Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Google Redirect Virus Problem: Seems to be removal resistant


  • Please log in to reply
16 replies to this topic

#1 onesnark

onesnark

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:05:26 PM

Posted 28 February 2013 - 01:23 AM

Good day.

 

A few weeks ago, I had to download a utility program from a popular website, and since then I seem to have aquired a persistent google redirect virus. 

 

The basic symptom is that if I type a search in Google, I often (1 in 3?) times will be directed to an "odd" website.

 

System:

   Windows 7

   IE9

   Norton Internet Security Running

 

Things done so far:

1) Reviewed toolbar addons, a number had been previously disabled, now uninstalled. 

2) Downloaded and ran Hitman pro.

3) Downloaded and ran unhackme

4) Downloaded and ran TDSSKiller.

5) Downloaded and ran Malwarebytes.

 

They each found one or two random things. . .but the virus persists.

 

I would appreciate any help.



BC AdBot (Login to Remove)

 


#2 tomdragon

tomdragon

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:03:26 PM

Posted 28 February 2013 - 02:39 AM

Have you tried different browsers?

 

Ie, Firefox, maybe even try Opera.

 

also try this program Download GMER Rootkit Scanner from here to your desktop. It will be a randomly named executable.

  • Double click the exe file.
  • If it gives you a warning about rootkit activity and asks if you want to run scan...click on NO, then use the following settings for a more complete scan.

    gmer_th.gif
    Click the image to enlarge it
  • In the right panel, you will see several boxes that have been checked. Ensure the following are unchecked
    • IAT/EAT
    • Drives/Partition other than Systemdrive (typically C:\)
    • Show All (don't miss this one)
  • Then click the Scan button & wait for it to finish.

Edited by tomdragon, 28 February 2013 - 02:50 AM.


#3 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:04:26 PM

Posted 28 February 2013 - 04:45 AM

  • Please download TDSSKiller from here and save it to your Desktop
  • Doubleclick on TDSSKiller.exe to run the application, then click on Change parameters




  • Check Loaded Modules  and Detect TDLFS file systemDo not check Verify file digital signatures (even though it is checked in the example)
  • If you are asked to reboot because an "Extended Monitoring Driver is required" please click Reboot now




  • Click Start Scan and allow the scan process to run

  • If threats are detected select Skip for all of them unless I instruct you otherwise
  • Click Continue




  • Click Reboot computer
  • Please post the contents of  TDSSKiller.[Version]_[Date]_[Time]_log.txt found in your root directory (typically c:\)in your reply


===================================================


aswMBR

--------------------

  • Download aswMBR and save it to your desktop.
  • Please disable your real time protection of any Antivirus, Antispyware or Antimalware programs temporarily. They will interfere and may cause unexpected results.
  • If you need help to disable your protection programs see here and here.
  • Double click the aswMBR.exe file to run it. Please allow when you are asked to download AVAST antivirus engine defs.
  • Wait until the AV update is done, then click on the Scan button to start. The program will launch a scan.



  • When done, you will see Scan finished successfully. Please click on Save log and save the file to your desktop.



  • Please post the contents of the log in your next reply.

NOTE:  aswMBR will create MBR.dat file on your desktop. This is a copy of your MBR. Do NOT delete it.


===================================================


ESET Online Scanner

--------------------

I'd like us to scan your machine with ESET OnlineScan  This process may may take several hours, that is normal

  • Hold down Control and click on this link to open ESET OnlineScan in a new window.
  • Click the   button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)

    • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
    • Double click on the icon on your desktop.

  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under scan settings, check "Scan Archives" and "Remove found threats"
  • Click Advanced settings and select the following:

    • Scan potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Copy and paste the information in your next reply.   Note:  If no malware was found you will not get a log.
  • Click the Back button.
  • Click the Finish button.


===================================================


Things I would like to see in your next reply. Please be sure to copy and paste the information rather than send an attachment. :thumbsup2:

  • TDSSKiller log
  • aswMBR log
  • ESET results

 



#4 onesnark

onesnark
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:05:26 PM

Posted 28 February 2013 - 05:16 PM

WELL. . .something is definately wrong. I ran TDSSKiller last night and today; I ran aswMBR last night and today. I left this morning with both ESET and GMER running.

 

Came home. . and the computer had bluescreened.

 

I just ran TDSSKiller and aswMBR. TDSSkiller ran. . .with the following log file.

aswMBR crashed when it ran this afternoon.  am attaching a log that was generated last night (note: I xxxx'd out the computer name), and a partial from today (it died scanning the internet tmp file folder)



 



#5 onesnark

onesnark
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:05:26 PM

Posted 28 February 2013 - 05:18 PM

aswMBR from the run last night ( I altered the computer name and user name)

 

aswMBR version 0.9.9.1707 Copyright© 2011 AVAST Software
Run date: 2013-02-28 01:27:35
-----------------------------
01:27:35.899    OS Version: Windows x64 6.1.7601 Service Pack 1
01:27:35.899    Number of processors: 4 586 0x1E05
01:27:35.900    ComputerName: XXXXXXX  UserName: XXXXX
01:27:47.824    Initialize success
01:29:47.858    AVAST engine defs: 13022800
01:30:09.060    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
01:30:09.064    Disk 0 Vendor: ST310005 HP34 Size: 953869MB BusType: 8
01:30:09.095    Disk 0 MBR read successfully
01:30:09.099    Disk 0 MBR scan
01:30:09.106    Disk 0 unknown MBR code
01:30:09.133    Disk 0 Partition 1 80 (A) 07    HPFS/NTFS NTFS          100 MB offset 2048
01:30:09.163    Disk 0 Partition 2 00     07    HPFS/NTFS NTFS       941356 MB offset 206848
01:30:10.054    Disk 0 Partition 3 00     07    HPFS/NTFS NTFS        12411 MB offset 1928103936
01:30:10.166    Disk 0 scanning C:\Windows\system32\drivers
01:30:41.381    Service scanning
01:31:34.822    Modules scanning
01:31:34.836    Disk 0 trace - called modules:
01:31:34.896    ntoskrnl.exe CLASSPNP.SYS disk.sys iaStor.sys hal.dll
01:31:35.233    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8007b05060]
01:31:35.241    3 CLASSPNP.SYS[fffff88000d7243f] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa800782f050]
01:32:04.826    Disk 0 MBR has been saved successfully to "C:\Users\XXXXX\Desktop\MBR.dat"
01:32:04.831    The log file has been saved successfully to "C:\Users\XXXXX\Desktop\aswMBR.txt"


 

_____________________________________________________

 

File from today (I again XXXXX'd the computer name and user name)

 

 

aswMBR version 0.9.9.1707 Copyright© 2011 AVAST Software
Run date: 2013-02-28 17:03:42
-----------------------------
17:03:42.058    OS Version: Windows x64 6.1.7601 Service Pack 1
17:03:42.058    Number of processors: 4 586 0x1E05
17:03:42.059    ComputerName: XXXXXX  UserName: XXXXXXXX
17:03:48.752    Initialize success
17:03:55.013    AVAST engine defs: 13022800
17:04:11.934    The log file has been saved successfully to "C:\Users\XXXXXXXX\Desktop\aswMBR - test 2.txt"
17:04:20.921    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
17:04:20.924    Disk 0 Vendor: ST310005 HP34 Size: 953869MB BusType: 8
17:04:20.953    Disk 0 MBR read successfully
17:04:20.960    Disk 0 MBR scan
17:04:20.967    Disk 0 unknown MBR code
17:04:20.983    Disk 0 Partition 1 80 (A) 07    HPFS/NTFS NTFS          100 MB offset 2048
17:04:21.030    Disk 0 Partition 2 00     07    HPFS/NTFS NTFS       941356 MB offset 206848
17:04:21.079    Disk 0 Partition 3 00     07    HPFS/NTFS NTFS        12411 MB offset 1928103936
17:04:21.161    Disk 0 scanning C:\Windows\system32\drivers
17:04:32.758    Service scanning
17:04:51.495    Modules scanning
17:04:51.510    Disk 0 trace - called modules:
17:04:51.861    ntoskrnl.exe CLASSPNP.SYS disk.sys iaStor.sys hal.dll
17:04:51.869    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8007b10060]
17:04:51.876    3 CLASSPNP.SYS[fffff880015cc43f] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa8007827050]
17:05:06.800    Disk 0 MBR has been saved successfully to "C:\Users\XXXXXXXX\Desktop\MBR.dat"
17:05:06.803    The log file has been saved successfully to "C:\Users\XXXXXXXX\Desktop\aswMBR test 2.txt"
17:05:07.501    AVAST engine scan C:\Windows
17:05:13.130    AVAST engine scan C:\Windows\system32
17:06:53.317    Disk 0 MBR has been saved successfully to "C:\Users\XXXXXXXX\Desktop\MBR.dat"
17:06:53.322    The log file has been saved successfully to "C:\Users\XXXXXXXX\Desktop\aswMBR 3.txt"
17:07:56.144    AVAST engine scan C:\Windows\system32\drivers
17:08:30.396    Disk 0 MBR has been saved successfully to "C:\Users\XXXXXXXX\Desktop\MBR.dat"
17:08:30.403    The log file has been saved successfully to "C:\Users\XXXXXXXX\Desktop\aswMBR 5.txt"


 



#6 onesnark

onesnark
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:05:26 PM

Posted 28 February 2013 - 05:21 PM

Post one of two for the TDSsKiller

 

16:44:10.0583 2708  TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
16:44:10.0630 2708  ============================================================
16:44:10.0630 2708  Current date / time: 2013/02/28 16:44:10.0630
16:44:10.0630 2708  SystemInfo:
16:44:10.0630 2708 
16:44:10.0630 2708  OS Version: 6.1.7601 ServicePack: 1.0
16:44:10.0630 2708  Product type: Workstation
16:44:10.0630 2708  ComputerName: XXXXXXX
16:44:10.0630 2708  UserName: XXXXXXX
16:44:10.0630 2708  Windows directory: C:\Windows
16:44:10.0630 2708  System windows directory: C:\Windows
16:44:10.0630 2708  Running under WOW64
16:44:10.0630 2708  Processor architecture: Intel x64
16:44:10.0630 2708  Number of processors: 4
16:44:10.0630 2708  Page size: 0x1000
16:44:10.0630 2708  Boot type: Normal boot
16:44:10.0630 2708  ============================================================
16:44:12.0595 2708  BG loaded
16:44:12.0923 2708  Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
16:44:12.0938 2708  ============================================================
16:44:12.0938 2708  \Device\Harddisk0\DR0:
16:44:12.0938 2708  MBR partitions:
16:44:12.0938 2708  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
16:44:12.0938 2708  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x72E96000
16:44:12.0938 2708  \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x72EC8800, BlocksNum 0x183D800
16:44:12.0938 2708  ============================================================
16:44:12.0970 2708  C: <-> \Device\Harddisk0\DR0\Partition2
16:44:13.0094 2708  G: <-> \Device\Harddisk0\DR0\Partition3
16:44:13.0141 2708  Z: <-> \Device\Harddisk0\DR0\Partition1
16:44:13.0141 2708  ============================================================
16:44:13.0141 2708  Initialize success
16:44:13.0141 2708  ============================================================
16:45:49.0726 2156  ============================================================
16:45:49.0726 2156  Scan started
16:45:49.0726 2156  Mode: Manual; TDLFS;
16:45:49.0726 2156  ============================================================
16:45:50.0847 2156  ================ Scan system memory ========================
16:45:50.0847 2156  System memory - ok
16:45:50.0847 2156  ================ Scan services =============================
16:45:50.0987 2156  [ A87D604AEA360176311474C87A63BB88 ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
16:45:50.0990 2156  1394ohci - ok
16:45:51.0011 2156  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
16:45:51.0014 2156  ACPI - ok
16:45:51.0047 2156  [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
16:45:51.0047 2156  AcpiPmi - ok
16:45:51.0084 2156  [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx         C:\Windows\system32\DRIVERS\adp94xx.sys
16:45:51.0089 2156  adp94xx - ok
16:45:51.0118 2156  [ 597F78224EE9224EA1A13D6350CED962 ] adpahci         C:\Windows\system32\DRIVERS\adpahci.sys
16:45:51.0121 2156  adpahci - ok
16:45:51.0133 2156  [ E109549C90F62FB570B9540C4B148E54 ] adpu320         C:\Windows\system32\DRIVERS\adpu320.sys
16:45:51.0135 2156  adpu320 - ok
16:45:51.0159 2156  [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
16:45:51.0160 2156  AeLookupSvc - ok
16:45:51.0187 2156  [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD             C:\Windows\system32\drivers\afd.sys
16:45:51.0192 2156  AFD - ok
16:45:51.0211 2156  [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440          C:\Windows\system32\drivers\agp440.sys
16:45:51.0212 2156  agp440 - ok
16:45:51.0223 2156  [ 3290D6946B5E30E70414990574883DDB ] ALG             C:\Windows\System32\alg.exe
16:45:51.0224 2156  ALG - ok
16:45:51.0255 2156  [ 5812713A477A3AD7363C7438CA2EE038 ] aliide          C:\Windows\system32\drivers\aliide.sys
16:45:51.0255 2156  aliide - ok
16:45:51.0268 2156  [ 1FF8B4431C353CE385C875F194924C0C ] amdide          C:\Windows\system32\drivers\amdide.sys
16:45:51.0268 2156  amdide - ok
16:45:51.0312 2156  [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8           C:\Windows\system32\DRIVERS\amdk8.sys
16:45:51.0313 2156  AmdK8 - ok
16:45:51.0325 2156  [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM          C:\Windows\system32\DRIVERS\amdppm.sys
16:45:51.0326 2156  AmdPPM - ok
16:45:51.0353 2156  [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
16:45:51.0355 2156  amdsata - ok
16:45:51.0375 2156  [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs          C:\Windows\system32\DRIVERS\amdsbs.sys
16:45:51.0377 2156  amdsbs - ok
16:45:51.0392 2156  [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata         C:\Windows\system32\drivers\amdxata.sys
16:45:51.0393 2156  amdxata - ok
16:45:51.0427 2156  [ 89A69C3F2F319B43379399547526D952 ] AppID           C:\Windows\system32\drivers\appid.sys
16:45:51.0427 2156  AppID - ok
16:45:51.0458 2156  [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
16:45:51.0458 2156  AppIDSvc - ok
16:45:51.0507 2156  [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo         C:\Windows\System32\appinfo.dll
16:45:51.0508 2156  Appinfo - ok
16:45:51.0601 2156  [ 5AA788D5A2C6737BB9C45933985BC1B8 ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
16:45:51.0602 2156  Apple Mobile Device - ok
16:45:51.0631 2156  [ C484F8CEB1717C540242531DB7845C4E ] arc             C:\Windows\system32\DRIVERS\arc.sys
16:45:51.0632 2156  arc - ok
16:45:51.0643 2156  [ 019AF6924AEFE7839F61C830227FE79C ] arcsas          C:\Windows\system32\DRIVERS\arcsas.sys
16:45:51.0644 2156  arcsas - ok
16:45:51.0684 2156  [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
16:45:51.0684 2156  AsyncMac - ok
16:45:51.0710 2156  [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi           C:\Windows\system32\drivers\atapi.sys
16:45:51.0710 2156  atapi - ok
16:45:51.0763 2156  [ 7D89B0C443F6068E5B27AA3B972069FF ] athr            C:\Windows\system32\DRIVERS\athrx.sys
16:45:51.0778 2156  athr - ok
16:45:51.0831 2156  [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
16:45:51.0837 2156  AudioEndpointBuilder - ok
16:45:51.0851 2156  [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv        C:\Windows\System32\Audiosrv.dll
16:45:51.0857 2156  AudioSrv - ok
16:45:51.0891 2156  [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV        C:\Windows\System32\AxInstSV.dll
16:45:51.0893 2156  AxInstSV - ok
16:45:51.0931 2156  [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv         C:\Windows\system32\DRIVERS\bxvbda.sys
16:45:51.0936 2156  b06bdrv - ok
16:45:51.0956 2156  [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
16:45:51.0959 2156  b57nd60a - ok
16:45:51.0991 2156  [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC          C:\Windows\System32\bdesvc.dll
16:45:51.0992 2156  BDESVC - ok
16:45:52.0006 2156  [ 16A47CE2DECC9B099349A5F840654746 ] Beep            C:\Windows\system32\drivers\Beep.sys
16:45:52.0006 2156  Beep - ok
16:45:52.0082 2156  [ 82974D6A2FD19445CC5171FC378668A4 ] BFE             C:\Windows\System32\bfe.dll
16:45:52.0089 2156  BFE - ok
16:45:52.0270 2156  [ 866335C9C0E6733C753FB472C539A6B9 ] BHDrvx64        C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.1.22\Definitions\BASHDefs\20130208.001\BHDrvx64.sys
16:45:52.0282 2156  BHDrvx64 - ok
16:45:52.0322 2156  [ 1EA7969E3271CBC59E1730697DC74682 ] BITS            C:\Windows\System32\qmgr.dll
16:45:52.0332 2156  BITS - ok
16:45:52.0350 2156  [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
16:45:52.0351 2156  blbdrive - ok
16:45:52.0437 2156  [ F2060A34C8A75BC24A9222EB4F8C07BD ] Bonjour Service C:\Program Files (x86)\Bonjour\mDNSResponder.exe
16:45:52.0440 2156  Bonjour Service - ok
16:45:52.0476 2156  [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
16:45:52.0477 2156  bowser - ok
16:45:52.0497 2156  [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo        C:\Windows\system32\DRIVERS\BrFiltLo.sys
16:45:52.0497 2156  BrFiltLo - ok
16:45:52.0510 2156  [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp        C:\Windows\system32\DRIVERS\BrFiltUp.sys
16:45:52.0510 2156  BrFiltUp - ok
16:45:52.0558 2156  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser         C:\Windows\System32\browser.dll
16:45:52.0559 2156  Browser - ok
16:45:52.0586 2156  [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
16:45:52.0589 2156  Brserid - ok
16:45:52.0599 2156  [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
16:45:52.0600 2156  BrSerWdm - ok
16:45:52.0627 2156  [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
16:45:52.0627 2156  BrUsbMdm - ok
16:45:52.0638 2156  [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
16:45:52.0639 2156  BrUsbSer - ok
16:45:52.0656 2156  [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM        C:\Windows\system32\DRIVERS\bthmodem.sys
16:45:52.0657 2156  BTHMODEM - ok
16:45:52.0694 2156  [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv         C:\Windows\system32\bthserv.dll
16:45:52.0695 2156  bthserv - ok
16:45:52.0783 2156  [ 248C952C82DF1E23775432774CBB20F1 ] ccSet_NIS       C:\Windows\system32\drivers\NISx64\1402010.016\ccSetx64.sys
16:45:52.0785 2156  ccSet_NIS - ok
16:45:52.0806 2156  [ B8BD2BB284668C84865658C77574381A ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
16:45:52.0807 2156  cdfs - ok
16:45:52.0859 2156  [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
16:45:52.0860 2156  cdrom - ok
16:45:52.0889 2156  [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc     C:\Windows\System32\certprop.dll
16:45:52.0891 2156  CertPropSvc - ok
16:45:52.0911 2156  [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass        C:\Windows\system32\DRIVERS\circlass.sys
16:45:52.0912 2156  circlass - ok
16:45:52.0938 2156  [ FE1EC06F2253F691FE36217C592A0206 ] CLFS            C:\Windows\system32\CLFS.sys
16:45:52.0942 2156  CLFS - ok
16:45:52.0992 2156  [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
16:45:52.0997 2156  clr_optimization_v2.0.50727_32 - ok
16:45:53.0029 2156  [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
16:45:53.0033 2156  clr_optimization_v2.0.50727_64 - ok
16:45:53.0138 2156  [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
16:45:53.0170 2156  clr_optimization_v4.0.30319_32 - ok
16:45:53.0227 2156  [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
16:45:53.0229 2156  clr_optimization_v4.0.30319_64 - ok
16:45:53.0250 2156  [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
16:45:53.0251 2156  CmBatt - ok
16:45:53.0283 2156  [ E19D3F095812725D88F9001985B94EDD ] cmdide          C:\Windows\system32\drivers\cmdide.sys
16:45:53.0283 2156  cmdide - ok
16:45:53.0325 2156  [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG             C:\Windows\system32\Drivers\cng.sys
16:45:53.0329 2156  CNG - ok
16:45:53.0346 2156  [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt        C:\Windows\system32\DRIVERS\compbatt.sys
16:45:53.0346 2156  Compbatt - ok
16:45:53.0380 2156  [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus    C:\Windows\system32\drivers\CompositeBus.sys
16:45:53.0381 2156  CompositeBus - ok
16:45:53.0389 2156  COMSysApp - ok
16:45:54.0248 2156  cpuz134 - ok
16:45:54.0269 2156  [ 1C827878A998C18847245FE1F34EE597 ] crcdisk         C:\Windows\system32\DRIVERS\crcdisk.sys
16:45:54.0270 2156  crcdisk - ok
16:45:54.0309 2156  [ 9C01375BE382E834CC26D1B7EAF2C4FE ] CryptSvc        C:\Windows\system32\cryptsvc.dll
16:45:54.0311 2156  CryptSvc - ok
16:45:54.0353 2156  [ 76E02DB615A03801D698199A2BC4A06A ] dc3d            C:\Windows\system32\DRIVERS\dc3d.sys
16:45:54.0354 2156  dc3d - ok
16:45:54.0396 2156  [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch      C:\Windows\system32\rpcss.dll
16:45:54.0402 2156  DcomLaunch - ok
16:45:54.0433 2156  [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc       C:\Windows\System32\defragsvc.dll
16:45:54.0436 2156  defragsvc - ok
16:45:54.0473 2156  [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
16:45:54.0475 2156  DfsC - ok
16:45:54.0495 2156  [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp            C:\Windows\system32\dhcpcore.dll
16:45:54.0499 2156  Dhcp - ok
16:45:54.0510 2156  [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache        C:\Windows\system32\drivers\discache.sys
16:45:54.0510 2156  discache - ok
16:45:54.0543 2156  [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk            C:\Windows\system32\DRIVERS\disk.sys
16:45:54.0544 2156  Disk - ok
16:45:54.0614 2156  [ 5AA7259DB2BDC4878531621C7E91CDB4 ] DMService       C:\Windows\DOWNLO~1\DMService.exe
16:45:54.0621 2156  DMService - ok
16:45:54.0654 2156  [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
16:45:54.0656 2156  Dnscache - ok
16:45:54.0691 2156  [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc         C:\Windows\System32\dot3svc.dll
16:45:54.0694 2156  dot3svc - ok
16:45:54.0734 2156  [ B42ED0320C6E41102FDE0005154849BB ] Dot4            C:\Windows\system32\DRIVERS\Dot4.sys
16:45:54.0735 2156  Dot4 - ok
16:45:54.0771 2156  [ E9F5969233C5D89F3C35E3A66A52A361 ] Dot4Print       C:\Windows\system32\drivers\Dot4Prt.sys
16:45:54.0772 2156  Dot4Print - ok
16:45:54.0787 2156  [ FD05A02B0370BC3000F402E543CA5814 ] dot4usb         C:\Windows\system32\DRIVERS\dot4usb.sys
16:45:54.0788 2156  dot4usb - ok
16:45:54.0804 2156  [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS             C:\Windows\system32\dps.dll
16:45:54.0806 2156  DPS - ok
16:45:54.0826 2156  [ 9B19F34400D24DF84C858A421C205754 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
16:45:54.0827 2156  drmkaud - ok
16:45:54.0871 2156  [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
16:45:54.0880 2156  DXGKrnl - ok
16:45:54.0907 2156  [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost         C:\Windows\System32\eapsvc.dll
16:45:54.0909 2156  EapHost - ok
16:45:54.0989 2156  [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv           C:\Windows\system32\DRIVERS\evbda.sys
16:45:55.0010 2156  ebdrv - ok
16:45:55.0125 2156  [ 4353FF94D47A0A9D52B89ECCF0CDB013 ] eeCtrl          C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys
16:45:55.0130 2156  eeCtrl - ok
16:45:55.0160 2156  [ C118A82CD78818C29AB228366EBF81C3 ] EFS             C:\Windows\System32\lsass.exe
16:45:55.0161 2156  EFS - ok
16:45:55.0213 2156  [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
16:45:55.0220 2156  ehRecvr - ok
16:45:55.0252 2156  [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched         C:\Windows\ehome\ehsched.exe
16:45:55.0253 2156  ehSched - ok
16:45:55.0287 2156  [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor         C:\Windows\system32\DRIVERS\elxstor.sys
16:45:55.0293 2156  elxstor - ok
16:45:55.0333 2156  [ C5BCCB378D0A896304A3E71BE7215983 ] EraserUtilRebootDrv C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
16:45:55.0335 2156  EraserUtilRebootDrv - ok
16:45:55.0356 2156  [ 34A3C54752046E79A126E15C51DB409B ] ErrDev          C:\Windows\system32\drivers\errdev.sys
16:45:55.0357 2156  ErrDev - ok
16:45:55.0414 2156  [ 3B32CAA07D672F8A2E0DF5CB3A873F45 ] EsgScanner      C:\Windows\system32\DRIVERS\EsgScanner.sys
16:45:55.0415 2156  EsgScanner - ok
16:45:55.0443 2156  [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem     C:\Windows\system32\es.dll
16:45:55.0448 2156  EventSystem - ok
16:45:55.0477 2156  [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat           C:\Windows\system32\drivers\exfat.sys
16:45:55.0480 2156  exfat - ok
16:45:55.0499 2156  [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat         C:\Windows\system32\drivers\fastfat.sys
16:45:55.0503 2156  fastfat - ok
16:45:55.0547 2156  [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax             C:\Windows\system32\fxssvc.exe
16:45:55.0554 2156  Fax - ok
16:45:55.0570 2156  [ D765D19CD8EF61F650C384F62FAC00AB ] fdc             C:\Windows\system32\DRIVERS\fdc.sys
16:45:55.0571 2156  fdc - ok
16:45:55.0589 2156  [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost         C:\Windows\system32\fdPHost.dll
16:45:55.0590 2156  fdPHost - ok
16:45:55.0599 2156  [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub        C:\Windows\system32\fdrespub.dll
16:45:55.0601 2156  FDResPub - ok
16:45:55.0606 2156  [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
16:45:55.0607 2156  FileInfo - ok
16:45:55.0620 2156  [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
16:45:55.0621 2156  Filetrace - ok
16:45:55.0647 2156  [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk        C:\Windows\system32\DRIVERS\flpydisk.sys
16:45:55.0648 2156  flpydisk - ok
16:45:55.0670 2156  [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
16:45:55.0673 2156  FltMgr - ok
16:45:55.0729 2156  [ C4C183E6551084039EC862DA1C945E3D ] FontCache       C:\Windows\system32\FntCache.dll
16:45:55.0741 2156  FontCache - ok
16:45:55.0811 2156  [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
16:45:55.0813 2156  FontCache3.0.0.0 - ok
16:45:55.0827 2156  [ D43703496149971890703B4B1B723EAC ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
16:45:55.0828 2156  FsDepends - ok
16:45:55.0865 2156  [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
16:45:55.0867 2156  Fs_Rec - ok
16:45:55.0898 2156  [ 1F7B25B858FA27015169FE95E54108ED ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
16:45:55.0901 2156  fvevol - ok
16:45:55.0915 2156  [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx        C:\Windows\system32\DRIVERS\gagp30kx.sys
16:45:55.0916 2156  gagp30kx - ok
16:45:55.0966 2156  [ C44D560E441F091EA3B72F778EC60DE2 ] GameConsoleService C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe
16:45:55.0971 2156  GameConsoleService - ok
16:45:55.0996 2156  [ E403AACF8C7BB11375122D2464560311 ] GEARAspiWDM     C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
16:45:55.0997 2156  GEARAspiWDM - ok
16:45:56.0038 2156  [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc           C:\Windows\System32\gpsvc.dll
16:45:56.0045 2156  gpsvc - ok
16:45:56.0095 2156  [ 2ED7FF3E1ADA4092632393781518B3A7 ] grmnusb         C:\Windows\system32\drivers\grmnusb.sys
16:45:56.0095 2156  grmnusb - ok
16:45:56.0121 2156  [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
16:45:56.0122 2156  hcw85cir - ok
16:45:56.0180 2156  [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus        C:\Windows\system32\drivers\HDAudBus.sys
16:45:56.0181 2156  HDAudBus - ok
16:45:56.0206 2156  [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt         C:\Windows\system32\DRIVERS\HidBatt.sys
16:45:56.0207 2156  HidBatt - ok
16:45:56.0230 2156  [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth          C:\Windows\system32\DRIVERS\hidbth.sys
16:45:56.0232 2156  HidBth - ok
16:45:56.0261 2156  [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr           C:\Windows\system32\DRIVERS\hidir.sys
16:45:56.0262 2156  HidIr - ok
16:45:56.0293 2156  [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv         C:\Windows\system32\hidserv.dll
16:45:56.0294 2156  hidserv - ok
16:45:56.0305 2156  [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
16:45:56.0306 2156  HidUsb - ok
16:45:56.0330 2156  [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc          C:\Windows\system32\kmsvc.dll
16:45:56.0332 2156  hkmsvc - ok
16:45:56.0355 2156  [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
16:45:56.0358 2156  HomeGroupListener - ok
16:45:56.0388 2156  [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
16:45:56.0392 2156  HomeGroupProvider - ok
16:45:56.0499 2156  [ 13BB1114451C63BFB41BA7DAA4D70A29 ] HP Support Assistant Service C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
16:45:56.0502 2156  HP Support Assistant Service - ok
16:45:56.0548 2156  [ BCC4A8B2E2E902F52E7F2E7D8E125765 ] HPDrvMntSvc.exe C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
16:45:56.0551 2156  HPDrvMntSvc.exe - ok
16:45:56.0590 2156  [ EC9739A46F1F83C6E52A7A4697F44A65 ] hpqwmiex        C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
16:45:56.0601 2156  hpqwmiex - ok
16:45:56.0628 2156  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
16:45:56.0629 2156  HpSAMD - ok
16:45:56.0702 2156  [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
16:45:56.0709 2156  HTTP - ok
16:45:56.0725 2156  [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
16:45:56.0726 2156  hwpolicy - ok
16:45:56.0751 2156  [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt        C:\Windows\system32\drivers\i8042prt.sys
16:45:56.0752 2156  i8042prt - ok
16:45:56.0801 2156  [ 7548066DF68A8A1A56B043359F915F37 ] IAANTMON        C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
16:45:56.0805 2156  IAANTMON - ok
16:45:56.0836 2156  [ 1D004CB1DA6323B1F55CAEF7F94B61D9 ] iaStor          C:\Windows\system32\DRIVERS\iaStor.sys
16:45:56.0841 2156  iaStor - ok
16:45:56.0865 2156  [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
16:45:56.0869 2156  iaStorV - ok
16:45:56.0908 2156  [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
16:45:56.0917 2156  idsvc - ok
16:45:57.0111 2156  [ A48928D4CCA6F8B731989DB08CF2C0AB ] IDSVia64        C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.1.22\Definitions\IPSDefs\20130227.001\IDSvia64.sys
16:45:57.0116 2156  IDSVia64 - ok
16:45:57.0145 2156  [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp           C:\Windows\system32\DRIVERS\iirsp.sys
16:45:57.0146 2156  iirsp - ok
16:45:57.0195 2156  [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT          C:\Windows\System32\ikeext.dll
16:45:57.0203 2156  IKEEXT - ok
16:45:57.0294 2156  [ 3C4B4EE54FEBB09F7E9F58776DE96DCA ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
16:45:57.0313 2156  IntcAzAudAddService - ok
16:45:57.0331 2156  [ F00F20E70C6EC3AA366910083A0518AA ] intelide        C:\Windows\system32\drivers\intelide.sys
16:45:57.0331 2156  intelide - ok
16:45:57.0360 2156  [ ADA036632C664CAA754079041CF1F8C1 ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
16:45:57.0360 2156  intelppm - ok
16:45:57.0463 2156  [ 3DC635B66DD7412E1C9C3A77B8D78F25 ] IntuitUpdateService C:\Program Files (x86)\Common Files\Intuit\Update Service\IntuitUpdateService.exe
16:45:57.0465 2156  IntuitUpdateService - ok
16:45:57.0544 2156  [ 1663A135865F0BA6E853353E98E67F2A ] IntuitUpdateServiceV4 C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
16:45:57.0545 2156  IntuitUpdateServiceV4 - ok
16:45:57.0579 2156  [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
16:45:57.0581 2156  IPBusEnum - ok
16:45:57.0623 2156  [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
16:45:57.0624 2156  IpFilterDriver - ok
16:45:57.0655 2156  [ 08C2957BB30058E663720C5606885653 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
16:45:57.0661 2156  iphlpsvc - ok
16:45:57.0685 2156  [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
16:45:57.0686 2156  IPMIDRV - ok
16:45:57.0711 2156  [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
16:45:57.0713 2156  IPNAT - ok
16:45:57.0799 2156  [ 3D62FE4FEFE9C67DAFEC52B534DFA1FB ] iPod Service    C:\Program Files\iPod\bin\iPodService.exe
16:45:57.0807 2156  iPod Service - ok
16:45:57.0825 2156  [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM          C:\Windows\system32\drivers\irenum.sys
16:45:57.0825 2156  IRENUM - ok
16:45:57.0835 2156  [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
16:45:57.0836 2156  isapnp - ok
16:45:57.0871 2156  [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
16:45:57.0873 2156  iScsiPrt - ok
16:45:57.0894 2156  [ BD5BF20EC242E003A2F570B8754A56D1 ] ivusb           C:\Windows\system32\DRIVERS\ivusb.sys
16:45:57.0894 2156  ivusb - ok
16:45:57.0907 2156  [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
16:45:57.0907 2156  kbdclass - ok
16:45:57.0942 2156  [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
16:45:57.0942 2156  kbdhid - ok
16:45:57.0948 2156  [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso          C:\Windows\system32\lsass.exe
16:45:57.0949 2156  KeyIso - ok
16:45:57.0982 2156  [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
16:45:57.0982 2156  KSecDD - ok
16:45:58.0011 2156  [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
16:45:58.0012 2156  KSecPkg - ok
16:45:58.0022 2156  [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
16:45:58.0022 2156  ksthunk - ok
16:45:58.0050 2156  [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm           C:\Windows\system32\msdtckrm.dll
16:45:58.0053 2156  KtmRm - ok
16:45:58.0108 2156  [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer    C:\Windows\system32\srvsvc.dll
16:45:58.0113 2156  LanmanServer - ok
16:45:58.0146 2156  [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
16:45:58.0149 2156  LanmanWorkstation - ok
16:45:58.0247 2156  [ 7772DFAB22611050B79504E671B06E6E ] LBTServ         C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
16:45:58.0251 2156  LBTServ - ok
16:45:58.0294 2156  [ ED7EC050CD6C20E1A93A4DAFB7EFD14D ] LEqdUsb         C:\Windows\system32\DRIVERS\LEqdUsb.Sys
16:45:58.0295 2156  LEqdUsb - ok
16:45:58.0323 2156  [ 3267BC698E29474A8381E68904EB0390 ] LHidEqd         C:\Windows\system32\DRIVERS\LHidEqd.Sys
16:45:58.0324 2156  LHidEqd - ok
16:45:58.0344 2156  [ 241F2648ADF090E2A10095BD6D6F5DCB ] LHidFilt        C:\Windows\system32\DRIVERS\LHidFilt.Sys
16:45:58.0346 2156  LHidFilt - ok
16:45:58.0385 2156  [ 1538831CF8AD2979A04C423779465827 ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
16:45:58.0386 2156  lltdio - ok
16:45:58.0423 2156  [ C1185803384AB3FEED115F79F109427F ] lltdsvc         C:\Windows\System32\lltdsvc.dll
16:45:58.0426 2156  lltdsvc - ok
16:45:58.0445 2156  [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts         C:\Windows\System32\lmhsvc.dll
16:45:58.0447 2156  lmhosts - ok
16:45:58.0461 2156  [ 342ED5A4B3326014438F36D22D803737 ] LMouFilt        C:\Windows\system32\DRIVERS\LMouFilt.Sys
16:45:58.0462 2156  LMouFilt - ok
16:45:58.0504 2156  [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC          C:\Windows\system32\DRIVERS\lsi_fc.sys
16:45:58.0505 2156  LSI_FC - ok
16:45:58.0518 2156  [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS         C:\Windows\system32\DRIVERS\lsi_sas.sys
16:45:58.0519 2156  LSI_SAS - ok
16:45:58.0558 2156  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2        C:\Windows\system32\DRIVERS\lsi_sas2.sys
16:45:58.0560 2156  LSI_SAS2 - ok
16:45:58.0576 2156  [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI        C:\Windows\system32\DRIVERS\lsi_scsi.sys
16:45:58.0577 2156  LSI_SCSI - ok
16:45:58.0602 2156  [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv           C:\Windows\system32\drivers\luafv.sys
16:45:58.0603 2156  luafv - ok
16:45:58.0640 2156  [ C586CC39820B6E7FE3657FED8329D300 ] lvpopf64        C:\Windows\system32\DRIVERS\lvpopf64.sys
16:45:58.0643 2156  lvpopf64 - ok
16:45:58.0660 2156  [ 224AB3850F573A419F921C41A15D7F5B ] LVRS64          C:\Windows\system32\DRIVERS\lvrs64.sys
16:45:58.0664 2156  LVRS64 - ok
16:45:58.0792 2156  [ BFBA84B8A9C233AE42B11CF7BDFC6C01 ] LVUVC64         C:\Windows\system32\DRIVERS\lvuvc64.sys
16:45:58.0818 2156  LVUVC64 - ok
16:45:58.0852 2156  [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
16:45:58.0853 2156  Mcx2Svc - ok
16:45:58.0883 2156  [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas         C:\Windows\system32\DRIVERS\megasas.sys
16:45:58.0884 2156  megasas - ok
16:45:58.0912 2156  [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR          C:\Windows\system32\DRIVERS\MegaSR.sys
16:45:58.0915 2156  MegaSR - ok
16:45:58.0929 2156  [ E40E80D0304A73E8D269F7141D77250B ] MMCSS           C:\Windows\system32\mmcss.dll
16:45:58.0931 2156  MMCSS - ok
16:45:58.0959 2156  [ 800BA92F7010378B09F9ED9270F07137 ] Modem           C:\Windows\system32\drivers\modem.sys
16:45:58.0960 2156  Modem - ok
16:45:58.0983 2156  [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
16:45:58.0984 2156  monitor - ok
16:45:59.0029 2156  [ E90ABA3C6F01BE2C456C4AA857B28646 ] motmodem        C:\Windows\system32\DRIVERS\motmodem.sys
16:45:59.0030 2156  motmodem - ok
16:45:59.0044 2156  [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
16:45:59.0045 2156  mouclass - ok
16:45:59.0073 2156  [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
16:45:59.0074 2156  mouhid - ok
16:45:59.0112 2156  [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
16:45:59.0113 2156  mountmgr - ok
16:45:59.0156 2156  [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio            C:\Windows\system32\drivers\mpio.sys
16:45:59.0158 2156  mpio - ok
16:45:59.0172 2156  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
16:45:59.0173 2156  mpsdrv - ok
16:45:59.0212 2156  [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc          C:\Windows\system32\mpssvc.dll
16:45:59.0220 2156  MpsSvc - ok
16:45:59.0252 2156  [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
16:45:59.0254 2156  MRxDAV - ok
16:45:59.0283 2156  [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
16:45:59.0285 2156  mrxsmb - ok
16:45:59.0329 2156  [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
16:45:59.0332 2156  mrxsmb10 - ok
16:45:59.0347 2156  [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
16:45:59.0349 2156  mrxsmb20 - ok
16:45:59.0373 2156  [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci          C:\Windows\system32\drivers\msahci.sys
16:45:59.0374 2156  msahci - ok
16:45:59.0394 2156  [ DB801A638D011B9633829EB6F663C900 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
16:45:59.0395 2156  msdsm - ok
16:45:59.0412 2156  [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC           C:\Windows\System32\msdtc.exe
16:45:59.0414 2156  MSDTC - ok
16:45:59.0454 2156  [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
16:45:59.0455 2156  Msfs - ok
16:45:59.0465 2156  [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
16:45:59.0466 2156  mshidkmdf - ok
16:45:59.0485 2156  [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
16:45:59.0486 2156  msisadrv - ok
16:45:59.0518 2156  [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
16:45:59.0520 2156  MSiSCSI - ok
16:45:59.0525 2156  msiserver - ok
16:45:59.0547 2156  [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
16:45:59.0548 2156  MSKSSRV - ok
16:45:59.0584 2156  [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
16:45:59.0585 2156  MSPCLOCK - ok
16:45:59.0595 2156  [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
16:45:59.0596 2156  MSPQM - ok
16:45:59.0624 2156  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
16:45:59.0630 2156  MsRPC - ok
16:45:59.0646 2156  [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios        C:\Windows\system32\drivers\mssmbios.sys
16:45:59.0647 2156  mssmbios - ok
16:45:59.0671 2156  [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
16:45:59.0672 2156  MSTEE - ok
16:45:59.0694 2156  [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig        C:\Windows\system32\DRIVERS\MTConfig.sys
16:45:59.0694 2156  MTConfig - ok
16:45:59.0718 2156  [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup             C:\Windows\system32\Drivers\mup.sys
16:45:59.0719 2156  Mup - ok
16:45:59.0738 2156  [ 582AC6D9873E31DFA28A4547270862DD ] napagent        C:\Windows\system32\qagentRT.dll
16:45:59.0743 2156  napagent - ok
16:45:59.0766 2156  [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
16:45:59.0769 2156  NativeWifiP - ok
16:45:59.0846 2156  [ 88A2F45CE66B904285978D6BB13AFEB2 ] NAVENG          C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.1.22\Definitions\VirusDefs\20130228.003\ENG64.SYS
16:45:59.0849 2156  NAVENG - ok
16:45:59.0895 2156  [ D2A545DA3A90BBFA40E020C23F1B7A48 ] NAVEX15         C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.1.22\Definitions\VirusDefs\20130228.003\EX64.SYS
16:45:59.0955 2156  NAVEX15 - ok
16:46:00.0008 2156  [ 760E38053BF56E501D562B70AD796B88 ] NDIS            C:\Windows\system32\drivers\ndis.sys
16:46:00.0017 2156  NDIS - ok
16:46:00.0058 2156  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
16:46:00.0058 2156  NdisCap - ok
16:46:00.0095 2156  [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
16:46:00.0096 2156  NdisTapi - ok
16:46:00.0126 2156  [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
16:46:00.0127 2156  Ndisuio - ok
16:46:00.0141 2156  [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
16:46:00.0143 2156  NdisWan - ok
16:46:00.0184 2156  [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
16:46:00.0185 2156  NDProxy - ok
16:46:00.0193 2156  [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
16:46:00.0194 2156  NetBIOS - ok
16:46:00.0208 2156  [ 09594D1089C523423B32A4229263F068 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
16:46:00.0211 2156  NetBT - ok
16:46:00.0217 2156  [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon        C:\Windows\system32\lsass.exe
16:46:00.0218 2156  Netlogon - ok
16:46:00.0256 2156  [ 847D3AE376C0817161A14A82C8922A9E ] Netman          C:\Windows\System32\netman.dll
16:46:00.0261 2156  Netman - ok
16:46:00.0285 2156  [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm        C:\Windows\System32\netprofm.dll
16:46:00.0290 2156  netprofm - ok
16:46:00.0315 2156  [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
16:46:00.0318 2156  NetTcpPortSharing - ok
16:46:00.0343 2156  [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960         C:\Windows\system32\DRIVERS\nfrd960.sys
16:46:00.0344 2156  nfrd960 - ok
16:46:00.0420 2156  [ 4BA84C832E0741A294C4444556DFE993 ] NIS             C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\ccSvcHst.exe
16:46:00.0422 2156  NIS - ok
16:46:00.0452 2156  [ 8AD77806D336673F270DB31645267293 ] NlaSvc          C:\Windows\System32\nlasvc.dll
16:46:00.0457 2156  NlaSvc - ok
16:46:00.0473 2156  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
16:46:00.0474 2156  Npfs - ok
16:46:00.0487 2156  [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi             C:\Windows\system32\nsisvc.dll
16:46:00.0489 2156  nsi - ok
16:46:00.0502 2156  [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
16:46:00.0503 2156  nsiproxy - ok
16:46:00.0555 2156  [ E453ACF4E7D44E5530B5D5F2B9CA8563 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
16:46:00.0581 2156  Ntfs - ok
16:46:00.0591 2156  [ 9899284589F75FA8724FF3D16AED75C1 ] Null            C:\Windows\system32\drivers\Null.sys
16:46:00.0592 2156  Null - ok
16:46:00.0798 2156  [ F0FBFE1E29FF233B0E000054C1FB968A ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
16:46:00.0844 2156  nvlddmkm - ok
16:46:00.0868 2156  [ 0A92CB65770442ED0DC44834632F66AD ] nvraid          C:\Windows\system32\drivers\nvraid.sys
16:46:00.0868 2156  nvraid - ok
16:46:00.0900 2156  [ DAB0E87525C10052BF65F06152F37E4A ] nvstor          C:\Windows\system32\drivers\nvstor.sys
16:46:00.0900 2156  nvstor - ok
16:46:00.0923 2156  [ 4E70B5247914426722621180B8764514 ] nvsvc           C:\Windows\system32\nvvsvc.exe
16:46:00.0925 2156  nvsvc - ok
16:46:00.0943 2156  [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
16:46:00.0945 2156  nv_agp - ok
16:46:01.0031 2156  [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv          C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
16:46:01.0037 2156  odserv - ok
16:46:01.0052 2156  [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
16:46:01.0053 2156  ohci1394 - ok
16:46:01.0084 2156  [ 5A432A042DAE460ABE7199B758E8606C ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
16:46:01.0087 2156  ose - ok
16:46:01.0104 2156  [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
16:46:01.0109 2156  p2pimsvc - ok
16:46:01.0130 2156  [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc          C:\Windows\system32\p2psvc.dll
16:46:01.0136 2156  p2psvc - ok
16:46:01.0148 2156  [ 0086431C29C35BE1DBC43F52CC273887 ] Parport         C:\Windows\system32\DRIVERS\parport.sys
16:46:01.0149 2156  Parport - ok
16:46:01.0180 2156  Partizan - ok
16:46:01.0205 2156  [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr         C:\Windows\system32\drivers\partmgr.sys
16:46:01.0206 2156  partmgr - ok
16:46:01.0221 2156  [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc          C:\Windows\System32\pcasvc.dll
16:46:01.0224 2156  PcaSvc - ok
16:46:01.0237 2156  [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci             C:\Windows\system32\drivers\pci.sys
16:46:01.0239 2156  pci - ok
16:46:01.0255 2156  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide          C:\Windows\system32\drivers\pciide.sys
16:46:01.0255 2156  pciide - ok
16:46:01.0306 2156  [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia          C:\Windows\system32\DRIVERS\pcmcia.sys
16:46:01.0308 2156  pcmcia - ok
16:46:01.0332 2156  [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw             C:\Windows\system32\drivers\pcw.sys
16:46:01.0333 2156  pcw - ok
16:46:01.0350 2156  [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
16:46:01.0356 2156  PEAUTH - ok
16:46:01.0425 2156  [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost        C:\Windows\SysWow64\perfhost.exe
16:46:01.0427 2156  PerfHost - ok
16:46:01.0484 2156  [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla             C:\Windows\system32\pla.dll
16:46:01.0497 2156  pla - ok
16:46:01.0558 2156  [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
16:46:01.0563 2156  PlugPlay - ok
16:46:01.0580 2156  [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
16:46:01.0582 2156  PNRPAutoReg - ok
16:46:01.0604 2156  [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
16:46:01.0608 2156  PNRPsvc - ok
16:46:01.0642 2156  [ B8D8EC78B0F9ED8E220506181274F3D3 ] Point64         C:\Windows\system32\DRIVERS\point64.sys
16:46:01.0643 2156  Point64 - ok
16:46:01.0667 2156  [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
16:46:01.0672 2156  PolicyAgent - ok
16:46:01.0706 2156  [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power           C:\Windows\system32\umpo.dll
16:46:01.0710 2156  Power - ok
16:46:01.0739 2156  [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
16:46:01.0741 2156  PptpMiniport - ok
16:46:01.0762 2156  [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor       C:\Windows\system32\DRIVERS\processr.sys
16:46:01.0763 2156  Processor - ok
16:46:01.0791 2156  [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc         C:\Windows\system32\profsvc.dll
16:46:01.0794 2156  ProfSvc - ok
16:46:01.0802 2156  [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
16:46:01.0804 2156  ProtectedStorage - ok
16:46:01.0833 2156  [ 0557CF5A2556BD58E26384169D72438D ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
16:46:01.0834 2156  Psched - ok
16:46:01.0885 2156  [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300          C:\Windows\system32\DRIVERS\ql2300.sys
16:46:01.0899 2156  ql2300 - ok
16:46:01.0944 2156  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx          C:\Windows\system32\DRIVERS\ql40xx.sys
16:46:01.0945 2156  ql40xx - ok
16:46:01.0979 2156  [ 906191634E99AEA92C4816150BDA3732 ] QWAVE           C:\Windows\system32\qwave.dll
16:46:01.0983 2156  QWAVE - ok
16:46:02.0010 2156  [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
16:46:02.0011 2156  QWAVEdrv - ok
16:46:02.0025 2156  [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
16:46:02.0026 2156  RasAcd - ok
16:46:02.0053 2156  [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
16:46:02.0054 2156  RasAgileVpn - ok
16:46:02.0067 2156  [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto         C:\Windows\System32\rasauto.dll
16:46:02.0070 2156  RasAuto - ok
16:46:02.0091 2156  [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
16:46:02.0093 2156  Rasl2tp - ok
16:46:02.0109 2156  [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan          C:\Windows\System32\rasmans.dll
16:46:02.0114 2156  RasMan - ok
16:46:02.0126 2156  [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
16:46:02.0127 2156  RasPppoe - ok
16:46:02.0136 2156  [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
16:46:02.0137 2156  RasSstp - ok
16:46:02.0152 2156  [ 77F665941019A1594D887A74F301FA2F ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
16:46:02.0155 2156  rdbss - ok
16:46:02.0168 2156  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus          C:\Windows\system32\DRIVERS\rdpbus.sys
16:46:02.0169 2156  rdpbus - ok
16:46:02.0190 2156  [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
16:46:02.0191 2156  RDPCDD - ok
16:46:02.0225 2156  [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
16:46:02.0226 2156  RDPENCDD - ok
16:46:02.0258 2156  [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
16:46:02.0258 2156  RDPREFMP - ok
16:46:02.0279 2156  [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
16:46:02.0283 2156  RDPWD - ok
16:46:02.0339 2156  [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
16:46:02.0342 2156  rdyboost - ok
16:46:02.0373 2156  [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess    C:\Windows\System32\mprdim.dll
16:46:02.0375 2156  RemoteAccess - ok
16:46:02.0388 2156  [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
16:46:02.0391 2156  RemoteRegistry - ok
16:46:02.0412 2156  [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
16:46:02.0414 2156  RpcEptMapper - ok
16:46:02.0438 2156  [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator      C:\Windows\system32\locator.exe
16:46:02.0439 2156  RpcLocator - ok
16:46:02.0479 2156  [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs           C:\Windows\system32\rpcss.dll
16:46:02.0485 2156  RpcSs - ok
16:46:02.0494 2156  [ DDC86E4F8E7456261E637E3552E804FF ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
16:46:02.0495 2156  rspndr - ok
16:46:02.0526 2156  [ 4B42BC58294E83A6A92EC8B88C14C4A3 ] RTL8167         C:\Windows\system32\DRIVERS\Rt64win7.sys
16:46:02.0529 2156  RTL8167 - ok
16:46:02.0535 2156  [ C118A82CD78818C29AB228366EBF81C3 ] SamSs           C:\Windows\system32\lsass.exe
16:46:02.0536 2156  SamSs - ok
16:46:02.0567 2156  [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
16:46:02.0568 2156  sbp2port - ok
16:46:02.0589 2156  [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr        C:\Windows\System32\SCardSvr.dll
16:46:02.0592 2156  SCardSvr - ok
16:46:02.0617 2156  [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
16:46:02.0618 2156  scfilter - ok
16:46:02.0644 2156  [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule        C:\Windows\system32\schedsvc.dll
16:46:02.0652 2156  Schedule - ok
16:46:02.0670 2156  [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc     C:\Windows\System32\certprop.dll
16:46:02.0670 2156  SCPolicySvc - ok
16:46:02.0684 2156  [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
16:46:02.0686 2156  SDRSVC - ok
16:46:02.0719 2156  [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv          C:\Windows\system32\drivers\secdrv.sys
16:46:02.0720 2156  secdrv - ok
16:46:02.0750 2156  [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon        C:\Windows\system32\seclogon.dll
16:46:02.0752 2156  seclogon - ok
16:46:02.0781 2156  [ C32AB8FA018EF34C0F113BD501436D21 ] SENS            C:\Windows\System32\sens.dll
16:46:02.0783 2156  SENS - ok
16:46:02.0808 2156  [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc        C:\Windows\system32\sensrsvc.dll
16:46:02.0810 2156  SensrSvc - ok
16:46:02.0839 2156  [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum         C:\Windows\system32\DRIVERS\serenum.sys
16:46:02.0840 2156  Serenum - ok
16:46:02.0871 2156  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial          C:\Windows\system32\DRIVERS\serial.sys
16:46:02.0872 2156  Serial - ok
16:46:02.0897 2156  [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse        C:\Windows\system32\DRIVERS\sermouse.sys
16:46:02.0897 2156  sermouse - ok
16:46:02.0932 2156  [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv      C:\Windows\system32\sessenv.dll
16:46:02.0935 2156  SessionEnv - ok
16:46:02.0950 2156  [ A554811BCD09279536440C964AE35BBF ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
16:46:02.0951 2156  sffdisk - ok
16:46:02.0968 2156  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
16:46:02.0969 2156  sffp_mmc - ok
16:46:03.0005 2156  [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
16:46:03.0006 2156  sffp_sd - ok
16:46:03.0027 2156  [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy         C:\Windows\system32\DRIVERS\sfloppy.sys
16:46:03.0028 2156  sfloppy - ok
16:46:03.0062 2156  [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess    C:\Windows\System32\ipnathlp.dll
16:46:03.0067 2156  SharedAccess - ok
16:46:03.0091 2156  [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
16:46:03.0096 2156  ShellHWDetection - ok
16:46:03.0122 2156  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2        C:\Windows\system32\DRIVERS\SiSRaid2.sys
16:46:03.0123 2156  SiSRaid2 - ok
16:46:03.0140 2156  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4        C:\Windows\system32\DRIVERS\sisraid4.sys
16:46:03.0141 2156  SiSRaid4 - ok
16:46:03.0196 2156  [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
16:46:03.0198 2156  SkypeUpdate - ok
16:46:03.0223 2156  [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
16:46:03.0225 2156  Smb - ok
16:46:03.0263 2156  [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
16:46:03.0265 2156  SNMPTRAP - ok
16:46:03.0315 2156  [ 12583AF6CBE0050651EAF2723B3AD7B3 ] speedfan        C:\Windows\syswow64\speedfan.sys
16:46:03.0317 2156  speedfan - ok
16:46:03.0331 2156  [ B9E31E5CACDFE584F34F730A677803F9 ] spldr           C:\Windows\system32\drivers\spldr.sys
16:46:03.0334 2156  spldr - ok
16:46:03.0377 2156  [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler         C:\Windows\System32\spoolsv.exe
16:46:03.0384 2156  Spooler - ok
16:46:03.0471 2156  [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc          C:\Windows\system32\sppsvc.exe
16:46:03.0496 2156  sppsvc - ok
16:46:03.0526 2156  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
16:46:03.0527 2156  sppuinotify - ok
16:46:03.0562 2156  [ D8B882C520FC83547E22014FF5EC66D7 ] Spyder3         C:\Windows\system32\DRIVERS\Spyder3.sys
16:46:03.0563 2156  Spyder3 - ok
16:46:03.0688 2156  [ 385F416318EE00FED8777C05C7AC86D0 ] SpyHunter 4 Service C:\PROGRA~1\ENIGMA~1\SPYHUN~1\SH4SER~1.EXE
16:46:03.0697 2156  SpyHunter 4 Service - ok
16:46:03.0779 2156  [ 3510E7021D2637A67FBCB5105EAE945D ] SRTSP           C:\Windows\System32\Drivers\NISx64\1402010.016\SRTSP64.SYS
16:46:03.0790 2156  SRTSP - ok
16:46:03.0826 2156  [ 1B884D876E87EABF5A3356BBD7321412 ] SRTSPX          C:\Windows\system32\drivers\NISx64\1402010.016\SRTSPX64.SYS
16:46:03.0827 2156  SRTSPX - ok
16:46:03.0861 2156  [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv             C:\Windows\system32\DRIVERS\srv.sys
16:46:03.0866 2156  srv - ok
16:46:03.0899 2156  [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
16:46:03.0903 2156  srv2 - ok
16:46:03.0922 2156  [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
16:46:03.0924 2156  srvnet - ok
16:46:03.0955 2156  [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
16:46:03.0959 2156  SSDPSRV - ok
16:46:03.0973 2156  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc         C:\Windows\system32\sstpsvc.dll
16:46:03.0975 2156  SstpSvc - ok
16:46:04.0019 2156  Steam Client Service - ok
16:46:04.0040 2156  [ F3817967ED533D08327DC73BC4D5542A ] stexstor        C:\Windows\system32\DRIVERS\stexstor.sys
16:46:04.0041 2156  stexstor - ok
16:46:04.0074 2156  [ DECACB6921DED1A38642642685D77DAC ] StillCam        C:\Windows\system32\DRIVERS\serscan.sys
16:46:04.0074 2156  StillCam - ok
16:46:04.0120 2156  [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc          C:\Windows\System32\wiaservc.dll
16:46:04.0127 2156  stisvc - ok
16:46:04.0160 2156  [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum          C:\Windows\system32\drivers\swenum.sys
16:46:04.0161 2156  swenum - ok
16:46:04.0190 2156  [ E08E46FDD841B7184194011CA1955A0B ] swprv           C:\Windows\System32\swprv.dll
16:46:04.0196 2156  swprv - ok
16:46:04.0236 2156  [ 777217682DA76337E8E6EC8AC4412B9B ] SymDS           C:\Windows\system32\drivers\NISx64\1402010.016\SYMDS64.SYS
16:46:04.0241 2156  SymDS - ok
16:46:04.0274 2156  [ 64D1AF3D04E70A681154FFF1893848F6 ] SymEFA          C:\Windows\system32\drivers\NISx64\1402010.016\SYMEFA64.SYS
16:46:04.0284 2156  SymEFA - ok
16:46:04.0317 2156  [ F5D6D3B7468C46EA2DDC1D19D2A6DA0F ] SymEvent        C:\Windows\system32\Drivers\SYMEVENT64x86.SYS
16:46:04.0318 2156  SymEvent - ok
16:46:04.0324 2156  SYMFW - ok
16:46:04.0363 2156  [ ADF37F1A715D6C56C8E065FD8569A9A4 ] SymIRON         C:\Windows\system32\drivers\NISx64\1402010.016\Ironx64.SYS
16:46:04.0365 2156  SymIRON - ok
16:46:04.0375 2156  SYMNDISV - ok
16:46:04.0394 2156  [ 1605EBD8CB86AFC4430116065995279A ] SymNetS         C:\Windows\System32\Drivers\NISx64\1402010.016\SYMNETS.SYS
16:46:04.0397 2156  SymNetS - ok
16:46:04.0453 2156  [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain         C:\Windows\system32\sysmain.dll
16:46:04.0469 2156  SysMain - ok
16:46:04.0511 2156  [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
16:46:04.0513 2156  TabletInputService - ok
16:46:04.0542 2156  [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv         C:\Windows\System32\tapisrv.dll
16:46:04.0547 2156  TapiSrv - ok
16:46:04.0558 2156  [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS             C:\Windows\System32\tbssvc.dll
16:46:04.0561 2156  TBS - ok
16:46:04.0606 2156  [ B62A953F2BF3922C8764A29C34A22899 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
16:46:04.0623 2156  Tcpip - ok
16:46:04.0657 2156  [ B62A953F2BF3922C8764A29C34A22899 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
16:46:04.0666 2156  TCPIP6 - ok
16:46:04.0690 2156  [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
16:46:04.0691 2156  tcpipreg - ok
16:46:04.0711 2156  [ 3371D21011695B16333A3934340C4E7C ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
16:46:04.0712 2156  TDPIPE - ok
16:46:04.0738 2156  [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
16:46:04.0739 2156  TDTCP - ok
16:46:04.0754 2156  [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
16:46:04.0755 2156  tdx - ok
16:46:04.0781 2156  [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD          C:\Windows\system32\drivers\termdd.sys
16:46:04.0782 2156  TermDD - ok
16:46:04.0805 2156  [ 2E648163254233755035B46DD7B89123 ] TermService     C:\Windows\System32\termsrv.dll
16:46:04.0813 2156  TermService - ok
16:46:04.0823 2156  [ F0344071948D1A1FA732231785A0664C ] Themes          C:\Windows\system32\themeservice.dll
16:46:04.0825 2156  Themes - ok
16:46:04.0856 2156  [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER     C:\Windows\system32\mmcss.dll
16:46:04.0857 2156  THREADORDER - ok
16:46:04.0867 2156  [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks          C:\Windows\System32\trkwks.dll
16:46:04.0870 2156  TrkWks - ok
16:46:04.0904 2156  [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
16:46:04.0906 2156  TrustedInstaller - ok
16:46:04.0932 2156  [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
16:46:04.0933 2156  tssecsrv - ok
16:46:04.0957 2156  [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
16:46:04.0958 2156  TsUsbFlt - ok
16:46:05.0010 2156  [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
16:46:05.0012 2156  tunnel - ok
16:46:05.0060 2156  [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35          C:\Windows\system32\DRIVERS\uagp35.sys
16:46:05.0061 2156  uagp35 - ok
16:46:05.0119 2156  [ 9474ECE6561990F7EB443E80CDFD2951 ] uagqecsvc       C:\Program Files\Microsoft Forefront UAG\Endpoint Components\3.1.0\uagqecsvc.exe
16:46:05.0121 2156  uagqecsvc - ok
16:46:05.0143 2156  [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
16:46:05.0146 2156  udfs - ok
16:46:05.0170 2156  [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect       C:\Windows\system32\UI0Detect.exe
16:46:05.0173 2156  UI0Detect - ok
16:46:05.0202 2156  [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
16:46:05.0203 2156  uliagpkx - ok
16:46:05.0248 2156  [ DC54A574663A895C8763AF0FA1FF7561 ] umbus           C:\Windows\system32\drivers\umbus.sys
16:46:05.0249 2156  umbus - ok
16:46:05.0278 2156  [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass          C:\Windows\system32\DRIVERS\umpass.sys
16:46:05.0279 2156  UmPass - ok
16:46:05.0302 2156  [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost        C:\Windows\System32\upnphost.dll
16:46:05.0308 2156  upnphost - ok
16:46:05.0337 2156  [ F724B03C3DFAACF08D17D38BF3333583 ] USBAAPL64       C:\Windows\system32\Drivers\usbaapl64.sys
16:46:05.0338 2156  USBAAPL64 - ok
16:46:05.0352 2156  [ 82E8F44688E6FAC57B5B7C6FC7ADBC2A ] usbaudio        C:\Windows\system32\drivers\usbaudio.sys
16:46:05.0354 2156  usbaudio - ok
16:46:05.0400 2156  [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
16:46:05.0402 2156  usbccgp - ok
16:46:05.0418 2156  [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir          C:\Windows\system32\drivers\usbcir.sys
16:46:05.0420 2156  usbcir - ok
16:46:05.0445 2156  [ C025055FE7B87701EB042095DF1A2D7B ] usbehci         C:\Windows\system32\drivers\usbehci.sys
16:46:05.0446 2156  usbehci - ok
16:46:05.0496 2156  [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
16:46:05.0499 2156  usbhub - ok
16:46:05.0517 2156  [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci         C:\Windows\system32\drivers\usbohci.sys
16:46:05.0518 2156  usbohci - ok
16:46:05.0549 2156  [ 73188F58FB384E75C4063D29413CEE3D ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
16:46:05.0550 2156  usbprint - ok
16:46:05.0572 2156  [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan         C:\Windows\system32\DRIVERS\usbscan.sys
16:46:05.0573 2156  usbscan - ok
16:46:05.0593 2156  [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
16:46:05.0595 2156  USBSTOR - ok
16:46:05.0619 2156  [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
16:46:05.0620 2156  usbuhci - ok
16:46:05.0643 2156  [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms           C:\Windows\System32\uxsms.dll
16:46:05.0646 2156  UxSms - ok
16:46:05.0657 2156  [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc        C:\Windows\system32\lsass.exe
16:46:05.0658 2156  VaultSvc - ok
16:46:05.0685 2156  [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
16:46:05.0686 2156  vdrvroot - ok
16:46:05.0721 2156  [ 8D6B481601D01A456E75C3210F1830BE ] vds             C:\Windows\System32\vds.exe
16:46:05.0728 2156  vds - ok
16:46:05.0755 2156  [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
16:46:05.0756 2156  vga - ok
16:46:05.0778 2156  [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave         C:\Windows\System32\drivers\vga.sys
16:46:05.0779 2156  VgaSave - ok
16:46:05.0808 2156  [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
16:46:05.0811 2156  vhdmp - ok
16:46:05.0827 2156  [ E5689D93FFE4E5D66C0178761240DD54 ] viaide          C:\Windows\system32\drivers\viaide.sys
16:46:05.0827 2156  viaide - ok
16:46:05.0838 2156  [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
16:46:05.0839 2156  volmgr - ok
16:46:05.0889 2156  [ A255814907C89BE58B79EF2F189B843B ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
16:46:05.0892 2156  volmgrx - ok
16:46:05.0910 2156  [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
16:46:05.0913 2156  volsnap - ok
16:46:05.0940 2156  [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid         C:\Windows\system32\DRIVERS\vsmraid.sys
16:46:05.0942 2156  vsmraid - ok
16:46:05.0990 2156  [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS             C:\Windows\system32\vssvc.exe
16:46:06.0006 2156  VSS - ok
16:46:06.0041 2156  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus        C:\Windows\system32\DRIVERS\vwifibus.sys
16:46:06.0041 2156  vwifibus - ok
16:46:06.0072 2156  [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
16:46:06.0073 2156  vwififlt - ok
16:46:06.0102 2156  [ 1C9D80CC3849B3788048078C26486E1A ] W32Time         C:\Windows\system32\w32time.dll
16:46:06.0107 2156  W32Time - ok
16:46:06.0141 2156  [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen        C:\Windows\system32\DRIVERS\wacompen.sys
16:46:06.0142 2156  WacomPen - ok
16:46:06.0162 2156  [ 356AFD78A6ED4457169241AC3965230C ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
16:46:06.0164 2156  WANARP - ok
16:46:06.0168 2156  [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
16:46:06.0169 2156  Wanarpv6 - ok
16:46:06.0236 2156  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc     C:\Windows\system32\Wat\WatAdminSvc.exe
16:46:06.0248 2156  WatAdminSvc - ok
16:46:06.0307 2156  [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine        C:\Windows\system32\wbengine.exe
16:46:06.0323 2156  wbengine - ok
16:46:06.0360 2156  [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
16:46:06.0364 2156  WbioSrvc - ok
16:46:06.0388 2156  [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc         C:\Windows\System32\wcncsvc.dll
16:46:06.0393 2156  wcncsvc - ok
16:46:06.0406 2156  [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
16:46:06.0409 2156  WcsPlugInService - ok
16:46:06.0434 2156  [ 72889E16FF12BA0F235467D6091B17DC ] Wd              C:\Windows\system32\DRIVERS\wd.sys
16:46:06.0435 2156  Wd - ok
16:46:06.0462 2156  [ A3D04EBF5227886029B4532F20D026F7 ] WDC_SAM         C:\Windows\system32\DRIVERS\wdcsam64.sys
16:46:06.0463 2156  WDC_SAM - ok
16:46:06.0508 2156  [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
16:46:06.0516 2156  Wdf01000 - ok
16:46:06.0529 2156  [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost  C:\Windows\system32\wdi.dll
16:46:06.0532 2156  WdiServiceHost - ok
16:46:06.0537 2156  [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost   C:\Windows\system32\wdi.dll
16:46:06.0540 2156  WdiSystemHost - ok
16:46:06.0568 2156  [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient       C:\Windows\System32\webclnt.dll
16:46:06.0572 2156  WebClient - ok
16:46:06.0592 2156  [ C749025A679C5103E575E3B48E092C43 ] Wecsvc          C:\Windows\system32\wecsvc.dll
16:46:06.0596 2156  Wecsvc - ok
16:46:06.0615 2156  [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
16:46:06.0618 2156  wercplsupport - ok
16:46:06.0650 2156  [ 6D137963730144698CBD10F202E9F251 ] WerSvc          C:\Windows\System32\WerSvc.dll
16:46:06.0653 2156  WerSvc - ok
16:46:06.0679 2156  [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
16:46:06.0679 2156  WfpLwf - ok
16:46:06.0698 2156  [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
16:46:06.0698 2156  WIMMount - ok
16:46:06.0720 2156  WinDefend - ok
16:46:06.0726 2156  WinHttpAutoProxySvc - ok
16:46:06.0787 2156  [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
16:46:06.0790 2156  Winmgmt - ok
16:46:06.0848 2156  [ BCB1310604AA415C4508708975B3931E ] WinRM           C:\Windows\system32\WsmSvc.dll
16:46:06.0867 2156  WinRM - ok
16:46:06.0940 2156  [ FE88B288356E7B47B74B13372ADD906D ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
16:46:06.0941 2156  WinUsb - ok
16:46:06.0986 2156  [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc         C:\Windows\System32\wlansvc.dll
16:46:06.0995 2156  Wlansvc - ok
16:46:07.0016 2156  [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
16:46:07.0016 2156  WmiAcpi - ok
16:46:07.0033 2156  [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
16:46:07.0034 2156  wmiApSrv - ok
16:46:07.0055 2156  WMPNetworkSvc - ok
16:46:07.0071 2156  [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc          C:\Windows\System32\wpcsvc.dll
16:46:07.0072 2156  WPCSvc - ok
16:46:07.0097 2156  [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
16:46:07.0099 2156  WPDBusEnum - ok
16:46:07.0111 2156  [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
16:46:07.0112 2156  ws2ifsl - ok
16:46:07.0116 2156  [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc          C:\Windows\System32\wscsvc.dll
16:46:07.0118 2156  wscsvc - ok
16:46:07.0122 2156  WSearch - ok
16:46:07.0179 2156  [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv        C:\Windows\system32\wuaueng.dll
16:46:07.0195 2156  wuauserv - ok
16:46:07.0223 2156  [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
16:46:07.0223 2156  WudfPf - ok
16:46:07.0252 2156  [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
16:46:07.0254 2156  WUDFRd - ok
16:46:07.0280 2156  [ B20F051B03A966392364C83F009F7D17 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
16:46:07.0283 2156  wudfsvc - ok
16:46:07.0303 2156  [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc         C:\Windows\System32\wwansvc.dll
16:46:07.0307 2156  WwanSvc - ok
16:46:07.0395 2156  [ DD0042F0C3B606A6A8B92D49AFB18AD6 ] YahooAUService  C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
16:46:07.0404 2156  YahooAUService - ok
16:46:07.0410 2156  ================ Scan global ===============================
16:46:07.0442 2156  [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
16:46:07.0472 2156  [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
16:46:07.0481 2156  [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
16:46:07.0509 2156  [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
16:46:07.0545 2156  [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
16:46:07.0550 2156  [Global] - ok
16:46:07.0551 2156  ================ Scan MBR ==================================
16:46:07.0557 2156  [ C3C5FBEB54FF6247EE3B736C8846ACA6 ] \Device\Harddisk0\DR0
16:46:07.0792 2156  \Device\Harddisk0\DR0 - ok
16:46:07.0793 2156  ================ Scan VBR ==================================
16:46:07.0796 2156  [ 22C495D32737723690345E771ED17E4E ] \Device\Harddisk0\DR0\Partition1
16:46:07.0798 2156  \Device\Harddisk0\DR0\Partition1 - ok
16:46:07.0827 2156  [ 4EF1E7185A0D67A8FA96BCE1C0488B3C ] \Device\Harddisk0\DR0\Partition2
16:46:07.0830 2156  \Device\Harddisk0\DR0\Partition2 - ok
16:46:07.0861 2156  [ 8DF7D174CD81E3F6141D916A9F35DD68 ] \Device\Harddisk0\DR0\Partition3
16:46:07.0864 2156  \Device\Harddisk0\DR0\Partition3 - ok
16:46:07.0865 2156  ================ Scan active images ========================
16:46:07.0868 2156  [ 3E588B60EC061686BA05D33574A344C6 ] C:\Windows\System32\drivers\crashdmp.sys
16:46:07.0868 2156  C:\Windows\System32\drivers\crashdmp.sys - ok
16:46:07.0873 2156  [ 814DB88F2641691575A455CF25354098 ] C:\Windows\System32\drivers\dumpfve.sys
16:46:07.0873 2156  C:\Windows\System32\drivers\dumpfve.sys - ok
16:46:07.0879 2156  [ 1D004CB1DA6323B1F55CAEF7F94B61D9 ] C:\Windows\System32\drivers\iaStor.sys
16:46:07.0879 2156  C:\Windows\System32\drivers\iaStor.sys - ok
16:46:07.0884 2156  [ F036CE71586E93D94DAB220D7BDF4416 ] C:\Windows\System32\drivers\cdrom.sys
16:46:07.0884 2156  C:\Windows\System32\drivers\cdrom.sys - ok
16:46:07.0890 2156  [ 248C952C82DF1E23775432774CBB20F1 ] C:\Windows\System32\drivers\NISx64\1402010.016\ccSetx64.sys
16:46:07.0890 2156  C:\Windows\System32\drivers\NISx64\1402010.016\ccSetx64.sys - ok
16:46:07.0896 2156  [ ADF37F1A715D6C56C8E065FD8569A9A4 ] C:\Windows\System32\drivers\NISx64\1402010.016\Ironx64.sys
16:46:07.0896 2156  C:\Windows\System32\drivers\NISx64\1402010.016\Ironx64.sys - ok
16:46:07.0901 2156  [ 16A47CE2DECC9B099349A5F840654746 ] C:\Windows\System32\drivers\beep.sys
16:46:07.0901 2156  C:\Windows\System32\drivers\beep.sys - ok
16:46:07.0903 2156  [ 9899284589F75FA8724FF3D16AED75C1 ] C:\Windows\System32\drivers\null.sys
16:46:07.0903 2156  C:\Windows\System32\drivers\null.sys - ok
16:46:07.0906 2156  [ FC438D1430B28618E2D0C7C332A710AD ] C:\Windows\System32\drivers\watchdog.sys
16:46:07.0906 2156  C:\Windows\System32\drivers\watchdog.sys - ok
16:46:07.0908 2156  [ CEA6CC257FC9B7715F1C2B4849286D24 ] C:\Windows\System32\drivers\RDPCDD.sys
16:46:07.0908 2156  C:\Windows\System32\drivers\RDPCDD.sys - ok
16:46:07.0911 2156  [ 53E92A310193CB3C03BEA963DE7D9CFC ] C:\Windows\System32\drivers\vga.sys
16:46:07.0911 2156  C:\Windows\System32\drivers\vga.sys - ok
16:46:07.0913 2156  [ E7353D59C9842BC7299FAEB7E7E09340 ] C:\Windows\System32\drivers\videoprt.sys
16:46:07.0913 2156  C:\Windows\System32\drivers\videoprt.sys - ok
16:46:07.0916 2156  [ BB5971A4F00659529A5C44831AF22365 ] C:\Windows\System32\drivers\RDPENCDD.sys
16:46:07.0916 2156  C:\Windows\System32\drivers\RDPENCDD.sys - ok
16:46:07.0918 2156  [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] C:\Windows\System32\drivers\msfs.sys
16:46:07.0918 2156  C:\Windows\System32\drivers\msfs.sys - ok
16:46:07.0921 2156  [ 216F3FA57533D98E1F74DED70113177A ] C:\Windows\System32\drivers\RDPREFMP.sys
16:46:07.0921 2156  C:\Windows\System32\drivers\RDPREFMP.sys - ok
16:46:07.0923 2156  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] C:\Windows\System32\drivers\npfs.sys
16:46:07.0923 2156  C:\Windows\System32\drivers\npfs.sys - ok
16:46:07.0926 2156  [ 6F020A220388ECA0AB6062DC27BD16B6 ] C:\Windows\System32\drivers\tdi.sys
16:46:07.0926 2156  C:\Windows\System32\drivers\tdi.sys - ok
16:46:07.0928 2156  [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] C:\Windows\System32\drivers\tdx.sys
16:46:07.0928 2156  C:\Windows\System32\drivers\tdx.sys - ok
16:46:07.0931 2156  [ 1C7857B62DE5994A75B054A9FD4C3825 ] C:\Windows\System32\drivers\afd.sys
16:46:07.0931 2156  C:\Windows\System32\drivers\afd.sys - ok
16:46:07.0935 2156  [ 09594D1089C523423B32A4229263F068 ] C:\Windows\System32\drivers\netbt.sys
16:46:07.0935 2156  C:\Windows\System32\drivers\netbt.sys - ok
16:46:07.0937 2156  [ 611B23304BF067451A9FDEE01FBDD725 ] C:\Windows\System32\drivers\wfplwf.sys
16:46:07.0937 2156  C:\Windows\System32\drivers\wfplwf.sys - ok
16:46:07.0940 2156  [ 0557CF5A2556BD58E26384169D72438D ] C:\Windows\System32\drivers\pacer.sys
16:46:07.0940 2156  C:\Windows\System32\drivers\pacer.sys - ok
16:46:07.0942 2156  [ 6A3D66263414FF0D6FA754C646612F3F ] C:\Windows\System32\drivers\vwififlt.sys
16:46:07.0942 2156  C:\Windows\System32\drivers\vwififlt.sys - ok
16:46:07.0945 2156  [ 86743D9F5D2B1048062B14B1D84501C4 ] C:\Windows\System32\drivers\netbios.sys
16:46:07.0945 2156  C:\Windows\System32\drivers\netbios.sys - ok
16:46:07.0948 2156  [ 356AFD78A6ED4457169241AC3965230C ] C:\Windows\System32\drivers\wanarp.sys
16:46:07.0948 2156  C:\Windows\System32\drivers\wanarp.sys - ok
16:46:07.0950 2156  [ 561E7E1F06895D78DE991E01DD0FB6E5 ] C:\Windows\System32\drivers\termdd.sys
16:46:07.0950 2156  C:\Windows\System32\drivers\termdd.sys - ok
16:46:07.0953 2156  [ 1605EBD8CB86AFC4430116065995279A ] C:\Windows\System32\drivers\NISx64\1402010.016\symnets.sys
16:46:07.0953 2156  C:\Windows\System32\drivers\NISx64\1402010.016\symnets.sys - ok
16:46:07.0955 2156  [ F5D6D3B7468C46EA2DDC1D19D2A6DA0F ] C:\Windows\System32\drivers\SYMEVENT64x86.SYS
16:46:07.0955 2156  C:\Windows\System32\drivers\SYMEVENT64x86.SYS - ok
16:46:07.0958 2156  [ 1B884D876E87EABF5A3356BBD7321412 ] C:\Windows\System32\drivers\NISx64\1402010.016\srtspx64.sys
16:46:07.0958 2156  C:\Windows\System32\drivers\NISx64\1402010.016\srtspx64.sys - ok
16:46:07.0960 2156  [ 77F665941019A1594D887A74F301FA2F ] C:\Windows\System32\drivers\rdbss.sys
16:46:07.0961 2156  C:\Windows\System32\drivers\rdbss.sys - ok
16:46:07.0963 2156  [ E7F5AE18AF4168178A642A9247C63001 ] C:\Windows\System32\drivers\nsiproxy.sys
16:46:07.0963 2156  C:\Windows\System32\drivers\nsiproxy.sys - ok
16:46:07.0966 2156  [ 0EED230E37515A0EAEE3C2E1BC97B288 ] C:\Windows\System32\drivers\mssmbios.sys
16:46:07.0966 2156  C:\Windows\System32\drivers\mssmbios.sys - ok
16:46:07.0968 2156  [ A48928D4CCA6F8B731989DB08CF2C0AB ] C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.1.22\Definitions\IPSDefs\20130227.001\IDSviA64.sys
16:46:07.0968 2156  C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.1.22\Definitions\IPSDefs\20130227.001\IDSviA64.sys - ok
16:46:07.0971 2156  [ 4353FF94D47A0A9D52B89ECCF0CDB013 ] C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys
16:46:07.0971 2156  C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys - ok
16:46:07.0974 2156  [ C5BCCB378D0A896304A3E71BE7215983 ] C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
16:46:07.0974 2156  C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys - ok
16:46:07.0976 2156  [ 13096B05847EC78F0977F2C0F79E9AB3 ] C:\Windows\System32\drivers\discache.sys
16:46:07.0976 2156  C:\Windows\System32\drivers\discache.sys - ok
16:46:07.0979 2156  [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] C:\Windows\System32\drivers\dfsc.sys
16:46:07.0979 2156  C:\Windows\System32\drivers\dfsc.sys - ok
16:46:07.0981 2156  [ 61583EE3C3A17003C4ACD0475646B4D3 ] C:\Windows\System32\drivers\blbdrive.sys
16:46:07.0981 2156  C:\Windows\System32\drivers\blbdrive.sys - ok
16:46:07.0983 2156  [ 866335C9C0E6733C753FB472C539A6B9 ] C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.1.22\Definitions\BASHDefs\20130208.001\BHDrvx64.sys
16:46:07.0983 2156  C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.1.22\Definitions\BASHDefs\20130208.001\BHDrvx64.sys - ok
16:46:07.0986 2156  [ 3566A8DAAFA27AF944F5D705EAA64894 ] C:\Windows\System32\drivers\tunnel.sys
16:46:07.0986 2156  C:\Windows\System32\drivers\tunnel.sys - ok
16:46:07.0989 2156  [ ADA036632C664CAA754079041CF1F8C1 ] C:\Windows\System32\drivers\intelppm.sys
16:46:07.0989 2156  C:\Windows\System32\drivers\intelppm.sys - ok
16:46:07.0991 2156  [ CF95B85FF8D128385ABD411C8CA74DED ] C:\Windows\System32\ntdll.dll
16:46:07.0991 2156  C:\Windows\System32\ntdll.dll - ok
16:46:07.0994 2156  [ 1911A3356FA3F77CCC825CCBAC038C2A ] C:\Windows\System32\smss.exe
16:46:07.0994 2156  C:\Windows\System32\smss.exe - ok
16:46:07.0996 2156  [ 3B536A8BEC3B4F23FFDFD78B11A2AB93 ] C:\Windows\System32\autochk.exe
16:46:07.0996 2156  C:\Windows\System32\autochk.exe - ok
16:46:07.0999 2156  [ D202223587518B13D72D68937B7E3F70 ] C:\Windows\System32\lpk.dll
16:46:07.0999 2156  C:\Windows\System32\lpk.dll - ok
16:46:08.0001 2156  [ EAF32CB8C1F810E4715B4DFBE785C7FF ] C:\Windows\System32\shlwapi.dll
16:46:08.0001 2156  C:\Windows\System32\shlwapi.dll - ok
16:46:08.0003 2156  [ F431C3C86FCCC1C53814F043A6CAD825 ] C:\Windows\System32\iertutil.dll
16:46:08.0003 2156  C:\Windows\System32\iertutil.dll - ok
16:46:08.0006 2156  [ C06B32165E23A72A898B7A89679AD754 ] C:\Windows\System32\oleaut32.dll
16:46:08.0006 2156  C:\Windows\System32\oleaut32.dll - ok
16:46:08.0008 2156  [ C6689007B3A749C49A5438DCF36E0CE4 ] C:\Windows\System32\shell32.dll
16:46:08.0008 2156  C:\Windows\System32\shell32.dll - ok
16:46:08.0011 2156  [ 05C29250E5160ABEC6BC1288FE55CB1F ] C:\Windows\System32\drivers\nvBridge.kmd
16:46:08.0011 2156  C:\Windows\System32\drivers\nvBridge.kmd - ok
16:46:08.0014 2156  [ F0FBFE1E29FF233B0E000054C1FB968A ] C:\Windows\System32\drivers\nvlddmkm.sys
16:46:08.0014 2156  C:\Windows\System32\drivers\nvlddmkm.sys - ok
16:46:08.0016 2156  [ A1BE6A720D02E37F72E9CD89AE9CB3CF ] C:\Windows\System32\imagehlp.dll
16:46:08.0016 2156  C:\Windows\System32\imagehlp.dll - ok
16:46:08.0019 2156  [ 435E9C764E1EF70058580996452BE6A2 ] C:\Windows\System32\wininet.dll
16:46:08.0019 2156  C:\Windows\System32\wininet.dll - ok
16:46:08.0021 2156  [ D87E1E59C73C1F98D5DED5B3850C40F5 ] C:\Windows\System32\psapi.dll
16:46:08.0021 2156  C:\Windows\System32\psapi.dll - ok
16:46:08.0024 2156  [ 5D8E6C95156ED1F79A63D1EADE6F9ED5 ] C:\Windows\System32\setupapi.dll
16:46:08.0024 2156  C:\Windows\System32\setupapi.dll - ok
16:46:08.0026 2156  [ 6C60B5ACA7442EFB794082CDACFC001C ] C:\Windows\System32\ole32.dll
16:46:08.0026 2156  C:\Windows\System32\ole32.dll - ok
16:46:08.0028 2156  [ C431EAF5CAA1C82CAC2534A2EAB348A3 ] C:\Windows\System32\msctf.dll
16:46:08.0028 2156  C:\Windows\System32\msctf.dll - ok
16:46:08.0030 2156  [ 83404DCBCE4925B6A5A77C5170F46D86 ] C:\Windows\System32\sechost.dll
16:46:08.0031 2156  C:\Windows\System32\sechost.dll - ok
16:46:08.0033 2156  [ 28C0B5024F5C5A438E78B188CFC81B7F ] C:\Windows\System32\normaliz.dll
16:46:08.0033 2156  C:\Windows\System32\normaliz.dll - ok
16:46:08.0035 2156  [ 0611473C1AD9E2D991CD9482068417F7 ] C:\Windows\System32\rpcrt4.dll
16:46:08.0035 2156  C:\Windows\System32\rpcrt4.dll - ok
16:46:08.0038 2156  [ 9835E63E09F824D22B689D2BB789BAB9 ] C:\Windows\System32\comdlg32.dll
16:46:08.0038 2156  C:\Windows\System32\comdlg32.dll - ok
16:46:08.0040 2156  [ 1084AA52CCC324EA54C7121FA24C2221 ] C:\Windows\System32\gdi32.dll
16:46:08.0040 2156  C:\Windows\System32\gdi32.dll - ok
16:46:08.0043 2156  [ F7CE0C81C545364020ED8203CF0A633E ] C:\Windows\System32\difxapi.dll
16:46:08.0043 2156  C:\Windows\System32\difxapi.dll - ok
16:46:08.0045 2156  [ F5BEE30450E18E6B83A5012C100616FD ] C:\Windows\System32\drivers\dxgkrnl.sys
16:46:08.0045 2156  C:\Windows\System32\drivers\dxgkrnl.sys - ok
16:46:08.0047 2156  [ 9CD68BDDF322535C02ADC8331013D13D ] C:\Windows\System32\drivers\dxgmms1.sys
16:46:08.0047 2156  C:\Windows\System32\drivers\dxgmms1.sys - ok
16:46:08.0050 2156  [ 044FE45FFD6AD40E3BBBE60B7F41BABE ] C:\Windows\System32\nsi.dll
16:46:08.0050 2156  C:\Windows\System32\nsi.dll - ok
16:46:08.0052 2156  [ C391FC68282A000CDF953F8B6B55D2EF ] C:\Windows\System32\msvcrt.dll
16:46:08.0052 2156  C:\Windows\System32\msvcrt.dll - ok
16:46:08.0054 2156  [ AE259C75F9A0B057B6BF9E9695632B09 ] C:\Windows\System32\drivers\usbport.sys
16:46:08.0054 2156  C:\Windows\System32\drivers\usbport.sys - ok
16:46:08.0057 2156  [ C025055FE7B87701EB042095DF1A2D7B ] C:\Windows\System32\drivers\usbehci.sys
16:46:08.0057 2156  C:\Windows\System32\drivers\usbehci.sys - ok
16:46:08.0059 2156  [ 4E4FFB09D895AA000DD56D1404F69A7E ] C:\Windows\System32\Wldap32.dll
16:46:08.0059 2156  C:\Windows\System32\Wldap32.dll - ok
16:46:08.0062 2156  [ 97BFED39B6B79EB12CDDBFEED51F56BB ] C:\Windows\System32\drivers\hdaudbus.sys
16:46:08.0062 2156  C:\Windows\System32\drivers\hdaudbus.sys - ok
16:46:08.0064 2156  [ 4B42BC58294E83A6A92EC8B88C14C4A3 ] C:\Windows\System32\drivers\Rt64win7.sys
16:46:08.0064 2156  C:\Windows\System32\drivers\Rt64win7.sys - ok
16:46:08.0067 2156  [ A87D604AEA360176311474C87A63BB88 ] C:\Windows\System32\drivers\1394ohci.sys
16:46:08.0067 2156  C:\Windows\System32\drivers\1394ohci.sys - ok
16:46:08.0069 2156  [ E403AACF8C7BB11375122D2464560311 ] C:\Windows\System32\drivers\GEARAspiWDM.sys
16:46:08.0069 2156  C:\Windows\System32\drivers\GEARAspiWDM.sys - ok
16:46:08.0072 2156  [ 7ECFF9B22276B73F43A99A15A6094E90 ] C:\Windows\System32\drivers\agilevpn.sys
16:46:08.0072 2156  C:\Windows\System32\drivers\agilevpn.sys - ok
16:46:08.0074 2156  [ 03EDB043586CCEBA243D689BDDA370A8 ] C:\Windows\System32\drivers\CompositeBus.sys
16:46:08.0074 2156  C:\Windows\System32\drivers\CompositeBus.sys - ok
16:46:08.0077 2156  [ 471815800AE33E6F1C32FB1B97C490CA ] C:\Windows\System32\drivers\rasl2tp.sys
16:46:08.0077 2156  C:\Windows\System32\drivers\rasl2tp.sys - ok
16:46:08.0079 2156  [ 30639C932D9FEF22B31268FE25A1B6E5 ] C:\Windows\System32\drivers\ndistapi.sys
16:46:08.0079 2156  C:\Windows\System32\drivers\ndistapi.sys - ok
16:46:08.0082 2156  [ 53F7305169863F0A2BDDC49E116C2E11 ] C:\Windows\System32\drivers\ndiswan.sys
16:46:08.0082 2156  C:\Windows\System32\drivers\ndiswan.sys - ok
16:46:08.0084 2156  [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] C:\Windows\System32\drivers\raspppoe.sys
16:46:08.0084 2156  C:\Windows\System32\drivers\raspppoe.sys - ok
16:46:08.0086 2156  [ F92A2C41117A11A00BE01CA01A7FCDE9 ] C:\Windows\System32\drivers\raspptp.sys
16:46:08.0086 2156  C:\Windows\System32\drivers\raspptp.sys - ok
16:46:08.0089 2156  [ E8B1E447B008D07FF47D016C2B0EEECB ] C:\Windows\System32\drivers\rassstp.sys
16:46:08.0089 2156  C:\Windows\System32\drivers\rassstp.sys - ok
16:46:08.0092 2156  [ BC02336F1CBA7DCC7D1213BB588A68A5 ] C:\Windows\System32\drivers\kbdclass.sys
16:46:08.0092 2156  C:\Windows\System32\drivers\kbdclass.sys - ok
16:46:08.0095 2156  [ 7D27EA49F3C1F687D357E77A470AEA99 ] C:\Windows\System32\drivers\mouclass.sys
16:46:08.0095 2156  C:\Windows\System32\drivers\mouclass.sys - ok
16:46:08.0097 2156  [ 24FBF5CC5C04150073C315A7C83521EE ] C:\Windows\System32\drivers\ks.sys
16:46:08.0097 2156  C:\Windows\System32\drivers\ks.sys - ok
16:46:08.0099 2156  [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] C:\Windows\System32\drivers\swenum.sys
16:46:08.0099 2156  C:\Windows\System32\drivers\swenum.sys - ok
16:46:08.0102 2156  [ DC54A574663A895C8763AF0FA1FF7561 ] C:\Windows\System32\drivers\umbus.sys
16:46:08.0102 2156  C:\Windows\System32\drivers\umbus.sys - ok
16:46:08.0105 2156  [ 287C6C9410B111B68B52CA298F7B8C24 ] C:\Windows\System32\drivers\usbhub.sys
16:46:08.0105 2156  C:\Windows\System32\drivers\usbhub.sys - ok
16:46:08.0107 2156  [ 015C0D8E0E0421B4CFD48CFFE2825879 ] C:\Windows\System32\drivers\ndproxy.sys
16:46:08.0107 2156  C:\Windows\System32\drivers\ndproxy.sys - ok
16:46:08.0109 2156  [ 21D26064AEDB4988F785BB4A3A2C051E ] C:\Windows\System32\drivers\drmk.sys
16:46:08.0109 2156  C:\Windows\System32\drivers\drmk.sys - ok
16:46:08.0113 2156  [ 32E11315B5126921FFD9074840EF13D3 ] C:\Windows\System32\drivers\portcls.sys
16:46:08.0113 2156  C:\Windows\System32\drivers\portcls.sys - ok
16:46:08.0115 2156  [ 3C4B4EE54FEBB09F7E9F58776DE96DCA ] C:\Windows\System32\drivers\RTKVHD64.sys
16:46:08.0115 2156  C:\Windows\System32\drivers\RTKVHD64.sys - ok
16:46:08.0118 2156  [ 6869281E78CB31A43E969F06B57347C4 ] C:\Windows\System32\drivers\ksthunk.sys
16:46:08.0118 2156  C:\Windows\System32\drivers\ksthunk.sys - ok
16:46:08.0121 2156  [ 65C113214F7B05820F6D8A65B1485196 ] C:\Windows\System32\kernel32.dll
16:46:08.0121 2156  C:\Windows\System32\kernel32.dll - ok
16:46:08.0123 2156  [ FE70103391A64039A921DBFFF9C7AB1B ] C:\Windows\System32\user32.dll
16:46:08.0123 2156  C:\Windows\System32\user32.dll - ok
16:46:08.0125 2156  [ 4BBFA57F594F7E8A8EDC8F377184C3F0 ] C:\Windows\System32\ws2_32.dll
16:46:08.0125 2156  C:\Windows\System32\ws2_32.dll - ok
16:46:08.0127 2156  [ DBF99FD9CAF75CA66D042BD8D050FF71 ] C:\Windows\System32\usp10.dll
16:46:08.0127 2156  C:\Windows\System32\usp10.dll - ok
16:46:08.0130 2156  [ 25983DE69B57142039AC8D95E71CD9C9 ] C:\Windows\System32\clbcatq.dll
16:46:08.0130 2156  C:\Windows\System32\clbcatq.dll - ok
16:46:08.0132 2156  [ 6DF46D2BD74E3DA1B45F08F10D172732 ] C:\Windows\System32\advapi32.dll
16:46:08.0132 2156  C:\Windows\System32\advapi32.dll - ok
16:46:08.0134 2156  [ 87BEA2616EFDEC6A1CB3BFCFB09D816A ] C:\Windows\System32\urlmon.dll
16:46:08.0134 2156  C:\Windows\System32\urlmon.dll - ok
16:46:08.0137 2156  [ AA2C08CE85653B1A0D2E4AB407FA176C ] C:\Windows\System32\imm32.dll
16:46:08.0137 2156  C:\Windows\System32\imm32.dll - ok
16:46:08.0139 2156  [ AA06902362B1422D7A7DA7061E07C624 ] C:\Windows\System32\wintrust.dll
16:46:08.0139 2156  C:\Windows\System32\wintrust.dll - ok
16:46:08.0141 2156  [ 14DFDEAF4E589ED3F1FF187A86B9408C ] C:\Windows\System32\comctl32.dll
16:46:08.0141 2156  C:\Windows\System32\comctl32.dll - ok
16:46:08.0144 2156  [ 2477A28081BDAEE622CF045ACF8EE124 ] C:\Windows\System32\cfgmgr32.dll
16:46:08.0144 2156  C:\Windows\System32\cfgmgr32.dll - ok
16:46:08.0146 2156  [ 06FEC9E8117103BB1141A560E98077DA ] C:\Windows\System32\devobj.dll
16:46:08.0146 2156  C:\Windows\System32\devobj.dll - ok
16:46:08.0149 2156  [ 1F56F209585F350A5666E3CC7931FD67 ] C:\Windows\System32\KernelBase.dll
16:46:08.0149 2156  C:\Windows\System32\KernelBase.dll - ok
16:46:08.0151 2156  [ 12EE6FE9268CEE6D90FDCCBF89236C65 ] C:\Windows\System32\crypt32.dll
16:46:08.0151 2156  C:\Windows\System32\crypt32.dll - ok
16:46:08.0153 2156  [ 884415BD4269C02EAF8E2613BF85500D ] C:\Windows\System32\msasn1.dll
16:46:08.0153 2156  C:\Windows\System32\msasn1.dll - ok
16:46:08.0156 2156  [ 9C278785347BCC991F8EA2999D90F58D ] C:\Windows\SysWOW64\normaliz.dll
16:46:08.0156 2156  C:\Windows\SysWOW64\normaliz.dll - ok
16:46:08.0158 2156  [ 6F1A3157A1C89435352CEB543CDB359C ] C:\Windows\System32\drivers\usbccgp.sys
16:46:08.0158 2156  C:\Windows\System32\drivers\usbccgp.sys - ok
16:46:08.0161 2156  [ CCA2AB1752A61F29C3C941CD79D78CEA ] C:\Windows\System32\drivers\usbd.sys
16:46:08.0161 2156  C:\Windows\System32\drivers\usbd.sys - ok
16:46:08.0163 2156  [ 8B0E40E7E8BBF5ACF390465609D89FF1 ] C:\Windows\System32\drivers\hidclass.sys
16:46:08.0163 2156  C:\Windows\System32\drivers\hidclass.sys - ok
16:46:08.0166 2156  [ 49EE2E52E6CD03947DAD72F65367BE06 ] C:\Windows\System32\drivers\hidparse.sys
16:46:08.0166 2156  C:\Windows\System32\drivers\hidparse.sys - ok
16:46:08.0168 2156  [ 9592090A7E2B61CD582B612B6DF70536 ] C:\Windows\System32\drivers\hidusb.sys
16:46:08.0168 2156  C:\Windows\System32\drivers\hidusb.sys - ok
16:46:08.0171 2156  [ D3BF052C40B0C4166D9FD86A4288C1E6 ] C:\Windows\System32\drivers\mouhid.sys
16:46:08.0171 2156  C:\Windows\System32\drivers\mouhid.sys - ok
16:46:08.0173 2156  [ 241F2648ADF090E2A10095BD6D6F5DCB ] C:\Windows\System32\drivers\LHidFilt.Sys
16:46:08.0173 2156  C:\Windows\System32\drivers\LHidFilt.Sys - ok
16:46:08.0176 2156  [ 0705EFF5B42A9DB58548EEC3B26BB484 ] C:\Windows\System32\drivers\kbdhid.sys
16:46:08.0176 2156  C:\Windows\System32\drivers\kbdhid.sys - ok
16:46:08.0178 2156  [ 342ED5A4B3326014438F36D22D803737 ] C:\Windows\System32\drivers\LMouFilt.Sys
16:46:08.0178 2156  C:\Windows\System32\drivers\LMouFilt.Sys - ok
16:46:08.0181 2156  [ BF24D6F2ED97FE830BFD52B246F98E67 ] C:\Windows\System32\drivers\dxapi.sys
16:46:08.0181 2156  C:\Windows\System32\drivers\dxapi.sys - ok
16:46:08.0183 2156  [ 59E21156113E438D1D91AF4FC0C3B19F ] C:\Windows\System32\win32k.sys
16:46:08.0183 2156  C:\Windows\System32\win32k.sys - ok
16:46:08.0185 2156  [ FED648B01349A3C8395A5169DB5FB7D6 ] C:\Windows\System32\drivers\USBSTOR.SYS
16:46:08.0185 2156  C:\Windows\System32\drivers\USBSTOR.SYS - ok
16:46:08.0188 2156  [ 60C2862B4BF0FD9F582EF344C2B1EC72 ] C:\Windows\System32\csrss.exe
16:46:08.0188 2156  C:\Windows\System32\csrss.exe - ok
16:46:08.0190 2156  [ 96F587CA26A6AA894BD8CACE4540CFFC ] C:\Windows\System32\csrsrv.dll
16:46:08.0190 2156  C:\Windows\System32\csrsrv.dll - ok
16:46:08.0192 2156  [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\System32\basesrv.dll
16:46:08.0192 2156  C:\Windows\System32\basesrv.dll - ok
16:46:08.0194 2156  [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\System32\winsrv.dll
16:46:08.0195 2156  C:\Windows\System32\winsrv.dll - ok
16:46:08.0197 2156  [ B03D591DC7DA45ECE20B3B467E6AADAA ] C:\Windows\System32\drivers\monitor.sys
16:46:08.0197 2156  C:\Windows\System32\drivers\monitor.sys - ok
16:46:08.0199 2156  [ F29FE765E1448EF371CFE05BFAC74ADB ] C:\Windows\System32\tsddd.dll
16:46:08.0199 2156  C:\Windows\System32\tsddd.dll - ok
16:46:08.0201 2156  [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\System32\sxssrv.dll
16:46:08.0201 2156  C:\Windows\System32\sxssrv.dll - ok
16:46:08.0204 2156  [ 94355C28C1970635A31B3FE52EB7CEBA ] C:\Windows\System32\wininit.exe
16:46:08.0204 2156  C:\Windows\System32\wininit.exe - ok
16:46:08.0206 2156  [ 78523A26F5604C0568FE9D1CE86E36F4 ] C:\Windows\System32\KBDUS.DLL
16:46:08.0206 2156  C:\Windows\System32\KBDUS.DLL - ok
16:46:08.0208 2156  [ 2C942733A5983DD4502219FF37C7EBC7 ] C:\Windows\System32\profapi.dll
16:46:08.0208 2156  C:\Windows\System32\profapi.dll - ok
16:46:08.0211 2156  [ C2A8CB1275ECB85D246A9ECC02A728E3 ] C:\Windows\System32\RpcRtRemote.dll
16:46:08.0211 2156  C:\Windows\System32\RpcRtRemote.dll - ok
16:46:08.0213 2156  [ 05569A79BF4693670B709144382D02D4 ] C:\Windows\System32\cdd.dll
16:46:08.0213 2156  C:\Windows\System32\cdd.dll - ok
16:46:08.0216 2156  [ 1151B1BAA6F350B1DB6598E0FEA7C457 ] C:\Windows\System32\winlogon.exe
16:46:08.0216 2156  C:\Windows\System32\winlogon.exe - ok
16:46:08.0218 2156  [ B26B1801356760841C3BC69F9F91537F ] C:\Windows\System32\WlS0WndH.dll
16:46:08.0218 2156  C:\Windows\System32\WlS0WndH.dll - ok
16:46:08.0221 2156  [ 0D9764D58C5EFD672B7184854B152E5E ] C:\Windows\System32\winsta.dll
16:46:08.0221 2156  C:\Windows\System32\winsta.dll - ok
16:46:08.0223 2156  [ 9CEAD32E79A62150FE9F8557E58E008B ] C:\Windows\System32\sxs.dll
16:46:08.0223 2156  C:\Windows\System32\sxs.dll - ok
16:46:08.0225 2156  [ 784FA3DF338E2E8F5F0389D6FAC428AF ] C:\Windows\System32\cryptbase.dll
16:46:08.0225 2156  C:\Windows\System32\cryptbase.dll - ok
16:46:08.0227 2156  [ 90499F3163A9F815CF196A205EA3CD5D ] C:\Windows\System32\apphelp.dll
16:46:08.0227 2156  C:\Windows\System32\apphelp.dll - ok
16:46:08.0230 2156  [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\System32\services.exe
16:46:08.0230 2156  C:\Windows\System32\services.exe - ok
16:46:08.0232 2156  [ C118A82CD78818C29AB228366EBF81C3 ] C:\Windows\System32\lsass.exe
16:46:08.0232 2156  C:\Windows\System32\lsass.exe - ok
16:46:08.0233 2156  [ 3A0CE5FE781708CD6ABD55313607EC8B ] C:\Windows\System32\sspisrv.dll
16:46:08.0233 2156  C:\Windows\System32\sspisrv.dll - ok
16:46:08.0236 2156  [ 9662EE182644511439F1C53745DC1C88 ] C:\Windows\System32\lsm.exe
16:46:08.0236 2156  C:\Windows\System32\lsm.exe - ok
16:46:08.0238 2156  [ B66BC8B20B7F33975865B1DF99783FD8 ] C:\Windows\System32\sspicli.dll
16:46:08.0238 2156  C:\Windows\System32\sspicli.dll - ok
16:46:08.0240 2156  [ 66A6063D0BAAD3F7B2B9868859E0743B ] C:\Windows\System32\lsasrv.dll
16:46:08.0241 2156  C:\Windows\System32\lsasrv.dll - ok
16:46:08.0243 2156  [ E914A50A151DFFE63D3935226DB5E2C1 ] C:\Windows\System32\scext.dll
16:46:08.0243 2156  C:\Windows\System32\scext.dll - ok
16:46:08.0247 2156  [ 68083118797CAF30FB2EA3E71494D67E ] C:\Windows\System32\sysntfy.dll
16:46:08.0247 2156  C:\Windows\System32\sysntfy.dll - ok
16:46:08.0249 2156  [ DEE7267C5D232A3B816866872CE199E6 ] C:\Windows\System32\wmsgapi.dll
16:46:08.0249 2156  C:\Windows\System32\wmsgapi.dll - ok
16:46:08.0252 2156  [ 0144D8D75A0B12938AEEE859E3310A46 ] C:\Windows\System32\secur32.dll
16:46:08.0252 2156  C:\Windows\System32\secur32.dll - ok
16:46:08.0254 2156  [ BBCDF350817BA86416C0F06B6981BE8D ] C:\Windows\System32\scesrv.dll
16:46:08.0254 2156  C:\Windows\System32\scesrv.dll - ok
16:46:08.0256 2156  [ 3A9C9BAF610B0DD4967086040B3B62A9 ] C:\Windows\System32\srvcli.dll
16:46:08.0256 2156  C:\Windows\System32\srvcli.dll - ok
16:46:08.0258 2156  [ A744BA6E04C8AA4592818178DBF89521 ] C:\Windows\System32\samsrv.dll
16:46:08.0258 2156  C:\Windows\System32\samsrv.dll - ok
16:46:08.0261 2156  [ 3A061472B38233BAFF9CFEFF2E49C46B ] C:\Windows\System32\cryptdll.dll
16:46:08.0261 2156  C:\Windows\System32\cryptdll.dll - ok
16:46:08.0263 2156  [ 3C073B0C596A0AF84933E7406766B040 ] C:\Windows\System32\wevtapi.dll
16:46:08.0263 2156  C:\Windows\System32\wevtapi.dll - ok
16:46:08.0265 2156  [ 7FBEBD2229EA5FD48D41B199EC2D541C ] C:\Windows\System32\authz.dll
16:46:08.0265 2156  C:\Windows\System32\authz.dll - ok
16:46:08.0268 2156  [ 86FE1B1F8FD42CD0DB641AB1CDB13093 ] C:\Windows\System32\cngaudit.dll
16:46:08.0268 2156  C:\Windows\System32\cngaudit.dll - ok
16:46:08.0270 2156  [ B9A95365E52F421A20E1501935FADDA5 ] C:\Windows\System32\bcrypt.dll
16:46:08.0270 2156  C:\Windows\System32\bcrypt.dll - ok
16:46:08.0272 2156  [ 5F3307352216618221A17CFEF273EEE2 ] C:\Windows\System32\ncrypt.dll
16:46:08.0272 2156  C:\Windows\System32\ncrypt.dll - ok
16:46:08.0274 2156  [ 02B64609F865A39365FF88580DF11738 ] C:\Windows\System32\msprivs.dll
16:46:08.0275 2156  C:\Windows\System32\msprivs.dll - ok
16:46:08.0277 2156  [ C6505DE3561537BA1004D638C2F93F2F ] C:\Windows\System32\netjoin.dll
16:46:08.0277 2156  C:\Windows\System32\netjoin.dll - ok
16:46:08.0279 2156  [ 50532FCD7ECF02DD169CE5C485F02534 ] C:\Windows\System32\negoexts.dll
16:46:08.0279 2156  C:\Windows\System32\negoexts.dll - ok
16:46:08.0281 2156  [ 44E1A196DFCB53B01FE4B855C3B56A15 ] C:\Windows\System32\kerberos.dll
16:46:08.0282 2156  C:\Windows\System32\kerberos.dll - ok
16:46:08.0284 2156  [ D0C2FBB6D97416B0166478FC7AE2B212 ] C:\Windows\System32\cryptsp.dll
16:46:08.0284 2156  C:\Windows\System32\cryptsp.dll - ok
16:46:08.0286 2156  [ 1D5185A4C7E6695431AE4B55C3D7D333 ] C:\Windows\System32\mswsock.dll
16:46:08.0286 2156  C:\Windows\System32\mswsock.dll - ok
16:46:08.0289 2156  [ EF12B8385AA2849999008A977918F96B ] C:\Windows\System32\msv1_0.dll
16:46:08.0289 2156  C:\Windows\System32\msv1_0.dll - ok
16:46:08.0291 2156  [ EC7CBFF96B05ECF3D366355B3C64ADCF ] C:\Windows\System32\wship6.dll
16:46:08.0291 2156  C:\Windows\System32\wship6.dll - ok
16:46:08.0293 2156  [ AA339DD8BB128EF66660DFBBB59043D3 ] C:\Windows\System32\netlogon.dll
16:46:08.0293 2156  C:\Windows\System32\netlogon.dll - ok
16:46:08.0296 2156  [ 492D07D79E7024CA310867B526D9636D ] C:\Windows\System32\dnsapi.dll
16:46:08.0296 2156  C:\Windows\System32\dnsapi.dll - ok
16:46:08.0298 2156  [ 8FFE297B8449386E7B6851458B6E474E ] C:\Windows\System32\logoncli.dll
16:46:08.0298 2156  C:\Windows\System32\logoncli.dll - ok
16:46:08.0300 2156  [ 1573C45E65DE32B1BC3572634F8F1E8E ] C:\Windows\System32\schannel.dll
16:46:08.0300 2156  C:\Windows\System32\schannel.dll - ok
16:46:08.0302 2156  [ 95FB6CA4374E343DDD653FCC43F9D26B ] C:\Windows\System32\wdigest.dll
16:46:08.0303 2156  C:\Windows\System32\wdigest.dll - ok
16:46:08.0305 2156  [ 5D8874A8C11DDDDE29E12DE0E2013493 ] C:\Windows\System32\rsaenh.dll
16:46:08.0305 2156  C:\Windows\System32\rsaenh.dll - ok
16:46:08.0308 2156  [ 8A25506B6948EFBD5A7F37E53CCD36D9 ] C:\Windows\System32\TSpkg.dll
16:46:08.0308 2156  C:\Windows\System32\TSpkg.dll - ok
16:46:08.0310 2156  [ E08088A97F95345E181C3DFCE2C615EF ] C:\Windows\System32\pku2u.dll
16:46:08.0310 2156  C:\Windows\System32\pku2u.dll - ok
16:46:08.0312 2156  [ D6C7780A364C6BBACFA796BAB9F1B374 ] C:\Windows\System32\bcryptprimitives.dll
16:46:08.0312 2156  C:\Windows\System32\bcryptprimitives.dll - ok
16:46:08.0315 2156  [ 90BDEFC5DF334E5100EAA781D798DE1A ] C:\Windows\System32\efslsaext.dll
16:46:08.0315 2156  C:\Windows\System32\efslsaext.dll - ok
16:46:08.0317 2156  [ 52D3D5E3586988D4D9E34ACAAC33105C ] C:\Windows\System32\credssp.dll
16:46:08.0317 2156  C:\Windows\System32\credssp.dll - ok
16:46:08.0319 2156  [ ED78427259134C63ED69804D2132B86C ] C:\Windows\System32\scecli.dll
16:46:08.0319 2156  C:\Windows\System32\scecli.dll - ok
16:46:08.0321 2156  [ 7CC7DF5B654DA579613F811D8C637E29 ] C:\Windows\System32\ubpm.dll
16:46:08.0321 2156  C:\Windows\System32\ubpm.dll - ok
16:46:08.0324 2156  [ C78655BC80301D76ED4FEF1C1EA40A7D ] C:\Windows\System32\svchost.exe
16:46:08.0324 2156  C:\Windows\System32\svchost.exe - ok
16:46:08.0326 2156  [ 25FBDEF06C4D92815B353F6E792C8129 ] C:\Windows\System32\umpnpmgr.dll
16:46:08.0326 2156  C:\Windows\System32\umpnpmgr.dll - ok
16:46:08.0329 2156  [ E6EB44ABAAF1F330119F854856C53EBE ] C:\Windows\System32\SPInf.dll
16:46:08.0329 2156  C:\Windows\System32\SPInf.dll - ok
16:46:08.0331 2156  [ CD1B5AD07E5F7FEF30E055DCC9E96180 ] C:\Windows\System32\devrtl.dll
16:46:08.0331 2156  C:\Windows\System32\devrtl.dll - ok
16:46:08.0333 2156  [ 9C9307C95671AC962F3D6EB3A4A89BAE ] C:\Windows\System32\gpapi.dll
16:46:08.0333 2156  C:\Windows\System32\gpapi.dll - ok
16:46:08.0335 2156  [ 7A17485DC7D8A7AC81321A42CD034519 ] C:\Windows\System32\userenv.dll
16:46:08.0335 2156  C:\Windows\System32\userenv.dll - ok
16:46:08.0338 2156  [ F6C011B46FAEEF33536B2E80F48B5CBE ] C:\Windows\System32\pcwum.dll
16:46:08.0338 2156  C:\Windows\System32\pcwum.dll - ok
16:46:08.0340 2156  [ 6BA9D927DDED70BD1A9CADED45F8B184 ] C:\Windows\System32\umpo.dll
16:46:08.0340 2156  C:\Windows\System32\umpo.dll - ok
16:46:08.0342 2156  [ 716175021BDA290504CE434273F666BC ] C:\Windows\System32\powrprof.dll
16:46:08.0342 2156  C:\Windows\System32\powrprof.dll - ok
16:46:08.0345 2156  [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] C:\Windows\System32\drivers\luafv.sys
16:46:08.0345 2156  C:\Windows\System32\drivers\luafv.sys - ok
16:46:08.0347 2156  [ 385F416318EE00FED8777C05C7AC86D0 ] C:\PROGRA~1\ENIGMA~1\SPYHUN~1\SH4SER~1.EXE
16:46:08.0347 2156  C:\PROGRA~1\ENIGMA~1\SPYHUN~1\SH4SER~1.EXE - ok
16:46:08.0350 2156  [ 3EF431D69804369EE22879C229592257 ] C:\PROGRA~1\ENIGMA~1\SPYHUN~1\Common.dll
16:46:08.0350 2156  C:\PROGRA~1\ENIGMA~1\SPYHUN~1\Common.dll - ok
16:46:08.0352 2156  [ AB886378EEB55C6C75B4F2D14B6C869F ] C:\Windows\System32\drivers\WUDFPf.sys
16:46:08.0352 2156  C:\Windows\System32\drivers\WUDFPf.sys - ok
16:46:08.0355 2156  [ 4E70B5247914426722621180B8764514 ] C:\Windows\System32\nvvsvc.exe
16:46:08.0355 2156  C:\Windows\System32\nvvsvc.exe - ok
16:46:08.0357 2156  [ BD3674BE7FC9D8D3732C83E8499576ED ] C:\Windows\System32\wtsapi32.dll
16:46:08.0357 2156  C:\Windows\System32\wtsapi32.dll - ok
16:46:08.0359 2156  [ 5C627D1B1138676C0A7AB2C2C190D123 ] C:\Windows\System32\rpcss.dll
16:46:08.0359 2156  C:\Windows\System32\rpcss.dll - ok
16:46:08.0362 2156  [ E4DC58CF7B3EA515AE917FF0D402A7BB ] C:\Windows\System32\RpcEpMap.dll
16:46:08.0362 2156  C:\Windows\System32\RpcEpMap.dll - ok
16:46:08.0364 2156  [ 31559F3244C6BC00A52030CAA83B6B91 ] C:\Windows\System32\WSHTCPIP.DLL
16:46:08.0364 2156  C:\Windows\System32\WSHTCPIP.DLL - ok
16:46:08.0366 2156  [ 16E964ABF6D1E0F0CC7822FCA9BA754D ] C:\Windows\System32\wshqos.dll
16:46:08.0366 2156  C:\Windows\System32\wshqos.dll - ok
16:46:08.0369 2156  [ 9AD9E06F8656F296D91FAE8EE5B95A27 ] C:\Windows\System32\FirewallAPI.dll
16:46:08.0369 2156  C:\Windows\System32\FirewallAPI.dll - ok
16:46:08.0371 2156  [ 715F03B4C7223349768013EA95D9E5B7 ] C:\Windows\System32\LogonUI.exe
16:46:08.0371 2156  C:\Windows\System32\LogonUI.exe - ok
16:46:08.0374 2156  [ 0BEE002C68E28CE6DA161DCF1376D7D7 ] C:\Windows\System32\authui.dll
16:46:08.0374 2156  C:\Windows\System32\authui.dll - ok
16:46:08.0376 2156  [ 94E026870A55AAEAFF7853C1754091E9 ] C:\Windows\System32\version.dll
16:46:08.0376 2156  C:\Windows\System32\version.dll - ok
16:46:08.0378 2156  [ 6011714C8C5C55CBFFAD24D61E879FBD ] C:\Windows\System32\wevtsvc.dll
16:46:08.0378 2156  C:\Windows\System32\wevtsvc.dll - ok
16:46:08.0381 2156  [ B3BFBD758506ECB50C5804AAA76318F9 ] C:\Windows\System32\cryptui.dll
16:46:08.0381 2156  C:\Windows\System32\cryptui.dll - ok
16:46:08.0383 2156  [ 7FA8FDC2C2A27817FD0F624E78D3B50C ] C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac\comctl32.dll
16:46:08.0383 2156  C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac\comctl32.dll - ok
16:46:08.0386 2156  [ F23FEF6D569FCE88671949894A8BECF1 ] C:\Windows\System32\audiosrv.dll
16:46:08.0386 2156  C:\Windows\System32\audiosrv.dll - ok
16:46:08.0388 2156  [ 78A1E65207484B7F8D3217507745F47C ] C:\Windows\System32\avrt.dll
16:46:08.0388 2156  C:\Windows\System32\avrt.dll - ok
16:46:08.0391 2156  [ E40E80D0304A73E8D269F7141D77250B ] C:\Windows\System32\mmcss.dll
16:46:08.0391 2156  C:\Windows\System32\mmcss.dll - ok
16:46:08.0393 2156  [ C4C183E6551084039EC862DA1C945E3D ] C:\Windows\System32\FntCache.dll
16:46:08.0393 2156  C:\Windows\System32\FntCache.dll - ok
16:46:08.0395 2156  [ 5F28111C648F1E24F7DBC87CDEB091B8 ] C:\Windows\System32\netprofm.dll
16:46:08.0395 2156  C:\Windows\System32\netprofm.dll - ok
16:46:08.0398 2156  [ 227E2C382A1E02F8D4965E664D3BBE43 ] C:\Windows\System32\MMDevAPI.dll
16:46:08.0398 2156  C:\Windows\System32\MMDevAPI.dll - ok
16:46:08.0400 2156  [ 588CD0C78A7FAAE4186B5EEA0AF3ED67 ] C:\Windows\System32\adtschema.dll
16:46:08.0400 2156  C:\Windows\System32\adtschema.dll - ok
16:46:08.0403 2156  [ 4E9C2DB10F7E6AE91BF761139D4B745B ] C:\Windows\System32\shacct.dll
16:46:08.0403 2156  C:\Windows\System32\shacct.dll - ok
16:46:08.0405 2156  [ F06BB4E336EA57511FDBAFAFCC47DE62 ] C:\Windows\System32\propsys.dll
16:46:08.0405 2156  C:\Windows\System32\propsys.dll - ok
16:46:08.0407 2156  [ 50544D04AD845C43130B70212EC05CCD ] C:\Windows\System32\microsoft-windows-kernel-power-events.dll
16:46:08.0407 2156  C:\Windows\System32\microsoft-windows-kernel-power-events.dll - ok
16:46:08.0410 2156  [ B1DF2D87DC8BF6072699AC8301B37796 ] C:\Windows\System32\WUDFPlatform.dll
16:46:08.0410 2156  C:\Windows\System32\WUDFPlatform.dll - ok
16:46:08.0412 2156  [ 5B3EBFC3DA142324B388DDCC4465E1FF ] C:\Windows\System32\samlib.dll
16:46:08.0412 2156  C:\Windows\System32\samlib.dll - ok
16:46:08.0415 2156  [ 54FFC9C8898113ACE189D4AA7199D2C1 ] C:\Windows\System32\MPSSVC.dll
16:46:08.0415 2156  C:\Windows\System32\MPSSVC.dll - ok
16:46:08.0417 2156  [ D29E998E8277666982B4F0303BF4E7AF ] C:\Windows\System32\uxtheme.dll
16:46:08.0417 2156  C:\Windows\System32\uxtheme.dll - ok
16:46:08.0419 2156  [ DA6B67270FD9DB3697B20FCE94950741 ] C:\Windows\System32\drivers\fltMgr.sys
16:46:08.0419 2156  C:\Windows\System32\drivers\fltMgr.sys - ok
16:46:08.0422 2156  [ 179E8401224D557ECFF3695F2016EA5B ] C:\Windows\winsxs\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_2b253c8271ec7765\GdiPlus.dll
16:46:08.0422 2156  C:\Windows\winsxs\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_2b253c8271ec7765\GdiPlus.dll - ok
16:46:08.0424 2156  [ A3DB3C17EE6CAE65D53602B4E80BCCBC ] C:\Windows\System32\PSHED.DLL
16:46:08.0425 2156  C:\Windows\System32\PSHED.DLL - ok
16:46:08.0427 2156  [ 582AC6D9873E31DFA28A4547270862DD ] C:\Windows\System32\QAGENTRT.DLL
16:46:08.0427 2156  C:\Windows\System32\QAGENTRT.DLL - ok
16:46:08.0429 2156  [ D5CCA1453B98A5801E6D5FF0FF89DC6C ] C:\Windows\System32\audiodg.exe
16:46:08.0429 2156  C:\Windows\System32\audiodg.exe - ok
16:46:08.0432 2156  [ 1F4492FE41767CDB8B89D17655847CDD ] C:\Windows\System32\ntmarta.dll
16:46:08.0432 2156  C:\Windows\System32\ntmarta.dll - ok
16:46:08.0434 2156  [ B0945E538CF906BBDDC5A11C8EE868CC ] C:\Windows\System32\microsoft-windows-kernel-processor-power-events.dll
16:46:08.0434 2156  C:\Windows\System32\microsoft-windows-kernel-processor-power-events.dll - ok
16:46:08.0437 2156  [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] C:\Windows\System32\gpsvc.dll
16:46:08.0437 2156  C:\Windows\System32\gpsvc.dll - ok
16:46:08.0439 2156  [ FF819F4345099B8FA6F6B3C5D0BF1F68 ] C:\Windows\System32\mssha.dll
16:46:08.0439 2156  C:\Windows\System32\mssha.dll - ok
16:46:08.0441 2156  [ 3CB6A7286422C72C34DAB54A5DFF1A34 ] C:\Windows\System32\dui70.dll
16:46:08.0441 2156  C:\Windows\System32\dui70.dll - ok
16:46:08.0443 2156  [ 46BB91A169B9B31FF44EB04C48EC1D41 ] C:\Windows\System32\nlaapi.dll
16:46:08.0443 2156  C:\Windows\System32\nlaapi.dll - ok
16:46:08.0446 2156  [ 53E83F1F6CF9D62F32801CF66D8352A8 ] C:\Windows\System32\profsvc.dll
16:46:08.0446 2156  C:\Windows\System32\profsvc.dll - ok
16:46:08.0448 2156  [ 58775492FFD419248B08325E583C527F ] C:\Windows\System32\atl.dll
16:46:08.0448 2156  C:\Windows\System32\atl.dll - ok
16:46:08.0450 2156  [ A77BE7CB3222B4FB0AC6C71D1C2698D4 ] C:\Windows\System32\dsrole.dll
16:46:08.0450 2156  C:\Windows\System32\dsrole.dll - ok
16:46:08.0453 2156  [ F0344071948D1A1FA732231785A0664C ] C:\Windows\System32\themeservice.dll
16:46:08.0453 2156  C:\Windows\System32\themeservice.dll - ok
16:46:08.0455 2156  [ BE097F5BB10F9079FCEB2DC4E7E20F02 ] C:\Windows\System32\slc.dll
16:46:08.0455 2156  C:\Windows\System32\slc.dll - ok
16:46:08.0457 2156  [ 4166F82BE4D24938977DD1746BE9B8A0 ] C:\Windows\System32\es.dll
16:46:08.0457 2156  C:\Windows\System32\es.dll - ok
16:46:08.0459 2156  [ 8CCDE014A4CDF84564E03ACE064CA753 ] C:\Windows\System32\duser.dll
16:46:08.0459 2156  C:\Windows\System32\duser.dll - ok
16:46:08.0462 2156  [ 1A47D52E303B7543E4E6026595B95422 ] C:\Windows\System32\comres.dll
16:46:08.0462 2156  C:\Windows\System32\comres.dll - ok
16:46:08.0464 2156  [ D7F1EF374A90709B31591823B002F918 ] C:\Windows\System32\SndVolSSO.dll
16:46:08.0464 2156  C:\Windows\System32\SndVolSSO.dll - ok
16:46:08.0466 2156  [ 896F15A6434D93EDB42519D5E18E6B50 ] C:\Windows\System32\hid.dll
16:46:08.0466 2156  C:\Windows\System32\hid.dll - ok
16:46:08.0468 2156  [ C32AB8FA018EF34C0F113BD501436D21 ] C:\Windows\System32\Sens.dll
16:46:08.0468 2156  C:\Windows\System32\Sens.dll - ok
16:46:08.0471 2156  [ EDBB23CBCF2CDF727D64FF9B51A6070E ] C:\Windows\System32\uxsms.dll
16:46:08.0471 2156  C:\Windows\System32\uxsms.dll - ok
16:46:08.0473 2156  [ B20F051B03A966392364C83F009F7D17 ] C:\Windows\System32\WUDFSvc.dll
16:46:08.0473 2156  C:\Windows\System32\WUDFSvc.dll - ok
16:46:08.0475 2156  [ EF2AE43BCD46ABB13FC3E5B2B1935C73 ] C:\Windows\System32\winmm.dll
16:46:08.0475 2156  C:\Windows\System32\winmm.dll - ok
16:46:08.0478 2156  [ 1538831CF8AD2979A04C423779465827 ] C:\Windows\System32\drivers\lltdio.sys
16:46:08.0478 2156  C:\Windows\System32\drivers\lltdio.sys - ok
16:46:08.0480 2156  [ 1473768973453DE50DC738C2955FC4DD ] C:\Windows\System32\wdmaud.drv
16:46:08.0480 2156  C:\Windows\System32\wdmaud.drv - ok
16:46:08.0482 2156  [ 1EA3749C4114DB3E3161156FFFFA6B33 ] C:\Windows\System32\drivers\nwifi.sys
16:46:08.0482 2156  C:\Windows\System32\drivers\nwifi.sys - ok
16:46:08.0484 2156  [ 8560FFFC8EB3A806DCD4F82252CFC8C6 ] C:\Windows\System32\ksuser.dll
16:46:08.0484 2156  C:\Windows\System32\ksuser.dll - ok
16:46:08.0486 2156  [ DA1B7075260F3872585BFCDD668C648B ] C:\Windows\System32\dwmapi.dll
16:46:08.0486 2156  C:\Windows\System32\dwmapi.dll - ok
16:46:08.0489 2156  [ 136185F9FB2CC61E573E676AA5402356 ] C:\Windows\System32\drivers\ndisuio.sys
16:46:08.0489 2156  C:\Windows\System32\drivers\ndisuio.sys - ok
16:46:08.0491 2156  [ DDC86E4F8E7456261E637E3552E804FF ] C:\Windows\System32\drivers\rspndr.sys
16:46:08.0491 2156  C:\Windows\System32\drivers\rspndr.sys - ok
16:46:08.0494 2156  [ F993A32249B66C9D622EA5592A8B76B8 ] C:\Windows\System32\lmhsvc.dll
16:46:08.0494 2156  C:\Windows\System32\lmhsvc.dll - ok
16:46:08.0496 2156  [ 2B81776DA02017A37FE26C662827470E ] C:\Windows\System32\IPHLPAPI.DLL
16:46:08.0496 2156  C:\Windows\System32\IPHLPAPI.DLL - ok
16:46:08.0498 2156  [ F9EC845C5EECF20E9A67F9F805F2EF1F ] C:\Windows\System32\keyiso.dll
16:46:08.0499 2156  C:\Windows\System32\keyiso.dll - ok
16:46:08.0501 2156  [ B73A6E4B319AFFE64582AC5C1801BB3F ] C:\Windows\System32\nrpsrv.dll
16:46:08.0501 2156  C:\Windows\System32\nrpsrv.dll - ok
16:46:08.0503 2156  [ 4C9210E8F4E052F6A4EB87716DA0C24C ] C:\Windows\System32\winnsi.dll
16:46:08.0503 2156  C:\Windows\System32\winnsi.dll - ok
16:46:08.0505 2156  [ 6F8B48F3D343E4B186AB6A9E302B7E16 ] C:\Windows\System32\xmllite.dll
16:46:08.0505 2156  C:\Windows\System32\xmllite.dll - ok
16:46:08.0508 2156  [ E2DDA8726DA9CB5B2C4000C9018A9633 ] C:\Windows\System32\eapsvc.dll
16:46:08.0508 2156  C:\Windows\System32\eapsvc.dll - ok
16:46:08.0510 2156  [ D54BFDF3E0C953F823B3D0BFE4732528 ] C:\Windows\System32\nsisvc.dll
16:46:08.0510 2156  C:\Windows\System32\nsisvc.dll - ok
16:46:08.0513 2156  [ 87356377F31DA5F20A833811CD59499C ] C:\Windows\System32\eapphost.dll
16:46:08.0513 2156  C:\Windows\System32\eapphost.dll - ok
16:46:08.0515 2156  [ 16835866AAA693C7D7FCEBA8FFF706E4 ] C:\Windows\System32\dnsrslvr.dll
16:46:08.0515 2156  C:\Windows\System32\dnsrslvr.dll - ok
16:46:08.0517 2156  [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] C:\Windows\System32\dhcpcore.dll
16:46:08.0517 2156  C:\Windows\System32\dhcpcore.dll - ok
16:46:08.0520 2156  [ 885D0942E0F28DB90919BE3129ECF279 ] C:\Windows\System32\dnsext.dll
16:46:08.0520 2156  C:\Windows\System32\dnsext.dll - ok
16:46:08.0522 2156  [ 0040C486584A8E582C861CFB57AB5387 ] C:\Windows\System32\FWPUCLNT.DLL
16:46:08.0522 2156  C:\Windows\System32\FWPUCLNT.DLL - ok
16:46:08.0524 2156  [ 3CC16A849E6092E43909F48EF0E60306 ] C:\Windows\System32\dhcpcore6.dll
16:46:08.0524 2156  C:\Windows\System32\dhcpcore6.dll - ok
16:46:08.0527 2156  [ F568F7C08458D69E4FCD8675BBB107E4 ] C:\Windows\System32\dhcpcsvc.dll
16:46:08.0527 2156  C:\Windows\System32\dhcpcsvc.dll - ok
16:46:08.0529 2156  [ 3C06D5A929B798D0B13F6481242A0FD2 ] C:\Windows\System32\dhcpcsvc6.dll
16:46:08.0529 2156  C:\Windows\System32\dhcpcsvc6.dll - ok
16:46:08.0531 2156  [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] C:\Windows\System32\wlansvc.dll
16:46:08.0531 2156  C:\Windows\System32\wlansvc.dll - ok
16:46:08.0534 2156  [ 9FCA3A84338ADEF2AFF67CDA46EF8539 ] C:\Windows\System32\umb.dll
16:46:08.0534 2156  C:\Windows\System32\umb.dll - ok
16:46:08.0536 2156  [ DC220AE6F64819099F7EBD6F137E32E7 ] C:\Windows\System32\AudioSes.dll
16:46:08.0536 2156  C:\Windows\System32\AudioSes.dll - ok
16:46:08.0538 2156  [ 10AC5CE9F78DC281A1BBD9B8CC587B8A ] C:\Windows\System32\msacm32.dll
16:46:08.0538 2156  C:\Windows\System32\msacm32.dll - ok
16:46:08.0541 2156  [ 1B7C3A37362C7B2890168C5FC61C8D9B ] C:\Windows\System32\msacm32.drv
16:46:08.0541 2156  C:\Windows\System32\msacm32.drv - ok
16:46:08.0543 2156  [ CA2A0750ED830678997695FF61B04C30 ] C:\Windows\System32\midimap.dll
16:46:08.0543 2156  C:\Windows\System32\midimap.dll - ok
16:46:08.0546 2156  [ A648C4A06DE367065B24056D067B4460 ] C:\Windows\System32\wlanmsm.dll
16:46:08.0546 2156  C:\Windows\System32\wlanmsm.dll - ok
16:46:08.0548 2156  [ 06A1386B6E3A0CBC368665C1840906F4 ] C:\Windows\System32\wlansec.dll
16:46:08.0548 2156  C:\Windows\System32\wlansec.dll - ok
16:46:08.0550 2156  [ 5EDBB34736DD7AC1A73CF8792A835E10 ] C:\Windows\System32\AudioEng.dll
16:46:08.0550 2156  C:\Windows\System32\AudioEng.dll - ok
16:46:08.0553 2156  [ 65522E77A1360DBC8D199DA3BF5EFFE4 ] C:\Windows\System32\eappprxy.dll
16:46:08.0553 2156  C:\Windows\System32\eappprxy.dll - ok
16:46:08.0555 2156  [ 73FCB7919DEE80EE556F2E498594EBAE ] C:\Windows\System32\onex.dll
16:46:08.0555 2156  C:\Windows\System32\onex.dll - ok
16:46:08.0557 2156  [ C1395286B822E306B4FE1568A8A77813 ] C:\Windows\System32\AUDIOKSE.dll
16:46:08.0557 2156  C:\Windows\System32\AUDIOKSE.dll - ok
16:46:08.0560 2156  [ BDDF242A49E7B7DC5CCEC291BCE53ACB ] C:\Windows\System32\WindowsCodecs.dll
16:46:08.0560 2156  C:\Windows\System32\WindowsCodecs.dll - ok
16:46:08.0562 2156  [ 0D753307D274F3688BD21C377B616700 ] C:\Windows\System32\eappcfg.dll
16:46:08.0562 2156  C:\Windows\System32\eappcfg.dll - ok
16:46:08.0565 2156  [ 97E43F324BE1503CB2FFB058534688DA ] C:\Windows\System32\l2gpstore.dll
16:46:08.0565 2156  C:\Windows\System32\l2gpstore.dll - ok
16:46:08.0567 2156  [ 730BF204A595D5B6D7DC57A247CC741C ] C:\Windows\System32\wlgpclnt.dll
16:46:08.0567 2156  C:\Windows\System32\wlgpclnt.dll - ok
16:46:08.0569 2156  [ 7F1B4C6FF3B85F9ADF74055187B8A22C ] C:\Windows\System32\wlanutil.dll
16:46:08.0569 2156  C:\Windows\System32\wlanutil.dll - ok
16:46:08.0572 2156  [ 853A17F7CED7ADE5A177520D5EAEC895 ] C:\Windows\System32\RtkAPO64.dll
16:46:08.0572 2156  C:\Windows\System32\RtkAPO64.dll - ok
16:46:08.0574 2156  [ 7D5645EE0EA77D539828433D9B95F5EB ] C:\Windows\System32\WinSCard.dll
16:46:08.0574 2156  C:\Windows\System32\WinSCard.dll - ok
16:46:08.0577 2156  [ 99B91C5D2FCEF218CAD3600ECB62A799 ] C:\Windows\System32\msxml6.dll
16:46:08.0577 2156  C:\Windows\System32\msxml6.dll - ok
16:46:08.0579 2156  [ 9F2BACD5E1776A4BB7CC0EC3C3A4F96D ] C:\Windows\System32\winbrand.dll
16:46:08.0579 2156  C:\Windows\System32\winbrand.dll - ok
16:46:08.0581 2156  [ C2762A57DF0EE85E63CE4893C5215313 ] C:\Windows\System32\VaultCredProvider.dll
16:46:08.0581 2156  C:\Windows\System32\VaultCredProvider.dll - ok
16:46:08.0584 2156  [ CA2985996BB49924B677113DF95CFEA7 ] C:\Windows\System32\SmartcardCredentialProvider.dll
16:46:08.0584 2156  C:\Windows\System32\SmartcardCredentialProvider.dll - ok
16:46:08.0586 2156  [ BF352E73615F5461AA6884472435A544 ] C:\Windows\System32\BioCredProv.dll
16:46:08.0586 2156  C:\Windows\System32\BioCredProv.dll - ok
16:46:08.0589 2156  [ 796B8123A7859AFD3A4AE10514DBAEB5 ] C:\Windows\System32\winbio.dll
16:46:08.0589 2156  C:\Windows\System32\winbio.dll - ok
16:46:08.0591 2156  [ CC0AB40F02D2C2A12209715A3C1B07B8 ] C:\Windows\System32\credui.dll
16:46:08.0591 2156  C:\Windows\System32\credui.dll - ok
16:46:08.0593 2156  [ EEEA40F0EDB0A6E5359E539E15D0BC77 ] C:\Windows\System32\netapi32.dll
16:46:08.0593 2156  C:\Windows\System32\netapi32.dll - ok
16:46:08.0596 2156  [ 6CECA4C6A489C9B2E6073AFDAAE3F607 ] C:\Windows\System32\netutils.dll
16:46:08.0596 2156  C:\Windows\System32\netutils.dll - ok
16:46:08.0598 2156  [ FC51229C7D4AFA0D6F186133728B95AB ] C:\Windows\System32\samcli.dll
16:46:08.0598 2156  C:\Windows\System32\samcli.dll - ok
16:46:08.0600 2156  [ 44B9C66177651F3F53C87B665D58D17A ] C:\Windows\System32\vaultcli.dll
16:46:08.0600 2156  C:\Windows\System32\vaultcli.dll - ok
16:46:08.0603 2156  [ 3C91392D448F6E5D525A85B7550D8BA9 ] C:\Windows\System32\wkscli.dll
16:46:08.0603 2156  C:\Windows\System32\wkscli.dll - ok
16:46:08.0605 2156  [ 972C3301DB3DA91AE06A95F6B4160B1B ] C:\Windows\System32\certCredProvider.dll
16:46:08.0605 2156  C:\Windows\System32\certCredProvider.dll - ok
16:46:08.0608 2156  [ 87FA0C48C3B2E9FEE518818FE26B15B5 ] C:\Windows\System32\rasplap.dll
16:46:08.0608 2156  C:\Windows\System32\rasplap.dll - ok
16:46:08.0610 2156  [ 6F3C559B82F2912354BE5B098744CC8C ] C:\Windows\System32\WMALFXGFXDSP.dll
16:46:08.0610 2156  C:\Windows\System32\WMALFXGFXDSP.dll - ok
16:46:08.0612 2156  [ 019CD868461B646E09BDF04474C19341 ] C:\Windows\System32\rasapi32.dll
16:46:08.0612 2156  C:\Windows\System32\rasapi32.dll - ok
16:46:08.0615 2156  [ AAF932B4011D14052955D4B212A4DA8D ] C:\Windows\System32\shsvcs.dll
16:46:08.0615 2156  C:\Windows\System32\shsvcs.dll - ok
16:46:08.0618 2156  [ B28DEEC597C8DEB70C744C7CF9210E3E ] C:\Windows\System32\rasman.dll
16:46:08.0618 2156  C:\Windows\System32\rasman.dll - ok
16:46:08.0620 2156  [ B53C4B69B695EDA1B7E41D35CA4244E2 ] C:\Windows\System32\rtutils.dll
16:46:08.0620 2156  C:\Windows\System32\rtutils.dll - ok
16:46:08.0623 2156  [ 54B5DCD55B223BC5DF50B82E1E9E86B1 ] C:\Windows\System32\mfplat.dll
16:46:08.0623 2156  C:\Windows\System32\mfplat.dll - ok
16:46:08.0625 2156  [ 262F6592C3299C005FD6BEC90FC4463A ] C:\Windows\System32\schedsvc.dll
16:46:08.0625 2156  C:\Windows\System32\schedsvc.dll - ok
16:46:08.0627 2156  [ BC414631876B2F28B8DAB08E849C12C5 ] C:\Windows\System32\ktmw32.dll
16:46:08.0627 2156  C:\Windows\System32\ktmw32.dll - ok
16:46:08.0630 2156  [ 945E54F23C72D37B8CD1987AF0DB63BF ] C:\Windows\System32\fveapi.dll
16:46:08.0630 2156  C:\Windows\System32\fveapi.dll - ok
16:46:08.0632 2156  [ 891ECFD08E2C538B7948CBC45106D697 ] C:\Windows\System32\fvecerts.dll
16:46:08.0632 2156  C:\Windows\System32\fvecerts.dll - ok
16:46:08.0634 2156  [ 694865362F0965779F92BCFE97712323 ] C:\Windows\System32\tbs.dll
16:46:08.0634 2156  C:\Windows\System32\tbs.dll - ok
16:46:08.0637 2156  [ 6DC4A7242F565C9E9C9CCC7BB0FA75C7 ] C:\Windows\System32\taskcomp.dll
16:46:08.0637 2156  C:\Windows\System32\taskcomp.dll - ok
16:46:08.0639 2156  [ CB2ABB2DA1E9C977302A78D86D4AE3B0 ] C:\Windows\System32\atmfd.dll
16:46:08.0639 2156  C:\Windows\System32\atmfd.dll - ok
16:46:08.0641 2156  [ 9BC8610C32C96A2983A65DC21CAFA921 ] C:\Windows\System32\UXInit.dll
16:46:08.0641 2156  C:\Windows\System32\UXInit.dll - ok
16:46:08.0644 2156  [ 0E879A03933B730D7DEA3CA90A6866D0 ] C:\Windows\System32\nvsvc64.dll
16:46:08.0644 2156  C:\Windows\System32\nvsvc64.dll - ok
16:46:08.0646 2156  [ CF636C92B762B26F0B39B38E92380A09 ] C:\Windows\System32\oleacc.dll
16:46:08.0646 2156  C:\Windows\System32\oleacc.dll - ok
16:46:08.0648 2156  [ 019BDD35DE269CB98B22DE8923C2AA3B ] C:\Windows\System32\UIAutomationCore.dll
16:46:08.0648 2156  C:\Windows\System32\UIAutomationCore.dll - ok
16:46:08.0651 2156  [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] C:\Windows\System32\drivers\http.sys
16:46:08.0651 2156  C:\Windows\System32\drivers\http.sys - ok
16:46:08.0653 2156  [ E424B3EF666B184CEE0B6871AAA8C9F6 ] C:\Windows\System32\msimg32.dll
16:46:08.0653 2156  C:\Windows\System32\msimg32.dll - ok
16:46:08.0655 2156  [ 55F002E9420C805ECFD10A5BA7179631 ] C:\Windows\System32\nvapi64.dll
16:46:08.0655 2156  C:\Windows\System32\nvapi64.dll - ok
16:46:08.0658 2156  [ 85DAA09A98C9286D4EA2BA8D0E644377 ] C:\Windows\System32\spoolsv.exe
16:46:08.0658 2156  C:\Windows\System32\spoolsv.exe - ok
16:46:08.0660 2156  [ 5AA945234E9D4CCE4F715276B9AA712C ] C:\Windows\System32\imageres.dll
16:46:08.0660 2156  C:\Windows\System32\imageres.dll - ok
16:46:08.0662 2156  [ 8269210DAF3B12BC8300631B28A2A442 ] C:\Windows\System32\wiarpc.dll
16:46:08.0662 2156  C:\Windows\System32\wiarpc.dll - ok
16:46:08.0665 2156  [ 82974D6A2FD19445CC5171FC378668A4 ] C:\Windows\System32\BFE.DLL
16:46:08.0665 2156  C:\Windows\System32\BFE.DLL - ok
16:46:08.0667 2156  [ 1B640303B936F8750FB0FFE4F164B5B5 ] C:\Windows\System32\nvsvcr.dll
16:46:08.0667 2156  C:\Windows\System32\nvsvcr.dll - ok
16:46:08.0669 2156  [ 6C02A83164F5CC0A262F4199F0871CF5 ] C:\Windows\System32\drivers\bowser.sys
16:46:08.0669 2156  C:\Windows\System32\drivers\bowser.sys - ok
16:46:08.0672 2156  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] C:\Windows\System32\drivers\mpsdrv.sys
16:46:08.0672 2156  C:\Windows\System32\drivers\mpsdrv.sys - ok
16:46:08.0674 2156  [ C67F8A962B2534224D5908D16D2AD3CE ] C:\Windows\System32\wfapigp.dll
16:46:08.0674 2156  C:\Windows\System32\wfapigp.dll - ok
16:46:08.0677 2156  [ 1834B31C749B86DAC233BBBA1C03BC48 ] C:\Windows\System32\mscms.dll
16:46:08.0677 2156  C:\Windows\System32\mscms.dll - ok
16:46:08.0679 2156  [ A5D9106A73DC88564C825D317CAC68AC ] C:\Windows\System32\drivers\mrxsmb.sys
16:46:08.0679 2156  C:\Windows\System32\drivers\mrxsmb.sys - ok
16:46:08.0682 2156  [ EA691DFDBF57451D52F7D704A8E4090E ] C:\Windows\System32\nvcpl.dll
16:46:08.0682 2156  C:\Windows\System32\nvcpl.dll - ok
16:46:08.0684 2156  [ D711B3C1D5F42C0C2415687BE09FC163 ] C:\Windows\System32\drivers\mrxsmb10.sys
16:46:08.0684 2156  C:\Windows\System32\drivers\mrxsmb10.sys - ok
16:46:08.0687 2156  [ 3AEAA8B561E63452C655DC0584922257 ] C:\Windows\System32\pcasvc.dll
16:46:08.0687 2156  C:\Windows\System32\pcasvc.dll - ok
16:46:08.0689 2156  [ 6313F223E817CC09AA41811DAA7F541D ] C:\Windows\System32\snmptrap.exe
16:46:08.0689 2156  C:\Windows\System32\snmptrap.exe - ok
16:46:08.0691 2156  [ 08C2957BB30058E663720C5606885653 ] C:\Windows\System32\iphlpsvc.dll
16:46:08.0691 2156  C:\Windows\System32\iphlpsvc.dll - ok
16:46:08.0694 2156  [ 9423E9D355C8D303E76B8CFBD8A5C30C ] C:\Windows\System32\drivers\mrxsmb20.sys
16:46:08.0694 2156  C:\Windows\System32\drivers\mrxsmb20.sys - ok
16:46:08.0696 2156  [ 851A1382EED3E3A7476DB004F4EE3E1A ] C:\Windows\System32\wkssvc.dll
16:46:08.0696 2156  C:\Windows\System32\wkssvc.dll - ok
16:46:08.0698 2156  [ 908ACB1F594274965A53926B10C81E89 ] C:\Windows\System32\provsvc.dll
16:46:08.0698 2156  C:\Windows\System32\provsvc.dll - ok
16:46:08.0701 2156  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] C:\Windows\System32\sstpsvc.dll
16:46:08.0701 2156  C:\Windows\System32\sstpsvc.dll - ok
16:46:08.0703 2156  [ 0015ACFBBDD164A8A730009908868CA7 ] C:\Windows\System32\winspool.drv
16:46:08.0703 2156  C:\Windows\System32\winspool.drv - ok
16:46:08.0706 2156  [ 5AA788D5A2C6737BB9C45933985BC1B8 ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
16:46:08.0706 2156  C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe - ok
16:46:08.0708 2156  [ E73B0F1819602CB6EF176FB78D76A47B ] C:\Windows\SysWOW64\ntdll.dll
16:46:08.0708 2156  C:\Windows\SysWOW64\ntdll.dll - ok
16:46:08.0711 2156  [ 259EB5F7D95A29842B476C5B3EB6E186 ] C:\Windows\System32\wow64.dll
16:46:08.0711 2156  C:\Windows\System32\wow64.dll - ok
16:46:08.0713 2156  [ 5674E21E82CFBEA36DDAD5DB285D6DBC ] C:\Windows\System32\wow64win.dll
16:46:08.0713 2156  C:\Windows\System32\wow64win.dll - ok
16:46:08.0716 2156  [ 3EE3AA76D8AB6D5644C4C8F34471CEB3 ] C:\Windows\System32\wow64cpu.dll
16:46:08.0716 2156  C:\Windows\System32\wow64cpu.dll - ok
16:46:08.0718 2156  [ AC0B6F41882FC6ED186962D770EBF1D2 ] C:\Windows\SysWOW64\kernel32.dll
16:46:08.0718 2156  C:\Windows\SysWOW64\kernel32.dll - ok
16:46:08.0721 2156  [ 7601305A158367EBFCB8F01DC2E12E28 ] C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.1.22\Definitions\BASHDefs\20130208.001\UMEngx86.dll
16:46:08.0721 2156  C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.1.22\Definitions\BASHDefs\20130208.001\UMEngx86.dll - ok
16:46:08.0723 2156  [ E954A79D6A754A5475582CACED1565E6 ] C:\Windows\SysWOW64\KernelBase.dll
16:46:08.0723 2156  C:\Windows\SysWOW64\KernelBase.dll - ok
16:46:08.0726 2156  [ 95E2376B3323F062EB562B8586D0F14A ] C:\Windows\SysWOW64\advapi32.dll
16:46:08.0726 2156  C:\Windows\SysWOW64\advapi32.dll - ok
16:46:08.0728 2156  [ 9DC80A8AAAAAC397BDAB3C67165A824E ] C:\Windows\SysWOW64\msvcrt.dll
16:46:08.0728 2156  C:\Windows\SysWOW64\msvcrt.dll - ok
16:46:08.0730 2156  [ C5AD8083CF94201F1F8084ECC696A8B7 ] C:\Windows\SysWOW64\rpcrt4.dll
16:46:08.0731 2156  C:\Windows\SysWOW64\rpcrt4.dll - ok
16:46:08.0733 2156  [ CFC97F07904067A1E5FAE195D534DA3A ] C:\Windows\SysWOW64\sechost.dll
16:46:08.0733 2156  C:\Windows\SysWOW64\sechost.dll - ok
16:46:08.0734 2156  [ F08F6FCD09F9BE94C37ACC1B344685FF ] C:\Windows\SysWOW64\cryptbase.dll
16:46:08.0734 2156  C:\Windows\SysWOW64\cryptbase.dll - ok
16:46:08.0737 2156  [ EDA7AD21DF8945528F01F0A86D69E524 ] C:\Windows\SysWOW64\sspicli.dll
16:46:08.0737 2156  C:\Windows\SysWOW64\sspicli.dll - ok
16:46:08.0740 2156  [ 0B3595A4FF0B36D68E5FC67FD7D70FDC ] C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcp80.dll
16:46:08.0740 2156  C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcp80.dll - ok
16:46:08.0743 2156  [ C9564CF4976E7E96B4052737AA2492B4 ] C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcr80.dll
16:46:08.0743 2156  C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcr80.dll - ok
16:46:08.0745 2156  [ D6D3AD7BF1D6F6CE9547613ED5E170A2 ] C:\Windows\SysWOW64\gdi32.dll
16:46:08.0745 2156  C:\Windows\SysWOW64\gdi32.dll - ok
16:46:08.0747 2156  [ 8CC3C111D653E96F3EA1590891491D71 ] C:\Windows\SysWOW64\shlwapi.dll
16:46:08.0747 2156  C:\Windows\SysWOW64\shlwapi.dll - ok
16:46:08.0750 2156  [ 5E0DB2D8B2750543CD2EBB9EA8E6CDD3 ] C:\Windows\SysWOW64\user32.dll
16:46:08.0750 2156  C:\Windows\SysWOW64\user32.dll - ok
16:46:08.0752 2156  [ 384721EF4024890092625E20CADFAF85 ] C:\Windows\SysWOW64\lpk.dll
16:46:08.0752 2156  C:\Windows\SysWOW64\lpk.dll - ok
16:46:08.0754 2156  [ B7230010D97787AF3D25E4C82F2B06B9 ] C:\Windows\SysWOW64\usp10.dll
16:46:08.0754 2156  C:\Windows\SysWOW64\usp10.dll - ok
16:46:08.0757 2156  [ A6F09E5669D9A19035F6D942CAA15882 ] C:\Windows\SysWOW64\imm32.dll
16:46:08.0757 2156  C:\Windows\SysWOW64\imm32.dll - ok
16:46:08.0759 2156  [ C9618BC9B2B0FD7C1138D8774795A79B ] C:\Windows\SysWOW64\msctf.dll
16:46:08.0759 2156  C:\Windows\SysWOW64\msctf.dll - ok
16:46:08.0761 2156  [ DDDD1D04D5F4360371BC99C7C476F70D ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\ASL.dll
16:46:08.0761 2156  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\ASL.dll - ok
16:46:08.0764 2156  [ 91607A5E321CF2B9043DDE0D6681A6C5 ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService_main.dll
16:46:08.0764 2156  C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService_main.dll - ok
16:46:08.0766 2156  [ 7FF15A4F092CD4A96055BA69F903E3E9 ] C:\Windows\SysWOW64\ws2_32.dll
16:46:08.0766 2156  C:\Windows\SysWOW64\ws2_32.dll - ok
16:46:08.0769 2156  [ DF13A51A5C591887D2EC6AE64CEED0FA ] C:\Windows\SysWOW64\wsock32.dll
16:46:08.0769 2156  C:\Windows\SysWOW64\wsock32.dll - ok
16:46:08.0771 2156  [ 6377051C63D5552A311935C67E9FDFDC ] C:\Windows\SysWOW64\nsi.dll
16:46:08.0771 2156  C:\Windows\SysWOW64\nsi.dll - ok
16:46:08.0773 2156  [ 10FB16B50AFFDA6D44588F3C445DC273 ] C:\Windows\SysWOW64\setupapi.dll
16:46:08.0773 2156  C:\Windows\SysWOW64\setupapi.dll - ok
16:46:08.0776 2156  [ F436E847FA799ECD75AD8C313673F450 ] C:\Windows\SysWOW64\cfgmgr32.dll
16:46:08.0776 2156  C:\Windows\SysWOW64\cfgmgr32.dll - ok
16:46:08.0778 2156  [ 6C765E82B57F2E66CE9C54AC238471D9 ] C:\Windows\SysWOW64\oleaut32.dll
16:46:08.0778 2156  C:\Windows\SysWOW64\oleaut32.dll - ok
16:46:08.0780 2156  [ 928CF7268086631F54C3D8E17238C6DD ] C:\Windows\SysWOW64\ole32.dll
16:46:08.0781 2156  C:\Windows\SysWOW64\ole32.dll - ok
16:46:08.0783 2156  [ 2EEFF4502F5E13B1BED4A04CCAD64C08 ] C:\Windows\SysWOW64\devobj.dll
16:46:08.0783 2156  C:\Windows\SysWOW64\devobj.dll - ok
16:46:08.0785 2156  [ 6A6B2EE4565A178035BE2A4FF6F2C968 ] C:\Windows\SysWOW64\wtsapi32.dll
16:46:08.0785 2156  C:\Windows\SysWOW64\wtsapi32.dll - ok
16:46:08.0788 2156  [ D15618A0FF8DBC2C5BF3726BACC75A0B ] C:\Windows\SysWOW64\userenv.dll
16:46:08.0788 2156  C:\Windows\SysWOW64\userenv.dll - ok
16:46:08.0790 2156  [ C733D233B623B7FFCE5031E4B756EE26 ] C:\Windows\SysWOW64\profapi.dll
16:46:08.0790 2156  C:\Windows\SysWOW64\profapi.dll - ok
 



Post two of two

 

16:46:08.0793 2156  [ CEF20CB83B36EC2DBB99D38DC80FC826 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\CoreFoundation.dll
16:46:08.0793 2156  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\CoreFoundation.dll - ok
16:46:08.0795 2156  [ 29E9794708DF51DB5DC89FB2E903A0F6 ] C:\Windows\SysWOW64\shell32.dll
16:46:08.0795 2156  C:\Windows\SysWOW64\shell32.dll - ok
16:46:08.0798 2156  [ 702254574E7E52052DE39408457B7149 ] C:\Windows\SysWOW64\version.dll
16:46:08.0798 2156  C:\Windows\SysWOW64\version.dll - ok
16:46:08.0800 2156  [ 15530639789C990827E594344EACC465 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\pthreadVC2.dll
16:46:08.0800 2156  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\pthreadVC2.dll - ok
16:46:08.0803 2156  [ 554BD99F802FCC7BFE7FA7102384A2D2 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\objc.dll
16:46:08.0803 2156  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\objc.dll - ok
16:46:08.0806 2156  [ F64A630C746DCEFB640FE724F911D317 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libdispatch.dll
16:46:08.0806 2156  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libdispatch.dll - ok
16:46:08.0809 2156  [ 39C821EF59F82FF6CDCCA768E5E36BBE ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\icuin40.dll
16:46:08.0809 2156  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\icuin40.dll - ok
16:46:08.0811 2156  [ 3075B86A8EE385CADA46F69386430FCF ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\icuuc40.dll
16:46:08.0811 2156  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\icuuc40.dll - ok
16:46:08.0814 2156  [ 608E159EC424C6B54D04ABFDF2E8F8B0 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\icudt40.dll
16:46:08.0814 2156  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\icudt40.dll - ok
16:46:08.0817 2156  [ 3FD15B4611D9BDA3F8013548C0ECAECA ] C:\Windows\SysWOW64\ntmarta.dll
16:46:08.0817 2156  C:\Windows\SysWOW64\ntmarta.dll - ok
16:46:08.0819 2156  [ A8BB45F9ECAD993461E0FEF8E2A99152 ] C:\Windows\SysWOW64\Wldap32.dll
16:46:08.0819 2156  C:\Windows\SysWOW64\Wldap32.dll - ok
16:46:08.0821 2156  [ 8999B8631C7FD9F7F9EC3CAFD953BA24 ] C:\Windows\SysWOW64\mswsock.dll
16:46:08.0821 2156  C:\Windows\SysWOW64\mswsock.dll - ok
16:46:08.0824 2156  [ EE5C8E27C37B79CB54A2FCEEED2DC262 ] C:\Windows\SysWOW64\WSHTCPIP.DLL
16:46:08.0824 2156  C:\Windows\SysWOW64\WSHTCPIP.DLL - ok
16:46:08.0826 2156  [ 17448AF0BBA9E7AB5EC955AF93F271BD ] C:\Windows\SysWOW64\wintrust.dll
16:46:08.0826 2156  C:\Windows\SysWOW64\wintrust.dll - ok
16:46:08.0829 2156  [ 60D21799A4AF4EDCE65FB98830E4B0C8 ] C:\Windows\SysWOW64\crypt32.dll
16:46:08.0829 2156  C:\Windows\SysWOW64\crypt32.dll - ok
16:46:08.0831 2156  [ F2060A34C8A75BC24A9222EB4F8C07BD ] C:\Program Files (x86)\Bonjour\mDNSResponder.exe
16:46:08.0831 2156  C:\Program Files (x86)\Bonjour\mDNSResponder.exe - ok
16:46:08.0833 2156  [ A90DC9ABD65DB1A8902F361103029952 ] C:\Windows\SysWOW64\IPHLPAPI.DLL
16:46:08.0833 2156  C:\Windows\SysWOW64\IPHLPAPI.DLL - ok
16:46:08.0836 2156  [ 938F39B50BAFE13D6F58C7790682C010 ] C:\Windows\SysWOW64\msasn1.dll
16:46:08.0836 2156  C:\Windows\SysWOW64\msasn1.dll - ok
16:46:08.0838 2156  [ CFF35B879D1618D42C86644C717BA947 ] C:\Windows\SysWOW64\winnsi.dll
16:46:08.0838 2156  C:\Windows\SysWOW64\winnsi.dll - ok
16:46:08.0841 2156  [ 2FCA0D2C59A855C54BAFA22AA329DF0F ] C:\Windows\SysWOW64\netapi32.dll
16:46:08.0841 2156  C:\Windows\SysWOW64\netapi32.dll - ok
16:46:08.0843 2156  [ 20B3934DB73EABA2B49B7177873CB81F ] C:\Windows\SysWOW64\netutils.dll
16:46:08.0843 2156  C:\Windows\SysWOW64\netutils.dll - ok
16:46:08.0845 2156  [ 5CCDCD40E732D54E0F7451AC66AC1C87 ] C:\Windows\SysWOW64\srvcli.dll
16:46:08.0845 2156  C:\Windows\SysWOW64\srvcli.dll - ok
16:46:08.0847 2156  [ E5A4A1326A02F8E7B59E6C3270CE7202 ] C:\Windows\SysWOW64\wkscli.dll
16:46:08.0847 2156  C:\Windows\SysWOW64\wkscli.dll - ok
16:46:08.0850 2156  [ 08DFDBD2FD4EA951DC46B1C7661ED35A ] C:\Windows\SysWOW64\powrprof.dll
16:46:08.0850 2156  C:\Windows\SysWOW64\powrprof.dll - ok
16:46:08.0852 2156  [ 0C043B0ABBB5E14E68906AB80365395B ] C:\Windows\System32\efssvc.dll
16:46:08.0852 2156  C:\Windows\System32\efssvc.dll - ok
16:46:08.0854 2156  [ 7321F18D1F820612ED0E9F2D4B578A7E ] C:\Windows\SysWOW64\cryptsp.dll
16:46:08.0854 2156  C:\Windows\SysWOW64\cryptsp.dll - ok
16:46:08.0857 2156  [ 7F8E83B9466A0A002D4AB15C104062A7 ] C:\Windows\System32\efscore.dll
16:46:08.0857 2156  C:\Windows\System32\efscore.dll - ok
16:46:08.0859 2156  [ B26F4F737E8F9DF4F31AF6CF31D05820 ] C:\Windows\System32\dps.dll
16:46:08.0859 2156  C:\Windows\System32\dps.dll - ok
16:46:08.0861 2156  [ FCD84C381E0140AF901E58D48882D26B ] C:\Windows\System32\IKEEXT.DLL
16:46:08.0861 2156  C:\Windows\System32\IKEEXT.DLL - ok
16:46:08.0864 2156  [ ED8EC63F7522DF4852147C84EC62C36A ] C:\Windows\SysWOW64\rsaenh.dll
16:46:08.0864 2156  C:\Windows\SysWOW64\rsaenh.dll - ok
16:46:08.0866 2156  [ BAAFAF9CEAEC0B73C2A3550A01F6CECB ] C:\Windows\System32\taskschd.dll
16:46:08.0866 2156  C:\Windows\System32\taskschd.dll - ok
16:46:08.0869 2156  [ 58283053C781AD3A579C95D7765C1FA0 ] C:\Windows\System32\efsutil.dll
16:46:08.0869 2156  C:\Windows\System32\efsutil.dll - ok
16:46:08.0871 2156  [ 73E8667A19FEEDD856DF2695E9E511D4 ] C:\Windows\SysWOW64\wship6.dll
16:46:08.0872 2156  C:\Windows\SysWOW64\wship6.dll - ok
16:46:08.0874 2156  [ B40420876B9288E0A1C8CCA8A84E5DC9 ] C:\Windows\SysWOW64\dnsapi.dll
16:46:08.0874 2156  C:\Windows\SysWOW64\dnsapi.dll - ok
16:46:08.0876 2156  [ A190DA6546501CB4146BBCC0B6A3F48B ] C:\Windows\System32\msiexec.exe
16:46:08.0876 2156  C:\Windows\System32\msiexec.exe - ok
16:46:08.0878 2156  [ 77B5035BC6EDF4D1B6265391AECEE4C0 ] C:\Windows\System32\vpnikeapi.dll
16:46:08.0878 2156  C:\Windows\System32\vpnikeapi.dll - ok
16:46:08.0881 2156  [ 9C01375BE382E834CC26D1B7EAF2C4FE ] C:\Windows\System32\cryptsvc.dll
16:46:08.0881 2156  C:\Windows\System32\cryptsvc.dll - ok
16:46:08.0883 2156  [ 81F6C1AE23B1C493D9E996C3103915D7 ] C:\Windows\SysWOW64\dhcpcsvc6.dll
16:46:08.0883 2156  C:\Windows\SysWOW64\dhcpcsvc6.dll - ok
16:46:08.0886 2156  [ 8792BAB371B4B1589E015B6FD1ED3B15 ] C:\Windows\System32\cryptnet.dll
16:46:08.0886 2156  C:\Windows\System32\cryptnet.dll - ok
16:46:08.0888 2156  [ 9A85ABCE0FDD1AF8E79E731EB0B679F3 ] C:\Windows\SysWOW64\dhcpcsvc.dll
16:46:08.0888 2156  C:\Windows\SysWOW64\dhcpcsvc.dll - ok
16:46:08.0890 2156  [ 0E2F58F6E698EDCB9E58FAD0CBCD0567 ] C:\Windows\System32\vssapi.dll
16:46:08.0890 2156  C:\Windows\System32\vssapi.dll - ok
16:46:08.0893 2156  [ 5EB6E9C8BE1ACC5830780E0F9A846255 ] C:\Windows\System32\msi.dll
16:46:08.0893 2156  C:\Windows\System32\msi.dll - ok
16:46:08.0895 2156  [ 287923557447D7E4BDD7E65B1F0F5428 ] C:\Windows\System32\vsstrace.dll
16:46:08.0895 2156  C:\Windows\System32\vsstrace.dll - ok
16:46:08.0897 2156  [ 3306930FD3AC4ABB17A6DFC9222467F1 ] C:\Windows\AppPatch\AppPatch64\AcLayers.dll
16:46:08.0898 2156  C:\Windows\AppPatch\AppPatch64\AcLayers.dll - ok
16:46:08.0900 2156  [ 6CEF7856A3EFAC59470F6208F0F585CE ] C:\Windows\System32\mpr.dll
16:46:08.0900 2156  C:\Windows\System32\mpr.dll - ok
16:46:08.0902 2156  [ DB16A7C0A453F7E220A5F29E42572FD8 ] C:\Windows\AppPatch\AppPatch64\AcGenral.dll
16:46:08.0902 2156  C:\Windows\AppPatch\AppPatch64\AcGenral.dll - ok
16:46:08.0905 2156  [ C6DCD1D11ED6827F05C00773C3E7053C ] C:\Windows\System32\sfc.dll
16:46:08.0905 2156  C:\Windows\System32\sfc.dll - ok
16:46:08.0907 2156  [ 895C9AB0A855547445C4181195230757 ] C:\Windows\System32\sfc_os.dll
16:46:08.0907 2156  C:\Windows\System32\sfc_os.dll - ok
16:46:08.0909 2156  [ B9F0A4020AA98B7A20287BF7FE99A1FD ] C:\Windows\System32\QUTIL.DLL
16:46:08.0909 2156  C:\Windows\System32\QUTIL.DLL - ok
16:46:08.0912 2156  [ 4BA84C832E0741A294C4444556DFE993 ] C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\ccSvcHst.exe
16:46:08.0912 2156  C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\ccSvcHst.exe - ok
16:46:08.0914 2156  [ 6B851E682A36453E1B1EE297FFB6E2AB ] C:\Windows\System32\QAGENT.DLL
16:46:08.0914 2156  C:\Windows\System32\QAGENT.DLL - ok
16:46:08.0917 2156  [ E3C817F7FE44CC870ECDBCBC3EA36132 ] C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\msvcp100.dll
16:46:08.0917 2156  C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\msvcp100.dll - ok
16:46:08.0920 2156  [ 218A400108F280428FA22282D3268BBC ] C:\Windows\System32\wscapi.dll
16:46:08.0920 2156  C:\Windows\System32\wscapi.dll - ok
16:46:08.0922 2156  [ BF38660A9125935658CFA3E53FDC7D65 ] C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\msvcr100.dll
16:46:08.0922 2156  C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\msvcr100.dll - ok
16:46:08.0925 2156  [ CB06D9EDB2A0C225C25A3B33BEDF4DD7 ] C:\Windows\System32\DHCPQEC.DLL
16:46:08.0925 2156  C:\Windows\System32\DHCPQEC.DLL - ok
16:46:08.0927 2156  [ F36BDE3923E9C7B37AF0F800E4994E36 ] C:\Windows\System32\napipsec.dll
16:46:08.0927 2156  C:\Windows\System32\napipsec.dll - ok
16:46:08.0929 2156  [ 3834D69D6D189AC08B52BD8DF8CB06A6 ] C:\Windows\System32\tsgqec.dll
16:46:08.0929 2156  C:\Windows\System32\tsgqec.dll - ok
16:46:08.0932 2156  [ B07F39F281A1A1DECD4B8E2F1BB46299 ] C:\Windows\System32\EAPQEC.DLL
16:46:08.0932 2156  C:\Windows\System32\EAPQEC.DLL - ok
16:46:08.0934 2156  [ 6E39DA2FD9F64A723363CD0CE8981DA5 ] C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\ccL120U.dll
16:46:08.0934 2156  C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\ccL120U.dll - ok
16:46:08.0937 2156  [ 53223B673A3FA2F9A4D1C31C8D3F6CD8 ] C:\Windows\SysWOW64\dbghelp.dll
16:46:08.0937 2156  C:\Windows\SysWOW64\dbghelp.dll - ok
16:46:08.0939 2156  [ A543AC1F7138376D778D630A35FCBC4C ] C:\Windows\SysWOW64\psapi.dll
16:46:08.0939 2156  C:\Windows\SysWOW64\psapi.dll - ok
16:46:08.0941 2156  [ 1727B2A2F379A32B864C096FA794AADC ] C:\Windows\System32\aepic.dll
16:46:08.0941 2156  C:\Windows\System32\aepic.dll - ok
16:46:08.0944 2156  [ A580CC1974214DEB330BB3824AE7950A ] C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\ccVrTrst.dll
16:46:08.0944 2156  C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\ccVrTrst.dll - ok
16:46:08.0947 2156  [ 8AD77806D336673F270DB31645267293 ] C:\Windows\System32\nlasvc.dll
16:46:08.0947 2156  C:\Windows\System32\nlasvc.dll - ok
16:46:08.0949 2156  [ 296B4C4BF16C4DFAB2DD72D60459C223 ] C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\efacli.dll
16:46:08.0949 2156  C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\efacli.dll - ok
16:46:08.0952 2156  [ D4FAC263861BAE06971C7F7D0A8EBF15 ] C:\Windows\System32\ncsi.dll
16:46:08.0952 2156  C:\Windows\System32\ncsi.dll - ok
16:46:08.0954 2156  [ 4EE3A812A8DB2CA32B2392A7EA49427C ] C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\ccSvc.dll
16:46:08.0954 2156  C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\ccSvc.dll - ok
16:46:08.0957 2156  [ 2393B4D684AF9E3FBD26C37ACF7FB629 ] C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\srtsp32.dll
16:46:08.0957 2156  C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\srtsp32.dll - ok
16:46:08.0960 2156  [ 68769C3356B3BE5D1C732C97B9A80D6E ] C:\Windows\System32\drivers\PEAuth.sys
16:46:08.0960 2156  C:\Windows\System32\drivers\PEAuth.sys - ok
16:46:08.0962 2156  [ 58F4493BF748A3A89689997B7BD00E95 ] C:\Windows\System32\winhttp.dll
16:46:08.0962 2156  C:\Windows\System32\winhttp.dll - ok
16:46:08.0965 2156  [ 603EBD34E216C5654A2D774EAC98D278 ] C:\Windows\System32\webio.dll
16:46:08.0965 2156  C:\Windows\System32\webio.dll - ok
16:46:08.0967 2156  [ D6B65DEB5E34936C6576873D1875385D ] C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\ccIPC.dll
16:46:08.0967 2156  C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\ccIPC.dll - ok
16:46:08.0970 2156  [ 3EA8A16169C26AFBEB544E0E48421186 ] C:\Windows\System32\drivers\secdrv.sys
16:46:08.0970 2156  C:\Windows\System32\drivers\secdrv.sys - ok
16:46:08.0972 2156  [ 2BBF3FDB70B8965DFA0258CBAB41ECCE ] C:\Windows\System32\ssdpapi.dll
16:46:08.0972 2156  C:\Windows\System32\ssdpapi.dll - ok
16:46:08.0975 2156  [ 5997D769CDB108390DCFAEBF442BF816 ] C:\Windows\SysWOW64\RpcRtRemote.dll
16:46:08.0975 2156  C:\Windows\SysWOW64\RpcRtRemote.dll - ok
16:46:08.0977 2156  [ C9531C79AEAA6B36C8337245595E4DE3 ] C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\diMaster.dll
16:46:08.0977 2156  C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\diMaster.dll - ok
16:46:08.0980 2156  [ F07AF60B152221472FBDB2FECEC4896D ] C:\Program Files (x86)\Skype\Updater\Updater.exe
16:46:08.0980 2156  C:\Program Files (x86)\Skype\Updater\Updater.exe - ok
16:46:08.0982 2156  [ CA9F7888B524D8100B977C81F44C3234 ] C:\Windows\SysWOW64\winhttp.dll
16:46:08.0982 2156  C:\Windows\SysWOW64\winhttp.dll - ok
16:46:08.0985 2156  [ FB19FC5951A88F3C523E35C2C98D23C0 ] C:\Windows\SysWOW64\webio.dll
16:46:08.0985 2156  C:\Windows\SysWOW64\webio.dll - ok
16:46:08.0987 2156  [ 27E461F0BE5BFF5FC737328F749538C3 ] C:\Windows\System32\drivers\srvnet.sys
16:46:08.0987 2156  C:\Windows\System32\drivers\srvnet.sys - ok
16:46:08.0989 2156  [ BCEA9AB347E53BC03B2E36BE0B8BA0EF ] C:\Windows\System32\httpapi.dll
16:46:08.0989 2156  C:\Windows\System32\httpapi.dll - ok
16:46:08.0991 2156  [ FF5688D309347F2720911D8796912834 ] C:\Windows\SysWOW64\clbcatq.dll
16:46:08.0992 2156  C:\Windows\SysWOW64\clbcatq.dll - ok
16:46:08.0994 2156  [ F93674263F6B07C77956E966953242D9 ] C:\Windows\SysWOW64\secur32.dll
16:46:08.0994 2156  C:\Windows\SysWOW64\secur32.dll - ok
16:46:08.0996 2156  [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] C:\Windows\System32\drivers\tcpipreg.sys
16:46:08.0996 2156  C:\Windows\System32\drivers\tcpipreg.sys - ok
16:46:08.0999 2156  [ 9474ECE6561990F7EB443E80CDFD2951 ] C:\Program Files\Microsoft Forefront UAG\Endpoint Components\3.1.0\uagqecsvc.exe
16:46:08.0999 2156  C:\Program Files\Microsoft Forefront UAG\Endpoint Components\3.1.0\uagqecsvc.exe - ok
16:46:09.0001 2156  [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] C:\Windows\System32\tapisrv.dll
16:46:09.0001 2156  C:\Windows\System32\tapisrv.dll - ok
16:46:09.0004 2156  [ 8DD52E8E6128F4B2DA92CE27402871C1 ] C:\Windows\System32\wiaservc.dll
16:46:09.0004 2156  C:\Windows\System32\wiaservc.dll - ok
16:46:09.0007 2156  [ 418E881201583A3039D81F43E39E6C78 ] C:\Windows\SysWOW64\winsta.dll
16:46:09.0007 2156  C:\Windows\SysWOW64\winsta.dll - ok
16:46:09.0009 2156  [ 210FCACAF902B2CD47CF9FD17D846146 ] C:\Windows\System32\aeevts.dll
16:46:09.0009 2156  C:\Windows\System32\aeevts.dll - ok
16:46:09.0011 2156  [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] C:\Windows\System32\sysmain.dll
16:46:09.0012 2156  C:\Windows\System32\sysmain.dll - ok
16:46:09.0014 2156  [ BD626EF05967D14C772B8096292731A3 ] C:\Windows\SysWOW64\QUTIL.DLL
16:46:09.0014 2156  C:\Windows\SysWOW64\QUTIL.DLL - ok
16:46:09.0016 2156  [ 0364256B4A2A93A8C8CDA6B3B5A0EFF5 ] C:\Windows\System32\wiatrace.dll
16:46:09.0016 2156  C:\Windows\System32\wiatrace.dll - ok
16:46:09.0019 2156  [ C5B0324DB461559ADD070E632A6919FA ] C:\Windows\SysWOW64\wbem\wbemprox.dll
16:46:09.0019 2156  C:\Windows\SysWOW64\wbem\wbemprox.dll - ok
16:46:09.0021 2156  [ 704314FD398C81D5F342CAA5DF7B7F21 ] C:\Windows\SysWOW64\wbemcomn.dll
16:46:09.0021 2156  C:\Windows\SysWOW64\wbemcomn.dll - ok
16:46:09.0023 2156  [ 82C089EA2A3EEFADF3588EA71E8BDADA ] C:\Windows\SysWOW64\wevtapi.dll
16:46:09.0023 2156  C:\Windows\SysWOW64\wevtapi.dll - ok
16:46:09.0026 2156  [ 19B07E7E8915D701225DA41CB3877306 ] C:\Windows\System32\wbem\WMIsvc.dll
16:46:09.0026 2156  C:\Windows\System32\wbem\WMIsvc.dll - ok
16:46:09.0028 2156  [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] C:\Windows\System32\drivers\srv2.sys
16:46:09.0028 2156  C:\Windows\System32\drivers\srv2.sys - ok
16:46:09.0030 2156  [ 7DB5AA22A8A8E5C2D335F44853C1F6DE ] C:\Windows\System32\wbemcomn.dll
16:46:09.0030 2156  C:\Windows\System32\wbemcomn.dll - ok
16:46:09.0033 2156  [ 2E648163254233755035B46DD7B89123 ] C:\Windows\System32\termsrv.dll
16:46:09.0033 2156  C:\Windows\System32\termsrv.dll - ok
16:46:09.0035 2156  [ 178A681B49A33FAF084E6D2DBA7678CC ] C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\ccSet.dll
16:46:09.0035 2156  C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\ccSet.dll - ok
16:46:09.0038 2156  [ 02530B0B7E048DD5AC8D52DAEACAEB2B ] C:\Windows\SysWOW64\QAGENT.DLL
16:46:09.0038 2156  C:\Windows\SysWOW64\QAGENT.DLL - ok
16:46:09.0040 2156  [ 0255C22D99602534F15CBB8D9B6F152F ] C:\Windows\System32\wbem\WinMgmtR.dll
16:46:09.0040 2156  C:\Windows\System32\wbem\WinMgmtR.dll - ok
16:46:09.0043 2156  [ 7E236CC26FF0C2513819FA453E2C5371 ] C:\Windows\System32\icaapi.dll
16:46:09.0043 2156  C:\Windows\System32\icaapi.dll - ok
16:46:09.0045 2156  [ 7E7AFD841694F6AC397E99D75CEAD49D ] C:\Windows\System32\trkwks.dll
16:46:09.0045 2156  C:\Windows\System32\trkwks.dll - ok
16:46:09.0047 2156  [ 0C52762C606BCF6A377D5E4688191A6B ] C:\Windows\System32\wbem\WmiDcPrv.dll
16:46:09.0047 2156  C:\Windows\System32\wbem\WmiDcPrv.dll - ok
16:46:09.0050 2156  [ A3F5E8EC1316C3E2562B82694A251C9E ] C:\Windows\System32\wbem\fastprox.dll
16:46:09.0050 2156  C:\Windows\System32\wbem\fastprox.dll - ok
16:46:09.0052 2156  [ 04C20DBC09884A27F65EBD721B42F073 ] C:\Windows\SysWOW64\mssha.dll
16:46:09.0052 2156  C:\Windows\SysWOW64\mssha.dll - ok
16:46:09.0055 2156  [ A8CDF3768604FF95B54669E20053D569 ] C:\Windows\SysWOW64\wscapi.dll
16:46:09.0055 2156  C:\Windows\SysWOW64\wscapi.dll - ok
16:46:09.0057 2156  [ 5EB55F661DEBF156E126160BCD4D89F8 ] C:\Windows\System32\wbem\wbemcore.dll
16:46:09.0057 2156  C:\Windows\System32\wbem\wbemcore.dll - ok
16:46:09.0060 2156  [ 4E5FE39C1076D115EC8BFCFE14D75B80 ] C:\Windows\SysWOW64\credssp.dll
16:46:09.0060 2156  C:\Windows\SysWOW64\credssp.dll - ok
16:46:09.0062 2156  [ EE26D130808D16C0E417BBBED0451B34 ] C:\Windows\System32\ntdsapi.dll
16:46:09.0062 2156  C:\Windows\System32\ntdsapi.dll - ok
16:46:09.0064 2156  [ 666A60F6F5E719856FF6254E0966EFF7 ] C:\Windows\System32\wbem\wbemprox.dll
16:46:09.0064 2156  C:\Windows\System32\wbem\wbemprox.dll - ok
16:46:09.0067 2156  [ 7548066DF68A8A1A56B043359F915F37 ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
16:46:09.0067 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe - ok
16:46:09.0069 2156  [ 087D8668C71634A3A3761135ABF16EEE ] C:\Windows\System32\wbem\esscli.dll
16:46:09.0069 2156  C:\Windows\System32\wbem\esscli.dll - ok
16:46:09.0072 2156  [ D1DE1EAFDE97BE41CF6585027FF3E732 ] C:\Windows\SysWOW64\comdlg32.dll
16:46:09.0072 2156  C:\Windows\SysWOW64\comdlg32.dll - ok
16:46:09.0074 2156  [ 718B6F51AB7F6FE2988A36868F9AD3AB ] C:\Windows\System32\wbem\wbemsvc.dll
16:46:09.0074 2156  C:\Windows\System32\wbem\wbemsvc.dll - ok
16:46:09.0077 2156  [ 776AE0564F8B1C282E331FD95A1BDC5F ] C:\Windows\SysWOW64\wbem\wbemsvc.dll
16:46:09.0077 2156  C:\Windows\SysWOW64\wbem\wbemsvc.dll - ok
16:46:09.0079 2156  [ CFC7D8289D2B5F3CF8D16E2DB7F93D4A ] C:\Windows\SysWOW64\wbem\fastprox.dll
16:46:09.0079 2156  C:\Windows\SysWOW64\wbem\fastprox.dll - ok
16:46:09.0082 2156  [ 0143DB80DACFB7C2B5B7009ED9063353 ] C:\Windows\System32\wbem\wmiutils.dll
16:46:09.0082 2156  C:\Windows\System32\wbem\wmiutils.dll - ok
16:46:09.0084 2156  [ 0AB34456654C283DAA13B8D2BA21439B ] C:\Windows\System32\wbem\repdrvfs.dll
16:46:09.0084 2156  C:\Windows\System32\wbem\repdrvfs.dll - ok
16:46:09.0087 2156  [ E3E811471DE781900FF21C1FD84E941E ] C:\Windows\SysWOW64\ntdsapi.dll
16:46:09.0087 2156  C:\Windows\SysWOW64\ntdsapi.dll - ok
16:46:09.0089 2156  [ 352B3DC62A0D259A82A052238425C872 ] C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
16:46:09.0089 2156  C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll - ok
16:46:09.0092 2156  [ DDD0357A92FA843EFF8915ED17253D6C ] C:\Windows\System32\wbem\WmiPrvSD.dll
16:46:09.0092 2156  C:\Windows\System32\wbem\WmiPrvSD.dll - ok
16:46:09.0094 2156  [ 9E4B0E7472B4CEBA9E17F440B8CB0AB8 ] C:\Windows\SysWOW64\winspool.drv
16:46:09.0094 2156  C:\Windows\SysWOW64\winspool.drv - ok
16:46:09.0097 2156  [ D41FEBD098234F02485A4EA98D4730A4 ] C:\Windows\System32\ncobjapi.dll
16:46:09.0097 2156  C:\Windows\System32\ncobjapi.dll - ok
16:46:09.0099 2156  [ 984BDAC9F4FC9993CE8D3A7D7DA3E9A5 ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\ISDI.dll
16:46:09.0099 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\ISDI.dll - ok
16:46:09.0102 2156  [ 6F40D6FB05E0C1E5402812B426971AF0 ] C:\Windows\System32\wbem\wbemess.dll
16:46:09.0102 2156  C:\Windows\System32\wbem\wbemess.dll - ok
16:46:09.0105 2156  [ 3960CEB4A6B13784252D827ECF65CED3 ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\ARA\Shell_ARA.dll
16:46:09.0105 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\ARA\Shell_ARA.dll - ok
16:46:09.0107 2156  [ 441FBA48BFF01FDB9D5969EBC1838F0B ] C:\Windows\System32\drivers\srv.sys
16:46:09.0107 2156  C:\Windows\System32\drivers\srv.sys - ok
16:46:09.0109 2156  [ 27B9E163740A226B65E4B9E186117911 ] C:\Windows\System32\sqmapi.dll
16:46:09.0109 2156  C:\Windows\System32\sqmapi.dll - ok
16:46:09.0112 2156  [ 7B38D7916A7CD058C16A0A6CA5077901 ] C:\Windows\System32\wdscore.dll
16:46:09.0112 2156  C:\Windows\System32\wdscore.dll - ok
16:46:09.0115 2156  [ 1530DFBDFD68AAD1FD5FDA52EA44925E ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\CHS\Shell_CHS.dll
16:46:09.0115 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\CHS\Shell_CHS.dll - ok
16:46:09.0118 2156  [ EE867A0870FC9E4972BA9EAAD35651E2 ] C:\Windows\System32\rasmans.dll
16:46:09.0118 2156  C:\Windows\System32\rasmans.dll - ok
16:46:09.0120 2156  [ D9F42719019740BAA6D1C6D536CBDAA6 ] C:\Windows\System32\srvsvc.dll
16:46:09.0120 2156  C:\Windows\System32\srvsvc.dll - ok
16:46:09.0122 2156  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] C:\Windows\System32\browser.dll
16:46:09.0122 2156  C:\Windows\System32\browser.dll - ok
16:46:09.0125 2156  [ 7FC0F6C8A0CEFBE4E60D8577C6FF8584 ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\CHT\Shell_CHT.dll
16:46:09.0125 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\CHT\Shell_CHT.dll - ok
16:46:09.0127 2156  [ 44C96B48112EB24AE7764EBF1C527000 ] C:\Windows\System32\rastapi.dll
16:46:09.0127 2156  C:\Windows\System32\rastapi.dll - ok
16:46:09.0130 2156  [ CFEFA40DDE34659BE5211966EAD86437 ] C:\Windows\System32\netmsg.dll
16:46:09.0130 2156  C:\Windows\System32\netmsg.dll - ok
16:46:09.0132 2156  [ FAFAE01E889DC9C05A6CA2138CFC220B ] C:\Windows\System32\tapi32.dll
16:46:09.0132 2156  C:\Windows\System32\tapi32.dll - ok
16:46:09.0135 2156  [ EEA7E552C2C992CFD4B50857010F39EA ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\CSY\Shell_CSY.dll
16:46:09.0135 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\CSY\Shell_CSY.dll - ok
16:46:09.0137 2156  [ D2A0FFA75AB181B19B5EB93BB29C7686 ] C:\Windows\System32\unimdm.tsp
16:46:09.0137 2156  C:\Windows\System32\unimdm.tsp - ok
16:46:09.0140 2156  [ 3B367397320C26DBA890B260F80D1B1B ] C:\Windows\System32\hnetcfg.dll
16:46:09.0140 2156  C:\Windows\System32\hnetcfg.dll - ok
16:46:09.0142 2156  [ 94B7DF336815B47236724019FAB24B7C ] C:\Windows\System32\uniplat.dll
16:46:09.0142 2156  C:\Windows\System32\uniplat.dll - ok
16:46:09.0144 2156  [ 7C1BAE7D23D4874FEE256A2B9C00E019 ] C:\Windows\System32\hidphone.tsp
16:46:09.0144 2156  C:\Windows\System32\hidphone.tsp - ok
16:46:09.0147 2156  [ 41326DD08ACC0CDC5F8177AF96C066E8 ] C:\Windows\System32\kmddsp.tsp
16:46:09.0147 2156  C:\Windows\System32\kmddsp.tsp - ok
16:46:09.0149 2156  [ 1D6BC2769DA66C1145F4DA5A65F52E61 ] C:\Windows\System32\ndptsp.tsp
16:46:09.0149 2156  C:\Windows\System32\ndptsp.tsp - ok
16:46:09.0151 2156  [ 03706015DB44368375AEBE6339490E66 ] C:\Windows\System32\netcfgx.dll
16:46:09.0151 2156  C:\Windows\System32\netcfgx.dll - ok
16:46:09.0154 2156  [ 5E2623439A9936D320FE8DC1AB84526A ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\DAN\Shell_DAN.dll
16:46:09.0154 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\DAN\Shell_DAN.dll - ok
16:46:09.0157 2156  [ FF80CAD87555E8E4D2CFD7B9058343F8 ] C:\Windows\System32\sscore.dll
16:46:09.0157 2156  C:\Windows\System32\sscore.dll - ok
16:46:09.0159 2156  [ 8F1656DEB2E861D608909792F5A68C3B ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\DEU\Shell_DEU.dll
16:46:09.0159 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\DEU\Shell_DEU.dll - ok
16:46:09.0162 2156  [ 81749E073AC5857B044A686B406E5244 ] C:\Windows\System32\clusapi.dll
16:46:09.0162 2156  C:\Windows\System32\clusapi.dll - ok
16:46:09.0164 2156  [ 344FCC9850C3A8A3B4D3C65151AF8E4C ] C:\Windows\System32\resutils.dll
16:46:09.0164 2156  C:\Windows\System32\resutils.dll - ok
16:46:09.0166 2156  [ A717A35120DBAB5AB707AB40662AF9DD ] C:\Windows\System32\rasppp.dll
16:46:09.0166 2156  C:\Windows\System32\rasppp.dll - ok
16:46:09.0169 2156  [ 78193AA97D679531522C3E2FA4A5EDFE ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\ELL\Shell_ELL.dll
16:46:09.0169 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\ELL\Shell_ELL.dll - ok
16:46:09.0172 2156  [ 0FE5CD5F9C9248F42D1EF56E495B182E ] C:\Windows\System32\vpnike.dll
16:46:09.0172 2156  C:\Windows\System32\vpnike.dll - ok
16:46:09.0174 2156  [ 793A19EAB66BB232F019DFF9D1977A41 ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\ENU\Shell_ENU.dll
16:46:09.0174 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\ENU\Shell_ENU.dll - ok
16:46:09.0177 2156  [ FEB91B4DA0D540865260A33838654FA3 ] C:\Windows\System32\nci.dll
16:46:09.0177 2156  C:\Windows\System32\nci.dll - ok
16:46:09.0179 2156  [ 6A84E68B538B8B04608BF2F0D426CE6F ] C:\Windows\System32\raschap.dll
16:46:09.0179 2156  C:\Windows\System32\raschap.dll - ok
16:46:09.0182 2156  [ BA726152513EC650EED219B7995DE852 ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\ESP\Shell_ESP.dll
16:46:09.0182 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\ESP\Shell_ESP.dll - ok
16:46:09.0184 2156  [ E849BBF4D8045C3E6BF7A23FA91E36AB ] C:\Program Files\Bonjour\mdnsNSP.dll
16:46:09.0184 2156  C:\Program Files\Bonjour\mdnsNSP.dll - ok
16:46:09.0187 2156  [ 77C8E1779E784189EA29D9A5ECCDD9E9 ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\FIN\Shell_FIN.dll
16:46:09.0187 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\FIN\Shell_FIN.dll - ok
16:46:09.0190 2156  [ 254FB7A22D74E5511C73A3F6D802F192 ] C:\Windows\System32\mprdim.dll
16:46:09.0190 2156  C:\Windows\System32\mprdim.dll - ok
16:46:09.0192 2156  [ 05F620B4B2E7DEB9409C0C6A4FEDD2A4 ] C:\Windows\System32\adsldpc.dll
16:46:09.0192 2156  C:\Windows\System32\adsldpc.dll - ok
16:46:09.0194 2156  [ 40308014B44489795DA132D3F2CC13DA ] C:\Windows\System32\iprtrmgr.dll
16:46:09.0194 2156  C:\Windows\System32\iprtrmgr.dll - ok
16:46:09.0196 2156  [ 80014469803E6D9CC89F03907262B1F8 ] C:\Windows\System32\rtm.dll
16:46:09.0196 2156  C:\Windows\System32\rtm.dll - ok
16:46:09.0199 2156  [ 2B19CB7DF98C4DB3900E77C97CAABEAF ] C:\Windows\System32\iprtprio.dll
16:46:09.0199 2156  C:\Windows\System32\iprtprio.dll - ok
16:46:09.0201 2156  [ AFD87B70E2C48EC080CA28ADCC3175B5 ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\FRA\Shell_FRA.dll
16:46:09.0201 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\FRA\Shell_FRA.dll - ok
16:46:09.0204 2156  [ 621B74BFCE49F9372AED2859FD87343C ] C:\Windows\System32\mprddm.dll
16:46:09.0204 2156  C:\Windows\System32\mprddm.dll - ok
16:46:09.0206 2156  [ A87EC5A9714CE350D2E893C254355E40 ] C:\Windows\System32\iashlpr.dll
16:46:09.0206 2156  C:\Windows\System32\iashlpr.dll - ok
16:46:09.0208 2156  [ 047AD05DE61C166A1BED4CF5A9083ED8 ] C:\Windows\System32\iasrad.dll
16:46:09.0208 2156  C:\Windows\System32\iasrad.dll - ok
16:46:09.0211 2156  [ A6F3F67F9652EA07210188E2B07FFEE8 ] C:\Windows\System32\iassvcs.dll
16:46:09.0211 2156  C:\Windows\System32\iassvcs.dll - ok
16:46:09.0213 2156  [ 88351B29B622B30962D2FEB6CA8D860B ] C:\Windows\System32\rasadhlp.dll
16:46:09.0213 2156  C:\Windows\System32\rasadhlp.dll - ok
16:46:09.0216 2156  [ 5ECEA5F29DCEE8D320454C86A1CB3366 ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\HEB\Shell_HEB.dll
16:46:09.0216 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\HEB\Shell_HEB.dll - ok
16:46:09.0218 2156  [ 619A67C9F617B7E69315BB28ECD5E1DF ] C:\Windows\System32\wbem\WmiPrvSE.exe
16:46:09.0218 2156  C:\Windows\System32\wbem\WmiPrvSE.exe - ok
16:46:09.0221 2156  [ 6607C2182C6A53ED983813AFE2F85768 ] C:\Windows\System32\wbem\cimwin32.dll
16:46:09.0221 2156  C:\Windows\System32\wbem\cimwin32.dll - ok
16:46:09.0224 2156  [ 18873D2B1ABBB8826ED18F840CB8E0D3 ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\HUN\Shell_HUN.dll
16:46:09.0224 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\HUN\Shell_HUN.dll - ok
16:46:09.0226 2156  [ 79ECBC83B844F7A474C66BE77AAF7180 ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\ITA\Shell_ITA.dll
16:46:09.0226 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\ITA\Shell_ITA.dll - ok
16:46:09.0229 2156  [ 069006BF253F32CD980E67E8671DFE3C ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\JPN\Shell_JPN.dll
16:46:09.0229 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\JPN\Shell_JPN.dll - ok
16:46:09.0232 2156  [ 1484B9EBF567346582DE571B0E164AE0 ] C:\Windows\System32\framedynos.dll
16:46:09.0232 2156  C:\Windows\System32\framedynos.dll - ok
16:46:09.0234 2156  [ 5925F32114BF5ACF50C66500433B35CC ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\KOR\Shell_KOR.dll
16:46:09.0234 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\KOR\Shell_KOR.dll - ok
16:46:09.0236 2156  [ 03C7D7A1553E3009CEBE3013A578B0ED ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\NLD\Shell_NLD.dll
16:46:09.0236 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\NLD\Shell_NLD.dll - ok
16:46:09.0239 2156  [ 4FFD3E3363EBAC7FC8BBA58EAD594AFF ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\NOR\Shell_NOR.dll
16:46:09.0239 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\NOR\Shell_NOR.dll - ok
16:46:09.0242 2156  [ 2499E32320905E68F9710527593A0EDB ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\PLK\Shell_PLK.dll
16:46:09.0242 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\PLK\Shell_PLK.dll - ok
16:46:09.0245 2156  [ 591EA8B6991D99720B36EBC1CC16CEA8 ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\PTB\Shell_PTB.dll
16:46:09.0245 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\PTB\Shell_PTB.dll - ok
16:46:09.0248 2156  [ A4487F6CEFED12F2C1257F6DBCDAEB1E ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\PTG\Shell_PTG.dll
16:46:09.0248 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\PTG\Shell_PTG.dll - ok
16:46:09.0251 2156  [ 35989A505DEEC24DEF8D327D22FF14D4 ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\RUS\Shell_RUS.dll
16:46:09.0251 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\RUS\Shell_RUS.dll - ok
16:46:09.0253 2156  [ 9D825B4E6B28F93F326538515EFC880B ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\SVE\Shell_SVE.dll
16:46:09.0253 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\SVE\Shell_SVE.dll - ok
16:46:09.0256 2156  [ D9BFF3E59CBE32FE72D6D68F6AF348BD ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\THA\Shell_THA.dll
16:46:09.0256 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\THA\Shell_THA.dll - ok
16:46:09.0259 2156  [ E84CB5D899098DDEA6D013057C9E4B5F ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\TRK\Shell_TRK.dll
16:46:09.0259 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\TRK\Shell_TRK.dll - ok
16:46:09.0262 2156  [ 15C42334805B711FBF0C788A1D751528 ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\ENU\PlugInRAID_ENU.dll
16:46:09.0262 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\ENU\PlugInRAID_ENU.dll - ok
16:46:09.0264 2156  [ BD9EB3958F213F96B97B1D897DEE006D ] C:\Windows\System32\hidserv.dll
16:46:09.0264 2156  C:\Windows\System32\hidserv.dll - ok
16:46:09.0267 2156  [ A5DBC74C5B91CF6E43B73D62936F8186 ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\PlugInRAID.pin
16:46:09.0267 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\PlugInRAID.pin - ok
16:46:09.0269 2156  [ 566C42BA91A46FA007FC892E7FAFEA7C ] C:\Windows\System32\iassdo.dll
16:46:09.0269 2156  C:\Windows\System32\iassdo.dll - ok
16:46:09.0271 2156  [ BF1FC3F79B863C914687A737C2F3D681 ] C:\Windows\System32\wdi.dll
16:46:09.0272 2156  C:\Windows\System32\wdi.dll - ok
16:46:09.0274 2156  [ 011F0B067E47612F57C4ECE377D9C9DF ] C:\Windows\System32\activeds.dll
16:46:09.0274 2156  C:\Windows\System32\activeds.dll - ok
16:46:09.0277 2156  [ 3CEF96890064B3CDB190963157F24BAC ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\RAIDWizM.dll
16:46:09.0277 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\RAIDWizM.dll - ok
16:46:09.0279 2156  [ F7073C962C4FB7C415565DDE109DE49F ] C:\Windows\System32\npmproxy.dll
16:46:09.0279 2156  C:\Windows\System32\npmproxy.dll - ok
16:46:09.0281 2156  [ 4449D23E8F197862F1B16F1E6C89C36C ] C:\Windows\System32\diagperf.dll
16:46:09.0281 2156  C:\Windows\System32\diagperf.dll - ok
16:46:09.0284 2156  [ 4C6F525A346E80A8834CE2E7A870B203 ] C:\Windows\System32\iasrecst.dll
16:46:09.0284 2156  C:\Windows\System32\iasrecst.dll - ok
16:46:09.0286 2156  [ 8E01332CC4B68BC6B5B7EFFE374442AA ] C:\Windows\SysWOW64\oleacc.dll
16:46:09.0286 2156  C:\Windows\SysWOW64\oleacc.dll - ok
16:46:09.0289 2156  [ 58A0CDABEA255616827B1C22C9994466 ] C:\Windows\System32\NapiNSP.dll
16:46:09.0289 2156  C:\Windows\System32\NapiNSP.dll - ok
16:46:09.0292 2156  [ 5BFB02BDA2700D078400E149BC4CF87A ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\RAIDWizD.dll
16:46:09.0292 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\RAIDWizD.dll - ok
16:46:09.0294 2156  [ 613C8CE10A5FDE582BA5FA64C4D56AAA ] C:\Windows\System32\pnrpnsp.dll
16:46:09.0294 2156  C:\Windows\System32\pnrpnsp.dll - ok
16:46:09.0296 2156  [ 2E2072EB48238FCA8FBB7A9F5FABAC45 ] C:\Windows\System32\winrnr.dll
16:46:09.0296 2156  C:\Windows\System32\winrnr.dll - ok
16:46:09.0299 2156  [ 9719E3D834F5C8C43F56A93DFA497023 ] C:\Windows\System32\pnpts.dll
16:46:09.0299 2156  C:\Windows\System32\pnpts.dll - ok
16:46:09.0301 2156  [ E811F8510B133E70CF6E509FB809824F ] C:\Windows\System32\wdiasqmmodule.dll
16:46:09.0301 2156  C:\Windows\System32\wdiasqmmodule.dll - ok
16:46:09.0304 2156  [ BF4AC709BE5BF64F331F5D67773A0C82 ] C:\Windows\System32\perftrack.dll
16:46:09.0304 2156  C:\Windows\System32\perftrack.dll - ok
16:46:09.0306 2156  [ 46863C4CC5B68EB09EA2D5EEF0F1193A ] C:\Windows\System32\radardt.dll
16:46:09.0306 2156  C:\Windows\System32\radardt.dll - ok
16:46:09.0309 2156  [ 3C29B98149A28FEDA42796D3EA904F62 ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\RAIDWizR.dll
16:46:09.0309 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\RAIDWizR.dll - ok
16:46:09.0312 2156  [ 38ADD53ECFC5F040EF1C647ECD22A2A4 ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\RaidWizCnG.dll
16:46:09.0312 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\RaidWizCnG.dll - ok
16:46:09.0315 2156  [ F0BFA0FE6317B40CD4A3FE5EB6F8C55F ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\RAIDWizC.dll
16:46:09.0315 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\RAIDWizC.dll - ok
16:46:09.0317 2156  [ 43B02D7C43B77775F1DA63B1D1014F38 ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\RAIDWizCFE.dll
16:46:09.0317 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\RAIDWizCFE.dll - ok
16:46:09.0320 2156  [ 93221146D4EBBF314C29B23CD6CC391D ] C:\Windows\System32\wpdbusenum.dll
16:46:09.0320 2156  C:\Windows\System32\wpdbusenum.dll - ok
16:46:09.0322 2156  [ 5AF1E9600E3FF841E522703A4993ED0C ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
16:46:09.0322 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe - ok
16:46:09.0325 2156  [ E1B22739C933BE33F53DB58C5393ADD3 ] C:\Windows\System32\Apphlpdm.dll
16:46:09.0325 2156  C:\Windows\System32\Apphlpdm.dll - ok
16:46:09.0327 2156  [ 9689A9C7F7C2A1A423CDA2C3B43FFF65 ] C:\Windows\System32\wer.dll
16:46:09.0327 2156  C:\Windows\System32\wer.dll - ok
16:46:09.0329 2156  [ A8EDB86FC2A4D6D1285E4C70384AC35A ] C:\Windows\System32\dllhost.exe
16:46:09.0329 2156  C:\Windows\System32\dllhost.exe - ok
16:46:09.0332 2156  [ 313A1B21DA0FBCFBF557247C81C803D6 ] C:\Windows\System32\iasdatastore.dll
16:46:09.0332 2156  C:\Windows\System32\iasdatastore.dll - ok
16:46:09.0334 2156  [ E64D9EC8018C55873B40FDEE9DBEF5B3 ] C:\Windows\System32\PortableDeviceApi.dll
16:46:09.0334 2156  C:\Windows\System32\PortableDeviceApi.dll - ok
16:46:09.0337 2156  [ 4B78B431F225FD8624C5655CB1DE7B61 ] C:\Windows\System32\aelupsvc.dll
16:46:09.0337 2156  C:\Windows\System32\aelupsvc.dll - ok
16:46:09.0339 2156  [ AFA79C343F9D1555F7E5D5FA70BB2A14 ] C:\Windows\System32\PortableDeviceConnectApi.dll
16:46:09.0339 2156  C:\Windows\System32\PortableDeviceConnectApi.dll - ok
16:46:09.0342 2156  [ DDA4CAF29D8C0A297F886BFE561E6659 ] C:\Windows\System32\drivers\WUDFRd.sys
16:46:09.0342 2156  C:\Windows\System32\drivers\WUDFRd.sys - ok
16:46:09.0344 2156  [ 8ABFE00F213F2571498F1B8FD7939A98 ] C:\Windows\System32\WUDFHost.exe
16:46:09.0344 2156  C:\Windows\System32\WUDFHost.exe - ok
16:46:09.0347 2156  [ 25AE683DCB4AE7E6F1B193A0CB9DB35F ] C:\Windows\System32\WUDFx.dll
16:46:09.0347 2156  C:\Windows\System32\WUDFx.dll - ok
16:46:09.0349 2156  [ 91D6F0AB79AA36FFB932157865206F35 ] C:\Windows\System32\drivers\UMDF\WpdFs.dll
16:46:09.0349 2156  C:\Windows\System32\drivers\UMDF\WpdFs.dll - ok
16:46:09.0352 2156  [ 9864D52F15AD32094A636C6B5281D9E7 ] C:\Windows\System32\WMVCORE.DLL
16:46:09.0352 2156  C:\Windows\System32\WMVCORE.DLL - ok
16:46:09.0354 2156  [ 389CA818132C1D7DCF0C791E8D9035DE ] C:\Windows\System32\PortableDeviceClassExtension.dll
16:46:09.0354 2156  C:\Windows\System32\PortableDeviceClassExtension.dll - ok
16:46:09.0357 2156  [ AACC48FE239F0DF126DA2F28930A5B83 ] C:\Windows\System32\WMASF.DLL
16:46:09.0357 2156  C:\Windows\System32\WMASF.DLL - ok
16:46:09.0359 2156  [ 4F3CD1C59EA71401E155C432BCECE180 ] C:\Windows\System32\PortableDeviceTypes.dll
16:46:09.0359 2156  C:\Windows\System32\PortableDeviceTypes.dll - ok
16:46:09.0361 2156  [ 8426E4F80F91E698ABE65A5945EC317E ] C:\Windows\System32\iasnap.dll
16:46:09.0361 2156  C:\Windows\System32\iasnap.dll - ok
16:46:09.0364 2156  [ 14DFDEAF4E589ED3F1FF187A86B9408C ] C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_a4d6a923711520a9\comctl32.dll
16:46:09.0364 2156  C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_a4d6a923711520a9\comctl32.dll - ok
16:46:09.0367 2156  [ DD853B7E91F22F842B8C8CB5096EE3B3 ] C:\Windows\System32\QSHVHOST.DLL
16:46:09.0367 2156  C:\Windows\System32\QSHVHOST.DLL - ok
16:46:09.0369 2156  [ A0A2C1D812C231C9BFE119FDC68E341B ] C:\Windows\System32\IDStore.dll
16:46:09.0369 2156  C:\Windows\System32\IDStore.dll - ok
16:46:09.0371 2156  [ 639774C9ACD063F028F6084ABF5593AD ] C:\Windows\System32\taskhost.exe
16:46:09.0371 2156  C:\Windows\System32\taskhost.exe - ok
16:46:09.0374 2156  [ 863F793D15B4026B1A5FDECA873D4D84 ] C:\Windows\SysWOW64\apphelp.dll
16:46:09.0374 2156  C:\Windows\SysWOW64\apphelp.dll - ok
16:46:09.0376 2156  [ 9BB99503D6A4DD62569EDE9E5E2672A5 ] C:\Windows\System32\HotStartUserAgent.dll
16:46:09.0376 2156  C:\Windows\System32\HotStartUserAgent.dll - ok
16:46:09.0379 2156  [ 23566F9723771108D2E6CD768AC27407 ] C:\Windows\System32\AtBroker.exe
16:46:09.0379 2156  C:\Windows\System32\AtBroker.exe - ok
16:46:09.0381 2156  [ 65EA57712340C09B1B0C427B4848AE05 ] C:\Windows\System32\taskeng.exe
16:46:09.0381 2156  C:\Windows\System32\taskeng.exe - ok
16:46:09.0384 2156  [ BAFE84E637BF7388C96EF48D4D3FDD53 ] C:\Windows\System32\userinit.exe
16:46:09.0384 2156  C:\Windows\System32\userinit.exe - ok
16:46:09.0386 2156  [ F162D5F5E845B9DC352DD1BAD8CEF1BC ] C:\Windows\System32\dwm.exe
16:46:09.0386 2156  C:\Windows\System32\dwm.exe - ok
16:46:09.0388 2156  [ 45CFBFA8EDC3DF4E2B7FB0D0260FE051 ] C:\Windows\System32\localspl.dll
16:46:09.0388 2156  C:\Windows\System32\localspl.dll - ok
16:46:09.0391 2156  [ FCFCD1101C5DA23B4B95F93D02B2C169 ] C:\Windows\System32\dwmredir.dll
16:46:09.0391 2156  C:\Windows\System32\dwmredir.dll - ok
16:46:09.0393 2156  [ E629F1A051C82795DDFFD3E8D4855811 ] C:\Windows\System32\dimsjob.dll
16:46:09.0393 2156  C:\Windows\System32\dimsjob.dll - ok
16:46:09.0395 2156  [ 4BA77A5EF71C14C764B0ED4701683E3E ] C:\Windows\System32\dwmcore.dll
16:46:09.0395 2156  C:\Windows\System32\dwmcore.dll - ok
16:46:09.0398 2156  [ 35CB97CBC3EDC463418ED4997AAB29B6 ] C:\Windows\System32\pautoenr.dll
16:46:09.0398 2156  C:\Windows\System32\pautoenr.dll - ok
16:46:09.0400 2156  [ 43964FA89CCF97BA6BE34D69455AC65F ] C:\Windows\SysWOW64\uxtheme.dll
16:46:09.0400 2156  C:\Windows\SysWOW64\uxtheme.dll - ok
16:46:09.0403 2156  [ 94DFBB481BF51158B216E23C5C1C9D6E ] C:\Windows\System32\certcli.dll
16:46:09.0403 2156  C:\Windows\System32\certcli.dll - ok
16:46:09.0405 2156  [ 39C5F32747B3414D1BB216FDB1DEFC58 ] C:\Windows\SysWOW64\dwmapi.dll
16:46:09.0405 2156  C:\Windows\SysWOW64\dwmapi.dll - ok
16:46:09.0408 2156  [ 998982FED363BC0220F6BF0C210FDB6B ] C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\NPCTray.dll
16:46:09.0408 2156  C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\NPCTray.dll - ok
16:46:09.0410 2156  [ 263B26106606A010CF877472B535E4BB ] C:\Windows\System32\CertEnroll.dll
16:46:09.0410 2156  C:\Windows\System32\CertEnroll.dll - ok
16:46:09.0413 2156  [ 3285481F5C12305CA104A6C493CA5A0B ] C:\Windows\System32\spoolss.dll
16:46:09.0413 2156  C:\Windows\System32\spoolss.dll - ok
16:46:09.0416 2156  [ BD69A0116B11A91761AB30A25DCB4C9D ] C:\Windows\System32\vbscript.dll
16:46:09.0416 2156  C:\Windows\System32\vbscript.dll - ok
16:46:09.0418 2156  [ C5AC93CF3BA30D367FB49148A2B673B9 ] C:\Windows\System32\PrintIsolationProxy.dll
16:46:09.0418 2156  C:\Windows\System32\PrintIsolationProxy.dll - ok
16:46:09.0421 2156  [ 89DE13F1046D1CA77B254A81E7A2CD81 ] C:\Windows\System32\AdobePDF.dll
16:46:09.0421 2156  C:\Windows\System32\AdobePDF.dll - ok
16:46:09.0423 2156  [ 9AE80F6A66B30E3ED8CDF858CF28B11B ] C:\Windows\System32\d3d10_1.dll
16:46:09.0423 2156  C:\Windows\System32\d3d10_1.dll - ok
16:46:09.0425 2156  [ 19E41CCCEE697CC9465396B370929792 ] C:\Windows\System32\FXSMON.dll
16:46:09.0425 2156  C:\Windows\System32\FXSMON.dll - ok
16:46:09.0428 2156  [ 32A3C8600AF124CBAAD845F13CFAE3CB ] C:\Windows\System32\tcpmon.dll
16:46:09.0428 2156  C:\Windows\System32\tcpmon.dll - ok
16:46:09.0430 2156  [ 805A52C5AE26C28E88FDD9BCCFE6F312 ] C:\Windows\System32\TSChannel.dll
16:46:09.0430 2156  C:\Windows\System32\TSChannel.dll - ok
16:46:09.0432 2156  [ B49B56B64F57699A1A663D2CF7D0A56F ] C:\Windows\SysWOW64\wininet.dll
16:46:09.0432 2156  C:\Windows\SysWOW64\wininet.dll - ok
16:46:09.0435 2156  [ 93518C6EDE0B61BCBD02BDB02BD05FEE ] C:\Windows\System32\snmpapi.dll
16:46:09.0435 2156  C:\Windows\System32\snmpapi.dll - ok
16:46:09.0437 2156  [ 332FEAB1435662FC6C672E25BEB37BE3 ] C:\Windows\explorer.exe
16:46:09.0437 2156  C:\Windows\explorer.exe - ok
16:46:09.0439 2156  [ 7F9AAEEE01CE2DDBEA4ABEF0910A7ADA ] C:\Windows\System32\iassam.dll
16:46:09.0439 2156  C:\Windows\System32\iassam.dll - ok
16:46:09.0442 2156  [ FFF9D00CF16397C64317F213484F94BD ] C:\Windows\System32\wsnmp32.dll
16:46:09.0442 2156  C:\Windows\System32\wsnmp32.dll - ok
16:46:09.0444 2156  [ DF72A9936D0C3F517083119648814B09 ] C:\Windows\System32\usbmon.dll
16:46:09.0444 2156  C:\Windows\System32\usbmon.dll - ok
16:46:09.0446 2156  [ 63F72417CA38D8FC8F53709649B589E3 ] C:\Windows\System32\d3d10_1core.dll
16:46:09.0446 2156  C:\Windows\System32\d3d10_1core.dll - ok
16:46:09.0449 2156  [ A1D7E3ADCDB07DDB6F423862DCB1A52B ] C:\Windows\System32\WSDMon.dll
16:46:09.0449 2156  C:\Windows\System32\WSDMon.dll - ok
16:46:09.0451 2156  [ 8DFB5752FCE145A6B295093C0A8BE131 ] C:\Windows\System32\dxgi.dll
16:46:09.0451 2156  C:\Windows\System32\dxgi.dll - ok
16:46:09.0453 2156  [ 1F1CA9E99DD5BF918BE0BF30B5A42FDA ] C:\Windows\System32\MsCtfMonitor.dll
16:46:09.0453 2156  C:\Windows\System32\MsCtfMonitor.dll - ok
16:46:09.0456 2156  [ D171EAA745A2C0C583CDDA13D9088EE4 ] C:\Windows\SysWOW64\iertutil.dll
16:46:09.0456 2156  C:\Windows\SysWOW64\iertutil.dll - ok
16:46:09.0458 2156  [ F09A9A1AD21FE618C4C8B0A0D830C886 ] C:\Windows\System32\msutb.dll
16:46:09.0458 2156  C:\Windows\System32\msutb.dll - ok
16:46:09.0461 2156  [ 67F37164CFE532E69FC4330C0A6C200D ] C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe
16:46:09.0461 2156  C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe - ok
16:46:09.0463 2156  [ A6F309DD01DC5BD7BFB3E3C1C413573F ] C:\Windows\System32\iasacct.dll
16:46:09.0463 2156  C:\Windows\System32\iasacct.dll - ok
16:46:09.0465 2156  [ F1B205F932F62F94506A5F332C895DAF ] C:\Windows\System32\WSDApi.dll
16:46:09.0465 2156  C:\Windows\System32\WSDApi.dll - ok
16:46:09.0468 2156  [ 448B02AD260EC3E1E892FCE6DFDDEEBD ] C:\Windows\System32\d3d11.dll
16:46:09.0468 2156  C:\Windows\System32\d3d11.dll - ok
16:46:09.0470 2156  [ D0E7014C1697C86AC9682E7F11E78407 ] C:\Program Files (x86)\UnHackMe\hackmon.exe
16:46:09.0470 2156  C:\Program Files (x86)\UnHackMe\hackmon.exe - ok
16:46:09.0473 2156  [ EC5F6EE00337DB400229B69FB43F92C5 ] C:\Windows\System32\QSVRMGMT.DLL
16:46:09.0473 2156  C:\Windows\System32\QSVRMGMT.DLL - ok
16:46:09.0475 2156  [ 82A966D90A3AC50BCFA70B03D38A4A7A ] C:\Windows\System32\iaspolcy.dll
16:46:09.0475 2156  C:\Windows\System32\iaspolcy.dll - ok
16:46:09.0477 2156  [ 94EEAC26F57811BD1AEFC164412F7FCE ] C:\Windows\System32\PlaySndSrv.dll
16:46:09.0477 2156  C:\Windows\System32\PlaySndSrv.dll - ok
16:46:09.0480 2156  [ BE157C3800DA3010EFC48280ECF81C16 ] C:\Windows\SysWOW64\urlmon.dll
16:46:09.0480 2156  C:\Windows\SysWOW64\urlmon.dll - ok
16:46:09.0482 2156  [ C55516D98DD5D8F0153C2A9B4227DA86 ] C:\Windows\System32\webservices.dll
16:46:09.0482 2156  C:\Windows\System32\webservices.dll - ok
16:46:09.0484 2156  [ 847D3AE376C0817161A14A82C8922A9E ] C:\Windows\System32\netman.dll
16:46:09.0485 2156  C:\Windows\System32\netman.dll - ok
16:46:09.0487 2156  [ 547B6911B757E5F41E9896C85EC512D2 ] C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\uiMain.dll
16:46:09.0487 2156  C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\uiMain.dll - ok
16:46:09.0491 2156  [ A42F2C1EB3B66C54FB3C7B79D30C1A6D ] C:\Windows\System32\netshell.dll
16:46:09.0491 2156  C:\Windows\System32\netshell.dll - ok
16:46:09.0493 2156  [ EED05D42D91835064703E2318552ED25 ] C:\Windows\System32\ExplorerFrame.dll
16:46:09.0493 2156  C:\Windows\System32\ExplorerFrame.dll - ok
16:46:09.0495 2156  [ B5055B51BAA0FD0A736A88653DA3C1C0 ] C:\Windows\System32\fundisc.dll
16:46:09.0495 2156  C:\Windows\System32\fundisc.dll - ok
16:46:09.0498 2156  [ 6EF5F3F18413C367195F06E503AB86A6 ] C:\Windows\SysWOW64\d3d9.dll
16:46:09.0498 2156  C:\Windows\SysWOW64\d3d9.dll - ok
16:46:09.0500 2156  [ 4581716B4BF76ACFD8E167EB0B26D82A ] C:\Windows\System32\fdPnp.dll
16:46:09.0500 2156  C:\Windows\System32\fdPnp.dll - ok
16:46:09.0502 2156  [ 1D626FE2E13C1CE49CA0136CFF214E93 ] C:\Windows\System32\spool\prtprocs\x64\winprint.dll
16:46:09.0502 2156  C:\Windows\System32\spool\prtprocs\x64\winprint.dll - ok
16:46:09.0505 2156  [ 86265C4E264E0FFB05BCF7B69C0D2004 ] C:\Windows\System32\spool\prtprocs\x64\hpfpp70v.dll
16:46:09.0505 2156  C:\Windows\System32\spool\prtprocs\x64\hpfpp70v.dll - ok
16:46:09.0507 2156  [ 0353B239C28B0E9EBC7FA3D1F6181661 ] C:\Windows\System32\win32spl.dll
16:46:09.0507 2156  C:\Windows\System32\win32spl.dll - ok
16:46:09.0510 2156  [ 77B1471A490B53B24EFE136F09F76550 ] C:\Windows\SysWOW64\d3d8thk.dll
16:46:09.0510 2156  C:\Windows\SysWOW64\d3d8thk.dll - ok
16:46:09.0512 2156  [ 507D5567A0A4EE86C4B0CE2CE1777025 ] C:\Windows\System32\inetpp.dll
16:46:09.0512 2156  C:\Windows\System32\inetpp.dll - ok
16:46:09.0515 2156  [ BDAC1AA64495D0F7E1FF810EBBF1F018 ] C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_ec83dffa859149af\comctl32.dll
16:46:09.0515 2156  C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_ec83dffa859149af\comctl32.dll - ok
16:46:09.0517 2156  [ D5AEFAD57C08349A4393D987DF7C715D ] C:\Windows\SysWOW64\winmm.dll
16:46:09.0517 2156  C:\Windows\SysWOW64\winmm.dll - ok
16:46:09.0520 2156  [ 024352FEEC9042260BB4CFB4D79A206B ] C:\Windows\System32\EhStorShell.dll
16:46:09.0520 2156  C:\Windows\System32\EhStorShell.dll - ok
16:46:09.0522 2156  [ 90272C1F29116D119655B70D1E3F4EE9 ] C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\SymHTMDX.dll
16:46:09.0522 2156  C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\SymHTMDX.dll - ok
16:46:09.0525 2156  [ 21C1F83F73AEFCD23FE662040D59F3E6 ] C:\Windows\System32\nvwgf2umx.dll
16:46:09.0525 2156  C:\Windows\System32\nvwgf2umx.dll - ok
16:46:09.0527 2156  [ 1BF0CB861A48FEB1638228760750F3CB ] C:\Windows\System32\cscapi.dll
16:46:09.0527 2156  C:\Windows\System32\cscapi.dll - ok
16:46:09.0530 2156  [ 12C45E3CB6D65F73209549E2D02ECA7A ] C:\Windows\SysWOW64\propsys.dll
16:46:09.0530 2156  C:\Windows\SysWOW64\propsys.dll - ok
16:46:09.0532 2156  [ 4277F5164DE9B7C665BB928B9145BEE0 ] C:\Windows\SysWOW64\DWrite.dll
16:46:09.0532 2156  C:\Windows\SysWOW64\DWrite.dll - ok
16:46:09.0534 2156  [ 037A719DAD50603202C978CD802623E4 ] C:\Windows\System32\ntshrui.dll
16:46:09.0534 2156  C:\Windows\System32\ntshrui.dll - ok
16:46:09.0537 2156  [ 1D63F4366288B8A7595397E27010FD44 ] C:\Windows\System32\IconCodecService.dll
16:46:09.0537 2156  C:\Windows\System32\IconCodecService.dll - ok
16:46:09.0539 2156  [ 3977D4A871CA0D4F2ED1E7DB46829731 ] C:\Windows\System32\appinfo.dll
16:46:09.0539 2156  C:\Windows\System32\appinfo.dll - ok
16:46:09.0542 2156  [ 3C1936A12C62254F914A01BBC6A8DC69 ] C:\Windows\SysWOW64\d3d10_1.dll
16:46:09.0542 2156  C:\Windows\SysWOW64\d3d10_1.dll - ok
16:46:09.0544 2156  [ D4212AB475A3B25EC4DF574536C3EDC5 ] C:\Windows\SysWOW64\d3d10_1core.dll
16:46:09.0544 2156  C:\Windows\SysWOW64\d3d10_1core.dll - ok
16:46:09.0547 2156  [ D4F264FE23F8953D840904418220C15E ] C:\Windows\SysWOW64\dxgi.dll
16:46:09.0547 2156  C:\Windows\SysWOW64\dxgi.dll - ok
16:46:09.0549 2156  [ 7ACDFB4CC67F4993DF0E0731576309B2 ] C:\Windows\SysWOW64\d3d11.dll
16:46:09.0549 2156  C:\Windows\SysWOW64\d3d11.dll - ok
16:46:09.0551 2156  [ 025E7DBDB98866ED3CB2D4DDA70B364D ] C:\Windows\System32\runonce.exe
16:46:09.0551 2156  C:\Windows\System32\runonce.exe - ok
16:46:09.0554 2156  [ AEB730860BB72AE08E45ABAD5721EDE1 ] C:\Windows\System32\nvd3dumx.dll
16:46:09.0554 2156  C:\Windows\System32\nvd3dumx.dll - ok
16:46:09.0556 2156  [ D44741F65A1D71F65814A12CF6E2400A ] C:\Windows\SysWOW64\runonce.exe
16:46:09.0556 2156  C:\Windows\SysWOW64\runonce.exe - ok
16:46:09.0559 2156  [ 49E5753D923F1AC63B22D3DCB0B47E00 ] C:\Windows\System32\uDWM.dll
16:46:09.0559 2156  C:\Windows\System32\uDWM.dll - ok
16:46:09.0561 2156  [ AD7B9C14083B52BC532FBA5948342B98 ] C:\Windows\SysWOW64\cmd.exe
16:46:09.0561 2156  C:\Windows\SysWOW64\cmd.exe - ok
16:46:09.0563 2156  [ 1BCDB508143B517F21BBDAC10F5777BF ] C:\Windows\System32\conhost.exe
16:46:09.0563 2156  C:\Windows\System32\conhost.exe - ok
16:46:09.0566 2156  [ 326C7F76A29897A892AA7726E91C1C67 ] C:\Windows\SysWOW64\winbrand.dll
16:46:09.0566 2156  C:\Windows\SysWOW64\winbrand.dll - ok
16:46:09.0568 2156  [ 0E816EA3C5DCE94C95099E8B38E75E67 ] C:\Windows\SysWOW64\ieframe.dll
16:46:09.0568 2156  C:\Windows\SysWOW64\ieframe.dll - ok
16:46:09.0571 2156  [ EEB8FCBB435FBF1A5252710D7EA9D0ED ] C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\diStRptr.dll
16:46:09.0571 2156  C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\diStRptr.dll - ok
16:46:09.0573 2156  [ 81DC804C13B68058F8A6EC2B684D48DF ] C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\isDataPr.dll
16:46:09.0573 2156  C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\isDataPr.dll - ok
16:46:09.0576 2156  [ 3BCECD87AB4E6743BFB45B352AD1A529 ] C:\Windows\SysWOW64\WindowsCodecs.dll
16:46:09.0576 2156  C:\Windows\SysWOW64\WindowsCodecs.dll - ok
16:46:09.0578 2156  [ E2A17BCC08D92F42E08AF6BA2F93ABA7 ] C:\Windows\SysWOW64\ExplorerFrame.dll
16:46:09.0578 2156  C:\Windows\SysWOW64\ExplorerFrame.dll - ok
16:46:09.0581 2156  [ BE247AE996A9FDE007A27B51413A6C79 ] C:\Windows\SysWOW64\shdocvw.dll
16:46:09.0581 2156  C:\Windows\SysWOW64\shdocvw.dll - ok
16:46:09.0583 2156  [ 6E1F8165C365D35C8E3C045AF0CDD481 ] C:\Windows\SysWOW64\duser.dll
16:46:09.0583 2156  C:\Windows\SysWOW64\duser.dll - ok
16:46:09.0585 2156  [ EE06B85BC69F18826302348A2AD089E0 ] C:\Windows\SysWOW64\dui70.dll
16:46:09.0585 2156  C:\Windows\SysWOW64\dui70.dll - ok
16:46:09.0588 2156  [ B52371B1F0E9AF672260D3D2336D5621 ] C:\Program Files\Enigma Software Group\SpyHunter\ExecutionGuard.dll
16:46:09.0588 2156  C:\Program Files\Enigma Software Group\SpyHunter\ExecutionGuard.dll - ok
16:46:09.0590 2156  [ 40CAEEE0EAF1B8569F7C8DF6420F2CB9 ] C:\Windows\SysWOW64\sfc.dll
16:46:09.0590 2156  C:\Windows\SysWOW64\sfc.dll - ok
16:46:09.0593 2156  [ 84799328D87B3091A3BDD251E1AD31F9 ] C:\Windows\SysWOW64\sfc_os.dll
16:46:09.0593 2156  C:\Windows\SysWOW64\sfc_os.dll - ok
16:46:09.0595 2156  [ 178A34E5554DCE485E1262DDF027960C ] C:\Users\XXXXXXX\AppData\Local\Temp\B0F19E18-8FC0-4C97-A494-80A99ED14BF5.exe
16:46:09.0595 2156  C:\Users\XXXXXXX\AppData\Local\Temp\B0F19E18-8FC0-4C97-A494-80A99ED14BF5.exe - ok
16:46:09.0598 2156  [ B2F12E1AA1209BB33DF237582F5BA0F9 ] C:\Program Files (x86)\UnHackMe\GWebUpdate.exe
16:46:09.0598 2156  C:\Program Files (x86)\UnHackMe\GWebUpdate.exe - ok
16:46:09.0600 2156  [ B2DB6ABA2E292235749B80A9C3DFA867 ] C:\Windows\SysWOW64\imagehlp.dll
16:46:09.0600 2156  C:\Windows\SysWOW64\imagehlp.dll - ok
16:46:09.0603 2156  [ E6999D31F6A5BC9EEE251D1F351B6ACD ] C:\Program Files\Enigma Software Group\SpyHunter\ShScanner.dll
16:46:09.0603 2156  C:\Program Files\Enigma Software Group\SpyHunter\ShScanner.dll - ok
16:46:09.0606 2156  [ BF6D6ED5FADCEEE885BD0144ECF1BA27 ] C:\Windows\SysWOW64\ncrypt.dll
16:46:09.0606 2156  C:\Windows\SysWOW64\ncrypt.dll - ok
16:46:09.0608 2156  [ CE71B9119A258EDD0A05B37D7B0F92E3 ] C:\Windows\SysWOW64\bcrypt.dll
16:46:09.0608 2156  C:\Windows\SysWOW64\bcrypt.dll - ok
16:46:09.0611 2156  [ E8449FE262D7406BCB2AC2A45C53EC5F ] C:\Windows\SysWOW64\bcryptprimitives.dll
16:46:09.0611 2156  C:\Windows\SysWOW64\bcryptprimitives.dll - ok
16:46:09.0613 2156  [ 1097F3035BAF46CED8B332B3564C5108 ] C:\Windows\SysWOW64\gpapi.dll
16:46:09.0613 2156  C:\Windows\SysWOW64\gpapi.dll - ok
16:46:09.0615 2156  [ CA79539D3D4C0BA66F0F051A5EE5E923 ] C:\Windows\SysWOW64\cryptnet.dll
16:46:09.0615 2156  C:\Windows\SysWOW64\cryptnet.dll - ok
16:46:09.0618 2156  [ 6F8E3B7B70E1BBA871212940C1FBDF60 ] C:\Windows\SysWOW64\SensApi.dll
16:46:09.0618 2156  C:\Windows\SysWOW64\SensApi.dll - ok
16:46:09.0620 2156  [ 846D0E4DB261CFAF363902E41498E961 ] C:\Windows\SysWOW64\EhStorShell.dll
16:46:09.0620 2156  C:\Windows\SysWOW64\EhStorShell.dll - ok
16:46:09.0623 2156  [ 03F3B770DFBED6131653CEDA8CA780F0 ] C:\Windows\SysWOW64\ntshrui.dll
16:46:09.0623 2156  C:\Windows\SysWOW64\ntshrui.dll - ok
16:46:09.0625 2156  [ 465BEA35F7ED4A4A57686DEA7EA10F47 ] C:\Windows\SysWOW64\cscapi.dll
16:46:09.0625 2156  C:\Windows\SysWOW64\cscapi.dll - ok
16:46:09.0627 2156  [ 827CB0D6C3F8057EA037FF271F8E9795 ] C:\Windows\SysWOW64\imageres.dll
16:46:09.0627 2156  C:\Windows\SysWOW64\imageres.dll - ok
16:46:09.0630 2156  [ 8B74CEC6980D4816B0037AE9A27E538F ] C:\Windows\SysWOW64\slc.dll
16:46:09.0630 2156  C:\Windows\SysWOW64\slc.dll - ok
16:46:09.0632 2156  [ 4F6CB8D5FA8114E79FE386F8DD6E89D6 ] C:\Program Files\Enigma Software Group\SpyHunter\Defman.dll
16:46:09.0632 2156  C:\Program Files\Enigma Software Group\SpyHunter\Defman.dll - ok
16:46:09.0635 2156  [ 162D247E995EAEBF3EF4289069E1111C ] C:\Windows\SysWOW64\devrtl.dll
16:46:09.0635 2156  C:\Windows\SysWOW64\devrtl.dll - ok
16:46:09.0637 2156  [ 567B1E7DAAAC7BF0A8BA6065C703E3AF ] C:\Program Files (x86)\UnHackMe\Unhackme.exe
16:46:09.0637 2156  C:\Program Files (x86)\UnHackMe\Unhackme.exe - ok
16:46:09.0640 2156  [ B9A8CBCFCD3EC9D2EA4740AF347BF108 ] C:\Windows\SysWOW64\mpr.dll
16:46:09.0640 2156  C:\Windows\SysWOW64\mpr.dll - ok
16:46:09.0642 2156  [ 703FFD301AB900B047337C5D40FD6F96 ] C:\Windows\SysWOW64\olepro32.dll
16:46:09.0642 2156  C:\Windows\SysWOW64\olepro32.dll - ok
16:46:09.0644 2156  [ 539C49CEBB3C50957AC8A09D95ECD880 ] C:\Windows\SysWOW64\shfolder.dll
16:46:09.0644 2156  C:\Windows\SysWOW64\shfolder.dll - ok
16:46:09.0647 2156  [ 850BD2D2D9CB5894935C3B6333CAD6FD ] C:\Windows\System32\riched20.dll
16:46:09.0647 2156  C:\Windows\System32\riched20.dll - ok
16:46:09.0649 2156  [ 0BA65122FFA7E37564EE86422DBF7AE8 ] C:\Windows\SysWOW64\nlaapi.dll
16:46:09.0649 2156  C:\Windows\SysWOW64\nlaapi.dll - ok
16:46:09.0652 2156  [ 0B7E85364CB878E2AD531DB7B601A9E5 ] C:\Windows\SysWOW64\NapiNSP.dll
16:46:09.0652 2156  C:\Windows\SysWOW64\NapiNSP.dll - ok
16:46:09.0654 2156  [ 5CF640EDDB1E40A5AB1BB743BCDEC610 ] C:\Windows\SysWOW64\pnrpnsp.dll
16:46:09.0654 2156  C:\Windows\SysWOW64\pnrpnsp.dll - ok
16:46:09.0656 2156  [ 5DF5D8CFD9B9573FA3B2C89D9061A240 ] C:\Windows\SysWOW64\winrnr.dll
16:46:09.0656 2156  C:\Windows\SysWOW64\winrnr.dll - ok
16:46:09.0659 2156  [ 37BC9E0E4B3657B54037777135569D1E ] C:\Program Files (x86)\Bonjour\mdnsNSP.dll
16:46:09.0659 2156  C:\Program Files (x86)\Bonjour\mdnsNSP.dll - ok
16:46:09.0661 2156  [ 03A03A453F1AAAE0C73AAAF895321C7A ] C:\Windows\SysWOW64\FWPUCLNT.DLL
16:46:09.0661 2156  C:\Windows\SysWOW64\FWPUCLNT.DLL - ok
16:46:09.0664 2156  [ ED6EE83D61EBC683C2CD8E899EA6FEBE ] C:\Windows\SysWOW64\rasadhlp.dll
16:46:09.0664 2156  C:\Windows\SysWOW64\rasadhlp.dll - ok
16:46:09.0666 2156  [ 02D08D4F73D6AF613A15A70162A7056D ] C:\ProgramData\RegRun\avgwdsvc.exe
16:46:09.0666 2156  C:\ProgramData\RegRun\avgwdsvc.exe - ok
16:46:09.0669 2156  [ 50B6C8EA3315966B46FCB4F90EA9DB1B ] C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe
16:46:09.0669 2156  C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe - ok
16:46:09.0671 2156  [ DC2755EB981280C312E7BE5EE8CF5D62 ] C:\Program Files\Microsoft IntelliPoint\ipoint.exe
16:46:09.0671 2156  C:\Program Files\Microsoft IntelliPoint\ipoint.exe - ok
16:46:09.0674 2156  [ DF72D700CC33611206675B8A2FD4D4F9 ] C:\Program Files\Logitech\SetPointP\SetPoint.exe
16:46:09.0674 2156  C:\Program Files\Logitech\SetPointP\SetPoint.exe - ok
16:46:09.0676 2156  [ AC012AD7539A8F9FFD31CF80BAA06CC7 ] C:\Windows\System32\LogiLDA.DLL
16:46:09.0676 2156  C:\Windows\System32\LogiLDA.DLL - ok
16:46:09.0680 2156  [ E3BF29CED96790CDAAFA981FFDDF53A3 ] C:\Program Files\Windows Sidebar\sidebar.exe
16:46:09.0680 2156  C:\Program Files\Windows Sidebar\sidebar.exe - ok
16:46:09.0683 2156  [ 870726CDCC241A92785572628B89CC07 ] C:\Windows\System32\SystemPropertiesPerformance.exe
16:46:09.0683 2156  C:\Windows\System32\SystemPropertiesPerformance.exe - ok
16:46:09.0685 2156  [ 7A6FBFF78A3153D795BD42290E3D4A1E ] C:\Program Files\Common Files\logishrd\Bluetooth\LBTWLgn.dll
16:46:09.0685 2156  C:\Program Files\Common Files\logishrd\Bluetooth\LBTWLgn.dll - ok
16:46:09.0688 2156  [ 64B328D52DFC8CDA123093E3F6E4C37C ] C:\Windows\System32\unregmp2.exe
16:46:09.0688 2156  C:\Windows\System32\unregmp2.exe - ok
16:46:09.0690 2156  [ B519848DFA30AE2B306576B51321D102 ] C:\Windows\System32\ie4uinit.exe
16:46:09.0690 2156  C:\Windows\System32\ie4uinit.exe - ok
16:46:09.0692 2156  [ C3E98C42EDF7EF237A4BAB91FEAC7426 ] C:\Windows\System32\iedkcs32.dll
16:46:09.0692 2156  C:\Windows\System32\iedkcs32.dll - ok
16:46:09.0695 2156  [ 59BCE9F07985F8A4204F4D6554CFF708 ] C:\Windows\System32\regsvr32.exe
16:46:09.0695 2156  C:\Windows\System32\regsvr32.exe - ok
16:46:09.0698 2156  [ 8455EB94D25F9B1553C5B9E4F571B392 ] C:\Windows\System32\mscories.dll
16:46:09.0698 2156  C:\Windows\System32\mscories.dll - ok
16:46:09.0701 2156  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] C:\Windows\System32\drivers\acpi.sys
16:46:09.0701 2156  C:\Windows\System32\drivers\acpi.sys - ok
16:46:09.0703 2156  [ 99F8E788246D495CE3794D7E7821D2CA ] C:\Windows\System32\drivers\acpipmi.sys
16:46:09.0703 2156  C:\Windows\System32\drivers\acpipmi.sys - ok
16:46:09.0706 2156  [ 2F6B34B83843F0C5118B63AC634F5BF4 ] C:\Windows\System32\drivers\adp94xx.sys
16:46:09.0706 2156  C:\Windows\System32\drivers\adp94xx.sys - ok
16:46:09.0708 2156  [ 597F78224EE9224EA1A13D6350CED962 ] C:\Windows\System32\drivers\adpahci.sys
16:46:09.0708 2156  C:\Windows\System32\drivers\adpahci.sys - ok
16:46:09.0711 2156  [ E109549C90F62FB570B9540C4B148E54 ] C:\Windows\System32\drivers\adpu320.sys
16:46:09.0711 2156  C:\Windows\System32\drivers\adpu320.sys - ok
16:46:09.0714 2156  [ 608C14DBA7299D8CB6ED035A68A15799 ] C:\Windows\System32\drivers\AGP440.sys
16:46:09.0714 2156  C:\Windows\System32\drivers\AGP440.sys - ok
16:46:09.0716 2156  [ 3290D6946B5E30E70414990574883DDB ] C:\Windows\System32\alg.exe
16:46:09.0716 2156  C:\Windows\System32\alg.exe - ok
16:46:09.0718 2156  [ 5812713A477A3AD7363C7438CA2EE038 ] C:\Windows\System32\drivers\aliide.sys
16:46:09.0718 2156  C:\Windows\System32\drivers\aliide.sys - ok
16:46:09.0721 2156  [ 1FF8B4431C353CE385C875F194924C0C ] C:\Windows\System32\drivers\amdide.sys
16:46:09.0721 2156  C:\Windows\System32\drivers\amdide.sys - ok
16:46:09.0723 2156  [ 7024F087CFF1833A806193EF9D22CDA9 ] C:\Windows\System32\drivers\amdk8.sys
16:46:09.0723 2156  C:\Windows\System32\drivers\amdk8.sys - ok
16:46:09.0726 2156  [ 1E56388B3FE0D031C44144EB8C4D6217 ] C:\Windows\System32\drivers\amdppm.sys
16:46:09.0726 2156  C:\Windows\System32\drivers\amdppm.sys - ok
16:46:09.0728 2156  [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] C:\Windows\System32\drivers\amdsata.sys
16:46:09.0728 2156  C:\Windows\System32\drivers\amdsata.sys - ok
16:46:09.0731 2156  [ F67F933E79241ED32FF46A4F29B5120B ] C:\Windows\System32\drivers\amdsbs.sys
16:46:09.0731 2156  C:\Windows\System32\drivers\amdsbs.sys - ok
16:46:09.0733 2156  [ 540DAF1CEA6094886D72126FD7C33048 ] C:\Windows\System32\drivers\amdxata.sys
16:46:09.0733 2156  C:\Windows\System32\drivers\amdxata.sys - ok
16:46:09.0735 2156  [ 89A69C3F2F319B43379399547526D952 ] C:\Windows\System32\drivers\appid.sys
16:46:09.0735 2156  C:\Windows\System32\drivers\appid.sys - ok
16:46:09.0738 2156  [ 0BC381A15355A3982216F7172F545DE1 ] C:\Windows\System32\appidsvc.dll
16:46:09.0738 2156  C:\Windows\System32\appidsvc.dll - ok
16:46:09.0740 2156  [ C484F8CEB1717C540242531DB7845C4E ] C:\Windows\System32\drivers\arc.sys
16:46:09.0740 2156  C:\Windows\System32\drivers\arc.sys - ok
16:46:09.0743 2156  [ 019AF6924AEFE7839F61C830227FE79C ] C:\Windows\System32\drivers\arcsas.sys
16:46:09.0743 2156  C:\Windows\System32\drivers\arcsas.sys - ok
16:46:09.0746 2156  [ 769765CE2CC62867468CEA93969B2242 ] C:\Windows\System32\drivers\asyncmac.sys
16:46:09.0746 2156  C:\Windows\System32\drivers\asyncmac.sys - ok
16:46:09.0748 2156  [ 02062C0B390B7729EDC9E69C680A6F3C ] C:\Windows\System32\drivers\atapi.sys
16:46:09.0748 2156  C:\Windows\System32\drivers\atapi.sys - ok
16:46:09.0750 2156  [ 7D89B0C443F6068E5B27AA3B972069FF ] C:\Windows\System32\drivers\athrx.sys
16:46:09.0750 2156  C:\Windows\System32\drivers\athrx.sys - ok
16:46:09.0753 2156  [ A6BF31A71B409DFA8CAC83159E1E2AFF ] C:\Windows\System32\AxInstSv.dll
16:46:09.0753 2156  C:\Windows\System32\AxInstSv.dll - ok
16:46:09.0756 2156  [ 3E5B191307609F7514148C6832BB0842 ] C:\Windows\System32\drivers\bxvbda.sys
16:46:09.0756 2156  C:\Windows\System32\drivers\bxvbda.sys - ok
16:46:09.0758 2156  [ B5ACE6968304A3900EEB1EBFD9622DF2 ] C:\Windows\System32\drivers\b57nd60a.sys
16:46:09.0758 2156  C:\Windows\System32\drivers\b57nd60a.sys - ok
16:46:09.0760 2156  [ FDE360167101B4E45A96F939F388AEB0 ] C:\Windows\System32\bdesvc.dll
16:46:09.0760 2156  C:\Windows\System32\bdesvc.dll - ok
16:46:09.0763 2156  [ 1EA7969E3271CBC59E1730697DC74682 ] C:\Windows\System32\qmgr.dll
16:46:09.0763 2156  C:\Windows\System32\qmgr.dll - ok
16:46:09.0765 2156  [ F09EEE9EDC320B5E1501F749FDE686C8 ] C:\Windows\System32\drivers\BrFiltLo.sys
16:46:09.0765 2156  C:\Windows\System32\drivers\BrFiltLo.sys - ok
16:46:09.0767 2156  [ B114D3098E9BDB8BEA8B053685831BE6 ] C:\Windows\System32\drivers\BrFiltUp.sys
16:46:09.0768 2156  C:\Windows\System32\drivers\BrFiltUp.sys - ok
16:46:09.0770 2156  [ 43BEA8D483BF1870F018E2D02E06A5BD ] C:\Windows\System32\drivers\BrSerId.sys
16:46:09.0770 2156  C:\Windows\System32\drivers\BrSerId.sys - ok
16:46:09.0772 2156  [ A6ECA2151B08A09CACECA35C07F05B42 ] C:\Windows\System32\drivers\BrSerWdm.sys
16:46:09.0773 2156  C:\Windows\System32\drivers\BrSerWdm.sys - ok
16:46:09.0775 2156  [ B79968002C277E869CF38BD22CD61524 ] C:\Windows\System32\drivers\BrUsbMdm.sys
16:46:09.0775 2156  C:\Windows\System32\drivers\BrUsbMdm.sys - ok
16:46:09.0777 2156  [ A87528880231C54E75EA7A44943B38BF ] C:\Windows\System32\drivers\BrUsbSer.sys
16:46:09.0777 2156  C:\Windows\System32\drivers\BrUsbSer.sys - ok
16:46:09.0780 2156  [ 95F9C2976059462CBBF227F7AAB10DE9 ] C:\Windows\System32\bthserv.dll
16:46:09.0780 2156  C:\Windows\System32\bthserv.dll - ok
16:46:09.0782 2156  [ 9DA669F11D1F894AB4EB69BF546A42E8 ] C:\Windows\System32\drivers\bthmodem.sys
16:46:09.0782 2156  C:\Windows\System32\drivers\bthmodem.sys - ok
16:46:09.0784 2156  [ B8BD2BB284668C84865658C77574381A ] C:\Windows\System32\drivers\cdfs.sys
16:46:09.0784 2156  C:\Windows\System32\drivers\cdfs.sys - ok
16:46:09.0787 2156  [ F17D1D393BBC69C5322FBFAFACA28C7F ] C:\Windows\System32\certprop.dll
16:46:09.0787 2156  C:\Windows\System32\certprop.dll - ok
16:46:09.0789 2156  [ FE1EC06F2253F691FE36217C592A0206 ] C:\Windows\System32\clfs.sys
16:46:09.0789 2156  C:\Windows\System32\clfs.sys - ok
16:46:09.0792 2156  [ D7CD5C4E1B71FA62050515314CFB52CF ] C:\Windows\System32\drivers\circlass.sys
16:46:09.0792 2156  C:\Windows\System32\drivers\circlass.sys - ok
16:46:09.0795 2156  [ D1CEEA2B47CB998321C579651CE3E4F8 ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
16:46:09.0795 2156  C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe - ok
16:46:09.0797 2156  [ C6F9AF94DCD58122A4D7E89DB6BED29D ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
16:46:09.0797 2156  C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe - ok
16:46:09.0800 2156  [ 0840155D0BDDF1190F84A663C284BD33 ] C:\Windows\System32\drivers\CmBatt.sys
16:46:09.0800 2156  C:\Windows\System32\drivers\CmBatt.sys - ok
16:46:09.0802 2156  [ E19D3F095812725D88F9001985B94EDD ] C:\Windows\System32\drivers\cmdide.sys
16:46:09.0802 2156  C:\Windows\System32\drivers\cmdide.sys - ok
16:46:09.0805 2156  [ 9AC4F97C2D3E93367E2148EA940CD2CD ] C:\Windows\System32\drivers\cng.sys
16:46:09.0805 2156  C:\Windows\System32\drivers\cng.sys - ok
16:46:09.0808 2156  [ 102DE219C3F61415F964C88E9085AD14 ] C:\Windows\System32\drivers\compbatt.sys
16:46:09.0808 2156  C:\Windows\System32\drivers\compbatt.sys - ok
16:46:09.0810 2156  [ 1C827878A998C18847245FE1F34EE597 ] C:\Windows\System32\drivers\crcdisk.sys
16:46:09.0810 2156  C:\Windows\System32\drivers\crcdisk.sys - ok
16:46:09.0813 2156  [ 76E02DB615A03801D698199A2BC4A06A ] C:\Windows\System32\drivers\dc3d.sys
16:46:09.0813 2156  C:\Windows\System32\drivers\dc3d.sys - ok
16:46:09.0815 2156  [ 3CEC7631A84943677AA8FA8EE5B6B43D ] C:\Windows\System32\defragsvc.dll
16:46:09.0815 2156  C:\Windows\System32\defragsvc.dll - ok
16:46:09.0818 2156  [ 9819EEE8B5EA3784EC4AF3B137A5244C ] C:\Windows\System32\drivers\disk.sys
16:46:09.0818 2156  C:\Windows\System32\drivers\disk.sys - ok
16:46:09.0820 2156  [ B1FB3DDCA0FDF408750D5843591AFBC6 ] C:\Windows\System32\dot3svc.dll
16:46:09.0820 2156  C:\Windows\System32\dot3svc.dll - ok
16:46:09.0822 2156  [ B42ED0320C6E41102FDE0005154849BB ] C:\Windows\System32\drivers\Dot4.sys
16:46:09.0822 2156  C:\Windows\System32\drivers\Dot4.sys - ok
16:46:09.0825 2156  [ E9F5969233C5D89F3C35E3A66A52A361 ] C:\Windows\System32\drivers\Dot4Prt.sys
16:46:09.0825 2156  C:\Windows\System32\drivers\Dot4Prt.sys - ok
16:46:09.0828 2156  [ FD05A02B0370BC3000F402E543CA5814 ] C:\Windows\System32\drivers\Dot4usb.sys
16:46:09.0828 2156  C:\Windows\System32\drivers\Dot4usb.sys - ok
16:46:09.0830 2156  [ 9B19F34400D24DF84C858A421C205754 ] C:\Windows\System32\drivers\drmkaud.sys
16:46:09.0830 2156  C:\Windows\System32\drivers\drmkaud.sys - ok
16:46:09.0832 2156  [ DC5D737F51BE844D8C82C695EB17372F ] C:\Windows\System32\drivers\evbda.sys
16:46:09.0832 2156  C:\Windows\System32\drivers\evbda.sys - ok
16:46:09.0835 2156  [ C4002B6B41975F057D98C439030CEA07 ] C:\Windows\ehome\ehrecvr.exe
16:46:09.0835 2156  C:\Windows\ehome\ehrecvr.exe - ok
16:46:09.0837 2156  [ 4705E8EF9934482C5BB488CE28AFC681 ] C:\Windows\ehome\ehsched.exe
16:46:09.0837 2156  C:\Windows\ehome\ehsched.exe - ok
16:46:09.0840 2156  [ 0E5DA5369A0FCAEA12456DD852545184 ] C:\Windows\System32\drivers\elxstor.sys
16:46:09.0840 2156  C:\Windows\System32\drivers\elxstor.sys - ok
16:46:09.0842 2156  [ 34A3C54752046E79A126E15C51DB409B ] C:\Windows\System32\drivers\errdev.sys
16:46:09.0842 2156  C:\Windows\System32\drivers\errdev.sys - ok
16:46:09.0845 2156  [ 3B32CAA07D672F8A2E0DF5CB3A873F45 ] C:\Windows\System32\drivers\EsgScanner.sys
16:46:09.0845 2156  C:\Windows\System32\drivers\EsgScanner.sys - ok
16:46:09.0847 2156  [ DBEFD454F8318A0EF691FDD2EAAB44EB ] C:\Windows\System32\FXSSVC.exe
16:46:09.0847 2156  C:\Windows\System32\FXSSVC.exe - ok
16:46:09.0849 2156  [ D765D19CD8EF61F650C384F62FAC00AB ] C:\Windows\System32\drivers\fdc.sys
16:46:09.0849 2156  C:\Windows\System32\drivers\fdc.sys - ok
16:46:09.0852 2156  [ 0438CAB2E03F4FB61455A7956026FE86 ] C:\Windows\System32\fdPHost.dll
16:46:09.0852 2156  C:\Windows\System32\fdPHost.dll - ok
16:46:09.0854 2156  [ 802496CB59A30349F9A6DD22D6947644 ] C:\Windows\System32\FDResPub.dll
16:46:09.0854 2156  C:\Windows\System32\FDResPub.dll - ok
16:46:09.0856 2156  [ 655661BE46B5F5F3FD454E2C3095B930 ] C:\Windows\System32\drivers\fileinfo.sys
16:46:09.0856 2156  C:\Windows\System32\drivers\fileinfo.sys - ok
16:46:09.0859 2156  [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] C:\Windows\System32\drivers\filetrace.sys
16:46:09.0859 2156  C:\Windows\System32\drivers\filetrace.sys - ok
16:46:09.0861 2156  [ C172A0F53008EAEB8EA33FE10E177AF5 ] C:\Windows\System32\drivers\flpydisk.sys
16:46:09.0862 2156  C:\Windows\System32\drivers\flpydisk.sys - ok
16:46:09.0864 2156  [ D43703496149971890703B4B1B723EAC ] C:\Windows\System32\drivers\fsdepends.sys
16:46:09.0864 2156  C:\Windows\System32\drivers\fsdepends.sys - ok
16:46:09.0866 2156  [ 1F7B25B858FA27015169FE95E54108ED ] C:\Windows\System32\drivers\fvevol.sys
16:46:09.0866 2156  C:\Windows\System32\drivers\fvevol.sys - ok
16:46:09.0869 2156  [ 8C778D335C9D272CFD3298AB02ABE3B6 ] C:\Windows\System32\drivers\GAGP30KX.SYS
16:46:09.0869 2156  C:\Windows\System32\drivers\GAGP30KX.SYS - ok
16:46:09.0872 2156  [ 2ED7FF3E1ADA4092632393781518B3A7 ] C:\Windows\System32\drivers\grmnusb.sys
16:46:09.0872 2156  C:\Windows\System32\drivers\grmnusb.sys - ok
16:46:09.0874 2156  [ F2523EF6460FC42405B12248338AB2F0 ] C:\Windows\System32\drivers\hcw85cir.sys
16:46:09.0874 2156  C:\Windows\System32\drivers\hcw85cir.sys - ok
16:46:09.0877 2156  [ 78E86380454A7B10A5EB255DC44A355F ] C:\Windows\System32\drivers\hidbatt.sys
16:46:09.0877 2156  C:\Windows\System32\drivers\hidbatt.sys - ok
16:46:09.0879 2156  [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] C:\Windows\System32\drivers\hidbth.sys
16:46:09.0879 2156  C:\Windows\System32\drivers\hidbth.sys - ok
16:46:09.0881 2156  [ 0A77D29F311B88CFAE3B13F9C1A73825 ] C:\Windows\System32\drivers\hidir.sys
16:46:09.0882 2156  C:\Windows\System32\drivers\hidir.sys - ok
16:46:09.0884 2156  [ 387E72E739E15E3D37907A86D9FF98E2 ] C:\Windows\System32\KMSVC.DLL
16:46:09.0884 2156  C:\Windows\System32\KMSVC.DLL - ok
16:46:09.0886 2156  [ EFDFB3DD38A4376F93E7985173813ABD ] C:\Windows\System32\ListSvc.dll
16:46:09.0886 2156  C:\Windows\System32\ListSvc.dll - ok
16:46:09.0889 2156  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] C:\Windows\System32\drivers\HpSAMD.sys
16:46:09.0889 2156  C:\Windows\System32\drivers\HpSAMD.sys - ok
16:46:09.0892 2156  [ A5462BD6884960C9DC85ED49D34FF392 ] C:\Windows\System32\drivers\hwpolicy.sys
16:46:09.0892 2156  C:\Windows\System32\drivers\hwpolicy.sys - ok
16:46:09.0894 2156  [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] C:\Windows\System32\drivers\i8042prt.sys
16:46:09.0894 2156  C:\Windows\System32\drivers\i8042prt.sys - ok
16:46:09.0897 2156  [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] C:\Windows\System32\drivers\iaStorV.sys
16:46:09.0897 2156  C:\Windows\System32\drivers\iaStorV.sys - ok
16:46:09.0899 2156  [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
16:46:09.0899 2156  C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe - ok
16:46:09.0902 2156  [ 5C18831C61933628F5BB0EA2675B9D21 ] C:\Windows\System32\drivers\iirsp.sys
16:46:09.0902 2156  C:\Windows\System32\drivers\iirsp.sys - ok
16:46:09.0904 2156  [ F00F20E70C6EC3AA366910083A0518AA ] C:\Windows\System32\drivers\intelide.sys
16:46:09.0904 2156  C:\Windows\System32\drivers\intelide.sys - ok
16:46:09.0907 2156  [ 098A91C54546A3B878DAD6A7E90A455B ] C:\Windows\System32\IPBusEnum.dll
16:46:09.0907 2156  C:\Windows\System32\IPBusEnum.dll - ok
16:46:09.0909 2156  [ C9F0E1BD74365A8771590E9008D22AB6 ] C:\Windows\System32\drivers\ipfltdrv.sys
16:46:09.0909 2156  C:\Windows\System32\drivers\ipfltdrv.sys - ok
16:46:09.0912 2156  [ 0FC1AEA580957AA8817B8F305D18CA3A ] C:\Windows\System32\drivers\IPMIDrv.sys
16:46:09.0912 2156  C:\Windows\System32\drivers\IPMIDrv.sys - ok
16:46:09.0914 2156  [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] C:\Windows\System32\drivers\ipnat.sys
16:46:09.0914 2156  C:\Windows\System32\drivers\ipnat.sys - ok
16:46:09.0917 2156  [ 3D62FE4FEFE9C67DAFEC52B534DFA1FB ] C:\Program Files\iPod\bin\iPodService.exe
16:46:09.0917 2156  C:\Program Files\iPod\bin\iPodService.exe - ok
16:46:09.0919 2156  [ 3ABF5E7213EB28966D55D58B515D5CE9 ] C:\Windows\System32\drivers\irenum.sys
16:46:09.0919 2156  C:\Windows\System32\drivers\irenum.sys - ok
16:46:09.0922 2156  [ 2F7B28DC3E1183E5EB418DF55C204F38 ] C:\Windows\System32\drivers\isapnp.sys
16:46:09.0922 2156  C:\Windows\System32\drivers\isapnp.sys - ok
16:46:09.0924 2156  [ D931D7309DEB2317035B07C9F9E6B0BD ] C:\Windows\System32\drivers\msiscsi.sys
16:46:09.0924 2156  C:\Windows\System32\drivers\msiscsi.sys - ok
16:46:09.0927 2156  [ BD5BF20EC242E003A2F570B8754A56D1 ] C:\Windows\System32\drivers\ivusb.sys
16:46:09.0927 2156  C:\Windows\System32\drivers\ivusb.sys - ok
16:46:09.0929 2156  [ 97A7070AEA4C058B6418519E869A63B4 ] C:\Windows\System32\drivers\ksecdd.sys
16:46:09.0929 2156  C:\Windows\System32\drivers\ksecdd.sys - ok
16:46:09.0932 2156  [ 26C43A7C2862447EC59DEDA188D1DA07 ] C:\Windows\System32\drivers\ksecpkg.sys
16:46:09.0932 2156  C:\Windows\System32\drivers\ksecpkg.sys - ok
16:46:09.0934 2156  [ 6AB66E16AA859232F64DEB66887A8C9C ] C:\Windows\System32\msdtckrm.dll
16:46:09.0934 2156  C:\Windows\System32\msdtckrm.dll - ok
16:46:09.0937 2156  [ 7772DFAB22611050B79504E671B06E6E ] C:\Program Files\Common Files\logishrd\Bluetooth\LBTServ.exe
16:46:09.0937 2156  C:\Program Files\Common Files\logishrd\Bluetooth\LBTServ.exe - ok
16:46:09.0939 2156  [ ED7EC050CD6C20E1A93A4DAFB7EFD14D ] C:\Windows\System32\drivers\LEqdUsb.sys
16:46:09.0939 2156  C:\Windows\System32\drivers\LEqdUsb.sys - ok
16:46:09.0942 2156  [ 3267BC698E29474A8381E68904EB0390 ] C:\Windows\System32\drivers\LHidEqd.sys
16:46:09.0942 2156  C:\Windows\System32\drivers\LHidEqd.sys - ok
16:46:09.0944 2156  [ C1185803384AB3FEED115F79F109427F ] C:\Windows\System32\lltdsvc.dll
16:46:09.0944 2156  C:\Windows\System32\lltdsvc.dll - ok
16:46:09.0947 2156  [ 1A93E54EB0ECE102495A51266DCDB6A6 ] C:\Windows\System32\drivers\lsi_fc.sys
16:46:09.0947 2156  C:\Windows\System32\drivers\lsi_fc.sys - ok
16:46:09.0949 2156  [ 1047184A9FDC8BDBFF857175875EE810 ] C:\Windows\System32\drivers\lsi_sas.sys
16:46:09.0949 2156  C:\Windows\System32\drivers\lsi_sas.sys - ok
16:46:09.0952 2156  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] C:\Windows\System32\drivers\lsi_sas2.sys
16:46:09.0952 2156  C:\Windows\System32\drivers\lsi_sas2.sys - ok
16:46:09.0954 2156  [ 0504EACAFF0D3C8AED161C4B0D369D4A ] C:\Windows\System32\drivers\lsi_scsi.sys
16:46:09.0954 2156  C:\Windows\System32\drivers\lsi_scsi.sys - ok
16:46:09.0957 2156  [ C586CC39820B6E7FE3657FED8329D300 ] C:\Windows\System32\drivers\lvpopf64.sys
16:46:09.0957 2156  C:\Windows\System32\drivers\lvpopf64.sys - ok
16:46:09.0959 2156  [ 224AB3850F573A419F921C41A15D7F5B ] C:\Windows\System32\drivers\lvrs64.sys
16:46:09.0959 2156  C:\Windows\System32\drivers\lvrs64.sys - ok
16:46:09.0962 2156  [ BFBA84B8A9C233AE42B11CF7BDFC6C01 ] C:\Windows\System32\drivers\lvuvc64.sys
16:46:09.0962 2156  C:\Windows\System32\drivers\lvuvc64.sys - ok
16:46:09.0964 2156  [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] C:\Windows\System32\Mcx2Svc.dll
16:46:09.0964 2156  C:\Windows\System32\Mcx2Svc.dll - ok
16:46:09.0967 2156  [ A55805F747C6EDB6A9080D7C633BD0F4 ] C:\Windows\System32\drivers\megasas.sys
16:46:09.0967 2156  C:\Windows\System32\drivers\megasas.sys - ok
16:46:09.0969 2156  [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] C:\Windows\System32\drivers\MegaSR.sys
16:46:09.0969 2156  C:\Windows\System32\drivers\MegaSR.sys - ok
16:46:09.0972 2156  [ 800BA92F7010378B09F9ED9270F07137 ] C:\Windows\System32\drivers\modem.sys
16:46:09.0972 2156  C:\Windows\System32\drivers\modem.sys - ok
16:46:09.0974 2156  [ E90ABA3C6F01BE2C456C4AA857B28646 ] C:\Windows\System32\drivers\motmodem.sys
16:46:09.0974 2156  C:\Windows\System32\drivers\motmodem.sys - ok
16:46:09.0977 2156  [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] C:\Windows\System32\drivers\mountmgr.sys
16:46:09.0977 2156  C:\Windows\System32\drivers\mountmgr.sys - ok
16:46:09.0979 2156  [ A44B420D30BD56E145D6A2BC8768EC58 ] C:\Windows\System32\drivers\mpio.sys
16:46:09.0979 2156  C:\Windows\System32\drivers\mpio.sys - ok
16:46:09.0982 2156  [ DC722758B8261E1ABAFD31A3C0A66380 ] C:\Windows\System32\drivers\mrxdav.sys
16:46:09.0982 2156  C:\Windows\System32\drivers\mrxdav.sys - ok
16:46:09.0984 2156  [ C25F0BAFA182CBCA2DD3C851C2E75796 ] C:\Windows\System32\drivers\msahci.sys
16:46:09.0984 2156  C:\Windows\System32\drivers\msahci.sys - ok
16:46:09.0987 2156  [ DB801A638D011B9633829EB6F663C900 ] C:\Windows\System32\drivers\msdsm.sys
16:46:09.0987 2156  C:\Windows\System32\drivers\msdsm.sys - ok
16:46:09.0988 2156  [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] C:\Windows\System32\msdtc.exe
16:46:09.0988 2156  C:\Windows\System32\msdtc.exe - ok
16:46:09.0991 2156  [ F9D215A46A8B9753F61767FA72A20326 ] C:\Windows\System32\drivers\mshidkmdf.sys
16:46:09.0991 2156  C:\Windows\System32\drivers\mshidkmdf.sys - ok
16:46:09.0994 2156  [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] C:\Windows\System32\drivers\msisadrv.sys
16:46:09.0994 2156  C:\Windows\System32\drivers\msisadrv.sys - ok
16:46:09.0996 2156  [ 808E98FF49B155C522E6400953177B08 ] C:\Windows\System32\iscsiexe.dll
16:46:09.0996 2156  C:\Windows\System32\iscsiexe.dll - ok
16:46:09.0999 2156  [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] C:\Windows\System32\drivers\mskssrv.sys
16:46:09.0999 2156  C:\Windows\System32\drivers\mskssrv.sys - ok
16:46:10.0001 2156  [ BDD71ACE35A232104DDD349EE70E1AB3 ] C:\Windows\System32\drivers\mspclock.sys
16:46:10.0001 2156  C:\Windows\System32\drivers\mspclock.sys - ok
16:46:10.0004 2156  [ 4ED981241DB27C3383D72092B618A1D0 ] C:\Windows\System32\drivers\mspqm.sys
16:46:10.0004 2156  C:\Windows\System32\drivers\mspqm.sys - ok
16:46:10.0006 2156  [ 2E66F9ECB30B4221A318C92AC2250779 ] C:\Windows\System32\drivers\mstee.sys
16:46:10.0006 2156  C:\Windows\System32\drivers\mstee.sys - ok
16:46:10.0008 2156  [ 7EA404308934E675BFFDE8EDF0757BCD ] C:\Windows\System32\drivers\MTConfig.sys
16:46:10.0008 2156  C:\Windows\System32\drivers\MTConfig.sys - ok
16:46:10.0011 2156  [ F9A18612FD3526FE473C1BDA678D61C8 ] C:\Windows\System32\drivers\mup.sys
16:46:10.0011 2156  C:\Windows\System32\drivers\mup.sys - ok
16:46:10.0014 2156  [ 760E38053BF56E501D562B70AD796B88 ] C:\Windows\System32\drivers\ndis.sys
16:46:10.0014 2156  C:\Windows\System32\drivers\ndis.sys - ok
16:46:10.0016 2156  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] C:\Windows\System32\drivers\ndiscap.sys
16:46:10.0016 2156  C:\Windows\System32\drivers\ndiscap.sys - ok
16:46:10.0019 2156  [ 77889813BE4D166CDAB78DDBA990DA92 ] C:\Windows\System32\drivers\nfrd960.sys
16:46:10.0019 2156  C:\Windows\System32\drivers\nfrd960.sys - ok
16:46:10.0021 2156  [ 0A92CB65770442ED0DC44834632F66AD ] C:\Windows\System32\drivers\nvraid.sys
16:46:10.0021 2156  C:\Windows\System32\drivers\nvraid.sys - ok
16:46:10.0024 2156  [ DAB0E87525C10052BF65F06152F37E4A ] C:\Windows\System32\drivers\nvstor.sys
16:46:10.0024 2156  C:\Windows\System32\drivers\nvstor.sys - ok
16:46:10.0026 2156  [ 270D7CD42D6E3979F6DD0146650F0E05 ] C:\Windows\System32\drivers\NV_AGP.SYS
16:46:10.0026 2156  C:\Windows\System32\drivers\NV_AGP.SYS - ok
16:46:10.0029 2156  [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] C:\Windows\System32\drivers\ohci1394.sys
16:46:10.0029 2156  C:\Windows\System32\drivers\ohci1394.sys - ok
16:46:10.0031 2156  [ 3EAC4455472CC2C97107B5291E0DCAFE ] C:\Windows\System32\pnrpsvc.dll
16:46:10.0031 2156  C:\Windows\System32\pnrpsvc.dll - ok
16:46:10.0033 2156  [ 927463ECB02179F88E4B9A17568C63C3 ] C:\Windows\System32\p2psvc.dll
16:46:10.0033 2156  C:\Windows\System32\p2psvc.dll - ok
16:46:10.0036 2156  [ 0086431C29C35BE1DBC43F52CC273887 ] C:\Windows\System32\drivers\parport.sys
16:46:10.0036 2156  C:\Windows\System32\drivers\parport.sys - ok
16:46:10.0038 2156  [ E9766131EEADE40A27DC27D2D68FBA9C ] C:\Windows\System32\drivers\partmgr.sys
16:46:10.0038 2156  C:\Windows\System32\drivers\partmgr.sys - ok
16:46:10.0041 2156  [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] C:\Windows\System32\drivers\pci.sys
16:46:10.0041 2156  C:\Windows\System32\drivers\pci.sys - ok
16:46:10.0043 2156  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] C:\Windows\System32\drivers\pciide.sys
16:46:10.0043 2156  C:\Windows\System32\drivers\pciide.sys - ok
16:46:10.0045 2156  [ B2E81D4E87CE48589F98CB8C05B01F2F ] C:\Windows\System32\drivers\pcmcia.sys
16:46:10.0045 2156  C:\Windows\System32\drivers\pcmcia.sys - ok
16:46:10.0048 2156  [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] C:\Windows\System32\drivers\pcw.sys
16:46:10.0048 2156  C:\Windows\System32\drivers\pcw.sys - ok
16:46:10.0050 2156  [ C7CF6A6E137463219E1259E3F0F0DD6C ] C:\Windows\System32\pla.dll
16:46:10.0050 2156  C:\Windows\System32\pla.dll - ok
16:46:10.0052 2156  [ 7195581CEC9BB7D12ABE54036ACC2E38 ] C:\Windows\System32\pnrpauto.dll
16:46:10.0052 2156  C:\Windows\System32\pnrpauto.dll - ok
16:46:10.0055 2156  [ B8D8EC78B0F9ED8E220506181274F3D3 ] C:\Windows\System32\drivers\point64.sys
16:46:10.0055 2156  C:\Windows\System32\drivers\point64.sys - ok
16:46:10.0057 2156  [ 4F15D75ADF6156BF56ECED6D4A55C389 ] C:\Windows\System32\IPSECSVC.DLL
16:46:10.0057 2156  C:\Windows\System32\IPSECSVC.DLL - ok
16:46:10.0060 2156  [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] C:\Windows\System32\drivers\processr.sys
16:46:10.0060 2156  C:\Windows\System32\drivers\processr.sys - ok
16:46:10.0062 2156  [ A53A15A11EBFD21077463EE2C7AFEEF0 ] C:\Windows\System32\drivers\ql2300.sys
16:46:10.0062 2156  C:\Windows\System32\drivers\ql2300.sys - ok
16:46:10.0065 2156  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] C:\Windows\System32\drivers\ql40xx.sys
16:46:10.0065 2156  C:\Windows\System32\drivers\ql40xx.sys - ok
16:46:10.0067 2156  [ 906191634E99AEA92C4816150BDA3732 ] C:\Windows\System32\qwave.dll
16:46:10.0067 2156  C:\Windows\System32\qwave.dll - ok
16:46:10.0070 2156  [ 76707BB36430888D9CE9D705398ADB6C ] C:\Windows\System32\drivers\qwavedrv.sys
16:46:10.0070 2156  C:\Windows\System32\drivers\qwavedrv.sys - ok
16:46:10.0073 2156  [ 5A0DA8AD5762FA2D91678A8A01311704 ] C:\Windows\System32\drivers\rasacd.sys
16:46:10.0073 2156  C:\Windows\System32\drivers\rasacd.sys - ok
16:46:10.0075 2156  [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] C:\Windows\System32\rasauto.dll
16:46:10.0075 2156  C:\Windows\System32\rasauto.dll - ok
16:46:10.0077 2156  [ 6D137963730144698CBD10F202E9F251 ] C:\Windows\System32\wersvc.dll
16:46:10.0077 2156  C:\Windows\System32\wersvc.dll - ok
16:46:10.0080 2156  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] C:\Windows\System32\drivers\rdpbus.sys
16:46:10.0080 2156  C:\Windows\System32\drivers\rdpbus.sys - ok
16:46:10.0082 2156  [ 34ED295FA0121C241BFEF24764FC4520 ] C:\Windows\System32\drivers\rdyboost.sys
16:46:10.0082 2156  C:\Windows\System32\drivers\rdyboost.sys - ok
16:46:10.0084 2156  [ E4D94F24081440B5FC5AA556C7C62702 ] C:\Windows\System32\regsvc.dll
16:46:10.0084 2156  C:\Windows\System32\regsvc.dll - ok
16:46:10.0086 2156  [ D5BA242D4CF8E384DB90E6A8ED850B8C ] C:\Windows\System32\Locator.exe
16:46:10.0086 2156  C:\Windows\System32\Locator.exe - ok
16:46:10.0088 2156  [ AC03AF3329579FFFB455AA2DAABBE22B ] C:\Windows\System32\drivers\sbp2port.sys
16:46:10.0088 2156  C:\Windows\System32\drivers\sbp2port.sys - ok
16:46:10.0091 2156  [ 9B7395789E3791A3B6D000FE6F8B131E ] C:\Windows\System32\SCardSvr.dll
16:46:10.0091 2156  C:\Windows\System32\SCardSvr.dll - ok
16:46:10.0093 2156  [ 253F38D0D7074C02FF8DEB9836C97D2B ] C:\Windows\System32\drivers\scfilter.sys
16:46:10.0093 2156  C:\Windows\System32\drivers\scfilter.sys - ok
16:46:10.0096 2156  [ 6EA4234DC55346E0709560FE7C2C1972 ] C:\Windows\System32\sdrsvc.dll
16:46:10.0096 2156  C:\Windows\System32\sdrsvc.dll - ok
16:46:10.0098 2156  [ BC617A4E1B4FA8DF523A061739A0BD87 ] C:\Windows\System32\seclogon.dll
16:46:10.0098 2156  C:\Windows\System32\seclogon.dll - ok
16:46:10.0100 2156  [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] C:\Windows\System32\sensrsvc.dll
16:46:10.0100 2156  C:\Windows\System32\sensrsvc.dll - ok
16:46:10.0103 2156  [ CB624C0035412AF0DEBEC78C41F5CA1B ] C:\Windows\System32\drivers\serenum.sys
16:46:10.0103 2156  C:\Windows\System32\drivers\serenum.sys - ok
16:46:10.0105 2156  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] C:\Windows\System32\drivers\serial.sys
16:46:10.0105 2156  C:\Windows\System32\drivers\serial.sys - ok
16:46:10.0108 2156  [ 1C545A7D0691CC4A027396535691C3E3 ] C:\Windows\System32\drivers\sermouse.sys
16:46:10.0108 2156  C:\Windows\System32\drivers\sermouse.sys - ok
16:46:10.0110 2156  [ 0B6231BF38174A1628C4AC812CC75804 ] C:\Windows\System32\SessEnv.dll
16:46:10.0112 2156  C:\Windows\System32\SessEnv.dll - ok
16:46:10.0114 2156  [ A554811BCD09279536440C964AE35BBF ] C:\Windows\System32\drivers\sffdisk.sys
16:46:10.0114 2156  C:\Windows\System32\drivers\sffdisk.sys - ok
16:46:10.0116 2156  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] C:\Windows\System32\drivers\sffp_mmc.sys
16:46:10.0116 2156  C:\Windows\System32\drivers\sffp_mmc.sys - ok
16:46:10.0119 2156  [ DD85B78243A19B59F0637DCF284DA63C ] C:\Windows\System32\drivers\sffp_sd.sys
16:46:10.0119 2156  C:\Windows\System32\drivers\sffp_sd.sys - ok
16:46:10.0121 2156  [ A9D601643A1647211A1EE2EC4E433FF4 ] C:\Windows\System32\drivers\sfloppy.sys
16:46:10.0121 2156  C:\Windows\System32\drivers\sfloppy.sys - ok
16:46:10.0124 2156  [ B95F6501A2F8B2E78C697FEC401970CE ] C:\Windows\System32\ipnathlp.dll
16:46:10.0124 2156  C:\Windows\System32\ipnathlp.dll - ok
16:46:10.0126 2156  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] C:\Windows\System32\drivers\sisraid2.sys
16:46:10.0126 2156  C:\Windows\System32\drivers\sisraid2.sys - ok
16:46:10.0129 2156  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] C:\Windows\System32\drivers\sisraid4.sys
16:46:10.0129 2156  C:\Windows\System32\drivers\sisraid4.sys - ok
16:46:10.0131 2156  [ 548260A7B8654E024DC30BF8A7C5BAA4 ] C:\Windows\System32\drivers\smb.sys
16:46:10.0131 2156  C:\Windows\System32\drivers\smb.sys - ok
16:46:10.0134 2156  [ 12583AF6CBE0050651EAF2723B3AD7B3 ] C:\Windows\SysWOW64\speedfan.sys
16:46:10.0134 2156  C:\Windows\SysWOW64\speedfan.sys - ok
16:46:10.0136 2156  [ E17E0188BB90FAE42D83E98707EFA59C ] C:\Windows\System32\sppsvc.exe
16:46:10.0136 2156  C:\Windows\System32\sppsvc.exe - ok
16:46:10.0138 2156  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] C:\Windows\System32\sppuinotify.dll
16:46:10.0138 2156  C:\Windows\System32\sppuinotify.dll - ok
16:46:10.0141 2156  [ D8B882C520FC83547E22014FF5EC66D7 ] C:\Windows\System32\drivers\Spyder3.sys
16:46:10.0141 2156  C:\Windows\System32\drivers\Spyder3.sys - ok
16:46:10.0143 2156  [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] C:\Windows\System32\ssdpsrv.dll
16:46:10.0143 2156  C:\Windows\System32\ssdpsrv.dll - ok
16:46:10.0146 2156  [ F3817967ED533D08327DC73BC4D5542A ] C:\Windows\System32\drivers\stexstor.sys
16:46:10.0146 2156  C:\Windows\System32\drivers\stexstor.sys - ok
16:46:10.0148 2156  [ DECACB6921DED1A38642642685D77DAC ] C:\Windows\System32\drivers\serscan.sys
16:46:10.0148 2156  C:\Windows\System32\drivers\serscan.sys - ok
16:46:10.0151 2156  [ E08E46FDD841B7184194011CA1955A0B ] C:\Windows\System32\swprv.dll
16:46:10.0151 2156  C:\Windows\System32\swprv.dll - ok
16:46:10.0153 2156  [ 777217682DA76337E8E6EC8AC4412B9B ] C:\Windows\System32\drivers\NISx64\1402010.016\SymDS64.sys
16:46:10.0153 2156  C:\Windows\System32\drivers\NISx64\1402010.016\SymDS64.sys - ok
16:46:10.0156 2156  [ 64D1AF3D04E70A681154FFF1893848F6 ] C:\Windows\System32\drivers\NISx64\1402010.016\SymEFA64.sys
16:46:10.0156 2156  C:\Windows\System32\drivers\NISx64\1402010.016\SymEFA64.sys - ok
16:46:10.0158 2156  [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] C:\Windows\System32\TabSvc.dll
16:46:10.0158 2156  C:\Windows\System32\TabSvc.dll - ok
16:46:10.0161 2156  [ B62A953F2BF3922C8764A29C34A22899 ] C:\Windows\System32\drivers\tcpip.sys
16:46:10.0161 2156  C:\Windows\System32\drivers\tcpip.sys - ok
16:46:10.0163 2156  [ 1BE03AC720F4D302EA01D40F588162F6 ] C:\Windows\System32\tbssvc.dll
16:46:10.0163 2156  C:\Windows\System32\tbssvc.dll - ok
16:46:10.0165 2156  [ 3371D21011695B16333A3934340C4E7C ] C:\Windows\System32\drivers\tdpipe.sys
16:46:10.0166 2156  C:\Windows\System32\drivers\tdpipe.sys - ok
16:46:10.0168 2156  [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] C:\Windows\System32\drivers\tdtcp.sys
16:46:10.0168 2156  C:\Windows\System32\drivers\tdtcp.sys - ok
16:46:10.0170 2156  [ 773212B2AAA24C1E31F10246B15B276C ] C:\Windows\servicing\TrustedInstaller.exe
16:46:10.0170 2156  C:\Windows\servicing\TrustedInstaller.exe - ok
16:46:10.0173 2156  [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] C:\Windows\System32\drivers\tssecsrv.sys
16:46:10.0173 2156  C:\Windows\System32\drivers\tssecsrv.sys - ok
16:46:10.0175 2156  [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] C:\Windows\System32\drivers\TsUsbFlt.sys
16:46:10.0175 2156  C:\Windows\System32\drivers\TsUsbFlt.sys - ok
16:46:10.0178 2156  [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] C:\Windows\System32\drivers\UAGP35.SYS
16:46:10.0178 2156  C:\Windows\System32\drivers\UAGP35.SYS - ok
16:46:10.0180 2156  [ FF4232A1A64012BAA1FD97C7B67DF593 ] C:\Windows\System32\drivers\udfs.sys
16:46:10.0180 2156  C:\Windows\System32\drivers\udfs.sys - ok
16:46:10.0183 2156  [ 3CBDEC8D06B9968ABA702EBA076364A1 ] C:\Windows\System32\UI0Detect.exe
16:46:10.0183 2156  C:\Windows\System32\UI0Detect.exe - ok
16:46:10.0185 2156  [ 4BFE1BC28391222894CBF1E7D0E42320 ] C:\Windows\System32\drivers\ULIAGPKX.SYS
16:46:10.0185 2156  C:\Windows\System32\drivers\ULIAGPKX.SYS - ok
16:46:10.0188 2156  [ B2E8E8CB557B156DA5493BBDDCC1474D ] C:\Windows\System32\drivers\umpass.sys
16:46:10.0188 2156  C:\Windows\System32\drivers\umpass.sys - ok
16:46:10.0190 2156  [ D47EC6A8E81633DD18D2436B19BAF6DE ] C:\Windows\System32\upnphost.dll
16:46:10.0190 2156  C:\Windows\System32\upnphost.dll - ok
16:46:10.0193 2156  [ F724B03C3DFAACF08D17D38BF3333583 ] C:\Windows\System32\drivers\usbaapl64.sys
16:46:10.0193 2156  C:\Windows\System32\drivers\usbaapl64.sys - ok
16:46:10.0195 2156  [ 82E8F44688E6FAC57B5B7C6FC7ADBC2A ] C:\Windows\System32\drivers\USBAUDIO.sys
16:46:10.0195 2156  C:\Windows\System32\drivers\USBAUDIO.sys - ok
16:46:10.0197 2156  [ AF0892A803FDDA7492F595368E3B68E7 ] C:\Windows\System32\drivers\usbcir.sys
16:46:10.0197 2156  C:\Windows\System32\drivers\usbcir.sys - ok
16:46:10.0200 2156  [ 9840FC418B4CBD632D3D0A667A725C31 ] C:\Windows\System32\drivers\usbohci.sys
16:46:10.0200 2156  C:\Windows\System32\drivers\usbohci.sys - ok
16:46:10.0202 2156  [ 73188F58FB384E75C4063D29413CEE3D ] C:\Windows\System32\drivers\usbprint.sys
16:46:10.0202 2156  C:\Windows\System32\drivers\usbprint.sys - ok
16:46:10.0205 2156  [ AAA2513C8AED8B54B189FD0C6B1634C0 ] C:\Windows\System32\drivers\usbscan.sys
16:46:10.0205 2156  C:\Windows\System32\drivers\usbscan.sys - ok
16:46:10.0208 2156  [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] C:\Windows\System32\drivers\usbuhci.sys
16:46:10.0208 2156  C:\Windows\System32\drivers\usbuhci.sys - ok
16:46:10.0210 2156  [ C5C876CCFC083FF3B128F933823E87BD ] C:\Windows\System32\drivers\vdrvroot.sys
16:46:10.0210 2156  C:\Windows\System32\drivers\vdrvroot.sys - ok
16:46:10.0213 2156  [ 8D6B481601D01A456E75C3210F1830BE ] C:\Windows\System32\vds.exe
16:46:10.0213 2156  C:\Windows\System32\vds.exe - ok
16:46:10.0215 2156  [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] C:\Windows\System32\drivers\vgapnp.sys
16:46:10.0215 2156  C:\Windows\System32\drivers\vgapnp.sys - ok
16:46:10.0218 2156  [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] C:\Windows\System32\drivers\vhdmp.sys
16:46:10.0218 2156  C:\Windows\System32\drivers\vhdmp.sys - ok
16:46:10.0220 2156  [ E5689D93FFE4E5D66C0178761240DD54 ] C:\Windows\System32\drivers\viaide.sys
16:46:10.0220 2156  C:\Windows\System32\drivers\viaide.sys - ok
16:46:10.0222 2156  [ D2AAFD421940F640B407AEFAAEBD91B0 ] C:\Windows\System32\drivers\volmgr.sys
16:46:10.0222 2156  C:\Windows\System32\drivers\volmgr.sys - ok
16:46:10.0225 2156  [ A255814907C89BE58B79EF2F189B843B ] C:\Windows\System32\drivers\volmgrx.sys
16:46:10.0225 2156  C:\Windows\System32\drivers\volmgrx.sys - ok
16:46:10.0227 2156  [ 0D08D2F3B3FF84E433346669B5E0F639 ] C:\Windows\System32\drivers\volsnap.sys
16:46:10.0227 2156  C:\Windows\System32\drivers\volsnap.sys - ok
16:46:10.0230 2156  [ 5E2016EA6EBACA03C04FEAC5F330D997 ] C:\Windows\System32\drivers\vsmraid.sys
16:46:10.0230 2156  C:\Windows\System32\drivers\vsmraid.sys - ok
16:46:10.0232 2156  [ B60BA0BC31B0CB414593E169F6F21CC2 ] C:\Windows\System32\VSSVC.exe
16:46:10.0232 2156  C:\Windows\System32\VSSVC.exe - ok
16:46:10.0234 2156  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] C:\Windows\System32\drivers\vwifibus.sys
16:46:10.0234 2156  C:\Windows\System32\drivers\vwifibus.sys - ok
16:46:10.0237 2156  [ 1C9D80CC3849B3788048078C26486E1A ] C:\Windows\System32\w32time.dll
16:46:10.0237 2156  C:\Windows\System32\w32time.dll - ok
16:46:10.0238 2156  [ 4E9440F4F152A7B944CB1663D3935A3E ] C:\Windows\System32\drivers\wacompen.sys
16:46:10.0238 2156  C:\Windows\System32\drivers\wacompen.sys - ok
16:46:10.0241 2156  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] C:\Windows\System32\Wat\WatAdminSvc.exe
16:46:10.0241 2156  C:\Windows\System32\Wat\WatAdminSvc.exe - ok
16:46:10.0244 2156  [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] C:\Windows\System32\wbengine.exe
16:46:10.0244 2156  C:\Windows\System32\wbengine.exe - ok
16:46:10.0246 2156  [ 3AA101E8EDAB2DB4131333F4325C76A3 ] C:\Windows\System32\wbiosrvc.dll
16:46:10.0246 2156  C:\Windows\System32\wbiosrvc.dll - ok
16:46:10.0248 2156  [ 7368A2AFD46E5A4481D1DE9D14848EDD ] C:\Windows\System32\wcncsvc.dll
16:46:10.0248 2156  C:\Windows\System32\wcncsvc.dll - ok
16:46:10.0251 2156  [ 20F7441334B18CEE52027661DF4A6129 ] C:\Windows\System32\WcsPlugInService.dll
16:46:10.0251 2156  C:\Windows\System32\WcsPlugInService.dll - ok
16:46:10.0254 2156  [ 72889E16FF12BA0F235467D6091B17DC ] C:\Windows\System32\drivers\wd.sys
16:46:10.0254 2156  C:\Windows\System32\drivers\wd.sys - ok
16:46:10.0256 2156  [ A3D04EBF5227886029B4532F20D026F7 ] C:\Windows\System32\drivers\wdcsam64.sys
16:46:10.0256 2156  C:\Windows\System32\drivers\wdcsam64.sys - ok
16:46:10.0259 2156  [ 442783E2CB0DA19873B7A63833FF4CB4 ] C:\Windows\System32\drivers\Wdf01000.sys
16:46:10.0259 2156  C:\Windows\System32\drivers\Wdf01000.sys - ok
16:46:10.0261 2156  [ 3DB6D04E1C64272F8B14EB8BC4616280 ] C:\Windows\System32\WebClnt.dll
16:46:10.0261 2156  C:\Windows\System32\WebClnt.dll - ok
16:46:10.0263 2156  [ C749025A679C5103E575E3B48E092C43 ] C:\Windows\System32\wecsvc.dll
16:46:10.0263 2156  C:\Windows\System32\wecsvc.dll - ok
16:46:10.0266 2156  [ 7E591867422DC788B9E5BD337A669A08 ] C:\Windows\System32\wercplsupport.dll
16:46:10.0266 2156  C:\Windows\System32\wercplsupport.dll - ok
16:46:10.0268 2156  [ 05ECAEC3E4529A7153B3136CEB49F0EC ] C:\Windows\System32\drivers\wimmount.sys
16:46:10.0268 2156  C:\Windows\System32\drivers\wimmount.sys - ok
16:46:10.0271 2156  [ CF318F60A84F15AF352439465A8D05F4 ] C:\Program Files\Windows Defender\MpSvc.dll
16:46:10.0271 2156  C:\Program Files\Windows Defender\MpSvc.dll - ok
16:46:10.0273 2156  [ BCB1310604AA415C4508708975B3931E ] C:\Windows\System32\WsmSvc.dll
16:46:10.0273 2156  C:\Windows\System32\WsmSvc.dll - ok
16:46:10.0276 2156  [ FE88B288356E7B47B74B13372ADD906D ] C:\Windows\System32\drivers\winusb.sys
16:46:10.0276 2156  C:\Windows\System32\drivers\winusb.sys - ok
16:46:10.0278 2156  [ F6FF8944478594D0E414D3F048F0D778 ] C:\Windows\System32\drivers\wmiacpi.sys
16:46:10.0278 2156  C:\Windows\System32\drivers\wmiacpi.sys - ok
16:46:10.0281 2156  [ 38B84C94C5A8AF291ADFEA478AE54F93 ] C:\Windows\System32\wbem\WmiApSrv.exe
16:46:10.0281 2156  C:\Windows\System32\wbem\WmiApSrv.exe - ok
16:46:10.0283 2156  [ A9F3BFC9345F49614D5859EC95B9E994 ] C:\Program Files\Windows Media Player\wmpnetwk.exe
16:46:10.0283 2156  C:\Program Files\Windows Media Player\wmpnetwk.exe - ok
16:46:10.0286 2156  [ 96C6E7100D724C69FCF9E7BF590D1DCA ] C:\Windows\System32\wpcsvc.dll
16:46:10.0286 2156  C:\Windows\System32\wpcsvc.dll - ok
16:46:10.0288 2156  [ 6BCC1D7D2FD2453957C5479A32364E52 ] C:\Windows\System32\drivers\ws2ifsl.sys
16:46:10.0288 2156  C:\Windows\System32\drivers\ws2ifsl.sys - ok
16:46:10.0290 2156  [ E8B1FE6669397D1772D8196DF0E57A9E ] C:\Windows\System32\wscsvc.dll
16:46:10.0290 2156  C:\Windows\System32\wscsvc.dll - ok
16:46:10.0293 2156  [ E0B340996A41C9A75DFA3B99BBA9C500 ] C:\Windows\System32\SearchIndexer.exe
16:46:10.0293 2156  C:\Windows\System32\SearchIndexer.exe - ok
16:46:10.0296 2156  [ D9EF901DCA379CFE914E9FA13B73B4C4 ] C:\Windows\System32\wuaueng.dll
16:46:10.0296 2156  C:\Windows\System32\wuaueng.dll - ok
16:46:10.0298 2156  [ 9A3452B3C2A46C073166C5CF49FAD1AE ] C:\Windows\System32\wwansvc.dll
16:46:10.0298 2156  C:\Windows\System32\wwansvc.dll - ok
16:46:10.0300 2156  [ 35126DDDE8241C4C4A5F15F6CDDF4434 ] C:\Windows\System32\ieframe.dll
16:46:10.0300 2156  C:\Windows\System32\ieframe.dll - ok
16:46:10.0303 2156  [ DD81D91FF3B0763C392422865C9AC12E ] C:\Windows\System32\rundll32.exe
16:46:10.0303 2156  C:\Windows\System32\rundll32.exe - ok
16:46:10.0305 2156  [ 55933254903B7E3C3F997630FF612E11 ] C:\Program Files\PC-Doctor for Windows\pcdr5cuiw32.exe
16:46:10.0305 2156  C:\Program Files\PC-Doctor for Windows\pcdr5cuiw32.exe - ok
16:46:10.0308 2156  [ 2549089234E799D510296D327EA2B679 ] C:\Windows\System32\pcalua.exe
16:46:10.0308 2156  C:\Windows\System32\pcalua.exe - ok
16:46:10.0310 2156  [ 862596399AAFD2A21DB2AF9270CD4F70 ] C:\Windows\System32\mstask.dll
16:46:10.0310 2156  C:\Windows\System32\mstask.dll - ok
16:46:10.0313 2156  [ 03CC97EC838FBBA69E6E5FD744012C31 ] C:\Program Files\Common Files\logishrd\KHAL3\KHALMNPR.exe
16:46:10.0313 2156  C:\Program Files\Common Files\logishrd\KHAL3\KHALMNPR.exe - ok
16:46:10.0315 2156  [ FB10715E4099AF9FA389C71873245226 ] C:\Windows\System32\timedate.cpl
16:46:10.0315 2156  C:\Windows\System32\timedate.cpl - ok
16:46:10.0317 2156  [ E6F0F82788E8BD0F7A616350EFA0761C ] C:\Windows\System32\actxprxy.dll
16:46:10.0317 2156  C:\Windows\System32\actxprxy.dll - ok
16:46:10.0320 2156  [ C4F40F6CACD796A8E16671D0E9A2F319 ] C:\Windows\System32\shdocvw.dll
16:46:10.0320 2156  C:\Windows\System32\shdocvw.dll - ok
16:46:10.0322 2156  [ 69754747274B76E7FAF287239333D7E6 ] C:\Windows\System32\msiltcfg.dll
16:46:10.0322 2156  C:\Windows\System32\msiltcfg.dll - ok
16:46:10.0324 2156  [ A0A65D306A5490D2EB8E7DE66898ECFD ] C:\Windows\System32\linkinfo.dll
16:46:10.0324 2156  C:\Windows\System32\linkinfo.dll - ok
16:46:10.0327 2156  [ 1EAC1A8CA6874BF5B15E2EFB9A9A7B86 ] C:\Windows\System32\msftedit.dll
16:46:10.0327 2156  C:\Windows\System32\msftedit.dll - ok
16:46:10.0329 2156  [ 7FCAB194F01E3403C300EB034E480B36 ] C:\Windows\System32\msls31.dll
16:46:10.0329 2156  C:\Windows\System32\msls31.dll - ok
16:46:10.0332 2156  [ F146E2BA475893DD77B2370DC1211FC6 ] C:\Windows\System32\drivers\33633253.sys
16:46:10.0332 2156  C:\Windows\System32\drivers\33633253.sys - ok
16:46:10.0334 2156  [ A6C29DB53ECA94FA8591C5388D604B82 ] C:\Windows\SysWOW64\msi.dll
16:46:10.0334 2156  C:\Windows\SysWOW64\msi.dll - ok
16:46:10.0336 2156  [ 102CF6879887BBE846A00C459E6D4ABC ] C:\Windows\SysWOW64\riched20.dll
16:46:10.0336 2156  C:\Windows\SysWOW64\riched20.dll - ok
16:46:10.0339 2156  [ 2BCBA6052374959A30BD7948444DBB79 ] C:\Windows\System32\gameux.dll
16:46:10.0339 2156  C:\Windows\System32\gameux.dll - ok
16:46:10.0341 2156  [ 7DBA84667DC18877AEF693E3543DFAD7 ] C:\Program Files\Common Files\Microsoft Shared\ink\tiptsf.dll
16:46:10.0341 2156  C:\Program Files\Common Files\Microsoft Shared\ink\tiptsf.dll - ok
16:46:10.0344 2156  [ 4C2C4640BF23AAFCF90519E0F34436CE ] C:\Windows\System32\DeviceCenter.dll
16:46:10.0344 2156  C:\Windows\System32\DeviceCenter.dll - ok
16:46:10.0346 2156  [ 24F4B480F335A6C724AF352253C5D98B ] C:\Windows\System32\thumbcache.dll
16:46:10.0346 2156  C:\Windows\System32\thumbcache.dll - ok
16:46:10.0349 2156  [ 93812FDC01AA864195816CD814445F95 ] C:\Program Files\Microsoft IntelliPoint\SQMAPI.dll
16:46:10.0349 2156  C:\Program Files\Microsoft IntelliPoint\SQMAPI.dll - ok
16:46:10.0351 2156  [ 263E9A047D17CD50BAA9D3C02910D18D ] C:\Windows\System32\oledlg.dll
16:46:10.0351 2156  C:\Windows\System32\oledlg.dll - ok
16:46:10.0354 2156  [ 820D77995F83476011639FC0EC617EAA ] C:\Program Files (x86)\Steam\steam.exe
16:46:10.0354 2156  C:\Program Files (x86)\Steam\steam.exe - ok
16:46:10.0356 2156  [ E37A7354D3E135E61203BE0CFB90E978 ] C:\Program Files\Microsoft IntelliPoint\dpgmkb.dll
16:46:10.0356 2156  C:\Program Files\Microsoft IntelliPoint\dpgmkb.dll - ok
16:46:10.0359 2156  [ 18921ED36B7AB65916C075E234E81930 ] C:\Program Files\Logitech\SetPointP\khalwrapper.dll
16:46:10.0359 2156  C:\Program Files\Logitech\SetPointP\khalwrapper.dll - ok
16:46:10.0361 2156  [ 6960D29ABE74341FAB8300DB3E6F883D ] C:\hp\bin\cmd.exe
16:46:10.0361 2156  C:\hp\bin\cmd.exe - ok
16:46:10.0363 2156  [ 371948BC5911ABA06168FAC91ED25F06 ] C:\Windows\System32\msxml3.dll
16:46:10.0363 2156  C:\Windows\System32\msxml3.dll - ok
16:46:10.0366 2156  [ 52425F4F67DE0E8E7149EBC337D1A60A ] C:\Program Files\Logitech\SetPointP\KemUtil.dll
16:46:10.0366 2156  C:\Program Files\Logitech\SetPointP\KemUtil.dll - ok
16:46:10.0369 2156  [ 405F4D32D2185F1F1BD753D8EEAFFB3A ] C:\Windows\System32\networkexplorer.dll
16:46:10.0369 2156  C:\Windows\System32\networkexplorer.dll - ok
16:46:10.0371 2156  [ 4BD79D03984226DB22D19BBE79369E0E ] C:\Windows\winsxs\amd64_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_044aad0bab1eb146\mfc90u.dll
16:46:10.0371 2156  C:\Windows\winsxs\amd64_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_044aad0bab1eb146\mfc90u.dll - ok
16:46:10.0374 2156  [ E36112A8A6C7F840169A7E92C12F4203 ] C:\Windows\System32\wsock32.dll
16:46:10.0374 2156  C:\Windows\System32\wsock32.dll - ok
16:46:10.0377 2156  [ E8F915D5140A75ABFF036BBF9D0941AD ] C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe
16:46:10.0377 2156  C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe - ok
16:46:10.0379 2156  [ 14DEB733ACB08A71CC0783ED02FF1F8D ] C:\Windows\System32\mshtml.dll
16:46:10.0379 2156  C:\Windows\System32\mshtml.dll - ok
16:46:10.0382 2156  [ 4EFCDF3DB1BBA69C09622991280C4ACB ] C:\Program Files (x86)\Hewlett-Packard\Recovery\MUITransfer\MUIStartMenu.exe
16:46:10.0382 2156  C:\Program Files (x86)\Hewlett-Packard\Recovery\MUITransfer\MUIStartMenu.exe - ok
16:46:10.0385 2156  [ 0A6AB2478DB456C0F7C8A055F43BD7B5 ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe
16:46:10.0385 2156  C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe - ok
16:46:10.0387 2156  [ 0009097891CED0E3246E05952A4FC024 ] C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility.exe
16:46:10.0387 2156  C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility.exe - ok
16:46:10.0390 2156  [ F3DEAA1F2FCF70FAF6DE3757CA343FA5 ] C:\Program Files (x86)\iTunes\iTunesHelper.exe
16:46:10.0390 2156  C:\Program Files (x86)\iTunes\iTunesHelper.exe - ok
16:46:10.0393 2156  [ A1A6509F6D12AB2B435EF08CD4FD675E ] C:\Program Files\Microsoft IntelliPoint\dpupdchk.exe
16:46:10.0393 2156  C:\Program Files\Microsoft IntelliPoint\dpupdchk.exe - ok
16:46:10.0395 2156  [ 1C86D0C84FF3870A3E13808B853C040A ] C:\Program Files (x86)\AirPort\APAgent.exe
16:46:10.0395 2156  C:\Program Files (x86)\AirPort\APAgent.exe - ok
16:46:10.0398 2156  [ D233C7FEAE3FAA25F93A9E6B46815ADC ] C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc251\msvcr90.dll
16:46:10.0398 2156  C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc251\msvcr90.dll - ok
16:46:10.0401 2156  [ FC4C561550E5407FFA29D4F6C69B272F ] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\ENU\iaaMon_ENU.dll
16:46:10.0401 2156  C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\ENU\iaaMon_ENU.dll - ok
16:46:10.0403 2156  [ B79515AFF098E5A56DFBD316152534DE ] C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
16:46:10.0403 2156  C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL - ok
16:46:10.0406 2156  [ 62EF02630C8815E5D896F86ACC5696D4 ] C:\Program Files (x86)\Steam\crashhandler.dll
16:46:10.0406 2156  C:\Program Files (x86)\Steam\crashhandler.dll - ok
16:46:10.0408 2156  [ 51138BEEA3E2C21EC44D0932C71762A8 ] C:\Windows\SysWOW64\rundll32.exe
16:46:10.0408 2156  C:\Windows\SysWOW64\rundll32.exe - ok
16:46:10.0411 2156  [ ABFD6325EE2E73BACEF7B30837F67D6A ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\MobileMeNotification.dll
16:46:10.0411 2156  C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\MobileMeNotification.dll - ok
16:46:10.0414 2156  [ 0B232C77D822983397674AEEC9AB59DC ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
16:46:10.0414 2156  C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe - ok
16:46:10.0416 2156  [ 5046E55184021406C27E8D48A1B2C9D2 ] C:\Windows\System32\l3codeca.acm
16:46:10.0416 2156  C:\Windows\System32\l3codeca.acm - ok
16:46:10.0419 2156  [ 241AF87821FDA0F5792037B779F49BE0 ] C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc251\msvcp90.dll
16:46:10.0419 2156  C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc251\msvcp90.dll - ok
16:46:10.0421 2156  [ 6C63DC384A15E2AFD4A860031EF40267 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\AppleVersions.dll
16:46:10.0421 2156  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\AppleVersions.dll - ok
16:46:10.0424 2156  [ E05E18FBB9582CB14A28421F3E7B47D9 ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\XMPP.dll
16:46:10.0424 2156  C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\XMPP.dll - ok
16:46:10.0427 2156  [ B65F8DBA54F251906BBE8611B5A0E7AB ] C:\hp\drivers\LSI_SoftModem\agr64svc.exe
16:46:10.0427 2156  C:\hp\drivers\LSI_SoftModem\agr64svc.exe - ok
16:46:10.0430 2156  [ 56FF2D47D9F0E776431B40E4F76A4A68 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\CFNetwork.dll
16:46:10.0430 2156  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\CFNetwork.dll - ok
16:46:10.0432 2156  [ 55E99350F98919C21125F6B29BD24D6A ] C:\Program Files (x86)\iTunes\iTunesHelper.dll
16:46:10.0432 2156  C:\Program Files (x86)\iTunes\iTunesHelper.dll - ok
16:46:10.0435 2156  [ EC6BA7C92FA5B2AA4AFDF4DF22AEDAB7 ] C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_88e41e092fab0294\msvcr80.dll
16:46:10.0435 2156  C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_88e41e092fab0294\msvcr80.dll - ok
16:46:10.0438 2156  [ 95B9D5E9C09BD2DE0DCE1EA852112F93 ] C:\Program Files (x86)\iTunes\iTunesHelper.Resources\iTunesHelper.dll
16:46:10.0438 2156  C:\Program Files (x86)\iTunes\iTunesHelper.Resources\iTunesHelper.dll - ok
16:46:10.0440 2156  [ 7C7B8A47FFC43180FD49304A87EA78F5 ] C:\Program Files\Logitech\SetPointP\KemXML.dll
16:46:10.0440 2156  C:\Program Files\Logitech\SetPointP\KemXML.dll - ok
16:46:10.0443 2156  [ 18628BB3EEA95E17EDB4C79193FD9189 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\SQLite3.dll
16:46:10.0443 2156  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\SQLite3.dll - ok
16:46:10.0446 2156  [ 451F41C7FEF78BC7CC6F442F9CDBAE62 ] C:\Program Files\Logitech\SetPointP\kemutb.dll
16:46:10.0446 2156  C:\Program Files\Logitech\SetPointP\kemutb.dll - ok
16:46:10.0449 2156  [ 68FDFDFC378750959C87211ECE2CCB2D ] C:\Program Files (x86)\iTunes\iTunesHelper.Resources\en.lproj\iTunesHelperLocalized.dll
16:46:10.0449 2156  C:\Program Files (x86)\iTunes\iTunesHelper.Resources\en.lproj\iTunesHelperLocalized.dll - ok
16:46:10.0451 2156  [ E46C1F21BCF87D2219D9D9FF7E253864 ] C:\Program Files (x86)\Steam\steamerrorreporter.exe
16:46:10.0451 2156  C:\Program Files (x86)\Steam\steamerrorreporter.exe - ok
16:46:10.0454 2156  [ C373EF6E2A25BA99598CA64ABC797469 ] C:\Windows\SysWOW64\dnssd.dll
16:46:10.0454 2156  C:\Windows\SysWOW64\dnssd.dll - ok
16:46:10.0456 2156  [ EB032CF179411874F99127B4F8737150 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
16:46:10.0456 2156  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll - ok
16:46:10.0459 2156  [ B36AFE81B1248CA2DE64A112C5097CBB ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
16:46:10.0459 2156  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll - ok
16:46:10.0462 2156  [ 04CB7C8FDC6D9640DD82A527208F72C4 ] C:\Windows\System32\UIAnimation.dll
16:46:10.0462 2156  C:\Windows\System32\UIAnimation.dll - ok
16:46:10.0465 2156  [ 16D6483A4D9080EBF847C08B26E58734 ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncPref.resources\en.lproj\AppleSyncPrefLocalized.dll
16:46:10.0465 2156  C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncPref.resources\en.lproj\AppleSyncPrefLocalized.dll - ok
16:46:10.0467 2156  [ C3761661C17C2248A9379A8FB89E3DE1 ] C:\Windows\System32\stobject.dll
16:46:10.0467 2156  C:\Windows\System32\stobject.dll - ok
16:46:10.0469 2156  [ 93B3D6E86E710CEDA136C973D0EDAA42 ] C:\Program Files\Logitech\SetPointP\KemWnd.dll
16:46:10.0470 2156  C:\Program Files\Logitech\SetPointP\KemWnd.dll - ok
16:46:10.0472 2156  [ F832EEEA97CDDA1AF577E721F652A0D1 ] C:\Windows\System32\batmeter.dll
16:46:10.0472 2156  C:\Windows\System32\batmeter.dll - ok
16:46:10.0475 2156  [ 5197BFB7F70F44B8C5E56EF7C4F30200 ] C:\Program Files\Logitech\SetPointP\SetPointCOM.dll
16:46:10.0475 2156  C:\Program Files\Logitech\SetPointP\SetPointCOM.dll - ok
16:46:10.0477 2156  [ 96C70BD48D49B87475F4572DEDC62EB9 ] C:\Windows\AppPatch\AcLayers.dll
16:46:10.0477 2156  C:\Windows\AppPatch\AcLayers.dll - ok
16:46:10.0479 2156  [ 936F728E04ACCF3F38801CFFCF1E3F40 ] C:\Windows\SysWOW64\oledlg.dll
16:46:10.0479 2156  C:\Windows\SysWOW64\oledlg.dll - ok
16:46:10.0482 2156  [ 21D3A18769EC2C4E56756D04E989A221 ] C:\Windows\SysWOW64\msxml3.dll
16:46:10.0482 2156  C:\Windows\SysWOW64\msxml3.dll - ok
16:46:10.0484 2156  [ 2204AACB0152F96386E15D4D4BFF3DB4 ] C:\Users\XXXXXXX\AppData\Local\Microsoft Games\GARMIN_Corp\njvlyglp.dll
16:46:10.0484 2156  C:\Users\XXXXXXX\AppData\Local\Microsoft Games\GARMIN_Corp\njvlyglp.dll - ok
16:46:10.0487 2156  [ BFC68382466436FAE8B7A27966FB98CB ] C:\Windows\AppPatch\acwow64.dll
16:46:10.0487 2156  C:\Windows\AppPatch\acwow64.dll - ok
16:46:10.0488 2156  [ 2424231BBD703A677D115C29983B4293 ] C:\Program Files (x86)\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL
16:46:10.0488 2156  C:\Program Files (x86)\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL - ok
16:46:10.0492 2156  [ 2D2A6EC8EAD30EC3ACE2FD6FB1B3E122 ] C:\Windows\System32\prnfldr.dll
16:46:10.0492 2156  C:\Windows\System32\prnfldr.dll - ok
16:46:10.0494 2156  [ B23296D5672486D8240AFECA7507953C ] C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat.exe
16:46:10.0494 2156  C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat.exe - ok
16:46:10.0497 2156  [ D918AF3EA07D248F911F7C6B801AA1E3 ] C:\Windows\winsxs\amd64_microsoft.vc90.mfcloc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_01c9581e60cbee58\MFC90ENU.DLL
16:46:10.0497 2156  C:\Windows\winsxs\amd64_microsoft.vc90.mfcloc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_01c9581e60cbee58\MFC90ENU.DLL - ok
16:46:10.0500 2156  [ FC3001B4B9DF50B61F3CCA615759EFE7 ] C:\Windows\System32\PhotoMetadataHandler.dll
16:46:10.0500 2156  C:\Windows\System32\PhotoMetadataHandler.dll - ok
16:46:10.0502 2156  [ 42A9CB6906D9A8BEDC83B57163E62924 ] C:\Windows\System32\DXP.dll
16:46:10.0502 2156  C:\Windows\System32\DXP.dll - ok
16:46:10.0504 2156  [ 2BC7C9FD0A9F2C9AFC373F3AD1EE3891 ] C:\Windows\System32\Syncreg.dll
16:46:10.0504 2156  C:\Windows\System32\Syncreg.dll - ok
16:46:10.0507 2156  [ C836175870E00ACC546066632E15BD10 ] C:\Windows\ehome\ehSSO.dll
16:46:10.0507 2156  C:\Windows\ehome\ehSSO.dll - ok
16:46:10.0509 2156  [ 57ACF47B4FA24A6B9464C9919412C411 ] C:\Program Files\Logitech\SetPointP\Macros\MacroCore.dll
16:46:10.0509 2156  C:\Program Files\Logitech\SetPointP\Macros\MacroCore.dll - ok
16:46:10.0512 2156  [ E7368F0A8D19445EAF5C5D0DBB8B8DAB ] C:\Windows\System32\AltTab.dll
16:46:10.0512 2156  C:\Windows\System32\AltTab.dll - ok
16:46:10.0514 2156  [ 5B630F1E339BBC063EC1F4F5DA0389E4 ] C:\Program Files (x86)\Steam\tier0_s.dll
16:46:10.0514 2156  C:\Program Files (x86)\Steam\tier0_s.dll - ok
16:46:10.0517 2156  [ C096736655E60DDB78DD5943554798BA ] C:\Program Files (x86)\Steam\vstdlib_s.dll
16:46:10.0517 2156  C:\Program Files (x86)\Steam\vstdlib_s.dll - ok
16:46:10.0519 2156  [ C8FDF0FA9E97E2FAAF3F814716AAA881 ] C:\Windows\System32\WPDShServiceObj.dll
16:46:10.0519 2156  C:\Windows\System32\WPDShServiceObj.dll - ok
16:46:10.0522 2156  [ 10F815BE90A66AAFC6C713D1BD626064 ] C:\Windows\System32\pnidui.dll
16:46:10.0522 2156  C:\Windows\System32\pnidui.dll - ok
16:46:10.0524 2156  [ A7532E66EA2F168A0970E829D8986423 ] C:\Program Files (x86)\Steam\dbghelp.dll
16:46:10.0524 2156  C:\Program Files (x86)\Steam\dbghelp.dll - ok
16:46:10.0527 2156  [ 1D856E6E7490447FCFAA46E09A2BF9C9 ] C:\Program Files (x86)\QuickTime\QTSystem\QuickTime.qts
16:46:10.0527 2156  C:\Program Files (x86)\QuickTime\QTSystem\QuickTime.qts - ok
16:46:10.0529 2156  [ 7F8678C59F188528D60104E697C2361E ] C:\Windows\SysWOW64\mscms.dll
16:46:10.0529 2156  C:\Windows\SysWOW64\mscms.dll - ok
16:46:10.0532 2156  [ FCF3AC25F11BA7E8B31C4BAF1910F7A6 ] C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\Appearance Pak.dll
16:46:10.0532 2156  C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\Appearance Pak.dll - ok
16:46:10.0535 2156  [ 798387534977217525F11B758B3517AE ] C:\Program Files\Logitech\SetPointP\WebBrowserSupport.dll
16:46:10.0535 2156  C:\Program Files\Logitech\SetPointP\WebBrowserSupport.dll - ok
16:46:10.0537 2156  [ 8569E35D00F45972E506502EEE622BA4 ] C:\Windows\System32\srchadmin.dll
16:46:10.0537 2156  C:\Windows\System32\srchadmin.dll - ok
16:46:10.0540 2156  [ 57AC86AC664CC774C861DAB2B1D1E978 ] C:\Windows\winsxs\amd64_microsoft.vc90.atl_1fc8b3b9a1e18e3b_9.0.30729.6161_none_0a1fd3a3a768b895\ATL90.dll
16:46:10.0540 2156  C:\Windows\winsxs\amd64_microsoft.vc90.atl_1fc8b3b9a1e18e3b_9.0.30729.6161_none_0a1fd3a3a768b895\ATL90.dll - ok
16:46:10.0543 2156  [ 89C9EE9EED3670A4A752E9604CACD01B ] C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\RegEx.dll
16:46:10.0543 2156  C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\RegEx.dll - ok
16:46:10.0545 2156  [ 92DBF0A4C9239169010FC6E07859C82E ] C:\Windows\System32\ActionCenter.dll
16:46:10.0545 2156  C:\Windows\System32\ActionCenter.dll - ok
16:46:10.0548 2156  [ C16BDE3AEF3648921DBF79A56A3DD84D ] C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\RBScript.dll
16:46:10.0548 2156  C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\RBScript.dll - ok
16:46:10.0551 2156  [ 941E1C4F13751237E99262A7B3667C23 ] C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\Shell.dll
16:46:10.0551 2156  C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\Shell.dll - ok
16:46:10.0554 2156  [ B82EEF6ABCB5071F1D54D7ABC33935F1 ] C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\XML.dll
16:46:10.0554 2156  C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\XML.dll - ok
16:46:10.0557 2156  [ EDEEAA5B121A89425A5DF7AB28E4E544 ] C:\Program Files\Logitech\SetPointP\Macros\MacroAppSwitch.dll
16:46:10.0557 2156  C:\Program Files\Logitech\SetPointP\Macros\MacroAppSwitch.dll - ok
16:46:10.0559 2156  [ B3CE0951E3C1EA3C733573C472EE85F9 ] C:\Windows\System32\msimtf.dll
16:46:10.0559 2156  C:\Windows\System32\msimtf.dll - ok
16:46:10.0562 2156  [ 61905B27BA9D3EAB775759E00384846E ] C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\CGamma.dll
16:46:10.0562 2156  C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\CGamma.dll - ok
16:46:10.0565 2156  [ 71B190FE27B070E1628F7490FDB2FE3F ] C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\CSensor.dll
16:46:10.0565 2156  C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\CSensor.dll - ok
16:46:10.0568 2156  [ 7683CCAE1DF0DD1C252DC139A9584D18 ] C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\MBSRegistrationPlugin16042.dll
16:46:10.0568 2156  C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\MBSRegistrationPlugin16042.dll - ok
16:46:10.0571 2156  [ 36495FC1209452EFB26965B0E4AB1F50 ] C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\MBSPluginVersionPlugin16042.dll
16:46:10.0571 2156  C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3Utility Libs\MBSPluginVersionPlugin16042.dll - ok
16:46:10.0573 2156  [ E777D2ACB05F35031DAEE4E9CA2451DA ] C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3.dll
16:46:10.0573 2156  C:\Program Files (x86)\Datacolor\Spyder3Pro\Utility\Spyder3.dll - ok
16:46:10.0576 2156  [ 816B681CC308FAA128EDCB90643DCED7 ] C:\Windows\SysWOW64\icm32.dll
16:46:10.0576 2156  C:\Windows\SysWOW64\icm32.dll - ok
16:46:10.0578 2156  [ 589DF683A6C81424A6CECE52ABF98A50 ] C:\Windows\System32\tquery.dll
16:46:10.0578 2156  C:\Windows\System32\tquery.dll - ok
16:46:10.0580 2156  [ F7A256EC899C72B4ECDD2C02CB592EFD ] C:\Windows\System32\bthprops.cpl
16:46:10.0580 2156  C:\Windows\System32\bthprops.cpl - ok
16:46:10.0583 2156  [ F2A24E4AEC0F8D5DBAB10CB87A8EFED2 ] C:\Windows\SysWOW64\sti.dll
16:46:10.0583 2156  C:\Windows\SysWOW64\sti.dll - ok
16:46:10.0585 2156  [ 563C4641DAE5355C08DF4DDC4134E196 ] C:\Program Files\Logitech\SetPointP\Macros\MacroMedia.dll
16:46:10.0585 2156  C:\Program Files\Logitech\SetPointP\Macros\MacroMedia.dll - ok
16:46:10.0588 2156  [ D2155709E336C3BC15729EB87FEC6064 ] C:\Windows\System32\rasdlg.dll
16:46:10.0588 2156  C:\Windows\System32\rasdlg.dll - ok
16:46:10.0590 2156  [ 754BDBD9A6B351E83A8648AB469E238A ] C:\Program Files\Logitech\SetPointP\Macros\MacroEmail.dll
16:46:10.0590 2156  C:\Program Files\Logitech\SetPointP\Macros\MacroEmail.dll - ok
16:46:10.0593 2156  [ B8F7FA586A70918FEC5C768250724635 ] C:\Program Files\Logitech\SetPointP\KemMon.dll
16:46:10.0593 2156  C:\Program Files\Logitech\SetPointP\KemMon.dll - ok
16:46:10.0595 2156  [ 698EB1E5F8C66344D97C00B5699E871D ] C:\Program Files (x86)\Internet Explorer\iexplore.exe
16:46:10.0596 2156  C:\Program Files (x86)\Internet Explorer\iexplore.exe - ok
16:46:10.0598 2156  [ 2DF29664ED261F0FC448E58F338F0671 ] C:\Windows\System32\mprapi.dll
16:46:10.0598 2156  C:\Windows\System32\mprapi.dll - ok
16:46:10.0600 2156  [ F3500B8809AC8642AF9C51B80B1C946C ] C:\Windows\System32\jscript9.dll
16:46:10.0600 2156  C:\Windows\System32\jscript9.dll - ok
16:46:10.0603 2156  [ E4FCA0F99A41E460C84016DEFD31E6EF ] C:\Windows\System32\wlanhlp.dll
16:46:10.0603 2156  C:\Windows\System32\wlanhlp.dll - ok
16:46:10.0605 2156  [ 357BE883C5236BFC7341CB9E82308908 ] C:\Windows\System32\wlanapi.dll
16:46:10.0605 2156  C:\Windows\System32\wlanapi.dll - ok
16:46:10.0607 2156  [ F9AFD12BB4B1CFA5FCC0A5B37C604FD2 ] C:\Windows\System32\dot3api.dll
16:46:10.0607 2156  C:\Windows\System32\dot3api.dll - ok
16:46:10.0609 2156  [ 5DA219F57A9076FB6FBD3C9C3713A672 ] C:\Windows\System32\WWanAPI.dll
16:46:10.0609 2156  C:\Windows\System32\WWanAPI.dll - ok
16:46:10.0612 2156  [ D5A69B24039442FD76B410CD2D7FEB7B ] C:\Program Files\Common Files\logishrd\KHAL3\KHALAPI.dll
16:46:10.0612 2156  C:\Program Files\Common Files\logishrd\KHAL3\KHALAPI.dll - ok
16:46:10.0615 2156  [ 7568CC720ACE4D03B84AF97817E745EF ] C:\Windows\System32\mssrch.dll
16:46:10.0615 2156  C:\Windows\System32\mssrch.dll - ok
16:46:10.0617 2156  [ 62C7AACC746C9723468A8F2169ED3E85 ] C:\Windows\System32\wwapi.dll
16:46:10.0617 2156  C:\Windows\System32\wwapi.dll - ok
16:46:10.0619 2156  [ B837D1528CE2E3CB79F09496BC08DDC6 ] C:\Windows\System32\SensApi.dll
16:46:10.0619 2156  C:\Windows\System32\SensApi.dll - ok
16:46:10.0621 2156  [ 63BB89DED1E9104E68D33E54DE4D340D ] C:\Windows\System32\DWrite.dll
16:46:10.0621 2156  C:\Windows\System32\DWrite.dll - ok
16:46:10.0624 2156  [ EE2DBFBFE0B16E816A74AD505CF0379C ] C:\Program Files\Common Files\logishrd\Bluetooth\LBTServ.dll
16:46:10.0624 2156  C:\Program Files\Common Files\logishrd\Bluetooth\LBTServ.dll - ok
16:46:10.0626 2156  [ 522B0466ED967A0762E9AF5B37D8F40A ] C:\Windows\System32\esent.dll
16:46:10.0626 2156  C:\Windows\System32\esent.dll - ok
16:46:10.0629 2156  [ 4EB19202D44B012387602DB5536FD093 ] C:\Program Files\Common Files\logishrd\KHAL3\KHALITCH.dll
16:46:10.0629 2156  C:\Program Files\Common Files\logishrd\KHAL3\KHALITCH.dll - ok
16:46:10.0631 2156  [ C746F3BF98E92FB137B5BD2B8B5925BD ] C:\Windows\System32\FXSST.dll
16:46:10.0631 2156  C:\Windows\System32\FXSST.dll - ok
16:46:10.0634 2156  [ D17277381B4522FA34FAE7851E705051 ] C:\Program Files\Common Files\logishrd\KHAL3\KHALMW.dll
16:46:10.0634 2156  C:\Program Files\Common Files\logishrd\KHAL3\KHALMW.dll - ok
16:46:10.0636 2156  [ AF09A713D190B2E9DDFCC2CE89357302 ] C:\Program Files\Common Files\logishrd\KHAL3\KHALHPP.dll
16:46:10.0636 2156  C:\Program Files\Common Files\logishrd\KHAL3\KHALHPP.dll - ok
16:46:10.0639 2156  [ 650CAEA856943E29F25A25D31E004B18 ] C:\Windows\System32\FXSAPI.dll
16:46:10.0639 2156  C:\Windows\System32\FXSAPI.dll - ok
16:46:10.0641 2156  [ 7F73235D527DCF16C38578CD1CD9F7A8 ] C:\Program Files (x86)\Internet Explorer\ieproxy.dll
16:46:10.0641 2156  C:\Program Files (x86)\Internet Explorer\ieproxy.dll - ok
16:46:10.0644 2156  [ 3121A79D13A61562BE9CC902CD46B542 ] C:\Windows\System32\msidle.dll
16:46:10.0644 2156  C:\Windows\System32\msidle.dll - ok
16:46:10.0646 2156  [ ACE1BB07E0377E37A2C514CD2EC119B1 ] C:\Windows\System32\mssprxy.dll
16:46:10.0646 2156  C:\Windows\System32\mssprxy.dll - ok
16:46:10.0649 2156  [ 839F96DBAAFD3353E0B248A5E0BD2A51 ] C:\Windows\SysWOW64\rasapi32.dll
16:46:10.0649 2156  C:\Windows\SysWOW64\rasapi32.dll - ok
16:46:10.0651 2156  [ C8E8B8239FCF17BEA10E751BE5854631 ] C:\Windows\System32\FXSRESM.dll
16:46:10.0651 2156  C:\Windows\System32\FXSRESM.dll - ok
16:46:10.0653 2156  [ 80EC17D1050474885A219FAF7F6243FB ] C:\hp\drivers\Realtek_HDAudio\Vista64\RAVCpl64.exe
16:46:10.0654 2156  C:\hp\drivers\Realtek_HDAudio\Vista64\RAVCpl64.exe - ok
16:46:10.0656 2156  [ FFA7172354B9256DBB2CDD75F16F33FE ] C:\Windows\SysWOW64\rasman.dll
16:46:10.0656 2156  C:\Windows\SysWOW64\rasman.dll - ok
16:46:10.0658 2156  [ 0915C4DB6DBC3BB9E11B7ECBBE4B7159 ] C:\Windows\SysWOW64\rtutils.dll
16:46:10.0658 2156  C:\Windows\SysWOW64\rtutils.dll - ok
16:46:10.0661 2156  [ 356656B5EEA8C990238E8FAE5C63395C ] C:\Program Files\Common Files\logishrd\KHAL3\KHALMOU.dll
16:46:10.0661 2156  C:\Program Files\Common Files\logishrd\KHAL3\KHALMOU.dll - ok
16:46:10.0663 2156  [ F8D269134EEC097B7E47C818AF4862A7 ] C:\Windows\SysWOW64\ieui.dll
16:46:10.0663 2156  C:\Windows\SysWOW64\ieui.dll - ok
16:46:10.0666 2156  [ 18AB2E5A40064ED5F7791AC5946A90F3 ] C:\Windows\SysWOW64\msimg32.dll
16:46:10.0666 2156  C:\Windows\SysWOW64\msimg32.dll - ok
16:46:10.0668 2156  [ F7BC1D90C3A976A5259BD1A5D7D43038 ] C:\Program Files (x86)\Internet Explorer\IEShims.dll
16:46:10.0668 2156  C:\Program Files (x86)\Internet Explorer\IEShims.dll - ok
16:46:10.0671 2156  [ AFDAE59FE562A7CDB44F9D4ABEDAC316 ] C:\Program Files (x86)\QuickTime\QTSystem\QTCF.dll
16:46:10.0671 2156  C:\Program Files (x86)\QuickTime\QTSystem\QTCF.dll - ok
16:46:10.0673 2156  [ 1A4E49BBBBCD5CE19F8BF6B5D20AFC68 ] C:\Program Files\Common Files\logishrd\KHAL3\KHALHID.dll
16:46:10.0673 2156  C:\Program Files\Common Files\logishrd\KHAL3\KHALHID.dll - ok
16:46:10.0676 2156  [ 1CBF15FDB0310345A68972EB5C5B948F ] C:\Windows\SysWOW64\mssprxy.dll
16:46:10.0676 2156  C:\Windows\SysWOW64\mssprxy.dll - ok
16:46:10.0678 2156  [ EDF2A5E96BEC469DA3F64E9BDD386111 ] C:\Windows\SysWOW64\xmllite.dll
16:46:10.0678 2156  C:\Windows\SysWOW64\xmllite.dll - ok
16:46:10.0681 2156  [ 7717F84F483002815490033BF069DABD ] C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\GdiPlus.dll
16:46:10.0681 2156  C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\GdiPlus.dll - ok
16:46:10.0684 2156  [ 6ABC6575EF4FEA6E7A44F5C61C66C9E1 ] C:\Program Files\Common Files\logishrd\KHAL3\KHALUSB.dll
16:46:10.0684 2156  C:\Program Files\Common Files\logishrd\KHAL3\KHALUSB.dll - ok
16:46:10.0686 2156  [ C9FB9038B15036CA28CF0B4BE2BED9BD ] C:\Windows\System32\en-US\tquery.dll.mui
16:46:10.0686 2156  C:\Windows\System32\en-US\tquery.dll.mui - ok
16:46:10.0689 2156  [ 50EFBC0F319C780E67D43AA7DDB12BF3 ] C:\Program Files\Common Files\logishrd\CDDRV3\LDConfig.exe
16:46:10.0689 2156  C:\Program Files\Common Files\logishrd\CDDRV3\LDConfig.exe - ok
16:46:10.0692 2156  [ 0E85C11F8850D524B02181C6E02BA9AE ] C:\Windows\SysWOW64\dsound.dll
16:46:10.0692 2156  C:\Windows\SysWOW64\dsound.dll - ok
16:46:10.0694 2156  [ 3A91AAA7EDC8DE349699BB91A328DC3D ] C:\Program Files\Logitech\SetPointP\KGame.dll
16:46:10.0694 2156  C:\Program Files\Logitech\SetPointP\KGame.dll - ok
16:46:10.0697 2156  [ C005D9E5DC7841BB5E0C837C5C6DAB97 ] C:\Program Files\Logitech\SetPointP\LCabHandler.dll
16:46:10.0697 2156  C:\Program Files\Logitech\SetPointP\LCabHandler.dll - ok
16:46:10.0699 2156  [ 198552AEFECA69D646867EC8D792DE95 ] C:\Windows\SysWOW64\ddraw.dll
16:46:10.0699 2156  C:\Windows\SysWOW64\ddraw.dll - ok
16:46:10.0701 2156  [ 55E5B32AE8D1F51A63C82919656FD275 ] C:\Windows\SysWOW64\dciman32.dll
16:46:10.0701 2156  C:\Windows\SysWOW64\dciman32.dll - ok
16:46:10.0704 2156  [ 7E8A672B7B06A6EB11960C22E0360C59 ] C:\Windows\System32\d2d1.dll
16:46:10.0704 2156  C:\Windows\System32\d2d1.dll - ok
16:46:10.0706 2156  [ 9015A97248A75212B5FDB7684ACFBAA8 ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\iTunesMobileDevice.dll
16:46:10.0706 2156  C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\iTunesMobileDevice.dll - ok
16:46:10.0709 2156  [ C498EF41B93986BCBD483597573EB96D ] C:\Windows\System32\d3d10warp.dll
16:46:10.0709 2156  C:\Windows\System32\d3d10warp.dll - ok
16:46:10.0712 2156  [ FB7B756815E8962C8884C228C8E7D8BD ] C:\Program Files\Adobe\Adobe Photoshop Lightroom 3.6\lightroom.exe
16:46:10.0712 2156  C:\Program Files\Adobe\Adobe Photoshop Lightroom 3.6\lightroom.exe - ok
16:46:10.0715 2156  [ 0A6D27B6C3270DDCB55A02CBAE792AA7 ] C:\Program Files\iPod\bin\iPodService.Resources\iPodService.dll
16:46:10.0715 2156  C:\Program Files\iPod\bin\iPodService.Resources\iPodService.dll - ok
16:46:10.0717 2156  [ E8F5740F37FA3301D2E20B94C413822E ] C:\Program Files\iPod\bin\iPodService.Resources\en.lproj\iPodServiceLocalized.dll
16:46:10.0717 2156  C:\Program Files\iPod\bin\iPodService.Resources\en.lproj\iPodServiceLocalized.dll - ok
16:46:10.0720 2156  [ 919001D2BB17DF06CA3F8AC16AD039F6 ] C:\Windows\SysWOW64\sxs.dll
16:46:10.0720 2156  C:\Windows\SysWOW64\sxs.dll - ok
16:46:10.0722 2156  [ C97434C851C4821BD92D2831FDF1ECBE ] C:\Windows\SysWOW64\mshtml.dll
16:46:10.0722 2156  C:\Windows\SysWOW64\mshtml.dll - ok
16:46:10.0725 2156  [ B3EE7BD189C5925D4C0D2BBFCA00FDD1 ] C:\Program Files\Microsoft Games\Minesweeper\MineSweeper.exe
16:46:10.0725 2156  C:\Program Files\Microsoft Games\Minesweeper\MineSweeper.exe - ok
16:46:10.0728 2156  [ 2777B56082105D11D545EA0DE137BEA8 ] C:\Program Files\NVIDIA Corporation\Control Panel Client\nvcplui.exe
16:46:10.0728 2156  C:\Program Files\NVIDIA Corporation\Control Panel Client\nvcplui.exe - ok
16:46:10.0731 2156  [ 3D2D108E14AD21889A2621B94C80A3DD ] C:\Windows\System32\tzres.dll
16:46:10.0731 2156  C:\Windows\System32\tzres.dll - ok
16:46:10.0733 2156  [ A6C09924C6730DE8DEED9890A12AA691 ] C:\Windows\System32\ddraw.dll
16:46:10.0733 2156  C:\Windows\System32\ddraw.dll - ok
16:46:10.0735 2156  [ 9FF8F684BACF326082E5562F7C104A79 ] C:\Windows\SysWOW64\d2d1.dll
16:46:10.0735 2156  C:\Windows\SysWOW64\d2d1.dll - ok
16:46:10.0737 2156  [ 29C22748937F45C26590909E9F8E7137 ] C:\Windows\System32\dciman32.dll
16:46:10.0738 2156  C:\Windows\System32\dciman32.dll - ok
16:46:10.0740 2156  [ 0F082AA29D17B61EE9B4D62D2300CD82 ] C:\Program Files\Microsoft IntelliPoint\dpgcmd.dll
16:46:10.0740 2156  C:\Program Files\Microsoft IntelliPoint\dpgcmd.dll - ok
16:46:10.0743 2156  [ 464822A1F51A2340FE8BE020A1EA3052 ] C:\Program Files\Microsoft IntelliPoint\Components\Commands\DPGHnt\DPGHnt.dll
16:46:10.0743 2156  C:\Program Files\Microsoft IntelliPoint\Components\Commands\DPGHnt\DPGHnt.dll - ok
16:46:10.0746 2156  [ D7CEAEDD5F75D2C8A2E80887D7C114CE ] C:\Windows\System32\webcheck.dll
16:46:10.0746 2156  C:\Windows\System32\webcheck.dll - ok
16:46:10.0748 2156  [ 0F4871B3BF0E48664A24D2717F2117A0 ] C:\Program Files (x86)\Internet Explorer\sqmapi.dll
16:46:10.0748 2156  C:\Program Files (x86)\Internet Explorer\sqmapi.dll - ok
16:46:10.0751 2156  [ 8494E126F0B10180F3293AF861CE1F7A ] C:\Windows\System32\mlang.dll
16:46:10.0751 2156  C:\Windows\System32\mlang.dll - ok
16:46:10.0753 2156  [ 101797BA603D227946B4B5109867EB19 ] C:\Windows\System32\SyncCenter.dll
16:46:10.0753 2156  C:\Windows\System32\SyncCenter.dll - ok
16:46:10.0755 2156  [ C453C1821B89B97804D3109536EAC1B6 ] C:\Windows\SysWOW64\nvwgf2um.dll
16:46:10.0756 2156  C:\Windows\SysWOW64\nvwgf2um.dll - ok
16:46:10.0758 2156  [ 8130391F82D52D36C0441F714136957F ] C:\Windows\System32\imapi2.dll
16:46:10.0758 2156  C:\Windows\System32\imapi2.dll - ok
16:46:10.0760 2156  [ 6A5C1A8AC0B572679361026D0E900420 ] C:\Windows\System32\hgcpl.dll
16:46:10.0760 2156  C:\Windows\System32\hgcpl.dll - ok
16:46:10.0762 2156  [ 171D7DB433314A868507C4326E8209DC ] C:\Windows\System32\fdWSD.dll
16:46:10.0762 2156  C:\Windows\System32\fdWSD.dll - ok
16:46:10.0765 2156  [ A2E5B2D20954210DCE1A75A1FC8CC36D ] C:\Windows\System32\fdSSDP.dll
16:46:10.0765 2156  C:\Windows\System32\fdSSDP.dll - ok
16:46:10.0767 2156  [ DBF1D6C77B635ACB9585D701BA812D34 ] C:\Program Files (x86)\Steam\steam.dll
16:46:10.0767 2156  C:\Program Files (x86)\Steam\steam.dll - ok
16:46:10.0769 2156  [ 8EE6BDE1D572677AA35707C52C585F75 ] C:\Windows\SysWOW64\mlang.dll
16:46:10.0769 2156  C:\Windows\SysWOW64\mlang.dll - ok
16:46:10.0772 2156  [ 2A436796758BF2555A26C770FE8A6FEE ] C:\Windows\System32\fdProxy.dll
16:46:10.0772 2156  C:\Windows\System32\fdProxy.dll - ok
16:46:10.0774 2156  [ 7F348233DD46CA238C0B0FFBB35796FB ] C:\Windows\SysWOW64\nvd3dum.dll
16:46:10.0774 2156  C:\Windows\SysWOW64\nvd3dum.dll - ok
16:46:10.0776 2156  [ B6411CED931AFD059E48C52DBFBA95B4 ] C:\Windows\System32\P2P.dll
16:46:10.0776 2156  C:\Windows\System32\P2P.dll - ok
16:46:10.0779 2156  [ 4A82EA2807B16FF577AEAF8ADB8779FF ] C:\Windows\System32\IdListen.dll
16:46:10.0779 2156  C:\Windows\System32\IdListen.dll - ok
16:46:10.0781 2156  [ 92E0508D924512F63FFEEFE498CBD11F ] C:\Windows\System32\p2pcollab.dll
16:46:10.0781 2156  C:\Windows\System32\p2pcollab.dll - ok
16:46:10.0783 2156  [ A0524499F4C63CADA7E1529FC77F5DC1 ] C:\Windows\System32\hgprint.dll
16:46:10.0783 2156  C:\Windows\System32\hgprint.dll - ok
16:46:10.0786 2156  [ 596C29312A487D257A563C1787A1CEDF ] C:\Program Files (x86)\Steam\steamui.dll
16:46:10.0786 2156  C:\Program Files (x86)\Steam\steamui.dll - ok
16:46:10.0788 2156  [ 66E4246FEF8C364611F9782AA0809F42 ] C:\Program Files\Internet Explorer\ieproxy.dll
16:46:10.0788 2156  C:\Program Files\Internet Explorer\ieproxy.dll - ok
16:46:10.0790 2156  [ 506A83A3BEEE9FCA09F0170DE9FC7D1B ] C:\Windows\System32\fveui.dll
16:46:10.0790 2156  C:\Windows\System32\fveui.dll - ok
16:46:10.0793 2156  [ 3AEE02CEDAA3ACD14F9D7E038E44D6D1 ] C:\Windows\System32\P2PGraph.dll
16:46:10.0793 2156  C:\Windows\System32\P2PGraph.dll - ok
16:46:10.0795 2156  [ 2884DA0E5CE6D42F31FC4476A8947F1B ] C:\Program Files (x86)\Steam\sdl.dll
16:46:10.0795 2156  C:\Program Files (x86)\Steam\sdl.dll - ok
16:46:10.0798 2156  [ 173C217E677C4B0C4F8A6D54BA13BF9B ] C:\Program Files (x86)\Steam\cserhelper.dll
16:46:10.0798 2156  C:\Program Files (x86)\Steam\cserhelper.dll - ok
16:46:10.0800 2156  [ C8D899F59981F35E1C2AEE2C3FCED1F8 ] C:\Program Files (x86)\Steam\bin\filesystem_steam.dll
16:46:10.0800 2156  C:\Program Files (x86)\Steam\bin\filesystem_steam.dll - ok
16:46:10.0803 2156  [ EE9D715AF1B928982F417238B9914484 ] C:\Windows\SysWOW64\ieapfltr.dll
16:46:10.0803 2156  C:\Windows\SysWOW64\ieapfltr.dll - ok
16:46:10.0805 2156  [ 222B97CBB19C77CB67D2B325B227E836 ] C:\Program Files (x86)\Steam\bin\vgui2_s.dll
16:46:10.0805 2156  C:\Program Files (x86)\Steam\bin\vgui2_s.dll - ok
16:46:10.0808 2156  [ D1BBE227367ED791D5FCF08E132D2956 ] C:\Windows\SysWOW64\opengl32.dll
16:46:10.0808 2156  C:\Windows\SysWOW64\opengl32.dll - ok
16:46:10.0810 2156  [ C079169E6A07FC4412475C02969EB9CE ] C:\Windows\SysWOW64\jscript9.dll
16:46:10.0810 2156  C:\Windows\SysWOW64\jscript9.dll - ok
16:46:10.0813 2156  [ DE3897365B04C4DA1CF8FF725577C082 ] C:\Windows\SysWOW64\glu32.dll
16:46:10.0813 2156  C:\Windows\SysWOW64\glu32.dll - ok
16:46:10.0815 2156  [ 527C0FCA1BE90797937B59B99C6C913E ] C:\Program Files (x86)\Steam\bin\chromehtml.dll
16:46:10.0815 2156  C:\Program Files (x86)\Steam\bin\chromehtml.dll - ok
16:46:10.0818 2156  [ 1D1EAA16D193C6A2D45981ED3914D22A ] C:\Windows\SysWOW64\msimtf.dll
16:46:10.0818 2156  C:\Windows\SysWOW64\msimtf.dll - ok
16:46:10.0820 2156  [ 1906E4DF53BEE0493F5B68AA74071EA4 ] C:\Program Files (x86)\Steam\bin\libcef.dll
16:46:10.0820 2156  C:\Program Files (x86)\Steam\bin\libcef.dll - ok
16:46:10.0822 2156  [ CA493A92DA9880B6F1A89C3DBD54BA5B ] C:\Windows\SysWOW64\dxtrans.dll
16:46:10.0822 2156  C:\Windows\SysWOW64\dxtrans.dll - ok
16:46:10.0825 2156  [ F10E5311E5093FA3C00FF88C54C32FCA ] C:\Windows\SysWOW64\atl.dll
16:46:10.0825 2156  C:\Windows\SysWOW64\atl.dll - ok
16:46:10.0827 2156  [ BAB9EF9A340113666F678AA2474904B6 ] C:\Windows\SysWOW64\ddrawex.dll
16:46:10.0827 2156  C:\Windows\SysWOW64\ddrawex.dll - ok
16:46:10.0829 2156  [ 4312DEBDACBE338F0B90E7F08E7672BE ] C:\Windows\SysWOW64\dxtmsft.dll
16:46:10.0829 2156  C:\Windows\SysWOW64\dxtmsft.dll - ok
16:46:10.0832 2156  [ 045D0F4F41CA53D4CB22BDC814A22B64 ] C:\Program Files (x86)\Steam\bin\icudt.dll
16:46:10.0832 2156  C:\Program Files (x86)\Steam\bin\icudt.dll - ok
16:46:10.0834 2156  [ 35AAE2E841AA1A949775168E119482C9 ] C:\Windows\SysWOW64\msls31.dll
16:46:10.0834 2156  C:\Windows\SysWOW64\msls31.dll - ok
16:46:10.0837 2156  [ BBA1FE328CEA501FCCE1E5DF16276439 ] C:\Program Files (x86)\Steam\bin\avcodec-53.dll
16:46:10.0837 2156  C:\Program Files (x86)\Steam\bin\avcodec-53.dll - ok
16:46:10.0839 2156  [ 2A8B8A15A58EDF3B443083EC29894E54 ] C:\Program Files (x86)\Steam\bin\avutil-51.dll
16:46:10.0839 2156  C:\Program Files (x86)\Steam\bin\avutil-51.dll - ok
16:46:10.0842 2156  [ C5CCB86CD745746B9908031A54315F90 ] C:\Program Files (x86)\Steam\bin\avformat-53.dll
16:46:10.0842 2156  C:\Program Files (x86)\Steam\bin\avformat-53.dll - ok
16:46:10.0844 2156  [ 9352AF851D98380738161620C916A042 ] C:\Windows\SysWOW64\url.dll
16:46:10.0844 2156  C:\Windows\SysWOW64\url.dll - ok
16:46:10.0846 2156  [ B0C4639439045222E13D2C96CA6F3FDC ] C:\Program Files (x86)\Steam\steamclient.dll
16:46:10.0846 2156  C:\Program Files (x86)\Steam\steamclient.dll - ok
16:46:10.0849 2156  [ 487F44B08EFEAF5AD087878357B9403D ] C:\Windows\SysWOW64\pdh.dll
16:46:10.0849 2156  C:\Windows\SysWOW64\pdh.dll - ok
16:46:10.0852 2156  [ 35102650DC9983C3E624D879732EA0C6 ] C:\Program Files (x86)\Common Files\Steam\SteamService.exe
16:46:10.0852 2156  C:\Program Files (x86)\Common Files\Steam\SteamService.exe - ok
16:46:10.0855 2156  [ 88C7F091590B0BE08A3EF4C7E75574BF ] C:\Program Files (x86)\Steam\bin\steamservice.dll
16:46:10.0855 2156  C:\Program Files (x86)\Steam\bin\steamservice.dll - ok
16:46:10.0857 2156  [ 243974EC02F7AE49E4179C54624143AB ] C:\Windows\SysWOW64\MMDevAPI.dll
16:46:10.0857 2156  C:\Windows\SysWOW64\MMDevAPI.dll - ok
16:46:10.0859 2156  [ D205C24A9D069049FE2DF2A1B38726A7 ] C:\Windows\SysWOW64\wdmaud.drv
16:46:10.0859 2156  C:\Windows\SysWOW64\wdmaud.drv - ok
16:46:10.0862 2156  [ 9C67F6BBDA3881CFD02095160CF91576 ] C:\Windows\SysWOW64\ksuser.dll
16:46:10.0862 2156  C:\Windows\SysWOW64\ksuser.dll - ok
16:46:10.0864 2156  [ 8D58C34EA1304DAB6D8B16925265B5AA ] C:\Program Files\Common Files\logishrd\sp6\LU\LULnchr.exe
16:46:10.0864 2156  C:\Program Files\Common Files\logishrd\sp6\LU\LULnchr.exe - ok
16:46:10.0867 2156  [ 139D3AB6AA920C34C50CBFFB9EB7D222 ] C:\Windows\SysWOW64\avrt.dll
16:46:10.0867 2156  C:\Windows\SysWOW64\avrt.dll - ok
16:46:10.0869 2156  [ C940F2F5C60B3727C5F18840735B229C ] C:\Windows\SysWOW64\AudioSes.dll
16:46:10.0869 2156  C:\Windows\SysWOW64\AudioSes.dll - ok
16:46:10.0872 2156  [ 07393A09C46083588E751B63B03C8301 ] C:\Windows\SysWOW64\msacm32.drv
16:46:10.0872 2156  C:\Windows\SysWOW64\msacm32.drv - ok
16:46:10.0874 2156  [ 85683DF1F917E4D7F6BE1A04986BF1C8 ] C:\Windows\SysWOW64\msacm32.dll
16:46:10.0874 2156  C:\Windows\SysWOW64\msacm32.dll - ok
16:46:10.0877 2156  [ 5A12C364AD1D4FCC0AD0E56DBBC34462 ] C:\Windows\SysWOW64\midimap.dll
16:46:10.0877 2156  C:\Windows\SysWOW64\midimap.dll - ok
16:46:10.0879 2156  [ E45989C127C0476A937D6BEAA6E28211 ] C:\Program Files\Common Files\logishrd\sp6\LU\LogitechUpdate.exe
16:46:10.0879 2156  C:\Program Files\Common Files\logishrd\sp6\LU\LogitechUpdate.exe - ok
16:46:10.0882 2156  [ 220159496484D34009DE71CA1A68E0D4 ] C:\Windows\System32\wbem\NCProv.dll
16:46:10.0882 2156  C:\Windows\System32\wbem\NCProv.dll - ok
16:46:10.0884 2156  [ F11A57E91FDAECFB41A5CB21EB1EBC8E ] C:\Windows\System32\dssenh.dll
16:46:10.0884 2156  C:\Windows\System32\dssenh.dll - ok
16:46:10.0887 2156  [ F03CD3C73A4D56421C60E6F2A40A9EF2 ] C:\Program Files\Common Files\Microsoft Shared\ink\ConvertInkStore.exe
16:46:10.0887 2156  C:\Program Files\Common Files\Microsoft Shared\ink\ConvertInkStore.exe - ok
16:46:10.0889 2156  [ E9F427EF46965D33E878A507A2F5CCB6 ] C:\Windows\SysWOW64\Macromed\Flash\Flash11e.ocx
16:46:10.0889 2156  C:\Windows\SysWOW64\Macromed\Flash\Flash11e.ocx - ok
16:46:10.0892 2156  [ 84FF6C209447A056E22A29806BFA2C96 ] C:\Program Files\Common Files\Microsoft Shared\ink\FlickLearningWizard.exe
16:46:10.0892 2156  C:\Program Files\Common Files\Microsoft Shared\ink\FlickLearningWizard.exe - ok
16:46:10.0895 2156  [ 54126CDDEF533083D0FFDB94810AD1AA ] C:\Windows\SysWOW64\Macromed\Flash\FlashUtil11e_ActiveX.exe
16:46:10.0895 2156  C:\Windows\SysWOW64\Macromed\Flash\FlashUtil11e_ActiveX.exe - ok
16:46:10.0898 2156  [ D5F72E03EDF8BDEA4847D693237330C7 ] C:\Windows\SysWOW64\Macromed\Flash\FlashUtil11e_ActiveX.dll
16:46:10.0898 2156  C:\Windows\SysWOW64\Macromed\Flash\FlashUtil11e_ActiveX.dll - ok
16:46:10.0900 2156  [ 9C391396C5AD78114ACCD0A02AD93B0A ] C:\Program Files\Common Files\Microsoft Shared\ink\InkWatson.exe
16:46:10.0900 2156  C:\Program Files\Common Files\Microsoft Shared\ink\InkWatson.exe - ok
16:46:10.0903 2156  [ C7DE4414D5F6F9373F913CB86262D512 ] C:\Program Files\Common Files\Microsoft Shared\ink\InputPersonalization.exe
16:46:10.0903 2156  C:\Program Files\Common Files\Microsoft Shared\ink\InputPersonalization.exe - ok
16:46:10.0906 2156  [ 98F1C94E108DF0811CC5EF098ECFB842 ] C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe
16:46:10.0906 2156  C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe - ok
16:46:10.0909 2156  [ 9D9C0DD19ED1D36E1FAB8805EA5CE1AF ] C:\Program Files\Common Files\Microsoft Shared\ink\ShapeCollector.exe
16:46:10.0909 2156  C:\Program Files\Common Files\Microsoft Shared\ink\ShapeCollector.exe - ok
16:46:10.0911 2156  [ 2DC0C4DE960A20BC2840D72E7B98A144 ] C:\Program Files\Common Files\Microsoft Shared\ink\TabTip.exe
16:46:10.0911 2156  C:\Program Files\Common Files\Microsoft Shared\ink\TabTip.exe - ok
16:46:10.0914 2156  [ 2E7ADF9B0389CD94605717784D7E416A ] C:\Windows\System32\drttransport.dll
16:46:10.0914 2156  C:\Windows\System32\drttransport.dll - ok
16:46:10.0916 2156  [ C57BC99A4467B3E8F1CC2184A3F46729 ] C:\Windows\System32\drt.dll
16:46:10.0916 2156  C:\Windows\System32\drt.dll - ok
16:46:10.0919 2156  [ D291620D4C51C5F5FFA62CCDC52C5C13 ] C:\Program Files\Common Files\Microsoft Shared\MSInfo\msinfo32.exe
16:46:10.0919 2156  C:\Program Files\Common Files\Microsoft Shared\MSInfo\msinfo32.exe - ok
16:46:10.0921 2156  [ 62A6EB5771580CAE445804389F3F7432 ] C:\Windows\SysWOW64\WindowsCodecsExt.dll
16:46:10.0921 2156  C:\Windows\SysWOW64\WindowsCodecsExt.dll - ok
16:46:10.0924 2156  [ EAADD6E47ED2A7003ACE1793B98CF63F ] C:\Windows\SysWOW64\msxml6.dll
16:46:10.0924 2156  C:\Windows\SysWOW64\msxml6.dll - ok
16:46:10.0926 2156  [ E83D2495D5867E224FBF42EF40D8856C ] C:\Program Files\DVD Maker\DVDMaker.exe
16:46:10.0926 2156  C:\Program Files\DVD Maker\DVDMaker.exe - ok
16:46:10.0929 2156  [ 679E55582D753C07C2F0C54568E31313 ] C:\Program Files\Enigma Software Group\SpyHunter\ESGRKCHK.exe
16:46:10.0929 2156  C:\Program Files\Enigma Software Group\SpyHunter\ESGRKCHK.exe - ok
16:46:10.0931 2156  [ 62D1AFEF89F77F808E023838F9370047 ] C:\Program Files\Internet Explorer\iecleanup.exe
16:46:10.0931 2156  C:\Program Files\Internet Explorer\iecleanup.exe - ok
16:46:10.0934 2156  [ 4DBB1710CEFDBFEEE3AB8DCBB2A4085E ] C:\Program Files\Internet Explorer\ieinstal.exe
16:46:10.0934 2156  C:\Program Files\Internet Explorer\ieinstal.exe - ok
16:46:10.0936 2156  [ 530B34241856C2299382421C414F97EE ] C:\Program Files\Internet Explorer\ielowutil.exe
16:46:10.0936 2156  C:\Program Files\Internet Explorer\ielowutil.exe - ok
16:46:10.0939 2156  [ 0100BCF23941C83462E4A70F94C3392E ] C:\Program Files\Internet Explorer\iexplore.exe
16:46:10.0939 2156  C:\Program Files\Internet Explorer\iexplore.exe - ok
16:46:10.0941 2156  [ 16B49EE6A552B0D270112E4A81A48923 ] C:\Program Files\Logitech\SetPointG\SetPointII.exe
16:46:10.0941 2156  C:\Program Files\Logitech\SetPointG\SetPointII.exe - ok
16:46:10.0944 2156  [ 07DD9DCD1CC2840751A1F8772F3C0195 ] C:\Program Files\Microsoft Games\Chess\Chess.exe
16:46:10.0944 2156  C:\Program Files\Microsoft Games\Chess\Chess.exe - ok
16:46:10.0946 2156  [ BEF8BE93965EC65C51D70030B9B6B058 ] C:\Program Files\Microsoft Games\FreeCell\FreeCell.exe
16:46:10.0946 2156  C:\Program Files\Microsoft Games\FreeCell\FreeCell.exe - ok
16:46:10.0949 2156  [ A8524F6C3AFF774911BCA26AB8322602 ] C:\Program Files\Microsoft Games\Hearts\Hearts.exe
16:46:10.0949 2156  C:\Program Files\Microsoft Games\Hearts\Hearts.exe - ok
16:46:10.0952 2156  [ 9AAADE86A4659A69CF5AA298C8AEEC22 ] C:\Program Files\Microsoft Games\Mahjong\Mahjong.exe
16:46:10.0952 2156  C:\Program Files\Microsoft Games\Mahjong\Mahjong.exe - ok
16:46:10.0954 2156  [ 1C9289324B5558AA5A59FB98359B3FD7 ] C:\Program Files\Microsoft Games\Multiplayer\Backgammon\bckgzm.exe
16:46:10.0954 2156  C:\Program Files\Microsoft Games\Multiplayer\Backgammon\bckgzm.exe - ok
16:46:10.0957 2156  [ AB0A8849029B4CE1109BA4E86481AB4F ] C:\Program Files\Microsoft Games\Multiplayer\Checkers\chkrzm.exe
16:46:10.0957 2156  C:\Program Files\Microsoft Games\Multiplayer\Checkers\chkrzm.exe - ok
16:46:10.0960 2156  [ 89F37FFA37B28807B1E7628BE13664C5 ] C:\Program Files\Microsoft Games\Multiplayer\Spades\shvlzm.exe
16:46:10.0960 2156  C:\Program Files\Microsoft Games\Multiplayer\Spades\shvlzm.exe - ok
16:46:10.0962 2156  [ EB596E72F63B7C31BE8DF75FA8829B3F ] C:\Program Files\Microsoft Games\Purble Place\PurblePlace.exe
16:46:10.0962 2156  C:\Program Files\Microsoft Games\Purble Place\PurblePlace.exe - ok
16:46:10.0965 2156  [ 5BACFD51D926774C8DD8028BEC9B4374 ] C:\Program Files\Microsoft Games\Solitaire\Solitaire.exe
16:46:10.0965 2156  C:\Program Files\Microsoft Games\Solitaire\Solitaire.exe - ok
16:46:10.0968 2156  [ 53534F0BC0BEFFD60FC13864B3034984 ] C:\Program Files\Microsoft Games\SpiderSolitaire\SpiderSolitaire.exe
16:46:10.0968 2156  C:\Program Files\Microsoft Games\SpiderSolitaire\SpiderSolitaire.exe - ok
16:46:10.0970 2156  [ B2901E5E7B771FFECFD477F4DADF5AC1 ] C:\Program Files\PC-Doctor for Windows\RunProfiler.exe
16:46:10.0970 2156  C:\Program Files\PC-Doctor for Windows\RunProfiler.exe - ok
16:46:10.0973 2156  [ D1E343BC00136CE03C4D403194D06A80 ] C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
16:46:10.0973 2156  C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe - ok
16:46:10.0975 2156  [ D4A48DA5C333AA3C955F9660FBDC066F ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
16:46:10.0975 2156  C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe - ok
16:46:10.0978 2156  [ DF4EF414B2EC9F4DC3207B345969CCDF ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
16:46:10.0978 2156  C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe - ok
16:46:10.0981 2156  [ 6BD4D7F68924301051C22E8A951AECBA ] C:\Program Files\Windows Defender\MpCmdRun.exe
16:46:10.0981 2156  C:\Program Files\Windows Defender\MpCmdRun.exe - ok
16:46:10.0983 2156  [ 05FA8ADC5E47FF262020857BF503FB2E ] C:\Program Files\Windows Defender\MSASCui.exe
16:46:10.0983 2156  C:\Program Files\Windows Defender\MSASCui.exe - ok
16:46:10.0985 2156  [ 1C09858449980D64577E377EB262C9D7 ] C:\Program Files\Windows Journal\Journal.exe
16:46:10.0986 2156  C:\Program Files\Windows Journal\Journal.exe - ok
16:46:10.0988 2156  [ 191592BA7CC7A22DA81F4BE1365E1317 ] C:\Program Files\Windows Journal\PDIALOG.exe
16:46:10.0988 2156  C:\Program Files\Windows Journal\PDIALOG.exe - ok
16:46:10.0990 2156  [ 7AE299BC0A183A37A5A2F7FC7AFF083C ] C:\Program Files\Windows Mail\wab.exe
16:46:10.0990 2156  C:\Program Files\Windows Mail\wab.exe - ok
16:46:10.0993 2156  [ 1B60731B2D3B638777E6AF630CB01B17 ] C:\Program Files\Windows Mail\wabmig.exe
16:46:10.0993 2156  C:\Program Files\Windows Mail\wabmig.exe - ok
16:46:10.0995 2156  [ A576E5A113193FACFDC533FF2475530D ] C:\Program Files\Windows Mail\WinMail.exe
16:46:10.0995 2156  C:\Program Files\Windows Mail\WinMail.exe - ok
16:46:10.0998 2156  [ 6FC498EF39E925C25EAC3B6F8F45207F ] C:\Program Files\Windows Media Player\setup_wm.exe
16:46:10.0998 2156  C:\Program Files\Windows Media Player\setup_wm.exe - ok
16:46:11.0000 2156  [ 1E7509C70109EF997489C8E368B67223 ] C:\Program Files\Windows Media Player\wmlaunch.exe
16:46:11.0000 2156  C:\Program Files\Windows Media Player\wmlaunch.exe - ok
16:46:11.0003 2156  [ 8AD91A4C6CECD1F5A4F858C4DE91DCAC ] C:\Program Files\Windows Media Player\wmpconfig.exe
16:46:11.0003 2156  C:\Program Files\Windows Media Player\wmpconfig.exe - ok
16:46:11.0006 2156  [ 81DC020E3EFF281F41FCC12A09329EB5 ] C:\Program Files\Windows Media Player\WMPDMC.exe
16:46:11.0006 2156  C:\Program Files\Windows Media Player\WMPDMC.exe - ok
16:46:11.0008 2156  [ 5A4BFDF154358EE76321E09E9AE161B1 ] C:\Program Files\Windows Media Player\wmpenc.exe
16:46:11.0008 2156  C:\Program Files\Windows Media Player\wmpenc.exe - ok
16:46:11.0011 2156  [ 322A96BFB36CEAA506F74D5F98CDA723 ] C:\Program Files\Windows Media Player\wmplayer.exe
16:46:11.0011 2156  C:\Program Files\Windows Media Player\wmplayer.exe - ok
16:46:11.0014 2156  [ 6699A112A3BDC9B52338512894EBA9D6 ] C:\Program Files\Windows Media Player\wmpnscfg.exe
16:46:11.0014 2156  C:\Program Files\Windows Media Player\wmpnscfg.exe - ok
16:46:11.0016 2156  [ B540D64EFE0E63286A4C0BBA9A4C7A21 ] C:\Program Files\Windows Media Player\wmprph.exe
16:46:11.0016 2156  C:\Program Files\Windows Media Player\wmprph.exe - ok
16:46:11.0019 2156  [ 62A3D8B5FE01F6A670A7242A752B0789 ] C:\Program Files\Windows Media Player\wmpshare.exe
16:46:11.0019 2156  C:\Program Files\Windows Media Player\wmpshare.exe - ok
16:46:11.0021 2156  [ 55A5E5AE40755556942C30548550E4C3 ] C:\Program Files\Windows Media Player\WMPSideShowGadget.exe
16:46:11.0021 2156  C:\Program Files\Windows Media Player\WMPSideShowGadget.exe - ok
16:46:11.0024 2156  [ 715BFF236158F61C042928A53C0D5AA8 ] C:\Program Files\Windows NT\Accessories\wordpad.exe
16:46:11.0024 2156  C:\Program Files\Windows NT\Accessories\wordpad.exe - ok
16:46:11.0026 2156  [ 9283138F2006BC9F6CBF5169D72B37C6 ] C:\Program Files\Windows Photo Viewer\ImagingDevices.exe
16:46:11.0026 2156  C:\Program Files\Windows Photo Viewer\ImagingDevices.exe - ok
16:46:11.0029 2156  [ BB0F3EB5117F6DE265E6AFF38C2AFA9E ] C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\ISBEW64.exe
16:46:11.0029 2156  C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\ISBEW64.exe - ok
16:46:11.0032 2156  [ 9B7E1DF9722AA964C973425FC449F46D ] C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\ISBEW64.exe
16:46:11.0032 2156  C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\ISBEW64.exe - ok
16:46:11.0035 2156  [ 13BD3153788CD2B2507707CF4CFFFAD3 ] C:\Program Files (x86)\Common Files\microsoft shared\OFFICE12\MSOICONS.EXE
16:46:11.0035 2156  C:\Program Files (x86)\Common Files\microsoft shared\OFFICE12\MSOICONS.EXE - ok
16:46:11.0038 2156  [ D2958325C1AE1AE37A83334C6229E3BC ] C:\Windows\SysWOW64\actxprxy.dll
16:46:11.0038 2156  C:\Windows\SysWOW64\actxprxy.dll - ok
16:46:11.0040 2156  [ 64E211E0FDFCE4D186DF58BB7D0503BC ] C:\Windows\SysWOW64\gameux.dll
16:46:11.0040 2156  C:\Windows\SysWOW64\gameux.dll - ok
16:46:11.0042 2156  [ 590D5C506044FE02FF7643E32FF9BDAC ] C:\Windows\SysWOW64\wer.dll
16:46:11.0042 2156  C:\Windows\SysWOW64\wer.dll - ok
16:46:11.0045 2156  [ 5987EA8A82C53359BCD2C29D6588583E ] C:\Windows\SysWOW64\linkinfo.dll
16:46:11.0045 2156  C:\Windows\SysWOW64\linkinfo.dll - ok
16:46:11.0047 2156  [ 3D3CBD1847F980FB03343A63671E7886 ] C:\Windows\SysWOW64\schannel.dll
16:46:11.0047 2156  C:\Windows\SysWOW64\schannel.dll - ok
16:46:11.0049 2156  [ 1B0EC94520CAB89A9CE1B2DA405166AF ] C:\Windows\SysWOW64\p2pcollab.dll
16:46:11.0049 2156  C:\Windows\SysWOW64\p2pcollab.dll - ok
16:46:11.0052 2156  [ 6C9F56C2E7A3C95D49719FF2B49ABA28 ] C:\Program Files (x86)\Steam\bin\friendsui.dll
16:46:11.0052 2156  C:\Program Files (x86)\Steam\bin\friendsui.dll - ok
16:46:11.0054 2156  [ 3C73E3A0F6CF65CD1935E61DA92B2E72 ] C:\Program Files (x86)\Steam\bin\serverbrowser.dll
16:46:11.0054 2156  C:\Program Files (x86)\Steam\bin\serverbrowser.dll - ok
16:46:11.0057 2156  [ 5E08AC958BE05247FF1539E0D1CE7905 ] C:\Windows\SysWOW64\dinput8.dll
16:46:11.0057 2156  C:\Windows\SysWOW64\dinput8.dll - ok
16:46:11.0059 2156  [ 63DF770DF74ACB370EF5A16727069AAF ] C:\Windows\SysWOW64\hid.dll
16:46:11.0059 2156  C:\Windows\SysWOW64\hid.dll - ok
16:46:11.0061 2156  [ DA9506E800E13DA0ABBA32BB0C105382 ] C:\Program Files (x86)\Steam\bin\xinput1_3.dll
16:46:11.0061 2156  C:\Program Files (x86)\Steam\bin\xinput1_3.dll - ok
16:46:11.0064 2156  [ C5A75EB48E2344ABDC162BDA79E16841 ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
16:46:11.0064 2156  C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe - ok
16:46:11.0067 2156  [ E5F7C30EDF0892667933BE879F067D67 ] C:\Windows\SysWOW64\msvcr100_clr0400.dll
16:46:11.0067 2156  C:\Windows\SysWOW64\msvcr100_clr0400.dll - ok
16:46:11.0069 2156  [ D83947A58613E9091B4C9CC0F1546A8D ] C:\Windows\SysWOW64\mscoree.dll
16:46:11.0069 2156  C:\Windows\SysWOW64\mscoree.dll - ok
16:46:11.0072 2156  [ CB21CD39637AC13F3455454B2F648257 ] C:\Windows\System32\msvcr100_clr0400.dll
16:46:11.0072 2156  C:\Windows\System32\msvcr100_clr0400.dll - ok
16:46:11.0074 2156  [ A08C010D859F8EB42BDD7E1D55B8CA27 ] C:\Windows\System32\mscoree.dll
16:46:11.0074 2156  C:\Windows\System32\mscoree.dll - ok
16:46:11.0076 2156  [ FFF95479C7AB1550F0750A5D01744211 ] C:\Windows\System32\drivers\spsys.sys
16:46:11.0076 2156  C:\Windows\System32\drivers\spsys.sys - ok
16:46:11.0079 2156  [ F6F22291024906E43D135A4B1705FEAC ] C:\Windows\System32\sppwinob.dll
16:46:11.0079 2156  C:\Windows\System32\sppwinob.dll - ok
16:46:11.0081 2156  [ 423982DD851406A52B6399DDB196C606 ] C:\Windows\System32\wmdrmdev.dll
16:46:11.0081 2156  C:\Windows\System32\wmdrmdev.dll - ok
16:46:11.0084 2156  [ 2C1055E2C6D42753241FB2A129136994 ] C:\Windows\System32\drmv2clt.dll
16:46:11.0084 2156  C:\Windows\System32\drmv2clt.dll - ok
16:46:11.0086 2156  [ 97A891E2BF7FDA830BCFC6269DA3F5E9 ] C:\Windows\System32\blackbox.dll
16:46:11.0086 2156  C:\Windows\System32\blackbox.dll - ok
16:46:11.0089 2156  [ 96DB78C9C50CEED9DA5050EFFEE272A2 ] C:\Windows\System32\upnp.dll
16:46:11.0089 2156  C:\Windows\System32\upnp.dll - ok
16:46:11.0091 2156  [ 1EB82516F21F27EED1833B4F9FD9614E ] C:\Windows\System32\wmp.dll
16:46:11.0091 2156  C:\Windows\System32\wmp.dll - ok
16:46:11.0093 2156  [ E19AD0D49BFF5938B3E374873AC174DE ] C:\Windows\System32\wmploc.DLL
16:46:11.0093 2156  C:\Windows\System32\wmploc.DLL - ok
16:46:11.0095 2156  [ 355A138ABDFD43FBABCAE3A1B06AB93D ] C:\Windows\System32\wmpps.dll
16:46:11.0095 2156  C:\Windows\System32\wmpps.dll - ok
16:46:11.0098 2156  [ F149E8CAE538DBF7059B00326673F602 ] C:\Windows\System32\wmpmde.dll
16:46:11.0098 2156  C:\Windows\System32\wmpmde.dll - ok
16:46:11.0100 2156  [ A7A8CA53D9C9FD90C07AB0EB38E5316B ] C:\Windows\System32\dbghelp.dll
16:46:11.0100 2156  C:\Windows\System32\dbghelp.dll - ok
16:46:11.0103 2156  [ 021287C2050FD5DB4A8B084E2C38139C ] C:\Windows\System32\WinSATAPI.dll
16:46:11.0103 2156  C:\Windows\System32\WinSATAPI.dll - ok
16:46:11.0105 2156  [ 28A7D7C7E2FDD1D55F12F750CD6331EC ] C:\Windows\System32\MSMPEG2ENC.DLL
16:46:11.0105 2156  C:\Windows\System32\MSMPEG2ENC.DLL - ok
16:46:11.0108 2156  [ 46767946E7B559D981C1DC04EC0AB36F ] C:\Windows\System32\devenum.dll
16:46:11.0108 2156  C:\Windows\System32\devenum.dll - ok
16:46:11.0110 2156  [ 558C42D165DB5799B4072DC0A9C27C0B ] C:\Windows\System32\msdmo.dll
16:46:11.0110 2156  C:\Windows\System32\msdmo.dll - ok
16:46:11.0113 2156  [ FA43D418BC945D27D0625B697B8442B5 ] C:\Windows\System32\cabinet.dll
16:46:11.0113 2156  C:\Windows\System32\cabinet.dll - ok
16:46:11.0115 2156  [ 2B373B5F7E36B5ED5DA176D4400EF091 ] C:\Windows\System32\sppobjs.dll
16:46:11.0115 2156  C:\Windows\System32\sppobjs.dll - ok
16:46:11.0118 2156  [ 617F6EC0AC677C685479C1D0D1E76C6F ] C:\Windows\System32\mspatcha.dll
16:46:11.0118 2156  C:\Windows\System32\mspatcha.dll - ok
16:46:11.0120 2156  [ C47F35CC6FA4F1BDBEF8F87AC1A46537 ] C:\Windows\System32\wuapi.dll
16:46:11.0120 2156  C:\Windows\System32\wuapi.dll - ok
16:46:11.0123 2156  [ 07AD88DF9EF73215458867EFC1BFFE9E ] C:\Windows\System32\wbem\wmiprov.dll
16:46:11.0123 2156  C:\Windows\System32\wbem\wmiprov.dll - ok
16:46:11.0125 2156  [ E746ED90132C6B6313CE9179F56BD31D ] C:\Windows\System32\wups.dll
16:46:11.0125 2156  C:\Windows\System32\wups.dll - ok
16:46:11.0128 2156  [ 255236F43012C430B99D78BCA59C9593 ] C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\WSCStub.exe
16:46:11.0128 2156  C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\WSCStub.exe - ok
16:46:11.0130 2156  [ 7FE0D0C8F53735EA17C9AE93EFE7AD5A ] C:\Windows\System32\wups2.dll
16:46:11.0130 2156  C:\Windows\System32\wups2.dll - ok
16:46:11.0133 2156  [ 8258362DDB18B644A82D8B5061AD9426 ] C:\Windows\SysWOW64\wscisvif.dll
16:46:11.0133 2156  C:\Windows\SysWOW64\wscisvif.dll - ok
16:46:11.0135 2156  [ 7DF186D86CF8C571A12AAB788C777F84 ] C:\Windows\SysWOW64\wscproxystub.dll
16:46:11.0135 2156  C:\Windows\SysWOW64\wscproxystub.dll - ok
16:46:11.0138 2156  [ 0D893F8D145D3B125B0226727C243A69 ] C:\Windows\System32\security.dll
16:46:11.0138 2156  C:\Windows\System32\security.dll - ok
16:46:11.0140 2156  [ 012787CEB35505EB78DF82E0A0072888 ] C:\Windows\System32\browcli.dll
16:46:11.0140 2156  C:\Windows\System32\browcli.dll - ok
16:46:11.0142 2156  [ C4BFE4B61086416B0529212F92BCE081 ] C:\Windows\System32\schedcli.dll
16:46:11.0142 2156  C:\Windows\System32\schedcli.dll - ok
16:46:11.0145 2156  [ 5EA9A0950F322BFA382AF277801C0307 ] C:\Windows\System32\wbem\wmipcima.dll
16:46:11.0145 2156  C:\Windows\System32\wbem\wmipcima.dll - ok
16:46:11.0147 2156  [ C00DB14550E4BD49737F311C644E45FF ] C:\Windows\System32\wmi.dll
16:46:11.0147 2156  C:\Windows\System32\wmi.dll - ok
16:46:11.0150 2156  [ 71E68F2443A80BD4DA89181889C457EA ] C:\Windows\System32\udhisapi.dll
16:46:11.0150 2156  C:\Windows\System32\udhisapi.dll - ok
16:46:11.0152 2156  [ 5F639198C4137075DA50E61C23963C11 ] C:\Windows\System32\drprov.dll
16:46:11.0152 2156  C:\Windows\System32\drprov.dll - ok
16:46:11.0154 2156  [ BC566D17914B07ABAAB3A5A385CC3300 ] C:\Windows\System32\ntlanman.dll
16:46:11.0154 2156  C:\Windows\System32\ntlanman.dll - ok
16:46:11.0157 2156  [ B3A33600DCDFB84D7FBE09ADEB1C9B8A ] C:\Windows\System32\davclnt.dll
16:46:11.0157 2156  C:\Windows\System32\davclnt.dll - ok
16:46:11.0159 2156  [ 45B24A357C801CE62052FE0CDC8BD4D2 ] C:\Windows\System32\davhlpr.dll
16:46:11.0159 2156  C:\Windows\System32\davhlpr.dll - ok
16:46:11.0161 2156  ============================================================
16:46:11.0161 2156  Scan finished
16:46:11.0161 2156  ============================================================
16:46:11.0167 2180  Detected object count: 0
16:46:11.0167 2180  Actual detected object count: 0
16:46:34.0311 1380  Deinitialize success
 



#7 onesnark

onesnark
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:05:26 PM

Posted 28 February 2013 - 06:12 PM

Good day!

 

I have been playing with many things in the last 24 hours.  So. . I *think* something may have solved my problem. . .

 

. . . .A program called "unhackme". This has a feature called "Set protection against Explorere Redirected DLL problem".  Per the help file, it talks about explorer loading DLLs from "non standard places", and claims to fix this problem by forcing explorer to only use wiht eh Windows\system32 folder. Or some such jazz.   So. . .despite them saying this affects Win2000, XP, 2003, Vista, and 2008 Server (I am using Win 7), I tried it. I rebooted. About 10 google searches later. . . no redirection! 

 

Any thoughts?



#8 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:04:26 PM

Posted 28 February 2013 - 06:12 PM

Please follow my instructions :)



#9 onesnark

onesnark
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:05:26 PM

Posted 28 February 2013 - 06:25 PM

Narenxp: Working on it! I got two of the three. . .about to start an Eset run now -> that one takes time!. . . .after the bluescreen today, I first stopped to undo some of the work I did with other AntiViral and Malware software that may have caused the problem.

 

Results coming soon, I hope. . .



#10 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:04:26 PM

Posted 28 February 2013 - 06:34 PM

I dont want you to run any other tools when you are being assisted.



#11 onesnark

onesnark
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:05:26 PM

Posted 01 March 2013 - 01:03 PM

Ok. .. .I got things going properly this time. The only hitch was that the computer went to sleep overnight while ESET was running; It seemed to resume this morning after I woke up the computer.

Ran the three programs. There were some findings. . . all the requested logs are posted in the next set of replies.

 

FIRST:    ESET OUTPUT, and aswMBR.TXT in this reply

 

ESET:

C:\Users\All Users\Microsoft\Windows\DRM\FA45.tmp Win64/Olmarik.AR trojan 
C:\Users\All Users\Microsoft\Windows\DRM\FA56.tmp Win64/Olmarik.AR trojan 
C:\$Recycle.Bin\S-1-5-21-2091965428-2788032381-1938997323-1000\$R02GVG0.exe a variant of Win32/InstallIQ application cleaned by deleting - quarantined
C:\$Recycle.Bin\S-1-5-21-2091965428-2788032381-1938997323-1000\$RBLCRFC.exe a variant of Win32/InstallBrain application cleaned by deleting - quarantined
C:\ProgramData\Microsoft\Windows\DRM\FA45.tmp Win64/Olmarik.AR trojan cleaned by deleting - quarantined
C:\ProgramData\Microsoft\Windows\DRM\FA56.tmp Win64/Olmarik.AR trojan cleaned by deleting - quarantined
C:\Users\Gary\AppData\Local\Temp\4A98.tmp Win32/Olmarik.AYD trojan cleaned by deleting - quarantined
C:\Users\Gary\AppData\Local\Temp\FA76.tmp Win32/Olmarik.AYD trojan cleaned by deleting - quarantined
C:\Users\Gary\AppData\Local\Temp\is730966025\zgInstaller.exe Win32/Toolbar.Zugo application cleaned by deleting - quarantined
C:\Users\Gary\AppData\Local\Temp\NERO1005926\unit_app_75\Toolbar.exe a variant of Win32/Bundled.Toolbar.Ask.A application cleaned by deleting - quarantined
C:\Users\Gary\AppData\Local\Temp\njvlyglp\njvlyglp.dll Win32/Kryptik.AVHV.Gen trojan cleaned by deleting - quarantined
C:\Users\Gary\Downloads\cbsidlm-tr1_10a-Data_Recovery-SEO-10664893.exe Win32/DownloadAdmin.G application cleaned by deleting - quarantined
 

aswMBR:

aswMBR version 0.9.9.1707 Copyright© 2011 AVAST Software
Run date: 2013-02-28 22:12:09
-----------------------------
22:12:09.771    OS Version: Windows x64 6.1.7601 Service Pack 1
22:12:09.771    Number of processors: 4 586 0x1E05
22:12:09.771    ComputerName: XXXXXXXXXXX  UserName: XXXXXXXX
22:12:11.456    Initialize success
22:12:17.649    AVAST engine defs: 13022800
22:12:26.884    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
22:12:26.884    Disk 0 Vendor: ST310005 HP34 Size: 953869MB BusType: 8
22:12:26.900    Disk 0 MBR read successfully
22:12:26.900    Disk 0 MBR scan
22:12:26.915    Disk 0 unknown MBR code
22:12:26.915    Disk 0 Partition 1 80 (A) 07    HPFS/NTFS NTFS          100 MB offset 2048
22:12:26.931    Disk 0 Partition 2 00     07    HPFS/NTFS NTFS       941356 MB offset 206848
22:12:26.962    Disk 0 Partition 3 00     07    HPFS/NTFS NTFS        12411 MB offset 1928103936
22:12:26.993    Disk 0 scanning C:\Windows\system32\drivers
22:13:18.385    Service scanning
22:13:37.657    Modules scanning
22:13:37.657    Disk 0 trace - called modules:
22:13:37.704    ntoskrnl.exe CLASSPNP.SYS disk.sys iaStor.sys hal.dll
22:13:38.218    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8007a6a060]
22:13:38.218    3 CLASSPNP.SYS[fffff8800145f43f] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa8007839050]
22:13:40.506    AVAST engine scan C:\Windows
22:14:34.399    AVAST engine scan C:\Windows\system32
22:25:48.657    AVAST engine scan C:\Windows\system32\drivers
22:28:01.606    AVAST engine scan C:\Users\XXXXX
22:56:38.785    AVAST engine scan C:\ProgramData
23:05:04.733    File: C:\ProgramData\Microsoft\Windows\DRM\FA45.tmp  **INFECTED** Win32:Malware-gen
23:05:04.852    File: C:\ProgramData\Microsoft\Windows\DRM\FA56.tmp  **INFECTED** Win32:Malware-gen
23:13:55.971    Scan finished successfully
23:14:15.674    Disk 0 MBR has been saved successfully to "C:\Users\XXXXX\Desktop\MBR.dat"
23:14:15.674    The log file has been saved successfully to "C:\Users\XXXXX\Desktop\aswMBR.txt"

 


Edited by onesnark, 01 March 2013 - 01:08 PM.


#12 onesnark

onesnark
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:05:26 PM

Posted 01 March 2013 - 01:05 PM

2nd Reply with TDSSK Output:

 

21:23:27.0390 2968  TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
21:23:27.0515 2968  ============================================================
21:23:27.0515 2968  Current date / time: 2013/02/28 21:23:27.0515
21:23:27.0515 2968  SystemInfo:
21:23:27.0515 2968 
21:23:27.0515 2968  OS Version: 6.1.7601 ServicePack: 1.0
21:23:27.0515 2968  Product type: Workstation
21:23:27.0515 2968  ComputerName: XXXXXXXXXXX
21:23:27.0515 2968  UserName: XXXXXXXXXXXX
21:23:27.0515 2968  Windows directory: C:\Windows
21:23:27.0515 2968  System windows directory: C:\Windows
21:23:27.0515 2968  Running under WOW64
21:23:27.0515 2968  Processor architecture: Intel x64
21:23:27.0515 2968  Number of processors: 4
21:23:27.0515 2968  Page size: 0x1000
21:23:27.0515 2968  Boot type: Normal boot
21:23:27.0515 2968  ============================================================
21:23:45.0059 2968  BG loaded
21:23:45.0527 2968  Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
21:23:45.0558 2968  ============================================================
21:23:45.0558 2968  \Device\Harddisk0\DR0:
21:23:45.0558 2968  MBR partitions:
21:23:45.0558 2968  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
21:23:45.0558 2968  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x72E96000
21:23:45.0558 2968  \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x72EC8800, BlocksNum 0x183D800
21:23:45.0558 2968  ============================================================
21:23:45.0605 2968  C: <-> \Device\Harddisk0\DR0\Partition2
21:23:45.0683 2968  G: <-> \Device\Harddisk0\DR0\Partition3
21:23:45.0776 2968  Z: <-> \Device\Harddisk0\DR0\Partition1
21:23:45.0776 2968  ============================================================
21:23:45.0776 2968  Initialize success
21:23:45.0776 2968  ============================================================
21:23:53.0186 4080  ============================================================
21:23:53.0186 4080  Scan started
21:23:53.0186 4080  Mode: Manual; TDLFS;
21:23:53.0186 4080  ============================================================
21:23:53.0935 4080  ================ Scan system memory ========================
21:23:53.0935 4080  System memory - ok
21:23:53.0935 4080  ================ Scan services =============================
21:23:54.0076 4080  [ A87D604AEA360176311474C87A63BB88 ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
21:23:54.0076 4080  1394ohci - ok
21:23:54.0107 4080  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
21:23:54.0107 4080  ACPI - ok
21:23:54.0138 4080  [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
21:23:54.0138 4080  AcpiPmi - ok
21:23:54.0169 4080  [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx         C:\Windows\system32\DRIVERS\adp94xx.sys
21:23:54.0185 4080  adp94xx - ok
21:23:54.0200 4080  [ 597F78224EE9224EA1A13D6350CED962 ] adpahci         C:\Windows\system32\DRIVERS\adpahci.sys
21:23:54.0200 4080  adpahci - ok
21:23:54.0232 4080  [ E109549C90F62FB570B9540C4B148E54 ] adpu320         C:\Windows\system32\DRIVERS\adpu320.sys
21:23:54.0232 4080  adpu320 - ok
21:23:54.0263 4080  [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
21:23:54.0263 4080  AeLookupSvc - ok
21:23:54.0310 4080  [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD             C:\Windows\system32\drivers\afd.sys
21:23:54.0310 4080  AFD - ok
21:23:54.0325 4080  [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440          C:\Windows\system32\drivers\agp440.sys
21:23:54.0325 4080  agp440 - ok
21:23:54.0341 4080  [ 3290D6946B5E30E70414990574883DDB ] ALG             C:\Windows\System32\alg.exe
21:23:54.0356 4080  ALG - ok
21:23:54.0372 4080  [ 5812713A477A3AD7363C7438CA2EE038 ] aliide          C:\Windows\system32\drivers\aliide.sys
21:23:54.0372 4080  aliide - ok
21:23:54.0388 4080  [ 1FF8B4431C353CE385C875F194924C0C ] amdide          C:\Windows\system32\drivers\amdide.sys
21:23:54.0388 4080  amdide - ok
21:23:54.0403 4080  [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8           C:\Windows\system32\DRIVERS\amdk8.sys
21:23:54.0403 4080  AmdK8 - ok
21:23:54.0434 4080  [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM          C:\Windows\system32\DRIVERS\amdppm.sys
21:23:54.0434 4080  AmdPPM - ok
21:23:54.0450 4080  [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
21:23:54.0450 4080  amdsata - ok
21:23:54.0481 4080  [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs          C:\Windows\system32\DRIVERS\amdsbs.sys
21:23:54.0481 4080  amdsbs - ok
21:23:54.0497 4080  [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata         C:\Windows\system32\drivers\amdxata.sys
21:23:54.0497 4080  amdxata - ok
21:23:54.0544 4080  [ 89A69C3F2F319B43379399547526D952 ] AppID           C:\Windows\system32\drivers\appid.sys
21:23:54.0559 4080  AppID - ok
21:23:54.0559 4080  [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
21:23:54.0575 4080  AppIDSvc - ok
21:23:54.0622 4080  [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo         C:\Windows\System32\appinfo.dll
21:23:54.0622 4080  Appinfo - ok
21:23:54.0715 4080  [ 5AA788D5A2C6737BB9C45933985BC1B8 ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
21:23:54.0715 4080  Apple Mobile Device - ok
21:23:54.0746 4080  [ C484F8CEB1717C540242531DB7845C4E ] arc             C:\Windows\system32\DRIVERS\arc.sys
21:23:54.0746 4080  arc - ok
21:23:54.0762 4080  [ 019AF6924AEFE7839F61C830227FE79C ] arcsas          C:\Windows\system32\DRIVERS\arcsas.sys
21:23:54.0778 4080  arcsas - ok
21:23:54.0793 4080  [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
21:23:54.0809 4080  AsyncMac - ok
21:23:54.0824 4080  [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi           C:\Windows\system32\drivers\atapi.sys
21:23:54.0824 4080  atapi - ok
21:23:54.0871 4080  [ 7D89B0C443F6068E5B27AA3B972069FF ] athr            C:\Windows\system32\DRIVERS\athrx.sys
21:23:54.0902 4080  athr - ok
21:23:54.0965 4080  [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
21:23:54.0980 4080  AudioEndpointBuilder - ok
21:23:54.0996 4080  [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv        C:\Windows\System32\Audiosrv.dll
21:23:54.0996 4080  AudioSrv - ok
21:23:55.0043 4080  [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV        C:\Windows\System32\AxInstSV.dll
21:23:55.0043 4080  AxInstSV - ok
21:23:55.0090 4080  [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv         C:\Windows\system32\DRIVERS\bxvbda.sys
21:23:55.0105 4080  b06bdrv - ok
21:23:55.0121 4080  [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
21:23:55.0121 4080  b57nd60a - ok
21:23:55.0168 4080  [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC          C:\Windows\System32\bdesvc.dll
21:23:55.0168 4080  BDESVC - ok
21:23:55.0199 4080  [ 16A47CE2DECC9B099349A5F840654746 ] Beep            C:\Windows\system32\drivers\Beep.sys
21:23:55.0199 4080  Beep - ok
21:23:55.0277 4080  [ 82974D6A2FD19445CC5171FC378668A4 ] BFE             C:\Windows\System32\bfe.dll
21:23:55.0277 4080  BFE - ok
21:23:55.0605 4080  [ 866335C9C0E6733C753FB472C539A6B9 ] BHDrvx64        C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.1.22\Definitions\BASHDefs\20130208.001\BHDrvx64.sys
21:23:55.0620 4080  BHDrvx64 - ok
21:23:55.0683 4080  [ 1EA7969E3271CBC59E1730697DC74682 ] BITS            C:\Windows\System32\qmgr.dll
21:23:55.0714 4080  BITS - ok
21:23:55.0745 4080  [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
21:23:55.0745 4080  blbdrive - ok
21:23:55.0823 4080  [ F2060A34C8A75BC24A9222EB4F8C07BD ] Bonjour Service C:\Program Files (x86)\Bonjour\mDNSResponder.exe
21:23:55.0823 4080  Bonjour Service - ok
21:23:55.0885 4080  [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
21:23:55.0885 4080  bowser - ok
21:23:55.0917 4080  [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo        C:\Windows\system32\DRIVERS\BrFiltLo.sys
21:23:55.0917 4080  BrFiltLo - ok
21:23:55.0932 4080  [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp        C:\Windows\system32\DRIVERS\BrFiltUp.sys
21:23:55.0932 4080  BrFiltUp - ok
21:23:55.0995 4080  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser         C:\Windows\System32\browser.dll
21:23:55.0995 4080  Browser - ok
21:23:56.0026 4080  [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
21:23:56.0026 4080  Brserid - ok
21:23:56.0057 4080  [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
21:23:56.0057 4080  BrSerWdm - ok
21:23:56.0088 4080  [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
21:23:56.0088 4080  BrUsbMdm - ok
21:23:56.0104 4080  [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
21:23:56.0104 4080  BrUsbSer - ok
21:23:56.0135 4080  [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM        C:\Windows\system32\DRIVERS\bthmodem.sys
21:23:56.0135 4080  BTHMODEM - ok
21:23:56.0197 4080  [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv         C:\Windows\system32\bthserv.dll
21:23:56.0197 4080  bthserv - ok
21:23:56.0291 4080  [ 248C952C82DF1E23775432774CBB20F1 ] ccSet_NIS       C:\Windows\system32\drivers\NISx64\1402010.016\ccSetx64.sys
21:23:56.0291 4080  ccSet_NIS - ok
21:23:56.0307 4080  [ B8BD2BB284668C84865658C77574381A ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
21:23:56.0322 4080  cdfs - ok
21:23:56.0353 4080  [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
21:23:56.0353 4080  cdrom - ok
21:23:56.0400 4080  [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc     C:\Windows\System32\certprop.dll
21:23:56.0400 4080  CertPropSvc - ok
21:23:56.0431 4080  [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass        C:\Windows\system32\DRIVERS\circlass.sys
21:23:56.0431 4080  circlass - ok
21:23:56.0447 4080  [ FE1EC06F2253F691FE36217C592A0206 ] CLFS            C:\Windows\system32\CLFS.sys
21:23:56.0463 4080  CLFS - ok
21:23:56.0572 4080  [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
21:23:56.0572 4080  clr_optimization_v2.0.50727_32 - ok
21:23:56.0619 4080  [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
21:23:56.0619 4080  clr_optimization_v2.0.50727_64 - ok
21:23:56.0697 4080  [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
21:23:56.0728 4080  clr_optimization_v4.0.30319_32 - ok
21:23:56.0759 4080  [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
21:23:56.0775 4080  clr_optimization_v4.0.30319_64 - ok
21:23:56.0790 4080  [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
21:23:56.0790 4080  CmBatt - ok
21:23:56.0806 4080  [ E19D3F095812725D88F9001985B94EDD ] cmdide          C:\Windows\system32\drivers\cmdide.sys
21:23:56.0806 4080  cmdide - ok
21:23:56.0837 4080  [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG             C:\Windows\system32\Drivers\cng.sys
21:23:56.0853 4080  CNG - ok
21:23:56.0868 4080  [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt        C:\Windows\system32\DRIVERS\compbatt.sys
21:23:56.0868 4080  Compbatt - ok
21:23:56.0899 4080  [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus    C:\Windows\system32\drivers\CompositeBus.sys
21:23:56.0899 4080  CompositeBus - ok
21:23:56.0915 4080  COMSysApp - ok
21:23:57.0742 4080  cpuz134 - ok
21:23:57.0773 4080  [ 1C827878A998C18847245FE1F34EE597 ] crcdisk         C:\Windows\system32\DRIVERS\crcdisk.sys
21:23:57.0773 4080  crcdisk - ok
21:23:57.0820 4080  [ 9C01375BE382E834CC26D1B7EAF2C4FE ] CryptSvc        C:\Windows\system32\cryptsvc.dll
21:23:57.0820 4080  CryptSvc - ok
21:23:57.0882 4080  [ 76E02DB615A03801D698199A2BC4A06A ] dc3d            C:\Windows\system32\DRIVERS\dc3d.sys
21:23:57.0882 4080  dc3d - ok
21:23:57.0913 4080  [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch      C:\Windows\system32\rpcss.dll
21:23:57.0929 4080  DcomLaunch - ok
21:23:57.0960 4080  [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc       C:\Windows\System32\defragsvc.dll
21:23:57.0960 4080  defragsvc - ok
21:23:57.0991 4080  [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
21:23:57.0991 4080  DfsC - ok
21:23:58.0007 4080  [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp            C:\Windows\system32\dhcpcore.dll
21:23:58.0007 4080  Dhcp - ok
21:23:58.0038 4080  [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache        C:\Windows\system32\drivers\discache.sys
21:23:58.0038 4080  discache - ok
21:23:58.0069 4080  [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk            C:\Windows\system32\DRIVERS\disk.sys
21:23:58.0069 4080  Disk - ok
21:23:58.0194 4080  [ 5AA7259DB2BDC4878531621C7E91CDB4 ] DMService       C:\Windows\DOWNLO~1\DMService.exe
21:23:58.0194 4080  DMService - ok
21:23:58.0241 4080  [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
21:23:58.0241 4080  Dnscache - ok
21:23:58.0257 4080  [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc         C:\Windows\System32\dot3svc.dll
21:23:58.0272 4080  dot3svc - ok
21:23:58.0335 4080  [ B42ED0320C6E41102FDE0005154849BB ] Dot4            C:\Windows\system32\DRIVERS\Dot4.sys
21:23:58.0350 4080  Dot4 - ok
21:23:58.0413 4080  [ E9F5969233C5D89F3C35E3A66A52A361 ] Dot4Print       C:\Windows\system32\drivers\Dot4Prt.sys
21:23:58.0413 4080  Dot4Print - ok
21:23:58.0428 4080  [ FD05A02B0370BC3000F402E543CA5814 ] dot4usb         C:\Windows\system32\DRIVERS\dot4usb.sys
21:23:58.0428 4080  dot4usb - ok
21:23:58.0444 4080  [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS             C:\Windows\system32\dps.dll
21:23:58.0444 4080  DPS - ok
21:23:58.0459 4080  [ 9B19F34400D24DF84C858A421C205754 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
21:23:58.0475 4080  drmkaud - ok
21:23:58.0506 4080  [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
21:23:58.0522 4080  DXGKrnl - ok
21:23:58.0553 4080  [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost         C:\Windows\System32\eapsvc.dll
21:23:58.0553 4080  EapHost - ok
21:23:58.0756 4080  [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv           C:\Windows\system32\DRIVERS\evbda.sys
21:23:58.0803 4080  ebdrv - ok
21:23:58.0927 4080  [ 4353FF94D47A0A9D52B89ECCF0CDB013 ] eeCtrl          C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys
21:23:58.0943 4080  eeCtrl - ok
21:23:58.0990 4080  [ C118A82CD78818C29AB228366EBF81C3 ] EFS             C:\Windows\System32\lsass.exe
21:23:58.0990 4080  EFS - ok
21:23:59.0099 4080  [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
21:23:59.0130 4080  ehRecvr - ok
21:23:59.0161 4080  [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched         C:\Windows\ehome\ehsched.exe
21:23:59.0161 4080  ehSched - ok
21:23:59.0208 4080  [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor         C:\Windows\system32\DRIVERS\elxstor.sys
21:23:59.0208 4080  elxstor - ok
21:23:59.0255 4080  [ C5BCCB378D0A896304A3E71BE7215983 ] EraserUtilRebootDrv C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
21:23:59.0255 4080  EraserUtilRebootDrv - ok
21:23:59.0271 4080  [ 34A3C54752046E79A126E15C51DB409B ] ErrDev          C:\Windows\system32\drivers\errdev.sys
21:23:59.0271 4080  ErrDev - ok
21:23:59.0395 4080  [ DF96C3CD6AE15F6D0A6BCB70F9C1E88D ] esgiguard       C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys
21:23:59.0395 4080  esgiguard - ok
21:23:59.0427 4080  [ 3B32CAA07D672F8A2E0DF5CB3A873F45 ] EsgScanner      C:\Windows\system32\DRIVERS\EsgScanner.sys
21:23:59.0427 4080  EsgScanner - ok
21:23:59.0458 4080  [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem     C:\Windows\system32\es.dll
21:23:59.0458 4080  EventSystem - ok
21:23:59.0489 4080  [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat           C:\Windows\system32\drivers\exfat.sys
21:23:59.0489 4080  exfat - ok
21:23:59.0505 4080  [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat         C:\Windows\system32\drivers\fastfat.sys
21:23:59.0505 4080  fastfat - ok
21:23:59.0536 4080  [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax             C:\Windows\system32\fxssvc.exe
21:23:59.0551 4080  Fax - ok
21:23:59.0567 4080  [ D765D19CD8EF61F650C384F62FAC00AB ] fdc             C:\Windows\system32\DRIVERS\fdc.sys
21:23:59.0567 4080  fdc - ok
21:23:59.0598 4080  [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost         C:\Windows\system32\fdPHost.dll
21:23:59.0598 4080  fdPHost - ok
21:23:59.0598 4080  [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub        C:\Windows\system32\fdrespub.dll
21:23:59.0614 4080  FDResPub - ok
21:23:59.0629 4080  [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
21:23:59.0629 4080  FileInfo - ok
21:23:59.0645 4080  [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
21:23:59.0645 4080  Filetrace - ok
21:23:59.0676 4080  [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk        C:\Windows\system32\DRIVERS\flpydisk.sys
21:23:59.0676 4080  flpydisk - ok
21:23:59.0692 4080  [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
21:23:59.0692 4080  FltMgr - ok
21:23:59.0754 4080  [ C4C183E6551084039EC862DA1C945E3D ] FontCache       C:\Windows\system32\FntCache.dll
21:23:59.0770 4080  FontCache - ok
21:23:59.0910 4080  [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
21:23:59.0926 4080  FontCache3.0.0.0 - ok
21:23:59.0941 4080  [ D43703496149971890703B4B1B723EAC ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
21:23:59.0941 4080  FsDepends - ok
21:23:59.0973 4080  [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
21:23:59.0973 4080  Fs_Rec - ok
21:24:00.0004 4080  [ 1F7B25B858FA27015169FE95E54108ED ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
21:24:00.0004 4080  fvevol - ok
21:24:00.0035 4080  [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx        C:\Windows\system32\DRIVERS\gagp30kx.sys
21:24:00.0035 4080  gagp30kx - ok
21:24:00.0082 4080  [ C44D560E441F091EA3B72F778EC60DE2 ] GameConsoleService C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe
21:24:00.0082 4080  GameConsoleService - ok
21:24:00.0113 4080  [ E403AACF8C7BB11375122D2464560311 ] GEARAspiWDM     C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
21:24:00.0113 4080  GEARAspiWDM - ok
21:24:00.0160 4080  [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc           C:\Windows\System32\gpsvc.dll
21:24:00.0160 4080  gpsvc - ok
21:24:00.0269 4080  [ 2ED7FF3E1ADA4092632393781518B3A7 ] grmnusb         C:\Windows\system32\drivers\grmnusb.sys
21:24:00.0285 4080  grmnusb - ok
21:24:00.0331 4080  [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
21:24:00.0331 4080  hcw85cir - ok
21:24:00.0378 4080  [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus        C:\Windows\system32\drivers\HDAudBus.sys
21:24:00.0378 4080  HDAudBus - ok
21:24:00.0409 4080  [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt         C:\Windows\system32\DRIVERS\HidBatt.sys
21:24:00.0409 4080  HidBatt - ok
21:24:00.0441 4080  [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth          C:\Windows\system32\DRIVERS\hidbth.sys
21:24:00.0441 4080  HidBth - ok
21:24:00.0487 4080  [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr           C:\Windows\system32\DRIVERS\hidir.sys
21:24:00.0487 4080  HidIr - ok
21:24:00.0503 4080  [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv         C:\Windows\system32\hidserv.dll
21:24:00.0503 4080  hidserv - ok
21:24:00.0565 4080  [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
21:24:00.0565 4080  HidUsb - ok
21:24:00.0612 4080  [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc          C:\Windows\system32\kmsvc.dll
21:24:00.0628 4080  hkmsvc - ok
21:24:00.0690 4080  [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
21:24:00.0690 4080  HomeGroupListener - ok
21:24:00.0737 4080  [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
21:24:00.0753 4080  HomeGroupProvider - ok
21:24:00.0909 4080  [ 13BB1114451C63BFB41BA7DAA4D70A29 ] HP Support Assistant Service C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
21:24:00.0924 4080  HP Support Assistant Service - ok
21:24:01.0018 4080  [ BCC4A8B2E2E902F52E7F2E7D8E125765 ] HPDrvMntSvc.exe C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
21:24:01.0018 4080  HPDrvMntSvc.exe - ok
21:24:01.0174 4080  [ EC9739A46F1F83C6E52A7A4697F44A65 ] hpqwmiex        C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
21:24:01.0205 4080  hpqwmiex - ok
21:24:01.0236 4080  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
21:24:01.0236 4080  HpSAMD - ok
21:24:01.0470 4080  [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
21:24:01.0486 4080  HTTP - ok
21:24:01.0517 4080  [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
21:24:01.0517 4080  hwpolicy - ok
21:24:01.0548 4080  [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt        C:\Windows\system32\drivers\i8042prt.sys
21:24:01.0548 4080  i8042prt - ok
21:24:01.0673 4080  [ 7548066DF68A8A1A56B043359F915F37 ] IAANTMON        C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
21:24:01.0673 4080  IAANTMON - ok
21:24:01.0735 4080  [ 1D004CB1DA6323B1F55CAEF7F94B61D9 ] iaStor          C:\Windows\system32\DRIVERS\iaStor.sys
21:24:01.0735 4080  iaStor - ok
21:24:01.0782 4080  [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
21:24:01.0798 4080  iaStorV - ok
21:24:01.0938 4080  [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
21:24:01.0954 4080  idsvc - ok
21:24:02.0344 4080  [ A48928D4CCA6F8B731989DB08CF2C0AB ] IDSVia64        C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.1.22\Definitions\IPSDefs\20130227.001\IDSvia64.sys
21:24:02.0359 4080  IDSVia64 - ok
21:24:02.0422 4080  [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp           C:\Windows\system32\DRIVERS\iirsp.sys
21:24:02.0422 4080  iirsp - ok
21:24:02.0515 4080  [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT          C:\Windows\System32\ikeext.dll
21:24:02.0515 4080  IKEEXT - ok
21:24:02.0625 4080  [ 3C4B4EE54FEBB09F7E9F58776DE96DCA ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
21:24:02.0640 4080  IntcAzAudAddService - ok
21:24:02.0703 4080  [ F00F20E70C6EC3AA366910083A0518AA ] intelide        C:\Windows\system32\drivers\intelide.sys
21:24:02.0703 4080  intelide - ok
21:24:02.0734 4080  [ ADA036632C664CAA754079041CF1F8C1 ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
21:24:02.0734 4080  intelppm - ok
21:24:02.0905 4080  [ 3DC635B66DD7412E1C9C3A77B8D78F25 ] IntuitUpdateService C:\Program Files (x86)\Common Files\Intuit\Update Service\IntuitUpdateService.exe
21:24:02.0905 4080  IntuitUpdateService - ok
21:24:03.0030 4080  [ 1663A135865F0BA6E853353E98E67F2A ] IntuitUpdateServiceV4 C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
21:24:03.0030 4080  IntuitUpdateServiceV4 - ok
21:24:03.0077 4080  [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
21:24:03.0093 4080  IPBusEnum - ok
21:24:03.0124 4080  [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
21:24:03.0124 4080  IpFilterDriver - ok
21:24:03.0171 4080  [ 08C2957BB30058E663720C5606885653 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
21:24:03.0171 4080  iphlpsvc - ok
21:24:03.0186 4080  [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
21:24:03.0186 4080  IPMIDRV - ok
21:24:03.0202 4080  [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
21:24:03.0217 4080  IPNAT - ok
21:24:03.0264 4080  [ 3D62FE4FEFE9C67DAFEC52B534DFA1FB ] iPod Service    C:\Program Files\iPod\bin\iPodService.exe
21:24:03.0264 4080  iPod Service - ok
21:24:03.0295 4080  [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM          C:\Windows\system32\drivers\irenum.sys
21:24:03.0295 4080  IRENUM - ok
21:24:03.0295 4080  [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
21:24:03.0295 4080  isapnp - ok
21:24:03.0311 4080  [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
21:24:03.0327 4080  iScsiPrt - ok
21:24:03.0358 4080  [ BD5BF20EC242E003A2F570B8754A56D1 ] ivusb           C:\Windows\system32\DRIVERS\ivusb.sys
21:24:03.0358 4080  ivusb - ok
21:24:03.0373 4080  [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
21:24:03.0373 4080  kbdclass - ok
21:24:03.0373 4080  [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
21:24:03.0373 4080  kbdhid - ok
21:24:03.0389 4080  [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso          C:\Windows\system32\lsass.exe
21:24:03.0389 4080  KeyIso - ok
21:24:03.0436 4080  [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
21:24:03.0436 4080  KSecDD - ok
21:24:03.0436 4080  [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
21:24:03.0451 4080  KSecPkg - ok
21:24:03.0467 4080  [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
21:24:03.0467 4080  ksthunk - ok
21:24:03.0483 4080  [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm           C:\Windows\system32\msdtckrm.dll
21:24:03.0498 4080  KtmRm - ok
21:24:03.0545 4080  [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer    C:\Windows\system32\srvsvc.dll
21:24:03.0545 4080  LanmanServer - ok
21:24:03.0561 4080  [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
21:24:03.0576 4080  LanmanWorkstation - ok
21:24:03.0685 4080  [ 7772DFAB22611050B79504E671B06E6E ] LBTServ         C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
21:24:03.0685 4080  LBTServ - ok
21:24:03.0732 4080  [ ED7EC050CD6C20E1A93A4DAFB7EFD14D ] LEqdUsb         C:\Windows\system32\DRIVERS\LEqdUsb.Sys
21:24:03.0732 4080  LEqdUsb - ok
21:24:03.0763 4080  [ 3267BC698E29474A8381E68904EB0390 ] LHidEqd         C:\Windows\system32\DRIVERS\LHidEqd.Sys
21:24:03.0763 4080  LHidEqd - ok
21:24:03.0795 4080  [ 241F2648ADF090E2A10095BD6D6F5DCB ] LHidFilt        C:\Windows\system32\DRIVERS\LHidFilt.Sys
21:24:03.0795 4080  LHidFilt - ok
21:24:03.0826 4080  [ 1538831CF8AD2979A04C423779465827 ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
21:24:03.0826 4080  lltdio - ok
21:24:03.0857 4080  [ C1185803384AB3FEED115F79F109427F ] lltdsvc         C:\Windows\System32\lltdsvc.dll
21:24:03.0873 4080  lltdsvc - ok
21:24:03.0888 4080  [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts         C:\Windows\System32\lmhsvc.dll
21:24:03.0888 4080  lmhosts - ok
21:24:03.0904 4080  [ 342ED5A4B3326014438F36D22D803737 ] LMouFilt        C:\Windows\system32\DRIVERS\LMouFilt.Sys
21:24:03.0904 4080  LMouFilt - ok
21:24:03.0919 4080  [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC          C:\Windows\system32\DRIVERS\lsi_fc.sys
21:24:03.0935 4080  LSI_FC - ok
21:24:03.0935 4080  [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS         C:\Windows\system32\DRIVERS\lsi_sas.sys
21:24:03.0935 4080  LSI_SAS - ok
21:24:03.0966 4080  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2        C:\Windows\system32\DRIVERS\lsi_sas2.sys
21:24:03.0966 4080  LSI_SAS2 - ok
21:24:03.0982 4080  [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI        C:\Windows\system32\DRIVERS\lsi_scsi.sys
21:24:03.0982 4080  LSI_SCSI - ok
21:24:03.0997 4080  [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv           C:\Windows\system32\drivers\luafv.sys
21:24:03.0997 4080  luafv - ok
21:24:04.0044 4080  [ C586CC39820B6E7FE3657FED8329D300 ] lvpopf64        C:\Windows\system32\DRIVERS\lvpopf64.sys
21:24:04.0044 4080  lvpopf64 - ok
21:24:04.0060 4080  [ 224AB3850F573A419F921C41A15D7F5B ] LVRS64          C:\Windows\system32\DRIVERS\lvrs64.sys
21:24:04.0075 4080  LVRS64 - ok
21:24:04.0231 4080  [ BFBA84B8A9C233AE42B11CF7BDFC6C01 ] LVUVC64         C:\Windows\system32\DRIVERS\lvuvc64.sys
21:24:04.0341 4080  LVUVC64 - ok
21:24:04.0356 4080  [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
21:24:04.0356 4080  Mcx2Svc - ok
21:24:04.0387 4080  [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas         C:\Windows\system32\DRIVERS\megasas.sys
21:24:04.0387 4080  megasas - ok
21:24:04.0403 4080  [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR          C:\Windows\system32\DRIVERS\MegaSR.sys
21:24:04.0419 4080  MegaSR - ok
21:24:04.0419 4080  [ E40E80D0304A73E8D269F7141D77250B ] MMCSS           C:\Windows\system32\mmcss.dll
21:24:04.0434 4080  MMCSS - ok
21:24:04.0450 4080  [ 800BA92F7010378B09F9ED9270F07137 ] Modem           C:\Windows\system32\drivers\modem.sys
21:24:04.0450 4080  Modem - ok
21:24:04.0465 4080  [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
21:24:04.0465 4080  monitor - ok
21:24:04.0512 4080  [ E90ABA3C6F01BE2C456C4AA857B28646 ] motmodem        C:\Windows\system32\DRIVERS\motmodem.sys
21:24:04.0512 4080  motmodem - ok
21:24:04.0543 4080  [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
21:24:04.0543 4080  mouclass - ok
21:24:04.0575 4080  [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
21:24:04.0575 4080  mouhid - ok
21:24:04.0606 4080  [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
21:24:04.0606 4080  mountmgr - ok
21:24:04.0637 4080  [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio            C:\Windows\system32\drivers\mpio.sys
21:24:04.0653 4080  mpio - ok
21:24:04.0653 4080  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
21:24:04.0653 4080  mpsdrv - ok
21:24:04.0715 4080  [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc          C:\Windows\system32\mpssvc.dll
21:24:04.0715 4080  MpsSvc - ok
21:24:04.0762 4080  [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
21:24:04.0777 4080  MRxDAV - ok
21:24:04.0824 4080  [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
21:24:04.0824 4080  mrxsmb - ok
21:24:04.0871 4080  [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
21:24:04.0887 4080  mrxsmb10 - ok
21:24:04.0902 4080  [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
21:24:04.0902 4080  mrxsmb20 - ok
21:24:04.0933 4080  [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci          C:\Windows\system32\drivers\msahci.sys
21:24:04.0933 4080  msahci - ok
21:24:04.0949 4080  [ DB801A638D011B9633829EB6F663C900 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
21:24:04.0949 4080  msdsm - ok
21:24:04.0965 4080  [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC           C:\Windows\System32\msdtc.exe
21:24:04.0965 4080  MSDTC - ok
21:24:05.0011 4080  [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
21:24:05.0011 4080  Msfs - ok
21:24:05.0027 4080  [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
21:24:05.0027 4080  mshidkmdf - ok
21:24:05.0043 4080  [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
21:24:05.0058 4080  msisadrv - ok
21:24:05.0074 4080  [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
21:24:05.0074 4080  MSiSCSI - ok
21:24:05.0074 4080  msiserver - ok
21:24:05.0105 4080  [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
21:24:05.0121 4080  MSKSSRV - ok
21:24:05.0136 4080  [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
21:24:05.0136 4080  MSPCLOCK - ok
21:24:05.0152 4080  [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
21:24:05.0152 4080  MSPQM - ok
21:24:05.0167 4080  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
21:24:05.0183 4080  MsRPC - ok
21:24:05.0199 4080  [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios        C:\Windows\system32\drivers\mssmbios.sys
21:24:05.0199 4080  mssmbios - ok
21:24:05.0214 4080  [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
21:24:05.0214 4080  MSTEE - ok
21:24:05.0230 4080  [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig        C:\Windows\system32\DRIVERS\MTConfig.sys
21:24:05.0230 4080  MTConfig - ok
21:24:05.0261 4080  [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup             C:\Windows\system32\Drivers\mup.sys
21:24:05.0261 4080  Mup - ok
21:24:05.0277 4080  [ 582AC6D9873E31DFA28A4547270862DD ] napagent        C:\Windows\system32\qagentRT.dll
21:24:05.0277 4080  napagent - ok
21:24:05.0308 4080  [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
21:24:05.0308 4080  NativeWifiP - ok
21:24:05.0401 4080  [ 88A2F45CE66B904285978D6BB13AFEB2 ] NAVENG          C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.1.22\Definitions\VirusDefs\20130228.003\ENG64.SYS
21:24:05.0401 4080  NAVENG - ok
21:24:05.0464 4080  [ D2A545DA3A90BBFA40E020C23F1B7A48 ] NAVEX15         C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.1.22\Definitions\VirusDefs\20130228.003\EX64.SYS
21:24:05.0495 4080  NAVEX15 - ok
21:24:05.0542 4080  [ 760E38053BF56E501D562B70AD796B88 ] NDIS            C:\Windows\system32\drivers\ndis.sys
21:24:05.0557 4080  NDIS - ok
21:24:05.0589 4080  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
21:24:05.0604 4080  NdisCap - ok
21:24:05.0620 4080  [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
21:24:05.0620 4080  NdisTapi - ok
21:24:05.0651 4080  [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
21:24:05.0651 4080  Ndisuio - ok
21:24:05.0667 4080  [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
21:24:05.0667 4080  NdisWan - ok
21:24:05.0713 4080  [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
21:24:05.0713 4080  NDProxy - ok
21:24:05.0729 4080  [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
21:24:05.0729 4080  NetBIOS - ok
21:24:05.0745 4080  [ 09594D1089C523423B32A4229263F068 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
21:24:05.0745 4080  NetBT - ok
21:24:05.0745 4080  [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon        C:\Windows\system32\lsass.exe
21:24:05.0745 4080  Netlogon - ok
21:24:05.0791 4080  [ 847D3AE376C0817161A14A82C8922A9E ] Netman          C:\Windows\System32\netman.dll
21:24:05.0791 4080  Netman - ok
21:24:05.0807 4080  [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm        C:\Windows\System32\netprofm.dll
21:24:05.0823 4080  netprofm - ok
21:24:05.0838 4080  [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
21:24:05.0854 4080  NetTcpPortSharing - ok
21:24:05.0885 4080  [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960         C:\Windows\system32\DRIVERS\nfrd960.sys
21:24:05.0885 4080  nfrd960 - ok
21:24:05.0979 4080  [ 4BA84C832E0741A294C4444556DFE993 ] NIS             C:\Program Files (x86)\Norton Internet Security\Engine\20.2.1.22\ccSvcHst.exe
21:24:05.0979 4080  NIS - ok
21:24:06.0010 4080  [ 8AD77806D336673F270DB31645267293 ] NlaSvc          C:\Windows\System32\nlasvc.dll
21:24:06.0025 4080  NlaSvc - ok
21:24:06.0025 4080  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
21:24:06.0025 4080  Npfs - ok
21:24:06.0041 4080  [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi             C:\Windows\system32\nsisvc.dll
21:24:06.0041 4080  nsi - ok
21:24:06.0057 4080  [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
21:24:06.0057 4080  nsiproxy - ok
21:24:06.0103 4080  [ E453ACF4E7D44E5530B5D5F2B9CA8563 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
21:24:06.0135 4080  Ntfs - ok
21:24:06.0150 4080  [ 9899284589F75FA8724FF3D16AED75C1 ] Null            C:\Windows\system32\drivers\Null.sys
21:24:06.0150 4080  Null - ok
21:24:06.0618 4080  [ F0FBFE1E29FF233B0E000054C1FB968A ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
21:24:06.0665 4080  nvlddmkm - ok
21:24:06.0681 4080  [ 0A92CB65770442ED0DC44834632F66AD ] nvraid          C:\Windows\system32\drivers\nvraid.sys
21:24:06.0681 4080  nvraid - ok
21:24:06.0712 4080  [ DAB0E87525C10052BF65F06152F37E4A ] nvstor          C:\Windows\system32\drivers\nvstor.sys
21:24:06.0712 4080  nvstor - ok
21:24:06.0727 4080  [ 4E70B5247914426722621180B8764514 ] nvsvc           C:\Windows\system32\nvvsvc.exe
21:24:06.0727 4080  nvsvc - ok
21:24:06.0759 4080  [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
21:24:06.0759 4080  nv_agp - ok
21:24:06.0883 4080  [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv          C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
21:24:06.0899 4080  odserv - ok
21:24:06.0899 4080  [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
21:24:06.0915 4080  ohci1394 - ok
21:24:06.0946 4080  [ 5A432A042DAE460ABE7199B758E8606C ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
21:24:06.0946 4080  ose - ok
21:24:06.0977 4080  [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
21:24:06.0993 4080  p2pimsvc - ok
21:24:07.0024 4080  [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc          C:\Windows\system32\p2psvc.dll
21:24:07.0024 4080  p2psvc - ok
21:24:07.0039 4080  [ 0086431C29C35BE1DBC43F52CC273887 ] Parport         C:\Windows\system32\DRIVERS\parport.sys
21:24:07.0055 4080  Parport - ok
21:24:07.0086 4080  Partizan - ok
21:24:07.0102 4080  [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr         C:\Windows\system32\drivers\partmgr.sys
21:24:07.0117 4080  partmgr - ok
21:24:07.0133 4080  [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc          C:\Windows\System32\pcasvc.dll
21:24:07.0133 4080  PcaSvc - ok
21:24:07.0149 4080  [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci             C:\Windows\system32\drivers\pci.sys
21:24:07.0149 4080  pci - ok
21:24:07.0164 4080  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide          C:\Windows\system32\drivers\pciide.sys
21:24:07.0164 4080  pciide - ok
21:24:07.0195 4080  [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia          C:\Windows\system32\DRIVERS\pcmcia.sys
21:24:07.0195 4080  pcmcia - ok
21:24:07.0227 4080  [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw             C:\Windows\system32\drivers\pcw.sys
21:24:07.0227 4080  pcw - ok
21:24:07.0242 4080  [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
21:24:07.0258 4080  PEAUTH - ok
21:24:07.0913 4080  [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost        C:\Windows\SysWow64\perfhost.exe
21:24:07.0929 4080  PerfHost - ok
21:24:07.0975 4080  [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla             C:\Windows\system32\pla.dll
21:24:08.0007 4080  pla - ok
21:24:08.0053 4080  [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
21:24:08.0053 4080  PlugPlay - ok
21:24:08.0069 4080  [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
21:24:08.0085 4080  PNRPAutoReg - ok
21:24:08.0116 4080  [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
21:24:08.0116 4080  PNRPsvc - ok
21:24:08.0147 4080  [ B8D8EC78B0F9ED8E220506181274F3D3 ] Point64         C:\Windows\system32\DRIVERS\point64.sys
21:24:08.0147 4080  Point64 - ok
21:24:08.0178 4080  [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
21:24:08.0194 4080  PolicyAgent - ok
21:24:08.0209 4080  [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power           C:\Windows\system32\umpo.dll
21:24:08.0209 4080  Power - ok
21:24:08.0241 4080  [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
21:24:08.0241 4080  PptpMiniport - ok
21:24:08.0272 4080  [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor       C:\Windows\system32\DRIVERS\processr.sys
21:24:08.0272 4080  Processor - ok
21:24:08.0303 4080  [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc         C:\Windows\system32\profsvc.dll
21:24:08.0303 4080  ProfSvc - ok
21:24:08.0319 4080  [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
21:24:08.0319 4080  ProtectedStorage - ok
21:24:08.0365 4080  [ 0557CF5A2556BD58E26384169D72438D ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
21:24:08.0365 4080  Psched - ok
21:24:08.0428 4080  [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300          C:\Windows\system32\DRIVERS\ql2300.sys
21:24:08.0459 4080  ql2300 - ok
21:24:08.0490 4080  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx          C:\Windows\system32\DRIVERS\ql40xx.sys
21:24:08.0506 4080  ql40xx - ok
21:24:08.0521 4080  [ 906191634E99AEA92C4816150BDA3732 ] QWAVE           C:\Windows\system32\qwave.dll
21:24:08.0521 4080  QWAVE - ok
21:24:08.0553 4080  [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
21:24:08.0553 4080  QWAVEdrv - ok
21:24:08.0568 4080  [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
21:24:08.0568 4080  RasAcd - ok
21:24:08.0599 4080  [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
21:24:08.0599 4080  RasAgileVpn - ok
21:24:08.0615 4080  [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto         C:\Windows\System32\rasauto.dll
21:24:08.0615 4080  RasAuto - ok
21:24:08.0646 4080  [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
21:24:08.0646 4080  Rasl2tp - ok
21:24:08.0677 4080  [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan          C:\Windows\System32\rasmans.dll
21:24:08.0677 4080  RasMan - ok
21:24:08.0693 4080  [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
21:24:08.0693 4080  RasPppoe - ok
21:24:08.0693 4080  [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
21:24:08.0693 4080  RasSstp - ok
21:24:08.0709 4080  [ 77F665941019A1594D887A74F301FA2F ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
21:24:08.0724 4080  rdbss - ok
21:24:08.0740 4080  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus          C:\Windows\system32\DRIVERS\rdpbus.sys
21:24:08.0740 4080  rdpbus - ok
21:24:08.0755 4080  [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
21:24:08.0755 4080  RDPCDD - ok
21:24:08.0771 4080  [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
21:24:08.0771 4080  RDPENCDD - ok
21:24:08.0787 4080  [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
21:24:08.0787 4080  RDPREFMP - ok
21:24:08.0802 4080  [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
21:24:08.0818 4080  RDPWD - ok
21:24:08.0833 4080  [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
21:24:08.0833 4080  rdyboost - ok
21:24:08.0865 4080  [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess    C:\Windows\System32\mprdim.dll
21:24:08.0865 4080  RemoteAccess - ok
21:24:08.0896 4080  [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
21:24:08.0896 4080  RemoteRegistry - ok
21:24:08.0911 4080  [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
21:24:08.0911 4080  RpcEptMapper - ok
21:24:08.0943 4080  [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator      C:\Windows\system32\locator.exe
21:24:08.0943 4080  RpcLocator - ok
21:24:08.0974 4080  [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs           C:\Windows\system32\rpcss.dll
21:24:08.0989 4080  RpcSs - ok
21:24:09.0005 4080  [ DDC86E4F8E7456261E637E3552E804FF ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
21:24:09.0005 4080  rspndr - ok
21:24:09.0036 4080  [ 4B42BC58294E83A6A92EC8B88C14C4A3 ] RTL8167         C:\Windows\system32\DRIVERS\Rt64win7.sys
21:24:09.0036 4080  RTL8167 - ok
21:24:09.0036 4080  [ C118A82CD78818C29AB228366EBF81C3 ] SamSs           C:\Windows\system32\lsass.exe
21:24:09.0036 4080  SamSs - ok
21:24:09.0067 4080  [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
21:24:09.0067 4080  sbp2port - ok
21:24:09.0083 4080  [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr        C:\Windows\System32\SCardSvr.dll
21:24:09.0083 4080  SCardSvr - ok
21:24:09.0130 4080  [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
21:24:09.0130 4080  scfilter - ok
21:24:09.0161 4080  [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule        C:\Windows\system32\schedsvc.dll
21:24:09.0177 4080  Schedule - ok
21:24:09.0192 4080  [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc     C:\Windows\System32\certprop.dll
21:24:09.0192 4080  SCPolicySvc - ok
21:24:09.0208 4080  [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
21:24:09.0208 4080  SDRSVC - ok
21:24:09.0239 4080  [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv          C:\Windows\system32\drivers\secdrv.sys
21:24:09.0239 4080  secdrv - ok
21:24:09.0255 4080  [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon        C:\Windows\system32\seclogon.dll
21:24:09.0270 4080  seclogon - ok
21:24:09.0286 4080  [ C32AB8FA018EF34C0F113BD501436D21 ] SENS            C:\Windows\System32\sens.dll
21:24:09.0286 4080  SENS - ok
21:24:09.0301 4080  [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc        C:\Windows\system32\sensrsvc.dll
21:24:09.0301 4080  SensrSvc - ok
21:24:09.0333 4080  [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum         C:\Windows\system32\DRIVERS\serenum.sys
21:24:09.0333 4080  Serenum - ok
21:24:09.0348 4080  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial          C:\Windows\system32\DRIVERS\serial.sys
21:24:09.0348 4080  Serial - ok
21:24:09.0364 4080  [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse        C:\Windows\system32\DRIVERS\sermouse.sys
21:24:09.0364 4080  sermouse - ok
21:24:09.0411 4080  [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv      C:\Windows\system32\sessenv.dll
21:24:09.0411 4080  SessionEnv - ok
21:24:09.0426 4080  [ A554811BCD09279536440C964AE35BBF ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
21:24:09.0426 4080  sffdisk - ok
21:24:09.0442 4080  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
21:24:09.0457 4080  sffp_mmc - ok
21:24:09.0457 4080  [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
21:24:09.0457 4080  sffp_sd - ok
21:24:09.0489 4080  [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy         C:\Windows\system32\DRIVERS\sfloppy.sys
21:24:09.0489 4080  sfloppy - ok
21:24:09.0520 4080  [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess    C:\Windows\System32\ipnathlp.dll
21:24:09.0520 4080  SharedAccess - ok
21:24:09.0551 4080  [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
21:24:09.0551 4080  ShellHWDetection - ok
21:24:09.0567 4080  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2        C:\Windows\system32\DRIVERS\SiSRaid2.sys
21:24:09.0567 4080  SiSRaid2 - ok
21:24:09.0582 4080  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4        C:\Windows\system32\DRIVERS\sisraid4.sys
21:24:09.0582 4080  SiSRaid4 - ok
21:24:09.0645 4080  [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
21:24:09.0645 4080  SkypeUpdate - ok
21:24:09.0660 4080  [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
21:24:09.0660 4080  Smb - ok
21:24:09.0691 4080  [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
21:24:09.0691 4080  SNMPTRAP - ok
21:24:09.0754 4080  [ 12583AF6CBE0050651EAF2723B3AD7B3 ] speedfan        C:\Windows\syswow64\speedfan.sys
21:24:09.0769 4080  speedfan - ok
21:24:09.0785 4080  [ B9E31E5CACDFE584F34F730A677803F9 ] spldr           C:\Windows\system32\drivers\spldr.sys
21:24:09.0785 4080  spldr - ok
21:24:09.0816 4080  [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler         C:\Windows\System32\spoolsv.exe
21:24:09.0816 4080  Spooler - ok
21:24:09.0925 4080  [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc          C:\Windows\system32\sppsvc.exe
21:24:09.0988 4080  sppsvc - ok
21:24:10.0019 4080  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
21:24:10.0019 4080  sppuinotify - ok
21:24:10.0050 4080  [ D8B882C520FC83547E22014FF5EC66D7 ] Spyder3         C:\Windows\system32\DRIVERS\Spyder3.sys
21:24:10.0050 4080  Spyder3 - ok
21:24:10.0175 4080  [ 385F416318EE00FED8777C05C7AC86D0 ] SpyHunter 4 Service C:\PROGRA~1\ENIGMA~1\SPYHUN~1\SH4SER~1.EXE
21:24:10.0191 4080  SpyHunter 4 Service - ok
21:24:10.0331 4080  [ 3510E7021D2637A67FBCB5105EAE945D ] SRTSP           C:\Windows\System32\Drivers\NISx64\1402010.016\SRTSP64.SYS
21:24:10.0362 4080  SRTSP - ok
21:24:10.0378 4080  [ 1B884D876E87EABF5A3356BBD7321412 ] SRTSPX          C:\Windows\system32\drivers\NISx64\1402010.016\SRTSPX64.SYS
21:24:10.0378 4080  SRTSPX - ok
21:24:10.0409 4080  [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv             C:\Windows\system32\DRIVERS\srv.sys
21:24:10.0409 4080  srv - ok
21:24:10.0440 4080  [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
21:24:10.0456 4080  srv2 - ok
21:24:10.0487 4080  [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
21:24:10.0487 4080  srvnet - ok
21:24:10.0549 4080  [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
21:24:10.0549 4080  SSDPSRV - ok
21:24:10.0565 4080  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc         C:\Windows\system32\sstpsvc.dll
21:24:10.0565 4080  SstpSvc - ok
21:24:10.0612 4080  Steam Client Service - ok
21:24:10.0627 4080  [ F3817967ED533D08327DC73BC4D5542A ] stexstor        C:\Windows\system32\DRIVERS\stexstor.sys
21:24:10.0627 4080  stexstor - ok
21:24:10.0674 4080  [ DECACB6921DED1A38642642685D77DAC ] StillCam        C:\Windows\system32\DRIVERS\serscan.sys
21:24:10.0674 4080  StillCam - ok
21:24:10.0721 4080  [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc          C:\Windows\System32\wiaservc.dll
21:24:10.0721 4080  stisvc - ok
21:24:10.0752 4080  [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum          C:\Windows\system32\drivers\swenum.sys
21:24:10.0752 4080  swenum - ok
21:24:10.0783 4080  [ E08E46FDD841B7184194011CA1955A0B ] swprv           C:\Windows\System32\swprv.dll
21:24:10.0783 4080  swprv - ok
21:24:10.0830 4080  [ 777217682DA76337E8E6EC8AC4412B9B ] SymDS           C:\Windows\system32\drivers\NISx64\1402010.016\SYMDS64.SYS
21:24:10.0830 4080  SymDS - ok
21:24:10.0861 4080  [ 64D1AF3D04E70A681154FFF1893848F6 ] SymEFA          C:\Windows\system32\drivers\NISx64\1402010.016\SYMEFA64.SYS
21:24:10.0893 4080  SymEFA - ok
21:24:10.0924 4080  [ F5D6D3B7468C46EA2DDC1D19D2A6DA0F ] SymEvent        C:\Windows\system32\Drivers\SYMEVENT64x86.SYS
21:24:10.0924 4080  SymEvent - ok
21:24:10.0924 4080  SYMFW - ok
21:24:10.0971 4080  [ ADF37F1A715D6C56C8E065FD8569A9A4 ] SymIRON         C:\Windows\system32\drivers\NISx64\1402010.016\Ironx64.SYS
21:24:10.0971 4080  SymIRON - ok
21:24:10.0986 4080  SYMNDISV - ok
21:24:11.0002 4080  [ 1605EBD8CB86AFC4430116065995279A ] SymNetS         C:\Windows\System32\Drivers\NISx64\1402010.016\SYMNETS.SYS
21:24:11.0002 4080  SymNetS - ok
21:24:11.0064 4080  [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain         C:\Windows\system32\sysmain.dll
21:24:11.0080 4080  SysMain - ok
21:24:11.0127 4080  [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
21:24:11.0142 4080  TabletInputService - ok
21:24:11.0158 4080  [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv         C:\Windows\System32\tapisrv.dll
21:24:11.0173 4080  TapiSrv - ok
21:24:11.0173 4080  [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS             C:\Windows\System32\tbssvc.dll
21:24:11.0189 4080  TBS - ok
21:24:11.0267 4080  [ B62A953F2BF3922C8764A29C34A22899 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
21:24:11.0329 4080  Tcpip - ok
21:24:11.0454 4080  [ B62A953F2BF3922C8764A29C34A22899 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
21:24:11.0470 4080  TCPIP6 - ok
21:24:11.0501 4080  [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
21:24:11.0501 4080  tcpipreg - ok
21:24:11.0532 4080  [ 3371D21011695B16333A3934340C4E7C ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
21:24:11.0532 4080  TDPIPE - ok
21:24:11.0548 4080  [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
21:24:11.0548 4080  TDTCP - ok
21:24:11.0563 4080  [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
21:24:11.0563 4080  tdx - ok
21:24:11.0595 4080  [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD          C:\Windows\system32\drivers\termdd.sys
21:24:11.0595 4080  TermDD - ok
21:24:11.0610 4080  [ 2E648163254233755035B46DD7B89123 ] TermService     C:\Windows\System32\termsrv.dll
21:24:11.0610 4080  TermService - ok
21:24:11.0626 4080  [ F0344071948D1A1FA732231785A0664C ] Themes          C:\Windows\system32\themeservice.dll
21:24:11.0626 4080  Themes - ok
21:24:11.0657 4080  [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER     C:\Windows\system32\mmcss.dll
21:24:11.0657 4080  THREADORDER - ok
21:24:11.0704 4080  [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks          C:\Windows\System32\trkwks.dll
21:24:11.0704 4080  TrkWks - ok
21:24:11.0751 4080  [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
21:24:11.0766 4080  TrustedInstaller - ok
21:24:11.0782 4080  [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
21:24:11.0782 4080  tssecsrv - ok
21:24:11.0813 4080  [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
21:24:11.0829 4080  TsUsbFlt - ok
21:24:11.0860 4080  [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
21:24:11.0860 4080  tunnel - ok
21:24:11.0891 4080  [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35          C:\Windows\system32\DRIVERS\uagp35.sys
21:24:11.0891 4080  uagp35 - ok
21:24:11.0938 4080  [ 9474ECE6561990F7EB443E80CDFD2951 ] uagqecsvc       C:\Program Files\Microsoft Forefront UAG\Endpoint Components\3.1.0\uagqecsvc.exe
21:24:11.0938 4080  uagqecsvc - ok
21:24:11.0969 4080  [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
21:24:11.0985 4080  udfs - ok
21:24:12.0000 4080  [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect       C:\Windows\system32\UI0Detect.exe
21:24:12.0000 4080  UI0Detect - ok
21:24:12.0031 4080  [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
21:24:12.0031 4080  uliagpkx - ok
21:24:12.0063 4080  [ DC54A574663A895C8763AF0FA1FF7561 ] umbus           C:\Windows\system32\drivers\umbus.sys
21:24:12.0063 4080  umbus - ok
21:24:12.0078 4080  [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass          C:\Windows\system32\DRIVERS\umpass.sys
21:24:12.0078 4080  UmPass - ok
21:24:12.0109 4080  [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost        C:\Windows\System32\upnphost.dll
21:24:12.0125 4080  upnphost - ok
21:24:12.0156 4080  [ F724B03C3DFAACF08D17D38BF3333583 ] USBAAPL64       C:\Windows\system32\Drivers\usbaapl64.sys
21:24:12.0156 4080  USBAAPL64 - ok
21:24:12.0187 4080  [ 82E8F44688E6FAC57B5B7C6FC7ADBC2A ] usbaudio        C:\Windows\system32\drivers\usbaudio.sys
21:24:12.0187 4080  usbaudio - ok
21:24:12.0219 4080  [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
21:24:12.0219 4080  usbccgp - ok
21:24:12.0234 4080  [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir          C:\Windows\system32\drivers\usbcir.sys
21:24:12.0250 4080  usbcir - ok
21:24:12.0265 4080  [ C025055FE7B87701EB042095DF1A2D7B ] usbehci         C:\Windows\system32\drivers\usbehci.sys
21:24:12.0265 4080  usbehci - ok
21:24:12.0328 4080  [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
21:24:12.0343 4080  usbhub - ok
21:24:12.0359 4080  [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci         C:\Windows\system32\drivers\usbohci.sys
21:24:12.0375 4080  usbohci - ok
21:24:12.0406 4080  [ 73188F58FB384E75C4063D29413CEE3D ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
21:24:12.0406 4080  usbprint - ok
21:24:12.0437 4080  [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan         C:\Windows\system32\DRIVERS\usbscan.sys
21:24:12.0437 4080  usbscan - ok
21:24:12.0453 4080  [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
21:24:12.0453 4080  USBSTOR - ok
21:24:12.0484 4080  [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
21:24:12.0484 4080  usbuhci - ok
21:24:12.0499 4080  [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms           C:\Windows\System32\uxsms.dll
21:24:12.0515 4080  UxSms - ok
21:24:12.0515 4080  [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc        C:\Windows\system32\lsass.exe
21:24:12.0515 4080  VaultSvc - ok
21:24:12.0546 4080  [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
21:24:12.0546 4080  vdrvroot - ok
21:24:12.0577 4080  [ 8D6B481601D01A456E75C3210F1830BE ] vds             C:\Windows\System32\vds.exe
21:24:12.0593 4080  vds - ok
21:24:12.0624 4080  [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
21:24:12.0624 4080  vga - ok
21:24:12.0640 4080  [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave         C:\Windows\System32\drivers\vga.sys
21:24:12.0640 4080  VgaSave - ok
21:24:12.0655 4080  [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
21:24:12.0671 4080  vhdmp - ok
21:24:12.0687 4080  [ E5689D93FFE4E5D66C0178761240DD54 ] viaide          C:\Windows\system32\drivers\viaide.sys
21:24:12.0687 4080  viaide - ok
21:24:12.0702 4080  [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
21:24:12.0718 4080  volmgr - ok
21:24:12.0733 4080  [ A255814907C89BE58B79EF2F189B843B ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
21:24:12.0733 4080  volmgrx - ok
21:24:12.0749 4080  [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
21:24:12.0749 4080  volsnap - ok
21:24:12.0780 4080  [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid         C:\Windows\system32\DRIVERS\vsmraid.sys
21:24:12.0780 4080  vsmraid - ok
21:24:12.0843 4080  [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS             C:\Windows\system32\vssvc.exe
21:24:12.0874 4080  VSS - ok
21:24:12.0889 4080  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus        C:\Windows\system32\DRIVERS\vwifibus.sys
21:24:12.0889 4080  vwifibus - ok
21:24:12.0905 4080  [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
21:24:12.0905 4080  vwififlt - ok
21:24:12.0936 4080  [ 1C9D80CC3849B3788048078C26486E1A ] W32Time         C:\Windows\system32\w32time.dll
21:24:12.0967 4080  W32Time - ok
21:24:12.0983 4080  [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen        C:\Windows\system32\DRIVERS\wacompen.sys
21:24:12.0983 4080  WacomPen - ok
21:24:13.0014 4080  [ 356AFD78A6ED4457169241AC3965230C ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
21:24:13.0014 4080  WANARP - ok
21:24:13.0014 4080  [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
21:24:13.0014 4080  Wanarpv6 - ok
21:24:13.0077 4080  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc     C:\Windows\system32\Wat\WatAdminSvc.exe
21:24:13.0123 4080  WatAdminSvc - ok
21:24:13.0170 4080  [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine        C:\Windows\system32\wbengine.exe
21:24:13.0248 4080  wbengine - ok
21:24:13.0279 4080  [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
21:24:13.0279 4080  WbioSrvc - ok
21:24:13.0295 4080  [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc         C:\Windows\System32\wcncsvc.dll
21:24:13.0311 4080  wcncsvc - ok
21:24:13.0326 4080  [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
21:24:13.0326 4080  WcsPlugInService - ok
21:24:13.0357 4080  [ 72889E16FF12BA0F235467D6091B17DC ] Wd              C:\Windows\system32\DRIVERS\wd.sys
21:24:13.0357 4080  Wd - ok
21:24:13.0389 4080  [ A3D04EBF5227886029B4532F20D026F7 ] WDC_SAM         C:\Windows\system32\DRIVERS\wdcsam64.sys
21:24:13.0389 4080  WDC_SAM - ok
21:24:13.0435 4080  [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
21:24:13.0451 4080  Wdf01000 - ok
21:24:13.0467 4080  [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost  C:\Windows\system32\wdi.dll
21:24:13.0467 4080  WdiServiceHost - ok
21:24:13.0467 4080  [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost   C:\Windows\system32\wdi.dll
21:24:13.0482 4080  WdiSystemHost - ok
21:24:13.0498 4080  [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient       C:\Windows\System32\webclnt.dll
21:24:13.0498 4080  WebClient - ok
21:24:13.0513 4080  [ C749025A679C5103E575E3B48E092C43 ] Wecsvc          C:\Windows\system32\wecsvc.dll
21:24:13.0529 4080  Wecsvc - ok
21:24:13.0545 4080  [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
21:24:13.0545 4080  wercplsupport - ok
21:24:13.0576 4080  [ 6D137963730144698CBD10F202E9F251 ] WerSvc          C:\Windows\System32\WerSvc.dll
21:24:13.0576 4080  WerSvc - ok
21:24:13.0607 4080  [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
21:24:13.0607 4080  WfpLwf - ok
21:24:13.0623 4080  [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
21:24:13.0623 4080  WIMMount - ok
21:24:13.0638 4080  WinDefend - ok
21:24:13.0654 4080  WinHttpAutoProxySvc - ok
21:24:13.0701 4080  [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
21:24:13.0716 4080  Winmgmt - ok
21:24:13.0763 4080  [ BCB1310604AA415C4508708975B3931E ] WinRM           C:\Windows\system32\WsmSvc.dll
21:24:13.0825 4080  WinRM - ok
21:24:13.0888 4080  [ FE88B288356E7B47B74B13372ADD906D ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
21:24:13.0888 4080  WinUsb - ok
21:24:13.0950 4080  [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc         C:\Windows\System32\wlansvc.dll
21:24:13.0966 4080  Wlansvc - ok
21:24:13.0966 4080  [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
21:24:13.0966 4080  WmiAcpi - ok
21:24:13.0981 4080  [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
21:24:13.0997 4080  wmiApSrv - ok
21:24:13.0997 4080  WMPNetworkSvc - ok
21:24:14.0013 4080  [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc          C:\Windows\System32\wpcsvc.dll
21:24:14.0013 4080  WPCSvc - ok
21:24:14.0044 4080  [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
21:24:14.0044 4080  WPDBusEnum - ok
21:24:14.0059 4080  [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
21:24:14.0059 4080  ws2ifsl - ok
21:24:14.0075 4080  [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc          C:\Windows\System32\wscsvc.dll
21:24:14.0075 4080  wscsvc - ok
21:24:14.0075 4080  WSearch - ok
21:24:14.0200 4080  [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv        C:\Windows\system32\wuaueng.dll
21:24:14.0262 4080  wuauserv - ok
21:24:14.0278 4080  [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
21:24:14.0293 4080  WudfPf - ok
21:24:14.0293 4080  [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
21:24:14.0293 4080  WUDFRd - ok
21:24:14.0325 4080  [ B20F051B03A966392364C83F009F7D17 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
21:24:14.0340 4080  wudfsvc - ok
21:24:14.0371 4080  [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc         C:\Windows\System32\wwansvc.dll
21:24:14.0403 4080  WwanSvc - ok
21:24:14.0481 4080  [ DD0042F0C3B606A6A8B92D49AFB18AD6 ] YahooAUService  C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
21:24:14.0496 4080  YahooAUService - ok
21:24:14.0512 4080  ================ Scan global ===============================
21:24:14.0543 4080  [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
21:24:14.0574 4080  [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
21:24:14.0574 4080  [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\system32\winsrv.dll
21:24:14.0605 4080  [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
21:24:14.0637 4080  [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
21:24:14.0637 4080  [Global] - ok
21:24:14.0637 4080  ================ Scan MBR ==================================
21:24:14.0683 4080  [ C3C5FBEB54FF6247EE3B736C8846ACA6 ] \Device\Harddisk0\DR0
21:24:17.0164 4080  \Device\Harddisk0\DR0 - ok
21:24:17.0164 4080  ================ Scan VBR ==================================
21:24:17.0195 4080  [ 22C495D32737723690345E771ED17E4E ] \Device\Harddisk0\DR0\Partition1
21:24:17.0195 4080  \Device\Harddisk0\DR0\Partition1 - ok
21:24:17.0211 4080  [ 4EF1E7185A0D67A8FA96BCE1C0488B3C ] \Device\Harddisk0\DR0\Partition2
21:24:17.0226 4080  \Device\Harddisk0\DR0\Partition2 - ok
21:24:17.0242 4080  [ 8DF7D174CD81E3F6141D916A9F35DD68 ] \Device\Harddisk0\DR0\Partition3
21:24:17.0257 4080  \Device\Harddisk0\DR0\Partition3 - ok
21:24:17.0257 4080  ================ Scan active images ========================
21:24:17.0257 4080  [ 3E588B60EC061686BA05D33574A344C6 ] C:\Windows\System32\drivers\crashdmp.sys
21:24:17.0257 4080  C:\Windows\System32\drivers\crashdmp.sys - ok
21:24:17.0257 4080  [ 814DB88F2641691575A455CF25354098 ] C:\Windows\System32\drivers\dumpfve.sys
21:24:17.0257 4080  C:\Windows\System32\drivers\dumpfve.sys - ok
21:24:17.0257 4080  [ 1D004CB1DA6323B1F55CAEF7F94B61D9 ] C:\Windows\System32\drivers\iaStor.sys
21:24:17.0257 4080  C:\Windows\System32\drivers\iaStor.sys - ok
21:24:17.0273 4080  [ F036CE71586E93D94DAB220D7BDF4416 ] C:\Windows\System32\drivers\cdrom.sys
21:24:17.0273 4080  C:\Windows\System32\drivers\cdrom.sys - ok
21:24:17.0273 4080  [ 248C952C82DF1E23775432774CBB20F1 ] C:\Windows\System32\drivers\NISx64\1402010.016\ccSetx64.sys
21:24:17.0273 4080  C:\Windows\System32\drivers\NISx64\1402010.016\ccSetx64.sys - ok
21:24:17.0289 4080  [ ADF37F1A715D6C56C8E065FD8569A9A4 ] C:\Windows\System32\drivers\NISx64\1402010.016\Ironx64.sys
21:24:17.0289 4080  C:\Windows\System32\drivers\NISx64\1402010.016\Ironx64.sys - ok
21:24:17.0289 4080  [ 16A47CE2DECC9B099349A5F840654746 ] C:\Windows\System32\drivers\beep.sys
21:24:17.0289 4080  C:\Windows\System32\drivers\beep.sys - ok
21:24:17.0289 4080  [ 9899284589F75FA8724FF3D16AED75C1 ] C:\Windows\System32\drivers\null.sys
21:24:17.0289 4080  C:\Windows\System32\drivers\null.sys - ok
21:24:17.0304 4080  [ 53E92A310193CB3C03BEA963DE7D9CFC ] C:\Windows\System32\drivers\vga.sys
21:24:17.0304 4080  C:\Windows\System32\drivers\vga.sys - ok
21:24:17.0304 4080  [ E7353D59C9842BC7299FAEB7E7E09340 ] C:\Windows\System32\drivers\videoprt.sys
21:24:17.0304 4080  C:\Windows\System32\drivers\videoprt.sys - ok
21:24:17.0304 4080  [ FC438D1430B28618E2D0C7C332A710AD ] C:\Windows\System32\drivers\watchdog.sys
21:24:17.0304 4080  C:\Windows\System32\drivers\watchdog.sys - ok
21:24:17.0304 4080  [ CEA6CC257FC9B7715F1C2B4849286D24 ] C:\Windows\System32\drivers\RDPCDD.sys
21:24:17.0304 4080  C:\Windows\System32\drivers\RDPCDD.sys - ok
21:24:17.0304 4080  [ BB5971A4F00659529A5C44831AF22365 ] C:\Windows\System32\drivers\RDPENCDD.sys
21:24:17.0304 4080  C:\Windows\System32\drivers\RDPENCDD.sys - ok
21:24:17.0304 4080  [ 216F3FA57533D98E1F74DED70113177A ] C:\Windows\System32\drivers\RDPREFMP.sys
21:24:17.0304 4080  C:\Windows\System32\drivers\RDPREFMP.sys - ok
21:24:17.0320 4080  [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] C:\Windows\System32\drivers\msfs.sys
21:24:17.0320 4080  C:\Windows\System32\drivers\msfs.sys - ok
21:24:17.0320 4080  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] C:\Windows\System32\drivers\npfs.sys
21:24:17.0320 4080  C:\Windows\System32\drivers\npfs.sys - ok
21:24:17.0320 4080  [ 6F020A220388ECA0AB6062DC27BD16B6 ] C:\Windows\System32\drivers\tdi.sys
21:24:17.0320 4080  C:\Windows\System32\drivers\tdi.sys - ok
21:24:17.0320 4080  [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] C:\Windows\System32\drivers\tdx.sys
21:24:17.0320 4080  C:\Windows\System32\drivers\tdx.sys - ok
21:24:17.0320 4080  [ 1C7857B62DE5994A75B054A9FD4C3825 ] C:\Windows\System32\drivers\afd.sys
21:24:17.0320 4080  C:\Windows\System32\drivers\afd.sys - ok
21:24:17.0320 4080  [ 09594D1089C523423B32A4229263F068 ] C:\Windows\System32\drivers\netbt.sys
21:24:17.0320 4080  C:\Windows\System32\drivers\netbt.sys - ok
21:24:17.0335 4080  [ 611B23304BF067451A9FDEE01FBDD725 ] C:\Windows\System32\drivers\wfplwf.sys
21:24:17.0335 4080  C:\Windows\System32\drivers\wfplwf.sys - ok
21:24:17.0335 4080  [ 0557CF5A2556BD58E26384169D72438D ] C:\Windows\System32\drivers\pacer.sys
21:24:17.0335 4080  C:\Windows\System32\drivers\pacer.sys - ok
21:24:17.0335 4080  [ 6A3D66263414FF0D6FA754C646612F3F ] C:\Windows\System32\drivers\vwififlt.sys
21:24:17.0335 4080  C:\Windows\System32\drivers\vwififlt.sys - ok
21:24:17.0335 4080  [ 86743D9F5D2B1048062B14B1D84501C4 ] C:\Windows\System32\drivers\netbios.sys
21:24:17.0335 4080  C:\Windows\System32\drivers\netbios.sys - ok
21:24:17.0335 4080  [ 356AFD78A6ED4457169241AC3965230C ] C:\Windows\System32\drivers\wanarp.sys
21:24:17.0335 4080  C:\Windows\System32\drivers\wanarp.sys - ok
21:24:17.0335 4080  [ 561E7E1F06895D78DE991E01DD0FB6E5 ] C:\Windows\System32\drivers\termdd.sys
21:24:17.0335 4080  C:\Windows\System32\drivers\termdd.sys - ok
21:24:17.0351 4080  [ 1605EBD8CB86AFC4430116065995279A ] C:\Windows\System32\drivers\NISx64\1402010.016\symnets.sys
21:24:17.0351 4080  C:\Windows\System32\drivers\NISx64\1402010.016\symnets.sys - ok
21:24:17.0351 4080  [ F5D6D3B7468C46EA2DDC1D19D2A6DA0F ] C:\Windows\System32\drivers\SYMEVENT64x86.SYS
21:24:17.0351 4080  C:\Windows\System32\drivers\SYMEVENT64x86.SYS - ok
21:24:17.0351 4080  [ 1B884D876E87EABF5A3356BBD7321412 ] C:\Windows\System32\drivers\NISx64\1402010.016\srtspx64.sys
21:24:17.0351 4080  C:\Windows\System32\drivers\NISx64\1402010.016\srtspx64.sys - ok
21:24:17.0351 4080  [ 77F665941019A1594D887A74F301FA2F ] C:\Windows\System32\drivers\rdbss.sys
21:24:17.0351 4080  C:\Windows\System32\drivers\rdbss.sys - ok
21:24:17.0351 4080  [ E7F5AE18AF4168178A642A9247C63001 ] C:\Windows\System32\drivers\nsiproxy.sys
21:24:17.0351 4080  C:\Windows\System32\drivers\nsiproxy.sys - ok
21:24:17.0351 4080  [ 0EED230E37515A0EAEE3C2E1BC97B288 ] C:\Windows\System32\drivers\mssmbios.sys
21:24:17.0351 4080  C:\Windows\System32\drivers\mssmbios.sys - ok
21:24:17.0367 4080  [ A48928D4CCA6F8B731989DB08CF2C0AB ] C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.1.22\Definitions\IPSDefs\20130227.001\IDSviA64.sys
21:24:17.0367 4080  C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.1.22\Definitions\IPSDefs\20130227.001\IDSviA64.sys - ok
21:24:17.0367 4080  [ 4353FF94D47A0A9D52B89ECCF0CDB013 ] C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys
21:24:17.0367 4080  C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys - ok
21:24:17.0367 4080  [ C5BCCB378D0A896304A3E71BE7215983 ] C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
21:24:17.0367 4080  C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys - ok
21:24:17.0367 4080  [ 13096B05847EC78F0977F2C0F79E9AB3 ] C:\Windows\System32\drivers\discache.sys
21:24:17.0367 4080  C:\Windows\System32\drivers\discache.sys - ok
21:24:17.0367 4080  [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] C:\Windows\System32\drivers\dfsc.sys
21:24:17.0367 4080  C:\Windows\System32\drivers\dfsc.sys - ok
21:24:17.0367 4080  [ 61583EE3C3A17003C4ACD0475646B4D3 ] C:\Windows\System32\drivers\blbdrive.sys
21:24:17.0367 4080  C:\Windows\System32\drivers\blbdrive.sys - ok
21:24:17.0382 4080  [ 866335C9C0E6733C753FB472C539A6B9 ] C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.1.22\Definitions\BASHDefs\20130208.001\BHDrvx64.sys
21:24:17.0382 4080  C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.1.22\Definitions\BASHDefs\20130208.001\BHDrvx64.sys - ok
21:24:17.0382 4080  [ 3566A8DAAFA27AF944F5D705EAA64894 ] C:\Windows\System32\drivers\tunnel.sys
21:24:17.0382 4080  C:\Windows\System32\drivers\tunnel.sys - ok
21:24:17.0382 4080  [ ADA036632C664CAA754079041CF1F8C1 ] C:\Windows\System32\drivers\intelppm.sys
21:24:17.0382 4080  C:\Windows\System32\drivers\intelppm.sys - ok
21:24:17.0382 4080  [ 1911A3356FA3F77CCC825CCBAC038C2A ] C:\Windows\System32\smss.exe
21:24:17.0382 4080  C:\Windows\System32\smss.exe - ok
21:24:17.0382 4080  [ CF95B85FF8D128385ABD411C8CA74DED ] C:\Windows\System32\ntdll.dll
21:24:17.0382 4080  C:\Windows\System32\ntdll.dll - ok
21:24:17.0382 4080  [ 3B536A8BEC3B4F23FFDFD78B11A2AB93 ] C:\Windows\System32\autochk.exe
21:24:17.0382 4080  C:\Windows\System32\autochk.exe - ok
21:24:17.0398 4080  [ C391FC68282A000CDF953F8B6B55D2EF ] C:\Windows\System32\msvcrt.dll
21:24:17.0398 4080  C:\Windows\System32\msvcrt.dll - ok
21:24:17.0398 4080  [ C6689007B3A749C49A5438DCF36E0CE4 ] C:\Windows\System32\shell32.dll
21:24:17.0398 4080  C:\Windows\System32\shell32.dll - ok
21:24:17.0398 4080  [ 05C29250E5160ABEC6BC1288FE55CB1F ] C:\Windows\System32\drivers\nvBridge.kmd
21:24:17.0398 4080  C:\Windows\System32\drivers\nvBridge.kmd - ok
21:24:17.0398 4080  [ F0FBFE1E29FF233B0E000054C1FB968A ] C:\Windows\System32\drivers\nvlddmkm.sys
21:24:17.0398 4080  C:\Windows\System32\drivers\nvlddmkm.sys - ok
21:24:17.0398 4080  [ F5BEE30450E18E6B83A5012C100616FD ] C:\Windows\System32\drivers\dxgkrnl.sys
21:24:17.0398 4080  C:\Windows\System32\drivers\dxgkrnl.sys - ok
21:24:17.0398 4080  [ 9CD68BDDF322535C02ADC8331013D13D ] C:\Windows\System32\drivers\dxgmms1.sys
21:24:17.0398 4080  C:\Windows\System32\drivers\dxgmms1.sys - ok
21:24:17.0413 4080  [ 9835E63E09F824D22B689D2BB789BAB9 ] C:\Windows\System32\comdlg32.dll
21:24:17.0413 4080  C:\Windows\System32\comdlg32.dll - ok
21:24:17.0413 4080  [ AE259C75F9A0B057B6BF9E9695632B09 ] C:\Windows\System32\drivers\usbport.sys
21:24:17.0413 4080  C:\Windows\System32\drivers\usbport.sys - ok
21:24:17.0413 4080  [ C025055FE7B87701EB042095DF1A2D7B ] C:\Windows\System32\drivers\usbehci.sys
21:24:17.0413 4080  C:\Windows\System32\drivers\usbehci.sys - ok
21:24:17.0413 4080  [ 4BBFA57F594F7E8A8EDC8F377184C3F0 ] C:\Windows\System32\ws2_32.dll
21:24:17.0413 4080  C:\Windows\System32\ws2_32.dll - ok
21:24:17.0413 4080  [ F7CE0C81C545364020ED8203CF0A633E ] C:\Windows\System32\difxapi.dll
21:24:17.0413 4080  C:\Windows\System32\difxapi.dll - ok
21:24:17.0413 4080  [ 97BFED39B6B79EB12CDDBFEED51F56BB ] C:\Windows\System32\drivers\hdaudbus.sys
21:24:17.0413 4080  C:\Windows\System32\drivers\hdaudbus.sys - ok
21:24:17.0413 4080  [ 5D8E6C95156ED1F79A63D1EADE6F9ED5 ] C:\Windows\System32\setupapi.dll
21:24:17.0413 4080  C:\Windows\System32\setupapi.dll - ok
21:24:17.0429 4080  [ 4B42BC58294E83A6A92EC8B88C14C4A3 ] C:\Windows\System32\drivers\Rt64win7.sys
21:24:17.0429 4080  C:\Windows\System32\drivers\Rt64win7.sys - ok
21:24:17.0429 4080  [ A87D604AEA360176311474C87A63BB88 ] C:\Windows\System32\drivers\1394ohci.sys
21:24:17.0429 4080  C:\Windows\System32\drivers\1394ohci.sys - ok
21:24:17.0429 4080  [ D87E1E59C73C1F98D5DED5B3850C40F5 ] C:\Windows\System32\psapi.dll
21:24:17.0429 4080  C:\Windows\System32\psapi.dll - ok
21:24:17.0429 4080  [ E403AACF8C7BB11375122D2464560311 ] C:\Windows\System32\drivers\GEARAspiWDM.sys
21:24:17.0429 4080  C:\Windows\System32\drivers\GEARAspiWDM.sys - ok
21:24:17.0429 4080  [ 03EDB043586CCEBA243D689BDDA370A8 ] C:\Windows\System32\drivers\CompositeBus.sys
21:24:17.0429 4080  C:\Windows\System32\drivers\CompositeBus.sys - ok
21:24:17.0429 4080  [ C06B32165E23A72A898B7A89679AD754 ] C:\Windows\System32\oleaut32.dll
21:24:17.0429 4080  C:\Windows\System32\oleaut32.dll - ok
21:24:17.0445 4080  [ 7ECFF9B22276B73F43A99A15A6094E90 ] C:\Windows\System32\drivers\agilevpn.sys
21:24:17.0445 4080  C:\Windows\System32\drivers\agilevpn.sys - ok
21:24:17.0445 4080  [ 87BEA2616EFDEC6A1CB3BFCFB09D816A ] C:\Windows\System32\urlmon.dll
21:24:17.0445 4080  C:\Windows\System32\urlmon.dll - ok
21:24:17.0445 4080  [ 471815800AE33E6F1C32FB1B97C490CA ] C:\Windows\System32\drivers\rasl2tp.sys
21:24:17.0445 4080  C:\Windows\System32\drivers\rasl2tp.sys - ok
21:24:17.0445 4080  [ 30639C932D9FEF22B31268FE25A1B6E5 ] C:\Windows\System32\drivers\ndistapi.sys
21:24:17.0445 4080  C:\Windows\System32\drivers\ndistapi.sys - ok
21:24:17.0445 4080  [ F431C3C86FCCC1C53814F043A6CAD825 ] C:\Windows\System32\iertutil.dll
21:24:17.0445 4080  C:\Windows\System32\iertutil.dll - ok
21:24:17.0445 4080  [ 53F7305169863F0A2BDDC49E116C2E11 ] C:\Windows\System32\drivers\ndiswan.sys
21:24:17.0445 4080  C:\Windows\System32\drivers\ndiswan.sys - ok
21:24:17.0460 4080  [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] C:\Windows\System32\drivers\raspppoe.sys
21:24:17.0460 4080  C:\Windows\System32\drivers\raspppoe.sys - ok
21:24:17.0460 4080  [ F92A2C41117A11A00BE01CA01A7FCDE9 ] C:\Windows\System32\drivers\raspptp.sys
21:24:17.0460 4080  C:\Windows\System32\drivers\raspptp.sys - ok
21:24:17.0460 4080  [ E8B1E447B008D07FF47D016C2B0EEECB ] C:\Windows\System32\drivers\rassstp.sys
21:24:17.0460 4080  C:\Windows\System32\drivers\rassstp.sys - ok
21:24:17.0460 4080  [ 044FE45FFD6AD40E3BBBE60B7F41BABE ] C:\Windows\System32\nsi.dll
21:24:17.0460 4080  C:\Windows\System32\nsi.dll - ok
21:24:17.0460 4080  [ EAF32CB8C1F810E4715B4DFBE785C7FF ] C:\Windows\System32\shlwapi.dll
21:24:17.0460 4080  C:\Windows\System32\shlwapi.dll - ok
21:24:17.0460 4080  [ BC02336F1CBA7DCC7D1213BB588A68A5 ] C:\Windows\System32\drivers\kbdclass.sys
21:24:17.0460 4080  C:\Windows\System32\drivers\kbdclass.sys - ok
21:24:17.0460 4080  [ 7D27EA49F3C1F687D357E77A470AEA99 ] C:\Windows\System32\drivers\mouclass.sys
21:24:17.0460 4080  C:\Windows\System32\drivers\mouclass.sys - ok
21:24:17.0476 4080  [ A1BE6A720D02E37F72E9CD89AE9CB3CF ] C:\Windows\System32\imagehlp.dll
21:24:17.0476 4080  C:\Windows\System32\imagehlp.dll - ok
21:24:17.0476 4080  [ 435E9C764E1EF70058580996452BE6A2 ] C:\Windows\System32\wininet.dll
21:24:17.0476 4080  C:\Windows\System32\wininet.dll - ok
21:24:17.0476 4080  [ 24FBF5CC5C04150073C315A7C83521EE ] C:\Windows\System32\drivers\ks.sys
21:24:17.0476 4080  C:\Windows\System32\drivers\ks.sys - ok
21:24:17.0476 4080  [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] C:\Windows\System32\drivers\swenum.sys
21:24:17.0476 4080  C:\Windows\System32\drivers\swenum.sys - ok
21:24:17.0476 4080  [ DC54A574663A895C8763AF0FA1FF7561 ] C:\Windows\System32\drivers\umbus.sys
21:24:17.0476 4080  C:\Windows\System32\drivers\umbus.sys - ok
21:24:17.0476 4080  [ D202223587518B13D72D68937B7E3F70 ] C:\Windows\System32\lpk.dll
21:24:17.0476 4080  C:\Windows\System32\lpk.dll - ok
21:24:17.0491 4080  [ 4E4FFB09D895AA000DD56D1404F69A7E ] C:\Windows\System32\Wldap32.dll
21:24:17.0491 4080  C:\Windows\System32\Wldap32.dll - ok
21:24:17.0491 4080  [ 287C6C9410B111B68B52CA298F7B8C24 ] C:\Windows\System32\drivers\usbhub.sys
21:24:17.0491 4080  C:\Windows\System32\drivers\usbhub.sys - ok
21:24:17.0491 4080  [ FE70103391A64039A921DBFFF9C7AB1B ] C:\Windows\System32\user32.dll
21:24:17.0491 4080  C:\Windows\System32\user32.dll - ok
21:24:17.0491 4080  [ 25983DE69B57142039AC8D95E71CD9C9 ] C:\Windows\System32\clbcatq.dll
21:24:17.0491 4080  C:\Windows\System32\clbcatq.dll - ok
21:24:17.0491 4080  [ 65C113214F7B05820F6D8A65B1485196 ] C:\Windows\System32\kernel32.dll
21:24:17.0491 4080  C:\Windows\System32\kernel32.dll - ok
21:24:17.0491 4080  [ 1084AA52CCC324EA54C7121FA24C2221 ] C:\Windows\System32\gdi32.dll
21:24:17.0491 4080  C:\Windows\System32\gdi32.dll - ok
21:24:17.0507 4080  [ C431EAF5CAA1C82CAC2534A2EAB348A3 ] C:\Windows\System32\msctf.dll
21:24:17.0507 4080  C:\Windows\System32\msctf.dll - ok
21:24:17.0507 4080  [ AA2C08CE85653B1A0D2E4AB407FA176C ] C:\Windows\System32\imm32.dll
21:24:17.0507 4080  C:\Windows\System32\imm32.dll - ok
21:24:17.0507 4080  [ 0611473C1AD9E2D991CD9482068417F7 ] C:\Windows\System32\rpcrt4.dll
21:24:17.0507 4080  C:\Windows\System32\rpcrt4.dll - ok
21:24:17.0507 4080  [ 6DF46D2BD74E3DA1B45F08F10D172732 ] C:\Windows\System32\advapi32.dll
21:24:17.0507 4080  C:\Windows\System32\advapi32.dll - ok
21:24:17.0507 4080  [ 015C0D8E0E0421B4CFD48CFFE2825879 ] C:\Windows\System32\drivers\ndproxy.sys
21:24:17.0507 4080  C:\Windows\System32\drivers\ndproxy.sys - ok
21:24:17.0507 4080  [ DBF99FD9CAF75CA66D042BD8D050FF71 ] C:\Windows\System32\usp10.dll
21:24:17.0507 4080  C:\Windows\System32\usp10.dll - ok
21:24:17.0507 4080  [ 83404DCBCE4925B6A5A77C5170F46D86 ] C:\Windows\System32\sechost.dll
21:24:17.0507 4080  C:\Windows\System32\sechost.dll - ok
21:24:17.0523 4080  [ 6C60B5ACA7442EFB794082CDACFC001C ] C:\Windows\System32\ole32.dll
21:24:17.0523 4080  C:\Windows\System32\ole32.dll - ok
21:24:17.0523 4080  [ 28C0B5024F5C5A438E78B188CFC81B7F ] C:\Windows\System32\normaliz.dll
21:24:17.0523 4080  C:\Windows\System32\normaliz.dll - ok
21:24:17.0523 4080  [ 06FEC9E8117103BB1141A560E98077DA ] C:\Windows\System32\devobj.dll
21:24:17.0523 4080  C:\Windows\System32\devobj.dll - ok
21:24:17.0523 4080  [ 21D26064AEDB4988F785BB4A3A2C051E ] C:\Windows\System32\drivers\drmk.sys
21:24:17.0523 4080  C:\Windows\System32\drivers\drmk.sys - ok
21:24:17.0523 4080  [ 32E11315B5126921FFD9074840EF13D3 ] C:\Windows\System32\drivers\portcls.sys
21:24:17.0523 4080  C:\Windows\System32\drivers\portcls.sys - ok
21:24:17.0523 4080  [ 3C4B4EE54FEBB09F7E9F58776DE96DCA ] C:\Windows\System32\drivers\RTKVHD64.sys
21:24:17.0523 4080  C:\Windows\System32\drivers\RTKVHD64.sys - ok
21:24:17.0538 4080  [ 1F56F209585F350A5666E3CC7931FD67 ] C:\Windows\System32\KernelBase.dll
21:24:17.0538 4080  C:\Windows\System32\KernelBase.dll - ok
21:24:17.0538 4080  [ 14DFDEAF4E589ED3F1FF187A86B9408C ] C:\Windows\System32\comctl32.dll
21:24:17.0538 4080  C:\Windows\System32\comctl32.dll - ok
21:24:17.0538 4080  [ 6869281E78CB31A43E969F06B57347C4 ] C:\Windows\System32\drivers\ksthunk.sys
21:24:17.0538 4080  C:\Windows\System32\drivers\ksthunk.sys - ok
21:24:17.0538 4080  [ AA06902362B1422D7A7DA7061E07C624 ] C:\Windows\System32\wintrust.dll
21:24:17.0538 4080  C:\Windows\System32\wintrust.dll - ok
21:24:17.0538 4080  [ 2477A28081BDAEE622CF045ACF8EE124 ] C:\Windows\System32\cfgmgr32.dll
21:24:17.0538 4080  C:\Windows\System32\cfgmgr32.dll - ok
21:24:17.0538 4080  [ 12EE6FE9268CEE6D90FDCCBF89236C65 ] C:\Windows\System32\crypt32.dll
21:24:17.0538 4080  C:\Windows\System32\crypt32.dll - ok
21:24:17.0554 4080  [ 884415BD4269C02EAF8E2613BF85500D ] C:\Windows\System32\msasn1.dll
21:24:17.0554 4080  C:\Windows\System32\msasn1.dll - ok
21:24:17.0554 4080  [ 9C278785347BCC991F8EA2999D90F58D ] C:\Windows\SysWOW64\normaliz.dll
21:24:17.0554 4080  C:\Windows\SysWOW64\normaliz.dll - ok
21:24:17.0554 4080  [ BF24D6F2ED97FE830BFD52B246F98E67 ] C:\Windows\System32\drivers\dxapi.sys
21:24:17.0554 4080  C:\Windows\System32\drivers\dxapi.sys - ok
21:24:17.0554 4080  [ 59E21156113E438D1D91AF4FC0C3B19F ] C:\Windows\System32\win32k.sys
21:24:17.0554 4080  C:\Windows\System32\win32k.sys - ok
21:24:17.0554 4080  [ 60C2862B4BF0FD9F582EF344C2B1EC72 ] C:\Windows\System32\csrss.exe
21:24:17.0554 4080  C:\Windows\System32\csrss.exe - ok
21:24:17.0554 4080  [ 6F1A3157A1C89435352CEB543CDB359C ] C:\Windows\System32\drivers\usbccgp.sys
21:24:17.0554 4080  C:\Windows\System32\drivers\usbccgp.sys - ok
21:24:17.0554 4080  [ CCA2AB1752A61F29C3C941CD79D78CEA ] C:\Windows\System32\drivers\usbd.sys
21:24:17.0554 4080  C:\Windows\System32\drivers\usbd.sys - ok
21:24:17.0569 4080  [ 49EE2E52E6CD03947DAD72F65367BE06 ] C:\Windows\System32\drivers\hidparse.sys
21:24:17.0569 4080  C:\Windows\System32\drivers\hidparse.sys - ok
21:24:17.0569 4080  [ 8B0E40E7E8BBF5ACF390465609D89FF1 ] C:\Windows\System32\drivers\hidclass.sys
21:24:17.0569 4080  C:\Windows\System32\drivers\hidclass.sys - ok
21:24:17.0569 4080  [ 9592090A7E2B61CD582B612B6DF70536 ] C:\Windows\System32\drivers\hidusb.sys
21:24:17.0569 4080  C:\Windows\System32\drivers\hidusb.sys - ok
21:24:17.0569 4080  [ D3BF052C40B0C4166D9FD86A4288C1E6 ] C:\Windows\System32\drivers\mouhid.sys
21:24:17.0569 4080  C:\Windows\System32\drivers\mouhid.sys - ok
21:24:17.0569 4080  [ 241F2648ADF090E2A10095BD6D6F5DCB ] C:\Windows\System32\drivers\LHidFilt.Sys
21:24:17.0569 4080  C:\Windows\System32\drivers\LHidFilt.Sys - ok
21:24:17.0569 4080  [ 0705EFF5B42A9DB58548EEC3B26BB484 ] C:\Windows\System32\drivers\kbdhid.sys
21:24:17.0569 4080  C:\Windows\System32\drivers\kbdhid.sys - ok
21:24:17.0585 4080  [ 342ED5A4B3326014438F36D22D803737 ] C:\Windows\System32\drivers\LMouFilt.Sys
21:24:17.0585 4080  C:\Windows\System32\drivers\LMouFilt.Sys - ok
21:24:17.0585 4080  [ FED648B01349A3C8395A5169DB5FB7D6 ] C:\Windows\System32\drivers\USBSTOR.SYS
21:24:17.0585 4080  C:\Windows\System32\drivers\USBSTOR.SYS - ok
21:24:17.0585 4080  [ 96F587CA26A6AA894BD8CACE4540CFFC ] C:\Windows\System32\csrsrv.dll
21:24:17.0585 4080  C:\Windows\System32\csrsrv.dll - ok
21:24:17.0585 4080  [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\System32\basesrv.dll
21:24:17.0585 4080  C:\Windows\System32\basesrv.dll - ok
21:24:17.0585 4080  [ 0C27239FEA4DB8A2AAC9E502186B7264 ] C:\Windows\System32\winsrv.dll
21:24:17.0585 4080  C:\Windows\System32\winsrv.dll - ok
21:24:17.0585 4080  [ B03D591DC7DA45ECE20B3B467E6AADAA ] C:\Windows\System32\drivers\monitor.sys
21:24:17.0585 4080  C:\Windows\System32\drivers\monitor.sys - ok
21:24:17.0585 4080  [ F29FE765E1448EF371CFE05BFAC74ADB ] C:\Windows\System32\tsddd.dll
21:24:17.0585 4080  C:\Windows\System32\tsddd.dll - ok
21:24:17.0601 4080  [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\System32\sxssrv.dll
21:24:17.0601 4080  C:\Windows\System32\sxssrv.dll - ok
21:24:17.0601 4080  [ 94355C28C1970635A31B3FE52EB7CEBA ] C:\Windows\System32\wininit.exe
21:24:17.0601 4080  C:\Windows\System32\wininit.exe - ok
21:24:17.0601 4080  [ 05569A79BF4693670B709144382D02D4 ] C:\Windows\System32\cdd.dll
21:24:17.0601 4080  C:\Windows\System32\cdd.dll - ok
21:24:17.0601 4080  [ 2C942733A5983DD4502219FF37C7EBC7 ] C:\Windows\System32\profapi.dll
21:24:17.0601 4080  C:\Windows\System32\profapi.dll - ok
21:24:17.0601 4080  [ C2A8CB1275ECB85D246A9ECC02A728E3 ] C:\Windows\System32\RpcRtRemote.dll
21:24:17.0601 4080  C:\Windows\System32\RpcRtRemote.dll - ok
21:24:17.0601 4080  [ 78523A26F5604C0568FE9D1CE86E36F4 ] C:\Windows\System32\KBDUS.DLL
21:24:17.0601 4080  C:\Windows\System32\KBDUS.DLL - ok
21:24:17.0616 4080  [ 1151B1BAA6F350B1DB6598E0FEA7C457 ] C:\Windows\System32\winlogon.exe
21:24:17.0616 4080  C:\Windows\System32\winlogon.exe - ok
21:24:17.0616 4080  [ 0D9764D58C5EFD672B7184854B152E5E ] C:\Windows\System32\winsta.dll
21:24:17.0616 4080  C:\Windows\System32\winsta.dll - ok
21:24:17.0616 4080  [ B26B1801356760841C3BC69F9F91537F ] C:\Windows\System32\WlS0WndH.dll
21:24:17.0616 4080  C:\Windows\System32\WlS0WndH.dll - ok
21:24:17.0616 4080  [ 9CEAD32E79A62150FE9F8557E58E008B ] C:\Windows\System32\sxs.dll
21:24:17.0616 4080  C:\Windows\System32\sxs.dll - ok
21:24:17.0616 4080  [ 784FA3DF338E2E8F5F0389D6FAC428AF ] C:\Windows\System32\cryptbase.dll
21:24:17.0616 4080  C:\Windows\System32\cryptbase.dll - ok
21:24:17.0616 4080  [ 90499F3163A9F815CF196A205EA3CD5D ] C:\Windows\System32\apphelp.dll
21:24:17.0616 4080  C:\Windows\System32\apphelp.dll - ok
21:24:17.0616 4080  [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\System32\services.exe
21:24:17.0616 4080  C:\Windows\System32\services.exe - ok
21:24:17.0632 4080  [ C118A82CD78818C29AB228366EBF81C3 ] C:\Windows\System32\lsass.exe
21:24:17.0632 4080  C:\Windows\System32\lsass.exe - ok
21:24:17.0632 4080  [ B66BC8B20B7F33975865B1DF99783FD8 ] C:\Windows\System32\sspicli.dll
21:24:17.0632 4080  C:\Windows\System32\sspicli.dll - ok
21:24:17.0632 4080  [ 3A0CE5FE781708CD6ABD55313607EC8B ] C:\Windows\System32\sspisrv.dll
21:24:17.0632 4080  C:\Windows\System32\sspisrv.dll - ok
21:24:17.0632 4080  [ 9662EE182644511439F1C53745DC1C88 ] C:\Windows\System32\lsm.exe
21:24:17.0632 4080  C:\Windows\System32\lsm.exe - ok
21:24:17.0632 4080  [ E914A50A151DFFE63D3935226DB5E2C1 ] C:\Windows\System32\scext.dll
21:24:17.0632 4080  C:\Windows\System32\scext.dll - ok
21:24:17.0632 4080  [ 66A6063D0BAAD3F7B2B9868859E0743B ] C:\Windows\System32\lsasrv.dll
21:24:17.0632 4080  C:\Windows\System32\lsasrv.dll - ok
21:24:17.0647 4080  [ 68083118797CAF30FB2EA3E71494D67E ] C:\Windows\System32\sysntfy.dll
21:24:17.0647 4080  C:\Windows\System32\sysntfy.dll - ok
21:24:17.0647 4080  [ DEE7267C5D232A3B816866872CE199E6 ] C:\Windows\System32\wmsgapi.dll
21:24:17.0647 4080  C:\Windows\System32\wmsgapi.dll - ok
21:24:17.0647 4080  [ 0144D8D75A0B12938AEEE859E3310A46 ] C:\Windows\System32\secur32.dll
21:24:17.0647 4080  C:\Windows\System32\secur32.dll - ok
21:24:17.0647 4080  [ BBCDF350817BA86416C0F06B6981BE8D ] C:\Windows\System32\scesrv.dll
21:24:17.0647 4080  C:\Windows\System32\scesrv.dll - ok
21:24:17.0647 4080  [ A744BA6E04C8AA4592818178DBF89521 ] C:\Windows\System32\samsrv.dll
21:24:17.0647 4080  C:\Windows\System32\samsrv.dll - ok
21:24:17.0647 4080  [ 3A061472B38233BAFF9CFEFF2E49C46B ] C:\Windows\System32\cryptdll.dll
21:24:17.0647 4080  C:\Windows\System32\cryptdll.dll - ok
21:24:17.0663 4080  [ 3C073B0C596A0AF84933E7406766B040 ] C:\Windows\System32\wevtapi.dll
21:24:17.0663 4080  C:\Windows\System32\wevtapi.dll - ok
21:24:17.0663 4080  [ 7FBEBD2229EA5FD48D41B199EC2D541C ] C:\Windows\System32\authz.dll
21:24:17.0663 4080  C:\Windows\System32\authz.dll - ok
21:24:17.0663 4080  [ 86FE1B1F8FD42CD0DB641AB1CDB13093 ] C:\Windows\System32\cngaudit.dll
21:24:17.0663 4080  C:\Windows\System32\cngaudit.dll - ok
21:24:17.0663 4080  [ 5F3307352216618221A17CFEF273EEE2 ] C:\Windows\System32\ncrypt.dll
21:24:17.0663 4080  C:\Windows\System32\ncrypt.dll - ok
21:24:17.0663 4080  [ 3A9C9BAF610B0DD4967086040B3B62A9 ] C:\Windows\System32\srvcli.dll
21:24:17.0663 4080  C:\Windows\System32\srvcli.dll - ok
21:24:17.0663 4080  [ B9A95365E52F421A20E1501935FADDA5 ] C:\Windows\System32\bcrypt.dll
21:24:17.0663 4080  C:\Windows\System32\bcrypt.dll - ok
21:24:17.0663 4080  [ 02B64609F865A39365FF88580DF11738 ] C:\Windows\System32\msprivs.dll
21:24:17.0663 4080  C:\Windows\System32\msprivs.dll - ok
21:24:17.0679 4080  [ C6505DE3561537BA1004D638C2F93F2F ] C:\Windows\System32\netjoin.dll
21:24:17.0679 4080  C:\Windows\System32\netjoin.dll - ok
21:24:17.0679 4080  [ 50532FCD7ECF02DD169CE5C485F02534 ] C:\Windows\System32\negoexts.dll
21:24:17.0679 4080  C:\Windows\System32\negoexts.dll - ok
21:24:17.0679 4080  [ 44E1A196DFCB53B01FE4B855C3B56A15 ] C:\Windows\System32\kerberos.dll
21:24:17.0679 4080  C:\Windows\System32\kerberos.dll - ok
21:24:17.0679 4080  [ D0C2FBB6D97416B0166478FC7AE2B212 ] C:\Windows\System32\cryptsp.dll
21:24:17.0679 4080  C:\Windows\System32\cryptsp.dll - ok
21:24:17.0679 4080  [ CB2ABB2DA1E9C977302A78D86D4AE3B0 ] C:\Windows\System32\atmfd.dll
21:24:17.0679 4080  C:\Windows\System32\atmfd.dll - ok
21:24:17.0679 4080  [ 1D5185A4C7E6695431AE4B55C3D7D333 ] C:\Windows\System32\mswsock.dll
21:24:17.0679 4080  C:\Windows\System32\mswsock.dll - ok
21:24:17.0694 4080  [ EF12B8385AA2849999008A977918F96B ] C:\Windows\System32\msv1_0.dll
21:24:17.0694 4080  C:\Windows\System32\msv1_0.dll - ok
21:24:17.0694 4080  [ EC7CBFF96B05ECF3D366355B3C64ADCF ] C:\Windows\System32\wship6.dll
21:24:17.0694 4080  C:\Windows\System32\wship6.dll - ok
21:24:17.0694 4080  [ AA339DD8BB128EF66660DFBBB59043D3 ] C:\Windows\System32\netlogon.dll
21:24:17.0694 4080  C:\Windows\System32\netlogon.dll - ok
21:24:17.0694 4080  [ 492D07D79E7024CA310867B526D9636D ] C:\Windows\System32\dnsapi.dll
21:24:17.0694 4080  C:\Windows\System32\dnsapi.dll - ok
21:24:17.0694 4080  [ 8FFE297B8449386E7B6851458B6E474E ] C:\Windows\System32\logoncli.dll
21:24:17.0694 4080  C:\Windows\System32\logoncli.dll - ok
21:24:17.0694 4080  [ 1573C45E65DE32B1BC3572634F8F1E8E ] C:\Windows\System32\schannel.dll
21:24:17.0694 4080  C:\Windows\System32\schannel.dll - ok
21:24:17.0710 4080  [ 95FB6CA4374E343DDD653FCC43F9D26B ] C:\Windows\System32\wdigest.dll
21:24:17.0710 4080  C:\Windows\System32\wdigest.dll - ok
21:24:17.0710 4080  [ 5D8874A8C11DDDDE29E12DE0E2013493 ] C:\Windows\System32\rsaenh.dll
21:24:17.0710 4080  C:\Windows\System32\rsaenh.dll - ok
21:24:17.0710 4080  [ E08088A97F95345E181C3DFCE2C615EF ] C:\Windows\System32\pku2u.dll
21:24:17.0710 4080  C:\Windows\System32\pku2u.dll - ok
21:24:17.0710 4080  [ 8A25506B6948EFBD5A7F37E53CCD36D9 ] C:\Windows\System32\TSpkg.dll
21:24:17.0710 4080  C:\Windows\System32\TSpkg.dll - ok
21:24:17.0710 4080  [ D6C7780A364C6BBACFA796BAB9F1B374 ] C:\Windows\System32\bcryptprimitives.dll
21:24:17.0710 4080  C:\Windows\System32\bcryptprimitives.dll - ok
21:24:17.0710 4080  [ 52D3D5E3586988D4D9E34ACAAC33105C ] C:\Windows\System32\credssp.dll
21:24:17.0710 4080  C:\Windows\System32\credssp.dll - ok
21:24:17.0710 4080  [ 90BDEFC5DF334E5100EAA781D798DE1A ] C:\Windows\System32\efslsaext.dll
21:24:17.0710 4080  C:\Windows\System32\efslsaext.dll - ok
21:24:17.0725 4080  [ 7CC7DF5B654DA579613F811D8C637E29 ] C:\Windows\System32\ubpm.dll
21:24:17.0725 4080  C:\Windows\System32\ubpm.dll - ok
21:24:17.0725 4080  [ ED78427259134C63ED69804D2132B86C ] C:\Windows\System32\scecli.dll
21:24:17.0725 4080  C:\Windows\System32\scecli.dll - ok
21:24:17.0725 4080  [ C78655BC80301D76ED4FEF1C1EA40A7D ] C:\Windows\System32\svchost.exe
21:24:17.0725 4080  C:\Windows\System32\svchost.exe - ok
21:24:17.0725 4080  [ 25FBDEF06C4D92815B353F6E792C8129 ] C:\Windows\System32\umpnpmgr.dll
21:24:17.0725 4080  C:\Windows\System32\umpnpmgr.dll - ok
21:24:17.0725 4080  [ CD1B5AD07E5F7FEF30E055DCC9E96180 ] C:\Windows\System32\devrtl.dll
21:24:17.0725 4080  C:\Windows\System32\devrtl.dll - ok
21:24:17.0725 4080  [ 9C9307C95671AC962F3D6EB3A4A89BAE ] C:\Windows\System32\gpapi.dll
21:24:17.0725 4080  C:\Windows\System32\gpapi.dll - ok
21:24:17.0741 4080  [ E6EB44ABAAF1F330119F854856C53EBE ] C:\Windows\System32\SPInf.dll
21:24:17.0741 4080  C:\Windows\System32\SPInf.dll - ok
21:24:17.0741 4080  [ 7A17485DC7D8A7AC81321A42CD034519 ] C:\Windows\System32\userenv.dll
21:24:17.0741 4080  C:\Windows\System32\userenv.dll - ok
21:24:17.0741 4080  [ 6BA9D927DDED70BD1A9CADED45F8B184 ] C:\Windows\System32\umpo.dll
21:24:17.0741 4080  C:\Windows\System32\umpo.dll - ok
21:24:17.0741 4080  [ F6C011B46FAEEF33536B2E80F48B5CBE ] C:\Windows\System32\pcwum.dll
21:24:17.0741 4080  C:\Windows\System32\pcwum.dll - ok
21:24:17.0741 4080  [ 716175021BDA290504CE434273F666BC ] C:\Windows\System32\powrprof.dll
21:24:17.0741 4080  C:\Windows\System32\powrprof.dll - ok
21:24:17.0741 4080  [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] C:\Windows\System32\drivers\luafv.sys
21:24:17.0741 4080  C:\Windows\System32\drivers\luafv.sys - ok
21:24:17.0757 4080  [ 385F416318EE00FED8777C05C7AC86D0 ] C:\PROGRA~1\ENIGMA~1\SPYHUN~1\SH4SER~1.EXE
21:24:17.0757 4080  C:\PROGRA~1\ENIGMA~1\SPYHUN~1\SH4SER~1.EXE - ok
21:24:17.0757 4080  [ 3EF431D69804369EE22879C229592257 ] C:\PROGRA~1\ENIGMA~1\SPYHUN~1\Common.dll
21:24:17.0757 4080  C:\PROGRA~1\ENIGMA~1\SPYHUN~1\Common.dll - ok
21:24:17.0757 4080  [ AB886378EEB55C6C75B4F2D14B6C869F ] C:\Windows\System32\drivers\WUDFPf.sys
21:24:17.0757 4080  C:\Windows\System32\drivers\WUDFPf.sys - ok
21:24:17.0757 4080  [ 4E70B5247914426722621180B8764514 ] C:\Windows\System32\nvvsvc.exe
21:24:17.0757 4080  C:\Windows\System32\nvvsvc.exe - ok
21:24:17.0757 4080  [ BD3674BE7FC9D8D3732C83E8499576ED ] C:\Windows\System32\wtsapi32.dll
21:24:17.0757 4080  C:\Windows\System32\wtsapi32.dll - ok
21:24:17.0757 4080  [ E4DC58CF7B3EA515AE917FF0D402A7BB ] C:\Windows\System32\RpcEpMap.dll
21:24:17.0757 4080  C:\Windows\System32\RpcEpMap.dll - ok
21:24:17.0772 4080  [ 5C627D1B1138676C0A7AB2C2C190D123 ] C:\Windows\System32\rpcss.dll
21:24:17.0772 4080  C:\Windows\System32\rpcss.dll - ok
21:24:17.0772 4080  [ 16E964ABF6D1E0F0CC7822FCA9BA754D ] C:\Windows\System32\wshqos.dll
21:24:17.0772 4080  C:\Windows\System32\wshqos.dll - ok
21:24:17.0772 4080  [ 31559F3244C6BC00A52030CAA83B6B91 ] C:\Windows\System32\WSHTCPIP.DLL
21:24:17.0772 4080  C:\Windows\System32\WSHTCPIP.DLL - ok
21:24:17.0772 4080  [ 715F03B4C7223349768013EA95D9E5B7 ] C:\Windows\System32\LogonUI.exe
21:24:17.0772 4080  C:\Windows\System32\LogonUI.exe - ok
21:24:17.0772 4080  [ 9AD9E06F8656F296D91FAE8EE5B95A27 ] C:\Windows\System32\FirewallAPI.dll
21:24:17.0772 4080  C:\Windows\System32\FirewallAPI.dll - ok
21:24:17.0772 4080  [ 94E026870A55AAEAFF7853C1754091E9 ] C:\Windows\System32\version.dll
21:24:17.0772 4080  C:\Windows\System32\version.dll - ok
21:24:17.0772 4080  [ 6011714C8C5C55CBFFAD24D61E879FBD ] C:\Windows\System32\wevtsvc.dll
21:24:17.0772 4080  C:\Windows\System32\wevtsvc.dll - ok
21:24:17.0788 4080  [ F23FEF6D569FCE88671949894A8BECF1 ] C:\Windows\System32\audiosrv.dll
21:24:17.0788 4080  C:\Windows\System32\audiosrv.dll - ok
21:24:17.0788 4080  [ 5F28111C648F1E24F7DBC87CDEB091B8 ] C:\Windows\System32\netprofm.dll
21:24:17.0788 4080  C:\Windows\System32\netprofm.dll - ok
21:24:17.0788 4080  [ E40E80D0304A73E8D269F7141D77250B ] C:\Windows\System32\mmcss.dll
21:24:17.0788 4080  C:\Windows\System32\mmcss.dll - ok
21:24:17.0788 4080  [ 78A1E65207484B7F8D3217507745F47C ] C:\Windows\System32\avrt.dll
21:24:17.0788 4080  C:\Windows\System32\avrt.dll - ok
21:24:17.0788 4080  [ 588CD0C78A7FAAE4186B5EEA0AF3ED67 ] C:\Windows\System32\adtschema.dll
21:24:17.0788 4080  C:\Windows\System32\adtschema.dll - ok
21:24:17.0788 4080  [ C4C183E6551084039EC862DA1C945E3D ] C:\Windows\System32\FntCache.dll
21:24:17.0788 4080  C:\Windows\System32\FntCache.dll - ok
21:24:17.0803 4080  [ 227E2C382A1E02F8D4965E664D3BBE43 ] C:\Windows\System32\MMDevAPI.dll
21:24:17.0803 4080  C:\Windows\System32\MMDevAPI.dll - ok
21:24:17.0803 4080  [ 50544D04AD845C43130B70212EC05CCD ] C:\Windows\System32\microsoft-windows-kernel-power-events.dll
21:24:17.0803 4080  C:\Windows\System32\microsoft-windows-kernel-power-events.dll - ok
21:24:17.0803 4080  [ FF819F4345099B8FA6F6B3C5D0BF1F68 ] C:\Windows\System32\mssha.dll
21:24:17.0803 4080  C:\Windows\System32\mssha.dll - ok
21:24:17.0803 4080  [ B1DF2D87DC8BF6072699AC8301B37796 ] C:\Windows\System32\WUDFPlatform.dll
21:24:17.0803 4080  C:\Windows\System32\WUDFPlatform.dll - ok
21:24:17.0803 4080  [ DA6B67270FD9DB3697B20FCE94950741 ] C:\Windows\System32\drivers\fltMgr.sys
21:24:17.0803 4080  C:\Windows\System32\drivers\fltMgr.sys - ok
21:24:17.0803 4080  [ 54FFC9C8898113ACE189D4AA7199D2C1 ] C:\Windows\System32\MPSSVC.dll
21:24:17.0803 4080  C:\Windows\System32\MPSSVC.dll - ok
21:24:17.0819 4080  [ A3DB3C17EE6CAE65D53602B4E80BCCBC ] C:\Windows\System32\PSHED.DLL
21:24:17.0819 4080  C:\Windows\System32\PSHED.DLL - ok
21:24:17.0819 4080  [ B0945E538CF906BBDDC5A11C8EE868CC ] C:\Windows\System32\microsoft-windows-kernel-processor-power-events.dll
21:24:17.0819 4080  C:\Windows\System32\microsoft-windows-kernel-processor-power-events.dll - ok
21:24:17.0819 4080  [ 582AC6D9873E31DFA28A4547270862DD ] C:\Windows\System32\QAGENTRT.DLL
21:24:17.0819 4080  C:\Windows\System32\QAGENTRT.DLL - ok
21:24:17.0819 4080  [ 0BEE002C68E28CE6DA161DCF1376D7D7 ] C:\Windows\System32\authui.dll
21:24:17.0819 4080  C:\Windows\System32\authui.dll - ok
21:24:17.0819 4080  [ B3BFBD758506ECB50C5804AAA76318F9 ] C:\Windows\System32\cryptui.dll
21:24:17.0819 4080  C:\Windows\System32\cryptui.dll - ok
21:24:17.0819 4080  [ F06BB4E336EA57511FDBAFAFCC47DE62 ] C:\Windows\System32\propsys.dll
21:24:17.0819 4080  C:\Windows\System32\propsys.dll - ok
21:24:17.0819 4080  [ D5CCA1453B98A5801E6D5FF0FF89DC6C ] C:\Windows\System32\audiodg.exe
21:24:17.0819 4080  C:\Windows\System32\audiodg.exe - ok
21:24:17.0835 4080  [ 1F4492FE41767CDB8B89D17655847CDD ] C:\Windows\System32\ntmarta.dll
21:24:17.0835 4080  C:\Windows\System32\ntmarta.dll - ok
21:24:17.0835 4080  [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] C:\Windows\System32\gpsvc.dll
21:24:17.0835 4080  C:\Windows\System32\gpsvc.dll - ok
21:24:17.0835 4080  [ 46BB91A169B9B31FF44EB04C48EC1D41 ] C:\Windows\System32\nlaapi.dll
21:24:17.0835 4080  C:\Windows\System32\nlaapi.dll - ok
21:24:17.0835 4080  [ 58775492FFD419248B08325E583C527F ] C:\Windows\System32\atl.dll
21:24:17.0835 4080  C:\Windows\System32\atl.dll - ok
21:24:17.0835 4080  [ A77BE7CB3222B4FB0AC6C71D1C2698D4 ] C:\Windows\System32\dsrole.dll
21:24:17.0835 4080  C:\Windows\System32\dsrole.dll - ok
21:24:17.0835 4080  [ 4166F82BE4D24938977DD1746BE9B8A0 ] C:\Windows\System32\es.dll
21:24:17.0835 4080  C:\Windows\System32\es.dll - ok
21:24:17.0850 4080  [ 53E83F1F6CF9D62F32801CF66D8352A8 ] C:\Windows\System32\profsvc.dll
21:24:17.0850 4080  C:\Windows\System32\profsvc.dll - ok
21:24:17.0850 4080  [ BE097F5BB10F9079FCEB2DC4E7E20F02 ] C:\Windows\System32\slc.dll
21:24:17.0850 4080  C:\Windows\System32\slc.dll - ok
21:24:17.0850 4080  [ F0344071948D1A1FA732231785A0664C ] C:\Windows\System32\themeservice.dll
21:24:17.0850 4080  C:\Windows\System32\themeservice.dll - ok
21:24:17.0850 4080  [ 1A47D52E303B7543E4E6026595B95422 ] C:\Windows\System32\comres.dll
21:24:17.0850 4080  C:\Windows\System32\comres.dll - ok
21:24:17.0850 4080  [ C32AB8FA018EF34C0F113BD501436D21 ] C:\Windows\System32\Sens.dll
21:24:17.0850 4080  C:\Windows\System32\Sens.dll - ok
21:24:17.0850 4080  [ EDBB23CBCF2CDF727D64FF9B51A6070E ] C:\Windows\System32\uxsms.dll
21:24:17.0850 4080  C:\Windows\System32\uxsms.dll - ok
21:24:17.0850 4080  [ B20F051B03A966392364C83F009F7D17 ] C:\Windows\System32\WUDFSvc.dll
21:24:17.0850 4080  C:\Windows\System32\WUDFSvc.dll - ok
21:24:17.0866 4080  [ 1538831CF8AD2979A04C423779465827 ] C:\Windows\System32\drivers\lltdio.sys
21:24:17.0866 4080  C:\Windows\System32\drivers\lltdio.sys - ok
21:24:17.0866 4080  [ 1EA3749C4114DB3E3161156FFFFA6B33 ] C:\Windows\System32\drivers\nwifi.sys
21:24:17.0866 4080  C:\Windows\System32\drivers\nwifi.sys - ok
21:24:17.0866 4080  [ 136185F9FB2CC61E573E676AA5402356 ] C:\Windows\System32\drivers\ndisuio.sys
21:24:17.0866 4080  C:\Windows\System32\drivers\ndisuio.sys - ok
21:24:17.0866 4080  [ DDC86E4F8E7456261E637E3552E804FF ] C:\Windows\System32\drivers\rspndr.sys
21:24:17.0866 4080  C:\Windows\System32\drivers\rspndr.sys - ok
21:24:17.0866 4080  [ 2B81776DA02017A37FE26C662827470E ] C:\Windows\System32\IPHLPAPI.DLL
21:24:17.0866 4080  C:\Windows\System32\IPHLPAPI.DLL - ok
21:24:17.0866 4080  [ F993A32249B66C9D622EA5592A8B76B8 ] C:\Windows\System32\lmhsvc.dll
21:24:17.0866 4080  C:\Windows\System32\lmhsvc.dll - ok
21:24:17.0881 4080  [ D54BFDF3E0C953F823B3D0BFE4732528 ] C:\Windows\System32\nsisvc.dll
21:24:17.0881 4080  C:\Windows\System32\nsisvc.dll - ok
21:24:17.0881 4080  [ F9EC845C5EECF20E9A67F9F805F2EF1F ] C:\Windows\System32\keyiso.dll
21:24:17.0881 4080  C:\Windows\System32\keyiso.dll - ok
21:24:17.0881 4080  [ B73A6E4B319AFFE64582AC5C1801BB3F ] C:\Windows\System32\nrpsrv.dll
21:24:17.0881 4080  C:\Windows\System32\nrpsrv.dll - ok
21:24:17.0881 4080  [ 4C9210E8F4E052F6A4EB87716DA0C24C ] C:\Windows\System32\winnsi.dll
21:24:17.0881 4080  C:\Windows\System32\winnsi.dll - ok
21:24:17.0881 4080  [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] C:\Windows\System32\dhcpcore.dll
21:24:17.0881 4080  C:\Windows\System32\dhcpcore.dll - ok
21:24:17.0881 4080  [ 16835866AAA693C7D7FCEBA8FFF706E4 ] C:\Windows\System32\dnsrslvr.dll
21:24:17.0881 4080  C:\Windows\System32\dnsrslvr.dll - ok
21:24:17.0881 4080  [ 87356377F31DA5F20A833811CD59499C ] C:\Windows\System32\eapphost.dll
21:24:17.0881 4080  C:\Windows\System32\eapphost.dll - ok


Edited by onesnark, 01 March 2013 - 01:06 PM.


#13 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:04:26 PM

Posted 06 March 2013 - 05:55 AM

Please do not edit your posts.I never knew that you have posted all the logs.Just post last few lines of TDSSkiller log

 

Malwarebytes

--------------------

Please download Malwarebytes Anti-Malware and save it to your desktop.  If you already have it installed launch the program and update the database.

  • Important!! When you save the mbam-setup file, rename it to something random (such as 123abc.exe) before beginning the download.  You can also right click on the link and select Save Link As

Malwarebytes may "make changes to your registry" as part of its disinfection routine. If using other security programs that detect registry changes (ie Spybot's Teatimer), they may interfere or alert you. Temporarily disable such programs or permit them to allow the changes.

  • Make sure you are connected to the Internet and double-click on the renamed file to install the application.
    For instructions with screenshots, please refer to this Guide.
  • When the installation begins, follow the prompts and do not make any changes to default settings except to uncheck any offer for a free Pro trial version
  • Malwarebytes will automatically start and you will be asked to update the program before performing a scan.
  • If an update is found, the program will automatically update itself. Press the OK button and continue.
  • If you encounter any problems while downloading the definition updates, manually download them from here and just double-click on mbam-rules.exe to install.
  • Under the Scanner tab, make sure the "Perform Quick Scan" option is selected.
  • Click on the Scan button.
  • When finished, a message box will say "The scan completed successfully. Click 'Show Results' to display all objects found".
  • Click OK to close the message box, then click the Show Results button to see a list of any malware that was found.
  • Make sure that everything is checked and then click Remove Selected.
  • When removal is completed, a log report will open in Notepad.
  • The log is automatically saved and can be viewed by clicking the Logs tab.
  • Copy and paste the contents of that report in your next reply. Be sure to post the complete log to include the top portion which shows the database version and your operating system.
  • Exit Malwarebytes when done.

Note: If Malwarebytes encounters a file that is difficult to remove, you will be asked to reboot your computer so it can proceed with the disinfection process. If asked to restart the computer, please do so immediately. Failure to reboot normally will prevent Malwarebytes from removing all the malware.


===================================================


Farbar's MiniToolBox

--------------------

  • Please download MiniToolBox, save it to your desktop
  • Please close any Firefox browsers you may have open
  • Double click the icon to launch the program
  • Make sure the following options are checked:

    • Flush DNS
    • Report IE Proxy Settings
    • Reset IE Proxy Settings
    • Report FF Proxy Settings
    • Reset FF Proxy Settings
    • List content of Hosts
    • List IP configuration
    • List Winsock Entries
    • List last 10 Event Viewer log
    • List Installed Programs
    • List Devices
    • List Users, Partitions and Memory size.
  • Click Go and once the scan is completed a Result.txt Notepad document will open on your desktop
  • Please copy and paste the contents in your reply


===================================================


Farbar's Service Scanner

--------------------

Please download Farbar Service Scanner, save it to your desktop, and run it.

  • Make sure the following options are checked:

    • Internet Services
    • Windows Firewall
    • System Restore
    • Security Center/Action Center
    • Windows Update
    • Windows Defender
    • Other Services
  • Press "Scan".
  • It will create a log (FSS.txt) in the same directory the tool is run.
  • Please copy and paste the log to your reply.


===================================================


AdwCleaner by Xplode - Search for Adware

-------------------

  • Please download AdwCleaner by Xplode onto your desktop.
  • Double click on AdwCleaner.exe, select OK, then Run
  • Click on DELETE
  • A logfile will automatically open after the scan has finished
  • Copy and paste the contents in your reply
  • You can find the logfile at C:\AdwCleaner[R1].txt as well


===================================================


Junkware Removal Tooll by thisisu

-------------------

  • Please download Junkware Removal Tool and save it to your desktop.
  • Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools. (Click on this link to see a list of programs that should be disabled. The list is not all inclusive.)
  • Right-mouse click JRT.exe and select Run as administrator (Windows XP double click the icon)
  • Please allow the program time to run
  • Once completed a Notepad document will open on your desktop
  • Copy and paste the contents in your reply


===================================================


Rkill

-------------------

Please download Rkill by Grinler from one of the 4 links below (if one of them does not work try another...) and save it to your desktop:


  • In order for Rkill to run properly you must disable your anti-malware software.  Please refer to this page if you are not sure how.
  • Double-click on Rkill. (If you are using Windows Vista, please right-click on it and select Run As Administrator)
    • Note:  You may have to run Rkill a few times before it is successful.  You may also have to download Rkill from a different link which will save it as a different file name.
  • A black screen will appear and then disappear. Please do not worry, that is normal. This means that the tool has been successfully executed.
  • An Rkill.log will appear.  Please copy and paste the contents in your reply (file also located at c:\rkill.log)
  • Do not reboot your computer after running Rkill as the malware programs will start again.  If your computer reboots, run Rkill again before continuing on to the next step.
  • If nothing happens or if the tool does not run, please let me know in your next reply.


===================================================


Autoruns

--------------------

  • Please download AutoRuns and save it to your desktop
  • Double click the AutoRuns.zip folder
  • Double click autoruns.exe (not autorunsc.exe), select Run, then Run again and allow the information to populate
  • Select File, Save, Desktop (in the left hand pane), then Save filename as Autoruns.txt and change Save as type to  Text(*.txt).
  • Double click on the text file,copy and paste the contents in your reply


===================================================


Things I would like to see in your next reply. Please be sure to copy and paste the information rather than send an attachment. :thumbsup2:

  • Malwarebytes log
  • MiniToolBox log
  • Farbar's Service Scanner log
  • AdwCleaner log
  • Junkware Removal Tool log
  • Rkill log
  • Autoruns log

 



#14 onesnark

onesnark
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:05:26 PM

Posted 18 March 2013 - 07:36 AM

Test. . .was my previous post too long?



#15 onesnark

onesnark
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:05:26 PM

Posted 18 March 2013 - 07:40 AM

Wow. . .I am surprised how long it has taken me to get back to this. . . but. . . here I am. After my first few steps a few weeks back, my symptoms abated. (i.e. no more redirects). Yesterday,

I ran all the requested tools in succession. The logs are below.

Malwarebytes log

Malwarebytes Anti-Malware 1.70.0.1100
www.malwarebytes.org

Database version: v2013.03.17.12

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
XXXXXX :: YYYYYY [administrator]

3/17/2013 3:25:48 PM
mbam-log-2013-03-17 (15-25-48).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 215198
Time elapsed: 4 minute(s), 44 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users