Better order two hard drives. This one is worse than the other one tho I don't see that it is complaining about the file system like the other one.
That's not gonna happen. Would it be worth it 5 months before XP retires? Maybe i can use HD's from a battery of old computers we have lingering around (becouse i didn't have time to check them - they need to be checked here at GeeksToGo as well), or otherwise the project where we recieved all those computers from might have some extra.
Maybe the State Secretary can get you a new hard drive?
Well, back in the late 80's and early 90's, when i was boardmember for a project for psychiatrical patients, i did manage to get new computers and software + old tekstprocessors from resp. the Ministers of Healthcare and Finance. Backthen our single project was an example for our country. But now our complete city was example, together with various other cities. Between all Big Bobo's there was no time to ask such a personal question, despite "meaningless" me getting a lot more speach-time then my boss had planned. Tried to warn him but he would not listen, he may outline a plan but in the end it's the State Secratary herself who plans her agenda. Pitty becouse now his wife didn't get an invitation at all while she is the next best after the death of our towns "Grandmother of leftwing politics" and our towns "Grandfather of social projects".
To get back to this computer :
All downloads and scans went well. Should i also run chkdsk for D:\partition (ment for Data-back-up but never used)?
TDSS-killer-link was an old version that needed an update with a zipped file, i don't think that posed a problem but i am not entirely sure. TDSS-killer didn't find any threat.
Vino's Event Viewer v01c run on Windows XP in Dutch
Report run at 21/10/2013 10:36:15
Note: All dates below are in the format dd/mm/yyyy
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Fout Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Waarschuwing Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 21/10/2013 10:29:00
Type: Waarschuwing Category: 0
Event: 18 Source: avgntflt
TIMEOUT<svchost.exe> C:\WINDOWS\system32\wuapi.dll
Log: 'System' Date/Time: 21/10/2013 10:28:28
Type: Waarschuwing Category: 0
Event: 18 Source: avgntflt
TIMEOUT<Kies.exe> C:\...iceProcess.resources.dll
Vino's Event Viewer v01c run on Windows XP in Dutch
Report run at 21/10/2013 10:37:45
Note: All dates below are in the format dd/mm/yyyy
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Fout Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Waarschuwing Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 21/10/2013 9:50:35
Type: Waarschuwing Category: 0
Event: 1517 Source: Userenv
Windows heeft het register van gebruiker EIGENAAR-PC\Eigenaar opgeslagen hoewel een toepassing of service tijdens de afmelding van het register gebruikmaakte. Het geheugen voor het register is niet volledig beschikbaar. Het register wordt uit het register verwijderd wanneer het niet langer in gebruik is. Dit wordt mogelijk veroorzaakt door services die als een gebruikersaccount actief zijn. Probeer om de services zodanig te configureren dat deze als LocalService- of NetworkService-account worden gestart.
ComboFix 13-10-19.02 - Eigenaar 21-10-2013 10:52:12.1.1 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.31.1043.18.503.334 [GMT 2:00]
Gestart vanuit: c:\documents and settings\Eigenaar\Bureaublad\21okt2013-9-ComboFix.exe
AV: Avira Desktop *Disabled/Updated* {AD166499-45F9-482A-A743-FDD3350758C7}
.
.
(((((((((((((((((((( Bestanden Gemaakt van 2013-09-21 to 2013-10-21 ))))))))))))))))))))))))))))))
.
.
2013-10-16 16:07 . 2013-10-16 16:07 -------- d-----w- C:\FRST
2013-10-16 15:29 . 2013-10-16 15:29 -------- d-----w- c:\program files\Speccy
2013-10-16 14:19 . 2013-10-16 14:19 -------- d-----w- c:\windows\ERUNT
2013-10-16 13:57 . 2013-10-16 14:07 -------- d-----w- C:\AdwCleaner
2013-10-13 12:52 . 2013-10-13 12:52 -------- d-----w- c:\program files\VS Revo Group
2013-10-11 08:00 . 2013-07-03 02:12 25088 -c----w- c:\windows\system32\dllcache\hidparse.sys
2013-10-11 08:00 . 2013-07-03 01:59 14976 -c----w- c:\windows\system32\dllcache\usbscan.sys
2013-10-11 07:56 . 2013-08-09 00:55 5376 -c----w- c:\windows\system32\dllcache\usbd.sys
2013-10-11 07:56 . 2009-03-18 11:02 30336 -c----w- c:\windows\system32\dllcache\usbehci.sys
2013-10-06 12:53 . 2013-06-09 19:59 216064 ----a-w- c:\windows\system32\gcapi_dll.dll
2013-10-06 11:16 . 2013-10-06 11:16 -------- d-----w- c:\program files\iPod
2013-10-06 11:15 . 2013-10-06 11:18 -------- d-----w- c:\documents and settings\All Users\Application Data\188F1432-103A-4ffb-80F1-36B633C5C9E1
2013-10-06 11:15 . 2013-10-06 11:18 -------- d-----w- c:\program files\iTunes
2013-09-24 12:34 . 2013-09-24 12:34 -------- d-----w- c:\documents and settings\Eigenaar\Local Settings\Application Data\Samsung
2013-09-24 12:34 . 2013-09-24 12:34 -------- d-----w- c:\documents and settings\Eigenaar\Application Data\Samsung
2013-09-24 12:33 . 2008-04-14 21:32 26624 ----a-w- c:\documents and settings\LocalService\Application Data\Microsoft\UPnP Device Host\upnphost\udhisapi.dll
2013-09-24 12:31 . 2013-06-21 00:07 181912 ----a-w- c:\windows\system32\drivers\ssudserd.sys
2013-09-24 12:31 . 2013-06-21 00:07 181912 ----a-w- c:\windows\system32\drivers\ssudmdm.sys
2013-09-24 12:31 . 2013-06-21 00:07 84248 ----a-w- c:\windows\system32\drivers\ssudbus.sys
2013-09-24 12:25 . 2013-04-18 17:08 4659712 ----a-w- c:\windows\system32\Redemption.dll
2013-09-24 12:24 . 2013-04-18 17:06 821824 ----a-w- c:\windows\system32\dgderapi.dll
2013-09-24 12:24 . 2013-04-18 17:06 319456 ----a-w- c:\windows\system32\DIFxAPI.dll
2013-09-24 12:24 . 2013-04-18 17:06 20032 ----a-w- c:\windows\system32\drivers\dgderdrv.sys
2013-09-24 12:23 . 2013-09-24 12:29 -------- d-----w- c:\program files\Samsung
2013-09-24 12:23 . 2013-09-24 12:28 -------- d-----w- c:\documents and settings\All Users\Application Data\Samsung
2013-09-24 12:22 . 2013-09-24 12:22 -------- d-----w- c:\documents and settings\Eigenaar\Local Settings\Application Data\Downloaded Installations
2013-09-24 11:41 . 2013-08-09 00:55 32384 -c--a-w- c:\windows\system32\dllcache\usbccgp.sys
2013-09-24 11:41 . 2013-08-09 00:55 32384 ----a-w- c:\windows\system32\drivers\usbccgp.sys
.
.
.
((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-10-10 08:34 . 2012-09-18 10:38 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-10-10 08:34 . 2012-02-15 15:07 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-09-23 18:25 . 2012-02-15 15:07 920064 ----a-w- c:\windows\system32\wininet.dll
2013-09-23 18:25 . 2008-04-14 21:33 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2013-09-23 18:25 . 2008-04-14 21:32 43520 ----a-w- c:\windows\system32\licmgr10.dll
2013-09-23 18:25 . 2008-04-14 21:32 18944 ----a-w- c:\windows\system32\corpol.dll
2013-09-23 18:07 . 2012-02-15 15:06 385024 ----a-w- c:\windows\system32\html.iec
2013-09-19 16:49 . 2013-06-24 10:51 499712 ----a-w- c:\windows\system32\msvcp71.dll
2013-09-19 16:49 . 2013-06-24 10:51 348160 ----a-w- c:\windows\system32\msvcr71.dll
2013-09-19 13:14 . 2013-03-24 11:26 88840 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2013-09-19 13:14 . 2013-03-24 11:26 136672 ----a-w- c:\windows\system32\drivers\avipbb.sys
2013-08-29 07:01 . 2012-02-15 15:07 1878784 ----a-w- c:\windows\system32\win32k.sys
2013-08-09 01:56 . 2008-04-14 21:32 391168 ----a-w- c:\windows\system32\themeui.dll
2013-08-09 00:55 . 2012-02-15 15:06 144128 ----a-w- c:\windows\system32\drivers\usbport.sys
2013-08-09 00:55 . 2004-08-04 12:00 5376 ----a-w- c:\windows\system32\drivers\usbd.sys
2013-08-05 13:30 . 2012-02-15 15:06 1289216 ----a-w- c:\windows\system32\ole32.dll
2013-08-02 23:48 . 2012-02-15 15:07 1543680 ----a-w- c:\windows\system32\wmvdecod.dll
.
.
------- Sigcheck -------
Note: Unsigned files aren't necessarily malware.
.
[-] 2010-12-09 . 9011D64E9090247C04EE767ED6C7B4BE . 739328 . . [5.1.2600.6055] . . c:\windows\system32\ntdll.dll
.
[-] 2012-02-15 . 660868E1371697C652CFC9C1CB98B371 . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
.
((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"KiesPreload"="c:\program files\Samsung\Kies\Kies.exe" [2013-04-23 1561968]
"KiesAirMessage"="c:\program files\Samsung\Kies\KiesAirMessage.exe" [2013-07-18 578560]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2002-12-13 155648]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2002-12-13 114688]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2013-09-19 347192]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2013-04-21 59720]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2013-05-01 421888]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2013-10-01 152392]
"WinampAgent"="c:\program files\Winamp\winampa.exe" [2013-08-22 84576]
"TkBellExe"="c:\program files\real\realplayer\update\realsched.exe" [2013-09-19 295512]
"KiesTrayAgent"="c:\program files\Samsung\Kies\KiesTrayAgent.exe" [2013-04-23 311152]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"_nltide_3"="advpack.dll" [2009-03-08 128512]
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\Common Files\\Apple\\Apple Application Support\\WebKit2WebProcess.exe"=
"c:\\Program Files\\Winamp\\winamp.exe"=
"c:\\Program Files\\SiSoftware\\SiSoftware Sandra Lite 2013.SP4\\WNt500x86\\RpcSandraSrv.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"c:\\Program Files\\SiSoftware\\SiSoftware Sandra Lite 2013.SP4\\RpcAgentSrv.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"5985:TCP"= 5985:TCP:*:Disabled:Windows Remote Management
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\IcmpSettings]
"AllowInboundEchoRequest"= 1 (0x1)
.
R1 avkmgr;avkmgr;c:\windows\system32\drivers\avkmgr.sys [24-3-2013 13:26 37352]
R2 AntiVirSchedulerService;Avira Planner;c:\program files\Avira\AntiVir Desktop\sched.exe [24-3-2013 13:26 84024]
R2 AntiVirWebService;Avira Web Protection;c:\program files\Avira\AntiVir Desktop\avwebgrd.exe [24-3-2013 13:26 815160]
R2 RealNetworks Downloader Resolver Service;RealNetworks Downloader Resolver Service;c:\program files\RealNetworks\RealDownloader\rndlresolversvc.exe [14-8-2013 15:19 39056]
R3 STAC97NA;SigmaTel 3D Environmental Audio;c:\windows\system32\drivers\stac97na.sys [7-7-2002 13:53 296179]
R3 STAC97NH;STAC97NH;c:\windows\system32\drivers\stac97nh.sys [7-7-2002 13:52 231983]
S2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [5-9-2013 10:34 171680]
S3 cpudrv;cpudrv;c:\program files\SystemRequirementsLab\cpudrv.sys [2-6-2011 10:08 11336]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\drivers\ssudbus.sys [24-9-2013 14:31 84248]
S3 SandraAgentSrv;SiSoftware Deployment Agent Service;c:\program files\SiSoftware\SiSoftware Sandra Lite 2013.SP4\RpcAgentSrv.exe [24-6-2013 12:38 71832]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\drivers\ssudmdm.sys [24-9-2013 14:31 181912]
S3 ssudserd;SAMSUNG Mobile USB Diagnostic Serial Port(DEVGURU Ver.);c:\windows\system32\drivers\ssudserd.sys [24-9-2013 14:31 181912]
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-10-20 09:12 1185744 ----a-w- c:\program files\Google\Chrome\Application\30.0.1599.101\Installer\chrmstp.exe
.
Inhoud van de 'Gedeelde Taken' map
.
2013-10-21 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-09-18 08:34]
.
2013-07-13 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2011-06-01 15:57]
.
2013-10-21 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2013-03-24 16:03]
.
2013-10-20 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2013-03-24 16:03]
.
2013-10-21 c:\windows\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1614895754-879983540-1606980848-1003.job
- c:\program files\Real\RealUpgrade\realupgrade.exe [2013-08-14 15:13]
.
2013-10-16 c:\windows\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1614895754-879983540-1606980848-1003.job
- c:\program files\Real\RealUpgrade\realupgrade.exe [2013-08-14 15:13]
.
2013-10-21 c:\windows\Tasks\User_Feed_Synchronization-{D00FDB6F-8963-405A-804E-BB510CC46110}.job
- c:\windows\system32\msfeedssync.exe [2012-09-18 02:31]
.
.
------- Bijkomende Scan -------
.
uStart Page = hxxp://www.bing.com/
uInternet Settings,ProxyOverride = *.local
LSP: c:\program files\Avira\AntiVir Desktop\avsda.dll
TCP: DhcpNameServer = 192.168.23.1
FF - ProfilePath - c:\documents and settings\Eigenaar\Application Data\Mozilla\Firefox\Profiles\rjfq1y1i.default\
FF - prefs.js: browser.search.selectedEngine - Wikipedia (nl)
FF - ExtSQL: 2013-09-19 18:53; {DF153AFF-6948-45d7-AC98-4FC4AF8A08E2}; c:\documents and settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
.
- - - - ORPHANS VERWIJDERD - - - -
.
URLSearchHooks-{00000000-6E41-4FD3-8538-502F5495E5FC} - c:\program files\Ask.com\GenericAskToolbar.dll
AddRemove-01_Simmental - c:\program files\Samsung\USB Drivers\01_Simmental\Uninstall.exe
AddRemove-02_Siberian - c:\program files\Samsung\USB Drivers\02_Siberian\Uninstall.exe
AddRemove-03_Swallowtail - c:\program files\Samsung\USB Drivers\03_Swallowtail\Uninstall.exe
AddRemove-04_semseyite - c:\program files\Samsung\USB Drivers\04_semseyite\Uninstall.exe
AddRemove-07_Schorl - c:\program files\Samsung\USB Drivers\07_Schorl\Uninstall.exe
AddRemove-09_Hsp - c:\program files\Samsung\USB Drivers\09_Hsp\Uninstall.exe
AddRemove-11_HSP_Plus_Default - c:\program files\Samsung\USB Drivers\11_HSP_Plus_Default\Uninstall.exe
AddRemove-16_Shrewsbury - c:\program files\Samsung\USB Drivers\16_Shrewsbury\Uninstall.exe
AddRemove-20_NXP_Driver - c:\program files\Samsung\USB Drivers\20_NXP_Driver\Uninstall.exe
AddRemove-24_flashusbdriver - c:\program files\Samsung\USB Drivers\24_flashusbdriver\Uninstall.exe
AddRemove-25_escape - c:\program files\Samsung\USB Drivers\25_escape\Uninstall.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2013-10-21 11:05
Windows 5.1.2600 Service Pack 3 NTFS
.
scannen van verborgen processen ...
.
scannen van verborgen autostart items ...
.
scannen van verborgen bestanden ...
.
Scan succesvol afgerond
verborgen bestanden: 0
.
**************************************************************************
.
--------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------
.
[HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (LocalSystem)
"6256FFB019F8FDFBD36745B06F4540E9AEAF222A25"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,5b,73,fc,14,5c,80,d8,45,a7,b0,41,\
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,5b,73,fc,14,5c,80,d8,45,a7,b0,41,\
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_9_900_117_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_9_900_117_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- DLLs Geladen Onder Lopende Processen ---------------------
.
- - - - - - - > 'lsass.exe'(688)
c:\program files\Avira\AntiVir Desktop\avsda.dll
.
- - - - - - - > 'explorer.exe'(3992)
c:\windows\system32\msi.dll
c:\windows\system32\wpdshserviceobj.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\portabledevicetypes.dll
c:\windows\system32\portabledeviceapi.dll
.
Voltooingstijd: 2013-10-21 11:08:33
ComboFix-quarantined-files.txt 2013-10-21 09:08
.
Pre-Run: 16.400.355.328 bytes beschikbaar
Post-Run: 17.729.323.008 bytes beschikbaar
.
WindowsXP-KB310994-SP2-Home-BootDisk-NLD.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect
.
- - End Of File - - E087CD7B692414A7FE1AE6151756CC49
3051207086651214E435112E51817DC5
ComboFix 13-10-19.02 - Eigenaar 21-10-2013 10:52:12.1.1 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.31.1043.18.503.334 [GMT 2:00]
Gestart vanuit: c:\documents and settings\Eigenaar\Bureaublad\21okt2013-9-ComboFix.exe
AV: Avira Desktop *Disabled/Updated* {AD166499-45F9-482A-A743-FDD3350758C7}
.
.
(((((((((((((((((((( Bestanden Gemaakt van 2013-09-21 to 2013-10-21 ))))))))))))))))))))))))))))))
.
.
2013-10-16 16:07 . 2013-10-16 16:07 -------- d-----w- C:\FRST
2013-10-16 15:29 . 2013-10-16 15:29 -------- d-----w- c:\program files\Speccy
2013-10-16 14:19 . 2013-10-16 14:19 -------- d-----w- c:\windows\ERUNT
2013-10-16 13:57 . 2013-10-16 14:07 -------- d-----w- C:\AdwCleaner
2013-10-13 12:52 . 2013-10-13 12:52 -------- d-----w- c:\program files\VS Revo Group
2013-10-11 08:00 . 2013-07-03 02:12 25088 -c----w- c:\windows\system32\dllcache\hidparse.sys
2013-10-11 08:00 . 2013-07-03 01:59 14976 -c----w- c:\windows\system32\dllcache\usbscan.sys
2013-10-11 07:56 . 2013-08-09 00:55 5376 -c----w- c:\windows\system32\dllcache\usbd.sys
2013-10-11 07:56 . 2009-03-18 11:02 30336 -c----w- c:\windows\system32\dllcache\usbehci.sys
2013-10-06 12:53 . 2013-06-09 19:59 216064 ----a-w- c:\windows\system32\gcapi_dll.dll
2013-10-06 11:16 . 2013-10-06 11:16 -------- d-----w- c:\program files\iPod
2013-10-06 11:15 . 2013-10-06 11:18 -------- d-----w- c:\documents and settings\All Users\Application Data\188F1432-103A-4ffb-80F1-36B633C5C9E1
2013-10-06 11:15 . 2013-10-06 11:18 -------- d-----w- c:\program files\iTunes
2013-09-24 12:34 . 2013-09-24 12:34 -------- d-----w- c:\documents and settings\Eigenaar\Local Settings\Application Data\Samsung
2013-09-24 12:34 . 2013-09-24 12:34 -------- d-----w- c:\documents and settings\Eigenaar\Application Data\Samsung
2013-09-24 12:33 . 2008-04-14 21:32 26624 ----a-w- c:\documents and settings\LocalService\Application Data\Microsoft\UPnP Device Host\upnphost\udhisapi.dll
2013-09-24 12:31 . 2013-06-21 00:07 181912 ----a-w- c:\windows\system32\drivers\ssudserd.sys
2013-09-24 12:31 . 2013-06-21 00:07 181912 ----a-w- c:\windows\system32\drivers\ssudmdm.sys
2013-09-24 12:31 . 2013-06-21 00:07 84248 ----a-w- c:\windows\system32\drivers\ssudbus.sys
2013-09-24 12:25 . 2013-04-18 17:08 4659712 ----a-w- c:\windows\system32\Redemption.dll
2013-09-24 12:24 . 2013-04-18 17:06 821824 ----a-w- c:\windows\system32\dgderapi.dll
2013-09-24 12:24 . 2013-04-18 17:06 319456 ----a-w- c:\windows\system32\DIFxAPI.dll
2013-09-24 12:24 . 2013-04-18 17:06 20032 ----a-w- c:\windows\system32\drivers\dgderdrv.sys
2013-09-24 12:23 . 2013-09-24 12:29 -------- d-----w- c:\program files\Samsung
2013-09-24 12:23 . 2013-09-24 12:28 -------- d-----w- c:\documents and settings\All Users\Application Data\Samsung
2013-09-24 12:22 . 2013-09-24 12:22 -------- d-----w- c:\documents and settings\Eigenaar\Local Settings\Application Data\Downloaded Installations
2013-09-24 11:41 . 2013-08-09 00:55 32384 -c--a-w- c:\windows\system32\dllcache\usbccgp.sys
2013-09-24 11:41 . 2013-08-09 00:55 32384 ----a-w- c:\windows\system32\drivers\usbccgp.sys
.
.
.
((((((((((((((((((((((((((((((((((((((( Find3M Rapport ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-10-10 08:34 . 2012-09-18 10:38 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-10-10 08:34 . 2012-02-15 15:07 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-09-23 18:25 . 2012-02-15 15:07 920064 ----a-w- c:\windows\system32\wininet.dll
2013-09-23 18:25 . 2008-04-14 21:33 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2013-09-23 18:25 . 2008-04-14 21:32 43520 ----a-w- c:\windows\system32\licmgr10.dll
2013-09-23 18:25 . 2008-04-14 21:32 18944 ----a-w- c:\windows\system32\corpol.dll
2013-09-23 18:07 . 2012-02-15 15:06 385024 ----a-w- c:\windows\system32\html.iec
2013-09-19 16:49 . 2013-06-24 10:51 499712 ----a-w- c:\windows\system32\msvcp71.dll
2013-09-19 16:49 . 2013-06-24 10:51 348160 ----a-w- c:\windows\system32\msvcr71.dll
2013-09-19 13:14 . 2013-03-24 11:26 88840 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2013-09-19 13:14 . 2013-03-24 11:26 136672 ----a-w- c:\windows\system32\drivers\avipbb.sys
2013-08-29 07:01 . 2012-02-15 15:07 1878784 ----a-w- c:\windows\system32\win32k.sys
2013-08-09 01:56 . 2008-04-14 21:32 391168 ----a-w- c:\windows\system32\themeui.dll
2013-08-09 00:55 . 2012-02-15 15:06 144128 ----a-w- c:\windows\system32\drivers\usbport.sys
2013-08-09 00:55 . 2004-08-04 12:00 5376 ----a-w- c:\windows\system32\drivers\usbd.sys
2013-08-05 13:30 . 2012-02-15 15:06 1289216 ----a-w- c:\windows\system32\ole32.dll
2013-08-02 23:48 . 2012-02-15 15:07 1543680 ----a-w- c:\windows\system32\wmvdecod.dll
.
