Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

HP Pavilion running Windows 7: slow startup, desktop disappears, windo

windows 7 slow startup windows popup desktop blackout windows setup device toolbar disappeared

  • Please log in to reply

#16
joy2mac

joy2mac

    Member

  • Topic Starter
  • Member
  • PipPip
  • 44 posts

Hi, restarted in normal mode and the disk check ran for a couple hours (and completed).

 

I tried logging in, in normal mode, and Windows automatically logs me off after entering the password (same problem as before).

 

When open a command prompt in Safe Mode with Networking and enter chkntfs /x c: the window says 'The type of the file system is NTFS.' 

 

Please let me know what to do next and thank you,

 

joy


  • 0

Advertisements


#17
joy2mac

joy2mac

    Member

  • Topic Starter
  • Member
  • PipPip
  • 44 posts

ps - I haven't done the low resolution video option in safe mode, but I can try that to get a command prompt window if I have trouble later on.


  • 0

#18
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,025 posts
  • MVP

Try going in to msconfig and under services, uncheck Hide Microsoft and then uncheck all of the services.  Then OK and reboot.  Perhaps one of the MS services is causing the problem.  Also if that doesn't help then try the Low Resolution Video option just to see if it has an effect.


  • 0

#19
joy2mac

joy2mac

    Member

  • Topic Starter
  • Member
  • PipPip
  • 44 posts

Shoot! I went into msconfig, unchecked the specified boxes, then rebooted in normal and low resolution video modes. For both, windows automatically logged me off after I entered my password and hit enter to login. 


  • 0

#20
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,025 posts
  • MVP

When you go into Safe Mode are you using the same login as in regular mode?  Boot into Safe Mode again and create a new login with Admin rights and then try to boot into that login.

 

http://www.bleepingc...indows-vista-7/

 

Just make sure you check the Administrator instead of Standard User in Step 6.


  • 0

#21
joy2mac

joy2mac

    Member

  • Topic Starter
  • Member
  • PipPip
  • 44 posts

You are right, I was using the same login for safe mode and normal mode.

 

When I created another Administrator account, I was able to login in normal mode with that account.

 

On my desktop in this new Administrator account, a dialogue box appears that says: 

 

'System Restore did not complete successfully. Your computer's system files and settings were not changed. Details: The System Restore is still in progress or did not complete. You can try System restore again and choose a different restore point. If you continue to see this error, you can try an advanced recovery method. For more information, see What is Recovery?'

 

Success! - sort of


  • 0

#22
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,025 posts
  • MVP
 

What this tells me is that it's something in the registry that is only associated with the one login.  

 

Now that we have it working let's run a few scans and see if anything comes up:

 

 
Download aswMBR.exe  to your desktop.
Right click aswMBR.exe and Run as Administrator
uncheck trace disk IO calls
Click the "Scan" button to start scan (Accept the Avast Engine)
On completion of the scan if the Fix button is enabled (not the FixMBR button) press it and then run a new scan and  click save log, save it to your desktop and post in your next reply
If the Fix button is not enabled then just click save log, save it to your desktop and post in your next reply
 
ComboFix
 
:!: It must be saved to your desktop, do not run it from your browser:!:
 
:!: Disable your Antivirus software when downloading or running Combofix. If it has Script Blocking features, please disable these as well.  See: http://www.bleepingc...opic114351.html
 
 
Download and Save this file --  to your Desktop -- from either of these two sources:
 
Rightclick on ComboFix and select Run As Administrator to start the program.  
 
 
 
    * :!: Important: Have no other programs running. Your Task Bar should be clear of any program entries including your Browser.
    
    
    * A window may open with a series of Disclaimers. Accept the Disclaimers to start the fix.  
 
Do not touch your mouse/keyboard until the scan has completed, as this may cause the process to stall or your computer to lock. The scan will temporarily disable your desktop, and if interrupted may leave your desktop disabled. If this occurs, please reboot to restore the desktop. Even when ComboFix appears to be doing nothing, look at your Drive light. If it is flashing, Combofix is still at work.
 
A file will be created at => C:\Combofix\Combofix.txt. I'll need to see that in your reply.
 
 
Download TDSSKiller:
Save it to your desktop then run it by right clicking and Run As Admin.
 
 
If TDSSKiller alerts you that the system needs to reboot, please consent.
 
Run TDSSKiller again but this time:
before you hit the Scan  hit  Change Parameters and check the two items under Additional Options. OK then Scan.
In this mode it is prone to false positives so do not change the SKIP option to DELETE unless it says TDSS.
When done, a log file should be created on your C: drive named "TDSSKiller.txt" please copy and paste the contents in your next reply.
 
 

 

 

 

I suppose you could move your documents and stuff to the new login and then delete the old one and just leave it at that.  

 

http://www.thewindow...file-in-windows

 

Haven't tried it but it may require you to login to the old login.  It's also possible to just take ownership of the old login's file and copy them in to the right folders.  A bit tedious but a possibility.


  • 0

#23
joy2mac

joy2mac

    Member

  • Topic Starter
  • Member
  • PipPip
  • 44 posts

Hi, 

 

I was not able to get online in the desktop with the new login (I could not setup the network connection either - "windows could not detect any networking hardware," though I have a wireless router which is working on my other devices). I downloaded the programs above onto a flash drive, then dragged and dropped them to the infected computer's desktop in the new login. The logs from the scans are below. I also have all my documents saved on an external hard drive so no problem (as far as I know) with deleting out the old desktop login… just have to go back and download the additional programs again. Thanks again for your help, we'll see what these logs say.

 

 

aswMBR

 

aswMBR version 0.9.9.1771 Copyright© 2011 AVAST Software

Run date: 2014-05-03 17:44:15
-----------------------------
17:44:15.417    OS Version: Windows x64 6.1.7601 Service Pack 1
17:44:15.417    Number of processors: 8 586 0x1E05
17:44:15.417    ComputerName: JMACBETH-PC  UserName: joy_macbeth
17:44:16.633    Initialize success
17:44:39.113    AVAST engine download error: 0
17:44:48.551    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
17:44:48.551    Disk 0 Vendor: ST950042 0006 Size: 476940MB BusType: 3
17:44:48.676    Disk 0 MBR read successfully
17:44:48.676    Disk 0 MBR scan
17:44:48.676    Disk 0 unknown MBR code
17:44:48.691    Disk 0 Partition 1 80 (A) 07    HPFS/NTFS NTFS          199 MB offset 2048
17:44:48.707    Disk 0 Partition 2 00     07    HPFS/NTFS NTFS       463048 MB offset 409600
17:44:48.738    Disk 0 Partition 3 00     07    HPFS/NTFS NTFS        13588 MB offset 948731904
17:44:48.754    Disk 0 Partition 4 00     0C    FAT32 LBA MSDOS5.0      103 MB offset 976560128
17:44:48.801    Disk 0 scanning C:\Windows\system32\drivers
17:45:00.189    Service scanning
17:45:19.595    Modules scanning
17:45:19.595    Scan finished successfully
17:46:16.738    Disk 0 MBR has been saved successfully to "J:\MBR.dat"
17:46:16.832    The log file has been saved successfully to "J:\aswMBR log 1.txt"
 
 

ComboFix

 

ComboFix 14-04-30.01 - joy_macbeth 05/03/2014  17:58:43.1.8 - x64

Microsoft Windows 7 Home Premium   6.1.7601.1.1252.1.1033.18.8183.6865 [GMT -7:00]
Running from: C:\Users\joy_macbeth\Desktop\ComboFix.exe
 * Created a new restore point
 
 
(((((((((((((((((((((((((((((((((((((((   Other Deletions   )))))))))))))))))))))))))))))))))))))))))))))))))
 
 
C:\Users\JOY_MA~1\AppData\Local\Temp\nsd277F.tmp\System.dll
C:\Users\joy_macbeth\AppData\Local\Temp\nsd277F.tmp\System.dll
C:\Users\Public\videos\HP MediaSmart Demo.exe
 
 
(((((((((((((((((((((((((   Files Created from 2014-04-04 to 2014-05-04  )))))))))))))))))))))))))))))))
 
 
2014-05-03 03:16:51 . 2014-05-03 03:17:19 -------- d-----w- C:\Users\joy_macbeth
2014-04-29 02:35:12 . 2014-04-29 02:35:12 -------- d-----w- C:\ProgramData\AVG Secure Search
2014-04-27 21:37:35 . 2014-04-29 03:57:05 -------- d-----w- C:\FRST
2014-04-26 23:17:11 . 2014-04-26 23:38:12 -------- d-----w- C:\logs
2014-04-25 05:14:36 . 2014-04-25 05:14:53 -------- d-----w- C:\Program Files\SUPERAntiSpyware
2014-04-25 05:14:35 . 2014-04-25 05:14:35 -------- d-----w- C:\ProgramData\SUPERAntiSpyware.com
2014-04-25 02:41:43 . 2013-09-04 21:57:44 31264 ----a-w- C:\Windows\system32\drivers\gfiutil.sys
2014-04-25 02:41:41 . 2013-05-23 15:39:24 41032 ----a-w- C:\Windows\system32\drivers\gfiark.sys
2014-04-25 02:41:26 . 2014-04-25 05:05:04 -------- d-----w- C:\VIPRERESCUE
2014-04-25 02:10:23 . 2014-04-25 02:10:45 119512 ----a-w- C:\Windows\system32\drivers\MBAMSwissArmy.sys
2014-04-25 02:10:10 . 2014-04-25 02:10:13 -------- d-----w- C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-04-25 02:10:10 . 2014-04-03 16:51:16 63192 ----a-w- C:\Windows\system32\drivers\mwac.sys
2014-04-25 02:10:10 . 2014-04-03 16:51:04 88280 ----a-w- C:\Windows\system32\drivers\mbamchameleon.sys
2014-04-25 02:01:58 . 2014-04-25 02:01:58 -------- d-s---w- C:\Windows\SysWow64\Microsoft
2014-04-24 01:49:37 . 2014-04-24 04:32:37 -------- d-----w- C:\Users\TEMP
2014-04-23 05:49:47 . 2014-04-23 05:49:47 -------- d-----w- C:\Windows\Migration
2014-04-23 05:47:06 . 2014-03-06 06:00:52 359936 ----a-w- C:\Program Files\Internet Explorer\IEShims.dll
2014-04-23 05:47:05 . 2014-03-06 05:50:23 257536 ----a-w- C:\Program Files (x86)\Internet Explorer\IEShims.dll
2014-04-23 05:47:03 . 2014-03-06 08:32:38 574976 ----a-w- C:\Windows\system32\ieui.dll
2014-04-18 22:01:56 . 2014-04-18 22:01:56 237336 ----a-w- C:\Windows\system32\drivers\avgidsdrivera.sys
2014-04-09 03:45:31 . 2014-01-24 02:37:55 1684928 ----a-w- C:\Windows\system32\drivers\ntfs.sys
.
 
 
((((((((((((((((((((((((((((((((((((((((   Find3M Report   ))))))))))))))))))))))))))))))))))))))))))))))))))))
 
2014-04-28 00:38:04 . 2013-04-02 21:35:27 50464 ----a-w- C:\Windows\system32\drivers\avgtpx64.sys
2014-04-09 05:25:44 . 2010-03-08 05:09:03 90655440 ----a-w- C:\Windows\system32\MRT.exe
2014-04-03 16:50:58 . 2013-04-11 20:41:17 25816 ----a-w- C:\Windows\system32\drivers\mbam.sys
2014-03-31 23:20:54 . 2014-03-31 23:20:54 274200 ----a-w- C:\Windows\system32\drivers\avgtdia.sys
2014-03-31 23:06:26 . 2014-03-31 23:06:26 130840 ----a-w- C:\Windows\system32\drivers\avgmfx64.sys
2014-03-28 05:14:26 . 2014-03-28 05:14:26 192792 ----a-w- C:\Windows\system32\drivers\avgidsha.sys
2014-03-28 05:14:24 . 2014-03-28 05:14:24 153368 ----a-w- C:\Windows\system32\drivers\avgdiska.sys
2014-03-28 05:07:10 . 2014-03-28 05:07:10 236824 ----a-w- C:\Windows\system32\drivers\avgldx64.sys
2014-03-28 05:05:02 . 2014-03-28 05:05:02 324376 ----a-w- C:\Windows\system32\drivers\avgloga.sys
2014-03-28 05:03:16 . 2014-03-28 05:03:16 32536 ----a-w- C:\Windows\system32\drivers\avgrkx64.sys
2014-03-16 20:56:14 . 2012-04-27 21:26:11 692616 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2014-03-16 20:56:14 . 2011-06-01 04:02:17 71048 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2014-03-14 03:57:13 . 2014-03-14 03:57:58 67584 ----a-w- C:\Windows\system32\RtNicProp64.dll
2014-03-14 03:57:13 . 2014-03-14 03:57:58 291328 ----a-w- C:\Windows\system32\drivers\Rt64win7.sys
2014-03-07 04:43:46 . 2014-03-29 17:24:53 10521840 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EAA52796-8D1B-4566-B43F-1FC27D44EEBF}\mpengine.dll
2014-03-04 09:17:05 . 2014-04-09 03:49:18 44032 ----a-w- C:\Windows\apppatch\acwow64.dll
2014-02-07 01:23:30 . 2014-03-16 20:25:35 3156480 ----a-w- C:\Windows\system32\win32k.sys
2014-02-04 02:32:22 . 2014-03-16 20:24:23 1424384 ----a-w- C:\Windows\system32\WindowsCodecs.dll
2014-02-04 02:32:12 . 2014-03-16 20:24:28 624128 ----a-w- C:\Windows\system32\qedit.dll
2014-02-04 02:04:22 . 2014-03-16 20:24:23 1230336 ----a-w- C:\Windows\SysWow64\WindowsCodecs.dll
2014-02-04 02:04:11 . 2014-03-16 20:24:28 509440 ----a-w- C:\Windows\SysWow64\qedit.dll
 
 
(((((((((((((((((((((((((((((((((((((   Reg Loading Points   ))))))))))))))))))))))))))))))))))))))))))))))))))
 
 
*Note* empty entries & legit default entries are not shown 
REGEDIT4
 
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"="C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" [2010-06-16 20:40:16 2736128]
 
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
 
 
TDSSKiller (without changed parameters)
 
18:18:47.0332 0x07c8  TDSS rootkit removing tool 3.0.0.34 Apr 29 2014 18:20:10
18:18:53.0104 0x07c8  ============================================================
18:18:53.0104 0x07c8  Current date / time: 2014/05/03 18:18:53.0104
18:18:53.0104 0x07c8  SystemInfo:
18:18:53.0104 0x07c8  
18:18:53.0104 0x07c8  OS Version: 6.1.7601 ServicePack: 1.0
18:18:53.0104 0x07c8  Product type: Workstation
18:18:53.0104 0x07c8  ComputerName: JMACBETH-PC
18:18:53.0104 0x07c8  UserName: joy_macbeth
18:18:53.0104 0x07c8  Windows directory: C:\Windows
18:18:53.0104 0x07c8  System windows directory: C:\Windows
18:18:53.0104 0x07c8  Running under WOW64
18:18:53.0104 0x07c8  Processor architecture: Intel x64
18:18:53.0104 0x07c8  Number of processors: 8
18:18:53.0104 0x07c8  Page size: 0x1000
18:18:53.0104 0x07c8  Boot type: Normal boot
18:18:53.0104 0x07c8  ============================================================
18:18:56.0911 0x07c8  KLMD registered as C:\Windows\system32\drivers\98386031.sys
18:18:57.0191 0x07c8  System UUID: {CC4C5023-816C-85AA-42D6-D4736CCD2675}
18:18:57.0800 0x07c8  Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
18:18:57.0815 0x07c8  ============================================================
18:18:57.0815 0x07c8  \Device\Harddisk0\DR0:
18:18:57.0815 0x07c8  MBR partitions:
18:18:57.0815 0x07c8  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x63800
18:18:57.0815 0x07c8  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x64000, BlocksNum 0x38864000
18:18:57.0815 0x07c8  \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x388C8000, BlocksNum 0x1A8A000
18:18:57.0815 0x07c8  \Device\Harddisk0\DR0\Partition4: MBR, Type 0xC, StartLBA 0x3A352000, BlocksNum 0x33830
18:18:57.0815 0x07c8  ============================================================
18:18:57.0831 0x07c8  C: <-> \Device\Harddisk0\DR0\Partition2
18:18:57.0893 0x07c8  D: <-> \Device\Harddisk0\DR0\Partition3
18:18:57.0893 0x07c8  E: <-> \Device\Harddisk0\DR0\Partition4
18:18:57.0893 0x07c8  ============================================================
18:18:57.0893 0x07c8  Initialize success
18:18:57.0893 0x07c8  ============================================================
18:19:12.0152 0x0870  ============================================================
18:19:12.0152 0x0870  Scan started
18:19:12.0152 0x0870  Mode: Manual; 
18:19:12.0152 0x0870  ============================================================
18:19:12.0152 0x0870  KSN ping started
18:19:12.0277 0x0870  KSN ping finished: false
18:19:13.0774 0x0870  ================ Scan system memory ========================
18:19:13.0774 0x0870  System memory - ok
18:19:13.0774 0x0870  ================ Scan services =============================
18:19:14.0024 0x0870  [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
18:19:14.0024 0x0870  1394ohci - ok
18:19:14.0071 0x0870  [ 1CFFE9C06E66A57DAE1452E449A58240, F337852EEF9DCF33FB1B85EEF61FA8D28A780B13488B144DFAD2234FC24CB430 ] Accelerometer   C:\Windows\system32\DRIVERS\Accelerometer.sys
18:19:14.0071 0x0870  Accelerometer - ok
18:19:14.0086 0x0870  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
18:19:14.0102 0x0870  ACPI - ok
18:19:14.0149 0x0870  [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
18:19:14.0149 0x0870  AcpiPmi - ok
18:19:14.0211 0x0870  [ 2F0683FD2DF1D92E891CACA14B45A8C1, B4A8D6A183FA0B7D642FAD6B51C19FEC998481E1C49480D2B391E5D8B55F5BBD ] adfs            C:\Windows\system32\drivers\adfs.sys
18:19:14.0211 0x0870  adfs - ok
18:19:14.0351 0x0870  [ ADDA5E1951B90D3D23C56D3CF0622ADC, E85E7BFD29F00ED34BF5BE8BD4DA93CBB14278E16809BB55406875F0DA88551E ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
18:19:14.0351 0x0870  AdobeARMservice - ok
18:19:14.0507 0x0870  [ 9D96B0D5855FD1B98023B3EEC9F06786, E4C79233158BE8AA4E9C6DD71585E5D2703A5156531EB3D692D7D81BC443E844 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
18:19:14.0523 0x0870  AdobeFlashPlayerUpdateSvc - ok
18:19:14.0554 0x0870  [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx         C:\Windows\system32\DRIVERS\adp94xx.sys
18:19:14.0570 0x0870  adp94xx - ok
18:19:14.0601 0x0870  [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci         C:\Windows\system32\DRIVERS\adpahci.sys
18:19:14.0617 0x0870  adpahci - ok
18:19:14.0632 0x0870  [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320         C:\Windows\system32\DRIVERS\adpu320.sys
18:19:14.0648 0x0870  adpu320 - ok
18:19:14.0663 0x0870  [ 4B78B431F225FD8624C5655CB1DE7B61, 198A5AF2125C7C41F531A652D200C083A55A97DC541E3C0B5B253C7329949156 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
18:19:14.0679 0x0870  AeLookupSvc - ok
18:19:14.0804 0x0870  [ A6FB9DB8F1A86861D955FD6975977AE0, 788C6EE50719227D7A9B7F08C8D5E1289FCD0E8AC23A1021A5093D2E8368F696 ] AESTFilters     C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\AESTSr64.exe
18:19:14.0851 0x0870  AESTFilters - ok
18:19:14.0913 0x0870  [ 79059559E89D06E8B80CE2944BE20228, 6E041D2FED2D0C3D8E16E56CB61D3245F9144EA92F5BDC9A4AA30598D1C8E6EE ] AFD             C:\Windows\system32\drivers\afd.sys
18:19:14.0929 0x0870  AFD - ok
18:19:14.0975 0x0870  [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440          C:\Windows\system32\drivers\agp440.sys
18:19:14.0975 0x0870  agp440 - ok
18:19:15.0007 0x0870  [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG             C:\Windows\System32\alg.exe
18:19:15.0022 0x0870  ALG - ok
18:19:15.0069 0x0870  [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide          C:\Windows\system32\drivers\aliide.sys
18:19:15.0069 0x0870  aliide - ok
18:19:15.0100 0x0870  [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide          C:\Windows\system32\drivers\amdide.sys
18:19:15.0116 0x0870  amdide - ok
18:19:15.0131 0x0870  [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8           C:\Windows\system32\DRIVERS\amdk8.sys
18:19:15.0131 0x0870  AmdK8 - ok
18:19:15.0147 0x0870  [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM          C:\Windows\system32\DRIVERS\amdppm.sys
18:19:15.0147 0x0870  AmdPPM - ok
18:19:15.0194 0x0870  [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
18:19:15.0194 0x0870  amdsata - ok
18:19:15.0225 0x0870  [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs          C:\Windows\system32\DRIVERS\amdsbs.sys
18:19:15.0225 0x0870  amdsbs - ok
18:19:15.0241 0x0870  [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata         C:\Windows\system32\drivers\amdxata.sys
18:19:15.0241 0x0870  amdxata - ok
18:19:15.0287 0x0870  [ E71711D37C48AC40FD3E2866A5ABBA51, C85DB75741B17A0A84B045DC461B5A6C5EA2A34BCD661107D355CE8DF4A29E03 ] anvsnddrv       C:\Windows\system32\drivers\anvsnddrv.sys
18:19:15.0303 0x0870  anvsnddrv - ok
18:19:15.0365 0x0870  [ 89A69C3F2F319B43379399547526D952, 8ABDB4B8E106F96EBBA0D4D04C4F432296516E107E7BA5644ED2E50CF9BB491A ] AppID           C:\Windows\system32\drivers\appid.sys
18:19:15.0381 0x0870  AppID - ok
18:19:15.0397 0x0870  [ 0BC381A15355A3982216F7172F545DE1, C33AF13CB218F7BF52E967452573DF2ADD20A95C6BF99229794FEF07C4BBE725 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
18:19:15.0412 0x0870  AppIDSvc - ok
18:19:15.0459 0x0870  [ 9D2A2369AB4B08A4905FE72DB104498F, D6FA1705018BABABFA2362E05691A0D6408D14DE7B76129B16D0A1DAD6378E58 ] Appinfo         C:\Windows\System32\appinfo.dll
18:19:15.0459 0x0870  Appinfo - ok
18:19:15.0568 0x0870  [ 221564CC7BE37611FE15EACF443E1BF6, 381BDF17418C779D72332431BA174C2AD76CD9C7C1711FF5142EA9B05D5555E4 ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
18:19:15.0568 0x0870  Apple Mobile Device - ok
18:19:15.0631 0x0870  [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc             C:\Windows\system32\DRIVERS\arc.sys
18:19:15.0631 0x0870  arc - ok
18:19:15.0646 0x0870  [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas          C:\Windows\system32\DRIVERS\arcsas.sys
18:19:15.0646 0x0870  arcsas - ok
18:19:15.0818 0x0870  [ 9A262EDD17F8473B91B333D6B031A901, 05DFBD3A7D83FDE1D062EA719ACA9EC48CB7FD42D17DDD88B82E5D25469ADD23 ] aspnet_state    C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
18:19:15.0818 0x0870  aspnet_state - ok
18:19:15.0865 0x0870  [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
18:19:15.0865 0x0870  AsyncMac - ok
18:19:15.0896 0x0870  [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi           C:\Windows\system32\drivers\atapi.sys
18:19:15.0896 0x0870  atapi - ok
18:19:15.0974 0x0870  [ F23FEF6D569FCE88671949894A8BECF1, FCE7B156ED663471CF9A736915F00302E93B50FC647563D235313A37FCE8F0F6 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
18:19:16.0005 0x0870  AudioEndpointBuilder - ok
18:19:16.0036 0x0870  [ F23FEF6D569FCE88671949894A8BECF1, FCE7B156ED663471CF9A736915F00302E93B50FC647563D235313A37FCE8F0F6 ] AudioSrv        C:\Windows\System32\Audiosrv.dll
18:19:16.0036 0x0870  AudioSrv - ok
18:19:16.0395 0x0870  [ 2D5E8A35808FDA50274CFD22000DAB53, 3C11CCD0162DD5D036527D7DBEC8159CCB60E84C16F9ADA84773EC3302BEB4A5 ] Avgdiska        C:\Windows\system32\DRIVERS\avgdiska.sys
18:19:16.0395 0x0870  Avgdiska - ok
18:19:16.0660 0x0870  [ 7645B56EE79C68DFE19298BD531A66A3, 4FB045E7B947A4C9D7FA0EADE0BBC2C14F55BF1B660D8BA7D479935D74A9F5E7 ] AVGIDSAgent     C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe
18:19:16.0785 0x0870  AVGIDSAgent - ok
18:19:16.0847 0x0870  [ E92276DB995B7E75DA9B9DD271058A8E, FFEC1ECE3ED25D8D757765452035369BBD45A0C158747C826D1696A2E3B38903 ] AVGIDSDriver    C:\Windows\system32\DRIVERS\avgidsdrivera.sys
18:19:16.0847 0x0870  AVGIDSDriver - ok
18:19:16.0894 0x0870  [ F6CE2F1B6E890FB5EBC04A11A2E31DC1, 7F1442D6EDF18D089C7DBB00AF03BB4376A59006187D29D05402B2830E84F7E7 ] AVGIDSHA        C:\Windows\system32\DRIVERS\avgidsha.sys
18:19:16.0894 0x0870  AVGIDSHA - ok
18:19:16.0957 0x0870  [ B323DE78E0C75F3605C7A200F3CF350F, 1CBBB65E9E91E0C787530B6B21D89771083C20604E6F8447FAA9BC5FAE1CA895 ] Avgldx64        C:\Windows\system32\DRIVERS\avgldx64.sys
18:19:16.0988 0x0870  Avgldx64 - ok
18:19:17.0035 0x0870  [ 6E381AFF06BC6ABFAEF70405014D7A37, 887D6B766E27B18406BA30C02F46B5015A4BF9C9947462F75D87956BA4F61745 ] Avgloga         C:\Windows\system32\DRIVERS\avgloga.sys
18:19:17.0050 0x0870  Avgloga - ok
18:19:17.0097 0x0870  [ DBFB9BEAE2816FDB4B4EF8C89AFA3DF0, 840C5015960904090298D820F526A1A333A4E88C56FA932D1E80F10BF62040E4 ] Avgmfx64        C:\Windows\system32\DRIVERS\avgmfx64.sys
18:19:17.0097 0x0870  Avgmfx64 - ok
18:19:17.0128 0x0870  [ 9C6CD518AE78D532FB33240DE11C765D, 3532FB7D5434A5488C7513105B51734A27C1D95C8A7ADF1A5DE18A35FE8CE5A6 ] Avgrkx64        C:\Windows\system32\DRIVERS\avgrkx64.sys
18:19:17.0128 0x0870  Avgrkx64 - ok
18:19:17.0159 0x0870  [ F86A506DA0BF61402E19DB8AF0684C9A, A4AB8FE25B3A27E7351ABFF6A8B7120C722E797BE38708A1C5E38211672C6AE8 ] Avgtdia         C:\Windows\system32\DRIVERS\avgtdia.sys
18:19:17.0159 0x0870  Avgtdia - ok
18:19:17.0222 0x0870  [ 9FD4BC46784309176AEFA26AA8241DA1, 939F7503A6231E5FD5A3F46BDB97671D62D0CEC8B6EF82BD6B1090C45D9D6E1F ] avgtp           C:\Windows\system32\drivers\avgtpx64.sys
18:19:17.0222 0x0870  avgtp - ok
18:19:17.0253 0x0870  [ DBAEB3D23C653018629A76E53260E122, DF402D83206EDA77818D3B59456240E66C69D307FCC7419354BF363413BC7963 ] avgwd           C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe
18:19:17.0284 0x0870  avgwd - ok
18:19:17.0331 0x0870  [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV        C:\Windows\System32\AxInstSV.dll
18:19:17.0347 0x0870  AxInstSV - ok
18:19:17.0393 0x0870  [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv         C:\Windows\system32\DRIVERS\bxvbda.sys
18:19:17.0409 0x0870  b06bdrv - ok
18:19:17.0456 0x0870  [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
18:19:17.0471 0x0870  b57nd60a - ok
18:19:17.0534 0x0870  [ 9E84A931DBEE0292E38ED672F6293A99, 2945EAF0AC091709E0C5508B45EC343EDE507AC2B08A2D7D64F286D38424CBC4 ] BCM43XX         C:\Windows\system32\DRIVERS\bcmwl664.sys
18:19:17.0596 0x0870  BCM43XX - ok
18:19:17.0643 0x0870  [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC          C:\Windows\System32\bdesvc.dll
18:19:17.0705 0x0870  BDESVC - ok
18:19:17.0721 0x0870  [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep            C:\Windows\system32\drivers\Beep.sys
18:19:17.0721 0x0870  Beep - ok
18:19:17.0783 0x0870  [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE             C:\Windows\System32\bfe.dll
18:19:17.0815 0x0870  BFE - ok
18:19:17.0877 0x0870  [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS            C:\Windows\system32\qmgr.dll
18:19:17.0893 0x0870  BITS - ok
18:19:17.0908 0x0870  [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
18:19:17.0908 0x0870  blbdrive - ok
18:19:18.0033 0x0870  [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
18:19:18.0049 0x0870  Bonjour Service - ok
18:19:18.0095 0x0870  [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
18:19:18.0095 0x0870  bowser - ok
18:19:18.0127 0x0870  [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo        C:\Windows\system32\DRIVERS\BrFiltLo.sys
18:19:18.0127 0x0870  BrFiltLo - ok
18:19:18.0142 0x0870  [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp        C:\Windows\system32\DRIVERS\BrFiltUp.sys
18:19:18.0142 0x0870  BrFiltUp - ok
18:19:18.0173 0x0870  [ 5C2F352A4E961D72518261257AAE204B, 9EE1001E1D46A414A7A86FE1DBBE232203E26F54D9EF43ED31ED8EACD4D09853 ] BridgeMP        C:\Windows\system32\DRIVERS\bridge.sys
18:19:18.0173 0x0870  BridgeMP - ok
18:19:18.0205 0x0870  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser         C:\Windows\System32\browser.dll
18:19:18.0220 0x0870  Browser - ok
18:19:18.0251 0x0870  [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
18:19:18.0267 0x0870  Brserid - ok
18:19:18.0283 0x0870  [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
18:19:18.0283 0x0870  BrSerWdm - ok
18:19:18.0298 0x0870  [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
18:19:18.0298 0x0870  BrUsbMdm - ok
18:19:18.0314 0x0870  [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
18:19:18.0314 0x0870  BrUsbSer - ok
18:19:18.0376 0x0870  [ CF98190A94F62E405C8CB255018B2315, E1B2540023C4FE9FD588E4B6AE6347DFA565EB3898F21E5360882BF3E8B5E781 ] BthEnum         C:\Windows\system32\drivers\BthEnum.sys
18:19:18.0376 0x0870  BthEnum - ok
18:19:18.0392 0x0870  [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM        C:\Windows\system32\DRIVERS\bthmodem.sys
18:19:18.0407 0x0870  BTHMODEM - ok
18:19:18.0423 0x0870  [ 02DD601B708DD0667E1331FA8518E9FF, 7DE6CC4DBB621CD03B01D9CE6CF66EAFE31D39030A391562CD0E278E1D70ADE1 ] BthPan          C:\Windows\system32\DRIVERS\bthpan.sys
18:19:18.0423 0x0870  BthPan - ok
18:19:18.0470 0x0870  [ 738D0E9272F59EB7A1449C3EC118E6C4, FE3D32C2A5E4DC21376A0F89C0B2EE024ECF1A3FB99213CC9BBC986ADF7AF080 ] BTHPORT         C:\Windows\System32\Drivers\BTHport.sys
18:19:18.0485 0x0870  BTHPORT - ok
18:19:18.0532 0x0870  [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv         C:\Windows\system32\bthserv.dll
18:19:18.0532 0x0870  bthserv - ok
18:19:18.0548 0x0870  [ F188B7394D81010767B6DF3178519A37, 576304E92FD94908F093A6AB5F4D328F25829BE32EC3CA0D29EBFDF5DE83539B ] BTHUSB          C:\Windows\System32\Drivers\BTHUSB.sys
18:19:18.0563 0x0870  BTHUSB - ok
18:19:18.0610 0x0870  [ 4BDBDB86ABBA924E029FB2683BE7C505, A3C9C03CEC811ACE64E0C956BE9D69E7DF3877948F1659B26ED75982A846880F ] btwaudio        C:\Windows\system32\drivers\btwaudio.sys
18:19:18.0610 0x0870  btwaudio - ok
18:19:18.0626 0x0870  [ 5C849BD7C78791C5CEE9F4651D7FE38D, BC93A1B911FB4A44EC4DB64AF9AFC6F2013CD76BFB6FA9E4834CFDAAAF4BCD9F ] btwavdt         C:\Windows\system32\drivers\btwavdt.sys
18:19:18.0626 0x0870  btwavdt - ok
18:19:18.0673 0x0870  [ 31DA517946FFE416442E864592548F8A, 6883DEDE32328E82442C309C2E9EE443BEABB7321524D626A9207B58286DE72F ] btwdins         C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
18:19:18.0719 0x0870  btwdins - ok
18:19:18.0719 0x0870  [ 6149301DC3F81D6F9667A3FBAC410975, 120E201AFB07054C7F6321461D194843C695012431DBD791E36BBF73FDD41E8A ] btwl2cap        C:\Windows\system32\DRIVERS\btwl2cap.sys
18:19:18.0719 0x0870  btwl2cap - ok
18:19:18.0735 0x0870  [ 3E1991AFA851A36DC978B0A1B0535C8B, F55F7FDDD2A71532F163E4F14B26A09DCDB7C970E806D803418D4CE0DFF09FB6 ] btwrchid        C:\Windows\system32\DRIVERS\btwrchid.sys
18:19:18.0735 0x0870  btwrchid - ok
18:19:18.0891 0x0870  [ 72551A9AE5F68905DFC3CBA0D5242566, 15C273519C3AD1B2AF68F669125AFE607A86A60D680E299631D5E893C3CAA7E7 ] c2cautoupdatesvc C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
18:19:19.0141 0x0870  c2cautoupdatesvc - ok
18:19:19.0219 0x0870  [ 6B669A00A431FF6CDCE67458933F5F0F, 81419EB18BB4EB96E48C99A1D45B0267E779E135427B3AEC872A1A5DD810B23F ] c2cpnrsvc       C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
18:19:19.0468 0x0870  c2cpnrsvc - ok
18:19:19.0577 0x0870  catchme - ok
18:19:19.0671 0x0870  [ 0510396A957E9FD7205BA62D3CAE4528, C80C39EB3A87C5111132E96E966CF74ACABA36DE7714B545A707027D35995792 ] ccSet_NST       C:\Windows\system32\drivers\NSTx64\7DE07000.02B\ccSetx64.sys
18:19:19.0671 0x0870  ccSet_NST - ok
18:19:19.0702 0x0870  [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
18:19:19.0718 0x0870  cdfs - ok
18:19:19.0765 0x0870  [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom           C:\Windows\system32\drivers\cdrom.sys
18:19:19.0780 0x0870  cdrom - ok
18:19:19.0843 0x0870  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc     C:\Windows\System32\certprop.dll
18:19:19.0843 0x0870  CertPropSvc - ok
18:19:19.0874 0x0870  [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass        C:\Windows\system32\DRIVERS\circlass.sys
18:19:19.0874 0x0870  circlass - ok
18:19:19.0905 0x0870  [ FE1EC06F2253F691FE36217C592A0206, B9F122DB5E665ECDF29A5CB8BB6B531236F31A54A95769D6C5C1924C87FE70CE ] CLFS            C:\Windows\system32\CLFS.sys
18:19:19.0921 0x0870  CLFS - ok
18:19:19.0983 0x0870  [ D88040F816FDA31C3B466F0FA0918F29, 39D3630E623DA25B8444B6D3AAAB16B98E7E289C5619E19A85D47B74C71449F3 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
18:19:19.0983 0x0870  clr_optimization_v2.0.50727_32 - ok
18:19:20.0030 0x0870  [ D1CEEA2B47CB998321C579651CE3E4F8, 654013B8FD229A50017B08DEC6CA19C7DDA8CE0771260E057A92625201D539B1 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
18:19:20.0030 0x0870  clr_optimization_v2.0.50727_64 - ok
18:19:20.0170 0x0870  [ E87213F37A13E2B54391E40934F071D0, 7EB221127EFB5BF158FB03D18EFDA2C55FB6CE3D1A1FE69C01D70DBED02C87E5 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
18:19:20.0170 0x0870  clr_optimization_v4.0.30319_32 - ok
18:19:20.0217 0x0870  [ 4AEDAB50F83580D0B4D6CF78191F92AA, D113C47013B018B45161911B96E93AF96A2F3B34FA47061BF6E7A71FBA03194A ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
18:19:20.0217 0x0870  clr_optimization_v4.0.30319_64 - ok
18:19:20.0248 0x0870  [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
18:19:20.0248 0x0870  CmBatt - ok
18:19:20.0295 0x0870  [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide          C:\Windows\system32\drivers\cmdide.sys
18:19:20.0295 0x0870  cmdide - ok
18:19:20.0357 0x0870  [ EBF28856F69CF094A902F884CF989706, AD6C9F0BC20AA49EEE5478DA0F856F0EA2B414B63208C5FFB03C9D7F5B59765F ] CNG             C:\Windows\system32\Drivers\cng.sys
18:19:20.0373 0x0870  CNG - ok
18:19:20.0435 0x0870  [ F9A79C5B27037821112C50A9C8FB367A, D9990AE1A0CA767E54C9D3FD2C6EA2A068DFD5A270102E915F71648A0C59097B ] Com4QLBEx       C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
18:19:20.0451 0x0870  Com4QLBEx - ok
18:19:20.0451 0x0870  [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt        C:\Windows\system32\DRIVERS\compbatt.sys
18:19:20.0467 0x0870  Compbatt - ok
18:19:20.0513 0x0870  [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus    C:\Windows\system32\drivers\CompositeBus.sys
18:19:20.0513 0x0870  CompositeBus - ok
18:19:20.0529 0x0870  COMSysApp - ok
18:19:20.0560 0x0870  [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk         C:\Windows\system32\DRIVERS\crcdisk.sys
18:19:20.0560 0x0870  crcdisk - ok
18:19:20.0607 0x0870  [ 6B400F211BEE880A37A1ED0368776BF4, 2F27C6FA96A1C8CBDA467846DA57E63949A7EA37DB094B13397DDD30114295BD ] CryptSvc        C:\Windows\system32\cryptsvc.dll
18:19:20.0607 0x0870  CryptSvc - ok
18:19:20.0654 0x0870  [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch      C:\Windows\system32\rpcss.dll
18:19:20.0669 0x0870  DcomLaunch - ok
18:19:20.0701 0x0870  [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc       C:\Windows\System32\defragsvc.dll
18:19:20.0716 0x0870  defragsvc - ok
18:19:20.0747 0x0870  [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
18:19:20.0747 0x0870  DfsC - ok
18:19:20.0794 0x0870  [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp            C:\Windows\system32\dhcpcore.dll
18:19:20.0841 0x0870  Dhcp - ok
18:19:20.0872 0x0870  [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache        C:\Windows\system32\drivers\discache.sys
18:19:20.0872 0x0870  discache - ok
18:19:20.0919 0x0870  [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk            C:\Windows\system32\DRIVERS\disk.sys
18:19:20.0919 0x0870  Disk - ok
18:19:20.0966 0x0870  [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
18:19:21.0013 0x0870  Dnscache - ok
18:19:21.0059 0x0870  [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc         C:\Windows\System32\dot3svc.dll
18:19:21.0075 0x0870  dot3svc - ok
18:19:21.0122 0x0870  [ B42ED0320C6E41102FDE0005154849BB, 4DB872E23AD049C3C9FDC0759FC58BFA60DA91B18BC82B611BFA300D26DDFC7A ] Dot4            C:\Windows\system32\DRIVERS\Dot4.sys
18:19:21.0137 0x0870  Dot4 - ok
18:19:21.0184 0x0870  [ E9F5969233C5D89F3C35E3A66A52A361, C4BD35795C78FB11E6022372CB25DEB570730EFDAD3DC1584368235FF622638C ] Dot4Print       C:\Windows\system32\drivers\Dot4Prt.sys
18:19:21.0184 0x0870  Dot4Print - ok
18:19:21.0215 0x0870  [ FD05A02B0370BC3000F402E543CA5814, 089B1113E640F495F470E8F57060B89546270481B309DC8ED3C3D13A849076A3 ] dot4usb         C:\Windows\system32\DRIVERS\dot4usb.sys
18:19:21.0215 0x0870  dot4usb - ok
18:19:21.0262 0x0870  [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS             C:\Windows\system32\dps.dll
18:19:21.0278 0x0870  DPS - ok
18:19:21.0309 0x0870  [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
18:19:21.0325 0x0870  drmkaud - ok
18:19:21.0387 0x0870  [ 88612F1CE3BF42256913BF6E61C70D52, 7CF190F83FA8F15C33008EB381D3E345CEF37CBC046227DED26B36799EF4D9A7 ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
18:19:21.0403 0x0870  DXGKrnl - ok
18:19:21.0449 0x0870  [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost         C:\Windows\System32\eapsvc.dll
18:19:21.0449 0x0870  EapHost - ok
18:19:21.0574 0x0870  [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv           C:\Windows\system32\DRIVERS\evbda.sys
18:19:21.0683 0x0870  ebdrv - ok
18:19:21.0730 0x0870  [ 4D71227301DD8D09097B9E4CC6527E5A, 193D47ADCB722B581CC0F29B794AB3E455B6E9BEA367CE9A5216A09E055B7F1E ] EFS             C:\Windows\System32\lsass.exe
18:19:21.0730 0x0870  EFS - ok
18:19:21.0808 0x0870  [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
18:19:21.0855 0x0870  ehRecvr - ok
18:19:21.0871 0x0870  [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched         C:\Windows\ehome\ehsched.exe
18:19:21.0886 0x0870  ehSched - ok
18:19:21.0933 0x0870  [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor         C:\Windows\system32\DRIVERS\elxstor.sys
18:19:21.0933 0x0870  elxstor - ok
18:19:21.0964 0x0870  [ 524C79054636D2E5751169005006460B, 1EBA5972E13C5BB07BBD94D6647B86469B4910F60A3C8BDDC6BB5736EF99C9C3 ] enecir          C:\Windows\system32\DRIVERS\enecir.sys
18:19:21.0980 0x0870  enecir - ok
18:19:22.0011 0x0870  [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev          C:\Windows\system32\drivers\errdev.sys
18:19:22.0011 0x0870  ErrDev - ok
18:19:22.0058 0x0870  [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem     C:\Windows\system32\es.dll
18:19:22.0073 0x0870  EventSystem - ok
18:19:22.0120 0x0870  [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat           C:\Windows\system32\drivers\exfat.sys
18:19:22.0120 0x0870  exfat - ok
18:19:22.0136 0x0870  [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
18:19:22.0151 0x0870  fastfat - ok
18:19:22.0214 0x0870  [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax             C:\Windows\system32\fxssvc.exe
18:19:22.0229 0x0870  Fax - ok
18:19:22.0276 0x0870  [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc             C:\Windows\system32\DRIVERS\fdc.sys
18:19:22.0276 0x0870  fdc - ok
18:19:22.0292 0x0870  [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost         C:\Windows\system32\fdPHost.dll
18:19:22.0292 0x0870  fdPHost - ok
18:19:22.0307 0x0870  [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub        C:\Windows\system32\fdrespub.dll
18:19:22.0307 0x0870  FDResPub - ok
18:19:22.0323 0x0870  [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
18:19:22.0323 0x0870  FileInfo - ok
18:19:22.0339 0x0870  [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
18:19:22.0339 0x0870  Filetrace - ok
18:19:22.0370 0x0870  [ 1F63900E2EB00101B9ACA2B7A870704E, 5AFE1FC852937FECE6B33147BD0110436FE97F33BFDA3F69B1F5EDAD6FFC09C6 ] FLEXnet Licensing Service C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
18:19:22.0401 0x0870  FLEXnet Licensing Service - ok
18:19:22.0463 0x0870  [ 1C3FB052A0BB72EDAED90785C34D6EED, 5300A82D1A79EBA1768F545E73974E3B8CE189AB39CDF905BF42AFA2E497186B ] FLEXnet Licensing Service 64 C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
18:19:22.0541 0x0870  FLEXnet Licensing Service 64 - ok
18:19:22.0557 0x0870  [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk        C:\Windows\system32\DRIVERS\flpydisk.sys
18:19:22.0557 0x0870  flpydisk - ok
18:19:22.0604 0x0870  [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
18:19:22.0619 0x0870  FltMgr - ok
18:19:22.0666 0x0870  [ C4C183E6551084039EC862DA1C945E3D, 0874A2ACDD24D64965AA9A76E9C818E216880AE4C9A2E07ED932EE404585CEE6 ] FontCache       C:\Windows\system32\FntCache.dll
18:19:22.0729 0x0870  FontCache - ok
18:19:22.0791 0x0870  [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
18:19:22.0791 0x0870  FontCache3.0.0.0 - ok
18:19:22.0807 0x0870  [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
18:19:22.0822 0x0870  FsDepends - ok
18:19:22.0853 0x0870  [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
18:19:22.0853 0x0870  Fs_Rec - ok
18:19:22.0900 0x0870  [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
18:19:22.0900 0x0870  fvevol - ok
18:19:22.0931 0x0870  [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx        C:\Windows\system32\DRIVERS\gagp30kx.sys
18:19:22.0931 0x0870  gagp30kx - ok
18:19:23.0009 0x0870  [ C1BBCE4B30B45410178EE674C818D10C, 3FD449C20493057592A21CA812CA39803BC32136B84A060B2BF9621776D94E54 ] GameConsoleService C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe
18:19:23.0025 0x0870  GameConsoleService - ok
18:19:23.0103 0x0870  [ 8E98D21EE06192492A5671A6144D092F, B8F656B34D361EA5AFB47F3A67AB2221580DADA59C8CD0CB83181E4AD8B562B4 ] GEARAspiWDM     C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
18:19:23.0103 0x0870  GEARAspiWDM - ok
