Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Slow computer and random browser pop ups


  • This topic is locked This topic is locked
78 replies to this topic

#1 stqcb

stqcb

  • Members
  • 52 posts
  • OFFLINE
  •  
  • Local time:03:26 PM

Posted 18 October 2013 - 10:59 PM

Starting mid July my computer performannce suddenly slowed down drastically. Basically programs would either run smoothly but take longer to load things, or when I have more programs running they would begin to lag. Since then the computer has become slower, sometimes with extreme lagging, and even freezing, with only 2 programs open. When it first started to happen I tried the usual disk defrag, cleaning out  the cache, temp files, etc. but it's only gotten worst since.

 

Recently, in the last week I've been getting pop ups in my browser. One pop up seems to only happen when I'm on youtube. When I'm on a youtube page it would redirect me to (http://awesomemobi.com/Java_Update/CA/?dv1=BannerConnect%20B.V.). This happens at random moments, sometimes right after youtube loads, sometimes in the middle of watching a video. The frequency at which it happens seems random too. Sometimes I would have to try up to 5 times to view a video because it keeps redirecting me, but sometimes it won't happen at all throughout the day.

 

Another one is this (http://www.erasethatdebt.com/CA/V2/1a.asp?Network=63). This one opens in a new tab everytime and is completely random. It doesn't seem to happen when a specific site is open like the youtube one mentioned above.

 

Since the pop ups began I've scanned the computer with spybot, ad-aware and malwarebytes. Spybot came up with some positive results which I've deleted, but the pop ups still happen.

 

Not sure if this is a factor but I also noticed ePowerEvent.exe running in task manager. I've read that this can be a normal Windows function, but it can also be a virus exploiting the name. In the article I've read it mentioned that the safe version is usually located in c:/Windows/System32, and if ePowerEvent.exe is not found there then chances are it could be a virus. When I checked my computer I couldn't find it there. And when I right clicked it in task manager and clicked open file location, nothing happened.

 

 

 

 

 

 

 

 

 

DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 9.0.8112.16476  BrowserJavaVersion: 10.25.2
Run by Scott at 21:03:52 on 2013-10-18
Microsoft Windows 7 Home Premium   6.1.7600.0.1252.2.1033.18.4094.2269 [GMT -4:00]
.
AV: McAfee Anti-Virus and Anti-Spyware *Disabled/Updated* {86355677-4064-3EA7-ABB3-1B136EB04637}
AV: Avira Desktop *Enabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
SP: Avira Desktop *Enabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: McAfee Anti-Virus and Anti-Spyware *Disabled/Updated* {3D54B793-665E-3129-9103-206115370C8A}
SP: COMODO Defense+ *Enabled/Updated* {FEEA52D5-051E-08DD-07EF-2F009097607D}
SP: Lavasoft Ad-Watch Live! *Enabled/Updated* {24938260-56EE-C1E5-047B-DC2BDD234BAB}
FW: COMODO Firewall *Enabled* {7DB03214-694B-060B-1600-BD4715C36DBB}
FW: McAfee Firewall *Enabled* {BE0ED752-0A0B-3FFF-80EC-B2269063014C}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\atieclxx.exe
C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\SysWOW64\svchost.exe -k Akamai
C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files (x86)\Launch Manager\dsiwmis.exe
C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\taskhost.exe
C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
C:\Windows\Explorer.EXE
C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe
C:\Program Files (x86)\EgisTec MyWinLocker\x86\MWLService.exe
C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Windows\system32\Dwm.exe
C:\Program Files (x86)\IVT Corporation\BlueSoleil\StartSkysolSvc.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Acer\Acer Updater\UpdaterService.exe
C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
C:\Windows\System32\Drivers\WTSRV.EXE
C:\Windows\system32\rundll32.exe
C:\Windows\system32\rundll32.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler.exe
C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe
C:\Program Files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler64.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files (x86)\CineForm\Tools\GoProCineFormStatusViewer.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\mcafee.com\agent\mcagent.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\Razer\DeathAdder\razerhid.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files (x86)\Razer\DeathAdder\razerofa.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Windows\SysWOW64\WTClient.exe
C:\Program Files (x86)\Launch Manager\LMworker.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe
C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\Apoint2K\HidFind.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\wuauclt.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
c:\PROGRA~1\mcafee.com\agent\McUpdate.exe
c:\PROGRA~2\mcafee\SITEAD~1\saui.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe
C:\Windows\system32\taskhost.exe
c:\PROGRA~1\mcafee.com\agent\mcupdate.exe
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
C:\Windows\system32\taskeng.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.com
uDefault_Page_URL = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=1009&m=aspire_7552&r=27360810y306l0418z185t45l1q218
mStart Page = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=1009&m=aspire_7552&r=27360810y306l0418z185t45l1q218
mDefault_Page_URL = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=1009&m=aspire_7552&r=27360810y306l0418z185t45l1q218
uURLSearchHooks: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
mWinlogon: Userinit = userinit.exe
BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
BHO: McAfee SiteAdvisor BHO: {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
TB: Google Toolbar: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
TB: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
TB: @C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2156.0\npwinext.dll,-100: {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2156.0\npwinext.dll
TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
uRun: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
uRun: [AdobeBridge] <no file>
mRun: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
mRun: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
mRun: [DeathAdder] C:\Program Files (x86)\Razer\DeathAdder\razerhid.exe
mRun: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
mRun: [WTClient] WTClient.exe
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\CINEFO~1.LNK - C:\Program Files (x86)\CineForm\Tools\GoProCineFormStatusViewer.exe
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: SoftwareSASGeneration = dword:1
IE: &D&ownload &with BitComet - C:\Program Files (x86)\BitComet\BitComet.exe/AddLink.htm
IE: &D&ownload all with BitComet - C:\Program Files (x86)\BitComet\BitComet.exe/AddAllLink.htm
IE: Download with Xilisoft YouTube Video Converter - C:\Program Files (x86)\Xilisoft\YouTube Video Converter\upod_link.HTM
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
LSP: C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll
Trusted Zone: myitlab.com
Trusted Zone: myitlab.com
Trusted Zone: pearsoncmg.com
Trusted Zone: pearsoned.com
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_25-windows-i586.cab
DPF: {CAFEEFAC-0017-0000-0025-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_25-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_25-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: NameServer = 192.168.0.1
TCP: Interfaces\{223A97A0-FEF4-42C9-A391-521E405D481B} : DHCPNameServer = 192.168.2.254
TCP: Interfaces\{223A97A0-FEF4-42C9-A391-521E405D481B}\2454C4C4736393 : DHCPNameServer = 192.168.2.1
TCP: Interfaces\{223A97A0-FEF4-42C9-A391-521E405D481B}\3416E616469616E60216E6460275F627C6460235475746965637 : DHCPNameServer = 10.1.0.5 10.1.0.84
TCP: Interfaces\{223A97A0-FEF4-42C9-A391-521E405D481B}\355686 : DHCPNameServer = 192.168.0.1
TCP: Interfaces\{223A97A0-FEF4-42C9-A391-521E405D481B}\375686 : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{223A97A0-FEF4-42C9-A391-521E405D481B}\54475627E616C6C4964756 : DHCPNameServer = 192.168.0.1
TCP: Interfaces\{A3E2D312-5196-479F-8123-111B868F2B5C} : DHCPNameServer = 192.168.0.1
TCP: Interfaces\{D4669212-57FF-47B6-9E37-08AB57E1F3CC} : DHCPNameServer = 192.168.42.129
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
AppInit_DLLs= C:\Windows\SysWOW64\guard32.dll
SSODL: WebCheck - <orphaned>
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
x64-mStart Page = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=1009&m=aspire_7552&r=27360810y306l0418z185t45l1q218
x64-mDefault_Page_URL = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=1009&m=aspire_7552&r=27360810y306l0418z185t45l1q218
x64-BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
x64-BHO: McAfee SiteAdvisor BHO: {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll
x64-TB: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll
x64-TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
x64-Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
x64-Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
x64-Run: [Acer ePower Management] C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
x64-Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
x64-Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll
x64-Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - <orphaned>
x64-Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll
x64-Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - <orphaned>
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-SSODL: WebCheck - <orphaned>
Hosts: 127.0.0.1    www.spywareinfo.com
Hosts: 74.208.10.249 gs.apple.com
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Scott\AppData\Roaming\Mozilla\Firefox\Profiles\maiwtmgt.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - www.yahoo.ca
FF - prefs.js: network.proxy.type - 0
FF - component: C:\Program Files (x86)\McAfee\SiteAdvisor\components\McFFPlg.dll
FF - component: C:\Users\Scott\AppData\Roaming\Mozilla\Firefox\Profiles\maiwtmgt.default\extensions\firesheep@codebutler.com\platform\WINNT_x86-msvc\components\mozpopen.dll
FF - plugin: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
FF - plugin: C:\Program Files (x86)\McAfee\SiteAdvisor\NPMcFFPlg32.dll
FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2156.0\npwinext.dll
FF - plugin: C:\Program Files (x86)\MyScrapNook_12EI\Installr\1.bin\NP12EISb.dll
FF - plugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\Users\Scott\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll
FF - plugin: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1167637.dll
FF - plugin: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll
FF - plugin: C:\Windows\SysWOW64\npDeployJava1.dll
FF - plugin: C:\Windows\SysWOW64\npmproxy.dll
.
============= SERVICES / DRIVERS ===============
.
R0 Lbd;Lbd;C:\Windows\System32\drivers\Lbd.sys [2011-10-15 69376]
R0 mfehidk;McAfee Inc. mfehidk;C:\Windows\System32\drivers\mfehidk.sys [2010-1-5 530304]
R0 mfewfpk;McAfee Inc. mfewfpk;C:\Windows\System32\drivers\mfewfpk.sys [2010-1-5 283744]
R0 PxHlpa64;PxHlpa64;C:\Windows\System32\drivers\PxHlpa64.sys [2007-11-5 55280]
R1 avkmgr;avkmgr;C:\Windows\System32\drivers\avkmgr.sys [2013-8-6 28600]
R1 cmdGuard;COMODO Internet Security Sandbox Driver;C:\Windows\System32\drivers\cmdGuard.sys [2010-6-4 584056]
R1 cmdHlp;COMODO Internet Security Helper Driver;C:\Windows\System32\drivers\cmdhlp.sys [2010-6-1 38144]
R1 mfenlfk;McAfee NDIS Light Filter;C:\Windows\System32\drivers\mfenlfk.sys [2010-1-5 75160]
R1 mwlPSDFilter;mwlPSDFilter;C:\Windows\System32\drivers\mwlPSDFilter.sys [2009-6-2 22576]
R1 mwlPSDNServ;mwlPSDNServ;C:\Windows\System32\drivers\mwlPSDNserv.sys [2009-6-2 20016]
R1 mwlPSDVDisk;mwlPSDVDisk;C:\Windows\System32\drivers\mwlPSDVDisk.sys [2009-6-2 60464]
R2 Akamai;Akamai NetSession Interface;C:\Windows\System32\svchost.exe -k Akamai [2009-7-13 27136]
R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\System32\atiesrxx.exe [2010-5-19 202752]
R2 AMD FUEL Service;AMD FUEL Service;C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-4-19 365568]
R2 AntiVirSchedulerService;Avira Scheduler;C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2013-8-6 84024]
R2 AntiVirService;Avira Real-Time Protection;C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2013-8-6 108088]
R2 avgntflt;avgntflt;C:\Windows\System32\drivers\avgntflt.sys [2013-8-6 105344]
R2 DsiWMIService;Dritek WMI Service;C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2010-5-19 325200]
R2 ePowerSvc;Acer ePower Service;C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [2010-5-19 865824]
R2 Greg_Service;GRegService;C:\Program Files (x86)\Acer\Registration\GregHSRW.exe [2009-8-28 1150496]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe [2011-8-18 2152152]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe [2010-8-26 355440]
R2 McMPFSvc;McAfee Personal Firewall Service;C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe [2010-8-26 355440]
R2 McNaiAnn;McAfee VirusScan Announcer;C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe [2010-8-26 355440]
R2 McProxy;McAfee Proxy Service;C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe [2010-8-26 355440]
R2 McShield;McShield;C:\Program Files\Common Files\mcafee\systemcore\mcshield.exe [2010-5-4 200056]
R2 mfefire;McAfee Firewall Core Service;C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe [2010-5-4 245352]
R2 mfevtp;McAfee Validation Trust Protection Service;C:\Program Files\Common Files\mcafee\systemcore\mfevtps.exe [2010-5-4 149032]
R2 MWLService;MyWinLocker Service;C:\Program Files (x86)\EgisTec MyWinLocker\x86\MWLService.exe [2010-2-1 305520]
R2 NTI IScheduleSvc;NTI IScheduleSvc;C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe [2010-3-8 250368]
R2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service;C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2009-11-5 144640]
R2 Start BT in service;Start BT in service;C:\Program Files (x86)\IVT Corporation\BlueSoleil\StartSkysolSvc.exe [2007-12-27 51816]
R2 Updater Service;Updater Service;C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2010-5-4 243232]
R2 WDBackup;WD Backup;C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [2013-4-22 1042808]
R2 WDDriveService;WD Drive Manager;C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [2013-4-22 270192]
R3 amdiox64;AMD IO Driver;C:\Windows\System32\drivers\amdiox64.sys [2011-6-1 46136]
R3 cfwids;McAfee Inc. cfwids;C:\Windows\System32\drivers\cfwids.sys [2010-1-5 63056]
R3 k57nd60a;Broadcom NetLink ™ Gigabit Ethernet - NDIS 6.0;C:\Windows\System32\drivers\k57nd60a.sys [2009-10-16 321064]
R3 Lavasoft Kernexplorer;Lavasoft helper driver;C:\Program Files (x86)\Lavasoft\Ad-Aware\kernexplorer64.sys [2011-10-15 17152]
R3 mfeavfk;McAfee Inc. mfeavfk;C:\Windows\System32\drivers\mfeavfk.sys [2010-1-5 190520]
R3 mfefirek;McAfee Inc. mfefirek;C:\Windows\System32\drivers\mfefirek.sys [2010-1-5 441840]
R3 PTSimBus;PenTablet Bus Enumerator;C:\Windows\System32\drivers\PTSimBus.sys [2009-6-18 27304]
R3 usbfilter;AMD USB Filter Driver;C:\Windows\System32\drivers\usbfilter.sys [2010-5-19 38456]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-7-13 160944]
S3 danewFltr;NewDeathAdder Mouse;C:\Windows\System32\drivers\danew.sys [2010-8-24 12032]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);C:\Windows\System32\drivers\ssudbus.sys [2012-8-9 82112]
S3 fssfltr;fssfltr;C:\Windows\System32\drivers\fssfltr.sys [2011-3-18 48480]
S3 fsssvc;Windows Live Family Safety Service;C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2011-5-13 1492840]
S3 iTeleportService;iTeleportService;C:\Program Files (x86)\iTeleport\iTeleport Connect\iTeleportService.exe [2011-4-11 20480]
S3 mferkdet;McAfee Inc. mferkdet;C:\Windows\System32\drivers\mferkdet.sys [2010-1-5 94992]
S3 NTIBackupSvc;NTI Backup Now 5 Backup Service;C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2009-11-5 50432]
S3 PTSimHid;PenTablet Simulated HID MiniDriver;C:\Windows\System32\drivers\PTSimHid.sys [2009-6-18 17064]
S3 pwdrvio;pwdrvio;C:\Windows\System32\pwdrvio.sys [2011-10-17 19032]
S3 pwdspio;pwdspio;C:\Windows\System32\pwdspio.sys [2011-10-17 12384]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\System32\drivers\RtsUStor.sys [2010-5-4 239136]
S3 ssudmdm;SAMSUNG  Mobile USB Modem Drivers (DEVGURU Ver.);C:\Windows\System32\drivers\ssudmdm.sys [2012-8-9 202560]
S3 ssudnflt;Remote NDIS Filter Driver;C:\Windows\System32\drivers\ssudnflt.sys [2012-8-9 19520]
S3 ssudserd;SAMSUNG Mobile USB Diagnostic Serial Port(DEVGURU Ver.);C:\Windows\System32\drivers\ssudserd.sys [2012-8-9 202560]
S3 SwitchBoard;Adobe SwitchBoard;C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-2-19 517096]
S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\drivers\usbaapl64.sys [2012-9-28 53760]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2011-3-18 1255736]
S3 WDC_SAM;WD SCSI Pass Thru driver;C:\Windows\System32\drivers\wdcsam64.sys [2012-6-13 14464]
S4 AntiVirWebService;Avira Web Protection;C:\Program Files (x86)\Avira\AntiVir Desktop\avwebgrd.exe [2013-8-6 815160]
S4 McOobeSv;McAfee OOBE Service;C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe [2010-8-26 355440]
S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-22 57184]
.
=============== Created Last 30 ================
.
2013-10-15 17:47:41    --------    d-----w-    C:\Users\Scott\AppData\Roaming\Fastest
2013-10-15 17:46:55    --------    d-----w-    C:\Program Files (x86)\Fastest Video Converter
2013-10-15 05:16:35    --------    d-----w-    C:\Users\Scott\AppData\Local\Deshaker
2013-10-01 19:33:13    --------    d-----w-    C:\Users\Scott\AppData\Local\{A286C9AD-CF9A-4584-BC2F-0546E0C2A4A4}
2013-09-25 23:52:14    --------    d-----w-    C:\Windows\SysWow64\TabletPmt
2013-09-25 23:52:14    --------    d-----w-    C:\Program Files (x86)\TABLET
.
==================== Find3M  ====================
.
2013-10-09 02:04:45    71048    ----a-w-    C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2013-10-09 02:04:45    692616    ----a-w-    C:\Windows\SysWow64\FlashPlayerApp.exe
2013-09-09 03:21:44    81112    ----a-w-    C:\Windows\System32\drivers\avnetflt.sys
2013-09-09 03:21:44    105344    ----a-w-    C:\Windows\System32\drivers\avgntflt.sys
2013-09-05 20:06:12    1443328    ----a-w-    C:\Windows\System32\CFHD.dll
2013-09-05 20:03:20    1474560    ----a-w-    C:\Windows\SysWow64\CFHD.dll
2013-09-03 18:04:29    12872    ----a-w-    C:\Windows\System32\bootdelete.exe
2013-08-06 17:24:06    28600    ----a-w-    C:\Windows\System32\drivers\avkmgr.sys
.
============= FINISH: 21:04:47.71 ===============
 

Attached Files



BC AdBot (Login to Remove)

 


#2 HelpBot

HelpBot

    Bleepin' Binary Bot


  • Bots
  • 12,600 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:04:26 PM

Posted 23 October 2013 - 11:00 PM

Hello and welcome to Bleeping Computer!

I am HelpBot: an automated program designed to help the Bleeping Computer Staff better assist you! This message contains very important information, so please read through all of it before doing anything.

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.

To help Bleeping Computer better assist you please perform the following steps:

***************************************************

step1.gif In order to continue receiving help at BleepingComputer.com, YOU MUST tell me if you still need help or if your issue has already been resolved on your own or through another resource! To tell me this, please click on the following link and follow the instructions there.

CLICK THIS LINK >>> http://www.bleepingcomputer.com/logreply/511224 <<< CLICK THIS LINK



If you no longer need help, then all you needed to do was the previous instructions of telling me so. You can skip the rest of this post. If you do need help please continue with Step 2 below.

***************************************************

step2.gifIf you still need help, I would like you to post a Reply to this topic (click the "Add Reply" button in the lower right hand of this page). In that reply, please include the following information:

  • If you have not done so already, include a clear description of the problems you're having, along with any steps you may have performed so far.
  • A new DDS log. For your convenience, you will find the instructions for generating these logs repeated at the bottom of this post.
    • Please do this even if you have previously posted logs for us.
    • If you were unable to produce the logs originally please try once more.
    • If you are unable to create a log please provide detailed information about your installed Windows Operating System including the Version, Edition and if it is a 32bit or a 64bit system.
    • If you are unsure about any of these characteristics just post what you can and we will guide you.
  • Please tell us if you have your original Windows CD/DVD available.
  • Upon completing the above steps and posting a reply, another staff member will review your topic and do their best to resolve your issues.

Thank you for your patience, and again sorry for the delay.

***************************************************

We need to see some information about what is happening in your machine. Please perform the following scan again:

  • Download DDS by sUBs from the following link if you no longer have it available and save it to your destop.

    DDS.com Download Link
  • Double click on the DDS icon, allow it to run.
  • A small box will open, with an explanation about the tool. No input is needed, the scan is running.
  • Notepad will open with the results.
  • Follow the instructions that pop up for posting the results.
  • Close the program window, and delete the program from your desktop.
Please note: You may have to disable any script protection running if the scan fails to run. After downloading the tool, disconnect from the internet and disable all antivirus protection. Run the scan, enable your A/V and reconnect to the internet.

Information on A/V control can be found HERE.

As I am just a silly little program running on the BleepingComputer.com servers, please do not send me private messages as I do not know how to read and reply to them! Thanks!

#3 stqcb

stqcb
  • Topic Starter

  • Members
  • 52 posts
  • OFFLINE
  •  
  • Local time:03:26 PM

Posted 24 October 2013 - 10:53 AM

As an update to my previous post, the problem with redirecting when on Youtube hasn't happened at all in the past few days, but the erasethatdept.com pop ups is still happening. Everything else about the computer being slow is still the same.

 

 

 

 

 

Here is my new DDS log.

 

 

DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 9.0.8112.16476  BrowserJavaVersion: 10.25.2
Run by Scott at 11:44:34 on 2013-10-24
Microsoft Windows 7 Home Premium   6.1.7600.0.1252.2.1033.18.4094.2450 [GMT -4:00]
.
AV: McAfee Anti-Virus and Anti-Spyware *Disabled/Updated* {86355677-4064-3EA7-ABB3-1B136EB04637}
AV: Avira Desktop *Enabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
SP: Avira Desktop *Enabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: McAfee Anti-Virus and Anti-Spyware *Disabled/Updated* {3D54B793-665E-3129-9103-206115370C8A}
SP: COMODO Defense+ *Enabled/Updated* {FEEA52D5-051E-08DD-07EF-2F009097607D}
SP: Lavasoft Ad-Watch Live! *Enabled/Updated* {24938260-56EE-C1E5-047B-DC2BDD234BAB}
FW: COMODO Firewall *Enabled* {7DB03214-694B-060B-1600-BD4715C36DBB}
FW: McAfee Firewall *Enabled* {BE0ED752-0A0B-3FFF-80EC-B2269063014C}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\atieclxx.exe
C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\SysWOW64\svchost.exe -k Akamai
C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files (x86)\Launch Manager\dsiwmis.exe
C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe
C:\Program Files (x86)\EgisTec MyWinLocker\x86\MWLService.exe
C:\Windows\system32\taskhost.exe
C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
C:\Windows\system32\rundll32.exe
C:\Windows\system32\rundll32.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler.exe
C:\Program Files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler64.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Acer\Acer Updater\UpdaterService.exe
C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
C:\Windows\System32\Drivers\WTSRV.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files (x86)\CineForm\Tools\GoProCineFormStatusViewer.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\mcafee.com\agent\mcagent.exe
C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\Razer\DeathAdder\razerhid.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
C:\Windows\SysWOW64\WTClient.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
C:\Program Files (x86)\Launch Manager\LMworker.exe
C:\Program Files (x86)\Razer\DeathAdder\razerofa.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe
C:\Program Files\Apoint2K\HidFind.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
c:\PROGRA~1\mcafee\msc\mcupdmgr.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
c:\PROGRA~2\mcafee\SITEAD~1\saui.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.com
uDefault_Page_URL = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=1009&m=aspire_7552&r=27360810y306l0418z185t45l1q218
mStart Page = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=1009&m=aspire_7552&r=27360810y306l0418z185t45l1q218
mDefault_Page_URL = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=1009&m=aspire_7552&r=27360810y306l0418z185t45l1q218
uURLSearchHooks: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
mWinlogon: Userinit = userinit.exe
BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
BHO: McAfee SiteAdvisor BHO: {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
TB: Google Toolbar: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
TB: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
TB: @C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2156.0\npwinext.dll,-100: {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2156.0\npwinext.dll
TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
uRun: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
uRun: [AdobeBridge] <no file>
mRun: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
mRun: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
mRun: [DeathAdder] C:\Program Files (x86)\Razer\DeathAdder\razerhid.exe
mRun: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
mRun: [WTClient] WTClient.exe
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\CINEFO~1.LNK - C:\Program Files (x86)\CineForm\Tools\GoProCineFormStatusViewer.exe
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: SoftwareSASGeneration = dword:1
IE: &D&ownload &with BitComet - C:\Program Files (x86)\BitComet\BitComet.exe/AddLink.htm
IE: &D&ownload all with BitComet - C:\Program Files (x86)\BitComet\BitComet.exe/AddAllLink.htm
IE: Download with Xilisoft YouTube Video Converter - C:\Program Files (x86)\Xilisoft\YouTube Video Converter\upod_link.HTM
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
LSP: C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll
Trusted Zone: myitlab.com
Trusted Zone: myitlab.com
Trusted Zone: pearsoncmg.com
Trusted Zone: pearsoned.com
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_25-windows-i586.cab
DPF: {CAFEEFAC-0017-0000-0025-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_25-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_25-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: NameServer = 192.168.0.1
TCP: Interfaces\{223A97A0-FEF4-42C9-A391-521E405D481B} : DHCPNameServer = 192.168.2.254
TCP: Interfaces\{223A97A0-FEF4-42C9-A391-521E405D481B}\2454C4C4736393 : DHCPNameServer = 192.168.2.1
TCP: Interfaces\{223A97A0-FEF4-42C9-A391-521E405D481B}\3416E616469616E60216E6460275F627C6460235475746965637 : DHCPNameServer = 10.1.0.5 10.1.0.84
TCP: Interfaces\{223A97A0-FEF4-42C9-A391-521E405D481B}\355686 : DHCPNameServer = 192.168.0.1
TCP: Interfaces\{223A97A0-FEF4-42C9-A391-521E405D481B}\375686 : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{223A97A0-FEF4-42C9-A391-521E405D481B}\54475627E616C6C4964756 : DHCPNameServer = 192.168.0.1
TCP: Interfaces\{A3E2D312-5196-479F-8123-111B868F2B5C} : DHCPNameServer = 192.168.0.1
TCP: Interfaces\{D4669212-57FF-47B6-9E37-08AB57E1F3CC} : DHCPNameServer = 192.168.42.129
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
AppInit_DLLs= C:\Windows\SysWOW64\guard32.dll
SSODL: WebCheck - <orphaned>
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
x64-mStart Page = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=1009&m=aspire_7552&r=27360810y306l0418z185t45l1q218
x64-mDefault_Page_URL = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=1009&m=aspire_7552&r=27360810y306l0418z185t45l1q218
x64-BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
x64-BHO: McAfee SiteAdvisor BHO: {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll
x64-TB: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll
x64-TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
x64-Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
x64-Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
x64-Run: [Acer ePower Management] C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
x64-Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
x64-Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll
x64-Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - <orphaned>
x64-Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll
x64-Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - <orphaned>
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-SSODL: WebCheck - <orphaned>
Hosts: 127.0.0.1    www.spywareinfo.com
Hosts: 74.208.10.249 gs.apple.com
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Scott\AppData\Roaming\Mozilla\Firefox\Profiles\maiwtmgt.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - www.yahoo.ca
FF - prefs.js: network.proxy.type - 2
FF - component: C:\Program Files (x86)\McAfee\SiteAdvisor\components\McFFPlg.dll
FF - component: C:\Users\Scott\AppData\Roaming\Mozilla\Firefox\Profiles\maiwtmgt.default\extensions\firesheep@codebutler.com\platform\WINNT_x86-msvc\components\mozpopen.dll
FF - plugin: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
FF - plugin: C:\Program Files (x86)\McAfee\SiteAdvisor\NPMcFFPlg32.dll
FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2156.0\npwinext.dll
FF - plugin: C:\Program Files (x86)\MyScrapNook_12EI\Installr\1.bin\NP12EISb.dll
FF - plugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\Users\Scott\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll
FF - plugin: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1167637.dll
FF - plugin: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll
FF - plugin: C:\Windows\SysWOW64\npDeployJava1.dll
FF - plugin: C:\Windows\SysWOW64\npmproxy.dll
.
============= SERVICES / DRIVERS ===============
.
R0 Lbd;Lbd;C:\Windows\System32\drivers\Lbd.sys [2011-10-15 69376]
R0 mfehidk;McAfee Inc. mfehidk;C:\Windows\System32\drivers\mfehidk.sys [2010-1-5 530304]
R0 mfewfpk;McAfee Inc. mfewfpk;C:\Windows\System32\drivers\mfewfpk.sys [2010-1-5 283744]
R0 PxHlpa64;PxHlpa64;C:\Windows\System32\drivers\PxHlpa64.sys [2007-11-5 55280]
R1 avkmgr;avkmgr;C:\Windows\System32\drivers\avkmgr.sys [2013-8-6 28600]
R1 cmdGuard;COMODO Internet Security Sandbox Driver;C:\Windows\System32\drivers\cmdGuard.sys [2010-6-4 584056]
R1 cmdHlp;COMODO Internet Security Helper Driver;C:\Windows\System32\drivers\cmdhlp.sys [2010-6-1 38144]
R1 mfenlfk;McAfee NDIS Light Filter;C:\Windows\System32\drivers\mfenlfk.sys [2010-1-5 75160]
R1 mwlPSDFilter;mwlPSDFilter;C:\Windows\System32\drivers\mwlPSDFilter.sys [2009-6-2 22576]
R1 mwlPSDNServ;mwlPSDNServ;C:\Windows\System32\drivers\mwlPSDNserv.sys [2009-6-2 20016]
R1 mwlPSDVDisk;mwlPSDVDisk;C:\Windows\System32\drivers\mwlPSDVDisk.sys [2009-6-2 60464]
R2 Akamai;Akamai NetSession Interface;C:\Windows\System32\svchost.exe -k Akamai [2009-7-13 27136]
R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\System32\atiesrxx.exe [2010-5-19 202752]
R2 AMD FUEL Service;AMD FUEL Service;C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-4-19 365568]
R2 AntiVirSchedulerService;Avira Scheduler;C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2013-8-6 84024]
R2 AntiVirService;Avira Real-Time Protection;C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2013-8-6 108088]
R2 avgntflt;avgntflt;C:\Windows\System32\drivers\avgntflt.sys [2013-8-6 105344]
R2 DsiWMIService;Dritek WMI Service;C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2010-5-19 325200]
R3 amdiox64;AMD IO Driver;C:\Windows\System32\drivers\amdiox64.sys [2011-6-1 46136]
R3 cfwids;McAfee Inc. cfwids;C:\Windows\System32\drivers\cfwids.sys [2010-1-5 63056]
R3 k57nd60a;Broadcom NetLink ™ Gigabit Ethernet - NDIS 6.0;C:\Windows\System32\drivers\k57nd60a.sys [2009-10-16 321064]
R3 mfeavfk;McAfee Inc. mfeavfk;C:\Windows\System32\drivers\mfeavfk.sys [2010-1-5 190520]
R3 mfefirek;McAfee Inc. mfefirek;C:\Windows\System32\drivers\mfefirek.sys [2010-1-5 441840]
R3 PTSimBus;PenTablet Bus Enumerator;C:\Windows\System32\drivers\PTSimBus.sys [2009-6-18 27304]
R3 usbfilter;AMD USB Filter Driver;C:\Windows\System32\drivers\usbfilter.sys [2010-5-19 38456]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S3 danewFltr;NewDeathAdder Mouse;C:\Windows\System32\drivers\danew.sys [2010-8-24 12032]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);C:\Windows\System32\drivers\ssudbus.sys [2012-8-9 82112]
S3 fssfltr;fssfltr;C:\Windows\System32\drivers\fssfltr.sys [2011-3-18 48480]
S3 Lavasoft Kernexplorer;Lavasoft helper driver;C:\Program Files (x86)\Lavasoft\Ad-Aware\kernexplorer64.sys [2011-10-15 17152]
S3 mferkdet;McAfee Inc. mferkdet;C:\Windows\System32\drivers\mferkdet.sys [2010-1-5 94992]
S3 PTSimHid;PenTablet Simulated HID MiniDriver;C:\Windows\System32\drivers\PTSimHid.sys [2009-6-18 17064]
S3 pwdrvio;pwdrvio;C:\Windows\System32\pwdrvio.sys [2011-10-17 19032]
S3 pwdspio;pwdspio;C:\Windows\System32\pwdspio.sys [2011-10-17 12384]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\System32\drivers\RtsUStor.sys [2010-5-4 239136]
S3 ssudmdm;SAMSUNG  Mobile USB Modem Drivers (DEVGURU Ver.);C:\Windows\System32\drivers\ssudmdm.sys [2012-8-9 202560]
S3 ssudnflt;Remote NDIS Filter Driver;C:\Windows\System32\drivers\ssudnflt.sys [2012-8-9 19520]
S3 ssudserd;SAMSUNG Mobile USB Diagnostic Serial Port(DEVGURU Ver.);C:\Windows\System32\drivers\ssudserd.sys [2012-8-9 202560]
S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\drivers\usbaapl64.sys [2012-9-28 53760]
S3 WDC_SAM;WD SCSI Pass Thru driver;C:\Windows\System32\drivers\wdcsam64.sys [2012-6-13 14464]
S4 AntiVirWebService;Avira Web Protection;C:\Program Files (x86)\Avira\AntiVir Desktop\avwebgrd.exe [2013-8-6 815160]
.
=============== Created Last 30 ================
.
2013-10-15 17:47:41    --------    d-----w-    C:\Users\Scott\AppData\Roaming\Fastest
2013-10-15 17:46:55    --------    d-----w-    C:\Program Files (x86)\Fastest Video Converter
2013-10-15 05:16:35    --------    d-----w-    C:\Users\Scott\AppData\Local\Deshaker
2013-10-01 19:33:13    --------    d-----w-    C:\Users\Scott\AppData\Local\{A286C9AD-CF9A-4584-BC2F-0546E0C2A4A4}
2013-09-25 23:52:14    --------    d-----w-    C:\Windows\SysWow64\TabletPmt
2013-09-25 23:52:14    --------    d-----w-    C:\Program Files (x86)\TABLET
.
==================== Find3M  ====================
.
2013-10-09 02:04:45    71048    ----a-w-    C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2013-10-09 02:04:45    692616    ----a-w-    C:\Windows\SysWow64\FlashPlayerApp.exe
2013-09-09 03:21:44    81112    ----a-w-    C:\Windows\System32\drivers\avnetflt.sys
2013-09-09 03:21:44    105344    ----a-w-    C:\Windows\System32\drivers\avgntflt.sys
2013-09-05 20:06:12    1443328    ----a-w-    C:\Windows\System32\CFHD.dll
2013-09-05 20:03:20    1474560    ----a-w-    C:\Windows\SysWow64\CFHD.dll
2013-09-03 18:04:29    12872    ----a-w-    C:\Windows\System32\bootdelete.exe
2013-08-06 17:24:06    28600    ----a-w-    C:\Windows\System32\drivers\avkmgr.sys
.
============= FINISH: 11:48:52.35 ===============
 

Attached Files



#4 bloopie

bloopie

    Bleepin' Sith Turner


  • Malware Response Team
  • 7,927 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:New York
  • Local time:04:26 PM

Posted 24 October 2013 - 06:33 PM

Hello stqcb, and welcome to Bleeping Computer! :)

 

We apologize for the delay in response to your topic, the forum can get busy at times but I'm here to assist you now!

My name is bloopie and I'll be helping you with your problems as best I can! :thumbup2:

A few things to keep in mind while we are working together:

  • If you have since resolved the original problem you were having, I would appreciate it if you let me know.
  • If you are unsure about any of the steps just post what you can and I will guide you!
  • Please tell me if you have your original Windows CD/DVD available.
  • Please copy and paste all logs here unless otherwise instructed!
  • Upon completing the steps below I will review your topic an do my best to resolve your issues.
  • Please do not run any other tools without my instruction to do so!

==========

First, I must issue you a warning about multiple antivirus programs running:

I do not recommend that you have more than one anti-virus product installed and running on your computer at a time. The reason for this is that if both products have their automatic (Real-Time) protection switched on, then those products which do not encrypt the virus strings within them can cause other anti-virus products to cause "false alarms". It can also lead to a clash as both products fight for access to files which are opened again this is the resident/automatic protection. In general terms, the two programs may conflict and cause:
1) False Alarms: When the anti virus software tells you that your PC has a virus when it actually doesn't.
2) System Performance Problems: Your system may lock up due to both products attempting to access the same file at the same time.
Therefore please go to add/remove in the control panel and remove either McAfee Internet Security Suite or Avira Free Antivirus (my personal suggestion would be to remove McAfee, but the choice is of course yours).

==========

In addition to the above, I see you also have two firewall programs running. I'd recommend keeping only one running at a time as well. Let me know what you decide to do with either of the above AV's and FW's!

==========

Another thing I must warn you about:

Going over your logs I noticed that you have BitTorrent installed.

  • Avoid gaming sites, pirated software, cracking tools, keygens, and peer-to-peer (P2P) file sharing programs.
  • They are a security risk which can make your computer susceptible to a wide variety of malware infections, remote attacks, exposure of personal information, and identity theft. Many malicious worms and Trojans spread across P2P file sharing networks, gaming and underground sites.
  • Users visiting such pages may see innocuous-looking banner ads containing code which can trigger pop-up ads and malicious Flash ads that install viruses, Trojans and spyware. Ads are a target for hackers because they offer a stealthy way to distribute malware to a wide range of Internet users.
  • The best way to reduce the risk of infection is to avoid these types of web sites and not use any P2P applications.

It is pretty much certain that if you continue to use P2P programs, you will get infected again.
I would recommend that you uninstall BitTorrent, however that choice is up to you. If you choose to remove these programs, you can do so via Start > Computer > Programs and Features.
If you wish to keep it, please do not use it until your computer is cleaned.

==========

Once the above is taken care of, there are a few orphans and entries in your log we should have a look at, so we will begin with Combofix. The instructions for running the tool is below:

Run Combofix

You may be asked to install or update the Recovery Console (Win XP Only) if this happens please allow it to do so (you will need to be connected to the internet for this)

Before you run Combofix I will need you to turn off any security software you have running, If you do not know how to do this you can find out here or here

Combofix may need to reboot your computer more than once to do its job...this is normal.

You can download Combofix from one of these links.

  • Close any open browsers or any other programs that are open.
  • Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.
  • Double click on combofix.exe & follow the prompts.
  • When finished, it will produce a report for you C:\Combofix.txt. Please include that in your next reply.

Note 1: Do not mouseclick combofix's window while it's running. That may cause it to stall

Note 2: If you receive an error "Illegal operation attempted on a registery key that has been marked for deletion." Please restart the computer

==========

In your next reply please include the log from Combofix, and also let me know how the machine is running now!

bloopie



#5 stqcb

stqcb
  • Topic Starter

  • Members
  • 52 posts
  • OFFLINE
  •  
  • Local time:03:26 PM

Posted 26 October 2013 - 03:32 PM

Hi bloopie,

 

Thanks for helping me out with this.

 

To answer a few of your questions:

 

1. I do not have a copy of Windows. It came installed with the system. However I made a recovery disk as instructed by the manual.

2. I've removed McAfee Internet Security Suite. I assume that it also removes the McAfee firewall? Or do I have to remove the firewall separately?

3. I removed BitTorrent, although that was under my brothers user.

 

As for how my computer is currently performing, there's been no change since my second post. Computer is still slow, Youtube redirect hasn't happened at all, and the erasethatdebt.com pop up still happens. As a matter of fact, as I opened Firefox to reply to your post 3 tabs popped up with the erasethatdebt.com site.

 

 

 

Now to ComboFix.

 

I tried it a few times but it doesn't seem to be working. I followed the instructions by closing all programs and disabling antivirus and firewall programs. I also tried it several times both by double clicking on ComboFix.exe and right clicking and choosing "run as administrator", restarting the computer between each try. But it says Incompatible OS.

 

Here's a video of one of my tries.

http://youtu.be/5Ek7al_lvh4

 

Several minutes after that I got a pop up saying. "Windows cannot find 'C:\ComboFix\CF971.3XE'. Make sure you typed the name correctly, and then try again."

 

When I checked the C:/ drive there was not Combofix.txt file. However there was 2 folders created by ComboFix. One named "ComboFix" and another named "32788R22FWJFW", both with various files in them.



#6 bloopie

bloopie

    Bleepin' Sith Turner


  • Malware Response Team
  • 7,927 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:New York
  • Local time:04:26 PM

Posted 26 October 2013 - 04:15 PM

Hello again,
 

Thanks for helping me out with this.

It's my pleasure!! :)

Thanks for removing some programs I mentioned...It will make our job much easier and faster! To be sure, I still need to see another log so I know what has been removed and what hasn't...

Also, thanks for the video, but CF did not run properly so there is no log. Let's get another log from a different tool now, FRST:

Please download Farbar Recovery Scan Tool and save it to your Desktop.

Note: You need to run the version compatible with your system...You need the 64-bit Version.

  • Right click to run as administrator (XP users click run after receipt of Windows Security Warning - Open File). When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will produce a log called FRST.txt in the same directory the tool is run from.
  • Please copy and paste log back here.
  • The first time the tool is run it generates another log (Addition.txt - also located in the same directory as FRST64.exe). Please also paste that along with the FRST.txt into your reply.

bloopie



#7 stqcb

stqcb
  • Topic Starter

  • Members
  • 52 posts
  • OFFLINE
  •  
  • Local time:03:26 PM

Posted 26 October 2013 - 04:49 PM

To be sure, I still need to see another log so I know what has been removed and what hasn't...

 

Hi, by this do you mean you need to see another DDS log, or just the FRST?

 

 

 

 

Here is the FRST.txt log.

 

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-10-2013 01
Ran by Scott (administrator) on HENRY-PC on 26-10-2013 17:32:00
Running from C:\Users\Scott\Desktop
Windows 7 Home Premium (X64) OS Language: English(US)
Internet Explorer Version 9
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
(AMD) C:\Windows\system32\atiesrxx.exe
(AMD) C:\Windows\system32\atieclxx.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
(Egis Technology Inc.) C:\Program Files (x86)\EgisTec MyWinLocker\x86\MWLService.exe
(NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
(NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler64.exe
(Acer Group) C:\Program Files\Acer\Acer Updater\UpdaterService.exe
(Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
(Tablet Driver) C:\Windows\System32\Drivers\WTSRV.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apoint.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(GoPro) C:\Program Files (x86)\CineForm\Tools\GoProCineFormStatusViewer.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApMsgFwd.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\HidFind.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe
() C:\Program Files (x86)\Razer\DeathAdder\razerhid.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Tablet Driver) C:\Windows\SysWOW64\WTClient.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMworker.exe
(Razer Inc.) C:\Program Files (x86)\Razer\DeathAdder\razerofa.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe
(McAfee, Inc.) c:\PROGRA~2\mcafee\SITEAD~1\saui.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10081312 2010-02-25] (Realtek Semiconductor)
HKLM\...\Run: [Apoint] - C:\Program Files\Apoint2K\Apoint.exe [345648 2010-03-27] (Alps Electric Co., Ltd.)
HKLM\...\Run: [Acer ePower Management] - C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [860192 2010-02-05] (Acer Incorporated)
HKLM\...\Run: [COMODO Internet Security] - C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [9577680 2012-11-07] (COMODO)
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKCU\...\Run: [AdobeBridge] - [x]
MountPoints2: {241baab1-2bd5-11e0-869a-001167b4971b} - E:\Start.exe
HKLM-x32\...\Run: [LManager] - C:\Program Files (x86)\Launch Manager\LManager.exe [1300560 2010-03-04] (Dritek System Inc.)
HKLM-x32\...\Run: [DeathAdder] - C:\Program Files (x86)\Razer\DeathAdder\razerhid.exe [251392 2010-05-05] ()
HKLM-x32\...\Run: [GrooveMonitor] - C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-04-19] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59280 2012-11-28] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2012-10-25] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152544 2012-12-12] (Apple Inc.)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [347192 2013-09-08] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [WTClient] - C:\Windows\\SysWOW64\WTClient.exe [32768 2009-10-30] (Tablet Driver)
HKU\Default\...\RunOnce: [ScrSav] - C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe [154144 2010-01-14] ()
HKU\Default User\...\RunOnce: [ScrSav] - C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe [154144 2010-01-14] ()
HKU\Eri\...\Run: [swg] - C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2010-05-04] (Google Inc.)
HKU\Eri\...\Run: [Global Registration] - C:\Program Files (x86)\Acer\Registration\GREG.exe [2846240 2009-08-28] (Acer Incorporated)
HKU\Eri\...\Run: [SearchProtect] - C:\Users\Eri\AppData\Roaming\SearchProtect\bin\cltmng.exe
HKU\Henry\...\Run: [Global Registration] - C:\Program Files (x86)\Acer\Registration\GREG.exe [2846240 2009-08-28] (Acer Incorporated)
HKU\Henry\...\Run: [Google Update] - C:\Users\Henry\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2012-08-27] (Google Inc.)
HKU\Henry\...\Run: [Nike+ Connect] - C:\Users\Henry\AppData\Local\Nike\Nike+ Connect\Nike+ Connect daemon.exe [70656 2012-09-28] (Nike)
HKU\Henry\...\Run: [Steam] - C:\Program Files (x86)\Steam\Steam.exe [1610664 2013-07-24] (Valve Corporation)
HKU\Henry\...\Run: [SearchProtect] - C:\Users\Henry\AppData\Roaming\SearchProtect\bin\cltmng.exe
AppInit_DLLs:    C:\Windows\system32\guard64.dll [390392 2012-11-07] (COMODO)
AppInit_DLLs-x32: C:\Windows\SysWOW64\guard32.dll [301264 2012-11-07] (COMODO)
BootExecute: autocheck autochk * lsdelete

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=1009&m=aspire_7552&r=27360810y306l0418z185t45l1q218
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=1009&m=aspire_7552&r=27360810y306l0418z185t45l1q218
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l=1009&m=aspire_7552&r=27360810y306l0418z185t45l1q218
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=1009&m=aspire_7552&r=27360810y306l0418z185t45l1q218
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l=1009&m=aspire_7552&r=27360810y306l0418z185t45l1q218
URLSearchHook: HKCU - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Toolbar: HKLM-x32 - @C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2156.0\npwinext.dll,-100 - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2156.0\npwinext.dll (Microsoft Corporation)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
DPF: HKLM-x32 {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} -  No File
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1

FireFox:
========
FF ProfilePath: C:\Users\Scott\AppData\Roaming\Mozilla\Firefox\Profiles\maiwtmgt.default
FF SelectedSearchEngine: Google
FF Homepage: www.yahoo.ca
FF NetworkProxy: "autoconfig_url", "https://mediahint.com/default.pac"
FF NetworkProxy: "type", 2
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll (Adobe Systems, Inc.)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @ei.MyScrapNook_12.com/Plugin - C:\Program Files (x86)\MyScrapNook_12EI\Installr\1.bin\NP12EISB.dll (My Scrap Nook)
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin - C:\Program Files (x86)\Java\jre7\bin\new_plugin\npjp2.dll No File
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/SAFFPlugin - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpWinExt,version=5.0 - C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2156.0\npwinext.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Scott\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Scott\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Extension: Ant Video Downloader - C:\Users\Scott\AppData\Roaming\Mozilla\Firefox\Profiles\maiwtmgt.default\Extensions\anttoolbar@ant.com
FF Extension: close - C:\Users\Scott\AppData\Roaming\Mozilla\Firefox\Profiles\maiwtmgt.default\Extensions\close@doubleclick.xpi
FF Extension: mediahint - C:\Users\Scott\AppData\Roaming\Mozilla\Firefox\Profiles\maiwtmgt.default\Extensions\mediahint@jetpack.xpi
FF Extension: mytube - C:\Users\Scott\AppData\Roaming\Mozilla\Firefox\Profiles\maiwtmgt.default\Extensions\mytube@ashishmishra.in.xpi
FF Extension: personas - C:\Users\Scott\AppData\Roaming\Mozilla\Firefox\Profiles\maiwtmgt.default\Extensions\personas@christopher.beard.xpi
FF Extension: quickdrag - C:\Users\Scott\AppData\Roaming\Mozilla\Firefox\Profiles\maiwtmgt.default\Extensions\quickdrag@mozilla.ktechcomputing.com.xpi
FF Extension: tabscroll - C:\Users\Scott\AppData\Roaming\Mozilla\Firefox\Profiles\maiwtmgt.default\Extensions\tabscroll@mthamil.xpi
FF Extension: tabmix - C:\Users\Scott\AppData\Roaming\Mozilla\Firefox\Profiles\maiwtmgt.default\Extensions\{dc572301-7619-498c-a57d-39143191b318}.xpi
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF HKLM-x32\...\Firefox\Extensions: [msntoolbar@msn.com] - C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2156.0\Firefox
FF Extension: Bing Bar - C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2156.0\Firefox
FF HKLM-x32\...\Firefox\Extensions: [{27182e60-b5f3-411c-b545-b44205977502}] - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\firefoxextension\SearchHelperExtension\
FF Extension: Search Helper Extension - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\firefoxextension\SearchHelperExtension\
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor
FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor
FF HKLM-x32\...\Firefox\Extensions: [fbphotozoom@installdaddy.com] - C:\Program Files (x86)\fbphotozoom\fbphotozoom14.xpi

Chrome:
=======
CHR HomePage: hxxp://www.google.com
CHR RestoreOnStartup: "hxxp://www.google.com"
CHR DefaultSearchURL: (Conduit) - http://search.conduit.com/Results.aspx?q={searchTerms}&SearchSource=49&CUI=UN10353211296748280&ctid=CT3287822&UM=2
CHR DefaultSuggestURL: (Conduit) - http://suggest.search.conduit.com/CSuggestJson.ashx?prefix={searchTerms}&CUI=UN10353211296748280&UM=2
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Users\Scott\AppData\Local\Google\Chrome\Application\30.0.1599.69\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Users\Scott\AppData\Local\Google\Chrome\Application\30.0.1599.69\pdf.dll ()
CHR Plugin: (Shockwave Flash) - C:\Users\Scott\AppData\Local\Google\Chrome\Application\30.0.1599.69\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll No File
CHR Plugin: (McAfee SiteAdvisor) - C:\Users\Scott\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.41.123.2_0\McChPlg.dll No File
CHR Plugin: (McAfee SiteAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.)
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll No File
CHR Plugin: (Microsoft\u00AE Windows Media Player Firefox Plugin) - C:\Program Files (x86)\Mozilla Firefox\plugins\np-mswmp.dll (Microsoft Corporation)
CHR Plugin: (BitCometAgent) - C:\Program Files (x86)\Mozilla Firefox\plugins\npBitCometAgent.dll (BitComet)
CHR Plugin: (Java Deployment Toolkit 7.0.40.255) - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
CHR Plugin: (QuickTime Plug-in 7.7.1) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.1) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin2.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.1) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin3.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.1) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin4.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.1) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin5.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.1) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin6.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.1) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin7.dll (Apple Inc.)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File
CHR Plugin: (Bing Bar) - C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2156.0\npwinext.dll (Microsoft Corporation)
CHR Plugin: (Pando Web Plugin) - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (iTunes Application Detector) - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
CHR Plugin: (Shockwave for Director) - C:\Windows\system32\Adobe\Director\np32dsw.dll No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.0.60129.0\npctrl.dll No File
CHR Extension: (YouTube) - C:\Users\Scott\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Tab Position Customizer) - C:\Users\Scott\AppData\Local\Google\Chrome\User Data\Default\Extensions\cldflinjcjehpjddjkohganfpjlnbpem\2.8.2_0
CHR Extension: (Google Search) - C:\Users\Scott\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Tab Manager) - C:\Users\Scott\AppData\Local\Google\Chrome\User Data\Default\Extensions\coonecdghnepgiblpccbbihiahajndda\3.13_0
CHR Extension: (SiteAdvisor) - C:\Users\Scott\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.6.3.1271_0
CHR Extension: (Drag and Go) - C:\Users\Scott\AppData\Local\Google\Chrome\User Data\Default\Extensions\jaikcnhlohebodlpkmjepipngegjbfpg\1.9.0.3_0
CHR Extension: (Super Drag) - C:\Users\Scott\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbjeigngkfagmefkkkmhaeechmohhneo\1.0_0
CHR Extension: (Double Click Closes Tab) - C:\Users\Scott\AppData\Local\Google\Chrome\User Data\Default\Extensions\megplcpdkmjjoondippkedoaidkeikcm\1.0.9_0
CHR Extension: (Chrome In-App Payments service) - C:\Users\Scott\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0
CHR Extension: (Gmail) - C:\Users\Scott\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx
CHR HKLM-x32\...\Chrome\Extension: [mpieaakhacmfleokhjcjnpcnmnmpfkid] - C:\Program Files (x86)\fbphotozoom\fbphotozoom14.crx
CHR HKLM-x32\...\Chrome\Extension: [oajgghejjpgkmpgbchgjieahoefimdle] - C:\Users\Scott\AppData\Local\CRE\oajgghejjpgkmpgbchgjieahoefimdle.crx
CHR StartMenuInternet: Google Chrome - C:\Users\Scott\AppData\Local\Google\Chrome\Application\chrome.exe

==================== Services (Whitelisted) =================

R2 Akamai; c:\program files (x86)\common files\akamai/netsession_win_8fa3539.dll [4569856 2013-07-01] (Akamai Technologies, Inc.)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [365568 2011-04-19] (Advanced Micro Devices, Inc.)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-09-08] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-09-08] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [815160 2013-09-08] (Avira Operations GmbH & Co. KG)
S4 BlueSoleil Hid Service; C:\Program Files (x86)\IVT Corporation\BlueSoleil\BTNtService.exe [166520 2007-12-27] ()
R2 cmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2828408 2012-11-07] (COMODO)
S4 iTeleportService; C:\Program Files (x86)\iTeleport\iTeleport Connect\iTeleportService.exe [20480 2011-04-11] (Microsoft)
S2 Lavasoft Ad-Aware Service; C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe [2152152 2011-10-29] (Lavasoft Limited)
R2 McAfee SiteAdvisor Service; c:\PROGRA~2\mcafee\SITEAD~1\McSACore.exe [121616 2013-10-02] (McAfee, Inc.)
R2 MWLService; C:\Program Files (x86)\EgisTec MyWinLocker\x86\MWLService.exe [305520 2010-02-01] (Egis Technology Inc.)
S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [117264 2010-06-25] (CACE Technologies, Inc.)
S4 Start BT in service; C:\Program Files (x86)\IVT Corporation\BlueSoleil\StartSkysolSvc.exe [51816 2007-12-27] ()
R2 WDBackup; C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [1042808 2013-04-22] (Western Digital Technologies, Inc.)
R2 WDDriveService; C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [270192 2013-04-22] (Western Digital Technologies, Inc.)

==================== Drivers (Whitelisted) ====================

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105344 2013-09-08] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [132088 2013-09-08] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-08-06] (Avira Operations GmbH & Co. KG)
R3 BlueletAudio; C:\Windows\System32\DRIVERS\blueletaudio.sys [37896 2007-06-24] (IVT Corporation.)
R3 BlueletAudio; C:\Windows\SysWow64\DRIVERS\blueletaudio.sys [37896 2007-06-24] (IVT Corporation.)
R3 BlueletSCOAudio; C:\Windows\System32\DRIVERS\BlueletSCOAudio.sys [37384 2007-06-24] (IVT Corporation.)
R3 BlueletSCOAudio; C:\Windows\SysWow64\DRIVERS\BlueletSCOAudio.sys [37384 2007-06-24] (IVT Corporation.)
R3 BT; C:\Windows\System32\DRIVERS\btnetdrv.sys [25360 2007-03-05] (IVT Corporation.)
R3 BT; C:\Windows\SysWow64\DRIVERS\btnetdrv.sys [25360 2007-03-05] (IVT Corporation.)
S3 Btcsrusb; C:\Windows\System32\Drivers\btcusb.sys [47368 2007-06-24] (IVT Corporation.)
S3 Btcsrusb; C:\Windows\SysWow64\Drivers\btcusb.sys [47368 2007-06-24] (IVT Corporation.)
R0 BTHidEnum; C:\Windows\System32\Drivers\vbtenum.sys [24976 2007-03-05] (IVT Corporation.)
R0 BTHidEnum; C:\Windows\SysWow64\Drivers\vbtenum.sys [24976 2007-03-05] (IVT Corporation.)
R0 BTHidMgr; C:\Windows\System32\Drivers\BTHidMgr.sys [49680 2007-03-05] (IVT Corporation.)
R0 BTHidMgr; C:\Windows\SysWow64\Drivers\BTHidMgr.sys [49680 2007-03-05] (IVT Corporation.)
R1 cmdGuard; C:\Windows\System32\DRIVERS\cmdguard.sys [584056 2012-11-07] (COMODO)
R1 cmdHlp; C:\Windows\System32\DRIVERS\cmdhlp.sys [38144 2012-11-07] (COMODO)
R1 inspect; C:\Windows\System32\DRIVERS\inspect.sys [94288 2012-11-07] (COMODO)
S3 Lavasoft Kernexplorer; C:\Program Files (x86)\Lavasoft\Ad-Aware\KernExplorer64.sys [17152 2011-10-15] ()
R0 Lbd; C:\Windows\System32\DRIVERS\Lbd.sys [69376 2011-08-18] (Lavasoft AB)
S3 NPF; C:\Windows\System32\drivers\npf.sys [35344 2010-06-25] (CACE Technologies, Inc.)
S1 PQNTDrv; C:\Windows\SysWow64\Drivers\PQNTDrv.sys [4228 2002-09-16] (PowerQuest Corporation)
S3 pwdrvio; C:\Windows\system32\pwdrvio.sys [19032 2013-07-01] ()
S3 pwdspio; C:\Windows\system32\pwdspio.sys [12384 2013-07-01] ()
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [834544 2011-03-19] ()
S3 ssudnflt; C:\Windows\System32\DRIVERS\ssudnflt.sys [19520 2011-02-18] (DEVGURU Co., LTD.(www.devguru.co.kr))
S3 ssudserd; C:\Windows\System32\DRIVERS\ssudserd.sys [202560 2011-02-18] (DEVGURU Co., LTD.(www.devguru.co.kr))
R3 VComm; C:\Windows\System32\DRIVERS\VComm.sys [47120 2007-03-05] (IVT Corporation.)
R3 VComm; C:\Windows\SysWow64\DRIVERS\VComm.sys [47120 2007-03-05] (IVT Corporation.)
R3 VcommMgr; C:\Windows\System32\Drivers\VcommMgr.sys [63248 2007-03-05] (IVT Corporation.)
R3 VcommMgr; C:\Windows\SysWow64\Drivers\VcommMgr.sys [63248 2007-03-05] (IVT Corporation.)
S3 Andbus; system32\DRIVERS\lgandbus64.sys [x]
S3 AndDiag; system32\DRIVERS\lganddiag64.sys [x]
S3 AndGps; system32\DRIVERS\lgandgps64.sys [x]
S3 ANDModem; system32\DRIVERS\lgandmodem64.sys [x]
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-13] (Microsoft Corporation)
S3 motandroidusb; System32\Drivers\motoandroid.sys [x]
S3 motccgp; system32\DRIVERS\motccgp.sys [x]
S3 motccgpfl; system32\DRIVERS\motccgpfl.sys [x]
S3 MotoSwitchService; system32\DRIVERS\motswch.sys [x]
S3 Tablet2k; "%SystemRoot%\System32\Drivers\Tablet2k.sys" [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-10-26 17:31 - 2013-10-26 17:31 - 00000000 ____D C:\FRST
2013-10-26 17:30 - 2013-10-26 17:30 - 01956160 _____ (Farbar) C:\Users\Scott\Desktop\FRST64.exe
2013-10-26 15:17 - 2013-10-26 15:34 - 20757760 _____ C:\Users\Scott\Desktop\MVI_9307.avi
2013-10-26 15:15 - 2013-10-26 15:19 - 441893096 _____ C:\Users\Scott\Desktop\MVI_9307.MOV
2013-10-26 15:09 - 2013-10-26 15:09 - 00000000 ____D C:\ComboFix
2013-10-26 15:07 - 2013-10-26 15:09 - 00000000 ___SD C:\32788R22FWJFW
2013-10-26 12:37 - 2013-10-26 12:37 - 00000330 _____ C:\Start_.cmd
2013-10-26 12:37 - 2013-10-26 12:37 - 00000000 ____D C:\Qoobox
2013-10-26 12:34 - 2013-10-26 12:34 - 00000000 ____D C:\Windows\erdnt
2013-10-26 12:17 - 2013-10-26 12:17 - 05136694 ____R (Swearware) C:\Users\Scott\Desktop\ComboFix.exe
2013-10-26 00:16 - 2013-09-03 14:35 - 00278800 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2013-10-26 00:05 - 2013-10-26 00:06 - 00000000 ____D C:\Users\Scott\AppData\Roaming\BitTorrent
2013-10-24 11:49 - 2013-10-24 11:49 - 00014067 _____ C:\Users\Scott\Desktop\attach.txt
2013-10-24 11:49 - 2013-10-24 11:48 - 00020282 _____ C:\Users\Scott\Desktop\dds.txt
2013-10-20 17:23 - 2013-10-20 18:16 - 325188371 _____ C:\Users\Scott\Desktop\[ET]Super.Trio.Maximust.CH21[HDz].rmvb
2013-10-18 20:55 - 2013-10-18 20:55 - 00688992 ____R (Swearware) C:\Users\Scott\Desktop\dds.com
2013-10-18 20:43 - 2013-10-18 20:43 - 00003160 _____ C:\Windows\System32\Tasks\{6E72E098-C83D-4B2E-A5C4-D3E31F74962A}
2013-10-17 20:52 - 2013-10-17 20:52 - 101681232 _____ C:\Windows\SysWOW64\舨ÂŊᓑ癖
2013-10-15 13:47 - 2013-10-15 13:47 - 00000000 ____D C:\Users\Scott\AppData\Roaming\Fastest
2013-10-15 13:46 - 2013-10-15 13:47 - 00000000 ____D C:\Program Files (x86)\Fastest Video Converter
2013-10-15 01:16 - 2013-10-15 01:20 - 00000000 ____D C:\Users\Scott\AppData\Local\Deshaker
2013-10-15 01:05 - 2013-10-15 01:13 - 00000000 ____D C:\Users\Scott\Desktop\Virtual Dub 1.9.11
2013-10-13 23:24 - 2013-10-13 23:24 - 100838141 _____ C:\Windows\SysWOW64\舨Sħᓑ甡
2013-10-13 17:53 - 2013-10-26 14:59 - 00003622 _____ C:\Windows\System32\Tasks\Ad-Aware Update (Weekly)
2013-10-08 18:02 - 2013-10-11 10:44 - 00000000 ____D C:\Users\Scott\Desktop\How Great Thou Art
2013-10-08 13:44 - 2013-10-08 13:46 - 00000000 ____D C:\Users\Scott\Desktop\Pacific Rim (2013) DVDRip XviD-MAXSPEED
2013-10-05 13:42 - 2013-10-05 13:48 - 00003532 _____ C:\Windows\Tablet5500x4000M.ini
2013-10-05 11:04 - 2013-10-10 19:39 - 00000000 ____D C:\Users\Scott\Desktop\After Earth 2013 WEBRip XViD juggs
2013-10-01 20:15 - 2013-01-21 20:26 - 878957037 _____ C:\Users\Scott\Desktop\2012 Miss Asia Pageant Grand Finale.rmvb
2013-10-01 16:08 - 2013-10-01 20:13 - 826465104 _____ C:\Users\Scott\Desktop\2013 Miss Chinese International Pageant.rmvb
2013-10-01 15:33 - 2013-10-01 15:33 - 00000000 ____D C:\Users\Scott\AppData\Local\{A286C9AD-CF9A-4584-BC2F-0546E0C2A4A4}
2013-09-29 17:04 - 2013-10-15 12:32 - 00000000 ____D C:\Users\Scott\Desktop\MP4

==================== One Month Modified Files and Folders =======

2013-10-26 17:31 - 2013-10-26 17:31 - 00000000 ____D C:\FRST
2013-10-26 17:31 - 2010-08-23 09:47 - 00000898 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-10-26 17:30 - 2013-10-26 17:30 - 01956160 _____ (Farbar) C:\Users\Scott\Desktop\FRST64.exe
2013-10-26 17:17 - 2011-10-05 11:24 - 00000908 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3299844628-1602399189-1564944750-1003UA.job
2013-10-26 17:04 - 2013-01-09 19:44 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-10-26 16:41 - 2012-08-27 16:35 - 00000908 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3299844628-1602399189-1564944750-1001UA.job
2013-10-26 16:29 - 2013-08-26 15:47 - 00000109 _____ C:\Users\Scott\Desktop\New Text Document (3).txt
2013-10-26 15:34 - 2013-10-26 15:17 - 20757760 _____ C:\Users\Scott\Desktop\MVI_9307.avi
2013-10-26 15:31 - 2010-08-23 09:47 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-10-26 15:21 - 2010-05-19 21:39 - 01803452 _____ C:\Windows\WindowsUpdate.log
2013-10-26 15:19 - 2013-10-26 15:15 - 441893096 _____ C:\Users\Scott\Desktop\MVI_9307.MOV
2013-10-26 15:09 - 2013-10-26 15:09 - 00000000 ____D C:\ComboFix
2013-10-26 15:09 - 2013-10-26 15:07 - 00000000 ___SD C:\32788R22FWJFW
2013-10-26 15:08 - 2009-07-14 00:45 - 00017600 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-10-26 15:08 - 2009-07-14 00:45 - 00017600 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-10-26 14:59 - 2013-10-13 17:53 - 00003622 _____ C:\Windows\System32\Tasks\Ad-Aware Update (Weekly)
2013-10-26 14:58 - 2013-05-14 17:29 - 00008192 _____ C:\Windows\SysWOW64\WDPABKP.dat
2013-10-26 14:58 - 2012-07-17 11:07 - 00207856 _____ C:\aaw7boot.log
2013-10-26 14:58 - 2009-07-14 01:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-10-26 14:58 - 2009-07-14 00:51 - 00306806 _____ C:\Windows\setupact.log
2013-10-26 14:49 - 2009-07-14 01:13 - 00779266 _____ C:\Windows\system32\PerfStringBackup.INI
2013-10-26 14:17 - 2011-10-05 11:24 - 00000856 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3299844628-1602399189-1564944750-1003Core.job
2013-10-26 12:37 - 2013-10-26 12:37 - 00000330 _____ C:\Start_.cmd
2013-10-26 12:37 - 2013-10-26 12:37 - 00000000 ____D C:\Qoobox
2013-10-26 12:34 - 2013-10-26 12:34 - 00000000 ____D C:\Windows\erdnt
2013-10-26 12:17 - 2013-10-26 12:17 - 05136694 ____R (Swearware) C:\Users\Scott\Desktop\ComboFix.exe
2013-10-26 11:01 - 2011-04-12 10:07 - 00000064 _____ C:\Windows\SysWOW64\rp_stats.dat
2013-10-26 11:01 - 2011-04-12 10:07 - 00000044 _____ C:\Windows\SysWOW64\rp_rules.dat
2013-10-26 10:49 - 2010-05-04 00:53 - 00000000 ____D C:\ProgramData\McAfee
2013-10-26 10:49 - 2010-05-04 00:53 - 00000000 ____D C:\Program Files (x86)\McAfee
2013-10-26 10:48 - 2010-05-04 01:06 - 00230130 _____ C:\Windows\PFRO.log
2013-10-26 00:06 - 2013-10-26 00:05 - 00000000 ____D C:\Users\Scott\AppData\Roaming\BitTorrent
2013-10-26 00:06 - 2010-11-10 19:12 - 00000000 ____D C:\Program Files (x86)\BitTorrent
2013-10-25 20:13 - 2013-04-07 00:09 - 00000774 _____ C:\Users\Scott\Desktop\Restaurants.txt
2013-10-25 19:40 - 2012-08-27 16:35 - 00000856 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3299844628-1602399189-1564944750-1001Core.job
2013-10-25 15:48 - 2013-07-13 14:10 - 00012893 _____ C:\Users\Scott\Desktop\New Text Document (2).txt
2013-10-25 15:47 - 2013-07-12 22:10 - 00000000 ____D C:\Users\Scott\Desktop\Toronto Then and Now Project
2013-10-24 21:07 - 2011-04-08 12:15 - 00000000 ____D C:\Users\Scott\Desktop\Setup Softwares
2013-10-24 17:27 - 2010-08-29 19:40 - 00016453 _____ C:\Users\Scott\Desktop\New Text Document.txt
2013-10-24 11:49 - 2013-10-24 11:49 - 00014067 _____ C:\Users\Scott\Desktop\attach.txt
2013-10-24 11:48 - 2013-10-24 11:49 - 00020282 _____ C:\Users\Scott\Desktop\dds.txt
2013-10-22 12:32 - 2013-07-12 19:07 - 00000000 ____D C:\Users\Scott\Desktop\Doctor's Notes
2013-10-22 12:14 - 2010-11-09 00:42 - 00000000 ____D C:\Users\Scott\AppData\Roaming\Canon
2013-10-20 18:16 - 2013-10-20 17:23 - 325188371 _____ C:\Users\Scott\Desktop\[ET]Super.Trio.Maximust.CH21[HDz].rmvb
2013-10-20 11:53 - 2010-09-18 20:57 - 00000000 ____D C:\Users\Eri\AppData\Local\Google
2013-10-18 20:55 - 2013-10-18 20:55 - 00688992 ____R (Swearware) C:\Users\Scott\Desktop\dds.com
2013-10-18 20:43 - 2013-10-18 20:43 - 00003160 _____ C:\Windows\System32\Tasks\{6E72E098-C83D-4B2E-A5C4-D3E31F74962A}
2013-10-17 20:52 - 2013-10-17 20:52 - 101681232 _____ C:\Windows\SysWOW64\舨ÂŊᓑ癖
2013-10-17 11:36 - 2010-12-22 21:46 - 00000000 ____D C:\Users\Scott\Desktop\Rubik's Timer
2013-10-16 23:32 - 2010-12-13 11:59 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2013-10-15 16:28 - 2013-06-05 17:06 - 00000000 ____D C:\Users\Scott\Desktop\Super Trio
2013-10-15 14:40 - 2010-08-23 09:39 - 00000000 ___RD C:\Users\Scott\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-10-15 13:47 - 2013-10-15 13:47 - 00000000 ____D C:\Users\Scott\AppData\Roaming\Fastest
2013-10-15 13:47 - 2013-10-15 13:46 - 00000000 ____D C:\Program Files (x86)\Fastest Video Converter
2013-10-15 12:32 - 2013-09-29 17:04 - 00000000 ____D C:\Users\Scott\Desktop\MP4
2013-10-15 01:20 - 2013-10-15 01:16 - 00000000 ____D C:\Users\Scott\AppData\Local\Deshaker
2013-10-15 01:13 - 2013-10-15 01:05 - 00000000 ____D C:\Users\Scott\Desktop\Virtual Dub 1.9.11
2013-10-13 23:24 - 2013-10-13 23:24 - 100838141 _____ C:\Windows\SysWOW64\舨Sħᓑ甡
2013-10-11 11:46 - 2013-05-24 17:00 - 559209411 _____ C:\Windows\MEMORY.DMP
2013-10-11 11:46 - 2010-12-09 18:25 - 00000000 ____D C:\Windows\Minidump
2013-10-11 10:44 - 2013-10-08 18:02 - 00000000 ____D C:\Users\Scott\Desktop\How Great Thou Art
2013-10-10 19:39 - 2013-10-05 11:04 - 00000000 ____D C:\Users\Scott\Desktop\After Earth 2013 WEBRip XViD juggs
2013-10-10 15:56 - 2010-08-24 09:06 - 00000000 ____D C:\Users\Scott\Desktop\My Document Files
2013-10-10 15:12 - 2012-01-21 20:58 - 00000000 ____D C:\Users\Scott\Desktop\Magic Lantern for 60D
2013-10-09 14:12 - 2011-10-05 11:24 - 00003878 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3299844628-1602399189-1564944750-1003UA
2013-10-09 14:12 - 2011-10-05 11:24 - 00003482 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3299844628-1602399189-1564944750-1003Core
2013-10-08 22:04 - 2013-01-09 19:44 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-10-08 22:04 - 2012-08-03 22:10 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-10-08 22:04 - 2011-05-28 15:29 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-10-08 17:14 - 2010-12-01 12:18 - 00000132 _____ C:\Users\Scott\AppData\Roaming\Adobe PNG Format CS5 Prefs
2013-10-08 15:26 - 2010-08-23 09:47 - 00003894 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-10-08 15:26 - 2010-08-23 09:47 - 00003642 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-10-08 14:27 - 2010-09-04 17:11 - 00000000 ____D C:\Users\Scott\AppData\Roaming\uTorrent
2013-10-08 13:46 - 2013-10-08 13:44 - 00000000 ____D C:\Users\Scott\Desktop\Pacific Rim (2013) DVDRip XviD-MAXSPEED
2013-10-05 13:48 - 2013-10-05 13:42 - 00003532 _____ C:\Windows\Tablet5500x4000M.ini
2013-10-04 17:13 - 2010-11-10 19:11 - 00000000 ____D C:\Users\Henry\AppData\Roaming\BitTorrent
2013-10-04 15:07 - 2012-11-21 19:27 - 00000000 ____D C:\Program Files (x86)\Steam
2013-10-01 20:13 - 2013-10-01 16:08 - 826465104 _____ C:\Users\Scott\Desktop\2013 Miss Chinese International Pageant.rmvb
2013-10-01 15:33 - 2013-10-01 15:33 - 00000000 ____D C:\Users\Scott\AppData\Local\{A286C9AD-CF9A-4584-BC2F-0546E0C2A4A4}
2013-09-30 13:59 - 2011-06-14 13:47 - 00000000 ____D C:\Users\Scott\Documents\Any Video Converter
2013-09-30 13:58 - 2013-09-25 15:45 - 00000000 ____D C:\Users\Scott\Desktop\Sally is Intimately Yours Concert
2013-09-27 12:47 - 2010-05-04 01:36 - 00001024 ___RH C:\Users\Public\Documents\NTILiveUpdate.dll

Some content of TEMP:
====================
C:\Users\Eri\AppData\Local\Temp\AskSLib.dll
C:\Users\Eri\AppData\Local\Temp\COMAP.EXE
C:\Users\Eri\AppData\Local\Temp\MotoCast_Installer_2.0.19.exe
C:\Users\Eri\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Henry\AppData\Local\Temp\7za.exe
C:\Users\Henry\AppData\Local\Temp\ADKAppsOfferManager.dll
C:\Users\Henry\AppData\Local\Temp\AskSLib.dll
C:\Users\Henry\AppData\Local\Temp\BunndleOfferManager.dll
C:\Users\Henry\AppData\Local\Temp\COMAP.EXE
C:\Users\Henry\AppData\Local\Temp\DigitalMediaConverter.exe
C:\Users\Henry\AppData\Local\Temp\install_flashplayer11x32ax_aih.exe
C:\Users\Henry\AppData\Local\Temp\swt-win32-3349.dll
C:\Users\Henry\AppData\Local\Temp\swt-win32-3448.dll
C:\Users\Henry\AppData\Local\Temp\utt199.tmp.exe
C:\Users\Henry\AppData\Local\Temp\utt2C01.tmp.exe
C:\Users\Henry\AppData\Local\Temp\utt687.tmp.exe
C:\Users\Henry\AppData\Local\Temp\utt8549.tmp.exe
C:\Users\Henry\AppData\Local\Temp\uttA867.tmp.exe
C:\Users\Henry\AppData\Local\Temp\uttB0BA.tmp.exe
C:\Users\Henry\AppData\Local\Temp\uttF98C.tmp.exe
C:\Users\My En\AppData\Local\Temp\AskSLib.dll


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-10-21 19:00

==================== End Of Log ============================

 

 

 

 

 

 

 

And here's the Addition.txt log.

 

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-10-2013 01
Ran by Scott at 2013-10-26 17:38:16
Running from C:\Users\Scott\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: Avira Desktop (Enabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Enabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: COMODO Defense+ (Enabled - Up to date) {FEEA52D5-051E-08DD-07EF-2F009097607D}
AS: Lavasoft Ad-Watch Live! (Disabled - Up to date) {24938260-56EE-C1E5-047B-DC2BDD234BAB}
FW: COMODO Firewall (Enabled) {7DB03214-694B-060B-1600-BD4715C36DBB}

==================== Installed Programs ======================

7-Zip 9.20 (x32)
Acer Backup Manager (x32 Version: 2.0.0.60)
Acer Crystal Eye Webcam (x32 Version: 5.2.11.2)
Acer ePower Management (x32 Version: 5.00.3002)
Acer eRecovery Management (x32 Version: 4.05.3007)
Acer Game Console (x32)
Acer Games (x32 Version: 1.0.0.80)
Acer Registration (x32 Version: 1.02.3006)
Acer ScreenSaver (x32 Version: 1.1.0507.2010)
Acer Updater (x32 Version: 1.02.3001)
Acrobat.com (x32 Version: 1.6.65)
Active@ ISO Burner (x32 Version: 2.1.0)
Ad-Aware (x32 Version: 9.5.0)
Add or Remove Adobe Premiere Pro CS5 (x32 Version: 5.0)
Adobe AIR (x32 Version: 1.5.3.9120)
Adobe Community Help (x32 Version: 3.0.0)
Adobe Community Help (x32 Version: 3.0.0.400)
Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.117)
Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.117)
Adobe Media Player (x32 Version: 1.8)
Adobe Photoshop CS5 (x32 Version: 12.0)
Adobe Reader XI (x32 Version: 11.0.00)
Adobe Shockwave Player 12.0 (x32 Version: 12.0.2.122)
Akamai NetSession Interface (HKCU)
Akamai NetSession Interface Service (x32)
ALPS Touch Pad Driver (Version: 7.105.2015.1111)
AMD APP SDK Runtime (Version: 2.4.595.10)
AMD Fuel (Version: 2011.0419.2218.38209)
AMD USB Filter Driver (x32 Version: 1.0.15.94)
AMD VISION Engine Control Center (x32 Version: 2011.0419.2218.38209)
Any Video Converter 3.2.3 (x32)
Apple Application Support (x32 Version: 2.3.2)
Apple Mobile Device Support (Version: 6.0.1.3)
Apple Software Update (x32 Version: 2.1.3.127)
Apple Video Converter Factory Pro (x32)
ATI Catalyst Install Manager (Version: 3.0.825.0)
Audacity 1.2.2 (x32)
Avira Free Antivirus (x32 Version: 13.0.0.4052)
AviSynth 2.5 (x32)
AVS Update Manager 1.0 (x32)
AVS Video Converter 7 (x32)
AVS4YOU Software Navigator 1.4 (x32)
Backup Manager Basic (x32 Version: 2.0.0.60)
Bejeweled 2 Deluxe (x32 Version: 2.2.0.82)
Bing Bar (x32 Version: 6.0.2156.0)
Bing Bar Platform (x32 Version: 6.0.2156.0)
Blackhawk Striker 2 (x32 Version: 2.2.0.82)
Bluesoleil2.7.0.13 VoIP Release 071227 (x32 Version: 2.7.0.13 VoIP Release 071227)
Bob the Builder Can-Do-Zoo (x32 Version: 2.2.0.82)
Bonjour (Version: 3.0.0.10)
Bonjour (x32 Version: 1.0.104)
Boris Graffiti (x32 Version: 5.20.200)
Broadcom Gigabit NetLink Controller (Version: 12.52.03)
Build-a-lot 2 (x32 Version: 2.2.0.82)
CamStudio (x32)
Canon MP Navigator 2.0 (x32)
Canon MP450
Catalyst Control Center - Branding (x32 Version: 1.00.0000)
Catalyst Control Center Graphics Previews Common (x32 Version: 2011.0419.2218.38209)
Catalyst Control Center InstallProxy (x32 Version: 2010.0329.836.13543)
Catalyst Control Center InstallProxy (x32 Version: 2011.0419.2218.38209)
Catalyst Control Center Localization All (x32 Version: 2011.0419.2218.38209)
CCC Help Chinese Standard (x32 Version: 2011.0419.2217.38209)
CCC Help Chinese Traditional (x32 Version: 2011.0419.2217.38209)
CCC Help Czech (x32 Version: 2011.0419.2217.38209)
CCC Help Danish (x32 Version: 2011.0419.2217.38209)
CCC Help Dutch (x32 Version: 2011.0419.2217.38209)
CCC Help English (x32 Version: 2011.0419.2217.38209)
CCC Help Finnish (x32 Version: 2011.0419.2217.38209)
CCC Help French (x32 Version: 2011.0419.2217.38209)
CCC Help German (x32 Version: 2011.0419.2217.38209)
CCC Help Greek (x32 Version: 2011.0419.2217.38209)
CCC Help Hungarian (x32 Version: 2011.0419.2217.38209)
CCC Help Italian (x32 Version: 2011.0419.2217.38209)
CCC Help Japanese (x32 Version: 2011.0419.2217.38209)
CCC Help Korean (x32 Version: 2011.0419.2217.38209)
CCC Help Norwegian (x32 Version: 2011.0419.2217.38209)
CCC Help Polish (x32 Version: 2011.0419.2217.38209)
CCC Help Portuguese (x32 Version: 2011.0419.2217.38209)
CCC Help Russian (x32 Version: 2011.0419.2217.38209)
CCC Help Spanish (x32 Version: 2011.0419.2217.38209)
CCC Help Swedish (x32 Version: 2011.0419.2217.38209)
CCC Help Thai (x32 Version: 2011.0419.2217.38209)
CCC Help Turkish (x32 Version: 2011.0419.2217.38209)
ccc-utility64 (Version: 2011.0419.2218.38209)
CCleaner (x32 Version: 2.36)
Client for Google Translate (x32 Version: 6.0.612)
Color Efex Pro 3.0 Complete (x32 Version: 3.108)
COMODO Internet Security (Version: 4.1.19277.920)
Compatibility Pack for the 2007 Office system (x32 Version: 12.0.6612.1000)
CyberLink PowerDVD 9 (x32 Version: 9.0.2529.50)
D3DX10 (x32 Version: 15.4.2368.0902)
DeGo Video Converter version 2.1.4.165 (x32 Version: 2.1.4.165)
Dell Voice (x32 Version: 1.1.0)
Diablo III (x32 Version: 1.0.8.16603)
Digital Media Converter 4.0 (x32)
Documents To Go Desktop for iPhone (x32 Version: 2.0000.006)
eBay Worldwide (x32 Version: 2.1.0901)
Escape Rosecliff Island (x32 Version: 2.2.0.82)
eSobi v2 (x32 Version: 2.0.4.000274)
Expstudio Audio Editor FREE (Version: 4.31)
Faerie Solitaire (x32 Version: 2.2.0.82)
Fastest Video Converter 5 (x32)
FATE - The Traitor Soul (x32 Version: 2.2.0.82)
FileZilla Client 3.3.5.1 (HKCU Version: 3.3.5.1)
FLAC 1.2.1b (remove only) (x32 Version: 1.2.1b)
Free M4a to MP3 Converter 6.1 (x32)
Free Mp3 Wma Converter V 1.95 (x32 Version: 1.95.0.0)
Free PDF to Word Converter 1.5 (x32)
FreeRIP v3.6 (x32 Version: 3.6)
Google Chrome (HKCU Version: 30.0.1599.101)
Google Earth (x32 Version: 7.1.1.1888)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0)
Google Toolbar for Internet Explorer (x32 Version: 7.5.4601.54)
Google Update Helper (x32 Version: 1.3.21.165)
GoPro Studio 2.0.0 (x32 Version: 2.0.0)
Guitar Pro 4 (x32 Version: 4.1.0)
Guitar Pro 5.2 (x32)
HyperCam Toolbar (x32)
Identity Card (x32 Version: 1.00.3003)
ÌìÌì¿´¸ßÇåÓ°ÊÓ 2.6.1.20 (x32 Version: 2.6.1.20)
Image Rescue 4 (x32)
Imagenomic Noiseware 4.2 Professional Plug-in (build 4205)
ImgBurn (x32 Version: 2.5.2.0)
iSiloX (x32 Version: 5.18.29)
iTeleport Connect (x32 Version: 5.2.5)
iTunes (Version: 11.0.1.12)
Java 7 Update 25 (x32 Version: 7.0.250)
Java Auto Updater (x32 Version: 2.1.9.5)
JavaFX 2.1.1 (x32 Version: 2.1.1)
Jewel Quest Solitaire 3 (x32 Version: 2.2.0.82)
Junk Mail filter update (x32 Version: 15.4.3502.0922)
K-Lite Mega Codec Pack 8.6.0 (x32 Version: 8.6.0)
Launch Manager (x32 Version: 4.0.7)
League of Legends (x32 Version: 1.0020)
League of Legends (x32 Version: 1.3)
Lightroom (x32 Version: 1.30.0000)
Magic Bullet Looks Studio (x32)
Malwarebytes Anti-Malware version 1.75.0.1300 (x32 Version: 1.75.0.1300)
McAfee SiteAdvisor (x32 Version: 3.6.3.549)
MCCI®Firmware Update Driver for MTK (x32 Version: 1.00.0000)
Mesh Runtime (x32 Version: 15.4.5722.2)
Messenger Companion (x32 Version: 15.4.3502.0922)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30320)
Microsoft .NET Framework 4 Extended (Version: 4.0.30320)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Image Composite Editor (Version: 1.4.4)
Microsoft Office 2007 Service Pack 3 (SP3) (x32)
Microsoft Office Access MUI (English) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Access Setup Metadata MUI (English) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Communicator 2007 (x32 Version: 2.0.6362.0)
Microsoft Office Enterprise 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Excel MUI (English) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Groove MUI (English) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Groove Setup Metadata MUI (English) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Home and Student 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office InfoPath MUI (English) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000)
Microsoft Office OneNote MUI (English) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Outlook Connector (x32 Version: 14.0.5118.5000)
Microsoft Office Outlook MUI (English) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office PowerPoint MUI (English) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office PowerPoint Viewer 2007 (English) (x32 Version: 12.0.6612.1000)
Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Proof (Spanish) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Proofing (English) 2007 (x32 Version: 12.0.4518.1014)
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32)
Microsoft Office Publisher MUI (English) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Shared 64-bit MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared MUI (English) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Shared Setup Metadata MUI (English) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Suite Activation Assistant (x32 Version: 2.9)
Microsoft Office Word MUI (English) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Search Enhancement Pack (x32 Version: 2.2.83.0)
Microsoft Silverlight (Version: 5.1.20125.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (x32 Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319 (Version: 10.0.30319)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Microsoft Works (x32 Version: 9.7.0621)
Microsoft_VC80_ATL_x86 (x32 Version: 8.0.50727.4053)
Microsoft_VC80_ATL_x86_x64 (Version: 8.0.50727.4053)
Microsoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053)
Microsoft_VC80_CRT_x86_x64 (Version: 8.0.50727.4053)
Microsoft_VC80_MFC_x86 (x32 Version: 8.0.50727.4053)
Microsoft_VC80_MFC_x86_x64 (Version: 8.0.50727.4053)
Microsoft_VC80_MFCLOC_x86 (x32 Version: 8.0.50727.4053)
Microsoft_VC80_MFCLOC_x86_x64 (Version: 80.50727.4053)
Microsoft_VC90_ATL_x86 (x32 Version: 1.00.0000)
Microsoft_VC90_ATL_x86_x64 (Version: 1.00.0000)
Microsoft_VC90_CRT_x86 (x32 Version: 1.00.0000)
Microsoft_VC90_CRT_x86_x64 (Version: 1.00.0000)
Microsoft_VC90_MFC_x86 (x32 Version: 1.00.0000)
Microsoft_VC90_MFC_x86_x64 (Version: 1.00.0000)
MiniTool Partition Wizard Home Edition 7.0 (x32)
MiniTool Partition Wizard Home Edition 8.0 (x32)
MixMeister BPM Analyzer 1.0 (x32)
Monopoly (x32 Version: 2.2.0.82)
Mozilla Firefox 20.0.1 (x86 en-US) (x32 Version: 20.0.1)
Mozilla Maintenance Service (x32 Version: 20.0.1)
MSVCRT (x32 Version: 15.4.2862.0708)
MSVCRT_amd64 (x32 Version: 15.4.2862.0708)
MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0)
MyITLab ActiveX Installer 2, 9, 8, 65535 (x32)
Mystery P.I. - Lost in Los Angeles (x32 Version: 2.2.0.82)
MyWinLocker (x32 Version: 3.1.206.0)
MyWinLocker Suite (x32 Version: 3.1.206.0)
Norton Online Backup (x32 Version: 1.2.0.36)
NTI Backup Now 5 (x32 Version: 5.1.2.628)
NTI Backup Now Standard (x32 Version: 5.1.2.628)
NTI Media Maker 8 (x32 Version: 8.0.12.6630)
Pando Media Booster (x32 Version: 2.3.5.2)
PandoraRecovery (Remove Only) (x32)
PartitionMagic (x32 Version: 8.00.000)
PDF Settings CS5 (x32 Version: 10.0)
Penguins! (x32 Version: 2.2.0.82)
Pinnacle Studio 12 (x32 Version: 12.0.0.6163)
Pinnacle Studio 12 Ultimate Plugins (x32 Version: 12.0.0.0)
Pinnacle Video Driver (Version: 12.00.0017)
Plants vs. Zombies (x32 Version: 2.2.0.82)
plist Editor for Windows 1.0.0 (x32 Version: 1.0.0)
Polar Bowler (x32 Version: 2.2.0.82)
Polar Golfer (x32 Version: 2.2.0.82)
PowerQuest PartitionMagic 8.0 (x32 Version: 8.00.000)
proDAD Vitascene 1.0 (x32)
Project64 1.6 (x32 Version: 1.6)
Puran File Recovery 1.0
PxMergeModule (x32 Version: 1.00.0000)
QMC (HKCU)
QuickTime (x32 Version: 7.73.80.64)
Razer DeathAdder™ Mouse (x32 Version: 3.00)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.6053)
Realtek USB 2.0 Card Reader (x32 Version: 6.1.7600.30113)
Samsung Galaxy S II Toolkit (x32 Version: 2.5.1)
Samsung Kies (x32 Version: 2.3.2.12074_13)
SAMSUNG USB Driver for Mobile Phones (Version: 1.3.2200.0)
Scrabble Plus (x32 Version: 2.2.0.82)
Shredder (Version: 2.0.5.0)
Shredder (x32 Version: 2.0.5.0)
Shutdown Timer (x32 Version: 1.0.0)
SkyGazer 4.5 (x32 Version: 4.5.4)
Skype Click to Call (x32 Version: 5.8.8855)
Skype™ 5.10 (x32 Version: 5.10.116)
Sothink Movie DVD Maker (x32 Version: 3.6)
Spybot - Search & Destroy (x32 Version: 1.6.2)
Stanza (x32)
StarCraft II (x32 Version: 1.1.3.16939)
Steam (x32 Version: 1.0.0.0)
SubMagic V0.71 (x32)
swMSM (x32 Version: 12.0.0.1)
Terminals (x32 Version: 2.0.0)
The Photographer's Ephemeris (x32 Version: 1.0.4)
The Price is Right (x32 Version: 2.2.0.82)
The Walking Dead (x32)
TightVNC (Version: 2.7.3.0)
TrueCrypt (x32 Version: 7.0a)
Update for 2007 Microsoft Office System (KB967642) (x32)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1)
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (x32)
Update for Microsoft Office Access 2007 Help (KB963663) (x32)
Update for Microsoft Office Script Editor Help (KB963671) (x32)
Update for Microsoft Office Word 2007 (KB974631) (x32)
Update for Microsoft Office Word 2007 Help (KB963665) (x32)
Ventrilo Client for Windows x64 (Version: 3.0.7.0)
Video Download Capture V2.6.3 (x32 Version: 2.6.3)
Virtual Families (x32 Version: 2.2.0.82)
Virtual Villagers - A New Home (x32 Version: 2.2.0.82)
Visual C++ 2008 x86 Runtime - (v9.0.30729) (x32 Version: 9.0.30729)
Visual C++ 2008 x86 Runtime - v9.0.30729.01 (x32 Version: 9.0.30729.01)
VLC media player 1.1.4 (x32 Version: 1.1.4)
WD Drive Utilities (x32 Version: 1.0.3.3)
WD Quick View (x32 Version: 2.0.1.2)
WD Security (x32 Version: 1.0.3.3)
WD SmartWare (Version: 2.0.1.2)
WD SmartWare Installer (x32 Version: 2.0.1.2)
Welcome Center (x32 Version: 1.00.3013)
Windows Driver Package - GoPro (WinUSB) Universal Serial Bus devices  (03/07/2012 ) (Version: 03/07/2012 )
Windows Live Communications Platform (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3538.0513)
Windows Live Family Safety (Version: 15.4.3538.0513)
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0)
Windows Live Installer (x32 Version: 15.4.3502.0922)
Windows Live Language Selector (Version: 15.4.3538.0513)
Windows Live Mail (x32 Version: 15.4.3502.0922)
Windows Live Mesh (x32 Version: 15.4.3502.0922)
Windows Live Mesh ActiveX Control for Remote Connections (x32 Version: 15.4.5722.2)
Windows Live Messenger (x32 Version: 15.4.3538.0513)
Windows Live Messenger Companion Core (x32 Version: 15.4.3502.0922)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (x32 Version: 15.4.3502.0922)
Windows Live Photo Common (x32 Version: 15.4.3502.0922)
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922)
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live Remote Service Resources (Version: 15.4.5722.2)
Windows Live SOXE (x32 Version: 15.4.3502.0922)
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922)
Windows Live Sync (x32 Version: 14.0.8089.726)
Windows Live UX Platform (x32 Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109)
Windows Live Writer (x32 Version: 15.4.3502.0922)
Windows Live Writer Resources (x32 Version: 15.4.3502.0922)
Windows Media Player Firefox Plugin (x32 Version: 1.0.0.8)
Windows Movie Maker 2.6 (x32 Version: 2.6.4037.0)
WinPcap 4.1.2 (x32 Version: 4.1.0.2001)
WinRAR archiver (x32)
WinZip (x32 Version:  9.0  (6028))
World of Warcraft (x32 Version: 4.2.0.14480)
Xilisoft YouTube Video Converter (HKCU Version: 2.0.24.1028)
Yahtzee (x32 Version: 2.2.0.82)
Zuma Deluxe (x32 Version: 2.2.0.82)

==================== Restore Points  =========================

24-10-2013 04:00:29 Scheduled Checkpoint
26-10-2013 04:15:27 Windows Update

==================== Hosts content: ==========================

2009-07-13 22:34 - 2012-03-02 02:46 - 00433053 ___RA C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
127.0.0.1 live.refx.net
127.0.0.1 activate.adobe.com
127.0.0.1 practivate.adobe.com
127.0.0.1 ereg.adobe.com
127.0.0.1 activate.wip3.adobe.com
127.0.0.1 wip3.adobe.com
127.0.0.1 3dns-3.adobe.com
127.0.0.1 3dns-2.adobe.com
127.0.0.1 adobe-dns.adobe.com
127.0.0.1 adobe-dns-2.adobe.com
127.0.0.1 adobe-dns-3.adobe.com
127.0.0.1 ereg.wip3.adobe.com
127.0.0.1 activate-sea.adobe.com
127.0.0.1 wwis-dubc1-vip60.adobe.com
127.0.0.1 activate-sjc0.adobe.com
127.0.0.1 adobeereg.com
127.0.0.1 http://www.adobeereg.com
127.0.0.1 activate.adobe.com
127.0.0.1 activate-sea.adobe.com
127.0.0.1 activate-sjc0.adobe.com
127.0.0.1 wwis-dubc1-vip60.adobe.com
127.0.0.1 adobeereg.com
127.0.0.1 http://www.adobeereg.com
127.0.0.1 activate.adobe.com
127.0.0.1 activate-sea.adobe.com
127.0.0.1 activate-sjc0.adobe.com
127.0.0.1 wwis-dubc1-vip60.adobe.com
127.0.0.1 adobeereg.com

There are 1000 more lines.


==================== Scheduled Tasks (whitelisted) =============

Task: {0459988D-A66D-48FD-B146-5F605C6D2359} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3299844628-1602399189-1564944750-1003Core => C:\Users\Scott\AppData\Local\Google\Update\GoogleUpdate.exe [2011-09-10] (Google Inc.)
Task: {05BD0FB3-AD0F-499D-91FF-2F7CC94E421C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-08-23] (Google Inc.)
Task: {111DEE5B-5E6F-4775-B9D8-948A98BE34A4} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-08] (Adobe Systems Incorporated)
Task: {3037FD9E-2A2A-4F0E-9418-0A2B983CF299} - System32\Tasks\Ad-Aware Update (Weekly) => C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe [2011-10-29] (Lavasoft Limited                                                      )
Task: {35D006EF-32DA-4FA5-A9D0-360130AB6ACD} - System32\Tasks\Microsoft\Windows\TabletPC\InputPersonalization => C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe [2009-07-13] (Microsoft Corporation)
Task: {52AD6B91-4CB8-4391-B155-A6B1CA4273F4} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3299844628-1602399189-1564944750-1001Core => C:\Users\Henry\AppData\Local\Google\Update\GoogleUpdate.exe [2012-08-27] (Google Inc.)
Task: {64DD539F-A7CC-4EC2-AC91-0D71D8993D19} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-08-23] (Google Inc.)
Task: {910A0AD2-8C93-4150-8834-70999F8B8C59} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3299844628-1602399189-1564944750-1001UA => C:\Users\Henry\AppData\Local\Google\Update\GoogleUpdate.exe [2012-08-27] (Google Inc.)
Task: {A2235677-6423-4D0A-BBA4-8A78AC6EB16F} - System32\Tasks\AdobeAAMUpdater-1.0-Henry-PC-Henry => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06] (Adobe Systems Incorporated)
Task: {DEA12851-6181-4A4F-8F48-DE4E67AE2DC7} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {E2962E6F-745A-40D6-9885-1090B3C00549} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3299844628-1602399189-1564944750-1003UA => C:\Users\Scott\AppData\Local\Google\Update\GoogleUpdate.exe [2011-09-10] (Google Inc.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3299844628-1602399189-1564944750-1001Core.job => C:\Users\Henry\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3299844628-1602399189-1564944750-1001UA.job => C:\Users\Henry\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3299844628-1602399189-1564944750-1003Core.job => C:\Users\Scott\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3299844628-1602399189-1564944750-1003UA.job => C:\Users\Scott\AppData\Local\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2010-01-02 10:42 - 2010-01-02 10:42 - 00098304 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll
2013-08-06 15:06 - 2013-08-06 13:23 - 00394824 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll
2011-09-27 07:23 - 2011-09-27 07:23 - 00087912 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2011-09-27 07:22 - 2011-09-27 07:22 - 01242472 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2010-03-08 20:18 - 2010-03-08 20:18 - 00465576 _____ () C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\sqlite3.dll
2010-03-08 20:13 - 2010-03-08 20:13 - 01081600 _____ () C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\ACE.dll
2009-10-30 10:11 - 2009-10-30 10:11 - 00267776 _____ () C:\Windows\system32\WinTab32.DLL
2010-05-19 22:19 - 2009-05-20 18:02 - 00072200 _____ () C:\Program Files (x86)\Launch Manager\CdDirIo.dll
2009-10-30 10:11 - 2009-10-30 10:11 - 00204800 _____ () C:\Windows\SysWOW64\WinTab32.DLL
2013-03-29 14:48 - 2013-04-24 09:26 - 03133336 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2013-10-08 22:04 - 2013-10-08 22:04 - 16233864 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll

==================== Alternate Data Streams (whitelisted) =========

AlternateDataStreams: C:\ProgramData\Temp:054203E4
AlternateDataStreams: C:\ProgramData\Temp:07BF512B
AlternateDataStreams: C:\ProgramData\Temp:76650B61

==================== Safe Mode (whitelisted) ===================

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Lavasoft Ad-Aware Service => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver"

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (10/26/2013 11:01:34 AM) (Source: Lavasoft Ad-Aware Service) (User: )
Description: Only one instance of service process is allowed.

Error: (10/26/2013 00:01:27 AM) (Source: McLogEvent) (User: NT AUTHORITY)
Description: 1

Error: (10/26/2013 00:01:27 AM) (Source: McLogEvent) (User: NT AUTHORITY)
Description: 0x7eThe specified module could not be found.

Error: (10/26/2013 00:01:27 AM) (Source: McLogEvent) (User: NT AUTHORITY)
Description: 1

Error: (10/26/2013 00:01:26 AM) (Source: McLogEvent) (User: NT AUTHORITY)
Description: 0x7eThe specified module could not be found.

Error: (10/25/2013 05:36:31 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid.

Error: (10/25/2013 05:02:56 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid.

Error: (10/24/2013 03:54:30 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid.

Error: (10/23/2013 10:09:16 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid.

Error: (10/23/2013 03:13:52 PM) (Source: System Restore) (User: )
Description: The scheduled restore point could not be created.  Additional information: (0x81000101).


System errors:
=============
Error: (10/26/2013 03:08:11 PM) (Source: Service Control Manager) (User: )
Description: The Akamai NetSession Interface service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 1000 milliseconds: Restart the service.

Error: (10/26/2013 03:04:21 PM) (Source: Service Control Manager) (User: )
Description: The Windows Update service hung on starting.

Error: (10/26/2013 02:58:13 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has failed to start.

Module Path: C:\Windows\system32\athExt.dll
Error Code: 126

Error: (10/26/2013 02:57:58 PM) (Source: Application Popup) (User: )
Description: \SystemRoot\SysWow64\Drivers\PQNTDrv.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.

Error: (10/26/2013 02:54:48 PM) (Source: Service Control Manager) (User: )
Description: The Akamai NetSession Interface service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 1000 milliseconds: Restart the service.

Error: (10/26/2013 02:53:34 PM) (Source: Service Control Manager) (User: )
Description: The Akamai NetSession Interface service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 1000 milliseconds: Restart the service.

Error: (10/26/2013 02:46:29 PM) (Source: Service Control Manager) (User: )
Description: The Akamai NetSession Interface service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 1000 milliseconds: Restart the service.

Error: (10/26/2013 02:45:07 PM) (Source: Service Control Manager) (User: )
Description: The Akamai NetSession Interface service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 1000 milliseconds: Restart the service.

Error: (10/26/2013 02:18:44 PM) (Source: Service Control Manager) (User: )
Description: The Akamai NetSession Interface service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 1000 milliseconds: Restart the service.

Error: (10/26/2013 02:17:10 PM) (Source: Service Control Manager) (User: )
Description: The Windows Update service hung on starting.


Microsoft Office Sessions:
=========================

==================== Memory info ===========================

Percentage of memory in use: 48%
Total physical RAM: 4094.17 MB
Available physical RAM: 2105.99 MB
Total Pagefile: 5092.31 MB
Available Pagefile: 2635.41 MB
Total Virtual: 8192 MB
Available Virtual: 8191.81 MB

==================== Drives ================================

Drive c: (ACER) (Fixed) (Total:452.97 GB) (Free:115.89 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 466 GB) (Disk ID: F606F606)
Partition 1: (Not Active) - (Size=13 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=453 GB) - (Type=07 NTFS)

==================== End Of Log ============================



#8 bloopie

bloopie

    Bleepin' Sith Turner


  • Malware Response Team
  • 7,927 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:New York
  • Local time:04:26 PM

Posted 27 October 2013 - 01:20 PM

Hello again,
 
Okay, let's address some of those lines in the log with FRST first:

Step :step1:

Download attached Attached File  fixlist.txt   379bytes   4 downloads and save it to the Desktop.

NOTE. It's important that both files, FRST/FRST64 and fixlist.txt are in the same location or the fix will not work.

NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

Run FRST/FRST64 and press the Fix button just once and wait.
If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run.
When finished FRST will generate a log on the Desktop (Fixlog.txt). Please post it to your reply.

==========

Step :step2:

  • Please download TDSSKiller from here and save it to your Desktop
  • Doubleclick on TDSSKiller.exe to run the application, then click on Change parameters


    tds2.jpg
  • Check Loaded Modules, Verify Driver Digital Signature, and Detect TDLFS file system
  • If you are asked to reboot because an "Extended Monitoring Driver is required" please click Reboot now


    2012081514h0118.png
  • Click Start Scan and allow the scan process to run


    tds4-1.jpg
  • If threats are detected select Skip or Cure (if available) for all of them unless otherwise instructed.
    ***Do NOT select Delete!
  • Click Continue


    tds6.jpg
  • Click Reboot computer
  • Please copy the TDSSKiller.[Version]_[Date]_[Time]_log.txt file found in your root directory (typically c:\) and paste it into your next reply

==========

Step :step3:

Please download aswMBR ( 4.5MB ) to your desktop.

  • Double click the aswMBR.exe icon, and click Run.
  • When asked if you'd like to "download the latest Avast! virus definitions", click Yes.
  • Click the Scan button to start the scan.
  • On completion of the scan, click the save log button, save it to your desktop, then copy and paste it in your next reply.

==========

Please post all requested logs in your next reply and let me know how the machine is running now!

bloopie



#9 stqcb

stqcb
  • Topic Starter

  • Members
  • 52 posts
  • OFFLINE
  •  
  • Local time:03:26 PM

Posted 28 October 2013 - 05:51 PM

Hey bloopie

After doing the steps above the computer seems to perform similar to before, certain things seem to load slightly faster, but overall not much difference. One thing to note is that starting yesterday I started getting a different redirect problem. This time to this site (http://javeupdatecaa.com/download/chrome.php?dv1=glispa%20GmbH). It's happened 3 times since yesterday.

Here are the logs you requested.

 

The log is too long so I'll paste them in separate posts. I've been having trouble loading bleepingcomputer.com all day so if you see this and the log is incomplete I'll be posting the rest later.

 

 

 

Fixlog

 

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 26-10-2013 01
Ran by Scott at 2013-10-27 19:48:59 Run:1
Running from C:\Users\Scott\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
MountPoints2: {241baab1-2bd5-11e0-869a-001167b4971b} - E:\Start.exe
HKU\Eri\...\Run: [SearchProtect] - C:\Users\Eri\AppData\Roaming\SearchProtect\bin\cltmng.exe
C:\Users\Eri\AppData\Roaming\SearchProtect\bin\cltmng.exe
HKU\Henry\...\Run: [SearchProtect] - C:\Users\Henry\AppData\Roaming\SearchProtect\bin\cltmng.exe
C:\Users\Henry\AppData\Roaming\SearchProtect\bin\cltmng.exe
*****************

HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{241baab1-2bd5-11e0-869a-001167b4971b} => Key deleted successfully.
HKCR\CLSID\{241baab1-2bd5-11e0-869a-001167b4971b} => Key not found.
HKU\Eri\Software\Microsoft\Windows\CurrentVersion\Run\\SearchProtect => Value deleted successfully.
"C:\Users\Eri\AppData\Roaming\SearchProtect\bin\cltmng.exe" => File/Directory not found.
HKU\Henry\Software\Microsoft\Windows\CurrentVersion\Run\\SearchProtect => Value deleted successfully.
"C:\Users\Henry\AppData\Roaming\SearchProtect\bin\cltmng.exe" => File/Directory not found.

==== End of Fixlog ====

 

 

 

 

 

TDSKiller

 

19:59:27.0136 0x06a0  TDSS rootkit removing tool 3.0.0.14 Oct 15 2013 15:35:38
19:59:27.0401 0x06a0  ============================================================
19:59:27.0401 0x06a0  Current date / time: 2013/10/27 19:59:27.0401
19:59:27.0401 0x06a0  SystemInfo:
19:59:27.0401 0x06a0  
19:59:27.0401 0x06a0  OS Version: 6.1.7600 ServicePack: 0.0
19:59:27.0401 0x06a0  Product type: Workstation
19:59:27.0401 0x06a0  ComputerName: HENRY-PC
19:59:27.0401 0x06a0  UserName: Scott
19:59:27.0401 0x06a0  Windows directory: C:\Windows
19:59:27.0401 0x06a0  System windows directory: C:\Windows
19:59:27.0401 0x06a0  Running under WOW64
19:59:27.0401 0x06a0  Processor architecture: Intel x64
19:59:27.0401 0x06a0  Number of processors: 4
19:59:27.0401 0x06a0  Page size: 0x1000
19:59:27.0401 0x06a0  Boot type: Normal boot
19:59:27.0401 0x06a0  ============================================================
19:59:27.0401 0x06a0  BG loaded
19:59:30.0397 0x06a0  System UUID: {17EC0DC3-3ED9-EC04-A722-084AC1734923}
19:59:39.0226 0x06a0  Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
19:59:39.0226 0x06a0  ============================================================
19:59:39.0226 0x06a0  \Device\Harddisk0\DR0:
19:59:39.0226 0x06a0  MBR partitions:
19:59:39.0226 0x06a0  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1964800, BlocksNum 0x32000
19:59:39.0226 0x06a0  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1996800, BlocksNum 0x389EF030
19:59:39.0226 0x06a0  ============================================================
19:59:39.0304 0x06a0  C: <-> \Device\Harddisk0\DR0\Partition2
19:59:39.0304 0x06a0  ============================================================
19:59:39.0304 0x06a0  Initialize success
19:59:39.0304 0x06a0  ============================================================
20:12:00.0660 0x1214  ============================================================
20:12:00.0660 0x1214  Scan started
20:12:00.0660 0x1214  Mode: Manual;
20:12:00.0660 0x1214  ============================================================
20:12:00.0660 0x1214  KSN ping started
20:12:03.0811 0x1214  KSN ping finished: true
20:12:05.0122 0x1214  ================ Scan system memory ========================
20:12:05.0122 0x1214  System memory - ok
20:12:05.0122 0x1214  ================ Scan services =============================
20:12:05.0387 0x1214  [ 1B00662092F9F9568B995902F0CC40D5, D345014CF146FA57B2682C189D5E7F27D4C78F321F2723D912D623E777C2BB70 ] 1394ohci        C:\Windows\system32\DRIVERS\1394ohci.sys
20:12:05.0434 0x1214  1394ohci - ok
20:12:06.0354 0x1214  [ 6F11E88748CDEFD2F76AA215F97DDFE5, BD0B3561EDCDE5EFD89372793CFD09DF879709BF469542F4A049705CBA9FD060 ] ACPI            C:\Windows\system32\DRIVERS\ACPI.sys
20:12:06.0354 0x1214  ACPI - ok
20:12:06.0494 0x1214  [ 63B05A0420CE4BF0E4AF6DCC7CADA254, 56BCC219D6B886FD42B7D335B4A7BBA3C9BC148220CBD99F8583FB505DAE63BF ] AcpiPmi         C:\Windows\system32\DRIVERS\acpipmi.sys
20:12:06.0494 0x1214  AcpiPmi - ok
20:12:06.0775 0x1214  [ B1EA9681502EE57F87DB71D726288A5B, D17BD2CFAE72E92C77D183331D5CBA0FEA893BF54875920870E271940F40A8BB ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
20:12:06.0884 0x1214  AdobeARMservice - ok
20:12:07.0118 0x1214  [ A283108E14F3970432C21AF4C0CB1BCE, 1D3219EF916D54232838870EDE557296AACB714B456ED0AAE0DE3CE3822F4643 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
20:12:07.0134 0x1214  AdobeFlashPlayerUpdateSvc - ok
20:12:07.0196 0x1214  [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx         C:\Windows\system32\DRIVERS\adp94xx.sys
20:12:07.0228 0x1214  adp94xx - ok
20:12:07.0259 0x1214  [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci         C:\Windows\system32\DRIVERS\adpahci.sys
20:12:07.0290 0x1214  adpahci - ok
20:12:07.0306 0x1214  [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320         C:\Windows\system32\DRIVERS\adpu320.sys
20:12:07.0321 0x1214  adpu320 - ok
20:12:07.0586 0x1214  [ 4B78B431F225FD8624C5655CB1DE7B61, 198A5AF2125C7C41F531A652D200C083A55A97DC541E3C0B5B253C7329949156 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
20:12:07.0586 0x1214  AeLookupSvc - ok
20:12:07.0696 0x1214  [ DB9D6C6B2CD95A9CA414D045B627422E, A4A0B2ACBFE311C20EF9F06A49DBE02CE90433C2364B292F6E8F78F6C274DF88 ] AFD             C:\Windows\system32\drivers\afd.sys
20:12:07.0758 0x1214  AFD - ok
20:12:07.0820 0x1214  [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440          C:\Windows\system32\DRIVERS\agp440.sys
20:12:07.0820 0x1214  agp440 - ok
20:12:08.0304 0x1214  [ BBE9054FDADC8D49D29C5DA4FB84A803, 4315C1D7DBD35A80E25F15B45587AA76F6E9FCDC617B5ABF62301570771066AF ] Akamai          c:\program files (x86)\common files\akamai/netsession_win_8fa3539.dll
20:12:08.0304 0x1214  Suspicious file ( Hidden ): c:\program files (x86)\common files\akamai/netsession_win_8fa3539.dll. md5: BBE9054FDADC8D49D29C5DA4FB84A803, sha256: 4315C1D7DBD35A80E25F15B45587AA76F6E9FCDC617B5ABF62301570771066AF
20:12:08.0320 0x1214  Akamai - detected HiddenFile.Multi.Generic ( 1 )
20:12:11.0268 0x1214  Detect skipped due to KSN trusted
20:12:11.0268 0x1214  Akamai - ok
20:12:11.0315 0x1214  [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG             C:\Windows\System32\alg.exe
20:12:11.0315 0x1214  ALG - ok
20:12:11.0377 0x1214  [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide          C:\Windows\system32\DRIVERS\aliide.sys
20:12:11.0393 0x1214  aliide - ok
20:12:11.0455 0x1214  [ D865F8ABFF031563E860D16A38BD5A35, 9C1A078B75303B4C6BE4FED54867C75B9BA6537FA7A60A0758B7DE8B1FE3BD83 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
20:12:11.0455 0x1214  AMD External Events Utility - ok
20:12:11.0892 0x1214  AMD FUEL Service - ok
20:12:12.0001 0x1214  [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide          C:\Windows\system32\DRIVERS\amdide.sys
20:12:12.0032 0x1214  amdide - ok
20:12:12.0110 0x1214  [ 6A2EEB0C4133B20773BB3DD0B7B377B4, E4CB35C6937C70A145A13E5AE5B34A271B49101DA623171ACBFDA8601E5A70EA ] amdiox64        C:\Windows\system32\DRIVERS\amdiox64.sys
20:12:12.0142 0x1214  amdiox64 - ok
20:12:12.0204 0x1214  [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8           C:\Windows\system32\DRIVERS\amdk8.sys
20:12:12.0235 0x1214  AmdK8 - ok
20:12:12.0578 0x1214  [ 83418F6EE5A81DDDD8E248FCBFC99AF6, FDDF142CFB12F4644C87CA25096869DBBB7579F7CFBBCFC48A455EC1B75C5A52 ] amdkmdag        C:\Windows\system32\DRIVERS\atipmdag.sys
20:12:12.0953 0x1214  amdkmdag - ok
20:12:13.0171 0x1214  [ 7E58B5E1DEAA70BD46997068DF06B4E3, C81D45CCBAAFBEE87D0148E0678A764C632CAA54A33898A3B7F7CB39896E0E2C ] amdkmdap        C:\Windows\system32\DRIVERS\atikmpag.sys
20:12:13.0187 0x1214  amdkmdap - ok
20:12:13.0234 0x1214  [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM          C:\Windows\system32\DRIVERS\amdppm.sys
20:12:13.0234 0x1214  AmdPPM - ok
20:12:13.0265 0x1214  [ 7A4B413614C055935567CF88A9734D38, A3BB7CDF3EE0EEF67F89263E81145E73C7142EF5F0AF265375C2ECCE74F932C4 ] amdsata         C:\Windows\system32\DRIVERS\amdsata.sys
20:12:13.0280 0x1214  amdsata - ok
20:12:13.0296 0x1214  [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs          C:\Windows\system32\DRIVERS\amdsbs.sys
20:12:13.0312 0x1214  amdsbs - ok
20:12:13.0358 0x1214  [ B4AD0CACBAB298671DD6F6EF7E20679D, FB566C892D0A3DC0A523AE20F35011996958D670937DD5C1A1FCCD36AAC714D7 ] amdxata         C:\Windows\system32\DRIVERS\amdxata.sys
20:12:13.0358 0x1214  amdxata - ok
20:12:13.0421 0x1214  Andbus - ok
20:12:13.0483 0x1214  AndDiag - ok
20:12:13.0483 0x1214  AndGps - ok
20:12:13.0499 0x1214  ANDModem - ok
20:12:13.0608 0x1214  [ 746497D339C854053193119D119799BA, CDC9EDDC0BD0F11FEB54464CE2F6CA8862A1953F297864383E0B4FE17F90B690 ] AntiVirSchedulerService C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
20:12:13.0717 0x1214  AntiVirSchedulerService - ok
20:12:13.0795 0x1214  [ A2D4915D1CCD0338AB85F14D1C22FD0C, 87A690D2A35521EE7A8154F99A930243349BEE6AEB6DEA23D36624458EC38181 ] AntiVirService  C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
20:12:13.0811 0x1214  AntiVirService - ok
20:12:14.0185 0x1214  [ 616D075E0DA5B6674D572372F1B6727E, 6183CF7E7A15F92F8C8F8063FCBEDFFD560EE273F0CCDE0BE1062A8F3C2981E2 ] AntiVirWebService C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE
20:12:14.0232 0x1214  AntiVirWebService - ok
20:12:14.0279 0x1214  [ 6F9EF180BB9CEC92D3E8EC9163748DE5, 9F902E2FB4E43602D1286305C38AA54B968B05A036214835DFB686B12D401D95 ] ApfiltrService  C:\Windows\system32\DRIVERS\Apfiltr.sys
20:12:14.0310 0x1214  ApfiltrService - ok
20:12:14.0435 0x1214  [ 42FD751B27FA0E9C69BB39F39E409594, DE349CAA570957868CA1CB0BE0FAF551CD4D44FD53EBC4391B9C1C7B9CF295D2 ] AppID           C:\Windows\system32\drivers\appid.sys
20:12:14.0435 0x1214  AppID - ok
20:12:14.0466 0x1214  [ 0BC381A15355A3982216F7172F545DE1, C33AF13CB218F7BF52E967452573DF2ADD20A95C6BF99229794FEF07C4BBE725 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
20:12:14.0482 0x1214  AppIDSvc - ok
20:12:14.0544 0x1214  [ D065BE66822847B7F127D1F90158376E, 20F911F390FF23C2C42361A449C4344DB59F1DC21EDD1E7EBC4E80914DEF7824 ] Appinfo         C:\Windows\System32\appinfo.dll
20:12:14.0544 0x1214  Appinfo - ok
20:12:14.0731 0x1214  [ A5299D04ED225D64CF07A568A3E1BF8C, 6F7E73893127BADC8C9815E9BCC0EB5F6584E254D0D09A0B6A680704C71E0A90 ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
20:12:14.0731 0x1214  Apple Mobile Device - ok
20:12:14.0778 0x1214  [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc             C:\Windows\system32\DRIVERS\arc.sys
20:12:14.0794 0x1214  arc - ok
20:12:14.0809 0x1214  [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas          C:\Windows\system32\DRIVERS\arcsas.sys
20:12:14.0840 0x1214  arcsas - ok
20:12:15.0043 0x1214  [ 9217D874131AE6FF8F642F124F00A555, BE2923D5AA7748FDAAED73AF567D015517B36F1C739C6E5637DD15112EFDF495 ] aspnet_state    C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
20:12:15.0074 0x1214  aspnet_state - ok
20:12:15.0106 0x1214  [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
20:12:15.0106 0x1214  AsyncMac - ok
20:12:15.0152 0x1214  [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi           C:\Windows\system32\DRIVERS\atapi.sys
20:12:15.0152 0x1214  atapi - ok
20:12:15.0418 0x1214  [ 70260C7C98CC0101316F5B2650C3BB44, 15F5DBDB1251D3F2EF2A0764BC2829A02448B98A0DF9AF316C8466F83BA9241F ] athr            C:\Windows\system32\DRIVERS\athrx.sys
20:12:15.0605 0x1214  athr - ok
20:12:15.0683 0x1214  [ 7E2F5A758F63F80F8B03F889B4E6B19F, 5A911F1E9DB2894A7459D072F8D02F884AEF695B51EC17DEEAF874DB5A6F783C ] AtiHdmiService  C:\Windows\system32\drivers\AtiHdmi.sys
20:12:15.0698 0x1214  AtiHdmiService - ok
20:12:15.0730 0x1214  [ C07A040D6B5A42DD41EE386CF90974C8, 8D47815F99C79B795504C3172B5FBBDBA6AFACC004B17AA3954A06BE713FACAE ] AtiPcie         C:\Windows\system32\DRIVERS\AtiPcie.sys
20:12:15.0730 0x1214  AtiPcie - ok
20:12:15.0792 0x1214  [ 07721A77180EDD4D39CCB865BF63C7FD, 9E8117E747C86154F98F2686D805A981029CC5D11AFB115A529429C9A4579BE5 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
20:12:15.0839 0x1214  AudioEndpointBuilder - ok
20:12:15.0870 0x1214  [ 07721A77180EDD4D39CCB865BF63C7FD, 9E8117E747C86154F98F2686D805A981029CC5D11AFB115A529429C9A4579BE5 ] AudioSrv        C:\Windows\System32\Audiosrv.dll
20:12:15.0901 0x1214  AudioSrv - ok
20:12:16.0010 0x1214  [ 0D5C96FD25D6455D97A5C4D7706DFAB1, AD55CA587EA009292E1B3C37D0F374201DBC68CFE4A4751AFAAADECF8E26B04A ] avgntflt        C:\Windows\system32\DRIVERS\avgntflt.sys
20:12:16.0042 0x1214  avgntflt - ok
20:12:16.0213 0x1214  [ E26B3C8E9C3DDE047B32C5719955D715, F7E968FC23F167496E48BE8E3CF824821D3A074D20EA7A8C22BB722F590CADC7 ] avipbb          C:\Windows\system32\DRIVERS\avipbb.sys
20:12:16.0229 0x1214  avipbb - ok
20:12:16.0307 0x1214  [ 490FA25161BF3E51993EB724ECF0ACEB, C9F35F342A301E99D8E756A7422D5CD0DEFE233921207051D5146110E3F10ED9 ] avkmgr          C:\Windows\system32\DRIVERS\avkmgr.sys
20:12:16.0338 0x1214  avkmgr - ok
20:12:16.0447 0x1214  [ B20B5FA5CA050E9926E4D1DB81501B32, 91B9038349BA07E32DE809E6798167EE44087809EB1174B84EC16580040F1BE0 ] AxInstSV        C:\Windows\System32\AxInstSV.dll
20:12:16.0463 0x1214  AxInstSV - ok
20:12:16.0525 0x1214  [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv         C:\Windows\system32\DRIVERS\bxvbda.sys
20:12:16.0556 0x1214  b06bdrv - ok
20:12:16.0588 0x1214  [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
20:12:16.0619 0x1214  b57nd60a - ok
20:12:16.0728 0x1214  [ 9E84A931DBEE0292E38ED672F6293A99, 2945EAF0AC091709E0C5508B45EC343EDE507AC2B08A2D7D64F286D38424CBC4 ] BCM43XX         C:\Windows\system32\DRIVERS\bcmwl664.sys
20:12:16.0993 0x1214  BCM43XX - ok
20:12:17.0087 0x1214  [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC          C:\Windows\System32\bdesvc.dll
20:12:17.0227 0x1214  BDESVC - ok
20:12:17.0321 0x1214  [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep            C:\Windows\system32\drivers\Beep.sys
20:12:17.0368 0x1214  Beep - ok
20:12:17.0446 0x1214  [ 4992C609A6315671463E30F6512BC022, 3020034556EAC25CD90F41D3BFFDD0BB2C3D1C5BAC4359F4B71B84A9FC404495 ] BFE             C:\Windows\System32\bfe.dll
20:12:17.0477 0x1214  BFE - ok
20:12:17.0586 0x1214  [ 7F0C323FE3DA28AA4AA1BDA3F575707F, 7FF09CBC16A9E5F357A76FF79A3F0DD047957D474031F51A6BB4916C7911F005 ] BITS            C:\Windows\System32\qmgr.dll
20:12:17.0804 0x1214  BITS - ok
20:12:17.0836 0x1214  [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
20:12:17.0851 0x1214  blbdrive - ok
20:12:17.0898 0x1214  [ DAA72C9154459E613EED88502624C340, B512CA4461625D847DB023CDE17C1C9AD3B1079A925A89F8724008D8690CE617 ] BlueletAudio    C:\Windows\system32\DRIVERS\blueletaudio.sys
20:12:17.0898 0x1214  BlueletAudio - ok
20:12:17.0914 0x1214  [ 8AF05BCB15D846E1E8B34AF0635879C9, 391149EB799977E3C0FFDD348B8E6DD508095B6F4D32CB0A2ABD498EC14926BE ] BlueletSCOAudio C:\Windows\system32\DRIVERS\BlueletSCOAudio.sys
20:12:17.0929 0x1214  BlueletSCOAudio - ok
20:12:18.0038 0x1214  [ 2072720F0848312C40E01C2AEC8ED439, 5AEDC5A0AECBD273E7DA22C256E6760080322BF617327FF39C14F2864EE317F8 ] BlueSoleil Hid Service C:\Program Files (x86)\IVT Corporation\BlueSoleil\BTNtService.exe
20:12:18.0132 0x1214  BlueSoleil Hid Service - ok
20:12:18.0241 0x1214  [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
20:12:18.0257 0x1214  Bonjour Service - ok
20:12:18.0319 0x1214  [ 19D20159708E152267E53B66677A4995, 6401FA5C3EFF26BED075FEC68F868CD8D0598FDB45EA9381810615F7252F7A9A ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
20:12:18.0382 0x1214  bowser - ok
20:12:18.0413 0x1214  [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo        C:\Windows\system32\DRIVERS\BrFiltLo.sys
20:12:18.0444 0x1214  BrFiltLo - ok
20:12:18.0460 0x1214  [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp        C:\Windows\system32\DRIVERS\BrFiltUp.sys
20:12:18.0460 0x1214  BrFiltUp - ok
20:12:18.0506 0x1214  [ 5C2F352A4E961D72518261257AAE204B, 9EE1001E1D46A414A7A86FE1DBBE232203E26F54D9EF43ED31ED8EACD4D09853 ] BridgeMP        C:\Windows\system32\DRIVERS\bridge.sys
20:12:18.0522 0x1214  BridgeMP - ok
20:12:18.0569 0x1214  [ 6B054C67AAA87843504E8E3C09102009, 284AA58625FBDBFECB851A35407331B40BAEC141F2DCEDB9F15733BAB22F5C81 ] Browser         C:\Windows\System32\browser.dll
20:12:18.0600 0x1214  Browser - ok
20:12:18.0631 0x1214  [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
20:12:18.0662 0x1214  Brserid - ok
20:12:18.0662 0x1214  [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
20:12:18.0678 0x1214  BrSerWdm - ok
20:12:18.0678 0x1214  [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
20:12:18.0694 0x1214  BrUsbMdm - ok
20:12:18.0694 0x1214  [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
20:12:18.0725 0x1214  BrUsbSer - ok
20:12:18.0803 0x1214  [ 0F890E854FCBE98F4574ACC6423FCCEF, D3F0549F4CD4AEA64179EB4691FD8E7F54907D43EDB558ECBA191B4D5CDB3356 ] BT              C:\Windows\system32\DRIVERS\btnetdrv.sys
20:12:18.0834 0x1214  BT - ok
20:12:18.0881 0x1214  [ 7C5893EA5AA483E051B8311BDB36E19A, E2A63F39E34890D7D00075050378FB74BDE9AA89199761C095A6AC6B381760B9 ] Btcsrusb        C:\Windows\system32\Drivers\btcusb.sys
20:12:18.0881 0x1214  Btcsrusb - ok
20:12:18.0990 0x1214  [ CF98190A94F62E405C8CB255018B2315, E1B2540023C4FE9FD588E4B6AE6347DFA565EB3898F21E5360882BF3E8B5E781 ] BthEnum         C:\Windows\system32\DRIVERS\BthEnum.sys
20:12:19.0068 0x1214  BthEnum - ok
20:12:19.0099 0x1214  [ E49A371185D5E79C103765DA93856EE1, D160269DA8A72316104FA657E23CAE168C90C996A59CEACA21CD79E17A1E04FE ] BTHidEnum       C:\Windows\system32\Drivers\vbtenum.sys
20:12:19.0146 0x1214  BTHidEnum - ok
20:12:19.0193 0x1214  [ 8FA060B557C7DE309D2D5C16C3DA2EF6, E559B3379B3C9FBC0E3E0F6A2B864266F644EFC6E93318C6D8278F3D2C39FAB3 ] BTHidMgr        C:\Windows\system32\Drivers\BTHidMgr.sys
20:12:19.0255 0x1214  BTHidMgr - ok
20:12:19.0286 0x1214  [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM        C:\Windows\system32\DRIVERS\bthmodem.sys
20:12:19.0286 0x1214  BTHMODEM - ok
20:12:19.0333 0x1214  [ 02DD601B708DD0667E1331FA8518E9FF, 7DE6CC4DBB621CD03B01D9CE6CF66EAFE31D39030A391562CD0E278E1D70ADE1 ] BthPan          C:\Windows\system32\DRIVERS\bthpan.sys
20:12:19.0349 0x1214  BthPan - ok
20:12:19.0396 0x1214  [ A51FA9D0E85D5ADABEF72E67F386309C, 4F6F44D5E3A43239B50BCA75CBAA48FE40097E2AFF9360E1956F41ED52BD8183 ] BTHPORT         C:\Windows\system32\Drivers\BTHport.sys
20:12:19.0442 0x1214  BTHPORT - ok
20:12:19.0505 0x1214  [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv         C:\Windows\system32\bthserv.dll
20:12:19.0536 0x1214  bthserv - ok
20:12:19.0583 0x1214  [ F740B9A16B2C06700F2130E19986BF3B, 92158FD1B3706DE068F077ACA9A25F5479EF282E8B81F5A2FF8A66CBB5F80FCF ] BTHUSB          C:\Windows\system32\Drivers\BTHUSB.sys
20:12:19.0583 0x1214  BTHUSB - ok
20:12:19.0630 0x1214  [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
20:12:19.0645 0x1214  cdfs - ok
20:12:19.0754 0x1214  [ 83D2D75E1EFB81B3450C18131443F7DB, F2C686C980D818E797818E75B808E1E0B51B2045840A4BFC32D860B7DB4DFA22 ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
20:12:19.0770 0x1214  cdrom - ok
20:12:19.0801 0x1214  [ 312E2F82AF11E79906898AC3E3D58A1F, F6CB7D8B204B94F749D5DBEFD552150AAB16A34D629F87F73823A7504465F106 ] CertPropSvc     C:\Windows\System32\certprop.dll
20:12:19.0817 0x1214  CertPropSvc - ok
20:12:19.0864 0x1214  [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass        C:\Windows\system32\DRIVERS\circlass.sys
20:12:19.0895 0x1214  circlass - ok
20:12:20.0004 0x1214  [ FE1EC06F2253F691FE36217C592A0206, B9F122DB5E665ECDF29A5CB8BB6B531236F31A54A95769D6C5C1924C87FE70CE ] CLFS            C:\Windows\system32\CLFS.sys
20:12:20.0020 0x1214  CLFS - ok
20:12:20.0082 0x1214  [ D88040F816FDA31C3B466F0FA0918F29, 39D3630E623DA25B8444B6D3AAAB16B98E7E289C5619E19A85D47B74C71449F3 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
20:12:20.0254 0x1214  clr_optimization_v2.0.50727_32 - ok
20:12:20.0285 0x1214  [ D1CEEA2B47CB998321C579651CE3E4F8, 654013B8FD229A50017B08DEC6CA19C7DDA8CE0771260E057A92625201D539B1 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
20:12:20.0300 0x1214  clr_optimization_v2.0.50727_64 - ok
20:12:20.0378 0x1214  [ C5A75EB48E2344ABDC162BDA79E16841, 6070A8AAFD38FBC6A68A2B10C20117612354DF21B4492D90CA522BFB6870D726 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
20:12:20.0456 0x1214  clr_optimization_v4.0.30319_32 - ok
20:12:20.0503 0x1214  [ C6F9AF94DCD58122A4D7E89DB6BED29D, CB0E5AE60EC76323585FB86D89E8DB7ADB5EDF6EA3D0B27E9ECE75B8CAA8BFDE ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
20:12:20.0581 0x1214  clr_optimization_v4.0.30319_64 - ok
20:12:20.0612 0x1214  [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
20:12:20.0612 0x1214  CmBatt - ok
20:12:20.0924 0x1214  [ 65FB5097D9EE7E3A99E932CFA0E4B344, 42BFD514204CDFD37BDF388DE0BEB5909F24777807A10C0BB2CEF763B9FEC876 ] cmdAgent        C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
20:12:21.0002 0x1214  cmdAgent - ok
20:12:21.0065 0x1214  [ 919ACCC22ABDC1C3CA68326C0E5DEAF9, 25AFA22BD3D5A50C7BE9C05ED03079D1CE9042A235738D3DCFEBB1F5A262BC94 ] cmdGuard        C:\Windows\system32\DRIVERS\cmdguard.sys
20:12:21.0080 0x1214  cmdGuard - ok
20:12:21.0096 0x1214  [ F8FECE0F1D44C4A58778083B00EEADAC, 595E961D5D30BE15FA662A41AA995CD7A03D6B79D5A095489FD20B2F4104C4C5 ] cmdHlp          C:\Windows\system32\DRIVERS\cmdhlp.sys
20:12:21.0096 0x1214  cmdHlp - ok
20:12:21.0112 0x1214  [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide          C:\Windows\system32\DRIVERS\cmdide.sys
20:12:21.0127 0x1214  cmdide - ok
20:12:21.0158 0x1214  [ F95FD4CB7DA00BA2A63CE9F6B5C053E1, D1FBCA0416D38B9CA510FB01CF251E60B244D38080E6668948ED927D2350ED49 ] CNG             C:\Windows\system32\Drivers\cng.sys
20:12:21.0205 0x1214  CNG - ok
20:12:21.0221 0x1214  [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt        C:\Windows\system32\DRIVERS\compbatt.sys
20:12:21.0252 0x1214  Compbatt - ok
20:12:21.0314 0x1214  [ F26B3A86F6FA87CA360B879581AB4123, 723904362614FE47F6CC0EA0656BA1B47EA32D73BAFB61688A5E5CAE4340B1BF ] CompositeBus    C:\Windows\system32\DRIVERS\CompositeBus.sys
20:12:21.0470 0x1214  CompositeBus - ok
20:12:21.0502 0x1214  COMSysApp - ok
20:12:21.0548 0x1214  [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk         C:\Windows\system32\DRIVERS\crcdisk.sys
20:12:21.0626 0x1214  crcdisk - ok
20:12:21.0751 0x1214  [ BAF19B633933A9FB4883D27D66C39E9A, 2D8ABB5161736CCCADA67B3E6A8D70B0B5E1E3FE6084561891F394DA191B3439 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
20:12:21.0767 0x1214  CryptSvc - ok
20:12:21.0860 0x1214  [ 003626F7CA17C204F16CD5047AF0703A, BA9063D77A60AF1107A1A6B3C1DD6F1EF3D9DCE7616BAC67DF13AEDD67B683F3 ] danewFltr       C:\Windows\system32\drivers\danew.sys
20:12:21.0876 0x1214  danewFltr - ok
20:12:22.0079 0x1214  [ 7266972E86890E2B30C0C322E906B027, BFA30E85F5BD3AA933913BD7C6D2B5993DB7AFB0C98349B61A6BEF0BDC8A3680 ] DcomLaunch      C:\Windows\system32\rpcss.dll
20:12:22.0094 0x1214  DcomLaunch - ok
20:12:22.0360 0x1214  [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc       C:\Windows\System32\defragsvc.dll
20:12:22.0500 0x1214  defragsvc - ok
20:12:22.0562 0x1214  [ 3F1DC527070ACB87E40AFE46EF6DA749, 5CB9CB94854AF06BEA02AF3E0562B8ECF72B2B23ED657A3F5E17CD3552F3EF84 ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
20:12:22.0594 0x1214  DfsC - ok
20:12:22.0765 0x1214  [ A64CC0B5D93F25BF5D052A1FEBE71E68, 839EC10F08397F8DC0BB7CEB170A84A85865E4ABB7B11A4CEE63275B6F5AA517 ] dg_ssudbus      C:\Windows\system32\DRIVERS\ssudbus.sys
20:12:22.0796 0x1214  dg_ssudbus - ok
20:12:22.0874 0x1214  [ CE3B9562D997F69B330D181A8875960F, 6FEE6622859198C5C13545867EF7CFE8EDC991360E976F792313DAA9C82CC5C8 ] Dhcp            C:\Windows\system32\dhcpcore.dll
20:12:22.0921 0x1214  Dhcp - ok
20:12:22.0937 0x1214  [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache        C:\Windows\system32\drivers\discache.sys
20:12:22.0952 0x1214  discache - ok
20:12:22.0984 0x1214  [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk            C:\Windows\system32\DRIVERS\disk.sys
20:12:22.0999 0x1214  Disk - ok
20:12:23.0030 0x1214  [ 676108C4E3AA6F6B34633748BD0BEBD9, 953286126E482EF3A9A1833680EFF86D657BD6C5411B9AEC2D7828ADE63D25AD ] Dnscache        C:\Windows\System32\dnsrslvr.dll
20:12:23.0046 0x1214  Dnscache - ok
20:12:23.0077 0x1214  [ 14452ACDB09B70964C8C21BF80A13ACB, DA0AAAC04626EFF4256D7095FF1DDA1F1B17676E26990C418BDF5090476F2AB4 ] dot3svc         C:\Windows\System32\dot3svc.dll
20:12:23.0108 0x1214  dot3svc - ok
20:12:23.0155 0x1214  [ 8C2BA6BEA949EE6E68385F5692BAFB94, 1047F473DCE0FB56BEA5C1B7929752C1FBAB5983C8202ABB4EEA48FCD60A353A ] DPS             C:\Windows\system32\dps.dll
20:12:23.0155 0x1214  DPS - ok
20:12:23.0202 0x1214  [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
20:12:23.0202 0x1214  drmkaud - ok
20:12:23.0296 0x1214  [ 61E894FE1E9CC720C909E6E343351794, 2C8540ED0A2C7028B242289078B4C2D8678D26FB7429AB3B33C136BB47B178C3 ] DsiWMIService   C:\Program Files (x86)\Launch Manager\dsiwmis.exe
20:12:23.0296 0x1214  DsiWMIService - ok
20:12:23.0420 0x1214  [ 1633B9ABF52784A1331476397A48CBEF, 697780697C4C55FCCF5FB65C93FB37B3F5A43BF0C59FDBB9EF822D0E993E47BD ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
20:12:23.0498 0x1214  DXGKrnl - ok
20:12:23.0561 0x1214  [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost         C:\Windows\System32\eapsvc.dll
20:12:23.0576 0x1214  EapHost - ok
20:12:23.0764 0x1214  [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv           C:\Windows\system32\DRIVERS\evbda.sys
20:12:23.0966 0x1214  ebdrv - ok
20:12:24.0122 0x1214  [ 0793F40B9B8A1BDD266296409DBD91EA, 8A383FC9A66A327905C340D06138980F9E489479535A2C2AAE5E8BB14A74826E ] EFS             C:\Windows\System32\lsass.exe
20:12:24.0122 0x1214  EFS - ok
20:12:24.0232 0x1214  [ 3D69FAE60EDE442E004611A4EE4DB44C, 480D3F7604C9A70570BBFFF3CA0FABA216805BB38D4F8A73BB50996B547D8017 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
20:12:24.0278 0x1214  ehRecvr - ok
20:12:24.0325 0x1214  [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched         C:\Windows\ehome\ehsched.exe
20:12:24.0325 0x1214  ehSched - ok
20:12:24.0450 0x1214  [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor         C:\Windows\system32\DRIVERS\elxstor.sys
20:12:24.0497 0x1214  elxstor - ok
20:12:24.0622 0x1214  [ 49EEF52BFB986A2B5D70F4EC12637D7B, C42C93EC36B4BD0AFF4248AD571F56FB5F39D5C57B93C01EBB34997A262E41A9 ] ePowerSvc       C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
20:12:24.0637 0x1214  ePowerSvc - ok
20:12:24.0653 0x1214  [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev          C:\Windows\system32\DRIVERS\errdev.sys
20:12:24.0653 0x1214  ErrDev - ok
20:12:24.0731 0x1214  [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem     C:\Windows\system32\es.dll
20:12:24.0746 0x1214  EventSystem - ok
20:12:24.0809 0x1214  [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat           C:\Windows\system32\drivers\exfat.sys
20:12:24.0824 0x1214  exfat - ok
20:12:24.0840 0x1214  [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
20:12:24.0856 0x1214  fastfat - ok
20:12:24.0918 0x1214  [ D607B2F1BEE3992AA6C2C92C0A2F0855, E22301C8F01DBF0A38A85165959BB070647C996CB1BCD50FDFE3DDDCA427DF2A ] Fax             C:\Windows\system32\fxssvc.exe
20:12:24.0949 0x1214  Fax - ok
20:12:25.0027 0x1214  [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc             C:\Windows\system32\DRIVERS\fdc.sys
20:12:25.0043 0x1214  fdc - ok
20:12:25.0074 0x1214  [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost         C:\Windows\system32\fdPHost.dll
20:12:25.0074 0x1214  fdPHost - ok
20:12:25.0090 0x1214  [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub        C:\Windows\system32\fdrespub.dll
20:12:25.0105 0x1214  FDResPub - ok
20:12:25.0121 0x1214  [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
20:12:25.0121 0x1214  FileInfo - ok
20:12:25.0152 0x1214  [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
20:12:25.0168 0x1214  Filetrace - ok
20:12:25.0183 0x1214  [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk        C:\Windows\system32\DRIVERS\flpydisk.sys
20:12:25.0183 0x1214  flpydisk - ok
20:12:25.0230 0x1214  [ F7866AF72ABBAF84B1FA5AA195378C59, 9D522044FE9C18FB3EC327E675737C01F2A8231DDE900421D3A431596946A7F8 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
20:12:25.0246 0x1214  FltMgr - ok
20:12:25.0370 0x1214  [ BC00505CFDA789ED3BE95D2FF38C4875, 9CB98AFF8A9740CFB53BDFB3DD40A76EB79C160CF2DF03E5EEFF6F2109216FEB ] FontCache       C:\Windows\system32\FntCache.dll
20:12:25.0433 0x1214  FontCache - ok
20:12:25.0636 0x1214  [ 8D89E3131C27FDD6932189CB785E1B7A, AC7DA4C5E6D2E41D1A1DE146E46F034FAF0FB11AD801F070F2D5CD08166E9EB7 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
20:12:25.0682 0x1214  FontCache3.0.0.0 - ok
20:12:25.0714 0x1214  [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
20:12:25.0729 0x1214  FsDepends - ok
20:12:25.0885 0x1214  [ 96AC62F059225E543E4AB0FC44DB6024, C2767D56C7960618A34FA5CA80CB430FBCECAFF730358560EF7AE6C71363126A ] fssfltr         C:\Windows\system32\DRIVERS\fssfltr.sys
20:12:25.0885 0x1214  fssfltr - ok
20:12:26.0182 0x1214  [ 40CDFAD174B3D5E80F95DDA003C0B97F, 2DA149CE42B87681ECDCC8905D0957443F430A9C7002FF78F22A95F9112A7C4C ] fsssvc          C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe
20:12:26.0416 0x1214  fsssvc - ok
20:12:26.0462 0x1214  [ D3E3F93D67821A2DB2B3D9FAC2DC2064, 727FAA7E15A20ED3A37668D294ABDE6EAF1C87C34EE283C99EE3303E85001404 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
20:12:26.0462 0x1214  Fs_Rec - ok
20:12:26.0665 0x1214  [ 1F44F8559E61A8306ECC67BB1E168B7C, 5B7CDD4EDF128B48817145357BB36E2107F0D081C26004B44BFF7C63AD29D99B ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
20:12:26.0728 0x1214  fvevol - ok
20:12:26.0821 0x1214  [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx        C:\Windows\system32\DRIVERS\gagp30kx.sys
20:12:26.0821 0x1214  gagp30kx - ok
20:12:27.0040 0x1214  [ 6858C318E8DAA40E747E6FB9B214E104, B9EAA473FE9FDB1E3BFE3A3A98B6E1999E315DBCB028BB0771F1AA1D6C72F75A ] GameConsoleService C:\Program Files (x86)\Acer Games\Acer Game Console\GameConsoleService.exe
20:12:27.0102 0x1214  GameConsoleService - ok
20:12:27.0227 0x1214  [ 8E98D21EE06192492A5671A6144D092F, B8F656B34D361EA5AFB47F3A67AB2221580DADA59C8CD0CB83181E4AD8B562B4 ] GEARAspiWDM     C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
20:12:27.0227 0x1214  GEARAspiWDM - ok
20:12:27.0461 0x1214  [ FE5AB4525BC2EC68B9119A6E5D40128B, 088DE37982CEE78A0C1181389A3BFF1E352DF504074B3E8F3EA244DB271BF216 ] gpsvc           C:\Windows\System32\gpsvc.dll
20:12:27.0492 0x1214  gpsvc - ok
20:12:27.0913 0x1214  [ 816FD5A6F3C2F3D600900096632FC60E, D92401C4B56663F8A12B6390562608A125713408B00266C53844129679E48E9C ] Greg_Service    C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
20:12:27.0944 0x1214  Greg_Service - ok
20:12:28.0069 0x1214  [ 8F0DE4FEF8201E306F9938B0905AC96A, CA7153FE0C037D79FBF7CE0E090D741FB52BCCBBBD4CA505EF4849A0C4199F72 ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
20:12:28.0069 0x1214  gupdate - ok
20:12:28.0132 0x1214  [ 8F0DE4FEF8201E306F9938B0905AC96A, CA7153FE0C037D79FBF7CE0E090D741FB52BCCBBBD4CA505EF4849A0C4199F72 ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
20:12:28.0132 0x1214  gupdatem - ok
20:12:28.0319 0x1214  [ 5D4BC124FAAE6730AC002CDB67BF1A1C, 00294F4DC7D17F6DD2A22B9C3299BED40146BA45C972367154D20DB502472551 ] gusvc           C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
20:12:28.0366 0x1214  gusvc - ok
20:12:28.0412 0x1214  [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
20:12:28.0428 0x1214  hcw85cir - ok
20:12:28.0490 0x1214  [ 6410F6F415B2A5A9037224C41DA8BF12, 5B8452BC49FDA2215281D27B22FA9BE46B0460F51C4DC70E58B687CFB541F3A5 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
20:12:28.0506 0x1214  HdAudAddService - ok
20:12:28.0553 0x1214  [ 0A49913402747A0B67DE940FB42CBDBB, 61A45DBDCEB4A2D5C3C28F6BC8C5ADC51D0240A7553DF44BCC4355FC06F72B83 ] HDAudBus        C:\Windows\system32\DRIVERS\HDAudBus.sys
20:12:28.0553 0x1214  HDAudBus - ok
20:12:28.0553 0x1214  [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt         C:\Windows\system32\DRIVERS\HidBatt.sys
20:12:28.0568 0x1214  HidBatt - ok
20:12:28.0568 0x1214  [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth          C:\Windows\system32\DRIVERS\hidbth.sys
20:12:28.0584 0x1214  HidBth - ok
20:12:28.0584 0x1214  [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr           C:\Windows\system32\DRIVERS\hidir.sys
20:12:28.0646 0x1214  HidIr - ok
20:12:28.0678 0x1214  [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv         C:\Windows\System32\hidserv.dll
20:12:28.0693 0x1214  hidserv - ok
20:12:28.0787 0x1214  [ B3BF6B5B50006DEF50B66306D99FCF6F, D39A1DEBE7C464922919826D15199ED25E263BF58633593DD412D78F98921417 ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
20:12:28.0787 0x1214  HidUsb - ok
20:12:28.0802 0x1214  [ EFA58EDE58DD74388FFD04CB32681518, 76D81F9BC1A4D85A779B79DEC23B79F1568AA236CD49247414093CDC1FCC150F ] hkmsvc          C:\Windows\system32\kmsvc.dll
20:12:28.0818 0x1214  hkmsvc - ok
20:12:28.0849 0x1214  [ 046B2673767CA626E2CFB7FDF735E9E8, 9C932DCC5DE9B1919AB38C01D76AD7BBAF491DE6D158662407974748BC0B4C6C ] HomeGroupListener C:\Windows\system32\ListSvc.dll
20:12:28.0865 0x1214  HomeGroupListener - ok
20:12:28.0896 0x1214  [ 06A7422224D9865A5613710A089987DF, EF604B4B6918D3FDC8E90ED9004E6E7340E0F399C214C65CCE3A7C8C576FA1C0 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
20:12:28.0896 0x1214  HomeGroupProvider - ok
20:12:29.0005 0x1214  [ 0886D440058F203EBA0E1825E4355914, BC49C4CEFE324A08C864A4BF4FEA9A70151FAB7CC30BDC28344F3FFD2F500070 ] HpSAMD          C:\Windows\system32\DRIVERS\HpSAMD.sys
20:12:29.0021 0x1214  HpSAMD - ok
20:12:29.0083 0x1214  [ CEE049CAC4EFA7F4E1E4AD014414A5D4, 433AE2D845850F1D7A48275BBD87B3F0E7DD48F2282C727C4B777ECD92CC331D ] HTTP            C:\Windows\system32\drivers\HTTP.sys
20:12:29.0130 0x1214  HTTP - ok
20:12:29.0161 0x1214  [ F17766A19145F111856378DF337A5D79, FC1633FB865A5324EBCBE5F97D297B899FABBDD965D862C2EFC743CD36F47E62 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
20:12:29.0177 0x1214  hwpolicy - ok
20:12:29.0224 0x1214  [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt        C:\Windows\system32\DRIVERS\i8042prt.sys
20:12:29.0224 0x1214  i8042prt - ok
20:12:29.0286 0x1214  [ D83EFB6FD45DF9D55E9A1AFC63640D50, 0494F8F7CB3ED11FD8D0B838CB71271AF7A3CBFCB7F2CB043A9392B5106A3C7B ] iaStorV         C:\Windows\system32\DRIVERS\iaStorV.sys
20:12:29.0395 0x1214  iaStorV - ok
20:12:29.0489 0x1214  [ 2F2BE70D3E02B6FA877921AB9516D43C, E04255EE4BD95FC1539EB1EB9F702B039F65993D31A4531DA487274543EF5226 ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
20:12:29.0582 0x1214  idsvc - ok
20:12:29.0863 0x1214  [ A87261EF1546325B559374F5689CF5BC, 8DE48A8A13A32AAAC54CDDF58F3F61BE3E2802C1D9CA1CA98E57EB0D65FB6002 ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
20:12:30.0206 0x1214  igfx - ok
20:12:30.0362 0x1214  [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp           C:\Windows\system32\DRIVERS\iirsp.sys
20:12:30.0362 0x1214  iirsp - ok
20:12:30.0425 0x1214  [ C5B4683680DF085B57BC53E5EF34861F, 9C06517DFCB3ED7BB1166F7EB6CCC8713E6B68283C75420C0EDC182094AA1B8F ] IKEEXT          C:\Windows\System32\ikeext.dll
20:12:30.0487 0x1214  IKEEXT - ok
20:12:30.0534 0x1214  [ C4E67D3037DC79E39D7136581A947F50, 1A632388942B2E3015C021EAA2470B1B4CB8BDFB16B24D85F66245374FE7A0EF ] inspect         C:\Windows\system32\DRIVERS\inspect.sys
20:12:30.0550 0x1214  inspect - ok
20:12:30.0659 0x1214  [ 28CEEFBD2C63F91DC17DED3E8D27ECF5, 8E39FDF63A8217437A4A08D5E353F9592331CC220ADB9509E410AF7B4295D155 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
20:12:30.0971 0x1214  IntcAzAudAddService - ok
20:12:30.0986 0x1214  [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide        C:\Windows\system32\DRIVERS\intelide.sys
20:12:31.0002 0x1214  intelide - ok
20:12:31.0018 0x1214  [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
20:12:31.0033 0x1214  intelppm - ok
20:12:31.0064 0x1214  [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
20:12:31.0080 0x1214  IPBusEnum - ok
20:12:31.0080 0x1214  [ 722DD294DF62483CECAAE6E094B4D695, 41ABB42EF969EA8A84B546908EBBDC2411D964DE101CE6DD3D7ECF109085E0C0 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
20:12:31.0096 0x1214  IpFilterDriver - ok
20:12:31.0252 0x1214  [ F8E058D17363EC580E4B7232778B6CB5, 02352919F349C57930A0B032FBDC45327FB473D310DE7AC721F4694FDE7D21FB ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
20:12:31.0267 0x1214  iphlpsvc - ok
20:12:31.0283 0x1214  [ E2B4A4494DB7CB9B89B55CA268C337C5, C59BC4AA03D10647641EC7533F78BC7E2EA6FC48B8B2CF1A49B5148EF40A90FB ] IPMIDRV         C:\Windows\system32\DRIVERS\IPMIDrv.sys
20:12:31.0283 0x1214  IPMIDRV - ok
20:12:31.0330 0x1214  [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
20:12:31.0330 0x1214  IPNAT - ok
20:12:31.0486 0x1214  [ 0F261EC4F514926177C70C1832374231, 7E61B89FE2651C0C7951E10454267174550677DEAB1C497571A9B0B583687304 ] iPod Service    C:\Program Files\iPod\bin\iPodService.exe
20:12:31.0501 0x1214  iPod Service - ok
20:12:31.0564 0x1214  [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM          C:\Windows\system32\drivers\irenum.sys
20:12:31.0579 0x1214  IRENUM - ok
20:12:31.0610 0x1214  [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp          C:\Windows\system32\DRIVERS\isapnp.sys
20:12:31.0626 0x1214  isapnp - ok
20:12:31.0642 0x1214  [ FA4D2557DE56D45B0A346F93564BE6E1, 2827EC3582FF59FFD55BBD4A4F0DDFFEAD4F2537FA043B3A69904FE920B1619C ] iScsiPrt        C:\Windows\system32\DRIVERS\msiscsi.sys
20:12:31.0657 0x1214  iScsiPrt - ok
20:12:31.0813 0x1214  [ B7AF8561633DEA48564F0631D568A48C, 40AE15EBCBFB8C8298DD152C72E334FBEA64E3E9B45E3314BCED7B7E2DE5C38C ] iTeleportService C:\Program Files (x86)\iTeleport\iTeleport Connect\iTeleportService.exe
20:12:31.0907 0x1214  iTeleportService - ok
20:12:31.0985 0x1214  [ 9D7EA8C7215D8D4AE7BE110EEE61085D, C8AEC99985AEAD52FA4FA14DA98EE465594EA1392E2010D0B474CD467D766EE8 ] k57nd60a        C:\Windows\system32\DRIVERS\k57nd60a.sys
20:12:32.0016 0x1214  k57nd60a - ok
20:12:32.0047 0x1214  [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
20:12:32.0125 0x1214  kbdclass - ok
20:12:32.0188 0x1214  [ 6DEF98F8541E1B5DCEB2C822A11F7323, F6EE4A7A6A7A1F243D32CA9241CA4816C92EB7BF2AADDD09234968C2CAAE6C0D ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
20:12:32.0203 0x1214  kbdhid - ok
20:12:32.0250 0x1214  [ 0793F40B9B8A1BDD266296409DBD91EA, 8A383FC9A66A327905C340D06138980F9E489479535A2C2AAE5E8BB14A74826E ] KeyIso          C:\Windows\system32\lsass.exe
20:12:32.0250 0x1214  KeyIso - ok
20:12:32.0297 0x1214  [ E8B6FCC9C83535C67F835D407620BD27, 74B63F3BFB756FF0B0AD6A6C1535C0A1A0630295ECCBC078B00F2449718B0870 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
20:12:32.0312 0x1214  KSecDD - ok
20:12:32.0375 0x1214  [ A8C63880EF6F4D3FEC7B616B9C060215, 036AE3ABBF991F5748C5C46E1DF62FBBC832BCDBF8C1B6E3C22A22A3703BBBCA ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
20:12:32.0468 0x1214  KSecPkg - ok
20:12:32.0484 0x1214  [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
20:12:32.0500 0x1214  ksthunk - ok
20:12:32.0578 0x1214  [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm           C:\Windows\system32\msdtckrm.dll
20:12:32.0624 0x1214  KtmRm - ok
20:12:32.0812 0x1214  [ 2AC603C3188C704CFCE353659AA7AD71, 0DAC2E8858221145FA35883BAE0D6484E60EB624158DE9F063FF209951CD1CDF ] L1E             C:\Windows\system32\DRIVERS\L1E62x64.sys
20:12:32.0812 0x1214  L1E - ok
20:12:32.0936 0x1214  [ 81F1D04D4D0E433099365127375FD501, C2A81B5A482C974E8108806486EC28CB2D81400D42639682FE7B7A9BDF14BA9B ] LanmanServer    C:\Windows\System32\srvsvc.dll
20:12:32.0968 0x1214  LanmanServer - ok
20:12:33.0014 0x1214  [ 27026EAC8818E8A6C00A1CAD2F11D29A, A12858CCB3B2419D66C667A46B106DA7A7BA97FFFA9634BFAE95DDF193C430D5 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
20:12:33.0077 0x1214  LanmanWorkstation - ok
20:12:34.0184 0x1214  [ 4D99FCA201B72E0F2CA996E357BAA170, AD007A52E0C13CB0D1214D1D89C5A49955C8568C85E692D28BE6941176241DFE ] Lavasoft Ad-Aware Service C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe
20:12:34.0247 0x1214  Lavasoft Ad-Aware Service - ok
20:12:34.0418 0x1214  [ 9A7FA6371F68335FD3C3D6488BC5A9F8, 1D5007B70A7DB3D8B09C187857614CC2A67ED5577440929EEC5A6E56C2CE19C6 ] Lavasoft Kernexplorer C:\Program Files (x86)\Lavasoft\Ad-Aware\KernExplorer64.sys
20:12:34.0434 0x1214  Lavasoft Kernexplorer - ok
20:12:34.0574 0x1214  [ C8B3131857931AE76798A741CC52B021, 5A792522DDF2CE955109ED820FEA437E76866E0DABC5A66ACAD7F06C1C203049 ] Lbd             C:\Windows\system32\DRIVERS\Lbd.sys
20:12:34.0590 0x1214  Lbd - ok
20:12:34.0777 0x1214  [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
20:12:34.0824 0x1214  lltdio - ok
20:12:34.0964 0x1214  [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc         C:\Windows\System32\lltdsvc.dll
20:12:34.0996 0x1214  lltdsvc - ok
20:12:35.0027 0x1214  [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts         C:\Windows\System32\lmhsvc.dll
20:12:35.0027 0x1214  lmhosts - ok
20:12:35.0152 0x1214  [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC          C:\Windows\system32\DRIVERS\lsi_fc.sys
20:12:35.0167 0x1214  LSI_FC - ok
20:12:35.0214 0x1214  [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS         C:\Windows\system32\DRIVERS\lsi_sas.sys
20:12:35.0214 0x1214  LSI_SAS - ok
20:12:35.0245 0x1214  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2        C:\Windows\system32\DRIVERS\lsi_sas2.sys
20:12:35.0261 0x1214  LSI_SAS2 - ok
20:12:35.0276 0x1214  [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI        C:\Windows\system32\DRIVERS\lsi_scsi.sys
20:12:35.0292 0x1214  LSI_SCSI - ok
20:12:35.0323 0x1214  [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv           C:\Windows\system32\drivers\luafv.sys
20:12:35.0417 0x1214  luafv - ok
20:12:35.0510 0x1214  [ 024DA28053D57E9E32BEE52600576BBB, 8EC636DAB90A835DEBA2EC6176F4547EEF557415FF77C6378EF423569702731E ] MarvinBus       C:\Windows\system32\DRIVERS\MarvinBus64.sys
20:12:35.0526 0x1214  MarvinBus - ok
20:12:35.0916 0x1214  [ B9F34AE6396DD16C5952BB1069E75173, 6646AE76C142D1DE9479C080EDDCBEFA25C7F18D6E9FEF6190E41C71A39B6C82 ] McAfee SiteAdvisor Service c:\PROGRA~2\mcafee\SITEAD~1\McSACore.exe
20:12:35.0932 0x1214  McAfee SiteAdvisor Service - ok
20:12:36.0181 0x1214  [ F84C8F1000BC11E3B7B23CBD3BAFF111, BB4C4FFE3F6C9E5C16C06F6F666F177B94E1CF878397BCC0BDAF6EB3341AAED8 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
20:12:36.0212 0x1214  Mcx2Svc - ok
20:12:36.0275 0x1214  [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas         C:\Windows\system32\DRIVERS\megasas.sys
20:12:36.0306 0x1214  megasas - ok
20:12:36.0322 0x1214  [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR          C:\Windows\system32\DRIVERS\MegaSR.sys
20:12:36.0353 0x1214  MegaSR - ok
20:12:36.0556 0x1214  [ 123271BD5237AB991DC5C21FDF8835EB, 004F8F9228EE291A0E36CE33078D572D61733516F9AA5CFC832AF204C6869E89 ] Microsoft Office Groove Audit Service C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe
20:12:36.0634 0x1214  Microsoft Office Groove Audit Service - ok
20:12:36.0696 0x1214  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS           C:\Windows\system32\mmcss.dll
20:12:36.0696 0x1214  MMCSS - ok
20:12:36.0727 0x1214  [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem           C:\Windows\system32\drivers\modem.sys
20:12:36.0727 0x1214  Modem - ok
20:12:36.0805 0x1214  [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
20:12:36.0805 0x1214  monitor - ok
20:12:36.0821 0x1214  motandroidusb - ok
20:12:36.0946 0x1214  motccgp - ok
20:12:37.0055 0x1214  motccgpfl - ok
20:12:37.0070 0x1214  MotoSwitchService - ok
20:12:37.0117 0x1214  [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
20:12:37.0148 0x1214  mouclass - ok
20:12:37.0180 0x1214  [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
20:12:37.0195 0x1214  mouhid - ok
20:12:37.0242 0x1214  [ 791AF66C4D0E7C90A3646066386FB571, BF67643099494AEADDDC85E4D97AFF1017806A1DF554F9BE6C864FFECC9EAF42 ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
20:12:37.0273 0x1214  mountmgr - ok
20:12:37.0460 0x1214  [ 7EDBBB9351A38C6BB0FE98CFD44DB430, FF77429D7FF3429AD15FD29B4F0F1CF1DA66F69651BCA9525889EDD47AB0306D ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
20:12:37.0585 0x1214  MozillaMaintenance - ok
20:12:37.0616 0x1214  [ 609D1D87649ECC19796F4D76D4C15CEA, 5369F4C83FBAE9C4CFB9ACD36F07479E3F3FD784D79B82AE8D95B818B9F9CE00 ] mpio            C:\Windows\system32\DRIVERS\mpio.sys
20:12:37.0632 0x1214  mpio - ok
20:12:37.0726 0x1214  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
20:12:37.0726 0x1214  mpsdrv - ok
20:12:37.0850 0x1214  [ AECAB449567D1846DAD63ECE49E893E3, 7A67A16A3E04574B7CAD097632ABA9B361BBEFDD6B36B7B8E3A1996EC529C2DC ] MpsSvc          C:\Windows\system32\mpssvc.dll
20:12:37.0960 0x1214  MpsSvc - ok
20:12:38.0006 0x1214  [ 30524261BB51D96D6FCBAC20C810183C, 19598A9CD0EAAE4ACBF1069E721AB2853452F33FCFB3B5113F023A88A90BF42D ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
20:12:38.0022 0x1214  MRxDAV - ok
20:12:38.0116 0x1214  [ B7F3D2C40BDF8FFB73EBFB19C77734E2, 8B433FB72BD298324C84A81459B8154F6C98584F5199D4BDF8CDEC7C380B4764 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
20:12:38.0131 0x1214  mrxsmb - ok
20:12:38.0287 0x1214  [ 86C6F88B5168CE21CF8D69D0B3FF5D19, 2DE66D1CD53DCB7995F45E0AE2BBAB12BAA2A10BEBDB0039E617A28BABB9C02E ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
20:12:38.0303 0x1214  mrxsmb10 - ok
20:12:38.0334 0x1214  [ B081069251C8E9F42CB8769D07148F9C, 68F531D7F86AC741FF263395C722E8DDABA60CD401A2F5F89D8B01030015A6F0 ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
20:12:38.0350 0x1214  mrxsmb20 - ok
20:12:38.0506 0x1214  [ 5C37497276E3B3A5488B23A326A754B7, 9982FCDAFB963868EB93A4DEF811A3167488EB5246BAC3F4AE960506FDF63967 ] msahci          C:\Windows\system32\DRIVERS\msahci.sys
20:12:38.0521 0x1214  msahci - ok
20:12:38.0615 0x1214  [ 8D27B597229AED79430FB9DB3BCBFBD0, 3D58E08B47E8AE419D405BF263929DFA6F2F5F0C2D79FD8D6F2CED6452F6F248 ] msdsm           C:\Windows\system32\DRIVERS\msdsm.sys
20:12:38.0630 0x1214  msdsm - ok
20:12:38.0708 0x1214  [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC           C:\Windows\System32\msdtc.exe
20:12:38.0724 0x1214  MSDTC - ok
20:12:38.0771 0x1214  [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
20:12:38.0771 0x1214  Msfs - ok
20:12:38.0833 0x1214  [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
20:12:38.0849 0x1214  mshidkmdf - ok
20:12:38.0880 0x1214  [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv        C:\Windows\system32\DRIVERS\msisadrv.sys
20:12:38.0927 0x1214  msisadrv - ok
20:12:39.0083 0x1214  [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
20:12:39.0098 0x1214  MSiSCSI - ok
20:12:39.0098 0x1214  msiserver - ok
20:12:39.0176 0x1214  [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
20:12:39.0192 0x1214  MSKSSRV - ok
20:12:39.0286 0x1214  [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
20:12:39.0286 0x1214  MSPCLOCK - ok
20:12:39.0379 0x1214  [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
20:12:39.0379 0x1214  MSPQM - ok
20:12:39.0566 0x1214  [ 89CB141AA8616D8C6A4610FA26C60964, 76E72F6A0348EDC58A8E6F88C7F024B8B077670400BD5A833811DAFCF9F517CC ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
20:12:39.0598 0x1214  MsRPC - ok
20:12:39.0629 0x1214  [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios        C:\Windows\system32\DRIVERS\mssmbios.sys
20:12:39.0629 0x1214  mssmbios - ok
20:12:39.0785 0x1214  [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
20:12:39.0785 0x1214  MSTEE - ok
20:12:39.0832 0x1214  [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig        C:\Windows\system32\DRIVERS\MTConfig.sys
20:12:39.0832 0x1214  MTConfig - ok
20:12:39.0863 0x1214  [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup             C:\Windows\system32\Drivers\mup.sys
20:12:39.0878 0x1214  Mup - ok
20:12:40.0019 0x1214  [ 6FFECC25B39DC7652A0CEC0ADA9DB589, 927EF066CBBA8353149F8C3B7C4299AC06FED439DA874D25CFB583E5912611A2 ] mwlPSDFilter    C:\Windows\system32\DRIVERS\mwlPSDFilter.sys
20:12:40.0019 0x1214  mwlPSDFilter - ok
20:12:40.0081 0x1214  [ 0BEFE32CA56D6EE89D58175725596A85, E36B9E6159AF7F67D549F7178896CCCB8FC3964531B1DA20CBDD465E632D8FCF ] mwlPSDNServ     C:\Windows\system32\DRIVERS\mwlPSDNServ.sys
20:12:40.0097 0x1214  mwlPSDNServ - ok
20:12:40.0159 0x1214  [ D43BC633B8660463E446E28E14A51262, C55F235B5E08FAC6D70B0FAC737D714E318A93F8E43FF8095B86A76559AF211D ] mwlPSDVDisk     C:\Windows\system32\DRIVERS\mwlPSDVDisk.sys
20:12:40.0159 0x1214  mwlPSDVDisk - ok
20:12:40.0690 0x1214  [ 22A4905C958BEB68D78385B633C1351B, FFF03DB9F0A7DCFFF221FA1EAEBF9EA04732F4D0562EA02412D178B887773574 ] MWLService      C:\Program Files (x86)\EgisTec MyWinLocker\x86\MWLService.exe
20:12:40.0690 0x1214  MWLService - ok
20:12:40.0799 0x1214  [ 4987E079A4530FA737A128BE54B63B12, 27E51CC7D4D90DC4397575491DE7EFE15808709F097E2828E46AA73C771A47A4 ] napagent        C:\Windows\system32\qagentRT.dll
20:12:40.0830 0x1214  napagent - ok
20:12:40.0877 0x1214  [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
20:12:40.0908 0x1214  NativeWifiP - ok
20:12:41.0048 0x1214  [ CAD515DBD07D082BB317D9928CE8962C, 7AFA6D6154AC68F9FCC37B7B3324F7A170AE91035805026445F24F6EB4FB7F2E ] NDIS            C:\Windows\system32\drivers\ndis.sys
20:12:41.0080 0x1214  NDIS - ok
20:12:41.0360 0x1214  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
20:12:41.0485 0x1214  NdisCap - ok
20:12:41.0610 0x1214  [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
20:12:41.0688 0x1214  NdisTapi - ok
20:12:41.0719 0x1214  [ F105BA1E22BF1F2EE8F005D4305E4BEC, 723DA09E13D0F50634D9F114590B837D16F7B36AA0DA2AB8F8C2D9991624EA8F ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
20:12:41.0735 0x1214  Ndisuio - ok
20:12:41.0813 0x1214  [ 557DFAB9CA1FCB036AC77564C010DAD3, 8A21B342AFE5B498FB62EDDC81A3ADA9570677B7A382666090E0ABB1F85FEF29 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
20:12:41.0844 0x1214  NdisWan - ok
20:12:41.0860 0x1214  [ 659B74FB74B86228D6338D643CD3E3CF, 83D741B7A2A204A661A80C226212749F514800060D05E217FA6DC14D62F38F80 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
20:12:41.0906 0x1214  NDProxy - ok
20:12:42.0016 0x1214  [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
20:12:42.0047 0x1214  NetBIOS - ok
20:12:42.0094 0x1214  [ 9162B273A44AB9DCE5B44362731D062A, 5A1BA6DBFEBB2618DC9D4CC55FA071C170A5D22FFB24CE62DD5B3210D8B45F39 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
20:12:42.0125 0x1214  NetBT - ok
20:12:42.0156 0x1214  [ 0793F40B9B8A1BDD266296409DBD91EA, 8A383FC9A66A327905C340D06138980F9E489479535A2C2AAE5E8BB14A74826E ] Netlogon        C:\Windows\system32\lsass.exe
20:12:42.0156 0x1214  Netlogon - ok
20:12:42.0203 0x1214  [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman          C:\Windows\System32\netman.dll
20:12:42.0218 0x1214  Netman - ok
20:12:42.0312 0x1214  [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:12:42.0764 0x1214  NetMsmqActivator - ok
20:12:42.0811 0x1214  [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:12:42.0811 0x1214  NetPipeActivator - ok
20:12:42.0983 0x1214  [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm        C:\Windows\System32\netprofm.dll
20:12:42.0998 0x1214  netprofm - ok
20:12:43.0014 0x1214  [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:12:43.0014 0x1214  NetTcpActivator - ok
20:12:43.0030 0x1214  [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:12:43.0030 0x1214  NetTcpPortSharing - ok
20:12:43.0123 0x1214  [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960         C:\Windows\system32\DRIVERS\nfrd960.sys
20:12:43.0123 0x1214  nfrd960 - ok
20:12:43.0342 0x1214  [ D9A0CE66046D6EFA0C61BAA885CBA0A8, 06C3331C7F3EE0E0B95E8302CB80315E965587C4D6231785B8ACF3FAE4731FAF ] NlaSvc          C:\Windows\System32\nlasvc.dll
20:12:43.0357 0x1214  NlaSvc - ok
20:12:43.0451 0x1214  [ 351533ACC2A069B94E80BBFC177E8FDF, 54B2749E0496ECC94CE65657627762B485CBC825767BAEDDAD0D2598820FFB9E ] NPF             C:\Windows\system32\drivers\npf.sys
20:12:43.0451 0x1214  NPF - ok
20:12:43.0544 0x1214  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs            C:\Windows\system32\drivers\Npfs.sys
20:12:43.0544 0x1214  Npfs - ok
20:12:43.0638 0x1214  [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi             C:\Windows\system32\nsisvc.dll
20:12:43.0654 0x1214  nsi - ok
20:12:43.0669 0x1214  [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
20:12:43.0685 0x1214  nsiproxy - ok
20:12:44.0153 0x1214  [ 356698A13C4630D5B31C37378D469196, BF5704AADE5C3DA370501747F12ED6E9C3349E342CCF89005AAE132B570BB42B ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
20:12:44.0215 0x1214  Ntfs - ok
20:12:44.0496 0x1214  [ 5B3CE960C62DBE864BE9A0BD043A3E30, 8474C68B0A8F94945C3278C682143F289245FC31C28DBB4609E993F90F7AD309 ] NTI IScheduleSvc C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
20:12:44.0496 0x1214  NTI IScheduleSvc - ok
20:12:44.0590 0x1214  [ 15221DD637D9D0FFC60848EBBF1DF538, 72E20DAAC3BF7CA9303DB515A7C93C629D7EEDA04C9A7CE91AFBCBB574F257D4 ] NTIBackupSvc    C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
20:12:44.0714 0x1214  NTIBackupSvc - ok
20:12:44.0746 0x1214  [ 64DDD0DEE976302F4BD93E5EFCC2F013, 19F54B4549999EF96FAE1B2B97973F281304843ADE0CF5823574453AB41E3E9C ] NTIDrvr         C:\Windows\system32\drivers\NTIDrvr.sys
20:12:44.0746 0x1214  NTIDrvr - ok
20:12:44.0855 0x1214  [ B5071E15D4C3F5EF5018AFF7E85A85E5, FF3ACAEDD127CC4BB0A6FD2D34B5E4D98478A86122BE31DB84702A12567288E0 ] NTISchedulerSvc C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
20:12:44.0933 0x1214  NTISchedulerSvc - ok
20:12:44.0948 0x1214  [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null            C:\Windows\system32\drivers\Null.sys
20:12:44.0964 0x1214  Null - ok
20:12:45.0042 0x1214  [ 3E38712941E9BB4DDBEE00AFFE3FED3D, 03F27CC0EF0A86D0B2DAAB6F72838CB2AB57FE5D40074828D5B7F118CD5CBEE7 ] nvraid          C:\Windows\system32\DRIVERS\nvraid.sys
20:12:45.0058 0x1214  nvraid - ok
20:12:45.0058 0x1214  [ 477DC4D6DEB99BE37084C9AC6D013DA1, E58C4D621CAAB1C68FB4A056576F48BC87913A5EBF0B511EFFB8F38C7D3E516E ] nvstor          C:\Windows\system32\DRIVERS\nvstor.sys
20:12:45.0073 0x1214  nvstor - ok
20:12:45.0089 0x1214  [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp          C:\Windows\system32\DRIVERS\nv_agp.sys
20:12:45.0120 0x1214  nv_agp - ok
20:12:45.0572 0x1214  [ 785F487A64950F3CB8E9F16253BA3B7B, 02445344BD214370A6D48B1CA04921D8EFCB13E676B5648266DD0E076C0822B6 ] odserv          C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
20:12:45.0619 0x1214  odserv - ok
20:12:45.0635 0x1214  [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394        C:\Windows\system32\DRIVERS\ohci1394.sys
20:12:45.0650 0x1214  ohci1394 - ok
20:12:45.0744 0x1214  [ 5A432A042DAE460ABE7199B758E8606C, 6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71 ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
20:12:45.0806 0x1214  ose - ok
20:12:45.0931 0x1214  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
20:12:45.0947 0x1214  p2pimsvc - ok
20:12:46.0025 0x1214  [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc          C:\Windows\system32\p2psvc.dll
20:12:46.0040 0x1214  p2psvc - ok
20:12:46.0118 0x1214  [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport         C:\Windows\system32\DRIVERS\parport.sys
20:12:46.0134 0x1214  Parport - ok
20:12:46.0212 0x1214  [ 90061B1ACFE8CCAA5345750FFE08D8B8, 76309683FFDF380AF9C6E1D9A52E46B011A0BF1026D747181D01F3312B7541C7 ] partmgr         C:\Windows\system32\drivers\partmgr.sys
20:12:46.0290 0x1214  partmgr - ok
20:12:46.0337 0x1214  [ 3AEAA8B561E63452C655DC0584922257, 04C072969B58657602EB0C21CEDF24FCEE14E61B90A0F758F93925EF2C9FC32D ] PcaSvc          C:\Windows\System32\pcasvc.dll
20:12:46.0399 0x1214  PcaSvc - ok
20:12:46.0462 0x1214  [ F36F6504009F2FB0DFD1B17A116AD74B, 33A4C217F7DC5E5B7E1B6CF335327C8FE6CC5D6D048D420252965574CAD83918 ] pci             C:\Windows\system32\DRIVERS\pci.sys
20:12:46.0477 0x1214  pci - ok
20:12:46.0524 0x1214  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide          C:\Windows\system32\DRIVERS\pciide.sys
20:12:46.0524 0x1214  pciide - ok
20:12:46.0586 0x1214  [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia          C:\Windows\system32\DRIVERS\pcmcia.sys
20:12:46.0602 0x1214  pcmcia - ok
20:12:46.0883 0x1214  [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw             C:\Windows\system32\drivers\pcw.sys
20:12:46.0883 0x1214  pcw - ok
20:12:47.0070 0x1214  [ 68769C3356B3BE5D1C732C97B9A80D6E, FB2D61145980A2899D1B7729184C54070315B0E63C9A22400A76CCD39E00029C ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
20:12:47.0101 0x1214  PEAUTH - ok
20:12:49.0878 0x1214  [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost        C:\Windows\SysWow64\perfhost.exe
20:12:49.0925 0x1214  PerfHost - ok
20:12:50.0175 0x1214  [ 557E9A86F65F0DE18C9B6751DFE9D3F1, 630EE5A80335929517A22D130C75CBCE882B92978372A6F36C30B9D353C7BB07 ] pla             C:\Windows\system32\pla.dll
20:12:50.0237 0x1214  pla - ok
20:12:50.0362 0x1214  [ 98B1721B8718164293B9701B98C52D77, 27F5F00D4AA394D4D8D0A0062EDC3F944B603E07CAAEDC5CC959BA1E8C208C2A ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
20:12:50.0424 0x1214  PlugPlay - ok
20:12:50.0455 0x1214  [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
20:12:50.0487 0x1214  PNRPAutoReg - ok
20:12:50.0549 0x1214  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
20:12:50.0565 0x1214  PNRPsvc - ok
20:12:50.0658 0x1214  [ 166EB40D1F5B47E615DE3D0FFFE5F243, E32BCCA0D25CD631C221986EBE9F6C54BF2F12DE1672D69CCC4E22AD07D0525A ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
20:12:50.0674 0x1214  PolicyAgent - ok
20:12:50.0752 0x1214  [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power           C:\Windows\system32\umpo.dll
20:12:50.0752 0x1214  Power - ok
20:12:50.0799 0x1214  [ 27CC19E81BA5E3403C48302127BDA717, C580FC552DDF9C163FC325B38B05C06FFD696495E4C01514BCD6346CFE4F0B40 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
20:12:50.0814 0x1214  PptpMiniport - ok
20:12:50.0861 0x1214  PQNTDrv - ok
20:12:50.0908 0x1214  [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor       C:\Windows\system32\DRIVERS\processr.sys
20:12:50.0923 0x1214  Processor - ok
20:12:50.0970 0x1214  [ F381975E1F4346DE875CB07339CE8D3A, 867BFC2E9A08E026289794019B8DE651A8604D06DD6A9BF166C29AFC24B6D26E ] ProfSvc         C:\Windows\system32\profsvc.dll
20:12:51.0001 0x1214  ProfSvc - ok
20:12:51.0017 0x1214  [ 0793F40B9B8A1BDD266296409DBD91EA, 8A383FC9A66A327905C340D06138980F9E489479535A2C2AAE5E8BB14A74826E ] ProtectedStorage C:\Windows\system32\lsass.exe
20:12:51.0033 0x1214  ProtectedStorage - ok
20:12:51.0111 0x1214  [ EE992183BD8EAEFD9973F352E587A299, 6B28930FAA0A54FAADDAF2231553D7F5D45C7227454C6D49A86DFC9EF6BC9043 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
20:12:51.0111 0x1214  Psched - ok
20:12:51.0189 0x1214  [ 225D3660F926FE761BC8CE10C512AA02, EAA2241E858CD0FF7A1F159FB03D0DF87735EAD1F245F0A569FB6A0330D1B007 ] PTSimBus        C:\Windows\system32\DRIVERS\PTSimBus.sys
20:12:51.0204 0x1214  PTSimBus - ok
20:12:51.0313 0x1214  [ BD2194786ABAF4860F41118C0C103E7B, 204C17CF91ADD84635907EC5B77FE02F25A098F0B2174D006610859F930E909E ] PTSimHid        C:\Windows\system32\DRIVERS\PTSimHid.sys
20:12:51.0313 0x1214  PTSimHid - ok
20:12:51.0407 0x1214  [ 6DAD398D60B9F6BAF0D3C53184C3CA4D, A63819B9CB38BD9E6DC4DADDBAB38CA8A3CEA1D8DB33AF4057A2135C160B40EC ] pwdrvio         C:\Windows\system32\pwdrvio.sys
20:12:51.0407 0x1214  pwdrvio - ok
20:12:51.0516 0x1214  [ FE194DD23B549C1C397EB1102EC84EDC, E1C9355A647584A8527B9BBBD3450E814FF0876C7C79496E8C718D9D5177591B ] pwdspio         C:\Windows\system32\pwdspio.sys
20:12:51.0516 0x1214  pwdspio - ok
20:12:51.0657 0x1214  [ 4712CC14E720ECCCC0AA16949D18AAF1, AF0223D118A25CA14EC1AF8A40A793D3CBCBE3576CCACBCD4F9A3D3F10407262 ] PxHlpa64        C:\Windows\system32\Drivers\PxHlpa64.sys
20:12:51.0672 0x1214  PxHlpa64 - ok
20:12:51.0859 0x1214  [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300          C:\Windows\system32\DRIVERS\ql2300.sys
20:12:51.0937 0x1214  ql2300 - ok
20:12:52.0000 0x1214  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx          C:\Windows\system32\DRIVERS\ql40xx.sys
20:12:52.0031 0x1214  ql40xx - ok
20:12:52.0093 0x1214  [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE           C:\Windows\system32\qwave.dll
20:12:52.0125 0x1214  QWAVE - ok
20:12:52.0156 0x1214  [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
20:12:52.0156 0x1214  QWAVEdrv - ok
20:12:52.0171 0x1214  [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
20:12:52.0171 0x1214  RasAcd - ok
20:12:52.0218 0x1214  [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
20:12:52.0234 0x1214  RasAgileVpn - ok
20:12:52.0281 0x1214  [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto         C:\Windows\System32\rasauto.dll
20:12:52.0296 0x1214  RasAuto - ok
20:12:52.0327 0x1214  [ 87A6E852A22991580D6D39ADC4790463, 0F757C6E5B57DFC239CE1BEC88EF16C07E7F1A40D629A9A6DF3CB6B88FB9E642 ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
20:12:52.0343 0x1214  Rasl2tp - ok
20:12:52.0452 0x1214  [ 47394ED3D16D053F5906EFE5AB51CC83, FE5D1249788DB6D85C55769251B0AED738D3BBA04DF57124E03397D3C0599286 ] RasMan          C:\Windows\System32\rasmans.dll
20:12:52.0483 0x1214  RasMan - ok
20:12:52.0530 0x1214  [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
20:12:52.0546 0x1214  RasPppoe - ok
20:12:52.0577 0x1214  [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
20:12:52.0593 0x1214  RasSstp - ok
20:12:52.0624 0x1214  [ 3BAC8142102C15D59A87757C1D41DCE5, C0C2C6887EA5A439E69221196348382ACE3E1942C9C6E0A970E153890F71724C ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
20:12:52.0655 0x1214  rdbss - ok
20:12:52.0671 0x1214  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus          C:\Windows\system32\DRIVERS\rdpbus.sys
20:12:52.0686 0x1214  rdpbus - ok
20:12:52.0733 0x1214  [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
20:12:52.0733 0x1214  RDPCDD - ok
20:12:52.0780 0x1214  [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
20:12:52.0780 0x1214  RDPENCDD - ok
20:12:52.0795 0x1214  [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
20:12:52.0811 0x1214  RDPREFMP - ok
20:12:52.0889 0x1214  [ 447DE7E3DEA39D422C1504F245B668B1, C54D90D2F9405E011E490D3C2F0F64488B87B969C95E367C076BBFCFD8654909 ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
20:12:52.0905 0x1214  RDPWD - ok
20:12:52.0967 0x1214  [ 634B9A2181D98F15941236886164EC8B, 15C55F05FD3CD751F619F18E2ADF91552AE82146501CD031402277F496A5B7D8 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
20:12:52.0983 0x1214  rdyboost - ok
20:12:53.0061 0x1214  [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess    C:\Windows\System32\mprdim.dll
20:12:53.0076 0x1214  RemoteAccess - ok
20:12:53.0139 0x1214  [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
20:12:53.0154 0x1214  RemoteRegistry - ok
20:12:53.0201 0x1214  [ 3DD798846E2C28102B922C56E71B7932, 30B111615D74CB2213997A5C08DD9C8613ADE441D9423CC1C49A753D13CE524D ] RFCOMM          C:\Windows\system32\DRIVERS\rfcomm.sys
20:12:53.0217 0x1214  RFCOMM - ok
20:12:53.0263 0x1214  [ 388D3DD1A6457280F3BADBA9F3ACD6B1, 5C534EA15195B1301C917904627AF09FE2ABA3FEE1641B5C87E8F3191BC49058 ] ROOTMODEM       C:\Windows\system32\Drivers\RootMdm.sys
20:12:53.0263 0x1214  ROOTMODEM - ok
20:12:53.0295 0x1214  [ B60F58F175DE20A6739194E85B035178, 6E66D6041AF0B69896E4556F9FF3A3AA70CF4B09FFBE68E14E60313C5E3FFDDB ] rpcapd          C:\Program Files (x86)\WinPcap\rpcapd.exe
20:12:53.0341 0x1214  rpcapd - ok
20:12:53.0435 0x1214  [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
20:12:53.0435 0x1214  RpcEptMapper - ok
20:12:53.0482 0x1214  [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator      C:\Windows\system32\locator.exe
20:12:53.0482 0x1214  RpcLocator - ok
20:12:53.0529 0x1214  [ 7266972E86890E2B30C0C322E906B027, BFA30E85F5BD3AA933913BD7C6D2B5993DB7AFB0C98349B61A6BEF0BDC8A3680 ] RpcSs           C:\Windows\system32\rpcss.dll
20:12:53.0544 0x1214  RpcSs - ok
20:12:53.0591 0x1214  [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
20:12:53.0622 0x1214  rspndr - ok
20:12:53.0685 0x1214  [ 3CEEE53BBF8BA284FF44585CEC0162FE, 5725A47BE8B7A9116983895FCB82CB2808B7B9C57BC285F3DFD7352E72DBC1FE ] RSUSBSTOR       C:\Windows\system32\Drivers\RtsUStor.sys
20:12:53.0700 0x1214  RSUSBSTOR - ok
20:12:53.0731 0x1214  [ 0793F40B9B8A1BDD266296409DBD91EA, 8A383FC9A66A327905C340D06138980F9E489479535A2C2AAE5E8BB14A74826E ] SamSs           C:\Windows\system32\lsass.exe
20:12:53.0731 0x1214  SamSs - ok
20:12:53.0856 0x1214  [ E3BBB89983DAF5622C1D50CF49F28227, 49370DC142D577D657BF5755AA9B8625C35D3DDAF1F9466B4888507FB8E6FF07 ] sbp2port        C:\Windows\system32\DRIVERS\sbp2port.sys
20:12:53.0856 0x1214  sbp2port - ok
20:12:53.0934 0x1214  [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
20:12:53.0950 0x1214  SCardSvr - ok
20:12:53.0965 0x1214  [ C94DA20C7E3BA1DCA269BC8460D98387, E1A5629728A79233B62BA87B4354BC3A332A853CC36A60E77B34923F4BCA8A61 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
20:12:53.0981 0x1214  scfilter - ok
20:12:54.0075 0x1214  [ EC56B171F85C7E855E7B0588AC503EEA, EDBC0E52DF00D73356F4B886D6CA2397B571A9D2245FEDC347A6D52A5467EA5D ] Schedule        C:\Windows\system32\schedsvc.dll
20:12:54.0168 0x1214  Schedule - ok
20:12:54.0231 0x1214  [ 312E2F82AF11E79906898AC3E3D58A1F, F6CB7D8B204B94F749D5DBEFD552150AAB16A34D629F87F73823A7504465F106 ] SCPolicySvc     C:\Windows\System32\certprop.dll
20:12:54.0231 0x1214  SCPolicySvc - ok
20:12:54.0246 0x1214  [ 765A27C3279CE11D14CB9E4F5869FCA5, B6C2EFFBA938828FEF7FE992A4C88B3154D053763C38762DCE13252FE9571FA1 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
20:12:54.0309 0x1214  SDRSVC - ok
20:12:54.0558 0x1214  [ AB4A13F99BE22A75046F770C23177D99, 7D8372C95BE7BBB5D1336713E050FC01179DAFACAB4B48A2B07B152074E07ACC ] SeaPort         C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
20:12:54.0558 0x1214  SeaPort - ok
20:12:54.0699 0x1214  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\Windows\system32\drivers\secdrv.sys
20:12:54.0714 0x1214  secdrv - ok
20:12:54.0777 0x1214  [ 463B386EBC70F98DA5DFF85F7E654346, 8E27B18B04AF587719D1DAE75A042DB998E06CAE112BD68626EF046036D2DCDC ] seclogon        C:\Windows\system32\seclogon.dll
20:12:54.0792 0x1214  seclogon - ok
20:12:54.0839 0x1214  [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS            C:\Windows\System32\sens.dll
20:12:54.0855 0x1214  SENS - ok
20:12:54.0870 0x1214  [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc        C:\Windows\system32\sensrsvc.dll
20:12:54.0886 0x1214  SensrSvc - ok
20:12:54.0933 0x1214  [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum         C:\Windows\system32\DRIVERS\serenum.sys
20:12:54.0933 0x1214  Serenum - ok
20:12:54.0995 0x1214  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial          C:\Windows\system32\DRIVERS\serial.sys
20:12:55.0011 0x1214  Serial - ok
20:12:55.0042 0x1214  [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse        C:\Windows\system32\DRIVERS\sermouse.sys
20:12:55.0057 0x1214  sermouse - ok
20:12:55.0120 0x1214  [ C3BC61CE47FF6F4E88AB8A3B429A36AF, 6CA53AD0CB7215BAE3467EC1FD490E3A18504BD6CD4F0FABF9BD37516AB9DFE0 ] SessionEnv      C:\Windows\system32\sessenv.dll
20:12:55.0135 0x1214  SessionEnv - ok
20:12:55.0198 0x1214  [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk         C:\Windows\system32\DRIVERS\sffdisk.sys
20:12:55.0198 0x1214  sffdisk - ok
20:12:55.0213 0x1214  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc        C:\Windows\system32\DRIVERS\sffp_mmc.sys
20:12:55.0213 0x1214  sffp_mmc - ok
20:12:55.0229 0x1214  [ 5588B8C6193EB1522490C122EB94DFFA, 53AE3597D3305F2839130A2F3567F1690564B922035503EB418B9DE1586AEA43 ] sffp_sd         C:\Windows\system32\DRIVERS\sffp_sd.sys
20:12:55.0229 0x1214  sffp_sd - ok
20:12:55.0229 0x1214  [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy         C:\Windows\system32\DRIVERS\sfloppy.sys
20:12:55.0245 0x1214  sfloppy - ok
20:12:55.0354 0x1214  [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess    C:\Windows\System32\ipnathlp.dll
20:12:55.0369 0x1214  SharedAccess - ok
20:12:55.0447 0x1214  [ 0298AC45D0EFFFB2DB4BAA7DD186E7BF, 1C1D17301A4D37DBF906955CCABD2A3FDA47AFB24CBA978CF851123762249848 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
20:12:55.0479 0x1214  ShellHWDetection - ok
20:12:55.0557 0x1214  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2        C:\Windows\system32\DRIVERS\SiSRaid2.sys
20:12:55.0572 0x1214  SiSRaid2 - ok
20:12:55.0650 0x1214  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4        C:\Windows\system32\DRIVERS\sisraid4.sys
20:12:55.0650 0x1214  SiSRaid4 - ok
20:12:55.0900 0x1214  [ F07AF60B152221472FBDB2FECEC4896D, A18FDCE8462A48429E249C44F0E49F844F2E3A4B5215349DE104F34D935EF983 ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
20:12:56.0071 0x1214  SkypeUpdate - ok
20:12:56.0118 0x1214  [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
20:12:56.0134 0x1214  Smb - ok
20:12:56.0274 0x1214  [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
20:12:56.0368 0x1214  SNMPTRAP - ok
20:12:56.0493 0x1214  [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr           C:\Windows\system32\drivers\spldr.sys
20:12:56.0493 0x1214  spldr - ok
20:12:56.0664 0x1214  [ 567977DC43CC13C4C35ED7084C0B84D5, 93EEC3ABA66DA83157F49F056EF1CB3355122204F2BB0F8B618064AF47D59A61 ] Spooler         C:\Windows\System32\spoolsv.exe
20:12:56.0680 0x1214  Spooler - ok
20:12:57.0803 0x1214  [ 913D843498553A1BC8F8DBAD6358E49F, F8B931FDABF669D642CBDCD2FF31E07F8A5E2D5F72E11D4A8FF219CCFB5825E9 ] sppsvc          C:\Windows\system32\sppsvc.exe
20:12:58.0006 0x1214  sppsvc - ok
20:12:58.0068 0x1214  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
20:12:58.0068 0x1214  sppuinotify - ok
20:12:58.0895 0x1214  [ 602884696850C86434530790B110E8EB, C9B734F070E55732B274C70381EA28AB574EF6AD3F606D3DC9B9B0038F3EDEEA ] sptd            C:\Windows\system32\Drivers\sptd.sys
20:12:58.0895 0x1214  Suspicious file ( NoAccess ): C:\Windows\system32\Drivers\sptd.sys. md5: 602884696850C86434530790B110E8EB, sha256: C9B734F070E55732B274C70381EA28AB574EF6AD3F606D3DC9B9B0038F3EDEEA
20:12:58.0926 0x1214  sptd - detected LockedFile.Multi.Generic ( 1 )
20:13:01.0906 0x1214  Detect skipped due to KSN trusted
20:13:01.0906 0x1214  sptd - ok
20:13:01.0968 0x1214  [ 2408C0366D96BCDF63E8F1C78E4A29C5, 66F646890695B5D80536E88B1566C8765D89CFE25954ED650F6D773EFF045016 ] srv             C:\Windows\system32\DRIVERS\srv.sys
20:13:01.0999 0x1214  srv - ok
20:13:02.0077 0x1214  [ 76548F7B818881B47D8D1AE1BE9C11F8, 8F1356B07A6A55746FC71B6DB0322128941AE890850196F2B19BC01E6FC9B41C ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
20:13:02.0109 0x1214  srv2 - ok
20:13:02.0171 0x1214  [ 0AF6E19D39C70844C5CAA8FB0183C36E, 4494EEFDEA7198888D32E74727E5BC0AC628FFA70B1FE7EB59DBEEDC1A95D0DD ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
20:13:02.0187 0x1214  srvnet - ok
20:13:02.0218 0x1214  [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
20:13:02.0233 0x1214  SSDPSRV - ok
20:13:02.0249 0x1214  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc         C:\Windows\system32\sstpsvc.dll
20:13:02.0265 0x1214  SstpSvc - ok
20:13:02.0327 0x1214  [ A3DB02B3FE0884E9167E457D167C8A73, E4E19A9C48B4C9037D3B8755010D385BBCC0B347AF42BE3388487CFD4E61C63E ] ssudmdm         C:\Windows\system32\DRIVERS\ssudmdm.sys
20:13:02.0343 0x1214  ssudmdm - ok
20:13:02.0421 0x1214  [ 29207B1D7FC5692C2FEACF5AAB5DC066, 8C14749EC67F29D5C9E3FA9A3E99BC4C23122453227319022255A1D2F890EAD7 ] ssudnflt        C:\Windows\system32\DRIVERS\ssudnflt.sys
20:13:02.0421 0x1214  ssudnflt - ok
20:13:02.0499 0x1214  [ 3AD097CBFFBED1D975F0B533A90402D0, 79EC9CBA6AF1AB0188BB12D6B97E51E5AF754E35673674CA02243136FB17A331 ] ssudserd        C:\Windows\system32\DRIVERS\ssudserd.sys
20:13:02.0514 0x1214  ssudserd - ok
20:13:02.0561 0x1214  [ 329EBFCE6BA46C29EA1B8624E7823CAD, AA916511694A5A3C684468469E595250E653EBF1174D150ACA3392C91F83A5E8 ] Start BT in service C:\Program Files (x86)\IVT Corporation\BlueSoleil\StartSkysolSvc.exe
20:13:02.0608 0x1214  Start BT in service - ok
20:13:02.0670 0x1214  Steam Client Service - ok
20:13:02.0701 0x1214  [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor        C:\Windows\system32\DRIVERS\stexstor.sys
20:13:02.0717 0x1214  stexstor - ok
20:13:02.0764 0x1214  [ 52D0E33B681BD0F33FDC08812FEE4F7D, BBEBC0773402F6697D2F14F63E5E4FDC2180466E7FDBD306E408535B10160249 ] stisvc          C:\Windows\System32\wiaservc.dll
20:13:02.0811 0x1214  stisvc - ok
20:13:02.0826 0x1214  [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum          C:\Windows\system32\DRIVERS\swenum.sys
20:13:02.0842 0x1214  swenum - ok
20:13:02.0935 0x1214  [ F577910A133A592234EBAAD3F3AFA258, 36F514740EE2D2B2F7ABFFFA13D575233EC4CE774EB58BF889C09930FEF1F443 ] SwitchBoard     C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
20:13:03.0013 0x1214  SwitchBoard - ok
20:13:03.0076 0x1214  [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv           C:\Windows\System32\swprv.dll
20:13:03.0123 0x1214  swprv - ok
20:13:03.0247 0x1214  [ 3C1284516A62078FB68F768DE4F1A7BE, 67ECD462335EF88773E4BAEAB230A68EC92A25F8CD8F115873F669205AE6A1A9 ] SysMain         C:\Windows\system32\sysmain.dll
20:13:03.0341 0x1214  SysMain - ok
20:13:03.0372 0x1214  Tablet2k - ok
20:13:03.0388 0x1214  [ 238935C3CF2854886DC7CBB2A0E2CC66, BBF7A70BF218A544CC1A6FB81F75EAD29D418794162936BE197D6D61FE0DB1C4 ] TabletInputService C:\Windows\System32\TabSvc.dll
20:13:03.0403 0x1214  TabletInputService - ok
20:13:03.0419 0x1214  [ 884264AC597B690C5707C89723BB8E7B, 9BF209A4128019421F7EC4AFF71103C5F411DB6CFB32AAC1633E789AD7A30708 ] TapiSrv         C:\Windows\System32\tapisrv.dll
20:13:03.0450 0x1214  TapiSrv - ok
20:13:03.0481 0x1214  [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS             C:\Windows\System32\tbssvc.dll
20:13:03.0481 0x1214  TBS - ok
20:13:03.0544 0x1214  [ 530A7F0966493DD437E4342F12CCD63B, 080B107F11CB9CFB315872846106224FA4190A6742B5B68C0E188A0229729EF3 ] TClass2k        C:\Windows\system32\DRIVERS\TClass2k.sys
20:13:03.0544 0x1214  TClass2k - ok
20:13:03.0669 0x1214  [ 90A2D722CF64D911879D6C4A4F802A4D, 2D825BC1FD73315BF51F36CAEF6A8EFE9042A4C260151C6351064260CF699194 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
20:13:03.0793 0x1214  Tcpip - ok
20:13:03.0856 0x1214  [ 90A2D722CF64D911879D6C4A4F802A4D, 2D825BC1FD73315BF51F36CAEF6A8EFE9042A4C260151C6351064260CF699194 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
20:13:03.0903 0x1214  TCPIP6 - ok
20:13:03.0934 0x1214  [ 76D078AF6F587B162D50210F761EB9ED, 3813171036B4036306CADC29F877ADAE44B241DDF65B3699C352B7CDA9EC68C9 ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
20:13:03.0949 0x1214  tcpipreg - ok
20:13:03.0981 0x1214  [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
20:13:03.0996 0x1214  TDPIPE - ok
20:13:04.0043 0x1214  [ 7518F7BCFD4B308ABC9192BACAF6C970, CF08E547EF4059DA3F5A2FCBA98939E84092BB6E0E37F9BBCD1E4D9EBB8A58BB ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
20:13:04.0043 0x1214  TDTCP - ok
20:13:04.0074 0x1214  [ 079125C4B17B01FCAEEBCE0BCB290C0F, B2DF1F2317EF5DCF0A89327332E9F2770ED604005B3138C095FF01AA63B91437 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
20:13:04.0074 0x1214  tdx - ok
20:13:04.0090 0x1214  [ C448651339196C0E869A355171875522, C12441CF21D7D47804952B968689D78E3BA0323A90C4C811B54A6B2E6260BAD4 ] TermDD          C:\Windows\system32\DRIVERS\termdd.sys
20:13:04.0105 0x1214  TermDD - ok
20:13:04.0152 0x1214  [ 0F05EC2887BFE197AD82A13287D2F404, 78C8A8FE9B1101430CA79875DA34413C35B6D7A5EE1932E454C50731335437A6 ] TermService     C:\Windows\System32\termsrv.dll
20:13:04.0215 0x1214  TermService - ok
20:13:04.0246 0x1214  [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes          C:\Windows\system32\themeservice.dll
20:13:04.0261 0x1214  Themes - ok
20:13:04.0293 0x1214  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER     C:\Windows\system32\mmcss.dll
20:13:04.0293 0x1214  THREADORDER - ok
20:13:04.0308 0x1214  [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks          C:\Windows\System32\trkwks.dll
20:13:04.0324 0x1214  TrkWks - ok
20:13:04.0371 0x1214  [ EA43DE1743C1BA0D2D17B8DB90C91D88, 54115F3002D2C87B82DDA62E96AD8296FFC59DC83E9F3D7F22325325DB73C486 ] truecrypt       C:\Windows\system32\drivers\truecrypt.sys
20:13:04.0386 0x1214  truecrypt - ok
20:13:04.0449 0x1214  [ 840F7FB849F5887A49BA18C13B2DA920, A59C40A090E03C0136A865FC54508BA938E7B467C8198BC009FE263E6C275781 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
20:13:04.0464 0x1214  TrustedInstaller - ok
20:13:04.0480 0x1214  [ 61B96C26131E37B24E93327A0BD1FB95, 7C551B6FD0447258BC3FDED72D8D41A0E8B731562170C264295592D45F85D9FF ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
20:13:04.0511 0x1214  tssecsrv - ok
20:13:04.0589 0x1214  [ 3836171A2CDF3AF8EF10856DB9835A70, 74CD0A21B4E5B47E8D762CC28282CA8D512D424EC591D90099B9F8D034AA2FC2 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
20:13:04.0589 0x1214  tunnel - ok
20:13:04.0620 0x1214  [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35          C:\Windows\system32\DRIVERS\uagp35.sys
20:13:04.0636 0x1214  uagp35 - ok
20:13:04.0667 0x1214  [ 2E22C1FD397A5A9FFEF55E9D1FC96C00, 4646712B3F3AF6188DBCE1A95D92261E8B15E9583FE5DD538EC884F48B51759D ] UBHelper        C:\Windows\system32\drivers\UBHelper.sys
20:13:04.0683 0x1214  UBHelper - ok
20:13:04.0745 0x1214  [ 01662B4865FDB282677B11CF416757CE, AF85FA61B2560E8387388C7CC4F9F4DDFA52E30631DAB1396B2186E7DF80F9E5 ] UCTblHid        C:\Windows\system32\DRIVERS\UCTblHid.sys
20:13:04.0745 0x1214  UCTblHid - ok
20:13:04.0792 0x1214  [ D47BAEAD86C65D4F4069D7CE0A4EDCEB, DBAEA010F11A5EFD961B1841308EA3F220A9FFB01F364BA9B8F72200DA2BBCD8 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
20:13:04.0807 0x1214  udfs - ok
20:13:04.0854 0x1214  [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect       C:\Windows\system32\UI0Detect.exe
20:13:04.0901 0x1214  UI0Detect - ok
20:13:04.0932 0x1214  [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx        C:\Windows\system32\DRIVERS\uliagpkx.sys
20:13:04.0948 0x1214  uliagpkx - ok
20:13:04.0979 0x1214  [ EAB6C35E62B1B0DB0D1B48B671D3A117, E65034BF757AE4D21F69D7A91A7990E326A29A0CE9F871FD704B5E6CCC821FF0 ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
20:13:04.0979 0x1214  umbus - ok
20:13:04.0979 0x1214  [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass          C:\Windows\system32\DRIVERS\umpass.sys
20:13:04.0995 0x1214  UmPass - ok
20:13:05.0073 0x1214  [ F9EC9ACD504D823D9B9CA98A4F8D3CA2, 58DAD5111C598F14CB199FE6A61FA5918F29513B778A8664FD05EFAB3C665D4F ] Updater Service C:\Program Files\Acer\Acer Updater\UpdaterService.exe
20:13:05.0073 0x1214  Updater Service - ok
20:13:05.0119 0x1214  [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost        C:\Windows\System32\upnphost.dll
20:13:05.0135 0x1214  upnphost - ok
20:13:05.0197 0x1214  [ 43228F8EDD1B0BCDD3145AD246E63D39, 108D8793E9F94C0A0E895398599B359121751F2E7BAA8B7BD24838AEF646726D ] USBAAPL64       C:\Windows\system32\Drivers\usbaapl64.sys
20:13:05.0197 0x1214  USBAAPL64 - ok
20:13:05.0244 0x1214  [ B26AFB54A534D634523C4FB66765B026, A219C9AE32D040BEA4DD69C2C826B1C52BACE26BEBFEE799BD56DFD442C5E0D8 ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
20:13:05.0244 0x1214  usbccgp - ok
20:13:05.0291 0x1214  [ AF0892A803FDDA7492F595368E3B68E7, F263346DEB4D742EB436CF578F187AC8521D84CED52E98475E6198EC52244F07 ] usbcir          C:\Windows\system32\DRIVERS\usbcir.sys
20:13:05.0307 0x1214  usbcir - ok
20:13:05.0338 0x1214  [ CB490987A7F6928A04BB838E3BD8A936, 51D1E6A6F17A8482B526668032CC9F563F655C2EC413101566187CE8D7B6B5F4 ] usbehci         C:\Windows\system32\DRIVERS\usbehci.sys
20:13:05.0338 0x1214  usbehci - ok
20:13:05.0369 0x1214  [ 2C780746DC44A28FE67004DC58173F05, 9E0596CE35C7430A31A7E77B4D12A1F521B9ED8EB0614E6FB38403AC614C3EE3 ] usbfilter       C:\Windows\system32\DRIVERS\usbfilter.sys
20:13:05.0385 0x1214  usbfilter - ok
20:13:05.0431 0x1214  [ 18124EF0A881A00EE222D02A3EE30270, 8FBD652F03C5F114BD3661BFA9A5D2A56CE5F5C8D67A5876409E0B055D97D038 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
20:13:05.0478 0x1214  usbhub - ok
20:13:05.0494 0x1214  [ 58E546BBAF87664FC57E0F6081E4F609, 1DD99D57369A0069654432AB5325AFD8F7D422D531E053EA05FF664BA6BDAEF9 ] usbohci         C:\Windows\system32\DRIVERS\usbohci.sys
20:13:05.0494 0x1214  usbohci - ok
20:13:05.0525 0x1214  [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
20:13:05.0525 0x1214  usbprint - ok
20:13:05.0587 0x1214  [ AAA2513C8AED8B54B189FD0C6B1634C0, 02FEE0B756AA559C29477A19861AC16D5A3152DC3C897C7D466423438B6A5E42 ] usbscan         C:\Windows\system32\DRIVERS\usbscan.sys
20:13:05.0603 0x1214  usbscan - ok
20:13:05.0619 0x1214  [ 080D3820DA6C046BE82FC8B45A893E83, EF4829A2D5B8D47AA7E06093EC85244042ED1CCFF43CC80DC44EF018B434197A ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
20:13:05.0634 0x1214  USBSTOR - ok
20:13:05.0650 0x1214  [ 81FB2216D3A60D1284455D511797DB3D, 121E52B18A1832E775EA0AE2E053BAA53E5A70E9754724B1449AE5992D63B13E ] usbuhci         C:\Windows\system32\DRIVERS\usbuhci.sys
20:13:05.0650 0x1214  usbuhci - ok
20:13:05.0697 0x1214  [ 7CB8C573C6E4A2714402CC0A36EAB4FE, FCD65AA3723617F58F77C4DA93CE910C712B8AA9411B5C4A60DC6C684EA53C1B ] usbvideo        C:\Windows\system32\Drivers\usbvideo.sys
20:13:05.0712 0x1214  usbvideo - ok
20:13:05.0790 0x1214  [ 70D05EE263568A742D14E1876DF80532, D49D7B60EE30F2398B8B532F4A4C3F17535485F2BDB9B14AB600E2A4E3F12A6B ] usb_rndisx      C:\Windows\system32\DRIVERS\usb8023x.sys
20:13:05.0806 0x1214  usb_rndisx - ok
20:13:05.0837 0x1214  [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms           C:\Windows\System32\uxsms.dll
20:13:05.0837 0x1214  UxSms - ok
20:13:05.0868 0x1214  [ 0793F40B9B8A1BDD266296409DBD91EA, 8A383FC9A66A327905C340D06138980F9E489479535A2C2AAE5E8BB14A74826E ] VaultSvc        C:\Windows\system32\lsass.exe
20:13:05.0868 0x1214  VaultSvc - ok
20:13:05.0899 0x1214  [ B9B0A0B9232A51BBDE9F28CA41716D61, 1FB9EEEA5C75CC3234B473F8DD9B77943ED74C52EF19C4A92C4274456C9C171E ] VComm           C:\Windows\system32\DRIVERS\VComm.sys
20:13:05.0899 0x1214  VComm - ok
20:13:05.0946 0x1214  [ F1B2D9AC422F8B72BF417C8D77C85A3B, A0010C58DE71CE3894A7851196C3578E3FE6C378D2C913E5E5812E0C669DBEFF ] VcommMgr        C:\Windows\system32\Drivers\VcommMgr.sys
20:13:05.0946 0x1214  VcommMgr - ok
20:13:05.0993 0x1214  [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot        C:\Windows\system32\DRIVERS\vdrvroot.sys
20:13:06.0009 0x1214  vdrvroot - ok
20:13:06.0055 0x1214  [ 44D73E0BBC1D3C8981304BA15135C2F2, 2849387BBCFB0189AF5604D2F7A631BD5D6BBB2CA73AF6E870069AF382A74DED ] vds             C:\Windows\System32\vds.exe
20:13:06.0087 0x1214  vds - ok
20:13:06.0118 0x1214  [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
20:13:06.0118 0x1214  vga - ok
20:13:06.0149 0x1214  [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave         C:\Windows\System32\drivers\vga.sys
20:13:06.0149 0x1214  VgaSave - ok
20:13:06.0165 0x1214  [ C82E748660F62A242B2DFAC1442F22A4, 24AD6CAA918C5AB6F461D88825885C8637C224001AAD7A80BDC240368CDB0B7E ] vhdmp           C:\Windows\system32\DRIVERS\vhdmp.sys
20:13:06.0180 0x1214  vhdmp - ok
20:13:06.0227 0x1214  [ 1161ACFF728D97F75D74D2F1465F8A46, 8AB5DB3FA0AA5E049E1A9A17F93CF9B0281F8944AB0BBB8A78B18ED5B5C18E47 ] vhidmini        C:\Windows\system32\DRIVERS\vHidDev.sys
20:13:06.0227 0x1214  vhidmini - ok
20:13:06.0243 0x1214  [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide          C:\Windows\system32\DRIVERS\viaide.sys
20:13:06.0243 0x1214  viaide - ok
20:13:06.0258 0x1214  [ 2B1A3DAE2B4E70DBBA822B7A03FBD4A3, 91F2B935E1E88C5542650F7D679A75D0562F4A5812179D1EC146D4B6351361E2 ] volmgr          C:\Windows\system32\DRIVERS\volmgr.sys
20:13:06.0274 0x1214  volmgr - ok
20:13:06.0289 0x1214  [ 99B0CBB569CA79ACAED8C91461D765FB, 5BE394A39A941DE2AA1212E66B7068F90D423FA816238657CB9B2DA8BBE69B9B ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
20:13:06.0321 0x1214  volmgrx - ok
20:13:06.0352 0x1214  [ 58F82EED8CA24B461441F9C3E4F0BF5C, 40B8C9C9D1BEDD1507138273A3C000C753C8765E1873F2170DE63555A042928C ] volsnap         C:\Windows\system32\DRIVERS\volsnap.sys
20:13:06.0367 0x1214  volsnap - ok
20:13:06.0399 0x1214  [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid         C:\Windows\system32\DRIVERS\vsmraid.sys
20:13:06.0414 0x1214  vsmraid - ok
20:13:06.0508 0x1214  [ 787898BF9FB6D7BD87A36E2D95C899BA, A6C0C7402B1A198E7B3D6D7D283FCB5815AC429DA68FC9B54C67707F3233CCB5 ] VSS             C:\Windows\system32\vssvc.exe
20:13:06.0617 0x1214  VSS - ok
20:13:06.0648 0x1214  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus        C:\Windows\system32\DRIVERS\vwifibus.sys
20:13:06.0664 0x1214  vwifibus - ok
20:13:06.0679 0x1214  [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
20:13:06.0711 0x1214  vwififlt - ok
20:13:06.0742 0x1214  [ 6A638FC4BFDDC4D9B186C28C91BD1A01, 5521F1DC515586777EC4837E0AEAA3E613CC178AF1074031C4D0D0C695A93168 ] vwifimp         C:\Windows\system32\DRIVERS\vwifimp.sys
20:13:06.0757 0x1214  vwifimp - ok
20:13:06.0789 0x1214  [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time         C:\Windows\system32\w32time.dll
20:13:06.0851 0x1214  W32Time - ok
20:13:06.0882 0x1214  [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen        C:\Windows\system32\DRIVERS\wacompen.sys
20:13:06.0898 0x1214  WacomPen - ok
20:13:06.0929 0x1214  [ 47CA49400643EFFD3F1C9A27E1D69324, 7EFD3405282264F7987172B226882FCDD223F771959B9CEBEBF9ECEA317D85B0 ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
20:13:06.0929 0x1214  WANARP - ok
20:13:06.0945 0x1214  [ 47CA49400643EFFD3F1C9A27E1D69324, 7EFD3405282264F7987172B226882FCDD223F771959B9CEBEBF9ECEA317D85B0 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
20:13:06.0945 0x1214  Wanarpv6 - ok
20:13:07.0069 0x1214  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C, 4150DAB33E8D61076F1D4767BCAFC9B4ECCCCBD58FD4FB3CFE5B8D27DCDCAB61 ] WatAdminSvc     C:\Windows\system32\Wat\WatAdminSvc.exe
20:13:07.0194 0x1214  WatAdminSvc - ok
20:13:07.0288 0x1214  [ 5AB1BB85BD8B5089CC5D64200DEDAE68, 28777D4F3CD07C8E3465B6DA0FCA994E0B93071A3A0D4D1D64C1DF633DD1C64F ] wbengine        C:\Windows\system32\wbengine.exe
20:13:07.0397 0x1214  wbengine - ok
20:13:07.0459 0x1214  [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
20:13:07.0475 0x1214  WbioSrvc - ok
20:13:07.0506 0x1214  [ 8321C2CA3B62B61B293CDA3451984468, 856A079C2CCC75D633EA23E410D7F3ECDF368EAAAFF634CB82DDA545FD3A2F9C ] wcncsvc         C:\Windows\System32\wcncsvc.dll
20:13:07.0537 0x1214  wcncsvc - ok
20:13:07.0553 0x1214  [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
20:13:07.0569 0x1214  WcsPlugInService - ok
20:13:07.0600 0x1214  [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd              C:\Windows\system32\DRIVERS\wd.sys
20:13:07.0615 0x1214  Wd - ok
20:13:07.0834 0x1214  [ 1A3F1BC1E48804867CA30469442DA00E, 55A1617496E2602F472F0211D709401B6948232767E53F60B5EF7F0DF26E403C ] WDBackup        C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe
20:13:07.0849 0x1214  WDBackup - ok
20:13:07.0912 0x1214  [ A3D04EBF5227886029B4532F20D026F7, D90F7B9C176008675DA0B5FD7E4973CBC2A04172CEDF8FB7D3B3B4F27B5440D7 ] WDC_SAM         C:\Windows\system32\DRIVERS\wdcsam64.sys
20:13:07.0912 0x1214  WDC_SAM - ok
20:13:07.0974 0x1214  [ C5213CB145C80C10369752D8EE412914, C1BF1B795EA59DFF38CD8C73B0F283ED141DEDFCE3757FDBF2D49F70221C540A ] WDDriveService  C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
20:13:07.0990 0x1214  WDDriveService - ok
20:13:08.0021 0x1214  [ 441BD2D7B4F98134C3A4F9FA570FD250, FF20815273014C5A27C2B75E2C70FE674809293627056199F502DFDF4CECFCA1 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
20:13:08.0068 0x1214  Wdf01000 - ok
20:13:08.0115 0x1214  [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiServiceHost  C:\Windows\system32\wdi.dll
20:13:08.0130 0x1214  WdiServiceHost - ok
20:13:08.0130 0x1214  [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiSystemHost   C:\Windows\system32\wdi.dll
20:13:08.0146 0x1214  WdiSystemHost - ok
20:13:08.0193 0x1214  [ 8A438CBB8C032A0C798B0C642FFBE572, 3200B9B6A7B87C1C47295FA416C99DE1FBB2DBBA3DA78D5CC88C26DCC4189D45 ] WebClient       C:\Windows\System32\webclnt.dll
20:13:08.0224 0x1214  WebClient - ok
20:13:08.0255 0x1214  [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc          C:\Windows\system32\wecsvc.dll
20:13:08.0271 0x1214  Wecsvc - ok
20:13:08.0302 0x1214  [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
20:13:08.0317 0x1214  wercplsupport - ok
20:13:08.0333 0x1214  [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc          C:\Windows\System32\WerSvc.dll
20:13:08.0349 0x1214  WerSvc - ok
20:13:08.0364 0x1214  [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
20:13:08.0395 0x1214  WfpLwf - ok
20:13:08.0427 0x1214  [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
20:13:08.0442 0x1214  WIMMount - ok
20:13:08.0473 0x1214  WinDefend - ok
20:13:08.0489 0x1214  WinHttpAutoProxySvc - ok
20:13:08.0551 0x1214  [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
20:13:08.0583 0x1214  Winmgmt - ok
20:13:08.0707 0x1214  [ 41FBB751936B387F9179E7F03A74FE29, 7A73D887BEC19DFC485ED42B4E6ABEBF824555139B81EA30731A00773E707464 ] WinRM           C:\Windows\system32\WsmSvc.dll
20:13:08.0848 0x1214  WinRM - ok
20:13:08.0941 0x1214  [ 37EBA86E2089B9E1FD98A3E98CC81554, 25510FD4101E18C7752ACAFF5B3327D7CBC10DAF5F377E2F16867F8DC90F1A50 ] WinTabService   C:\Windows\System32\Drivers\WTSRV.EXE
20:13:08.0941 0x1214  WinTabService - ok
20:13:08.0973 0x1214  [ 817EAFF5D38674EDD7713B9DFB8E9791, F6E0BFC503BA7395F92989C11B454D1F1E58E29302BA203801449A2C5236E84D ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
20:13:08.0988 0x1214  WinUsb - ok
20:13:09.0051 0x1214  [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc         C:\Windows\System32\wlansvc.dll
20:13:09.0113 0x1214  Wlansvc - ok
20:13:09.0191 0x1214  [ 06C8FA1CF39DE6A735B54D906BA791C6, D8FEC7DE227781CDA876904701B2AA995268F74DCD6CB34AA0296C557FC283B6 ] wlcrasvc        C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
20:13:09.0207 0x1214  wlcrasvc - ok
20:13:09.0456 0x1214  [ 2BACD71123F42CEA603F4E205E1AE337, 1FEF20554110371D738F462ECFFA999158EFEED02062414C58C1B61C422BF0B9 ] wlidsvc         C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
20:13:09.0519 0x1214  wlidsvc - ok
20:13:09.0550 0x1214  [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi         C:\Windows\system32\DRIVERS\wmiacpi.sys
20:13:09.0550 0x1214  WmiAcpi - ok
20:13:09.0597 0x1214  [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
20:13:09.0597 0x1214  wmiApSrv - ok
20:13:09.0643 0x1214  WMPNetworkSvc - ok
20:13:09.0675 0x1214  [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc          C:\Windows\System32\wpcsvc.dll
20:13:09.0675 0x1214  WPCSvc - ok
20:13:09.0721 0x1214  [ 2E57DDF2880A7E52E76F41C7E96D327B, D24E19B6091C197D77D71BC044CE2E5A57BE0A2F00D1BB0732E380A398230E63 ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
20:13:09.0721 0x1214  WPDBusEnum - ok
20:13:09.0737 0x1214  [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
20:13:09.0737 0x1214  ws2ifsl - ok
20:13:09.0768 0x1214  [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc          C:\Windows\system32\wscsvc.dll
20:13:09.0768 0x1214  wscsvc - ok
20:13:09.0784 0x1214  WSearch - ok
20:13:09.0940 0x1214  [ D9EF901DCA379CFE914E9FA13B73B4C4, 3BE9693B7B2AFEE23D72AF5DA211379724D752F0EC18ACB7D3DE3DDFC5AE0004 ] wuauserv        C:\Windows\system32\wuaueng.dll
20:13:10.0096 0x1214  wuauserv - ok
20:13:10.0143 0x1214  [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
20:13:10.0189 0x1214  WudfPf - ok
20:13:10.0252 0x1214  [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
20:13:10.0267 0x1214  WUDFRd - ok
20:13:10.0330 0x1214  [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
20:13:10.0330 0x1214  wudfsvc - ok
20:13:10.0377 0x1214  [ 9A3452B3C2A46C073166C5CF49FAD1AE, D6F95F51D8E37BA4CF403965EC08CCFEEA9EEFDBFC7752432EAEC19925BDA115 ] WwanSvc         C:\Windows\System32\wwansvc.dll
20:13:10.0408 0x1214  WwanSvc - ok
20:13:10.0486 0x1214  ================ Scan global ===============================
20:13:10.0517 0x1214  [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\system32\basesrv.dll
20:13:10.0579 0x1214  [ C4C551E6AB333C0EB812A3A4672E89DB, CA3DE675E85370395E46155D747B21E3EDBE35C7B9A88A0D6CB486B890EFC92D ] C:\Windows\system32\winsrv.dll
20:13:10.0611 0x1214  [ C4C551E6AB333C0EB812A3A4672E89DB, CA3DE675E85370395E46155D747B21E3EDBE35C7B9A88A0D6CB486B890EFC92D ] C:\Windows\system32\winsrv.dll
20:13:10.0642 0x1214  [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll
20:13:10.0673 0x1214  [ 24ACB7E5BE595468E3B9AA488B9B4FCB, 63541E3432FCE953F266AE553E7A394978D6EE3DB52388D885F668CF42C5E7E2 ] C:\Windows\system32\services.exe
20:13:10.0689 0x1214  [ Global ] - ok
20:13:10.0689 0x1214  ================ Scan MBR ==================================
20:13:10.0704 0x1214  [ 5C616939100B85E558DA92B899A0FC36 ] \Device\Harddisk0\DR0
20:13:11.0235 0x1214  \Device\Harddisk0\DR0 - ok
20:13:11.0235 0x1214  ================ Scan VBR ==================================
20:13:11.0235 0x1214  [ F4AAB936DACA1C0D45510BD2C1670EC8 ] \Device\Harddisk0\DR0\Partition1
20:13:11.0235 0x1214  \Device\Harddisk0\DR0\Partition1 - ok
20:13:11.0250 0x1214  [ 4841B4EFCEC45DD1ADC33111AD70F385 ] \Device\Harddisk0\DR0\Partition2
20:13:11.0250 0x1214  \Device\Harddisk0\DR0\Partition2 - ok
20:13:11.0250 0x1214  ================ Scan active images ========================
20:13:11.0266 0x1214  [ 3E588B60EC061686BA05D33574A344C6, 19D2D863F95CCC4493A2328B6BEB04248B6A80F957532E58C1D1D868C19FDCCB ] C:\Windows\System32\drivers\crashdmp.sys
20:13:11.0266 0x1214  C:\Windows\System32\drivers\crashdmp.sys - ok
20:13:11.0266 0x1214  [ 839B5FE3D48E9F35B22C21A3D5103F6C, A9CEA695E43092B72B0E988063E00A7C0BCE90095344E9A2F380218482BCE77F ] C:\Windows\System32\drivers\Dumpata.sys
20:13:11.0266 0x1214  C:\Windows\System32\drivers\Dumpata.sys - ok
20:13:11.0266 0x1214  [ 814DB88F2641691575A455CF25354098, 79C50F0CD72612733217A0316BEFEA0B6D819C3159D9452EAB89AC26A18A0F89 ] C:\Windows\System32\drivers\dumpfve.sys
20:13:11.0266 0x1214  C:\Windows\System32\drivers\dumpfve.sys - ok
20:13:11.0281 0x1214  [ 5C37497276E3B3A5488B23A326A754B7, 9982FCDAFB963868EB93A4DEF811A3167488EB5246BAC3F4AE960506FDF63967 ] C:\Windows\System32\drivers\msahci.sys
20:13:11.0281 0x1214  C:\Windows\System32\drivers\msahci.sys - ok
20:13:11.0281 0x1214  [ 83D2D75E1EFB81B3450C18131443F7DB, F2C686C980D818E797818E75B808E1E0B51B2045840A4BFC32D860B7DB4DFA22 ] C:\Windows\System32\drivers\cdrom.sys
20:13:11.0281 0x1214  C:\Windows\System32\drivers\cdrom.sys - ok
20:13:11.0281 0x1214  [ 919ACCC22ABDC1C3CA68326C0E5DEAF9, 25AFA22BD3D5A50C7BE9C05ED03079D1CE9042A235738D3DCFEBB1F5A262BC94 ] C:\Windows\System32\drivers\cmdGuard.sys
20:13:11.0281 0x1214  C:\Windows\System32\drivers\cmdGuard.sys - ok
20:13:11.0297 0x1214  [ 6FFECC25B39DC7652A0CEC0ADA9DB589, 927EF066CBBA8353149F8C3B7C4299AC06FED439DA874D25CFB583E5912611A2 ] C:\Windows\System32\drivers\mwlPSDFilter.sys
20:13:11.0297 0x1214  C:\Windows\System32\drivers\mwlPSDFilter.sys - ok
20:13:11.0297 0x1214  [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] C:\Windows\System32\drivers\beep.sys
20:13:11.0297 0x1214  C:\Windows\System32\drivers\beep.sys - ok
20:13:11.0297 0x1214  [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] C:\Windows\System32\drivers\null.sys
20:13:11.0297 0x1214  C:\Windows\System32\drivers\null.sys - ok
20:13:11.0313 0x1214  [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] C:\Windows\System32\drivers\vga.sys
20:13:11.0313 0x1214  C:\Windows\System32\drivers\vga.sys - ok
20:13:11.0313 0x1214  [ E7353D59C9842BC7299FAEB7E7E09340, C37ED1025E07BAC2F535DCFED6C6C509515D95722EADE5AF94F1FC5D8B1DC783 ] C:\Windows\System32\drivers\videoprt.sys
20:13:11.0313 0x1214  C:\Windows\System32\drivers\videoprt.sys - ok
20:13:11.0313 0x1214  [ FC438D1430B28618E2D0C7C332A710AD, 873957B202E454E2C8F625E5799F278CAC16EC5EEAEE2C33E2FE5D1FF0408CB2 ] C:\Windows\System32\drivers\watchdog.sys
20:13:11.0313 0x1214  C:\Windows\System32\drivers\watchdog.sys - ok
20:13:11.0328 0x1214  [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] C:\Windows\System32\drivers\RDPCDD.sys
20:13:11.0328 0x1214  C:\Windows\System32\drivers\RDPCDD.sys - ok
20:13:11.0328 0x1214  [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] C:\Windows\System32\drivers\RDPENCDD.sys
20:13:11.0328 0x1214  C:\Windows\System32\drivers\RDPENCDD.sys - ok
20:13:11.0344 0x1214  [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] C:\Windows\System32\drivers\RDPREFMP.sys
20:13:11.0344 0x1214  C:\Windows\System32\drivers\RDPREFMP.sys - ok
20:13:11.0344 0x1214  [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] C:\Windows\System32\drivers\msfs.sys
20:13:11.0344 0x1214  C:\Windows\System32\drivers\msfs.sys - ok
20:13:11.0344 0x1214  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] C:\Windows\System32\drivers\npfs.sys
20:13:11.0344 0x1214  C:\Windows\System32\drivers\npfs.sys - ok
20:13:11.0359 0x1214  [ 0CA6FE26ACC7FFEE1BD0463F40835F32, 22D29762CED22BBDA3D89D9AFFDEA2F3DAF91524D7A7524BE45578F17781F376 ] C:\Windows\System32\drivers\tdi.sys
20:13:11.0359 0x1214  C:\Windows\System32\drivers\tdi.sys - ok
20:13:11.0359 0x1214  [ 079125C4B17B01FCAEEBCE0BCB290C0F, B2DF1F2317EF5DCF0A89327332E9F2770ED604005B3138C095FF01AA63B91437 ] C:\Windows\System32\drivers\tdx.sys
20:13:11.0359 0x1214  C:\Windows\System32\drivers\tdx.sys - ok
20:13:11.0359 0x1214  [ F8FECE0F1D44C4A58778083B00EEADAC, 595E961D5D30BE15FA662A41AA995CD7A03D6B79D5A095489FD20B2F4104C4C5 ] C:\Windows\System32\drivers\cmdhlp.sys
20:13:11.0359 0x1214  C:\Windows\System32\drivers\cmdhlp.sys - ok
20:13:11.0375 0x1214  [ 9162B273A44AB9DCE5B44362731D062A, 5A1BA6DBFEBB2618DC9D4CC55FA071C170A5D22FFB24CE62DD5B3210D8B45F39 ] C:\Windows\System32\drivers\netbt.sys
20:13:11.0375 0x1214  C:\Windows\System32\drivers\netbt.sys - ok
20:13:11.0375 0x1214  [ DB9D6C6B2CD95A9CA414D045B627422E, A4A0B2ACBFE311C20EF9F06A49DBE02CE90433C2364B292F6E8F78F6C274DF88 ] C:\Windows\System32\drivers\afd.sys
20:13:11.0375 0x1214  C:\Windows\System32\drivers\afd.sys - ok
20:13:11.0375 0x1214  [ EE992183BD8EAEFD9973F352E587A299, 6B28930FAA0A54FAADDAF2231553D7F5D45C7227454C6D49A86DFC9EF6BC9043 ] C:\Windows\System32\drivers\pacer.sys
20:13:11.0375 0x1214  C:\Windows\System32\drivers\pacer.sys - ok
20:13:11.0391 0x1214  [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] C:\Windows\System32\drivers\vwififlt.sys
20:13:11.0391 0x1214  C:\Windows\System32\drivers\vwififlt.sys - ok
20:13:11.0391 0x1214  [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] C:\Windows\System32\drivers\wfplwf.sys
20:13:11.0391 0x1214  C:\Windows\System32\drivers\wfplwf.sys - ok
20:13:11.0391 0x1214  [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] C:\Windows\System32\drivers\ws2ifsl.sys
20:13:11.0391 0x1214  C:\Windows\System32\drivers\ws2ifsl.sys - ok
20:13:11.0406 0x1214  [ C4E67D3037DC79E39D7136581A947F50, 1A632388942B2E3015C021EAA2470B1B4CB8BDFB16B24D85F66245374FE7A0EF ] C:\Windows\System32\drivers\inspect.sys
20:13:11.0406 0x1214  C:\Windows\System32\drivers\inspect.sys - ok
20:13:11.0406 0x1214  [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] C:\Windows\System32\drivers\netbios.sys
20:13:11.0406 0x1214  C:\Windows\System32\drivers\netbios.sys - ok
20:13:11.0406 0x1214  [ 47CA49400643EFFD3F1C9A27E1D69324, 7EFD3405282264F7987172B226882FCDD223F771959B9CEBEBF9ECEA317D85B0 ] C:\Windows\System32\drivers\wanarp.sys
20:13:11.0406 0x1214  C:\Windows\System32\drivers\wanarp.sys - ok
20:13:11.0422 0x1214  [ EA43DE1743C1BA0D2D17B8DB90C91D88, 54115F3002D2C87B82DDA62E96AD8296FFC59DC83E9F3D7F22325325DB73C486 ] C:\Windows\System32\drivers\truecrypt.sys
20:13:11.0422 0x1214  C:\Windows\System32\drivers\truecrypt.sys - ok
20:13:11.0422 0x1214  [ C448651339196C0E869A355171875522, C12441CF21D7D47804952B968689D78E3BA0323A90C4C811B54A6B2E6260BAD4 ] C:\Windows\System32\drivers\termdd.sys
20:13:11.0422 0x1214  C:\Windows\System32\drivers\termdd.sys - ok
20:13:11.0422 0x1214  [ 3BAC8142102C15D59A87757C1D41DCE5, C0C2C6887EA5A439E69221196348382ACE3E1942C9C6E0A970E153890F71724C ] C:\Windows\System32\drivers\rdbss.sys
20:13:11.0422 0x1214  C:\Windows\System32\drivers\rdbss.sys - ok
20:13:11.0437 0x1214  [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] C:\Windows\System32\drivers\nsiproxy.sys
20:13:11.0437 0x1214  C:\Windows\System32\drivers\nsiproxy.sys - ok
20:13:11.0437 0x1214  [ D43BC633B8660463E446E28E14A51262, C55F235B5E08FAC6D70B0FAC737D714E318A93F8E43FF8095B86A76559AF211D ] C:\Windows\System32\drivers\mwlPSDVDisk.sys
20:13:11.0437 0x1214  C:\Windows\System32\drivers\mwlPSDVDisk.sys - ok
20:13:11.0437 0x1214  [ 0BEFE32CA56D6EE89D58175725596A85, E36B9E6159AF7F67D549F7178896CCCB8FC3964531B1DA20CBDD465E632D8FCF ] C:\Windows\System32\drivers\mwlPSDNserv.sys
20:13:11.0437 0x1214  C:\Windows\System32\drivers\mwlPSDNserv.sys - ok
20:13:11.0453 0x1214  [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] C:\Windows\System32\drivers\mssmbios.sys
20:13:11.0453 0x1214  C:\Windows\System32\drivers\mssmbios.sys - ok
20:13:11.0453 0x1214  [ 3F1DC527070ACB87E40AFE46EF6DA749, 5CB9CB94854AF06BEA02AF3E0562B8ECF72B2B23ED657A3F5E17CD3552F3EF84 ] C:\Windows\System32\drivers\dfsc.sys
20:13:11.0453 0x1214  C:\Windows\System32\drivers\dfsc.sys - ok
20:13:11.0453 0x1214  [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] C:\Windows\System32\drivers\discache.sys
20:13:11.0453 0x1214  C:\Windows\System32\drivers\discache.sys - ok
20:13:11.0469 0x1214  [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] C:\Windows\System32\drivers\blbdrive.sys
20:13:11.0469 0x1214  C:\Windows\System32\drivers\blbdrive.sys - ok
20:13:11.0469 0x1214  [ 490FA25161BF3E51993EB724ECF0ACEB, C9F35F342A301E99D8E756A7422D5CD0DEFE233921207051D5146110E3F10ED9 ] C:\Windows\System32\drivers\avkmgr.sys
20:13:11.0469 0x1214  C:\Windows\System32\drivers\avkmgr.sys - ok
20:13:11.0469 0x1214  [ E26B3C8E9C3DDE047B32C5719955D715, F7E968FC23F167496E48BE8E3CF824821D3A074D20EA7A8C22BB722F590CADC7 ] C:\Windows\System32\drivers\avipbb.sys
20:13:11.0469 0x1214  C:\Windows\System32\drivers\avipbb.sys - ok
20:13:11.0484 0x1214  [ 3836171A2CDF3AF8EF10856DB9835A70, 74CD0A21B4E5B47E8D762CC28282CA8D512D424EC591D90099B9F8D034AA2FC2 ] C:\Windows\System32\drivers\tunnel.sys
20:13:11.0484 0x1214  C:\Windows\System32\drivers\tunnel.sys - ok
20:13:11.0484 0x1214  [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] C:\Windows\System32\drivers\amdppm.sys
20:13:11.0484 0x1214  C:\Windows\System32\drivers\amdppm.sys - ok
20:13:11.0484 0x1214  [ 7E58B5E1DEAA70BD46997068DF06B4E3, C81D45CCBAAFBEE87D0148E0678A764C632CAA54A33898A3B7F7CB39896E0E2C ] C:\Windows\System32\drivers\atikmpag.sys
20:13:11.0484 0x1214  C:\Windows\System32\drivers\atikmpag.sys - ok
20:13:11.0500 0x1214  [ 68DB778AC4FD7896CE2F153353BA15C8, 17519E42980AD537826D934F7E216071B8558986ADAE47B7871DE859CBBF04B2 ] C:\Windows\System32\ntdll.dll
20:13:11.0500 0x1214  C:\Windows\System32\ntdll.dll - ok
20:13:11.0500 0x1214  [ FA64733BD65F52712F0545F56FDB4BE6, C7D86D0788B6127C57412F2ADA6D7C2C1ECED2D00A91E0D04CA3131F343693F4 ] C:\Windows\System32\smss.exe
20:13:11.0500 0x1214  C:\Windows\System32\smss.exe - ok
20:13:11.0515 0x1214  [ 83418F6EE5A81DDDD8E248FCBFC99AF6, FDDF142CFB12F4644C87CA25096869DBBB7579F7CFBBCFC48A455EC1B75C5A52 ] C:\Windows\System32\drivers\atipmdag.sys
20:13:11.0515 0x1214  C:\Windows\System32\drivers\atipmdag.sys - ok
20:13:11.0515 0x1214  [ 1633B9ABF52784A1331476397A48CBEF, 697780697C4C55FCCF5FB65C93FB37B3F5A43BF0C59FDBB9EF822D0E993E47BD ] C:\Windows\System32\drivers\dxgkrnl.sys
20:13:11.0515 0x1214  C:\Windows\System32\drivers\dxgkrnl.sys - ok
20:13:11.0515 0x1214  [ 3238B9078E0766AB5E62DC737A809ADB, ADE62EB3709549508A71CBB390EDC8537AC354FE88D3A33D95C818F0DD72B86E ] C:\Windows\System32\drivers\dxgmms1.sys
20:13:11.0515 0x1214  C:\Windows\System32\drivers\dxgmms1.sys - ok
20:13:11.0531 0x1214  [ 0A49913402747A0B67DE940FB42CBDBB, 61A45DBDCEB4A2D5C3C28F6BC8C5ADC51D0240A7553DF44BCC4355FC06F72B83 ] C:\Windows\System32\drivers\hdaudbus.sys
20:13:11.0531 0x1214  C:\Windows\System32\drivers\hdaudbus.sys - ok
20:13:11.0531 0x1214  [ 9D7EA8C7215D8D4AE7BE110EEE61085D, C8AEC99985AEAD52FA4FA14DA98EE465594EA1392E2010D0B474CD467D766EE8 ] C:\Windows\System32\drivers\k57nd60a.sys
20:13:11.0531 0x1214  C:\Windows\System32\drivers\k57nd60a.sys - ok
20:13:11.0531 0x1214  [ 70260C7C98CC0101316F5B2650C3BB44, 15F5DBDB1251D3F2EF2A0764BC2829A02448B98A0DF9AF316C8466F83BA9241F ] C:\Windows\System32\drivers\athrx.sys
20:13:11.0531 0x1214  C:\Windows\System32\drivers\athrx.sys - ok
20:13:11.0547 0x1214  [ 64DDD0DEE976302F4BD93E5EFCC2F013, 19F54B4549999EF96FAE1B2B97973F281304843ADE0CF5823574453AB41E3E9C ] C:\Windows\System32\drivers\NTIDrvr.sys
20:13:11.0547 0x1214  C:\Windows\System32\drivers\NTIDrvr.sys - ok
20:13:11.0547 0x1214  [ 2E22C1FD397A5A9FFEF55E9D1FC96C00, 4646712B3F3AF6188DBCE1A95D92261E8B15E9583FE5DD538EC884F48B51759D ] C:\Windows\System32\drivers\UBHelper.sys
20:13:11.0547 0x1214  C:\Windows\System32\drivers\UBHelper.sys - ok
20:13:11.0547 0x1214  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] C:\Windows\System32\drivers\vwifibus.sys
20:13:11.0547 0x1214  C:\Windows\System32\drivers\vwifibus.sys - ok
20:13:11.0562 0x1214  [ 8E98D21EE06192492A5671A6144D092F, B8F656B34D361EA5AFB47F3A67AB2221580DADA59C8CD0CB83181E4AD8B562B4 ] C:\Windows\System32\drivers\GEARAspiWDM.sys
20:13:11.0562 0x1214  C:\Windows\System32\drivers\GEARAspiWDM.sys - ok
20:13:11.0562 0x1214  [ A91291136D1E70966645252F6B828711, 4BED45CBE78748A81F1EAAE8C7446207414EF1FC79F13E24EF426531AD8BD836 ] C:\Windows\System32\drivers\usbport.sys
20:13:11.0562 0x1214  C:\Windows\System32\drivers\usbport.sys - ok
20:13:11.0562 0x1214  [ CB490987A7F6928A04BB838E3BD8A936, 51D1E6A6F17A8482B526668032CC9F563F655C2EC413101566187CE8D7B6B5F4 ] C:\Windows\System32\drivers\usbehci.sys
20:13:11.0562 0x1214  C:\Windows\System32\drivers\usbehci.sys - ok
20:13:11.0578 0x1214  [ 2C780746DC44A28FE67004DC58173F05, 9E0596CE35C7430A31A7E77B4D12A1F521B9ED8EB0614E6FB38403AC614C3EE3 ] C:\Windows\System32\drivers\usbfilter.sys
20:13:11.0578 0x1214  C:\Windows\System32\drivers\usbfilter.sys - ok
20:13:11.0578 0x1214  [ 58E546BBAF87664FC57E0F6081E4F609, 1DD99D57369A0069654432AB5325AFD8F7D422D531E053EA05FF664BA6BDAEF9 ] C:\Windows\System32\drivers\usbohci.sys
20:13:11.0578 0x1214  C:\Windows\System32\drivers\usbohci.sys - ok
20:13:11.0578 0x1214  [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] C:\Windows\System32\drivers\CmBatt.sys
20:13:11.0578 0x1214  C:\Windows\System32\drivers\CmBatt.sys - ok
20:13:11.0593 0x1214  [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] C:\Windows\System32\drivers\i8042prt.sys
20:13:11.0593 0x1214  C:\Windows\System32\drivers\i8042prt.sys - ok
20:13:11.0593 0x1214  [ 6F9EF180BB9CEC92D3E8EC9163748DE5, 9F902E2FB4E43602D1286305C38AA54B968B05A036214835DFB686B12D401D95 ] C:\Windows\System32\drivers\Apfiltr.sys
20:13:11.0593 0x1214  C:\Windows\System32\drivers\Apfiltr.sys - ok
20:13:11.0609 0x1214  [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] C:\Windows\System32\drivers\kbdclass.sys
20:13:11.0609 0x1214  C:\Windows\System32\drivers\kbdclass.sys - ok
20:13:11.0609 0x1214  [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] C:\Windows\System32\drivers\mouclass.sys
20:13:11.0609 0x1214  C:\Windows\System32\drivers\mouclass.sys - ok
20:13:11.0609 0x1214  [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] C:\Windows\System32\drivers\wmiacpi.sys
20:13:11.0609 0x1214  C:\Windows\System32\drivers\wmiacpi.sys - ok
20:13:11.0625 0x1214  [ F1B2D9AC422F8B72BF417C8D77C85A3B, A0010C58DE71CE3894A7851196C3578E3FE6C378D2C913E5E5812E0C669DBEFF ] C:\Windows\System32\drivers\VcommMgr.sys
20:13:11.0625 0x1214  C:\Windows\System32\drivers\VcommMgr.sys - ok
20:13:11.0625 0x1214  [ F26B3A86F6FA87CA360B879581AB4123, 723904362614FE47F6CC0EA0656BA1B47EA32D73BAFB61688A5E5CAE4340B1BF ] C:\Windows\System32\drivers\CompositeBus.sys
20:13:11.0625 0x1214  C:\Windows\System32\drivers\CompositeBus.sys - ok
20:13:11.0625 0x1214  [ 5C7AF4A20F5BF67042B2E613D123D111, 0255F59ADF5AAD1ACF0CA1D5B7FB9163167599F330DBD4C60607B4A014F1E1B2 ] C:\Windows\System32\drivers\ks.sys
20:13:11.0625 0x1214  C:\Windows\System32\drivers\ks.sys - ok
20:13:11.0640 0x1214  [ DAA72C9154459E613EED88502624C340, B512CA4461625D847DB023CDE17C1C9AD3B1079A925A89F8724008D8690CE617 ] C:\Windows\System32\drivers\blueletaudio.sys
20:13:11.0640 0x1214  C:\Windows\System32\drivers\blueletaudio.sys - ok
20:13:11.0640 0x1214  [ 21D26064AEDB4988F785BB4A3A2C051E, F6FA2CA351B24DA19645EB542596C82F9A68D84CC7CCFE6F9FC15CE2CE4D1961 ] C:\Windows\System32\drivers\drmk.sys
20:13:11.0640 0x1214  C:\Windows\System32\drivers\drmk.sys - ok
20:13:11.0640 0x1214  [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] C:\Windows\System32\drivers\ksthunk.sys
20:13:11.0640 0x1214  C:\Windows\System32\drivers\ksthunk.sys - ok
20:13:11.0656 0x1214  [ 32E11315B5126921FFD9074840EF13D3, FC7C0E1CC447FDD89C0FA5EBFD04CCEABFB27751AB57A7176F12BD0D35306E1C ] C:\Windows\System32\drivers\portcls.sys
20:13:11.0656 0x1214  C:\Windows\System32\drivers\portcls.sys - ok
20:13:11.0656 0x1214  [ 8AF05BCB15D846E1E8B34AF0635879C9, 391149EB799977E3C0FFDD348B8E6DD508095B6F4D32CB0A2ABD498EC14926BE ] C:\Windows\System32\drivers\BlueletSCOAudio.sys
20:13:11.0656 0x1214  C:\Windows\System32\drivers\BlueletSCOAudio.sys - ok
20:13:11.0671 0x1214  [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] C:\Windows\System32\drivers\modem.sys
20:13:11.0671 0x1214  C:\Windows\System32\drivers\modem.sys - ok
20:13:11.0671 0x1214  [ 388D3DD1A6457280F3BADBA9F3ACD6B1, 5C534EA15195B1301C917904627AF09FE2ABA3FEE1641B5C87E8F3191BC49058 ] C:\Windows\System32\drivers\rootmdm.sys
20:13:11.0671 0x1214  C:\Windows\System32\drivers\rootmdm.sys - ok
20:13:11.0671 0x1214  [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] C:\Windows\System32\drivers\agilevpn.sys
20:13:11.0671 0x1214  C:\Windows\System32\drivers\agilevpn.sys - ok
20:13:11.0687 0x1214  [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] C:\Windows\System32\drivers\ndistapi.sys
20:13:11.0687 0x1214  C:\Windows\System32\drivers\ndistapi.sys - ok
20:13:11.0687 0x1214  [ 87A6E852A22991580D6D39ADC4790463, 0F757C6E5B57DFC239CE1BEC88EF16C07E7F1A40D629A9A6DF3CB6B88FB9E642 ] C:\Windows\System32\drivers\rasl2tp.sys
20:13:11.0687 0x1214  C:\Windows\System32\drivers\rasl2tp.sys - ok
20:13:11.0687 0x1214  [ 557DFAB9CA1FCB036AC77564C010DAD3, 8A21B342AFE5B498FB62EDDC81A3ADA9570677B7A382666090E0ABB1F85FEF29 ] C:\Windows\System32\drivers\ndiswan.sys
20:13:11.0687 0x1214  C:\Windows\System32\drivers\ndiswan.sys - ok
20:13:11.0703 0x1214  [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] C:\Windows\System32\drivers\raspppoe.sys
20:13:11.0703 0x1214  C:\Windows\System32\drivers\raspppoe.sys - ok
20:13:11.0703 0x1214  [ 27CC19E81BA5E3403C48302127BDA717, C580FC552DDF9C163FC325B38B05C06FFD696495E4C01514BCD6346CFE4F0B40 ] C:\Windows\System32\drivers\raspptp.sys
20:13:11.0703 0x1214  C:\Windows\System32\drivers\raspptp.sys - ok
20:13:11.0703 0x1214  [ 0F890E854FCBE98F4574ACC6423FCCEF, D3F0549F4CD4AEA64179EB4691FD8E7F54907D43EDB558ECBA191B4D5CDB3356 ] C:\Windows\System32\drivers\BtNetDrv.sys
20:13:11.0703 0x1214  C:\Windows\System32\drivers\BtNetDrv.sys - ok
20:13:11.0718 0x1214  [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] C:\Windows\System32\drivers\rassstp.sys
20:13:11.0718 0x1214  C:\Windows\System32\drivers\rassstp.sys - ok
20:13:11.0718 0x1214  [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] C:\Windows\System32\drivers\serenum.sys
20:13:11.0718 0x1214  C:\Windows\System32\drivers\serenum.sys - ok
20:13:11.0718 0x1214  [ B9B0A0B9232A51BBDE9F28CA41716D61, 1FB9EEEA5C75CC3234B473F8DD9B77943ED74C52EF19C4A92C4274456C9C171E ] C:\Windows\System32\drivers\VComm.sys
20:13:11.0718 0x1214  C:\Windows\System32\drivers\VComm.sys - ok
20:13:11.0734 0x1214  [ 685FEC2407FC121EB937CB658B3C0F35, 9357476FB5722A15B109FAC45F8110BD17BEBFB941BB2770808882805935B9C1 ] C:\Windows\System32\drivers\hidclass.sys
20:13:11.0734 0x1214  C:\Windows\System32\drivers\hidclass.sys - ok
20:13:11.0734 0x1214  [ 49EE2E52E6CD03947DAD72F65367BE06, 933097B903B13767DD49192E7BF8EAABC5BADFDAF8B31B806AA65C533F24B686 ] C:\Windows\System32\drivers\hidparse.sys
20:13:11.0734 0x1214  C:\Windows\System32\drivers\hidparse.sys - ok
20:13:11.0734 0x1214  [ 1161ACFF728D97F75D74D2F1465F8A46, 8AB5DB3FA0AA5E049E1A9A17F93CF9B0281F8944AB0BBB8A78B18ED5B5C18E47 ] C:\Windows\System32\drivers\vHidDev.sys
20:13:11.0734 0x1214  C:\Windows\System32\drivers\vHidDev.sys - ok
20:13:11.0749 0x1214  [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] C:\Windows\System32\drivers\swenum.sys
20:13:11.0749 0x1214  C:\Windows\System32\drivers\swenum.sys - ok
20:13:11.0749 0x1214  [ 024DA28053D57E9E32BEE52600576BBB, 8EC636DAB90A835DEBA2EC6176F4547EEF557415FF77C6378EF423569702731E ] C:\Windows\System32\drivers\MarvinBus64.sys
20:13:11.0749 0x1214  C:\Windows\System32\drivers\MarvinBus64.sys - ok
20:13:11.0749 0x1214  [ 6A2EEB0C4133B20773BB3DD0B7B377B4, E4CB35C6937C70A145A13E5AE5B34A271B49101DA623171ACBFDA8601E5A70EA ] C:\Windows\System32\drivers\amdiox64.sys
20:13:11.0749 0x1214  C:\Windows\System32\drivers\amdiox64.sys - ok
20:13:11.0765 0x1214  [ 225D3660F926FE761BC8CE10C512AA02, EAA2241E858CD0FF7A1F159FB03D0DF87735EAD1F245F0A569FB6A0330D1B007 ] C:\Windows\System32\drivers\PTSimBus.sys
20:13:11.0765 0x1214  C:\Windows\System32\drivers\PTSimBus.sys - ok
20:13:11.0765 0x1214  [ EAB6C35E62B1B0DB0D1B48B671D3A117, E65034BF757AE4D21F69D7A91A7990E326A29A0CE9F871FD704B5E6CCC821FF0 ] C:\Windows\System32\drivers\umbus.sys
20:13:11.0765 0x1214  C:\Windows\System32\drivers\umbus.sys - ok
20:13:11.0765 0x1214  [ 18124EF0A881A00EE222D02A3EE30270, 8FBD652F03C5F114BD3661BFA9A5D2A56CE5F5C8D67A5876409E0B055D97D038 ] C:\Windows\System32\drivers\usbhub.sys
20:13:11.0765 0x1214  C:\Windows\System32\drivers\usbhub.sys - ok
20:13:11.0781 0x1214  [ 659B74FB74B86228D6338D643CD3E3CF, 83D741B7A2A204A661A80C226212749F514800060D05E217FA6DC14D62F38F80 ] C:\Windows\System32\drivers\ndproxy.sys
20:13:11.0781 0x1214  C:\Windows\System32\drivers\ndproxy.sys - ok
20:13:11.0781 0x1214  [ 6DEF98F8541E1B5DCEB2C822A11F7323, F6EE4A7A6A7A1F243D32CA9241CA4816C92EB7BF2AADDD09234968C2CAAE6C0D ] C:\Windows\System32\drivers\kbdhid.sys
20:13:11.0781 0x1214  C:\Windows\System32\drivers\kbdhid.sys - ok
20:13:11.0781 0x1214  [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] C:\Windows\System32\drivers\mouhid.sys
20:13:11.0781 0x1214  C:\Windows\System32\drivers\mouhid.sys - ok
20:13:11.0796 0x1214  [ 7E2F5A758F63F80F8B03F889B4E6B19F, 5A911F1E9DB2894A7459D072F8D02F884AEF695B51EC17DEEAF874DB5A6F783C ] C:\Windows\System32\drivers\AtiHdmi.sys
20:13:11.0796 0x1214  C:\Windows\System32\drivers\AtiHdmi.sys - ok
20:13:11.0796 0x1214  [ 28CEEFBD2C63F91DC17DED3E8D27ECF5, 8E39FDF63A8217437A4A08D5E353F9592331CC220ADB9509E410AF7B4295D155 ] C:\Windows\System32\drivers\RTKVHD64.sys
20:13:11.0796 0x1214  C:\Windows\System32\drivers\RTKVHD64.sys - ok
20:13:11.0796 0x1214  [ 8B7F8E882A649D81CEA1EDE9BBB68FFF, 3BDA2C1F922EC672353CB2F296720FC75F3D573A6FCF879B220EB793611CF82E ] C:\Windows\System32\autochk.exe
20:13:11.0796 0x1214  C:\Windows\System32\autochk.exe - ok
20:13:11.0812 0x1214  [ C324F24924675A18B4876A7346FEE23A, 9DFAEC86F81A39DA62E1894508F2F455827550699EC008BF639CB26A2465CB9A ] C:\Windows\System32\lsdelete.exe
20:13:11.0812 0x1214  C:\Windows\System32\lsdelete.exe - ok
20:13:11.0812 0x1214  [ DB6DD54A93522CA3572D04B56C5DB890, 8513EB3785009B89E592422C159675142DE4D7BE4EA4000C65EC7AFC0F719383 ] C:\Windows\SysWOW64\ntdll.dll
20:13:11.0812 0x1214  C:\Windows\SysWOW64\ntdll.dll - ok
20:13:11.0812 0x1214  [ 24BF2F4DD2D23A682967AD364D6AE967, E568E548A8B13F5390E0E7D125CF0FD4829D42FAE9740722048CCE1A6E051807 ] C:\Windows\System32\wow64.dll
20:13:11.0812 0x1214  C:\Windows\System32\wow64.dll - ok
20:13:11.0827 0x1214  [ 6E52A8EADB1A931D39475800166FC32D, A58109705448CED855685EAD248B4E10C59B4E8A4A412AB11198289CAC35BF84 ] C:\Windows\System32\wow64win.dll
20:13:11.0827 0x1214  C:\Windows\System32\wow64win.dll - ok
20:13:11.0827 0x1214  [ E9FCC0F9BC1F4FBEDAE00BBABA3679E4, 4818D1D82ED345DE552D3AAD278F89C4C4E2DCC972361AC4EDFA38206A9A7AA7 ] C:\Windows\System32\wow64cpu.dll
20:13:11.0827 0x1214  C:\Windows\System32\wow64cpu.dll - ok
20:13:11.0843 0x1214  [ E3BC37881D92EB59EE0BA3B854A54D1E, 144F444971DE111BC39F3DAA2F4213A97F93E518B427F7A3034889BB738C314A ] C:\Windows\System32\kernel32.dll
20:13:11.0843 0x1214  C:\Windows\System32\kernel32.dll - ok
20:13:11.0843 0x1214  [ C95793F4BE3471AEED92F5BF367BE69E, 10426C3C2862BB3A57A7881E8AD0E1F6F9D4056D9667C8BD89D30DEDD0D077E3 ] C:\Windows\SysWOW64\kernel32.dll
20:13:11.0843 0x1214  C:\Windows\SysWOW64\kernel32.dll - ok
20:13:11.0843 0x1214  [ 72D7B3EA16946E8F0CF7458150031CC6, 350ED7B07948C716D2CE51F324171942C534E875FBF5492250A5385B75176374 ] C:\Windows\System32\user32.dll
20:13:11.0843 0x1214  C:\Windows\System32\user32.dll - ok
20:13:11.0859 0x1214  [ 401107CE7913B526FD87CC53F23A102F, 2565530EAC44729BFDCD83D575FA2B674AF939BD46D792B749BF5F6E97FAF437 ] C:\Windows\SysWOW64\guard32.dll
20:13:11.0859 0x1214  C:\Windows\SysWOW64\guard32.dll - ok
20:13:11.0859 0x1214  [ 63C8D74BED9F80F4DD0AA7A3101EB639, EA2CE29025259E9DE945CE52C80A41C33024D7C2907AA1928480EC11FC852B08 ] C:\Windows\System32\drivers\usbd.sys
20:13:11.0859 0x1214  C:\Windows\System32\drivers\usbd.sys - ok
20:13:11.0859 0x1214  [ B26AFB54A534D634523C4FB66765B026, A219C9AE32D040BEA4DD69C2C826B1C52BACE26BEBFEE799BD56DFD442C5E0D8 ] C:\Windows\System32\drivers\usbccgp.sys
20:13:11.0859 0x1214  C:\Windows\System32\drivers\usbccgp.sys - ok
20:13:11.0874 0x1214  [ B3BF6B5B50006DEF50B66306D99FCF6F, D39A1DEBE7C464922919826D15199ED25E263BF58633593DD412D78F98921417 ] C:\Windows\System32\drivers\hidusb.sys
20:13:11.0874 0x1214  C:\Windows\System32\drivers\hidusb.sys - ok
20:13:11.0874 0x1214  [ 7CB8C573C6E4A2714402CC0A36EAB4FE, FCD65AA3723617F58F77C4DA93CE910C712B8AA9411B5C4A60DC6C684EA53C1B ] C:\Windows\System32\drivers\usbvideo.sys
20:13:11.0874 0x1214  C:\Windows\System32\drivers\usbvideo.sys - ok
20:13:11.0874 0x1214  [ AC8F79017C5C1FB316930EDEAD0AF517, AF8BBCB0629F7F60ADA084EBA8169C99F595254B6E1147D749E6629961C72969 ] C:\Windows\System32\ole32.dll
20:13:11.0874 0x1214  C:\Windows\System32\ole32.dll - ok
20:13:11.0890 0x1214  [ 15BDC173EB5FA4F92B67D9FFB269A6EA, 3AD223CEA07093E42D37FDB81D0E045FFD724D7DEDDCC5A70631481A49D3D7A0 ] C:\Windows\System32\shlwapi.dll
20:13:11.0890 0x1214  C:\Windows\System32\shlwapi.dll - ok
20:13:11.0890 0x1214  [ D3A6792AED4841B4D055C7C80C815BB7, CD537B5B87B7AD270957B7D2E2687417EB1A18148E5DCC912AEFF112B6F1FA02 ] C:\Windows\System32\urlmon.dll
20:13:11.0890 0x1214  C:\Windows\System32\urlmon.dll - ok
20:13:11.0890 0x1214  [ CA34F2478B2B0EA172CFC8A97B2DC4C5, 005DF1A51B54284ED3ACF5B615334563B02D079186BC8761FEDA14EA754D391B ] C:\Windows\System32\shell32.dll
20:13:11.0890 0x1214  C:\Windows\System32\shell32.dll - ok
20:13:11.0905 0x1214  [ 15A54626213EBF003F7D4C9D8380A656, 0217E919DD8EB74E19FAF2B9D98D77EDC803D9B1AE78A6EA0EF1A76D72296B36 ] C:\Windows\System32\imagehlp.dll
20:13:11.0905 0x1214  C:\Windows\System32\imagehlp.dll - ok
20:13:11.0905 0x1214  [ D87E1E59C73C1F98D5DED5B3850C40F5, 536419BFF9F877D4314B5D0C045D9A6E729489C389863FADF07E382050BC84FD ] C:\Windows\System32\psapi.dll
20:13:11.0905 0x1214  C:\Windows\System32\psapi.dll - ok
20:13:11.0905 0x1214  [ A4F6142CABA82FB7293ECE5FF864B440, 9E4653999E01BA3325AB5BA92A81C13CA438E972F545C3456892D60766D990CF ] C:\Windows\System32\wininet.dll
20:13:11.0905 0x1214  C:\Windows\System32\wininet.dll - ok
20:13:11.0921 0x1214  [ 48C903068B6BDAB5EF650B9CBEE85295, 69FF82F689ABBDD66E48D27F40DEE69F96C4E1E8193F78A12911C8DB5D0D1939 ] C:\Windows\System32\rpcrt4.dll
20:13:11.0921 0x1214  C:\Windows\System32\rpcrt4.dll - ok
20:13:11.0921 0x1214  [ 044FE45FFD6AD40E3BBBE60B7F41BABE, A1688A5E6E0F7037C850699462C2655006A7D873C97F9AB406C59D81749B6F09 ] C:\Windows\System32\nsi.dll
20:13:11.0921 0x1214  C:\Windows\System32\nsi.dll - ok
20:13:11.0921 0x1214  [ E5CBF5F8623BBD1DB7B8148A66F6EBA4, 533021C8FAB7C6FA34F57350308F30B55620AFFABCBA9A624039A1B07AD3E94F ] C:\Windows\System32\Wldap32.dll
20:13:11.0921 0x1214  C:\Windows\System32\Wldap32.dll - ok
20:13:11.0937 0x1214  [ 6A4EA4C29FBF78112AE20013FB71E9C1, 2FA53B8F98F2E8AEF50880AF1C64664A4FD1F38F47779DC6476F50907B685FF2 ] C:\Windows\System32\setupapi.dll
20:13:11.0937 0x1214  C:\Windows\System32\setupapi.dll - ok
20:13:11.0937 0x1214  [ 8D4DEA45FCDF9FCFD9E31232A07E6EF9, 15D0B1C7440755B262DAA99E066A665496AB00BDFB442011F24546FA00F3FB78 ] C:\Windows\System32\iertutil.dll
20:13:11.0937 0x1214  C:\Windows\System32\iertutil.dll - ok
20:13:11.0937 0x1214  [ 579F6AFC6A6561951FA2202EFC3FE485, DF4A4DFB36332C69D801AAF9E613C62BA457E78DE18FACDA7D8690AF47A4DA56 ] C:\Windows\System32\msvcrt.dll
20:13:11.0937 0x1214  C:\Windows\System32\msvcrt.dll - ok
20:13:11.0952 0x1214  [ 6DF46D2BD74E3DA1B45F08F10D172732, 2DC945F6F2C4A82189BC7DA2FCBB7D9A0E2588A909539249E55BA82468E0C677 ] C:\Windows\System32\advapi32.dll
20:13:11.0952 0x1214  C:\Windows\System32\advapi32.dll - ok
20:13:11.0952 0x1214  [ 7083F463788CB34FCC42F565D56F89E8, 43876B0BD4D8E94D9234D9726B0B492C9EB0F66A6951861DF7148C16AF7EA09D ] C:\Windows\System32\ws2_32.dll
20:13:11.0952 0x1214  C:\Windows\System32\ws2_32.dll - ok
20:13:11.0952 0x1214  [ 25983DE69B57142039AC8D95E71CD9C9, A677DA7EBCBCB6073D27E8A38809F51E971E83ED379BC599AAAD6EF4216348DA ] C:\Windows\System32\clbcatq.dll
20:13:11.0952 0x1214  C:\Windows\System32\clbcatq.dll - ok
20:13:11.0968 0x1214  [ AA2C08CE85653B1A0D2E4AB407FA176C, 83DFD0C119B20AEDB07114C9D1CF9CE2DFA938D0F1070256B0591A9E2C3997FA ] C:\Windows\System32\imm32.dll
20:13:11.0968 0x1214  C:\Windows\System32\imm32.dll - ok
20:13:11.0968 0x1214  [ D202223587518B13D72D68937B7E3F70, 9DB971B866D058ADBB518DD99B87C5DB8DD1E7C9073755B989AE7E9FB62901E8 ] C:\Windows\System32\lpk.dll
20:13:11.0968 0x1214  C:\Windows\System32\lpk.dll - ok
20:13:11.0968 0x1214  [ E1B1255D3A4B3367FE4E9C71E62E3B5A, DBFE4268D8365D97ED948BC56EBC886B4BF2684F6A31FAC7ECEA3B289F13906D ] C:\Windows\System32\gdi32.dll
20:13:11.0968 0x1214  C:\Windows\System32\gdi32.dll - ok
20:13:11.0983 0x1214  [ F94B8644F3AFE040EC6E1B6FBC9EFAA9, 5BEC7DBD63AA8AC19FCA7AF6AD751C683911964FE5268D2C73DF42C3C48147A7 ] C:\Windows\System32\comdlg32.dll
20:13:11.0983 0x1214  C:\Windows\System32\comdlg32.dll - ok
20:13:11.0983 0x1214  [ 5F2BDCA5FA0F20A6F452CF0EE2A2B18C, 91523F6E2227847A0BFDE7265C704602DF4D9455FC02AC5C7409450FE46720E2 ] C:\Windows\System32\usp10.dll
20:13:11.0983 0x1214  C:\Windows\System32\usp10.dll - ok
20:13:11.0983 0x1214  [ C431EAF5CAA1C82CAC2534A2EAB348A3, ADDF850128DC675E67FABA9A3D0D27E684F01F733962CA22927BB94503549E44 ] C:\Windows\System32\msctf.dll
20:13:11.0983 0x1214  C:\Windows\System32\msctf.dll - ok
20:13:11.0999 0x1214  [ 28C0B5024F5C5A438E78B188CFC81B7F, AB81FB63F2908CE316B45609077ACBD85F4B2AAD1606B1E9030F06DB82EDDFAD ] C:\Windows\System32\normaliz.dll
20:13:11.0999 0x1214  C:\Windows\System32\normaliz.dll - ok
20:13:11.0999 0x1214  [ F7CE0C81C545364020ED8203CF0A633E, 24B47A7492B7048096AF87E26786E8108455ADBD1A374B6A0466DE008505B8A9 ] C:\Windows\System32\difxapi.dll
20:13:11.0999 0x1214  C:\Windows\System32\difxapi.dll - ok
20:13:11.0999 0x1214  [ 83404DCBCE4925B6A5A77C5170F46D86, D669614D0B4461DB244AD99FBE1BA92CEB9B4ED5EC8E987E23764E77D9AC7074 ] C:\Windows\System32\sechost.dll
20:13:11.0999 0x1214  C:\Windows\System32\sechost.dll - ok
20:13:12.0015 0x1214  [ 2A46451EE42BCD2C842D8AA4923FAC16, 2FBE848D23B107DB706EA01499776D7B10D66444FDC1B4FBF34A6E29730312ED ] C:\Windows\System32\oleaut32.dll
20:13:12.0015 0x1214  C:\Windows\System32\oleaut32.dll - ok
20:13:12.0015 0x1214  [ 6657128E165146058C94E33FB497BB50, 641707CC35CA2D783ACF4BBA86AE16EA335C9632B810D386EDA4855825F27C51 ] C:\Windows\System32\KernelBase.dll
20:13:12.0015 0x1214  C:\Windows\System32\KernelBase.dll - ok
20:13:12.0015 0x1214  [ BC052EFAD10ACA1AD69545B629F50D99, C29C5F5B000EFB54CCFC0724F82C7520AE60D911F3FD4BF17D8EA40D3877FD03 ] C:\Windows\System32\comctl32.dll
20:13:12.0015 0x1214  C:\Windows\System32\comctl32.dll - ok
20:13:12.0030 0x1214  [ D05E03C1B2824236531F5E37334B6A8A, 4C79F02AA9F4C36B5A463B71A715523B5D4860B28A40840E54C1C4C5685018C6 ] C:\Windows\System32\cfgmgr32.dll
20:13:12.0030 0x1214  C:\Windows\System32\cfgmgr32.dll - ok
20:13:12.0030 0x1214  [ D256EB74BF77026FC9A3D7193861C7AD, 145CFA73D5D0680B9B6D15C9DDCB73DF1FA27C24DCC5AA813788CE8F3BFBC901 ] C:\Windows\System32\crypt32.dll
20:13:12.0030 0x1214  C:\Windows\System32\crypt32.dll - ok
20:13:12.0030 0x1214  [ 06FEC9E8117103BB1141A560E98077DA, C5E61B11DDBBBBBA3D9488970524F0975EA5FBDF16E2FA31F579F8BFA48353B1 ] C:\Windows\System32\devobj.dll
20:13:12.0030 0x1214  C:\Windows\System32\devobj.dll - ok
20:13:12.0046 0x1214  [ FEC6244873AB7981326CAEEC5B5FFF11, 1DE505E5CCB14530734FD123E364EEB7DF118B5BFC2CCCD2F534ED60CDBE6D2F ] C:\Windows\System32\wintrust.dll
20:13:12.0046 0x1214  C:\Windows\System32\wintrust.dll - ok
20:13:12.0046 0x1214  [ 98FB7DD3B28A92E3C0E5B4BD9D63EF01, 5567BC80CA43FB755A98D2C380483D0C6F4101BF86BBD1EA14950B5D1A02A970 ] C:\Windows\System32\msasn1.dll
20:13:12.0046 0x1214  C:\Windows\System32\msasn1.dll - ok
20:13:12.0046 0x1214  [ 9C278785347BCC991F8EA2999D90F58D, EA680C3642A6ABF627415AEE019956FAC702DC6A8F4B4D0FC8A4FB21EADD3896 ] C:\Windows\SysWOW64\normaliz.dll
20:13:12.0046 0x1214  C:\Windows\SysWOW64\normaliz.dll - ok
20:13:12.0061 0x1214  [ BF24D6F2ED97FE830BFD52B246F98E67, 6BBF4C4221A245462EF653798F6B416EEB12594AD1CB4E8BC8908A8CB2F53384 ] C:\Windows\System32\drivers\dxapi.sys
20:13:12.0061 0x1214  C:\Windows\System32\drivers\dxapi.sys - ok
20:13:12.0061 0x1214  [ 8549DC7684CBC0A0AA542051B7EF5A23, BCF009CAEEAA9F7E36E1B37F38186BC4C6F2700BA0080F0549104DB03D3900F9 ] C:\Windows\System32\win32k.sys
20:13:12.0061 0x1214  C:\Windows\System32\win32k.sys - ok
20:13:12.0077 0x1214  [ 48C41EE4E694E72235CBC57551A239EF, E098038A40CF82D4480CCBF2DDD44FDDEB05F1B3036B55BC48385D1374E51FF1 ] C:\Windows\System32\csrsrv.dll
20:13:12.0077 0x1214  C:\Windows\System32\csrsrv.dll - ok
20:13:12.0077 0x1214  [ 60C2862B4BF0FD9F582EF344C2B1EC72, CB1C6018FC5C15483AC5BB96E5C2E2E115BB0C0E1314837D77201BAB37E8C03A ] C:\Windows\System32\csrss.exe
20:13:12.0077 0x1214  C:\Windows\System32\csrss.exe - ok
20:13:12.0077 0x1214  [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\System32\basesrv.dll
20:13:12.0077 0x1214  C:\Windows\System32\basesrv.dll - ok
20:13:12.0093 0x1214  [ DDFF90DE7D2D66D1CE5C32E169B44B23, 756CE5E2086A52A53D5A1E52708C89C82C80342E0F501D86ADD954253305ECD8 ] C:\Windows\System32\cmdcsr.dll
20:13:12.0093 0x1214  C:\Windows\System32\cmdcsr.dll - ok
20:13:12.0093 0x1214  [ C4C551E6AB333C0EB812A3A4672E89DB, CA3DE675E85370395E46155D747B21E3EDBE35C7B9A88A0D6CB486B890EFC92D ] C:\Windows\System32\winsrv.dll
20:13:12.0093 0x1214  C:\Windows\System32\winsrv.dll - ok
20:13:12.0093 0x1214  [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] C:\Windows\System32\drivers\monitor.sys
20:13:12.0093 0x1214  C:\Windows\System32\drivers\monitor.sys - ok
20:13:12.0108 0x1214  [ F29FE765E1448EF371CFE05BFAC74ADB, F251581222D78543272FD4B14A6A59F4B0E0CC44A5FCBCF56DE4CA5783F78A75 ] C:\Windows\System32\tsddd.dll
20:13:12.0108 0x1214  C:\Windows\System32\tsddd.dll - ok
20:13:12.0108 0x1214  [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\System32\sxssrv.dll
20:13:12.0108 0x1214  C:\Windows\System32\sxssrv.dll - ok
20:13:12.0108 0x1214  [ 94355C28C1970635A31B3FE52EB7CEBA, C4E98F07170CEC69CACDD5CEDB8927E48A2A299CB1B8CDA87526E768AF6174F0 ] C:\Windows\System32\wininit.exe
20:13:12.0108 0x1214  C:\Windows\System32\wininit.exe - ok
20:13:12.0124 0x1214  [ 6798048153F5CBEA000DD2C86C9BA8F0, F71A88C93BD999FD71804696C105254F713595C34D3490789541DAD1350E138F ] C:\Windows\System32\guard64.dll
20:13:12.0124 0x1214  C:\Windows\System32\guard64.dll - ok
20:13:12.0124 0x1214  [ 2C942733A5983DD4502219FF37C7EBC7, 34B20B6B0D7274E4B5B783F1D2345BC3DD9888964D5C2C65712F041A00CF5B45 ] C:\Windows\System32\profapi.dll
20:13:12.0124 0x1214  C:\Windows\System32\profapi.dll - ok
20:13:12.0124 0x1214  [ F3D202F53A222D5F6944D459B73CF967, E9F1D48EB333D32331BCFD0348FE07BEE7D5352292E6020571DA395F596AFFE7 ] C:\Windows\System32\fltLib.dll
20:13:12.0124 0x1214  C:\Windows\System32\fltLib.dll - ok
20:13:12.0139 0x1214  [ F4389DA7DBDA2E7D292D360CF8E400C7, EBB50703FA573932727FBDCB407D9D5945BDC052CEFADED8237185063DD3A4AE ] C:\Windows\System32\RpcRtRemote.dll
20:13:12.0139 0x1214  C:\Windows\System32\RpcRtRemote.dll - ok
20:13:12.0139 0x1214  [ B9A047D231D32FDF5AF2F281E4326A9D, 814DC543DBBA137D478C51248A99ACC2485744F7BDC7A382B03B8912C0EB73EE ] C:\Windows\System32\KBDUS.DLL
20:13:12.0139 0x1214  C:\Windows\System32\KBDUS.DLL - ok
20:13:12.0139 0x1214  [ 100BDF2F89D6056CEE900BB6156DA737, 4FDBD1B3F6D2B81137096343BA90DE2EFAE02D963B7376145947106B9AF7DF42 ] C:\Windows\System32\cdd.dll
20:13:12.0139 0x1214  C:\Windows\System32\cdd.dll - ok
20:13:12.0155 0x1214  [ 0F5CD07A098D6A5989019CC377722989, 64FF67772CD9ACFB1D8C3D6B6351123D522BC97BEC94A6A9423CCF962F519239 ] C:\Windows\System32\KBDCA.DLL
20:13:12.0155 0x1214  C:\Windows\System32\KBDCA.DLL - ok
20:13:12.0155 0x1214  [ 283C64A094A763C2F3DE2C926AEAE8CD, 4C63464F9966C1DAF630643697A0D874B6885A84FE54712E24DA88B6A32D2580 ] C:\Windows\System32\KBDCAN.DLL
20:13:12.0155 0x1214  C:\Windows\System32\KBDCAN.DLL - ok
20:13:12.0155 0x1214  [ 456C92A9D8DB51B9938A6234BBC65FC9, A20EF19E25384B34D3FE997099DD71EA595F3ACDA0F7C56695DC48ADFA54F5B8 ] C:\Windows\System32\sxs.dll
20:13:12.0155 0x1214  C:\Windows\System32\sxs.dll - ok
20:13:12.0171 0x1214  [ B26B1801356760841C3BC69F9F91537F, 83B9DF333E36C09E81D44E12AE5BE14650126FDA0CF4A0EA853BF40C5780EF81 ] C:\Windows\System32\WlS0WndH.dll
20:13:12.0171 0x1214  C:\Windows\System32\WlS0WndH.dll - ok
20:13:12.0171 0x1214  [ 784FA3DF338E2E8F5F0389D6FAC428AF, 9C8AA0CFDEB9E38AAF8EB08626070E0F0364F4F8A793CFE3532EC6C007980C34 ] C:\Windows\System32\cryptbase.dll
20:13:12.0171 0x1214  C:\Windows\System32\cryptbase.dll - ok
20:13:12.0171 0x1214  [ 01A465AC251BCCF6037DF2EF28AA4292, 49C0E1B5B0B7FAACF226C8DA15F518BEAE6B868AB079023B9181A5039DD5E456 ] C:\Windows\System32\apphelp.dll
20:13:12.0171 0x1214  C:\Windows\System32\apphelp.dll - ok
20:13:12.0186 0x1214  [ DA3E2A6FA9660CC75B471530CE88453A, 85E8DC87EBF2C713EE879ED4E60EEC2F9940FC2755FC6BE7E0E96C61894AB558 ] C:\Windows\System32\winlogon.exe
20:13:12.0186 0x1214  C:\Windows\System32\winlogon.exe - ok
20:13:12.0186 0x1214  [ D8C88512BA9544AE1CC2034F50ECFA12, 99CFB478DF31214E98CAB81EFF7346500579AE262100BD418F3C9D47437F4413 ] C:\Windows\System32\winsta.dll
20:13:12.0186 0x1214  C:\Windows\System32\winsta.dll - ok
20:13:12.0186 0x1214  [ 0793F40B9B8A1BDD266296409DBD91EA, 8A383FC9A66A327905C340D06138980F9E489479535A2C2AAE5E8BB14A74826E ] C:\Windows\System32\lsass.exe
20:13:12.0186 0x1214  C:\Windows\System32\lsass.exe - ok
20:13:12.0202 0x1214  [ 04FCA22B77A2E37332CC8226187AF87B, 6B085DB5C2EC21D2ED7BE842E7842FCC3530D1828FBE28C16E61F7E12B27833B ] C:\Windows\System32\lsm.exe
20:13:12.0202 0x1214  C:\Windows\System32\lsm.exe - ok
20:13:12.0202 0x1214  [ 24ACB7E5BE595468E3B9AA488B9B4FCB, 63541E3432FCE953F266AE553E7A394978D6EE3DB52388D885F668CF42C5E7E2 ] C:\Windows\System32\services.exe
20:13:12.0202 0x1214  C:\Windows\System32\services.exe - ok
20:13:12.0202 0x1214  [ 2A0EA951A326C2E78AF86E2F9704327E, 2224C1A97F2FAE0B307DFDAFC5BB2BB051A747939A2EA7AB19820D6537F9555F ] C:\Windows\System32\sspicli.dll
20:13:12.0202 0x1214  C:\Windows\System32\sspicli.dll - ok
20:13:12.0217 0x1214  [ 18367866684A72C5188D50AC1174F1B7, C51505160876F1D7D7004CB5CE8FBB74E21E4675933629BD7C2B8D6F361A2D97 ] C:\Windows\System32\sspisrv.dll
20:13:12.0217 0x1214  C:\Windows\System32\sspisrv.dll - ok
20:13:12.0217 0x1214  [ 55F45DD65AF0536D23775439FFAF551F, 3F70C872ECFF2C016F69751FBE066DCF1C557851A0CB4D156E6268A50C8FE356 ] C:\Windows\System32\lsasrv.dll
20:13:12.0217 0x1214  C:\Windows\System32\lsasrv.dll - ok
20:13:12.0217 0x1214  [ 68083118797CAF30FB2EA3E71494D67E, 5F1BCDFCB00A20CD60CBC70A2FD97405EF0F7173DD0E404BBA7B06D39DB37364 ] C:\Windows\System32\sysntfy.dll
20:13:12.0217 0x1214  C:\Windows\System32\sysntfy.dll - ok
20:13:12.0233 0x1214  [ DEE7267C5D232A3B816866872CE199E6, A1994FD37667C52E7CBF873514C190DA61A3D1349786D187BFAE0006F61799AE ] C:\Windows\System32\wmsgapi.dll
20:13:12.0233 0x1214  C:\Windows\System32\wmsgapi.dll - ok
20:13:12.0233 0x1214  [ A74316B5C28D94AF0825267D8715549F, C45D33E809FC97AF7334A481F56E878894A8F9127380261A7A4BA6F22A5D19F1 ] C:\Windows\System32\dbghelp.dll
20:13:12.0233 0x1214  C:\Windows\System32\dbghelp.dll - ok
20:13:12.0233 0x1214  [ B160ADAEFC76031D92C4FBAC0918B033, A3A0D5AE3F15D6275005EA104D992A3A84B0AC0CA2E629716065DB715CCA856B ] C:\Windows\System32\samsrv.dll
20:13:12.0233 0x1214  C:\Windows\System32\samsrv.dll - ok

 

 

CONTINUED IN NEXT POST



#10 stqcb

stqcb
  • Topic Starter

  • Members
  • 52 posts
  • OFFLINE
  •  
  • Local time:03:26 PM

Posted 28 October 2013 - 05:53 PM

20:13:12.0249 0x1214  [ 941AF3C8B0DE1B359BE22DD3288A8C8E, 8D1081C58097C68939955E3C700B1B9764212A6A70BEEE353985512F39DE2EBF ] C:\Windows\System32\scesrv.dll
20:13:12.0249 0x1214  C:\Windows\System32\scesrv.dll - ok
20:13:12.0249 0x1214  [ E914A50A151DFFE63D3935226DB5E2C1, 7DCCE4060344E1C771679F1C20378A0BEB3C1F06DB684072F07B98921A62A299 ] C:\Windows\System32\scext.dll
20:13:12.0249 0x1214  C:\Windows\System32\scext.dll - ok
20:13:12.0249 0x1214  [ 9F5225F41D5474A651384C088D9FF502, 75EC20BFB470EA1F1ECC6111E4893C0C34CCA859AEBAC8B3A88F4CEF53E11C99 ] C:\Windows\System32\secur32.dll
20:13:12.0249 0x1214  C:\Windows\System32\secur32.dll - ok
20:13:12.0264 0x1214  [ 3A061472B38233BAFF9CFEFF2E49C46B, DF29B14C8D22A8A16AA336A09A6152E2C7FCA6CAF4E76F0C5DCB55BEF9D00515 ] C:\Windows\System32\cryptdll.dll
20:13:12.0264 0x1214  C:\Windows\System32\cryptdll.dll - ok
20:13:12.0264 0x1214  [ D23371AB9607651937C7641A38CD52BC, 00ED1F9EC0B57A3E970F707C3B91CC68F874C0F0073CEA9FAD09EA2515B751C0 ] C:\Windows\System32\srvcli.dll
20:13:12.0264 0x1214  C:\Windows\System32\srvcli.dll - ok
20:13:12.0264 0x1214  [ 3C073B0C596A0AF84933E7406766B040, 4698BBA678F553E15AD4B07AD7FB236281F872DEFEE97BFD637114476C8F97B3 ] C:\Windows\System32\wevtapi.dll
20:13:12.0264 0x1214  C:\Windows\System32\wevtapi.dll - ok
20:13:12.0280 0x1214  [ 7FBEBD2229EA5FD48D41B199EC2D541C, A465975D445A8D50CAF3EF29BD33354B320D11173C127BE30D5EBBFF7008CDCE ] C:\Windows\System32\authz.dll
20:13:12.0280 0x1214  C:\Windows\System32\authz.dll - ok
20:13:12.0280 0x1214  [ 86FE1B1F8FD42CD0DB641AB1CDB13093, 8C4BB4415105CE82FFFE658879EAE9D259A24C0F6DFC7D25507352DC99241BE2 ] C:\Windows\System32\cngaudit.dll
20:13:12.0280 0x1214  C:\Windows\System32\cngaudit.dll - ok
20:13:12.0280 0x1214  [ 2E8C52A0EC788D90FA35D9507D828771, DD5AAA10E075F209D9827C7A192AD5645D1156C149DB9B5AC1EF7B5E0B5F11DE ] C:\Windows\System32\ncrypt.dll
20:13:12.0280 0x1214  C:\Windows\System32\ncrypt.dll - ok
20:13:12.0295 0x1214  [ B9A95365E52F421A20E1501935FADDA5, DDB4CB575139233EFAF2C59B7E9B04AF36BBCCC63190181F3B2A7E6BFC86E77E ] C:\Windows\System32\bcrypt.dll
20:13:12.0295 0x1214  C:\Windows\System32\bcrypt.dll - ok
20:13:12.0295 0x1214  [ 02B64609F865A39365FF88580DF11738, 2F676B93898E1B6131AF6227BB7AB731EB9C29477F9BD4C2C60F0FC1E35CD968 ] C:\Windows\System32\msprivs.dll
20:13:12.0295 0x1214  C:\Windows\System32\msprivs.dll - ok
20:13:12.0295 0x1214  [ B561B451320B0B40908A8BFD81705262, D9E6B0C33B03D7648A8229FB5FE06332141F1F8E9F73790D4D7D621DC53EF9D3 ] C:\Windows\System32\netjoin.dll
20:13:12.0311 0x1214  C:\Windows\System32\netjoin.dll - ok
20:13:12.0311 0x1214  [ 00B40A10E3DB79E4D3E127B9C2233A6B, 1F745BFB55A957CC56EC3C1559FDB8602F1612FAB936749703FB03938DE4AC54 ] C:\Windows\System32\kerberos.dll
20:13:12.0311 0x1214  C:\Windows\System32\kerberos.dll - ok
20:13:12.0311 0x1214  [ 50532FCD7ECF02DD169CE5C485F02534, 8EE5D9D0EA53DC72BCC300692E521ACADD56AB09BFA3E78149D8B5A90648512C ] C:\Windows\System32\negoexts.dll
20:13:12.0311 0x1214  C:\Windows\System32\negoexts.dll - ok
20:13:12.0327 0x1214  [ 778D7DFD114A300E79496291FDB9169F, F6276DC4548EC6355199C243EC0E14A40ECD375457E7AC88E4C591BEF00FDDF3 ] C:\Windows\System32\atmfd.dll
20:13:12.0327 0x1214  C:\Windows\System32\atmfd.dll - ok
20:13:12.0327 0x1214  [ D0C2FBB6D97416B0166478FC7AE2B212, 7EAB6C37F0A845E645CA44CC060AC6C56E386C7EF7A64716C6786C9602AD8C9D ] C:\Windows\System32\cryptsp.dll
20:13:12.0327 0x1214  C:\Windows\System32\cryptsp.dll - ok
20:13:12.0327 0x1214  [ FC76FE3C1E1FDB761244D4F74EF560FD, 85D7BD8887E53F7E1C37D2EC3964D714C0939ED5D45F95332F425341AA181C19 ] C:\Windows\System32\mswsock.dll
20:13:12.0327 0x1214  C:\Windows\System32\mswsock.dll - ok
20:13:12.0342 0x1214  [ EC7CBFF96B05ECF3D366355B3C64ADCF, F69ED45EBEDCA9CF000AC03281F0EC2C351F98513FBA90E63394E4E561D6C7A2 ] C:\Windows\System32\wship6.dll
20:13:12.0342 0x1214  C:\Windows\System32\wship6.dll - ok
20:13:12.0342 0x1214  [ FA4DB05923DDDEDE3196ABD09AE0F1E9, 93224D8495DD67A2904DB6FFF3AD27C49E55B6463F7BF96DFE3E5070437456A6 ] C:\Windows\System32\msv1_0.dll
20:13:12.0342 0x1214  C:\Windows\System32\msv1_0.dll - ok
20:13:12.0342 0x1214  [ 956D030D375F207B22FB111E06EF9C35, D2C6B0C0C9E951F6715252C54A620CF6AF1A3845014035334C92B3DDDEFD52E5 ] C:\Windows\System32\netlogon.dll
20:13:12.0342 0x1214  C:\Windows\System32\netlogon.dll - ok
20:13:12.0358 0x1214  [ 05A2D26ACF0939A4E97160315F1FA12E, 0F387E5719020F7E25EF58E71576397CBF61A3712093AD433E58BBB905577EAD ] C:\Windows\System32\dnsapi.dll
20:13:12.0358 0x1214  C:\Windows\System32\dnsapi.dll - ok
20:13:12.0358 0x1214  [ 8CE22E63F08613036DF8C7B00FBDF36B, 442DDE1C1F1073BFB1730D3B258D249DD6FFAED7D2452493C2E1D4CF48F5376C ] C:\Windows\System32\logoncli.dll
20:13:12.0358 0x1214  C:\Windows\System32\logoncli.dll - ok
20:13:12.0358 0x1214  [ 426A455CACD1261D05D158CA8AD8EF2E, 099103CB4B09715D80D10C157D9062BECEC568DCC42842C322F8C6D95401C05D ] C:\Windows\System32\schannel.dll
20:13:12.0358 0x1214  C:\Windows\System32\schannel.dll - ok
20:13:12.0373 0x1214  [ 95FB6CA4374E343DDD653FCC43F9D26B, 911A240F9C1DD155C2B1CD85FE4A8044EB2816AF166CD8CB66EEB905CA352881 ] C:\Windows\System32\wdigest.dll
20:13:12.0373 0x1214  C:\Windows\System32\wdigest.dll - ok
20:13:12.0373 0x1214  [ 5D8874A8C11DDDDE29E12DE0E2013493, 3E9A57137BF622AF83E3E4D58971E2C0200559CCA7545D16CF263AA03EE9C7D2 ] C:\Windows\System32\rsaenh.dll
20:13:12.0373 0x1214  C:\Windows\System32\rsaenh.dll - ok
20:13:12.0373 0x1214  [ 0DEFD5FBF801DD8F83BC0ED09861A8EC, A00E0CCDE4270452139C37E1599F3ED3ACCF02BEE371F5534E17E93DB46ED082 ] C:\Windows\System32\TSpkg.dll
20:13:12.0373 0x1214  C:\Windows\System32\TSpkg.dll - ok
20:13:12.0389 0x1214  [ E08088A97F95345E181C3DFCE2C615EF, DEF3B087DF5E10E4F8418029DB6E82546E62FEFA39694B7BD6A48CE8AAFD1B96 ] C:\Windows\System32\pku2u.dll
20:13:12.0389 0x1214  C:\Windows\System32\pku2u.dll - ok
20:13:12.0389 0x1214  [ 7DBA64AD70C2E2481C68D9E0F7CD7840, 52EE57E9A8D3C28336BB8E7536ECE77A9FB4BAF93B9651F9A897F79F873D66BE ] C:\Windows\System32\LIVESSP.DLL
20:13:12.0389 0x1214  C:\Windows\System32\LIVESSP.DLL - ok
20:13:12.0389 0x1214  [ DA090E97E57DCB48888015B5D3C749CD, 9C351013A7791CB0998E3E2519A460CBC6EED5E595EEA7A3394DA74738A7132E ] C:\Windows\System32\bcryptprimitives.dll
20:13:12.0389 0x1214  C:\Windows\System32\bcryptprimitives.dll - ok
20:13:12.0405 0x1214  [ 9301B8810B2DA4EB6AD55DB75FC1E339, 765D23BD3D5D8768550D82CFDBD26365E2AE896DE9E5F123CE4045BDF8E838BB ] C:\Windows\System32\credssp.dll
20:13:12.0405 0x1214  C:\Windows\System32\credssp.dll - ok
20:13:12.0405 0x1214  [ 90BDEFC5DF334E5100EAA781D798DE1A, F48B650D811B6D57D2252E326C0C9CC74534BE9D510E7D3403F91D1C5C36281E ] C:\Windows\System32\efslsaext.dll
20:13:12.0405 0x1214  C:\Windows\System32\efslsaext.dll - ok
20:13:12.0405 0x1214  [ 398712DDDAEFB85EDF61DF6A07B65C79, 08732BF5C5FFAF953FF4065AA5D35CFF797590E1C2CD12E4E923E932B5722A20 ] C:\Windows\System32\scecli.dll
20:13:12.0405 0x1214  C:\Windows\System32\scecli.dll - ok
20:13:12.0420 0x1214  [ 7CC7DF5B654DA579613F811D8C637E29, 70EAC059C1ED814810C75DBB9F4D188428CB942FFD8869D692158D384EB6BB35 ] C:\Windows\System32\ubpm.dll
20:13:12.0420 0x1214  C:\Windows\System32\ubpm.dll - ok
20:13:12.0420 0x1214  [ C78655BC80301D76ED4FEF1C1EA40A7D, 93B2ED4004ED5F7F3039DD7ECBD22C7E4E24B6373B4D9EF8D6E45A179B13A5E8 ] C:\Windows\System32\svchost.exe
20:13:12.0420 0x1214  C:\Windows\System32\svchost.exe - ok
20:13:12.0420 0x1214  [ 98B1721B8718164293B9701B98C52D77, 27F5F00D4AA394D4D8D0A0062EDC3F944B603E07CAAEDC5CC959BA1E8C208C2A ] C:\Windows\System32\umpnpmgr.dll
20:13:12.0420 0x1214  C:\Windows\System32\umpnpmgr.dll - ok
20:13:12.0436 0x1214  [ CD1B5AD07E5F7FEF30E055DCC9E96180, 63C58551F32B0B09377F64A6AE1FA81AF93B8A707A57A8C18722086906AD3046 ] C:\Windows\System32\devrtl.dll
20:13:12.0436 0x1214  C:\Windows\System32\devrtl.dll - ok
20:13:12.0436 0x1214  [ E6EB44ABAAF1F330119F854856C53EBE, 77279972FFBFA984578DD4F17EB615F5D2D93590AF3A9FEFEFDB9128206C9887 ] C:\Windows\System32\SPInf.dll
20:13:12.0436 0x1214  C:\Windows\System32\SPInf.dll - ok
20:13:12.0436 0x1214  [ 0776CF79590BDEF0A2728B0B9A813B96, 8205E0F3CC3DD8605769EC4DD85E6ACE89B219F62379C8FD74C62047BD339F22 ] C:\Windows\System32\userenv.dll
20:13:12.0436 0x1214  C:\Windows\System32\userenv.dll - ok
20:13:12.0451 0x1214  [ 9C9307C95671AC962F3D6EB3A4A89BAE, D1433791C9B8BCEEAD8937EC18D33E89E4E2012B5975228A8500FD141BC30078 ] C:\Windows\System32\gpapi.dll
20:13:12.0451 0x1214  C:\Windows\System32\gpapi.dll - ok
20:13:12.0451 0x1214  [ F6C011B46FAEEF33536B2E80F48B5CBE, BDD149D3D6F9F6C8F6F34C311219BE5618CEEFBC7D35E37473A47F1D5D015067 ] C:\Windows\System32\pcwum.dll
20:13:12.0451 0x1214  C:\Windows\System32\pcwum.dll - ok
20:13:12.0451 0x1214  [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] C:\Windows\System32\umpo.dll
20:13:12.0451 0x1214  C:\Windows\System32\umpo.dll - ok
20:13:12.0467 0x1214  [ 716175021BDA290504CE434273F666BC, FA18CA2D8A5F4335E051E2933147D3C1E7308F7D446E2AEB6596CDEF6E2AFC88 ] C:\Windows\System32\powrprof.dll
20:13:12.0467 0x1214  C:\Windows\System32\powrprof.dll - ok
20:13:12.0467 0x1214  [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] C:\Windows\System32\drivers\luafv.sys
20:13:12.0467 0x1214  C:\Windows\System32\drivers\luafv.sys - ok
20:13:12.0467 0x1214  [ 0D5C96FD25D6455D97A5C4D7706DFAB1, AD55CA587EA009292E1B3C37D0F374201DBC68CFE4A4751AFAAADECF8E26B04A ] C:\Windows\System32\drivers\avgntflt.sys
20:13:12.0467 0x1214  C:\Windows\System32\drivers\avgntflt.sys - ok
20:13:12.0483 0x1214  [ 7266972E86890E2B30C0C322E906B027, BFA30E85F5BD3AA933913BD7C6D2B5993DB7AFB0C98349B61A6BEF0BDC8A3680 ] C:\Windows\System32\rpcss.dll
20:13:12.0483 0x1214  C:\Windows\System32\rpcss.dll - ok
20:13:12.0483 0x1214  [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] C:\Windows\System32\RpcEpMap.dll
20:13:12.0483 0x1214  C:\Windows\System32\RpcEpMap.dll - ok
20:13:12.0498 0x1214  [ 9A2B3AC87DCB6C2B095F86A4EBA87CBE, 2A9BCE2FA76A0CBCF08AFB782898BDA42FE0450C08B56CB31C8EA8C25433E7D8 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll
20:13:12.0498 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll - ok
20:13:12.0498 0x1214  [ 57FE2CFC2F25C200499D5D934EA24EB5, 4802E9A2AE7849AAF1103113A9DB3647CFD7EA7472E712D3A1E768DA81A24F74 ] C:\Windows\System32\IPHLPAPI.DLL
20:13:12.0498 0x1214  C:\Windows\System32\IPHLPAPI.DLL - ok
20:13:12.0498 0x1214  [ 4C9210E8F4E052F6A4EB87716DA0C24C, 460F7990BDADB7D58D6DC95B094D30A2EFDC4CEED444B18A2F36E8D9076FB8B9 ] C:\Windows\System32\winnsi.dll
20:13:12.0498 0x1214  C:\Windows\System32\winnsi.dll - ok
20:13:12.0514 0x1214  [ 16E964ABF6D1E0F0CC7822FCA9BA754D, 0E461387ACFD641DA22EE542A3C68AF5F7D3A7F967D974E3B198143D461ABE39 ] C:\Windows\System32\wshqos.dll
20:13:12.0514 0x1214  C:\Windows\System32\wshqos.dll - ok
20:13:12.0514 0x1214  [ 31559F3244C6BC00A52030CAA83B6B91, B2025742B5F0025ACE9821D5722DE3F997EEEAB21D2F381C9E307882DF422579 ] C:\Windows\System32\WSHTCPIP.DLL
20:13:12.0514 0x1214  C:\Windows\System32\WSHTCPIP.DLL - ok
20:13:12.0514 0x1214  [ 65FB5097D9EE7E3A99E932CFA0E4B344, 42BFD514204CDFD37BDF388DE0BEB5909F24777807A10C0BB2CEF763B9FEC876 ] C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
20:13:12.0514 0x1214  C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe - ok
20:13:12.0514 0x1214  [ 9AD9E06F8656F296D91FAE8EE5B95A27, 53384747D5864D699BCC4F48E0A5E656430EDAA65DCDAB4B11EA68FC7106459E ] C:\Windows\System32\FirewallAPI.dll
20:13:12.0514 0x1214  C:\Windows\System32\FirewallAPI.dll - ok
20:13:12.0529 0x1214  [ 94E026870A55AAEAFF7853C1754091E9, B2F5D5629D12BDFA98DBED3898368F37D9009C7531B6909C7285A2C11C9A0F93 ] C:\Windows\System32\version.dll
20:13:12.0529 0x1214  C:\Windows\System32\version.dll - ok
20:13:12.0529 0x1214  [ 93E6A39B1DB898F7C949FA5567E774CF, 914F12718CEF019DE2AB18776DD23C669F218B4FA2292BECFE34A95872040789 ] C:\Windows\System32\LogonUI.exe
20:13:12.0529 0x1214  C:\Windows\System32\LogonUI.exe - ok
20:13:12.0545 0x1214  [ BCF0A980D21711E47D0803BDB0E99CAD, CBC125C6F043584416BC20CB1F12B2BFDC6D99DAC942EDDA90754779C947E31A ] C:\Windows\System32\authui.dll
20:13:12.0545 0x1214  C:\Windows\System32\authui.dll - ok
20:13:12.0545 0x1214  [ BD3674BE7FC9D8D3732C83E8499576ED, E6716A5895D629263A4D21959F48840429AB6F4B55A5FA2663EE5E86C9CA2BF1 ] C:\Windows\System32\wtsapi32.dll
20:13:12.0545 0x1214  C:\Windows\System32\wtsapi32.dll - ok
20:13:12.0545 0x1214  [ 599EBE6C7EA52B5FF9603F203E8EC080, F2E67FF46080E318AB0B90F7C1A5B280191AD127ED94529446473E584E63BCC0 ] C:\Windows\System32\msi.dll
20:13:12.0545 0x1214  C:\Windows\System32\msi.dll - ok
20:13:12.0561 0x1214  [ EF2AE43BCD46ABB13FC3E5B2B1935C73, 81FC06F306F620845D7DD8D06E706309E70BC89B589C81F3478302A3F5F73431 ] C:\Windows\System32\winmm.dll
20:13:12.0561 0x1214  C:\Windows\System32\winmm.dll - ok
20:13:12.0561 0x1214  [ 3C27B50BC43D5FED43081A784DD17190, EF665271D9C7DB89614811B8041220D4D9F5173422A8863EF3FC609FDE83B555 ] C:\Windows\System32\netapi32.dll
20:13:12.0561 0x1214  C:\Windows\System32\netapi32.dll - ok
20:13:12.0561 0x1214  [ 6CEF7856A3EFAC59470F6208F0F585CE, 0F7A80DB821FDE6580E9481B6DA44844F717DDB4983B0E3D562BE43726153951 ] C:\Windows\System32\mpr.dll
20:13:12.0561 0x1214  C:\Windows\System32\mpr.dll - ok
20:13:12.0576 0x1214  [ 4C8C2F987FC397DCE98874D6C9C0736A, 005D2CF9311799E8151B7154469D10D9346AFC2E0BF88358E54A091D5D14B970 ] C:\Windows\System32\netutils.dll
20:13:12.0576 0x1214  C:\Windows\System32\netutils.dll - ok
20:13:12.0576 0x1214  [ B33CBD1A8C2A33121321D0FEBD7DD870, 248E01B3E88D0243AF4771A18AFCDE3DB04475EFB7D0E426CA1D00358C84A465 ] C:\Windows\System32\wkscli.dll
20:13:12.0576 0x1214  C:\Windows\System32\wkscli.dll - ok
20:13:12.0576 0x1214  [ AF28348ED585539C4A33A4341FF23696, 012DEB04B0AAC947E5EB1F191C8EDE4185EDA050592F0BBD93FB7354834ABE20 ] C:\Windows\System32\oleacc.dll
20:13:12.0576 0x1214  C:\Windows\System32\oleacc.dll - ok
20:13:12.0592 0x1214  [ 02CDEB5D8B3DD5F6770DEFFBBC0CFAD0, A67878B5CC9109AA8513C0307EEDCB17840288509BF80838E2A753C632B47521 ] C:\Windows\System32\winspool.drv
20:13:12.0592 0x1214  C:\Windows\System32\winspool.drv - ok
20:13:12.0592 0x1214  [ BC052EFAD10ACA1AD69545B629F50D99, C29C5F5B000EFB54CCFC0724F82C7520AE60D911F3FD4BF17D8EA40D3877FD03 ] C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7600.16661_none_a44e1fc257f685f6\comctl32.dll
20:13:12.0592 0x1214  C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7600.16661_none_a44e1fc257f685f6\comctl32.dll - ok
20:13:12.0592 0x1214  [ 019CD868461B646E09BDF04474C19341, 01837EFACB02E52BC6E90C90C4CB01B11D56E449A37EA4FC2695507FF85EA9FE ] C:\Windows\System32\rasapi32.dll
20:13:12.0592 0x1214  C:\Windows\System32\rasapi32.dll - ok
20:13:12.0607 0x1214  [ B28DEEC597C8DEB70C744C7CF9210E3E, E777F192D822990CA6301B3FEA2AEA213FA7901438EB3328914ADF02B6C39DB9 ] C:\Windows\System32\rasman.dll
20:13:12.0607 0x1214  C:\Windows\System32\rasman.dll - ok
20:13:12.0607 0x1214  [ 9DB705936111BB34B11BB3EEB345AAF6, B17A94CD66B72613DF28858A558BAE36E7997432DBBB5B5ABF23C2E1CEAF6878 ] C:\Program Files\COMODO\COMODO Internet Security\framework.dll
20:13:12.0607 0x1214  C:\Program Files\COMODO\COMODO Internet Security\framework.dll - ok
20:13:12.0607 0x1214  [ DEAFA4336865C8667B8DAC16D62DBEDC, 4EBBADA4A8F2960D399879BFE69DC3FEBDE8AC3C01DD411C473051FC72D71E25 ] C:\Program Files\COMODO\COMODO Internet Security\scanners\rkdscan.dll
20:13:12.0607 0x1214  C:\Program Files\COMODO\COMODO Internet Security\scanners\rkdscan.dll - ok
20:13:12.0623 0x1214  [ 666A60F6F5E719856FF6254E0966EFF7, 58C072E7E215991E19C1CA062C476081982F7B9F039714539AE7FEB4981C200F ] C:\Windows\System32\wbem\wbemprox.dll
20:13:12.0623 0x1214  C:\Windows\System32\wbem\wbemprox.dll - ok
20:13:12.0623 0x1214  [ BAF19B633933A9FB4883D27D66C39E9A, 2D8ABB5161736CCCADA67B3E6A8D70B0B5E1E3FE6084561891F394DA191B3439 ] C:\Windows\System32\cryptsvc.dll
20:13:12.0623 0x1214  C:\Windows\System32\cryptsvc.dll - ok
20:13:12.0623 0x1214  [ FAF9BA81FB0543CB4B7EFFD24CFA815F, DC876993FDAEE449C228D23942E3CA8C116AEA5F64D55A7C45F5EA0AB61CD62F ] C:\Windows\System32\wbemcomn.dll
20:13:12.0623 0x1214  C:\Windows\System32\wbemcomn.dll - ok
20:13:12.0639 0x1214  [ 4FAC55936209B4F3EB78532181C9ED5E, EC530336DA8017E5B2D009507B9E7CC3D2EFE9C9B1473A463C2A052C2CDB0726 ] C:\Windows\System32\cryptnet.dll
20:13:12.0639 0x1214  C:\Windows\System32\cryptnet.dll - ok
20:13:12.0639 0x1214  [ D865F8ABFF031563E860D16A38BD5A35, 9C1A078B75303B4C6BE4FED54867C75B9BA6537FA7A60A0758B7DE8B1FE3BD83 ] C:\Windows\System32\atiesrxx.exe
20:13:12.0639 0x1214  C:\Windows\System32\atiesrxx.exe - ok
20:13:12.0639 0x1214  [ 99ABDA9C92EC76CBAF52F00239D909C9, 2959EFBF1C597BABD5D934667255E7B8E098C4C7FEE9DED65C9D04ECA852D7A3 ] C:\Windows\System32\wevtsvc.dll
20:13:12.0639 0x1214  C:\Windows\System32\wevtsvc.dll - ok
20:13:12.0654 0x1214  [ 07721A77180EDD4D39CCB865BF63C7FD, 9E8117E747C86154F98F2686D805A981029CC5D11AFB115A529429C9A4579BE5 ] C:\Windows\System32\audiosrv.dll
20:13:12.0654 0x1214  C:\Windows\System32\audiosrv.dll - ok
20:13:12.0654 0x1214  [ 78A1E65207484B7F8D3217507745F47C, 35F413ADB9D157F3666DD15DD58104D629CD9143198A1AB914B73A4A3C9903DD ] C:\Windows\System32\avrt.dll
20:13:12.0654 0x1214  C:\Windows\System32\avrt.dll - ok
20:13:12.0670 0x1214  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] C:\Windows\System32\mmcss.dll
20:13:12.0670 0x1214  C:\Windows\System32\mmcss.dll - ok
20:13:12.0670 0x1214  [ DBA90306A721FB922FDACED9E9728C28, 9D1F36D8A17DABED318B3AC4940FF537FFF9C77F6E8CF0EB799A68F5B7B34EB8 ] C:\Windows\System32\cryptui.dll
20:13:12.0670 0x1214  C:\Windows\System32\cryptui.dll - ok
20:13:12.0670 0x1214  [ 227E2C382A1E02F8D4965E664D3BBE43, 1CFF20A8BF87ACE4FA4935EBEED72BFB1A1FE902A754899E2F50798D67DF5642 ] C:\Windows\System32\MMDevAPI.dll
20:13:12.0670 0x1214  C:\Windows\System32\MMDevAPI.dll - ok
20:13:12.0685 0x1214  [ B27EA141A7E748B607600A8551A44D5A, 551636B1E4A4D6CB21E243E2C01DDEA7CF5BACDD290B3A618DDD0055729F0F5E ] C:\Windows\System32\propsys.dll
20:13:12.0685 0x1214  C:\Windows\System32\propsys.dll - ok
20:13:12.0685 0x1214  [ 113921FC4A80A3DDF646852998B836D0, 8952BB3822438BB89381BE85E49088348208D02F0596107FDB2B19AAF9CF5040 ] C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7\comctl32.dll
20:13:12.0685 0x1214  C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7\comctl32.dll - ok
20:13:12.0685 0x1214  [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] C:\Windows\System32\netprofm.dll
20:13:12.0685 0x1214  C:\Windows\System32\netprofm.dll - ok
20:13:12.0701 0x1214  [ D152EBC32A23069F8AA1D1F24B15E3F9, B032CC7CBD715196BEC3B0B7C2DFD1D6169B66CC1770DD4B708951CC87DD871B ] C:\Windows\System32\audiodg.exe
20:13:12.0701 0x1214  C:\Windows\System32\audiodg.exe - ok
20:13:12.0701 0x1214  [ 1F4492FE41767CDB8B89D17655847CDD, 184547FAC0C3D7148FAA3F601929A7089DE393BD19929A137DAD743331DD3F77 ] C:\Windows\System32\ntmarta.dll
20:13:12.0701 0x1214  C:\Windows\System32\ntmarta.dll - ok
20:13:12.0701 0x1214  [ FE5AB4525BC2EC68B9119A6E5D40128B, 088DE37982CEE78A0C1181389A3BFF1E352DF504074B3E8F3EA244DB271BF216 ] C:\Windows\System32\gpsvc.dll
20:13:12.0701 0x1214  C:\Windows\System32\gpsvc.dll - ok
20:13:12.0717 0x1214  [ 86E3822A34D454032D8E88C72AE8CF2D, 3A8DA946AFAC023254E9D260BFB796FF356A3978F28DA1FC6B939B0E234C9A64 ] C:\Windows\System32\nlaapi.dll
20:13:12.0717 0x1214  C:\Windows\System32\nlaapi.dll - ok
20:13:12.0717 0x1214  [ F381975E1F4346DE875CB07339CE8D3A, 867BFC2E9A08E026289794019B8DE651A8604D06DD6A9BF166C29AFC24B6D26E ] C:\Windows\System32\profsvc.dll
20:13:12.0717 0x1214  C:\Windows\System32\profsvc.dll - ok
20:13:12.0717 0x1214  [ 58775492FFD419248B08325E583C527F, DBB013971F5894F25C222C2D4D50A29DB6DF3C413792EE9CCC1A9E6D85469093 ] C:\Windows\System32\atl.dll
20:13:12.0717 0x1214  C:\Windows\System32\atl.dll - ok
20:13:12.0732 0x1214  [ A77BE7CB3222B4FB0AC6C71D1C2698D4, 73566223914BF670DF6B5931FA213E546713531B10391ED65B5256BBD7ABDE7F ] C:\Windows\System32\dsrole.dll
20:13:12.0732 0x1214  C:\Windows\System32\dsrole.dll - ok
20:13:12.0732 0x1214  [ 5B3EBFC3DA142324B388DDCC4465E1FF, 5D58642305311F9BC9B779C9598BFC4E7433B3EA58404BF1FF9466838A2328C7 ] C:\Windows\System32\samlib.dll
20:13:12.0732 0x1214  C:\Windows\System32\samlib.dll - ok
20:13:12.0732 0x1214  [ 84F8C8B9FB1F12532999D25F5DD7E77C, D3442C2091D35A1483D3C317ED45B77F64BFE882992105DA97A6BF67E265B0D9 ] C:\Windows\System32\shacct.dll
20:13:12.0732 0x1214  C:\Windows\System32\shacct.dll - ok
20:13:12.0748 0x1214  [ BE097F5BB10F9079FCEB2DC4E7E20F02, 90A88986C8C5F30FB153EC803FEDA6572B2C2630A6C9578FCC017800692694D5 ] C:\Windows\System32\slc.dll
20:13:12.0748 0x1214  C:\Windows\System32\slc.dll - ok
20:13:12.0748 0x1214  [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] C:\Windows\System32\themeservice.dll
20:13:12.0748 0x1214  C:\Windows\System32\themeservice.dll - ok
20:13:12.0748 0x1214  [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] C:\Windows\System32\es.dll
20:13:12.0748 0x1214  C:\Windows\System32\es.dll - ok
20:13:12.0763 0x1214  [ D29E998E8277666982B4F0303BF4E7AF, 4F19AB5DC173E278EBE45832F6CEAA40E2DF6A2EDDC81B2828122442FE5D376C ] C:\Windows\System32\uxtheme.dll
20:13:12.0763 0x1214  C:\Windows\System32\uxtheme.dll - ok
20:13:12.0763 0x1214  [ 1A47D52E303B7543E4E6026595B95422, C577CD3837546A7CED5D2E8E97FA2EDACA133B4A8595770EF96CAE519BFE280F ] C:\Windows\System32\comres.dll
20:13:12.0763 0x1214  C:\Windows\System32\comres.dll - ok
20:13:12.0763 0x1214  [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] C:\Windows\System32\Sens.dll
20:13:12.0763 0x1214  C:\Windows\System32\Sens.dll - ok
20:13:12.0779 0x1214  [ DD0701DE0AAA010E6EBD0F53B672DCEE, 7B430DFE74CDBA6503133CC03C723A3761C47270DF4AD99F333EA209617B4FA5 ] C:\Windows\winsxs\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7600.17007_none_2b47185a719d6182\GdiPlus.dll
20:13:12.0779 0x1214  C:\Windows\winsxs\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7600.17007_none_2b47185a719d6182\GdiPlus.dll - ok
20:13:12.0779 0x1214  [ 3CB6A7286422C72C34DAB54A5DFF1A34, 98D21EFFF511E407336A226420701E82554DA01FA05661303836B6860D63749D ] C:\Windows\System32\dui70.dll
20:13:12.0779 0x1214  C:\Windows\System32\dui70.dll - ok
20:13:12.0779 0x1214  [ 8CCDE014A4CDF84564E03ACE064CA753, DD663029B2EB7B12FDB00FCE403D8326141E540E3B9CE84CD5871473D3E2E2CF ] C:\Windows\System32\duser.dll
20:13:12.0779 0x1214  C:\Windows\System32\duser.dll - ok
20:13:12.0795 0x1214  [ B2E3D4BB3389817FB5E4CD9378BC8791, 827432B830552DE87D44B0B3D298CC9E17A81C352803D439753135B35F7AAD67 ] C:\Windows\System32\SndVolSSO.dll
20:13:12.0795 0x1214  C:\Windows\System32\SndVolSSO.dll - ok
20:13:12.0795 0x1214  [ 896F15A6434D93EDB42519D5E18E6B50, 9263F0CEC58D45EBE3FB9C3061FB9392C55A7933B84B4592E6EE13CFC86D5A50 ] C:\Windows\System32\hid.dll
20:13:12.0795 0x1214  C:\Windows\System32\hid.dll - ok
20:13:12.0795 0x1214  [ DA1B7075260F3872585BFCDD668C648B, 3E10EF6E1A5C341B478322CB78A0AB7BFC70AD8023779B8B4542A7CB4CA756AB ] C:\Windows\System32\dwmapi.dll
20:13:12.0795 0x1214  C:\Windows\System32\dwmapi.dll - ok
20:13:12.0810 0x1214  [ D6F630C1FD7F436316093AE500363B19, 73A94B4938430396EA4240B1A6676B4E6C19CFAF8C52EFB9A69B4B2175A86307 ] C:\Windows\System32\xmllite.dll
20:13:12.0810 0x1214  C:\Windows\System32\xmllite.dll - ok
20:13:12.0810 0x1214  [ EA99F234843BBDDA1ABD2767111ADE25, EF578F52BB359DA01465A754EAB6289232F80661774E6C0E1E1469573006CD72 ] C:\Windows\System32\WindowsCodecs.dll
20:13:12.0810 0x1214  C:\Windows\System32\WindowsCodecs.dll - ok
20:13:12.0810 0x1214  [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] C:\Windows\System32\uxsms.dll
20:13:12.0810 0x1214  C:\Windows\System32\uxsms.dll - ok
20:13:12.0826 0x1214  [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] C:\Windows\System32\drivers\lltdio.sys
20:13:12.0826 0x1214  C:\Windows\System32\drivers\lltdio.sys - ok
20:13:12.0826 0x1214  [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] C:\Windows\System32\drivers\nwifi.sys
20:13:12.0826 0x1214  C:\Windows\System32\drivers\nwifi.sys - ok
20:13:12.0826 0x1214  [ F105BA1E22BF1F2EE8F005D4305E4BEC, 723DA09E13D0F50634D9F114590B837D16F7B36AA0DA2AB8F8C2D9991624EA8F ] C:\Windows\System32\drivers\ndisuio.sys
20:13:12.0826 0x1214  C:\Windows\System32\drivers\ndisuio.sys - ok
20:13:12.0841 0x1214  [ C2762A57DF0EE85E63CE4893C5215313, DDE22212D78353633CEDE27D7210469DE674563991105563CF64CCCE2D0743BD ] C:\Windows\System32\VaultCredProvider.dll
20:13:12.0841 0x1214  C:\Windows\System32\VaultCredProvider.dll - ok
20:13:12.0841 0x1214  [ 9F2BACD5E1776A4BB7CC0EC3C3A4F96D, 19959D18601712901F03B83150D15E34EBCAB355BB4692C9A28511A72F57FC66 ] C:\Windows\System32\winbrand.dll
20:13:12.0841 0x1214  C:\Windows\System32\winbrand.dll - ok
20:13:12.0841 0x1214  [ 2A381A9740165D7A1405148B6DFB3E38, 885241B9ED8A6074D428FDE0B326B2E1A59254CE779B884EE61716F45CDF2712 ] C:\Windows\System32\SmartcardCredentialProvider.dll
20:13:12.0841 0x1214  C:\Windows\System32\SmartcardCredentialProvider.dll - ok
20:13:12.0857 0x1214  [ BF352E73615F5461AA6884472435A544, 4B059E79325C5F08CD6FBBE6352E17ADB64B9608CC9EDB36A2DF4D148060C309 ] C:\Windows\System32\BioCredProv.dll
20:13:12.0857 0x1214  C:\Windows\System32\BioCredProv.dll - ok
20:13:12.0857 0x1214  [ 796B8123A7859AFD3A4AE10514DBAEB5, E76F69FAFEC3D66263ED95F3FA9EE309BDDACB287E30583A147DC97F6EEB8844 ] C:\Windows\System32\winbio.dll
20:13:12.0857 0x1214  C:\Windows\System32\winbio.dll - ok
20:13:12.0873 0x1214  [ 97D38371502AA797DB14EB1FA5FCE4CD, 6F71EF6DE07C2A34339726775FF8D8A64254A287B5D1972B55D9874EC9E6912F ] C:\Windows\System32\credui.dll
20:13:12.0873 0x1214  C:\Windows\System32\credui.dll - ok
20:13:12.0873 0x1214  [ A87205FE194B239D8D96E4972B779CC1, F392004842E291097385A0C1DC9143356CA195B18638E58E552BA20F386489AC ] C:\Windows\System32\samcli.dll
20:13:12.0873 0x1214  C:\Windows\System32\samcli.dll - ok
20:13:12.0873 0x1214  [ 44B9C66177651F3F53C87B665D58D17A, 3FC426115FF87570889DB28D71970B82B525D2A4B9A00EDD273BF083B77A05CE ] C:\Windows\System32\vaultcli.dll
20:13:12.0873 0x1214  C:\Windows\System32\vaultcli.dll - ok
20:13:12.0888 0x1214  [ 972C3301DB3DA91AE06A95F6B4160B1B, 678B533A06C306295FE97DC26CE9BAFFC8EAF1FB7405ACB040719099717744D5 ] C:\Windows\System32\certCredProvider.dll
20:13:12.0888 0x1214  C:\Windows\System32\certCredProvider.dll - ok
20:13:12.0888 0x1214  [ 032229246107C5C7211E6D1498B52D3D, 8B492A0621BA88EBF3ABFC072C9023B2162C59AA6E9C61DA6D4762DB6C6C7B4A ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL
20:13:12.0888 0x1214  C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL - ok
20:13:12.0888 0x1214  [ 87FA0C48C3B2E9FEE518818FE26B15B5, DA4042DE9897397AEDCEFF9F69746726237305DDE64464309B6DCC45E05E42F4 ] C:\Windows\System32\rasplap.dll
20:13:12.0888 0x1214  C:\Windows\System32\rasplap.dll - ok
20:13:12.0904 0x1214  [ F5A61F0A0030C80DF319B0C14A4C8885, 3D579E003440FEF0CD88E7A4FC6765D22560D5B142441217A897E8A37D2958A8 ] C:\Windows\System32\rtutils.dll
20:13:12.0904 0x1214  C:\Windows\System32\rtutils.dll - ok
20:13:12.0904 0x1214  [ 9BC8610C32C96A2983A65DC21CAFA921, 2A4195F663C9D55939E3D8FEAA208090FDB0B8801A60164A7325B53104797CBC ] C:\Windows\System32\UXInit.dll
20:13:12.0904 0x1214  C:\Windows\System32\UXInit.dll - ok
20:13:12.0904 0x1214  [ 9898644AE3F60F6F6DCA8CCE400F900D, 9603DAADEA7B6E1D8B2105FEE858B20F75F3AF2FADB1E16A022FABE10A2E5241 ] C:\Windows\System32\atieclxx.exe
20:13:12.0904 0x1214  C:\Windows\System32\atieclxx.exe - ok
20:13:12.0919 0x1214  [ DB16A7C0A453F7E220A5F29E42572FD8, 8C6A34F420E8DE5A6CB26E35226823EF0927E0718C070F16DE82C73539C7B2B8 ] C:\Windows\AppPatch\AppPatch64\AcGenral.dll
20:13:12.0919 0x1214  C:\Windows\AppPatch\AppPatch64\AcGenral.dll - ok
20:13:12.0919 0x1214  [ 019BDD35DE269CB98B22DE8923C2AA3B, 68B216D5331B128CF1BCB3A3F82FD85B119FFDBCB796C907461CDD6248995817 ] C:\Windows\System32\UIAutomationCore.dll
20:13:12.0919 0x1214  C:\Windows\System32\UIAutomationCore.dll - ok
20:13:12.0919 0x1214  [ C6DCD1D11ED6827F05C00773C3E7053C, EA23BE261C9C04F44215D254D7A80FD0AEE84C6F192D0FEE49A7CF74ED3CB1A6 ] C:\Windows\System32\sfc.dll
20:13:12.0919 0x1214  C:\Windows\System32\sfc.dll - ok
20:13:12.0935 0x1214  [ 895C9AB0A855547445C4181195230757, 89BDA385D8CCB75C3D7B1BDFA567AC441A931F4E499C0835FEE9D010343FABB6 ] C:\Windows\System32\sfc_os.dll
20:13:12.0935 0x1214  C:\Windows\System32\sfc_os.dll - ok
20:13:12.0935 0x1214  [ AAD73A0043BB148C02E743ED5A395905, 3C80D765725303D41840362414073BEE0ECD3E1DE6287695D963E59709DE31AF ] C:\Windows\System32\atiadlxx.dll
20:13:12.0935 0x1214  C:\Windows\System32\atiadlxx.dll - ok
20:13:12.0935 0x1214  [ E424B3EF666B184CEE0B6871AAA8C9F6, D182D9B3A813C75F88CA16A9C236AB6167DF5861D155B5DC016B90918C4BD579 ] C:\Windows\System32\msimg32.dll
20:13:12.0935 0x1214  C:\Windows\System32\msimg32.dll - ok
20:13:12.0951 0x1214  [ A261AD1FDC6D6A658A82B81AF81B215F, 1E967BD93AEC90A68E1B376A6433F0BAF659E7DFEED39EDA34BAF8E4B88FA2D2 ] C:\Windows\System32\vssapi.dll
20:13:12.0951 0x1214  C:\Windows\System32\vssapi.dll - ok
20:13:12.0951 0x1214  [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] C:\Windows\System32\drivers\rspndr.sys
20:13:12.0951 0x1214  C:\Windows\System32\drivers\rspndr.sys - ok
20:13:12.0951 0x1214  [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] C:\Windows\System32\lmhsvc.dll
20:13:12.0951 0x1214  C:\Windows\System32\lmhsvc.dll - ok
20:13:12.0966 0x1214  [ FD5BA198F7190DFE9BE1947EB8710396, DF901E8704FE4EFA7E386D0B432BDAF5129C8BBAF635921CEF16A2E016151B80 ] C:\Windows\System32\nrpsrv.dll
20:13:12.0966 0x1214  C:\Windows\System32\nrpsrv.dll - ok
20:13:12.0966 0x1214  [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] C:\Windows\System32\nsisvc.dll
20:13:12.0966 0x1214  C:\Windows\System32\nsisvc.dll - ok
20:13:12.0966 0x1214  [ 287923557447D7E4BDD7E65B1F0F5428, 14D85A0F036F28D77AA9723C3D7E8C4DA9BDFF8A1AD9BEA6FE5756DBF5D00F08 ] C:\Windows\System32\vsstrace.dll
20:13:12.0966 0x1214  C:\Windows\System32\vsstrace.dll - ok
20:13:12.0982 0x1214  [ F9EC845C5EECF20E9A67F9F805F2EF1F, C3DBA8CF93DBF50954B1BF6D7EF3F6F5DD1A56DC62B7EB2749C54D9B65D9BB43 ] C:\Windows\System32\keyiso.dll
20:13:12.0982 0x1214  C:\Windows\System32\keyiso.dll - ok
20:13:12.0982 0x1214  [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] C:\Windows\System32\eapsvc.dll
20:13:12.0982 0x1214  C:\Windows\System32\eapsvc.dll - ok
20:13:12.0982 0x1214  [ 5AA945234E9D4CCE4F715276B9AA712C, 65165BD131056816F009D987FC78AC86FFE0C3C38A27E73F873586B7FF4D59CF ] C:\Windows\System32\imageres.dll
20:13:12.0982 0x1214  C:\Windows\System32\imageres.dll - ok
20:13:12.0997 0x1214  [ 588CD0C78A7FAAE4186B5EEA0AF3ED67, E957E4463D318A44BA5109EE3428624DE901C5FF2BA358986DF6C6F059DDBCC2 ] C:\Windows\System32\adtschema.dll
20:13:12.0997 0x1214  C:\Windows\System32\adtschema.dll - ok
20:13:12.0997 0x1214  [ 676108C4E3AA6F6B34633748BD0BEBD9, 953286126E482EF3A9A1833680EFF86D657BD6C5411B9AEC2D7828ADE63D25AD ] C:\Windows\System32\dnsrslvr.dll
20:13:12.0997 0x1214  C:\Windows\System32\dnsrslvr.dll - ok
20:13:12.0997 0x1214  [ 982F5395AD181179320083A4FA7E7CA8, A54205CF9D5C0CE01D1BA079508BABF80F5B35D7DADBB1D64699E9E1D7CF37E8 ] C:\Windows\System32\eapphost.dll
20:13:12.0997 0x1214  C:\Windows\System32\eapphost.dll - ok
20:13:13.0013 0x1214  [ 0040C486584A8E582C861CFB57AB5387, 5EE17B55CB702D14AE75B19226DE21CD2498BDA6C6EF5872FDB8A718F401FED1 ] C:\Windows\System32\FWPUCLNT.DLL
20:13:13.0013 0x1214  C:\Windows\System32\FWPUCLNT.DLL - ok
20:13:13.0013 0x1214  [ 4CBCC37856EA2039C27A2FB661DDA0E5, 74CBFAB3092A9564BDDFCB84DB3E3F8BCFD1492938ADF187423D3355D73D21C6 ] C:\Windows\System32\dhcpcsvc6.dll
20:13:13.0013 0x1214  C:\Windows\System32\dhcpcsvc6.dll - ok
20:13:13.0013 0x1214  [ 885D0942E0F28DB90919BE3129ECF279, 5A10D90EE656ECE3DCA174D6F924641509819FC20CB6EF46B5E1723E52DE85BE ] C:\Windows\System32\dnsext.dll
20:13:13.0013 0x1214  C:\Windows\System32\dnsext.dll - ok
20:13:13.0029 0x1214  [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] C:\Windows\System32\wlansvc.dll
20:13:13.0029 0x1214  C:\Windows\System32\wlansvc.dll - ok
20:13:13.0029 0x1214  [ 2017BFE87CAB3D7EF632CFD2AA08D3F0, 8A03D1EB5091E1C1DBD909CDC401DA2E876B0EA9893126840B8B87426C211992 ] C:\Windows\System32\umb.dll
20:13:13.0029 0x1214  C:\Windows\System32\umb.dll - ok
20:13:13.0029 0x1214  [ 4A6DB3B75728F319B6F0D6FD63717B2B, 01508FF4939A50FC4B66F6D70A0D6B470A78846FBCAD7C2B59AA422601EBDF10 ] C:\Windows\System32\atimuixx.dll
20:13:13.0029 0x1214  C:\Windows\System32\atimuixx.dll - ok
20:13:13.0044 0x1214  [ F568F7C08458D69E4FCD8675BBB107E4, A5FA25ECF248999A68CCECFBB508BFA1ADD18A23E20A9A9081A87C41CAAA36C0 ] C:\Windows\System32\dhcpcsvc.dll
20:13:13.0044 0x1214  C:\Windows\System32\dhcpcsvc.dll - ok
20:13:13.0044 0x1214  [ 48A31B7CF046702059A86836DC21D786, 6876FA74DEBC66D2FA4FCB3009C29ECCD2107F1E103FCE90BC8C29C7360A9168 ] C:\Windows\System32\wlanmsm.dll
20:13:13.0044 0x1214  C:\Windows\System32\wlanmsm.dll - ok
20:13:13.0044 0x1214  [ 06A1386B6E3A0CBC368665C1840906F4, C10BCA5092A0B3F9435CE4D65C7449528C89F5C5243B410878D2EBF516DA2FB2 ] C:\Windows\System32\wlansec.dll
20:13:13.0044 0x1214  C:\Windows\System32\wlansec.dll - ok
20:13:13.0060 0x1214  [ D2B0D1C2BE5ECA80387F7CB8626DCAFE, 14A269EB190CCF290BECEAC4A7B63B1312ED208F839A6C7B8E4BF74A786CE271 ] C:\Windows\System32\onex.dll
20:13:13.0060 0x1214  C:\Windows\System32\onex.dll - ok
20:13:13.0060 0x1214  [ 0D753307D274F3688BD21C377B616700, 5DD08E77A11F2561FB96BA212FDDFE21D4394C69C34C3EB88F7F5CD068EE55BF ] C:\Windows\System32\eappcfg.dll
20:13:13.0060 0x1214  C:\Windows\System32\eappcfg.dll - ok
20:13:13.0060 0x1214  [ 65522E77A1360DBC8D199DA3BF5EFFE4, E9D748070FA478A3D37F15049F998D340885C0DC5FCE03BFCE5D521C9EBA7350 ] C:\Windows\System32\eappprxy.dll
20:13:13.0060 0x1214  C:\Windows\System32\eappprxy.dll - ok
20:13:13.0075 0x1214  [ 730BF204A595D5B6D7DC57A247CC741C, 264C6901F4A49B738BBD04BCA1783DEE892885BADE9085B0AEA40BAE7CC0A218 ] C:\Windows\System32\wlgpclnt.dll
20:13:13.0075 0x1214  C:\Windows\System32\wlgpclnt.dll - ok
20:13:13.0075 0x1214  [ 97E43F324BE1503CB2FFB058534688DA, 50C781DF38D0D38C9A5420AB1FFF8672DC13FD1ED8E9F5432B4BA3077A7435D5 ] C:\Windows\System32\l2gpstore.dll
20:13:13.0075 0x1214  C:\Windows\System32\l2gpstore.dll - ok
20:13:13.0075 0x1214  [ 22E7431E7DAE8463AF94A79A054276E5, 980EA547B86D3F2DF698FCB6A90200CC993DF4B7EE23BDB749D9179E0DD46944 ] C:\Windows\System32\WinSCard.dll
20:13:13.0075 0x1214  C:\Windows\System32\WinSCard.dll - ok
20:13:13.0091 0x1214  [ 7F1B4C6FF3B85F9ADF74055187B8A22C, CC95DA5662638AACBE9643DCB236464C2C2095A8D5CDC8A747045870BE9D0E7D ] C:\Windows\System32\wlanutil.dll
20:13:13.0091 0x1214  C:\Windows\System32\wlanutil.dll - ok
20:13:13.0091 0x1214  [ 74FFD39A69774524F1FB6A6E7E781494, 31494F12D836704CE039DCAA1A61D78751ADAEFF9B7A1539D0BE1FA576BE7BD4 ] C:\Windows\System32\msxml6.dll
20:13:13.0091 0x1214  C:\Windows\System32\msxml6.dll - ok
20:13:13.0107 0x1214  [ 43FAB56AE5F639AD59D7209693F4C4C2, C64155944DA774A80D443A0E6DCC40A3405D9C69CA3EBC95CA46BFD65C7A4908 ] C:\Windows\System32\wlanext.exe
20:13:13.0107 0x1214  C:\Windows\System32\wlanext.exe - ok
20:13:13.0107 0x1214  [ C6FEF8C40D6F9A3766FDBE31CB3F6640, 73CEC36A1EEB6D061C97298847D2DA8A18D762B939B29D531AAB5352F83B7968 ] C:\Windows\System32\conhost.exe
20:13:13.0107 0x1214  C:\Windows\System32\conhost.exe - ok
20:13:13.0107 0x1214  [ CE3B9562D997F69B330D181A8875960F, 6FEE6622859198C5C13545867EF7CFE8EDC991360E976F792313DAA9C82CC5C8 ] C:\Windows\System32\dhcpcore.dll
20:13:13.0107 0x1214  C:\Windows\System32\dhcpcore.dll - ok
20:13:13.0122 0x1214  [ 71C7B65B6557B75B99907E76956AE4B8, 38AD0E96D6AD36C0643761D5F5DB7A2802E059008C0984ABF61F4D8703DE4B3B ] C:\Windows\System32\dhcpcore6.dll
20:13:13.0122 0x1214  C:\Windows\System32\dhcpcore6.dll - ok
20:13:13.0122 0x1214  [ 4D99FCA201B72E0F2CA996E357BAA170, AD007A52E0C13CB0D1214D1D89C5A49955C8568C85E692D28BE6941176241DFE ] C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe
20:13:13.0122 0x1214  C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe - ok
20:13:13.0122 0x1214  [ 0C65FA8214D6F8378D1D3BA1CA46AF0A, C8D0226F39A9DE3B871E84BB6B14975CBBE16A34ADAACBC33ACF726EE6E17104 ] C:\Windows\SysWOW64\advapi32.dll
20:13:13.0122 0x1214  C:\Windows\SysWOW64\advapi32.dll - ok
20:13:13.0138 0x1214  [ D5487F73F2B1FB0A4CCB96AE653A489B, FA85F1E89FBD3B57463C09A1C3C361362771DD6264EBF7AEF18DFCA24CADAA8F ] C:\Windows\SysWOW64\KernelBase.dll
20:13:13.0138 0x1214  C:\Windows\SysWOW64\KernelBase.dll - ok
20:13:13.0138 0x1214  [ F8A61B2E713309B4616D107919BDAB6E, 53641E6362A8E229D34480E873618F42AF45116C960458422398B35B5D029289 ] C:\Windows\SysWOW64\msvcrt.dll
20:13:13.0138 0x1214  C:\Windows\SysWOW64\msvcrt.dll - ok
20:13:13.0138 0x1214  [ 90385551B6B3793E949DF310A11D64E7, 11AF8D1723F6C57781B200CD78A93686BF26B645ACEEF336FAC7E7E53C4E0946 ] C:\Windows\SysWOW64\rpcrt4.dll
20:13:13.0138 0x1214  C:\Windows\SysWOW64\rpcrt4.dll - ok
20:13:13.0153 0x1214  [ CFC97F07904067A1E5FAE195D534DA3A, EB4D2D127312EB09E2ACCA3276779E80F90FAF77322684BABF72B8EC6E1F906C ] C:\Windows\SysWOW64\sechost.dll
20:13:13.0153 0x1214  C:\Windows\SysWOW64\sechost.dll - ok
20:13:13.0153 0x1214  [ F08F6FCD09F9BE94C37ACC1B344685FF, DE48D766258B46EFEAB16579421C4BD97ACC6883F782D00E9857F4A0CE7E8A34 ] C:\Windows\SysWOW64\cryptbase.dll
20:13:13.0153 0x1214  C:\Windows\SysWOW64\cryptbase.dll - ok
20:13:13.0153 0x1214  [ C733D233B623B7FFCE5031E4B756EE26, 33CC8B140B0E4A9B702E3468BE2646AEE4273F20C6EA5BAC6C3D8FC8EDEF0881 ] C:\Windows\SysWOW64\profapi.dll
20:13:13.0153 0x1214  C:\Windows\SysWOW64\profapi.dll - ok
20:13:13.0169 0x1214  [ A543AC1F7138376D778D630A35FCBC4C, 2D824C66A97FC8C39DAFA397CC47495B712D175EEF393486946DA8936BDD466A ] C:\Windows\SysWOW64\psapi.dll
20:13:13.0169 0x1214  C:\Windows\SysWOW64\psapi.dll - ok
20:13:13.0169 0x1214  [ BFB4DB4681256116F69209C8D05032E0, 7563562409CA4B805F0FAD267B3533C0A335B0B155C1D57E43864A58255DA45F ] C:\Windows\SysWOW64\sspicli.dll
20:13:13.0169 0x1214  C:\Windows\SysWOW64\sspicli.dll - ok
20:13:13.0169 0x1214  [ 9C0DC1DAAD14D443DD5A0D1EE78D775E, 73BA5BDF50EB78FA8BF479ADE0F1826FBB161CA70AF1405E06B64F4D2254B42C ] C:\Windows\SysWOW64\userenv.dll
20:13:13.0169 0x1214  C:\Windows\SysWOW64\userenv.dll - ok
20:13:13.0185 0x1214  [ 702254574E7E52052DE39408457B7149, 645CA9E88DA21C63710A04A0F54421018DF415A3D612112C71A255C49325C082 ] C:\Windows\SysWOW64\version.dll
20:13:13.0185 0x1214  C:\Windows\SysWOW64\version.dll - ok
20:13:13.0185 0x1214  [ C5B6468422DB1C8AA36C32CBB0197E5E, 431DE931D01A4D3A70E79A813DA0EAE8FE50406C1A0B66A835790386EB41391F ] C:\Windows\SysWOW64\wininet.dll
20:13:13.0185 0x1214  C:\Windows\SysWOW64\wininet.dll - ok
20:13:13.0185 0x1214  [ F037DB14CF6165C62F4A64D12A25B07C, 26CE06C858F59691F6D6D41E0031D9CD1ACB9AF24569FC3A0E869C08AA5225B5 ] C:\Windows\SysWOW64\shlwapi.dll
20:13:13.0185 0x1214  C:\Windows\SysWOW64\shlwapi.dll - ok
20:13:13.0200 0x1214  [ FBE1E0B9EF53B5BB7C36763AA6A685CF, E999D53365387DCE50BE8A0FBD5E05222636D8CDDB309A529380076BE778729D ] C:\Windows\SysWOW64\gdi32.dll
20:13:13.0200 0x1214  C:\Windows\SysWOW64\gdi32.dll - ok
20:13:13.0200 0x1214  [ E8B0FFC209E504CB7E79FC24E6C085F0, 7F756B1DA060D5764C81F8D099E34265186B7E5E6B0FCA08E7FB3989EF4ED0E4 ] C:\Windows\SysWOW64\user32.dll
20:13:13.0200 0x1214  C:\Windows\SysWOW64\user32.dll - ok
20:13:13.0200 0x1214  [ 384721EF4024890092625E20CADFAF85, 32FB012437C271CA4408EC60E6858485C2F9489107BBDB7011F728A0D2A26D2C ] C:\Windows\SysWOW64\lpk.dll
20:13:13.0200 0x1214  C:\Windows\SysWOW64\lpk.dll - ok
20:13:13.0216 0x1214  [ 0BA19F3198C40AC4E8CC66EE02EDA6C6, 4555FB6ED0F286DF94FEACFEC36BF23E0F586CFA80DEE45C5EA7A0760C967E84 ] C:\Windows\SysWOW64\usp10.dll
20:13:13.0216 0x1214  C:\Windows\SysWOW64\usp10.dll - ok
20:13:13.0216 0x1214  [ 9BDDA34DC4890169DE5BA21134B33EFB, DA3EABBB355FF9BA3B6ED3DF3B7E100B0FBABFE71E826C3BDDC00F64EAAA40C3 ] C:\Windows\SysWOW64\iertutil.dll
20:13:13.0216 0x1214  C:\Windows\SysWOW64\iertutil.dll - ok
20:13:13.0216 0x1214  [ 4E7F83E1F6AEFA38E270EA7353D6911E, F4FEB695989F5E61EE5FC9BE8F5C61893805CE986D61C0B68FC8C047005614F6 ] C:\Windows\SysWOW64\urlmon.dll
20:13:13.0216 0x1214  C:\Windows\SysWOW64\urlmon.dll - ok
20:13:13.0231 0x1214  [ E2C2D8C982316C8ABF800C6CE3F28FAB, C785FD0FEF845F71E4B08F6B01F6ED5024555B75D70B0D890582912C07300993 ] C:\Windows\SysWOW64\ole32.dll
20:13:13.0231 0x1214  C:\Windows\SysWOW64\ole32.dll - ok
20:13:13.0231 0x1214  [ AECAB449567D1846DAD63ECE49E893E3, 7A67A16A3E04574B7CAD097632ABA9B361BBEFDD6B36B7B8E3A1996EC529C2DC ] C:\Windows\System32\MPSSVC.dll
20:13:13.0231 0x1214  C:\Windows\System32\MPSSVC.dll - ok
20:13:13.0247 0x1214  [ 50544D04AD845C43130B70212EC05CCD, B2E6B558DE7D273512226685FF53ED17C9B4BF81B739FBCA5D3FC82DF8D2BCF7 ] C:\Windows\System32\microsoft-windows-kernel-power-events.dll
20:13:13.0247 0x1214  C:\Windows\System32\microsoft-windows-kernel-power-events.dll - ok
20:13:13.0247 0x1214  [ FE05D03B73000CFF476E1D29109F3A84, 7880B025413338A7B114BECB5DC67605FC7A97142C26FD12F765A64A21805842 ] C:\Program Files\Windows Defender\MpEvMsg.dll
20:13:13.0247 0x1214  C:\Program Files\Windows Defender\MpEvMsg.dll - ok
20:13:13.0247 0x1214  [ 8F6D9A20F1FB06F0602A7D5A82840DBF, 2BC5D14472205C1593D8153DEC48E42A5B5FD27A710DE091052152E0AE6A850E ] C:\Windows\System32\netcfgx.dll
20:13:13.0247 0x1214  C:\Windows\System32\netcfgx.dll - ok
20:13:13.0263 0x1214  [ 6A638FC4BFDDC4D9B186C28C91BD1A01, 5521F1DC515586777EC4837E0AEAA3E613CC178AF1074031C4D0D0C695A93168 ] C:\Windows\System32\drivers\vwifimp.sys
20:13:13.0263 0x1214  C:\Windows\System32\drivers\vwifimp.sys - ok
20:13:13.0263 0x1214  [ F7866AF72ABBAF84B1FA5AA195378C59, 9D522044FE9C18FB3EC327E675737C01F2A8231DDE900421D3A431596946A7F8 ] C:\Windows\System32\drivers\fltMgr.sys
20:13:13.0263 0x1214  C:\Windows\System32\drivers\fltMgr.sys - ok
20:13:13.0263 0x1214  [ A3DB3C17EE6CAE65D53602B4E80BCCBC, D802A7C6161F937DC42A6E45FE1BB2C8272819F92C294C180EBCDF8FF72CBFDC ] C:\Windows\System32\PSHED.DLL
20:13:13.0263 0x1214  C:\Windows\System32\PSHED.DLL - ok
20:13:13.0278 0x1214  [ B0945E538CF906BBDDC5A11C8EE868CC, 5F3459F6512918835F7C9400905EC7C1FAEAA7114E0D28C522040C359E3B93F7 ] C:\Windows\System32\microsoft-windows-kernel-processor-power-events.dll
20:13:13.0278 0x1214  C:\Windows\System32\microsoft-windows-kernel-processor-power-events.dll - ok
20:13:13.0278 0x1214  [ 705C210EFC5564BE49EB026BD7AFF27A, 8C46F126D2945A2A33DC28A9C9ECBE9C78FC30091D7D410490569F9819AEE73F ] C:\Windows\SysWOW64\oleaut32.dll
20:13:13.0278 0x1214  C:\Windows\SysWOW64\oleaut32.dll - ok
20:13:13.0278 0x1214  [ 8F12EA9218EE07FEB36B11850305EEAB, FDE34C2A685FAB10682020F27E2FC5BDC01F827809EFB7B7210388042FFB2290 ] C:\Program Files (x86)\Lavasoft\Ad-Aware\RPAPI.dll
20:13:13.0278 0x1214  C:\Program Files (x86)\Lavasoft\Ad-Aware\RPAPI.dll - ok
20:13:13.0294 0x1214  [ 8679917A54A08CE5B923A2D0A511BABD, 755F4817BFEB8A1F8E5DEF319686375BCA03112127CA7BE7DE8A78E65DA5F4D4 ] C:\Windows\SysWOW64\shell32.dll
20:13:13.0294 0x1214  C:\Windows\SysWOW64\shell32.dll - ok
20:13:13.0294 0x1214  [ 105319E3D66D6E1BAD22AADEC1E9E0DA, 51F04F3A71470C586A7511B216E713511062B1DF7037ECD13C30BE13B3B24A20 ] C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4926_none_508ed732bcbc0e5a\msvcp90.dll
20:13:13.0294 0x1214  C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4926_none_508ed732bcbc0e5a\msvcp90.dll - ok
20:13:13.0309 0x1214  [ 93F0FFD46BA1EE3AEECD07678DD8E510, BA32850C79C280479B70E5F18104591F3A3BBCE727FFF981EF39B8A60C0C8572 ] C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4926_none_508ed732bcbc0e5a\msvcr90.dll
20:13:13.0309 0x1214  C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4926_none_508ed732bcbc0e5a\msvcr90.dll - ok
20:13:13.0309 0x1214  [ 7DA089C75B1E92032D0CBE4ADE7C32BC, 10334190DEE0821724C2A697762C412BF838AC8DCAD16779395491B965780719 ] C:\Windows\SysWOW64\crypt32.dll
20:13:13.0309 0x1214  C:\Windows\SysWOW64\crypt32.dll - ok
20:13:13.0309 0x1214  [ 4C04900AA8C323F5D4C316A89E976849, E84FB3D045CF0250C3DE3C39248639D38625FCC31AC16B65BFAC0D3245FF8FEB ] C:\Windows\SysWOW64\msasn1.dll
20:13:13.0309 0x1214  C:\Windows\SysWOW64\msasn1.dll - ok
20:13:13.0309 0x1214  [ 6380BE4AB7AFA48BAEF321E8CA980ADD, 13E888FD9C67395B69FEE5288241287C8C55E50CC8E9A732C62540589042DA7B ] C:\Windows\SysWOW64\wintrust.dll
20:13:13.0309 0x1214  C:\Windows\SysWOW64\wintrust.dll - ok
20:13:13.0325 0x1214  [ 1EBE9524683C7C4EED8B8BC93FB6FBCC, 78AF098E270EDE62466557091F14B2D37BDAB488F02E7CC769251FD17C02BA4A ] C:\Windows\SysWOW64\fltLib.dll
20:13:13.0325 0x1214  C:\Windows\SysWOW64\fltLib.dll - ok
20:13:13.0325 0x1214  [ 0DE3069D6E09BA262856EF31C941BEFE, 5F73305B7910B486882AFA838F1A0F0104B8FB1C2EAC14623D2028D23A704CA7 ] C:\Windows\SysWOW64\imm32.dll
20:13:13.0325 0x1214  C:\Windows\SysWOW64\imm32.dll - ok
20:13:13.0341 0x1214  [ C9618BC9B2B0FD7C1138D8774795A79B, 0AC170669C2626519FA7A745C56BFBA6B83B8537488F5B9EB7BA72448E5E7A43 ] C:\Windows\SysWOW64\msctf.dll
20:13:13.0341 0x1214  C:\Windows\SysWOW64\msctf.dll - ok
20:13:13.0341 0x1214  [ 2A66BB1F9D9ED7A8BCD58E505BB3ED3C, 47FE634711C79D4D490021D1082715B646063E78B46B6FD4C289D0EC8CD4B22F ] C:\Program Files (x86)\Lavasoft\Ad-Aware\Resources.dll
20:13:13.0341 0x1214  C:\Program Files (x86)\Lavasoft\Ad-Aware\Resources.dll - ok
20:13:13.0341 0x1214  [ 3FD15B4611D9BDA3F8013548C0ECAECA, B47A8D9985D9B71EB870816A0AB2B6403D394CCBDF7DE5378D5721D58D68D28D ] C:\Windows\SysWOW64\ntmarta.dll
20:13:13.0341 0x1214  C:\Windows\SysWOW64\ntmarta.dll - ok
20:13:13.0356 0x1214  [ BFA70A99AD1434263F2DFBBA103BDEF8, 5A0E73D48824C23E2C221EAC369A906FEDECE0E047E8C7E5F012242E74AFAF9E ] C:\Windows\SysWOW64\Wldap32.dll
20:13:13.0356 0x1214  C:\Windows\SysWOW64\Wldap32.dll - ok
20:13:13.0356 0x1214  [ 0298AC45D0EFFFB2DB4BAA7DD186E7BF, 1C1D17301A4D37DBF906955CCABD2A3FDA47AFB24CBA978CF851123762249848 ] C:\Windows\System32\shsvcs.dll
20:13:13.0356 0x1214  C:\Windows\System32\shsvcs.dll - ok
20:13:13.0356 0x1214  [ AE5FF948400A51B040F999BF04290373, 7D1A0C2C1C2E136DC840979CC3287E6D305E511A8E2E04956A4EC9EBA11E15E5 ] C:\Windows\SysWOW64\winsta.dll
20:13:13.0356 0x1214  C:\Windows\SysWOW64\winsta.dll - ok
20:13:13.0372 0x1214  [ E30E5BB0DBA49EFE5BBBAFEA440CFBD9, 70D11382A242DB280FC121DBB95D2810E9139DAB6B66BA5FD58F115E3572649B ] C:\Windows\SysWOW64\wtsapi32.dll
20:13:13.0372 0x1214  C:\Windows\SysWOW64\wtsapi32.dll - ok
20:13:13.0372 0x1214  [ EC56B171F85C7E855E7B0588AC503EEA, EDBC0E52DF00D73356F4B886D6CA2397B571A9D2245FEDC347A6D52A5467EA5D ] C:\Windows\System32\schedsvc.dll
20:13:13.0372 0x1214  C:\Windows\System32\schedsvc.dll - ok
20:13:13.0372 0x1214  [ BC414631876B2F28B8DAB08E849C12C5, 5973654AA3E90E6B699B0A43F645B893D95BAA803129B6967D746C8239AB26E3 ] C:\Windows\System32\ktmw32.dll
20:13:13.0372 0x1214  C:\Windows\System32\ktmw32.dll - ok
20:13:13.0387 0x1214  [ AEFBD8D2C9CE363F84AE0F89036412A6, 9C6749E8827E74E58BEC64092F8F686B83F768CBAC6171F574D5687BC0857F3C ] C:\Windows\System32\taskcomp.dll
20:13:13.0387 0x1214  C:\Windows\System32\taskcomp.dll - ok
20:13:13.0387 0x1214  [ 1B38A0F123FCF1546FACEAF1EFAFAA00, CC3972B3011078568E548D97202973F374F7BA5BD23B4A52786D23D881281E10 ] C:\Windows\System32\fveapi.dll
20:13:13.0387 0x1214  C:\Windows\System32\fveapi.dll - ok
20:13:13.0387 0x1214  [ 891ECFD08E2C538B7948CBC45106D697, 628D0D618FF3A70E9FBE3B2C7206C9365ED2297784A5F10FFA05BD2C56657013 ] C:\Windows\System32\fvecerts.dll
20:13:13.0387 0x1214  C:\Windows\System32\fvecerts.dll - ok
20:13:13.0403 0x1214  [ 694865362F0965779F92BCFE97712323, 825EB75E37AFE9B738869FB5D95020D4F44AD419C2F6C5A658F82A5242FDEF6C ] C:\Windows\System32\tbs.dll
20:13:13.0403 0x1214  C:\Windows\System32\tbs.dll - ok
20:13:13.0403 0x1214  [ 8269210DAF3B12BC8300631B28A2A442, EABEB792C2EA8D4A1A7B13281CF557C194D5667AE0BA2A2D5664908D8269113D ] C:\Windows\System32\wiarpc.dll
20:13:13.0403 0x1214  C:\Windows\System32\wiarpc.dll - ok
20:13:13.0419 0x1214  [ CEE049CAC4EFA7F4E1E4AD014414A5D4, 433AE2D845850F1D7A48275BBD87B3F0E7DD48F2282C727C4B777ECD92CC331D ] C:\Windows\System32\drivers\http.sys
20:13:13.0419 0x1214  C:\Windows\System32\drivers\http.sys - ok
20:13:13.0419 0x1214  [ 567977DC43CC13C4C35ED7084C0B84D5, 93EEC3ABA66DA83157F49F056EF1CB3355122204F2BB0F8B618064AF47D59A61 ] C:\Windows\System32\spoolsv.exe
20:13:13.0419 0x1214  C:\Windows\System32\spoolsv.exe - ok
20:13:13.0419 0x1214  [ FF5688D309347F2720911D8796912834, 3B0D73C50D40A6F42629B7750F99F656BF5C1C50237D5F98B6C0F2CE5E2DA359 ] C:\Windows\SysWOW64\clbcatq.dll
20:13:13.0419 0x1214  C:\Windows\SysWOW64\clbcatq.dll - ok
20:13:13.0434 0x1214  [ 9F758BF982DE530C8C77C9F03334DEEB, 8A49E6716C00BE94C62DB25AAAD3C70BDD49792EB205D94B47AB9B30D6566BB8 ] C:\Windows\SysWOW64\taskschd.dll
20:13:13.0434 0x1214  C:\Windows\SysWOW64\taskschd.dll - ok
20:13:13.0434 0x1214  [ 746497D339C854053193119D119799BA, CDC9EDDC0BD0F11FEB54464CE2F6CA8862A1953F297864383E0B4FE17F90B690 ] C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
20:13:13.0434 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe - ok
20:13:13.0434 0x1214  [ E3C817F7FE44CC870ECDBCBC3EA36132, D769FAFA2B3232DE9FA7153212BA287F68E745257F1C00FAFB511E7A02DE7ADF ] C:\Windows\SysWOW64\msvcp100.dll
20:13:13.0434 0x1214  C:\Windows\SysWOW64\msvcp100.dll - ok
20:13:13.0450 0x1214  [ BF38660A9125935658CFA3E53FDC7D65, 60C06E0FA4449314DA3A0A87C1A9D9577DF99226F943637E06F61188E5862EFA ] C:\Windows\SysWOW64\msvcr100.dll
20:13:13.0450 0x1214  C:\Windows\SysWOW64\msvcr100.dll - ok
20:13:13.0450 0x1214  [ F88C94D2469C34B98DDD639F37588F90, 84A911CDAE601CF517C4FE29562F133153FA3F6F0F82445E2D1D7BE0E0F3F3AF ] C:\Program Files (x86)\Lavasoft\Ad-Aware\lavalicense.dll
20:13:13.0450 0x1214  C:\Program Files (x86)\Lavasoft\Ad-Aware\lavalicense.dll - ok
20:13:13.0450 0x1214  [ 9A51C6E5E4D2D25878C1D18D011C468F, 6EFE42B104557344905C52174888E61F7D4A6F442E512DDBF0A6EDC1757A45BD ] C:\Program Files (x86)\Avira\AntiVir Desktop\grdcore.dll
20:13:13.0450 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\grdcore.dll - ok
20:13:13.0465 0x1214  [ D583FFA4D9BA6B50040A16B48B842315, 8D3B2C3EE0B9B2FB89C3A6FCAE27DC75FDD0D7A2CE679C4DCF226EC94A4AC4C7 ] C:\Program Files (x86)\Avira\AntiVir Desktop\scewxmlw.dll
20:13:13.0465 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\scewxmlw.dll - ok
20:13:13.0465 0x1214  [ 49AC4C09B62B0E597DBAC515C325FAE9, E7D03B8A3D3CDDB607EA0564AF3852795D16930F48B62A41164E44675E956653 ] C:\Program Files (x86)\Avira\AntiVir Desktop\cfglib.dll
20:13:13.0465 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\cfglib.dll - ok
20:13:13.0465 0x1214  [ EFD343BD577A9E86E11507DCD4B65D36, 2649CAD711A3C686854725000BA215EA1674D5E1B821BBC749C5B3D9328368CD ] C:\Program Files (x86)\Avira\AntiVir Desktop\gpipc.dll
20:13:13.0465 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\gpipc.dll - ok
20:13:13.0481 0x1214  [ 4992C609A6315671463E30F6512BC022, 3020034556EAC25CD90F41D3BFFDD0BB2C3D1C5BAC4359F4B71B84A9FC404495 ] C:\Windows\System32\BFE.DLL
20:13:13.0481 0x1214  C:\Windows\System32\BFE.DLL - ok
20:13:13.0481 0x1214  [ B9A8CBCFCD3EC9D2EA4740AF347BF108, 97FA304E3880BC863D999F441AE47CB8ADF00D2DEC2A52ACD8FBD02CC096786A ] C:\Windows\SysWOW64\mpr.dll
20:13:13.0481 0x1214  C:\Windows\SysWOW64\mpr.dll - ok
20:13:13.0481 0x1214  [ 14927AD4028C10DACD7BF6314117CA37, EC3E5FB9229409ACAB2C0CFF5B33D31E6ECF16BB66A060C6DE5892DF97148048 ] C:\Program Files (x86)\Avira\AntiVir Desktop\gpgen.dll
20:13:13.0497 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\gpgen.dll - ok
20:13:13.0497 0x1214  [ DE40AC2E835E01A9717690A07900DF46, 222C9EA2D180DCE120B7698A34B837CDF1C779A23A051110AF8C7A340CBC0207 ] C:\Program Files (x86)\Avira\AntiVir Desktop\gpschd.dll
20:13:13.0497 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\gpschd.dll - ok
20:13:13.0497 0x1214  [ 6095266CAAF5E75F394CFD4844CC4C25, 99C10DDD9F86D6FC10F5417F7FDE7A48909CDEF53F47D8A2DBFB0B656F89FCA6 ] C:\Windows\SysWOW64\IPHLPAPI.DLL
20:13:13.0497 0x1214  C:\Windows\SysWOW64\IPHLPAPI.DLL - ok
20:13:13.0512 0x1214  [ 6377051C63D5552A311935C67E9FDFDC, 3FB82988AAB66813567E8DB951D4EE87F156201070F005FDBF52EF998A323E65 ] C:\Windows\SysWOW64\nsi.dll
20:13:13.0512 0x1214  C:\Windows\SysWOW64\nsi.dll - ok
20:13:13.0512 0x1214  [ 839F96DBAAFD3353E0B248A5E0BD2A51, 11DA5AD3EA5FF4766C12B99FB520B3CBE08581ECAF1A2FD1DC5AC835CA78FAC2 ] C:\Windows\SysWOW64\rasapi32.dll
20:13:13.0512 0x1214  C:\Windows\SysWOW64\rasapi32.dll - ok
20:13:13.0512 0x1214  [ CFF35B879D1618D42C86644C717BA947, 1837275202628D3320867A3BF8CFDA15491730C4B74215F7C0D7E140BF01AC3C ] C:\Windows\SysWOW64\winnsi.dll
20:13:13.0512 0x1214  C:\Windows\SysWOW64\winnsi.dll - ok
20:13:13.0528 0x1214  [ FFA7172354B9256DBB2CDD75F16F33FE, 85B2F014C67C2E52540F17D561793C6633C9E98F12639CCD3854EB1EC34DD035 ] C:\Windows\SysWOW64\rasman.dll
20:13:13.0528 0x1214  C:\Windows\SysWOW64\rasman.dll - ok
20:13:13.0528 0x1214  [ DAAE8A9B8C0ACC7F858454132553C30D, 668A2FF7C4774A73D19E06D0E32B070C3B58FA66D273E647A01EE502A0CEE026 ] C:\Windows\SysWOW64\ws2_32.dll
20:13:13.0528 0x1214  C:\Windows\SysWOW64\ws2_32.dll - ok
20:13:13.0528 0x1214  [ 2DC0478295CEBF9AD95CB16D936D3151, 0F24C50CE012FDD26953C87A1B3A1A4DD45AD3656659143759C9210D40746A80 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avevtlog.dll
20:13:13.0528 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\avevtlog.dll - ok
20:13:13.0543 0x1214  [ ECF6C0B0C25732F5C46697B76EE99B58, 600EC0C65AAD7778F566DC8B9D0CC19458FC2689F1B766F34E41EB699D857335 ] C:\Program Files (x86)\Avira\AntiVir Desktop\schedr.dll
20:13:13.0543 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\schedr.dll - ok
20:13:13.0543 0x1214  [ 4A57607584AB3028E3D50D1729DCE085, F0B3E356063710E7C40851CB7A11D749F7D412CF3811BFD34F079B32D898C7DA ] C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll
20:13:13.0543 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll - ok
20:13:13.0543 0x1214  [ E702ED19C332C1F12C1403D100E2F4F3, F0BC68B69E7732DD46381D0B0D9A31EFC499DE1D1134F25098732510E3F16E19 ] C:\Windows\SysWOW64\cfgmgr32.dll
20:13:13.0543 0x1214  C:\Windows\SysWOW64\cfgmgr32.dll - ok
20:13:13.0559 0x1214  [ 19D20159708E152267E53B66677A4995, 6401FA5C3EFF26BED075FEC68F868CD8D0598FDB45EA9381810615F7252F7A9A ] C:\Windows\System32\drivers\bowser.sys
20:13:13.0559 0x1214  C:\Windows\System32\drivers\bowser.sys - ok
20:13:13.0559 0x1214  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] C:\Windows\System32\drivers\mpsdrv.sys
20:13:13.0559 0x1214  C:\Windows\System32\drivers\mpsdrv.sys - ok
20:13:13.0575 0x1214  [ B7F3D2C40BDF8FFB73EBFB19C77734E2, 8B433FB72BD298324C84A81459B8154F6C98584F5199D4BDF8CDEC7C380B4764 ] C:\Windows\System32\drivers\mrxsmb.sys
20:13:13.0575 0x1214  C:\Windows\System32\drivers\mrxsmb.sys - ok
20:13:13.0575 0x1214  [ 406F7B9C71B99872670EE9A8D52E2FE5, 7FB2D333947E72962EB2C69CECBC0822B838429EDDD3B179C093B1CE46A26AFB ] C:\Windows\SysWOW64\rtutils.dll
20:13:13.0575 0x1214  C:\Windows\SysWOW64\rtutils.dll - ok
20:13:13.0575 0x1214  [ 86C6F88B5168CE21CF8D69D0B3FF5D19, 2DE66D1CD53DCB7995F45E0AE2BBAB12BAA2A10BEBDB0039E617A28BABB9C02E ] C:\Windows\System32\drivers\mrxsmb10.sys
20:13:13.0575 0x1214  C:\Windows\System32\drivers\mrxsmb10.sys - ok
20:13:13.0575 0x1214  [ B081069251C8E9F42CB8769D07148F9C, 68F531D7F86AC741FF263395C722E8DDABA60CD401A2F5F89D8B01030015A6F0 ] C:\Windows\System32\drivers\mrxsmb20.sys
20:13:13.0575 0x1214  C:\Windows\System32\drivers\mrxsmb20.sys - ok
20:13:13.0590 0x1214  [ 27026EAC8818E8A6C00A1CAD2F11D29A, A12858CCB3B2419D66C667A46B106DA7A7BA97FFFA9634BFAE95DDF193C430D5 ] C:\Windows\System32\wkssvc.dll
20:13:13.0590 0x1214  C:\Windows\System32\wkssvc.dll - ok
20:13:13.0590 0x1214  [ 54A47F6B5E09A77E61649109C6A08866, 121118A0F5E0E8C933EFD28C9901E54E42792619A8A3A6D11E1F0025A7324BC2 ] C:\Windows\SysWOW64\svchost.exe
20:13:13.0590 0x1214  C:\Windows\SysWOW64\svchost.exe - ok
20:13:13.0606 0x1214  [ BBE9054FDADC8D49D29C5DA4FB84A803, 4315C1D7DBD35A80E25F15B45587AA76F6E9FCDC617B5ABF62301570771066AF ] C:\Program Files (x86)\Common Files\Akamai\netsession_win_8fa3539.dll
20:13:13.0606 0x1214  C:\Program Files (x86)\Common Files\Akamai\netsession_win_8fa3539.dll - ok
20:13:13.0606 0x1214  [ 2FBE0C32138EB3376A711D7FE0CA2B23, A71ACD8FE701EEA93610F9AD41D90AD7A8028F01D2F33FB93D6BF877FEBEA3CA ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
20:13:13.0606 0x1214  C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe - ok
20:13:13.0606 0x1214  [ 4F096D96285E06CD51AEF7D2D3DE04DA, 5BB420FBE28315F2117376052BB8488CE84A3398DDA65005B8AE1F792017E9A8 ] C:\Windows\System32\msvcp100.dll
20:13:13.0606 0x1214  C:\Windows\System32\msvcp100.dll - ok
20:13:13.0621 0x1214  [ C67F8A962B2534224D5908D16D2AD3CE, CAC1821F5E867285638AEE7AE33CE574BCCF16277AC5AD805650B48F7759B4B4 ] C:\Windows\System32\wfapigp.dll
20:13:13.0621 0x1214  C:\Windows\System32\wfapigp.dll - ok
20:13:13.0621 0x1214  [ 961036B3C6282C646B9ADBC8BB32C983, 47757F19EB8F6E23602A1E2FF34C4BAC2DC1D28B0D63588C5056FE655116F9EB ] C:\Windows\System32\mscms.dll
20:13:13.0621 0x1214  C:\Windows\System32\mscms.dll - ok
20:13:13.0621 0x1214  [ DF3CA8D16BDED6A54977B30E66864D33, 1D1A1AE540BA132F998D60D3622F0297B6E86AE399332C3B47462D7C0F560A36 ] C:\Windows\System32\msvcr100.dll
20:13:13.0621 0x1214  C:\Windows\System32\msvcr100.dll - ok
20:13:13.0637 0x1214  [ 3AEAA8B561E63452C655DC0584922257, 04C072969B58657602EB0C21CEDF24FCEE14E61B90A0F758F93925EF2C9FC32D ] C:\Windows\System32\pcasvc.dll
20:13:13.0637 0x1214  C:\Windows\System32\pcasvc.dll - ok
20:13:13.0637 0x1214  [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] C:\Windows\System32\snmptrap.exe
20:13:13.0637 0x1214  C:\Windows\System32\snmptrap.exe - ok
20:13:13.0637 0x1214  [ A2D4915D1CCD0338AB85F14D1C22FD0C, 87A690D2A35521EE7A8154F99A930243349BEE6AEB6DEA23D36624458EC38181 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
20:13:13.0637 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe - ok
20:13:13.0653 0x1214  [ 32450C0CE7504C8B3AEA99DEF6C84670, FF3CBEFB48459EED40F208A6AB699E328DBB52B9FCBEC83BCAC05DD4008B05EC ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
20:13:13.0653 0x1214  C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll - ok
20:13:13.0653 0x1214  [ 10EAB90C1AE8271B5FE5A8930987EE5C, 53E72964AA75526B161F859A509CB046809AE47C65DC998F0E49AC8AED9066EA ] C:\Program Files\Windows Live\Mesh\WLRemoteServiceResource.dll
20:13:13.0653 0x1214  C:\Program Files\Windows Live\Mesh\WLRemoteServiceResource.dll - ok
20:13:13.0668 0x1214  [ 357BE883C5236BFC7341CB9E82308908, 4DDB697FD9B7C516CF99D73C8799EA35BB97E2431216CD7C1045F17B06109FBF ] C:\Windows\System32\wlanapi.dll
20:13:13.0668 0x1214  C:\Windows\System32\wlanapi.dll - ok
20:13:13.0668 0x1214  [ 21894CB605E416D26892DC445507408E, 0C7BE9481556D8DC7F99AE76E45F04E89272D03EA8FB90779CE706E56F0C53CE ] C:\Windows\SysWOW64\pdh.dll
20:13:13.0668 0x1214  C:\Windows\SysWOW64\pdh.dll - ok
20:13:13.0668 0x1214  [ 96F3F676B4D0DF4DA9C4081358C4662F, 99EC65A61B88DFEFB2F02C3E3D01638FCBC41773AB40268F9CB2C72FD288CF62 ] C:\Windows\SysWOW64\wbemcomn.dll
20:13:13.0668 0x1214  C:\Windows\SysWOW64\wbemcomn.dll - ok
20:13:13.0684 0x1214  [ C5B0324DB461559ADD070E632A6919FA, AB09CACB5B7DD372B27921A5E01220552A611CECA27EF87961001FA467FDED45 ] C:\Windows\SysWOW64\wbem\wbemprox.dll
20:13:13.0684 0x1214  C:\Windows\SysWOW64\wbem\wbemprox.dll - ok
20:13:13.0684 0x1214  [ 72AB6633E9B39EC7FEBEDF083A9061E5, 758E5BA89665C574456A2A826EF5A7DC2487C8379893010EB57BC40127AC918F ] C:\Windows\System32\mscoree.dll
20:13:13.0684 0x1214  C:\Windows\System32\mscoree.dll - ok
20:13:13.0684 0x1214  [ 7321F18D1F820612ED0E9F2D4B578A7E, 612BD7DE1DFBD100BD6ACB37A38565D88C39842D990D296B9B8E1FB75C3A94E7 ] C:\Windows\SysWOW64\cryptsp.dll
20:13:13.0684 0x1214  C:\Windows\SysWOW64\cryptsp.dll - ok
20:13:13.0699 0x1214  [ ED8EC63F7522DF4852147C84EC62C36A, 75633011CD28DCBD4834211A9D415F17DE15BFCD80FB9FF6CE25CBBD4E9899AF ] C:\Windows\SysWOW64\rsaenh.dll
20:13:13.0699 0x1214  C:\Windows\SysWOW64\rsaenh.dll - ok
20:13:13.0699 0x1214  [ D757F59EED634C595727534B60E640B8, 58ECD28FB62DB9F2302E21E00F253542FA6D450D36685A11012C827324D0C00D ] C:\Windows\SysWOW64\winhttp.dll
20:13:13.0699 0x1214  C:\Windows\SysWOW64\winhttp.dll - ok
20:13:13.0699 0x1214  [ 6C0BD9D59C7E97DEE2FB3407D17BF697, C77DF45B0969DC9D99C1B0F14BECF95403679B912B26B66039A408921613499B ] C:\Windows\SysWOW64\RpcRtRemote.dll
20:13:13.0699 0x1214  C:\Windows\SysWOW64\RpcRtRemote.dll - ok
20:13:13.0715 0x1214  [ 7C00C608FE4C8EDE9E30940837B9AC8B, 3F85DE6487722960E8ED71B23EE0535FA2C07B2FA7ABFE4DEB1B35DCE5E44642 ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ServiceModelEvents.dll
20:13:13.0715 0x1214  C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ServiceModelEvents.dll - ok
20:13:13.0715 0x1214  [ 7F739F89F7F60221740DA9DE1B1DABB6, 7FB3E2DF211826B097FEDB8335DB2CC0206823B440897478C1E77169E4033D66 ] C:\Windows\SysWOW64\webio.dll
20:13:13.0715 0x1214  C:\Windows\SysWOW64\webio.dll - ok
20:13:13.0715 0x1214  [ A5299D04ED225D64CF07A568A3E1BF8C, 6F7E73893127BADC8C9815E9BCC0EB5F6584E254D0D09A0B6A680704C71E0A90 ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
20:13:13.0715 0x1214  C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe - ok
20:13:13.0731 0x1214  [ F13A664CF9BB51D08A7BA1FC9F724267, E6DEF7814561092F7A96AAA34E661AD25C0BA0225EBB9F40E5D1B01BFD2739EC ] C:\Program Files (x86)\Avira\AntiVir Desktop\gpgrd.dll
20:13:13.0731 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\gpgrd.dll - ok
20:13:13.0731 0x1214  [ 06A7422224D9865A5613710A089987DF, EF604B4B6918D3FDC8E90ED9004E6E7340E0F399C214C65CCE3A7C8C576FA1C0 ] C:\Windows\System32\provsvc.dll
20:13:13.0731 0x1214  C:\Windows\System32\provsvc.dll - ok
20:13:13.0731 0x1214  [ 0B3595A4FF0B36D68E5FC67FD7D70FDC, 372AF797353F9335915CD06D4076BAB8410775DCAF2DAC0593197D7C41BBFFB2 ] C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcp80.dll
20:13:13.0731 0x1214  C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcp80.dll - ok
20:13:13.0746 0x1214  [ 6E82153CBEFE791B488B91BE06178B01, DAF7B9AB75703F94D9D08E76F2410E18A0771D0507B940157C11BFF49F3C65B5 ] C:\Program Files (x86)\Avira\AntiVir Desktop\gpgui.dll
20:13:13.0746 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\gpgui.dll - ok
20:13:13.0746 0x1214  [ D778DF1AC7F38016D5AD96FDB48431FC, 9AF37459318501975FA00E9A90B9C62E01D7BBB580AF4A6031A4D286AF5984E5 ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
20:13:13.0746 0x1214  C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll - ok
20:13:13.0762 0x1214  [ C7CCB957E14DE6150BDC46DB29D5CC35, 1463D575FD981B75C672BA36ABF8CB239ADD4EB187802AFED89409495FF0E70E ] C:\Program Files (x86)\Avira\AntiVir Desktop\gpgavid.dll
20:13:13.0762 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\gpgavid.dll - ok
20:13:13.0762 0x1214  [ 8F9F50F3810672AC36503B72A0B1808A, BAB1382460B73C93A69585B8C703452FBB799BF14EB2E7D829FB9EBFEA1A7F0B ] C:\Program Files (x86)\Avira\AntiVir Desktop\libdb44.dll
20:13:13.0762 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\libdb44.dll - ok
20:13:13.0762 0x1214  [ C9564CF4976E7E96B4052737AA2492B4, C3AC989C8489A23BB96400B1856F5325FFC67E844F04651EA5D61BC20A991C6D ] C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcr80.dll
20:13:13.0762 0x1214  C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcr80.dll - ok
20:13:13.0777 0x1214  [ 5DE691884C240227B733CC18BBFCA3D8, D86194FBC455C32243D7C3C2B1D2FC729503B1F72EAD5F69DFCFD6FBFB83F407 ] C:\Windows\SysWOW64\netapi32.dll
20:13:13.0777 0x1214  C:\Windows\SysWOW64\netapi32.dll - ok
20:13:13.0777 0x1214  [ C6BB27D9A8AC13D4A44486F528B5C884, 9624D886A3EBA94E61F90F62BD9A823B799C3A3B9C0E4C59E49824FEBBB18D77 ] C:\Windows\SysWOW64\netutils.dll
20:13:13.0777 0x1214  C:\Windows\SysWOW64\netutils.dll - ok
20:13:13.0777 0x1214  [ 89D840773C9C4358A5031DCC860449EC, F6C241D73E05A95B7C81C12979FF625BFD89C12CDD13193AA137E02A8C0046F2 ] C:\Windows\SysWOW64\srvcli.dll
20:13:13.0777 0x1214  C:\Windows\SysWOW64\srvcli.dll - ok
20:13:13.0793 0x1214  [ D8ECA7A87AAA3AE308B5277411666622, 2F67D5567DC1174B36E67C1009B827E3C48F05551D4B4A39D7B02B8D12041406 ] C:\Windows\SysWOW64\logoncli.dll
20:13:13.0793 0x1214  C:\Windows\SysWOW64\logoncli.dll - ok
20:13:13.0793 0x1214  [ 7AD12703039056D2A0815F85960E1FA1, 22C9E953D499555F8BD7719786F3450EF5619672F4FF91082758BAB3FD8A288D ] C:\Windows\SysWOW64\wkscli.dll
20:13:13.0793 0x1214  C:\Windows\SysWOW64\wkscli.dll - ok
20:13:13.0793 0x1214  [ 92DA9EDE07390B4352B29DD82079E398, 8140FF0CD2BB08CA92C0303B2439F4FCEFD59C7F4A772F1277B29FE0B77F5A67 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\AppleVersions.dll
20:13:13.0793 0x1214  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\AppleVersions.dll - ok
20:13:13.0809 0x1214  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] C:\Windows\System32\sstpsvc.dll
20:13:13.0809 0x1214  C:\Windows\System32\sstpsvc.dll - ok
20:13:13.0809 0x1214  [ 64894527838C86454E2F378FF39FA336, 3A380A9677AF622761FB0793B30E112A94FF5ED958463CD736E8F925341CCFA9 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\YSCrashDump.dll
20:13:13.0809 0x1214  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\YSCrashDump.dll - ok
20:13:13.0824 0x1214  [ EF8CD3C64EE9C08980D6D06CCCE46C68, 7DC061E0552BE776DC79662364DA1D90A4FF6D795002865DD1B1C3DEB77E4B98 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\CoreFoundation.dll
20:13:13.0824 0x1214  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\CoreFoundation.dll - ok
20:13:13.0824 0x1214  [ 306589D9A6030855FE8B29595990CA95, 396708C48DC5B496019DDCA2235A9D5E4C058479EAADA2A563B625FAB7BCB273 ] C:\Program Files (x86)\Avira\AntiVir Desktop\gplegacy.dll
20:13:13.0824 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\gplegacy.dll - ok
20:13:13.0824 0x1214  [ E8D0F5ED67153D5C2EB2D53E86380DDB, 9C2ADA3D930352E77C700FF9F1E8FCC18C7AFB1551D53C0543A1E92FF955984F ] C:\Program Files (x86)\Avira\AntiVir Desktop\gpgenrep.dll
20:13:13.0824 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\gpgenrep.dll - ok
20:13:13.0840 0x1214  [ 89316198BEF50B238B4D81338F49DC62, F35D5C8F3956CD355D3CBC88F16001DC630E6DF3A79824E4EADDCCEAD43C06A6 ] C:\Program Files (x86)\Avira\AntiVir Desktop\onlcfg.dll
20:13:13.0840 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\onlcfg.dll - ok
20:13:13.0840 0x1214  [ 39E7481D704A687CD2187A36CEBA1F75, C27B237B61E693633773EE08507C78BC74F7005A5243AA9378AE1992B5AA3ACD ] C:\Program Files (x86)\Avira\AntiVir Desktop\gavidb.dll
20:13:13.0840 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\gavidb.dll - ok
20:13:13.0840 0x1214  [ F68EF442DE5D8E39A0FEA8D2C432CAF5, 061C9CC53B4D6DA685E26E161B55DE7F4AD56001FAC4B5F05E4B5B54286419EB ] C:\Program Files (x86)\Avira\AntiVir Desktop\libdb53.dll
20:13:13.0840 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\libdb53.dll - ok
20:13:13.0855 0x1214  [ 638C7596B493F5F77DB9EF6BAD8FE46C, 98077E0E65D89D5DEBC02F12BA00D00B355D4EEA5FEC36E69D39312019E3DD1E ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\pthreadVC2.dll
20:13:13.0855 0x1214  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\pthreadVC2.dll - ok
20:13:13.0855 0x1214  [ 78865ABC5F5D13190F8B35BD9044714A, A16E0158129AE76AE459D9424D246C01ECECCC87A27C40D8DB0232330D2F5458 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\objc.dll
20:13:13.0855 0x1214  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\objc.dll - ok
20:13:13.0855 0x1214  [ DF13A51A5C591887D2EC6AE64CEED0FA, DFD503AEBCAA056B2B0E669ACA52F6D26F4E6892F2DCFCCD902752C23A621653 ] C:\Windows\SysWOW64\wsock32.dll
20:13:13.0855 0x1214  C:\Windows\SysWOW64\wsock32.dll - ok
20:13:13.0871 0x1214  [ FF9831030678C7B6D70BAC00F68F8976, BFA9DA98F93910B8FE09EA06F917AB1F5435FCE9F786EABDF1970E19B2C63FDC ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libdispatch.dll
20:13:13.0871 0x1214  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libdispatch.dll - ok
20:13:13.0871 0x1214  [ 26A634B2E0FD87F23541AD13A503CA72, B4D6CA0EADA9862493C449A8532C4033F11CE835E048857BF604DB9D893C0943 ] C:\Windows\SysWOW64\winmm.dll
20:13:13.0871 0x1214  C:\Windows\SysWOW64\winmm.dll - ok
20:13:13.0871 0x1214  [ 5A963C340DE1A01BA6E24945CE05D16A, 0CC79B72D03621D6FA4E7A8F3B10125A531C1D19098189671FBE3687E3E70E33 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libicuin.dll
20:13:13.0871 0x1214  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libicuin.dll - ok
20:13:13.0887 0x1214  [ 464769BE9B4B60A0E492690F95C4FBDB, B6AA28DDF3787BB117705AFD977413B1BBA0E32957A9F6D489DBC8DEDEA2C191 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avipc.dll
20:13:13.0887 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\avipc.dll - ok
20:13:13.0887 0x1214  [ 063EDB0A6763E69AFE5F23C849EBD354, 48188428EB48CCFDB2FA36E722B7C03D997772CBF1DD2FC16898DF423518E040 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avlode.dll
20:13:13.0887 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\avlode.dll - ok
20:13:13.0902 0x1214  [ F4BC62990E7E5C29799A895B80FC3177, 57772AB986BA00B3C2730184D94A76E932CA94000119D0E63407F3DF9867238A ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libicuuc.dll
20:13:13.0902 0x1214  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libicuuc.dll - ok
20:13:13.0902 0x1214  [ 375F7A2A47BF77493920A55C2E341C10, 64CB09C96FF639ED528AAECCA79F4E68A4A02E3102AFB729DBF652E98C40D154 ] C:\Program Files (x86)\Avira\AntiVir Desktop\apcfile.dll
20:13:13.0902 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\apcfile.dll - ok
20:13:13.0902 0x1214  [ 742AA02BD9FA3492C9E525BBD427D87D, 21BB644D6591F10AC8F0A74950D89F4341781C65B79D28BEF6A67823CB933695 ] C:\Windows\SysWOW64\samcli.dll
20:13:13.0902 0x1214  C:\Windows\SysWOW64\samcli.dll - ok
20:13:13.0918 0x1214  [ 99B29DCD759F66EE05DE822FB3801E68, BBB5026BD42624C027F5081C7DAD6EA98FDD4A73D44555DA51A042A97D3E04D2 ] C:\Program Files (x86)\Avira\AntiVir Desktop\libcurl.dll
20:13:13.0918 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\libcurl.dll - ok
20:13:13.0918 0x1214  [ CF20E8B3551D01020C080D1D00CF2A0B, 41735CABC44E76F41DCE3454B8E7D5F06B46DAC55607B6411370FF9E7BA99192 ] C:\Program Files (x86)\Avira\AntiVir Desktop\libeay32.dll
20:13:13.0918 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\libeay32.dll - ok
20:13:13.0918 0x1214  [ 149D74E1128A86DC9CFB2851FBEA11EB, 95E2FF3379DEE729089CF85140C4D4C202B7FEFE239024D48DFFD5CB1E7415BC ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\icudt46.dll
20:13:13.0918 0x1214  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\icudt46.dll - ok
20:13:13.0933 0x1214  [ 18189AED94E0FF9B85FE193022953061, CDE350D99DB0A957DD6DDACFC42299DFDF808D4A74F59F329EDE196C7354BD12 ] C:\Program Files (x86)\Avira\AntiVir Desktop\ssleay32.dll
20:13:13.0933 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\ssleay32.dll - ok
20:13:13.0933 0x1214  [ 4CBFC20E0C489BD423B8D69531CDF7DE, 34FBC9364494810AA980A5747A3D347B1E6D65E339D2BC441132AF8E3F7DB4FB ] C:\Program Files (x86)\Avira\AntiVir Desktop\libaprutil-1.dll
20:13:13.0933 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\libaprutil-1.dll - ok
20:13:13.0933 0x1214  [ BF3D455632B646B3E97AAFAA75B453D6, FCB6B4831DEC543958301D4950F54279600F3536BB3B82EB5FBAF6BFFE4CAC4A ] C:\Program Files (x86)\Avira\AntiVir Desktop\libapriconv-1.dll
20:13:13.0933 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\libapriconv-1.dll - ok
20:13:13.0949 0x1214  [ 1A29E1228EDE278564F628E2668CE549, 8BE77871BBBCA99759C3B8F247DCE9B9D8516AFD8A6C433BE0D1D8F40C1DD9EE ] C:\Program Files (x86)\Avira\AntiVir Desktop\libapr-1.dll
20:13:13.0949 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\libapr-1.dll - ok
20:13:13.0949 0x1214  [ BF591B5C2CC38314518467E883AE37C5, AE87A8812B9836440094558D198B15C1EBD333E1F739295BE80F8D7BA23B05DF ] C:\Windows\SysWOW64\credssp.dll
20:13:13.0949 0x1214  C:\Windows\SysWOW64\credssp.dll - ok
20:13:13.0965 0x1214  [ 90691014D96030B69D7B8D6A0967FC67, 918BC3EE49174147F1F9C45FBF31F8E67AB9F8C6BC3A677F695CC9A539C42036 ] C:\Windows\SysWOW64\msv1_0.dll
20:13:13.0965 0x1214  C:\Windows\SysWOW64\msv1_0.dll - ok
20:13:13.0965 0x1214  [ 11A41F17527ED75D6B758FDD7F4FD00D, A646BA0BAA992A7B98C813AD8D834D57F27DB6F7F0F3200F68CB8B99F4C5D731 ] C:\Windows\SysWOW64\mswsock.dll
20:13:13.0965 0x1214  C:\Windows\SysWOW64\mswsock.dll - ok
20:13:13.0965 0x1214  [ E73F21A566A81CD30CB63E8F006056BE, 091B1C32A2BA2F75800BB4590C2153C470983E0422FBE85913010149686D8BEF ] C:\Windows\SysWOW64\secur32.dll
20:13:13.0965 0x1214  C:\Windows\SysWOW64\secur32.dll - ok
20:13:13.0980 0x1214  [ 4F6E72B34ED3DC53DCC5E8708E60B61F, CB79F4EBCE11ECCFA167498F329F95D545F8D4E5CCE4006B2A03B595733AEBC2 ] C:\Windows\SysWOW64\security.dll
20:13:13.0980 0x1214  C:\Windows\SysWOW64\security.dll - ok
20:13:13.0980 0x1214  [ A81AF063D965A321D577AE3C24ADA449, 09CF63B992761551AC166B4825CC67C243DC29E7A17035E85638263388097874 ] C:\Windows\SysWOW64\browcli.dll
20:13:13.0980 0x1214  C:\Windows\SysWOW64\browcli.dll - ok
20:13:13.0980 0x1214  [ 93F1D409D2454D67CE99A0DB859A7193, 39C9B08A0CF24977B0FEA31D061164F32287C46333DE819865FA8946B1733268 ] C:\Windows\SysWOW64\activeds.dll
20:13:13.0980 0x1214  C:\Windows\SysWOW64\activeds.dll - ok
20:13:13.0996 0x1214  [ F6FD367C9EAAEDF90CD7A7952AE0B336, 65DF0688F18EC3DEC27E725DC3A2F0D656F321832BDFA45253C0933620214AAF ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\ASL.dll
20:13:13.0996 0x1214  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\ASL.dll - ok
20:13:13.0996 0x1214  [ 4E4EDF9CA82E95BAB2977DD9F21B00F6, 84CE2F48F86BC9D036AFA1F3205715017CA45E58196D5D57F1360C878F629C23 ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService_main.dll
20:13:13.0996 0x1214  C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService_main.dll - ok
20:13:13.0996 0x1214  [ 41323AB614A2B66AD77B1121D24AC895, 3B441E113365F597F5AA18979AFFD5F7F37F75EBFBBA0AE821ACEE550E3EEC05 ] C:\Windows\SysWOW64\setupapi.dll
20:13:13.0996 0x1214  C:\Windows\SysWOW64\setupapi.dll - ok
20:13:14.0011 0x1214  [ 6C9C05D5344B9AB80E9180FC859BC45A, 036E82A0D01612503388E4A008D80D662FA4D8003A8F6CBA1C4CE6170A3DFF6F ] C:\Windows\SysWOW64\devobj.dll
20:13:14.0011 0x1214  C:\Windows\SysWOW64\devobj.dll - ok
20:13:14.0011 0x1214  [ 062373995EAE5F0EAC9EAA9192136BFB, 0392D5656BD677C4C5CB74C96E7B85B0867F2535A37950AEC7F5C4A1A70D19AE ] C:\Windows\SysWOW64\dnssd.dll
20:13:14.0011 0x1214  C:\Windows\SysWOW64\dnssd.dll - ok
20:13:14.0011 0x1214  [ 71EA7E6AC01ECB79596E5EACF03C633A, DC2B1755A601EE42A68BC305E1C4052E39D015BE69E39A9752B1CB8D82BA6A85 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll
20:13:14.0011 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll - ok
20:13:14.0027 0x1214  [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] C:\Program Files\Bonjour\mDNSResponder.exe
20:13:14.0027 0x1214  C:\Program Files\Bonjour\mDNSResponder.exe - ok
20:13:14.0027 0x1214  [ 73E8667A19FEEDD856DF2695E9E511D4, 68D66C36D1F293D10ADCC6A33C870F989A29743537592CF172F02E794BEAFD1C ] C:\Windows\SysWOW64\wship6.dll
20:13:14.0027 0x1214  C:\Windows\SysWOW64\wship6.dll - ok
20:13:14.0027 0x1214  [ 81F08948A0F1475894C99D4D19A158A8, 93334DA369BF976E498265E432CAF63D898D378C6B32947DF355366ABE2A0FAC ] C:\Windows\SysWOW64\wshqos.dll
20:13:14.0027 0x1214  C:\Windows\SysWOW64\wshqos.dll - ok
20:13:14.0043 0x1214  [ EE5C8E27C37B79CB54A2FCEEED2DC262, 0A5E200FD65A491756B951A4A0ED39B88B7B313E97C2BBF3C91AC4C290772BB7 ] C:\Windows\SysWOW64\WSHTCPIP.DLL
20:13:14.0043 0x1214  C:\Windows\SysWOW64\WSHTCPIP.DLL - ok
20:13:14.0043 0x1214  [ 0E1B02C9CC352A1F61703B7D1A8A2C45, D24CBA1B5A5872C528D91CF4DEFED06EE8B8C841F3B375A8AEB35C28B1729398 ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\MobileDevice.dll
20:13:14.0043 0x1214  C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\MobileDevice.dll - ok
20:13:14.0058 0x1214  [ 61E894FE1E9CC720C909E6E343351794, 2C8540ED0A2C7028B242289078B4C2D8678D26FB7429AB3B33C136BB47B178C3 ] C:\Program Files (x86)\Launch Manager\dsiwmis.exe
20:13:14.0058 0x1214  C:\Program Files (x86)\Launch Manager\dsiwmis.exe - ok
20:13:14.0058 0x1214  [ 8C2BA6BEA949EE6E68385F5692BAFB94, 1047F473DCE0FB56BEA5C1B7929752C1FBAB5983C8202ABB4EEA48FCD60A353A ] C:\Windows\System32\dps.dll
20:13:14.0058 0x1214  C:\Windows\System32\dps.dll - ok
20:13:14.0058 0x1214  [ 862789547AF9694B48BA0D040BF246BC, 19D12AA135127C56FF431299510AF63E1399A03D2BCC9255AE9F34E60C556F8F ] C:\Windows\System32\taskschd.dll
20:13:14.0058 0x1214  C:\Windows\System32\taskschd.dll - ok
20:13:14.0074 0x1214  [ 49EEF52BFB986A2B5D70F4EC12637D7B, C42C93EC36B4BD0AFF4248AD571F56FB5F39D5C57B93C01EBB34997A262E41A9 ] C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
20:13:14.0074 0x1214  C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe - ok
20:13:14.0074 0x1214  [ 2E14406E05789F91C9282AE7CFCA3A07, BDB403FC7EDDF5B3F24F1E8232C6EEFE888C5D72A819567EEA73D0AF7D511095 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
20:13:14.0074 0x1214  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll - ok
20:13:14.0074 0x1214  [ 61F9B0AE130B5668AE284A9FF2E274B7, 9CC8D60CDC5A450F7B75849DB2B547AEF55EB7084FF5E35CEAC6B598A85C3601 ] C:\Program Files\Acer\Acer ePower Management\PowerSettingControl.dll
20:13:14.0074 0x1214  C:\Program Files\Acer\Acer ePower Management\PowerSettingControl.dll - ok
20:13:14.0089 0x1214  [ AF54247F97CCF3539DE7505C09972FF9, AAF2FD5EC083756DAD782E0EB04637E3C2B191E20BFC0707EDED4F36DA88B5A1 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\CFNetwork.dll
20:13:14.0089 0x1214  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\CFNetwork.dll - ok
20:13:14.0089 0x1214  [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] C:\Windows\System32\FDResPub.dll
20:13:14.0089 0x1214  C:\Windows\System32\FDResPub.dll - ok
20:13:14.0089 0x1214  [ 05FE4A30177E858B51F5E1E970FE9925, 83711861B648EBC744BDC846DBF043C9D6ED8324E5768A40338C6161613C2E70 ] C:\Windows\System32\WSDApi.dll
20:13:14.0089 0x1214  C:\Windows\System32\WSDApi.dll - ok
20:13:14.0105 0x1214  [ A3EA403D2B74C5F71B7E8B3DAE92DE1E, DF91A8D06EA27D4CF7D61A8EF488D4F42DE88629CC2BC9F4A72B66FF2D6CEE4B ] C:\Windows\System32\webservices.dll
20:13:14.0105 0x1214  C:\Windows\System32\webservices.dll - ok
20:13:14.0105 0x1214  [ 8BA9851E671E8B5E49E303748FFD530C, A2CBF71C3449BA71739E9E805D2EB9F9242AD9D839AF5B4C4F7ADC00C239FB38 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\SQLite3.dll
20:13:14.0105 0x1214  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\SQLite3.dll - ok
20:13:14.0105 0x1214  [ 73862FF693168369A90F046E7F227B83, 938D71674C8856A0F7FE5A096F92D71977F5ABA62374287F49394F25B67713BA ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
20:13:14.0105 0x1214  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll - ok
20:13:14.0121 0x1214  [ B5055B51BAA0FD0A736A88653DA3C1C0, A3BD057C7E8C926930BA7E9D11427D26FB37267026A0B72AB4021101EE424F74 ] C:\Windows\System32\fundisc.dll
20:13:14.0121 0x1214  C:\Windows\System32\fundisc.dll - ok
20:13:14.0121 0x1214  [ 816FD5A6F3C2F3D600900096632FC60E, D92401C4B56663F8A12B6390562608A125713408B00266C53844129679E48E9C ] C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
20:13:14.0121 0x1214  C:\Program Files (x86)\Acer\Registration\GregHSRW.exe - ok
20:13:14.0136 0x1214  [ 1128637CAD49A8E3C8B5FA5D0A061525, 6B80E50D8296F9E2C978CC6BC002B964ACFD8F4BCF623F4770513792845B5278 ] C:\Windows\SysWOW64\cryptdll.dll
20:13:14.0136 0x1214  C:\Windows\SysWOW64\cryptdll.dll - ok
20:13:14.0136 0x1214  [ 29CA5974FAB0E8AE4AA7814FE05CF832, ADE54D406AAB7C364851AAD278A569426C9ADD4F7FB543BB08428CED963BF541 ] C:\Windows\SysWOW64\dhcpcsvc6.dll
20:13:14.0136 0x1214  C:\Windows\SysWOW64\dhcpcsvc6.dll - ok
20:13:14.0136 0x1214  [ 9A85ABCE0FDD1AF8E79E731EB0B679F3, 2A610BEB16610FE2F2E9A50477A62A05481E8A5843A814955A0EDFF45D0304B3 ] C:\Windows\SysWOW64\dhcpcsvc.dll
20:13:14.0136 0x1214  C:\Windows\SysWOW64\dhcpcsvc.dll - ok
20:13:14.0152 0x1214  [ D3EAD1CF16BA729A7F7C9A5D94AA7C05, 6736723C88B2324CD8B39516E7908E75E31A923E93DDBE05F81E8D1A08DBC585 ] C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7600.16661_none_ebfb56996c72aefc\comctl32.dll
20:13:14.0152 0x1214  C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7600.16661_none_ebfb56996c72aefc\comctl32.dll - ok
20:13:14.0152 0x1214  [ 4552F2FF1FF3720A65619F92965E1ACC, 0CAA315B0871DD822BBB5E5896E5C2B8F71D2DA488951C89E8C37A93204C5223 ] C:\Windows\System32\winhttp.dll
20:13:14.0152 0x1214  C:\Windows\System32\winhttp.dll - ok
20:13:14.0152 0x1214  [ FF604B2C8B39E14421C9DF2D1D3887BD, 55F49D32640B3E2363957616422B0818934C01173972ECC57375DD82769C144F ] C:\Windows\System32\webio.dll
20:13:14.0152 0x1214  C:\Windows\System32\webio.dll - ok
20:13:14.0167 0x1214  [ 4509387963DF66A6401752A0C631F6E8, B160BD61BEC4D4566442106CCF48182481DF55F937DE5A816436D202630145DC ] C:\Windows\System32\httpapi.dll
20:13:14.0167 0x1214  C:\Windows\System32\httpapi.dll - ok
20:13:14.0167 0x1214  [ 6D5A49D6479EB753C7879F73A4C35E0F, A6009398E643051A8CC3943EDF9B7974F15867720246EFE52EDB09B5B3A30B83 ] C:\Windows\SysWOW64\dnsapi.dll
20:13:14.0167 0x1214  C:\Windows\SysWOW64\dnsapi.dll - ok
20:13:14.0167 0x1214  [ 40947436A70E0034E41123DF5A0A7702, 5D40FD92DA5CA59C1BADB58AD509DB6A6D613F18660A9A270A53ECA85D34C3A9 ] C:\Program Files (x86)\Bonjour\mdnsNSP.dll
20:13:14.0167 0x1214  C:\Program Files (x86)\Bonjour\mdnsNSP.dll - ok
20:13:14.0183 0x1214  [ 12B79422A23814429CDA9E734C58F78F, 88D8EBB4815896921ED88BC46E8C37844FB8C62CD05F507BFCF9825EBC9607DE ] C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL
20:13:14.0183 0x1214  C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL - ok
20:13:14.0183 0x1214  [ B9F34AE6396DD16C5952BB1069E75173, 6646AE76C142D1DE9479C080EDDCBEFA25C7F18D6E9FEF6190E41C71A39B6C82 ] C:\PROGRA~2\McAfee\SITEAD~1\mcsacore.exe
20:13:14.0183 0x1214  C:\PROGRA~2\McAfee\SITEAD~1\mcsacore.exe - ok
20:13:14.0183 0x1214  [ ED6EE83D61EBC683C2CD8E899EA6FEBE, F82592908D038C44D9F2E5C5B7BC663A2D370FC565F40420E1138A9E55F0E7EB ] C:\Windows\SysWOW64\rasadhlp.dll
20:13:14.0183 0x1214  C:\Windows\SysWOW64\rasadhlp.dll - ok
20:13:14.0199 0x1214  [ E8B624AEF824B508FEA02DE0D6DA71FA, 5D68BB045CBFF470802A5CFE31A0EBE12AD8B2903E1BB295D0A8171AB8DF4844 ] C:\PROGRA~2\McAfee\SITEAD~1\sasshmod.dll
20:13:14.0199 0x1214  C:\PROGRA~2\McAfee\SITEAD~1\sasshmod.dll - ok
20:13:14.0199 0x1214  [ 22A4905C958BEB68D78385B633C1351B, FFF03DB9F0A7DCFFF221FA1EAEBF9EA04732F4D0562EA02412D178B887773574 ] C:\Program Files (x86)\EgisTec MyWinLocker\x86\MWLService.exe
20:13:14.0199 0x1214  C:\Program Files (x86)\EgisTec MyWinLocker\x86\MWLService.exe - ok
20:13:14.0199 0x1214  [ 7EDBFDB1E58152F31D8EA7664BCE2901, 5311E40ED6735733A746E192BCA7139FC13ED0F46DB5FE99960110905957C4D1 ] C:\Program Files (x86)\EgisTec MyWinLocker\x86\sysenv.dll
20:13:14.0199 0x1214  C:\Program Files (x86)\EgisTec MyWinLocker\x86\sysenv.dll - ok
20:13:14.0214 0x1214  [ 51F5CC1E7DA3D9C664C2D0D61F315E06, 0A50A35863C9679E8DFC0783D5F1F6411010873738C6B1D90B7E993D2C6CFB06 ] C:\Windows\SysWOW64\adsldpc.dll
20:13:14.0214 0x1214  C:\Windows\SysWOW64\adsldpc.dll - ok
20:13:14.0214 0x1214  [ F10E5311E5093FA3C00FF88C54C32FCA, B557F5B00D77F030850D9AAC0FFEFC4C2A759EC4081C8459C9DEAE51BAAACC65 ] C:\Windows\SysWOW64\atl.dll
20:13:14.0214 0x1214  C:\Windows\SysWOW64\atl.dll - ok
20:13:14.0230 0x1214  [ 364927791C2E848A7BAB4C9B7E7D7740, 64734DB349C2142999C9EB621DF00551B5FFFAE8277079D085A4F213215B6BE6 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avwinll.dll
20:13:14.0230 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\avwinll.dll - ok
20:13:14.0230 0x1214  [ C5B4683680DF085B57BC53E5EF34861F, 9C06517DFCB3ED7BB1166F7EB6CCC8713E6B68283C75420C0EDC182094AA1B8F ] C:\Windows\System32\IKEEXT.DLL
20:13:14.0230 0x1214  C:\Windows\System32\IKEEXT.DLL - ok
20:13:14.0230 0x1214  [ 999463B4206D8D35B54ED375C0AFD531, EF80D4B248C25A10AA0584BBD30009FC7D3A926B9C55A7413662464B5529DC81 ] C:\Program Files (x86)\Avira\AntiVir Desktop\aecore.dll
20:13:14.0230 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\aecore.dll - ok
20:13:14.0245 0x1214  [ 2F22E4F40CBEBB980F923D64A78FEA2B, 929197E5A94EB445238F87765C985EC3C6406ABC0320CCFC4A30AD5B6881B3D1 ] C:\Program Files (x86)\EgisTec MyWinLocker\x86\xmllite.dll
20:13:14.0245 0x1214  C:\Program Files (x86)\EgisTec MyWinLocker\x86\xmllite.dll - ok
20:13:14.0245 0x1214  [ F005103EA266267A68C6F66BB84EBD88, 5A218AAB849690B392556FDD37ADAF5F2A075245DD9DA08F0BBE524E4EF7146D ] C:\Program Files (x86)\EgisTec MyWinLocker\x86\CryptoAPI.dll
20:13:14.0245 0x1214  C:\Program Files (x86)\EgisTec MyWinLocker\x86\CryptoAPI.dll - ok
20:13:14.0245 0x1214  [ C7852A842FCD3938CDCD8F4BA8D1FD07, D899800AFDDC730B34A9EC46C6D9ECDF5992361DCFBAD61D785488B7DACF33F1 ] C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlOP.dll
20:13:14.0245 0x1214  C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlOP.dll - ok
20:13:14.0261 0x1214  [ A8EDB86FC2A4D6D1285E4C70384AC35A, 61B8955CE0A2AA9D0719920B30216717B349B6FBE11C697C31CFA84F859CC1AE ] C:\Windows\System32\dllhost.exe
20:13:14.0261 0x1214  C:\Windows\System32\dllhost.exe - ok
20:13:14.0261 0x1214  [ 5B3CE960C62DBE864BE9A0BD043A3E30, 8474C68B0A8F94945C3278C682143F289245FC31C28DBB4609E993F90F7AD309 ] C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
20:13:14.0261 0x1214  C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe - ok
20:13:14.0261 0x1214  [ A0A2C1D812C231C9BFE119FDC68E341B, F94446594EE17505956A715DFB28B51D09F00A7A65E56950661B889A57DE8FA8 ] C:\Windows\System32\IDStore.dll
20:13:14.0261 0x1214  C:\Windows\System32\IDStore.dll - ok
20:13:14.0277 0x1214  [ 3EEFB971D61EF9638FD21F14C703CA11, A01BCD7E884E407C82DEB84D5B31F517F32A4FA2CF143372BAC896CC9478BE0E ] C:\Windows\System32\taskhost.exe
20:13:14.0277 0x1214  C:\Windows\System32\taskhost.exe - ok
20:13:14.0277 0x1214  [ 4D59A5B6EF0AF6F9FDF3D157534380AF, C9C5F454C9E555D44667240FBA891924EF1FCDA020FEDC996D91DAE29E3526E4 ] C:\Windows\SysWOW64\oleacc.dll
20:13:14.0277 0x1214  C:\Windows\SysWOW64\oleacc.dll - ok
20:13:14.0277 0x1214  [ 23566F9723771108D2E6CD768AC27407, FAC0293DD1061B151E779BF4B245E6652C951FEDEBC602A166156DFBD38B5D67 ] C:\Windows\System32\AtBroker.exe
20:13:14.0277 0x1214  C:\Windows\System32\AtBroker.exe - ok
20:13:14.0292 0x1214  [ 94EEAC26F57811BD1AEFC164412F7FCE, 7390BCD7709D48DE75D7D6E06AA7356D1C58EE63F3CC2E07ABCD2E2FF6CC81CF ] C:\Windows\System32\PlaySndSrv.dll
20:13:14.0292 0x1214  C:\Windows\System32\PlaySndSrv.dll - ok
20:13:14.0292 0x1214  [ 6F8F1376A13114CC10C0E69274F5A4DE, 8EFD33E1C5A40C231BCB8ED73277F645BE87AE03FCDBA8134FAC053E90290A9C ] C:\Windows\System32\userinit.exe
20:13:14.0292 0x1214  C:\Windows\System32\userinit.exe - ok
20:13:14.0292 0x1214  [ B30F23026AA2F12A690153FFB6983993, 298D9EE30DDEB9193671B093D5EADC02419A0D42CC72FE9C575482A5C15434B4 ] C:\Program Files (x86)\Avira\AntiVir Desktop\aevdf.dll
20:13:14.0292 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\aevdf.dll - ok
20:13:14.0308 0x1214  [ D9A0CE66046D6EFA0C61BAA885CBA0A8, 06C3331C7F3EE0E0B95E8302CB80315E965587C4D6231785B8ACF3FAE4731FAF ] C:\Windows\System32\nlasvc.dll
20:13:14.0308 0x1214  C:\Windows\System32\nlasvc.dll - ok
20:13:14.0308 0x1214  [ 926C97F1D008E579D792EF6669DFCD89, 29D06189B37B35CCAFB4B780B8FB479891559931D4D06F654352BF96DBF1665F ] C:\Program Files (x86)\Avira\AntiVir Desktop\aescript.dll
20:13:14.0308 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\aescript.dll - ok
20:13:14.0323 0x1214  [ 1F1CA9E99DD5BF918BE0BF30B5A42FDA, 8A6ACEFAB95E5275CBFBE6CCB5A6C3A6A471260B279B9063E86B9C7765E18656 ] C:\Windows\System32\MsCtfMonitor.dll
20:13:14.0323 0x1214  C:\Windows\System32\MsCtfMonitor.dll - ok
20:13:14.0323 0x1214  [ 25419E7D1DED175B21113D819B3970DC, 68AB6F94993BEAB1D8D1118C4D2DF6CD55A9452C04389F9327F7036CAA89104A ] C:\Program Files (x86)\Avira\AntiVir Desktop\aescn.dll
20:13:14.0323 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\aescn.dll - ok
20:13:14.0323 0x1214  [ BC81707E7BEB7B01678A3373189E8011, 1C3DF9A15D9824893220B78C8DCD6E200B501FC6D2CA53089DB498C175655624 ] C:\Program Files (x86)\Avira\AntiVir Desktop\aesbx.dll
20:13:14.0323 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\aesbx.dll - ok
20:13:14.0339 0x1214  [ 9D4DB1309BB1D86FDC7CFAFB315E3E5A, 79A17A7FCBBD259EA5D4A8C2705C75AFC70AE083B46FBC65982E2CDD1B839C82 ] C:\Program Files (x86)\Avira\AntiVir Desktop\aerdl.dll
20:13:14.0339 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\aerdl.dll - ok
20:13:14.0339 0x1214  [ 61E02CC3184B63FAFE0B83EAC8B3B8EF, 006E453C901E2D3ED53D359087071145D27AE4CFFEBD5C6EDCFEFB17DFF27F15 ] C:\Windows\SysWOW64\winspool.drv
20:13:14.0339 0x1214  C:\Windows\SysWOW64\winspool.drv - ok
20:13:14.0339 0x1214  [ B5071E15D4C3F5EF5018AFF7E85A85E5, FF3ACAEDD127CC4BB0A6FD2D34B5E4D98478A86122BE31DB84702A12567288E0 ] C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
20:13:14.0339 0x1214  C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe - ok
20:13:14.0355 0x1214  [ 561FA2ABB31DFA8FAB762145F81667C2, DF96156F6A548FD6FE5672918DE5AE4509D3C810A57BFFD2A91DE45A3ED5B23B ] C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\msvcp71.dll
20:13:14.0355 0x1214  C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\msvcp71.dll - ok
20:13:14.0355 0x1214  [ 107F279517E2A04DB4AC1B1FAF1D573B, 487F505E97288ACA23229D1D421FD62E3A8FE59FA3A504F6C125854DF8BEDE5B ] C:\Windows\System32\ncsi.dll
20:13:14.0355 0x1214  C:\Windows\System32\ncsi.dll - ok
20:13:14.0355 0x1214  [ 220095A720030B52428993A0C1DDBCD3, E805940F4699FD97FA580AE0BC57018EA9059A2F52E9196447C82741CD889A30 ] C:\Program Files (x86)\EgisTec MyWinLocker\x86\PSDUtil.dll
20:13:14.0355 0x1214  C:\Program Files (x86)\EgisTec MyWinLocker\x86\PSDUtil.dll - ok
20:13:14.0370 0x1214  [ 2BBF3FDB70B8965DFA0258CBAB41ECCE, 4EFA41765E46E90C6CBDB0DC1E0CD375D7AB3307C477171EBAA6A16AC32E5211 ] C:\Windows\System32\ssdpapi.dll
20:13:14.0370 0x1214  C:\Windows\System32\ssdpapi.dll - ok
20:13:14.0370 0x1214  [ 9AAAEC8DAC27AA17B053E6352AD233AE, 2D5173ACF0BD6AC49670F7C83FD79AF552BA9D989DE8BA557459191C08A8A1AF ] C:\Windows\explorer.exe
20:13:14.0370 0x1214  C:\Windows\explorer.exe - ok
20:13:14.0370 0x1214  [ 1C27E145EC99F20BC1B13FD98165A83F, D3BCEC5DBEFAF1BE50EF7C42FE56D2B88AB8395C96887D8180A929E0F31C9983 ] C:\Windows\System32\ExplorerFrame.dll
20:13:14.0370 0x1214  C:\Windows\System32\ExplorerFrame.dll - ok
20:13:14.0386 0x1214  [ 1616B75A7D57287EA67B9167DA1BF407, 00D86503B874F41BE1742A0CBFF7D18ADD623EE50150427C6C6370615E5BFBC7 ] C:\Program Files (x86)\EgisTec MyWinLocker\x64\PSDProtect.dll
20:13:14.0386 0x1214  C:\Program Files (x86)\EgisTec MyWinLocker\x64\PSDProtect.dll - ok
20:13:14.0386 0x1214  [ D5803C461B3754839A06AF252303A0AF, 62117E2762E4953CDC3595F72F6231D86C21AA894D722C4F9EC80871FCD67AF0 ] C:\Program Files (x86)\EgisTec MyWinLocker\x64\sysenv.dll
20:13:14.0386 0x1214  C:\Program Files (x86)\EgisTec MyWinLocker\x64\sysenv.dll - ok
20:13:14.0386 0x1214  [ 024352FEEC9042260BB4CFB4D79A206B, 60CB39086E10C5B66EBC15E4DF219620B344B4358D2918AB6BB3448A0AC8BE36 ] C:\Windows\System32\EhStorShell.dll
20:13:14.0386 0x1214  C:\Windows\System32\EhStorShell.dll - ok
20:13:14.0401 0x1214  [ 0DFBB6B13ACFBDEE0E7DF0FD145614AC, C731F0179720DADA521C26CAB0F13FE1E7BA5D86BA390D6015A418DD94FBC4B2 ] C:\Windows\System32\ntshrui.dll
20:13:14.0401 0x1214  C:\Windows\System32\ntshrui.dll - ok
20:13:14.0401 0x1214  [ A05DC47AE658F2B4B129CAD6CB756F4D, 884FCCC603AA186CA7954B6B11EE7E024A6C518267FB364E11BFCE6CF1E573E1 ] C:\Program Files (x86)\Avira\AntiVir Desktop\aepack.dll
20:13:14.0401 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\aepack.dll - ok
20:13:14.0401 0x1214  [ F3D0B23E8C0BBDC1771BF0F0DBE9913B, 43A98B82F35BA7177E6795B15AEF013444B6CA7654EEF7B417B93F68A13358B5 ] C:\Program Files (x86)\Avira\AntiVir Desktop\aeoffice.dll
20:13:14.0401 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\aeoffice.dll - ok
20:13:14.0417 0x1214  [ 86F1895AE8C5E8B17D99ECE768A70732, 8094AF5EE310714CAEBCCAEEE7769FFB08048503BA478B879EDFEF5F1A24FEFE ] C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\msvcr71.dll
20:13:14.0417 0x1214  C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\msvcr71.dll - ok
20:13:14.0417 0x1214  [ 7B93C623333F121DC9E689CCB1B7A733, 0C58F682E1B3AF064963DD616E80609006E9317F2FCB0F3A51ED32FEF13B1081 ] C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\MFC71u.dll
20:13:14.0417 0x1214  C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\MFC71u.dll - ok
20:13:14.0433 0x1214  [ 09BA05A5020B429F28F61D73852B69EE, CE36D60ACBEF0803F92F069575A329EC392D22766970074049FB849FECF0571E ] C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvcLOC.dll
20:13:14.0433 0x1214  C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvcLOC.dll - ok
20:13:14.0433 0x1214  [ 045DB4EAB4FBD23210E85ECC3F464A2E, 506D7FAABE12470263502F99D86C81E0EE21C8789132FE1B24774ABDB4484468 ] C:\Windows\SysWOW64\nlaapi.dll
20:13:14.0433 0x1214  C:\Windows\SysWOW64\nlaapi.dll - ok
20:13:14.0433 0x1214  [ 0B7E85364CB878E2AD531DB7B601A9E5, F5AD3018427F1CD68450EE5CB55AA9572546322580E0FB1E7888702A291C2380 ] C:\Windows\SysWOW64\NapiNSP.dll
20:13:14.0433 0x1214  C:\Windows\SysWOW64\NapiNSP.dll - ok
20:13:14.0448 0x1214  [ 5DF5D8CFD9B9573FA3B2C89D9061A240, 990EA273B640DF2D7E800C0CFF18550259C605A4951CD82CD9F1E7B6FF0C9533 ] C:\Windows\SysWOW64\winrnr.dll
20:13:14.0448 0x1214  C:\Windows\SysWOW64\winrnr.dll - ok
20:13:14.0448 0x1214  [ 68769C3356B3BE5D1C732C97B9A80D6E, FB2D61145980A2899D1B7729184C54070315B0E63C9A22400A76CCD39E00029C ] C:\Windows\System32\drivers\PEAuth.sys
20:13:14.0448 0x1214  C:\Windows\System32\drivers\PEAuth.sys - ok
20:13:14.0448 0x1214  [ D6DB27F6E2C142EB01169F27D7062D17, DBB21E106D4A76FC23F7C6584C6E2360C537C15117569AE5A3F596D24B031AE6 ] C:\PROGRA~2\McAfee\SITEAD~1\saupkeep.dll
20:13:14.0448 0x1214  C:\PROGRA~2\McAfee\SITEAD~1\saupkeep.dll - ok
20:13:14.0464 0x1214  [ 6A100C71C85E3511E3352DC043CDCF30, 537B02AA4F350E0112227FA35C72779D95878583C25457A0914A38B781013A77 ] C:\Program Files (x86)\Avira\AntiVir Desktop\aeheur.dll
20:13:14.0464 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\aeheur.dll - ok
20:13:14.0464 0x1214  [ C3C89ADB418317A548AA4C0B0170EA33, 02650FD8571A68609853C42E2A3A09C766A0E9CF7988A39DB930C93612AF6E88 ] C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\Pehook.dll
20:13:14.0464 0x1214  C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\Pehook.dll - ok
20:13:14.0464 0x1214  [ 97CCB4D737B426B200E5EF90C877DF32, 3BE85121CCF11B688D1FFDB52076367A46B52EE4ACD9F164922EDCD5BA05C3FB ] C:\Windows\SysWOW64\imagehlp.dll
20:13:14.0464 0x1214  C:\Windows\SysWOW64\imagehlp.dll - ok
20:13:14.0479 0x1214  [ 93AC8012D1BCD9E20A090803F0D7DAF6, 6B73F1FD531F164C3AD2A4DC2DD6EE337FE7A2D7F8A1D774A3F562F5545D3CE5 ] C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\ISchedule.dll
20:13:14.0479 0x1214  C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\ISchedule.dll - ok
20:13:14.0479 0x1214  [ 64453CC9A9C6F9ECC7F0461365A47356, B119623B56DEE8AEFA4C7B65D5BE7AB37E96E6F0D3EA53B25998789C96E8504F ] C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\SyncDll.dll
20:13:14.0479 0x1214  C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\SyncDll.dll - ok
20:13:14.0479 0x1214  [ 01761D2CA25DBC78B7D9AF18AC1389E4, 85F2B4B041413326D439A08A0709531C3191D1CD9AC253562A8DDBBDD4EAB193 ] C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\sqlite3.dll
20:13:14.0479 0x1214  C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\sqlite3.dll - ok
20:13:14.0495 0x1214  [ 78393E71EEF3D77E7BFB6449A4728B94, 91D45FBD321E9D2962639B291324FB006B4EEDA9469572458AAB046ABE106BC3 ] C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\agent_stub.dll
20:13:14.0495 0x1214  C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\agent_stub.dll - ok
20:13:14.0495 0x1214  [ 3A10BE1693E89D0667437A4E8698A341, CBF848E6F3C367CF0275407030B1E5EE6A31080609378563A029D3F31EE1D7C3 ] C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\ACE.dll
20:13:14.0495 0x1214  C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\ACE.dll - ok
20:13:14.0511 0x1214  [ BFEBE1E4B301F44CEA7C1B4021BD0264, F6984FC40F1731A936A1671A422FF750056418199576EDCD5F9373A23D0D0221 ] C:\Windows\System32\cscapi.dll
20:13:14.0511 0x1214  C:\Windows\System32\cscapi.dll - ok
20:13:14.0511 0x1214  [ 1D63F4366288B8A7595397E27010FD44, 99EA4DDD88D9C4A4CC9B238F533CB4D2C062D46239173997E8594D8A75811A01 ] C:\Windows\System32\IconCodecService.dll
20:13:14.0511 0x1214  C:\Windows\System32\IconCodecService.dll - ok
20:13:14.0511 0x1214  [ 1727B2A2F379A32B864C096FA794AADC, 87B77A5DF95F3A1C5ED6DEF820C7E384BEFCBAA2FE1BB4781AC6F777A081E5CC ] C:\Windows\System32\aepic.dll
20:13:14.0511 0x1214  C:\Windows\System32\aepic.dll - ok
20:13:14.0526 0x1214  [ F162D5F5E845B9DC352DD1BAD8CEF1BC, 8A7B7528DB30AB123B060D8E41954D95913C07BB40CDAE32E97F9EDB0BAF79C7 ] C:\Windows\System32\dwm.exe
20:13:14.0526 0x1214  C:\Windows\System32\dwm.exe - ok
20:13:14.0526 0x1214  [ EF184066A851E7838D5BF8C8FAE66CC4, 813247114C5AA374585F669ADA5DFD25615D1B15B14518A195995D5BF7A8FA25 ] C:\Windows\System32\dwmredir.dll
20:13:14.0526 0x1214  C:\Windows\System32\dwmredir.dll - ok
20:13:14.0526 0x1214  [ AB4A13F99BE22A75046F770C23177D99, 7D8372C95BE7BBB5D1336713E050FC01179DAFACAB4B48A2B07B152074E07ACC ] C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
20:13:14.0526 0x1214  C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe - ok
20:13:14.0542 0x1214  [ DD81D91FF3B0763C392422865C9AC12E, F5691B8F200E3196E6808E932630E862F8F26F31CD949981373F23C9D87DB8B9 ] C:\Windows\System32\rundll32.exe
20:13:14.0542 0x1214  C:\Windows\System32\rundll32.exe - ok
20:13:14.0542 0x1214  [ 6F8E3B7B70E1BBA871212940C1FBDF60, 3F9D4EE64E4210340C6FEE0DE81BFE3C613DDBE608EC09D63817D24CE24BFC5E ] C:\Windows\SysWOW64\SensApi.dll
20:13:14.0542 0x1214  C:\Windows\SysWOW64\SensApi.dll - ok
20:13:14.0542 0x1214  [ 95AA71FF23C1260BA4F69D7BBA1E7B4B, 00E120DEE2A543C45DA775A63D8D5938BBBA6B1469F5C4B3B0857B28773AFE0D ] C:\PROGRA~2\McAfee\SITEAD~1\x64\saHook.dll
20:13:14.0542 0x1214  C:\PROGRA~2\McAfee\SITEAD~1\x64\saHook.dll - ok
20:13:14.0557 0x1214  [ 5CF640EDDB1E40A5AB1BB743BCDEC610, 0313AA3F713C9F5B84DBB0B4DE78A96B173E9F7B4CF61C10FDC7DAE952DB04E5 ] C:\Windows\SysWOW64\pnrpnsp.dll
20:13:14.0557 0x1214  C:\Windows\SysWOW64\pnrpnsp.dll - ok
20:13:14.0557 0x1214  [ 3A2BB97D54A2189C9900A735C0531B59, E1697967B3F5C64B1E445BD3397A20541C475AF9CF5DBCEEAE276C9D8DBBFCC9 ] C:\Windows\SysWOW64\wshbth.dll
20:13:14.0557 0x1214  C:\Windows\SysWOW64\wshbth.dll - ok
20:13:14.0557 0x1214  [ F09A9A1AD21FE618C4C8B0A0D830C886, 29831DDAB2AB105358FBC067CDF96428220B6743CD6019F6FE74BAC7AF325E7E ] C:\Windows\System32\msutb.dll
20:13:14.0557 0x1214  C:\Windows\System32\msutb.dll - ok
20:13:14.0573 0x1214  [ 056AD4A41E7A19A75B35E0D4E35D9EAF, 52BBF55CFB876CF19376476E1FC33A5A66AB73656F373597EDCA7FF833F796DF ] C:\Program Files (x86)\Avira\AntiVir Desktop\aehelp.dll
20:13:14.0573 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\aehelp.dll - ok
20:13:14.0573 0x1214  [ 3D1E43DDA2D9EAC5820F810C0B2B90D5, 89FD98AD8586E5175BBB4EB2488088BFCF4B683677F940EEF00109B79D0D3448 ] C:\Windows\SysWOW64\msxml3.dll
20:13:14.0573 0x1214  C:\Windows\SysWOW64\msxml3.dll - ok
20:13:14.0573 0x1214  [ 7F37322A489E285CFBCC02F6A53B3F1B, 7A64799611A5A1B251C4136AC486A4D3D9145E3F95D6056ED0FEE24C7E050472 ] C:\Windows\System32\HotStartUserAgent.dll
20:13:14.0573 0x1214  C:\Windows\System32\HotStartUserAgent.dll - ok
20:13:14.0589 0x1214  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] C:\Windows\System32\drivers\secdrv.sys
20:13:14.0589 0x1214  C:\Windows\System32\drivers\secdrv.sys - ok
20:13:14.0589 0x1214  [ 0AF6E19D39C70844C5CAA8FB0183C36E, 4494EEFDEA7198888D32E74727E5BC0AC628FFA70B1FE7EB59DBEEDC1A95D0DD ] C:\Windows\System32\drivers\srvnet.sys
20:13:14.0589 0x1214  C:\Windows\System32\drivers\srvnet.sys - ok
20:13:14.0604 0x1214  [ 966E18783BA760B801A41091837D7F9A, 08DD0E7A83E74A7D674DC89BF4FB2867926387F251C74459D7CCE0757BDD4FE2 ] C:\Program Files (x86)\Avira\AntiVir Desktop\aegen.dll
20:13:14.0604 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\aegen.dll - ok
20:13:14.0604 0x1214  [ 76D078AF6F587B162D50210F761EB9ED, 3813171036B4036306CADC29F877ADAE44B241DDF65B3699C352B7CDA9EC68C9 ] C:\Windows\System32\drivers\tcpipreg.sys
20:13:14.0604 0x1214  C:\Windows\System32\drivers\tcpipreg.sys - ok
20:13:14.0604 0x1214  [ AACA07AE9642D20F39E838C581DDFA2A, 308A289A0C50E60FF70453B1E9B614D005FD174138154C1E3692998520D63915 ] C:\Program Files (x86)\Avira\AntiVir Desktop\aeexp.dll
20:13:14.0604 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\aeexp.dll - ok
20:13:14.0620 0x1214  [ 423069307FB726E51E2A66F1C3F738FE, 314EF0E1C636AC553C0E09F992B34573DA4A89ACCB759BDA27335E8125C08E35 ] C:\Windows\winsxs\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.4148_none_4bf5400abf9d60b7\mfc90u.dll
20:13:14.0620 0x1214  C:\Windows\winsxs\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.4148_none_4bf5400abf9d60b7\mfc90u.dll - ok
20:13:14.0620 0x1214  [ D2BB82DF91F4D8495235F954D346C4F5, CB1671A9A3437EE70FBA0633EBEB089530D8E28D50B1C19C23686632757E1D28 ] C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\VssAgent.dll
20:13:14.0620 0x1214  C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\VssAgent.dll - ok
20:13:14.0620 0x1214  [ 18AB2E5A40064ED5F7791AC5946A90F3, B7536CE56702C23B1CEC3E1B6C78866E0A76808B85A92AF3733D9ED9429E004C ] C:\Windows\SysWOW64\msimg32.dll
20:13:14.0620 0x1214  C:\Windows\SysWOW64\msimg32.dll - ok
20:13:14.0635 0x1214  [ 51138BEEA3E2C21EC44D0932C71762A8, 5AD3C37E6F2B9DB3EE8B5AEEDC474645DE90C66E3D95F8620C48102F1EBA4124 ] C:\Windows\SysWOW64\rundll32.exe
20:13:14.0635 0x1214  C:\Windows\SysWOW64\rundll32.exe - ok
20:13:14.0635 0x1214  [ C02E3CE20E7776C922B5C8938350B5F1, 4BA2250230BC496ACF5709AD54E99BAC858C298BF09DBC574F8CA365A33E5FFC ] C:\Windows\SysWOW64\apphelp.dll
20:13:14.0635 0x1214  C:\Windows\SysWOW64\apphelp.dll - ok
20:13:14.0635 0x1214  [ EFBC1DD333C99CA52A1371C74D4BA7A7, 84BC04E581E219FACA1B23B3CD370083F57E4196522DE97C421B912DA02D4E2B ] C:\Windows\SysWOW64\vssapi.dll
20:13:14.0635 0x1214  C:\Windows\SysWOW64\vssapi.dll - ok
20:13:14.0651 0x1214  [ CB7633FF7131FB4AA25A09A619082F60, E6F14D5F5F76E21BABB35FE18CCE55CA9CB6E0B18DA07AA915F7CE761852E58B ] C:\Windows\AppPatch\AcLayers.dll
20:13:14.0651 0x1214  C:\Windows\AppPatch\AcLayers.dll - ok
20:13:14.0651 0x1214  [ 129857DD474DF774B6DF60B43D5E08C1, 86CB042932E7E2A991CF512F9A9CDB32C683E323F5099A73597F94CFDF9E604F ] C:\PROGRA~2\McAfee\SITEAD~1\sahook.dll
20:13:14.0651 0x1214  C:\PROGRA~2\McAfee\SITEAD~1\sahook.dll - ok
20:13:14.0651 0x1214  [ E54A9A5423EE72536C0B450C00DEDBCB, 29D8316657D0293D5929F1338AAB2CD062282357BE9EF7E4C3DC712B95272279 ] C:\Windows\AppPatch\acwow64.dll
20:13:14.0651 0x1214  C:\Windows\AppPatch\acwow64.dll - ok
20:13:14.0667 0x1214  [ 9B2CA1E7A69CD722E933FB327D3301FD, F20976C899E96415954020456933FFAE83DC1EB30BF7C1800B78219B329CA3EB ] C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IShadowS3.dll
20:13:14.0667 0x1214  C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IShadowS3.dll - ok
20:13:14.0667 0x1214  [ 39C5F32747B3414D1BB216FDB1DEFC58, 6FAE64CB9748304090113903A5AE9E7154BE16BA2EEA7AB3EF04AB9D79B81380 ] C:\Windows\SysWOW64\dwmapi.dll
20:13:14.0667 0x1214  C:\Windows\SysWOW64\dwmapi.dll - ok
20:13:14.0667 0x1214  [ 43964FA89CCF97BA6BE34D69455AC65F, 10E3B89A5470E1BB6F73382135DD2352F5073C1EE8485D7476CFB5122D4AAA2F ] C:\Windows\SysWOW64\uxtheme.dll
20:13:14.0667 0x1214  C:\Windows\SysWOW64\uxtheme.dll - ok
20:13:14.0682 0x1214  [ B940289C83121046BD6A60ACC6028593, EBD1C2C0A8EBB201924536AB5C6E032C12B9E081A153CC079748E1D6D625F0DF ] C:\Windows\SysWOW64\vsstrace.dll
20:13:14.0682 0x1214  C:\Windows\SysWOW64\vsstrace.dll - ok
20:13:14.0682 0x1214  [ 2A632A95433E9719F37AE06BA00543AC, 889704C5556AEC2C5BC1D09BAD9B1910C66A6D040AB5DE021375BA861A16FA19 ] C:\Windows\winsxs\x86_microsoft.vc90.mfcloc_1fc8b3b9a1e18e3b_9.0.30729.4148_none_4973eb1d754a9dc9\MFC90ENU.DLL
20:13:14.0682 0x1214  C:\Windows\winsxs\x86_microsoft.vc90.mfcloc_1fc8b3b9a1e18e3b_9.0.30729.4148_none_4973eb1d754a9dc9\MFC90ENU.DLL - ok
20:13:14.0682 0x1214  [ 463B386EBC70F98DA5DFF85F7E654346, 8E27B18B04AF587719D1DAE75A042DB998E06CAE112BD68626EF046036D2DCDC ] C:\Windows\System32\seclogon.dll
20:13:14.0682 0x1214  C:\Windows\System32\seclogon.dll - ok
20:13:14.0698 0x1214  [ 210FCACAF902B2CD47CF9FD17D846146, 3F77AC721E084864C5966FF5337A90185F62203DC19C685328675500D629CB87 ] C:\Windows\System32\aeevts.dll
20:13:14.0698 0x1214  C:\Windows\System32\aeevts.dll - ok
20:13:14.0698 0x1214  [ 52D0E33B681BD0F33FDC08812FEE4F7D, BBEBC0773402F6697D2F14F63E5E4FDC2180466E7FDBD306E408535B10160249 ] C:\Windows\System32\wiaservc.dll
20:13:14.0698 0x1214  C:\Windows\System32\wiaservc.dll - ok
20:13:14.0698 0x1214  [ 0364256B4A2A93A8C8CDA6B3B5A0EFF5, BDA403E6CACC249C467671FB1FAF7B77FB019326BC18F9F6CF377104520E2654 ] C:\Windows\System32\wiatrace.dll
20:13:14.0698 0x1214  C:\Windows\System32\wiatrace.dll - ok
20:13:14.0713 0x1214  [ CD7B65E600B8EBC91B292C1AC9EC1215, E87C7E95014E2DB1C9918C2288769019C39A7CC881524E38E3B3044337F5EDFB ] C:\Program Files (x86)\Avira\AntiVir Desktop\aeemu.dll
20:13:14.0713 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\aeemu.dll - ok
20:13:14.0713 0x1214  [ 3C1284516A62078FB68F768DE4F1A7BE, 67ECD462335EF88773E4BAEAB230A68EC92A25F8CD8F115873F669205AE6A1A9 ] C:\Windows\System32\sysmain.dll
20:13:14.0713 0x1214  C:\Windows\System32\sysmain.dll - ok
20:13:14.0713 0x1214  [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] C:\Windows\System32\trkwks.dll
20:13:14.0729 0x1214  C:\Windows\System32\trkwks.dll - ok
20:13:14.0729 0x1214  [ 434049E557861645FA160F3035025F51, 3C2DED80A2C25947647649805255092D7D8D38AB12626D08E971960C4F695126 ] C:\Program Files (x86)\Avira\AntiVir Desktop\aebb.dll
20:13:14.0729 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\aebb.dll - ok
20:13:14.0729 0x1214  [ F9EC9ACD504D823D9B9CA98A4F8D3CA2, 58DAD5111C598F14CB199FE6A61FA5918F29513B778A8664FD05EFAB3C665D4F ] C:\Program Files\Acer\Acer Updater\UpdaterService.exe
20:13:14.0729 0x1214  C:\Program Files\Acer\Acer Updater\UpdaterService.exe - ok
20:13:14.0745 0x1214  [ C1BDC97E8C9404245DE87F1EF08D1764, 537043D7EF12C518198B70012A01D323A192F4416C6A37F490123DF0BE4CD18B ] C:\Windows\System32\taskeng.exe
20:13:14.0745 0x1214  C:\Windows\System32\taskeng.exe - ok
20:13:14.0745 0x1214  [ 805A52C5AE26C28E88FDD9BCCFE6F312, 4FF28D3658C31722B7DD036DED9D544B14841C0E0B94D31A8EC5AB92128DA020 ] C:\Windows\System32\TSChannel.dll
20:13:14.0745 0x1214  C:\Windows\System32\TSChannel.dll - ok
20:13:14.0745 0x1214  [ 158117F3CF278F01C6F24E89E2141E81, F8178F093F09A6DB981019D2D0D514145B170D1377FE3C2479028D915663E28F ] C:\Windows\SysWOW64\FWPUCLNT.DLL
20:13:14.0745 0x1214  C:\Windows\SysWOW64\FWPUCLNT.DLL - ok
20:13:14.0760 0x1214  [ 9D8AB964CE511AF81207DF0E1205184C, 35DCB9F5DD59F97337B293EC55C5FADAA41806BA050592790338E34D843DA4B1 ] C:\Windows\System32\dwmcore.dll
20:13:14.0760 0x1214  C:\Windows\System32\dwmcore.dll - ok
20:13:14.0760 0x1214  [ C5213CB145C80C10369752D8EE412914, C1BF1B795EA59DFF38CD8C73B0F283ED141DEDFCE3757FDBF2D49F70221C540A ] C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
20:13:14.0760 0x1214  C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe - ok
20:13:14.0760 0x1214  [ 08DFDBD2FD4EA951DC46B1C7661ED35A, D926530C659DDAF80770663F46F1EFD94FFB4AAB475C4E3367CB531AF4A734E1 ] C:\Windows\SysWOW64\powrprof.dll
20:13:14.0760 0x1214  C:\Windows\SysWOW64\powrprof.dll - ok
20:13:14.0776 0x1214  [ CF318F60A84F15AF352439465A8D05F4, E713F7FD90EB5D8845F3407E94FFD17D893C59746330960A36645A989D8D45AF ] C:\Program Files\Windows Defender\MpSvc.dll
20:13:14.0776 0x1214  C:\Program Files\Windows Defender\MpSvc.dll - ok
20:13:14.0776 0x1214  [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] C:\Windows\System32\wbem\WMIsvc.dll
20:13:14.0776 0x1214  C:\Windows\System32\wbem\WMIsvc.dll - ok
20:13:14.0776 0x1214  [ 7372A79A5F906CD959A74A32E6FEDB1F, EE04BCDE413F8B2010659DE84BE5ECB94936D3F8D8AF768B271EED5B24BADF78 ] C:\Windows\SysWOW64\upnp.dll
20:13:14.0776 0x1214  C:\Windows\SysWOW64\upnp.dll - ok
20:13:14.0791 0x1214  [ 0255C22D99602534F15CBB8D9B6F152F, 43CD89D6CA56E0B633142F7C86DA9E072EE0723B5EBC4CE8CCBCA58C396ECF54 ] C:\Windows\System32\wbem\WinMgmtR.dll
20:13:14.0791 0x1214  C:\Windows\System32\wbem\WinMgmtR.dll - ok
20:13:14.0791 0x1214  [ A7582A70802D5B9F28ED3940F6A3E9ED, 18BA69BF8386610F5EDA4430991C22D895477EA8911B855C951F70AE03CEA8AB ] C:\Windows\System32\wbem\WmiDcPrv.dll
20:13:14.0791 0x1214  C:\Windows\System32\wbem\WmiDcPrv.dll - ok
20:13:14.0791 0x1214  [ A3F5E8EC1316C3E2562B82694A251C9E, F3DC6AA6A9D3B5BBC730668FC52C1D4BB5D515D404578BDDD3D4869A7ED58822 ] C:\Windows\System32\wbem\fastprox.dll
20:13:14.0791 0x1214  C:\Windows\System32\wbem\fastprox.dll - ok
20:13:14.0807 0x1214  [ 28E2231BD34A39C854BDF3923AB2FF86, A95179068F7B86E04F976B724F155DA86253B7F4414F43DBD95F2058282B99E4 ] C:\Windows\SysWOW64\ssdpapi.dll
20:13:14.0807 0x1214  C:\Windows\SysWOW64\ssdpapi.dll - ok
20:13:14.0807 0x1214  [ 3B9665D4B8C587A6014B9B8DFF5974A0, C616EB39D923954B484CEA863CA840E525366916286962D737D04FCCBD3610B8 ] C:\Windows\System32\wbem\wbemcore.dll
20:13:14.0807 0x1214  C:\Windows\System32\wbem\wbemcore.dll - ok
20:13:14.0807 0x1214  [ EE26D130808D16C0E417BBBED0451B34, 4886DCE4FAEF146A40BABD492A8000A2022FEA542A6135A9BAFD4CD09297B4E5 ] C:\Windows\System32\ntdsapi.dll
20:13:14.0807 0x1214  C:\Windows\System32\ntdsapi.dll - ok
20:13:14.0823 0x1214  [ ADF3E771F429940E762AC097F5A54EAF, C6083EFF964E56DAB13C1D9A925052110A57145AEF06D895EAB53FD882463436 ] C:\Program Files\Windows Defender\MpClient.dll
20:13:14.0823 0x1214  C:\Program Files\Windows Defender\MpClient.dll - ok
20:13:14.0823 0x1214  [ 087D8668C71634A3A3761135ABF16EEE, B7348A63299CFF4FFBF375E645A4850AE0F108D48D13AB25434CFAE7CF3D61FD ] C:\Windows\System32\wbem\esscli.dll
20:13:14.0823 0x1214  C:\Windows\System32\wbem\esscli.dll - ok
20:13:14.0838 0x1214  [ 718B6F51AB7F6FE2988A36868F9AD3AB, 76141B4E94C2766E2C34CEF523092948771A7893212EFADBE88D2171B85FF012 ] C:\Windows\System32\wbem\wbemsvc.dll
20:13:14.0838 0x1214  C:\Windows\System32\wbem\wbemsvc.dll - ok
20:13:14.0838 0x1214  [ 0143DB80DACFB7C2B5B7009ED9063353, 252885CF7C1BAB89B86908373546E5F5D674BEF7AACBDDCF321AD877CB9150A9 ] C:\Windows\System32\wbem\wmiutils.dll
20:13:14.0838 0x1214  C:\Windows\System32\wbem\wmiutils.dll - ok
20:13:14.0838 0x1214  [ 1CEDFE91F527858CACA1B08B04666BC0, B29D4545DAEBF28C07DF684C9AF0C5EE8DE5C723E81B8832188FA27106F1FC50 ] C:\Windows\SysWOW64\wbem\fastprox.dll
20:13:14.0838 0x1214  C:\Windows\SysWOW64\wbem\fastprox.dll - ok
20:13:14.0854 0x1214  [ 776AE0564F8B1C282E331FD95A1BDC5F, 601CFCA3922FFEA46A54AD323845A76A12FC6AF9FF64E9B0AE294FBB1AFCF4CB ] C:\Windows\SysWOW64\wbem\wbemsvc.dll
20:13:14.0854 0x1214  C:\Windows\SysWOW64\wbem\wbemsvc.dll - ok
20:13:14.0854 0x1214  [ E3E811471DE781900FF21C1FD84E941E, 2A47FF52D1D6480AAD1919382E783EA184BF926311F8C7E466FEBE9F6FB88FD6 ] C:\Windows\SysWOW64\ntdsapi.dll
20:13:14.0854 0x1214  C:\Windows\SysWOW64\ntdsapi.dll - ok
20:13:14.0854 0x1214  [ 37EBA86E2089B9E1FD98A3E98CC81554, 25510FD4101E18C7752ACAFF5B3327D7CBC10DAF5F377E2F16867F8DC90F1A50 ] C:\Windows\System32\drivers\WTSrv.exe
20:13:14.0854 0x1214  C:\Windows\System32\drivers\WTSrv.exe - ok
20:13:14.0869 0x1214  [ 63DF770DF74ACB370EF5A16727069AAF, B8F96336BF87F1153C245D19606CBD10FBE7CF2795BCC762F2A1B57CB7C39116 ] C:\Windows\SysWOW64\hid.dll
20:13:14.0869 0x1214  C:\Windows\SysWOW64\hid.dll - ok
20:13:14.0869 0x1214  [ 8F0DE4FEF8201E306F9938B0905AC96A, CA7153FE0C037D79FBF7CE0E090D741FB52BCCBBBD4CA505EF4849A0C4199F72 ] C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
20:13:14.0869 0x1214  C:\Program Files (x86)\Google\Update\GoogleUpdate.exe - ok
20:13:14.0869 0x1214  [ 2BACD71123F42CEA603F4E205E1AE337, 1FEF20554110371D738F462ECFFA999158EFEED02062414C58C1B61C422BF0B9 ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
20:13:14.0869 0x1214  C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE - ok
20:13:14.0885 0x1214  [ 914219418DD5A9A996906E5FF9D5065F, 58B52837C343135385A84AF42CC085AB2DB5E41BE7DABCC6636E54B90335EA8F ] C:\Windows\SysWOW64\WinTab32.dll
20:13:14.0885 0x1214  C:\Windows\SysWOW64\WinTab32.dll - ok
20:13:14.0885 0x1214  [ 93812FDC01AA864195816CD814445F95, E5CB2576DA2905177AFD342DBE63E17CF626F93F430DEBC55155C18C60166BEE ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\SQMAPI.DLL
20:13:14.0885 0x1214  C:\Program Files\Common Files\Microsoft Shared\Windows Live\SQMAPI.DLL - ok
20:13:14.0885 0x1214  [ B837D1528CE2E3CB79F09496BC08DDC6, ACD54CE61CFE94F23DC283537AD8FFBEB3D6041BD30317B60BA7A10FCB240A27 ] C:\Windows\System32\SensApi.dll
20:13:14.0885 0x1214  C:\Windows\System32\SensApi.dll - ok
20:13:14.0901 0x1214  [ 9689A9C7F7C2A1A423CDA2C3B43FFF65, 914AD22D98975578BC14D821F72E8DFCE24F2092F9C299D24EBBAF5408FE8B8B ] C:\Windows\System32\wer.dll
20:13:14.0901 0x1214  C:\Windows\System32\wer.dll - ok
20:13:14.0901 0x1214  [ 76548F7B818881B47D8D1AE1BE9C11F8, 8F1356B07A6A55746FC71B6DB0322128941AE890850196F2B19BC01E6FC9B41C ] C:\Windows\System32\drivers\srv2.sys
20:13:14.0901 0x1214  C:\Windows\System32\drivers\srv2.sys - ok
20:13:14.0901 0x1214  [ 1A3F1BC1E48804867CA30469442DA00E, 55A1617496E2602F472F0211D709401B6948232767E53F60B5EF7F0DF26E403C ] C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe
20:13:14.0901 0x1214  C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe - ok
20:13:14.0916 0x1214  [ 7523E7D2AB0C49585C0C199264B2BD73, C8E2E0DE2DB7CBC3DD86D4A4A7CB36848B38F8D108DA260C4165F154297BE6DA ] C:\ProgramData\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
20:13:14.0916 0x1214  C:\ProgramData\Microsoft\IdentityCRL\production\ppcrlconfig600.dll - ok
20:13:14.0916 0x1214  [ 6D9BE951A06135ADCD7ADDD72F39E306, 3965321CD1C62BF4E54E270C36E5D56FE550D5EE60A8623BA117C0E901C27049 ] C:\Windows\System32\msxml3.dll
20:13:14.0916 0x1214  C:\Windows\System32\msxml3.dll - ok
20:13:14.0916 0x1214  [ 128DD9AF8640DBCC711940903C8B554F, 46E9715F3CD09F32FBEAA5379991E9E7DACCBD2407C2D061FDA3A04F05108133 ] C:\Windows\SysWOW64\mscoree.dll
20:13:14.0916 0x1214  C:\Windows\SysWOW64\mscoree.dll - ok
20:13:14.0932 0x1214  [ F9D908DE6B166DAC9B89BF62FA291CE8, D0A918AD60221623BB0278EA94CD6938744617FDBB2054968AFAFC2940648F02 ] C:\Program Files\Bonjour\mdnsNSP.dll
20:13:14.0932 0x1214  C:\Program Files\Bonjour\mdnsNSP.dll - ok
20:13:14.0932 0x1214  [ AFB5B500AD69E24ED1BC15D1161641EF, C8EE01224FA8020DAE6F9BCE2FD88EDC2441164393ED6E68DAA1EA0B8190276F ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL
20:13:14.0932 0x1214  C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL - ok
20:13:14.0932 0x1214  [ 88351B29B622B30962D2FEB6CA8D860B, A16CAD7D94C1C9807083BB36E9B4C3C14E6482C4CA2BDFACBCC86E737DDCE42E ] C:\Windows\System32\rasadhlp.dll
20:13:14.0932 0x1214  C:\Windows\System32\rasadhlp.dll - ok
20:13:14.0947 0x1214  [ 8CFACC72081C21519676BF4AAA1A88A9, 2B626587E9DCF631E403709314B141D87738965CBD407CED4694C611A79E1D2F ] C:\Windows\System32\localspl.dll
20:13:14.0947 0x1214  C:\Windows\System32\localspl.dll - ok
20:13:14.0947 0x1214  [ F11A57E91FDAECFB41A5CB21EB1EBC8E, 904DA963F2274ADF521660E3131DAC781E59C6FAEB393E57802A3B5638C09283 ] C:\Windows\System32\dssenh.dll
20:13:14.0947 0x1214  C:\Windows\System32\dssenh.dll - ok
20:13:14.0947 0x1214  [ 3285481F5C12305CA104A6C493CA5A0B, ADB39B15D26A954B0F347C7BAFCC76DE5E3CF3CF05736E8987E0832AA7F8563C ] C:\Windows\System32\spoolss.dll
20:13:14.0947 0x1214  C:\Windows\System32\spoolss.dll - ok
20:13:14.0963 0x1214  [ 33CC7FFA41F6157592E1578BD253F30E, 03D3473A02B8A8D9D8EA74D588552FB7972600902188659832FBD2CF91B594FC ] C:\Windows\System32\PrintIsolationProxy.dll
20:13:14.0963 0x1214  C:\Windows\System32\PrintIsolationProxy.dll - ok
20:13:14.0963 0x1214  [ C88DEBB737389D511DB44950B6421D17, 3274DCB1B4C3027EA65907893A7E88254D20292AF4042486393F6C71FF6B87DE ] C:\Windows\System32\CNMLM7I.DLL
20:13:14.0963 0x1214  C:\Windows\System32\CNMLM7I.DLL - ok
20:13:14.0979 0x1214  [ 20BEB8C403C6E28C9B13644787F5177D, D3E2DAC2A8BEFC10C1F16FD3B297BF5551254D4DB1C791CA795AA083EADA08F9 ] C:\Windows\System32\FXSMON.dll
20:13:14.0979 0x1214  C:\Windows\System32\FXSMON.dll - ok
20:13:14.0979 0x1214  [ 93518C6EDE0B61BCBD02BDB02BD05FEE, 3637F5E5F15093AFB501EE910368CF900B422AC22669391FFA4198BBAE6F8FCB ] C:\Windows\System32\snmpapi.dll
20:13:14.0979 0x1214  C:\Windows\System32\snmpapi.dll - ok
20:13:14.0979 0x1214  [ 32A3C8600AF124CBAAD845F13CFAE3CB, F36FE9E57D5C509FEECE890F9F8717F9CC6F762E32AE0B7DB7E0153370CE0B9D ] C:\Windows\System32\tcpmon.dll
20:13:14.0979 0x1214  C:\Windows\System32\tcpmon.dll - ok
20:13:14.0994 0x1214  [ AD7C70077D4C81558E909D34EF6B995E, 41F3A6166FFC8BBCC952BB06F9639B6B6B016970971E1E249917B305F6DD45C8 ] C:\Windows\System32\wsnmp32.dll
20:13:14.0994 0x1214  C:\Windows\System32\wsnmp32.dll - ok
20:13:14.0994 0x1214  [ DF72A9936D0C3F517083119648814B09, 6BA4DCAC2F55A393A266ED0B2AF92B38141654D1666E3E143D85BBAF21663E1E ] C:\Windows\System32\usbmon.dll
20:13:14.0994 0x1214  C:\Windows\System32\usbmon.dll - ok
20:13:14.0994 0x1214  [ A1D7E3ADCDB07DDB6F423862DCB1A52B, 6191C33D2AE090F6F055D6AE211096CE8F003EC5518A5333EE1E376052176BAB ] C:\Windows\System32\WSDMon.dll
20:13:14.0994 0x1214  C:\Windows\System32\WSDMon.dll - ok
20:13:15.0010 0x1214  [ 4581716B4BF76ACFD8E167EB0B26D82A, 39D822527114EEED68044CCE4D542767F53978D9E0A7F72638F1CA9A016DE13B ] C:\Windows\System32\fdPnp.dll
20:13:15.0010 0x1214  C:\Windows\System32\fdPnp.dll - ok
20:13:15.0010 0x1214  [ C3072FA9FC6971759D504C26C29A1C4F, DAA50BA333E5BB14D716C555B6D3BF003DF7805AB4605BCDE59A121510D5D494 ] C:\Windows\System32\spool\prtprocs\x64\CNMPD7I.DLL
20:13:15.0010 0x1214  C:\Windows\System32\spool\prtprocs\x64\CNMPD7I.DLL - ok
20:13:15.0010 0x1214  [ 7EDB2BF840ECB14D6E6B11C035708719, 42633433A5BB105A18BF2B10F28C9A801B08E4321757530646FBD96227A3AB94 ] C:\Windows\System32\spool\prtprocs\x64\winprint.dll
20:13:15.0010 0x1214  C:\Windows\System32\spool\prtprocs\x64\winprint.dll - ok
20:13:15.0025 0x1214  [ 2332BACC2AB09119A14637DE0CB30147, 63EE54133AADF1D48A588588E32A1F9858AD8F86D2746924CF29A37FFB60CD60 ] C:\Windows\System32\win32spl.dll
20:13:15.0025 0x1214  C:\Windows\System32\win32spl.dll - ok
20:13:15.0025 0x1214  [ 17EAB1AEA937EFFCD107EFBA94FEDB34, 544CE9BFE2291D985FDD3505ADDE42478C8C69D8B116B54F531DD0D2D72D160D ] C:\Windows\System32\inetpp.dll
20:13:15.0025 0x1214  C:\Windows\System32\inetpp.dll - ok
20:13:15.0025 0x1214  [ 2A46FFE841EC43001D5A293A54DB34DE, 8ED96FA434B48B0C1772195ED477536960C84CAFCE9A9A43543DFFA85483B00D ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
20:13:15.0025 0x1214  C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE - ok
20:13:15.0041 0x1214  [ C5148DDA65E361A78F6372CCA637A5EE, 829D88189B61C8D5AC2EEE4DC49D272F3058051B6510CF0ABE0F52D836C4E990 ] C:\Windows\System32\d3d10_1.dll
20:13:15.0041 0x1214  C:\Windows\System32\d3d10_1.dll - ok
20:13:15.0041 0x1214  [ FE130D15D71AC16EFFDF1397F2AF1653, 36E051C55BF2DDD18E04F75B06A24A68F36C3C24F7DF551A654ABC55595781E4 ] C:\Windows\System32\esent.dll
20:13:15.0041 0x1214  C:\Windows\System32\esent.dll - ok
20:13:15.0041 0x1214  [ 7C0C964394EEEC9720388CD5DA1F5323, C92394B1752DDA4CC34A9B743423E2F061EEF168C3B2B6B9D35465CAFB5D76C8 ] C:\Windows\System32\d3d10_1core.dll
20:13:15.0041 0x1214  C:\Windows\System32\d3d10_1core.dll - ok
20:13:15.0057 0x1214  [ D95DB5C915C001F78709C17285109BDC, 2A538725F8E2E0A394CA58CD262C5159BCA59B12C591EC59F2E052FDAA21F99F ] C:\Windows\System32\dxgi.dll
20:13:15.0057 0x1214  C:\Windows\System32\dxgi.dll - ok
20:13:15.0057 0x1214  [ D0AEFFE30104F2CE07F95F8DCF76F8B9, 3BF5681F9489DADCC7609F36FB97B420C10C30C739E28E6D86A1129A1E0177CB ] C:\Windows\System32\atiuxp64.dll
20:13:15.0057 0x1214  C:\Windows\System32\atiuxp64.dll - ok
20:13:15.0057 0x1214  [ 0AB34456654C283DAA13B8D2BA21439B, 4B70FC5195DE39564E951C8542020BA3D4257E3D4488F69825F67A6099CB7549 ] C:\Windows\System32\wbem\repdrvfs.dll
20:13:15.0057 0x1214  C:\Windows\System32\wbem\repdrvfs.dll - ok
20:13:15.0072 0x1214  [ F8E058D17363EC580E4B7232778B6CB5, 02352919F349C57930A0B032FBDC45327FB473D310DE7AC721F4694FDE7D21FB ] C:\Windows\System32\iphlpsvc.dll
20:13:15.0072 0x1214  C:\Windows\System32\iphlpsvc.dll - ok
20:13:15.0072 0x1214  [ 79C7CFAEA6879A8C1A1E8B5FFE8983AA, BE7B559C8A33E7F8B19D4E7B70ED2257C49CB1FE7B944F63ADBAE1D31E0A1E93 ] C:\Windows\SysWOW64\dbghelp.dll
20:13:15.0072 0x1214  C:\Windows\SysWOW64\dbghelp.dll - ok
20:13:15.0072 0x1214  [ 48A6CA43A5C921C465F70D9B42B3EF1A, A618BCB175D46C0C088CEA98DC4DA8CB255F1D3B0ED72BBCC168AECD07B9F03F ] C:\Windows\System32\sqmapi.dll
20:13:15.0072 0x1214  C:\Windows\System32\sqmapi.dll - ok
20:13:15.0088 0x1214  [ 7B38D7916A7CD058C16A0A6CA5077901, 3F6DD990E2DA5D3BD6D65A72CBFB0FE79EB30B118A8AD71B6C9BB5581A622DCE ] C:\Windows\System32\wdscore.dll
20:13:15.0088 0x1214  C:\Windows\System32\wdscore.dll - ok
20:13:15.0088 0x1214  [ 3B367397320C26DBA890B260F80D1B1B, 50BBE71B4380B5E86E197AF86F5C08266DD6B12344BA4ABDEA604B8C774C4147 ] C:\Windows\System32\hnetcfg.dll
20:13:15.0088 0x1214  C:\Windows\System32\hnetcfg.dll - ok
20:13:15.0088 0x1214  [ 6E03C9E362389A768E6C240933352D11, 7A08805635262E0F104DC0E8C3D7CC7E0C941F45EE5C5DC6DD05FC7F2BAD7E91 ] C:\Windows\System32\nci.dll
20:13:15.0088 0x1214  C:\Windows\System32\nci.dll - ok
20:13:15.0103 0x1214  [ A24D34AFFB187143DEA7CCB70261A9E4, F3617C5135110D977830AE61EE6FEB1D5CE8A2BECA0BB16158CA5FB52F28EDA4 ] C:\Windows\System32\atidxx64.dll
20:13:15.0103 0x1214  C:\Windows\System32\atidxx64.dll - ok
20:13:15.0103 0x1214  [ 6FA41E0C86EF049A12C05CA4BBA8F9AF, D18758C5A33B4C596EA6E87A16B53D7CF68EA9586C7F11C9518577BC8D7CBC9B ] C:\Windows\SysWOW64\perfos.dll
20:13:15.0103 0x1214  C:\Windows\SysWOW64\perfos.dll - ok
20:13:15.0103 0x1214  [ D06A0B6260D9B6E5C5F6C800E2574267, 10168F83DFAB370D8851BB779E24896A126032B088D9FA2725905EE1D9F422C3 ] C:\Windows\System32\ntprint.dll
20:13:15.0103 0x1214  C:\Windows\System32\ntprint.dll - ok
20:13:15.0119 0x1214  [ 6D6B5D52BB81F82F5D0103E6175D1F4F, 14DE1E4C28FC5F8CFFA7D925561DC1F237D55DD663836E20AA4D7485B01C261D ] C:\Program Files (x86)\Google\Update\1.3.21.165\goopdate.dll
20:13:15.0119 0x1214  C:\Program Files (x86)\Google\Update\1.3.21.165\goopdate.dll - ok
20:13:15.0119 0x1214  [ 4B8DD8541C0E26602005DD0137333615, 41B348205576E72C628DC471F155733DE361DE60911B2726EC2490EF666CCAEF ] C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll
20:13:15.0119 0x1214  C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll - ok
20:13:15.0135 0x1214  [ 49E5753D923F1AC63B22D3DCB0B47E00, 14CEC0BF5F625FF839A8D79B4A6B7C4AC0CBB705FD197C6B7FF8617C6C3E34FE ] C:\Windows\System32\uDWM.dll
20:13:15.0135 0x1214  C:\Windows\System32\uDWM.dll - ok
20:13:15.0135 0x1214  [ 82BC97E5793DEF69691AAD5AB953A200, E589D638C8FEAA88EA9149E463C675C36FEA4310923C47C095B1EA50B2DC52F6 ] C:\Windows\System32\wbem\WmiPrvSD.dll
20:13:15.0135 0x1214  C:\Windows\System32\wbem\WmiPrvSD.dll - ok
20:13:15.0135 0x1214  [ D41FEBD098234F02485A4EA98D4730A4, 462DC8168C444F35B43BA3B8F7D77734665D84F1C6D25CAD7391C0145961628F ] C:\Windows\System32\ncobjapi.dll
20:13:15.0135 0x1214  C:\Windows\System32\ncobjapi.dll - ok
20:13:15.0150 0x1214  [ 6F40D6FB05E0C1E5402812B426971AF0, E41F138F0F2DB057F8DBB1587237C6FA8A2059B3D64EC894D1DC492A18DBBDED ] C:\Windows\System32\wbem\wbemess.dll
20:13:15.0150 0x1214  C:\Windows\System32\wbem\wbemess.dll - ok
20:13:15.0150 0x1214  [ 521202AA6F2B74FCCC6BC7E162109D71, 3B2F41EFDA68C82D9D50AF329AC9B403C806CBE74F87917CDB350E542ADDA017 ] C:\Windows\System32\wbem\unsecapp.exe
20:13:15.0150 0x1214  C:\Windows\System32\wbem\unsecapp.exe - ok
20:13:15.0150 0x1214  [ F1317678AC2FBA9F640279290B2E2988, E0628CFB4EF6E4D2A87A6B8BD047F0BA8B3A33FF15609F4D0EE2B45C89FEEBAD ] C:\Windows\SysWOW64\msi.dll
20:13:15.0150 0x1214  C:\Windows\SysWOW64\msi.dll - ok
20:13:15.0166 0x1214  [ ADD9D33D685DFADDFAD5AFB42CF31A70, 8E0D2D0CEFC59548BED08D36D55865D8633E1512AE81D93F728F3D9631A3CC6F ] C:\Windows\SysWOW64\cscapi.dll
20:13:15.0166 0x1214  C:\Windows\SysWOW64\cscapi.dll - ok
20:13:15.0166 0x1214  [ CF7B0E597C1F34E528285495721DEEE9, 59D8590D487F31DF38E389DF41D96951D14FC759E14F683465C17C0CAABD568F ] C:\Program Files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler.exe
20:13:15.0166 0x1214  C:\Program Files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler.exe - ok
20:13:15.0166 0x1214  [ 0DC0DE2966A6DBA4CFBF6639DF44F5BA, 815055681F21099CC227124E5A2F971F0E3C2FD0917DC40E78283F139766F25F ] C:\Program Files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler64.exe
20:13:15.0166 0x1214  C:\Program Files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler64.exe - ok
20:13:15.0181 0x1214  [ 0089563F324FA784DA849D6A636141E0, E8B242102082DA4387063EF10167531EA020C6E0657DA71ADC1A0282BD3762AA ] C:\Windows\SysWOW64\mstask.dll
20:13:15.0181 0x1214  C:\Windows\SysWOW64\mstask.dll - ok
20:13:15.0181 0x1214  [ 92F8656D0167412A2379517C3F704FFB, 86A949841CBD351BBCD61B3F4497A7135E8F5118864FCA2BCD5555E04D747D59 ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll
20:13:15.0181 0x1214  C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll - ok
20:13:15.0181 0x1214  [ 64D757051B5B273E55C93E4503EA4F3E, 64DE8773FEF4B1158AF23C9EDCFF22F89A32BC6E47CB833D1CB5C2C9DBE5DD75 ] C:\Windows\System32\wbem\WmiPrvSE.exe
20:13:15.0181 0x1214  C:\Windows\System32\wbem\WmiPrvSE.exe - ok
20:13:15.0197 0x1214  [ 220159496484D34009DE71CA1A68E0D4, 94BD3DEB4E84F95D80BE5775E5A612EFF181ECB212FB668674C67AD19194DE69 ] C:\Windows\System32\wbem\NCProv.dll
20:13:15.0197 0x1214  C:\Windows\System32\wbem\NCProv.dll - ok
20:13:15.0197 0x1214  [ EE24C42561D40F7AD7C2A7A460287090, 9E6C22B60EA756FE53BC189412C86F64DF4C5B510C1915A3EBC5A537F0C32256 ] C:\Windows\System32\wbem\cimwin32.dll
20:13:15.0197 0x1214  C:\Windows\System32\wbem\cimwin32.dll - ok
20:13:15.0197 0x1214  [ 031C6782F2D50336FC2C72F8D14A4C13, A548A1360D5F30771DB5E3E9391965B3FF2E89B146B1595583009852A6FA73E0 ] C:\Windows\System32\wbem\wmiprov.dll
20:13:15.0197 0x1214  C:\Windows\System32\wbem\wmiprov.dll - ok
20:13:15.0213 0x1214  [ 5D89D063A4CB036C258685C8E057E768, DBCE703710BDB4C0284F36B16D9E80EC36BBAD83E8854EA3DBA580D411F70470 ] C:\Windows\System32\framedynos.dll
20:13:15.0213 0x1214  C:\Windows\System32\framedynos.dll - ok
20:13:15.0213 0x1214  [ 944CD511BE9B0E55B8458842D60C738C, B908493505E0A3BEE659CE4FC75424641C22E99C0F866D248EFF8B7B4B400E47 ] C:\Program Files (x86)\Lavasoft\Ad-Aware\CEAPI.dll
20:13:15.0213 0x1214  C:\Program Files (x86)\Lavasoft\Ad-Aware\CEAPI.dll - ok
20:13:15.0213 0x1214  [ A78BEB06BCA7FD37034FC910A55231A0, 6F1DCF68EFBF6CE32722C1DB918035903AAA1D6E52C828E9175BB9B85E0F2E9C ] C:\Program Files (x86)\Lavasoft\Ad-Aware\VipreBridge.dll
20:13:15.0213 0x1214  C:\Program Files (x86)\Lavasoft\Ad-Aware\VipreBridge.dll - ok
20:13:15.0228 0x1214  [ 06EBB2B3F1588E6182C67F6D95F151EA, 5D80AE7F6193BD6345796348CB18BA8ADD8BBCEB46B7BD1853290D3C0F740D0B ] C:\Program Files\COMODO\COMODO Internet Security\platform.dll
20:13:15.0228 0x1214  C:\Program Files\COMODO\COMODO Internet Security\platform.dll - ok
20:13:15.0228 0x1214  [ 86BF40F2AB08BE8B358738A04715B55A, 26475B631DD9D15886263FFD54F957B16CECCE5B97BC383D418854AAB4BF0A63 ] C:\Program Files (x86)\Lavasoft\Ad-Aware\SBTE.dll
20:13:15.0228 0x1214  C:\Program Files (x86)\Lavasoft\Ad-Aware\SBTE.dll - ok
20:13:15.0244 0x1214  [ 6D8F59648536E150DC5543E439281AE3, DF4A498EC2FE75E03B572D09E067B4E068EDF676C65F8885202C60DAAFC7D7FC ] C:\Program Files\COMODO\COMODO Internet Security\scanners\common.cav
20:13:15.0244 0x1214  C:\Program Files\COMODO\COMODO Internet Security\scanners\common.cav - ok
20:13:15.0244 0x1214  [ 40CAEEE0EAF1B8569F7C8DF6420F2CB9, E18D66455D00A6D2A2D7CC0833C233FE8A6DD910B59D6B5B5F82EF91450858DF ] C:\Windows\SysWOW64\sfc.dll
20:13:15.0244 0x1214  C:\Windows\SysWOW64\sfc.dll - ok
20:13:15.0244 0x1214  [ 84799328D87B3091A3BDD251E1AD31F9, F85521215924388830DBB13580688DB70B46AF4C7D82D549D09086438F8D237B ] C:\Windows\SysWOW64\sfc_os.dll
20:13:15.0244 0x1214  C:\Windows\SysWOW64\sfc_os.dll - ok
20:13:15.0259 0x1214  [ A1155047AFA986EED03D1D87CF56A08F, 522CF2DA2EDE1BFBD5A42E701F026B716FCC8C15B84C1533F567FA4E8C610D10 ] C:\Program Files (x86)\Lavasoft\Ad-Aware\Vipre.dll
20:13:15.0259 0x1214  C:\Program Files (x86)\Lavasoft\Ad-Aware\Vipre.dll - ok
20:13:15.0259 0x1214  [ 73EC75C38053596DBE594D63E4CD3E79, D4E4703D3DADEC55E0B64E0ABC44C1326DA32DAF95FDF2FF07407724987BF920 ] C:\Program Files\COMODO\COMODO Internet Security\signmgr.dll
20:13:15.0259 0x1214  C:\Program Files\COMODO\COMODO Internet Security\signmgr.dll - ok
20:13:15.0259 0x1214  [ 8E79090CB0987CA102E845341E052537, F271A938EFD249DD8524F32FE3858F0AF919383B31B3E238AAB935A26538AF20 ] C:\Windows\SysWOW64\vdmdbg.dll
20:13:15.0259 0x1214  C:\Windows\SysWOW64\vdmdbg.dll - ok
20:13:15.0275 0x1214  [ 689A85364D1FD21344852EC4694AE984, 5C437255507DA3C00F77DA00EA5AED178E0550CD482BE4BCB3E04046A89E00B9 ] C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\vcore.dll
20:13:15.0275 0x1214  C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\vcore.dll - ok
20:13:15.0275 0x1214  [ D14F75D3DC230E73186C255F6E7FAAF4, 680D4D6766DE8600EAE50E1C11AF06F96596DC9E6EF71FA2D4395CA55ACED679 ] C:\Program Files (x86)\Avira\AntiVir Desktop\rctext.dll
20:13:15.0275 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\rctext.dll - ok
20:13:15.0275 0x1214  [ 48A80D4BF879FD33EC999A88A0EC896F, E35AA342CB960CBE32C38F4B1A96AC3E5FA53832ED3B5012C0D0ECFCFCFA5F91 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avpref.dll
20:13:15.0275 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\avpref.dll - ok
20:13:15.0291 0x1214  [ CE71B9119A258EDD0A05B37D7B0F92E3, D9310C5BBFE089B8C81E259C462EC1E6D7A7A87FA59FC1F174ED5C58D409AE7A ] C:\Windows\SysWOW64\bcrypt.dll
20:13:15.0291 0x1214  C:\Windows\SysWOW64\bcrypt.dll - ok
20:13:15.0291 0x1214  [ C20FF1A17726C357461A7AC5B3BFC3AD, 970558642CC14837B77B48257E3171ACC84466888875927314ACD6D79176F967 ] C:\Windows\SysWOW64\ncrypt.dll
20:13:15.0291 0x1214  C:\Windows\SysWOW64\ncrypt.dll - ok
20:13:15.0291 0x1214  [ E8449FE262D7406BCB2AC2A45C53EC5F, 6C118C9FB26404D1943824CF3990F36E12986547FFACB7CC0DF975A913065D78 ] C:\Windows\SysWOW64\bcryptprimitives.dll
20:13:15.0306 0x1214  C:\Windows\SysWOW64\bcryptprimitives.dll - ok
20:13:15.0306 0x1214  [ 1097F3035BAF46CED8B332B3564C5108, C69781683CA963A1335780DABBBC60E2C3CEF0888738D3425D358D12E8D0AF58 ] C:\Windows\SysWOW64\gpapi.dll
20:13:15.0306 0x1214  C:\Windows\SysWOW64\gpapi.dll - ok
20:13:15.0306 0x1214  [ 1F778C34C751E1B585E4FC66659BA904, BB5C4CD3168D40FA2F5A1D0BC3CE2C4028433BA265672983E878BF9FBC8423A8 ] C:\Windows\SysWOW64\cryptnet.dll
20:13:15.0306 0x1214  C:\Windows\SysWOW64\cryptnet.dll - ok
20:13:15.0322 0x1214  [ 7BF5EA753D4CC056B9462A02AC51B160, 34AC885FA8C9D982D3A9FC139BEB031320FDD8AFA06FF5DDDDC8BA4CA1F09EEF ] C:\Windows\SysWOW64\xmllite.dll
20:13:15.0322 0x1214  C:\Windows\SysWOW64\xmllite.dll - ok
20:13:15.0322 0x1214  [ 1D570D48487747D617ADAE280D9EDCED, 1F178885E0C9D2F78F2E53ECA7D4874843AEF68CA0A04AE8FE459F1ABCF36497 ] C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\remediation.dll
20:13:15.0322 0x1214  C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\remediation.dll - ok
20:13:15.0322 0x1214  [ 7F87FEBFBCEE844A080A76C83A1B013F, E851CECF86C2032F0CAFFED7AA5C646529524A3FA22CE892987C14900B87F814 ] C:\Windows\SysWOW64\schedcli.dll
20:13:15.0322 0x1214  C:\Windows\SysWOW64\schedcli.dll - ok
20:13:15.0337 0x1214  [ D1B01B7933F26211E80EAC667A909E1B, 9515F423FC74D84CB9B8CFDCB94017697D85ADBDFCECC9BE70D755D253EA7F27 ] C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\patchw32.dll
20:13:15.0337 0x1214  C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\patchw32.dll - ok
20:13:15.0337 0x1214  [ 77A0AC6A3031FEFCBE2B7A52F4E8C0D3, 37CCE836A933AA4E3D7ECF1E2E5F3351CFE0932783664E7375026B269DF8835B ] C:\Program Files\COMODO\COMODO Internet Security\scanners\fileid.cav
20:13:15.0337 0x1214  C:\Program Files\COMODO\COMODO Internet Security\scanners\fileid.cav - ok
20:13:15.0337 0x1214  [ B598F178B9454BA8700EC7FA16FD4284, 6E74970054DBC57A438F08109698C22BB91EB644AA2EEDAFD49126D4B8139F17 ] C:\Program Files\COMODO\COMODO Internet Security\scanners\pkann.dll
20:13:15.0337 0x1214  C:\Program Files\COMODO\COMODO Internet Security\scanners\pkann.dll - ok
20:13:15.0353 0x1214  [ 6A9178ADC5A029992399B76AE5E5E96E, BC2A75ED89D679CA682F02ACC85FEB8BBB65796F572CAAA0AF82308015C310FF ] C:\Program Files\COMODO\COMODO Internet Security\scanners\mach32.dll
20:13:15.0353 0x1214  C:\Program Files\COMODO\COMODO Internet Security\scanners\mach32.dll - ok
20:13:15.0353 0x1214  [ DDABE79024A488DBBB7DE369FA22A93D, 58325FDDC94473A6819B67CE645CF0A39AFCE9AE619626B5FD8A8089C790D40D ] C:\Program Files\COMODO\COMODO Internet Security\scanners\white.cav
20:13:15.0353 0x1214  C:\Program Files\COMODO\COMODO Internet Security\scanners\white.cav - ok
20:13:15.0369 0x1214  [ 7A5D902D7C2FBA5DBE9D38043EBDA71B, BDF6B9CB07F7D515300A6DA8366512FBFF4AACAF3BD0C1D4CB2237BC0F00AFD8 ] C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\lgpl.dll
20:13:15.0369 0x1214  C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\lgpl.dll - ok
20:13:15.0369 0x1214  [ 111DC2D051E0342BC7F0C1D03A137218, A5357013ECD70373D74BF39CBE8B0C90129DF4BC7022F256423D2F60B137F943 ] C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\lib7zip.dll
20:13:15.0369 0x1214  C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\lib7zip.dll - ok
20:13:15.0369 0x1214  [ 842AD215765FC98DA2D5A8C095145913, 02E03D6DE78A663F69F566520A7E44AB01ED7D84C7E5EE511E19452F2A765CDA ] C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libBase64.dll
20:13:15.0369 0x1214  C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libBase64.dll - ok
20:13:15.0384 0x1214  [ 0CB64868F9305952CACAD3652BEF0A43, 6F2E92A6C32EFEA504DCBBE7AC8DCF9CE29CBC077F8C43245A5A3AE552A8C6A6 ] C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libCHM.dll
20:13:15.0384 0x1214  C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libCHM.dll - ok
20:13:15.0384 0x1214  [ 557B474AC8470AE8C33849841D4DA9EE, E0DB6F1EA1E703C748E40626CFFF8A64AFF7C4E04CE100549505C2810D6A2042 ] C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libEmail.dll
20:13:15.0384 0x1214  C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libEmail.dll - ok
20:13:15.0384 0x1214  [ AD8E274B2FEC4C6A1AA89649C984321A, AABD1CC6838209F1C4D855AD214431CC322B79265D93F2EECE2A722200961471 ] C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libMachoUniv.dll
20:13:15.0384 0x1214  C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libMachoUniv.dll - ok
20:13:15.0400 0x1214  [ CE744C60C2CE6798A8BA4074B92FA6C1, 4BE8DF43F4F7A8FFFBD10DF727733028219937E4A81D42D0BCD819CF15B6E092 ] C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libMsCab.dll
20:13:15.0400 0x1214  C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libMsCab.dll - ok
20:13:15.0400 0x1214  [ 4BB151B6D7305FDA79D5090838B7D359, D53EC3E96814E58F01CF2A8467DCA35FBCF67064CB791E698CB1E11F24C22D1C ] C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libMsi.dll
20:13:15.0400 0x1214  C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libMsi.dll - ok
20:13:15.0400 0x1214  [ 8EF09764CE629095A2CB1DEA229EEB4D, 9A9B9F49550DD3728F0A8A3D334FC63E71D96148CA49186D7A421CBFB66D709D ] C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libNSIS.dll
20:13:15.0415 0x1214  C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libNSIS.dll - ok
20:13:15.0415 0x1214  [ 92168320E485E0A7143CFB807C98D6F5, 8564AA978A93D8A60FE842574DB6680BD136EB27239BEA5A19CD751F1BE7CA08 ] C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libOleA.dll
20:13:15.0415 0x1214  C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libOleA.dll - ok
20:13:15.0415 0x1214  [ 3AF9D09DF10A321C575DA6080A369AAD, C104BB955800E1E73C13C228908067DF77F757BF71FDE17ED1B3237741BA52BC ] C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libRar.dll
20:13:15.0415 0x1214  C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libRar.dll - ok
20:13:15.0431 0x1214  [ 90A7E1E56F2E8EBE4D3A5FE630B35DD6, 854DFF9EE57FD6FE5BC55A50ED5FE0197FBC1C55E22ED33CBFA7A8595B9AC17E ] C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libRTF.dll
20:13:15.0431 0x1214  C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libRTF.dll - ok
20:13:15.0431 0x1214  [ 936EFCE14911D207BBCA80200D9566CD, DD6A28A3F0976D6795C87FEFB96C9DC49DDA950ACD2A82F72F40299E936B1F78 ] C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libtd.dll
20:13:15.0431 0x1214  C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libtd.dll - ok
20:13:15.0431 0x1214  [ 6981AB9206B664F552B46FAA05BE3823, 5BC55F78972858BDA6F25D783956E348F3C995B62AE23D1C871F8733919C3F5E ] C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libVvs.dll
20:13:15.0431 0x1214  C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libVvs.dll - ok
20:13:15.0447 0x1214  [ F5C8AC95FE584B55A4C06AD69515FF5D, 289237D9CC447369CE0E88A4FC94EA22A627EA1232049AC21ACC40F4F191AAD4 ] C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libZip.dll
20:13:15.0447 0x1214  C:\ProgramData\Lavasoft\Ad-Aware\Defs\Extended\libZip.dll - ok
20:13:15.0447 0x1214  [ 3B95D2A74EEDAA913547350FE5DC25ED, 84D3E277139E5019F1BA9B44CA3AB2615A8278B3DBE950C311313B411EEDF969 ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\clr.dll
20:13:15.0447 0x1214  C:\Windows\Microsoft.NET\Framework\v4.0.30319\clr.dll - ok
20:13:15.0447 0x1214  [ E5F7C30EDF0892667933BE879F067D67, E4BA45F4C6C74A0CDE9B12A00C91E2F5EF83536C89C9053DEC507CBB4F130A12 ] C:\Windows\SysWOW64\msvcr100_clr0400.dll
20:13:15.0447 0x1214  C:\Windows\SysWOW64\msvcr100_clr0400.dll - ok
20:13:15.0462 0x1214  [ 193A3325FB26FA391D80DA83FB0B40B8, 9143CCD542189073D272B9405D22FDFC8B6513A48832538E714112E78D734768 ] C:\ProgramData\Lavasoft\Ad-Aware\Defs\thorax.aaw
20:13:15.0462 0x1214  C:\ProgramData\Lavasoft\Ad-Aware\Defs\thorax.aaw - ok
20:13:15.0462 0x1214  [ D4E6766277947411B9D6B5EA975A3784, F64B1AEBE568646253CCA4B9D39ADE07C0F32D1523D5D3084E994409EF3009CE ] C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\90842cf922c71c82718ba71d5801c30c\mscorlib.ni.dll
20:13:15.0462 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\90842cf922c71c82718ba71d5801c30c\mscorlib.ni.dll - ok
20:13:15.0462 0x1214  [ E91D3E5AC3CCD9A3D00C40DE43AB0F97, F9880B33D66712F84D93C3B0D69FEDD593C157F5BA2E5A8662354A271D2EC551 ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\nlssorting.dll
20:13:15.0462 0x1214  C:\Windows\Microsoft.NET\Framework\v4.0.30319\nlssorting.dll - ok
20:13:15.0478 0x1214  [ 3AE37235881C807C9290EA9F043B6A58, C374FCD71A3FD68165744FD7DBD183024B15BA8F349F9407876C658EFABDB96E ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\clrjit.dll
20:13:15.0478 0x1214  C:\Windows\Microsoft.NET\Framework\v4.0.30319\clrjit.dll - ok
20:13:15.0478 0x1214  [ ECAB2B1B18D51D31F735DABEBCA6732B, 47C78137C9872C416CEB6D76EFCC3C50A4156183242230512DC29A8E4E681191 ] C:\Program Files (x86)\Western Digital\WD SmartWare\WDIO.dll
20:13:15.0478 0x1214  C:\Program Files (x86)\Western Digital\WD SmartWare\WDIO.dll - ok
20:13:15.0478 0x1214  [ 2408C0366D96BCDF63E8F1C78E4A29C5, 66F646890695B5D80536E88B1566C8765D89CFE25954ED650F6D773EFF045016 ] C:\Windows\System32\drivers\srv.sys
20:13:15.0478 0x1214  C:\Windows\System32\drivers\srv.sys - ok
20:13:15.0493 0x1214  [ ED8839FD2A73B413107639BA6D66A3D4, 788E71513DF2C856D5BF57ED93D0ACADFC823BE7AC5A8E8047B143E8F03C7A7B ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System\28425b9acde915a067b1afa3d32f9e30\System.ni.dll
20:13:15.0493 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System\28425b9acde915a067b1afa3d32f9e30\System.ni.dll - ok
20:13:15.0493 0x1214  [ 81F1D04D4D0E433099365127375FD501, C2A81B5A482C974E8108806486EC28CB2D81400D42639682FE7B7A9BDF14BA9B ] C:\Windows\System32\srvsvc.dll
20:13:15.0493 0x1214  C:\Windows\System32\srvsvc.dll - ok
20:13:15.0509 0x1214  [ 3F87CF27815A7D482D4DE77F7B2A20DC, 3B5C0A848517A9A5D216F0966F1ABE167D034BA110427D5548E66A4D8F847B46 ] C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackup.dll
20:13:15.0509 0x1214  C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackup.dll - ok
20:13:15.0509 0x1214  [ 6B054C67AAA87843504E8E3C09102009, 284AA58625FBDBFECB851A35407331B40BAEC141F2DCEDB9F15733BAB22F5C81 ] C:\Windows\System32\browser.dll
20:13:15.0509 0x1214  C:\Windows\System32\browser.dll - ok
20:13:15.0509 0x1214  [ 4EAE37133B78A26A84EA1649D9B21A1E, 832FE4BCF5E3721267E5E30392C29FC96976F2ABFF5B0BED768F8D97606D8D98 ] C:\Windows\System32\clusapi.dll
20:13:15.0509 0x1214  C:\Windows\System32\clusapi.dll - ok
20:13:15.0525 0x1214  [ CFEFA40DDE34659BE5211966EAD86437, AC0A3AD8AA47012C40785013E2273FC571F416BC9C9FFDA418FE72B3123C1FB0 ] C:\Windows\System32\netmsg.dll
20:13:15.0525 0x1214  C:\Windows\System32\netmsg.dll - ok
20:13:15.0525 0x1214  [ 836892094209E5D9CF403B4CF2829B5C, C8CB0FCCBF4C7E5E64E1B4225B559E049A25792F99A880DEEC5C66243B6EC2CA ] C:\Windows\System32\sscore.dll
20:13:15.0525 0x1214  C:\Windows\System32\sscore.dll - ok
20:13:15.0525 0x1214  [ ACCBA604D34842844133A731F8045B32, F4F7987A7A06823B8D34BD1D54390F33A4523C934F289ED2A5EBB457B16329F2 ] C:\Windows\SysWOW64\sxs.dll
20:13:15.0525 0x1214  C:\Windows\SysWOW64\sxs.dll - ok
20:13:15.0540 0x1214  [ 344FCC9850C3A8A3B4D3C65151AF8E4C, C38853454E153B1AB4AEAE1AAFB7CB4B2E6234208CF24C09F3B2AFE25E271C5C ] C:\Windows\System32\resutils.dll
20:13:15.0540 0x1214  C:\Windows\System32\resutils.dll - ok
20:13:15.0540 0x1214  [ 1EE8F71DC9428EA887BA5F24D2B4E951, 1180CD2A604350BE3D28FAAC2315968D8F231C6902B27246DE164B4DF06299CD ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\7062f8f333bf80f7e5fece3cec6df024\System.Configuration.ni.dll
20:13:15.0540 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\7062f8f333bf80f7e5fece3cec6df024\System.Configuration.ni.dll - ok
20:13:15.0540 0x1214  [ 8548A353D9D6CADEA74106516A2F7D0E, A254E4BABC674ED37FBA677481AEC3A473A10799AD59CBF95506EFCBABDD1727 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\d47495b94970e23c93c83ebf5e428d6f\System.Xml.ni.dll
20:13:15.0540 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\d47495b94970e23c93c83ebf5e428d6f\System.Xml.ni.dll - ok
20:13:15.0556 0x1214  [ 539C49CEBB3C50957AC8A09D95ECD880, 49E75CDB556FBCE72C44648F8930CF2209C1360F9311C5B4CEB19E13B11E6B75 ] C:\Windows\SysWOW64\shfolder.dll
20:13:15.0556 0x1214  C:\Windows\SysWOW64\shfolder.dll - ok
20:13:15.0556 0x1214  [ 05AD7F460BAA99767FD528C322151064, 156FA51EDD1B1399A5AAD69672A7CAB1182CB1CF743A3458D090D27DCE5D1F53 ] C:\Program Files (x86)\Western Digital\WD SmartWare\WDActivation.dll
20:13:15.0556 0x1214  C:\Program Files (x86)\Western Digital\WD SmartWare\WDActivation.dll - ok
20:13:15.0571 0x1214  [ FE795464678E0A1E38B97B8DAB4B2D56, E84AD5FEAB980385C1C26217C2E58240069C3F18AF84D0F769A1241D4AD04330 ] C:\Program Files (x86)\Western Digital\WD SmartWare\WDTransport.dll
20:13:15.0571 0x1214  C:\Program Files (x86)\Western Digital\WD SmartWare\WDTransport.dll - ok
20:13:15.0571 0x1214  [ D6BA9145A9DB3249D8CC789E6FB454F0, 81D44A2EC9FDE32BAD298BE5B3535F5477BE5D04022AA6BBF52A842D9F572748 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\623433037880e22bad0b8a2462253712\System.Core.ni.dll
20:13:15.0571 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\623433037880e22bad0b8a2462253712\System.Core.ni.dll - ok
20:13:15.0571 0x1214  [ 205C5E5DC8C38595C996F45E686C3CE7, 27C70D7B39E0FB6B22C3285173C05264A8594C4B2C608F34C479C8CF4A69CBEB ] C:\Program Files (x86)\Western Digital\WD SmartWare\WDRegistry.dll
20:13:15.0571 0x1214  C:\Program Files (x86)\Western Digital\WD SmartWare\WDRegistry.dll - ok
20:13:15.0587 0x1214  [ 7B05B4031DF5817A706B97572717F9AA, 0F63150E1C0804D556BB07AF2B3A836717C5B4757D0B8153C0D27E1D5451030F ] C:\Program Files (x86)\Western Digital\WD SmartWare\WDEncrypt.dll
20:13:15.0587 0x1214  C:\Program Files (x86)\Western Digital\WD SmartWare\WDEncrypt.dll - ok
20:13:15.0587 0x1214  [ 34CBADA2AC5FB08FAC20445EBBCA84F8, C8A8BABE893DACF1EE468F2D098366B5C09D2F43F8D1D0CAAEF16F5C5637DB08 ] C:\Program Files (x86)\Western Digital\WD SmartWare\WDNet.dll
20:13:15.0587 0x1214  C:\Program Files (x86)\Western Digital\WD SmartWare\WDNet.dll - ok
20:13:15.0587 0x1214  [ 5893EBDCE371174AC89ECD7731DD6D77, 31CC55F4724CFD95E48954B38C0A04D674399FD243083A816893ED5E5A770086 ] C:\Windows\SysWOW64\pcwum.dll
20:13:15.0587 0x1214  C:\Windows\SysWOW64\pcwum.dll - ok
20:13:15.0603 0x1214  [ 15515AE1540B4EE2B75DF63FC15129DF, CFDDAC99F0661F04E2713B8B19564D0BB22BA213DCB4BD4C9FD4A4B3A84C7FB5 ] C:\Windows\SysWOW64\netfxperf.dll
20:13:15.0603 0x1214  C:\Windows\SysWOW64\netfxperf.dll - ok
20:13:15.0603 0x1214  [ 257147843B66B67CB72AE8197DD479CD, 695BA9B8B7F710129E2FCA3663A706630DED57F0E3F7BAEC7B1B394F3ED0E942 ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\PerfCounter.dll
20:13:15.0603 0x1214  C:\Windows\Microsoft.NET\Framework\v4.0.30319\PerfCounter.dll - ok
20:13:15.0603 0x1214  [ DC3078BA1B58562416C843582A42284C, 3A4EEC80B48F238CB79B8AEB8DF269313146BA93059EA648CD2A3E7EE9E27730 ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\CORPerfMonExt.dll
20:13:15.0603 0x1214  C:\Windows\Microsoft.NET\Framework\v4.0.30319\CORPerfMonExt.dll - ok
20:13:15.0618 0x1214  [ ADD7A08E7016694FE1C73DD7498DEAD6, BBEE58222C8CBF3F92C19847CF0DF3741487D8AF5DE2458BBE571A81FBD1FD98 ] C:\Windows\SysWOW64\aspnet_counters.dll
20:13:15.0618 0x1214  C:\Windows\SysWOW64\aspnet_counters.dll - ok
20:13:15.0618 0x1214  [ F4E9693F449600A30088A0B16079F3CD, EF24F4AB066CE66242126C7C7CCDCA09781CCB009EC12927A62EAA537B980DCB ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\Aspnet_perf.dll
20:13:15.0618 0x1214  C:\Windows\Microsoft.NET\Framework\v4.0.30319\Aspnet_perf.dll - ok
20:13:15.0634 0x1214  [ 704A8B68374E6309B8D67F997FD3034B, DC746FF16AEFAFA82BD6CD232751293E420C14B44730D4E2C33C47F09FB2828F ] C:\Windows\SysWOW64\bitsperf.dll
20:13:15.0634 0x1214  C:\Windows\SysWOW64\bitsperf.dll - ok
20:13:15.0634 0x1214  [ 8C9179609935F84202028849112D355A, FBDD3BB4BF8F6854AA4E7E6AD4F86EA3E62363C86D87D2DE884DC343A58C7D07 ] C:\Windows\SysWOW64\esentprf.dll
20:13:15.0634 0x1214  C:\Windows\SysWOW64\esentprf.dll - ok
20:13:15.0634 0x1214  [ B3358961DC202B3BA8C131D2EFA9283C, 89FF4DAE47AEB00C5765AE74779F684074467746FEEAA923C8D9F34D0773BF78 ] C:\Program Files (x86)\Avira\AntiVir Desktop\gpavgio.dll
20:13:15.0634 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\gpavgio.dll - ok
20:13:15.0649 0x1214  [ FF3E45E28D46BD8A73D1F9D32B4ACAC6, 442AECB51F149FCAF06627A38BC8C1CB74E6573FE7B500FB7151988D7849D990 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avgio.dll
20:13:15.0649 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\avgio.dll - ok
20:13:15.0649 0x1214  [ C29E2B72D959E7A87C0C6F55A069623C, 8D40B5E470DF6ADCA4218433E085B2C697746AEE5D6365A06576E079B2B4A5ED ] C:\Program Files (x86)\Avira\AntiVir Desktop\avesvc.dll
20:13:15.0649 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\avesvc.dll - ok
20:13:15.0649 0x1214  [ E991956ACE9E57BFB9F8BB077D11B34E, FF7D5652E9A20D5B757B2DE83B1B4E9439D40B12B2456FDB786C3C040A765847 ] C:\Windows\SysWOW64\msdtcuiu.dll
20:13:15.0649 0x1214  C:\Windows\SysWOW64\msdtcuiu.dll - ok
20:13:15.0665 0x1214  [ 69296974BDB22CFF8B0B5E89047FE9BF, 244302513292B4D72ACBA15D8CA640DA825D3D689E5E686A33952274AEA4C55F ] C:\Program Files (x86)\Avira\AntiVir Desktop\msgclient.dll
20:13:15.0665 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\msgclient.dll - ok
20:13:15.0665 0x1214  [ F32077DF74EFD435A1DCDF415E189DF1, 24BB6838DEFD491DF5460A88BED2D70B903A2156C49FB63E214E2C77251ECA71 ] C:\Windows\SysWOW64\mfc100u.dll
20:13:15.0665 0x1214  C:\Windows\SysWOW64\mfc100u.dll - ok
20:13:15.0665 0x1214  [ 19B8C44BC54C7859E57E0EC1312D5B92, F1117313A292B3D05712585328D007156474BE491E19A7215A7E85645885AF96 ] C:\Windows\SysWOW64\msdtcprx.dll
20:13:15.0665 0x1214  C:\Windows\SysWOW64\msdtcprx.dll - ok
20:13:15.0681 0x1214  [ 6EB1BB4A5209A94D52559449B49EA5EB, 1DA10A17B44CE7F9E9D904BC47C41531592D8F15AC94617CFFACC92DF79F9FAB ] C:\Windows\SysWOW64\mtxclu.dll
20:13:15.0681 0x1214  C:\Windows\SysWOW64\mtxclu.dll - ok
20:13:15.0681 0x1214  [ 9092668DAF4061898FD3F2C19D8C7F85, 614C9042687554ECACE6B6BB32AC8F53E7B70A07ADF0A585931BC5F3CD11A2AC ] C:\Windows\SysWOW64\clusapi.dll
20:13:15.0681 0x1214  C:\Windows\SysWOW64\clusapi.dll - ok
20:13:15.0681 0x1214  [ 9015EE5171BCB15653DA27024BD27128, 575D84232C19D9A7165E96E64F313011A79763B815C809345739454C30E3CFEE ] C:\Windows\SysWOW64\resutils.dll
20:13:15.0681 0x1214  C:\Windows\SysWOW64\resutils.dll - ok
20:13:15.0696 0x1214  [ 38B13C0DF479DBA23ECFA815159BA86E, C289C65AF3FB689AD6B770AB0E815860D9EA36FB2A8DE9F1818C63AD0FE47CBD ] C:\Windows\SysWOW64\ktmw32.dll
20:13:15.0696 0x1214  C:\Windows\SysWOW64\ktmw32.dll - ok
20:13:15.0696 0x1214  [ 3FED26156D80F80D24EBC22B828E8FEC, 04E66F8B1FC2A4667336D6739EA3B73D8607D385A91EFBB403F063B40200200B ] C:\Windows\SysWOW64\msscntrs.dll
20:13:15.0696 0x1214  C:\Windows\SysWOW64\msscntrs.dll - ok
20:13:15.0696 0x1214  [ 8385126C3A4654CD926435AB4183A504, B49614DD1D0E4CB07FE6B8CFB18000CEE32E860AB130AB3BF5E87AE0DF3FAA88 ] C:\PROGRA~2\MICROS~2\Office12\OLMAPI32.DLL
20:13:15.0696 0x1214  C:\PROGRA~2\MICROS~2\Office12\OLMAPI32.DLL - ok
20:13:15.0712 0x1214  [ B92E9318F7E4AEF633B8EC3A873565AF, DA378AE1283B941B4251B7DD37FB21F37F7282750D94900D96EE413ADD316883 ] C:\Windows\SysWOW64\perfdisk.dll
20:13:15.0712 0x1214  C:\Windows\SysWOW64\perfdisk.dll - ok
20:13:15.0712 0x1214  [ 1ACC2484F3F111D577ABE4FFB1CAF2A5, 7B93481DD6BE2021C7C7B939FB90C430CB70E1BE4A14E24A8D4D34EEA5AE5F15 ] C:\Windows\SysWOW64\perfnet.dll
20:13:15.0712 0x1214  C:\Windows\SysWOW64\perfnet.dll - ok
20:13:15.0727 0x1214  [ 752F8E96BAB993517838315508FB82CB, E2D40BC51CAA147EBCEB9898D3D75540CEF83376E088942D289CD58FFAE654DE ] C:\Windows\SysWOW64\perfproc.dll
20:13:15.0727 0x1214  C:\Windows\SysWOW64\perfproc.dll - ok
20:13:15.0727 0x1214  [ 6E608664EBEEAB5A03BA32324016695B, 1137E97697E85D866622AA1F6AA2F08F9DFECABED9652A997F44E65B2F5D72EF ] C:\Windows\SysWOW64\rasctrs.dll
20:13:15.0727 0x1214  C:\Windows\SysWOW64\rasctrs.dll - ok
20:13:15.0727 0x1214  [ F908FE45F8FE9E0D4CBE65F9FF5DF6DA, 6FEC7C478F790D0EDCC4F0EFB2594A64878AC8FC8878B03F3611311C920E29BE ] C:\Windows\SysWOW64\mfc100enu.dll
20:13:15.0727 0x1214  C:\Windows\SysWOW64\mfc100enu.dll - ok
20:13:15.0743 0x1214  [ 5BBD1F824741AA1FDA9A9DFD3A9D5416, C9F3EAA48AF158A3377ADD36EA8C0C115A562BCF323D3D4AF41BD7C62285B39B ] C:\Windows\SysWOW64\tapiperf.dll
20:13:15.0743 0x1214  C:\Windows\SysWOW64\tapiperf.dll - ok
20:13:15.0743 0x1214  [ EDD2AD141DEBD425D74A52A4D7BE6AC4, DB32FA1033D9F1231E8A51CA345AD9EB47D08626127EBBEDCEF13D40DAA64FFD ] C:\Windows\SysWOW64\perfctrs.dll
20:13:15.0743 0x1214  C:\Windows\SysWOW64\perfctrs.dll - ok
20:13:15.0743 0x1214  [ 72D2AD4673E118051C89B7E88516EF4A, B9020B552A20D4F83B058BD03E438F0D4DB57F59B5BD42C3D4223EDF79C5732F ] C:\Program Files (x86)\Avira\AntiVir Desktop\avesvcr.dll
20:13:15.0743 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\avesvcr.dll - ok
20:13:15.0759 0x1214  [ 0A7B1D09AC03910BB70996A2856048A0, 395C1C4C9E2D83F375C251FA8D4E9866655FBA77B597579495EA9216D9F1DBAD ] C:\Windows\SysWOW64\perfts.dll
20:13:15.0759 0x1214  C:\Windows\SysWOW64\perfts.dll - ok
20:13:15.0759 0x1214  [ 4757E9742C8EFA0EA4146882864D751D, 42033F6350309A0686B0C4D8BFC268C2F65DA55D6AB1E21B96F9EF36B010A14D ] C:\Windows\SysWOW64\utildll.dll
20:13:15.0759 0x1214  C:\Windows\SysWOW64\utildll.dll - ok
20:13:15.0774 0x1214  [ 109007869CB95CBD9B92FDF35B96D7B5, 397228F01E7808C3883248D89D9A6E462857971F2FF2A456143EB30001F6BCE3 ] C:\Windows\SysWOW64\usbperf.dll
20:13:15.0774 0x1214  C:\Windows\SysWOW64\usbperf.dll - ok
20:13:15.0774 0x1214  [ B4D8AC9F27FEA181A398541C74D3469E, E38954728720CC43BD394C576D6DE86A964A640574EC3B36311E505CE8DD6195 ] C:\Program Files (x86)\Avira\AntiVir Desktop\guardmsg.dll
20:13:15.0774 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\guardmsg.dll - ok
20:13:15.0774 0x1214  [ B01724EFF26CE7C5AB3D17AE67F4F1B5, F82AB609F96676491E3F41B6C38D0334F2D5E5293E8141F55AB4D10E4FC10DA6 ] C:\Windows\SysWOW64\wbem\WmiApRpl.dll
20:13:15.0774 0x1214  C:\Windows\SysWOW64\wbem\WmiApRpl.dll - ok
20:13:15.0790 0x1214  [ 220C4DF8C00416F0E002A6053C21A2BC, 11892DFCD1C73B5EDE40FB05581FF1C34EB5DD19B0193B4192BFCF139BFC7F8A ] C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
20:13:15.0790 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe - ok
20:13:15.0790 0x1214  [ 529879612A7FAE235914E3AA6A9A669C, 715843BDDCB7BFB9C6A968F6DC7BBDE0844883FD57CB72608E2D7352F385C7A8 ] C:\Windows\SysWOW64\loadperf.dll
20:13:15.0790 0x1214  C:\Windows\SysWOW64\loadperf.dll - ok
20:13:15.0790 0x1214  [ 6CB58A559CC1C2EFF2D9BD2200DA6EF5, 94FE0C4D10FAAD5952D5508279E28F98C6599B00369B091DBBACBC2A50118228 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avipc64.dll
20:13:15.0790 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\avipc64.dll - ok
20:13:15.0805 0x1214  [ 2034799D53EFDF9B03D12139EE007E25, C1AAA897A90E06574760F1D4AE0CD686B90F52ED589A1B0493DF2C7DD6591B2E ] C:\Program Files (x86)\Avira\AntiVir Desktop\avreg.dll
20:13:15.0805 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\avreg.dll - ok
20:13:15.0805 0x1214  [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] C:\Windows\System32\wbem\WmiApSrv.exe
20:13:15.0805 0x1214  C:\Windows\System32\wbem\WmiApSrv.exe - ok
20:13:15.0805 0x1214  [ 9FE3ED67345F0FF829A4A53B90E09672, F70CD131DCF101B26CD55A57876DB3765B3E15C9D3A8B508FF041C91226EC504 ] C:\Windows\System32\loadperf.dll
20:13:15.0805 0x1214  C:\Windows\System32\loadperf.dll - ok
20:13:15.0821 0x1214  [ 59BCE9F07985F8A4204F4D6554CFF708, CA24AEF558647274D019DFB4D7FD1506D84EC278795C30BA53B81BB36130DC57 ] C:\Windows\System32\regsvr32.exe
20:13:15.0821 0x1214  C:\Windows\System32\regsvr32.exe - ok
20:13:15.0821 0x1214  [ BC404941D7CE1F816825BFDB33BFD77D, DEF1437A0E91007F5E4932184B0DEDEC20910EC003D66040EFC83CA2146CA681 ] C:\Program Files (x86)\Lavasoft\Ad-Aware\lavamessage.dll
20:13:15.0821 0x1214  C:\Program Files (x86)\Lavasoft\Ad-Aware\lavamessage.dll - ok
20:13:15.0821 0x1214  [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] C:\Windows\System32\hidserv.dll
20:13:15.0821 0x1214  C:\Windows\System32\hidserv.dll - ok
20:13:15.0837 0x1214  [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] C:\Windows\System32\wdi.dll
20:13:15.0837 0x1214  C:\Windows\System32\wdi.dll - ok
20:13:15.0837 0x1214  [ 7C6A2CCF98024A5EF8740162701CE3E7, 70E8A0689B3340A3F388758E32FB930A2C018D5F55B252024B52A15B9574BD05 ] C:\Windows\SysWOW64\tquery.dll
20:13:15.0837 0x1214  C:\Windows\SysWOW64\tquery.dll - ok

 

 

CONTINUED NEXT POST



#11 stqcb

stqcb
  • Topic Starter

  • Members
  • 52 posts
  • OFFLINE
  •  
  • Local time:03:26 PM

Posted 28 October 2013 - 05:57 PM

20:13:15.0852 0x1214  [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] C:\Windows\System32\ssdpsrv.dll
20:13:15.0852 0x1214  C:\Windows\System32\ssdpsrv.dll - ok
20:13:15.0852 0x1214  [ D891293880F2F00AB7BA959910300EF7, 2C974D3BE5E762694B5270330211D761C35C25C495EA173FC22DCD8820FDAF0A ] C:\Windows\System32\diagperf.dll
20:13:15.0852 0x1214  C:\Windows\System32\diagperf.dll - ok
20:13:15.0852 0x1214  [ 166EB40D1F5B47E615DE3D0FFFE5F243, E32BCCA0D25CD631C221986EBE9F6C54BF2F12DE1672D69CCC4E22AD07D0525A ] C:\Windows\System32\IPSECSVC.DLL
20:13:15.0852 0x1214  C:\Windows\System32\IPSECSVC.DLL - ok
20:13:15.0868 0x1214  [ 2E57DDF2880A7E52E76F41C7E96D327B, D24E19B6091C197D77D71BC044CE2E5A57BE0A2F00D1BB0732E380A398230E63 ] C:\Windows\System32\wpdbusenum.dll
20:13:15.0868 0x1214  C:\Windows\System32\wpdbusenum.dll - ok
20:13:15.0868 0x1214  [ D065BE66822847B7F127D1F90158376E, 20F911F390FF23C2C42361A449C4344DB59F1DC21EDD1E7EBC4E80914DEF7824 ] C:\Windows\System32\appinfo.dll
20:13:15.0868 0x1214  C:\Windows\System32\appinfo.dll - ok
20:13:15.0868 0x1214  [ 9719E3D834F5C8C43F56A93DFA497023, 4D78D4BD4835C0A237821967156C19DF4B90384A6BCB1F48CEAF35D003A0099A ] C:\Windows\System32\pnpts.dll
20:13:15.0868 0x1214  C:\Windows\System32\pnpts.dll - ok
20:13:15.0883 0x1214  [ 5DA7D8934F7AB0884A6A8FC02E8B2AA7, A0B8795965A10B045A6316FCEB48DF389E35E8739EEE4358789A18A7B8140E7A ] C:\Windows\System32\PortableDeviceApi.dll
20:13:15.0883 0x1214  C:\Windows\System32\PortableDeviceApi.dll - ok
20:13:15.0883 0x1214  [ 4B78B431F225FD8624C5655CB1DE7B61, 198A5AF2125C7C41F531A652D200C083A55A97DC541E3C0B5B253C7329949156 ] C:\Windows\System32\aelupsvc.dll
20:13:15.0883 0x1214  C:\Windows\System32\aelupsvc.dll - ok
20:13:15.0883 0x1214  [ 46863C4CC5B68EB09EA2D5EEF0F1193A, 9B5593E1F484AC8F96F89A5995FB1FE9C51CB2F0F545607F6850751191150CFE ] C:\Windows\System32\radardt.dll
20:13:15.0883 0x1214  C:\Windows\System32\radardt.dll - ok
20:13:15.0899 0x1214  [ 9BC93C9ACFA34DB5A41B89357B31E4ED, C3B9DDCB31970F91F8CAF85D2431903DB1738872775EEFD6712B7646BDE1250C ] C:\Windows\System32\FwRemoteSvr.dll
20:13:15.0899 0x1214  C:\Windows\System32\FwRemoteSvr.dll - ok
20:13:15.0899 0x1214  [ E1B22739C933BE33F53DB58C5393ADD3, 26EE0DD091D2E00DECC774DC1EEDFFDE69AF74B0C769CCBE091AFC32C66E4207 ] C:\Windows\System32\Apphlpdm.dll
20:13:15.0899 0x1214  C:\Windows\System32\Apphlpdm.dll - ok
20:13:15.0899 0x1214  [ 4566BBE928EF23E1C5A55D02D64C2872, 6E2CEBB94046C977A5E44A99FD735AAA7F923D488148E5BFF2B292168055132F ] C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe
20:13:15.0899 0x1214  C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe - ok
20:13:15.0915 0x1214  [ 85478FF8B0763C0805A25A5B1886BB35, 62A2FBEABE3D3243063D3BB3720047ECC9BE9F2A0BAD6085ADC5C594F5191A81 ] C:\Program Files (x86)\Lavasoft\Ad-Aware\ShellExt_64.dll
20:13:15.0915 0x1214  C:\Program Files (x86)\Lavasoft\Ad-Aware\ShellExt_64.dll - ok
20:13:15.0915 0x1214  [ 65AF044B5570D355124DCD1E099AA98F, 84165B4C2F7EA6DCC52442C50610F363D319B7768A62A7E8B4920D459A3024CD ] C:\Windows\System32\wdiasqmmodule.dll
20:13:15.0915 0x1214  C:\Windows\System32\wdiasqmmodule.dll - ok
20:13:15.0915 0x1214  [ E629F1A051C82795DDFFD3E8D4855811, 6E4DFFEAB2795C98EA6DCAF10EA6D97413D0F8CA0C04869CB20B74FF4D6FE679 ] C:\Windows\System32\dimsjob.dll
20:13:15.0915 0x1214  C:\Windows\System32\dimsjob.dll - ok
20:13:15.0930 0x1214  [ BF4AC709BE5BF64F331F5D67773A0C82, 96E5A2A12D386B8A7976FEC76FD350E6A3EEBDF5763F4BBF4AB18880E9F269E0 ] C:\Windows\System32\perftrack.dll
20:13:15.0930 0x1214  C:\Windows\System32\perftrack.dll - ok
20:13:15.0930 0x1214  [ 18E756E0FE2FFCD5DE35F6B9F91244A6, 2B508EEA1F59BE0E627BB87921F88D6C7277609DCCEFCD3618F83503CF871761 ] C:\Windows\winsxs\amd64_microsoft.vc90.atl_1fc8b3b9a1e18e3b_9.0.30729.4148_none_0a1d2fcba76b3f00\ATL90.dll
20:13:15.0930 0x1214  C:\Windows\winsxs\amd64_microsoft.vc90.atl_1fc8b3b9a1e18e3b_9.0.30729.4148_none_0a1d2fcba76b3f00\ATL90.dll - ok
20:13:15.0930 0x1214  [ AFA79C343F9D1555F7E5D5FA70BB2A14, 440EF3ADC1F5C7A5ED3E872C8D8DFA61B039454C3CA67F8A51CA8BDCFDC4BA4A ] C:\Windows\System32\PortableDeviceConnectApi.dll
20:13:15.0930 0x1214  C:\Windows\System32\PortableDeviceConnectApi.dll - ok
20:13:15.0946 0x1214  [ F7073C962C4FB7C415565DDE109DE49F, 781E7088DCEFBC34A808C3E7DA41A56112B3F23ABE9F54B5EF4D5CD9CD016B1D ] C:\Windows\System32\npmproxy.dll
20:13:15.0946 0x1214  C:\Windows\System32\npmproxy.dll - ok
20:13:15.0946 0x1214  [ 6AB6D4DF10EC784CF4A66CBFAF417A11, 7DD59A6A686736D4CCA4D486BD2FE0A0743AFBA838DBCBDBFF3078080BFA1CF3 ] C:\Windows\System32\runonce.exe
20:13:15.0946 0x1214  C:\Windows\System32\runonce.exe - ok
20:13:15.0946 0x1214  [ 2E2072EB48238FCA8FBB7A9F5FABAC45, AC70B9FC24847EEC2E18008F2894DCDAC19A9C90D5D88729326E493CA524F5C3 ] C:\Windows\System32\winrnr.dll
20:13:15.0961 0x1214  C:\Windows\System32\winrnr.dll - ok
20:13:15.0961 0x1214  [ 35CB97CBC3EDC463418ED4997AAB29B6, EE60EABE2D87CEDD68FB8985B6C5D70930015FB2B8DB9FDCB4044587BC6ECA4C ] C:\Windows\System32\pautoenr.dll
20:13:15.0961 0x1214  C:\Windows\System32\pautoenr.dll - ok
20:13:15.0961 0x1214  [ AAA6D0DF7356BBA706BD67385A103AAB, 4A483A9EEC0F3881C0252E975852A8D96D81DA0CC35C5E2E4F00947E6C2B0A69 ] C:\Windows\System32\certcli.dll
20:13:15.0961 0x1214  C:\Windows\System32\certcli.dll - ok
20:13:15.0977 0x1214  [ 58A0CDABEA255616827B1C22C9994466, 4FE1140AA8D3995579DE8CDF4ECAD1978804D05351EABB4079A63B303EF1B451 ] C:\Windows\System32\NapiNSP.dll
20:13:15.0977 0x1214  C:\Windows\System32\NapiNSP.dll - ok
20:13:15.0977 0x1214  [ 522BD073F617060AFCB9CC5707778DB1, AB7E98207EEE79713851034E4448E5C54864E584EA450BED67E248F338B360C6 ] C:\Windows\System32\CertEnroll.dll
20:13:15.0977 0x1214  C:\Windows\System32\CertEnroll.dll - ok
20:13:15.0977 0x1214  [ 79AFFC7FEEA9CD2FEFEA5EF3B631A02C, 78889511D6F471009674CC958F8BB77B4A79C952634B18E8AFF4A75AA6A60E87 ] C:\Windows\System32\ndiscapCfg.dll
20:13:15.0977 0x1214  C:\Windows\System32\ndiscapCfg.dll - ok
20:13:15.0993 0x1214  [ 169F916EFEAA44487E65305B7D2D754B, E87069D36E05133A58638A1CBD765AE3122917B3E0AFA06C8644C861B3ED5A16 ] C:\Windows\SysWOW64\runonce.exe
20:13:15.0993 0x1214  C:\Windows\SysWOW64\runonce.exe - ok
20:13:15.0993 0x1214  [ 613C8CE10A5FDE582BA5FA64C4D56AAA, 30507B6BA79E1A271B07BBA58B4FF463678BE0960266A1D5E88031E932D768B6 ] C:\Windows\System32\pnrpnsp.dll
20:13:15.0993 0x1214  C:\Windows\System32\pnrpnsp.dll - ok
20:13:15.0993 0x1214  [ 3D6AF45673C4B31CDECD7F80AF09D443, 7D711D138C107816155AFA5E5FDC6892734074BEFF604B5904177B5D9ACE4670 ] C:\Windows\System32\rascfg.dll
20:13:15.0993 0x1214  C:\Windows\System32\rascfg.dll - ok
20:13:16.0008 0x1214  [ E3E2E9A96E6BA95D0CF0F026C7B18654, 376648E0A2167611849590337098397006F8FB8DDD63F460CA6E4734D321055B ] C:\Windows\System32\wshbth.dll
20:13:16.0008 0x1214  C:\Windows\System32\wshbth.dll - ok
20:13:16.0008 0x1214  [ 114429A77D935053E13A9BF98A8B8CA1, 6120CF8EC6D2F262A3FCB0C0BB185DA8BE5F4D5FF6A114D8F54CC13535C31EE5 ] C:\Windows\System32\mprapi.dll
20:13:16.0008 0x1214  C:\Windows\System32\mprapi.dll - ok
20:13:16.0008 0x1214  [ 1CF21800E337F4039AAD4C94B4280EE4, EF434CEF6E62A202B85E8EC7916EB998E20B10675437CDE90084CDA938C0AA3F ] C:\Windows\System32\mprmsg.dll
20:13:16.0008 0x1214  C:\Windows\System32\mprmsg.dll - ok
20:13:16.0024 0x1214  [ 1FCD619D8542A248D4E1FF72FFB0E56B, FFF35156138B5178F094AE5735EEBFF2AB3E0F71B23FEE24EEEC980C2B2EBF35 ] C:\Windows\System32\tcpipcfg.dll
20:13:16.0024 0x1214  C:\Windows\System32\tcpipcfg.dll - ok
20:13:16.0024 0x1214  [ 26EAEE08CAF82AA7F03C5020F51DA541, 5541193DD9A16E27339225E6BA4F2664B0B166E9A13D2FFF267F6E15211B5794 ] C:\Windows\SysWOW64\propsys.dll
20:13:16.0024 0x1214  C:\Windows\SysWOW64\propsys.dll - ok
20:13:16.0024 0x1214  [ AC0C9CEA1218DAB1994AF8B28E680BD9, 7C79144AD91C5B578B48DD6412884A58F4E6C23732612655A73486FC7BCE68A0 ] C:\Windows\System32\wlaninst.dll
20:13:16.0024 0x1214  C:\Windows\System32\wlaninst.dll - ok
20:13:16.0039 0x1214  [ 5A406C9C8E0880D3EABADC5DFD1ACDAE, D3228D81B30A37DDDBF2E9FECC8885404FB95DBD11C5F55A425B27BD361BC2C1 ] C:\Windows\System32\wwaninst.dll
20:13:16.0039 0x1214  C:\Windows\System32\wwaninst.dll - ok
20:13:16.0039 0x1214  [ 1E4BDDBD5A63059A97063339B4F8986F, 0EFBD43CEB83B4D72EDD7CE58F81504DFFB6C8E78A185DE1437CFC39E7EB90C0 ] C:\Windows\System32\actxprxy.dll
20:13:16.0039 0x1214  C:\Windows\System32\actxprxy.dll - ok
20:13:16.0039 0x1214  [ 21CF5C7D8D727DCC337A1D251B6135F4, A2D7139B66A112BE948B14704342353D1B5427F097B0E4A36F823BA1F43EA16A ] C:\Windows\SysWOW64\schannel.dll
20:13:16.0039 0x1214  C:\Windows\SysWOW64\schannel.dll - ok
20:13:16.0055 0x1214  [ 30DB64D316F502558DB2380F7343C9FD, 4C1B8F9637EA79644CDD86AEA0A3360482905321DD32B158587FBB60884E93D6 ] C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
20:13:16.0055 0x1214  C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll - ok
20:13:16.0055 0x1214  [ 207204AF80505AF51271FE164B56F662, 509E2F4D2F696108E4DBE40A7828C633E988289EE4756D2E0FAC9D59604445C6 ] C:\Program Files (x86)\Microsoft Office\Office12\GrooveUtil.dll
20:13:16.0055 0x1214  C:\Program Files (x86)\Microsoft Office\Office12\GrooveUtil.dll - ok
20:13:16.0055 0x1214  [ 30EFEBDC960A482E3E188B9960B286E2, C4B0ABD3C8E4D6C78F713B93C382E9DC2C86F03B479FDE461EAD2DB1BCDF0578 ] C:\Program Files (x86)\Microsoft Office\Office12\GrooveNew.dll
20:13:16.0055 0x1214  C:\Program Files (x86)\Microsoft Office\Office12\GrooveNew.dll - ok
20:13:16.0071 0x1214  [ D5E459BED3DB9CF7FC6CC1455F177D2D, FCAB2130FAB57B6728C50D5B9E9924F001C43538DE4F675DE03537FF0D9B84BD ] C:\Windows\winsxs\x86_microsoft.vc80.atl_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d1cb102c435421de\ATL80.dll
20:13:16.0071 0x1214  C:\Windows\winsxs\x86_microsoft.vc80.atl_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d1cb102c435421de\ATL80.dll - ok
20:13:16.0071 0x1214  [ D8C2B95BC2353E1F18850D6B8F5DBA13, 0C448A46CDDD0C39092E371EEDF2DD9A0F21E051109ED15C3D7F3C6E9E53782D ] C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
20:13:16.0071 0x1214  C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll - ok
20:13:16.0086 0x1214  [ 533AECD1B5356870AE2D905B4D3B42B7, 953338C70D58C65D64503694B2CAFE60D71B204EFAA326FCB9685B8AAF756B84 ] C:\Program Files (x86)\Microsoft Office\Office12\GrooveMisc.dll
20:13:16.0086 0x1214  C:\Program Files (x86)\Microsoft Office\Office12\GrooveMisc.dll - ok
20:13:16.0086 0x1214  [ EBD345E154827DBFC6A77E3F07F63835, 7D374D577AC05BEE4CA2994A50264973F9985E73FDBBDD7E9F64C4D7A93FDBDE ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\csc.exe
20:13:16.0086 0x1214  C:\Windows\Microsoft.NET\Framework\v4.0.30319\csc.exe - ok
20:13:16.0086 0x1214  [ 4AD576CA9E7752A86140ACAEEA3356F5, 5B8EC154B83333AE7547E421516BF7B90BB1466FF3D23E2AB9D4F764E69051FD ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\alink.dll
20:13:16.0086 0x1214  C:\Windows\Microsoft.NET\Framework\v4.0.30319\alink.dll - ok
20:13:16.0102 0x1214  [ 8AE6DD9A6D246004DA047F704F0CC487, 8DEAB32F7297BCBC22CAA7BAEB2DDB6BF36E73D9A7F68B6737C1E4C75E213CB9 ] C:\Windows\SysWOW64\cmd.exe
20:13:16.0102 0x1214  C:\Windows\SysWOW64\cmd.exe - ok
20:13:16.0102 0x1214  [ 326C7F76A29897A892AA7726E91C1C67, 64305346B06EC14976130B0B80F14B4D5AB63E5B2A6A7B872EC9CE2BF8FADCD2 ] C:\Windows\SysWOW64\winbrand.dll
20:13:16.0102 0x1214  C:\Windows\SysWOW64\winbrand.dll - ok
20:13:16.0102 0x1214  [ DFE118C95C6571B87D1923DAB3FA0A77, 14EB5CC5D1AC0FC8B30484227C5CC0283214656922716A1526825A0C8A86F824 ] C:\Windows\SysWOW64\ieframe.dll
20:13:16.0102 0x1214  C:\Windows\SysWOW64\ieframe.dll - ok
20:13:16.0117 0x1214  [ 8D44D74079457EE855FFA19DF97D8DD3, 2E1D72DBB12A83A392B51F65D8B9530E1E5187A2E9D428BABF810F250879FC8A ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorpehost.dll
20:13:16.0117 0x1214  C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorpehost.dll - ok
20:13:16.0117 0x1214  [ DFA8E7CDFC7A0E6673EC2459D494A67C, 5FFABE06A815FA0D5A7E7AB8C20E035CB1B319DAC223FA97538C6547DF4C09CE ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\cvtres.exe
20:13:16.0117 0x1214  C:\Windows\Microsoft.NET\Framework\v4.0.30319\cvtres.exe - ok
20:13:16.0117 0x1214  [ E07B77C3BDC82A024E294FB67ABFEDA0, B7ADCD536544F4C59748562504824B252B503E0C6DFF8D94512A88EE4A38B0E0 ] C:\Windows\SysWOW64\shdocvw.dll
20:13:16.0117 0x1214  C:\Windows\SysWOW64\shdocvw.dll - ok
20:13:16.0133 0x1214  [ B2DBB125AEF0EF919E1311186927D1A7, 001BE8B3BA073F6E593022B2E86CD4585FE3D86C25E514791C707EBF74D27467 ] C:\Program Files (x86)\Western Digital\WD SmartWare\WDUtilities.dll
20:13:16.0133 0x1214  C:\Program Files (x86)\Western Digital\WD SmartWare\WDUtilities.dll - ok
20:13:16.0133 0x1214  [ EFDE3843DDE0D1D30161FF27A17D135C, E360492692010450A605E1E7124536CEFF139CCD758908F474EB6E95F6811E61 ] C:\Users\Scott\AppData\Local\Temp\{8090EB68-1BCE-48DA-9E56-1CB5C673017F}.exe
20:13:16.0133 0x1214  C:\Users\Scott\AppData\Local\Temp\{8090EB68-1BCE-48DA-9E56-1CB5C673017F}.exe - ok
20:13:16.0149 0x1214  [ 11CDF138552BFEC115B60ED6DC3ACEB6, 81200BD6634BE7769E3F99B3BF92EF93FAFB7F620E8665C9B603CD2912251D1B ] C:\Windows\SysWOW64\devrtl.dll
20:13:16.0149 0x1214  C:\Windows\SysWOW64\devrtl.dll - ok
20:13:16.0149 0x1214  [ B519848DFA30AE2B306576B51321D102, CFD8BCB7645F2200819224BEB9F10BB226D30FE27B3BB31A35A2889FA301EFF2 ] C:\Windows\System32\ie4uinit.exe
20:13:16.0149 0x1214  C:\Windows\System32\ie4uinit.exe - ok
20:13:16.0149 0x1214  [ C3E98C42EDF7EF237A4BAB91FEAC7426, FD3E92D629828F8DDD830E1474D86CC71A9C2ED5074EB8D155B578D404A485BE ] C:\Windows\System32\iedkcs32.dll
20:13:16.0149 0x1214  C:\Windows\System32\iedkcs32.dll - ok
20:13:16.0164 0x1214  [ C3C32FE6F59BF9863C924C7ED7328834, 98717226EE8D26E952C2FA8E9272D80911B60FBA6C9D20932CC99082D8D9D2C5 ] C:\Windows\System32\timedate.cpl
20:13:16.0164 0x1214  C:\Windows\System32\timedate.cpl - ok
20:13:16.0164 0x1214  [ FBE8EBF528DC49B3DEB186CA9545D97E, 9A5BFB1975822B09C453DC62B241A6F4FC1F1F98D67506FB08A136AC4FA904F3 ] C:\Windows\System32\shdocvw.dll
20:13:16.0164 0x1214  C:\Windows\System32\shdocvw.dll - ok
20:13:16.0164 0x1214  [ A0A65D306A5490D2EB8E7DE66898ECFD, CE5DA408F4EDD5E81CE0925867F03C9A35172CF1571FE4C4C052E45AB69822BB ] C:\Windows\System32\linkinfo.dll
20:13:16.0164 0x1214  C:\Windows\System32\linkinfo.dll - ok
20:13:16.0180 0x1214  [ 9DD06F00898AA5CA7E24186EFC8E5E25, 51141D0D07DBC955B63281351D3F17163ACE9A5B08628EA1C82F33FD2913970E ] C:\Users\Scott\AppData\Local\Temp\{F07CA67D-4E0D-49E0-A66D-AFA0EBA7EE9C}\{21F538FB-E3FB-4950-BA79-96325E48D392}.tmp
20:13:16.0180 0x1214  C:\Users\Scott\AppData\Local\Temp\{F07CA67D-4E0D-49E0-A66D-AFA0EBA7EE9C}\{21F538FB-E3FB-4950-BA79-96325E48D392}.tmp - ok
20:13:16.0180 0x1214  [ 91A7771934C0D9D2DA7699D25BB5B348, 154A6EB866AF22B38AEE8DB5A864653FEB15DED69DE26E5B602B7C5056CDDF72 ] C:\Users\Scott\AppData\Local\Temp\{F07CA67D-4E0D-49E0-A66D-AFA0EBA7EE9C}\{9AD830C5-BEBB-432D-B0DD-BFE0C74E795E}.tmp
20:13:16.0180 0x1214  C:\Users\Scott\AppData\Local\Temp\{F07CA67D-4E0D-49E0-A66D-AFA0EBA7EE9C}\{9AD830C5-BEBB-432D-B0DD-BFE0C74E795E}.tmp - ok
20:13:16.0180 0x1214  [ 55C11301579A42639736EA3B17A3A588, CBEBDD7C883EF47DB86060AF0F09FD2218161D5FEB0CECEB4A068B9CC63499F8 ] C:\Users\Scott\AppData\Local\Temp\{F07CA67D-4E0D-49E0-A66D-AFA0EBA7EE9C}\{0953C110-C2C5-4F2A-B78A-D4C8C9CDCBC3}.tmp
20:13:16.0180 0x1214  C:\Users\Scott\AppData\Local\Temp\{F07CA67D-4E0D-49E0-A66D-AFA0EBA7EE9C}\{0953C110-C2C5-4F2A-B78A-D4C8C9CDCBC3}.tmp - ok
20:13:16.0195 0x1214  [ 676FDFFDB591083CEE764B90FE356C52, B231BFE480D3B8E77AE5DEF3CFFBA42F874839DC1DC89D89EB61D8F639F066E9 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data\f545b5395907e8f4cff3ffb5bf7e3c0a\System.Data.ni.dll
20:13:16.0195 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data\f545b5395907e8f4cff3ffb5bf7e3c0a\System.Data.ni.dll - ok
20:13:16.0195 0x1214  [ 661CEEDE98A2E0E5CDD7DE239EB38353, 3F8A23FD9CC3516A9366235662942B942A64A4264F35BFFD339D1B054AD1080E ] C:\PROGRA~2\WIC4A1~1\MESSEN~1\msgslang.dll
20:13:16.0195 0x1214  C:\PROGRA~2\WIC4A1~1\MESSEN~1\msgslang.dll - ok
20:13:16.0211 0x1214  [ 46EDD0A6B42BA5D2044FA0909BE4BE95, 0007398C004C9AB40DA086A712AFAF1FB6C8D1D23821628F185ED49B2AD95EF5 ] C:\Windows\System32\msftedit.dll
20:13:16.0211 0x1214  C:\Windows\System32\msftedit.dll - ok
20:13:16.0211 0x1214  [ 7FCAB194F01E3403C300EB034E480B36, 907EBC0ACF0FD4A047DBD20A5FE71F36142162CA5A7A1A6498D5DB5B2AFC70DB ] C:\Windows\System32\msls31.dll
20:13:16.0211 0x1214  C:\Windows\System32\msls31.dll - ok
20:13:16.0211 0x1214  [ 76DC9F4FE66BC3867615F142766B4C50, D81C2622A3DB2CB9219AD36C370DD384058BA64EB186D211C5E3BBD847B1E5CE ] C:\Windows\System32\wmi.dll
20:13:16.0211 0x1214  C:\Windows\System32\wmi.dll - ok
20:13:16.0227 0x1214  [ 17A7998CB5DA92020A291B85FF7B3681, 239E770C5433E25145DE036BBB23668435E4D1CC49597DB7595141A943EE0499 ] C:\Program Files\Common Files\Microsoft Shared\ink\tiptsf.dll
20:13:16.0227 0x1214  C:\Program Files\Common Files\Microsoft Shared\ink\tiptsf.dll - ok
20:13:16.0227 0x1214  [ DF471F11CC78BE02FE6BA15F2D94F65B, 9AC230DE58CE40E78AE6872BCF4778B69EEBF17E0E41B1301FF364ABD4737A78 ] C:\Users\Scott\AppData\Local\Temp\{F07CA67D-4E0D-49E0-A66D-AFA0EBA7EE9C}\{0B5B6384-5C94-48EC-A2F3-CE086B96EA15}.tmp
20:13:16.0227 0x1214  C:\Users\Scott\AppData\Local\Temp\{F07CA67D-4E0D-49E0-A66D-AFA0EBA7EE9C}\{0B5B6384-5C94-48EC-A2F3-CE086B96EA15}.tmp - ok
20:13:16.0227 0x1214  [ 0FD19BDDD2513874FF6903F717367795, DFAF9C33F993BA26FC84EF66ABC7C483E62762F7E1FC763605A75ACC2E8AA4EE ] C:\Users\Scott\AppData\Local\Temp\{F07CA67D-4E0D-49E0-A66D-AFA0EBA7EE9C}\{837045B8-82A8-4F97-BA83-A0B9E0A9172E}.tmp
20:13:16.0227 0x1214  C:\Users\Scott\AppData\Local\Temp\{F07CA67D-4E0D-49E0-A66D-AFA0EBA7EE9C}\{837045B8-82A8-4F97-BA83-A0B9E0A9172E}.tmp - ok
20:13:16.0242 0x1214  [ DD88BBF87A43331A4E99E37F7BF59FDB, 872190F559FA0DD1F711E9FA101BA1AB6E6DE5ED0CCCE1AB7AFE45BC3B78A0F1 ] C:\Users\Scott\AppData\Local\Temp\{F07CA67D-4E0D-49E0-A66D-AFA0EBA7EE9C}\{44393A2F-8A2B-4D9F-A2EF-D02439D7EB87}.tmp
20:13:16.0242 0x1214  C:\Users\Scott\AppData\Local\Temp\{F07CA67D-4E0D-49E0-A66D-AFA0EBA7EE9C}\{44393A2F-8A2B-4D9F-A2EF-D02439D7EB87}.tmp - ok
20:13:16.0242 0x1214  [ 14F5C0DB4B2C47874D6C937A5A1B367C, B59C4FB22138F8F0C9B85337D79B8353C9A6722F83CF9DC16F0CDC289379F14A ] C:\Windows\System32\gameux.dll
20:13:16.0242 0x1214  C:\Windows\System32\gameux.dll - ok
20:13:16.0242 0x1214  [ 5BF45D7975D1AC2154D0EE271462C45D, 5DEF62BE3D72D40B0C79BA170D00A9B6119112B7BE0D16FB62F0B4C11DC6F359 ] C:\Windows\Microsoft.NET\assembly\GAC_32\System.Data\v4.0_4.0.0.0__b77a5c561934e089\System.Data.dll
20:13:16.0242 0x1214  C:\Windows\Microsoft.NET\assembly\GAC_32\System.Data\v4.0_4.0.0.0__b77a5c561934e089\System.Data.dll - ok
20:13:16.0258 0x1214  [ 4261449C1CADA6B007E5C27522946D2B, 11E79D1C529E816CCCAC9266089C77A4DB44676CAEEE25C66D6DB420B18D3ACB ] C:\Users\Scott\AppData\Local\Temp\{F07CA67D-4E0D-49E0-A66D-AFA0EBA7EE9C}\{383C9359-7FA1-4BC9-B271-A0511BA8A5DA}.tmp
20:13:16.0258 0x1214  C:\Users\Scott\AppData\Local\Temp\{F07CA67D-4E0D-49E0-A66D-AFA0EBA7EE9C}\{383C9359-7FA1-4BC9-B271-A0511BA8A5DA}.tmp - ok
20:13:16.0258 0x1214  [ DD76912E8D165C68659D9875256710A3, 0DDD342EBCC2EE2D023FF6E94A2DB2822A5CC38C747A9226B253BF99F8BCF639 ] C:\Windows\System32\DeviceCenter.dll
20:13:16.0258 0x1214  C:\Windows\System32\DeviceCenter.dll - ok
20:13:16.0258 0x1214  [ B2818D8C413BDCB1DC513C9238790A7F, CA21389570846BE6E9742A57184D3FA6F38ED5C549E7AACC6CA10BE48274D3FD ] C:\Program Files (x86)\Western Digital\WD SmartWare\WDSQLite.dll
20:13:16.0273 0x1214  C:\Program Files (x86)\Western Digital\WD SmartWare\WDSQLite.dll - ok
20:13:16.0273 0x1214  [ 6627AA675A5C1B0330487A02E23F0560, 256AE9BA4273D4247FFAD6099D5A4FC8E98EDB27293AC8CAF7A571EB3890FAA7 ] C:\Users\Scott\AppData\Local\Temp\{F07CA67D-4E0D-49E0-A66D-AFA0EBA7EE9C}\{6BF4CC33-49EE-485B-9D4F-41C2C19A4C7C}.tmp
20:13:16.0273 0x1214  C:\Users\Scott\AppData\Local\Temp\{F07CA67D-4E0D-49E0-A66D-AFA0EBA7EE9C}\{6BF4CC33-49EE-485B-9D4F-41C2C19A4C7C}.tmp - ok
20:13:16.0273 0x1214  [ D6DA8C0BB16217DC7704EBC37730A046, 6D2216E788EE655C09D24CBE34962134DDE02E3E8E7E2F362A60BBC3DB7D0EC5 ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
20:13:16.0273 0x1214  C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe - ok
20:13:16.0289 0x1214  [ 17CA3ED2ECF5B6A1DD90DD600B1966BF, A3916F3E2F17B3CA0DB0F94F2E392590287ACBCC81590254EAFA3D8AC0753E59 ] C:\Program Files\Apoint2K\Apoint.exe
20:13:16.0289 0x1214  C:\Program Files\Apoint2K\Apoint.exe - ok
20:13:16.0289 0x1214  [ 6B7DE92DAA31E9A6A703E3A405B096FB, 65CDD01EB816EB712C8EE79D63632B3E5B55BC835C5041C7A5B63A6DDF98C062 ] C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
20:13:16.0289 0x1214  C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe - ok
20:13:16.0289 0x1214  [ 723B834A07F7DF7DE4CEB637D57ACEA3, B42867045DD3FB7682CDBD133970421010F0F14125E4992C73657CABA4659250 ] C:\Users\Scott\AppData\Local\Temp\{F07CA67D-4E0D-49E0-A66D-AFA0EBA7EE9C}\{C11C8C75-656D-4BAC-AF3A-F588DCA95415}.tmp
20:13:16.0289 0x1214  C:\Users\Scott\AppData\Local\Temp\{F07CA67D-4E0D-49E0-A66D-AFA0EBA7EE9C}\{C11C8C75-656D-4BAC-AF3A-F588DCA95415}.tmp - ok
20:13:16.0305 0x1214  [ 37B0E02DC2E8A67152E01DCEE6247CAB, 02E0686D613C3B8142ABA6E035A520FBD09FC5D3FACF6287479502A11628A05F ] C:\Program Files (x86)\Western Digital\WD SmartWare\System.Data.SQLite.dll
20:13:16.0305 0x1214  C:\Program Files (x86)\Western Digital\WD SmartWare\System.Data.SQLite.dll - ok
20:13:16.0305 0x1214  [ 8BC7AE7E16458355508ECF5EC3A04E72, 39FE3D8E0D42D51809E33160DEA291E732615DB1C6EA24558B3731349F6F9A2E ] C:\Windows\System32\networkexplorer.dll
20:13:16.0305 0x1214  C:\Windows\System32\networkexplorer.dll - ok
20:13:16.0320 0x1214  [ C9394D30303451C140A2EDB193384CE7, C2D8E87C123BEACDC29A2361848717B25DF6BB6507F9BB4B8F255A6895BD1AC3 ] C:\Program Files\Acer\Acer ePower Management\CommonControl.dll
20:13:16.0320 0x1214  C:\Program Files\Acer\Acer ePower Management\CommonControl.dll - ok
20:13:16.0320 0x1214  [ F7410904F6EC4A3DA5CED24FB7765343, EC9AD066E0E1182DB4AD688D429D86D13F067E223B0B85ED19318FA006E1D870 ] C:\Program Files\Apoint2K\ApResUS.dll
20:13:16.0320 0x1214  C:\Program Files\Apoint2K\ApResUS.dll - ok
20:13:16.0320 0x1214  [ 5F639198C4137075DA50E61C23963C11, 3D03B3BF62B3469069AD6BE2AAEE152CB6722D36C001B8197FEBC2F3EB9ADBE0 ] C:\Windows\System32\drprov.dll
20:13:16.0320 0x1214  C:\Windows\System32\drprov.dll - ok
20:13:16.0336 0x1214  [ C1DE893FAF6D7F6CFB479A1F61835482, AD5FA3CE73777704C67C933691F1F068E1A7FF545F728B97574F9C33AC4BBC01 ] C:\Users\Scott\AppData\Local\Temp\{F07CA67D-4E0D-49E0-A66D-AFA0EBA7EE9C}\{DD6E57CF-11FD-4789-BC05-FE7B3A1E9032}.tmp
20:13:16.0336 0x1214  C:\Users\Scott\AppData\Local\Temp\{F07CA67D-4E0D-49E0-A66D-AFA0EBA7EE9C}\{DD6E57CF-11FD-4789-BC05-FE7B3A1E9032}.tmp - ok
20:13:16.0336 0x1214  [ 9110FFAD124283F37D38771BB60556AF, BB495FDF86B7C3DD7878C496090A624CE8FE68F61166C91A4C99EF1140F0AD23 ] C:\Windows\System32\dsound.dll
20:13:16.0336 0x1214  C:\Windows\System32\dsound.dll - ok
20:13:16.0336 0x1214  [ 427985DD99AFFB38244F5EF73D6C96FF, C0F5A4510211D3A694DCA92B44EBE5367FC9F4AA95993DCC0A925AEAC10F3AFB ] C:\Windows\System32\Vxdif.dll
20:13:16.0336 0x1214  C:\Windows\System32\Vxdif.dll - ok
20:13:16.0351 0x1214  [ 4880E5FA2B5181B893CD219AEC09D613, 901B1964273622325A1B34D901CAFED39B223CF7943403ED515588C0033BED5E ] C:\Program Files\Acer\Acer ePower Management\NetAdapterControl.dll
20:13:16.0351 0x1214  C:\Program Files\Acer\Acer ePower Management\NetAdapterControl.dll - ok
20:13:16.0351 0x1214  [ A4186B7D98BC6DF6D5D2EE5D3922599B, BAADCD0D4D0ED59EE85454BFA1584094277AF90517DE4449E4FCD2997F4A4C9B ] C:\Program Files\Apoint2K\Apoint.dll
20:13:16.0351 0x1214  C:\Program Files\Apoint2K\Apoint.dll - ok
20:13:16.0351 0x1214  [ 7273921B6DDFEFF3A8567B9800C5673A, DBDC60F5BDBB8428537452893A0ED76695D18F98218911B84A37ABE133BBECA2 ] C:\Windows\System32\ntlanman.dll
20:13:16.0351 0x1214  C:\Windows\System32\ntlanman.dll - ok
20:13:16.0367 0x1214  [ 4F7A4BC2C730D881C48D22A6E7EF547C, F1B98F9B65C7EC0FDCCB5DEED49010AB046EA85EFA3FB3F693F51E9C33B02DF4 ] C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
20:13:16.0367 0x1214  C:\Program Files\COMODO\COMODO Internet Security\cfp.exe - ok
20:13:16.0367 0x1214  [ 016544B452E6FDB54CD108D0248DB2B1, 1BCF1EA53C875583DD86D0E37CAB97E8385EF3548EC374C6EB215BA75D91AA34 ] C:\Windows\System32\davclnt.dll
20:13:16.0367 0x1214  C:\Windows\System32\davclnt.dll - ok
20:13:16.0367 0x1214  [ 15A03FD252F24EB2F067EEF09CDA72AC, 403544B368C89068980E3AB5F4BA282A086307E7AF1A82BF6CA3E6F6E87B5A5D ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Transactions\fd6be81e702718d6bf47eb815c2be4fa\System.Transactions.ni.dll
20:13:16.0367 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Transactions\fd6be81e702718d6bf47eb815c2be4fa\System.Transactions.ni.dll - ok
20:13:16.0383 0x1214  [ F33854F1515B7AAE38C2D306424E1262, 566FF786DB735B0136466B24BC57B20E5A5DFEE2C0A4AA10817FBAEE83A6D0D3 ] C:\Program Files\Apoint2K\EzAuto.dll
20:13:16.0383 0x1214  C:\Program Files\Apoint2K\EzAuto.dll - ok
20:13:16.0383 0x1214  [ 41962D5E18E9874390BC1F074571A6BB, 2015A691432CE09EB8A4C9D2C1FE95BFF4AF8A0702F3F2925068A54D416512B5 ] C:\Windows\Microsoft.NET\assembly\GAC_32\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll
20:13:16.0383 0x1214  C:\Windows\Microsoft.NET\assembly\GAC_32\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll - ok
20:13:16.0398 0x1214  [ 585FED4CDB8034B8B58AEB8008255817, 13D1055929D79598C04A4AB66EF3DBAADD265F9D1C3F43E84531238D2526A1AE ] C:\Windows\System32\opengl32.dll
20:13:16.0398 0x1214  C:\Windows\System32\opengl32.dll - ok
20:13:16.0398 0x1214  [ 45B24A357C801CE62052FE0CDC8BD4D2, 00602E41B78473825253F6B2557A5C43FBDDCCF713D806929AE7C039FF8F185C ] C:\Windows\System32\davhlpr.dll
20:13:16.0398 0x1214  C:\Windows\System32\davhlpr.dll - ok
20:13:16.0398 0x1214  [ 4951081A904C0603A47CF0B1DAB23028, F5FDB4933DB74899CABB07505A3F056E378C34CF593F0C8DB02DD5D9BF7F6160 ] C:\Program Files\Acer\Acer ePower Management\BrightnessControl.dll
20:13:16.0398 0x1214  C:\Program Files\Acer\Acer ePower Management\BrightnessControl.dll - ok
20:13:16.0414 0x1214  [ 16A187FC55A1AE7A1B001CBE2000D07E, 9927934EF4E60D751F10FA76984F13D9A29FAA2B305D250FDB561A0E8E72BD24 ] C:\Program Files\Apoint2K\ApMsgFwd.exe
20:13:16.0414 0x1214  C:\Program Files\Apoint2K\ApMsgFwd.exe - ok
20:13:16.0414 0x1214  [ F2967C0A97C0EA67D79D7F557213950D, 65516C83DCB3F952CD4454636B61CC2F153AF6BEEBC352463791D92F7F500F52 ] C:\Windows\System32\glu32.dll
20:13:16.0414 0x1214  C:\Windows\System32\glu32.dll - ok
20:13:16.0414 0x1214  [ 60CC15392FF14DCB9C29C69B3233741B, 458FB3DCDC4828D5C5625517D074795A706A545FB8D0FF46C5981A118D846A66 ] C:\Windows\System32\stobject.dll
20:13:16.0414 0x1214  C:\Windows\System32\stobject.dll - ok
20:13:16.0429 0x1214  [ 86B6AC0FD2881B3D20B80F51C7152AE0, BF1A04E0B00159925E716CD3A72CD40FD4BDD7D05684932A91629373CE524186 ] C:\Windows\System32\batmeter.dll
20:13:16.0429 0x1214  C:\Windows\System32\batmeter.dll - ok
20:13:16.0429 0x1214  [ A6C09924C6730DE8DEED9890A12AA691, 46EACBC27D15FD43431812D6CA770982178C07246AF3A1C2E0D40D745A1D5758 ] C:\Windows\System32\ddraw.dll
20:13:16.0429 0x1214  C:\Windows\System32\ddraw.dll - ok
20:13:16.0429 0x1214  [ B2742EA6ED844D747E2348A504E491CB, 38D2A3B32A77FE2ADCCACB74F7A8EAD6A4589A5E22D2A6E7DFEADACDAE66DA85 ] C:\Windows\System32\dxva2.dll
20:13:16.0429 0x1214  C:\Windows\System32\dxva2.dll - ok
20:13:16.0445 0x1214  [ 29C22748937F45C26590909E9F8E7137, A5BDF782D610BE023D52B7D8CC5EBD0C41A2B118515899D820DA3BA3220AED70 ] C:\Windows\System32\dciman32.dll
20:13:16.0445 0x1214  C:\Windows\System32\dciman32.dll - ok
20:13:16.0445 0x1214  [ 9BDB4A640283F29340E91F30B786B168, 425AA5060BA234694B8339F16F1DDFC8DC1F246D00F81E3B13EE44555413FF76 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualC\bcd4c092fe360a6a5f94d4e54c3e2bf0\Microsoft.VisualC.ni.dll
20:13:16.0445 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualC\bcd4c092fe360a6a5f94d4e54c3e2bf0\Microsoft.VisualC.ni.dll - ok
20:13:16.0445 0x1214  [ 6EC594AB7EFA45EACDE65FD4040F53D9, A2119AFC55B1231A838C9FD98F50DA9AA85E26EAF1991E8EFF27ADB7C7C3D250 ] C:\Windows\SysWOW64\riched20.dll
20:13:16.0445 0x1214  C:\Windows\SysWOW64\riched20.dll - ok
20:13:16.0461 0x1214  [ 8FC6C4EE0A2D3EBAA70FA38F99141BCE, 7A00880C69E596B6D867A918179703CABD8BEF12465B81420F3AC327F509F039 ] C:\Program Files\Windows Sidebar\sidebar.exe
20:13:16.0461 0x1214  C:\Program Files\Windows Sidebar\sidebar.exe - ok
20:13:16.0461 0x1214  [ 263E9A047D17CD50BAA9D3C02910D18D, F526648358AD121001D2776E0ACC333EC4AC168CA07B40A3D3C06C5CE6A361C3 ] C:\Windows\System32\oledlg.dll
20:13:16.0461 0x1214  C:\Windows\System32\oledlg.dll - ok
20:13:16.0461 0x1214  [ 18673B7DDECFB675A989EB2B7C51A7F1, 291FD9F29104425E3FAEAB558A901A75653EED7F9487BB923A1CB030A4ED9345 ] C:\Program Files\COMODO\COMODO Internet Security\cmdhtml.dll
20:13:16.0461 0x1214  C:\Program Files\COMODO\COMODO Internet Security\cmdhtml.dll - ok
20:13:16.0476 0x1214  [ 4FDFA3F219692D17011BF1B428857C1E, 0422101F9D47633DFF47DF022031C4221B9D395F3E23C0C6E0A54CE55D76565D ] C:\Program Files\Windows Defender\MpRTP.dll
20:13:16.0476 0x1214  C:\Program Files\Windows Defender\MpRTP.dll - ok
20:13:16.0476 0x1214  [ F468C806267D46B68DB7EB32FBF0A103, 6454E84A39E4B6E11BEC99357ADBD1CA039F7BBDDF9036ACD8F3B0AB6608A60B ] C:\Windows\System32\thumbcache.dll
20:13:16.0476 0x1214  C:\Windows\System32\thumbcache.dll - ok
20:13:16.0476 0x1214  [ FBD879D17B26D49DD7A48FF58062FAE6, 531363F29AB4C479C7757D5FE45D7CE2609FA112E644AB98F8269E03454DC387 ] C:\Windows\System32\tdh.dll
20:13:16.0476 0x1214  C:\Windows\System32\tdh.dll - ok
20:13:16.0492 0x1214  [ 651F169718CC46C8A9264880C538D5FF, D93EB53F909EA1120D647BA672481E0150CD3EC3C86D4B80BDC0E4670D34D2D9 ] C:\Windows\System32\prnfldr.dll
20:13:16.0492 0x1214  C:\Windows\System32\prnfldr.dll - ok
20:13:16.0492 0x1214  [ 6937960D23F2C168EF302942A471974B, D50F8A49976574FD32605E45706A3B436ADE8CA7936385B2402C88750CC3DD17 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.EnterpriseSe#\be58a8ac84bf1b1c70c6a5da06363717\System.EnterpriseServices.ni.dll
20:13:16.0492 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.EnterpriseSe#\be58a8ac84bf1b1c70c6a5da06363717\System.EnterpriseServices.ni.dll - ok
20:13:16.0492 0x1214  [ 8898C95862D03D16B2A06DB4DB6BB6B2, DFD06AA65AC6A8BBF24FFDF8355098C3BB0A54400A77EBFDB845B6A47733D8B2 ] C:\Windows\SysWOW64\ExplorerFrame.dll
20:13:16.0492 0x1214  C:\Windows\SysWOW64\ExplorerFrame.dll - ok
20:13:16.0507 0x1214  [ 522EEC6D2CAF10ADF7D9B6868A5BDEA9, 15198AF557E2630492106CA6306C03E1A103FF9E9669B70E601957AC7D490C87 ] C:\Program Files (x86)\Launch Manager\LManager.exe
20:13:16.0507 0x1214  C:\Program Files (x86)\Launch Manager\LManager.exe - ok
20:13:16.0507 0x1214  [ B4F87405883C7E9D35711183E56ADCF0, 56C90BDB61DB4D80CE983DA9DB55EA51A4CEB1998D1EC890704F08A1538123B9 ] C:\Program Files (x86)\CineForm\Tools\GoProCineFormStatusViewer.exe
20:13:16.0507 0x1214  C:\Program Files (x86)\CineForm\Tools\GoProCineFormStatusViewer.exe - ok
20:13:16.0507 0x1214  [ 6E1F8165C365D35C8E3C045AF0CDD481, B861360D0A014265A0BEB4CC2FE31EA05AE95120E8B07820C13A044D64C00E2B ] C:\Windows\SysWOW64\duser.dll
20:13:16.0507 0x1214  C:\Windows\SysWOW64\duser.dll - ok
20:13:16.0523 0x1214  [ 81D64E8D70E5FBF9F7ABF2D41154F54D, 878E5A32AF0E7633830FE313CF9319DE3EBE0A9AA78DCDD525C0A3500A698CB6 ] C:\Windows\System32\AudioSes.dll
20:13:16.0523 0x1214  C:\Windows\System32\AudioSes.dll - ok
20:13:16.0523 0x1214  [ A07F12FA297F3F074D496B333C259AFA, 24C54E9ACDD135198595B67B62859C722F28FE597A4EFB8CB0436C881FF85FF4 ] C:\Program Files (x86)\Launch Manager\COMFNUTL.DLL
20:13:16.0523 0x1214  C:\Program Files (x86)\Launch Manager\COMFNUTL.DLL - ok
20:13:16.0539 0x1214  [ 88C638BCF3A22438EE7DDF1D98F0A21C, D80E50C9CF02AB024A16660AF90BBBBC5B34AEC7180FCF4ADED6C26B5BD83BD1 ] C:\Program Files (x86)\Razer\DeathAdder\razerhid.exe
20:13:16.0539 0x1214  C:\Program Files (x86)\Razer\DeathAdder\razerhid.exe - ok
20:13:16.0539 0x1214  [ C755E17BAC396F9A9F468320B3F6CF46, 38A8205B3C8CBF2B06FD131AF95A37E2C7E1931486F267826C5E288E14EC129A ] C:\Windows\Microsoft.NET\assembly\GAC_32\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
20:13:16.0539 0x1214  C:\Windows\Microsoft.NET\assembly\GAC_32\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll - ok
20:13:16.0539 0x1214  [ 632A6D75FEEABC846EE9AEC33345EF34, 2D3AFB5A90000FF8C7765532BE28205BC67154E5B304FCC6B57BAAFC1796824E ] C:\Program Files (x86)\Launch Manager\CDROMUTL.DLL
20:13:16.0539 0x1214  C:\Program Files (x86)\Launch Manager\CDROMUTL.DLL - ok
20:13:16.0554 0x1214  [ 913C2E4A03201644FC986EDEB5F8A390, C635EE4A2A309EB8C550F6F0B1A0723AA7317C9B3396641D9EA9231255944C6F ] C:\Windows\System32\DXP.dll
20:13:16.0554 0x1214  C:\Windows\System32\DXP.dll - ok
20:13:16.0554 0x1214  [ D56B8FBCF40D47C6D3EF663389953491, 1A28AB40C3F61DFA60D920BE8E87D6DB8CD9CFC192145828576CF570A3A5E53C ] C:\Windows\System32\RtkCfg64.dll
20:13:16.0554 0x1214  C:\Windows\System32\RtkCfg64.dll - ok
20:13:16.0554 0x1214  [ 0E34B7BB1FCF22BCC1E394D16F9E992B, 382CA8E6BAC301E2F277F8EDA03D263FF71272796A8EED582C36294EEE9191F9 ] C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe
20:13:16.0554 0x1214  C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe - ok
20:13:16.0570 0x1214  [ 69259DD752862F5665413AFCFB4C0B0E, C2DBB39C510D934261853616575A0F5949142E6A1DFB2A271321DCB5B0AFAA57 ] C:\Program Files (x86)\Launch Manager\MIXERUTL.DLL
20:13:16.0570 0x1214  C:\Program Files (x86)\Launch Manager\MIXERUTL.DLL - ok
20:13:16.0570 0x1214  [ FEF97425A9025573547D1AC8A6621072, 4C89150CBD40C44D12FF1D2766AA73369EE32704F3B23F6A1A40A2FD4F7BBEF1 ] C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe
20:13:16.0570 0x1214  C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe - ok
20:13:16.0570 0x1214  [ A53F59BC46766CE79E407AB6F451100D, B49A69ADA68E44558B3128966F885543F0015B2A7E95682219F2E5F5365AF386 ] C:\Program Files (x86)\Launch Manager\WND2FILE.DLL
20:13:16.0570 0x1214  C:\Program Files (x86)\Launch Manager\WND2FILE.DLL - ok
20:13:16.0585 0x1214  [ 198E8EF89D5D9F4B5C971D3591FD227D, DDDBDD1C6D2360DB4697D25221AFEEECBBF81B749C302413CAAA9111489E6782 ] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
20:13:16.0585 0x1214  C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe - ok
20:13:16.0585 0x1214  [ 71FC112959B07D686E71541BD9D4F237, 1412F52431CF65D6D9953CB795A936C5BF0F91E96B87C168A661C6CA0B320A18 ] C:\Program Files (x86)\Launch Manager\PowerUtl.dll
20:13:16.0585 0x1214  C:\Program Files (x86)\Launch Manager\PowerUtl.dll - ok
20:13:16.0601 0x1214  [ ABECA12C8E8650526475825BB2A17691, 8E78AA70BE5F9ACA06FF57B112390FA316B45398B168755EFD6F1809343ADAF2 ] C:\Program Files\Acer\Acer ePower Management\SysHook.dll
20:13:16.0601 0x1214  C:\Program Files\Acer\Acer ePower Management\SysHook.dll - ok
20:13:16.0601 0x1214  [ 6EB75D77133B9B42C0EB9D4D0F861CD9, E14C636C1CE155C07CA5ED76B130A367C20718C53B68443EEA75D8B763EED0ED ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscoreei.dll
20:13:16.0601 0x1214  C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscoreei.dll - ok
20:13:16.0601 0x1214  [ 8BC00C736E67A75D936E5B440917359B, 66809F59D064113763DA75F68F5BD0874CB3A954BD4FF6E28BBF0BF311984E89 ] C:\Windows\System32\ActionCenter.dll
20:13:16.0601 0x1214  C:\Windows\System32\ActionCenter.dll - ok
20:13:16.0617 0x1214  [ FAD69BE4B1D75AD2C6938DEB89AD7A6B, B9140F296102440F4DAEBC851F6C5EABA6AD094495649F62B2648153BABD24C7 ] C:\Windows\System32\RtkAPO64.dll
20:13:16.0617 0x1214  C:\Windows\System32\RtkAPO64.dll - ok
20:13:16.0617 0x1214  [ EE06B85BC69F18826302348A2AD089E0, 417205797CC9F6C986A863A61179784D9ADCAF1961EF8A4D9042D73C5A86509A ] C:\Windows\SysWOW64\dui70.dll
20:13:16.0617 0x1214  C:\Windows\SysWOW64\dui70.dll - ok
20:13:16.0617 0x1214  [ 2D82C098BB7EF5AE083A19F6C6534396, C06B15D8DD9248FAD48AA6446250B141A9E42F5422EB80C89E7B9716F733D059 ] C:\Windows\SysWOW64\atiadlxy.dll
20:13:16.0617 0x1214  C:\Windows\SysWOW64\atiadlxy.dll - ok
20:13:16.0632 0x1214  [ A694FF0FE63C726B31F11EDF06A37873, 0A804E951DBB37EA2B9243B2CD5A77C915E28C9A19D755D792B264BD5B87B59C ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.EnterpriseSe#\be58a8ac84bf1b1c70c6a5da06363717\System.EnterpriseServices.Wrapper.dll
20:13:16.0632 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.EnterpriseSe#\be58a8ac84bf1b1c70c6a5da06363717\System.EnterpriseServices.Wrapper.dll - ok
20:13:16.0632 0x1214  [ C746F3BF98E92FB137B5BD2B8B5925BD, 67A8990F3D491D149E65C90042909259793C65E671DC953FDA1F7590FAC23D9E ] C:\Windows\System32\FXSST.dll
20:13:16.0632 0x1214  C:\Windows\System32\FXSST.dll - ok
20:13:16.0632 0x1214  [ 20D30D8717E9DFF90224B5AB37410D9D, E9D8D3F5FD9355769D7CB5FE8FFD7BD99460E2791A94A1F62A968865D5A84B64 ] C:\Program Files (x86)\Launch Manager\OSDUTL2.DLL
20:13:16.0632 0x1214  C:\Program Files (x86)\Launch Manager\OSDUTL2.DLL - ok
20:13:16.0648 0x1214  [ C861851A0BBD9903E324487011AA3705, D7A6092F0A2FECC08F19520A801084E821B4FCC4D588818A8D232AE9257E7EC0 ] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
20:13:16.0648 0x1214  C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe - ok
20:13:16.0648 0x1214  [ E2700D2EDBF11D21C0782A01BC0CEE72, 7C340EBE07D5FCAA60E8C33D211804C1C130FC41D05F471B5EC432B98BB52113 ] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{AF0EE423-463D-485B-817D-6BC082D331A3}\mpengine.dll
20:13:16.0648 0x1214  C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{AF0EE423-463D-485B-817D-6BC082D331A3}\mpengine.dll - ok
20:13:16.0663 0x1214  [ DF872832944E29564DD9824F85AEA51B, 039D16721468306967798FADE57D8C75DB1BF8B8C0F0496D447A10DB638C5783 ] C:\Program Files (x86)\Razer\DeathAdder\CheckPidVid.dll
20:13:16.0663 0x1214  C:\Program Files (x86)\Razer\DeathAdder\CheckPidVid.dll - ok
20:13:16.0663 0x1214  [ C26B09276755E0698B31CF0BAE0BF182, A95B567626C0573DF0F136818AA7E487BC4995552E9B7A041437539E49B99473 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
20:13:16.0663 0x1214  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe - ok
20:13:16.0663 0x1214  [ 34E6D8C67E7FD7C917BECFECA326B168, 23A0BD68C969E795DA55041982672550DC1557BC64D3C42D76AFD6A3F83AD33F ] C:\Windows\System32\FXSAPI.dll
20:13:16.0663 0x1214  C:\Windows\System32\FXSAPI.dll - ok
20:13:16.0679 0x1214  [ 0470997A5ADC2FCDDCB3461D92073FAA, 930C03DD63C4105C5A701B453F821B6BD4FA14CF34119AE75ECCCF872C1613FC ] C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7600.17007_none_72f44f3186198a88\GdiPlus.dll
20:13:16.0679 0x1214  C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7600.17007_none_72f44f3186198a88\GdiPlus.dll - ok
20:13:16.0679 0x1214  [ A4F21F93103D6345F8D7BE48D0BD7E2B, 586D07964511273EA3FED6E19EF3B1CC0E6430A3F4A3C73EC72BDB5DD411B29F ] C:\Windows\assembly\NativeImages_v4.0.30319_32\CustomMarshalers\a7b2061e0a16815038ec51992c6ffc52\CustomMarshalers.ni.dll
20:13:16.0679 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\CustomMarshalers\a7b2061e0a16815038ec51992c6ffc52\CustomMarshalers.ni.dll - ok
20:13:16.0679 0x1214  [ FD5A0A28AAEA0421039242A9D592212B, 5F1061B60D947DCF9300D193E04E96D7481C3749BAAE7B2F0023827904A84BED ] C:\Program Files (x86)\Launch Manager\SZUPFUTL.DLL
20:13:16.0679 0x1214  C:\Program Files (x86)\Launch Manager\SZUPFUTL.DLL - ok
20:13:16.0695 0x1214  [ 3B4C08A5C45492402761452A624F91F1, 64D006A216B37C96C65CB0BAA2BE5EA3482EE04BEFE915570E4C51077CA47FA0 ] C:\Program Files (x86)\Launch Manager\RadioWndUtl.dll
20:13:16.0695 0x1214  C:\Program Files (x86)\Launch Manager\RadioWndUtl.dll - ok
20:13:16.0695 0x1214  [ C8E8B8239FCF17BEA10E751BE5854631, CB869195E78AB613CEF50AE3B247F0E4E42F233A7AAF5B2BFC5ADEA2C45C5F8D ] C:\Windows\System32\FXSRESM.dll
20:13:16.0695 0x1214  C:\Windows\System32\FXSRESM.dll - ok
20:13:16.0710 0x1214  [ 8A74BCA77FDB507065A8D0F2BEE9558D, 6003589A9017D08D95C2613B83BCBD573B054C73B632E7812565F78DB54D40C6 ] C:\Windows\Microsoft.NET\assembly\GAC_32\CustomMarshalers\v4.0_4.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
20:13:16.0710 0x1214  C:\Windows\Microsoft.NET\assembly\GAC_32\CustomMarshalers\v4.0_4.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll - ok
20:13:16.0710 0x1214  [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] C:\Windows\System32\wersvc.dll
20:13:16.0710 0x1214  C:\Windows\System32\wersvc.dll - ok
20:13:16.0710 0x1214  [ 8DDA2B606279753601F9415DA503CA63, 2C9AD8218E150B6D50817991377ED3230A1672EFBD7AE29D0CD9E55E2418C800 ] C:\Program Files (x86)\QuickTime\QTTask.exe
20:13:16.0710 0x1214  C:\Program Files (x86)\QuickTime\QTTask.exe - ok
20:13:16.0726 0x1214  [ 555A7ACF2BA3328160778ED67D91673B, EB5CB90621E4ECEC6DD3A84CC0498EFA9ACAE17EC68E004571289FB361F7CB37 ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorwks.dll
20:13:16.0726 0x1214  C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorwks.dll - ok
20:13:16.0726 0x1214  [ C7DE4414D5F6F9373F913CB86262D512, 8DD1B4B46694BE62DC4BD0C4448195DED53BE7F39E984EAD4DB9F2F19AF41E09 ] C:\Program Files\Common Files\Microsoft Shared\ink\InputPersonalization.exe
20:13:16.0726 0x1214  C:\Program Files\Common Files\Microsoft Shared\ink\InputPersonalization.exe - ok
20:13:16.0726 0x1214  [ 1154FEFC73880A2EF44295EF0DBDC59F, 09D98C5D041B7EAFD77728EC9B14CAC2EC30854C68ED0901FCEF55DFEF45070A ] C:\Windows\System32\mshtml.dll
20:13:16.0726 0x1214  C:\Windows\System32\mshtml.dll - ok
20:13:16.0741 0x1214  [ C19AAD30985941B6B7E8D3A7BEFF715B, A75BFE3115A22B45D9C36F526599CEF56EA9CFB432B4F97D8C6F1AD483013216 ] C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
20:13:16.0741 0x1214  C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe - ok
20:13:16.0741 0x1214  [ D17A7AD48BE4C91BBE7ECE419486A335, 0770CE30C7BD97F69FD1AA5342C49350A56C906DE6D013EF5ABE8D9A8F295578 ] C:\Program Files (x86)\Launch Manager\MMDUtl.dll
20:13:16.0741 0x1214  C:\Program Files (x86)\Launch Manager\MMDUtl.dll - ok
20:13:16.0741 0x1214  [ A0F1DFC9E47B2524213AFF32E26BE92D, 6CE68D565BBAE511FD16CB6919EFD18366990A06CF9C4A25F28DFD3345085D10 ] C:\Program Files (x86)\Windows Media Player\wmplayer.exe
20:13:16.0741 0x1214  C:\Program Files (x86)\Windows Media Player\wmplayer.exe - ok
20:13:16.0757 0x1214  [ 2BC7C9FD0A9F2C9AFC373F3AD1EE3891, 0A82A475301202791A7C10F978F952EAB7DB146A702D4EA67E24E2C98BC19638 ] C:\Windows\System32\Syncreg.dll
20:13:16.0757 0x1214  C:\Windows\System32\Syncreg.dll - ok
20:13:16.0757 0x1214  [ E7368F0A8D19445EAF5C5D0DBB8B8DAB, CF9082360E32A7C3E13A67AC2C6192F4A76870D43DA9FF2936993A637F712761 ] C:\Windows\System32\AltTab.dll
20:13:16.0757 0x1214  C:\Windows\System32\AltTab.dll - ok
20:13:16.0757 0x1214  [ C836175870E00ACC546066632E15BD10, 4347F3319C26DA1C38F395C74DBD67AF886149C8F29EDE765DD96C8480A3054A ] C:\Windows\ehome\ehSSO.dll
20:13:16.0757 0x1214  C:\Windows\ehome\ehSSO.dll - ok
20:13:16.0773 0x1214  [ 063F592B4C0AE7F786BC1A1460FB380E, C6E58F8C87609849C5333108A930F75C60DB865D8D0F595A5ADC79E09F1B2C81 ] C:\Program Files (x86)\Launch Manager\VistaVol.dll
20:13:16.0773 0x1214  C:\Program Files (x86)\Launch Manager\VistaVol.dll - ok
20:13:16.0773 0x1214  [ 8C680C0E6B3D6711B2B88AC82FE1804E, 1308E99ADBA5DA47689A7B089016BDDA93AC6EADD0698225C07F5C7453582A9F ] C:\Windows\SysWOW64\MMDevAPI.dll
20:13:16.0773 0x1214  C:\Windows\SysWOW64\MMDevAPI.dll - ok
20:13:16.0773 0x1214  [ 50925A12AD9A8F45609E914D9F941E68, 3637BE729BFADD18C00594E5A1CE0A997394944D26B3AE7A1C65A113CDE6DCF1 ] C:\Program Files\COMODO\COMODO Internet Security\themes\black.theme
20:13:16.0773 0x1214  C:\Program Files\COMODO\COMODO Internet Security\themes\black.theme - ok
20:13:16.0788 0x1214  [ FD4F95ABDE5603478C929B6CB0BDCFFF, 9CDF8BD864CB5714CC2CF7F7A5612FEEDDAE6B92DD14F794946E565F235AA59F ] C:\Windows\System32\pnidui.dll
20:13:16.0788 0x1214  C:\Windows\System32\pnidui.dll - ok
20:13:16.0788 0x1214  [ AFBB5060A2DAD431A2EAEB2C86CFFE81, 03BBBC09385CD995D143356D6CAE0B255AB08C47C8E778CD965C87B17DA10956 ] C:\Windows\SysWOW64\AudioSes.dll
20:13:16.0788 0x1214  C:\Windows\SysWOW64\AudioSes.dll - ok
20:13:16.0788 0x1214  [ E4401CF27225C1D6E664E86195978562, F572A2757C2A649E25F52F7071E6A2CCF298C60A8F2B15A0E2D800F890C4FD93 ] C:\Program Files (x86)\iTunes\iTunesHelper.exe
20:13:16.0788 0x1214  C:\Program Files (x86)\iTunes\iTunesHelper.exe - ok
20:13:16.0804 0x1214  [ 4860790FA0F039A2C094BE4BF0CC5858, BD90A475CB617C5CEBA48539FA2037587A55D5DB2EF8F7B1A6BB096AB1B8A45F ] C:\Program Files (x86)\Launch Manager\CdDirIo.dll
20:13:16.0804 0x1214  C:\Program Files (x86)\Launch Manager\CdDirIo.dll - ok
20:13:16.0804 0x1214  [ 25BEF4C3E9417AE09B017CCFB66B4383, E9A8CA21AB3C8CC48168990E185C8B77EF27F2F31D1F943BDB3D92290BF62548 ] C:\Program Files\COMODO\COMODO Internet Security\themes\blue.theme
20:13:16.0804 0x1214  C:\Program Files\COMODO\COMODO Internet Security\themes\blue.theme - ok
20:13:16.0804 0x1214  [ BD03C64C4B1F34D1F330BF6C4AC8113D, CA229A40A8073BFB067F8110E4FF9ECF398131FB5AE225F9477E79049817B3DD ] C:\Windows\System32\QUTIL.DLL
20:13:16.0804 0x1214  C:\Windows\System32\QUTIL.DLL - ok
20:13:16.0819 0x1214  [ C85ECCBAA179719E658FFDBF99221E1E, E9802967EF1DE90F571E42D4C50D2C61BB77D475429180009CFFAC7D4CC234F1 ] C:\Program Files (x86)\iTunes\iTunesHelper.dll
20:13:16.0819 0x1214  C:\Program Files (x86)\iTunes\iTunesHelper.dll - ok
20:13:16.0819 0x1214  [ FBF6E77769F2452885E68B5AC6DFBDDE, B095653D08E3F0A572669A7130E9D08227B17F1B1A69C629D58CACDF91D965C6 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
20:13:16.0819 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe - ok
20:13:16.0835 0x1214  [ CC30AA4EF49CA0B3B1C1CBCE325C36AD, D1D64C0312D600CF81949A186774962A33FE09D90D1CEE8B5A5EB346BABA2802 ] C:\Program Files\COMODO\COMODO Internet Security\themes\default.theme
20:13:16.0835 0x1214  C:\Program Files\COMODO\COMODO Internet Security\themes\default.theme - ok
20:13:16.0835 0x1214  [ 2A032EFAE93D6C5DE769796FB355185F, 56FA6F34C3DC9806413D5EAFE40096E10C09F323FE2CF8BBA7827E52646348F4 ] C:\Program Files (x86)\Razer\DeathAdder\razerofa.exe
20:13:16.0835 0x1214  C:\Program Files (x86)\Razer\DeathAdder\razerofa.exe - ok
20:13:16.0835 0x1214  [ 691C8DFB208227F0CBB5C0897C742ACE, 3240EAFF8182D1E8C8EA4642D2BF7A6EF19DCA2618E0C20B1FC6E81C277B8649 ] C:\Windows\SysWOW64\WindowsCodecs.dll
20:13:16.0835 0x1214  C:\Windows\SysWOW64\WindowsCodecs.dll - ok
20:13:16.0851 0x1214  [ 66920354B984D4A3848A84B4E66745EA, 3F98352A38512C81FAF2C3FE6F00D766B33111A0EA5F7B43B0DBF5A2952B5F79 ] C:\Windows\System32\netshell.dll
20:13:16.0851 0x1214  C:\Windows\System32\netshell.dll - ok
20:13:16.0851 0x1214  [ AB01C36BCC34CCFE5B0BB5FFB2605135, 214D133CE85504AF924D1CE00FC10DD80E8397C6E1994841EAE78008FAAAE661 ] C:\Windows\System32\WPDShServiceObj.dll
20:13:16.0851 0x1214  C:\Windows\System32\WPDShServiceObj.dll - ok
20:13:16.0851 0x1214  [ 30F9BACA07F8251D7DD1805A9E919CE0, 7B6569B744EA9700957510CDDC8F02E7F47B99564B03E4784AA44EA89B750288 ] C:\Windows\System32\wdmaud.drv
20:13:16.0851 0x1214  C:\Windows\System32\wdmaud.drv - ok
20:13:16.0866 0x1214  [ 8560FFFC8EB3A806DCD4F82252CFC8C6, CC27BC092369A89D6147B16568FEDEB68B584D5738CD686C31F7FAE22ED17B3B ] C:\Windows\System32\ksuser.dll
20:13:16.0866 0x1214  C:\Windows\System32\ksuser.dll - ok
20:13:16.0866 0x1214  [ 7A1B7FFB5744631171796A076FE93E0D, 1313CF124B48F4E44663191C5A81742A257CE26D76DCE547773E21C36940DE9F ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccwkrlib.dll
20:13:16.0866 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\ccwkrlib.dll - ok
20:13:16.0866 0x1214  [ 38DBEE5F13B510216BB0F3FFA909B422, 8DC02DC69CE5EBAAA730FC0625B38E4A7B59E1B7C0E70F02E9FFAC536E87E23B ] C:\Program Files (x86)\Avira\AntiVir Desktop\rcimage.dll
20:13:16.0866 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\rcimage.dll - ok
20:13:16.0882 0x1214  [ 814A169C40B55178BD8E1F79D1ADA649, 17DFAE5F140F0A5840CAC91FD5B72439C16038106C8076AA30D03FC0972DD49B ] C:\Program Files (x86)\iTunes\iTunesHelper.Resources\iTunesHelper.dll
20:13:16.0882 0x1214  C:\Program Files (x86)\iTunes\iTunesHelper.Resources\iTunesHelper.dll - ok
20:13:16.0882 0x1214  [ 4879B16C91F56DCA20DDC598A96D476D, B8957F11349C0B4EB5659C44193D86417BB7D4028C574E992953820BF9C3E7E5 ] C:\Program Files (x86)\Launch Manager\LmSmbKel.dll
20:13:16.0882 0x1214  C:\Program Files (x86)\Launch Manager\LmSmbKel.dll - ok
20:13:16.0897 0x1214  [ 5E04C53224E7D946F35DC1208835FD95, EE5AEFEABECF781F1EC7C97376FAA354EE7283D263997AD14B64EE8C1926C1DA ] C:\Program Files\COMODO\COMODO Internet Security\themes\metal.theme
20:13:16.0897 0x1214  C:\Program Files\COMODO\COMODO Internet Security\themes\metal.theme - ok
20:13:16.0897 0x1214  [ FA5D8F83A5800B3885ABA2F64E6F01F3, 3422056DCC749341CCB6C9CFAA345DFEA4B2225E4C83F44FC96D8571FBEB3154 ] C:\Windows\SysWOW64\WTClient.exe
20:13:16.0897 0x1214  C:\Windows\SysWOW64\WTClient.exe - ok
20:13:16.0897 0x1214  [ EC6BA7C92FA5B2AA4AFDF4DF22AEDAB7, 690F12C490BEE2BF17AB7B6804E6E9B96F51C304350CCDE80FE5C7EEFA89720E ] C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_88e41e092fab0294\msvcr80.dll
20:13:16.0897 0x1214  C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_88e41e092fab0294\msvcr80.dll - ok
20:13:16.0913 0x1214  [ 4F3CD1C59EA71401E155C432BCECE180, 6D4118A627CAE509E43D0CC0062EECAA0990C955BB15AE24834460551B2F51A2 ] C:\Windows\System32\PortableDeviceTypes.dll
20:13:16.0913 0x1214  C:\Windows\System32\PortableDeviceTypes.dll - ok
20:13:16.0913 0x1214  [ 429839485D438C24E3434F191A234312, AA038757CB7A98378484D46ECEBD3E79957D51FAE32E3C0116CFBBEFFFB84FBC ] C:\Program Files (x86)\Launch Manager\aipflib.dll
20:13:16.0913 0x1214  C:\Program Files (x86)\Launch Manager\aipflib.dll - ok
20:13:16.0913 0x1214  [ 5112FBD9885D79A9FC73BDE9B1EF9334, 5466E0BDB92C68DD4F56BD5884D457AE03A2F5C5E3BA1D5C8CDE3CF71D53F4CD ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon_main.dll
20:13:16.0913 0x1214  C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon_main.dll - ok
20:13:16.0929 0x1214  [ 4AA853BBF3BA7E60BD644CDCCDD90FD6, AAEFC7EC0C37DACD1E59519DC2E6B3E403EC06BE7ED10AE846D4E7217FAFD08D ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccguard.dll
20:13:16.0929 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\ccguard.dll - ok
20:13:16.0929 0x1214  [ B305CD9A45F7D462980A916D0C3B34E3, 293C5D20D770E39808E221CCFB21A7919F44B8B8ED56FC6057F3FFB68ABD3FE0 ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccgrdrc.dll
20:13:16.0929 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\ccgrdrc.dll - ok
20:13:16.0929 0x1214  [ A619164BD43EF0CAB44C1F5D319AFCED, 094DD9E454FC95811D62B70C7980E5F81D73D93931C6548FF35674B8BE375093 ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccgrdw.dll
20:13:16.0929 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\ccgrdw.dll - ok
20:13:16.0944 0x1214  [ 74243848543913A38094EE85D7F84F3A, DAAFD1DA491EA7E62CF260804BD11D208AF2C9CC10B55760E3D75470F86A022B ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccwgrd.dll
20:13:16.0944 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\ccwgrd.dll - ok
20:13:16.0944 0x1214  [ 49F10F9B2274B46744276ECBCB7D0C50, 119E91ED2ED40335745D23E3A65D9AA8EF99B4FEA8EF94BB05575F867A0886BE ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccwgrdrc.dll
20:13:16.0944 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\ccwgrdrc.dll - ok
20:13:16.0960 0x1214  [ 9628BEE458D7F42FFFC8A2A675161D1D, A527ECE447520C3241F6802CBA79CA605B4043C28DEB290053A025F2761BD709 ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccwgrdw.dll
20:13:16.0960 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\ccwgrdw.dll - ok
20:13:16.0960 0x1214  [ 801C86161B5786A8F853D5D872A62A3C, 23F200C6CEDEADDAD43845CE03EB546D16B1D792B4A41C95BF824EC259D8080A ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccgen.dll
20:13:16.0960 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\ccgen.dll - ok
20:13:16.0960 0x1214  [ 0E8973DE5959E19D0A950EF0A481123F, 53F10B0315D17516333BAC1A15CFD3C9566CBA59D1262CB9D605E34C0264FF5C ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccgenrc.dll
20:13:16.0960 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\ccgenrc.dll - ok
20:13:16.0975 0x1214  [ 9DF319F1C2D4B80D8CE8214EA4899ADF, 256F16C394F79F27AC0B9CC99C34660E45A840BFA5C9187F813EED357BD58045 ] C:\Program Files (x86)\iTunes\iTunesHelper.Resources\en.lproj\iTunesHelperLocalized.dll
20:13:16.0975 0x1214  C:\Program Files (x86)\iTunes\iTunesHelper.Resources\en.lproj\iTunesHelperLocalized.dll - ok
20:13:16.0975 0x1214  [ 985D5155B137AEFDAE716A4752275D40, 4CB09AF48757B564C5A338950521DB77F9A08D7F3C6B915245F59582A78BFBE6 ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccupdate.dll
20:13:16.0975 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\ccupdate.dll - ok
20:13:16.0975 0x1214  [ B3CE0951E3C1EA3C733573C472EE85F9, F7D81435BA1B85A6B105480B8BF484255CB74B2E31CEA927D8F3546DB6549293 ] C:\Windows\System32\msimtf.dll
20:13:16.0975 0x1214  C:\Windows\System32\msimtf.dll - ok
20:13:16.0991 0x1214  [ 518FF3876B04E4AB7D8C9ECAA60B4F1E, 7FEFF297532EB426D1F20BFE95A5E219640A578AF5729CD198350CF156AFF1F5 ] C:\Program Files\Common Files\Microsoft Shared\ink\mshwLatin.dll
20:13:16.0991 0x1214  C:\Program Files\Common Files\Microsoft Shared\ink\mshwLatin.dll - ok
20:13:16.0991 0x1214  [ 3E4E76D2AD42B4D9C868A381F51B683A, 7DC04D8C4324D251C21D18F970E8AB10494EC0DE87822DDB939B135914D92BAA ] C:\Program Files (x86)\Launch Manager\LMworker.exe
20:13:16.0991 0x1214  C:\Program Files (x86)\Launch Manager\LMworker.exe - ok
20:13:16.0991 0x1214  [ 92AAF75C3EB344A098DC026BC9DDF42A, 1E47DCB47C9543452013E98B457E6A4DA21FF6F38BA551A87D8A42C5645F35CA ] C:\Windows\System32\bthprops.cpl
20:13:16.0991 0x1214  C:\Windows\System32\bthprops.cpl - ok
20:13:17.0007 0x1214  [ 3B54272A95DE6D27AF06951D6498D7AD, 233D4286E2183C5D14070772AE3033ABCFEDFBAE5771257FB84580A2330A429D ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccupdrc.dll
20:13:17.0007 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\ccupdrc.dll - ok
20:13:17.0007 0x1214  [ 0F44EA0F3E42E8C9367AC22B48AEEA03, 6DCBCA6EF58BED918040A652EC48E77E0F506A761A436CA7E44D6CC4E373F656 ] C:\Program Files (x86)\Avira\AntiVir Desktop\cclic.dll
20:13:17.0007 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\cclic.dll - ok
20:13:17.0022 0x1214  [ D607B2F1BEE3992AA6C2C92C0A2F0855, E22301C8F01DBF0A38A85165959BB070647C996CB1BCD50FDFE3DDDCA427DF2A ] C:\Windows\System32\FXSSVC.exe
20:13:17.0022 0x1214  C:\Windows\System32\FXSSVC.exe - ok
20:13:17.0022 0x1214  [ 07BDE9690FDC796705E8BB811F61237B, 196D45EA9C8895AEAB976EDD567F1D1142EF965DB31947B08BB23A4A8F952FA3 ] C:\Program Files (x86)\Launch Manager\NTKCUtl.dll
20:13:17.0022 0x1214  C:\Program Files (x86)\Launch Manager\NTKCUtl.dll - ok
20:13:17.0022 0x1214  [ 840817432DE1FF7F8260AFA3A39E5AEB, A04449572D13F9C5BF60CE79C0A305C008EDE9A894AD84F4BFBFF124EFEC9363 ] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{AF0EE423-463D-485B-817D-6BC082D331A3}\mpasbase.vdm
20:13:17.0022 0x1214  C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{AF0EE423-463D-485B-817D-6BC082D331A3}\mpasbase.vdm - ok
20:13:17.0022 0x1214  [ 4B71D40C591867CC1F2C0F134EA21239, BC61F9A6F2E5C1206E17072EADF6098645B5C7A3147DD7EAC7748214C9DF9FCB ] C:\Program Files (x86)\Avira\AntiVir Desktop\cclicrc.dll
20:13:17.0038 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\cclicrc.dll - ok
20:13:17.0038 0x1214  [ 3DB6A4C44985C79FB9AB756AA0C33547, EDD143A8860A38721BDEADEC46C810BE1B5802D7CC9D841621716CAD7C23E964 ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccmsg.dll
20:13:17.0038 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\ccmsg.dll - ok
20:13:17.0038 0x1214  [ 2CC988B2CD82BE22C60B2AC0EF627CB6, 1F6483E4E7D473CFAC27A6823FC060994949FF5F048C902D8FE1021F6B4C4AC5 ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccmsgrc.dll
20:13:17.0038 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\ccmsgrc.dll - ok
20:13:17.0053 0x1214  [ B54C6B8CBF6F556C9930110164EB63E4, FBB6C061245FD1F8C2D72DE4920B90EAA9CC9C037131AA28B2F88FAE520CF1B8 ] C:\Windows\System32\jscript9.dll
20:13:17.0053 0x1214  C:\Windows\System32\jscript9.dll - ok
20:13:17.0053 0x1214  [ 4778CFCC920BF5CAB4B0C26316A103F4, 3350C4D45CECE57627BC485344B717A484FDF5085C02FD15BA908ABA52E3D4E4 ] C:\Program Files (x86)\Common Files\microsoft shared\ink\InkObj.dll
20:13:17.0053 0x1214  C:\Program Files (x86)\Common Files\microsoft shared\ink\InkObj.dll - ok
20:13:17.0053 0x1214  [ B2D60B4B1D8C81731A925678F040B394, 5D5345C34A74BB478A69C6EEB96025CD00312723D0D80746224580AFBF95D8A3 ] C:\Windows\System32\Speech\Common\sapi.dll
20:13:17.0053 0x1214  C:\Windows\System32\Speech\Common\sapi.dll - ok
20:13:17.0069 0x1214  [ 1F17046891DFA96F9CAA7EE36270C629, 043BF35BAC59241190EE5A837E275F6E086A41342EB57774F5CA1665BA59D16E ] C:\Windows\assembly\NativeImages_v2.0.50727_64\mscorlib\3efcbb367d13b7f1958f3aa9fe513972\mscorlib.ni.dll
20:13:17.0069 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\mscorlib\3efcbb367d13b7f1958f3aa9fe513972\mscorlib.ni.dll - ok
20:13:17.0069 0x1214  [ AB781C0E4C09E08F464081D17C0F6184, C446A6488302BF8812E16632F57A8FC97D34D590CF35D3D0285B86A0B80CFBA0 ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\iTunesMobileDevice.dll
20:13:17.0069 0x1214  C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\iTunesMobileDevice.dll - ok
20:13:17.0069 0x1214  [ 4FB1F2F9B02FA1138CACD2DEA3F5AEC8, 99582C21200B511C08CB2559028F25186660C362C75CD74DB99FDF8C2EC1450A ] C:\Windows\System32\riched20.dll
20:13:17.0069 0x1214  C:\Windows\System32\riched20.dll - ok
20:13:17.0085 0x1214  [ 2C5B8A680A90E96B1EC0D6DA0505E685, 7E81B078A0BB75B1345FF6164D1EA6F6F6784435B92124C99318D6BAB29B3F8B ] C:\Windows\System32\srchadmin.dll
20:13:17.0085 0x1214  C:\Windows\System32\srchadmin.dll - ok
20:13:17.0085 0x1214  [ 12F8533FA54F7B3DD8CE3166E0C56DF6, F54F2F6CBCC64A2A202679E225D879935E665A32CDF170B94E803E3894984CD8 ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccmainrc.dll
20:13:17.0085 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\ccmainrc.dll - ok
20:13:17.0085 0x1214  [ 1B7C3A37362C7B2890168C5FC61C8D9B, 03727930E5BB5F9D91BAB901FC9A2E3B795D68E2AEE6A2CC3477F356C45A9C54 ] C:\Windows\System32\msacm32.drv
20:13:17.0085 0x1214  C:\Windows\System32\msacm32.drv - ok
20:13:17.0100 0x1214  [ AD31942BDF3D594C404874613BC2FE4D, 704F4A48FA91B8A22604FF740B506C3B28766F8DFADB9D11814602FAA00EDFAB ] C:\Windows\System32\SearchIndexer.exe
20:13:17.0100 0x1214  C:\Windows\System32\SearchIndexer.exe - ok
20:13:17.0100 0x1214  [ 10AC5CE9F78DC281A1BBD9B8CC587B8A, 72288C0A88916D3C3828DBD948DBDB0928F26106319F8E60102D6C9004514D60 ] C:\Windows\System32\msacm32.dll
20:13:17.0100 0x1214  C:\Windows\System32\msacm32.dll - ok
20:13:17.0116 0x1214  [ CA2A0750ED830678997695FF61B04C30, E84860CD97AA3C4565ABB2D5D406A5C42B1AD2D8BA1B8CF81FE564D91F15F976 ] C:\Windows\System32\midimap.dll
20:13:17.0116 0x1214  C:\Windows\System32\midimap.dll - ok
20:13:17.0116 0x1214  [ F87A7BB428E4AC68D348DF600F1EA1A2, 83A4A7871F9D314348CFFA0DF73ADCD77C2CA8F8D227D75604AC23AD339B5A34 ] C:\Windows\System32\tquery.dll
20:13:17.0116 0x1214  C:\Windows\System32\tquery.dll - ok
20:13:17.0116 0x1214  [ C61D476C867D215FB9CE136CE6BF0C14, F9C330037E5244B2C59AC6840A30F705F5B8F45964ABF305EEFC4B43ED57CC04 ] C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll
20:13:17.0116 0x1214  C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll - ok
20:13:17.0131 0x1214  [ 0B0604BC02CA5F77A1F23C6B0D86AE8C, 84F123DC2000AB2D857C7352DCF62CDEB6CC74E505DF8B2718A87A0458FCAB0F ] C:\Windows\System32\msdmo.dll
20:13:17.0131 0x1214  C:\Windows\System32\msdmo.dll - ok
20:13:17.0131 0x1214  [ 1F2606A0B0C44B4FEA9492EC9C73DF7D, C2588D9F31086A0E75741C42FC2E979F877392F6784CFDE35F38F33D4260DD20 ] C:\Windows\System32\d2d1.dll
20:13:17.0131 0x1214  C:\Windows\System32\d2d1.dll - ok
20:13:17.0131 0x1214  [ 78A6501E4E37118C568A606623A275BB, 4A3E9FB21F848FF9B679973499A9B2080FBBF1E551A8FD56FC3B777FDD46B999 ] C:\Windows\System32\mssrch.dll
20:13:17.0131 0x1214  C:\Windows\System32\mssrch.dll - ok
20:13:17.0147 0x1214  [ CDAD3376DFF3D9AC7FDCBE2B94B0D3C8, C0B22B8C402EEEAF68F5380BC265C15418934D2F702F0A43674EC93853E26040 ] C:\Windows\System32\shfolder.dll
20:13:17.0147 0x1214  C:\Windows\System32\shfolder.dll - ok
20:13:17.0147 0x1214  [ 21F012A682F9507F2C6DAE65BEA8F46C, 81CED075204D848940A3630277D162E717C5A988A5A46147560CA721C6842B54 ] C:\Windows\System32\DWrite.dll
20:13:17.0147 0x1214  C:\Windows\System32\DWrite.dll - ok
20:13:17.0147 0x1214  [ 0F261EC4F514926177C70C1832374231, 7E61B89FE2651C0C7951E10454267174550677DEAB1C497571A9B0B583687304 ] C:\Program Files\iPod\bin\iPodService.exe
20:13:17.0147 0x1214  C:\Program Files\iPod\bin\iPodService.exe - ok
20:13:17.0163 0x1214  [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] C:\Windows\System32\netman.dll
20:13:17.0163 0x1214  C:\Windows\System32\netman.dll - ok
20:13:17.0163 0x1214  [ 3121A79D13A61562BE9CC902CD46B542, 00A5833A48338A4A9A5530844924AF4F1FAB618DA46D7EBBC6E2165C32ED376C ] C:\Windows\System32\msidle.dll
20:13:17.0163 0x1214  C:\Windows\System32\msidle.dll - ok
20:13:17.0163 0x1214  [ 485793A86DD27A81CB955F3F4C606147, 79FD3907210376C9446E614A01C0A3411D938E7AF63E7C3EC6E1FB1A18E98F9C ] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{AF0EE423-463D-485B-817D-6BC082D331A3}\mpasdlta.vdm
20:13:17.0163 0x1214  C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{AF0EE423-463D-485B-817D-6BC082D331A3}\mpasdlta.vdm - ok
20:13:17.0178 0x1214  [ CFD78B31843243A734A23112A617294F, 530F121424D52F5F1A8D2873B22A33E87E51B6F04586B17F2AB665898A907671 ] C:\Program Files (x86)\Avira\AntiVir Desktop\ccupdw.dll
20:13:17.0178 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\ccupdw.dll - ok
20:13:17.0178 0x1214  [ BC00505CFDA789ED3BE95D2FF38C4875, 9CB98AFF8A9740CFB53BDFB3DD40A76EB79C160CF2DF03E5EEFF6F2109216FEB ] C:\Windows\System32\FntCache.dll
20:13:17.0178 0x1214  C:\Windows\System32\FntCache.dll - ok
20:13:17.0178 0x1214  [ 5EF8A000C7927E87332D8CB6B7970067, 479510EB78C86B22CAFEF3A52153B7EB72F3781FD13A3718B65BF441EE710EA4 ] C:\Program Files\iPod\bin\iPodService.Resources\iPodService.dll
20:13:17.0178 0x1214  C:\Program Files\iPod\bin\iPodService.Resources\iPodService.dll - ok
20:13:17.0194 0x1214  [ 238935C3CF2854886DC7CBB2A0E2CC66, BBF7A70BF218A544CC1A6FB81F75EAD29D418794162936BE197D6D61FE0DB1C4 ] C:\Windows\System32\TabSvc.dll
20:13:17.0194 0x1214  C:\Windows\System32\TabSvc.dll - ok
20:13:17.0194 0x1214  [ 5EDBB34736DD7AC1A73CF8792A835E10, 15E87C449AAF2095273341DD9355D8DF2690340D1DEFAF0DFF034F1CDF4316F8 ] C:\Windows\System32\AudioEng.dll
20:13:17.0194 0x1214  C:\Windows\System32\AudioEng.dll - ok
20:13:17.0194 0x1214  [ 9AEEEF46F7BD01A7B52CDFEB9993BBFF, 73BC80CF4567029243ACDCAB0A2F8CEA528DC9A9959DE7E7B0938E49787D0591 ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorjit.dll
20:13:17.0209 0x1214  C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorjit.dll - ok
20:13:17.0209 0x1214  [ 763E2BBEFCD523AB3B7163A5671BF5EF, 4D833EEFE29905CFA9DFCB3D387F098BD51628684E2FBDCBDAA0695855926545 ] C:\Program Files\iPod\bin\iPodService.Resources\en.lproj\iPodServiceLocalized.dll
20:13:17.0209 0x1214  C:\Program Files\iPod\bin\iPodService.Resources\en.lproj\iPodServiceLocalized.dll - ok
20:13:17.0209 0x1214  [ 69754747274B76E7FAF287239333D7E6, A0BAEC1E56E4B1A17C0D41B317526AF5BB11E7E488C7016067A6229346A23B16 ] C:\Windows\System32\msiltcfg.dll
20:13:17.0209 0x1214  C:\Windows\System32\msiltcfg.dll - ok
20:13:17.0225 0x1214  [ 72F479DFA30D726F1925993C739D1E87, 6C0E9E71F601FAC23AEE6E233321144081E46EE3F576C87829FA916EA40F9D05 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System\68b21bd4f565bafb25767daf66576ec7\System.ni.dll
20:13:17.0225 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System\68b21bd4f565bafb25767daf66576ec7\System.ni.dll - ok
20:13:17.0225 0x1214  [ C1395286B822E306B4FE1568A8A77813, 0642B6C793BE0EED5E7D1D2533FC5A01417C50040FC60A8E89BD97CE4A119388 ] C:\Windows\System32\AUDIOKSE.dll
20:13:17.0225 0x1214  C:\Windows\System32\AUDIOKSE.dll - ok
20:13:17.0225 0x1214  [ 077E9328C7966DB8F156B9F419092F0B, 30613A1B572B1CB3DC4043B02BA2C77DE4A6BA19E5C7D97B9EE2A87F66BF9DA3 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Drawing\ff1c00b1d64658b8243b25e243c5d5ff\System.Drawing.ni.dll
20:13:17.0225 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Drawing\ff1c00b1d64658b8243b25e243c5d5ff\System.Drawing.ni.dll - ok
20:13:17.0241 0x1214  [ C0B0FA960D8871A03429283EA83A04D1, 472A753E5748B3A113CE906E096D166C8869DF312CF94CC348A009A0F9062C2A ] C:\Windows\System32\RacEngn.dll
20:13:17.0241 0x1214  C:\Windows\System32\RacEngn.dll - ok
20:13:17.0241 0x1214  [ 470742F3E011EE54FEA785573962F3E5, 2F2BA5114F9B7C1001779D41559ABC01F99A37B66F7332657F20EB045D751E1A ] C:\Program Files (x86)\Avira\AntiVir Desktop\cclicw.dll
20:13:17.0241 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\cclicw.dll - ok
20:13:17.0241 0x1214  [ ACE1BB07E0377E37A2C514CD2EC119B1, A9AFA4774DFA875496764D6E541A6333A3ACD3C5D2BBEF753C2D80BA83B4AC15 ] C:\Windows\System32\mssprxy.dll
20:13:17.0241 0x1214  C:\Windows\System32\mssprxy.dll - ok
20:13:17.0256 0x1214  [ D2155709E336C3BC15729EB87FEC6064, 682A84C0F2D892E7A6CEE4E5937B4799E352AAE3B71E7037F2A343373467443C ] C:\Windows\System32\rasdlg.dll
20:13:17.0256 0x1214  C:\Windows\System32\rasdlg.dll - ok
20:13:17.0256 0x1214  [ 472059A3987102CADBDD64C86E36FD51, 05F9AC06168FAEF1EC2050BA78420715BA3F9E78D43F83887BEF9ECECF3EB138 ] C:\Windows\System32\wisptis.exe
20:13:17.0256 0x1214  C:\Windows\System32\wisptis.exe - ok
20:13:17.0272 0x1214  [ FAA80A482247826F152A4AEB9613B533, 4355C61C61F28B52D575FBBDA81C5FCE9A6A672D1BFBB303666BF8CC02C90E03 ] C:\Windows\System32\d3d10warp.dll
20:13:17.0272 0x1214  C:\Windows\System32\d3d10warp.dll - ok
20:13:17.0272 0x1214  [ DF6737304C458AFB28AA214AEB7D7ECD, E0140339C0D920A6350190E83A1F95178A9A45E63F32B6072624AE3FC33546F0 ] C:\Windows\System32\Magnification.dll
20:13:17.0272 0x1214  C:\Windows\System32\Magnification.dll - ok
20:13:17.0272 0x1214  [ AA61A7047E854A9E914FDD17C2F35675, F07AC1271BDB6346540ADC685DE25EE16B9F5C6655C716573421413114B7E074 ] C:\Windows\System32\sqlceoledb30.dll
20:13:17.0272 0x1214  C:\Windows\System32\sqlceoledb30.dll - ok
20:13:17.0287 0x1214  [ BB68579E181956E37EB11F9083C01CF3, 969920A2137BAC81810A7F635A0C486892D66E95C49E7EC54ABB93FC52071788 ] C:\Windows\System32\dot3api.dll
20:13:17.0287 0x1214  C:\Windows\System32\dot3api.dll - ok
20:13:17.0287 0x1214  [ 6F3C559B82F2912354BE5B098744CC8C, EB64E5C02C81588921A65194E1256E80699A1317E7D9A57395CD38C2639C8B08 ] C:\Windows\System32\WMALFXGFXDSP.dll
20:13:17.0287 0x1214  C:\Windows\System32\WMALFXGFXDSP.dll - ok
20:13:17.0287 0x1214  [ E4FCA0F99A41E460C84016DEFD31E6EF, 8EB14AF2025EADC7C86280E8417D8F286E8271B4F88B31696E33DFD72B3A0EF2 ] C:\Windows\System32\wlanhlp.dll
20:13:17.0287 0x1214  C:\Windows\System32\wlanhlp.dll - ok
20:13:17.0287 0x1214  [ 296A2741FC3113BC3645BCC56361B1C1, 6B5778FF0C7EF86059393AF47FFFFB186076A4A2E962D50210B5ABDC126E557D ] C:\Windows\System32\atiu9p64.dll
20:13:17.0287 0x1214  C:\Windows\System32\atiu9p64.dll - ok
20:13:17.0303 0x1214  [ 318285F1590C4484E3253BA2B189D2DF, A68ED81FCAA3BEC30CEBE5C5A7F9362422F72233C286246293AB48D132DE3EF4 ] C:\Windows\System32\d3d9.dll
20:13:17.0303 0x1214  C:\Windows\System32\d3d9.dll - ok
20:13:17.0303 0x1214  [ FB16FFE16A7CBF975205674EF2C7412C, 06EEB98CA03605C461067D09E58A7D8C8D45488078B7B9FD932DB53193AF09F3 ] C:\Windows\System32\sqlcese30.dll
20:13:17.0303 0x1214  C:\Windows\System32\sqlcese30.dll - ok
20:13:17.0303 0x1214  [ C9FB9038B15036CA28CF0B4BE2BED9BD, 0F56384E798B3F725FFEFC6E31A980DA31F620DB847F601273EF19E8CE74A226 ] C:\Windows\System32\en-US\tquery.dll.mui
20:13:17.0303 0x1214  C:\Windows\System32\en-US\tquery.dll.mui - ok
20:13:17.0319 0x1214  [ 6699A112A3BDC9B52338512894EBA9D6, 10888BB9C3799E1E8B010C0F9088CED376AAD63A509FCE1727C457B022CDC717 ] C:\Program Files\Windows Media Player\wmpnscfg.exe
20:13:17.0319 0x1214  C:\Program Files\Windows Media Player\wmpnscfg.exe - ok
20:13:17.0319 0x1214  [ 54B5DCD55B223BC5DF50B82E1E9E86B1, 025294DD69A421FE4EACAA463F8CB797610D8F3A7A3C61656AE83D0CEE07A9BF ] C:\Windows\System32\mfplat.dll
20:13:17.0319 0x1214  C:\Windows\System32\mfplat.dll - ok
20:13:17.0334 0x1214  [ 3044D07ABDF4BBEA27E2EE7B1E0C0C65, D99A8C10CC4E5C778D063E56A131DB549F01CA7F9605F6596406606BB12C0269 ] C:\Windows\System32\d3d8thk.dll
20:13:17.0334 0x1214  C:\Windows\System32\d3d8thk.dll - ok
20:13:17.0334 0x1214  [ E5744D18C88737C6356D0A8D6D49D512, 4FF86DDF0BDCE0E4D73114CD027621C8FD48591992C3424CF77B354BB252EB26 ] C:\Windows\System32\sqlceqp30.dll
20:13:17.0334 0x1214  C:\Windows\System32\sqlceqp30.dll - ok
20:13:17.0334 0x1214  [ 5DA219F57A9076FB6FBD3C9C3713A672, 274FE616625B336D81841FDC752C8053D4CD6926565B899760D298D145CBA1A3 ] C:\Windows\System32\WWanAPI.dll
20:13:17.0334 0x1214  C:\Windows\System32\WWanAPI.dll - ok
20:13:17.0350 0x1214  [ 62C7AACC746C9723468A8F2169ED3E85, 40E901F3EAFE52DF11D6BC4EF0E79F666EBDACE0B3C090CAD2358076E893EA47 ] C:\Windows\System32\wwapi.dll
20:13:17.0350 0x1214  C:\Windows\System32\wwapi.dll - ok
20:13:17.0350 0x1214  [ C7494C67A6BF6FE914808E42F8265FEF, 3A3871983F2D9A57739C70365DC3F417D9BF02F5C0C4CC3272EA9F3D380EF962 ] C:\Program Files\Windows Media Player\wmpnssci.dll
20:13:17.0350 0x1214  C:\Program Files\Windows Media Player\wmpnssci.dll - ok
20:13:17.0350 0x1214  [ DAF3E300311D2B78174AE52B231981BD, 94D42A96C3E755A78125B38C3B5544154E891830A3CC1F8623BB3134474A5AD1 ] C:\Windows\System32\Tabbtn.dll
20:13:17.0350 0x1214  C:\Windows\System32\Tabbtn.dll - ok
20:13:17.0365 0x1214  [ EC7EB038EA11E0D04214D143E0CB6002, 5833B2EE7CAD94B163957DFAC53CA0CCC9CC96AFD3D94050A0A77CFA777D4E81 ] C:\Windows\System32\WinSATAPI.dll
20:13:17.0365 0x1214  C:\Windows\System32\WinSATAPI.dll - ok
20:13:17.0365 0x1214  [ 2ABFB305022FA93E87273E2A21E4B30A, 8C0676E1A59A9EA7171EC9D6FCC261C7588E4514970A1ED524B2D09D40C628F6 ] C:\Windows\System32\TabbtnEx.dll
20:13:17.0365 0x1214  C:\Windows\System32\TabbtnEx.dll - ok
20:13:17.0365 0x1214  [ 0B9F7D42D745038437FAE70D97F9AD5A, D690FC5DC287D29A2FA4C2AA820E09D57B5B513C2B1FB07BFBC7E59577887DB0 ] C:\Windows\System32\QAGENT.DLL
20:13:17.0365 0x1214  C:\Windows\System32\QAGENT.DLL - ok
20:13:17.0381 0x1214  [ B79515AFF098E5A56DFBD316152534DE, D796DCC8E363744FBC75426B0B64F083A3C82B984F76216796E2B2D55325DA15 ] C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
20:13:17.0381 0x1214  C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL - ok
20:13:17.0381 0x1214  [ 9BF014C20F91D97055532F2F5496E7BD, DD3CF54F729504F6A30920CC83CC32EE6165B59668291D772FDA49C37CFF08C1 ] C:\Program Files\Windows Media Player\wmpnetwk.exe
20:13:17.0381 0x1214  C:\Program Files\Windows Media Player\wmpnetwk.exe - ok
20:13:17.0381 0x1214  [ E71F9111B29BEA60D7D99B437E20AFE6, 3C3A5F35376B29E9DEBFF51A6B572781726867BC0DC8EBC0A693517F1D761917 ] C:\Program Files\Common Files\Microsoft Shared\ink\tpcps.dll
20:13:17.0381 0x1214  C:\Program Files\Common Files\Microsoft Shared\ink\tpcps.dll - ok
20:13:17.0397 0x1214  [ C7A93106A198254F51A17BEC16BBDFA4, 0BDA10992DB8B89F33EA87805E1BCB31678ECBF2FF6C65D53E4300A93B7B7D30 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Windows.Forms\1782dc2bc216e5e52cae058e29aaef12\System.Windows.Forms.ni.dll
20:13:17.0397 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Windows.Forms\1782dc2bc216e5e52cae058e29aaef12\System.Windows.Forms.ni.dll - ok
20:13:17.0397 0x1214  [ ED0A4DD3439D1231B47416604A7D84DC, 7E2452F8F882CDAC4527AC86E8A8FA76E6BCF933DD4DFCD07659AD64B03CE9D4 ] C:\Program Files (x86)\Common Files\microsoft shared\ink\tpcps.dll
20:13:17.0397 0x1214  C:\Program Files (x86)\Common Files\microsoft shared\ink\tpcps.dll - ok
20:13:17.0397 0x1214  [ 93BB66044FA76734E882C6F3E8EE1900, E00FE1028C999FFED3F8335F9D760929CB3A11B6EEF8D8D2F2CA4A32DEC56B26 ] C:\Program Files\Windows Defender\MsMpLics.dll
20:13:17.0412 0x1214  C:\Program Files\Windows Defender\MsMpLics.dll - ok
20:13:17.0412 0x1214  [ E36112A8A6C7F840169A7E92C12F4203, 52795B2E6ECCE751EEF5074AF52FDE376A382D0A1C43B90DD4F77A397C00FBC5 ] C:\Windows\System32\wsock32.dll
20:13:17.0412 0x1214  C:\Windows\System32\wsock32.dll - ok
20:13:17.0412 0x1214  [ 302B93586DFA480545C320EBA5BA6572, 78DF6FBD3B37F753156D0372C514AB20CA5EF2CACE6A32E983FE2E956AF99791 ] C:\Windows\System32\wmdrmdev.dll
20:13:17.0412 0x1214  C:\Windows\System32\wmdrmdev.dll - ok
20:13:17.0428 0x1214  [ 3DEBA83ECDAF6ED2E72430D238803117, E115973AF78A3D034A7D9EE91E005F4365912A2D96E80D82E9FBB290F1617330 ] C:\Windows\System32\wmp.dll
20:13:17.0428 0x1214  C:\Windows\System32\wmp.dll - ok
20:13:17.0428 0x1214  [ 36D31EA14A5014079E335BA73C1C88DA, DDA2C2A47835E93EE59A8EC091F71013E26C479048C76951F9B5F80FF6BE97B3 ] C:\Windows\System32\wscapi.dll
20:13:17.0428 0x1214  C:\Windows\System32\wscapi.dll - ok
20:13:17.0428 0x1214  [ 2C1055E2C6D42753241FB2A129136994, A8E858B4CB8E1E13C7574330C703E0060AEE8B7B19B682F9AE5B4A02BDC659E2 ] C:\Windows\System32\drmv2clt.dll
20:13:17.0428 0x1214  C:\Windows\System32\drmv2clt.dll - ok
20:13:17.0443 0x1214  [ B84E2D174DC84916A536572BB8F691A8, 94E3D68F102439D3A585D2D796F3F3FC27CB41C640058DDC14AF99A723B2CD99 ] C:\Windows\System32\wscisvif.dll
20:13:17.0443 0x1214  C:\Windows\System32\wscisvif.dll - ok
20:13:17.0443 0x1214  [ 6C1E3C43B35268C17833244C8ED96430, 9C571AA762E71177B6FF486D1DB500E3530E13CAFD87316AD2C64F5A55EB4A93 ] C:\Windows\System32\wscproxystub.dll
20:13:17.0443 0x1214  C:\Windows\System32\wscproxystub.dll - ok
20:13:17.0443 0x1214  [ D64D99EC088B54FFE8EE67A480386C20, A6D1E4CA40843B0B9B32019E69479457D46CA99A2804E937CDC385C9DEDFDE62 ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Culture.dll
20:13:17.0443 0x1214  C:\Windows\Microsoft.NET\Framework64\v2.0.50727\Culture.dll - ok
20:13:17.0459 0x1214  [ C5A75EB48E2344ABDC162BDA79E16841, 6070A8AAFD38FBC6A68A2B10C20117612354DF21B4492D90CA522BFB6870D726 ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
20:13:17.0459 0x1214  C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe - ok
20:13:17.0459 0x1214  [ C6F9AF94DCD58122A4D7E89DB6BED29D, CB0E5AE60EC76323585FB86D89E8DB7ADB5EDF6EA3D0B27E9ECE75B8CAA8BFDE ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
20:13:17.0459 0x1214  C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe - ok
20:13:17.0459 0x1214  [ CB21CD39637AC13F3455454B2F648257, 50DC43323D529B48B9BD236A813F2BCDE55455B75EEE7DD6369AA47599B47A49 ] C:\Windows\System32\msvcr100_clr0400.dll
20:13:17.0459 0x1214  C:\Windows\System32\msvcr100_clr0400.dll - ok
20:13:17.0475 0x1214  [ C790FB56B5CB20E17D8C1A236CD76455, ED043AB3ED7415D701A9989281745DE8BCEB982F0B9EB25CC3C67755A4B0363B ] C:\ProgramData\Microsoft\Windows\DRM\Cache\Indiv_SID_S-1-5-20\Indiv01_64.key
20:13:17.0475 0x1214  C:\ProgramData\Microsoft\Windows\DRM\Cache\Indiv_SID_S-1-5-20\Indiv01_64.key - ok
20:13:17.0475 0x1214  [ 913D843498553A1BC8F8DBAD6358E49F, F8B931FDABF669D642CBDCD2FF31E07F8A5E2D5F72E11D4A8FF219CCFB5825E9 ] C:\Windows\System32\sppsvc.exe
20:13:17.0475 0x1214  C:\Windows\System32\sppsvc.exe - ok
20:13:17.0475 0x1214  [ FFF95479C7AB1550F0750A5D01744211, FF67F892AABCE1C2B695FF4C0816339566F5745C1498D48FAC050E5196C1CE09 ] C:\Windows\System32\drivers\spsys.sys
20:13:17.0475 0x1214  C:\Windows\System32\drivers\spsys.sys - ok
20:13:17.0490 0x1214  [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] C:\Windows\System32\wscsvc.dll
20:13:17.0490 0x1214  C:\Windows\System32\wscsvc.dll - ok
20:13:17.0490 0x1214  [ A3D5CFEAEDDB98D2F6211E241FFA903A, 5D17A24651000DE7DDE95A2E0CD306716392C19FD7860AEEA9ECC2D62DB0B455 ] C:\Program Files (x86)\Avira\AntiVir Desktop\avwsc.exe
20:13:17.0490 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\avwsc.exe - ok
20:13:17.0490 0x1214  [ 8258362DDB18B644A82D8B5061AD9426, 87CA586B2B1B0089BFF6A259A0743D184AE383B3B12C4BC5986D72ADFFBE9EDA ] C:\Windows\SysWOW64\wscisvif.dll
20:13:17.0490 0x1214  C:\Windows\SysWOW64\wscisvif.dll - ok
20:13:17.0506 0x1214  [ 5242F0AB85D48F18C33783C86879DC19, 1B79E716C4676A73ED2FC4B8884F2F41C8FEAC410E1913352C57251F44C7EBC2 ] C:\Windows\SysWOW64\wscapi.dll
20:13:17.0506 0x1214  C:\Windows\SysWOW64\wscapi.dll - ok
20:13:17.0506 0x1214  [ 7DF186D86CF8C571A12AAB788C777F84, A2C1064BFDEF2A85CB12A11E55728BCC09933C115C278403F07B27DB2C36C710 ] C:\Windows\SysWOW64\wscproxystub.dll
20:13:17.0506 0x1214  C:\Windows\SysWOW64\wscproxystub.dll - ok
20:13:17.0521 0x1214  [ 92E0508D924512F63FFEEFE498CBD11F, 1158011E4A1298DEC79133B40888AA87B06F5B64BA2AB461B58C22F5F9211D0C ] C:\Windows\System32\p2pcollab.dll
20:13:17.0521 0x1214  C:\Windows\System32\p2pcollab.dll - ok
20:13:17.0521 0x1214  [ B7BDBEBC74105E68A3093073C30E3498, B5D738E4C83DE4B02EA2045E6B74CB9DBA1D5CE072C235C883E216B51B4E718F ] C:\Windows\System32\sppwinob.dll
20:13:17.0521 0x1214  C:\Windows\System32\sppwinob.dll - ok
20:13:17.0521 0x1214  [ 4987E079A4530FA737A128BE54B63B12, 27E51CC7D4D90DC4397575491DE7EFE15808709F097E2828E46AA73C771A47A4 ] C:\Windows\System32\QAGENTRT.DLL
20:13:17.0521 0x1214  C:\Windows\System32\QAGENTRT.DLL - ok
20:13:17.0537 0x1214  [ 46EA507EE79269C0272F10BFBE9316C9, EC56301725056F70AE146189EE72191150D5F5FFBA7FA7E1EFC4745AA73DE32A ] C:\Windows\System32\upnp.dll
20:13:17.0537 0x1214  C:\Windows\System32\upnp.dll - ok
20:13:17.0537 0x1214  [ B1643BC85EA3F2903316344699DB1318, 2AF3A3E0F29405DB29300BB5A876BD621F52F0753FF8F656C58845F170CFAF65 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Configuration\295d9479dfdbff3c5df23d318a94ccc5\System.Configuration.ni.dll
20:13:17.0537 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Configuration\295d9479dfdbff3c5df23d318a94ccc5\System.Configuration.ni.dll - ok
20:13:17.0537 0x1214  [ 506A83A3BEEE9FCA09F0170DE9FC7D1B, 2DFBD792B68F3EBEF0843183CAE5D52B6FA04163808AFACF6C0D738455898C36 ] C:\Windows\System32\fveui.dll
20:13:17.0537 0x1214  C:\Windows\System32\fveui.dll - ok
20:13:17.0553 0x1214  [ 8C338238C16777A802D6A9211EB2BA50, 0D08A47CD403EDA5E8CAD7409BBBBCDC29A9861D2DC41D42B68B22B1AA1EBDD6 ] C:\Windows\SysWOW64\netprofm.dll
20:13:17.0553 0x1214  C:\Windows\SysWOW64\netprofm.dll - ok
20:13:17.0553 0x1214  [ 2F530C1448D4984F2A3F995895F2D532, EF624B3D581C2BB830AB4A1275EC0A66CA28EB157E366642B7A604DFE2CDD9BC ] C:\Windows\System32\sppobjs.dll
20:13:17.0553 0x1214  C:\Windows\System32\sppobjs.dll - ok
20:13:17.0553 0x1214  [ 20F379257870783F7DC0C01FF66D9EE0, 31819ED54E64D73B6447E76951EF1AA5EDB3B8C80A719074E7BED3E26970FAAF ] C:\Program Files (x86)\Avira\AntiVir Desktop\ipmgui.exe
20:13:17.0553 0x1214  C:\Program Files (x86)\Avira\AntiVir Desktop\ipmgui.exe - ok
20:13:17.0568 0x1214  [ C47F35CC6FA4F1BDBEF8F87AC1A46537, 82EC7041317666D5370690BD2176CF00F5957036C29429319F45045BFFAE9EC2 ] C:\Windows\System32\wuapi.dll
20:13:17.0568 0x1214  C:\Windows\System32\wuapi.dll - ok
20:13:17.0568 0x1214  [ 003CDF87917745233468FD4768EFF808, 9CAFA9AECF2B4C0B63E361F432156A2B26AF1AB4F9891050159045DCE272B4A2 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Remo#\21e93d99416c355a8bb6fc1835fb3a6a\System.Runtime.Remoting.ni.dll
20:13:17.0568 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Remo#\21e93d99416c355a8bb6fc1835fb3a6a\System.Runtime.Remoting.ni.dll - ok
20:13:17.0568 0x1214  [ 15E298B5EC5B89C5994A59863969D9FF, 8D38B2E023462D0804F72E907D11FF72CE84540EA3B8D83F411C602C3F6A1177 ] C:\Windows\SysWOW64\npmproxy.dll
20:13:17.0568 0x1214  C:\Windows\SysWOW64\npmproxy.dll - ok
20:13:17.0584 0x1214  [ 658EBC74BD38D16805648C4775F7FA82, 9B1940B9DDDD0578900283676143DCC7025B0B0FC6682FC6E20CC8F0A834363E ] C:\Windows\SysWOW64\mshtml.dll
20:13:17.0584 0x1214  C:\Windows\SysWOW64\mshtml.dll - ok
20:13:17.0584 0x1214  [ 64E6A44177ACF348D68255A37F4723DA, 5D66D94A347BC43D0D8157CC5A24ABAF2F60B5DBEB2B1527C251452128E00EE2 ] C:\Windows\System32\cabinet.dll
20:13:17.0584 0x1214  C:\Windows\System32\cabinet.dll - ok
20:13:17.0584 0x1214  [ 28B09899B80341F1156FEC1D5DD8A4BA, 754FEF98024309BB944CEE22C354A545A1D9B593A81E9B9FE16F7E868FCC15A9 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Xml\5671a67b1a3b17a85fd1920a7a393c91\System.Xml.ni.dll
20:13:17.0584 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Xml\5671a67b1a3b17a85fd1920a7a393c91\System.Xml.ni.dll - ok
20:13:17.0599 0x1214  [ 8EE6BDE1D572677AA35707C52C585F75, 588A08C0FC3881186CD673F749E46A154F58BE39CA7AE8A2E1F25539B2299752 ] C:\Windows\SysWOW64\mlang.dll
20:13:17.0599 0x1214  C:\Windows\SysWOW64\mlang.dll - ok
20:13:17.0599 0x1214  [ 652B60C9C4D5391FF0970B9086702E8F, 979B874A2E44626B9AB1C955DA42749D9EFE35B40116488A44685D4D89D31761 ] C:\Windows\System32\ieframe.dll
20:13:17.0599 0x1214  C:\Windows\System32\ieframe.dll - ok
20:13:17.0599 0x1214  [ 550BF4ACD6FC3F41DC5A83EF31B9F9B4, 7C80FEC4C6FF4AD3E110B82A449FC827BD2ACE2F3DD2F90E1969FEA5952D57CB ] C:\Windows\System32\wmploc.DLL
20:13:17.0599 0x1214  C:\Windows\System32\wmploc.DLL - ok
20:13:17.0615 0x1214  [ D28C5A1411BB0B47E05E0D6AAF896690, F2164C69C089E5F9A32207E6B36808861692FA923318BFF23447A34B2157CDEA ] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
20:13:17.0615 0x1214  C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe - ok
20:13:17.0615 0x1214  [ E746ED90132C6B6313CE9179F56BD31D, CCE0367148E54AA1413C52CCE752CC75EA9E3A8232ECFC263C62A634B8CAEF5F ] C:\Windows\System32\wups.dll
20:13:17.0615 0x1214  C:\Windows\System32\wups.dll - ok
20:13:17.0615 0x1214  [ 1CEB365971B9A2EBBB59D6CE97D62D5B, FD0DA30EF70B3E7A87A5FC008A718E683C2D613138F92C0580158E2F910D5695 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web\d81bd141402543cb50368e5162464a1f\System.Web.ni.dll
20:13:17.0615 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web\d81bd141402543cb50368e5162464a1f\System.Web.ni.dll - ok
20:13:17.0631 0x1214  [ 712D9EB4CD8D64AC78FBB3C9AE6A6DAC, BECF414E54CEE14212CD94F7E43932899B89FC75A6F1822A4728AC6FB43E12CA ] C:\Program Files\Internet Explorer\ieproxy.dll
20:13:17.0631 0x1214  C:\Program Files\Internet Explorer\ieproxy.dll - ok
20:13:17.0631 0x1214  [ 005247E3057BC5D5C3F8C6F886FFC10C, FCB27F89EC36856A4A225744CE5EE3A30CBC8A447868B165D95E8AB2C17F5671 ] C:\Windows\System32\wbem\WMIADAP.exe
20:13:17.0631 0x1214  C:\Windows\System32\wbem\WMIADAP.exe - ok
20:13:17.0646 0x1214  [ D32EE82DA63D39D337D5AEEA2928B1DE, E5AFD28BA78D772DA58022EF395E0AD4A948CB8F6DECF944E03FB99C2FDC099C ] C:\Windows\System32\consent.exe
20:13:17.0646 0x1214  C:\Windows\System32\consent.exe - ok
20:13:17.0646 0x1214  [ 54DE0DC71E9819DE33A0E0E23FE28BC0, E1A36014FCE1B740CA2DEABF51DEC3CCDC8D8BBC9BE4019D20A983A6C8BA4861 ] C:\Program Files\Apoint2K\ApntEx.exe
20:13:17.0646 0x1214  C:\Program Files\Apoint2K\ApntEx.exe - ok
20:13:17.0646 0x1214  [ 06C84826A4BFEE155F4031CDECE28F3A, 8DB558D67A7210864FA656148794D51F761F394DFBC08C3AFA3255FE61909D39 ] C:\Program Files\Apoint2K\Hidfind.exe
20:13:17.0646 0x1214  C:\Program Files\Apoint2K\Hidfind.exe - ok
20:13:17.0662 0x1214  [ E328D22247D7BB00FB472D648B945F39, B3546DD7F5596D7E275E7203A1178AEED8B24A2A5CC729B802A2C6DCB5416B0D ] C:\Program Files\Apoint2K\EzLaunch.dll
20:13:17.0662 0x1214  C:\Program Files\Apoint2K\EzLaunch.dll - ok
20:13:17.0662 0x1214  [ A869F9503A748CAA63739C820BFA5035, E7347C584DD2A62A5918D9FA90AC45143560BAF208F2056A306CE6B67DA74872 ] C:\Windows\System32\atipdl64.dll
20:13:17.0662 0x1214  C:\Windows\System32\atipdl64.dll - ok
20:13:17.0662 0x1214  [ 2D444C361F758D6CC4B2F51655ECF528, DC54D594B9D5FC27C29C5B843D03E618086E5E070E03ED911C6A8E506C6F2020 ] C:\Windows\System32\wmpps.dll
20:13:17.0662 0x1214  C:\Windows\System32\wmpps.dll - ok
20:13:17.0677 0x1214  [ DD37622A478EDFE1D43DF561A19C02DD, D5DD0A1A85153CFA385993537DC57CEEF3C7EBDA19B88FEEAF186E6B3157F2DF ] C:\Windows\System32\wmpmde.dll
20:13:17.0677 0x1214  C:\Windows\System32\wmpmde.dll - ok
20:13:17.0677 0x1214  [ D7BE5023AC64A490F94773E4A08A7961, FE4F25FB20323E9D18F9EDF716E07A903ADC60CFCB8C33732FD27F1C86A7ABEC ] C:\Users\Scott\AppData\Roaming\Microsoft\Clip Organizer\Offic10.MGC
20:13:17.0677 0x1214  C:\Users\Scott\AppData\Roaming\Microsoft\Clip Organizer\Offic10.MGC - ok
20:13:17.0677 0x1214  [ 0587E74069A30FDFEF76EE11D4124DB6, FCCF07C8C6E73035F7C9D647CE3EDBE029510F1FA3ECDECD3EB5A61734771807 ] C:\Users\Scott\AppData\Roaming\Microsoft\Clip Organizer\mstore10.mgc
20:13:17.0677 0x1214  C:\Users\Scott\AppData\Roaming\Microsoft\Clip Organizer\mstore10.mgc - ok
20:13:17.0693 0x1214  [ 90E4A95D2CEBB4FA1F96382EF54D4F4E, 0B472D9659860328A7F332540662390FC2709737B87B534664B2972BCE3F1957 ] C:\Users\Henry\AppData\Roaming\Microsoft\Clip Organizer\mstore10.mgc
20:13:17.0693 0x1214  C:\Users\Henry\AppData\Roaming\Microsoft\Clip Organizer\mstore10.mgc - ok
20:13:17.0693 0x1214  [ D206B8929D15AEE7A41557D8507AF82F, A0858478EC8194ABD3270892C6E133BE00B46E4E51931D30F71E2FB5BA2F6218 ] C:\Users\Henry\AppData\Roaming\Microsoft\Clip Organizer\Offic10.MGC
20:13:17.0693 0x1214  C:\Users\Henry\AppData\Roaming\Microsoft\Clip Organizer\Offic10.MGC - ok
20:13:17.0693 0x1214  [ 81252AA3B13743020BCF2089A5A0D911, BFFB1A5917EC1EDAF6B58EAFD888575299365D09C734FACF5A7D1843680DDFD8 ] C:\Windows\System32\wscinterop.dll
20:13:17.0693 0x1214  C:\Windows\System32\wscinterop.dll - ok
20:13:17.0709 0x1214  [ 2BF5A09197251572A74C426EE3E35117, F82E120F67DD25886A91EF3067E1DE49512B06FB700488B559518F9858407010 ] C:\Windows\System32\MSMPEG2ENC.DLL
20:13:17.0709 0x1214  C:\Windows\System32\MSMPEG2ENC.DLL - ok
20:13:17.0709 0x1214  [ DF50DAE4C547285E4997A0C61063B632, 24F1B66CD2C5188609F936E7F4947E29EB120C59731E7028285CE6791F31B580 ] C:\Windows\System32\wscui.cpl
20:13:17.0709 0x1214  C:\Windows\System32\wscui.cpl - ok
20:13:17.0724 0x1214  [ 46767946E7B559D981C1DC04EC0AB36F, 69137AA9AEF9727FFD1B65AA4D658C6E8AAD3A062717B447260502B4D7DB90C6 ] C:\Windows\System32\devenum.dll
20:13:17.0724 0x1214  C:\Windows\System32\devenum.dll - ok
20:13:17.0724 0x1214  [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] C:\Windows\System32\upnphost.dll
20:13:17.0724 0x1214  C:\Windows\System32\upnphost.dll - ok
20:13:17.0724 0x1214  [ C3626E674990EF003B6C94807E82B501, 2C94CC7BEE7529D6CB3D832FAB5CFC87E72D06800B930A586875A317E2DD11FA ] C:\Windows\System32\werconcpl.dll
20:13:17.0724 0x1214  C:\Windows\System32\werconcpl.dll - ok
20:13:17.0740 0x1214  [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] C:\Windows\System32\wercplsupport.dll
20:13:17.0740 0x1214  C:\Windows\System32\wercplsupport.dll - ok
20:13:17.0740 0x1214  [ A8FFE305D3BC1744FA278AFFF57AFC94, AB7C9CE5E5A73154DFBAF06AC1F2DEC283379BA8846F97B687D9EAAE8E331077 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\WindowsBase\8a61d698021155cc002946d797a3b397\WindowsBase.ni.dll
20:13:17.0740 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\WindowsBase\8a61d698021155cc002946d797a3b397\WindowsBase.ni.dll - ok
20:13:17.0740 0x1214  [ 809AE7D4ACE06BBCF621E5C504BF6FC8, 0BAAB89FB57468F27446947D75CBD6DDFC92D9B8F040144A12656803B2F7BF65 ] C:\Windows\System32\hcproviders.dll
20:13:17.0740 0x1214  C:\Windows\System32\hcproviders.dll - ok
20:13:17.0755 0x1214  [ 71E68F2443A80BD4DA89181889C457EA, 8665D3DDF92B05EF287FB6EC43782512C23A1437764CF6F4DE0B00547F3C696B ] C:\Windows\System32\udhisapi.dll
20:13:17.0755 0x1214  C:\Windows\System32\udhisapi.dll - ok
20:13:17.0755 0x1214  [ D7CEAEDD5F75D2C8A2E80887D7C114CE, 44D7D7BBF8643D4168A3B0369AB88C83A156943FB6295FAF8E131C55F080ED19 ] C:\Windows\System32\webcheck.dll
20:13:17.0755 0x1214  C:\Windows\System32\webcheck.dll - ok
20:13:17.0755 0x1214  [ 8494E126F0B10180F3293AF861CE1F7A, 538B1F30423DB2398E611BC46C80150C090698E633BABF7362F7060DBF0C3064 ] C:\Windows\System32\mlang.dll
20:13:17.0755 0x1214  C:\Windows\System32\mlang.dll - ok
20:13:17.0771 0x1214  [ 42EC9065D9BF266ADE924B066C783A56, 4AC002E90A52CB0998DA78F2995294EE77B89FB2BE709B0E3C8E1627212BCCDC ] C:\Windows\System32\SearchProtocolHost.exe
20:13:17.0771 0x1214  C:\Windows\System32\SearchProtocolHost.exe - ok
20:13:17.0771 0x1214  [ D2A5B2B09F2AF5ED13BF494508B09788, 3FA04E84EC5A575E7804E44BA3BF1C4143E53C4ACF6C823CD029711529B0BE2C ] C:\Windows\System32\msshooks.dll
20:13:17.0771 0x1214  C:\Windows\System32\msshooks.dll - ok
20:13:17.0771 0x1214  [ 52D56D1013D4F1B99102679314CC5325, F8F6C41FEC774C71A85C91DFEB057076D018E5A64CE1D7B7D9D202CA65B34758 ] C:\Windows\System32\SearchFilterHost.exe
20:13:17.0771 0x1214  C:\Windows\System32\SearchFilterHost.exe - ok
20:13:17.0787 0x1214  [ E6F66F31422C44EDC00D9C9329E7DF60, 81DB3B830F100ACEC5538840D73713FD3C530227886B6CEF250A48A3697729FE ] C:\Windows\System32\SyncCenter.dll
20:13:17.0787 0x1214  C:\Windows\System32\SyncCenter.dll - ok
20:13:17.0787 0x1214  [ D9EF901DCA379CFE914E9FA13B73B4C4, 3BE9693B7B2AFEE23D72AF5DA211379724D752F0EC18ACB7D3DE3DDFC5AE0004 ] C:\Windows\System32\wuaueng.dll
20:13:17.0787 0x1214  C:\Windows\System32\wuaueng.dll - ok
20:13:17.0787 0x1214  [ D4605936921385CC8B8D69E60C87D5E3, 967A01048E28F6BD19F7B478FD8088383C068B821F24151E1797A1E2B2E66F17 ] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MMLoadDrv.exe
20:13:17.0787 0x1214  C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MMLoadDrv.exe - ok
20:13:17.0802 0x1214  [ ABDBABE3A7D2222B3A0DB1B8B9CAD16E, C1852121F9ADB5D2B46C73334C6E8B3CF6B7BB431520C6937F1CAFAD19AA194E ] C:\Windows\System32\mssph.dll
20:13:17.0802 0x1214  C:\Windows\System32\mssph.dll - ok
20:13:17.0802 0x1214  [ E491C89A0D3540C402E0529FFD5BE20C, 25308DAA1F3065EE4A4DB627088DFFC029F06715029F4FFFEFCD4E56F3E13576 ] C:\ATI\Support\11-5_mobility_vista_win7_32-64_ccc\Bin64\ControlCenterActions.dll
20:13:17.0802 0x1214  C:\ATI\Support\11-5_mobility_vista_win7_32-64_ccc\Bin64\ControlCenterActions.dll - ok
20:13:17.0818 0x1214  [ 67EC459E42D3081DD8FD34356F7CAFC1, 1221A09484964A6F38AF5E34EE292B9AFEFCCB3DC6E55435FD3AAF7C235D9067 ] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\msvcr100.dll
20:13:17.0818 0x1214  C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\msvcr100.dll - ok
20:13:17.0818 0x1214  [ 2A556E2D703DED03186C596B90AC6869, 566DF5F4754D3510D277B30A773E5A21B1D30EADBA0B585A18A68AC9BC72A7EC ] C:\Windows\System32\mapi32.dll
20:13:17.0818 0x1214  C:\Windows\System32\mapi32.dll - ok
20:13:17.0818 0x1214  [ 8B886A0AC14EAA8599142887991A5A2E, 5CD23A0F7DC53B1F4E8D33E2FD5C3C6E375EE5F542EBCEE2989400F352815462 ] C:\Windows\System32\imapi2.dll
20:13:17.0818 0x1214  C:\Windows\System32\imapi2.dll - ok
20:13:17.0818 0x1214  [ 617F6EC0AC677C685479C1D0D1E76C6F, 77B22C0817558CE70EF7D3BBE04A275FFA35ED2E4AFB17DBDF353DF9932DC693 ] C:\Windows\System32\mspatcha.dll
20:13:17.0818 0x1214  C:\Windows\System32\mspatcha.dll - ok
20:13:17.0833 0x1214  [ EF4248D28C2940AE6D46470AC2479A4F, 7C0DBCED93823E918A3DB9785E68A24743DECB03D378F1AEDCB0BF9705B4AC9A ] C:\Windows\System32\msisip.dll
20:13:17.0833 0x1214  C:\Windows\System32\msisip.dll - ok
20:13:17.0833 0x1214  [ F0AAB2A76A7AF04C70A818E96BAF3E64, 44E7D7A0D1F35D02D627D449EE773177AEE026B6D6C787B1463362E73670CB77 ] C:\Windows\System32\hgcpl.dll
20:13:17.0833 0x1214  C:\Windows\System32\hgcpl.dll - ok
20:13:17.0833 0x1214  [ BA7EC41CA58730A485270820F310CD4E, 2748F81BEE7F04E716CD741C62E7664D6BE7D537FECDC5A4B469EA48D9738E3F ] C:\Windows\System32\NaturalLanguage6.dll
20:13:17.0833 0x1214  C:\Windows\System32\NaturalLanguage6.dll - ok
20:13:17.0849 0x1214  [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] C:\Windows\System32\fdPHost.dll
20:13:17.0849 0x1214  C:\Windows\System32\fdPHost.dll - ok
20:13:17.0849 0x1214  [ 09D99BF3DB830EDBF8B6F26CCF4F8733, D7D1E607FA8FFF097D8E21E367EB0E8A136D753D09F10FDD790E1CC22F985F80 ] C:\Windows\SysWOW64\quartz.dll
20:13:17.0849 0x1214  C:\Windows\SysWOW64\quartz.dll - ok
20:13:17.0849 0x1214  [ 171D7DB433314A868507C4326E8209DC, 254E0D9F99CE47104CF21D8E968D89D6A09B9CE47168E760BAB28AD5A1E9E6A3 ] C:\Windows\System32\fdWSD.dll
20:13:17.0849 0x1214  C:\Windows\System32\fdWSD.dll - ok
20:13:17.0865 0x1214  [ 701D9F5F3F21580936638D5C5F86B460, 2F187684F61C72AACF8274EA29B48DAAC6C8377F791843914AABF5DAB3760980 ] C:\Windows\System32\NlsData0009.dll
20:13:17.0865 0x1214  C:\Windows\System32\NlsData0009.dll - ok
20:13:17.0865 0x1214  [ 7459301D21C2E21468823F73042D9F87, 74CF393FDA910EBF50F5EE74DF001F29467FE83F0457895FB267518A8504800B ] C:\Windows\SysWOW64\d3d9.dll
20:13:17.0865 0x1214  C:\Windows\SysWOW64\d3d9.dll - ok
20:13:17.0865 0x1214  [ 77B1471A490B53B24EFE136F09F76550, A650C3A244306F8E605BDA8E74BFE438356BA4403B0CB61E980D3183E3F0A7C7 ] C:\Windows\SysWOW64\d3d8thk.dll
20:13:17.0865 0x1214  C:\Windows\SysWOW64\d3d8thk.dll - ok
20:13:17.0880 0x1214  [ E9E5EA4A99081FB701761D1B1A288B1C, 7D52436E794086B75B7C91625C447C1F9E053B40FFCA0F4E04C4C91D2985ED2B ] C:\Windows\SysWOW64\atiu9pag.dll
20:13:17.0880 0x1214  C:\Windows\SysWOW64\atiu9pag.dll - ok
20:13:17.0880 0x1214  [ A2E5B2D20954210DCE1A75A1FC8CC36D, 1EA240AC37ECA4EC3E542F9E6DF72753EBA1DF76CBA8691EC61ABCC51EE6FCB2 ] C:\Windows\System32\fdSSDP.dll
20:13:17.0880 0x1214  C:\Windows\System32\fdSSDP.dll - ok
20:13:17.0896 0x1214  [ 0522E09092390652A33AD09FEF5B9FB8, 5B40BD8558FFCEF493A10B8F7480F340D7B3C93711AFE0C91A2E5E010FA0A472 ] C:\Windows\SysWOW64\atiumdag.dll
20:13:17.0896 0x1214  C:\Windows\SysWOW64\atiumdag.dll - ok
20:13:17.0896 0x1214  [ DB8BF64BE3932ADC407505D21C4F2C2C, 416DB653C86C9808FE8903B8A861E16AC38DF9239FF5382059421DBB48632924 ] C:\Windows\System32\fdProxy.dll
20:13:17.0896 0x1214  C:\Windows\System32\fdProxy.dll - ok
20:13:17.0896 0x1214  [ 536360810954BFE3B7E7816EFFFB449A, 6A1A7A74B149D9735D89DC1746AFFDE46475C95F733ABDE31969F9D2DC4DDA72 ] C:\Windows\SysWOW64\atiumdva.dll
20:13:17.0896 0x1214  C:\Windows\SysWOW64\atiumdva.dll - ok
20:13:17.0911 0x1214  [ 148A733B93A2AC104280495DA09D3CC2, 443E46865090C610B84A82DB23DF8D1F22001FEA8B10F5619A10D25D7FEA29CC ] C:\Windows\System32\NlsLexicons0009.dll
20:13:17.0911 0x1214  C:\Windows\System32\NlsLexicons0009.dll - ok
20:13:17.0911 0x1214  [ 7FE0D0C8F53735EA17C9AE93EFE7AD5A, 7F67FE1E0453CCCFA5097BFC9087BA5F4B213CCA8AC17FC05D7ED02A52112E05 ] C:\Windows\System32\wups2.dll
20:13:17.0911 0x1214  C:\Windows\System32\wups2.dll - ok
20:13:17.0911 0x1214  [ B6411CED931AFD059E48C52DBFBA95B4, 4E275A691E6A1C07D72DC8DA16B58B6634286A5058C3F4AC0ABD92B9A57FB5D5 ] C:\Windows\System32\P2P.dll
20:13:17.0911 0x1214  C:\Windows\System32\P2P.dll - ok
20:13:17.0927 0x1214  [ 046B2673767CA626E2CFB7FDF735E9E8, 9C932DCC5DE9B1919AB38C01D76AD7BBAF491DE6D158662407974748BC0B4C6C ] C:\Windows\System32\ListSvc.dll
20:13:17.0927 0x1214  C:\Windows\System32\ListSvc.dll - ok
20:13:17.0927 0x1214  [ 1F27643C4C626457FCE8F047AE1CD7E1, 68E2367B9AA21C1BDE7FEA566D5F0DBDF1E246CB53E949622F8EDC810AA95956 ] C:\Windows\SysWOW64\dxva2.dll
20:13:17.0927 0x1214  C:\Windows\SysWOW64\dxva2.dll - ok
20:13:17.0927 0x1214  [ 76D86E65FF7D10292886A1F2DB93A911, D83CF27E338FEF4967CE0B1D28FE60CEF986D275781FC013531E54B328C4B9A3 ] C:\Windows\System32\ELSCore.dll
20:13:17.0927 0x1214  C:\Windows\System32\ELSCore.dll - ok
20:13:17.0943 0x1214  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] C:\Windows\System32\pnrpsvc.dll
20:13:17.0943 0x1214  C:\Windows\System32\pnrpsvc.dll - ok
20:13:17.0943 0x1214  [ B526181E3F6B9F5136B6B7F776B7468B, FBCC5E06534694E0EC861ECA18E3F6D935A92DAF97CAD8051D3816D2A73E32CC ] C:\Windows\System32\elsTrans.dll
20:13:17.0943 0x1214  C:\Windows\System32\elsTrans.dll - ok
20:13:17.0943 0x1214  [ AEE087CF7423BA44CC2DE03CC565E399, 8C1C59D438C0C28E1B7B078C3EA030F6C4A7CBC3B1306D673B0A2EA0AAB2B953 ] C:\Windows\System32\elslad.dll
20:13:17.0943 0x1214  C:\Windows\System32\elslad.dll - ok
20:13:17.0958 0x1214  [ 51272A935F4F482A70F2A7D1C3A67AEE, CDA0861FFFE918B74E7C30E6A54D9A8B51665ACC24185D30273F9782407B0C8E ] C:\Windows\System32\NlsData000c.dll
20:13:17.0958 0x1214  C:\Windows\System32\NlsData000c.dll - ok
20:13:17.0958 0x1214  [ C2142407A2BE3462247500849B3FF8C7, A2C1C5689591871215F1F485B2BB37C5EC2943EBA44501C2486CA4F2186C9C96 ] C:\Windows\System32\NlsLexicons000c.dll
20:13:17.0958 0x1214  C:\Windows\System32\NlsLexicons000c.dll - ok
20:13:17.0958 0x1214  [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] C:\Windows\System32\p2psvc.dll
20:13:17.0958 0x1214  C:\Windows\System32\p2psvc.dll - ok
20:13:17.0974 0x1214  [ A8FFFBA5C5FC63E65BBDF5D54174721B, 8BD15F478632A84AD1711CC2912A4D2BA0E7AB249D31BB992EBEA55BC0BB0E9E ] C:\Program Files (x86)\Windows Live\Messenger\msgsres.dll
20:13:17.0974 0x1214  C:\Program Files (x86)\Windows Live\Messenger\msgsres.dll - ok
20:13:17.0974 0x1214  [ 3AEE02CEDAA3ACD14F9D7E038E44D6D1, 13E0350F82C61ED03E9A09FF991610EEDA214B2EBAF042396F29D3D49A6298A9 ] C:\Windows\System32\P2PGraph.dll
20:13:17.0974 0x1214  C:\Windows\System32\P2PGraph.dll - ok
20:13:17.0974 0x1214  [ E1E49CB88BB692B360ADC68455446CBC, DC714AD3A4C788C23B06C970522FF5E4755570423B19EE0F925C4C844ED69989 ] C:\Windows\System32\rdpdd.dll
20:13:17.0974 0x1214  C:\Windows\System32\rdpdd.dll - ok
20:13:17.0989 0x1214  [ FF29561ED5C5E40EDFAC6F9218FC6A46, 4D53D566C82DE7B59283D0BC4AFCAA296939893486405A30B3EDDA465DA053B9 ] C:\Windows\System32\RDPENCDD.dll
20:13:17.0989 0x1214  C:\Windows\System32\RDPENCDD.dll - ok
20:13:17.0989 0x1214  [ A23A9301EE7152FB6776052E52BDE9D9, 23D8D25FA39D88B31BE8C2142935CC084B678D999CAA0F93964A47142C77B94F ] C:\Windows\System32\RDPREFDD.dll
20:13:17.0989 0x1214  C:\Windows\System32\RDPREFDD.dll - ok
20:13:17.0989 0x1214  [ 4A82EA2807B16FF577AEAF8ADB8779FF, C7F9A45FF80DFDE804D81BEE23C748A465AEB729DF2C9E327374CDD94E300547 ] C:\Windows\System32\IdListen.dll
20:13:17.0989 0x1214  C:\Windows\System32\IdListen.dll - ok
20:13:18.0005 0x1214  [ C0CCBA2DDADBB8B068F50D1A832F07EC, F8FD878158D6BB69FEA349057C8C6A0DA061B6B8E1016B60F30CE1FADA858F87 ] C:\Windows\System32\Query.dll
20:13:18.0005 0x1214  C:\Windows\System32\Query.dll - ok
20:13:18.0005 0x1214  [ B9C7F88D85369548A69F2EDD1A40441E, 0C292FF5DA29C0F37C28521A1240694AD9D2AC5A83E6A9BBA5C3B56FE8E9F30D ] C:\Windows\System32\hgprint.dll
20:13:18.0005 0x1214  C:\Windows\System32\hgprint.dll - ok
20:13:18.0005 0x1214  [ A3287F8EB6182FB060C818524C7D6A63, D607422637E91974554DFCAD5D894363EE9B68D9FDE6A9B60A90AA46F79576D5 ] C:\Windows\System32\dxtrans.dll
20:13:18.0005 0x1214  C:\Windows\System32\dxtrans.dll - ok
20:13:18.0021 0x1214  [ 11542EC1F1C53EDB3CCF5AADF4C9972F, 3458A80698836B5ECD1F5E61FA1525C4646DDA4CDAF11BE80E6F11425D8C3674 ] C:\Windows\System32\NlsData0000.dll
20:13:18.0021 0x1214  C:\Windows\System32\NlsData0000.dll - ok
20:13:18.0021 0x1214  [ 2E7ADF9B0389CD94605717784D7E416A, A8E478A2FAE9013921B41E8929F92006AC17B7961FA60D807E9BA6C1C66E1DC6 ] C:\Windows\System32\drttransport.dll
20:13:18.0021 0x1214  C:\Windows\System32\drttransport.dll - ok
20:13:18.0021 0x1214  [ 4938A4350327E1A5DEB0CD134AC1AAA3, 2F248CD60508EF43040F952CB1FF5AAB91AE3235760997379B71ACC28E8B698E ] C:\Windows\System32\ddrawex.dll
20:13:18.0021 0x1214  C:\Windows\System32\ddrawex.dll - ok
20:13:18.0036 0x1214  [ C57BC99A4467B3E8F1CC2184A3F46729, 5DF1CFE59E597CEC6E6C1C3945D5FA4DE487E811F08D4E1A6ACC83932D5FDB42 ] C:\Windows\System32\drt.dll
20:13:18.0036 0x1214  C:\Windows\System32\drt.dll - ok
20:13:18.0036 0x1214  [ D6A99F26E31C9F15D8D8CC42FFE6D16B, 110DA1FCA2DF832AD9EC9C8CE9E1885CD484861DC4E937C67CC63610ABAD01ED ] C:\Windows\System32\dxtmsft.dll
20:13:18.0036 0x1214  C:\Windows\System32\dxtmsft.dll - ok
20:13:18.0052 0x1214  [ FC3001B4B9DF50B61F3CCA615759EFE7, 9AAE3665AD2893E7DB41965D430A7230B826AC4580603F20102E21C19C15535F ] C:\Windows\System32\PhotoMetadataHandler.dll
20:13:18.0052 0x1214  C:\Windows\System32\PhotoMetadataHandler.dll - ok
20:13:18.0052 0x1214  [ B2AE0301894EC4128F2D3216180E114F, 9BB9D05A44CF613119BB396831E861CDA73336F2823214443673AC8B6E1DA988 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationCore\1b07f4eb69b11cc979a7b9c179c318ae\PresentationCore.ni.dll
20:13:18.0052 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationCore\1b07f4eb69b11cc979a7b9c179c318ae\PresentationCore.ni.dll - ok
20:13:18.0052 0x1214  [ 80C834BA6B844C4B717F2465C4E8EC0F, E17EB075765749BB022BDDF0FBFE9C3C86438CB0BF9DBFC5FFCB2DAC41586219 ] C:\Windows\System32\WindowsCodecsExt.dll
20:13:18.0052 0x1214  C:\Windows\System32\WindowsCodecsExt.dll - ok
20:13:18.0067 0x1214  [ A072A3C7FD6247F1446D26A6929BDFD7, D2BE6441B5DB63A126DB6338D0E0B34FA63CCF0919A1AE153147026929DD1AFB ] C:\Windows\System32\vbscript.dll
20:13:18.0067 0x1214  C:\Windows\System32\vbscript.dll - ok
20:13:18.0067 0x1214  [ BD66ECA9479C688412DDDA9F2CCD2C69, 0F5D6A9C0B17BCDBDFEB2EEFB20EAAF5EDB9E1071F7F1A02CE45F34F61978B2F ] C:\Windows\System32\d3d10.dll
20:13:18.0067 0x1214  C:\Windows\System32\d3d10.dll - ok
20:13:18.0067 0x1214  [ B628DA8B548E6D11A35B86799714CB22, 8B2AC668D458567F2B291E380AD9DFB83BEEECA7F46581FBE29D7E89CED30034 ] C:\Windows\System32\d3d10core.dll
20:13:18.0067 0x1214  C:\Windows\System32\d3d10core.dll - ok
20:13:18.0083 0x1214  [ 7FD58BA8562948EE374E2513C6771EF9, C9CC496C895CF488CB9488857800B859DA3D29405B75F8541A1071C3EFC15020 ] C:\Windows\System32\mf.dll
20:13:18.0083 0x1214  C:\Windows\System32\mf.dll - ok
20:13:18.0083 0x1214  [ BE33E6A340B7C740226C28B177857948, 57626137C123CA1368170D23C47888753641E887EF71297678D3F8C3E4AE6905 ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\diasymreader.dll
20:13:18.0083 0x1214  C:\Windows\Microsoft.NET\Framework64\v2.0.50727\diasymreader.dll - ok
20:13:18.0083 0x1214  [ 28943370E3AF1D34D77D22911F891213, 63010E8C8300A976008E7041EE5EC79B0C96C6A2AD4E645E957430EC677C43DA ] C:\Windows\System32\NlsData0003.dll
20:13:18.0083 0x1214  C:\Windows\System32\NlsData0003.dll - ok
20:13:18.0099 0x1214  [ 4F0429B763D05E721C0DD50693B7EFBE, F22A186179445987205C0218A2EA887FB06AE2617EE8A9A37968692B471D2C2E ] C:\Windows\System32\NlsLexicons0003.dll
20:13:18.0099 0x1214  C:\Windows\System32\NlsLexicons0003.dll - ok
20:13:18.0099 0x1214  [ 139677BB4CA72DBB99FDF80E74FA0B95, 714D193DE7F062968C11A8A946F1FA066D03E1FC5A7BD90DBABC372605416413 ] C:\Program Files\Windows Media Player\WMPMediaSharing.dll
20:13:18.0099 0x1214  C:\Program Files\Windows Media Player\WMPMediaSharing.dll - ok
20:13:18.0099 0x1214  [ 3C06536A9AA332E9E0CEBDE5A596822A, 308F92C0F82AB582B4F8CE917B7CFC1ABDE802F98C348664033F5F1706D1F599 ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDPROV.DLL
20:13:18.0099 0x1214  C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDPROV.DLL - ok
20:13:18.0114 0x1214  [ 0C15DB6FF927935F0ECA52FEEA40E6C2, BF3FB9D11E3ABBAB756530A3592177ED775E40F213217F3CD7487D8F0A819012 ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\wlidcli.dll
20:13:18.0114 0x1214  C:\Program Files\Common Files\Microsoft Shared\Windows Live\wlidcli.dll - ok
20:13:18.0114 0x1214  [ A42FBC61385A5F5F444209EE94D89F27, 85A9827A24E85A5441E30C2953200EAC327927078E34EF1204C4B6009CE8D4DC ] C:\Windows\System32\NlsData0021.dll
20:13:18.0114 0x1214  C:\Windows\System32\NlsData0021.dll - ok
20:13:18.0114 0x1214  [ E5283AFD7590ECC37F8D62C4D6F1FB48, 0EF5F7000491D6A0A2339BF24ED07958FA8998C09FD13EF97C351C901C707B7C ] C:\Windows\System32\NlsLexicons0021.dll
20:13:18.0114 0x1214  C:\Windows\System32\NlsLexicons0021.dll - ok
20:13:18.0130 0x1214  [ 3374897A21CAB6A5FA91A84BAE3662E5, 5B0BDBB206523E5CA18B742A695037C039FCB39EC330B6FDF5DD550615C11BE8 ] C:\Windows\System32\mfds.dll
20:13:18.0130 0x1214  C:\Windows\System32\mfds.dll - ok
20:13:18.0130 0x1214  [ D13DF679DD3ECC777C6DA9B781C62A6C, 4FEA0F5180D25B83DE92E536D913A397DA2DBC3E2CE61AB3FAF284F8D8241628 ] C:\Windows\System32\quartz.dll
20:13:18.0130 0x1214  C:\Windows\System32\quartz.dll - ok
20:13:18.0130 0x1214  [ F662059829BA6D224BBD7AF98E2773A4, EB9976AD00B23C9038DEAB283491B5F93DD346A6DD86E8C1A28FDB05EB96582D ] C:\Windows\System32\mpg2splt.ax
20:13:18.0130 0x1214  C:\Windows\System32\mpg2splt.ax - ok
20:13:18.0145 0x1214  [ 35E81AA554E60D395572E780EF3B60CB, 97A9B89B1B50CDDF6ADFF9059DCE5935D905796DBCD6DB58EA2FA693CAAA194A ] C:\Windows\System32\msmpeg2adec.dll
20:13:18.0145 0x1214  C:\Windows\System32\msmpeg2adec.dll - ok
20:13:18.0145 0x1214  [ E793D5BC2D58797235741EBA61DC56B8, D7D0BC980C658D5E2F2C605075338493EAC97B9D7674007A9490846C2DCDF6F3 ] C:\Windows\System32\msmpeg2vdec.dll
20:13:18.0145 0x1214  C:\Windows\System32\msmpeg2vdec.dll - ok
20:13:18.0145 0x1214  [ 0B611F44B7CA4D5D6B76A560807F2D13, 351D19569E858922684BB28B31C27C6CC813CEF91C07947F752B0843DC485621 ] C:\Windows\System32\evr.dll
20:13:18.0145 0x1214  C:\Windows\System32\evr.dll - ok
20:13:18.0161 0x1214  [ 4D842C5081F06E61BFF461CF87D13525, DAEAAC69D12DCC86891E88B22D130900F2AD4AA8D3CABA6F6059C38D4BF03498 ] C:\Windows\ehome\ehtrace.dll
20:13:18.0161 0x1214  C:\Windows\ehome\ehtrace.dll - ok
20:13:18.0161 0x1214  [ 6F5386A655598F71BAAB2D6B63A69D6A, A751BEC204579126FD55DB2FFBF18A6C52CD4CDFB4490038C9B60F7BD4C30037 ] C:\Program Files (x86)\Mozilla Firefox\firefox.exe
20:13:18.0161 0x1214  C:\Program Files (x86)\Mozilla Firefox\firefox.exe - ok
20:13:18.0177 0x1214  [ 67EC459E42D3081DD8FD34356F7CAFC1, 1221A09484964A6F38AF5E34EE292B9AFEFCCB3DC6E55435FD3AAF7C235D9067 ] C:\Program Files (x86)\Mozilla Firefox\msvcr100.dll
20:13:18.0177 0x1214  C:\Program Files (x86)\Mozilla Firefox\msvcr100.dll - ok
20:13:18.0177 0x1214  [ E0FD85DADD7EF3E892ECBB0DC4D68E0A, 0DB79FA1CC550CD53D905E86A8482687D04A069AF1DDD3002D74B9B587C068D2 ] C:\Program Files (x86)\Mozilla Firefox\mozglue.dll
20:13:18.0177 0x1214  C:\Program Files (x86)\Mozilla Firefox\mozglue.dll - ok
20:13:18.0192 0x1214  [ 4F94DC9D7156DF622FB1AEFEC85B0F85, E6B63B40DF240A0D042070C5AD995B71A82806906FF05BD11DEC18913212E5DA ] C:\Program Files (x86)\Mozilla Firefox\nspr4.dll
20:13:18.0192 0x1214  C:\Program Files (x86)\Mozilla Firefox\nspr4.dll - ok
20:13:18.0192 0x1214  [ 03E9314004F504A14A61C3D364B62F66, A3BA6421991241BEA9C8334B62C3088F8F131AB906C3CC52113945D05016A35F ] C:\Program Files (x86)\Mozilla Firefox\msvcp100.dll
20:13:18.0192 0x1214  C:\Program Files (x86)\Mozilla Firefox\msvcp100.dll - ok
20:13:18.0192 0x1214  [ 5957AA52E13272E041E009F9176CF702, 498F2D45D49E41C414F600A17947E17932F8BFD6B09C85CCA1368C90173DAD9B ] C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
20:13:18.0192 0x1214  C:\Program Files (x86)\Mozilla Firefox\mozjs.dll - ok
20:13:18.0208 0x1214  [ AC1782CDBAF09F3AE2845BCAE25863C0, 133DCA6E63C9E2C3FC7031D73292EE1EC39034808041209EDF2392569ED20685 ] C:\Program Files (x86)\Mozilla Firefox\plc4.dll
20:13:18.0208 0x1214  C:\Program Files (x86)\Mozilla Firefox\plc4.dll - ok
20:13:18.0208 0x1214  [ 9FAB315A6F54DDAFF67C45C6B0E8180A, D7CECE32C8080A7C9C3C143252F806F8B8C35DEE4F31987CE50B203A0D2B678C ] C:\Program Files (x86)\Mozilla Firefox\plds4.dll
20:13:18.0208 0x1214  C:\Program Files (x86)\Mozilla Firefox\plds4.dll - ok
20:13:18.0223 0x1214  [ E64EF4732DC96115AFD6902739FEDEA9, 343147D7710C46BE7C156AABC2C8940FA408FC424CB23C7754051BB0B9C90467 ] C:\Program Files (x86)\Mozilla Firefox\nssutil3.dll
20:13:18.0223 0x1214  C:\Program Files (x86)\Mozilla Firefox\nssutil3.dll - ok
20:13:18.0223 0x1214  [ 37CF212AE1AE34852C08950868C99451, A4769466DE1BD8526091BB6C7D13E25E8BED0A4B592649EB4EBC23989A63E61E ] C:\Program Files (x86)\Mozilla Firefox\nss3.dll
20:13:18.0223 0x1214  C:\Program Files (x86)\Mozilla Firefox\nss3.dll - ok
20:13:18.0223 0x1214  [ 6B030923B2ED4341FA0FC2439EBA6937, D55E6D55BD90D9F8CD7D1F8FA8B1B26C7810A94F39589F77E5114CE56D691467 ] C:\Program Files (x86)\Mozilla Firefox\smime3.dll
20:13:18.0223 0x1214  C:\Program Files (x86)\Mozilla Firefox\smime3.dll - ok
20:13:18.0239 0x1214  [ 71CD356DD1CB8D414906797912093AB7, 4D1D25D02D184D1EF0768973C65EFF9B8C44881657BD0DD3310CD6BEB9203205 ] C:\Program Files (x86)\Mozilla Firefox\ssl3.dll
20:13:18.0239 0x1214  C:\Program Files (x86)\Mozilla Firefox\ssl3.dll - ok
20:13:18.0239 0x1214  [ EB03052F8D4343CFA74BDAA0FC9781B1, 68631DA9290A82C588F64838C0511ACDAA257516602466689882D6A752DC42F1 ] C:\Program Files (x86)\Mozilla Firefox\mozsqlite3.dll
20:13:18.0239 0x1214  C:\Program Files (x86)\Mozilla Firefox\mozsqlite3.dll - ok
20:13:18.0239 0x1214  [ 30F13CC50B40AC23A25861BDB8FDEDE9, 12590D095199968A8216BDA7858738145994A1798C97762E9DC3486D1DFC37A7 ] C:\Program Files (x86)\Mozilla Firefox\mozalloc.dll
20:13:18.0239 0x1214  C:\Program Files (x86)\Mozilla Firefox\mozalloc.dll - ok
20:13:18.0255 0x1214  [ 03C0475B64A49A531A1FCA445EFAF714, 36BBE41E219B58DF93478D952FAC118C8659646EDB90C646CF9177AAABD6A1DA ] C:\Program Files (x86)\Mozilla Firefox\gkmedias.dll
20:13:18.0255 0x1214  C:\Program Files (x86)\Mozilla Firefox\gkmedias.dll - ok
20:13:18.0255 0x1214  [ ED24A2D1D94A90E188FFCA4A21453E39, 5637C33AFA6E7CBA20B4617FBA0B1CA09EEEA38CBA5549D3D8EDD64C00562B69 ] C:\Program Files (x86)\Mozilla Firefox\xul.dll
20:13:18.0255 0x1214  C:\Program Files (x86)\Mozilla Firefox\xul.dll - ok
20:13:18.0255 0x1214  [ 70F03B29A62194E69911952B3640D9D2, 837E2672660DC72DEA9A75B2E7DC952065770E83C52D63FF3042BF42C72E1664 ] C:\Windows\SysWOW64\msdmo.dll
20:13:18.0255 0x1214  C:\Windows\SysWOW64\msdmo.dll - ok
20:13:18.0270 0x1214  [ 0D1A879E307914CA59724450690DABBA, 6BF3EFE28AC739A2926872CAC2FB9065E069C7D4437DCDF813CC8EFFAA10C6B1 ] C:\Program Files (x86)\Mozilla Firefox\xpcom.dll
20:13:18.0270 0x1214  C:\Program Files (x86)\Mozilla Firefox\xpcom.dll - ok
20:13:18.0270 0x1214  [ C0523FE101A30E3821604FE1CA1740D7, B5C8D4AF44EDE14A67A344BECB6291019C05E07B5F1CB69E63E058D052452340 ] C:\Windows\SysWOW64\DWrite.dll
20:13:18.0270 0x1214  C:\Windows\SysWOW64\DWrite.dll - ok
20:13:18.0270 0x1214  [ 51FA7CB7C76E56D478768F64A1AEF24B, 44F21ADF476324F6A213CDDACC239F91B75FFC91ABEDF30919FE122254CC3240 ] C:\Program Files (x86)\Mozilla Firefox\components\browsercomps.dll
20:13:18.0270 0x1214  C:\Program Files (x86)\Mozilla Firefox\components\browsercomps.dll - ok
20:13:18.0286 0x1214  [ A2631C4465BBCE72B7E371DFB924A9D3, 33DED574BFBC01C726084A4F06EE883D0B48DA4F527500236D86568757885F35 ] C:\Windows\SysWOW64\feclient.dll
20:13:18.0286 0x1214  C:\Windows\SysWOW64\feclient.dll - ok
20:13:18.0286 0x1214  [ 0D893F8D145D3B125B0226727C243A69, B344A18C5D5324A891B6E2121EC375AFB9E83D4C59D64EDD2E63854ABEC5D734 ] C:\Windows\System32\security.dll
20:13:18.0286 0x1214  C:\Windows\System32\security.dll - ok
20:13:18.0286 0x1214  [ 14C6A59904D397C6D85DADA9ACBB6FAB, ADA2ECA92DEFD9F97394EF3A65F86CB46EF06E15F761210339C6CFE1D2A7DFDB ] C:\Windows\System32\browcli.dll
20:13:18.0286 0x1214  C:\Windows\System32\browcli.dll - ok
20:13:18.0301 0x1214  [ 28142AAF1565736CE0E5D7EFCE3CC0F8, FEF38AA86683B88D9134D9136847781B2B634F233DCFC469B16A49C597AF1C86 ] C:\Windows\System32\schedcli.dll
20:13:18.0301 0x1214  C:\Windows\System32\schedcli.dll - ok
20:13:18.0301 0x1214  [ 5EA9A0950F322BFA382AF277801C0307, A2C00A3E22A484A00620FF801E0B6EB475C9593C80AF321564E5A0DD2B1C38B7 ] C:\Windows\System32\wbem\wmipcima.dll
20:13:18.0301 0x1214  C:\Windows\System32\wbem\wmipcima.dll - ok
20:13:18.0317 0x1214  [ 0028FFB55B16A31CA25F87007A87CCEF, 5FE7F6ED6F344F11942842AFF29CF7D16F595527BA0C331AE00DB6C0E3037046 ] C:\Program Files (x86)\Mozilla Firefox\softokn3.dll
20:13:18.0317 0x1214  C:\Program Files (x86)\Mozilla Firefox\softokn3.dll - ok
20:13:18.0317 0x1214  [ E714F5AB9D7C81E56AE3D99B61267D9A, DF7846E14375D3764D319E3FAEA4C2012732FE948188166B1A428A4730E8CCE4 ] C:\Program Files (x86)\Mozilla Firefox\nssdbm3.dll
20:13:18.0317 0x1214  C:\Program Files (x86)\Mozilla Firefox\nssdbm3.dll - ok
20:13:18.0317 0x1214  [ A283108E14F3970432C21AF4C0CB1BCE, 1D3219EF916D54232838870EDE557296AACB714B456ED0AAE0DE3CE3822F4643 ] C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
20:13:18.0317 0x1214  C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe - ok
20:13:18.0333 0x1214  [ 81C39B4B7FC14493958860AC06057AD9, C61D48D30C989B77D24BFB92A1730C91BE642DD789B00657FF75A64071E87E7D ] C:\Program Files (x86)\Mozilla Firefox\freebl3.dll
20:13:18.0333 0x1214  C:\Program Files (x86)\Mozilla Firefox\freebl3.dll - ok
20:13:18.0333 0x1214  [ DDE3A1D8D9A0AE1999CAD3EC6F0ED1F3, FBC94F4B15E1D80CEC5B3C5E534E340A54BF16CB9ED06ED81C38657F3AF0E50F ] C:\Program Files (x86)\Mozilla Firefox\nssckbi.dll
20:13:18.0333 0x1214  C:\Program Files (x86)\Mozilla Firefox\nssckbi.dll - ok
20:13:18.0333 0x1214  [ C1C03EA437EDDA8A7D4D8786E5AE6751, 6526170B7573B4E673D3FCF65E903ABBCDEA5F42BA9EC5BB84E421D6133346BB ] C:\Windows\System32\wuauclt.exe
20:13:18.0333 0x1214  C:\Windows\System32\wuauclt.exe - ok
20:13:18.0348 0x1214  [ 50EBD31C3527366FAFA468BD609F7352, FA53917F73C33F97C4074D7F02BEF7ED8B3C0D418C5B7BB4E0D722A430AB1595 ] C:\Windows\System32\wucltux.dll
20:13:18.0348 0x1214  C:\Windows\System32\wucltux.dll - ok
20:13:18.0348 0x1214  [ CA0C67BA7AEBA6AED5DDB852E6EEA811, 1C52B50019786CE77C3338F470A9193F90F71080196198357744CB065B7C6851 ] C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe
20:13:18.0348 0x1214  C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe - ok
20:13:18.0348 0x1214  [ 25819A6361F10C30905B5D0FDB8DCA42, 001B1CE508BE4C87375C4CC37910248A10B3B547A83657B1D32F560F752EEADD ] C:\Windows\SysWOW64\t2embed.dll
20:13:18.0348 0x1214  C:\Windows\SysWOW64\t2embed.dll - ok
20:13:18.0364 0x1214  [ B5069E411F1C2062A48C89B994409ED9, 5D05ECA5230214438739138087AF1ACD459F0DE336028441B5DFE0F85560FC49 ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\cs\fuel.service.exe.mui
20:13:18.0364 0x1214  C:\Program Files\ATI Technologies\ATI.ACE\Fuel\cs\fuel.service.exe.mui - ok
20:13:18.0364 0x1214  [ BBF94DD1CCEACF3C84F7DE3518D66ACA, 29C2306255A3BA25048AFC31B8EC11051E17EF28CB39B7FE5B62B9A840C1F2ED ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\de\fuel.service.exe.mui
20:13:18.0364 0x1214  C:\Program Files\ATI Technologies\ATI.ACE\Fuel\de\fuel.service.exe.mui - ok
20:13:18.0364 0x1214  [ 1FCEAD4CDA77AF42A3032E55AC99570A, 0539BA8FC21B51725242EE12A01F1CACFBFD1D5574E95809EE1C9FDE9CC349CB ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\en\Fuel.Service.exe.mui
20:13:18.0364 0x1214  C:\Program Files\ATI Technologies\ATI.ACE\Fuel\en\Fuel.Service.exe.mui - ok
20:13:18.0379 0x1214  [ 3BC8D95773274EDACFDFD9D08E161477, CD2BA00A15301C12E12E9436436E6A4D5B730C0DD8868B33579AE709E3427EF4 ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\es\fuel.service.exe.mui
20:13:18.0379 0x1214  C:\Program Files\ATI Technologies\ATI.ACE\Fuel\es\fuel.service.exe.mui - ok
20:13:18.0379 0x1214  [ 81D2A6253A4711856F6AC68904A0CB51, B3A7FF97ACA1201758C5295AFA7D34E8D05F429B7FAF707CF4D5740B8C76CB61 ] C:\Program Files (x86)\QuickTime\QuickTimePlayer.exe
20:13:18.0379 0x1214  C:\Program Files (x86)\QuickTime\QuickTimePlayer.exe - ok
20:13:18.0395 0x1214  [ 7E5DCDC44AF0F093B614194B79D3A4AE, EB5CFCC58B7C1B48FD247AA8B46967C3F7A728B2287BA279624D21EE5C11D3B0 ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\fr\fuel.service.exe.mui
20:13:18.0395 0x1214  C:\Program Files\ATI Technologies\ATI.ACE\Fuel\fr\fuel.service.exe.mui - ok
20:13:18.0395 0x1214  [ 9B7A4E99F888FF487A59F5BE7EA2F819, B113077D1425B8EAF66072ADE5AFBD74E329A8D6B3EEA8304655AA106FE1BA63 ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\it\fuel.service.exe.mui
20:13:18.0395 0x1214  C:\Program Files\ATI Technologies\ATI.ACE\Fuel\it\fuel.service.exe.mui - ok
20:13:18.0395 0x1214  [ F8B3B8BCD8B18B34503D771B1F50F5B5, 6710A2CE8C3E53A7EB845865241D58CA465E8EB94D96354A09FA7072EBA825A2 ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\ja\fuel.service.exe.mui
20:13:18.0395 0x1214  C:\Program Files\ATI Technologies\ATI.ACE\Fuel\ja\fuel.service.exe.mui - ok
20:13:18.0411 0x1214  [ 52A15DADFD1FDE7E95472B02690BA693, 46B49CA2760AF51254A02066A8B64B83E2A33CDBFA61308E8B852DE9B5F935F5 ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\ko\fuel.service.exe.mui
20:13:18.0411 0x1214  C:\Program Files\ATI Technologies\ATI.ACE\Fuel\ko\fuel.service.exe.mui - ok
20:13:18.0411 0x1214  [ 8DD92FCCAA7B4AF440E2582B945A51E0, F16164AA56FA38841B2DDFC6C0BD4D0EEE8A418A172FC1E8823DEBD8EC5BE9E5 ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\pl\fuel.service.exe.mui
20:13:18.0411 0x1214  C:\Program Files\ATI Technologies\ATI.ACE\Fuel\pl\fuel.service.exe.mui - ok
20:13:18.0411 0x1214  [ 8FE0E89D505F0D15DA31B09271223E8C, B970E2CDACE86E4E8E44BEEE0D9F3075C7D52E4A7448AD61AE4A5A1B522B2E37 ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\ru\fuel.service.exe.mui
20:13:18.0411 0x1214  C:\Program Files\ATI Technologies\ATI.ACE\Fuel\ru\fuel.service.exe.mui - ok
20:13:18.0426 0x1214  [ 211EA291F9F9ABEF2FF32448F772A7A9, D6B73A6AFFEC606F2C3CB4B878F414A8B001BCC8D25B4441387D0ACEBDAE176C ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\sv\fuel.service.exe.mui
20:13:18.0426 0x1214  C:\Program Files\ATI Technologies\ATI.ACE\Fuel\sv\fuel.service.exe.mui - ok
20:13:18.0426 0x1214  [ 4D97FFF253A23FDCDD6932FB65D37740, 6D750D99799CC843C75B7BF44D00DE728CE6F6411B3D239A47D3126CDFC28AB8 ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\zh-Hans\fuel.service.exe.mui
20:13:18.0426 0x1214  C:\Program Files\ATI Technologies\ATI.ACE\Fuel\zh-Hans\fuel.service.exe.mui - ok
20:13:18.0442 0x1214  [ F834B06933E51E2266DC4858A0E9DD98, F2C826D09BFB7A1743784C0B7B4481C336BF192D37B659A5DF5F488AA2CAFEAC ] C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
20:13:18.0442 0x1214  C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe - ok
20:13:18.0442 0x1214  [ D27E5A0797194C13A2F879A5B499B9FB, F77E7C4A5E124BAB557AC035A8DF479E0E9E4C7C4103915D09DD27B473A15553 ] C:\Program Files (x86)\McAfee\SiteAdvisor\NPMcFFPlg32.dll
20:13:18.0442 0x1214  C:\Program Files (x86)\McAfee\SiteAdvisor\NPMcFFPlg32.dll - ok
20:13:18.0442 0x1214  [ 205B7034B64DE5A68DEB96B47B7E889B, 7D1330631B6802F4DB7E60324C18015C4E414DC73EC6AFC7EC576B30E3902AE7 ] C:\Windows\SysWOW64\mscms.dll
20:13:18.0442 0x1214  C:\Windows\SysWOW64\mscms.dll - ok
20:13:18.0457 0x1214  [ 579ED0A15D98941EB4D1CB59517E47C3, 9ACD99E335ECDCA630C48AE11517BC7A59CBDF8B4445A029274255C1107BCFA6 ] C:\PROGRA~2\McAfee\SITEAD~1\mcbrwctl.dll
20:13:18.0457 0x1214  C:\PROGRA~2\McAfee\SITEAD~1\mcbrwctl.dll - ok
20:13:18.0457 0x1214  [ B5C5DCAD3899512020D135600129D665, F6B4D18FA0D3C4958711AC0D476C21A6FDF2897F989A0AD290B43F463DD8B5B0 ] C:\Windows\SysWOW64\wininit.exe
20:13:18.0457 0x1214  C:\Windows\SysWOW64\wininit.exe - ok
20:13:18.0457 0x1214  [ 0615B72D5E241103769003452B4AFB1C, 38A5A7893D2B97968FE6656962735E0AABCC95E020A0B26340DD77473EB2C90B ] C:\Program Files (x86)\Lavasoft\Ad-Aware\AWSC.exe
20:13:18.0457 0x1214  C:\Program Files (x86)\Lavasoft\Ad-Aware\AWSC.exe - ok
20:13:18.0473 0x1214  [ 6073852E5D291900E2EF56D16C0BFADE, 18D9C339DAA235A9AD80FC0F043DB6CBCC8D3927D12A24AD87B4C12C0CF1CFC4 ] C:\Program Files (x86)\Lavasoft\Ad-Aware\AWSCUpdate.dll
20:13:18.0473 0x1214  C:\Program Files (x86)\Lavasoft\Ad-Aware\AWSCUpdate.dll - ok
20:13:18.0473 0x1214  [ D5B1ED9A781170CCD88C733B09FD3775, 56B4895E2BE42E0DFA391AD7B3F0F72DC26ED7283DBD92A053E89D10AA632CD0 ] C:\Program Files (x86)\Lavasoft\Ad-Aware\threatwork.exe
20:13:18.0473 0x1214  C:\Program Files (x86)\Lavasoft\Ad-Aware\threatwork.exe - ok
20:13:18.0473 0x1214  [ A223CF703E28CBD7E9E7982141FA403C, EF6D32CD7EACE2F67B2819000D1A7D7127DBCE36BAE76541B6B2D7C075502F93 ] C:\Windows\SysWOW64\comdlg32.dll
20:13:18.0473 0x1214  C:\Windows\SysWOW64\comdlg32.dll - ok
20:13:18.0489 0x1214  [ 5608E451B9D69B548103BA9CF39A3527, 9CDCFACD419FF252C87668DF2F79E2ABF7DD3CD9F7F0457EAD2B957F74F0CB33 ] C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe
20:13:18.0489 0x1214  C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe - ok
20:13:18.0489 0x1214  [ 203C3380A744CA5B9B1A9CAEB57F7D57, 43907909F307FADA0A748ACE0363AA82768BAD3F9107B0DC524ED2BD4205360A ] C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
20:13:18.0489 0x1214  C:\Windows\SysWOW64\wbem\WmiPrvSE.exe - ok
20:13:18.0489 0x1214  [ 4BF70B35B943BD73BD6E13EB7C1BA4B3, 5450EC4B012401A06A78F92F69530BA720405B4D1A0BBD271C41E911C55803EC ] C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll
20:13:18.0489 0x1214  C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll - ok
20:13:18.0504 0x1214  [ 622D95520182F6D3D05310D5810CA8B3, 8162F06721E7B994933639D45BEEF34643DB36C25AE9DD8593991F45D5C2DFCC ] C:\Windows\SysWOW64\SearchIndexer.exe
20:13:18.0504 0x1214  C:\Windows\SysWOW64\SearchIndexer.exe - ok
20:13:18.0504 0x1214  [ 89ED7C028A487340B7D93D5A38FDCB54, 8217FA0DE986E9041C030CD8D504F706E8D9DE10ED205A2619FF62461EDC1441 ] C:\Windows\SysWOW64\SearchProtocolHost.exe
20:13:18.0504 0x1214  C:\Windows\SysWOW64\SearchProtocolHost.exe - ok
20:13:18.0520 0x1214  [ 8A674F9AB20B4937357BF6F5A0938EBF, 0EC6D49818BE7731C55CB629AEF43A7794FB5ABEF9FF83812470FE21A6213CDD ] C:\Windows\SysWOW64\SearchFilterHost.exe
20:13:18.0520 0x1214  C:\Windows\SysWOW64\SearchFilterHost.exe - ok
20:13:18.0520 0x1214  [ A63DC5C2EA944E6657203E0C8EDEAF61, F7AD4B09AFB301CE46DF695B22114331A57D52E6D4163FF74787BF68CCF44C78 ] C:\Windows\SysWOW64\dllhost.exe
20:13:18.0520 0x1214  C:\Windows\SysWOW64\dllhost.exe - ok
20:13:18.0520 0x1214  [ DE5DACEBD4C89834EC6D2C41C8643CDA, 87FB9FE2C32635C9831ED1EBD00999B80B91154A2F3584D31BEB902A040F283B ] C:\Windows\SysWOW64\taskeng.exe
20:13:18.0520 0x1214  C:\Windows\SysWOW64\taskeng.exe - ok
20:13:18.0535 0x1214  [ 0E85C11F8850D524B02181C6E02BA9AE, 8703566931067CCF949E9779E4D328DD21210329DD687459300C83DDD06390A8 ] C:\Windows\SysWOW64\dsound.dll
20:13:18.0535 0x1214  C:\Windows\SysWOW64\dsound.dll - ok
20:13:18.0535 0x1214  [ 5E08AC958BE05247FF1539E0D1CE7905, C6E7419EA72D1703F72292743A999F4A6CF0C6734BA1EE92C6AF18BA8B1A3A23 ] C:\Windows\SysWOW64\dinput8.dll
20:13:18.0535 0x1214  C:\Windows\SysWOW64\dinput8.dll - ok
20:13:18.0535 0x1214  [ EB68851F020D35293EADAADEB18B8220, FBBF85543DFDD4AF95607279D8A81D34E0FFB11C17EF1E4CBDE1D1ED05BFD9EF ] C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe
20:13:18.0535 0x1214  C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe - ok
20:13:18.0551 0x1214  [ 816B681CC308FAA128EDCB90643DCED7, C2C6295F59F00F4D47673C361F1965BA62F9ADF6897A6A0BE224509628A27D7E ] C:\Windows\SysWOW64\icm32.dll
20:13:18.0551 0x1214  C:\Windows\SysWOW64\icm32.dll - ok
20:13:18.0551 0x1214  [ 77C2B447CCFFABE9AD2636E0158C8BB4, 7E46727F684896559051AF078A0BC0E1F0CF534389EA330223CCD8EE75CFB558 ] C:\PROGRA~2\McAfee\SITEAD~1\saUI.exe
20:13:18.0551 0x1214  C:\PROGRA~2\McAfee\SITEAD~1\saUI.exe - ok
20:13:18.0551 0x1214  [ 9643F04236B9A33B36EE5A72310C2B31, AA16E2660948F04F423DB27AE3DA034C74EC581136BF93D40E32BE36DB7DC410 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\e77c1a6e38632a94f0143644bc25fc34\PresentationFramework.Royale.ni.dll
20:13:18.0551 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\e77c1a6e38632a94f0143644bc25fc34\PresentationFramework.Royale.ni.dll - ok
20:13:18.0567 0x1214  [ 40E11A02C7A47CE40345C8B0AC35A38E, 4DDFFF524BF2350317324E0CDA9A9B56EE4A5CB295102BA581C1A05EA823986F ] C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\576f6cca332b90183be8f1807312ae43\PresentationFramework.Luna.ni.dll
20:13:18.0567 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\576f6cca332b90183be8f1807312ae43\PresentationFramework.Luna.ni.dll - ok
20:13:18.0567 0x1214  [ 498A17CCFF61186652C0C1BF755825D6, A0D02D7348DA9CB8ED15F3B49E0CF9EBABC3A1B67773281F0B2CD8B443F9CD3B ] C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\dd99f71cd44aa222cbded71138c4b036\PresentationFramework.Classic.ni.dll
20:13:18.0567 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\dd99f71cd44aa222cbded71138c4b036\PresentationFramework.Classic.ni.dll - ok
20:13:18.0567 0x1214  [ 5999B4A79A44CB2E5D22BD8627672585, CBCCB7B3FBF5EBCFF9497EA13A3B228D578EF740EC4B3B6AB6A6154F347AA0D5 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\fdfe786e6ddaf7ed2472918e408d96a0\PresentationFramework.Aero.ni.dll
20:13:18.0567 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\fdfe786e6ddaf7ed2472918e408d96a0\PresentationFramework.Aero.ni.dll - ok
20:13:18.0582 0x1214  [ 2D712B209F9B7B4889AF84312D8082CF, 12394719731F698DA1755BBA5BD774460B0E5741319461D2CDE54C20D8B9C781 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\c5076f9a8ecf90a4c86ac5cfcb9e5528\PresentationFramework.ni.dll
20:13:18.0582 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\c5076f9a8ecf90a4c86ac5cfcb9e5528\PresentationFramework.ni.dll - ok
20:13:18.0582 0x1214  [ 3C0CE38CB73B3887A7ABB2AC74B266E8, EC857857C0A71582FD1879C761170AE9325A097B086F1E8D62B1CC31775859BF ] C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationUI\d1ab4cce2057a9c0d0f9f84cee29e076\PresentationUI.ni.dll
20:13:18.0582 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationUI\d1ab4cce2057a9c0d0f9f84cee29e076\PresentationUI.ni.dll - ok
20:13:18.0598 0x1214  [ DC89F7790BF85576905680A0FF54C3A3, EECEDA291346DCD82A6843C6059B000959E0476DB78DC0BA360ABABD0479A327 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Printing\03c48fc135c95fb12dd588c56091d904\System.Printing.ni.dll
20:13:18.0598 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Printing\03c48fc135c95fb12dd588c56091d904\System.Printing.ni.dll - ok
20:13:18.0598 0x1214  [ 5987EA8A82C53359BCD2C29D6588583E, 59E2DF91F8DA9E33DE65FA67A6A49A7C3F524618A87EAEFC8A28C5304E7FAB85 ] C:\Windows\SysWOW64\linkinfo.dll
20:13:18.0598 0x1214  C:\Windows\SysWOW64\linkinfo.dll - ok
20:13:18.0598 0x1214  [ 36333D345062E42E849C0AF00CBEFC97, 3E375720C5A3E116CC22416BAFD61F06BD508ED0A628DD393FB8F065F0F1EAA5 ] C:\Windows\SysWOW64\ntshrui.dll
20:13:18.0598 0x1214  C:\Windows\SysWOW64\ntshrui.dll - ok
20:13:18.0613 0x1214  [ 8B74CEC6980D4816B0037AE9A27E538F, 8721EDB4C51BF6020002FA5DDB1987C68590F9F433A2F18D9756B2DAC7542CB6 ] C:\Windows\SysWOW64\slc.dll
20:13:18.0613 0x1214  C:\Windows\SysWOW64\slc.dll - ok
20:13:18.0613 0x1214  [ 6C25B2D5F111F295DB0C0A5E4020E20C, C58E81BBDEEAF39EF4871FCBC5586C5B3951A7163B05A59A9AB33BD2BC6EA3A8 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\ReachFramework\cb1f15fb69b77f8b3ddbf40161e5a831\ReachFramework.ni.dll
20:13:18.0613 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\ReachFramework\cb1f15fb69b77f8b3ddbf40161e5a831\ReachFramework.ni.dll - ok
20:13:18.0613 0x1214  [ F05BA65495FB27046EC16E70251C852A, A71184F6D925129CE5FC60C53B4DCD410851E5165F6798C77C51773AAF46EB2F ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Activities.C#\6f5d87386a087cb1b39003acc5e422e8\System.Activities.Core.Presentation.ni.dll
20:13:18.0613 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Activities.C#\6f5d87386a087cb1b39003acc5e422e8\System.Activities.Core.Presentation.ni.dll - ok
20:13:18.0629 0x1214  [ 745710495D92EF3402096A544DAD03BE, 69747802A162B834A958864EF92EE1952CC221C2C87B7A7482BD005E0222020D ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Activities.P#\e5b5c2a7526629acb46e369864c6af7a\System.Activities.Presentation.ni.dll
20:13:18.0629 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Activities.P#\e5b5c2a7526629acb46e369864c6af7a\System.Activities.Presentation.ni.dll - ok
20:13:18.0629 0x1214  [ DC36FED87F734D6A69AC932C2E33FABA, 564ECEFD86FC0ECABE50BEA4512A41C2BD0494776F4B1D602924B7FE25E40361 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Pres#\0f8aaf2ed90eed6ecb0098fa2ca3e7eb\System.Windows.Presentation.ni.dll
20:13:18.0629 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Pres#\0f8aaf2ed90eed6ecb0098fa2ca3e7eb\System.Windows.Presentation.ni.dll - ok
20:13:18.0629 0x1214  [ B5B2EA547E68488BE5C33216480DAD43, B9318D99826CFABE3D3A143D58B55BC81D29D4254D5E35ACB47E0E2EFD2E8669 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsFormsIntegra#\36f196cd31caed1a5399af41550faa46\WindowsFormsIntegration.ni.dll
20:13:18.0629 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsFormsIntegra#\36f196cd31caed1a5399af41550faa46\WindowsFormsIntegration.ni.dll - ok
20:13:18.0645 0x1214  [ AFBEF1A335EBE45458B4BF69395C3C8B, B33F6C077CC1C8AC6DFEAEDE7D17E0014186C5CBEDA59C8EBCC29D0704A34A86 ] C:\Program Files\Adobe\Common\Plug-ins\CS5\MediaCore\CineForm\CFHD_AVI_Importer.prm
20:13:18.0645 0x1214  C:\Program Files\Adobe\Common\Plug-ins\CS5\MediaCore\CineForm\CFHD_AVI_Importer.prm - ok
20:13:18.0645 0x1214  [ 16206CC56F8120C62B6D2DC99FC59ED9, 85AD9EE47FABF874C12B249D09E82E27B7EE5739897E8E11B97130A4B5776B64 ] C:\Program Files\Adobe\Common\Plug-ins\CS5\MediaCore\CineForm\CFHD_MOV_Importer.prm
20:13:18.0645 0x1214  C:\Program Files\Adobe\Common\Plug-ins\CS5\MediaCore\CineForm\CFHD_MOV_Importer.prm - ok
20:13:18.0660 0x1214  [ 2BF9A671CE898EA41374261BA02AAC86, CE13003A50475A2D910AA673F0AC932970AF32C746D7C4197448787B07C4E712 ] C:\Program Files\Adobe\Common\Plug-ins\CS5\MediaCore\CineForm\CFHD_File_Exporter.prm
20:13:18.0660 0x1214  C:\Program Files\Adobe\Common\Plug-ins\CS5\MediaCore\CineForm\CFHD_File_Exporter.prm - ok
20:13:18.0660 0x1214  [ 2AD99867D8405CCA1F7A449E307019AA, B1B2E288DD535912E0D83734C386E0B0D80EE1BABC9D920EDBE0E8716DA5CA31 ] C:\Program Files\COMODO\COMODO Internet Security\cfpupdat.exe
20:13:18.0660 0x1214  C:\Program Files\COMODO\COMODO Internet Security\cfpupdat.exe - ok
20:13:18.0660 0x1214  [ 14FC9AA39BCD8CA57361A65EEB202E1B, D5B6E14F81D94CA4C3D6977069AF67EA3DCC607C268BA6F65711BC1D7E2A3F8F ] C:\Program Files\COMODO\COMODO Internet Security\7za.dll
20:13:18.0660 0x1214  C:\Program Files\COMODO\COMODO Internet Security\7za.dll - ok
20:13:18.0676 0x1214  [ E8D97C01224B5068232CCF769967D0A8, 02C5BB34007BE84A5FEA5756FCAADA0B7C419DC54FEB31CBF36E9F9C763ECBE7 ] C:\Program Files (x86)\Windows Live\SOXE\wlsoxe.dll
20:13:18.0676 0x1214  C:\Program Files (x86)\Windows Live\SOXE\wlsoxe.dll - ok
20:13:18.0676 0x1214  [ E1EF320CBB1A6623DF040D5539DDA8F4, 8BEEB1F5726907CD91A6F7BCED3A775981376C73970767E22B051337723AD674 ] C:\Windows\SysWOW64\TaskSchdPS.dll
20:13:18.0676 0x1214  C:\Windows\SysWOW64\TaskSchdPS.dll - ok
20:13:18.0676 0x1214  [ C3D545F4646303A864C8DFA85B33F476, 9FE93A6B4EFB5FA5A9B3EF82159F2712A11AA2494959F8F65B49FB262FBDAB2F ] C:\Windows\System32\TaskSchdPS.dll
20:13:18.0676 0x1214  C:\Windows\System32\TaskSchdPS.dll - ok
20:13:18.0691 0x1214  [ BBD191F0D49A782D481E74817EDBE170, C0B8940E7E1F1AF696C982E6D6A41196D563297992B7A55F468CDDE37DC04C87 ] C:\Program Files (x86)\Diablo III\icudt49.dll
20:13:18.0691 0x1214  C:\Program Files (x86)\Diablo III\icudt49.dll - ok
20:13:18.0691 0x1214  [ 1E85838CB68B596EF8BFEE451892916E, C2B1FA21222EFBDE92F598E6C8237E4AEA6F95336D2A805721F9C6336EAC7FB0 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\fe4b573b7c5fba2bf4e040dbc7e17260\mscorlib.ni.dll
20:13:18.0691 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\fe4b573b7c5fba2bf4e040dbc7e17260\mscorlib.ni.dll - ok
20:13:18.0691 0x1214  [ 61DB0E48311F6C5EABAE446A6546E3D1, AE5F1E9725208AEA576EAAC9878C6240F98EC55FEFF6B626D9B527DB5A6721BC ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualC\12e0a1d5b934faba4413aec8b39f99c5\Microsoft.VisualC.ni.dll
20:13:18.0707 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualC\12e0a1d5b934faba4413aec8b39f99c5\Microsoft.VisualC.ni.dll - ok
20:13:18.0707 0x1214  [ A7412F9792ECB91BC696C1DA56F82A38, 6795F5E7FAACCD82D55BA3DAD62168728EB7342CB7F4C45CD655AC20B3B9867E ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System\ed11b8a0c85186feeeeb84cde0bf3480\System.ni.dll
20:13:18.0707 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System\ed11b8a0c85186feeeeb84cde0bf3480\System.ni.dll - ok
20:13:18.0707 0x1214  [ B63A811F246306B7B8147CD1A12CC9DE, 8CDFF974854D97057E159EFFCCA41C6983F50771D8BA5266C068B4C796AF3655 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\59af23545b9d8b0e9dad9073a6f16dc1\System.Configuration.ni.dll
20:13:18.0707 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\59af23545b9d8b0e9dad9073a6f16dc1\System.Configuration.ni.dll - ok
20:13:18.0723 0x1214  [ 8CFB6B6949A5E9ED4C4DDF7583E528D3, 27618A1F19EA06E042942E5641D5A5F524A6882C6507F0A222CA6368A35ED523 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\37a7524915f215b23cc6d77f7725811f\System.Xml.ni.dll
20:13:18.0723 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\37a7524915f215b23cc6d77f7725811f\System.Xml.ni.dll - ok
20:13:18.0723 0x1214  [ 7B47109B31B5A2969D110DFD53510BCB, 6B3B0B08846C24A1025EAD796944FF0EB1C68CD0A950DF369D0F64EC4D5718C5 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data.SqlXml\67c96c6fed7be1a1a1c7799366316e4c\System.Data.SqlXml.ni.dll
20:13:18.0723 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data.SqlXml\67c96c6fed7be1a1a1c7799366316e4c\System.Data.SqlXml.ni.dll - ok
20:13:18.0723 0x1214  [ FE755705D9BCACA7A89ED75A9B5DFCE4, D6246D03934D8211B0A6AB57F2DBD74129C303F4993ACF02B0C6F602639A3F5B ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Security\2b3fff9aa5d3a57a484403de53c12cfb\System.Security.ni.dll
20:13:18.0723 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Security\2b3fff9aa5d3a57a484403de53c12cfb\System.Security.ni.dll - ok
20:13:18.0738 0x1214  [ EE75E74A2735A13EAD69B338D397FC9D, 6D1AE0D4AF107AE70B1171E07581AAA086CDC352C1B5421F86C73DDE88B90DF8 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\90434351d2ccae2f20f3d057f37534ac\WindowsBase.ni.dll
20:13:18.0738 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\90434351d2ccae2f20f3d057f37534ac\WindowsBase.ni.dll - ok
20:13:18.0738 0x1214  [ DCFAE76D77B3F796656698BBA143AEC2, 9C761AA18DA12FBE59D6E900230040FDE54B0AAB7478BD849CF27C0951B53E54 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\6d84ca5747a5734a7f202a3444e83587\PresentationCore.ni.dll
20:13:18.0738 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\6d84ca5747a5734a7f202a3444e83587\PresentationCore.ni.dll - ok
20:13:18.0754 0x1214  [ 8598A00C08CF2D121519188FE1C1B4B8, 5A8B7C0C6A8279AE07FD8BE66A1777343F53B47AFD9B993762C7B1BCA6B9141D ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Accessibility\b009c5c21d9d5718e0075f9c67818672\Accessibility.ni.dll
20:13:18.0754 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Accessibility\b009c5c21d9d5718e0075f9c67818672\Accessibility.ni.dll - ok
20:13:18.0754 0x1214  [ DBB296208E924C1A029BD43373F23550, 1B961936AD56E2B6327DCBB7EDF4648349A02F014F39ADBC4D38154D7D9B456A ] C:\Windows\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\669642278ad02b8302eff5f56e7877bf\UIAutomationProvider.ni.dll
20:13:18.0754 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\669642278ad02b8302eff5f56e7877bf\UIAutomationProvider.ni.dll - ok
20:13:18.0754 0x1214  [ 716D789E6C3F14A8E444B41566F275D2, 7BD84D7489CBBFB1B868C0430673EA972A947E006D1EF5723DD9DFFCDCB4F884 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\UIAutomationTypes\3c0d65214c6b8c474c62baa9709dbbba\UIAutomationTypes.ni.dll
20:13:18.0754 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\UIAutomationTypes\3c0d65214c6b8c474c62baa9709dbbba\UIAutomationTypes.ni.dll - ok
20:13:18.0769 0x1214  [ 44D6B7DEE2C0836817690B9D09765384, D1746AD31870623E671F7B182C5C2B5E54115A6448D7D59E11CC24C597A88149 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Deployment\1c913d6dd1262c6490359f0e5f77bdda\System.Deployment.ni.dll
20:13:18.0769 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Deployment\1c913d6dd1262c6490359f0e5f77bdda\System.Deployment.ni.dll - ok
20:13:18.0769 0x1214  [ 849B84A7CDEDDED6449E64BE7B613FCE, 7E92B70663A0BEC99188B381ABF83ACC608AF87B66DDE9BB1F318D8390EB6140 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\2cdb64c30664767ed03f53522275adfa\System.Drawing.ni.dll
20:13:18.0769 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\2cdb64c30664767ed03f53522275adfa\System.Drawing.ni.dll - ok
20:13:18.0785 0x1214  [ 5B297BBAF63E73577F018738E29BC0C3, BFB5A6C5A6F9C1EAE8186465B72502979633BFAC6EB4E3824D90700FE3BC8623 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\165bf8a101cd5f09f45e962615dd28e7\System.Windows.Forms.ni.dll
20:13:18.0785 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\165bf8a101cd5f09f45e962615dd28e7\System.Windows.Forms.ni.dll - ok
20:13:18.0785 0x1214  [ B4250E9D0B2FEF6C91A617636F87CA1A, 0C22610F73057FD38ABD7F2787D05EEF656C211ADB5FF34D2013CF14D344C879 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\d122fa779c5120db163b1c1006368f8c\System.Runtime.Serialization.Formatters.Soap.ni.dll
20:13:18.0785 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\d122fa779c5120db163b1c1006368f8c\System.Runtime.Serialization.Formatters.Soap.ni.dll - ok
20:13:18.0785 0x1214  [ 71C5768C6824800A8D3A909DFFACF7D4, FE46E18BE2642140FCB0BCDA99CF2B76310148997AA08BCE877E5E96FF5FA4F0 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\68e3be9b569155d6fb2cb97e4dba6f05\PresentationCFFRasterizer.ni.dll
20:13:18.0785 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\68e3be9b569155d6fb2cb97e4dba6f05\PresentationCFFRasterizer.ni.dll - ok
20:13:18.0801 0x1214  [ EFD5DD8E1249AA5149EBD591FC0F1A97, A914891DBDD88342A292882822AE309986CA29669A232083F9A2138F75987884 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\661e75968dabaf303f3474dc19516d61\PresentationFramework.ni.dll
20:13:18.0801 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\661e75968dabaf303f3474dc19516d61\PresentationFramework.ni.dll - ok
20:13:18.0801 0x1214  [ C36367079A24C6490AADD354F91B9E94, 195B3939E8CBECF937203631077D8FEDF892031DCF2F5A63B01C82DB09BD99B4 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationUI\943e4ff8d0e82959f38f5e418b8a80e2\PresentationUI.ni.dll
20:13:18.0801 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationUI\943e4ff8d0e82959f38f5e418b8a80e2\PresentationUI.ni.dll - ok
20:13:18.0801 0x1214  [ 5ABB83A45D6259C12AE7F6F25E11F057, A459CDE15463DA75EED45FF58D7EE4440A3D97E559671905FA5859255865F641 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\ReachFramework\452251f1dcce671dce06e0fd80b3310b\ReachFramework.ni.dll
20:13:18.0801 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\ReachFramework\452251f1dcce671dce06e0fd80b3310b\ReachFramework.ni.dll - ok
20:13:18.0816 0x1214  [ A90E34E202EC6B493E93ADD0744F72CC, CE7640434FE3FEBCA56BF2E79C02389280753820C79DA151B34A673F0B340139 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Printing\5c6d5bbc4522fecb2aa78700bf66b48a\System.Printing.ni.dll
20:13:18.0816 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Printing\5c6d5bbc4522fecb2aa78700bf66b48a\System.Printing.ni.dll - ok
20:13:18.0816 0x1214  [ F41A46C5DB22FEF882032AE7049C4A64, 9639C7AE881A7BFBABDECE04160EC2E90D2AFCA952EEA131D66C83979C98A94E ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\9e14e812220672c761c5e256416f0ee0\System.DirectoryServices.ni.dll
20:13:18.0816 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\9e14e812220672c761c5e256416f0ee0\System.DirectoryServices.ni.dll - ok
20:13:18.0832 0x1214  [ D778ABA7FC72CFAFDED93804A0C7D478, B89F0BFF103266087EFFB2D89BB03D1284D8ACFD513D52D72FFA00B5D7A32185 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data\8b5364c1073939d032b40fbf01bbdc42\System.Data.ni.dll
20:13:18.0832 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data\8b5364c1073939d032b40fbf01bbdc42\System.Data.ni.dll - ok
20:13:18.0832 0x1214  [ E1708CAD5BCDF2CF573A0C0CE9665C8A, DB7B93E35C76C859873F9BC61FFC85101FE65F39C7D6832B605C4CED3309D3D5 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Transactions\9e4333c59987987fcb86f86b23e7ff4b\System.Transactions.ni.dll
20:13:18.0832 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Transactions\9e4333c59987987fcb86f86b23e7ff4b\System.Transactions.ni.dll - ok
20:13:18.0832 0x1214  [ 3EF18F420A9534DF60FFAB273AFF8AD0, FB9EF9614C6E5C2770EBBECFAC93B2F1E32DD5C3C9F831ACB99BE06AAFEE409D ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\adb8ce860d7051ae738d6e99a0890ef9\System.EnterpriseServices.ni.dll
20:13:18.0832 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\adb8ce860d7051ae738d6e99a0890ef9\System.EnterpriseServices.ni.dll - ok
20:13:18.0847 0x1214  [ AAA98A3382E87AEFA1F396188F7463A7, 94200BB57140D27776BC986F14C8F3CE08EEC469C0AD0AA41982943CF8C4BEAF ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\304cab25a1d45103714b616ebef8204f\System.Runtime.Remoting.ni.dll
20:13:18.0847 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\304cab25a1d45103714b616ebef8204f\System.Runtime.Remoting.ni.dll - ok
20:13:18.0847 0x1214  [ C58A1E6F9F1E53CD8F60DACDBE2B3624, 95947490BE55CBA1F6459D20E88288E900BC8EEC594B3652345928AC0501FF6B ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\e89e66c557de22cb0abcefc1e778ebcb\System.Web.ni.dll
20:13:18.0847 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\e89e66c557de22cb0abcefc1e778ebcb\System.Web.ni.dll - ok
20:13:18.0863 0x1214  [ CAE119CDC8C2A9E1FC1045D71F85DFF5, 184E9FD1290BD966506B138188814A74819966984C3D31BAFBFB1B1A6D73E972 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.Services\edff1ab2b3c00bc7f15a7e28052c5b7f\System.Web.Services.ni.dll
20:13:18.0863 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.Services\edff1ab2b3c00bc7f15a7e28052c5b7f\System.Web.Services.ni.dll - ok
20:13:18.0863 0x1214  [ CEFA5A1CD6129398B558135F1B70E71D, B1AB82F8B26B1711BFB0E531F5A54B44BB62E67918AFB8A84494C3287DB21D51 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Design\0ba4e66c95e0677eb163a6b9ea25df96\System.Design.ni.dll
20:13:18.0863 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Design\0ba4e66c95e0677eb163a6b9ea25df96\System.Design.ni.dll - ok
20:13:18.0863 0x1214  [ 418B7C9A297E20B98B9EE32368B30A3F, AA09D4611010C898C5730B9A068DAFCB698D62EA9655EB4A198EE19EE2ED922F ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing.Desi#\1451f1075f3937ebbe67596e5d10ba72\System.Drawing.Design.ni.dll
20:13:18.0863 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing.Desi#\1451f1075f3937ebbe67596e5d10ba72\System.Drawing.Design.ni.dll - ok
20:13:18.0879 0x1214  [ AC6FCCCE0DEED033D91E8903C333E2F3, F7DEC39D0BDD36EA85D578B62AB6B059FE7ED39A834DFF9B6271CB0AAE627FF7 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data.OracleC#\b8f444e312fc2cfe304b2908993d1283\System.Data.OracleClient.ni.dll
20:13:18.0879 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data.OracleC#\b8f444e312fc2cfe304b2908993d1283\System.Data.OracleClient.ni.dll - ok
20:13:18.0879 0x1214  [ 9D42DAC60766AFE36D3FDFBB40898945, 8B7F14B8BAF63FA086AACFE9AC2C187C96713400AEC5ADF4543E3F0E887242F2 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.RegularE#\dd85cbdfb8553946641aca5d56821677\System.Web.RegularExpressions.ni.dll
20:13:18.0879 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.RegularE#\dd85cbdfb8553946641aca5d56821677\System.Web.RegularExpressions.ni.dll - ok
20:13:18.0879 0x1214  [ 77995481E3CFB4C2625D9306B6400DC9, 114FC32051DD77812CFC1DC43F1578FDAB66F6B6A4E24D886BC90E2680C5CB65 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\f871154be49d79198361bcffc4e3944e\System.DirectoryServices.Protocols.ni.dll
20:13:18.0879 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\f871154be49d79198361bcffc4e3944e\System.DirectoryServices.Protocols.ni.dll - ok
20:13:18.0894 0x1214  [ 3BF0B2A4D3F14F43632F223875F71BCC, 73BD4353962E1FE4897818EAED2114E106551F5DD60196EE0325F29ECF5BD035 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\b8f739a11746e300dd113b943293c5b8\System.ServiceProcess.ni.dll
20:13:18.0894 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\b8f739a11746e300dd113b943293c5b8\System.ServiceProcess.ni.dll - ok
20:13:18.0894 0x1214  [ 08409B8A5003C31A785392EF9CC20C84, 52414B6BBE700152C7728BCA0CF92BA2F12712E56150058528F31856101EE92D ] C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\4b6c6b4604a944eb36148d64c9911abb\PresentationFramework.Aero.ni.dll
20:13:18.0894 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\4b6c6b4604a944eb36148d64c9911abb\PresentationFramework.Aero.ni.dll - ok
20:13:18.0894 0x1214  [ 11FB5F0C99F6A8063C5DB4A66FF71DBD, CA4441C41B2538E1128F18560C7AB78CFE2E16EFEF5CEB6EABAEA5F91AC7693A ] C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\649c6e6ef29231cfe7db5ee43a97aa1a\PresentationFramework.Classic.ni.dll
20:13:18.0894 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\649c6e6ef29231cfe7db5ee43a97aa1a\PresentationFramework.Classic.ni.dll - ok
20:13:18.0910 0x1214  [ C67E8966B37CC8234C2081BB32387F3D, 70D2956ECF357BF51FC66D970396ECA2026A4603D45B26707A2CE3BEFE8C4A90 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\23396ba9538fbdb0adb20c02b635621a\PresentationFramework.Luna.ni.dll
20:13:18.0910 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\23396ba9538fbdb0adb20c02b635621a\PresentationFramework.Luna.ni.dll - ok
20:13:18.0910 0x1214  [ 1EE571259CE43700A86BB5663B248BF8, 4A8102E180B1E51E01C6301610652FF5F17D9F23D008B50C67E02E15B8C0B8AA ] C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\ccabb37face3d9e53192ac08ce5600da\PresentationFramework.Royale.ni.dll
20:13:18.0910 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\ccabb37face3d9e53192ac08ce5600da\PresentationFramework.Royale.ni.dll - ok
20:13:18.0925 0x1214  [ 4C635E541011A930F60694D173FA8F1B, 3389E4BC54E38DDD4F99E6F5395B63A6263012F6DE13713C072711EDA5517332 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Act#\a5270af2bfdd7fd6d5bd522dbd1e6d11\System.Workflow.Activities.ni.dll
20:13:18.0925 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Act#\a5270af2bfdd7fd6d5bd522dbd1e6d11\System.Workflow.Activities.ni.dll - ok
20:13:18.0925 0x1214  [ 5EE5C1DAA53EAC76D68CFBB342C57C37, 042912F4A068D9BE0C7DFF83CECCD65782B684C03B3036F288CE88D40D38808D ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Com#\ddb6e5603ef4fc0a776a3b7d74467e71\System.Workflow.ComponentModel.ni.dll
20:13:18.0925 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Com#\ddb6e5603ef4fc0a776a3b7d74467e71\System.Workflow.ComponentModel.ni.dll - ok
20:13:18.0925 0x1214  [ BE50C4995E5DD88BF10C0B333F2212EF, 85BE9EA7E9DB49FEF3A66B9F9B52A396228BEADA7FE78164A7CC4CA7B0B39E8B ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Run#\feacdde7a7f148c6455d37f3b1ab8ea3\System.Workflow.Runtime.ni.dll
20:13:18.0925 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Run#\feacdde7a7f148c6455d37f3b1ab8ea3\System.Workflow.Runtime.ni.dll - ok
20:13:18.0941 0x1214  [ 8C25146DA63AA5C1909606E06D8E6FBD, 66585FC42095E07B9B5D2F0F8FF94EF104D1778CDA9A04E972FD60B494B1C549 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.VisualC\d780f1436c8a99ee13d6e9517af99a27\Microsoft.VisualC.ni.dll
20:13:18.0941 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.VisualC\d780f1436c8a99ee13d6e9517af99a27\Microsoft.VisualC.ni.dll - ok
20:13:18.0941 0x1214  [ 6F9C5CA201465F528ED18A08A04F73BA, F5E8806BFDE9C8B13F397D14FFBE733F172147191937E82CDA21CDC285EF7278 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\ehiUserXp\2c6ac8e5eb0df8bedfc7f88c5f62cf79\ehiUserXp.ni.dll
20:13:18.0941 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\ehiUserXp\2c6ac8e5eb0df8bedfc7f88c5f62cf79\ehiUserXp.ni.dll - ok
20:13:18.0957 0x1214  [ C9C05678701E4FC687DBAF231D5BC38B, 6B64FE81C1932A9B8FE14323E8C33426C3A773A1A65F2487215D32063022EF73 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\8bd6ee4f58c5fb5a252a14919bc881ce\Microsoft.MediaCenter.Interop.ni.dll
20:13:18.0957 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\8bd6ee4f58c5fb5a252a14919bc881ce\Microsoft.MediaCenter.Interop.ni.dll - ok
20:13:18.0957 0x1214  [ 536FAA21750E4D0C8C01DDCC4FEBD171, 5FF02A6EF95963A3DBE005A35164D45933B63867F396175856EA5835DFB1068B ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\1bffcd6f3de974cce2508a3433cd2ab9\Microsoft.MediaCenter.UI.ni.dll
20:13:18.0957 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\1bffcd6f3de974cce2508a3433cd2ab9\Microsoft.MediaCenter.UI.ni.dll - ok
20:13:18.0957 0x1214  [ 990C823A6C8085AAA2A9948C2F2F5295, B036CDA5AB4B1A460FD2B07D9D39B6833AE67DC35475145F555E85FC82FE1262 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Data.SqlXml\211df34e110696abe6d04895af82b871\System.Data.SqlXml.ni.dll
20:13:18.0957 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Data.SqlXml\211df34e110696abe6d04895af82b871\System.Data.SqlXml.ni.dll - ok
20:13:18.0972 0x1214  [ 6FC3CAA21F0620EA9C8FCE6F5A4A1E74, 5B83D0D02F75346ED4BFAB6061786BE52E2BD3036380833014F8FBA0B6208190 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Security\daf7a68b3449933449b6d86e704415d2\System.Security.ni.dll
20:13:18.0972 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Security\daf7a68b3449933449b6d86e704415d2\System.Security.ni.dll - ok
20:13:18.0972 0x1214  [ 24BC386BCDDE427091E0CE474484C348, 4580E7D359E4833CEAD5FDF0E64D08B7E82D449A95E7F3FB7E248AB81DF6110E ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Data\ce940308c1b48f59f0e60faca2b41a66\System.Data.ni.dll
20:13:18.0972 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Data\ce940308c1b48f59f0e60faca2b41a66\System.Data.ni.dll - ok
20:13:18.0988 0x1214  [ 8845214CBB21ABF1C420FAEC93F3A745, 3FC03EE726B3BEF6F05B3BDFF3654095D5DF7DA866D55038B3A1DCC6487522E5 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Transactions\6ea655070d8884079d1b58253c66101d\System.Transactions.ni.dll
20:13:18.0988 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Transactions\6ea655070d8884079d1b58253c66101d\System.Transactions.ni.dll - ok
20:13:18.0988 0x1214  [ 6DB8126EABB08959BBEBE004EF40DE50, 07BF1FBDB47D5E1DFF1FFE7E74FE05C788815FB2746E51685CB84123B31DBB7F ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.EnterpriseSe#\df3283876d4c4a952f488687bb5cb45f\System.EnterpriseServices.ni.dll
20:13:18.0988 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.EnterpriseSe#\df3283876d4c4a952f488687bb5cb45f\System.EnterpriseServices.ni.dll - ok
20:13:18.0988 0x1214  [ 5603BF293C58E4A2687E8DB024BE8858, 6B2024DA2AC0F9E386FDCB28AD9E888E8EEB728768DC9F9433C3E2BD4DC634C6 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.DirectorySer#\ff3cecb8f0d6ec14ef63bd827519f3c9\System.DirectoryServices.ni.dll
20:13:18.0988 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.DirectorySer#\ff3cecb8f0d6ec14ef63bd827519f3c9\System.DirectoryServices.ni.dll - ok
20:13:19.0003 0x1214  [ 63C3F50452469F14D57649EFF0BC76AE, 637506FD6B0ECD7BE57B255ABC52A8CCB7CB8AEC96500312CB33A8AEBA34DBD4 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\255808c303a3db73007649968c06dea0\System.Runtime.Serialization.Formatters.Soap.ni.dll
20:13:19.0003 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\255808c303a3db73007649968c06dea0\System.Runtime.Serialization.Formatters.Soap.ni.dll - ok
20:13:19.0003 0x1214  [ D2659E059C5EB0C84727D9C97C6C0BEA, 29D219547967C713738B7C3874BED82615C3EB202593B569A45652246DB4033B ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web.Services\090430bd9badf92a31707b8c4d585607\System.Web.Services.ni.dll
20:13:19.0003 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web.Services\090430bd9badf92a31707b8c4d585607\System.Web.Services.ni.dll - ok
20:13:19.0019 0x1214  [ 698CABB290D41CD6B7C2D902A21B6F4C, 9B11FCFD00CED8F2A99CA023E3E002E9DDE97BB8D627003D69F7930B1B54AE5E ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Design\c79c3868f49ad9635e32c789a811b4e3\System.Design.ni.dll
20:13:19.0019 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Design\c79c3868f49ad9635e32c789a811b4e3\System.Design.ni.dll - ok
20:13:19.0019 0x1214  [ B52E2274E611987D3D80D5E7462681BC, 157E897589B2BCFBD5F07FBBE885FE20E7CDB0F75F44DDF6EFC4BED833A8863F ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Accessibility\274ba72c6915324187d299b790c0529e\Accessibility.ni.dll
20:13:19.0019 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Accessibility\274ba72c6915324187d299b790c0529e\Accessibility.ni.dll - ok
20:13:19.0019 0x1214  [ 7BF218D2913ABDDFCB946B29DADDFFB4, 09046D5C6E95912EE12E6C99D16A52031BBBBDD8E805F46F4896E3330492D511 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Deployment\f7a8d77dcdf6832cab20a5aa8901ee1d\System.Deployment.ni.dll
20:13:19.0019 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Deployment\f7a8d77dcdf6832cab20a5aa8901ee1d\System.Deployment.ni.dll - ok
20:13:19.0035 0x1214  [ CBBCAC376C9728301B7A93DD931896F2, 09DB2063C9C722A1BE443D7555D205880BFD001B6975A6B5723CE3BD1F5D864F ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Drawing.Desi#\9da1347d8a5ab3d862da268fcd7b088b\System.Drawing.Design.ni.dll
20:13:19.0035 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Drawing.Desi#\9da1347d8a5ab3d862da268fcd7b088b\System.Drawing.Design.ni.dll - ok
20:13:19.0035 0x1214  [ 01B44D7FD9B139D4D2EC630E21771C07, A2CA6577E3B48B714DD3BA562C1E76694ED06128F3A478831EC246C7D4EE5E9D ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Data.OracleC#\49785e1e8184ce78d12cdb1013d5c93f\System.Data.OracleClient.ni.dll
20:13:19.0035 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Data.OracleC#\49785e1e8184ce78d12cdb1013d5c93f\System.Data.OracleClient.ni.dll - ok
20:13:19.0035 0x1214  [ 76627EE8AAD8B2B3DCFAB359D3441AB4, 912EF3282F19888DB7F73141CB9ECBF3C82824BFD482BE88E0CC7AC49E69917E ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web.RegularE#\4852658bfdc4a761b28d181e26a92ca0\System.Web.RegularExpressions.ni.dll
20:13:19.0035 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web.RegularE#\4852658bfdc4a761b28d181e26a92ca0\System.Web.RegularExpressions.ni.dll - ok
20:13:19.0050 0x1214  [ F5BDC2B46B7E336070C08A35D58C56F5, EEEC42BE4B89D9C189D6181AEFC939971948511590147929D1691E63B1CEB7B3 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.DirectorySer#\ebd91b6de561ec421743c1d3890e4e1e\System.DirectoryServices.Protocols.ni.dll
20:13:19.0050 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.DirectorySer#\ebd91b6de561ec421743c1d3890e4e1e\System.DirectoryServices.Protocols.ni.dll - ok
20:13:19.0050 0x1214  [ 99B02BC3A6AD65F96BBA77FFC90527AE, 3E646900E41E8AD9CF55EF6040BDE774F537069F74E9F8AD7D357C3F4BF66231 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.ServiceProce#\cdcf0c45e1290a772a6a6d362575cf92\System.ServiceProcess.ni.dll
20:13:19.0050 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.ServiceProce#\cdcf0c45e1290a772a6a6d362575cf92\System.ServiceProcess.ni.dll - ok
20:13:19.0066 0x1214  [ FAAF236F4E9C7B730B65B419C2501DFA, 49659C69F58BC4441A413DFE0C98F923A4B954651E074384AC0B9EA9834F29DF ] C:\Windows\assembly\NativeImages_v2.0.50727_64\UIAutomationProvider\7c0c1db2f43630292fa97203ff321eef\UIAutomationProvider.ni.dll
20:13:19.0066 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\UIAutomationProvider\7c0c1db2f43630292fa97203ff321eef\UIAutomationProvider.ni.dll - ok
20:13:19.0066 0x1214  [ BB6E454BC3C87089777A6EF802E81949, C30BDBC266D67C4CE4108F25C7C9186140EE8309693B7E2DD9B7A0CE6D9919EE ] C:\Windows\assembly\NativeImages_v2.0.50727_64\UIAutomationTypes\e79a853582985b4d380cb86dab971778\UIAutomationTypes.ni.dll
20:13:19.0066 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\UIAutomationTypes\e79a853582985b4d380cb86dab971778\UIAutomationTypes.ni.dll - ok
20:13:19.0066 0x1214  [ CAE2F79405A340FDE53DDE6F2FA91BAF, 39EDCF023A2D06382A94D76ECE3944B2D8DD3D1562985FD7228AC6F6298B9B8B ] C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationCFFRast#\3ac7297d0b0d40a8b095600b9ba6cf72\PresentationCFFRasterizer.ni.dll
20:13:19.0066 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationCFFRast#\3ac7297d0b0d40a8b095600b9ba6cf72\PresentationCFFRasterizer.ni.dll - ok
20:13:19.0081 0x1214  [ 74FA2D9E3758CDE78A0F3CD8D5CC7F24, CC54F96F6EEBF90E74149CF04569AFC64284DC16E262F2E213CE2BA697E709AE ] C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\b766726857c3ebe3bebbcf98c47d7dbe\PresentationFramework.ni.dll
20:13:19.0081 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\b766726857c3ebe3bebbcf98c47d7dbe\PresentationFramework.ni.dll - ok
20:13:19.0081 0x1214  [ C2E2BD348AFA7CCACF4F94AD68627D22, 514B6173F202774A3CD54A0DF8450DA97FC53F5A00BA66BCB97E33A8B67F25CD ] C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationUI\48c8c36f2ad4f46cda33f0e048da834f\PresentationUI.ni.dll
20:13:19.0081 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationUI\48c8c36f2ad4f46cda33f0e048da834f\PresentationUI.ni.dll - ok
20:13:19.0097 0x1214  [ 4A989C5542409A99996A402E1C03EF7D, B8E12930A871E7173FDAC5402EBB1FA0B0BDA4A2BB573D8B4A1CB8165CB034E1 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\ReachFramework\0e3c2d589e6dc53592d2c181ceb8f039\ReachFramework.ni.dll
20:13:19.0097 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\ReachFramework\0e3c2d589e6dc53592d2c181ceb8f039\ReachFramework.ni.dll - ok
20:13:19.0097 0x1214  [ 54CC1F3DF8145471DBC5207C4EE285F8, 6074E037B3CC0804F992FB695A2B0C4DD5290762116A064C5892A848EFAFD2B2 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Printing\ac7c7dd8c61456b3ebf85e46ba102c92\System.Printing.ni.dll
20:13:19.0097 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Printing\ac7c7dd8c61456b3ebf85e46ba102c92\System.Printing.ni.dll - ok
20:13:19.0097 0x1214  [ 961F35EECC4A40C3CD37DF4CD856E5FB, A4B11218F682910F42E71485D9D36BB98F0C8F0778722F98FE2362CE4E9411E5 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\cd7120e730bc671668423f389088af62\PresentationFramework.Aero.ni.dll
20:13:19.0097 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\cd7120e730bc671668423f389088af62\PresentationFramework.Aero.ni.dll - ok
20:13:19.0113 0x1214  [ B895EA4694473FD801C14CE3E9C0305A, F8601908A31F5E31E93053857923A29E7D40E817DA313B72FA4C90529A9C2329 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\7e449df860436e547160a239d52026b4\PresentationFramework.Classic.ni.dll
20:13:19.0113 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\7e449df860436e547160a239d52026b4\PresentationFramework.Classic.ni.dll - ok
20:13:19.0113 0x1214  [ DE940FCCC9EF0A8FADB5D6D5BFD44FD8, FB7BFB7D8BE4BCBB837ED1781324B186C796B9E2B3213DC98E24297258E60FC2 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\422c7039ca5bbc9d55992c3513d8a9b8\PresentationFramework.Luna.ni.dll
20:13:19.0113 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\422c7039ca5bbc9d55992c3513d8a9b8\PresentationFramework.Luna.ni.dll - ok
20:13:19.0113 0x1214  [ 6B70DB88DA9AAC4EAC1847125C03E3F4, 5D06186F579730F9243DF3802C48F4A718886D7B291CC82B1DA38202AC9413EE ] C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\a16699b0ee54dc20319273d3b99c62b2\PresentationFramework.Royale.ni.dll
20:13:19.0128 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFramewo#\a16699b0ee54dc20319273d3b99c62b2\PresentationFramework.Royale.ni.dll - ok
20:13:19.0128 0x1214  [ 24D785DE073566D3829C942A3C8A0306, C668D910A9817861D436A50D8E20985805970FA85A1EEFAF20BE2111A7E96BB1 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Act#\d749545b7df86bb6bb99890246147136\System.Workflow.Activities.ni.dll
20:13:19.0128 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Act#\d749545b7df86bb6bb99890246147136\System.Workflow.Activities.ni.dll - ok
20:13:19.0128 0x1214  [ E424DC08FD76EBBCDA7AD09104B041FF, C96141CBEA1059F5101271903E2B55D10C1C1B0466477FBE326AB76DB498DCFB ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Com#\a21f157b3ec60351366d048944d9eea0\System.Workflow.ComponentModel.ni.dll
20:13:19.0128 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Com#\a21f157b3ec60351366d048944d9eea0\System.Workflow.ComponentModel.ni.dll - ok
20:13:19.0144 0x1214  [ 253C55A56D95286791EBF6E593C4A1E4, 4494C698A916BE14505253AF71DEF0230B0FA1F2209361718761714BE73949AE ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Run#\f35af663bb948ea1b495cdeadbede2c8\System.Workflow.Runtime.ni.dll
20:13:19.0144 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Workflow.Run#\f35af663bb948ea1b495cdeadbede2c8\System.Workflow.Runtime.ni.dll - ok
20:13:19.0144 0x1214  [ C530EB2B990F986C96179050318CA846, CBD5E22CDA383E87C70CB0E041C6BFFA7899BC3226EDC702AA607BD7DFA7546D ] C:\Windows\assembly\NativeImages_v2.0.50727_32\SMDiagnostics\a862c40df02bcd286eab1c826a7e472b\SMDiagnostics.ni.dll
20:13:19.0144 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\SMDiagnostics\a862c40df02bcd286eab1c826a7e472b\SMDiagnostics.ni.dll - ok
20:13:19.0144 0x1214  [ 601559CEE19F0E22ABAD95130888FB1E, A7B7D6EE4796B3F50FD489179380CEDAD2F54CAAFB437D0414A4AD09819598B6 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.IdentityModel\a59c9a76966bb0c519075c3edd4b8218\System.IdentityModel.ni.dll
20:13:19.0144 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.IdentityModel\a59c9a76966bb0c519075c3edd4b8218\System.IdentityModel.ni.dll - ok
20:13:19.0159 0x1214  [ 715BBE6FB8E5DD35ED4CCAFDE33C1919, 527D072DB345442B223378DB23727C273BF3DA5D164E02FCA0BE3A9E36A41AF5 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\73d6b8efabd56b19366c71f48d6ff396\System.Runtime.Serialization.ni.dll
20:13:19.0159 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\73d6b8efabd56b19366c71f48d6ff396\System.Runtime.Serialization.ni.dll - ok
20:13:19.0159 0x1214  [ D2AC2FABFE53AED4D0C5C5BD29A2DDA3, DB88270BCAD5E63A8F51D86E83ED6BB7CB471DF4F6AE3188BA335A909FBB6C45 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel\929a71bdb927703b37466a1ef5344887\System.ServiceModel.ni.dll
20:13:19.0159 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel\929a71bdb927703b37466a1ef5344887\System.ServiceModel.ni.dll - ok
20:13:19.0159 0x1214  [ F45F883106BD5F77B1E755BA98B59918, 502D7A27EC63E4F511501A865D9F39523AA3564A55BD8CA21DF6D25C96C80BA5 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Messaging\d25e5cf156a4c23e26bdb030beaebd0e\System.Messaging.ni.dll
20:13:19.0159 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Messaging\d25e5cf156a4c23e26bdb030beaebd0e\System.Messaging.ni.dll - ok
20:13:19.0175 0x1214  [ 7CDCF68B285E230FC98C144374A26EC0, 1A8C58A7FFDE481FCAAB423E7352378C6EBE855F733C6B514EA7FC4BB6AD487D ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.IdentityMode#\6ca88a7c95a19a85e6d08ac47dae3b0f\System.IdentityModel.Selectors.ni.dll
20:13:19.0175 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.IdentityMode#\6ca88a7c95a19a85e6d08ac47dae3b0f\System.IdentityModel.Selectors.ni.dll - ok
20:13:19.0175 0x1214  [ 205875297A960C2E36A7D7E336A65FC0, 7346D644DC1CDDD5BF83C611B1826E17A500317685DB03D86477918B531FD731 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\aa771c35e61c8b020b5298c97f18f7e5\Microsoft.Transactions.Bridge.ni.dll
20:13:19.0175 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\aa771c35e61c8b020b5298c97f18f7e5\Microsoft.Transactions.Bridge.ni.dll - ok
20:13:19.0191 0x1214  [ BC6E7E5BBB7992FACB5F6F9493217AAA, C1DFE3CC635108287FE0829CCB40EB8EDD3C2F7DC7C9A71B60744B45B8042089 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\SMDiagnostics\d0574432593379c62340b91053e2037c\SMDiagnostics.ni.dll
20:13:19.0191 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\SMDiagnostics\d0574432593379c62340b91053e2037c\SMDiagnostics.ni.dll - ok
20:13:19.0191 0x1214  [ 8348C7787593A319EA25E111C9257585, AA5B9CB1A7EB5E30F765D9450DD84C82D0BA7789E975D712451A748B72CDD468 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.IdentityModel\d1c9b87d2f23f37f415d330a308bb756\System.IdentityModel.ni.dll
20:13:19.0191 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.IdentityModel\d1c9b87d2f23f37f415d330a308bb756\System.IdentityModel.ni.dll - ok
20:13:19.0191 0x1214  [ CD5FEBAE8DB0554CC8BCC19EFC510C04, F53238B6F3F950C9B6BED648E013E0A439FE5EE74FCDF5E145E0A56BB3A84A68 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\2dd56bf11b4628962d3d13e44f00a37e\System.Runtime.Serialization.ni.dll
20:13:19.0191 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\2dd56bf11b4628962d3d13e44f00a37e\System.Runtime.Serialization.ni.dll - ok
20:13:19.0206 0x1214  [ CD2E71D6E297BF1262F591DDABCEFEEF, 241FB384D028B93FEEAB4584E2D47336F23583146F267F276E70DE1D0C1F16D3 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.ServiceModel\f4884e8da1825988aecdb8e001064d0a\System.ServiceModel.ni.dll
20:13:19.0206 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.ServiceModel\f4884e8da1825988aecdb8e001064d0a\System.ServiceModel.ni.dll - ok
20:13:19.0206 0x1214  [ 2C2D3EE36DF94B838C7A960E9C14F07D, E1B26E96B41EE742BC3F0DB7CD5CC280C43C8B351DEA07019550CFC1F5B26A60 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Messaging\477debc73bccdab7f70b7edd8e3c5f00\System.Messaging.ni.dll
20:13:19.0206 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Messaging\477debc73bccdab7f70b7edd8e3c5f00\System.Messaging.ni.dll - ok
20:13:19.0222 0x1214  [ 44B3D215606C0EFF4926008C40E00D64, 75036F72719E66DDDB7F8B094C7545C47C6E9ED59B7A4F2129E226DA21F12F6E ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.IdentityMode#\053addd83b98fbfc8b806aa6c90d0631\System.IdentityModel.Selectors.ni.dll
20:13:19.0222 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.IdentityMode#\053addd83b98fbfc8b806aa6c90d0631\System.IdentityModel.Selectors.ni.dll - ok
20:13:19.0222 0x1214  [ 95EE3121057AF792F3BA45459262BCF7, F5878DF39EF77D4592FA3B2A780BBC0B54A55B957F603183D89B9A1E739DC79B ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Transacti#\7d2f428d63187dfa4c5c97a737ffeeac\Microsoft.Transactions.Bridge.ni.dll
20:13:19.0222 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Transacti#\7d2f428d63187dfa4c5c97a737ffeeac\Microsoft.Transactions.Bridge.ni.dll - ok
20:13:19.0222 0x1214  [ FE7BC0AD04FD71D4B8C6B4B181834756, 7B829EC9E994B70A3CA439D24BB0C7CE1403B011C7515B6149D1A2D4F4AA25A0 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\BDATunePIA\1e8bd080143c208722b7debebd1edfea\BDATunePIA.ni.dll
20:13:19.0222 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\BDATunePIA\1e8bd080143c208722b7debebd1edfea\BDATunePIA.ni.dll - ok
20:13:19.0237 0x1214  [ E4F1E52DA5B9FD731F270C8F126AC520, C704534A550F2776AFB56C6FDB6A8328962792D82772B29854A7AB7C8C2C5BD0 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLiveWriter\34a97a45e8a42e0f85fbd172980eb796\WindowsLiveWriter.ni.exe
20:13:19.0237 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLiveWriter\34a97a45e8a42e0f85fbd172980eb796\WindowsLiveWriter.ni.exe - ok
20:13:19.0237 0x1214  [ 0EDFCAA3595C91E9FAE3C11AC20E7E08, 6A7BC9B94A68756305C926F56C42849F16C982B00EF6D674B45612A960F70AB5 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\665e13ff64295ed3359e4f9730c5ab91\WindowsLive.Writer.PostEditor.ni.dll
20:13:19.0237 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\665e13ff64295ed3359e4f9730c5ab91\WindowsLive.Writer.PostEditor.ni.dll - ok
20:13:19.0237 0x1214  [ 1E92CFDBCAA9C7D3D45CBB4E68B87CC1, B8ACD700DE83AE9ACE10C7528FE7A2D99EF1F04ED21137953B90829D5A2DF56D ] C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\026a4c9f71dc3e983a78a4d568a441dd\WindowsLive.Writer.Controls.ni.dll
20:13:19.0237 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\026a4c9f71dc3e983a78a4d568a441dd\WindowsLive.Writer.Controls.ni.dll - ok
20:13:19.0253 0x1214  [ F15E3372FEA3D55856D78D076EE144A9, 64B7441FA9906F1733887138BF5C1F7C93D1D99187DEB57A6660BFA5393C6144 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\378ff02e937257c669ca23825f8d38bf\WindowsLive.Writer.CoreServices.ni.dll
20:13:19.0253 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\378ff02e937257c669ca23825f8d38bf\WindowsLive.Writer.CoreServices.ni.dll - ok
20:13:19.0253 0x1214  [ 69580DADBCF9B9C757E6D7BC540BD115, 609805CB6072D553EBDFFD4297851ED52E9E79EDDED5F6737AA58F2CC4BD59D5 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\7d812b6b1ace91ee62b6d1fc63e08b68\WindowsLive.Writer.Interop.ni.dll
20:13:19.0253 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\7d812b6b1ace91ee62b6d1fc63e08b68\WindowsLive.Writer.Interop.ni.dll - ok
20:13:19.0269 0x1214  [ 4B89F3C924F19C83251E53138E699434, 3608048AABE3500773CC3CDB51D79EE034C16890B7C2DC17A0E1B3F29CD1983F ] C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\003b9089e6c61d55a50be31fc3acaa4d\WindowsLive.Writer.Interop.Mshtml.ni.dll
20:13:19.0269 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\003b9089e6c61d55a50be31fc3acaa4d\WindowsLive.Writer.Interop.Mshtml.ni.dll - ok
20:13:19.0269 0x1214  [ B0A76FD3FDAE601AD9F53420BF1A501B, 285EBAB0A245E31A0A7EBFDCAD57D980634E50AF8C3F278AC99E64F181D5A3B3 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\71eadccc37e7a8656b7be4bb697a4d84\WindowsLive.Writer.BrowserControl.ni.dll
20:13:19.0269 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\71eadccc37e7a8656b7be4bb697a4d84\WindowsLive.Writer.BrowserControl.ni.dll - ok
20:13:19.0269 0x1214  [ 46C914AD6E253BFF5104265C37ABCB20, A4B2108E86C2E3CBDD72AB58AD94811E9E0F9A55C8E98FF2D1BA7035FEED5B3A ] C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\77ad04627cb653bd45fdf810fd884827\WindowsLive.Writer.Interop.SHDocVw.ni.dll
20:13:19.0269 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\77ad04627cb653bd45fdf810fd884827\WindowsLive.Writer.Interop.SHDocVw.ni.dll - ok
20:13:19.0284 0x1214  [ 68A29AF5D64B8C85E1E7712C00914CC4, 75E5F1CF87BE09ABB3B3C532F7C8AE5E7B68C3956918FA7DC03B267FA13F7CCF ] C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\8b59c7581f83678087c7157423eb8dde\WindowsLive.Writer.HtmlParser.ni.dll
20:13:19.0284 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\8b59c7581f83678087c7157423eb8dde\WindowsLive.Writer.HtmlParser.ni.dll - ok
20:13:19.0284 0x1214  [ 7B864E61CCD18916AD6D2905AD5CA727, EED46FAC85D7D35AE0AD88FD1BCBB278B3CCDDF34E13581E7FA5CCADF99C9008 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\8f59a120cce7548a2ed337f2999a9a82\WindowsLive.Writer.Localization.ni.dll
20:13:19.0284 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\8f59a120cce7548a2ed337f2999a9a82\WindowsLive.Writer.Localization.ni.dll - ok
20:13:19.0300 0x1214  [ 26699B28B63BEF6CC16175AE67E4E37F, 7D6F9DEA9D23920C921E50813FD21FD009D7D79DCDA2BAD8270A19466C1A10C2 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\796f2f575b27dc20e6917d3373ec5f56\WindowsLive.Writer.Passport.ni.dll
20:13:19.0300 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\796f2f575b27dc20e6917d3373ec5f56\WindowsLive.Writer.Passport.ni.dll - ok
20:13:19.0300 0x1214  [ 8A4AD4FF5DB0FEED23055EA790D7DFB7, B79F23346B600B6A831D6268B54B788B9E6EC0E792DB28507A92891E93F4D703 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\17d7cd33ddd01ad2834d10a1f91e96e0\WindowsLive.Writer.Mshtml.ni.dll
20:13:19.0300 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\17d7cd33ddd01ad2834d10a1f91e96e0\WindowsLive.Writer.Mshtml.ni.dll - ok
20:13:19.0300 0x1214  [ 7EC3DC6184EF720DA23058D9BAFE1734, 2AA2E5A258BDB6AE07EE0246DCEE04D865E8C37C8ED1144143491C21D1BB230E ] C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\e54c874e74edd40182ccc7adc7a590fc\WindowsLive.Writer.Api.ni.dll
20:13:19.0300 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\e54c874e74edd40182ccc7adc7a590fc\WindowsLive.Writer.Api.ni.dll - ok
20:13:19.0315 0x1214  [ 87DFF6663C59B09576F28DD348D77FC1, 3DD441F852E5D5BF0C611E22D3EB5FF64D83062F1C713F73C7D0011F5670606C ] C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\eb0814704129b6eb13b40501c31ffaec\WindowsLive.Writer.ApplicationFramework.ni.dll
20:13:19.0315 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\eb0814704129b6eb13b40501c31ffaec\WindowsLive.Writer.ApplicationFramework.ni.dll - ok
20:13:19.0315 0x1214  [ FE8E61253DF59AD503288BCD6B5B086F, E33F426F289CB922C0921E3DBB27B8C4F130C5CB33B49DA032FE313549A42D22 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\eab5d3c3072c66f8f94c48d3b49fea80\WindowsLive.Writer.Instrumentation.ni.dll
20:13:19.0315 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\eab5d3c3072c66f8f94c48d3b49fea80\WindowsLive.Writer.Instrumentation.ni.dll - ok
20:13:19.0331 0x1214  [ BA7D43E0BAE1817F375367BFE6DD468B, CEFC006659D6A112F2CA06C263BC515318254E7ECC250E34AEB6A520899DC38F ] C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\a8757bfb97d663f01a244130d6f2675d\WindowsLive.Writer.Extensibility.ni.dll
20:13:19.0331 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\a8757bfb97d663f01a244130d6f2675d\WindowsLive.Writer.Extensibility.ni.dll - ok
20:13:19.0331 0x1214  [ EE77F12C7C82E250BF4818E89FF05826, B73A144EA1B7241DF49BEB69F01F4FA0A8044C7E4CCA6649046CB17AA9E18649 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\d3757b37f8866a18893e46f9a05905d0\WindowsLive.Writer.HtmlEditor.ni.dll
20:13:19.0331 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\d3757b37f8866a18893e46f9a05905d0\WindowsLive.Writer.HtmlEditor.ni.dll - ok
20:13:19.0331 0x1214  [ EDC413D919D33A3AED7294BE5754DDB2, 096B663E1E0800BBA0CF4B8EAF248D7AC8836639495807A0E1D3274F771BE4D6 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\2b66eda0447075cd5bf810925d202bf3\WindowsLive.Writer.SpellChecker.ni.dll
20:13:19.0331 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\2b66eda0447075cd5bf810925d202bf3\WindowsLive.Writer.SpellChecker.ni.dll - ok
20:13:19.0347 0x1214  [ 199A5CB039E058E45DC7430C7DA041D7, 2D27BE58615A5092F854EC2E82BD9E8DEE94E0C0B8FF37C0400DE0A526BFB4AE ] C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\6cf988c83ad6938054c50f8522d27426\WindowsLive.Writer.BlogClient.ni.dll
20:13:19.0347 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\6cf988c83ad6938054c50f8522d27426\WindowsLive.Writer.BlogClient.ni.dll - ok
20:13:19.0347 0x1214  [ 4D3FA0390C4897EE6EB911F2E61B3526, 1020666FA2CF9AADBD3410638AAE425EF21EB3BE5806D6F162B3D399C3C73F48 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Client\80dda39afaeb30b0600d7015ea3dce9a\WindowsLive.Client.ni.dll
20:13:19.0347 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Client\80dda39afaeb30b0600d7015ea3dce9a\WindowsLive.Client.ni.dll - ok
20:13:19.0362 0x1214  [ 114C66834CFCDB27EBE7118BD93C9797, 2A20577623ACB2F1CA7FB71C8ADA691DA42E43DF74985B36E7FF5BFB43A1695A ] C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\616792c0793619c88b409b844927f87a\WindowsLive.Writer.FileDestinations.ni.dll
20:13:19.0362 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\616792c0793619c88b409b844927f87a\WindowsLive.Writer.FileDestinations.ni.dll - ok
20:13:19.0362 0x1214  [ 3FB12D48D87C02AEFEDDE3B6039EFB80, 42946850C6972845012430B84C3BBA1F0EF7C6839247CC8F02ED2ECC6FF3E50A ] C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLiveLocal.Wr#\fb054135aed7389ca05a1651bedbeda2\WindowsLiveLocal.WriterPlugin.ni.dll
20:13:19.0362 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsLiveLocal.Wr#\fb054135aed7389ca05a1651bedbeda2\WindowsLiveLocal.WriterPlugin.ni.dll - ok
20:13:19.0362 0x1214  [ 2E91846A9716B4D26A00D2D6B355F07A, 84261600FE1FF73BF194B7AE370199DE06139C435B4727469007579A95E2B869 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\ComSvcConfig\551ed7b0dd99abbca27f0c8fbcf8cc42\ComSvcConfig.ni.exe
20:13:19.0362 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\ComSvcConfig\551ed7b0dd99abbca27f0c8fbcf8cc42\ComSvcConfig.ni.exe - ok
20:13:19.0378 0x1214  [ A5EA27C15837FDE10E56264D6D19FB95, 4545FD3E3C441F97DE920F4AC2028FE0ED62B8F856B72BFB52CA6C1B23BA5FFB ] C:\Windows\assembly\NativeImages_v2.0.50727_32\CustomMarshalers\6768883b4e09bc157a40a14da9bd5652\CustomMarshalers.ni.dll
20:13:19.0378 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\CustomMarshalers\6768883b4e09bc157a40a14da9bd5652\CustomMarshalers.ni.dll - ok
20:13:19.0378 0x1214  [ 43FED921B649D1A62EC4A81DC8571050, B440A837760A24EAFCDB82960E95C0EC9D88D2C742301BDA3B73C7E2A00F9694 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\dfsvc\251961044bd12b1a2e7b52fe8ac1b07a\dfsvc.ni.exe
20:13:19.0378 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\dfsvc\251961044bd12b1a2e7b52fe8ac1b07a\dfsvc.ni.exe - ok
20:13:19.0378 0x1214  [ 434027A348051C23B0843CA51F12B30C, 23F47EF0B593E66957DEB46D0BAE98479F668B367357C8B086DB6E20F2E4C0BB ] C:\Windows\assembly\NativeImages_v2.0.50727_32\ehExtHost32\57ad5e5132bd2400aeb56d2b2547c94c\ehExtHost32.ni.exe
20:13:19.0378 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\ehExtHost32\57ad5e5132bd2400aeb56d2b2547c94c\ehExtHost32.ni.exe - ok
20:13:19.0393 0x1214  [ C8D99E25BD7659164BC3603269575097, 3AC2D056062C19D4E1F507315CA612FB50771C693EDA835B4CF5A4CD67058DC7 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.MediaCent#\bcc868b0dd2b8a9fa7142770e974dddf\Microsoft.MediaCenter.ni.dll
20:13:19.0393 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.MediaCent#\bcc868b0dd2b8a9fa7142770e974dddf\Microsoft.MediaCenter.ni.dll - ok
20:13:19.0393 0x1214  [ 03309B765B90EFCD20CC0F43BF776F66, C79A3990660B5C51CA60953EE2D2638CF5643B7C038675D2F6F2FD48B601097B ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.MediaCent#\3423b13faceaf2b7b2b2708b3998644f\Microsoft.MediaCenter.UI.ni.dll
20:13:19.0393 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.MediaCent#\3423b13faceaf2b7b2b2708b3998644f\Microsoft.MediaCenter.UI.ni.dll - ok
20:13:19.0409 0x1214  [ 7507B53B8D097299C5A7D801246F3D2F, 34DF5885B061AA18BAB311A2DECEC48C20C08C5401B64BFD1943121D4459388A ] C:\Windows\assembly\NativeImages_v2.0.50727_32\ehiUserXp\7b5eb5980a53293215b517411b30b5f6\ehiUserXp.ni.dll
20:13:19.0409 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\ehiUserXp\7b5eb5980a53293215b517411b30b5f6\ehiUserXp.ni.dll - ok
20:13:19.0409 0x1214  [ B8553B53E2A1D611A1F364D3ED7BB0E3, 4EB3CE7110B5D54DF4C2135C66FCFA62FED7B78E5990AD4A405494CD30E5C7EB ] C:\Windows\assembly\NativeImages_v2.0.50727_32\ehRecObj\35cedb6635aafa14e39a02483cf65d93\ehRecObj.ni.dll
20:13:19.0409 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\ehRecObj\35cedb6635aafa14e39a02483cf65d93\ehRecObj.ni.dll - ok
20:13:19.0409 0x1214  [ A87BA9F658877CCCAB29B0B504E79D0B, 7EB5C86937CB1A3F76F0F2BAA993F1BBCE2357E1193166C5266F91AF39878E59 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\ehiProxy\ac6666cfeb8bb468a0f95419cba9a036\ehiProxy.ni.dll
20:13:19.0409 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\ehiProxy\ac6666cfeb8bb468a0f95419cba9a036\ehiProxy.ni.dll - ok
20:13:19.0425 0x1214  [ FDD28F6F2F4CBCF5083106E6DBFD734B, 84028CF0BD99910CB858BECB4AC1DC239DB9958AF28B535E2E919C8EF75AC6A2 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\mcepg\bccf3cc01bf3a81b6c6771669a1ee7be\mcepg.ni.dll
20:13:19.0425 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\mcepg\bccf3cc01bf3a81b6c6771669a1ee7be\mcepg.ni.dll - ok
20:13:19.0425 0x1214  [ 40603F61A77A0ACDFB81C16E09936554, 0E5253B811A2C84C8C44DFCC70ABF2B74D17DDD2AB0E784DBFBA925FDE06B389 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\mcstore\48ee0ef19a209122b9aec9fc7adde329\mcstore.ni.dll
20:13:19.0425 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\mcstore\48ee0ef19a209122b9aec9fc7adde329\mcstore.ni.dll - ok
20:13:19.0425 0x1214  [ 2740FEFCCADFB70D6F92AE7D1FCFAC6A, F81AE6462A8F6112DE7292EB7A1BC43DB1F8C7AAFDEBF1A26491D58EADD37432 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\mcstoredb\378214c5c6887eba297e0d6d19e1cfbc\mcstoredb.ni.dll
20:13:19.0425 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\mcstoredb\378214c5c6887eba297e0d6d19e1cfbc\mcstoredb.ni.dll - ok
20:13:19.0440 0x1214  [ 098AEA1FBC2536C02A86C98050A5BF31, E06E281E4041BA6B9BBDDA3069DA6738568D05AE88CA481472B72E390268D10B ] C:\Windows\assembly\NativeImages_v2.0.50727_32\ehiVidCtl\5f32c5a66a84baa8879e05f6f837303b\ehiVidCtl.ni.dll
20:13:19.0440 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\ehiVidCtl\5f32c5a66a84baa8879e05f6f837303b\ehiVidCtl.ni.dll - ok
20:13:19.0440 0x1214  [ 23DB9F0CAF6A936C1413D9554F247B21, D99B75AB1C27DA98F8FEAB2D4198B3B4451DF0D237AC91509D039FF53CC54006 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\stdole\dbc2c2dcc441ab524b7d91384f3bfef7\stdole.ni.dll
20:13:19.0440 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\stdole\dbc2c2dcc441ab524b7d91384f3bfef7\stdole.ni.dll - ok
20:13:19.0456 0x1214  [ 0E78A3F72DAE978CB3271631797B251A, E02D3E9F2678137DA5D398B5329B9029B0B1EE9483B3E48393F0FEBB8FD43DEA ] C:\Windows\assembly\NativeImages_v2.0.50727_32\ehiExtens\0c7e60b799bfd8e894f849fdc3b7eb76\ehiExtens.ni.dll
20:13:19.0456 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\ehiExtens\0c7e60b799bfd8e894f849fdc3b7eb76\ehiExtens.ni.dll - ok
20:13:19.0456 0x1214  [ A3E25282EF13FC0A202806578188BC11, 8EFC6AD22853753A3971350F24CADFA18F35A036B943FEB78BD64BA20B5FBB6D ] C:\Windows\assembly\NativeImages_v2.0.50727_32\EventViewer\113f9e0dde105d460af23a9441819f0e\EventViewer.ni.dll
20:13:19.0456 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\EventViewer\113f9e0dde105d460af23a9441819f0e\EventViewer.ni.dll - ok
20:13:19.0456 0x1214  [ 65146610C52F8DE46553B806A69BAED3, 3CC71D7FF36E22EC8E4071CB77BB58117737EB460BDC3CF6E1F3A5D7977F77FB ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Managemen#\9b4ddbb96d4a171ae4227ecb836a1df5\Microsoft.ManagementConsole.ni.dll
20:13:19.0456 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Managemen#\9b4ddbb96d4a171ae4227ecb836a1df5\Microsoft.ManagementConsole.ni.dll - ok
20:13:19.0471 0x1214  [ 3D3BD2161A9F06C263874FA934780B1E, 2293453CFB0D078F72B706F9D220E5C8C58A5919F2F666E984803E00F8763590 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\MMCFxCommon\b0cbd819fd0483a32e7bdf8e28ec49c6\MMCFxCommon.ni.dll
20:13:19.0471 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\MMCFxCommon\b0cbd819fd0483a32e7bdf8e28ec49c6\MMCFxCommon.ni.dll - ok
20:13:19.0471 0x1214  [ 4F96CC304949936273095DEFCCCAC26C, A704108C9EB2F766C1272B36A7CB3E318ADF396D6079BF2EC0DD68196775CF12 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\MIGUIControls\efe4247d9c015b8a701342025d020483\MIGUIControls.ni.dll
20:13:19.0471 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\MIGUIControls\efe4247d9c015b8a701342025d020483\MIGUIControls.ni.dll - ok
20:13:19.0487 0x1214  [ 61AE8D1AEC64E2AB4AA861E085D23657, 4BB64767A6117F1B70C7DC606BB415419302236D8748BBED84088889A9E44B3F ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Con#\1548db70a975a9fcf9e31b6e02eb9a16\Microsoft.Build.Conversion.v3.5.ni.dll
20:13:19.0487 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Con#\1548db70a975a9fcf9e31b6e02eb9a16\Microsoft.Build.Conversion.v3.5.ni.dll - ok
20:13:19.0487 0x1214  [ C298C08123C606816AC2FA3977DBD4CB, 379433036BF94A1AF8A1808691D37F89091FE5616524361FB6A075BA46A1ABEA ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\055d9ad727d57c66447e73c9ea364922\Microsoft.Build.Engine.ni.dll
20:13:19.0487 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\055d9ad727d57c66447e73c9ea364922\Microsoft.Build.Engine.ni.dll - ok
20:13:19.0487 0x1214  [ 769A57FC5E0A9025CE0537B310AF9275, 6B1113A314015EC070B8FF04723D0A6E97B7F2466534649ED61B002835695B3E ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\140c72d2dfd0d3e7e7e96186849fd8fa\Microsoft.Build.Framework.ni.dll
20:13:19.0487 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\140c72d2dfd0d3e7e7e96186849fd8fa\Microsoft.Build.Framework.ni.dll - ok
20:13:19.0503 0x1214  [ DA0412137EA3701B5C28343D0C8EAAE9, F16995CF828EBC9B6893F5DE95AC5DEFCCA68696E6DB1246E444E2E4DE3224F6 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\5e7ef0887c85d9a830598a293075f14e\Microsoft.Build.Engine.ni.dll
20:13:19.0503 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\5e7ef0887c85d9a830598a293075f14e\Microsoft.Build.Engine.ni.dll - ok
20:13:19.0503 0x1214  [ 0F9B8A4C00198B23C576CB8134A8326B, 74D04CD6A0FB7281815C3A84290BFCC23C414CEA222C8B8AD353712F6C9E0958 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\85a8b9b06ac27c537ce3b854d87dd19f\Microsoft.Build.Framework.ni.dll
20:13:19.0503 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\85a8b9b06ac27c537ce3b854d87dd19f\Microsoft.Build.Framework.ni.dll - ok
20:13:19.0518 0x1214  [ 2E0EDEB2727A9CD651C96B4CF226707E, DF8A4EDE3BF063D917B00F4AAF61F1422176F038E690FCB94C36260843D90AFA ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\1edd699310f4eb5d95e942f97db29476\Microsoft.Build.Tasks.ni.dll
20:13:19.0518 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\1edd699310f4eb5d95e942f97db29476\Microsoft.Build.Tasks.ni.dll - ok
20:13:19.0518 0x1214  [ 9CCB199F4701885B618AA2410913F647, 1EF0BB8FDB3CC6A72AFDEEE2FB32F2BFA23798F0E67426101D58E9B52C84443D ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\d9d3a94ab389489eec134401b03badde\Microsoft.Build.Tasks.v3.5.ni.dll
20:13:19.0518 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\d9d3a94ab389489eec134401b03badde\Microsoft.Build.Tasks.v3.5.ni.dll - ok
20:13:19.0518 0x1214  [ 712A499054B7EED989CE5A0C798B953D, 3682FEFBF771756AD8081C32D9123FE420F43C159683EF9563818C0CEEF148CE ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\850a726df8a3b8e00f3ccc416bd153db\Microsoft.Build.Utilities.v3.5.ni.dll
20:13:19.0518 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\850a726df8a3b8e00f3ccc416bd153db\Microsoft.Build.Utilities.v3.5.ni.dll - ok
20:13:19.0534 0x1214  [ B7F8635E607367D5A326E64BFF2E9731, C4445785DB58BC608B590F501B4DE798D6AC58B5870C8DE5024ADCF7E9190803 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\BDATunePIA\9cd0444c49b21b9be972e0228097ddf7\BDATunePIA.ni.dll
20:13:19.0534 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\BDATunePIA\9cd0444c49b21b9be972e0228097ddf7\BDATunePIA.ni.dll - ok
20:13:19.0534 0x1214  [ 138DE6E17F40BA987A36EE2786C69DE5, BFD4E9FEE90B280AB0E6593BBB2C436E42EAE9ECED40E2FA76C1853B6083C7ED ] C:\Windows\assembly\NativeImages_v2.0.50727_64\ComSvcConfig\bd82447e319a035e7fc9cd18b882c30b\ComSvcConfig.ni.exe
20:13:19.0534 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\ComSvcConfig\bd82447e319a035e7fc9cd18b882c30b\ComSvcConfig.ni.exe - ok
20:13:19.0534 0x1214  [ FDD3CA457F083B4091FE97BF92F3C959, 9B442B4215076E1927FB52F600C2ADAE731869B8F86D14C3A5750AAFE557726B ] C:\Windows\assembly\NativeImages_v2.0.50727_64\CustomMarshalers\3d6fa6d7e86f0311e9a4cf98ab3d533e\CustomMarshalers.ni.dll
20:13:19.0534 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\CustomMarshalers\3d6fa6d7e86f0311e9a4cf98ab3d533e\CustomMarshalers.ni.dll - ok
20:13:19.0549 0x1214  [ AAE5E0AF3DEFF7E66B1627B7920E0903, 38BC655E6B88839102938720E1970CBB703610B772414F583B52CC755F831292 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\dfsvc\baab5670cea805dc31ba493de99e1930\dfsvc.ni.exe
20:13:19.0549 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\dfsvc\baab5670cea805dc31ba493de99e1930\dfsvc.ni.exe - ok
20:13:19.0549 0x1214  [ 4D4DF78D5114972BDC0FB47B4642AF7C, 1B5F6A132B3926E04EE6596B40B3E4DA76732F01292602623C0E2276E40B42C8 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\ehCIR\d4a2014418754641296664e21944f286\ehCIR.ni.dll
20:13:19.0549 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\ehCIR\d4a2014418754641296664e21944f286\ehCIR.ni.dll - ok
 

 

 

CONTINUED IN NEXT POST


20:13:19.0565 0x1214  [ 6F4FB5B0DBC482D1BB1CE5914F2E5525, AE09D292D88BB07C9B686202A4C2A51A21652C5E5C6EEB388969F384FAA915AB ] C:\Windows\assembly\NativeImages_v2.0.50727_64\ehiProxy\98eca32cbf06e5e30c300fccb1b189e1\ehiProxy.ni.dll
20:13:19.0565 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\ehiProxy\98eca32cbf06e5e30c300fccb1b189e1\ehiProxy.ni.dll - ok
20:13:19.0565 0x1214  [ 19C48C2607D9DFABC5F83D3B9D8B8681, E4FF8EC1AAE1BDCD5F6FBDB5BC450204661EC8086D8692C1D21080A362F2BB51 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\ehExtHost\144b1e1df71af07d37fbe68353895faa\ehExtHost.ni.exe
20:13:19.0565 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\ehExtHost\144b1e1df71af07d37fbe68353895faa\ehExtHost.ni.exe - ok
20:13:19.0565 0x1214  [ 01B1C1665D9205D0157DE432647638C7, 37176970AE1F8ADB01B0926326182C96DAC344F9FB38CDAB01C0513EC951F6EA ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\23a0d66ad4d1dfd649792dd00becd125\Microsoft.MediaCenter.ni.dll
20:13:19.0565 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\23a0d66ad4d1dfd649792dd00becd125\Microsoft.MediaCenter.ni.dll - ok
20:13:19.0581 0x1214  [ B7893480EB875A9F7CC809AC2BDCC829, F7825D23653AD7BEF5AB0D88420561B5112C508C8B4258A4E5B17028FA5BDC34 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\ehRecObj\66e9a3f5e02846d21fcadf452ed2780b\ehRecObj.ni.dll
20:13:19.0581 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\ehRecObj\66e9a3f5e02846d21fcadf452ed2780b\ehRecObj.ni.dll - ok
20:13:19.0581 0x1214  [ 2567B41B44A25E1DF8F3A9BDE73A472A, E9C18AAA9A28CFA5EA9534422B273C35223396C4D1E9ADF6BA2418393AADF8C3 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\mcepg\d734f2b07c1ffd289997515365b4c820\mcepg.ni.dll
20:13:19.0581 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\mcepg\d734f2b07c1ffd289997515365b4c820\mcepg.ni.dll - ok
20:13:19.0596 0x1214  [ 681D56C556AF6E19CFBF8CE5B06019F8, F6510CB06799DB3AA4C413076AA76527AB2898F46BC8324055AFD072F1AF8CD5 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\mcstore\b754dd56e4e645c09e2eb68c7f45a621\mcstore.ni.dll
20:13:19.0596 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\mcstore\b754dd56e4e645c09e2eb68c7f45a621\mcstore.ni.dll - ok
20:13:19.0596 0x1214  [ 34B49F203B3829C1BA6895D927CB9587, B741991C079F5379F34844AB01DBFBF55ADCE0348750A1EE198786E28E71CE8C ] C:\Windows\assembly\NativeImages_v2.0.50727_64\mcstoredb\7e84606343fe592d1daf1aef4c6cb546\mcstoredb.ni.dll
20:13:19.0596 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\mcstoredb\7e84606343fe592d1daf1aef4c6cb546\mcstoredb.ni.dll - ok
20:13:19.0596 0x1214  [ D9522176090040F3AA4EA13FC61A79BE, 1611C6DCB1E3BB15D795E43148DE41443F0BC0820646BDF3FEDB8EB9D41228CE ] C:\Windows\assembly\NativeImages_v2.0.50727_64\ehiVidCtl\86c036d5dacd10be5f95574c9afddbbd\ehiVidCtl.ni.dll
20:13:19.0596 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\ehiVidCtl\86c036d5dacd10be5f95574c9afddbbd\ehiVidCtl.ni.dll - ok
20:13:19.0612 0x1214  [ 0102DE511CB0A71BB09380E758EAC1F4, 14C290361A37BB809EE23666FA492FACC3B34C66230F6D5AD42B73146FB710FF ] C:\Windows\assembly\NativeImages_v2.0.50727_64\stdole\35cefd33ec759927c111b03bae6cbbdd\stdole.ni.dll
20:13:19.0612 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\stdole\35cefd33ec759927c111b03bae6cbbdd\stdole.ni.dll - ok
20:13:19.0612 0x1214  [ 07E64C3BD45B8DD574979496EA10A5D8, 35DFE7553E70925C680B90AD9E8A018131A96A377188E2694790735F2D3305A3 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\ehiExtens\289083bf5d5fa57d87786fdbaf12ce89\ehiExtens.ni.dll
20:13:19.0612 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\ehiExtens\289083bf5d5fa57d87786fdbaf12ce89\ehiExtens.ni.dll - ok
20:13:19.0627 0x1214  [ B19218E36A1534C01011AE973C16AA1D, 1F2D50724F284D654CAC00945B6A2392B3CCE7A4A6F00136C928D0AB8990F3D3 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\ehiActivScp\bf0a71a020f99cdf64ee5133454867af\ehiActivScp.ni.dll
20:13:19.0627 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\ehiActivScp\bf0a71a020f99cdf64ee5133454867af\ehiActivScp.ni.dll - ok
20:13:19.0627 0x1214  [ CFCC99FC9C01413DAFBCF3C47759274B, 33FAAB728BE20AE3FD9958538D833F6D70CD7088A7F103B7B34F3307C6ABE021 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\ehiBmlDataCarousel\1025921c6b2e77e28472ea3d81428fbb\ehiBmlDataCarousel.ni.dll
20:13:19.0627 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\ehiBmlDataCarousel\1025921c6b2e77e28472ea3d81428fbb\ehiBmlDataCarousel.ni.dll - ok
20:13:19.0627 0x1214  [ C96863F4C17E9AB798C6F24D6FF8EEA5, 7DF5808E16608C0C7829E29D7AE73417B0E4DBD6FE013AE8C8011536DB531CBC ] C:\Windows\assembly\NativeImages_v2.0.50727_64\ehiiTv\ef19de9a23af23f6dc5ac48c2f72eca2\ehiiTv.ni.dll
20:13:19.0627 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\ehiiTv\ef19de9a23af23f6dc5ac48c2f72eca2\ehiiTv.ni.dll - ok
20:13:19.0643 0x1214  [ 879A742CC4D48A0C86CFE36761A1D75D, 67D9139DC39E528EA22E38393E252947C6098B02224962406664FCE4B25BBBF8 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\ehiTVMSMusic\34c5becab9f8450bb7b2a4227bbcffec\ehiTVMSMusic.ni.dll
20:13:19.0643 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\ehiTVMSMusic\34c5becab9f8450bb7b2a4227bbcffec\ehiTVMSMusic.ni.dll - ok
20:13:19.0643 0x1214  [ 0B62103CFD13CAFA80FCE6F0D16092D8, 55D3EC92708AF5C08238FD3DF680E83B6E096058E8C0119BECA5FE06BD33EC1A ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\4494ef6dd7940eee588f20ebe7f4a727\Microsoft.MediaCenter.iTv.Hosting.ni.dll
20:13:19.0643 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\4494ef6dd7940eee588f20ebe7f4a727\Microsoft.MediaCenter.iTv.Hosting.ni.dll - ok
20:13:19.0643 0x1214  [ D9B94BA21F0D75F772E9EEF3BD011B6A, BB1F2509E4F0A5BD88055F66ABCC4E9A635DF2D3CBC66077D63856CD44B34FE7 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\ehiUPnP\c16b3419dbcca1b8cb60e1acbe2726ce\ehiUPnP.ni.dll
20:13:19.0643 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\ehiUPnP\c16b3419dbcca1b8cb60e1acbe2726ce\ehiUPnP.ni.dll - ok
20:13:19.0659 0x1214  [ 4D5ED6C4D3FAB7C8D35D4755E22B091C, A55D8B3C682F3B11C3341EEE4CC03C933928221277A880D15C47D8C0F6B63925 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\ehiwmp\e39d60cf6f6427027b0da3d6e5f40fa2\ehiwmp.ni.dll
20:13:19.0659 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\ehiwmp\e39d60cf6f6427027b0da3d6e5f40fa2\ehiwmp.ni.dll - ok
20:13:19.0659 0x1214  [ 4EB99A2EE726156D39F0C8837EF4B8E7, 961983AAFB120813237EC0AE903C2148D05E03E4E852CF5C739BAF851706F41C ] C:\Windows\assembly\NativeImages_v2.0.50727_64\ehiWUapi\493c01708ab177123758a362e9c1cb5d\ehiWUapi.ni.dll
20:13:19.0659 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\ehiWUapi\493c01708ab177123758a362e9c1cb5d\ehiWUapi.ni.dll - ok
20:13:19.0674 0x1214  [ FE51142BB8EE33E8138D101D42669271, CC25A0FC28F650EC3749075C9C02C19E5CF17F6CF9236FA6A89A27768BB9F00D ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\7a35acd4c7881c818500628ad854130d\Microsoft.MediaCenter.Shell.ni.dll
20:13:19.0674 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\7a35acd4c7881c818500628ad854130d\Microsoft.MediaCenter.Shell.ni.dll - ok
20:13:19.0674 0x1214  [ 45F6DB7C70858325D042A3D50B3AFE6D, 593E7EE7DC41577F6A787C1A081893DD92550B547BA16A7718189B64259E9CF5 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\3481a18de5c9f947fb26db7718dd504d\Microsoft.MediaCenter.ITVVM.ni.dll
20:13:19.0674 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\3481a18de5c9f947fb26db7718dd504d\Microsoft.MediaCenter.ITVVM.ni.dll - ok
20:13:19.0674 0x1214  [ 1933CE3653648406A670AAD8E164422A, 14DF1673EFF950D8EC6FDDEFA883DD4804576E1464D3541931769BD9307BDA91 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\4c0f7859999be1c47e3e6d93cdc43903\Microsoft.MediaCenter.Playback.ni.dll
20:13:19.0674 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\4c0f7859999be1c47e3e6d93cdc43903\Microsoft.MediaCenter.Playback.ni.dll - ok
20:13:19.0690 0x1214  [ EF41503294B4EAD8BFDB4474FFB66F8A, 08C7F9539BA1792DF0DDA944217FA8AB10F266BC2369701429A4F2E6494B2F99 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\dd2b5a793f911584a03f5a9d0a4f8254\Microsoft.MediaCenter.TV.Tuners.Interop.ni.dll
20:13:19.0690 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\dd2b5a793f911584a03f5a9d0a4f8254\Microsoft.MediaCenter.TV.Tuners.Interop.ni.dll - ok
20:13:19.0690 0x1214  [ F40D33991E207EDFBA6CD4C008713F61, 90D0B65405B46F6707F5D1B2645E350D78AEE2E2F2FF6C6690D1B30B7A853A54 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\e168275f9d6bc77d5df1c990fdad4a53\Microsoft.MediaCenter.Sports.ni.dll
20:13:19.0690 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\e168275f9d6bc77d5df1c990fdad4a53\Microsoft.MediaCenter.Sports.ni.dll - ok
20:13:19.0690 0x1214  [ 5CEE7A24B9035CB538AEB073621A1145, 5E8C03DECDC9D4B01DB6A0C6E4D6FB99FE32C140EC838007F87568BF83F3EC26 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\ehshell\5d7d064aa8245b68b8b0403ecfeab2e6\ehshell.ni.dll
20:13:19.0690 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\ehshell\5d7d064aa8245b68b8b0403ecfeab2e6\ehshell.ni.dll - ok
20:13:19.0705 0x1214  [ B47AA1B3D36F135CA2C7EB5DC0B07D86, 116E5EE93ACF2D7FC68F889B23316AE80DA81E67601FFE5C47113810663784F6 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Mcx2Dvcs\1744821d9e9b96f25b17250d83061356\Mcx2Dvcs.ni.dll
20:13:19.0705 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Mcx2Dvcs\1744821d9e9b96f25b17250d83061356\Mcx2Dvcs.ni.dll - ok
20:13:19.0705 0x1214  [ 1AFACEAC6D5BE9D93BF929B50D73AB16, 48F5CEDD6521F364432F98D23EBDF394F5BBD44263FAF3D0D7F422F1B6311960 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\7599fe0dbed365eec0342943abe5e54e\Microsoft.MediaCenter.iTv.ni.dll
20:13:19.0705 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\7599fe0dbed365eec0342943abe5e54e\Microsoft.MediaCenter.iTv.ni.dll - ok
20:13:19.0721 0x1214  [ FD52531CAFDB27FBE7CA9792506855AF, EF6C97739CFC7C561FF2BECAD5320D67A64C164B77BE6B96FA41D962A47557E8 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\338c7af153834b0bbf4820c72c17e3a3\Microsoft.MediaCenter.iTv.Media.ni.dll
20:13:19.0721 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\338c7af153834b0bbf4820c72c17e3a3\Microsoft.MediaCenter.iTv.Media.ni.dll - ok
20:13:19.0721 0x1214  [ AFA7B6E6C3642632AD1E56A3A7FE2817, D29B1C051AB7996A7CCECE1935A0B4A583C3780DA54FD93498C0530517738A2F ] C:\Windows\assembly\NativeImages_v2.0.50727_64\EventViewer\4581be217f8b3288244e72f869771736\EventViewer.ni.dll
20:13:19.0721 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\EventViewer\4581be217f8b3288244e72f869771736\EventViewer.ni.dll - ok
20:13:19.0721 0x1214  [ ADAC3B188356D321627B904DF7D7F91A, 4730CFC12ABD832A8680EB7FBA71339E6CC087311C0E8FFBA649766EBA922FB9 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Managemen#\50275193559a7cb7bcbe35bd0d7acdb6\Microsoft.ManagementConsole.ni.dll
20:13:19.0721 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Managemen#\50275193559a7cb7bcbe35bd0d7acdb6\Microsoft.ManagementConsole.ni.dll - ok
20:13:19.0737 0x1214  [ 6BF0F4D56ED8C51F8A4889643DEC2B94, 5DE8C41EC869FF6BB84CDBA8D57E38825F9E981BE2322662B61969B9F35FA54A ] C:\Windows\assembly\NativeImages_v2.0.50727_64\MMCFxCommon\c654c24f8404eb0786807622db29b32c\MMCFxCommon.ni.dll
20:13:19.0737 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\MMCFxCommon\c654c24f8404eb0786807622db29b32c\MMCFxCommon.ni.dll - ok
20:13:19.0737 0x1214  [ C80ABDDE10CE610E3648EEACF9F816A4, 255A0AB0EF17370BEBFD46712FE36C2EE0B89126C6416F9BB90357D969A63BBA ] C:\Windows\assembly\NativeImages_v2.0.50727_64\MIGUIControls\62d275059c7f97eddb3812cd7cb5a8e3\MIGUIControls.ni.dll
20:13:19.0737 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\MIGUIControls\62d275059c7f97eddb3812cd7cb5a8e3\MIGUIControls.ni.dll - ok
20:13:19.0752 0x1214  [ 246594666ED0A050AF5C2A4AC634141E, 2F584B5F0980E24ACE8E2C6E7F44D317E6901E589F191D006100309652BB0348 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\LoadMxf\393de7b3cab14a230635421c220ed551\LoadMxf.ni.exe
20:13:19.0752 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\LoadMxf\393de7b3cab14a230635421c220ed551\LoadMxf.ni.exe - ok
20:13:19.0752 0x1214  [ 1EA26B031B7AF6C4C7CEC9BFDA6BE9B6, FD839D9363D67931A8B2076894B9A454DFCF58A932FC72D4BF17671E2D787A7F ] C:\Windows\assembly\NativeImages_v2.0.50727_64\MCESidebarCtrl\a49bff6405d928a43c80c699a086060d\MCESidebarCtrl.ni.dll
20:13:19.0752 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\MCESidebarCtrl\a49bff6405d928a43c80c699a086060d\MCESidebarCtrl.ni.dll - ok
20:13:19.0752 0x1214  [ DCD43F971DA1B83BC740985B94511246, AD22D9A30AA80F5D7F627590821DEECC888F6BE52B6EFC775B016BD03693FC46 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\mcGlidHostObj\7eb70fafc187395cba1f5455ae0f60f2\mcGlidHostObj.ni.dll
20:13:19.0752 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\mcGlidHostObj\7eb70fafc187395cba1f5455ae0f60f2\mcGlidHostObj.ni.dll - ok
20:13:19.0768 0x1214  [ EA9E3B3ECA465450118CE308A20BB3CC, 4BCC784EB809E13A76014F06B2D0562B07D35EADAA73F1690A48430B0C0F7BA4 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\mcplayerinterop\6faecbedd5717945db435fc391cb827a\mcplayerinterop.ni.dll
20:13:19.0768 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\mcplayerinterop\6faecbedd5717945db435fc391cb827a\mcplayerinterop.ni.dll - ok
20:13:19.0768 0x1214  [ 93A6EECF48D8C25BCC5B935A65D4ECCA, EAD0EDBA02F457B1BC7A2FF0D0AFEC2BA2E37A320CB1106DDC839FD353B17F8F ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft-Windows-H#\7209b9cfc5b134926d0963e5dca0ea29\Microsoft-Windows-HomeGroupDiagnostic.NetListMgr.Interop.ni.dll
20:13:19.0768 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft-Windows-H#\7209b9cfc5b134926d0963e5dca0ea29\Microsoft-Windows-HomeGroupDiagnostic.NetListMgr.Interop.ni.dll - ok
20:13:19.0783 0x1214  [ BACDEC0E674A093DA38D4CC26B02DE39, 715DA09868C5825D3EBE6504D6B4B42D203109F9AFE879456F8CF2E7B096A1D1 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Con#\4bbce42116c47845380408176727581f\Microsoft.Build.Conversion.v3.5.ni.dll
20:13:19.0783 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Con#\4bbce42116c47845380408176727581f\Microsoft.Build.Conversion.v3.5.ni.dll - ok
20:13:19.0783 0x1214  [ 191179EB86344EBDF636DD337CBAA584, 936646A751D8336AD7D033EB3418C9C3F7593ABAAC6386591E6C158137F05682 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Eng#\11eebd8312ce340fca87dfcc66120108\Microsoft.Build.Engine.ni.dll
20:13:19.0783 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Eng#\11eebd8312ce340fca87dfcc66120108\Microsoft.Build.Engine.ni.dll - ok
20:13:19.0783 0x1214  [ CA65BED61FC8202CD7FE448748D69817, 78F7D279C98C3D6B6520A6833DBD86282EB670E244303B6CAEB273464A248598 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Fra#\0968704619d333e64c094cf26f00fd4d\Microsoft.Build.Framework.ni.dll
20:13:19.0783 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Fra#\0968704619d333e64c094cf26f00fd4d\Microsoft.Build.Framework.ni.dll - ok
20:13:19.0799 0x1214  [ C257398C13481E4AF486EB89B0B80DA2, 36695A4361AE7FE7454BC2D6EC76A3FD79DBA8ACF0EC52615344832288BE4867 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Eng#\f386462f70277c51f50df102027de36f\Microsoft.Build.Engine.ni.dll
20:13:19.0799 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Eng#\f386462f70277c51f50df102027de36f\Microsoft.Build.Engine.ni.dll - ok
20:13:19.0799 0x1214  [ 232565EE2C8C10035478FA425F66419A, 9B5A0938CB7066064AAB4FE0E1BAF419172DC4F0CAF0129BD0E4D687C517D2EB ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Fra#\2cd79645a66795e61487539c51201a2c\Microsoft.Build.Framework.ni.dll
20:13:19.0799 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Fra#\2cd79645a66795e61487539c51201a2c\Microsoft.Build.Framework.ni.dll - ok
20:13:19.0815 0x1214  [ A741C048F767A7CBE80B4C2DFCE767F1, 30130945907802870259956C593FD36EDBF338109192C2B21B9857B738A5A2EF ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Tas#\548d9db212d231db07335c511f5d2d24\Microsoft.Build.Tasks.ni.dll
20:13:19.0815 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Tas#\548d9db212d231db07335c511f5d2d24\Microsoft.Build.Tasks.ni.dll - ok
20:13:19.0815 0x1214  [ C659BCDAE2279A39A547AA3412824D6D, 36522BE69C92FBBC5627183C76166B68447F4289C07F78C204A89DFA3B930F2D ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Tas#\6dd964f28c632e62ef11767aaf0b471f\Microsoft.Build.Tasks.v3.5.ni.dll
20:13:19.0815 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Tas#\6dd964f28c632e62ef11767aaf0b471f\Microsoft.Build.Tasks.v3.5.ni.dll - ok
20:13:19.0815 0x1214  [ FC51E62EAB9DB757705802B501932A61, 2D11129796577B09C2F0F9F2ECCC27F6F2EBCD0071E9530E94DFA2F1218D164B ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Uti#\12e45154538302fbb9794e45b315259d\Microsoft.Build.Utilities.v3.5.ni.dll
20:13:19.0815 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Uti#\12e45154538302fbb9794e45b315259d\Microsoft.Build.Utilities.v3.5.ni.dll - ok
20:13:19.0830 0x1214  [ 296AD4A8ABBD76661270A28E71DB059C, 9153A9BA038F16107A7AF4433123DD16E3C5EA1B1A4BE271037D039118C5322E ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Uti#\9fb11ca19825e165903085b9f634ddc1\Microsoft.Build.Utilities.ni.dll
20:13:19.0830 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Uti#\9fb11ca19825e165903085b9f634ddc1\Microsoft.Build.Utilities.ni.dll - ok
20:13:19.0830 0x1214  [ 3B976BCB27D3DC525539F5C8AF3099EA, 58CEE8FB418B0760F61FA09A3327066D43FB49239AECF84B2655E2BE47305182 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Ink\d44493c3573dd07f136161c686213bcd\Microsoft.Ink.ni.dll
20:13:19.0830 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Ink\d44493c3573dd07f136161c686213bcd\Microsoft.Ink.ni.dll - ok
20:13:19.0846 0x1214  [ 538AE6F2968FF91B160A4E2AEDF48240, D235B0950A285523591C740E8C76E8127084065C5DD6CEE87DAA3B6E8088DF9E ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\0c58296831307b23f986ff873db8bfe5\Microsoft.MediaCenter.Bml.ni.dll
20:13:19.0846 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\0c58296831307b23f986ff873db8bfe5\Microsoft.MediaCenter.Bml.ni.dll - ok
20:13:19.0846 0x1214  [ 2E577F44F2A91067628CA3C0B61BC6ED, 803CF535088662A277CBFE319D57A9838947EE1F7964A0156AC693EBABF9F49E ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\bc24ec1cb6fe6669cf7cc180da8b6d80\Microsoft.MediaCenter.Mheg.ni.dll
20:13:19.0846 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\bc24ec1cb6fe6669cf7cc180da8b6d80\Microsoft.MediaCenter.Mheg.ni.dll - ok
20:13:19.0846 0x1214  [ 289D2DD8964A598C95E93F823F534317, FB58A8DEF22A81F14129F5158E4D761B6DDBF7B84E2935A9AC042EA3BE81717A ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Management.A#\712ec4b55f755b94eaeb5e6bbbe1676d\System.Management.Automation.ni.dll
20:13:19.0846 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Management.A#\712ec4b55f755b94eaeb5e6bbbe1676d\System.Management.Automation.ni.dll - ok
20:13:19.0861 0x1214  [ 6D949011B73D91AB0D2C9B08E1B2CD6F, A1EB36957436A2204F136A7E827A6EB49F9AD17488A4FC66EBE45C715A781D4B ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Management\580eaffeb679b8ed9997fef67ca250c9\System.Management.ni.dll
20:13:19.0861 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Management\580eaffeb679b8ed9997fef67ca250c9\System.Management.ni.dll - ok
20:13:19.0861 0x1214  [ 462A5D7A253EE21D8BF0D37BC9A01F05, 9871F18ADD8EB2AA833844D7DE285A1F3B14D5F1BE783E779C57510540DD3F05 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.JScript\e46d8baaf6bff034e34373ca8af13861\Microsoft.JScript.ni.dll
20:13:19.0861 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.JScript\e46d8baaf6bff034e34373ca8af13861\Microsoft.JScript.ni.dll - ok
20:13:19.0861 0x1214  [ D6DE23B984F9D698BBA24356A28D2FD8, 39BE66F33DCFE4818EEBA2C8BDCA07B2FE5A34F353C44538D9F5F791401BFEAB ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Vsa\584d415d1d941128272b0b9d44f2bb99\Microsoft.Vsa.ni.dll
20:13:19.0877 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Vsa\584d415d1d941128272b0b9d44f2bb99\Microsoft.Vsa.ni.dll - ok
20:13:19.0877 0x1214  [ B961B2F40D3C0E3CE5E90380CC5174BF, 685A8D332711A0F845F0970C4AE43C9B0F4C3BEFFEC4421D2EA5406A618662FC ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Core\a88b6b10d8af809a0716ef01bf643850\System.Core.ni.dll
20:13:19.0877 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Core\a88b6b10d8af809a0716ef01bf643850\System.Core.ni.dll - ok
20:13:19.0877 0x1214  [ 5E046CA8E48947D6CC465D994C3A71EC, 7903E338E036B541DD48B64C1BC1DAC1E204337CF64DC956EB0ED953069A09DA ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\c3368a1cb06e559693659f3e9e1f787e\Microsoft.PowerShell.Commands.Diagnostics.ni.dll
20:13:19.0877 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\c3368a1cb06e559693659f3e9e1f787e\Microsoft.PowerShell.Commands.Diagnostics.ni.dll - ok
20:13:19.0893 0x1214  [ 2B4F4641C12331C851BD970B5F8B967B, 3A9462D2690A4D5EE76A51E6496218FF4236FCC5DB9CAEC5382B297CFBCCCDBB ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\7aa9e61d923b809c56282b3f1e5e18c4\Microsoft.PowerShell.Commands.Management.ni.dll
20:13:19.0893 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\7aa9e61d923b809c56282b3f1e5e18c4\Microsoft.PowerShell.Commands.Management.ni.dll - ok
20:13:19.0893 0x1214  [ 5E292D25B211BA32A2A3407037687EA5, F1DB2072E3E5EA754EDE1B19E12991F9B82E6587693AAF3983166AE8A34AC8BC ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\062de052bd2d145189af5dee4b4ec993\Microsoft.PowerShell.Commands.Utility.ni.dll
20:13:19.0893 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\062de052bd2d145189af5dee4b4ec993\Microsoft.PowerShell.Commands.Utility.ni.dll - ok
20:13:19.0893 0x1214  [ E762411B3A1DFB1D7A0451077838D984, E3D52E50E66979CEBF19F2F215293C5B235AF880460FFBE35AF513AF79E4B922 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\fcfcbff31ed49998c9d82c547f4e64f9\Microsoft.PowerShell.ConsoleHost.ni.dll
20:13:19.0893 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\fcfcbff31ed49998c9d82c547f4e64f9\Microsoft.PowerShell.ConsoleHost.ni.dll - ok
20:13:19.0908 0x1214  [ 2E153B4F30C0CCE2735132A56D1C8283, 73B7A5EF9F2F76387DD989A95E365E0A67CAFF981B15D37914C189EC8D6BBD68 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\a64398c25d855651d9b590f9e43032aa\Microsoft.PowerShell.Editor.ni.dll
20:13:19.0908 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\a64398c25d855651d9b590f9e43032aa\Microsoft.PowerShell.Editor.ni.dll - ok
20:13:19.0908 0x1214  [ D36D59787F4A60244458034EC5B66AB2, D1DD96428D64E76B3BBD7881F9F482D2274D5D31AC65F0B1F80067AC23EBFB48 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\UIAutomationClient\d6580c6c2bd92abedee0c532e530501a\UIAutomationClient.ni.dll
20:13:19.0908 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\UIAutomationClient\d6580c6c2bd92abedee0c532e530501a\UIAutomationClient.ni.dll - ok
20:13:19.0924 0x1214  [ F8481AF0CFF85194469109BC2C7BEB0C, 0D4780496DBBBE1E8392E6EA6D39811CA769FFB45E833C9D5DBE1E9996F1AC7C ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\74b759a41d33efe03e78055d6b0270c4\Microsoft.PowerShell.GPowerShell.ni.dll
20:13:19.0924 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\74b759a41d33efe03e78055d6b0270c4\Microsoft.PowerShell.GPowerShell.ni.dll - ok
20:13:19.0924 0x1214  [ 7E4632D5DB389A31D20F0C6620560EFB, 304DFE8B779C5D03AA94223ACADB08A1092E9BEF001F8E5BFA4A61CBDBEBDEDA ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\1caf660e5165d80ebe069dd9e7047add\Microsoft.PowerShell.GraphicalHost.ni.dll
20:13:19.0924 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\1caf660e5165d80ebe069dd9e7047add\Microsoft.PowerShell.GraphicalHost.ni.dll - ok
20:13:19.0924 0x1214  [ 83F0D7B58615185038CB23A6E5A5BAAF, 4AE4C4996D7961372BFD3ED88D82FCBB1BA802CB0511B596582FA4BDD3B5376F ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\7abb417696e24ed04bf67fc7e0405aca\Microsoft.PowerShell.Security.ni.dll
20:13:19.0924 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\7abb417696e24ed04bf67fc7e0405aca\Microsoft.PowerShell.Security.ni.dll - ok
20:13:19.0939 0x1214  [ BC6287C15A3D8EFD02D31B3068F6D757, AB749FDE7213A56CC0BFD5B531749D0A60BC4B4044800FD5C19A39269E6D825D ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Transacti#\cefbe03705b119ccceeb74c510a8ff9c\Microsoft.Transactions.Bridge.Dtc.ni.dll
20:13:19.0939 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Transacti#\cefbe03705b119ccceeb74c510a8ff9c\Microsoft.Transactions.Bridge.Dtc.ni.dll - ok
20:13:19.0939 0x1214  [ E109586B4166A11B20A8BDED54DB9038, BD5C8D0B0F9223CA8F55A1A08E6B6159A830EF1C4515F4106EFD2E005870D769 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.VisualBas#\cb60f6a1fc096c70a7cd505e9ab5c3f6\Microsoft.VisualBasic.ni.dll
20:13:19.0939 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.VisualBas#\cb60f6a1fc096c70a7cd505e9ab5c3f6\Microsoft.VisualBasic.ni.dll - ok
20:13:19.0939 0x1214  [ 111B5F6CF3A48A41C7296806925F45F1, BEBED27BC19D4A683AE0735CEAE9C31BA10BC145B52E29C46656B914B3B786C8 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\5a2e1a1c7bd71b85bbad88fd08f55d74\Microsoft.Windows.Diagnosis.Commands.GetDiagInput.ni.dll
20:13:19.0939 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\5a2e1a1c7bd71b85bbad88fd08f55d74\Microsoft.Windows.Diagnosis.Commands.GetDiagInput.ni.dll - ok
20:13:19.0955 0x1214  [ 90645A5EB3BCFDB0AB5B24F5C98605E2, ACB88BECC6A2FA49BFC1852F0F8ACD14F0E2A938D330AA17D65A65104CF091A2 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\501796ea658d12c2a2fe7c47736c6874\Microsoft.Windows.Diagnosis.SDHost.ni.dll
20:13:19.0955 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\501796ea658d12c2a2fe7c47736c6874\Microsoft.Windows.Diagnosis.SDHost.ni.dll - ok
20:13:19.0955 0x1214  [ 355EBAF2D592F1FC7098ACF90EE15B09, 350752B3043009B82AB34C950217F25026C0F4AEFB48F63B8C9100736EFC1EC0 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\6ce26fa779ce8a269093a4a54680d303\Microsoft.Windows.Diagnosis.Commands.WriteDiagProgress.ni.dll
20:13:19.0955 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\6ce26fa779ce8a269093a4a54680d303\Microsoft.Windows.Diagnosis.Commands.WriteDiagProgress.ni.dll - ok
20:13:19.0971 0x1214  [ CCCE858E182E9A524D75AE4CAE6CF7FE, 22CE4DA94552BD1389435C9C64C014ADE521F8090248137EC0B5B0F235A095F9 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\abb85475078fa3bbd74fe29494aa9dcb\Microsoft.Build.Utilities.ni.dll
20:13:19.0971 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\abb85475078fa3bbd74fe29494aa9dcb\Microsoft.Build.Utilities.ni.dll - ok
20:13:19.0971 0x1214  [ 41DF7355A5A907E2C1D7804EC028965D, 207BFEC939E7C017C4704BA76172EE2C954F485BA593BC1BC8C7666E78251861 ] C:\Windows\System32\wermgr.exe
20:13:19.0971 0x1214  C:\Windows\System32\wermgr.exe - ok
20:13:19.0971 0x1214  [ C6AF9098CE51512036AA83DE3280DEC8, 18878B0D40D2BF0E28B3C64D0139F48D1A67A7EE70ADC577AD15F075A129F62A ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Ink\1255cd5d2b2e3cc583477af4f9133b60\Microsoft.Ink.ni.dll
20:13:19.0971 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Ink\1255cd5d2b2e3cc583477af4f9133b60\Microsoft.Ink.ni.dll - ok
20:13:19.0986 0x1214  [ 21596EC3074D561CF11D009D78B64636, 042BC79CCE7E91705E1B0427AAF96DF0CFE02FE258D4D1C4BEC9391AE6A562A1 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management.A#\2f7dad21fed198abeae265bedc9d517f\System.Management.Automation.ni.dll
20:13:19.0986 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management.A#\2f7dad21fed198abeae265bedc9d517f\System.Management.Automation.ni.dll - ok
20:13:19.0986 0x1214  [ 1DCC1442CCF792BBFF79CE4DA69A86AB, 2F28BD9DD0C14038D015F76384FC80394ED4F26F517EDC46F2EF0E1C5ABB35CC ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\7f290467008081aa794e8b3b19e39dea\System.Management.ni.dll
20:13:19.0986 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\7f290467008081aa794e8b3b19e39dea\System.Management.ni.dll - ok
20:13:20.0002 0x1214  [ D52D4DF562A2931BF0E0ADB31EA30255, 1D94F373674C2C8D1D76D617FE3A4807EC256B39BC1B251E07397E4AE00C8E12 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.JScript\c8deaee7937a7a37c86470d98d3b4e68\Microsoft.JScript.ni.dll
20:13:20.0002 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.JScript\c8deaee7937a7a37c86470d98d3b4e68\Microsoft.JScript.ni.dll - ok
20:13:20.0002 0x1214  [ 2A48972FDCC1EE182D0861CC8DD57929, 1DC237A9878BEBD0B014933BDBEE95795E868423EE3E8F9BAD968C33E32F7BB5 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Vsa\765e6cae0ed8c27324b8e9e2aaa91fb6\Microsoft.Vsa.ni.dll
20:13:20.0002 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Vsa\765e6cae0ed8c27324b8e9e2aaa91fb6\Microsoft.Vsa.ni.dll - ok
20:13:20.0002 0x1214  [ C0DEA08EFD170FD7D0CEC1A4BAA8C55A, EDC4ECBED11FCA95DDE2A788A551EAA32E454DCE68A7EAB6DD6588B1FD442FA7 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Core\e2603d115a2495878ff181c4e9243014\System.Core.ni.dll
20:13:20.0002 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Core\e2603d115a2495878ff181c4e9243014\System.Core.ni.dll - ok
20:13:20.0017 0x1214  [ 56385D4194B9691BC5378A803BB7E1EA, 0DB8180709019944FA9D2A7631A4F0A47099A6816817AACE7C57676AF7485DF3 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\534d1e25bfd5043029a081509173c76c\Microsoft.PowerShell.Commands.Diagnostics.ni.dll
20:13:20.0017 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\534d1e25bfd5043029a081509173c76c\Microsoft.PowerShell.Commands.Diagnostics.ni.dll - ok
20:13:20.0017 0x1214  [ 845B0E02CED23A5D450B579B5900760B, C0990FFB894752D1C178960AC68C31F0340F67524E022686E96E90B4C68B0ADF ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\ffbbb490c7bcd90033a916fa49552f05\Microsoft.PowerShell.Commands.Management.ni.dll
20:13:20.0017 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\ffbbb490c7bcd90033a916fa49552f05\Microsoft.PowerShell.Commands.Management.ni.dll - ok
20:13:20.0033 0x1214  [ 88DC525D49727B19154B40E3507226BB, 200640320BB20C285A56A18B8CD30FC98DA75B4B0811BC900F59D8E8CD613E79 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\c6a1a5652434df8bdd05f43c7c3a2a3e\Microsoft.PowerShell.Commands.Utility.ni.dll
20:13:20.0033 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\c6a1a5652434df8bdd05f43c7c3a2a3e\Microsoft.PowerShell.Commands.Utility.ni.dll - ok
20:13:20.0033 0x1214  [ A309A11FC7728A2D8F7C97F177C4272B, 42D99B1D9D9CFF7F9B47CE36FCA25E88ADE201E69F4DEBCB4F1B5D80F0F2F5ED ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\d289afd0386f308124f0c279e5b25e20\Microsoft.PowerShell.ConsoleHost.ni.dll
20:13:20.0033 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\d289afd0386f308124f0c279e5b25e20\Microsoft.PowerShell.ConsoleHost.ni.dll - ok
20:13:20.0033 0x1214  [ 3E0C186E5813A476CF8664794B1A82C4, DB0E91384CFFCCE78CF1EC8F5F374891B8053009FECE10BF0EAA07CC4DD1116F ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\329b0d46022c8b0c1ed291eee7d6537b\Microsoft.PowerShell.Editor.ni.dll
20:13:20.0033 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\329b0d46022c8b0c1ed291eee7d6537b\Microsoft.PowerShell.Editor.ni.dll - ok
20:13:20.0049 0x1214  [ 91901BE965A19F0FAAEB3887DCB6C511, 07762AE4D62DBC2D6332E0248EDB899CCAF365B9CD7AABE1FB6016CC22CEF0AF ] C:\Windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClient\64e04262842cfd72835ef3d5b7b61c4e\UIAutomationClient.ni.dll
20:13:20.0049 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClient\64e04262842cfd72835ef3d5b7b61c4e\UIAutomationClient.ni.dll - ok
20:13:20.0049 0x1214  [ 61DA7C1EEA91FE1064084CE579C57080, 9EBDD4D8464D1FBBA02D560E36DC6412741D261BF699DA5B13776DEE37E816FC ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\f271fc19508caa6e157148b319013386\Microsoft.PowerShell.GPowerShell.ni.dll
20:13:20.0049 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\f271fc19508caa6e157148b319013386\Microsoft.PowerShell.GPowerShell.ni.dll - ok
20:13:20.0049 0x1214  [ 56E175C7288F643350C758EF99608139, 80E8DACB227B7B09F5DC9F9DA3F1AF694D805691EDF9AB353B69B827BC7E638C ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\e3bc58d4a029052b721e053b316b2c75\Microsoft.PowerShell.GraphicalHost.ni.dll
20:13:20.0064 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\e3bc58d4a029052b721e053b316b2c75\Microsoft.PowerShell.GraphicalHost.ni.dll - ok
20:13:20.0064 0x1214  [ EA68E06B52E4F34FACE9E4565387C38D, 90F8AD2132F73445FE3FA76A9055FDD8AC002AA684309835562BE171504A19ED ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\ea0183fc2dc0220e33fa08cc8aea63ff\Microsoft.PowerShell.Security.ni.dll
20:13:20.0064 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\ea0183fc2dc0220e33fa08cc8aea63ff\Microsoft.PowerShell.Security.ni.dll - ok
20:13:20.0064 0x1214  [ 5C9B17D5B5555F854F6922435DE0B9ED, 20FBD238A18A29DA96EBC150BB73147E15AA110174F5172CF28FAB981BD55588 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\350126974fbb7dd954697762a2d60db1\Microsoft.Transactions.Bridge.Dtc.ni.dll
20:13:20.0064 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\350126974fbb7dd954697762a2d60db1\Microsoft.Transactions.Bridge.Dtc.ni.dll - ok
20:13:20.0080 0x1214  [ D9C2DA54947ACA2533EEF4A077F557B5, 31EF978930794102B3CB8C21ECB14BCD77840AD681B929844FAB10E6E99D2F91 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\739380acc8219fdfa59a260b0aca3fff\Microsoft.VisualBasic.ni.dll
20:13:20.0080 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\739380acc8219fdfa59a260b0aca3fff\Microsoft.VisualBasic.ni.dll - ok
20:13:20.0080 0x1214  [ F4ED13C0B0445052EA37ABE24F1B3EB7, 22A912D0EEFA340A30584DA7F558D516D35AE3FE0C4AD2F58BAE995A6E95C4DB ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\1416160d0e336fd882dde5598bf70eea\Microsoft.Windows.Diagnosis.Commands.GetDiagInput.ni.dll
20:13:20.0080 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\1416160d0e336fd882dde5598bf70eea\Microsoft.Windows.Diagnosis.Commands.GetDiagInput.ni.dll - ok
20:13:20.0080 0x1214  [ 9B079ED6646ECB349429C221E7135960, B5D812B1D452B4377EB8C076C394726D9B3812F2C86A08E88388C8C4E97AAB7E ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\1c40574a9edf61cd0bd2f88f82583883\Microsoft.Windows.Diagnosis.SDHost.ni.dll
20:13:20.0080 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\1c40574a9edf61cd0bd2f88f82583883\Microsoft.Windows.Diagnosis.SDHost.ni.dll - ok
20:13:20.0095 0x1214  [ BB2D8D87D917D3A94763E935388BBE84, FFDBE3E10B2E14DF961703884301BD18B5EC7CBD012A80C137BAD9756B0B4661 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\4279ee1cbfda684d773113dd968ad2c5\Microsoft.Windows.Diagnosis.Commands.WriteDiagProgress.ni.dll
20:13:20.0095 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\4279ee1cbfda684d773113dd968ad2c5\Microsoft.Windows.Diagnosis.Commands.WriteDiagProgress.ni.dll - ok
20:13:20.0095 0x1214  [ 7B3C86914609C7DC619A583D3027F153, 28005CE3FBD6F5DCE7680D1831C488AF8EB6E82230685D31CE1084598FD6C01C ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\0830cf7580b3c24110fb8f85921716c9\Microsoft.Windows.Diagnosis.SDEngine.ni.dll
20:13:20.0095 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\0830cf7580b3c24110fb8f85921716c9\Microsoft.Windows.Diagnosis.SDEngine.ni.dll - ok
20:13:20.0111 0x1214  [ C4C9C1DF0EF6718777B7C90FCD12FC3A, 806EDF7C7F7FEC88420D64829DFFDE48205167BCEE3434595FDEA80A0DF5FA1F ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\27d142d3d0451d5c0aa452d805d3833e\Microsoft.Windows.Diagnosis.TroubleshootingPack.ni.dll
20:13:20.0111 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\27d142d3d0451d5c0aa452d805d3833e\Microsoft.Windows.Diagnosis.TroubleshootingPack.ni.dll - ok
20:13:20.0111 0x1214  [ E9D597BE7426150464E0729EEAFC9E73, F97AEDB04512E6DF508D09FEC7A40982D2BD0B9BA7BE90566C58BBFD944304A2 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.WSMan.Man#\aff338a500eb0a16d6d6f4a70d857f4f\Microsoft.WSMan.Management.ni.dll
20:13:20.0111 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.WSMan.Man#\aff338a500eb0a16d6d6f4a70d857f4f\Microsoft.WSMan.Management.ni.dll - ok
20:13:20.0111 0x1214  [ 83DF3BBDCA7B65A8E7E298932AC557EF, 35B751DFAD6954F928CD472C3BAA1AEE0A7974595BF8774FB524D16365F1D76A ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.WSMan.Run#\aad6ebc1ed349a94adfb2494ca72f930\Microsoft.WSMan.Runtime.ni.dll
20:13:20.0111 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.WSMan.Run#\aad6ebc1ed349a94adfb2494ca72f930\Microsoft.WSMan.Runtime.ni.dll - ok
20:13:20.0127 0x1214  [ 4EAFBA56838E586CB59D6B1A83A1D3F6, 6D85641C49056256B118C7203D30C1F41C56447668ECF59DF9B5CA29071AD513 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\MMCEx\b4cc9036e5d03b23e835f801a46ff39b\MMCEx.ni.dll
20:13:20.0127 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\MMCEx\b4cc9036e5d03b23e835f801a46ff39b\MMCEx.ni.dll - ok
20:13:20.0127 0x1214  [ A7BDE55900D38EBC9683E1FB3EB2ABD7, 3E46B962160789C12FC4208470A5C3E2E8808F0E61C1C33BC752264FE9B2DC19 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\MSBuild\63f99b1c09b33a91e46c2a47845c3c1c\MSBuild.ni.exe
20:13:20.0127 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\MSBuild\63f99b1c09b33a91e46c2a47845c3c1c\MSBuild.ni.exe - ok
20:13:20.0142 0x1214  [ A9CB956845BF1EFB622007763976E57E, 9A73A49A181536CFD9AF0BE2A7435E32F89AEB8FA1D16992E6B9223F9D8A6DC8 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\napcrypt\1726776ba910373334f76d9a13ea13ce\napcrypt.ni.dll
20:13:20.0142 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\napcrypt\1726776ba910373334f76d9a13ea13ce\napcrypt.ni.dll - ok
20:13:20.0142 0x1214  [ C1218ECACD3706769CF09D4765A1F0DB, 5B397BF4C9A935D9936BDF0C346A7663B2BC4480F852E6E0B2AA9CB81EB256FF ] C:\Windows\assembly\NativeImages_v2.0.50727_32\naphlpr\e2ef8c37d5e0c31a4207659e3a946764\naphlpr.ni.dll
20:13:20.0142 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\naphlpr\e2ef8c37d5e0c31a4207659e3a946764\naphlpr.ni.dll - ok
20:13:20.0142 0x1214  [ DB9D945C16EE44A7B72C6D038059C5E7, 5C3BA5F8647D9749038D86768AD9D63953876A3605C11CEA820DAA2D37062D1A ] C:\Windows\assembly\NativeImages_v2.0.50727_32\napinit\acdd539d4af72a63847c697a6917f8c1\napinit.ni.dll
20:13:20.0142 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\napinit\acdd539d4af72a63847c697a6917f8c1\napinit.ni.dll - ok
20:13:20.0158 0x1214  [ F04EE517C65853A0A3715BC9C670B2A8, F8FE6E085CF7F908DD4D400CA51FDE9CEA92CCB1AD8296105E35C8EF4ADADE89 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\napsnap\ece73f76c69086b51b42680e66145daa\napsnap.ni.dll
20:13:20.0158 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\napsnap\ece73f76c69086b51b42680e66145daa\napsnap.ni.dll - ok
20:13:20.0158 0x1214  [ E7033A7205A0056397DEEDA8AF66F66F, 49DBC88B75C16F28D3C55B8DB6C58B11AB091ACC9F4C0F0CFC2B6EE02C96C7B0 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\Narrator\3aafcd2714fd4029e6b601164dc317b8\Narrator.ni.exe
20:13:20.0158 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\Narrator\3aafcd2714fd4029e6b601164dc317b8\Narrator.ni.exe - ok
20:13:20.0173 0x1214  [ E0285B50B7EACD19D3FFC07C1A138ED3, D4321A51A03FEF2B3C804BAAD3914897337318EDE7B61AD62E46948ED4C309E4 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationBuildTa#\8fc8d86b653828989857621aad6c0d6b\PresentationBuildTasks.ni.dll
20:13:20.0173 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationBuildTa#\8fc8d86b653828989857621aad6c0d6b\PresentationBuildTasks.ni.dll - ok
20:13:20.0173 0x1214  [ 6DBFD941E2A3E9B98C8308B21FFBFF13, B97E0CCA0E407CEE7B5BB94D85E99C77FC84EEF656031DFB3465821DFF9D6B8D ] C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFontCac#\84928502ce977528a634a248dc38a3ac\PresentationFontCache.ni.exe
20:13:20.0173 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFontCac#\84928502ce977528a634a248dc38a3ac\PresentationFontCache.ni.exe - ok
20:13:20.0173 0x1214  [ 0EDF0F399B472A6F6774C40E7A1FEA68, D8597181CE9F66CDB828C2F908D1773D9C92362D7403CD734D2F2864060CB598 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\SMSvcHost\ae1dc677421e5750e86f7c1df12d4a6d\SMSvcHost.ni.exe
20:13:20.0173 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\SMSvcHost\ae1dc677421e5750e86f7c1df12d4a6d\SMSvcHost.ni.exe - ok
20:13:20.0189 0x1214  [ 18FFD44B6695DE8619FCEDA244BF6522, 0ED966674B8ACF1859517A2FFDDC26A25CFBC13DC4486E366255C356BA7A999E ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.AddIn\f1fde646ec54c188b4fcf574514debe4\System.AddIn.ni.dll
20:13:20.0189 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.AddIn\f1fde646ec54c188b4fcf574514debe4\System.AddIn.ni.dll - ok
20:13:20.0189 0x1214  [ D6EAF3DA2BB15A64CEE6D63F103638AB, D6BF14879E380A59CE2C045136CA2B4E580083C9E36DDE646A9049D69427F588 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.AddIn.Contra#\9870b082f402e75d9805f6f40fcbcc43\System.AddIn.Contract.ni.dll
20:13:20.0189 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.AddIn.Contra#\9870b082f402e75d9805f6f40fcbcc43\System.AddIn.Contract.ni.dll - ok
20:13:20.0205 0x1214  [ 9EB3C825EEEB1EB9DDF1CCD348BC1775, 1A93483FE166169CA5EB63BAD14A31124DFE813778031605948D69DBCE5355DD ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ComponentMod#\061f84e5e645f347ac66967b4426fd66\System.ComponentModel.DataAnnotations.ni.dll
20:13:20.0205 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ComponentMod#\061f84e5e645f347ac66967b4426fd66\System.ComponentModel.DataAnnotations.ni.dll - ok
20:13:20.0205 0x1214  [ 7CF779C1A89004EF37DE5A7D256D533E, E6D2F5BCD6056BC590BCC8D926A6D8471E1CE2BABFBFC86ABAE380409F038485 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data.DataSet#\b97ec03dfb7d61aeec95d146e6d715df\System.Data.DataSetExtensions.ni.dll
20:13:20.0205 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data.DataSet#\b97ec03dfb7d61aeec95d146e6d715df\System.Data.DataSetExtensions.ni.dll - ok
20:13:20.0205 0x1214  [ 810C5CCC45EDB778606A632E8633A365, 66FCCCE0897C06B89CB1886348B33AA5783C5C1EF4DC70CCC658B0FC51CFA10F ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity\3653b20e2c55d2a01eca2600eb18f538\System.Data.Entity.ni.dll
20:13:20.0205 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity\3653b20e2c55d2a01eca2600eb18f538\System.Data.Entity.ni.dll - ok
20:13:20.0220 0x1214  [ E6B29031D01E7F14AD746C8DBF36B877, 6A5B2035F33A7D9FCE3D3F4E92AE6DC122473675D131865B71A5C776D2A0C585 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity.#\598d446d3fdf779dda463e91189041fb\System.Data.Entity.Design.ni.dll
20:13:20.0220 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity.#\598d446d3fdf779dda463e91189041fb\System.Data.Entity.Design.ni.dll - ok
20:13:20.0220 0x1214  [ 8EC104168EAC47A77437FBCD8039527E, 16AEFC904E841DF979549788722E072C46D6065F3A3B48BED85E14D3FB8737A8 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data.Linq\82ca28c1aa3df875fbc20be9a2823b2e\System.Data.Linq.ni.dll
20:13:20.0220 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data.Linq\82ca28c1aa3df875fbc20be9a2823b2e\System.Data.Linq.ni.dll - ok
20:13:20.0220 0x1214  [ 1C5CDAE8C9BED603532F90AAA26B31FC, 2A207F9BAE0BAC497CB864E1D62403328FF1DBC500DA7F8910B7AF7943752B11 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml.Linq\489ed8d8b963cb4a46247f76564e27e1\System.Xml.Linq.ni.dll
20:13:20.0220 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml.Linq\489ed8d8b963cb4a46247f76564e27e1\System.Xml.Linq.ni.dll - ok
20:13:20.0236 0x1214  [ BDF75108C1AC366AD334545D505521D8, BFBB78148E1D52038223F2FC22B53836CBABC4DA22427D03E8CB6EB3DEC7168E ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data.Services\aa7791b50900576c0b7ddbe6a0f3eb3f\System.Data.Services.ni.dll
20:13:20.0236 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data.Services\aa7791b50900576c0b7ddbe6a0f3eb3f\System.Data.Services.ni.dll - ok
20:13:20.0236 0x1214  [ B310CA031CFCBB6FAC0F1BB13FA42B96, 1E164EFE0389B7BD5BD27B196A00C7AC74E704C70C29E7DBB0FFD4157556F589 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel#\0a6daf2994087a446c81c459c0a31b3f\System.ServiceModel.Web.ni.dll
20:13:20.0236 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel#\0a6daf2994087a446c81c459c0a31b3f\System.ServiceModel.Web.ni.dll - ok
20:13:20.0251 0x1214  [ 4AAD9814F789E654C2BCC371C5EE6C75, 0B2440B9DC85630BF4EF69FF4C4F2D4DDC238FEE6E4E6570320A328FE6479DDD ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.Abstract#\f016789299974c32183ff3a5ad8f7978\System.Web.Abstractions.ni.dll
20:13:20.0251 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.Abstract#\f016789299974c32183ff3a5ad8f7978\System.Web.Abstractions.ni.dll - ok
20:13:20.0251 0x1214  [ 6FBE917E30329265A2C3AF179F40ABB7, 7AE730BC419DD2B7B20AE7FE0ED3596735AFB81FDDDE6056A55089BC2A16AEAB ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\64770182673bb8053394baf65679e13f\System.Web.Extensions.ni.dll
20:13:20.0251 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\64770182673bb8053394baf65679e13f\System.Web.Extensions.ni.dll - ok
20:13:20.0251 0x1214  [ C7AA76E13CF364ADC18A0EB80F8BD9CA, 074FA2A4EC1C7FDD07BDB999AB451344F17EA48EA3C39B80890363016B4BF079 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\6566e9fa72071c09759f69317d5f5410\System.Data.Services.Client.ni.dll
20:13:20.0251 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\6566e9fa72071c09759f69317d5f5410\System.Data.Services.Client.ni.dll - ok
20:13:20.0267 0x1214  [ 5FDC7419E15598E8A09988076E24CC30, 927419A1A068D6D512C52F46F967D6439F3026DE69425B8725E46A3EE8D29C5B ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\db89b7631eaf2ee93de725df320e0132\System.Data.Services.Design.ni.dll
20:13:20.0267 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\db89b7631eaf2ee93de725df320e0132\System.Data.Services.Design.ni.dll - ok
20:13:20.0267 0x1214  [ 7448ECD31A62B46CFE9C2C29289F7CCD, FE31F7BB2423DEB1C06871B93658490EDBA7AA7D0F087D5575BFD2A8754454D0 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\66cb4cc26223a7eb7dca0bbe10b2961e\System.DirectoryServices.AccountManagement.ni.dll
20:13:20.0267 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\66cb4cc26223a7eb7dca0bbe10b2961e\System.DirectoryServices.AccountManagement.ni.dll - ok
20:13:20.0283 0x1214  [ D5AB0744C7345A008BCC2E70C00B2C00, AF5A87F9B51E4E5970DAD70751B6B31BB57A2FA4BB065309D8163732EE34FD56 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.IO.Log\9bbf4deab9e08be4758fe0d57ad7ad9e\System.IO.Log.ni.dll
20:13:20.0283 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.IO.Log\9bbf4deab9e08be4758fe0d57ad7ad9e\System.IO.Log.ni.dll - ok
20:13:20.0283 0x1214  [ 375D2E8D05C82155371C847EA0D023C8, C2271930151AF90F813755762C315B8AE04004A6D647F170F9F61E509DD705D1 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management.I#\eec024094aa5472a824d3254a2a971d5\System.Management.Instrumentation.ni.dll
20:13:20.0283 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management.I#\eec024094aa5472a824d3254a2a971d5\System.Management.Instrumentation.ni.dll - ok
20:13:20.0283 0x1214  [ 6C333AEE35076EED64EF3341BB180DD6, 7FB13116586CAFD4F01A5A1FDBEA8EA9F28E193CDEDB79301DFAEB04596F1892 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Net\33761af65d4ea4a1b5eb8365bdc33355\System.Net.ni.dll
20:13:20.0283 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Net\33761af65d4ea4a1b5eb8365bdc33355\System.Net.ni.dll - ok
20:13:20.0298 0x1214  [ BFF00E4511DD1025C559CFEE61D127B6, 33A6554525E5CFB9CE0EE91A9945553FCD63E62105CE7FD0672885FB864A0EA4 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Speech\35fa93a89bcff6593e85c8fc4bdadf19\System.Speech.ni.dll
20:13:20.0298 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Speech\35fa93a89bcff6593e85c8fc4bdadf19\System.Speech.ni.dll - ok
20:13:20.0298 0x1214  [ D3CD148570A8ED29F17C4DA4CAA4FB8C, 350F2CA1ACED41F461A38FE85331F5F7C855D35104CF235CC4906217642E24B5 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\sysglobl\22bc116e2be845000d66986c5d39d60c\sysglobl.ni.dll
20:13:20.0298 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\sysglobl\22bc116e2be845000d66986c5d39d60c\sysglobl.ni.dll - ok
20:13:20.0314 0x1214  [ 4B2E34D753BA72554CAFC6017797AA4B, 6F7B589982E11D66061418D62D93530AD6A58C80C3982E5564A31E00949A58BB ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.Routing\68a35ea242543a231dcdad690a10ee8f\System.Web.Routing.ni.dll
20:13:20.0314 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.Routing\68a35ea242543a231dcdad690a10ee8f\System.Web.Routing.ni.dll - ok
20:13:20.0314 0x1214  [ CB9F33F453DFE8C7C84741D28F8D4DCB, ECE82DB155D7F224CC6D60090E7C52CD1A19A30334BB694836992CAD7EE6FFA2 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\2ad9ba79aa566a620fd439476532e2a6\System.Web.DynamicData.ni.dll
20:13:20.0314 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\2ad9ba79aa566a620fd439476532e2a6\System.Web.DynamicData.ni.dll - ok
20:13:20.0314 0x1214  [ B8F60082C055433B5F4BE939B937D1CC, 99AF18B136154C2B7741CC32DECB5D3EB056BEA6C504B621DC6882A51C06B455 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\2b7c74a13acaca5badf638a50d3e8323\System.Web.DynamicData.Design.ni.dll
20:13:20.0314 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\2b7c74a13acaca5badf638a50d3e8323\System.Web.DynamicData.Design.ni.dll - ok
20:13:20.0329 0x1214  [ 9EA3BB165D8E41A0244EC78D6802E337, 4443E3E355CE4E5D58BFEB3069F99516B38DC0C875D34EB5124E3D4B9C6437F2 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity\8721e74036a190c7ee5c6e26bbbfc937\System.Web.Entity.ni.dll
20:13:20.0329 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity\8721e74036a190c7ee5c6e26bbbfc937\System.Web.Entity.ni.dll - ok
20:13:20.0329 0x1214  [ AD7337ACD93CA92C83C291FE452DE817, A0895775AC565FC6E7BC25EF38D1643F6D51E9F6A7FA1B823C1EBD4E6CACA796 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity.D#\24f930d4f948268c545fa90b2e711b05\System.Web.Entity.Design.ni.dll
20:13:20.0329 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity.D#\24f930d4f948268c545fa90b2e711b05\System.Web.Entity.Design.ni.dll - ok
20:13:20.0329 0x1214  [ 3931BD0CFDF4CB992CF28228701E69AB, E0DEE9E5A4A4B70296EDD92D28468FBA6278EA9DFBA9AF9C47FF5F7BD2FEDB8F ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\62d9ff1b3c1814d0864347fd1e29f944\System.Web.Extensions.Design.ni.dll
20:13:20.0329 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\62d9ff1b3c1814d0864347fd1e29f944\System.Web.Extensions.Design.ni.dll - ok
20:13:20.0345 0x1214  [ 576F4510582EE82FDE7D21179BACBD24, 86E81E6E0911CCDD34979C2363EC559642A6581DFC2F4EDBB1D612998D9A003A ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.Mobile\f7ae2bac68437ef7298237afe75d47d5\System.Web.Mobile.ni.dll
20:13:20.0345 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.Mobile\f7ae2bac68437ef7298237afe75d47d5\System.Web.Mobile.ni.dll - ok
20:13:20.0345 0x1214  [ B4AA0315229A6AA4B2159C84560B1205, 2EC50EB801793910D0572DF993743783F67902BBE93586FBEB28D3AD1E9DE2DA ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Pres#\7071d112d3a155d7315b918136e57e31\System.Windows.Presentation.ni.dll
20:13:20.0345 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Pres#\7071d112d3a155d7315b918136e57e31\System.Windows.Presentation.ni.dll - ok
20:13:20.0361 0x1214  [ 6209764225407EF36A115D588CBC512A, 7960DEF23E93425897FCD5BCE8C904EA4F42509CA4D2CF5029FBA6D391064CFC ] C:\Windows\assembly\NativeImages_v2.0.50727_32\System.WorkflowServ#\6f37384a806e11fd6651c9e71e547afe\System.WorkflowServices.ni.dll
20:13:20.0361 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\System.WorkflowServ#\6f37384a806e11fd6651c9e71e547afe\System.WorkflowServices.ni.dll - ok
20:13:20.0361 0x1214  [ 0F458A489EE83275BF235C1A2B3A7410, EB38F7E324044393E61BB9AB53275A1C0C14BDB4811469959F4CA7B95A6013EE ] C:\Windows\assembly\NativeImages_v2.0.50727_32\TaskScheduler\20da5361f4423683492b044b3c8b833a\TaskScheduler.ni.dll
20:13:20.0361 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\TaskScheduler\20da5361f4423683492b044b3c8b833a\TaskScheduler.ni.dll - ok
20:13:20.0361 0x1214  [ FF00FD0DB199B333F3F3A19359EB74D7, 7D352E508F09A75952D4CDD3FE85540789C18A92703DBECBC0812BD489E74424 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClients#\b77b240198373b9e1209d23803080e04\UIAutomationClientsideProviders.ni.dll
20:13:20.0361 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClients#\b77b240198373b9e1209d23803080e04\UIAutomationClientsideProviders.ni.dll - ok
20:13:20.0376 0x1214  [ 5CCB5A47D64A2D7CCA14A2BAC7CA4332, 42CA1410F8D85D03DA1378EC6FB07862AEA25397630C252BDE36EA8CC5BD45CA ] C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\3fa3407657018198e84da9777c43787f\WindowsFormsIntegration.ni.dll
20:13:20.0376 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\3fa3407657018198e84da9777c43787f\WindowsFormsIntegration.ni.dll - ok
20:13:20.0376 0x1214  [ F0FC653108FB9B31974E6F0CB97940F5, 4C41F1E8467EEC5FC421B620FE0CDEC08E71F7F84AD31026C79890207C86C6E5 ] C:\Windows\assembly\NativeImages_v2.0.50727_32\WsatConfig\3464e9d175d6669a70d8a4ea1ef78c92\WsatConfig.ni.exe
20:13:20.0376 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_32\WsatConfig\3464e9d175d6669a70d8a4ea1ef78c92\WsatConfig.ni.exe - ok
20:13:20.0392 0x1214  [ 0179C627254A044EFDE0FA7201975E5C, 02DDEEC3F09EDBB44E1DD3B5840CB66255D37D4B7F81B5761C6626190B9FCEA8 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Accessibility\41f367d59d6e08218cb255c8358ba745\Accessibility.ni.dll
20:13:20.0392 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\Accessibility\41f367d59d6e08218cb255c8358ba745\Accessibility.ni.dll - ok
20:13:20.0392 0x1214  [ BC2526AF85AC1F02F2A786E93B3E50B8, 1AD821A61E651C0A174C0D4CB721FF8B7963A426C3E8DE17516294EADEADA6A6 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\AspNetMMCExt\4f13f127d88113be2a908edefe7d1812\AspNetMMCExt.ni.dll
20:13:20.0392 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\AspNetMMCExt\4f13f127d88113be2a908edefe7d1812\AspNetMMCExt.ni.dll - ok
20:13:20.0392 0x1214  [ 96779239692D36436AA3D57E2A964199, 8B4B9C40050BE05D95437564E57A92B1F65BCABCCAF3F14F0FFB7D9C9E09DC11 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\ComSvcConfig\9fbc37674686bda19b761d589161eed7\ComSvcConfig.ni.exe
20:13:20.0392 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\ComSvcConfig\9fbc37674686bda19b761d589161eed7\ComSvcConfig.ni.exe - ok
20:13:20.0407 0x1214  [ 574CA5FD14DA06FEF8A7CCB6BF2A6B85, FCC3F9C9AECF731888978D1CAD8A1CC5724A57BDCA14B70324F2D576B114268D ] C:\Windows\assembly\NativeImages_v4.0.30319_32\dfsvc\4fc1196ce65b3aed68157c6882c1a690\dfsvc.ni.exe
20:13:20.0407 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\dfsvc\4fc1196ce65b3aed68157c6882c1a690\dfsvc.ni.exe - ok
20:13:20.0407 0x1214  [ 98FE42E433969594ED3815DFA0D47EC8, F771CAD2210821E0DECAD7E1C88A73E90C7700AF7CF127FBEB2FE6CF4FCED3A5 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\MSBuild\80efa7a7c695286565f5cc6c35c5dd40\MSBuild.ni.exe
20:13:20.0407 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\MSBuild\80efa7a7c695286565f5cc6c35c5dd40\MSBuild.ni.exe - ok
20:13:20.0423 0x1214  [ 5F98B3AF31ECA8822D454103E834D1A1, 5C376894AD85582137271692D943114C24071D3E02A2DC3AFE1994770734D4E9 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Build.Fra#\8d43ff436a27ed3ba2a394fff0d1de28\Microsoft.Build.Framework.ni.dll
20:13:20.0423 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Build.Fra#\8d43ff436a27ed3ba2a394fff0d1de28\Microsoft.Build.Framework.ni.dll - ok
20:13:20.0423 0x1214  [ 2C57A8D21869CB253E57F5CFAC3C3DF0, B1389BF1CBF73895C842C24A33B493E5DD6649D3E337575BD650C73F4892A20E ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\1020f9a73fbb2f4b1f0250bac278bfa4\System.Xaml.ni.dll
20:13:20.0423 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\1020f9a73fbb2f4b1f0250bac278bfa4\System.Xaml.ni.dll - ok
20:13:20.0423 0x1214  [ B492DCE7BB973E6F58E50F6008714192, 4A4F8C9A9591CA77DB8E5BD34C47964709732A6A6F1BE075E81A472A989BB6E4 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Build\606070745b565cb07320441fb51812b0\Microsoft.Build.ni.dll
20:13:20.0423 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Build\606070745b565cb07320441fb51812b0\Microsoft.Build.ni.dll - ok
20:13:20.0439 0x1214  [ 228C43A6AE5CAD4719AD12D1A898545D, 33C97A713080DFB6B143397FE55B5C139EF353CD52ED5F5D8FC7F7D2A097DBCC ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Build.Eng#\9a201031bdfd9020cba77ceedef314ca\Microsoft.Build.Engine.ni.dll
20:13:20.0439 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Build.Eng#\9a201031bdfd9020cba77ceedef314ca\Microsoft.Build.Engine.ni.dll - ok
20:13:20.0439 0x1214  [ 3E0CE5FCDEC0123743683B508D9A3719, E1D9717F0BFF66FAC40BE849EAAC927174025CB34630C543EAACA89963E39FAE ] C:\Windows\assembly\NativeImages_v4.0.30319_32\SMSvcHost\b1f8283921f1ea0c69946bb7f0c7ac46\SMSvcHost.ni.exe
20:13:20.0439 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\SMSvcHost\b1f8283921f1ea0c69946bb7f0c7ac46\SMSvcHost.ni.exe - ok
20:13:20.0454 0x1214  [ 8BDDBD3A1A97819EAD49C8EB91693651, 87865E8C2A264BD7FD7466901ABBC63FABCC5F7ADC7C82CADD4CBF46A0309401 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\WsatConfig\9511a4bdd13548e0ac26e66649767426\WsatConfig.ni.exe
20:13:20.0454 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\WsatConfig\9511a4bdd13548e0ac26e66649767426\WsatConfig.ni.exe - ok
20:13:20.0454 0x1214  [ 128784E0C49A8E22C1F4E64F21D24F2E, C320C59F550961F5ABBFE9E4F7EA57CDC1E6E246476EBC5AFC3FAC8AF708493C ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Build.Con#\03402e2e22e3413c59fb9a9f9dbf5fb6\Microsoft.Build.Conversion.v4.0.ni.dll
20:13:20.0454 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Build.Con#\03402e2e22e3413c59fb9a9f9dbf5fb6\Microsoft.Build.Conversion.v4.0.ni.dll - ok
20:13:20.0454 0x1214  [ 75F5CBC712FC3440CA41CB88F5D73759, A27C5AF9367822B07C4B7D3107E3AB17DFED7FB48EA9D3D8B458FE3A4D336543 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Build.Tas#\5b02a0f34c7f153f77e5e0bf7b2bdb5a\Microsoft.Build.Tasks.v4.0.ni.dll
20:13:20.0454 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Build.Tas#\5b02a0f34c7f153f77e5e0bf7b2bdb5a\Microsoft.Build.Tasks.v4.0.ni.dll - ok
20:13:20.0470 0x1214  [ 2E29579D18EF273C6D42651CC22B255D, 93B8D0F6497A84AA449E9F0985A7EF6695AFFB367C19A0192B9FA414EE1567B6 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Build.Uti#\f2e0ecd72995e8f09b0b86809478f811\Microsoft.Build.Utilities.v4.0.ni.dll
20:13:20.0470 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Build.Uti#\f2e0ecd72995e8f09b0b86809478f811\Microsoft.Build.Utilities.v4.0.ni.dll - ok
20:13:20.0470 0x1214  [ 668688097C51FD43DEF5E4A8D2B6EBC4, 6FC5CCBD71EFEAB2E698D8FB990CEF9707333180AFA164DB7B8BE3F2D0AFC36A ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\cf8098212d668665b310e1a453408cfd\System.Runtime.Serialization.Formatters.Soap.ni.dll
20:13:20.0470 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\cf8098212d668665b310e1a453408cfd\System.Runtime.Serialization.Formatters.Soap.ni.dll - ok
20:13:20.0470 0x1214  [ E5188755F44314E9A01D364FAB75F287, 8CC5A35032E08AFD2AD31C0ACD46AD7FD4430B6B545D92B175EB076483240B98 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Deployment\42282317cec408820fcb0f73ce4d2741\System.Deployment.ni.dll
20:13:20.0470 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Deployment\42282317cec408820fcb0f73ce4d2741\System.Deployment.ni.dll - ok
20:13:20.0485 0x1214  [ 8AEC8124C9E569B7339A8B330738CE26, 5D0A6C774725DFC3518C6331AB4B9AFD22C359D4848C473234E034EAB7BB1120 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Transacti#\7d09d95bbe68c343dba06eea6ccf4d8d\Microsoft.Transactions.Bridge.ni.dll
20:13:20.0485 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Transacti#\7d09d95bbe68c343dba06eea6ccf4d8d\Microsoft.Transactions.Bridge.ni.dll - ok
20:13:20.0485 0x1214  [ 34B65960278C1493E3AB2F8D72B07955, 77F906867989DEBB4657F4CB3F250FF8579560877117A29ACB8396A332426261 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Transacti#\43ce6d87da444b76ab1eb6cf526024ac\Microsoft.Transactions.Bridge.Dtc.ni.dll
20:13:20.0485 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Transacti#\43ce6d87da444b76ab1eb6cf526024ac\Microsoft.Transactions.Bridge.Dtc.ni.dll - ok
20:13:20.0501 0x1214  [ 990E9A1D19E02A10B0FF1E511BF78AE3, 9DE7EF7D18B6C11BB0A5E557D356BB5959ACD92FDD3758ED46DDB22C9F279710 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualBas#\c363c062ff408d75fe93417b07d7bdae\Microsoft.VisualBasic.ni.dll
20:13:20.0501 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualBas#\c363c062ff408d75fe93417b07d7bdae\Microsoft.VisualBasic.ni.dll - ok
20:13:20.0501 0x1214  [ 9AD8587A42BB52487346F42FE441329E, 7E0484DF04AB0F48E1DCB66C4FDA25309315CF407312807D4DDDB1C23FE36D38 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualBas#\693b5ce93d8ff4e102bc42dca9278853\Microsoft.VisualBasic.Activities.Compiler.ni.dll
20:13:20.0501 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualBas#\693b5ce93d8ff4e102bc42dca9278853\Microsoft.VisualBasic.Activities.Compiler.ni.dll - ok
20:13:20.0501 0x1214  [ D44C19D7CE37ACC809774A8DE65AB5F0, 936FAE53AAA980775E16C03C1211716DB1649451D3156ACBA1281C0485B1D61F ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualBas#\81b854019d70cd1a4962920150a2ca5e\Microsoft.VisualBasic.Compatibility.ni.dll
20:13:20.0501 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualBas#\81b854019d70cd1a4962920150a2ca5e\Microsoft.VisualBasic.Compatibility.ni.dll - ok
20:13:20.0517 0x1214  [ A13C55E5917B7CB614D6A05BA5DDC039, E013A5BE89C86FCA33734187254547097BC8A59B69B086F9C1DB120C0BD6BA2D ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualBas#\b30e340374783810587ef17e993704e6\Microsoft.VisualBasic.Compatibility.Data.ni.dll
20:13:20.0517 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualBas#\b30e340374783810587ef17e993704e6\Microsoft.VisualBasic.Compatibility.Data.ni.dll - ok
20:13:20.0517 0x1214  [ E31443D57DDCC5E5EC2AB96E7BA72B50, CDE7D0431FC72A80AE5182FC1C40DF7B3A0ED4BCEF5B36CA4A45197D8356CE19 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Workflow.#\d02b23aa070a0ed01f64d83d80645bb2\Microsoft.Workflow.Compiler.ni.exe
20:13:20.0517 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Workflow.#\d02b23aa070a0ed01f64d83d80645bb2\Microsoft.Workflow.Compiler.ni.exe - ok
20:13:20.0532 0x1214  [ 5AC01E1FA7F9B15A1A9B0368EEE64F95, 01967ABD5CF88AC4883750DCAF99C2C969F804D4275E46F724B6011FAAD89D66 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationBuildTa#\e927b3ebc954d012d4620b98a84013c2\PresentationBuildTasks.ni.dll
20:13:20.0532 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationBuildTa#\e927b3ebc954d012d4620b98a84013c2\PresentationBuildTasks.ni.dll - ok
20:13:20.0532 0x1214  [ FDF3B43078AF411FC88681B362860F0E, D57A424D623508F995AB95BDE6A5B3E9A42D2B22B36A43A295CA19FBCF9ECF23 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationUI\1c758ef0b6ebb0ff61cbb7eb453e3d92\PresentationUI.ni.dll
20:13:20.0532 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationUI\1c758ef0b6ebb0ff61cbb7eb453e3d92\PresentationUI.ni.dll - ok
20:13:20.0532 0x1214  [ 5C1596892511CF19B0A0C8DE05B4A5F9, 9E25244B823C5397BCF6C1B00FA626129A730EFB51543E55287C0BEA2E2F1EEC ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml.Linq\a5551d7a7c53354ac1244d607a5e5cb6\System.Xml.Linq.ni.dll
20:13:20.0532 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml.Linq\a5551d7a7c53354ac1244d607a5e5cb6\System.Xml.Linq.ni.dll - ok
20:13:20.0548 0x1214  [ 9C7DE0A61E21E42441FFCF0FD9ACD637, 13296F23190DA128DEF9740EAE662CF587C3685A48751F3E441F08C83DC94D7F ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\51a34f090b182e523c32032468ccc5d5\System.Runtime.Serialization.ni.dll
20:13:20.0548 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\51a34f090b182e523c32032468ccc5d5\System.Runtime.Serialization.ni.dll - ok
20:13:20.0548 0x1214  [ B5727926DE9CC8FBD486503ECFEDA04A, 5C45554536F10C4012CAC2FF1CF9FA80AFF821BEE463929C537CE026D4EE3B48 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\SMDiagnostics\71d42a05adb082273d19adc1c070fc9c\SMDiagnostics.ni.dll
20:13:20.0548 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\SMDiagnostics\71d42a05adb082273d19adc1c070fc9c\SMDiagnostics.ni.dll - ok
20:13:20.0548 0x1214  [ 7DC3AA267779A6A5380DAF66C808A2FA, CD34F79E767B906A990714FB05A0E7FCCD1DF11C59434D0D2801E576F49C3FC5 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Dura#\46c89b7b1e2018fd760074342721b5f6\System.Runtime.DurableInstancing.ni.dll
20:13:20.0548 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Dura#\46c89b7b1e2018fd760074342721b5f6\System.Runtime.DurableInstancing.ni.dll - ok
20:13:20.0563 0x1214  [ FA230AE5FD9CD3B41D32DA2E5B085033, 5FB4C048E227FB38EF4E9E5B181EB96D9127E7CFB435B438319CA7F442D2FC47 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.DirectorySer#\32078ef3c99e828111c4767ec5635185\System.DirectoryServices.ni.dll
20:13:20.0563 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.DirectorySer#\32078ef3c99e828111c4767ec5635185\System.DirectoryServices.ni.dll - ok
20:13:20.0563 0x1214  [ 5CC40B723F3F15181ED81927F770C9E5, 78FD884602A4304A322A57E5FD6DFC82473CFEF7685232E87921DD15DFA369CD ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Remo#\27edf250e477e330a76147d47721c76a\System.Runtime.Remoting.ni.dll
20:13:20.0563 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Remo#\27edf250e477e330a76147d47721c76a\System.Runtime.Remoting.ni.dll - ok
20:13:20.0579 0x1214  [ BA83DD4ABDB1DBE27C468F7394984AFD, BDE29F4D315FF8BA9FB862C0D3B9D3900A00174B53798436254B83AE8465F0BD ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web\d4110a04459804d62be5747a59ec0f6e\System.Web.ni.dll
20:13:20.0579 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web\d4110a04459804d62be5747a59ec0f6e\System.Web.ni.dll - ok
20:13:20.0579 0x1214  [ 4C6BA71434CEF809D3F04BC52EE7763B, 02898965D1A6AD2E8AAEDD70C3AEAF6DE8F6D26D63419FEC461B5220768DA78E ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Cach#\24b2fbf8f90313a6bbf569e50852abfc\System.Runtime.Caching.ni.dll
20:13:20.0579 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Cach#\24b2fbf8f90313a6bbf569e50852abfc\System.Runtime.Caching.ni.dll - ok
20:13:20.0579 0x1214  [ CBF8E7CBF7488038E59D2A97E0F64853, FF02CFA5564C780DD16D88523D5E0DE5ECB3252FD861BEE97C7C026ECC310455 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.Applicat#\7923590756f82d822810a5a590e4a7cf\System.Web.ApplicationServices.ni.dll
20:13:20.0579 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.Applicat#\7923590756f82d822810a5a590e4a7cf\System.Web.ApplicationServices.ni.dll - ok
20:13:20.0595 0x1214  [ 371F76D9D52C57B807543D5A12046E7F, 990D5CAF1EA4E7BC4D84F9D0B995AB452414864B5C5D7DD514FE8C7CCDDAEED8 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.Services\629a16264236cbf06d1f7254fcb23587\System.Web.Services.ni.dll
20:13:20.0595 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.Services\629a16264236cbf06d1f7254fcb23587\System.Web.Services.ni.dll - ok
20:13:20.0595 0x1214  [ 4E958D3BD509E6C0E750E2D9FC2AB8D6, F1C28E2AAE4CAF69071DBA555848014DCA5568634D4AB5C3262E83ABFF4960C1 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data.OracleC#\19efa1aa15cf8212cd1cbb453627f2a8\System.Data.OracleClient.ni.dll
20:13:20.0595 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data.OracleC#\19efa1aa15cf8212cd1cbb453627f2a8\System.Data.OracleClient.ni.dll - ok
20:13:20.0610 0x1214  [ 1971D07917D7463880950F863D710BDD, 08A92B917F401FEBBCD3CEB2BC008FAC0E91DB4A5E364D506C2F4ACD5BE10566 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.RegularE#\ecae1631c75c66037104eecebdb677aa\System.Web.RegularExpressions.ni.dll
20:13:20.0610 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.RegularE#\ecae1631c75c66037104eecebdb677aa\System.Web.RegularExpressions.ni.dll - ok
20:13:20.0610 0x1214  [ 03E1CCFBFE7CD3FB24AA24FA1B256A74, 983EFCFAE33E33514CB243D621AC9FA5BF204DD51BF6756907C8C0F9F9752640 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.DirectorySer#\41f2d425aac5c45b465e9b7d0b00dbaf\System.DirectoryServices.Protocols.ni.dll
20:13:20.0610 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.DirectorySer#\41f2d425aac5c45b465e9b7d0b00dbaf\System.DirectoryServices.Protocols.ni.dll - ok
20:13:20.0610 0x1214  [ 01AF206F79D590103506A3D1F6FE0F04, 28FCD3F659D9B700E89926E6F6F91E09DAD8939B950DC94C876E0FA489FC1A15 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceProce#\84f85748a9e98c8111ec15b7340ab065\System.ServiceProcess.ni.dll
20:13:20.0610 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceProce#\84f85748a9e98c8111ec15b7340ab065\System.ServiceProcess.ni.dll - ok
20:13:20.0626 0x1214  [ 451DF1D94EE371B83C5C5C0F2CC71A0F, B37E1BC06B433343C71549731AFBB41052B7EDD32041528FC71B4BBC875E3A2B ] C:\Windows\assembly\NativeImages_v4.0.30319_32\UIAutomationProvider\8436291711b287f36ebbdec79908ece4\UIAutomationProvider.ni.dll
20:13:20.0626 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\UIAutomationProvider\8436291711b287f36ebbdec79908ece4\UIAutomationProvider.ni.dll - ok
20:13:20.0626 0x1214  [ FD64270B8B2CB8C9D6E77B5E53B62B51, 2B22CF4032E4541CD73F81C9CA859125268DE037640A9016C1BE2704A0467143 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\UIAutomationTypes\5a52274d6062be7f85d52ea0ef79a56c\UIAutomationTypes.ni.dll
20:13:20.0626 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\UIAutomationTypes\5a52274d6062be7f85d52ea0ef79a56c\UIAutomationTypes.ni.dll - ok
20:13:20.0641 0x1214  [ AFB21F4EC79C3CE945518600E4B22656, AF690282CD8A665F6EEC63671256CF193FBFA3831BC2AA4B06C62B653ECD72BC ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Inpu#\06a6e4051856033e64cfb75dfddcfe35\System.Windows.Input.Manipulations.ni.dll
20:13:20.0641 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Inpu#\06a6e4051856033e64cfb75dfddcfe35\System.Windows.Input.Manipulations.ni.dll - ok
20:13:20.0641 0x1214  [ 17601D7D2F13E9EA668F2D1BAA0689F1, 59DD502348F36A8958FA2633E208305F928F84DAEE32FDCC4CAF67D615A98EAA ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Printing\7db3fe95d68854fbdc34c4b7051770f3\System.Printing.ni.dll
20:13:20.0641 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Printing\7db3fe95d68854fbdc34c4b7051770f3\System.Printing.ni.dll - ok
20:13:20.0641 0x1214  [ 448A60D36A6EB639F434C62426C97D20, CDFBBBCF7085930061F105AF614369200286F4E09E2700D382D00A4D441E0C1C ] C:\Windows\assembly\NativeImages_v4.0.30319_32\ReachFramework\a636def42f4dff201b0fa74611d95186\ReachFramework.ni.dll
20:13:20.0641 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\ReachFramework\a636def42f4dff201b0fa74611d95186\ReachFramework.ni.dll - ok
20:13:20.0657 0x1214  [ 8B3BEDB6D93627F3AC3EF2B604B45E99, 757A92B8B3AEC61A4C0FB345AD4329B5E7C4D00A2CA248B19B024107C517C4B7 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Activities\949e4a0ee93b657bb2f64b8d1b7eda51\System.Activities.ni.dll
20:13:20.0657 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Activities\949e4a0ee93b657bb2f64b8d1b7eda51\System.Activities.ni.dll - ok
20:13:20.0657 0x1214  [ 2DC4A89E5CB8C7F9A8DA4340F0C37C40, DCBC55FCDD95D76CDA6F5CE3F571F5AE7EE6FA5E9B8B77D28D2B1A080F2CA96C ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Activities.C#\1f2a769a079f3e352853320bebb4a896\System.Activities.Core.Presentation.ni.dll
20:13:20.0657 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Activities.C#\1f2a769a079f3e352853320bebb4a896\System.Activities.Core.Presentation.ni.dll - ok
20:13:20.0657 0x1214  [ C9214FC1773E2378EAF834BACC1A2F91, 383FE4FBEDD2BE8E4C11F8F0F006CD672EE1A6977AF4DCAD20E1616228BB947A ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Activities.D#\5acf064ba0bcce5135dc0630cfe9072a\System.Activities.DurableInstancing.ni.dll
20:13:20.0657 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Activities.D#\5acf064ba0bcce5135dc0630cfe9072a\System.Activities.DurableInstancing.ni.dll - ok
20:13:20.0673 0x1214  [ 7F9509A1BB8B0F5C335A485D71A3FA8E, 729034EE246C5384F787BAF05436517EBF5244B7F3A8F1B6B523F66449DEA647 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Activities.P#\9ae599f7148964b1d3d40f33140c955b\System.Activities.Presentation.ni.dll
20:13:20.0673 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Activities.P#\9ae599f7148964b1d3d40f33140c955b\System.Activities.Presentation.ni.dll - ok
20:13:20.0673 0x1214  [ 81BA7FAF2F9E3B939769AC089B63A604, 6DC13B3152EF8C35EE29941857CFC4CD03C1AF83B72BB22AC2D62C40FA2B17F9 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.AddIn\ef868d45785532b8bce104759a465187\System.AddIn.ni.dll
20:13:20.0673 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.AddIn\ef868d45785532b8bce104759a465187\System.AddIn.ni.dll - ok
20:13:20.0688 0x1214  [ 219C349A05575E21AAD298FFB17F76B9, 8B00BFBEFDA0B77A1F5C0EB5492D543BECB65EE3B49921E9622E9CC6594D972B ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.AddIn.Contra#\8b85e727141a9fe6a68e692cfa082a48\System.AddIn.Contract.ni.dll
20:13:20.0688 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.AddIn.Contra#\8b85e727141a9fe6a68e692cfa082a48\System.AddIn.Contract.ni.dll - ok
20:13:20.0688 0x1214  [ 7847C1123161DD04E0BE9887B4186E87, F109DD1EA69181467EFC31877D77EBE3BFCA5F0C9A1E10568D98BD692C28BA5F ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ComponentMod#\14b4e986115b08145e25409654364fcd\System.ComponentModel.DataAnnotations.ni.dll
20:13:20.0688 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ComponentMod#\14b4e986115b08145e25409654364fcd\System.ComponentModel.DataAnnotations.ni.dll - ok
20:13:20.0688 0x1214  [ 691599A3CA440E81A451ABC14A4A9B2F, 16497132B328EBB67B8DAE7B343E84DF2FC09CF63CEBB4DE55B16BB4254C8FB5 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data.DataSet#\ee311b38cebc2710b2bbb9e665399b2e\System.Data.DataSetExtensions.ni.dll
20:13:20.0688 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data.DataSet#\ee311b38cebc2710b2bbb9e665399b2e\System.Data.DataSetExtensions.ni.dll - ok
20:13:20.0704 0x1214  [ 57FB231D9DDDC147C149926973138432, 0C3D9FD908DCB24B5987155A355AB0222DFBB50D7A5AC6C1CC4902B96F4915A4 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data.Entity\d0d337c4c9d5067ababa23a19d8c5c0c\System.Data.Entity.ni.dll
20:13:20.0704 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data.Entity\d0d337c4c9d5067ababa23a19d8c5c0c\System.Data.Entity.ni.dll - ok
20:13:20.0704 0x1214  [ 1694A29A2CC6710595967ACFCDEC9089, EC1B43B8C2957452F0ABF306FE8BDF94823E69FD855F040564407D95D77D920C ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data.Entity.#\ce647a5350d2214b01355c5db4238f8d\System.Data.Entity.Design.ni.dll
20:13:20.0704 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data.Entity.#\ce647a5350d2214b01355c5db4238f8d\System.Data.Entity.Design.ni.dll - ok
20:13:20.0704 0x1214  [ 49AA7F9956A9C7AB38C3249A671D12A4, AE8E1E0C4864C071EEF7E0E7D187A11C5C206DA443467212E2738246C2F39F08 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data.Services\c8c038ce572fcc772acd3daddc7bab61\System.Data.Services.ni.dll
20:13:20.0719 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data.Services\c8c038ce572fcc772acd3daddc7bab61\System.Data.Services.ni.dll - ok
20:13:20.0719 0x1214  [ 207A057CC8D1DF3B8850D53032DA7506, F7E8C6A0C4E7B950FBEFB62C316254B4CAC629DFE63BDC9ABAF4AE9E8972FE18 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\828b8d52e1efcd239dbc8f1c3c8b298c\System.ServiceModel.Web.ni.dll
20:13:20.0719 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\828b8d52e1efcd239dbc8f1c3c8b298c\System.ServiceModel.Web.ni.dll - ok
20:13:20.0719 0x1214  [ E34C8BBC2F084BD18416525C95D917AC, 26D2896D26288BE087958350C3BB360DC40CFCBEFE65AB67AB3D3C903A8C1765 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel\c1ad884fdc54be0db8dd3a84e297025e\System.ServiceModel.ni.dll
20:13:20.0719 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel\c1ad884fdc54be0db8dd3a84e297025e\System.ServiceModel.ni.dll - ok
20:13:20.0735 0x1214  [ 4F870C4A1B34AA94F8D8406D25E361D5, A4A7B4FA9B030DB5FB00E501915FE1AE9E1E2EB77DB7DC67B03117384D804668 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.IdentityModel\475a0088e09aa8e5da92c02c3702802a\System.IdentityModel.ni.dll
20:13:20.0735 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.IdentityModel\475a0088e09aa8e5da92c02c3702802a\System.IdentityModel.ni.dll - ok
20:13:20.0735 0x1214  [ DA295D0CC4DD75600FA89C0B0341C2F9, B7DFDAF42E91B90FF451002F67BEC766734CDE37240C7C95FAE4AD27229579ED ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Messaging\a756cb5afb070ade6731f67cb31c99eb\System.Messaging.ni.dll
20:13:20.0735 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Messaging\a756cb5afb070ade6731f67cb31c99eb\System.Messaging.ni.dll - ok
20:13:20.0735 0x1214  [ 95CDC4E4852C77BEB0432ED9CB7619D2, 1792BC1A15202F401B32653FDB261DC13409E5A15D63292693A9E7ACDB1C0D70 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.IdentityMode#\0b02ab579a1aff08d74e48730815f48b\System.IdentityModel.Selectors.ni.dll
20:13:20.0735 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.IdentityMode#\0b02ab579a1aff08d74e48730815f48b\System.IdentityModel.Selectors.ni.dll - ok
20:13:20.0751 0x1214  [ 37C009E92642C12825F38BFE199270FD, 9FD2CEC83BB623EE63AC7F635ED3B5912BA564BA39102AA204984C11D3AA3543 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\97faf96cdd2d9c396bd44bb6bec7f112\System.ServiceModel.Activation.ni.dll
20:13:20.0751 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\97faf96cdd2d9c396bd44bb6bec7f112\System.ServiceModel.Activation.ni.dll - ok
20:13:20.0751 0x1214  [ A8A29B02EFC3AEE7AB0FEF9DED00B3C8, 42EFAE86DC7D13D1018E506F0BB62386DB45FBDE47F818ED4D3DDC7AABA243F0 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\d7c654c677924ca02163bf9cbadbd44d\System.ServiceModel.Activities.ni.dll
20:13:20.0751 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\d7c654c677924ca02163bf9cbadbd44d\System.ServiceModel.Activities.ni.dll - ok
20:13:20.0751 0x1214  [ 49582267013DBE60F2988CD7CED7DB87, 02CC0DBD0CE088FB11352E02004A36E914396756FB333D04438B4AB4274187A1 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Management\d3c65ed372bb011972dfcc8e9b925bf9\System.Management.ni.dll
20:13:20.0751 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Management\d3c65ed372bb011972dfcc8e9b925bf9\System.Management.ni.dll - ok
20:13:20.0766 0x1214  [ 3A5CC5A49EBD7CC03FB108701C53D2E2, A0F70BAC5D1F3866B7B89D9A72787C7826485F1CC0F622C6DF5445619A5FA6E2 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.JScript\f411efe7079bf009ebe463de02d0bd38\Microsoft.JScript.ni.dll
20:13:20.0766 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.JScript\f411efe7079bf009ebe463de02d0bd38\Microsoft.JScript.ni.dll - ok
20:13:20.0766 0x1214  [ 990A1C03F8C00AC9CA5649D0411702E0, ECA1DC95ECC013175EB3BCAF9212479AFB02D75E6203B618B4FF72807AE00CC4 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xaml.Hosting\b23e0015d4f67c864395f508f8fa1a8b\System.Xaml.Hosting.ni.dll
20:13:20.0766 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xaml.Hosting\b23e0015d4f67c864395f508f8fa1a8b\System.Xaml.Hosting.ni.dll - ok
20:13:20.0782 0x1214  [ DB32B7416C5D263B47D4C2CEA1A16354, D37336E21E3D5F3E4EC9769A7ECD3761684219EB31791735CF325E2A210C407D ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.Extensio#\f8c86cce0fdc1e6122e7fd9a1b03746b\System.Web.Extensions.ni.dll
20:13:20.0782 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.Extensio#\f8c86cce0fdc1e6122e7fd9a1b03746b\System.Web.Extensions.ni.dll - ok
20:13:20.0782 0x1214  [ 2F6DEAB9078D01E571D7339C476D9D4B, 041D5643D354DDBE1C3F3202E550ED4F6D3537CDBB44ADBEE654946D37B6C024 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data.Service#\13aa25e4a7dd2a1b5f5621da9114a2d0\System.Data.Services.Client.ni.dll
20:13:20.0782 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data.Service#\13aa25e4a7dd2a1b5f5621da9114a2d0\System.Data.Services.Client.ni.dll - ok
20:13:20.0782 0x1214  [ BB66EE2E964CEFEA3637C702157D798C, 07021D9A4E12A4E13995F33128A5DF7CD494F05060DCB992F4DF6E0117E57D22 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data.Service#\6ac1b50d9fd9af7a8b32c5de52ab9d45\System.Data.Services.Design.ni.dll
20:13:20.0782 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data.Service#\6ac1b50d9fd9af7a8b32c5de52ab9d45\System.Data.Services.Design.ni.dll - ok
20:13:20.0797 0x1214  [ 2DD89BA285FD30FA7A263DC76EDF645E, 79E4F9E3A8219B11913C12B314283638B40BAC2292D498A0F4C01CA84CF9741D ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Device\5f602f905177308f37eab95ea62ad9ad\System.Device.ni.dll
20:13:20.0797 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Device\5f602f905177308f37eab95ea62ad9ad\System.Device.ni.dll - ok
20:13:20.0797 0x1214  [ 2389B23998453DD20F96FCF5F40F83B0, 74A6C7E7A1D1912A7BED4249F6C777B0EC344D2F5CD4B871FB7079D1E9427EA6 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.DirectorySer#\cf50bbdaeeab6115660268fe173820d3\System.DirectoryServices.AccountManagement.ni.dll
20:13:20.0797 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.DirectorySer#\cf50bbdaeeab6115660268fe173820d3\System.DirectoryServices.AccountManagement.ni.dll - ok
20:13:20.0813 0x1214  [ 04EF2C7F6D03288096E66DFFB8055986, 40BF7C41EEAD261D10036FE93AFA367103A032B0E1BC988F759B9043E969E582 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.IO.Log\55404d22760221fed42a5e21e5a4a5f4\System.IO.Log.ni.dll
20:13:20.0813 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.IO.Log\55404d22760221fed42a5e21e5a4a5f4\System.IO.Log.ni.dll - ok
20:13:20.0813 0x1214  [ 2A93E9297133FEE825577DDE581E920A, F2B00BE4207BACB66AE6F9BE63CE1D0549B96DE6EFB0DD2F2DF98B39B98F821B ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Management.I#\7d9b12db58b2809cf57f08248bdf142a\System.Management.Instrumentation.ni.dll
20:13:20.0813 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Management.I#\7d9b12db58b2809cf57f08248bdf142a\System.Management.Instrumentation.ni.dll - ok
20:13:20.0813 0x1214  [ 26313A115FDA28CC7DF62EE24C6DBD18, BB5982DD96E13AE67C37AACAD31B5727AEC3BD211F24F99B17B6BE389518CB60 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Net\a53f8ffb61aee67b1865894c3b03beec\System.Net.ni.dll
20:13:20.0813 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Net\a53f8ffb61aee67b1865894c3b03beec\System.Net.ni.dll - ok
20:13:20.0829 0x1214  [ E0F2CC811A0933973FC2E2CA950A590F, C9CD88E0A971BD2FF9E78E13BD34226642B714A4462BB8BF8EE7B25B3D0EC556 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\3eca9d5d92d7665377668c55343186d1\System.ServiceModel.Channels.ni.dll
20:13:20.0829 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\3eca9d5d92d7665377668c55343186d1\System.ServiceModel.Channels.ni.dll - ok
20:13:20.0829 0x1214  [ 4BAC189FAA3797DF72FB0727CD79D2FD, 226936BDB21B2A91A5837B8885124DAE1DB7AA9BBDEE58B97A88C749CE3D1F2C ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\809cfad7f0629bd6efe3b73383a0e723\System.ServiceModel.Discovery.ni.dll
20:13:20.0829 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\809cfad7f0629bd6efe3b73383a0e723\System.ServiceModel.Discovery.ni.dll - ok
20:13:20.0829 0x1214  [ C91D5B0FC64F2B126FBE465484FBD95C, C27DC023AC6DC7CA37DBFCE37A52A04069544EC4BF16BDAB287E66972A7FAC50 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\b12ed41dc51b875698be02f74aa8e923\System.ServiceModel.Routing.ni.dll
20:13:20.0844 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\b12ed41dc51b875698be02f74aa8e923\System.ServiceModel.Routing.ni.dll - ok
20:13:20.0844 0x1214  [ 4534AC6CE46A21A74C7EC86EDFD5C1B7, 88F43CFB6B0BA54D5731EAB644D77BCA6C9CAD74BC7C08FDCC90E4EC04782A5A ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\3f41088d4e8dd959c8c96028e2b75c96\System.ServiceModel.ServiceMoniker40.ni.dll
20:13:20.0844 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\3f41088d4e8dd959c8c96028e2b75c96\System.ServiceModel.ServiceMoniker40.ni.dll - ok
20:13:20.0844 0x1214  [ A13200F45EF577FADAA7A018FE10582E, 3A0F979370B267563C6C33DC577E5999E9C0A33D3D678EA8F5F23CEFC911FF4F ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Speech\3b9712dceaaab7dce7df5aed01884340\System.Speech.ni.dll
20:13:20.0844 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Speech\3b9712dceaaab7dce7df5aed01884340\System.Speech.ni.dll - ok
20:13:20.0860 0x1214  [ FE7FCEBA37DF43EA940C7A290B1E8A7B, EE183BE511091BCCBB475D61B544DBC1A10D8C2A25F8B295354A6C34F818848E ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.Abstract#\e7c92a09314b99672fc034a53870488d\System.Web.Abstractions.ni.dll
20:13:20.0860 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.Abstract#\e7c92a09314b99672fc034a53870488d\System.Web.Abstractions.ni.dll - ok
20:13:20.0860 0x1214  [ 2B918C6500F5A351939D2E9111305DD5, E1D576AA54012F9E2054E3F518EF8052230C9A6C588E88FD07E0260F69F9437F ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.DataVisu#\c0d4d657f9bb43cfbd4b64f064f6e6ea\System.Web.DataVisualization.ni.dll
20:13:20.0860 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.DataVisu#\c0d4d657f9bb43cfbd4b64f064f6e6ea\System.Web.DataVisualization.ni.dll - ok
20:13:20.0860 0x1214  [ C55D4F49F8662310433B2BF37B1608EC, 8B812F1768C5FA79CD205A773A1E4B73AE93C7C00DAE92C5FC5388E446FCE3F8 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.DataVisu#\6902346484865fba3228db31c0d06003\System.Web.DataVisualization.Design.ni.dll
20:13:20.0860 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.DataVisu#\6902346484865fba3228db31c0d06003\System.Web.DataVisualization.Design.ni.dll - ok
20:13:20.0875 0x1214  [ E746E0BADDBC4CC2A7042E74F3B67DBE, D0621E6E32950E155FD33022153A697A921D23D98FBC58C3BE32BC912AAE956B ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.DynamicD#\b173ff874c8bb4fa3c209f95091fa212\System.Web.DynamicData.ni.dll
20:13:20.0875 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.DynamicD#\b173ff874c8bb4fa3c209f95091fa212\System.Web.DynamicData.ni.dll - ok
20:13:20.0875 0x1214  [ 26AAC553D4B2A6926961D122136E30D8, 4104B4174181A5B2D418BDE9AAD355CD2A10800921F8E6F21ECC8F5B9B581A73 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.Entity\ce5b8ca83b121b03db444d0d80273e43\System.Web.Entity.ni.dll
20:13:20.0875 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.Entity\ce5b8ca83b121b03db444d0d80273e43\System.Web.Entity.ni.dll - ok
20:13:20.0891 0x1214  [ BCFA3B51B794C692E95C062E2B2124BA, 6AEAC31D16D8CC84E49EA388F225D3B1C46E7BFC7EEBC41B820C5A346249C691 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.DynamicD#\3f920af357841533d2c409e37cffc2cc\System.Web.DynamicData.Design.ni.dll
20:13:20.0891 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.DynamicD#\3f920af357841533d2c409e37cffc2cc\System.Web.DynamicData.Design.ni.dll - ok
20:13:20.0891 0x1214  [ B346C590B152559A88677A57ACBE008B, F36FE41B65437CED3CBD5B2D64DE330601937BC8CFEF9A5D2E7B91FA097E2BD4 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.Entity.D#\c398d7c528691656d925962add081e18\System.Web.Entity.Design.ni.dll
20:13:20.0891 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.Entity.D#\c398d7c528691656d925962add081e18\System.Web.Entity.Design.ni.dll - ok
20:13:20.0891 0x1214  [ 0E02B119B161D36AD8CE57064F90DD00, E36229971052AD64CCED877A8B60D06F4DFE3BE9340593032C216A46A97A7C85 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.Extensio#\35620cf0227424fe6cc57625e3033ec3\System.Web.Extensions.Design.ni.dll
20:13:20.0891 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.Extensio#\35620cf0227424fe6cc57625e3033ec3\System.Web.Extensions.Design.ni.dll - ok
20:13:20.0907 0x1214  [ 63FE917E4D9966CC83D003E71BF00958, FC47B407A5120224364BAC6FCBED48F838B9192B8F127BC07079A78671B3C1BD ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.Mobile\a217dff9bc1690f18666770842e0e5b9\System.Web.Mobile.ni.dll
20:13:20.0907 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.Mobile\a217dff9bc1690f18666770842e0e5b9\System.Web.Mobile.ni.dll - ok
20:13:20.0907 0x1214  [ 3982870B603611DBBF528256D173E919, D4A5993FD9257316BCFABCD06A6C16C1C4BB756ACF6B65C6E4FC3F36B77F0367 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.Routing\e5865b696f8961a601ddbeecce435e9c\System.Web.Routing.ni.dll
20:13:20.0907 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.Routing\e5865b696f8961a601ddbeecce435e9c\System.Web.Routing.ni.dll - ok
20:13:20.0922 0x1214  [ EED79D0055FE7EAE6D50F3B683A13BBA, 96B3D6B23ABF6F0E84B954E1432AB1467D41E1BB13A2A324376393DFEF458C45 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Form#\15fea4977b397291cf8854993cbbe9f2\System.Windows.Forms.DataVisualization.ni.dll
20:13:20.0922 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Form#\15fea4977b397291cf8854993cbbe9f2\System.Windows.Forms.DataVisualization.ni.dll - ok
20:13:20.0922 0x1214  [ 938ADB97DC2B40ED277E05C1B32752D6, 17939E41AD77659BA4C891DA92630C1DB333DE0489B733D3A68C53825C645374 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Form#\b09dd757161ed63dcd289403b772bb25\System.Windows.Forms.DataVisualization.Design.ni.dll
20:13:20.0922 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Form#\b09dd757161ed63dcd289403b772bb25\System.Windows.Forms.DataVisualization.Design.ni.dll - ok
20:13:20.0922 0x1214  [ BB540DAA751B106B08819D32C2DA4132, C4D3D1F63BBBAB9F160B663A47191E0A050BDDD10C185E6DB93C0B19B1958139 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Pres#\1c5bf4e67cdb80fc918f2e5a1ee73e8b\System.Windows.Presentation.ni.dll
20:13:20.0922 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Pres#\1c5bf4e67cdb80fc918f2e5a1ee73e8b\System.Windows.Presentation.ni.dll - ok
20:13:20.0938 0x1214  [ 58D11F64BF17DA08BB20547A0D623696, D9CBD8CD88DECC086BDC9BCA26B48575272751A3D5ECC7129D2AF4940640CCFF ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Workflow.Act#\d827b5e425198dbd7b398505822c1a81\System.Workflow.Activities.ni.dll
20:13:20.0938 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Workflow.Act#\d827b5e425198dbd7b398505822c1a81\System.Workflow.Activities.ni.dll - ok
20:13:20.0938 0x1214  [ 0C3AF2F92A45234DEEF26DD89B867BAE, D37DB84CC8EF8A053F73C8FD6A745098F70E617AC16927D4256D74A9AC2D32FB ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Workflow.Com#\ad1fa7dff2989a304c547b66c0a0aaba\System.Workflow.ComponentModel.ni.dll
20:13:20.0938 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Workflow.Com#\ad1fa7dff2989a304c547b66c0a0aaba\System.Workflow.ComponentModel.ni.dll - ok
20:13:20.0953 0x1214  [ 1B32E47DECF13A688993AFC56744ECFC, 1AA607B581DC09D9C92E2175DDBF39208F416CFCDD4861900870C7D51CBA177C ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Workflow.Run#\0147dfa170381657125ca67859886f97\System.Workflow.Runtime.ni.dll
20:13:20.0953 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Workflow.Run#\0147dfa170381657125ca67859886f97\System.Workflow.Runtime.ni.dll - ok
20:13:20.0953 0x1214  [ 628BE73B5D0A154E929A4A3D7E33CD03, 78C5FAC968C38519DE3C7A91D52EC62CF7DE6FE1E14B75204FC9C8554AF467F3 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.WorkflowServ#\46496d2598849a1e8b51592d588a081d\System.WorkflowServices.ni.dll
20:13:20.0953 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\System.WorkflowServ#\46496d2598849a1e8b51592d588a081d\System.WorkflowServices.ni.dll - ok
20:13:20.0953 0x1214  [ 733C2CE2ADA4C85B694C0854906D867B, 11FEF52C57E28A42D724B3477BF5C459831B2FDEF8EF284D17211074E88D84B4 ] C:\Windows\assembly\NativeImages_v4.0.30319_32\UIAutomationClient\0b2974e5eded24fbdec81d3cb4c861b9\UIAutomationClient.ni.dll
20:13:20.0953 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\UIAutomationClient\0b2974e5eded24fbdec81d3cb4c861b9\UIAutomationClient.ni.dll - ok
20:13:20.0969 0x1214  [ 6DEF425CE6C289B877A5FA36286BAFDD, 429BCABBEDDD682541848815E7A6856A42356942025E00F70CDE6F32E3F1B7BD ] C:\Windows\assembly\NativeImages_v4.0.30319_32\UIAutomationClients#\2a23e54cef1d62999e94b323cd6e9ca2\UIAutomationClientsideProviders.ni.dll
20:13:20.0969 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\UIAutomationClients#\2a23e54cef1d62999e94b323cd6e9ca2\UIAutomationClientsideProviders.ni.dll - ok
20:13:20.0969 0x1214  [ EDE44360CD645EEA3284D73594943734, 9C0DCF33FDD5F4B6E34921A999609D2276DF9F81FA650F8146D44AF308CC395A ] C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsFormsIntegra#\f38be3f047eb8cfe3f2a94a60052e78c\WindowsFormsIntegration.ni.dll
20:13:20.0969 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsFormsIntegra#\f38be3f047eb8cfe3f2a94a60052e78c\WindowsFormsIntegration.ni.dll - ok
20:13:20.0969 0x1214  [ D0FA9E32C5C439457F6BB06F42827F49, B789C0B3F83541449E064B36F125A62731F3E5294067BD6EB29B2C3B38ADB37B ] C:\Windows\assembly\NativeImages_v4.0.30319_32\XamlBuildTask\1d43b3906f69275825ff7979312effdb\XamlBuildTask.ni.dll
20:13:20.0969 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_32\XamlBuildTask\1d43b3906f69275825ff7979312effdb\XamlBuildTask.ni.dll - ok
20:13:20.0985 0x1214  [ C8D49E7D69410302950744A0B106C6EF, 79F14EF91E8C237A10E4D12DF91039E98883784647F4D8E5192A7ED51BA456E8 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\1a4a54b0b51168d3332fef8ee86938f8\Microsoft.Windows.Diagnosis.TroubleshootingPack.ni.dll
20:13:20.0985 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\1a4a54b0b51168d3332fef8ee86938f8\Microsoft.Windows.Diagnosis.TroubleshootingPack.ni.dll - ok
20:13:20.0985 0x1214  [ 37520E8DCBB69D2A7E01A4FD75D5B287, 76DFFE3CF3C4C0E2D410C29845D34AEB9AA33934989E6469C25B062F798CCAB9 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.WSMan.Man#\815fbba90d78392c30e12fb4069bbe12\Microsoft.WSMan.Management.ni.dll
20:13:20.0985 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.WSMan.Man#\815fbba90d78392c30e12fb4069bbe12\Microsoft.WSMan.Management.ni.dll - ok
20:13:21.0000 0x1214  [ 9EE443F3538DABED2DF1707C89F73C99, 24E33DAACE404A12F597645A3D6AEB66923F9E7EA980DDFA8437DE0FCDA7B0FD ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.WSMan.Run#\323a0b6a3e7cc3b5818daf7a98a68956\Microsoft.WSMan.Runtime.ni.dll
20:13:21.0000 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Microsoft.WSMan.Run#\323a0b6a3e7cc3b5818daf7a98a68956\Microsoft.WSMan.Runtime.ni.dll - ok
20:13:21.0000 0x1214  [ CFAB7304ED8A0174E80F1E90B3D0E7D3, 328DEE7753A01603615317C91E3369778645B2AB18905EE0BEE438404A5729E5 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\MMCEx\10b8b18bc82c57cb768964ba59a03713\MMCEx.ni.dll
20:13:21.0000 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\MMCEx\10b8b18bc82c57cb768964ba59a03713\MMCEx.ni.dll - ok
20:13:21.0000 0x1214  [ 5E63DC86F990A62429CDB39347D3F70B, 2EB7394B139E95FFE86C158BDCAE78A2B9110D1EADAE9AC5DE3F56F68D99F74A ] C:\Windows\assembly\NativeImages_v2.0.50727_64\MSBuild\e778c6b29c475f93affada1af74448c5\MSBuild.ni.exe
20:13:21.0000 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\MSBuild\e778c6b29c475f93affada1af74448c5\MSBuild.ni.exe - ok
20:13:21.0016 0x1214  [ CEC13BA3AC6CB693F52642E49C0C6E22, BF080ECC302B0A629860212F6B1A93004EE0C7B32CD19983F318210392CCD965 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\napcrypt\2c30f41af902252c834ac9c74d070f36\napcrypt.ni.dll
20:13:21.0016 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\napcrypt\2c30f41af902252c834ac9c74d070f36\napcrypt.ni.dll - ok
20:13:21.0016 0x1214  [ 4249C7E7B4991A901D2786F89C46AB15, 8B38B0FF16557156C70D50B3D11C3B78AAEAF6155DBFF7AA4613E4E44CC8620C ] C:\Windows\assembly\NativeImages_v2.0.50727_64\naphlpr\333be0b7c2713772c8cfaedd23909de1\naphlpr.ni.dll
20:13:21.0016 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\naphlpr\333be0b7c2713772c8cfaedd23909de1\naphlpr.ni.dll - ok
20:13:21.0016 0x1214  [ CAA378D6E85E0F97817B01F3155B0A8B, 5231026526E9EE5AEBFE70E9A40728B1A17535D4829E82E361B87964BC202E1E ] C:\Windows\assembly\NativeImages_v2.0.50727_64\napinit\6bd99101b66895007814e5b3c6999bac\napinit.ni.dll
20:13:21.0016 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\napinit\6bd99101b66895007814e5b3c6999bac\napinit.ni.dll - ok
20:13:21.0031 0x1214  [ 00B7AC85EFB7DFEB82211C30102111CB, 36C04059695482DE8EB34AE58A092A677D459F653488E93C121446186E7E2FF8 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\napsnap\ba3634316594b8cf6ac922289bfd8591\napsnap.ni.dll
20:13:21.0031 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\napsnap\ba3634316594b8cf6ac922289bfd8591\napsnap.ni.dll - ok
20:13:21.0031 0x1214  [ 193F89BA9BBC7E3DD3B1673C1CA5F202, E103A3107889279D2187FA3AAA0F5EB0E1CFD74DA0812BC68D6B4D77F5F08151 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\Narrator\4815a3b08be60e6bb7d56a79815d6f58\Narrator.ni.exe
20:13:21.0031 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\Narrator\4815a3b08be60e6bb7d56a79815d6f58\Narrator.ni.exe - ok
20:13:21.0047 0x1214  [ B7C7EEBCCD288886AA2F0820D2E0FCFF, FE1AFA5F12D1BD5FAEA5D5815A8751B9209DA5ADCD02AC4EE2F34F6BFFDCADF1 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationBuildTa#\36e96930b1d40b7d060906bd46d4340c\PresentationBuildTasks.ni.dll
20:13:21.0047 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationBuildTa#\36e96930b1d40b7d060906bd46d4340c\PresentationBuildTasks.ni.dll - ok
20:13:21.0047 0x1214  [ 0D0E268CDC79D455373FC0DD4D4198D8, 1ADF8AA8AFE1CB0AF44D33B185CA74CE05575FF0E9CE8CFD83E2340C8CEA9D71 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFontCac#\e11b47f2682b881803f74772d3564f85\PresentationFontCache.ni.exe
20:13:21.0047 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\PresentationFontCac#\e11b47f2682b881803f74772d3564f85\PresentationFontCache.ni.exe - ok
20:13:21.0047 0x1214  [ E1A155FC766FDC57BDDAD117E02AFB73, B5783620BF2BD3E8345B14FD479FD04308E6C4E2A0727E3971B9DBF4FFAA17B3 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\SMSvcHost\f46aaade991d09461e69e383148f351a\SMSvcHost.ni.exe
20:13:21.0047 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\SMSvcHost\f46aaade991d09461e69e383148f351a\SMSvcHost.ni.exe - ok
20:13:21.0063 0x1214  [ 8BF99B7DC4FE51DD79AAAC8C6A32F9A8, DA80B6F8C071CD1A8CA5C309EA18EBFC2F8FFB6656CC6A45310D6507A31A934F ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.AddIn\125b77b1b8482c742ee7e3ecf16e2452\System.AddIn.ni.dll
20:13:21.0063 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.AddIn\125b77b1b8482c742ee7e3ecf16e2452\System.AddIn.ni.dll - ok
20:13:21.0063 0x1214  [ D9FDF20D10C203BAD9C01E40E993ECD1, 23980745CD18B72D8EA41FE0ACEA447C06BE754604E5C0B2DE0C6999C110775C ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.AddIn.Contra#\3468458c7fa1df7263bdf9cf33b481e2\System.AddIn.Contract.ni.dll
20:13:21.0063 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.AddIn.Contra#\3468458c7fa1df7263bdf9cf33b481e2\System.AddIn.Contract.ni.dll - ok
20:13:21.0063 0x1214  [ 3E8CD82BC17FAE9029E2C6398CEA4BF6, 8259EA72A1A09718286999ED3ED483A2C7F9CBBA050900DA2B2D16AEF22B773F ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.ComponentMod#\63003498c1a318f80287af9152e3aa30\System.ComponentModel.DataAnnotations.ni.dll
20:13:21.0063 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.ComponentMod#\63003498c1a318f80287af9152e3aa30\System.ComponentModel.DataAnnotations.ni.dll - ok
20:13:21.0078 0x1214  [ 71E60F256E40355DE8B68D6C25CDFEE6, 6B18D1203944373B06E3FFAA4D0A843F7E2F207DE4BF6DD08C1AC0922C72F7B9 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Data.DataSet#\2be0a7155799c0fb528cd5c80078f504\System.Data.DataSetExtensions.ni.dll
20:13:21.0078 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Data.DataSet#\2be0a7155799c0fb528cd5c80078f504\System.Data.DataSetExtensions.ni.dll - ok
20:13:21.0078 0x1214  [ E38487D1412C524D0FCCF1A91F4A86F4, 1144E23F22AB4B1FE6583BF9DB08B578DAAEC99DD142118B5E4D4F83004280C7 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Data.Entity\733d9fe9de4260b0d8dcbfc4af589905\System.Data.Entity.ni.dll
20:13:21.0078 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Data.Entity\733d9fe9de4260b0d8dcbfc4af589905\System.Data.Entity.ni.dll - ok
20:13:21.0094 0x1214  [ 732B7A3EB75A4E9A0701F427AFFD264E, CA43CEF805ECD770692B440907263D75014A9F9C2EE180896829927D509EEEEC ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Data.Entity.#\76faf4f6d7b7e704587932a703d0d6ec\System.Data.Entity.Design.ni.dll
20:13:21.0094 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Data.Entity.#\76faf4f6d7b7e704587932a703d0d6ec\System.Data.Entity.Design.ni.dll - ok
20:13:21.0094 0x1214  [ 1098856FD72781698436449EA10F4F81, 7134B428921F177B3F576FF5E98C10228B58AADD5FE6452285E4DACCA9ABB052 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Data.Linq\6c3626f890fa007230e81ed3336bbf08\System.Data.Linq.ni.dll
20:13:21.0094 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Data.Linq\6c3626f890fa007230e81ed3336bbf08\System.Data.Linq.ni.dll - ok
20:13:21.0094 0x1214  [ 522589ED2AA3EE2CE2066645F394A4B2, 775835B9B54B12C4781B1E079659BE7982C737EAFACC69E0626B76C5AF36B3C0 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Xml.Linq\9c180111db83f7c03c3296d60a8a8695\System.Xml.Linq.ni.dll
20:13:21.0094 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Xml.Linq\9c180111db83f7c03c3296d60a8a8695\System.Xml.Linq.ni.dll - ok
20:13:21.0109 0x1214  [ E30E9B31BF2FADB970AE402D366F733E, 6B09D751F0D9FF9B95DE1EA754C2381852BC7F8BAE356E9C869C94C67E6F9750 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Data.Services\e97e890764193fdf60b2b50960a7c12f\System.Data.Services.ni.dll
20:13:21.0109 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Data.Services\e97e890764193fdf60b2b50960a7c12f\System.Data.Services.ni.dll - ok
20:13:21.0109 0x1214  [ 6C810393C92A518EA0AD60B5EB5C496A, 367BFD6DB763F9FD8994875CCF860865E1DD5397E594D85F10B2E2122F0DAE16 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.ServiceModel#\8244a8e4932968f94862fbd2ea704b04\System.ServiceModel.Web.ni.dll
20:13:21.0109 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.ServiceModel#\8244a8e4932968f94862fbd2ea704b04\System.ServiceModel.Web.ni.dll - ok
20:13:21.0125 0x1214  [ 8E69255D5658A62F3C8AFCD10F19F51F, 2C11255752BE3EC95D8B3D7C7EC996888B17E3D5A66C0CBFD38E2F8745D099A7 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web.Abstract#\e872cb9a4edd04d1a8b0ec54f316b32a\System.Web.Abstractions.ni.dll
20:13:21.0125 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web.Abstract#\e872cb9a4edd04d1a8b0ec54f316b32a\System.Web.Abstractions.ni.dll - ok
20:13:21.0125 0x1214  [ 09CDE2314E2A0991EAA04EA426177991, C6D0D738F73DAC58A5BC684021358B61C8EF3DF080AF548A6E86EDBA0C502BDA ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web.Extensio#\1aa7bc150e3d377d9fe04842edfa2e7c\System.Web.Extensions.ni.dll
20:13:21.0125 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web.Extensio#\1aa7bc150e3d377d9fe04842edfa2e7c\System.Web.Extensions.ni.dll - ok
20:13:21.0125 0x1214  [ FD6DAB2DA0136F86712CB6B939AFF5A8, 7B654389E823B1F2264DDFF0952A3A8B4F9A10A87C8C40BF97BC10B86E95A73D ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Data.Service#\174fa95f2b40c9b629f9a2515bf01048\System.Data.Services.Client.ni.dll
20:13:21.0125 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Data.Service#\174fa95f2b40c9b629f9a2515bf01048\System.Data.Services.Client.ni.dll - ok
20:13:21.0141 0x1214  [ 2E013CDAA03B724C0C77A46FBBB77335, D9692D28BDA7A07CF3EED8EC08BDEF5B42E16F3BBCAD8D1AE4D1D5622968A066 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Data.Service#\ade9c1f75a8dd44e51cd9db0277a3185\System.Data.Services.Design.ni.dll
20:13:21.0141 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Data.Service#\ade9c1f75a8dd44e51cd9db0277a3185\System.Data.Services.Design.ni.dll - ok
20:13:21.0141 0x1214  [ 64A0F465E53523D82953B0D9E40CD3D6, 95D4D7EF1C7EA00E09C609DFCCA038D7DA21994AA9526E8D66DD9306C57B5478 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.DirectorySer#\ee952bf430fb8f372d1f395beccc6482\System.DirectoryServices.AccountManagement.ni.dll
20:13:21.0141 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.DirectorySer#\ee952bf430fb8f372d1f395beccc6482\System.DirectoryServices.AccountManagement.ni.dll - ok
20:13:21.0141 0x1214  [ 33944E6D1FEEEA85A495B5DDC78DC5BE, BB6309F6EF22CEFC9DCD3C438D80BF4C95344B0CCC657EBD52A7BE809DF8F8A3 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.IO.Log\f8a887338323db23bc1a85c779e9b999\System.IO.Log.ni.dll
20:13:21.0141 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.IO.Log\f8a887338323db23bc1a85c779e9b999\System.IO.Log.ni.dll - ok
20:13:21.0156 0x1214  [ F5E252251954E73B64795DAFD7C116F8, 13444D7EB15E0575FC6A16D1B408A3E2C8A4963768600DDC0D133560DEF559CD ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Management.I#\d9e4aa46099d66d0af015f03a5604d20\System.Management.Instrumentation.ni.dll
20:13:21.0156 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Management.I#\d9e4aa46099d66d0af015f03a5604d20\System.Management.Instrumentation.ni.dll - ok
20:13:21.0156 0x1214  [ A62E655F6B7B107A0A0E45D776CB9FC7, B2E3E8E52647445A3E70C288A9A7B1E39FEBFC7B112BB0A98B19B903F12482B2 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Net\334b72605094786938cfd248eef7e324\System.Net.ni.dll
20:13:21.0156 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Net\334b72605094786938cfd248eef7e324\System.Net.ni.dll - ok
20:13:21.0172 0x1214  [ 74ED484144B71BBB5F335A8EA431A9E4, CC03AEDF5A04EDCF0AA18C459E213D33895C300BC214394838A6FDB5319B5A93 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Speech\1df2c07b2072077352f97140a28bcd88\System.Speech.ni.dll
20:13:21.0172 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Speech\1df2c07b2072077352f97140a28bcd88\System.Speech.ni.dll - ok
20:13:21.0172 0x1214  [ 7E043AE91E117D507A066938AC484121, 4016C9329628797D72991C47A9852A063EA1F6E7B55C34E433B4B49C2BD3C71B ] C:\Windows\assembly\NativeImages_v2.0.50727_64\sysglobl\be4d32c58d475705b085d2cfa8812d7f\sysglobl.ni.dll
20:13:21.0172 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\sysglobl\be4d32c58d475705b085d2cfa8812d7f\sysglobl.ni.dll - ok
20:13:21.0172 0x1214  [ CA88E38AFFE651C6FB18954B3B319275, F3466266D4B567680CCE912C2114D56B99F8260AE088F0582C40E9C7A95D7F4D ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web.Routing\0f00fde5ebd0e35e6c8fc3b4f348c57c\System.Web.Routing.ni.dll
20:13:21.0172 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web.Routing\0f00fde5ebd0e35e6c8fc3b4f348c57c\System.Web.Routing.ni.dll - ok
20:13:21.0187 0x1214  [ ADD67762A79E5E22E2E326DEB0DD7EC6, B7C75C035CEE870848255EB6EB22CF2C71CEBB050F70CE377584FB22D74B0E23 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web.DynamicD#\f5a61702c20000ea3a36bb30bab5a258\System.Web.DynamicData.ni.dll
20:13:21.0187 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web.DynamicD#\f5a61702c20000ea3a36bb30bab5a258\System.Web.DynamicData.ni.dll - ok
20:13:21.0187 0x1214  [ 09A858F32481FF504D3D72B2B49A74B5, 464430832FDEF5CF306E4BF1F717F020BD10065E434156BEABD5B8B6EC61171A ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web.DynamicD#\5fe2c333a5fed9c71147a1f7e3d9f778\System.Web.DynamicData.Design.ni.dll
20:13:21.0187 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web.DynamicD#\5fe2c333a5fed9c71147a1f7e3d9f778\System.Web.DynamicData.Design.ni.dll - ok
20:13:21.0203 0x1214  [ 58B593B6292D8E5F75E21D4CB96EC025, A691791FFAC5E60CC8D0E58B660B36889D1A84F95B97652B3AEF8B9E6403B5FB ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web.Entity\a833a3330f9c8abbddf8e82726aa9c62\System.Web.Entity.ni.dll
20:13:21.0203 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web.Entity\a833a3330f9c8abbddf8e82726aa9c62\System.Web.Entity.ni.dll - ok
20:13:21.0203 0x1214  [ 419F23EE0CED214C23AB1D4F96CD3677, AC5EFAC0B0525880EAB2D8DA284346E8BB3E3A3483D0D4889DFD14DF6DACB47E ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web.Entity.D#\b4658581d36b5509a827ce57328d952d\System.Web.Entity.Design.ni.dll
20:13:21.0203 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web.Entity.D#\b4658581d36b5509a827ce57328d952d\System.Web.Entity.Design.ni.dll - ok
20:13:21.0203 0x1214  [ 6D51638DC032BCBF5455652924C8C515, 105067F298D94B7AEA7572EFAD62E9E44E84478817ECCE2E7CF78B995D64D26F ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web.Extensio#\aa699dbf39f8da1ce0ca168250d4fce6\System.Web.Extensions.Design.ni.dll
20:13:21.0203 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web.Extensio#\aa699dbf39f8da1ce0ca168250d4fce6\System.Web.Extensions.Design.ni.dll - ok
20:13:21.0219 0x1214  [ 01A422FE494F3F36401FB0CB089EF4C0, 5088B30DA3C389FA50E7C8873AC50F07E7BE6A1B441EC99F0310ECAE0BDFDFBC ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web.Mobile\c7fb1c2251263d044cd62ae654321956\System.Web.Mobile.ni.dll
20:13:21.0219 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Web.Mobile\c7fb1c2251263d044cd62ae654321956\System.Web.Mobile.ni.dll - ok
20:13:21.0219 0x1214  [ 4CFA8BB9C87F177E302254AA8E43A59D, D89CFB7EC1E465F21F9B9CA0BBC831DFF3FF602B0C506185C71EE5CCC3D9AA84 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Windows.Pres#\a3ed4d813e4eeaeab25d199d7adb5901\System.Windows.Presentation.ni.dll
20:13:21.0219 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Windows.Pres#\a3ed4d813e4eeaeab25d199d7adb5901\System.Windows.Presentation.ni.dll - ok
20:13:21.0234 0x1214  [ B3F9E27919C1F53893C1CA5EEBBF954B, 252EBC4609B52D6B48A7E2B937ED92B42E128C13B493DC78D9E25E69EE81659A ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.WorkflowServ#\dd1c963275709f9e3067b0049cd879a3\System.WorkflowServices.ni.dll
20:13:21.0234 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\System.WorkflowServ#\dd1c963275709f9e3067b0049cd879a3\System.WorkflowServices.ni.dll - ok
20:13:21.0234 0x1214  [ 34CE2174792F2B9ED8A8E4C6BABD40FF, 6EF50D6CB1D80EBBABF9534FE138E1A4F0DFD3D4B342C81C7F559665C325BACA ] C:\Windows\assembly\NativeImages_v2.0.50727_64\TaskScheduler\c7338facafcfb4864fa06ec53dac11e2\TaskScheduler.ni.dll
20:13:21.0234 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\TaskScheduler\c7338facafcfb4864fa06ec53dac11e2\TaskScheduler.ni.dll - ok
20:13:21.0234 0x1214  [ FA3DD7B9FCEAB5BDB83B0DA6A55CC113, E55B3DA4291E8DD8F9F4E4344A0EAC92BDFD4E8B765FC9BC73345A0D6F25BA0E ] C:\Windows\assembly\NativeImages_v2.0.50727_64\UIAutomationClients#\ff33afe76323444a6a1bc7508549139c\UIAutomationClientsideProviders.ni.dll
20:13:21.0234 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\UIAutomationClients#\ff33afe76323444a6a1bc7508549139c\UIAutomationClientsideProviders.ni.dll - ok
20:13:21.0250 0x1214  [ 51DD69E4385685A6BDBDD4CDBDEADF75, A0CCB1AB337BC61FA4EC65101AB361853F0FC4D511A8A83F21073C0ADDF14286 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\WindowsFormsIntegra#\bc0a89861e57676ebb645eee223e8cb4\WindowsFormsIntegration.ni.dll
20:13:21.0250 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\WindowsFormsIntegra#\bc0a89861e57676ebb645eee223e8cb4\WindowsFormsIntegration.ni.dll - ok
20:13:21.0250 0x1214  [ 80190B870294115EB84C2CDF317A4F78, F5E035457593567C8DA1333E7A8930D3FF818110E508832137BA8033975F2842 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\WsatConfig\55a1f37579d6d52822242519bde9f74c\WsatConfig.ni.exe
20:13:21.0250 0x1214  C:\Windows\assembly\NativeImages_v2.0.50727_64\WsatConfig\55a1f37579d6d52822242519bde9f74c\WsatConfig.ni.exe - ok
20:13:21.0250 0x1214  [ 458A6C36E0CBBA340C9F6A4B82AA2170, 8B27FE0A50F0CF83093CD9A38A0D634914EA1387A499FBBD39E6A600793586A6 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Data\104b0764560de23c05e580a3eded0301\System.Data.ni.dll
20:13:21.0265 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Data\104b0764560de23c05e580a3eded0301\System.Data.ni.dll - ok
20:13:21.0265 0x1214  [ 489C908DAE4067C9787B5A61E3F266A9, ABCC861D14FA2930899B3FE974D41A694970FA02EF88DFFA05BA1F51EC7F0F7B ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.Applicat#\b6dcfa20d412cca03512762210ff93ea\System.Web.ApplicationServices.ni.dll
20:13:21.0265 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.Applicat#\b6dcfa20d412cca03512762210ff93ea\System.Web.ApplicationServices.ni.dll - ok
20:13:21.0265 0x1214  [ 56AB67B7D73898CED2FAC6753C939C53, 2D53931BBA195CD199A75938433CE948C8967B2E47D0F11B33791F17F9CF49C0 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.Services\ab1dceebc781e029253b09c89f071a50\System.Web.Services.ni.dll
20:13:21.0265 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.Services\ab1dceebc781e029253b09c89f071a50\System.Web.Services.ni.dll - ok
20:13:21.0281 0x1214  [ 7B0643971029BB711631E429EE30233E, EF88AC475BC8CA15EA84C8E48C15CDB40D52F389A11A96D1A2976675C5FC39FA ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Design\3675fd2dc663113c0857851cd99418de\System.Design.ni.dll
20:13:21.0281 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Design\3675fd2dc663113c0857851cd99418de\System.Design.ni.dll - ok
20:13:21.0281 0x1214  [ 7FFD908769C0B7AA8EF522BA23B80D82, 1ED1FDDB1FEB19FC1B21B8A462EA4AC2994AA909DA55BD9224CA555881C9F579 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Forms\48bd462f012ad487c87b0bc2c0b0fd9c\System.Windows.Forms.ni.dll
20:13:21.0281 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Forms\48bd462f012ad487c87b0bc2c0b0fd9c\System.Windows.Forms.ni.dll - ok
20:13:21.0281 0x1214  [ 52CD4C5F945DF4B97C787510DB1B74CE, 35FD262707DF437A48DFA66E5D073E652956154A117A439AF994DF8C896AAA76 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\32a3c89b6310f26d89f3d488f2190efa\System.Runtime.Serialization.Formatters.Soap.ni.dll
20:13:21.0281 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\32a3c89b6310f26d89f3d488f2190efa\System.Runtime.Serialization.Formatters.Soap.ni.dll - ok
20:13:21.0297 0x1214  [ 708DD3F32CBD14D433BA361E11396E18, C73F8ACA25D863AD94D145ED3DB83B487981215919F712A38267550072141121 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Deployment\536ed1d70ecf5f5f8c7e23448c342ffc\System.Deployment.ni.dll
20:13:21.0297 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Deployment\536ed1d70ecf5f5f8c7e23448c342ffc\System.Deployment.ni.dll - ok
20:13:21.0297 0x1214  [ 2EA2883D99A64E4BD87A92536576D489, 1B0231F57CDFB6A9775E586A3B1B668566AA77EEC3246405E52CAEB3F02D86E8 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Drawing.Desi#\628c0786758e6d634bee556428ebceb8\System.Drawing.Design.ni.dll
20:13:21.0297 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Drawing.Desi#\628c0786758e6d634bee556428ebceb8\System.Drawing.Design.ni.dll - ok
20:13:21.0297 0x1214  [ 143916AEDC1B1BE053CCDA395BF7A1E0, CEEB66B9B1658156F380BD8EF3007EBFF41CFB44939F9C676052246DC065A8C3 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Data.OracleC#\259f40dc148220975fe956071f86fbd5\System.Data.OracleClient.ni.dll
20:13:21.0297 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Data.OracleC#\259f40dc148220975fe956071f86fbd5\System.Data.OracleClient.ni.dll - ok
20:13:21.0312 0x1214  [ E7D48239AF84D964A383C2DCB647F138, 6CBEEDA1BFED5E1B56DE8556C243F22CF77C7B6A50F3EAF1A1ACAAB9235962D5 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.RegularE#\2418536e0058d47ee956cf4862bc4cef\System.Web.RegularExpressions.ni.dll
20:13:21.0312 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.RegularE#\2418536e0058d47ee956cf4862bc4cef\System.Web.RegularExpressions.ni.dll - ok
20:13:21.0312 0x1214  [ 628D8378B9AFC8C67DB076D1475C6022, 25AC1267E627D4810B9AAC97EACA57FF60A90D08C42F7C6969139956402810B7 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.DirectorySer#\0929d3900711ba4894c92cf6b6e96999\System.DirectoryServices.Protocols.ni.dll
20:13:21.0312 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.DirectorySer#\0929d3900711ba4894c92cf6b6e96999\System.DirectoryServices.Protocols.ni.dll - ok
20:13:21.0328 0x1214  [ F8D3DD1B8236AD671814FFB08C4AFBE2, ED7D934CAC4F0FD296C11CDE53ADC0B102F6F424D43F58FED1612354F959BA89 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Build.Tas#\678e339d5e142f4765bdd896d2fe999b\Microsoft.Build.Tasks.v4.0.ni.dll
20:13:21.0328 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Build.Tas#\678e339d5e142f4765bdd896d2fe999b\Microsoft.Build.Tasks.v4.0.ni.dll - ok
20:13:21.0328 0x1214  [ B685B00C8399FFCAB42A40CBCD276CD0, 143BCCFC68F6690EFDFD3A0770516592F1004688F7193D3A9956EE36F27F33B4 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceProce#\b6965d3ff300470ec6e466f47a40941a\System.ServiceProcess.ni.dll
20:13:21.0328 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceProce#\b6965d3ff300470ec6e466f47a40941a\System.ServiceProcess.ni.dll - ok
20:13:21.0328 0x1214  [ F29726ADBD8EC3EC43D5A076DB5CA741, 2D01BC8F983051F7193289C210CC541F6A23A9FDA1E0E667C06F5B6CFC728D3F ] C:\Windows\assembly\NativeImages_v4.0.30319_64\UIAutomationProvider\f7bac90c808d1d4244cd86ee7b7b3d26\UIAutomationProvider.ni.dll
20:13:21.0328 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\UIAutomationProvider\f7bac90c808d1d4244cd86ee7b7b3d26\UIAutomationProvider.ni.dll - ok
20:13:21.0343 0x1214  [ 3BE2067DF04CD78E52B15D307D48ACBE, 32ED1048082CD7FCE44C8705DB6BD0EEF2C617002041822D8818D495C0B2062D ] C:\Windows\assembly\NativeImages_v4.0.30319_64\UIAutomationTypes\283f8fd30fac76a50bcca4721029878c\UIAutomationTypes.ni.dll
20:13:21.0343 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\UIAutomationTypes\283f8fd30fac76a50bcca4721029878c\UIAutomationTypes.ni.dll - ok
20:13:21.0343 0x1214  [ 857C1DD39A9DED5FC5CF0726FC5D43D4, 3D546D6EEAC47E963A558F22371ACF959FA52691DED90A5F6A0E79EE72C45174 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Inpu#\47b5ce36fffe278c28b8a3dd1be735fb\System.Windows.Input.Manipulations.ni.dll
20:13:21.0343 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Inpu#\47b5ce36fffe278c28b8a3dd1be735fb\System.Windows.Input.Manipulations.ni.dll - ok
20:13:21.0359 0x1214  [ A1623449017B8D61C7964862F590F574, 2136B6810A864B192D0F0CD59C5AB09CDDB32AFE8E7A79D8D6A0E2A2754EBCE5 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Printing\263bcc6e0005d5e8191ce7de9eea27b1\System.Printing.ni.dll
20:13:21.0359 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Printing\263bcc6e0005d5e8191ce7de9eea27b1\System.Printing.ni.dll - ok
20:13:21.0359 0x1214  [ E2F6D9D855DA2DA08506B1F9CAD7B1D8, A9603355BB65A3A5ADC0C0EB5BEBE5DC440D567A27A8D5BFA85F51BD246EDB02 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\ReachFramework\165962b7734f76a49db27a2429d8e5b3\ReachFramework.ni.dll
20:13:21.0359 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\ReachFramework\165962b7734f76a49db27a2429d8e5b3\ReachFramework.ni.dll - ok
20:13:21.0359 0x1214  [ 5754A53B4A1F441266B89682066298C8, EC25703215C7674CC91382CFE9E5614FF4BABE7FD3A08B5A5F97C163772E1E3B ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Activities\d74014ed1f99639771e31e50514878db\System.Activities.ni.dll
20:13:21.0359 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Activities\d74014ed1f99639771e31e50514878db\System.Activities.ni.dll - ok
20:13:21.0375 0x1214  [ 09D9D6F7422387F22FFD1FD5BF111085, C065B0DCC9A6B161A4C10A9A092C60B0AC4DFCCF4C3939AE0EB4A03AAC9164DF ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Activities.C#\46a09e47ef0565f42b107a892be2aebb\System.Activities.Core.Presentation.ni.dll
20:13:21.0375 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Activities.C#\46a09e47ef0565f42b107a892be2aebb\System.Activities.Core.Presentation.ni.dll - ok
20:13:21.0375 0x1214  [ FEB10D17CDF5D34698404E9362F5D407, 8A85D3432F15908C6D64BE5A45A8443FC5AB7751468314438D948A01256366E0 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Activities.D#\b18967108325b15490345e58ed4ae806\System.Activities.DurableInstancing.ni.dll
20:13:21.0375 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Activities.D#\b18967108325b15490345e58ed4ae806\System.Activities.DurableInstancing.ni.dll - ok
20:13:21.0390 0x1214  [ 28FD1F38F41E2FDE2055428E9539DE5E, 721A25065261BAB801736CC96D4C0381BD881EC8DEA58215B63E49C2225998FA ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Activities.P#\57953074797a7f8e2490407d4697592b\System.Activities.Presentation.ni.dll
20:13:21.0390 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Activities.P#\57953074797a7f8e2490407d4697592b\System.Activities.Presentation.ni.dll - ok
20:13:21.0390 0x1214  [ AFA2E0782F05C33A241AFAE3901EFA53, 2D6FD783E98324CB6871A21932C4DB5C81AE082507B1881289C66A24973BBC56 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.AddIn\67db15e1290376d45866c700b4b2f35c\System.AddIn.ni.dll
20:13:21.0390 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.AddIn\67db15e1290376d45866c700b4b2f35c\System.AddIn.ni.dll - ok
20:13:21.0390 0x1214  [ 365F51410C48B43CD9888B9E3DDEA0EB, 698BF47F8F6EC1B384357908BE705078674E210A57035A235DE4FC26FE5DAF0F ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.AddIn.Contra#\a1bcb55c8b112ca97615656d70d276bf\System.AddIn.Contract.ni.dll
20:13:21.0390 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.AddIn.Contra#\a1bcb55c8b112ca97615656d70d276bf\System.AddIn.Contract.ni.dll - ok
20:13:21.0406 0x1214  [ 1DE2A8CDF26F591F0B5CF170CD4BD2CC, E05561A0904278BE3F1A3D003F162A101855EE79BD58DA34801200A6AD17F6DB ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ComponentMod#\b9a165b825eebccd428c343ec4b9e3a8\System.ComponentModel.Composition.ni.dll
20:13:21.0406 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ComponentMod#\b9a165b825eebccd428c343ec4b9e3a8\System.ComponentModel.Composition.ni.dll - ok
20:13:21.0406 0x1214  [ FA53F5C9E5C4F34BF6E8CEAABC93BC3E, 8C7F7094FAA00C28D3FABEA9C9CFFC81AF51176E86A07852C3632DC22A410734 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ComponentMod#\6fdd288e5644d83723c964c3c3f2ee7d\System.ComponentModel.DataAnnotations.ni.dll
20:13:21.0406 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ComponentMod#\6fdd288e5644d83723c964c3c3f2ee7d\System.ComponentModel.DataAnnotations.ni.dll - ok
20:13:21.0406 0x1214  [ 8ED585D5DC45FC8464F0A130980FBDC1, B699CDA3CC52A228DD0CC29EDD093EA843ABEA8F4776A5426C3C324158176802 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Data.DataSet#\ff2e30f65f846ca567ec85050fe30316\System.Data.DataSetExtensions.ni.dll
20:13:21.0406 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Data.DataSet#\ff2e30f65f846ca567ec85050fe30316\System.Data.DataSetExtensions.ni.dll - ok
20:13:21.0421 0x1214  [ 4699D71658A6013EC241D68AC376923A, 2D1789D90D67546FD3C75D0A29BF88AB447CF6B601FCB81E9229A6DB16D1E0DE ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Data.Entity\ef4ff8dffe8c9d6aee1b978c8333ecdd\System.Data.Entity.ni.dll
20:13:21.0421 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Data.Entity\ef4ff8dffe8c9d6aee1b978c8333ecdd\System.Data.Entity.ni.dll - ok
20:13:21.0421 0x1214  [ 4B1A4604E28E7059011D1657DB774305, 5C44506CD6C1F65F1C04D7E26427FBA3E3FC5B1D44EFA066634D2A119215E46C ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Data.Entity.#\240cd9cd7110b561ab5f6d020ea12772\System.Data.Entity.Design.ni.dll
20:13:21.0421 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Data.Entity.#\240cd9cd7110b561ab5f6d020ea12772\System.Data.Entity.Design.ni.dll - ok
20:13:21.0437 0x1214  [ B6CC1A1A5B64631709EB734CB08F2D37, 3DDC5A0ADFCC9877318A439C1B8A39A98A573E82202BDA9FAB748F573B774742 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Data.Linq\9872a39c063497ded555f8ee1e7c7fe4\System.Data.Linq.ni.dll
20:13:21.0437 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Data.Linq\9872a39c063497ded555f8ee1e7c7fe4\System.Data.Linq.ni.dll - ok
20:13:21.0437 0x1214  [ A9F143A3E164C4406C687E067884933C, 649B0D2F06C883A30967C49AC2A30356DC43F79A70E665FF248A667B403CEEBD ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Data.Services\db6ec71299621a1faf20912c845239bc\System.Data.Services.ni.dll
20:13:21.0437 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Data.Services\db6ec71299621a1faf20912c845239bc\System.Data.Services.ni.dll - ok
20:13:21.0437 0x1214  [ F3A704033601F0341311B89729E85705, A51A7D15EFDD3B4AECCA87313CCDFAE999E494F33D015E408C2BEE2ACDF048FE ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\156f99755f965aabfcbdd2dc2397dffb\System.ServiceModel.Web.ni.dll
20:13:21.0437 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\156f99755f965aabfcbdd2dc2397dffb\System.ServiceModel.Web.ni.dll - ok
20:13:21.0453 0x1214  [ 33A600F835E06A6835FF50058C2B8C90, 32EF67AB94F7FE07B7B227A04BE1A80F7495632E096282DA1E9BF7AEA2B3867F ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel\34860f561001d4b36115b02d39e2c96a\System.ServiceModel.ni.dll
20:13:21.0453 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel\34860f561001d4b36115b02d39e2c96a\System.ServiceModel.ni.dll - ok
20:13:21.0453 0x1214  [ 675DA6C2EC9BF30FEB15BAC9962F389C, 14B00E8410B11BFCD4BE78D3C2588D4BCF63012BB1EE4548AFC4D4A389C85601 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.IdentityModel\79c3d52bf40a5904de43d073dfbe91dd\System.IdentityModel.ni.dll
20:13:21.0453 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.IdentityModel\79c3d52bf40a5904de43d073dfbe91dd\System.IdentityModel.ni.dll - ok
20:13:21.0468 0x1214  [ 9BAB5592A2A81BCE2817EFE2DA5DE654, 43EA7DBFA04DA6408DD5AE8B4E48DA28685A4B0E774B738B4AB0B2A92D2CF8D6 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Messaging\2978636e3aea1e19699c764808f464d1\System.Messaging.ni.dll
20:13:21.0468 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Messaging\2978636e3aea1e19699c764808f464d1\System.Messaging.ni.dll - ok
20:13:21.0468 0x1214  [ 17764B1D13D8AF4F65B8DB43DE2FFC19, 27D341AB2764DFD215E4ED8480D5BBC22D989AB36C81FB4996D6AE752D9508F8 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.IdentityMode#\d435d9a681e91dca4628eaaf666af2fc\System.IdentityModel.Selectors.ni.dll
20:13:21.0468 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.IdentityMode#\d435d9a681e91dca4628eaaf666af2fc\System.IdentityModel.Selectors.ni.dll - ok
20:13:21.0468 0x1214  [ 24C8EDAE2F7537B57C0D10771D92CC37, B88430D7A3739A442752D81CF416FF5ADDB236FA07DD05B50D7FE163965EE9F7 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\44bd37a7627e8573507a326f0236d095\System.ServiceModel.Activation.ni.dll
20:13:21.0468 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\44bd37a7627e8573507a326f0236d095\System.ServiceModel.Activation.ni.dll - ok
20:13:21.0484 0x1214  [ 13821693E90188348643C0ED4479BF30, 3E5FD6D186D3CEAB665D72438EEB879BFDD393E92605F76780E9F3A99B7C969C ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\a7e32b811659470c51fae6f81c6ac9d9\System.ServiceModel.Activities.ni.dll
20:13:21.0484 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\a7e32b811659470c51fae6f81c6ac9d9\System.ServiceModel.Activities.ni.dll - ok
20:13:21.0484 0x1214  [ A7AB544C897E923C32A902693AB4E2C0, 56238625A9A713DEC188A00A4EE6537B0F0F5C2D4DB4412A20C2BB71E60F3E93 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Management\5c246bb8f28b6248a899590e5aadaebd\System.Management.ni.dll
20:13:21.0484 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Management\5c246bb8f28b6248a899590e5aadaebd\System.Management.ni.dll - ok
20:13:21.0499 0x1214  [ 55D5B37EB773D52165664EB0FB7097C5, 158FB33BFDDE0A57EA67BC16B1AD3C7DBA96721C6DF7C36212947F9DE63BEC4C ] C:\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.JScript\df9ff6440d0ebb345a63309d3b7e0ac0\Microsoft.JScript.ni.dll
20:13:21.0499 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.JScript\df9ff6440d0ebb345a63309d3b7e0ac0\Microsoft.JScript.ni.dll - ok
20:13:21.0499 0x1214  [ 3764C2D06E534A7C468B1241819A863F, 1E93C0E9D19E3B134744864DB6C0151CAC9C301ACDE7B83A14F138E3F28AD477 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xaml.Hosting\617694b95be34db57b30d82773431917\System.Xaml.Hosting.ni.dll
20:13:21.0499 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xaml.Hosting\617694b95be34db57b30d82773431917\System.Xaml.Hosting.ni.dll - ok
20:13:21.0499 0x1214  [ E8E54D84216D797D7EC885FFF5B72696, 2F1BA53291631E993EA19A128A4F68EF2135B2EF3DFB1F4230369F71348D7F3C ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.Extensio#\d355857af46568eafcfb0fb995950a40\System.Web.Extensions.ni.dll
20:13:21.0499 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.Extensio#\d355857af46568eafcfb0fb995950a40\System.Web.Extensions.ni.dll - ok
20:13:21.0515 0x1214  [ 16474E03C25FA16DA3AB8DB139696908, 9F51E5DFCD631035BB378F933919A46A4D5E76A84FCB5C3A2BED9455474178CB ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Data.Service#\4764832c7a926dacc7d227770161916e\System.Data.Services.Client.ni.dll
20:13:21.0515 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Data.Service#\4764832c7a926dacc7d227770161916e\System.Data.Services.Client.ni.dll - ok
20:13:21.0515 0x1214  [ 64EEFDF790AC971BFEFFB5EA4EAD7FC5, 5265A420DAAFADA67BE1DAEEDABED701B120B74687A11ACC508B4C80A6700039 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Data.Service#\aa9501478cac7e8188b478e55597c419\System.Data.Services.Design.ni.dll
20:13:21.0515 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Data.Service#\aa9501478cac7e8188b478e55597c419\System.Data.Services.Design.ni.dll - ok
20:13:21.0515 0x1214  [ 55BD9C368CA81369591C402F14596023, 914E3E849B37AA53801A4FB9724C3D4DDE42AE2DBA67B2376B180A042A3F1779 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Device\9ef722bc7159258fc1761ac3a4337925\System.Device.ni.dll
20:13:21.0515 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Device\9ef722bc7159258fc1761ac3a4337925\System.Device.ni.dll - ok
20:13:21.0531 0x1214  [ 6C7831266BAB81CB8F59B2A77E27F1B1, B1B8292EDA37A8C77FF5FD15D10C59F12D5A3D44BAD8676AA82E3AA2FAA6EE0E ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.DirectorySer#\e28e3318cc49b222a82708a113ab1442\System.DirectoryServices.AccountManagement.ni.dll
20:13:21.0531 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.DirectorySer#\e28e3318cc49b222a82708a113ab1442\System.DirectoryServices.AccountManagement.ni.dll - ok
20:13:21.0531 0x1214  [ 8633A0D1808B7F429995CBBBABED2121, EB1FC9C7E5F559AA6D345D4C366315CBD5AFDB55FC38390A59A1AC51D3168FDD ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.IO.Log\36203510c04a9b767c2ba9523d05ffda\System.IO.Log.ni.dll
20:13:21.0531 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.IO.Log\36203510c04a9b767c2ba9523d05ffda\System.IO.Log.ni.dll - ok
20:13:21.0531 0x1214  [ 4617A580C78761F6B09F3B5FC86B3C75, 3B1435B2EC5BCE489FBCF000E1E73A474EAF7B7777E6DFFEEE25748A7EE10E06 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Management.I#\6ab0723b5f21a1ff10c5f1d4457e9fc2\System.Management.Instrumentation.ni.dll
20:13:21.0531 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Management.I#\6ab0723b5f21a1ff10c5f1d4457e9fc2\System.Management.Instrumentation.ni.dll - ok
20:13:21.0546 0x1214  [ FB456F74850A23FD2E19542186D2DC3D, EB44AED09FE88EE5736EE0E50FD63225224A5C740384D466EC82E714F474BDD0 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Net\9d6852f7e73bf7065230657d4fdf16fe\System.Net.ni.dll
20:13:21.0546 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Net\9d6852f7e73bf7065230657d4fdf16fe\System.Net.ni.dll - ok
20:13:21.0546 0x1214  [ EC84DA8CF09560ED8F669D03ABE39B58, 601E9F2D8F4FE1C46A887239537893BDDE5A06735EA2B8559CD883145F70049D ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\01bf2a2bb19c6ea00acbe57c074bf1a7\System.ServiceModel.Channels.ni.dll
20:13:21.0546 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\01bf2a2bb19c6ea00acbe57c074bf1a7\System.ServiceModel.Channels.ni.dll - ok
20:13:21.0562 0x1214  [ DB8BC1F6B58FD57BAC30BA12C2E392E1, 1D0C1BAE6E070D30DF102BCF7A88FA844612904D341347E6A930DA7699A391EF ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\7cef8beac49b2f668ff3c4cc5ad2f025\System.ServiceModel.Discovery.ni.dll
20:13:21.0562 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\7cef8beac49b2f668ff3c4cc5ad2f025\System.ServiceModel.Discovery.ni.dll - ok
20:13:21.0562 0x1214  [ E15885A77D62CFEDD0EE16D799741BA4, 4F14087BC1F995132BADB09AC626B4E69FF807C9EBB220791CC715CF306F1145 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\71e576be16d05977a9add160c2123781\System.ServiceModel.Routing.ni.dll
20:13:21.0562 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\71e576be16d05977a9add160c2123781\System.ServiceModel.Routing.ni.dll - ok
20:13:21.0562 0x1214  [ 7872D505147AFBE493234172CDBC9695, 99DB6AD91B604E0C87AD9A5C1B6C254B1AC2696F2402E9CD596B0E7C1014B12A ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\dd377f2c7ad28cac4334aae87146121d\System.ServiceModel.ServiceMoniker40.ni.dll
20:13:21.0562 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\dd377f2c7ad28cac4334aae87146121d\System.ServiceModel.ServiceMoniker40.ni.dll - ok
20:13:21.0577 0x1214  [ EC15A9088EBCB2773BECEEC09F9B7595, B22664D400DCE35AD71BD3E9855FAC3CF581D5BD3C6EF28939C41CF13F65B92D ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Speech\480f2e9ffae2a06d88e4e659f0d00ca6\System.Speech.ni.dll
20:13:21.0577 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Speech\480f2e9ffae2a06d88e4e659f0d00ca6\System.Speech.ni.dll - ok
20:13:21.0577 0x1214  [ 0FDFBEDBE7FB5473A756383452DEA6B9, 47F6956A71E782C4985147C9874CCE8952D27A30084AA1C66B95F574C60CA581 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.Abstract#\4056751581e678740b7c079b253b6dde\System.Web.Abstractions.ni.dll
20:13:21.0577 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.Abstract#\4056751581e678740b7c079b253b6dde\System.Web.Abstractions.ni.dll - ok
20:13:21.0593 0x1214  [ 1A9CE61943AAC35CFA2D6E673389DDDD, AE200A6CAC9090A8A036EAE6EC69950765324B2C4568903E97FBB54EA50862F4 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.DataVisu#\d39aa6072db3cccee8e3d6b2c6ea4402\System.Web.DataVisualization.ni.dll
20:13:21.0593 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.DataVisu#\d39aa6072db3cccee8e3d6b2c6ea4402\System.Web.DataVisualization.ni.dll - ok
20:13:21.0593 0x1214  [ EEA0ABE2E007FF875E4C9F987AFA4B44, A38E25A6196C5B28737F0784097DBAE95A681D0DDC19D4462302CF79BC92F24D ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.DataVisu#\e9a8caacbb35242e7c5ed2dadd2da385\System.Web.DataVisualization.Design.ni.dll
20:13:21.0593 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.DataVisu#\e9a8caacbb35242e7c5ed2dadd2da385\System.Web.DataVisualization.Design.ni.dll - ok
20:13:21.0593 0x1214  [ B18C167FB557ABA65D194A904F501E44, 9BE59ED59C8E434ECD7FE64653C937A2D98F40B5C7FE581E783E65C5883E38A1 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.DynamicD#\4afa18272d739bfee04af937ffd34dc2\System.Web.DynamicData.ni.dll
20:13:21.0593 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.DynamicD#\4afa18272d739bfee04af937ffd34dc2\System.Web.DynamicData.ni.dll - ok
20:13:21.0609 0x1214  [ FF6965C5A030D337EE0F0F89AB230A70, 1A454428363B4883FD5A33A88299CF7DAAA0927D374D29B110B3C3814428122F ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.Entity\5b75d5dc6b9ea05b15423652bac81b37\System.Web.Entity.ni.dll
20:13:21.0609 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.Entity\5b75d5dc6b9ea05b15423652bac81b37\System.Web.Entity.ni.dll - ok
20:13:21.0609 0x1214  [ 0F88A68E97AF1490550471CCE19E29B0, 421EEB32D4E57FA626152D73056DB5D56476BB737B47F39B0CF10E40E2EF1B8E ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.DynamicD#\17536c9c4fcf9c0f6263bc2472af89c8\System.Web.DynamicData.Design.ni.dll
20:13:21.0609 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.DynamicD#\17536c9c4fcf9c0f6263bc2472af89c8\System.Web.DynamicData.Design.ni.dll - ok
20:13:21.0624 0x1214  [ 1BEBF42D01CACC421A8301584DD624F0, 1C8415CECE53103750C3E5E378B1C22194F51C03E99B4F519D30CF5A8F4F47FF ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.Entity.D#\4f803f1625f898d2c596a62ee6c8c65c\System.Web.Entity.Design.ni.dll
20:13:21.0624 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.Entity.D#\4f803f1625f898d2c596a62ee6c8c65c\System.Web.Entity.Design.ni.dll - ok
20:13:21.0624 0x1214  [ 2B8F1C5DF63842D18F4A523114FBD02B, CD2A247E367106D657E71AFB0F2C854B069792C8B6552983E6495B710EE142D7 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.Extensio#\e9f50f841217108eabde1a288dce85e4\System.Web.Extensions.Design.ni.dll
20:13:21.0624 0x1214  C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.Extensio#\e9f50f841217108eabde1a288dce85e4\System.Web.Extensions.Design.ni.dll - ok
20:13:21.0780 0x1214  AV detected via SS2: Avira Desktop, C:\Program Files (x86)\Avira\AntiVir Desktop\wsctool.exe ( 13.6.20.2100 ), 0x41010 ( enabled : outofdate )
20:13:21.0780 0x1214  FW detected via SS2: COMODO Firewall, C:\Program Files\COMODO\COMODO Internet Security\cfp.exe ( 5.12.59641.2599 ), 0x61010 ( enabled )
20:13:24.0666 0x1214  ============================================================
20:13:24.0666 0x1214  Scan finished
20:13:24.0666 0x1214  ============================================================
20:13:24.0666 0x0600  Detected object count: 0
20:13:24.0666 0x0600  Actual detected object count: 0
20:25:18.0402 0x04d0  Deinitialize success

 

 

 

aswMBR IN NEXT POST


aswMBR

 

aswMBR version 0.9.9.1771 Copyright© 2011 AVAST Software
Run date: 2013-10-27 21:35:49
-----------------------------
21:35:50.015    OS Version: Windows x64 6.1.7600
21:35:50.015    Number of processors: 4 586 0x503
21:35:50.015    ComputerName: HENRY-PC  UserName: Scott
21:36:01.216    Initialize success
21:36:51.323    AVAST engine defs: 13102701
21:38:44.470    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0
21:38:44.470    Disk 0 Vendor: WDC_WD5000BEVT-22A0RT0 01.01A01 Size: 476940MB BusType: 11
21:38:44.486    Disk 0 MBR read successfully
21:38:44.486    Disk 0 MBR scan
21:38:44.533    Disk 0 Windows VISTA default MBR code
21:38:44.548    Disk 0 Partition 1 00     27 Hidden NTFS WinRE NTFS        13000 MB offset 2048
21:38:44.579    Disk 0 Partition 2 80 (A) 07    HPFS/NTFS NTFS          100 MB offset 26626048
21:38:44.611    Disk 0 Partition 3 00     07    HPFS/NTFS NTFS       463838 MB offset 26830848
21:38:44.642    Disk 0 scanning C:\Windows\system32\drivers
21:39:09.649    Service scanning
21:39:48.727    Service Tablet2k C:\Windows\"%SystemRoot%\System32\Drivers\Tablet2k.sys" **LOCKED** 123
21:39:58.149    Modules scanning
21:39:58.149    Disk 0 trace - called modules:
21:39:58.664    ntoskrnl.exe CLASSPNP.SYS disk.sys >>UNKNOWN [0xfffffa8003ca72c0]<<spmb.sys ataport.SYS PCIIDEX.SYS hal.dll msahci.sys
21:39:58.679    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8004b94060]
21:39:58.679    3 CLASSPNP.SYS[fffff880013ba43f] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0xfffffa8004d1b680]
21:39:58.679    \Driver\atapi[0xfffffa8004a6f060] -> IRP_MJ_CREATE -> 0xfffffa8003ca72c0
21:40:01.363    AVAST engine scan C:\Windows
21:40:14.982    AVAST engine scan C:\Windows\system32
21:47:40.768    AVAST engine scan C:\Windows\system32\drivers
21:47:59.597    AVAST engine scan C:\Users\Scott
00:37:32.761    AVAST engine scan C:\ProgramData
01:12:22.521    Scan finished successfully
01:15:27.869    Disk 0 MBR has been saved successfully to "C:\Users\Scott\Desktop\MBR.dat"
01:15:27.875    The log file has been saved successfully to "C:\Users\Scott\Desktop\aswMBR.txt"

 



#12 bloopie

bloopie

    Bleepin' Sith Turner


  • Malware Response Team
  • 7,927 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:New York
  • Local time:04:26 PM

Posted 28 October 2013 - 06:20 PM

Hello again,
 
When you ran aswMBR it should have created MBR.dat file on your desktop. This is a copy of your MBR that I would like to have a look at. Do NOT delete it.
 
Please attach MBR.dat to your next reply. <-- It is important that this file be attached!
 
==========
 
Next please download ListParts64 to your Desktop.
  • Double click ListParts64.exe to launch the program.
  • Press the Scan button.
  • When finished scanning it will make a log Result.txt on your Desktop.
  • Please post me the contents of the log. <--This one should be copy/pasted.
==========
 
Please attach the MBR.dat file, and paste the Result.txt in your next reply!
 
bloopie

#13 stqcb

stqcb
  • Topic Starter

  • Members
  • 52 posts
  • OFFLINE
  •  
  • Local time:03:26 PM

Posted 28 October 2013 - 07:13 PM

Hi blooper

 

When I tried to upload MBR.dat it says "You aren't permitted to upload this kind of file", so I uploaded it to Pogoplug.com here - http://ppl.ug/0MIwYLpr_YA/

 

 

Here's the result from ListParts64

 

ListParts by Farbar Version: 20-10-2013
Ran by Scott (administrator) on 28-10-2013 at 19:45:45
Windows 7 (X64)
Running From: C:\Users\Scott\Desktop
Language: 0409
************************************************************

========================= Memory info ======================

Percentage of memory in use: 59%
Total physical RAM: 4094.17 MB
Available physical RAM: 1657.19 MB
Total Pagefile: 5092.31 MB
Available Pagefile: 2011.8 MB
Total Virtual: 8192 MB
Available Virtual: 8191.89 MB

======================= Partitions =========================

1 Drive c: (ACER) (Fixed) (Total:452.97 GB) (Free:125.52 GB) NTFS

  Disk ###  Status         Size     Free     Dyn  Gpt
  --------  -------------  -------  -------  ---  ---
  Disk 0    Online          465 GB      0 B         

Partitions of Disk 0:
===============

Disk ID: F606F606

  Partition ###  Type              Size     Offset
  -------------  ----------------  -------  -------
  Partition 1    Recovery            12 GB  1024 KB
  Partition 2    Primary            100 MB    12 GB
  Partition 3    Primary            452 GB    12 GB

======================================================================================================

Disk: 0
Partition 1
Type  : 27
Hidden: Yes
Active: No

  Volume ###  Ltr  Label        Fs     Type        Size     Status     Info
  ----------  ---  -----------  -----  ----------  -------  ---------  --------
* Volume 3         PQSERVICE    NTFS   Partition     12 GB  Healthy    Hidden  

======================================================================================================

Disk: 0
Partition 2
Type  : 07
Hidden: No
Active: Yes

  Volume ###  Ltr  Label        Fs     Type        Size     Status     Info
  ----------  ---  -----------  -----  ----------  -------  ---------  --------
* Volume 1         SYSTEM RESE  NTFS   Partition    100 MB  Healthy    System (partition with boot components)  

======================================================================================================

Disk: 0
Partition 3
Type  : 07
Hidden: No
Active: No

  Volume ###  Ltr  Label        Fs     Type        Size     Status     Info
  ----------  ---  -----------  -----  ----------  -------  ---------  --------
* Volume 2     C   ACER         NTFS   Partition    452 GB  Healthy    Boot    

======================================================================================================
============================== MBR Partition Table ==================

==============================
Partitions of Disk 0:
===============
Disk ID: F606F606
Partition 1: (Not Active) - (Size=13 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=453 GB) - (Type=07 NTFS)


****** End Of Log ******



#14 bloopie

bloopie

    Bleepin' Sith Turner


  • Malware Response Team
  • 7,927 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:New York
  • Local time:04:26 PM

Posted 28 October 2013 - 10:34 PM

Hello again,

 

"You aren't permitted to upload this kind of file"

I'm sorry, I meant to zip the file up, then upload it, but no need to now as I've got my information on that...let's do this next:

 

Download Malwarebytes Anti-Rootkit from HERE to your Desktop.

  • Unzip downloaded file.
  • Open the folder where the contents were unzipped and run mbar.exe
  • Follow the instructions in the wizard to update and allow the program to scan your computer for threats.
  • DO NOT click on the Cleanup button. Simply exit the program.
  • When done, please post the two logs produced they will be in the MBAR folder..... mbar-log-xxxxx.txt and system-log.txt

bloopie


Edited by bloopie, 28 October 2013 - 10:36 PM.


#15 stqcb

stqcb
  • Topic Starter

  • Members
  • 52 posts
  • OFFLINE
  •  
  • Local time:03:26 PM

Posted 29 October 2013 - 11:53 AM

Hi bloopie

 

That scan took longer than I expected. Anyway, here are the logs.

 

 

 

mbar log

 

Malwarebytes Anti-Rootkit BETA 1.07.0.1007
www.malwarebytes.org

Database version: v2013.10.29.06

Windows 7 x64 NTFS
Internet Explorer 9.0.8112.16421
Scott :: HENRY-PC [administrator]

10/29/13 9:45:15 AM
mbar-log-2013-10-29 (09-45-15).txt

Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled:
Kernel memory modifications detected. Deep Anti-Rootkit Scan engaged.
Objects scanned: 366469
Time elapsed: 3 hour(s), 5 minute(s), 16 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

Physical Sectors Detected: 0
(No malicious items detected)

(end)
 

 

 

 

 

 

 

System log

 

---------------------------------------
Malwarebytes Anti-Rootkit BETA 1.07.0.1007

© Malwarebytes Corporation 2011-2012

OS version: 6.1.7600 Windows 7 x64

Account is Administrative

Internet Explorer version: 9.0.8112.16421

File system is: NTFS
Disk drives: C:\ DRIVE_FIXED
CPU speed: 1.994000 GHz
Memory total: 4293050368, free: 1319469056

---------------------------------------
Malwarebytes Anti-Rootkit BETA 1.07.0.1007

© Malwarebytes Corporation 2011-2012

OS version: 6.1.7600 Windows 7 x64

Account is Administrative

Internet Explorer version: 9.0.8112.16421

File system is: NTFS
Disk drives: C:\ DRIVE_FIXED
CPU speed: 1.994000 GHz
Memory total: 4293050368, free: 1322147840

Downloaded database version: v2013.10.29.01
Downloaded database version: v2013.10.11.02
=======================================
Initializing...
------------ Kernel report ------------
     10/28/2013 23:44:47
------------ Loaded modules -----------
\SystemRoot\system32\ntoskrnl.exe
\SystemRoot\system32\hal.dll
\SystemRoot\system32\kdcom.dll
\SystemRoot\system32\mcupdate_AuthenticAMD.dll
\SystemRoot\system32\PSHED.dll
\SystemRoot\system32\CLFS.SYS
\SystemRoot\system32\CI.dll
\SystemRoot\system32\drivers\Wdf01000.sys
\SystemRoot\system32\drivers\WDFLDR.SYS
\SystemRoot\System32\Drivers\spfe.sys
\SystemRoot\System32\Drivers\WMILIB.SYS
\SystemRoot\System32\Drivers\SCSIPORT.SYS
\SystemRoot\system32\DRIVERS\ACPI.sys
\SystemRoot\system32\DRIVERS\msisadrv.sys
\SystemRoot\system32\DRIVERS\vdrvroot.sys
\SystemRoot\system32\DRIVERS\pci.sys
\SystemRoot\System32\drivers\partmgr.sys
\SystemRoot\system32\DRIVERS\compbatt.sys
\SystemRoot\system32\DRIVERS\BATTC.SYS
\SystemRoot\system32\DRIVERS\volmgr.sys
\SystemRoot\System32\drivers\volmgrx.sys
\SystemRoot\system32\DRIVERS\pciide.sys
\SystemRoot\system32\DRIVERS\PCIIDEX.SYS
\SystemRoot\System32\drivers\mountmgr.sys
\SystemRoot\system32\DRIVERS\atapi.sys
\SystemRoot\system32\DRIVERS\ataport.SYS
\SystemRoot\system32\DRIVERS\msahci.sys
\SystemRoot\system32\DRIVERS\amdxata.sys
\SystemRoot\system32\drivers\fltmgr.sys
\SystemRoot\system32\drivers\fileinfo.sys
\SystemRoot\system32\DRIVERS\Lbd.sys
\SystemRoot\System32\Drivers\PxHlpa64.sys
\SystemRoot\System32\Drivers\Ntfs.sys
\SystemRoot\System32\Drivers\msrpc.sys
\SystemRoot\System32\Drivers\ksecdd.sys
\SystemRoot\System32\Drivers\cng.sys
\SystemRoot\System32\drivers\pcw.sys
\SystemRoot\System32\Drivers\Fs_Rec.sys
\SystemRoot\system32\drivers\ndis.sys
\SystemRoot\system32\drivers\NETIO.SYS
\SystemRoot\System32\Drivers\ksecpkg.sys
\SystemRoot\System32\drivers\tcpip.sys
\SystemRoot\System32\drivers\fwpkclnt.sys
\SystemRoot\System32\Drivers\vbtenum.sys
\SystemRoot\system32\DRIVERS\volsnap.sys
\SystemRoot\System32\Drivers\spldr.sys
\SystemRoot\System32\drivers\rdyboost.sys
\SystemRoot\System32\Drivers\mup.sys
\SystemRoot\System32\drivers\hwpolicy.sys
\SystemRoot\System32\DRIVERS\fvevol.sys
\SystemRoot\system32\DRIVERS\disk.sys
\SystemRoot\system32\DRIVERS\CLASSPNP.SYS
\SystemRoot\System32\Drivers\BTHidMgr.sys
\SystemRoot\system32\DRIVERS\AtiPcie.sys
\SystemRoot\system32\DRIVERS\cdrom.sys
\SystemRoot\System32\DRIVERS\cmdguard.sys
\SystemRoot\system32\DRIVERS\mwlPSDFilter.sys
\SystemRoot\System32\Drivers\Null.SYS
\SystemRoot\System32\Drivers\Beep.SYS
\SystemRoot\System32\drivers\vga.sys
\SystemRoot\System32\drivers\VIDEOPRT.SYS
\SystemRoot\System32\drivers\watchdog.sys
\SystemRoot\System32\DRIVERS\RDPCDD.sys
\SystemRoot\system32\drivers\rdpencdd.sys
\SystemRoot\system32\drivers\rdprefmp.sys
\SystemRoot\System32\Drivers\Msfs.SYS
\SystemRoot\System32\Drivers\Npfs.SYS
\SystemRoot\system32\DRIVERS\tdx.sys
\SystemRoot\system32\DRIVERS\TDI.SYS
\SystemRoot\System32\DRIVERS\cmdhlp.sys
\SystemRoot\System32\DRIVERS\netbt.sys
\SystemRoot\system32\drivers\afd.sys
\SystemRoot\system32\drivers\ws2ifsl.sys
\SystemRoot\system32\DRIVERS\wfplwf.sys
\SystemRoot\system32\DRIVERS\pacer.sys
\SystemRoot\system32\DRIVERS\vwififlt.sys
\SystemRoot\system32\DRIVERS\inspect.sys
\SystemRoot\system32\DRIVERS\netbios.sys
\SystemRoot\system32\DRIVERS\wanarp.sys
\SystemRoot\System32\drivers\truecrypt.sys
\SystemRoot\system32\DRIVERS\termdd.sys
\SystemRoot\system32\DRIVERS\rdbss.sys
\SystemRoot\system32\drivers\nsiproxy.sys
\SystemRoot\system32\DRIVERS\mwlPSDVDisk.sys
\SystemRoot\system32\DRIVERS\mwlPSDNServ.sys
\SystemRoot\system32\DRIVERS\mssmbios.sys
\SystemRoot\System32\drivers\discache.sys
\SystemRoot\System32\Drivers\dfsc.sys
\SystemRoot\system32\DRIVERS\blbdrive.sys
\SystemRoot\system32\DRIVERS\avkmgr.sys
\SystemRoot\system32\DRIVERS\avipbb.sys
\SystemRoot\system32\DRIVERS\tunnel.sys
\SystemRoot\system32\DRIVERS\amdppm.sys
\SystemRoot\system32\DRIVERS\atikmpag.sys
\SystemRoot\system32\DRIVERS\atipmdag.sys
\SystemRoot\System32\drivers\dxgkrnl.sys
\SystemRoot\System32\drivers\dxgmms1.sys
\SystemRoot\system32\DRIVERS\HDAudBus.sys
\SystemRoot\system32\DRIVERS\k57nd60a.sys
\SystemRoot\system32\DRIVERS\athrx.sys
\SystemRoot\system32\DRIVERS\vwifibus.sys
\??\C:\Windows\system32\drivers\UBHelper.sys
\??\C:\Windows\system32\drivers\NTIDrvr.sys
\SystemRoot\system32\DRIVERS\GEARAspiWDM.sys
\SystemRoot\system32\DRIVERS\usbohci.sys
\SystemRoot\system32\DRIVERS\USBPORT.SYS
\SystemRoot\system32\DRIVERS\usbfilter.sys
\SystemRoot\system32\DRIVERS\usbehci.sys
\SystemRoot\system32\DRIVERS\CmBatt.sys
\SystemRoot\system32\DRIVERS\i8042prt.sys
\SystemRoot\system32\DRIVERS\kbdclass.sys
\SystemRoot\system32\DRIVERS\Apfiltr.sys
\SystemRoot\system32\DRIVERS\mouclass.sys
\SystemRoot\system32\DRIVERS\wmiacpi.sys
\SystemRoot\System32\Drivers\VcommMgr.sys
\SystemRoot\system32\DRIVERS\CompositeBus.sys
\SystemRoot\system32\DRIVERS\blueletaudio.sys
\SystemRoot\system32\DRIVERS\portcls.sys
\SystemRoot\system32\DRIVERS\drmk.sys
\SystemRoot\system32\DRIVERS\ks.sys
\SystemRoot\system32\drivers\ksthunk.sys
\SystemRoot\system32\DRIVERS\BlueletSCOAudio.sys
\SystemRoot\System32\Drivers\RootMdm.sys
\SystemRoot\system32\drivers\modem.sys
\SystemRoot\system32\DRIVERS\AgileVpn.sys
\SystemRoot\system32\DRIVERS\rasl2tp.sys
\SystemRoot\system32\DRIVERS\ndistapi.sys
\SystemRoot\system32\DRIVERS\ndiswan.sys
\SystemRoot\system32\DRIVERS\raspppoe.sys
\SystemRoot\system32\DRIVERS\raspptp.sys
\SystemRoot\system32\DRIVERS\rassstp.sys
\SystemRoot\system32\DRIVERS\btnetdrv.sys
\SystemRoot\system32\DRIVERS\VComm.sys
\SystemRoot\system32\DRIVERS\serenum.sys
\SystemRoot\system32\DRIVERS\vHidDev.sys
\SystemRoot\system32\DRIVERS\HIDCLASS.SYS
\SystemRoot\system32\DRIVERS\HIDPARSE.SYS
\SystemRoot\system32\DRIVERS\swenum.sys
\SystemRoot\system32\DRIVERS\MarvinBus64.sys
\SystemRoot\system32\DRIVERS\amdiox64.sys
\SystemRoot\system32\DRIVERS\PTSimBus.sys
\SystemRoot\system32\DRIVERS\umbus.sys
\SystemRoot\system32\DRIVERS\usbhub.sys
\SystemRoot\System32\Drivers\NDProxy.SYS
\SystemRoot\system32\DRIVERS\mouhid.sys
\SystemRoot\system32\DRIVERS\kbdhid.sys
\SystemRoot\system32\drivers\AtiHdmi.sys
\SystemRoot\system32\drivers\RTKVHD64.sys
\SystemRoot\system32\DRIVERS\usbccgp.sys
\SystemRoot\system32\DRIVERS\USBD.SYS
\SystemRoot\system32\DRIVERS\hidusb.sys
\SystemRoot\System32\win32k.sys
\SystemRoot\System32\drivers\Dxapi.sys
\SystemRoot\System32\Drivers\usbvideo.sys
\SystemRoot\System32\Drivers\crashdmp.sys
\SystemRoot\System32\Drivers\dump_dumpata.sys
\SystemRoot\System32\Drivers\dump_msahci.sys
\SystemRoot\System32\Drivers\dump_dumpfve.sys
\SystemRoot\system32\DRIVERS\monitor.sys
\SystemRoot\System32\TSDDD.dll
\SystemRoot\System32\cdd.dll
\SystemRoot\System32\ATMFD.DLL
\SystemRoot\system32\drivers\luafv.sys
\SystemRoot\system32\DRIVERS\avgntflt.sys
\SystemRoot\system32\DRIVERS\lltdio.sys
\SystemRoot\system32\DRIVERS\nwifi.sys
\SystemRoot\system32\DRIVERS\ndisuio.sys
\SystemRoot\system32\DRIVERS\rspndr.sys
\SystemRoot\system32\DRIVERS\vwifimp.sys
\SystemRoot\system32\drivers\HTTP.sys
\SystemRoot\system32\DRIVERS\bowser.sys
\SystemRoot\System32\drivers\mpsdrv.sys
\SystemRoot\system32\DRIVERS\mrxsmb.sys
\SystemRoot\system32\DRIVERS\mrxsmb10.sys
\SystemRoot\system32\DRIVERS\mrxsmb20.sys
\SystemRoot\system32\drivers\peauth.sys
\SystemRoot\System32\Drivers\secdrv.SYS
\SystemRoot\System32\DRIVERS\srvnet.sys
\SystemRoot\System32\drivers\tcpipreg.sys
\SystemRoot\System32\DRIVERS\srv2.sys
\SystemRoot\System32\DRIVERS\srv.sys
\??\C:\Program Files (x86)\Lavasoft\Ad-Aware\KernExplorer64.sys
\SystemRoot\system32\DRIVERS\asyncmac.sys
\??\C:\Windows\system32\drivers\mbamchameleon.sys
\??\C:\Windows\system32\drivers\MBAMSwissArmy.sys
\Windows\System32\ntdll.dll
\Windows\System32\smss.exe
\Windows\System32\apisetschema.dll
----------- End -----------
Done!
<<<1>>>
Upper Device Name: \Device\Harddisk0\DR0
Upper Device Object: 0xfffffa8004a85060
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\Ide\IdeDeviceP0T0L0-0\
Lower Device Object: 0xfffffa8004d1c680
Lower Device Driver Name: \Driver\atapi\
IRP handler 0 of \Driver\atapi points to an unknown module
Unhooking enabled.
<<<1>>>
Upper Device Name: \Device\Harddisk0\DR0
Upper Device Object: 0xfffffa8004a85060
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\Ide\IdeDeviceP0T0L0-0\
Lower Device Object: 0xfffffa8004d1c680
Lower Device Driver Name: \Driver\atapi\
Driver name found: atapi
Initialization returned 0x0
Port sub-driver loaded: \??\C:\Windows\System32\drivers\ataport.sys (0x0)
Load Function returned 0x0
<<<2>>>
Physical Sector Size: 512
Drive: 0, DevicePointer: 0xfffffa8004a85060, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xfffffa8004d47b90, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xfffffa8004a85060, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
DevicePointer: 0xfffffa8004d1c680, DeviceName: \Device\Ide\IdeDeviceP0T0L0-0\, DriverName: \Driver\atapi\
------------ End ----------
Alternate DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
Upper DeviceData: 0xfffff8a00d430960, 0xfffffa8004a85060, 0xfffffa80064c5090
Lower DeviceData: 0xfffff8a00f331590, 0xfffffa8004d1c680, 0xfffffa8004e47490
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
<<<2>>>
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Scanning drivers directory: C:\WINDOWS\SYSTEM32\drivers...
<<<2>>>
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
File user open failed: C:\WINDOWS\SYSTEM32\drivers\sptd.sys (0x00000020)
Done!
Drive 0
Scanning MBR on drive 0...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: F606F606

Partition information:

    Partition 0 type is Other (0x27)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 2048  Numsec = 26624000

    Partition 1 type is Primary (0x7)
    Partition is ACTIVE.
    Partition starts at LBA: 26626048  Numsec = 204800
    Partition is not bootable

    Partition 2 type is Primary (0x7)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 26830848  Numsec = 949940272

    Partition 3 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0

Disk Size: 500107862016 bytes
Sector size: 512 bytes

Scanning physical sectors of unpartitioned space on drive 0 (1-2047-976753168-976773168)...
Done!
Scan Interrupted
Scan Interrupted
Scan Interrupted
Scan Interrupted
---------------------------------------
Malwarebytes Anti-Rootkit BETA 1.07.0.1007

© Malwarebytes Corporation 2011-2012

OS version: 6.1.7600 Windows 7 x64

Account is Administrative

Internet Explorer version: 9.0.8112.16421

File system is: NTFS
Disk drives: C:\ DRIVE_FIXED
CPU speed: 1.994000 GHz
Memory total: 4293050368, free: 2427559936

Could not load protection driver
Downloaded database version: v2013.10.29.02
Downloaded database version: v2013.10.29.03
Downloaded database version: v2013.10.29.04
Downloaded database version: v2013.10.29.05
Downloaded database version: v2013.10.29.06
=======================================
Initializing...
------------ Kernel report ------------
     10/29/2013 09:45:08
------------ Loaded modules -----------
\SystemRoot\system32\ntoskrnl.exe
\SystemRoot\system32\hal.dll
\SystemRoot\system32\kdcom.dll
\SystemRoot\system32\mcupdate_AuthenticAMD.dll
\SystemRoot\system32\PSHED.dll
\SystemRoot\system32\CLFS.SYS
\SystemRoot\system32\CI.dll
\SystemRoot\system32\drivers\Wdf01000.sys
\SystemRoot\system32\drivers\WDFLDR.SYS
\SystemRoot\System32\Drivers\spdi.sys
\SystemRoot\System32\Drivers\WMILIB.SYS
\SystemRoot\System32\Drivers\SCSIPORT.SYS
\SystemRoot\system32\DRIVERS\ACPI.sys
\SystemRoot\system32\DRIVERS\msisadrv.sys
\SystemRoot\system32\DRIVERS\vdrvroot.sys
\SystemRoot\system32\DRIVERS\pci.sys
\SystemRoot\System32\drivers\partmgr.sys
\SystemRoot\system32\DRIVERS\compbatt.sys
\SystemRoot\system32\DRIVERS\BATTC.SYS
\SystemRoot\system32\DRIVERS\volmgr.sys
\SystemRoot\System32\drivers\volmgrx.sys
\SystemRoot\system32\DRIVERS\pciide.sys
\SystemRoot\system32\DRIVERS\PCIIDEX.SYS
\SystemRoot\System32\drivers\mountmgr.sys
\SystemRoot\system32\DRIVERS\atapi.sys
\SystemRoot\system32\DRIVERS\ataport.SYS
\SystemRoot\system32\DRIVERS\msahci.sys
\SystemRoot\system32\DRIVERS\amdxata.sys
\SystemRoot\system32\drivers\fltmgr.sys
\SystemRoot\system32\drivers\fileinfo.sys
\SystemRoot\system32\DRIVERS\Lbd.sys
\SystemRoot\System32\Drivers\PxHlpa64.sys
\SystemRoot\System32\Drivers\Ntfs.sys
\SystemRoot\System32\Drivers\msrpc.sys
\SystemRoot\System32\Drivers\ksecdd.sys
\SystemRoot\System32\Drivers\cng.sys
\SystemRoot\System32\drivers\pcw.sys
\SystemRoot\System32\Drivers\Fs_Rec.sys
\SystemRoot\system32\drivers\ndis.sys
\SystemRoot\system32\drivers\NETIO.SYS
\SystemRoot\System32\Drivers\ksecpkg.sys
\SystemRoot\System32\drivers\tcpip.sys
\SystemRoot\System32\drivers\fwpkclnt.sys
\SystemRoot\System32\Drivers\vbtenum.sys
\SystemRoot\system32\DRIVERS\volsnap.sys
\SystemRoot\System32\Drivers\spldr.sys
\SystemRoot\System32\drivers\rdyboost.sys
\SystemRoot\System32\Drivers\mup.sys
\SystemRoot\System32\drivers\hwpolicy.sys
\SystemRoot\System32\DRIVERS\fvevol.sys
\SystemRoot\system32\DRIVERS\disk.sys
\SystemRoot\system32\DRIVERS\CLASSPNP.SYS
\SystemRoot\System32\Drivers\BTHidMgr.sys
\SystemRoot\system32\DRIVERS\AtiPcie.sys
\SystemRoot\system32\DRIVERS\cdrom.sys
\SystemRoot\System32\DRIVERS\cmdguard.sys
\SystemRoot\system32\DRIVERS\mwlPSDFilter.sys
\SystemRoot\System32\Drivers\Null.SYS
\SystemRoot\System32\Drivers\Beep.SYS
\SystemRoot\System32\drivers\vga.sys
\SystemRoot\System32\drivers\VIDEOPRT.SYS
\SystemRoot\System32\drivers\watchdog.sys
\SystemRoot\System32\DRIVERS\RDPCDD.sys
\SystemRoot\system32\drivers\rdpencdd.sys
\SystemRoot\system32\drivers\rdprefmp.sys
\SystemRoot\System32\Drivers\Msfs.SYS
\SystemRoot\System32\Drivers\Npfs.SYS
\SystemRoot\system32\DRIVERS\tdx.sys
\SystemRoot\system32\DRIVERS\TDI.SYS
\SystemRoot\System32\DRIVERS\cmdhlp.sys
\SystemRoot\System32\DRIVERS\netbt.sys
\SystemRoot\system32\drivers\afd.sys
\SystemRoot\system32\drivers\ws2ifsl.sys
\SystemRoot\system32\DRIVERS\wfplwf.sys
\SystemRoot\system32\DRIVERS\pacer.sys
\SystemRoot\system32\DRIVERS\vwififlt.sys
\SystemRoot\system32\DRIVERS\inspect.sys
\SystemRoot\system32\DRIVERS\netbios.sys
\SystemRoot\system32\DRIVERS\wanarp.sys
\SystemRoot\System32\drivers\truecrypt.sys
\SystemRoot\system32\DRIVERS\termdd.sys
\SystemRoot\system32\DRIVERS\rdbss.sys
\SystemRoot\system32\drivers\nsiproxy.sys
\SystemRoot\system32\DRIVERS\mwlPSDVDisk.sys
\SystemRoot\system32\DRIVERS\mwlPSDNServ.sys
\SystemRoot\system32\DRIVERS\mssmbios.sys
\SystemRoot\System32\drivers\discache.sys
\SystemRoot\System32\Drivers\dfsc.sys
\SystemRoot\system32\DRIVERS\blbdrive.sys
\SystemRoot\system32\DRIVERS\avkmgr.sys
\SystemRoot\system32\DRIVERS\avipbb.sys
\SystemRoot\system32\DRIVERS\tunnel.sys
\SystemRoot\system32\DRIVERS\amdppm.sys
\SystemRoot\system32\DRIVERS\atikmpag.sys
\SystemRoot\system32\DRIVERS\atipmdag.sys
\SystemRoot\System32\drivers\dxgkrnl.sys
\SystemRoot\System32\drivers\dxgmms1.sys
\SystemRoot\system32\DRIVERS\HDAudBus.sys
\SystemRoot\system32\DRIVERS\k57nd60a.sys
\SystemRoot\system32\DRIVERS\athrx.sys
\SystemRoot\system32\DRIVERS\vwifibus.sys
\??\C:\Windows\system32\drivers\UBHelper.sys
\??\C:\Windows\system32\drivers\NTIDrvr.sys
\SystemRoot\system32\DRIVERS\GEARAspiWDM.sys
\SystemRoot\system32\DRIVERS\usbohci.sys
\SystemRoot\system32\DRIVERS\USBPORT.SYS
\SystemRoot\system32\DRIVERS\usbfilter.sys
\SystemRoot\system32\DRIVERS\usbehci.sys
\SystemRoot\system32\DRIVERS\CmBatt.sys
\SystemRoot\system32\DRIVERS\i8042prt.sys
\SystemRoot\system32\DRIVERS\kbdclass.sys
\SystemRoot\system32\DRIVERS\Apfiltr.sys
\SystemRoot\system32\DRIVERS\mouclass.sys
\SystemRoot\system32\DRIVERS\wmiacpi.sys
\SystemRoot\System32\Drivers\VcommMgr.sys
\SystemRoot\system32\DRIVERS\CompositeBus.sys
\SystemRoot\system32\DRIVERS\blueletaudio.sys
\SystemRoot\system32\DRIVERS\portcls.sys
\SystemRoot\system32\DRIVERS\drmk.sys
\SystemRoot\system32\DRIVERS\ks.sys
\SystemRoot\system32\drivers\ksthunk.sys
\SystemRoot\system32\DRIVERS\BlueletSCOAudio.sys
\SystemRoot\System32\Drivers\RootMdm.sys
\SystemRoot\system32\drivers\modem.sys
\SystemRoot\system32\DRIVERS\AgileVpn.sys
\SystemRoot\system32\DRIVERS\rasl2tp.sys
\SystemRoot\system32\DRIVERS\ndistapi.sys
\SystemRoot\system32\DRIVERS\ndiswan.sys
\SystemRoot\system32\DRIVERS\raspppoe.sys
\SystemRoot\system32\DRIVERS\raspptp.sys
\SystemRoot\system32\DRIVERS\rassstp.sys
\SystemRoot\system32\DRIVERS\btnetdrv.sys
\SystemRoot\system32\DRIVERS\VComm.sys
\SystemRoot\system32\DRIVERS\serenum.sys
\SystemRoot\system32\DRIVERS\vHidDev.sys
\SystemRoot\system32\DRIVERS\HIDCLASS.SYS
\SystemRoot\system32\DRIVERS\HIDPARSE.SYS
\SystemRoot\system32\DRIVERS\swenum.sys
\SystemRoot\system32\DRIVERS\MarvinBus64.sys
\SystemRoot\system32\DRIVERS\amdiox64.sys
\SystemRoot\system32\DRIVERS\PTSimBus.sys
\SystemRoot\system32\DRIVERS\umbus.sys
\SystemRoot\system32\DRIVERS\usbhub.sys
\SystemRoot\System32\Drivers\NDProxy.SYS
\SystemRoot\system32\DRIVERS\mouhid.sys
\SystemRoot\system32\DRIVERS\kbdhid.sys
\SystemRoot\system32\drivers\AtiHdmi.sys
\SystemRoot\system32\drivers\RTKVHD64.sys
\SystemRoot\System32\Drivers\crashdmp.sys
\SystemRoot\System32\Drivers\dump_dumpata.sys
\SystemRoot\System32\Drivers\dump_msahci.sys
\SystemRoot\System32\Drivers\dump_dumpfve.sys
\SystemRoot\system32\DRIVERS\usbccgp.sys
\SystemRoot\system32\DRIVERS\USBD.SYS
\SystemRoot\system32\DRIVERS\hidusb.sys
\SystemRoot\System32\Drivers\usbvideo.sys
\SystemRoot\System32\win32k.sys
\SystemRoot\System32\drivers\Dxapi.sys
\SystemRoot\system32\DRIVERS\monitor.sys
\SystemRoot\System32\TSDDD.dll
\SystemRoot\System32\cdd.dll
\SystemRoot\System32\ATMFD.DLL
\SystemRoot\system32\drivers\luafv.sys
\SystemRoot\system32\DRIVERS\avgntflt.sys
\SystemRoot\system32\DRIVERS\lltdio.sys
\SystemRoot\system32\DRIVERS\nwifi.sys
\SystemRoot\system32\DRIVERS\ndisuio.sys
\SystemRoot\system32\DRIVERS\rspndr.sys
\SystemRoot\system32\DRIVERS\vwifimp.sys
\SystemRoot\system32\drivers\HTTP.sys
\SystemRoot\system32\DRIVERS\bowser.sys
\SystemRoot\System32\drivers\mpsdrv.sys
\SystemRoot\system32\DRIVERS\mrxsmb.sys
\SystemRoot\system32\DRIVERS\mrxsmb10.sys
\SystemRoot\system32\DRIVERS\mrxsmb20.sys
\SystemRoot\system32\drivers\peauth.sys
\SystemRoot\System32\Drivers\secdrv.SYS
\SystemRoot\System32\DRIVERS\srvnet.sys
\SystemRoot\System32\drivers\tcpipreg.sys
\SystemRoot\System32\DRIVERS\srv2.sys
\SystemRoot\System32\DRIVERS\srv.sys
\??\C:\Windows\system32\drivers\MBAMSwissArmy.sys
\Windows\System32\ntdll.dll
\Windows\System32\smss.exe
\Windows\System32\apisetschema.dll
----------- End -----------
Done!
<<<1>>>
Upper Device Name: \Device\Harddisk0\DR0
Upper Device Object: 0xfffffa8004a9f060
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\Ide\IdeDeviceP0T0L0-0\
Lower Device Object: 0xfffffa8004d26680
Lower Device Driver Name: \Driver\atapi\
IRP handler 0 of \Driver\atapi points to an unknown module
Unhooking enabled.
<<<1>>>
Upper Device Name: \Device\Harddisk0\DR0
Upper Device Object: 0xfffffa8004a9f060
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\Ide\IdeDeviceP0T0L0-0\
Lower Device Object: 0xfffffa8004d26680
Lower Device Driver Name: \Driver\atapi\
Driver name found: atapi
Initialization returned 0x0
Port sub-driver loaded: \??\C:\Windows\System32\drivers\ataport.sys (0x0)
Load Function returned 0x0
<<<2>>>
Physical Sector Size: 512
Drive: 0, DevicePointer: 0xfffffa8004a9f060, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xfffffa8004dd8330, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xfffffa8004a9f060, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
DevicePointer: 0xfffffa8004d26680, DeviceName: \Device\Ide\IdeDeviceP0T0L0-0\, DriverName: \Driver\atapi\
------------ End ----------
Alternate DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
Upper DeviceData: 0xfffff8a0054607c0, 0xfffffa8004a9f060, 0xfffffa8008373790
Lower DeviceData: 0xfffff8a00ebf1910, 0xfffffa8004d26680, 0xfffffa80075726a0
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
<<<2>>>
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Scanning drivers directory: C:\WINDOWS\SYSTEM32\drivers...
<<<2>>>
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
File user open failed: C:\WINDOWS\SYSTEM32\drivers\sptd.sys (0x00000020)
Done!
Drive 0
Scanning MBR on drive 0...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: F606F606

Partition information:

    Partition 0 type is Other (0x27)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 2048  Numsec = 26624000

    Partition 1 type is Primary (0x7)
    Partition is ACTIVE.
    Partition starts at LBA: 26626048  Numsec = 204800
    Partition is not bootable

    Partition 2 type is Primary (0x7)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 26830848  Numsec = 949940272

    Partition 3 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0

Disk Size: 500107862016 bytes
Sector size: 512 bytes

Scanning physical sectors of unpartitioned space on drive 0 (1-2047-976753168-976773168)...
Done!
Scan finished
=======================================


Removal queue found; removal started
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR_0_i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\Bootstrap_0_1_26626048_i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR_0_r.mbam...
Removal finished
 






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users