.
------- Sigcheck -------
Note: Unsigned files aren't necessarily malware.
.
[-] 2010-12-09 . 9011D64E9090247C04EE767ED6C7B4BE . 739328 . . [5.1.2600.6055] . . c:\windows\system32\ntdll.dll
.
[-] 2012-02-15 . 660868E1371697C652CFC9C1CB98B371 . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
.
((((((((((((((((((((((((((((((((((((( Reg Opstartpunten )))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"KiesPreload"="c:\program files\Samsung\Kies\Kies.exe" [2013-04-23 1561968]
"KiesAirMessage"="c:\program files\Samsung\Kies\KiesAirMessage.exe" [2013-07-18 578560]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2002-12-13 155648]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2002-12-13 114688]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2013-09-19 347192]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2013-04-21 59720]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2013-05-01 421888]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2013-10-01 152392]
"WinampAgent"="c:\program files\Winamp\winampa.exe" [2013-08-22 84576]
"TkBellExe"="c:\program files\real\realplayer\update\realsched.exe" [2013-09-19 295512]
"KiesTrayAgent"="c:\program files\Samsung\Kies\KiesTrayAgent.exe" [2013-04-23 311152]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"_nltide_3"="advpack.dll" [2009-03-08 128512]
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\Common Files\\Apple\\Apple Application Support\\WebKit2WebProcess.exe"=
"c:\\Program Files\\Winamp\\winamp.exe"=
"c:\\Program Files\\SiSoftware\\SiSoftware Sandra Lite 2013.SP4\\WNt500x86\\RpcSandraSrv.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"c:\\Program Files\\SiSoftware\\SiSoftware Sandra Lite 2013.SP4\\RpcAgentSrv.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"5985:TCP"= 5985:TCP:*:Disabled:Windows Remote Management
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\IcmpSettings]
"AllowInboundEchoRequest"= 1 (0x1)
.
R1 avkmgr;avkmgr;c:\windows\system32\drivers\avkmgr.sys [24-3-2013 13:26 37352]
R2 AntiVirSchedulerService;Avira Planner;c:\program files\Avira\AntiVir Desktop\sched.exe [24-3-2013 13:26 84024]
R2 AntiVirWebService;Avira Web Protection;c:\program files\Avira\AntiVir Desktop\avwebgrd.exe [24-3-2013 13:26 815160]
R2 RealNetworks Downloader Resolver Service;RealNetworks Downloader Resolver Service;c:\program files\RealNetworks\RealDownloader\rndlresolversvc.exe [14-8-2013 15:19 39056]
R3 STAC97NA;SigmaTel 3D Environmental Audio;c:\windows\system32\drivers\stac97na.sys [7-7-2002 13:53 296179]
R3 STAC97NH;STAC97NH;c:\windows\system32\drivers\stac97nh.sys [7-7-2002 13:52 231983]
S2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [5-9-2013 10:34 171680]
S3 cpudrv;cpudrv;c:\program files\SystemRequirementsLab\cpudrv.sys [2-6-2011 10:08 11336]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\drivers\ssudbus.sys [24-9-2013 14:31 84248]
S3 SandraAgentSrv;SiSoftware Deployment Agent Service;c:\program files\SiSoftware\SiSoftware Sandra Lite 2013.SP4\RpcAgentSrv.exe [24-6-2013 12:38 71832]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\drivers\ssudmdm.sys [24-9-2013 14:31 181912]
S3 ssudserd;SAMSUNG Mobile USB Diagnostic Serial Port(DEVGURU Ver.);c:\windows\system32\drivers\ssudserd.sys [24-9-2013 14:31 181912]
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-10-20 09:12 1185744 ----a-w- c:\program files\Google\Chrome\Application\30.0.1599.101\Installer\chrmstp.exe
.
Inhoud van de 'Gedeelde Taken' map
.
2013-10-21 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-09-18 08:34]
.
2013-07-13 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2011-06-01 15:57]
.
2013-10-21 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2013-03-24 16:03]
.
2013-10-20 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2013-03-24 16:03]
.
2013-10-21 c:\windows\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1614895754-879983540-1606980848-1003.job
- c:\program files\Real\RealUpgrade\realupgrade.exe [2013-08-14 15:13]
.
2013-10-16 c:\windows\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1614895754-879983540-1606980848-1003.job
- c:\program files\Real\RealUpgrade\realupgrade.exe [2013-08-14 15:13]
.
2013-10-21 c:\windows\Tasks\User_Feed_Synchronization-{D00FDB6F-8963-405A-804E-BB510CC46110}.job
- c:\windows\system32\msfeedssync.exe [2012-09-18 02:31]
.
.
------- Bijkomende Scan -------
.
uStart Page = hxxp://www.bing.com/
uInternet Settings,ProxyOverride = *.local
LSP: c:\program files\Avira\AntiVir Desktop\avsda.dll
TCP: DhcpNameServer = 192.168.23.1
FF - ProfilePath - c:\documents and settings\Eigenaar\Application Data\Mozilla\Firefox\Profiles\rjfq1y1i.default\
FF - prefs.js: browser.search.selectedEngine - Wikipedia (nl)
FF - ExtSQL: 2013-09-19 18:53; {DF153AFF-6948-45d7-AC98-4FC4AF8A08E2}; c:\documents and settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
.
- - - - ORPHANS VERWIJDERD - - - -
.
URLSearchHooks-{00000000-6E41-4FD3-8538-502F5495E5FC} - c:\program files\Ask.com\GenericAskToolbar.dll
AddRemove-01_Simmental - c:\program files\Samsung\USB Drivers\01_Simmental\Uninstall.exe
AddRemove-02_Siberian - c:\program files\Samsung\USB Drivers\02_Siberian\Uninstall.exe
AddRemove-03_Swallowtail - c:\program files\Samsung\USB Drivers\03_Swallowtail\Uninstall.exe
AddRemove-04_semseyite - c:\program files\Samsung\USB Drivers\04_semseyite\Uninstall.exe
AddRemove-07_Schorl - c:\program files\Samsung\USB Drivers\07_Schorl\Uninstall.exe
AddRemove-09_Hsp - c:\program files\Samsung\USB Drivers\09_Hsp\Uninstall.exe
AddRemove-11_HSP_Plus_Default - c:\program files\Samsung\USB Drivers\11_HSP_Plus_Default\Uninstall.exe
AddRemove-16_Shrewsbury - c:\program files\Samsung\USB Drivers\16_Shrewsbury\Uninstall.exe
AddRemove-20_NXP_Driver - c:\program files\Samsung\USB Drivers\20_NXP_Driver\Uninstall.exe
AddRemove-24_flashusbdriver - c:\program files\Samsung\USB Drivers\24_flashusbdriver\Uninstall.exe
AddRemove-25_escape - c:\program files\Samsung\USB Drivers\25_escape\Uninstall.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2013-10-21 11:05
Windows 5.1.2600 Service Pack 3 NTFS
.
scannen van verborgen processen ...
.
scannen van verborgen autostart items ...
.
scannen van verborgen bestanden ...
.
Scan succesvol afgerond
verborgen bestanden: 0
.
**************************************************************************
.
--------------------- VERGRENDELDE REGISTER SLEUTELS ---------------------
.
[HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (LocalSystem)
"6256FFB019F8FDFBD36745B06F4540E9AEAF222A25"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,5b,73,fc,14,5c,80,d8,45,a7,b0,41,\
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,5b,73,fc,14,5c,80,d8,45,a7,b0,41,\
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_9_900_117_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_9_900_117_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- DLLs Geladen Onder Lopende Processen ---------------------
.
- - - - - - - > 'lsass.exe'(688)
c:\program files\Avira\AntiVir Desktop\avsda.dll
.
- - - - - - - > 'explorer.exe'(3992)
c:\windows\system32\msi.dll
c:\windows\system32\wpdshserviceobj.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\portabledevicetypes.dll
c:\windows\system32\portabledeviceapi.dll
.
Voltooingstijd: 2013-10-21 11:08:33
ComboFix-quarantined-files.txt 2013-10-21 09:08
.
Pre-Run: 16.400.355.328 bytes beschikbaar
Post-Run: 17.729.323.008 bytes beschikbaar
.
WindowsXP-KB310994-SP2-Home-BootDisk-NLD.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect
.
- - End Of File - - E087CD7B692414A7FE1AE6151756CC49
3051207086651214E435112E51817DC5
11:14:01.0071 0x0c68 TDSS rootkit removing tool 3.0.0.14 Oct 15 2013 15:35:38
11:14:08.0071 0x0c68 ============================================================
11:14:08.0071 0x0c68 Current date / time: 2013/10/21 11:14:08.0071
11:14:08.0071 0x0c68 SystemInfo:
11:14:08.0071 0x0c68
11:14:08.0071 0x0c68 OS Version: 5.1.2600 ServicePack: 3.0
11:14:08.0071 0x0c68 Product type: Workstation
11:14:08.0071 0x0c68 ComputerName: EIGENAAR-PC
11:14:08.0071 0x0c68 UserName: Eigenaar
11:14:08.0071 0x0c68 Windows directory: C:\WINDOWS
11:14:08.0071 0x0c68 System windows directory: C:\WINDOWS
11:14:08.0071 0x0c68 Processor architecture: Intel x86
11:14:08.0071 0x0c68 Number of processors: 1
11:14:08.0071 0x0c68 Page size: 0x1000
11:14:08.0071 0x0c68 Boot type: Normal boot
11:14:08.0071 0x0c68 ============================================================
11:14:12.0321 0x0c68 System UUID: {77951915-F645-20AC-BC98-643446366373}
11:14:13.0243 0x0c68 Drive \Device\Harddisk0\DR0 - Size: 0x9924A7E00 (38.29 Gb), SectorSize: 0x200, Cylinders: 0x1385, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
11:14:13.0258 0x0c68 Drive \Device\Harddisk1\DR1 - Size: 0x9924A7E00 (38.29 Gb), SectorSize: 0x200, Cylinders: 0x1385, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
11:14:13.0258 0x0c68 ============================================================
11:14:13.0258 0x0c68 \Device\Harddisk0\DR0:
11:14:13.0258 0x0c68 MBR partitions:
11:14:13.0258 0x0c68 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x4C8ED06
11:14:13.0258 0x0c68 \Device\Harddisk1\DR1:
11:14:13.0258 0x0c68 MBR partitions:
11:14:13.0258 0x0c68 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x4C8ED06
11:14:13.0258 0x0c68 ============================================================
11:14:13.0290 0x0c68 C: <-> \Device\Harddisk0\DR0\Partition1
11:14:13.0305 0x0c68 D: <-> \Device\Harddisk1\DR1\Partition1
11:14:13.0305 0x0c68 ============================================================
11:14:13.0305 0x0c68 Initialize success
11:14:13.0305 0x0c68 ============================================================
11:14:20.0211 0x0950 ============================================================
11:14:20.0211 0x0950 Scan started
11:14:20.0211 0x0950 Mode: Manual;
11:14:20.0211 0x0950 ============================================================
11:14:20.0211 0x0950 KSN ping started
11:14:23.0211 0x0950 KSN ping finished: true
11:14:24.0024 0x0950 ================ Scan system memory ========================
11:14:24.0024 0x0950 System memory - ok
11:14:24.0040 0x0950 ================ Scan services =============================
11:14:24.0336 0x0950 Abiosdsk - ok
11:14:24.0430 0x0950 [ 02273A448BA21A7D447DAEB47810D40C, 1CB409BE2648ECA04A128230C6DADEA3ADA0720E24BA3BA9267D09751972E519 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
11:14:24.0430 0x0950 ACPI - ok
11:14:24.0618 0x0950 [ 63F517B1A87DABF3F5ACB8A7952FC1D1, 9A08759B9E02509D47FDCEF47C3B8E9081E687D7931D56672A6285E8C3520185 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
11:14:24.0618 0x0950 ACPIEC - ok
11:14:24.0727 0x0950 [ A283108E14F3970432C21AF4C0CB1BCE, 1D3219EF916D54232838870EDE557296AACB714B456ED0AAE0DE3CE3822F4643 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
11:14:24.0743 0x0950 AdobeFlashPlayerUpdateSvc - ok
11:14:24.0821 0x0950 [ 8BED39E3C35D6A489438B8141717A557, 1B5796E56B0927360CE0759641B1151828BC0A9E45620D2B2D880491F5CE33D0 ] aec C:\WINDOWS\system32\drivers\aec.sys
11:14:24.0821 0x0950 aec - ok
11:14:24.0899 0x0950 [ F6B7B1ECD7B41736BDB6FF4B092BCB79, B892C7303E08238C025409D602CB2F58D273B19B81CF04E26EA52A27EE7706DB ] AFD C:\WINDOWS\System32\drivers\afd.sys
11:14:24.0899 0x0950 AFD - ok
11:14:24.0946 0x0950 [ 8BED67D13DCB55B3E9FF6DAC4C6D3B49, ED4EE32A51C7650FB20D10765ADB01B8743228B6BC712D4509571947BAC3AC58 ] Alerter C:\WINDOWS\system32\alrsvc.dll
11:14:24.0946 0x0950 Alerter - ok
11:14:24.0993 0x0950 [ DAB2A89FDE5CF791161200D90C1BCB12, 7F14CE7C85CDD5944134CC97A9B3AA0E7A0724D6D7A3DB3E0F68A4E9A1FE1446 ] ALG C:\WINDOWS\System32\alg.exe
11:14:24.0993 0x0950 ALG - ok
11:14:25.0024 0x0950 AliIde - ok
11:14:25.0180 0x0950 [ 27C31F89693EFA9BAEFA0F1A38538BA5, 6DF0497A3A3508B513F02349D345C90D03ECE98FCD6E484E17F15043AFFF2D10 ] AntiVirSchedulerService C:\Program Files\Avira\AntiVir Desktop\sched.exe
11:14:25.0180 0x0950 AntiVirSchedulerService - ok
11:14:25.0243 0x0950 [ A6E8FEE22D8A9162D1A93EB90407DC82, 370CC9405E11D4777ACFE9B44A983F96C59A0D8946E17C0D10AEA5F2A57AB441 ] AntiVirService C:\Program Files\Avira\AntiVir Desktop\avguard.exe
11:14:25.0243 0x0950 AntiVirService - ok
11:14:25.0352 0x0950 [ 404BB7290836DBD9A3BD3ACD6145FF34, 23CA441A096666183337B2A4828A0C0C59F95D8E2DBF99F75FECBCA7D00356B0 ] AntiVirWebService C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE
11:14:25.0383 0x0950 AntiVirWebService - ok
11:14:25.0524 0x0950 [ 30E3850F303EAE5C364782EA78579CC9, 8C94E5A9052F6E794685194EEACB31A174A947D60246908B6A0DEFA081A747A3 ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
11:14:25.0524 0x0950 Apple Mobile Device - ok
11:14:25.0555 0x0950 AppMgmt - ok
11:14:25.0711 0x0950 [ 0E5E4957549056E2BF2C49F4F6B601AD, F7F19FDC906B719A3516D30A9B4A2262C8CC5B36B94E3D4195C345EC4610FF2B ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
11:14:25.0711 0x0950 aspnet_state - ok
11:14:25.0774 0x0950 [ B153AFFAC761E7F5FCFA822B9C4E97BC, 7E60F572A6B3C6219E3C86225AA37243AFFD74337DB7F108B04778042E5CC959 ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
11:14:25.0774 0x0950 AsyncMac - ok
11:14:25.0836 0x0950 [ 9F3A2F5AA6875C72BF062C712CFA2674, B4DF1D2C56A593C6B54DE57395E3B51D288F547842893B32B0F59228A0CF70B9 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
11:14:25.0836 0x0950 atapi - ok
11:14:25.0852 0x0950 Atdisk - ok
11:14:25.0883 0x0950 [ 9916C1225104BA14794209CFA8012159, 5D6F05F715C52A16D05CAE15C3DFE77A139A7F27F7AE710EC9A10F9EE05115A1 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
11:14:25.0883 0x0950 Atmarpc - ok
11:14:25.0915 0x0950 [ F10745ED3195360E69AA4A6E7768C0E0, 0D8F285AA9AAB23EBF6BFCCDD631134BBFC479790984B8A728D3B1C988AD3F15 ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
11:14:25.0915 0x0950 AudioSrv - ok
11:14:25.0977 0x0950 [ D9F724AA26C010A217C97606B160ED68, 329B5118F2409731D06FDAE85B6ADD64A048292801BCB3546651CEB303111695 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
11:14:25.0977 0x0950 audstub - ok
11:14:26.0055 0x0950 [ 40A34E457431625086F7E161E59A0528, ACB271F16F457173590E0563BEC6EE88A1154E8D369BB18C94D01AF492B99CC5 ] avgntflt C:\WINDOWS\system32\DRIVERS\avgntflt.sys
11:14:26.0055 0x0950 avgntflt - ok
11:14:26.0102 0x0950 [ F260F2EE3D21D00BEC0B08068E27BADB, 5E7BC4E54013AFB57FFF8B002B16CE7DC3F2CAB090D72D0C8EB6A403853AD180 ] avipbb C:\WINDOWS\system32\DRIVERS\avipbb.sys
11:14:26.0102 0x0950 avipbb - ok
11:14:26.0133 0x0950 [ CB8741CD7B126499FED40C9B197F6AC5, F682820A20CED26CD2E6A2531C721DB8985BCC1A03582BC54A706E9AA1A8B615 ] avkmgr C:\WINDOWS\system32\DRIVERS\avkmgr.sys
11:14:26.0133 0x0950 avkmgr - ok
11:14:26.0196 0x0950 [ DA1F27D85E0D1525F6621372E7B685E9, 5A81A46A3BDD19DAFC6C87D277267A5D44F3A1B5302F2CC1111D84B7BAD5610D ] Beep C:\WINDOWS\system32\drivers\Beep.sys
11:14:26.0211 0x0950 Beep - ok
11:14:26.0290 0x0950 [ 5C0073A51C4873430FA8B262E92183FF, DE035B8F5BDCA347CBB753FE5B731CE41D4C1C49E7091BD90548B8A9C0A1D073 ] BITS C:\WINDOWS\system32\qmgr.dll
11:14:26.0305 0x0950 BITS - ok
11:14:26.0446 0x0950 [ DB5BEA73EDAF19AC68B2C0FAD0F92B1A, 10F21999FF6B1D410EBF280F7F27DEACA5289739CF12F4293B614B8FC6C88DCC ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
11:14:26.0461 0x0950 Bonjour Service - ok
11:14:26.0555 0x0950 [ 307DC67231986A9552FA515F1233C1AB, 66B80F1AB210313607829DDB04A0B30EF91159CB0BD50E81ED26C0A5CB22E38C ] Browser C:\WINDOWS\System32\browser.dll
11:14:26.0555 0x0950 Browser - ok
11:14:26.0727 0x0950 catchme - ok
11:14:26.0774 0x0950 [ C1B486A7658353D33A10CC15211A873B, AA4DD9E7AAE5AAB1146B360B17001F975D2F29A1281CF7B13E7136480410F347 ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
11:14:26.0774 0x0950 Cdaudio - ok
11:14:26.0836 0x0950 [ C885B02847F5D2FD45A24E219ED93B32, B26B2F8E3A831E2B65EB0C5195B0645CD50E22615CE79C9B0B391CD563B121DB ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
11:14:26.0852 0x0950 Cdfs - ok
11:14:26.0915 0x0950 [ 1F4260CC5B42272D71F79E570A27A4FE, B51C2A3ED3C309953D0EA45869C8E464C10F2533DADE9E0286AF674979098D1D ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
11:14:26.0930 0x0950 Cdrom - ok
11:14:26.0946 0x0950 Changer - ok
11:14:26.0977 0x0950 [ BD85400700B80FBE3D4A3412BCE74861, 78419D94EEDD5C6C82A09425DADA30347D47897D40090E65970DB54F106E014F ] CiSvc C:\WINDOWS\system32\cisvc.exe
11:14:26.0977 0x0950 CiSvc - ok
11:14:27.0008 0x0950 [ 4FB6108130829666C8FE96B442FEAD94, 9811037E2A195C05B442F928C4E95FDD1AF249461527269ED8508116A18DBF28 ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
11:14:27.0024 0x0950 ClipSrv - ok
11:14:27.0102 0x0950 [ D87ACAED61E417BBA546CED5E7E36D9C, 14AC6034A5BC0FB2A1AFDAD42BEF4DE641556E54AD30D0C46765660A4BE55462 ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
11:14:27.0102 0x0950 clr_optimization_v2.0.50727_32 - ok
11:14:27.0211 0x0950 [ C5A75EB48E2344ABDC162BDA79E16841, 6070A8AAFD38FBC6A68A2B10C20117612354DF21B4492D90CA522BFB6870D726 ] clr_optimization_v4.0.30319_32 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
11:14:27.0227 0x0950 clr_optimization_v4.0.30319_32 - ok
11:14:27.0243 0x0950 CmdIde - ok
11:14:27.0258 0x0950 COMSysApp - ok
11:14:27.0321 0x0950 [ D01F685F8B4598D144B0CCE9FF95D8D5, A68EF814CDBD7291DEF4745FE14D5080041BD3275AB12629C7811506AF2B8E17 ] cpudrv C:\Program Files\SystemRequirementsLab\cpudrv.sys
11:14:27.0321 0x0950 cpudrv - ok
11:14:27.0368 0x0950 [ 0A9CF5D3CF63A8699F28C814EF821C7E, D6F09CABB25E557023312EE9921CCC35096B7B36C6A95A520D7514C33F70FCB2 ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
11:14:27.0368 0x0950 CryptSvc - ok
11:14:27.0461 0x0950 [ D8D28F6CABEC7D42B8E487E290563B9A, 620FC20797581CDF4BF3ADF6D13F0904F4EA4C118510815F740E0B6E3ED6FE93 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
11:14:27.0477 0x0950 DcomLaunch - ok
11:14:27.0540 0x0950 [ 54D0B8343CE8C22412A5F29D32EFD211, D78BF09680FF19523C84E862593B45637D91A079C79CAB63A13726E7ACA8ABBF ] dg_ssudbus C:\WINDOWS\system32\DRIVERS\ssudbus.sys
11:14:27.0555 0x0950 dg_ssudbus - ok
11:14:27.0618 0x0950 [ 99F2C23ED213C7E0C10A778CB8E98C3B, 4EA22C7660860618FD84811F406FA044B8781D120546E4452CC6BF1B846D6699 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
11:14:27.0618 0x0950 Dhcp - ok
11:14:27.0649 0x0950 [ 47B6AAEC570F2C11D8BAD80A064D8ED1, 83AAFD7D2E44BAD967430AF72ABEC3E8F2985BAF71D06ADFC2B92EC4CD644012 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
11:14:27.0649 0x0950 Disk - ok
11:14:27.0680 0x0950 dmadmin - ok
11:14:27.0758 0x0950 [ DEC123E0C75971D0CC7A6C6A75E28429, 7520BD43B0CCCC2F17A9BC7E5330341283BAF6DD10828B1CEBD8634C8EBFAA4F ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
11:14:27.0790 0x0950 dmboot - ok
11:14:27.0836 0x0950 [ 7268E66259722F6228C730685B201092, 3B8A38FA33D7C7A523490639B35CF165D512DB6BA64E5F606A54E2C2F12FD121 ] dmio C:\WINDOWS\system32\drivers\dmio.sys
11:14:27.0836 0x0950 dmio - ok
11:14:27.0883 0x0950 [ E9317282A63CA4D188C0DF5E09C6AC5F, D41E002F555FE9015EF620975255F58BB79198CA1FF0E09EC950CB450FF77CF7 ] dmload C:\WINDOWS\system32\drivers\dmload.sys
11:14:27.0883 0x0950 dmload - ok
11:14:27.0915 0x0950 [ 127DB74184E2D3D31655DA525A5EFDE1, 9A632E97AE3C6CD05E36640DFE23420CA1164B5D33E2D849E31CB7BEF104C44C ] dmserver C:\WINDOWS\System32\dmserver.dll
11:14:27.0915 0x0950 dmserver - ok
11:14:27.0961 0x0950 [ 8A208DFCF89792A484E76C40E5F50B45, 4E40E2EB38C6254E7CAA488200E89EE7DEBBBA773890BC6A84313CC68178D54F ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
11:14:27.0961 0x0950 DMusic - ok
11:14:27.0993 0x0950 [ F41AE23847F084F92E283D86C2A9EFCC, 79813051F215CDE3761FFA039771EA52E9178B2C336BCBF057C0A989492CAB7E ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
11:14:27.0993 0x0950 Dnscache - ok
11:14:28.0040 0x0950 [ 90EE765E1A598B578852901F74F914F1, 6A262A9234E1E9A19AF948A5E362F4B43CBC6EF2CCE796D4602D303A519CD545 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
11:14:28.0040 0x0950 Dot3svc - ok
11:14:28.0086 0x0950 [ 8F5FCFF8E8848AFAC920905FBD9D33C8, C8C6FB97AB0871C8C88A2201525A5CF10D5131CB6980D32692ED7A8F58399AD5 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
11:14:28.0086 0x0950 drmkaud - ok
11:14:28.0149 0x0950 [ FE9CB643A034285031502D3369E5A869, 999704A1BDDD391F928901DCE970C48CE5101DA2D9EDFF7EA6DB29A558DEE723 ] E100B C:\WINDOWS\system32\DRIVERS\e100b325.sys
11:14:28.0149 0x0950 E100B - ok
11:14:28.0211 0x0950 [ E6BBDEBF7081899D161C773E8D84D015, BD0059A3B9A154F2140F35CBF7402F8BB62260087917DA9DE817DEC161D73B8C ] EapHost C:\WINDOWS\System32\eapsvc.dll
11:14:28.0211 0x0950 EapHost - ok
11:14:28.0243 0x0950 [ 2F5C7F650B7AF178988946EE4B0D9C01, 3FF2BAAB10A26A3E7A8DA28BE4689623E603403E4B11191BC66E9E4BA8E3988A ] ERSvc C:\WINDOWS\System32\ersvc.dll
11:14:28.0243 0x0950 ERSvc - ok
11:14:28.0305 0x0950 [ D98A222A707FFE40043E533FE7A6BA24, D5609A1744061C1943F4ACEAD0278706FF6CF3D16AB206A38B0FC9B86B1387C2 ] Eventlog C:\WINDOWS\system32\services.exe
11:14:28.0321 0x0950 Eventlog - ok
11:14:28.0352 0x0950 [ F6C37073A269C163A5FDAE5BFF47F367, DA88F3336EEF727330B394AF3F039CC906783F00CA51B791CE99DDAC1D0F31F3 ] EventSystem C:\WINDOWS\system32\es.dll
11:14:28.0352 0x0950 EventSystem - ok
11:14:28.0399 0x0950 [ 4D893323DAE445E34A4C9038B0551BC9, 39EE6D1EA496568368F7E8167EFE444CAEDD34A760EC9107EC383D8D17485EFD ] exFat C:\WINDOWS\system32\drivers\exFat.sys
11:14:28.0415 0x0950 exFat - ok
11:14:28.0477 0x0950 [ 38D332A6D56AF32635675F132548343E, E6909DB836AF679B4F4D62C7396D6C82769CC7ABB8C919C2AABFE934FCE268F6 ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
11:14:28.0477 0x0950 Fastfat - ok
11:14:28.0555 0x0950 [ C28A9E9D28ACDAF8097BE4578C49559B, 6FAEEC5F6A2484052EB8DA537F0BA842A7D600AE654A55A8142CD6B7C50C97D1 ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
11:14:28.0571 0x0950 FastUserSwitchingCompatibility - ok
11:14:28.0602 0x0950 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81, 8307A532AB4D05CBBCE206DC2759497708BF5AAA880BD00F0E4F281D8578A1F5 ] Fdc C:\WINDOWS\system32\DRIVERS\fdc.sys
11:14:28.0602 0x0950 Fdc - ok
11:14:28.0649 0x0950 [ 8BFFFB5AC954E19DFDB96D56512AA518, D4C2502B8B6A1B79711B817AEB671CBA23FBF8CE77743BD892ABFEB7201963D7 ] Fips C:\WINDOWS\system32\drivers\Fips.sys
11:14:28.0665 0x0950 Fips - ok
11:14:28.0680 0x0950 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0, 69C271AD5BCEBFD8AE5A769BDD7EC51256DA3A8ADAD5D12E5C0D13F4E82D8805 ] Flpydisk C:\WINDOWS\system32\DRIVERS\flpydisk.sys
11:14:28.0680 0x0950 Flpydisk - ok
11:14:28.0758 0x0950 [ B2CF4B0786F8212CB92ED2B50C6DB6B0, 280F5CF8A90F7BEDE73ADD0DD0F8952088133A7CA9A3D3B7041957E33B36845D ] FltMgr C:\WINDOWS\system32\DRIVERS\fltMgr.sys
11:14:28.0758 0x0950 FltMgr - ok
11:14:28.0868 0x0950 [ 8BA7C024070F2B7FDD98ED8A4BA41789, 47585006F86B2C6016EC54250A416794792D1E4024FF229C120BC25B684AF66A ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
11:14:28.0883 0x0950 FontCache3.0.0.0 - ok
11:14:28.0930 0x0950 [ 30D42943A54704EF13E2562911DBFCEA, 6E0904E60A2F8B62BD34E5EDA2DA2240DFBCE1288C58CB4D819F0025ECF76763 ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
11:14:28.0930 0x0950 Fs_Rec - ok
11:14:28.0961 0x0950 [ FA8CA22E70245C81FF29C36AF56292FC, 29BE006A4F5B125D1D3A556199690CCF0B537917DD004033659141E72CF3AD49 ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
11:14:28.0977 0x0950 Ftdisk - ok
11:14:29.0040 0x0950 [ 185ADA973B5020655CEE342059A86CBB, D3E352DFAF30761505480A4C557D980083F65EC5BD46E2656B2114D47B272A89 ] GEARAspiWDM C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
11:14:29.0040 0x0950 GEARAspiWDM - ok
11:14:29.0102 0x0950 [ 0A02C63C8B144BD8C86B103DEE7C86A2, 7A3235DD3E1995DD72B212FAEB3ECA2A974434DE9BF6D269EA11BA65A80E7E50 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
11:14:29.0102 0x0950 Gpc - ok
11:14:29.0211 0x0950 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
11:14:29.0227 0x0950 gupdate - ok
11:14:29.0243 0x0950 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
11:14:29.0258 0x0950 gupdatem - ok
11:14:29.0352 0x0950 [ 5327BAD9B35C33D2A64B64E4CF282ECD, 766F9BDE4CAAA058F023C35605E3BD0C267F5D1B6A98A0809F33D89708BA9506 ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
11:14:29.0352 0x0950 helpsvc - ok
11:14:29.0368 0x0950 HidServ - ok
11:14:29.0430 0x0950 [ 1FF903FFA2DA1704E5A5443D37D8E49E, AB8B43B8869A3CDDA6931BB670CC8D38B89F95B29F39A5DE92DC7BF75D7891CA ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
11:14:29.0430 0x0950 hkmsvc - ok
11:14:29.0555 0x0950 [ 937031C085718C1C04A9C0864625EC6B, B812A70063750090202D646F466BD7F0377413F74AD109F8097CB2A1FB42466B ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
11:14:29.0555 0x0950 HTTP - ok
11:14:29.0618 0x0950 [ 2529C7BA05242BEED0027F554D0513BB, 5110D3D7A604B1F9606C6E1A6029263943B005E0BFEEC49EFB9E7D31A83B2744 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
11:14:29.0618 0x0950 HTTPFilter - ok
11:14:29.0680 0x0950 [ C43372D0682F8E32E4EC21117E089EC0, 06C546CA6D75D5C660941957163DF1F2109DFDF8F26C3DCE70DAEFF985ABCF97 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
11:14:29.0680 0x0950 i8042prt - ok
11:14:29.0743 0x0950 [ B652FB9DF6345131112BA9351C875B6F, 849ABEAB7FBCBB203D35C36BBAAAE8B7E237E1AF0FED7F08F262C2B3BAA8330D ] ialm C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
11:14:29.0743 0x0950 ialm - ok
11:14:29.0868 0x0950 [ C01AC32DC5C03076CFB852CB5DA5229C, A4D7749220B5BC965D96A267F1E02FE8284A230BA249109207BD4B9EA8DFAC96 ] idsvc C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
11:14:29.0899 0x0950 idsvc - ok
11:14:29.0961 0x0950 [ 083A052659F5310DD8B6A6CB05EDCF8E, 48D39B03FFB6FAA1529B774443BA12618AE3982D9F65A7B9D18F2269F78B31F4 ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
11:14:29.0961 0x0950 Imapi - ok
11:14:29.0993 0x0950 [ A117772F94C854DE5D1BBC1F1962B192, 420FB45771FF2E068A9D28B290117E94741D8323F90156B5E3E17C1C35AD05F4 ] ImapiService C:\WINDOWS\system32\imapi.exe
11:14:30.0008 0x0950 ImapiService - ok
11:14:30.0102 0x0950 [ 72C63AD984D427D34BD5B9DB838D88EB, 01EC4AB4E705B7DE34CDA438FBA6268FC261F1D87E749D1C300841FD9CB0F3E0 ] IntelIde C:\WINDOWS\system32\DRIVERS\intelide.sys
11:14:30.0102 0x0950 IntelIde - ok
11:14:30.0149 0x0950 [ 2D2254FAC267E6B1C7865E8EBEF60C6D, 0037A5673E8F1CED478BA23BF3C90B08DBCF2FCC291558D2487FF373F5A00B8F ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
11:14:30.0149 0x0950 intelppm - ok
11:14:30.0196 0x0950 [ 3BB22519A194418D5FEC05D800A19AD0, F6662F440950596DC1382DD1DB5D7891CCEA30A6062BEA942C18445B5F0D8B16 ] Ip6Fw C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys
11:14:30.0196 0x0950 Ip6Fw - ok
11:14:30.0258 0x0950 [ 731F22BA402EE4B62748ADAF6363C182, 5C3BEBD008A5BE4DC2F92076FF41A10DDC01E10EC7E6552213CFA11970811848 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
11:14:30.0258 0x0950 IpFilterDriver - ok
11:14:30.0274 0x0950 [ B87AB476DCF76E72010632B5550955F5, E6E74D3A86A7917A8BAED44F8E97CCD2EB171E4E4B27E9907F60D1523FAF319A ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
11:14:30.0274 0x0950 IpInIp - ok
11:14:30.0336 0x0950 [ CC748EA12C6EFFDE940EE98098BF96BB, AF523E21C25D9A1715EFEA573E4F52AF5D4FC9F28A2D613F5DB629C186C439E0 ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
11:14:30.0336 0x0950 IpNat - ok
11:14:30.0430 0x0950 [ 061614179585BE398A73B9B3AF111310, BE715790531CBF3E038C6C2083A0802FA492D1DCAB3ACFE035DF72E3D6A4B83B ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
11:14:30.0446 0x0950 iPod Service - ok
11:14:30.0508 0x0950 [ 23C74D75E36E7158768DD63D92789A91, 394D296F38E7D8EFD91A6EEC301D9CE6AF910E35EB9819F1A9E3363863AEDFDC ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
11:14:30.0508 0x0950 IPSec - ok
11:14:30.0571 0x0950 [ C93C9FF7B04D772627A3646D89F7BF89, 805FA48E7A46D4F10240BF880A2468F53DEA36E83004399228AB70DB7D20544A ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
11:14:30.0571 0x0950 IRENUM - ok
11:14:30.0649 0x0950 [ 0B78E1A31340E1FB1E389D5633F7C3A0, A6BCA5940E5F89602BBB127481CF48E39E7834375D13947A047336E136ADFDA7 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
11:14:30.0649 0x0950 isapnp - ok
11:14:30.0711 0x0950 [ 380397621E94B32C744E7B2CC1330390, 6215E8F881642E798D6F2ABC01605D78696B1AA0D3A50C243BB061BFF9AC7BC3 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
11:14:30.0711 0x0950 Kbdclass - ok
11:14:30.0743 0x0950 [ 692BCF44383D056AED41B045A323D378, 1A99DEE83FFAF64E73067FC049C0A4CE07D94E4AE31EFA17B38CEFA9E41D67DC ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
11:14:30.0758 0x0950 kmixer - ok
11:14:30.0821 0x0950 [ C6EBF1D6AD71DF30DB49B8D3287E1368, 09A8F5BCE774BA8881195AB390692048C3B05EDC8C0BF3ACBC673FD391A29D72 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
11:14:30.0821 0x0950 KSecDD - ok
11:14:30.0883 0x0950 [ AB3C73CFC4D21540C51671EDF6E2C989, EA2B83DA23AC3169DA3682AA45E9A215AEDBF9C24A908C1A3BC24DAA16042174 ] LanmanServer C:\WINDOWS\System32\srvsvc.dll
11:14:30.0899 0x0950 LanmanServer - ok
11:14:30.0961 0x0950 [ F2BB3D20CD27EE6ED1FD5954DE629441, 2D72EB11E82281806AA0592A6A93C8448401B56A1D7EA2882CE697734A19B02B ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
11:14:30.0977 0x0950 lanmanworkstation - ok
11:14:30.0993 0x0950 lbrtfdc - ok
11:14:31.0086 0x0950 [ 91AE20C5C2776C511994AA1308C05283, BF085E2F5974404336475CC2E159F4524015AA01B0C76C176AC398DD30AD90A6 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
11:14:31.0086 0x0950 LmHosts - ok
11:14:31.0133 0x0950 [ C56A45A03DCA11712DE9FDF98224230B, A1D1F5B12736A9A4300E554930FC11DAFFD901C8ACFC0994BA6FF4A304BCF2CA ] Messenger C:\WINDOWS\System32\msgsvc.dll
11:14:31.0133 0x0950 Messenger - ok
11:14:31.0180 0x0950 [ 4AE068242760A1FB6E1A44BF4E16AFA6, 1FB771162B96AAF787AC24867B818DF8511F0780BB094FA9A38C11D8DBFE68BC ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
11:14:31.0180 0x0950 mnmdd - ok
11:14:31.0227 0x0950 [ 5B1D994DCF1895AFA27600E46A2F0FEA, C43E8CEC5865C0EC4BD4E48980C85D6BA7E80A9F702B6E559FE4DCCC16F655C3 ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe
11:14:31.0227 0x0950 mnmsrvc - ok
11:14:31.0290 0x0950 [ 8114EEAC353F549331AB73E9AF4219ED, 60B2FC56A2CF6335CFAA62154743863716CBAFEF38A716C755FAC74790C22C56 ] Modem C:\WINDOWS\system32\drivers\Modem.sys
11:14:31.0290 0x0950 Modem - ok
11:14:31.0336 0x0950 [ 1A4E2214DD63E4A876463D3427EE8261, E3C137E1A05F46170538D1A2FC23F146A75FA556ADCC1CD48CE6FE412B41DBC5 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
11:14:31.0336 0x0950 Mouclass - ok
11:14:31.0368 0x0950 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD, 2A5E15ED2C24C6C65EF2F7E1FD93374774076C9D8D451E4422561F4D269C012F ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
11:14:31.0368 0x0950 MountMgr - ok
11:14:31.0446 0x0950 [ 3121304FEBE28A90AF199DBF1AFD4518, 95B5188B71ADB8934183828C2AEEF16620CB5C97C7141DF4A7140D72B79210D9 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
11:14:31.0446 0x0950 MozillaMaintenance - ok
11:14:31.0508 0x0950 [ 4FEFD389D71126EE581B9F9CB2918BE4, 64C527DEFF0F8B6CB0318B14BC7F34F8221D8FF6D5A128F9C2C4779537245F7B ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
11:14:31.0508 0x0950 MRxDAV - ok
11:14:31.0602 0x0950 [ FB2FCCC70F7174C7BF64F48E96D3ADF4, 484B4DF0A500CAE8AFA4F3A6393615A3963D91C95939025DF1A172C9A67D951D ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
11:14:31.0618 0x0950 MRxSmb - ok
11:14:31.0680 0x0950 [ 21EA21984D7D1AD50DB2E627020AB14C, 5F0BA1973B30CCEE1FED562BA47B2F5E03A7F0EDB1A24200F2B14FE562D021A3 ] MSDTC C:\WINDOWS\system32\msdtc.exe
11:14:31.0680 0x0950 MSDTC - ok
11:14:31.0774 0x0950 [ C941EA2454BA8350021D774DAF0F1027, C940E978C7B66A713A0FDAB54B5F995DF59D089AFCD96221DD3222948CD49BBD ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
11:14:31.0774 0x0950 Msfs - ok
11:14:31.0790 0x0950 MSIServer - ok
11:14:31.0852 0x0950 [ D1575E71568F4D9E14CA56B7B0453BF1, 4ABE0E24786C0D39FA2B885447E56204CA6942FB175E534DCE675D7BCF0B176A ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
11:14:31.0852 0x0950 MSKSSRV - ok
11:14:31.0899 0x0950 [ 325BB26842FC7CCC1FCCE2C457317F3E, C07BE560513B1FB91D756494F0BA4AEEB2E1998DE0E1C21EE83DB1183B0CEE91 ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
11:14:31.0899 0x0950 MSPCLOCK - ok
11:14:31.0930 0x0950 [ BAD59648BA099DA4A17680B39730CB3D, 9AD4C7C94C186C8815D0BC75DCAFB962158DA6935A244BA243EDDDEB33F9816C ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
11:14:31.0930 0x0950 MSPQM - ok
11:14:31.0993 0x0950 [ AF5F4F3F14A8EA2C26DE30F7A1E17136, AC93A1E4ABB0D038B772E429015567E44CC2EDB66C54DBE23A5F98176FAC1520 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
11:14:31.0993 0x0950 mssmbios - ok
11:14:32.0040 0x0950 [ F7B1AD991491F02AF6DA70B00B8BF114, 4EF6B2FF3138CB461D631EB9395C52DE4075B58E8A3C13847A3AFF591536CA72 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
11:14:32.0040 0x0950 Mup - ok
11:14:32.0118 0x0950 [ 87E394C810794D3C70CF22E8316CB23E, D8CDEB692AA52FC647059F268E075092A213DC1AE70F406589728EF9C7BD28D8 ] napagent C:\WINDOWS\System32\qagentrt.dll
11:14:32.0133 0x0950 napagent - ok
11:14:32.0196 0x0950 [ 1DF7F42665C94B825322FAE71721130D, FE0DCB728471465B39A42A7511F4133021FBA5DF88F88BCB5FE2FF34CFD713F9 ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
11:14:32.0211 0x0950 NDIS - ok
11:14:32.0243 0x0950 [ 091735A5F20ACB1DC147383A905AE002, 71F5EA1B762B304AE46284F80F9AABF5EAB890C9CC5F257AC84D3ABF4268B3D3 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
11:14:32.0243 0x0950 NdisTapi - ok
11:14:32.0258 0x0950 [ F927A4434C5028758A842943EF1A3849, B1AA3AF150C05307461774925901789456B0CCCD03A5E71ADA4AB58455962BEE ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
11:14:32.0274 0x0950 Ndisuio - ok
11:14:32.0290 0x0950 [ EDC1531A49C80614B2CFDA43CA8659AB, 494042F790F33721328B4451E79842E21919681CC421A4F9633EC4D383E06097 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
11:14:32.0290 0x0950 NdisWan - ok
11:14:32.0321 0x0950 [ 816460BD4B4ACD27937D1D0813E2E9E9, 71574BC38CF392E8BB158C6B61430F0472DF1926BF71481D72E380D1D7B94B64 ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
11:14:32.0321 0x0950 NDProxy - ok
11:14:32.0368 0x0950 [ 5D81CF9A2F1A3A756B66CF684911CDF0, 7989C36607CAEA17AFA2C1C9904145CA0714A54B9F712D9D4C1AB140D0B2CC0C ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
11:14:32.0368 0x0950 NetBIOS - ok
11:14:32.0415 0x0950 [ 74B2B2F5BEA5E9A3DC021D685551BD3D, 7932B71F98B4122BE88F576BF6D745A757AE378A48924B7F4358837B75640A82 ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
11:14:32.0415 0x0950 NetBT - ok
11:14:32.0461 0x0950 [ DC6BAE085E9B3C2F3A963ED46791FEAB, BC9B8C4C3E9EB70C8A15125ACE8A0CE9B8455337334860BB02815AE8A4669469 ] NetDDE C:\WINDOWS\system32\netdde.exe
11:14:32.0477 0x0950 NetDDE - ok
11:14:32.0493 0x0950 [ DC6BAE085E9B3C2F3A963ED46791FEAB, BC9B8C4C3E9EB70C8A15125ACE8A0CE9B8455337334860BB02815AE8A4669469 ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
11:14:32.0508 0x0950 NetDDEdsdm - ok
11:14:32.0555 0x0950 [ 8754210A3399D19610CE2D71E0C3E5D9, B10B28B559B447CC9DF317F222BB7641A7317001DA631371E6E6A928D67276A9 ] Netlogon C:\WINDOWS\system32\lsass.exe
11:14:32.0555 0x0950 Netlogon - ok
11:14:32.0649 0x0950 [ 5431FB616ECAE0D587C5B97D0B86CBD8, 81B79A2C37118794C8D466084287F4DB7216A1BDD9D65901B3C5E9EA91A134EB ] Netman C:\WINDOWS\System32\netman.dll
11:14:32.0649 0x0950 Netman - ok
11:14:32.0727 0x0950 [ D34612C5D02D026535B3095D620626AE, 1BBCCCBF49EB8807240A77DCB43C25C21682073CC5356594E2C4F53EF36BF657 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
11:14:32.0727 0x0950 NetTcpPortSharing - ok
11:14:32.0805 0x0950 [ 18740E8EC5BE4B6D66FA0E4CBFD3B9C6, 073952B1668964BE9ADE6BC2BDFBF30C847038BB9DA1BC031B0B6E7728E53440 ] Nla C:\WINDOWS\System32\mswsock.dll
11:14:32.0821 0x0950 Nla - ok
11:14:32.0852 0x0950 [ 3182D64AE053D6FB034F44B6DEF8034A, 4ADFC76965BA2A5F488E71789A4E4EA702A74AF42725F72130D1CA919406CF19 ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
11:14:32.0852 0x0950 Npfs - ok
11:14:32.0946 0x0950 [ A0857C97770034FD2AF17DC4014B5ABD, 3A325399DD8A384F1EEB2340FB5CA54FCE7360C9A02E8ADB6DE2EF3CFD805A92 ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
11:14:32.0977 0x0950 Ntfs - ok
11:14:33.0008 0x0950 [ 8754210A3399D19610CE2D71E0C3E5D9, B10B28B559B447CC9DF317F222BB7641A7317001DA631371E6E6A928D67276A9 ] NtLmSsp C:\WINDOWS\system32\lsass.exe
11:14:33.0008 0x0950 NtLmSsp - ok
11:14:33.0086 0x0950 [ AC1A78237B53044735693633F8235468, 9F5168E92C4897DD0F6744653FB22DEDC8EC83ACE32F3C50D20CF114FA992E01 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
11:14:33.0102 0x0950 NtmsSvc - ok
11:14:33.0149 0x0950 [ 73C1E1F395918BC2C6DD67AF7591A3AD, B21133A75253EC15E2DFF66D3B480AB1A7E1A2360476C810E7AA55D0F0EB08D4 ] Null C:\WINDOWS\system32\drivers\Null.sys
11:14:33.0149 0x0950 Null - ok
11:14:33.0196 0x0950 [ B305F3FAD35083837EF46A0BBCE2FC57, 9D0E0E666D652D0FC9EAB97280A5D67AAF61D6B21929DF7CF8ED72A367720464 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
11:14:33.0196 0x0950 NwlnkFlt - ok
11:14:33.0196 0x0950 [ C99B3415198D1AAB7227F2C88FD664B9, DD8DA4B5E804F134AB9233859544C025062902DFC3E8FB8A09A67337A4E73F55 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
11:14:33.0211 0x0950 NwlnkFwd - ok
11:14:33.0258 0x0950 [ E3934CCC20A4D24F1924E13D36D2A5BD, 6681AB6061A5DD28C0DFDDBBF5967A936E67765DD5A77B3F109FE07C6AF5E186 ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys
11:14:33.0274 0x0950 Parport - ok
11:14:33.0290 0x0950 [ BEB3BA25197665D82EC7065B724171C6, 7E71C13BA30CD95CEE8A9CC85E6F48A01F30EDEAADEE69D80AE828BF97E5A5CA ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
11:14:33.0290 0x0950 PartMgr - ok
11:14:33.0336 0x0950 [ 1EADE28746A64C21E0A808BB12A63326, 88A2E7101B9582DCCF310F128536C24856727A0DE3E5D4D7404CBE79BCC36CF9 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
11:14:33.0336 0x0950 ParVdm - ok
11:14:33.0383 0x0950 [ 3B166F9F753C21AEDAA9A6BD76B49655, DD6F13D856890D9CAD83C21BA5C7EEC0D8FBA2EE3678C5F07FE15DDDD5EA4926 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
11:14:33.0399 0x0950 PCI - ok
11:14:33.0415 0x0950 PCIDump - ok
11:14:33.0430 0x0950 [ B31EDEBA4DA28283F6B8DC4756FB9585, 3B296A4A5DFD6A11D6A99A96D84E0DDEA4737C4B09595B82D256CAB4EC1BFC1B ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
11:14:33.0430 0x0950 PCIIde - ok
11:14:33.0477 0x0950 [ 2137FFD65F8E609A3A5ACD487C56CCE0, D754BED7C3B13662AC95BE0F234AFB6565BC7EC69DFECF03DA65469DBA974D2D ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
11:14:33.0493 0x0950 Pcmcia - ok
11:14:33.0508 0x0950 PDCOMP - ok
11:14:33.0540 0x0950 PDFRAME - ok
11:14:33.0555 0x0950 PDRELI - ok
11:14:33.0571 0x0950 PDRFRAME - ok
11:14:33.0665 0x0950 [ D98A222A707FFE40043E533FE7A6BA24, D5609A1744061C1943F4ACEAD0278706FF6CF3D16AB206A38B0FC9B86B1387C2 ] PlugPlay C:\WINDOWS\system32\services.exe
11:14:33.0665 0x0950 PlugPlay - ok
11:14:33.0680 0x0950 [ 8754210A3399D19610CE2D71E0C3E5D9, B10B28B559B447CC9DF317F222BB7641A7317001DA631371E6E6A928D67276A9 ] PolicyAgent C:\WINDOWS\system32\lsass.exe
11:14:33.0696 0x0950 PolicyAgent - ok
11:14:33.0711 0x0950 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99, C5F0C8C66A3AF7E7BB04CEDE4AC5306F8387AB384A2107DC5BE413AAE968EFF1 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
11:14:33.0711 0x0950 PptpMiniport - ok
11:14:33.0743 0x0950 [ 8754210A3399D19610CE2D71E0C3E5D9, B10B28B559B447CC9DF317F222BB7641A7317001DA631371E6E6A928D67276A9 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
11:14:33.0743 0x0950 ProtectedStorage - ok
11:14:33.0758 0x0950 [ D8E11D311785F89F1D70A28B0E879127, 8DC3BB4C2238960A47D601CC0B6E2D07EE6C8B5D3852A9908803F89B01F715FB ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
11:14:33.0774 0x0950 PSched - ok
11:14:33.0821 0x0950 [ 80D317BD1C3DBC5D4FE7B1678C60CADD, DA76804B55D0CAB3DDD01EFC06673764AE4860693375C658B6063FB14AF7F12C ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
11:14:33.0821 0x0950 Ptilink - ok
11:14:33.0883 0x0950 [ E42E3433DBB4CFFE8FDD91EAB29AEA8E, 20ABD8372B242FD356AC143E7EB56F93CFEA4988ED1B0C4434CB64C387D7F66C ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys
11:14:33.0883 0x0950 PxHelp20 - ok
11:14:33.0899 0x0950 [ FE0D99D6F31E4FAD8159F690D68DED9C, 998685622ABE631984B7E4DBF91AB3594B1F574378D75EB9F6265F4650470692 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
11:14:33.0899 0x0950 RasAcd - ok
11:14:33.0961 0x0950 [ 0575D034B1292CA3A9BB9F67A8EE289C, 85F9964CEC39F4FFA704C995ECB18995A20FDFB110841867486F9EF3164A8775 ] RasAuto C:\WINDOWS\System32\rasauto.dll
11:14:33.0977 0x0950 RasAuto - ok
11:14:34.0024 0x0950 [ 11B4A627BC9614B885C4969BFA5FF8A6, EAE0A412A2B0F68919C32A96B3A08CC1A06585E4998819F5C9051745F63FF5AD ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
11:14:34.0024 0x0950 Rasl2tp - ok
11:14:34.0071 0x0950 [ 9E7E2DF6971A5F00102BE3F901CC3BDC, AFD5ECDAF59228A2F51E8F195F4E96C7C1D26740DA7EA4B1F6E491C16EF8B34B ] RasMan C:\WINDOWS\System32\rasmans.dll
11:14:34.0086 0x0950 RasMan - ok
11:14:34.0118 0x0950 [ 5BC962F2654137C9909C3D4603587DEE, A5CE5653D0105240F5E86CFAAB89E7917D42D939E2F27A5A7D6979289CA651B8 ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
11:14:34.0118 0x0950 RasPppoe - ok
11:14:34.0165 0x0950 [ FDBB1D60066FCFBB7452FD8F9829B242, 10A2DACF944BD000032EBA8C095CB3D879CC55B28C377ADF6E52E508E47444DB ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
11:14:34.0165 0x0950 Raspti - ok
11:14:34.0227 0x0950 [ 9629383F70DB691CB6AA5BBD828CD9A9, 972D3355CE74DFBD9B0C8749EE5B456CBDB1EC5D625858A602AED798E0C8D358 ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
11:14:34.0227 0x0950 Rdbss - ok
11:14:34.0290 0x0950 [ 4912D5B403614CE99C28420F75353332, 975341ECD660209987B5E5171B8315E032439E408CBE8A5986E67AF767F373BB ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
11:14:34.0290 0x0950 RDPCDD - ok
11:14:34.0415 0x0950 [ C7D9BC54354B8C706ABF172D48313F1B, 48065B6914F29AAA3010CCBC78A3ED4ADC25C98D2E6778559DCCF986FA36E21E ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
11:14:34.0415 0x0950 RDPWD - ok
11:14:34.0477 0x0950 [ EA9FDF71D696B532BDC44C8BFF03A737, 2D2FFC96F2A88327142EF817AA8D7F62DD9E94555E82292D8933786AF332FA33 ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
11:14:34.0477 0x0950 RDSessMgr - ok
11:14:34.0586 0x0950 [ 96EFEC24346A8EB1157E80523079ADDC, 7F8FC284029856C754E400B6C954369FFE27763C81D8F4AF4E58BFDD44CBC24A ] RealNetworks Downloader Resolver Service C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
11:14:34.0586 0x0950 RealNetworks Downloader Resolver Service - ok
11:14:34.0649 0x0950 [ 4173BC66E485FD77A03C4819F60BD0DA, FDC4C5ACA5305CCDB1B665D1711A57BB16A9B373913E4B36F32AA159A0A069E3 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
11:14:34.0649 0x0950 redbook - ok
11:14:34.0680 0x0950 [ 4007ABF5D9BF0E55451D775443D1F985, EC3BCFCC9629BC6E809A025A0589F2FD96F628CD6B4ED7AC8A1A007832D418DD ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
11:14:34.0696 0x0950 RemoteAccess - ok
11:14:34.0743 0x0950 [ BE078F8F7EC2491EFDD79A53353A060F, AC4630E5AC360D0A5C7EE92AA1FEE2F91F5B4FC59CF1F96F03F6EF09D65C9623 ] RpcLocator C:\WINDOWS\system32\locator.exe
11:14:34.0758 0x0950 RpcLocator - ok
11:14:34.0805 0x0950 [ D8D28F6CABEC7D42B8E487E290563B9A, 620FC20797581CDF4BF3ADF6D13F0904F4EA4C118510815F740E0B6E3ED6FE93 ] RpcSs C:\WINDOWS\System32\rpcss.dll
11:14:34.0821 0x0950 RpcSs - ok
11:14:34.0899 0x0950 [ 743D7D59767073A617B1DCC6C546F234, DE08EEC475F97F616BACF125B441B3542CEA3B017E2E98D94BE9FB1E13D13C99 ] rspndr C:\WINDOWS\system32\DRIVERS\rspndr.sys
11:14:34.0915 0x0950 rspndr - ok
11:14:34.0977 0x0950 [ AD1B5F1B99FFF08C99F443D784711A81, 1BE13FE1E1E45F6D3C4E73BB85D7DD509BCA384B36FC07498A0C5F4BD93B8B20 ] RSVP C:\WINDOWS\system32\rsvp.exe
11:14:34.0977 0x0950 RSVP - ok
11:14:35.0008 0x0950 [ 8754210A3399D19610CE2D71E0C3E5D9, B10B28B559B447CC9DF317F222BB7641A7317001DA631371E6E6A928D67276A9 ] SamSs C:\WINDOWS\system32\lsass.exe
11:14:35.0008 0x0950 SamSs - ok
11:14:35.0165 0x0950 [ 230FD3749904CA045EA5EC0AA14006E9, D7C79238F862B471740AFF4CC3982658D1339795E9EC884A8921EFE2E547D7C3 ] SANDRA C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2013.SP4\WNt500x86\Sandra.sys
11:14:35.0165 0x0950 SANDRA - ok
11:14:35.0227 0x0950 [ CD23C3C62D0C20CC272BD421F2A3D002, 6A5982B385335850AF558EB7F1C9A6F66C7F1981BE5B1D27B9B579C87E16FA65 ] SandraAgentSrv C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2013.SP4\RpcAgentSrv.exe
11:14:35.0243 0x0950 SandraAgentSrv - ok
11:14:35.0305 0x0950 [ 1B4CD62174E907C7EF8EC5D4D0A2A616, 9BC82E5FB7A1604CE6FB7DBFF8AF58ABDCD7A8AE01EC62CBAC9996D838CC36AB ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
11:14:35.0305 0x0950 SCardSvr - ok
11:14:35.0383 0x0950 [ 7C288AE0F75CB18CFF1DF6179A67AD8F, D4B7A1B7BD5B239A7B1E6AF1AA28116FB337765EACEA5357A0EF76AAC53216E1 ] Schedule C:\WINDOWS\system32\schedsvc.dll
11:14:35.0399 0x0950 Schedule - ok
11:14:35.0446 0x0950 [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
11:14:35.0446 0x0950 Secdrv - ok
11:14:35.0477 0x0950 [ 6983665BEA867125B1DA5757CD8B2F9D, EDAE386791F5B390EB1705ED0EE7F67259BC6C0EC8785C0E1161E7C0984EDE64 ] seclogon C:\WINDOWS\System32\seclogon.dll
11:14:35.0493 0x0950 seclogon - ok
11:14:35.0508 0x0950 [ F6EC8F1E50E40237BDDEE1CB7FE20B42, 9DAD21F8B052F189F411DB5BD3DE19E3788D5D4ACEF320AC7E188A7A48A77FCA ] SENS C:\WINDOWS\system32\sens.dll
11:14:35.0524 0x0950 SENS - ok
11:14:35.0571 0x0950 [ 0F29512CCD6BEAD730039FB4BD2C85CE, 4F98AE390D1B14A755700DD6CEFB9CF921F0404AF2145D2D7E5F52394F87C6A5 ] Serenum C:\WINDOWS\system32\DRIVERS\serenum.sys
11:14:35.0571 0x0950 Serenum - ok
11:14:35.0602 0x0950 [ 92C21762653BB2CE51147EB8A9AA654F, F8B7C7053D66C3ED8F891F5CEF1D8B208A95805CD74CFD1740B4A2F794808B1D ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys
11:14:35.0602 0x0950 Serial - ok
11:14:35.0711 0x0950 [ 8E6B8C671615D126FDC553D1E2DE5562, CEEC0067514555D5CA489F50E3D7562FCA8DB8E952C3C878604C9277FC77959F ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
11:14:35.0711 0x0950 Sfloppy - ok
11:14:35.0790 0x0950 [ FB728CFE87FF4A3ABA0AA526B553D877, A1ABDAC01307C459198E409A3DBB4D918A9CBD746CF8FD5C22E48EEBE0E436F3 ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
11:14:35.0805 0x0950 SharedAccess - ok
11:14:35.0836 0x0950 [ C28A9E9D28ACDAF8097BE4578C49559B, 6FAEEC5F6A2484052EB8DA537F0BA842A7D600AE654A55A8142CD6B7C50C97D1 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
11:14:35.0852 0x0950 ShellHWDetection - ok
11:14:35.0868 0x0950 Simbad - ok
11:14:35.0946 0x0950 [ F5BBEDF602C310B00036EB2DBF4348A5, AC2712E639F0C54BCF00EB4E90E805335871EA27AE8A45DFC53EDF28822318C4 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
11:14:35.0961 0x0950 SkypeUpdate - ok
11:14:36.0024 0x0950 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F, DD17733CBB370FCA08F0296704D7CBEACA3C8F76D0ABE4761C3B1FFDF7481D9E ] splitter C:\WINDOWS\system32\drivers\splitter.sys
11:14:36.0040 0x0950 splitter - ok
11:14:36.0086 0x0950 [ 258DD5D4283FD9F9A7166BE9AE45CE73, 05369C6943ADFF081B06400ADC4D26FEC81972B53F11AD079F51412AD07C2978 ] Spooler C:\WINDOWS\system32\spoolsv.exe
11:14:36.0102 0x0950 Spooler - ok
11:14:36.0165 0x0950 [ 64D2A7640E0767ECD3BCB38D3200E7CE, B1F5662A2A4F0587CBD5058358B3C0E30E258C995FB2E902165FAB76571E66C9 ] Sr C:\WINDOWS\system32\DRIVERS\sr.sys
11:14:36.0165 0x0950 Sr - ok
11:14:36.0211 0x0950 [ 81CBF363C414620CAA61BD6843D8FDB9, AA1552BF9D7B21DB7B1D9AF9D53FE1DC90150F03035F21999715F95BE0E2EE6A ] srservice C:\WINDOWS\system32\srsvc.dll
11:14:36.0227 0x0950 srservice - ok
11:14:36.0274 0x0950 [ 9B390283569EA58D43D2586032B892F5, FADC0AD9D8F715290F02A6A59B284A6AD53C5BD13933B1D3ECC03C558C9D5885 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
11:14:36.0290 0x0950 Srv - ok
11:14:36.0352 0x0950 [ 5B9D0DE64BE96A806819516440FD211C, 5C632D05A83F8C4BCD3E412F4ECDBA1D00B48F0A162B305940E6396D765F27F0 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
11:14:36.0352 0x0950 SSDPSRV - ok
11:14:36.0430 0x0950 [ A36EE93698802CD899F98BFD553D8185, 224CFED921EA230FF8025D259E34968FD2C0FD34BB3A918FB4B9B8BA42BEA5D3 ] ssmdrv C:\WINDOWS\system32\DRIVERS\ssmdrv.sys
11:14:36.0446 0x0950 ssmdrv - ok
11:14:36.0508 0x0950 [ D2C02234E3E87EA5FE420F045068099B, A5BFB342FFF50E6EAF5586A72BCBE56E9DA4F7AE612EDE7D20D77DB59472D3FE ] ssudmdm C:\WINDOWS\system32\DRIVERS\ssudmdm.sys
11:14:36.0508 0x0950 ssudmdm - ok
11:14:36.0571 0x0950 [ E97F09A7EC9C45B7060FE45BC620766C, 176C8BAE7CB69A2174F5BBF01A04B214DCE1EF01B83C547F6C3F71CAC94E63B4 ] ssudserd C:\WINDOWS\system32\DRIVERS\ssudserd.sys
11:14:36.0571 0x0950 ssudserd - ok
11:14:36.0665 0x0950 [ 88E96A39A11B0EDE2876926EE5B2564B, 3F49A28F53788DA6FC9F97C98F2B9031AEB09C6795D3EA2A8F5C668F532C0F35 ] STAC97NA C:\WINDOWS\system32\drivers\stac97na.sys
11:14:36.0665 0x0950 STAC97NA - ok
11:14:36.0743 0x0950 [ 0383587C1597BB1D1B79485BE8F12177, 6D0313933BFC343986F7829EBBDEFCFBCCF4FF14F72E3BBA04B2D7D7238FC84D ] STAC97NH C:\WINDOWS\system32\drivers\stac97nh.sys
11:14:36.0758 0x0950 STAC97NH - ok
11:14:36.0821 0x0950 [ 5AE996186D2DC694FEF88F14A3FC9242, 496C74364C750DA0851647B08DF731DFED2E2CD0BDB795C0E48821F457D2DD9A ] stisvc C:\WINDOWS\system32\wiaservc.dll
11:14:36.0836 0x0950 stisvc - ok
11:14:36.0899 0x0950 [ 3941D127AEF12E93ADDF6FE6EE027E0F, EA1F0E32E1C5E90FA4AAC421DEBBE086512340758D3217A6334E886BCE638B51 ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
11:14:36.0899 0x0950 swenum - ok
11:14:36.0930 0x0950 [ 8CE882BCC6CF8A62F2B2323D95CB3D01, B408550A581F3DA222355964AFA4E976AD8471F0AA37573C42C4948AE5A23A3B ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
11:14:36.0930 0x0950 swmidi - ok
11:14:36.0946 0x0950 SwPrv - ok
11:14:36.0977 0x0950 [ 8B83F3ED0F1688B4958F77CD6D2BF290, 546D3602183702B4F53E84413CFA2C933D64C8540378E54A8DCD148F3F36A2DA ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
11:14:36.0977 0x0950 sysaudio - ok
11:14:37.0055 0x0950 [ 251EAE7C56C6AB9490311A3C9757E18D, C79FE215747798A82E1719453DE67CF9DBB09C524667E229AFE9FA16638FDB05 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
11:14:37.0055 0x0950 SysmonLog - ok
11:14:37.0118 0x0950 [ ABAEC91155E18BE1215B9170EE6B2F13, EE24F9B07760D3737B5E019A65EC27537D4D5E9677B2856FA5CEFF30681C578F ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
11:14:37.0133 0x0950 TapiSrv - ok
11:14:37.0180 0x0950 [ AD978A1B783B5719720CFF204B666C8E, FA50A3664522C58E1637C06731B9CB9D56FF14F0A5F8AB496A1945585E8A2C16 ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
11:14:37.0196 0x0950 Tcpip - ok
11:14:37.0258 0x0950 [ 6471A66807F5E104E4885F5B67349397, F35CBFFB8BB235CCE30EF94A5273333900DD49FD506BF9D55D99A320B8A53A5A ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
11:14:37.0258 0x0950 TDPIPE - ok
11:14:37.0290 0x0950 [ C0578456F29E5F26285F81B7B71FE57D, D1744D3C242E014EBB242FFA2F21AE9398D7568A23E443855A94DF14D1A72885 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
11:14:37.0290 0x0950 TDTCP - ok
11:14:37.0336 0x0950 [ 88155247177638048422893737429D9E, B6D4E8691917946332C2208D01F8C8281978C1AD1E9951C5D99DF0D49AC34B3B ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
11:14:37.0336 0x0950 TermDD - ok
11:14:37.0430 0x0950 [ E0AEF86A594C9990D6321C5CA239C5B7, 30C45E48F0A3A2D5D3518AEBFB99D3AD4426BD358FC9239E93FD8481BFBB03BF ] TermService C:\WINDOWS\System32\termsrv.dll
11:14:37.0446 0x0950 TermService - ok
11:14:37.0477 0x0950 [ C28A9E9D28ACDAF8097BE4578C49559B, 6FAEEC5F6A2484052EB8DA537F0BA842A7D600AE654A55A8142CD6B7C50C97D1 ] Themes C:\WINDOWS\System32\shsvcs.dll
11:14:37.0493 0x0950 Themes - ok
11:14:37.0524 0x0950 TosIde - ok
11:14:37.0586 0x0950 [ 20655E8CA1C78BC7088B18E93806D21B, 91B6B9058C1933972484210DB9BEAA3EA74F359494B7286EFDA6370BCEA913A4 ] TrkWks C:\WINDOWS\system32\trkwks.dll
11:14:37.0586 0x0950 TrkWks - ok
11:14:37.0649 0x0950 [ 5787B80C2E3C5E2F56C2A233D91FA2C9, 3774905CF77954DFCECDA5BCC7CDE3D0ED72712BFAAD85ADAE5246306447E46C ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
11:14:37.0649 0x0950 Udfs - ok
11:14:37.0727 0x0950 [ 402DDC88356B1BAC0EE3DD1580C76A31, 32A686595710336A6BFD54C03F552AE39439611662F84EF5D24193AE5665C6F3 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
11:14:37.0743 0x0950 Update - ok
11:14:37.0805 0x0950 [ 01653D6C9604F1FB31A76EC94E08954F, C778076DBBFD38FFEFA7D2113D92A394CC1E7AAEA1530E488A8AB055BE5BEAC7 ] upnphost C:\WINDOWS\System32\upnphost.dll
11:14:37.0805 0x0950 upnphost - ok
11:14:37.0836 0x0950 [ A89796DD0DE24CF03B3A39407E1F46A3, 3866F5C649591F1630EE414B0FC6661DF9F2B0DF71821CB4C711D1728205CC82 ] UPS C:\WINDOWS\System32\ups.exe
11:14:37.0852 0x0950 UPS - ok
11:14:37.0899 0x0950 [ 1B611611C28D2DF25BC057D79C6F13FC, B0D86F63E44B40413BBAE6402CC088046CFAE082D41BBC2ED5A916293356B846 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
11:14:37.0899 0x0950 usbccgp - ok
11:14:37.0946 0x0950 [ 52674B5DBEE499342A599C7771ABECAA, A8F3FB78DAB0E7187FD07CB7CEA72862DB4BC115F347ABEB9E155BB4CF34A671 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
11:14:37.0946 0x0950 usbehci - ok
11:14:38.0008 0x0950 [ 1AB3CDDE553B6E064D2E754EFE20285C, A99C4528C4227B1E96847614745AAFACD3C5F1BDFE435214DBF78740FFB300FE ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
11:14:38.0024 0x0950 usbhub - ok
11:14:38.0071 0x0950 [ A32426D9B14A089EAA1D922E0C5801A9, ED1DC52EE45F8EAD3AEC4B1F817BB25634141CF48295494C5947DCE6CF7A9817 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
11:14:38.0071 0x0950 USBSTOR - ok
11:14:38.0118 0x0950 [ 26496F9DEE2D787FC3E61AD54821FFE6, 8BE7FF647470B9A951CBB478FAF83D657A15CC78037F42348A6B738F21D523DA ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
11:14:38.0118 0x0950 usbuhci - ok
11:14:38.0180 0x0950 [ 0D3A8FAFCEACD8B7625CD549757A7DF1, B9CFDEFCD66AA139F3DC2F967B184669532922563AD5A71769BABDC4370D065E ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
11:14:38.0180 0x0950 VgaSave - ok
11:14:38.0211 0x0950 ViaIde - ok
11:14:38.0227 0x0950 [ 8AB662B3C4691E6DDF61C96BB5B7D103, 362142C9684A3FDA7DDBE1B2FACD7BD0FC403BF30BB549D173F6805A42C932E7 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
11:14:38.0243 0x0950 VolSnap - ok
11:14:38.0290 0x0950 [ A585EDD6965B301DE8A45C6768C7C215, A506F4C1333CDB4C48CE3571A75F3751081FBC422AEE61C927C3E9796568F249 ] VSS C:\WINDOWS\System32\vssvc.exe
11:14:38.0305 0x0950 VSS - ok
11:14:38.0352 0x0950 [ 99BDD2DFF6F04482B738A90D74688212, AC98F4A73DA1DB63A6DC97324CE5511B3B06E878703CEBB3FF1FB48089987C50 ] W32Time C:\WINDOWS\system32\w32time.dll
11:14:38.0352 0x0950 W32Time - ok
11:14:38.0399 0x0950 [ E20B95BAEDB550F32DD489265C1DA1F6, 5589B2067E6C9FBA290D8C5EADDC198EBAF39C50C3CD7D2BC5CDA7CBFBC445E5 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
11:14:38.0399 0x0950 Wanarp - ok
11:14:38.0430 0x0950 WDICA - ok
11:14:38.0508 0x0950 [ 6768ACF64B18196494413695F0C3A00F, 3A8F8586F1D997D19A8478345338D2AECD785AEABDB61531DD3F92003D3230A5 ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
11:14:38.0508 0x0950 wdmaud - ok
11:14:38.0555 0x0950 [ 33D8E2812054D97A0AEC9B8F04277927, B30A5CB97B14DF9B9F94C6C9FC7A415458EDD85C46B085E0A51F304795CCF698 ] WebClient C:\WINDOWS\System32\webclnt.dll
11:14:38.0555 0x0950 WebClient - ok
11:14:38.0680 0x0950 [ F9E105F369C18E4001E0C05AAF600D73, EDA4AE346832CA7D3A0AC18DFE6470B57F33C7235252E0C3D2DF2418236F443B ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
11:14:38.0680 0x0950 winmgmt - ok
11:14:38.0805 0x0950 [ 250F8D15406269CB3A690B4A4859D92D, 69A60906D65680B91A907727D99794C809E00CA2C9D4C1FB3CD78CD68CE6CFA0 ] WinRM C:\WINDOWS\system32\WsmSvc.dll
11:14:38.0852 0x0950 WinRM - ok
11:14:38.0930 0x0950 [ C51B4A5C05A5475708E3C81C7765B71D, F776D2680BD3407307B7072626F78460361FC5BC38623C9E16F394D300AB25DE ] WmdmPmSN C:\WINDOWS\system32\mspmsnsv.dll
11:14:38.0930 0x0950 WmdmPmSN - ok
11:14:39.0008 0x0950 [ 87F11D161207C7063EDABAC0AADC33C3, 60BD9AC3EE591DDCAEACFD085937779732A7D36513059DFB01941C98DC296504 ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe
11:14:39.0008 0x0950 WmiApSrv - ok
11:14:39.0133 0x0950 [ 79A01ACD485687EE602411A06B63A9A5, 60B39E95BA8389F29CEEF2A5F118ADF16E2CEE66B63A094E18A4F00C51EB3838 ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
11:14:39.0165 0x0950 WMPNetworkSvc - ok
11:14:39.0227 0x0950 [ CF4DEF1BF66F06964DC0D91844239104, CC1D9CECE2056D29A9651D51BB57C3F4F9BF9E90A4808CF7496C683C874FBD51 ] WpdUsb C:\WINDOWS\system32\DRIVERS\wpdusb.sys
11:14:39.0227 0x0950 WpdUsb - ok
11:14:39.0336 0x0950 [ 15673BD0B86150CB8E27766059C72A9B, 56C23289A8BFF4945EE532CF6D62D3EC81B827CA15A359F30A327789F9FE9CAF ] WPFFontCache_v0400 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
11:14:39.0368 0x0950 WPFFontCache_v0400 - ok
11:14:39.0430 0x0950 [ 6ABE6E225ADB5A751622A9CC3BC19CE8, 4061C5D0F051DFF1730E2A3BFC1CCA97B29602FC50F10F6B44D93B0D28F42024 ] WS2IFSL C:\WINDOWS\System32\drivers\ws2ifsl.sys
11:14:39.0430 0x0950 WS2IFSL - ok
11:14:39.0477 0x0950 [ 843F7FA8EA38E6A4262976DCC994C81A, E3429581BA18910CC658449EA763CE7A2EE949BD65D43B177B0402A6037C4A46 ] wscsvc C:\WINDOWS\system32\wscsvc.dll
11:14:39.0493 0x0950 wscsvc - ok
11:14:39.0555 0x0950 [ 02E4055488047729B333F99D93877038, DE0C57AE8B828537B57D9EADEDEE3AAEBE5484A6C5A3FBE827F80987CDC0C5B2 ] wuauserv C:\WINDOWS\system32\wuauserv.dll
11:14:39.0571 0x0950 wuauserv - ok
11:14:39.0618 0x0950 [ F15FEAFFFBB3644CCC80C5DA584E6311, 79B3E9AF35976CE49921E9BEA3BA3B4A8AF762FD3F284B62954038B5FFB32471 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
11:14:39.0618 0x0950 WudfPf - ok
11:14:39.0665 0x0950 [ 28B524262BCE6DE1F7EF9F510BA3985B, AEFF02B899801A63CBB262757C3D4369E38BFF0690BD085DE60E873DFBE3C3F4 ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
11:14:39.0665 0x0950 WudfRd - ok
11:14:39.0711 0x0950 [ 05231C04253C5BC30B26CBAAE680ED89, 5C03C2D7E0B573646D32F4093E2FF2C3BA391C39F5BA37D67F69D38E357FCC3D ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
11:14:39.0727 0x0950 WudfSvc - ok
11:14:39.0805 0x0950 [ 991E417C2D3D07260757F165A8F40589, 218E373959E7865A883E22D45662F7A06C82EA6194A71C9588806A8BF38EA8CE ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
11:14:39.0821 0x0950 WZCSVC - ok
11:14:39.0868 0x0950 [ FD3C38635808920F8235BF2FED642F54, 1A9218967EE6E30F6DABE026E22478067B72E59FEE2EA9CD142859F138A42CF8 ] xmlprov C:\WINDOWS\System32\xmlprov.dll
11:14:39.0868 0x0950 xmlprov - ok
11:14:39.0930 0x0950 [ 9595EE81566A9EC4A96A6D5E2533E4F3, 175805B9A2A9F9ED60E28C6701F1F2BD933E8E38FD0A363F8B55E0666BE80FFD ] {6080A529-897E-4629-A488-ABA0C29B635E} C:\WINDOWS\system32\drivers\ialmsbw.sys
11:14:39.0946 0x0950 {6080A529-897E-4629-A488-ABA0C29B635E} - ok
11:14:39.0961 0x0950 [ 5CC069889A922ED647145FCA8371E545, D54DC22258E5A3E7AD1F475E5AAECEFD37AB581CA760CC60B32CFD6A53E9FE8C ] {D31A0762-0CEB-444e-ACFF-B049A1F6FE91} C:\WINDOWS\system32\drivers\ialmkchw.sys
11:14:39.0961 0x0950 {D31A0762-0CEB-444e-ACFF-B049A1F6FE91} - ok
11:14:39.0977 0x0950 ================ Scan global ===============================
11:14:40.0040 0x0950 [ 953AD498333B03F7CE547151F96EF241, 15717B634AE15981714A7ACF02417A4EF80C72EEF355FC728E41B3DA36553434 ] C:\WINDOWS\system32\basesrv.dll
11:14:40.0102 0x0950 [ 67F101FCFF1F46DFA9F41AD1B968509D, BDC495406582BCF5EF4BFAD307BAE59CADE230966427F54D6543F037F782AA27 ] C:\WINDOWS\system32\winsrv.dll
11:14:40.0149 0x0950 [ 67F101FCFF1F46DFA9F41AD1B968509D, BDC495406582BCF5EF4BFAD307BAE59CADE230966427F54D6543F037F782AA27 ] C:\WINDOWS\system32\winsrv.dll
11:14:40.0196 0x0950 [ D98A222A707FFE40043E533FE7A6BA24, D5609A1744061C1943F4ACEAD0278706FF6CF3D16AB206A38B0FC9B86B1387C2 ] C:\WINDOWS\system32\services.exe
11:14:40.0211 0x0950 [ Global ] - ok
11:14:40.0211 0x0950 ================ Scan MBR ==================================
11:14:40.0243 0x0950 [ 3051207086651214E435112E51817DC5 ] \Device\Harddisk0\DR0
11:14:40.0461 0x0950 \Device\Harddisk0\DR0 - ok
11:14:40.0477 0x0950 [ 3051207086651214E435112E51817DC5 ] \Device\Harddisk1\DR1
11:14:40.0868 0x0950 \Device\Harddisk1\DR1 - ok
11:14:40.0868 0x0950 ================ Scan VBR ==================================
11:14:40.0883 0x0950 [ 4C0D9503A4EC2FB404390C7EF0A74ACC ] \Device\Harddisk0\DR0\Partition1
11:14:40.0883 0x0950 \Device\Harddisk0\DR0\Partition1 - ok
11:14:40.0883 0x0950 [ 6853D9BB3DBC917F9E35F296FF002377 ] \Device\Harddisk1\DR1\Partition1
11:14:40.0883 0x0950 \Device\Harddisk1\DR1\Partition1 - ok
11:14:40.0899 0x0950 Waiting for KSN requests completion. In queue: 169
11:14:41.0899 0x0950 Waiting for KSN requests completion. In queue: 169
11:14:42.0899 0x0950 Waiting for KSN requests completion. In queue: 169
11:14:43.0961 0x0950 AV detected via SS1: Avira Desktop, 13.6.20.2100, disabled, updated
11:14:43.0977 0x0950 Win FW state via NFM: enabled
11:14:46.0633 0x0950 ============================================================
11:14:46.0633 0x0950 Scan finished
11:14:46.0633 0x0950 ============================================================
11:14:46.0665 0x0b8c Detected object count: 0
11:14:46.0665 0x0b8c Actual detected object count: 0
11:15:51.0086 0x0d24 ============================================================
11:15:51.0086 0x0d24 Scan started
11:15:51.0086 0x0d24 Mode: Manual; SigCheck; TDLFS;
11:15:51.0086 0x0d24 ============================================================
11:15:51.0086 0x0d24 KSN ping started
11:15:53.0618 0x0d24 KSN ping finished: true
11:15:54.0305 0x0d24 ================ Scan system memory ========================
11:15:54.0321 0x0d24 System memory - ok
11:15:54.0321 0x0d24 ================ Scan services =============================
11:15:54.0586 0x0d24 Abiosdsk - ok
11:15:54.0665 0x0d24 [ 02273A448BA21A7D447DAEB47810D40C, 1CB409BE2648ECA04A128230C6DADEA3ADA0720E24BA3BA9267D09751972E519 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
11:15:55.0165 0x0d24 ACPI - ok
11:15:55.0196 0x0d24 [ 63F517B1A87DABF3F5ACB8A7952FC1D1, 9A08759B9E02509D47FDCEF47C3B8E9081E687D7931D56672A6285E8C3520185 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
11:15:55.0383 0x0d24 ACPIEC - ok
11:15:55.0508 0x0d24 [ A283108E14F3970432C21AF4C0CB1BCE, 1D3219EF916D54232838870EDE557296AACB714B456ED0AAE0DE3CE3822F4643 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
11:15:55.0540 0x0d24 AdobeFlashPlayerUpdateSvc - ok
11:15:55.0618 0x0d24 [ 8BED39E3C35D6A489438B8141717A557, 1B5796E56B0927360CE0759641B1151828BC0A9E45620D2B2D880491F5CE33D0 ] aec C:\WINDOWS\system32\drivers\aec.sys
11:15:55.0821 0x0d24 aec - ok
11:15:55.0883 0x0d24 [ F6B7B1ECD7B41736BDB6FF4B092BCB79, B892C7303E08238C025409D602CB2F58D273B19B81CF04E26EA52A27EE7706DB ] AFD C:\WINDOWS\System32\drivers\afd.sys
11:15:55.0961 0x0d24 AFD - ok
11:15:55.0977 0x0d24 [ 8BED67D13DCB55B3E9FF6DAC4C6D3B49, ED4EE32A51C7650FB20D10765ADB01B8743228B6BC712D4509571947BAC3AC58 ] Alerter C:\WINDOWS\system32\alrsvc.dll
11:15:56.0227 0x0d24 Alerter - ok
11:15:56.0258 0x0d24 [ DAB2A89FDE5CF791161200D90C1BCB12, 7F14CE7C85CDD5944134CC97A9B3AA0E7A0724D6D7A3DB3E0F68A4E9A1FE1446 ] ALG C:\WINDOWS\System32\alg.exe
11:15:56.0352 0x0d24 ALG - ok
11:15:56.0368 0x0d24 AliIde - ok
11:15:56.0508 0x0d24 [ 27C31F89693EFA9BAEFA0F1A38538BA5, 6DF0497A3A3508B513F02349D345C90D03ECE98FCD6E484E17F15043AFFF2D10 ] AntiVirSchedulerService C:\Program Files\Avira\AntiVir Desktop\sched.exe
11:15:56.0524 0x0d24 AntiVirSchedulerService - ok
11:15:56.0586 0x0d24 [ A6E8FEE22D8A9162D1A93EB90407DC82, 370CC9405E11D4777ACFE9B44A983F96C59A0D8946E17C0D10AEA5F2A57AB441 ] AntiVirService C:\Program Files\Avira\AntiVir Desktop\avguard.exe
11:15:56.0602 0x0d24 AntiVirService - ok
11:15:56.0711 0x0d24 [ 404BB7290836DBD9A3BD3ACD6145FF34, 23CA441A096666183337B2A4828A0C0C59F95D8E2DBF99F75FECBCA7D00356B0 ] AntiVirWebService C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE
11:15:56.0758 0x0d24 AntiVirWebService - ok
11:15:56.0930 0x0d24 [ 30E3850F303EAE5C364782EA78579CC9, 8C94E5A9052F6E794685194EEACB31A174A947D60246908B6A0DEFA081A747A3 ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
11:15:56.0946 0x0d24 Apple Mobile Device - ok
11:15:56.0961 0x0d24 AppMgmt - ok
11:15:57.0133 0x0d24 [ 0E5E4957549056E2BF2C49F4F6B601AD, F7F19FDC906B719A3516D30A9B4A2262C8CC5B36B94E3D4195C345EC4610FF2B ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
11:15:57.0165 0x0d24 aspnet_state - ok
11:15:57.0227 0x0d24 [ B153AFFAC761E7F5FCFA822B9C4E97BC, 7E60F572A6B3C6219E3C86225AA37243AFFD74337DB7F108B04778042E5CC959 ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
11:15:57.0430 0x0d24 AsyncMac - ok
11:15:57.0493 0x0d24 [ 9F3A2F5AA6875C72BF062C712CFA2674, B4DF1D2C56A593C6B54DE57395E3B51D288F547842893B32B0F59228A0CF70B9 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
11:15:57.0711 0x0d24 atapi - ok
11:15:57.0727 0x0d24 Atdisk - ok
11:15:57.0774 0x0d24 [ 9916C1225104BA14794209CFA8012159, 5D6F05F715C52A16D05CAE15C3DFE77A139A7F27F7AE710EC9A10F9EE05115A1 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
11:15:57.0977 0x0d24 Atmarpc - ok
11:15:58.0008 0x0d24 [ F10745ED3195360E69AA4A6E7768C0E0, 0D8F285AA9AAB23EBF6BFCCDD631134BBFC479790984B8A728D3B1C988AD3F15 ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
11:15:58.0227 0x0d24 AudioSrv - ok
11:15:58.0274 0x0d24 [ D9F724AA26C010A217C97606B160ED68, 329B5118F2409731D06FDAE85B6ADD64A048292801BCB3546651CEB303111695 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
11:15:58.0461 0x0d24 audstub - ok
11:15:58.0524 0x0d24 [ 40A34E457431625086F7E161E59A0528, ACB271F16F457173590E0563BEC6EE88A1154E8D369BB18C94D01AF492B99CC5 ] avgntflt C:\WINDOWS\system32\DRIVERS\avgntflt.sys
11:15:59.0008 0x0d24 avgntflt - ok
11:15:59.0071 0x0d24 [ F260F2EE3D21D00BEC0B08068E27BADB, 5E7BC4E54013AFB57FFF8B002B16CE7DC3F2CAB090D72D0C8EB6A403853AD180 ] avipbb C:\WINDOWS\system32\DRIVERS\avipbb.sys
11:15:59.0102 0x0d24 avipbb - ok
11:15:59.0133 0x0d24 [ CB8741CD7B126499FED40C9B197F6AC5, F682820A20CED26CD2E6A2531C721DB8985BCC1A03582BC54A706E9AA1A8B615 ] avkmgr C:\WINDOWS\system32\DRIVERS\avkmgr.sys
11:15:59.0165 0x0d24 avkmgr - ok
11:15:59.0243 0x0d24 [ DA1F27D85E0D1525F6621372E7B685E9, 5A81A46A3BDD19DAFC6C87D277267A5D44F3A1B5302F2CC1111D84B7BAD5610D ] Beep C:\WINDOWS\system32\drivers\Beep.sys
11:15:59.0446 0x0d24 Beep - ok
11:15:59.0524 0x0d24 [ 5C0073A51C4873430FA8B262E92183FF, DE035B8F5BDCA347CBB753FE5B731CE41D4C1C49E7091BD90548B8A9C0A1D073 ] BITS C:\WINDOWS\system32\qmgr.dll
11:15:59.0758 0x0d24 BITS - ok
11:15:59.0868 0x0d24 [ DB5BEA73EDAF19AC68B2C0FAD0F92B1A, 10F21999FF6B1D410EBF280F7F27DEACA5289739CF12F4293B614B8FC6C88DCC ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
11:15:59.0915 0x0d24 Bonjour Service - ok
11:15:59.0961 0x0d24 [ 307DC67231986A9552FA515F1233C1AB, 66B80F1AB210313607829DDB04A0B30EF91159CB0BD50E81ED26C0A5CB22E38C ] Browser C:\WINDOWS\System32\browser.dll
11:16:00.0008 0x0d24 Browser - ok
11:16:00.0180 0x0d24 catchme - ok
11:16:00.0227 0x0d24 [ C1B486A7658353D33A10CC15211A873B, AA4DD9E7AAE5AAB1146B360B17001F975D2F29A1281CF7B13E7136480410F347 ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
11:16:00.0430 0x0d24 Cdaudio - ok
11:16:00.0477 0x0d24 [ C885B02847F5D2FD45A24E219ED93B32, B26B2F8E3A831E2B65EB0C5195B0645CD50E22615CE79C9B0B391CD563B121DB ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
11:16:00.0680 0x0d24 Cdfs - ok
11:16:00.0727 0x0d24 [ 1F4260CC5B42272D71F79E570A27A4FE, B51C2A3ED3C309953D0EA45869C8E464C10F2533DADE9E0286AF674979098D1D ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
11:16:00.0930 0x0d24 Cdrom - ok
11:16:00.0961 0x0d24 Changer - ok
11:16:01.0008 0x0d24 [ BD85400700B80FBE3D4A3412BCE74861, 78419D94EEDD5C6C82A09425DADA30347D47897D40090E65970DB54F106E014F ] CiSvc C:\WINDOWS\system32\cisvc.exe
11:16:01.0211 0x0d24 CiSvc - ok
11:16:01.0258 0x0d24 [ 4FB6108130829666C8FE96B442FEAD94, 9811037E2A195C05B442F928C4E95FDD1AF249461527269ED8508116A18DBF28 ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
11:16:01.0430 0x0d24 ClipSrv - ok
11:16:01.0493 0x0d24 [ D87ACAED61E417BBA546CED5E7E36D9C, 14AC6034A5BC0FB2A1AFDAD42BEF4DE641556E54AD30D0C46765660A4BE55462 ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
11:16:01.0524 0x0d24 clr_optimization_v2.0.50727_32 - ok
11:16:01.0618 0x0d24 [ C5A75EB48E2344ABDC162BDA79E16841, 6070A8AAFD38FBC6A68A2B10C20117612354DF21B4492D90CA522BFB6870D726 ] clr_optimization_v4.0.30319_32 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
11:16:01.0649 0x0d24 clr_optimization_v4.0.30319_32 - ok
11:16:01.0665 0x0d24 CmdIde - ok
11:16:01.0680 0x0d24 COMSysApp - ok
11:16:01.0743 0x0d24 [ D01F685F8B4598D144B0CCE9FF95D8D5, A68EF814CDBD7291DEF4745FE14D5080041BD3275AB12629C7811506AF2B8E17 ] cpudrv C:\Program Files\SystemRequirementsLab\cpudrv.sys
11:16:01.0774 0x0d24 cpudrv - ok
11:16:01.0821 0x0d24 [ 0A9CF5D3CF63A8699F28C814EF821C7E, D6F09CABB25E557023312EE9921CCC35096B7B36C6A95A520D7514C33F70FCB2 ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
11:16:02.0024 0x0d24 CryptSvc - ok
11:16:02.0118 0x0d24 [ D8D28F6CABEC7D42B8E487E290563B9A, 620FC20797581CDF4BF3ADF6D13F0904F4EA4C118510815F740E0B6E3ED6FE93 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
11:16:02.0211 0x0d24 DcomLaunch - ok
11:16:02.0290 0x0d24 [ 54D0B8343CE8C22412A5F29D32EFD211, D78BF09680FF19523C84E862593B45637D91A079C79CAB63A13726E7ACA8ABBF ] dg_ssudbus C:\WINDOWS\system32\DRIVERS\ssudbus.sys
11:16:02.0321 0x0d24 dg_ssudbus - ok
11:16:02.0383 0x0d24 [ 99F2C23ED213C7E0C10A778CB8E98C3B, 4EA22C7660860618FD84811F406FA044B8781D120546E4452CC6BF1B846D6699 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
11:16:02.0461 0x0d24 Dhcp - ok
11:16:02.0493 0x0d24 [ 47B6AAEC570F2C11D8BAD80A064D8ED1, 83AAFD7D2E44BAD967430AF72ABEC3E8F2985BAF71D06ADFC2B92EC4CD644012 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
11:16:02.0524 0x0d24 Disk - ok
11:16:02.0555 0x0d24 dmadmin - ok
11:16:02.0633 0x0d24 [ DEC123E0C75971D0CC7A6C6A75E28429, 7520BD43B0CCCC2F17A9BC7E5330341283BAF6DD10828B1CEBD8634C8EBFAA4F ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
11:16:02.0883 0x0d24 dmboot - ok
11:16:02.0930 0x0d24 [ 7268E66259722F6228C730685B201092, 3B8A38FA33D7C7A523490639B35CF165D512DB6BA64E5F606A54E2C2F12FD121 ] dmio C:\WINDOWS\system32\drivers\dmio.sys
11:16:03.0133 0x0d24 dmio - ok
11:16:03.0165 0x0d24 [ E9317282A63CA4D188C0DF5E09C6AC5F, D41E002F555FE9015EF620975255F58BB79198CA1FF0E09EC950CB450FF77CF7 ] dmload C:\WINDOWS\system32\drivers\dmload.sys
11:16:03.0368 0x0d24 dmload - ok
11:16:03.0415 0x0d24 [ 127DB74184E2D3D31655DA525A5EFDE1, 9A632E97AE3C6CD05E36640DFE23420CA1164B5D33E2D849E31CB7BEF104C44C ] dmserver C:\WINDOWS\System32\dmserver.dll
11:16:03.0618 0x0d24 dmserver - ok
11:16:03.0680 0x0d24 [ 8A208DFCF89792A484E76C40E5F50B45, 4E40E2EB38C6254E7CAA488200E89EE7DEBBBA773890BC6A84313CC68178D54F ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
11:16:03.0868 0x0d24 DMusic - ok
11:16:03.0899 0x0d24 [ F41AE23847F084F92E283D86C2A9EFCC, 79813051F215CDE3761FFA039771EA52E9178B2C336BCBF057C0A989492CAB7E ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
11:16:03.0946 0x0d24 Dnscache - ok
11:16:03.0993 0x0d24 [ 90EE765E1A598B578852901F74F914F1, 6A262A9234E1E9A19AF948A5E362F4B43CBC6EF2CCE796D4602D303A519CD545 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
11:16:04.0211 0x0d24 Dot3svc - ok
11:16:04.0274 0x0d24 [ 8F5FCFF8E8848AFAC920905FBD9D33C8, C8C6FB97AB0871C8C88A2201525A5CF10D5131CB6980D32692ED7A8F58399AD5 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
11:16:04.0446 0x0d24 drmkaud - ok
11:16:04.0508 0x0d24 [ FE9CB643A034285031502D3369E5A869, 999704A1BDDD391F928901DCE970C48CE5101DA2D9EDFF7EA6DB29A558DEE723 ] E100B C:\WINDOWS\system32\DRIVERS\e100b325.sys
11:16:04.0586 0x0d24 E100B - ok
11:16:04.0649 0x0d24 [ E6BBDEBF7081899D161C773E8D84D015, BD0059A3B9A154F2140F35CBF7402F8BB62260087917DA9DE817DEC161D73B8C ] EapHost C:\WINDOWS\System32\eapsvc.dll
11:16:04.0868 0x0d24 EapHost - ok
11:16:04.0899 0x0d24 [ 2F5C7F650B7AF178988946EE4B0D9C01, 3FF2BAAB10A26A3E7A8DA28BE4689623E603403E4B11191BC66E9E4BA8E3988A ] ERSvc C:\WINDOWS\System32\ersvc.dll
11:16:05.0086 0x0d24 ERSvc - ok
11:16:05.0149 0x0d24 [ D98A222A707FFE40043E533FE7A6BA24, D5609A1744061C1943F4ACEAD0278706FF6CF3D16AB206A38B0FC9B86B1387C2 ] Eventlog C:\WINDOWS\system32\services.exe
11:16:05.0196 0x0d24 Eventlog - ok
11:16:05.0243 0x0d24 [ F6C37073A269C163A5FDAE5BFF47F367, DA88F3336EEF727330B394AF3F039CC906783F00CA51B791CE99DDAC1D0F31F3 ] EventSystem C:\WINDOWS\system32\es.dll
11:16:05.0274 0x0d24 EventSystem - ok
11:16:05.0336 0x0d24 [ 4D893323DAE445E34A4C9038B0551BC9, 39EE6D1EA496568368F7E8167EFE444CAEDD34A760EC9107EC383D8D17485EFD ] exFat C:\WINDOWS\system32\drivers\exFat.sys
11:16:05.0415 0x0d24 exFat - ok
11:16:05.0461 0x0d24 [ 38D332A6D56AF32635675F132548343E, E6909DB836AF679B4F4D62C7396D6C82769CC7ABB8C919C2AABFE934FCE268F6 ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
11:16:05.0680 0x0d24 Fastfat - ok
11:16:05.0758 0x0d24 [ C28A9E9D28ACDAF8097BE4578C49559B, 6FAEEC5F6A2484052EB8DA537F0BA842A7D600AE654A55A8142CD6B7C50C97D1 ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
11:16:05.0805 0x0d24 FastUserSwitchingCompatibility - ok
11:16:05.0836 0x0d24 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81, 8307A532AB4D05CBBCE206DC2759497708BF5AAA880BD00F0E4F281D8578A1F5 ] Fdc C:\WINDOWS\system32\DRIVERS\fdc.sys
11:16:06.0008 0x0d24 Fdc - ok
11:16:06.0071 0x0d24 [ 8BFFFB5AC954E19DFDB96D56512AA518, D4C2502B8B6A1B79711B817AEB671CBA23FBF8CE77743BD892ABFEB7201963D7 ] Fips C:\WINDOWS\system32\drivers\Fips.sys
11:16:06.0274 0x0d24 Fips - ok
11:16:06.0305 0x0d24 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0, 69C271AD5BCEBFD8AE5A769BDD7EC51256DA3A8ADAD5D12E5C0D13F4E82D8805 ] Flpydisk C:\WINDOWS\system32\DRIVERS\flpydisk.sys
11:16:06.0508 0x0d24 Flpydisk - ok
11:16:06.0571 0x0d24 [ B2CF4B0786F8212CB92ED2B50C6DB6B0, 280F5CF8A90F7BEDE73ADD0DD0F8952088133A7CA9A3D3B7041957E33B36845D ] FltMgr C:\WINDOWS\system32\DRIVERS\fltMgr.sys
11:16:06.0821 0x0d24 FltMgr - ok
11:16:06.0915 0x0d24 [ 8BA7C024070F2B7FDD98ED8A4BA41789, 47585006F86B2C6016EC54250A416794792D1E4024FF229C120BC25B684AF66A ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
11:16:06.0946 0x0d24 FontCache3.0.0.0 - ok
11:16:06.0993 0x0d24 [ 30D42943A54704EF13E2562911DBFCEA, 6E0904E60A2F8B62BD34E5EDA2DA2240DFBCE1288C58CB4D819F0025ECF76763 ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
11:16:07.0024 0x0d24 Fs_Rec - ok
11:16:07.0055 0x0d24 [ FA8CA22E70245C81FF29C36AF56292FC, 29BE006A4F5B125D1D3A556199690CCF0B537917DD004033659141E72CF3AD49 ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
11:16:07.0243 0x0d24 Ftdisk - ok
11:16:07.0305 0x0d24 [ 185ADA973B5020655CEE342059A86CBB, D3E352DFAF30761505480A4C557D980083F65EC5BD46E2656B2114D47B272A89 ] GEARAspiWDM C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
11:16:07.0336 0x0d24 GEARAspiWDM - ok
11:16:07.0399 0x0d24 [ 0A02C63C8B144BD8C86B103DEE7C86A2, 7A3235DD3E1995DD72B212FAEB3ECA2A974434DE9BF6D269EA11BA65A80E7E50 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
11:16:07.0602 0x0d24 Gpc - ok
11:16:07.0680 0x0d24 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
11:16:07.0711 0x0d24 gupdate - ok
11:16:07.0743 0x0d24 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
11:16:07.0774 0x0d24 gupdatem - ok
11:16:07.0868 0x0d24 [ 5327BAD9B35C33D2A64B64E4CF282ECD, 766F9BDE4CAAA058F023C35605E3BD0C267F5D1B6A98A0809F33D89708BA9506 ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
11:16:08.0086 0x0d24 helpsvc - ok
11:16:08.0102 0x0d24 HidServ - ok
11:16:08.0149 0x0d24 [ 1FF903FFA2DA1704E5A5443D37D8E49E, AB8B43B8869A3CDDA6931BB670CC8D38B89F95B29F39A5DE92DC7BF75D7891CA ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
11:16:08.0352 0x0d24 hkmsvc - ok
11:16:08.0430 0x0d24 [ 937031C085718C1C04A9C0864625EC6B, B812A70063750090202D646F466BD7F0377413F74AD109F8097CB2A1FB42466B ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
11:16:08.0493 0x0d24 HTTP - ok
11:16:08.0555 0x0d24 [ 2529C7BA05242BEED0027F554D0513BB, 5110D3D7A604B1F9606C6E1A6029263943B005E0BFEEC49EFB9E7D31A83B2744 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
11:16:08.0758 0x0d24 HTTPFilter - ok
11:16:08.0805 0x0d24 [ C43372D0682F8E32E4EC21117E089EC0, 06C546CA6D75D5C660941957163DF1F2109DFDF8F26C3DCE70DAEFF985ABCF97 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
11:16:08.0993 0x0d24 i8042prt - ok
11:16:09.0055 0x0d24 [ B652FB9DF6345131112BA9351C875B6F, 849ABEAB7FBCBB203D35C36BBAAAE8B7E237E1AF0FED7F08F262C2B3BAA8330D ] ialm C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
11:16:09.0274 0x0d24 ialm - ok
11:16:09.0399 0x0d24 [ C01AC32DC5C03076CFB852CB5DA5229C, A4D7749220B5BC965D96A267F1E02FE8284A230BA249109207BD4B9EA8DFAC96 ] idsvc C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
11:16:09.0477 0x0d24 idsvc - ok
11:16:09.0524 0x0d24 [ 083A052659F5310DD8B6A6CB05EDCF8E, 48D39B03FFB6FAA1529B774443BA12618AE3982D9F65A7B9D18F2269F78B31F4 ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
11:16:09.0743 0x0d24 Imapi - ok
11:16:09.0790 0x0d24 [ A117772F94C854DE5D1BBC1F1962B192, 420FB45771FF2E068A9D28B290117E94741D8323F90156B5E3E17C1C35AD05F4 ] ImapiService C:\WINDOWS\system32\imapi.exe
11:16:10.0008 0x0d24 ImapiService - ok
11:16:10.0086 0x0d24 [ 72C63AD984D427D34BD5B9DB838D88EB, 01EC4AB4E705B7DE34CDA438FBA6268FC261F1D87E749D1C300841FD9CB0F3E0 ] IntelIde C:\WINDOWS\system32\DRIVERS\intelide.sys
11:16:10.0274 0x0d24 IntelIde - ok
11:16:10.0336 0x0d24 [ 2D2254FAC267E6B1C7865E8EBEF60C6D, 0037A5673E8F1CED478BA23BF3C90B08DBCF2FCC291558D2487FF373F5A00B8F ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
11:16:10.0540 0x0d24 intelppm - ok
11:16:10.0571 0x0d24 [ 3BB22519A194418D5FEC05D800A19AD0, F6662F440950596DC1382DD1DB5D7891CCEA30A6062BEA942C18445B5F0D8B16 ] Ip6Fw C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys
11:16:10.0758 0x0d24 Ip6Fw - ok
11:16:10.0805 0x0d24 [ 731F22BA402EE4B62748ADAF6363C182, 5C3BEBD008A5BE4DC2F92076FF41A10DDC01E10EC7E6552213CFA11970811848 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
11:16:10.0993 0x0d24 IpFilterDriver - ok
11:16:11.0040 0x0d24 [ B87AB476DCF76E72010632B5550955F5, E6E74D3A86A7917A8BAED44F8E97CCD2EB171E4E4B27E9907F60D1523FAF319A ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
11:16:11.0243 0x0d24 IpInIp - ok
11:16:11.0290 0x0d24 [ CC748EA12C6EFFDE940EE98098BF96BB, AF523E21C25D9A1715EFEA573E4F52AF5D4FC9F28A2D613F5DB629C186C439E0 ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
11:16:11.0477 0x0d24 IpNat - ok
11:16:11.0571 0x0d24 [ 061614179585BE398A73B9B3AF111310, BE715790531CBF3E038C6C2083A0802FA492D1DCAB3ACFE035DF72E3D6A4B83B ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
11:16:11.0618 0x0d24 iPod Service - ok
11:16:11.0680 0x0d24 [ 23C74D75E36E7158768DD63D92789A91, 394D296F38E7D8EFD91A6EEC301D9CE6AF910E35EB9819F1A9E3363863AEDFDC ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
11:16:11.0899 0x0d24 IPSec - ok
11:16:11.0946 0x0d24 [ C93C9FF7B04D772627A3646D89F7BF89, 805FA48E7A46D4F10240BF880A2468F53DEA36E83004399228AB70DB7D20544A ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
11:16:12.0055 0x0d24 IRENUM - ok
11:16:12.0133 0x0d24 [ 0B78E1A31340E1FB1E389D5633F7C3A0, A6BCA5940E5F89602BBB127481CF48E39E7834375D13947A047336E136ADFDA7 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
11:16:12.0321 0x0d24 isapnp - ok
11:16:12.0368 0x0d24 [ 380397621E94B32C744E7B2CC1330390, 6215E8F881642E798D6F2ABC01605D78696B1AA0D3A50C243BB061BFF9AC7BC3 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
11:16:12.0571 0x0d24 Kbdclass - ok
11:16:12.0618 0x0d24 [ 692BCF44383D056AED41B045A323D378, 1A99DEE83FFAF64E73067FC049C0A4CE07D94E4AE31EFA17B38CEFA9E41D67DC ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
11:16:12.0836 0x0d24 kmixer - ok
11:16:12.0899 0x0d24 [ C6EBF1D6AD71DF30DB49B8D3287E1368, 09A8F5BCE774BA8881195AB390692048C3B05EDC8C0BF3ACBC673FD391A29D72 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
11:16:12.0993 0x0d24 KSecDD - ok
11:16:13.0055 0x0d24 [ AB3C73CFC4D21540C51671EDF6E2C989, EA2B83DA23AC3169DA3682AA45E9A215AEDBF9C24A908C1A3BC24DAA16042174 ] LanmanServer C:\WINDOWS\System32\srvsvc.dll
11:16:13.0118 0x0d24 LanmanServer - ok
11:16:13.0165 0x0d24 [ F2BB3D20CD27EE6ED1FD5954DE629441, 2D72EB11E82281806AA0592A6A93C8448401B56A1D7EA2882CE697734A19B02B ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
11:16:13.0227 0x0d24 lanmanworkstation - ok
11:16:13.0243 0x0d24 lbrtfdc - ok
11:16:13.0305 0x0d24 [ 91AE20C5C2776C511994AA1308C05283, BF085E2F5974404336475CC2E159F4524015AA01B0C76C176AC398DD30AD90A6 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
11:16:13.0493 0x0d24 LmHosts - ok
11:16:13.0540 0x0d24 [ C56A45A03DCA11712DE9FDF98224230B, A1D1F5B12736A9A4300E554930FC11DAFFD901C8ACFC0994BA6FF4A304BCF2CA ] Messenger C:\WINDOWS\System32\msgsvc.dll
11:16:13.0758 0x0d24 Messenger - ok
11:16:13.0805 0x0d24 [ 4AE068242760A1FB6E1A44BF4E16AFA6, 1FB771162B96AAF787AC24867B818DF8511F0780BB094FA9A38C11D8DBFE68BC ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
11:16:13.0993 0x0d24 mnmdd - ok
11:16:14.0040 0x0d24 [ 5B1D994DCF1895AFA27600E46A2F0FEA, C43E8CEC5865C0EC4BD4E48980C85D6BA7E80A9F702B6E559FE4DCCC16F655C3 ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe
11:16:14.0243 0x0d24 mnmsrvc - ok
11:16:14.0305 0x0d24 [ 8114EEAC353F549331AB73E9AF4219ED, 60B2FC56A2CF6335CFAA62154743863716CBAFEF38A716C755FAC74790C22C56 ] Modem C:\WINDOWS\system32\drivers\Modem.sys
11:16:14.0477 0x0d24 Modem - ok
11:16:14.0508 0x0d24 [ 1A4E2214DD63E4A876463D3427EE8261, E3C137E1A05F46170538D1A2FC23F146A75FA556ADCC1CD48CE6FE412B41DBC5 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
11:16:14.0696 0x0d24 Mouclass - ok
11:16:14.0743 0x0d24 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD, 2A5E15ED2C24C6C65EF2F7E1FD93374774076C9D8D451E4422561F4D269C012F ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
11:16:14.0930 0x0d24 MountMgr - ok
11:16:15.0008 0x0d24 [ 3121304FEBE28A90AF199DBF1AFD4518, 95B5188B71ADB8934183828C2AEEF16620CB5C97C7141DF4A7140D72B79210D9 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
11:16:15.0086 0x0d24 MozillaMaintenance - ok
11:16:15.0149 0x0d24 [ 4FEFD389D71126EE581B9F9CB2918BE4, 64C527DEFF0F8B6CB0318B14BC7F34F8221D8FF6D5A128F9C2C4779537245F7B ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
11:16:15.0211 0x0d24 MRxDAV - ok
11:16:15.0274 0x0d24 [ FB2FCCC70F7174C7BF64F48E96D3ADF4, 484B4DF0A500CAE8AFA4F3A6393615A3963D91C95939025DF1A172C9A67D951D ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
11:16:15.0368 0x0d24 MRxSmb - ok
11:16:15.0430 0x0d24 [ 21EA21984D7D1AD50DB2E627020AB14C, 5F0BA1973B30CCEE1FED562BA47B2F5E03A7F0EDB1A24200F2B14FE562D021A3 ] MSDTC C:\WINDOWS\system32\msdtc.exe
11:16:15.0633 0x0d24 MSDTC - ok
11:16:15.0696 0x0d24 [ C941EA2454BA8350021D774DAF0F1027, C940E978C7B66A713A0FDAB54B5F995DF59D089AFCD96221DD3222948CD49BBD ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
11:16:15.0883 0x0d24 Msfs - ok
11:16:15.0899 0x0d24 MSIServer - ok
11:16:15.0946 0x0d24 [ D1575E71568F4D9E14CA56B7B0453BF1, 4ABE0E24786C0D39FA2B885447E56204CA6942FB175E534DCE675D7BCF0B176A ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
11:16:16.0133 0x0d24 MSKSSRV - ok
11:16:16.0165 0x0d24 [ 325BB26842FC7CCC1FCCE2C457317F3E, C07BE560513B1FB91D756494F0BA4AEEB2E1998DE0E1C21EE83DB1183B0CEE91 ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
11:16:16.0383 0x0d24 MSPCLOCK - ok
11:16:16.0415 0x0d24 [ BAD59648BA099DA4A17680B39730CB3D, 9AD4C7C94C186C8815D0BC75DCAFB962158DA6935A244BA243EDDDEB33F9816C ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
11:16:16.0602 0x0d24 MSPQM - ok
11:16:16.0665 0x0d24 [ AF5F4F3F14A8EA2C26DE30F7A1E17136, AC93A1E4ABB0D038B772E429015567E44CC2EDB66C54DBE23A5F98176FAC1520 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
11:16:16.0852 0x0d24 mssmbios - ok
11:16:16.0883 0x0d24 [ F7B1AD991491F02AF6DA70B00B8BF114, 4EF6B2FF3138CB461D631EB9395C52DE4075B58E8A3C13847A3AFF591536CA72 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
11:16:16.0946 0x0d24 Mup - ok
11:16:17.0008 0x0d24 [ 87E394C810794D3C70CF22E8316CB23E, D8CDEB692AA52FC647059F268E075092A213DC1AE70F406589728EF9C7BD28D8 ] napagent C:\WINDOWS\System32\qagentrt.dll
11:16:17.0196 0x0d24 napagent - ok
11:16:17.0258 0x0d24 [ 1DF7F42665C94B825322FAE71721130D, FE0DCB728471465B39A42A7511F4133021FBA5DF88F88BCB5FE2FF34CFD713F9 ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
11:16:17.0461 0x0d24 NDIS - ok
11:16:17.0493 0x0d24 [ 091735A5F20ACB1DC147383A905AE002, 71F5EA1B762B304AE46284F80F9AABF5EAB890C9CC5F257AC84D3ABF4268B3D3 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
11:16:17.0555 0x0d24 NdisTapi - ok
11:16:17.0602 0x0d24 [ F927A4434C5028758A842943EF1A3849, B1AA3AF150C05307461774925901789456B0CCCD03A5E71ADA4AB58455962BEE ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
11:16:17.0774 0x0d24 Ndisuio - ok
11:16:17.0836 0x0d24 [ EDC1531A49C80614B2CFDA43CA8659AB, 494042F790F33721328B4451E79842E21919681CC421A4F9633EC4D383E06097 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
11:16:18.0024 0x0d24 NdisWan - ok
11:16:18.0055 0x0d24 [ 816460BD4B4ACD27937D1D0813E2E9E9, 71574BC38CF392E8BB158C6B61430F0472DF1926BF71481D72E380D1D7B94B64 ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
11:16:18.0102 0x0d24 NDProxy - ok
11:16:18.0149 0x0d24 [ 5D81CF9A2F1A3A756B66CF684911CDF0, 7989C36607CAEA17AFA2C1C9904145CA0714A54B9F712D9D4C1AB140D0B2CC0C ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
11:16:18.0336 0x0d24 NetBIOS - ok
11:16:18.0368 0x0d24 [ 74B2B2F5BEA5E9A3DC021D685551BD3D, 7932B71F98B4122BE88F576BF6D745A757AE378A48924B7F4358837B75640A82 ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
11:16:18.0555 0x0d24 NetBT - ok
11:16:18.0602 0x0d24 [ DC6BAE085E9B3C2F3A963ED46791FEAB, BC9B8C4C3E9EB70C8A15125ACE8A0CE9B8455337334860BB02815AE8A4669469 ] NetDDE C:\WINDOWS\system32\netdde.exe
11:16:18.0805 0x0d24 NetDDE - ok
11:16:18.0821 0x0d24 [ DC6BAE085E9B3C2F3A963ED46791FEAB, BC9B8C4C3E9EB70C8A15125ACE8A0CE9B8455337334860BB02815AE8A4669469 ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
11:16:19.0024 0x0d24 NetDDEdsdm - ok
11:16:19.0071 0x0d24 [ 8754210A3399D19610CE2D71E0C3E5D9, B10B28B559B447CC9DF317F222BB7641A7317001DA631371E6E6A928D67276A9 ] Netlogon C:\WINDOWS\system32\lsass.exe
11:16:19.0243 0x0d24 Netlogon - ok
11:16:19.0321 0x0d24 [ 5431FB616ECAE0D587C5B97D0B86CBD8, 81B79A2C37118794C8D466084287F4DB7216A1BDD9D65901B3C5E9EA91A134EB ] Netman C:\WINDOWS\System32\netman.dll
11:16:19.0524 0x0d24 Netman - ok
11:16:19.0571 0x0d24 [ D34612C5D02D026535B3095D620626AE, 1BBCCCBF49EB8807240A77DCB43C25C21682073CC5356594E2C4F53EF36BF657 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
11:16:19.0602 0x0d24 NetTcpPortSharing - ok
11:16:19.0680 0x0d24 [ 18740E8EC5BE4B6D66FA0E4CBFD3B9C6, 073952B1668964BE9ADE6BC2BDFBF30C847038BB9DA1BC031B0B6E7728E53440 ] Nla C:\WINDOWS\System32\mswsock.dll
11:16:19.0727 0x0d24 Nla - ok
11:16:19.0758 0x0d24 [ 3182D64AE053D6FB034F44B6DEF8034A, 4ADFC76965BA2A5F488E71789A4E4EA702A74AF42725F72130D1CA919406CF19 ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
11:16:19.0930 0x0d24 Npfs - ok
11:16:19.0993 0x0d24 [ A0857C97770034FD2AF17DC4014B5ABD, 3A325399DD8A384F1EEB2340FB5CA54FCE7360C9A02E8ADB6DE2EF3CFD805A92 ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
11:16:20.0368 0x0d24 Ntfs - ok
11:16:20.0415 0x0d24 [ 8754210A3399D19610CE2D71E0C3E5D9, B10B28B559B447CC9DF317F222BB7641A7317001DA631371E6E6A928D67276A9 ] NtLmSsp C:\WINDOWS\system32\lsass.exe
11:16:20.0586 0x0d24 NtLmSsp - ok
11:16:20.0633 0x0d24 [ AC1A78237B53044735693633F8235468, 9F5168E92C4897DD0F6744653FB22DEDC8EC83ACE32F3C50D20CF114FA992E01 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
11:16:20.0899 0x0d24 NtmsSvc - ok
11:16:20.0961 0x0d24 [ 73C1E1F395918BC2C6DD67AF7591A3AD, B21133A75253EC15E2DFF66D3B480AB1A7E1A2360476C810E7AA55D0F0EB08D4 ] Null C:\WINDOWS\system32\drivers\Null.sys
11:16:21.0118 0x0d24 Null - ok
11:16:21.0165 0x0d24 [ B305F3FAD35083837EF46A0BBCE2FC57, 9D0E0E666D652D0FC9EAB97280A5D67AAF61D6B21929DF7CF8ED72A367720464 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
11:16:21.0352 0x0d24 NwlnkFlt - ok
11:16:21.0383 0x0d24 [ C99B3415198D1AAB7227F2C88FD664B9, DD8DA4B5E804F134AB9233859544C025062902DFC3E8FB8A09A67337A4E73F55 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
11:16:21.0571 0x0d24 NwlnkFwd - ok
11:16:21.0633 0x0d24 [ E3934CCC20A4D24F1924E13D36D2A5BD, 6681AB6061A5DD28C0DFDDBBF5967A936E67765DD5A77B3F109FE07C6AF5E186 ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys
11:16:21.0821 0x0d24 Parport - ok
11:16:21.0852 0x0d24 [ BEB3BA25197665D82EC7065B724171C6, 7E71C13BA30CD95CEE8A9CC85E6F48A01F30EDEAADEE69D80AE828BF97E5A5CA ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
11:16:22.0055 0x0d24 PartMgr - ok
11:16:22.0102 0x0d24 [ 1EADE28746A64C21E0A808BB12A63326, 88A2E7101B9582DCCF310F128536C24856727A0DE3E5D4D7404CBE79BCC36CF9 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
11:16:22.0290 0x0d24 ParVdm - ok
11:16:22.0336 0x0d24 [ 3B166F9F753C21AEDAA9A6BD76B49655, DD6F13D856890D9CAD83C21BA5C7EEC0D8FBA2EE3678C5F07FE15DDDD5EA4926 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
11:16:22.0586 0x0d24 PCI - ok
11:16:22.0618 0x0d24 PCIDump - ok
11:16:22.0633 0x0d24 [ B31EDEBA4DA28283F6B8DC4756FB9585, 3B296A4A5DFD6A11D6A99A96D84E0DDEA4737C4B09595B82D256CAB4EC1BFC1B ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
11:16:22.0836 0x0d24 PCIIde - ok
11:16:22.0883 0x0d24 [ 2137FFD65F8E609A3A5ACD487C56CCE0, D754BED7C3B13662AC95BE0F234AFB6565BC7EC69DFECF03DA65469DBA974D2D ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
11:16:23.0071 0x0d24 Pcmcia - ok
11:16:23.0086 0x0d24 PDCOMP - ok
11:16:23.0102 0x0d24 PDFRAME - ok
11:16:23.0118 0x0d24 PDRELI - ok
11:16:23.0149 0x0d24 PDRFRAME - ok
11:16:23.0211 0x0d24 [ D98A222A707FFE40043E533FE7A6BA24, D5609A1744061C1943F4ACEAD0278706FF6CF3D16AB206A38B0FC9B86B1387C2 ] PlugPlay C:\WINDOWS\system32\services.exe
11:16:23.0243 0x0d24 PlugPlay - ok
11:16:23.0274 0x0d24 [ 8754210A3399D19610CE2D71E0C3E5D9, B10B28B559B447CC9DF317F222BB7641A7317001DA631371E6E6A928D67276A9 ] PolicyAgent C:\WINDOWS\system32\lsass.exe
11:16:23.0446 0x0d24 PolicyAgent - ok
11:16:23.0477 0x0d24 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99, C5F0C8C66A3AF7E7BB04CEDE4AC5306F8387AB384A2107DC5BE413AAE968EFF1 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
11:16:23.0665 0x0d24 PptpMiniport - ok
11:16:23.0680 0x0d24 [ 8754210A3399D19610CE2D71E0C3E5D9, B10B28B559B447CC9DF317F222BB7641A7317001DA631371E6E6A928D67276A9 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
11:16:23.0883 0x0d24 ProtectedStorage - ok
11:16:23.0899 0x0d24 [ D8E11D311785F89F1D70A28B0E879127, 8DC3BB4C2238960A47D601CC0B6E2D07EE6C8B5D3852A9908803F89B01F715FB ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
11:16:23.0993 0x0d24 PSched - ok
11:16:24.0040 0x0d24 [ 80D317BD1C3DBC5D4FE7B1678C60CADD, DA76804B55D0CAB3DDD01EFC06673764AE4860693375C658B6063FB14AF7F12C ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
11:16:24.0243 0x0d24 Ptilink - ok
11:16:24.0305 0x0d24 [ E42E3433DBB4CFFE8FDD91EAB29AEA8E, 20ABD8372B242FD356AC143E7EB56F93CFEA4988ED1B0C4434CB64C387D7F66C ] PxHelp20 C:\WINDOWS\system32\Drivers\PxHelp20.sys
11:16:24.0336 0x0d24 PxHelp20 - ok
11:16:24.0399 0x0d24 [ FE0D99D6F31E4FAD8159F690D68DED9C, 998685622ABE631984B7E4DBF91AB3594B1F574378D75EB9F6265F4650470692 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
11:16:24.0586 0x0d24 RasAcd - ok
11:16:24.0633 0x0d24 [ 0575D034B1292CA3A9BB9F67A8EE289C, 85F9964CEC39F4FFA704C995ECB18995A20FDFB110841867486F9EF3164A8775 ] RasAuto C:\WINDOWS\System32\rasauto.dll
11:16:24.0852 0x0d24 RasAuto - ok
11:16:24.0899 0x0d24 [ 11B4A627BC9614B885C4969BFA5FF8A6, EAE0A412A2B0F68919C32A96B3A08CC1A06585E4998819F5C9051745F63FF5AD ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
11:16:25.0071 0x0d24 Rasl2tp - ok
11:16:25.0102 0x0d24 [ 9E7E2DF6971A5F00102BE3F901CC3BDC, AFD5ECDAF59228A2F51E8F195F4E96C7C1D26740DA7EA4B1F6E491C16EF8B34B ] RasMan C:\WINDOWS\System32\rasmans.dll
11:16:25.0305 0x0d24 RasMan - ok
11:16:25.0336 0x0d24 [ 5BC962F2654137C9909C3D4603587DEE, A5CE5653D0105240F5E86CFAAB89E7917D42D939E2F27A5A7D6979289CA651B8 ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
11:16:25.0524 0x0d24 RasPppoe - ok
11:16:25.0571 0x0d24 [ FDBB1D60066FCFBB7452FD8F9829B242, 10A2DACF944BD000032EBA8C095CB3D879CC55B28C377ADF6E52E508E47444DB ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
11:16:25.0758 0x0d24 Raspti - ok
11:16:25.0805 0x0d24 [ 9629383F70DB691CB6AA5BBD828CD9A9, 972D3355CE74DFBD9B0C8749EE5B456CBDB1EC5D625858A602AED798E0C8D358 ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
11:16:25.0915 0x0d24 Rdbss - ok
11:16:25.0961 0x0d24 [ 4912D5B403614CE99C28420F75353332, 975341ECD660209987B5E5171B8315E032439E408CBE8A5986E67AF767F373BB ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
11:16:26.0133 0x0d24 RDPCDD - ok
11:16:26.0211 0x0d24 [ C7D9BC54354B8C706ABF172D48313F1B, 48065B6914F29AAA3010CCBC78A3ED4ADC25C98D2E6778559DCCF986FA36E21E ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
11:16:26.0274 0x0d24 RDPWD - ok
11:16:26.0321 0x0d24 [ EA9FDF71D696B532BDC44C8BFF03A737, 2D2FFC96F2A88327142EF817AA8D7F62DD9E94555E82292D8933786AF332FA33 ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
11:16:26.0524 0x0d24 RDSessMgr - ok
11:16:26.0618 0x0d24 [ 96EFEC24346A8EB1157E80523079ADDC, 7F8FC284029856C754E400B6C954369FFE27763C81D8F4AF4E58BFDD44CBC24A ] RealNetworks Downloader Resolver Service C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
11:16:26.0649 0x0d24 RealNetworks Downloader Resolver Service - ok
11:16:26.0696 0x0d24 [ 4173BC66E485FD77A03C4819F60BD0DA, FDC4C5ACA5305CCDB1B665D1711A57BB16A9B373913E4B36F32AA159A0A069E3 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
11:16:26.0915 0x0d24 redbook - ok
11:16:26.0930 0x0d24 [ 4007ABF5D9BF0E55451D775443D1F985, EC3BCFCC9629BC6E809A025A0589F2FD96F628CD6B4ED7AC8A1A007832D418DD ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
11:16:27.0149 0x0d24 RemoteAccess - ok
11:16:27.0196 0x0d24 [ BE078F8F7EC2491EFDD79A53353A060F, AC4630E5AC360D0A5C7EE92AA1FEE2F91F5B4FC59CF1F96F03F6EF09D65C9623 ] RpcLocator C:\WINDOWS\system32\locator.exe
11:16:27.0383 0x0d24 RpcLocator - ok
11:16:27.0430 0x0d24 [ D8D28F6CABEC7D42B8E487E290563B9A, 620FC20797581CDF4BF3ADF6D13F0904F4EA4C118510815F740E0B6E3ED6FE93 ] RpcSs C:\WINDOWS\System32\rpcss.dll
11:16:27.0493 0x0d24 RpcSs - ok
11:16:27.0555 0x0d24 [ 743D7D59767073A617B1DCC6C546F234, DE08EEC475F97F616BACF125B441B3542CEA3B017E2E98D94BE9FB1E13D13C99 ] rspndr C:\WINDOWS\system32\DRIVERS\rspndr.sys
11:16:27.0618 0x0d24 rspndr - ok
11:16:27.0680 0x0d24 [ AD1B5F1B99FFF08C99F443D784711A81, 1BE13FE1E1E45F6D3C4E73BB85D7DD509BCA384B36FC07498A0C5F4BD93B8B20 ] RSVP C:\WINDOWS\system32\rsvp.exe
11:16:27.0883 0x0d24 RSVP - ok
11:16:27.0899 0x0d24 [ 8754210A3399D19610CE2D71E0C3E5D9, B10B28B559B447CC9DF317F222BB7641A7317001DA631371E6E6A928D67276A9 ] SamSs C:\WINDOWS\system32\lsass.exe
11:16:28.0102 0x0d24 SamSs - ok
11:16:28.0211 0x0d24 [ 230FD3749904CA045EA5EC0AA14006E9, D7C79238F862B471740AFF4CC3982658D1339795E9EC884A8921EFE2E547D7C3 ] SANDRA C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2013.SP4\WNt500x86\Sandra.sys
11:16:28.0243 0x0d24 SANDRA - ok
11:16:28.0290 0x0d24 [ CD23C3C62D0C20CC272BD421F2A3D002, 6A5982B385335850AF558EB7F1C9A6F66C7F1981BE5B1D27B9B579C87E16FA65 ] SandraAgentSrv C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2013.SP4\RpcAgentSrv.exe
11:16:28.0321 0x0d24 SandraAgentSrv - detected UnsignedFile.Multi.Generic ( 1 )
11:16:28.0321 0x0d24 Detect skipped due to KSN trusted
11:16:28.0321 0x0d24 SandraAgentSrv - ok
11:16:28.0368 0x0d24 [ 1B4CD62174E907C7EF8EC5D4D0A2A616, 9BC82E5FB7A1604CE6FB7DBFF8AF58ABDCD7A8AE01EC62CBAC9996D838CC36AB ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
11:16:28.0555 0x0d24 SCardSvr - ok
11:16:28.0633 0x0d24 [ 7C288AE0F75CB18CFF1DF6179A67AD8F, D4B7A1B7BD5B239A7B1E6AF1AA28116FB337765EACEA5357A0EF76AAC53216E1 ] Schedule C:\WINDOWS\system32\schedsvc.dll
11:16:28.0852 0x0d24 Schedule - ok
11:16:28.0899 0x0d24 [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
11:16:29.0040 0x0d24 Secdrv - ok
11:16:29.0071 0x0d24 [ 6983665BEA867125B1DA5757CD8B2F9D, EDAE386791F5B390EB1705ED0EE7F67259BC6C0EC8785C0E1161E7C0984EDE64 ] seclogon C:\WINDOWS\System32\seclogon.dll
11:16:29.0243 0x0d24 seclogon - ok
11:16:29.0274 0x0d24 [ F6EC8F1E50E40237BDDEE1CB7FE20B42, 9DAD21F8B052F189F411DB5BD3DE19E3788D5D4ACEF320AC7E188A7A48A77FCA ] SENS C:\WINDOWS\system32\sens.dll
11:16:29.0446 0x0d24 SENS - ok
11:16:29.0477 0x0d24 [ 0F29512CCD6BEAD730039FB4BD2C85CE, 4F98AE390D1B14A755700DD6CEFB9CF921F0404AF2145D2D7E5F52394F87C6A5 ] Serenum C:\WINDOWS\system32\DRIVERS\serenum.sys
11:16:29.0649 0x0d24 Serenum - ok
11:16:29.0696 0x0d24 [ 92C21762653BB2CE51147EB8A9AA654F, F8B7C7053D66C3ED8F891F5CEF1D8B208A95805CD74CFD1740B4A2F794808B1D ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys
11:16:29.0883 0x0d24 Serial - ok
11:16:30.0008 0x0d24 [ 8E6B8C671615D126FDC553D1E2DE5562, CEEC0067514555D5CA489F50E3D7562FCA8DB8E952C3C878604C9277FC77959F ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
11:16:30.0180 0x0d24 Sfloppy - ok
11:16:30.0243 0x0d24 [ FB728CFE87FF4A3ABA0AA526B553D877, A1ABDAC01307C459198E409A3DBB4D918A9CBD746CF8FD5C22E48EEBE0E436F3 ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
11:16:30.0336 0x0d24 SharedAccess - ok
11:16:30.0368 0x0d24 [ C28A9E9D28ACDAF8097BE4578C49559B, 6FAEEC5F6A2484052EB8DA537F0BA842A7D600AE654A55A8142CD6B7C50C97D1 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
11:16:30.0415 0x0d24 ShellHWDetection - ok
11:16:30.0430 0x0d24 Simbad - ok
11:16:30.0508 0x0d24 [ F5BBEDF602C310B00036EB2DBF4348A5, AC2712E639F0C54BCF00EB4E90E805335871EA27AE8A45DFC53EDF28822318C4 ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
11:16:30.0571 0x0d24 SkypeUpdate - ok
11:16:30.0649 0x0d24 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F, DD17733CBB370FCA08F0296704D7CBEACA3C8F76D0ABE4761C3B1FFDF7481D9E ] splitter C:\WINDOWS\system32\drivers\splitter.sys
11:16:30.0836 0x0d24 splitter - ok
11:16:30.0915 0x0d24 [ 258DD5D4283FD9F9A7166BE9AE45CE73, 05369C6943ADFF081B06400ADC4D26FEC81972B53F11AD079F51412AD07C2978 ] Spooler C:\WINDOWS\system32\spoolsv.exe
11:16:30.0977 0x0d24 Spooler - ok
11:16:31.0024 0x0d24 [ 64D2A7640E0767ECD3BCB38D3200E7CE, B1F5662A2A4F0587CBD5058358B3C0E30E258C995FB2E902165FAB76571E66C9 ] Sr C:\WINDOWS\system32\DRIVERS\sr.sys
11:16:31.0118 0x0d24 Sr - ok
11:16:31.0165 0x0d24 [ 81CBF363C414620CAA61BD6843D8FDB9, AA1552BF9D7B21DB7B1D9AF9D53FE1DC90150F03035F21999715F95BE0E2EE6A ] srservice C:\WINDOWS\system32\srsvc.dll
11:16:31.0258 0x0d24 srservice - ok
11:16:31.0321 0x0d24 [ 9B390283569EA58D43D2586032B892F5, FADC0AD9D8F715290F02A6A59B284A6AD53C5BD13933B1D3ECC03C558C9D5885 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
11:16:31.0446 0x0d24 Srv - ok
11:16:31.0493 0x0d24 [ 5B9D0DE64BE96A806819516440FD211C, 5C632D05A83F8C4BCD3E412F4ECDBA1D00B48F0A162B305940E6396D765F27F0 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
11:16:31.0602 0x0d24 SSDPSRV - ok
11:16:31.0649 0x0d24 [ A36EE93698802CD899F98BFD553D8185, 224CFED921EA230FF8025D259E34968FD2C0FD34BB3A918FB4B9B8BA42BEA5D3 ] ssmdrv C:\WINDOWS\system32\DRIVERS\ssmdrv.sys
11:16:31.0680 0x0d24 ssmdrv - ok
11:16:31.0743 0x0d24 [ D2C02234E3E87EA5FE420F045068099B, A5BFB342FFF50E6EAF5586A72BCBE56E9DA4F7AE612EDE7D20D77DB59472D3FE ] ssudmdm C:\WINDOWS\system32\DRIVERS\ssudmdm.sys
11:16:31.0774 0x0d24 ssudmdm - ok
11:16:31.0821 0x0d24 [ E97F09A7EC9C45B7060FE45BC620766C, 176C8BAE7CB69A2174F5BBF01A04B214DCE1EF01B83C547F6C3F71CAC94E63B4 ] ssudserd C:\WINDOWS\system32\DRIVERS\ssudserd.sys
11:16:31.0852 0x0d24 ssudserd - ok
11:16:31.0946 0x0d24 [ 88E96A39A11B0EDE2876926EE5B2564B, 3F49A28F53788DA6FC9F97C98F2B9031AEB09C6795D3EA2A8F5C668F532C0F35 ] STAC97NA C:\WINDOWS\system32\drivers\stac97na.sys
11:16:32.0024 0x0d24 STAC97NA - ok
11:16:32.0086 0x0d24 [ 0383587C1597BB1D1B79485BE8F12177, 6D0313933BFC343986F7829EBBDEFCFBCCF4FF14F72E3BBA04B2D7D7238FC84D ] STAC97NH C:\WINDOWS\system32\drivers\stac97nh.sys
11:16:32.0133 0x0d24 STAC97NH - ok
11:16:32.0165 0x0d24 [ 5AE996186D2DC694FEF88F14A3FC9242, 496C74364C750DA0851647B08DF731DFED2E2CD0BDB795C0E48821F457D2DD9A ] stisvc C:\WINDOWS\system32\wiaservc.dll
11:16:32.0399 0x0d24 stisvc - ok
11:16:32.0461 0x0d24 [ 3941D127AEF12E93ADDF6FE6EE027E0F, EA1F0E32E1C5E90FA4AAC421DEBBE086512340758D3217A6334E886BCE638B51 ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
11:16:32.0649 0x0d24 swenum - ok
11:16:32.0696 0x0d24 [ 8CE882BCC6CF8A62F2B2323D95CB3D01, B408550A581F3DA222355964AFA4E976AD8471F0AA37573C42C4948AE5A23A3B ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
11:16:32.0899 0x0d24 swmidi - ok
11:16:32.0915 0x0d24 SwPrv - ok
11:16:32.0946 0x0d24 [ 8B83F3ED0F1688B4958F77CD6D2BF290, 546D3602183702B4F53E84413CFA2C933D64C8540378E54A8DCD148F3F36A2DA ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
11:16:33.0165 0x0d24 sysaudio - ok
11:16:33.0227 0x0d24 [ 251EAE7C56C6AB9490311A3C9757E18D, C79FE215747798A82E1719453DE67CF9DBB09C524667E229AFE9FA16638FDB05 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
11:16:33.0415 0x0d24 SysmonLog - ok
11:16:33.0461 0x0d24 [ ABAEC91155E18BE1215B9170EE6B2F13, EE24F9B07760D3737B5E019A65EC27537D4D5E9677B2856FA5CEFF30681C578F ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
11:16:33.0508 0x0d24 TapiSrv - ok
11:16:33.0555 0x0d24 [ AD978A1B783B5719720CFF204B666C8E, FA50A3664522C58E1637C06731B9CB9D56FF14F0A5F8AB496A1945585E8A2C16 ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
11:16:33.0649 0x0d24 Tcpip - ok
11:16:33.0696 0x0d24 [ 6471A66807F5E104E4885F5B67349397, F35CBFFB8BB235CCE30EF94A5273333900DD49FD506BF9D55D99A320B8A53A5A ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
11:16:33.0899 0x0d24 TDPIPE - ok
11:16:33.0930 0x0d24 [ C0578456F29E5F26285F81B7B71FE57D, D1744D3C242E014EBB242FFA2F21AE9398D7568A23E443855A94DF14D1A72885 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
11:16:34.0008 0x0d24 TDTCP - ok
11:16:34.0055 0x0d24 [ 88155247177638048422893737429D9E, B6D4E8691917946332C2208D01F8C8281978C1AD1E9951C5D99DF0D49AC34B3B ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
11:16:34.0243 0x0d24 TermDD - ok
11:16:34.0321 0x0d24 [ E0AEF86A594C9990D6321C5CA239C5B7, 30C45E48F0A3A2D5D3518AEBFB99D3AD4426BD358FC9239E93FD8481BFBB03BF ] TermService C:\WINDOWS\System32\termsrv.dll
11:16:34.0524 0x0d24 TermService - ok
11:16:34.0571 0x0d24 [ C28A9E9D28ACDAF8097BE4578C49559B, 6FAEEC5F6A2484052EB8DA537F0BA842A7D600AE654A55A8142CD6B7C50C97D1 ] Themes C:\WINDOWS\System32\shsvcs.dll
11:16:34.0602 0x0d24 Themes - ok
11:16:34.0618 0x0d24 TosIde - ok
11:16:34.0680 0x0d24 [ 20655E8CA1C78BC7088B18E93806D21B, 91B6B9058C1933972484210DB9BEAA3EA74F359494B7286EFDA6370BCEA913A4 ] TrkWks C:\WINDOWS\system32\trkwks.dll
11:16:34.0868 0x0d24 TrkWks - ok
11:16:34.0946 0x0d24 [ 5787B80C2E3C5E2F56C2A233D91FA2C9, 3774905CF77954DFCECDA5BCC7CDE3D0ED72712BFAAD85ADAE5246306447E46C ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
11:16:35.0102 0x0d24 Udfs - ok
11:16:35.0196 0x0d24 [ 402DDC88356B1BAC0EE3DD1580C76A31, 32A686595710336A6BFD54C03F552AE39439611662F84EF5D24193AE5665C6F3 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
11:16:35.0383 0x0d24 Update - ok
11:16:35.0430 0x0d24 [ 01653D6C9604F1FB31A76EC94E08954F, C778076DBBFD38FFEFA7D2113D92A394CC1E7AAEA1530E488A8AB055BE5BEAC7 ] upnphost C:\WINDOWS\System32\upnphost.dll
11:16:35.0524 0x0d24 upnphost - ok
11:16:35.0540 0x0d24 [ A89796DD0DE24CF03B3A39407E1F46A3, 3866F5C649591F1630EE414B0FC6661DF9F2B0DF71821CB4C711D1728205CC82 ] UPS C:\WINDOWS\System32\ups.exe
11:16:35.0711 0x0d24 UPS - ok
11:16:35.0758 0x0d24 [ 1B611611C28D2DF25BC057D79C6F13FC, B0D86F63E44B40413BBAE6402CC088046CFAE082D41BBC2ED5A916293356B846 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
11:16:35.0821 0x0d24 usbccgp - ok
11:16:35.0852 0x0d24 [ 52674B5DBEE499342A599C7771ABECAA, A8F3FB78DAB0E7187FD07CB7CEA72862DB4BC115F347ABEB9E155BB4CF34A671 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
11:16:35.0899 0x0d24 usbehci - ok
11:16:35.0961 0x0d24 [ 1AB3CDDE553B6E064D2E754EFE20285C, A99C4528C4227B1E96847614745AAFACD3C5F1BDFE435214DBF78740FFB300FE ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
11:16:36.0149 0x0d24 usbhub - ok
11:16:36.0196 0x0d24 [ A32426D9B14A089EAA1D922E0C5801A9, ED1DC52EE45F8EAD3AEC4B1F817BB25634141CF48295494C5947DCE6CF7A9817 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
11:16:36.0383 0x0d24 USBSTOR - ok
11:16:36.0446 0x0d24 [ 26496F9DEE2D787FC3E61AD54821FFE6, 8BE7FF647470B9A951CBB478FAF83D657A15CC78037F42348A6B738F21D523DA ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
11:16:36.0602 0x0d24 usbuhci - ok
11:16:36.0665 0x0d24 [ 0D3A8FAFCEACD8B7625CD549757A7DF1, B9CFDEFCD66AA139F3DC2F967B184669532922563AD5A71769BABDC4370D065E ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
11:16:36.0836 0x0d24 VgaSave - ok
11:16:36.0836 0x0d24 ViaIde - ok
11:16:36.0868 0x0d24 [ 8AB662B3C4691E6DDF61C96BB5B7D103, 362142C9684A3FDA7DDBE1B2FACD7BD0FC403BF30BB549D173F6805A42C932E7 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
11:16:37.0040 0x0d24 VolSnap - ok
11:16:37.0071 0x0d24 [ A585EDD6965B301DE8A45C6768C7C215, A506F4C1333CDB4C48CE3571A75F3751081FBC422AEE61C927C3E9796568F249 ] VSS C:\WINDOWS\System32\vssvc.exe
11:16:37.0211 0x0d24 VSS - ok
11:16:37.0258 0x0d24 [ 99BDD2DFF6F04482B738A90D74688212, AC98F4A73DA1DB63A6DC97324CE5511B3B06E878703CEBB3FF1FB48089987C50 ] W32Time C:\WINDOWS\system32\w32time.dll
11:16:37.0290 0x0d24 W32Time - ok
11:16:37.0336 0x0d24 [ E20B95BAEDB550F32DD489265C1DA1F6, 5589B2067E6C9FBA290D8C5EADDC198EBAF39C50C3CD7D2BC5CDA7CBFBC445E5 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
11:16:37.0524 0x0d24 Wanarp - ok
11:16:37.0540 0x0d24 WDICA - ok
11:16:37.0571 0x0d24 [ 6768ACF64B18196494413695F0C3A00F, 3A8F8586F1D997D19A8478345338D2AECD785AEABDB61531DD3F92003D3230A5 ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
11:16:37.0743 0x0d24 wdmaud - ok
11:16:37.0805 0x0d24 [ 33D8E2812054D97A0AEC9B8F04277927, B30A5CB97B14DF9B9F94C6C9FC7A415458EDD85C46B085E0A51F304795CCF698 ] WebClient C:\WINDOWS\System32\webclnt.dll
11:16:37.0977 0x0d24 WebClient - ok
11:16:38.0086 0x0d24 [ F9E105F369C18E4001E0C05AAF600D73, EDA4AE346832CA7D3A0AC18DFE6470B57F33C7235252E0C3D2DF2418236F443B ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
11:16:38.0290 0x0d24 winmgmt - ok
11:16:38.0399 0x0d24 [ 250F8D15406269CB3A690B4A4859D92D, 69A60906D65680B91A907727D99794C809E00CA2C9D4C1FB3CD78CD68CE6CFA0 ] WinRM C:\WINDOWS\system32\WsmSvc.dll
11:16:38.0540 0x0d24 WinRM - ok
11:16:38.0602 0x0d24 [ C51B4A5C05A5475708E3C81C7765B71D, F776D2680BD3407307B7072626F78460361FC5BC38623C9E16F394D300AB25DE ] WmdmPmSN C:\WINDOWS\system32\mspmsnsv.dll
11:16:38.0680 0x0d24 WmdmPmSN - ok
11:16:38.0758 0x0d24 [ 87F11D161207C7063EDABAC0AADC33C3, 60BD9AC3EE591DDCAEACFD085937779732A7D36513059DFB01941C98DC296504 ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe
11:16:38.0930 0x0d24 WmiApSrv - ok
11:16:39.0055 0x0d24 [ 79A01ACD485687EE602411A06B63A9A5, 60B39E95BA8389F29CEEF2A5F118ADF16E2CEE66B63A094E18A4F00C51EB3838 ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
11:16:39.0180 0x0d24 WMPNetworkSvc - ok
11:16:39.0227 0x0d24 [ CF4DEF1BF66F06964DC0D91844239104, CC1D9CECE2056D29A9651D51BB57C3F4F9BF9E90A4808CF7496C683C874FBD51 ] WpdUsb C:\WINDOWS\system32\DRIVERS\wpdusb.sys
11:16:39.0274 0x0d24 WpdUsb - ok
11:16:39.0352 0x0d24 [ 15673BD0B86150CB8E27766059C72A9B, 56C23289A8BFF4945EE532CF6D62D3EC81B827CA15A359F30A327789F9FE9CAF ] WPFFontCache_v0400 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
11:16:39.0430 0x0d24 WPFFontCache_v0400 - ok
11:16:39.0461 0x0d24 [ 6ABE6E225ADB5A751622A9CC3BC19CE8, 4061C5D0F051DFF1730E2A3BFC1CCA97B29602FC50F10F6B44D93B0D28F42024 ] WS2IFSL C:\WINDOWS\System32\drivers\ws2ifsl.sys
11:16:39.0649 0x0d24 WS2IFSL - ok
11:16:39.0696 0x0d24 [ 843F7FA8EA38E6A4262976DCC994C81A, E3429581BA18910CC658449EA763CE7A2EE949BD65D43B177B0402A6037C4A46 ] wscsvc C:\WINDOWS\system32\wscsvc.dll
11:16:39.0868 0x0d24 wscsvc - ok
11:16:39.0930 0x0d24 [ 02E4055488047729B333F99D93877038, DE0C57AE8B828537B57D9EADEDEE3AAEBE5484A6C5A3FBE827F80987CDC0C5B2 ] wuauserv C:\WINDOWS\system32\wuauserv.dll
11:16:39.0946 0x0d24 wuauserv - ok
11:16:40.0008 0x0d24 [ F15FEAFFFBB3644CCC80C5DA584E6311, 79B3E9AF35976CE49921E9BEA3BA3B4A8AF762FD3F284B62954038B5FFB32471 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
11:16:40.0071 0x0d24 WudfPf - ok
11:16:40.0102 0x0d24 [ 28B524262BCE6DE1F7EF9F510BA3985B, AEFF02B899801A63CBB262757C3D4369E38BFF0690BD085DE60E873DFBE3C3F4 ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
11:16:40.0149 0x0d24 WudfRd - ok
11:16:40.0211 0x0d24 [ 05231C04253C5BC30B26CBAAE680ED89, 5C03C2D7E0B573646D32F4093E2FF2C3BA391C39F5BA37D67F69D38E357FCC3D ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
11:16:40.0258 0x0d24 WudfSvc - ok
11:16:40.0352 0x0d24 [ 991E417C2D3D07260757F165A8F40589, 218E373959E7865A883E22D45662F7A06C82EA6194A71C9588806A8BF38EA8CE ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
11:16:40.0477 0x0d24 WZCSVC - ok
11:16:40.0524 0x0d24 [ FD3C38635808920F8235BF2FED642F54, 1A9218967EE6E30F6DABE026E22478067B72E59FEE2EA9CD142859F138A42CF8 ] xmlprov C:\WINDOWS\System32\xmlprov.dll
11:16:40.0727 0x0d24 xmlprov - ok
11:16:40.0790 0x0d24 [ 9595EE81566A9EC4A96A6D5E2533E4F3, 175805B9A2A9F9ED60E28C6701F1F2BD933E8E38FD0A363F8B55E0666BE80FFD ] {6080A529-897E-4629-A488-ABA0C29B635E} C:\WINDOWS\system32\drivers\ialmsbw.sys
11:16:40.0852 0x0d24 {6080A529-897E-4629-A488-ABA0C29B635E} - ok
11:16:40.0868 0x0d24 [ 5CC069889A922ED647145FCA8371E545, D54DC22258E5A3E7AD1F475E5AAECEFD37AB581CA760CC60B32CFD6A53E9FE8C ] {D31A0762-0CEB-444e-ACFF-B049A1F6FE91} C:\WINDOWS\system32\drivers\ialmkchw.sys
11:16:40.0915 0x0d24 {D31A0762-0CEB-444e-ACFF-B049A1F6FE91} - ok
11:16:40.0930 0x0d24 ================ Scan global ===============================
11:16:40.0993 0x0d24 [ 953AD498333B03F7CE547151F96EF241, 15717B634AE15981714A7ACF02417A4EF80C72EEF355FC728E41B3DA36553434 ] C:\WINDOWS\system32\basesrv.dll
11:16:41.0040 0x0d24 [ 67F101FCFF1F46DFA9F41AD1B968509D, BDC495406582BCF5EF4BFAD307BAE59CADE230966427F54D6543F037F782AA27 ] C:\WINDOWS\system32\winsrv.dll
11:16:41.0086 0x0d24 [ 67F101FCFF1F46DFA9F41AD1B968509D, BDC495406582BCF5EF4BFAD307BAE59CADE230966427F54D6543F037F782AA27 ] C:\WINDOWS\system32\winsrv.dll
11:16:41.0149 0x0d24 [ D98A222A707FFE40043E533FE7A6BA24, D5609A1744061C1943F4ACEAD0278706FF6CF3D16AB206A38B0FC9B86B1387C2 ] C:\WINDOWS\system32\services.exe
11:16:41.0149 0x0d24 [ Global ] - ok
11:16:41.0165 0x0d24 ================ Scan MBR ==================================
11:16:41.0196 0x0d24 [ 3051207086651214E435112E51817DC5 ] \Device\Harddisk0\DR0
11:16:41.0461 0x0d24 \Device\Harddisk0\DR0 - ok
11:16:41.0493 0x0d24 [ 3051207086651214E435112E51817DC5 ] \Device\Harddisk1\DR1
11:16:41.0883 0x0d24 \Device\Harddisk1\DR1 - ok
11:16:41.0883 0x0d24 ================ Scan VBR ==================================
11:16:41.0899 0x0d24 [ 4C0D9503A4EC2FB404390C7EF0A74ACC ] \Device\Harddisk0\DR0\Partition1
11:16:41.0899 0x0d24 \Device\Harddisk0\DR0\Partition1 - ok
11:16:41.0915 0x0d24 [ 6853D9BB3DBC917F9E35F296FF002377 ] \Device\Harddisk1\DR1\Partition1
11:16:41.0915 0x0d24 \Device\Harddisk1\DR1\Partition1 - ok
11:16:41.0961 0x0d24 AV detected via SS1: Avira Desktop, 13.6.20.2100, disabled, updated
11:16:41.0961 0x0d24 Win FW state via NFM: enabled
11:16:44.0508 0x0d24 ============================================================
11:16:44.0508 0x0d24 Scan finished
11:16:44.0508 0x0d24 ============================================================
11:16:44.0524 0x07e0 Detected object count: 0
11:16:44.0524 0x07e0 Actual detected object count: 0