18:19:23.0165 0x0870  [ 4EA5458FCA8518344686C543749365B1, 52D4D2392C80A4C57C74B09FE04E9DFF6CB01521F03132EB7523BE52B8BF7A50 ] gfiark          C:\Windows\system32\drivers\gfiark.sys
18:19:23.0165 0x0870  gfiark - ok
18:19:23.0181 0x0870  [ 16A23FF8621929ADC5B18DCCD5E206EE, 6204E3110503F76DC5970FDBD7340CE1265EE57196759E4D4DB187BAF119FF22 ] gfiutil         C:\Windows\system32\drivers\gfiutil.sys
18:19:23.0181 0x0870  gfiutil - ok
18:19:23.0243 0x0870  [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc           C:\Windows\System32\gpsvc.dll
18:19:23.0259 0x0870  gpsvc - ok
18:19:23.0399 0x0870  [ F02A533F517EB38333CB12A9E8963773, 1F72CD1CF660766FA8F912E40B7323A0192A300B376186C10F6803DC5EFE28DF ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
18:19:23.0399 0x0870  gupdate - ok
18:19:23.0431 0x0870  [ F02A533F517EB38333CB12A9E8963773, 1F72CD1CF660766FA8F912E40B7323A0192A300B376186C10F6803DC5EFE28DF ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
18:19:23.0431 0x0870  gupdatem - ok
18:19:23.0493 0x0870  [ C1B577B2169900F4CF7190C39F085794, 73E104B96A48F4C80D8C37254ECB0891D15C0D2F0C251B57C168F90D60316447 ] gusvc           C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
18:19:23.0509 0x0870  gusvc - ok
18:19:23.0524 0x0870  [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
18:19:23.0524 0x0870  hcw85cir - ok
18:19:23.0571 0x0870  [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
18:19:23.0587 0x0870  HdAudAddService - ok
18:19:23.0618 0x0870  [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus        C:\Windows\system32\drivers\HDAudBus.sys
18:19:23.0618 0x0870  HDAudBus - ok
18:19:23.0633 0x0870  [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt         C:\Windows\system32\DRIVERS\HidBatt.sys
18:19:23.0633 0x0870  HidBatt - ok
18:19:23.0649 0x0870  [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth          C:\Windows\system32\DRIVERS\hidbth.sys
18:19:23.0649 0x0870  HidBth - ok
18:19:23.0696 0x0870  [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr           C:\Windows\system32\DRIVERS\hidir.sys
18:19:23.0696 0x0870  HidIr - ok
18:19:23.0727 0x0870  [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv         C:\Windows\System32\hidserv.dll
18:19:23.0727 0x0870  hidserv - ok
18:19:23.0774 0x0870  [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb          C:\Windows\system32\drivers\hidusb.sys
18:19:23.0774 0x0870  HidUsb - ok
18:19:23.0805 0x0870  [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc          C:\Windows\system32\kmsvc.dll
18:19:23.0821 0x0870  hkmsvc - ok
18:19:23.0883 0x0870  [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
18:19:23.0930 0x0870  HomeGroupListener - ok
18:19:23.0945 0x0870  [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
18:19:23.0945 0x0870  HomeGroupProvider - ok
18:19:24.0039 0x0870  [ 2A8B93A01621E100A578E83C768AFA2C, 6637D260AF180D1F200D219796FCE6D524FC6BF57C0CEEF9E1B3616E85865AD1 ] HP Support Assistant Service C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
18:19:24.0039 0x0870  HP Support Assistant Service - ok
18:19:24.0070 0x0870  [ 05712FDDBD45A5864EB326FAABC6A4E3, 8BACA990971A331E6EC7F896EF2404F09E381DAA3519FC6E3027C0DBD991BA7F ] hpdskflt        C:\Windows\system32\DRIVERS\hpdskflt.sys
18:19:24.0070 0x0870  hpdskflt - ok
18:19:24.0086 0x0870  [ 9AF482D058BE59CC28BCE52E7C4B747C, 2D150CD0C82B575CDE2E1B3941FD72EFCB254850D6FF1D7C40D3B29643018EFF ] HpqKbFiltr      C:\Windows\system32\DRIVERS\HpqKbFiltr.sys
18:19:24.0101 0x0870  HpqKbFiltr - ok
18:19:24.0195 0x0870  [ D2946D9F020AE76E9CEF9B4A6DF838C0, C29CE594879385DA12B8EAA90B258905827B613839CCD820DE49215B68676995 ] hpqwmiex        C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
18:19:24.0257 0x0870  hpqwmiex - ok
18:19:24.0304 0x0870  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
18:19:24.0304 0x0870  HpSAMD - ok
18:19:24.0320 0x0870  [ AA036CC5F5221D9B915F4D4DCE74BA9A, B90B9F7753B45387AD56A7CE1365BEBC9EB67011B6D2F8C785717942133775AA ] hpsrv           C:\Windows\system32\Hpservice.exe
18:19:24.0320 0x0870  hpsrv - ok
18:19:24.0429 0x0870  [ 0EA7DE1ACB728DD5A369FD742D6EEE28, 21C489412EB33A12B22290EB701C19BA57006E8702E76F730954F0784DDE9779 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
18:19:24.0460 0x0870  HTTP - ok
18:19:24.0507 0x0870  [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
18:19:24.0507 0x0870  hwpolicy - ok
18:19:24.0523 0x0870  [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt        C:\Windows\system32\drivers\i8042prt.sys
18:19:24.0523 0x0870  i8042prt - ok
18:19:24.0554 0x0870  [ BE7D72FCF442C26975942007E0831241, A0FD29B3D1A1278787F8B3FBE7EC3216AAF328467974A6D90752639BB44DCD84 ] iaStor          C:\Windows\system32\DRIVERS\iaStor.sys
18:19:24.0569 0x0870  iaStor - ok
18:19:24.0585 0x0870  [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
18:19:24.0585 0x0870  iaStorV - ok
18:19:24.0647 0x0870  [ 5988FC40F8DB5B0739CD1E3A5D0D78BD, 2B9512324DBA4A97F6AC34E8067EE08E3B6874CD60F6CB4209AFC22A34D2BE99 ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
18:19:24.0679 0x0870  idsvc - ok
18:19:24.0710 0x0870  IEEtwCollectorService - ok
18:19:24.0913 0x0870  [ A87261EF1546325B559374F5689CF5BC, 8DE48A8A13A32AAAC54CDDF58F3F61BE3E2802C1D9CA1CA98E57EB0D65FB6002 ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
18:19:25.0131 0x0870  igfx - ok
18:19:25.0193 0x0870  [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp           C:\Windows\system32\DRIVERS\iirsp.sys
18:19:25.0193 0x0870  iirsp - ok
18:19:25.0256 0x0870  [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT          C:\Windows\System32\ikeext.dll
18:19:25.0303 0x0870  IKEEXT - ok
18:19:25.0334 0x0870  [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide        C:\Windows\system32\drivers\intelide.sys
18:19:25.0334 0x0870  intelide - ok
18:19:25.0349 0x0870  [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
18:19:25.0349 0x0870  intelppm - ok
18:19:25.0427 0x0870  [ 0895CDD7F1542FFCC5BBB560EC78BC16, 383D9FFE7FB313EA201DE877F3D48B5116FFA261EDEF5D0D0FE79F14E9682D25 ] IntuitUpdateServiceV4 C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
18:19:25.0443 0x0870  IntuitUpdateServiceV4 - ok
18:19:25.0459 0x0870  [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
18:19:25.0459 0x0870  IPBusEnum - ok
18:19:25.0505 0x0870  [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
18:19:25.0505 0x0870  IpFilterDriver - ok
18:19:25.0568 0x0870  [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
18:19:25.0599 0x0870  iphlpsvc - ok
18:19:25.0630 0x0870  [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
18:19:25.0646 0x0870  IPMIDRV - ok
18:19:25.0677 0x0870  [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
18:19:25.0693 0x0870  IPNAT - ok
18:19:25.0786 0x0870  [ 842D1EDD0F2A6E0E6631BB96BAAA01DE, 9CDD0B99F2C5DAD573A9EA8D5AB2DBFD7A941454CBBA5BFE34E49F2D4EE96A90 ] iPod Service    C:\Program Files\iPod\bin\iPodService.exe
18:19:25.0802 0x0870  iPod Service - ok
18:19:25.0833 0x0870  [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM          C:\Windows\system32\drivers\irenum.sys
18:19:25.0833 0x0870  IRENUM - ok
18:19:25.0864 0x0870  [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
18:19:25.0864 0x0870  isapnp - ok
18:19:25.0911 0x0870  [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
18:19:25.0911 0x0870  iScsiPrt - ok
18:19:25.0958 0x0870  [ F8844B00C10E386C704C610E95A9847D, 3E3CFDDD0DD9E98542BAE07ED9CF922D98370C94BE364BA84F677EAA01ED775A ] JMCR            C:\Windows\system32\DRIVERS\jmcr.sys
18:19:25.0974 0x0870  JMCR - ok
18:19:26.0020 0x0870  [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass        C:\Windows\system32\drivers\kbdclass.sys
18:19:26.0020 0x0870  kbdclass - ok
18:19:26.0020 0x0870  [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid          C:\Windows\system32\drivers\kbdhid.sys
18:19:26.0036 0x0870  kbdhid - ok
18:19:26.0052 0x0870  [ 4D71227301DD8D09097B9E4CC6527E5A, 193D47ADCB722B581CC0F29B794AB3E455B6E9BEA367CE9A5216A09E055B7F1E ] KeyIso          C:\Windows\system32\lsass.exe
18:19:26.0052 0x0870  KeyIso - ok
18:19:26.0130 0x0870  [ 23F492CE9262CB6BC99AD96B57BEF2B9, CA555F0D0009D88801A50A8EBB63CE94D92530837BE01F323E670B5463EEB3DF ] KeyScrambler    C:\Windows\system32\drivers\keyscrambler.sys
18:19:26.0130 0x0870  KeyScrambler - ok
18:19:26.0145 0x0870  KMW_KBD - ok
18:19:26.0176 0x0870  [ 8F489706472F7E9A06BAAA198703FA64, F020406690FB38EABD82D63B91D33039CC93ED52A5497AE12BAF475F22D0B08A ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
18:19:26.0192 0x0870  KSecDD - ok
18:19:26.0208 0x0870  [ 868A2CAAB12EFC7A021682BCA0EEC54C, 12C4925B5B3D6EA7B6410C01F33158C6EAB50CBD6AF445F8B04ED9899720C2DD ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
18:19:26.0208 0x0870  KSecPkg - ok
18:19:26.0223 0x0870  [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
18:19:26.0223 0x0870  ksthunk - ok
18:19:26.0270 0x0870  [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm           C:\Windows\system32\msdtckrm.dll
18:19:26.0286 0x0870  KtmRm - ok
18:19:26.0332 0x0870  [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer    C:\Windows\System32\srvsvc.dll
18:19:26.0348 0x0870  LanmanServer - ok
18:19:26.0410 0x0870  [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
18:19:26.0410 0x0870  LanmanWorkstation - ok
18:19:26.0473 0x0870  [ 07B1888209C54B675FFCCBDE9F06D2C6, F80DA304CEFC062D4E604C0A7A2B60361161F259FBE8E94332F6BAD640630D23 ] LightScribeService C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
18:19:26.0473 0x0870  LightScribeService - ok
18:19:26.0504 0x0870  [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
18:19:26.0504 0x0870  lltdio - ok
18:19:26.0520 0x0870  [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc         C:\Windows\System32\lltdsvc.dll
18:19:26.0551 0x0870  lltdsvc - ok
18:19:26.0566 0x0870  [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts         C:\Windows\System32\lmhsvc.dll
18:19:26.0566 0x0870  lmhosts - ok
18:19:26.0598 0x0870  [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC          C:\Windows\system32\DRIVERS\lsi_fc.sys
18:19:26.0598 0x0870  LSI_FC - ok
18:19:26.0613 0x0870  [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS         C:\Windows\system32\DRIVERS\lsi_sas.sys
18:19:26.0613 0x0870  LSI_SAS - ok
18:19:26.0629 0x0870  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2        C:\Windows\system32\DRIVERS\lsi_sas2.sys
18:19:26.0629 0x0870  LSI_SAS2 - ok
18:19:26.0660 0x0870  [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI        C:\Windows\system32\DRIVERS\lsi_scsi.sys
18:19:26.0660 0x0870  LSI_SCSI - ok
18:19:26.0691 0x0870  [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv           C:\Windows\system32\drivers\luafv.sys
18:19:26.0691 0x0870  luafv - ok
18:19:26.0738 0x0870  [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
18:19:26.0738 0x0870  Mcx2Svc - ok
18:19:26.0754 0x0870  [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas         C:\Windows\system32\DRIVERS\megasas.sys
18:19:26.0754 0x0870  megasas - ok
18:19:26.0785 0x0870  [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR          C:\Windows\system32\DRIVERS\MegaSR.sys
18:19:26.0800 0x0870  MegaSR - ok
18:19:26.0816 0x0870  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS           C:\Windows\system32\mmcss.dll
18:19:26.0816 0x0870  MMCSS - ok
18:19:26.0832 0x0870  [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem           C:\Windows\system32\drivers\modem.sys
18:19:26.0847 0x0870  Modem - ok
18:19:26.0847 0x0870  [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
18:19:26.0847 0x0870  monitor - ok
18:19:26.0894 0x0870  [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass        C:\Windows\system32\drivers\mouclass.sys
18:19:26.0894 0x0870  mouclass - ok
18:19:26.0894 0x0870  [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
18:19:26.0894 0x0870  mouhid - ok
18:19:26.0956 0x0870  [ 32E7A3D591D671A6DF2DB515A5CBE0FA, 47CED0B9067AE8BF5EEF60B17ADEE5906BEDCC56E4CB460B7BFBC12BB9A69E63 ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
18:19:26.0956 0x0870  mountmgr - ok
18:19:27.0019 0x0870  [ AEE4E9CC59CDEB55B1ECB0E596E796BE, 674F6F38D86D238AFD6223E03A862F8B43DD8499FBC2D4B7A04E510EC5EACF3B ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
18:19:27.0034 0x0870  MozillaMaintenance - ok
18:19:27.0050 0x0870  [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio            C:\Windows\system32\drivers\mpio.sys
18:19:27.0050 0x0870  mpio - ok
18:19:27.0066 0x0870  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
18:19:27.0066 0x0870  mpsdrv - ok
18:19:27.0128 0x0870  [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc          C:\Windows\system32\mpssvc.dll
18:19:27.0159 0x0870  MpsSvc - ok
18:19:27.0206 0x0870  [ 1A4F75E63C9FB84B85DFFC6B63FD5404, 01AFA6DBB4CDE55FE4EA05BBE8F753A4266F8D072EA1EE01DB79F5126780C21F ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
18:19:27.0253 0x0870  MRxDAV - ok
18:19:27.0300 0x0870  [ A5D9106A73DC88564C825D317CAC68AC, 0457B2AEA4E05A91D0E43F317894A614434D8CEBE35020785387F307E231FBE4 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
18:19:27.0300 0x0870  mrxsmb - ok
18:19:27.0346 0x0870  [ D711B3C1D5F42C0C2415687BE09FC163, 9B3013AC60BD2D0FF52086658BA5FF486ADE15954A552D7DD590580E8BAE3EFF ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
18:19:27.0362 0x0870  mrxsmb10 - ok
18:19:27.0378 0x0870  [ 9423E9D355C8D303E76B8CFBD8A5C30C, 220B33F120C2DD937FE4D5664F4B581DC0ACF78D62EB56B7720888F67B9644CC ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
18:19:27.0378 0x0870  mrxsmb20 - ok
18:19:27.0409 0x0870  [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci          C:\Windows\system32\drivers\msahci.sys
18:19:27.0409 0x0870  msahci - ok
18:19:27.0456 0x0870  [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
18:19:27.0456 0x0870  msdsm - ok
18:19:27.0487 0x0870  [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC           C:\Windows\System32\msdtc.exe
18:19:27.0487 0x0870  MSDTC - ok
18:19:27.0502 0x0870  [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
18:19:27.0518 0x0870  Msfs - ok
18:19:27.0518 0x0870  [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
18:19:27.0534 0x0870  mshidkmdf - ok
18:19:27.0534 0x0870  [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
18:19:27.0534 0x0870  msisadrv - ok
18:19:27.0565 0x0870  [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
18:19:27.0565 0x0870  MSiSCSI - ok
18:19:27.0580 0x0870  msiserver - ok
18:19:27.0596 0x0870  [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
18:19:27.0596 0x0870  MSKSSRV - ok
18:19:27.0612 0x0870  [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
18:19:27.0612 0x0870  MSPCLOCK - ok
18:19:27.0612 0x0870  [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
18:19:27.0612 0x0870  MSPQM - ok
18:19:27.0658 0x0870  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
18:19:27.0674 0x0870  MsRPC - ok
18:19:27.0674 0x0870  [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios        C:\Windows\system32\drivers\mssmbios.sys
18:19:27.0674 0x0870  mssmbios - ok
18:19:27.0690 0x0870  [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
18:19:27.0690 0x0870  MSTEE - ok
18:19:27.0721 0x0870  [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig        C:\Windows\system32\DRIVERS\MTConfig.sys
18:19:27.0721 0x0870  MTConfig - ok
18:19:27.0752 0x0870  [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup             C:\Windows\system32\Drivers\mup.sys
18:19:27.0752 0x0870  Mup - ok
18:19:27.0799 0x0870  [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent        C:\Windows\system32\qagentRT.dll
18:19:27.0830 0x0870  napagent - ok
18:19:27.0861 0x0870  [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
18:19:27.0877 0x0870  NativeWifiP - ok
18:19:27.0986 0x0870  [ 97C152DE06F2BEF0BB14FDA3F187EFA9, 34FA61FC9A7225312FBEDE6149D7B9A140AC7C61313A1A4BD2EC0DA89BE497E5 ] NCO             C:\Program Files (x86)\Norton Safe Web Lite\Engine\2014.7.0.43\NST.exe
18:19:28.0002 0x0870  NCO - ok
18:19:28.0080 0x0870  [ 760E38053BF56E501D562B70AD796B88, F856E81A975D44F8684A6F2466549CEEDFAEB3950191698555A93A1206E0A42D ] NDIS            C:\Windows\system32\drivers\ndis.sys
18:19:28.0095 0x0870  NDIS - ok
18:19:28.0142 0x0870  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
18:19:28.0142 0x0870  NdisCap - ok
18:19:28.0173 0x0870  [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
18:19:28.0173 0x0870  NdisTapi - ok
18:19:28.0220 0x0870  [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
18:19:28.0220 0x0870  Ndisuio - ok
18:19:28.0267 0x0870  [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
18:19:28.0267 0x0870  NdisWan - ok
18:19:28.0314 0x0870  [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
18:19:28.0314 0x0870  NDProxy - ok
18:19:28.0376 0x0870  [ 2334DC48997BA203B794DF3EE70521DB, 832F4EC1586C9669F2D54AB3B212943E43B87A33B24DCC8CDAD6A0264291EE2F ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
18:19:28.0392 0x0870  Net Driver HPZ12 - ok
18:19:28.0407 0x0870  [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
18:19:28.0407 0x0870  NetBIOS - ok
18:19:28.0454 0x0870  [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
18:19:28.0454 0x0870  NetBT - ok
18:19:28.0485 0x0870  [ 4D71227301DD8D09097B9E4CC6527E5A, 193D47ADCB722B581CC0F29B794AB3E455B6E9BEA367CE9A5216A09E055B7F1E ] Netlogon        C:\Windows\system32\lsass.exe
18:19:28.0485 0x0870  Netlogon - ok
18:19:28.0516 0x0870  [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman          C:\Windows\System32\netman.dll
18:19:28.0532 0x0870  Netman - ok
18:19:28.0563 0x0870  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:19:28.0579 0x0870  NetMsmqActivator - ok
18:19:28.0579 0x0870  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:19:28.0579 0x0870  NetPipeActivator - ok
18:19:28.0610 0x0870  [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm        C:\Windows\System32\netprofm.dll
18:19:28.0626 0x0870  netprofm - ok
18:19:28.0641 0x0870  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:19:28.0641 0x0870  NetTcpActivator - ok
18:19:28.0657 0x0870  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:19:28.0657 0x0870  NetTcpPortSharing - ok
18:19:28.0891 0x0870  [ 39EDE676D17F37AF4573C2B33EC28ACA, 6C897C8B72D7AC1385302E58509688790CC5F428E967485F92C3CD646907EF59 ] NETw5s64        C:\Windows\system32\DRIVERS\NETw5s64.sys
18:19:29.0109 0x0870  NETw5s64 - ok
18:19:29.0296 0x0870  [ 64428DFDAF6E88366CB51F45A79C5F69, 31187D38C1AB52120A3CB7AC3CE47ED9682AC37B0F06B9A9610C0065DD4E7B13 ] netw5v64        C:\Windows\system32\DRIVERS\netw5v64.sys
18:19:29.0484 0x0870  netw5v64 - ok
18:19:29.0530 0x0870  [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960         C:\Windows\system32\DRIVERS\nfrd960.sys
18:19:29.0530 0x0870  nfrd960 - ok
18:19:29.0562 0x0870  [ 8AD77806D336673F270DB31645267293, E23F324913554A23CD043DD27D4305AF62F48C0561A0FC7B7811E55B74B1BE79 ] NlaSvc          C:\Windows\System32\nlasvc.dll
18:19:29.0608 0x0870  NlaSvc - ok
18:19:29.0608 0x0870  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs            C:\Windows\system32\drivers\Npfs.sys
18:19:29.0624 0x0870  Npfs - ok
18:19:29.0640 0x0870  [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi             C:\Windows\system32\nsisvc.dll
18:19:29.0640 0x0870  nsi - ok
18:19:29.0655 0x0870  [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
18:19:29.0655 0x0870  nsiproxy - ok
18:19:29.0749 0x0870  [ 1A29A59A4C5BA6F8C85062A613B7E2B2, CC137F499A12C724D4166C2D85E9F447413419A0683DAC6F1A802B7F210C77F1 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
18:19:29.0780 0x0870  Ntfs - ok
18:19:29.0796 0x0870  [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null            C:\Windows\system32\drivers\Null.sys
18:19:29.0796 0x0870  Null - ok
18:19:29.0827 0x0870  [ AD37248BD442D41C9A896E53EB8A85EE, 9CC50602480544DBD0B873B3444D355CC13CB97EC1BCA97F85668C45DEFE78C1 ] NVHDA           C:\Windows\system32\drivers\nvhda64v.sys
18:19:29.0827 0x0870  NVHDA - ok
18:19:30.0170 0x0870  [ D1DB65FDDA7AF4853EF0994BB111D778, B85BEBA594BCB7D8A95A5C5B3E7FAF3662396D6E1641E29620C7AC59AC3A2A13 ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
18:19:30.0388 0x0870  nvlddmkm - ok
18:19:30.0420 0x0870  [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
18:19:30.0420 0x0870  nvraid - ok
18:19:30.0466 0x0870  [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
18:19:30.0466 0x0870  nvstor - ok
18:19:30.0513 0x0870  [ 8F9C2A5F96810467D50687AE00465424, 460A8C672E2E2E6861166C4CB742D1151F218E0B2E9109E7D3A67497D73C59B2 ] nvsvc           C:\Windows\system32\nvvsvc.exe
18:19:30.0529 0x0870  nvsvc - ok
18:19:30.0560 0x0870  [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
18:19:30.0560 0x0870  nv_agp - ok
18:19:30.0622 0x0870  [ 785F487A64950F3CB8E9F16253BA3B7B, 02445344BD214370A6D48B1CA04921D8EFCB13E676B5648266DD0E076C0822B6 ] odserv          C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
18:19:30.0669 0x0870  odserv - ok
18:19:30.0700 0x0870  [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
18:19:30.0700 0x0870  ohci1394 - ok
18:19:30.0716 0x0870  [ 5A432A042DAE460ABE7199B758E8606C, 6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71 ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
18:19:30.0732 0x0870  ose - ok
18:19:30.0763 0x0870  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
18:19:30.0778 0x0870  p2pimsvc - ok
18:19:30.0810 0x0870  [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc          C:\Windows\system32\p2psvc.dll
18:19:30.0825 0x0870  p2psvc - ok
18:19:30.0841 0x0870  [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport         C:\Windows\system32\DRIVERS\parport.sys
18:19:30.0856 0x0870  Parport - ok
18:19:30.0888 0x0870  [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr         C:\Windows\system32\drivers\partmgr.sys
18:19:30.0888 0x0870  partmgr - ok
18:19:30.0903 0x0870  [ 3AEAA8B561E63452C655DC0584922257, 04C072969B58657602EB0C21CEDF24FCEE14E61B90A0F758F93925EF2C9FC32D ] PcaSvc          C:\Windows\System32\pcasvc.dll
18:19:30.0919 0x0870  PcaSvc - ok
18:19:30.0934 0x0870  [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci             C:\Windows\system32\drivers\pci.sys
18:19:30.0950 0x0870  pci - ok
18:19:30.0981 0x0870  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide          C:\Windows\system32\drivers\pciide.sys
18:19:30.0997 0x0870  pciide - ok
18:19:31.0012 0x0870  [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia          C:\Windows\system32\DRIVERS\pcmcia.sys
18:19:31.0028 0x0870  pcmcia - ok
18:19:31.0044 0x0870  [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw             C:\Windows\system32\drivers\pcw.sys
18:19:31.0044 0x0870  pcw - ok
18:19:31.0075 0x0870  [ 68769C3356B3BE5D1C732C97B9A80D6E, FB2D61145980A2899D1B7729184C54070315B0E63C9A22400A76CCD39E00029C ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
18:19:31.0090 0x0870  PEAUTH - ok
18:19:31.0168 0x0870  [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost        C:\Windows\SysWow64\perfhost.exe
18:19:31.0168 0x0870  PerfHost - ok
18:19:31.0246 0x0870  [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla             C:\Windows\system32\pla.dll
18:19:31.0340 0x0870  pla - ok
18:19:31.0387 0x0870  [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
18:19:31.0402 0x0870  PlugPlay - ok
18:19:31.0465 0x0870  [ AC78DF349F0E4CFB8B667C0CFFF83CCE, 7E635AA2E7350FCA0C954E697F1480A6204920AEFBCF06B90FFA02398DA82822 ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
18:19:31.0480 0x0870  Pml Driver HPZ12 - ok
18:19:31.0512 0x0870  [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
18:19:31.0512 0x0870  PNRPAutoReg - ok
18:19:31.0543 0x0870  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
18:19:31.0543 0x0870  PNRPsvc - ok
18:19:31.0574 0x0870  [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
18:19:31.0605 0x0870  PolicyAgent - ok
18:19:31.0636 0x0870  [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power           C:\Windows\system32\umpo.dll
18:19:31.0636 0x0870  Power - ok
18:19:31.0683 0x0870  [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
18:19:31.0683 0x0870  PptpMiniport - ok
18:19:31.0714 0x0870  [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor       C:\Windows\system32\DRIVERS\processr.sys
18:19:31.0714 0x0870  Processor - ok
18:19:31.0746 0x0870  [ 53E83F1F6CF9D62F32801CF66D8352A8, 1225FED810BE8E0729EEAE5B340035CCBB9BACD3EF247834400F9B72D05ACE48 ] ProfSvc         C:\Windows\system32\profsvc.dll
18:19:31.0761 0x0870  ProfSvc - ok
18:19:31.0761 0x0870  [ 4D71227301DD8D09097B9E4CC6527E5A, 193D47ADCB722B581CC0F29B794AB3E455B6E9BEA367CE9A5216A09E055B7F1E ] ProtectedStorage C:\Windows\system32\lsass.exe
18:19:31.0777 0x0870  ProtectedStorage - ok
18:19:31.0824 0x0870  [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
18:19:31.0824 0x0870  Psched - ok
18:19:31.0902 0x0870  [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300          C:\Windows\system32\DRIVERS\ql2300.sys
18:19:31.0933 0x0870  ql2300 - ok
18:19:31.0964 0x0870  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx          C:\Windows\system32\DRIVERS\ql40xx.sys
18:19:31.0964 0x0870  ql40xx - ok
18:19:31.0995 0x0870  [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE           C:\Windows\system32\qwave.dll
18:19:32.0011 0x0870  QWAVE - ok
18:19:32.0026 0x0870  [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
18:19:32.0042 0x0870  QWAVEdrv - ok
18:19:32.0151 0x0870  [ 000D82CC258E2D341605A6F350C4D1E6, 59EC5BA95D8B9EC739BC7D0BBE0E244CA2AE2DF01A8B65BFF7741DFBE38C2940 ] RapportCerberus_59849 C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus64_59849.sys
18:19:32.0167 0x0870  RapportCerberus_59849 - ok
18:19:32.0260 0x0870  [ DCB17A156E10ACF30202F59E8A4AD7EE, E3BE854357BAC3502D51FC674161C7ED8696A6FBCB54F99E50FDA9387E6477B1 ] RapportEI64     C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys
18:19:32.0260 0x0870  RapportEI64 - ok
18:19:32.0292 0x0870  [ 0B629D5595CB4C1B38C6D3A654EDA75A, 687DA2BD00CDF5D49092473276CDE422653139CE34435A43878BB28AF24267ED ] RapportKE64     C:\Windows\system32\Drivers\RapportKE64.sys
18:19:32.0292 0x0870  RapportKE64 - ok
18:19:32.0354 0x0870  [ 48BB371827BC8740C25B01EEA68F11AA, 5ED1F6695FF867F540979E27773E61D906B9317FB7CFE464D236413866511C91 ] RapportMgmtService C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe
18:19:32.0401 0x0870  RapportMgmtService - ok
18:19:32.0448 0x0870  [ 64CF0700A20B0BA49C7F07B4B968809C, 1A62B066C97D845CC654349F70F3B0646D40A42EE87EDA659420A6045C2598A1 ] RapportPG64     C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys
18:19:32.0463 0x0870  RapportPG64 - ok
18:19:32.0479 0x0870  [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
18:19:32.0479 0x0870  RasAcd - ok
18:19:32.0510 0x0870  [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
18:19:32.0526 0x0870  RasAgileVpn - ok
18:19:32.0541 0x0870  [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto         C:\Windows\System32\rasauto.dll
18:19:32.0541 0x0870  RasAuto - ok
18:19:32.0588 0x0870  [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
18:19:32.0588 0x0870  Rasl2tp - ok
18:19:32.0635 0x0870  [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan          C:\Windows\System32\rasmans.dll
18:19:32.0666 0x0870  RasMan - ok
18:19:32.0682 0x0870  [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
18:19:32.0682 0x0870  RasPppoe - ok
18:19:32.0713 0x0870  [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
18:19:32.0713 0x0870  RasSstp - ok
18:19:32.0760 0x0870  [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
18:19:32.0775 0x0870  rdbss - ok
18:19:32.0806 0x0870  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus          C:\Windows\system32\DRIVERS\rdpbus.sys
18:19:32.0806 0x0870  rdpbus - ok
18:19:32.0838 0x0870  [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
18:19:32.0838 0x0870  RDPCDD - ok
18:19:32.0853 0x0870  [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
18:19:32.0853 0x0870  RDPENCDD - ok
18:19:32.0853 0x0870  [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
18:19:32.0853 0x0870  RDPREFMP - ok
18:19:32.0900 0x0870  [ E61608AA35E98999AF9AAEEEA6114B0A, F754CDE89DC96786D2A3C4D19EE2AEF1008E634E4DE3C0CBF927436DE90C04A6 ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
18:19:32.0962 0x0870  RDPWD - ok
18:19:33.0009 0x0870  [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
18:19:33.0009 0x0870  rdyboost - ok
18:19:33.0056 0x0870  [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess    C:\Windows\System32\mprdim.dll
18:19:33.0056 0x0870  RemoteAccess - ok
18:19:33.0087 0x0870  [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
18:19:33.0087 0x0870  RemoteRegistry - ok
18:19:33.0134 0x0870  [ 3DD798846E2C28102B922C56E71B7932, 30B111615D74CB2213997A5C08DD9C8613ADE441D9423CC1C49A753D13CE524D ] RFCOMM          C:\Windows\system32\DRIVERS\rfcomm.sys
18:19:33.0134 0x0870  RFCOMM - ok
18:19:33.0212 0x0870  [ 498EB62A160674E793FA40FD65390625, F7EFD480E6C95F5B6202EEB87F519A8A8187F7F26281FB3E302EDD1AD5771025 ] RichVideo       C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
18:19:33.0228 0x0870  RichVideo - ok
18:19:33.0243 0x0870  [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
18:19:33.0243 0x0870  RpcEptMapper - ok
18:19:33.0259 0x0870  [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator      C:\Windows\system32\locator.exe
18:19:33.0259 0x0870  RpcLocator - ok
18:19:33.0306 0x0870  [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] RpcSs           C:\Windows\System32\rpcss.dll
18:19:33.0321 0x0870  RpcSs - ok
18:19:33.0352 0x0870  [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
18:19:33.0352 0x0870  rspndr - ok
18:19:33.0399 0x0870  [ FE61B0B4AA58C3BD3DFA6279131F7F53, 923B21D705CE7E3E1FFB709AD586F91809D5454098ED25C57529AE6C561DFBD1 ] RTL8167         C:\Windows\system32\DRIVERS\Rt64win7.sys
18:19:33.0415 0x0870  RTL8167 - ok
18:19:33.0430 0x0870  [ 4D71227301DD8D09097B9E4CC6527E5A, 193D47ADCB722B581CC0F29B794AB3E455B6E9BEA367CE9A5216A09E055B7F1E ] SamSs           C:\Windows\system32\lsass.exe
18:19:33.0430 0x0870  SamSs - ok
18:19:33.0477 0x0870  [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
18:19:33.0477 0x0870  sbp2port - ok
18:19:33.0493 0x0870  [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
18:19:33.0508 0x0870  SCardSvr - ok
18:19:33.0540 0x0870  [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
18:19:33.0540 0x0870  scfilter - ok
18:19:33.0618 0x0870  [ 262F6592C3299C005FD6BEC90FC4463A, 54095E37F0B6CC677A3E9BDD40F4647C713273D197DB341063AA7F342A60C4A7 ] Schedule        C:\Windows\system32\schedsvc.dll
18:19:33.0633 0x0870  Schedule - ok
18:19:33.0696 0x0870  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc     C:\Windows\System32\certprop.dll
18:19:33.0696 0x0870  SCPolicySvc - ok
18:19:33.0727 0x0870  [ 111E0EBC0AD79CB0FA014B907B231CF0, B7D43D156C2524938503CF8E99C4D1F7A5C55E16C0368F57F4CD23C6D833B38F ] sdbus           C:\Windows\system32\drivers\sdbus.sys
18:19:33.0742 0x0870  sdbus - ok
18:19:33.0758 0x0870  [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
18:19:33.0789 0x0870  SDRSVC - ok
18:19:33.0820 0x0870  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\Windows\system32\drivers\secdrv.sys
18:19:33.0836 0x0870  secdrv - ok
18:19:33.0867 0x0870  [ BC617A4E1B4FA8DF523A061739A0BD87, 10C4057F6B321EB5237FF619747B74F5401BC17D15A8C7060829E8204A2297F9 ] seclogon        C:\Windows\system32\seclogon.dll
18:19:33.0867 0x0870  seclogon - ok
18:19:33.0883 0x0870  [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS            C:\Windows\system32\sens.dll
18:19:33.0883 0x0870  SENS - ok
18:19:33.0898 0x0870  [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc        C:\Windows\system32\sensrsvc.dll
18:19:33.0930 0x0870  SensrSvc - ok
18:19:33.0961 0x0870  [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum         C:\Windows\system32\DRIVERS\serenum.sys
18:19:33.0961 0x0870  Serenum - ok
18:19:33.0976 0x0870  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial          C:\Windows\system32\DRIVERS\serial.sys
18:19:33.0976 0x0870  Serial - ok
18:19:34.0008 0x0870  [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse        C:\Windows\system32\DRIVERS\sermouse.sys
18:19:34.0008 0x0870  sermouse - ok
18:19:34.0054 0x0870  [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv      C:\Windows\system32\sessenv.dll
18:19:34.0054 0x0870  SessionEnv - ok
18:19:34.0086 0x0870  [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
18:19:34.0086 0x0870  sffdisk - ok
18:19:34.0101 0x0870  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
18:19:34.0101 0x0870  sffp_mmc - ok
18:19:34.0117 0x0870  [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
18:19:34.0117 0x0870  sffp_sd - ok
18:19:34.0132 0x0870  [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy         C:\Windows\system32\DRIVERS\sfloppy.sys
18:19:34.0132 0x0870  sfloppy - ok
18:19:34.0179 0x0870  [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess    C:\Windows\System32\ipnathlp.dll
18:19:34.0210 0x0870  SharedAccess - ok
18:19:34.0226 0x0870  [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
18:19:34.0226 0x0870  ShellHWDetection - ok
18:19:34.0257 0x0870  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2        C:\Windows\system32\DRIVERS\SiSRaid2.sys
18:19:34.0257 0x0870  SiSRaid2 - ok
18:19:34.0288 0x0870  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4        C:\Windows\system32\DRIVERS\sisraid4.sys
18:19:34.0288 0x0870  SiSRaid4 - ok
18:19:34.0366 0x0870  [ 50D9949020E02B847CD48F1243FCB895, 5BDAD5E44DE5B412645142810C5FCE4B2D9685F928FF4A6B836A9DCE7725BD78 ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
18:19:34.0382 0x0870  SkypeUpdate - ok
18:19:34.0398 0x0870  [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
18:19:34.0413 0x0870  Smb - ok
18:19:34.0429 0x0870  [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
18:19:34.0429 0x0870  SNMPTRAP - ok
18:19:34.0444 0x0870  [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr           C:\Windows\system32\drivers\spldr.sys
18:19:34.0444 0x0870  spldr - ok
18:19:34.0491 0x0870  [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler         C:\Windows\System32\spoolsv.exe
18:19:34.0507 0x0870  Spooler - ok
18:19:34.0647 0x0870  [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc          C:\Windows\system32\sppsvc.exe
18:19:34.0710 0x0870  sppsvc - ok
18:19:34.0741 0x0870  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
18:19:34.0756 0x0870  sppuinotify - ok
18:19:34.0803 0x0870  [ 441FBA48BFF01FDB9D5969EBC1838F0B, 306128F1AD489F87161A089D1BDC1542A4CB742D91A0C12A7CD1863FDB8932C0 ] srv             C:\Windows\system32\DRIVERS\srv.sys
18:19:34.0834 0x0870  srv - ok
18:19:34.0866 0x0870  [ B4ADEBBF5E3677CCE9651E0F01F7CC28, 726DB2283113AB2A9681E8E9F61132303D6D86E9CD034C40EE4A8C9DB29E87F7 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
18:19:34.0881 0x0870  srv2 - ok
18:19:34.0912 0x0870  [ 0C4540311E11664B245A263E1154CEF8, 63376322BFFAFF2F166AF3FDD3F1A346C21FAE21F406F659F8630779D1D6525D ] SrvHsfHDA       C:\Windows\system32\DRIVERS\VSTAZL6.SYS
18:19:34.0928 0x0870  SrvHsfHDA - ok
18:19:34.0990 0x0870  [ 02071D207A9858FBE3A48CBFD59C4A04, FEA4DEBAEC3465E0C7C1E8B721805922F6BBCB96A60A193B11688F4252F4B89E ] SrvHsfV92       C:\Windows\system32\DRIVERS\VSTDPV6.SYS
18:19:35.0053 0x0870  SrvHsfV92 - ok
18:19:35.0084 0x0870  [ 18E40C245DBFAF36FD0134A7EF2DF396, 0138A68958112101A5D3BD94114F320CE80B0C9A93E009AC78DE7415FCCC7DE7 ] SrvHsfWinac     C:\Windows\system32\DRIVERS\VSTCNXT6.SYS
18:19:35.0115 0x0870  SrvHsfWinac - ok
18:19:35.0131 0x0870  [ 27E461F0BE5BFF5FC737328F749538C3, AFA4704ED8FFC1A0BAB40DFB81D3AE3F3D933A3C9BF54DDAF39FF9AF3646D9E6 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
18:19:35.0146 0x0870  srvnet - ok
18:19:35.0162 0x0870  [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
18:19:35.0162 0x0870  SSDPSRV - ok
18:19:35.0178 0x0870  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc         C:\Windows\system32\sstpsvc.dll
18:19:35.0178 0x0870  SstpSvc - ok
18:19:35.0318 0x0870  [ 7595D53EE8E8B0BAA9A2DDDE867EBB0C, 8EBBFA456D93E63AF9D64CC95A58651E2C1B1398B6052C0E65D3005AD5AC8CB5 ] STacSV          C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\STacSV64.exe
18:19:35.0334 0x0870  STacSV - ok
18:19:35.0349 0x0870  [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor        C:\Windows\system32\DRIVERS\stexstor.sys
18:19:35.0349 0x0870  stexstor - ok
18:19:35.0396 0x0870  [ DFFBC024DFC7BB05B2129E05CBC7A201, CA07944B864D7F3DA673040CF6314FECCAF80B8EADAF648392AE79697DAC15B4 ] STHDA           C:\Windows\system32\DRIVERS\stwrt64.sys
18:19:35.0412 0x0870  STHDA - ok
18:19:35.0474 0x0870  [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc          C:\Windows\System32\wiaservc.dll
18:19:35.0490 0x0870  stisvc - ok
18:19:35.0521 0x0870  [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum          C:\Windows\system32\drivers\swenum.sys
18:19:35.0536 0x0870  swenum - ok
18:19:35.0568 0x0870  [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv           C:\Windows\System32\swprv.dll
18:19:35.0599 0x0870  swprv - ok
18:19:35.0646 0x0870  [ 924D711941956F7420A4925592BE8253, D621114FC94D9B257EC5B684B90E54B63D4078D5FC19550C2E396AE4EDD2C552 ] SynTP           C:\Windows\system32\DRIVERS\SynTP.sys
18:19:35.0661 0x0870  SynTP - ok
18:19:35.0739 0x0870  [ BF9CCC0BF39B418C8D0AE8B05CF95B7D, 3C13217548BE61F2BDB8BD41F77345CDDA1F97BF0AE17241C335B9807EB3DBB8 ] SysMain         C:\Windows\system32\sysmain.dll
18:19:35.0802 0x0870  SysMain - ok
18:19:35.0848 0x0870  [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll
18:19:35.0848 0x0870  TabletInputService - ok
18:19:35.0880 0x0870  [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv         C:\Windows\System32\tapisrv.dll
18:19:35.0880 0x0870  TapiSrv - ok
18:19:35.0895 0x0870  [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS             C:\Windows\System32\tbssvc.dll
18:19:35.0895 0x0870  TBS - ok
18:19:35.0989 0x0870  [ 40AF23633D197905F03AB5628C558C51, 644656A15236E964E4BE57B42225EAA5643C4CF1FFF6D306813A000716F9D72C ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
18:19:36.0036 0x0870  Tcpip - ok
18:19:36.0098 0x0870  [ 40AF23633D197905F03AB5628C558C51, 644656A15236E964E4BE57B42225EAA5643C4CF1FFF6D306813A000716F9D72C ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
18:19:36.0129 0x0870  TCPIP6 - ok
18:19:36.0160 0x0870  [ 1B16D0BD9841794A6E0CDE0CEF744ABC, 7EB8BA97339199EEE7F2B09DA2DA6279DA64A510D4598D42CF86415D67CD674C ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
18:19:36.0160 0x0870  tcpipreg - ok
18:19:36.0192 0x0870  [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
18:19:36.0207 0x0870  TDPIPE - ok
18:19:36.0223 0x0870  [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
18:19:36.0223 0x0870  TDTCP - ok
18:19:36.0285 0x0870  [ DDAD5A7AB24D8B65F8D724F5C20FD806, B71F2967A4EE7395E4416C1526CB85368AEA988BDD1F2C9719C48B08FAFA9661 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
18:19:36.0285 0x0870  tdx - ok
18:19:36.0332 0x0870  [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD          C:\Windows\system32\drivers\termdd.sys
18:19:36.0332 0x0870  TermDD - ok
18:19:36.0394 0x0870  [ 2E648163254233755035B46DD7B89123, 6FA0D07CE18A3A69D82EE49D875F141E39406E92C34EAC76AC4EB052E6EBCBCD ] TermService     C:\Windows\System32\termsrv.dll
18:19:36.0410 0x0870  TermService - ok
18:19:36.0426 0x0870  [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes          C:\Windows\system32\themeservice.dll
18:19:36.0441 0x0870  Themes - ok
18:19:36.0457 0x0870  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER     C:\Windows\system32\mmcss.dll
18:19:36.0472 0x0870  THREADORDER - ok
18:19:36.0472 0x0870  [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks          C:\Windows\System32\trkwks.dll
18:19:36.0488 0x0870  TrkWks - ok
18:19:36.0535 0x0870  [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
18:19:36.0550 0x0870  TrustedInstaller - ok
18:19:36.0597 0x0870  [ 4CE278FC9671BA81A138D70823FCAA09, CBE501436696E32A3701B9F377B823AC36647B6626595F76CC63E2396AD7D300 ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
18:19:36.0613 0x0870  tssecsrv - ok
18:19:36.0644 0x0870  [ D11C783E3EF9A3C52C0EBE83CC5000E9, A136C355D4C8945729163D15801364A614E23217B15F9313C85BA45BB71A74EB ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
18:19:36.0691 0x0870  TsUsbFlt - ok
18:19:36.0738 0x0870  [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
18:19:36.0738 0x0870  tunnel - ok
18:19:36.0769 0x0870  [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35          C:\Windows\system32\DRIVERS\uagp35.sys
18:19:36.0769 0x0870  uagp35 - ok
18:19:36.0816 0x0870  [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
18:19:36.0831 0x0870  udfs - ok
18:19:36.0878 0x0870  [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect       C:\Windows\system32\UI0Detect.exe
18:19:36.0878 0x0870  UI0Detect - ok
18:19:36.0894 0x0870  [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
18:19:36.0909 0x0870  uliagpkx - ok
18:19:36.0956 0x0870  [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus           C:\Windows\system32\drivers\umbus.sys
18:19:36.0972 0x0870  umbus - ok
18:19:36.0987 0x0870  [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass          C:\Windows\system32\DRIVERS\umpass.sys
18:19:36.0987 0x0870  UmPass - ok
18:19:37.0003 0x0870  [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost        C:\Windows\System32\upnphost.dll
18:19:37.0034 0x0870  upnphost - ok
18:19:37.0081 0x0870  [ 43228F8EDD1B0BCDD3145AD246E63D39, 108D8793E9F94C0A0E895398599B359121751F2E7BAA8B7BD24838AEF646726D ] USBAAPL64       C:\Windows\system32\Drivers\usbaapl64.sys
18:19:37.0096 0x0870  USBAAPL64 - ok
18:19:37.0128 0x0870  [ DCA68B0943D6FA415F0C56C92158A83A, BEE5A5B33B22D1DF50B884D46D89FC3B8286EB16E38AD5A20F0A49E5C6766C57 ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
18:19:37.0128 0x0870  usbccgp - ok
18:19:37.0174 0x0870  [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir          C:\Windows\system32\drivers\usbcir.sys
18:19:37.0174 0x0870  usbcir - ok
18:19:37.0221 0x0870  [ 18A85013A3E0F7E1755365D287443965, 811C5EDF38C765BCF71BCE25CB6626FF6988C3699F5EF1846240EA0052F34C33 ] usbehci         C:\Windows\system32\drivers\usbehci.sys
18:19:37.0221 0x0870  usbehci - ok
18:19:37.0237 0x0870  [ 8D1196CFBB223621F2C67D45710F25BA, B5D7AFE51833B24FC9576F3AED3D8A2B290E5846060E73F9FFFAC1890A8B6003 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
18:19:37.0268 0x0870  usbhub - ok
18:19:37.0315 0x0870  [ 765A92D428A8DB88B960DA5A8D6089DC, 56DE8A2ED58E53B202C399CA7BACB1551136303C2EE0AB426BDBBF880E3C542C ] usbohci         C:\Windows\system32\drivers\usbohci.sys
18:19:37.0315 0x0870  usbohci - ok
18:19:37.0330 0x0870  [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
18:19:37.0346 0x0870  usbprint - ok
18:19:37.0377 0x0870  [ AAA2513C8AED8B54B189FD0C6B1634C0, 02FEE0B756AA559C29477A19861AC16D5A3152DC3C897C7D466423438B6A5E42 ] usbscan         C:\Windows\system32\DRIVERS\usbscan.sys
18:19:37.0377 0x0870  usbscan - ok
18:19:37.0424 0x0870  [ FED648B01349A3C8395A5169DB5FB7D6, DC4D7594C24ADD076927B9347F1B50B91CF03A4ABDB284248D5711D9C19DEB96 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
18:19:37.0424 0x0870  USBSTOR - ok
18:19:37.0440 0x0870  [ DD253AFC3BC6CBA412342DE60C3647F3, 146F8613F1057AC054DC3593E84BC52899DA27EA33B0E72ACFB78C3699ADCDE7 ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
18:19:37.0440 0x0870  usbuhci - ok
18:19:37.0471 0x0870  [ 1F775DA4CF1A3A1834207E975A72E9D7, 6D3DE5BD3EF3A76E997E5BAF900C51D25308F5A9682D1F62017F577A24095B90 ] usbvideo        C:\Windows\System32\Drivers\usbvideo.sys
18:19:37.0471 0x0870  usbvideo - ok
18:19:37.0502 0x0870  [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms           C:\Windows\System32\uxsms.dll
18:19:37.0502 0x0870  UxSms - ok
18:19:37.0518 0x0870  [ 4D71227301DD8D09097B9E4CC6527E5A, 193D47ADCB722B581CC0F29B794AB3E455B6E9BEA367CE9A5216A09E055B7F1E ] VaultSvc        C:\Windows\system32\lsass.exe
18:19:37.0518 0x0870  VaultSvc - ok
18:19:37.0549 0x0870  [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
18:19:37.0549 0x0870  vdrvroot - ok
18:19:37.0596 0x0870  [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds             C:\Windows\System32\vds.exe
18:19:37.0627 0x0870  vds - ok
18:19:37.0642 0x0870  [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
18:19:37.0642 0x0870  vga - ok
18:19:37.0674 0x0870  [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave         C:\Windows\System32\drivers\vga.sys
18:19:37.0674 0x0870  VgaSave - ok
18:19:37.0689 0x0870  [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
18:19:37.0705 0x0870  vhdmp - ok
18:19:37.0736 0x0870  [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide          C:\Windows\system32\drivers\viaide.sys
18:19:37.0736 0x0870  viaide - ok
18:19:37.0767 0x0870  [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
18:19:37.0767 0x0870  volmgr - ok
18:19:37.0814 0x0870  [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
18:19:37.0814 0x0870  volmgrx - ok
18:19:37.0845 0x0870  [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap         C:\Windows\system32\drivers\volsnap.sys
18:19:37.0845 0x0870  volsnap - ok
18:19:37.0876 0x0870  [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid         C:\Windows\system32\DRIVERS\vsmraid.sys
18:19:37.0876 0x0870  vsmraid - ok
18:19:37.0970 0x0870  [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS             C:\Windows\system32\vssvc.exe
18:19:38.0032 0x0870  VSS - ok
18:19:38.0126 0x0870  [ 10B2E2FCA707501600D1DEAB1B71F699, 0353794938DA1124649E1403FF8074B2736FBD22483A5684C0F4B6932FA74462 ] vToolbarUpdater15.0.0 C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.0.0\ToolbarUpdater.exe
18:19:38.0157 0x0870  vToolbarUpdater15.0.0 - ok
18:19:38.0266 0x0870  [ 7451065A6047CBF7332EB76F5ED5F362, 5ED16BE16EE8AAA99E7E22FF52174FC1D818535E5FD984FAA1A5A25B91936335 ] vToolbarUpdater18.1.0 C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.0\ToolbarUpdater.exe
18:19:38.0344 0x0870  vToolbarUpdater18.1.0 - ok
18:19:38.0360 0x0870  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus        C:\Windows\system32\DRIVERS\vwifibus.sys
18:19:38.0376 0x0870  vwifibus - ok
18:19:38.0376 0x0870  [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
18:19:38.0376 0x0870  vwififlt - ok
18:19:38.0407 0x0870  [ 6A638FC4BFDDC4D9B186C28C91BD1A01, 5521F1DC515586777EC4837E0AEAA3E613CC178AF1074031C4D0D0C695A93168 ] vwifimp         C:\Windows\system32\DRIVERS\vwifimp.sys
18:19:38.0407 0x0870  vwifimp - ok
18:19:38.0438 0x0870  [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time         C:\Windows\system32\w32time.dll
18:19:38.0454 0x0870  W32Time - ok
18:19:38.0485 0x0870  [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen        C:\Windows\system32\DRIVERS\wacompen.sys
18:19:38.0485 0x0870  WacomPen - ok
18:19:38.0547 0x0870  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
18:19:38.0547 0x0870  WANARP - ok
18:19:38.0563 0x0870  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
18:19:38.0563 0x0870  Wanarpv6 - ok
18:19:38.0625 0x0870  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C, 4150DAB33E8D61076F1D4767BCAFC9B4ECCCCBD58FD4FB3CFE5B8D27DCDCAB61 ] WatAdminSvc     C:\Windows\system32\Wat\WatAdminSvc.exe
18:19:38.0656 0x0870  WatAdminSvc - ok
18:19:38.0750 0x0870  [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine        C:\Windows\system32\wbengine.exe
18:19:38.0828 0x0870  wbengine - ok
18:19:38.0844 0x0870  [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
18:19:38.0859 0x0870  WbioSrvc - ok
18:19:38.0906 0x0870  [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc         C:\Windows\System32\wcncsvc.dll
18:19:38.0922 0x0870  wcncsvc - ok
18:19:38.0937 0x0870  [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
18:19:38.0984 0x0870  WcsPlugInService - ok
18:19:39.0000 0x0870  [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd              C:\Windows\system32\DRIVERS\wd.sys
18:19:39.0000 0x0870  Wd - ok
18:19:39.0062 0x0870  [ A3D04EBF5227886029B4532F20D026F7, D90F7B9C176008675DA0B5FD7E4973CBC2A04172CEDF8FB7D3B3B4F27B5440D7 ] WDC_SAM         C:\Windows\system32\DRIVERS\wdcsam64.sys
18:19:39.0062 0x0870  WDC_SAM - ok
18:19:39.0124 0x0870  [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
18:19:39.0140 0x0870  Wdf01000 - ok
18:19:39.0171 0x0870  [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiServiceHost  C:\Windows\system32\wdi.dll
18:19:39.0187 0x0870  WdiServiceHost - ok
18:19:39.0187 0x0870  [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiSystemHost   C:\Windows\system32\wdi.dll
18:19:39.0187 0x0870  WdiSystemHost - ok
18:19:39.0249 0x0870  [ 0EB0E5D22B1760F2DBCE632F2DD7A54D, B8A4CC62F88768947FB0A161CF9564DB28FD9C1C037B5475DF192982DE035C22 ] WebClient       C:\Windows\System32\webclnt.dll
18:19:39.0265 0x0870  WebClient - ok
18:19:39.0280 0x0870  [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc          C:\Windows\system32\wecsvc.dll
18:19:39.0296 0x0870  Wecsvc - ok
18:19:39.0312 0x0870  [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
18:19:39.0312 0x0870  wercplsupport - ok
18:19:39.0343 0x0870  [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc          C:\Windows\System32\WerSvc.dll
18:19:39.0343 0x0870  WerSvc - ok
18:19:39.0374 0x0870  [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
18:19:39.0374 0x0870  WfpLwf - ok
18:19:39.0390 0x0870  [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
18:19:39.0390 0x0870  WIMMount - ok
18:19:39.0421 0x0870  WinDefend - ok
18:19:39.0436 0x0870  WinHttpAutoProxySvc - ok
18:19:39.0499 0x0870  [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
18:19:39.0499 0x0870  Winmgmt - ok
18:19:39.0592 0x0870  [ BCB1310604AA415C4508708975B3931E, 9D943F086D454345153A0DD426B4432532A44FD87950386B186E1CAD2AC70565 ] WinRM           C:\Windows\system32\WsmSvc.dll
18:19:39.0655 0x0870  WinRM - ok
18:19:39.0717 0x0870  [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
18:19:39.0733 0x0870  WinUsb - ok
18:19:39.0764 0x0870  [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc         C:\Windows\System32\wlansvc.dll
18:19:39.0811 0x0870  Wlansvc - ok
18:19:39.0811 0x0870  [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
18:19:39.0826 0x0870  WmiAcpi - ok
18:19:39.0842 0x0870  [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
18:19:39.0842 0x0870  wmiApSrv - ok
18:19:39.0858 0x0870  WMPNetworkSvc - ok
18:19:39.0889 0x0870  [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc          C:\Windows\System32\wpcsvc.dll
18:19:39.0920 0x0870  WPCSvc - ok
18:19:39.0951 0x0870  [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
18:19:39.0967 0x0870  WPDBusEnum - ok
18:19:39.0982 0x0870  [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
18:19:39.0982 0x0870  ws2ifsl - ok
18:19:39.0998 0x0870  [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc          C:\Windows\system32\wscsvc.dll
18:19:39.0998 0x0870  wscsvc - ok
18:19:39.0998 0x0870  WSearch - ok
18:19:40.0123 0x0870  [ D9EF901DCA379CFE914E9FA13B73B4C4, 3BE9693B7B2AFEE23D72AF5DA211379724D752F0EC18ACB7D3DE3DDFC5AE0004 ] wuauserv        C:\Windows\system32\wuaueng.dll
18:19:40.0201 0x0870  wuauserv - ok
18:19:40.0232 0x0870  [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
18:19:40.0279 0x0870  WudfPf - ok
18:19:40.0310 0x0870  [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
18:19:40.0310 0x0870  WUDFRd - ok
18:19:40.0341 0x0870  [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
18:19:40.0357 0x0870  wudfsvc - ok
18:19:40.0404 0x0870  [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc         C:\Windows\System32\wwansvc.dll
18:19:40.0450 0x0870  WwanSvc - ok
18:19:40.0497 0x0870  [ B3EEACF62445E24FBB2CD4B0FB4DB026, 2E5B6220094C47754233EDA59E6514CE47AC6C6879F367C72B2C02330EABE8E0 ] yukonw7         C:\Windows\system32\DRIVERS\yk62x64.sys
18:19:40.0513 0x0870  yukonw7 - ok
18:19:40.0528 0x0870  ================ Scan global ===============================
18:19:40.0560 0x0870  [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\system32\basesrv.dll
18:19:40.0606 0x0870  [ 88EDD0B34EED542745931E581AD21A32, DC2B93E1CEF5B0BCEE08D72669BB0F3AD0E8E6E75BDC08858407ED92F6FFA031 ] C:\Windows\system32\winsrv.dll
18:19:40.0622 0x0870  [ 88EDD0B34EED542745931E581AD21A32, DC2B93E1CEF5B0BCEE08D72669BB0F3AD0E8E6E75BDC08858407ED92F6FFA031 ] C:\Windows\system32\winsrv.dll
18:19:40.0653 0x0870  [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll
18:19:40.0669 0x0870  [ 24ACB7E5BE595468E3B9AA488B9B4FCB, 63541E3432FCE953F266AE553E7A394978D6EE3DB52388D885F668CF42C5E7E2 ] C:\Windows\system32\services.exe
18:19:40.0684 0x0870  [ Global ] - ok
18:19:40.0684 0x0870  ================ Scan MBR ==================================
18:19:40.0700 0x0870  [ 5B203607700597191E68678869AA80E4 ] \Device\Harddisk0\DR0
18:19:41.0106 0x0870  \Device\Harddisk0\DR0 - ok
18:19:41.0106 0x0870  ================ Scan VBR ==================================
18:19:41.0106 0x0870  [ 6E99A4A726704879D3ED19C8271EF62B ] \Device\Harddisk0\DR0\Partition1
18:19:41.0106 0x0870  \Device\Harddisk0\DR0\Partition1 - ok
18:19:41.0121 0x0870  [ 208F458B6AF7C7827977CD4E2159C339 ] \Device\Harddisk0\DR0\Partition2
18:19:41.0121 0x0870  \Device\Harddisk0\DR0\Partition2 - ok
18:19:41.0121 0x0870  [ 75B36AEA690AA777FA80F2B22AA4F33C ] \Device\Harddisk0\DR0\Partition3
18:19:41.0121 0x0870  \Device\Harddisk0\DR0\Partition3 - ok
18:19:41.0121 0x0870  [ 081FC4D0C147FB4733291C7CC8A38FD9 ] \Device\Harddisk0\DR0\Partition4
18:19:41.0121 0x0870  \Device\Harddisk0\DR0\Partition4 - ok
18:19:41.0293 0x0870  AV detected via SS2: AVG AntiVirus Free Edition 2014, C:\Program Files (x86)\AVG\AVG2014\avgwsc.exe ( 14.0.0.4563 ), 0x40000 ( disabled : updated )
18:19:41.0324 0x0870  Win FW state via NFP2: enabled
18:19:41.0324 0x0870  ============================================================
18:19:41.0324 0x0870  Scan finished
18:19:41.0324 0x0870  ============================================================
18:19:41.0340 0x04d4  Detected object count: 0
18:19:41.0340 0x04d4  Actual detected object count: 0
18:19:56.0191 0x03c8  Deinitialize success
 
 
TDSSKiller (with changed parameters)
 
18:20:01.0698 0x07f4  TDSS rootkit removing tool 3.0.0.34 Apr 29 2014 18:20:10
18:20:04.0147 0x07f4  ============================================================
18:20:04.0147 0x07f4  Current date / time: 2014/05/03 18:20:04.0147
18:20:04.0147 0x07f4  SystemInfo:
18:20:04.0147 0x07f4  
18:20:04.0147 0x07f4  OS Version: 6.1.7601 ServicePack: 1.0
18:20:04.0147 0x07f4  Product type: Workstation
18:20:04.0147 0x07f4  ComputerName: JMACBETH-PC
18:20:04.0147 0x07f4  UserName: joy_macbeth
18:20:04.0147 0x07f4  Windows directory: C:\Windows
18:20:04.0147 0x07f4  System windows directory: C:\Windows
18:20:04.0147 0x07f4  Running under WOW64
18:20:04.0147 0x07f4  Processor architecture: Intel x64
18:20:04.0147 0x07f4  Number of processors: 8
18:20:04.0147 0x07f4  Page size: 0x1000
18:20:04.0147 0x07f4  Boot type: Normal boot
18:20:04.0147 0x07f4  ============================================================
18:20:04.0911 0x07f4  KLMD registered as C:\Windows\system32\drivers\49165363.sys
18:20:05.0052 0x07f4  System UUID: {CC4C5023-816C-85AA-42D6-D4736CCD2675}
18:20:05.0504 0x07f4  Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
18:20:05.0520 0x07f4  ============================================================
18:20:05.0520 0x07f4  \Device\Harddisk0\DR0:
18:20:05.0520 0x07f4  MBR partitions:
18:20:05.0520 0x07f4  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x63800
18:20:05.0520 0x07f4  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x64000, BlocksNum 0x38864000
18:20:05.0520 0x07f4  \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x388C8000, BlocksNum 0x1A8A000
18:20:05.0520 0x07f4  \Device\Harddisk0\DR0\Partition4: MBR, Type 0xC, StartLBA 0x3A352000, BlocksNum 0x33830
18:20:05.0520 0x07f4  ============================================================
18:20:05.0551 0x07f4  C: <-> \Device\Harddisk0\DR0\Partition2
18:20:05.0598 0x07f4  D: <-> \Device\Harddisk0\DR0\Partition3
18:20:05.0598 0x07f4  E: <-> \Device\Harddisk0\DR0\Partition4
18:20:05.0598 0x07f4  ============================================================
18:20:05.0613 0x07f4  Initialize success
18:20:05.0613 0x07f4  ============================================================
18:20:25.0862 0x05d0  ============================================================
18:20:25.0862 0x05d0  Scan started
18:20:25.0862 0x05d0  Mode: Manual; SigCheck; TDLFS; 
18:20:25.0862 0x05d0  ============================================================
18:20:25.0862 0x05d0  KSN ping started
18:20:25.0893 0x05d0  KSN ping finished: false
18:20:26.0174 0x05d0  ================ Scan system memory ========================
18:20:26.0174 0x05d0  System memory - ok
18:20:26.0174 0x05d0  ================ Scan services =============================
18:20:26.0361 0x05d0  [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
18:20:26.0455 0x05d0  1394ohci - ok
18:20:26.0502 0x05d0  [ 1CFFE9C06E66A57DAE1452E449A58240, F337852EEF9DCF33FB1B85EEF61FA8D28A780B13488B144DFAD2234FC24CB430 ] Accelerometer   C:\Windows\system32\DRIVERS\Accelerometer.sys
18:20:26.0548 0x05d0  Accelerometer - ok
18:20:26.0564 0x05d0  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
18:20:26.0595 0x05d0  ACPI - ok
18:20:26.0642 0x05d0  [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
18:20:26.0704 0x05d0  AcpiPmi - ok
18:20:26.0782 0x05d0  [ 2F0683FD2DF1D92E891CACA14B45A8C1, B4A8D6A183FA0B7D642FAD6B51C19FEC998481E1C49480D2B391E5D8B55F5BBD ] adfs            C:\Windows\system32\drivers\adfs.sys
18:20:26.0798 0x05d0  adfs - ok
18:20:26.0954 0x05d0  [ ADDA5E1951B90D3D23C56D3CF0622ADC, E85E7BFD29F00ED34BF5BE8BD4DA93CBB14278E16809BB55406875F0DA88551E ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
18:20:26.0970 0x05d0  AdobeARMservice - ok
18:20:27.0126 0x05d0  [ 9D96B0D5855FD1B98023B3EEC9F06786, E4C79233158BE8AA4E9C6DD71585E5D2703A5156531EB3D692D7D81BC443E844 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
18:20:27.0141 0x05d0  AdobeFlashPlayerUpdateSvc - ok
18:20:27.0188 0x05d0  [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx         C:\Windows\system32\DRIVERS\adp94xx.sys
18:20:27.0204 0x05d0  adp94xx - ok
18:20:27.0250 0x05d0  [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci         C:\Windows\system32\DRIVERS\adpahci.sys
18:20:27.0266 0x05d0  adpahci - ok
18:20:27.0297 0x05d0  [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320         C:\Windows\system32\DRIVERS\adpu320.sys
18:20:27.0313 0x05d0  adpu320 - ok
18:20:27.0344 0x05d0  [ 4B78B431F225FD8624C5655CB1DE7B61, 198A5AF2125C7C41F531A652D200C083A55A97DC541E3C0B5B253C7329949156 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
18:20:27.0391 0x05d0  AeLookupSvc - ok
18:20:27.0531 0x05d0  [ A6FB9DB8F1A86861D955FD6975977AE0, 788C6EE50719227D7A9B7F08C8D5E1289FCD0E8AC23A1021A5093D2E8368F696 ] AESTFilters     C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\AESTSr64.exe
18:20:27.0562 0x05d0  AESTFilters - ok
18:20:27.0625 0x05d0  [ 79059559E89D06E8B80CE2944BE20228, 6E041D2FED2D0C3D8E16E56CB61D3245F9144EA92F5BDC9A4AA30598D1C8E6EE ] AFD             C:\Windows\system32\drivers\afd.sys
18:20:27.0687 0x05d0  AFD - ok
18:20:27.0718 0x05d0  [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440          C:\Windows\system32\drivers\agp440.sys
18:20:27.0734 0x05d0  agp440 - ok
18:20:27.0781 0x05d0  [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG             C:\Windows\System32\alg.exe
18:20:27.0812 0x05d0  ALG - ok
18:20:27.0859 0x05d0  [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide          C:\Windows\system32\drivers\aliide.sys
18:20:27.0874 0x05d0  aliide - ok
18:20:27.0921 0x05d0  [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide          C:\Windows\system32\drivers\amdide.sys
18:20:27.0937 0x05d0  amdide - ok
18:20:27.0968 0x05d0  [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8           C:\Windows\system32\DRIVERS\amdk8.sys
18:20:28.0030 0x05d0  AmdK8 - ok
18:20:28.0046 0x05d0  [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM          C:\Windows\system32\DRIVERS\amdppm.sys
18:20:28.0077 0x05d0  AmdPPM - ok
18:20:28.0140 0x05d0  [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
18:20:28.0140 0x05d0  amdsata - ok
18:20:28.0249 0x05d0  [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs          C:\Windows\system32\DRIVERS\amdsbs.sys
18:20:28.0264 0x05d0  amdsbs - ok
18:20:28.0296 0x05d0  [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata         C:\Windows\system32\drivers\amdxata.sys
18:20:28.0311 0x05d0  amdxata - ok
18:20:28.0358 0x05d0  [ E71711D37C48AC40FD3E2866A5ABBA51, C85DB75741B17A0A84B045DC461B5A6C5EA2A34BCD661107D355CE8DF4A29E03 ] anvsnddrv       C:\Windows\system32\drivers\anvsnddrv.sys
18:20:28.0374 0x05d0  anvsnddrv - ok
18:20:28.0436 0x05d0  [ 89A69C3F2F319B43379399547526D952, 8ABDB4B8E106F96EBBA0D4D04C4F432296516E107E7BA5644ED2E50CF9BB491A ] AppID           C:\Windows\system32\drivers\appid.sys
18:20:28.0514 0x05d0  AppID - ok
18:20:28.0545 0x05d0  [ 0BC381A15355A3982216F7172F545DE1, C33AF13CB218F7BF52E967452573DF2ADD20A95C6BF99229794FEF07C4BBE725 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
18:20:28.0592 0x05d0  AppIDSvc - ok
18:20:28.0623 0x05d0  [ 9D2A2369AB4B08A4905FE72DB104498F, D6FA1705018BABABFA2362E05691A0D6408D14DE7B76129B16D0A1DAD6378E58 ] Appinfo         C:\Windows\System32\appinfo.dll
18:20:28.0686 0x05d0  Appinfo - ok
18:20:28.0810 0x05d0  [ 221564CC7BE37611FE15EACF443E1BF6, 381BDF17418C779D72332431BA174C2AD76CD9C7C1711FF5142EA9B05D5555E4 ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
18:20:28.0810 0x05d0  Apple Mobile Device - ok
18:20:28.0857 0x05d0  [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc             C:\Windows\system32\DRIVERS\arc.sys
18:20:28.0873 0x05d0  arc - ok
18:20:28.0888 0x05d0  [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas          C:\Windows\system32\DRIVERS\arcsas.sys
18:20:28.0904 0x05d0  arcsas - ok
18:20:29.0107 0x05d0  [ 9A262EDD17F8473B91B333D6B031A901, 05DFBD3A7D83FDE1D062EA719ACA9EC48CB7FD42D17DDD88B82E5D25469ADD23 ] aspnet_state    C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
18:20:29.0122 0x05d0  aspnet_state - ok
18:20:29.0154 0x05d0  [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
18:20:29.0200 0x05d0  AsyncMac - ok
18:20:29.0263 0x05d0  [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi           C:\Windows\system32\drivers\atapi.sys
18:20:29.0263 0x05d0  atapi - ok
18:20:29.0341 0x05d0  [ F23FEF6D569FCE88671949894A8BECF1, FCE7B156ED663471CF9A736915F00302E93B50FC647563D235313A37FCE8F0F6 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
18:20:29.0419 0x05d0  AudioEndpointBuilder - ok
18:20:29.0481 0x05d0  [ F23FEF6D569FCE88671949894A8BECF1, FCE7B156ED663471CF9A736915F00302E93B50FC647563D235313A37FCE8F0F6 ] AudioSrv        C:\Windows\System32\Audiosrv.dll
18:20:29.0528 0x05d0  AudioSrv - ok
18:20:29.0622 0x05d0  [ 2D5E8A35808FDA50274CFD22000DAB53, 3C11CCD0162DD5D036527D7DBEC8159CCB60E84C16F9ADA84773EC3302BEB4A5 ] Avgdiska        C:\Windows\system32\DRIVERS\avgdiska.sys
18:20:29.0637 0x05d0  Avgdiska - ok
18:20:29.0887 0x05d0  [ 7645B56EE79C68DFE19298BD531A66A3, 4FB045E7B947A4C9D7FA0EADE0BBC2C14F55BF1B660D8BA7D479935D74A9F5E7 ] AVGIDSAgent     C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe
18:20:29.0980 0x05d0  AVGIDSAgent - ok
18:20:30.0027 0x05d0  [ E92276DB995B7E75DA9B9DD271058A8E, FFEC1ECE3ED25D8D757765452035369BBD45A0C158747C826D1696A2E3B38903 ] AVGIDSDriver    C:\Windows\system32\DRIVERS\avgidsdrivera.sys
18:20:30.0058 0x05d0  AVGIDSDriver - ok
18:20:30.0074 0x05d0  [ F6CE2F1B6E890FB5EBC04A11A2E31DC1, 7F1442D6EDF18D089C7DBB00AF03BB4376A59006187D29D05402B2830E84F7E7 ] AVGIDSHA        C:\Windows\system32\DRIVERS\avgidsha.sys
18:20:30.0090 0x05d0  AVGIDSHA - ok
18:20:30.0152 0x05d0  [ B323DE78E0C75F3605C7A200F3CF350F, 1CBBB65E9E91E0C787530B6B21D89771083C20604E6F8447FAA9BC5FAE1CA895 ] Avgldx64        C:\Windows\system32\DRIVERS\avgldx64.sys
18:20:30.0168 0x05d0  Avgldx64 - ok
18:20:30.0230 0x05d0  [ 6E381AFF06BC6ABFAEF70405014D7A37, 887D6B766E27B18406BA30C02F46B5015A4BF9C9947462F75D87956BA4F61745 ] Avgloga         C:\Windows\system32\DRIVERS\avgloga.sys
18:20:30.0246 0x05d0  Avgloga - ok
18:20:30.0292 0x05d0  [ DBFB9BEAE2816FDB4B4EF8C89AFA3DF0, 840C5015960904090298D820F526A1A333A4E88C56FA932D1E80F10BF62040E4 ] Avgmfx64        C:\Windows\system32\DRIVERS\avgmfx64.sys
18:20:30.0324 0x05d0  Avgmfx64 - ok
18:20:30.0339 0x05d0  [ 9C6CD518AE78D532FB33240DE11C765D, 3532FB7D5434A5488C7513105B51734A27C1D95C8A7ADF1A5DE18A35FE8CE5A6 ] Avgrkx64        C:\Windows\system32\DRIVERS\avgrkx64.sys
18:20:30.0355 0x05d0  Avgrkx64 - ok
18:20:30.0386 0x05d0  [ F86A506DA0BF61402E19DB8AF0684C9A, A4AB8FE25B3A27E7351ABFF6A8B7120C722E797BE38708A1C5E38211672C6AE8 ] Avgtdia         C:\Windows\system32\DRIVERS\avgtdia.sys
18:20:30.0402 0x05d0  Avgtdia - ok
18:20:30.0464 0x05d0  [ 9FD4BC46784309176AEFA26AA8241DA1, 939F7503A6231E5FD5A3F46BDB97671D62D0CEC8B6EF82BD6B1090C45D9D6E1F ] avgtp           C:\Windows\system32\drivers\avgtpx64.sys
18:20:30.0480 0x05d0  avgtp - ok
18:20:30.0526 0x05d0  [ DBAEB3D23C653018629A76E53260E122, DF402D83206EDA77818D3B59456240E66C69D307FCC7419354BF363413BC7963 ] avgwd           C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe
18:20:30.0542 0x05d0  avgwd - ok
18:20:30.0604 0x05d0  [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV        C:\Windows\System32\AxInstSV.dll
18:20:30.0651 0x05d0  AxInstSV - ok
18:20:30.0682 0x05d0  [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv         C:\Windows\system32\DRIVERS\bxvbda.sys
18:20:30.0729 0x05d0  b06bdrv - ok
18:20:30.0792 0x05d0  [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
18:20:30.0823 0x05d0  b57nd60a - ok
18:20:30.0901 0x05d0  [ 9E84A931DBEE0292E38ED672F6293A99, 2945EAF0AC091709E0C5508B45EC343EDE507AC2B08A2D7D64F286D38424CBC4 ] BCM43XX         C:\Windows\system32\DRIVERS\bcmwl664.sys
18:20:31.0010 0x05d0  BCM43XX - ok
18:20:31.0072 0x05d0  [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC          C:\Windows\System32\bdesvc.dll
18:20:31.0088 0x05d0  BDESVC - ok
18:20:31.0104 0x05d0  [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep            C:\Windows\system32\drivers\Beep.sys
18:20:31.0135 0x05d0  Beep - ok
18:20:31.0213 0x05d0  [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE             C:\Windows\System32\bfe.dll
18:20:31.0260 0x05d0  BFE - ok
18:20:31.0306 0x05d0  [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS            C:\Windows\system32\qmgr.dll
18:20:31.0353 0x05d0  BITS - ok
18:20:31.0369 0x05d0  [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
18:20:31.0400 0x05d0  blbdrive - ok
18:20:31.0509 0x05d0  [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
18:20:31.0525 0x05d0  Bonjour Service - ok
18:20:31.0572 0x05d0  [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
18:20:31.0603 0x05d0  bowser - ok
18:20:31.0634 0x05d0  [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo        C:\Windows\system32\DRIVERS\BrFiltLo.sys
18:20:31.0665 0x05d0  BrFiltLo - ok
18:20:31.0681 0x05d0  [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp        C:\Windows\system32\DRIVERS\BrFiltUp.sys
18:20:31.0712 0x05d0  BrFiltUp - ok
18:20:31.0743 0x05d0  [ 5C2F352A4E961D72518261257AAE204B, 9EE1001E1D46A414A7A86FE1DBBE232203E26F54D9EF43ED31ED8EACD4D09853 ] BridgeMP        C:\Windows\system32\DRIVERS\bridge.sys
18:20:31.0790 0x05d0  BridgeMP - ok
18:20:31.0837 0x05d0  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser         C:\Windows\System32\browser.dll
18:20:31.0868 0x05d0  Browser - ok
18:20:31.0899 0x05d0  [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
18:20:31.0930 0x05d0  Brserid - ok
18:20:31.0946 0x05d0  [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
18:20:31.0993 0x05d0  BrSerWdm - ok
18:20:32.0008 0x05d0  [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
18:20:32.0024 0x05d0  BrUsbMdm - ok
18:20:32.0024 0x05d0  [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
18:20:32.0071 0x05d0  BrUsbSer - ok
18:20:32.0118 0x05d0  [ CF98190A94F62E405C8CB255018B2315, E1B2540023C4FE9FD588E4B6AE6347DFA565EB3898F21E5360882BF3E8B5E781 ] BthEnum         C:\Windows\system32\drivers\BthEnum.sys
18:20:32.0164 0x05d0  BthEnum - ok
18:20:32.0180 0x05d0  [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM        C:\Windows\system32\DRIVERS\bthmodem.sys
18:20:32.0227 0x05d0  BTHMODEM - ok
18:20:32.0258 0x05d0  [ 02DD601B708DD0667E1331FA8518E9FF, 7DE6CC4DBB621CD03B01D9CE6CF66EAFE31D39030A391562CD0E278E1D70ADE1 ] BthPan          C:\Windows\system32\DRIVERS\bthpan.sys
18:20:32.0289 0x05d0  BthPan - ok
18:20:32.0320 0x05d0  [ 738D0E9272F59EB7A1449C3EC118E6C4, FE3D32C2A5E4DC21376A0F89C0B2EE024ECF1A3FB99213CC9BBC986ADF7AF080 ] BTHPORT         C:\Windows\System32\Drivers\BTHport.sys
18:20:32.0367 0x05d0  BTHPORT - ok
18:20:32.0414 0x05d0  [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv         C:\Windows\system32\bthserv.dll
18:20:32.0461 0x05d0  bthserv - ok
18:20:32.0476 0x05d0  [ F188B7394D81010767B6DF3178519A37, 576304E92FD94908F093A6AB5F4D328F25829BE32EC3CA0D29EBFDF5DE83539B ] BTHUSB          C:\Windows\System32\Drivers\BTHUSB.sys
18:20:32.0492 0x05d0  BTHUSB - ok
18:20:32.0554 0x05d0  [ 4BDBDB86ABBA924E029FB2683BE7C505, A3C9C03CEC811ACE64E0C956BE9D69E7DF3877948F1659B26ED75982A846880F ] btwaudio        C:\Windows\system32\drivers\btwaudio.sys
18:20:32.0570 0x05d0  btwaudio - ok
18:20:32.0586 0x05d0  [ 5C849BD7C78791C5CEE9F4651D7FE38D, BC93A1B911FB4A44EC4DB64AF9AFC6F2013CD76BFB6FA9E4834CFDAAAF4BCD9F ] btwavdt         C:\Windows\system32\drivers\btwavdt.sys
18:20:32.0601 0x05d0  btwavdt - ok
18:20:32.0679 0x05d0  [ 31DA517946FFE416442E864592548F8A, 6883DEDE32328E82442C309C2E9EE443BEABB7321524D626A9207B58286DE72F ] btwdins         C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
18:20:32.0695 0x05d0  btwdins - ok
18:20:32.0710 0x05d0  [ 6149301DC3F81D6F9667A3FBAC410975, 120E201AFB07054C7F6321461D194843C695012431DBD791E36BBF73FDD41E8A ] btwl2cap        C:\Windows\system32\DRIVERS\btwl2cap.sys
18:20:32.0726 0x05d0  btwl2cap - ok
18:20:32.0726 0x05d0  [ 3E1991AFA851A36DC978B0A1B0535C8B, F55F7FDDD2A71532F163E4F14B26A09DCDB7C970E806D803418D4CE0DFF09FB6 ] btwrchid        C:\Windows\system32\DRIVERS\btwrchid.sys
18:20:32.0742 0x05d0  btwrchid - ok
18:20:32.0882 0x05d0  [ 72551A9AE5F68905DFC3CBA0D5242566, 15C273519C3AD1B2AF68F669125AFE607A86A60D680E299631D5E893C3CAA7E7 ] c2cautoupdatesvc C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
18:20:32.0929 0x05d0  c2cautoupdatesvc - ok
18:20:33.0038 0x05d0  [ 6B669A00A431FF6CDCE67458933F5F0F, 81419EB18BB4EB96E48C99A1D45B0267E779E135427B3AEC872A1A5DD810B23F ] c2cpnrsvc       C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
18:20:33.0085 0x05d0  c2cpnrsvc - ok
18:20:33.0210 0x05d0  catchme - ok
18:20:33.0288 0x05d0  [ 0510396A957E9FD7205BA62D3CAE4528, C80C39EB3A87C5111132E96E966CF74ACABA36DE7714B545A707027D35995792 ] ccSet_NST       C:\Windows\system32\drivers\NSTx64\7DE07000.02B\ccSetx64.sys
18:20:33.0303 0x05d0  ccSet_NST - ok
18:20:33.0334 0x05d0  [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
18:20:33.0397 0x05d0  cdfs - ok
18:20:33.0444 0x05d0  [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom           C:\Windows\system32\drivers\cdrom.sys
18:20:33.0475 0x05d0  cdrom - ok
18:20:33.0537 0x05d0  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc     C:\Windows\System32\certprop.dll
18:20:33.0584 0x05d0  CertPropSvc - ok
18:20:33.0631 0x05d0  [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass        C:\Windows\system32\DRIVERS\circlass.sys
18:20:33.0662 0x05d0  circlass - ok
18:20:33.0678 0x05d0  [ FE1EC06F2253F691FE36217C592A0206, B9F122DB5E665ECDF29A5CB8BB6B531236F31A54A95769D6C5C1924C87FE70CE ] CLFS            C:\Windows\system32\CLFS.sys
18:20:33.0709 0x05d0  CLFS - ok
18:20:33.0756 0x05d0  [ D88040F816FDA31C3B466F0FA0918F29, 39D3630E623DA25B8444B6D3AAAB16B98E7E289C5619E19A85D47B74C71449F3 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
18:20:33.0771 0x05d0  clr_optimization_v2.0.50727_32 - ok
18:20:33.0818 0x05d0  [ D1CEEA2B47CB998321C579651CE3E4F8, 654013B8FD229A50017B08DEC6CA19C7DDA8CE0771260E057A92625201D539B1 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
18:20:33.0834 0x05d0  clr_optimization_v2.0.50727_64 - ok
18:20:33.0958 0x05d0  [ E87213F37A13E2B54391E40934F071D0, 7EB221127EFB5BF158FB03D18EFDA2C55FB6CE3D1A1FE69C01D70DBED02C87E5 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
18:20:33.0974 0x05d0  clr_optimization_v4.0.30319_32 - ok
18:20:34.0021 0x05d0  [ 4AEDAB50F83580D0B4D6CF78191F92AA, D113C47013B018B45161911B96E93AF96A2F3B34FA47061BF6E7A71FBA03194A ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
18:20:34.0036 0x05d0  clr_optimization_v4.0.30319_64 - ok
18:20:34.0068 0x05d0  [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
18:20:34.0099 0x05d0  CmBatt - ok
18:20:34.0130 0x05d0  [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide          C:\Windows\system32\drivers\cmdide.sys
18:20:34.0146 0x05d0  cmdide - ok
18:20:34.0208 0x05d0  [ EBF28856F69CF094A902F884CF989706, AD6C9F0BC20AA49EEE5478DA0F856F0EA2B414B63208C5FFB03C9D7F5B59765F ] CNG             C:\Windows\system32\Drivers\cng.sys
18:20:34.0255 0x05d0  CNG - ok
18:20:34.0302 0x05d0  [ F9A79C5B27037821112C50A9C8FB367A, D9990AE1A0CA767E54C9D3FD2C6EA2A068DFD5A270102E915F71648A0C59097B ] Com4QLBEx       C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
18:20:34.0317 0x05d0  Com4QLBEx - ok
18:20:34.0333 0x05d0  [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt        C:\Windows\system32\DRIVERS\compbatt.sys
18:20:34.0348 0x05d0  Compbatt - ok
18:20:34.0395 0x05d0  [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus    C:\Windows\system32\drivers\CompositeBus.sys
18:20:34.0426 0x05d0  CompositeBus - ok
18:20:34.0442 0x05d0  COMSysApp - ok
18:20:34.0458 0x05d0  [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk         C:\Windows\system32\DRIVERS\crcdisk.sys
18:20:34.0473 0x05d0  crcdisk - ok
18:20:34.0536 0x05d0  [ 6B400F211BEE880A37A1ED0368776BF4, 2F27C6FA96A1C8CBDA467846DA57E63949A7EA37DB094B13397DDD30114295BD ] CryptSvc        C:\Windows\system32\cryptsvc.dll
18:20:34.0551 0x05d0  CryptSvc - ok
18:20:34.0598 0x05d0  [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch      C:\Windows\system32\rpcss.dll
18:20:34.0645 0x05d0  DcomLaunch - ok
18:20:34.0676 0x05d0  [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc       C:\Windows\System32\defragsvc.dll
18:20:34.0738 0x05d0  defragsvc - ok
18:20:34.0770 0x05d0  [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
18:20:34.0832 0x05d0  DfsC - ok
18:20:34.0879 0x05d0  [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp            C:\Windows\system32\dhcpcore.dll
18:20:34.0926 0x05d0  Dhcp - ok
18:20:34.0957 0x05d0  [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache        C:\Windows\system32\drivers\discache.sys
18:20:35.0004 0x05d0  discache - ok
18:20:35.0035 0x05d0  [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk            C:\Windows\system32\DRIVERS\disk.sys
18:20:35.0050 0x05d0  Disk - ok
18:20:35.0097 0x05d0  [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
18:20:35.0128 0x05d0  Dnscache - ok
18:20:35.0175 0x05d0  [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc         C:\Windows\System32\dot3svc.dll
18:20:35.0222 0x05d0  dot3svc - ok
18:20:35.0300 0x05d0  [ B42ED0320C6E41102FDE0005154849BB, 4DB872E23AD049C3C9FDC0759FC58BFA60DA91B18BC82B611BFA300D26DDFC7A ] Dot4            C:\Windows\system32\DRIVERS\Dot4.sys
18:20:35.0316 0x05d0  Dot4 - ok
18:20:35.0362 0x05d0  [ E9F5969233C5D89F3C35E3A66A52A361, C4BD35795C78FB11E6022372CB25DEB570730EFDAD3DC1584368235FF622638C ] Dot4Print       C:\Windows\system32\drivers\Dot4Prt.sys
18:20:35.0394 0x05d0  Dot4Print - ok
18:20:35.0409 0x05d0  [ FD05A02B0370BC3000F402E543CA5814, 089B1113E640F495F470E8F57060B89546270481B309DC8ED3C3D13A849076A3 ] dot4usb         C:\Windows\system32\DRIVERS\dot4usb.sys
18:20:35.0440 0x05d0  dot4usb - ok
18:20:35.0503 0x05d0  [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS             C:\Windows\system32\dps.dll
18:20:35.0550 0x05d0  DPS - ok
18:20:35.0596 0x05d0  [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
18:20:35.0643 0x05d0  drmkaud - ok
18:20:35.0706 0x05d0  [ 88612F1CE3BF42256913BF6E61C70D52, 7CF190F83FA8F15C33008EB381D3E345CEF37CBC046227DED26B36799EF4D9A7 ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
18:20:35.0737 0x05d0  DXGKrnl - ok
18:20:35.0768 0x05d0  [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost         C:\Windows\System32\eapsvc.dll
18:20:35.0815 0x05d0  EapHost - ok
18:20:35.0940 0x05d0  [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv           C:\Windows\system32\DRIVERS\evbda.sys
18:20:36.0049 0x05d0  ebdrv - ok
18:20:36.0080 0x05d0  [ 4D71227301DD8D09097B9E4CC6527E5A, 193D47ADCB722B581CC0F29B794AB3E455B6E9BEA367CE9A5216A09E055B7F1E ] EFS             C:\Windows\System32\lsass.exe
18:20:36.0096 0x05d0  EFS - ok
18:20:36.0174 0x05d0  [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
18:20:36.0220 0x05d0  ehRecvr - ok
18:20:36.0252 0x05d0  [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched         C:\Windows\ehome\ehsched.exe
18:20:36.0283 0x05d0  ehSched - ok
18:20:36.0330 0x05d0  [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor         C:\Windows\system32\DRIVERS\elxstor.sys
18:20:36.0345 0x05d0  elxstor - ok
18:20:36.0376 0x05d0  [ 524C79054636D2E5751169005006460B, 1EBA5972E13C5BB07BBD94D6647B86469B4910F60A3C8BDDC6BB5736EF99C9C3 ] enecir          C:\Windows\system32\DRIVERS\enecir.sys
18:20:36.0423 0x05d0  enecir - ok
18:20:36.0470 0x05d0  [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev          C:\Windows\system32\drivers\errdev.sys
18:20:36.0501 0x05d0  ErrDev - ok
18:20:36.0548 0x05d0  [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem     C:\Windows\system32\es.dll
18:20:36.0595 0x05d0  EventSystem - ok
18:20:36.0642 0x05d0  [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat           C:\Windows\system32\drivers\exfat.sys
18:20:36.0688 0x05d0  exfat - ok
18:20:36.0720 0x05d0  [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
18:20:36.0766 0x05d0  fastfat - ok
18:20:36.0844 0x05d0  [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax             C:\Windows\system32\fxssvc.exe
18:20:36.0876 0x05d0  Fax - ok
18:20:36.0907 0x05d0  [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc             C:\Windows\system32\DRIVERS\fdc.sys
18:20:36.0938 0x05d0  fdc - ok
18:20:36.0954 0x05d0  [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost         C:\Windows\system32\fdPHost.dll
18:20:36.0985 0x05d0  fdPHost - ok
18:20:37.0000 0x05d0  [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub        C:\Windows\system32\fdrespub.dll
18:20:37.0047 0x05d0  FDResPub - ok
18:20:37.0078 0x05d0  [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
18:20:37.0078 0x05d0  FileInfo - ok
18:20:37.0094 0x05d0  [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
18:20:37.0156 0x05d0  Filetrace - ok
18:20:37.0203 0x05d0  [ 1F63900E2EB00101B9ACA2B7A870704E, 5AFE1FC852937FECE6B33147BD0110436FE97F33BFDA3F69B1F5EDAD6FFC09C6 ] FLEXnet Licensing Service C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
18:20:37.0219 0x05d0  FLEXnet Licensing Service - ok
18:20:37.0297 0x05d0  [ 1C3FB052A0BB72EDAED90785C34D6EED, 5300A82D1A79EBA1768F545E73974E3B8CE189AB39CDF905BF42AFA2E497186B ] FLEXnet Licensing Service 64 C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
18:20:37.0328 0x05d0  FLEXnet Licensing Service 64 - ok
18:20:37.0359 0x05d0  [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk        C:\Windows\system32\DRIVERS\flpydisk.sys
18:20:37.0390 0x05d0  flpydisk - ok
18:20:37.0437 0x05d0  [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
18:20:37.0453 0x05d0  FltMgr - ok
18:20:37.0515 0x05d0  [ C4C183E6551084039EC862DA1C945E3D, 0874A2ACDD24D64965AA9A76E9C818E216880AE4C9A2E07ED932EE404585CEE6 ] FontCache       C:\Windows\system32\FntCache.dll
18:20:37.0578 0x05d0  FontCache - ok
18:20:37.0640 0x05d0  [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
18:20:37.0656 0x05d0  FontCache3.0.0.0 - ok
18:20:37.0671 0x05d0  [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
18:20:37.0687 0x05d0  FsDepends - ok
18:20:37.0718 0x05d0  [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
18:20:37.0749 0x05d0  Fs_Rec - ok
18:20:37.0796 0x05d0  [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
18:20:37.0812 0x05d0  fvevol - ok
18:20:37.0843 0x05d0  [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx        C:\Windows\system32\DRIVERS\gagp30kx.sys
18:20:37.0858 0x05d0  gagp30kx - ok
18:20:37.0921 0x05d0  [ C1BBCE4B30B45410178EE674C818D10C, 3FD449C20493057592A21CA812CA39803BC32136B84A060B2BF9621776D94E54 ] GameConsoleService C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe
18:20:37.0936 0x05d0  GameConsoleService - ok
18:20:38.0014 0x05d0  [ 8E98D21EE06192492A5671A6144D092F, B8F656B34D361EA5AFB47F3A67AB2221580DADA59C8CD0CB83181E4AD8B562B4 ] GEARAspiWDM     C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
18:20:38.0030 0x05d0  GEARAspiWDM - ok
18:20:38.0092 0x05d0  [ 4EA5458FCA8518344686C543749365B1, 52D4D2392C80A4C57C74B09FE04E9DFF6CB01521F03132EB7523BE52B8BF7A50 ] gfiark          C:\Windows\system32\drivers\gfiark.sys
18:20:38.0108 0x05d0  gfiark - ok
18:20:38.0124 0x05d0  [ 16A23FF8621929ADC5B18DCCD5E206EE, 6204E3110503F76DC5970FDBD7340CE1265EE57196759E4D4DB187BAF119FF22 ] gfiutil         C:\Windows\system32\drivers\gfiutil.sys
18:20:38.0139 0x05d0  gfiutil - ok
18:20:38.0202 0x05d0  [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc           C:\Windows\System32\gpsvc.dll
18:20:38.0280 0x05d0  gpsvc - ok
18:20:38.0420 0x05d0  [ F02A533F517EB38333CB12A9E8963773, 1F72CD1CF660766FA8F912E40B7323A0192A300B376186C10F6803DC5EFE28DF ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
18:20:38.0436 0x05d0  gupdate - ok
18:20:38.0467 0x05d0  [ F02A533F517EB38333CB12A9E8963773, 1F72CD1CF660766FA8F912E40B7323A0192A300B376186C10F6803DC5EFE28DF ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
18:20:38.0467 0x05d0  gupdatem - ok
18:20:38.0529 0x05d0  [ C1B577B2169900F4CF7190C39F085794, 73E104B96A48F4C80D8C37254ECB0891D15C0D2F0C251B57C168F90D60316447 ] gusvc           C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
18:20:38.0545 0x05d0  gusvc - ok
18:20:38.0576 0x05d0  [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
18:20:38.0592 0x05d0  hcw85cir - ok
18:20:38.0638 0x05d0  [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
18:20:38.0685 0x05d0  HdAudAddService - ok
18:20:38.0701 0x05d0  [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus        C:\Windows\system32\drivers\HDAudBus.sys
18:20:38.0732 0x05d0  HDAudBus - ok
18:20:38.0748 0x05d0  [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt         C:\Windows\system32\DRIVERS\HidBatt.sys
18:20:38.0779 0x05d0  HidBatt - ok
18:20:38.0810 0x05d0  [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth          C:\Windows\system32\DRIVERS\hidbth.sys
18:20:38.0841 0x05d0  HidBth - ok
18:20:38.0888 0x05d0  [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr           C:\Windows\system32\DRIVERS\hidir.sys
18:20:38.0919 0x05d0  HidIr - ok
18:20:38.0935 0x05d0  [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv         C:\Windows\System32\hidserv.dll
18:20:38.0982 0x05d0  hidserv - ok
18:20:39.0028 0x05d0  [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb          C:\Windows\system32\drivers\hidusb.sys
18:20:39.0075 0x05d0  HidUsb - ok
18:20:39.0106 0x05d0  [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc          C:\Windows\system32\kmsvc.dll
18:20:39.0169 0x05d0  hkmsvc - ok
18:20:39.0247 0x05d0  [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
18:20:39.0262 0x05d0  HomeGroupListener - ok
18:20:39.0278 0x05d0  [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
18:20:39.0309 0x05d0  HomeGroupProvider - ok
18:20:39.0403 0x05d0  [ 2A8B93A01621E100A578E83C768AFA2C, 6637D260AF180D1F200D219796FCE6D524FC6BF57C0CEEF9E1B3616E85865AD1 ] HP Support Assistant Service C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
18:20:39.0418 0x05d0  HP Support Assistant Service - detected UnsignedFile.Multi.Generic ( 1 )
18:20:39.0481 0x05d0  HP Support Assistant Service ( UnsignedFile.Multi.Generic ) - warning
18:20:39.0512 0x05d0  [ 05712FDDBD45A5864EB326FAABC6A4E3, 8BACA990971A331E6EC7F896EF2404F09E381DAA3519FC6E3027C0DBD991BA7F ] hpdskflt        C:\Windows\system32\DRIVERS\hpdskflt.sys
18:20:39.0528 0x05d0  hpdskflt - ok
18:20:39.0559 0x05d0  [ 9AF482D058BE59CC28BCE52E7C4B747C, 2D150CD0C82B575CDE2E1B3941FD72EFCB254850D6FF1D7C40D3B29643018EFF ] HpqKbFiltr      C:\Windows\system32\DRIVERS\HpqKbFiltr.sys
18:20:39.0574 0x05d0  HpqKbFiltr - ok
18:20:39.0668 0x05d0  [ D2946D9F020AE76E9CEF9B4A6DF838C0, C29CE594879385DA12B8EAA90B258905827B613839CCD820DE49215B68676995 ] hpqwmiex        C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
18:20:39.0715 0x05d0  hpqwmiex - ok
18:20:39.0762 0x05d0  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
18:20:39.0777 0x05d0  HpSAMD - ok
18:20:39.0793 0x05d0  [ AA036CC5F5221D9B915F4D4DCE74BA9A, B90B9F7753B45387AD56A7CE1365BEBC9EB67011B6D2F8C785717942133775AA ] hpsrv           C:\Windows\system32\Hpservice.exe
18:20:39.0808 0x05d0  hpsrv - ok
18:20:39.0871 0x05d0  [ 0EA7DE1ACB728DD5A369FD742D6EEE28, 21C489412EB33A12B22290EB701C19BA57006E8702E76F730954F0784DDE9779 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
18:20:39.0964 0x05d0  HTTP - ok
18:20:39.0996 0x05d0  [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
18:20:40.0011 0x05d0  hwpolicy - ok
18:20:40.0027 0x05d0  [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt        C:\Windows\system32\drivers\i8042prt.sys
18:20:40.0042 0x05d0  i8042prt - ok
18:20:40.0074 0x05d0  [ BE7D72FCF442C26975942007E0831241, A0FD29B3D1A1278787F8B3FBE7EC3216AAF328467974A6D90752639BB44DCD84 ] iaStor          C:\Windows\system32\DRIVERS\iaStor.sys
18:20:40.0089 0x05d0  iaStor - ok
18:20:40.0120 0x05d0  [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
18:20:40.0136 0x05d0  iaStorV - ok
18:20:40.0214 0x05d0  [ 5988FC40F8DB5B0739CD1E3A5D0D78BD, 2B9512324DBA4A97F6AC34E8067EE08E3B6874CD60F6CB4209AFC22A34D2BE99 ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
18:20:40.0245 0x05d0  idsvc - ok
18:20:40.0292 0x05d0  IEEtwCollectorService - ok
18:20:40.0479 0x05d0  [ A87261EF1546325B559374F5689CF5BC, 8DE48A8A13A32AAAC54CDDF58F3F61BE3E2802C1D9CA1CA98E57EB0D65FB6002 ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
18:20:40.0666 0x05d0  igfx - ok
18:20:40.0698 0x05d0  [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp           C:\Windows\system32\DRIVERS\iirsp.sys
18:20:40.0698 0x05d0  iirsp - ok
18:20:40.0760 0x05d0  [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT          C:\Windows\System32\ikeext.dll
18:20:40.0807 0x05d0  IKEEXT - ok
18:20:40.0854 0x05d0  [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide        C:\Windows\system32\drivers\intelide.sys
18:20:40.0854 0x05d0  intelide - ok
18:20:40.0869 0x05d0  [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
18:20:40.0900 0x05d0  intelppm - ok
18:20:41.0025 0x05d0  [ 0895CDD7F1542FFCC5BBB560EC78BC16, 383D9FFE7FB313EA201DE877F3D48B5116FFA261EDEF5D0D0FE79F14E9682D25 ] IntuitUpdateServiceV4 C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
18:20:41.0025 0x05d0  IntuitUpdateServiceV4 - ok
18:20:41.0056 0x05d0  [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
18:20:41.0119 0x05d0  IPBusEnum - ok
18:20:41.0166 0x05d0  [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
18:20:41.0212 0x05d0  IpFilterDriver - ok
18:20:41.0290 0x05d0  [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
18:20:41.0368 0x05d0  iphlpsvc - ok
18:20:41.0415 0x05d0  [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
18:20:41.0431 0x05d0  IPMIDRV - ok
18:20:41.0462 0x05d0  [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
18:20:41.0509 0x05d0  IPNAT - ok
18:20:41.0649 0x05d0  [ 842D1EDD0F2A6E0E6631BB96BAAA01DE, 9CDD0B99F2C5DAD573A9EA8D5AB2DBFD7A941454CBBA5BFE34E49F2D4EE96A90 ] iPod Service    C:\Program Files\iPod\bin\iPodService.exe
18:20:41.0665 0x05d0  iPod Service - ok
18:20:41.0680 0x05d0  [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM          C:\Windows\system32\drivers\irenum.sys
18:20:41.0774 0x05d0  IRENUM - ok
18:20:41.0790 0x05d0  [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
18:20:41.0805 0x05d0  isapnp - ok
18:20:41.0836 0x05d0  [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
18:20:41.0852 0x05d0  iScsiPrt - ok
18:20:41.0899 0x05d0  [ F8844B00C10E386C704C610E95A9847D, 3E3CFDDD0DD9E98542BAE07ED9CF922D98370C94BE364BA84F677EAA01ED775A ] JMCR            C:\Windows\system32\DRIVERS\jmcr.sys
18:20:41.0961 0x05d0  JMCR - ok
18:20:42.0008 0x05d0  [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass        C:\Windows\system32\drivers\kbdclass.sys
18:20:42.0024 0x05d0  kbdclass - ok
18:20:42.0055 0x05d0  [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid          C:\Windows\system32\drivers\kbdhid.sys
18:20:42.0070 0x05d0  kbdhid - ok
18:20:42.0086 0x05d0  [ 4D71227301DD8D09097B9E4CC6527E5A, 193D47ADCB722B581CC0F29B794AB3E455B6E9BEA367CE9A5216A09E055B7F1E ] KeyIso          C:\Windows\system32\lsass.exe
18:20:42.0102 0x05d0  KeyIso - ok
18:20:42.0164 0x05d0  [ 23F492CE9262CB6BC99AD96B57BEF2B9, CA555F0D0009D88801A50A8EBB63CE94D92530837BE01F323E670B5463EEB3DF ] KeyScrambler    C:\Windows\system32\drivers\keyscrambler.sys
18:20:42.0195 0x05d0  KeyScrambler - ok
18:20:42.0226 0x05d0  KMW_KBD - ok
18:20:42.0258 0x05d0  [ 8F489706472F7E9A06BAAA198703FA64, F020406690FB38EABD82D63B91D33039CC93ED52A5497AE12BAF475F22D0B08A ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
18:20:42.0273 0x05d0  KSecDD - ok
18:20:42.0289 0x05d0  [ 868A2CAAB12EFC7A021682BCA0EEC54C, 12C4925B5B3D6EA7B6410C01F33158C6EAB50CBD6AF445F8B04ED9899720C2DD ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
18:20:42.0304 0x05d0  KSecPkg - ok
18:20:42.0320 0x05d0  [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
18:20:42.0367 0x05d0  ksthunk - ok
18:20:42.0414 0x05d0  [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm           C:\Windows\system32\msdtckrm.dll
18:20:42.0460 0x05d0  KtmRm - ok
18:20:42.0507 0x05d0  [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer    C:\Windows\System32\srvsvc.dll
18:20:42.0570 0x05d0  LanmanServer - ok
18:20:42.0616 0x05d0  [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
18:20:42.0663 0x05d0  LanmanWorkstation - ok
18:20:42.0726 0x05d0  [ 07B1888209C54B675FFCCBDE9F06D2C6, F80DA304CEFC062D4E604C0A7A2B60361161F259FBE8E94332F6BAD640630D23 ] LightScribeService C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
18:20:42.0757 0x05d0  LightScribeService - detected UnsignedFile.Multi.Generic ( 1 )
18:20:42.0757 0x05d0  LightScribeService ( UnsignedFile.Multi.Generic ) - warning
18:20:42.0757 0x05d0  Force sending object to P2P due to detect: C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
18:20:42.0757 0x05d0  Object send P2P result: false
18:20:42.0788 0x05d0  [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
18:20:42.0835 0x05d0  lltdio - ok
18:20:42.0882 0x05d0  [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc         C:\Windows\System32\lltdsvc.dll
18:20:42.0928 0x05d0  lltdsvc - ok
18:20:42.0960 0x05d0  [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts         C:\Windows\System32\lmhsvc.dll
18:20:43.0006 0x05d0  lmhosts - ok
18:20:43.0038 0x05d0  [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC          C:\Windows\system32\DRIVERS\lsi_fc.sys
18:20:43.0053 0x05d0  LSI_FC - ok
18:20:43.0069 0x05d0  [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS         C:\Windows\system32\DRIVERS\lsi_sas.sys
18:20:43.0084 0x05d0  LSI_SAS - ok
18:20:43.0100 0x05d0  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2        C:\Windows\system32\DRIVERS\lsi_sas2.sys
18:20:43.0116 0x05d0  LSI_SAS2 - ok
18:20:43.0131 0x05d0  [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI        C:\Windows\system32\DRIVERS\lsi_scsi.sys
18:20:43.0147 0x05d0  LSI_SCSI - ok
18:20:43.0178 0x05d0  [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv           C:\Windows\system32\drivers\luafv.sys
18:20:43.0225 0x05d0  luafv - ok
18:20:43.0272 0x05d0  [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
18:20:43.0318 0x05d0  Mcx2Svc - ok
18:20:43.0318 0x05d0  [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas         C:\Windows\system32\DRIVERS\megasas.sys
18:20:43.0334 0x05d0  megasas - ok
18:20:43.0365 0x05d0  [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR          C:\Windows\system32\DRIVERS\MegaSR.sys
18:20:43.0396 0x05d0  MegaSR - ok
18:20:43.0412 0x05d0  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS           C:\Windows\system32\mmcss.dll
18:20:43.0474 0x05d0  MMCSS - ok
18:20:43.0490 0x05d0  [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem           C:\Windows\system32\drivers\modem.sys
18:20:43.0537 0x05d0  Modem - ok
18:20:43.0568 0x05d0  [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
18:20:43.0584 0x05d0  monitor - ok
18:20:43.0615 0x05d0  [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass        C:\Windows\system32\drivers\mouclass.sys
18:20:43.0630 0x05d0  mouclass - ok
18:20:43.0630 0x05d0  [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
18:20:43.0677 0x05d0  mouhid - ok
18:20:43.0724 0x05d0  [ 32E7A3D591D671A6DF2DB515A5CBE0FA, 47CED0B9067AE8BF5EEF60B17ADEE5906BEDCC56E4CB460B7BFBC12BB9A69E63 ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
18:20:43.0740 0x05d0  mountmgr - ok
18:20:43.0818 0x05d0  [ AEE4E9CC59CDEB55B1ECB0E596E796BE, 674F6F38D86D238AFD6223E03A862F8B43DD8499FBC2D4B7A04E510EC5EACF3B ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
18:20:43.0833 0x05d0  MozillaMaintenance - ok
18:20:43.0849 0x05d0  [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio            C:\Windows\system32\drivers\mpio.sys
18:20:43.0864 0x05d0  mpio - ok
18:20:43.0911 0x05d0  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
18:20:43.0974 0x05d0  mpsdrv - ok
18:20:44.0020 0x05d0  [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc          C:\Windows\system32\mpssvc.dll
18:20:44.0083 0x05d0  MpsSvc - ok
18:20:44.0130 0x05d0  [ 1A4F75E63C9FB84B85DFFC6B63FD5404, 01AFA6DBB4CDE55FE4EA05BBE8F753A4266F8D072EA1EE01DB79F5126780C21F ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
18:20:44.0161 0x05d0  MRxDAV - ok
18:20:44.0208 0x05d0  [ A5D9106A73DC88564C825D317CAC68AC, 0457B2AEA4E05A91D0E43F317894A614434D8CEBE35020785387F307E231FBE4 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
18:20:44.0223 0x05d0  mrxsmb - ok
18:20:44.0270 0x05d0  [ D711B3C1D5F42C0C2415687BE09FC163, 9B3013AC60BD2D0FF52086658BA5FF486ADE15954A552D7DD590580E8BAE3EFF ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
18:20:44.0301 0x05d0  mrxsmb10 - ok
18:20:44.0332 0x05d0  [ 9423E9D355C8D303E76B8CFBD8A5C30C, 220B33F120C2DD937FE4D5664F4B581DC0ACF78D62EB56B7720888F67B9644CC ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
18:20:44.0364 0x05d0  mrxsmb20 - ok
18:20:44.0395 0x05d0  [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci          C:\Windows\system32\drivers\msahci.sys
18:20:44.0410 0x05d0  msahci - ok
18:20:44.0457 0x05d0  [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
18:20:44.0473 0x05d0  msdsm - ok
18:20:44.0488 0x05d0  [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC           C:\Windows\System32\msdtc.exe
18:20:44.0535 0x05d0  MSDTC - ok
18:20:44.0566 0x05d0  [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
18:20:44.0613 0x05d0  Msfs - ok
18:20:44.0644 0x05d0  [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
18:20:44.0691 0x05d0  mshidkmdf - ok
18:20:44.0722 0x05d0  [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
18:20:44.0738 0x05d0  msisadrv - ok
18:20:44.0769 0x05d0  [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
18:20:44.0832 0x05d0  MSiSCSI - ok
18:20:44.0832 0x05d0  msiserver - ok
18:20:44.0847 0x05d0  [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
18:20:44.0894 0x05d0  MSKSSRV - ok
18:20:44.0910 0x05d0  [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
18:20:44.0956 0x05d0  MSPCLOCK - ok
18:20:44.0972 0x05d0  [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
18:20:45.0003 0x05d0  MSPQM - ok
18:20:45.0050 0x05d0  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
18:20:45.0081 0x05d0  MsRPC - ok
18:20:45.0081 0x05d0  [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios        C:\Windows\system32\drivers\mssmbios.sys
18:20:45.0097 0x05d0  mssmbios - ok
18:20:45.0112 0x05d0  [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
18:20:45.0159 0x05d0  MSTEE - ok
18:20:45.0190 0x05d0  [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig        C:\Windows\system32\DRIVERS\MTConfig.sys
18:20:45.0222 0x05d0  MTConfig - ok
18:20:45.0237 0x05d0  [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup             C:\Windows\system32\Drivers\mup.sys
18:20:45.0253 0x05d0  Mup - ok
18:20:45.0300 0x05d0  [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent        C:\Windows\system32\qagentRT.dll
18:20:45.0362 0x05d0  napagent - ok
18:20:45.0393 0x05d0  [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
18:20:45.0440 0x05d0  NativeWifiP - ok
18:20:45.0549 0x05d0  [ 97C152DE06F2BEF0BB14FDA3F187EFA9, 34FA61FC9A7225312FBEDE6149D7B9A140AC7C61313A1A4BD2EC0DA89BE497E5 ] NCO             C:\Program Files (x86)\Norton Safe Web Lite\Engine\2014.7.0.43\NST.exe
18:20:45.0565 0x05d0  NCO - ok
18:20:45.0643 0x05d0  [ 760E38053BF56E501D562B70AD796B88, F856E81A975D44F8684A6F2466549CEEDFAEB3950191698555A93A1206E0A42D ] NDIS            C:\Windows\system32\drivers\ndis.sys
18:20:45.0690 0x05d0  NDIS - ok
18:20:45.0705 0x05d0  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
18:20:45.0752 0x05d0  NdisCap - ok
18:20:45.0783 0x05d0  [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
18:20:45.0814 0x05d0  NdisTapi - ok
18:20:45.0877 0x05d0  [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
18:20:45.0924 0x05d0  Ndisuio - ok
18:20:45.0970 0x05d0  [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
18:20:46.0002 0x05d0  NdisWan - ok
18:20:46.0048 0x05d0  [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
18:20:46.0095 0x05d0  NDProxy - ok
18:20:46.0173 0x05d0  [ 2334DC48997BA203B794DF3EE70521DB, 832F4EC1586C9669F2D54AB3B212943E43B87A33B24DCC8CDAD6A0264291EE2F ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
18:20:46.0173 0x05d0  Net Driver HPZ12 - detected UnsignedFile.Multi.Generic ( 1 )
18:20:46.0173 0x05d0  Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
18:20:46.0204 0x05d0  [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
18:20:46.0251 0x05d0  NetBIOS - ok
18:20:46.0298 0x05d0  [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
18:20:46.0345 0x05d0  NetBT - ok
18:20:46.0376 0x05d0  [ 4D71227301DD8D09097B9E4CC6527E5A, 193D47ADCB722B581CC0F29B794AB3E455B6E9BEA367CE9A5216A09E055B7F1E ] Netlogon        C:\Windows\system32\lsass.exe
18:20:46.0392 0x05d0  Netlogon - ok
18:20:46.0423 0x05d0  [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman          C:\Windows\System32\netman.dll
18:20:46.0470 0x05d0  Netman - ok
18:20:46.0516 0x05d0  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:20:46.0532 0x05d0  NetMsmqActivator - ok
18:20:46.0548 0x05d0  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:20:46.0563 0x05d0  NetPipeActivator - ok
18:20:46.0594 0x05d0  [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm        C:\Windows\System32\netprofm.dll
18:20:46.0672 0x05d0  netprofm - ok
18:20:46.0704 0x05d0  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:20:46.0719 0x05d0  NetTcpActivator - ok
18:20:46.0735 0x05d0  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:20:46.0750 0x05d0  NetTcpPortSharing - ok
18:20:47.0000 0x05d0  [ 39EDE676D17F37AF4573C2B33EC28ACA, 6C897C8B72D7AC1385302E58509688790CC5F428E967485F92C3CD646907EF59 ] NETw5s64        C:\Windows\system32\DRIVERS\NETw5s64.sys
18:20:47.0234 0x05d0  NETw5s64 - ok
18:20:47.0468 0x05d0  [ 64428DFDAF6E88366CB51F45A79C5F69, 31187D38C1AB52120A3CB7AC3CE47ED9682AC37B0F06B9A9610C0065DD4E7B13 ] netw5v64        C:\Windows\system32\DRIVERS\netw5v64.sys
18:20:47.0624 0x05d0  netw5v64 - ok
18:20:47.0655 0x05d0  [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960         C:\Windows\system32\DRIVERS\nfrd960.sys
18:20:47.0671 0x05d0  nfrd960 - ok
18:20:47.0718 0x05d0  [ 8AD77806D336673F270DB31645267293, E23F324913554A23CD043DD27D4305AF62F48C0561A0FC7B7811E55B74B1BE79 ] NlaSvc          C:\Windows\System32\nlasvc.dll
18:20:47.0764 0x05d0  NlaSvc - ok
18:20:47.0780 0x05d0  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs            C:\Windows\system32\drivers\Npfs.sys
18:20:47.0811 0x05d0  Npfs - ok
18:20:47.0827 0x05d0  [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi             C:\Windows\system32\nsisvc.dll
18:20:47.0874 0x05d0  nsi - ok
18:20:47.0905 0x05d0  [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
18:20:47.0952 0x05d0  nsiproxy - ok
18:20:48.0030 0x05d0  [ 1A29A59A4C5BA6F8C85062A613B7E2B2, CC137F499A12C724D4166C2D85E9F447413419A0683DAC6F1A802B7F210C77F1 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
18:20:48.0076 0x05d0  Ntfs - ok
18:20:48.0092 0x05d0  [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null            C:\Windows\system32\drivers\Null.sys
18:20:48.0123 0x05d0  Null - ok
18:20:48.0170 0x05d0  [ AD37248BD442D41C9A896E53EB8A85EE, 9CC50602480544DBD0B873B3444D355CC13CB97EC1BCA97F85668C45DEFE78C1 ] NVHDA           C:\Windows\system32\drivers\nvhda64v.sys
18:20:48.0186 0x05d0  NVHDA - ok
18:20:48.0529 0x05d0  [ D1DB65FDDA7AF4853EF0994BB111D778, B85BEBA594BCB7D8A95A5C5B3E7FAF3662396D6E1641E29620C7AC59AC3A2A13 ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
18:20:48.0810 0x05d0  nvlddmkm - ok
18:20:48.0841 0x05d0  [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
18:20:48.0856 0x05d0  nvraid - ok
18:20:48.0903 0x05d0  [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
18:20:48.0919 0x05d0  nvstor - ok
18:20:48.0950 0x05d0  [ 8F9C2A5F96810467D50687AE00465424, 460A8C672E2E2E6861166C4CB742D1151F218E0B2E9109E7D3A67497D73C59B2 ] nvsvc           C:\Windows\system32\nvvsvc.exe
18:20:48.0981 0x05d0  nvsvc - ok
18:20:49.0012 0x05d0  [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
18:20:49.0028 0x05d0  nv_agp - ok
18:20:49.0090 0x05d0  [ 785F487A64950F3CB8E9F16253BA3B7B, 02445344BD214370A6D48B1CA04921D8EFCB13E676B5648266DD0E076C0822B6 ] odserv          C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
18:20:49.0106 0x05d0  odserv - ok
18:20:49.0153 0x05d0  [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
18:20:49.0168 0x05d0  ohci1394 - ok
18:20:49.0200 0x05d0  [ 5A432A042DAE460ABE7199B758E8606C, 6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71 ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
18:20:49.0215 0x05d0  ose - ok
18:20:49.0262 0x05d0  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
18:20:49.0293 0x05d0  p2pimsvc - ok
18:20:49.0324 0x05d0  [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc          C:\Windows\system32\p2psvc.dll
18:20:49.0371 0x05d0  p2psvc - ok
18:20:49.0387 0x05d0  [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport         C:\Windows\system32\DRIVERS\parport.sys
18:20:49.0402 0x05d0  Parport - ok
18:20:49.0449 0x05d0  [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr         C:\Windows\system32\drivers\partmgr.sys
18:20:49.0465 0x05d0  partmgr - ok
18:20:49.0480 0x05d0  [ 3AEAA8B561E63452C655DC0584922257, 04C072969B58657602EB0C21CEDF24FCEE14E61B90A0F758F93925EF2C9FC32D ] PcaSvc          C:\Windows\System32\pcasvc.dll
18:20:49.0512 0x05d0  PcaSvc - ok
18:20:49.0558 0x05d0  [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci             C:\Windows\system32\drivers\pci.sys
18:20:49.0574 0x05d0  pci - ok
18:20:49.0605 0x05d0  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide          C:\Windows\system32\drivers\pciide.sys
18:20:49.0621 0x05d0  pciide - ok
18:20:49.0652 0x05d0  [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia          C:\Windows\system32\DRIVERS\pcmcia.sys
18:20:49.0668 0x05d0  pcmcia - ok
18:20:49.0683 0x05d0  [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw             C:\Windows\system32\drivers\pcw.sys
18:20:49.0699 0x05d0  pcw - ok
18:20:49.0730 0x05d0  [ 68769C3356B3BE5D1C732C97B9A80D6E, FB2D61145980A2899D1B7729184C54070315B0E63C9A22400A76CCD39E00029C ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
18:20:49.0792 0x05d0  PEAUTH - ok
18:20:49.0886 0x05d0  [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost        C:\Windows\SysWow64\perfhost.exe
18:20:49.0917 0x05d0  PerfHost - ok
18:20:49.0995 0x05d0  [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla             C:\Windows\system32\pla.dll
18:20:50.0058 0x05d0  pla - ok
18:20:50.0120 0x05d0  [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
18:20:50.0151 0x05d0  PlugPlay - ok
18:20:50.0245 0x05d0  [ AC78DF349F0E4CFB8B667C0CFFF83CCE, 7E635AA2E7350FCA0C954E697F1480A6204920AEFBCF06B90FFA02398DA82822 ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
18:20:50.0276 0x05d0  Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic ( 1 )
18:20:50.0276 0x05d0  Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
18:20:50.0307 0x05d0  [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
18:20:50.0338 0x05d0  PNRPAutoReg - ok
18:20:50.0354 0x05d0  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
18:20:50.0385 0x05d0  PNRPsvc - ok
18:20:50.0448 0x05d0  [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
18:20:50.0510 0x05d0  PolicyAgent - ok
18:20:50.0557 0x05d0  [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power           C:\Windows\system32\umpo.dll
18:20:50.0588 0x05d0  Power - ok
18:20:50.0635 0x05d0  [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
18:20:50.0682 0x05d0  PptpMiniport - ok
18:20:50.0713 0x05d0  [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor       C:\Windows\system32\DRIVERS\processr.sys
18:20:50.0744 0x05d0  Processor - ok
18:20:50.0791 0x05d0  [ 53E83F1F6CF9D62F32801CF66D8352A8, 1225FED810BE8E0729EEAE5B340035CCBB9BACD3EF247834400F9B72D05ACE48 ] ProfSvc         C:\Windows\system32\profsvc.dll
18:20:50.0822 0x05d0  ProfSvc - ok
18:20:50.0838 0x05d0  [ 4D71227301DD8D09097B9E4CC6527E5A, 193D47ADCB722B581CC0F29B794AB3E455B6E9BEA367CE9A5216A09E055B7F1E ] ProtectedStorage C:\Windows\system32\lsass.exe
18:20:50.0853 0x05d0  ProtectedStorage - ok
18:20:50.0916 0x05d0  [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
18:20:50.0962 0x05d0  Psched - ok
18:20:51.0040 0x05d0  [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300          C:\Windows\system32\DRIVERS\ql2300.sys
18:20:51.0087 0x05d0  ql2300 - ok
18:20:51.0103 0x05d0  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx          C:\Windows\system32\DRIVERS\ql40xx.sys
18:20:51.0118 0x05d0  ql40xx - ok
18:20:51.0150 0x05d0  [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE           C:\Windows\system32\qwave.dll
18:20:51.0181 0x05d0  QWAVE - ok
18:20:51.0196 0x05d0  [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
18:20:51.0228 0x05d0  QWAVEdrv - ok
18:20:51.0352 0x05d0  [ 000D82CC258E2D341605A6F350C4D1E6, 59EC5BA95D8B9EC739BC7D0BBE0E244CA2AE2DF01A8B65BFF7741DFBE38C2940 ] RapportCerberus_59849 C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus64_59849.sys
18:20:51.0384 0x05d0  RapportCerberus_59849 - ok
18:20:51.0462 0x05d0  [ DCB17A156E10ACF30202F59E8A4AD7EE, E3BE854357BAC3502D51FC674161C7ED8696A6FBCB54F99E50FDA9387E6477B1 ] RapportEI64     C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys
18:20:51.0524 0x05d0  RapportEI64 - detected UnsignedFile.Multi.Generic ( 1 )
18:20:51.0524 0x05d0  RapportEI64 ( UnsignedFile.Multi.Generic ) - warning
18:20:51.0571 0x05d0  [ 0B629D5595CB4C1B38C6D3A654EDA75A, 687DA2BD00CDF5D49092473276CDE422653139CE34435A43878BB28AF24267ED ] RapportKE64     C:\Windows\system32\Drivers\RapportKE64.sys
18:20:51.0586 0x05d0  RapportKE64 - ok
18:20:51.0649 0x05d0  [ 48BB371827BC8740C25B01EEA68F11AA, 5ED1F6695FF867F540979E27773E61D906B9317FB7CFE464D236413866511C91 ] RapportMgmtService C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe
18:20:51.0696 0x05d0  RapportMgmtService - ok
18:20:51.0727 0x05d0  [ 64CF0700A20B0BA49C7F07B4B968809C, 1A62B066C97D845CC654349F70F3B0646D40A42EE87EDA659420A6045C2598A1 ] RapportPG64     C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys
18:20:51.0774 0x05d0  RapportPG64 - detected UnsignedFile.Multi.Generic ( 1 )
18:20:51.0774 0x05d0  RapportPG64 ( UnsignedFile.Multi.Generic ) - warning
18:20:51.0805 0x05d0  [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
18:20:51.0852 0x05d0  RasAcd - ok
18:20:51.0883 0x05d0  [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
18:20:51.0930 0x05d0  RasAgileVpn - ok
18:20:51.0945 0x05d0  [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto         C:\Windows\System32\rasauto.dll
18:20:51.0992 0x05d0  RasAuto - ok
18:20:52.0039 0x05d0  [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
18:20:52.0070 0x05d0  Rasl2tp - ok
18:20:52.0117 0x05d0  [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan          C:\Windows\System32\rasmans.dll
18:20:52.0179 0x05d0  RasMan - ok
18:20:52.0210 0x05d0  [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
18:20:52.0257 0x05d0  RasPppoe - ok
18:20:52.0273 0x05d0  [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
18:20:52.0320 0x05d0  RasSstp - ok
18:20:52.0366 0x05d0  [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
18:20:52.0429 0x05d0  rdbss - ok
18:20:52.0460 0x05d0  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus          C:\Windows\system32\DRIVERS\rdpbus.sys
18:20:52.0476 0x05d0  rdpbus - ok
18:20:52.0507 0x05d0  [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
18:20:52.0554 0x05d0  RDPCDD - ok
18:20:52.0569 0x05d0  [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
18:20:52.0616 0x05d0  RDPENCDD - ok
18:20:52.0616 0x05d0  [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
18:20:52.0663 0x05d0  RDPREFMP - ok
18:20:52.0694 0x05d0  [ E61608AA35E98999AF9AAEEEA6114B0A, F754CDE89DC96786D2A3C4D19EE2AEF1008E634E4DE3C0CBF927436DE90C04A6 ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
18:20:52.0725 0x05d0  RDPWD - ok
18:20:52.0772 0x05d0  [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
18:20:52.0788 0x05d0  rdyboost - ok
18:20:52.0834 0x05d0  [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess    C:\Windows\System32\mprdim.dll
18:20:52.0881 0x05d0  RemoteAccess - ok
18:20:52.0912 0x05d0  [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
18:20:52.0944 0x05d0  RemoteRegistry - ok
18:20:53.0006 0x05d0  [ 3DD798846E2C28102B922C56E71B7932, 30B111615D74CB2213997A5C08DD9C8613ADE441D9423CC1C49A753D13CE524D ] RFCOMM          C:\Windows\system32\DRIVERS\rfcomm.sys
18:20:53.0053 0x05d0  RFCOMM - ok
18:20:53.0131 0x05d0  [ 498EB62A160674E793FA40FD65390625, F7EFD480E6C95F5B6202EEB87F519A8A8187F7F26281FB3E302EDD1AD5771025 ] RichVideo       C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
18:20:53.0146 0x05d0  RichVideo - ok
18:20:53.0162 0x05d0  [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
18:20:53.0224 0x05d0  RpcEptMapper - ok
18:20:53.0240 0x05d0  [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator      C:\Windows\system32\locator.exe
18:20:53.0256 0x05d0  RpcLocator - ok
18:20:53.0302 0x05d0  [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] RpcSs           C:\Windows\System32\rpcss.dll
18:20:53.0349 0x05d0  RpcSs - ok
18:20:53.0380 0x05d0  [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
18:20:53.0443 0x05d0  rspndr - ok
18:20:53.0505 0x05d0  [ FE61B0B4AA58C3BD3DFA6279131F7F53, 923B21D705CE7E3E1FFB709AD586F91809D5454098ED25C57529AE6C561DFBD1 ] RTL8167         C:\Windows\system32\DRIVERS\Rt64win7.sys
18:20:53.0568 0x05d0  RTL8167 - ok
18:20:53.0568 0x05d0  [ 4D71227301DD8D09097B9E4CC6527E5A, 193D47ADCB722B581CC0F29B794AB3E455B6E9BEA367CE9A5216A09E055B7F1E ] SamSs           C:\Windows\system32\lsass.exe
18:20:53.0599 0x05d0  SamSs - ok
18:20:53.0646 0x05d0  [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
18:20:53.0646 0x05d0  sbp2port - ok
18:20:53.0708 0x05d0  [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
18:20:53.0755 0x05d0  SCardSvr - ok
18:20:53.0786 0x05d0  [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
18:20:53.0817 0x05d0  scfilter - ok
18:20:53.0895 0x05d0  [ 262F6592C3299C005FD6BEC90FC4463A, 54095E37F0B6CC677A3E9BDD40F4647C713273D197DB341063AA7F342A60C4A7 ] Schedule        C:\Windows\system32\schedsvc.dll
18:20:53.0942 0x05d0  Schedule - ok
18:20:53.0989 0x05d0  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc     C:\Windows\System32\certprop.dll
18:20:54.0020 0x05d0  SCPolicySvc - ok
18:20:54.0067 0x05d0  [ 111E0EBC0AD79CB0FA014B907B231CF0, B7D43D156C2524938503CF8E99C4D1F7A5C55E16C0368F57F4CD23C6D833B38F ] sdbus           C:\Windows\system32\drivers\sdbus.sys
18:20:54.0098 0x05d0  sdbus - ok
18:20:54.0129 0x05d0  [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
18:20:54.0145 0x05d0  SDRSVC - ok
18:20:54.0176 0x05d0  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\Windows\system32\drivers\secdrv.sys
18:20:54.0223 0x05d0  secdrv - ok
18:20:54.0394 0x05d0  [ BC617A4E1B4FA8DF523A061739A0BD87, 10C4057F6B321EB5237FF619747B74F5401BC17D15A8C7060829E8204A2297F9 ] seclogon        C:\Windows\system32\seclogon.dll
18:20:54.0441 0x05d0  seclogon - ok
18:20:54.0488 0x05d0  [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS            C:\Windows\system32\sens.dll
18:20:54.0519 0x05d0  SENS - ok
18:20:54.0535 0x05d0  [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc        C:\Windows\system32\sensrsvc.dll
18:20:54.0566 0x05d0  SensrSvc - ok
18:20:54.0597 0x05d0  [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum         C:\Windows\system32\DRIVERS\serenum.sys
18:20:54.0613 0x05d0  Serenum - ok
18:20:54.0628 0x05d0  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial          C:\Windows\system32\DRIVERS\serial.sys
18:20:54.0660 0x05d0  Serial - ok
18:20:54.0706 0x05d0  [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse        C:\Windows\system32\DRIVERS\sermouse.sys
18:20:54.0738 0x05d0  sermouse - ok
18:20:54.0769 0x05d0  [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv      C:\Windows\system32\sessenv.dll
18:20:54.0831 0x05d0  SessionEnv - ok
18:20:54.0862 0x05d0  [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
18:20:54.0878 0x05d0  sffdisk - ok
18:20:54.0894 0x05d0  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
18:20:54.0909 0x05d0  sffp_mmc - ok
18:20:54.0925 0x05d0  [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
18:20:54.0940 0x05d0  sffp_sd - ok
18:20:54.0956 0x05d0  [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy         C:\Windows\system32\DRIVERS\sfloppy.sys
18:20:54.0972 0x05d0  sfloppy - ok
18:20:55.0018 0x05d0  [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess    C:\Windows\System32\ipnathlp.dll
18:20:55.0081 0x05d0  SharedAccess - ok
18:20:55.0112 0x05d0  [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
18:20:55.0159 0x05d0  ShellHWDetection - ok
18:20:55.0174 0x05d0  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2        C:\Windows\system32\DRIVERS\SiSRaid2.sys
18:20:55.0190 0x05d0  SiSRaid2 - ok
18:20:55.0221 0x05d0  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4        C:\Windows\system32\DRIVERS\sisraid4.sys
18:20:55.0237 0x05d0  SiSRaid4 - ok
18:20:55.0330 0x05d0  [ 50D9949020E02B847CD48F1243FCB895, 5BDAD5E44DE5B412645142810C5FCE4B2D9685F928FF4A6B836A9DCE7725BD78 ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
18:20:55.0346 0x05d0  SkypeUpdate - ok
18:20:55.0377 0x05d0  [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
18:20:55.0424 0x05d0  Smb - ok
18:20:55.0440 0x05d0  [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
18:20:55.0455 0x05d0  SNMPTRAP - ok
18:20:55.0471 0x05d0  [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr           C:\Windows\system32\drivers\spldr.sys
18:20:55.0486 0x05d0  spldr - ok
18:20:55.0533 0x05d0  [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler         C:\Windows\System32\spoolsv.exe
18:20:55.0564 0x05d0  Spooler - ok
18:20:55.0720 0x05d0  [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc          C:\Windows\system32\sppsvc.exe
18:20:55.0845 0x05d0  sppsvc - ok
18:20:55.0861 0x05d0  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
18:20:55.0923 0x05d0  sppuinotify - ok
18:20:55.0970 0x05d0  [ 441FBA48BFF01FDB9D5969EBC1838F0B, 306128F1AD489F87161A089D1BDC1542A4CB742D91A0C12A7CD1863FDB8932C0 ] srv             C:\Windows\system32\DRIVERS\srv.sys
18:20:56.0001 0x05d0  srv - ok
18:20:56.0032 0x05d0  [ B4ADEBBF5E3677CCE9651E0F01F7CC28, 726DB2283113AB2A9681E8E9F61132303D6D86E9CD034C40EE4A8C9DB29E87F7 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
18:20:56.0079 0x05d0  srv2 - ok
18:20:56.0110 0x05d0  [ 0C4540311E11664B245A263E1154CEF8, 63376322BFFAFF2F166AF3FDD3F1A346C21FAE21F406F659F8630779D1D6525D ] SrvHsfHDA       C:\Windows\system32\DRIVERS\VSTAZL6.SYS
18:20:56.0142 0x05d0  SrvHsfHDA - ok
18:20:56.0204 0x05d0  [ 02071D207A9858FBE3A48CBFD59C4A04, FEA4DEBAEC3465E0C7C1E8B721805922F6BBCB96A60A193B11688F4252F4B89E ] SrvHsfV92       C:\Windows\system32\DRIVERS\VSTDPV6.SYS
18:20:56.0251 0x05d0  SrvHsfV92 - ok
18:20:56.0298 0x05d0  [ 18E40C245DBFAF36FD0134A7EF2DF396, 0138A68958112101A5D3BD94114F320CE80B0C9A93E009AC78DE7415FCCC7DE7 ] SrvHsfWinac     C:\Windows\system32\DRIVERS\VSTCNXT6.SYS
18:20:56.0329 0x05d0  SrvHsfWinac - ok
18:20:56.0344 0x05d0  [ 27E461F0BE5BFF5FC737328F749538C3, AFA4704ED8FFC1A0BAB40DFB81D3AE3F3D933A3C9BF54DDAF39FF9AF3646D9E6 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
18:20:56.0360 0x05d0  srvnet - ok
18:20:56.0391 0x05d0  [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
18:20:56.0422 0x05d0  SSDPSRV - ok
18:20:56.0438 0x05d0  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc         C:\Windows\system32\sstpsvc.dll
18:20:56.0469 0x05d0  SstpSvc - ok
18:20:56.0578 0x05d0  [ 7595D53EE8E8B0BAA9A2DDDE867EBB0C, 8EBBFA456D93E63AF9D64CC95A58651E2C1B1398B6052C0E65D3005AD5AC8CB5 ] STacSV          C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\STacSV64.exe
18:20:56.0625 0x05d0  STacSV - ok
18:20:56.0641 0x05d0  [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor        C:\Windows\system32\DRIVERS\stexstor.sys
18:20:56.0656 0x05d0  stexstor - ok
18:20:56.0703 0x05d0  [ DFFBC024DFC7BB05B2129E05CBC7A201, CA07944B864D7F3DA673040CF6314FECCAF80B8EADAF648392AE79697DAC15B4 ] STHDA           C:\Windows\system32\DRIVERS\stwrt64.sys
18:20:56.0750 0x05d0  STHDA - ok
18:20:56.0797 0x05d0  [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc          C:\Windows\System32\wiaservc.dll
18:20:56.0828 0x05d0  stisvc - ok
18:20:56.0859 0x05d0  [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum          C:\Windows\system32\drivers\swenum.sys
18:20:56.0875 0x05d0  swenum - ok
18:20:56.0906 0x05d0  [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv           C:\Windows\System32\swprv.dll
18:20:56.0953 0x05d0  swprv - ok
18:20:57.0015 0x05d0  [ 924D711941956F7420A4925592BE8253, D621114FC94D9B257EC5B684B90E54B63D4078D5FC19550C2E396AE4EDD2C552 ] SynTP           C:\Windows\system32\DRIVERS\SynTP.sys
18:20:57.0062 0x05d0  SynTP - ok
18:20:57.0156 0x05d0  [ BF9CCC0BF39B418C8D0AE8B05CF95B7D, 3C13217548BE61F2BDB8BD41F77345CDDA1F97BF0AE17241C335B9807EB3DBB8 ] SysMain         C:\Windows\system32\sysmain.dll
18:20:57.0234 0x05d0  SysMain - ok
18:20:57.0265 0x05d0  [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll
18:20:57.0312 0x05d0  TabletInputService - ok
18:20:57.0343 0x05d0  [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv         C:\Windows\System32\tapisrv.dll
18:20:57.0390 0x05d0  TapiSrv - ok
18:20:57.0405 0x05d0  [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS             C:\Windows\System32\tbssvc.dll
18:20:57.0436 0x05d0  TBS - ok
18:20:57.0530 0x05d0  [ 40AF23633D197905F03AB5628C558C51, 644656A15236E964E4BE57B42225EAA5643C4CF1FFF6D306813A000716F9D72C ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
18:20:57.0592 0x05d0  Tcpip - ok
18:20:57.0655 0x05d0  [ 40AF23633D197905F03AB5628C558C51, 644656A15236E964E4BE57B42225EAA5643C4CF1FFF6D306813A000716F9D72C ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
18:20:57.0717 0x05d0  TCPIP6 - ok
18:20:57.0764 0x05d0  [ 1B16D0BD9841794A6E0CDE0CEF744ABC, 7EB8BA97339199EEE7F2B09DA2DA6279DA64A510D4598D42CF86415D67CD674C ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
18:20:57.0795 0x05d0  tcpipreg - ok
18:20:57.0826 0x05d0  [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
18:20:57.0858 0x05d0  TDPIPE - ok
18:20:57.0889 0x05d0  [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
18:20:57.0920 0x05d0  TDTCP - ok
18:20:57.0951 0x05d0  [ DDAD5A7AB24D8B65F8D724F5C20FD806, B71F2967A4EE7395E4416C1526CB85368AEA988BDD1F2C9719C48B08FAFA9661 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
18:20:57.0982 0x05d0  tdx - ok
18:20:58.0014 0x05d0  [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD          C:\Windows\system32\drivers\termdd.sys
18:20:58.0014 0x05d0  TermDD - ok
18:20:58.0076 0x05d0  [ 2E648163254233755035B46DD7B89123, 6FA0D07CE18A3A69D82EE49D875F141E39406E92C34EAC76AC4EB052E6EBCBCD ] TermService     C:\Windows\System32\termsrv.dll
18:20:58.0123 0x05d0  TermService - ok
18:20:58.0154 0x05d0  [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes          C:\Windows\system32\themeservice.dll
18:20:58.0185 0x05d0  Themes - ok
18:20:58.0216 0x05d0  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER     C:\Windows\system32\mmcss.dll
18:20:58.0248 0x05d0  THREADORDER - ok
18:20:58.0263 0x05d0  [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks          C:\Windows\System32\trkwks.dll
18:20:58.0310 0x05d0  TrkWks - ok
18:20:58.0357 0x05d0  [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
18:20:58.0419 0x05d0  TrustedInstaller - ok
18:20:58.0450 0x05d0  [ 4CE278FC9671BA81A138D70823FCAA09, CBE501436696E32A3701B9F377B823AC36647B6626595F76CC63E2396AD7D300 ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
18:20:58.0466 0x05d0  tssecsrv - ok
18:20:58.0513 0x05d0  [ D11C783E3EF9A3C52C0EBE83CC5000E9, A136C355D4C8945729163D15801364A614E23217B15F9313C85BA45BB71A74EB ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
18:20:58.0544 0x05d0  TsUsbFlt - ok
18:20:58.0606 0x05d0  [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
18:20:58.0653 0x05d0  tunnel - ok
18:20:58.0684 0x05d0  [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35          C:\Windows\system32\DRIVERS\uagp35.sys
18:20:58.0700 0x05d0  uagp35 - ok
18:20:58.0747 0x05d0  [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
18:20:58.0794 0x05d0  udfs - ok
18:20:58.0825 0x05d0  [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect       C:\Windows\system32\UI0Detect.exe
18:20:58.0840 0x05d0  UI0Detect - ok
18:20:58.0856 0x05d0  [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
18:20:58.0887 0x05d0  uliagpkx - ok
18:20:58.0934 0x05d0  [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus           C:\Windows\system32\drivers\umbus.sys
18:20:58.0950 0x05d0  umbus - ok
18:20:58.0981 0x05d0  [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass          C:\Windows\system32\DRIVERS\umpass.sys
18:20:59.0012 0x05d0  UmPass - ok
18:20:59.0043 0x05d0  [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost        C:\Windows\System32\upnphost.dll
18:20:59.0106 0x05d0  upnphost - ok
18:20:59.0168 0x05d0  [ 43228F8EDD1B0BCDD3145AD246E63D39, 108D8793E9F94C0A0E895398599B359121751F2E7BAA8B7BD24838AEF646726D ] USBAAPL64       C:\Windows\system32\Drivers\usbaapl64.sys
18:20:59.0184 0x05d0  USBAAPL64 - detected UnsignedFile.Multi.Generic ( 1 )
18:20:59.0184 0x05d0  USBAAPL64 ( UnsignedFile.Multi.Generic ) - warning
18:20:59.0230 0x05d0  [ DCA68B0943D6FA415F0C56C92158A83A, BEE5A5B33B22D1DF50B884D46D89FC3B8286EB16E38AD5A20F0A49E5C6766C57 ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
18:20:59.0262 0x05d0  usbccgp - ok
18:20:59.0293 0x05d0  [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir          C:\Windows\system32\drivers\usbcir.sys
18:20:59.0324 0x05d0  usbcir - ok
18:20:59.0371 0x05d0  [ 18A85013A3E0F7E1755365D287443965, 811C5EDF38C765BCF71BCE25CB6626FF6988C3699F5EF1846240EA0052F34C33 ] usbehci         C:\Windows\system32\drivers\usbehci.sys
18:20:59.0402 0x05d0  usbehci - ok
18:20:59.0433 0x05d0  [ 8D1196CFBB223621F2C67D45710F25BA, B5D7AFE51833B24FC9576F3AED3D8A2B290E5846060E73F9FFFAC1890A8B6003 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
18:20:59.0464 0x05d0  usbhub - ok
18:20:59.0480 0x05d0  [ 765A92D428A8DB88B960DA5A8D6089DC, 56DE8A2ED58E53B202C399CA7BACB1551136303C2EE0AB426BDBBF880E3C542C ] usbohci         C:\Windows\system32\drivers\usbohci.sys
18:20:59.0496 0x05d0  usbohci - ok
18:20:59.0527 0x05d0  [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
18:20:59.0558 0x05d0  usbprint - ok
18:20:59.0589 0x05d0  [ AAA2513C8AED8B54B189FD0C6B1634C0, 02FEE0B756AA559C29477A19861AC16D5A3152DC3C897C7D466423438B6A5E42 ] usbscan         C:\Windows\system32\DRIVERS\usbscan.sys
18:20:59.0620 0x05d0  usbscan - ok
18:20:59.0667 0x05d0  [ FED648B01349A3C8395A5169DB5FB7D6, DC4D7594C24ADD076927B9347F1B50B91CF03A4ABDB284248D5711D9C19DEB96 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
18:20:59.0698 0x05d0  USBSTOR - ok
18:20:59.0714 0x05d0  [ DD253AFC3BC6CBA412342DE60C3647F3, 146F8613F1057AC054DC3593E84BC52899DA27EA33B0E72ACFB78C3699ADCDE7 ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
18:20:59.0730 0x05d0  usbuhci - ok
18:20:59.0776 0x05d0  [ 1F775DA4CF1A3A1834207E975A72E9D7, 6D3DE5BD3EF3A76E997E5BAF900C51D25308F5A9682D1F62017F577A24095B90 ] usbvideo        C:\Windows\System32\Drivers\usbvideo.sys
18:20:59.0808 0x05d0  usbvideo - ok
18:20:59.0823 0x05d0  [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms           C:\Windows\System32\uxsms.dll
18:20:59.0854 0x05d0  UxSms - ok
18:20:59.0870 0x05d0  [ 4D71227301DD8D09097B9E4CC6527E5A, 193D47ADCB722B581CC0F29B794AB3E455B6E9BEA367CE9A5216A09E055B7F1E ] VaultSvc        C:\Windows\system32\lsass.exe
18:20:59.0886 0x05d0  VaultSvc - ok
18:20:59.0917 0x05d0  [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
18:20:59.0932 0x05d0  vdrvroot - ok
18:20:59.0979 0x05d0  [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds             C:\Windows\System32\vds.exe
18:21:00.0042 0x05d0  vds - ok
18:21:00.0057 0x05d0  [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
18:21:00.0088 0x05d0  vga - ok
18:21:00.0104 0x05d0  [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave         C:\Windows\System32\drivers\vga.sys
18:21:00.0151 0x05d0  VgaSave - ok
18:21:00.0182 0x05d0  [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
18:21:00.0213 0x05d0  vhdmp - ok
18:21:00.0244 0x05d0  [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide          C:\Windows\system32\drivers\viaide.sys
18:21:00.0260 0x05d0  viaide - ok
18:21:00.0276 0x05d0  [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
18:21:00.0291 0x05d0  volmgr - ok
18:21:00.0338 0x05d0  [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
18:21:00.0354 0x05d0  volmgrx - ok
18:21:00.0385 0x05d0  [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap         C:\Windows\system32\drivers\volsnap.sys
18:21:00.0400 0x05d0  volsnap - ok
18:21:00.0432 0x05d0  [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid         C:\Windows\system32\DRIVERS\vsmraid.sys
18:21:00.0447 0x05d0  vsmraid - ok
18:21:00.0525 0x05d0  [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS             C:\Windows\system32\vssvc.exe
18:21:00.0619 0x05d0  VSS - ok
18:21:00.0728 0x05d0  [ 10B2E2FCA707501600D1DEAB1B71F699, 0353794938DA1124649E1403FF8074B2736FBD22483A5684C0F4B6932FA74462 ] vToolbarUpdater15.0.0 C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.0.0\ToolbarUpdater.exe
18:21:00.0759 0x05d0  vToolbarUpdater15.0.0 - ok
18:21:00.0900 0x05d0  [ 7451065A6047CBF7332EB76F5ED5F362, 5ED16BE16EE8AAA99E7E22FF52174FC1D818535E5FD984FAA1A5A25B91936335 ] vToolbarUpdater18.1.0 C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.0\ToolbarUpdater.exe
18:21:00.0946 0x05d0  vToolbarUpdater18.1.0 - ok
18:21:00.0978 0x05d0  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus        C:\Windows\system32\DRIVERS\vwifibus.sys
18:21:00.0993 0x05d0  vwifibus - ok
18:21:00.0993 0x05d0  [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
18:21:01.0024 0x05d0  vwififlt - ok
18:21:01.0056 0x05d0  [ 6A638FC4BFDDC4D9B186C28C91BD1A01, 5521F1DC515586777EC4837E0AEAA3E613CC178AF1074031C4D0D0C695A93168 ] vwifimp         C:\Windows\system32\DRIVERS\vwifimp.sys
18:21:01.0087 0x05d0  vwifimp - ok
18:21:01.0134 0x05d0  [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time         C:\Windows\system32\w32time.dll
18:21:01.0196 0x05d0  W32Time - ok
18:21:01.0227 0x05d0  [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen        C:\Windows\system32\DRIVERS\wacompen.sys
18:21:01.0258 0x05d0  WacomPen - ok
18:21:01.0305 0x05d0  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
18:21:01.0368 0x05d0  WANARP - ok
18:21:01.0383 0x05d0  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
18:21:01.0414 0x05d0  Wanarpv6 - ok
18:21:01.0492 0x05d0  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C, 4150DAB33E8D61076F1D4767BCAFC9B4ECCCCBD58FD4FB3CFE5B8D27DCDCAB61 ] WatAdminSvc     C:\Windows\system32\Wat\WatAdminSvc.exe
18:21:01.0524 0x05d0  WatAdminSvc - ok
18:21:01.0617 0x05d0  [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine        C:\Windows\system32\wbengine.exe
18:21:01.0680 0x05d0  wbengine - ok
18:21:01.0711 0x05d0  [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
18:21:01.0742 0x05d0  WbioSrvc - ok
18:21:01.0789 0x05d0  [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc         C:\Windows\System32\wcncsvc.dll
18:21:01.0820 0x05d0  wcncsvc - ok
18:21:01.0836 0x05d0  [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
18:21:01.0867 0x05d0  WcsPlugInService - ok
18:21:01.0898 0x05d0  [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd              C:\Windows\system32\DRIVERS\wd.sys
18:21:01.0898 0x05d0  Wd - ok
18:21:01.0960 0x05d0  [ A3D04EBF5227886029B4532F20D026F7, D90F7B9C176008675DA0B5FD7E4973CBC2A04172CEDF8FB7D3B3B4F27B5440D7 ] WDC_SAM         C:\Windows\system32\DRIVERS\wdcsam64.sys
18:21:01.0976 0x05d0  WDC_SAM - ok
18:21:02.0038 0x05d0  [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
18:21:02.0070 0x05d0  Wdf01000 - ok
18:21:02.0085 0x05d0  [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiServiceHost  C:\Windows\system32\wdi.dll
18:21:02.0132 0x05d0  WdiServiceHost - ok
18:21:02.0148 0x05d0  [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiSystemHost   C:\Windows\system32\wdi.dll
18:21:02.0179 0x05d0  WdiSystemHost - ok
18:21:02.0226 0x05d0  [ 0EB0E5D22B1760F2DBCE632F2DD7A54D, B8A4CC62F88768947FB0A161CF9564DB28FD9C1C037B5475DF192982DE035C22 ] WebClient       C:\Windows\System32\webclnt.dll
18:21:02.0241 0x05d0  WebClient - ok
18:21:02.0257 0x05d0  [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc          C:\Windows\system32\wecsvc.dll
18:21:02.0319 0x05d0  Wecsvc - ok
18:21:02.0335 0x05d0  [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
18:21:02.0382 0x05d0  wercplsupport - ok
18:21:02.0413 0x05d0  [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc          C:\Windows\System32\WerSvc.dll
18:21:02.0444 0x05d0  WerSvc - ok
18:21:02.0475 0x05d0  [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
18:21:02.0506 0x05d0  WfpLwf - ok
18:21:02.0522 0x05d0  [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
18:21:02.0538 0x05d0  WIMMount - ok
18:21:02.0553 0x05d0  WinDefend - ok
18:21:02.0584 0x05d0  WinHttpAutoProxySvc - ok
18:21:02.0631 0x05d0  [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
18:21:02.0694 0x05d0  Winmgmt - ok
18:21:02.0787 0x05d0  [ BCB1310604AA415C4508708975B3931E, 9D943F086D454345153A0DD426B4432532A44FD87950386B186E1CAD2AC70565 ] WinRM           C:\Windows\system32\WsmSvc.dll
18:21:02.0881 0x05d0  WinRM - ok
18:21:02.0928 0x05d0  [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
18:21:02.0943 0x05d0  WinUsb - ok
18:21:02.0990 0x05d0  [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc         C:\Windows\System32\wlansvc.dll
18:21:03.0037 0x05d0  Wlansvc - ok
18:21:03.0037 0x05d0  [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
18:21:03.0068 0x05d0  WmiAcpi - ok
18:21:03.0099 0x05d0  [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
18:21:03.0130 0x05d0  wmiApSrv - ok
18:21:03.0162 0x05d0  WMPNetworkSvc - ok
18:21:03.0177 0x05d0  [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc          C:\Windows\System32\wpcsvc.dll
18:21:03.0193 0x05d0  WPCSvc - ok
18:21:03.0240 0x05d0  [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
18:21:03.0255 0x05d0  WPDBusEnum - ok
18:21:03.0286 0x05d0  [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
18:21:03.0333 0x05d0  ws2ifsl - ok
18:21:03.0349 0x05d0  [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc          C:\Windows\system32\wscsvc.dll
18:21:03.0396 0x05d0  wscsvc - ok
18:21:03.0396 0x05d0  WSearch - ok
18:21:03.0520 0x05d0  [ D9EF901DCA379CFE914E9FA13B73B4C4, 3BE9693B7B2AFEE23D72AF5DA211379724D752F0EC18ACB7D3DE3DDFC5AE0004 ] wuauserv        C:\Windows\system32\wuaueng.dll
18:21:03.0583 0x05d0  wuauserv - ok
18:21:03.0630 0x05d0  [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
18:21:03.0661 0x05d0  WudfPf - ok
18:21:03.0708 0x05d0  [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
18:21:03.0739 0x05d0  WUDFRd - ok
18:21:03.0754 0x05d0  [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
18:21:03.0786 0x05d0  wudfsvc - ok
18:21:03.0832 0x05d0  [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc         C:\Windows\System32\wwansvc.dll
18:21:03.0864 0x05d0  WwanSvc - ok
18:21:03.0910 0x05d0  [ B3EEACF62445E24FBB2CD4B0FB4DB026, 2E5B6220094C47754233EDA59E6514CE47AC6C6879F367C72B2C02330EABE8E0 ] yukonw7         C:\Windows\system32\DRIVERS\yk62x64.sys
18:21:03.0957 0x05d0  yukonw7 - ok
18:21:03.0973 0x05d0  ================ Scan global ===============================
18:21:04.0004 0x05d0  [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\system32\basesrv.dll
18:21:04.0051 0x05d0  [ 88EDD0B34EED542745931E581AD21A32, DC2B93E1CEF5B0BCEE08D72669BB0F3AD0E8E6E75BDC08858407ED92F6FFA031 ] C:\Windows\system32\winsrv.dll
18:21:04.0066 0x05d0  [ 88EDD0B34EED542745931E581AD21A32, DC2B93E1CEF5B0BCEE08D72669BB0F3AD0E8E6E75BDC08858407ED92F6FFA031 ] C:\Windows\system32\winsrv.dll
18:21:04.0098 0x05d0  [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll
18:21:04.0129 0x05d0  [ 24ACB7E5BE595468E3B9AA488B9B4FCB, 63541E3432FCE953F266AE553E7A394978D6EE3DB52388D885F668CF42C5E7E2 ] C:\Windows\system32\services.exe
18:21:04.0129 0x05d0  [ Global ] - ok
18:21:04.0129 0x05d0  ================ Scan MBR ==================================
18:21:04.0144 0x05d0  [ 5B203607700597191E68678869AA80E4 ] \Device\Harddisk0\DR0
18:21:04.0690 0x05d0  \Device\Harddisk0\DR0 - ok
18:21:04.0690 0x05d0  ================ Scan VBR ==================================
18:21:04.0722 0x05d0  [ 6E99A4A726704879D3ED19C8271EF62B ] \Device\Harddisk0\DR0\Partition1
18:21:04.0737 0x05d0  \Device\Harddisk0\DR0\Partition1 - ok
18:21:04.0737 0x05d0  [ 208F458B6AF7C7827977CD4E2159C339 ] \Device\Harddisk0\DR0\Partition2
18:21:04.0737 0x05d0  \Device\Harddisk0\DR0\Partition2 - ok
18:21:04.0768 0x05d0  [ 75B36AEA690AA777FA80F2B22AA4F33C ] \Device\Harddisk0\DR0\Partition3
18:21:04.0768 0x05d0  \Device\Harddisk0\DR0\Partition3 - ok
18:21:04.0768 0x05d0  [ 081FC4D0C147FB4733291C7CC8A38FD9 ] \Device\Harddisk0\DR0\Partition4
18:21:04.0768 0x05d0  \Device\Harddisk0\DR0\Partition4 - ok
18:21:04.0800 0x05d0  AV detected via SS2: AVG AntiVirus Free Edition 2014, C:\Program Files (x86)\AVG\AVG2014\avgwsc.exe ( 14.0.0.4563 ), 0x40000 ( disabled : updated )
18:21:04.0800 0x05d0  Win FW state via NFP2: enabled
18:21:04.0800 0x05d0  ============================================================
18:21:04.0800 0x05d0  Scan finished
18:21:04.0800 0x05d0  ============================================================
18:21:04.0815 0x0900  Detected object count: 7
18:21:04.0815 0x0900  Actual detected object count: 7
18:22:00.0804 0x0900  HP Support Assistant Service ( UnsignedFile.Multi.Generic ) - skipped by user
18:22:00.0804 0x0900  HP Support Assistant Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 
18:22:00.0804 0x0900  LightScribeService ( UnsignedFile.Multi.Generic ) - skipped by user
18:22:00.0804 0x0900  LightScribeService ( UnsignedFile.Multi.Generic ) - User select action: Skip 
18:22:00.0804 0x0900  Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
18:22:00.0804 0x0900  Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
18:22:00.0804 0x0900  Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
18:22:00.0804 0x0900  Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
18:22:00.0804 0x0900  RapportEI64 ( UnsignedFile.Multi.Generic ) - skipped by user
18:22:00.0804 0x0900  RapportEI64 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
18:22:00.0804 0x0900  RapportPG64 ( UnsignedFile.Multi.Generic ) - skipped by user
18:22:00.0804 0x0900  RapportPG64 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
18:22:00.0819 0x0900  USBAAPL64 ( UnsignedFile.Multi.Generic ) - skipped by user
18:22:00.0819 0x0900  USBAAPL64 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
18:22:09.0774 0x08c0  Deinitialize success
 
-end-

  • 0

#24
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,025 posts
  • MVP

Sounds like it is not detecting your wireless hardware.  We might have turned it off when we played with msconfig.  Go back in to msconfig and check Normal Startup, OK and reboot.

 

Scans don't show anything like malware.  Let's check you mbr since it is showing up as unknown.

 

Download
 
 
Save it and run it.  It will produce a log MBRCheck(date).txt on your desktop.  Copy and paste it into a reply.
 
Close mbrcheck.

  • 0

#25
joy2mac

joy2mac

    Member

  • Topic Starter
  • Member
  • PipPip
  • 44 posts

Thank you for the internet tip - it works now. Here's the log below:

 

MBRCheck

 

MBRCheck, version 1.2.3
© 2010, AD

Command-line:            
Windows Version:        Windows 7 Home Premium Edition
Windows Information:        Service Pack 1 (build 7601), 64-bit
Base Board Manufacturer:    Hewlett-Packard
BIOS Manufacturer:        Hewlett-Packard
System Manufacturer:        Hewlett-Packard
System Product Name:        HP Pavilion dv6 Notebook PC
Logical Drives Mask:        0x0000003c

Kernel Drivers (total 222):
  0x03218000 \SystemRoot\system32\ntoskrnl.exe
  0x037FD000 \SystemRoot\system32\hal.dll
  0x00BD3000 \SystemRoot\system32\kdcom.dll
  0x00C1C000 \SystemRoot\system32\mcupdate_GenuineIntel.dll
  0x00C6B000 \SystemRoot\system32\PSHED.dll
  0x00C7F000 \SystemRoot\system32\CLFS.SYS
  0x00CDD000 \SystemRoot\system32\CI.dll
  0x00E03000 \SystemRoot\system32\drivers\Wdf01000.sys
  0x00EC5000 \SystemRoot\system32\drivers\WDFLDR.SYS
  0x00ED5000 \SystemRoot\system32\drivers\ACPI.sys
  0x00F2C000 \SystemRoot\system32\drivers\WMILIB.SYS
  0x00F35000 \SystemRoot\system32\drivers\msisadrv.sys
  0x00F3F000 \SystemRoot\system32\drivers\pci.sys
  0x00F72000 \SystemRoot\system32\drivers\vdrvroot.sys
  0x00F7F000 \SystemRoot\system32\drivers\isapnp.sys
  0x00F88000 \SystemRoot\system32\drivers\mpio.sys
  0x00FB2000 \SystemRoot\System32\drivers\partmgr.sys
  0x00FC7000 \SystemRoot\system32\DRIVERS\compbatt.sys
  0x00FD0000 \SystemRoot\system32\DRIVERS\BATTC.SYS
  0x00FDC000 \SystemRoot\system32\drivers\volmgr.sys
  0x00D9D000 \SystemRoot\System32\drivers\volmgrx.sys
  0x00FF1000 \SystemRoot\system32\drivers\intelide.sys
  0x00C00000 \SystemRoot\system32\drivers\PCIIDEX.SYS
  0x00FF9000 \SystemRoot\system32\drivers\aliide.sys
  0x00C10000 \SystemRoot\system32\drivers\amdide.sys
  0x0100D000 \SystemRoot\system32\drivers\cmdide.sys
  0x01015000 \SystemRoot\System32\drivers\mountmgr.sys
  0x0102F000 \SystemRoot\system32\drivers\msdsm.sys
  0x01055000 \SystemRoot\system32\drivers\nvraid.sys
  0x0107D000 \SystemRoot\system32\drivers\CLASSPNP.SYS
  0x010AD000 \SystemRoot\system32\drivers\pciide.sys
  0x010B4000 \SystemRoot\system32\drivers\viaide.sys
  0x010BC000 \SystemRoot\system32\drivers\iaStorV.sys
  0x012CD000 \SystemRoot\system32\DRIVERS\iaStor.sys
  0x013E9000 \SystemRoot\system32\drivers\atapi.sys
  0x01200000 \SystemRoot\system32\drivers\ataport.SYS
  0x0122A000 \SystemRoot\system32\DRIVERS\lsi_sas.sys
  0x01247000 \SystemRoot\system32\DRIVERS\storport.sys
  0x012AB000 \SystemRoot\system32\drivers\msahci.sys
  0x012B6000 \SystemRoot\system32\drivers\HpSAMD.sys
  0x01412000 \SystemRoot\system32\DRIVERS\adp94xx.sys
  0x0148D000 \SystemRoot\system32\DRIVERS\adpahci.sys
  0x014E3000 \SystemRoot\system32\DRIVERS\adpu320.sys
  0x01512000 \SystemRoot\system32\drivers\amdsata.sys
  0x01530000 \SystemRoot\system32\DRIVERS\amdsbs.sys
  0x01577000 \SystemRoot\system32\drivers\amdxata.sys
  0x01582000 \SystemRoot\system32\DRIVERS\arc.sys
  0x0159B000 \SystemRoot\system32\DRIVERS\arcsas.sys
  0x016BC000 \SystemRoot\system32\DRIVERS\elxstor.sys
  0x01743000 \SystemRoot\system32\DRIVERS\iirsp.sys
  0x01754000 \SystemRoot\system32\DRIVERS\lsi_fc.sys
  0x01773000 \SystemRoot\system32\DRIVERS\lsi_sas2.sys
  0x01786000 \SystemRoot\system32\DRIVERS\lsi_scsi.sys
  0x017A5000 \SystemRoot\system32\DRIVERS\megasas.sys
  0x01600000 \SystemRoot\system32\DRIVERS\MegaSR.sys
  0x016A4000 \SystemRoot\system32\DRIVERS\nfrd960.sys
  0x017B1000 \SystemRoot\system32\drivers\nvstor.sys
  0x01857000 \SystemRoot\system32\DRIVERS\ql2300.sys
  0x01A3A000 \SystemRoot\system32\DRIVERS\ql40xx.sys
  0x01A99000 \SystemRoot\system32\DRIVERS\SiSRaid2.sys
  0x01AA7000 \SystemRoot\system32\DRIVERS\sisraid4.sys
  0x01ABF000 \SystemRoot\system32\DRIVERS\stexstor.sys
  0x01AC9000 \SystemRoot\system32\DRIVERS\vsmraid.sys
  0x01AF3000 \SystemRoot\system32\drivers\fltmgr.sys
  0x01B3F000 \SystemRoot\system32\drivers\fileinfo.sys
  0x01C0C000 \SystemRoot\System32\Drivers\Ntfs.sys
  0x01B53000 \SystemRoot\System32\Drivers\msrpc.sys
  0x01DB5000 \SystemRoot\System32\Drivers\ksecdd.sys
  0x01EBA000 \SystemRoot\System32\Drivers\cng.sys
  0x01F2C000 \SystemRoot\System32\drivers\pcw.sys
  0x01F3D000 \SystemRoot\System32\Drivers\Fs_Rec.sys
  0x0206F000 \SystemRoot\system32\drivers\ndis.sys
  0x02161000 \SystemRoot\system32\drivers\NETIO.SYS
  0x021C1000 \SystemRoot\System32\Drivers\ksecpkg.sys
  0x02201000 \SystemRoot\System32\drivers\tcpip.sys
  0x02000000 \SystemRoot\System32\drivers\fwpkclnt.sys
  0x02049000 \SystemRoot\system32\DRIVERS\wd.sys
  0x01F47000 \SystemRoot\system32\drivers\volsnap.sys
  0x02051000 \SystemRoot\System32\Drivers\spldr.sys
  0x01F93000 \SystemRoot\system32\drivers\sbp2port.sys
  0x01FB0000 \SystemRoot\System32\drivers\rdyboost.sys
  0x02059000 \SystemRoot\System32\Drivers\mup.sys
  0x021EC000 \SystemRoot\System32\drivers\hwpolicy.sys
  0x021F5000 \SystemRoot\system32\DRIVERS\hpdskflt.sys
  0x01E00000 \SystemRoot\System32\DRIVERS\fvevol.sys
  0x01E3A000 \SystemRoot\system32\DRIVERS\disk.sys
  0x01E50000 \SystemRoot\system32\DRIVERS\avgrkx64.sys
  0x01E5A000 \SystemRoot\system32\DRIVERS\avgloga.sys
  0x01DD0000 \SystemRoot\system32\DRIVERS\avgmfx64.sys
  0x01BB1000 \SystemRoot\system32\DRIVERS\avgidsha.sys
  0x04A00000 \SystemRoot\system32\drivers\cdrom.sys
  0x04A2A000 \SystemRoot\system32\drivers\NSTx64\7DE07000.02B\ccSetx64.sys
  0x036F8000 \??\C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus64_59849.sys
  0x0378A000 \??\C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys
  0x037EA000 \SystemRoot\System32\Drivers\Null.SYS
  0x037F3000 \SystemRoot\System32\Drivers\Beep.SYS
  0x03600000 \??\C:\Windows\system32\drivers\avgtpx64.sys
  0x03610000 \SystemRoot\System32\drivers\vga.sys
  0x0361E000 \SystemRoot\System32\drivers\VIDEOPRT.SYS
  0x03643000 \SystemRoot\System32\drivers\watchdog.sys
  0x03653000 \SystemRoot\System32\DRIVERS\RDPCDD.sys
  0x0365C000 \SystemRoot\system32\drivers\rdpencdd.sys
  0x03665000 \SystemRoot\system32\drivers\rdprefmp.sys
  0x0366E000 \SystemRoot\System32\Drivers\Msfs.SYS
  0x03679000 \SystemRoot\System32\Drivers\Npfs.SYS
  0x0368A000 \SystemRoot\system32\DRIVERS\tdx.sys
  0x036AC000 \SystemRoot\system32\DRIVERS\TDI.SYS
  0x04A56000 \SystemRoot\system32\DRIVERS\avgtdia.sys
  0x01800000 \SystemRoot\System32\DRIVERS\netbt.sys
  0x04CBD000 \SystemRoot\system32\drivers\afd.sys
  0x04D46000 \SystemRoot\system32\drivers\ws2ifsl.sys
  0x04D51000 \SystemRoot\system32\DRIVERS\wfplwf.sys
  0x04D5A000 \SystemRoot\system32\DRIVERS\pacer.sys
  0x04D80000 \SystemRoot\system32\DRIVERS\vwififlt.sys
  0x04D96000 \SystemRoot\system32\DRIVERS\netbios.sys
  0x04DC2000 \SystemRoot\system32\DRIVERS\wanarp.sys
  0x04DDD000 \SystemRoot\system32\drivers\termdd.sys
  0x04C00000 \SystemRoot\system32\DRIVERS\rdbss.sys
  0x04C51000 \??\C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys
  0x04C95000 \SystemRoot\system32\drivers\nsiproxy.sys
  0x04CA1000 \SystemRoot\system32\drivers\mssmbios.sys
  0x04CAC000 \SystemRoot\System32\drivers\discache.sys
  0x036B9000 \SystemRoot\System32\Drivers\dfsc.sys
  0x04DA5000 \SystemRoot\system32\DRIVERS\blbdrive.sys
  0x015B6000 \SystemRoot\system32\DRIVERS\avgldx64.sys
  0x04EFA000 \SystemRoot\system32\DRIVERS\avgidsdrivera.sys
  0x04F3A000 \SystemRoot\system32\DRIVERS\avgdiska.sys
  0x04F63000 \SystemRoot\system32\DRIVERS\tunnel.sys
  0x04F89000 \SystemRoot\system32\DRIVERS\CmBatt.sys
  0x06ECF000 \SystemRoot\system32\DRIVERS\nvlddmkm.sys
  0x079F3000 \SystemRoot\system32\DRIVERS\nvBridge.kmd
  0x04E00000 \SystemRoot\System32\drivers\dxgkrnl.sys
  0x06E00000 \SystemRoot\System32\drivers\dxgmms1.sys
  0x06E46000 \SystemRoot\system32\drivers\HDAudBus.sys
  0x06E6A000 \SystemRoot\system32\drivers\usbehci.sys
  0x04F8E000 \SystemRoot\system32\drivers\USBPORT.SYS
  0x05203000 \SystemRoot\system32\DRIVERS\NETw5s64.sys
  0x05962000 \SystemRoot\system32\DRIVERS\vwifibus.sys
  0x01A00000 \SystemRoot\system32\DRIVERS\SCSIPORT.SYS
  0x06EA3000 \SystemRoot\system32\DRIVERS\enecir.sys
  0x036D7000 \SystemRoot\system32\drivers\i8042prt.sys
  0x06EC0000 \SystemRoot\system32\DRIVERS\HpqKbFiltr.sys
  0x05C86000 \SystemRoot\System32\drivers\keyscrambler.sys
  0x05CBF000 \SystemRoot\system32\drivers\kbdclass.sys
  0x05CCE000 \SystemRoot\system32\DRIVERS\SynTP.sys
  0x05D1A000 \SystemRoot\system32\DRIVERS\USBD.SYS
  0x05D1C000 \SystemRoot\system32\drivers\mouclass.sys
  0x05D2B000 \SystemRoot\system32\DRIVERS\GEARAspiWDM.sys
  0x05D32000 \SystemRoot\system32\DRIVERS\Accelerometer.sys
  0x05D3E000 \SystemRoot\system32\drivers\wmiacpi.sys
  0x05D47000 \SystemRoot\system32\DRIVERS\intelppm.sys
  0x05D5D000 \SystemRoot\system32\drivers\CompositeBus.sys
  0x05D6D000 \SystemRoot\system32\drivers\anvsnddrv.sys
  0x05D7F000 \SystemRoot\system32\drivers\portcls.sys
  0x05DBC000 \SystemRoot\system32\drivers\drmk.sys
  0x05C00000 \SystemRoot\system32\drivers\ks.sys
  0x05C43000 \SystemRoot\system32\drivers\ksthunk.sys
  0x05C49000 \SystemRoot\system32\DRIVERS\AgileVpn.sys
  0x05C5F000 \SystemRoot\system32\DRIVERS\rasl2tp.sys
  0x05DDE000 \SystemRoot\system32\DRIVERS\ndistapi.sys
  0x06024000 \SystemRoot\system32\DRIVERS\ndiswan.sys
  0x06053000 \SystemRoot\system32\DRIVERS\raspppoe.sys
  0x0606E000 \SystemRoot\system32\DRIVERS\raspptp.sys
  0x0608F000 \SystemRoot\system32\DRIVERS\rassstp.sys
  0x060A9000 \SystemRoot\system32\drivers\swenum.sys
  0x060AB000 \SystemRoot\system32\DRIVERS\circlass.sys
  0x060BD000 \SystemRoot\system32\drivers\umbus.sys
  0x060CF000 \SystemRoot\system32\DRIVERS\usbhub.sys
  0x06129000 \SystemRoot\System32\Drivers\NDProxy.SYS
  0x0613E000 \SystemRoot\system32\drivers\nvhda64v.sys
  0x06156000 \SystemRoot\system32\DRIVERS\stwrt64.sys
  0x061D5000 \SystemRoot\system32\DRIVERS\hidir.sys
  0x061E6000 \SystemRoot\system32\DRIVERS\HIDCLASS.SYS
  0x06000000 \SystemRoot\system32\DRIVERS\HIDPARSE.SYS
  0x06009000 \SystemRoot\system32\drivers\kbdhid.sys
  0x06017000 \SystemRoot\system32\DRIVERS\mouhid.sys
  0x08E4C000 \SystemRoot\System32\Drivers\fastfat.SYS
  0x08E82000 \SystemRoot\system32\drivers\hidusb.sys
  0x08E90000 \SystemRoot\system32\DRIVERS\usbccgp.sys
  0x08EAD000 \SystemRoot\System32\Drivers\usbvideo.sys
  0x08EDB000 \SystemRoot\System32\Drivers\crashdmp.sys
  0x04A9C000 \SystemRoot\System32\Drivers\dump_iaStor.sys
  0x08EE9000 \SystemRoot\System32\Drivers\dump_dumpfve.sys
  0x00060000 \SystemRoot\System32\win32k.sys
  0x08EFC000 \SystemRoot\System32\drivers\Dxapi.sys
  0x08F08000 \SystemRoot\system32\DRIVERS\monitor.sys
  0x005F0000 \SystemRoot\System32\TSDDD.dll
  0x00720000 \SystemRoot\System32\cdd.dll
  0x00910000 \SystemRoot\System32\ATMFD.DLL
  0x08F16000 \SystemRoot\system32\drivers\luafv.sys
  0x08F39000 \SystemRoot\system32\DRIVERS\lltdio.sys
  0x08F4E000 \SystemRoot\system32\DRIVERS\nwifi.sys
  0x08FA1000 \SystemRoot\system32\DRIVERS\ndisuio.sys
  0x08FB4000 \SystemRoot\system32\DRIVERS\rspndr.sys
  0x04690000 \SystemRoot\system32\drivers\HTTP.sys
  0x04759000 \SystemRoot\system32\DRIVERS\vwifimp.sys
  0x04763000 \SystemRoot\system32\DRIVERS\bowser.sys
  0x04781000 \SystemRoot\System32\drivers\mpsdrv.sys
  0x04799000 \SystemRoot\system32\DRIVERS\mrxsmb.sys
  0x04600000 \SystemRoot\system32\DRIVERS\mrxsmb10.sys
  0x0464E000 \SystemRoot\system32\DRIVERS\mrxsmb20.sys
  0x04672000 \SystemRoot\System32\Drivers\adfs.SYS
  0x090A6000 \SystemRoot\system32\drivers\peauth.sys
  0x0914C000 \SystemRoot\System32\Drivers\secdrv.SYS
  0x091C8000 \SystemRoot\System32\DRIVERS\srvnet.sys
  0x09000000 \SystemRoot\System32\drivers\tcpipreg.sys
  0x09012000 \SystemRoot\System32\DRIVERS\srv2.sys
  0x09834000 \SystemRoot\System32\DRIVERS\srv.sys
  0x098CC000 \SystemRoot\system32\drivers\1394ohci.sys
  0x0990A000 \SystemRoot\system32\DRIVERS\jmcr.sys
  0x09931000 \SystemRoot\System32\Drivers\BTHUSB.sys
  0x09949000 \SystemRoot\System32\Drivers\bthport.sys
  0x09800000 \SystemRoot\system32\DRIVERS\rfcomm.sys
  0x099D5000 \SystemRoot\system32\drivers\BthEnum.sys
  0x0907B000 \SystemRoot\system32\DRIVERS\bthpan.sys
  0x0596F000 \SystemRoot\system32\drivers\btwavdt.sys
  0x0AABA000 \SystemRoot\system32\drivers\btwaudio.sys
  0x0AB40000 \SystemRoot\system32\DRIVERS\btwl2cap.sys
  0x0AB4C000 \SystemRoot\system32\DRIVERS\btwrchid.sys
  0x778B0000 \Windows\System32\ntdll.dll
  0x47700000 \Windows\System32\smss.exe
  0xFFBD0000 \Windows\System32\apisetschema.dll

Processes (total 93):
       0 System Idle Process
       4 System
     360 C:\Windows\System32\smss.exe
     476 C:\PROGRA~2\AVG\AVG2014\avgrsa.exe
     516 avgcsrva.exe
     984 csrss.exe
     448 C:\Windows\System32\wininit.exe
     532 csrss.exe
    1004 C:\Windows\System32\services.exe
     980 C:\Windows\System32\lsass.exe
    1040 C:\Windows\System32\lsm.exe
    1104 C:\Windows\System32\winlogon.exe
    1176 C:\Windows\System32\svchost.exe
    1244 C:\Windows\System32\nvvsvc.exe
    1284 C:\Windows\System32\svchost.exe
    1384 C:\Windows\System32\svchost.exe
    1428 C:\Windows\System32\svchost.exe
    1472 C:\Windows\System32\svchost.exe
    1496 C:\Windows\System32\svchost.exe
    1540 C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\stacsv64.exe
    1620 C:\Windows\System32\audiodg.exe
    1836 C:\Windows\System32\hpservice.exe
    1880 C:\Windows\System32\svchost.exe
    2004 C:\Windows\System32\spoolsv.exe
     968 C:\Windows\System32\svchost.exe
    1368 C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
    1804 C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\AESTSr64.exe
    1604 C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    2052 C:\Program Files\Bonjour\mDNSResponder.exe
    2080 C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
    2148 C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
    2188 C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
    2340 C:\Windows\System32\svchost.exe
    2392 C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
    2456 C:\Windows\System32\msiexec.exe
    2536 C:\Program Files (x86)\Norton Safe Web Lite\Engine\2014.7.0.43\nst.exe
    2568 C:\Windows\System32\svchost.exe
    2612 C:\Windows\System32\svchost.exe
    2648 C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
    2784 C:\Windows\System32\svchost.exe
    2896 C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.0.0\ToolbarUpdater.exe
    2952 C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.0\ToolbarUpdater.exe
    2996 C:\Program Files\Windows Media Player\wmpnetwk.exe
    3020 C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.0\loggingserver.exe
    3048 C:\Windows\System32\conhost.exe
    1528 C:\Windows\System32\SearchIndexer.exe
    3704 WmiPrvSE.exe
    2820 C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
    2504 C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
    2624 C:\Windows\System32\taskhost.exe
    3852 C:\Program Files (x86)\Norton Safe Web Lite\Engine\2014.7.0.43\nst.exe
    1764 C:\Windows\System32\dwm.exe
    2948 C:\Windows\explorer.exe
    2176 C:\Program Files\IDT\WDM\sttray64.exe
    3032 C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe
    2476 C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
    3700 C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
    3220 C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
    2388 C:\Program Files (x86)\AVG Secure Search\vprot.exe
    4424 C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
    4452 C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe
    4520 C:\Windows\SysWOW64\kmw_run.exe
    4552 C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
    4972 C:\Program Files (x86)\KeyScrambler\KeyScrambler.exe
    5016 C:\Program Files (x86)\iTunes\iTunesHelper.exe
    4220 C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
    4192 C:\Windows\ehome\ehmsas.exe
    3976 C:\Program Files (x86)\AVG\AVG2014\avgui.exe
    5000 C:\Program Files (x86)\KeyScrambler\x64\KeyScrambler.exe
    5064 C:\Program Files\iPod\bin\iPodService.exe
    5036 C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
    4832 C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
    4716 C:\Windows\System32\taskeng.exe
    3880 C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
    5396 C:\Windows\SysWOW64\ctfmon.exe
    5600 C:\Program Files (x86)\Hewlett-Packard\Shared\HpqToaster.exe
    4336 C:\Windows\System32\svchost.exe
    4700 C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
    5528 C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe
    5312 C:\Windows\System32\svchost.exe
    5688 C:\Windows\System32\svchost.exe
    4880 C:\Windows\servicing\TrustedInstaller.exe
    2676 WmiPrvSE.exe
    5304 C:\Windows\System32\taskeng.exe
    4276 C:\Windows\System32\consent.exe
    2208 C:\Windows\System32\wuauclt.exe
    2412 C:\Windows\System32\SearchProtocolHost.exe
    3564 C:\Windows\System32\SearchFilterHost.exe
    6108 dllhost.exe
    5896 dllhost.exe
    2632 C:\Users\joy_macbeth\Desktop\MBRCheck.exe
    5364 C:\Windows\System32\conhost.exe
    3980 C:\Windows\System32\dllhost.exe

\\.\C: --> \\.\PhysicalDrive0 at offset 0x00000000`0c800000  (NTFS)
\\.\D: --> \\.\PhysicalDrive0 at offset 0x00000071`19000000  (NTFS)
\\.\E: --> \\.\PhysicalDrive0 at offset 0x00000074`6a400000  (FAT32)

PhysicalDrive0 Model Number: ST9500420AS, Rev: 0006HPM1

      Size  Device Name          MBR Status
  --------------------------------------------
    465 GB  \\.\PhysicalDrive0   Unknown MBR code
            SHA1: 8885F493646725283850DC7FF7132C6D23298D82


Found non-standard or infected MBR.
Enter 'Y' and hit ENTER for more options, or 'N' to exit:

 

-end-


  • 0

Advertisements


#26
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,025 posts
  • MVP

It's probably a new HP mbr but it doesn't show up when I Google it so let's submit it to virustotal.com.  When you ran aswMBR it put a copy of the mbr in "J:\MBR.dat"

 

I'm guessing that's your USB drive.  Make sure it is in the same slot as before so that it is still j: or change the following to match its location.

 

 

 
Easiest way to submit a file is to copy the path:
 
J:\MBR.dat
 
Then
Go to virustotal.com with your browser.  Click on Choose File then when the file chooser window opens, move down to the File Name: box and then Ctrl + v and the path should appear.  Hit Open and it should return to the main page with spoolsv.exe chosen.  Click on Scan it.  If it knows the file already it will tell you it's already been analyzed and offer you a choice of Reanalyze and View Last Analysis.  In that case click on View Last Analysis.  If it doesn't know the file it will take a minute to query 46 different anti-virus companies.  In either case, If the Detection ratio: is not 0 / 46 (last number varies daily) then copy the Analysis page and paste it into the forum.  You can just hit Ctrl + a then Ctrl + c to copy the page then go to a reply and Ctrl + v.

  • 0

#27
joy2mac

joy2mac

    Member

  • Topic Starter
  • Member
  • PipPip
  • 44 posts

Hi, 

 

When I returned to the main page of virustotal.com, J:\MBR.dat was chosen (not spoolsv.exe). I hope this is ok. The resulting detection ratio was 0/52. It seems this is the first time the scan was run for this. Thank you for the rapid response, 

 

joy


  • 0

#28
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,025 posts
  • MVP

Sounds like it's more or less back to normal and you are tired of playing with it so I will give you my cleanup speech:

 

 
You can uninstall or delete any tools we had you download and their logs. 
 
If we ran Combofix:To uninstall combofix, copy the next line:
 
"%userprofile%\Desktop\combofix.exe" /Uninstall
 
Start, All Programs, Accessories then right click on Command Prompt and Run As Administrator.
then right click, Paste, then hit Enter.
 
 
 
OTL has a cleanup tab but DO NOT USE IT!.  There are reports that it leaves the PC unbootable.  Instead just delete  OTL.exe and the folder c:\_OTL.
 
To hide hidden files again:
 
Vista or Win7
 
# Open the Control Panel menu and click Folder Options.
# After the new window appears select the View tab.
# Remove the check in the  checkbox labeled Display the contents of system folders.
# Under the Hidden files and folders section select the radio button labeled Do not Show hidden files and folders.
# Check the checkbox labeled Hide protected operating system files.
# Press the Apply button and then the OK button and exit My Computer. 
 
Also make sure you have the latest versions of any adobe.com products you use like Shockwave, Flash or Acrobat.  
 
Whether you use adobe reader, acrobat or fox-it to read pdf files you need to disable Javascript in the program.  There is an exploit out there now that can use it to get on your PC.  For Adobe Reader:  Start, All Programs, Adobe Reader, Edit, Preferences, Click on Javascript in the left column and uncheck Enable Acrobat Javascript.  OK Close program.  It's the same for Foxit reader except you uncheck Enable Javascript Actions. 
 
Unless you have the latest version of Avast which has its own update checker:  To help keep your programs up-to-date you should download and run the UpdateChecker: 
(You don't need to download Betas and if there is a program you don't use you can just uninstall it rather than update it.  Exception is MSN messenger which appears to be part of Windows.)
If you get a blocked program notice after installing updatechecker then change it to not run at start then manually run it once a week.
 Seems to work best if Firefox is the default browser.  Windows always hides its icon so you need to unhide it.  Click on the up arrow to the left of the clock.  Then click on Customize.  Maximize the window so you can see all of the options.  Scroll Down and find the File Hippo UpdateChecker and change its Behaviors to Show Icon and Notifications.  OK.  When you reboot you should see the icon.  It will take it a minute to finish checking then it will put up a bubble if you need to update something. Click on the bubble and it should open in your browser.  (Seems to work best if it uses Firefox.  If you do not use Firefox as your default browser then right click on the icon and click on Settings. Then on Results.  Change the Open Results in Default Browser to Custom Browser and then select the line that has Firefox.exe in it.  While there, also check Hide Beta Versions.  OK. )  You will see a list of programs that have updates with green down arrows next to them.  You do not need to download any Beta Versions.  There is an option Settings to Hide Beta Versions.  I do not advise updating Windows Messenger unless you really use it so I right click on the Icon and Customize Results then find Microsoft Messenger and change Show All Releases to Hide All Releases.  OK. 
 
You can also try Secunia PSI http://secunia.com/v...l/download_psi/  Same kind of info.  You don't need both.
If you use Chrome/Firefox/IE then get the AdBlock Plus Add-on.  Go to adblockplus.org with each browser and get the add-on.
 
If Chrome/Firefox is slow loading make sure it only has the current Java add-on.  Then download and run Speedy Fox.
http://www.crystalidea.com/speedyfox .  Close Chrome/Firefox. Hit Optimize.   You can run it any time that Chrome/Firefox seems slow.
 
Be warned:  If you use Limewire, utorrent or any of the other P2P programs you will almost certain be coming back to the Malware Removal forum.  If you must use P2P then submit any files you get to http://virustotal.com before you open them.
 
Due to a recent rise in the number of Crytolocker infections I am now recommending you install:
 
CryptoPrevent
 
 
The free version does not update on its own so you should check for updated versions once in a while.
 
 
 
If you have a router, log on to it today and change the default password!  If using a Wireless router you really should be using encryption on the link.  Use the strongest (newest) encryption method that your router and PC wireless adapter support especially if you own a business.  See http://www.king5.com...-120637284.html and http://www.seattlepi...ted-1344185.php for why encryption is important.  If you don't know how, visit the router maker's website.  They all have detailed step by step instructions or a wizard you can download.
 
Special note on Java.  Old Java versions should be removed after first clearing the Java Cache by following the instructions in:
Then remove the old versions by going to Control Panel, Programs and Features and Uninstall all Java programs which are not Java Version 7 update 25 or better.  These may call themselves: Java Runtime, Runtime Environment, Runtime, JRE, Java Virtual Machine, Virtual Machine, Java VM, JVM, VM, J2RE, J2SE.  Get the latest version from Java.com.  They will usually attempt to foist some garbage like the Ask toolbar, Yahoo toolbar or McAfee Security Scan on you as part of the download.  Just uncheck the garbage before the download (or install) starts.  If you use a 64-bit browser and want the 64-bit version of Java you need to use it to visit java.com.
Due to multiple security problems with Java we are now recommending that it not be installed unless you absolutely know you need it.  IF that is the case then go to Control Panel, Java, Security and slide it up to the highest level.  OK.
 
Make sure Windows Updates is turned and that it works.  Go to Control panel, Windows Updates and see if it works.  
 
 
My help is free but if you wish to show your appreciation, please donate to Kwiaht instead of me. It's a local environmental organization that I volunteer with: http://www.kwiaht.org/donate.htm
(The name means something like "clean place" in one of the local native-American dialects)
 
Ron

  • 0

#29
joy2mac

joy2mac

    Member

  • Topic Starter
  • Member
  • PipPip
  • 44 posts

Thank you for your help and time with this! 

 

Is it correct that a virus damaged something in the old login, and though the virus is gone, the damage is irreparable. This is why I cannot login to the old account, and why creating the new one is the best option?

 

Thank you again, 

 

joy :wave:


  • 0

#30
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,025 posts
  • MVP

Something killed it.  Don't know what but the new login is the best fix.


  • 0






Similar Topics


Also tagged with one or more of these keywords: windows 7, slow startup, windows popup, desktop blackout, windows setup device, toolbar disappeared

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP