Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Laptop infected with Win32.LocalInfect.2 [Solved]


  • This topic is locked This topic is locked

#16
brh0303

brh0303

    Member

  • Topic Starter
  • Member
  • PipPip
  • 33 posts

Lets try the TDSSKill log:

 

14:01:49.0903 0x0e6c  TDSS rootkit removing tool 3.0.0.44 Jan 22 2015 08:27:04
14:01:49.0903 0x0e6c  UEFI system
14:01:57.0764 0x0e6c  ============================================================
14:01:57.0764 0x0e6c  Current date / time: 2015/07/05 14:01:57.0764
14:01:57.0764 0x0e6c  SystemInfo:
14:01:57.0764 0x0e6c  
14:01:57.0764 0x0e6c  OS Version: 6.3.9600 ServicePack: 0.0
14:01:57.0764 0x0e6c  Product type: Workstation
14:01:57.0764 0x0e6c  ComputerName: BONITAZ
14:01:57.0764 0x0e6c  UserName: Bonita
14:01:57.0764 0x0e6c  Windows directory: C:\Windows
14:01:57.0764 0x0e6c  System windows directory: C:\Windows
14:01:57.0764 0x0e6c  Running under WOW64
14:01:57.0764 0x0e6c  Processor architecture: Intel x64
14:01:57.0764 0x0e6c  Number of processors: 2
14:01:57.0764 0x0e6c  Page size: 0x1000
14:01:57.0764 0x0e6c  Boot type: Normal boot
14:01:57.0764 0x0e6c  ============================================================
14:01:58.0786 0x0e6c  KLMD registered as C:\Windows\system32\drivers\72261211.sys
14:01:59.0324 0x0e6c  System UUID: {8A1B417E-9F7F-FF80-50A0-6B367E0D44A3}
14:02:00.0006 0x0e6c  Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
14:02:00.0012 0x0e6c  ============================================================
14:02:00.0012 0x0e6c  \Device\Harddisk0\DR0:
14:02:00.0012 0x0e6c  GPT partitions:
14:02:00.0013 0x0e6c  \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {775A3156-463A-4F2D-B73F-2536EFDDA3D9}, Name: EFI system partition, StartLBA 0x800, BlocksNum 0x32000
14:02:00.0013 0x0e6c  \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {3E80AB0F-BF50-4F22-8C02-3C22EE1A6BB4}, Name: Basic data partition, StartLBA 0x32800, BlocksNum 0x1C2000
14:02:00.0013 0x0e6c  \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {741D25F8-9BD3-4026-B122-89F8E5DC06E6}, Name: Microsoft reserved partition, StartLBA 0x1F4800, BlocksNum 0x40000
14:02:00.0013 0x0e6c  \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {7A2BCF69-DB07-4374-9A0E-88835CB874F2}, Name: Basic data partition, StartLBA 0x234800, BlocksNum 0x3794C800
14:02:00.0013 0x0e6c  \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {436D9E19-7FB5-4350-864C-86573EC335B2}, Name: Basic data partition, StartLBA 0x37B81000, BlocksNum 0x2805000
14:02:00.0013 0x0e6c  MBR partitions:
14:02:00.0013 0x0e6c  ============================================================
14:02:00.0032 0x0e6c  C: <-> \Device\Harddisk0\DR0\Partition4
14:02:00.0032 0x0e6c  ============================================================
14:02:00.0032 0x0e6c  Initialize success
14:02:00.0032 0x0e6c  ============================================================
14:02:27.0669 0x1060  ============================================================
14:02:27.0669 0x1060  Scan started
14:02:27.0669 0x1060  Mode: Manual; SigCheck; TDLFS; 
14:02:27.0669 0x1060  ============================================================
14:02:27.0669 0x1060  KSN ping started
14:02:34.0325 0x1060  KSN ping finished: true
14:02:35.0726 0x1060  ================ Scan system memory ========================
14:02:35.0727 0x1060  System memory - ok
14:02:35.0727 0x1060  ================ Scan services =============================
14:02:35.0924 0x1060  [ E1832BD9FD7E0FC2DC9FA5935DE3E8C1, 41FF7418887AFC8B9C96EF21C5950DD342CC9E3C0D87AFD60A05B988C1D6CC23 ] 1394ohci        C:\Windows\System32\drivers\1394ohci.sys
14:02:36.0047 0x1060  1394ohci - ok
14:02:36.0082 0x1060  [ AD508A1A46EC21B740AB31C28EFDFDB1, 9B1046CF0B80723149BD359B55CC0B8B3ABBEAA9038469F542A4C345C503FB02 ] 3ware           C:\Windows\system32\drivers\3ware.sys
14:02:36.0108 0x1060  3ware - ok
14:02:36.0164 0x1060  [ E796AE43DDD1844281DB4D57294D17C0, 21AE69615044A96041E46476BE814B52C22624B6C7EA6BFC77BB64F69C3C21F5 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
14:02:36.0215 0x1060  ACPI - ok
14:02:36.0239 0x1060  [ AC8279D229398BCF05C3154ADCA86813, 083E86CBE53244D24C334DB1511C77025133AE7875191845764B890A8CA5AFA9 ] acpiex          C:\Windows\system32\Drivers\acpiex.sys
14:02:36.0263 0x1060  acpiex - ok
14:02:36.0279 0x1060  [ A8970D9BF23CD309E0403978A1B58F3F, 9946C8477104EEC7DB197E2222F9905307F101C398CCED4B5FD0F86A5622C791 ] acpipagr        C:\Windows\System32\drivers\acpipagr.sys
14:02:36.0323 0x1060  acpipagr - ok
14:02:36.0334 0x1060  [ 111A89C99C5B4F1A7BCE5F643DD86F65, 41A2E49FF443927D05F7EF638518108227852984E68D4663C8761178C0B84A45 ] AcpiPmi         C:\Windows\System32\drivers\acpipmi.sys
14:02:36.0392 0x1060  AcpiPmi - ok
14:02:36.0429 0x1060  [ 5758387D68A20AE7D3245011B07E36E7, 77832E200E8B0D259552F6F60FE454A887E3EBBB9EA2F3590E6645289A04E293 ] acpitime        C:\Windows\System32\drivers\acpitime.sys
14:02:36.0472 0x1060  acpitime - ok
14:02:36.0556 0x1060  [ A542C712794FB8FBD27E37271C730F36, 8C327BFAC10C7BBD48277D4FEB862D58CA1F22DC10F0632BB8B18CF54A507216 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
14:02:36.0574 0x1060  AdobeARMservice - ok
14:02:36.0670 0x1060  [ FB83B3EAD2AF9A7F8B77F0D50EEB8F0A, 432AF84C2E2B8EEAF742F743E92823FEF1E589F9CF246ECAD0F7D23316C221D3 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
14:02:36.0693 0x1060  AdobeFlashPlayerUpdateSvc - ok
14:02:36.0762 0x1060  [ 7C1FDF1B48298CBA7CE4BDD4978951AD, 80F4D536E1231B30E836F72ADC8814AE6AA9FEC573FB5F3F965FAC8ABCCAF0F8 ] ADP80XX         C:\Windows\system32\drivers\ADP80XX.SYS
14:02:36.0821 0x1060  ADP80XX - ok
14:02:36.0865 0x1060  [ BCD58DACAA1EAAADC115EDD940478F6D, F31613F583C302F62A00E6766B031531C9E193CAED563689B178BA257715B992 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
14:02:36.0925 0x1060  AeLookupSvc - ok
14:02:36.0977 0x1060  [ 374E27295F0A9DCAA8FC96370F9BEEA5, 51C394E0C2322D7D093941A1B8766171B5D1F47DF2FE0834209492891EA7D999 ] AFD             C:\Windows\system32\drivers\afd.sys
14:02:37.0076 0x1060  AFD - ok
14:02:37.0148 0x1060  [ 98022774D9930ECBB292E70DB7601DF6, BE64A40B9BE997D73C0FC14D97E204C9D886EDA07EC4C9391A70CE477084E5F1 ] AgereSoftModem  C:\Windows\system32\DRIVERS\agrsm64.sys
14:02:37.0252 0x1060  AgereSoftModem - ok
14:02:37.0274 0x1060  [ 7DFAEBA9AD62D20102B576D5CAC45EC8, 9FA5207335303D1E8E9A3C9E1FB82C09AD21B04382F69D777A67E48EE91D2093 ] agp440          C:\Windows\system32\drivers\agp440.sys
14:02:37.0295 0x1060  agp440 - ok
14:02:37.0331 0x1060  [ FE14D249D39368CA62D8DA6BC94AC694, E1036E22BFBD3750FD2D3DA6AB939B2DD54E824F4BD3E6539EF0E45AB5453DD1 ] ahcache         C:\Windows\system32\DRIVERS\ahcache.sys
14:02:37.0389 0x1060  ahcache - ok
14:02:37.0412 0x1060  [ 16F6F6B7903B913AB41AB848C8BB5658, 7304257048CB42E5274B3F6400F4A053A38E3B70A157662FE9D2B7C5979DE851 ] AiCharger       C:\Windows\system32\DRIVERS\AiCharger.sys
14:02:37.0437 0x1060  AiCharger - ok
14:02:37.0482 0x1060  [ 14A45BE6F5678339F0EC5752D9849410, DD0F60E96FAC68FBD5B86382E541408C613BD0F871D0E0A1EF9AB6E7B26E545C ] ALG             C:\Windows\System32\alg.exe
14:02:37.0542 0x1060  ALG - ok
14:02:37.0571 0x1060  [ 7589DE749DB6F71A68489DCE04158729, 5F35EDD50737985595C9D6703237CA2ADE49AA5443331020899698EB5114A0FB ] AmdK8           C:\Windows\System32\drivers\amdk8.sys
14:02:37.0620 0x1060  AmdK8 - ok
14:02:37.0657 0x1060  [ B46D2D89AFF8A9490FA8C98C7A5616E3, BE0765B5423B690E0F097FECD9717FAA95BFDFFDC6CF1B93DE5A19A1B7797879 ] AmdPPM          C:\Windows\System32\drivers\amdppm.sys
14:02:37.0697 0x1060  AmdPPM - ok
14:02:37.0721 0x1060  [ D2BF2F94A47D332814910FD47C6BBCD2, FE273D77D119D958676E1197D9EA7B008E3B05C6192B1962A81D4223ED204C35 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
14:02:37.0743 0x1060  amdsata - ok
14:02:37.0775 0x1060  [ A8E04943C7BBA7219AA50400272C3C6E, 794C0BD12DF0392654E9A37AE4A24B5BE2D83F1F24F74DD48A1A0BF3AB8B1FF8 ] amdsbs          C:\Windows\system32\drivers\amdsbs.sys
14:02:37.0811 0x1060  amdsbs - ok
14:02:37.0831 0x1060  [ CEA5F4F27CFC08E3A44D576811B35F50, 89DF64B81BD109BAABAE93A4603C1617241219F38DDAF325EFE6BD35FF6FD717 ] amdxata         C:\Windows\system32\drivers\amdxata.sys
14:02:37.0852 0x1060  amdxata - ok
14:02:37.0881 0x1060  [ 415DD71628795197F7AFC176CBADC74E, 5F0359053A6CD6EE239139E0E6F46E1FA9A73F017C0CE9B7BC052216B2C846EC ] AppID           C:\Windows\system32\drivers\appid.sys
14:02:37.0938 0x1060  AppID - ok
14:02:37.0975 0x1060  [ 34B2E222F82D05398DAE7203B36B6A2B, AC04BC6B5A36A6807FFE302E9ACF073342B4D76B0BB386249251CB3CA1852CE8 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
14:02:38.0014 0x1060  AppIDSvc - ok
14:02:38.0053 0x1060  [ 680BFB820C5A943AB709BAA2B1EF27F2, A51D2A7976A762FE470C13C6D1BA0319A0FB19C9E66BF02AA44F83EAEC7130F8 ] Appinfo         C:\Windows\System32\appinfo.dll
14:02:38.0121 0x1060  Appinfo - ok
14:02:38.0162 0x1060  [ 35E28923A23ADABAA5A1B43256D0AB58, A5F3AF8BBEE58B2165BAFACC5FF8B167B55B020998D3D1565C2229ED8753B269 ] AppReadiness    C:\Windows\system32\AppReadiness.dll
14:02:38.0235 0x1060  AppReadiness - ok
14:02:38.0318 0x1060  [ 573542B5E97772021B73E854DA861DAA, C3FD00FA28060F8D7CDFD455BBB5FF8239CB76DDFFF2BDAE6AA944674DD993D3 ] AppXSvc         C:\Windows\system32\appxdeploymentserver.dll
14:02:38.0439 0x1060  AppXSvc - ok
14:02:38.0489 0x1060  [ 65045784366F7EC5FB4E71BCF923187B, 53C215C64FF12E44B097F7CB88E8482438CE0ACBD3C68D8FD38BA0D0D8747FAA ] arcsas          C:\Windows\system32\drivers\arcsas.sys
14:02:38.0514 0x1060  arcsas - ok
14:02:38.0585 0x1060  [ 564CB886D1A968B9798C1AB03F4EB54F, F7F73E5C17C0848462860E367215F5D9D4C52E1AA26B3154EC60BA14CBD56556 ] ASLDRService    C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
14:02:38.0604 0x1060  ASLDRService - ok
14:02:38.0641 0x1060  [ 4C016FD76ED5C05E84CA8CAB77993961, 025E7BE9FCEFD6A83F4471BBA0C11F1C11BD5047047D26626DA24EE9A419CDC4 ] ASMMAP64        C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys
14:02:38.0654 0x1060  ASMMAP64 - ok
14:02:38.0691 0x1060  [ 591C1205CD75D271A4828869AC54EEEF, 2E34690DDC1A935ACEA9CD36DB2904B1895E7BFDFF54B5AF93241892B655B090 ] Asus WebStorage Windows Service C:\Program Files (x86)\ASUS\WebStorage\2.1.2.301\AsusWSWinService.exe
14:02:38.0711 0x1060  Asus WebStorage Windows Service - detected UnsignedFile.Multi.Generic ( 1 )
14:02:42.0928 0x1060  Asus WebStorage Windows Service ( UnsignedFile.Multi.Generic ) - warning
14:02:46.0623 0x1060  [ 74B14192CF79A72F7536B27CB8814FBD, 0CF6BBB63FFE0C12777664D80B2797923844C8392D0FD81D7962EE5EE2C3C3D9 ] atapi           C:\Windows\system32\drivers\atapi.sys
14:02:46.0644 0x1060  atapi - ok
14:02:46.0830 0x1060  [ BBE82125AC1E180DA7E3AF98AB4C0DA2, A0723EBC70B861B2F7EEF7CAEBE66DEF044CBCB0D5C8F4441197264EF69E9641 ] athr            C:\Windows\system32\DRIVERS\athwbx.sys
14:02:47.0061 0x1060  athr - ok
14:02:47.0089 0x1060  [ DBC598E47E7A382E60E2A4745D41FEF9, A810AC197CA456B0285E2CAE6986D38B31F4ADA32BEB47EC7A48A2B2196BA639 ] ATKGFNEXSrv     C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
14:02:47.0105 0x1060  ATKGFNEXSrv - ok
14:02:47.0133 0x1060  [ C435191FAD19B43E5C3082E4275DCE75, 12D8AF471CA89FE59790092EF3274D638B4B978F1F061423F8D70F270121CF7A ] ATKWMIACPIIO    C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys
14:02:47.0147 0x1060  ATKWMIACPIIO - ok
14:02:47.0178 0x1060  [ 22973DEAE98D27F5BBDBA6B093B8DC0A, FD2CAF329AFD1934C1C57E9CC47926443B53039F4B55543C1CB473D01887E754 ] ATP             C:\Windows\System32\drivers\AsusTP.sys
14:02:47.0193 0x1060  ATP - ok
14:02:47.0231 0x1060  [ 8779FDAE68BC948B0FE152E758CC8DA7, 13070C2073F8E7546B48AE9CF54067B9BB75DFCD98F2987B90FFAD20D40D54CF ] AudioEndpointBuilder C:\Windows\System32\AudioEndpointBuilder.dll
14:02:47.0280 0x1060  AudioEndpointBuilder - ok
14:02:47.0336 0x1060  [ 61EA45A645854FE81D8A924E2D93DFFE, 34F79532297F609CA93C380B68BB8B7B0F027F9C8F4FB8E02A9A43EA3D155F1B ] Audiosrv        C:\Windows\System32\Audiosrv.dll
14:02:47.0397 0x1060  Audiosrv - ok
14:02:47.0438 0x1060  [ 3C6ED74AF41DD1A5585CE5EF3D00915F, A742F576407776634E5A8E49C60023FFDF395DE0B2DE36662A23F85B79405ED2 ] AxInstSV        C:\Windows\System32\AxInstSV.dll
14:02:47.0501 0x1060  AxInstSV - ok
14:02:47.0556 0x1060  [ A4A73F631FE2AA2826FBE4A399B04DEF, 973AACE8DC8DA669D0DF20F17EFDEEABB90AA046AC980948D16A62D39A606A79 ] b06bdrv         C:\Windows\system32\drivers\bxvbda.sys
14:02:47.0601 0x1060  b06bdrv - ok
14:02:47.0617 0x1060  [ 8CC7F7E4AFCBA605921B137ED7992C68, 71406E6D6E9964740A6D90B05329D5492BB90AF40E0630CF2FBF4BA4BA14F2DD ] BasicDisplay    C:\Windows\System32\drivers\BasicDisplay.sys
14:02:47.0669 0x1060  BasicDisplay - ok
14:02:47.0684 0x1060  [ 38A82F4EE8C416A6744B6D30381ED768, 9EAAE5F43BA09359130AC04B1DCA0F5D4DF32ED89C02DC5CEB640918948847F7 ] BasicRender     C:\Windows\System32\drivers\BasicRender.sys
14:02:47.0724 0x1060  BasicRender - ok
14:02:47.0763 0x1060  [ C1ABB0F7E3BEA48A0417BDF6FF14AB21, 1CAC63A1A0FB9855A27EE977794576A860F6650C9EF7667FFB27F2A2FF721857 ] bcmfn2          C:\Windows\System32\drivers\bcmfn2.sys
14:02:47.0778 0x1060  bcmfn2 - ok
14:02:47.0824 0x1060  [ 77D760E9B477C21487C171F561497F98, 2393D466CEC863C771C5BB4CD81B251635DC084386134B8E13F74F3E1C6D68DF ] BDESVC          C:\Windows\System32\bdesvc.dll
14:02:47.0903 0x1060  BDESVC - ok
14:02:47.0921 0x1060  [ EC19013E4CF87609534165DF897274D6, 8ED45537CF2D58D759A587CCBFDADD5580C7447B0C3B172CF19ECC7585E073FC ] Beep            C:\Windows\system32\drivers\Beep.sys
14:02:47.0962 0x1060  Beep - ok
14:02:48.0031 0x1060  [ 7BCB00EA702F78EC74CD9699D85CE80B, 17241ADAA13051B560DB9FA9079CAE6321D5B49788B596C125DC912443B00421 ] BFE             C:\Windows\System32\bfe.dll
14:02:48.0108 0x1060  BFE - ok
14:02:48.0183 0x1060  [ 48554994279BFE17A3D2B00076D0CB1A, 6521B1EC0BC6B01F63976370D89FE7DC2E7404899F68B6FAC37A9173B9C5D489 ] BITS            C:\Windows\System32\qmgr.dll
14:02:48.0290 0x1060  BITS - ok
14:02:48.0316 0x1060  [ 6B4FFFDDC618FCF64473CAA86E305697, 29EA66071D5822920F5C50533673ADAB5204F8B25C11027AD27450D881F1142D ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
14:02:48.0366 0x1060  bowser - ok
14:02:48.0406 0x1060  [ FA601515FF2B59F25FDD8EDB1D2A1104, 21DFB53241F8E880F7546B9ADF38F47D6AD0782EC7F8F0284ED69DE7CEF7DCB9 ] BrokerInfrastructure C:\Windows\System32\bisrv.dll
14:02:48.0479 0x1060  BrokerInfrastructure - ok
14:02:48.0528 0x1060  [ BC111AADACD0BF59D56547461D13AB6E, 91E3619930C29EE4B2683683888BA7EE3CF6B1DDB0C19A14E0880470CBE40EF4 ] Browser         C:\Windows\System32\browser.dll
14:02:48.0623 0x1060  Browser - ok
14:02:48.0655 0x1060  [ A8F23D453A424FF4DE04989C4727ECC7, AE4A9081395C7379F1C947EF8243F7609F90C843E086B8E77E1A2C06E36D4381 ] BthAvrcpTg      C:\Windows\System32\drivers\BthAvrcpTg.sys
14:02:48.0697 0x1060  BthAvrcpTg - ok
14:02:48.0726 0x1060  [ 1104A31260CCF4318C884E0AE6C513BF, A8F83B558944DEF0F84414A11DC3CB90C3A92377B46760EC0A9B8BC22FB0D5C7 ] BthEnum         C:\Windows\System32\drivers\BthEnum.sys
14:02:48.0775 0x1060  BthEnum - ok
14:02:48.0809 0x1060  [ 272A62B660A48AEF366F8A1836CED19F, 78EFAC6B1B2313482329BBFFBF0DDA6462BD88E5BE3C817C5E8E0EAF3074C925 ] BthHFEnum       C:\Windows\System32\drivers\bthhfenum.sys
14:02:48.0849 0x1060  BthHFEnum - ok
14:02:48.0887 0x1060  [ 71FE2A48E4C93DDB9798C024880B6C07, 8E93DE29C61A5FA64216231228CB3C4A1A693FE87CAA2C070BCAD7BE2D8ED000 ] bthhfhid        C:\Windows\System32\drivers\BthHFHid.sys
14:02:48.0915 0x1060  bthhfhid - ok
14:02:48.0963 0x1060  [ 9307A4B743D277C499CDA8E19E5687AC, 7A01989EC3D54581F292BDEDC9B9445F2ABD50165102617E3089BDD061C63A19 ] BthHFSrv        C:\Windows\System32\BthHFSrv.dll
14:02:49.0016 0x1060  BthHFSrv - ok
14:02:49.0032 0x1060  [ 66B791F6B11DC4303DD18A224A501542, 502AE4D6FFC6B0FCED081B0E0F61F699F96F20DFEE737B53828F5DEE3BD0FCB1 ] BTHMODEM        C:\Windows\System32\drivers\bthmodem.sys
14:02:49.0075 0x1060  BTHMODEM - ok
14:02:49.0106 0x1060  [ 25BB93167DEF270188072603F92A1EF5, CE4637CE4B63420E218F53CAF89A8C85D036B879B80456FEF3C7C395590E26BB ] BthPan          C:\Windows\System32\drivers\bthpan.sys
14:02:49.0155 0x1060  BthPan - ok
14:02:49.0238 0x1060  [ C37F4930795B771400C63C3C87E7A6C2, 0D0F54184B2DAA45F646E4F69B85C4411E8DFA88EB4763BB0F386055A420F217 ] BTHPORT         C:\Windows\System32\Drivers\BTHport.sys
14:02:49.0325 0x1060  BTHPORT - ok
14:02:49.0372 0x1060  [ 043A0F37631BF453F16D478B71320F46, C368296B802984F438852927B8A40EA3F4205724A05828F3173F08EC17228356 ] bthserv         C:\Windows\system32\bthserv.dll
14:02:49.0443 0x1060  bthserv - ok
14:02:49.0474 0x1060  [ 08EA90955AED2D959EE67DF6EDF0E2B6, 0A70AA67E5DD24C473C66A570C0FEBA9D398A0F0AD8386FE05D01C4D16346968 ] BTHUSB          C:\Windows\System32\Drivers\BTHUSB.sys
14:02:49.0513 0x1060  BTHUSB - ok
14:02:49.0539 0x1060  [ 2FA6510E33F7DEFEC03658B74101A9B9, 61C8C8E3F09B427711464C974EE22E1E01C48E10DB54A4EC9901F482FC36C978 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
14:02:49.0587 0x1060  cdfs - ok
14:02:49.0616 0x1060  [ C6796EA22B513E3457514D92DCDB1A3D, 2B893F3950C6B913B934C2089B69F3B0B77F229AE1820907E598455CBB78139C ] cdrom           C:\Windows\System32\drivers\cdrom.sys
14:02:49.0648 0x1060  cdrom - ok
14:02:49.0693 0x1060  [ 41C0D7B1A6D4AD119BA6AC0487EA5C8E, 516C2B34BA7507D0DA4148B4ABC0A8C36286570D4EA5C60B28647B1249C15018 ] CertPropSvc     C:\Windows\System32\certprop.dll
14:02:49.0770 0x1060  CertPropSvc - ok
14:02:49.0801 0x1060  [ BE9936EDD3267FAAFF94A7835867F00B, 3CEEF2377D45ED38C7CD3CE4C746EC5EA7277EFEC728A5438F0EF5F62FC7C859 ] circlass        C:\Windows\System32\drivers\circlass.sys
14:02:49.0826 0x1060  circlass - ok
14:02:49.0881 0x1060  [ 8EB7E70C2D348FE2476A2E3F2D585E3D, 2B5D407FACF1D049261026CC552A7C93B028A661B0F4E959815EAE7670054127 ] CLFS            C:\Windows\system32\drivers\CLFS.sys
14:02:49.0917 0x1060  CLFS - ok
14:02:50.0118 0x1060  [ 85FF7BE64BF886933E4385FC5CA97C99, FFD5CBC07C016CC78342BC4DFBEF9E70285BEADEB0DB70CD92D065A68CB2814F ] ClickToRunSvc   C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe
14:02:50.0238 0x1060  ClickToRunSvc - ok
14:02:50.0282 0x1060  [ EF6EF85DADC3184A10D8F2F7159973CB, 42FCB286CED95A5DEBC5C0C894FCBC4818A2C818BB71087142FB51A08A0BE96B ] CmBatt          C:\Windows\System32\drivers\CmBatt.sys
14:02:50.0330 0x1060  CmBatt - ok
14:02:50.0376 0x1060  [ 5E5AB950693F2C6D6ACBEE3A74697ED7, 3790A7DD0AC65F47A697A577744FDFA4CC1CA3422884C84E499F97AC91BA84F3 ] CNG             C:\Windows\system32\Drivers\cng.sys
14:02:50.0423 0x1060  CNG - ok
14:02:50.0460 0x1060  [ 03AAED827C36F35D70900558B8274905, 8E44A23C6013FFAE7769F99CAA3B1D6288DE00A38937F9056903AC265B503AFA ] CompositeBus    C:\Windows\System32\drivers\CompositeBus.sys
14:02:50.0499 0x1060  CompositeBus - ok
14:02:50.0507 0x1060  COMSysApp - ok
14:02:50.0533 0x1060  [ A1FF7DFBFBE164CF92603C651D304DD2, 470ACE5A75E64FC62C950037201199857E974803625DC73BEDBCF6FA4DDD496C ] condrv          C:\Windows\system32\drivers\condrv.sys
14:02:50.0572 0x1060  condrv - ok
14:02:50.0649 0x1060  [ DE25C7437EFBE3078CF361CBE1F3425B, DCA8DDC2B9AF046EBFAE03D0EAFDC48F1195A6155DC5427E3D30E7C000A6536B ] cphs            C:\Windows\SysWow64\IntelCpHeciSvc.exe
14:02:50.0675 0x1060  cphs - ok
14:02:50.0720 0x1060  [ 6324F0D18FB52833BA64BC828E29054C, 04118FA1BDFC512F76E4A81FEF34C78B6BD98429DB1D65123B6802B4A1E30584 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
14:02:50.0777 0x1060  CryptSvc - ok
14:02:50.0798 0x1060  [ 315BA4BC19316D72B2E037534E048B93, 69613635DB23E6A935673B1025C2010ED3E195473D25368CF74234C4C36910BE ] dam             C:\Windows\system32\drivers\dam.sys
14:02:50.0821 0x1060  dam - ok
14:02:50.0888 0x1060  [ A6F17C299A03BAFEFB9257C462A19E00, EB68967D28355271897166D7B6FD963D1E546D3C24AE1AEAAC561F94357A9345 ] DcomLaunch      C:\Windows\system32\rpcss.dll
14:02:50.0972 0x1060  DcomLaunch - ok
14:02:51.0030 0x1060  [ 95E1ABFB27F8A62ED764805775F0D2F3, 692865DA60C93481E01592883678B2C51FD9AC9A835DFB00A8E3F2DFEE7AB0ED ] defragsvc       C:\Windows\System32\defragsvc.dll
14:02:51.0106 0x1060  defragsvc - ok
14:02:51.0160 0x1060  [ FF086DEF5995558CCB1B5AAC2110195D, CED52FF01F9247BFDAFC5C7EFC538F8638146ED715574A422496EE0F846CB079 ] DeviceAssociationService C:\Windows\system32\das.dll
14:02:51.0207 0x1060  DeviceAssociationService - ok
14:02:51.0245 0x1060  [ 2C02AFF8383D893F8DBEB07A84F6E77C, 7CC34BAC67E2988E3D16DD6EB6F6785CD2460E3EF7FBD0BD5F86E49793BD473E ] DeviceInstall   C:\Windows\system32\umpnpmgr.dll
14:02:51.0319 0x1060  DeviceInstall - ok
14:02:51.0358 0x1060  [ A03F362C5557E238CBFA914689C77248, BAD0A1124E6A384C15028FBE121ADF650F7716442555AD3737B9EA1F58A69246 ] Dfsc            C:\Windows\system32\Drivers\dfsc.sys
14:02:51.0413 0x1060  Dfsc - ok
14:02:51.0449 0x1060  [ 73BDD44A6088916964945886F9025409, 8E2ECC9AAEF3C6EBA2E61D25F657FDFCC72AB517CC4FD5FFF992E1F9EB942662 ] dg_ssudbus      C:\Windows\system32\DRIVERS\ssudbus.sys
14:02:51.0467 0x1060  dg_ssudbus - ok
14:02:51.0519 0x1060  [ 3EEAADA3125431980E5804ED7143458A, 381E12C83E3211C255B321D35536F4049D67E31061F8D82155E4D4509E97F43D ] Dhcp            C:\Windows\system32\dhcpcore.dll
14:02:51.0594 0x1060  Dhcp - ok
14:02:51.0720 0x1060  [ 3ECB752A6963B1CBC9AD65ED89C8ACED, 1D47D2EBD2C8D2B9F8D2D12A5FD93E6B10335EB6B23252DDEA6DF2233655FA59 ] DiagTrack       C:\Windows\system32\diagtrack.dll
14:02:51.0824 0x1060  DiagTrack - ok
14:02:51.0850 0x1060  [ 4D40C9B33F738797CF50E77CB7C53E85, 7BA341342A47DEB15B51971C97A5237ACD8BDAD9033F63DF0000892BE43F8E13 ] disk            C:\Windows\system32\drivers\disk.sys
14:02:51.0874 0x1060  disk - ok
14:02:51.0907 0x1060  [ EB70A894708D1BC176AFD690FF06085F, 0DD2A97F5E1B38D1F7C0D44E50F09EA222B18B3B074CC9C8CD25A7526CB1A112 ] dmvsc           C:\Windows\System32\drivers\dmvsc.sys
14:02:51.0953 0x1060  dmvsc - ok
14:02:52.0001 0x1060  [ 33ADFB7453BF3271463712C4BCE61AD1, A1DB30F874BA7B2C4C653494D70B46B94BF7D39D0DD8559F6CA7A14B676FD617 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
14:02:52.0042 0x1060  Dnscache - ok
14:02:52.0093 0x1060  [ 811EACBCC7C51A03AE11F13CC27B2AB6, FAB94F84950FFB7D3649BAFB8D96D43B880D7FDE8D5B879472AE26C4BC4203B0 ] dot3svc         C:\Windows\System32\dot3svc.dll
14:02:52.0151 0x1060  dot3svc - ok
14:02:52.0194 0x1060  [ B99CB575986789A93A683DCF292A43A1, 6ACEA31C723B74003E106FC8303542FCC6DBC4952B6B523F6590D006BE57238D ] DPS             C:\Windows\system32\dps.dll
14:02:52.0232 0x1060  DPS - ok
14:02:52.0271 0x1060  [ 00C594D5A1DBD22AD8B2902B9F6EFF94, 2920D62B5F7C49A8AFA80FCAD1E834BBAA670AEBDD7E6F21F0496D1D3CCB4E90 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
14:02:52.0290 0x1060  drmkaud - ok
14:02:52.0333 0x1060  [ 263625A4F616538EB867B6306A6590DB, 2A064720C247EAA3446EFDCC9E01D84CBA875905D78DFED0FBD62D1EE422D416 ] DsmSvc          C:\Windows\System32\DeviceSetupManager.dll
14:02:52.0368 0x1060  DsmSvc - ok
14:02:52.0462 0x1060  [ E1BB0B6F00F470B451AB45EA13EBA0B3, 3A2FC2175B69A5EB98D6C2D563DBFDCB320647AB87A14E47FAE800423DCACDAB ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
14:02:52.0563 0x1060  DXGKrnl - ok
14:02:52.0609 0x1060  [ FA988D76745C917CDFE20031C06DE860, B01AA3611869854D3BCA8B6CD7A6F48CC3537145DD3EBE50F5BEF72239924BF7 ] e1iexpress      C:\Windows\system32\DRIVERS\e1i63x64.sys
14:02:52.0663 0x1060  e1iexpress - ok
14:02:52.0704 0x1060  [ E253530BD5EDE28F1FF6AF93C4D8034D, 787A70C3E946348F066FB8EB81FCE60157217D93FD78ADC631B5835E8D76A253 ] Eaphost         C:\Windows\System32\eapsvc.dll
14:02:52.0770 0x1060  Eaphost - ok
14:02:52.0940 0x1060  [ 114BCFDF367FF37C3F1B0A96AF542E4D, D385BC1D91BC1406091C8C3691C07A90BD60EDE05B1384E5AA3506FCB909C857 ] ebdrv           C:\Windows\system32\drivers\evbda.sys
14:02:53.0158 0x1060  ebdrv - ok
14:02:53.0195 0x1060  [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] EFS             C:\Windows\System32\lsass.exe
14:02:53.0218 0x1060  EFS - ok
14:02:53.0250 0x1060  [ 43531A5993380CC5113242C29D265FD9, EE0076D96F7F3CF29884AC7A67C08A429115A7201354A1FB5DE45FD63ABB4960 ] EhStorClass     C:\Windows\system32\drivers\EhStorClass.sys
14:02:53.0273 0x1060  EhStorClass - ok
14:02:53.0297 0x1060  [ 6F8E738A9505A388B1157FDDE7B3101B, 3696CA634102B41EEA11EB9DCA0B24439D8636AED4A7190C138C5E64A2EFB514 ] EhStorTcgDrv    C:\Windows\system32\drivers\EhStorTcgDrv.sys
14:02:53.0324 0x1060  EhStorTcgDrv - ok
14:02:53.0346 0x1060  [ DFFFAE1442BA4076E18EED5E406FA0D3, 329FC6FB8D14BEACDBE2A5D4C496EDEA485E838B1DF27566E278F8F8E0D8E82E ] ErrDev          C:\Windows\System32\drivers\errdev.sys
14:02:53.0379 0x1060  ErrDev - ok
14:02:53.0451 0x1060  [ F00C593994D57C75273F820653440536, 2DC986D9890EC907405FB2045E6F55ACC384169B45F0B56CCB1A953CF71D9A5D ] EventSystem     C:\Windows\system32\es.dll
14:02:53.0524 0x1060  EventSystem - ok
14:02:53.0559 0x1060  [ 7729D294A555C7AEB281ED8E4D0E01E4, 7269E79D72CCE477AC108294D0DDFB59CF533B03C587599C5AB0507C43A0B6D4 ] exfat           C:\Windows\system32\drivers\exfat.sys
14:02:53.0633 0x1060  exfat - ok
14:02:53.0653 0x1060  [ 7C4E0D5900B2A1D11EDD626D6DDB937B, 732F310F8F6016C56F432A81636B13CE0124A802FE8DD91287B618EED22C9A1D ] fastfat         C:\Windows\system32\drivers\fastfat.sys
14:02:53.0685 0x1060  fastfat - ok
14:02:53.0740 0x1060  [ 304B6AEC4639A7CCCCF544C6BA6177B2, B75CDD52FD3890B3008E06C503945D1E36478F0EC5E067C8DBC2822D7935D24B ] Fax             C:\Windows\system32\fxssvc.exe
14:02:53.0831 0x1060  Fax - ok
14:02:53.0846 0x1060  [ 5D8402613E778B3BD45E687A8372710B, EE9EA10805168D309A609B9019AEC5961EE46D18207B5E0EA2DE4064A5770AF8 ] fdc             C:\Windows\System32\drivers\fdc.sys
14:02:53.0884 0x1060  fdc - ok
14:02:53.0922 0x1060  [ 020D2F29009F893ADEFF4405B4B44565, 9F8501064C72933D1442DA00E70392B30D0207EB7D60F50E6648FF363799E6F1 ] fdPHost         C:\Windows\system32\fdPHost.dll
14:02:54.0012 0x1060  fdPHost - ok
14:02:54.0042 0x1060  [ E80D2EDD2F88B6E20076A0A4F5A5A245, E3CD6E0BE152B22E8A7340EFFD10CCDB1B632CD3EDF487E83F697D2E22A7D594 ] FDResPub        C:\Windows\system32\fdrespub.dll
14:02:54.0080 0x1060  FDResPub - ok
14:02:54.0119 0x1060  [ 47AB7D16EDE434B934AA4D661456C2D5, D375A92FB3E4BB0A8DA5270DACC888E53FB9F514516039FE6DAE4D4EF6B9A970 ] fhsvc           C:\Windows\system32\fhsvc.dll
14:02:54.0158 0x1060  fhsvc - ok
14:02:54.0181 0x1060  [ BCFD8B149B3ADF92D0DB1E909CAF0265, 002B085C131473642450176B4B8359F3E5B04350AFB659B9C0F9EB587D1181E7 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
14:02:54.0204 0x1060  FileInfo - ok
14:02:54.0249 0x1060  [ A1A66C4FDAFD6B0289523232AFB7D8AF, 0F5832F626BB62190D5F3A088CE6E048D8A400CCF9EA527F06973CAD96D3A81C ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
14:02:54.0310 0x1060  Filetrace - ok
14:02:54.0325 0x1060  [ BE743083CF7063C486A4398E3AEFE59A, 85796D89943DD6FE3932C1ED6CF01470C1B4DFD243C390B07055FFDA3C231551 ] flpydisk        C:\Windows\System32\drivers\flpydisk.sys
14:02:54.0358 0x1060  flpydisk - ok
14:02:54.0410 0x1060  [ C1FB505A73FA2E9019D32444AB33B75A, 765F0635C18295855CA4C0394192E8B94BA2EA1C4D74F86B720358ABA019FFAA ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
14:02:54.0450 0x1060  FltMgr - ok
14:02:54.0555 0x1060  [ 6C068E7207F183FF3647E45D2599E80C, D65C9888522CA29596D5C8BEFF42356F0310E812117E72C1D612BA089C0940D9 ] FontCache       C:\Windows\system32\FntCache.dll
14:02:54.0668 0x1060  FontCache - ok
14:02:54.0747 0x1060  [ 1C52387BF5A127F5F3BFB31288F30D93, 90D13F60170CD74304F3036A90D596AA3E1E134455A780310BDF67AC7815F2E7 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
14:02:54.0766 0x1060  FontCache3.0.0.0 - ok
14:02:54.0806 0x1060  [ A7C31B168F371E8E6796219F23E354DB, C51C9BF568F1E96CBBE57D2432B38F93F40520086DDB6AAAAC48CBCD1691B441 ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
14:02:54.0827 0x1060  FsDepends - ok
14:02:54.0862 0x1060  [ 09F460AFEDCA03F3BF6E07D1CCC9AC42, B832091BC9B2C2FE38A4BCA132ABB58251E851F21EC6F39636E73777AB9A5791 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
14:02:54.0881 0x1060  Fs_Rec - ok
14:02:54.0939 0x1060  [ F152D55E497E12256290C43B31C7D0CE, FFC54B14CCFBC1548948C07FB3866E40A11D0C05AC352BD000E71CEF053F6A6E ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
14:02:54.0985 0x1060  fvevol - ok
14:02:55.0004 0x1060  [ 9591D0B9351ED489EAFD9D1CE52A8015, AC64C236C3AE545FCE8ED44A4A87FB86265A453BA60026EC9A4DE2B631E99996 ] FxPPM           C:\Windows\System32\drivers\fxppm.sys
14:02:55.0033 0x1060  FxPPM - ok
14:02:55.0054 0x1060  [ FC3EF65EE20D39F8749C2218DBA681CA, 12980F1DE99B25E6920A33556F3ABDA5EC9BFE4757BE602130B5E939D8D25CE3 ] gagp30kx        C:\Windows\system32\drivers\gagp30kx.sys
14:02:55.0076 0x1060  gagp30kx - ok
14:02:55.0146 0x1060  [ 9ACFC1E97F789D3C2E6E44431C9FB47B, BE5787A7B9F96BE384FF9EE4962766E7A83C60E74613557FE5274E3900889B6B ] GamesAppIntegrationService C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
14:02:55.0174 0x1060  GamesAppIntegrationService - ok
14:02:55.0207 0x1060  [ C23410A44ADDF0E1A9B4BA42A5DD5EA7, 384382D16D09A17E29D8348E1CF8DD7E377607DB3472AB8888EF8E83671B772C ] GamesAppService C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
14:02:55.0229 0x1060  GamesAppService - ok
14:02:55.0267 0x1060  [ 0BF5CAD281E25F1418E5B8875DC5ADD1, 0929AD8437DD78234553D8B2CDF0D6838FD54ACDE1918AFEBE48684EB32A07A3 ] gencounter      C:\Windows\System32\drivers\vmgencounter.sys
14:02:55.0300 0x1060  gencounter - ok
14:02:55.0336 0x1060  [ 8DF1254093B5C354CE725EB6B9B0DE19, DE6C5661CC076DA44B8A5D044FDB7280EDCF38D322A98C14FDC82E25586B3014 ] GPIOClx0101     C:\Windows\system32\Drivers\msgpioclx.sys
14:02:55.0362 0x1060  GPIOClx0101 - ok
14:02:55.0444 0x1060  [ 0D03F87D4FF4ADBAF8336DD80548155A, BC10CFA88EA2F41A8D96CB810B7953A4C168B79273A3E804A9F020F49AB58CD3 ] gpsvc           C:\Windows\System32\gpsvc.dll
14:02:55.0545 0x1060  gpsvc - ok
14:02:55.0599 0x1060  [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
14:02:55.0616 0x1060  gupdate - ok
14:02:55.0625 0x1060  [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
14:02:55.0642 0x1060  gupdatem - ok
14:02:55.0693 0x1060  [ 56F69F7C25FB67C970997D7066DBC593, 83E03A82237DCC5BCB3E722ACECACEF3510CAA619F33E0D7C4D902A482E90418 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
14:02:55.0749 0x1060  HdAudAddService - ok
14:02:55.0789 0x1060  [ D4B7ED39C7900384D9E5C1283F1E7926, F93F98858067B40F1C071EAD0F8E85442A78B95342BC692AF4D726540634923F ] HDAudBus        C:\Windows\System32\drivers\HDAudBus.sys
14:02:55.0837 0x1060  HDAudBus - ok
14:02:55.0862 0x1060  [ 10A70BC1871CD955D85CD88372724906, 2480A74854D0A89FF028EE9BA41224D4B2F9B0863066BFC43097920794FEE08D ] HidBatt         C:\Windows\System32\drivers\HidBatt.sys
14:02:55.0897 0x1060  HidBatt - ok
14:02:55.0942 0x1060  [ 42F88B57CAE42FC10059C887B3FCFCEA, 9363AA2B8E839A6935A7C6A36C491938DF78024886DCCE6D29CB18E1D6A6D806 ] HidBth          C:\Windows\System32\drivers\hidbth.sys
14:02:55.0981 0x1060  HidBth - ok
14:02:55.0996 0x1060  [ C241A8BAFBBFC90176EA0F5240EACC17, 571E20B87818618BE9179986177D55739A240F04D1F740B3C1B7809B9427B767 ] hidi2c          C:\Windows\System32\drivers\hidi2c.sys
14:02:56.0020 0x1060  hidi2c - ok
14:02:56.0045 0x1060  [ 9BDDEE26255421017E161CCB9D5EDA95, B766FD5E31708F29384F69418FC33C4BCC6E3064AA553D5B1D30EE0B8B1BFB40 ] HidIr           C:\Windows\System32\drivers\hidir.sys
14:02:56.0079 0x1060  HidIr - ok
14:02:56.0110 0x1060  [ EA85B5093DF7B5C3E80362B053740AE2, 1D4251385402A2ADEE8FA1642F54180304F88337DA74989BDE44025ABB145FE5 ] hidserv         C:\Windows\system32\hidserv.dll
14:02:56.0177 0x1060  hidserv - ok
14:02:56.0202 0x1060  [ 894D982CEAB8CD45A56AE2C9988E86C0, AA2DEB62CB69FF1AEF772989342F2CF77CA48F212C9489A92A4FF97FD46D3866 ] HIDSwitch       C:\Windows\System32\drivers\AsHIDSwitch64.sys
14:02:56.0216 0x1060  HIDSwitch - ok
14:02:56.0252 0x1060  [ 8DB8EAB9D0C6A5DF0BDCADEA239220B4, EDA23E6909EB83E5E148816DFB16CC29EA01BD6BD2F73AA46B3D820B85FB9C83 ] HidUsb          C:\Windows\System32\drivers\hidusb.sys
14:02:56.0315 0x1060  HidUsb - ok
14:02:56.0356 0x1060  [ 93C4315F47F8D635C6DB0DF49FCE10EE, 70C52B8927D54ACD23F27948780B522974250FD5CD81AA9801C3F158C402889F ] hkmsvc          C:\Windows\system32\kmsvc.dll
14:02:56.0410 0x1060  hkmsvc - ok
14:02:56.0452 0x1060  [ AC49522ED106BD4B545D6614D71C2445, 40BD738A301170378ECFC031635EB04E2F812B676376CADDD6607ECABEC9255F ] HomeGroupListener C:\Windows\system32\ListSvc.dll
14:02:56.0509 0x1060  HomeGroupListener - ok
14:02:56.0563 0x1060  [ 99932E30CE0283B73BB6E5019E150394, 1F88C2F56A7B8E1F75E6359281F418F9661DA4FB7B7D7B14FA7F718B15D4DCE0 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
14:02:56.0609 0x1060  HomeGroupProvider - ok
14:02:56.0639 0x1060  [ A6AACEA4C785789BDA5912AD1FEDA80D, D197012A5DA6AB3F76FF298336DF0CF027C07ECC71267BAEF5912DE12893E096 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
14:02:56.0662 0x1060  HpSAMD - ok
14:02:56.0765 0x1060  [ E87A6D3B8FECD5B93BC0CFBB48C27970, 55C49B6F3822450447C082B40A263F3370694DB53AD0018ADEB911E4A9F65A88 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
14:02:56.0829 0x1060  HTTP - ok
14:02:56.0847 0x1060  [ 90656C0B3864804B090434EFC582404F, BDB60050B729AACB9E009AC7129BEBD6298BBD8A9DB14B817D02E8E13669BD6E ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
14:02:56.0867 0x1060  hwpolicy - ok
14:02:56.0896 0x1060  [ 6D6F9E3BF0484967E52F7E846BFF1CA1, C982966BDE6A3E6773D9441ADA7A3B08D13511DFC68D04DF303248B942423F38 ] hyperkbd        C:\Windows\System32\drivers\hyperkbd.sys
14:02:56.0917 0x1060  hyperkbd - ok
14:02:56.0942 0x1060  [ 907C870F8C31F8DDD6F090857B46AB25, 308664A31717383D06185875E76C6612407A9F04E7DB28404F574A5706C6715D ] HyperVideo      C:\Windows\system32\DRIVERS\HyperVideo.sys
14:02:56.0970 0x1060  HyperVideo - ok
14:02:57.0019 0x1060  [ D887446F3F6051C60C26F4FD1FC8D43F, A3235C64E9D5378E3409FA7CDD9DB0DD1B3CE6A6EB018F2C40558EB9C427A498 ] i8042prt        C:\Windows\System32\drivers\i8042prt.sys
14:02:57.0083 0x1060  i8042prt - ok
14:02:57.0103 0x1060  [ 5D90E32E36CE5D4C535D17CE08AEAF05, 976A463343E8C8308AFBE9E64DF56C430D2241DE002430D00318AB065EB72E4A ] iaLPSSi_GPIO    C:\Windows\System32\drivers\iaLPSSi_GPIO.sys
14:02:57.0118 0x1060  iaLPSSi_GPIO - ok
14:02:57.0149 0x1060  [ DD05E7E80F52ADE9AEB292819920F32C, E71AB6A50B0F90C8F94569CE89F66F915A0A4A00D4AC091B2E5E750D88CFC334 ] iaLPSSi_I2C     C:\Windows\System32\drivers\iaLPSSi_I2C.sys
14:02:57.0167 0x1060  iaLPSSi_I2C - ok
14:02:57.0211 0x1060  [ 25555186E4FBDF0E30A5DBFC9B9A73F9, 4A9DAC2B56389C5955C343E202C6E81CD3A608E78A4BB7E6ED560719DF02C955 ] iaStorA         C:\Windows\system32\drivers\iaStorA.sys
14:02:57.0253 0x1060  iaStorA - ok
14:02:57.0299 0x1060  [ 08BFE413B0B4AA8DFA4B5684CE06D3DC, 95DEEBB203E12EE6E191F5247A74C04AEC0E16DE981FADDC4D6C42EE41D8D079 ] iaStorAV        C:\Windows\system32\drivers\iaStorAV.sys
14:02:57.0339 0x1060  iaStorAV - ok
14:02:57.0375 0x1060  [ A2200C3033FA4EF249FC096A7A7D02A2, 5819F5C2020DE2EEE339B0C08CD4B1E3490EAFBBEA1277CE649DB5A5150986B0 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
14:02:57.0414 0x1060  iaStorV - ok
14:02:57.0469 0x1060  [ 83FF82FE209E7997067B375DAD6CF23D, E312DD068E51DBF96A8232D7D1C9F158652FDA23649655F1102928B320795091 ] ICCS            C:\Program Files (x86)\Intel\Intel® Integrated Clock Controller Service\ICCProxy.exe
14:02:57.0488 0x1060  ICCS - ok
14:02:57.0495 0x1060  IEEtwCollectorService - ok
14:02:57.0690 0x1060  [ 09E41C653B31A4AF5B0E5D25C3FBC057, B45740F3FCF3565AC1D40486B9313B61F0824B36BD6C28DB057497ACD9D4FB39 ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
14:02:57.0954 0x1060  igfx - ok
14:02:58.0034 0x1060  [ 3DBDBD9581C015F02651D6A89801FAD5, 81B6D302C9CD29AD8319515056CFBCD0BD25619B2B166937ACD5F1416B568837 ] IKEEXT          C:\Windows\System32\ikeext.dll
14:02:58.0106 0x1060  IKEEXT - ok
14:02:58.0145 0x1060  [ 4011430BC9DA46ADFAE9915EFEC312FB, 925DDDA187AE7C46C94FBBFA18FC602260957B6BA891D65DFC09385B6DDEAB58 ] intaud_WaveExtensible C:\Windows\system32\drivers\intelaud.sys
14:02:58.0161 0x1060  intaud_WaveExtensible - ok
14:02:58.0348 0x1060  [ 4AFF0FD59CB2D3026802BD43AF6C5028, 509CC48D16914104DB2BC2A6BBE4A77919138310BBC6DFDC14E2CA3C403F1298 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
14:02:58.0562 0x1060  IntcAzAudAddService - ok
14:02:58.0622 0x1060  [ B375D8686E1BD2B79C0F00E3868A8C3B, A15D99F04B69FB37ED3AC0C3BBA464BF6D6EB1873D4AE1062983120E3BD1C4DB ] IntcDAud        C:\Windows\system32\DRIVERS\IntcDAud.sys
14:02:58.0653 0x1060  IntcDAud - ok
14:02:58.0753 0x1060  [ 768DD5CB66952BC4A3BD474757AEE34F, 5A1F91FC8028D84FD83591D60CB7E3B24425C3B0FFF5A9BB0F7CE2E17AAB92D4 ] Intel® Capability Licensing Service Interface C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
14:02:58.0800 0x1060  Intel® Capability Licensing Service Interface - detected UnsignedFile.Multi.Generic ( 1 )
14:03:02.0073 0x1060  Detect skipped due to KSN trusted
14:03:02.0073 0x1060  Intel® Capability Licensing Service Interface - ok
14:03:02.0177 0x1060  [ 7C9ED65324CF268ACBA8024257F782D8, 1DC43DBA3612E26454D7786DEB0538B44A736B67EC99642B4CC574D8A03E0DC7 ] Intel® Capability Licensing Service TCP IP Interface C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe
14:03:02.0225 0x1060  Intel® Capability Licensing Service TCP IP Interface - ok
14:03:02.0241 0x1060  [ 4E448FCFFD00E8D657CD9E48D3E47157, 4A958CF0BF8DAEAE5E008500BA67CE89B21388592811274331EE39CAC1043A00 ] intelide        C:\Windows\system32\drivers\intelide.sys
14:03:02.0262 0x1060  intelide - ok
14:03:02.0288 0x1060  [ A770340FC02B999EF0DE6C2A6BC8437C, 214567BE706B21BEA7EC13AF6B10FBFF658000511DBBA79BAA28D1D4EFD029A7 ] intelpep        C:\Windows\system32\drivers\intelpep.sys
14:03:02.0309 0x1060  intelpep - ok
14:03:02.0339 0x1060  [ 47E74A8E53C7C24DCE38311E1451C1D9, 79B06E37A552C8A847404D4C572CDB8CF525354D8AE3BEBC06892B7C3B330761 ] intelppm        C:\Windows\System32\drivers\intelppm.sys
14:03:02.0369 0x1060  intelppm - ok
14:03:02.0401 0x1060  [ 9DB76D7F9E4E53EFE5DD8C53DE837514, 07BA4EDA9BE9139A689A2C3EFC1D1A4F3D1216625ED145F313398292A2CD5703 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
14:03:02.0447 0x1060  IpFilterDriver - ok
14:03:02.0512 0x1060  [ A5800036E4EA06697A34742A24ACFBE1, BA67060526E9213000B4206F86A74F904999AD7018EFCBE4FE9708650DA9D973 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
14:03:02.0574 0x1060  iphlpsvc - ok
14:03:02.0601 0x1060  [ 9C096BF5E10CA8BFA56F32522A89FAF1, 6C1151160799338DA351C7237AB049926C6C15F24F5E154BBF5929B4A96C0B8D ] IPMIDRV         C:\Windows\System32\drivers\IPMIDrv.sys
14:03:02.0667 0x1060  IPMIDRV - ok
14:03:02.0702 0x1060  [ B7342B3C58E91107F6E946A93D9D4EFD, D5DA3C02C5C5A343785745EF6983CC9B5FBD3FB8D49FE9B450523E50212D1A32 ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
14:03:02.0763 0x1060  IPNAT - ok
14:03:02.0785 0x1060  [ AE44C526AB5F8A487D941CEB57B10C97, A783A2EAF7A6FF450FB3F189A5930036FA60D125C42171AC44B6FE2E3DBD6F7A ] IRENUM          C:\Windows\system32\drivers\irenum.sys
14:03:02.0825 0x1060  IRENUM - ok
14:03:02.0846 0x1060  [ 8AFEEA3955AA43616A60F133B1D25F21, E99359A4F1D653790133F145CF7C9F97399FD75C5E135AA7E5F989BB660789AF ] isapnp          C:\Windows\system32\drivers\isapnp.sys
14:03:02.0866 0x1060  isapnp - ok
14:03:02.0907 0x1060  [ D90AB68D0FAC9F357F663670FDBB511E, A82AAA5DF1B38EFBDCF834535A0C520D1BB2D7A4A906C18CFDD22BCF16BDB97D ] iScsiPrt        C:\Windows\System32\drivers\msiscsi.sys
14:03:02.0942 0x1060  iScsiPrt - ok
14:03:02.0968 0x1060  [ EE03564B7FAFE2E44EDA33D52E83B4A3, 53C917EEC92B813EB0C86B225E9887C9CDFDD7708AEA71BFAC0A3039E26D7BEB ] iwdbus          C:\Windows\System32\drivers\iwdbus.sys
14:03:02.0984 0x1060  iwdbus - ok
14:03:03.0013 0x1060  [ A1D4D34A56DF1D5122CDB265038A2E72, AE061BA1A65C98AF875FA18878B014B57E33594D4AC4C39B050AA532E2220F83 ] kbdclass        C:\Windows\System32\drivers\kbdclass.sys
14:03:03.0035 0x1060  kbdclass - ok
14:03:03.0064 0x1060  [ 4A34D7084B862A92F3ABC4969166B3D3, 87B2635873DA4DD06D9E3B8E4313CBDBDC1488E4E340EC2101393EC65823771F ] kbdhid          C:\Windows\System32\drivers\kbdhid.sys
14:03:03.0097 0x1060  kbdhid - ok
14:03:03.0125 0x1060  [ 6C6F4A5FC5A2343995D1B0F111D5CF06, 62282992D3B1634C7BBDD1BCFC13F77FC806AD85B2C667FA09D73355825D19A8 ] kbfiltr         C:\Windows\System32\drivers\kbfiltr.sys
14:03:03.0139 0x1060  kbfiltr - ok
14:03:03.0171 0x1060  [ 813871C7D402A05F2E3A7075F9584A05, FF0C2F87EB083F8CE74C679D80C845CDFBFBBC70BE818F899F3336BBB54A3FFB ] kdnic           C:\Windows\system32\DRIVERS\kdnic.sys
14:03:03.0218 0x1060  kdnic - ok
14:03:03.0240 0x1060  [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] KeyIso          C:\Windows\system32\lsass.exe
14:03:03.0262 0x1060  KeyIso - ok
14:03:03.0293 0x1060  [ 4E829B18D5BAEC29893792A3C671A847, 64C3B99F53A9D1ACA802B46B09E820AD210B667D5A1CD0ADAF1F12944B15B52E ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
14:03:03.0317 0x1060  KSecDD - ok
14:03:03.0356 0x1060  [ 15C8C65CEA018C02EA0F648448C491C5, DF909704D22D891BE439B2E3D8386EA659444F91DC92AABFF9766446AEE5EBC0 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
14:03:03.0383 0x1060  KSecPkg - ok
14:03:03.0404 0x1060  [ 11AFB527AA370B1DAFD5C36F35F6D45F, 757AD234284467ADB826F7CA0251F58D48866B91995BC867DEA4BAF676947163 ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
14:03:03.0443 0x1060  ksthunk - ok
14:03:03.0477 0x1060  [ C1591A66028C71147A3E2EAB0B1CCB7E, 82F3D5DCC1614398A144D9791E4BAA814DBA9112677341FD57D5E9834CEDEB41 ] KtmRm           C:\Windows\system32\msdtckrm.dll
14:03:03.0526 0x1060  KtmRm - ok
14:03:03.0575 0x1060  [ CA2828DDE4B09FEFFDB7CE68B3D8D00A, B514792FF1EF36C678BB51644A1C420105D5E2CD6DD5A89A3FB252D08277A40C ] LanmanServer    C:\Windows\system32\srvsvc.dll
14:03:03.0640 0x1060  LanmanServer - ok
14:03:03.0683 0x1060  [ 3DBD9100745F9B8506B8FEC6FE6CCDE3, C3EF2856A1680AFDE133887E48946CF9CAB6755C3BDC07F0326965DCD4096F62 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
14:03:03.0719 0x1060  LanmanWorkstation - ok
14:03:03.0770 0x1060  [ 2B7479EB47731A8ACBA28AF4C4BDA32D, 67AEB98E7B41337FEFD92CC81BFAD25FBB679998B318C110A4873B1AD8927A97 ] lfsvc           C:\Windows\System32\GeofenceMonitorService.dll
14:03:03.0850 0x1060  lfsvc - ok
14:03:03.0868 0x1060  [ C09010B3680860131631F53E8FE7BAD8, 35F2A06D5F29478D22ABDCC20DA893EF9D96504C65594A0CEA674D1C21B04FF8 ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
14:03:03.0903 0x1060  lltdio - ok
14:03:03.0936 0x1060  [ DAE98CC96C5EE308BF4EA7B18F226CB8, 7A6CC56BF075010707715AB6608764291E358EDF27C806A025532869004C686B ] lltdsvc         C:\Windows\System32\lltdsvc.dll
14:03:03.0983 0x1060  lltdsvc - ok
14:03:04.0014 0x1060  [ 1E2662D847B7D9995C65D90D254A7E0F, AFD4063D2071FFCB6B0EAC0715276D986F42326919C86E525DCE12E1109A93E2 ] lmhosts         C:\Windows\System32\lmhsvc.dll
14:03:04.0060 0x1060  lmhosts - ok
14:03:04.0097 0x1060  [ C755AE4635457AA2A11F79C0DF857ABC, E03D1ACAC155287291FE1BD0B653953ADC94279A74D0152088D698FAA796460F ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
14:03:04.0121 0x1060  LSI_SAS - ok
14:03:04.0140 0x1060  [ ADAC09CBE7A2040B7F68B5E5C9A75141, 7865DA7E91404F3642BC444B97F6B7AA42B9523D5EDD7F6365DA236B8EC3410F ] LSI_SAS2        C:\Windows\system32\drivers\lsi_sas2.sys
14:03:04.0163 0x1060  LSI_SAS2 - ok
14:03:04.0178 0x1060  [ 04D1274BB9BBCCF12BD12374002AA191, 4B9618F8D25F2278DE1610A70ACAADB074D171D162C3AF27D464F5DC800A8E60 ] LSI_SAS3        C:\Windows\system32\drivers\lsi_sas3.sys
14:03:04.0201 0x1060  LSI_SAS3 - ok
14:03:04.0220 0x1060  [ 327469EEF3833D0C584B7E88A76AEC0C, 3D88B5A2D68F93F01B39C6E3D8D5C7A2A20686EFC756086E66AFFF1BC3019B85 ] LSI_SSS         C:\Windows\system32\drivers\lsi_sss.sys
14:03:04.0243 0x1060  LSI_SSS - ok
14:03:04.0298 0x1060  [ 9A7A7E45DAED2E8C2816716D8D28236A, C94787988826E546A8DC752BD6BE4EA7423DC3762B2D371DB297A63F865A95FF ] LSM             C:\Windows\System32\lsm.dll
14:03:04.0370 0x1060  LSM - ok
14:03:04.0399 0x1060  [ DDEE191AB32DFC22C6465002ECDF5EE4, 190C3930A8449118F9FEDF43C482837EF1C255E6D67F9651156E66A1E2BC6553 ] luafv           C:\Windows\system32\drivers\luafv.sys
14:03:04.0448 0x1060  luafv - ok
14:03:04.0486 0x1060  [ 0D3CF8B876F55291B137B972891C1575, 2E7D0A54D5B2211D340EB56F3D5FCB8362E75415A3C75F553643BA55888DC690 ] MBI             C:\Windows\system32\drivers\MBI.sys
14:03:04.0504 0x1060  MBI - ok
14:03:04.0550 0x1060  [ 1704A8189EE5580AB147CFD25C5C8770, DFA076FD36B5CC844D4BE3B865E9A1F809E14CCB1D78D82A2D8D8EE38210E6EB ] McComponentHostService C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe
14:03:04.0576 0x1060  McComponentHostService - ok
14:03:04.0605 0x1060  [ EB5C03A070F30D64A6DF80E53B22F53F, 12051B6AEBDEE1E28F24364F25A52BA3A6E282ECF86D6290E34BD38E6D4E066D ] megasas         C:\Windows\system32\drivers\megasas.sys
14:03:04.0626 0x1060  megasas - ok
14:03:04.0660 0x1060  [ F6F13533196DE7A582D422B0241E4363, B3CD9B08937AFFF12141B38634AF3A56F5AC5FF3EF03941802B9841DEC559469 ] megasr          C:\Windows\system32\drivers\megasr.sys
14:03:04.0707 0x1060  megasr - ok
14:03:04.0745 0x1060  [ 4C5179DB61B9E14BEC15CDC4B152B2E9, 9048BEC7AD6A3F4B640E99B1F0365AC9A46740B188758FBB2C160EF30AD6E64B ] MMCSS           C:\Windows\system32\mmcss.dll
14:03:04.0810 0x1060  MMCSS - ok
14:03:04.0829 0x1060  [ 8B38C44F69259987C95135C9627E2378, E698B82D4EFFF56D66C7FC9866369BA5736FDBDBE2028CC421C51E70DEA74727 ] Modem           C:\Windows\system32\drivers\modem.sys
14:03:04.0856 0x1060  Modem - ok
14:03:04.0873 0x1060  [ 601589000CC90F0DF8DA2CC254A3CCC9, D1238A386C41B6C368D9A44B7C112C943995B5403E2A5B4B7346B266DDB0C5A0 ] monitor         C:\Windows\System32\drivers\monitor.sys
14:03:04.0921 0x1060  monitor - ok
14:03:04.0957 0x1060  [ 2A2F8D5284E59815169A88F1FC9CEE28, 58EFBCF3C849FD088CFB7FE287FC7D9DD7E03D4E6AA98F0497C09E4596E42538 ] mouclass        C:\Windows\System32\drivers\mouclass.sys
14:03:04.0979 0x1060  mouclass - ok
14:03:05.0011 0x1060  [ 91223A2AE2955B3E0DA3DB79C3A897A6, 32B59CF1586C2300D60AF8A1D819515033ACC7F7A1F3523FC4AC7725E29B5A90 ] mouhid          C:\Windows\System32\drivers\mouhid.sys
14:03:05.0048 0x1060  mouhid - ok
14:03:05.0084 0x1060  [ D1D82F007A079A4D623DBD1F36EF30A1, 7901F81B62C5A4196D75A10C05386B16831CB290EFB9A1611CECF281068C520F ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
14:03:05.0110 0x1060  mountmgr - ok
14:03:05.0148 0x1060  [ 22A7042C70F90F8261840740DDBB5176, AD0075C97D2D7C568D5CFB1C3A02DCE3BC01941844A759B29CD4DE4AF2F5FC45 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
14:03:05.0170 0x1060  MozillaMaintenance - ok
14:03:05.0202 0x1060  [ 6FC047578785B0435F4E2660946D1ADC, 8AEA5659F01FC2F75160922C69622502DABA39F33CB90D5178DD679A1CDE617D ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
14:03:05.0255 0x1060  mpsdrv - ok
14:03:05.0326 0x1060  [ C18AA14126ADC66478E8E962B2DFAA98, A6F8CE9D88D590DC083253004392572C3BD02C33433CD6C0D9117D2AA7171EEC ] MpsSvc          C:\Windows\system32\mpssvc.dll
14:03:05.0396 0x1060  MpsSvc - ok
14:03:05.0441 0x1060  [ DB32958F0E704EFBF7F15161A569E39F, 8A26448B954F8A16EE9BA72EF47F6C549A75B30BD13FEB5A29EB099A74D8F678 ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
14:03:05.0489 0x1060  MRxDAV - ok
14:03:05.0540 0x1060  [ 31233271EDE50D1BBB220F78AFA60486, 2122FAB5BD353DF63CF0FE9CEDBD5DFD1F26F2DE04303E1B3FFB03AA02AECED9 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
14:03:05.0613 0x1060  mrxsmb - ok
14:03:05.0652 0x1060  [ 3E28B99198B514DFEB152EACF913025E, 6C1D8353DCD5F811F39C0C3CB5DF3D2457F0D17EE80FB06196AA169E3D19E9B2 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
14:03:05.0715 0x1060  mrxsmb10 - ok
14:03:05.0755 0x1060  [ 6276AC2AA203CF47811F6EFBBD214FBF, AE55D87D863A626347B0074F4E962080F1989A94153DAF8475593249F616DA2F ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
14:03:05.0793 0x1060  mrxsmb20 - ok
14:03:05.0838 0x1060  [ F3C060444777A59FC63D920719E43CCD, 8766A2746E3DFB0749E902F458141269335CA6F0CEDCA3D5F8C204637C19E783 ] MsBridge        C:\Windows\system32\DRIVERS\bridge.sys
14:03:05.0865 0x1060  MsBridge - ok
14:03:05.0902 0x1060  [ 915747E010A9414B069173284A9B93F4, 8A335C28FE1EF96DD71485877F2E86155D24B5614ACE05468F4B07E2ACD56331 ] MSDTC           C:\Windows\System32\msdtc.exe
14:03:05.0931 0x1060  MSDTC - ok
14:03:05.0975 0x1060  [ D13329FBF8345B28AB30F44CC247DC08, 9C7EC2D4D65E6510EB5B9E61BB0D14F725D7E8FE98D65161C3971E43EF1AB6EB ] Msfs            C:\Windows\system32\drivers\Msfs.sys
14:03:06.0010 0x1060  Msfs - ok
14:03:06.0029 0x1060  [ C6B474E46F9E543B875981ED3FFE6ADD, E16687E52FB649C23D92159A1F036CB662202C1E58D961EECDAA528AA4FA669A ] msgpiowin32     C:\Windows\System32\drivers\msgpiowin32.sys
14:03:06.0049 0x1060  msgpiowin32 - ok
14:03:06.0069 0x1060  [ 65C92EB9D08DB5C69F28C7FFD4E84E31, D709BA4723225321F665B1157A33A4AE230420752308EF535DA9A41CAC164628 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
14:03:06.0108 0x1060  mshidkmdf - ok
14:03:06.0131 0x1060  [ 52299F086AC2DAFD100DD5DC4A8614BA, B36BE0FC96798E5EB8C193C318970E3906961E3ABC3BFAAD73138C76D9A95B0B ] mshidumdf       C:\Windows\System32\drivers\mshidumdf.sys
14:03:06.0163 0x1060  mshidumdf - ok
14:03:06.0197 0x1060  [ 36D92AF3343C3A3E57FEF11C449AEA4C, ECC85AA1E530DF55B4A4545798219F87F0FCA66DDD2E37BCEF0850D3C9129DD2 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
14:03:06.0217 0x1060  msisadrv - ok
14:03:06.0250 0x1060  [ 4EAEEBAC8CFF4E0D717DFA920BC58A90, A65CB1BB3392B6A04B978348CAC18A414560A6B04A727F22DFC0ADB20DD3AF6B ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
14:03:06.0288 0x1060  MSiSCSI - ok
14:03:06.0295 0x1060  msiserver - ok
14:03:06.0313 0x1060  [ A9BBBD2BAE6142253B9195E949AC2E8D, 599D2952D4E0B0B3E02D91E38A30F4900B1ADA330716B887B156A1CB9A3E6EE9 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
14:03:06.0345 0x1060  MSKSSRV - ok
14:03:06.0380 0x1060  [ 51B3AC0560848CD6D65AC2033E293113, 73A27E88774C6929328E6C9FC9C389F4DF76D4D4D5CBFC4F51651CC308829628 ] MsLldp          C:\Windows\system32\DRIVERS\mslldp.sys
14:03:06.0449 0x1060  MsLldp - ok
14:03:06.0469 0x1060  [ 7B2128EB875DCBC006E6A913211006D6, 97BBD7FF770741FBFC0F181A609AD0954EA926DA203B742E8F08C89AD8FE476E ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
14:03:06.0505 0x1060  MSPCLOCK - ok
14:03:06.0536 0x1060  [ 1E88171579B218115C7A772F8DE04BD8, B9EAA835D0BF8F9C4DF8403D95EF1400E8AE38F28F9DBA87657DE2129FEF02D2 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
14:03:06.0586 0x1060  MSPQM - ok
14:03:06.0619 0x1060  [ BBE2A455053E63BECBF42C2F9B21FAE0, 7C5DF563499DF59DF9895A1581E47ADF5FD54C94ECEF6C886CDB60E5E95A6DAE ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
14:03:06.0656 0x1060  MsRPC - ok
14:03:06.0677 0x1060  [ 8D6B7D515C5CBCDB75B928A0B73C3C5E, 1EB4DC3DD21D2627C78EC3F9931D9E5D033169087E43B5D7C17BF1FF2A0028CD ] mssmbios        C:\Windows\System32\drivers\mssmbios.sys
14:03:06.0698 0x1060  mssmbios - ok
14:03:06.0716 0x1060  [ 115019AE01E0EB9C048530D2928AB4A2, 6E2275E85EACF2D0FC784792E0D72A165589D33CBAB3BCFA8E271CA09566C925 ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
14:03:06.0775 0x1060  MSTEE - ok
14:03:06.0804 0x1060  [ 96D604A35070360F0DD4A7A8AF410B5E, F94DD1A3566C7C8D0A76D6E1E2530552A9B7F99C5DA0DE11829325EAB9F8B7ED ] MTConfig        C:\Windows\System32\drivers\MTConfig.sys
14:03:06.0839 0x1060  MTConfig - ok
14:03:06.0862 0x1060  [ 619CA29326B82372621DB2C0964D8365, 4091F08E266DB45A6E33A4A8B1CE9FA78BB294B3111526AA9E3868620F30AFDF ] Mup             C:\Windows\system32\Drivers\mup.sys
14:03:06.0884 0x1060  Mup - ok
14:03:06.0900 0x1060  [ B8C35C94DCB2DFEAF03BB42131F2F77F, F0FCF367CA8F722D6ABCF7F363CD406D890D71452E91C3FC6677B47AD74D6324 ] mvumis          C:\Windows\system32\drivers\mvumis.sys
14:03:06.0923 0x1060  mvumis - ok
14:03:06.0969 0x1060  [ 8DF30698BDD9492A9D45A4B94FB4A82A, 26B1B2D7E785E29B8BCB74C467C66AE4EBDD481ACFF36334F3BDF4506B778244 ] napagent        C:\Windows\system32\qagentRT.dll
14:03:07.0012 0x1060  napagent - ok
14:03:07.0065 0x1060  [ 008F7CED69FD5B30CBDE1E03C6F36A27, D4ADA7834C470B17A3CD976012DC5A511B32545B9F91D23D09A85722E0B75320 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
14:03:07.0116 0x1060  NativeWifiP - ok
14:03:07.0152 0x1060  [ BFCE1225D10619029E68946929CEB64C, 499F560331FFBA82E3D673B47F027FDAB7BEE4F2CB5B811D69E0218839F6E6A5 ] NcaSvc          C:\Windows\System32\ncasvc.dll
14:03:07.0206 0x1060  NcaSvc - ok
14:03:07.0253 0x1060  [ 267C97373110B7AFD3B46DF60B6CBB85, CEBB99F71D47634BB9C04DF2836DF6B47F15B3073FEFC237F85526DF01E4E38B ] NcbService      C:\Windows\System32\ncbservice.dll
14:03:07.0313 0x1060  NcbService - ok
14:03:07.0344 0x1060  [ 9ACED0F5B458C9011F39143326494E93, 9DFFC7EE7DE6FD92545EC6A203213C498A01EEFB0BC55460D339BCE498E56A7F ] NcdAutoSetup    C:\Windows\System32\NcdAutoSetup.dll
14:03:07.0388 0x1060  NcdAutoSetup - ok
14:03:07.0459 0x1060  [ 6D3A2565E01B3E4B0F1BEDB0D4B00B3F, 95F2608E17CA3E25BD7958D1A49F7030EC8088BC1DF12422F1DAC5BA99113E34 ] NDIS            C:\Windows\system32\drivers\ndis.sys
14:03:07.0529 0x1060  NDIS - ok
14:03:07.0565 0x1060  [ 8CECC8DA55F3274181FD1EA28AD76664, 188112424CEF97FB926A0FB915260B803555A775DD2E1846725A9C8616300F42 ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
14:03:07.0619 0x1060  NdisCap - ok
14:03:07.0649 0x1060  [ 269882812E9A68FFF1AFE1283D428322, 50B99EBC42DA9B46A8C2C28C9BADCF58AE3079535CDD1227D0F5C86291C715FF ] NdisImPlatform  C:\Windows\system32\DRIVERS\NdisImPlatform.sys
14:03:07.0698 0x1060  NdisImPlatform - ok
14:03:07.0716 0x1060  [ 82821F4EEC776B4CF11695A38F3ABA46, 23184F9D31E662855DC4D23EFE7C2FE00E5487D3762B6024704A5D8C87762E1C ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
14:03:07.0759 0x1060  NdisTapi - ok
14:03:07.0784 0x1060  [ B832B35055BA2B7B4181861FF94D8E59, 2E60E5D503E88D27E35ECFEE265D51328E93A9C7B9B931F86D9CBC947636BB00 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
14:03:07.0831 0x1060  Ndisuio - ok
14:03:07.0849 0x1060  [ 1F58E48EF75F34C35D8E93A0DC535CFE, D65619A6C4B1747F8B05DA08A44EF0E46B5CC384880E04E4755A2BA6CDB3C4EA ] NdisVirtualBus  C:\Windows\System32\drivers\NdisVirtualBus.sys
14:03:07.0876 0x1060  NdisVirtualBus - ok
14:03:07.0898 0x1060  [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
14:03:07.0947 0x1060  NdisWan - ok
14:03:07.0960 0x1060  [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWanLegacy   C:\Windows\system32\DRIVERS\ndiswan.sys
14:03:07.0994 0x1060  NdisWanLegacy - ok
14:03:08.0028 0x1060  [ DDD7F92A83F74D1476B71FBA9530A8DC, D3F94FC9F48854E09B0B77CE5E1C1DB948D54EAC63C5583437051BB893B5A386 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
14:03:08.0067 0x1060  NDProxy - ok
14:03:08.0093 0x1060  [ 3083926D1CC5B56EA0786527B557DD1B, 3C3F0CA0D43398576DBE8F677B353ADDA7E8F56829874958CE668E31261C1590 ] Ndu             C:\Windows\system32\drivers\Ndu.sys
14:03:08.0135 0x1060  Ndu - ok
14:03:08.0168 0x1060  [ 42FF4975D032CAE558AE4BB8448F6E5A, 0B8FACF3382443DED79A8004A6AA14C32471A6A1C6BAA543AA9F3FEC52620A6D ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
14:03:08.0204 0x1060  NetBIOS - ok
14:03:08.0230 0x1060  [ 0217532E19A748F0E5D569307363D5FD, C40C2E7AFA276057E7327A7BB173122689D6CEC9AE443C3850C3F94AF03DFBF5 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
14:03:08.0284 0x1060  NetBT - ok
14:03:08.0307 0x1060  [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] Netlogon        C:\Windows\system32\lsass.exe
14:03:08.0330 0x1060  Netlogon - ok
14:03:08.0379 0x1060  [ 8F074B62E66B6117D9598C62A12069C5, 5FDB19045D3E2F6D0F0C5158AC2ECB0D5404CD2AF7A319755D7E3753CA3B7CF3 ] Netman          C:\Windows\System32\netman.dll
14:03:08.0413 0x1060  Netman - ok
14:03:08.0472 0x1060  [ 4A04B1CD5BFB4A978C5F60E86D6C3E45, A946922C1C38ADD3CF9D3B09DDCC301AE4DAC960A081B2F42B32BE1E7095B3FD ] netprofm        C:\Windows\System32\netprofmsvc.dll
14:03:08.0529 0x1060  netprofm - ok
14:03:08.0594 0x1060  [ 1092B3190E69E0C5ECBCE90F171DE047, C16106EEFC324EE80E5F659CB71A5DD69FA800D36D829F5B0E6AD3393BD1BAF7 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
14:03:08.0632 0x1060  NetTcpPortSharing - ok
14:03:08.0671 0x1060  [ D4DCE03870314D3354F3501F9DDD4123, 5BFE8299B3F72B8C39A4965365CBF5BA151024451F02DD872FAD1CC35CF94CEA ] netvsc          C:\Windows\System32\drivers\netvsc63.sys
14:03:08.0714 0x1060  netvsc - ok
14:03:09.0195 0x1060  [ 272BB8C52BE106B5CC69171AF1D281D4, 3D65A772C15440DF5895843185241D890CCDECA0E02DD6CF32CCB9B5849E31A4 ] NETwNs64        C:\Windows\system32\DRIVERS\Netwsw00.sys
14:03:09.0834 0x1060  NETwNs64 - ok
14:03:09.0902 0x1060  [ E94EB2A95D7D016E119C4D6868788831, 3E4A925D23262FBA0A6432DD635FBE94B0CEF76BD9BB323254B66977497FEE2A ] NlaSvc          C:\Windows\System32\nlasvc.dll
14:03:09.0953 0x1060  NlaSvc - ok
14:03:09.0990 0x1060  [ 8F44A2F57C9F1A19AC9C6288C10FB351, 310274DDBAC0FE4BE54ECD3B90C97D82A0F9F5CFCA7A35711A36164DE4B94074 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
14:03:10.0028 0x1060  Npfs - ok
14:03:10.0041 0x1060  [ CBDB4F0871C88DF930FC0E8588CA67FC, 7E4AA3EA81A9D532F236FD7896744F07ED07CA9B37A9F18A9778BCCCC67490F2 ] npsvctrig       C:\Windows\System32\drivers\npsvctrig.sys
14:03:10.0079 0x1060  npsvctrig - ok
14:03:10.0106 0x1060  [ 0F12A72A753CFD7FB0631EE8D08FE983, 860A96471F6CD90DDA9AB3A48E95CEAD826C87D2FA98A00EF91B61C44A4C8B82 ] nsi             C:\Windows\system32\nsisvc.dll
14:03:10.0144 0x1060  nsi - ok
14:03:10.0182 0x1060  [ 0E046FF5823B95326D10CF1B4AF23541, 39D22715003746527AB4BFEDED8C34B695DAF589091AE7F3A2A2C4B8A35675A9 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
14:03:10.0205 0x1060  nsiproxy - ok
14:03:10.0315 0x1060  [ 7F68063A5A0461E02BC860CE0E6BFDDC, 47E9F75D27B97278B74034B7D3951A26B1644911ED321455E08D935731C858DE ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
14:03:10.0441 0x1060  Ntfs - ok
14:03:10.0467 0x1060  [ EF1B290FC9F0E47CC0B537292BEE5904, DBC07BBC54EBC2D2E576B23A4CE116B3DA988577AD0D96CB7289A6748A60F9EA ] Null            C:\Windows\system32\drivers\Null.sys
14:03:10.0490 0x1060  Null - ok
14:03:10.0527 0x1060  [ BC6B5942AFF25EBAF62DE43C3807EDF8, CB0FA194084B8C309039D571B5760FDA800E9531B8660C499B4F9977BA5C36D5 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
14:03:10.0553 0x1060  nvraid - ok
14:03:10.0582 0x1060  [ 1F43ABFFAC3D6CA356851D517392966E, 6FD7621F67BA94B0E1D8F43BEC2951DBCDEEA1E848BB265AC169E27C01DA68F2 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
14:03:10.0611 0x1060  nvstor - ok
14:03:10.0630 0x1060  [ 6934A936A7369DFE37B7DBA93F5E5E49, 0900FEEB0CE8D09F0FC60630B5B986034A8BCD3882ED66E47170810C32492892 ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
14:03:10.0655 0x1060  nv_agp - ok
14:03:10.0708 0x1060  [ 30B5F9FB0C35AE6B4A0851D24CE2EE8B, 0340E77E8EC2ADC21B8DDD9C9CC95B3F4BCAFD54618A333C72D7D9587D593B83 ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
14:03:10.0731 0x1060  ose - ok
14:03:10.0784 0x1060  [ 26657F3B4F39A0E64AF859278B599C4E, 3DD65E0BCEF3045DBA29FB8171CA3FCC9781AED3A1C7A160CF26388CE80A3683 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
14:03:10.0857 0x1060  p2pimsvc - ok
14:03:10.0904 0x1060  [ FD8F61F0D1F64BBB3D835F39A3F979C9, E5C5F86576488EA7F605E26C06EE5AFB36506A446F60C894D55E0A148BF7F02D ] p2psvc          C:\Windows\system32\p2psvc.dll
14:03:10.0960 0x1060  p2psvc - ok
14:03:10.0998 0x1060  [ 764B1121867B2D9B31C491668AC72B2B, 32C04B6FCE1DDD09697B81473A23BDCED8BEEFBCD0D2D58DDC9A11A33C756967 ] Parport         C:\Windows\System32\drivers\parport.sys
14:03:11.0023 0x1060  Parport - ok
14:03:11.0053 0x1060  [ BAFF6122CFC9F95CA175AD8C348179A4, 079A912D951DF6A57BC1BDB0D182977EE9592751EC9DDCDA2932BDEDB333850C ] partmgr         C:\Windows\system32\drivers\partmgr.sys
14:03:11.0077 0x1060  partmgr - ok
14:03:11.0124 0x1060  [ ABE95ABE27A8BD9701782BBCD82C9925, AE3BA1E9ECDE692374D8DAC95A8DAA289DD2470E3D8D58EFAD9F83A37F3AC8E5 ] PcaSvc          C:\Windows\System32\pcasvc.dll
14:03:11.0166 0x1060  PcaSvc - ok
14:03:11.0204 0x1060  [ 91ED124E261EA8FAA1C0FFDF2A71B0C4, 20E41A38067395D03184938983A9BE459717A1941352972DBC28D83D542319EC ] pci             C:\Windows\system32\drivers\pci.sys
14:03:11.0238 0x1060  pci - ok
14:03:11.0255 0x1060  [ 346E38FCC6859A727DD28AFAD1F0AFF4, FF3DA26F79B3BC3A5B8A8AA0B9139B9EF70297F4EA1203B1E68FB5A212C3AA58 ] pciide          C:\Windows\system32\drivers\pciide.sys
14:03:11.0275 0x1060  pciide - ok
14:03:11.0311 0x1060  [ 4D3BDCC1C7B40C9D7B6AD990E6DEC397, 27A7AF2127B699F4579CB77936F38DC102211E26E5E2947DB808756FE06FC98E ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
14:03:11.0336 0x1060  pcmcia - ok
14:03:11.0348 0x1060  [ BF28771D1436C88BE1D297D3098B0F7D, 5F7630916A76A8CF31289E9C577F522B999C74C39E541CD40E62BD53004BEF74 ] pcw             C:\Windows\system32\drivers\pcw.sys
14:03:11.0369 0x1060  pcw - ok
14:03:11.0408 0x1060  [ 24A8DFC07E4BAF29AEA26E383D4CC886, 1B903FE52CD816662D37A8113930B4B7019B6996D49F1982D8F42933A3525A67 ] pdc             C:\Windows\system32\drivers\pdc.sys
14:03:11.0431 0x1060  pdc - ok
14:03:11.0491 0x1060  [ 0ECEE590F2E2EF969FB74A6FC583A1E6, 1C611D9225C863CF32125F684B324C58BDE1942F4F283F5674133200AC505D44 ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
14:03:11.0557 0x1060  PEAUTH - ok
14:03:11.0629 0x1060  [ 8E3C640FFF5A963F570233AE99C0FFF3, 3DE978B005BF2E88BA858CE37D9E27BD3584642B8412E22C300A1E739743838A ] PerfHost        C:\Windows\SysWow64\perfhost.exe
14:03:11.0678 0x1060  PerfHost - ok
14:03:11.0786 0x1060  [ 70B39E7241F750A248798CE82C44596D, 54A72199EB277EE586611DCBC21654786FD2196F91D5884C4F531297893CC3EC ] pla             C:\Windows\system32\pla.dll
14:03:11.0886 0x1060  pla - ok
14:03:11.0924 0x1060  [ 2C02AFF8383D893F8DBEB07A84F6E77C, 7CC34BAC67E2988E3D16DD6EB6F6785CD2460E3EF7FBD0BD5F86E49793BD473E ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
14:03:11.0951 0x1060  PlugPlay - ok
14:03:11.0978 0x1060  [ 4570F8A37D221660F3A09D6F4DD4BA94, 0EA190CFFA53DF9CCA2D53A4EF1BCB837BA3F2489A3AC5BD11F6D6ED811D118E ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
14:03:12.0013 0x1060  PNRPAutoReg - ok
14:03:12.0040 0x1060  [ 26657F3B4F39A0E64AF859278B599C4E, 3DD65E0BCEF3045DBA29FB8171CA3FCC9781AED3A1C7A160CF26388CE80A3683 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
14:03:12.0077 0x1060  PNRPsvc - ok
14:03:12.0119 0x1060  [ BDD52AB4AEBB8B1904568DBD0CCB70CB, C3D1DBA349C79B43DCDD9EF5255C5EE973EFB844235B808B5EF9B63A51FF00AA ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
14:03:12.0159 0x1060  PolicyAgent - ok
14:03:12.0198 0x1060  [ C8DD82C3035E60D671B8CC5DF128D3A9, 6AABF632CBEDA9A7B553BC9134FF100CB6FDC88000D499D2883408FCEDD97576 ] Power           C:\Windows\system32\umpo.dll
14:03:12.0249 0x1060  Power - ok
14:03:12.0435 0x1060  [ E3514CE7CB4AF80ECCA383F065BC77C0, 1EA06D358A07EB9DFB703CEFC4EB834B947B899E0ACFE1C494E2DAED63F1D4B5 ] PrintNotify     C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll
14:03:12.0632 0x1060  PrintNotify - ok
14:03:12.0654 0x1060  [ ECD373F9571C745894367CC2635EA44F, E08B2A1017DAE1BF10B986DAFAD14BDE20D79703E0EF3A8C700A3753908C1392 ] Processor       C:\Windows\System32\drivers\processr.sys
14:03:12.0696 0x1060  Processor - ok
14:03:12.0731 0x1060  [ 19424364D8C03B990C4281BE53963FD0, 958FC8436E6B754858E20BC48B0D4B269991E8CA94C15C2761BF04ED52591907 ] ProfSvc         C:\Windows\system32\profsvc.dll
14:03:12.0800 0x1060  ProfSvc - ok
14:03:12.0834 0x1060  [ FC0141B4A5AD6D637D883C1A89FC45C5, DCE8942C02EEDAE7A57707CA60CAC3A8CD6BA68E6571E405CA882D4DD6D69E43 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
14:03:12.0873 0x1060  Psched - ok
14:03:12.0919 0x1060  [ DAA9DEE0A5D5F238C4EE54C2C7FB67C5, 7EC8C603BD92699AC35BDCD294F13BEE90D5C2C195FD93A3F16928BFCF53CA93 ] QWAVE           C:\Windows\system32\qwave.dll
14:03:12.0974 0x1060  QWAVE - ok
14:03:13.0014 0x1060  [ 83868EB2924E6BC21A54337C65D614D1, 8D1BE01EBD190231153B867C32120DC8FBFBD32050448A778134D435D76A0B07 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
14:03:13.0046 0x1060  QWAVEdrv - ok
14:03:13.0064 0x1060  [ B337B1F1E82A83E20A1743E008E25C0F, A2E8AF041B4CAB78AEE28A2147A189FF0F9D2FCEFB167D60FBBA0A787A5A5BE7 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
14:03:13.0096 0x1060  RasAcd - ok
14:03:13.0132 0x1060  [ 044638489B4A5FE5334F46C5314A0826, E06CC2A9EF369794DAD69FBB5AFD1676D4283DDAB2AD5E3EFE454C473F62F955 ] RasAuto         C:\Windows\System32\rasauto.dll
14:03:13.0177 0x1060  RasAuto - ok
14:03:13.0235 0x1060  [ F83B38FCD4F69157B3D158433FA149CC, AB103BD3E2B3B134CB355C556DF70BCF0CF4DB11EFF7DB4A9876D5AA43D81293 ] RasMan          C:\Windows\System32\rasmans.dll
14:03:13.0293 0x1060  RasMan - ok
14:03:13.0329 0x1060  [ 5247F308C4103CDC4FE12AE1D235800A, E567CD33CA1897D53795E071B7AFBAF98B2C8F725F8BED0BA90F5EF611520E48 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
14:03:13.0369 0x1060  RasPppoe - ok
14:03:13.0401 0x1060  [ A1A5E79C0D1352AFDC08328A623DA051, 01546DDE6F1FF159A7EB7F2BF104910445D3D863F1F37DEA695579BA60D84280 ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
14:03:13.0452 0x1060  rdbss - ok
14:03:13.0481 0x1060  [ 6B21EBF892CD8CACB71669B35AB5DE32, 0AD8E14FEF16FB2559F5FC8AFBC9D49E4E24F43CF65F480DBF9FAB593269B419 ] rdpbus          C:\Windows\System32\drivers\rdpbus.sys
14:03:13.0521 0x1060  rdpbus - ok
14:03:13.0561 0x1060  [ 680C1DAE268B6FB67FA21B389A8B79EF, 856911F77BDD8830C3D683EBE8AF399FB3A54C7D8D0B34EA37D903377F0A39BD ] RDPDR           C:\Windows\system32\drivers\rdpdr.sys
14:03:13.0624 0x1060  RDPDR - ok
14:03:13.0669 0x1060  [ BC8A79C625568DDB7DCA49D0C2741A64, AB0A7ED9EC2282EC0356D27EA4F70515943E41C2112428B787636B8BEC278933 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
14:03:13.0688 0x1060  RdpVideoMiniport - ok
14:03:13.0720 0x1060  [ A26AEC49F318FEE141DDDB2C5F99B3E6, 246AD79FF27E79DEDCB0AAA7C22A8EA6349DEDAC863413A1E378E68FD94C9C4F ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
14:03:13.0750 0x1060  rdyboost - ok
14:03:13.0821 0x1060  [ 615DFD97DEA56CE1C3A52185A3038FF8, 707BF5F9FAE478A12656D15013F507CC1335E7B72BD21CA99BB813CB95E37BC0 ] ReFS            C:\Windows\system32\drivers\ReFS.sys
14:03:13.0886 0x1060  ReFS - ok
14:03:13.0923 0x1060  [ 0CF7CB56BF2D5E9DBCEE0185CB626FAD, 2BD2E2FB1D2EADD1F70EF55E8523C353F95D4FEB1BAD5017FA4D94F790F27825 ] RemoteAccess    C:\Windows\System32\mprdim.dll
14:03:13.0964 0x1060  RemoteAccess - ok
14:03:14.0008 0x1060  [ AC8785B53F8436058C90450DA1840AE7, CC1FFC2713910211F8A6AD532DBB9253ACD188CBD784F1BE6613DF382825A3C1 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
14:03:14.0087 0x1060  RemoteRegistry - ok
14:03:14.0128 0x1060  [ DC66AE45816614D2999DCD3834DCCC4E, 1C26225135E851DDD1307F52401DD7055B26B3F3B8FDD693B21042C2896E235A ] RFCOMM          C:\Windows\System32\drivers\rfcomm.sys
14:03:14.0156 0x1060  RFCOMM - ok
14:03:14.0202 0x1060  [ 65B9FDE300A6DECC03BA44C4616DCAD6, CAD992982733DD20282A3453DC4E554AE1FC077C35479C0CA4E8BC3A9DCD3BB0 ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
14:03:14.0237 0x1060  RpcEptMapper - ok
14:03:14.0264 0x1060  [ A737B433ABAF3F2DCB2BD7B4CC582B26, 3B5706B0CF0969A9F82060FD4DCC745F2D83C066B663FE8A4F0F493B64032C9C ] RpcLocator      C:\Windows\system32\locator.exe
14:03:14.0307 0x1060  RpcLocator - ok
14:03:14.0367 0x1060  [ A6F17C299A03BAFEFB9257C462A19E00, EB68967D28355271897166D7B6FD963D1E546D3C24AE1AEAAC561F94357A9345 ] RpcSs           C:\Windows\system32\rpcss.dll
14:03:14.0420 0x1060  RpcSs - ok
14:03:14.0458 0x1060  [ 566B32C6C06B31384C4D5D7762955A8F, A71E746CED15294DC5268953AE573D3DD59829A7B28F0FC887F343D762F69897 ] RSBASTOR        C:\Windows\system32\DRIVERS\RtsBaStor.sys
14:03:14.0483 0x1060  RSBASTOR - ok
14:03:14.0509 0x1060  [ 2D05A5508F4685412F2B89E8C2189ABC, 82F12B4E0E73411A121EFD35FBD3B44CBBC0AE96ACFBB45D8C3C3777E2EA320D ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
14:03:14.0551 0x1060  rspndr - ok
14:03:14.0595 0x1060  [ CE9B0D2B0790C23952A3554AD375699C, 5ED67683F06B448D104345CD479CA3F1FEFEE92B5A302E9284A04B747993BC03 ] RTL8168         C:\Windows\system32\DRIVERS\Rt630x64.sys
14:03:14.0642 0x1060  RTL8168 - ok
14:03:14.0668 0x1060  [ 1A063730F221B2746FF00457AE17E4F0, 39A3C258CBFE3BC566C63528C9020A3BC9409736AE5289C08A7BA471D8409263 ] s3cap           C:\Windows\System32\drivers\vms3cap.sys
14:03:14.0705 0x1060  s3cap - ok
14:03:14.0740 0x1060  [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] SamSs           C:\Windows\system32\lsass.exe
14:03:14.0763 0x1060  SamSs - ok
14:03:14.0782 0x1060  [ C624A1B32211C3166EDB3F4AB02A30B7, 6B2A4607DB52D74242787ED9DF9067058983D310431D8612D2B0236E6201E681 ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
14:03:14.0806 0x1060  sbp2port - ok
14:03:14.0846 0x1060  [ 74A3B67F03877D06B09B1B40C5ED582E, A8FF9BF416F0BF365BFB4E1796859825C811A74B5E54DDDCE8345193BEEBE206 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
14:03:14.0883 0x1060  SCardSvr - ok
14:03:14.0921 0x1060  [ 8B9C4D55B4A536FB01C360DDB9533574, 9B939FE68F6F9C171ED0D91E2CE1E67515295D34EC23606BCDFD097DCC8CFD4A ] ScDeviceEnum    C:\Windows\System32\ScDeviceEnum.dll
14:03:14.0964 0x1060  ScDeviceEnum - ok
14:03:15.0004 0x1060  [ 13BEA6C882D4D877A5A85CA149C86BC1, 8E9BE5C2A36D5881D9985C3A31309FE03966EA13A3541D3C5B542AB67FA0D55F ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
14:03:15.0028 0x1060  scfilter - ok
14:03:15.0103 0x1060  [ A626F5E446860F22835E783142D7AE33, 3A786639E1FABCA512F4F91A10811DD3C4D9C9C9BB893362E4D019219D0BD8E2 ] Schedule        C:\Windows\system32\schedsvc.dll
14:03:15.0188 0x1060  Schedule - ok
14:03:15.0228 0x1060  [ 41C0D7B1A6D4AD119BA6AC0487EA5C8E, 516C2B34BA7507D0DA4148B4ABC0A8C36286570D4EA5C60B28647B1249C15018 ] SCPolicySvc     C:\Windows\System32\certprop.dll
14:03:15.0255 0x1060  SCPolicySvc - ok
14:03:15.0300 0x1060  [ C54B6B2170BF628FD42F799A66956D75, BCF460A124CAA6F1F1A9A7BCBDCC2D5E39B0404D96B7C9FFAC806E041782B91E ] sdbus           C:\Windows\System32\drivers\sdbus.sys
14:03:15.0332 0x1060  sdbus - ok
14:03:15.0368 0x1060  [ 0B1E929D11A8E358106955603FAC65E8, A5EC91BFC0873EC6AB1D0DB4E91654BD35339BD680E7E82DA2DC64996B4AE515 ] sdstor          C:\Windows\System32\drivers\sdstor.sys
14:03:15.0393 0x1060  sdstor - ok
14:03:15.0416 0x1060  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\Windows\system32\drivers\secdrv.sys
14:03:15.0445 0x1060  secdrv - ok
14:03:15.0484 0x1060  [ BA24CEA7152239F42ECD04AFB7C89D24, A2A11EABB0C283772B74667C7544B61BEB1B9745FBF065E831542129EB585AFA ] seclogon        C:\Windows\system32\seclogon.dll
14:03:15.0522 0x1060  seclogon - ok
14:03:15.0557 0x1060  [ 81FE9A81EDF8016816C9E91FBFBF7D35, 87FB92A3D15F312F0B9C423EF851061A944B013E5668D8C9A441B4DC0EB690AF ] SENS            C:\Windows\System32\sens.dll
14:03:15.0598 0x1060  SENS - ok
14:03:15.0642 0x1060  [ 6E4012AE67F09F867EF620C8D5524C0B, 63933E51F8E413E63481369CE2F9FD224560550FBD3BD2B4573E9F4AD88708A2 ] SensrSvc        C:\Windows\system32\sensrsvc.dll
14:03:15.0719 0x1060  SensrSvc - ok
14:03:15.0740 0x1060  [ DB2FF24CE0BDD15FE75870AFE312BA89, 7DB0D978C92CD0A0A81F7AB46FE323B4929CEA01585B0F330921E6DFA7DE1B85 ] SerCx           C:\Windows\system32\drivers\SerCx.sys
14:03:15.0763 0x1060  SerCx - ok
14:03:15.0800 0x1060  [ 0044B31F93946D5D41982314381FE431, 95B8A94BA9EF770F29ACD5B23D447EC2B6CF1CB3D0030343BA1550AC31F6E2A5 ] SerCx2          C:\Windows\system32\drivers\SerCx2.sys
14:03:15.0825 0x1060  SerCx2 - ok
14:03:15.0841 0x1060  [ 3CD600C089C1251BEEB4CD4CD5164F9E, D9F81951B4454B24E821E33ACA53A851A61F3135E8EC6FBE6761A1A3E1CDCBE2 ] Serenum         C:\Windows\System32\drivers\serenum.sys
14:03:15.0864 0x1060  Serenum - ok
14:03:15.0883 0x1060  [ D864381BC9C725FAB01D94C060660166, 132FED95222BBE3B0B25B3F1F0EFC5903D04564BD047BA4D2042AD51E3FDA724 ] Serial          C:\Windows\System32\drivers\serial.sys
14:03:15.0917 0x1060  Serial - ok
14:03:15.0955 0x1060  [ 96B01F117057FB4DAE0FF919ACB55770, D0F58F1CAE4F81D60FCE60BB0065A34B4F897E8105DF17B6DAA334938CD25A56 ] sermouse        C:\Windows\System32\drivers\sermouse.sys
14:03:15.0982 0x1060  sermouse - ok
14:03:16.0040 0x1060  [ 3A2F1A7472C3B7CC9B89C8516C726488, 9BCBBAC10C900EA7B30822B463A77EE5067F217C4B490857A09E5277983CB89B ] SessionEnv      C:\Windows\system32\sessenv.dll
14:03:16.0091 0x1060  SessionEnv - ok
14:03:16.0112 0x1060  [ 472B7A5AC181C050888DB454663DD764, C950A8615D57BFD455E18880398350642B2E1D6B951EC9754FD8D429F3418835 ] sfloppy         C:\Windows\System32\drivers\sfloppy.sys
14:03:16.0149 0x1060  sfloppy - ok
14:03:16.0231 0x1060  [ 8081FF3DAE8159FE8956B09BC29CE983, AC0F305AEE8B1AB2E1275F1D33EC1D2F3E23F234F831BD9D41F415A94A19D3AB ] SharedAccess    C:\Windows\System32\ipnathlp.dll
14:03:16.0281 0x1060  SharedAccess - ok
14:03:16.0355 0x1060  [ 7FD9A61A3523A61FC135D61D6E160314, 409E1CF7A62FD90CBC31AEAFBB7230B02DBEC6CFCA2D266D221A7643FAEBA13B ] ShellHWDetection C:\Windows\System32\shsvcs.dll
14:03:16.0433 0x1060  ShellHWDetection - ok
14:03:16.0462 0x1060  [ 2F518D13DD6F3053837FE606F1A2EA1F, 64109296CE95BD233525688A350D575CF97B9464659AA07CF78B307B6ADBC835 ] SiSRaid2        C:\Windows\system32\drivers\SiSRaid2.sys
14:03:16.0482 0x1060  SiSRaid2 - ok
14:03:16.0507 0x1060  [ 1AC9A200A9C49C4508F04AAFFCA34A3F, 972BCB2A39169155F74111FAC74ACCD8F50E34EADCF087833B0980827627BBF4 ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
14:03:16.0530 0x1060  SiSRaid4 - ok
14:03:16.0579 0x1060  [ 3C84DCCE5B322F745A75CA8BA3A0F6B3, 1FB94A8A1C63D6FDB82E28ED5B696B3CB1F64183A89A3B5153B266C292CB7815 ] smphost         C:\Windows\System32\smphost.dll
14:03:16.0602 0x1060  smphost - ok
14:03:16.0640 0x1060  [ D0EB0DF8C603BBA084351A92732B1CBE, E24ED8F78EF41C1BC17386AE4BBCE0DC892C5B89B12C03FC9FB61D359B13F1B4 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
14:03:16.0676 0x1060  SNMPTRAP - ok
14:03:16.0730 0x1060  [ D24B1945ED1F9C96DA786DBBF1E983CE, B46CB0B72B7A3DF94A46B8D65E38535C5F8E72A55CF2DC48EFA1F9A0108691C4 ] spaceport       C:\Windows\system32\drivers\spaceport.sys
14:03:16.0773 0x1060  spaceport - ok
14:03:16.0796 0x1060  [ F337BE11071818FC3F5DC2940B6BDE34, D5CFF00E5DF37045F71AEE101AC9B270EBB29F372F404757B58600E9966C7E4D ] SpbCx           C:\Windows\system32\drivers\SpbCx.sys
14:03:16.0818 0x1060  SpbCx - ok
14:03:16.0887 0x1060  [ FCB156A6745631A67DEA61827061D483, 9275ABFA1E1E595969A71C0DA228D18D1B868BF46E097E1276142BD80F8A32C9 ] Spooler         C:\Windows\System32\spoolsv.exe
14:03:16.0967 0x1060  Spooler - ok
14:03:17.0250 0x1060  [ C993A0B97BECD3AAF5158E3869878465, 8B86F37DEFCBE55DE507D830EC4980EBB39B3CCA30C2B3E76B588AAB282A50FC ] sppsvc          C:\Windows\system32\sppsvc.exe
14:03:17.0621 0x1060  sppsvc - ok
14:03:17.0679 0x1060  [ 6416E79A58A8FCC33A447A4DDDD3BF04, 839E3107ACCD520C309BD6C8324DF7A8EB724EAD442AB1F1CACB0D83F84BE488 ] srv             C:\Windows\system32\DRIVERS\srv.sys
14:03:17.0742 0x1060  srv - ok
14:03:17.0798 0x1060  [ 00D8AC8E3053290BDE6EA2FB6810D2FC, 957FEF84CBBAE71829529AE99A1B24F52D7831BD666442D0132FBB825409A75D ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
14:03:17.0844 0x1060  srv2 - ok
14:03:17.0883 0x1060  [ D047CD668E6277FD80F0C613946F034C, BD0209E7FD89F9295D4DE48C9652DF2A2990277C16AFA473B96704B1CBD2F338 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
14:03:17.0938 0x1060  srvnet - ok
14:03:17.0985 0x1060  [ CF6C3037839CF78421A94F9060C2886F, CA98C180AE03F5BE8FEFFBA75BD98DEE2AD4FA975E1EF83215C9CD2476946811 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
14:03:18.0023 0x1060  SSDPSRV - ok
14:03:18.0063 0x1060  [ 198A737DBA666F4808D62E9A8277A6B7, 90B6E5E2ACE95D850C913A3A1DA1F966C44955C530004C228FA93B2A536F5C27 ] SstpSvc         C:\Windows\system32\sstpsvc.dll
14:03:18.0105 0x1060  SstpSvc - ok
14:03:18.0138 0x1060  [ 5252D7BC56E5E0ED715AEA8FE173A455, 1408B3E98B35A449434718777EE70595F0D306197A428279C6281D2F1953F259 ] ssudmdm         C:\Windows\system32\DRIVERS\ssudmdm.sys
14:03:18.0160 0x1060  ssudmdm - ok
14:03:18.0186 0x1060  [ 366DEA74BBA65B362BCCFC6FC2ADFD8B, 4D28122AB9D8DAB724021E6513B4474BD34FCEDF47769B1D27AC7551FCA002F8 ] stexstor        C:\Windows\system32\drivers\stexstor.sys
14:03:18.0206 0x1060  stexstor - ok
14:03:18.0276 0x1060  [ 63E9CE568CF1192771A5F0460DE7D2B9, C27B21FD2C14AD41A59EF62EB8AC95C08EB13CCB1CEECD8378B8CDD4DC352E69 ] stisvc          C:\Windows\System32\wiaservc.dll
14:03:18.0356 0x1060  stisvc - ok
14:03:18.0376 0x1060  [ 0ED2E318ABB68C1A35A8B8038BDB4C90, 5C3ABC245F4BCFE64E646D9C0E2F5E211244956C84D03084C71FF6A7E0CDED30 ] storahci        C:\Windows\system32\drivers\storahci.sys
14:03:18.0399 0x1060  storahci - ok
14:03:18.0437 0x1060  [ 8B9486B64E5FC17FB9CC04CA10B77A34, C1EAC9D27DC83E4C56B890D97988C3CCFAE3877309610601F2E3FFFE97686D43 ] storflt         C:\Windows\system32\drivers\vmstorfl.sys
14:03:18.0457 0x1060  storflt - ok
14:03:18.0471 0x1060  [ 6B06E2D11E604BE2B1A406C4CB3B90DE, 2DDEA1568A85AD64FCE5D10D348304FCD9BE6E96C2313353EF70A2933306D188 ] stornvme        C:\Windows\system32\drivers\stornvme.sys
14:03:18.0494 0x1060  stornvme - ok
14:03:18.0529 0x1060  [ A45F5AC9D8069D0EC66E3CA73103073B, 996788F1C58E016E8E5CF3FD1D220A3C40AFFD6C21361A34636415DB12E0D381 ] StorSvc         C:\Windows\system32\storsvc.dll
14:03:18.0600 0x1060  StorSvc - ok
14:03:18.0634 0x1060  [ 548759755BC73DAD663250239D7E0B9F, D31A05A8CE800B539420B6E545F1F4BF6E4B02EAF8366DE89CAF13A83C6CA48D ] storvsc         C:\Windows\system32\drivers\storvsc.sys
14:03:18.0654 0x1060  storvsc - ok
14:03:18.0683 0x1060  [ E395BE02F80A79A6CF973BA38DBB8135, 4C6F85B0EB8E7725BA720F9742561D229726C0D7C17505D1E79F19A5626F6325 ] svsvc           C:\Windows\system32\svsvc.dll
14:03:18.0737 0x1060  svsvc - ok
14:03:18.0775 0x1060  [ 65454187E0F8B6C0DCECB0287D06EC43, 87550000CF5B3C1DF3E69633934AFE8554AE40B6638F190D3185AD63F1D7A2EE ] swenum          C:\Windows\System32\drivers\swenum.sys
14:03:18.0796 0x1060  swenum - ok
14:03:18.0850 0x1060  [ 1C71D72D4997A284128FBEE770726330, 21682BDE74A1108FED1124FB1EA35A03CBFA94ABE1B89CC0FADB4DD82596C43E ] swprv           C:\Windows\System32\swprv.dll
14:03:18.0914 0x1060  swprv - ok
14:03:18.0997 0x1060  [ 3114CB46C2853CA71525428CB0C7CB58, A9CC51506AABBC23BAB2B90E30AB13197A72268A3DE6D2F281C1C367ED7118AE ] SysMain         C:\Windows\system32\sysmain.dll
14:03:19.0092 0x1060  SysMain - ok
14:03:19.0132 0x1060  [ 23BECB70654B192A7E378DEE3DBD8D42, 7596174AE7508B62C40A429645198F6A420D0CD5B62A10AB78516113584E7EDB ] SystemEventsBroker C:\Windows\System32\SystemEventsBrokerServer.dll
14:03:19.0187 0x1060  SystemEventsBroker - ok
14:03:19.0233 0x1060  [ D6A71B95ACF71ACA63B67232059F1BCD, C5CEC032E7AB507500D1CC7A4E65DA6322412C798201A9D770CBDE892E50DFC8 ] TabletInputService C:\Windows\System32\TabSvc.dll
14:03:19.0292 0x1060  TabletInputService - ok
14:03:19.0334 0x1060  [ 5A5BAB1CA9621E73E25EE4744B67CDA6, 479EBD7BAE1E2AD431153FDC016742F7A8D824716EAB1A4CA87EBBD21D61DECD ] TapiSrv         C:\Windows\System32\tapisrv.dll
14:03:19.0411 0x1060  TapiSrv - ok
14:03:19.0544 0x1060  [ 468273F7089A3A33D149955F0F203FA4, 18FD0B73FBD63550E904EE76D4323EFE163BFF8C3DC6DE67F4BE6003C7DC6879 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
14:03:19.0686 0x1060  Tcpip - ok
14:03:19.0784 0x1060  [ 468273F7089A3A33D149955F0F203FA4, 18FD0B73FBD63550E904EE76D4323EFE163BFF8C3DC6DE67F4BE6003C7DC6879 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
14:03:19.0918 0x1060  TCPIP6 - ok
14:03:19.0966 0x1060  [ 41CF802064F72E55F50CA0A221FD36D4, 70ABCDF9E96611E8C83042C581575E26649FE479475E8E118CD3FF6CB1C84C3F ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
14:03:20.0006 0x1060  tcpipreg - ok
14:03:20.0040 0x1060  [ FFF28F9F6823EB1756C60F1649560BBF, 208DFF8BF0329D0D4761C7E31527AEED7FF5F3C36C5005953D01477F35408D5C ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
14:03:20.0074 0x1060  tdx - ok
14:03:20.0098 0x1060  [ 232D185D2337F141311D0CF1983E1431, 02EB56D3F26174AF1741C1A444CE30DE84D5BAF583C1A52C7A953BCC52445547 ] terminpt        C:\Windows\System32\drivers\terminpt.sys
14:03:20.0118 0x1060  terminpt - ok
14:03:20.0196 0x1060  [ C50997E282576DA492EBA66B059D4196, EBD793CB396F9503376207FA60353F5672DEDB620C8E01C8D6AE0030B3B03339 ] TermService     C:\Windows\System32\termsrv.dll
14:03:20.0281 0x1060  TermService - ok
14:03:20.0321 0x1060  [ 2180DBCE75B914E5E5BBFFFAAE97AA21, 8000AECC8855903DB50ABA7E304396D1FCEAE8DC9ADD4FC50275CF24B4D914DE ] Themes          C:\Windows\system32\themeservice.dll
14:03:20.0361 0x1060  Themes - ok
14:03:20.0391 0x1060  [ 4C5179DB61B9E14BEC15CDC4B152B2E9, 9048BEC7AD6A3F4B640E99B1F0365AC9A46740B188758FBB2C160EF30AD6E64B ] THREADORDER     C:\Windows\system32\mmcss.dll
14:03:20.0416 0x1060  THREADORDER - ok
14:03:20.0481 0x1060  [ B5ED9CC61798C7D44BD535D40B89EFB5, 1BDCEAA9AF2096381870D92129C748F4EE06A1167ABA9367B9DD43BAF27E3F5B ] TimeBroker      C:\Windows\System32\TimeBrokerServer.dll
14:03:20.0572 0x1060  TimeBroker - ok
14:03:20.0608 0x1060  [ 82F909359600D3603FE852DB7F135626, 2EB2BB9D81AC9A2E432B2628E296B7B21F1C82EAE8009300EEF1B8596A9F418D ] TPM             C:\Windows\system32\drivers\tpm.sys
14:03:20.0636 0x1060  TPM - ok
14:03:20.0673 0x1060  [ 884113C2BB703FE806C8608B75F34831, 24DE5750CA4363455412BABB0B1FAB08497153E8F158ED44958F100410F93506 ] TrkWks          C:\Windows\System32\trkwks.dll
14:03:20.0708 0x1060  TrkWks - ok
14:03:20.0769 0x1060  [ 44A94FB4C76528D2382FFE04B05827C3, B0BCDF7CD1D65E61A9061D539D83527A89B69583958F8A26C6BF9766C1B61E0C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
14:03:20.0809 0x1060  TrustedInstaller - ok
14:03:20.0831 0x1060  [ BF8F54CA37E9C9D6582C31C5761F8C93, 337C566792F6FB9B7FD5D1D4384B767CFE4CF5DBB2E4688CCC36CBB018A0DD0F ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
14:03:20.0874 0x1060  TsUsbFlt - ok
14:03:20.0910 0x1060  [ 20185BEB7512EDE4EFECDFA148AC9F99, 6F539478493C0F87F3DDF67A4A6D4D41E9474EEF21434E856350CE149A34EA9F ] TsUsbGD         C:\Windows\System32\drivers\TsUsbGD.sys
14:03:20.0953 0x1060  TsUsbGD - ok
14:03:20.0987 0x1060  [ C8E0E78B5D284C2FF59BDFFDAF997242, BA1576C491A1246EF9866762426D110F4570F9DB42A68C174943C7D5020FE3E2 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
14:03:21.0019 0x1060  tunnel - ok
14:03:21.0055 0x1060  [ E624283C1A2F9BB4688A002914CC00A7, B6908C1FFDD6BCFFC5C2FC0C429FC3E237E340F891F80CFD737BE41E5EF7E328 ] TXEIx64         C:\Windows\System32\drivers\TXEIx64.sys
14:03:21.0073 0x1060  TXEIx64 - ok
14:03:21.0089 0x1060  [ F6EEAD052943B5A3104C1405BB856C54, FE422813E6C1012E9F392EFF2AE4C6D3A4DBD9CB2BD5E6A5CAB57D4E89A29468 ] uagp35          C:\Windows\system32\drivers\uagp35.sys
14:03:21.0111 0x1060  uagp35 - ok
14:03:21.0130 0x1060  [ FE6067B1FD4E63650C667B33D080565B, 2C330ED00E49BA55E25564230E0DFB8A35F2B5320EB18D4AF7CAACFA9A449044 ] UASPStor        C:\Windows\System32\drivers\uaspstor.sys
14:03:21.0153 0x1060  UASPStor - ok
14:03:21.0193 0x1060  [ 807F8CF3E973305FC435C61CBBEE2A49, 43CDEAC2BFC5091C11DFC0E7F7171AF9A598AE56CB056C3CF382AE7807F79EF0 ] UCX01000        C:\Windows\System32\drivers\ucx01000.sys
14:03:21.0222 0x1060  UCX01000 - ok
14:03:21.0270 0x1060  [ C61EAF8E1E4B2F62BA4FDF457440B2C6, 961F76A789925234AC27F56AAE34556FA06088D71580B42C24B0BC209EAFD67E ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
14:03:21.0332 0x1060  udfs - ok
14:03:21.0347 0x1060  [ 9578691F297E1B1F519970FE6D47CB21, 080C352AAF22A16A4F3C4AB4DCEA5BFA656457C73F735CEBA30516FDACCF6301 ] UEFI            C:\Windows\System32\drivers\UEFI.sys
14:03:21.0368 0x1060  UEFI - ok
14:03:21.0412 0x1060  [ A867F0F978EE64C87FADC3B100869EE4, 2686BE85F963D0D0BB275E92E5B543280D8742CF10772303E3189D0719B6A277 ] UI0Detect       C:\Windows\system32\UI0Detect.exe
14:03:21.0450 0x1060  UI0Detect - ok
14:03:21.0484 0x1060  [ 5EAB5117DDB24FC4D39E6FFFCF1837B9, 2BC709240867F161E94BE6625A04F478EAAA3EEE7BC7C37ED0DFA9EEA5928E98 ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
14:03:21.0508 0x1060  uliagpkx - ok
14:03:21.0532 0x1060  [ DA34C39A18E60E7C3FA0630566408034, 2F162504214053894C72760D9933D01DBF3578609FE5E2376C3272818599FE32 ] umbus           C:\Windows\System32\drivers\umbus.sys
14:03:21.0561 0x1060  umbus - ok
14:03:21.0584 0x1060  [ AE8294875E5446E359B1E8035D40C05E, AE0357BAB47C07C3576BC76951CD258C009BC5A1B93259D2122A841BD9CDA8FA ] UmPass          C:\Windows\System32\drivers\umpass.sys
14:03:21.0606 0x1060  UmPass - ok
14:03:21.0655 0x1060  [ A023F267A262D5DA6CE1436D9C5E8FD9, 92AD7AF91184C244A7E392F49663143193A80D5D81114546A00F18227DE31D23 ] UmRdpService    C:\Windows\System32\umrdp.dll
14:03:21.0705 0x1060  UmRdpService - ok
14:03:21.0757 0x1060  [ C98493DD8E6A50154FAC75C15E1C36BB, CECD1C826C8F7AF05468871BF6A0ACDBB6B0202F4F87F48C6D367E5BD699E800 ] upnphost        C:\Windows\System32\upnphost.dll
14:03:21.0801 0x1060  upnphost - ok
14:03:21.0836 0x1060  [ FF78D053A05E5A394F4E3C1816CC65A8, 5DAE02414271231F5FDBB751AFEB99874779B467947020815D4AE54432D4269D ] usbccgp         C:\Windows\System32\drivers\usbccgp.sys
14:03:21.0861 0x1060  usbccgp - ok
14:03:21.0906 0x1060  [ 0139248F6B95CF0D837B5B46A2722D40, 38E3E704E0364F07732DB418AEBD126B040FB3CDB7D78EA36E8605D50D528A80 ] usbcir          C:\Windows\System32\drivers\usbcir.sys
14:03:21.0934 0x1060  usbcir - ok
14:03:21.0965 0x1060  [ 48BA326A3DBA5B5BEB5F2777F4618696, B9EC8155F11A3A7644BD9DC8910681B46AE44AE3BF53F052DF50E9C5555E3229 ] usbehci         C:\Windows\System32\drivers\usbehci.sys
14:03:21.0989 0x1060  usbehci - ok
14:03:22.0029 0x1060  [ FEF0BC107812B36849741C3211BA6B60, B3EF738BE1E6B6027F29C9713CD3F367EA067D2BE46580AFBC0FB58046EF6BBD ] usbhub          C:\Windows\System32\drivers\usbhub.sys
14:03:22.0071 0x1060  usbhub - ok
14:03:22.0128 0x1060  [ 95B0179BDA907252025DEEA183699FB3, A6BDFB93EE9418A83407024204A41640A08638C60E2BE75C249D102601DC1D80 ] USBHUB3         C:\Windows\System32\drivers\UsbHub3.sys
14:03:22.0173 0x1060  USBHUB3 - ok
14:03:22.0218 0x1060  [ 3019097FB6C985EF24C058090FF3BDBD, 24AC518D34E338D94BF3D5B3F72E53F8A1369BAA7F32FEA3EDBCF928C4FF1D17 ] usbohci         C:\Windows\System32\drivers\usbohci.sys
14:03:22.0288 0x1060  usbohci - ok
14:03:22.0302 0x1060  [ 4D655E3B684BE9B0F7FFD8A2935C348C, 3A7FC1748C5AEA8CFE0E7C22ADC77E3DCA475455FC16D9C6A5C16EB5E949A516 ] usbprint        C:\Windows\System32\drivers\usbprint.sys
14:03:22.0352 0x1060  usbprint - ok
14:03:22.0385 0x1060  [ 0F030491BA4A27BD46F8B8ACEEE83F1A, 7063855611BEF94D4D229BA1BE507ECBDD89F5861641A407EB3E2919A352F9D4 ] usbscan         C:\Windows\System32\drivers\usbscan.sys
14:03:22.0448 0x1060  usbscan - ok
14:03:22.0478 0x1060  [ 66732C13628BDB1AB0D6FD46027327C2, B582C0F348D8F79419CA5A58F10CA151E06D7CA3BE162344CADA46D9D7FED97C ] USBSTOR         C:\Windows\System32\drivers\USBSTOR.SYS
14:03:22.0503 0x1060  USBSTOR - ok
14:03:22.0536 0x1060  [ 064260B3A5868AC894A4943543BC7AB7, D3534E98B34C4AC9A430D7E0AB301A0E5E1511E3117C2FEA392636B0DE2C38E2 ] usbuhci         C:\Windows\System32\drivers\usbuhci.sys
14:03:22.0585 0x1060  usbuhci - ok
14:03:22.0625 0x1060  [ 5C8F604F6DC74177CDD8372D7B1ADFF0, C1DE9A37A7A01CCCBFCE13C1E5B26683F620AB21EDA5A14C82022E2F49C84484 ] usbvideo        C:\Windows\System32\Drivers\usbvideo.sys
14:03:22.0663 0x1060  usbvideo - ok
14:03:22.0703 0x1060  [ 44603DA5A87FB491EF59C889EBBB4DDB, 59AA9B6B0B5D66F9312CD3F999D0D9F12F1A2C5D230365AD7287CD71FD86961C ] USBXHCI         C:\Windows\System32\drivers\USBXHCI.SYS
14:03:22.0740 0x1060  USBXHCI - ok
14:03:22.0762 0x1060  [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] VaultSvc        C:\Windows\system32\lsass.exe
14:03:22.0785 0x1060  VaultSvc - ok
14:03:22.0808 0x1060  [ FEB26E3B8345A7E8D62F945C4AE86562, 3AAFE87C402FC8E92542DFE60EC9540559863065F88D429A16D7B1BF829223FF ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
14:03:22.0829 0x1060  vdrvroot - ok
14:03:22.0910 0x1060  [ 8A4D808D1EC7C1C47B2C8BF488A9A07A, 63C07312ADB6F8A8BDE93361C30AC63DAB4DE1141AF54630EEF11E54B0BF983D ] vds             C:\Windows\System32\vds.exe
14:03:23.0002 0x1060  vds - ok
14:03:23.0032 0x1060  [ A026EDEAA5EECAE0B08E2748B616D4BD, 2525A54DC7F49DDFBB999C22BF3FAB6D9E9F70C0806E58D81E90AC59F9F46089 ] VerifierExt     C:\Windows\system32\drivers\VerifierExt.sys
14:03:23.0059 0x1060  VerifierExt - ok
14:03:23.0115 0x1060  [ C06E8481E068F170A258441639AC5792, 2F550530BACB511A195D5047F003B01CB6E04FA9A0DCCF638CB3D51FF5467DC7 ] vhdmp           C:\Windows\System32\drivers\vhdmp.sys
14:03:23.0168 0x1060  vhdmp - ok
14:03:23.0197 0x1060  [ 06D38968028E9AB19DE9B618C7B6D199, 62022297A47F440D1C82CA0B0E57C0C8E9D5033D83DD3B40492B218DF65EBF68 ] viaide          C:\Windows\system32\drivers\viaide.sys
14:03:23.0217 0x1060  viaide - ok
14:03:23.0259 0x1060  [ 511AD3FF957A0127E6BD336FF6F89C38, 55325BFD0857A1204F7F6F8ED8C91C07B0E20A50402105708E7365ECD9E25A21 ] vmbus           C:\Windows\system32\drivers\vmbus.sys
14:03:23.0281 0x1060  vmbus - ok
14:03:23.0302 0x1060  [ DA40BEA0A863CE768C940CA9723BF81F, 567C0C3F422325635808B0CF76E05D3B6187F96845C33F85F92F98C9FE53A5B8 ] VMBusHID        C:\Windows\System32\drivers\VMBusHID.sys
14:03:23.0333 0x1060  VMBusHID - ok
14:03:23.0383 0x1060  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicguestinterface C:\Windows\System32\ICSvc.dll
14:03:23.0443 0x1060  vmicguestinterface - ok
14:03:23.0468 0x1060  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicheartbeat   C:\Windows\System32\ICSvc.dll
14:03:23.0509 0x1060  vmicheartbeat - ok
14:03:23.0533 0x1060  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmickvpexchange C:\Windows\System32\ICSvc.dll
14:03:23.0575 0x1060  vmickvpexchange - ok
14:03:23.0599 0x1060  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicrdv         C:\Windows\System32\ICSvc.dll
14:03:23.0640 0x1060  vmicrdv - ok
14:03:23.0665 0x1060  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicshutdown    C:\Windows\System32\ICSvc.dll
14:03:23.0707 0x1060  vmicshutdown - ok
14:03:23.0732 0x1060  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmictimesync    C:\Windows\System32\ICSvc.dll
14:03:23.0773 0x1060  vmictimesync - ok
14:03:23.0800 0x1060  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicvss         C:\Windows\System32\ICSvc.dll
14:03:23.0841 0x1060  vmicvss - ok
14:03:23.0893 0x1060  [ 55D7D963DE85162F1C49721E502F9744, 5AD34D6DB707EF3E5242BD8CA67B21D6258EE7E7FC477D5227BD15500AE7F45F ] volmgr          C:\Windows\system32\drivers\volmgr.sys
14:03:23.0915 0x1060  volmgr - ok
14:03:23.0959 0x1060  [ CCB9E901F7254BF96D28EB1B0E5329B7, F0E3CA4EFA544CDAEF4092284CF3EC7DF07F806A770285E281816457AD8813F5 ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
14:03:23.0998 0x1060  volmgrx - ok
14:03:24.0038 0x1060  [ 64CA2B4A49A8EAF495E435623ECCE7DB, 81151F295A54DE2B8B88C7F48C86BF58CDFF96F98493509C06D6F41484594386 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
14:03:24.0071 0x1060  volsnap - ok
14:03:24.0111 0x1060  [ EF31713EE4C7CCFE4049F7E7F15645A2, 35D198D3F1061E19A7EF89FA1E75377049CD6BCA9702F8076B9F95BB8737E0D4 ] vpci            C:\Windows\System32\drivers\vpci.sys
14:03:24.0133 0x1060  vpci - ok
14:03:24.0170 0x1060  [ 4539F45F9F4C9757A86A56C949421E07, DEC362314B2C66414F39354AFE79C02B18BF4EEF90787FB58307F6EB62237E2C ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
14:03:24.0197 0x1060  vsmraid - ok
14:03:24.0294 0x1060  [ 94FAFD473CDD80CE19A21FB9503D7ED1, 953E5E8C753C0017E1258695A76F60CC05D283F7476B9D9C5C8AC78B8E3FCE18 ] VSS             C:\Windows\system32\vssvc.exe
14:03:24.0383 0x1060  VSS - ok
14:03:24.0430 0x1060  [ 0849B7260F26FE05EA56DED0672E2F4B, 7EAC0E7988F45CB4133A15932955B7B03CE715C967A3BAC9999D81543EBCAEC5 ] VSTXRAID        C:\Windows\system32\drivers\vstxraid.sys
14:03:24.0465 0x1060  VSTXRAID - ok
14:03:24.0495 0x1060  [ BE970C369E43B509C1EDA2B8FA7CECB0, 18951F2AA842A0795AA79A4E164EE925A35E6270EBE4C4CDB19D0A891830E383 ] vwifibus        C:\Windows\System32\drivers\vwifibus.sys
14:03:24.0548 0x1060  vwifibus - ok
14:03:24.0578 0x1060  [ 35BF5C5F5E3C9902C98978C7640574DA, C61E50B04000DCEC72365723F0C0725C2E005529DAF2777A59E624C14DA29E55 ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
14:03:24.0620 0x1060  vwififlt - ok
14:03:24.0643 0x1060  [ 65ED7B9CFEA893DF7748D5FF692690DE, 73AB9D8BB928B3247BDFC7BB47AD7FCA763B375DC250C251DB4E0573531040E8 ] vwifimp         C:\Windows\system32\DRIVERS\vwifimp.sys
14:03:24.0680 0x1060  vwifimp - ok
14:03:24.0731 0x1060  [ DC821E811EFBB65CDD77FBB8B6ECA385, B7C8AACDF81DBA298F2F384983D36B269876C31F0398D89BF9070217A069B96F ] W32Time         C:\Windows\system32\w32time.dll
14:03:24.0793 0x1060  W32Time - ok
14:03:24.0808 0x1060  [ 0910AB9ED404C1434E2D0376C2AD5D8B, 62585CA5F1375BDA440D28D5DF1ADDC9DE3DDFA196D49BBFF3456A5A09EE1C6B ] WacomPen        C:\Windows\System32\drivers\wacompen.sys
14:03:24.0840 0x1060  WacomPen - ok
14:03:24.0939 0x1060  [ A81988DCC4FA440AA88B84CA452F5E22, 3573AAA09971E8ADB6FEFA778E02B2D8EE5E4249267CF37A524D9F019CC836FB ] wbengine        C:\Windows\system32\wbengine.exe
14:03:25.0047 0x1060  wbengine - ok
14:03:25.0096 0x1060  [ 0F1DFA2FED73FA78B8C3CDE332A870F6, 1089F6F585F5350D349A640EBD3117832DF6B3657EB6667CB00AE217E04ACA17 ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
14:03:25.0163 0x1060  WbioSrvc - ok
14:03:25.0191 0x1060  [ 0EAEC313B24837613621B4A2536ED382, 61C194ED7FA7D65BBE61A546D5FCA52F52AB08324E084D3EC23C9706E9BF0175 ] Wcmsvc          C:\Windows\System32\wcmsvc.dll
14:03:25.0231 0x1060  Wcmsvc - ok
14:03:25.0279 0x1060  [ F6B4C2280FF7C7156AC8A4687B9DA35E, 1899D584D7469BB49355D84080051E2575B033E6312009D9C6C1DD3F7F9AA4C5 ] wcncsvc         C:\Windows\System32\wcncsvc.dll
14:03:25.0321 0x1060  wcncsvc - ok
14:03:25.0354 0x1060  [ B7BF1D783F5B2484E8CE1C0C78257F16, 468601199FCCF63DBAE86EE6B8825EA85B2A1EE177413353FFA2CC9CA5249FCD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
14:03:25.0412 0x1060  WcsPlugInService - ok
14:03:25.0459 0x1060  [ 1751F6B031ADAC34724511057D2E455D, BCBC77DE02718868302F7469E8FBB8F2E7E0F8A5D3E46A5B4D48713E829FBAF6 ] WdBoot          C:\Windows\system32\drivers\WdBoot.sys
14:03:25.0480 0x1060  WdBoot - ok
14:03:25.0541 0x1060  [ CB6C63FF8342B467E2EF76E98D5B934D, BE017CE91E3BAB293DE6ECF143797CCE3F33CC63024437472B4E38C6961AD884 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
14:03:25.0595 0x1060  Wdf01000 - ok
14:03:25.0620 0x1060  [ D296D0F0DB2CD1504F90405603664493, 9531034AE2E027B5C7366713AA9003085501800B35F971D1CE7FFB8E5DAE3825 ] WdFilter        C:\Windows\system32\drivers\WdFilter.sys
14:03:25.0652 0x1060  WdFilter - ok
14:03:25.0696 0x1060  [ F581F9C9D6953FABFA24E67105F0B614, 5A7BB72523D1C53BBE68700537D7AE0D150BC7E4B8227A916B2E29EE4CA267A9 ] WdiServiceHost  C:\Windows\system32\wdi.dll
14:03:25.0727 0x1060  WdiServiceHost - ok
14:03:25.0736 0x1060  [ F581F9C9D6953FABFA24E67105F0B614, 5A7BB72523D1C53BBE68700537D7AE0D150BC7E4B8227A916B2E29EE4CA267A9 ] WdiSystemHost   C:\Windows\system32\wdi.dll
14:03:25.0765 0x1060  WdiSystemHost - ok
14:03:25.0803 0x1060  [ 9F4DF0043965808973023A9B51A11136, 3A799125CBC5C214D9FBB91C348B39563B1FDB7403B520270752E9A177464723 ] WdNisDrv        C:\Windows\system32\Drivers\WdNisDrv.sys
14:03:25.0826 0x1060  WdNisDrv - ok
14:03:25.0854 0x1060  WdNisSvc - ok
14:03:25.0899 0x1060  [ 185E4111627F7AA6799E1366B5E91D65, 7A02C816DFBCCF47EDB49E5E2005A3D0B80719FAC94F9298D2DBAC63950EDA05 ] WebClient       C:\Windows\System32\webclnt.dll
14:03:25.0970 0x1060  WebClient - ok
14:03:26.0012 0x1060  [ 384E1D04FE20845B2559D292F17A9FA1, AD3B0B2B2219691AC30FEEC8AFDB3BBB74B51BB7D02038AE2B4DEA514E245315 ] Wecsvc          C:\Windows\system32\wecsvc.dll
14:03:26.0057 0x1060  Wecsvc - ok
14:03:26.0094 0x1060  [ 455014F4E48B67EBE0F032E2B0E06BF2, A36435784A034B27056A0E606683A20C69F1B0AB2B6BAEDEAEAA190F6287CAEF ] WEPHOSTSVC      C:\Windows\system32\wephostsvc.dll
14:03:26.0133 0x1060  WEPHOSTSVC - ok
14:03:26.0165 0x1060  [ F13DBA57CEA9B7074B95EDCA6AD2635E, 1D9BA4841EF1343A5D9096B5FE27FC65DC1901D6683DD13516171638549666B5 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
14:03:26.0225 0x1060  wercplsupport - ok
14:03:26.0263 0x1060  [ FD7E58B6AA3EABF2D12B9762A20E11E4, 4C5E2E246C5C70074866BB3DBC2AAF483ECE4345004CCB8D1FE285047268685D ] WerSvc          C:\Windows\System32\WerSvc.dll
14:03:26.0305 0x1060  WerSvc - ok
14:03:26.0349 0x1060  [ BAB713B409258DB7B5D9F9693F802B0E, C0D0391EC4FDC07E0A07F4EEB2DC9CC5B2BE5D2E292E7D01929E8D39D6F73EA5 ] WFPLWFS         C:\Windows\system32\DRIVERS\wfplwfs.sys
14:03:26.0374 0x1060  WFPLWFS - ok
14:03:26.0408 0x1060  [ 8C840E1FD7584E74BD0CC1EA581EC187, 148E534A94B4882E7396B13FABE17407802292E7890713540080D03D5629C81D ] WiaRpc          C:\Windows\System32\wiarpc.dll
14:03:26.0440 0x1060  WiaRpc - ok
14:03:26.0477 0x1060  [ 5F66B7BB330AA80067FC66149A692620, 92C5D7115A168A23108B65EEEB5FBA8FA43D781855355792596D2419160263C2 ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
14:03:26.0498 0x1060  WIMMount - ok
14:03:26.0503 0x1060  WinDefend - ok
14:03:26.0591 0x1060  [ 10DAD6A7FC617A221313BD584E3C3A00, F139B878668ECF38FE59831E8595A207D5CEEE76C6FFDA8C9F735435E601A763 ] WinHttpAutoProxySvc C:\Windows\system32\winhttp.dll
14:03:26.0645 0x1060  WinHttpAutoProxySvc - ok
14:03:26.0708 0x1060  [ FC8BD690321216C32BB58B035B6D5674, D61698DB19D9DB2593B60B6BA13F7B7735667206F41D751D507135469D6D3CDD ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
14:03:26.0760 0x1060  Winmgmt - ok
14:03:26.0895 0x1060  [ 75436315AA383CF527695C6D49D0CA59, E3D55F2ACBD45D4D031FA6CA799394459C89BE50FF6ADE4FE36F2CAB2D2E63D0 ] WinRM           C:\Windows\system32\WsmSvc.dll
14:03:27.0044 0x1060  WinRM - ok
14:03:27.0097 0x1060  [ AC263C2F66405589528995AA41040599, 81B46E551D6130A2C3D113EC3B563CEDB5A06BB340986C0E03136CE5BE729481 ] WinUsb          C:\Windows\System32\drivers\WinUsb.sys
14:03:27.0122 0x1060  WinUsb - ok
14:03:27.0195 0x1060  [ DC079BA8390089E4EBCA63D27EEA3ECB, 4D549217A68292E2B16C09FD9F84317011EE54A2DAF4E2AB85554267DF0D3249 ] WlanSvc         C:\Windows\System32\wlansvc.dll
14:03:27.0285 0x1060  WlanSvc - ok
14:03:27.0390 0x1060  [ 06BF5897949A8F24893F792E876B71F5, 9D3719492A86BF52A56E2EA798FD6FDB5862A03F6D360FCC4B0CEA9BE9792AE4 ] wlidsvc         C:\Windows\system32\wlidsvc.dll
14:03:27.0484 0x1060  wlidsvc - ok
14:03:27.0499 0x1060  [ 2834D9D3B4F554A39C72F00EA3F0E128, D10124343C67FE9A0B711AD569BB8080495FCEA0ECEF9AC3F3FBD6865F436A44 ] WmiAcpi         C:\Windows\System32\drivers\wmiacpi.sys
14:03:27.0531 0x1060  WmiAcpi - ok
14:03:27.0576 0x1060  [ B96F7A1236C3F21212DE2C40A3DDB005, 5A29EBB6DA036E303611EB1304192655021405BB05452FD37886DDE604FF0D9D ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
14:03:27.0617 0x1060  wmiApSrv - ok
14:03:27.0640 0x1060  WMPNetworkSvc - ok
14:03:27.0669 0x1060  [ 7FC5667DF73D4B04AA457CC3A4180E09, CB7B014945DCA16B6D120DBE0E5876C4C867A4ACD3C3536AEADC14B908613D4E ] Wof             C:\Windows\system32\drivers\Wof.sys
14:03:27.0695 0x1060  Wof - ok
14:03:27.0806 0x1060  [ 588040D595BBF0856CA1ADD941A8ED17, CBC92BB5453FE1BEA6F33239B7CE884F312559591383408EA5F95A006156C5D3 ] workfolderssvc  C:\Windows\system32\workfolderssvc.dll
14:03:27.0919 0x1060  workfolderssvc - ok
14:03:27.0961 0x1060  [ A2468CC3509394A33C4C32F99563D845, 62690C7D41F382DF74B8F4B942647842858E37DE35FF2DE028192E4D09ABB2C5 ] wpcfltr         C:\Windows\system32\DRIVERS\wpcfltr.sys
14:03:27.0983 0x1060  wpcfltr - ok
14:03:28.0015 0x1060  [ 19F4DF69876DA7E9C4965351560FE6B7, 127247A7964F55EE3AF842D25120F5ACD387632BEE2BF3D28FAC05840CEA19BA ] WPCSvc          C:\Windows\System32\wpcsvc.dll
14:03:28.0077 0x1060  WPCSvc - ok
14:03:28.0113 0x1060  [ 2ADE11F3D84709C5F6781E4C59F11683, F003C43396CF8FCF44EAB87583650DB4D2A233322D28D6A78D1694945D9073BB ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
14:03:28.0166 0x1060  WPDBusEnum - ok
14:03:28.0189 0x1060  [ 9F2904B55F6CECCD1A8D986B5CE2609A, E19ED4DD3CEF3A22C058FC324824604FB3FC98A029C94E6C2A3389F938D680B6 ] WpdUpFltr       C:\Windows\system32\drivers\WpdUpFltr.sys
14:03:28.0209 0x1060  WpdUpFltr - ok
14:03:28.0243 0x1060  [ C7D26BC010E9C5104BED21E4049B6E99, 7657D1590FCF703CADBAF02FF064DD4C196B8F45D6505AB693E50568BBA55F07 ] WRkrn           C:\Windows\system32\drivers\WRkrn.sys
14:03:28.0261 0x1060  WRkrn - ok
14:03:28.0324 0x1060  [ 4F509FB1F51AC18104C46E70D8132C35, E9ABE2D3548AE678299D7699BAD3C02AABBBEC1FE3717BED5C5DDC40CF51863F ] WRSVC           C:\Program Files\Webroot\WRSA.exe
14:03:28.0368 0x1060  WRSVC - ok
14:03:28.0397 0x1060  [ 22C7AB222E19865659E412A43A9FB216, 1681780A3C6BCBA4619291A3B1F16BC6DCF84A3B619F89D0C262416441DBD01C ] wrUrlFlt        C:\Windows\system32\DRIVERS\wrUrlFlt.sys
14:03:28.0411 0x1060  wrUrlFlt - ok
14:03:28.0430 0x1060  [ AE072B0339D0A18E455DC21666CAD572, AB1DAEA25E2C7AD610818D4B4783F6D4190D85EBB3963BBAD410E8CEA7899EDB ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
14:03:28.0465 0x1060  ws2ifsl - ok
14:03:28.0500 0x1060  [ 5596C0960ED6ED7494BF2A55DE428684, C95CF09A657F37F421CC80E16F2F95B8EC59A8D5D48F104551155EAC8E53DCB2 ] wscsvc          C:\Windows\System32\wscsvc.dll
14:03:28.0552 0x1060  wscsvc - ok
14:03:28.0575 0x1060  [ F586F3F1BF962FE9AE4316E0D896B22F, 8D0AD48D79294567123D943D0F5B6D5A32D7A82B129A24DC821D3095AFAA100B ] WSDPrintDevice  C:\Windows\System32\drivers\WSDPrint.sys
14:03:28.0598 0x1060  WSDPrintDevice - ok
14:03:28.0625 0x1060  [ 58035FD3369879E02D65989C44D27450, B9245DB5C17F7CE94FAA20AB4B0D06A4DFB6133C6E82343758CDC713EB64DFEF ] WSDScan         C:\Windows\System32\drivers\WSDScan.sys
14:03:28.0663 0x1060  WSDScan - ok
14:03:28.0674 0x1060  WSearch - ok
14:03:28.0848 0x1060  [ 6B2D71124C1EA86B74412F414C42431D, 078CC6C9667EF6BDA3E6900BC26A5A5B030CAA66928A6BBB7B7DC43C5C199EDC ] WSService       C:\Windows\System32\WSService.dll
14:03:29.0035 0x1060  WSService - ok
14:03:29.0230 0x1060  [ 5F3D70B19BCAC985DA90F22CA2FF45E4, BBD82BAEF0DCA2C6361F8D1ADF5BED36D0F1AB1A2AEADB0E4526B917F40C2E52 ] wuauserv        C:\Windows\system32\wuaueng.dll
14:03:29.0551 0x1060  wuauserv - ok
14:03:29.0598 0x1060  [ 481286719402E4BAEFEA0604AB1B5113, F3CF65DF2AB39F79AE4C1335831408418E40726706E0242677E8B96B0FAD988F ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
14:03:29.0666 0x1060  WudfPf - ok
14:03:29.0720 0x1060  [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFRd          C:\Windows\System32\drivers\WUDFRd.sys
14:03:29.0749 0x1060  WUDFRd - ok
14:03:29.0764 0x1060  [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFSensorLP    C:\Windows\system32\DRIVERS\WUDFRd.sys
14:03:29.0793 0x1060  WUDFSensorLP - ok
14:03:29.0824 0x1060  [ 51D28F7F1F888DDCF2C67DCF3B79A5D3, 74FF2936AFCEB9A36175D5B00EB91A5AD614B52BE3FB3FA9B994A025A484D2B7 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
14:03:29.0866 0x1060  wudfsvc - ok
14:03:29.0881 0x1060  [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFWpdFs       C:\Windows\System32\drivers\WUDFRd.sys
14:03:29.0910 0x1060  WUDFWpdFs - ok
14:03:29.0923 0x1060  [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFWpdMtp      C:\Windows\System32\drivers\WUDFRd.sys
14:03:29.0950 0x1060  WUDFWpdMtp - ok
14:03:30.0009 0x1060  [ A0900F8F628B5AF6841414EB3CF11E50, 8A531F2472FF4B4D895D469D28C215C834ECADBEF539894B8F3F606079A86184 ] WwanSvc         C:\Windows\System32\wwansvc.dll
14:03:30.0061 0x1060  WwanSvc - ok
14:03:30.0083 0x1060  ================ Scan global ===============================
14:03:30.0134 0x1060  [ 243F54DBA6EB48A369CA465E263ABA4A, 9D9F9DE783D000F3EA130EB68FD71319F21E4F1CD4232FB8B2F8A9A67E08F5F4 ] C:\Windows\system32\basesrv.dll
14:03:30.0173 0x1060  [ EAB311B0A7A8EA0346F14F08D4BC8F46, 11168E4074679F8A69DA714C0ABD0C68BA49D171B379343F14783C9C563202CA ] C:\Windows\system32\winsrv.dll
14:03:30.0219 0x1060  [ 3600ED7EA8AED849E20700551C0BD63B, 4A8C346C1646E80B58EF93F87F915A41E05CA2E993BB1C96955AE62A0669AF66 ] C:\Windows\system32\sxssrv.dll
14:03:30.0272 0x1060  [ E0C7813A97CA7947FF5C18A8F3B61A45, 083BB4F3B20419C87DB656F1465E5F782ACDE76838CDE6207F26AAD035C69DE0 ] C:\Windows\system32\services.exe
14:03:30.0287 0x1060  [ Global ] - ok
14:03:30.0287 0x1060  ================ Scan MBR ==================================
14:03:30.0298 0x1060  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
14:03:30.0370 0x1060  \Device\Harddisk0\DR0 - ok
14:03:30.0371 0x1060  ================ Scan VBR ==================================
14:03:30.0375 0x1060  [ A9B5201C6EE007C9D59C5992AE9F3844 ] \Device\Harddisk0\DR0\Partition1
14:03:30.0406 0x1060  \Device\Harddisk0\DR0\Partition1 - ok
14:03:30.0419 0x1060  [ DA06E51183E068B3854925525F1FB4B4 ] \Device\Harddisk0\DR0\Partition2
14:03:30.0429 0x1060  \Device\Harddisk0\DR0\Partition2 - ok
14:03:30.0443 0x1060  [ 3B1727C808837DAC4104A16DB3F7F6F8 ] \Device\Harddisk0\DR0\Partition3
14:03:30.0443 0x1060  \Device\Harddisk0\DR0\Partition3 - ok
14:03:30.0462 0x1060  [ 5D9404F803A5D4D776F1E0BFE48774D6 ] \Device\Harddisk0\DR0\Partition4
14:03:30.0476 0x1060  \Device\Harddisk0\DR0\Partition4 - ok
14:03:30.0513 0x1060  [ E5F7ABBA9C005716404954BAEE446C0D ] \Device\Harddisk0\DR0\Partition5
14:03:30.0523 0x1060  \Device\Harddisk0\DR0\Partition5 - ok
14:03:30.0523 0x1060  ================ Scan generic autorun ======================
14:03:30.0585 0x1060  [ C3E0B008C3EF33DBEC90209B1FC7B5BD, 43B8E194381B4129D8367CCCE6CB4656A11414A9EB72912800F01DD735BFB86D ] C:\Windows\system32\igfxtray.exe
14:03:30.0616 0x1060  IgfxTray - ok
14:03:30.0660 0x1060  [ 5CA2166CC4BD93E4986DFA209FBD3935, C279067C2B6F29DA6250BABC1DBF6F52935ECBFA7B5FC3AC97A6E0BB86091F27 ] C:\Windows\system32\hkcmd.exe
14:03:30.0702 0x1060  HotKeysCmds - ok
14:03:30.0794 0x1060  [ 232390232619AD98E0D070704303E50D, 1D3582E582B2BC19DF30ED7A038684099727DA82350B1EC61A87F2F94195E5B0 ] C:\Program Files (x86)\ASUS\APRP\APRP.EXE
14:03:30.0843 0x1060  ASUSPRP - ok
14:03:30.0892 0x1060  [ E2188DCB83269E2E283B7A7801B10BDF, 788B67C6FA6BA9E91AD15113547F056D9635E4D40E2B309620B2865A691BAD2D ] C:\Program Files (x86)\ASUS\WebStorage\2.1.10.398\ASUSWSLoader.exe
14:03:30.0907 0x1060  WebStorage - ok
14:03:30.0957 0x1060  [ 4F509FB1F51AC18104C46E70D8132C35, E9ABE2D3548AE678299D7699BAD3C02AABBBEC1FE3717BED5C5DDC40CF51863F ] C:\Program Files\Webroot\WRSA.exe
14:03:31.0001 0x1060  WRSVC - ok
14:03:31.0066 0x1060  [ 9738558E5A51959A6C0EEC0F2F2C3CE8, F913866DA8694A20E3C0926B83821C7DF0D470293B91BC35BFD39A6213890330 ] C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
14:03:31.0083 0x1060  CLMLServer - ok
14:03:31.0084 0x1060  Waiting for KSN requests completion. In queue: 311
14:03:32.0085 0x1060  Waiting for KSN requests completion. In queue: 311
14:03:33.0086 0x1060  Waiting for KSN requests completion. In queue: 311
14:03:34.0086 0x1060  Waiting for KSN requests completion. In queue: 311
14:03:35.0086 0x1060  Waiting for KSN requests completion. In queue: 311
14:03:36.0087 0x1060  Waiting for KSN requests completion. In queue: 311
14:03:37.0087 0x1060  Waiting for KSN requests completion. In queue: 311
14:03:38.0088 0x1060  Waiting for KSN requests completion. In queue: 311
14:03:39.0088 0x1060  Waiting for KSN requests completion. In queue: 311
14:03:40.0089 0x1060  Waiting for KSN requests completion. In queue: 311
14:03:41.0089 0x1060  Waiting for KSN requests completion. In queue: 311
14:03:42.0090 0x1060  Waiting for KSN requests completion. In queue: 311
14:03:43.0090 0x1060  Waiting for KSN requests completion. In queue: 311
14:03:44.0091 0x1060  Waiting for KSN requests completion. In queue: 311
14:03:45.0091 0x1060  Waiting for KSN requests completion. In queue: 311
14:03:46.0092 0x1060  Waiting for KSN requests completion. In queue: 311
14:03:47.0092 0x1060  Waiting for KSN requests completion. In queue: 51
14:03:48.0093 0x1060  Waiting for KSN requests completion. In queue: 51
14:03:49.0093 0x1060  Waiting for KSN requests completion. In queue: 51
14:03:50.0094 0x1060  Waiting for KSN requests completion. In queue: 51
14:03:51.0094 0x1060  Waiting for KSN requests completion. In queue: 23
14:03:52.0094 0x1060  Waiting for KSN requests completion. In queue: 23
14:03:53.0117 0x1060  AV detected via SS2: Webroot SecureAnywhere, C:\Program Files\Webroot\WRSA.exe ( 9.0.0.64 ), 0x41000 ( enabled : updated )
14:03:53.0184 0x1060  AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.7.205.0 ), 0x60100 ( disabled : updated )
14:03:53.0189 0x1060  Win FW state via NFP2: enabled
14:03:53.0190 0x1060  ============================================================
14:03:53.0190 0x1060  Scan finished
14:03:53.0190 0x1060  ============================================================
14:03:53.0207 0x06a0  Detected object count: 1
14:03:53.0207 0x06a0  Actual detected object count: 1
14:04:39.0399 0x06a0  Asus WebStorage Windows Service ( UnsignedFile.Multi.Generic ) - skipped by user
14:04:39.0399 0x06a0  Asus WebStorage Windows Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 

  • 0

Advertisements


#17
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,912 posts
TDSSKiller looks good, no rootkits hiding. Please post the fixlog from the 2nd fix in Post #13.
  • 0

#18
brh0303

brh0303

    Member

  • Topic Starter
  • Member
  • PipPip
  • 33 posts

This is the 2nd fixlist log:

 

Fix result of Farbar Recovery Scan Tool (x64) Version:28-06-2015 01
Ran by Bonita at 2015-07-06 20:24:50 Run:3
Running from C:\Users\Bonita\Desktop
Loaded Profiles: Bonita (Available Profiles: Bonita)
Boot Mode: Normal
==============================================
 
fixlist content:
*****************
Start
RestoreQurantine: C:\FRST\Quarantine\C:\Users\Bonita\cnmss Canon MX410 series Printer WS (Local).dll
End
*****************
 
RestoreQurantine: C:\FRST\Quarantine\C:\Users\Bonita\cnmss Canon MX410 series Printer WS (Local).dll => Error: No automatic fix found for this entry.
 
==== End of Fixlog 20:24:50 ====

  • 0

#19
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,912 posts
I'm sorry, I made a mistake in the fixlist. Here's the correct one. Please run the fix again.

Start
RestoreQuarantine: C:\FRST\Quarantine\C:\Users\Bonita\cnmss Canon MX410 series Printer WS (Local).dll
End


Please post the fixlog when the fix is completed. Again, my apologies for my mistake.
  • 0

#20
brh0303

brh0303

    Member

  • Topic Starter
  • Member
  • PipPip
  • 33 posts

Here ya go:

 

Fix result of Farbar Recovery Scan Tool (x64) Version:28-06-2015 01
Ran by Bonita at 2015-07-06 20:37:02 Run:5
Running from C:\Users\Bonita\Desktop
Loaded Profiles: Bonita (Available Profiles: Bonita)
Boot Mode: Normal
==============================================
 
fixlist content:
*****************
Start
RestoreQuarantine: C:\FRST\Quarantine\C:\Users\Bonita\cnmss Canon MX410 series Printer WS (Local).dll
End
*****************
 
"C:\FRST\Quarantine\C:\Users\Bonita\cnmss Canon MX410 series Printer WS (Local).dll"=> path not found.
 
==== End of Fixlog 20:37:02 ====

  • 0

#21
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,912 posts
Ok, let me get a fresh look with FRST before we proceed with sweeping for remnants. :thumbsup:

Start FRST and check the Addition.txt box.

Press the Scan button and FRST will scan your system and produce two logs. Please post them in your next reply.
  • 0

#22
brh0303

brh0303

    Member

  • Topic Starter
  • Member
  • PipPip
  • 33 posts

I cannot post the logs in the text so I am trying to send them as an attachment. When I try to copy paste them it just buffers then kicks me out

Attached Files


  • 0

#23
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,912 posts
Attaching them will be perfectly fine. :) The FRST logs are clean, so let's move on to scanning for remnants.


Please disable your antivirus for the duration of my instructions. Don't forget to re-enable them after you have completed the steps.


Step 1: Scan with Malwarebytes


Please download Malwarebytes Anti-Malware to your desktop
Install the progamme and select update
Once it has updated select Settings > Detection and Protection
Tick Scan for rootkits

MBAMsettings_zpsb6b9ada0.jpg

Go back to the Dashboard and select Scan Now

mbam21-console_zpslhr5hawa.jpg

If threats are detected, click the Apply Actions button, MBAM will ask for a reboot.

MBAMReboot_zps9089ab30.jpg

MBAMLog_zpsade07f42.jpg

On completion of the scan (or after the reboot), start MBAM,

Click History, then Application Logs, then check the Select box by the first Scan Log in the list and then click on the log to highlight it.

Click Export, select text file and save to the desktop as MBAM.txt and post in your next reply.



Step 2: Scan with ESET Online Scanner


Please note: You can use Internet Explorer or Firefox for this step. Either browser used will have to be ran in admin mode.

Right click on either the Internet Explorer icon or the Firefox icon in the Start Menu or Quick Launch Bar on the Task bar and select Run as Administrator from the menu.

If you use Firefox, you will be prompted to download esetsmartinstaller_enu.exe. Please do so, then double click it to install it.

Please click on this link and then click the ESET Online Scanner bar ---->esetbar_zps93905f48.jpg
  • Select the option YES, I accept the Terms of Use then click on Start
  • When prompted allow the Add-On/Active X to install.
  • Make sure that the option Remove found threats is NOT checked.
  • Make sure that the option Scan archives is checked.
  • Now click on Advanced Settings and select the following:
  • Scan for potentially unwanted applications
  • Scan for potentially unsafe applications
  • Enable Anti-Stealth Technology
  • Now click on Start
  • The virus signature database will begin to download. Be patient this make take some time depending on the speed of your Internet Connection.
  • When completed the Online Scan will begin automatically. The scan may take several hours.
  • Do not touch either the Mouse or keyboard during the scan otherwise it may stall.
  • Now click on Finish
  • Use notepad to open the logfile located at C:\Program Files(x86)\ESET\EsetOnlineScanner\log.txt.
  • Copy and paste that log as a reply to this topic.
Step 3: SecurityCheck Scan


Download Security Checksecuritycheck_zpsb7736812.jpg by screen317 from here or here.
  • Save it to your Desktop.
  • Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
  • NOTE: If SecurityCheck aborts and you get the following message: UNSUPPORTED OPERATING SYSTEM! ABORTED! try rebooting the system and then run SecurityCheck again.
  • A Notepad document should open automatically called checkup.txt; please post the contents of that document.
Things I need to see in your next post:
  • ESET Scan Log
  • MBAM Log
  • SecurityCheck Log

  • 0

#24
brh0303

brh0303

    Member

  • Topic Starter
  • Member
  • PipPip
  • 33 posts

How do I make sure all antivirus is disabled


  • 0

#25
brh0303

brh0303

    Member

  • Topic Starter
  • Member
  • PipPip
  • 33 posts

Ok...whew! Here are the last three logs.

Attached Files


  • 0

Advertisements


#26
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,912 posts

Ok...whew! Here are the last three logs.


Hello :)

The items ESET found have been removed and the MBAM log is clean as well. SecurityCheck shows none of your security programs need updating either. How is the machine running? Please let me know. If everything is ship shape, we'll have some cleanup procedures, helpful information on preventing infections, and some handy programs that will help protect your machine as well to go through. :thumbsup:
  • 0

#27
brh0303

brh0303

    Member

  • Topic Starter
  • Member
  • PipPip
  • 33 posts

I was busy all day yesterday and couldn't get back to this.  I just logged back on and that error code about the missing dll file is back.


  • 0

#28
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,912 posts

I was busy all day yesterday and couldn't get back to this.  I just logged back on and that error code about the missing dll file is back.



No worries, let's run a fix with FRST to restore the file. :thumbsup:
  • Open notepad (Start =>All Programs => Accessories => Notepad). Please copy the entire contents of the code box below. (To do this highlight the contents of the box, right click on it and select copy.
  • Right-click in the open notepad and select Paste).
  • Save it on the desktop as fixlist.txt

    NOTE: It's important that both files, FRST/FRST64 and fixlist.txt are in the same location or the fix will not work.

Start
RestoreQurantine: C:\FRST\Quarantine\C\Users\Bonita\cnmss Canon MX410 series Printer WS (Local).dll
End


NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system.


Run FRST and press the Fix button just once and wait. The tool will make a log on the desktop (Fixlog.txt) please post it in your next reply.
  • 0

#29
brh0303

brh0303

    Member

  • Topic Starter
  • Member
  • PipPip
  • 33 posts

Fixlog:

 

Fix result of Farbar Recovery Scan Tool (x64) Version:28-06-2015 01
Ran by Bonita at 2015-07-09 12:05:41 Run:7
Running from C:\Users\Bonita\Desktop
Loaded Profiles: Bonita (Available Profiles: Bonita)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
RestoreQurantine: C:\FRST\Quarantine\C\Users\Bonita\cnmss Canon MX410 series Printer WS (Local).dll
End
*****************

RestoreQurantine: C:\FRST\Quarantine\C\Users\Bonita\cnmss Canon MX410 series Printer WS (Local).dll => Error: No automatic fix found for this entry.

==== End of Fixlog 12:05:41 ====


  • 0

#30
brh0303

brh0303

    Member

  • Topic Starter
  • Member
  • PipPip
  • 33 posts

I rebooted and the error box is still there


  • 0






Similar Topics

1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP