows\System32\wbemcomn.dll
15:15:22.0940 4396 C:\Windows\System32\wbemcomn.dll - ok
15:15:22.0940 4396 [ EE867A0870FC9E4972BA9EAAD35651E2 ] C:\Windows\System32\rasmans.dll
15:15:22.0940 4396 C:\Windows\System32\rasmans.dll - ok
15:15:22.0940 4396 [ 08C2957BB30058E663720C5606885653 ] C:\Windows\System32\iphlpsvc.dll
15:15:22.0940 4396 C:\Windows\System32\iphlpsvc.dll - ok
15:15:22.0956 4396 [ 0C52762C606BCF6A377D5E4688191A6B ] C:\Windows\System32\wbem\WmiDcPrv.dll
15:15:22.0956 4396 C:\Windows\System32\wbem\WmiDcPrv.dll - ok
15:15:22.0956 4396 [ A3F5E8EC1316C3E2562B82694A251C9E ] C:\Windows\System32\wbem\fastprox.dll
15:15:22.0956 4396 C:\Windows\System32\wbem\fastprox.dll - ok
15:15:22.0972 4396 [ B40420876B9288E0A1C8CCA8A84E5DC9 ] C:\Windows\SysWOW64\dnsapi.dll
15:15:22.0972 4396 C:\Windows\SysWOW64\dnsapi.dll - ok
15:15:22.0972 4396 [ 9A85ABCE0FDD1AF8E79E731EB0B679F3 ] C:\Windows\SysWOW64\dhcpcsvc.dll
15:15:22.0972 4396 C:\Windows\SysWOW64\dhcpcsvc.dll - ok
15:15:22.0972 4396 [ 8C338238C16777A802D6A9211EB2BA50 ] C:\Windows\SysWOW64\netprofm.dll
15:15:22.0972 4396 C:\Windows\SysWOW64\netprofm.dll - ok
15:15:22.0987 4396 [ 81F6C1AE23B1C493D9E996C3103915D7 ] C:\Windows\SysWOW64\dhcpcsvc6.dll
15:15:22.0987 4396 C:\Windows\SysWOW64\dhcpcsvc6.dll - ok
15:15:22.0987 4396 [ 0BA65122FFA7E37564EE86422DBF7AE8 ] C:\Windows\SysWOW64\nlaapi.dll
15:15:22.0987 4396 C:\Windows\SysWOW64\nlaapi.dll - ok
15:15:22.0987 4396 [ EE5C8E27C37B79CB54A2FCEEED2DC262 ] C:\Windows\SysWOW64\WSHTCPIP.DLL
15:15:22.0987 4396 C:\Windows\SysWOW64\WSHTCPIP.DLL - ok
15:15:23.0003 4396 [ ED6EE83D61EBC683C2CD8E899EA6FEBE ] C:\Windows\SysWOW64\rasadhlp.dll
15:15:23.0003 4396 C:\Windows\SysWOW64\rasadhlp.dll - ok
15:15:23.0003 4396 [ 27B9E163740A226B65E4B9E186117911 ] C:\Windows\System32\sqmapi.dll
15:15:23.0003 4396 C:\Windows\System32\sqmapi.dll - ok
15:15:23.0018 4396 [ 7B38D7916A7CD058C16A0A6CA5077901 ] C:\Windows\System32\wdscore.dll
15:15:23.0018 4396 C:\Windows\System32\wdscore.dll - ok
15:15:23.0018 4396 [ EE26D130808D16C0E417BBBED0451B34 ] C:\Windows\System32\ntdsapi.dll
15:15:23.0018 4396 C:\Windows\System32\ntdsapi.dll - ok
15:15:23.0018 4396 [ 44C96B48112EB24AE7764EBF1C527000 ] C:\Windows\System32\rastapi.dll
15:15:23.0018 4396 C:\Windows\System32\rastapi.dll - ok
15:15:23.0034 4396 [ 666A60F6F5E719856FF6254E0966EFF7 ] C:\Windows\System32\wbem\wbemprox.dll
15:15:23.0034 4396 C:\Windows\System32\wbem\wbemprox.dll - ok
15:15:23.0034 4396 [ FAFAE01E889DC9C05A6CA2138CFC220B ] C:\Windows\System32\tapi32.dll
15:15:23.0034 4396 C:\Windows\System32\tapi32.dll - ok
15:15:23.0034 4396 [ D2A0FFA75AB181B19B5EB93BB29C7686 ] C:\Windows\System32\unimdm.tsp
15:15:23.0034 4396 C:\Windows\System32\unimdm.tsp - ok
15:15:23.0050 4396 [ 0255C22D99602534F15CBB8D9B6F152F ] C:\Windows\System32\wbem\WinMgmtR.dll
15:15:23.0050 4396 C:\Windows\System32\wbem\WinMgmtR.dll - ok
15:15:23.0050 4396 [ 94B7DF336815B47236724019FAB24B7C ] C:\Windows\System32\uniplat.dll
15:15:23.0050 4396 C:\Windows\System32\uniplat.dll - ok
15:15:23.0065 4396 [ 9E4B0E7472B4CEBA9E17F440B8CB0AB8 ] C:\Windows\SysWOW64\winspool.drv
15:15:23.0065 4396 C:\Windows\SysWOW64\winspool.drv - ok
15:15:23.0065 4396 [ 7C1BAE7D23D4874FEE256A2B9C00E019 ] C:\Windows\System32\hidphone.tsp
15:15:23.0065 4396 C:\Windows\System32\hidphone.tsp - ok
15:15:23.0065 4396 [ 41326DD08ACC0CDC5F8177AF96C066E8 ] C:\Windows\System32\kmddsp.tsp
15:15:23.0065 4396 C:\Windows\System32\kmddsp.tsp - ok
15:15:23.0081 4396 [ 1D6BC2769DA66C1145F4DA5A65F52E61 ] C:\Windows\System32\ndptsp.tsp
15:15:23.0081 4396 C:\Windows\System32\ndptsp.tsp - ok
15:15:23.0081 4396 [ 3B367397320C26DBA890B260F80D1B1B ] C:\Windows\System32\hnetcfg.dll
15:15:23.0081 4396 C:\Windows\System32\hnetcfg.dll - ok
15:15:23.0081 4396 [ A717A35120DBAB5AB707AB40662AF9DD ] C:\Windows\System32\rasppp.dll
15:15:23.0081 4396 C:\Windows\System32\rasppp.dll - ok
15:15:23.0096 4396 [ 5EB55F661DEBF156E126160BCD4D89F8 ] C:\Windows\System32\wbem\wbemcore.dll
15:15:23.0096 4396 C:\Windows\System32\wbem\wbemcore.dll - ok
15:15:23.0096 4396 [ 087D8668C71634A3A3761135ABF16EEE ] C:\Windows\System32\wbem\esscli.dll
15:15:23.0096 4396 C:\Windows\System32\wbem\esscli.dll - ok
15:15:23.0096 4396 [ 0FE5CD5F9C9248F42D1EF56E495B182E ] C:\Windows\System32\vpnike.dll
15:15:23.0096 4396 C:\Windows\System32\vpnike.dll - ok
15:15:23.0112 4396 [ 718B6F51AB7F6FE2988A36868F9AD3AB ] C:\Windows\System32\wbem\wbemsvc.dll
15:15:23.0112 4396 C:\Windows\System32\wbem\wbemsvc.dll - ok
15:15:23.0112 4396 [ 6A84E68B538B8B04608BF2F0D426CE6F ] C:\Windows\System32\raschap.dll
15:15:23.0112 4396 C:\Windows\System32\raschap.dll - ok
15:15:23.0128 4396 [ 0143DB80DACFB7C2B5B7009ED9063353 ] C:\Windows\System32\wbem\wmiutils.dll
15:15:23.0128 4396 C:\Windows\System32\wbem\wmiutils.dll - ok
15:15:23.0128 4396 [ B95F6501A2F8B2E78C697FEC401970CE ] C:\Windows\System32\ipnathlp.dll
15:15:23.0128 4396 C:\Windows\System32\ipnathlp.dll - ok
15:15:23.0128 4396 [ 2DF29664ED261F0FC448E58F338F0671 ] C:\Windows\System32\mprapi.dll
15:15:23.0128 4396 C:\Windows\System32\mprapi.dll - ok
15:15:23.0143 4396 [ 84174CA0E190BB9D1EFD0F005FE13B35 ] C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\GdiPlus.dll
15:15:23.0143 4396 C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\GdiPlus.dll - ok
15:15:23.0143 4396 [ 8E01332CC4B68BC6B5B7EFFE374442AA ] C:\Windows\SysWOW64\oleacc.dll
15:15:23.0143 4396 C:\Windows\SysWOW64\oleacc.dll - ok
15:15:23.0159 4396 [ D5AEFAD57C08349A4393D987DF7C715D ] C:\Windows\SysWOW64\winmm.dll
15:15:23.0159 4396 C:\Windows\SysWOW64\winmm.dll - ok
15:15:23.0159 4396 [ 39C5F32747B3414D1BB216FDB1DEFC58 ] C:\Windows\SysWOW64\dwmapi.dll
15:15:23.0159 4396 C:\Windows\SysWOW64\dwmapi.dll - ok
15:15:23.0159 4396 [ A42F2C1EB3B66C54FB3C7B79D30C1A6D ] C:\Windows\System32\netshell.dll
15:15:23.0159 4396 C:\Windows\System32\netshell.dll - ok
15:15:23.0174 4396 [ 0AB34456654C283DAA13B8D2BA21439B ] C:\Windows\System32\wbem\repdrvfs.dll
15:15:23.0174 4396 C:\Windows\System32\wbem\repdrvfs.dll - ok
15:15:23.0174 4396 [ 0763C5D8660436D4D961F72609E33BBE ] C:\Windows\SysWOW64\urlmon.dll
15:15:23.0174 4396 C:\Windows\SysWOW64\urlmon.dll - ok
15:15:23.0190 4396 [ F0D0E883EBBDC7615DC9EDEA0FFB2817 ] C:\Windows\SysWOW64\FWPUCLNT.DLL
15:15:23.0190 4396 C:\Windows\SysWOW64\FWPUCLNT.DLL - ok
15:15:23.0190 4396 [ DDD0357A92FA843EFF8915ED17253D6C ] C:\Windows\System32\wbem\WmiPrvSD.dll
15:15:23.0190 4396 C:\Windows\System32\wbem\WmiPrvSD.dll - ok
15:15:23.0190 4396 [ D41FEBD098234F02485A4EA98D4730A4 ] C:\Windows\System32\ncobjapi.dll
15:15:23.0190 4396 C:\Windows\System32\ncobjapi.dll - ok
15:15:23.0206 4396 [ 6F40D6FB05E0C1E5402812B426971AF0 ] C:\Windows\System32\wbem\wbemess.dll
15:15:23.0206 4396 C:\Windows\System32\wbem\wbemess.dll - ok
15:15:23.0206 4396 [ 81F08948A0F1475894C99D4D19A158A8 ] C:\Windows\SysWOW64\wshqos.dll
15:15:23.0206 4396 C:\Windows\SysWOW64\wshqos.dll - ok
15:15:23.0221 4396 [ 4E5FE39C1076D115EC8BFCFE14D75B80 ] C:\Windows\SysWOW64\credssp.dll
15:15:23.0221 4396 C:\Windows\SysWOW64\credssp.dll - ok
15:15:23.0221 4396 [ AA6F6457116B559B76BC6A012CB4C293 ] C:\Windows\SysWOW64\schannel.dll
15:15:23.0221 4396 C:\Windows\SysWOW64\schannel.dll - ok
15:15:23.0221 4396 [ F11A57E91FDAECFB41A5CB21EB1EBC8E ] C:\Windows\System32\dssenh.dll
15:15:23.0221 4396 C:\Windows\System32\dssenh.dll - ok
15:15:23.0237 4396 [ BF1FC3F79B863C914687A737C2F3D681 ] C:\Windows\System32\wdi.dll
15:15:23.0237 4396 C:\Windows\System32\wdi.dll - ok
15:15:23.0237 4396 [ F7073C962C4FB7C415565DDE109DE49F ] C:\Windows\System32\npmproxy.dll
15:15:23.0237 4396 C:\Windows\System32\npmproxy.dll - ok
15:15:23.0237 4396 [ 15E298B5EC5B89C5994A59863969D9FF ] C:\Windows\SysWOW64\npmproxy.dll
15:15:23.0237 4396 C:\Windows\SysWOW64\npmproxy.dll - ok
15:15:23.0252 4396 [ AD7FB087A238883D1618F29F7BBBD584 ] C:\Windows\SysWOW64\ncrypt.dll
15:15:23.0252 4396 C:\Windows\SysWOW64\ncrypt.dll - ok
15:15:23.0252 4396 [ CE71B9119A258EDD0A05B37D7B0F92E3 ] C:\Windows\SysWOW64\bcrypt.dll
15:15:23.0252 4396 C:\Windows\SysWOW64\bcrypt.dll - ok
15:15:23.0252 4396 [ E8449FE262D7406BCB2AC2A45C53EC5F ] C:\Windows\SysWOW64\bcryptprimitives.dll
15:15:23.0252 4396 C:\Windows\SysWOW64\bcryptprimitives.dll - ok
15:15:23.0268 4396 [ 1097F3035BAF46CED8B332B3564C5108 ] C:\Windows\SysWOW64\gpapi.dll
15:15:23.0268 4396 C:\Windows\SysWOW64\gpapi.dll - ok
15:15:23.0268 4396 [ 6247E8B31ED0A9D6BC5A26276E49BEB3 ] C:\Program Files\Microsoft Security Client\NisSrv.exe
15:15:23.0268 4396 C:\Program Files\Microsoft Security Client\NisSrv.exe - ok
15:15:23.0284 4396 [ 2E86A86838D79D3CED428162BBDAE80C ] C:\Program Files\Microsoft Security Client\NisLog.dll
15:15:23.0284 4396 C:\Program Files\Microsoft Security Client\NisLog.dll - ok
15:15:23.0284 4396 [ 95F9C2976059462CBBF227F7AAB10DE9 ] C:\Windows\System32\bthserv.dll
15:15:23.0284 4396 C:\Windows\System32\bthserv.dll - ok
15:15:23.0284 4396 [ 93221146D4EBBF314C29B23CD6CC391D ] C:\Windows\System32\wpdbusenum.dll
15:15:23.0284 4396 C:\Windows\System32\wpdbusenum.dll - ok
15:15:23.0299 4396 [ 9D2A2369AB4B08A4905FE72DB104498F ] C:\Windows\System32\appinfo.dll
15:15:23.0299 4396 C:\Windows\System32\appinfo.dll - ok
15:15:23.0299 4396 [ CDAD3376DFF3D9AC7FDCBE2B94B0D3C8 ] C:\Windows\System32\shfolder.dll
15:15:23.0299 4396 C:\Windows\System32\shfolder.dll - ok
15:15:23.0299 4396 [ BD9EB3958F213F96B97B1D897DEE006D ] C:\Windows\System32\hidserv.dll
15:15:23.0299 4396 C:\Windows\System32\hidserv.dll - ok
15:15:23.0315 4396 [ E64D9EC8018C55873B40FDEE9DBEF5B3 ] C:\Windows\System32\PortableDeviceApi.dll
15:15:23.0315 4396 C:\Windows\System32\PortableDeviceApi.dll - ok
15:15:23.0315 4396 [ E1B22739C933BE33F53DB58C5393ADD3 ] C:\Windows\System32\Apphlpdm.dll
15:15:23.0315 4396 C:\Windows\System32\Apphlpdm.dll - ok
15:15:23.0330 4396 [ 9689A9C7F7C2A1A423CDA2C3B43FFF65 ] C:\Windows\System32\wer.dll
15:15:23.0330 4396 C:\Windows\System32\wer.dll - ok
15:15:23.0330 4396 [ AFA79C343F9D1555F7E5D5FA70BB2A14 ] C:\Windows\System32\PortableDeviceConnectApi.dll
15:15:23.0330 4396 C:\Windows\System32\PortableDeviceConnectApi.dll - ok
15:15:23.0330 4396 [ BF4AC709BE5BF64F331F5D67773A0C82 ] C:\Windows\System32\perftrack.dll
15:15:23.0330 4396 C:\Windows\System32\perftrack.dll - ok
15:15:23.0346 4396 [ 4449D23E8F197862F1B16F1E6C89C36C ] C:\Windows\System32\diagperf.dll
15:15:23.0346 4396 C:\Windows\System32\diagperf.dll - ok
15:15:23.0346 4396 [ 58A0CDABEA255616827B1C22C9994466 ] C:\Windows\System32\NapiNSP.dll
15:15:23.0346 4396 C:\Windows\System32\NapiNSP.dll - ok
15:15:23.0346 4396 [ 613C8CE10A5FDE582BA5FA64C4D56AAA ] C:\Windows\System32\pnrpnsp.dll
15:15:23.0346 4396 C:\Windows\System32\pnrpnsp.dll - ok
15:15:23.0362 4396 [ 9719E3D834F5C8C43F56A93DFA497023 ] C:\Windows\System32\pnpts.dll
15:15:23.0362 4396 C:\Windows\System32\pnpts.dll - ok
15:15:23.0362 4396 [ 46863C4CC5B68EB09EA2D5EEF0F1193A ] C:\Windows\System32\radardt.dll
15:15:23.0362 4396 C:\Windows\System32\radardt.dll - ok
15:15:23.0377 4396 [ E811F8510B133E70CF6E509FB809824F ] C:\Windows\System32\wdiasqmmodule.dll
15:15:23.0377 4396 C:\Windows\System32\wdiasqmmodule.dll - ok
15:15:23.0377 4396 [ 79AFFC7FEEA9CD2FEFEA5EF3B631A02C ] C:\Windows\System32\ndiscapCfg.dll
15:15:23.0377 4396 C:\Windows\System32\ndiscapCfg.dll - ok
15:15:23.0377 4396 [ 1CF21800E337F4039AAD4C94B4280EE4 ] C:\Windows\System32\mprmsg.dll
15:15:23.0377 4396 C:\Windows\System32\mprmsg.dll - ok
15:15:23.0393 4396 [ 3D6AF45673C4B31CDECD7F80AF09D443 ] C:\Windows\System32\rascfg.dll
15:15:23.0393 4396 C:\Windows\System32\rascfg.dll - ok
15:15:23.0393 4396 [ 025E7DBDB98866ED3CB2D4DDA70B364D ] C:\Windows\System32\runonce.exe
15:15:23.0393 4396 C:\Windows\System32\runonce.exe - ok
15:15:23.0408 4396 [ 55DE45B116711881C852D2841E4C84DD ] C:\Windows\System32\tcpipcfg.dll
15:15:23.0408 4396 C:\Windows\System32\tcpipcfg.dll - ok
15:15:23.0408 4396 [ D44741F65A1D71F65814A12CF6E2400A ] C:\Windows\SysWOW64\runonce.exe
15:15:23.0408 4396 C:\Windows\SysWOW64\runonce.exe - ok
15:15:23.0408 4396 [ 12C45E3CB6D65F73209549E2D02ECA7A ] C:\Windows\SysWOW64\propsys.dll
15:15:23.0408 4396 C:\Windows\SysWOW64\propsys.dll - ok
15:15:23.0424 4396 [ 748849C42DEA24C723048E24BCA1BD55 ] C:\Windows\System32\wshbth.dll
15:15:23.0424 4396 C:\Windows\System32\wshbth.dll - ok
15:15:23.0424 4396 [ FEB91B4DA0D540865260A33838654FA3 ] C:\Windows\System32\nci.dll
15:15:23.0424 4396 C:\Windows\System32\nci.dll - ok
15:15:23.0424 4396 [ AD7B9C14083B52BC532FBA5948342B98 ] C:\Windows\SysWOW64\cmd.exe
15:15:23.0424 4396 C:\Windows\SysWOW64\cmd.exe - ok
15:15:23.0440 4396 [ 41E15DF500BC1FB86950C2312DE7600C ] C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{D81B94A9-3607-4F3A-935F-7F7C93C0A215}\gapaengine.dll
15:15:23.0440 4396 C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{D81B94A9-3607-4F3A-935F-7F7C93C0A215}\gapaengine.dll - ok
15:15:23.0440 4396 [ 4B78B431F225FD8624C5655CB1DE7B61 ] C:\Windows\System32\aelupsvc.dll
15:15:23.0440 4396 C:\Windows\System32\aelupsvc.dll - ok
15:15:23.0455 4396 [ E629F1A051C82795DDFFD3E8D4855811 ] C:\Windows\System32\dimsjob.dll
15:15:23.0455 4396 C:\Windows\System32\dimsjob.dll - ok
15:15:23.0455 4396 [ 35CB97CBC3EDC463418ED4997AAB29B6 ] C:\Windows\System32\pautoenr.dll
15:15:23.0455 4396 C:\Windows\System32\pautoenr.dll - ok
15:15:23.0455 4396 [ 94DFBB481BF51158B216E23C5C1C9D6E ] C:\Windows\System32\certcli.dll
15:15:23.0455 4396 C:\Windows\System32\certcli.dll - ok
15:15:23.0471 4396 [ 263B26106606A010CF877472B535E4BB ] C:\Windows\System32\CertEnroll.dll
15:15:23.0471 4396 C:\Windows\System32\CertEnroll.dll - ok
15:15:23.0471 4396 [ DD3FD48D69F5FBBB21D46D1514C1C2DB ] C:\Windows\System32\drivers\psi_mf_amd64.sys
15:15:23.0471 4396 C:\Windows\System32\drivers\psi_mf_amd64.sys - ok
15:15:23.0486 4396 [ DA85C611FA10003CCC0906CC6CD7AED0 ] C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{D81B94A9-3607-4F3A-935F-7F7C93C0A215}\nisfull.vdm
15:15:23.0486 4396 C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{D81B94A9-3607-4F3A-935F-7F7C93C0A215}\nisfull.vdm - ok
15:15:23.0486 4396 [ 92E0508D924512F63FFEEFE498CBD11F ] C:\Windows\System32\p2pcollab.dll
15:15:23.0486 4396 C:\Windows\System32\p2pcollab.dll - ok
15:15:23.0486 4396 [ 582AC6D9873E31DFA28A4547270862DD ] C:\Windows\System32\QAGENTRT.DLL
15:15:23.0486 4396 C:\Windows\System32\QAGENTRT.DLL - ok
15:15:23.0502 4396 [ 506A83A3BEEE9FCA09F0170DE9FC7D1B ] C:\Windows\System32\fveui.dll
15:15:23.0502 4396 C:\Windows\System32\fveui.dll - ok
15:15:23.0502 4396 [ 2E2072EB48238FCA8FBB7A9F5FABAC45 ] C:\Windows\System32\winrnr.dll
15:15:23.0502 4396 C:\Windows\System32\winrnr.dll - ok
15:15:23.0518 4396 [ 662BA98309818AF2C17D4E48BF4021C4 ] C:\Program Files\Windows Defender\MpClient.dll
15:15:23.0518 4396 C:\Program Files\Windows Defender\MpClient.dll - ok
15:15:23.0518 4396 [ AC0C9CEA1218DAB1994AF8B28E680BD9 ] C:\Windows\System32\wlaninst.dll
15:15:23.0518 4396 C:\Windows\System32\wlaninst.dll - ok
15:15:23.0518 4396 [ 5A406C9C8E0880D3EABADC5DFD1ACDAE ] C:\Windows\System32\wwaninst.dll
15:15:23.0518 4396 C:\Windows\System32\wwaninst.dll - ok
15:15:23.0533 4396 [ BF95EA5809E3BBF55370F7CB309FEBD0 ] C:\Windows\System32\conhost.exe
15:15:23.0533 4396 C:\Windows\System32\conhost.exe - ok
15:15:23.0533 4396 [ DD81D91FF3B0763C392422865C9AC12E ] C:\Windows\System32\rundll32.exe
15:15:23.0533 4396 C:\Windows\System32\rundll32.exe - ok
15:15:23.0549 4396 [ E6F0F82788E8BD0F7A616350EFA0761C ] C:\Windows\System32\actxprxy.dll
15:15:23.0549 4396 C:\Windows\System32\actxprxy.dll - ok
15:15:23.0549 4396 [ 326C7F76A29897A892AA7726E91C1C67 ] C:\Windows\SysWOW64\winbrand.dll
15:15:23.0549 4396 C:\Windows\SysWOW64\winbrand.dll - ok
15:15:23.0549 4396 [ 4B638CE3DAA3A082E576C0DDF9D635D4 ] C:\Windows\SysWOW64\ieframe.dll
15:15:23.0549 4396 C:\Windows\SysWOW64\ieframe.dll - ok
15:15:23.0564 4396 [ 34EF6F776C62011ABFAAF3BF577A0E78 ] C:\Program Files\Microsoft Security Client\MpCmdRun.exe
15:15:23.0564 4396 C:\Program Files\Microsoft Security Client\MpCmdRun.exe - ok
15:15:23.0564 4396 [ FA43D418BC945D27D0625B697B8442B5 ] C:\Windows\System32\cabinet.dll
15:15:23.0564 4396 C:\Windows\System32\cabinet.dll - ok
15:15:23.0580 4396 [ 60F4AEFA103D421EA4A40E31409B4756 ] C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
15:15:23.0580 4396 C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll - ok
15:15:23.0580 4396 [ B7206EC0AD3DF541B1E3EF97145BE6EA ] C:\Program Files\Microsoft Security Client\MpCommu.dll
15:15:23.0580 4396 C:\Program Files\Microsoft Security Client\MpCommu.dll - ok
15:15:23.0580 4396 [ 2C4A87CA8C00E98EFDCFA2E8EC9A3503 ] C:\Windows\SysWOW64\shdocvw.dll
15:15:23.0580 4396 C:\Windows\SysWOW64\shdocvw.dll - ok
15:15:23.0596 4396 [ 178A34E5554DCE485E1262DDF027960C ] C:\Users\Nakaela BC\AppData\Local\Temp\6848C1C3-4107-46BD-B04F-6E4F216D2F53.exe
15:15:23.0596 4396 C:\Users\Nakaela BC\AppData\Local\Temp\6848C1C3-4107-46BD-B04F-6E4F216D2F53.exe - ok
15:15:23.0596 4396 [ 198803E5E93E29967DFB0BCFD0186151 ] C:\Windows\System32\spfileq.dll
15:15:23.0596 4396 C:\Windows\System32\spfileq.dll - ok
15:15:23.0611 4396 [ 7B851A8018B1EA00A69707A390004884 ] C:\Windows\SysWOW64\cryptnet.dll
15:15:23.0611 4396 C:\Windows\SysWOW64\cryptnet.dll - ok
15:15:23.0611 4396 [ 6F8E3B7B70E1BBA871212940C1FBDF60 ] C:\Windows\SysWOW64\SensApi.dll
15:15:23.0611 4396 C:\Windows\SysWOW64\SensApi.dll - ok
15:15:23.0611 4396 [ 5B2E4E90C04FB9AE9F2C5E99FF59B283 ] C:\Windows\SysWOW64\WindowsCodecs.dll
15:15:23.0611 4396 C:\Windows\SysWOW64\WindowsCodecs.dll - ok
15:15:23.0627 4396 [ 846D0E4DB261CFAF363902E41498E961 ] C:\Windows\SysWOW64\EhStorShell.dll
15:15:23.0627 4396 C:\Windows\SysWOW64\EhStorShell.dll - ok
15:15:23.0627 4396 [ 03F3B770DFBED6131653CEDA8CA780F0 ] C:\Windows\SysWOW64\ntshrui.dll
15:15:23.0627 4396 C:\Windows\SysWOW64\ntshrui.dll - ok
15:15:23.0642 4396 [ 8B74CEC6980D4816B0037AE9A27E538F ] C:\Windows\SysWOW64\slc.dll
15:15:23.0642 4396 C:\Windows\SysWOW64\slc.dll - ok
15:15:23.0642 4396 [ 827CB0D6C3F8057EA037FF271F8E9795 ] C:\Windows\SysWOW64\imageres.dll
15:15:23.0642 4396 C:\Windows\SysWOW64\imageres.dll - ok
15:15:23.0642 4396 [ B200A3535464E46658E9B95FDADB0834 ] C:\Program Files (x86)\Samsung\Easy Settings\dmhkcore.exe
15:15:23.0642 4396 C:\Program Files (x86)\Samsung\Easy Settings\dmhkcore.exe - ok
15:15:23.0658 4396 [ B00F98FF6FE8682FF941BEB2559BF191 ] C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
15:15:23.0658 4396 C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe - ok
15:15:23.0658 4396 [ 1498259FFF991A4135737080AA0679D1 ] C:\Program Files (x86)\Samsung\Easy Settings\HookDllPS2.dll
15:15:23.0658 4396 C:\Program Files (x86)\Samsung\Easy Settings\HookDllPS2.dll - ok
15:15:23.0674 4396 [ 08DFDBD2FD4EA951DC46B1C7661ED35A ] C:\Windows\SysWOW64\powrprof.dll
15:15:23.0674 4396 C:\Windows\SysWOW64\powrprof.dll - ok
15:15:23.0674 4396 [ 5AB7CCCEB94C3C9ECE35142CCC527B0D ] C:\Program Files (x86)\Samsung\Easy Settings\EasySpeedUpManager.exe
15:15:23.0674 4396 C:\Program Files (x86)\Samsung\Easy Settings\EasySpeedUpManager.exe - ok
15:15:23.0689 4396 [ 57DCA6CE6F6DE6DE818654693B339ADC ] C:\Program Files (x86)\Samsung\Easy Settings\MovieColorEnhancer.exe
15:15:23.0689 4396 C:\Program Files (x86)\Samsung\Easy Settings\MovieColorEnhancer.exe - ok
15:15:23.0689 4396 [ 0F16BEBA5BEA46511A73CF74356693BF ] C:\Program Files (x86)\Samsung\Easy Settings\SCCSpeedBoot.exe
15:15:23.0689 4396 C:\Program Files (x86)\Samsung\Easy Settings\SCCSpeedBoot.exe - ok
15:15:23.0689 4396 [ 936F728E04ACCF3F38801CFFCF1E3F40 ] C:\Windows\SysWOW64\oledlg.dll
15:15:23.0689 4396 C:\Windows\SysWOW64\oledlg.dll - ok
15:15:23.0705 4396 [ 845A13B2CEE718E81562FE94EE762D7D ] C:\Program Files (x86)\Samsung\Easy Settings\Sabi3.dll
15:15:23.0705 4396 C:\Program Files (x86)\Samsung\Easy Settings\Sabi3.dll - ok
15:15:23.0705 4396 [ D7E546DAF03DEED037D50CDF96C7CF7F ] C:\Program Files (x86)\Samsung\Easy Settings\SmartSetting.exe
15:15:23.0705 4396 C:\Program Files (x86)\Samsung\Easy Settings\SmartSetting.exe - ok
15:15:23.0720 4396 [ 243974EC02F7AE49E4179C54624143AB ] C:\Windows\SysWOW64\MMDevAPI.dll
15:15:23.0720 4396 C:\Windows\SysWOW64\MMDevAPI.dll - ok
15:15:23.0720 4396 [ 704314FD398C81D5F342CAA5DF7B7F21 ] C:\Windows\SysWOW64\wbemcomn.dll
15:15:23.0720 4396 C:\Windows\SysWOW64\wbemcomn.dll - ok
15:15:23.0720 4396 [ C5B0324DB461559ADD070E632A6919FA ] C:\Windows\SysWOW64\wbem\wbemprox.dll
15:15:23.0736 4396 C:\Windows\SysWOW64\wbem\wbemprox.dll - ok
15:15:23.0736 4396 [ C940F2F5C60B3727C5F18840735B229C ] C:\Windows\SysWOW64\AudioSes.dll
15:15:23.0736 4396 C:\Windows\SysWOW64\AudioSes.dll - ok
15:15:23.0736 4396 [ A3A2225177E5923B64A1DB9460576C35 ] C:\Program Files (x86)\Samsung\Easy Settings\GPSTurboModeDLL.dll
15:15:23.0736 4396 C:\Program Files (x86)\Samsung\Easy Settings\GPSTurboModeDLL.dll - ok
15:15:23.0752 4396 [ 776AE0564F8B1C282E331FD95A1BDC5F ] C:\Windows\SysWOW64\wbem\wbemsvc.dll
15:15:23.0752 4396 C:\Windows\SysWOW64\wbem\wbemsvc.dll - ok
15:15:23.0752 4396 [ 5BB8C06EB5EA4BA22EE8A678F2D79B25 ] C:\Windows\SysWOW64\devenum.dll
15:15:23.0752 4396 C:\Windows\SysWOW64\devenum.dll - ok
15:15:23.0752 4396 [ E24FE90E9DE8D8AE70E59F7B01675DEF ] C:\Windows\SysWOW64\avicap32.dll
15:15:23.0752 4396 C:\Windows\SysWOW64\avicap32.dll - ok
15:15:23.0767 4396 [ 7069AAB8536F29ED7323140973A2894B ] C:\Windows\SysWOW64\msdmo.dll
15:15:23.0767 4396 C:\Windows\SysWOW64\msdmo.dll - ok
15:15:23.0767 4396 [ C335EC1182AC10B188705554E0BC1186 ] C:\Windows\SysWOW64\msvfw32.dll
15:15:23.0767 4396 C:\Windows\SysWOW64\msvfw32.dll - ok
15:15:23.0783 4396 [ 24498D084FAA7A459C91066EC241E1CE ] C:\Windows\SysWOW64\vfwwdm32.dll
15:15:23.0783 4396 C:\Windows\SysWOW64\vfwwdm32.dll - ok
15:15:23.0783 4396 [ CFC7D8289D2B5F3CF8D16E2DB7F93D4A ] C:\Windows\SysWOW64\wbem\fastprox.dll
15:15:23.0783 4396 C:\Windows\SysWOW64\wbem\fastprox.dll - ok
15:15:23.0783 4396 [ 418E881201583A3039D81F43E39E6C78 ] C:\Windows\SysWOW64\winsta.dll
15:15:23.0783 4396 C:\Windows\SysWOW64\winsta.dll - ok
15:15:23.0798 4396 [ E3E811471DE781900FF21C1FD84E941E ] C:\Windows\SysWOW64\ntdsapi.dll
15:15:23.0798 4396 C:\Windows\SysWOW64\ntdsapi.dll - ok
15:15:23.0798 4396 [ 619A67C9F617B7E69315BB28ECD5E1DF ] C:\Windows\System32\wbem\WmiPrvSE.exe
15:15:23.0798 4396 C:\Windows\System32\wbem\WmiPrvSE.exe - ok
15:15:23.0814 4396 [ FF0C01F0BE71FA052E4409BE71263473 ] C:\Windows\SysWOW64\atipdlxx.dll
15:15:23.0814 4396 C:\Windows\SysWOW64\atipdlxx.dll - ok
15:15:23.0814 4396 [ 6607C2182C6A53ED983813AFE2F85768 ] C:\Windows\System32\wbem\cimwin32.dll
15:15:23.0814 4396 C:\Windows\System32\wbem\cimwin32.dll - ok
15:15:23.0814 4396 [ C241F69831832B04B20D2632DFF8B900 ] C:\Program Files (x86)\Samsung\Easy Settings\SUS.dll
15:15:23.0814 4396 C:\Program Files (x86)\Samsung\Easy Settings\SUS.dll - ok
15:15:23.0830 4396 [ 487F44B08EFEAF5AD087878357B9403D ] C:\Windows\SysWOW64\pdh.dll
15:15:23.0830 4396 C:\Windows\SysWOW64\pdh.dll - ok
15:15:23.0830 4396 [ 1484B9EBF567346582DE571B0E164AE0 ] C:\Windows\System32\framedynos.dll
15:15:23.0830 4396 C:\Windows\System32\framedynos.dll - ok
15:15:23.0830 4396 [ C00DB14550E4BD49737F311C644E45FF ] C:\Windows\System32\wmi.dll
15:15:23.0830 4396 C:\Windows\System32\wmi.dll - ok
15:15:23.0845 4396 [ 012787CEB35505EB78DF82E0A0072888 ] C:\Windows\System32\browcli.dll
15:15:23.0845 4396 C:\Windows\System32\browcli.dll - ok
15:15:23.0845 4396 [ C4BFE4B61086416B0529212F92BCE081 ] C:\Windows\System32\schedcli.dll
15:15:23.0845 4396 C:\Windows\System32\schedcli.dll - ok
15:15:23.0861 4396 [ D2958325C1AE1AE37A83334C6229E3BC ] C:\Windows\SysWOW64\actxprxy.dll
15:15:23.0861 4396 C:\Windows\SysWOW64\actxprxy.dll - ok
15:15:23.0861 4396 [ 081D5C1EE03B1A537B761FBAF6C5E6E0 ] C:\Program Files (x86)\Samsung\Easy Settings\WinCRT.dll
15:15:23.0861 4396 C:\Program Files (x86)\Samsung\Easy Settings\WinCRT.dll - ok
15:15:23.0861 4396 [ 8B90A2D9FDC21854614BF99A3B92CE9F ] C:\Program Files (x86)\Samsung\Easy Settings\SCCColorDll.dll
15:15:23.0861 4396 C:\Program Files (x86)\Samsung\Easy Settings\SCCColorDll.dll - ok
15:15:23.0876 4396 [ 9EE6996E3D4EDDFBE7477CFBD14E9774 ] C:\Program Files (x86)\Samsung\Easy Settings\MobileAPset.exe
15:15:23.0876 4396 C:\Program Files (x86)\Samsung\Easy Settings\MobileAPset.exe - ok
15:15:23.0876 4396 [ 6FA41E0C86EF049A12C05CA4BBA8F9AF ] C:\Windows\SysWOW64\perfos.dll
15:15:23.0876 4396 C:\Windows\SysWOW64\perfos.dll - ok
15:15:23.0876 4396 [ C72CDAF53EC908044113F38264D5B396 ] C:\Program Files (x86)\Samsung\Easy Settings\ExpressCacheRun64.exe
15:15:23.0876 4396 C:\Program Files (x86)\Samsung\Easy Settings\ExpressCacheRun64.exe - ok
15:15:23.0892 4396 [ 40CAEEE0EAF1B8569F7C8DF6420F2CB9 ] C:\Windows\SysWOW64\sfc.dll
15:15:23.0892 4396 C:\Windows\SysWOW64\sfc.dll - ok
15:15:23.0892 4396 [ 84799328D87B3091A3BDD251E1AD31F9 ] C:\Windows\SysWOW64\sfc_os.dll
15:15:23.0892 4396 C:\Windows\SysWOW64\sfc_os.dll - ok
15:15:23.0908 4396 [ 162D247E995EAEBF3EF4289069E1111C ] C:\Windows\SysWOW64\devrtl.dll
15:15:23.0908 4396 C:\Windows\SysWOW64\devrtl.dll - ok
15:15:23.0908 4396 [ E424B3EF666B184CEE0B6871AAA8C9F6 ] C:\Windows\System32\msimg32.dll
15:15:23.0908 4396 C:\Windows\System32\msimg32.dll - ok
15:15:23.0908 4396 [ 263E9A047D17CD50BAA9D3C02910D18D ] C:\Windows\System32\oledlg.dll
15:15:23.0908 4396 C:\Windows\System32\oledlg.dll - ok
15:15:23.0923 4396 [ B9A8CBCFCD3EC9D2EA4740AF347BF108 ] C:\Windows\SysWOW64\mpr.dll
15:15:23.0923 4396 C:\Windows\SysWOW64\mpr.dll - ok
15:15:23.0923 4396 [ FB10715E4099AF9FA389C71873245226 ] C:\Windows\System32\timedate.cpl
15:15:23.0923 4396 C:\Windows\System32\timedate.cpl - ok
15:15:23.0923 4396 [ 23B001185B7C3CB1F4BDEB143E6B45B7 ] C:\Windows\System32\shdocvw.dll
15:15:23.0923 4396 C:\Windows\System32\shdocvw.dll - ok
15:15:23.0939 4396 [ A0A65D306A5490D2EB8E7DE66898ECFD ] C:\Windows\System32\linkinfo.dll
15:15:23.0939 4396 C:\Windows\System32\linkinfo.dll - ok
15:15:23.0939 4396 [ 2BCBA6052374959A30BD7948444DBB79 ] C:\Windows\System32\gameux.dll
15:15:23.0939 4396 C:\Windows\System32\gameux.dll - ok
15:15:23.0954 4396 [ 1EAC1A8CA6874BF5B15E2EFB9A9A7B86 ] C:\Windows\System32\msftedit.dll
15:15:23.0954 4396 C:\Windows\System32\msftedit.dll - ok
15:15:23.0954 4396 [ 2EBD0C5B090125AECF017C57344C45AB ] C:\Windows\System32\msls31.dll
15:15:23.0954 4396 C:\Windows\System32\msls31.dll - ok
15:15:23.0954 4396 [ 7DBA84667DC18877AEF693E3543DFAD7 ] C:\Program Files\Common Files\Microsoft Shared\ink\tiptsf.dll
15:15:23.0954 4396 C:\Program Files\Common Files\Microsoft Shared\ink\tiptsf.dll - ok
15:15:23.0970 4396 [ 5EB6E9C8BE1ACC5830780E0F9A846255 ] C:\Windows\System32\msi.dll
15:15:23.0970 4396 C:\Windows\System32\msi.dll - ok
15:15:23.0970 4396 [ 69754747274B76E7FAF287239333D7E6 ] C:\Windows\System32\msiltcfg.dll
15:15:23.0970 4396 C:\Windows\System32\msiltcfg.dll - ok
15:15:23.0986 4396 [ 4C2C4640BF23AAFCF90519E0F34436CE ] C:\Windows\System32\DeviceCenter.dll
15:15:23.0986 4396 C:\Windows\System32\DeviceCenter.dll - ok
15:15:23.0986 4396 [ 3DE7064E794A84B8AFF55EEF59DD4280 ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
15:15:23.0986 4396 C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe - ok
15:15:23.0986 4396 [ 25A10B3E55C31A5EA93F22D358667967 ] C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
15:15:23.0986 4396 C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe - ok
15:15:24.0001 4396 [ 405F4D32D2185F1F1BD753D8EEAFFB3A ] C:\Windows\System32\networkexplorer.dll
15:15:24.0001 4396 C:\Windows\System32\networkexplorer.dll - ok
15:15:24.0001 4396 [ 05BC583B124161231F37FE30B01B0567 ] C:\Program Files (x86)\Bluetooth Suite\athr_debug.dll
15:15:24.0001 4396 C:\Program Files (x86)\Bluetooth Suite\athr_debug.dll - ok
15:15:24.0017 4396 [ 9110FFAD124283F37D38771BB60556AF ] C:\Windows\System32\dsound.dll
15:15:24.0017 4396 C:\Windows\System32\dsound.dll - ok
15:15:24.0017 4396 [ FDA421F51414B04728F92860E207F526 ] C:\Program Files (x86)\Bluetooth Suite\SesMgr.dll
15:15:24.0017 4396 C:\Program Files (x86)\Bluetooth Suite\SesMgr.dll - ok
15:15:24.0017 4396 [ 102CF6879887BBE846A00C459E6D4ABC ] C:\Windows\SysWOW64\riched20.dll
15:15:24.0017 4396 C:\Windows\SysWOW64\riched20.dll - ok
15:15:24.0032 4396 [ 0EEAAE1E5294D8E04E3B09C596A4FA4E ] C:\Program Files (x86)\Bluetooth Suite\phonebook.dll
15:15:24.0032 4396 C:\Program Files (x86)\Bluetooth Suite\phonebook.dll - ok
15:15:24.0032 4396 [ 048EA4B978851788E9F5E8E4F081DF7A ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
15:15:24.0032 4396 C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe - ok
15:15:24.0048 4396 [ 7125C4A7DC781E0D3302B5A6E4779D99 ] C:\Program Files (x86)\Bluetooth Suite\goep.dll
15:15:24.0048 4396 C:\Program Files (x86)\Bluetooth Suite\goep.dll - ok
15:15:24.0048 4396 [ 92970BC778C1BB05B66C43F198F787E0 ] C:\Program Files (x86)\Bluetooth Suite\Handsfree.dll
15:15:24.0048 4396 C:\Program Files (x86)\Bluetooth Suite\Handsfree.dll - ok
15:15:24.0048 4396 [ 8253D6B6A1B35A13E864E8B237A9347F ] C:\Program Files (x86)\Bluetooth Suite\RfcommLib.dll
15:15:24.0048 4396 C:\Program Files (x86)\Bluetooth Suite\RfcommLib.dll - ok
15:15:24.0064 4396 [ 57B4D34232852BFE4453BE571DF90D21 ] C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
15:15:24.0064 4396 C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe - ok
15:15:24.0064 4396 [ C3A5FFD57C2563204CD9351F0C7A0DEA ] C:\Program Files (x86)\CyberLink\Power2Go\msvcp71.dll
15:15:24.0064 4396 C:\Program Files (x86)\CyberLink\Power2Go\msvcp71.dll - ok
15:15:24.0079 4396 [ 0622A7F39D02317E04EFB2CA948B5008 ] C:\Program Files (x86)\Bluetooth Suite\Sync.dll
15:15:24.0079 4396 C:\Program Files (x86)\Bluetooth Suite\Sync.dll - ok
15:15:24.0079 4396 [ 5F639198C4137075DA50E61C23963C11 ] C:\Windows\System32\drprov.dll
15:15:24.0079 4396 C:\Windows\System32\drprov.dll - ok
15:15:24.0079 4396 [ BC566D17914B07ABAAB3A5A385CC3300 ] C:\Windows\System32\ntlanman.dll
15:15:24.0079 4396 C:\Windows\System32\ntlanman.dll - ok
15:15:24.0095 4396 [ A1A6FC56A1D0DADC164637FE43C40605 ] C:\Program Files (x86)\CyberLink\Power2Go\msvcr71.dll
15:15:24.0095 4396 C:\Program Files (x86)\CyberLink\Power2Go\msvcr71.dll - ok
15:15:24.0095 4396 [ F719FC3BA9AF4FB22D8B89B9B8A0358F ] C:\Program Files (x86)\Bluetooth Suite\OutLookLib.dll
15:15:24.0095 4396 C:\Program Files (x86)\Bluetooth Suite\OutLookLib.dll - ok
15:15:24.0110 4396 [ B32AB94A432289AC2DF77A3DCAD32EED ] C:\Windows\System32\davclnt.dll
15:15:24.0110 4396 C:\Windows\System32\davclnt.dll - ok
15:15:24.0110 4396 [ 45B24A357C801CE62052FE0CDC8BD4D2 ] C:\Windows\System32\davhlpr.dll
15:15:24.0110 4396 C:\Windows\System32\davhlpr.dll - ok
15:15:24.0110 4396 [ CDF085F6603CA9A97405C666B414F2CA ] C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
15:15:24.0110 4396 C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe - ok
15:15:24.0126 4396 [ FCF820A5589DA92C190C5575D9559B34 ] C:\Program Files (x86)\Bluetooth Suite\sim.dll
15:15:24.0126 4396 C:\Program Files (x86)\Bluetooth Suite\sim.dll - ok
15:15:24.0126 4396 [ 60AA70268599AA1A9264CFF3731F2147 ] C:\Program Files (x86)\Bluetooth Suite\utils.dll
15:15:24.0126 4396 C:\Program Files (x86)\Bluetooth Suite\utils.dll - ok
15:15:24.0142 4396 [ 2C7CF4D4A17B5765E23F6B82C16AF4EB ] C:\Program Files (x86)\CyberLink\Media+Player10\Media+Player10Serv.exe
15:15:24.0142 4396 C:\Program Files (x86)\CyberLink\Media+Player10\Media+Player10Serv.exe - ok
15:15:24.0142 4396 [ 82C5A87B8C7474B462E264E0CDDD83C9 ] C:\Program Files (x86)\Bluetooth Suite\L2capLib.dll
15:15:24.0142 4396 C:\Program Files (x86)\Bluetooth Suite\L2capLib.dll - ok
15:15:24.0142 4396 [ 6A5D0ED8F280AB8E312A4252472A14A4 ] C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll
15:15:24.0142 4396 C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll - ok
15:15:24.0157 4396 [ 17F6F6ACE4F7137B1445ABE4892CFF11 ] C:\Program Files (x86)\Bluetooth Suite\BTBIP.dll
15:15:24.0157 4396 C:\Program Files (x86)\Bluetooth Suite\BTBIP.dll - ok
15:15:24.0157 4396 [ F3B3B39E189C92C35C49A5DA23D57D38 ] C:\Program Files (x86)\CyberLink\Media+Player10\CLRCEngine3.dll
15:15:24.0157 4396 C:\Program Files (x86)\CyberLink\Media+Player10\CLRCEngine3.dll - ok
15:15:24.0173 4396 [ A20A12C1F7A233AF4FB44C2CDFC24FA0 ] C:\Program Files (x86)\Bluetooth Suite\BPP.dll
15:15:24.0173 4396 C:\Program Files (x86)\Bluetooth Suite\BPP.dll - ok
15:15:24.0173 4396 [ 6C4B2E1A25841077084EB9F76FF6FFA7 ] C:\Windows\SysWOW64\wmp.dll
15:15:24.0173 4396 C:\Windows\SysWOW64\wmp.dll - ok
15:15:24.0173 4396 [ 850BD2D2D9CB5894935C3B6333CAD6FD ] C:\Windows\System32\riched20.dll
15:15:24.0173 4396 C:\Windows\System32\riched20.dll - ok
15:15:24.0188 4396 [ EDF5C6A9F33FBD3D717D1B77A9864C64 ] C:\Windows\System32\ieframe.dll
15:15:24.0188 4396 C:\Windows\System32\ieframe.dll - ok
15:15:24.0188 4396 [ 1020C0C4BAC624DAF56712EA6D5865CE ] C:\Program Files (x86)\CyberLink\Media+Player10\msvcr71.dll
15:15:24.0188 4396 C:\Program Files (x86)\CyberLink\Media+Player10\msvcr71.dll - ok
15:15:24.0204 4396 [ C64E9B1C9EA057DCECDCB98F34377811 ] C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
15:15:24.0204 4396 C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE - ok
15:15:24.0204 4396 [ CCDA8E6A2AC68FD417A8BB8D88CBFDAC ] C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe
15:15:24.0204 4396 C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe - ok
15:15:24.0220 4396 [ 220159496484D34009DE71CA1A68E0D4 ] C:\Windows\System32\wbem\NCProv.dll
15:15:24.0220 4396 C:\Windows\System32\wbem\NCProv.dll - ok
15:15:24.0220 4396 [ 6860E32B7335EC62295673AA2106A407 ] C:\Program Files\Microsoft Security Client\msseces.exe
15:15:24.0220 4396 C:\Program Files\Microsoft Security Client\msseces.exe - ok
15:15:24.0220 4396 [ 788ED2B45D2ECA27B07077DAD5939BE9 ] C:\Program Files (x86)\Bluetooth Suite\ShellContextExt.dll
15:15:24.0220 4396 C:\Program Files (x86)\Bluetooth Suite\ShellContextExt.dll - ok
15:15:24.0235 4396 [ 61CBB6C44CE94E0D1AB178330EF1C541 ] C:\Program Files (x86)\Microsoft Office\Office14\1033\ONINTL.DLL
15:15:24.0235 4396 C:\Program Files (x86)\Microsoft Office\Office14\1033\ONINTL.DLL - ok
15:15:24.0235 4396 [ C47F35CC6FA4F1BDBEF8F87AC1A46537 ] C:\Windows\System32\wuapi.dll
15:15:24.0235 4396 C:\Windows\System32\wuapi.dll - ok
15:15:24.0251 4396 [ DB44BD008A346E70A13752D2B9EC6AE2 ] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
15:15:24.0251 4396 C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe - ok
15:15:24.0251 4396 [ E746ED90132C6B6313CE9179F56BD31D ] C:\Windows\System32\wups.dll
15:15:24.0251 4396 C:\Windows\System32\wups.dll - ok
15:15:24.0266 4396 [ 585FED4CDB8034B8B58AEB8008255817 ] C:\Windows\System32\opengl32.dll
15:15:24.0266 4396 C:\Windows\System32\opengl32.dll - ok
15:15:24.0266 4396 [ F2967C0A97C0EA67D79D7F557213950D ] C:\Windows\System32\glu32.dll
15:15:24.0266 4396 C:\Windows\System32\glu32.dll - ok
15:15:24.0266 4396 [ A6C09924C6730DE8DEED9890A12AA691 ] C:\Windows\System32\ddraw.dll
15:15:24.0266 4396 C:\Windows\System32\ddraw.dll - ok
15:15:24.0282 4396 [ 9108540E866F75C7AF2B91DD921A8091 ] C:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll
15:15:24.0282 4396 C:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll - ok
15:15:24.0282 4396 [ 4C29561053771FCAC07A1BED0A27308C ] C:\Program Files (x86)\Bluetooth Suite\BtCommonRes.dll
15:15:24.0282 4396 C:\Program Files (x86)\Bluetooth Suite\BtCommonRes.dll - ok
15:15:24.0298 4396 [ 5B6E8E09BE6401A7E022F52FDFCB2FF8 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
15:15:24.0298 4396 C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe - ok
15:15:24.0298 4396 [ A5ED9421B8D09ED4F57CDA386307713E ] C:\Windows\System32\dciman32.dll
15:15:24.0298 4396 C:\Windows\System32\dciman32.dll - ok
15:15:24.0298 4396 [ C3761661C17C2248A9379A8FB89E3DE1 ] C:\Windows\System32\stobject.dll
15:15:24.0298 4396 C:\Windows\System32\stobject.dll - ok
15:15:24.0313 4396 [ 0805289E121F3E3C458C970B08314EB2 ] C:\Windows\System32\RtkCfg64.dll
15:15:24.0313 4396 C:\Windows\System32\RtkCfg64.dll - ok
15:15:24.0313 4396 [ 02DF0628BE8B64B84D50FBE53549AA3B ] C:\Windows\SysWOW64\wmploc.DLL
15:15:24.0313 4396 C:\Windows\SysWOW64\wmploc.DLL - ok
15:15:24.0329 4396 [ 58B8702C20DE211D1FCB248D2FDD71D1 ] C:\Program Files (x86)\Adobe\Reader 11.0\Reader\reader_sl.exe
15:15:24.0329 4396 C:\Program Files (x86)\Adobe\Reader 11.0\Reader\reader_sl.exe - ok
15:15:24.0329 4396 [ E3C817F7FE44CC870ECDBCBC3EA36132 ] C:\Windows\SysWOW64\msvcp100.dll
15:15:24.0329 4396 C:\Windows\SysWOW64\msvcp100.dll - ok
15:15:24.0329 4396 [ F832EEEA97CDDA1AF577E721F652A0D1 ] C:\Windows\System32\batmeter.dll
15:15:24.0329 4396 C:\Windows\System32\batmeter.dll - ok
15:15:24.0344 4396 [ 64157EA5F19A15667E085B15B582D447 ] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe
15:15:24.0344 4396 C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe - ok
15:15:24.0344 4396 [ BF38660A9125935658CFA3E53FDC7D65 ] C:\Windows\SysWOW64\msvcr100.dll
15:15:24.0344 4396 C:\Windows\SysWOW64\msvcr100.dll - ok
15:15:24.0360 4396 [ C9AEBF3A8363AC7FF23ACE4DFA9B6D82 ] C:\Program Files\Microsoft Security Client\MsMpRes.dll
15:15:24.0360 4396 C:\Program Files\Microsoft Security Client\MsMpRes.dll - ok
15:15:24.0360 4396 [ 2D2A6EC8EAD30EC3ACE2FD6FB1B3E122 ] C:\Windows\System32\prnfldr.dll
15:15:24.0360 4396 C:\Windows\System32\prnfldr.dll - ok
15:15:24.0360 4396 [ E36112A8A6C7F840169A7E92C12F4203 ] C:\Windows\System32\wsock32.dll
15:15:24.0360 4396 C:\Windows\System32\wsock32.dll - ok
15:15:24.0376 4396 [ 862596399AAFD2A21DB2AF9270CD4F70 ] C:\Windows\System32\mstask.dll
15:15:24.0376 4396 C:\Windows\System32\mstask.dll - ok
15:15:24.0376 4396 [ 2A436796758BF2555A26C770FE8A6FEE ] C:\Windows\System32\fdProxy.dll
15:15:24.0376 4396 C:\Windows\System32\fdProxy.dll - ok
15:15:24.0376 4396 [ 42A9CB6906D9A8BEDC83B57163E62924 ] C:\Windows\System32\DXP.dll
15:15:24.0376 4396 C:\Windows\System32\DXP.dll - ok
15:15:24.0391 4396 [ 2168E61B9E3B06EEB8B3EACDFDC4699B ] C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll
15:15:24.0391 4396 C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll - ok
15:15:24.0391 4396 [ C7977540334A28EAC9B7D9B7B7F2DE18 ] C:\Program Files\SUPERAntiSpyware\SASCTXMN64.DLL
15:15:24.0391 4396 C:\Program Files\SUPERAntiSpyware\SASCTXMN64.DLL - ok
15:15:24.0407 4396 [ FB355B817AE641BBAE08607E58CB5CE2 ] C:\Windows\System32\hhctrl.ocx
15:15:24.0407 4396 C:\Windows\System32\hhctrl.ocx - ok
15:15:24.0407 4396 [ 24F4B480F335A6C724AF352253C5D98B ] C:\Windows\System32\thumbcache.dll
15:15:24.0407 4396 C:\Windows\System32\thumbcache.dll - ok
15:15:24.0407 4396 [ E7368F0A8D19445EAF5C5D0DBB8B8DAB ] C:\Windows\System32\AltTab.dll
15:15:24.0407 4396 C:\Windows\System32\AltTab.dll - ok
15:15:24.0422 4396 [ 10F815BE90A66AAFC6C713D1BD626064 ] C:\Windows\System32\pnidui.dll
15:15:24.0422 4396 C:\Windows\System32\pnidui.dll - ok
15:15:24.0422 4396 [ B837D1528CE2E3CB79F09496BC08DDC6 ] C:\Windows\System32\SensApi.dll
15:15:24.0422 4396 C:\Windows\System32\SensApi.dll - ok
15:15:24.0422 4396 [ EA67A834E278675FD95B628F3B6704A8 ] C:\Program Files (x86)\Bluetooth Suite\AthCopyHook.dll
15:15:24.0422 4396 C:\Program Files (x86)\Bluetooth Suite\AthCopyHook.dll - ok
15:15:24.0438 4396 [ 703BFA0A15BABDE62F8047C099F3D8CA ] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiamenu.dll
15:15:24.0438 4396 C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiamenu.dll - ok
15:15:24.0438 4396 [ B9A5ECE876790862A9BC76404E47EE9C ] C:\Program Files\Internet Explorer\sqmapi.dll
15:15:24.0438 4396 C:\Program Files\Internet Explorer\sqmapi.dll - ok
15:15:24.0454 4396 [ B9F0A4020AA98B7A20287BF7FE99A1FD ] C:\Windows\System32\QUTIL.DLL
15:15:24.0454 4396 C:\Windows\System32\QUTIL.DLL - ok
15:15:24.0454 4396 [ 2BC7C9FD0A9F2C9AFC373F3AD1EE3891 ] C:\Windows\System32\Syncreg.dll
15:15:24.0454 4396 C:\Windows\System32\Syncreg.dll - ok
15:15:24.0454 4396 [ E0B340996A41C9A75DFA3B99BBA9C500 ] C:\Windows\System32\SearchIndexer.exe
15:15:24.0454 4396 C:\Windows\System32\SearchIndexer.exe - ok
15:15:24.0469 4396 [ C836175870E00ACC546066632E15BD10 ] C:\Windows\ehome\ehSSO.dll
15:15:24.0469 4396 C:\Windows\ehome\ehSSO.dll - ok
15:15:24.0469 4396 [ C8FDF0FA9E97E2FAAF3F814716AAA881 ] C:\Windows\System32\WPDShServiceObj.dll
15:15:24.0469 4396 C:\Windows\System32\WPDShServiceObj.dll - ok
15:15:24.0485 4396 [ 4F3CD1C59EA71401E155C432BCECE180 ] C:\Windows\System32\PortableDeviceTypes.dll
15:15:24.0485 4396 C:\Windows\System32\PortableDeviceTypes.dll - ok
15:15:24.0485 4396 [ 8569E35D00F45972E506502EEE622BA4 ] C:\Windows\System32\srchadmin.dll
15:15:24.0485 4396 C:\Windows\System32\srchadmin.dll - ok
15:15:24.0485 4396 [ C746F3BF98E92FB137B5BD2B8B5925BD ] C:\Windows\System32\FXSST.dll
15:15:24.0485 4396 C:\Windows\System32\FXSST.dll - ok
15:15:24.0500 4396 [ 650CAEA856943E29F25A25D31E004B18 ] C:\Windows\System32\FXSAPI.dll
15:15:24.0500 4396 C:\Windows\System32\FXSAPI.dll - ok
15:15:24.0500 4396 [ C8E8B8239FCF17BEA10E751BE5854631 ] C:\Windows\System32\FXSRESM.dll
15:15:24.0500 4396 C:\Windows\System32\FXSRESM.dll - ok
15:15:24.0500 4396 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] C:\Windows\System32\FXSSVC.exe
15:15:24.0500 4396 C:\Windows\System32\FXSSVC.exe - ok
15:15:24.0516 4396 [ D2155709E336C3BC15729EB87FEC6064 ] C:\Windows\System32\rasdlg.dll
15:15:24.0516 4396 C:\Windows\System32\rasdlg.dll - ok
15:15:24.0516 4396 [ CF4A212E1936E320A63AAF4CF7C33B23 ] C:\Program Files (x86)\Bluetooth Suite\FileTransfer.dll
15:15:24.0516 4396 C:\Program Files (x86)\Bluetooth Suite\FileTransfer.dll - ok
15:15:24.0532 4396 [ B95F748C4F100DD0F6E8115CC0968670 ] C:\Windows\winsxs\amd64_microsoft.vc80.atl_1fc8b3b9a1e18e3b_8.0.50727.6195_none_8a1dd9552ed7f8d8\ATL80.dll
15:15:24.0532 4396 C:\Windows\winsxs\amd64_microsoft.vc80.atl_1fc8b3b9a1e18e3b_8.0.50727.6195_none_8a1dd9552ed7f8d8\ATL80.dll - ok
15:15:24.0532 4396 [ 589DF683A6C81424A6CECE52ABF98A50 ] C:\Windows\System32\tquery.dll
15:15:24.0532 4396 C:\Windows\System32\tquery.dll - ok
15:15:24.0532 4396 [ F146E2BA475893DD77B2370DC1211FC6 ] C:\Windows\System32\drivers\36505626.sys
15:15:24.0532 4396 C:\Windows\System32\drivers\36505626.sys - ok
15:15:24.0547 4396 [ F9AFD12BB4B1CFA5FCC0A5B37C604FD2 ] C:\Windows\System32\dot3api.dll
15:15:24.0547 4396 C:\Windows\System32\dot3api.dll - ok
15:15:24.0547 4396 [ E4FCA0F99A41E460C84016DEFD31E6EF ] C:\Windows\System32\wlanhlp.dll
15:15:24.0547 4396 C:\Windows\System32\wlanhlp.dll - ok
15:15:24.0547 4396 [ 5DA219F57A9076FB6FBD3C9C3713A672 ] C:\Windows\System32\WWanAPI.dll
15:15:24.0547 4396 C:\Windows\System32\WWanAPI.dll - ok
15:15:24.0563 4396 [ 6B851E682A36453E1B1EE297FFB6E2AB ] C:\Windows\System32\QAGENT.DLL
15:15:24.0563 4396 C:\Windows\System32\QAGENT.DLL - ok
15:15:24.0563 4396 [ 62C7AACC746C9723468A8F2169ED3E85 ] C:\Windows\System32\wwapi.dll
15:15:24.0563 4396 C:\Windows\System32\wwapi.dll - ok
15:15:24.0578 4396 [ 7568CC720ACE4D03B84AF97817E745EF ] C:\Windows\System32\mssrch.dll
15:15:24.0578 4396 C:\Windows\System32\mssrch.dll - ok
15:15:24.0578 4396 [ 7A0C94D2D414BE326B95673C68F37BEA ] C:\Program Files\SUPERAntiSpyware\SSUpdate64.exe
15:15:24.0578 4396 C:\Program Files\SUPERAntiSpyware\SSUpdate64.exe - ok
15:15:24.0578 4396 [ E2A17BCC08D92F42E08AF6BA2F93ABA7 ] C:\Windows\SysWOW64\ExplorerFrame.dll
15:15:24.0578 4396 C:\Windows\SysWOW64\ExplorerFrame.dll - ok
15:15:24.0594 4396 [ 3121A79D13A61562BE9CC902CD46B542 ] C:\Windows\System32\msidle.dll
15:15:24.0594 4396 C:\Windows\System32\msidle.dll - ok
15:15:24.0594 4396 [ ACE1BB07E0377E37A2C514CD2EC119B1 ] C:\Windows\System32\mssprxy.dll
15:15:24.0594 4396 C:\Windows\System32\mssprxy.dll - ok
15:15:24.0610 4396 [ DF0AE7F867A1D7C3A88DD6F1573923A9 ] C:\Program Files\Samsung\Easy Support Center\SamoyedAgent.exe
15:15:24.0610 4396 C:\Program Files\Samsung\Easy Support Center\SamoyedAgent.exe - ok
15:15:24.0610 4396 [ 3EE970DF32D49E8C8D511C4C8E4AAA80 ] C:\Program Files\Samsung\S Agent\CommonAgent.exe
15:15:24.0610 4396 C:\Program Files\Samsung\S Agent\CommonAgent.exe - ok
15:15:24.0610 4396 [ F152755F131ADFE452D534F4E9383590 ] C:\Windows\System32\Faultrep.dll
15:15:24.0610 4396 C:\Windows\System32\Faultrep.dll - ok
15:15:24.0625 4396 [ 6D137963730144698CBD10F202E9F251 ] C:\Windows\System32\wersvc.dll
15:15:24.0625 4396 C:\Windows\System32\wersvc.dll - ok
15:15:24.0625 4396 [ C9FB9038B15036CA28CF0B4BE2BED9BD ] C:\Windows\System32\en-US\tquery.dll.mui
15:15:24.0625 4396 C:\Windows\System32\en-US\tquery.dll.mui - ok
15:15:24.0641 4396 [ 8784236EED5079493DA9FC95B28B89F8 ] C:\Windows\System32\WerFault.exe
15:15:24.0641 4396 C:\Windows\System32\WerFault.exe - ok
15:15:24.0641 4396 [ 990EA3103E06D68CE0E755A9C3D70107 ] C:\Windows\System32\dbgeng.dll
15:15:24.0641 4396 C:\Windows\System32\dbgeng.dll - ok
15:15:24.0641 4396 [ 6E1F8165C365D35C8E3C045AF0CDD481 ] C:\Windows\SysWOW64\duser.dll
15:15:24.0641 4396 C:\Windows\SysWOW64\duser.dll - ok
15:15:24.0656 4396 [ EE06B85BC69F18826302348A2AD089E0 ] C:\Windows\SysWOW64\dui70.dll
15:15:24.0656 4396 C:\Windows\SysWOW64\dui70.dll - ok
15:15:24.0656 4396 [ 981716D86BA53B87F9A4B9F837FC60C4 ] C:\Program Files\SUPERAntiSpyware\sas_enum_cookies.exe
15:15:24.0656 4396 C:\Program Files\SUPERAntiSpyware\sas_enum_cookies.exe - ok
15:15:24.0672 4396 [ F00AE7B953ABEF1B53FBBA187DFC8238 ] C:\Windows\System32\webcheck.dll
15:15:24.0672 4396 C:\Windows\System32\webcheck.dll - ok
15:15:24.0672 4396 [ 101797BA603D227946B4B5109867EB19 ] C:\Windows\System32\SyncCenter.dll
15:15:24.0672 4396 C:\Windows\System32\SyncCenter.dll - ok
15:15:24.0672 4396 [ EDF4DEC1041EEAF78A0B1E16C1BB4CC4 ] C:\Windows\System32\fthsvc.dll
15:15:24.0672 4396 C:\Windows\System32\fthsvc.dll - ok
15:15:24.0688 4396 [ 0819EF7DB96DAB8AC3DACE567ED1B99E ] C:\Windows\System32\werui.dll
15:15:24.0688 4396 C:\Windows\System32\werui.dll - ok
15:15:24.0688 4396 [ 4C1C47590F05CA16D99CBBE7442BCBF9 ] C:\Program Files\Samsung\S Agent\ToastX64.dll
15:15:24.0688 4396 C:\Program Files\Samsung\S Agent\ToastX64.dll - ok
15:15:24.0688 4396 [ 6A5C1A8AC0B572679361026D0E900420 ] C:\Windows\System32\hgcpl.dll
15:15:24.0688 4396 C:\Windows\System32\hgcpl.dll - ok
15:15:24.0703 4396 [ 04CB7C8FDC6D9640DD82A527208F72C4 ] C:\Windows\System32\UIAnimation.dll
15:15:24.0703 4396 C:\Windows\System32\UIAnimation.dll - ok
15:15:24.0703 4396 [ 41E2A342FD3F6D1714EA1AD44C57238C ] C:\Program Files\Samsung\Easy Support Center\Sabi3.dll
15:15:24.0703 4396 C:\Program Files\Samsung\Easy Support Center\Sabi3.dll - ok
15:15:24.0719 4396 [ 26D652191B51854E66084DDAEE69EC65 ] C:\Windows\System32\verifier.dll
15:15:24.0719 4396 C:\Windows\System32\verifier.dll - ok
15:15:24.0719 4396 [ A9F3BFC9345F49614D5859EC95B9E994 ] C:\Program Files\Windows Media Player\wmpnetwk.exe
15:15:24.0719 4396 C:\Program Files\Windows Media Player\wmpnetwk.exe - ok
15:15:24.0719 4396 [ 4AEDAB50F83580D0B4D6CF78191F92AA ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
15:15:24.0719 4396 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe - ok
15:15:24.0734 4396 [ E17E0188BB90FAE42D83E98707EFA59C ] C:\Windows\System32\sppsvc.exe
15:15:24.0734 4396 C:\Windows\System32\sppsvc.exe - ok
15:15:24.0734 4396 [ 271B8112BE8AF626AE6A2658CCE8065B ] C:\Program Files (x86)\Samsung\Easy Settings\EBM\EasyBatteryMgr4.exe
15:15:24.0734 4396 C:\Program Files (x86)\Samsung\Easy Settings\EBM\EasyBatteryMgr4.exe - ok
15:15:24.0750 4396 [ 5746BD7E255DD6A8AFA06F7C42C1BA41 ] C:\Windows\System32\cmd.exe
15:15:24.0750 4396 C:\Windows\System32\cmd.exe - ok
15:15:24.0750 4396 [ 98E7E971AB21A6EDD2323C0FB37B9A0F ] C:\Windows\SysWOW64\powercfg.exe
15:15:24.0750 4396 C:\Windows\SysWOW64\powercfg.exe - ok
15:15:24.0750 4396 ============================================================
15:15:24.0750 4396 Scan finished
15:15:24.0750 4396 ============================================================
15:15:24.0766 4388 Detected object count: 5
15:15:24.0766 4388 Actual detected object count: 5
15:15:43.0423 4388 Atheros Bt&Wlan Coex Agent ( UnsignedFile.Multi.Generic ) - skipped by user
15:15:43.0423 4388 Atheros Bt&Wlan Coex Agent ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:15:43.0423 4388 AtherosSvc ( UnsignedFile.Multi.Generic ) - skipped by user
15:15:43.0423 4388 AtherosSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:15:43.0423 4388 RichVideo ( UnsignedFile.Multi.Generic ) - skipped by user
15:15:43.0423 4388 RichVideo ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:15:43.0423 4388 SamsungDeviceConfigurationWinService ( UnsignedFile.Multi.Generic ) - skipped by user
15:15:43.0423 4388 SamsungDeviceConfigurationWinService ( UnsignedFile.Multi.Generic ) - User select action: Skip
15:15:43.0626 4388 \Device\Harddisk0\DR0\TDLFS\cmd.dll - copied to quarantine
15:15:43.0891 4388 \Device\Harddisk0\DR0\TDLFS\cmd64.dll - copied to quarantine
15:15:44.0250 4388 \Device\Harddisk0\DR0\TDLFS\drv32 - copied to quarantine
15:15:45.0498 4388 \Device\Harddisk0\DR0\TDLFS\drv64 - copied to quarantine
15:15:45.0561 4388 \Device\Harddisk0\DR0\TDLFS\servers.dat - copied to quarantine
15:15:45.0592 4388 \Device\Harddisk0\DR0\TDLFS\config.ini - copied to quarantine
15:15:45.0639 4388 \Device\Harddisk0\DR0\TDLFS\ldr16 - copied to quarantine
15:15:45.0904 4388 \Device\Harddisk0\DR0\TDLFS\ldr32 - copied to quarantine
15:15:45.0982 4388 \Device\Harddisk0\DR0\TDLFS\ldr64 - copied to quarantine
15:15:46.0060 4388 \Device\Harddisk0\DR0\TDLFS\s - copied to quarantine
15:15:46.0091 4388 \Device\Harddisk0\DR0\TDLFS\ldrm - copied to quarantine
15:15:46.0107 4388 \Device\Harddisk0\DR0\TDLFS\u - copied to quarantine
15:15:46.0185 4388 \Device\Harddisk0\DR0\TDLFS\ph.dll - copied to quarantine
15:15:46.0247 4388 \Device\Harddisk0\DR0\TDLFS - deleted
15:15:46.0247 4388 \Device\Harddisk0\DR0 ( TDSS File System ) - User select action: Delete
15:15:58.0852 3596 Deinitialize success
  • 0

Advertisements


#11
maliprog

maliprog

    Trusted Helper

  • Malware Removal
  • 6,172 posts
Hi ttbcs,

Can you please test your system after this step and let me know results.

Step 1

Please download Malwarebytes' Anti-Malware

Double Click mbam-setup.exe to install the application.
  • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select "Perform Quick Scan", then click Scan.
  • The scan may take some time to finish, so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.(See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy&Paste the entire report in your next reply.
Extra Note:
If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts, click OK to either and let MBAM proceed with the disinfection process, if asked to restart the computer, please do so immediately.

Step 2

Please don't forget to include these items in your reply:

  • Malwarebytes log
It would be helpful if you could post each log in separate post using "Add Reply" button
  • 0

#12
ttbcs

ttbcs

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 102 posts
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Database version: v2014.02.04.12

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 11.0.9600.16476
Nakaela BC :: KAELABUG [administrator]

2/4/2014 3:34:51 PM
mbam-log-2014-02-04 (15-34-51).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 228417
Time elapsed: 20 minute(s), 14 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 1
HKLM\Software\SlamDunk Savings (PUP.Optional.SlamDunkSavings.A) -> Quarantined and deleted successfully.

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)
  • 0

#13
maliprog

maliprog

    Trusted Helper

  • Malware Removal
  • 6,172 posts
Hi ttbcs,

Your logs and system are clean now. I don't see anything else t oremove :)

Step 1

Please close all running programs and Run OTL
  • Under the Custom Scans/Fixes box at the bottom, paste in the following

    :OTL

    :Commands
    [purity]
    [emptytemp]
    [resethosts]
    [clearallrestorepoints]
    [Reboot]

  • Then click the Run Fix button at the top
  • Let the program run unhindered, reboot the PC when it is done
Step 2

We need to clean up your PC from programs we used.

Please start OTL one more time and click CleanUp button. OTL will restart your system at the end.

In case that any of the software we used in this fix still remains on your system please delete it manually (Right click on it and select Delete).

General recommendations

Here are some recommendations you should follow to minimize infection risk in the future:

1. Something to read

To learn more about how to protect yourself while on the internet read our little guide How did I get infected in the first place ?

2. Make Backups of Important Files

Please read this article Home Computer Data Backup.

3. Regularly update your software

To eliminate design flaws and security vulnerabilities, all software needs to be updated to the latest version or the vendor’s patch installed.

You should download Update Checker from here. The program will automaticly check for newer version of software installed on your system.
  • 0

#14
ttbcs

ttbcs

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 102 posts
ran the fix got this log

All processes killed
========== OTL ==========
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Nakaela BC
->Temp folder emptied: 4464745 bytes
->Temporary Internet Files folder emptied: 351945770 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 22694237 bytes
->Google Chrome cache emptied: 16810715 bytes
->Flash cache emptied: 592 bytes

User: Public
->Temp folder emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 874282040 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 128 bytes
RecycleBin emptied: 270159996 bytes

Total Files Cleaned = 1,469.00 mb

C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
Restore point Set: OTL Restore Point

OTL by OldTimer - Version 3.2.69.0 log created on 02052014_152034

Files\Folders moved on Reboot...
C:\Users\Nakaela BC\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
C:\Users\Nakaela BC\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
  • 0

#15
ttbcs

ttbcs

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 102 posts
ran cleanup - everything looks good

thank you for your time and effort
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP